From 4895288d9ccd3c04372198d4caef3b4ce7aaedd5 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 7 Oct 2016 13:38:36 -0700 Subject: [PATCH 001/210] added 3 files --- windows/deploy/windows-10-poc-mdt.md | 548 ++++++++++++++ .../deploy/windows-10-poc-sc-config-mgr.md | 645 +++++++++++++++++ windows/deploy/windows-10-poc.md | 683 ++++++++++++++++++ 3 files changed, 1876 insertions(+) create mode 100644 windows/deploy/windows-10-poc-mdt.md create mode 100644 windows/deploy/windows-10-poc-sc-config-mgr.md create mode 100644 windows/deploy/windows-10-poc.md diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md new file mode 100644 index 0000000000..05589e281d --- /dev/null +++ b/windows/deploy/windows-10-poc-mdt.md @@ -0,0 +1,548 @@ +--- +title: Placeholder (Windows 10) +description: Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: deploy +author: greg-lindsay +--- + +# Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit + +**Applies to** + +- Windows 10 + +**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). Please complete all steps in the prerequisite guide before attempting the procedures in this guide. + +The PoC environment is a virtual network running on Hyper-V with three virtual machines: +- **DC1**: A contoso.com domain controller, DNS server, and DHCP server. +- **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. +- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been cloned from a physical computer on your corporate network for testing purposes. + +This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. + +## In this guide + +Description here. + +## Install the Microsoft Deployment Toolkit (MDT) + +1. On SRV1, temporarily disable IE Enhanced Security Configuration for Administrators by typing the following commands at an elevated Windows PowerShell prompt: + + ``` + $AdminKey = "HKLM:\SOFTWARE\Microsoft\Active Setup\Installed Components\{A509B1A7-37EF-4b3f-8CFC-4F3A74704073}" + Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 0 + Stop-Process -Name Explorer + ``` +2. Download and install the 64-bit version of [Microsoft Deployment Toolkit (MDT) 2013 Update 2](https://www.microsoft.com/en-us/download/details.aspx?id=50407) on SRV1 using the default options. + +3. Download and install the latest [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/en-us/windows/hardware/windows-assessment-deployment-kit) on SRV1 using the default installation settings. The current version is the ADK for Windows 10, version 1607. Installation might require several minutes to acquire all components. + +3. If desired, re-enable IE Enhanced Security Configuration: + + ``` + Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 1 + Stop-Process -Name Explorer + ``` + +## Create a deployment share and reference image + +1. In [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: + + ``` + Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\w10-enterprise.iso + ``` +2. Connect to SRV1 and verify that the Windows Enterprise installation DVD is mounted as drive letter D. + +3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. + +4. In the Deployment Workbench console, right-click **Deployment Shares** and select **New Deployment Share**. + +5. Use the following settings for the New Deployment Share Wizard: + - Deployment share path: **C:\MDTBuildLab**
+ - Share name: **MDTBuildLab$**
+ - Deployment share description: **MDT build lab**
+ - Options: click **Next** to accept the default
+ - Summary: click **Next**
+ - Progress: settings will be applied
+ - Confirmation: click **Finish** + +6. Expand the Deployment Shares node, and then expand MDT build lab. + +7. Right-click the Operating Systems node, and then click New Folder. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. + +7. Right-click the Windows 10 folder created in the previous step, and then click **Import Operating System**. + +8. Use the following settings for the Import Operating System Wizard: + - OS Type: **Full set of source files**
+ - Source: **D:\\**
+ - Destination: **W10Ent_x64**
+ - Summary: click **Next** + - Confirmation: click **Finish** + +9. For purposes of this test lab, we will not add applications (such as Microsoft Office) to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. + +10. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: + - Task sequence ID: **REFW10X64-001**
+ - Task sequence name: **Windows 10 Enterprise x64 Default Image**
+ - Task sequence comments: **Reference Build**
+ - Template: **Standard Client Task Sequence** + - Select OS: click **Windows 10 Enterprise Evaluation in W10Ent_x64 install.wim** + - Specify Product Key: **Do not specify a product key at this time** + - Full Name: **Contoso** + - Organization: **Contoso** + - Internet Explorer home page: **http://www.contoso.com** + - Admin Password: **Do not specify an Administrator password at this time** + - Summary: click **Next** + - Confirmation: click **Finish** + +11. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. + +12. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. + +13. On the Properties tab of the group that was created in the previous step, change the Name from New Group to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. + +14. Click the **Custom Tasks (Pre-Windows Update)** group again, click **Add**, point to **Roles**, and then click **Install Roles and Features**. + +15. Under **Select the roles and features that should be installed**, select **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** and then click **Apply**. + +16. Enable Windows Update in the task sequence by clicking the **Windows Update (Post-Application Installation)** step, clicking the **Options** tab, and clearing the **Disable this step** checkbox. + >Note: Since we are not installing applications in this test lab, there is no need to enable the Windows Update Pre-Application Installation step. However, you should enable this step if you are also installing applications. + +17. Click **OK** to complete editing the task sequence. + +18. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click MDT build lab (C:\MDTBuildLab) and click **Properties**, and then click the **Rules** tab. + +19. Replace the default rules with the following text: + + ``` + [Settings] + Priority=Default + + [Default] + _SMSTSORGNAME=Contoso + UserDataLocation=NONE + DoCapture=YES + OSInstall=Y + AdminPassword=pass@word1 + TimeZoneName=Pacific Standard Time + JoinWorkgroup=WORKGROUP + HideShell=YES + FinishAction=SHUTDOWN + DoNotCreateExtraPartition=YES + ApplyGPOPack=NO + SkipAdminPassword=YES + SkipProductKey=YES + SkipComputerName=YES + SkipDomainMembership=YES + SkipUserData=YES + SkipLocaleSelection=YES + SkipTaskSequence=NO + SkipTimeZone=YES + SkipApplications=YES + SkipBitLocker=YES + SkipSummary=YES + SkipRoles=YES + SkipCapture=NO + SkipFinalSummary=YES + ``` + +20. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: + + ``` + [Settings] + Priority=Default + + [Default] + DeployRoot=\\SRV1\MDTBuildLab$ + UserDomain=CONTOSO + UserID=administrator + UserPassword=pass@word1 + SkipBDDWelcome=YES + ``` + +21. Click **OK** to complete the configuration of the deployment share. + +22. Right-click **MDT build lab (C:\MDTBuildLab)** and then click **Update Deployment Share**. + +23. Accept all default values in the Update Deployment Share Wizard by clicking **Next**. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. + +24. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). + +>Hint: Top copy the file, right-click the **LiteTouchPE_x86.iso** file and click **Copy** on SRV1, then open the **c:\VHD** folder on the Hyper-V host, right-click inside the folder and click **Paste**. + +25. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: + + ``` + New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB + Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20 + Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso + Start-VM REFW10X64-001 + vmconnect localhost REFW10X64-001 + ``` +26. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. + +27. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. + + Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: + + - Install the Windows 10 Enterprise operating system. + - Install added applications, roles, and features. + - Update the operating system using Windows Update (or WSUS if optionally specified). + - Stage Windows PE on the local disk. + - Run System Preparation (Sysprep) and reboot into Windows PE. + - Capture the installation to a Windows Imaging (WIM) file. + - Turn off the virtual machine. + + This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server. The file name is **REFW10X64-001.wim**. + + ## Deploy a Windows 10 image using MDT + +This procedure will demonstrate how to deploy the reference image to the PoC environment using MDT. + +1. On SRV1, open the MDT Deployment Workbench console, right-click **Deployment Shares**, and then click **New Deployment Share**. Use the following values in the New Deployment Share Wizard: + - **Deployment share path**: C:\MDTProd + - **Share name**: MDTProd$ + - **Deployment share description**: MDT Production + - **Options**: accept the default + +2. Click **Finish** and verify the new deployment share was added successfully. + +3. In the Deployment Workbench console, expand the MDT Production deployment share, right-click **Operating Systems**, and then click **New Folder**. Name the new folder **Windows 10** and complete the wizard using default values. + +4. Right-click the Windows 10 folder created in the previous step, and then click **Import Operating System**. + +5. On the **OS Type** page, choose **Custom image file** and then click **Next**. + +6. On the Image page, browse to the C:\MDTBuildLab\Captures\REFW10X64-001.wim file created in the previous procedure, click **Open**, and then click **Next**. + +7. On the Setup page, select **Copy Windows 7, Windows Server 2008 R2, or later setup files from the specified path**. + +8. Under **Setup source directory**, browse to **C:\MDTBuildLab\Operating Systems\W10Ent_x64** click **OK** and then click **Next**. + +9. On the Destination page, accept the default Destination directory name of **REFW10X64-001**, click **Next** twice, and then click **Finish**. + +10. In the Operating Systems > Windows 10 node, double-click the operating system that was added to view its Properties. Change the Operating system name to **Windows 10 Enterprise x64 Custom Image** and then click **OK**. + +### Create the deployment task sequence + +1. Using the Deployment Workbench, select Task Sequences in the MDT Production node, and create a folder named **Windows 10**. + +2. Right-click the Windows 10 folder created in the previous step, and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: + - Task sequence ID: W10-X64-001 + - Task sequence name: Windows 10 Enterprise x64 Custom Image + - Task sequence comments: Production Image + - Select Template: Standard Client Task Sequence + - Select OS: Windows 10 Enterprise x64 Custom Image + - Specify Product Key: Do not specify a product key at this time + - Full Name: Contoso + - Organization: Contoso + - Internet Explorer home page: http://www.contoso.com + - Admin Password: pass@word1 + +### Configure the MDT production deployment share + +1. On SRV1, open an elevated Windows PowerShell prompt and type the following commands: + + ``` + copy-item "C:\Program Files\Microsoft Deployment Toolkit\Templates\Bootstrap.ini" C:\MDTProd\Control\Bootstrap.ini -Force + copy-item "C:\Program Files\Microsoft Deployment Toolkit\Templates\CustomSettings.ini" C:\MDTProd\Control\CustomSettings.ini -Force + ``` +2. In the Deployment Workbench console on SRV1, right-click the **MDT Production** deployment share and then click Properties. + +3. Click the **Rules** tab and replace the rules with the following text: + + ``` + [Settings] + Priority=Default + + [Default] + _SMSTSORGNAME=Contoso + OSInstall=YES + UserDataLocation=AUTO + TimeZoneName=Pacific Standard Time + OSDComputername=#Left("PC-%SerialNumber%",7)# + AdminPassword=pass@word1 + JoinDomain=contoso.com + DomainAdmin=administrator + DomainAdminDomain=CONTOSO + DomainAdminPassword=pass@word1 + ScanStateArgs=/ue:*\* /ui:CONTOSO\* + USMTMigFiles001=MigApp.xml + USMTMigFiles002=MigUser.xml + HideShell=YES + ApplyGPOPack=NO + SkipAppsOnUpgrade=NO + SkipAdminPassword=YES + SkipProductKey=YES + SkipComputerName=YES + SkipDomainMembership=YES + SkipUserData=YES + SkipLocaleSelection=YES + SkipTaskSequence=NO + SkipTimeZone=YES + SkipApplications=NO + SkipBitLocker=YES + SkipSummary=YES + SkipCapture=YES + SkipFinalSummary=NO + EventService=http://SRV1:9800 + ``` + **Note**: The contents of the Rules tab are added to c:\MDTProd\Control\CustomSettings.ini. + + >In this example a **MachineObjectOU** entry is not provided. Normally this entry describes the specific OU where new client computer objects are created in Active Directory. However, for the purposes of this test lab clients are added to the default computers OU, which requires that this parameter be unspecified. + +4. Click **Edit Bootstap.ini** and replace text in the file with the following text: + + ``` + [Settings] + Priority=Default + + [Default] + DeployRoot=\\SRV1\MDTProd$ + UserDomain=CONTOSO + UserID=administrator + UserPassword=pass@word1 + SkipBDDWelcome=YES + ``` +5. Click **OK** when finished. + +### Update the deployment share + +1. Right-click the **MDT Production** deployment share and then click **Update Deployment Share**. + +2. Use the default options for the Update Deployment Share Wizard. The update process requires 5 to 10 minutes to complete. + +3. Click **Finish** when the update is complete. + +### Enable deployment monitoring + +1. In the Deployment Workbench console, right-click **MDT Production** and then click **Properties**. + +2. On the **Monitoring** tab, select the **Enable monitoring for this deployment share** checkbox, and then click **OK**. + +3. Verify the monitoring service is working as expected by opening the following link on SRV1 in Internet Explorer: [http://localhost:9800/MDTMonitorEvent/](http://localhost:9800/MDTMonitorEvent/). If you do not see "**You have created a service**" at the top of the page, see [Troubleshooting MDT 2012 Monitoring](https://blogs.technet.microsoft.com/mniehaus/2012/05/10/troubleshooting-mdt-2012-monitoring/). + +4. Close Internet Explorer. + +### Configure Windows Deployment Services + +1. Initialize Windows Deployment Services (WDS) by typing the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + WDSUTIL /Verbose /Progress /Initialize-Server /Server:SRV1 /RemInst:"C:\RemoteInstall" + WDSUTIL /Set-Server /AnswerClients:All + ``` + +2. Click **Start**, type **Windows Deployment**, and then click **Windows Deployment Services**. + +3. In the Windows Deployment Services console, expand Servers, expand SRV1.contoso.com, right-click **Boot Images**, and then click **Add Boot Image**. + +4. Browse to the **C:\MDTProd\Boot\LiteTouchPE_x64.wim** file, click **Open**, click **Next**, and accept the defaults in the Add Image Wizard. Click **Finish** to complete adding a boot image. + +### Deploy the client image + +1. Before using WDS to deploy a client image, you must temporarily disable the external network adapter on SRV1. This is just an artifact of the lab environment. In a typical deployment environment WDS would not be installed on the default gateway. **Note**: Do not disable the *internal* network interface. To disable the *external* interface on SRV1, open a Windows PowerShell prompt on SRV1 and type the following command: + + ``` + Disable-NetAdapter "Ethernet 2" -Confirm:$false + ``` + +2. Next, switch to the Hyper-V host and open an elevated Windows PowerShell prompt. Create a generation 2 VM on the Hyper-V host that will load its OS using PXE. To create this VM, type the following commands at an elevated Windows PowerShell prompt: + + ``` + New-VM –Name "PC2" –NewVHDPath "c:\vhd\pc2.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 + Set-VMMemory -VMName "PC2" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 + ``` + >Dynamic memory is configured on the VM to conserve resources. However, this can cause memory allocation to be reduced past what is required to install an operating system. If this happens, reset the VM and begin the OS installation task sequence immediately. This ensures the VM memory allocation is not decreased too much while it is idle. + +3. Start the new VM and connect to it: + + ``` + Start-VM PC2 + vmconnect localhost PC2 + ``` +4. When prompted, hit ENTER to start the network boot process. + +5. Choose the **Windows 10 Enterprise x64 Custom Image** and then click **Next**. + +6. After MDT lite touch installation has started, be sure to re-enable the external network adapter on SRV1. This is needed so the client can use Windows Update after operating system installation is complete.To re-enable the external network interface, open an elevated Windows PowerShell prompt on SRV1 and type the following command: + + ``` + Enable-NetAdapter "Ethernet 2" + ``` +7. On SRV1, in the Deployment Workbench console, click on **Monitoring** and view the status of installation. +8. When OS installation is complete, the system will reboot automatically and begin configuring devices. When the new client computer is finished updating, click **Finish**. You will be automatically signed in to the local computer as administrator. + +9. Turn off the PC2 VM before starting the next section. To turn off the VM, right-click **Start**, point to **Shut down or sign out**, and then click **Shut down**. + +### Refresh a computer with Windows 10 + +This topic will demonstrate how to export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings. The scenario will use PC1, a computer that was cloned from a physical device to a VM, as described in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). + +1. Create a checkpoint for the PC1 VM so that it can easily be reverted to its current state for troubleshooting purposes and to perform additional scenarios. Checkpoints are also known as snapshots. To create a checkpoint for the PC1 VM, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName BeginState + ``` + +2. Sign on to PC1 using the CONTOSO\Administrator account. + + >Specify **contoso\administrator** as the user name to ensure you do not sign on using the local administrator account. You must sign in with this account so that you have access to the deployment share. + +3. Open an elevated command prompt on PC1 and type the following: + + ``` + cscript \\SRV1\MDTProd$\Scripts\Litetouch.vbs + ``` + **Note**: Litetouch.vbs must be able to create the C:\MININT directory on the local computer. + +4. Choose the **Windows 10 Enterprise x64 Custom Image** and then click **Next**. + +5. Choose **Do not back up the existing computer** and click **Next**. + + **Note**: The USMT will still back up the computer. + +6. Lite Touch Installation will perform the following actions: + - Back up user settings and data using USMT. + - Install the Windows 10 Enterprise X64 operating system. + - Update the operating system via Windows Update. + - Restore user settings and data using USMT. + + You can review the progress of installation on SRV1 by clicking on the **Monitoring** node in the deployment workbench. When OS installation is complete, the computer will restart, set up devices, and configure settings. + +7. Sign in with the CONTOSO\Administrator account and verify that all CONTOSO domain user accounts and data have been migrated to the new operating system. + +8. Create another checkpoint for the PC1 VM so that you can review results of the computer refresh later. To create a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName RefreshState + ``` +9. Restore the PC1 VM to it's previous state in preparation for the replace procedure. To restore a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Restore-VMSnapshot -VMName PC1 -Name BeginState -Confirm:$false + Start-VM PC1 + vmconnect localhost PC1 + ``` +10. Sign in to PC1 using the contoso\administrator account. + +### Replace a computer with Windows 10 + +At a high level, the computer replace process consists of:
+- A special replace task sequence that runs the USMT backup and an optional full Window Imaging (WIM) backup.
+- A standard OS deployment on a new computer. At the end of the deployment, the USMT backup from the old computer is restored. + +#### Create a backup-only task sequence + +1. On SRV1, in the deployment workbench console, right-click the MDT Production deployment share, click **Properties**, click the **Rules** tab, and change the line **SkipUserData=YES** to **SkipUserData=NO**. +2. Click **OK**, right-click **MDT Production**, click **Update Deployment Share** and accept the default options in the wizard to update the share. +3. Type the following commands at an elevated Windows PowerShell prompt on SRV1: + + ``` + New-Item -Path C:\MigData -ItemType directory + New-SmbShare -Name MigData$ -Path C:\MigData -ChangeAccess EVERYONE + icacls C:\MigData /grant '"contoso\administrator":(OI)(CI)(M)' + ``` +4. On SRV1 in the deployment workbench, under **MDT Production**, right-click the **Task Sequences** node, and click **New Folder**. +5. Name the new folder **Other**, and complete the wizard using default options. +6. Right-click the **Other** folder and then click **New Task Sequence**. Use the following values in the wizard: + - **Task sequence ID**: REPLACE-001 + - **Task sequence name**: Backup Only Task Sequence + - **Task sequence comments**: Run USMT to backup user data and settings + - **Template**: Standard Client Replace Task Sequence +7. Accept defaults for the rest of the wizard and then click **Finish**. The replace task sequence will skip OS selection and settings. +8. Open the new task sequence that was created and review it. Note the type of capture and backup tasks that are present. Click **OK** when you are finished reviewing the task sequence. + +#### Run the backup-only task sequence + +1. If you are not already signed on to PC1 as **contoso\administrator**, sign in using this account. To verify the currently signed in account, type the following command at an elevated command prompt: + + ``` + whoami + ``` +2. To ensure a clean environment before running the backup task sequence, type the following at an elevated Windows PowerShell prompt: + + ``` + Remove-Item c:\minint -recurse + Remove-Item c:\_SMSTaskSequence -recurse + Restart-Computer + ``` +2. Sign in to PC1 using the contoso\administrator account, and then type the following at an elevated command prompt: + + ``` + cscript \\SRV1\MDTProd$\Scripts\Litetouch.vbs + ``` +3. Complete the deployment wizard using the following: + - **Task Sequence**: Backup Only Task Sequence + - **User Data**: Specify a location: **\\SRV1\MigData$\PC1** + - **Computer Backup**: Do not back up the existing computer. +4. While the task sequence is running on PC1, open the deployment workbench console on SRV1 and click the **Monitoring* node. Press F5 to refresh the console, and view the status of current tasks. +5. Verify that **The user state capture was completed successfully** is displayed, and click **Finish** when the capture is complete. +6. On SRV1, verify that the file **USMT.MIG** was created in the **C:\MigData\PC1\USMT** directory. See the following example: + + ``` + PS C:\> dir C:\MigData\PC1\USMT + + Directory: C:\MigData\PC1\USMT + + Mode LastWriteTime Length Name + ---- ------------- ------ ---- + -a--- 9/6/2016 11:34 AM 14248685 USMT.MIG + ``` +#### Deploy PC3 + +1. On the Hyper-V host, type the following commands at an elevated Windows PowerShell prompt: + + ``` + New-VM –Name "PC3" –NewVHDPath "c:\vhd\pc3.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 + Set-VMMemory -VMName "PC3" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 + ``` +2. Temporarily disable the external network adapter on SRV1 again, so that we can successfully boot PC3 from WDS. To disable the adapter, type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + Disable-NetAdapter "Ethernet 2" -Confirm:$false + ``` +3. Start and connect to PC3 by typing the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Start-VM PC3 + vmconnect localhost PC3 + ``` +4. When prompted, press ENTER for network boot. + +6. On PC3, ue the following settings for the Windows Deployment Wizard: + - **Task Sequence**: Windows 10 Enterprise x64 Custom Image + - **Move Data and Settings**: Do not move user data and settings + - **User Data (Restore)**: Specify a location: **\\SRV1\MigData$\PC1** +5. When OS installation has started on PC1, re-enable the external network adapter on SRV1 by typing the following command on SRV1: + + ``` + Enable-NetAdapter "Ethernet 2" + ``` +7. Setup will install the Windows 10 Enterprise operating system, update via Windows Update, and restore the user settings and data from PC1. + +#### Troubleshooting logs, events, and utilities + +Deployment logs are available on the client computer in the following locations: +- Before the image is applied: X:\MININT\SMSOSD\OSDLOGS +- After the system drive has been formatted: C:\MININT\SMSOSD\OSDLOGS +- After deployment: %WINDIR%\TEMP\DeploymentLogs + +You can review WDS events in Event Viewer at: **Applications and Services Logs > Microsoft > Windows > Deployment-Services-Diagnostics**. By default, only the **Admin** and **Operational** logs are enabled. To enable other logs, right-click the log and then click **Enable Log**. + +Tools for viewing log files, and to assist with troubleshooting are available in the [System Center 2012 R2 Configuration Manager Toolkit](https://www.microsoft.com/en-us/download/details.aspx?id=50012) + +## Related Topics + +[Microsoft Deployment Toolkit](https://technet.microsoft.com/en-US/windows/dn475741)
+[Prepare for deployment with MDT 2013](prepare-for-windows-deployment-with-mdt-2013.md) + +  + + + + + diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md new file mode 100644 index 0000000000..9f6e7605fb --- /dev/null +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -0,0 +1,645 @@ +--- +title: Placeholder (Windows 10) +description: Deploy Windows 10 in a test lab using System Center Configuration Manager +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: deploy +author: greg-lindsay +--- + +# Deploy Windows 10 in a test lab using System Center Configuration Manager + +**Applies to** + +- Windows 10 + +**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). Please complete all steps in the prerequisite guide before attempting the procedures in this guide. + +If you have already completed [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md), you can skip some steps of this guide, such as installation of MDT. + +The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): +- **DC1**: A contoso.com domain controller, DNS server, and DHCP server. +- **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. +- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been cloned from a physical computer on your corporate network for testing purposes. + +This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. + +>Multiple features and services are installed on SRV1 in this guide. If less than 4 GB of RAM is allocated to SRV1, some procedures will require more time to complete. If resources are limited on the Hyper-V host, consider reducing RAM allocation on DC1 and PC1 to 2 GB and 1 GB respectively, and then increasing the RAM allocation on SRV1. You can adjust RAM allocation for a VM by right-clicking the VM in the Hyper-V Manager console, clicking **Settings**, clicking **Memory**, and modifying the value next to **Maximum RAM**. + +## In this guide + +Description here. + +## Install prerequisites + +1. Before installing System Center Configuration Manager, we must install prerequisite services and features. Type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + Install-WindowsFeature Web-Windows-Auth,Web-ISAPI-Ext,Web-Metabase,Web-WMI,BITS,RDC,NET-Framework-Features,Web-Asp-Net,Web-Asp-Net45,NET-HTTP-Activation,NET-Non-HTTP-Activ + ``` + + >If the request to add features fails, retry the installation by typing the command again. + +2. Download [SQL Server 2012 SP2](https://www.microsoft.com/en-us/evalcenter/evaluate-sql-server-2014-sp2) from the Microsoft Evaluation Center as an .ISO file on the Hyper-V host computer. Save the file to the **C:\VHD** directory. +3. When you have downloaded the file **SQLServer2014SP2-FullSlipstream-x64-ENU.iso** and placed it in the C:\VHD directory, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\SQLServer2014SP2-FullSlipstream-x64-ENU.iso + ``` + + This command mounts the .ISO file to drive D on SRV1. + +4. Type the following command at an elevated Windows PowerShell prompt on SRV1 to install SQL Server 2012 SP2: + + ``` + D:\setup.exe /q /ACTION=Install /ERRORREPORTING="False" /FEATURES=SQLENGINE,RS,IS,SSMS,TOOLS,ADV_SSMS,CONN /INSTANCENAME=MSSQLSERVER /INSTANCEDIR="C:\Program Files\Microsoft SQL Server" /SQLSVCACCOUNT="NT AUTHORITY\System" /SQLSYSADMINACCOUNTS="BUILTIN\ADMINISTRATORS" /SQLSVCSTARTUPTYPE=Automatic /AGTSVCACCOUNT="NT AUTHORITY\SYSTEM" /AGTSVCSTARTUPTYPE=Automatic /RSSVCACCOUNT="NT AUTHORITY\System" /RSSVCSTARTUPTYPE=Automatic /ISSVCACCOUNT="NT AUTHORITY\System" /ISSVCSTARTUPTYPE=Disabled /ASCOLLATION="Latin1_General_CI_AS" /SQLCOLLATION="SQL_Latin1_General_CP1_CI_AS" /TCPENABLED="1" /NPENABLED="1" /IAcceptSQLServerLicenseTerms + ``` + Installation might take several minutes. When installation is complete, the following output will be displayed: + + ``` + Microsoft (R) SQL Server 2014 12.00.5000.00 + Copyright (c) Microsoft Corporation. All rights reserved. + + Microsoft (R) .NET Framework CasPol 2.0.50727.7905 + Copyright (c) Microsoft Corporation. All rights reserved. + + Success + Microsoft (R) .NET Framework CasPol 2.0.50727.7905 + Copyright (c) Microsoft Corporation. All rights reserved. + + Success + ``` +5. Type the following commands at an elevated Windows PowerShell prompt on SRV1: + + ``` + New-NetFirewallRule -DisplayName “SQL Server” -Direction Inbound –Protocol TCP –LocalPort 1433 -Action allow + New-NetFirewallRule -DisplayName “SQL Admin Connection” -Direction Inbound –Protocol TCP –LocalPort 1434 -Action allow + New-NetFirewallRule -DisplayName “SQL Database Management” -Direction Inbound –Protocol UDP –LocalPort 1434 -Action allow + New-NetFirewallRule -DisplayName “SQL Service Broker” -Direction Inbound –Protocol TCP –LocalPort 4022 -Action allow + New-NetFirewallRule -DisplayName “SQL Debugger/RPC” -Direction Inbound –Protocol TCP –LocalPort 135 -Action allow + ``` +6. On SRV1, temporarily disable IE Enhanced Security Configuration for Administrators by typing the following commands at an elevated Windows PowerShell prompt: + + ``` + $AdminKey = "HKLM:\SOFTWARE\Microsoft\Active Setup\Installed Components\{A509B1A7-37EF-4b3f-8CFC-4F3A74704073}" + Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 0 + Stop-Process -Name Explorer + ``` +7. Download and install the latest [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/en-us/windows/hardware/windows-assessment-deployment-kit) on SRV1 using the default installation settings. The current version is the ADK for Windows 10, version 1607. Installation might require several minutes to acquire all components. + +## Install System Center Configuration Manager + +1. Download [System Center Configuration Manager and Endpoint Protection](https://www.microsoft.com/en-us/evalcenter/evaluate-system-center-configuration-manager-and-endpoint-protection) on SRV1, double-click the file, enter **C:\configmgr** for **Unzip to folder**, and click **Unzip**. The C:\configmgr directory will be automatically created. Click **OK** and then close the **WinZip Self-Extractor** dialog box when finished. + +2. Before starting the installation, verify that WMI is working on SRV1. See the following examples. Verify that **Running** is displayed under **Status** and **True** is displayed next to **TcpTestSucceeded**: + + ``` + Get-Service Winmgmt + + Status Name DisplayName + ------ ---- ----------- + Running Winmgmt Windows Management Instrumentation + + Test-NetConnection -ComputerName 192.168.0.2 -Port 135 -InformationLevel Detailed + + ComputerName : 192.168.0.2 + RemoteAddress : 192.168.0.2 + RemotePort : 135 + AllNameResolutionResults : + MatchingIPsecRules : + NetworkIsolationContext : Internet + InterfaceAlias : Ethernet + SourceAddress : 192.168.0.2 + NetRoute (NextHop) : 0.0.0.0 + PingSucceeded : True + PingReplyDetails (RTT) : 0 ms + TcpTestSucceeded : True + ``` + You can also verify WMI using the WMI console by typing **wmimgmt.msc**, right-clicking **WMI Control (Local)** in the console tree, and then clicking **Properties**. + + If the WMI service is not started, attempt to start it or reboot the computer. If WMI is running but errors are present, see [WMIDiag](https://blogs.technet.microsoft.com/askperf/2015/05/12/wmidiag-2-2-is-here/) for troubleshooting information. + +2. To start Configuration Manager installation, type the following command at an elevated Windows PowerShell prompt: + + ``` + cmd /c C:\configmgr\SMSSETUP\BIN\X64\Setup.exe + ``` +3. Provide the following in the System Center Configuration Manager Setup Wizard: + - **Before You Begin**: Read the text and click *Next*. + - **Getting Started**: Choose **Install a Configuration Manager primary site** and select the **Use typical installation options for a stand-alone primary site** checkbox. + - Click **Yes** in response to the popup window. + - **Product Key**: Choose **Install the evaluation edition of this Product**. + - **Microsoft Software License Terms**: Read the terms and then select the **I accept these license terms** checkbox. + - **Prerequisite Licenses**: Review license terms and select all three checkboxes on the page. + - **Prerequisite Downloads**: Choose **Download required files** and enter **c:\windows\temp** next to **Path**. + - **Site and Installation Settings**: Site code: **PS1**, Site name: **Contoso**. + - use default settings for all other options + - **Usage Data**: Read the text and click **Next**. + - **Service Connection Point Setup**: Accept the default settings (SRV1.contoso.com is automatically added under Select a server to use). + - **Settings Summary**: Review settings and click **Next**. + - **Prerequisite Check**: No failures should be listed. Ignore any warnings and click **Begin Install**. + + Depending on the speed of the Hyper-V host and resources allocated to SRV1, installation can require approximately one hour. Click **Close** when installation is complete. + +## Download and install MDT + +1. Download and install the 64-bit version of [Microsoft Deployment Toolkit (MDT) 2013 Update 2](https://www.microsoft.com/en-us/download/details.aspx?id=50407) on SRV1 using the default options. + +2. If desired, re-enable IE Enhanced Security Configuration at this time on SRV1: + + ``` + Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 1 + Stop-Process -Name Explorer + ``` + +## Download MDOP and install DaRT + +1. Download the [Microsoft Desktop Optimization Pack 2015](https://msdn.microsoft.com/en-us/subscriptions/downloads/#ProductFamilyId=597) to the Hyper-V host using an MSDN subscription. Download the .ISO file (mu_microsoft_desktop_optimization_pack_2015_x86_x64_dvd_5975282.iso) to the C:\VHD directory on the Hyper-V host. + +2. Type the following command at an elevated Windows PowerShell prompt on the Hyper-V host to mount the MDOP file on SRV1: + + ``` + Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\mu_microsoft_desktop_optimization_pack_2015_x86_x64_dvd_5975282.iso + ``` +3. Type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + cmd /c "D:\DaRT\DaRT 10\Installers\en-us\x64\MSDaRT100.msi" + ``` +4. Install DaRT 10 using default settings. +5. Type the following commands at an elevated Windows PowerShell prompt on SRV1: + + ``` + Copy-Item "C:\Program Files\Microsoft DaRT\v10\Toolsx64.cab" -Destination "C:\Program Files\Microsoft Deployment Toolkit\Templates\Distribution\Tools\x64" + Copy-Item "C:\Program Files\Microsoft DaRT\v10\Toolsx86.cab" -Destination "C:\Program Files\Microsoft Deployment Toolkit\Templates\Distribution\Tools\x86" + ``` + +## Create a folder structure + +1. Type the following commands at a Windows PowerShell prompt on SRV1: + + ``` + New-Item -ItemType Directory -Path "C:Sources\OSD\Boot" + New-Item -ItemType Directory -Path "C:Sources\OSD\OS" + New-Item -ItemType Directory -Path "C:\Sources\OSD\Settings" + New-Item -ItemType Directory -Path "C:\Sources\OSD\Branding" + New-Item -ItemType Directory -Path "C:\Sources\OSD\MDT" + New-Item -ItemType Directory -Path "C:\Logs" + New-SmbShare -Name Sources$ -Path C:\Sources -ChangeAccess EVERYONE + New-SmbShare -Name Logs$ -Path C:\Logs -ChangeAccess EVERYONE + ``` + +## Enable MDT ConfigMgr integration + +1. Click **Start**, type **configmgr**, and then click **Configure ConfigMgr Integration**. +2. Type **PS1** next to **Site code**, and then click **Next**. +3. Verify **The process completed successfully** is displayed, and then click **Finish**. + +## Configure client settings + +1. Click **Start**, type **configuration manager**, right-click **Configuration Manager Console**, and then click **Pin to Taskbar**. +2. Click **Desktop**, and then launch the Configuration Manager console from the taskbar. +3. If the console notifies you that an update is available, click **OK**. It is not necessary to install updates to complete this lab. +4. In the console tree, open the **Administration** workspace and click **Client Settings**. +5. In the display pane, double-click **Default Client Settings**. +6. Click **Computer Agent**, next to **Organization name displayed in Software Center** type **Contoso**, and then click **OK**. + +## Enable PXE on the distribution point + +1. Deterime the MAC address of the internal network adapter on SRV1. To determine this, type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + (Get-NetAdapter "Ethernet").MacAddress + ``` + >If the internal network adapter, assigned an IP address of 192.168.0.2, is not named "Ethernet" then replace the name "Ethernet" in the previous command with the name of this network adapter. + +2. In the System Center Configuration Manager console, in the **Administration** workspace, click **Distribution Points**. +3. In the display pane, right-click **SRV1.CONTOSO.COM** and then click **Properties**. +4. On the PXE tab, select the following settings: + - Enable PXE support for clients. Click **Yes** in the popup that appears. + - Allow this distribution point to respond to incoming PXE requests + - Enable unknown computer support. Click **OK** in the popup that appears. + - Require a password when computers use PXE + - Password and Confirm password: pass@word1 + - Respond to PXE requests on specific network interfaces: Enter the MAC address determined in the first step of this procedure. +5. Click **OK**. +6. Type the following command at an elevated Windows PowerShell prompt on SRV1, and verify that the files displayed are present: + + ``` + cmd /c dir /b C:\RemoteInstall\SMSBoot\x64 + + abortpxe.com + bootmgfw.efi + bootmgr.exe + pxeboot.com + pxeboot.n12 + wdsmgfw.efi + wdsnbp.com + ``` + >If these files are not present, type the following command at an elevated Windows PowerShell prompt to open the Configuration Manager Trace Log Tool. In the tool, click **File**, click **Open**, and then open the **distmgr.log** file. If errors are present, they will be highlighted in red: + + ``` + Invoke-Item 'C:\Program Files\Microsoft Configuration Manager\tools\cmtrace.exe' + ``` + +## Create a branding image file + +1. If you have a bitmap (.BMP) image for suitable use as a branding image, copy it to the C:\Sources\OSD\Branding folder on SRV1. Otherwise, use the following step to copy a simple branding image. +2. Type the following command at an elevated Windows PowerShell prompt: + + ``` + copy "C:\ProgramData\Microsoft\User Account Pictures\user.bmp" "C:\Sources\OSD\Branding\contoso.bmp" + ``` + >You can open C:\Sources\OSD\Branding\contoso.bmp in MSPaint.exe if desired to customize this image. + +## Create a boot image for Configuration Manager + +1. In the Configuration Manager console, in the Software Library workspace, expand **Operating Systems**, right-click **Boot Images**, and then click **Create Boot Image using MDT**. +2. On the Package Source page, under **Package source folder to be created (UNC Path):**, type **\\SRV1\Sources$\OSD\Boot\Zero Touch WinPE x64**, and then click **Next**. + - The Zero Touch WinPE x64 folder does not yet exist. The folder will be created later. +3. On the General Settings page, type **Zero Touch WinPE x64** next to **Name**, and click **Next**. +4. On the Options page, under **Platform** choose **x64**, and click **Next**. +5. On the Components page, in addition to the default selection of **Microsoft Data Access Components (MDAC/ADO) support**, select the **Microsoft Diagnostics and Recovery Toolkit (DaRT)** checkbox, and click **Next**. +6. On the Customization page, select the **Use a custom background bitmap file** checkbox, and under **UNC path**, type or browse to **\\SRV1\Sources$\OSD\Branding\contoso.bmp**, and then click **Next** twice. It will take a few minutes to generate the boot image. +7. Click **Finish**. +8. Right-click the **Zero Touch WinPE x64** boot image, and then click **Distribute Content**. +9. In the Distribute Content Wizard, click **Next**, click **Add** and select **Distribution Point**, select the **SRV1.CONTOSO.COM** checkbox, click **OK**, click **Next** twice, and then click **Close**. +10. Use the CMTrace application to view the **distmgr.log** file and verify that the boot image has been distributed. To open CMTrace, type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + Invoke-Item 'C:\Program Files\Microsoft Configuration Manager\tools\cmtrace.exe' + ``` + >In the trace tool, click **Tools** on the menu and choose **Find**. Search for "**STATMSG: ID=2301**". For example: + + ``` + STATMSG: ID=2301 SEV=I LEV=M SOURCE="SMS Server" COMP="SMS_DISTRIBUTION_MANAGER" SYS=SRV1.CONTOSO.COM SITE=PS1 PID=2476 TID=4636 GMTDATE=Wed Sep 14 22:11:09.363 2016 ISTR0="Configuration Manager Client Upgrade Package" ISTR1="PS100003" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=1 AID0=400 AVAL0="PS100003" SMS_DISTRIBUTION_MANAGER 9/14/2016 3:11:09 PM 4636 (0x121C) + ``` +11. You can also review status by clicking the **Zero Touch WinPE x64** image, and then clicking **Content Status** under **Related Objects**, or by entering **\Monitoring\Overview\Distribution Status\Content Status** on the location bar in the console. Click **Zero Touch WinPE x64** under **Content Status** in the console tree and verify that a status of **Successfully distributed content** is displayed on the **Success** tab. +12. In the **Software Library** workspace, double-click **Zero Touch WinPE x64** and then click the **Data Source** tab. +13. Select the **Deploy this boot image from the PXE-enabled distribution point** checkbox, and click **OK**. +14. Review the distmgr.log file again for "**STATMSG: ID=2301**" and verify that there are three folders under **C:\RemoteInstall\SMSImages** with boot images. See the following example: + + ``` + cmd /c dir /s /b C:\RemoteInstall\SMSImages + + C:\RemoteInstall\SMSImages\PS100004 + C:\RemoteInstall\SMSImages\PS100005 + C:\RemoteInstall\SMSImages\PS100006 + C:\RemoteInstall\SMSImages\PS100004\boot.PS100004.wim + C:\RemoteInstall\SMSImages\PS100005\boot.PS100005.wim + C:\RemoteInstall\SMSImages\PS100006\WinPE.PS100006.wim + ``` + + >The first two images (*.wim files) are default boot images. The third is the new boot image with DaRT. + +## Create a Windows 10 reference image + +If you have already completed steps in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) then you have already created a Windows 10 reference image. Copy the reference image file (REFW10-X64-001.wim) from C:\MDTBuildLab\Captures\REFW10X64-001.wim to C:\Sources\OSD\OS\Windows 10 Enterprise x64\REFW10X64-001.wim. + +If you have not yet created a Windows 10 reference image, complete the following steps. + +1. In [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: + + ``` + Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\w10-enterprise.iso + ``` +2. Verify that the Windows Enterprise installation DVD is mounted on SRV1 as drive letter D. + +3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. + +4. In the Deployment Workbench console, right-click **Deployment Shares** and select **New Deployment Share**. + +5. Use the following settings for the New Deployment Share Wizard: + - Deployment share path: **C:\MDTBuildLab**
+ - Share name: **MDTBuildLab$**
+ - Deployment share description: **MDT build lab**
+ - Options: click **Next** to accept the default
+ - Summary: click **Next**
+ - Progress: settings will be applied
+ - Confirmation: click **Finish** + +6. Expand the **Deployment Shares** node, and then expand **MDT build lab**. + +7. Right-click the **Operating Systems** node, and then click **New Folder**. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. + +7. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. + +8. Use the following settings for the Import Operating System Wizard: + - OS Type: **Full set of source files**
+ - Source: **D:\\**
+ - Destination: **W10Ent_x64**
+ - Summary: click **Next** + - Confirmation: click **Finish** + +9. For purposes of this test lab, we will not add applications, such as Microsoft Office, to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. + +10. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node under **MDT Build Lab** and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: + - Task sequence ID: **REFW10X64-001**
+ - Task sequence name: **Windows 10 Enterprise x64 Default Image**
+ - Task sequence comments: **Reference Build**
+ - Template: **Standard Client Task Sequence** + - Select OS: click **Windows 10 Enterprise Evaluation in W10Ent_x64 install.wim** + - Specify Product Key: **Do not specify a product key at this time** + - Full Name: **Contoso** + - Organization: **Contoso** + - Internet Explorer home page: **http://www.contoso.com** + - Admin Password: **Do not specify an Administrator password at this time** + - Summary: click **Next** + - Confirmation: click **Finish** + +11. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. + +12. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. A new group will be added under Tattoo. + +13. On the Properties tab of the group that was created in the previous step, change the Name from New Group to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. To see the name change, click **Tattoo**, then click the new group again. + +14. Click the **Custom Tasks (Pre-Windows Update)** group again, click **Add**, point to **Roles**, and then click **Install Roles and Features**. + +15. Under **Select the roles and features that should be installed**, select **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** and then click **Apply**. + +16. Enable Windows Update in the task sequence by clicking the **Windows Update (Post-Application Installation)** step, clicking the **Options** tab, and clearing the **Disable this step** checkbox. + >Note: Since we are not installing applications in this test lab, there is no need to enable the Windows Update Pre-Application Installation step. However, you should enable this step if you are also installing applications. + +17. Click **OK** to complete editing the task sequence. + +18. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click MDT build lab (C:\MDTBuildLab) and click **Properties**, and then click the **Rules** tab. + +19. Replace the default rules with the following text: + + ``` + [Settings] + Priority=Default + + [Default] + _SMSTSORGNAME=Contoso + UserDataLocation=NONE + DoCapture=YES + OSInstall=Y + AdminPassword=pass@word1 + TimeZoneName=Pacific Standard Time + JoinWorkgroup=WORKGROUP + HideShell=YES + FinishAction=SHUTDOWN + DoNotCreateExtraPartition=YES + ApplyGPOPack=NO + SkipAdminPassword=YES + SkipProductKey=YES + SkipComputerName=YES + SkipDomainMembership=YES + SkipUserData=YES + SkipLocaleSelection=YES + SkipTaskSequence=NO + SkipTimeZone=YES + SkipApplications=YES + SkipBitLocker=YES + SkipSummary=YES + SkipRoles=YES + SkipCapture=NO + SkipFinalSummary=YES + ``` + +20. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: + + ``` + [Settings] + Priority=Default + + [Default] + DeployRoot=\\SRV1\MDTBuildLab$ + UserDomain=CONTOSO + UserID=administrator + UserPassword=pass@word1 + SkipBDDWelcome=YES + ``` + +21. Click **OK** to complete the configuration of the deployment share. + +22. Right-click **MDT build lab (C:\MDTBuildLab)** and then click **Update Deployment Share**. + +23. Accept all default values in the Update Deployment Share Wizard by clicking **Next**. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. + +24. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). + + >Hint: Top copy the file, right-click the **LiteTouchPE_x86.iso** file and click **Copy** on SRV1, then open the **c:\VHD** folder on the Hyper-V host, right-click inside the folder and click **Paste**. + +25. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: + + ``` + New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB + Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20 + Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso + Start-VM REFW10X64-001 + vmconnect localhost REFW10X64-001 + ``` +26. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. + +27. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. + + Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: + + - Install the Windows 10 Enterprise operating system. + - Install added applications, roles, and features. + - Update the operating system using Windows Update (or WSUS if optionally specified). + - Stage Windows PE on the local disk. + - Run System Preparation (Sysprep) and reboot into Windows PE. + - Capture the installation to a Windows Imaging (WIM) file. + - Turn off the virtual machine. + + This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host and your network's download speed. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on SRV1. The file name is **REFW10X64-001.wim**. + +## Add a Windows 10 operating system image + +1. Type the following commands at an elevated Windows PowerShell prompt on SRV1: + + ``` + New-Item -ItemType Directory -Path "C:Sources\OSD\OS\Windows 10 Enterprise x64" + cmd /c copy /z "C:\MDTBuildLab\Captures\REFW10X64-001.wim" "C:\Sources\OSD\OS\Windows 10 Enterprise x64" + ``` + +2. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Operating System Images**, and then click **Add Operating System Image**. + +3. On the Data Source page, under **Path:**, type **\\SRV1\Sources$\OSD\OS\Windows 10 Enterprise x64\REFW10X64-001.wim**, and click **Next**. + +4. On the General page, next to **Name:**, type **Windows 10 Enterprise x64**, click **Next** twice, and then click **Close**. + +5. Distribute the operating system image to the SRV1 distribution point by right-clicking the **Windows 10 Enterprise x64** operating system image and then clicking **Distribute Content**. + +6. In the Distribute Content Wizard, click **Next**, click **Add**, click **Distribution Point**, add the **SRV1.CONTOSO.COM** distribution point, click **OK**, click **Next** twice and then click **Close**. + +7. Enter **\Monitoring\Overview\Distribution Status\Content Status** on the location bar, click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. + +## Create a task sequence + +1. In the Configuration Manager console, in the **Software Library** workspace expand **Operating Systems**, right-click **Task Sequences**, and then click **Create MDT Task Sequence**. + +2. On the Choose Template page, select the **Client Task Sequence** template and click **Next**. + +3. On the General page, type **Windows 10 Enterprise x64** under **Task sequence name:** and then click **Next**. + +4. On the Details page, enter the following settings:
+ - Join a domain: contoso.com
+ - Account: click **Set**
+ - User name: contoso\administrator
+ - Password: pass@word1
+ - Confirm password: pass@word1
+ - Click **OK**
+ - Windows Settings
+ - User name: Contoso
+ - Organization name: Contoso
+ - Product key: \
+ - Administrator Account: Enable the account and specify the local administrator password
+ - Password: pass@word1
+ - Confirm password: pass@word1
+ - Click Next
+ +5. On the Capture Settings page, accept the default settings and click **Next**. + +6. On the Boot Image page, browse and select the **Zero Touch WinPE x64** boot image package and then click **Next**. + +7. On the MDT Package page, select **Create a new Microsoft Deployment Toolkit Files package**, under **Package source folder to be created (UNC Path):**, type **\\SRV1\Sources$\OSD\MDT\MDT 2013**, and then click **Next**. + +8. On the MDT Details page, next to **Name:** type **MDT 2013** and then click **Next**. + +9. On the OS Image page, browse and select the **Windows 10 Enterprise x64** package, and then click **Next**. + +10. On the Deployment Method page, accept the default settings and click **Next**. + +11. On the Client Package page, browse and select the **Microsoft Corporation Configuration Manager Client package** and then click **Next**. + +12. On the USMT Package page, browse and select the **Microsoft Corporation User State Migration Tool for Windows 8 10.0.14393.0** package, and then click **Next**. + +13. On the Settings Package page, select **Create a new settings package**, and under **Package source folder to be created (UNC Path):**, type \\SRV1\Sources$\OSD\Settings\Windows 10 x64 Settings, and then click **Next**. + +14. On the Settings Details page, next to **Name:**, type **Windows 10 x64 Settings**, and click **Next**. + +15. On the Sysprep Package page, click **Next** twice. + +16. On the Confirmation page, click **Finish**. + +## Edit the task sequence + +1. In the Configuration Manager console, in the Software Library workspace, click Task Sequences, right-click Windows 10 Enterprise x64, and then click Edit. + +2. Scroll down to the Install group and click Set Variable for Drive Letter. + +3. Change the Value under OSDPreserveDriveLetter from False to True, and click Apply. + +4. In the **State Restore** group, click **Set Status 5**, click **Add**, point to **User State**, and click **Request State Store**. This adds a new action immediately after **Set Status 5**. + +5. Configure the **Request State Store** action that was just added with the following settings:
+ - Request state storage location to: **Restore state from another computer**
+ - Select the **If computer account fails to connect to state store, use the Network Access account** checkbox.
+ - Options tab: Select the **Continue on error** checkbox.
+ - Add Condition: **Task Sequence Variable**:
+ - Variable: **USMTLOCAL**
+ - Condition: **not equals**
+ - Value: **True**
+ - Click **OK**.
+ - Click **Apply**
. + +6. In the **State Restore** group, click **Restore User State**, click **Add**, point to **User State**, and click **Release State Store**. + +7. Configure the **Release State Store** action that was just added with the following settings:
+ - Options tab: Select the **Continue on error** checkbox.
+ - Add Condition: **Task Sequence Variable**:
+ - Variable: **USMTLOCAL**
+ - Condition: **not equals**
+ - Value: **True**
+ - Click **OK**.
+ - Click **OK**
. + + +## Finalize the operating system configuration + +1. In the MDT deployment workbench on SRV1, right-click **Deployment Shares** and then click **New Deployment Share**. + +2. Use the following settings for the New Deployment Share Wizard: + - Deployment share path: **C:\MDTProduction**
+ - Share name: **MDTProduction$**
+ - Deployment share description: **MDT Production**
+ - Options: click **Next** to accept the default
+ - Summary: click **Next**
+ - Progress: settings will be applied
+ - Confirmation: click **Finish** + +3. Right-click the **MDT Production** deployment share, and click **Properties**. + +4. Click the **Monitoring** tab, select the **Enable monitoring for this deployment share** checkbox, and then click **OK**. + +5. Type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + notepad "C:\Sources\OSD\Settings\Windows 10 x64 Settings\CustomSettings.ini" + ``` +6. Replace the contents of the file with the following text: + + ``` + [Settings] + Priority=Default + Properties=OSDMigrateConfigFiles,OSDMigrateMode + + [Default] + DoCapture=NO + ComputerBackupLocation=NONE + MachineObjectOU=ou=Workstations,ou=Computers,ou=Contoso,dc=contoso,dc=com + OSDMigrateMode=Advanced + OSDMigrateAdditionalCaptureOptions=/ue:*\* /ui:CONTOSO\* + OSDMigrateConfigFiles=Miguser.xml,Migapp.xml + SLSHARE=\\SRV1\Logs$ + EventService=http://SRV1:9800 + ApplyGPOPack=NO + ``` +7. In the Software Library workspace, expand **Application Management**, click **Packages**, right-click **Windows 10 x64 Settings**, and then click **Update Distribution Points**. Click **OK** in the popup that appears. + +8. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Distribute Content**. + +9. In the Distribute Content Wizard, click **Next**, click **Add**, click **Distribution Point**, add the **SRV1.CONTOSO.COM** distribution point, click **OK**, click **Next** twice and then click **Close**. + +10. Enter **\Monitoring\Overview\Distribution Status\Content Status** on the location bar, click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. + +## Create a deployment for the task sequence + +1. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Deploy**. + +2. On the General page, next to **Collection**, click **Browse** and select the **All Unknown Computers** collection, then click **Next**. + +3. On the Deployment Settings page, use the following settings:
+ - Purpose: Available
+ - Make available to the following: Only media and PXE
+ - Click Next.
+4. Click **Next** five times to accept defaults on the Scheduling, User Experience, Alerts, and Distribution Points pages. + +5. Click **Close**. + +## Deploy Windows 10 using PXE and Configuration Manager + +1. Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + New-VM –Name "PC3" –NewVHDPath "c:\vhd\pc3.vhdx" -NewVHDSizeBytes 40GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 + Set-VMMemory -VMName "PC3" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 + Start-VM PC3 + vmconnect localhost PC3 + ``` +2. Press ENTER when prompted to start the network boot service. + +3. In the Task Sequence Wizard, provide the password: pass@word1, and then click Next. + +4. The Windows 10 Enterprise x64 task sequence is selected, click Next. + +- ok I have an error that PS100001 cannot be located on a distribution point. +- I tried going to content status and this seems to bhe the USMT and it says it is successfully distributed +- I tried software library, boot images, and distribute these - this didn't help +- I tried software library, application management, packages, distribute content but the distributon point isn't showing up. This is likely the problem. + +## Related Topics + +  + +  + + + + + diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md new file mode 100644 index 0000000000..b0ae64f27e --- /dev/null +++ b/windows/deploy/windows-10-poc.md @@ -0,0 +1,683 @@ +--- +title: Deploy Windows 10 in a test lab (Windows 10) +description: Concepts and procedures for deploying Windows 10 in a proof of concept lab environment. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: deploy +author: greg-lindsay +--- + +# Step by step guide: Deploy Windows 10 in a test lab + +**Applies to** + +- Windows 10 + +If you are interested in upgrading to Windows 10 and want to know more about the upgrade process, then keep reading... + +Do you have a computer running Windows 8 or later with 16GB of RAM? If so, then you have everything you need to set up a Windows 10 test lab. You can even clone computers from your network and see exactly what happens when they are upgraded to Windows 10. + +## In this guide + +This guide provides step-by-step instructions for configuring a proof of concept (PoC) environment where you can deploy Windows 10. The PoC enviroment is configured using Hyper-V and a minimum amount of resources. Simple to use Windows PowerShell commands are provided for setting up the test lab. + +The following topics and procedures are provided in this guide: + +- [Hardware and software requirements](#hardware-and-software-requirements): Prerequisites to complete this guide.
+- [Lab setup](#lab-setup): A description and diagram of the PoC environment that is configured.
+- [Configure the PoC environment](#configure-the-poc-environment): Step by step guidance for the following procedures: + - [Verify support and install Hyper-V](#verify-support-and-install-hyper-v): Verify that installation of Hyper-V is supported, and install the Hyper-V server role. + - [Download VHD and ISO files](#download-vhd-and-iso-files): Download evaluation versions of Windows Server 2012 R2 and Windows 10 and prepare these files to be used on the Hyper-V host. + - [Convert PC to VHD](#convert-pc-to-vhd): Convert a physical computer on your network to a VHDX file and prepare it to be used on the Hyper-V host. + - [Resize VHD](#resize-vhd): Increase the storage capacity for one of the Windows Server VMs. + - [Configure Hyper-V](#configure-hyper-v): Create virtual switches, determine available RAM for virtual machines, and add virtual machines. + - [Configure VHDs](#configure-vhds): Start virtual machines and configure all services and settings. + +The following optional topics are also available: +- [Appendix A: Configuring Hyper-V on Windows Server 2008 R2](#appendix-a-configuring-hyper-v-on-windows-server-2008-r2): Information about using this guide with a Hyper-V host running Windows Server 2008 R2. +- [Appendix B: Verify the configuration](#appendix-b-verify-the-configuration): Verify and troubleshoot network connectivity and services in the PoC environment. + +When you have completed the steps in this guide, see the following topics for step by step instructions to deploy Windows 10 using the PoC environment under common scenarios with current deployment tools: + +- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md) +- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) + +## Hardware and software requirements + +One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. + +The second computer is used to clone and mirror a client computer (computer 2) from your corporate network to the POC environment. Alternatively, you can use an arbitrary VM to represent this computer, therefore this computer is not required to complete the lab. + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
**Computer 1** (required)**Computer 2** (recommended)
RoleHyper-V hostClient computer
DescriptionThis computer will run Hyper-V, the Hyper-V management tools, and the Hyper-V Windows PowerShell module.This computer is a Windows 7 or Windows 8/8.1 client on your corporate network that will be converted to a VHD for upgrade demonstration purposes.
OSWindows 8/8.1/10 or Windows Server 2012/2012 R2/2016*Windows 7 or a later
EditionEnterprise, Professional, or EducationAny
Architecture64-bitAny
RAM8 GB RAM (16 GB recommended)Any
Disk50 GB available hard disk space (100 GB recommended)Any
CPUSLAT-Capable CPUAny
NetworkInternet connectionAny
+ +>Retaining applications and settings during the upgrade process requires that architecture (32 or 64-bit) is the same before and after the upgrade. + +*The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. The performance and features of the Hyper-V role are also much improved on later operating systems. If your host must be running Windows Server 2008 R2, see [Appendix A: Configuring Hyper-V settings on 2008 R2](#appendix-a-configuring-hyper-v-on-windows-server-2008-r2). + +The Hyper-V role cannot be installed on Windows 7 or earlier versions of Windows. + +## Lab setup + +- The Hyper-V host computer (computer 1) is configured to host four VMs on a private, proof of concept network. + - Two VMs are running Windows Server 2012 R2 with required network services and tools installed. + - Two VMs are client systems: One VM is intended to mirror a host on your corporate network (computer 2) and one VM is running Windows 10 Enterprise to demonstrate the hardware replacement scenario. +- Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. + +The lab architecture is summarized in the following diagram: + +![PoC](images/poc.png) + +**Note**: +>If you have an existing Hyper-V host, you can use this host if desired and skip the Hyper-V installation section in this guide. + +>The two Windows Server VMs can be combined into a single VM to conserve RAM and disk space if required. However, instructions in this guide assume two server systems are used. Using two servers enables Active Directory Domain Services and DHCP to be installed on a server that is not directly connected to the corporate network. This mitigates the risk of clients on the corporate network receiving DHCP leases from the PoC network (i.e. "rogue" DHCP), and limits NETBIOS service broadcasts. + +## Configure the PoC environment + +### Procedures in this section + +[Verify support and install Hyper-V](#verify-support-and-install-hyper-v)
+[Download VHD and ISO files](#download-vhd-and-iso-files)
+[Convert PC to VHD](#convert-pc-to-vhd)
+[Resize VHD](#resize-vhd)
+[Configure Hyper-V](#configure-hyper-v)
+[Convert PC to VHD](#convert-pc-to-vhd)
+[Configure VHDs](#configure-vhds)
+ +### Verify support and install Hyper-V + +1. Verify that the computer supports Hyper-V. + + Starting with Windows 8, the host computer’s microprocessor must support second level address translation (SLAT) to install Hyper-V. See [Hyper-V: List of SLAT-Capable CPUs for Hosts](http://social.technet.microsoft.com/wiki/contents/articles/1401.hyper-v-list-of-slat-capable-cpus-for-hosts.aspx) for more information. To verify your computer supports SLAT, open an administrator command prompt, type systeminfo, press ENTER, and review the section displayed at the bottom of the output, next to Hyper-V Requirements. + + See the following example: + + ``` + C:\>systeminfo + ... + Hyper-V Requirements: VM Monitor Mode Extensions: Yes + Virtualization Enabled In Firmware: Yes + Second Level Address Translation: Yes + Data Execution Prevention Available: Yes + ``` + In this example, the computer supports SLAT and Hyper-V. + + If one or more requirements are evaluated as "No" then the computer does not support installing Hyper-V. However, if only the virtualization setting is incompatible, you might be able to enable virtualization in the BIOS and change the "Virtualization Enabled In Firmware" setting from "No" to "Yes." The location of this setting will depend on the manufacturer and BIOS version, but is typically found associated with the BIOS security settings. + + You can also identify Hyper-V support using [tools](https://blogs.msdn.microsoft.com/taylorb/2008/06/19/hyper-v-will-my-computer-run-hyper-v-detecting-intel-vt-and-amd-v/) provided by the processor manufacturer, the [msinfo32](https://technet.microsoft.com/en-us/library/cc731397.aspx) tool, or you can download the [coreinfo](http://technet.microsoft.com/en-us/sysinternals/cc835722) utility and run it, as shown in the following example: + + ``` + C:\>coreinfo -v + + Coreinfo v3.31 - Dump information on system CPU and memory topology + Copyright (C) 2008-2014 Mark Russinovich + Sysinternals - www.sysinternals.com + + Intel(R) Core(TM) i7-2600 CPU @ 3.40GHz + Intel64 Family 6 Model 42 Stepping 7, GenuineIntel + Microcode signature: 0000001B + HYPERVISOR - Hypervisor is present + VMX * Supports Intel hardware-assisted virtualization + EPT * Supports Intel extended page tables (SLAT) + ``` + + Note: A 64-bit operating system is requried to run Hyper-V. + +2. Enable Hyper-V. + + The Hyper-V feature is not installed by default. To install it, open an elevated Windows PowerShell window and type the following command: + + ``` + Enable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V –All + ``` + When you are prompted to restart the computer, choose Yes. The computer might restart more than once. + + You can also install Hyper-V using the Control Panel in Windows under **Turn Windows features on or off** (client OS), or using Server Manager's **Add Roles and Features Wizard** (server OS), as shown below: + + ![hyper-v feature](images/hyper-v-feature.png) + + ![hyper-v](images/svr_mgr2.png) + +### Download VHD and ISO files + +1. Create a directory on your Hyper-V host named C:\VHD and download a single [Windows Server 2012 R2 VHD](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2012-r2) from the TechNet Evaluation Center to the C:\VHD directory. + + **Important**: This guide assumes that VHDs are stored in the **C:\VHD** directory on the Hyper-V host. If you use a different directory to store VHDs, you must adjust steps in this guide appropriately. + + After completing registration you will be able to download the 7.47 GB Windows Server 2012 R2 evaluation VHD. + + ![VHD](images/download_vhd.png) + +2. Rename the VHD file that you downloaded to **2012R2-poc-1.vhd**. This is not required, but is done to make the filename simpler to recognize. +3. Copy the VHD to a second file also in the C:\VHD directory and name this VHD **2012R2-poc-2.vhd**. +4. Download the [Windows 10 Enterprise ISO](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-10-enterprise) from the TechNet Evaluation Center to the C:\VHD directory on your Hyper-V host. During registration, you must specify the type, version, and language of installation media to download. In this example, a Windows 10 Enterprise, 64 bit, English VHD is chosen. You can choose a different version if desired. Note that Windows 10 in-place upgrade is only possible if the source operating system and installation media are both 32-bit or both 64-bit, so you should download the file version that corresponds to the version of your source computer for upgrade testing. +5. Rename the ISO file that you downloaded to **w10-enterprise.iso**. Again, this is done so that the filename is simpler to type and recognize. After completing registration you will be able to download the 3.63 GB Windows 10 Enterprise evaluation ISO. + + The following commands and output display the procedures described in this section: + + ``` + C:\>mkdir VHD + + C:\>cd VHD + + C:\VHD>ren 9600*.vhd 2012R2-poc-1.vhd + + C:\VHD>copy 2012R2-poc-1.vhd 2012R2-poc-2.vhd + 1 file(s) copied. + + C:\VHD ren *.iso w10-enterprise.iso + C:\VHD>dir /B + 2012R2-poc-1.vhd + 2012R2-poc-2.vhd + w10-enterprise.iso + ``` + +### Convert PC to VHD + +**Important**:Before you convert a PC to VHD, verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. + +>For purposes of the test lab, you must use a PC with a single hard drive that is assigned a drive letter of C:. Systems with multiple hard drives or non-standard configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than those used in this lab. + +1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy disk2vhd.exe to a flash drive or other location that is accessible from the computer you wish to convert. + >Note: You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media. +2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. +3. Select checkboxes next to the volumes you wish to copy and specify a location to save the resulting VHD or VHDX file. If your Hyper-V host is running Windows Server 2008 R2 you must choose VHD, otherwise choose VHDX. +4. Click **Create** to start creating a VHDX file. + + >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. + +5. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (w7.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: + + ``` + C:\vhd>dir /B + 2012R2-poc-1.vhd + 2012R2-poc-2.vhd + w10-enterprise.iso + w7.VHDX + ``` +### Resize VHD + +The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 80GB to support installing imaging tools and storing OS images. + +1. To add available space for the partition, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Resize-VHD –Path c:\VHD\2012R2-poc-2.vhd –SizeBytes 80GB + $x = (Mount-VHD –Path c:\VHD\2012R2-poc-2.vhd -passthru | Get-Disk | Get-Partition | Get-Volume).DriveLetter + Resize-Partition -DriveLetter $x -Size (Get-PartitionSupportedSize -DriveLetter $x).SizeMax + ``` + +2. Verify that the mounted VHD drive is resized to 80 GB, and then dismount the drive: + + ``` + Get-Volume -DriveLetter $x + Dismount-VHD –Path c:\VHD\2012R2-poc-2.vhd + ``` + +### Configure Hyper-V + +Note: The Hyper-V Windows PowerShell module is not available on Windows Server 2008 R2. For more information, see [Appendix A: Configuring Hyper-V settings on 2008 R2](#appendix-a-configuring-hyper-v-on-windows-server-2008-r2). + +**Important**:You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy, then right-clicking and selecting paste. + +Instructions to "type" commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. + +1. Open an elevated Windows PowerShell window and type the following command to create two virtual switches named "poc-internal" and "poc-external": + >If the Hyper-V host already has an external virtual switch bound to a physical NIC, do not attempt to add a second external virtual switch. Attempting to add a second external switch will result in an error indicating that the NIC is "**already bound to the Microsoft Virtual Switch protocol.**" In this case, choose one of the following options:
+    a) Remove the existing external virtual switch, then add the poc-external switch
+    b) Rename the existing external switch to "poc-external"
+    c) Replace each instance of "poc-external" used in this guide with the name of your existing external virtual switch
+ If you choose b) or c), then do not run the second command below. + + ``` + New-VMSwitch -Name poc-internal -SwitchType Internal -Notes "PoC Network" + New-VMSwitch -Name poc-external -NetAdapterName (Get-NetAdapter |?{$_.Status -eq "Up" -and $_.NdisPhysicalMedium -eq 14}).Name -Notes "PoC External" + ``` + >Also, since an external virtual switch is associated to a physical network adapter on the Hyper-V host, this adapter must be specified when adding the virtual switch. This is automated in the example here by filtering for active ethernet adapters using the Get-NetAdapter cmdlet. If your Hyper-V host has multiple active ethernet adapters, this automation will not work, and the second command above will fail. In this case, you must edit the command used to add the "poc-external" virtual switch by inserting the specific value needed for the -NetAdapterName option. This value corresponds to the name of the network interface you wish to use. + +2. At the elevated Windows PowerShell prompt, type the following command to determine the megabytes of RAM that are currently available on the Hyper-V host: + + ``` + (Get-Counter -Counter @("\Memory\Available MBytes")).countersamples.cookedvalue + ``` + >This command will display the megabytes of RAM available. On a Hyper-V host computer with 16 GB of physical RAM installed, 12,000 MB of RAM or greater should be available if the computer is not also running other applications. If the computer has less than 12,000 MB of available RAM, try closing applications to free up more memory. + +3. Determine the available memory for VMs by dividing the available RAM by 4. For example: + + ``` + (Get-Counter -Counter @("\Memory\Available MBytes")).countersamples.cookedvalue/4 + 2775.5 + ``` + In this example, VMs can use a maximum of 2700 MB of RAM each, to run four VMs simultaneously. + +4. At the elevated Windows PowerShell prompt, type the following command to create three new VMs. The fourth VM will be added later. + >**Important**: Replace the value of 2700MB in the first command below with the RAM value that you calculated in the previous step: + + ``` + $maxRAM = 2700MB + New-VM –Name "DC1" –VHDPath c:\vhd\2012R2-poc-1.vhd -SwitchName poc-internal + Set-VMMemory -VMName "DC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20 + Enable-VMIntegrationService –Name "Guest Service Interface" -VMName DC1 + New-VM –Name "SRV1" –VHDPath c:\vhd\2012R2-poc-2.vhd -SwitchName poc-internal + Add-VMNetworkAdapter -VMName "SRV1" -SwitchName "poc-external" + Set-VMMemory -VMName "SRV1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 80 + Enable-VMIntegrationService –Name "Guest Service Interface" -VMName SRV1 + New-VM –Name "PC1" –VHDPath c:\vhd\w7.vhdx -SwitchName poc-internal + Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20 + Enable-VMIntegrationService –Name "Guest Service Interface" -VMName PC1 + ``` + +### Configure VHDs + +1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first VM by typing the following command: + + ``` + Start-VM DC1 + ``` +2. Wait for the VM to complete starting up, and then connect to it either using the Hyper-V Manager console (virtmgmt.msc) or using an elevated command prompt on the Hyper-V host: + + ``` + vmconnect localhost DC1 + ``` +3. Click **Next** to accept the default settings, read the license terms and click **I accept**, provide an administrator password of **pass@word1**, and click **Finish**. +4. Sign in to DC1 using the local administrator account. Right-click **Start**, point to **Shut down or sign out**, and click **Sign out**. The VM connection will reset and a new connection dialog box will appear enabling you to choose a custom display configuration. Select a desktop size, click **Connect** and sign in with the local Administrator account. Note: Signing in this way ensures that [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) is enabled. It is only necessary to do this the first time you sign in to a new VM. +5. If DC1 is configured as described in this guide, it will currently be assigned an APIPA address, have a randomly generated hostname, and a single network adapter named "Ethernet." Open an elevated Windows PowerShell prompt on DC1 and type or paste the following commands to provide a new hostname and configure a static IP address and gateway: + + ``` + Rename-Computer DC1 + New-NetIPAddress –InterfaceAlias Ethernet –IPAddress 192.168.0.1 –PrefixLength 24 -DefaultGateway 192.168.0.2 + Set-DnsClientServerAddress -InterfaceAlias Ethernet -ServerAddresses 192.168.0.1,192.168.0.2 + ``` + >The default gateway at 192.168.0.2 will be configured later in this guide. +6. Install the Active Directory Domain Services role by typing the following command at an elevated Windows PowerShell prompt: + + ``` + Install-WindowsFeature -Name AD-Domain-Services -IncludeAllSubFeature -IncludeManagementTools + ``` + +7. Before promoting DC1 to a Domain Controller, you must reboot so that the name change in step 3 above takes effect. To restart the computer, type the following command at an elevated Windows PowerShell prompt: + + ``` + Restart-Computer + ``` + +8. When DC1 has rebooted, sign in again and open an elevated Windows PowerShell prompt. Now you can promote the server to be a domain controller. The directory services restore mode password must be entered as a secure string: + + ``` + $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force + Install-ADDSForest -DomainName contoso.com -InstallDns -SafeModeAdministratorPassword $pass -Force + ``` + Ignore any warnings that are displayed. The computer will automatically reboot upon completion. +9. When the reboot has completed, reconnect to DC1, sign in using the CONTOSO\Administrator account, open an elevated Windows PowerShell prompt, and use the following commands to add a reverse lookup zone for the PoC network, add the DHCP Server role, authorize DHCP in Active Directory, and supress the post-DHCP-install alert: + + ``` + Add-DnsServerPrimaryZone -NetworkID "192.168.0.0/24" -ReplicationScope Forest + Add-WindowsFeature -Name DHCP -IncludeManagementTools + netsh dhcp add securitygroups + Restart-Service DHCPServer + Add-DhcpServerInDC dc1.contoso.com 192.168.0.1 + Set-ItemProperty –Path registry::HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ServerManager\Roles\12 –Name ConfigurationState –Value 2 + ``` +10. Next, add a DHCP scope and set option values: + + ``` + Add-DhcpServerv4Scope -Name "PoC Scope" -StartRange 192.168.0.100 -EndRange 192.168.0.199 -SubnetMask 255.255.255.0 -Description "Windows 10 PoC" -State Active + Set-DhcpServerv4OptionValue -ScopeId 192.168.0.0 -DnsDomain contoso.com -Router 192.168.0.2 -DnsServer 192.168.0.1,192.168.0.2 -Force + ``` + >The -Force option is necessary when adding scope options to skip validation of 192.168.0.2 as a DNS server because we have not configured it yet. The scope should immediately begin issuing leases on the PoC network. The first DHCP lease that will be issued is to vEthernet interface on the Hyper-V host, which is a member of the internal network. +11. Add a user account to the contoso.com domain that can be used with client computers: + + ``` + New-ADUser -Name "User1" -UserPrincipalName user1 -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true + ``` +12. The DNS server role will also be installed on the member server, SRV1, at 192.168.0.2 so that we can forward DNS queries from DC1 to SRV1 to resolve Internet names without having to configure a forwarder outside the PoC network. Since the IP address of SRV1 already existed on DC1's network adapter, it will be automatically added during the DCPROMO process. To verify this server-level DNS forwarder on DC1, type the following command at an elevated Windows PowerShell prompt on DC1: + + ``` + Get-DnsServerForwarder + ``` + The following output should be displayed: + ``` + UseRootHint : True + Timeout(s) : 3 + EnableReordering : True + IPAddress : 192.168.0.2 + ReorderedIPAddress : 192.168.0.2 + ``` + If this output is not displayed, you can use the following command to add SRV1 as a forwarder: + ``` + Add-DnsServerForwarder -IPAddress 192.168.0.2 + ``` +13. Minimize the DC1 VM window but **do not stop** the VM. + + Next, the client VM will be started and joined to the contoso.com domain. This is done before adding a gateway to the PoC network so that there is no danger of duplicate DNS registrations for the physical client and its cloned VM in the corporate domain. + +14. Using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it: + ``` + Start-VM PC1 + vmconnect localhost PC1 + ``` +15. Sign on to PC1 using an account that has local administrator rights. + + >PC1 will be disconnected from its current domain, so you cannot use a domain account to sign on unless these credentials are cached and the use of cached credentials is permitted by Group Policy. If cached credentials are available and permitted, you can use these credentials to sign in. Otherwise, use an existing local administrator account. +16. After signing in, the operating system detects that it is running in a new environment. New drivers will be automatically installed, including the network adapter driver. The network adapter driver must be updated before you can proceed, so that you will be able to join the contoso.com domain. Depending on the resources allocated to PC1, installing the network adapter driver might take a few minutes. + + ![PoC](images/installing-drivers.png) + + >If the client was configured with a static address, you must change this to a dynamic one so that it can obtain a DHCP lease. + +17. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. +18. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. + + To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." + + ``` + ipconfig + + Windows IP Configuration + + Ethernet adapter Local Area Connection 3: + Connection-specific DNS Suffix . : contoso.com + Link-local IPv6 Address . . . . . : fe80::64c2:4d2a:7403:6e02%18 + Ipv4 Address. . . . . . . . . . . : 192.168.0.101 + Subnet Mask . . . . . . . . . . . : 255.255.255.0 + Default Gateway . . . . . . . . . : 192.168.0.2 + + ping dc1.contoso.com + + Pinging dc1.contoso.com [192.168.0.1] with 32 bytes of data: + Reply from 192.168.0.1: bytes=32 time<1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time<1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time<1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time<1ms TTL=128 + + nltest /dsgetdc:contoso.com + DC: \\DC1 + Address: \\192.168.0.1 + Dom Guid: fdbd0643-d664-411b-aea0-fe343d7670a8 + Dom Name: CONTOSO + Forest Name: contoso.com + Dc Site Name: Default-First-Site-Name + Our Site Name: Default-First-Site-Name + Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000 + ``` +>If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. + +19. Open an elevated Windows PowerShell ISE window on the Hyper-V host and type the following commands in the (upper) script editor pane: + + ``` + (Get-WmiObject Win32_ComputerSystem).UnjoinDomainOrWorkgroup($null,$null,0) + $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force + $user = "contoso\administrator" + $cred = New-Object System.Management.Automation.PSCredential($user,$pass) + Add-Computer -DomainName contoso.com -Credential $cred + Restart-Computer + ``` +20. Click **File**, click **Save As**, and save the commands as **c:\VHD\ps1.ps1** on the Hyper-V host. +21. In the (lower) terminal input window, type the following command to copy the script to PC1 using integration services: + + ``` + Copy-VMFile "PC1" –SourcePath "C:\VHD\pc1.ps1" –DestinationPath "C:\pc1.ps1" –CreateFullPath –FileSource Host + ``` + >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. +22. On PC1, type the following commands at an elevated Windows PowerShell prompt: + + ``` + Get-Content c:\pc1.ps1 | powershell.exe -noprofile - + ``` + + >PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. We have not also renamed PC1 to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer. + +23. After PC1 restarts, sign in to the contoso.com domain with the (user1) account you created in step 11 of this section. + >The settings that will be used to migrate user data specifically select only accounts that belong to the CONTOSO domain. If you wish to test migration of user data and settings with an account other than the user1 account, you must copy this account's profile to the user1 profile. +24. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. +25. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands: + + ``` + Start-VM SRV1 + vmconnect localhost SRV1 + ``` +26. Accept the default settings, read license terms and accept them, provide an administrator password of **pass@word1**, and click **Finish**. When you are prompted about finding PCs, devices, and content on the network, click **Yes**. +27. Sign in to SRV1 using the local administrator account. In the same way that was done on DC1, sign out of SRV1 and then sign in again to enable enhanced session mode. This will enable you to copy and paste Windows PowerShell commands from the Hyper-V host to the VM. +28. Open an elevated Windows PowerShell prompt on SRV1 and type the following commands: + + ``` + Rename-Computer SRV1 + New-NetIPAddress –InterfaceAlias Ethernet –IPAddress 192.168.0.2 –PrefixLength 24 + Set-DnsClientServerAddress -InterfaceAlias Ethernet -ServerAddresses 192.168.0.1,192.168.0.2 + Restart-Computer + ``` +29. Wait for the computer to restart, then type or paste the following commands at an elevated Windows PowerShell prompt: + + ``` + $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force + $user = "contoso\administrator" + $cred = New-Object System.Management.Automation.PSCredential($user,$pass) + Add-Computer -DomainName contoso.com -Credential $cred + Restart-Computer + ``` +30. Sign in to the contoso.com domain on SRV1 using the domain administrator account (enter contoso\administrator as the user), open an elevated Windows PowerShell prompt, and type the following commands: + + ``` + Install-WindowsFeature -Name DNS -IncludeManagementTools + Install-WindowsFeature -Name WDS -IncludeManagementTools + Install-WindowsFeature -Name Routing -IncludeManagementTools + ``` +31. Before configuring the routing service that was just installed, verify that network interfaces were added to SRV1 in the right order, resulting in an interface alias of "Ethernet" for the private interface, and an interface alias of "Ethernet 2" for the public interface. Also verify that the external interface has a valid external DHCP IP address lease. + + To view a list of interfaces, associated interface aliases, and IP addresses on SRV1, type the following Windows PowerShell command. Example output of the command is also shown below: + + ``` + Get-NetAdapter | ? status -eq ‘up’ | Get-NetIPAddress -AddressFamily IPv4 | ft IPAddress, InterfaceAlias + + IPAddress InterfaceAlias + --------- -------------- + 10.137.130.118 Ethernet 2 + 192.168.0.2 Ethernet + ``` + In this example, the poc-internal network interface at 192.168.0.2 is associated with the "Ethernet" interface and the Internet-facing poc-external interface is associated with the "Ethernet 2" interface. If your interfaces are different, you must adjust the commands provided in the next step appropriately to configure routing services. + +32. To configure SRV1 with routing capability for the PoC network, type or paste the following commands at an elevated Windows PowerShell prompt on SRV1: + + ``` + Install-RemoteAccess -VpnType Vpn + cmd /c netsh routing ip nat install + cmd /c netsh routing ip nat add interface name="Ethernet 2" mode=FULL + cmd /c netsh routing ip nat add interface name="Ethernet" mode=PRIVATE + cmd /c netsh routing ip nat add interface name="Internal" mode=PRIVATE + ``` +33. The DNS service on SRV1 also needs to resolve hosts in the contoso.com domain. This can be accomplished with a conditional forwarder. Open an elevated Windows PowerShell prompt on SRV1 and type the following command: + + ``` + Add-DnsServerConditionalForwarderZone -Name contoso.com -MasterServers 192.168.0.1 + ``` +34. In most cases, this completes configuration of the PoC network. However, if your corporate network has a firewall that filters queries from local DNS servers, you will also need to configure a server-level DNS forwarder on SRV1 to resolve Internet names. To test whether or not DNS is working without this forwarder, try to reach a name on the Internet from DC1 or PC1, which are only using DNS services on the PoC network. You can test DNS with the ping command, for example: + + ``` + ping www.microsoft.com + ``` + If you see "Ping request could not find host www.microsoft.com" on PC1 and DC1, but not on SRV1, then you will need to configure a server-level DNS forwarder on SRV1. To do this, open an elevated Windows PowerShell prompt on SRV1 and type the following command. + + **Note**: This command also assumes that "Ethernet 2" is the external-facing network adapter on SRV1. If the external adapter has a different name, replace "Ethernet 2" in the command below with that name: + + ``` + Add-DnsServerForwarder -IPAddress (Get-DnsClientServerAddress -InterfaceAlias "Ethernet 2").ServerAddresses + ``` +35. If DNS and routing are both working correctly, you will see the following on DC1 and PC1: + + ``` + PS C:\> ping www.microsoft.com + + Pinging e2847.dspb.akamaiedge.net [23.222.146.170] with 32 bytes of data: + Reply from 23.222.146.170: bytes=32 time=3ms TTL=51 + Reply from 23.222.146.170: bytes=32 time=2ms TTL=51 + Reply from 23.222.146.170: bytes=32 time=2ms TTL=51 + Reply from 23.222.146.170: bytes=32 time=1ms TTL=51 + + Ping statistics for 23.222.146.170: + Packets: Sent = 4, Received = 4, Lost = 0 (0% loss), + Approximate round trip times in milli-seconds: + Minimum = 1ms, Maximum = 3ms, Average = 2ms + ``` +36. Verify that all three VMs can reach each other, and the Internet. See [Appendix B: Verify the configuration](#appendix-b-verify-the-configuration) for more information. +37. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1: + + ``` + slmgr -rearm + Restart-Computer + ``` + +## Appendix A: Configuring Hyper-V on Windows Server 2008 R2 + +If your Hyper-V host is running Windows Server 2008 R2, several of the steps in this guide will not work because they use the Hyper-V Module for Windows PowerShell, which is not available on Windows Server 2008 R2. + +To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. + +An example that uses Hyper-V WMI to create a virtual switch on Windows Server 2008 R2 is provided below. Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyond the scope of the guide. If you must use a Hyper-V host running Windows Server 2008 R2, the steps in the guide can be accomplished by using the Hyper-V Manager console. + +``` +$SwitchFriendlyName = "poc-internal" +$InternalEthernetPortFriendlyName = $SwitchFriendlyName +$InternalSwitchPortFriendlyName = "poc" +$SwitchName = [guid]::NewGuid().ToString() +$InternalSwitchPortName = [guid]::NewGuid().ToString() +$InternalEthernetPortName = [guid]::NewGuid().ToString() +$NumLearnableAddresses = 1024 +$ScopeOfResidence = "" +$VirtualSwitchManagementService = gwmi Msvm_VirtualSwitchManagementService -namespace "root\virtualization" +$Result = $VirtualSwitchManagementService.CreateSwitch($SwitchName, $SwitchFriendlyName, $NumLearnableAddresses, $ScopeOfResidence) +$Switch = [WMI]$Result.CreatedVirtualSwitch +$Result = $VirtualSwitchManagementService.CreateSwitchPort($Switch, $InternalSwitchPortName, $InternalSwitchPortFriendlyName, $ScopeOfResidence) +$InternalSwitchPort = [WMI]$Result.CreatedSwitchPort +$Result = $VirtualSwitchManagementService.CreateInternalEthernetPortDynamicMac($InternalEthernetPortName, $InternalEthernetPortFriendlyName) +$InternalEthernetPort = [WMI]$Result.CreatedInternalEthernetPort +$query = "Associators of {$InternalEthernetPort} Where ResultClass=CIM_LanEndpoint" +$InternalLanEndPoint = gwmi -namespace root\virtualization -query $query +$Result = $VirtualSwitchManagementService.ConnectSwitchPort($InternalSwitchPort, $InternalLanEndPoint) +$filter = "SettingID='" + $InternalEthernetPort.DeviceID +"'" +$NetworkAdapterConfiguration = gwmi Win32_NetworkAdapterConfiguration -filter $filter +``` +To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature cmdlet: + +``` +Add-WindowsFeature -Name Hyper-V +``` +For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. + +## Appendix B: Verify the configuration + +Use the following procedures to verify that the PoC environment is configured properly and working as expected. + +1. On DC1, open an elevated Windows PowerShell prompt and type the following commands: + + ``` + Get-Service NTDS,DNS,DHCP + DCDiag -a + Get-DnsServerResourceRecord -ZoneName contoso.com -RRType A + Get-DnsServerForwarder + Resolve-DnsName -Server dc1.contoso.com -Name www.microsoft.com + Get-DhcpServerInDC + Get-DhcpServerv4Statistics + ipconfig /all + ``` + **Get-Service** displays a status of "Running" for all three services.
+ **DCDiag** displays "passed test" for all tests.
+ **Get-DnsServerResourceRecord** displays the correct DNS address records for DC1, SRV1, and the computername of PC1. Additional address records for the zone apex (@), DomainDnsZones, and ForestDnsZones will also be registered.
+ **Get-DnsServerForwarder** displays a single forwarder of 192.168.0.2.
+ **Resolve-DnsName** displays public IP address results for www.microsoft.com.
+ **Get-DhcpServerInDC** displays 192.168.0.1, dc1.contoso.com.
+ **Get-DhcpServerv4Statistics** displays 1 scope with 2 addresses in use (these belong to PC1 and the Hyper-V host).
+ **ipconfig** displays a primary DNS suffix and suffix search list of contoso.com, IP address of 192.168.0.1, subnet mask of 255.255.255.0, default gateway of 192.168.0.2, and DNS server addresses of 192.168.0.1 and 192.168.0.2. + +2. On SRV1, open an elevated Windows PowerShell prompt and type the following commands: + + ``` + Get-Service DNS,RemoteAccess + Get-DnsServerForwarder + Resolve-DnsName -Server dc1.contoso.com -Name www.microsoft.com + ipconfig /all + netsh int ipv4 show address + ``` + **Get-Service** displays a status of "Running" for both services.
+ **Get-DnsServerForwarder** either displays no forwarders, or displays a list of forwarders you are required to use so that SRV1 can resolve Internet names.
+ **Resolve-DnsName** displays public IP address results for www.microsoft.com.
+ **ipconfig** displays a primary DNS suffix of contoso.com. The suffix search list contains contoso.com and your corporate domain. Two ethernet adapters are shown: Ethernet adapter "Ethernet" has an IP addresses of 192.168.0.2, subnet mask of 255.255.255.0, no default gateway, and DNS server addresses of 192.168.0.1 and 192.168.0.2. Ethernet adapter "Ethernet 2" has an IP address, subnet mask, and default gateway configured by DHCP on your corporate network.
+ **netsh** displays three interfaces on the computer: interface "Ethernet 2" with DHCP enabled = Yes and IP address assigned by your corporate network, interface "Ethernet" with DHCP enabled = No and IP address of 192.168.0.2, and interface "Loopback Pseudo-Interface 1" with IP address of 127.0.0.1. + +3. On PC1, open an elevated Windows PowerShell prompt and type the following commands: + + ``` + whoami + hostname + nslookup www.microsoft.com + ping -n 1 dc1.contoso.com + tracert www.microsoft.com + ``` + **whoami** displays the current user context, for example in an elevated Windows PowerShell prompt, contoso\administrator is displayed.
+ **hostname** displays the name of the local computer, for example W7PC-001.
+ **nslookup** displays the DNS server used for the query, and the results of the query. For example, server dc1.contoso.com, address 192.168.0.1, Name e2847.dspb.akamaiedge.net.
+ **ping** displays if the source can resolve the target name, and whether or not the target responds to ICMP. If it cannot be resolved, "..could not find host" will be diplayed and if the target is found and also responds to ICMP, you will see "Reply from" and the IP address of the target.
+ **tracert** displays the path to reach the destination, for example srv1.contoso.com [192.168.0.2] followed by a list of hosts and IP addresses corresponding to subsequent routing nodes between the source and the destination. + +## Related Topics + +[Windows 10 deployment scenarios](windows-10-deployment-scenarios.md) +  + +  + + + + + From 8f6a93a0d4cae8fd47bb8ae7f752c82d885afad5 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 7 Oct 2016 14:31:35 -0700 Subject: [PATCH 002/210] 111 --- windows/deploy/windows-10-poc.md | 4 ---- 1 file changed, 4 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index b0ae64f27e..ac6fab68da 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -209,14 +209,10 @@ The lab architecture is summarized in the following diagram: ``` C:\>mkdir VHD - C:\>cd VHD - C:\VHD>ren 9600*.vhd 2012R2-poc-1.vhd - C:\VHD>copy 2012R2-poc-1.vhd 2012R2-poc-2.vhd 1 file(s) copied. - C:\VHD ren *.iso w10-enterprise.iso C:\VHD>dir /B 2012R2-poc-1.vhd From 6252c64f440055a4d160c3ddcbcf49e7ad99145a Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 7 Oct 2016 14:46:24 -0700 Subject: [PATCH 003/210] 2222 --- windows/deploy/windows-10-poc.md | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index ac6fab68da..7719a3566d 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -224,10 +224,12 @@ The lab architecture is summarized in the following diagram: **Important**:Before you convert a PC to VHD, verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. ->For purposes of the test lab, you must use a PC with a single hard drive that is assigned a drive letter of C:. Systems with multiple hard drives or non-standard configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than those used in this lab. +>For purposes of the test lab, you must use a PC with a single hard drive that is assigned a drive letter of C. Systems with multiple hard drives or non-standard configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than those used in this lab. 1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy disk2vhd.exe to a flash drive or other location that is accessible from the computer you wish to convert. + >Note: You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media. + 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. 3. Select checkboxes next to the volumes you wish to copy and specify a location to save the resulting VHD or VHDX file. If your Hyper-V host is running Windows Server 2008 R2 you must choose VHD, otherwise choose VHDX. 4. Click **Create** to start creating a VHDX file. From cd39c1b168ec8a6cf6d20bea9ea82849f5174093 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 12 Oct 2016 12:02:42 -0700 Subject: [PATCH 004/210] switched appendix --- windows/deploy/windows-10-poc.md | 90 +++++++++++++++----------------- 1 file changed, 43 insertions(+), 47 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 7719a3566d..ebee9eaef5 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,14 +14,10 @@ author: greg-lindsay - Windows 10 -If you are interested in upgrading to Windows 10 and want to know more about the upgrade process, then keep reading... - -Do you have a computer running Windows 8 or later with 16GB of RAM? If so, then you have everything you need to set up a Windows 10 test lab. You can even clone computers from your network and see exactly what happens when they are upgraded to Windows 10. +If you have a computer running Windows 8.1 or later with 16GB of RAM, then you have everything you need to set up a Windows 10 test lab. This guide provides step-by-step instructions for configuring a proof of concept (PoC) environment where you can deploy Windows 10. The PoC enviroment is configured using Hyper-V and a minimum amount of resources. Simple to use Windows PowerShell commands are provided for setting up the test lab. ## In this guide -This guide provides step-by-step instructions for configuring a proof of concept (PoC) environment where you can deploy Windows 10. The PoC enviroment is configured using Hyper-V and a minimum amount of resources. Simple to use Windows PowerShell commands are provided for setting up the test lab. - The following topics and procedures are provided in this guide: - [Hardware and software requirements](#hardware-and-software-requirements): Prerequisites to complete this guide.
@@ -33,10 +29,8 @@ The following topics and procedures are provided in this guide: - [Resize VHD](#resize-vhd): Increase the storage capacity for one of the Windows Server VMs. - [Configure Hyper-V](#configure-hyper-v): Create virtual switches, determine available RAM for virtual machines, and add virtual machines. - [Configure VHDs](#configure-vhds): Start virtual machines and configure all services and settings. - -The following optional topics are also available: -- [Appendix A: Configuring Hyper-V on Windows Server 2008 R2](#appendix-a-configuring-hyper-v-on-windows-server-2008-r2): Information about using this guide with a Hyper-V host running Windows Server 2008 R2. -- [Appendix B: Verify the configuration](#appendix-b-verify-the-configuration): Verify and troubleshoot network connectivity and services in the PoC environment. +- [Appendix A: Verify the configuration](#appendix-a-verify-the-configuration): Verify and troubleshoot network connectivity and services in the PoC environment. +- [Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2): Information about using this guide with a Hyper-V host running Windows Server 2008 R2. When you have completed the steps in this guide, see the following topics for step by step instructions to deploy Windows 10 using the PoC environment under common scenarios with current deployment tools: @@ -576,44 +570,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most Restart-Computer ``` -## Appendix A: Configuring Hyper-V on Windows Server 2008 R2 - -If your Hyper-V host is running Windows Server 2008 R2, several of the steps in this guide will not work because they use the Hyper-V Module for Windows PowerShell, which is not available on Windows Server 2008 R2. - -To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. - -An example that uses Hyper-V WMI to create a virtual switch on Windows Server 2008 R2 is provided below. Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyond the scope of the guide. If you must use a Hyper-V host running Windows Server 2008 R2, the steps in the guide can be accomplished by using the Hyper-V Manager console. - -``` -$SwitchFriendlyName = "poc-internal" -$InternalEthernetPortFriendlyName = $SwitchFriendlyName -$InternalSwitchPortFriendlyName = "poc" -$SwitchName = [guid]::NewGuid().ToString() -$InternalSwitchPortName = [guid]::NewGuid().ToString() -$InternalEthernetPortName = [guid]::NewGuid().ToString() -$NumLearnableAddresses = 1024 -$ScopeOfResidence = "" -$VirtualSwitchManagementService = gwmi Msvm_VirtualSwitchManagementService -namespace "root\virtualization" -$Result = $VirtualSwitchManagementService.CreateSwitch($SwitchName, $SwitchFriendlyName, $NumLearnableAddresses, $ScopeOfResidence) -$Switch = [WMI]$Result.CreatedVirtualSwitch -$Result = $VirtualSwitchManagementService.CreateSwitchPort($Switch, $InternalSwitchPortName, $InternalSwitchPortFriendlyName, $ScopeOfResidence) -$InternalSwitchPort = [WMI]$Result.CreatedSwitchPort -$Result = $VirtualSwitchManagementService.CreateInternalEthernetPortDynamicMac($InternalEthernetPortName, $InternalEthernetPortFriendlyName) -$InternalEthernetPort = [WMI]$Result.CreatedInternalEthernetPort -$query = "Associators of {$InternalEthernetPort} Where ResultClass=CIM_LanEndpoint" -$InternalLanEndPoint = gwmi -namespace root\virtualization -query $query -$Result = $VirtualSwitchManagementService.ConnectSwitchPort($InternalSwitchPort, $InternalLanEndPoint) -$filter = "SettingID='" + $InternalEthernetPort.DeviceID +"'" -$NetworkAdapterConfiguration = gwmi Win32_NetworkAdapterConfiguration -filter $filter -``` -To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature cmdlet: - -``` -Add-WindowsFeature -Name Hyper-V -``` -For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. - -## Appendix B: Verify the configuration +## Appendix A: Verify the configuration Use the following procedures to verify that the PoC environment is configured properly and working as expected. @@ -668,6 +625,45 @@ Use the following procedures to verify that the PoC environment is configured pr **ping** displays if the source can resolve the target name, and whether or not the target responds to ICMP. If it cannot be resolved, "..could not find host" will be diplayed and if the target is found and also responds to ICMP, you will see "Reply from" and the IP address of the target.
**tracert** displays the path to reach the destination, for example srv1.contoso.com [192.168.0.2] followed by a list of hosts and IP addresses corresponding to subsequent routing nodes between the source and the destination. +## Appendix B: Configuring Hyper-V on Windows Server 2008 R2 + +If your Hyper-V host is running Windows Server 2008 R2, several of the steps in this guide will not work because they use the Hyper-V Module for Windows PowerShell, which is not available on Windows Server 2008 R2. + +To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. + +An example that uses Hyper-V WMI to create a virtual switch on Windows Server 2008 R2 is provided below. Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyond the scope of the guide. If you must use a Hyper-V host running Windows Server 2008 R2, the steps in the guide can be accomplished by using the Hyper-V Manager console. + +``` +$SwitchFriendlyName = "poc-internal" +$InternalEthernetPortFriendlyName = $SwitchFriendlyName +$InternalSwitchPortFriendlyName = "poc" +$SwitchName = [guid]::NewGuid().ToString() +$InternalSwitchPortName = [guid]::NewGuid().ToString() +$InternalEthernetPortName = [guid]::NewGuid().ToString() +$NumLearnableAddresses = 1024 +$ScopeOfResidence = "" +$VirtualSwitchManagementService = gwmi Msvm_VirtualSwitchManagementService -namespace "root\virtualization" +$Result = $VirtualSwitchManagementService.CreateSwitch($SwitchName, $SwitchFriendlyName, $NumLearnableAddresses, $ScopeOfResidence) +$Switch = [WMI]$Result.CreatedVirtualSwitch +$Result = $VirtualSwitchManagementService.CreateSwitchPort($Switch, $InternalSwitchPortName, $InternalSwitchPortFriendlyName, $ScopeOfResidence) +$InternalSwitchPort = [WMI]$Result.CreatedSwitchPort +$Result = $VirtualSwitchManagementService.CreateInternalEthernetPortDynamicMac($InternalEthernetPortName, $InternalEthernetPortFriendlyName) +$InternalEthernetPort = [WMI]$Result.CreatedInternalEthernetPort +$query = "Associators of {$InternalEthernetPort} Where ResultClass=CIM_LanEndpoint" +$InternalLanEndPoint = gwmi -namespace root\virtualization -query $query +$Result = $VirtualSwitchManagementService.ConnectSwitchPort($InternalSwitchPort, $InternalLanEndPoint) +$filter = "SettingID='" + $InternalEthernetPort.DeviceID +"'" +$NetworkAdapterConfiguration = gwmi Win32_NetworkAdapterConfiguration -filter $filter +``` +To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature cmdlet: + +``` +Add-WindowsFeature -Name Hyper-V +``` +For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. + + + ## Related Topics [Windows 10 deployment scenarios](windows-10-deployment-scenarios.md) From d262f205169b0d411dd2739458d108598820f43f Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 12 Oct 2016 14:04:17 -0700 Subject: [PATCH 005/210] rewrite --- windows/deploy/images/PoC-big.png | Bin 0 -> 97482 bytes windows/deploy/images/PoC.png | Bin 97482 -> 139787 bytes windows/deploy/windows-10-poc.md | 50 +++++++++++++++++------------- 3 files changed, 28 insertions(+), 22 deletions(-) create mode 100644 windows/deploy/images/PoC-big.png diff --git a/windows/deploy/images/PoC-big.png b/windows/deploy/images/PoC-big.png new file mode 100644 index 0000000000000000000000000000000000000000..de735060713214af014b38b0b9fd530ff38203d8 GIT binary patch literal 97482 zcmY(r3p~?b{6Fq8vB~|GiiEk2%B|drLT<@zGj|)4dkphI7glnY+a|Y?TVdGTa;w}{ zY^acXr7|U#3SE@+KkNJZ{{H`ek4Ht=&N=Vb<@tI(pQluNyR!nY{V)y=4go7mGe-^% z?g9=Du6ul3;9p9AY1V>XUf4ryUD+U;Q^mR!!2DSIXDFS z*}plTUcB$e!ST1s%FNXHKd;qNUi8HDRPvwCooT`SSrP~p!YaC#SdOOpKFyLbM6Ifn zPt&+zV-Sc#2%<@Hb=oxqZI4h^2oHZgKK{NEdCcG6|Jbo(^Zww=e7T!tba_7ctmfwCOCN$& z`+wnrbq}k0bn85DCO&*ceAh^eDU$x{a(l zBWWhd^b=vfFc15MvszkoX8C`g&B3l+Xy-T5?ca*h_k3LmpSkwv(Up)8#DidnsW8Oh zIQvz@r|0IxIRDi9+_l>j`u41n@j$i&3VcJ~XUyy5DTvUWVa)bTkg1EpjwG>{zeqBX2Ffec)CL2Z2kTAr?Q;f|= zTAA-S^mc6}w||76R1MhcZ%Yt7+xJlR-~PD4`d_G-NE#a%t*)+SWMrhAWN^=Z`uK65 zs3?~s|JqRBDVqaZc;jMBT&EeqGY+lRm@aoku~cfC;Pr88oOR^N?^(~a!QIl*(vCA` z;6#L@6F{`OopyH4&&(8Xu#h-*^eB}|mGhqZq|;Im?0kdfCZV|;OB!4`o$WGsca&c+ z+AaM4+=l&?-&vd8gS)1s9o**s_jQWQJv>VC^2C;{bdMe5WI|Tg)<`?%CzX_*OytLJ zso%k}>PR(#ZmmhkwT22g);YJn2T@!I&b8{$4|Dg*kIK--Zo61`^?Dd;e8Ifq`+5UT zJhzJ&5svl`qq%4a_W)&icJ89qTRMX7jKc zpGI)Iy;-(`Tj3{r-w2iBZJ=>+aRdUP?EQS|Verf>EkH_IzRt_d z;Ed!K5atW%){DrKp-LSubq>u(eS9~{f2p(4U~(Lui{QPw_DOvBKpR{m9>?5MY1}A` zZLnQ3?Uo~_b9ZVQ&&TF?PvH)~ayfMIc&K4aikc4=D=H#lY9|ab#5AA%aAIvwpXR!M zKska3w&ThuYh&HdiZqU||C>H=X=%N7r2Z#~W3llISnT`{9+(MtodhOIOv3l!cf}MX zKK1rS)|lMSi_co`#ZgXbZn?B=Ag8z0mSb6q(V7F}#8loqec7eR@7jeA4;8gi-J!}n zfxeGL?2@|;E^)po61?s5$j)Y6M=@di+DxPrAA3y$Ch6wc-4KsVlt{w8qOE;zBL8@o z(>&tZ<9_c}!Vghjw>dq4?ynOKF3_g*X>Bm>>>#za6G|TEj=I1%7}_qIGry--aa#OM z&w`Nc3miX}TfPXF7?$wIpjHR9SM%Ay^gr89C6Od@^z6|{zm_(Z%Ghmt2G#3<1cs=m z_9W=#u`wQ|8sd$&bQ1hqBW#DHdO(<={>J0N+FFm_`Q$>yuESL7)7dGooCt7rBkDvZ5cQG3q8fYTDY0 z+e!;Usp@gprEjEBZr_%j9AtMbE>K<-FP6#B7Orx|Gp|re&$}i*c1-e=JpDobW7}%V zw@&S{<`9X*N*I~Y+XRO&{*Y>7C30M1BVSF1spYlVwrLgi?L7F4m;_n8udh}%*zQXmU!^Ctb`GYXZa5|3c90gB4mDz!`pu16zIHV4FDqXeXr{3ps?qJh}A@nNhS3F+2Ee`*~5snN0PQu9~~$KAxvFFSY75hat! zaTD#{V|BS&y6v4@KUs-gS>T{j!r0J6O+-x0*Wcg5EbZAv9{xn1obYr%&Xu&xOxE|l z)Av&AC)z7|UOHO|eaM>}RgOP#=Ob+iviYV}xhi<-wxc~iKTKVloG#f14)v!eHCL32 zutTOiwoc;>_@M6X#Ttq3=C@KGY>!qP<3{O+-`|q%Ca$D{y?s;y9Ws|wRaI3`P;lT5 zUs8I3p3ce)emDqpVMw4MF7n!=@j9K))+Bxah$0DuCBlz4S7l{o{W`3E93zfs54y=W zio7~pcQeNOGUa!zFRHGus}c73?Lkg~&PM%eXH1fBhhHsUfCQz5pKSYE?ag1ckC$+9 zUhoYyU6<6hhEQEXsEyL7$CDGxl6*$Z>xM%eVc)-hpRZ!~!Ki(pvpQISN?VWN>G3Yk zMEgIKysmXE!EAqwH0N4}2ERD9sY#yRIx0a6tCtMJms$`2sHdpw?+Oj2E6;dO@8I+~qSOP3BQP6=F5xA!7s zu#bj|4IYFO`zBkcJci=;NgF1=)kZq;b5bfC@z*YoeULf&umfK_c#qf2@wA-7^n0!( zoHBetHdL;TS}94sM~y;A-J=rKxZHTuH4ghcx%lGOlvVM6bnfyEP_QB=C4~(KtwpQL zP1X-0Gfe;JEsk|`bVQs|WXHG*h;iWvtgr9#HE3FXEr<2fT0hiSK+o!_t@e&`6Th{! zwV^2ui$=*7ap*V?Kc>#7Fbj>sxHQ9T5PH5zRjpKK%raV&rpDEwiJtl8;`No|o6Dna zMq%)#gL=_Tw^2Vuv1yMbh_+Zec5$rt=8fO_?40d{fuv0lmXf;H*m(XrR9v#;=GVax z$U%|sX9$*@T@pHCsS{X z2sdt|bZ-ntFK+lN6daT0j3DaBydBs*DHl_ub`RZAyZGttz9V3(GQ6PZU$3mHD!g?| z7^&t!^ZzbEhI~I0?+1;Jw-av>v5-iD%g{>t_PA>bh&rJSN^Da5)K-abI3(mx-7R*F zp7bzvFBbHkjry5e-QV7$1UhG8EVHBrL{r<5jySY4NaFJM04Jmf|MIDquTldjaPOX) zh6K6YyDs^w2k(zfI6gPoXNQSxh18PzwP4JwkGaU{Yqe^W78vUPORGVYbJha0O&=>+QuSTM4zgWift# zInYf$8mEjWZ`)6b)KLziYN=Z<_Tc+FDq+k!b~caFOxpNS^WIg)jhA9cK`UHJZTz;O zG97zw3njLO5AQgk;GSezC71Kw-gkZ%vLBNH6g(zND{Jd=7PZwtz?bgur)GX4w;S>t zXI18-A+VN$Tg^law;v>De8fr+L@xJ)EJ>i;%;naIIBULJU)@(1G~PAlGB_JHkzQV@ z9ZjPQe=pxbxj~Oyy}Sp{H<8A0wMjV_Asb&XJw!=^9Lza=C(OPxP9agh=2+S7s7k3@ zi4 zOV%x<=*h&${ib_N{Ks`b7|Nlz1dU)jpoIqtHAHP;r!}5*S1&xXel?GUf7pH z@4F~7FC+w@$O~ieD6d~54D4@R=4RY_kR$j>UM3rRt#dI5YIZj2tL#z3_{Y=XnvePz zl6`n21nWud{>3@!Egf6>>|3`r3t3+O=V1F*>0!&Rnz^6K4c4=EGuBre+uGXx-`CH% zbl%O)4M2P_P6BiukeLLbI-=jLtkhY5Q(V0sHNdsh{NotoR>5J(x=ICe-&rw4SLxzmr>NcGyA7)^ZbIYo%C?a^j3~v zm%dk_@I%Gzr)uP>Q|$Wk1Hi=%^@xZFxtb{K)LzbB0VwpX9=U&HBvYr(e#&;iw&T!q z)F{^65R0sZ3#%rRjC=?MV8e-hW2ey#X(rYDsJ30w=SDCZq;@k5R`P#6v{H&()|K{3 zy1K4*V}}Z+p!Pdp5a%n82bs4m1b)3_Arlf46DulwK|z0T1iEmhl2b+IE4|w~hKj!6 zk9FS8Leoq=v8@mW12Z(<0fDLCPlCg2_%R@qTCOK-y0l#}8TPK)U<3vq5uUWljx#>| zeaCN&DD~oq&?y9ah!pnRqaitT{^ze>j;|{7kKT8nVSdk&72LJXfAJRR^lz0P4%vzO z**TP*)M_B8>iO_3$kd2>INH^fPN(O*dh+B+ZqkAUHB`3x>3)M=vR@DvnEyIrp;{`* zp`UwB`jF#W5@9grXcgUAgo>nsRzK-o_{(L|yNb?Dd5qs+M71_8SznLF8V4&y*DFt~ zaY~=Z_U?9T9r(982w2>q%F4=w7||(3aSit>|EGu7sz3Y0t7uz(NO}a267gJnrt8+$ zR!M0o<^zC}eyNz1*F=FxZIta{(KA}kBgaNHWHLf-o3Lx*g ztE?U5*tQzU#Wi$IQ2N5yWr_~Uw+jIk_TWVl0mk4XvL8i4N(vu0H@AF|NyN2J=WZZ; z;^Eq*gz+|)Pz*Br$3C>SwziX#(?)c&h#m2JM}fp$<4Izl|6K(#a@u_7Y1Gh!=pdV-%{NsPimsP^|cb&eCc-2o3y9&ATe% zeEu!AYT@h+_SVapVDCjX9v%m;in|P{wf6Q*KfYI|?BlazH?yHs4-vp0@u9h{rr<72 ziSGTBTUd~wo{TfV;ux4Jp8rB5H*mN->)Tfi*#}}p*Y7Rv5$cg3HPL??U2?8 z06HC;aw|=K`N>R6oQoIHE~r-huwN7JvT*5t>t}f?h_dHi(|zs{$bheHI}-VZH?S5hpLFkS0X=7?>H}VQTtD%vypE)XKdd z{n;DyMQ=^;ePbE}s^u!8e*Av=@gu$BVwK~YPc3$bY@S^#K)t;f;Yj_yt%xvz4$#mDrzxo|Nj;-9e#VXK?Tb6VY!cI zMoVD)tB?*K9$8?-B*>O^YdG1^pMS;Bc6ZQiWOmZa;(~4o$;YI0bs5II0XZbs z$?JwFcb%S{6*b+iUpVCde(GAo^66al+ytemPqb{=3v4Z!w9r%s7J7x7%J z5E$&Hu7+!Zat8LPiEh{>)n6k01lYXSWA5AWps8o~J-wAe3(>=07rh}bofy=U9aaGU zb^QLnrz$`^d6`4JZTY!5SImodmQ3irBxHSwPtM~O1#-rU zZH$eLu{2PO{8vs!!;MQ6uCpNOa2Dj<`_BC60qbfd`&kinHyb(W7j&c2^!S!uTO3Ti zh6wkh+Wt{@I@R+_eQMj9MS6i!@_#tJMS1<`&I0@0obh=HbT>4*y`uvThe!MnW;X{L zc2;ujgVOTw(QZe{)i%qI)I8kmOboI5={TkB3mT}Qc1^8b$wCDbMV|ad#D+II^`+=w z)<>*3N~?y91tXnLEEsrpK@GNgpnhyBsGd^TvdVdkw!i-|S1s>W(Y*2{K*WlPinbd< z*#Rm5I(ueMfB&_QmLO_m{8u67<2C4dJ|`_h&I)QDo(sI;GQ@o+Ioj&>@wzg0>;xTi zbI{sSZPpZcsj%T3f&OUVGPeGC-QJKG3b~Rn^aBS zd5RR?`u6S2>C^4M|GhQmb8Jqxva0G(PftQSpQU4g`J+y9gUvNXb6Qig7#{;lR#8_L zHlo;s1Q9a~u?K{1Po>nr%UIMXFEk6rB=ol3gG0Ek;ua-_Tdg<4Y>T3K1auEPunQMy z%J%Osa1QdbTR%v=c8xp6g$)yD1>F$2Kc;79M0iwPJ5V2zlB14#O8$zFp}{UFXCF~s z$Xt(nE9OdqBdMVwexG<#9&aqR zT90dziU>7hwP%%|UfWU6E^WC(s{qU}o}Ux+tNF|%kRk!P0W?clF$oFt#rF@0S6dFg zA2zySt;}7k=4L0SXUMsnf@46Zv(VtPgHv>4O8Tj@l)fzVayO)@6=JK8*o@L#da-A< z(v4i9<&18)lJHYqxsfc_NGghI@SCm44SX8+u=>k0PmRO^rQ@Orn{2X#J+4{G`T{~= zxc@ojxD%_UOW&{68oY&*cwOHrM2iI}f8VJ@WkI@YprCJBS5LkRf>yGq^WD_>49Gi} zO_$HiFHWlu>N!)^nTDt!KQCHN?A(z1qMf%u%`}y}qX6{fckkY{8}4Ptkt6$IDypic z4mW&r?>#kp?$u=AuBoS>lS^5d3iGxbMUO{Il`5bb`b&VYHi zMZ5*AcqD>AP#Sf3)F3@xe}8ki=|sYE3er)$E2R~^bnzo`2J8v4R?RFBvwRZ$A~`xo zA1i?x*Z@U72>JvT3~iT&`bm&WlT2!9l&Za(YYn-NfRy|o-lOgbrx@9IdYodRi z$2(y>Idh@1VL@ls56Fh<881#UA}(=F-8lO8#DjyT+4F2HV*^m$;02TBw>E~On|&q* zBR|$V5$L3HG>Zk&zax}Ne)6y2YXpe{E%o+~ z&oyIgekvD>)y(-G?5J5-f48m;84{kv;#x?XZu%rR6DO%{mkxxF4j~ZL7XV3r^o|G* zOkCZ&{=LVMS1HN``d_?z)%HKLi!?^6r;)Bsb6zEIRhN{tKCCP;Inj{*gUVirpCJ}R zSqnKqH5vX)*GDOdbt5tY#zcx(cKPUEt+#K~9i+_$)=k&S)^vGP z)?||(H73uOn+_^g>>imZWZk&1{jt!|gTm*&-`t&l^XJFWtH17aFfT31{v_*Z-)R=o z$#>>TsAWjf_iUtLXYgEDS|lBOkSueQ1<8Xqi}~5x^%z}jJ9dEvGr-b=q5r|=`mAU9 zZ6w-EyI|kuh>!Q{1n?g*eWr7dJ4U>tbwT$1x*o(KtDO$3CvEj(AE*-p_(06RX0u*F zd$b$s)>=YsFP5YH*RN!&p)iG~erY%8^NW+W$4@OE=UMjKHO#Ar++yT&9=&|usja2B z^W~T-8cTCkNn;tWCLA|R{7;|Lu%XW3?@Z>ek^E5+8&K(=i@0~qeVip%fJ75-CnWqh}dOw{`?Wp^t(O?n?chMC<|W)FbX%br;I(vj~{=6 z;TJ!8{|$Mia^lf2Mw}df6mf~ELIG1vIn~b^F&1wvLAJfg6O3a*+j*ZgnbZ8L(GqFc zs%EhS`o;xiVRdC61n6<{kpo#`sDa$9X~Lho$5sR!Qz%2YVb93{E9|wslrg!NZBN9xg@c&uUuWrq7na!E_)}w$cz=EPf>FX1H z)R)UEW?O)!l=S5~xUSv%{IOHfJ}f{=RXMvA-FCI08O<`MVOfxQg$uv+k4iH0#lj;8 zHma4f2?MB$r#NQ8I9u1o;w!|X$L&b_3#Zl%td|TH9rnV7OcUM|w8snn4~4!h>`9xx zfS5m?vd83t^3mc2MrUc8ISLcYq6&6do~2OwnqI5cQR~-^CtPczy$Lur)sN3PB{PdV z7ISqa^?=VE?3u3iLhOv^*ALTfOiB92A%fg-L(@0XA=MEqh@Xel)hslBgZyOs=9f6* zwHe#mSGeny3gjC2(V+2rBa0ea@{5>-%0U7D;9%yfNWO9ifaXKVAFtDikDCr%;K5?C z?dF!ZbF;HeuE@v18PxYBI=ao@qe?!%3``XISiyS7LAXTnOOYsC32IPwSCnhQ++fFs z*400}NjN6j6r;>kK{$`kfn+*U3?-q<|c4*7PF)|itV`T>GurgpN4c6XBtNn z2>rXm5O;yl>O3gSj{)_25-o5)>?D<48kbHVSb;7yJ(oTBfSeRsvD@sYdHVJqO_`3T z2n3>i4jg9Lb1Y3$(o{$4Rnzp~pkDaJK@t!c2}&-;_dpEIzdS1fKT78gHztq!;oanvKSN%cXL z9cCt#=RX)TKxK2fUe^rcK3z`~D1^dNR3asdUp&{WRw3~G7}T68pSG~o=xy1f=LEj^ z>u59$1PF-aAi_RBtga-YE$rr3+s-pjbUzwb{n=XEn%7lcl-1VNWrZ0+9EkGiq_r#b zQ6M0yJjZHh?vJTD3>L0`;zYJo{mVc;l~M~Hh`14HZ(VK%MP3pt4}Nv#!xGHr_QL0L z{(CtJ;D0E9CP8wQU%9Wml8#*Ck z{iK}44Z9Kr40};`RKLZaQJVU!Ths6jQaA%e?CHO18tNJ=^K@&1xTJNy8YgSVZ+KVA zK5}F3^RN!j&sA=h9Ha+I$A1Ujv>+LDtFjaE>IL1}acLB=}t^OoAYQ zoL;Ix=^X0l2E&SDdi1nF7xu^Sq_S{25)qG#yC@~d~vv*&p= zP<%Q|j~o*|b#a}%vUBUL;P(A#^ta2kc#cAYiq-ckD>hy3)0|WQ5QPx1wk zq)2*C0nd9?V!FGYJ{p*25$# z7sK2q*OnL_=LPsWMr>_u+YNbwu6CVzTLxc~7N6#xN=f=$@r7sl@b-Q=Eo+A;j-B_z z6Q-ihMjS7nsr(*z@}#J+Fe3hfD!ScrGl$vpVB)r*HlgU*?3pvL^CaGRaq%{Hf+5xv z6Wbgd(Fz#@T#vgTC}03nQK$prJi%o941Yr*ZGV>mK8n$^V*7**jl zE)DWmqYdw$-xc^@8h$y|pvu3Rybg=XzQo_7Yq))~PF83$PEs#`F>OQ5Q3yNXM*1cU^9C(!ihLaRRq9l`p zz_;;K19x|ncMhMfn9U-3I(W>SdfqSC@i{gdd1<+lm*dL_>Ab&?mJ_du&yTxbGMZ8= zDimf;eR+BZ-jltLG<2mpr0v#cp17cgz%bD1G#OlIDNb&k))h_XNy6dxnoR~FPvnu# zn%a(BSUdci76pXT0c#Dt{w(y2spm#3WWG$(pP>wh$0sfMq<)wZ+(&|te>#cfe_)@H zka*kIo{r2tqnuVag39GZPHnA>i?r%C{u4<+CI+=uo;lZcnc!>xSfgVFBw2gB2zz?ae2$fd5cr;-`)OPNY4VuZ z21V$;pN0ms?8sRmIRqjDk)!OyTR6ilmz`8z>?dYWAqn{RGgKY>!jS4eEo%$;Wwn&Y zO>f0f(;{^P*g^_lvxnqFY|fEJ1+u#GAmJ><&%R(sTQER_)0f6zVz%={6Z*8c7`ER4 z)M`fCVXTfI9MIoY_cZSpD0vmKh>uMV)e3>?`0`^|HhhbJbQNOPPF#dbbnm_Or*^TCmZ;{_mjvb=8Z9Kh0f7>uVK5hdXS7B$_bV8R& zI&R@nK@uf5#?YL}S(~~u>Hss|+lkud6b6N-(3peERVB`1rWcUTtJ3%9E4Ax_XPA}e z%5EA@l{OLd6_Dr`S!h#z&g%~7Nvw-#y1+^sm*{M${-Wgr91&0K7fl}tI!hs%de%;e z`gsVdBd3$n#M>}`3k81b>#Q19d`+0CZrdz;>)kJTOj~s84zh8|Z$=aC1x>_WWijg_ zK48L)!gs*b(^^bxPOVp%W}}R`^D!6VOQpRFBzLW!<-`z&vvuFj=q5M9-}Eg%xZQ60 ztKym8rysX%!;B8jf>F1eUPjjnf5SYD8tN)7XK}oG`;MOO$x2A_(|E<+X#Ru4b&E0g z-*F0?N%`kZPotaM%T7O>q*US50l?%CTU*BO$)(ZNG?e9JXrk#7AUYY)pE9%zdhM)8 zafhiVz^2k4tK`m*@$o4 zr?0Z&yn@}c0*+r+j(oRB(GONuW|r2p_z|7ZOOQfM^zzJCyU^>?HM9#;mnQJL#$|D8 zdLif6jbmbB*0b2UYl~nDde3^i>!4cf1E-dQWrogzYcS*$j_bBEe*QuUCX!>N_jwEy zOam+SWR&BM_+%P;%FhTVv0N!cJQq+RgJ>RSR~^6yZ`&L8f^L~UVtW=*M+M2|XwyR& zU;vJx25#>mSZ9XeP2K8KvqxJ=a6X2Sr~Z-H+v+ZQKJMdvl7hMSs9SFzIAa1|Hddx_ zjM~leFlRen)h-b(fd{A_?>KL%yVPAI=spp&W3W4tjVTiF{x$cRXK1Yej6|<;*kxuC zl$oB(NBCXgp9yJX?xNo`% z86n3cWQ_tUfM#ugwbD=g?<}PXAoI!+xjMEK3I5SM2zu*OYhf3Q#6U^Px+>(ibgW)SsmTZ8fe&@g)V^2=X5!34|3(ik#)zTPCDT(9D8N`9xi8_ z1I+|S_bdbIHkjLNk88W|fx-Fc<|P_n!k~$ZQGUSO;ZN! zu*K0ZQ1RM7<3KvRvU`C~c$A&1&-+v56vydmL9J$96S?A)+YXXtPQj%6=xb}P!*M-= z@eTK2>NNB>ve@9wm0UY2>lt9jq6Ri(CrL9|X!x~GNGrsefkC3s>vugaB~>9I8IP^& zd@#wt#5H5nTVwS8E2TG2EV+4)bm(VldPyUtFV_w20KSo$JC1plber$1%Zqitb&rs0 zy-&xT!Y`&&&x9*K%w-L(@%}g*bC&JEaRZ7t_m77NKT`Kx4yyrnJIq`*A8z1TXT%Un z$ey`2Ji#eEXeVCkP;F^xStfLXN7>+&PQL0mr++c#3Jsj3=xbz zD>T3D3k2i$vj37QLgPB_d~!XJ72P}5ys)kQS3IQJdX!i)=r;|0c-(9}3;v<%jwWZwLp!MvAxgIfWGjRg|HXQFriYe9`b;tWgpx2vgIib;{Zf(;=4g9d3j0So~Q-w6WtH z3#rW8`ku|dTBwHDk(Ce;=>_>N&*(oFI=I$XF;bm8?*@V^&lXQsVFh6h2FVLfm6kgtS5=$sec;u%q zmz2@Ra1S9cp?-j?VL-(*SKcX2zXNnQLT^rn)@|y!a7oyFQ#6ItFUsSGus6dT*ecx9 z$S;-n;g_;v+IdZ;!-=0u1oc=Mni(dk6*4f3V`5A(F-MgLZ_Av=c;4@`UXsrSh68?b z%~f1{4$m%tR0cBpDrdgHiN)9NsEr_oGLvEH_pf(f#|ze4+9o-w&G&wVHf7%W))&gQ z?RMg5#CzSMrp{YWW13RC>0B5L#!tiakwCZbHuL16{|X&WXOxG>5zOeKdgt;oQOJjxI=)OU3HTd_>>E@xLAFP zK#JV9y3svq=I>`j?OZRFhDJAh#EFgzb=ThpB|Ohtku$uXt{;JC0G`bW4NAT$BKQL! zRou|hNjxGK&U1=`N^g@@@~f_8^VXocw#Y3%`J~QQPsifV=-`6&4*!rnc~Q~<8k>&u zLFT{tY+ZEjR!=)6BzQ)K`erC*8jx`PfUZ~)mV26zd+JfY+Ss1KjW-{g&-e?Od?S|w zqn7p|P9B(ZNJwuK++Vj|ISdS;=4n_stoQ;8QbxtI{|G6)4^$dZ3ju`KDbr+Yya+&h zkMO|wm6@LEH7ooeTcylm&m#1_3*ERZ#;X)M(Ynf;eN8ZCT~ZaBGNkT~ME5eb9^-cz zcTSrc><$maU3%Y}wNq>++|C+&C?z35f0YIJm56lGiX%xU?}77-3|~AjOb^Kb4Wbo; z=`A!XUH2^}KJru5cv{bWR~&Hi?x0WNB@Y}9qe&0jWxv&-b%V2S*W?iksX>d>wJVTc zXtj$=g9hqm2ZPN8=hm$40PmfRrqn}gBYMH-6u6U^%EuI35Y+D<-)i!_(CNJrT<)fx zPo~G+KI?z>u&s#pjcd;qWe@w$$NqP@c$s+MMkQ7u68{=P178w&idZAUH^#0G&{#du0P4>%@`*lL)b{~c$n+!y;*Q!1X+zM`;Pb%WXGl}Cvh z$Tju!pf#3}69B%vXQCGOc3~)7Q$LA>5;^Kg4fz8s!n61#M!-tK{Q&LjWZYXM+FQ;~QubG*-2FkyxPllsX`r>hLJwZ5tmJ(OyB)>04cG7Q< z3pp0}_O4gMg(}G|uSu+al0-9_$D9Tf0>FT&Dt~;Uf^f0xc`$8TAePXVmbHR4#PYoF z{7(i(#J@k@efk zAWq)I1G{gw7mm%3Le`3?EwySlYubvcQNsTayLFmYz^9q@pMK(&eD;+9U}^v@5}bK=EL5=- zk}Kl5I4He|s-%WUP~a6*TPX^#DXm<>{qm^k_>w*uh&-gH3uGqhY4h&q+N#WwT<<+0Tg?g$+5lsh`%Aim_9i-p{ zmPdxBC8-WHz9VTk>(fBd^|)HOf#=d{u%VPBNKctFpo>qUY3w;<#QH2{uuQX!%;8tm zxSIxmW9c{mGdwH^km*jG1uqn?x!MisbK_c~&iF1Vy~GM4%cvf}iOf%)`U_f@g?s$z z+SaCq$tGUNqp*pql79)rgx|Sy&tAO9`L~02k~RkRvC$mZ5z7j_(0q5we1kA#2q>f? zx@;_~q@v>7qBxGbud{Fv80W;B(Y5SAe^HJ`GN6i*#Y1?m1_c7%LM-H%=Pi8XfZA#b zOX$i(%#qN*}`UUC#+64=oVM%(ONF1Zd6{;Ha3r0H&INrEvB$odA@3$UdWR<)8a;MqaG z0twir2N-QGDEi!p%yC0M>T6Sg%_UC=h3~47rZh=%=L}qe#%kxn`&X!-TJ_uV zjaE$@^b>2}cbeT(${uatX)B#6M}tSbN#(9qnDlNd>2Y$<=LA~j390X9w>rH5Ln1#9 z)CWJ%e%uB5VK)AX_MnmX!d zVPU55=|>S{y>UF1Xg*LDA@#*@%lO*dL z9S|DIJ^)X#AoymnFHERq;q~Em&9E$Vn*v$?zpq*7YO)Vk4cv!`NsiPOJ=)(fAWn|z zZTbU@M4>LUf8wTd!1FfK&#LUF>ht#0(Aragl)$tum~inIXd0VzV%bsSq%?)t>BJsz zRvQ|6#b>%8=AZ{R$IgKoq5o7N+J@{aNBgGeCn>=bFtBJ67YOYicV_@ zv4Tz|O!hHULh?qNc4x_7r{e0>C$#JQC(nc*$(d+7Xti!ECMLE{_~%gPU}yS?6DNf8 zI7B#O97LPHt}JQ*^S89n+B?^f$s2^kKGAgJ;bxFEPq0X}G**F_ifS55mLR9~PjFpM zf&1>zm8M0b2AZzc+yM?=j?d*o?uZy%`)J@$)nJ(lstV5)<{?$F5S4}2(oH00p|5Cg zYS*9+9H7JIZm(Rezks^i;L4LnX4$&++ChGZTH(gC7GL+Dl?BoFQJfupKo^56IRO8z z1y!7Pr}}A;n3iN6`L1UP-5(cF0B&6Brz7pf)wQ3JL-aX8s7a?IbqqPzQb?du9hlOU zp2+OD74k6fp;ul#>PC*blJ1puv$3q8rKWHxNW-2f`2+aW+pbxtj|JRM zn>?yPfgIb(2_gYB2!BOkCt$`U{|qjbWMvc|XkG7roc{Agqg(QP{D~1s@bK*tCDZRG z1C9(UN@pN(x1Uw&0E_!*1APq76+{Ci?;#LA@m$CYX-I>ol7BJ0-FPml33y97=mIh{ zADUQU`b=rzBN(dp?goPV(0T$p!#u6Y=Pu3^T$7g-y7!DEHYiDlElt1kSLR43joS4b zQO-UzMK3NgX#vH{h66Y|Eqf;WHpJV!R$$TYB<>{LFt5?}8iy6Ht)-lsUa4A(uWc+X z7ygIf_kpq$dPoj&s(j~42xsa0yv07mTh2`jN z{kCbaV03T4;Lm2U`)D>LGc@k;v?$8=#^2*Dh5pB4PIXvYCliK@KASj-tNYW&%BSnc z%F#<6ip^pfZgw|403OvkizqEJ0S8<6?^J<%f$jBQN$AtNHW4saaPA{7&kEuYlu2RBf`Ydd4WL;eim2{{`=xIq9-Uu{&p?!F4@QkF&) z3)1wyGlj18Dtk2&vhSSV5{4z4!t=T?hu$=08WJGoe)27SRJ`j>sjA-l@@XJc_0VV= z=lqqk)s@R`>f29<*aQP}8ZH3#%tx}WZU4x)wBWB0BO?he&=NoH2SGVoRz(9g zbB?59aGRVf2lr1WeRRR!fA;PM2x z7_u~QLWcH^c1LgTEx{g2!MP+O(f)dqcDCDr4{wXT{m;Y;XtM;nYgcU$7P!-`c0+abccCK4ZRs3D%fBdz~6+NkP~|ECc{Hk&tG!>M)(6vEr2sY z77>oE-~S}gfBxKNZ+NpvI{kwTJN?-wZ9r>oRHBAB-m&(y!lV#Zcl#DWP3D*c!R=q8^)HiEeHx&=-wtsj# zFJtyQ_vIE3(VlbmJszC?M51PTzO6mSy(hP&ejn7rF7Dj*l=$?ZetNo_Q1CYV`Y>mt zBom-c1~kJ^=>6aJVApBXg?lqvAupRPesfZR^X8Lk@O=LKMLj*ed5skI%J;HYo|=*( zhx!_SSH8?Cnb9 z*`=ik`C^tD0BccYXr(urZb|?PN$f!I@7?)fO6afb$M26Hc%-P1jk@fBLm9GVo% zihScZz2xY(Kc%~TM-bpxO|bZ)W4gNV&oj87A}!Brh394JUdR=c0EprWcw`eF8aN>} z+h$S+6xMXCCB0CUEnJ+tp^0i$0RoQCuM;fb(YqxNKna3;c>s)GKtc~to5YU9CDQj7 zeGAjWsz&nMYWSFt6=_to*L}bhQL##)Ykg3mqE9GbX~U^4RCk_Qji0?aJs8llkX;9y zEIEqQ(RELpLnadE1H+jS#}5%x`V6WvZsWOshiu}F-uPOianF14JF(tEh?x)daZAf21wQ*T48CKkHY&)up5LN zJTdN}@|k>4Q79^t*SDh53dE>4|HEkjmoZLuE2tlUL|)vt`;$%a-@bG2n_AVX#czfI zb6@S8FZOANmk*87$V4N4uev_LT1{!urk504Ce{to{wgs4097AceFdJP^`$ey4%h9h zYlsXAabWgIUMJDezXrLhy@+T; zq~pAf`}@g0PT&c0{L;^0IS0PTocI0p>lgc;d1?)?|L?A(JX9}VsntY2DpMIo7?Uk$#JQ9amC~<_SfQ`$nfw5ws+;a ze7eMcb=Hz~MH%Jb5_SW)7QM&^t_FU&aqeiq^V{1i1U<*`zP6#~=4g1=X#-338h;*)sx` z2D%ih+Ozh-8uN`Xf&Xj(LoFIy_XEg4+jw?@tewfOu|m8pnon7YB}5Xa?)Pu6pkw zr1x86X`MGXMBiU`5VZy*eWo3MxArXr8I70{0fIz>3ThZDajuzeYoFb#<39hq;TR~~ zK{2fr$~-l%Vj;Kcz|%M|3)gZA0RaT`;nybvYa`EJ0(jXNcr!;jQK2*a)N>b2;{}A! zCrTA2r=|+J=74dokcKw*dxjlq(4OCGnmr8K&!U{9q~x&sahv7+nYZ?j%v-Nmh0Xl8 zXljv1PqS@?w@&Z9H^YULIH&>fX!dHf+7J`JuhmlLfA6rx+O#N|6&UP0(I&LH<)Wn5 z*Sf732WRFO!ak&!JHxdl)!*1wS#S;NU3%^#qR56ac;F)xe>5n0{JvLxRjbHPr_p<; zr-#cb)!Zo`{b&?=t&uAwipT|Kzk4%5Cxc?oZJH7*s%lBxRu^; z=6#SiceAZJL}UFJFSr2zld5Tk6nCRga%=r)O>b0Bzg3s#E4Kso*%G*h#>nf}vai2E zA4}|1_`Nh(J=A1%(?@WR;xl|;88%%4?C~OvSE~sfGm6D2smSHg)k^&N6_Md3@_};? z{DFeI^DWLU#77%RAQHbucg{#_!>QZ?LsX4YD`f!kL4XUum!@`V!vysGGdyQg9F9pGDC!SAvwlcjU48w@X31)pN;5LbYR^Hbt04g5Hi(aq^x_BMfFK zto3BO%}x$4xIpw=iteWtUT2@wN~QKdu{pzsKj#ma@!YN{r*nna%v2A{FSGyijDK74 z;PIFQMAbHjihWu5vCD*a_quQ1b!{Y9xTvVRMBIOpb8l$gjF z`{u}n`TW@YeE-VZ->wU4$6T1h7T)#T>h%OPcBqebW+BUZoprRf(l*oL@t@IeedT>@ z1?mzw@BfFWua1lId%_i^J7ht+kuGTgkrV_3q*Gct1VkD{O1eZ!K^lamyE~R>=py}tMJ|ytkZE8t0Fa}f5{y@f z%Dkfq`}57~N2`2Kfl+HiGpk^w!I*1_+w~K1S*~gOn=6*il*v7TT^95SQt=g#MXXSkq$b1lMCLS!e4&cNT&OinhFNcTxxNGcF2i{h*(%y)_cBw z=YRj)hlrTCqZ9yzeI5=bzthFe#`$2Lal4oaU9hVy1|IKe63WR2L-{S@Hd^)cX5*CgL4_~DKU<$A^ zTwnqmtlFi2_f(?ZPZgxz4G%B&Ng++iRqmm@x_jCh5nyt1;> zk44t{m9ny%tG=z7hIQvv(kN}ZX1v4!<&V_$8-&O)6>?0?i=YlCL;Ax1{<_p6S0D6< zciJf6{;fs)g9jZYFt1ku=o#>saOqM}Q?D)*6g*ATk?lP`KNsZZ*XQ-uUW^jpp)u^^ zjX9L(F<7&)u&8rcm-k7e{%;D5Li**)pu$2nBE27P#^Q6oQoJpI32Ba%S!opL7It(G zCYH_Umt!Xkw^egl>Z+B$NlGlRf9;p2t*yOCKq*a#b!3oU_FKM zhh?bd`YtlLm_ax9`Q~2LWhotegX`vp9HHbWvt~Mu2g#fgBthR5b(~UDJj{CUWXjRJe$)Tao_#K9(qC`=%-ACrDUtc8{^- z2DMjfyDV4%wTlJ`+F9`=s)Bk4w1;FO1j%G72cjEPliMAfS#MS@$ zsFg4S#2{lLD_qO{{o(is4eFv+@T}ja-HP zh!YSqv9NscF{slm1d~9flkq_z_e?rkVh;~%VUd(?$)1sXzQ5s0N03TC_!tu;TveFB z+5pz^OL(Q`wDFQ=Q9{al`okp#j#K8MG+mewxIs3gAF?0Gm)i=qTd-Od319y6 zOoi&vRh+rleGUqVywRKgVUw!VJxJL>7NpQ82HJbGz+GoKQtRM zVMECtjJ@&$Ci2$1rrFDnmB8)d^|yL2jAF+ng?>>LEHW9q5svF zbEO%Z&;9xl$;C=OkALUi6jEkWh+`1BNkNjkE7Q2%vc?=M)Jk%1vyx9@?t zBU;c7)6r=Agw>H)rKc7{N{wO~dj?NSj;aF?K1%S#R2$-s3 z!K|FvO~H@lEaoEeloBh3EHhGEgj(+S1P`mt4^1|8y)Cwuf^y7w`XeWc;qQVgWqUKF zs$TH7Ibe(1SyC-hF);`Z=ebvhq99+?Mrsi&u>R@Md@*V41v(Y>;SqvL+J!0_i$6ZC zuI1KGCEni>G$q&cw+0Gu>Ho$~&oQl!Z#zf8oLXIGe!f5v7Z*Pe1F_Wu6BCo8nR+*? zX2r1Uv%8S3jq91jEUEE$6N$^~u)$rKNL9p;0(b#H%q44g4A{F)N#FSK{L(3Rjsw?Y z$amDt!a|mV(C_*-hM3Mj$#!$%F^5hys0j4cKX9&)I~z>lEugoN*KG2s?vOhNQP$xi z`ulx4`G7fJ0e)x1lh$1Dz8=T{ zSphJEe)O&r>pM9hbzHbUmHCzgZkoPV;{7heNU|xyPoNvj42ajHIZt)MKJ#Bg_pt0KFiVS(UMjn z6#)$>!ar69hKG_LL8r5bp82&2H5Jum4?3-CRbmZzIVJ6qxNA1;8tgi&pA6l=pyHU| zOb_ILMA-WOP2n-DVrp$510*Pw)zzC>PG17{uCK0KXC6uuimrGXDJUphx(m0#w)eI@ zzbC?1%3A&Mq#|1%ldSr258;8;ktP4nkCqp4$hIQzut|BeCfj(0HGjR9^Rr~{yuX8c z(>F^+Bqfd>hD06>K6q;Sdt_wf$VGVs^K5BkMD>k!JBDQZ&*mE$JVMmf^*wJ)zjLEz z+wM@$S1=8jooZNXi}(3ak6xBCtEY)b4RS%Y{}xOyd!5Rk4kLZ~L#N1R413CzRc?U% z=FqV_jT}{miz~cm@ z0{DO`WU&B?o^zFHuI^9-ohY_$$$h&6UGy%j)#v_#&FOUgdd38ZE8o|P!gKecn^AZa z4Ln~A2Q0J)h(Xld&{9I25a@b!-~7fZl3ckzF)IagC(Jwy$?bmd`P(=0JPa+|-)KQ} zq6E4nGry;5M`^DzFA%JC_WHKVK=b|mZ!gbJ6~<4m?-xaU4+mU;()R+x`hlWczNIq0 zwGsyc;WYeZ!xo&K%TXi|a>qH+{N)>nShMK~Bbz^2&HTghGfe;+yj8saK8S$BvhMG$ z5PS&Bmy5ZfwK-#;p#vC$4=G4v&<^>LpWj<*DsJQ8;80IG^t_^#jLo>nrtsviQXH}6 zB?(Tzvz!iwu%4G(7y28^;(RD{72s*drwaN9s2k_^ceil6zoEbK;h7S3R~vV7AhxGR z$^yG7X`-+i^GE!m7*=$2^rBdDP)Nj$UiRy;_|1w0Ddoi5;MCcqVulCy_V!15WtiFh zM_d=5Chry`#5a{{8{2cQ?lpqPx4r`EX)d*h|1NBMGh|_ZnbVVq+p; zWo2~~i~%A|4cEDcw>}Ix!+t!$^QP%To@U8glp~#GL)0H*1FR4bkCG7T?nmuB5+0@g z1n0ja3*$UWDAdyOz9T@rfSF`zE;o6fZwyCbfYgBj>5$zNt?6Us#?ri%lp^|A(C(l9 zfLjM!5oam8{5sLA)D7aAJzX=!OuQBfzp#9*GZq@-kVX~_lh z5Vb%5h)bx?&ixFU@i0=Q&i?=r%yDSKdUF#8g5bNsy8Zihe=P$0GY*M=NJ+dmk@^W3 zZ6d%5^91Bf1x&0-*qDICL*F_cR8TJ8Ium!!%m{;!$}SXaIYfW|U5u988Me-E-4XxR z%BJoXAJ^0K(`z8mo7ZaQazf^J*D(mED|i`Q8Io5rn*pdrazb))o)X>*BwYsz0K_>b z&3NSNW=f2oEc2ZyL$btue-(7Iuu1@zb~D&pE9LKFEoAjJ36VwjnHDzDriX_3{v9|q zx*`y(?w|r1O%QC!>TdG!^RLZ=w4<-R?5T+N2ZPS5>WH0PQXb_>837pI}W zc(P#r*C)FQSGE54mU+}G7u^qGLF>ftNbvx@LIFsJvSmsP>rZN7zb2|RkS7EIDW+>* z%mKxFJ3NR%xoP`&uF`MU@7;R#9i=loYp9U4%!?3T)EUpdGC)&ga(@e-nHgOvJWOIb zX9SP50JJmNGN6*@yv&Xx`RRc)A#{;*rOU=HoNiBiFKHd zck!uZKEFHJJk5_`o5-8ZiV-npT&CXr|ET?$KR)07h-?83;ki&OjJJ;F! z2QagVR{va-$lJKgi``DU|9C(Kkk;=Z==RPo|4|AY@Z$LWU2qu)`RbfNa^1CJuwSVl zjB#-|Rp=WTng6`aj3mqO9+*_~fr%K}OuyR`?$v&hk6CPb6|!=Vf{)jG3>!XXLUoPr zZV`_-A!l!selfMmg4@K5R8BPw4PxKtfuNVP_A!uy;3eex@7!%F{)7VVuEX2X@t?PQ zcl9nemL0=~Fi97c`|C2z{AjsI2(yz2vr^(y&Ag${$Lq$d%zpRD*obq1Tc8k$p5g3( z=jFd~N*gIasYuz{yPQ_&(+o_V&lRK6988s>YynO$AbjKpIcTZAQ$Y)kunmW#dFb9t$eyYT&N3W*eMB=4*8X$ z*6RBTfmrwcG(WR3qoxI{V9--!v}^?kPynbN*0J`h95cuQucceE!S}D--)nzIxjWy# z0kco+XaP+rUB<09?0kVfw*nGe68~_*3jcat|K$S@ z4nxL{0!aG7cjxElfE%wa7u<%_Kqu%-&IPQM;``OHN=Gnde#eE^fy?{llCdm*$nJQd zkwn6Lb(GzK3v5VlKYs&E)KvgYx%)Q=Oc+0swUr1^GLGqkKpU8KOA{|2xHEaJXrTO9W2>h$7N6CFluX#o;BJ3AUP1fs@}gLoef#9gMbF1LJ2yh5z+h7pc78{mJm&)Vdjo2_GMLVP%| zko1}TA=&Jm$f>>-Tid&xI1_tzXfod7_v!r1(dv|cl^Z-A^S|&P;H7{_#|#Rn^AT)pYwec zY{Ywd_J>w7d>dOAi#b|>lb@5H1%5MxMR z&@)|l&)k(^<65}KjD!|8^wRiwLpV4CAM!{v|AwPyR0-Qyt<-;gCBIqZw$fT$;kRNr zw#aCEd1f@yPI`D=CiPLqsM{uyP*N&Ch9Dgcl2+M*l$0xZh%D{o08v|(1tP_`n+vU* z+da6Wk@Gi4DgT3^#M)7MSgYSv^7oUQ)u@t9z2`uBiqet8wBdd}k0(8b-?i#B-h@q# zcu4(q+uG{vvN#EreTwuG|K)jdK#S+-G$Co}XP2F6`LwX+%M&)lcFZBTtl}eCcn};M zdf*9j{XX44yHkRkjwadb??XxQ>ndNy-Vo^9x8N$4Dt!2JB6G($eWlBDWLPK6aMp4A z3tqSpS~LilNQgqFCMG(uKn$mjlUh9sFU$J#tI6AsVQuGU@O6LfdlQWopHEqYo@|5t z(cLxg&4qk2ISSvU)i6_4n2xe(v_ZVqUG_V53Sr~*Zt}4=55SUY7B^!Oand*vw-}sK zB0bD>NBh(nQ+j{2#iUCrD+Q2Nkf}Ie)+pM0tj0lnitA#jIJCcvhHapBGI3I^U+utX z$dv}x7;72nuuyaEcyAu(LQ8kexK1z5a3JPo5+JfKBI+meO;B9bYVFIPIdO&;4y%vQ zdadZbGGpY5UEiGwpO{Y*0q&FVj_&~2{Q+hu`Q@%gO-${NM(PDO#;dqi zjkZ6wg))XM{Zd&i6)=Z7nMl5gFDsgB>#+H%IaF%0QX2ka^$@6uCKY#2uwckeT zm)HdTW+JY3pLKEl>_)g-VYKxGi;QsJWJXMd5D$e*dvM+F@6osO(4IO}Swp|ryHhem zp&c!#s3E(W-T{ildZZD2{=z_pXA!pIPjiMNdHJIIMc<3THa+Pv)bSp*FObG=_qp$z z(Q0eltP-s_48=?!a`RX9BB7;B9o}f^9_Zz`8cRM}a7JmryXL&8FSN;#K3U0oTl?MzJrf*S}?>6x0Wfrv<_)o2Z(pVPje`N$$J-C?D*Or-GASxE)p0}6Y@IO*CyB71Bxr^ z$xXnj%OwXmed^(7QKPA8m7cOd{VB?aM&I@JleX}g>O9;Wc$;Xz*>uXp!ir`hKIa!U zHCecB%(D149+*=}U&V+<4~FY{&&_Z0dL?u}h2#7FK#wUq8b*%EYs8$R)IM}=Vu)nm zXUqRFbLWmbR;V7b*yd`WB{yz;i2LEf!2qdvu@Z!?p4Zt@sGAWvLeJi_M+N~ zE2uUh2EPqcD}}k!8{8bnP*P4v2U#UseliuZl}WYuqdhG8Vu(Lu5lPx5wKdnn2(9$Y z3N+yY#&BW9U-G2Kob&mM3M~DS=r0ZX?GrPn=de!z3JdG_ySs}-(Sgp5d1N-f!fJN* zPqk+Hwuia>BP4SST%V#bLxj2`RH8&|#8AQ?1`AXsXb9?V`S?NQm1I7Xuh0F-NG@;n z#zlARjT!U?)#%j+tcI=fb&IU-@fyCbS~}uN8F9$!p>F7ZJTvu8(;cN0M!=Y zaVLy)2h3E!DrV=ll`U>NN}=sOsahQMuxz_&RyXKy+K#P1$yqcjGr=r1)2$y&L{Y)e z)zx?Rxm$^d_qjUy3ykw@zP{_8nX_M&uHTJ$rg{$bKjM9tH8IuokODyE!*ZjzAJ=bi z138H5^W0PdB&o9RqP~804g%Z(+AF1OXC1y8yu9uPsERQsY-p1-n~>`xj}7R`t?$(b zN@2&H;Dxc#HS@%ciO>|bLt>{4sgmCto{^iq+cyc8l4SBC7;~H#Utn4*!VoIR7i8?& zX{l!M=a1G96FOqkh!La`PdN#}oDEW~3_gDQ)+B!O*Cu5JW$17m}pHm>rc*T>vMEC{ZX6{xbx&6kL z3|=;thbGY!@CZDfo}NxN0IAj;#)i9HA9GswGGltM_GQmyxRt2=-Vw5ak{_4gnaTUUx60?V;mDwad`Jed zsG=m(xxuHMkn4$>&jh+#wP!1$_us4meb;9TQ)unT^9JfdGmT|Q-}|lIDMcPZ1q{w) zE9FavP-<3bYvIeR7~ji?#stC)K(&*@`%BZqq>I$G%myFy$jH7^QBkP}-f=^i!Ra~6 zsl_miGHE!Uc;iE&!G17sl*<}|w970_{u$1jXMXP1SqHkD{lJPC2K|nL5enJV!+z)J zWHp0PT~67Q7m?i-v4SXp6E!qr=>t~)x5+Mlf&3uAV~{kz1m2DEW;D1-Y+t0F`KIQD z$}<63X_;)v9BF)%P3*+9lWS}Dxd7;Q{lwdi#7g*WAgT|IAqF$H6} zZjLP}+)?i}m(ZR3=f8-fD;L-C^=~BNZVV0Yq0c0@vtnILaW2v$nvTh>cgF#|$H%_e zbz2VN77R5LR=A4s>dubh8wS=_lDij0aYY(UbCVxCZy=Y0+;?cI@n! zfA-72mVZGXwVSQ~roCnr@VdV`Zv3S{7IWAa4(xOWrPUJ(imQwUb`kM^gVAA)_~NSb zoEOIHBvB!i^B~$}A<^5V6j`{nF;@9N3?d{9cLcx&k#I*Ff8Y zL7xlayj4JC4##Ys6#^iM_CM&IpTEI5Cza7Ap5Sgq@)h0gAENZJQ;QLkN4jxbQuNe zZcH3;d0ZsYPq5%JxI-I-xJnJ7H$!ZU<~*p&trSH{x{M zudb!Vgrp}PFzqOvNpgyEND?Jc9O>a%%LKhdb}Q zcZv-E>yu)PL*t$-oP}?0^bqfHf5g}RoW04yO8b8-?Ylcx(MzA!shlm__*(@f#|TIg z>Kh^b+u%l5#2+pETsORRbr6~ZU!?di5(l6uG7^6lJn6K1&G?(ZaO63wP?mNJdyJ1< zyT=S-3XkJ@-@V0~4byefUs=48h3oq?d=?tSss8xQY%S0FJ-+*Jy)3PZi!tBApFhq$ zi)adE&q>p9tk&aZiAJQsHO^|hO>7K~^8x52OJw+0DKVD>Snl;`e@0>sl4&gjd}5(p z+6XgS6nOq6Vk+~>S#QKo9E$TQuJbQW(EOl9plwZF2Y*ZyJcVuFc<(EwMdnK!cA>t! za56z>urssYsOSjfj2m4@xo=XrVHLA5!neE^%9oF#z@y;jJj<3>YfsyrqkSUfZqQXe z6-bmqyJC-yAgj`SJxy|ZxszDx*UQ}QGXEFw}q30Nlj6;hWpQ z>u3`ec)~oW^#ZyZW^6la>t3KHOow$;aI^X3BOp-3W-8iT%#Uok%asQCb33j~@rw&I zsXmi;;^OW$W78!rJ3pf=ur|6@OHcD+p79AWh#yw>Y24aI`dLy?_%uQ$mYQ-)N4R9N(D&5WfGmNTi6}5_ zTa}h*W%YH7Z`wx!&Wo~6j;VNoz!8DGuY~};Ai-Z9@K9Y=Vd-p5_LAS4FCbt_0}4Bt zFuW>_b3rp|3pfv0@@vNYW5>>GpiXn#dGCA-`S5+B)KeR3i9(J$mDzcfpn}P%Sq3A z;NUI9OWy8yr4(0S+HYX;l{sjMJAofBH8*k9;yw}bQTu|~f4 z0kU0UYczm_By$@nwV;=UXc;nskHJLFhL*`UqKfZ}6b{}g3B125QD+QQ58 zW9A{Zc!#JBaMzj7_b~cFlKu7jIw|#99qV(PTr@{VM_B_j5iv1WF3`A18o!*+J?mx* z9MMtjlx_jJgpyWc|QBxeuvJA=lhab z3enTxuzsb~0=kITNPvZpn=mm)?B@+E*DcYEiz>GY_`pxj-TrgZjSa8(#dk$AtRb7H z3r?*La}^Bo$9qA&68Ev>U2rjN_Tj!?zTd8NUtQOB&a)G{+6kx_wXC00@n5d78g&!3kSzqj(( zRw+A!pkYypl1UAm_{Ll9D;i1XzZCVO{7m%pfdbmyK-g=+jf70BBA(Z~z=%aY&xu+3 z#CSQ|)7N`AIR#XQ>znYulU)e_Ua_gg&JEbPMf>z1amb zWvd&6uOKY}P8Nxbz|}DO8G-o`{WjNlGivBB>nOMh`T(4N7muw zui$;)tJRWwfAWM-aF}>Zbdf;i>x@ z%xyX&@6Ul0>z;pYBa^v+h9Ka_88dhD#Y*InzMuBG+UK&dj-9EbJeYvtP;kMo<9ALq zc`@lgb(zEp?1rllNU#10BdkSWG`>S6&%wFrK8~cbMU`}fD;Uz24>|cBxwk9uv*75} znHgn>RnL@pG*Q%xcQQ#dV}*%di65Wu3>)1%ucy1MEeO9g&c$xSa5MeU?9+=|<3ly`fBkaqVGjlU1tpsRqmOs!)5J}tZ3vL5oBZ}C@;EpYUzoRm*RH2a zK%vG+qEcC%2_l}5g=e=FfU!>a+b81(NB9OCmM&)+(%`u=uGY%@n?`W3(_jO{=$94* zRH&&&Lg@ZJyh9mTCJI#J>#GkK9QoE*9uz1IYiag@mo|tSE{Cea{H`nZ9 zJebV&2~NF2>#kfb{MrxKOR1w>^Ag@^2*A_?Wl?E0NIjBf7j`U<7NXuk& z&<-R?Sug)|Z^%v`9@&poSmwy%QE$IS&uDi2#5!F3S+~!n?1?mua!Dx|`fDV}g4jp* z&xm>n&jFHQkU2m#g~&i$ykUGHht4zWoxbSh18C<&+%4OohM3v%8m+ly7vY&zY*dY= zZlV}58ClQF@pm|zN~`T=Jf_c%y=%GrDf|&GH|JRE@><2(4ieygEPs@fqFAMR?21nt z7h8#xkD%&u;GMc~|FD9hvN9mgVZ6g$(d9-}XZ(dT&2^Ty!U#ziocrf*-?J!}(Wu+8 zKz)-f=`^P={pjn(=Ejmmudh1D>w%UPO_i^qzNv^fdr4m zB6VftKyg2D7z^AguULm(g0kaqrrI9>w0+7Mz4?-``avu00d6CR2+2L#&3GwD$Jwso zrKkrm_H2CQza${8ANHB(0-{i7J=!f=b53J)DFP6)dE>o~X?VmJozyO44zul9oKmlfL z)RpO?&nD%;*c0%otI8bD)Wz{Gb-kgN}jSx254gA(JrW4zZjL114Y_R z+*F$nwtxV+(S$;fe`EvaDt;hZz4k}0U4aojxSt0E6VKk6lS@+3Ba_Gz5wJCUqs@df z$)rUQ;!|w>R;t89Nw&qGM&+5rwPgs41*T2y0}f6@{L{;-PE%g}C-5+DO(9y}djusM67UomS4acn zG31y*d)EkR$-QQ4tPYYM`_q)|+f-mLYskHioMS@f*}xg(=(TUt(P7fU%Q@WOve=T# zV0CU}nju?T4pwq=!U&@RnRL`3sxS{xtotQE}ELCaZif@nWE6BedY|WMmPt+<< zMYdZ%3I`DXSRFDQaan(tE(sa41jjczPXrabiC$sE3vS;*I>F3F)^Uk_Z1_RI5mFLn z+E?f_&wVo%b1<{*K#Wd(_z5+ivCWkCS@A7T=}C0Y9W@Hrg9@%>GGt6|r6#Lt_o-wG zPH;PB1>64C%@V7+1p;WovuEB6!2pS&t7Qw?!30@}!f(8eC)MDEY%bF8FyxX!xkuhj zz&8|Dzo6Ei5kaR<@N{3cmN#7;JnAV{*#0D!!f`4l;NJYYwFQz^=|SJ46jfQWFyBkS z@D$u$fW%!jg>w4%k&B7_rbjV&$sLVn3R7P4q;R{rlqB> zTco`I$)Jz>bpPxh5$hofj$|$`Ij;PxzRuy#+*z!F z^3P!ws_kS&)0sX;`bM?5=1r0}@A$~S>c6zLaMwgW3qdzaon{i3@@7PuG`#SQQi!;S zq;w5YrE#5#-wN=;KSF6kz`G2V)Vg_oOS zLEi&o-}8jJ27#AOh7^xP1L6e`-s?L|kKQe1BqgP?*7)mX4NFhD{qW(K=iUkYR<}fN zb#c*iE_QzOWrMq`QZ6oZ|Fh2wO_JS#Wj~K}KcHl!l_u>>(tSKH=Q2PK7d=5{?y-kk zlIJscbj~B>b^qVL{4tv&ozzAQKSpq29P57Z*{%R^|G#Op|HMZ%Jm1EV7HnPzr$&y{ zCS(OIK@nd$bvbJzu2nx^{6eE|t+NL@tXWHS4ie(argm^})z(m*s(X{#dQaL?P{{n> zKjErlS<*4E+d}y{NDm&+4S#GLvq*o=Q2PZ&0|p8!2M&tLNC8(O5AtQ) z=K-Y>U4h@-$GDu@b*y+BL+1(tOKRAXU?p6Z{2ZLoeB`OOB2Pnl(d-oldl~+Vk|*yc z^P*fMlNOS`xE$`LVNrG-?V^LbGNdbNlA??KLUe9W-%aFlNdO7`sMvSO;;T-q8m zgC?C^KW!X&ka7f;>()FIOHv)V&6J#OH>aQApe#F_Lh0sPs~tZ%RvykP?1-Kp3k#`tr}^WJq3a`NJYfK-ue~vHa*{4 z&ypV8a!3Ii+7EwHF<@YKCla)wxpMkIk`y(IgdAKP=#ziMu7|sn2V9&mP+#tcyWnBX z61xU2{=tmDZevC9p}~}-2ZEDNAo;-TGF$XQ&K(Uj6RSV3%l!_z#8_Y$y&vhlFc&`_ zy?T&^5u}EReCeYSf|i57{+Zr9>!5S*P2TJG2cj@ekdcBsY|&N)#B@1$skJk*EA!19zyY?S{U>&)cn7EMJ4D2Z%l1=YK5Dv4A}VUuzi z>9?xh+6t<$SFjtjfu;b4mz6X^pMj(Ja%qH}S;rT)I1!fY=JT*ARaIofH>I|%QOXA$ zQ<4;@N=yHN`jH>QVcbYC`TNRcu1a41gR2de@{frE*QFl1_B&C(eilE}Y|V9ZvgHIN zN@v?(7C{Q3=2xVht`g`q&(xkpy*^i%^nwuv8OiXat4jhy|G1Yp~Ou0uP;raXg z9$n6+!_NP|=H06R!KRB(E@av8AIWfY8I%<2oZNbQ z*V-*ER(4XM-%@KALyuQPu1zjh?+&MTkAO@BR|6;;^o9M2Utl>zdV^O-qQ>95z^Eej zW1GrddU&b+7FiJkdYC?b9O;Vl%%rVa`KM+769c)@7FO6%GzvjAl$8dT>+0Kdr)XkGV1m$K8#iPHVf5_k9wIrMFh(U)E*HY|n<|$0h z3fCdo@j)D1Y{F{Y<*k4Z1Sh?0A`coqx60&VFyh^dVm?C04VX5%$R#f?|l@b&h zDhcelN_(}3#=Y-Taw}`k^$#;;@`Xy@KtJ#-Y;{^cE7c828)%!J76M!hO%hw+1AOHF zupp#1xDlMmq^i5FHL2xB@(vbU+FRl_94Fa-w=Z)qMH?B>vQU7H@|XXS|5d5Nip>Cx z1LnkT1y!ObS7n>1SALf0$N+nBL5|wn?_<#V3g_qfKqe;4C24zOX#u4F%xIy2RE+#Aj3pR zzouGh%WFO6Bol@cGXE#Xq)+o~@hoDbw?tAM6hsB?bJvt_(|iUG-V}5XR4}eNMsnYp zQdV+LwVBd}5uEHW+Kk#HmeVw(J}BcnxRv{EmTo z|IiJgC8?=;V1^c+mzn@#iYj&ve6){QR_xxf&*k3AcVDZ_)IYtu{l@x3Cr*> za6GB?h10)keH-4V?4onf{Mh1@`;dK#-5vVA+%>DZ*dK<6;)|hTV?0&xvQ@qGi;9!> z$PXqjY49=2bnax}>20)*jxoMVgXWgVx0ahVT0A*MLB1nWL`~=BAg!T!rNfaEPF(s~ z@or%B5H+_SFh}UB)8*BVKO*rN+>dI4oHh(;SKM)td354_vS8)W#f$n%nQXK>#j65Jb>=enaRwRsuNh2n#^CuP3g)oz*S>xzV-Mj z%HaWM3hJLTezY)ZT)y_nFg`wA%yZCc<%g{x9*cOjC(eHB?omMQ!4hR{$=J}4#lQ*v z@ca`#Yuz6KadGO3ikNWKBJde(zWL;k%sWtDO1P%%XO!jAp5zZv{q91!3eo5?(egD_ z;6%@H?6IwWf{B2JY3T4%0sWN(W94EMfjf1m%heZ%VyNx3A#9mIz%k3Y~}PJ z{G$So6p?U(-+eP()%Vu^MZ}A;Nhex%EiN)*mpiMQJ=}Hwjj!)dS-9pY%VrncH2(w) zw?AU#+I`bqp00Iob)h^z^^7lI=^-c)L7}$X2pMqB22GE`FKJQwN(n2s4Ac`3fSJVI)q@~+oY<@=C+i3L`m(Fl9tP$qLI_~14n zokZP@)`_xWAHB;{E#1Bd2aKOuA?)2cpFT(s^1*MC!mvpPVSbnL=XG`eirzpC2^M;O z-`&=r63kQZe_W~CB4tmadA4l7F{FK!8yWWqT3f5Lo?{2n27U6hZe!5k!&oa4Pgeey zjXSYRi8<_|kll%KfsA9~S?^<^+ijjk_jXWnKs~%hMk>_1e@ca$!aepiNjNV~noX}$ zAB9F!xxqodaSW^|lM-$+tLFC9=}nJg@)Ox8FFD z-QC>QmyIhy=pv63EQc2M2`j9jxlcgZ|w)y6h=jlwrFH-wDiPEit=-XOPZ1?G;ZcX)am=uNXN}|@XVwc zZR_O`6CZ~j)XG;YN9k5x5a#poC_1OJ26X|Sd?H)_Ji^>cA3t@m;%(|$mnE2_sL z&dm|2Q5Mxq!|p$(YuWe*tDPQS2t1Ez{?zL*nkU!_Xn)v~EC8Ru`Cq(okf8(k2>Iqy zOM4&9T*}5ZQb||51|@dTTZ6TH%m>0zJK~QAw6T3KzkArYkqcudr+yM5Q1!!+J^?ZfdU`<7z&9LQAIAZVSE zm$O`}qy#d|03C8-HuVJmz1j*D6s*-K;501sMsbHBm< zpm0{ga&C+2$R~UR2IW-2bhU|jZ9sctbWFh4G}!VFjk#5l1{IgTy4~fRE_#%dX~+Rr zBV9HS5#WV|k}g)`B_9xR!cA-+4tjg{alVxhJtO4duTHqcRTmXEXNzC>-yZfRs;WhO zT+b==$T%+!5(?TqjC#~O-dI3QvkxVGhOM-Jdk7W0b^P;L8@y$JJ>HXfYuU<(q`_f5 zQRkyBNOuHT;QAQ&xbKG#L*=><@SZ6BfU&u7T(_GdlDOCswD8!1Vsg8=h<;%LQX?VHPb5qWY}P4>iyc_%&h z^6kP0{`WTe*6m;XjIIR(WFCSc93NlbdQS^JaGVse>Cjm!jwr2P(5F!S?#`|aP#p~N z^g*T!c_mBKn6!q>gFB_OPP^_tBM1(nO}qgk;7{ti^L$jVzgg}>aqnRpfDoRr;D+mcmXS3iS$ZN&|3V_8jXoV~GAd|!6>w>zT>@Hg}JD+S}nsCyl zb&z3y70QLj@*VY0wS*Gs?&mhPSEhX3Uv7+Hhg>5D;ge;%sd)C?wX@r0l9I1(%FW?{ zw(?q^a2+eg{C{{~@`f!9d3>4Tm>;FGX{|FyMC5)`+jxiudiIblyuvnE|7ildFOCg-y@JMmDjF0VdzmLJ1KjT?@}jU=*z)Vd$Kv z;$FgfN6|>@HJ=!tJJ6;uv*R_~Zl#Hg*QVm1vsajX(}xa2nGQ}PpDL)ZS?aqp|4zzr$4Zr-nVFf8pb5Bz;i^$Uf?)-3 z)yu8X$=Mec1_Wc5BKCrk6uHtY^U8l68oQPWB(pK5cIoFThkYM#heo`dKk*DDF4p>( z6>aqCD1GH0O)&7^Y&5;xoftE;A$}MkOGM9Dj?X)#B1uL4Z^QpW(k^bT^&4yvcbehd z9mQ>Sa>jK_o_|*K-HV6xoa!a)F)g~6m$~Mj)biTxS6S+AFOQqefi9L4W8~ff$|Z|1 z^~pFms(%%0u~!FG+h3enC!bqXCsx0XTh`oV_&LR{U|P!1IHNVIOdotBr|OCAB;xR&ZDHXMtqru;kKDE zmi=2OH@gxA2ddUVD1y<%`2>+t$u8;r$HEy(X~??nzgTMKlHClx^w?3>U{;XMfuYHw6+8n$ZYW; z3q2JqRP|tFqRBi5z`t~Wg5y_go6;NA2lP>vka+CR2RL(j<^l%|gH_#1vbG6b)r9Cp znZ&Z(%^(ZY4;SHRRJ^63bV0Q5FIl5H!9j?W5EWKm804r^b1ftsfi3pITvD;|Oc*_~ z`I^c0618|Wht+Dr49x;&HmJkdYM+0eydwRNQ^ks#;w5Lz%kFXK4GVNVq^OukAj+TK zJwY85jYJcPW8TDIS?`p=;Ig)kV$SZWq_IL7P2&e4EcX*s5LRO1Y8_Mv6pYK)#D(>^ z(hSDd)23@@|FlO^G*DbJ*78n4oFXfvA_*R&HZsPQ%VA;x(j^{T=S z>i5%{LyN0c^dsG`52?h(@N}i2q*lwfXX!re>`)BP~z` zSqQ|yzukS8Sg76{O4;18VhQr)Dj(X@zTXSS+rUx^Y4_?Ki}RT@t2C}phZgf4|--!kQW;_3l5u6 z3JPX4Ec#5WqDY_%lZ(H90G*vb|JFOc<^%n9Lm^jF)MZvnLtvq79%m@s^M=`vEp`xh zAxwmWwJ1VR%OY(kXcHB{2N>~skx34zkJt=;5;qM2XV7K_^YvM-kXa(-UYIh2{w;bc z;&$BPw@bW7Fjt3mQRZmqvU%~&6pB;h5!5+7F_9B<_!2;sWqlIu%EZhN?@QZ0@{|Xz zy^NyKZExz)DqK_5DMxhW)JvcYJc&<0J;s3Nh`4D6ILg;GfT_r$LU&9Q`!miIRhEG8 zYLfr`t-rE|$Naw3bLR8&EV;<^7H2gT2nVw`q;bH~`}Cq(2>rsKsk2C96MN71I-nb$ z9EKUa2v|)Dr2*C>s=p)5l2RW==M{fH2{b=@)TSlqB5k=LEQO1_%QLTJhq_r zn08T6B?(Zt^zef22vUNlPm{HrSU{G_W4~BFbmD8IYUm1Eg=T+o8UD7wQ{e96Sa zI9#&s+pq#TDn7ZBn5iOx8FW}*z|FoMjKLhv1Kp$U53800wV!^Km<`U8FYHcP0}D^5 z)!#GL;I(4SJ>8Rl-rv>^3Alom&i`wF#n&K%q@;@8#&X`)|H+`3f{)uqAddz*driQT zmMY9!=;TVbV&TE5tqx3?T;y%Nt^X+Aoo`xoVSSqys_s5}%s~kDJ&Hmmz!#hCfOYu5 zROx|`TmJak@e`9Z5#L);9gQ5>6BL3uy$LO)JkFXg zE>Wp=Ty2I6p2h3s&g4+tU?t0y$JyByR#f1A?8ruU(L8CHk6AnejB#LGLRyCy?eGq1 zhy6)D9%TI=n!YkD%dUx*?ocVEyB|=x5hSF$8>G7)q>)sRE|G3tx;sU>ySux)&h|U! z@XL!IT;4lo_N-a6*0A6MjxR(fb2I9{a1phZh!Ir5I?~n*t>fjMO34sD%pzI+X^&h< z4eqv%7l9^+XKAqw{2HB_5B$*ktT$m#zppovt-d8NYTL~24VW^;Iq^;s!37_!^Aa;d zkAsID@By5@s8jo|xmfzw)CH*G7?Mmwqati~%^j}`Tzb8v=nDfTdYrPpP zQ_K`*Mt;k>H03VS?l7uyo|ky}{Cbyp#gw3!M0X)af=FiLE_o0X_xxXtj}LAlYmfEx z|FgP#4b3(=p#vJf zM6tcvHQwEBo9Wt3(Ajlm#Ndw)anw8nmdX$^6xR??NT_xwRR3Hlm{26pL=rjo`|<29 zj`tIjDs$7%LLr1+8C^DRagE=`4lck4R>V(zNNM9c)GeaMNO@48S&b zrSU!PL-gwvjy)09s=$=YZ@+;{cEhQMfz?f0hQDwJb z#Z()C1nh;zaE3nv!%ZM{#_s`YgkO(|1-GlVKEoVoJ#{FA-@9r4`dasj|8LL7SULbx zy4}1T3=)MCa+C6#sUGHAjD>AvMghLfrkefkb^o?;| zg9MXcBgyw)$zUzB{}%E4_mo`jwwkT@wTMKZ{%~8BJGl<1TELRit7;?TSRmv%KaQ>H zVYT~KW|?rZYd+TC`eYW2WxY@)H0tenx_i4rKsAiO@xEj(S7(Q)?l|Cw8C@tdbm92Z zRr1@?t6J#%Qq9-1ES*mPQo%~?AFMDnG7?#?_}6PcH?W#6m47Z#o_Dcvr+3QFNFpa4 z6RBE?i~(neezT*>C%^Q1cdp3$;o3anK`2s~F5TH2>t^3_snk2Ir3keFu2-O!Vt-!OaNLwd8~E9{$VP=B=JQSf4geNgidawsI=R?^e1mbNrQ zdWbk+nJcosz!Pc0uI>)acGNYoR?U_UA$3hSu67Zc?c9koInO6JsDl(3TfBGQj|)-I zZ}onmv34(MH-5mZta-Q8ewT6OhZ_EHS+z(!sES*C^jCo753s!=rX%~;#|_&#gE(*# zFl&~7j;7?ap0=6Dle;_LdKU|hJ=A6;w(be>$P&!>95ijhG@QH+bh;m35~1pz{7WZd z+AcO_YlO80Dw~B2(PfrgwVDh=aVeL){N+LaygB;PidIzi19qsm?AXo zfmk%m5A@#*uDdR`Xn0;}?tI{2wpz%abX!bb@_k8da{M~c;b<-3Dau|OK1DdPoZLdU z^qqgG#_(=OYH-*usT|p&eWcL41v#?3RJSB$DFxpe>vDFN`?UXw>Sn{<<#@SLWaB=w zN51Xr(}xME`&-#*S_*_Tjn_1uBD#Z{97{8``rN-T#6e@Up)`JizC>sK4z zYQjpUS-e*K;x0qn+{O>=mrg*5E0IO7(d(|VuFefm+W>PP4jvwiPR;s`A<7cIwZCx2 zw?Rp2?mBT=M0Yx%;*?6f#zR9#acDEy3phGEjs%ae6MyxHoTQK zyH5z{;-9pG^|pN6$&V|)cIwZQ8~mNxKylB1!>ke4xwE0xAT|o4jfTJfnaxw`!d0}4 zdK9@2AChM-SbY2&e(5GiLCT8&`NYPc)tl%1Mq6|J(6p-0(`z#R(+jokJRXmA>P!YF zaxwQkX1$Xz!tW&+o+e%gdS=Hn;`P^+@7K0cXZjSHBUwW1Q?V~y&h~IzJE`tAF22j? z7-?_})L~mqw7Q#A?K^X67lVjkz8l!XT1FzYuhf*58SffdRB@(YkoScVl~slGf*Cr` z+!N7q(4GdicB)w|I~?|jT+j9wZ!JRPVbdPa!P81VcldutQAdRf zrL~xA%*NA-$y~EkWy{sQEQVEtc4!l(j`Q5@4)5{v*k)kI*sio}kLx86Js~fDPfYTH zfyurK{Z+GV7+Iqauh$&RLw303)Qj|&1M-AEv)=ZyYOM)309Fnx=kYqP@li)>`45B5 zm`#Q8*LSsXV#yJ`2}L!`c-&zb&} zfX8#1cCjV9%BjYzdA<-WjycBs>I#8!g)%RXRtHrReS=lS+DvnYdfya5m)*Q!2kl#w zuP>A0Cf+aeG@7LWTATYYH&RdcS0ZA=>B9ClHUg&oap(jrfMSoCGrhdrYBf~|bjJW) zkY;W!4gCO*l-FHR)$9G-;*mvruwPqWN#rg$Dk^Gi0CJtx6dUE?=s-{6RJ@Lc0yYs> zj?zYV(^Dj>kkk9ZK<@|E(E(_+VFP&)l$a7?8A)YBshQ=0Z$FE!y!*~kyj*}FhG7d% zgf1MF{K+4QdVjoLpqY8@2aD$6zvmkbc1+1a&Umrw_Aqh@MY5Mh++=JJ7 z7P95X%9Gw=0{iubDS=`An{94>;)dTk6a)XsG~ErQw0K0ObCnlHe;eAB$k_zSOb-UF zK0L;{BZa~7ZihmrtCp4fKYaT^jUJBdi_au_t=^#BFx3>?ct1C|K>ys!B7LmIY+$s* zuMl8=S7d<<(fgiBp@H;JNKwMi6(aM&q#L7rw$6SSm zZSqL2yQ8gDrZWLO!{|aj@B7)UyJ*i9)Ea)iG2a@no1MzndS>Ty7cVF4IM@9QN{Hx# zBAJa|`SZ=nFLd*^6_waAkPpUY7d6X*0a+S?UrDQ8W?gPQoJ9D}+eZs^-dHLcZAF^&0N4fZ_qYqC>>|?FZMh+HXO0Wru!9 zqs-SGXSO0#eWh^nrJhehYlob|7T7u>>?`c(pi7hTxF_CjAb$!OI=B6lTxT`etcTe% zgb!ZEN2tk<9DCESFSfy)Ojl$Aw>E>RO_9q5F=<>}Pu-k;f|qZtjQL}5wu0r7-iTmh zV>?lvZ^m?ah})Rjm&2(LgyR(}3w96)$S*1JM8;UCzT-}qt1z_^{)vI@r^|;2!H^C-q?BMGbQzzTR3j~>nCFtMhj)MPGL5%~#b^*P6JXY8j(lgz;U+AN&%hLm z_l_yG?hqB}m3P{$q(>uGGxII>$LX7-8DiC{I5M1b(nYmdD6L62+}(C6a68p9KVAy& zxw&LD+L`H`zY==V^SbXKIE658s>^(R-i|Q;i=lb2Z+o!M{;Ksqwi2-~X%rEhNonr*o91x(-74$f}|9Q}HRSkN;x$mx^jCt}1^- z`C6|70TIrU4DxSg8s$vIG`{>u_IWyE%LYF1<5x0-FkGFDO#9Tq1vl@>9Y_qFpRv}g zD^bHw44OXPQ{=!BQ{3TG+E;I)NXfwII)8N)sq#u~?euJS$0XsyWxnnTBLJhrhjZqu zTTQHYNxZ&VxzcLDM;aNQh=9Niq*qT*PZN_3u#GIb^@<9Scj2{Pq`b||cK}=D+#Y63 z8Ylpk{FCULV%ygJd$3dIEIdM{r?bjKkgi{33c6#qWLkT-a$sbpyfLQjs#u&$&7p9dq zgyM5v9Oz(piSU3W_gpi3Ul-9+S3S}c zIV+Pa;&mUMG}#7_)Wg`$Mn1CLckZ?;8|H2g7{{Rb*MBV-V*Dbd94CnEZ#7c}rvsT^ z{?8>T#=6;~gm>0tmm@D&@iJO3PPbC?yb}f+hgpNP6|SGE%wiQMvF)IQj=RxPml1|)78Vds#SI{frO5MQC(3%q0!yjOHUn` zr}^W?fO&qcNZx}?kQmhx6-8a-`zl)PI$69xdBVzDQ7nbAkvJ}xUD{XopQ44$h7`iC z2McI7_@-va_ILKpJ4b>)!7nxUr0}%eEZmH6Z@f5R|7tyZ#s13bW(*Y@hgHzmd8hqH zQmKzOH!0z^`P%J#sc1E|)KlS9d`&v%BV;oOUG^;O3 zxcO$WYI|`9!KbpKJq(ZI%|=W7i4^d1F6Rg?J13XO2+NpIBYtZT(rB6;%ZlG5(kVo- zd?bYj!$DCKec(>7p_&elIFTg~li~|62l{92GQ01*yiY>YNIX8thA)LexIJ=RJo69t)u3qbIjB{Soy^Cp%2xz%OXnHDW^Z z7QcmS&241;wPxUwKKU%N(YsB3*?!xG_YwYHJ1a5Bj^>sjDnc2KnA8^!Pxl$mFPl=B z{!(CE;x==Bt%z5@7(eGW_m!(tH;_w6tI&3?*!bI4ZbDM(0 zN29%%K2O|aqzK0M7cztcb;=)@8tx5RUU)0#RGdr$svt2YOd>fWRU#ty!y|`D_ zMs3V@cYV`RshZHfYs1M{sN0Z?jZXe8&OUpT+g{Ck=rpHpZE2e@(aSB|3XXjDGLy?A za-)LR*$I4fih`B#j|NBo&7w9^ z{}6g}+b#8p$WIInDs#i|)+hldq{B_l=Q9~&Z-F82TzpoMWW=lC&*j9T>ZY~my6o)U zdtZ47oSiSgdtbok5vZZnYoS*WIZE|c86`_z5pvSWSGR%3)C4HA1U-=wR7$itZ!3VF5_wJq-$o5o^b|Np-*t6bd{5kzZ zBlR5FmV>OcYWqsbH5(nal^Ru)@S{nG(`S5UbwfRl&0a)G8jsmfQG@7K1VMr4u+Zb! zYJ|HDR%+lO>}zg#L*b)U@DaU~kpzl_;+0xR{bDX1Y4D6Jr+`0ynmADfFXo%)KapRS ztbm6v$_%}1HrpVmDb{M*XS{j6`5MM}k1Ww4+LLVa?5QWQMUsvk^AY)vZ(YbwuV;xb zjhB)?62ZS`cZJ)B+~^OjG-iMKrm-9MBST%epu&fLhgP7mC-fH0G!~}~3&=*iGyaIs znwwuOn+3lHp@jNF1;#fWSBb~_mBzj^83mjS|CQ0n*Olm&tT%TRSu(6f$0qhC%!D9C zDd&cj&6-yAS1o8tnrVOdsIb&d$~9C#Rw)1YHdYSTbw#;h^G14{VBO99{1Z_x z6GI^W$v6$K%iB;ls`wwQ_`d7^OKb*+x9cPx-s1!{6nr`LNcnZx|k3f41N5OuAB4iwq%Q2PFZu!6?1 zApa*6(fRNDgj38NPAGz($1t}(O{KIcUY6qpwNkpOD^10&&>bP;392f!1x5vh4o4K@ zJ@Sb(e*RI0Ui}M&#g{^mv7XI^Lilq1!qaPSj^RG(Tp?XQ{jsS0l~o0R>4%-!xl46S zpZj0ieS7L+GpsuKMWvK14$AcYiWjc6a$&{JqnA)Pr4V^%Zh=B%^1xt!4T$9^dpw5(4v~PIM6tY1}LdQ>d1z zXHNA4v+x(I4ZH`)%vUYR9@6i=E(?VU3xwUA&_nEI7dpq~H|ACHoQ4p3&(3aI0GWz- zV0?N0f|fqESc;dCi7#^{Gp73DlKzO~LZL_b{T!)UH~u<)d(?)D^rqw zzD>q64DafBJ29pC2z*9c=Z_Q~M@m}S?VXWyJSH_E$Lsmj5PMbG$u9nYkcdK^G9L?z z-GM|_gBA~0ph7sD%CDoX{YS|2`cR4`?#B-)F)@U@x^EUjpb+Qc^8P358YvWi&L!e} ze%Cp0VrkHt+uG*gvGXIKiVAB`EKH3iixy#B^x6HKAm(&Q{7&>PifdG}oH$D&Y-sp( z3~=fQ>_4-^d(IhNiIQ-sdsV48Husuo%k6mlX*5l{)%#7yRuP>bqsS2~rr>Lz0F1J? zwlK=_`WyyK%z^e58E!Ieu6EO<+oz6P$ynI06xv5^pJOS@h`*-1J#aI=!f*SK42Nus z`Oaz2ryZy>rnN>~@$teZ*qqf}2-QBij|)=f>3H?nqrHVoCTrP^xfB8_Kz5Z(H|>@? z#_+z+vLSU^05!v;avT)iuYM~MT~ySs zr{w0drNRw-(p^w*iFx1p7*c34@w^@j;yA~W)(?7g>1EWm9w5-IL=cS(_2ql~u5Z+c zr$>om`wyups}17HXeQ4aJ#1$PA+SGjf&j$ss3$O^Eiqc}h@b6dbu8DgC^-PBBe+Cst!><&=!t4?+= zb8aG2rgtW@{=~?^YkYM{t!WiZ0ev2y;40Lu;I8}Uny{At*giBeeR@4; z8kTE|06M;mNqI1@IB3!DSVcY=$nb_T3$*2!MAkas1FuZ|%vy z7ycm)2Q$3B9_a;2QZLV2K+jI$rQsD`^?vn**g87)dEmy~V#>kEKRYMX%85Wf6DS^@&z0j71?;d&cWB8JFhd zCp@=`u%NVU;8Xgh_UO>Nj?@2*CJfYdy`MHu zYxT55q;n13VH!IsTmAskV9?1@qr%C( zvV4Ue7)SN}t7eTVs-Y@ZMiQ#SxOgtxz{vCFeV%loB|z6MLTAzVDf&e9iXT5%o1z`y z1v_7!p2CDZooz@~Z9}d}F=+A8)$dR59wd_nTSCh6Mp86#t)@T?(*|U7J43L~&dyAF zB5XmS0vZu{@~P6Lh2Oq?i;)Z_Z&3J$tpDh{v{W$wZ4){7T;99qBb?iVg~YQDJ#`W! z`grfkF(6#l6sd`--ePj!B~L^+zjga>MS&5&B?MwSP^OOl41C^8U(p1YDYFd4 z07X68N7Bi0^F}JM*S>)I3(nYps3@PKCE0sRg;49gFNlu`aLGB6GzC4mnL7i*NOx5@ zfh&H`%ob%1K7*xE7A?XrfmH>Hxo>w#9Qn&IqzR9!N3^k@O(Zb9w1Qv_sT^BXS*Dcsj*>Uam!qh+UaV4KcqVP3p4W ze$92Vc456}g*p;@e3xow5SAzh)+l0MtwDS4HG4A4in)|Ad!Elot8C;Uh>MV+U&tec z=Xc3O_~@CwOd3kHY;o*-C$McI!S@Btut#LM!@qGtL_G5{lMLhkWwX2MS7Y#_l~Iz= zcoscE-0SHQ9ajBjAmVzswJ=i9CFF7T+&2&xIJhHi<8>nR1dw@B5|Y%InDe~}y01S# z2MddkgPx78(puyAKMEik{^0{#Bt*n19Y`9ZqhAPld#tp%Z4Bgd|BeOn3##*QSI^rq^d83uaBMzT&Pwnf^a z7>1lbhOCDpTIj(K5rMLY;(}2Z(!+I!e z)CS_$QAiJR3e@N7cx>vS2kb+Y;8zZt103Fix#VPnw)~Xl+MqV3+0(8A&k*_IMN$s@ z+9hYN!7F6RW9pQ=CO)t3E!%!}i|ae<^S)n#3-EMy=nC}ed_@Yi<>#;; zt)8z|D@i;#7_W~XOW6ugFqnJVzhY`|K&+`M76NcZ(i> zKo!Wfs=)B^lWMZCshT`-a7<08dUQ~^dO2~-+G{Hj2|3e3PtU7;#L&CPy9=O3>3X#M zVD@MY6l=Yc&IR^Nrk$uCU7nCI0l@bJJYYuBh4b_Bz$h93=vcHW|Mv7Cw~}kj{@+oj z$0`vgoccqDGoW0ikjew(S}M1xj|M`>gj<2^?)~a^QrPR`olfrTE;HdtpLX5&M4XRe zTeP1xC@5?*DhzqWs^R0sR5jz9jiC`yVn4b>EoL}N%rlC1gD=Zo3IlB@J+waWVxzdk zHq*bjVchE=_cAR=e~oxYipL-WbBoU2Z0wJ8Ih+}ss(|A`lPPiJ;XsLq{@fkmyUq*+ zj6hS*M(D9hU8bd;M&uaa?$h^0tX7a3MPyYu0txb-cwej&0X`?s-tQ#euKE4DZH3uv zPR=T3$O8W`mX7(pv^<}lp03FBmR<)B&XMvMJw&ga9{p#n^U+x<`9!$2d+{dz&}zNH z`PkE+q!u~S->e*R_>Dux%k4yQ)5gh=dSI~|aBRmjn;a|FeQEQXeePK7E@jbqOt=1Z zykfdU+p*@7rHx#R!LuL(^9Y&dXszwMTWU(KoN4PGB@=UV=Zl(ZbJ2BYhV_;kz3>zP zs#d`+0gU_Ibfs!>|KL9OK?7Xhfy8C+duE*~sbymv17DB3Yv+V2XiIX1a*iQfuVYD&uKSWSbJu5QY=Zyg=*X)CQ>qd8s(zE40} ze|=-NC>oh1eLe)gs5`1nOod&Al5);bY`j|^s;~T}5m`i-vi|kaW&oE9uPt`4Btgum zi0Wey$X`F4!gAH+uz$9xE2d>i_sWa0qGQfMc4>L}pVcUZ*(}HlqPIeb86P#CoyKDE zE?dpNc5M=k3h8a_WZnI!PnvADm2_fhk(dUi^8K;yEPhYp(^J-Jm2TxrjxGh2ftYUC zX|He_o=FyD7-3{DC$CDX9bFD7><}Z<+s5HXSh8)QftU|FckXs1ks}5xqyif-n2Vo| zK39dXiXYxh$A0&w>mF+%`I%BNZF==HDHc0byBe@LJqM5+Do-s3YSjNVfu_V@{)QP~ zqZv#nE8Qkk?-0@Hp?vEO9aMG=Lo{@5)S(>x(vX3meiQ;r6jS4M6GV`UhCaGQ?SjY4 z^_BOTX*>(A7BQO6(Tx55X@-yxZ1xtSqZ~q^|_XA21@HKGTu+m zG6^^@n_Dg+bKN!8KtV6RQo!TVVzvF-_VzZNLK-oz6LrJz?e6>{H6vsHVsmHYW!Xxb zxAeok63%(p)r^~z!m&P9)9a%!{Gw~c7jpVNX&1a$qOqX!OdqM|T?`5F+)yaDzon8} zV0Km>N_$b%)~orGUN_cRh&QSqOGv@jKFnH7BHiElie9d;}Z9<))$@F((0|SwQS_xEZa)7JUoeWV_&D8fKJed^uQmDSqe8D3@03=PYK|#n+54Cxa1YV^sy~N7FnQ#Yb5OguyfGUI&)kBBhPZ?FyGC2&AqwemATXHhTI3 zOXsQsM=78YzZAmS$6!zu3+OIx$2N1hVOv)RGd~7Mg?*ZpvL$e6Wl=COZKn$H8VbRH z7UMI~r%HHDn}=&#vgMz*XFx^y#Gp0bd${wT1;D}1NLjkDKr@N=jWWtgMql$%#2C0!ts6My18wy|QjIAT!MMhD73d_Yr@vpgrfpN0& zI@n5Q`*A)X3Mc&9E_JrLco7ZX9iDcLEFOmE^Br6aM%k|{q@0DfimGujk!*dAc)W?h zC5$W!CQ=aS&^OXyWKUV`=~|~6r|j;V1;;O&!>4QgPG1g}N3}FgNVb;0m^R#SoVV{W z@JB|>zB49!Ogs=q{cvh1F#BVL^9y@1u_8jP1Y1k|QQ&biJql zVDTEw-v9WYGj!pAPY8H2;#^Y2_^FRa8{y6dWIV(M?ou7fm8S%sBxVFZcKT^V-zX7Y zks<}2q{6tn*28V;h?sm2I~>$KedCXmC5h4l!%DrYH*8=zTg;Nu`zHv!!&uns_PzW0 z=2@&cL*48RS)2E5+*R|-?bXo(tB_AecXth)-0w%wz#3r&L+q~mlUgkvH9)EV8?1^W z_UyvKhK(*STE#4|BwB7FzNC7xzQ3^t<|mszKF_z;2Qvy^um1LMlPx|TJlEiWeI=X^ zqh*zPeB}mv(&vzAfl!D>#HfYNCh0|Zjj`f?bVl?E!3^mcVOtC@c18J$DsWVgzQTQf zIx7){#W_l!Agl#0By+*LT1woF$1ELe1FvPXB{A<|;y8<{xWR^{t-b zS?DSEHS9+s>6#*CLo@w{tT;b{prPy z!p6L-m%ltyo#y+o$p2P^z5Aqv^76hR1a!4}Jlu(o=jRTjf}~b!HuO7^8Gx3_oYwgD zhtX7$K!PqbvUCWspi4h|(fh@!H}cY6*w-uMW!tzlpiML;_RX7h7Qsem0Cx?*{YFum zv@Y-}@%rpZ(+y@yRmgkt*7pjQ+4#XFGQ^YMXcEnOVOCGM+hxe+HV{Jk;X zSFgXNgmd2%5)S^CftAEWh%tn3YQO`2XOXBhu;`}qMp8Btf}Q46|2%>UGLqzvnQKxq z$>h6~q>H-)Pw<-^`;%int{6*ao5_ye|3;R(eIB0oc7reh|6zuBm!*7mzk86XN!9ne zS(=tj8W2(W@H+)le_$;{Emu0;d1rVD)I^}C4e+E^j}tYZqRVjQ`H#7|U6s;B+brAQ zbMs^A*N>W?;gO_*zyCNLOhaU327q^9s*v}5cX#lj5=bn>{{J%-=+Z-fNJ_gtDNA3i zY={CxZbYf4+vBN;rV+Abz@r2VG*UqE9?&R;OXm*?!zJd-2kW2*Cbv%(@@E_-=4q!i z?B3Nq-1cI;5rS%*PPUbjel}s!C8Js9!CkB7ccCmkk4V9PxV0F)>uQPwEA}O8r7vE= zV2So*kRjcG?8$TBm@3u?uUf#>o4u*%gJ&dVCqY0(WUO6 zr?A_C)}@Q~H07Ea!pV0;O&nHAONAOe5T6aG z%4dNC#I)_a-SS>ZW0#N2!rW=^7d;K!&={dqOhi(xFKI{=0X&r^R)xnSOvNfSqtvI{9@q%5U z_4T+1fvc@R+~IT8G_+W&tXRwZ(?5_IdN5umpDF6w{-eF80L-E16d87k6+X(W@mk4jE!;fhO{-a%}PMZZ!>Yf z+>LH&@dg}|H6Ac3+ly%i1maUGtwf@M*%9vLuAS=r4J&!d%d@h9Ciwi@J#XdyCb8;& zBf5Qa`)-A*NlvGkDg~z}@N`@Wb+a$#Cj#xiKQ9Zn-X!8M;}T_MQ5KMAW%(O_npELs z^1%05c87LFU|vnaGeHH3pr_1!8Jdb>B4UbsnIWVeyO|+AFK+CPm@=t1Z9S1S%NNC!$EgAMFlZfz0_I6FC6XnOCDK6I2LNBD~W z^*q<`eQk5qJ%NF^=sf>d)`fuua{Jc8aSS@Prc>3eKsKr);?dc0rYg}vwjkN(a`aP( zdo8y5wF-I-B(%oM*JR)uXGl@RP7owTLIwJCKEV1h1fVrH$4e8xGmc1N78OGwkRp1f zvL#czT+B?(wsPF`(ajl_pDPJ0WV}|@0Rix(tux4Gum&-Z_t?ZE|3Km7Swi zBEcoveqf_)|3JrH;s1Em_GYV`YhDq)Am^7(RAOp+>^BB{BBCa>+Ximy`4n*hENTh4 zIAN~`4Ute9+s>O8uE_1G!wuIu5{+ro5LY+-!%GZzb#;9>Lo`LtgRW^EENjDf&)Jr@ zwfR#$OLZ&7jaSC8OCeQ1_P!)yiuqu9!09Y`$f+OW8DTyW#;!Z>?Zx<}G3%E*1=^7H ztxOkw>h!DnW?V;-o>MF#)QfnZX1Tn8-(_4!iTzeAua}q~ia}qSkzqKN)g=)kOC(vb zwN=yThAvn9h4bfw=ff`=?wS!yQ@soU4J4iI4~r%Ku? zTA4iud^!WTLzoY5$lrT!IkT}x3SVisi~r|)$$sH>V8>tFa^=Njc-*4#KtUR`g_oP} zYz!f;)2-BLJd1*k2*t$iVDQ;}Ah^cD%4txhM<+1f-2W%OB?AxTg?=nWuCJ88B zd$gM=T`JNjYi?<2(6uYmZ#g0sB$TW8$TRhnitE{N`1~c6!G?>Uk}}JDByChRV-})Q z`*Gla7nWn1o91%`H|twl&Hr|;?`gx0H~t9INj&7yNa7M~QBm7Q^`2pcp2He_=mO-E zI{k(EprXjszX6{_ef$Q~E+&RG_olXUi6r~ZHLpX5?)mLCrmT9VEIR1c8D8?3GqPe* zW|s2}kB(*zD8}b)6{OWQjXv}&Zwv}6;1eYe5wa;`HNT7xhSi1*FEAs7roQaF=it;( z8QP6tz}I=}y~>pIhId5dWz3dg zTs+|}G$|NhV@Co@gj|_KFgp*|H9tQuEgiF=RHe!6^3BLQAA#XIcZ*@}SZ{S?L0sEu zH*#@euYp3ocVkcoK_1ch83-Qr+Lj3t9(E&a5oR@=O+Zh}iu$NZCH)c<@##B;a z2ozJ|#&Zcu`J}@oonhPs@B{Lr(*iCYCFBj`UJqAD=$=#~ifmfbtdE?`v3lk98o+iV zWMt$Q?n}|gGtbM{wJcYvZwBV9L>~8RUU9#gPX4&mjCm`0PEJj&l@7Pza0mT6sHu9C zX`x|tArnjBBZh_mQ`=^;U`*p=)=Ri6E0*-~3D^4RF(7NaT`Udw6v7&b^hCx67*6`a zSrprcCJ-E0`P$x&ej}m&OGCpSKK1sxudh%dbZA71m2nju)kIu^gfpZ~{}<Ei))dpx9QmHL1$4=(z?hKqg3&ikiU*%gF1@r|x0l~$cu zjg4jowvAVVuk?-Xa%Vosi?Gq9dyg1BXfd^vNY*@H@AKK+!)zQhelaeMUmoKJ+|9S4 z^W=1N=0Nk;?of^%1Ow3>CiOgr?wiB8iK!{h|GDtyRpsPJD#j=(9p)W90Lm&Z8QII> z96P}6EEpA;fABpb`f)c2a^cAdWH z$Bi)b4izu_G6tq-;+-JoWFWvtWm(nP_R#)b-Wj@53wvo~JDSNYtZZqN9i3h@X&xW6 zds=cUDq0wKl~nED`Ln*rt)HkM{M&7JUiQk-`yTVKa;uk`QO{^?e@(A3T3FtH)#MCW z@a!kJeY?%8ky;Mp2L}i6grIQ^PTz1^U4az+wG5vKj$(25FGpbE4BBrFj$kYSU8&gL zAFjID(wD_@qcGYSeyN0Xnd@j?ywPB#Rl*ZW#`kr#EB1j?g}JW0y8b)cV;jNw8>D?G zDILkbOIK?#OX1gI`2zl&69W8b`G=P4lo{T$lQLJ&ExYiu31sLVZSDtXAo=jJ^YSX$ zMT$-g0rA80W&m%`p!pt)+TM8f21qhljjl6fZ)X&w@Q;oq6)b=J`wHfX_{a6z5#bjY z!i2au+4K(^y?aG+Vig8gg185lyt2yDj0tp{oSc9eYr#lpA|oNO{Xo|EH%lyAGoPUD zzvx=H7JULde22=|4oAm|#zuA)Jsz!aV|3|IbcW6sPZ2vaQo5t$Zrrf&aEP=-U**yK zkF(hrMbfd(Rr`{S8<)1dnui`m9?#oLuG!-|zmIaNbwp3k z%wH+h<0mzL^Mus@*lN4^AuQ?Y?6>#tR6e(QvxbA)wl+InE~ECS(!y-dW1%v5`;L&4 z!AH|fC(knpdFllVqtGsV%C^%6VfSr>dZg}1GHhKGT=c|_=xj-Vh}+ip+s?lk&*eRUq5*#p2Y%zK)|F`aGnl| zvQ2r2D^$JP-eZF9r`pTo@yh#^#H7Q5@fiO<{y&ZF_w~dwNLc z^=9*bhsG@Pj-HE^pOcQgK?v;O5_PQ?nHbY+`L@#^Rj!d4c*bEl-%PJ&Z1bHk8ZURt z9m0Q~4edz|nNQnlHL!$~J=LD1Go>6X2X}5|#cvh(LgYb1>C3^ZfJxiz)1V9~T#gkofm}%NI+T)Y!~!0VOnd zgpX-gLa8_>CoVElK};+V%wPruAu1k%1P_yzapp=_u5!xQk^BYmi;c~o0o}f+R3|wv zZ^QitbGY$^QBZmvSMz zIU)ns?nL(a`M6?wVyXSHT#`U-*w0CScXp3{=t_;Zx67{i{9DAJJ1x?5-I)?SL9?G` znie08e7N4yCmb4?R_*U$aG|R(L$md$2;j=ICR!Vzqz#%x#$59S?7#BBDf(t%8O>^C zWOvB59wHChRx&#)74vwG{pR8BCD`gxx7lcRg*%U=fuH0Z{q*L(zbzf@XP5hTa@0&L zEN460Ee9h4SH`sGC-Xx^3Hh`6>Ak94(l^8`6L3+wmH=Z9U3UK zi!q*9XID1fw+EpsuyoZMBi&?=kNN89^OLvC9f`fpA!2HL#PWVRHT z>~1*;I@H~l`KO$mdDo8LnGyuF@LkUp?z$t(o5Z0RmQ@7v^+BDq19ItNG^YQSiYYT& zvt`9M7m=JBuRBvZgG;+1O6M;gun0IfIOu3-qf)5-Lql?(KYzqU z5B>R*gKd67vNaO4^#MiE%gakyMWyr4A6mKbw1Se2-E}RhF0M&;#Ff0+#FJ)^n?0OC z6~MMxT3X6H`{z;34A!9Lf@W@sd+^dh`S(IfM4y(4adm1U`Nl4NEVcCMV#Ii( znxncqBH@6cX~IE9lo^L!-2orI|6@hcVSRN@K`_r7aH6Pe)>gyix4{kc-@@%e8;882 zYZl+iI61+@6PrzyWI;1yZfBbkk-?)hsC6l>Aa24WJe?f9T`V8l7-jf2S-SL+86;BJ zIlSU2f;b|4OU_jG{pD_{`3+_0l64~AJ&;u;zRQ5-@- zLJ&xavY{~~=luNq^3p|91_-S)Yu11Kq_P3{DWI|E7YWk@T%;I31;4dfCdH5bsAMDW z<7g*h@+cR&Wbfs47DH2h&;xQF5f?KfBU%Et%`8kvc3~kS6;%KhW|0&EbCYpbC@M}j zsxmVnD;FmP2Oa;@lTPx3+c4R^^+U!tcprS6iMJ)C{Lb2C`c5(gFW2+SSegmj{h^^h zkkNe@4C%`p@_}v(?vNHPcq@nribl|NvMt$1b8?ISG#vD8} zLbdThTy#1A;4!oVt|NLeKV#dalMJQmkMPJ?2yeDJExo)P9Nw=QN=c#eF+|VWaK&9v zA$&162OaF|1$%VBtJ~VzLL_qHNojlL%P7eC0-YeH$A6Fev36{@pP@LwxJO~K0eYlu zXt)YaL6z2+ZH_QO{z*VKMEGzbSYPnmj60-Z%9&F z6S+Blc7E#b3-CQ6&gMnqni+lD@X@}sdpBCp!^NP+siCaSlavk*Bzr;LP!h6fMU&7j zy8<5koH`+VFdAgoEo>?R22rfvfXz6C{4WG3|EKOZ=bT z@vUGyg4H-_w?%Es3q6Y33x=lph&WNFq%6z!rU^r|>d!8ji^Z=#1x>0eM!;F|KTf#y zN^Xe!5%35wiMmQpPWUbp1+N5be~5^P=%}e-a_|WV5)%_a)$wPcxA(KJ?+d68LqkJT zQixYIXk$?af2X9Rq^BFGf|gSZoKYN@)-1}&sdm3G1IVMWu<-1A78bkZ$GdEa@aNMp zs#ujC-81qgAYf5_7ZoQU$s8jwuN)(|7Okk5e#N^|ABKjWA!7FbWa;@LF;)AR^J^ z^NjD|bm!ImZ2?@CAz!f_25c_H4s%U8?B`2d-htlKY;sY{?1AqA;sK$ZV z8mt#P8{2Z5Z&_jC{Z8mqbVZ+~7Gk)wm6=aCuIJTs_8AVXDEdl^CmjvVFDth_ z@}MRiD%&>PCoO>#YT6S**M-2j_zg2h(?qtyc23pqqici>Lf3NjgJzGjcDXtbQR^p? z%o=5^c3)a*nVpSO5V&r%+39OD1vfn6-wpq0Z%OqyBT+H=QSYNu0n(R3>xBK`z?#Wc zLx=}@oB10e|;R zPi~L5fnIv#$F1;iM^|l0!+2lHbgb=AI)c_r2_tKN^X)Zo_LPh$ezEE!|C^;LOur=b17R+WUa*>0kclo}UUxJHAmK zpk)E+qf@r-`>R7w(4FoY1Kb2?Sb>>DM?o1L84)ccM^-~XKoA!f@7Cl@i{jM=N{yQv z8zUnlHzLoE!19r%Ul9>W{kBro(9*&rX18BB9tEfHcykkk@VL~}7T4t#iW0H%ta+L$ zC*t*+_}9e!S4T|G;EwL1=Q%y!cE@ehI-*4E1ku{t@`pro?xk7UhD@-WPk8qxZSyw) zZDlpTH@+L%YD#Nsqu+jg89XFhJzSQ3Be^<2WQM0dH&suC=m)$etwhr`^!D2a)QQNDfqfsHMNANFg(k004GFX9=|7)eM;F@7MYCB?@J3v_pP zGZLVU@VtK6hlhvPMSYU^`*d>M#biezv8 zhjlm*?X)KbdIB7+t*zJperR{p{c3)?;r8IpxS>aRSo28mv_Ak`5{Wy zYL?b&^l0gEDJm-8ly%impGAt`f%C(|eMNY*%)QwGIq)FPF}sA-=;kooK+EDrH5ior zmG3hail73~8l>-Unx<9}i0V}U=^)1C!Q=H=Lvpe%HxOd7|b#MoaPu%uK` zZK|R~(*Kqo|6n1XKF7lnVHX#+g4_cv;`SSbf|nmzvj_5U+3|(*8IUP@Q03mWI`1m^ z@x!RWC@<1#o^Z0TV8XC7Gc)t^zZU38h>H{Z%tp)1EGI9I#ECGEkcbc-TooCK-kpO! znWwKHhY|pAtD>T!FQ*&g!Vq6yUl>C_a6I!9O1W-A`y^B-Cj$_+`Y>z?h3ao-6vD@h2PY5q9#S1vf2 z>X|VO${odEKWD9uNFHG#)L)v&d7Q<%Z~yI~hr9ZFnEj&f{-~v*L>YtnCOW&g9DYgI zMm%9s27x>X0j0+|Vrk=&D#~H6$RO`ijL+>El`uUrG6x_`78Q-?5BX(Q(Q|SV^!ve> zt=D_hSi8D%PWu@OfBpKkuH>8FS6J6u5q|Hx3ya0NV&ww4>e|}#iwj`Funz*R2asdI zvwKX^h_F%XZ`c5c{?+1oNIcyDD9oMDPb37wKwKqQ?CRuXjSHc)c!o7xHhf4jx};aQ z`V?F6J;hO!tMkbxa0ph}TZlNr0HzI!aaqrTa8ads>8f#$T|63F-S3kIK z-;@}WH#k3fayY(Gg*3ujNl+Dy6Gy=n9jRs;e2EysznoUOMZ|hxhrnms&C#GdxhhpX zEowuAHfB9Yz8~!SQ$qH8LIMXHn^EloXueWWQNbh?7Z=mI!_eZIG{GhJEdBduu0K{+ zR|jCewb8Aut)e1Y>NpS>NBNkZ10B0oPfqM12npan6jZwz5*X3Yim-b0J9l??L4fNH zL;`6dP>|?vbvyRsHXu|O23%Dn+V9G9A^in&tC^9KQc_YME6&c0UCV&6HS^r+(b3R^ z5(i#VPLqerenyr599{%g#{qjqI5)~wNp0>7uxJ!MoX8*#AMu=U8VCV z1cLjazMUdv&Q|E44R(Ob8CFE}AF(*X43%+vm2gvBK=Ivw5r*!3`{oloH`Jn*%=>2V zcKT;c!$i944QwwLi&Pc|qUvU{{~8z_x9o1M;SYD}H3kKx8q!(9hm^*i7x_^G_dMR% zJxfcNxM!1p_BuOVv*3eUY_aR?><{84?af~(sRY8?_|pR;LW?^`qy^O9A1~+hyuH2s z=|Ej=VL``R4Uf;3Jm$TsL+DX9_FKzy6e3$we1rdtG@X4@z~MRzr% z0hxg&hdefUN{L9nULXv(c?@Y%RdZ1ana#CRD(h|$TJv3>5K8*dhfuvKw#TVpZC&IE z-@D5f1p>dVGN#V2k?yEG$b5JMYV&}e!8JvU{P9yCH@&#TF`GC;ecR_e2Aa= zMdI6ozjgilpUsbZLoi;1yr37CmXJpGX#P06gWV}3g=)#N833YqZ z9A^8y&e1-QH5L^LZQ0;EM)Bp&Hx9&yw8&Duo4(>F;^f>;%6v9re|l4w4tx& z;Ux*xL}21UrI}Zfo12>rKd!{S3Of=XT=nPAALs#;l#zjVmQX#F+kN))ra=EkFe@rR z4#{@DKGJb_zf~<&2PB@AQtjjzriX|6nNyq&73Vd zzN)IG%kmxIKAlYPt+k~<;p-15W>RSh55NH{jTmEVGL@J7h(1o`mN+F(`4OkHK1gZ$J$TAd>z3U3@XeK5mRrpnO z#C2!^28Hk6zYj|*)>VS|H5!k8f!pF(Y>i3(Guj6~KRq>tn{!g8Q9Bb-y6S!Ln}%Iu zl3~`ClaQv(G@g>*b!n3(RzmFDHw+vrOxuHlVzO zS%lV>JxAmn+1Y*#%3bDu7AqAuaNJLajjIxouK+ga0xs1gBO@z%2DS?vNLB?O5NHii zm;B)9i_njR`9}C>I*-#!GC@F&L<8+A_SzQ_{Ts)^vdOkAPsly=ARZ5Bi>cH4QEIBnha-qlnaAzH z1(hEb`l32nDMu~W(H1sf7bDNxO#TNW{=$7u)e!wy?ZRL5kt#>cOxhSZ`%5&=2_R!% zT3YCobGRDk%1sf^DG6lHoT^W9aH1?KQ{KFl49@sHLN`YM^C>hH^**=!&Y^(z3Jehe z?H;X0n+%S9b#lpza{*b9QpLu`3a9)FdI4*g>yNC@6d$M$D~*GL15fty1!pj?;wv0K z#&UWrX@6O1=?x?kv%JBf5+O6hZ1mWNY!*jX*V)O*WPm)J?@ahB2L=Sd#8>LH&X&4m z38~w8T=V=K|COg+xl)A+=KU^jPB#Gu;_;Eo9ksZq=%kcD+JPs1AHXLXwNF}Y5EVMk zw_T@)qrR=9F2|Jx?4}R@hR7RlkSoC<9KCRXxwFPWYFgR=sr+JO2wjn&0*rXIa7vx3 z%d3E5vj$q&5VhlAeD<>7SHz<|O8}Py|3pyUB++hg{!!jDP;jfNzX%fh8@Ihgk6{vvFynV@SA|xw&5{(#Zn1*OdpFzFn~}^)O{! zc?vJvkkL^C5Wb*YpnOBk*3i{`S&5Z6LSn%nBt$0dCw+c)R#c);$fy!_LimN9i;J); zNe%z_9ZeiAgpt5HAtePRtxF3zgjIU3Qcqn;2^v%5;-&yXX=G@aZGU|v@Q9CSE}v0c zScnw-{BVx>dQ&-*fJGPG*B|7qId{PdM-}hYISQ+sonZ{RZF@s>4yFcuX6W@bxRjL> zBha|B#{PantL~7heosLL*G^jg)Q&^=beo14j&bfzx@J42GT>c3U!OuOkZn6@{Vj(+ zTi$rFq(#;S;?}SqW6su4beAeN^rU5X3sxykQjyX1yot9TZfm*S({1P*#qnwf&zIm99lr50`ftalFB-MBCM8$PDy`%KP@&Vs3Re4f`V_F2Oj zortT7K%}Knzu9_t@CKon{&Q^BuF=qgr){&EV-^?h-yDqTUH5u=;Gv^KA^ubDdCg`v zEp)C(+pW0SUEc2ne@uHx71%r`Fc>7>NVQnqD zxY)w=k$BRKbmZ?gxOnSWytu3k9VQ+X*H~G)s~#o;%a4^X(W(^Hr3v)#MPKbrZdcyF zoyL$kI*1Sz6WjTjl9!X?urp4|%}hp?1x8jnz|=~js)|a5UZ<^*(Th(Qp)8b?y_Na- z{iZw5mr0-JD$MS$+A$(|EtIAe5_Wt?Ds!5~}-(CCGy4PZDSbNiQ za$Xn-VBnD)-2Oc7?JYQek*?^clcq(8r!>Eut%7vGY4w;FvpH4r?xsEr5Jb4e zKbWupG&xC4Ohh!O`Wdr^0-_iUbF)yUpGgkA<(}rdc||2993fF*Fn6k`tgO{!zYf}| zl9FyN^$iV)NlCsBH`N&#%SX$`EorPW3;o8X|MrFUR~`W?Wb{w-Ewb!j4BGU!1?I4l zONWq(iqIC`wX&H=qSpo<#)kmF!{2&MdY~l#q94)QXYc-LmAWqGT;LC3gian)=Z~(2 zaK+L|edNu8f1rU{UAnYL`E`LN_10XRUel;y4V^erMUCKU0&<>gOcc(0cmmuBg{SeVFEhRNPI?BMv_>mvAvWgLck4&(} zME=1VE?rtRScy2BejaP+m1PKO?UxtC_RZQV_>9Ue&bv6@KsBQUSol?-0SE?_Zb8z$ z1q4XeiaoKD z|7bY_9Yf1&WzkN7aZ}c~Yw51Ft&F{Ed1Qb2u%Lct3Cg~)x9Y4Gn%dgh ziW#EIx%Cbd3e;89_!>$|J$e-6YoGD_RJ1DK{OHQYMn_+y2O|_Ec8UrY9Ve<|(1oF3 zU@X^~VZNRNZi>rp1s$n0FRwSoR@Z_1PqUMas%qBmu7kx^v%Nt|`p;%Aqra+jk1vy$ zwEuB>Tm+tOHZu+GlLIn{eVd@XTkceCDPDibJs-@_?5c2eWK3daG*{XmZWbtyGYTR( zFfZDJ7xCEMVd2&w_6bG5RnYqmP#qQU_5pHsco^lAB;)7vK%@svMrmQzn=B~f)43BmA*t7MHt#+=?>1K~z0?|R+aos;OP$TaC zeBY|+zt>}eyrRy`hdNvo>wTX>_0>#2H&A%AfmENoABa8ooTb)Vv9ogo1O#B2&lUh# z!M?taev+DtFgSPpWIcX{u)+XM{Fpmfn~h~M65uDjZX+TBtI}^;Yk!q_Lq(-!Oj zUm6}2CBEF{?(QCDRm|#V`svdk$U7*)y>Cu(0RQ4Ob?rjdHc}8N`%r*KP{iN$lB>(t z@!8maf2NweH^-WqOYAcLKpckR`d}3d7M|<7?$;XO^zsBX&g| zi|g|^2S7!Ie4gkJdtpG2sC8!HBsH(r7ybFo@^7$-%j~Y`HE(#8h>+!FWDbU6DFg6; z9s(H_mi_aS_e@R+C~xR)69L1ce5$XBIsP z*dDcsx5Bo6vf(j4sLM}Sp6Cx;?mr-M*v+- zs_DF-Jb0=J>6kwsY`8pLwHpf=tMoc$J%jRXSE4CWJdnt?2xq=6&b@`cqOt4OFC}?= zZ@4jy&CMnA=DWItA-at|83hF)X=x;1OI=VWaUoFDGov^jM#f(cKzFc#aL!Q5b(ICk z*o8Jm({&$Q;6%l6g@qj)-nYTc!SzUpi-U*=c${49;W{9I^Rhn;jJ*|xsH&DOV!5vO z)V%p#C@6o&+ua>gTOKZb5{UF*%8_L5Uad?W{Q**swcRh+;)yDJHSs)l>Fo1r@3Bk} zG5pe@W%FvI2eXE}f928axbN$xZ-&6&l^Da98YJlE2@-s#Yo&z-d_xv3`P?_=fO0TC zJ|2Ka0%&2x#Fi!|9FEgN0-mlfa^SpYDac0wCI^m_uoAZ-$bE9)3G|t;%x;rXEO2pf z04}bm&VZL&4kK^C)P|sfAR62Qj&hgAS>FyFA0LTub9OdNFl;9rFNl8FL&d!PK-jfG zy;9d+y9(Tq8Iu%&W_7ZL6kuebdR?ZGo=GaJWX9#=T<+0gy)KGImH!bF(`PePe1;9x z&yYi+q-A~;lxJ`&R!x?|&w_(5ZA9$$ITgyTTeZ4Ug+?aE;razRgxWw`w%~8_zFMU@ z84TFW`SL}r3hpL^{!_b2QF4HJ${qtGVCif9i?z6x`1CiZrG-~?&lD>yqcYpRy+Ioy64%=& z?K8((ed+x4r@0a7rS-T4c8Rie*C3J`^KI$0UFBCcLumbKj_-6JD~m8ny^y^2FnU2U6NSVRK6`9l?F*P3*Z# zvtW&%H*kD_fmAM64U~ca(Kv<}+156512FYqLQ6nzzEF~%ViiCuVq$hx#gUQ($G6N#E zeCjJ+Q4hlQ3#4QL?-qn?FDHyn@lo33LcU*zmt(?irPnNWmeIr|_oMI-m3WDrL3d` z;{-s!ZCW=1f*Wjp*m6;d0ClVr2IL|xM#ckB;DL!VV*W2Dx92;>kpV!90yaMTYJYcE zMEMqrpzNL zzd-<#^$KI|Wxp;@`)7BB=X*cu^1GU3ezMUG!ff?$iu;SXfxVO{Tr; z!YJumUG;vQCj`MFC~MYUUi|F6^YdT2{9u9H;EPPebcFDBx8pbZTpQ{xE-o;1XPOog z%}rH!c#I{#HX8+0ZWjigMtAcg2wRIvT3(Sj@w^6=+0^*B&rC_JPOI+mG9Tn~1c8Qp zZ^IZ{nDu33z+4QAd8CR!lc#KUE7kntSjLR+Pb6!Bvm{u05g%(GoDqKqie!5D@W+R{ zGtVU>*=uKF*-N|f2 zK`@aG%D&G@%m^xmtglv9!02j+PKOtdWeK1>=yP?p{GD0ro-33$Qx_Yw`*QThOS~V6 z7u7S6Mkc#l3~#jZF#<-+W@iHFO;jrTSAu8R+CuqG!7r?xxn#wAcqAvM{z#@|KUqwboAODF&zO47p{KfSjWfT&f20NPuD?9@4&h2k-jccnE8n zRYymM+`>nkDJR6Wk69Z+&Eo61Il%S$Lk1hfld6B7WS5E2lC6xFqW_B@c?htc{hEv+D7 zZEMS{dAaJF5G)?-SJG7pYHtv|R;mmF3kzx55Ehn}zlRhQQD^~y*`6##*mlWKU0GP0Ej}K7!lE*ErJ2Jz-4Lq#%$uO@i}&}!)8Ckg#oMo z&bR5)`IN7`Tne|QyS~s=Cl_jBr>DnmWd=hcQ>s)#d@P>lRmM!W#LdR=GDs7(+6{1h zg3v&sQSRQn8&~v0=804z8JY_t9DqK1e`5aOVyw|f_}8zGfJF-o7q%X4_6@haFlf+; zDd$C3Xt38<18(1K5(VEWY~06I}xB}4pg@Y32EY98ygz~ zC0jq{uZc5N291SsvSlF=^&U6&_Ys6vZ?1#J^c7Sz$-)s}hXh~oH(9Uu(BBs=e^oAA zdBYjmd5Sp;e0<_A%ax-jxmF;P9a##Gi?vB$ z*CGM~8M{-3VDJk}vtkgl{{us*Cj`4E>%GgZ=l6ja=;(mX<~vG&pO(Qw<&$Fucd~zKTOdwNHBJ1VYvJ5;+0kXq zRl4Caq`(E?grEU5m+}TMJ_*xNQr0@{$Ysl9@m@YXLPdj%l?wqJ@L2tTDUwdLd)Ybi z^QR0@>vua|fhD@$pTpb>YLo=~25@Du)~R2=4A@8Q6))qPdBnuGH8>Q?7UHPIEv$S! zU*dz@d}4ZfPrjPGl!z^Pb8zZfJ>oDF{nTP0_O))OkAQ1rL4CglV7a=?_nzK;6(hkK z?_p4tQ#z=Pvm-ltEI51?XmamG1>J&2Cf_OBf6%1IW)O4PNIk=6q!R%x3pxuFTnR~e z`Dz-oo2qJevEB;kp|o{Sh4DE5n~X13){omBeI6PgXJ({#c5-^*BjB(R1O#$BIs{pn z+YkWhMHzRPo|bm{SHhA~s?e(1XND$X+F5Jh^7){!0bG{f;X?N4nc`hr|Vj;uyqTi>EZ~aDJp47*z`PuK+ z0HEjh(t&2&^{R*G7)6k))*uK)wv;Q5{oPEo(Z0|4g8$7lq^q))wF9-_i`PMmzNHhR^lOjN0R z@aUlr&8t`aA>R>QxTU2ffUdmWVmy7}Q}k>1+q3+(wg(W3^kH|q{9m+tT#Bj=W0EF) zOAeCrHc$@yyHCtMG%{Xc(Cg1(E?I`?GRQg6RXqdBUbFG^_httJrAJC!B6@ z>8y2*(lr~FLzY;ox8kx{tOJg&Rdwosr#31oDvRG84$l)*7XaePk!=}u{05&p^nMtke9;`n#cxwKXqbJQd?gwQp=}jB+spP~h*}$}GRoYHQPYoWKe{ z#*iF4)_01IYiZ5A>lftNu%DPb?LG>Gi?Kg#tkn76bICTVI`;(tdvBx$vp;rKZox9@ z7JW73FtaIaW|=%rrdJ0V;Leu)xfr3z?yVGD>*Zr)+t$O>1Xdw)9;1+%o710`VGzK6 zuwh~fyaiiI!aq6FkUc6~0f{1#9UJoLo6sb6B>*c1qs{~3iUENb3H`1SZ z^Sy+!?lJZ@s}ce|s$}a&&?&$MBMP!qKOEpn)hr_Bk`gO2SH&tw4An&FFiD;JN8$-E zpH{1pPA$eBX}up+pEX+VuG$aRV~17`LcjJJ>Kx2Qfv--_DfP_v^?fq!c}GY{sH{8% zUIyk@^eaKH?X2fkkL{Xx_EWXs|izM^>dWS^C&k?mz#>l&0&^Nj^krl_i~Gladqm8L0RMg@U=fvIQDbX zU;C06;0Jbt<|!NNyuuQt_T?`Pt7|s-NApHcYw!o#$!a$Y0cz#gFUEgM!`ti|HQrqq zIsZm0M8xb6^yY0PemlFi(q75-O2}(O8{}6tMxVM#`F1Td_KGVZe_rS!j0QKbGz=#s zsMihkjl6#s=Q;>=eFQ{}xzP|TuymXTwT%tb1a`lqSkiw_*G>L1Kq%*xi)nuaOYR>mo!emyESMA$isDM|MWMKCU`hKQM@i9&7`+g8m7?0*P>&^$E+hIRhJJOE}M3odqisVf^l|ZyE;@1xMe*USEEdMICMrKqt178=+*Hjt z`Enk1!~j!eg6ps*v$j6^*|}Pe2o}p0cg1;lB;vL=E9~w~xu%JbW&DJ?O4)L1D!TWh z*~1uopMKTzOU;B0A3Yd6@U6ANfF_pIWo{>#-}F)lnZFd3blirA z*LxoQ0UnsevDxH-X}B43u3lDkJh{FF%9~s9ORUC7&-p|9>xgB4>C(e3lA|vdJO6^& zCi!SoRYB*?C*MX)i)CTeB|6(1MjyyAHCi@?Tf8)f`mQ_I=r25;od~>}!D?^beD%Ix zsR#(KPm_*9NPOI9Njh3)v9!D^DsJcToP9B)=39Nfz*c5TE2!`zA7lD3$1bGoSYjW=Q59(PyA!O&!nwLn(IY!6#sQEfcQ@a1nLky>J6w}7Xvin^OdQx!TRrBh<>?G?KU#|XuU!P=$&p4^^-a((;E znnt?DZ{NmG$8xR*LpDPfu(=cu$%Npf(7Ml9v`#j$KVei{B7^bifA`7t^|vH?&I4$* zdqVRBtX4_Pguq|yjE{Yys;3&A)x(fw{pZ=fLn=_u$sz2YePW~w4D#(J+Qf@!A?NMY zWz7U&mJuCudR5l=n<1}xw?0@Wqh%26n;{^e5hfu{d{Wgp@N%82)hVQwD{nw*fpz_K z^v#u+^XK9G`=q&pr_SB;)&1&T2Ks5ej(kbusYZ*B+>CEpuh) zc}kqvS(eKJ2QU7o{4HG~P8TgX9qFsiZG+zQXi}>HY-1wpkRF?0kAi`K(6(1)T%S{c zV62Lo?yvATd3#-0=u|t07iOs4<^!K510L8TY&R>ZaB*JGSuxpi-Ax-s-KMHCtHyI{ zSHaHk0aPs4wL||}?%I;W9JPJZe^)#-gR33os5|)JR5dE~a@pU!S&?=^`S#z7HtN(m zqJ@hUww^?cGVL#%zrFma=FRWJuPkaZMHi#|Ku?^Xq{xDA%kXn7ORN0O4$>{!9lYIB znO{CK|L3;GoAq!L7Mc(YVXStodvZTZ%<=*spw%bf+3D`1h{C(96->NHx>S4Yf?vx+ z3ADWW_Xu4D)AT;KBc%Oo%n&;1?z*GFLDpn|pmFZZ&8Q*J%-0xka#sQZ6Ft@Z^DOby`7iL3M<~ zm_GrY^K9JTKWYoI~olnPHDf&a5 zSWt-F^2u_V@44j|)W%0_nWU;^OhX#3UVv2iGX2u8CTQ!F&L6D=pJmoyx2UCv9zu&n z9hA+Nd4L=&b`Uyk_Hll(Y;5`otSI^1in@o@ow=NuJeij_>$BuymGsDndZvfvA-4Q| zT^BS0&}Y@1KJ8cp7BUdZK_iR_ny(ULT1KbCW?H5|rA#WGcwxUC5ofH*vTFIwpoi^~ zcJMwbEi9p~`h4X-&(_L5DU_Ix*v&LPF&k6dfLFpDV*Fc>?Z3tByVlNY)b?1QA5f@_ zfo@k>un=8hxBh48%!BFOvXYX~n^PH5Qi2SkeP_LXU!;tR9LlTEmb+~DuF76p%%v++ zl4tLwS*wXKU@sPAB+#OxXHDJT!Z*{aXZ&s@mMHiW)O==v`ONkQo7j%Ca=NCx@0C`b z3Lux^b>%P4*3T)kMl&zX$457B1x?QkD)$MO`XtWGtY@uy4x!1sbP1wXqVqIe)juDY zeT&ETZ^Y(+6EP=y1N|E4N^pmlhAh)RC6_{bO{bNo?|@VAW!NV@zGKxxyS-a2@O=-b3fT({ ztxE1mK}qP(q^-VXowBxp9;;Ma9m@XMPw1RRz$r{EOj*R=iV1KySROO9+oUu+Na%BX zeCEI8w%C-t=LYI+1GaK}A;z|MJNT6J!M;W~Owf}eTiK~k=RwF6(M#;%X`WX|Z(j7N zHR_G4Cxp_pzCX9_JhivnZM_Z?AL{c=&pY^-U2St7w7w6a03VNhCp#a35c(uu*cA3v zYvA$8!U*t+4|c;b@h~#bZ$0}h%fL~c%kq4h6iB>k4uA$*bV1ugi>sbAUm+ZE=mUu8 z`PevZPA%M`dan-bK4 zE`)E<*lW@2WslKL+^^8ibwoCoP7O{JQSN>s+9-lOF2pr{qUhN73Fj9t?#Z9T%wLiXUYCTMO4=Uc$vL7 zdx4;&;$KjFP7w?oTT>68neGuI01lTcE$a(Sxxl^5J0z-X=z0`sY)zq9;s)0$ndSSL zt7aAh%Z@gSo-^20Kr{^&Wqmu>J%?oHQ@aptF}Ut{Q?LKX`goscaMqP^We^BmoH`%; z&2Z9{P+6_ zzc^}w?IAN6{PxpEos_>9=Z1?^5y0HmvC#Z=;ht$xju%#~6c~NHt+A`EetvEbyoN!WOo<+X_H9ER?s4fiyIFbyBJyO>I<*|E9+L^M8Ld z0Q#d=gm3C$S~EF$9T5CfWus0`DQy3choHyat=4p#P2lu~xCk@ySswI}xK`AaSBVdM z+VVW#Cw6zb)!9Io3*kS5$U);Rtgg~5#v0OXz%1}KG%!N*D7$hNo+0Iv48OdjdUyzX zfz%ftZ|r)YaC2{$>*?muS9AW{xYx`T(ZJMz++-7trj-VLodESLcRb>xkZ}vfvRMWg z4I?KresLyO8&_ogM#3Z*N$;ohAM1r=rOF1PVso-}udMw?|mkU0=%9w;e-ewzNYRfNvnG$TT+CS;M=YU-dIl9hE z;OdH|3Gp$*7~43%*6oTN8OB~&`KX_Ll`F0siV@f37K4oJ*VvcF71YpB7abjtqCrEN zkwt;?Bb)tZOO`}a0EjnL!cB2Loug7RLK7^l_UD=^pC>wW=$Gc^_-1+>v~G&tzruA` z)rK8X&7hP``bNunZ<-)#Rjp=b#F**sqh$<^GRMe zrVvS0_xCemj2!_@oiFfIq&(jBZgwe$Oa0#7UndpbGDgmK>Xq5)6?Z-<-R-mFe!>(S zW!7!RrWtMEg{JUMe>GH;sGn#3sGx1w@+GswH+nVqLF1;3jM#BzkeOm{Ik?`QaE?+uL`l7t zk4n~GxKp@WEma3a0$Wm2hATA0Oh*D*Mz7e}1wWM%X_)ibH)vc*LyX8VCEBS93 z+8?&W9x(7f2O$(*r?O2f4sGeuz87Y7_fxMi#Jw$P9*$LGR_F=Tv=p;s8j)Blrhgsx z^m`Od^Q=iC9Dn}xMSaNL;SUZ!dhD{Q@qy`4E4L>Ml8JOFC2PYCK{mEWqE5MUR4IZB zwomdI7MmO#`3DDp8U2<%+}`=!Kvdl9qs!!SYX*(%MvOiy#O3DJlg0ef2rZ4J19{$k z3>NdPMkw^48fv)LEm|8=g)M5V6cIjQwyg9?|)Z zC-EPp-e{2ZTzoWhir$oIZK zJYY>l$mp=+zM$4z=vXx$O&La@^uk0<{P!Le$HRsmf|o^@MyFqiP0?>T$0huNEe3=R zJm0*=Hq>3nAJ#m&Ruxqg7M8cXnybG~hpMn&JfTqG=EBnQ7we-zgpwdPD@aV;rkoZ zVqH&(GQr1#uWmSpaq`YTHx>JQ`IYc~45Wss>6dyaTgwXMt)geUOrCArw)(Zl4Slw~ ztPdI}Yx|N(JX`|^f;|IioUwRmu?9d5kv5Pi#6Pz9^0b!g2)7CM)h{CRd+zU@Z~cRFIVlh zV{8n=!897Qe9!c7oZ|_&x}~8nK>j}GE0wdQ4$#;4BqG(|I`7#)Lj=R2vl6s`2PX4r zR;3yG=YoE!p4`nBWTxUyl^O#BY|RKNdL$h)Srf246J#V>%A zNuUbufJBvW=C-}Vx&C|d4FW^Ap3gSn0et=+*6>GD2@%=k`+9@AMq?Xuy)B>N@{%(* zj&n|HNDO0YO{o@F&s3cL2NzLMM$hYAV!Q-m;y40=v=#DW_Qmoa)7#T@@3ZGGoNM%E zha}tdd{bK8Lf>!;OMZ@H1mYqchNHTnew-irv_|g%MSGUvrJL^kS*3lM2UO0a^rFE^ z%~r(W-#goSOXU9CfXhmQ*v19IQ|W&=k>vYD*iwq?>WZbM)6e3nS7J+b9wh%Ty6!0M zc8UjIvVFpqi4&J>33|%okCEjtV<|39t2MyWdhzK@dJnZICy*c?<4;g(=g04!{w5!4 zMpjCRNhJemuNv`540a+2=*Nj-+fV`{cNs?Y6W}q4o6}ff(&(c`FpxI6ye{xlAzwDgFZ*Nht-?v)(;W zAM^)^J?FADag<`?wRRx(lxd1Zp^wA~Ycq+^=Gunm_p*G~Cn>SftM`Y<($RGO+b)nl zg633&T8-{~!^*0f+d1^bmhC^l@Y54>2RYqv86}4m@=Xh+?lpZzrh9w;Ob9jkXY*KN z8x^TB(sq~Dw6fRM&X@F3)!NKXJ$;$#c0#$dob-ZhycDH5KD#F(R)4DWd=m^=!w#(9 z(u97w41Xo4ZF#8aVzr;e!EyWl)0r!Mt^^i-Oo;m)om`Mj9n=B^pC8vwjgrWn5gSc8 z(hc437B6pu2|E+LP)c=`@;O&RR9h5o4cH;&v)mr9!t^ev;yWnXD%H@`lu-qrInzCD zy;gOCculZBs68uY4*CX^Nj2x--RHx9RUa4oP0!(Lfv6-)1XqNlZm)WYV?6z?gE*`T zGXqYa5(TAaCPAMS&(X1mimJaoV53vXT2#$iiIX8^3VF5ZTz`#RgOc)eTIDTQ($FX+ zvo4;p+L7bd&?E_0Sf;=&rq9^(Dt$WRQk~Dy#LAanPd8%f{DF7Z0NZk9aM~x+k5KBR zYtUpRqv%vH$xw9ZeaBSrSJu+@efV}`j^KTdrN^@GD8%-zZ;>+dO6n^U+)CXux3-FM z0oI#0AGOoh^FEOb$iF7VilvvV?#er*<3TwX;HGDG8MN)~czk!fLPgh*?I$Tk;d*$) z?e&p`gk&42Qe_XrHUq`MxuXXXno-WL(4}_$IS`RD)ah4E%mB69pSi!W(Ja9%O+w!I z0)0l=56hKT32ONG%A3?2HX>ic#iL+Ut&nChRlSJKwu=h~%lIv_lIF{o164kCT{@qT zOI0^FGk?BBI^Ysi%`n7WXdbq3AKrDRi*gi}j9&>LB2N8%yowtf{DTPH@XmRch)p#; zy@gr#=W+ZY)9NuaaYL)#w<|#-h!LNB2R+THjH0B~*_z35DjZ>DL?11-FHzqHqgrC& zD;ufS+e%2YCcb^6PFTk^!$+IBPN;LOSPk&L1Q4&u&aTPlHPNCv0a*kgt2Gq2zg5x zI5a`yef9(L{PcTgyjZV8W@z}7>_M~5kutNTAro5M-50PO1=u)(MBkQ!pd7&VWW1$p zx)=g%fx=z$1U9r0)lAscXs$qdPR@k5o#+itrg1m= zVfVtS`myx*k>x9eclkY)OS4rJos#-&^#80h#)P%oeUyxMlW-see~@h^v5xvJd2{3z zYF%eC{|(v-5G4JBNt$f;eAl0t;2;rm~FY0bo;fq z**4Rk&6!3vnf&lbE?OTZBv>l$$IckZ)4JH)?fESVBC2$tLydKmgicj!1&{GI{wd4n zGHU#SdDA)`9yC{%X#U2?Hng8?l}a~sN3&Oo3T2+r*96LCLoR)1mk4O3UlD!u4C+!# zaH(|6lQm$Q%3Lb-jLi9dxGF6bz~O1hzB1I3vmZ{cc3lOw-Yn!(*LF!HyD(GFaC*yz zODJfd^DM#j*DCLjoTNusMI zaxU^6^+#l>s@yP^3V2_M6~Zi1)R}BD&zoWu%>S)JxgDJ>a+#e$6B(6(N9~NCLhI}; zPd5~=qD;ieP}n8S{-J>0Tp;ZnetbGg|fLazsW8D+blA+xA&};ZR z>gB7^>jXg`ZAQMdbSnQb>X(m9?;*|i%dM$96SyBf2#G0!DV?NpuD;!!*_j_WoHr60J!hZs3{+HJbPSkL6U$E zXQDS8pHAR&{j2#%N6;0orLCr|#6svDVHlYA`;XUKAHCDi-(BM|WO3)S0Vy&YzN0?| zB2~TaUBMmmDRgLi%u7>~H?I#Ni_yo;-`V!ondkpvgB|CPM#qwQvzGABmPSvtq4oC& zg7g=K&o+|f;tR<9s=-FT^*r3cvI1QT|1l9gtD+S-%@;*D-KhK4KixFq`3(2zWU3*u z6w`E8ck^07)OR=iL&EJh3zsguO}FZ(0IZ)YgXT zXKoSCi+DPv%uKID7w32E?D;Wdt5^hApl|ZwSlQ1!P~N*+y|3L(8-%WCvv`~T!_rkS zRMm8Akxr!%k?u|rB&55$;m{?GbmyU4q&uY%kS=Ku>2B$i&O5x{-M`@MvuD=KT2H+< zg4*imWzJN(zie5aQ`#@z6$Q=V(+_bd)rD!oUTce54L)rf&MZ7rE6mhMaN6$Sy>j3u ztG*D1P{Pgkm`kM&SAqRm@v5kcn2D1kfQw>FO zFMD165}&kj@fS%)5xO6BbuH!Px#cbDDamS_VUQe{-;oh!uT(?M=YD=S7Ds>)a0=0E zH8T?qFan2BBHbp9YFe)5wYJ;!cu{ZY_spiyvr5i#v*&;NJ-UKa;%1!b6yxmPLm`)v z%{v&r!ty^&5v+;x`5vF9-v6GLYEye#AY8Ouib&qyC}**VDFf6q>Iu+{r1q!j1wfVI zbB-zSCN@S5SCg>l67yYs@!vT!^h9K6Ve-cUTwE)sfc$%Gl~N;%0GN3e(~|RNeC3s! zU)1gH3%$OMi;XAGy0ZGH;GtLZO4|hDGSgZ4{pv?u5Nq%IhB9X(lx*{)w&7Aq?N&G? zn$k02YLb2H)T~Egyv%KeuraV?78RPz+0K+N2CV-cfCdL&P;4HM)B;R&O(JVvw&q}C z?mkV8i^*M=snOJHbI{u&I+y%(7n{d4rTwWuzqR@02OpZ=Kj#@Z&5)6w?T=W-wc!#m zVFo@*s7R!KkQAnUIHso+UJ>v!zk+e4ZPR+yMZEX(I6=6}3K{%V9~HQP{q}stGX~S? zps!Kcvp;Vk`$E+(*-YH0;DsLXIIRdutdh99{=XqGr^myaj!}`)y3s>y7o%1;&-^h? zhxNFm@aQFYN8Q>|Q2uZKrN!7D;2snfrICDKHQOceeUI7uc-6ZiQ#~kh+v+VtNrUbC zIJY)QXDeELc9xN|1#G;s-^KM`gZn)U>dZ>a+$u31fLmtqPEsn=v9Q|>sji1A?*lTj z6W@wguME=`BRjRfkGxDSM?Z{MWNA`Ud#o^94p~{C*eCqwI9DBdQ10bi2r)8xurS@i z1<;Ja=iAK+C%D4|oyo%nOUlK1^{;=1bcQo13$lgq@WAPmTq6;4xBFxWc*P<@>#P0MvE!Bh)OBONNfWr#w}D*DQXy?OA&0Z}{s_X1 zXU=<~9Wz!*av!qV`)fncJKYi2694n1)lRmUCG20te<_lVELF1N>T{lId9XL~Q2x`| zztMr*ymHl5Ro~>4q*4J!Y}d4I_>Aiy;cJ1h7I%BjU2p-(ZOxR9MNB?rc$JWlc6j(P z2%6vA!=_Nhv3Bl1j}hdhq{gyae%&2%fsRVy2bc_0PVO%FjCt?kkU*gbdmQge$@JL7 zPda%D(0nHHGZ_&(oT(PPy%{PEUh!a=ylmn}~v#Lf7DA6232KuA<-P z0Syi4w5p$`b@))qU!$nlL=cb}Uyy9M-_!JeOMEL`Z6F=%w#7&JUHM;%8R=9anV*L} zyoMSJ2ya{8zk7|>vKya-&w-hd2b>(33i_CZBIL?tNjxV6X2b@;AhJtO#v*h7<&_E% z8WTI$f0t`EJD=k~i81bXy*_Grbkj>L>dMl5eCdYOVM=)gK%Wc?b#bDwds<(|BIkf* z`qpbWwOjN|g`o1MG66SRCg--t%kb)83SJ@b{j}9Bl7ns#Nr>vtaRz*}Ca5Sqk;k0$ z-hW>EP0YsD)f;?rp+?KFfu@$Q*y#NwLD9wqSn57CJsQUUP_<#4d!lDrBBO`Cfbu&A z-OEH1eT)PD$@nz!Y4c~^H7&Ft12A_99;#qt!6)(Y>s#*b!lLh_a^ENzgJ74z;#DZL zBv_E#e4lGkY7o!7PSIaxZ?m~@ot1Q~gX8>_92zPrJqV9CWIOOjC@}F(ui5$^KaNfs z7$~$e>3N;gVq%M=3&=6v>7gne9Lz0cZ+-V3tY{v^1nQ4_pT%FD3|Qv%$nBt+LrpoA z)zj1zF1ydgYUE2H`Z4b^A;n4kfRzdJ!)CFoXygW+5O!~_Hn8w-$LU6at*unDDXZ!S zqR>|)qcPJv0`7a)_;#&?Le+Iz=I~2M(8Hyo{m@r%9s7$-@!WRNq3{TS>DMm^S3HUi zc%LGx7taT#WiH*2zNH}$~e?4xz=pBuV6SZe0V_2Z06a^HFUCAWXn}{)pPnSczb=%fe?kJ9U5%t_Z?sbS4Rsm zaGwG+8x`++QR5Bhntw_YyxFCtb75n@o$C%fIg6K+ob6kKvsn@N0j9$f_!YhhkfvVK z#dwdVN1SHU(DB=gbxh2jhr6Dh@IeO$lcIycq|Fx%?GH_Hu6|ty+m8qB$IVRdtACzP z!p6ugOFx6(nqH>`BU;uP&ibGn*5maSImq)l+Xlz@)}Or4;Xcrnh|1{i)_}~ip6WF8 zV`$(FRn;YCB%18)(!topt+d1eHh&8gIyqGqR7A6O%#xC9hWB=#)7tfE4WMFKyp!V9 z@M2UiYA(J2J67Z2-=0@U)Cro^!uOj417VQ6%cLM!OC}Z9oY01I3<0;3X#YN6+o|Wx zgX4pJ3E84!xL3r-Q)f`y_q>mo!CWARwV7)S9s`ZH<1yTLYx8v+MNlXrxPGgs_G~_J zJ>9+1e9x{-GDs)rQ_knpa+X-4Txoy}a0SUQ5B>d}9Pie-Z|73C zes-qMIa&S~0|*}330SD8Wl7TK#7|a^00_~Q)+YR_psQ;$LI?&7l&T0KMfsEwPZBta zUia`qvG4}1yy|UsDK7iHOH0TkBw(BwGi0jYUQt;*YrA4_ry0JB)BAT5pL-Pey@WfN zwU6!*5lXjs%K(e;q!DUA$khQ^*8VqMPqIV9;K7}>?|L&tCx)B3&s%`$n4!{EfzMgo zoDvT&87a);9`$!8;DPwF1_q>t;hUS@B_+#g?@JiyE?T~< zurn0BmaH2`K&l9YY%_m#Iv}{wO^L&-woG`RJA1lex|SU&ubcC(hV?r9OZ-5$!oODn z9k1-d^XEBxe~R*Dw3^&Xem63VI;C*gR^VuLkHrgo$cv&$>+Ql)1KZ@qJG0~VhW$bn z29lB0W}C-B8JRo$p31>NEHks96nsqV+M2pVbl-wS-IP^B7lpAb0iT22zweot4sln@ zBZg?de6d6dRC}$cKPn|TyS+gHL)Cx0Jg~QG8A(89Yb11ihfPN2NEB_VIXm%&<2L%O z;Nn)E1VT~OICvW%QWx+h4+sdWHZCw|QB;tpPNAao2@%0A{co3N_^dbY)h)$$tN*pT zxBvOAxKvK%z;0+edjXow`Kv^yrA;)V=TXQt%Kc`0K*G(@3P3SKBOemoC%do0D#k^CiWcroqwF5#FImRIO+{+QlC3ozLR zN>YKZWfaa`>>C;D*L!D=d|glhJW0Au*MW}ypoVwZpc!(`{s@Oz2G4J)>bea z+*q4knnm&>`xGq3j^`H2 z+WH&18NjWM;4`ZQV)F<0cu*}V1TtT+=+Pr0Ho9)F)OFjLtvE$3doIAQPW5!n%?XA) zU3Fo()ayaLH@)65^C2Uj?K3Xws#hKr=To{|+7xXK4di=jQc*EA9Ui*?z%}jnhj)0W zWw!JJQBHHCD#xpVVB?FiJ6ztk;s>gQCY(#Z#-&ol&~PqtD6D0?YEa5$B+x9f|R zfkD@D=2uQBX&s%TGgJ19%r8%52xtesN6SX@KZNZP+>0-!>WA~S?S}}8y1`)pMh9Yy z4(j&gT4KEz8WpipWuFRYf!`1+GBSeV&LPvyTK8&pw%q5>d3=07g^?3VGP8~Yx(vw} zWqZdeGnzeF6vhm&v5!4G_Iw^05vlzB**|r^Rsma4nmq`e?j!Hu({0)9SGGUN$(swS zhD`@HGQPeHwub`q30y1QC(&~2oRc`cygny~OU>Bxafyj;pFrv2JUtFWQ(GvQ6)J_=9|CI_sp=y6C`V_?O4)0u`vpBX)o;cGJu~=aii=|n*n~D* zI7xU6il%=5w0USiA?oLI@^Fv%-}@?IMfJ>;Vh{XS`4M&Rkkx6ClKFX5P#y*smrYm% zm#kx`47CRi&RJ4{rZbV677Zi$^vdq(#)-u(__{|F)=%Tn3S^|Dva$WFf}VAU?paxR z*D-Uj!GQvv72Fvzn_+)<0XVooqTo3;oWd;AN# z#aZ;|2A-mWF3U>I0INKleFBpu5a7^wnVzvmo>E=UWw-M9^y4$Ggp`=Sf6sC&1T;uj z2fH;uWE1}?j`V>GRok}a;QL|TDw6Zq_>j)8=hci__R}J~_B)a}fWnqq5e4C02jX49 zoYu(5v9lA)-~VuNX(~4t1KF$*4^JEsq2lE7h!96qVD;7IRm#alM&DZFKMJ=1kRnQw z#jHvYNJjG3vots0vC&(4u)CupQ9D5#k&o{e<-`vIvzOT__XwoeNiQ+KOrKp$; zw3s0qKP}2$`3KXkxmpvo{h5fvISwB3fETX_0l3T|JLmF`3A?BjqNee-V75CYYPCy6 zjp`#LFYkh%e~gay{NCw;J{U$BpE(wYsb!;CS|RYMjGm{EJGHWYSuMp^bDuqFT zjKTSX5Lw!6y77 zA(C?o457i8$IEdN4;zIC9!FyWPmxA$BM!el{{tt#{XB!ZOT7{_gWdY2uIK;bkDpEQ zZ??a=5DQ5uthmW$^6HDIpd5*kk!_-RR_bGFZ{(W~$F}-peEkq77~ntnTL{>uTe_fB zD@l|Ox@u^l;$6TMd~- z_g;<%$hlg#LGY>af1O(}h5IQ;pQ&W>YCRO+$Md7(|C5JuLdSvVZ z5U)h&6Jr zl5VGx0m^zw*3``y>X`~mSVZa1v%en}dDxAzzRZwQkEI*#`-H03vd+6?5OQiDW$t%9 zpM{!H*!F0@(OA)AM}Umy6Az$9TAoj&<9(Ig1`^yin4~pM4HOT5~y+ zmiK+B;Rsom0nYH1u_oWH9=x5w^uYVB*AGHLF<@6GF23GTQ&^}BQcDKzTJBP=f#W%n zd(A2Kv6w+ibSbZdaMJO4ET50^ZcUwq;L=Tlbog4YmkD0WOM@z1_L#XF(%_euEf z8bCwlH1B&Wdg)BckqUWy^bQEX+uFLxEyTm8;Yi(YX~i|dh3o0F?zEPaq_I0zIz2Vu z&^3ZtzP*k_du4|Rqol-sLiqZ(N)>&6dAY{pCMVc~PQ?${V2 zfOt)suC!&1!x=Ir!-Qg2eL1dMZf*XW$??w|giZnNO%^`|cPgt87%jpUFO5WfdJu}r ztU-<2H^8ensW-WN^t`ic^#*5b%zM8n(t0td-VYx#T{i&t;+sfAcW?gHZVzW2Vt>(z)_o$r7YioBxcmk7|}c_C@ZYn8om07wbu0 zYY%s)g~`7I88iAjbs(>y>((bJF{v58SMSF^U6)%r!`I~VW^U96;4WgXb2xkYG;Q~l z02ltZRzzvyu1V3oblk62PL(YnD`?O!R*9}!AGV;ve`a! zT|>iHw2=`iw6s-a<(p>aX}@~+60> znzS0t&$VXg1n<4Fo3>#(2RD2lPX$4oY2BitaogDY{>jqM#>T{(HN%U4%ot zjJaG`xYtSVqc~M6EP^j&A}OhXBqOVeI4s6yYRWi^!i9D-@^@z4=WLoM!8godQpKY)BZ-MS%hj3oY{`LjXmg@s>ky1!80sv$WU z%;(o8H8x;^>3Xo^al<~|!1B~t`Q~3?%Sn^Mg5}T~Ip5!1ur^B$K0lu>t)07`xAK2O zQ^52DC1cKGz~|RzC%+;+?hJXsQ`=HiZ75`EDg58IFELMPWmy?Smq;m3M5NEeOkl0y zAOe)V^^FGPkZR4c?AUhgPjqzqaNU3YVEofSLYhq($%MDg%j?xDcdd#|GVL;;A!VMS z;?W8&Me#abp7n;9m)91tz=#@^cLXUB2h<^$^;e-s}mJLk(rF9)U z9kE}tw2W)d@9BFh;Qdp}I8xit#EQSw8@S6AFw@9~!SqstSWy2Z&z`%BeG9W`%VYh< zQmJHIe0&4r>t>lAmH7&t4q?`g?FHW>{omh_Gfbvxb1Mam#T2;bQFY zOIA0S9$&A)HkB%5$yXW-dAehonVleB^P0{85!O9hjHU;HzLTyAgv;}(72H4=m#;ym zelkL`A6h!1bnrWFljQ*MRXk2w+Wy%#6vp$B7mFwf4@=L$_XJ7*=K;5x8l8?#z(|Pa zYo68qgSmKY8rOyz@?_>M8Up8(Lo<(mq_)Q+`^hAR`)@YpZk^t{1qm`TGOj6E=zbds zUB!N-*Pve$8Y2k&=Nfb!Sba`*|LU0WJ6T!cp!(b;|NfmQ;A-QjjHQ%kZ2S=(0V6tM z0h5rIiBFfAt@>RWlZK*U$TwBpgZSh^jNmGIMp^EUcT%E3J{A^F*ViDH5UZ)_j-LL5 zq2{U@7)kf`y~V|s=(bk;O1 zVKqe#tG6Fm6~gw%6Ruq5_eouTgL1q?5rT1uN|Lc! zZ|&J_U^tn0vp?GU!ffi}^^3=^+=t%JHpzQ%-eR=P(_P>fbtm7ZCltb5QAvkL5|7|VSvid{|eb(NKyCskAL z?<@1hUY_Na(ti9<95t<&&ZcsRcW%t2+D6bWZx zA73KMr-6lMF9@%WT579QzB>|VzeYzNk8dOzl$kPv8w}$p6jzcnZaF*~8P+)5k8nFb z;+uppc(lwkdPgj4VvfB%7J*L8cyYC|RH;wpak+Ul#C&i3gOzINeP{-SKA~>iFD*r| zg}=*xG8+>NhMD=?Y7!Iw8cd`REv(%}Fn?cyk_(@vaM;t2{LXxYTvxYEnbE7}U}47S z{@On-?oUa{CW{LfFO?W0IYi&bC+Ws4j-G+%=H^aO)6wxR2rlo;(W8dZ=4*Pn@Kka- zV@8_wm;p`p`ugw0MB>-6@h|UDD)|QoAvgPQJzMhyg|69Fuq#a*AP39r;@joUZ(>2> z5J~TA`;yRCQ>z470#t%CAhoh_v2rXIOmf5K@p|RcIFKt^xvcv=>OLGTy!NA2_<4` z!HF3U01{H^CH?eUN($@lQV!Tca&m2bdEd<@E#=~8jE1J#?mR$%p{t+}V}OdMK2!o$ zjI#z^m^&9IRCMNfZ8B7|wHsPg% zqw3kEgF{aAjOS6|S~%~RvND;Ilcd}danLm2|_*qz37Yy&P`XZ-N zkdEs@+|u$_oh8Lu@yN)C`$$ihl~g?$wBF4dnVC;Y>P#G)s5~k0yh7(nUf4Dc5`Xdp8(7R9%p2O@7b8F1=Q3jk7fxD5SMD{OUM-s_dhs1?}xMt(kd3 z`{dN$>uch;IBg<%bd{NaMqL#Q32J^lKDKHGxb4mUq{LW5`r@BlJ-q%;#t9_rKQERz5S8}latX^QbPU$Ck%pN8frdm%vJDn!EEjxAPr+ z@sNTDR5E7y%b}{d^Erp=s&59iVGs=)EfoCB3TF2_DOt`Y;IA{RH9@duL)c4Q*#%q2XnraXRw7Zz}_rSR(L zLQwb(-hIjy_ymNYzeQ*`zdT%1e@cRQdm$MZU;!V3_d`n7lJW5Yu3D<|+~>6lluGG(fCn@5o;5E)$AL;W0lqa5P6DPBrxT&hy>(jPH{G zacnTC{o(XVoCXg(>TfYqhBA1ZsFAvu(6KZf$lGyHUQEskyL7}t|`fEj9oA?wOmDbYx zdkr?W2}2#Ep`nC8Nli(qT|#UQI_|6ed^9SmaR-N62ZskmO|4XKcXw%%O~wx>*E=AU zn!A#LsIa=4%@>xj98XOrXBJ=JYOTw9Ci?osKi#Ub@hcVG++(1In=Qz>O3E6byO+O1 z40_;|@mv?(RmkdxgJoru{YJ@exBLk|W%S?QQ*6*+ANT^lf$7z0(`}?P2j+Ct2=GPC z>RtBLon>ZbDut`j5HJZO`P@E564AAKHn@t1z})yBuIc6US9H!e0d?mE?PZopLN zj?_;hNzW+fWhuRYkCKo-w&<@Ow2|S&psGL0DoDn)a%-Pf?P;Nh<9QrJ6oEo!TM(oA z#(9)p;t$qH_{+a@HpK|uKAV~uNGF!DwB2b*OvSa1s^Qd6sI<~Xpz{A5uJ>(bxRTm-%rHD(I zAO_C2FI9xpR9T_Wy6n=)$%?tTcVv-6Q-E8;e#@u|U#G1}3kxn|R|;~6qo@;Q<->5r z=xB*2|0o>Nb7ui8nWv(txM~NaUVp3@aLU+(-c__7E=WPQ?1`qozipZOUHln3GDx?% z>EMJ4eY<_2%bYu#KiSflm>x(i0gNZ!bKwqcJvb&Ni+}wZ#=!8U*;C_ikw;kkuen8L zW6<+Zqprea&OFjQ?XkLZqYI42jr@V5BPC^jTewhQe~yVI&Rc-cd5A?4Qni}LxVruj zRl@qKg*Uq*T_EhM<({Z6@hK3z01gK>NQ`EH6RO@se zg=YiUT@xy~<&k;Wq?X3Vw{p;tfsMboINSKioRc6potJHahSsciPY@9!zOJ51V&kQR z=2A zUGf0s@xAAzB!D5ewq($mQ;HXwn%-?}B>nm0nwUi8^uf%*LHo@cy_}Xt&4S#ng4_Tl zU0oW#U%Z&OzBT~s92f5g19LJRL$ji~S=W{{2+cAoC>W=sW5B|~ zIXmkiD{r~?F*QXwSicJ5$YN3Kow1fEHbxAFHFSDkwtPGb34z>5ytv{f32TiAIi?-?S8G5$E>@YP%Jz zZ{L(!aI~` z#BdO2x5;U$wKXXs!e4sdQC&S{c9zV>wKA6+OLl08<>abIMJ(7? zaxr&*MnHWKGFO z*VnH|)N?dBIE2Ltuz86<_8gxne)37NoZ>-%pjl^qgBOof_3rLpM2yJsr;V{&6&oWZ zSE=*1~oKlbDBow4!SrReQ6Q?7yUK>JhX$-TQLJiNfr z=vQvB4@DKNdne9Mhci^BTRWU!?9|njYk76Fv?DLzOndqlJp*D4LBfkTC|6TS_{OcU z)F;uDA9P*Vv?w1OY!Hf*4M(7@$V%`M3hi;L%orLH{5OMKoZA&VboguQ$A*1=M1(Ir z!^HP;S$d`mY1sp067dGR1dh5&JsGoea;Wzmo?_b5NeHm6Jqqr{dJjHs(k?x^#%dA+ zWp6HB^YGC;XCg#KdPt_zw7$8H2(l+t{V02Bj$l0$odK2B8%@U*!7c!tG0({P7=j#0 z40&5Cs80f+pefp+z4l_^dj&u{6{mUq-vMO{B71iJ6re5+d~_xqO)v3>Y^?W74bdfE zT&OWK1&@_z>nWe9NJ~FWPU036+~1f9-P|awZ`7ZiQM$8Xoq$p_3W*vWXzGtyEoq$P z=5fbFVPH@xF2C1R!putLVPcE3ccspfoS3G@R}}Ye;5ITOrDm2d{Mi{g9*nBy;ago5 zB$}&G9g|+!Ek;WwB)~=p?pK*d^IFP_Bix0UI6CU;O6vN}L-d5A)on&}%VYzUdIW%m zQ_QRSXCBD{E(BKPBYZo7%qWpX^Ev-@_7JPkh!(VAdVj2bQK|xIiz4vRY8tX$MR^1Qmtg-`^_%=kxn3MH?|OQy1S?y+3b( z95%eK5BsEEQ$%F&mpD4@^gwt^cvwUP>OhB%hW{c|CXb7k6A4+0Uh}G zkwxWlj-y89$9scTZG&X^?Z2hCxICv{D6#_rnyIKDw1v6CWi{;OEqtt8F80b;M#dsP zjBXs+Z@Ab%`U(pRWRCrj;tlZMN>0A#!FlfP$>pp4{0`^q1Fipz$DLdzGccKc*`HpU z^8EEhnNbd;h!rs}XY#0Ewc#NmVDWoOcQGg)n{>d0l0>>`1>RM%~_q$naMo3royOgM<@k%NG_hCOPu*pr9adOCt_` zQC2V6Lw9*%O3}!urZx~gTU?xkfq^&`f_{!BZG{4TIF4vf0a5cKZT9|Nb*TC&Om8D- z)ipFwv_DsUfj>M6R;CmR37XvUeI%n+NIsgW z+z-d*rK77!N)nA?rjM7EC;pb;#KwXKzYK03;YmrVZ{9dxU|ua>CU+V~Dpt z&os8OP{fpC`;@|S7<;mQCdWuFk23L8@> zT~OhCSHxycSUor%kBI0+^v7(3;l#>Nw!kl-l~%5?yG2|bFQ?O?903CYiKSyWB7 z$E+aX_AWO#5arUR#(tu{8ya*yyGTNSwmJm1d_O;0h;aQdVm1ly`IJHOL<%6)swyA9 zgM)+Hi+zdZQ)I{TX#j8d`Pp4>N(t-eXsfF`KHP>Muau#ZAK;fgU1j;Y^F;LiK|`g; z6rlPQNoF=eF5t6CL+|E}xj!8q9+AM2H8e1gnwom56Bs--PdSJaQFyR7pL7t0jy{Es zR`-0aODN_ln&Ol%G>-hP((~dovXzrf|L}EyvesCml9~il@27_V`1GBPr~v6kElV~1 z{5cu{2{DR52!mvQ`wG3?TjpRzA@bc&pB6qosmArEl$+!Bw@FEe;BE{x4sGTp_&JubyO^rsD=b|IjV_HF0zI)J!PMUCUgy_u;gQ})z* zZ(vQJ4Svk!-U4>Tl+(5(l!@8wjSUg2wDI)>H}Q%>^%SU~E|-SV()BUnWTEXx;BMF4 z%%@l$2)m&E)odpnI;>yX_uyxH*iTWU)aVIXR%OGCYW;!oxwN);a+ zZOUq|od0y`Ia+E545{Sgpn#XvHgDGUq&sv@n!of^wx8V@;Nsw%h}Hl_(|Eonuww&^ zr|zv=-zSL{Hz8#kFi=&({P%Yx_yIS6hS28o`J&#Zvic@WoV%-PR8)Ldu%8fLzU6GB zVSLd`_$E%pRW6G=)m2fjA9Ry3fi61(&HkT$LFv1vml~8_cM1Q#C-T009bBxXO5O2As_#X z-*O55Me@N~@?#yz+EAr!@;gtrnNGwQc+mF+Q`rDtJry-Iu`CNx7nk)NrLKuuGYTj? z@Ob8T4%?icC<+(wzNSNA(5UFivoH$J6oo<>9$Mw4wXv8ru9us!l53LtI!SP!OdY%myYqDgkY_j*=Y5^JsYu2KFwG!S!r23vhIOaL*@-peluE z8SG-9;W)E;g+4{cXwu?i%W31Lu{77-=m7`hW*voq=IQW2cNr3V_?1l=6LT|0pr$4x zFOLeuF4PMNIu9}rS3X~x^xJh0rGr72{VxYN#_Up#54PhwL2!a$*N)EHv2{f+~2@!uwaMqXj!kTKkUE+9bn6osA$8#HI8P4(5&tNrS_P5if!yD46Px)pwlc z?d!k9HA}y7%PLtekKP4LE|-*4{`N;&WiEg2H-e4 zy$c9r^0^U{m$9C0zB&qn@VGCg-;4kJ46XlicC=KaVnNGO&E@419hry#^}defOJDZh zvOrw0NNX0Da~`l7SPKPn@~vkb0nzh!)+DFw&;tIpJ`cAbH)Ktzu4+C}o1|C2nqBP; zZ&+w$&-Lm0^t4|NR&_OkkB?)PV8a(z^^>zdVRO zi6aqIC+7F)0M;Bp&Cu2+>RiX1GE`T)z-JORoW+p*tEa$Z3&%TVKYO-4Qh`b957~#W z>B^?-J)I>bK#ub(YSRR9MbLBxc-;AFY3{#kX&5@7A{GQk#`7aXIrWWpdir4$xLLk# z#~}E4v!a|+men=VuwVPB_Q>)5zUDGRkfyBMTPOw;!j~C!)$4Jj2m=Z zeWN$hv<597+UyKcFWyQHo3e&&nsmowO%EhYY;6_9yc5KroVO^Nk+0sMiGI%kTS`4$ zZfgf&=b;MDp9OP-H%K5RO7`Q4$G3o)?<|O?P)(3kJr>%hPcQn0^=-r`p=3o3i%eI!*@0;ZLk+2M3I0 zMcf|4nsnCI&-iXq3m>AvO4|IqV}c8(VB;NS!PfgOAOhutwtC!+Un475Ma)z_Q+{eP>?qc14ADPvHGm5CJYihs*^6*FS#r zI#=we{PyjTgdgn3upZIwfR{1Fw0fG4_f5@dY3hz=A|FsX=EA~6NCYu1&f6{U-erNR}~k8pHEFqZl*BqZf=TF6ZG`N z4%Dctzs12V(5TdVLqtrH6+fXkLF-!m7!QlsKe*;HReB1joSD4!_(WzG|7~;%8?K-K z+-?R!PqOMS&NxUl%%2Dr4}tRQ`I$27Ez(@2%sHFF|3WkRHS)S%fh62%8_CxfOBRM! zsadG034@Fb#m5Jbq&(d{$DF<(vL0f9;l}Q9k*;2(bGuwS` zClP<3pe0Jlafulz;@ZF)CB~4}+pun+C=xJRDHQ&fgSF`~l1rQ$wb+ z?Xf>;?-i6)<3X2lkcW;EKh)1^T%G=SB}kP-_CTW99tIt=0s+r$_RbmvpDyt{-Cl!` zF)}i&xVWBrYs$)3MC^;}QCTCQhT^Iy1T@J1tskx&z!D4)Za~GCKUo1cGRHU^2EOMD z07$a)k0v!6v3h#s$0Vf3Ca!pmBkJaHd3I%xn6^Lk3b3`-*EeHhT{1Jh0WXQW!Kk{r zh@QUfaS~%las810D-;>Y;+5Lg_CJY@+{ACUl%$3PxFKLu2-<#|?+O3&kdKtI(^_g@{> zl%r=(DJ$R#>m)@(FHo;YN3^?P09U{7LBWtWXd%(j7$Aw_0^=14cz;o8lsRKJ z9OM7LmDKZRV&X^bUFubn!q>DfljBO=bMTtq^_Uc@?Q!1_5Rm#Dj*Hw6zhRf+WR3>B z9XJKQT4ZF8s=*b5`6a!%nFa~Teg#ZSM|byo98F5Mw{J>b6EXhXqB`E?nOkUn#RzCW zFIrxr=Mfasvni3NZSC^VGukAChAMx0!IOZOsFI2>H)p0Oh@&jvXj0SCaz2^?SzZP_ zEK%T5ghA6`aU8VlZ6a^bh>4SQDd&3@k(g-nDlKqp>tm}g3klJ1R*ejZpE|_9k6e1WGEX>S5KEESeL2;}07VU{%hdjo< zOmuYe77+;*e&J|Q>@5CE<&hW0p@|I>Gmw;&vHTrNjf7E-pl^mB6v_t(B*DQCI5?EZ zMoLOh#V&&@v8}E2^Kn#J@V*AvT7*CCMhtyceQsQBd2KRWvwcU87sba^9iw*l5$j?#2_IN zqgElBu9>@KV{^pBJiNcZg-6`S$MG7mmy`a9^fn~KHHZ~Y21eg#ZsrSPBA_J?j{5W( z%A%rDWR(kJpzO()p{T0jyu^mkI48?OPz^t)sceJlUN2ZwtvWgBXH$8ArOG zaeWGg*Is*g=$-!4*Zi((kJXUxxBMwj{KDl+N(_`7?%kUk6+=S>U*E$W3kri3B{DK) z#jmm1qg(O(g-J<^<%|hC7U5M@(E5ld>l>&V({BCYVpg z8RFo;uB5d7_=wWh7TDeWv6I^7$7jpknQ`->K}}UPv|pO6j2#O>aKX8`m967SGOe$V6&_9vNK5-OWel|EADnihzgVzuHOJ_eq9+8fl4^jY zX-*?R7c;S|%giM9Mg0F7NM@z@5~{vmRj@V2%WGxx-WyGtkM1_@+fjj z=)C_9Z#I6&6%P#_prItfA`(VbRZoTwW>hz)XXMrXNYfV%SZgIEFKP^|Wn|M47tUso zX(={X%T252{f)@DF23xgvP%2)@9y5Jsu}wF&Z(9CiXkBL-p5O2Io@Xg*EJ!la@lrAq{=vnxbhCI?pV+eF z<4tDiKQs!?MD458^)vfw z%|j6wh8T5gPLfcKs~p=sulm(g3MKWL-%k%k*gH}5^ezCpd@tnmi{JlVYl)rf!Fol& z5~{dwiHG{>$6KFeP$ZB>=aX@wApR$phx@EX0gi5s&dONXluO~^hhK;FW&iSJdUh@( z;-m(=^pP+VgQwyCV&GUKYEy2a`1^NHkBE}ei$W9!hxIC^P-8!K^hVv#Nmbn0_k6k- zdoaUt@&b4``FPkA@J4Um@D>zAo;kkn>DDPNt*I#=9uDm&#Kh#s!uEyK;x_6wuS4*Q zQR>leroW#8NuXAP{Czj#nLRnhfXN&-&EE@+oj>2x;1WN%#}H>Mx2Ig5Q;w#SnP;eJ zXhxBL~4s5r+2)JrWaM>2&Hlk#5+-;&RrO!PgMWhS$H(@5A7oysH3_f@PlC= zeG5RJQ01qSC##IQUu<}slQJ>_!qaL-#yd7glbE}!dSw+baW^Tgn(MO|sF9?i!bnY} zr)8uzbM@%0BoV)q+34sF9i0ZWIxXl~6r^NSa=SXn z$ZFaj3QJ1pqA*70w5A872=UG@dY>LW*>h*xya(bS{Cqnblg}tDV3iBoyw{N_BZ*Lh zmwIddzn?fdnT(@LTv}TC$?@IC_>4rHUJnl}dHJ3?OLiIsd3gnzJ$oCQSJWyI-6j5v zLSkb0?ChW)f2JjE{6|aTpzB~@6p?bQft!p?X^8J0&jHk$zuQXze3`K|g^W1`M2u(U1hC%nhm<~V=`O|(aypv!Q*x>7@NP%jSwIKZrd*zae}nWy z;w$-h7NPCdXk$jLlr}NZ3xVAB^e_UZ&z1&#HWbBG$R8$%ib^Ut7(F6p1+KCRjf#gy z+tl!k&D;iHc9nKr@&>(Ed-LMZiP`*r(4yF;+^(*(_EA?@SSauG#CuWoqRyWX@pq zT9c$mDpo5i3b&WwnLoSYa{;d~)2Fb4BNtiYOcm|#stO85KX`>&r4%9r0v4$d+L-ET zE-$&aw^t7jU1(^`)Ew0B6BJ(IXATVsA05?a$ARFWYB|1EijeiqU4)h|y%mU!AP8fW z;C;%a;=QTj04w?9^T&SOY01-D@dMo~QS|g!r6LR0f6*%Aw@(rTJ8$loW}Hw(?ezp$ z4C3CvSmrC=tG^&3$8T`+0*vCyOG>tO%aY@zzP;u%U}v{A_r8Gn7a$P&wkc_FJW!92 zb9~Ru&1Ls%`V7&{tFKqlawsV|N=c!D!?(Sf)RIwCDTGQ&4;0G?VPdxm?(Ra6_^c{~ z`h6(P`Pj4vkLks5($CmcSnI!Mo$V&eFW4kRqO!mji;`U>FzJi4<$(EyOR>&Y^}K=4 zx=6F@D=^YqT@HxIk-CEl#iuEKTS-sPii`8^>s2295`eC1LViM{S(=;4{{z~M)p5&igB0R2+F-5GJP&&v9ae~>q9bEZDy|t{`p}}$>rtgDK9S%tehUG3I`a6nqgrM zH0@4%fCwS;XOQD#41PN|5EbL=+ws@)dUf@l{}g6vx%s>13$T1L7bV3DcD_GJy}icG z&HIFe=88&Be+SD`H*l~4rZNalMMeECGmKGXd&H0;M2`4A7fpaH4eEmK62{(b&O3;UDjbQA-l_uBS>VgE$xgfqkz-O&eJCqoqmx_tkvxGEMD7CJv|O z7D`Ixo1Len#lP9uzXp}g>}8geEPB26MxkIbGL?@Xi{u=F6<~K1!P~?xjQ__pw47YN zkG5?;ebVYuGiQl6)=;f7oSj`rzgfVCCOQ$S=)H#cHcLwl-dw$K{=<=BCM7kvzSzqA zo@Dp>Fi&6ozIxLO?v`rZyxO`BcVBI7sD(KlGV;L@vn-~urlt=I%T7{))^_XYun##E z|F#k}c&>3j2=N&7Q(0NR$YK~)DuPHAF9A58`x74ORK>g*BB~z)zZ1YT5a74WjD_Xr zcIw{O2PXCS6dg^hE0Oc!97D>z@W$Rs2S;_+228XB`Z7a=B|qSWptsgSt5eCeqWaNn z#lTV;du2=h0|O_Bso@J_>{^fW5^iX&t~RnQHIxi;e4Rr^vDb?8?3H|SQry>~Z1M6>x`pK{_Y!A1S;i?tmiU5s&};LTyb~4bRrazjI+iMq()2 zxk*S|=I7toyJzL*x(l!JtRK8D8d7w(DG?2^uyl`#qEAdNPEL~3*41t#*FFTHMZ_bD zia*uBG}Mu+tFjhWO2^&qSRGL4oOoHb!{r}|o>H~FV7!p`xPw)XzzX1`VVQ0J>EbCS zTORbz)&M|qY}eII?$`x`@7)0(K)lRHlQ7cWi9B94jz}5q)fPAUe=NRaq@}09)ior2 zC+VUkWN<|E8f$CWz_8I&_w~wjSQ~clic3+~+?8+VLe|ibD?9v+qLN>H{AGV1IrxwX z1bt)$#Hl(zM!LB%LpjOiuGm>wt!!)tt8o8~Yj^SFO#%`NEGUI5Vww#lWpT+cBBpGy ztsLO@!g};tTw%GL&F=>HFeQ*UP9Gu}NjO^FIkPN|kC+sd{=LChkf%1@)(7 zkh{CPhjE~xO$jjv6EiHopaRYrwSfoTfjU1Q-^m>rVW@5_SI(*Z+FZ*G6Eb)Ti%2(h zKQfmzNON*}RQw@G#0MV+BY(}z1m5vS9WG+r&2U#vNg~IG5tj>$NnKrkzj&ZqA?x(L zkv1hQ&0|ZPw40exYT@%>(ae^$=zzwbqbJ|XSL*Ej+oknrsx3#kU^YpaOK<@%WB;3; z1jzNbZ~kbsnS}*8B_+%4HD38(N%6D5>MP&D5bTEXaw%r!$22rTad8QRgn~!iT;RMd zU+389)81!Lv0qYVgWccQFbDTmyk@#eia;z>Tve4UM*iPDogxm3d4Ll-76fwL16ubM zrxoH3Ca+;l~2y*%dC&yMBQAa=(eSPsl~w|UtgDY*lW!%)p7R-6Ml11fvMdjrT5fQ-x>6Iqk+)9c|pm&*{e~(p_91D;9@{A%j zmPxi}iJlJM!NFxf)}oEL*x0UP+W!vT>P}7ydCZb4h^TsrNv03WI=gL2f+(60$Wcqplv*S*1Vxzw zGe}!p2uHyc5_!2(=_nXY)G?mv2ZI2Fp|M{nAD?lF-9DaE($jO*pF@I3g|8YlNW$i! zp-U9XCMCrVL;>mbZj3R@Ml;E&i0d`~c+-!sr^mgC0am3BmwSA7Gv94%30}>+x!Fkk z$H@{BgsP*VQ!Ut=j_}0bV5#MHzx%wlcJV#^AkJWi>|r>)Q18W`eICD-xjeZwI6Q*Z zNSh@wbLlCwg|X#E^v|C;x64b{{f*Ake!#8myG@=~U-}av6y%?HB0p6|eyZU-YLRt= zMCr}eQV%4fxKhHtji^se(TCDTq2=doBf`C;h<7ncSk*#g(B>pe9Jpxw)2?R(#PS33 z%70_zygy_HaENzb^&I(fWkuSV`2S7Kj|li|a#3tYw>+)wVbyVcy4ikK6+rKQdmVkY zd^hbxJ*DksZ0DwQ@Y&=Qw z-7Po8zoo7)0e}TXnUfsW+GmdFXsNCe-K3 zF?Hb2I+p47GD9{n(Lw+knFC`0M~wZlsZeA`Zo8N}P-f$?3YWH)t;cJMmdyD*sOleA zx3|*M_hI{~|6~8ldBM}RgNVtZ3_7c|L(NdhmVO&lx#0sY-<4 z<+4&s8Nc4qkx`8iz~J`OFdAEyaWx7%;b1dIe`M$;&nM0pLi|mW)BaY$5MYz$f1vFJ|Q1ann z4{xYL^@rM#W+6Y6`#v;_ofB{|5di>6ks;TmFWGo2!cDTmVEcq#bU7UCh$8p;6N-{B zv?$Yi=g<7x%`LBkw$*~951~!|$7!!3H963;Xqm&mYy4mLXX`$FaYn^?7E}|d=9YWJ1JiSv4Wv91({XSJ44MefNTkwyv;oIX2G2AoXBebTdDBsaZKwl zN1=0HQ99CAL$2r|bI+NV0lRWy4$3j5ato{`+fg*G9mqhi2uQB zx3B-5(hR^>wIgMb=yeAjqUtQF182X4j;s+KSBt@#}?+D#J zr#n)tR7)GA%wzG0%~j0P`!N-~+&#M_qkG0`Lh~Q_!*2=z_O>V| zBI11S?)d33N^x{#Bwf&rkSY!b2*lN5g9vBlr0K^#N~28u9;_*peL8+a0?N*-z&N(` z3ByX3d`F`i-LPq&rxqsf@B^WetuMh=o)*um+G+TFhoDXko3E$I;!4kn0>A8@@=JMpw?VV4cyJQ#!_=~+dWtP0sw%CEkX?8a1Ul9laI?-S#rnP}9 z6WH3>KDc@8f17*_4N{i1PKDn~?rb2=9-TP6>-;iXm*c%;5dxuDU<-DS8m6J*{_Wjh z$Ylj;p1!SO@F#&H2zFHNgc9-zGkK%-O=tX<~S4E-IaK;Wy`>5!|?>u5+ zR1vxqr5XCh(4HQw4K{FTLTc=&z0GMCy{#5C1V|-wZkl)azzjA$Uj-~yURl*cpS(1q z#otI?1JBQq4-XSupBLKfIXM9wY0uh`sQ83-Ukw7IP9NJmzFQ!(pr^hjU)mJUY@C|I z_kr*aWL*GIEz)cl-CaDtNE0crW8D2Hiz-L0Xx{H7ZJTu0G#w^jpDk6)iyF2lntUBm z#0Mw8e|-FILmZskpZrOiDxFE5q{?aODH3=JPpS!`fj?IM2a$N7LpD~4MO3tHLwi2XfS`7I*s#C!gH=xZp@IiUqU=MVBQaxRRJl)-K%a zBpWo9l+0XQM(FSXAX}R|<;0s8fg&eZTPWYDw=I#B=rtpi**-cKu17VC0DIK*rWN+? z?%vK5sUSH9+`Y9xTzsy@D==yF=-gapyYQ8@)E()WUGp1i!NS>l z$;0HT4p3+`4ghF#CAk@$oeLwsQbr0i8Vi7yvCA}R-j9tsz0V%MvqGxhATlkT&OpDG zMJvti;v{F<*nk_{tiV6*%%^xcH80w>^-Xg-FH{G=3%L$DtOSMal{6!bl9zKQ< zC?X|iy6bau{^IH9>d}Tb+YL6ZS}*R#Ow?vaxf-2$^U7=^r3DE?Q#8alm9cYX6)wxrMv02P#X^7n&oaeNg z?F}nT-MY$qtbK51Ok9;4alnW4%YGgXRaJq6)A=}nwZh4q%4@AeGL2^ip8E8)Q%7 zHiEG5tAMEYq!WBD8_GYFOa!eJiurc;o6u5ZF#K8o7>(>H%XPI&g){K0jFgg=qu7&1 zf3pv(bOaC+kpes{f`;?>e((MFYQoxYPK7wYbv+)y1b7&gJQw%UISCtDxUT$@I6NMG z#^ezdbety&;sC_c2F$tLyX{1uZZ$E))Xa%LdzqnFFwO^zL$&}%p_AE*m9VLG3y}5n zAm%X-54r}8L8TjxY0aJTlcMpnu~+2p)KR3q|@wn>vcdPgbUGB^X8hd3|e#zM^kIwitaM zy~8IX@#p8DPsb5TtJup2i=~AEt?6 z&d6XS_~5d|-EE)Z;|9Sx7nEWjVO3eAxtqpFLA6rsotn_cq~F>9WoObV%>Bfq)$&y_ zA3XM+$Fkov3ck!8h6PNT7>m8eo?@R$p@cylRYbF5`qvm@z|HwZGvky|?mCz5Zq)X% zE2MHa*&47$xQ+xnGwk}E`8lyV)M{#i50g|^;Os!7XlJFs;f2XxF8La@hi%1$8YODh zD(Wo=1Yualto2@z0Q#{=&0+q)*3(pK1?aTEkED z0shYywkMfBzdn0UfeJ%gkW(cyft9uYHx9J^`HLRy)g6|PW;wY0#J`_lF~rbC(!gIM z`nA~=D+lxOLj@72?lP}TsPS8jIcOV~IEgoN+u2e~y3q7%h2lSUHVP-F3Xt&Ua9}@t z(x#2LRRPIM;S|dI)1|0;r(()u@y7&*2#NeKNr@WUR?FC?jdPDUyM^I(gJAQKfR4YERwaATepyLn>}2nQ6I{S-u4j$+eWtm22hyq+ZgiFwb)f54c8<;0IKkM- zl{?Lk%=xFY*K)AI5SsEKTy_*um7f<5+X@ z9_Jd=B$;t)mdV$E852kQ%$|1yC?}HHrour{W3h{~6MfrAIQ|ya?A@l%LyIoe1*+f4 z*YJnc?fuC9{K@)N@t?@ry@7BLBAUJ1BEThH_Ds|K`m?9frrEBTu)RTvRxYukLc$SS z6_PUIr3P#*fg`$NilVZ1PixB9k+PFt9jI>oXx5ac#x^pha(3z_^Q14dmE-Z0CFj$~ zl9EbBx%}ZIlRlY_Y&WM5<;z-X8D{($UA%Z@9}r^b@6kl9Oj%zvi3^@7#wG;8(3*rL z5Cpu;Y~7`A{nNDSr&Tlw;7Ff8v!BNyBqlb!{8Uxd!_kL6*i|1pm|jFA%$iMEOWaO( zxMsKZr){TUYXzUfk!k~mn?ri(ynX)6kXi$o;{wv!&ZOCJ%$z$x+D|lwT-M#ChLi?rzPp27^oDw<428LGT2hTHLcO@t7_KHAFI zaA%?G#7pe0o2?_f!0RALtDQ#4H^vxGT)YAzst?nCN-7O{pi8#BJ(ig{#+sEb&l0~e z4!pAQOD>O&{SL9yP4hFV<8q%3oSi;>g3tAJH^&`6o(lRGGG}sqqu@Hvpco7d-Uvnlq{?KSiu!QigwGMx%=qYEZiyK(X+vpYH-I70zPZN9XI-tVT>{~EsB>41y)C-!b{;b`rV zMojTKab#Nq61}=U{FIF3RD--gxFtSv_Q@EgxDiCWEDc+jp_$yks}x1msgY1Q1;vc| z6|tlZSZm1F_=LEy7N`zoCrC5K?(>gnukOV%e%;%1Wk+=<5QxvSLkJ<_c@x%;p5@qJ zm33)tuwW3Dp9o5&@ZS5#Gm1#DUB{{Z*J}za4285#vyF{?`J#?XPZR4wZe`PhmU%Av z%SDhrMtD_$iQLlw)7qgxBZAvbn1L*G<1Z2m`BkO{mCFup@&X&OdSR-RZBaBUjN6Vo zrMHP67?1mCc1F_nz&TySeS}x+K-ai&L+kRi??K-XF6ewqNwtCgdv8)OQ1MTzK4WZT zg5IK|LShu|cc&SJ6jVGsD`MTw$AOA+B=#B5f%Ln$X6!j4y__*|`EboRT zgc9%#1Cj9!OmX_)L(J8O$uZ+VF=rH~e(>n`)0quku zQ-OWU9PW?oky19vNm8dbfNJfLfbO7qTqAcA9uVjTc54KxApW}Z^X8l!V@Cm9!-X59 zQM&b)^ye+4Y!e!ag|Ti%{d=UHjyZV|ta|5k98L4qfEr?`ylI&GI@F)L&}dur)q`xI zagpW}%DYI39|zW$;xya^@=ibiKl9w7^Ym<;>}DWy>0H&i#r+6;#lGO+KDTbqRK5(A zwM9rL=`X_Y{x#PhY7Fa^-=m}Fw^e2CJ2qwiR6GYw2#1mfei+qOW<7x@KPIq8r(s{0 z+w?_?-EI3TdP03|elYgF0JSRz=f3qeS7xDzmquZ@Awk1QbY!F|<~>1Z+#nM@#Q&CB zMnmuyUq0L7$-Jpk>MsR6n1h8Q81uFg!Ww19g)BIrpwFInqCk@X#_j5g1wv#E2{Fur zv&+k)If+Z?nqL_8eC-K=mAmyln$!jI?8A7Y;rgLPI?Z9IU&?8wqn1EmTL@%62!!+q zW)ym84`tBV!Xh*njP&Own4JW^UHHZo(rms0!A)w`8?!9s{=jJXC5ERr%14*7AdSM7 z*Z4``Bs+g~?n5w^x&H{=DC%EU$ZtxRaeck0QWPw?Kl0%i)B#2A^LCS5Pao7IyX^n{ zv^(>B?IJP3&Z|9fv!EImlLx>3C*{-ooi?Zkx}1W7bSLnR<-hiz?X{us6~+Rr&E;zx z!n&E;L?+Wt&X0-m@@PZn+S|D@%l+0Vo!61P6?0FA8iY-RcrA$K8I`_Dc!$sGeI%NA`_NT(-56OpN?iPQ;j0_t9}iD=e`HHP=b?6Ws$U!|=X6k!SyP)x zPIMI#duy17A8+nZX2{iX`rV-Z61+fKIoX~h6T1p5Z8>Oto1M2tx}+M;;c=K?%j6RK z2kL0nwS)~{aaaKZaC-&t`6c$CDn~KJN z81F$~a;?nrnu!WnlP}~dwjXC42p^BUP!&1-1_JG(8TNM%4z4=!3{^HAt~$~dockRd zo4!p?pB~1Lef8TK`~29im%INi4tx(G64LNnB9<8$>gCLml0`cZ&^eWG)J*vsHM=nW z&~OgG1hZy!AAj=orYU1GO3$mq`zuAd79;p`kd^iC?XaBa*Ph!nM}x=`(tZano#_k@ zhSiUX#{TE)p29c#Zv*D(?t_s9Xl0$0etYqS%#*(a`wUvyz-Eum|E!NW)kuYzw|f8Y z3AfVMb!G^4sJ%anR(d@3{sHDVi2A^(B8YoaKs>nMeBz8wqJ({mrH8!tQ z4bWc*xQ)_)96t>6-I6-V>$!T(h%y~Q&=0{mX{=@Lj_X1oM5CN(qb^^~BBZ-NnA)+h z_LpkXq9$!#xg`c#mniCfE@<#)@$AtT6H(@P(Th4bq^bI&_76@GD3rX9(3s`P=Z+MX q)SuDcJ=PuZtx7>#~nySrO)C{VmO!KJvn7I$|I!JQU&cXtmCH@x4y_eWON zla)+n=A1dQ_nuHC1xXYne57~p-l0fKiK)DM2eS@+5hK7uKk4OIZiBwPcT|xSc~?0~ zZ~%RPH4~N>e)p~>8u`f(4*HB}C#B{1?j36P+v`0xwao8#?_LX}#e~&d^^Y??{z#m; z@6T$fbwNNhJmVKv>Z|~1G@SBSmNix`&T2P&Un;$^E&FcO(9@=YZDzj?3x|y@3|WnV z9aK1#dO5qwJPZ1a{^dP}s}JX1=1t~RFwIUN zBY#;0?+&!ROpmWNtrrqb2a|nt?4Np=BltgJu0#KkEz{@4E!}0+t+=vs)>B0S)t$hT zauF3TP)P-xaK1GVEM-CywyV(hgqA6B17^2OON;mSczJP22hM7xa{f0E+}l8Gyic0V z4~J#;1B5Q-0^CLKo}*vC@SORO9v&GLhX?c(DjbE3odpZxVJK$?HDi7q&=`BhzKPYY zXn8zsvG2pyFkfVbjs}61`wa-1IM#LBNd!SB&6Y7|1{;+1=#l@kNi-jpku%yiPsLJ5A`^U`g;h@OszcI9V-!{ekd!`pet1UJT3snHGXS7{d3>X&W zZp-izAU2(Zvo#f5DfzeCLP}0f4c&WEn#v6ax}8B2?kw+Z@FePLe*VR{KA8H*&dxqa zeeA1@yXKo;-dG$ScDI_Oh@Ta5{sV?oeJ90k=}$2YLstxm=s9G`Hcvi{BQy5Rj`a#p z`oHjkYI=0-y5MNrnT@SN!iWIru0Fe)Yy1F_7Wl`Rv zZ;>0P?qu3_3lR_qG}4H&6aPYrU4Y-6Xi^;BSD!gOBR*krEiE;2RD5q$*(_n)1GSBL z#edEju0+nHSuLbdmCk9KsR5=b-$LLzaGVZAprkw)gd~+n*4Gl$ELyHckjktSsbWe{ zD3W~b;4cus5tmWmbt1g_Fmh!o_uqIUZ{y|p+HpmMVp46EmQ{+}p00>vK7K}k9nX_Q z)1z(IsM6Q&w_Er9xVf8V+n>sA#cbFOTdvcjup$m7@&p5(D>2`c4wp|x;YO0)iY5C2>|vDc}z@*^eYHM z+)<#1Wq=?OdVu95cWItfRa9b9Q^O)6K4nl)P*F)Py`5Da6>%FqE6YWJvr$W@iebwG_%;V3!XMA(h8ZD&+ zbR946D6ZOtyw{$`8`oZ>q=u&5AAV0^2l^56)MR_Fzx!oC1(TMyo!i*31pof@K2kR6 z;D<MFK zYIip`Ny{jBT=PBsa{6jdk1)Y$z!XqHH)1Ii(4)iVlt2!dL48 zw5VTm(#HZ0tpZw%U4LzCbuJ}^PycOey*LSy!*U@RXh)z7?UAxK@qa^ZA+0keA~a+& zXnr?CI-cyq^HsK}onioNzcVt#)Ird+;+z(h@D?`uPv62uy^8DAma-&a0rK=6j7{b7 zs-*rqAL8P?DFR>0a%2ihehXE9!97 zvd0=xKvgIm|C*Z&3LOx*$|wAV8DN6R-VDGHRMioV|>lMYcy@o5qD;On-Q`f z`CY>;SI_LGP~dx4c_k$b95_iTDR1#~tG`b{_voBM7Jt)KN274evJBp{FeEuVVtN@B zVc#jZvX#Z2M8ClX8>jV^9;fxTKIsa6gmcyP12hL!?f&NnEp3&1&ckOV(Jn6ZCvnbDa6n$_|WyPA$uSd7mv28hZ+zCH#g z1KFiV^V-SF3$IBdMIMUEU@J*CgSXhlP!f zWGCR?e)pz`9v=}=hFJ{TEs0IfbGZ2Se6#8rPmqLgBW5CULVD$gnz04WkROWT_Vz4{ zt>+?oJZt}L6Z?PLbaCeMs^Jp@89!tAhDAF`8HQYxbZf&G|N zQ3Z11HPfzL_s%U~*G!Jo?>bb)7F(A#SbE}ZVYa(%JV4)tlv(G9g1Kr0D+b&7+cVVq zkt1FV(XpqB?cdP?4+yUha~*8fZ-Ki7!%>(eLJvWsq!sEctOji2<;?%qFSx&AR%M;hOC12{7OnL?Bh*By{-yI&Wo#q71gN`E9^ zice1(itis?m95iv8JTgkCnO{+Qg3bB)!JSJ&+h;Z`8@i=euB_^l@PQDA9;wJH0s37 z2eA1CpU2oWpGU+PbebIsGJW2X?YufP*+yi1Dnj0tiH{b10qyr!c(mv_jUoS#t)T~}S>_?o4)XZDxc_TDvV(m~oYf{2YwC@iKW;OPfmC2=V zKZluDB!h(62KpMFF5-STa#Tj>6nf=-E4}AIpCEWoMUM+GJGxB0{MV*J_{Db0IAoPz zQR$BV&QEwcDQUgOgK>hp?<3mRa#e2px6oB7(*C%)W(O@LsdjdDT%oyIO-hm!odKDg zk}OY;le}P$l%|XULzPv0UZTePKu&L`rcqZ!D|AuC+`xIk zItPv1b}OHY(Pwg@8ob^rFx)>JRk7Hu3;kEe^^Z!lU$xq@^)RPK+P2@rYv{XCP|Brb z-}hbw7h3R74BG`ol86TV=nKP6J!5{N zzUFx%$lnDzeNzc+LKvj%)o{p1*Kp8%x}ZyWJ&o5+j*az&8b)7oGMe|4E5GR|=-Jzy z7h|dxDE7#k;|fI5@E0JTB~|>?VmaI5Kq)aGpgAdA< zSNp})rf=lV_>g5s)31B42;`)pqnnDg1=n+NQ8Ii}gFW1RutX4`ilB+13H#DAVM66j zQ`x8VU@!8=I%UtC6^`df?@#!aMJL1Pmhqo_?uQXRxSCO=+{Q}544D|W8pAe5!n1{b z|4|ABkB7`UdI^uk3*F{cNY#zL78{ZevF}&5HJ`5>m>^xBJr=4SBDvnunX-#9pO^TL zrvDj&@XZi%!>R1ZkH>YbdQ_W1M z?GGeB>yIj*`{B6u&ZB14LfU?EOa&vWXehqgM5)LEQcGQvtV4c8wuDZH5*{@S&x8pT z5CZEkkHLx;9C6N9PF6C3bQ+5KTlP3O1;I`*H&&bb-PfXHyPg^!pW=AObmeh4x3=Zi2=Dco867v#vj1A&cW-g~ z%Q^zPZ3;aDgE%pZxNXev5xXvK1^P^}AuIkluYa+wHD*PLh>A99Q05J9e#1%e5-GIR z5ThLuXCBIvUJ4?1=2>L$u_2m|GfLJ9)f-(H2j%oOgwGv_8ntbxOxY`s)|+8Qs~5Md zdk*VmXD0-Qj}>e!kcuJE*T^syPc&GX&&^K$F= z4EutqAETQc_l*93dzBFiZLiGXPg~9e-eP|0S9b_-@PK2U!89*7q1O5FgQV*e5|80} zNyn_oy0p9&B5iomUtX^B6OPM#otc9VUu2_tdQx$|5GwxjCr#q=Jux~F`m{-^vvk#^ zDbiXY+oG9JlOQ!-pM2|wxmlm*3JCyd>|JIuz%}-d&W4_XG+kgaYU(zq!H$xM$+kiV zVQ$5mZJLlJ$B~79pTjRH6*$j$R)ROZAOG`x*0<)CcQAoQ)$XKW&JsKoVyw({{zI&c z4j=ZXV*uEW;nMw+=$bLp#7WF0yKJYpqgbqsrJ^ss#sW|v!QQcZL)B0eM z=M#U=zkpdw&rWn_!iI`r^4ubt298;-KCg~+H^xP z0yr*3BRe7)wQ;RWH77?STgyADrSE7Cp_ZBCk)4Ubk~> zOoc|IhyPWNW=7EJ(fJ)?L{Hi+m)DP5e+5x$8gWTW^}ie*#dCq~LFo{yPh1BMPK#$; z=&`w^B?5q@zwu$R*iCV}<{&dnPFr)znyGz-eBMV8b5cE9ShBQHyn7_gFa-`aJ-WZ_ zz!i%3I&DIM0vyK>9}6K=C`BK#_SpI%!0%W-zjnAGp0SCs`i$qN z^FG;^A2)|HArg82!vrz{J%cX+Q_K)XfyZN3dR@?G*(Ca|T=8(VLFfH(;SYP~U)juK z%$iM5`LC5)Z&y7AkEcJ9F}0%j{_w*L;zegn*+L5tbCggEDUJCBTj%>jDWD)kb^#ZA zYr2%wNN+OKOix9BQh|*(cBtQ8`9!Q5v)FP>OHM7nj+H8gvvJ3~q0Vt9^3l#2YpZ_3 z0e+<<(v8J=Clz9JT9K^5=4_!+MRQB#MPa&|Ykh{kiXEiUM$sGbTBpuRxfxFNQvB+( z8u2GR{rJm&&GHqrZ=0uEAKaB?Y76LiKCz{(ZVXb$;5o2N($KYs^CLA+`)0o>M!@Y% zUs_tmvc65{R4^oEjh&cdR^xGg?{)s@Pnsfbry3GA9`)!Qo<7rxW96kAqKe$|N1U84 zcwHhz3k{X|aa$US5Cp?ZrX78rvVhA_+WnWnqv1kUvobFs*}b!I39weHmv!^}>%JG3 z3$SN-jCI&NPMIrDHv5Ndw-jo@O})>F6ysRkKxFN!1j9j}6&`)orhAqCHwc;NtxN77 z?bcO_;KxC#W@^8Kp~`e6h1QJ0S+7rfnRgJ9gmmBfr_nbcYWY+&X33cP+v4psHYMg{ zZ3BN%{^LxQcc2n=zW3_ZK(r*+F~bxi-}ChpZ9Dg#OOaRf49y9(0}Z*0#`)uu4ZHjT z+Sj5mJ-2Gc)4GaE%3NJQZ&L!d@bNF|pMMIg)o;=MIrr0FJyA#OJFco z+=K2`@pxM#YLdTSFkMKrfX14xi|jFp?D{8)!SAF+xxJfwbTISD+J3OSflhjXp0DSC zL1qa3_X_PmfNd)}8q|||Uo2v3?W& zj`&cu;elNF!-FVia?`+sBvGW#(-sl<=l%cfdh(uQdYF&X0iP>rugaZSJdqzg&p);n z98-*OvIo-Pu3GRtRMh=(MMF|-Q1?ili~fM!IvhS|@>+i-0iw~Q8B~{>YR}1_3lF!2 zcUv?c_y!SwwXSfyhc~c+HB{(of`G>?Y(|znKNt$iw$(Bf=_mDppRyYGec0; zE7kVRqQ>6yD#M^oiuXoqiV{1m-*=6s{PP*hl4MOiIW|*$SURun8QlQZv4D`-{z_s6 zu9g>S@YX%(cT^4G6-KzqEXcmCP^)l9UrTgxp>L_0QGeGciT&S|)aFiVQnB)}#O;w1 z^ZL8|!9eV2pjD2bS6`}l%H6FjyDc<~{lCRg+kg)!pEl5Z&K;CCR;-TQ4!>d$S*t7G z@{dbutAV1ZkBV!hrVFxK{j_Waph+Zhv6uVwbyYaO(4p*Mg=TORUi7agXSh_7U>4xM zka%Xow!KH(iMNZPMx*e`Qug>tBKBU^_rau2mRsX+v&((-am0yFv1Y|wOjoD6O5$c2 zee}IT?C4eQDY=RSksbCc##LTXjslE$u=Z zi(mO#Wqq%C^-+}Cpba5@_~U;I5>G(`)ktf| z{Yj5M5vxq~)JVW3Gn|HH9LsD(3NntxclvVmfxzzGYw&Q{ph@`BJ$ih?sLjoe_4zm~ zn^PN}ym;5iFR^sGIa5meGS#$#uVmF!Csnnrlq(w9fF_&>xv%0Hmk2u^=R6^+?bcfWyu++kk2Zn2N-FoKU#yX2LU5)DrN~t z?CG05*Rce-g?GXETv9om!nt&K&-QlSGC~mT@@7s*SsPkW&`UiTPwE3?GykDPh*;j7&vxlRzavO|PyV-l-m2hLp+zML%7nHquwL~KocEq&G^N@ zV4#!7qR7o=U}mnbd$lxsdBYl+51!FZj7vv>SSXq7zxleo&6l0ve%Et3e@t0Wcu$#% z1i$k896Hr{s$j3!lk#zi)K7O-juu*_fJ2#NQqm)?2l@9$_f7+KNb>axrPLu>{YfM(zGSeTUof~;#>iW=Cb-``mvon;Hzpmq*e#?QI;fL z^pk)_%mvFbNM*W3gYw3RvwoXdSvOyI?0LwNhHZ-u=CrQN4T2R#f&2Wz1LsMTX~e@adEY`t5?+=NcPoUnvNd&Ktb79g4`ei|febA>p>`}P z=qHDumP*1vDk3&jos#YSCdZrc@}Kj8b&QhoTGw6<3#O)EuGHmUX{&j>j#(Pm_^(b6@6HH}oT`)Js%_bAz{ zf$IM~r*BbJn*y2(b1N;Sd7}8>S5TjFR(~Ey7>aA0unT9>;Ia4A!vX~_q?0T(`lXJF z8T$0$YUcFQ%rlLq3$*fJ5(_To%goH^?WL2HrFeNqRE5gmjKfT%%b-s$xvSs zq^{O7VRQ4oh|n0xwxWnSSyS?#9zRoK%Iu8b*3g+_N8`6nBB2?udaX1VT^QE}%5GKt z59#4W#$1;u^Dk3&01G2E{&3)VAoQp~k_D41d7sFmVb@^g$zkq_E35Kd18s90IeT7{Y&{Ywu-GFfCD@0aDg`wgw?EU2p4l>!E)P=NID&%07h`NrjW zowE)|4vV#`kq#~2s-noY=vA}qkgoAWE_ucqm+schUG5J9Yok&1rwN_sbGY`i{m-Fb zs$0QZsXx*Bwt<9mdM<>8idmHh8)j?7q;dfo^rV|(k+rAt!U@GuNOYwMG@)A-CAZuf zk?`mhHGC5*{-SGGU<~SXi!*RO8_+1Z2FUrE4 z;9McLZsu=H_LTcY(Mw&=9Vf3W?}0vFUSx%Mv|QZOtFr6a-ZoDcE+aK+PUbven~`;f ze7!SvFs)b=e;tgm<9T0Wv*PY~w-L;BJuYewr8-D4?DMw%o4@YhZKWq2z671&Mt9); zYFkSo@0kybJE3<}SasX2$*`6Z2D*$i=EOgXN6qe73+XVa9jT_PN1PfOU!xS5KYmLL zVLc8SYcaUKazv+i;Ld1+7Mi~y8B$GWRABbguD4zGyJ?JhT|AsGN_Eo} zt($W9ffJ-t8&hxnwsp0S-Im)1GJ~PesZ~d$-Okhx6W?5dQQHD~)BGO7KW6kFSQaRYzp9Xd;LgvIJ{e`9 zfRQ92JjeVcx}p%1S#?$>qzntDwU}8F$0|*`t;5OhSro2b7aK1rE+SgIw|+~z{SH*Q zdaI$oq&+s%x?6-jRi#wZtq4!}-dB;WRc885p;4MP3PUO1e2YC`1B&lScj8X*s*)Ug z6yy?&f3c-AVc)UECTP9LmhQIur?_;pKIv_jYqs9J1cj;XTBRq!KSP2bc>CD7I2=^6 z2U!)$z!$AAl;|bhse$cRQ7DiHu&W#lhX7R=(WrX)V~62S$3lNu=N0HL&R7^^@-LO3 zfs(%?o00QU6x3fG>zR}H&LrJnjX=ATWh*lKWe&!1pafQ!ZPd7jqu)^CM^bk6!6P2L z8dG<|bBzy>12oFq+l{@Pt3hKop*tvc8@^=IB0u%tB=ZJu3q6nUBd8pqrFb6RxH{_95kkDPI6T5yEm1e3Fl%QJNo8=xGW#P-XnG z9{(~gu}5b1x?EVl;XG~9FWa&eo9Q))c2#SQJv@OB$9gq>(@AuAQKo4tv7g$V##{7y z%UJ&O;H8(ncha=hPZCV9sf8!us1&_eY8gP*5HjfTHxV`_BmRDc>?d%CS|8W9RqTd8 zb(Ru0R6o%Wui^vXJ*PHYmd^|KTS+PJ0;Qj3VliFfnuO$ag6-ttj2hVE%tAG~s8E5j z$70-prJ94ujb%xWgKUyR{7XUZ{c1;8e}B>4*a+C&U-ec>9E%?ANDu93O{t9>(&p}5 z)T@P72O*#|36?vOEm?}bC-vHYoyA9>M=op;j7^4X+(fQfwsAB47X z=y1(@q0$VJo=X#{YJ+G;qU0@vL<|U&lnm}es|P|)VpJ%I5b-rVJXX*RgEa}qL&82+ z^L}LSZe}A8^1 zY}gT=;H&J_N1#Wn^$qtfmBXh_C?;}kG|rrg;sY~D0lqHKy1P93a%b8}}RB0${z@*NH5x#XyfF z)fNwILAT|$_f$z7H9}9m%w{wF0#_R*kD@Y_{VyXCvm1kT1eGnPgmSuP%wbMSR9B1@ zG}5AMZKF6uG4foPCa0UAn$1h1pn><`G4!epBblEUTTNh$jr0&LVRPFBmUlsQ)?X*( z|3m0b%Fuy~_ReM5KDa+jBVT14z^FgKEWg$6QWTwzF( zz+rEHs3lcC01^&OPqKpaQ&H-2tab{v2NPC%hsHe522c#ph+t(msGu$FR_B+~^&jhn zCd>^Q?!bNEU3AQpaf-97;PpsGiz!NNq>>Ef<>N`w9+@|bIUa9f{(I26A6d=AOVN2? z>#P-yeCLoYD1>8v@w6xSI>A*YO4N3sU<;$B4EhMKSPf1?%D9_G zx0onYso=o+tME>Cecz6pUWBFaB>(#_Vxv}=hJtG%6N6Lh(TiW$Lu@fk0+ItX%s}C< zHmbiU=z_2Y>SIIvG;e$8j0gkyShd^jv%W0*121wxTzfWkOpudByN3=X6{JaIo@Tzj zN{uSAyGx(ZBW^6hplI=6ul~~WQ|I*(sqI`|hYR8NYj&&7M(eM?mt@Ay!hY*A$5eH^ zXdCy;yWLGRN_zY>64;gaeF(g&A;_3$AnqxHN-fx-Sc&;XuWkGA{y65#52@=I1RkUw z970eu0lzg?Yc0d6U|)$rZ%r#Z`$@CoISC>^TAZ~|L;WT_^-py+q=v*JC5Q~%!FmLvC!6KJ?9>~}0V;sN2Xa6479gDV-ZB2p zPMF`o--!pidmeJLouikMG?W$V?Oam!DzaLh8)0pIs{E!CKOqqeqgecmThF>Z8!Gry z4I_6{C`oXQM=770Ut@SIckM-O%hsN;?4hn7t!)a`$(U7Ptuu8zeY?E60_t1j?bQ8R z_!g<^u=F?ib6^R=eA0C`Xj;gSaB7|k7s)r^Cpmc$2?+%XNvLQj4MITN1{wuuEBmuq zS`Y+ddm}2=pcbQEj?5Nz0r6J@RL?P-9=TZ8k6mh4UO_9a{#QmVsa!~2i=}k7BI$`X zfQ~ano)FM%O53W(1SY(%+?#91spDHMqSPDanK^OzBv)K)Q+>nufxN<5?%xYYOATZT z1Ydg)e->lYr8^*p;tIs1oB+hozvffMc$Xg|aALnY*|0mHcPYQzaWC#fYs$g7ida%c zBe9x|PR}ztQ|^>;WMkb^CmihtM2KwX;91Qs`6&g}P*rOnozIkM97W(??T%c@IDdiw zp;XbPKbpX~41}KJ*L-$(j2&g1-bhiFcd5OIOrfJ7I(p;5FX9&NkeGyw$@SYu6TvB< zAZ8rvXE~`!bdNA8A7Ww>Y8YJ+W^`}#KRG`ceH3gJ!c?lz2)8l1s7lqJEB+MNCGvSy zX-RUTg#E0@uWH;@PZ?^rOUPi(g*A=WB#)2+!dVW@N$ZC3ptlml&fPbw3)ck-C|g>_ zwd5e;a3YQBKFmZcq1pHsxPPF$&B=V0Axh6rnO&`!m~BoOw1;8O6PvN!i;^9c+BcYu1XKd$|?7Q{;ks9MYlTw)*Ve zz|cKiHRpN*4OONPnfG5m!E=VXB$TKYZ9*Bkfyc9sv&3Vq;S64lJwflQ5ze+ay^px7 zB+`GZV^T(U`dzx@U6wvy?{@trB0*ohmftOQ@l5#sDh4_TsV}4vDhSH!T-|5Y6Y(SM zfA)>Bk_52KY6%znQP|+A7ZRHd?`CE|C@jLnPQIsAM=n(^PAO!nt4-;u)M(;Oq{`4F z5cIV*o@eJm9%kGjWRV%!F2YB;(fEB$eQC^ksUB1VRJdPj-<#2PF=^oW#)Q~%8yvTE zQ3O8%!VP;an?oeFVY!Nm!pfpU7z(6@Fg7MQt&TT@;{Be99Z%_IFr2C zPjRnvCRY96vH@)nwBGy7txuq7@UTX6S3ToqRmLG3^e}6qcoe*|wV9j}mtzaNW!oG` zjIBAceQ~>)(O_4=dY>5+S3t_ZsOIAFSy_VRPfC*i50%s~lYct1$~~o>SlB0pH{r>$ z<+!_0wsTj~0-Hbg4Bq1tn^1$s3J2OLhSPpV$B^}1i}eTO;39u3RCoJluo z>1c&X0VzCReosF-p<|b;@QU=&hYmR=5Zw0NJ zb4a%NBhow!{Vuk0X*Vx|EY|2^spYwU*z?$HZ1ZmVynUc!!pme=MKA)qu)!-17h(*& z=q6(9WnyfB#eF^grhDy=4ze=BecJFD+b9xsOwSlRH%wlMoI5@AFGJ<|Z1%e8@N~SH zwPhwK2&1tI;Ymum;Qt8?GhMK*WHK@`%%;P5^m<^mD^}Ct&cRr+H=_4Vt4PhjFmuT@ zJjFmJaLMoW;54GjR$C5s--1E12Zcy>ct7KJ$14gP%=`)ZQTi!U40%WoP_IAk1i@7Z##x1NsqN9VhzV>7{}&9QB$dJnXp8}3BpesdTo z%h(KyjLUd!NeE@j!Pguga@LOSF19Wft*SOwT-KmMrog1LPcIkIK0oHG4c+C)*^7j( zvs!h=eG1Q}VsuIau6MK1PD8T9~&%Vg(Dqq#olsg=sg=Icjg zSaU8IFjYq^6$+V^@2C_PMffdca0Y>nLXVN~D#1G{Z`Z*Mu7~+NX2`g#-2eb>V|vwD*&MF|@!lrZHn}b0Ba!E4 z!TZ08PQsA}FPF*sG-|({&sGVcsS`YU^EgNr?aB`LBk0q<7$Y8zlcUpQlWOy?SUK-} zGo0ygBs0M1IS63Wx%T?vLQX-kaXqCt07bWbb8|_Z_Q&57dEb$Moli;|W2IoJGMwTT zYevR%L>to2;U_T_xP+%#mG+mLS^Faa!BDyFM<}mSmBblz%7RrJnWHnXlWY*BUiN)s zTog@QTN_{BZ3nwz>qQSLY)IW5iN<RPnBLtYyJ>8Q{X=sqNd1<;WwjSiH~mbx@t;N3LQtY6 zBhvMF?|ehfYdzb#L2KsDVrE)o^mkjVZmfFWUNLgB25b+o?>GnP9Bz5IjK=zWDGM};&M6K`2(7e9$R_Kt#!WA z!=&hp@vd_^$%^lj0F@TUn)BoN-@x~_@EP2vMASNMpM74gvM!d^US`Yw(=uE4NOS_w zvpY)dF8XkfHkq=#Ab*fBg9M?dwe~>l4j0yNd3f~aD~UePb8jdnpqJB-H*Co)(@jFM zpXSuNLW@dL^~{1AX^~1JVB6f2VD(y3xo5%+>HJMOWBBOv zd}J_Fc=3Xv&zA0fSVEgUSD_P(h)G#oY?em!wEmHHc*~K%<#-+)Dj#-dM0j4_daf&P z?z`QJ7OdP;>uVZ|POtQzIP1+azJv1-Ya=L&s%6`o^O zfWPxwj%b4|ta-`QMZOQL4j#{c{GyVXsuL1W|BLWscfUSr`5$-D5~6qul5tTrzkNxq z5)2)A@q0K@SxrUNgC6W+nf&jOj}EL#^j5qqcF1#}dZ?-?iPMQ`Np*wi=6G%;;UIwC zKY*K5p=~uozd*3P@ zlX8w_f7iAU+r>J$N!s1}jyS#|{A+s7tC+Te$VFMA*6NGJfo&s}e-=p1wj+1h>u4HD z2Z8Vh6M4{f;|+b_PkCn>kY(E9d85_x_yYZT32jLc~g`H={P*na(L=i1&D7rEFyyElv+@`V) zRTFoIpp!Y_#Qu|^!bf0YgoXk^2_=&cF~EGX}gjDpRdioqqc?c%39woKh@nwK1HiARg%fYrWC3JO`+j zn18DL_95HW)!G8xXak>R{nfxl)A;4=pscd4Oetoz<%`^QfE53u1Iy5|n;q~1`9uH3 zw})#-aYe9;-RT)T3F9l~DcP;OzgZPaVCy26&P$d$NY;Qpdgi+|mhp>;vXk?JS8iI=sY=3tt;8>$44=;E4P-E zU+%|zO3P3-a_K%Ow8J#>2Zbbs6~9xn2QdgkI4MaNsYrSAvguTooJAZYGFSJd3?*N! zx$(co*r-m)XCjtyyCZ}Bq{7JdLl2sz;)GbFWW#vXd-X^AmeJ5l7dvEIjNDW%7Jn3W zx7hO&RVv~rRm(^VS+`78 z2gfK{Ya!+~s6V`hNR*;iREmI%_;b~Fa@!6lyMvZBa5;59xh^?$FYN$zctrH8UUf!) z#V=XBTZDWGEk|twc5v^I+sfK z$n+uyNT~;!JLxMOFzz=tF-Rplq??rC99}?kdJa@zzL@o&5zyX@(BZ@>={e2GDAj}m zPW}9lI3*uQHhj?;yAP#{MUJ*ORXI#0O}~dm>kix|UuDI!Tg~n}a~~3{MeEo!i+^|? z<2Gt9+vV18b};czle5(Sc+G!`L1-8i_B+>y>DDXF4}k%xJ>j@<@N^tGr(TX~m3kQK z#dhVj#y*ZGjYm^5s6iociBthz*+C{CDSaJRgyJ%wi z^--RbiOM0HVi!Tv#ltmtOCL00fJ@DhF%+IW=Z-I{wCPATTF3T`qnt!nw^WKjj{>J>fSijXsd z_|cvPt{xWs>d%Qsj`f=Ip!uBoi-DUI({WTcNpOz!*@ioTJBF*~vYy+lBl$@IrkC~f zRd>kioO_jlP5chlW^A=CwVGu%Le+&0b4B=UScc27&KFk&(!`zl>gkowa-0nRF+AvU zzt2P{6*D8CAn*4;SH5v7&%bdLhe!PG*XCmmWVG*`WBN}?v33a1ZClYkT|94=GePD3 zY>V|4TMhHg1W(Aos z3~$##RA9k{07q!U@-4E2reOT zo;S2?s$2I~`eC0cViUb&)5_FJl7Ne-vjv$Xu;b+;%6}g3iA{;6+l*kOQed`G{hWi1 zKtY<9-4fE`L}-Y8lke4{NnQ{pDI<$fg~|5UeFQNsB-w&=H3`&;nXkg=HxC?Q8`ArN zyk$e}2_nUJ?X=cOc}_mmE((2|0LhJPTm zjLT^9-PCj|BULYQel&c;KZj@uYZ~D#zqFlnL<*Zj*pkBQ9QJaxE`aUU3>R>u{CcC| zYBBe*O_$TkiPY8$UE*m?jneDexC344$IIA+*rUs^5K)O`AnmBc z{vd;wV11mF;N|f!^|hxBSP;@jqI8-pX7e*;@z)kdeIk`7z_Wt}r$PInprh&GkGbz+ z-=k`5k+ojUYBlwrAZ5oA7f0tSE{p9^v?0JD;BvCPD|5*RKoxW2dQZQk4rnYuJaP@8 zpYR5)RVtpwG;Xy!T&Hld)MmQP$}+qfV0BEGqHe-qB2=eWE;Dz!zygDsy>d$##rwUg1!nquG_PO+|9mZtO=gD=GDxq zM%3v`c97K~a(=6HtdS+CC{glQ;b@v7KZl*rv)XtZ%Qc4-8GY0Pm0k=>1=X~je??Nb zI25U9Me6v_{6&ty}ohNu4&M4fOuq#PJM_ZihLi=yV#3q1A>6C$tS1NzhFX zQbqc9?jK_}i>~l0X>gVo#Urz~x=YHHK9_bCIK{r>((#y)WR12|+mSw$rt7*9$fI$W z&h6+VxI2|b+Joxl^7Pr*!@ zX-YCRv4?ab75*e{%PvFelmDD}i*Tq-n*m$a3cJ1fwP@@6oS9>Lz_D zs{~gyH$C!!(G)9S*uy$QbA}fEugW2!BFoPT&E{wG&oisIOvWR!3ef>>VZXwpo%>t) zs8@lC4g5`e*28r1gfsPxMmmT#$Z~ZC$+mb4g&EiK=p!_^Q%K{n_hd^ZB<#Wj5Q zug<7E(cFk9@PrZ9jTufXdDjrV*q9^=?PMG3Wh$HKw8VC|PZ&qe{K}Pn2DeaXZ(`(R zpbzv&T1>b-WE&w*lslB?_2YA~%HWU<28l;OJ0ZFoO9 z_7beV=GjX&&VBiMHy~)a$lRFrP<1}V=nX3ZhsRef_yCC?CqcX)SoJ+{)X2S{y1x!q zm}!82IuPu9qO{6kxa)X9fK}+l^72QlnYkO7`A96-!1{1=77V5QHUaIH9-NG-kg6v=TNP;MRA@OOGzt)XC0v%|Zs5U?h+kZ|X1=j7$sn>=dU+M!FZpBF7K z84hpLq?jcD?nrmPxZ8@>FdRwb2J}2{Uf3Hjg4SX5PBZUM^ujWcPwW=FCkqFddo8zh zM8r26KaM)b#;$dRN~2q+b^eNCB|O zX;CuAQzbYeJKt-YW^tmJH67)3G&`;ELOy%qb`$Z(Ns-O*hAn!I<*)HX@GQ5EnaBr? zA_}=Ol)&mTm$W3ROda&{lID|G!Si=ms09AgPooYs@rBR!(`k++MfEgd8|$Jo!GbMb zwj~>qVMoa|r^b9$&jVKq+hIsHQY|O48NYZl=a3Px`>}Ra`h{Z4?fJ%1j8bMJl0 z6pmZgmsO~{Ey$KO|HMJ$4ODAALe!Fso^x$oiyz$g`piT`{B}`{TP`SwDY)N1E?-dW z4(t3DN2b6^-hg;l8JnL?fF8X#$M_H_OtP8DA=p)0$2x)+GK4wxy7$auBDuFH0$XU3 z>$NT4&b6ITa2Pd1OoryRiViR@W)49jP$r>(WXctM3CnF;b^0#QK`-2n4FS?`m0o)&u z#BG;@(_b-=rY|oqM@Azsf^(mtzf`&yZthGINyht12j?^OY_i7pmGN1@chuyJdvc^N zX!9zVGw^u=B@h?k`QfIg{qgi@<`=-{e#qcFZS6?{clp3;Sn>0xpzD+-e0Ct|$R2XY z9j{s+srZ+^N;6_Dbgfc_wr`dUe~&_#PeAeqqLTT*M@wR#Nv5T0xd$~gjPJ5Ue9kKY zha6QtD~wkJGl`z9B_Tow{~F>y<0k(aHj28lJdT)=x&8A<>)W_Ub+wpuqANJu0>EqL z-d*_ao|j=Z=6-7FnRb}E(cr=enB?UB@q^CdOsr~N+-j%0kj}y5%>Ornb(2&quReCg zB9q5el&nJ73rvoQ${AtwQT*dfu`QwiH|OX~00$px*v~P2n852on5CH(Q(z7`jRalLShlmb7&^o5CLav@`pyN!z`~RWPY?Qc8xh=SG1k?KJq7C3o4^SuXr$5?V|Vm zhC+ZFP^TAD+1}HaxE9F+O7pZ~Dq|Vg1L-HHLQSAom=f6`e@y|QH1-*Gg)vsYMA47_ zu`~H8c;sYY@!n!eI|9m8eg8SwB(HeXoF+d_$cw<0|IGh@y?&fYsvi}O`*XSQH2m|{ zi*z$4=y(iK95{1+`AY^6mDFN!2cnr{ijLNC$juyTZ$b8hPsXtx^U7nsc}Rv0^pI$= z89ZYZ`Q=tlzjvSCHa#S4QU1(g>a&d6M78G|yy5tm%_(&G$#HF4SkTT4bH-~O%TISd z#D?smRZ+4e!)`X#`anvul3h`m;Q-GgvHmzq@p2hQPaFTitoax>ux-{td(m|-K=G*~ zAZ{`?F0BfV&m;hb@4IR!+?k+%ScB}%D#}Z)2_EmL3!>eR87j^n>&3X|k2FM^Vd!q8 zonxIjJ_@~(b*~|hetPHUF&-?hSF&A*Mx5B|odH=N?eBcR>n~%wn{gx_4Q3^V_4vmb zmd7gljTiAZ1 zD`wG9(unBAF0%d9Jnf}0mJ#9H9Ki@}@KXw?#pX4ONpNPeK=-Ow&H0DVu=gEsI{?wn zabC>Qwo=8ODsvxhVvKG_S(q}M=7Cp9#IMV^*A!nlG00xkjVaT3GNrmJyr>$dFz)x$#d{mHUXKq#G^q#tozpDAFcMn#1=zr28u?iI?54Y>fuf;t<@8A z`2Hbw5AE@14qB`cyW|b>22KOthIJ194@+ki5LeSR>o-V3Ajsgs-8HxecXt~CB)B^S z3GVLh4g&;thv4q+?(S#v{pV(GXG{0))vK$XY9zcYhTt4Y@oYhQy@U^@hiv+XtQ6}D z^p*ox>ao?aR5p!;q0b%ppc&sVcr6$W@GFw-nC7xW#zTYi zM5)+&&!ge{mKa4-gdyJYVHgTy7!lL*V~SKI>h%CyUc6Op1JHXHcFc0Y(pIT z7dn$rm6-7McRT%u^9g&16Xo&)cNA}L9lTeF(^y9C@!txo8XcbyyND2F_v+F3#&s~u zsIJ&!6r^#|xZ!VD^YKX{y43Mi^TX2??E+5UXwS>xmT#tYnb@?VgmVKFa(Y}SkEb(& zku*E?^mS=7w3S{RDk1-iSHtc84d=l*G}FFMGqdYX!5!__fC)Rm-3yFKX!(X^cP3`Z z-YEEtGdM^a!9w~YajBuTX>3T7NuJ<$_VK8n22+fcvd1`84@#Y-Ci{|C;LMZ=TnQNv z4%R+;x$VYr?JibH>Q{f}9bH3a8m55;!5^WbIum9riL+&Srkj0>`Gjf%u}e+Hl&1cg z;k-PIXIgzr665?k#CzPBka)}c=#)7@@nFYK^MyFgH6Itv3uCs?O6Mb`&8i4;`xq*g z&JF0V9`%FtSS^N!-oS6|mv4z#fNqJTNcXFM^>0hoIP;7X&Mvu5dRKTW$*ErQHU;D> zn$i69hzN7So1p0g>9z1W>OEp?yE|EQEG%;iY@S#fSx`u{e@ofViXLBU1lPGV+o6~J z>UDzU`+KFH=M0v6ihG-mukD@Xcj5hM!SY#4Q|%qU>f7L)O-%vwe>Y4+m2@(jc|xBK z>;xg48_7U$VSzUkH6}zbb+ua+T}emMziy6^oTiae_9`QJvSzf@p;v|{nM(V5G8`9; zvBKz*%pmr0ocM`m487Nk611YIkbQeu<;G@|P&1t0h5IgS}p5xFF3*HJc{|fHI zOa$v@9rbJa9%5uDdDya3dV4LpNgqD#Q^Xl(N|6uDQd(86Lr-rA)?u+FeuO7-BeLtwRo0}8iiV5SbY5k6-ol-!R zB8JfW{uG1d1^)GFG??W)UU{mc=*OvzBbr)r7f~%<(-zxmiKyz(vu~4)|`f+Q-K7(HGe%`qBKuuM3XU{hxj;uL8jR_ zb24B|2~wR96pr=>-S1e&E_GgtP)0gC#02m%o=8_^2vD@(E9w{DqE}A(1K#|xsAon% z%}T(v67Ww{(Pvf??L=DFs6oK*McV6_`m_|1PRnaVfW;`f%-`^W`P-CKwl<@`&tvK( za?TuYER+hfbJ#F@z5qon`?z;BgLLjV)U{woNcPZmipH9CCY5{PlX&|P-<$PqIq510 zVjj6m;A8WZgW6bu#vO2{3p7F z(xn>4=3l&5$Jca%9(k+u!0YMz!5;FY%UhoLZReE5&n~YBKRU)i^PFRe`q=cJ(boGI zemz|7;CvDawz{4`(_DimDR?FsujaW?Yu_#?N>UkEOzQh}alLyCL(?UTk}5mQ0Vr+l zMgRV)we?U^I@;$zp#JB0t(`SE^Qu9)lVa3pJXCYL&qDY;)`4Pp=7qiMlZf zbR@2y)tf0ctlwI*&=#+k#ld+O6=WdgXE&vA3Mko`bRtvAFS@P#q5DcVdo#syaerOV zLjE?S23D6QI^p%kb1zEpL>nNwu4Ei(q$pwY*zU7;*PsQ5U*Y+y>dRzPeTMAMD^UJQ zV~A=lB%NEvxf8t;di9!ZyIfU%30{Y&eSyot~0JM=B}?PBCE$7~~SJ@pOvYrPUy zFcCQqA$|ZpB)1260j|?qKL{`E$rKvw?p7?m{l&*OHA;DDj5dC?7HM-^vRiUEN$Z%2 zHVM&1WH^JVuE9!m$$(0J%H7mD)aY|Uymg?QsKI@3@@V2_j(M@GfDVs!i-E9FD5cZ z3s-BHkDJ3&ZLLWDz*q-xNqr3d2*?;17{u*&aOhw7@0(#=Si{))ZUv3{!Qnk1!xH@m zwCH)JZ$oaXvk-8#O!aW-6pm`eXn>TODBBbrTK>VZ(B_H8nO{|%@uK-z4~wM;iW%;$ zV79b3l`BToB-oD>wmzYl>*_d#{df(n2E2w|CFfV|+9FUujYEyy$fr&jaLAwYVv>BE zxVw;9J;!SpqD+Ca!-fkHb((v%%LptfU&4-@zo{tnuW}j`IL%~@b6XK0Xx~n2NN_uY z`o6bW0JmO8cGB~=MjwAg2$1D5UJoUB<{T$J9q$-|?lr`+>2{bUpAH)xT2d)>z<7rQ zIale`GE2>_Ju9*a#{wCNmY3K+e=n&1$k? z=%c;-^tS;@kONW$@zBpVDvlYkA?jPQNhnE$br8lD>Zao{Ex6DKoMI#sQVwrX?BHlX z_6t0y3lmh7XF}POIV|1i#F!AaFuOyYrTJZv?&)7rKc#7i`QDW*^rn`LA@4V5Bn=As zq+N=gfdkuHa@P}OnqP$1B!8afY@)l{8u+@lY(1Jivgt$la6h}Pe7|7usPy7+8+C)X zpezv8Y}Pn7WZvtBATAJ!vSaOMC(XT5kCW5yTq7288vk|_h(-w&LxF3+m0M|Z^>%H9 z3z}Au#Mxi0E&bnN=Y-Dxs!CW`SU{pxuR%uF)&IHF8Wz4sL!$--LtB|$eHMFG`L=hf z;2(Rd3bYwRzDjATg>t`Qt3!*Fh02VZ>6`{ZTq#8Eq)3I0*io)kitYxzEM`V6#>pqO zPHTN}LM^r?{x(IwDs&;>cY&AIY3&Z7EbG^?<|KB8k=D3det{C{ISElTlPy$+1_8#Q z@TJ)% zu$<+usQAeRDbFjro3HQl_BI^jU@hrqhU@*l^pkMR53z|!O)af@KeJ-RqUZ?M9gHHj zde||M&BxWhhMB4NQE1fuW4$(Eu z@==fuj%$>nc78F-pdM&Km3NoY@+Z5JtL64}(R$Mv?xRzJuE;3RDvTym+2*-`=rSj8 z-V(&^f!V__Scwq}{BVlY$A`73_s{53lDwz+1?>vm}fwP%!s4gxJaP zCH-sMk6kezK1%goDy7rxEYForWRQ?BIsWs1bcBe{Hin6I``LkJc*Qj0c}+4f$gtD( z(Ed8VCg4SSBT9d;e-9^%rhH5J2~%v{QED&BY9OdQpB?)zyxF$S_Q^$?F~V9HBY&s? z&_q`wnp9lxjDMkR?J$5Bla&@DNq_M>#l5i4g5ZH$aU?Pz*sGr7irwT}Pv3E=CvUZg zQg1Cx)_&|6U_QBjpi8|Jpue&OJDvK@!kg{Z?PT;82x?Rh#vfkTYJR^-*o-;{Ur zeNJ5Kwz^X75|=gri-!ip!*x^Z$pC*WetU)a+ZjFrZnaK*|F=5Fu2gn6($d?JXd6lC z3auMh$L>ZvYJ5MhT(@w=EvcEQ6SC-YhQSofBArBPM|EF8=ch z^FrAz4cBQ_ee7g?Drx%CrjuqVu4;DKNel1OP6ktH+nPbe)BKOKMTz1z0&Ex3f&y1k zO4!;K@MiAnsgY8Z5ia!{uE;}5&RTtsq8uMpMgFiHA4qB>>N05F>al67v6x1)JkahR zao~Q{|E$aQfYNwA|L0E^d&}VQ;su4g90`>%BWRB}^C789qgk>lG{spLG96H}m_>@Y zOfC)uM`_`vzpeIex`PVYrj=!075)_NmE2*I-H9Mc0~zmzU&M5Sf2~2@(7E8Q_v4db?r(-6HB@qr3Z09YgP` z-wn6iZskI&!S)djr4ogem>0TOpbrG$BynjWVMu%+8JVdkl=(dhK{)k>ct)vKr4&jMU^dh80_sAZYsqV zQcGW*??%%jdxTrJuG(0B(U>hZ*xJ$uMyy8UqBo6mdMYuc(XU9KB>Kpz7+@w55K%>TQW#j z!gR-@EkIkI5!+9`mnol#sadcNPMSz^E1MbGayc~EUCWuzNh%z6+z;^grwWm|osNr4 z-_Ju$BA*OfBMN?S=VpxDGy+(jYt=^ivYm0CiDPl$`57u&8+u3T)x&f=bw0}+7ja~X< zHd)Y1_ro8CfE`)(2#1|UP=sWKwMHd!WrmB;oZWzj%h_ybojXRWcEgEEsnrjwN5tS` z$jsp+37z{JS6Rv}{~?LK?y~Re2Jf0qdQCx@#8|u4@KX0jmzG1hZf>i<25Q8ur|#AX zzRQUCr+(Mg2LT8jxY&qw@AX_Gz0xStVsuWF4=Ov$j|{Xx44SHmb!#))Pat{uwe2XR zwKV!KYoB4?dwN-jEbpg8yJzjfvU&K6U7q_&*Fn=9^v5sn#4rF@iN4Jv*S7M-5K9RR zj;J#1H@Ms$08Y`vBA)PqO&S(UU#zAD)M1GIRh;%-B?e7HEJ)MGVw% zVMKMBU-FLNo(fx!(VpU28R0a>-aI_Waw-T{45aTv~Ml~3eCcZ3Sb*g)6+L&>j)|U32Stk+ zn$=?Rd6qHRziH9zC;F{|{?ILY4I-4zrIi}8=apnKi`}m#YW2}*4UBb&)-jp<@7-j_ zz8Is%y!=)c!^H(ooz|lY#l|?>M2ELL1#!>(1gJQ^i_VCeaAvfXWmuxgxbuJPIIAAxZ#b!2 z(n;61z#?~f-V@)7iHs9-wG2y(0ct-{_7W z(qvKR`x5~z-`#`39LJCn!PuVmr~UPrJuZ?UctdxQRDX*CP;1C0A%s+E-%mt(`epF_ zHgh{ElW$QxZm?OhTXz;GLJ=ZL`r|0w)>&eDc6f~MNv&)I+YE|RNZj^xmlJ2)^vXMs>og_3@Jx+-cdhy6PEUg`!mQXf_fVC&UxX;|| zgvi0)7oI#PW--=b7hEf;Q*>!8mz%* z2#+c6iBVeMMYhS6zE}Nl zpB=Vw^ylB?Io}WmQ!GNuwLB|YXzTlYX%$)1=+hmpy|mmaeG7pPWMmXs=bz@*5Bdo@ zw<7sM0y8uHB<1l#-&SoXM%&y-TAZ1pk{GN5@W=w$U!-nfW24eP{3N@05zM*2E;g(?5~^P5^&?^pw%z8_65ePvC_gxiSIr;@{l6 zKa*KC{{K|RD(x)m6M#utb^!R=sI;rTTSJ9K+F8k>?BtPdl7|}q=*&w5xQp=-f10AT z<+l%lO0D{OFBpr&IKB55*oEpgQE}L;8j90dZ0b_2NWcu_S|_)zQ*AiicExvom5;Kt ziyFN)Egm%mcpD|(Bp+weew|MGEd?z#IwAU`IV!2{?NB?^N)txL39Ss6-_Xz5%>_WU z==W%i@z5SAw7D^d?7BzfG%AaTREQn?ZPegB5am#k1C74<>RD|0XfF+jN93&xQ{PZA zYUNE4{XHvq)BgDA)bC%P@Y~k@Qxmi*I(@8V;|wEX^YOQEU>AySWw4Y(zSLhC=*h+iNl<=ztXvX)*jJ-dG zyS9@KByoisEK7zl3@+(ZJ#D<9KVjBv6Vm*R5fpqVzu!9-~c; z<6UQH_#2l{8*pj<{+wF73k81w)TH?B&0M8|HU=qAFJR=w>uXysq!CI_Kvi@| zvB{wh5Ag@swQrQdxz!=9<|oXJcFGy+`jB(~MreqK?aYHE zYdih)TwKnVU8`ei3dBLky{Y8@W@HcON>2VzmG)N8K z=(EvI1>8+^meYYci~Sx$j<_;5OJB75G=A0Y&V&oY)~6|B?AU>E8Ndyq{2Jwb zDZ6GV-hLuvdB2E>*`V7L;C_|v9*u;V@5yvF`RnPgY#zMBzGmrDyklVXvT|G+btuPm z{a>se+m~y-_b383U6siZ9YdRTQ_KPXKTjl-gT%+dgmPiT>gQgnCOr8SC%#vk?wf|& zMRVI1M2?NeRKhNu#y+G&V*|cHHHbLbGy$ypfhRIQO!TbH*e`5kJsWzXTTUd(NGFIF zP||?ki@$h)UAWn}moeqgVCO66p{`v8Zja)$4}{D&#CtHv+H!z2Cin%k&SE4-XXpN;Vq>m%>Eer18go1uxhTAyc#g1#$EW|O5W^Tfr4{4fZ~ z_?_;ny=ZftMy#ak4VYRRO>Dfe5Srw96D*(KPQ$(@<~!Qycf4$mr{#IX7}F>qDdr>v<&=H^}thUSAZY zTu;C7>iuU)$O|yjDc?uw37*IGgv)v7CpP@@;+{dqRngu>@~pAyK?RT$4NN`pIc^98 zMH(ifl48gqqPb$DQzN|PD4T3zya_NxKSF&jV$du`s4P0O^M$kap~RcnF|^-z;@ey+ z4PVF$^QinTLS-MbqOnp$h`N^MUYt+?&TGfC;8ina+)U1CvDgvfl5T}~| zm=qpI(mYMnjUb`R;ndPTDL}EZPFAX))U;_nIVa&H zy(NrT!MX8X7Ddm&V!4q3l2dlib6-M$jqb#Nz+8{>?@05%*5xfmd2e>k?dvO>KCZou z=c}=P*S)mht5LkrTg~epyG&D8U4$sqWpL(j_r%6H6yyR%58(=Me3`;Dv$dc`=PlBh4>7`0Sg7rrUr zec0K7bQb0|9Y$~PHH63OdHq3@HZJ*|d)6R#MM)BGMc7gm>k2H1g_frS=vqz4ONK(oM<%u?`l*l~)zz&vd~b&K_FYTM zH3CiY;HxC&VQ+eoNO1u1^kRrbfc{Ra)V+LXAJ=`9Q}5T*<_uYs5JHeS z7V-eXR?jRHD{-UBOHi?E#S!u{(ZuRXWIkPQfo6KE|F4G2)5!5Sr`_~K!GFw@iM7N z@^`KCve?>ip>V6}`HF+QC47d3;?UtYdR>`z`_F<$kt4j_)b-%=fFyldQ;S37AWoU_ zg9|D3VRb@B91E*8+)ojCl0wZ{`_7RRm2HyEt;FYHObi)M$*cC?Gu#fT@qkWA3VYZt zX~1HNR+;-P{1?JT0kMc>WYUk@TRxxEHbV+2HU!j>zjvRRu;tqc>i7-X7=EC)o{+!@ z84>}ji?_z8ggth%xSR;Q*bI!je<2`!iI_)zI-Wv!3q=$bEV+}5RLg<0`v5kF2Z+x! zZI9v3-TU^0xW7qaX{dB$FWq}|d3BwfaLP*mav3@1WP zImRfIO5SYw`agHJiK;G^S{T9*kLF0DG9s@jsy`)EXha~Ug-fhkNS<&z&T~$J^+IDd z;q!L4NlbI=(||V%_x@&$00^K7Ak-=Vuvda^%~pri%SuIw9>r+H=~MZPf4Q$ksmMp@ zgBctZN9iGYQKRBoHO^=sz_!}6{!3GoHrJhu0!hY9(1EtTHjQQXkbxF+YH~>$T2tw6WGO94HgNn(ha78L7B6p#80f{y zVOFUQt*-OpIO@K_TXT7}6m1kaFAP4|dCr+)SU0o)=oQ;#+kVqkrZD<$J>rLq!-d>H zbp!0ai2q#+K&yrWV5!KnSB3L_WZTHR-_gsSxavhaJvMpgZycL4v$t9Ap+Cb>kZ}@c z#1(Wk)j71HZ5s41NV<^zpwlU3iRLbtm+A>y&Zv^PG^fdP*VkI(;L z7?aYB8*$2ViWBik3m;uq0=?}ucs|Tt289aqZ$9noNV=y+tSZ~^>=boP%zta)+(CYwTx;2$H-KZmQ7L@V_v?R}eBAN?z!yy@@b)mqmL50r5%5-Y6MhNK zaQPB@4d zDWO$ontt#rDa9!0C1VEpQ}txPF9`)2v~aXY0Vqm>-zc-?w4!AL zFYMmm|If-Sn=<;y$*<`JXM~?g8=W+X+X9jTKr|tU=RkQ6z4J6@tw z63Xn8yb?Lre>o^Akqpw7UUUX#uICQ0M5m=hEWMq*Ma9G%hXGr25@2_uHgGj25LrFS zjWAKv+{l0;CFIu3AThXZ7I1;firZepwKy_QzuVnwSt6}=@Q=%*y1E%jMbX4MFdh13 ziK}Zo?cqrT~ z>J}&F*78-#|iQ38|latTbXaJn0x7743LIryRj~&urnY4V!}+b z)-3+<&TeK{BbP0aOIF`Nj6o>4m;_SXB>F5$3a1`_*o7TkVrPskE(3gt1P$ESujNQ{ z7dAxY7E;Io8RJ6K*y%Fi=YfN@ry*$TmhCsIl^9JD_(Pl1#=T7d6M16>{h;aX{rOj1%yO@*`REfFS&X)BP|J(DWr<{~bRGZ=b(AujnvOq=%a8N1C5EDqs zwIJ4mXlVb=L*h##-T@{6@~X$3?)2=eTfTMyV7lNuuIxTv!vcTTbmjVn@SBL5MSX=d z%qSptZGwrNF10lDOYdijd?LQ~(8tT8!5mqEkUace4#p&a^_h#Mn4Fxf(O^StXJ^L? zaO3I{kOiLMDq3H;F-OxQN+Au{!XIzMTt#6I4MwgS#fdXAGD7^N)i&kpmxH?^R&4k6 z#n=6|EJr=MO@KHT!^o_X5_sT}ddoDc-yu31p^RdQ|A2mBET5JsBE5-0E^s<2kX zjc~ynk)}eQe)`6LZvxMs#)@IT%hjnZIcMA=j_0y7La zVrqJ{&YqvTEmTU{`J38Ul$Tle{3kV2Ex;*B!j z2sc5wAmVaGq}PErz@W>H0Fb89F)=p*8~=nJiG-{y;=A5F43|T0D%BTDHq9#PRCHls z0bC4Rhz~Rh0DH$gZP;Su{4s5_?C?^dpsej{lhpNl&a+K1$X+B(IgtN#I`n=HI&wpN zPxnuzj!X8a#!u|uw7`6BC3wWJ=RfEP1Ayu^iO&A&Ric|>x3>$tcAndjrD|#w+U4Yt zyq9pJJZHSJ907m>;28mvZXDN~x^Jo8IuZ$=d;OEZ{RcVD4VbY>U;=KH*RS@OSG0y4 zh9EW^Pa;eds&mAttK@i6M!I+rJ~PK4JjBJTZU{uaVr6>qs~T5t;=Kk`al9W-9W@?7 zn$L&yUX|L30TplO7*}5XbsY*%dSmWtp?##i5mGL*)nNZ2Fj~sB^U2fdpOTF;Ca#@3 zaZTpRG;?j6olYDC@qr;9;d-^ZHCF%fRWeu*@Aoz_=W!G>Twr&Qh|`+~{S97G)Y!CN zp2N@W8u2m%{(uO6jEW(Dq5cSbKHBd2_pp%T8*~heZ0EC8z#YH`^*Q+8@%X13HuwWI0L}6Tux~;E9Of?v)Pn9eGsc`h zhJk1snV7K(?sSiTgm9;`0Fp(_%!of`@{;Lg3+sFpfg@XjUvK4)=yLcN)2*BZ0HWo6 z&-Mat&TE=g+}2gth>2Nr3VmrJg+`=gg@nH)JIETpNt(=f?}(13d=E+N0mw6|LAPD9MUDaL8AyWrt!3$Ypf~a{cxDs5X)S01&lG0ET zicKCI2&Qzspl9|f5Ju((O>WE#V4Ym=e_sAfSF1D(gi5o!{EXc;hLWxnm8si|@9{K8 zO3bX(=NR zf+~qx_|wHhc+fO1*3LSdKsz=U%Rt?Eb>_>LcdCJ-(N|!kMgjp($mB;M=gn)cIKU7V z5~BK0d+BNYRd3^F{rP2}Sd&V-9VgVNC2}%mC#cUXzeG;N`OD?TPk`HtqyIk!c~h1` z8I3mzU|VZVR&<(J3dx=OTfX?$F(@R+Dnx);Qzq@Z^%wE-)TZHa)jS~7rC}#Q+u=Ip z9Lg_u;T;ajkt-y^$cu`G=J?1IVS|jviPHYGa#p$K`DBXweueL`Iaqq`pjXE?0h?i4 z${Yrz;#Bu+uR(84^0b=oOjWScAz!YQ4WuuAW#z_KsB0rzMH7C)CQ_) zj8?asE+GHr43m5jikzIhY1vCq@B`qt^(`x-tLOu8xSjHzcEk|^w{U4LmtTv@87vjM zc(A2J8VWxCI#M%u@F@-wHJ?GOV8EPR$jJd>2ex?L-|>>5sVOx>`?DSI>-|;(u#JdL zODj9Y>LHXu1!d%NSf36@+uY(6(~0)rKJ1ckyh9*V$ru58`WkQ~rdHt;y3QJ4{SX%R zMjvVE~`fBMG5>dYROQ6yN*J_@!E0yEdr%KNg zR0}H2h>%GG&?*VUu$H7t)Fu>#1Gpyb_c$jDQk`8_fQQ=;B$ctY195;DRqc;66)It9 zP1$7mzkpnbxU({&+t2E6C*0F&kU3MdfdR_QFyQ4V0tCflE*%D_7WG1OJk}ga_@=YS zI{ZhHVcdLYXzto9_X6Aa5jNmErlaZ|1b39=#|>I$20|sOX6AW;Uql-fE^_jGL3gwe zYau;ThI+Zf9fZQB8f<;g0N&Ras6Q7GFbBRKwmr>eFNYs5Jb)O#qUC{z{_-yfRIGaewx^aD*6U_AiD@?oqLJ?@@Y01tFm$RUCvBCdIIgNKLY(?I{e+%L&*Q40uq zJ5cc^d;QtIo9b)$-Zal9L z7uEbcTdoNOLF>@W>^N!CW%**r^S?{zyqVK`pMmPuEf&K-UfWhayWOH`;l?}B@nJ8s z!j)kY4T8C$qZtAa8M`K!x=0}1j?7phNnW%j>GM53b#+oAcOTP@q6AJ*M@3)T-(D*8 zH;906Lnsk!dl9#poQg_|Q*;$|D-^}k=c<)C*DKiDqbpbiZPnt<=BAwKVEgvZ!0Lc> zF9%!_LYm8FaKp{4_Kb5C^(TCXsKmuMAkJicBapCfdmvU(Lt`JF3yT4(Yy++?$o9d= z{-LQ726TJT(P*zJo+?%KOG|`zVvRMnp$#JJofix%0adjm1;NXC} zmFO z5iUQTr5xIcYCFLmk+Uf?OaCrr3R}{X6P9!K>*?w&$LF z7aNo;OvasdX|9J8|At0H%XM-;2@k-*q5^F%5_%Rw>I1GOycTVgGC4}5Wz@$3(o8PL z2`bLi;8Be(H4?;}Dyl>B9_+5#pc$^zB0q^dOveqJs$iD`vsBn#rn(RBfh~TUn+Ccw z7f%WLZ#NZQ

uRjOeRFiHvJy|LwIb*Zl*U0=6GK@Ap^lhXgYEh2`5Kn4ge4&%EqG zkGDs@hbh=XByG^0=zv5fotT`94f?aBX_FB7irV4B#bx<{g64h!Yku=*|5|u!%7GgS zd3fXZ32o1Wh2CuI=bG6CEr?uwF`yf zD}Hkrh9FpUhAN-qYI>hb$uy$d|puS52M$=1o3y#CL zsea~R`JWShU_&kq#MPG^>n^)=!1<%ql;t8*n9=*!+5J*4V8CQXs#g5l`PV8}UFMPKdpP1Q;@BEAei_g8;iY(Br z+TKP`Z9FEZrKX)nMp^n_#V7G<>NavUQCaU7zRlF^QL#=$L*w_QogKRH>FG%Ct;BS+ zb;PwJ5D~Y)-bUbd-jEYmw`xb3z8I=^q+;;s3^q;N64+zzs(d5>lc<1|f2K|3KD?vn8EJhRhiA+DHbZLd(i0 zfS!{SSSSrymL2DGUG7$#*s&F*Aeryn1T38S_Bi=>A**G%)DOba)Z5(!Fq2pVy@CCl-u1JD`#N!#aMrkCnHX zR_rH=LJ?|>giub;SUEgBLHT>(;{x#P|NA!`fW1{zTs(oxcm}kDDyD&(yX$;t;rd1N zEP20$*xof^C~m&6CEp&_{&r-${MLa62P4F-J^07d<6?dbd83$;u-EJDiO%YN1t@^) z)k&4K5uHgXjQJLphbdE$4F|bT1M=jmcrG4Z zifHr#^RM_t1q%fa;qQiq#(J~7J(x~s>M#0I(QKXvjJF`|Yms?1tQZSGVYHqXE8l}S z_l8;ccCI4Q1seO5mbD+_du9K(E$*~NI0isA6@_?*Ek7` zerhf$!>;D{LiG37wYmOWxDjv!=^?bfCok|~`D89VyHQ1%A!uO0e%gMvmh>NPr z@BL@2Tul>8Rd6JghJ$0Wbw{DUQQ3hI81=S5L+`+ZH2 zpdg-JeOgC`skB%{hXDz`c|YkNEB0?hELrs=z1%8#^SLN^E#LQR+jL15uHSLIe7JkN z63}SZ_f3t7dR<0MS+#h0AwCSx0CIxyfN}9fe=<+f1<>2FdH~I;Ek885@tXG()vj>g zr}aBng}-jZgLCwPncx-Me;fVlC3;|gT(3J^Jhy#s?5Z=S?fQ{!gt2x%TF(pGmb=$L z2?;n!?WXvks9lr$x_~6K4PcOQwmJS%y}<&;P>`r-=n|bUJ@P{tg8%b=TxLYgHVplI zg|%^>bd%wd%=S*6$>Kb-9Pfq5`x2S5>)zbt2J|NStadMHAtGmT#hf-G$bN=5aQ8mv zutIP^b}|Av2^BHAl#rH~Hd+3TgeIz5g@zC8m2qxU6XwxudH>q$tGtfG25iH94gx6n z0pcq1((a1%=LpBm_xBagsPX>Vr;VB76T7<$-3# z=C*sdb)N1j&X=bmb3LAJ!D9hc&Kufb6|mP!uKY#{0#8;`pIWO~u*iyv3rU3j~wG?ecpaQ0KtYh!@s_YbgrD@^gc zo)EVMS}Fi$;ESPiwdjY8?;kS4{C^)^wGSkrKXGj6Ww11FC<9?cKWG z_(Wa0oO#AB9>19(BkRQf)DMqPK!UBLP|w_;bw>U-^u=8)mvo%IRex)Lxbq_d*N^S@ zio_*m$A$R`Ap)<^{=Bfy{1~%3DM>rE8*X$uisA9*IT~#gVKI|%-1P&(g>@(6{FI;4 z5hlrhlClL02;hWoU{O!j{om{5-12lDOrFHQxW9hmPGBMcWS%AXM~@n+Wf8`u)ITNKAZ?Qu zr@Xsl6HZN9Lm5v@SA{?6h$Si`F2whvb8jV>eG_HxxO%KlS)MQ7-m@JL8E|e#3Af+? z!5=Hqswyz|`2zjp;04YfYp2?n>%{OjO}S))&ff0C<73)TpU|b)wfx~I`F zkcfwL;OmM1`+6u&;F{;j^-l6Q3^92Buq8GAMBHU$>`coizqhzmLi&~~tWV63?<_FN z_m|_AaQ21=*2O^RZ=WZ1F0RznZ;j_m{|?dLR0*+4e^F4P+w3|M4Vp>YLmov;0zvVW ze5C8@YcH^#UVH6P>1&?>NM_Tb5gAUb2f99^t%i^#S;*f(v*HTDfk!33ZqR`GAgn0t zV(mar2g3vQG$|n;yuD&n>c&Z;ehmPLIfFf~Zm1f97g%r0&G5SMo|i1Zu)Hs%0LSfH(&-IxK~)l^ne8KStV27^u`(iQozP75ZBs7(cJ zxlp^+$#|V?0^9)I^`TOb-;e(WOik~PtQmVhKvy#v-S3KbC@W18r>MiaXc+~-=|m7) z6UZqh#U$jCt`F_Xt_Xf$m=67s5Dv_Ywagh-Z2iS|{C>~8Uf@)@{F{nNga$gQagY;|2fLrxH z7Y=LZrJ#Ida+XBoe=dV6{+v8tC@%lyU=?X)$(W~`FG<_F6=P1%tF@p%lCXjl_!MG~ z^e!S|P-*D}tCApvO3_xeG@zQZtLX1E!EgU6Bo&~9KDqp>NR-1vNs7S?DsXg6%WRf| zDb>EDVB>>!277%)!ilTa{6HWjCt3wGSTld)E1I6i+K&m15v(XGYacn~e0IRimUkhF z^UJsAU$Onbphw|oCkO&{uHZqrYoCW|6&4j>M}{8#GN04;(1cYh0|)NJ>=wBNrm;E< zOAC8C(JcPV%d&LBfw!BCCf)?n*Z}?4ogL@Cw0gX%C}>zmBfKQ!CwiW94>Hm*y&j5b z#!N=94=e)H&wnT?Dk|$hFKTvY?|n)1n<4QlWYqE1l%CBhqY2~A)GK@r4VD@il@JE2 zaetdq9;cv{<+p#4vkCp4w?Er!%PuUX_3`v^#TntejNQ^^qjzqjr<$>2FSIb%;R1g7 zGF6XMx=s|d2Gl$9W1>{VU!{#?t$?6v_s*3ts%Eu6)<^=q4V1&lkmB%vq6%EImQ-^M z6sUsZ>VYtNtY>OM5i|Q3`aEM7hBo#LIH9(8{A~UOeZk|L4E(-G zvV492W;17>>7w=<^PP37;yxvR2}l|4q=4J13kU9JbFIQN#NNvDqnFz=v`kv-NAEZp z0Nn=*{dC<5iAL7#C*cQ4K!+LhZ#Fk;nIjG=*RLjv+;=eAEVK}!Pf|zMeu_G z+NC|qc)R$g2hXF(ZgHfJf1Mr<8#!G__*Dg{_h&t>4fhd=wg+qAPTE)_16|GdI+n0> z*>&~y#?yk&dLtd4zEdE}j8KJKjIOgkP25Dp+v56QIN_(j%Iqc>4!-MP_oTq_Rwi|U zX>Fc&jk8tzi<9gcu$kusD&+V2<3d-VQf=0+>Tli`LK*F_PvAGadI65lSL*S^e6$FG zkpv;x9@KxAaxCROep8N(jzbY*+E-V^Cfr$7OUIFt=-GB&`=0px(}8AKP=*`GRBOWX z_(O~>q$&$j;c?CX_cyx1V%`{YgEj|7QnW;mrG2adrAL8DbIeTWGF%<}CH`kT+1tq` z0}4ZUPtg4h`rfG6bQ4~*w0-5n$v~-1$Gl;5TuQd3GiH;i>*hb6jp=}5$>77=DPn<7 zd^}hNnIHI~*C;;e(QAc@zj9ziwmgt0K)@AP62YGZUrrHVPY8%}U74}aw|F)J^W6Ej z$|HvqR5Jp)KO%Q@3OBoP4A$_^R_H}~Lw_;=f?KiK%;MyDlG0oEo|s1j{CsYWV{?ZW9W^i*D6u*nGoQWU_uS0hm8M$lBx<`u{FOb#NaXF~f@H2Ce z8tOV@Xv9wEas2MULTZNIZ@OR^9hDUEFtsX5H0?h1V9UyjS-w!tK*a;4tLEeVC!i!n zYgo4h2SL3|Y$5>O!6Y_7Fx`HFnNfOf+9WacwDw!rNk3p75-qAdplGnO#GcxlhT3pX zv)%uZ&X!+mJEN+;VeR#lT0q@qdA-CGR$yZk6WOlmGjl|PQjAQbbtbI8WP!f>D_2&n zsR^R!FctXQ_{sw+tvZX0qG0g#p6Os~j5*88+TmCuXmPP}uDie{kBg6oFuUi=@YA8C z4SU?~pEb0b^=of^#v1+)tJnm{Sb!N+1JoF$sjCyxOB<@71@_PT!ROP4{n61p5ahu_ zB(T)eQ04KSFed6Ei5dJKtRhj zQ?HMWScazW*k4V!(W0H%?Q1P7>`M26ugST)&DYKF_|=!GQk?Q^|NW{K zl?fV}Fz4ex-w8+-y_uPriitIQP`Suq;>L4*D&=@)n#URS`R~ZK?b?kXJndHZw_gU= zQD9E@_7B+8^_1KWhhe7DQWt^!tNo&0t{_JF=RP*pFv||$X{*}&=eq@!zDT|iwuM^N z^oaX>`Kn&|Q?_`v{->F_x#M;7-@i&%W4u>kfT{5~-3F%FM3{W_*@1zf;YIZM`TwzW z&2gP|U-!wjZB4e#$+m4bS(9B;O*PrJZ8u@EZQJ$UexJAhzqgBX&fa_Nwf4&TB;jU- zI?Qw?m*+Dj54}In%cEuIRvP5clRc7LQ{IMlF;gpq9>V=T4$CkQ4gC%NryH0*=sijO$INGGXf7PI(|iDS^GC+0kqGemMv)N*I;+f%+L*XgwHOqbmF zP1x>{yYep`$3R+xuIGbvo=Bi<*Z|SUdfOToPvvpvwl)?JLlH{p<8x)O4MImzKvzOv zrB4_V*n&D+71fxKm68%OH!lje6!ggzd&Wl`wZI+z*Y%0brJR|ziZWWdoXYHp|1&qU z7CT0_WBRfk<2As6u_KTb`O4_LjfGCP2~!+zES_{Tk^2~i%gdB8Q*MH3X9>Ecc75dW zk9>sNRXCgLQ3GN#|1G6C9o>Vq4rIn{dO=~~S1W||+78l*Kc zi>~XijECnx*{PMKRbWY+A;0D9Z%H&Gj&hw2h^@V@oO)~r;pm@V?1y0K_n;~8%#Kox%;bH9DmMvOQt5?T;?LnC64%r!D09hZ)t@buuFHRYh_ zkmGYtPRb7lJ?e&qW&2>buYZ!ilOV%BtBv@rQoXMBw&sM>4_5m)E}kd#%-C|b%R%yb zfb_ODa0@;k*3&9!sRcz>@O4rz&E}-T`VO_q`svH_Kt3FWC&n!iQ4t8>8Zc}Gm{fb? zbMn71nA7R5*BHjvJ_7P-iTd8D)g)6QeeY`Y2)XGq?exIN5tFl}+NYaw z#u-3V=L3wt20GLK<3gxxmF&)O(=wYq!1{EyK-;<0F?(4u?wJ?mst*uCxZ4!g!i@!z zc^S$%;Ve{E4+NS#^q#v5MqrdjI`%O`nS3UQB4hLp*HCbsWM(cxe79;%{g`2eraXhk zLWlDGn_sK#CJgg*f?O42d=f4GWG&2Y?X%o+66Y`8$r!Mt-vDa(MjG6$>%-~~(UsAO z{hh?nb@KsxqZo|m(8BZg&_+OIuoW9^MqQ0X3V2f3_|?T>IdhE-6gkDwWlVb#pbWzM zpFV5fja>Y3&ucq*dwNWG3F` zDRDD3dVNAclx*3w*i(PGM;^hUZdMc`*%x?G$OmD2^)?-l#QZV72g<;GppOPkL1{Ao z%jycMrHyP#$ps2ZV?IQ8AJXI}cV0qCZ0e<5iv^&7vuYo|cOeVrJCgnrsVFAB}#0 z7zV)nksG(M^?mliWS^ZWKU}6_pu@;K4&N27vL*HVmii^Oe-ULzDl$=T9yaCx?;#2q zb|d4hN@{YXUxSE`0aS3g+)AITZ#*!iu8hh4^R-@T^dy{Y>Yd%|?j%T2nT52GgH;MY zt2|&c?tWiQvlftfF>2<)y}!K$zfX4ttv9q%nUHM_$p>aXYvBmr9mA|$@4??4FUeP( zxKD=ps!+G3(CZX2PyrM0b2kEjDK@9(qT=jB3Ta`dgdT8#1*-UNJpyg`J`&cEkrxZj ztou#VuHYRF6{t3m99vQ-D|WXlTPcg57@n5R_N4-`U zzCzB%pgyEGTxc-wJ?qdOu<8tN$^!;M0_8OS-1&rlZfY>@Y{r$1S$AA-+rI5yBRLHf za_;P9>&C2gG#P7jYqVzABD_`Y*>EzG1UGTx94*$P)v?rHEv2hmcaPQsnFrYN@pqp7 z$XW}duSX3b+um10@nLEul)Pkx&xdqOGv*aYyz0`~QCn*hzR^sdmQy4^^ zBjPW?2aiD&U}qIK%9AB3MWnQ1`UaJ^+tPXa*z?i zb()mVl&)tQ$SK~ zr-8Edocb~e#)I0G?-)-(#*a|lb<1u(p%YWV(C>6qTbyH)EnGs!IIrYj@|uH;GyYfF=o9~Tx8!BuB?g8vYj_7!rFgmzpgFZho` z_2nw+^iov)5QXa~NycefiHek;7K?p8`GPq5Tte^1$w_>|pJ>9&n}n?2p*xXG`e|HX z27mPeLG*6#7m4%TjDaP~5cCnQ8?fC;gE0c{HYh$Eb7kE`z`!^q{=@I7pXh(m52Qe znu#XYJ^$Oza9AG}^yo7%;{)kPt~kT$b*9*0*x$gL$bG|yqRst0U@nPVHeCRVbNz!j zGIC)%wbsN{wZr$di3iCe{inXv=t#eX!@EnmWKS#q1{*d!q+&-GY;_kW)+QZwAEU!F z6p!m=5HK49>$?)wzZmmjMuWVJv1vxE{CceFo&iR46W4B$48JR4)1vbZ8j6@qfT3xU z(ud?|kV8o1uN0dxkj3>mvR!42x0S-|+x~^x|2;fB%+JaBZ?;HIR6+t$T1KXEjVb!~ zR9z$9)q%w=v*!gaK37Ft>|IE|62=B({O`1wW&;m!xNZ+Ti_8{A*p&kke5Y=3#rVR) zLc`_A`Ie6Z|2&!E2W)``PKk3~&G#;>2r2LVzi~_#_i`y)`q&}@|0ox{sgENAB3dI7^64v}OU)>s({eS4$vgvV!Yt6xLOVm{$d>lxe zQXTF}u?NbZ8pff6mp~@+G-2J7TAu4&*R+X7$W1LI#^X`~RTSt<9?jywA&X%5d+qI} zCh#5#&;oTSk)ug-PxcHCW-!x!I!3tozv)V*)$-^6(V%RqS|#+WH~o73-tQNAaQoAl zfIehe$Mq=P+WWs^Ae8mx=<7{aigs0LTIFw~Q{lqo*T^WC9=Z>KefnX8dH)d7ukx`N zZfWr8oP7LyyI2pLpG5zlGI=p`T0Ho({Ei9M9=D>Xzv+kN1|5+RiaTpFp#J(-Yx_Y( zx^gTy;nMZogGV>3463QU(?8G2AAa#l7#Ae}L4%0z&G$z7VkdC9j^sN))7L%@fpzGX zU296O@8OOM={_zgQPx`6U<%N%mh2qK`OwRTWgOIZON_{zdUE9T|Nh>N`Hc^-JvCyg%ZjMqLUBrP@K!-5_O0t|bKU5GCM<^QTQ6A4OV@_x%fU!vpK z3>ou70Km(Y22II{Gw3+#V+agrD~{j!rOd}`4~mGx56|C@6&ZdA?EymB?Zk()W9$N+%1jLF~DVvK$EOm!#V1JT}-)7Z?9}4&BX7Cq??x>10U-3R*xT1CmkK=vh39F58$DKb1ywjpY#te3$yDb4ao_ar_j8Aqok-fbzk>jbF6m@Nq5pP;M@Lg7 zVkAuX;$~Bw?~1-Lgh-riH#$m_3efVN_9{Q~ew@o@_)kV0sisCmj#;A^y)k?~JbLQU zMRq*+CS<9F$8EN_B%)jufD3-J4)SXt`}fRlWrOF+er6$oW6UldG8~2{QFy9h!h7Hx8Yi3 zIEAJFj1c$hH>la`kGsO7*~Y||;-X^mW9W(*pJ3EPMHQ{s<7|bYa-@yOIa8vlw`Z-R ze++19>?obN>>qGo*{8-R4R)JE$IGNW2A{OR`sWk8MBaFAkP`4O-p)z%i_FbO5`Se_ zSJYFBc;RW+wElbb%0m6Q*LXV41BK}*xC5JwOzkh$uGIdt(w>^6pugf=kHk4o8u z-{~^Q*h;n^16V1wpC7N@tud~r3kZM*CSNE5-a+yg@?QcY={U&mkR$rqgw0-nBqH4X z?0G5X<5v}nBSMGSpHZ6VIF(&3>8B6L!2JsCN-ZUt7k)Poobz#l95I(CXCzo)(KMXI zc`3w{^fUSNP@CL!Zjq$V(gbAKpHbWPC5*AqhD^AqlDk(Ef0-_M|W zVTs_2+>L(2|MOXW51IQ>7^fou^IO0UDj z?cT#o1Y%O~jOp%lN21Bb+IqUyMDlCm33}A>Zp67|n9u_C0@Hk6& znK$)rFTCkf?Pkc(;3&``VzwbQU6$+%7+6N4{_)`{>Y~vjb;B<`y0q!KKlW3R{rgV06=`; zx}Q_|itTz+FE`ei+BKLY_}pH|J~#Kh;=<9tVI*7MNn74N0uJ(L!q*M0jsi4m|f ziH%oh5_?Z;(iQi!023tqpD&u35to?qzMXGzc}i~VMoias$RAI_?zPc#rWtN$AgP^g zxXt|cD3}%0*L2aDAzxn?H3D>EP&Z~190V+k}LEK0$+!H ze>N9Y_M~pV&lI}^GQ1dfXW~knhH`GQ;MW@Xqc_k3<3;6$Tadc1tz$C3EOo_I@E}8x zWP1+bx(0e?Bu%cizISDV`699*8I7Z zke|^mI`p`WqQDj?L25&9QtDO&3UqmoWrC*N?Mu|v_eZ?vWh_3-fhk3L#< zLulHdQ)=J8u7Kf;65H274z99j{8sGJp$s&ik|=Bzc3;9Mb9@0cCVxTmi~mX_kgKzW zlJXrrZc9?(|D?H=1EjTMigaQ;j9wK~2Cr@p<-*)6e| zwLV>~<2`p%1P64D|Mqwb_iZyF;>{2x2%%nJpy(@^u_oDlDG$`4{86UOTgWWXiFo%dkz zQodbm3cQK)5K=x`ejF%7q5v3H^_{|qO%L`VcYtJNIWI;k)SU&B+HMVkS;eM--v1LK3x8PO9Qo<}pxL;PgrG%4<{ zS6+Y6$keJ7BKo{~$Vf zu>hJcyh+No?%GN1XHOP&9L3gVwd{;@Kk)9BOtu<=i}4eJp!CyElCixp@59CWN=mCF z8iUKqtbG=}V%%zZY(IVky!?%vwsgZNTe2{lcYj!3p{}gx-5iz^uGZ(DCJ|g+lLt=1 zeZ}C#(OCiC_MAKc7^DvSsKdc8gqQisc=htuBwJXCkG1!rYonfeDCqD(5=fkVArbom zK){$wBoUn-I*~sK1QFP?lI!jqpuxeQpS*TIXejh^$@o4{gGD?&n#O2_FpBuRNt~5= zjHhz~k2Z_>A>XekCm8R`bZE@f*jql6rxcgEz<3T0S4MzVO*=+a4X>)0hf^bxf*ez} zo|A`oLDmx4U?!e>&fTdo`+1{RxNLua; zZtp>5VG45c#nQeHwwx;{X&-ia z-RHjn;#}Pmm)J>a)T40OC;m$A)w(eJh3j)boCBR(Z!uDi8vyqj54fO)heEszTBfCC zwr9lJ26i1kA_K#}VjED(skE5LlNt@{vr^ZN4=;FN3VHF6oD0Ma3{mVt{_1kdR<)$t z;Q4E2q-RwT%rXFafC!CdU+rq>Jchexc8%`y5o0 z^f{>DkX~8{(#mBc8<))&HmtyfI+YO*p54u9?|CQZqjIL!#6sw?>mmk9gT2%V)`#N4 z3y4O{Pz`+D=cWao42Ps;(;8K8z45*t@|R-)VOY#WkICgygQT~B{SaDq_2_V#yoEFJ zM$4|EkK=i(hjHZ+Is5yF%pf;o-0)iSWgoi+{BZZAAS~F!CrMV?dYd2jwg^`Fm@)Q3 zF)JxE-ZKaA??h3ul92nZK=_&L|MAfotd3p!YyzYdJa6(l2#3VXfVU3q4vX8Lm)jM+ zW75Q(q8zxb&YaVyktvQ67piZ^aSFLDlyDpGDe2SOR|Z>6-TV>Nn7+X>#*AANF7^^O zIEiT-{uD(MdO` z>}iy|{qSc3f#7-=QPLMyVR1Zcv8nkWa^J~SFdq-oAEEu^;MN=3>QfOLVoVL2uiR=k z+#W;a8 z#}Qtk+Xi?%7@)g6W@Q?In9Q*14vsOH+Uv)`OyokETA%@(?aVj*&WV_!Ti1T zS7WpPWeof6gGVfnz-dCuB)-y(9!s86^Hip91Z3SUgc}Hv3yAASPc|EPM7|L&Nas<# z{IH#W_|bq_$bdC+WZt1=?(%dh99R2IOM=+G;sYK!-sHaR?o^ zFu$ANbh*7=H0v(;l1))Wz*2O6bb z36OX4&2A5=Hil`!VuX4eX!URb4kt>)&~&*92x{W&)h1FCpWxHW{i%|=dXbaOS36%r z2@fO`@oGC}^cI+eW!cL2xUncDJ1$oIqqWVn-U!v4j)I3I{IWl=NKj75t@DLa)Q{Ro@)R)W_cy}D!*T^X<8mhPb za`brkb|jLXfGI>>2%i17i3Uc8^7QK2#$oHP`$jMCrEE_ak-`ua+U79$X!rYrN5}I4 zysGE#zkTV4y@xV`_2V5ra5)lPhWdZF@O<0cM68wb4X<)AXo4x zlF%2<=|o&~y4IWW!|!r4At5W|i)J|pg~BA~-+a|0DD~ zbK<-0>wj7Xc{Q0s@(Yv9_J)lUd|@K=bw!otA2%nVfs+~;w#Q$4#@rRmj2pB3PjB^b zS@|}!c2Oy;O%c`${|BV=*n#0>8|o7%{y8FPt{+d4-Jk>%cYEJ zBQIord!wWtT>xNE>(X)kL^Q)*E)QN2{+J|NP()6eloT6%W@{=f^&R&6=}`ES!uVX< zM1?9j1-O_8tF1MLtkb#Ph|oy+BLr%~pM;pbV2K-+_~5$<+t!k+o1Y4?jAX1T42V1L zFY&1l=O4KJm#4n3?!5(CVIJMwhkh|W z#(_hF%0LCN8pfo6@bEJl8*h`(emEtzV_&)$@>1^zg|4OFvhSeFzG0-CR2UyG&_x^m z+n@FB82>5J>pcaTEt?(NBV#D3%AQ>Se+w4wuV;Qg+}#bqNPh(6QU7dkrKfwIO4CF4 zeTgm>c<;=1AauXX^uAn+VBG}V@*u&e-a{5)?IiqIo$S6-(XBpWZ>LD)ySPaxyOya!(`*0ev--5fww8HPqhQOiFbmhvDbLpm$+I-bht^gj zj6IBQIF)XU$M8U`_i8ad%%r1$u>gv}A%uS3xlqX@67uNa@`y%~2fd&w0^Y4ie@e1# zQcE1%trJ+tFo&pIM*Qt<-3@DkX3fs9hI97F*WWD*{nL0B-mi>9T7zhKd+v5QBXOeTy zB;PLvz5_l^EfeF)g%s|_m6(-Y{Qgz1V`T$>W$w8|i8{LU5KL8L0~mJE>O}3@A7;`y zI2PLKL~HE5$I0&TOio!L80V!XEv!;O;=zwXyu~RluTFV)rmNW6L12&17lbddIPlAr z&rJ|PkY4i6R-G^b32A#~)|8SKn^}Wz@IIZ{u~G}qylpJddtw&us^uNqYWdGv@sFfU zr!#`n$Uw;oCWm1PSsViti!ipngQ$<`cq!s}xsbz&3+!hN=obg~{=NhRCu2i#Ti*;& z1i61nQ6#L9Lm!kOGj8>)AAA>~X5NVTCJC%ZX6KPMur#uEG4Z=Dcs5PhfmO17S>+I) z<1*WB=cr9t-UI9xq;hh>8yg7SIyBSG%s-2o2sXaCl-&ZWnqK_ryhaDD)O=b0tJt_S}00(8*Y8EqBM;t?+>8r&!55HTm_TxhgiRx#}572hY2-gtzMDoThG18py zQ+u0t#B0GJig@|!bpIhEL?=$d>(YBC77(zB!>uK?SZA_Vi^-<%wOuO$PCu}NLpIlx ze41;yD@@IRG_ZSEokKY*QZ&WjF}yDsa$`m^DrFI@hd_!zLw0B!Pnt%H9uJd55ZZkZ z7gU&rBdvBC$pczB^-BVwHev<8A(|k%H^L_Mq0=NwV=KT ze%yFJke18ohEC8T(SS&z?b+$G*RDd_AG@=?a-fYS@ahL#Xj%;XEXRU~u`&zGEQRGv zC;AO*bn53?CBFUeHzvp|Ci=(?r!E7*VH z>%Y}VeixI{HzNOuEe#k+u4Hn4W6^!|Mqqz{A!6;xuQu6*Nn$XK5DkmVx70ETA3T{> zn}Yhx!D3=&mS|jQthM`u&^%%r4tcNTs$YbveBsL1Pk)n=8I|y(LQ}O-#fJRN4VXc| zx$Ah`pQ!D_`62&ryMVJB!r0V6*s?i|Gs=1@_b>((97#ftl?FsY$f;T+)zI3(f@k-L zf6$^R*i(YeYv&MuX2OZ0Ga`1hcw#Bt-4d{h%0#cPLpi1E^yZ34R&-&O@_fEK9bdQ{ z9Ub)!2vTNf8A(Rc*}3ldEb9a+g}tFiC8oCbZVtO(z?_(j^)?2TEUJ)%6)-z3t>rqF zije^|m0&W28KEs=VGW4Rp#C9vsw1N=!A!n=lL1JzoI&Qr$fW3FT=wwF$<2#r7MsAm5Og_2}eC z=$9Rg_#bRU2sq)aU(lthXz!uXJ>e*{My0EuGDF$I+J8Xhytw*Wqbb;y+;y~ca-4?q zT2B0M*lp&-o9)+;abHZ(T|hywu2xC;$)ME6$7&vbIYTrC7(k^RkH%X_5u67k~H0V_kGU7=MDPc}a(mqXgG?;+AD}!aQUdwQyDxb&$=`x`h;)ySw}g94hGvXjv4Plz;(oo; zOY=neAA_Sv-;ij=rtD+}_r=}z9S z%oAL?8WTA=No*VoQucD#6An;9hc(2<_(N*FISdJ9Z!WH7lD$E_76U#gRfiDRXg(L5 zjKmOG1X|S#W*j^p)LQcbnv2P^KvpM~J-4D?SSM$NDU#>kXx`WWD zcFCn&>Tp^W6hwuGMUFT<*v#bxBW%Jjmb&gB@iW|J8oWu8O3e|vy`7F&YDjgz;Ti#R zT1G4`1CD2lZY}&3pufU0oHNt5WpPN&lE(-JTOZa{xsa$exLzv}VP|u=I-w|Tf_4dU zp#jU$pYH**8do1f1I#mfb!8?00FK)VX(lK}?Xv*d7FIjRs+aMiI|tI5`!fpcl9q@D zrEhsADlt$1#YNA-tJ<={<_*kia{oiC8*?)mslbVCR2%t9mCm^!}<{?48QxH%ZC_8Vj))6{4hs#erTk%1N;@KFvsq( z>1B@a4# zpU)Zo9EzR^>V#E%GjNxLS%+a(n!-4|h(76o=wW2B!n!38Em?dm9 z{NI@-2b=}YBjce79Hwc`9XO8J*;zG*k0!u?CSVg6cA+W~T{UbtpLiYzq#Kkjl0!1R z4n>pe5qZP564@PecbH#t@LtqtQo%C+?^DxsgkD^Py#s{hNW!G%V;zfEY{f^_P5P%t zD1H4TDd&$76XOjtMb)CWcYYzb$TeRPr8Y-_0t;v`VGvO8Jz;eoW!v#QP+oX1H?*c$ z`DqL@VqRJ}Qc<+M`gyTJpFkkEyi1KxG)%pS1{$YP zOU|W(!fh$t=Sh^}dP7F}nVk;6D>7EVM2oy~cczc2%Tpqwk*KA_ND+cNVNE4%k&Vlt zSm9X1=kHKZeubk_$kffI`8-Z{1hU5BbSpO2{GdIdWQ*r%m@2DL|T-S7V>fK+s@9PkdhtiqG;zTs5xBxzOF6uhWhUV zRSS(wTtW!q6fiAL3Q)U`XFVC}1qsgrsr9!kvVSWT2YOL)(taKSK^%M!f-GLyEx3*7 zXWSb2WZ}2INg=SbWp2gA3E_@S-=~)s(WyoZ>E-Z*D(!&Ms-n%A4`eBZ_FVJ7Z;oxxGc1b&_t|kQBhF>ZV85x#c7N`R-RDk4!M=( zVeGe*Mz1Fjmb^94ZI5S>#m$LZe#aQ<732LE_CUJA%(Z^V=nzD}E% za!VY^UG?zdPhAWXf8#?rSYXN6xa_}Ci3S0CtrH%GPfhJ;e>k!sL3RY`W*^C*r=dX0 z;vB?YtKgY{Z&cF&f1^_*7Za^A`cL#6X+qMRob=6&)Brw-Y(6Yzbo0Cu#)>&NT;6Oy zGZDd!Oh@y8{y>&H4;7t>jRkx&iJl6jw-;vYScYCy6USfhzWH(-x52B4;`UJWD5_#X$(KCg!u_364+`W9l_D9^$_58Pc&eT-AysCNvWn~d&!yh>Cmrbyh zxOW3j-)**(>&WZ0yaa}m;wDrE&U9E=>yS~=gGoeJ`s;)+SMC`8?sZdMc!Bqy>S9Z4 zun*^Z_qKSSW4OBAGrJtXM`JVV-X~Ru3H3m{Jt(S-_YUHHr@mA~bkl&`$wP#Uri zeH|#a-AXNCY-U9=$T=;SaA612DV|4+_yW(iS~=cW!8~pAiQ89!2CK=Y&4fT;_h>hjiO(WR_1RXD#tejOV)p2eQ zs|OltS8Kd(>@t>okqXPSa^G`)Q7dZWxmR~cbTcDtsjmE&&S4i^TFTAgu#xBUY$5bj z9T8Ys_b+)vNdK7|!kv<}lu07jm7@cBtIiD)r*F`_gN5WVFpm>gQD=$ZxpSSrBBhh? zywM@MgT=)z?KK>sn2+d?8eG97Ex{my{}h|20r_0yIyi=cvT-?b?A|O(1O@-vsrkq@ z(vDNBVAc9Bxe~Xa(+PiwpFC0ND)4iP9eOM=sFcZ6&}Xn9654n;tw_+4t>?>0 znYJ)8=vPdxr5x6r{6l^v(=pqb=P9`o%+fH z3}CIJgTb_;eY$nrB7#rTK_ORgeI6O;_4Gyx&NSUJbE;@UsscHd3{yk@#UEP>C))Nj zH00)2hy7zH^1yz|Y|3e5i0aDJO{g*BR8}o^PDp$KFIKR~H+w{MoL0$1zw$?L-!w$0 zwIpjHKnM0+z*OKL+{cldzNwT?S2}Z0J$krc@PS;RT;=IsqXI|I!SV_D5Gbdo$wicR zkGEj!GI*~86h%fi4cAMZw`_BH$SjU(2E;x`U*7nr&p0Rx1gpGaEC0m~ZAV55B{Tny#7> zcoGl{w;zPd7rGsMx>A-Wn6uJ`LVc#R^@`gq_Ocrog{PXUR)REW{;l0p9h^_tRnyE7 zR@Jm%(K-fXrT{!au!qSZKnWXnu@+Djhlyitqk3;ZM@$)_yDzkSt{HHGajMdsfyR+tw!o zyB80)Eqlp2C>|bX(7w@{v*z3o_9~c)8FYVadY+XMU*t-@3r_ zET$aahGaD3tf7YCA?oG^;=hYtu~hOh*q04U%)XTHTd@4mp`EVkH~;w7jX_qc?91l- zqd81g5-XNKeQStV^lionN7)npK_CJ1)t~FzUHi{mIoQ6TzN_7z-}6a}5NSeNv>ZbRCitq& zZ35A*WY+}!;CUAadb1GdDtLoCUptV0jYy1ENLUme_N>)HOJgbD z5=Dkz!7m{DKhjc=2Gk4V;R(#6`7Yd#wWC1SG%<0+dE$l19@=KT)b%oug|m(D{PvXH zDft*?he7#)hR?f z@#%eWA#10f1vI(h*`?0hzY=$u4UecN(z?Nn1fFaC|C;b!!S+piCL3un;XOKl8;#y9 zr}DYs@9Y{sAMj6Q@uPhO8F-)MdJgT0)R=pyL!ZG6hbHXXbWd&SyWfo4~SW1phEE3mXtVNQ^L8#S%_ys z3X>`5=;)2Cb3*ETn|H2iKWcU!OX4#F=lFcSz1)d$wI^-IRQQw{TmD(x6PtrIxnYj& z{zPBQBhqyRE#XCEPu76g3y}g{K+1XliMG^g!T5uqGf>hWv+v})oa5eKc+en7Jho%3 z!C(EnHSU-C_#Jo1qId2&n@`=y6_I&jm{k*N|9$Vy)YLbK1k;HlsTTKtyLUU9bL0F& zz}KHuPXx8Jndtu@D$ws>l17A#85NE1mWpjjmhNK!3m`x}{?Kl<9D9D=%=I!975@6* z41Y+a3S0NmQPdL9t+y{Uc?z(8tz`5q_(IiMuHu~WY(O<*KK724Z%-%teEPy$s$^DF z*z(=Cf~|rMF|j50(HNL{c=HPvert@+x^{m(Q3$l{OE#yZBl^G`Ie5L5#3Y|WL)+Op z+6#`D#mbY5O7n0Uhfaxo$`#RrGA%FO>Yb&f-V}qP_{NggCq&tBrUsnH)+3>$6gUyr z-=(At{j~svfythZTUwO`PL9Ys%h?m^LyOr?@BV*D)q1EeFVUehlf2);M`JVQ4s69L zNWS;j_%Fm)$|k@=oVhjxzPZihy13t6Zf1uG@VDoi)#p7?+1T}4_dDH9`<(%}r#B*g zZ&_1p8Ljjkp&FquCsP0Cj2c}FiDdIkrm6iXAhw92+nc)qJEF={;6dxqkC9;l-h zHes1X_fQ>!7%0ZRoKlLQCRIm%YG6Zs;+|AYMfINB!CjGlD&uePp_rd&jrio_DF#XX z3Q5t3+YKzheL*S@KD+W5=#>9i@z1b<7J5zB37KT&-=#b`J3GZyhifEJ`l?mFW$(>Z zmoLsA+_sw9`cJ;wM5KV#;PQmD?;HMiuczP*qKVh(k2#Vv z3ECed+ept1Wac`e7`}sjIG~dQ zEQ^6G%y+yx<5yQnn*R0=g?6!0JZ$*g$jUD2#rME?>OQ5c{1efrHUc_ECZsSTu;#W9 zsPp_#kzwLQjg4VhZYSWo1OJ3GvY8U><8i0KIrHRIRrN0F`6^83efMCYnpS%}ow7k-_9RCV#^J;-!=3LNj$DD-ZR0B@*T(VXSgnsiG+biBeVAZ?xFmK7&ld z(n2UvUmSdFn$5Lidb8i^X~E~-hkg4|6I)^>g3d$_RhvkcGzhAPz?s6$y&Qj%);A;% zCr})_6|95mg;-tE_6P2pD)U_oosj|Y{{hlKEx#6PXP-fiV|g?z{Z{>*9eD=__S`~+ z8m`c!6FMd+Tedi!?7x7}H+4dU;#~${x93gl+_oC|@61G}$|X^I)jiequg5LF5LlTR zLQ^bwdKVx-z%K;iq#scl=gOm$RcUJC1M8{ z7%>w5e#iO^A=T2tl{1I=amgwcur_ms`=z_6*`PVnQooI%AZfvK!@of;4R~ZZjWMmTJ}Vije4kw)Gb9 zW00v(30X-wtX|s!*w6vn-)xqo0wcC*s%YxvW@1gPSgf0~61ffp&u`qo{vUv2PFq>EwGVCl(ko`S-Dggon2>4cD zeQLJM2-f-X15fY3FN^hy>O?U$A=M1QquYRS%?hx{OlLIx`#@b?g!s4^Jbmh0CQUmcgT4FTg0$W=)0!Lp4Y>IUZIv&MhOwm{g8bv4sg(nnK_>28QF;WZ zU;pi*FM)sy`2Pg8s?cyGxKu}%`Bh;aqj+P(M&uhh=BUxBChEHALh&A(*AS^eCR0aD z(tDaw0slF4n)XLQ#AD0C_nmmZiyGZqBl_G?cs?eIeGlu8WuWykFT9S7LyDXRT*-(D zi^Qpsu7LM^Tw<|aUfO{pp1B_02@%-3{UTt|4K-9}z6K{eo}iM8BNW2UmjVO`_^F@< z4XHMC4Yc`YbebYYucf-sHIzbEON@*(eK^-|2q(B>-Oh*5wlsjTl@!4{W?^4oA$03j z72?$N@3O3%+yH9p=rW@3g_qBsqC{mAM*IzsnJR{+HgNvz5!RWjK`PbySC-qfXfm$` zoRlPAYl@;F*2FWvClG19hOV9z0ltZFtx}ZFB;5Cmgtklv;-g}2B~@Ytz+$esEwOgaPSuHF6w|=D37-7im0x> zMdhJgVU7@tUmpou1YmOSdMI0|25Qu-j&k{1z{6oUj$NOOw~h(F9OrNQ!^P2_`>_=u zK!AXs14O=4;k$bZhSn~J?#-V8iK_E4E*7+NP?7sC346t|Oax9)a5(-5U>(Vulk{XB5ggcltbu=^( ziNXEa;_jUr(ACj{NJP_=U&fpn)#ihTzlX12;Ov&nj0^<5d=3Ls5u`FPd~b)q&RK)o zfs}1+YK7D^dbI!nzc<97LeqTn@O>+kSwxfNupg^&F(eMj|Gbwx8F4rc_Ece@JJtDo4)-`OLJDm8}kmwmRaUKS#78 z6KbTP(zixID}5-^zOD9~G|1Yz+6eIT!?dAY@#NuckQ0{nLyN;eTnPKOUqsWM`BAET zJ~&!cgQ-SE^c&m@rY269yI>7;^|ToYPKUZ$4n!L2&}5xC?VzbCW`hm(Aaa)|(h%`; zpR480%FISqP8MkM;>?U}zLB5uZzgvHk)4%|40atkERW)ouxP!oVc5991M}z4$GCChR8JNNxBvlv12xQ))J&YcmWDrCHHNwIztMjR_?@xu;sXT4 zC{U$z5oBcM(c}vdAV9!R05x?H)QOO)e&-^G5zM!n)~P|A5!W}dI3fLZGkWCeP(wqE zz~_G0zWPs`Ke~sXui4T8_1ieJbSRLWlL=9lA)BQQ1cv;z>Cg37u>8VIb6YO>cd_8=F zqF`%j3fh<<7h+8bv~~4ar}M^1xc~tI1pFtUHBnia8OVGuE})~OA|&_hZ_1e)|UM&;Vhc;cas z^9P<{!Mee)FP?*=ZW|Er^g3qE7>+{+b~8dOfohDOpXk1i?!weU8|sYd2l*w!vQP%%A{BV~EF4-=?RUsGK_K7)1bhHuu{w0LL}8G2>5>m&HU*Z7$P<%8UvbF!;BF<@%Z6QH0fRd9Y#9A zp{NXTF>y$h6YYIVe636iK}*Ao_sw#73gnruQM`%{sx>!;wP`Ud9C;mwPHshv=rUS% zDTC$9{=|q;?J;=Z5YTR#GS>H##+_y(zb23p<)b{DofnD3@Vt5j#mZUX>HSy~bG1PZ zOKb2;#v$0PUAuKvMScs>=&=*0U%c;w3MF(Qm?#SPe*=;2hqs^L@@Wq|zWht4sX8@#HOjiNJ|YzHZ8{C4f8N_ z;y?`S-3k^KCg|L@A=EO{Ft%SO=o=V8-_#1)x_Z1ma$zq(fB*siClHA=xYj#5G7OuS z&&8wx?GYInf+`K|FnDGaG;7oz1Db7yzP2TTqVD1P{X=*e><4R;f(VK7$Hqfr@HF%) zObjg1yy{pKvaN`K(EG?1rNTUa7OK^A#)X}6cyQ-AVly8jQT-tn&RUCCf&LgaY%rt} zUD(^@hqg9x-AwM4id+tUZcxf(M&Q|BevWYmvc#eDWL9|Y^eKeLTto2+*0^{u0Oji& zvH0pZx!VU4H6u))J{3}0V6CDdx%1~NSZD8A7yZvq6o51MV!5NjZd6OlYFS_OPt zutrXc|40Lyk*-jk{M|ry-r9(diNe{#yRdcTA|%GYM&VK>sNJ$4%2g*MI+H;{Q9ZKmUO z=`_amX@eEB#zLl>gqHmZV$h`eFtHIKDPDn)@K^85`ekRcI+h^=HBm+OYbbJJpq9gU zVvaG(M~NyHV4!P(e5U1~0WG9wq#-UL1`egwP`^Vy)~D;?-nksipS=tZ0*|8ekg{me zrY>&YxP%@(+rjtoW9aJZa2xMTCWAjWWU0(ia#O3O&g8gUjwim4P{_psp#e#d=w(5s zBSMgWG>=oQT2MUjK_-3+5GhDk zq(O}lPcb9W*|an6M?j=0*FyxkBGVL07-5LTmmrs*<|Q0I5;SlK zdhUneog4CWRIS(SliFD&dCWmZMml6N9d^Y2v3~k}kUKd(UC)lc#W&IdW!6f5NznIa zq^Du+{K;6qXd3#Bo{lWmj(-QxpiW260I^Y#m^rd1`~K;89Ug*4oeQFQucGMEY6MzT zod|2=qIeK+4!!}GSYP`H`Z~r44E4eBtIOdVe3tz-LWeqYQQE07p1isW9~Lhl=n-_a zO`)f4jJ;>(!^?LcVp3kBbfJc5P<{{s!yX|qH3asB3}9uii-b^ZoY?yaS=ujPk}m^Q zt5t_f;W8M|zc+#cLQ$t)6J=RtFmjzm<|Q-$_(WjeNHv@4I+@jYxqISCzy%a7XNbqQ z5@2qv4O=H2oZ9{j>B(aJF?I|rEG&551gJbob+Z)aUk7RK8^PkhfhKdBE#ZTSHA{o?7gW_ zXL&|8w!a#vY}3-@m^rK`ysn;u*Q*Sq%9H=EISthT8m!4vlCW*%0_@qal%FqE#T@Mi zm4uyTQM9fy8=4wlnyP0SvW1r1F#)N>t(^3JVPF_gIaU^}iq+=sMO zCRa1nA(ExT#>@##D>3NclOK_MJyy*BIKkPW8(r(*g9&VNCgR;iWEYx z=JPRW!W5i2ehY(!jzOKejiIk^z{~7&%7~)SOu0;^i?JhzK;6_E`3sxE>tqsYwR!E?%h$oe0ernUyRW`rosE#T_*q4;b1R=->cWErwS18 zEEx)ZMStk8x$ zS1535|2Fh#T9uRULZuA(0?YApxCM;JGDGz%f7Wx~1dn0bl&Fpeb5+uYxt3r{eCd^O!zm6x`0AVdW)e^-s*@ zH?7b4SRm6ClEZOq&>0#Q2x|vD#6_hcF)<$c<~ex&P?`4f<;#7PoBdG6Mq7-Y*n1v3 zR_{llqWQ68>kKT|I0f@JP?(GbEUer+56wF^V3|NuvmY01U(*3`Q;pBS_k4C-4y3*()z1GQ&WSH=zILQb?erA^|7t3EsB+@h!-KT81u&% zL`O$s&6+iQYDg>=!_LkQ6DCZ+L+>XT)OH+Zj97vkc@%w=15ayAR{xIH8ir7{Wn1!=^5EbN|vK-s|NUU&Uo0$NgHe2xN;70(NX9-dMcN(qzNulsV3{M4)SMw z%B0}^=Sn1Ecw9V<``+%H)P65n{LOvKtG>g*(HTaj=2*9ID&k^ZbE5oJ;Qi3Y(?|oG zl;lJ_ynUSwf}Zl%f1jNCIKD0q*>`=QF8x1)29XBFhKz@};g6oJuwcRTxEJ!ha^L<6H~bF3&b&ApRT_Z;mK6{i8;gRj*=XFQ5R47YarZQ^c<~ZEi#~}iLn@<9 z`?@%PZVyHc?~4~NUa-M3*@tIyg~-PODNUX{@qtJy7TP)z1V2w=ZN!pgiUJQjVpwg^ zK-H>MRXO!{{4fGerYDK<$@p{PY8V*lVch&-a4uB{a@N5l#3izjgybYStZXeXe!);w zu3esurrvs{p!>-zz}UQ{mW`)guu#24$)Ic*&oOe~DJ9h<3zG5<|k`wxMqM<(U(AY*^p?v(B!qy7)2hvFNV z81Q>2ZF&Z}d}@u-L+Kz;yCqW+Jp&z>S(@;QO*ZicM*8oVn9yJPEuGt@tuN>g_3lKmcQ>KEB zPDo0K!l=RBFtA@&=;`PnMNW3K)B%53yZtqR)n@)&BO?QJ>)ICcrw)O$wG>Uu7sTV6 zSD~$Epq!pp$p!(R2H7#YlGd%Nsh=kbazY$3yU#Tfc@OyNZ|8}ih>y5_*(i$6? z>hfLo@+ygB+PZwBC6e2u>DJNHXYyW~?|Mq*LnbHWWs(-95y<7FuAUByXTapMaxg{P zaT}Q!a`TuEfu3t(ZpfdN7s@_C#_uz;RNiZDrF;&VoO~-3b}5a{{YP<=oda7|EBn>Y z1l4DWREw|u(xE(Id1qo_$n!04{uB8oWgU;hAk$`fq;J6bR)e>3+4mYU(q~{~$m72c zZ5_Q2<`aR+hx%z617~%8=qynkbzzCI@7!d?~O9 z%6K0Dy^HRpvZ8PLRiP=7AT2EwllynV$ZpNpfXM@mI~K+8c{R|vOD7C&wH1YJYC)>0 z%gC||dNo>sPW7ilkrRc>_t)XZliiSLsiRNR6=+{;Cag@HIB9NIYXn8Kg>r}Q-;h(1v_PW!a^cBX{N03 zx_BF-x=n?nqyl?pefG=>=v;RIJlwoFk)~&5uOs*QP%PN9*bxM{2e|%zUb1qGY0nWiyK#u;E$1gVQXuJ^o%Sn zplPSe?-jChSO<^=M$Syow^t`T@;Zvk2miwK-i=sY_vV6J@R;&>phc5Jf?IbRh?mcN zam({ECuMm-ze56F!28;H)M?U=kvS`nwwshQ5g|cvF;v6Kx#Ky}BhW&uThlEo; zu3}|F`E<+uf|5L|K;=itr!(-G_ZN;?2qOPy-TX4jWzQo^0HdO z>W3z)Kff9%FT-91qG#iBtnTeW>B=_vb9XZ|>QsacTy*f{#XTH2zYsAAZ_Q0!MfloKj;-aBQ&1C(y0_vLSEaS2vQ?p^R?rmOa zXlTOPs2J=_%OMk~NX~kRbi^aSMHQ4R(1ewdvR+VGIoVY~#~KTvo}&pxdKx6!*{I%8 zih<)A;r!NE>{#xF!>y1#!vkEMG(~V(;QRW2&^@#9d>fWAW7g z9&Ga)AtgQy(GdyIx0S>HQ38_U($TqdC;tAA;az6=9YN&r(DqaOxLKzLEb*$Hg+7El zr%5yYIy@S)MlHeoaVt=`SV1&ySC@xs^($gCBh8)b4&Nf(g&J1y1BU z=5-wAvGa5OSOz->D{jBuxNTijZ%_%lHylR$n*DIs>(QI^sPXh3!{Q22zv=#F@mIaCGx>#6<=( zvi|=ynEsw{DqfoZeRTUe|I0F1`Imw6`oS$vq^6{xWW_4VYplN@Sx!n1!fi&@#G1bN+2?7z!3nva@_Q>AccYN(8ZCM}I3AGxx#vL}e z7}%yJlZU?FgoKlaDDo6FV)|nKd-wXq+!271V1Ep1kg_z+8#fS>2X=&Aen$+RI1dvS zu1C3Qb+Pu(DHz8FA-vCGc|d-YDQ}2~6XeOscpVYOy=WvQ#&h|uB@?4Wxhj0I=Yw0< zIe8~go}{rnII(XF|Gjt9N=_7WL3wcT)Iok+qkaoM8$uw>_x{bR7*}Y;p7|Vgo3-b8 zSi4CZq{>q;p{_=N z+gJaIDs>v8W1rz4jQg{L@|qS~#zn`#(#DAKnWE6sm$CfHV0E39qa*__BCcV_sfqA< za1>`eH(>keKai*hgiFC%=vIFzy3}2a;)SXqAj%VK4-J6#qmy{@(i_{@JtsZ?gpq*> zYM1GUwl!v=WWffwA9Ms8jt+t6y+eqM34+JnLs)-wFnj{eprExYnpc^KvW1!=@byhB z-P;vj504`*F%pr{K{$4GIX0dg3N48?$`xsa;`!<#J(Ycjb_@p1ErBA%3ggBx1y1hs z#==c~(6YNL{@OAf?pO9<-t0ec?aD>I;8IOpgA;L*1~IX52nh0qO@4jc^9V&w>PA@ES#WLlKY@fGHOLK%c5tHIdt_$} z7~35(ZIVnm{Fw*0oW%SID_BFRhH1;kum&dL6(c4(4!s+XKwNA*6INMRvws02oi0d- zPhyoL2V?>g{4x}+EBE4NEG5bn#i$tr;8?_gzw?>T3-oC*idC)z9P{1*3ma3OUeZ)= zTDBYO7H&tEfo(8!QXlB(vqs2-GNtF#{tK8kj2c#X%vn2uH(2@(O2>d!e;|U9WCbJ7 zYxd8FYt_<7N=Rm%corWl_}qDdq@)y-sZgAoln~h_?ev9{*D$30L^e36j_E7M^1LC_ z6EZ0&s9B!p<>ph%U~FQ@(wL8gU}wOP4O?`8#abFie^>2__~cs;3C}e*=~C zjG40##7IvC*Wzf}s6LEXJC&!Vy&1g!r(lD6nT|eW`qmgapbubRjgEsRA?>~TE#U7U zQWg^#j&c3k;`!r;IQuYy6Is%ZlMJEjQy5vif7=Ty_nbk#f0fX^R4!1#XcIN5v@pTqvX)e4Hm60BJ;5qmc*$E?-6IKd{eNu=_Y=Ovzg z=MrVP$%{xt0|sEjaj5pSw5SctIg@`}EO0_T81y zv_nq}pSp;zVIWW|+QEqEn)#D3bJb4NY1)<#P&8N?g9DzSV=Wi7={^ucrz~J}N1e&` zEIyDSbDOhAc4Ov@i4S@%`5q{`~NW$o%)aB=}1mWfPtY2yC)g5M)bz@%V*#nlEv>kvU5EaO&-S0 znkX;z42|Cm%6=tKeSPWwnB`4fxYp8zo~|(?x4Nj^+8$}?DV&5;3DbZzE1eNmwH)qN zuztCr$Zu6f`4AN%+J%|fUujm{q#6qhWbEX zYK?@n5LjC{qO@ZZ6tbxV4Uuwy^fKZe9{8We6#iUc0FM4{SnacBr@(;__H zvtUo$^*@Qw=qHd!L`aF(fRA?!0-i*`IA0oCcB%?%gHlKc(Zk^*Cz$M)V#x4`u(8j_ z$~g_Uy}hw`Sw{?#VcWvHc={mvll{aG(SQ@7O-)H z$7gh4)G%I$z2@Y*Wcgy~*tZq$6yswPSV-if@h0u-qExwJxX4JV-@|8IWBvy0WwgWL z$~|+rra7IB)MYX$C-9Up)W8U~4%S$>c`6&3TXTQpiHsB%bk5Hjb_afa`ONi9V90oS z=-ouViP_af?F8s-RMsPV%2#X%-INi5GUoVbSa<;p`> zSC^g5f#35NDC+FO@+Om&Be{Be8yMAMonRV@mn?yyqsF6E=l+;FeKv+Ol1&~`XyYEz zq+h&v5p(9uL9=Gfux!~f6ev)D6LJCne>i;jFiMsx4Sj7fri>qk?p->tcB&0|S_W$; zY>=<6@!th{zeoc*Mz)aXTHyJeL$EN(VV%B$lL7&s1`%FzBj`{_)e-yL<3yG~vk39A zF}UV-66LGbfsI{3-q(Bzxr_GdHSd5S6X$XnOXWcuDiKKDlPmXJf9~Xwg%lx_7A~_@ za{Eg`1ipl8Wt1peiT5!njQl0W$8+1Y2Sm}LI1_bta5vA+6RQ?iz=U}Z=!tS zdBu(?ujsylg^Tg)VZlM%429A}gA3aDhRAoBiZu`%=+8}t$UKV%4e_y2eAdA>UqM*e zIq>(8@@3xG{`^^EW-W)6Z9eWHCm}A5Yj~ZCm1ct%<-ls=l38qU@OCDF%AC^EtV1vK z7&d{WHH*JT&%lW1NnU8l)LC8~*Gi4dkbwl8+!742 zNSo!8a^_CN@Ri<$ya^2e;_PD6IO2-Zf$-;i&DgGDJ=8J1)Pl#PhQ2Z&b$LMAbUi+$5K zT=>qzxgHs?+H2s zLtPjd8?uI=@&(H-6VW9tHX$M;k}n{oO7`NZGCjo^DK;=R;DR6*B&2C@QK?p0{yQ`% zf`9Ux^r+t3yhB6ffaJaOP})hr&^OU%&@rVuGc%hBaa|sVC+@xH@vLRX^nJPK$W$gQ zBm#-CNi5&k_n8`UZ9AE+q@|`aAuZ>oHAGlxz>y}WDNWUbe__y!!K)V`NM}T;R_$6` zL!F$Qf>1V)D^s={a#)?A1+#w(?AxH*Vx!RYr{(1tTLPT)A>Zl>!03DyZ!|eE0|r8q~+p!~5ZJ=>&!k=?gP6 zGbqwY?y!2oi0^+DsADIsla{VAv>EY^czFlscZ|Xd--~UC^F=G8bXfX3SG?bCva8_q^ zVQOy0we2)Gpde39;1ia(RCKl6Qrr;qNUW!L^p-jf#^bwsnY(ToGxm6xng zh4uZZ{C)zxm;6GLhMy1>5yG|G?|VpT(_T(HHN_0ki`ZKKD-yO%UtVDEtD2`uUg{AvCBU=6xMe_^63*^1%zNwyKxxOVFHGBoX7(m4{kq>jWDzM zg3=T@X%If|**`NV4^Qkr&q%cfY;0^`Wo3nvCr+Sf(Gr|E)8vZ=tA`&8bUiCm!322{ zTDR?hi|%)D{InZJjrjwI4cM?5{ec+J?~7(nm_dYuvuL4!$=I zvGW=bi?!Ha)^>mW=KDiI<{|l=igHru$w(U6V$ zBjw4D1es)z$;Q@|^RQ&<2+SDX1Eae&#gxIF5$NxyiuLV41e3^pg_`yG@AXS&@NL)g zE`}sfy(I0lNF-(?IUFOqHfH@nNp2w7_1ukDsJ%<2 zN>i1*AT7C(nQ|9HT40-+^7p=yTv@(<-}^YSV?DR=cP>?quNTOxy!$ml-%I%hHi%K0 zy``t+ps1@EidN6U`2zt6^i5-VD&cV`&uCGkCL1Jb>uca;q!-*DZD(XE1tp#8qi>@P zurPAuOx8#>lrfTD%UBOuZp>yHk^)3A%kZ|}rCq%^NQ5!zBi)GXB(UF$7EnW8oE zBGLnEj|{}oYx9wz7KQS~8lqF}KT)x0N7ODo0Bvi|L~*C`2#&ptz2~Q5`{@a|@pupC z2(?Q0LYF#=P@_aow5vG>g>7pfJ6!^86FCOWDh>O5`SAFP29EB&hPC@gqQ{7u7(b;K ztJhgDwa~`P$0;yzkh6M_jTcXq`-YHHhfjfJ%l8Lqc}W9HJw!%&CPD(kxTf-Rz)3fQ z1|z{l$lr&u3Mj$G$f~37hunro8fF?*e;CSie5yg_1$l9K^)eKrdrZg5*_&8FX290o z5@jp8pj7!{-2LL0f|5r`AniFV>a5$WIt%o-8vk9pX?2X9I|SqA4dvTq|37U1Pp%co z4!=l|!rW$?$nl{g$M|AP1rvUJN{p4=rvlYA>Nsdk!Ln5w(5z)gxL?18CQX~b)YKH4 zH*ZFvLWTJAixn%zHQ~E=@8&)~$z+9W#s&QRNJ>h=(4oVyZOdj9D^dVEwyr~!%H@$1 zM>esn!yviyUj;@8$iz)kB7=^B1yT~D@$AlN+;`u_j$cDls-tY=0=^1F$PA55QKpL0 zO_J|p{W3#gZcq#v z8JS2)O+bZ)#%S8j8JcQl@H(1^dGlu@PVEjl4|PR&a00X>`cT(Sf`W}hf*z-$W{p~W z*X>W?hY)b8&}5HXuSE_1`}pp&tN@g&`agu+LL$&K9zmf<|C^SYgFQPXS*f8gGdKRK zw!tgJd*q(KUv-K!CArsgZ2@V@_e1H)VbRE+Il;uth&_iN{v+sJ85voaJ7yUk-FdqK`=2jLa*VS&}~RNbQ_!}3~Gyx zeOt0}srgH;!hRn#BjN9>^b(NIAs^pzp77woLzF335wrk?WGmw}oMe-^(5HeL%g1y@ zDymeijz1<$!@!~A(XCr|{PD*h+&jwDsZ&v}UOjG}vTD^T?j>d3ym=^Iyf_XV5d4S# z%-FPP6SwUzU%n(}&zywz?P*Pih?|?x-~TqSK_HWv+PbFD(lLh5&13MpbsRC_{;d9z zIm)|k^8|by$bPzA&%ylo%=h}tb#+nwYz5)9b zvH>QttE+Fw`kgV{k9enkZ$rnvBhj|UV7{~HhsgKGx=`wa9i3fJ!nF!cF_KNW_RRMI zzee`qlsA^P_LNYB1ie6XR0OWGK^FNkCv%frGZAiYPWjHtnq)oQmlyOqDItL$lZKr9 zlYdRUu+3+SF>_Y1bSp5pT^)9Y_0bx?Zab#3r!t+iXanpE6oJQ?Kf!mLWDFT=fR3^Xe#Q zT?uWf&q4jN!w?*I2S+_;VZYlvB&EdRuHOahK05_BU+m&-qkYY}JYG5yaQ4S#CFW;I#L0#K~WwfOT0^FWCc%jAYz=dISgE79b%dn#X$`8-#t;_Jj6Q5Z19-|T|+S{lxSR_*Wv&G|MW>jK~#X& zmFIIWb`2Xf;G6$_3O|H^6Vg)C(4CP!!d>r2xb5|jH3AwHDT#P)AX60@b&&Z45nM;- z0{osAet~>pBAJ8af(RFB)bDuS=f52a*>iIe-V(n6X>tX(wa%-Rmr6Cc7Y#x~)>y~{ zhSKF&BtJhF@cb3Gsm{CTlSo}oX7-yM7##}PQ4RWJdWhV|$HsI2v5t_0)`e_ zlAy@=2mjMtK(Tkwt8zi3Q*$fUd9yr@iHhY5RLP4A>ye$O`EljS zm0@mfj=%m|i^k2{u(H*7BQzh*(^5Tc{<`gsW>=xLv&oQ%if4En5z! zPMt!ZK7BX=_wew5rKKg`U6ZCo+qG-Q(?D+Q1pGXB@ZbR}yE1t6=m9*gUO<;l9eJm! zP$=!Za|!N$5y+%OU8D(#RF}y@J%k3bG@e|6gx7(r!=nYnti#UR&;|S}kc@RIUW${% z@Q@%p_w&KdzmzWa$b$xvrEiT~%_|YuyowWAbf{}!#N?Qa|E8`i_c{@^%C;uvMPh8n`98#O4Hx(1$qyebC73~&{qN2yK#l8LsEiBnz4ly zXnXp^xL7>Cf14{pQsv3-1Tx!sKd*BKBBV^pn@_o*XB(MVz}7*@5gy*YhgUD2qIQ$k z+)p`~c$BYJ4+h4jxOe?3UOs!w<2e;81u4s8K7e3(V{UE37emsbP}-R3osEmwd&z~O z_m#8!r=@K^7T18?`{fENMQRqR)oacMA$<2s&&i(@ssPI-W}hx_2_gLOznD5@6kgdr{VA)k3^7Ox>jv^ose zq7B*eu3^imQCPCG3myd@f`NfPI@S6UEh|q$Ij1%l+2$B~UKPBSKg9aO1F`Si9PBtd z7SX8>QNY%jJ?98oRGx}~&32)fT|KDfh+t%?j&{TBFl1s2Y?%HOZhM2!sl{-#s5ub5 zhBsuKL4qn(s;E-_&-h^koQR}d0UNaH)`a`fo;7kYuDN;fkq{AIBC{j3?Y#eA*F`T=r3*MTE!poaL_ex(sTA{7&|qWPT}p@A+ZvpIey_ zNawpwl8eHpz5zJ6?F7GGr%5%|c$h$A-(YEHfzp*+aQ)&fmL?Cb*{7X3d3vN0oH=|6 z?&rO@hY{xzPF%o$3M6KTAm$SF(2#KMsfFAK(l>fu@Xlic{uY#{^vz+fB5?nvFJBZ& zB$Q+o2^UJw;EBBu8y%0MduT(V4DNA-TqBaH2JMQOn2?0nD5Y=JUmf%frw?9$woIE5 zWmj$aV%T5f_Ltz zDz}1fH8THAAhQ!qsSF~q6bUimcyjv`LjCVSLo8v}Xkj+1fFB?t0{#uiqednpkPA7H zUB7S|B140@R-9breQR6ptjrwlm4tBNIbR6BiD7g8sux|FYw(TX*Wh9 zihI{D$MLo>Y}MnU<*eV(=7C7!`D6PS@qEIse=pGDNm|rMyL2Ajv5vb^ z%muY8viTi2ZWfopM|N%CrhT+iBrSHOg`0GooD|P^K?LUj%KMZy-h}Iy&qAJ*#PWf5 zeSPccfgedPLD?hB8#@4|Y#=dc!W^Wqw0sTdT{PI}J#s1= zB(%lDTb|gsbQWJ6nrmwNDiv&otG@y`YpmY^$ zv>s}U<9lww^JEm{iR$bc&Gfz1hLZw<*49aNbMP$eB6gph2;Ud(NF%!r6$1Qwl8XwQ>5|7W^@G6r!>( zW66Pb@V_HRvEt5faB$%FeF~z{V<%3(c;5#VO6al&tImEW(1tU`$`nTM%P>~?eBpNN zD)+a2>68a9p16iHhc2-Sxsz+Vy9{W{2)i}ccv~~ld-0?@uAIFN|HlEicGe3QPr2jt zfeYBN<^al6E`h$Ix^VJL0+SjsX|#{+I?J`xLnrs)+Vi~N?&=u%+_&i%3{4F1Dj*c+ zj$Xz+??-SueieH*97cF>BpcCmK&{5rxC=u9rN=(M6;Cs5jPs18$Nl^bmVTC=Ll?1m z*={yqD2o1nbcK-_2~K5tXa?ZqJ~zHFbJ&zVZ_H*0L;{F#6Os10>xY;AuUMnhV8S#W z3&yWx&%MM(`ud28ibIcK9hiWo#h;9=vq0P1UpTIG!AQG5o<8UXQ%h4=+gk86)2x8! zrJK0I(n{Z!n3%%SqsG$i!Tp)UwJI)DT6iK`Gr3DmC1cC!ZbIb22hAU}$K7R;^ny;i-X>Cr{wS zv7>0xv>E#L?ThEnpCddxoO?>4(eT=}YdJwD+i)^_5b)n1A|ev*9@j8zaCc zLZ%){SFXuBL;;@nitUZI{0g*ABi9DlcRzH$Cw9{w+qtPjI_oI#;BmD|f3$w$u3;v81x5ZQ38-yM-qYZ*vmMeU%5l#I#{u zxh*@rQ=XEHLF1>heuvVkfvCtZ)*o$U?<|38^_z3^m5+h?FOqk={#wl5Sp?M^v|xGm zc3?tj*J6ZUmkn6l-A=yo>@jEpdtXu-U+n1MSOhn(x$*1wz1k9t z!zDIIq78FW+2CRPg0(2(Qkvz3(qkBfJJ+x91)xpZcjxN`^41r+PJ@7JXOAN|@Hr>m zls?MO3N`98PIC}f**mQ598j>R%irqSuLLR!`qs*|8gj2Y?&sX#dn*h!`3+%it;+^o zS?s(f3YE}Dct|v^pACjoWDNVlTCAK{UCJRTnEOwu@XCT5FT?I3B07l6NfU#&rc~q` zyr5Mj=*uh+6(4~6FHR#e`V}-qI@|~OP2Xd<`fwvMb5c;cKr^^FG(e*KHSYVLL1a`A zC)Os0ws`pL3a;JTfuN|H(9-bF}+KO`EuFw(c=J9pmnJ&nhK7g@n( z@`atH9Gb(&-yLx|_mG$tg0y5cxE*@N-4u81*in_zf5s0b;Jl$SqFJqO1vol8@J(rM zx!>c2lfvtWXeQ8_VeGsiDB8fQ-<{sdOTbH2D2BOfC$YwNgEa^*ZbwW6dBltX z=sC0l(rLA_N;^%RpOuXTD%UN~1hE|Fk6n42o~J?RIlL1_Ozi^;8}oP4lfu$N`5%0zOTS0Y(QR;BZl*(dNp{=z z1#J0-LifFWSQ?(QJb8sS-J3FDV9ejIr6oc2hLw2-arW?KCh%_I=&m#Hym%9V&x84{ zpY@to=h}99=C2AZnHEm$JIBiKCI$=~fO6%^!RxvwYeX?<*rW|>eS7!hn^p`NIusQuRNxv{@+m!G!UV*`#9-I1 zU3>wji;D~L=U19D3HWhHNJzlJg9lNwlo1=X=|EfGg2@=AH-!HpkZjOo||I z|HAS8eA{}8Lw3tESL}olBb!&x9_8;PZ7z`>(jHc;-wZ)7p0WOMFU}p^!#AlZUZx^O zOkaYVSKSaB9r+FcC!6TAhjyVx!`7^?t;9*?$3WkfmYRw^>zBgJ!UpwPbYKMb-I)Oz z$mU}tn+7ni0{l^|RCzS%&<6_Y=UD!dAMR@PnsKf7`J;Pr%i|&^&7K!ev2;J>>960a z)0+)*DBp>o=W{F!_wy&=|M&sV3vy>jKDTK>C&i;c<}LRasecvl3|6)d=ssi|e-CdP zOxQ~pk*B;QLf&`OR8F?v@j$|!K{L=*>NMr=KXYg&d)Gt$PFl2SX>E^LYj(r6N{u%& z+SGO_jh9a!X7L`PUC$xVH!^-_#)RU~z=rAy?Yi81#AIZ!@}fFGp6>sIB1Dk>}RtJJ`_fibX zRx7~zPL?k`>sY>0-m<{8;u<-O+=emv=7Zpf7qGV|2C;_HM2JYaseuEWY^%UP&kT=4 z-4GQ15HG^+AT<6StjyV9tI{+SV%JUd?NQjaI^#|n@Q-juV8kQ%2RvZMSCNt(fig}_ zP`C78*q9VU0jrA8mg(XNJuku+L1F&zd2s>0p{J40su)^VpTP$OZnxIM@0BMTaHeyU zW#3!T@Vy8zr^I~t&j zBa%hJE;%ukHyUGeW8RR6T)%JUMx;ttUzZhX7Wd)(K1jnH8We_Bm3pB<_0rgJehq(b zOk^A;uu_usu z59Kw9j0D=ih}}=7ExJa!Je~B7d7t?!g7R%tk7>Ak$^$oU+<>EFLHsdxEQ*${fd&nm zGQpPyF&p(#Ik2pRnC#HRr2SUstEZ_>QoH{eQ2ij`K`!I;bj29+$7Gy4eH3%&%toWe zjamN6(YIee*xTFlg`u=?lgN095+%6j6lZ5=)sqB#Zv+Mgp;PCM*u1DOl2X!<&$&8G zESwmTp#l02>ip<6tlcVI45}d^Iux;yfy#Q6mCj^}f~6-N+39JleP%G3$bP4%@_|Bj zRt7Rz$foo%fN(3 z{}AZ;hQ@jI36>-4%86=Yn<`l}Ocj*(E0>a*~@1BIDY+TDw;z7HaiWXeRdtqF1Q zyp89A%1E2>3>r(npXOf~lrLmfL_5Z|s$2v)teoq&bwrKkj=YZ0cZwK)(q#O`=T-#n zxTT<8+rlVVTpMa)CeuhG&Pyv7N<{;ed1k5>is!Eb*P>0JqxIIyh=0&+xIf;Ev~0$k zM4IfKYA9yY6qQS~RmD(({Diwd+5z8?GmHl)&6G+yv_j>gomg3^BB}5??iF@k9ter1 zHVm{aQNyJ#G)21DcX0|LV_!14OKTWK{ClO^BCMW#2XPS@cp3PDo1T6S{u2V87nFD+ zkyNig$KLKudE0dg;fR|?keDjIrpj|Ghf)J>oe293zkG$zoYODC+zXE$CZ@8bE zCxqN|5c&RCy7_admQiw992yM#KY+|nLSIE-WVgwX$7kS%w-*zJnHV-=1O|__V)EqYQ3plldt*2xYw*>mvh2K@6XO+WSbH23>E|e{(lZ8Z@7sOlOG?fcb~fc z0q}l+GYOLK-@7h6-?`t)lfEy>djao)e4W$m&eXx3xd~C3 z>egt~!5Id|QeXaT3-X4()DGoYJS$U2ghf4v`@?NW&rX1~ zxg(0$*2c3?54;M03>}Fji`N3Db}49B)UMy;B)aPgATdB^AAhnk>#49ZIW`HkvJ<9`TwO;Bv| zS)zHThFo*~HP8MQ>3JVtn~qN*_qkvA=${(2sPyiQM>w$M1iE(Zf{GO@GNKg-U%voU zt<`{yU^Q7g&f#V!G)NKUF+m|gOWFygeYZLrJu3$?@7R2QAdu;b63V=!j)4dEL!PF9 zo}NDH)Njnlk{S*iIE2fW&Y?}4wrJb7E$-jH&;3sqELf2H4PUZk2{(%%kn{ep83+jY zJjBN*@C}t()Gv#4HfSP(lNcAq%8qOljo6@!Y;akJOJ(ql18GYrWH2&Kw%+oT1okS@ zdeKH;Diag-o6_*VpBcGn{M>Z@=x=)azMnfEe`b*K zz}VCr6>HUJGBytGXFU<{BpOC$+T1Rjl!de?nS5~BatZo|`l#sK4&|LX!P3YH1+6N=P|qCksf;fKTtrlCC>{lz!>ibvsOZuX zB?~q~Y*G-e-rtTj%eEmoMuhxDOnI%)))nLS6-K zH$|=;8|?%s;MWC}$UFpFV*R8xb4m8!|HUc^VAH(Rl+WQvS)n$U2|- z_=tR_=}Ox1v}Wyk82-mpc zja5BG!1o4~Aq{wzPOfr)04mOkbp$2pM3)t4?lxUmv$2;law45fD#ogQM;WDEDEY)>C}@rv?2t$ zItGx+Gs;R@{k+}-(dRfG(9>h{LyokOEEgcDZHdqNW{erk~e<`-_Ux`^G4zajW zl&NY9sg?+7@(iq->5Vls}v(JZvIfd zXj8zi2b#%iH!FJE#qlvl4_;nAZIfB*pk{+~gf zU#J^y+My>7dibHROIe)S{RH!epGQ)Hf|F~SRnADy=AKfDmp8}w71d$r5QpKd_TuvX zXe7pD^L22vdnOaBAl;X8CYs%=k%f@N8(49uC+_;4MQU0y-0$zj`V#|@kQoRE^Rj4D zbv7KWDY z@~8bZ{=)_Q_n^hFw1t10D!tLUQ)dhsJP7vocIeu@FUC#(6Q-u-P|MC{jg-axgbg@% zO{fwE>ZA_;AVH$3Nj2UOX~8fpVkJ|xyf)wpHn_`T^(li)QnIo@RV$08Gg;8nH^HHO z+i>a3KDfDE;2Q=FA3mIGz~|4O&o$yda;o)rL#_?@)};dwmncW%>jXIDvx6EV$vJ9N zCnT&+h#}K6hJld{Br<(=PV=j#qxlqTRtBpJ>D+9D2K{7Kl9f&8$hMmWvhmJL2kpQ| z_T5>Tf(^I;0RsL%A(3h!B{>m0)-1%%waeI0S6yXv=46j^5cSz1z}-f0bgHV zs52sEWo^d^@K=Ee0n(7t$o*~j5F!73ki9N>GI;*X7cH7MM^I1@uY;6ka#!f@@6R`h z5%B#%1Gl>m{V{a>QcRiq7cU2?RKmwxqh6cBsNcmBX_+xNd%zb5);xhcP7^wMWWvHkDif^SbQBtl z;HyDHO95KSBg!;@wuXi3%}NxotOO%1C+?{yI_(L{7Hx#OrH4Q)lELl%GR&Gg4d?be z=R0%u9$yLNYv#jU_YiFQ^9FV-zllN)E;w}P5YC)A{jbS4;kPE>0)BmvYsLfHj>E** z1a@|Iu(7ehz5@qPu~K!ewfr~AWF_BLvZjAazH>qD$IhQVf~L)y;o`-M++Qg9pruWF z;^N}avu96LOab2$}+;TX*{BgqpTZBlM^+rp-xXrW`latXlJo_tOBxoSWQ&ESbzWl0)AuAg7cK5 zL{z9=5A!zc#gNGh5FVI}&5Y!(pW^{VN(N-QWd5f#6;4e_=Lvb zWn2vIkJn+>(WMyEeG4*D#c0;G7#g;BhEyuTvI&>5YT8x!-H*h~nX}-1(+jOywc^$j z-vR;w7x2r18XC=B_&s((tEr&6U#{I7uT3tG5qsIQAN2bZ8}!>YJ`^8so#>V@^2 z_9H1p4vD7tO}WzmjQkXnSqSZ@sz^&wZm7Y|QI()TrXcd<1f-=Tf$Y4=BM$di!UR7B zGJ{ga6d*u=00HEGUMkZ@mjR=3?olMlRjZGCo?)2O^Az^3xr5|{G}dR5azm*wp@omy zdJ+^XXNsY7T;WnvjHT1}Vp_MW@bO4PQd}m~azu=bYe0kDry&+0Qxt<2QEpg$xHpb^ z%m%dMP`7M8 z4KQ`i3QU=?9M4~d^3ANYw4|Jbb0SXv(J>t`@=fmkGSg`@6g9rUk~YyHO*awm_XBqw z$YKhbZ~+1Y2vCA%2}v7Hw&CjzpT+Dodr+cWRd}2U#Eb#wasAv&B*e%emZ(Er#E5ui z7Pk{mNm9Vx(GY`Xl|$2h7Vx;{iJi;u;=;Z#c%2Kz>!55%#4>2fBv2P;!^l*IvPJ8o zcJUF2ONzwY&8@I|+i{%R8weW*Lkyi&4Y~$mTssqhc_Yr?=(hWCbu9-kuj|;pW7{_; z-nkG6xPV_4TH0FJzxgQC)kG*;wk#*F8#iu1hc3O5lJfW6PrnXI+C+gXL%$MqD`~(l zoI8P*En9F;C*&@X?7wMOOmaO~y?S-%>gpZ3TMlrQguGNm0+uR%SWICB{V3YWxrw@Xa; z>q9Ejg{D-C*R{8mgLa_J;`Q;L1B>%-E0O>KUkKXH{ae|r{wUD4^^|S_zZcTvDG+OD zqF##*SiJ2R#?4!cn8+Ns9rDM*(U)*!(*tBEGWjMrw2>YYzT5+uJUJcOIuf{4ut3e0 z_9$IPhSD{4;rHYzHZ4DcEBChJ@Rg;QFklm+LbFk`xg(l%Edr^w2DUD~iRBZo;PLI( zm^yVDZr%1q-@bjhIqUbvPuD6xn=t)eeDfcXnUTdtgBhw{|KA`tf)c4F662FFZ`>-x zM<>FyoGTaDWKytU{YJED;EH31c5&NkO-=G_@fDSY-IHs-`zGX&2J`DG9;M^@)r+WE zy&Bhcli%+$Wy)|f6k1hH+tZgTS56iCr+#x-c`d#q8O05%4kyjhnV+RYC(z zn>5CiOP9D!APuTWvrU~q?(UVJ3d$WU1qk>t5V1P?!p{c@aj}0R;kl+&x#35F`^V?X zkq^@klI39`LGXX_h_x|+g#T_JIZ5{6I=Z@O)~OdfUnXPj`u#98w8Pa?L73Xx4IAg( zKvY;VBi}i!j+1$c8nUuTrju!44!0GzDQL(DxjBMDpWwx-JD5N861t5jkGB0>U}mX} zD<_^~Y{!%EzVHf7nlwdxd^~q8NPCI=DEu@8oCE+F&(l`Tq}`-O_(3o^p`pRzFv0Sx zjq1M#sPbJr>5k!DrtsY$DewL-!OC4rCglT-!`n}xeT_cY_16JZs#KYs*TVYs>u}`A zVN|PL9ry0tLs-B=ESxotn|#Q$wHcwJ?dVm{`UHrak)LnURlXD0|M+=2_ySPhM!x1B zKDdkW<;rqzCjkKgC{dyWLPA2g3qm5}W@cupJKhCdzjo~!=FXkV%~bN|&yN)=R`7d? z!2gb*JefCd9^Xxrw(noGXc0U;J-Ip0=Yql(5&a7&&1f4zj^eNWcT+q$`k; z7!7+H6U>@6iPf|6Tt=Ndbs9Bm*G2UjwGbK_%H_k(ibWeTe+NvK}0IZi)d3F1&%;SA+37G?~>S+Sf(I>bFuJlVXw<+Y?u$-7~dyC9uw?i+diSSUuGf zhd213M49q9fBqa!oH!1BeSOuNe;h=k$4;Dn@xBi#l+a}jLUr~(01?O4b2j17_LJ~` z{1SzW7l4!zF51i@FUZx`;s49}Vm} z@h9bPB~d4@7d)`vwCN6+98k5S>uTy62nu`w--kERpnhFEdE&=+ylm5^4cC5Oy?T{z zO;3b8FRomd1y)8bjQq#&0YHlu&0uC~3K1LJ$&=!9E5v66`i};3 zZ%tFEUMhd*(U#LWx}L*+vt#yy$KeY)*>(ODb}V9b_Em%&37L8*UAZP-94g@V2G?k_ zy0&xeVm$M`j|mIcbD~T2iA*~dPZB12L+;np*hLeD_L zZN=lG(-0M`K+$q0a6cP>SN@4Ov)2zA>PB#>(;jPAuRzrbWmIqZ@%Slr!lVXD1gME? zS42lBHCTfu^hEce9gsndQk5){DKu@ha`p!7UVj7|Pb@=;vPF=t_&W0oBHy<>?z4hT zN6B)|oaB9}cJsf6rc{h=EB0a4+|5|LbvkM^tjxaW-@D)Y89*}}I(jn1$0lL!n58&# z_!2)qZR#|%Yu}Fh{Z33wRTuqlS%moq6!!A*Rikg=#hG zVf47kOu}a{a+Af0cix>amD8g96`uu8z8L{xZJr5;kMD#j(vae!+Zo*UJcsGir(^2W zsi;z=3L|hWc<}c2Mrvv*{{|xFt5&UIB=Im_zkZFRq>t}vNLura8#i)ujLhGpgQ7Ab zt-qzErRvOwL5o>!ZEaD%etircJQxKE6yWDWL&MOnU0ZBf(jN)QsW3Fl5BowD@$mLJ zoH~0M8#W(8szQO%C5pk?#u~GxPlSz)9nx8uYD%<_&B{46ER2^I?YK&AFlD-ih=~Z~ z&;Jq-(GYgR6!1MjN~PGSNc3%46&0%0#~*W6^7_VlP_D$PUD%NQ{;<+XTSpIT4qigR z!o|2Lz`p^_5NT=2uyyqU{I!6|-jAT?kO}BNZWiAqkwApKW6e_RJ49Hr{RDSc_pJs5 z0)B0f2@{!gQvVwn7L2Dp_poQ(3i#Z+&aZ1}1GWW?P^o@C7#VBB^K>K(OvE^MNV#EO zn{ETqb!e ze=XRIZL1Do%jp#;R?6wC2{^sOQBnam4p!KBbP3m{ljHYa3IC4-oJbb=@TA2Sd$%0J ziW%$q`9_TzW66@moOtJT3zU$Mz=A{`Teoh_T@m)^(SvKc|A}x5_0!{IL3|70sne!l)55+;Oi>UWfmouALM0m^ zFu;d}r`WdR5Dp)AW98%sfByh9Z{7rRX3l_tp&|6ybEtl%vq2vX{D{Qp>Kh|6G=RP3 z%j73*(nFeWfq)D6)*x;7=|ej(?~neNx@-&THt&G+v{X)BNY2$SW(EUeQ|vr{2PPI~ ztR4d~Y{0*LyfiCdBtv=ncq!y^}m5? z!u{s}kri!SEll`xI9`WGWBZx|+z;=Ug2+6%sFSfkrY$;p+JCc+CbI^K%C?Mbi)mq> zM54(G^6iRoI;W$n%>~x`ppm(@u8f<2dHkJ-HQ z_vpxYnn-g&W;v8bO7n-(l^3*Nk={f3@T)+=@{P2)=Z{@QyXt*7`L0~KG7cO#fSo&c zaLwlXc}2EcIyyT1K3W_{-bHrr+KpbldST0!Em*yJ4L9EyGv*H*KXw$G|5}2%bEe|v zO>f9#EN|KKvKU#;Vm$(xk9>Au@jqn~PUV)!1VhNH7bsPx4B!2-RH;%hFff3Rj}O=2 zlO~(YO^76ZDah1<1|7dsAoq=53aS(2YyITO6MVqV+YbH52J}R7pWQnPQxh{dyHsRE zy+6i|8Ni#aoxLr*y>Fpxg(?_7aT2y{-+?RFuCa0_k0wg<5bgzqelvp1J)L}J_*Ko` z1pNFU`|g`p++byw56&fA*?{fuGh}>6!sJ9G#U~>%E}nY@8a#0x8nx}pukYEgjBBs+ zf;8G>ORl45pz51+*?lr4*?td1jBZ>x$Dc#bK5*>`9Gy!*o|K4$_;@5I#>3Ry3d?t& z!Rq}Nkr4ZqU}v$xt!;isejFU|oNMAg)!zyD{XnKkinKIVmlBw~RzsITqjC7UFAli- zV9H@0I`kE!sv zdIY*h=k4%W!X$OIYZ zhXjW4xNWQU;phLDGnkQW852rbOlVoKf-=IT)1J8Pejg*J_vd6bmuQjTi41*>-Rlpd zMdwB+;AGFAn+qac=Z;*)i>EI!a9mHa)Z~f+x{t0sy!{y7SMMPBWf<4ITH9NqU9aXa zFw$ccn$0;c(oLmzj-@JJ`cEKD`sB%zIhp?!n-2X7AXz~sC=D7kP@VZW zXs}kdZe4DMQn6x16fa&JF)^`d-ny-a9smKY&d!iMkW@Vj1wrH=Y`Yw zqjyV~S=r*;gI9=+R%)e5%P41r{oW0C-1fYLgt!=XPLsW(E^0Pu%?GTxcHHzHT5LIg z>_A*Ta~P8rZ9uaQy^x%gz^}gxWt+~(vvz@qJ}tf*+Nl9_8QGt|em^Jr!k|^a=YYKD zXiBAw8>S(RaR41%eb&!18Omfdt@TPwNyUM4*Rf+lYt*HHcgQ*H-+Tmf z$F6`wAv>I6Bs?yLjc`6ez)52r9`YKqM=xOn_b%5$+vT^$Gv5GCbjQsfhK_w&;B`ba zCJ&wuuS>W2eeYx8mT73*rVb_znujAhPGil11t?#w^c&L-+LU9}yiM4&bT`bcOyM4I z98oIUbs~ZBY!ES|!vxOCcDSu&{bUY*Kc#aeyKn!-V?1tNkhXmGnhA_RS7IF~?XIW% z9(OlyjO;oE2d-_v)>Zp)iVZ9Xv;cMaj@i&P)WMczd)^`7v|E&dy=&sYxs0rPq3fVF z7%{E?PidM$odwMRB*Z0R`Hb~Ayz3+*7r=-SBlrSCXJ_X(iwvpp5LqSLXd>K1I!PcC zc_ot+LqkKZ=_Jr~BJ6aX?kBG!Cr+He-o1OdjW`i9GF`cK^CqTDn~tf|W}`!=Hf+$6 z!OaW)Nvr)KQ0K!n=;R714*@6dE2mBzgU7|=Sh;c~Um!~6C-e=Zp$`fQ;$Bhmg1(U! z`H^inEyAQN>pz65j0n=g)9NQ+(RV6ZcWunCubH=*kD3T%29lJR%-#{qe@BKzA@o%Qe?Nh2m+yGo$MeT8QL}MX zPROYekY|!*v(|I+-Fswbcm#U_c{)eU7=TQg%6^Y1k|vo5(;}AM~|qG`9Lp|5$Oz8Zl4p=<}gxB#F(_xUlfRtP#yocZ2LRDY;Y*x_X71f z;UPi%SXWOU+PeDh$kC61*q4K_L|ZV{L-I4r+oFg(9@$upPxTVN697GZDeY}e@DL# zXWG_8--VhkD&h)Q^+d26o?YOCh(&0M!($+WDgQ1B& z8_DZKLsJ9k=@}^OqO?IvlPeGv8Oz^KUNhq261iyzxAA81_YL6bC6LB7=%sQYX~}X$ zsZZzTAnxbAaA@mEI2Lihm{|j%#-5ePo|Bl6!~|VcbQ{uv-?MJvHg1ca3nFWT_}B!j z+&dQ)s+ZxWD3mtR#OD>Pls*!ElLyY{t{Quf=!hW`dLu46UKQi#01I<|tXUH)SFOa-rAs+s+p=XdCX6481+yn%>Eb{6PL(v}N=<}_ z_~!(r4S6<=w|N?KYz}BfOqNAMRoPxfe+%?KaxYKDT#=Qd)4ZTRz;>C>;9a|`jIGfA2J^GTC|5eIf?bH@%$NmMomQt z*DCCHEZmOn;c}Bq@1i2Z`E%&Gq`3Mr$qFMtM{wh!)-~zr0s9uFd#iFpiiR#RM zho6#w6VlQYC|arzT&tAiCM0ghu5c~$hng{UnB*h!uw`uYUK$}m;dtr)ichPN5P1GL z0RAlW8Kvy-kL@|j2{;KEx{ruu(NcvO+0M^9aeAiLWu>{xgoVSocAefu+?jkw)3;V{ zP!YBcR=9fhI#T6ne-l_OJ2yn-+U5AYq)n&q%S*lqB&_ytK8h=6Jke)lXP&-PmM`ze z`>#OdV88}CK6jsD#)yR&)@c&L0;8~a@nRf0e29}wvIQg!Fln@{tgN`^n(VoWc<0)B z(>WsPw2eFMT1CecatS(-R5J0P=a9CX;*lu={UtI^rY9XccEpm!OZfTq>(^t-lqs;Y zwZo=OTeuJC^=p=4-kh08k*BifXz?=qRLCXaO270_~=KLxN#L`a_YD%m_3s!X%}E(swui`-LHkG=pE%Mt_d>Ea2yarly$n0Y|vmNa>2z zxJk(Spni;OxL3{|hq+@1VZr!;m^G?5CJboLcg-9=busIY3bOi{&26zy?qzb(%o5Ez z_hG+Ty(c-x>MSjSBU|r2Bd74^dR#oiu4O7`l2q%WXn^@Opjk+nOoty6(H9`#TYyZP z;*;gDG}Kj{`S0-45^!qVL^Ov@>CJy1+kF-(NvYh#;(ZXYBMmXvTCooC@@Ws8K6DXh zk6h+~{70WVas>(TN*|-)p;4U7e+qI|NL>fE<>njLFW*uM64v)Uee@jWR%YnfrzMX^ zzY`LYI0=u6h=tFcC$M8=T1Q`pe}_V@fSeIIf}TEYc=Ya69Fcz$Gb8SCg%A-I#Ybs* zL4yI(;{Fqv-m&%o=8ju|f`#*8@WftRXpsQ@uR-NQcHU%8vuM&<^k_7c4XCc7Q>RXF zyKo*od-mktM#MB%<4+(0O@f}TktqQMBIuL{c})w*2AYUCnVk^nC6H#E%v0z*-A|x< zOiWDpHFEbyix}^fmj7nkThf42e*BIgPclCQtgi6^ z6}3ASG8A&e$3$TA_|Zsab%<}2!#KLqoP;#u8GuchbE%Ija zexH)TWM}@uMftHJP0rdyA|JSt>?Ux#bN25`L4yR6p#lVaD^R^mOiqQqmK0jj4|}lt zk@#r|IDz~)7j|(%-_c$0h>_ZTo7kwHn`gY&n5hF~og`&0^$qb zoW~bbrXY--5KZmw|nCy-~8;$@5Q1YRAxWACH5*js zrZ`crW8wG6pPSbFm!R^X8Hh|qFi!40kMed6v1P>`lyfbIyLazm>(;GYJ4^(bLU?#M zUo1%`C1j>SCL~c&QJh$lM+*u>q9YR!lAAoUl@8Jxd^Y_-Y0ddK;@ zICVD!$8NsFdEY3k+;a|Pv-H#R1PJ(6AhXce#AH|)$sqZN3+W$;pPGOZ-y|W@pmi;nTbp9t z;+>GEe83i*#mgOWYchiVB+&y;<=62f#p6wQoaBy&aaZ9Hc!Ga*E+PIWP#hw3joa3N z$HiNS2#w^LZgOu(3q(cioyAHOMw&bgXAfOs1YE-11X|jdqiE^E$Vh+d9x<0Z$Gwhw zN6X8>4U7vtiEb9`}NQnJ#7 zhTI_1yN(|}&foq1*7E}Xdq`QmdhzlVcJDdNT^7<-*xYY7*?Z>+G|jH`{jD?~p~aL+ z@BJrFq?r%jXdv8};{o`x7A3nYh?! ze*8Y^7a-tkKr=dV2`R8P))5H!=YVWyZSz^9MW=?y&dkET&BwT=IWMSjYU^mT&X6@) zMtTEZ1S2LY4$+aZ?}Zq|M#cY)e3L+-g_-Yzgb-=NT*^8#Qk8`lPXgiZ`vMvw5z19B z%{Am?YC@Xk*OAc(4}FcB*X}`EPX-GsQ|0KLy^0of(!hWa&C>P0ARcVNXs@<^-HH*hG-&IYf-}YKbYY{>R>V07g-Car}R|n%;XzLP#JX)X;kg z9qC071OY{)NL4^Vz}{&pABqj6_uhN&0TKv=g!JCq^}BE0-bE2niUrDZ{NHjHxtTFE*)f5rdJZyB;?D!D{VtUobpq7)ES`9R6dnm7P^nt)AkfWh3+-7 zxWD$=YgoK!v5>xW>HqM_C!e53jbQw5$r7|}*%&K-`37HnI#2ix^hnk;iO-)Gu~ddr z$B!YbemxWx6bRP+(9lrf`Du7oPTd=2P*l91b1R(1}) zUi>SLU5~|=|NB9>##A*3;`+V|6V7Z~lO>yk^u6mJb|E27g8t8S6NmGtko8%iFx797 zm(H*{&(!w(6*3mkOss4X?!Ui^T&kmOZ0&?Hbvg}7iV9fW`)4;$65XkZcZBy=);6$r zbYgX>2A)1u(IUJX3i7gX=IB0H+1Lts?u75cmIy?+4Os`wzC(Gfy4P%u-hp! zzX(1q_qpGm0p(tR(+Q(Wpzq7wVQp)T@4sAuYnP(UD^1WNGCKzww11(6@aX^efwORM zG>I=d$t2du5=@rmG9i37>QW6#i&dZ*CI!KIml&t=f@=pcK_wO}$~Piz!OhDBe${-0 zNGS@|8F*n}C&b-Mz=h*igl%4Wt)H-8(wB7XwBOoH#1or;+XYK&(`=UH&rZihQCfDb zKZu0eNf`RZ0AZizdgqa#ebFGzQIm%Xal-d)If@ExLS<53+J-FDa~$@N#&DcFcLgr4-dObgVkE0duzBlF_QNtgj=$Ri zUbfJf6Ttz+ETZr0iBI3a)cfg^+f1Js$cX2QLF_x?iqm+wwMV%#k_I5~ns z9a5weT1a@ySsS|OgK5y}%rn$7=#|Dw6&08|{1mJFejNl3=V75cOR3ht$U2;!&Zfb= z&zf>7!2jF=kx#Unrwcy*-%P=e``F&oLi*j-BJvj>F>$c){_~mNVBOE#guHat$x@x3 zoPq6Y_F~`G!@rC0(qg4BNloINWUO4e5rqZCNJ&UVaenddBAhA{zo05;(Y`U3eEKsM zfAk}K{5@HPV48icoq|Bv+{JAMK zAc=I!M*^8F+vFckc_@v_AaPD&p2RnmL(x=d9SLyCU-q5^F}bjiXs4(sl#lj9<&v8V zS=q^|P6Hjk{`zad9p%$cKNF&E(D8N*569ty`;e1*3onE>L?jc|)Nd+_loNe35>^Tc zyuG|}^ypE+6@|X{u3fu?b3}2fD+&?Imm~kDpAf`45C(Gt`8+}mysN7V;*;+nqbLgj z)dO&ob=Cv{!|vrjTdYkB#Q~@4N*G8_k!=K z7|1=NRmY~NTHVi_0zp)kiE!#I)2x(BH+>0vM?1VX{xgKv?1#5T&cmR#qtUC$aJ)bH zYaxGGFPlVi*Zv&^3-r35wxV72KIq$GB%-5k3)V1#8f80s8w3RX5iV}z#FyCqSVL(( z#-QK;;q}Iq82D86GK=#+dg~pXoil60}eHOnFI+lgOq{K$%Mltt*4}LxP<4MQ$UtYt_P;GpB|4+aG@T zA%0l43}?@t!&gk4FZpI6*8aK(i@y2*7tWqx_meH+Vq#!tV+Aj7ZyY>$P?$uA+!<&x z9y-RS7RBRV5_9-45@ydvZ`Og(&^2S{>3M~IYpq*0gd6+4&zv_G=dVNvojSq7P3|GT zTf+ZX$O3Mpd!5~*rpNgIZqXaG>{SoZeSYeH@Q*7wl^nW%C}bd!mJ*NrylmmAWEnym zp;1FsT5L}L=lh9#!mBeu|Iw1wtPZunyKf9)?Ux^3Xixh;evr+FYSr zwgX{1!DWQ~o4eo_OrEy@&Tby~;j4LgwO0#_>d_pp_H2OGfU~Otefz^c0dUdgMUg7WW}EteG6UO{ywFYdBsH?ckv5ilgV3UDn<{sFtjPaP z_L(kzKsef-A!l8q?Az*(8}vrz^ZbP5v0qwaOFt!$OrqoBuq?}|D*eIMJ2UNGPIw*+ zM62E4cuOMUYfAwP3xhd*bLxJN&@%LqShl=9ob?kd|XtHK5A^kKe>zDT_tB{pvl?a(aF=1W>ge~!=5fV&`m_A)iDOk^Q5OqN=fKVv7 z@$T%30p8ior*YZ$1j6%|S_s_QML4VOC!?!16=eiieXCoRWowy$lhNO^c2{(o4@O1l zGw(77ONe%%B@Xawo#G0R<*ZW$T$+vGZXDh83 z=YJkd{uJaHuN*m(;QqC*m%(?g$0-V&31agaFe8&4W#H(#9Vd|YUqO<^)_9vn0b$!s ztk|s>54?(|D>cBWg_V6(Dsy86TNq)&hbEbwmP3(|%Q>P`HC$|jmju$zN+(NOi%wbHY8KR3X-Hc()#T?eYK`$Rl(EM8T02{o|zw)iCe#Vol+@bdwHTXKg^l%SjX^gNu zm>3%tOG#6d2Ba8ZQSWqg@Yh6)!YMs#Tj5Nw!k84&0p$)j;{BR?EcQ3=1Vgzwg-ejz z^Z?fZ?X|)s0An#VF#+@-cQEtS;sA`#Jcqd|NgWSNgAHTyVmT$n5xpnw%Ze;r`>r7hmt!XE)ocn9ywGL z6I;y&!T(i|c(m$PZEUJ2CU1}8fsoPiXfz9OXX(@l`#BUpd5~(fyNAhUJ_436PnT4* zD=dK$ed4^Y2AtQ-=_4xc+7#kGA{~tpM^V1r;TL_+%d0fZd z$sWJeqmd8Zah2P%(Mo91bH=2JnqUR#UqJ@Gy#z36*CX9$H@^w~MU1@VRlbT1pk*!6 zN`c@)dG0UT(NV2|;XQf|<`>xC`Z!GTLJy#Z6MnzLv|Z$q_)czuiSB}*^VPxl=e?N; zqVK^L7gVYwRL;7(^tUbKYVa=pY_-?J_&0z3hY(}He1ip3a$XdD9q|HPHdXQU=Z!Tv zx*^TtC1`+O^pyhX<@xrAJ@CzYzCr^D8tw}kkoNmX3GWt{;D6bESac;$tseqj7hPNT zD<(bhggTiV2W+QA#l8JSaJlPZD(+T<=`chR-Wr}i+z;I(j^YyDFF?h`=H}aXc>>Z5 zbio3cJIun*FhXbd(^^&jS8P!F6y#nsDZJh@O%#xZ)t-dplFp zLD<{!b;rjl!noVHuVRm^I;mEP0Wz7_H)~DsAll+b&YM)8GRNk|W{KYn7+g+Eu%s+H z%=4Vz5D|~IM4;X>;$N@#?z;L?rf)=i>?!%MiCnwMg`bvaP|+#sX0UGcn(fgSXJOFx zKfjrej6ZGnqt?0H4sBJ>s$Xw*rs{Ok)9^}QpszzrDDy{~VQe%qM_UpE>!c@!^R(s6 zkSR4pr6|*!@&XtL3bOL^S+&~%7{^>ADTef<&*5rf5}L0ZOi>1{Wbh?i zTV5^l7$%8o3&hTtCIRg`^`ob=(lv}F8xVpXSv#I$(Eg>xI!$$l40!3g;`nb6kHtUH zfNR%zk9&x5xM2|rAd@~qxWj!bI>bDj z)CXY6Q%$Eui^8X10&r1|T#{v|dHq=s1N0Vxz4)SofzFUq&(mb2?+hB9px#0*%ER9G zNKjo6G&~AcI5Tqkmr7C^?Fd|ELvZ#y2!{Py^5>o-Om`5?pK{ZZ^ATT#(5%1XbeOy5 z=%wc}WGTU{nDZ9OLSPh2Cmc}XaDg*#@oXKi(o9ujElAASRyxyF?(fUY7+JM}RSnWt zqVp$z4vdV9L`uK9?EW;268<ax}DSrusWiIobkA!bYp_vY5p;;p+R0Z&uo(1stXB^nUw)(a+#qj+ofWUYAe z?irmGtz(=EmiN@bcSjZSo+ZqLc>E$hmWMzSGYJft>P^wr_UY?@FvtHi2>z{g+jYzd z%OeXe_CktBCTO&thUJwKDTCL6{~eg38H!d*r)mC=>PZtBxVK0Q8|3Ere)y(mExG6M zs%Um7=P*Hk5O!l0d-N@1WEsG7|w^8>;s74kHQ}hy8O53TnaWXla z$nv%rU@<&O_=0rXwb$yMa8TQ8fBl}W~wD6*PM-%>9fc`z`pye`(!s}@ru z2Y4K$E*QKrq-s+oQ?8PhOF2%`Zr0n48dj|=EfJw|!}+6Kvn_w{6PUBp^5A9f{s`xL zjub{Z#xwG}D5pn|eIY>VZ^$CB+RbU)>K3J2h9cSA zJT~m)r;^Js9nNG2!ld0m0aCA;YIdwJSYzj?C{LgHra1)plK zVj5~^QP4DePLSeC(G)`ti@2!Nvl**D_3UI8`epqaXphG}An`<<3swjXG$R5Z^K~W1 z0qP=~$s6{o8^>0Nqqiev7~CxRn88ZnzU|onbZqQsaJ@VwKff;8HkH0j0kwo=VMttF zyZcZAu|T+k3{?ieSr?%}JOv4fn~AE9zG}M@m^(%-=aI&s5zd7%LRB&*}Yv%}Z(F&f?*4)YxF z{99!x2m@A>1jQnMMj8CR3I0Kx(_TsW;Peca(?UA%nO-gGs|&Z!;o3>>2KjshB1t5a zkbJQ9Ra!iu{Zr>^BisjiAx6hsE8%_NF;%TQQAT8;mYJ>oG=9)~c|}mo9UJXb!eWGR zpXlHm^?^z32WWXfqcc66e(Up1$1x+-;Hf$Fx93d^Sx<zXQWR7$Fl(^C9RVQLpJL^>Soqc9p^lwYKu*AZY!GNXA%UhiPBnf zYv~9r%yXNtgE|B9ruQD20E_T^nW#{~A+{wQ%tJg<I*Gh*JVUrX?AaK zSx#f|>y@#H~q3;HEhFX!(B9S$<3p=PzqeYi1qL^R<62=@eC=Z8 zw-lc9OQTiyFKLn@sY_$xFgCFF(7S{`5}V1Pd=OJ;i|lgG>DMP#l3j8>|oQ3?fMCJx4tMY;{fj(I$dHH~b8z1l|u z=q71|W(my|lU!7Rg(_9k^18&|0>=~M$lL_%3f4S|Tx^d94iyg=09GS0EJ;?d;_F&BJlMr;A=~B6=F`kKu#oqW5Rs?3KG$?=j#u+|TAguZaEn zzSle8CK8X`5#@sF7h9o&@grP&(D5s$JPU0Js6eJkIu6N^PRZE>1f*#~yC`)_ruPn5 zM3i19+@9m6o%va}>JLjhNXxk;jpQ!&UyWwaHgivG-9 zOp!x~_GvIpDP#GaozbbflA0)#Lft-*t+k3ZBS&+;Xg(<*^&JC%k^w>wZ!G7gVC^|kToAOoQpZ@JCBrz@84+NofnhGla( z*%CSDr*(K6J37l#$Y(uyz-Q`&JXP^8k8b384Uj@+zXs!^z3= zPr;y=(7vv%n*~3YS4Bk0FDC#(JGqHZN7z&QgCd!JWqBe_?YaX0=55;b1UaChW5|_w zn0R{=wnu|?!7rSPE{`PV+f*4gOn0S^aftz(a`AyNteu;toMqQ16i16Fw(~uw*#ZUJ zGPzg~r0wJ8ClN|yzlm-zw|^UmdSr4`w53F}PBXQe_sO3|eu@+HQ!xps|9ShB>17+f zmtPUbh2WQtB{HpvzNHI|94GP&m5RKI1YIbiOG}P))(Fk4HjY4UGi?T%D|#Up#sL>3 zTAIxBn5lop0i}spm;ik@C+4w5(T$Av-v{B3r=smOg;4*IB=S&=T+;xj@w<*eNRg{-49W6%o0Ct!sf8oJ%rCETt}1NqEW#}Uu;>2#KRpAZvT9UJR27&N}Y zX_8*nc;@@>`ZRlE<|H2Pb5*2p?tU(&T3U8ed_z|hkE4LGU8$z6WZ-%EPFS|1tUZS2!%0j#B~c{33vzsqqyU$_mC4F2 zzfUkzgV*_1Dd~FOSD(Rsuq|_@7R1-&-wVrolqIINl!BJn<^s=Y^a=r}rw969`CLwm zrO+tAkn3BXP>RX~E`ul8W9bXib!^=nj0fefN8BVA&`5uo1!|r&0K7&7!ynsl-JXy8VB zpMNa07LAUbxp`sE>gBtW32V7e5YjviwQ-bI34P4ZR{98ukpsPI&iI9CTp|x&PQx3) zO}v^956TUf`bnwbxy#z(U7tesbAM;rOvI$iewzq=qK2O*S@H=^@dL#kF1TqwTGrbz z6UoJl`f6{73kt-Mvr>Pqjntcc(x0t*L77S2OXVDz@CJMkJdk{gPqC^gR7(7s$!m!w zo5nyzRZPhuq;qV=RfXGkkzpF%gdb6)Cxof5{1FdP>TsaCcwL{g7yEf0u4tNw@@^zi z9WhCsRzFo1A;k;6$#Nq@)?puWTjPExRHToig~NdP>kZ@_vw2!N*}d!&n?G9$CoiB97T-X)K9~DbecDP+N{R}Bh6np8nHA2@05E=| z6wnh{*xJ%;K05=T-a6R=cAd5LbSP+rNrgZDU<*9v0lR;k&vv>Y^%~{A^>Pz1V-Cu4 zSql(JeGM{=0R&D9-m__I*S%(Wh{(w;@DgT$jFw1x^hkrkk|Z5ge9RxewI^Y@fcn8J zj2cm4QoR|)y@s+=ivK=Yet-&QTJ$`4cW^Y;jeX&QI~#iB-0aAHo@c`ir0KoW(@M^_ zWRGYK>fp>IXkFUS_k`Np+jo0I=W_Qfi!(Hnq6O7ejUIF5PPaJ;qI8ApL=fPEv1x8m z3JT{dRuM;X6>jsruP|OQY%q`BK6>x|d{^RyYv@wSs|ZUFZxBy|FD>;(MA4qgg8_e$UkgDfnFk{3@Cvux_9Vy1GM`GlTk^nEhSTMy z^73kS%LlaA;x)kgT7rn*2Ls2&#kp`rh*UEC_qSfAOG&WHTOvt7#?o^T^yHh4x_)T? z@HFMjvNn`g78w~w)wx#hv`>7^#SXjSO%B0;#v%kYalT{4=l=;MJKp+&T; z^?u`sA6-8}HCD&FNiOt-$N2s4T0;V?UN%wdm7jnF#-oltM8ba1If<^0lyJ1 zx)#D46fl$P-u{c)K6F^F^qwT0;epj+$_sPm;tYvks!H!QgZ032p?Ey=8@a<@(D`HD z!hW+AcBw`JFeF{ywi|FkRM6;bm9+!?uhJWI*zcaggd1mc{45tgP4#>&1S z@Pejs=E3~Dq&L(2d1`V})Y1}1vs#y0yOVx8lie)*hSlItxXHkcK^6+zh^ zz8IgP!I&J2CjgV9W2n={V@e8bA5<$qi}8_=umEB4)KqBFXRXa*6}{@*t@HM=&Xb=& z?~p9H`-gQQWXb;PMx7xWi&1AZB`pg_ZvZ|y_uFi{p52$@1u!{tq@!2)8IwWS4nKcY zMG)al(*w%f2BL;`-3qh1UleojP3gxBZ>F%*B}Eo&Mb%qxxh0Wx-23zU{I|H~WqGU` z6)yY~1Zwc9N?^YNF!4&2yW>yEET5|bo6g!Jf{KX*zMi9-+Dhpsh$!Ea^)eWK#YgG< zPFADK4FUFl32kqOM?^vbMd2dhvS5t;igrF8mRT39OJQ2Q`!QC47GZv0Vsm{W2tp^~ zcP}%>rq#m3*jlPJ8YXn=AQu-tS*TpPtYMhWrk0zkGpjL4_-Cs4MyM?e?c?)IN5>m+ ze=6|%l9i|S8JadIs4Ocg!I(IiO!JU9{Xq#Tx8V0FE=dAsyI22L9$e4VM^X6xnvj|T zh-(h~P<~G?a6q1~HA1DRrw-KbLP56G0;Lt7$V4T-+bjo&V_tJ1B8e(<8}&B4pEn?D zcbW*xrZP0z>caOfysPx_Tl#k57+OL)#w@*0fAvRdUR7n0R186n4cbfuCgbYf`xxMv z+gO;PB7?B}qZEos$ zryTXCIgo?Jk#w=fA#O$)^)~y}?KzR=B%1WDbrJQ-|uVgr}nNQ6k^{TOAN1XM0GZtTd zJPG}AKezS$-p{=GA7ZF2;MbEd`;C%2xKt$2vsm$_(B;N+z{4wT*jlxh&fTHO6 zv2wL@9w zJPTB>)I{D2>Q>KWb^~VsfZC!Bj&s3s*&?Nm8-IWk*F2kel&MOKo~}}DKDU-_m|FwY zdMonsvL+4=pUQCaadA}c=M~-sPc#H^_|W4a(8&{1@q=QLyw_ilLC9+~G@Ns}H>h>c zo(;dl_Wx;^gJ&0U0RVuZLdwW`(>a~DjtgFl@4sP@5G%*B3cdm>i;sD@`hOwxF1)b? z{8bjuGYsk4&=V{FJM)c?rWAv6aKGf>!sZ|S-&RP(Hdt3g^<_VfgpF<<>h^}R1tT8mhs@bRAWoT2G?|#4m=H{RY?HG4B6$bXO zXV9)yB4Kc`8hTR6Q=*K?lg%EJPkC`Q!fgwgudk&pi!{d5`(D=HfCImF-EarTSrH^wt;(rVEwxrN$-XzobG`Qfdn`~T z04^nDnGlf?S~CiKE=F4jrx_#vbik0bNOzGfC9RaVL=^UVxw9c}_A)juK$|pwYrX!j zT#^657L;CO3ASp)clPk$zU=&FDsFBLnVV-oO4oJbcXVXcJ4{P@zN*1lDuh=ak6iJ1 zf!vmt$9K@nt5q3c+H9aA6Kym62_xWarRmulPZ%okti$HNtn7cYlHvSN5ms0m6fBn< zUDvEC!h(qusr0d95#$>-YLq+b8U-W3<2T(EHtI1*_vB-g$lBX(@T0g zuhL37ZmqmQI4A+4)377)_60M~$lFI{2vBO(x8<>5T}afx20fB(s9ZI2^1>n}4S?n~ zKeE`>)Dfl&oiF8(e2~P|!N);{5sdI9Sh++>IYPUGrtVb`>ZB>ORTacS2mQ?XLUi>L zZFXRC4Zjj4FtR+qGYk%y5YcCha~@wtu|%3B{V=sVGTcy6k)p4UgHx(o<60{_57>7FkZB%Sy#`6*(}f;gMC97gWZpMbTT11 zA!Q?oY7$bA3P-YeDhi_*#pn|U6n69*%wd=m9DKL`jnr~A>H-gBLwCBOYTFehXE zPr48<)9fN~gJhyQCeUGxLbRMK=mmZ`L{Co_n3e>gc6Mqdr>so& zwaO?`3_g*JlhpflPeHr=o+}~0E#~Q$d~f`)DtQ=?B}AJ71Z0qK^+kX9F*OjH#>3{Z zDsR8qN+PuR>Hql!r8Y9N6~?;J*Uc;GKiHZGHRZm&ueZ0w!k z0S*Q>R- zF5p083>29791&!jt*_E3e_WY zpy9vwS>_)<9rxxu@8m>HwX|)TfCutJngJq%8A+x9wCVs>_9V zhge__bYZabkV%fUrCkS2oV^qo8`i|eN&6pgAc>1>GApea=rOG5KNb9O0r3%p^sR4hgl3y0``O;EE4pi6m-j zQV-ZX2=3sZnSNnG)%lB|yJvs3iTikeF@8AH(e5&Zl}y0eRyJ}ae-Ue>AgCR=~xw4`<2z)o#r8-}UbI*46cgZ?vNpITWKawG) zS^xIW4w0nGFQun^3iUx_6#8&;8}DTCGO8@5F=rBw``F%l*%Ju?YYf`+|jp?7CjSli;zsF zRT?D69K`d)ueYNKj9^<%`5%D`ZX(R6*%GZS38`yh_#A5R+u;^0{VQskQ&msZb&2Z| zCT=fUPcrp2p-yvTqWl2YRlvnL2~lVsHB5Xr=5*=zME=LbW@r7QAZ?J8r3}p>NnR{I zyyf;JwA1c_S?w-ZaNH{%$+*(pt$fn#!1^;y*n4pFXG`g2+2C+c>jH^gf*>>~|mE)?IxEW)62O+I3)NTPn;GH0`;MVmawPtdtzm0JW87S%~<5cSj?-UKBbu zX5wN~z_#)0Hd@C4I#>nHeN|Tf8JXwtoIjS17E5hCKLQB?>7Zh5bJZ86q`-gweg_7t z7=KF?)?)v7@a(Mf;eNr#p!p@p*25|4H~MVfYvd)I3onu4fha|@2+$XY zt3oxLhi*${?BltNQmdieN0S+>CL`DnTi?T z!?~MOsUoE@R|T8x{GNs-F*HAguQu1}P?N;lqBm73)u)8>R&2sMXuc{U&EpoL7!f~9 z$JuFPwWHb9beumxj33;mE{02OHowk5VTJIRcIj=ouD7yx0rR1+B&XFp$FWR*`U z{2hLv=V(KC_Ei- zXC2m~EM?C9%B_W`RQ(GUB7SJ7JvjMdsrYOq9j>PB=(}JWSJxm9d~{SQ0k&s4qvz8E z#jIA_3C|#d7S~3qjIB*Ujp-U>ELNPxLW~t!E)wI}B(2_p2_B|T!SX1PYHjF06zv*Y zaWE6Rn8V0}WHCqIGyea<5efv>5(PzCuASbUiUcm^$&2=x z3M{4cp1C;{DeG7p-dbbPAzfY1CbDxoG7zBJe*wJuCEd4w89Um&2p^|DO4iM^RXj)n zS&6La@+xwg%X(`}?l?2hngs^t!P9;w8(9q!_(ya0svkyd zuR^_y>nOH<6}yk?9dH0D%!xF$o7WWmwbhB0ie-E`*@@TWfTiE;qb|VM0o8dorVN?M(+vk!x z<#=v83U;e0WN#mCa798?(ns)d5Y+xcUBJ7Nby^p|vnE|$FUP-G25*jvA5ae%=}3zn zI2I>22p(&KsZcM6N+d&lTDro$nF|+4gwp9u!A#ll97OJakJu|3C+*dqj*=^7B|kl2 z;?)tza&wL9!@xeQ=8e#dx9#s;M1;#$i3Zq%!3sNvIyESBy*7*Q{y7B68NA8( zxLcnr_yWR#8@Z~1g-@$?OOiWtN=g*`s|3t?o{^Q6MaBy(v5vqb#rAwWTGH#Pd3Alw zDXHPxdU>rBi~H#?n(=ipY2z(qaDv=&yrEkP1ZRa)3HC-IBNgU;18{${1-spZU$O=z zw$UD$`tF@%F8HSN@s!5RsQ{L7ljG7&xP7dF;9Ei8%!C}MC<>_2PwajAfxLbA4y%*cg|F15Pna2G<_+|RXEERp$;`yt zH@6D=$xXixp-?4#ISNulXu-op>W&7;qo{FTX-P=!W?NROZ{12=P^5nF?&gp|=DTvh zngt9Y?&j2KESuW?F6ZTb!{XOCrTXRaA^%%h*qd*}g_#Du;fM?d7Yx1Lh%xG6tZK!J ztWtW8RQ)m6p{91&%vHCyvnbR(z6|zwHi1tsbkQtCwI*vTb!w`$^MgIZ?(U8Ajz3Oi z4+dHQHKu7f)WyYSU9xX~?cct?FBROaM!^Or78`qj(MDV~)eiWxy7 zx{w=5Jo|0SPq)({=Z4>*hSLTrU@CtLi;tIJ5EoHfge4}h2xf*s|3xP@>0s8ir0DVh zKgyBPU3t+@Hv7pZY$wuu_~Zek2z9$uLl@vEGrT&!cHB0PtaifZX0~h%6LmHQRi1nw zUJg6nTvY63P=C}kPoYxeVO>jo_>b2xH{RSMm}v31k+sngd8Ph!t-i_fY1(yIklIP% zsI@Did)@Dbh_K099!xXV$DOCH9i^*=-y%Jg{Nb$J+o1leviped)$f;sJkLp`Rwa~X zPH;5KO53}y0Jd@?&fGt)(6;fK&QiPJq(lq~@*nxB2`OD&e#?&eq1=}@@U>U^R}311 z)3x!+2-$fc4up!U*!wn3|)NPL=jegFH z6*WpC3tPGUbBn`!s#)`Do!`T#^3>TG+94d77zx*{#L<@+8@Me3uFc-v>UQFk)0ell zebU5eVw;#OfV5XV%K31QWH<|*IQK0|_B>@5!Lu%iBKymU5LR=dFU@dkD61+c|AT_n zWibEo)%hd{R;Jnhg5RR?3~3_4Ipv4C$ZHYy{ao!fS3-O7%kTBPL1!Iod?-2t#b=2y z9$9p(zfX>fTBC02E6` zkHksqPj@5`p9s`3I}kEeGwck5_|Z`rd4HaW>V;c;h@JfZL=qeFN6b#qNT-a`x|hztLv@tWUDpRmjON^~ z_=L$*q#f=y1h7zdfb5zkH#sFWf1l&+Wi2qmC_0ex+N+?MD;uj$(N{iRe7w-dMa&=;}d`jTp7&9QizWm1(-%-L){B9xE`FDG;9Bnh3s1Ok+_#};t zhvtP*=3^FMh!w(dx*|Cr3^{y3t&OkH_x}WZjBl&+!+c(kXbr4c!ER38-LPvpFSMGT~=QMpIk}e z&J5MGbzR5}N6E&$Bo!f9BsTk^6g|+k2L~TJuZ&HfrbU8n zOK1L+5TfLF(rEYDC}SNNkzt6H)I|VUxM{!9R1vkMasS$lnWO(c_Dj3no*rli)np6l z@lV=$TLdQt(apr}G%Snr;ObFh=e73mr&O2-(P|rjKTi{FcU}1HITDCm!g(D)$&cfN zY#mWSqVKcR)E%uUx$uh` zk&E+62#k(SgzKh7{^N!a7ACAR&?8-IhPs@XH(kCm|Me?oR%jg%@VeSFO^ftkWsk;h^$|eX^W&+xD}?+1?+h^-rWM^zBqh7+5DTT$b(U)$ zRge&Vd!U$bWQ-AmU_uriV5EWZHE5l5E`tOtyS*EPr#vNmv{BM1`M|fx5e4Dym}cRf zl!D!gmS$Uj;fiSzB`T0k_O{49icOCdO}$f6e(zHa!ekWA4-@3^P?jDKN?}UT+wEz- z?|b#Vhmaa}*4BC1PMH?GI;2Xsh7o%Ih2?R2C|1bU*ImI%qtwtdE11K!Q~dF?f6hKK zDjQkdN!b!1Y?XBIx_WMIZux8P{=&q$;b`~uf3c_>EjGRtt6VG+4)VYExtXOJfUor^ z51Y#kM*!rA8-MgyIzMvOM#h5SK?*{ z84Zlz-&=E`(ussXqP(j?W;=3*YX0QF!6?FkV+aHIu&eFjnBxE9XxpwZxyH4ax=F^) zT$IbY!sSGtQa$)CeDphM=D{L%AC*xM^VMARL#-Z2z<652#h}Gtvi4q2zIGWf<|kfN zRjmDas=BNVjZBaPK^lxnTXeO9%gE-vFEf#;LC9GGE$C;C^NrhCO>X3D|M-=E^D-v~UV}7ZbA>#1EYRk{6}ZBnkUP;v2>Zl>-v35e%`Dphzj! z>kB`xR*MRTs#_pC(EJjUm4vMmMLsIsb0U{vyjH?(pS2vU61lsMwU1K{3(54CG1>Q) zfkWNZT2*o9>{_hV`5)p1BV>e3&u7@6a0I-tljOu+^6m zu9#qPhBHJipz7}QEK^art;M*`VlBt>X(nnAV_9n7cQjqBrCHiY3v$4EuH z8`M%os8Un#ywy!(te;FPQRo?sC(P)Z5hq zqqoxykF*)MsiPryVliqT+Q<~xZKB=nL#@e_9a7ui;}4D*yn9b5Cd2XwGg)(^*i92~HM}eBk*jp6tvX ztO$!!%tm`ckxeYl%xU9{?ZU{kLVv6n++Gf;=brxn)kNSl@pwj99wv4K>a?U~3G8aK zhe&teg>!>a&jdR(yWbmQREIlUx~685^yfi==9HS)#Kq~ZY7<#kWgFdjWNbCdt|ir4w7Vzwb>eR=1*NI94FoR2lKiNWLX%9cH+Sn zLsi$<6jt4|ZXS&@ZgPsSUus!2YDZXaePH?acB*cEkq`2)QU|xnieBF@JUykMZVP$| zq*rOjQpa|MYCX7^&mQhmP_&3XB)4VW_cFmuCJcCuFYVrfJ&8|NA(#0su7dOSpL%Egv;G}Y}F*HTI=1lP*lQu%HBu#~bH%tA6eDkYz_ha04!_`|P z{k&LpZRpji0_o$*Sxr0C-IRj~)`~T% zqMW{MEPFMQZobvQ#-NahR%rIt9B~h9Hi++eIv7`K{hkWt9-(}EI1!UJ)rc^}iCf&^ zHZEL18h&R>dQ$v@8Mb_Et<6C95)GxJ<7#d`R3v$?%l1zpYYzY5MNHzFv0D-FVPl1vZJ=G#4LRoq&G}tAwXsY)E zd18XZO99$>k^FrE$GR15yss~S?wx>r(p_3!C~6xK{>$K z`0>7&5YXyOjW}L%FN!S8bE`X51l9wN+9Ka{_tdz`PEJulXS4n!^h<#<(m@^j zkn4Y(p_Xb4gPT?GfcNs>+SNt(N|=*KJ+MJOYv^g`pceNl#+N6U zdBR01aE!EiWCHjnT!iIGA@8zOe}zB0j-~Qa5=|do-`_i8nZnIM>zdAyv+Z1wwY+k8 z`#uj7B;KF}sbDj=D1$k){B%&%trdCg27v}sR+JTdffjCm;jH|dCm)p4WM=qxC*Qr| z^6o-y)BBljhlZD}HvGZOlbJ5T1yRUW4>>5Ot(Ur%7VLzyx8=*0x}X``)GAKpsOuCO z;}ceaI+tjH{?PAP5 zbg5$()e;IyO^eSqh20Klmz3oR#R57hYb>W<`ePaL{wAh4astp&QL0o$K!!rc9v zMGElqkQ$bWP4=#xH4K0gGdhdh6f_b!GP!kT(6BJsOz1FoHSvcHJOecSEkz! zy+3^xL-j~z{L{ILK(BXXaxY448_8|%tA!fh3-HiwiL^KqvVU`cch~SMa1n$rYYMXZ z_@K=!SX%2DoJLw4i;bE#Betfgv-p}m!qFbQmSjZDzAm-uo&@2-y4zsH#dR@PZ}e~yc%}L&Gp3K z0%c7&o%T`IOvBH>Lcg-cUucds4^O7OE!Ms64N9i{SiHVARX%k1|>GKaPF(2 zRQhz@MmJ^}6ym5_OQi_e;?SmQVgcIey-w{w@(fG@`?gPWm~0KN{$rAOFxUNr1C!}# z?y4y%%NjTwIDw}&0kAegx-vUle>>tTU#SDXV7L+o4es~6P3Yw1uf+6+t6@LlaM@?3 zed=O^hkrQhNzZ$&`&S)NSN)f?Gz%sp1HVAs>+1UIrHtcB%zkC)#$hwgq5X01HQD62 zlK~eafWP_E8R7^tM*9$$yWWAQ_eeDGXYRV>JPnY!R!i_Q^$xe@Y2Sb7(C%!!lXF$c zjV@C{WdHltyG@O>O1}jF?oS!$!gjmvTVw3$)cJveC41K7h&)3*fg7uNE=q0}TuvUi z*_bF=8L787C9>*6B6Id#hz9uB_A~=z9mWD;q}HJA;;aC3GrC0`S>y<&3mD`qx$dN zY3_o2;PZ2G5OL-pIC_w8#yunipdA4+}6Pya9Ht{|%PbHiBD< zNW>+~e+gYrnN)(oqAB^`enltA9hCyHE!K?E)Bno-hQnDFgtZ^kV@w@h* zi9f_r4Ej02T$X8B+|>(PhYZ6tk8m6;G$P_XvXnHzMf3XG3wsKiA6YO6^EOq*s`Nj$ zHAXE#{o9LB@2zt}o=fW%W9_kQe9y`e)@SX*Yb{-%W+I34^k`cz0AG#{$AM$#aUm*B z5S-7`08N8d35(#tc(H*ktlRZL`yd~%FUb_92FmKqFr-;HJiPZi#5L_@y6>acU#94H|Gy&CZ zMHsoP5DRujTtBW~y&$}&$#XU-I$NziCTe|n4(H!(guIo#;WTtBKD}nd^jhXT41MBS zwD22*sy|)B>JfLXFhpX>cZZl5kw9i6#*LM8vEYCQc55!9ixfC8xehumu)rQ&1Umoj zzFB~=RUEK6U^He9Zw{HNSP(OI@+_>LGZ(uh%@gdV3u_eTU%1 zA+NB$ib|+&C1Q!m-NeGwVSf}XL>91N=jz(EC@fz1Gu)i#qgQVO!rQYB`%z%Ua#y&y zTOubr4@Zv_;Z_XLwf}JRfB7}ktltDG73)k;M}YIM5T0VNi+TA*JTkI#(6*KjIy4M4 zujM>RxCNZ^+(OovP5bjO{iT-Xl;;Pdg$4WZW+UyMMpl3|-sD3`gQou61gemqb59sS zzYx&0M7ms4IK!wb6bHHnYTpx8Dvz!IvwOA@XIFlS7wa~~*a;IcVZu1PK4J_L-|1|f zLTHTto-C9of%IeFW8$b+@W#0D7(ecH410AJcBklA?;?R6DPY@rA`blW3J%YohR*fE z@WN{!;e5`+*y}j|1=J|N+$ju$+td(dSUi3yTJZU$2D`$;L~Kc39&+;w?-JjH9_qq8 z_PfdZv-l>AI;e{BP(&3_lj>qQ}Rc7d5<8zP5#zKL|r<8 zkeYzMKVWU$7kl>JM9Vf^pw;}jW}w`Hh-3E#Sy3ro^usLVAFeDdMo4fFmi_c48aLa9 zmu9WSb7$6v$9d7$;O5;tc3;>B<9xL^lFNN@CODci-6iMe}`N7 zrO3(5Kt={FnaIk{M&{Lbg^-6NmWB^@`(=RBWCWpZ3NaYT4uqXyvZ9fF%T4?ryT_{06=F6cK;8rU>2lcvBY zG5&B1SZ`On}2yc{5A zqR3Jqy+@?5iz8v_Rtnr3dRb&4hTKZdelVs{<%P*{xN$oZYW?HJ>?MJuMb_;&+{sW2 z6=6k&>Rpw_fXh*8jOg0Loces>RkZBpeaC4)@6?W=E7^J3d zLs5DvvP(p8a&Sh|K}(TzU?v=Ie}@%Od>H1l##$lAm>!KWxpzZsKX4L}x09LhGCo(n z;T#iI)|OcL{Q}l508N{M{Z3!T{I3^b=!l6>tChlazaLapP@8sl6qJWus9mFJ?G*|O z^z7RQH)8T|@aR;uZR;k)4<9>Lh4bgLaQt`+AtvH!Ey< zWiV!Z9gl|n!r|vAdZSrS@ki#hxcC}w^ksip}2CZ6h8KWXjRLP zeLwSx=Lm&I5EO;SuxaIT{CGtSuhN@1b14$1z8i|sza+wM&I=BH2EnR|bD_0{!?t#o(mvHpgDHu3? z74j?;sNZWe`qXoST$7F6t5;#mxn#IY3vuPzS^W0iNW8s1mX+d%VRK$Z06Xv289VUB z=Cer1bOMr2AkN^6nm%^$v@ON_1>a%Sv1B;vGjZ|!d0dU&hbgUkVY~lSyxaiTKJ8_U z{qi7`hHOM$JBigxzQ?h+Cir6UEAZwzuUz0_Z;ftEtK;OA7{nxJ!^Xx6cGe0Q9&w6u zPWgnQjL^0G?43z)cU58HM4AC}GA2!2j!DzMfKe zDymd8S_6)p(VAefkYVdb|iexZg;bzQuu@}PJ|LA#~UosGl z$6my=Wm6FO`grUyo53C0O~Q}geT2U3zAK|RVmXEl7>>=i%?ULp;lQk5OdBxF);Z(*jqjqq7pr`%9bhNXB0sMP8iNQjR?#TL1|gCb zSrN$cKyg=9C2Hu*>RiMsN=s`wOx`B!z3w*Vwi}0|t=|7#fKz2BQz#&{Fk9tWX01{U zwMq*kjlj3Dgh*40VzYmNNGgY|jU2j?B9v;(`;l3~-pT^X;!>z}M)Q6xA!d@1O4X^= zP^tgyL-=o?Mj$ptiQ6|_F?(1WbL#U=ZfYvjRH3r-sn<&2S;h4)zGbE;C>hw8d<12gk67X#0`22R=hi`?>cy8 zJ}bYJbp}O7SXes1-Qkap0;l{@tkhu1wsVNjEWv=zO$Fhl=hnvxi>{HiEeWhchb3EdG? z|9wOk*}|HMn>GE~qCxn#SoQH#wDN6_I*uLCf4~|fiA;|INmz>wxAAFMAGWR?>I4kL zlm(|y!YVk^z!ee1a<-@ZLi{$Et#|2+CO+Y)ZQlo99lQ+-TRT|XK7>Awt7s zo&r26DDL-(vqrq!v93Ag`Nzr23!WYx@bK`2_kG0oALvk8R0>$T!Q0aVUf%Z?--HF_ z@$!VHmq~mRj-Eb$65oWSqYFGeJ>lg=;+s+wtlYcAH(})oA6Ax^xBH*OH(~GO1~0Zf z9XqYRTYM9i4y=4S4o@#GzAFGWmNLBcVoQwb5{eaD4 zY>NL))6W|WemHtG8SOjugGTe$NGtyYS*ZmVl?N=Wg)*7H{{{nFr&Jch*3J_B2E2?l z+Y+(o(3@z}#vO@?z&kUFv1?~M-kDW^&%gK{n>T+7gRT&hhIYr1y<00~+;D2wDZ)us zK{1Y;zmB~}&SB}~?r2v(fQ#>E2p8bb8YaLkoL$khXKL+Q^?pci*WhOCD^b-IDYUP z(_vCbr8-Xtz>h>!6phE${SYo#-l*6j{JM5jlY$sf|Io? z{5>o0te5vgt14#y7ecLja!(sLoWCP1$OrSsc7c_J8YeGC;c85h@Fb4h5jYhCiA0K+ z>sJwbD;BL=k$Cn-Y^)Iyc`=+=n?-)rj|v&U@8|D*_wulMP;bzqw4?}neK9`$@(YX_ zzaG=yX^)?O2E4q0CXLldN?M1mT@RssI87oTgO`sVJMPL=2hvQIO0^cpE=40UItI0T zZ1COWp0Ks5d>xVU2CogDIRN(^j6YrwtU3+V2YhZ`3X zp|n;&9DNy4Mn{AOSAm6Ae_tOL4FLQV#| z=?p2z)#y>EuZl5q+rhe2d*AQzsE8#ZY}}iRw+FW{r*O&$?l~L3u2_I@UmjM9^K_uW zn6Gwkgi&4UK%^n|=(Nwtx}U7_lKiA5gT@;L!vH1Otb>^T6sevaYAT);L?dR$SifhM{mAo@%{TdCirKR9Q_-~QRL^yJ;5S{DS zXFdD-#Kx}VI0d!Bu%VsdZ^zFK=jl?-%Nb*PHOACF4RP+u4XoXFn$>F(!56ji#A+t- zt;E@{2co@;2=(t;8hF{Fc~u9D`6;^Gh;X_tB_&0;arKh$nc{y-B@J->`e}Iigu>EN z{;&M{sr)i)H!Y_3kAE+a>q<^`4stU0qETbu;zf4fRr7+AQxOy3GUVg{?YsAZ@i99M z6$v_*Wc8+LWd?3~v5Z13VByq_oEIx|$KWGpVhw61|AYj@*(WGqTmYSRF{e^UWe2#nB{TB6C6bvTr5#AWkxO=-l* zpNFHgr~vIdHDXOc`G^H97E6$mm5zN|x1n`wz}_BEsyZY3))myM+Yq`Z60?}vB)aw_ zLmpqu6BP5Crl`-)K8hwyfG@ukW864bkg@y32~(b4gGWH6EH!<24l%j#SRgB}2>VY( zVE@r`STwdX-t5~9ZjR&}$|-Mf0bVX3>#`f#j$-2R&_=91od!#5f4Dj+m~b`1y-qU( zh!Sx4w}ZF_PrTGE0L7}u^JAmYQTBFF<})9&%~PE`~BS20#9^8e+eB z2(PJwx_szwSg>o6nw$WwI!6$+c6L$}7F0oAzB8%@1VOKVG6zZ>uP4#@B7gO$YZp;1P5sF(+3-o>e>no{FTuD zuD|bZIryvX+LUI{8(`-hfW|e*a(xa`dl%U2GO_gIFL5T>6h%a*mLj-wD>SuF!iVpj zf~B`7JpCMzy7p^)a@+-DziR{g0u3~(Qux0(5LGkwV*S<;sFPF9&Q~^W?he(sO6@Ec_#EnhT81pOf^JW7qqHP z18q1QPI-sIp}pKG45Pc(hr2bfYWFGJNzF9*hd&8LRsj&p#YjKB3R@25qV2oG;Z~qz z^Sd zKGiTdhvAb;Kce4_j}R;hLp4z|ba}TBi}o$X5N`>J$^V7r)4Fv)YcDl!pG!uS0B1;b zdRTh|LKT~eWQiv_23iSLd^!f5O$a&!A4Eq{efW#oV(8Z;cxTTv1nJnZKV~ItDF=?6 z(xZRtx;(-Hhf~4ub9WTn#^$};0yl2P;n!`)pk=*r@?jPHg3bA!Kg5tD4_6NDLAL9Q zc%zv!iZze-RP#wg9Uz6J6g$?gM9mPu#|LnAeH~l3Z9(hsUQaNJ2wh#O_-T3kD@}Ka zL?XwDqsP&;E3jve1Z~^WESf-UtOhjnsbjBx&^{-FFX{S_+ZJ_JlQQ$LY||mQT8S`s zSZj1^5-fxQn23vb8VUh%+UJrGN3b3|Tf#a5 zW%rc`QX5;?TS-jiL5Jdk5>`PzUWG1a^~`}Y1#q_v!7E+rn^QR)PDSNfTspp7dkj9F zo~Tvb7tZ!J!qnKN$$ZS2o&zkTtaiM!3)8#xgJ{BTEF9YwMy*n)7oR0GI9AN+@1(dG z3=Xe@Awz&!vqT6EPDh=3jnQksID~iV2Pa2IXtZi!{0-|T331*j4D3Hm#3Rf>!P)?t z(5*~*-wmZvb0q{0(CIEv=E2k%Il(*5TJh^HEfof$rU{@x~j)s8hQGbcTUg zxL_ONll5rWq&s@|dzo#gVudk2gh`ZA_XTn{TN zVAZO+m^A4&RH_m*Zw9pQ@e-V3*$;&qd zw*tAWf)BJ7Ng=YhhK;ihz@u{y)C_Qh{uzpI2@`krjt6kxX zjHXSU@y$10n7{A<6TQun;eW$L$N+B2A9w<*mLnOC`?80&!fFru}9SB#Hn8)-yT_|#hgOei) z@^bJ-|4#U1`Wv`?<1!Q3z`{j9%a%HH>Xd*96SAPyv_bdoB{+KY7x??n#f%yCFnh)u zm@~aA=Dsr>mX`KVSX#5|@%JGmNm$b~^8d6@L@ObHz(WdpsZ@q@XU?EO{an^T01^^x z;OkogJ3B45Z<9kJbB2GlU?%RL#TkBd=xfsx1QOm#jSeezoWQn2XVEpx7w^2(0)1N5 z65{G}o)5SH=Ts=Dg32q3jz+}gpAlB4 z7#&)iZsi`h#(ZW_( zw`sEmwd&VK^;-4I{p^=?z9 zr_TrrF%Tb#l4kueZ00xwiV7b)0@NeJ&JVd_&pJfFe)D;hM&CpAlri@P%4(dcwcc$LF8O)Q6vwE_lJF-o6O=s|Kfktq~7 zx@RlaEL)6-vqw=q2pBmE2oEPiMj;cu4Vd_z3O~O=zgw`C$}GgjE=FPD2ZE0_HI0^* zBy?S{VIy!S&JK0!#$nVb8#p?S#F;Z5*uLXD;^T|))%;&jJJUBVMiGqS7 zxN)No)M|3;=zx%r&sf@JBqlCmZQfNubcci-U;;M}ad9KqYq2onWNNBCHf{35$&+`m zbZHUG-CN2dwX=93G|vxGV{WbLMCFf?%VMrUPXi{AeMKQ35hPBF!qR%?K!ts7(F+)=0&>`%3UP@!|4 z9#nZ#)46t60mi@34M9GR<~1A+hx1oXUW>=7gI7?Z(W7>dKdN}S!okK$c-&8djs*Gh z3{53Z0~B*I)39yr&-n4{4}|o-eSzuI0XMf$`1?l+X?K&9GzDpC^HEqx0~{fQ_4D;z z0C#t$*zY1O?IV_VmN0WN<;ltl!t1YV(W+G@+eaxvLtWwHvkf1-|0T9;yMifieTuei zJHv)u1C>fCT!Tl2W`)+71vqu4)M^73emxI$Ykr50oq$fA99f4U5Bv66pnF#XI`O3*^>!a`_q2tv>JH(d%)Aj zO>j$jj5?%TU?Gvg%FYUw3OVHWEHc(3f2Q$h?}LaP)A_4PgnEXeRb4-GDu=`2+#g?e z2Xt>5jFz>0k(8E&TX#~Bke-LE{9>U)?__T)SRx-s2$pv!8i`6-irpJlVBX}hIJtid z!oq;hKL_4;qdpU|S;)x|v-aK^3WWy~+NQBIIXP#Mmlw%|?HSmy_CYQeu{?H6WOsl} z=E@e6;X|)iL!+@~BK;r?hJ5y(?NgD9Awy{D_bS-A%NjAaGMLz2hCzc`qg~s!`1R*K zICgv&JNI_*^{*yagej)`y-`s9X(2O=>AlJSJ13_Adw0%8@80>?wF{_Ty&>AQOT_Bc zwm5u5jj=O7f}5ugJKm=&Y{=40Gr4N?dfZORMAYqMB&Vb!FE<iA*uz?NuRubL3o zo>RHu7I21y{a8{GQZb^(4ET9vV*df)=1t)6VJWU$VcmP^QCwWide%Ud0DlZ0+XvlW z?8qu4DXZwzra~$R77{UXZyv_dX*-Z&t3a722Z?fPxdk+hd*R!0^-xq=KK$Ov=P)r{ z#jb}PruAJM5gPg?yQrCs_9AP!Ng=3WTSd4+~u* znv{pW>xFYy@%=ZgncxOmx0Yb#N*{LI@pzSe-#vSP(}_ALON*XbCySz(NF)}5Uw1@w zJW{gqQOnm6)jXXL;^)G{2Xg)b7vKyl8%u2Xc{@IOYXN4=0J?OMBRAIy4IAbmCPsu6 zE2Ox7-5x!9l9ddGk;Mz4X>#Io!Yf%S9`9*@C*(1~=&koi**D3Rm8j}Mxt1Rd- znT3=I@uahuK57}n)0Sb^TRzAudG?P($WmpgFk-#A;58<=d-U?cmCLEPaz%z$ zhHD_TX^hne&;F?v>>{RH`uXRnd2=#@Nos|%ohr_ua+y#Y+ zJo+JR_;n|4Ub~G23jllj7cg&bE&TLL6xy^lupYb~VPU0MyjYID{cKr9qQ=Fu*;ut~ zC$3$LL0FSe*x1^&w=3M-o#E=?0&mt!Pd~j2tM|z8&d+_|&CUr; z1N^zYLj1dUDvw&6gtt^C6C!-9{rOvrf3X8%qpzW3M?E%elH!FI8nWXqK}yO+hr1qG3aj(&%gkq%p1OUPtmD3t|FWIMvfCKOVsy^v3*D@9foZNG;J^kOI! zN}-JtiMqqlv8P~(HbFJEFN%v3n3#@WBkrV}}`2U%*>a)i`(v@b+qmHf`c@ z=#UtzR_ift=7;bP3V~kt}%a+M-?wkbf?iPrTFTsI*M(AOM*QX9d_kkVYMWayT5$e?w+oG4`I1L2ODcjO6=f zA%laRH9TGH;o;&agpLy?iYW(17C95Es?t)NIJg5pE&LLRvDbvD*k5~1hR&U9!Oreo zCYbv|rHW$0cP?ADLap|Io7Y9Ys)@iqPGwk8E>=n-Oy^C;OY4> z6U4quynn*BJIeBT!o_78OKXJO+{MVuT+f8I8@#>ez`>y{6X-{foctDBU&`{fgR}D_ zmbM&4MO&Fj*D;YV!8hN8;Of;3)T@_;@NgrVH=l&4C=V=Jv>!U73%d7w1x=c_62@BT z{y{iX$3v$RBfNzpu3P~|kCx-b7oFJmPs97~1Hb%YfmH`D!`m<5Ur)eOCc4SJq)17E zI}hnO1t?|Wo7zdaM1&@xRS;gknkh4f^9WRW0WMd_aPia?yx#XMj2Qz=nq-B7g0=YU z%datM`Y*!3#BG~5BI4Xq`1@YPJ2Qc_bYS}qOI*ETWEGB_RaynuzaOYl)epnQ_Qima zFF>o&Lqj1{$~h9b9GS;{#()?1V#KPiFtVKoJML%uD1?kow-QQ`lH`PG1KP6+oL6id z4(I8Sl$noP$vH^O$VXyUF_N;2;qC5-AU{u3^>l^Ef~>u0%0`XVgkJ(6W^1V zu`QStk4dF>K@qbb z+kx#TarW3ny#6{68rl?BB76`NuSKV>J=hOei_kiCQLkZdR)Kk8+LQxm+5{LnM28x| zIz&c_k(8vstFIbx{74@5Z9jvvN3I|=tOlwCctdaYDJ-9eAX8Xj=Zq;hZrK83$GreI znfjT!pHSmaT&lx`2nk;4)B=vSyn^F!I8PUQYXt&4olrl>3t>SXXj;PyM%EUbx)O^u zd(R;?D-Q;d5ia(2u(Fg3kuL;yM%ws4w1kRS1*uW1F}iO%#71Amq=`m+_Bqh9rK#>L zDk7JW8?d!)z=W-XuuW#>P9!FN4~Zlm6f%&)3u-hPCXD4wEQc^*?Ih%*hqeg`YoSsd zVq#gv(lvs`zo^Iq4h}tkkCs9h3{I@wTgA#tV*AYzVuF{J)?yuiX}|B6kjsOam@i=a z+b!q|M@JRH!t&6#aVgesY=z~&Mxs`&i>%$fgz)yGU~TD#$rFY_skTP@4&hL%wZbt7 zt|#pHXtA?*!qf@lF=KiXZr&8J-!b!SbUBn z$5JtI`e&$9w~_E9TB}hD@y!eJitx&y4mfr+9$$SWW+GpLi4)bBJ4cFTKguwF`5H88 z)!{F*UkYN|EVyZQO_f>$wMK^$)}cwy%12UaCQ>qU;A(G$w)Fzgxls`8SVxS*`LC$d z0-XH6^K%Q(rOqJq>t~vvphoprgm>zUuNLotorA3~*tYpM)T*%= zFAoE%Rs|L>mLWD)!73#cVqy$9uwMrYi7nooJp>(lwuQU53sj|Qp)!8RRMN{fyijS)C|^m)d>27(E)aM$=Gl^BN9^!zsVy7b$W6RtnBvPeQ4d z>U2o3 zXxX|wJ7;>VU%dvg*WbjraVmWCjThRrGoV|ybkwhB51FkmzWixD+&sJl_Y;a2PEWb% zOy?F9Bd4GQIr&9`Kev(fR73_XyB0cBadSZPP(OrLbr+72!+9E1Y8MphRUhAX7Ke5m zN1r}G`*sa+{f0G;pG?QFQDa!erWAV1cQ0T+Wu0Dw8o|M6)w(n8Bm`jHnj1(+$iuX0 zdeo?)#+^G76c$O*s+AN@4kh?)*#(?GevS3sMX2AjmdPqYCh}*ASOJ%!b9jB+P6Uj6 z2cx>%K&N~*$7Fh9Yrw(NMQ9XIAK?v56*Y&$;gomC+Fi}d39af@MGGe4f;=7JVk?8p zsDn~fisbYhMBGfmxu`f4mMEdok}w2Z9PL<}Vqt1mggWrSf}92*mKGIa{V)GR&6)<* z=BN-Kug2;%E@sj8*u(VV$ zfgH$0b1oCd0W3|<^3@RX5xKb+QB)Mc(qftL)(B;)RJ9!_CpgbbuVrQ=(E^ zz@1ziFrdvFNQu3MMT>z!gO+0a_yzFt8;_yGhoQ8z#GLc~(Bm+<+!FDziP*92XYASW z1-@SjCd|n#1*~^&joY{7=-Ve3vu6WE#XxBNTKH=Dd+@F5WsV>IEZkB=klIUd>$B+? z`e`)YjXa3{4tXejMjbGT#E7Hk3*cj08-v5^m{U0%4yR&6E_D=lyhNoz9utX?@fo!NE{Ex!Dc zEZJbf6m*FT4}quWIHab|XQF=_6VWAbc7BVA>T#@`HOR@C!SYcDqCb3n=dt~r zWrBV#6pBbD$}L&mbxZ_bW#au^mS4t>r3Zq7er5R;tiv!HYV}%HRvgRQlpRMKw(rjb zVQ(~AAU4*4eXpv>$-9V;KLq^zXprYCIC{hbAAj}%+ph*om!u&sPK@2V?Xh4%E;ep( z#oN=f&~ES~xYuoutgIZNQ&cO!9l=#x5a3}ixRcmg%7qRShf^M?v;v&`!E9`;P{*kq z8a4oy{Rq^pdl`;SZE*Th0?WZ_EaSsjgsD;v3{yIcODzR>@7BqQgpCLUka?*?Ntl}n!aQ)L1;$kUmGcRMph)-~;{uJC=)EudK z&t^tX8LJCVMU=o+6oe67>zh+K91iFCCov-rHxe>&Dk=#vDcOQgvX8qf6Q*(|$Q@y2 zserwWr7$>w? zt2nuukQk?kB(}Dzm;fJaURy>X3JP9Daq)Wg3fS4PI$9PCSJ%UAdk=FS6S=uy=ju3XV$-##rA zRt|Xc-J$5vs})?_oP}xapPGL-iEx^wORq$3;j;;sNaFj-%@UO4_~Om}P0gts4u?~D zxs{ZK?1B>SXA)9-C zH%KJ5!g{4Lp6%-=R{jU<*yOA{HFP?6Cd8L9@!XE(GfntI%~@gLB_`DSv9x&MGj#yu z@}Jp$hq3+sA(Yi>68~dZS*wN5)~pDX${t^TZG-DK#0aaOD8xEawwlOTj!0uyuCui6{B%CEG>Om zxwDzDPGakm(YbRGLTg$xaczY?du*7%&tuyH(a}}$?z?Z|ySqH&gC{LwY#MXZxxY!sB7Od@b!or0X*tIJY z8#Ww3j~>@Bbm%;+S(6W?Qpw8UZ3(C1P$?ay=yBfJ!riYm@7Tg&=0{ zwuaMZN5^#54$en>d<~?hf5b$2fq5^K$A$^$FX8H%2^W_(OjPSwSt8`+WwHJI(N-Fb z4on0$X0PPmoyPLtVC|QJiReKrt+qKA?c0&H!5^}BgW%wh0(bWVu(Qi%c|Tys_q8Ct zP5E4yD1V=QpPfw1Q%rROTDPVsDJyXB;6{Xm^uW%YlX31`K0H0iV$a(WPQ{{93UIN+ z0#`3yXYZ6k_(7Vj>*56^Uh5C@WT(#Xk>WxRbcO4lPii^Z4%et zeyc_8+D9;axG&bMsmjE)f(dGq2rpYmh|@Oi?pZJxW+64TB?=1mGJ#!e-V5b(WrBDQ zTQ7>{GZ z{Z}L=2C#N^4LiOTEYCdF26tlXX0v?tS$XT(eoL8{k7AvHNyyFZ$wWBq`xCa$pAj4T z3+n{*W1RpcJ5D*`;=sP!5c5%TI2DIV=L1f@+NJD=yW!UzNQ_O!tXWj?biul{w@|-H z5BU1|v#vb(f0NsZNDwrAb68;C_jR@>Ta#@!xhC6gGAG-%ZQHgnxhA{GHQD;z`F!8^ zdHS<%=bpRIK5Os2_S%2g6h!Gt9<4neKJ>OPq3KnS?zft?2yi(OMH)*s?N1tzQ{L?{ zELE8) zHW}w$?CvX%t&t}_^>~svFeLt9VeSqN-_Th4yTa=KHoAde?0#nR=%w6y5g-NkBX>aMVa zT`c<_2u@AB1Rq2j*6KIj|3TyNPkyFONQ`Ci7szx*n1&q{A_xVCzT@)5)Mzp%0s1I{ zosdck6i(=N(96lG88EQqC0I#hV$bN}6AAnZ<`LXHp5J~P{t^_zK!5$62)Ri(x@LyT1UVUav!=ov{k|@ zEMS9lg?9xm+b;r4^%(u=RYjD9TuZQPt`PDMpD6mjYK)@C&|^#xVx2PMO$Qa&a~=u!>9 z<}X+R^%MWpR91lxFPuXk+;AW8HRA!d3Ub5&zXSnqv^tk+a1OhN!9Gy&^KBRGY)j<6 zQr6x;Au~T22KqpMnG1&r=u`7hA5k0P?n-oWb}#|6)=98 z-ezU)#<{+3CQj{z*Uq?BZplj4pAbmQ`%DRU#`<$WZ}LiOILZQkaw0^x4XfrNonlAp zc`-4;>lXw8O|fzW|GaqWrsl&>(L&kq^IVggR-+vc6>pt@)2^qV2ZhrIYpcnejdU{I z7*PJ`+v)dSWzGoV3ssIUQ&ChHi_Nr5mfzBgy0CI#&4+KY;>C!>92K&f!yc4~4%X77 zK|n7ON)<*&FCqOwCq!d-sd+$-Dm|Huu01p1RmM8vV#PE&X$qB(wrJsOfQzfu4XTx$ zll(PUk$mJP*LQflkan*25%!MgTQ>Mkb?YA)YtQ~^weYYo9qaWH|H@AIkr`Znwd{;~ zI9Wx8O{FrsyhUvL8)52zjZ*`IPL%&LJG*bo2skY0m1@0fQ zt7k2@#fAFm%T%`NTI390Yo~8|eobJTPK*4oF*ul=%v{#^P;il%vv(j-PhHmVz)IOC zj=^^)(ryLY+WNL!Qz9p7S`y|=7^Tq`N7|}ku+#T(-sv4>`MV+=?$DkFC3ym03QVVR z&S*KLFyJ-3k+qVC4tjqhSdz_pF{0Y@3D!cxoBYWo(js4D*SEFqzDZx`Z5x{GRk?9Z zu9~L54t0=uzdP5S{lzAV;E2WvrRQBOnvnl5({4?0Z7mqBdX0aiG0dUN6IkxllN!pl zulhq{01u5=u?IePq41y|)Bmn>>c*c3b{gFtU#&tnt`9R&Hk8W3$w;J)GK?&g|0FT? zzG8`;o^dnKzd>cjdoJ9yeZae>{<11VIvKAa$z;N}*3|8{13v_Qo0p!+r%Ulz=IM2L^yA&L-sM6ISR_Wu_pg1!GB~D1Cc?F}7<&$$p6kMzmZCac z*!}tWvnND0=oRtf_P}UeO!YTLcxkMqOkMd8*oZDA6&(dcqjwklF8m>A?O z$cz~fLX=u&lqIF|{Zn&Ukaqq(~#&VKw7o=EE!fb*!13Ad!LfL0%t(613!`d)^ze}B%MC#1ooQqgEVF1kTL z+$F)P=Kh`NvMraXs!@y*n&4e4y@fOVHJ9G87Djjvtc%Xv(dH#)q#?BCQ9)93-r zd15K6v-YuHmEe@6#rF30p~XMgezm3^z?#+q5r1rGqa(=q`62V}MQ}nw%GJ%gFm?)Gg#jC zZ->6DTWfoNt0RPl4paqsulJa8cRJ(7woIPSI-4T_^%8{V0+^7{G_eKsMMXtqf}G-Y zOS$}HLKxd7{fvC114*?OnN0acUXz=A%wq>dqSd40k;MSY3xKq92@OqbcBcn+#6E`| zm=i3nvdDgS`Wu>7Z8qs1$SSZEmPmyqZga{mC1%32*&^Tz<{+vs{{kc;aT`q`VHy>{ zmI7c(gNfIXVSjM8f{|3$)$v3`vIgC;u;JqUIqD_Vn6Ffst7p+S6Mn&8zqHY5-wU+s z;ieyAq;yRa36-&>tW?*|v(YvfMjX zrr=D>G>gd1eLXgjkZ)>E-#_}YZSUHBMScpCF5}?9z7xWEr)zNn(i&yT9xRiQ$X zISIvsk>r~sarfg^Z~7*lnBMSCXa4P(qqa?3vG%-woLKe`5+V}A;Xmooxbw}qg;&}WsXLGl9xC7~;dz zgg5RSNok#3DhYXbZ`hI9lVdbm1V?3jml+z#e1Vxu*GM2+-sbDb>(h0i`9evv2eA;9 zSP~AXt%14U{;ND~ZYJ9*iQbi&Q%FU0frpH$c(Nro0QK$`;;%nWE~FrQUfQqTG-d$J@3pv&cERa zp+MxfF`JB`==A!;h+e{Eae*Qbz(rx_j|AOPCheSxknH+xpZ{Ub{y53%eRX#C+TDq z<34}#Ad3a}l6mqM>^0PRxUx(-Z`K)k5ve#NrSS=&1SJGCHnMV9YlH%$BAd+Tv|uH! z?@X@Yhla}^-IsdKQOy{e({cD+Pq7R(+Q_r`(kr4QDwHWfWiu9sUhZX+XOkyozz=Zx zcPThH=9t*u1J=U7nf$TN;$4PfHQi8VX`s`Bn9MANvwQGytPql81cpw6kW)|?_6N8( z)s`R1K;}CsQ9!iSlBB$t=JCve>+wPjEBAMUxfHJu5&`kn;i--pL6%OTH6FU5@x#}Ul@ZR2YkYEg z@EOmd&EXd?Y`|$?%odTYIe-{OSSk?O;^iqT-|Uwm+Fo_i)0JAaU$d2er>p7=2fTxv z;TWssPq*(z1*hzS9&7|ezUT0EmzBpWb7(|98egoI(uip)zBYTINlC4>IhEtX-hCmj zaNoeFb7fR0hO4tmMe1+@J)DLF20lsHWR2wT^BNioi3cb^QGEg1Se%6D;UpsFW=87P zKgg7#f7+bM-|_%PZ2vSgFfXcqd*vhedGiS;Xo%ccgXHCXscc4~ih6^^cshs3tnbe6 zc4NYmMZ22sL7@IaIM)|^+J2yx#BNJ|bXVD;%s>qu7%vbQD$N}o{O4vl4L-j$rx{V%G<`T~mQQ<;-Tr6+bXlFr1#MLQ%U#PRz zlol2D3A0%j7#Rq5ce@E<&A9re0C3I-zTTO6 ze)jQr<~6snB4gknw4nAWQ$vJ7%)gx)3#qii-Yja0i-%>iR)iKG5%+z?2245CUm#9O z*mwT}dq`q^_dREGwze8tCb~=*1wx35{WyN$aAP+V=^`*S70dFsWz74lf9n=l2qL)c zhJx`BH%}1%{u_+Z3>Un^mg$Upt8EtB4nT(B2_=&Nkz3|>uHZ?ZmLRe)?DONp7eJ6n zzkvlN%my(VkMzX_jzZ=~Dbhf4!P^nG#U~_1pl(tcnq0z$MIz;Ic{z84YZ#uj7(8uV z1TE`LjbvwfI{XQBz-DiPCgi^>e7`%UFv+txd9G72gPnBT{d0iz)?cvH3zHSgM^1&! z138+c60Y5XYj8Y!Ix%%|WynrZ;`bK#v*JM2U48vsYIVsq}#LK;CGoduiA5B$n<#XIIsF%sA~)4 zFg&A^{~5ZPy_3_>^}Yl^G=xzu^$7?;%rv~WBtV<*%i`v9OZWm=HiMkwp-0eFULAH5 z29qA4HC{rQ5;M};?~e-bu~XGTg*BDQez zN%Y`$c49%o!hvUISJa2XQMRvyadFz&H{WD#2Mz&v`FVM9aVXfEeJ-yjv-6dDWDASA zh^xb^#I@$%Dk0a`Ig+y7HEuohbk_fb+`QhdO@nKoR~7%@XWSUQ=cwsiUo8chdYY=`7=a9WsX)*$Vpv0_0tj2;VgyZ;j&f+>>bK< zdeOhp5t^I=VYp^fV5RGaV9%2WR)@1ybkiao`k$i&kmdZG9?bUxJwCN8{ylehNMD*h zZtJg{>R5%Lszax$7Avi>kCu@q3v&BsVlQa|{CK}yd_oRw@JMM{wJmNh2TErKGFdYr zBuw{9S*2zfm`2X%@$wy!B)$=M4|9~u#$-$?5$o1#QRs7TEvVWxrs$@nh=#+g!s>w1w?$dKG zRm{$(XDJuXp58|HY3qJe{Wf!FQ7X?+g#WE>*)JwHg844nN1!6wF&26LaY;=?TMxxY zY^;DcGA1=SJGAcDI;%GY`NGRs=6D^fW}5GJ9bodrU0kJd*&|r`bfP*sbS{@$Uk9{N zazw(v?BJUY>{2KiGGD!%&|yyLNEdTY{NdRjJu6TodvIx$P+8Ox71as$7xHfFWDF`U zrktM-xZ3HLkd)oi%cz3BWXykmp7L@q5c(C!QdYSe^#&FP<<6 zi(;|1&sXLf`1&>JK=-e^qQc&_ljL3EUTnlKF*henqrK+%3=;%tWk&>ab#00{RN&h| z2t8p@D}w3h>m&1cbgcB=n_267qr|=u7HBH(R0As7EA{N>=Ue{aQi8)AoSZ2hyLhOC zJxLHQa8XfOq-6U%cXy;a$4?yLm-Qyvx#xRQRlcDsD;Q(r;VMR}4EjHZEbMg2DTa)% zc2t}$w*pV`_Ckpo?05HY7OR($?Rr_ELc~43^WjUlVG-n%=uO29FmKDl+q1%Jvz1@? z>HCBa_=9Un%GHEYE87C14PIT>P*>xrL_5tSn{l^Uux=~ArUEkef3rH?pkgOTNplqJ z|1>bOh4*yyT(qwj>$XHn_^trFBMQW>;5Uq&OqadE{uoKd5HOu^)ulQA_GBEwP0y(E zLac$u4#qntc&7U=dCHW|F7*7}b5~ay<*R3$HTsv*q_5CgDt2}C4)Tjt?V&-Zm&RFz z1rMZbcl3XbN@*63O@EvW&dlIvw({gf{L+=lsgeNeMJy=X9zL9c-aT+eToBatM?Lb?8rwL?#o9@p-L{j=ha|k!(y8%& zJfq^T#ts&63W>biZE@)@Y6WsBg~1?b8_0nTJD*(e_2KPh2YW#ww#mCdb7xBmMO}TI z5EB5vfS=E=5g?x?gGe&ir=nnQm%%D;%JxyMEinv6WX5$bl^0xf`;^6R7x9)^uEP<) z9OIv8VBn#|B)d@a3pNVfFDzW#h@zrHK2LzqhvF%;vNH6_N>}uv3gghI{x?(8uPWs% z&=@obB>mZl`rELQG8;mBeBnc0j%Y375!JXvH9$?xa(_0TDGD34H0sX9F*9l`3<_Jo zi)KRI+|Pm)Yj9~PWx5K4oBKSQ!3gLrH)V8_lM{%Nk-0hun2{o$Q7t)o|JzyNc9adV zScV#l`+G{U+~Wt`)5jO=1cJzSzBNYnLXhilcbMo25t%F`u)u{~tvNW^3Uy)S*a-V- zgJSNu|F$7OL1#81LZ05ubrp%N(pb)@&dsgQokNn0%=k|cK%bn&(O0LMcNSA$7B(yNmOrT1qo_>?ygeF*%D3Ha| zM%$CFw^&fL-aL&pt>!7PdK45#{S@v0Ag2JuOKDw3*q~TbVscLtH1kXf7!^u<-nKuAPqDd6V?uFNaBTf@G#9T|7QE|V}FfQEYvF<-H$C(v7j-Xe9}>-f%ySl z9Z*oR@RS-B8$B`>Us(6K!@M>@4q5?cha4L`yL=gVb#)yU@uGSCGc)5sgif( zXw)t*@|l5-e$&wI^J_w)D;djAyzpyF@~Um2W=kS6US2{UpTzjY##~W5zVmaa1pyqB zNAT)R^X-0n=j`$<;2Ka23ig&5<%R$U2iLMBp})vTp#RFRi>zM5Wqg0C!)A*g6)VV5 z^5P;X?TuWy>=XHgvViHRvDkdJ3`a>hF)lUrRfoXV+BzV6y>)kd@bS1LDUh+pe#j4$ z;&^_TsM!){;RC77@s);-?rV|gKXAS(li7lTK`S@hc?qW7YH9c@Wr@q>ys1PDWddqg z-0$e{(CFd39muWaH1OLKGda`92l9e&aIBa8X-%hOWnmy=YeEiRXVStqG(tlnBO_>d zN5aG`WK$!~e}@qg%8pM!lYCX7WX}HHlF!6xC)t80IlHWM&caedOlpLkknk3lt{DkY zkJr$ElxV|2;E8~b-?Olyo41cdF7zgP9d>Ilb$_O9v<@&`*r>nAX4rpRmBS!gMa5r6 zi49L|UVRLmEP~eM$AFC5G@^XI=VlsD-XlgaS)DpHnK$6mYk>@gXzup;>zslVQE`uN zdpV-C*lky=iv08N-zmP4icmTzJvaYo-8VK*{XhT80yV9jr6;hy^NifU@QN~Lc5T)UUa z%wh?pzC7y0H(fOlfbVuhKyGfR9?Q;1M0CDe@#m$d(p>=Aw7PPg}@$4xo zCN3nu9X72fJ?^8_b|oleufTM3Yuh&r2~4*Y&gS88dPC3Rvna%GwcB1!ZvJQPNh)34 zwL5Fgt50vY+e4hn)wn?EwI_|a@M{c_U^z8L(0uf?wean;;Qmnfmql7VY0{Mt1_6F8 zGZJpi=>6%b?wF^iKuPIHQfU!UQEO3^MQpT&R7uH4zwAv{^16%ojE=yem+wWTW#S+2h_OK;SsXntfgUi6lNy zwJ@hae@M8vVj(_|hLr(eO$_rjerE@pPMZTnx%8!9{GR?DiIz6cVc*ST%YFCd-mA%a zRY#c&rZ~|EHK4(4hVbrkn<$a;Y;URh#wq?Vu?wiu6h!lA7p?#5G5Xe#4 zle8hEV6KsFaV)=hL|4qo_RfTOa?(OtxXx746hWIx9eaS2k*OG1dhlE;C1~E2AN2~I zzQ>1kn9ebZP%fpb^K7Nw*d*FXl$RN=q21euGPqx}QF(-cPrdl2x?CYCEvu$P|50bm zNg6O>Gy&+De<9OpPl)vM(?KBA`Ia3Y(&l~}@$>ILM4*6XvE9RfN#7Cua?cLw3nuue zUIX!WJ2ytP^3du#Wd5CERl+Bmby}qBHe!F7VhA}8?cgH%cLrO%s3;ItR-{i5C8a1y zVn?i();4=xU01X%-6RjkTV4}9(Sp_RpvPnVVa~!@eY}*E&a#U`6US`KnENHN>+bXk zLB*j~OLb@@q)>&L4HdK{EJK4U`c++$T|s;dT7iPw69{^G-G)j~2??T=)e914Tk(sM z0{L7f>(v_wIXT3+#!|ujqns*J0t&5ILLuP?oGg55d9l7#>&d$TGk-lRnR`+eO#EJ`P&uI^(|93=d}#Y8YD z=oQ@3jw~V3PQmlOd^+l(J#uH~8W4z+Hkxcg|QIrxHx3D)SEiphD-fo2LhD){Ty0u~&l7%=I5KSyvdsfnass3tB^?X1k}) zs!u!MNP^5jOGrll5=X`dp=KMP7}VxKMxZ@q_`kyuE*6>6xAlRCfOBK?<^6ZflpLo% zo#tL390qRR+??LOlM(puWOzQ>B49ItXt#i{Tm3A9m8=3=Z`Ga)w(=WKR4${FrDhBo zc2mP-oWA1@9%{nWt-6fUc=r?SC^Sk;#S-0nb37HQ6?SO>U*%Rfk=4-r?H@k=%EX2* z^+RiH{FPx|JaF2?H*3g^iH;sxA@j?LqcP718QS5-7F0zmS*M~Cg72Cy zCBb%9j9|)AA~5e?I||OO|Kmu#>n6Ou zSA1l?h|Sd$r_`bz=t%5QuLvTao4v#{!+)nC0Z5f{G3eq-&a`sLjz>D4Va_1v;%s)- z3f1cIF@_Q+Aw>j(2)bPn11teVGc$vA4(9>92antI_oqToQc@izUmpb64L1{0OBYg& zpxYweuIb4pN+EuDBqU?@=HB?k{lGte%1s>QuJewLW=gj1N;9-D1k_X(wVSpiAF@<~ zFL(yVPl87FI9XU8NCkXQU`=x3LI+hV`qo~EFGRXSOR1;~WxWBG3VW* z3XM%^cNs=TS{C()!N4U*s86a!B6uO>B_(~Ms;W>9-WnS3#|04IU&IU^|HAM{AR`b~ z$qu}-RH#Ue7E9-4N;93GuMx8-O$Bc?nz{a<|IhtHy5vP;D?&zMeSQve8e716z1pB9 zB!(I;RdM%v;xWK{O*UdhMQ(IHQv+)30YT140-ssXLf|xUtiO=;Q9BYr1)453^X*OzZ&YPE5G95;3QgThPJgq@TlQg?$d3OPZ|PML2>cQ zasrWt3Che>^1S6lT|U^y8mGBXrOwool^XI>iNtsE;_k^w`M8`O-0N#86~U+!Tqh)W zNqfrq_SWJb)Zte=Cai&L+7cHMG@MCR%Nxwz9{3Zf@&$6C3?%xg{MfCJYjT|ykBjmJqlu?4wn_qmeS+Ws{Q=I_h&nt>E`Es7zf}D9dfdDQD0t& z654zMmk!w3Y24ji%YAT~yTz}|jt*VO`@15CZZA8}!o&6BFGeE(DG; zojE;NzL&0brc;(vdjFl%u3fY3yAx%_+O1SgXe6hRI1>GQj@TviAT-JP zv49)4-<9eTuMgD@S35IY4y5U#4X3b28+mjZnVd8JHMU?J*0aNb(D$>=R%xVt@M2t^ z{qDP(Ecf?`k{U!3O7qTWT_faszL9fFOD$yA>xrU2wL2_y#N?*Gl9S_8dMab%E$2Iv z0!6~OJUtPP@unuST|21@i10@ zS>*}N(Jva(XLdJBEiK#(cB^n+ zSKEX!sKZG`NUqSLx;E1m8`i$@M2tFTE1s-uGIZ1riF!kwoRpH-JExqVKJ>7EPBSvL z$EG%=j6QX*CR3@Yqb2`P_D@d6TK`Ja*vb#8U~+foEn{Vh5_JM)VbxANKAfb1HZY7A zKl&YL{W#wO8h)a?xJ6}2n|;osq`i4uQcqA)f_363+n_6NQ?$1`s9q+^K2s13>DeB?0mgCjz{vipAX3;0*WZ$9)y_#gN5}C zJ_pGUMX+}YjU~|huH4oDh{qgO^TV3&@rKUgaYmEP06DL$Rgsbv90SMGtov#Gl<*Z} zwm6am3ONQ4mWqXWdpYV_b>*Tz-y`*jNz#k02VB+wRV0Vl7^XFl9o~Jk~vE1TEhhdletLrz>Aqgi2 zN_0E^-WJ*{`!ZYIJk`n;Csy8Ki+}kvln6$De<8OEb}Z}d>HOUDt3A#9-wLy3RKSS7 zyzdy%*YH=r7|*W>17`$%!z=VqB4CFZAPzJ`5b;9B#;EYQ>{Y{GD^#Vs z@^b81Y`0{Jw_54x=zsNZW<#r26m&3=2OG}WT4qQLypSp>`;w4kf#-~~u-<~AeKAw? z%#EWm6M83ET@tnZi-UI1IVP7nQK6X59DbPHbjfG=2?uM-xzksHkn1IHjwlm(M{bMMp%wE`yCN zLz2%QQWU{dYNsfFS)T<{7d8Y>0Nh2u-2;1i<-52 zaPz~4XWOg8pCIY(OibfDzUvO~3D^x2JvE_u9`T7scDj@z@vAX_0rqj_N=b5=T~-St|<(=lDNC$4{pXV zeEjNN`w8`htS|;Qa(iqdLy|)peQsu9@$AH=*haeJxoIGqx7-OlAR)zKiS9SvOznxl zy9#tD(wr_lPnv)??xy)+MKmnnRE1%Wele!bHC}!oeq%g&y zXupe{?Cpu?GQv>F#P{wjY@Ck!x{XyQ8?drOlvWxyOJoJ)a%98`#gFF76H&vjwc36T z2iStWL=Z$C4+M*-x>XnMM-B~z0I4BSVg85|t~EXRg6;Geuk_Q*#BZ1Kxl?6blzV$_ z3E80$R5O!Z!N&91P!2h4{M*7e~Hl@oVSufR=wZGdz^pdA;PeiooQsgW}^C z+SA4Zhei^2b1Mt8`o)8@>9Vhle=iTlBMeLViZKP9sUeLesBi zW}XRkEu_pBkU35g(r4feZjnnPDu2a(37^8a#a|s-)6~v2K#h#dk#~(MZ-Sgc;0xPd zJ!%AH5hYd_50{{99et$?pU+n0WIWiOM?f~ehU8<32_WQ)(_&Vqtf8d7}4 zX^hNS$`}>Cn@-t$bvtt)1#@O_ZDhm6GmjxxxBPa}E4<6WxVkEBXv(3de2WM4a7xD6 zsf%{y8$ur+(-pEX@@&zZuN?qWURJ)$ESy(@OEBty98N8aT<<@d7zY5b2uMROC;QX> zcLlEjEh%U|Z}pTtPo&}wVcjslQtJIa0RloDxD3j7qOV$hSbGP~O6davq@KXKG|ZPK^`eD+s8HcZi}BUQA)W~E{qX7=7K^_9crvCsNl&}pr!+X3A3hEF zZ#R`nD`c~VagoXcFv_Jp>Ee(Vl2|!jFPWVb2pO_f5tgk*OaJr}{ zBD+F1T{nBEfD(fz=#2}+Qz9xAe`5Y_8UuVdT+832!7+5hDW5F(DFd$*lALEAG}quXg- z2|^|TX4jQ}h;-z3HPB{U z4?C)OhCeRlFtn^JSfiBz_u~UZUJGE)S6BOQb~e{L7z@$Qd^j+^e!$;M7Fp+ipn*YQ^{RkXvUQd#A+AR>K zrlu1u|5*~`le<=72s9zz)j|?FqDz!)x)LEc)VWBdnk-v!fPx40Jy=(q_v?f4^9=?N zj%BtqNF`O`eCKj1(&1)5qJp>kutF~(H({Pme67+pE2>&=oyp4#r0L==ASVS|%;A8& z@hU2@%vUU=0D6lsPV0F8!$K1%>FLi;JAs@`ZdZh8a~T7qHy^JQ=5t0^fb>;oi71e} z{2}g#)nKMXZFbp zo*4Z~(Q!-6dAuqMEmx*Af}te;&m39C-kuYIp8MvTlJ>GIR@Z*8zHtj=@z}qW{}P7s z>0fqae0&6Kw|k-oLt_mn%Qmo>s? zV*lO0)y?P4clCUvzmx5{rN&bDF9;LXH2HX2W#arq*dMi0iopOSjAZxb=?&i!o!R;? z_QXq)0{x&9{PaR!D480V%2ZFXiGe&4%Cze#A91tWwuOU-Hx3FGGoHd7hUoU_7SC1h zpPp8u|A(@ISjMurZw)PZl+&RL%g8BjhukTSR~+zO?i1+@g;zx&o|Hw!#0?Gre zLVJCgSXhjbZ!*|H_4RdMlHlcMpa7CEJ1*Om$|>+Ph z&cg!(|_TOUMO3dl2=bAonIXFuG1?`z(ApgE4 zM7|_GuL~Nh8Pf1-qv3?iych{J?D5)fq|5Hsq@Y*4f4{o^|9*A1eQ2o2;Q3}XEKK9g ziY1^ofHmCVu#Vjd*Kk{aF^Q2eaRFACWG&;r#4^mlr~O+Sr@+UPb6Xp_u9v4fD3Oo3 z$iTZ}mY}cZP%ANCpj+R+pi}5cwMB3sbG1G`U1yOL(~8IFgq6rz zSy@5|x#3>>!T-BUu6P;ry21~q08t)Wv=n;UjHi!hv$!1&kw#NbAm~Fy-43|I9|Hd` zO%)K(>&vB9oe>?1ylgNCwNp#sez;n|s0*f6RTmmFO}zGKg^g=zVF@Yp#47sV$*f9lq85xptPF42eL5gpJ!mnJ)kjsAKuJKs3P(z>|Re@3;~Jp$oIm8<*3W3nDyb z9Pv}+So|LogI!^RBRSS8eP1-2HMYe?;8hC%^Ug_5j+~sND=Pj$Oi2mt;7~s{!w94- zpnf{uUi}#dZ;+C(zv3Sn3K|$62WK_)f+Hgnk^OI@6mG^QCx?@1TkAdUNAJ3B2W}3& zwg1eR5bWP3TIp1Wmx$#U#j}g*Ph$>bV-FyH)13$ck(Ue`e7NXDMNbOr>Owa$ql~+X zDaBKyvMD8H|BVF+={`{edJbBqfjWVpfAA|%lr#3crEjrZFkiP5GXwL#B!UUhS0vBn z>x0aH%VGFOGSA&nb~xAm1MrCQK;T0Qbf6N8#}a~hdxx{52Biw6qwH|nZVUv$((j(6 z!s^H;*QBe5hg@Q#Iq zH_aD|tUR9o3R|sZLGux0wd_}}?EgJ^tQk zK3fs4yqu4m{_p2EbT2Oei59=*hFjn@>aXN~kOhp(=Z&pICOrt3{S6qz6mp~X=>GHs z@`VDVrG>uEWL!?AQccL=J8Zz!4fU7H1R524Vh3G<`1o&fNHep=HJV|Kt(muJAMsD7 zZ5zXoVUeBTfBrbhmj7Efx*(w-(qM^f=Ujdu0f()%1nC=3i`}Q=H33RrAdUZYcBS$4 zUTeLp9YhTNwSQ+P092nSsaXS=DCM$(e;yp>d%CLnVPV9;9<5vrMFUNZkRCqbodCFh+%Mn-Od@s#XJZv9cAjP$G6Q2@ZJdfbXyVz|nfIXC9SG7f_qE zpgiZZBY3-<&4f{Qb}J5idTk`YW!)?Eyy+JSp+f8yE1N=a?H?{-XL9N*Lh1cnky4!d z4N1rkrdCr0##jsTznysF^m@Pli8j9-7lt(OXWZT1Sv3*n4OLMQAcghS8y_C8yP^v` z8SsSL{_354rH2_1lt`bTWHTJ-{64e2qM@uHx?-$Xilor~lep*Ev=}JU0Z#3MprByS z;c!xQGVK~P+y>xS#Ex!u`U9W_`FG`KEzr+~wbF%iyj;uD;bal{08F9#_6-e_;SDY( zhO`HAx3@&by${FL70-GN{c}LizDM)==3yQ4>IN>jxw*VV{J(#J12~}&<54dZ)cV{U z&C+D_0Fe-Lnq2=chyW*XqZ43LJ&@&ZqSSUTVIblzE&;w>L5Io_%6 zWjuWb$2-XV87Jjy2@@yh{J%$U0FUMabSB?leh>PAw(jm;@8KxAX|^lDS8HDac`k2u z;D7`EP0$iy|V5^#{LAy7T8F8g2{<0o(S0w_Y7!)#?e57tn;_Y^4FN z<%NHb&!Tn&%eua97w4>Tar=BnAFg~a0B70X1NgYvCn2ur&Swb`{~-e`as~$2{{A^G z7i(mnmlJ8UHK{ZfNVfxw=zis)kpOG|U#b3u5|!~FuET8(gFpb|`;P?sHJpXIFWs(J zH`LGXk?E%iCJPH&uvn1T>u_Y2Ycnl}oj`$%G2=hm7TaAckK}Tn$Gg6!wBRloa(=vk zUs<(4$O&+C&gBLV3hgAOuV&xaI4v}rsVP$))iovoh{Q#caQ3D{VTR_j2CQo>kn{TX z3DQ1a$2f=aIJX8u5YO0)|J$72jowdeT6NpLY+l!$T?bG^JaHg>ooA~HEdJ>kv{F6L zn%m)PqPY;jTXmeP4Qu&F0mX=Z8}wctgX#)${KHSw<{|s3G9~ z`rkhQDJniNet%)tXga3l;vF?UUxD~hfDaw|DT_CzJYcs0(*Uib%ggC zI=h^@Tos_OMs*98b+S+j>v7)^1>|k56(|Ntv-o#`qQX#@d!>Of*$FJ*c_&D-DtY<% zkgynYMs^1yQSrTq?7Bc@vdX5*-q`5chy`^`@`H87R z5^n+=oYJ_so#?fqQhm>hM+9A;aimVwfMG zs5`iXf-!wV;kAJHPUnPQ8rBr5twA4kksmnp>2CL9kHmV5?0>c@Y(dJ*Ot9W^F}yn{ zVQ7sHfgEd9rp_oWW%FuX^VfLPkAQa(fr8!ANhFzu-~1v53X#vyjKY-jC19?mR&A)W|Noa z6##xsmC(=tYq8x7L&W2lRilGKj1b=Lc`j3dB_B}D6h^||c_wv>6PRsx)c44V64@V# z9+yK73F*M41-<|aOT#|3#y27XFHmmo#_Rj#kqE3T{&lfn$SxrGHj_hR(7~4D+$4lS zLRwyg3%F_>gBz@;S5_2~hS!p(SLJ0K>bCyvs}PqNf-OqMegx?;8E{1j6we2@1+f9w zKND;)(KDqQ03xX2HIPQ=6#S+ zaWws8GavG#Q#tBdIMA*E4_X@r{U*QC@PiQvA3M56cYm&nJJz%`)C=`fiBFpXxsBU7 z0@}O-=wD4S-092tcR@tRksscb`L7CoE%;g5I@{U;$#Pp}ob@GGcl*L`;auN-cL6D^ zjRgx4*Ef(8Nq=bXZ&3uqE+i~`<=b7ZW# zqod=Pp-vX8l5*z4UJMceE>N0UD%0B(V@C%79}@5(2cz*G>zz(QnV7gj9QGH5*t*a$ zFn8s1K%kLviOKe5=``v<00?afAUHPx?lz8MWLzJ2>}Y{!Sm-0Cz(M6kYr&qMP=+bZ zv-7{9cFFtjB0#Y8;yfP-_W^9T()$SzOh^@~*Vt9c6Y_@~IL-4++l_3uR0h8@=69#rs%}9cdUd^U#_rsYEnf64q8N5P#$0C%Y7xl!O1;=>Vz>KDZAeE5@E26pvo~^ z7>C8?=YhXivl*hTZQHA?O|km7I0kBUCdX~Xz8`2^0sy-APIE6H9FWw)qJC;YDJBtdMTLZ z=R)iK8JbR!`s#_V^^?eNZn%tp1F%y7jDsTv@X{l*^SGfvI>_MGl*sEr6Kcx`&wLJS zrH9~n4Z{R_GHnj~;UQ~=7vyXy*x=*s2Y{+Tfli+Ce@U?q%so&>(pKANK=s@2a4I(6 z(Jar)-J|OW-6oDAwCFhAjfoX}v(KMaJ?jLjC)jq2-ryVZPvGxTXUSM+3tqvJ^a%qZ z_i4<(f2P&_0&I3%nea-%u4}0c@j(JRFT)e#*b=;BHM|WE1$6Nh0+Lfe*>zGdP)^+D zI1pl=La(w0SyWe;Xr^QZ%NX7jXs#9qofo+zqiW~j z*yxSg{p;iaKOC{LLaw!kijE#~dxX4yzB&a18?MlxgGhw*Ll~ceU3E&~=8D9#Z3@sA zWfc~YWwO>F0u;s1%JlW2fNK2J4JznI0B}39=ybN=)YL4aU&2J5VvXb3T2^cwx7zH3 zX4(MGSOf8s5}#Ff>$V%k@AWTzWCs zALGHT1V|CHh-5w2BY9+yE8mwH;id~B9jx$wH4S#2xfl(HxlC9I^&)2PGVig4%zk7_ za130_SL`Ox2Mf}9ogR>R8sCC z|9~wjx^b?D-;4~Dj@~~Af*tGe{_IUnITXSTphm!3SxKNBM9&q7v2t;Tt81eK`C_8( z_y$VE3fCErTDrM=18u;KvyG*vVurD9iUxLEqY1a*z?3a-0LqM(DcZ$jmzD+*!@%{d zkK`ZhU||1bLH@OdA?w%syr4>VdKfmY8eP}Cl-lNCz=F@l0S7CXSK_Q+6!Qux^otkd zdF!}r8|u-+b|}$%Ft3(b8gb1Zi2>ZO^_UMy);a{4)_hmHdgS=`1V+ay&R8H))E$e% z>k7$+Lq=o(FDttz+$Tj(k3X093;Jf{3<)hQ7y|>cV!0Brh~Y?T$-pVr0iLR9-njg7$=)!w!c<&a`R?N13P zsBkM<8lRVl(-o*ZbL<(32@wOw%q~L5Yb)d7hsfCY1)-vYqPBD$$3f$#VAOeFH z?0U=7^81QrBM9`VcY6me0Dv5hx85Nx@FMMcyTjdYd-{*(>}XCv#k}AHuJnn)-adtf zBV1PM_d#L^qk*lON^JgUz|O%LkzX>-Eu{ya1~qJ&omnPT-}C5SO#& z8*-xe1o|k@r%~@(2`z`~v|l-cQcL}6^%R_gicrRymGTVTz%_^^un4-e#QC&2RSSr* z-b#V%=ABjwee{CD{q)ZmY*AuP7VI4I5s^UGqkx4ipU516$FemZ46$*0-1I3^mH_-B z&aC&f^JJDg(AXcp(#{$YE^a5JQ(tS0YVYI?#*!i{7eiRc2&v4?eCwC z#fz7tM~{whcD8|~rE!r5(hGth{8LB>%1h+LiPKoWek1hsc9S^IP~r~R1H&=mJo^5x z(A8CQ&ECBW?AgPfayQhiI~u)ub)mI~#!3*%3Mn`^zAJh!KZj1Uf5x(jT~Ph0v5vmK zY{E^0))>^P@~>$K-~8zk7IkyQmi}58de9v+b{)mM-i02{6daiKDqfv;5^w#IhV>nc zl@OE;dTsD<*dc_h@1d~+QXlU{mn!{WwdfoUO>B-`Z))LpCUJ0friXfJ z(ejA15a&>q$B)&#vjG8BNyIlopFXc)*s%T@D?um&O9w2xNS)ax-O;|X39?Cq z>E|Zm*uLYy&~1p_G!T(j=AeG#rFc`51ttE%YBX#<8jlTK(Yw1R40N@SALom`zuW=Z zeuKPIAE+Mi{4;2;+ZO&Lz=JpRKweTMh(LiV@ z;Nzo)l-SxfhLu%gI5;$fi;II2yIrAz6RfQz1C1aEB@Yqc{~$?8nb@&oGnOowL=To! zj2#PQ>SFfd6fV#E>+@?;7UMi>KOzDo=#B8xPu3VZbOwK{#((?Z3wL9dBJN&dni6t|2=5lu0Jk>DJBYy zKHP-EUk!zwI9;F1{rf?5|2m2b7k}0uTZIFLCnZc}$eNwl ziE|o5_U=3{M1>zlyl`B(zCN&dGq86rr!lOGF=G~>Y18J^mMu(7G}E>Tf*|~h{eXxSiqcZGesK2I(6JMtqOu5lpREX z|3|R5==}LBxPJXIE?oGQ9!??X&;jVxOP#ETr?KaF@#p>PaCi!P#W_Uf-aXZ;6di3x z+igkES4N*cz0j^*bB(ni2*TgP-#-{WKIif1(LLO{^%&*LN751uBcnjX$LAs}j6?2# zs3_H$;NVahW@a3-?Me5j@^E!^qA~|s>}fv5CL8c;FMcDUGnD5OR;wC_sT0; z9=KV*KK%n}so^O+<$dAuEF7M~Vw_1y0b*iQF@Elx4Njia!<%pR!k97R(XgQ=HdYV> z;ZJz{I21>Zo*JP;pWj_x<*=)T|zXXk1pwi{7r-BQ!4 zAP9o+|3w6N2_YjR2e)tEp~W9}@BWNOkB-uVH3|(HKuP1pSylK!%7ZvLtI8jRs_?^> z^NX`roF@kg2!P`8;(X(&srIzgrH8K#I&^4EZMH$PW~B55K`8bF1%;Amj-z|Sb;QPo zz{lqfbak`ontnvrcOc^8GL>)s7W|}{1Eo-TZyYz? z7sieA!vE5R!u;t_6)xwvPL3bvfm9sZ>FaAvYhyS$IiPRfzUbPu8yYvRt?n!c!hc3k zP%!rF*@NKVdvx7j#e)aobe-lRFfdWckQ5uMF(fKf&_%0OJyEZoCw0~vqGCl?65JNl z5!Z)-ff04ab?F{JHv>Ts1mRyr1b8Xp#*GKqvSl-V{P8f1jkDnH9z#pK;vMIF?cjplr8jb@8wkR{{7Gi75`*2LQ4RxFi zXk89Xn>I$3Ds@P3x2Dc`Ev0iU2!bFKPeg#1Qc_aVaryFfoIigaSFZSy01u@H@*U{u z#V8MNehtmj4iF@~MASxe|6UjU{Kn%?pcjrqD~yV!Y6c&M6OBl!u0@ufEgL zw2+?eL3I^KSXiK9#q!jqD?B|L!`0PAnXyw4N;_d;VRX$!(E2f5ANQ%l8c5ej42ka; zx@KbN`in$HMuyVCH8%q_uBo4)SEL__NEip(`xN zd2lDklJh`N{>%3FC^0h#+x&lRB$+ zNMOexG&D`whXu2Vi7CpLw#B9We+i5oY3 zNt9p5{rjBSEQ$niCJEvvBtjygs~e<*rSL>Sg%bwx!qe)rSbsXcoW17H4*HCaR=wps zl{HVR&)Xp(+=dPbd<)px)`PjZ3yFLi66+q+u0GY7!OF^t)^^J4dUJCV>IhJeKoFjR z1$1I!lH#?Fi;G5TYP^!#Gchq0;o;%*TMMDzXeRy6lSy=^QC%i21@t+OM6?TuY(u!Z zI@9mX8t(3%N+uB&*%lTS^qZufryvM|AiMw~z=gj}c6Kfamk1;zB;v`FK*YzV(-KA7 zPe|lEKy0ip($d07Oy?;goM+hM89kkxR8h_gr%fx2F@F{o=RDApLs?jubBaX%%(=^1 z$Y*6~k!Z4{{q1Sno&>%n2`dxm>l>g(4JX*!JD^gfs&ot^)UNGL^?9@{1J+6tsi~<- zEVaM?BkH)_LrO{t{U!rRNXL`7&Y|B+CY7Zrv&!b=q|DdV7%RAHW z(TRSWjwG&4sbgnEpDUB#HlvPRIn8wHlHo@X1VMPYhyWK}I=Q(8%Io{|^mGzEIZBp? z;NZu~wAa4A*ANhJ6%QZYL118(BBYx(RYO?#Z9RLkz2^K2Wsi9w{Fy~N z>8@X6&3Vu$m+@?${5dcX)EQt;x&hVe(y_~vpf4aHmP0n&A>dj5TAl{#Qy^zRs~gd=f? z$kT9$leM)SEG*2?s#RP1t!QD)m@y=*O`)Tstt=dCt*2*5zd2L!UJHUC2>%Hpz=i*u z+qWMgF)<0yco42#yF}|m+I|9OXG0~V#mp=f_V)46)h!^AoTUgY_M~(CIfuEh zx17rg^%OfT3muon#;P4t82Z8OMT>zlDVr3H(fW zdUl41i6z-k&jAJ0o;I2_>!f(sd7A~jt*rxz`I=OgtL)Dh8tT#c=_;T3lH=H6V>&S% z9WMLpOVHTZP!XIj^J?Wz62HYL{F^-6$x# zxp?u?uiu^j9;Z*AR@VHzb#?V{{P+*_T?&P;E(z*H#rA1f80Y2XqhdunxVyV3Z#8Py zZbZLT+9uX0R*w}ayYM~_dGL$&mx+LCml{j;5%idlU<}4mrbn?VR*4C=% zE}Xc8LuFWyb3HFC%z3aW>pT|i>~Uv%ZjaX-v(9!5uM-kf0bd9oi}z>2tzK>gbSy(y zS-DZ0X3F-Tql$b>OIH$}oL8NN|No+;#iCxb@f`SE)IqET)aeN%aUDx#T6E3@NKMUG z>Y2pEJfx)LQJXqQP7XjwNF>tI)cp&;JEMG^KfuUHpT4t&BE)$hqAvXda3}{)+GJ>G z1kPn`Wo4n1*QwK3IR^&^2PG6l?ZimBNTg1uIEXP3PpNiB9!!w+$1j?F2f-*973ZU<~i{GEb2Mr=8tT- zjO)X~{`g#;hL2b1+2{QV-x6>K!PHcXj-}oX%*`v&wlkf79*KV)I5|}!n{tXcW;kCp z4}hh!qraIp32U=oI~d$VxpMZjzd8N8=u!sB4Z2A1`>>N?KG7mKUE$ro4*p9u=HEY&WwhKE4jDZ2aDbQ7H)NKRW)>pQ< mh(A9Yf+7flAPB>XUf4ryUD+U;Q^mR!!2DSIXDFS z*}plTUcB$e!ST1s%FNXHKd;qNUi8HDRPvwCooT`SSrP~p!YaC#SdOOpKFyLbM6Ifn zPt&+zV-Sc#2%<@Hb=oxqZI4h^2oHZgKK{NEdCcG6|Jbo(^Zww=e7T!tba_7ctmfwCOCN$& z`+wnrbq}k0bn85DCO&*ceAh^eDU$x{a(l zBWWhd^b=vfFc15MvszkoX8C`g&B3l+Xy-T5?ca*h_k3LmpSkwv(Up)8#DidnsW8Oh zIQvz@r|0IxIRDi9+_l>j`u41n@j$i&3VcJ~XUyy5DTvUWVa)bTkg1EpjwG>{zeqBX2Ffec)CL2Z2kTAr?Q;f|= zTAA-S^mc6}w||76R1MhcZ%Yt7+xJlR-~PD4`d_G-NE#a%t*)+SWMrhAWN^=Z`uK65 zs3?~s|JqRBDVqaZc;jMBT&EeqGY+lRm@aoku~cfC;Pr88oOR^N?^(~a!QIl*(vCA` z;6#L@6F{`OopyH4&&(8Xu#h-*^eB}|mGhqZq|;Im?0kdfCZV|;OB!4`o$WGsca&c+ z+AaM4+=l&?-&vd8gS)1s9o**s_jQWQJv>VC^2C;{bdMe5WI|Tg)<`?%CzX_*OytLJ zso%k}>PR(#ZmmhkwT22g);YJn2T@!I&b8{$4|Dg*kIK--Zo61`^?Dd;e8Ifq`+5UT zJhzJ&5svl`qq%4a_W)&icJ89qTRMX7jKc zpGI)Iy;-(`Tj3{r-w2iBZJ=>+aRdUP?EQS|Verf>EkH_IzRt_d z;Ed!K5atW%){DrKp-LSubq>u(eS9~{f2p(4U~(Lui{QPw_DOvBKpR{m9>?5MY1}A` zZLnQ3?Uo~_b9ZVQ&&TF?PvH)~ayfMIc&K4aikc4=D=H#lY9|ab#5AA%aAIvwpXR!M zKska3w&ThuYh&HdiZqU||C>H=X=%N7r2Z#~W3llISnT`{9+(MtodhOIOv3l!cf}MX zKK1rS)|lMSi_co`#ZgXbZn?B=Ag8z0mSb6q(V7F}#8loqec7eR@7jeA4;8gi-J!}n zfxeGL?2@|;E^)po61?s5$j)Y6M=@di+DxPrAA3y$Ch6wc-4KsVlt{w8qOE;zBL8@o z(>&tZ<9_c}!Vghjw>dq4?ynOKF3_g*X>Bm>>>#za6G|TEj=I1%7}_qIGry--aa#OM z&w`Nc3miX}TfPXF7?$wIpjHR9SM%Ay^gr89C6Od@^z6|{zm_(Z%Ghmt2G#3<1cs=m z_9W=#u`wQ|8sd$&bQ1hqBW#DHdO(<={>J0N+FFm_`Q$>yuESL7)7dGooCt7rBkDvZ5cQG3q8fYTDY0 z+e!;Usp@gprEjEBZr_%j9AtMbE>K<-FP6#B7Orx|Gp|re&$}i*c1-e=JpDobW7}%V zw@&S{<`9X*N*I~Y+XRO&{*Y>7C30M1BVSF1spYlVwrLgi?L7F4m;_n8udh}%*zQXmU!^Ctb`GYXZa5|3c90gB4mDz!`pu16zIHV4FDqXeXr{3ps?qJh}A@nNhS3F+2Ee`*~5snN0PQu9~~$KAxvFFSY75hat! zaTD#{V|BS&y6v4@KUs-gS>T{j!r0J6O+-x0*Wcg5EbZAv9{xn1obYr%&Xu&xOxE|l z)Av&AC)z7|UOHO|eaM>}RgOP#=Ob+iviYV}xhi<-wxc~iKTKVloG#f14)v!eHCL32 zutTOiwoc;>_@M6X#Ttq3=C@KGY>!qP<3{O+-`|q%Ca$D{y?s;y9Ws|wRaI3`P;lT5 zUs8I3p3ce)emDqpVMw4MF7n!=@j9K))+Bxah$0DuCBlz4S7l{o{W`3E93zfs54y=W zio7~pcQeNOGUa!zFRHGus}c73?Lkg~&PM%eXH1fBhhHsUfCQz5pKSYE?ag1ckC$+9 zUhoYyU6<6hhEQEXsEyL7$CDGxl6*$Z>xM%eVc)-hpRZ!~!Ki(pvpQISN?VWN>G3Yk zMEgIKysmXE!EAqwH0N4}2ERD9sY#yRIx0a6tCtMJms$`2sHdpw?+Oj2E6;dO@8I+~qSOP3BQP6=F5xA!7s zu#bj|4IYFO`zBkcJci=;NgF1=)kZq;b5bfC@z*YoeULf&umfK_c#qf2@wA-7^n0!( zoHBetHdL;TS}94sM~y;A-J=rKxZHTuH4ghcx%lGOlvVM6bnfyEP_QB=C4~(KtwpQL zP1X-0Gfe;JEsk|`bVQs|WXHG*h;iWvtgr9#HE3FXEr<2fT0hiSK+o!_t@e&`6Th{! zwV^2ui$=*7ap*V?Kc>#7Fbj>sxHQ9T5PH5zRjpKK%raV&rpDEwiJtl8;`No|o6Dna zMq%)#gL=_Tw^2Vuv1yMbh_+Zec5$rt=8fO_?40d{fuv0lmXf;H*m(XrR9v#;=GVax z$U%|sX9$*@T@pHCsS{X z2sdt|bZ-ntFK+lN6daT0j3DaBydBs*DHl_ub`RZAyZGttz9V3(GQ6PZU$3mHD!g?| z7^&t!^ZzbEhI~I0?+1;Jw-av>v5-iD%g{>t_PA>bh&rJSN^Da5)K-abI3(mx-7R*F zp7bzvFBbHkjry5e-QV7$1UhG8EVHBrL{r<5jySY4NaFJM04Jmf|MIDquTldjaPOX) zh6K6YyDs^w2k(zfI6gPoXNQSxh18PzwP4JwkGaU{Yqe^W78vUPORGVYbJha0O&=>+QuSTM4zgWift# zInYf$8mEjWZ`)6b)KLziYN=Z<_Tc+FDq+k!b~caFOxpNS^WIg)jhA9cK`UHJZTz;O zG97zw3njLO5AQgk;GSezC71Kw-gkZ%vLBNH6g(zND{Jd=7PZwtz?bgur)GX4w;S>t zXI18-A+VN$Tg^law;v>De8fr+L@xJ)EJ>i;%;naIIBULJU)@(1G~PAlGB_JHkzQV@ z9ZjPQe=pxbxj~Oyy}Sp{H<8A0wMjV_Asb&XJw!=^9Lza=C(OPxP9agh=2+S7s7k3@ zi4 zOV%x<=*h&${ib_N{Ks`b7|Nlz1dU)jpoIqtHAHP;r!}5*S1&xXel?GUf7pH z@4F~7FC+w@$O~ieD6d~54D4@R=4RY_kR$j>UM3rRt#dI5YIZj2tL#z3_{Y=XnvePz zl6`n21nWud{>3@!Egf6>>|3`r3t3+O=V1F*>0!&Rnz^6K4c4=EGuBre+uGXx-`CH% zbl%O)4M2P_P6BiukeLLbI-=jLtkhY5Q(V0sHNdsh{NotoR>5J(x=ICe-&rw4SLxzmr>NcGyA7)^ZbIYo%C?a^j3~v zm%dk_@I%Gzr)uP>Q|$Wk1Hi=%^@xZFxtb{K)LzbB0VwpX9=U&HBvYr(e#&;iw&T!q z)F{^65R0sZ3#%rRjC=?MV8e-hW2ey#X(rYDsJ30w=SDCZq;@k5R`P#6v{H&()|K{3 zy1K4*V}}Z+p!Pdp5a%n82bs4m1b)3_Arlf46DulwK|z0T1iEmhl2b+IE4|w~hKj!6 zk9FS8Leoq=v8@mW12Z(<0fDLCPlCg2_%R@qTCOK-y0l#}8TPK)U<3vq5uUWljx#>| zeaCN&DD~oq&?y9ah!pnRqaitT{^ze>j;|{7kKT8nVSdk&72LJXfAJRR^lz0P4%vzO z**TP*)M_B8>iO_3$kd2>INH^fPN(O*dh+B+ZqkAUHB`3x>3)M=vR@DvnEyIrp;{`* zp`UwB`jF#W5@9grXcgUAgo>nsRzK-o_{(L|yNb?Dd5qs+M71_8SznLF8V4&y*DFt~ zaY~=Z_U?9T9r(982w2>q%F4=w7||(3aSit>|EGu7sz3Y0t7uz(NO}a267gJnrt8+$ zR!M0o<^zC}eyNz1*F=FxZIta{(KA}kBgaNHWHLf-o3Lx*g ztE?U5*tQzU#Wi$IQ2N5yWr_~Uw+jIk_TWVl0mk4XvL8i4N(vu0H@AF|NyN2J=WZZ; z;^Eq*gz+|)Pz*Br$3C>SwziX#(?)c&h#m2JM}fp$<4Izl|6K(#a@u_7Y1Gh!=pdV-%{NsPimsP^|cb&eCc-2o3y9&ATe% zeEu!AYT@h+_SVapVDCjX9v%m;in|P{wf6Q*KfYI|?BlazH?yHs4-vp0@u9h{rr<72 ziSGTBTUd~wo{TfV;ux4Jp8rB5H*mN->)Tfi*#}}p*Y7Rv5$cg3HPL??U2?8 z06HC;aw|=K`N>R6oQoIHE~r-huwN7JvT*5t>t}f?h_dHi(|zs{$bheHI}-VZH?S5hpLFkS0X=7?>H}VQTtD%vypE)XKdd z{n;DyMQ=^;ePbE}s^u!8e*Av=@gu$BVwK~YPc3$bY@S^#K)t;f;Yj_yt%xvz4$#mDrzxo|Nj;-9e#VXK?Tb6VY!cI zMoVD)tB?*K9$8?-B*>O^YdG1^pMS;Bc6ZQiWOmZa;(~4o$;YI0bs5II0XZbs z$?JwFcb%S{6*b+iUpVCde(GAo^66al+ytemPqb{=3v4Z!w9r%s7J7x7%J z5E$&Hu7+!Zat8LPiEh{>)n6k01lYXSWA5AWps8o~J-wAe3(>=07rh}bofy=U9aaGU zb^QLnrz$`^d6`4JZTY!5SImodmQ3irBxHSwPtM~O1#-rU zZH$eLu{2PO{8vs!!;MQ6uCpNOa2Dj<`_BC60qbfd`&kinHyb(W7j&c2^!S!uTO3Ti zh6wkh+Wt{@I@R+_eQMj9MS6i!@_#tJMS1<`&I0@0obh=HbT>4*y`uvThe!MnW;X{L zc2;ujgVOTw(QZe{)i%qI)I8kmOboI5={TkB3mT}Qc1^8b$wCDbMV|ad#D+II^`+=w z)<>*3N~?y91tXnLEEsrpK@GNgpnhyBsGd^TvdVdkw!i-|S1s>W(Y*2{K*WlPinbd< z*#Rm5I(ueMfB&_QmLO_m{8u67<2C4dJ|`_h&I)QDo(sI;GQ@o+Ioj&>@wzg0>;xTi zbI{sSZPpZcsj%T3f&OUVGPeGC-QJKG3b~Rn^aBS zd5RR?`u6S2>C^4M|GhQmb8Jqxva0G(PftQSpQU4g`J+y9gUvNXb6Qig7#{;lR#8_L zHlo;s1Q9a~u?K{1Po>nr%UIMXFEk6rB=ol3gG0Ek;ua-_Tdg<4Y>T3K1auEPunQMy z%J%Osa1QdbTR%v=c8xp6g$)yD1>F$2Kc;79M0iwPJ5V2zlB14#O8$zFp}{UFXCF~s z$Xt(nE9OdqBdMVwexG<#9&aqR zT90dziU>7hwP%%|UfWU6E^WC(s{qU}o}Ux+tNF|%kRk!P0W?clF$oFt#rF@0S6dFg zA2zySt;}7k=4L0SXUMsnf@46Zv(VtPgHv>4O8Tj@l)fzVayO)@6=JK8*o@L#da-A< z(v4i9<&18)lJHYqxsfc_NGghI@SCm44SX8+u=>k0PmRO^rQ@Orn{2X#J+4{G`T{~= zxc@ojxD%_UOW&{68oY&*cwOHrM2iI}f8VJ@WkI@YprCJBS5LkRf>yGq^WD_>49Gi} zO_$HiFHWlu>N!)^nTDt!KQCHN?A(z1qMf%u%`}y}qX6{fckkY{8}4Ptkt6$IDypic z4mW&r?>#kp?$u=AuBoS>lS^5d3iGxbMUO{Il`5bb`b&VYHi zMZ5*AcqD>AP#Sf3)F3@xe}8ki=|sYE3er)$E2R~^bnzo`2J8v4R?RFBvwRZ$A~`xo zA1i?x*Z@U72>JvT3~iT&`bm&WlT2!9l&Za(YYn-NfRy|o-lOgbrx@9IdYodRi z$2(y>Idh@1VL@ls56Fh<881#UA}(=F-8lO8#DjyT+4F2HV*^m$;02TBw>E~On|&q* zBR|$V5$L3HG>Zk&zax}Ne)6y2YXpe{E%o+~ z&oyIgekvD>)y(-G?5J5-f48m;84{kv;#x?XZu%rR6DO%{mkxxF4j~ZL7XV3r^o|G* zOkCZ&{=LVMS1HN``d_?z)%HKLi!?^6r;)Bsb6zEIRhN{tKCCP;Inj{*gUVirpCJ}R zSqnKqH5vX)*GDOdbt5tY#zcx(cKPUEt+#K~9i+_$)=k&S)^vGP z)?||(H73uOn+_^g>>imZWZk&1{jt!|gTm*&-`t&l^XJFWtH17aFfT31{v_*Z-)R=o z$#>>TsAWjf_iUtLXYgEDS|lBOkSueQ1<8Xqi}~5x^%z}jJ9dEvGr-b=q5r|=`mAU9 zZ6w-EyI|kuh>!Q{1n?g*eWr7dJ4U>tbwT$1x*o(KtDO$3CvEj(AE*-p_(06RX0u*F zd$b$s)>=YsFP5YH*RN!&p)iG~erY%8^NW+W$4@OE=UMjKHO#Ar++yT&9=&|usja2B z^W~T-8cTCkNn;tWCLA|R{7;|Lu%XW3?@Z>ek^E5+8&K(=i@0~qeVip%fJ75-CnWqh}dOw{`?Wp^t(O?n?chMC<|W)FbX%br;I(vj~{=6 z;TJ!8{|$Mia^lf2Mw}df6mf~ELIG1vIn~b^F&1wvLAJfg6O3a*+j*ZgnbZ8L(GqFc zs%EhS`o;xiVRdC61n6<{kpo#`sDa$9X~Lho$5sR!Qz%2YVb93{E9|wslrg!NZBN9xg@c&uUuWrq7na!E_)}w$cz=EPf>FX1H z)R)UEW?O)!l=S5~xUSv%{IOHfJ}f{=RXMvA-FCI08O<`MVOfxQg$uv+k4iH0#lj;8 zHma4f2?MB$r#NQ8I9u1o;w!|X$L&b_3#Zl%td|TH9rnV7OcUM|w8snn4~4!h>`9xx zfS5m?vd83t^3mc2MrUc8ISLcYq6&6do~2OwnqI5cQR~-^CtPczy$Lur)sN3PB{PdV z7ISqa^?=VE?3u3iLhOv^*ALTfOiB92A%fg-L(@0XA=MEqh@Xel)hslBgZyOs=9f6* zwHe#mSGeny3gjC2(V+2rBa0ea@{5>-%0U7D;9%yfNWO9ifaXKVAFtDikDCr%;K5?C z?dF!ZbF;HeuE@v18PxYBI=ao@qe?!%3``XISiyS7LAXTnOOYsC32IPwSCnhQ++fFs z*400}NjN6j6r;>kK{$`kfn+*U3?-q<|c4*7PF)|itV`T>GurgpN4c6XBtNn z2>rXm5O;yl>O3gSj{)_25-o5)>?D<48kbHVSb;7yJ(oTBfSeRsvD@sYdHVJqO_`3T z2n3>i4jg9Lb1Y3$(o{$4Rnzp~pkDaJK@t!c2}&-;_dpEIzdS1fKT78gHztq!;oanvKSN%cXL z9cCt#=RX)TKxK2fUe^rcK3z`~D1^dNR3asdUp&{WRw3~G7}T68pSG~o=xy1f=LEj^ z>u59$1PF-aAi_RBtga-YE$rr3+s-pjbUzwb{n=XEn%7lcl-1VNWrZ0+9EkGiq_r#b zQ6M0yJjZHh?vJTD3>L0`;zYJo{mVc;l~M~Hh`14HZ(VK%MP3pt4}Nv#!xGHr_QL0L z{(CtJ;D0E9CP8wQU%9Wml8#*Ck z{iK}44Z9Kr40};`RKLZaQJVU!Ths6jQaA%e?CHO18tNJ=^K@&1xTJNy8YgSVZ+KVA zK5}F3^RN!j&sA=h9Ha+I$A1Ujv>+LDtFjaE>IL1}acLB=}t^OoAYQ zoL;Ix=^X0l2E&SDdi1nF7xu^Sq_S{25)qG#yC@~d~vv*&p= zP<%Q|j~o*|b#a}%vUBUL;P(A#^ta2kc#cAYiq-ckD>hy3)0|WQ5QPx1wk zq)2*C0nd9?V!FGYJ{p*25$# z7sK2q*OnL_=LPsWMr>_u+YNbwu6CVzTLxc~7N6#xN=f=$@r7sl@b-Q=Eo+A;j-B_z z6Q-ihMjS7nsr(*z@}#J+Fe3hfD!ScrGl$vpVB)r*HlgU*?3pvL^CaGRaq%{Hf+5xv z6Wbgd(Fz#@T#vgTC}03nQK$prJi%o941Yr*ZGV>mK8n$^V*7**jl zE)DWmqYdw$-xc^@8h$y|pvu3Rybg=XzQo_7Yq))~PF83$PEs#`F>OQ5Q3yNXM*1cU^9C(!ihLaRRq9l`p zz_;;K19x|ncMhMfn9U-3I(W>SdfqSC@i{gdd1<+lm*dL_>Ab&?mJ_du&yTxbGMZ8= zDimf;eR+BZ-jltLG<2mpr0v#cp17cgz%bD1G#OlIDNb&k))h_XNy6dxnoR~FPvnu# zn%a(BSUdci76pXT0c#Dt{w(y2spm#3WWG$(pP>wh$0sfMq<)wZ+(&|te>#cfe_)@H zka*kIo{r2tqnuVag39GZPHnA>i?r%C{u4<+CI+=uo;lZcnc!>xSfgVFBw2gB2zz?ae2$fd5cr;-`)OPNY4VuZ z21V$;pN0ms?8sRmIRqjDk)!OyTR6ilmz`8z>?dYWAqn{RGgKY>!jS4eEo%$;Wwn&Y zO>f0f(;{^P*g^_lvxnqFY|fEJ1+u#GAmJ><&%R(sTQER_)0f6zVz%={6Z*8c7`ER4 z)M`fCVXTfI9MIoY_cZSpD0vmKh>uMV)e3>?`0`^|HhhbJbQNOPPF#dbbnm_Or*^TCmZ;{_mjvb=8Z9Kh0f7>uVK5hdXS7B$_bV8R& zI&R@nK@uf5#?YL}S(~~u>Hss|+lkud6b6N-(3peERVB`1rWcUTtJ3%9E4Ax_XPA}e z%5EA@l{OLd6_Dr`S!h#z&g%~7Nvw-#y1+^sm*{M${-Wgr91&0K7fl}tI!hs%de%;e z`gsVdBd3$n#M>}`3k81b>#Q19d`+0CZrdz;>)kJTOj~s84zh8|Z$=aC1x>_WWijg_ zK48L)!gs*b(^^bxPOVp%W}}R`^D!6VOQpRFBzLW!<-`z&vvuFj=q5M9-}Eg%xZQ60 ztKym8rysX%!;B8jf>F1eUPjjnf5SYD8tN)7XK}oG`;MOO$x2A_(|E<+X#Ru4b&E0g z-*F0?N%`kZPotaM%T7O>q*US50l?%CTU*BO$)(ZNG?e9JXrk#7AUYY)pE9%zdhM)8 zafhiVz^2k4tK`m*@$o4 zr?0Z&yn@}c0*+r+j(oRB(GONuW|r2p_z|7ZOOQfM^zzJCyU^>?HM9#;mnQJL#$|D8 zdLif6jbmbB*0b2UYl~nDde3^i>!4cf1E-dQWrogzYcS*$j_bBEe*QuUCX!>N_jwEy zOam+SWR&BM_+%P;%FhTVv0N!cJQq+RgJ>RSR~^6yZ`&L8f^L~UVtW=*M+M2|XwyR& zU;vJx25#>mSZ9XeP2K8KvqxJ=a6X2Sr~Z-H+v+ZQKJMdvl7hMSs9SFzIAa1|Hddx_ zjM~leFlRen)h-b(fd{A_?>KL%yVPAI=spp&W3W4tjVTiF{x$cRXK1Yej6|<;*kxuC zl$oB(NBCXgp9yJX?xNo`% z86n3cWQ_tUfM#ugwbD=g?<}PXAoI!+xjMEK3I5SM2zu*OYhf3Q#6U^Px+>(ibgW)SsmTZ8fe&@g)V^2=X5!34|3(ik#)zTPCDT(9D8N`9xi8_ z1I+|S_bdbIHkjLNk88W|fx-Fc<|P_n!k~$ZQGUSO;ZN! zu*K0ZQ1RM7<3KvRvU`C~c$A&1&-+v56vydmL9J$96S?A)+YXXtPQj%6=xb}P!*M-= z@eTK2>NNB>ve@9wm0UY2>lt9jq6Ri(CrL9|X!x~GNGrsefkC3s>vugaB~>9I8IP^& zd@#wt#5H5nTVwS8E2TG2EV+4)bm(VldPyUtFV_w20KSo$JC1plber$1%Zqitb&rs0 zy-&xT!Y`&&&x9*K%w-L(@%}g*bC&JEaRZ7t_m77NKT`Kx4yyrnJIq`*A8z1TXT%Un z$ey`2Ji#eEXeVCkP;F^xStfLXN7>+&PQL0mr++c#3Jsj3=xbz zD>T3D3k2i$vj37QLgPB_d~!XJ72P}5ys)kQS3IQJdX!i)=r;|0c-(9}3;v<%jwWZwLp!MvAxgIfWGjRg|HXQFriYe9`b;tWgpx2vgIib;{Zf(;=4g9d3j0So~Q-w6WtH z3#rW8`ku|dTBwHDk(Ce;=>_>N&*(oFI=I$XF;bm8?*@V^&lXQsVFh6h2FVLfm6kgtS5=$sec;u%q zmz2@Ra1S9cp?-j?VL-(*SKcX2zXNnQLT^rn)@|y!a7oyFQ#6ItFUsSGus6dT*ecx9 z$S;-n;g_;v+IdZ;!-=0u1oc=Mni(dk6*4f3V`5A(F-MgLZ_Av=c;4@`UXsrSh68?b z%~f1{4$m%tR0cBpDrdgHiN)9NsEr_oGLvEH_pf(f#|ze4+9o-w&G&wVHf7%W))&gQ z?RMg5#CzSMrp{YWW13RC>0B5L#!tiakwCZbHuL16{|X&WXOxG>5zOeKdgt;oQOJjxI=)OU3HTd_>>E@xLAFP zK#JV9y3svq=I>`j?OZRFhDJAh#EFgzb=ThpB|Ohtku$uXt{;JC0G`bW4NAT$BKQL! zRou|hNjxGK&U1=`N^g@@@~f_8^VXocw#Y3%`J~QQPsifV=-`6&4*!rnc~Q~<8k>&u zLFT{tY+ZEjR!=)6BzQ)K`erC*8jx`PfUZ~)mV26zd+JfY+Ss1KjW-{g&-e?Od?S|w zqn7p|P9B(ZNJwuK++Vj|ISdS;=4n_stoQ;8QbxtI{|G6)4^$dZ3ju`KDbr+Yya+&h zkMO|wm6@LEH7ooeTcylm&m#1_3*ERZ#;X)M(Ynf;eN8ZCT~ZaBGNkT~ME5eb9^-cz zcTSrc><$maU3%Y}wNq>++|C+&C?z35f0YIJm56lGiX%xU?}77-3|~AjOb^Kb4Wbo; z=`A!XUH2^}KJru5cv{bWR~&Hi?x0WNB@Y}9qe&0jWxv&-b%V2S*W?iksX>d>wJVTc zXtj$=g9hqm2ZPN8=hm$40PmfRrqn}gBYMH-6u6U^%EuI35Y+D<-)i!_(CNJrT<)fx zPo~G+KI?z>u&s#pjcd;qWe@w$$NqP@c$s+MMkQ7u68{=P178w&idZAUH^#0G&{#du0P4>%@`*lL)b{~c$n+!y;*Q!1X+zM`;Pb%WXGl}Cvh z$Tju!pf#3}69B%vXQCGOc3~)7Q$LA>5;^Kg4fz8s!n61#M!-tK{Q&LjWZYXM+FQ;~QubG*-2FkyxPllsX`r>hLJwZ5tmJ(OyB)>04cG7Q< z3pp0}_O4gMg(}G|uSu+al0-9_$D9Tf0>FT&Dt~;Uf^f0xc`$8TAePXVmbHR4#PYoF z{7(i(#J@k@efk zAWq)I1G{gw7mm%3Le`3?EwySlYubvcQNsTayLFmYz^9q@pMK(&eD;+9U}^v@5}bK=EL5=- zk}Kl5I4He|s-%WUP~a6*TPX^#DXm<>{qm^k_>w*uh&-gH3uGqhY4h&q+N#WwT<<+0Tg?g$+5lsh`%Aim_9i-p{ zmPdxBC8-WHz9VTk>(fBd^|)HOf#=d{u%VPBNKctFpo>qUY3w;<#QH2{uuQX!%;8tm zxSIxmW9c{mGdwH^km*jG1uqn?x!MisbK_c~&iF1Vy~GM4%cvf}iOf%)`U_f@g?s$z z+SaCq$tGUNqp*pql79)rgx|Sy&tAO9`L~02k~RkRvC$mZ5z7j_(0q5we1kA#2q>f? zx@;_~q@v>7qBxGbud{Fv80W;B(Y5SAe^HJ`GN6i*#Y1?m1_c7%LM-H%=Pi8XfZA#b zOX$i(%#qN*}`UUC#+64=oVM%(ONF1Zd6{;Ha3r0H&INrEvB$odA@3$UdWR<)8a;MqaG z0twir2N-QGDEi!p%yC0M>T6Sg%_UC=h3~47rZh=%=L}qe#%kxn`&X!-TJ_uV zjaE$@^b>2}cbeT(${uatX)B#6M}tSbN#(9qnDlNd>2Y$<=LA~j390X9w>rH5Ln1#9 z)CWJ%e%uB5VK)AX_MnmX!d zVPU55=|>S{y>UF1Xg*LDA@#*@%lO*dL z9S|DIJ^)X#AoymnFHERq;q~Em&9E$Vn*v$?zpq*7YO)Vk4cv!`NsiPOJ=)(fAWn|z zZTbU@M4>LUf8wTd!1FfK&#LUF>ht#0(Aragl)$tum~inIXd0VzV%bsSq%?)t>BJsz zRvQ|6#b>%8=AZ{R$IgKoq5o7N+J@{aNBgGeCn>=bFtBJ67YOYicV_@ zv4Tz|O!hHULh?qNc4x_7r{e0>C$#JQC(nc*$(d+7Xti!ECMLE{_~%gPU}yS?6DNf8 zI7B#O97LPHt}JQ*^S89n+B?^f$s2^kKGAgJ;bxFEPq0X}G**F_ifS55mLR9~PjFpM zf&1>zm8M0b2AZzc+yM?=j?d*o?uZy%`)J@$)nJ(lstV5)<{?$F5S4}2(oH00p|5Cg zYS*9+9H7JIZm(Rezks^i;L4LnX4$&++ChGZTH(gC7GL+Dl?BoFQJfupKo^56IRO8z z1y!7Pr}}A;n3iN6`L1UP-5(cF0B&6Brz7pf)wQ3JL-aX8s7a?IbqqPzQb?du9hlOU zp2+OD74k6fp;ul#>PC*blJ1puv$3q8rKWHxNW-2f`2+aW+pbxtj|JRM zn>?yPfgIb(2_gYB2!BOkCt$`U{|qjbWMvc|XkG7roc{Agqg(QP{D~1s@bK*tCDZRG z1C9(UN@pN(x1Uw&0E_!*1APq76+{Ci?;#LA@m$CYX-I>ol7BJ0-FPml33y97=mIh{ zADUQU`b=rzBN(dp?goPV(0T$p!#u6Y=Pu3^T$7g-y7!DEHYiDlElt1kSLR43joS4b zQO-UzMK3NgX#vH{h66Y|Eqf;WHpJV!R$$TYB<>{LFt5?}8iy6Ht)-lsUa4A(uWc+X z7ygIf_kpq$dPoj&s(j~42xsa0yv07mTh2`jN z{kCbaV03T4;Lm2U`)D>LGc@k;v?$8=#^2*Dh5pB4PIXvYCliK@KASj-tNYW&%BSnc z%F#<6ip^pfZgw|403OvkizqEJ0S8<6?^J<%f$jBQN$AtNHW4saaPA{7&kEuYlu2RBf`Ydd4WL;eim2{{`=xIq9-Uu{&p?!F4@QkF&) z3)1wyGlj18Dtk2&vhSSV5{4z4!t=T?hu$=08WJGoe)27SRJ`j>sjA-l@@XJc_0VV= z=lqqk)s@R`>f29<*aQP}8ZH3#%tx}WZU4x)wBWB0BO?he&=NoH2SGVoRz(9g zbB?59aGRVf2lr1WeRRR!fA;PM2x z7_u~QLWcH^c1LgTEx{g2!MP+O(f)dqcDCDr4{wXT{m;Y;XtM;nYgcU$7P!-`c0+abccCK4ZRs3D%fBdz~6+NkP~|ECc{Hk&tG!>M)(6vEr2sY z77>oE-~S}gfBxKNZ+NpvI{kwTJN?-wZ9r>oRHBAB-m&(y!lV#Zcl#DWP3D*c!R=q8^)HiEeHx&=-wtsj# zFJtyQ_vIE3(VlbmJszC?M51PTzO6mSy(hP&ejn7rF7Dj*l=$?ZetNo_Q1CYV`Y>mt zBom-c1~kJ^=>6aJVApBXg?lqvAupRPesfZR^X8Lk@O=LKMLj*ed5skI%J;HYo|=*( zhx!_SSH8?Cnb9 z*`=ik`C^tD0BccYXr(urZb|?PN$f!I@7?)fO6afb$M26Hc%-P1jk@fBLm9GVo% zihScZz2xY(Kc%~TM-bpxO|bZ)W4gNV&oj87A}!Brh394JUdR=c0EprWcw`eF8aN>} z+h$S+6xMXCCB0CUEnJ+tp^0i$0RoQCuM;fb(YqxNKna3;c>s)GKtc~to5YU9CDQj7 zeGAjWsz&nMYWSFt6=_to*L}bhQL##)Ykg3mqE9GbX~U^4RCk_Qji0?aJs8llkX;9y zEIEqQ(RELpLnadE1H+jS#}5%x`V6WvZsWOshiu}F-uPOianF14JF(tEh?x)daZAf21wQ*T48CKkHY&)up5LN zJTdN}@|k>4Q79^t*SDh53dE>4|HEkjmoZLuE2tlUL|)vt`;$%a-@bG2n_AVX#czfI zb6@S8FZOANmk*87$V4N4uev_LT1{!urk504Ce{to{wgs4097AceFdJP^`$ey4%h9h zYlsXAabWgIUMJDezXrLhy@+T; zq~pAf`}@g0PT&c0{L;^0IS0PTocI0p>lgc;d1?)?|L?A(JX9}VsntY2DpMIo7?Uk$#JQ9amC~<_SfQ`$nfw5ws+;a ze7eMcb=Hz~MH%Jb5_SW)7QM&^t_FU&aqeiq^V{1i1U<*`zP6#~=4g1=X#-338h;*)sx` z2D%ih+Ozh-8uN`Xf&Xj(LoFIy_XEg4+jw?@tewfOu|m8pnon7YB}5Xa?)Pu6pkw zr1x86X`MGXMBiU`5VZy*eWo3MxArXr8I70{0fIz>3ThZDajuzeYoFb#<39hq;TR~~ zK{2fr$~-l%Vj;Kcz|%M|3)gZA0RaT`;nybvYa`EJ0(jXNcr!;jQK2*a)N>b2;{}A! zCrTA2r=|+J=74dokcKw*dxjlq(4OCGnmr8K&!U{9q~x&sahv7+nYZ?j%v-Nmh0Xl8 zXljv1PqS@?w@&Z9H^YULIH&>fX!dHf+7J`JuhmlLfA6rx+O#N|6&UP0(I&LH<)Wn5 z*Sf732WRFO!ak&!JHxdl)!*1wS#S;NU3%^#qR56ac;F)xe>5n0{JvLxRjbHPr_p<; zr-#cb)!Zo`{b&?=t&uAwipT|Kzk4%5Cxc?oZJH7*s%lBxRu^; z=6#SiceAZJL}UFJFSr2zld5Tk6nCRga%=r)O>b0Bzg3s#E4Kso*%G*h#>nf}vai2E zA4}|1_`Nh(J=A1%(?@WR;xl|;88%%4?C~OvSE~sfGm6D2smSHg)k^&N6_Md3@_};? z{DFeI^DWLU#77%RAQHbucg{#_!>QZ?LsX4YD`f!kL4XUum!@`V!vysGGdyQg9F9pGDC!SAvwlcjU48w@X31)pN;5LbYR^Hbt04g5Hi(aq^x_BMfFK zto3BO%}x$4xIpw=iteWtUT2@wN~QKdu{pzsKj#ma@!YN{r*nna%v2A{FSGyijDK74 z;PIFQMAbHjihWu5vCD*a_quQ1b!{Y9xTvVRMBIOpb8l$gjF z`{u}n`TW@YeE-VZ->wU4$6T1h7T)#T>h%OPcBqebW+BUZoprRf(l*oL@t@IeedT>@ z1?mzw@BfFWua1lId%_i^J7ht+kuGTgkrV_3q*Gct1VkD{O1eZ!K^lamyE~R>=py}tMJ|ytkZE8t0Fa}f5{y@f z%Dkfq`}57~N2`2Kfl+HiGpk^w!I*1_+w~K1S*~gOn=6*il*v7TT^95SQt=g#MXXSkq$b1lMCLS!e4&cNT&OinhFNcTxxNGcF2i{h*(%y)_cBw z=YRj)hlrTCqZ9yzeI5=bzthFe#`$2Lal4oaU9hVy1|IKe63WR2L-{S@Hd^)cX5*CgL4_~DKU<$A^ zTwnqmtlFi2_f(?ZPZgxz4G%B&Ng++iRqmm@x_jCh5nyt1;> zk44t{m9ny%tG=z7hIQvv(kN}ZX1v4!<&V_$8-&O)6>?0?i=YlCL;Ax1{<_p6S0D6< zciJf6{;fs)g9jZYFt1ku=o#>saOqM}Q?D)*6g*ATk?lP`KNsZZ*XQ-uUW^jpp)u^^ zjX9L(F<7&)u&8rcm-k7e{%;D5Li**)pu$2nBE27P#^Q6oQoJpI32Ba%S!opL7It(G zCYH_Umt!Xkw^egl>Z+B$NlGlRf9;p2t*yOCKq*a#b!3oU_FKM zhh?bd`YtlLm_ax9`Q~2LWhotegX`vp9HHbWvt~Mu2g#fgBthR5b(~UDJj{CUWXjRJe$)Tao_#K9(qC`=%-ACrDUtc8{^- z2DMjfyDV4%wTlJ`+F9`=s)Bk4w1;FO1j%G72cjEPliMAfS#MS@$ zsFg4S#2{lLD_qO{{o(is4eFv+@T}ja-HP zh!YSqv9NscF{slm1d~9flkq_z_e?rkVh;~%VUd(?$)1sXzQ5s0N03TC_!tu;TveFB z+5pz^OL(Q`wDFQ=Q9{al`okp#j#K8MG+mewxIs3gAF?0Gm)i=qTd-Od319y6 zOoi&vRh+rleGUqVywRKgVUw!VJxJL>7NpQ82HJbGz+GoKQtRM zVMECtjJ@&$Ci2$1rrFDnmB8)d^|yL2jAF+ng?>>LEHW9q5svF zbEO%Z&;9xl$;C=OkALUi6jEkWh+`1BNkNjkE7Q2%vc?=M)Jk%1vyx9@?t zBU;c7)6r=Agw>H)rKc7{N{wO~dj?NSj;aF?K1%S#R2$-s3 z!K|FvO~H@lEaoEeloBh3EHhGEgj(+S1P`mt4^1|8y)Cwuf^y7w`XeWc;qQVgWqUKF zs$TH7Ibe(1SyC-hF);`Z=ebvhq99+?Mrsi&u>R@Md@*V41v(Y>;SqvL+J!0_i$6ZC zuI1KGCEni>G$q&cw+0Gu>Ho$~&oQl!Z#zf8oLXIGe!f5v7Z*Pe1F_Wu6BCo8nR+*? zX2r1Uv%8S3jq91jEUEE$6N$^~u)$rKNL9p;0(b#H%q44g4A{F)N#FSK{L(3Rjsw?Y z$amDt!a|mV(C_*-hM3Mj$#!$%F^5hys0j4cKX9&)I~z>lEugoN*KG2s?vOhNQP$xi z`ulx4`G7fJ0e)x1lh$1Dz8=T{ zSphJEe)O&r>pM9hbzHbUmHCzgZkoPV;{7heNU|xyPoNvj42ajHIZt)MKJ#Bg_pt0KFiVS(UMjn z6#)$>!ar69hKG_LL8r5bp82&2H5Jum4?3-CRbmZzIVJ6qxNA1;8tgi&pA6l=pyHU| zOb_ILMA-WOP2n-DVrp$510*Pw)zzC>PG17{uCK0KXC6uuimrGXDJUphx(m0#w)eI@ zzbC?1%3A&Mq#|1%ldSr258;8;ktP4nkCqp4$hIQzut|BeCfj(0HGjR9^Rr~{yuX8c z(>F^+Bqfd>hD06>K6q;Sdt_wf$VGVs^K5BkMD>k!JBDQZ&*mE$JVMmf^*wJ)zjLEz z+wM@$S1=8jooZNXi}(3ak6xBCtEY)b4RS%Y{}xOyd!5Rk4kLZ~L#N1R413CzRc?U% z=FqV_jT}{miz~cm@ z0{DO`WU&B?o^zFHuI^9-ohY_$$$h&6UGy%j)#v_#&FOUgdd38ZE8o|P!gKecn^AZa z4Ln~A2Q0J)h(Xld&{9I25a@b!-~7fZl3ckzF)IagC(Jwy$?bmd`P(=0JPa+|-)KQ} zq6E4nGry;5M`^DzFA%JC_WHKVK=b|mZ!gbJ6~<4m?-xaU4+mU;()R+x`hlWczNIq0 zwGsyc;WYeZ!xo&K%TXi|a>qH+{N)>nShMK~Bbz^2&HTghGfe;+yj8saK8S$BvhMG$ z5PS&Bmy5ZfwK-#;p#vC$4=G4v&<^>LpWj<*DsJQ8;80IG^t_^#jLo>nrtsviQXH}6 zB?(Tzvz!iwu%4G(7y28^;(RD{72s*drwaN9s2k_^ceil6zoEbK;h7S3R~vV7AhxGR z$^yG7X`-+i^GE!m7*=$2^rBdDP)Nj$UiRy;_|1w0Ddoi5;MCcqVulCy_V!15WtiFh zM_d=5Chry`#5a{{8{2cQ?lpqPx4r`EX)d*h|1NBMGh|_ZnbVVq+p; zWo2~~i~%A|4cEDcw>}Ix!+t!$^QP%To@U8glp~#GL)0H*1FR4bkCG7T?nmuB5+0@g z1n0ja3*$UWDAdyOz9T@rfSF`zE;o6fZwyCbfYgBj>5$zNt?6Us#?ri%lp^|A(C(l9 zfLjM!5oam8{5sLA)D7aAJzX=!OuQBfzp#9*GZq@-kVX~_lh z5Vb%5h)bx?&ixFU@i0=Q&i?=r%yDSKdUF#8g5bNsy8Zihe=P$0GY*M=NJ+dmk@^W3 zZ6d%5^91Bf1x&0-*qDICL*F_cR8TJ8Ium!!%m{;!$}SXaIYfW|U5u988Me-E-4XxR z%BJoXAJ^0K(`z8mo7ZaQazf^J*D(mED|i`Q8Io5rn*pdrazb))o)X>*BwYsz0K_>b z&3NSNW=f2oEc2ZyL$btue-(7Iuu1@zb~D&pE9LKFEoAjJ36VwjnHDzDriX_3{v9|q zx*`y(?w|r1O%QC!>TdG!^RLZ=w4<-R?5T+N2ZPS5>WH0PQXb_>837pI}W zc(P#r*C)FQSGE54mU+}G7u^qGLF>ftNbvx@LIFsJvSmsP>rZN7zb2|RkS7EIDW+>* z%mKxFJ3NR%xoP`&uF`MU@7;R#9i=loYp9U4%!?3T)EUpdGC)&ga(@e-nHgOvJWOIb zX9SP50JJmNGN6*@yv&Xx`RRc)A#{;*rOU=HoNiBiFKHd zck!uZKEFHJJk5_`o5-8ZiV-npT&CXr|ET?$KR)07h-?83;ki&OjJJ;F! z2QagVR{va-$lJKgi``DU|9C(Kkk;=Z==RPo|4|AY@Z$LWU2qu)`RbfNa^1CJuwSVl zjB#-|Rp=WTng6`aj3mqO9+*_~fr%K}OuyR`?$v&hk6CPb6|!=Vf{)jG3>!XXLUoPr zZV`_-A!l!selfMmg4@K5R8BPw4PxKtfuNVP_A!uy;3eex@7!%F{)7VVuEX2X@t?PQ zcl9nemL0=~Fi97c`|C2z{AjsI2(yz2vr^(y&Ag${$Lq$d%zpRD*obq1Tc8k$p5g3( z=jFd~N*gIasYuz{yPQ_&(+o_V&lRK6988s>YynO$AbjKpIcTZAQ$Y)kunmW#dFb9t$eyYT&N3W*eMB=4*8X$ z*6RBTfmrwcG(WR3qoxI{V9--!v}^?kPynbN*0J`h95cuQucceE!S}D--)nzIxjWy# z0kco+XaP+rUB<09?0kVfw*nGe68~_*3jcat|K$S@ z4nxL{0!aG7cjxElfE%wa7u<%_Kqu%-&IPQM;``OHN=Gnde#eE^fy?{llCdm*$nJQd zkwn6Lb(GzK3v5VlKYs&E)KvgYx%)Q=Oc+0swUr1^GLGqkKpU8KOA{|2xHEaJXrTO9W2>h$7N6CFluX#o;BJ3AUP1fs@}gLoef#9gMbF1LJ2yh5z+h7pc78{mJm&)Vdjo2_GMLVP%| zko1}TA=&Jm$f>>-Tid&xI1_tzXfod7_v!r1(dv|cl^Z-A^S|&P;H7{_#|#Rn^AT)pYwec zY{Ywd_J>w7d>dOAi#b|>lb@5H1%5MxMR z&@)|l&)k(^<65}KjD!|8^wRiwLpV4CAM!{v|AwPyR0-Qyt<-;gCBIqZw$fT$;kRNr zw#aCEd1f@yPI`D=CiPLqsM{uyP*N&Ch9Dgcl2+M*l$0xZh%D{o08v|(1tP_`n+vU* z+da6Wk@Gi4DgT3^#M)7MSgYSv^7oUQ)u@t9z2`uBiqet8wBdd}k0(8b-?i#B-h@q# zcu4(q+uG{vvN#EreTwuG|K)jdK#S+-G$Co}XP2F6`LwX+%M&)lcFZBTtl}eCcn};M zdf*9j{XX44yHkRkjwadb??XxQ>ndNy-Vo^9x8N$4Dt!2JB6G($eWlBDWLPK6aMp4A z3tqSpS~LilNQgqFCMG(uKn$mjlUh9sFU$J#tI6AsVQuGU@O6LfdlQWopHEqYo@|5t z(cLxg&4qk2ISSvU)i6_4n2xe(v_ZVqUG_V53Sr~*Zt}4=55SUY7B^!Oand*vw-}sK zB0bD>NBh(nQ+j{2#iUCrD+Q2Nkf}Ie)+pM0tj0lnitA#jIJCcvhHapBGI3I^U+utX z$dv}x7;72nuuyaEcyAu(LQ8kexK1z5a3JPo5+JfKBI+meO;B9bYVFIPIdO&;4y%vQ zdadZbGGpY5UEiGwpO{Y*0q&FVj_&~2{Q+hu`Q@%gO-${NM(PDO#;dqi zjkZ6wg))XM{Zd&i6)=Z7nMl5gFDsgB>#+H%IaF%0QX2ka^$@6uCKY#2uwckeT zm)HdTW+JY3pLKEl>_)g-VYKxGi;QsJWJXMd5D$e*dvM+F@6osO(4IO}Swp|ryHhem zp&c!#s3E(W-T{ildZZD2{=z_pXA!pIPjiMNdHJIIMc<3THa+Pv)bSp*FObG=_qp$z z(Q0eltP-s_48=?!a`RX9BB7;B9o}f^9_Zz`8cRM}a7JmryXL&8FSN;#K3U0oTl?MzJrf*S}?>6x0Wfrv<_)o2Z(pVPje`N$$J-C?D*Or-GASxE)p0}6Y@IO*CyB71Bxr^ z$xXnj%OwXmed^(7QKPA8m7cOd{VB?aM&I@JleX}g>O9;Wc$;Xz*>uXp!ir`hKIa!U zHCecB%(D149+*=}U&V+<4~FY{&&_Z0dL?u}h2#7FK#wUq8b*%EYs8$R)IM}=Vu)nm zXUqRFbLWmbR;V7b*yd`WB{yz;i2LEf!2qdvu@Z!?p4Zt@sGAWvLeJi_M+N~ zE2uUh2EPqcD}}k!8{8bnP*P4v2U#UseliuZl}WYuqdhG8Vu(Lu5lPx5wKdnn2(9$Y z3N+yY#&BW9U-G2Kob&mM3M~DS=r0ZX?GrPn=de!z3JdG_ySs}-(Sgp5d1N-f!fJN* zPqk+Hwuia>BP4SST%V#bLxj2`RH8&|#8AQ?1`AXsXb9?V`S?NQm1I7Xuh0F-NG@;n z#zlARjT!U?)#%j+tcI=fb&IU-@fyCbS~}uN8F9$!p>F7ZJTvu8(;cN0M!=Y zaVLy)2h3E!DrV=ll`U>NN}=sOsahQMuxz_&RyXKy+K#P1$yqcjGr=r1)2$y&L{Y)e z)zx?Rxm$^d_qjUy3ykw@zP{_8nX_M&uHTJ$rg{$bKjM9tH8IuokODyE!*ZjzAJ=bi z138H5^W0PdB&o9RqP~804g%Z(+AF1OXC1y8yu9uPsERQsY-p1-n~>`xj}7R`t?$(b zN@2&H;Dxc#HS@%ciO>|bLt>{4sgmCto{^iq+cyc8l4SBC7;~H#Utn4*!VoIR7i8?& zX{l!M=a1G96FOqkh!La`PdN#}oDEW~3_gDQ)+B!O*Cu5JW$17m}pHm>rc*T>vMEC{ZX6{xbx&6kL z3|=;thbGY!@CZDfo}NxN0IAj;#)i9HA9GswGGltM_GQmyxRt2=-Vw5ak{_4gnaTUUx60?V;mDwad`Jed zsG=m(xxuHMkn4$>&jh+#wP!1$_us4meb;9TQ)unT^9JfdGmT|Q-}|lIDMcPZ1q{w) zE9FavP-<3bYvIeR7~ji?#stC)K(&*@`%BZqq>I$G%myFy$jH7^QBkP}-f=^i!Ra~6 zsl_miGHE!Uc;iE&!G17sl*<}|w970_{u$1jXMXP1SqHkD{lJPC2K|nL5enJV!+z)J zWHp0PT~67Q7m?i-v4SXp6E!qr=>t~)x5+Mlf&3uAV~{kz1m2DEW;D1-Y+t0F`KIQD z$}<63X_;)v9BF)%P3*+9lWS}Dxd7;Q{lwdi#7g*WAgT|IAqF$H6} zZjLP}+)?i}m(ZR3=f8-fD;L-C^=~BNZVV0Yq0c0@vtnILaW2v$nvTh>cgF#|$H%_e zbz2VN77R5LR=A4s>dubh8wS=_lDij0aYY(UbCVxCZy=Y0+;?cI@n! zfA-72mVZGXwVSQ~roCnr@VdV`Zv3S{7IWAa4(xOWrPUJ(imQwUb`kM^gVAA)_~NSb zoEOIHBvB!i^B~$}A<^5V6j`{nF;@9N3?d{9cLcx&k#I*Ff8Y zL7xlayj4JC4##Ys6#^iM_CM&IpTEI5Cza7Ap5Sgq@)h0gAENZJQ;QLkN4jxbQuNe zZcH3;d0ZsYPq5%JxI-I-xJnJ7H$!ZU<~*p&trSH{x{M zudb!Vgrp}PFzqOvNpgyEND?Jc9O>a%%LKhdb}Q zcZv-E>yu)PL*t$-oP}?0^bqfHf5g}RoW04yO8b8-?Ylcx(MzA!shlm__*(@f#|TIg z>Kh^b+u%l5#2+pETsORRbr6~ZU!?di5(l6uG7^6lJn6K1&G?(ZaO63wP?mNJdyJ1< zyT=S-3XkJ@-@V0~4byefUs=48h3oq?d=?tSss8xQY%S0FJ-+*Jy)3PZi!tBApFhq$ zi)adE&q>p9tk&aZiAJQsHO^|hO>7K~^8x52OJw+0DKVD>Snl;`e@0>sl4&gjd}5(p z+6XgS6nOq6Vk+~>S#QKo9E$TQuJbQW(EOl9plwZF2Y*ZyJcVuFc<(EwMdnK!cA>t! za56z>urssYsOSjfj2m4@xo=XrVHLA5!neE^%9oF#z@y;jJj<3>YfsyrqkSUfZqQXe z6-bmqyJC-yAgj`SJxy|ZxszDx*UQ}QGXEFw}q30Nlj6;hWpQ z>u3`ec)~oW^#ZyZW^6la>t3KHOow$;aI^X3BOp-3W-8iT%#Uok%asQCb33j~@rw&I zsXmi;;^OW$W78!rJ3pf=ur|6@OHcD+p79AWh#yw>Y24aI`dLy?_%uQ$mYQ-)N4R9N(D&5WfGmNTi6}5_ zTa}h*W%YH7Z`wx!&Wo~6j;VNoz!8DGuY~};Ai-Z9@K9Y=Vd-p5_LAS4FCbt_0}4Bt zFuW>_b3rp|3pfv0@@vNYW5>>GpiXn#dGCA-`S5+B)KeR3i9(J$mDzcfpn}P%Sq3A z;NUI9OWy8yr4(0S+HYX;l{sjMJAofBH8*k9;yw}bQTu|~f4 z0kU0UYczm_By$@nwV;=UXc;nskHJLFhL*`UqKfZ}6b{}g3B125QD+QQ58 zW9A{Zc!#JBaMzj7_b~cFlKu7jIw|#99qV(PTr@{VM_B_j5iv1WF3`A18o!*+J?mx* z9MMtjlx_jJgpyWc|QBxeuvJA=lhab z3enTxuzsb~0=kITNPvZpn=mm)?B@+E*DcYEiz>GY_`pxj-TrgZjSa8(#dk$AtRb7H z3r?*La}^Bo$9qA&68Ev>U2rjN_Tj!?zTd8NUtQOB&a)G{+6kx_wXC00@n5d78g&!3kSzqj(( zRw+A!pkYypl1UAm_{Ll9D;i1XzZCVO{7m%pfdbmyK-g=+jf70BBA(Z~z=%aY&xu+3 z#CSQ|)7N`AIR#XQ>znYulU)e_Ua_gg&JEbPMf>z1amb zWvd&6uOKY}P8Nxbz|}DO8G-o`{WjNlGivBB>nOMh`T(4N7muw zui$;)tJRWwfAWM-aF}>Zbdf;i>x@ z%xyX&@6Ul0>z;pYBa^v+h9Ka_88dhD#Y*InzMuBG+UK&dj-9EbJeYvtP;kMo<9ALq zc`@lgb(zEp?1rllNU#10BdkSWG`>S6&%wFrK8~cbMU`}fD;Uz24>|cBxwk9uv*75} znHgn>RnL@pG*Q%xcQQ#dV}*%di65Wu3>)1%ucy1MEeO9g&c$xSa5MeU?9+=|<3ly`fBkaqVGjlU1tpsRqmOs!)5J}tZ3vL5oBZ}C@;EpYUzoRm*RH2a zK%vG+qEcC%2_l}5g=e=FfU!>a+b81(NB9OCmM&)+(%`u=uGY%@n?`W3(_jO{=$94* zRH&&&Lg@ZJyh9mTCJI#J>#GkK9QoE*9uz1IYiag@mo|tSE{Cea{H`nZ9 zJebV&2~NF2>#kfb{MrxKOR1w>^Ag@^2*A_?Wl?E0NIjBf7j`U<7NXuk& z&<-R?Sug)|Z^%v`9@&poSmwy%QE$IS&uDi2#5!F3S+~!n?1?mua!Dx|`fDV}g4jp* z&xm>n&jFHQkU2m#g~&i$ykUGHht4zWoxbSh18C<&+%4OohM3v%8m+ly7vY&zY*dY= zZlV}58ClQF@pm|zN~`T=Jf_c%y=%GrDf|&GH|JRE@><2(4ieygEPs@fqFAMR?21nt z7h8#xkD%&u;GMc~|FD9hvN9mgVZ6g$(d9-}XZ(dT&2^Ty!U#ziocrf*-?J!}(Wu+8 zKz)-f=`^P={pjn(=Ejmmudh1D>w%UPO_i^qzNv^fdr4m zB6VftKyg2D7z^AguULm(g0kaqrrI9>w0+7Mz4?-``avu00d6CR2+2L#&3GwD$Jwso zrKkrm_H2CQza${8ANHB(0-{i7J=!f=b53J)DFP6)dE>o~X?VmJozyO44zul9oKmlfL z)RpO?&nD%;*c0%otI8bD)Wz{Gb-kgN}jSx254gA(JrW4zZjL114Y_R z+*F$nwtxV+(S$;fe`EvaDt;hZz4k}0U4aojxSt0E6VKk6lS@+3Ba_Gz5wJCUqs@df z$)rUQ;!|w>R;t89Nw&qGM&+5rwPgs41*T2y0}f6@{L{;-PE%g}C-5+DO(9y}djusM67UomS4acn zG31y*d)EkR$-QQ4tPYYM`_q)|+f-mLYskHioMS@f*}xg(=(TUt(P7fU%Q@WOve=T# zV0CU}nju?T4pwq=!U&@RnRL`3sxS{xtotQE}ELCaZif@nWE6BedY|WMmPt+<< zMYdZ%3I`DXSRFDQaan(tE(sa41jjczPXrabiC$sE3vS;*I>F3F)^Uk_Z1_RI5mFLn z+E?f_&wVo%b1<{*K#Wd(_z5+ivCWkCS@A7T=}C0Y9W@Hrg9@%>GGt6|r6#Lt_o-wG zPH;PB1>64C%@V7+1p;WovuEB6!2pS&t7Qw?!30@}!f(8eC)MDEY%bF8FyxX!xkuhj zz&8|Dzo6Ei5kaR<@N{3cmN#7;JnAV{*#0D!!f`4l;NJYYwFQz^=|SJ46jfQWFyBkS z@D$u$fW%!jg>w4%k&B7_rbjV&$sLVn3R7P4q;R{rlqB> zTco`I$)Jz>bpPxh5$hofj$|$`Ij;PxzRuy#+*z!F z^3P!ws_kS&)0sX;`bM?5=1r0}@A$~S>c6zLaMwgW3qdzaon{i3@@7PuG`#SQQi!;S zq;w5YrE#5#-wN=;KSF6kz`G2V)Vg_oOS zLEi&o-}8jJ27#AOh7^xP1L6e`-s?L|kKQe1BqgP?*7)mX4NFhD{qW(K=iUkYR<}fN zb#c*iE_QzOWrMq`QZ6oZ|Fh2wO_JS#Wj~K}KcHl!l_u>>(tSKH=Q2PK7d=5{?y-kk zlIJscbj~B>b^qVL{4tv&ozzAQKSpq29P57Z*{%R^|G#Op|HMZ%Jm1EV7HnPzr$&y{ zCS(OIK@nd$bvbJzu2nx^{6eE|t+NL@tXWHS4ie(argm^})z(m*s(X{#dQaL?P{{n> zKjErlS<*4E+d}y{NDm&+4S#GLvq*o=Q2PZ&0|p8!2M&tLNC8(O5AtQ) z=K-Y>U4h@-$GDu@b*y+BL+1(tOKRAXU?p6Z{2ZLoeB`OOB2Pnl(d-oldl~+Vk|*yc z^P*fMlNOS`xE$`LVNrG-?V^LbGNdbNlA??KLUe9W-%aFlNdO7`sMvSO;;T-q8m zgC?C^KW!X&ka7f;>()FIOHv)V&6J#OH>aQApe#F_Lh0sPs~tZ%RvykP?1-Kp3k#`tr}^WJq3a`NJYfK-ue~vHa*{4 z&ypV8a!3Ii+7EwHF<@YKCla)wxpMkIk`y(IgdAKP=#ziMu7|sn2V9&mP+#tcyWnBX z61xU2{=tmDZevC9p}~}-2ZEDNAo;-TGF$XQ&K(Uj6RSV3%l!_z#8_Y$y&vhlFc&`_ zy?T&^5u}EReCeYSf|i57{+Zr9>!5S*P2TJG2cj@ekdcBsY|&N)#B@1$skJk*EA!19zyY?S{U>&)cn7EMJ4D2Z%l1=YK5Dv4A}VUuzi z>9?xh+6t<$SFjtjfu;b4mz6X^pMj(Ja%qH}S;rT)I1!fY=JT*ARaIofH>I|%QOXA$ zQ<4;@N=yHN`jH>QVcbYC`TNRcu1a41gR2de@{frE*QFl1_B&C(eilE}Y|V9ZvgHIN zN@v?(7C{Q3=2xVht`g`q&(xkpy*^i%^nwuv8OiXat4jhy|G1Yp~Ou0uP;raXg z9$n6+!_NP|=H06R!KRB(E@av8AIWfY8I%<2oZNbQ z*V-*ER(4XM-%@KALyuQPu1zjh?+&MTkAO@BR|6;;^o9M2Utl>zdV^O-qQ>95z^Eej zW1GrddU&b+7FiJkdYC?b9O;Vl%%rVa`KM+769c)@7FO6%GzvjAl$8dT>+0Kdr)XkGV1m$K8#iPHVf5_k9wIrMFh(U)E*HY|n<|$0h z3fCdo@j)D1Y{F{Y<*k4Z1Sh?0A`coqx60&VFyh^dVm?C04VX5%$R#f?|l@b&h zDhcelN_(}3#=Y-Taw}`k^$#;;@`Xy@KtJ#-Y;{^cE7c828)%!J76M!hO%hw+1AOHF zupp#1xDlMmq^i5FHL2xB@(vbU+FRl_94Fa-w=Z)qMH?B>vQU7H@|XXS|5d5Nip>Cx z1LnkT1y!ObS7n>1SALf0$N+nBL5|wn?_<#V3g_qfKqe;4C24zOX#u4F%xIy2RE+#Aj3pR zzouGh%WFO6Bol@cGXE#Xq)+o~@hoDbw?tAM6hsB?bJvt_(|iUG-V}5XR4}eNMsnYp zQdV+LwVBd}5uEHW+Kk#HmeVw(J}BcnxRv{EmTo z|IiJgC8?=;V1^c+mzn@#iYj&ve6){QR_xxf&*k3AcVDZ_)IYtu{l@x3Cr*> za6GB?h10)keH-4V?4onf{Mh1@`;dK#-5vVA+%>DZ*dK<6;)|hTV?0&xvQ@qGi;9!> z$PXqjY49=2bnax}>20)*jxoMVgXWgVx0ahVT0A*MLB1nWL`~=BAg!T!rNfaEPF(s~ z@or%B5H+_SFh}UB)8*BVKO*rN+>dI4oHh(;SKM)td354_vS8)W#f$n%nQXK>#j65Jb>=enaRwRsuNh2n#^CuP3g)oz*S>xzV-Mj z%HaWM3hJLTezY)ZT)y_nFg`wA%yZCc<%g{x9*cOjC(eHB?omMQ!4hR{$=J}4#lQ*v z@ca`#Yuz6KadGO3ikNWKBJde(zWL;k%sWtDO1P%%XO!jAp5zZv{q91!3eo5?(egD_ z;6%@H?6IwWf{B2JY3T4%0sWN(W94EMfjf1m%heZ%VyNx3A#9mIz%k3Y~}PJ z{G$So6p?U(-+eP()%Vu^MZ}A;Nhex%EiN)*mpiMQJ=}Hwjj!)dS-9pY%VrncH2(w) zw?AU#+I`bqp00Iob)h^z^^7lI=^-c)L7}$X2pMqB22GE`FKJQwN(n2s4Ac`3fSJVI)q@~+oY<@=C+i3L`m(Fl9tP$qLI_~14n zokZP@)`_xWAHB;{E#1Bd2aKOuA?)2cpFT(s^1*MC!mvpPVSbnL=XG`eirzpC2^M;O z-`&=r63kQZe_W~CB4tmadA4l7F{FK!8yWWqT3f5Lo?{2n27U6hZe!5k!&oa4Pgeey zjXSYRi8<_|kll%KfsA9~S?^<^+ijjk_jXWnKs~%hMk>_1e@ca$!aepiNjNV~noX}$ zAB9F!xxqodaSW^|lM-$+tLFC9=}nJg@)Ox8FFD z-QC>QmyIhy=pv63EQc2M2`j9jxlcgZ|w)y6h=jlwrFH-wDiPEit=-XOPZ1?G;ZcX)am=uNXN}|@XVwc zZR_O`6CZ~j)XG;YN9k5x5a#poC_1OJ26X|Sd?H)_Ji^>cA3t@m;%(|$mnE2_sL z&dm|2Q5Mxq!|p$(YuWe*tDPQS2t1Ez{?zL*nkU!_Xn)v~EC8Ru`Cq(okf8(k2>Iqy zOM4&9T*}5ZQb||51|@dTTZ6TH%m>0zJK~QAw6T3KzkArYkqcudr+yM5Q1!!+J^?ZfdU`<7z&9LQAIAZVSE zm$O`}qy#d|03C8-HuVJmz1j*D6s*-K;501sMsbHBm< zpm0{ga&C+2$R~UR2IW-2bhU|jZ9sctbWFh4G}!VFjk#5l1{IgTy4~fRE_#%dX~+Rr zBV9HS5#WV|k}g)`B_9xR!cA-+4tjg{alVxhJtO4duTHqcRTmXEXNzC>-yZfRs;WhO zT+b==$T%+!5(?TqjC#~O-dI3QvkxVGhOM-Jdk7W0b^P;L8@y$JJ>HXfYuU<(q`_f5 zQRkyBNOuHT;QAQ&xbKG#L*=><@SZ6BfU&u7T(_GdlDOCswD8!1Vsg8=h<;%LQX?VHPb5qWY}P4>iyc_%&h z^6kP0{`WTe*6m;XjIIR(WFCSc93NlbdQS^JaGVse>Cjm!jwr2P(5F!S?#`|aP#p~N z^g*T!c_mBKn6!q>gFB_OPP^_tBM1(nO}qgk;7{ti^L$jVzgg}>aqnRpfDoRr;D+mcmXS3iS$ZN&|3V_8jXoV~GAd|!6>w>zT>@Hg}JD+S}nsCyl zb&z3y70QLj@*VY0wS*Gs?&mhPSEhX3Uv7+Hhg>5D;ge;%sd)C?wX@r0l9I1(%FW?{ zw(?q^a2+eg{C{{~@`f!9d3>4Tm>;FGX{|FyMC5)`+jxiudiIblyuvnE|7ildFOCg-y@JMmDjF0VdzmLJ1KjT?@}jU=*z)Vd$Kv z;$FgfN6|>@HJ=!tJJ6;uv*R_~Zl#Hg*QVm1vsajX(}xa2nGQ}PpDL)ZS?aqp|4zzr$4Zr-nVFf8pb5Bz;i^$Uf?)-3 z)yu8X$=Mec1_Wc5BKCrk6uHtY^U8l68oQPWB(pK5cIoFThkYM#heo`dKk*DDF4p>( z6>aqCD1GH0O)&7^Y&5;xoftE;A$}MkOGM9Dj?X)#B1uL4Z^QpW(k^bT^&4yvcbehd z9mQ>Sa>jK_o_|*K-HV6xoa!a)F)g~6m$~Mj)biTxS6S+AFOQqefi9L4W8~ff$|Z|1 z^~pFms(%%0u~!FG+h3enC!bqXCsx0XTh`oV_&LR{U|P!1IHNVIOdotBr|OCAB;xR&ZDHXMtqru;kKDE zmi=2OH@gxA2ddUVD1y<%`2>+t$u8;r$HEy(X~??nzgTMKlHClx^w?3>U{;XMfuYHw6+8n$ZYW; z3q2JqRP|tFqRBi5z`t~Wg5y_go6;NA2lP>vka+CR2RL(j<^l%|gH_#1vbG6b)r9Cp znZ&Z(%^(ZY4;SHRRJ^63bV0Q5FIl5H!9j?W5EWKm804r^b1ftsfi3pITvD;|Oc*_~ z`I^c0618|Wht+Dr49x;&HmJkdYM+0eydwRNQ^ks#;w5Lz%kFXK4GVNVq^OukAj+TK zJwY85jYJcPW8TDIS?`p=;Ig)kV$SZWq_IL7P2&e4EcX*s5LRO1Y8_Mv6pYK)#D(>^ z(hSDd)23@@|FlO^G*DbJ*78n4oFXfvA_*R&HZsPQ%VA;x(j^{T=S z>i5%{LyN0c^dsG`52?h(@N}i2q*lwfXX!re>`)BP~z` zSqQ|yzukS8Sg76{O4;18VhQr)Dj(X@zTXSS+rUx^Y4_?Ki}RT@t2C}phZgf4|--!kQW;_3l5u6 z3JPX4Ec#5WqDY_%lZ(H90G*vb|JFOc<^%n9Lm^jF)MZvnLtvq79%m@s^M=`vEp`xh zAxwmWwJ1VR%OY(kXcHB{2N>~skx34zkJt=;5;qM2XV7K_^YvM-kXa(-UYIh2{w;bc z;&$BPw@bW7Fjt3mQRZmqvU%~&6pB;h5!5+7F_9B<_!2;sWqlIu%EZhN?@QZ0@{|Xz zy^NyKZExz)DqK_5DMxhW)JvcYJc&<0J;s3Nh`4D6ILg;GfT_r$LU&9Q`!miIRhEG8 zYLfr`t-rE|$Naw3bLR8&EV;<^7H2gT2nVw`q;bH~`}Cq(2>rsKsk2C96MN71I-nb$ z9EKUa2v|)Dr2*C>s=p)5l2RW==M{fH2{b=@)TSlqB5k=LEQO1_%QLTJhq_r zn08T6B?(Zt^zef22vUNlPm{HrSU{G_W4~BFbmD8IYUm1Eg=T+o8UD7wQ{e96Sa zI9#&s+pq#TDn7ZBn5iOx8FW}*z|FoMjKLhv1Kp$U53800wV!^Km<`U8FYHcP0}D^5 z)!#GL;I(4SJ>8Rl-rv>^3Alom&i`wF#n&K%q@;@8#&X`)|H+`3f{)uqAddz*driQT zmMY9!=;TVbV&TE5tqx3?T;y%Nt^X+Aoo`xoVSSqys_s5}%s~kDJ&Hmmz!#hCfOYu5 zROx|`TmJak@e`9Z5#L);9gQ5>6BL3uy$LO)JkFXg zE>Wp=Ty2I6p2h3s&g4+tU?t0y$JyByR#f1A?8ruU(L8CHk6AnejB#LGLRyCy?eGq1 zhy6)D9%TI=n!YkD%dUx*?ocVEyB|=x5hSF$8>G7)q>)sRE|G3tx;sU>ySux)&h|U! z@XL!IT;4lo_N-a6*0A6MjxR(fb2I9{a1phZh!Ir5I?~n*t>fjMO34sD%pzI+X^&h< z4eqv%7l9^+XKAqw{2HB_5B$*ktT$m#zppovt-d8NYTL~24VW^;Iq^;s!37_!^Aa;d zkAsID@By5@s8jo|xmfzw)CH*G7?Mmwqati~%^j}`Tzb8v=nDfTdYrPpP zQ_K`*Mt;k>H03VS?l7uyo|ky}{Cbyp#gw3!M0X)af=FiLE_o0X_xxXtj}LAlYmfEx z|FgP#4b3(=p#vJf zM6tcvHQwEBo9Wt3(Ajlm#Ndw)anw8nmdX$^6xR??NT_xwRR3Hlm{26pL=rjo`|<29 zj`tIjDs$7%LLr1+8C^DRagE=`4lck4R>V(zNNM9c)GeaMNO@48S&b zrSU!PL-gwvjy)09s=$=YZ@+;{cEhQMfz?f0hQDwJb z#Z()C1nh;zaE3nv!%ZM{#_s`YgkO(|1-GlVKEoVoJ#{FA-@9r4`dasj|8LL7SULbx zy4}1T3=)MCa+C6#sUGHAjD>AvMghLfrkefkb^o?;| zg9MXcBgyw)$zUzB{}%E4_mo`jwwkT@wTMKZ{%~8BJGl<1TELRit7;?TSRmv%KaQ>H zVYT~KW|?rZYd+TC`eYW2WxY@)H0tenx_i4rKsAiO@xEj(S7(Q)?l|Cw8C@tdbm92Z zRr1@?t6J#%Qq9-1ES*mPQo%~?AFMDnG7?#?_}6PcH?W#6m47Z#o_Dcvr+3QFNFpa4 z6RBE?i~(neezT*>C%^Q1cdp3$;o3anK`2s~F5TH2>t^3_snk2Ir3keFu2-O!Vt-!OaNLwd8~E9{$VP=B=JQSf4geNgidawsI=R?^e1mbNrQ zdWbk+nJcosz!Pc0uI>)acGNYoR?U_UA$3hSu67Zc?c9koInO6JsDl(3TfBGQj|)-I zZ}onmv34(MH-5mZta-Q8ewT6OhZ_EHS+z(!sES*C^jCo753s!=rX%~;#|_&#gE(*# zFl&~7j;7?ap0=6Dle;_LdKU|hJ=A6;w(be>$P&!>95ijhG@QH+bh;m35~1pz{7WZd z+AcO_YlO80Dw~B2(PfrgwVDh=aVeL){N+LaygB;PidIzi19qsm?AXo zfmk%m5A@#*uDdR`Xn0;}?tI{2wpz%abX!bb@_k8da{M~c;b<-3Dau|OK1DdPoZLdU z^qqgG#_(=OYH-*usT|p&eWcL41v#?3RJSB$DFxpe>vDFN`?UXw>Sn{<<#@SLWaB=w zN51Xr(}xME`&-#*S_*_Tjn_1uBD#Z{97{8``rN-T#6e@Up)`JizC>sK4z zYQjpUS-e*K;x0qn+{O>=mrg*5E0IO7(d(|VuFefm+W>PP4jvwiPR;s`A<7cIwZCx2 zw?Rp2?mBT=M0Yx%;*?6f#zR9#acDEy3phGEjs%ae6MyxHoTQK zyH5z{;-9pG^|pN6$&V|)cIwZQ8~mNxKylB1!>ke4xwE0xAT|o4jfTJfnaxw`!d0}4 zdK9@2AChM-SbY2&e(5GiLCT8&`NYPc)tl%1Mq6|J(6p-0(`z#R(+jokJRXmA>P!YF zaxwQkX1$Xz!tW&+o+e%gdS=Hn;`P^+@7K0cXZjSHBUwW1Q?V~y&h~IzJE`tAF22j? z7-?_})L~mqw7Q#A?K^X67lVjkz8l!XT1FzYuhf*58SffdRB@(YkoScVl~slGf*Cr` z+!N7q(4GdicB)w|I~?|jT+j9wZ!JRPVbdPa!P81VcldutQAdRf zrL~xA%*NA-$y~EkWy{sQEQVEtc4!l(j`Q5@4)5{v*k)kI*sio}kLx86Js~fDPfYTH zfyurK{Z+GV7+Iqauh$&RLw303)Qj|&1M-AEv)=ZyYOM)309Fnx=kYqP@li)>`45B5 zm`#Q8*LSsXV#yJ`2}L!`c-&zb&} zfX8#1cCjV9%BjYzdA<-WjycBs>I#8!g)%RXRtHrReS=lS+DvnYdfya5m)*Q!2kl#w zuP>A0Cf+aeG@7LWTATYYH&RdcS0ZA=>B9ClHUg&oap(jrfMSoCGrhdrYBf~|bjJW) zkY;W!4gCO*l-FHR)$9G-;*mvruwPqWN#rg$Dk^Gi0CJtx6dUE?=s-{6RJ@Lc0yYs> zj?zYV(^Dj>kkk9ZK<@|E(E(_+VFP&)l$a7?8A)YBshQ=0Z$FE!y!*~kyj*}FhG7d% zgf1MF{K+4QdVjoLpqY8@2aD$6zvmkbc1+1a&Umrw_Aqh@MY5Mh++=JJ7 z7P95X%9Gw=0{iubDS=`An{94>;)dTk6a)XsG~ErQw0K0ObCnlHe;eAB$k_zSOb-UF zK0L;{BZa~7ZihmrtCp4fKYaT^jUJBdi_au_t=^#BFx3>?ct1C|K>ys!B7LmIY+$s* zuMl8=S7d<<(fgiBp@H;JNKwMi6(aM&q#L7rw$6SSm zZSqL2yQ8gDrZWLO!{|aj@B7)UyJ*i9)Ea)iG2a@no1MzndS>Ty7cVF4IM@9QN{Hx# zBAJa|`SZ=nFLd*^6_waAkPpUY7d6X*0a+S?UrDQ8W?gPQoJ9D}+eZs^-dHLcZAF^&0N4fZ_qYqC>>|?FZMh+HXO0Wru!9 zqs-SGXSO0#eWh^nrJhehYlob|7T7u>>?`c(pi7hTxF_CjAb$!OI=B6lTxT`etcTe% zgb!ZEN2tk<9DCESFSfy)Ojl$Aw>E>RO_9q5F=<>}Pu-k;f|qZtjQL}5wu0r7-iTmh zV>?lvZ^m?ah})Rjm&2(LgyR(}3w96)$S*1JM8;UCzT-}qt1z_^{)vI@r^|;2!H^C-q?BMGbQzzTR3j~>nCFtMhj)MPGL5%~#b^*P6JXY8j(lgz;U+AN&%hLm z_l_yG?hqB}m3P{$q(>uGGxII>$LX7-8DiC{I5M1b(nYmdD6L62+}(C6a68p9KVAy& zxw&LD+L`H`zY==V^SbXKIE658s>^(R-i|Q;i=lb2Z+o!M{;Ksqwi2-~X%rEhNonr*o91x(-74$f}|9Q}HRSkN;x$mx^jCt}1^- z`C6|70TIrU4DxSg8s$vIG`{>u_IWyE%LYF1<5x0-FkGFDO#9Tq1vl@>9Y_qFpRv}g zD^bHw44OXPQ{=!BQ{3TG+E;I)NXfwII)8N)sq#u~?euJS$0XsyWxnnTBLJhrhjZqu zTTQHYNxZ&VxzcLDM;aNQh=9Niq*qT*PZN_3u#GIb^@<9Scj2{Pq`b||cK}=D+#Y63 z8Ylpk{FCULV%ygJd$3dIEIdM{r?bjKkgi{33c6#qWLkT-a$sbpyfLQjs#u&$&7p9dq zgyM5v9Oz(piSU3W_gpi3Ul-9+S3S}c zIV+Pa;&mUMG}#7_)Wg`$Mn1CLckZ?;8|H2g7{{Rb*MBV-V*Dbd94CnEZ#7c}rvsT^ z{?8>T#=6;~gm>0tmm@D&@iJO3PPbC?yb}f+hgpNP6|SGE%wiQMvF)IQj=RxPml1|)78Vds#SI{frO5MQC(3%q0!yjOHUn` zr}^W?fO&qcNZx}?kQmhx6-8a-`zl)PI$69xdBVzDQ7nbAkvJ}xUD{XopQ44$h7`iC z2McI7_@-va_ILKpJ4b>)!7nxUr0}%eEZmH6Z@f5R|7tyZ#s13bW(*Y@hgHzmd8hqH zQmKzOH!0z^`P%J#sc1E|)KlS9d`&v%BV;oOUG^;O3 zxcO$WYI|`9!KbpKJq(ZI%|=W7i4^d1F6Rg?J13XO2+NpIBYtZT(rB6;%ZlG5(kVo- zd?bYj!$DCKec(>7p_&elIFTg~li~|62l{92GQ01*yiY>YNIX8thA)LexIJ=RJo69t)u3qbIjB{Soy^Cp%2xz%OXnHDW^Z z7QcmS&241;wPxUwKKU%N(YsB3*?!xG_YwYHJ1a5Bj^>sjDnc2KnA8^!Pxl$mFPl=B z{!(CE;x==Bt%z5@7(eGW_m!(tH;_w6tI&3?*!bI4ZbDM(0 zN29%%K2O|aqzK0M7cztcb;=)@8tx5RUU)0#RGdr$svt2YOd>fWRU#ty!y|`D_ zMs3V@cYV`RshZHfYs1M{sN0Z?jZXe8&OUpT+g{Ck=rpHpZE2e@(aSB|3XXjDGLy?A za-)LR*$I4fih`B#j|NBo&7w9^ z{}6g}+b#8p$WIInDs#i|)+hldq{B_l=Q9~&Z-F82TzpoMWW=lC&*j9T>ZY~my6o)U zdtZ47oSiSgdtbok5vZZnYoS*WIZE|c86`_z5pvSWSGR%3)C4HA1U-=wR7$itZ!3VF5_wJq-$o5o^b|Np-*t6bd{5kzZ zBlR5FmV>OcYWqsbH5(nal^Ru)@S{nG(`S5UbwfRl&0a)G8jsmfQG@7K1VMr4u+Zb! zYJ|HDR%+lO>}zg#L*b)U@DaU~kpzl_;+0xR{bDX1Y4D6Jr+`0ynmADfFXo%)KapRS ztbm6v$_%}1HrpVmDb{M*XS{j6`5MM}k1Ww4+LLVa?5QWQMUsvk^AY)vZ(YbwuV;xb zjhB)?62ZS`cZJ)B+~^OjG-iMKrm-9MBST%epu&fLhgP7mC-fH0G!~}~3&=*iGyaIs znwwuOn+3lHp@jNF1;#fWSBb~_mBzj^83mjS|CQ0n*Olm&tT%TRSu(6f$0qhC%!D9C zDd&cj&6-yAS1o8tnrVOdsIb&d$~9C#Rw)1YHdYSTbw#;h^G14{VBO99{1Z_x z6GI^W$v6$K%iB;ls`wwQ_`d7^OKb*+x9cPx-s1!{6nr`LNcnZx|k3f41N5OuAB4iwq%Q2PFZu!6?1 zApa*6(fRNDgj38NPAGz($1t}(O{KIcUY6qpwNkpOD^10&&>bP;392f!1x5vh4o4K@ zJ@Sb(e*RI0Ui}M&#g{^mv7XI^Lilq1!qaPSj^RG(Tp?XQ{jsS0l~o0R>4%-!xl46S zpZj0ieS7L+GpsuKMWvK14$AcYiWjc6a$&{JqnA)Pr4V^%Zh=B%^1xt!4T$9^dpw5(4v~PIM6tY1}LdQ>d1z zXHNA4v+x(I4ZH`)%vUYR9@6i=E(?VU3xwUA&_nEI7dpq~H|ACHoQ4p3&(3aI0GWz- zV0?N0f|fqESc;dCi7#^{Gp73DlKzO~LZL_b{T!)UH~u<)d(?)D^rqw zzD>q64DafBJ29pC2z*9c=Z_Q~M@m}S?VXWyJSH_E$Lsmj5PMbG$u9nYkcdK^G9L?z z-GM|_gBA~0ph7sD%CDoX{YS|2`cR4`?#B-)F)@U@x^EUjpb+Qc^8P358YvWi&L!e} ze%Cp0VrkHt+uG*gvGXIKiVAB`EKH3iixy#B^x6HKAm(&Q{7&>PifdG}oH$D&Y-sp( z3~=fQ>_4-^d(IhNiIQ-sdsV48Husuo%k6mlX*5l{)%#7yRuP>bqsS2~rr>Lz0F1J? zwlK=_`WyyK%z^e58E!Ieu6EO<+oz6P$ynI06xv5^pJOS@h`*-1J#aI=!f*SK42Nus z`Oaz2ryZy>rnN>~@$teZ*qqf}2-QBij|)=f>3H?nqrHVoCTrP^xfB8_Kz5Z(H|>@? z#_+z+vLSU^05!v;avT)iuYM~MT~ySs zr{w0drNRw-(p^w*iFx1p7*c34@w^@j;yA~W)(?7g>1EWm9w5-IL=cS(_2ql~u5Z+c zr$>om`wyups}17HXeQ4aJ#1$PA+SGjf&j$ss3$O^Eiqc}h@b6dbu8DgC^-PBBe+Cst!><&=!t4?+= zb8aG2rgtW@{=~?^YkYM{t!WiZ0ev2y;40Lu;I8}Uny{At*giBeeR@4; z8kTE|06M;mNqI1@IB3!DSVcY=$nb_T3$*2!MAkas1FuZ|%vy z7ycm)2Q$3B9_a;2QZLV2K+jI$rQsD`^?vn**g87)dEmy~V#>kEKRYMX%85Wf6DS^@&z0j71?;d&cWB8JFhd zCp@=`u%NVU;8Xgh_UO>Nj?@2*CJfYdy`MHu zYxT55q;n13VH!IsTmAskV9?1@qr%C( zvV4Ue7)SN}t7eTVs-Y@ZMiQ#SxOgtxz{vCFeV%loB|z6MLTAzVDf&e9iXT5%o1z`y z1v_7!p2CDZooz@~Z9}d}F=+A8)$dR59wd_nTSCh6Mp86#t)@T?(*|U7J43L~&dyAF zB5XmS0vZu{@~P6Lh2Oq?i;)Z_Z&3J$tpDh{v{W$wZ4){7T;99qBb?iVg~YQDJ#`W! z`grfkF(6#l6sd`--ePj!B~L^+zjga>MS&5&B?MwSP^OOl41C^8U(p1YDYFd4 z07X68N7Bi0^F}JM*S>)I3(nYps3@PKCE0sRg;49gFNlu`aLGB6GzC4mnL7i*NOx5@ zfh&H`%ob%1K7*xE7A?XrfmH>Hxo>w#9Qn&IqzR9!N3^k@O(Zb9w1Qv_sT^BXS*Dcsj*>Uam!qh+UaV4KcqVP3p4W ze$92Vc456}g*p;@e3xow5SAzh)+l0MtwDS4HG4A4in)|Ad!Elot8C;Uh>MV+U&tec z=Xc3O_~@CwOd3kHY;o*-C$McI!S@Btut#LM!@qGtL_G5{lMLhkWwX2MS7Y#_l~Iz= zcoscE-0SHQ9ajBjAmVzswJ=i9CFF7T+&2&xIJhHi<8>nR1dw@B5|Y%InDe~}y01S# z2MddkgPx78(puyAKMEik{^0{#Bt*n19Y`9ZqhAPld#tp%Z4Bgd|BeOn3##*QSI^rq^d83uaBMzT&Pwnf^a z7>1lbhOCDpTIj(K5rMLY;(}2Z(!+I!e z)CS_$QAiJR3e@N7cx>vS2kb+Y;8zZt103Fix#VPnw)~Xl+MqV3+0(8A&k*_IMN$s@ z+9hYN!7F6RW9pQ=CO)t3E!%!}i|ae<^S)n#3-EMy=nC}ed_@Yi<>#;; zt)8z|D@i;#7_W~XOW6ugFqnJVzhY`|K&+`M76NcZ(i> zKo!Wfs=)B^lWMZCshT`-a7<08dUQ~^dO2~-+G{Hj2|3e3PtU7;#L&CPy9=O3>3X#M zVD@MY6l=Yc&IR^Nrk$uCU7nCI0l@bJJYYuBh4b_Bz$h93=vcHW|Mv7Cw~}kj{@+oj z$0`vgoccqDGoW0ikjew(S}M1xj|M`>gj<2^?)~a^QrPR`olfrTE;HdtpLX5&M4XRe zTeP1xC@5?*DhzqWs^R0sR5jz9jiC`yVn4b>EoL}N%rlC1gD=Zo3IlB@J+waWVxzdk zHq*bjVchE=_cAR=e~oxYipL-WbBoU2Z0wJ8Ih+}ss(|A`lPPiJ;XsLq{@fkmyUq*+ zj6hS*M(D9hU8bd;M&uaa?$h^0tX7a3MPyYu0txb-cwej&0X`?s-tQ#euKE4DZH3uv zPR=T3$O8W`mX7(pv^<}lp03FBmR<)B&XMvMJw&ga9{p#n^U+x<`9!$2d+{dz&}zNH z`PkE+q!u~S->e*R_>Dux%k4yQ)5gh=dSI~|aBRmjn;a|FeQEQXeePK7E@jbqOt=1Z zykfdU+p*@7rHx#R!LuL(^9Y&dXszwMTWU(KoN4PGB@=UV=Zl(ZbJ2BYhV_;kz3>zP zs#d`+0gU_Ibfs!>|KL9OK?7Xhfy8C+duE*~sbymv17DB3Yv+V2XiIX1a*iQfuVYD&uKSWSbJu5QY=Zyg=*X)CQ>qd8s(zE40} ze|=-NC>oh1eLe)gs5`1nOod&Al5);bY`j|^s;~T}5m`i-vi|kaW&oE9uPt`4Btgum zi0Wey$X`F4!gAH+uz$9xE2d>i_sWa0qGQfMc4>L}pVcUZ*(}HlqPIeb86P#CoyKDE zE?dpNc5M=k3h8a_WZnI!PnvADm2_fhk(dUi^8K;yEPhYp(^J-Jm2TxrjxGh2ftYUC zX|He_o=FyD7-3{DC$CDX9bFD7><}Z<+s5HXSh8)QftU|FckXs1ks}5xqyif-n2Vo| zK39dXiXYxh$A0&w>mF+%`I%BNZF==HDHc0byBe@LJqM5+Do-s3YSjNVfu_V@{)QP~ zqZv#nE8Qkk?-0@Hp?vEO9aMG=Lo{@5)S(>x(vX3meiQ;r6jS4M6GV`UhCaGQ?SjY4 z^_BOTX*>(A7BQO6(Tx55X@-yxZ1xtSqZ~q^|_XA21@HKGTu+m zG6^^@n_Dg+bKN!8KtV6RQo!TVVzvF-_VzZNLK-oz6LrJz?e6>{H6vsHVsmHYW!Xxb zxAeok63%(p)r^~z!m&P9)9a%!{Gw~c7jpVNX&1a$qOqX!OdqM|T?`5F+)yaDzon8} zV0Km>N_$b%)~orGUN_cRh&QSqOGv@jKFnH7BHiElie9d;}Z9<))$@F((0|SwQS_xEZa)7JUoeWV_&D8fKJed^uQmDSqe8D3@03=PYK|#n+54Cxa1YV^sy~N7FnQ#Yb5OguyfGUI&)kBBhPZ?FyGC2&AqwemATXHhTI3 zOXsQsM=78YzZAmS$6!zu3+OIx$2N1hVOv)RGd~7Mg?*ZpvL$e6Wl=COZKn$H8VbRH z7UMI~r%HHDn}=&#vgMz*XFx^y#Gp0bd${wT1;D}1NLjkDKr@N=jWWtgMql$%#2C0!ts6My18wy|QjIAT!MMhD73d_Yr@vpgrfpN0& zI@n5Q`*A)X3Mc&9E_JrLco7ZX9iDcLEFOmE^Br6aM%k|{q@0DfimGujk!*dAc)W?h zC5$W!CQ=aS&^OXyWKUV`=~|~6r|j;V1;;O&!>4QgPG1g}N3}FgNVb;0m^R#SoVV{W z@JB|>zB49!Ogs=q{cvh1F#BVL^9y@1u_8jP1Y1k|QQ&biJql zVDTEw-v9WYGj!pAPY8H2;#^Y2_^FRa8{y6dWIV(M?ou7fm8S%sBxVFZcKT^V-zX7Y zks<}2q{6tn*28V;h?sm2I~>$KedCXmC5h4l!%DrYH*8=zTg;Nu`zHv!!&uns_PzW0 z=2@&cL*48RS)2E5+*R|-?bXo(tB_AecXth)-0w%wz#3r&L+q~mlUgkvH9)EV8?1^W z_UyvKhK(*STE#4|BwB7FzNC7xzQ3^t<|mszKF_z;2Qvy^um1LMlPx|TJlEiWeI=X^ zqh*zPeB}mv(&vzAfl!D>#HfYNCh0|Zjj`f?bVl?E!3^mcVOtC@c18J$DsWVgzQTQf zIx7){#W_l!Agl#0By+*LT1woF$1ELe1FvPXB{A<|;y8<{xWR^{t-b zS?DSEHS9+s>6#*CLo@w{tT;b{prPy z!p6L-m%ltyo#y+o$p2P^z5Aqv^76hR1a!4}Jlu(o=jRTjf}~b!HuO7^8Gx3_oYwgD zhtX7$K!PqbvUCWspi4h|(fh@!H}cY6*w-uMW!tzlpiML;_RX7h7Qsem0Cx?*{YFum zv@Y-}@%rpZ(+y@yRmgkt*7pjQ+4#XFGQ^YMXcEnOVOCGM+hxe+HV{Jk;X zSFgXNgmd2%5)S^CftAEWh%tn3YQO`2XOXBhu;`}qMp8Btf}Q46|2%>UGLqzvnQKxq z$>h6~q>H-)Pw<-^`;%int{6*ao5_ye|3;R(eIB0oc7reh|6zuBm!*7mzk86XN!9ne zS(=tj8W2(W@H+)le_$;{Emu0;d1rVD)I^}C4e+E^j}tYZqRVjQ`H#7|U6s;B+brAQ zbMs^A*N>W?;gO_*zyCNLOhaU327q^9s*v}5cX#lj5=bn>{{J%-=+Z-fNJ_gtDNA3i zY={CxZbYf4+vBN;rV+Abz@r2VG*UqE9?&R;OXm*?!zJd-2kW2*Cbv%(@@E_-=4q!i z?B3Nq-1cI;5rS%*PPUbjel}s!C8Js9!CkB7ccCmkk4V9PxV0F)>uQPwEA}O8r7vE= zV2So*kRjcG?8$TBm@3u?uUf#>o4u*%gJ&dVCqY0(WUO6 zr?A_C)}@Q~H07Ea!pV0;O&nHAONAOe5T6aG z%4dNC#I)_a-SS>ZW0#N2!rW=^7d;K!&={dqOhi(xFKI{=0X&r^R)xnSOvNfSqtvI{9@q%5U z_4T+1fvc@R+~IT8G_+W&tXRwZ(?5_IdN5umpDF6w{-eF80L-E16d87k6+X(W@mk4jE!;fhO{-a%}PMZZ!>Yf z+>LH&@dg}|H6Ac3+ly%i1maUGtwf@M*%9vLuAS=r4J&!d%d@h9Ciwi@J#XdyCb8;& zBf5Qa`)-A*NlvGkDg~z}@N`@Wb+a$#Cj#xiKQ9Zn-X!8M;}T_MQ5KMAW%(O_npELs z^1%05c87LFU|vnaGeHH3pr_1!8Jdb>B4UbsnIWVeyO|+AFK+CPm@=t1Z9S1S%NNC!$EgAMFlZfz0_I6FC6XnOCDK6I2LNBD~W z^*q<`eQk5qJ%NF^=sf>d)`fuua{Jc8aSS@Prc>3eKsKr);?dc0rYg}vwjkN(a`aP( zdo8y5wF-I-B(%oM*JR)uXGl@RP7owTLIwJCKEV1h1fVrH$4e8xGmc1N78OGwkRp1f zvL#czT+B?(wsPF`(ajl_pDPJ0WV}|@0Rix(tux4Gum&-Z_t?ZE|3Km7Swi zBEcoveqf_)|3JrH;s1Em_GYV`YhDq)Am^7(RAOp+>^BB{BBCa>+Ximy`4n*hENTh4 zIAN~`4Ute9+s>O8uE_1G!wuIu5{+ro5LY+-!%GZzb#;9>Lo`LtgRW^EENjDf&)Jr@ zwfR#$OLZ&7jaSC8OCeQ1_P!)yiuqu9!09Y`$f+OW8DTyW#;!Z>?Zx<}G3%E*1=^7H ztxOkw>h!DnW?V;-o>MF#)QfnZX1Tn8-(_4!iTzeAua}q~ia}qSkzqKN)g=)kOC(vb zwN=yThAvn9h4bfw=ff`=?wS!yQ@soU4J4iI4~r%Ku? zTA4iud^!WTLzoY5$lrT!IkT}x3SVisi~r|)$$sH>V8>tFa^=Njc-*4#KtUR`g_oP} zYz!f;)2-BLJd1*k2*t$iVDQ;}Ah^cD%4txhM<+1f-2W%OB?AxTg?=nWuCJ88B zd$gM=T`JNjYi?<2(6uYmZ#g0sB$TW8$TRhnitE{N`1~c6!G?>Uk}}JDByChRV-})Q z`*Gla7nWn1o91%`H|twl&Hr|;?`gx0H~t9INj&7yNa7M~QBm7Q^`2pcp2He_=mO-E zI{k(EprXjszX6{_ef$Q~E+&RG_olXUi6r~ZHLpX5?)mLCrmT9VEIR1c8D8?3GqPe* zW|s2}kB(*zD8}b)6{OWQjXv}&Zwv}6;1eYe5wa;`HNT7xhSi1*FEAs7roQaF=it;( z8QP6tz}I=}y~>pIhId5dWz3dg zTs+|}G$|NhV@Co@gj|_KFgp*|H9tQuEgiF=RHe!6^3BLQAA#XIcZ*@}SZ{S?L0sEu zH*#@euYp3ocVkcoK_1ch83-Qr+Lj3t9(E&a5oR@=O+Zh}iu$NZCH)c<@##B;a z2ozJ|#&Zcu`J}@oonhPs@B{Lr(*iCYCFBj`UJqAD=$=#~ifmfbtdE?`v3lk98o+iV zWMt$Q?n}|gGtbM{wJcYvZwBV9L>~8RUU9#gPX4&mjCm`0PEJj&l@7Pza0mT6sHu9C zX`x|tArnjBBZh_mQ`=^;U`*p=)=Ri6E0*-~3D^4RF(7NaT`Udw6v7&b^hCx67*6`a zSrprcCJ-E0`P$x&ej}m&OGCpSKK1sxudh%dbZA71m2nju)kIu^gfpZ~{}<Ei))dpx9QmHL1$4=(z?hKqg3&ikiU*%gF1@r|x0l~$cu zjg4jowvAVVuk?-Xa%Vosi?Gq9dyg1BXfd^vNY*@H@AKK+!)zQhelaeMUmoKJ+|9S4 z^W=1N=0Nk;?of^%1Ow3>CiOgr?wiB8iK!{h|GDtyRpsPJD#j=(9p)W90Lm&Z8QII> z96P}6EEpA;fABpb`f)c2a^cAdWH z$Bi)b4izu_G6tq-;+-JoWFWvtWm(nP_R#)b-Wj@53wvo~JDSNYtZZqN9i3h@X&xW6 zds=cUDq0wKl~nED`Ln*rt)HkM{M&7JUiQk-`yTVKa;uk`QO{^?e@(A3T3FtH)#MCW z@a!kJeY?%8ky;Mp2L}i6grIQ^PTz1^U4az+wG5vKj$(25FGpbE4BBrFj$kYSU8&gL zAFjID(wD_@qcGYSeyN0Xnd@j?ywPB#Rl*ZW#`kr#EB1j?g}JW0y8b)cV;jNw8>D?G zDILkbOIK?#OX1gI`2zl&69W8b`G=P4lo{T$lQLJ&ExYiu31sLVZSDtXAo=jJ^YSX$ zMT$-g0rA80W&m%`p!pt)+TM8f21qhljjl6fZ)X&w@Q;oq6)b=J`wHfX_{a6z5#bjY z!i2au+4K(^y?aG+Vig8gg185lyt2yDj0tp{oSc9eYr#lpA|oNO{Xo|EH%lyAGoPUD zzvx=H7JULde22=|4oAm|#zuA)Jsz!aV|3|IbcW6sPZ2vaQo5t$Zrrf&aEP=-U**yK zkF(hrMbfd(Rr`{S8<)1dnui`m9?#oLuG!-|zmIaNbwp3k z%wH+h<0mzL^Mus@*lN4^AuQ?Y?6>#tR6e(QvxbA)wl+InE~ECS(!y-dW1%v5`;L&4 z!AH|fC(knpdFllVqtGsV%C^%6VfSr>dZg}1GHhKGT=c|_=xj-Vh}+ip+s?lk&*eRUq5*#p2Y%zK)|F`aGnl| zvQ2r2D^$JP-eZF9r`pTo@yh#^#H7Q5@fiO<{y&ZF_w~dwNLc z^=9*bhsG@Pj-HE^pOcQgK?v;O5_PQ?nHbY+`L@#^Rj!d4c*bEl-%PJ&Z1bHk8ZURt z9m0Q~4edz|nNQnlHL!$~J=LD1Go>6X2X}5|#cvh(LgYb1>C3^ZfJxiz)1V9~T#gkofm}%NI+T)Y!~!0VOnd zgpX-gLa8_>CoVElK};+V%wPruAu1k%1P_yzapp=_u5!xQk^BYmi;c~o0o}f+R3|wv zZ^QitbGY$^QBZmvSMz zIU)ns?nL(a`M6?wVyXSHT#`U-*w0CScXp3{=t_;Zx67{i{9DAJJ1x?5-I)?SL9?G` znie08e7N4yCmb4?R_*U$aG|R(L$md$2;j=ICR!Vzqz#%x#$59S?7#BBDf(t%8O>^C zWOvB59wHChRx&#)74vwG{pR8BCD`gxx7lcRg*%U=fuH0Z{q*L(zbzf@XP5hTa@0&L zEN460Ee9h4SH`sGC-Xx^3Hh`6>Ak94(l^8`6L3+wmH=Z9U3UK zi!q*9XID1fw+EpsuyoZMBi&?=kNN89^OLvC9f`fpA!2HL#PWVRHT z>~1*;I@H~l`KO$mdDo8LnGyuF@LkUp?z$t(o5Z0RmQ@7v^+BDq19ItNG^YQSiYYT& zvt`9M7m=JBuRBvZgG;+1O6M;gun0IfIOu3-qf)5-Lql?(KYzqU z5B>R*gKd67vNaO4^#MiE%gakyMWyr4A6mKbw1Se2-E}RhF0M&;#Ff0+#FJ)^n?0OC z6~MMxT3X6H`{z;34A!9Lf@W@sd+^dh`S(IfM4y(4adm1U`Nl4NEVcCMV#Ii( znxncqBH@6cX~IE9lo^L!-2orI|6@hcVSRN@K`_r7aH6Pe)>gyix4{kc-@@%e8;882 zYZl+iI61+@6PrzyWI;1yZfBbkk-?)hsC6l>Aa24WJe?f9T`V8l7-jf2S-SL+86;BJ zIlSU2f;b|4OU_jG{pD_{`3+_0l64~AJ&;u;zRQ5-@- zLJ&xavY{~~=luNq^3p|91_-S)Yu11Kq_P3{DWI|E7YWk@T%;I31;4dfCdH5bsAMDW z<7g*h@+cR&Wbfs47DH2h&;xQF5f?KfBU%Et%`8kvc3~kS6;%KhW|0&EbCYpbC@M}j zsxmVnD;FmP2Oa;@lTPx3+c4R^^+U!tcprS6iMJ)C{Lb2C`c5(gFW2+SSegmj{h^^h zkkNe@4C%`p@_}v(?vNHPcq@nribl|NvMt$1b8?ISG#vD8} zLbdThTy#1A;4!oVt|NLeKV#dalMJQmkMPJ?2yeDJExo)P9Nw=QN=c#eF+|VWaK&9v zA$&162OaF|1$%VBtJ~VzLL_qHNojlL%P7eC0-YeH$A6Fev36{@pP@LwxJO~K0eYlu zXt)YaL6z2+ZH_QO{z*VKMEGzbSYPnmj60-Z%9&F z6S+Blc7E#b3-CQ6&gMnqni+lD@X@}sdpBCp!^NP+siCaSlavk*Bzr;LP!h6fMU&7j zy8<5koH`+VFdAgoEo>?R22rfvfXz6C{4WG3|EKOZ=bT z@vUGyg4H-_w?%Es3q6Y33x=lph&WNFq%6z!rU^r|>d!8ji^Z=#1x>0eM!;F|KTf#y zN^Xe!5%35wiMmQpPWUbp1+N5be~5^P=%}e-a_|WV5)%_a)$wPcxA(KJ?+d68LqkJT zQixYIXk$?af2X9Rq^BFGf|gSZoKYN@)-1}&sdm3G1IVMWu<-1A78bkZ$GdEa@aNMp zs#ujC-81qgAYf5_7ZoQU$s8jwuN)(|7Okk5e#N^|ABKjWA!7FbWa;@LF;)AR^J^ z^NjD|bm!ImZ2?@CAz!f_25c_H4s%U8?B`2d-htlKY;sY{?1AqA;sK$ZV z8mt#P8{2Z5Z&_jC{Z8mqbVZ+~7Gk)wm6=aCuIJTs_8AVXDEdl^CmjvVFDth_ z@}MRiD%&>PCoO>#YT6S**M-2j_zg2h(?qtyc23pqqici>Lf3NjgJzGjcDXtbQR^p? z%o=5^c3)a*nVpSO5V&r%+39OD1vfn6-wpq0Z%OqyBT+H=QSYNu0n(R3>xBK`z?#Wc zLx=}@oB10e|;R zPi~L5fnIv#$F1;iM^|l0!+2lHbgb=AI)c_r2_tKN^X)Zo_LPh$ezEE!|C^;LOur=b17R+WUa*>0kclo}UUxJHAmK zpk)E+qf@r-`>R7w(4FoY1Kb2?Sb>>DM?o1L84)ccM^-~XKoA!f@7Cl@i{jM=N{yQv z8zUnlHzLoE!19r%Ul9>W{kBro(9*&rX18BB9tEfHcykkk@VL~}7T4t#iW0H%ta+L$ zC*t*+_}9e!S4T|G;EwL1=Q%y!cE@ehI-*4E1ku{t@`pro?xk7UhD@-WPk8qxZSyw) zZDlpTH@+L%YD#Nsqu+jg89XFhJzSQ3Be^<2WQM0dH&suC=m)$etwhr`^!D2a)QQNDfqfsHMNANFg(k004GFX9=|7)eM;F@7MYCB?@J3v_pP zGZLVU@VtK6hlhvPMSYU^`*d>M#biezv8 zhjlm*?X)KbdIB7+t*zJperR{p{c3)?;r8IpxS>aRSo28mv_Ak`5{Wy zYL?b&^l0gEDJm-8ly%impGAt`f%C(|eMNY*%)QwGIq)FPF}sA-=;kooK+EDrH5ior zmG3hail73~8l>-Unx<9}i0V}U=^)1C!Q=H=Lvpe%HxOd7|b#MoaPu%uK` zZK|R~(*Kqo|6n1XKF7lnVHX#+g4_cv;`SSbf|nmzvj_5U+3|(*8IUP@Q03mWI`1m^ z@x!RWC@<1#o^Z0TV8XC7Gc)t^zZU38h>H{Z%tp)1EGI9I#ECGEkcbc-TooCK-kpO! znWwKHhY|pAtD>T!FQ*&g!Vq6yUl>C_a6I!9O1W-A`y^B-Cj$_+`Y>z?h3ao-6vD@h2PY5q9#S1vf2 z>X|VO${odEKWD9uNFHG#)L)v&d7Q<%Z~yI~hr9ZFnEj&f{-~v*L>YtnCOW&g9DYgI zMm%9s27x>X0j0+|Vrk=&D#~H6$RO`ijL+>El`uUrG6x_`78Q-?5BX(Q(Q|SV^!ve> zt=D_hSi8D%PWu@OfBpKkuH>8FS6J6u5q|Hx3ya0NV&ww4>e|}#iwj`Funz*R2asdI zvwKX^h_F%XZ`c5c{?+1oNIcyDD9oMDPb37wKwKqQ?CRuXjSHc)c!o7xHhf4jx};aQ z`V?F6J;hO!tMkbxa0ph}TZlNr0HzI!aaqrTa8ads>8f#$T|63F-S3kIK z-;@}WH#k3fayY(Gg*3ujNl+Dy6Gy=n9jRs;e2EysznoUOMZ|hxhrnms&C#GdxhhpX zEowuAHfB9Yz8~!SQ$qH8LIMXHn^EloXueWWQNbh?7Z=mI!_eZIG{GhJEdBduu0K{+ zR|jCewb8Aut)e1Y>NpS>NBNkZ10B0oPfqM12npan6jZwz5*X3Yim-b0J9l??L4fNH zL;`6dP>|?vbvyRsHXu|O23%Dn+V9G9A^in&tC^9KQc_YME6&c0UCV&6HS^r+(b3R^ z5(i#VPLqerenyr599{%g#{qjqI5)~wNp0>7uxJ!MoX8*#AMu=U8VCV z1cLjazMUdv&Q|E44R(Ob8CFE}AF(*X43%+vm2gvBK=Ivw5r*!3`{oloH`Jn*%=>2V zcKT;c!$i944QwwLi&Pc|qUvU{{~8z_x9o1M;SYD}H3kKx8q!(9hm^*i7x_^G_dMR% zJxfcNxM!1p_BuOVv*3eUY_aR?><{84?af~(sRY8?_|pR;LW?^`qy^O9A1~+hyuH2s z=|Ej=VL``R4Uf;3Jm$TsL+DX9_FKzy6e3$we1rdtG@X4@z~MRzr% z0hxg&hdefUN{L9nULXv(c?@Y%RdZ1ana#CRD(h|$TJv3>5K8*dhfuvKw#TVpZC&IE z-@D5f1p>dVGN#V2k?yEG$b5JMYV&}e!8JvU{P9yCH@&#TF`GC;ecR_e2Aa= zMdI6ozjgilpUsbZLoi;1yr37CmXJpGX#P06gWV}3g=)#N833YqZ z9A^8y&e1-QH5L^LZQ0;EM)Bp&Hx9&yw8&Duo4(>F;^f>;%6v9re|l4w4tx& z;Ux*xL}21UrI}Zfo12>rKd!{S3Of=XT=nPAALs#;l#zjVmQX#F+kN))ra=EkFe@rR z4#{@DKGJb_zf~<&2PB@AQtjjzriX|6nNyq&73Vd zzN)IG%kmxIKAlYPt+k~<;p-15W>RSh55NH{jTmEVGL@J7h(1o`mN+F(`4OkHK1gZ$J$TAd>z3U3@XeK5mRrpnO z#C2!^28Hk6zYj|*)>VS|H5!k8f!pF(Y>i3(Guj6~KRq>tn{!g8Q9Bb-y6S!Ln}%Iu zl3~`ClaQv(G@g>*b!n3(RzmFDHw+vrOxuHlVzO zS%lV>JxAmn+1Y*#%3bDu7AqAuaNJLajjIxouK+ga0xs1gBO@z%2DS?vNLB?O5NHii zm;B)9i_njR`9}C>I*-#!GC@F&L<8+A_SzQ_{Ts)^vdOkAPsly=ARZ5Bi>cH4QEIBnha-qlnaAzH z1(hEb`l32nDMu~W(H1sf7bDNxO#TNW{=$7u)e!wy?ZRL5kt#>cOxhSZ`%5&=2_R!% zT3YCobGRDk%1sf^DG6lHoT^W9aH1?KQ{KFl49@sHLN`YM^C>hH^**=!&Y^(z3Jehe z?H;X0n+%S9b#lpza{*b9QpLu`3a9)FdI4*g>yNC@6d$M$D~*GL15fty1!pj?;wv0K z#&UWrX@6O1=?x?kv%JBf5+O6hZ1mWNY!*jX*V)O*WPm)J?@ahB2L=Sd#8>LH&X&4m z38~w8T=V=K|COg+xl)A+=KU^jPB#Gu;_;Eo9ksZq=%kcD+JPs1AHXLXwNF}Y5EVMk zw_T@)qrR=9F2|Jx?4}R@hR7RlkSoC<9KCRXxwFPWYFgR=sr+JO2wjn&0*rXIa7vx3 z%d3E5vj$q&5VhlAeD<>7SHz<|O8}Py|3pyUB++hg{!!jDP;jfNzX%fh8@Ihgk6{vvFynV@SA|xw&5{(#Zn1*OdpFzFn~}^)O{! zc?vJvkkL^C5Wb*YpnOBk*3i{`S&5Z6LSn%nBt$0dCw+c)R#c);$fy!_LimN9i;J); zNe%z_9ZeiAgpt5HAtePRtxF3zgjIU3Qcqn;2^v%5;-&yXX=G@aZGU|v@Q9CSE}v0c zScnw-{BVx>dQ&-*fJGPG*B|7qId{PdM-}hYISQ+sonZ{RZF@s>4yFcuX6W@bxRjL> zBha|B#{PantL~7heosLL*G^jg)Q&^=beo14j&bfzx@J42GT>c3U!OuOkZn6@{Vj(+ zTi$rFq(#;S;?}SqW6su4beAeN^rU5X3sxykQjyX1yot9TZfm*S({1P*#qnwf&zIm99lr50`ftalFB-MBCM8$PDy`%KP@&Vs3Re4f`V_F2Oj zortT7K%}Knzu9_t@CKon{&Q^BuF=qgr){&EV-^?h-yDqTUH5u=;Gv^KA^ubDdCg`v zEp)C(+pW0SUEc2ne@uHx71%r`Fc>7>NVQnqD zxY)w=k$BRKbmZ?gxOnSWytu3k9VQ+X*H~G)s~#o;%a4^X(W(^Hr3v)#MPKbrZdcyF zoyL$kI*1Sz6WjTjl9!X?urp4|%}hp?1x8jnz|=~js)|a5UZ<^*(Th(Qp)8b?y_Na- z{iZw5mr0-JD$MS$+A$(|EtIAe5_Wt?Ds!5~}-(CCGy4PZDSbNiQ za$Xn-VBnD)-2Oc7?JYQek*?^clcq(8r!>Eut%7vGY4w;FvpH4r?xsEr5Jb4e zKbWupG&xC4Ohh!O`Wdr^0-_iUbF)yUpGgkA<(}rdc||2993fF*Fn6k`tgO{!zYf}| zl9FyN^$iV)NlCsBH`N&#%SX$`EorPW3;o8X|MrFUR~`W?Wb{w-Ewb!j4BGU!1?I4l zONWq(iqIC`wX&H=qSpo<#)kmF!{2&MdY~l#q94)QXYc-LmAWqGT;LC3gian)=Z~(2 zaK+L|edNu8f1rU{UAnYL`E`LN_10XRUel;y4V^erMUCKU0&<>gOcc(0cmmuBg{SeVFEhRNPI?BMv_>mvAvWgLck4&(} zME=1VE?rtRScy2BejaP+m1PKO?UxtC_RZQV_>9Ue&bv6@KsBQUSol?-0SE?_Zb8z$ z1q4XeiaoKD z|7bY_9Yf1&WzkN7aZ}c~Yw51Ft&F{Ed1Qb2u%Lct3Cg~)x9Y4Gn%dgh ziW#EIx%Cbd3e;89_!>$|J$e-6YoGD_RJ1DK{OHQYMn_+y2O|_Ec8UrY9Ve<|(1oF3 zU@X^~VZNRNZi>rp1s$n0FRwSoR@Z_1PqUMas%qBmu7kx^v%Nt|`p;%Aqra+jk1vy$ zwEuB>Tm+tOHZu+GlLIn{eVd@XTkceCDPDibJs-@_?5c2eWK3daG*{XmZWbtyGYTR( zFfZDJ7xCEMVd2&w_6bG5RnYqmP#qQU_5pHsco^lAB;)7vK%@svMrmQzn=B~f)43BmA*t7MHt#+=?>1K~z0?|R+aos;OP$TaC zeBY|+zt>}eyrRy`hdNvo>wTX>_0>#2H&A%AfmENoABa8ooTb)Vv9ogo1O#B2&lUh# z!M?taev+DtFgSPpWIcX{u)+XM{Fpmfn~h~M65uDjZX+TBtI}^;Yk!q_Lq(-!Oj zUm6}2CBEF{?(QCDRm|#V`svdk$U7*)y>Cu(0RQ4Ob?rjdHc}8N`%r*KP{iN$lB>(t z@!8maf2NweH^-WqOYAcLKpckR`d}3d7M|<7?$;XO^zsBX&g| zi|g|^2S7!Ie4gkJdtpG2sC8!HBsH(r7ybFo@^7$-%j~Y`HE(#8h>+!FWDbU6DFg6; z9s(H_mi_aS_e@R+C~xR)69L1ce5$XBIsP z*dDcsx5Bo6vf(j4sLM}Sp6Cx;?mr-M*v+- zs_DF-Jb0=J>6kwsY`8pLwHpf=tMoc$J%jRXSE4CWJdnt?2xq=6&b@`cqOt4OFC}?= zZ@4jy&CMnA=DWItA-at|83hF)X=x;1OI=VWaUoFDGov^jM#f(cKzFc#aL!Q5b(ICk z*o8Jm({&$Q;6%l6g@qj)-nYTc!SzUpi-U*=c${49;W{9I^Rhn;jJ*|xsH&DOV!5vO z)V%p#C@6o&+ua>gTOKZb5{UF*%8_L5Uad?W{Q**swcRh+;)yDJHSs)l>Fo1r@3Bk} zG5pe@W%FvI2eXE}f928axbN$xZ-&6&l^Da98YJlE2@-s#Yo&z-d_xv3`P?_=fO0TC zJ|2Ka0%&2x#Fi!|9FEgN0-mlfa^SpYDac0wCI^m_uoAZ-$bE9)3G|t;%x;rXEO2pf z04}bm&VZL&4kK^C)P|sfAR62Qj&hgAS>FyFA0LTub9OdNFl;9rFNl8FL&d!PK-jfG zy;9d+y9(Tq8Iu%&W_7ZL6kuebdR?ZGo=GaJWX9#=T<+0gy)KGImH!bF(`PePe1;9x z&yYi+q-A~;lxJ`&R!x?|&w_(5ZA9$$ITgyTTeZ4Ug+?aE;razRgxWw`w%~8_zFMU@ z84TFW`SL}r3hpL^{!_b2QF4HJ${qtGVCif9i?z6x`1CiZrG-~?&lD>yqcYpRy+Ioy64%=& z?K8((ed+x4r@0a7rS-T4c8Rie*C3J`^KI$0UFBCcLumbKj_-6JD~m8ny^y^2FnU2U6NSVRK6`9l?F*P3*Z# zvtW&%H*kD_fmAM64U~ca(Kv<}+156512FYqLQ6nzzEF~%ViiCuVq$hx#gUQ($G6N#E zeCjJ+Q4hlQ3#4QL?-qn?FDHyn@lo33LcU*zmt(?irPnNWmeIr|_oMI-m3WDrL3d` z;{-s!ZCW=1f*Wjp*m6;d0ClVr2IL|xM#ckB;DL!VV*W2Dx92;>kpV!90yaMTYJYcE zMEMqrpzNL zzd-<#^$KI|Wxp;@`)7BB=X*cu^1GU3ezMUG!ff?$iu;SXfxVO{Tr; z!YJumUG;vQCj`MFC~MYUUi|F6^YdT2{9u9H;EPPebcFDBx8pbZTpQ{xE-o;1XPOog z%}rH!c#I{#HX8+0ZWjigMtAcg2wRIvT3(Sj@w^6=+0^*B&rC_JPOI+mG9Tn~1c8Qp zZ^IZ{nDu33z+4QAd8CR!lc#KUE7kntSjLR+Pb6!Bvm{u05g%(GoDqKqie!5D@W+R{ zGtVU>*=uKF*-N|f2 zK`@aG%D&G@%m^xmtglv9!02j+PKOtdWeK1>=yP?p{GD0ro-33$Qx_Yw`*QThOS~V6 z7u7S6Mkc#l3~#jZF#<-+W@iHFO;jrTSAu8R+CuqG!7r?xxn#wAcqAvM{z#@|KUqwboAODF&zO47p{KfSjWfT&f20NPuD?9@4&h2k-jccnE8n zRYymM+`>nkDJR6Wk69Z+&Eo61Il%S$Lk1hfld6B7WS5E2lC6xFqW_B@c?htc{hEv+D7 zZEMS{dAaJF5G)?-SJG7pYHtv|R;mmF3kzx55Ehn}zlRhQQD^~y*`6##*mlWKU0GP0Ej}K7!lE*ErJ2Jz-4Lq#%$uO@i}&}!)8Ckg#oMo z&bR5)`IN7`Tne|QyS~s=Cl_jBr>DnmWd=hcQ>s)#d@P>lRmM!W#LdR=GDs7(+6{1h zg3v&sQSRQn8&~v0=804z8JY_t9DqK1e`5aOVyw|f_}8zGfJF-o7q%X4_6@haFlf+; zDd$C3Xt38<18(1K5(VEWY~06I}xB}4pg@Y32EY98ygz~ zC0jq{uZc5N291SsvSlF=^&U6&_Ys6vZ?1#J^c7Sz$-)s}hXh~oH(9Uu(BBs=e^oAA zdBYjmd5Sp;e0<_A%ax-jxmF;P9a##Gi?vB$ z*CGM~8M{-3VDJk}vtkgl{{us*Cj`4E>%GgZ=l6ja=;(mX<~vG&pO(Qw<&$Fucd~zKTOdwNHBJ1VYvJ5;+0kXq zRl4Caq`(E?grEU5m+}TMJ_*xNQr0@{$Ysl9@m@YXLPdj%l?wqJ@L2tTDUwdLd)Ybi z^QR0@>vua|fhD@$pTpb>YLo=~25@Du)~R2=4A@8Q6))qPdBnuGH8>Q?7UHPIEv$S! zU*dz@d}4ZfPrjPGl!z^Pb8zZfJ>oDF{nTP0_O))OkAQ1rL4CglV7a=?_nzK;6(hkK z?_p4tQ#z=Pvm-ltEI51?XmamG1>J&2Cf_OBf6%1IW)O4PNIk=6q!R%x3pxuFTnR~e z`Dz-oo2qJevEB;kp|o{Sh4DE5n~X13){omBeI6PgXJ({#c5-^*BjB(R1O#$BIs{pn z+YkWhMHzRPo|bm{SHhA~s?e(1XND$X+F5Jh^7){!0bG{f;X?N4nc`hr|Vj;uyqTi>EZ~aDJp47*z`PuK+ z0HEjh(t&2&^{R*G7)6k))*uK)wv;Q5{oPEo(Z0|4g8$7lq^q))wF9-_i`PMmzNHhR^lOjN0R z@aUlr&8t`aA>R>QxTU2ffUdmWVmy7}Q}k>1+q3+(wg(W3^kH|q{9m+tT#Bj=W0EF) zOAeCrHc$@yyHCtMG%{Xc(Cg1(E?I`?GRQg6RXqdBUbFG^_httJrAJC!B6@ z>8y2*(lr~FLzY;ox8kx{tOJg&Rdwosr#31oDvRG84$l)*7XaePk!=}u{05&p^nMtke9;`n#cxwKXqbJQd?gwQp=}jB+spP~h*}$}GRoYHQPYoWKe{ z#*iF4)_01IYiZ5A>lftNu%DPb?LG>Gi?Kg#tkn76bICTVI`;(tdvBx$vp;rKZox9@ z7JW73FtaIaW|=%rrdJ0V;Leu)xfr3z?yVGD>*Zr)+t$O>1Xdw)9;1+%o710`VGzK6 zuwh~fyaiiI!aq6FkUc6~0f{1#9UJoLo6sb6B>*c1qs{~3iUENb3H`1SZ z^Sy+!?lJZ@s}ce|s$}a&&?&$MBMP!qKOEpn)hr_Bk`gO2SH&tw4An&FFiD;JN8$-E zpH{1pPA$eBX}up+pEX+VuG$aRV~17`LcjJJ>Kx2Qfv--_DfP_v^?fq!c}GY{sH{8% zUIyk@^eaKH?X2fkkL{Xx_EWXs|izM^>dWS^C&k?mz#>l&0&^Nj^krl_i~Gladqm8L0RMg@U=fvIQDbX zU;C06;0Jbt<|!NNyuuQt_T?`Pt7|s-NApHcYw!o#$!a$Y0cz#gFUEgM!`ti|HQrqq zIsZm0M8xb6^yY0PemlFi(q75-O2}(O8{}6tMxVM#`F1Td_KGVZe_rS!j0QKbGz=#s zsMihkjl6#s=Q;>=eFQ{}xzP|TuymXTwT%tb1a`lqSkiw_*G>L1Kq%*xi)nuaOYR>mo!emyESMA$isDM|MWMKCU`hKQM@i9&7`+g8m7?0*P>&^$E+hIRhJJOE}M3odqisVf^l|ZyE;@1xMe*USEEdMICMrKqt178=+*Hjt z`Enk1!~j!eg6ps*v$j6^*|}Pe2o}p0cg1;lB;vL=E9~w~xu%JbW&DJ?O4)L1D!TWh z*~1uopMKTzOU;B0A3Yd6@U6ANfF_pIWo{>#-}F)lnZFd3blirA z*LxoQ0UnsevDxH-X}B43u3lDkJh{FF%9~s9ORUC7&-p|9>xgB4>C(e3lA|vdJO6^& zCi!SoRYB*?C*MX)i)CTeB|6(1MjyyAHCi@?Tf8)f`mQ_I=r25;od~>}!D?^beD%Ix zsR#(KPm_*9NPOI9Njh3)v9!D^DsJcToP9B)=39Nfz*c5TE2!`zA7lD3$1bGoSYjW=Q59(PyA!O&!nwLn(IY!6#sQEfcQ@a1nLky>J6w}7Xvin^OdQx!TRrBh<>?G?KU#|XuU!P=$&p4^^-a((;E znnt?DZ{NmG$8xR*LpDPfu(=cu$%Npf(7Ml9v`#j$KVei{B7^bifA`7t^|vH?&I4$* zdqVRBtX4_Pguq|yjE{Yys;3&A)x(fw{pZ=fLn=_u$sz2YePW~w4D#(J+Qf@!A?NMY zWz7U&mJuCudR5l=n<1}xw?0@Wqh%26n;{^e5hfu{d{Wgp@N%82)hVQwD{nw*fpz_K z^v#u+^XK9G`=q&pr_SB;)&1&T2Ks5ej(kbusYZ*B+>CEpuh) zc}kqvS(eKJ2QU7o{4HG~P8TgX9qFsiZG+zQXi}>HY-1wpkRF?0kAi`K(6(1)T%S{c zV62Lo?yvATd3#-0=u|t07iOs4<^!K510L8TY&R>ZaB*JGSuxpi-Ax-s-KMHCtHyI{ zSHaHk0aPs4wL||}?%I;W9JPJZe^)#-gR33os5|)JR5dE~a@pU!S&?=^`S#z7HtN(m zqJ@hUww^?cGVL#%zrFma=FRWJuPkaZMHi#|Ku?^Xq{xDA%kXn7ORN0O4$>{!9lYIB znO{CK|L3;GoAq!L7Mc(YVXStodvZTZ%<=*spw%bf+3D`1h{C(96->NHx>S4Yf?vx+ z3ADWW_Xu4D)AT;KBc%Oo%n&;1?z*GFLDpn|pmFZZ&8Q*J%-0xka#sQZ6Ft@Z^DOby`7iL3M<~ zm_GrY^K9JTKWYoI~olnPHDf&a5 zSWt-F^2u_V@44j|)W%0_nWU;^OhX#3UVv2iGX2u8CTQ!F&L6D=pJmoyx2UCv9zu&n z9hA+Nd4L=&b`Uyk_Hll(Y;5`otSI^1in@o@ow=NuJeij_>$BuymGsDndZvfvA-4Q| zT^BS0&}Y@1KJ8cp7BUdZK_iR_ny(ULT1KbCW?H5|rA#WGcwxUC5ofH*vTFIwpoi^~ zcJMwbEi9p~`h4X-&(_L5DU_Ix*v&LPF&k6dfLFpDV*Fc>?Z3tByVlNY)b?1QA5f@_ zfo@k>un=8hxBh48%!BFOvXYX~n^PH5Qi2SkeP_LXU!;tR9LlTEmb+~DuF76p%%v++ zl4tLwS*wXKU@sPAB+#OxXHDJT!Z*{aXZ&s@mMHiW)O==v`ONkQo7j%Ca=NCx@0C`b z3Lux^b>%P4*3T)kMl&zX$457B1x?QkD)$MO`XtWGtY@uy4x!1sbP1wXqVqIe)juDY zeT&ETZ^Y(+6EP=y1N|E4N^pmlhAh)RC6_{bO{bNo?|@VAW!NV@zGKxxyS-a2@O=-b3fT({ ztxE1mK}qP(q^-VXowBxp9;;Ma9m@XMPw1RRz$r{EOj*R=iV1KySROO9+oUu+Na%BX zeCEI8w%C-t=LYI+1GaK}A;z|MJNT6J!M;W~Owf}eTiK~k=RwF6(M#;%X`WX|Z(j7N zHR_G4Cxp_pzCX9_JhivnZM_Z?AL{c=&pY^-U2St7w7w6a03VNhCp#a35c(uu*cA3v zYvA$8!U*t+4|c;b@h~#bZ$0}h%fL~c%kq4h6iB>k4uA$*bV1ugi>sbAUm+ZE=mUu8 z`PevZPA%M`dan-bK4 zE`)E<*lW@2WslKL+^^8ibwoCoP7O{JQSN>s+9-lOF2pr{qUhN73Fj9t?#Z9T%wLiXUYCTMO4=Uc$vL7 zdx4;&;$KjFP7w?oTT>68neGuI01lTcE$a(Sxxl^5J0z-X=z0`sY)zq9;s)0$ndSSL zt7aAh%Z@gSo-^20Kr{^&Wqmu>J%?oHQ@aptF}Ut{Q?LKX`goscaMqP^We^BmoH`%; z&2Z9{P+6_ zzc^}w?IAN6{PxpEos_>9=Z1?^5y0HmvC#Z=;ht$xju%#~6c~NHt+A`EetvEbyoN!WOo<+X_H9ER?s4fiyIFbyBJyO>I<*|E9+L^M8Ld z0Q#d=gm3C$S~EF$9T5CfWus0`DQy3choHyat=4p#P2lu~xCk@ySswI}xK`AaSBVdM z+VVW#Cw6zb)!9Io3*kS5$U);Rtgg~5#v0OXz%1}KG%!N*D7$hNo+0Iv48OdjdUyzX zfz%ftZ|r)YaC2{$>*?muS9AW{xYx`T(ZJMz++-7trj-VLodESLcRb>xkZ}vfvRMWg z4I?KresLyO8&_ogM#3Z*N$;ohAM1r=rOF1PVso-}udMw?|mkU0=%9w;e-ewzNYRfNvnG$TT+CS;M=YU-dIl9hE z;OdH|3Gp$*7~43%*6oTN8OB~&`KX_Ll`F0siV@f37K4oJ*VvcF71YpB7abjtqCrEN zkwt;?Bb)tZOO`}a0EjnL!cB2Loug7RLK7^l_UD=^pC>wW=$Gc^_-1+>v~G&tzruA` z)rK8X&7hP``bNunZ<-)#Rjp=b#F**sqh$<^GRMe zrVvS0_xCemj2!_@oiFfIq&(jBZgwe$Oa0#7UndpbGDgmK>Xq5)6?Z-<-R-mFe!>(S zW!7!RrWtMEg{JUMe>GH;sGn#3sGx1w@+GswH+nVqLF1;3jM#BzkeOm{Ik?`QaE?+uL`l7t zk4n~GxKp@WEma3a0$Wm2hATA0Oh*D*Mz7e}1wWM%X_)ibH)vc*LyX8VCEBS93 z+8?&W9x(7f2O$(*r?O2f4sGeuz87Y7_fxMi#Jw$P9*$LGR_F=Tv=p;s8j)Blrhgsx z^m`Od^Q=iC9Dn}xMSaNL;SUZ!dhD{Q@qy`4E4L>Ml8JOFC2PYCK{mEWqE5MUR4IZB zwomdI7MmO#`3DDp8U2<%+}`=!Kvdl9qs!!SYX*(%MvOiy#O3DJlg0ef2rZ4J19{$k z3>NdPMkw^48fv)LEm|8=g)M5V6cIjQwyg9?|)Z zC-EPp-e{2ZTzoWhir$oIZK zJYY>l$mp=+zM$4z=vXx$O&La@^uk0<{P!Le$HRsmf|o^@MyFqiP0?>T$0huNEe3=R zJm0*=Hq>3nAJ#m&Ruxqg7M8cXnybG~hpMn&JfTqG=EBnQ7we-zgpwdPD@aV;rkoZ zVqH&(GQr1#uWmSpaq`YTHx>JQ`IYc~45Wss>6dyaTgwXMt)geUOrCArw)(Zl4Slw~ ztPdI}Yx|N(JX`|^f;|IioUwRmu?9d5kv5Pi#6Pz9^0b!g2)7CM)h{CRd+zU@Z~cRFIVlh zV{8n=!897Qe9!c7oZ|_&x}~8nK>j}GE0wdQ4$#;4BqG(|I`7#)Lj=R2vl6s`2PX4r zR;3yG=YoE!p4`nBWTxUyl^O#BY|RKNdL$h)Srf246J#V>%A zNuUbufJBvW=C-}Vx&C|d4FW^Ap3gSn0et=+*6>GD2@%=k`+9@AMq?Xuy)B>N@{%(* zj&n|HNDO0YO{o@F&s3cL2NzLMM$hYAV!Q-m;y40=v=#DW_Qmoa)7#T@@3ZGGoNM%E zha}tdd{bK8Lf>!;OMZ@H1mYqchNHTnew-irv_|g%MSGUvrJL^kS*3lM2UO0a^rFE^ z%~r(W-#goSOXU9CfXhmQ*v19IQ|W&=k>vYD*iwq?>WZbM)6e3nS7J+b9wh%Ty6!0M zc8UjIvVFpqi4&J>33|%okCEjtV<|39t2MyWdhzK@dJnZICy*c?<4;g(=g04!{w5!4 zMpjCRNhJemuNv`540a+2=*Nj-+fV`{cNs?Y6W}q4o6}ff(&(c`FpxI6ye{xlAzwDgFZ*Nht-?v)(;W zAM^)^J?FADag<`?wRRx(lxd1Zp^wA~Ycq+^=Gunm_p*G~Cn>SftM`Y<($RGO+b)nl zg633&T8-{~!^*0f+d1^bmhC^l@Y54>2RYqv86}4m@=Xh+?lpZzrh9w;Ob9jkXY*KN z8x^TB(sq~Dw6fRM&X@F3)!NKXJ$;$#c0#$dob-ZhycDH5KD#F(R)4DWd=m^=!w#(9 z(u97w41Xo4ZF#8aVzr;e!EyWl)0r!Mt^^i-Oo;m)om`Mj9n=B^pC8vwjgrWn5gSc8 z(hc437B6pu2|E+LP)c=`@;O&RR9h5o4cH;&v)mr9!t^ev;yWnXD%H@`lu-qrInzCD zy;gOCculZBs68uY4*CX^Nj2x--RHx9RUa4oP0!(Lfv6-)1XqNlZm)WYV?6z?gE*`T zGXqYa5(TAaCPAMS&(X1mimJaoV53vXT2#$iiIX8^3VF5ZTz`#RgOc)eTIDTQ($FX+ zvo4;p+L7bd&?E_0Sf;=&rq9^(Dt$WRQk~Dy#LAanPd8%f{DF7Z0NZk9aM~x+k5KBR zYtUpRqv%vH$xw9ZeaBSrSJu+@efV}`j^KTdrN^@GD8%-zZ;>+dO6n^U+)CXux3-FM z0oI#0AGOoh^FEOb$iF7VilvvV?#er*<3TwX;HGDG8MN)~czk!fLPgh*?I$Tk;d*$) z?e&p`gk&42Qe_XrHUq`MxuXXXno-WL(4}_$IS`RD)ah4E%mB69pSi!W(Ja9%O+w!I z0)0l=56hKT32ONG%A3?2HX>ic#iL+Ut&nChRlSJKwu=h~%lIv_lIF{o164kCT{@qT zOI0^FGk?BBI^Ysi%`n7WXdbq3AKrDRi*gi}j9&>LB2N8%yowtf{DTPH@XmRch)p#; zy@gr#=W+ZY)9NuaaYL)#w<|#-h!LNB2R+THjH0B~*_z35DjZ>DL?11-FHzqHqgrC& zD;ufS+e%2YCcb^6PFTk^!$+IBPN;LOSPk&L1Q4&u&aTPlHPNCv0a*kgt2Gq2zg5x zI5a`yef9(L{PcTgyjZV8W@z}7>_M~5kutNTAro5M-50PO1=u)(MBkQ!pd7&VWW1$p zx)=g%fx=z$1U9r0)lAscXs$qdPR@k5o#+itrg1m= zVfVtS`myx*k>x9eclkY)OS4rJos#-&^#80h#)P%oeUyxMlW-see~@h^v5xvJd2{3z zYF%eC{|(v-5G4JBNt$f;eAl0t;2;rm~FY0bo;fq z**4Rk&6!3vnf&lbE?OTZBv>l$$IckZ)4JH)?fESVBC2$tLydKmgicj!1&{GI{wd4n zGHU#SdDA)`9yC{%X#U2?Hng8?l}a~sN3&Oo3T2+r*96LCLoR)1mk4O3UlD!u4C+!# zaH(|6lQm$Q%3Lb-jLi9dxGF6bz~O1hzB1I3vmZ{cc3lOw-Yn!(*LF!HyD(GFaC*yz zODJfd^DM#j*DCLjoTNusMI zaxU^6^+#l>s@yP^3V2_M6~Zi1)R}BD&zoWu%>S)JxgDJ>a+#e$6B(6(N9~NCLhI}; zPd5~=qD;ieP}n8S{-J>0Tp;ZnetbGg|fLazsW8D+blA+xA&};ZR z>gB7^>jXg`ZAQMdbSnQb>X(m9?;*|i%dM$96SyBf2#G0!DV?NpuD;!!*_j_WoHr60J!hZs3{+HJbPSkL6U$E zXQDS8pHAR&{j2#%N6;0orLCr|#6svDVHlYA`;XUKAHCDi-(BM|WO3)S0Vy&YzN0?| zB2~TaUBMmmDRgLi%u7>~H?I#Ni_yo;-`V!ondkpvgB|CPM#qwQvzGABmPSvtq4oC& zg7g=K&o+|f;tR<9s=-FT^*r3cvI1QT|1l9gtD+S-%@;*D-KhK4KixFq`3(2zWU3*u z6w`E8ck^07)OR=iL&EJh3zsguO}FZ(0IZ)YgXT zXKoSCi+DPv%uKID7w32E?D;Wdt5^hApl|ZwSlQ1!P~N*+y|3L(8-%WCvv`~T!_rkS zRMm8Akxr!%k?u|rB&55$;m{?GbmyU4q&uY%kS=Ku>2B$i&O5x{-M`@MvuD=KT2H+< zg4*imWzJN(zie5aQ`#@z6$Q=V(+_bd)rD!oUTce54L)rf&MZ7rE6mhMaN6$Sy>j3u ztG*D1P{Pgkm`kM&SAqRm@v5kcn2D1kfQw>FO zFMD165}&kj@fS%)5xO6BbuH!Px#cbDDamS_VUQe{-;oh!uT(?M=YD=S7Ds>)a0=0E zH8T?qFan2BBHbp9YFe)5wYJ;!cu{ZY_spiyvr5i#v*&;NJ-UKa;%1!b6yxmPLm`)v z%{v&r!ty^&5v+;x`5vF9-v6GLYEye#AY8Ouib&qyC}**VDFf6q>Iu+{r1q!j1wfVI zbB-zSCN@S5SCg>l67yYs@!vT!^h9K6Ve-cUTwE)sfc$%Gl~N;%0GN3e(~|RNeC3s! zU)1gH3%$OMi;XAGy0ZGH;GtLZO4|hDGSgZ4{pv?u5Nq%IhB9X(lx*{)w&7Aq?N&G? zn$k02YLb2H)T~Egyv%KeuraV?78RPz+0K+N2CV-cfCdL&P;4HM)B;R&O(JVvw&q}C z?mkV8i^*M=snOJHbI{u&I+y%(7n{d4rTwWuzqR@02OpZ=Kj#@Z&5)6w?T=W-wc!#m zVFo@*s7R!KkQAnUIHso+UJ>v!zk+e4ZPR+yMZEX(I6=6}3K{%V9~HQP{q}stGX~S? zps!Kcvp;Vk`$E+(*-YH0;DsLXIIRdutdh99{=XqGr^myaj!}`)y3s>y7o%1;&-^h? zhxNFm@aQFYN8Q>|Q2uZKrN!7D;2snfrICDKHQOceeUI7uc-6ZiQ#~kh+v+VtNrUbC zIJY)QXDeELc9xN|1#G;s-^KM`gZn)U>dZ>a+$u31fLmtqPEsn=v9Q|>sji1A?*lTj z6W@wguME=`BRjRfkGxDSM?Z{MWNA`Ud#o^94p~{C*eCqwI9DBdQ10bi2r)8xurS@i z1<;Ja=iAK+C%D4|oyo%nOUlK1^{;=1bcQo13$lgq@WAPmTq6;4xBFxWc*P<@>#P0MvE!Bh)OBONNfWr#w}D*DQXy?OA&0Z}{s_X1 zXU=<~9Wz!*av!qV`)fncJKYi2694n1)lRmUCG20te<_lVELF1N>T{lId9XL~Q2x`| zztMr*ymHl5Ro~>4q*4J!Y}d4I_>Aiy;cJ1h7I%BjU2p-(ZOxR9MNB?rc$JWlc6j(P z2%6vA!=_Nhv3Bl1j}hdhq{gyae%&2%fsRVy2bc_0PVO%FjCt?kkU*gbdmQge$@JL7 zPda%D(0nHHGZ_&(oT(PPy%{PEUh!a=ylmn}~v#Lf7DA6232KuA<-P z0Syi4w5p$`b@))qU!$nlL=cb}Uyy9M-_!JeOMEL`Z6F=%w#7&JUHM;%8R=9anV*L} zyoMSJ2ya{8zk7|>vKya-&w-hd2b>(33i_CZBIL?tNjxV6X2b@;AhJtO#v*h7<&_E% z8WTI$f0t`EJD=k~i81bXy*_Grbkj>L>dMl5eCdYOVM=)gK%Wc?b#bDwds<(|BIkf* z`qpbWwOjN|g`o1MG66SRCg--t%kb)83SJ@b{j}9Bl7ns#Nr>vtaRz*}Ca5Sqk;k0$ z-hW>EP0YsD)f;?rp+?KFfu@$Q*y#NwLD9wqSn57CJsQUUP_<#4d!lDrBBO`Cfbu&A z-OEH1eT)PD$@nz!Y4c~^H7&Ft12A_99;#qt!6)(Y>s#*b!lLh_a^ENzgJ74z;#DZL zBv_E#e4lGkY7o!7PSIaxZ?m~@ot1Q~gX8>_92zPrJqV9CWIOOjC@}F(ui5$^KaNfs z7$~$e>3N;gVq%M=3&=6v>7gne9Lz0cZ+-V3tY{v^1nQ4_pT%FD3|Qv%$nBt+LrpoA z)zj1zF1ydgYUE2H`Z4b^A;n4kfRzdJ!)CFoXygW+5O!~_Hn8w-$LU6at*unDDXZ!S zqR>|)qcPJv0`7a)_;#&?Le+Iz=I~2M(8Hyo{m@r%9s7$-@!WRNq3{TS>DMm^S3HUi zc%LGx7taT#WiH*2zNH}$~e?4xz=pBuV6SZe0V_2Z06a^HFUCAWXn}{)pPnSczb=%fe?kJ9U5%t_Z?sbS4Rsm zaGwG+8x`++QR5Bhntw_YyxFCtb75n@o$C%fIg6K+ob6kKvsn@N0j9$f_!YhhkfvVK z#dwdVN1SHU(DB=gbxh2jhr6Dh@IeO$lcIycq|Fx%?GH_Hu6|ty+m8qB$IVRdtACzP z!p6ugOFx6(nqH>`BU;uP&ibGn*5maSImq)l+Xlz@)}Or4;Xcrnh|1{i)_}~ip6WF8 zV`$(FRn;YCB%18)(!topt+d1eHh&8gIyqGqR7A6O%#xC9hWB=#)7tfE4WMFKyp!V9 z@M2UiYA(J2J67Z2-=0@U)Cro^!uOj417VQ6%cLM!OC}Z9oY01I3<0;3X#YN6+o|Wx zgX4pJ3E84!xL3r-Q)f`y_q>mo!CWARwV7)S9s`ZH<1yTLYx8v+MNlXrxPGgs_G~_J zJ>9+1e9x{-GDs)rQ_knpa+X-4Txoy}a0SUQ5B>d}9Pie-Z|73C zes-qMIa&S~0|*}330SD8Wl7TK#7|a^00_~Q)+YR_psQ;$LI?&7l&T0KMfsEwPZBta zUia`qvG4}1yy|UsDK7iHOH0TkBw(BwGi0jYUQt;*YrA4_ry0JB)BAT5pL-Pey@WfN zwU6!*5lXjs%K(e;q!DUA$khQ^*8VqMPqIV9;K7}>?|L&tCx)B3&s%`$n4!{EfzMgo zoDvT&87a);9`$!8;DPwF1_q>t;hUS@B_+#g?@JiyE?T~< zurn0BmaH2`K&l9YY%_m#Iv}{wO^L&-woG`RJA1lex|SU&ubcC(hV?r9OZ-5$!oODn z9k1-d^XEBxe~R*Dw3^&Xem63VI;C*gR^VuLkHrgo$cv&$>+Ql)1KZ@qJG0~VhW$bn z29lB0W}C-B8JRo$p31>NEHks96nsqV+M2pVbl-wS-IP^B7lpAb0iT22zweot4sln@ zBZg?de6d6dRC}$cKPn|TyS+gHL)Cx0Jg~QG8A(89Yb11ihfPN2NEB_VIXm%&<2L%O z;Nn)E1VT~OICvW%QWx+h4+sdWHZCw|QB;tpPNAao2@%0A{co3N_^dbY)h)$$tN*pT zxBvOAxKvK%z;0+edjXow`Kv^yrA;)V=TXQt%Kc`0K*G(@3P3SKBOemoC%do0D#k^CiWcroqwF5#FImRIO+{+QlC3ozLR zN>YKZWfaa`>>C;D*L!D=d|glhJW0Au*MW}ypoVwZpc!(`{s@Oz2G4J)>bea z+*q4knnm&>`xGq3j^`H2 z+WH&18NjWM;4`ZQV)F<0cu*}V1TtT+=+Pr0Ho9)F)OFjLtvE$3doIAQPW5!n%?XA) zU3Fo()ayaLH@)65^C2Uj?K3Xws#hKr=To{|+7xXK4di=jQc*EA9Ui*?z%}jnhj)0W zWw!JJQBHHCD#xpVVB?FiJ6ztk;s>gQCY(#Z#-&ol&~PqtD6D0?YEa5$B+x9f|R zfkD@D=2uQBX&s%TGgJ19%r8%52xtesN6SX@KZNZP+>0-!>WA~S?S}}8y1`)pMh9Yy z4(j&gT4KEz8WpipWuFRYf!`1+GBSeV&LPvyTK8&pw%q5>d3=07g^?3VGP8~Yx(vw} zWqZdeGnzeF6vhm&v5!4G_Iw^05vlzB**|r^Rsma4nmq`e?j!Hu({0)9SGGUN$(swS zhD`@HGQPeHwub`q30y1QC(&~2oRc`cygny~OU>Bxafyj;pFrv2JUtFWQ(GvQ6)J_=9|CI_sp=y6C`V_?O4)0u`vpBX)o;cGJu~=aii=|n*n~D* zI7xU6il%=5w0USiA?oLI@^Fv%-}@?IMfJ>;Vh{XS`4M&Rkkx6ClKFX5P#y*smrYm% zm#kx`47CRi&RJ4{rZbV677Zi$^vdq(#)-u(__{|F)=%Tn3S^|Dva$WFf}VAU?paxR z*D-Uj!GQvv72Fvzn_+)<0XVooqTo3;oWd;AN# z#aZ;|2A-mWF3U>I0INKleFBpu5a7^wnVzvmo>E=UWw-M9^y4$Ggp`=Sf6sC&1T;uj z2fH;uWE1}?j`V>GRok}a;QL|TDw6Zq_>j)8=hci__R}J~_B)a}fWnqq5e4C02jX49 zoYu(5v9lA)-~VuNX(~4t1KF$*4^JEsq2lE7h!96qVD;7IRm#alM&DZFKMJ=1kRnQw z#jHvYNJjG3vots0vC&(4u)CupQ9D5#k&o{e<-`vIvzOT__XwoeNiQ+KOrKp$; zw3s0qKP}2$`3KXkxmpvo{h5fvISwB3fETX_0l3T|JLmF`3A?BjqNee-V75CYYPCy6 zjp`#LFYkh%e~gay{NCw;J{U$BpE(wYsb!;CS|RYMjGm{EJGHWYSuMp^bDuqFT zjKTSX5Lw!6y77 zA(C?o457i8$IEdN4;zIC9!FyWPmxA$BM!el{{tt#{XB!ZOT7{_gWdY2uIK;bkDpEQ zZ??a=5DQ5uthmW$^6HDIpd5*kk!_-RR_bGFZ{(W~$F}-peEkq77~ntnTL{>uTe_fB zD@l|Ox@u^l;$6TMd~- z_g;<%$hlg#LGY>af1O(}h5IQ;pQ&W>YCRO+$Md7(|C5JuLdSvVZ z5U)h&6Jr zl5VGx0m^zw*3``y>X`~mSVZa1v%en}dDxAzzRZwQkEI*#`-H03vd+6?5OQiDW$t%9 zpM{!H*!F0@(OA)AM}Umy6Az$9TAoj&<9(Ig1`^yin4~pM4HOT5~y+ zmiK+B;Rsom0nYH1u_oWH9=x5w^uYVB*AGHLF<@6GF23GTQ&^}BQcDKzTJBP=f#W%n zd(A2Kv6w+ibSbZdaMJO4ET50^ZcUwq;L=Tlbog4YmkD0WOM@z1_L#XF(%_euEf z8bCwlH1B&Wdg)BckqUWy^bQEX+uFLxEyTm8;Yi(YX~i|dh3o0F?zEPaq_I0zIz2Vu z&^3ZtzP*k_du4|Rqol-sLiqZ(N)>&6dAY{pCMVc~PQ?${V2 zfOt)suC!&1!x=Ir!-Qg2eL1dMZf*XW$??w|giZnNO%^`|cPgt87%jpUFO5WfdJu}r ztU-<2H^8ensW-WN^t`ic^#*5b%zM8n(t0td-VYx#T{i&t;+sfAcW?gHZVzW2Vt>(z)_o$r7YioBxcmk7|}c_C@ZYn8om07wbu0 zYY%s)g~`7I88iAjbs(>y>((bJF{v58SMSF^U6)%r!`I~VW^U96;4WgXb2xkYG;Q~l z02ltZRzzvyu1V3oblk62PL(YnD`?O!R*9}!AGV;ve`a! zT|>iHw2=`iw6s-a<(p>aX}@~+60> znzS0t&$VXg1n<4Fo3>#(2RD2lPX$4oY2BitaogDY{>jqM#>T{(HN%U4%ot zjJaG`xYtSVqc~M6EP^j&A}OhXBqOVeI4s6yYRWi^!i9D-@^@z4=WLoM!8godQpKY)BZ-MS%hj3oY{`LjXmg@s>ky1!80sv$WU z%;(o8H8x;^>3Xo^al<~|!1B~t`Q~3?%Sn^Mg5}T~Ip5!1ur^B$K0lu>t)07`xAK2O zQ^52DC1cKGz~|RzC%+;+?hJXsQ`=HiZ75`EDg58IFELMPWmy?Smq;m3M5NEeOkl0y zAOe)V^^FGPkZR4c?AUhgPjqzqaNU3YVEofSLYhq($%MDg%j?xDcdd#|GVL;;A!VMS z;?W8&Me#abp7n;9m)91tz=#@^cLXUB2h<^$^;e-s}mJLk(rF9)U z9kE}tw2W)d@9BFh;Qdp}I8xit#EQSw8@S6AFw@9~!SqstSWy2Z&z`%BeG9W`%VYh< zQmJHIe0&4r>t>lAmH7&t4q?`g?FHW>{omh_Gfbvxb1Mam#T2;bQFY zOIA0S9$&A)HkB%5$yXW-dAehonVleB^P0{85!O9hjHU;HzLTyAgv;}(72H4=m#;ym zelkL`A6h!1bnrWFljQ*MRXk2w+Wy%#6vp$B7mFwf4@=L$_XJ7*=K;5x8l8?#z(|Pa zYo68qgSmKY8rOyz@?_>M8Up8(Lo<(mq_)Q+`^hAR`)@YpZk^t{1qm`TGOj6E=zbds zUB!N-*Pve$8Y2k&=Nfb!Sba`*|LU0WJ6T!cp!(b;|NfmQ;A-QjjHQ%kZ2S=(0V6tM z0h5rIiBFfAt@>RWlZK*U$TwBpgZSh^jNmGIMp^EUcT%E3J{A^F*ViDH5UZ)_j-LL5 zq2{U@7)kf`y~V|s=(bk;O1 zVKqe#tG6Fm6~gw%6Ruq5_eouTgL1q?5rT1uN|Lc! zZ|&J_U^tn0vp?GU!ffi}^^3=^+=t%JHpzQ%-eR=P(_P>fbtm7ZCltb5QAvkL5|7|VSvid{|eb(NKyCskAL z?<@1hUY_Na(ti9<95t<&&ZcsRcW%t2+D6bWZx zA73KMr-6lMF9@%WT579QzB>|VzeYzNk8dOzl$kPv8w}$p6jzcnZaF*~8P+)5k8nFb z;+uppc(lwkdPgj4VvfB%7J*L8cyYC|RH;wpak+Ul#C&i3gOzINeP{-SKA~>iFD*r| zg}=*xG8+>NhMD=?Y7!Iw8cd`REv(%}Fn?cyk_(@vaM;t2{LXxYTvxYEnbE7}U}47S z{@On-?oUa{CW{LfFO?W0IYi&bC+Ws4j-G+%=H^aO)6wxR2rlo;(W8dZ=4*Pn@Kka- zV@8_wm;p`p`ugw0MB>-6@h|UDD)|QoAvgPQJzMhyg|69Fuq#a*AP39r;@joUZ(>2> z5J~TA`;yRCQ>z470#t%CAhoh_v2rXIOmf5K@p|RcIFKt^xvcv=>OLGTy!NA2_<4` z!HF3U01{H^CH?eUN($@lQV!Tca&m2bdEd<@E#=~8jE1J#?mR$%p{t+}V}OdMK2!o$ zjI#z^m^&9IRCMNfZ8B7|wHsPg% zqw3kEgF{aAjOS6|S~%~RvND;Ilcd}danLm2|_*qz37Yy&P`XZ-N zkdEs@+|u$_oh8Lu@yN)C`$$ihl~g?$wBF4dnVC;Y>P#G)s5~k0yh7(nUf4Dc5`Xdp8(7R9%p2O@7b8F1=Q3jk7fxD5SMD{OUM-s_dhs1?}xMt(kd3 z`{dN$>uch;IBg<%bd{NaMqL#Q32J^lKDKHGxb4mUq{LW5`r@BlJ-q%;#t9_rKQERz5S8}latX^QbPU$Ck%pN8frdm%vJDn!EEjxAPr+ z@sNTDR5E7y%b}{d^Erp=s&59iVGs=)EfoCB3TF2_DOt`Y;IA{RH9@duL)c4Q*#%q2XnraXRw7Zz}_rSR(L zLQwb(-hIjy_ymNYzeQ*`zdT%1e@cRQdm$MZU;!V3_d`n7lJW5Yu3D<|+~>6lluGG(fCn@5o;5E)$AL;W0lqa5P6DPBrxT&hy>(jPH{G zacnTC{o(XVoCXg(>TfYqhBA1ZsFAvu(6KZf$lGyHUQEskyL7}t|`fEj9oA?wOmDbYx zdkr?W2}2#Ep`nC8Nli(qT|#UQI_|6ed^9SmaR-N62ZskmO|4XKcXw%%O~wx>*E=AU zn!A#LsIa=4%@>xj98XOrXBJ=JYOTw9Ci?osKi#Ub@hcVG++(1In=Qz>O3E6byO+O1 z40_;|@mv?(RmkdxgJoru{YJ@exBLk|W%S?QQ*6*+ANT^lf$7z0(`}?P2j+Ct2=GPC z>RtBLon>ZbDut`j5HJZO`P@E564AAKHn@t1z})yBuIc6US9H!e0d?mE?PZopLN zj?_;hNzW+fWhuRYkCKo-w&<@Ow2|S&psGL0DoDn)a%-Pf?P;Nh<9QrJ6oEo!TM(oA z#(9)p;t$qH_{+a@HpK|uKAV~uNGF!DwB2b*OvSa1s^Qd6sI<~Xpz{A5uJ>(bxRTm-%rHD(I zAO_C2FI9xpR9T_Wy6n=)$%?tTcVv-6Q-E8;e#@u|U#G1}3kxn|R|;~6qo@;Q<->5r z=xB*2|0o>Nb7ui8nWv(txM~NaUVp3@aLU+(-c__7E=WPQ?1`qozipZOUHln3GDx?% z>EMJ4eY<_2%bYu#KiSflm>x(i0gNZ!bKwqcJvb&Ni+}wZ#=!8U*;C_ikw;kkuen8L zW6<+Zqprea&OFjQ?XkLZqYI42jr@V5BPC^jTewhQe~yVI&Rc-cd5A?4Qni}LxVruj zRl@qKg*Uq*T_EhM<({Z6@hK3z01gK>NQ`EH6RO@se zg=YiUT@xy~<&k;Wq?X3Vw{p;tfsMboINSKioRc6potJHahSsciPY@9!zOJ51V&kQR z=2A zUGf0s@xAAzB!D5ewq($mQ;HXwn%-?}B>nm0nwUi8^uf%*LHo@cy_}Xt&4S#ng4_Tl zU0oW#U%Z&OzBT~s92f5g19LJRL$ji~S=W{{2+cAoC>W=sW5B|~ zIXmkiD{r~?F*QXwSicJ5$YN3Kow1fEHbxAFHFSDkwtPGb34z>5ytv{f32TiAIi?-?S8G5$E>@YP%Jz zZ{L(!aI~` z#BdO2x5;U$wKXXs!e4sdQC&S{c9zV>wKA6+OLl08<>abIMJ(7? zaxr&*MnHWKGFO z*VnH|)N?dBIE2Ltuz86<_8gxne)37NoZ>-%pjl^qgBOof_3rLpM2yJsr;V{&6&oWZ zSE=*1~oKlbDBow4!SrReQ6Q?7yUK>JhX$-TQLJiNfr z=vQvB4@DKNdne9Mhci^BTRWU!?9|njYk76Fv?DLzOndqlJp*D4LBfkTC|6TS_{OcU z)F;uDA9P*Vv?w1OY!Hf*4M(7@$V%`M3hi;L%orLH{5OMKoZA&VboguQ$A*1=M1(Ir z!^HP;S$d`mY1sp067dGR1dh5&JsGoea;Wzmo?_b5NeHm6Jqqr{dJjHs(k?x^#%dA+ zWp6HB^YGC;XCg#KdPt_zw7$8H2(l+t{V02Bj$l0$odK2B8%@U*!7c!tG0({P7=j#0 z40&5Cs80f+pefp+z4l_^dj&u{6{mUq-vMO{B71iJ6re5+d~_xqO)v3>Y^?W74bdfE zT&OWK1&@_z>nWe9NJ~FWPU036+~1f9-P|awZ`7ZiQM$8Xoq$p_3W*vWXzGtyEoq$P z=5fbFVPH@xF2C1R!putLVPcE3ccspfoS3G@R}}Ye;5ITOrDm2d{Mi{g9*nBy;ago5 zB$}&G9g|+!Ek;WwB)~=p?pK*d^IFP_Bix0UI6CU;O6vN}L-d5A)on&}%VYzUdIW%m zQ_QRSXCBD{E(BKPBYZo7%qWpX^Ev-@_7JPkh!(VAdVj2bQK|xIiz4vRY8tX$MR^1Qmtg-`^_%=kxn3MH?|OQy1S?y+3b( z95%eK5BsEEQ$%F&mpD4@^gwt^cvwUP>OhB%hW{c|CXb7k6A4+0Uh}G zkwxWlj-y89$9scTZG&X^?Z2hCxICv{D6#_rnyIKDw1v6CWi{;OEqtt8F80b;M#dsP zjBXs+Z@Ab%`U(pRWRCrj;tlZMN>0A#!FlfP$>pp4{0`^q1Fipz$DLdzGccKc*`HpU z^8EEhnNbd;h!rs}XY#0Ewc#NmVDWoOcQGg)n{>d0l0>>`1>RM%~_q$naMo3royOgM<@k%NG_hCOPu*pr9adOCt_` zQC2V6Lw9*%O3}!urZx~gTU?xkfq^&`f_{!BZG{4TIF4vf0a5cKZT9|Nb*TC&Om8D- z)ipFwv_DsUfj>M6R;CmR37XvUeI%n+NIsgW z+z-d*rK77!N)nA?rjM7EC;pb;#KwXKzYK03;YmrVZ{9dxU|ua>CU+V~Dpt z&os8OP{fpC`;@|S7<;mQCdWuFk23L8@> zT~OhCSHxycSUor%kBI0+^v7(3;l#>Nw!kl-l~%5?yG2|bFQ?O?903CYiKSyWB7 z$E+aX_AWO#5arUR#(tu{8ya*yyGTNSwmJm1d_O;0h;aQdVm1ly`IJHOL<%6)swyA9 zgM)+Hi+zdZQ)I{TX#j8d`Pp4>N(t-eXsfF`KHP>Muau#ZAK;fgU1j;Y^F;LiK|`g; z6rlPQNoF=eF5t6CL+|E}xj!8q9+AM2H8e1gnwom56Bs--PdSJaQFyR7pL7t0jy{Es zR`-0aODN_ln&Ol%G>-hP((~dovXzrf|L}EyvesCml9~il@27_V`1GBPr~v6kElV~1 z{5cu{2{DR52!mvQ`wG3?TjpRzA@bc&pB6qosmArEl$+!Bw@FEe;BE{x4sGTp_&JubyO^rsD=b|IjV_HF0zI)J!PMUCUgy_u;gQ})z* zZ(vQJ4Svk!-U4>Tl+(5(l!@8wjSUg2wDI)>H}Q%>^%SU~E|-SV()BUnWTEXx;BMF4 z%%@l$2)m&E)odpnI;>yX_uyxH*iTWU)aVIXR%OGCYW;!oxwN);a+ zZOUq|od0y`Ia+E545{Sgpn#XvHgDGUq&sv@n!of^wx8V@;Nsw%h}Hl_(|Eonuww&^ zr|zv=-zSL{Hz8#kFi=&({P%Yx_yIS6hS28o`J&#Zvic@WoV%-PR8)Ldu%8fLzU6GB zVSLd`_$E%pRW6G=)m2fjA9Ry3fi61(&HkT$LFv1vml~8_cM1Q#C-T009bBxXO5O2As_#X z-*O55Me@N~@?#yz+EAr!@;gtrnNGwQc+mF+Q`rDtJry-Iu`CNx7nk)NrLKuuGYTj? z@Ob8T4%?icC<+(wzNSNA(5UFivoH$J6oo<>9$Mw4wXv8ru9us!l53LtI!SP!OdY%myYqDgkY_j*=Y5^JsYu2KFwG!S!r23vhIOaL*@-peluE z8SG-9;W)E;g+4{cXwu?i%W31Lu{77-=m7`hW*voq=IQW2cNr3V_?1l=6LT|0pr$4x zFOLeuF4PMNIu9}rS3X~x^xJh0rGr72{VxYN#_Up#54PhwL2!a$*N)EHv2{f+~2@!uwaMqXj!kTKkUE+9bn6osA$8#HI8P4(5&tNrS_P5if!yD46Px)pwlc z?d!k9HA}y7%PLtekKP4LE|-*4{`N;&WiEg2H-e4 zy$c9r^0^U{m$9C0zB&qn@VGCg-;4kJ46XlicC=KaVnNGO&E@419hry#^}defOJDZh zvOrw0NNX0Da~`l7SPKPn@~vkb0nzh!)+DFw&;tIpJ`cAbH)Ktzu4+C}o1|C2nqBP; zZ&+w$&-Lm0^t4|NR&_OkkB?)PV8a(z^^>zdVRO zi6aqIC+7F)0M;Bp&Cu2+>RiX1GE`T)z-JORoW+p*tEa$Z3&%TVKYO-4Qh`b957~#W z>B^?-J)I>bK#ub(YSRR9MbLBxc-;AFY3{#kX&5@7A{GQk#`7aXIrWWpdir4$xLLk# z#~}E4v!a|+men=VuwVPB_Q>)5zUDGRkfyBMTPOw;!j~C!)$4Jj2m=Z zeWN$hv<597+UyKcFWyQHo3e&&nsmowO%EhYY;6_9yc5KroVO^Nk+0sMiGI%kTS`4$ zZfgf&=b;MDp9OP-H%K5RO7`Q4$G3o)?<|O?P)(3kJr>%hPcQn0^=-r`p=3o3i%eI!*@0;ZLk+2M3I0 zMcf|4nsnCI&-iXq3m>AvO4|IqV}c8(VB;NS!PfgOAOhutwtC!+Un475Ma)z_Q+{eP>?qc14ADPvHGm5CJYihs*^6*FS#r zI#=we{PyjTgdgn3upZIwfR{1Fw0fG4_f5@dY3hz=A|FsX=EA~6NCYu1&f6{U-erNR}~k8pHEFqZl*BqZf=TF6ZG`N z4%Dctzs12V(5TdVLqtrH6+fXkLF-!m7!QlsKe*;HReB1joSD4!_(WzG|7~;%8?K-K z+-?R!PqOMS&NxUl%%2Dr4}tRQ`I$27Ez(@2%sHFF|3WkRHS)S%fh62%8_CxfOBRM! zsadG034@Fb#m5Jbq&(d{$DF<(vL0f9;l}Q9k*;2(bGuwS` zClP<3pe0Jlafulz;@ZF)CB~4}+pun+C=xJRDHQ&fgSF`~l1rQ$wb+ z?Xf>;?-i6)<3X2lkcW;EKh)1^T%G=SB}kP-_CTW99tIt=0s+r$_RbmvpDyt{-Cl!` zF)}i&xVWBrYs$)3MC^;}QCTCQhT^Iy1T@J1tskx&z!D4)Za~GCKUo1cGRHU^2EOMD z07$a)k0v!6v3h#s$0Vf3Ca!pmBkJaHd3I%xn6^Lk3b3`-*EeHhT{1Jh0WXQW!Kk{r zh@QUfaS~%las810D-;>Y;+5Lg_CJY@+{ACUl%$3PxFKLu2-<#|?+O3&kdKtI(^_g@{> zl%r=(DJ$R#>m)@(FHo;YN3^?P09U{7LBWtWXd%(j7$Aw_0^=14cz;o8lsRKJ z9OM7LmDKZRV&X^bUFubn!q>DfljBO=bMTtq^_Uc@?Q!1_5Rm#Dj*Hw6zhRf+WR3>B z9XJKQT4ZF8s=*b5`6a!%nFa~Teg#ZSM|byo98F5Mw{J>b6EXhXqB`E?nOkUn#RzCW zFIrxr=Mfasvni3NZSC^VGukAChAMx0!IOZOsFI2>H)p0Oh@&jvXj0SCaz2^?SzZP_ zEK%T5ghA6`aU8VlZ6a^bh>4SQDd&3@k(g-nDlKqp>tm}g3klJ1R*ejZpE|_9k6e1WGEX>S5KEESeL2;}07VU{%hdjo< zOmuYe77+;*e&J|Q>@5CE<&hW0p@|I>Gmw;&vHTrNjf7E-pl^mB6v_t(B*DQCI5?EZ zMoLOh#V&&@v8}E2^Kn#J@V*AvT7*CCMhtyceQsQBd2KRWvwcU87sba^9iw*l5$j?#2_IN zqgElBu9>@KV{^pBJiNcZg-6`S$MG7mmy`a9^fn~KHHZ~Y21eg#ZsrSPBA_J?j{5W( z%A%rDWR(kJpzO()p{T0jyu^mkI48?OPz^t)sceJlUN2ZwtvWgBXH$8ArOG zaeWGg*Is*g=$-!4*Zi((kJXUxxBMwj{KDl+N(_`7?%kUk6+=S>U*E$W3kri3B{DK) z#jmm1qg(O(g-J<^<%|hC7U5M@(E5ld>l>&V({BCYVpg z8RFo;uB5d7_=wWh7TDeWv6I^7$7jpknQ`->K}}UPv|pO6j2#O>aKX8`m967SGOe$V6&_9vNK5-OWel|EADnihzgVzuHOJ_eq9+8fl4^jY zX-*?R7c;S|%giM9Mg0F7NM@z@5~{vmRj@V2%WGxx-WyGtkM1_@+fjj z=)C_9Z#I6&6%P#_prItfA`(VbRZoTwW>hz)XXMrXNYfV%SZgIEFKP^|Wn|M47tUso zX(={X%T252{f)@DF23xgvP%2)@9y5Jsu}wF&Z(9CiXkBL-p5O2Io@Xg*EJ!la@lrAq{=vnxbhCI?pV+eF z<4tDiKQs!?MD458^)vfw z%|j6wh8T5gPLfcKs~p=sulm(g3MKWL-%k%k*gH}5^ezCpd@tnmi{JlVYl)rf!Fol& z5~{dwiHG{>$6KFeP$ZB>=aX@wApR$phx@EX0gi5s&dONXluO~^hhK;FW&iSJdUh@( z;-m(=^pP+VgQwyCV&GUKYEy2a`1^NHkBE}ei$W9!hxIC^P-8!K^hVv#Nmbn0_k6k- zdoaUt@&b4``FPkA@J4Um@D>zAo;kkn>DDPNt*I#=9uDm&#Kh#s!uEyK;x_6wuS4*Q zQR>leroW#8NuXAP{Czj#nLRnhfXN&-&EE@+oj>2x;1WN%#}H>Mx2Ig5Q;w#SnP;eJ zXhxBL~4s5r+2)JrWaM>2&Hlk#5+-;&RrO!PgMWhS$H(@5A7oysH3_f@PlC= zeG5RJQ01qSC##IQUu<}slQJ>_!qaL-#yd7glbE}!dSw+baW^Tgn(MO|sF9?i!bnY} zr)8uzbM@%0BoV)q+34sF9i0ZWIxXl~6r^NSa=SXn z$ZFaj3QJ1pqA*70w5A872=UG@dY>LW*>h*xya(bS{Cqnblg}tDV3iBoyw{N_BZ*Lh zmwIddzn?fdnT(@LTv}TC$?@IC_>4rHUJnl}dHJ3?OLiIsd3gnzJ$oCQSJWyI-6j5v zLSkb0?ChW)f2JjE{6|aTpzB~@6p?bQft!p?X^8J0&jHk$zuQXze3`K|g^W1`M2u(U1hC%nhm<~V=`O|(aypv!Q*x>7@NP%jSwIKZrd*zae}nWy z;w$-h7NPCdXk$jLlr}NZ3xVAB^e_UZ&z1&#HWbBG$R8$%ib^Ut7(F6p1+KCRjf#gy z+tl!k&D;iHc9nKr@&>(Ed-LMZiP`*r(4yF;+^(*(_EA?@SSauG#CuWoqRyWX@pq zT9c$mDpo5i3b&WwnLoSYa{;d~)2Fb4BNtiYOcm|#stO85KX`>&r4%9r0v4$d+L-ET zE-$&aw^t7jU1(^`)Ew0B6BJ(IXATVsA05?a$ARFWYB|1EijeiqU4)h|y%mU!AP8fW z;C;%a;=QTj04w?9^T&SOY01-D@dMo~QS|g!r6LR0f6*%Aw@(rTJ8$loW}Hw(?ezp$ z4C3CvSmrC=tG^&3$8T`+0*vCyOG>tO%aY@zzP;u%U}v{A_r8Gn7a$P&wkc_FJW!92 zb9~Ru&1Ls%`V7&{tFKqlawsV|N=c!D!?(Sf)RIwCDTGQ&4;0G?VPdxm?(Ra6_^c{~ z`h6(P`Pj4vkLks5($CmcSnI!Mo$V&eFW4kRqO!mji;`U>FzJi4<$(EyOR>&Y^}K=4 zx=6F@D=^YqT@HxIk-CEl#iuEKTS-sPii`8^>s2295`eC1LViM{S(=;4{{z~M)p5&igB0R2+F-5GJP&&v9ae~>q9bEZDy|t{`p}}$>rtgDK9S%tehUG3I`a6nqgrM zH0@4%fCwS;XOQD#41PN|5EbL=+ws@)dUf@l{}g6vx%s>13$T1L7bV3DcD_GJy}icG z&HIFe=88&Be+SD`H*l~4rZNalMMeECGmKGXd&H0;M2`4A7fpaH4eEmK62{(b&O3;UDjbQA-l_uBS>VgE$xgfqkz-O&eJCqoqmx_tkvxGEMD7CJv|O z7D`Ixo1Len#lP9uzXp}g>}8geEPB26MxkIbGL?@Xi{u=F6<~K1!P~?xjQ__pw47YN zkG5?;ebVYuGiQl6)=;f7oSj`rzgfVCCOQ$S=)H#cHcLwl-dw$K{=<=BCM7kvzSzqA zo@Dp>Fi&6ozIxLO?v`rZyxO`BcVBI7sD(KlGV;L@vn-~urlt=I%T7{))^_XYun##E z|F#k}c&>3j2=N&7Q(0NR$YK~)DuPHAF9A58`x74ORK>g*BB~z)zZ1YT5a74WjD_Xr zcIw{O2PXCS6dg^hE0Oc!97D>z@W$Rs2S;_+228XB`Z7a=B|qSWptsgSt5eCeqWaNn z#lTV;du2=h0|O_Bso@J_>{^fW5^iX&t~RnQHIxi;e4Rr^vDb?8?3H|SQry>~Z1M6>x`pK{_Y!A1S;i?tmiU5s&};LTyb~4bRrazjI+iMq()2 zxk*S|=I7toyJzL*x(l!JtRK8D8d7w(DG?2^uyl`#qEAdNPEL~3*41t#*FFTHMZ_bD zia*uBG}Mu+tFjhWO2^&qSRGL4oOoHb!{r}|o>H~FV7!p`xPw)XzzX1`VVQ0J>EbCS zTORbz)&M|qY}eII?$`x`@7)0(K)lRHlQ7cWi9B94jz}5q)fPAUe=NRaq@}09)ior2 zC+VUkWN<|E8f$CWz_8I&_w~wjSQ~clic3+~+?8+VLe|ibD?9v+qLN>H{AGV1IrxwX z1bt)$#Hl(zM!LB%LpjOiuGm>wt!!)tt8o8~Yj^SFO#%`NEGUI5Vww#lWpT+cBBpGy ztsLO@!g};tTw%GL&F=>HFeQ*UP9Gu}NjO^FIkPN|kC+sd{=LChkf%1@)(7 zkh{CPhjE~xO$jjv6EiHopaRYrwSfoTfjU1Q-^m>rVW@5_SI(*Z+FZ*G6Eb)Ti%2(h zKQfmzNON*}RQw@G#0MV+BY(}z1m5vS9WG+r&2U#vNg~IG5tj>$NnKrkzj&ZqA?x(L zkv1hQ&0|ZPw40exYT@%>(ae^$=zzwbqbJ|XSL*Ej+oknrsx3#kU^YpaOK<@%WB;3; z1jzNbZ~kbsnS}*8B_+%4HD38(N%6D5>MP&D5bTEXaw%r!$22rTad8QRgn~!iT;RMd zU+389)81!Lv0qYVgWccQFbDTmyk@#eia;z>Tve4UM*iPDogxm3d4Ll-76fwL16ubM zrxoH3Ca+;l~2y*%dC&yMBQAa=(eSPsl~w|UtgDY*lW!%)p7R-6Ml11fvMdjrT5fQ-x>6Iqk+)9c|pm&*{e~(p_91D;9@{A%j zmPxi}iJlJM!NFxf)}oEL*x0UP+W!vT>P}7ydCZb4h^TsrNv03WI=gL2f+(60$Wcqplv*S*1Vxzw zGe}!p2uHyc5_!2(=_nXY)G?mv2ZI2Fp|M{nAD?lF-9DaE($jO*pF@I3g|8YlNW$i! zp-U9XCMCrVL;>mbZj3R@Ml;E&i0d`~c+-!sr^mgC0am3BmwSA7Gv94%30}>+x!Fkk z$H@{BgsP*VQ!Ut=j_}0bV5#MHzx%wlcJV#^AkJWi>|r>)Q18W`eICD-xjeZwI6Q*Z zNSh@wbLlCwg|X#E^v|C;x64b{{f*Ake!#8myG@=~U-}av6y%?HB0p6|eyZU-YLRt= zMCr}eQV%4fxKhHtji^se(TCDTq2=doBf`C;h<7ncSk*#g(B>pe9Jpxw)2?R(#PS33 z%70_zygy_HaENzb^&I(fWkuSV`2S7Kj|li|a#3tYw>+)wVbyVcy4ikK6+rKQdmVkY zd^hbxJ*DksZ0DwQ@Y&=Qw z-7Po8zoo7)0e}TXnUfsW+GmdFXsNCe-K3 zF?Hb2I+p47GD9{n(Lw+knFC`0M~wZlsZeA`Zo8N}P-f$?3YWH)t;cJMmdyD*sOleA zx3|*M_hI{~|6~8ldBM}RgNVtZ3_7c|L(NdhmVO&lx#0sY-<4 z<+4&s8Nc4qkx`8iz~J`OFdAEyaWx7%;b1dIe`M$;&nM0pLi|mW)BaY$5MYz$f1vFJ|Q1ann z4{xYL^@rM#W+6Y6`#v;_ofB{|5di>6ks;TmFWGo2!cDTmVEcq#bU7UCh$8p;6N-{B zv?$Yi=g<7x%`LBkw$*~951~!|$7!!3H963;Xqm&mYy4mLXX`$FaYn^?7E}|d=9YWJ1JiSv4Wv91({XSJ44MefNTkwyv;oIX2G2AoXBebTdDBsaZKwl zN1=0HQ99CAL$2r|bI+NV0lRWy4$3j5ato{`+fg*G9mqhi2uQB zx3B-5(hR^>wIgMb=yeAjqUtQF182X4j;s+KSBt@#}?+D#J zr#n)tR7)GA%wzG0%~j0P`!N-~+&#M_qkG0`Lh~Q_!*2=z_O>V| zBI11S?)d33N^x{#Bwf&rkSY!b2*lN5g9vBlr0K^#N~28u9;_*peL8+a0?N*-z&N(` z3ByX3d`F`i-LPq&rxqsf@B^WetuMh=o)*um+G+TFhoDXko3E$I;!4kn0>A8@@=JMpw?VV4cyJQ#!_=~+dWtP0sw%CEkX?8a1Ul9laI?-S#rnP}9 z6WH3>KDc@8f17*_4N{i1PKDn~?rb2=9-TP6>-;iXm*c%;5dxuDU<-DS8m6J*{_Wjh z$Ylj;p1!SO@F#&H2zFHNgc9-zGkK%-O=tX<~S4E-IaK;Wy`>5!|?>u5+ zR1vxqr5XCh(4HQw4K{FTLTc=&z0GMCy{#5C1V|-wZkl)azzjA$Uj-~yURl*cpS(1q z#otI?1JBQq4-XSupBLKfIXM9wY0uh`sQ83-Ukw7IP9NJmzFQ!(pr^hjU)mJUY@C|I z_kr*aWL*GIEz)cl-CaDtNE0crW8D2Hiz-L0Xx{H7ZJTu0G#w^jpDk6)iyF2lntUBm z#0Mw8e|-FILmZskpZrOiDxFE5q{?aODH3=JPpS!`fj?IM2a$N7LpD~4MO3tHLwi2XfS`7I*s#C!gH=xZp@IiUqU=MVBQaxRRJl)-K%a zBpWo9l+0XQM(FSXAX}R|<;0s8fg&eZTPWYDw=I#B=rtpi**-cKu17VC0DIK*rWN+? z?%vK5sUSH9+`Y9xTzsy@D==yF=-gapyYQ8@)E()WUGp1i!NS>l z$;0HT4p3+`4ghF#CAk@$oeLwsQbr0i8Vi7yvCA}R-j9tsz0V%MvqGxhATlkT&OpDG zMJvti;v{F<*nk_{tiV6*%%^xcH80w>^-Xg-FH{G=3%L$DtOSMal{6!bl9zKQ< zC?X|iy6bau{^IH9>d}Tb+YL6ZS}*R#Ow?vaxf-2$^U7=^r3DE?Q#8alm9cYX6)wxrMv02P#X^7n&oaeNg z?F}nT-MY$qtbK51Ok9;4alnW4%YGgXRaJq6)A=}nwZh4q%4@AeGL2^ip8E8)Q%7 zHiEG5tAMEYq!WBD8_GYFOa!eJiurc;o6u5ZF#K8o7>(>H%XPI&g){K0jFgg=qu7&1 zf3pv(bOaC+kpes{f`;?>e((MFYQoxYPK7wYbv+)y1b7&gJQw%UISCtDxUT$@I6NMG z#^ezdbety&;sC_c2F$tLyX{1uZZ$E))Xa%LdzqnFFwO^zL$&}%p_AE*m9VLG3y}5n zAm%X-54r}8L8TjxY0aJTlcMpnu~+2p)KR3q|@wn>vcdPgbUGB^X8hd3|e#zM^kIwitaM zy~8IX@#p8DPsb5TtJup2i=~AEt?6 z&d6XS_~5d|-EE)Z;|9Sx7nEWjVO3eAxtqpFLA6rsotn_cq~F>9WoObV%>Bfq)$&y_ zA3XM+$Fkov3ck!8h6PNT7>m8eo?@R$p@cylRYbF5`qvm@z|HwZGvky|?mCz5Zq)X% zE2MHa*&47$xQ+xnGwk}E`8lyV)M{#i50g|^;Os!7XlJFs;f2XxF8La@hi%1$8YODh zD(Wo=1Yualto2@z0Q#{=&0+q)*3(pK1?aTEkED z0shYywkMfBzdn0UfeJ%gkW(cyft9uYHx9J^`HLRy)g6|PW;wY0#J`_lF~rbC(!gIM z`nA~=D+lxOLj@72?lP}TsPS8jIcOV~IEgoN+u2e~y3q7%h2lSUHVP-F3Xt&Ua9}@t z(x#2LRRPIM;S|dI)1|0;r(()u@y7&*2#NeKNr@WUR?FC?jdPDUyM^I(gJAQKfR4YERwaATepyLn>}2nQ6I{S-u4j$+eWtm22hyq+ZgiFwb)f54c8<;0IKkM- zl{?Lk%=xFY*K)AI5SsEKTy_*um7f<5+X@ z9_Jd=B$;t)mdV$E852kQ%$|1yC?}HHrour{W3h{~6MfrAIQ|ya?A@l%LyIoe1*+f4 z*YJnc?fuC9{K@)N@t?@ry@7BLBAUJ1BEThH_Ds|K`m?9frrEBTu)RTvRxYukLc$SS z6_PUIr3P#*fg`$NilVZ1PixB9k+PFt9jI>oXx5ac#x^pha(3z_^Q14dmE-Z0CFj$~ zl9EbBx%}ZIlRlY_Y&WM5<;z-X8D{($UA%Z@9}r^b@6kl9Oj%zvi3^@7#wG;8(3*rL z5Cpu;Y~7`A{nNDSr&Tlw;7Ff8v!BNyBqlb!{8Uxd!_kL6*i|1pm|jFA%$iMEOWaO( zxMsKZr){TUYXzUfk!k~mn?ri(ynX)6kXi$o;{wv!&ZOCJ%$z$x+D|lwT-M#ChLi?rzPp27^oDw<428LGT2hTHLcO@t7_KHAFI zaA%?G#7pe0o2?_f!0RALtDQ#4H^vxGT)YAzst?nCN-7O{pi8#BJ(ig{#+sEb&l0~e z4!pAQOD>O&{SL9yP4hFV<8q%3oSi;>g3tAJH^&`6o(lRGGG}sqqu@Hvpco7d-Uvnlq{?KSiu!QigwGMx%=qYEZiyK(X+vpYH-I70zPZN9XI-tVT>{~EsB>41y)C-!b{;b`rV zMojTKab#Nq61}=U{FIF3RD--gxFtSv_Q@EgxDiCWEDc+jp_$yks}x1msgY1Q1;vc| z6|tlZSZm1F_=LEy7N`zoCrC5K?(>gnukOV%e%;%1Wk+=<5QxvSLkJ<_c@x%;p5@qJ zm33)tuwW3Dp9o5&@ZS5#Gm1#DUB{{Z*J}za4285#vyF{?`J#?XPZR4wZe`PhmU%Av z%SDhrMtD_$iQLlw)7qgxBZAvbn1L*G<1Z2m`BkO{mCFup@&X&OdSR-RZBaBUjN6Vo zrMHP67?1mCc1F_nz&TySeS}x+K-ai&L+kRi??K-XF6ewqNwtCgdv8)OQ1MTzK4WZT zg5IK|LShu|cc&SJ6jVGsD`MTw$AOA+B=#B5f%Ln$X6!j4y__*|`EboRT zgc9%#1Cj9!OmX_)L(J8O$uZ+VF=rH~e(>n`)0quku zQ-OWU9PW?oky19vNm8dbfNJfLfbO7qTqAcA9uVjTc54KxApW}Z^X8l!V@Cm9!-X59 zQM&b)^ye+4Y!e!ag|Ti%{d=UHjyZV|ta|5k98L4qfEr?`ylI&GI@F)L&}dur)q`xI zagpW}%DYI39|zW$;xya^@=ibiKl9w7^Ym<;>}DWy>0H&i#r+6;#lGO+KDTbqRK5(A zwM9rL=`X_Y{x#PhY7Fa^-=m}Fw^e2CJ2qwiR6GYw2#1mfei+qOW<7x@KPIq8r(s{0 z+w?_?-EI3TdP03|elYgF0JSRz=f3qeS7xDzmquZ@Awk1QbY!F|<~>1Z+#nM@#Q&CB zMnmuyUq0L7$-Jpk>MsR6n1h8Q81uFg!Ww19g)BIrpwFInqCk@X#_j5g1wv#E2{Fur zv&+k)If+Z?nqL_8eC-K=mAmyln$!jI?8A7Y;rgLPI?Z9IU&?8wqn1EmTL@%62!!+q zW)ym84`tBV!Xh*njP&Own4JW^UHHZo(rms0!A)w`8?!9s{=jJXC5ERr%14*7AdSM7 z*Z4``Bs+g~?n5w^x&H{=DC%EU$ZtxRaeck0QWPw?Kl0%i)B#2A^LCS5Pao7IyX^n{ zv^(>B?IJP3&Z|9fv!EImlLx>3C*{-ooi?Zkx}1W7bSLnR<-hiz?X{us6~+Rr&E;zx z!n&E;L?+Wt&X0-m@@PZn+S|D@%l+0Vo!61P6?0FA8iY-RcrA$K8I`_Dc!$sGeI%NA`_NT(-56OpN?iPQ;j0_t9}iD=e`HHP=b?6Ws$U!|=X6k!SyP)x zPIMI#duy17A8+nZX2{iX`rV-Z61+fKIoX~h6T1p5Z8>Oto1M2tx}+M;;c=K?%j6RK z2kL0nwS)~{aaaKZaC-&t`6c$CDn~KJN z81F$~a;?nrnu!WnlP}~dwjXC42p^BUP!&1-1_JG(8TNM%4z4=!3{^HAt~$~dockRd zo4!p?pB~1Lef8TK`~29im%INi4tx(G64LNnB9<8$>gCLml0`cZ&^eWG)J*vsHM=nW z&~OgG1hZy!AAj=orYU1GO3$mq`zuAd79;p`kd^iC?XaBa*Ph!nM}x=`(tZano#_k@ zhSiUX#{TE)p29c#Zv*D(?t_s9Xl0$0etYqS%#*(a`wUvyz-Eum|E!NW)kuYzw|f8Y z3AfVMb!G^4sJ%anR(d@3{sHDVi2A^(B8YoaKs>nMeBz8wqJ({mrH8!tQ z4bWc*xQ)_)96t>6-I6-V>$!T(h%y~Q&=0{mX{=@Lj_X1oM5CN(qb^^~BBZ-NnA)+h z_LpkXq9$!#xg`c#mniCfE@<#)@$AtT6H(@P(Th4bq^bI&_76@GD3rX9(3s`P=Z+MX q)SuDcJ=PuZtx7> -- [Lab setup](#lab-setup): A description and diagram of the PoC environment that is configured.
-- [Configure the PoC environment](#configure-the-poc-environment): Step by step guidance for the following procedures: - - [Verify support and install Hyper-V](#verify-support-and-install-hyper-v): Verify that installation of Hyper-V is supported, and install the Hyper-V server role. - - [Download VHD and ISO files](#download-vhd-and-iso-files): Download evaluation versions of Windows Server 2012 R2 and Windows 10 and prepare these files to be used on the Hyper-V host. - - [Convert PC to VHD](#convert-pc-to-vhd): Convert a physical computer on your network to a VHDX file and prepare it to be used on the Hyper-V host. - - [Resize VHD](#resize-vhd): Increase the storage capacity for one of the Windows Server VMs. - - [Configure Hyper-V](#configure-hyper-v): Create virtual switches, determine available RAM for virtual machines, and add virtual machines. - - [Configure VHDs](#configure-vhds): Start virtual machines and configure all services and settings. -- [Appendix A: Verify the configuration](#appendix-a-verify-the-configuration): Verify and troubleshoot network connectivity and services in the PoC environment. -- [Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2): Information about using this guide with a Hyper-V host running Windows Server 2008 R2. - -When you have completed the steps in this guide, see the following topics for step by step instructions to deploy Windows 10 using the PoC environment under common scenarios with current deployment tools: +When you have completed the steps in this guide, the following topics provide step by step instructions to deploy Windows 10 using the PoC environment and current deployment tools: - [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md) - [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) +The PoC enviroment is configured using Hyper-V and a minimum amount of resources. Simple to use Windows PowerShell commands are provided for setting up the test lab. + +## In this guide + +The following topics and procedures are provided in this guide. An estimate of the time required to complete each procedure is also provided. The amount of time required to complete these procedures will vary greatly depending on the resources available to the Hyper-V host, and subsequently to the hosted VMs, such as processor speed, disk speed, and network speed. + + +
TopicDescriptionTime required +
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.10 minutes +
[Lab setup](#lab-setup)A description and diagram of the PoC environment that is configured.5 minutes +
[Configure the PoC environment](#configure-the-poc-environment)Parent topic for procedures. +
[Verify support and install Hyper-V](#verify-support-and-install-hyper-v)Verify that installation of Hyper-V is supported, and install the Hyper-V server role.10 minutes +
[Download VHD and ISO files](#download-vhd-and-iso-files)Download evaluation versions of Windows Server 2012 R2 and Windows 10 and prepare these files to be used on the Hyper-V host.30 minutes +
[Convert PC to VHD](#convert-pc-to-vhd)Convert a physical computer on your network to a VHDX file and prepare it to be used on the Hyper-V host.30 minutes +
[Resize VHD](#resize-vhd)Increase the storage capacity for one of the Windows Server VMs.5 minutes +
[Configure Hyper-V](#configure-hyper-v)Create virtual switches, determine available RAM for virtual machines, and add virtual machines.15 minutes +
[Configure VHDs](#configure-vhds)Start virtual machines and configure all services and settings.60 minutes +
[Appendix A: Verify the configuration](#appendix-a-verify-the-configuration)Verify and troubleshoot network connectivity and services in the PoC environment.30 minutes +
[Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2)Information about using this guide with a Hyper-V host running Windows Server 2008 R2. +
+ ## Hardware and software requirements One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. @@ -45,7 +50,7 @@ The second computer is used to clone and mirror a client computer (computer 2) f - + @@ -61,7 +66,7 @@ The second computer is used to clone and mirror a client computer (computer 2) f - + @@ -76,7 +81,8 @@ The second computer is used to clone and mirror a client computer (computer 2) f - + @@ -98,7 +104,7 @@ The second computer is used to clone and mirror a client computer (computer 2) f >Retaining applications and settings during the upgrade process requires that architecture (32 or 64-bit) is the same before and after the upgrade. -*The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. The performance and features of the Hyper-V role are also much improved on later operating systems. If your host must be running Windows Server 2008 R2, see [Appendix A: Configuring Hyper-V settings on 2008 R2](#appendix-a-configuring-hyper-v-on-windows-server-2008-r2). +*The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. The performance and features of the Hyper-V role are also much improved on later operating systems. If your host must be running Windows Server 2008 R2, see [Appendix B: Configuring Hyper-V settings on 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2). The Hyper-V role cannot be installed on Windows 7 or earlier versions of Windows. From 02a486c7ad5276e493c80aec2cc7008e35cb73ea Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 12 Oct 2016 14:36:46 -0700 Subject: [PATCH 006/210] terms table added --- windows/deploy/windows-10-poc.md | 14 ++++++++++++++ 1 file changed, 14 insertions(+) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 9fd6e2483c..a897d1e356 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -29,6 +29,7 @@ The following topics and procedures are provided in this guide. An estimate of t
**Computer 1** (required) **Computer 2** (recommended)
OSWindows 8/8.1/10 or Windows Server 2012/2012 R2/2016*Windows 8.1/10 or Windows Server 2012/2012 R2/2016* Windows 7 or a later
RAM8 GB RAM (16 GB recommended)8 GB RAM (16 GB recommended) to test Windows 10 deployment with MDT. +
16 GB RAM to test Windows 10 deployment with System Center Configuration Manager.
Any
TopicDescriptionTime required +
[Terminology](#terminology)Definition terms used in this guide.
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.10 minutes
[Lab setup](#lab-setup)A description and diagram of the PoC environment that is configured.5 minutes
[Configure the PoC environment](#configure-the-poc-environment)Parent topic for procedures. @@ -42,6 +43,19 @@ The following topics and procedures are provided in this guide. An estimate of t
[Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2)Information about using this guide with a Hyper-V host running Windows Server 2008 R2.
+## Terminology + + +
TermDefinition +
Hyper-VHyper-V is a server role introduced with Windows Server 2008 that lets you create a virtualized computing environment. Hyper-V can also be installed as a Windows feature on Windows client operating systems, starting with Windows 8. +
Hyper-V hostThe computer where Hyper-V is installed. +
Hyper-V ManagerThe user-interface console used to view and configure Hyper-V. +
Proof of concept (PoC)Verification of a proposal. +
Virtual machine (VM)A VM is a virtual computer with its own operating system, running on the Hyper-V host. +
Virtual switchA virtual network connection used to connect VMs to each other and to physical network adapters on the Hyper-V host. +
VM snapshotA point in time image of a VM that includes its disk, memory and device state. It can be used to return a virtual machine to a former state corresponding to the time the snapshot was taken. +
+ ## Hardware and software requirements One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. From bf61400f0c2b3becf9ef0411c52bbc7ed22893a2 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 12 Oct 2016 14:52:41 -0700 Subject: [PATCH 007/210] t --- windows/deploy/windows-10-poc.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index a897d1e356..86f4e6798b 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -64,7 +64,7 @@ The second computer is used to clone and mirror a client computer (computer 2) f - + From 2aa329b1d3a36e9d681c5fc985f087af0eb9dd3e Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 13 Oct 2016 11:44:31 -0700 Subject: [PATCH 008/210] rewrite --- windows/deploy/windows-10-poc.md | 20 ++++++++++++-------- 1 file changed, 12 insertions(+), 8 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 86f4e6798b..399664841c 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,19 +14,16 @@ author: greg-lindsay - Windows 10 -If you have a computer running Windows 8.1 or later with 16GB of RAM, then you have everything you need to set up a Windows 10 test lab. This guide provides step-by-step instructions for configuring a proof of concept (PoC) environment where you can deploy Windows 10. +This guide provides step-by-step instructions for configuring a proof of concept (PoC) environment where you can deploy Windows 10. The PoC enviroment is configured using Hyper-V and a minimum amount of resources. Simple to use Windows PowerShell commands are provided for setting up the test lab. -When you have completed the steps in this guide, the following topics provide step by step instructions to deploy Windows 10 using the PoC environment and current deployment tools: +To complete this guide, you will need a Hyper-V-capable computer running Windows 8.1 or later with 16GB of RAM. A full list of requirements is provided below. When you have completed configuring the PoC environment, additional topics are provided that use the PoC environment to deploy Windows 10 with current deployment tools. -- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md) -- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) - -The PoC enviroment is configured using Hyper-V and a minimum amount of resources. Simple to use Windows PowerShell commands are provided for setting up the test lab. ## In this guide -The following topics and procedures are provided in this guide. An estimate of the time required to complete each procedure is also provided. The amount of time required to complete these procedures will vary greatly depending on the resources available to the Hyper-V host, and subsequently to the hosted VMs, such as processor speed, disk speed, and network speed. +The following topics and procedures are provided in this guide. An estimate of the time required to complete each procedure is also provided. The amount of time required to complete these procedures will vary depending on the resources available to the Hyper-V host, and subsequently to the hosted VMs, such as processor speed, disk speed, and network speed. +
**Computer 1** (required) **Computer 2** (recommended)
TopicDescriptionTime required
[Terminology](#terminology)Definition terms used in this guide. @@ -42,9 +39,11 @@ The following topics and procedures are provided in this guide. An estimate of t
[Appendix A: Verify the configuration](#appendix-a-verify-the-configuration)Verify and troubleshoot network connectivity and services in the PoC environment.30 minutes
[Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2)Information about using this guide with a Hyper-V host running Windows Server 2008 R2.
+ ## Terminology +
TermDefinition
Hyper-VHyper-V is a server role introduced with Windows Server 2008 that lets you create a virtualized computing environment. Hyper-V can also be installed as a Windows feature on Windows client operating systems, starting with Windows 8. @@ -55,6 +54,7 @@ The following topics and procedures are provided in this guide. An estimate of t
Virtual switchA virtual network connection used to connect VMs to each other and to physical network adapters on the Hyper-V host.
VM snapshotA point in time image of a VM that includes its disk, memory and device state. It can be used to return a virtual machine to a former state corresponding to the time the snapshot was taken.
+
## Hardware and software requirements @@ -62,9 +62,10 @@ One computer that meets the hardware and software specifications below is requir The second computer is used to clone and mirror a client computer (computer 2) from your corporate network to the POC environment. Alternatively, you can use an arbitrary VM to represent this computer, therefore this computer is not required to complete the lab. + - + @@ -115,6 +116,7 @@ The second computer is used to clone and mirror a client computer (computer 2) f
**Computer 1** (required) **Computer 2** (recommended)
Any
+
>Retaining applications and settings during the upgrade process requires that architecture (32 or 64-bit) is the same before and after the upgrade. @@ -686,6 +688,8 @@ For more information about the Hyper-V Manager interface in Windows Server 2008 ## Related Topics +[Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
+[Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
[Windows 10 deployment scenarios](windows-10-deployment-scenarios.md)   From 79a520152e18df27149397591740c77996167225 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 13 Oct 2016 11:58:55 -0700 Subject: [PATCH 009/210] t --- windows/deploy/windows-10-poc.md | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 399664841c..2e0620a483 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -58,11 +58,13 @@ The following topics and procedures are provided in this guide. An estimate of t ## Hardware and software requirements + + One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. The second computer is used to clone and mirror a client computer (computer 2) from your corporate network to the POC environment. Alternatively, you can use an arbitrary VM to represent this computer, therefore this computer is not required to complete the lab. - + From 5aff628069d819c6031c22f469037cfa2a341fb6 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 13 Oct 2016 12:17:40 -0700 Subject: [PATCH 010/210] trying div style --- windows/deploy/windows-10-poc.md | 17 +++++++---------- 1 file changed, 7 insertions(+), 10 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 2e0620a483..8b42e4b0be 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -18,15 +18,16 @@ This guide provides step-by-step instructions for configuring a proof of concept To complete this guide, you will need a Hyper-V-capable computer running Windows 8.1 or later with 16GB of RAM. A full list of requirements is provided below. When you have completed configuring the PoC environment, additional topics are provided that use the PoC environment to deploy Windows 10 with current deployment tools. - ## In this guide +
+ The following topics and procedures are provided in this guide. An estimate of the time required to complete each procedure is also provided. The amount of time required to complete these procedures will vary depending on the resources available to the Hyper-V host, and subsequently to the hosted VMs, such as processor speed, disk speed, and network speed. - +
TopicDescriptionTime required -
[Terminology](#terminology)Definition terms used in this guide. +
[Terminology used in this guide](#terminology-used-in-this-guide)Terms used in this guide.
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.10 minutes
[Lab setup](#lab-setup)A description and diagram of the PoC environment that is configured.5 minutes
[Configure the PoC environment](#configure-the-poc-environment)Parent topic for procedures. @@ -39,11 +40,11 @@ The following topics and procedures are provided in this guide. An estimate of t
[Appendix A: Verify the configuration](#appendix-a-verify-the-configuration)Verify and troubleshoot network connectivity and services in the PoC environment.30 minutes
[Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2)Information about using this guide with a Hyper-V host running Windows Server 2008 R2.
-
-## Terminology + + +### Terminology used in this guide -
TermDefinition
Hyper-VHyper-V is a server role introduced with Windows Server 2008 that lets you create a virtualized computing environment. Hyper-V can also be installed as a Windows feature on Windows client operating systems, starting with Windows 8. @@ -54,12 +55,9 @@ The following topics and procedures are provided in this guide. An estimate of t
Virtual switchA virtual network connection used to connect VMs to each other and to physical network adapters on the Hyper-V host.
VM snapshotA point in time image of a VM that includes its disk, memory and device state. It can be used to return a virtual machine to a former state corresponding to the time the snapshot was taken.
-
## Hardware and software requirements - - One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. The second computer is used to clone and mirror a client computer (computer 2) from your corporate network to the POC environment. Alternatively, you can use an arbitrary VM to represent this computer, therefore this computer is not required to complete the lab. @@ -118,7 +116,6 @@ The second computer is used to clone and mirror a client computer (computer 2) f Any - >Retaining applications and settings during the upgrade process requires that architecture (32 or 64-bit) is the same before and after the upgrade. From d3039a75f7de613a957d74113433896a41cd6f1d Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 13 Oct 2016 12:31:18 -0700 Subject: [PATCH 011/210] decrease table padding --- windows/deploy/windows-10-poc.md | 9 ++++----- 1 file changed, 4 insertions(+), 5 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 8b42e4b0be..ae1098014c 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,18 +14,17 @@ author: greg-lindsay - Windows 10 -This guide provides step-by-step instructions for configuring a proof of concept (PoC) environment where you can deploy Windows 10. The PoC enviroment is configured using Hyper-V and a minimum amount of resources. Simple to use Windows PowerShell commands are provided for setting up the test lab. +This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you can deploy Windows 10. The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Simple to use Windows PowerShell commands are provided for setting up the test lab. -To complete this guide, you will need a Hyper-V-capable computer running Windows 8.1 or later with 16GB of RAM. A full list of requirements is provided below. When you have completed configuring the PoC environment, additional topics are provided that use the PoC environment to deploy Windows 10 with current deployment tools. +To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed requirements are provided [below](#hardware-and-software-requirements). When you have completed configuring the PoC environment, additional topics are provided that use the PoC environment to deploy Windows 10 with current deployment tools. ## In this guide -

- The following topics and procedures are provided in this guide. An estimate of the time required to complete each procedure is also provided. The amount of time required to complete these procedures will vary depending on the resources available to the Hyper-V host, and subsequently to the hosted VMs, such as processor speed, disk speed, and network speed. +
- +
TopicDescriptionTime required
[Terminology used in this guide](#terminology-used-in-this-guide)Terms used in this guide.
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.10 minutes From 57eba381e01f7ce1be7cffc717326905352732a2 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 13 Oct 2016 12:32:50 -0700 Subject: [PATCH 012/210] fix third table --- windows/deploy/windows-10-poc.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index ae1098014c..af758a3200 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -62,9 +62,9 @@ One computer that meets the hardware and software specifications below is requir The second computer is used to clone and mirror a client computer (computer 2) from your corporate network to the POC environment. Alternatively, you can use an arbitrary VM to represent this computer, therefore this computer is not required to complete the lab. - +
- + From d992bf7c45e223102afea5a375bac691689fe781 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 13 Oct 2016 12:46:11 -0700 Subject: [PATCH 013/210] format all three tables using div --- windows/deploy/windows-10-poc.md | 21 ++++++++++++++------- 1 file changed, 14 insertions(+), 7 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index af758a3200..0be49e1fbb 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -20,14 +20,14 @@ To complete this guide, you will need a Hyper-V capable computer running Windows ## In this guide -The following topics and procedures are provided in this guide. An estimate of the time required to complete each procedure is also provided. The amount of time required to complete these procedures will vary depending on the resources available to the Hyper-V host, and subsequently to the hosted VMs, such as processor speed, disk speed, and network speed. +The following topics and procedures are provided in this guide. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed.
**Computer 1** (required) **Computer 2** (recommended)
-
TopicDescriptionTime required -
[Terminology used in this guide](#terminology-used-in-this-guide)Terms used in this guide. -
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.10 minutes +
TopicDescriptionTime +
[Terminology in this guide](#terminology-in-this-guide)Terms used in this guide. +
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.
[Lab setup](#lab-setup)A description and diagram of the PoC environment that is configured.5 minutes
[Configure the PoC environment](#configure-the-poc-environment)Parent topic for procedures.
[Verify support and install Hyper-V](#verify-support-and-install-hyper-v)Verify that installation of Hyper-V is supported, and install the Hyper-V server role.10 minutes @@ -42,9 +42,11 @@ The following topics and procedures are provided in this guide. An estimate of t -### Terminology used in this guide +### Terminology in this guide - +
+ +
TermDefinition
Hyper-VHyper-V is a server role introduced with Windows Server 2008 that lets you create a virtualized computing environment. Hyper-V can also be installed as a Windows feature on Windows client operating systems, starting with Windows 8.
Hyper-V hostThe computer where Hyper-V is installed. @@ -55,14 +57,17 @@ The following topics and procedures are provided in this guide. An estimate of t
VM snapshotA point in time image of a VM that includes its disk, memory and device state. It can be used to return a virtual machine to a former state corresponding to the time the snapshot was taken.
+ + ## Hardware and software requirements One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. The second computer is used to clone and mirror a client computer (computer 2) from your corporate network to the POC environment. Alternatively, you can use an arbitrary VM to represent this computer, therefore this computer is not required to complete the lab. +
- +
@@ -116,6 +121,8 @@ The second computer is used to clone and mirror a client computer (computer 2) f
**Computer 1** (required)
+
+ >Retaining applications and settings during the upgrade process requires that architecture (32 or 64-bit) is the same before and after the upgrade. *The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. The performance and features of the Hyper-V role are also much improved on later operating systems. If your host must be running Windows Server 2008 R2, see [Appendix B: Configuring Hyper-V settings on 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2). From 4dca91941ff7746e575402c75a20129fe3f41e8e Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 13 Oct 2016 14:38:04 -0700 Subject: [PATCH 014/210] added disk2vhd image --- windows/deploy/images/disk2vhd.PNG | Bin 0 -> 20359 bytes windows/deploy/windows-10-poc.md | 84 +++++++++++++++++------------ 2 files changed, 51 insertions(+), 33 deletions(-) create mode 100644 windows/deploy/images/disk2vhd.PNG diff --git a/windows/deploy/images/disk2vhd.PNG b/windows/deploy/images/disk2vhd.PNG new file mode 100644 index 0000000000000000000000000000000000000000..7b9835f5f653768d14e770f9f91747076257127d GIT binary patch literal 20359 zcmeFYXIxWn*De?ZL8OWb(k&R8bfk9$q$8jxUFjgb21w{2QY9e0cTkYtyMXjw0|W>V zdJDbIj{oO<=FFTj=bdxr+kD{1&fdwruf6WIu63<--#b`MMUMCm^&JohL@fXMl{yG? zlK=#|VR9P}IPE1p<{s5MF$|1$-v3d;P%?1R`m} z{@v)b%`*mpRB7d3Nol(2ZzZ3{(zeH-&l#p1O()!*|Cl{Bfz60{m{NKW#kGh@Mz~VZ z1X9r;4CjnS>*|+cBZ>Wfx7~ChvmxRch4rHre39e`+(>6 z?rilpst*EBZH?bLPt-Lc9mUss|NL0D$W2QLR z56!to%1GEv?BVX(`!W>h2KMm8sov`9?-6hk;T4HJ2l5mi-x9?>I|w9Bx3fi^qtJ4z z6f@s6Z4aDj-WxxgJ(#pbrlm?8NcYX3RqIa#Rtaq7q)0r^yd@T5g*VZ8$UiLTANO7U zeS=XP?BtqX4PC4?^tMS`ML?|byZ-yygm+*2v7o3)pS#7+=~uzej_LBLbQvZ#rguj% z#X||~e&rj@ZrH)+WT}J5=r-_W%~@y8yFs%TI~%JVOmo?YR9J+mSXFRQa@F_k>J4WPI9@$buavEfFE=py>YkS z_~>r91`;b<$2pr?v_9COAsIaOD)VWC_8qUfD!$7@V+|K>(ChK-?3g}X!e&;Bw_3bt zqGF*7{e7^xg#c3k$uhNr>e`mryO|XdtOmBiJU@r{ika?DTOSLE%PlQHI~afmp>d5+ z7ZPnSicXoVPOYRn{W4CMl;zyPcd_A^xORM*dC<49o$hrt^z)!~`0aYlUB$KUJ;fOz zxYy_3eg>clQ!=ihrx6zYtdMa3fr)V2Y#}6PG^8iw%05+1hx{*0a zRm7n6(7qwwev;pKlJYtx4rF_EwV$4=?!0$Z@DqHAq;Ov&+=6)Vb?q=ouSAw zj7HAo@@TJq9Se#zSckfV!Hh#&S+w~Dr6k-f#n@*&Bd?AUlbw(=K^CXAu)~=z0;})z zXWsQd?@8{!UM_XDNl2`;2L$lZ#3@UD@8repe#634Ya9Bx*LsSBn51#1=^FM%Fx92ee*@({ z+ei~M*75tkVC3iG;HsL>EOV(wL_Xj3ndLgM)1h+|`X;}=%-&m{;WQFfWfh%*fcd9P zdB*8azK}(pP8bYc*RIi@p&90+o6g&Krn$I&q%hoNw>d7pYhgt(JQjN$m7=mtn4XlH zt`4DHUV3nF6~%FOC9PdRS173Q85NypqSuF8bOW?(=!d#8Dj&z)(dIT>N4e|KP&DpR zH%K`6@+W%7;p6M~-9NDt-}3A_e+sYE7b3yI4%r%gY8qUrVM`vf1Z9|hYD3PgY zxs@a%nLG4p0Z_TM(jJb?)XPn?16$I*%-oa@uQ=;#eaC4s(_*TecM_ct%K}3)6+G4= zeSlS+5TCByqPOWM%px$ALM{V|risT!&g>P1&w+$*D4g?a7Pe6KMmLs(P$LisaRaEQs=UjfrC#n z7)VUBI_rwePQ5zFb!sCP7-X-Sk(RhvAYCh}+s>%4ni!sIz&A&AG#qRg3}kwk4P-yq zIFI3pZ4XIQ+Q_V#NR(M6o!gU$lfk5zJV_Ph82IM4rcc$h41$juQPgdu<_PGCmlS*zYViq?S-8gg``EF*@k6?+oS8#Lb z+T|g%+Me#3^3|Ncq_s-b`O}=#Z*LwlFsRN$RU-EHh1N(FWlbn5FYRv+l|apt_T8LX z;0L1`szWrk^&gdQlD3{5Zsb>0#p*+rADkZtQ0k}2(Lc_;D47MSF4bo+8U`opG+W)Uwz5%FW;vm;eC`UtU8KK2i#{wZ#Y z1n1vd9S6kZ*xvm}ySjq8ucilW>W~S{xn)9Y?Pi@Ph77I`4HD~nR>QrL6|Z-bH==oB zN4Dy#>zRhUmqYISIa;$OKUKeUc1D*^Nqnc)kk_Z0gB65cF@vm}sfMjd7P`66h`nW~2F$Xa zEruxs*-=@8m+r#6CU$HIO>r+1`K>d|Qla0s>vqJg9&Xoe*qqfhor}~Sj_a%e=W-HlYW=R3 z4Qz5lI2(L9&N>7Df0`+Xu4(1qXwv6A?rSY)bQ1NYZ1&Rq#p`@QRhA}W0UjX7SZEtP`!8P89k1x$MBhD5VMoqB z6|z=8zQN2uGVT$`H1-J0!X#;hR{Td&#JAfH4^DQ1AE~UUtI(8Vo?(SiL|cxS9I;XP z+U05)Vd9*?d0-znc@NQi-UQ?0A%UHlipNUew4fa!cse$^DH0@rKar}abHB4a_ofiP zW}UU$NIpO%+GgX^yG2s4Yrm?R*)KjYxZd!}4dJMb<2bLombpe*#SS9%&)Cnln=bwc z#(U*XXxYB$4xs?U+V6d&NFcu26Wm%pmuWm-bG_R0tJ_?39XdQt447MHvper8>J>yb zuq{HHXiW@8FC!w3-5`qX8&(BZ@@L81LiyzxmwmQn?5g8sK9o?c6vY9~rwt4dG^tjd zli4An+KEDaxRnnoMM)9hH>phqC89FZ4@XKTB-uxn?;gt*K-2l7OGzb9XRiM+e1da* zCv4(bY1Rr|eNe6+=m(^EJ(?4*C1N@;lbegdx>wdMPbyRx`g4;x7XWqYMO*1<*NZam z<(~fRHa~>SUO%gtLL0$^cN}3l9rPdcZ+Ov4J8gPFZ@JY;=3mWnC72~q$F;B}w~KhN#y1x+awKz( z*mSv=X!g=e5E;N~le$0&zA%pDE1XV?w&us~&@od~989t5GIfg2Yz_tJU25$*qc4@D zbQ%LV^famIUKcIA2bC`WLeM=UXOIDv6X&r<{ngQcNS7(DmkA0_&1`AQwZw|_Gt{pz zobyH$cl{RE`OACdv)PHT>T)OX4hexUwl*vToTp3{th-%05)U(vUFd(Q61&hRX<}}q zO1baiUzi`8y4%5BXf+vtC#Lq1qiB@cI6oR`G0Od00@U(fe4MHqZL$rORk_IjtBs$A zz5Ej1@-5;vpr!L(B;s|hF67SrDmJ&e1)!z6d*K~E449DBN4D1p?_kQ_Mj=9k0VAX37PFt}na z?(HLwy*^FbhtI_Y6nY@Z#LQC=9vJ(3b4Nag=4M9hb?fjIoQH9^z)@P?(EszG`BCz# z>HXm(>$~wo$~0pa)J35x>u(~wUeVNaChdR0<>3L( zW@$!FB$m94TepAH-Qv{Bkep{}w5BA{bhqTUl&~_tU=PoTa~6h*M^>B-#Qwy;I8%4mvQ2hAu638D0vfB2b{UrHybQ<$)$xm zi5KhT8{z%6A+h%gPF$c{)Vy!Wvy%exbDzd9(v8xOIB?OpG+)ZLSaIilS-R*)d>!*h zTy?Et@v*bzjVFn@p_D8Rk0ky>LCF{Y`}OS$xuY(&lh2P_d|tHPnpH^fSECC|a>h&zt|Y72pqm*+7zIY5(iKWdVgZ8@NS#O5m73 zoL;Uq1WNS;5a7LI+yqyYxDe!{_iw(kw?aC5^qVg^b-H1DZ*Io2@0&Ia2D5nPYn-mp zn@pg&I&q8)n@+kUR@V25@)HCiJ{j#CGP(Zf$$me(9Hph7y>S!d%?g0cSp+{mb7^+s zT3_oWuo=ryC#-%U4wJ~R)zxew7+T`=Waq_SXZ~Z)<-F$dW6`iMS8h4CF`0XGj%P#h zNC?DcvJc_yb?ym`pySn;Ai7&_JsmpS8O6eXbY(v`z$+i7Py)0cBys+^Q@RcwDMQ_0 zomSwUuPx;p5@C+nTQ4{zYnvzTvDeOCbjS2WhS(K&;^cOAW?tMa^^E;~9n-luR_Uog zo_pxDaxm5EY)`-KciTxGp{O*l8N~c9^-p0|3FH^*8$7j%0udJf;>m14eemh8-$wUR zbM*y8a^@bIu2VqwB7!e9XVdv&C9V>aY3$>-X+PLnUZD7c&ocSm=!&WOFmWbNLqo5>s!^2ZoQAsZ>x{;-Gu zF7zw3Bb`2%k&;j{1pIVN_Sv7MoSrk?UDxv)U&jGadUVe(jaD(Y-J}M}&Z)6kJLOcY zykCtNsI&1Y-MsfhO*_gUk!Ge!+MP#h>r@{$A>ff>`8^hYk(W zYYx<4ULvF#E(Z!+vz53S;a7|;1Dt0qjE6zPsLM}l1li;0aQxx@@Gic&qv8ozrYaH_P{a;x+5CP`_s}rBbn^9HCCk7vK{8WBz|jp*+6{p1HQGoy zWJAh5HWS?Iq&O0^e+i&(G59c@>%!Jry0$Tu6YuEml2t?bCm$~I9r6-XZho%y)TMI| zWgj7YRlGle@BHlycfQ}NeKD>S zk&;tUp=M@S)N$(81eX|%kB1Mva6o5A-1;{ddwBDt%-AjU4)$O5lHfIm7D@=Ol!*T1 z<@`=~50t8zN@bwOb{^CY@oSlQ?58PxU#Z-Y*C=u+q(6Ar7~S8@UY!`0Q^2O$Qj@>TfOtIm`T~(x&DBqoscut@@F!v9+kHOPnIjL9`Rh_GnowQ< z5iS;yF}Z9$<}7*iQmWpTxGiP)TJclK{F|-$VU89;6p`c@#C)#4bg28r-+YrFE^mG` z?>qm%#~#mc+HO$7aYZRoRs7Un{PI9U*mXN;Hb@?Hh)ohPDU3>L$6`7b9gD%5?gK_T z`KXeiQE~KCwVT;~rN3C`t%ws_fz;S~>$@@5$9moio_l*F$GB}NbwR>1b524T%3U?~ zwYT--E8DFHmS@GlO&$)ds&AJnEs%>A^scJrpDy?-R|FlA4HzM@u^hLgdj7umq6r7t zOIEif1MI*byEfQ(K2O*BQHVDsnD%{8dWkQ$wmDS>I9xW&M6gl2{uwqCx07;wee@JZ z0elktXf?cU{w}_^rlj2(huxI>t9hklwvD&lC1}E>nxpDr{%hI?Ltv|i7iogCC{vNg zTrhbZosUU1HgAgh2Ap$7ehwKr8uvt6lOwb}KzUDw89%SlC{5NH2_&EF8l4>x6Rufl zNl3H3+xn$?&l4U=@Mna0I3Cl$AP$GTFeKL|2LkskAHhu$r@h7AV&<)kev6|qoASY2 z{pFhW8H3RZr#XJKtm&(`DAxv2ZK3JY{Qa0p2xD<%JDY24|K%p+xeXzM0Mun!>DcW? zLm2yueppSqQx)gPO9W{2b|2&C4Wx3AY{%;IGW5XNh^$e<>Mos_yArf69Y`++nUL)7 zgz&*AEWd`yM;6~lrJ4Apdc38+cT0EYL6I)@_Wkwy_aT>Cqm3Ri>)Ge0#PWz&+8q38 z3~4G_5vK?v{k7?4y}^>vr-0^aYDs)=KFF*A7S;!3|Kc4&f2`dEQ-4Y3)jOLu`j49EOzMPHx8~LmJG84 zFEl74fQ}u^-K9%bcyA%-U_3#pb}8Z3L4ye86e%YO$u`FT<7Ard$>X{dmARE>x)UnL z;FFk{CAou7Pa_}tEm68X<&ESaD(cN5o*N+;bi$f;8t%`WCp6p=7SYw&-7c;ctF&t@ zLEa!_)S_c0A7%I#6hXg| zon1sk&phYx%eB2mkA!ccZ$QdeX-3^J`{)~?L>~P^GZ6I+GxEyA!x5ha``VMbrgX(3 zJwxJFXID|VR8RLgdIowbmJ!BkzK;|9SrY6Q<;^<7$=!XxCoRZfWZplaE~oX zy=7$*t3aAKX5{0xGfMa13`01ojmok5=Yo1Jv-b|Vzg{hgkau)+Xu=2A8U}0)Y8(v( zT55R-dbjPHj>jeG?d`OXvah!s;{*67&)}Zh!LNi#&BXypKDrG4z5dQv!O z-3M#&1b?TraIfr8uY^(3d5*ku38g1qqQ3`rmK86RSOM9dCiUN@!!27Oz9jiPw7c+Z z?Oj3zS%9_QDoY=XWbeWBL8NpjXdkn=$?LCl_#kiU$I7kW8(aK;inxpflS<^+B7a3T zx*R?&|1?H&&etM9&~m7r6Z3M#^O$$!NkrDW4VHyj7R|`nz*X%AQNKzG?uwdr4{oHnctBh;T?<<>HucAJrd@`@D zeq+lp`qoDInvlR#P}=gKQfuYatdqHMsJ{N3oPhw|!g(3R&`@UQXcdiu{FjwvxEryglySBi)*d3R`u2!rPtTAE~;i$7owGb+16oTA3CkgQg=%osSoJ*>hLIo-!+a=PJY51`p76$5%COulh`v+`!_wDp~UwpB&aiuJwIP> z(9mED(o>*a*cx&pma=_exZG%Z=?x~>=~SS`Jp74C7xdcmL*@4gx>)r4df^)&YoLR- zV?8aKcy=^WrpP}GOj}mfIMML4iRWoMvo(KUZuWL|t`Klb(TjkJXYMkIm?tue`Ui1a zOSh85CJ0;i$LbB<70}sxvmFP(y%8TLdaCv0^@nn#w0Xybq^m%5`j``^?BLmgn>33bx9$cZ(pXJL(Wzt#8i6T5l;_1A=;8qTLIXU zD_h@xmpc(WbTg4KT!?f2^M{o<#fk9qwQ2rq_Izb-{>TJTjz5;pwbmbU3Ke^bvpcPS zad-c~j2qk67EX{(!>Aygx~K7uZZmqi_7jrS6=zs|wGM94+x<~?52BkOoYp;WVe;o- z$!*><*x+4GDD$lFO9{Q%{(Ly*HR=Y)9FinIIX&br}v@(#L$t->R{l zmpm_>+0MIAoNYuXp0U!G2<>Eku|Xz~q~fAd>seT$#i#wJ?(2!fNhonl?U|gkCi4BTQ{gNCks>3HI{+8srkGkqt zzu>?XCnP+XG3UFdb8M5NHGAB5S2G?_(G~w8%=KUO^X#&xTs5I8N^&!R-tC0UARfTn z3y4dR7DnF)mgpUbp0|F^Gh)J=p_1c7;@>dWy_g}{O`%Lj#tZe$Y74H|goU#!2=EU=wX$(y(^x*@5E3)>LT7k~KEQ8m@ zUi7>p4U*B0OzHC1tr3}qy@hD^y1Yy_@hE~696pZ~rG(i++_$k>`8^NJp7n4_eP%WO z@Lhd?^TkPQ0x1C1QvLxi!E}kbIXzs>fowCo=(ptWoaSWaFmD6>)rUK|p}xu+<*G5`)Ra%MA&QHtIry#9(TUQJ@5#36aI*3K@;5jgvsi}!{QKIj>o+MEiNrB z0Z)|J#`wqEJlL;*{5I5Ro_;6S*CR(12VYwpOeB?cFybeD8sMa|vA+J*uUdW}`tDe2 zc@LbAUp^7#k~17Y^?KMOaZ6|hyu)$_u<~drt0{RngM|3Agic0gDS?Kb4AQ#$JBm?2B&rNDX(_lCxLr*V|aM&?T!(PM=#g9Yz~CJL_YQb96(zU z0$!M@aV+<`zG7)XSEk5w2`v|z(>R^BedVyTS`N6$#Rh-Jj1-qzbyg+$^z_rs#+|$S zDNkNGfMrDkb~lJChLC1$H{c)u7C!*%XbU0mECI>5%e@Re?nRvsq99DM--TAhrX!vq zYgc&!TW&4+Om#eRa?VB=Ay&m?)P`qtDC7ZPQJap5cc7K3BvGE*`EtUf*axk}j<`K5 z@=SZ2@x76n9YISKA$bj-PRhj(=|_X$WsjD)5e*Z}y_?H#8-C_~vEN0o92=pGQXl>* z`L#Affuw~vOJZj?R}^k{wE1DW!9!pRwk2DehN9t%s8XB~*sTe(CC_0Tc&Mp6#=(G% z2nCH4c|pgOP{<8YNu1(2Ndq46JkqT$8j6#O$N>8oyw*Cl_o(Oz!Um7JW-sF=U_6EL za(Qp;2^Tfs$Ivsr!{cLB0&&WJVl3hPV?dJ33-a)MYI>MoTwMJ8gjT$20d~v5b3d~h zfsGs7k@Tx7-YbqINt4TLXOgrwxh8_+M{B{?AL$xDIXtnmUV)P@CyII;&gVTLy&@_<-IG zl=?^Y3IDOq+NR>o^Dq)tl@{~+#C}uopN22calop=?)&!%-4BVrR^-wAZOHlo=yM9d zAB~QQ5{4SMr+3z#e|7|IuBMSFG96a)k$i>ODP_B=qeEBg`{`jk3zaf+Su?&;3ofrL z0+r_3quVC=bGm~OO!5`^iM1kxXeR5^ydYsXkCMCVS(4KAOr;=`g%#^8uf7AeGZJ?b zTk@U9;~EhO3wvz3L=a@X0fqVI66WxGJJM4=HyJcGt|k1UTQpO7TBCb+Py_v7*hARS zw{e!VT(!rxhoa+=g`% zVXB?BfV#;VV{opZ)9NhSq6K|2e>-OD=+e<78K%z;WkvsSsxYt@2ap+JyYTs?^7C5T zD={_^1Wwyy)f7Z*Cge*HDu-U_yw6nzw(v(IKqJTd4zQ*H2#v??R+8fGsuJ(CkTzse zQ}oAv*|o_W0xh&VPN@O6FG)i*lYNd(PcQkq4nElmm|vD1QcQnW(K>6NEZubhHfMRS zVbjAIP}>MC$5az|=F6ewy~A*fJw0X3%=jOnt(lgoKfB*IhVPTNMFvXnexp^5K~*H% zJ9pQb)FM>6xuoWxc0;rp=bh-^fvoWDmw zm82aBp+RY9cYrThv@r5j4Z7YgC^iHxjdwD5(b~Q!)=nqYcyLA{br_Qv#6_T{cn6$b z6VUil4SEX>swg)kPtaKv!5!1WUJ5~LmK8oY<9eIEL#Am^1DQ+!e>CLpOA<=NThz7O658M!}CK8^Ey2M&!fERB2PZX2Y9mJBH-b`b?@Rp;e`<5S!5{ z#-+pb?ZrkHCpEcVrA8{Y$?L%Nx`~M|9P44ETH3_W*+lti+Mh8zj$kHz<+mdZ$gfE| zD<9k9{RhO)ldcZBPKjI%PTtnman9}31##5x(ob(M%QL&smh+{0UEQJ+8^snE__uXPy?l*B zsgEpE!aT|(9yi5csDfewk;s$}N$VpOXsR#Gl?LulsqY7yUhvzaVBw6u zw#fc$R?ETb_jKlA$%pf~@}<5v5LL=?PiNv^X!{TPSDz+$Q)mK&P!&vWu-YOLjyBGo zEf24r)F8YMMa=+8z#N#B6~W_N)v||1gZAw^TStysy8(*_NW_h>N{MW1&u>BlN9Kc- zHBCiC@iutdMO*eY4u}=BLva@R0y86SZtmvGKqW$*q$pFIooMBd66Yk+w7(*E3oQ>| zrfJ0AdU6j5r}%lTQJqU&wBthmC1C8+8F_BqA(M7Qxj4T)GBIwR_QA1J`BjJ&%Fe1e z^=y^Hi22S$9I!p&%%Th0e4dVJsMW1C_@3JDrI-?=aLSR2MUIK{&q9et?txB{%l%Bk zYyN{V>d0RIPV);iRRFg%tz3!9@BhXqu2g)1F!dxqQNH(l^NH0NXJ3toX(x+*3quA)f1O4rD$^Ga z*0YQUbv)6ZQNJXuXH`hf9kGLQ9=gXSa0ac^Zuj}~%jvn(YAJlcS>ldgd5YQPpZH0q z_(lr;2O|_A@oD z>Qoon-;DzL0VNLT7?|n{UF6G&7jXJ@qkG2DE*B6SitR0&L`7;J~ z^#IgjWAvI&iKRZAEY|}1dAw18UC2>WAOEiE=nL-%2zqi}XVZP(o|FBnjE~Fxc%~YA zrF^#cunTFCx8b6kIqAx+xqyp19;t$qs9+M-ZpP*LXmz%Oj|FKvTT{mgzh2zQ(%YNe0{Awy_{^wdK9;-&kB>GzlqVfx3F=*kOt;==zUi#2 zh5YfA2eIP=bm`aF#^`-EJPBTaW1Q9xK7ew1(Wzc4_@rTchq{&l;z|z=8pO^?sPTch zBsL=l7%2B(FP|5r6hF|5D`96>{a>JR9TcqouSOmOf3&kB!*aQE;26*zEgKNWF`Q14 z@X}Yd1!LLx7IY%wh8mk2eJOQ6BUaUsjXw1KE4v=Oe%qGlAGFfPMuV+Yd~=F(xCqSp zlL+>^m{JFGQ(+3|{^YXrf0ZayFT&*C@1K1oO03*Y3m7QQ`QS(~GT8D)*yHH)AR|$4 ziaf6w>2HrIsB-oaf#p9$p5x{szj!poun}i5{Xs!5oqsItXTkbgP5^{vR6_Uvs1@(4 zN{%gG3I*o4_mAM-RSdf^1-ID80PbXriJI|!&y!mF>;H|{KBMrx2(?#18dQ2hDI|22de2w{}<5{=$k(DP>l4Th#flCaRBo}Tm7 zjgCj2UgJ-M-4EV>tDK=9rYore&rl%Phwo9pB|2kdt_i4c^bTJQBK zGh5}&gm)RlncIZcmn`yxjOo05w$j}lYQ*CDwOF`fmeL?LUQf?n$8DxPEH%`FS*&o- znMB`jmXcFqYd5mReqWq5Ptiw7{|MC+ft)9l0VVMr-k6d2b z5UZb->d6Isq>0^(M6h3}B;mB_En+VL|D&p1sWe-qK|(^`70oK22L^tP^FNp`ySRM4 zM!0G4>vuyu;rGuNL#FNL;uCt_g8?O8r@q2+lGo&Hd4yug{j^Xb@vF;}*LvTSvd2X47IL0!CTW zF`~x90N*<-(kNw6I9|>U>Q){OSS;7KkC^l@b4i+z2%@Z4Ao6XXuqg^Sd!T6Ls#f&8 zNhv$L_K?n!Hinz@r!kCWN0;06pyETG0_K;6QmaQ|Dtd1eokF4 z2v%TP(EK0@TplNVie;CrAWKd8*Y1G_0^~kPU|2R=9RqNJR zV}h6z%h_mip7(4g7|BxwR6gkbqw3mHOx9apX?&!&i@{Vo=pv*K$KM@MJJv-7{*Dp| zLsS~+tZEfQ#%!uItdBd|=*rM5dZ>K17o6})JCQq>X4)^58EWqJiGMcafG4I@sA!>u z8%2f&B$7I)C~3$yJTIzK3-Yqf#RM)5m~fQ+nS8c9UcIA+Vt!HewfE&a)+SBSpv8t( zSglfrL1V!S(!>r%T0uS~0px^LD(wMr=pborYOd|o2&(+^SlZ?D*1;u0P0Ve$A_VgYrjkBE&*-2sk@|f{XQB4ffzA$ z|I|aKcf5(m{4&2H-%UIpIW@`V9ZMXibZD9uN0*4KG zuU(eGtv}G~MZxTWk_b=tzWLhb3}Vq(jZI(!YK zZ$)UV&{~J~+)Xv8<}BOaaen%9R_N=BbUi97=JAMI-TJ@i;nQhD&9`1Uum1b-$OlPS zW%@r}S5e?1FnwQ7W1x3iG<*Mdu{a@mSCaAwKF`h>T20oab7S8(AF<}Z8@1ex*(%~C z)0O@BI@8$J z(yF;N4m~cNqfCM-*&bJj+7upXb||VIKJ`p~xfU!9by&OFTdQCGgwTzX3s#DkFRO=r zIJMs0Uv(6ktGE-IZ%_nRJdV(s-vZ~|Fh;9VVYs3VR=B(C@LwMPe31M0BRzkZ{A9fe z+tzGd1W9=4h@Wbs42H7tWv)tUX4gHY)ssDWYKBziF2+fpZ-ly~#q4)V)X{e0%ZqW3 zzPaCL;rP-pxVN_iU)}dz#+F37wK3*$`r`bw9 zU1AvoO^CE2uea4Cgf)TCZC>Alq>+Xl2F7Ez4XT%*e%jrW1xWHg2F=U+XsFP8mBvp< zaq}gwGTjB83=_4ZX<|?(y}STmdw0(7YUQ9zDQd?Zp^PYjGFNbGbHc*^rpHC(%;e2!|~+m zBCK)vMb`jiRD5YkqerFhSIs&ZTfTH4%O>B zBYEMY5c1eX+|ozfsd#LG{xj=;Ye}d?g08_~%Vt`DFWQQnrz!4PyWetyaI?TpMUiPg z-woLdm|sKx9x-pCfys0t*PZVis_U{ge`FfT{v6oiA5#7td_vK$b)h3CWcw&W!nA(! z?IxZh^muxEtSiK9|0}EA<$*Xw2mka~f3X%ob?K|!aqG) zm71bg`c1|2e5fB{kE%-J1p(YK>|&(hwARgzbXo&utdgF;_?`<&nm*?!E>0YxKE$CUuNC=<{+< z`u>x;JXPl5wAUjfqdy);R((rgg7(@*w?InG2lto_x&$0z0f9yFNxZ$v+tDr`zZ~<1 z_!H$xTQ(*+B&(xZSDuKcj;MErUR<)U7l;#3l%h>>>WC9$5v)=ew2qB@k&+0qE+=w$cL>mvC- zx>*^EH#m-I^QfX5xff}wEtGwmKoCNCbNblnAVve0r*0^6J84yi%sl$3&+dwhCQp*Zgs7PDtg&hREm% z&xD|$LHQ{vJ7BxQeZ~*SBmA~g3LeMXnSM`E2lH^-p^Jc>!Tb@l`TlPLVVGxBM<oXE&UvVE@Txlc$Sv=5i^%G%oNDzq=DJEE7}6|!Jl5Um!tj6)p8b} z^f8_)%OT60{OO+Q4q~TUr6!ZYcPv_}gcUTaciu=2{Cufz)wGi?o-=KLY<#KwXeWVk zoM0eLBu1EY!w&1WcDt0|y%C(NUr%g%jFeL3nGLeV!hI4H6R5C_+)~Rsa5at?&An@f zn=cX#$$?V}8f}UH@ZI{;|2y#kZ6s{n@#rnFEqOU9m;wj;DQ&HgMalOXNsICRzcOD( zk0LT7n{6(=>bg4T3D~E}{|QEh@^3*CXvqrym2Jz_9!&q$%{b?ks(%27Nx@EK|`g~~Ttx!@?9Jil`lCj?zxCzLNVpHF`TQmHXsu=U&qrY%e%a1&y3C)5O65Mr zT}entL%pQhhQ*4KBMuYNi{4=4Brv|Om}g7*;Vqq5rj5ywma-y+*-cnv^!c*{|LAB( z-w;K2Zlx|jl-DWD7{^!opZ~$Kn}T%{Q~$&tXi&ndZtZU(_zgnO_bION=DP>5>9ZJE zS43)0ia14*5HnPE7&kCLE9a<8OSEK;H~Szi67P2Ns>hvI1RF^bQGMI(2vb5tyOLgn%4{l{;f z0yP1Nh2v9K5_j<9Db)dM@I6!^7gk6<_wtB=T75kDb2lL_E)CA4I-IYOOCET{5H}6S zRj#2VvvkQWW=FcMn69y-Wy1$7q6rqOc*`C#`!p_zGoMPMq7*1qKM5*ZWxkWG>1OY& z&?}dT(vpZ3G4a#P1mYsC8TwrW|0F3=o@`AwP(tpXyZ+EU-N_*Fi>Ak8<~Xlc)Tv7gCr3P8nTT+8qyV#GUnZJTcOXm)fg_a&j&-8A0n zBVR&$#h9Yb?)!{k-3~k9+q4HOa#0hh0@D{o7g&zm-L5?hmYTmva@n4#@h>SU$&bgS z7hINJbR_s$II25eMKenC=TATJjw$i%!C~~cOW|tFEAmYx1Go_T`O2ZAp-b$lQGdq0 z9R(9{zUBQhbhUkiYwq)G-HHhHeOh+aRnhMTscL=PUyp6m-g{~|h&OU?^~DMc>{^xu?jwwIpAYE$gt`=YK;TX#lV30z zr=g=~qNkA0H1)NIRg&HC>F;U`*-I5i=QipZ9SV8hfJ|R`0coxldXQ4(p#MwA6;g`f zRUl1_#0DleK{h!L!E#}_9Jd-qo)-t(+;{TOC8@wts zy8REE6@(^qFzyyhTGrPeuxr;Y(z%~USOFdO6Gi57PIc^3VVa8u5S{E$KNgqGX(KPH zC@+5ZzUgBJW$ClT9EV2hJIM0Mlqh8DgwuL9N5vNK=9gXC6V8 z%T}E7V}Ud*Mk8;BCwZvpWp)wZ8n4ep_t8PmTzT9u6{{EFnq82|Xz)j!Yny4I>e!=A z5koI3hoxQSpU7X_NX8`&B6UxD424?WvvvWsF2^kU=;wI)h_bbzi5hT-bpLT>P@}+H z7tG63D^^&a--~s26k&37x%YG2EfMx0q377)aa>SGL0UaGYa_>K1E3}H>OFp%r^TXI zdTnzRfY9dwxDc63hr=+~e15(;;db@X*VARHX1ry)9cMzld)SS7p8zPz#%Y9EDr%={7b~C#+vSJY9Z>O+c zx=;bsD>{T8K_tWJ3vJ^Ml~h!w4FZhu@LbV}xHX14iy=mwn(k`w05VJYE}F85`X?$Y zQVuwKVL9~)m5$FkCBXuEXBW~_bDtKF(pl5uSbI*x|5f|STOo|c*S|fB{VJ`gDhk;M+VtRH z0%6ELBX+?ByEQOhOnxw0U{Gy@O?%Vi5nt5AOw-lT3eRZ;mr)24-(~$s`;x# zZ=n@fFm*hC5p=)Z8D1EA$|o*vlS=!Gd;XxzY+$;n?dj7PUIG_8MaK_nWnXQ1>@nRm zvUTx-sRl0=oMOIo*2WeczkJB;OO|J#BDjEoi>kedkE$4Oelc zIG+MCJrK?lq2T_tSsiWIe^J!>-)Ak8=DiyK@wZwICGDSV(LQw_PgV%(XCI-zRoP;u zpgXe4``JA|<1So;0*00EG_}5NaDGHVD0B>OJiimI_t5V>M`|ikKs_dEOVRwsi+#jL zj1^(FfNV}f7Z+}Sz6UZLFIpht{qzMv-%GFUNlzgRB5(Mw34r}C%1rnc$i~OQe4f9*#(1J>>S(Nh1kYjN}cqsRLI%X0wx75tTB zk8Z02D{FuA1v9CIC6JT4?=KBBI?DL;~OYDDs3H?9u z>e>H4C@?4gn_uVq-)B=LV6Vo1vFpnBAw4NQrFA{X{DJ$GpyV~z4*Qwyal@TYZlZ3w z<$J^LkB%7Dma}_SvnS?2+@kcN9Mf(VkMK-b1n?}xz2ht8tG%{$-A@*R)+S4g4o=aj zet!p~XRw|DnY*Ou*MwZHFH{_4ADXQ;5s`ga*qgUs*c<9l-e0Hbu{fMQ1eRem)`f?Q zcHMTXcTdbwU@4;Ee~*3Ar3#b2ckiCl)dfV@gyZ>_`G5VK*xMA{9rSMS7ES+fSkRRc zY4{EN2>b}bhzNe0sAt7Z7ULl!2UBLLL%=pJNuvL_LjLI8{5f}EOrAWrg zxULP=ipmV50rincXrs0INoh}cm6OhI{{A+1%}or+oearY zU)F%7M8>!IqU8l4`^H8k>4~Pjt2xBeCDg!9C2cA*a+tO6BKJL7DclG-op}F+m~z7w z1?ur|Wj_aH-%32KFuX6E*@IkQABjiyi@$@{_vW5EN|_FMv=1}3hfjd$DdTVl3+%`) z2EY%mEDr|wT#iDzcQ@aT4h_AT|4Mo2xm{lQ}kBa;FW|f>IZN|GJbpJ00-S zpKsrCZ&Vlpfzu1PSJ!N_(Mwe+HeXKE?=1g*gk>CF0yrE#hH4O5V>76M&jGtxSzPMz zni;*{$tL(e1q-UgzIBC;J#W<-f9zO?hV!LCFOP6dg0iB&{=9rjtu)X_#hKxR8jHY0Si#p+rLi&y0G~ z(lkA2qvDcMF1cGSVT**en1v$B;sDOEFU`mI{qVl`ocn*C-~I6XFZbxcMz}+R&_F2v zvRX4RKhzM<81*JClL$I}Roa+siwIzQ?fF*CP}IGx$+~SGQ8}UxK!$*N6=vj^KoG{4 zf$6fOJ;I>D!II6P`Ifxb@Uj;q)gaR?oM)zHKU)Kn?#Ls zNu!k^N?0XVzEGKQ4)ZLm-xkm2QoNxRaSmWSvf;aDm^CUvOzpg<~ICX$!e_T;^zQVr?enlVY^at zsiz3m{RGX`R4Hn>!)99N!wchjnAWJFL^!RJu}Y*OK%sp7gO&dMqp#wMJGQRov#u?n z6ffM{Mb|k31c{&fHke(EYvVViS14;5&;d{GO*|7fUOoBNh)E>?UM`eA3EQC*pq(;B z9hBY7zUYT#Li>hRXC$_A(HX&u_d8p#ka5OrjbVXf?QxwH%=;6jAMNBV6Ck%1>dEcS z#`_t(=+N*LmtD`*Eq;>wW3i-73Z2ImP78KhInSSiZVF~)BY>y-?v!|>ix1OEux=FT z$F{a%y|K^B~L%ft7!c zS)CQfoFa{QEPzR=MvFGHeM3|E>59ZV_R|kjmg7?sShO86de5qiRh_Lv0#O#fE@(FN zmKBhru?v?dtW&WX^n>@!Y8QCmd{io;7aS*Ybd!=LCq)sMsZJJ^)ac@QdY4?1WiZ1F z(5f!Kesd#5m7P~c0r^e;q%~gptHBaEh*wI=jl#mTy}m%0#EyOe-G+7FwOZ?E3K^Kq z`6U01Z!WL3vTr<|G2ee~?DK39c3&&0xTiaAcLY(!@79kaMHyye`nF1`6VfapOc11{ z1PLQ8UmGe1`1;5qEICvo7~H9|RaeaR&*Au@#*E;bYj@l3RhnNI#jX{PtT|+yEP#m4 zzoAhbMKh2$g$4;k2iqWOaFWLeI|`>6(N89mJEun=GXW8g$l)V5g3Z^gErkByZQq4% zJ=Q>&H7ira8%A2el_SMl=q<~2uJuZzjx(b_NESZpoEBJ^)90Y&zdC;xdCNiBi7c|;)$Y_l@&E^0`77JAg_l>0w22>>^-y(2|I88 zGE&oe9bgA)rWcXQnDUSqEw1w#`#%2i(FAxe6G_|W=XW0uFj1WdjOTbgp#LML={#6I z(vF|SHWKm_zf6HGvw0NWRh}ON`LrUjl0AZd&UCd-6Bt^lFrGrJO`==s&fbKmjskAN z#wqz-Pj$jo3w-8=b^0shpNbZijNlyFsFFK+G^$(p=Bmc($>tO9{61J_DL?NEaRfbP z+Y36?Aoy?e{2@e^cLg`JzL3DgkG8FZ5s`tqRr;NTr^5{*)jI*bKCY^s0f|V}5X+AK z_BMwYw!QY#w+y=F*RwhbaR;Bz$361-ze}Lr>g;Kzcx`inhOPScy~e?{$thD`y>CI| p@LIr+J&5p3y{-DK#$aLTs!^Wv5ENBfr(QJY?;E(c@~6nGe*v$FK>h## literal 0 HcmV?d00001 diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 0be49e1fbb..dd3bf3b231 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -51,7 +51,7 @@ The following topics and procedures are provided in this guide. An estimate of t
Hyper-VHyper-V is a server role introduced with Windows Server 2008 that lets you create a virtualized computing environment. Hyper-V can also be installed as a Windows feature on Windows client operating systems, starting with Windows 8.
Hyper-V hostThe computer where Hyper-V is installed.
Hyper-V ManagerThe user-interface console used to view and configure Hyper-V. -
Proof of concept (PoC)Verification of a proposal. +
Proof of concept (PoC)Confirmation that a process or idea works as intended. A PoC is carried out in a test environment to learn about and verify a process.
Virtual machine (VM)A VM is a virtual computer with its own operating system, running on the Hyper-V host.
Virtual switchA virtual network connection used to connect VMs to each other and to physical network adapters on the Hyper-V host.
VM snapshotA point in time image of a VM that includes its disk, memory and device state. It can be used to return a virtual machine to a former state corresponding to the time the snapshot was taken. @@ -63,7 +63,7 @@ The following topics and procedures are provided in this guide. An estimate of t One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. -The second computer is used to clone and mirror a client computer (computer 2) from your corporate network to the POC environment. Alternatively, you can use an arbitrary VM to represent this computer, therefore this computer is not required to complete the lab. +The second computer (computer 2) is a client computer from your corporate network that is used to create VM that can be added to the POC environment. The VM is a mirror image of the computer on your corporate network, providing a realistic simulation of the upgrade process. If you do not have a computer to use for this simulation, you can create an arbitrary VM to represent this computer.
@@ -131,7 +131,7 @@ The Hyper-V role cannot be installed on Windows 7 or earlier versions of Windows ## Lab setup -- The Hyper-V host computer (computer 1) is configured to host four VMs on a private, proof of concept network. +- The Hyper-V host computer (computer 1) is configured to host four VMs on a private, PoC network. - Two VMs are running Windows Server 2012 R2 with required network services and tools installed. - Two VMs are client systems: One VM is intended to mirror a host on your corporate network (computer 2) and one VM is running Windows 10 Enterprise to demonstrate the hardware replacement scenario. - Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. @@ -141,7 +141,7 @@ The lab architecture is summarized in the following diagram: ![PoC](images/poc.png) **Note**: ->If you have an existing Hyper-V host, you can use this host if desired and skip the Hyper-V installation section in this guide. +>If you have an existing Hyper-V host, you can use this host and skip the Hyper-V installation section in this guide. >The two Windows Server VMs can be combined into a single VM to conserve RAM and disk space if required. However, instructions in this guide assume two server systems are used. Using two servers enables Active Directory Domain Services and DHCP to be installed on a server that is not directly connected to the corporate network. This mitigates the risk of clients on the corporate network receiving DHCP leases from the PoC network (i.e. "rogue" DHCP), and limits NETBIOS service broadcasts. @@ -175,7 +175,7 @@ The lab architecture is summarized in the following diagram: ``` In this example, the computer supports SLAT and Hyper-V. - If one or more requirements are evaluated as "No" then the computer does not support installing Hyper-V. However, if only the virtualization setting is incompatible, you might be able to enable virtualization in the BIOS and change the "Virtualization Enabled In Firmware" setting from "No" to "Yes." The location of this setting will depend on the manufacturer and BIOS version, but is typically found associated with the BIOS security settings. + If one or more requirements are evaluated as "No" then the computer does not support installing Hyper-V. However, if only the virtualization setting is incompatible, you might be able to enable virtualization in the BIOS and change the **Virtualization Enabled In Firmware** setting from "No" to "Yes." The location of this setting will depend on the manufacturer and BIOS version, but is typically found associated with the BIOS security settings. You can also identify Hyper-V support using [tools](https://blogs.msdn.microsoft.com/taylorb/2008/06/19/hyper-v-will-my-computer-run-hyper-v-detecting-intel-vt-and-amd-v/) provided by the processor manufacturer, the [msinfo32](https://technet.microsoft.com/en-us/library/cc731397.aspx) tool, or you can download the [coreinfo](http://technet.microsoft.com/en-us/sysinternals/cc835722) utility and run it, as shown in the following example: @@ -194,7 +194,7 @@ The lab architecture is summarized in the following diagram: EPT * Supports Intel extended page tables (SLAT) ``` - Note: A 64-bit operating system is requried to run Hyper-V. + Note: A 64-bit operating system is required to run Hyper-V. 2. Enable Hyper-V. @@ -203,56 +203,72 @@ The lab architecture is summarized in the following diagram: ``` Enable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V –All ``` - When you are prompted to restart the computer, choose Yes. The computer might restart more than once. + This command works on all operating systems that support Hyper-V. When you are prompted to restart the computer, choose **Yes**. The computer might restart more than once. - You can also install Hyper-V using the Control Panel in Windows under **Turn Windows features on or off** (client OS), or using Server Manager's **Add Roles and Features Wizard** (server OS), as shown below: + You can also install Hyper-V using the Control Panel in Windows under **Turn Windows features on or off** for a client operating system, or using Server Manager's **Add Roles and Features Wizard** on a server operating system, as shown below: ![hyper-v feature](images/hyper-v-feature.png) ![hyper-v](images/svr_mgr2.png) +

If you choose to install Hyper-V using Server Manager, accept all default selections. + ### Download VHD and ISO files +When you have completed installation of Hyper-V on the host computer, begin configuration of Hyper-V by downloading VHD and ISO files to the computer. These files will be used to create the VMs used in the lab. + +>Before you can download VHD and ISO files, you will need to register and sign in to the [TechNet Evaluation Center](https://www.microsoft.com/en-us/evalcenter/) using your Microsoft account. + 1. Create a directory on your Hyper-V host named C:\VHD and download a single [Windows Server 2012 R2 VHD](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2012-r2) from the TechNet Evaluation Center to the C:\VHD directory. **Important**: This guide assumes that VHDs are stored in the **C:\VHD** directory on the Hyper-V host. If you use a different directory to store VHDs, you must adjust steps in this guide appropriately. - After completing registration you will be able to download the 7.47 GB Windows Server 2012 R2 evaluation VHD. + After completing registration you will be able to download the 7.47 GB Windows Server 2012 R2 evaluation VHD. An example of the download is shown below. ![VHD](images/download_vhd.png) -2. Rename the VHD file that you downloaded to **2012R2-poc-1.vhd**. This is not required, but is done to make the filename simpler to recognize. +2. When the download is complete, rename the VHD file that you downloaded to **2012R2-poc-1.vhd**. This is done to make the filename simpler to recognize and type. 3. Copy the VHD to a second file also in the C:\VHD directory and name this VHD **2012R2-poc-2.vhd**. -4. Download the [Windows 10 Enterprise ISO](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-10-enterprise) from the TechNet Evaluation Center to the C:\VHD directory on your Hyper-V host. During registration, you must specify the type, version, and language of installation media to download. In this example, a Windows 10 Enterprise, 64 bit, English VHD is chosen. You can choose a different version if desired. Note that Windows 10 in-place upgrade is only possible if the source operating system and installation media are both 32-bit or both 64-bit, so you should download the file version that corresponds to the version of your source computer for upgrade testing. -5. Rename the ISO file that you downloaded to **w10-enterprise.iso**. Again, this is done so that the filename is simpler to type and recognize. After completing registration you will be able to download the 3.63 GB Windows 10 Enterprise evaluation ISO. - - The following commands and output display the procedures described in this section: +4. Download the [Windows 10 Enterprise ISO](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-10-enterprise) from the TechNet Evaluation Center to the C:\VHD directory on your Hyper-V host. + + - During registration, you must specify the type, version, and language of installation media to download. In this example, a Windows 10 Enterprise, 64 bit, English VHD is chosen. You can choose a different version if desired. Note that Windows 10 in-place upgrade is only possible if the source operating system and installation media are both 32-bit or both 64-bit, so you should download the file version that corresponds to the version of your source computer for upgrade testing. + +5. Rename the ISO file that you downloaded to **w10-enterprise.iso**. Again, this is done so that the filename is simpler to type and recognize. After completing registration you will be able to download the 3.63 GB Windows 10 Enterprise evaluation ISO. + +After completing these steps, you will have three files in the C:\VHD directory: 2012R2-poc-1.vhd, 2012R2-poc-2.vhd, w10-enterprise.iso. + +The following commands and output display the procedures described in this section: + + +``` +C:\>mkdir VHD +C:\>cd VHD +C:\VHD>ren 9600*.vhd 2012R2-poc-1.vhd +C:\VHD>copy 2012R2-poc-1.vhd 2012R2-poc-2.vhd + 1 file(s) copied. +C:\VHD ren *.iso w10-enterprise.iso +C:\VHD>dir /B +2012R2-poc-1.vhd +2012R2-poc-2.vhd +w10-enterprise.iso +``` - ``` - C:\>mkdir VHD - C:\>cd VHD - C:\VHD>ren 9600*.vhd 2012R2-poc-1.vhd - C:\VHD>copy 2012R2-poc-1.vhd 2012R2-poc-2.vhd - 1 file(s) copied. - C:\VHD ren *.iso w10-enterprise.iso - C:\VHD>dir /B - 2012R2-poc-1.vhd - 2012R2-poc-2.vhd - w10-enterprise.iso - ``` ### Convert PC to VHD -**Important**:Before you convert a PC to VHD, verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. +**Important**: Before you convert a PC to VHD, verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. After converting the computer to a VM, you must be able to sign in on this VM with local administrator privileges, while disconnected from the corporate network. ->For purposes of the test lab, you must use a PC with a single hard drive that is assigned a drive letter of C. Systems with multiple hard drives or non-standard configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than those used in this lab. +>For purposes of the test lab, use a PC that is assigned a drive letter of C. Systems with non-standard configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than those used in this lab. If the computer has multiple hard drives, then only choose the C drive for conversion. -1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy disk2vhd.exe to a flash drive or other location that is accessible from the computer you wish to convert. +1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy **disk2vhd.exe** to a flash drive or other location that is accessible from the computer you wish to convert. - >Note: You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media. + >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media. 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select checkboxes next to the volumes you wish to copy and specify a location to save the resulting VHD or VHDX file. If your Hyper-V host is running Windows Server 2008 R2 you must choose VHD, otherwise choose VHDX. +3. Select checkboxes next to the **C** and **system** volumes and specify a location to save the resulting VHD or VHDX file. If your Hyper-V host is running Windows Server 2008 R2 you must choose VHD, otherwise choose VHDX. See the following example: + + ![disk2vhd](images/disk2vhd.png) + 4. Click **Create** to start creating a VHDX file. >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. @@ -658,7 +674,7 @@ If your Hyper-V host is running Windows Server 2008 R2, several of the steps in To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. -An example that uses Hyper-V WMI to create a virtual switch on Windows Server 2008 R2 is provided below. Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyond the scope of the guide. If you must use a Hyper-V host running Windows Server 2008 R2, the steps in the guide can be accomplished by using the Hyper-V Manager console. +An example that uses Hyper-V WMI to create a virtual switch on Windows Server 2008 R2 is provided below. ``` $SwitchFriendlyName = "poc-internal" @@ -687,8 +703,10 @@ To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature ``` Add-WindowsFeature -Name Hyper-V ``` -For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. +Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyond the scope of the guide. If you must use a Hyper-V host running Windows Server 2008 R2, the steps in the guide can be accomplished by using the Hyper-V Manager console. These steps are not provided at this time in the guide. + +For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. ## Related Topics From 7bf86f4a1a9b961b3ee5b8ce6b3d24d5b7b102e5 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 13 Oct 2016 17:28:58 -0700 Subject: [PATCH 015/210] several edits --- windows/deploy/images/ISE.PNG | Bin 0 -> 71898 bytes windows/deploy/windows-10-poc.md | 111 ++++++++++++++++++------------- 2 files changed, 64 insertions(+), 47 deletions(-) create mode 100644 windows/deploy/images/ISE.PNG diff --git a/windows/deploy/images/ISE.PNG b/windows/deploy/images/ISE.PNG new file mode 100644 index 0000000000000000000000000000000000000000..edf53101f4614228a1474d80eb8e43739cbf27cc GIT binary patch literal 71898 zcmce-byS;K`vuyWI@Ev`iWe)TxEC)Jw-k4n77Y+6?qMpp6)3?;ks!qi1Spy*7F>dB z1}9hwgaiT!H=XJCeZO_@|97phSV`XZ&5?cfv(NMF6Z2AE<2Dr&)ul_9Zfj|(8eY0| z8FlH>?{98gqkQ5hVv$7o_nVKQhRUU?VHOPK%@t>5J>^T6YLckWUtOiVzxhVf!spVZ zJDorOenWbeI$XMR0n<`dHV(AiZM**G{prlAA` zN*vvOKM8*w{y^}7g<)t0gtfF-d9|2n{sm>ER)!>kH}P&;S@URES65cgXG< zb7Ob5a`>_t`M! zV}sqy4LSDP>5`sIshT?|7cD#c6#289!0uzmYZFRW+?VT}VWUhNt=+`cma`7|;72GeDn#`11ND$a8(UHFG|(SR<(mAW@sCqB zB}J1+SLrd&*qHADuP8Hxh;XsyeNzp_t;yi_8ZP5v?rjC&*$UJBCq^rMyfInT(x}Ym zA6ie?uQ>xZ%gB|XLQ4@|r(4vApCa7s3b;NKbrC1)^z*+Y>99E zWBST)GFNr4%j>^yye|QHvR2>N1_hq^r4jmp(13dMVn^9r`wkw_(&e~4K=eL2>6kY- zgCQRMUFp2V|3x#3IP5bU`>e%;*gZ2vY}aH= zc*UR{Ltd?$oJIPSZbwTkt{TULofi@q!M8e+V&rN`Uws&w5*Mn{G$>3VeTW5q%Gll!mDsn9;Ga z>(Q|#v2i3F<#^d_^kN(Fj!a+}*orC3#v~}CM^P372_R0&5Y();ncqdsY-Cowxrwvw z3Q128cVL_KB7g?sgnl#Z;*5@T&gQo*6RQWsHrkrYZP+if>EwiAyl$o~MG*oB2e^Rq zLHht`<1;*f%=WbN7#eI*;ggs;rT%ZPcfGnFhIFioH8`^>?VPB~MAfqIs0_C$B(GKz zfQr|8L}!wbz5G2iNCsMvnRSxq73Gf`G{0z?(nn|AEDd3RrM9#Kdr`QZxi&hx2?{RI3^cF_{w@SiX&T+h?3#NLNo-f&=lA~BZiAdGnSw0K zpU8p_ax~Cq$epIvhD8zZs?4FP_AB_&$3d??ygX^PW}7(?CjI61rp&$76XdS=xy+gk zUY$+6TC@B^!U&F&k%F+Jcr9b*ke|fChq7fVr%TXXPz?YqXf`IHpEo90 z0Rp1WJq9hC!*H&da@|Urgcx}#C&o7PnT~zPPoVBTbS~X}#_;3toqXh2 z^QbF*HoTG1AJV1=eq_{(1`|c&Xp#UEM^si7j&>>x;S=paN#&LhC7ZLgqZ74{Jrr1l_zJXX$QJd83~g#};7IXpxczu=f2L9t)sYXd zzw5xb*7N7nJ>fx;`D!o-nO&4ECC_c&m!Ve$3q zoM&QV?hRzeA|${1+3RCcKybg+H2v3-TW9+_Kl`vF-%}rsuYD$TuIyN4Pfiag+-=!p z38Fn+h^6!+dCrFxD+9NUuj%LUKR*skQl7BqT#*gv*;;+C$#ui~po{xUg2K-Lb071Y z{o}FL93BZdx8yY4G?uKIM{(+jj2i5?{TIyApaN<1*`FKEPU9t=NYn?K)PIAnDD7T{ ztp~Nup99qX)qfn`T8+3595XGgD5+wB3iZ{@o1U?>Lp^38$d1tlC`m;9nB8$oodN9FywC`R z+C(SlM2}fPN`p0LVmWj{Rq~vrQ)e>ZDpC!hkK1gFFcQm>iZRE4)D$%KDSgN(N*GA= zv)0>VOoVY^g5?caj!rao#Lpjg$v&=qy~0UZz5n@A@%R5D;_k7({Xh3bCp|Bs#E4%KuS??*>c4m0SmF8^JO88p z4rrn!{`0^a?@po(ija4+qyP6K41T)pgTNa1W$(j{d74$s7Do1eH#a@$v~@pp)K^Vb z^lM=I?=zK!`nkDL$cVT9>qu{R#s}4AyfN$le#`okmS#~oVB&w8tyeAcgDUYyjSr1c zkS}kT|HT8}?g#n4nO=~m0f|NU>43tRAZI>LvYfAH`Ye2B%fg=dw$}RcG48-7_+ol& zK69C5%(kd@d0yc;X$ne%a7GPGF9?SdAUYC9=(F1j3hn*%Rfk)OOyte$rG$QaxYrhR zE7HRU7(kV%T;cu@f5WCQmp!dTaZ%UtW@5=};(+flKXv>(Q%e7yJ!To&j0|!{ANz_V zdR3k53I(5(|GwHlo!npO?BaNFhS`pa9G`o#I?c`tZjgi+vso%*7cb-!mRRSI{e_e8 zAMcT6o3UG)mEIP1u1AeG;hVq93;&u0?j_22t!s>^>00dRZwEl{O(Zxc%*%v;l9z0m zn{*5K%B=xy*pQq^_qZj0i#;KtVYDyW&$**PFXWhMTjJPwCRmAYfcUX0#Q*6!@XWk{ z#2k!kA9+&3d3u(s+3(6Q=7!kST}=_mLjhHa>}>y7nELn$#H_=*f0pC@v{Do@xewz= zI{#D^_)7LcSKzt81I|U|XgF{_LepYMYMbyE|EHyOrfo&u!oRH-Uj*7nXr2QUn<7c6(3nJD4}6<4|Cm9H%ewrD%DTFJmUR z3JlEivU*|o4J=WQAQ)veDoONo9NI{H?j+%q^%Ke~q%)xlYJ1||3G+g#RHnB+hcu6r zwB8gR19Sn581-MBdN7@AktVn{qpLv)JP}uQFbN@0Sbp}gkEycwQds=bPz>3ee~|dW zlH|w&a_1iT&$1Kc;Yb#GBF89t3bQIDD5$(N%X?Fe7Rh02cDv*V$@@GczEsd6H~hJN zC19x`^smlgP|F3Z62N`hU5+7zuoVhVM>Zxa9s3bun$^CoUfLE^ZJw@OeLZ-@N6M+vx=}8L!tfSe$I?S%2q~#1$)3|rv z(323{NW#BH6P%zVyg(gDzS2URyH61!jyf3tXP6oO|c8k5j#`V#2BevTz4AvnQqlbyCQkQ@n<-Gzrj56yI{AZG?#hZK0E0w z+4Dgm;ls5pZ?`buoi^eQgUiW>mm&M0FT*wl^GRvvtvooQ!U*c#nS8GwY+Yh67rB)y z;AR8H*!Bmmm<>NK+!E3;%j;DYA2pmTMha_f1YzsoHqUH-*&P4~2t zHOr~J6L}_+RkL`AiS60D&DVh){Dg6zRqD>U1Zl$}>?je@ld^q2`2zE{9Gki#FrZb| z0P#!S011qbBq(jWN+++41VO4xuU!HOG37x)RHJMIZ`|~CY2z6tj4w8r zZ&tIa-(3*@=q*8`!)=>vT5w)?{hA!8?os)=%ls$JI+4WvP)Wb6g|9VbU9=b*s}Hy( z`s;*tX z@VHx=yBhM$YGACPtl{`WTKYTpMwr7XMr+DGWxjbaSXYSo(7Cy#^AE;A+Es@?Zvs~9P8=bEd)WXN&gsV?-jr4`)=W*m;q_!5yOIZN|n^uxTd{5@J z*%w2U!r4F0a;o*{ddN?%;q9(-k`@kQ_HKM_diwS6R-~sTZhLl z;L{jIj@{FO@FweqT;f4I&b$2y6kt;o6r;`#ZwMP`^iNXS_yX0W>Zczs4-E-e(z2Ao z3Ht_AOTv-+;j@?MF_p%Tx|($O3FM==yP@YfVmp!J&~Ze5{63)nIJ>J|{^?Z6*-`d8 zv7M>?PjF@?MR>%ZBW0GmV}ai>3{|l5y@&M{X+MznxPb z?p-sr%6F_HxQz{`+CR++jwybmJgf>M63NdpJpjAtA!IN%~K=vs!FB~ExCZJx7DCEB-15EWGcGA!b~kvz4{n^opX zip+ahr`!u@<`KaM^YuZgw3fJt?F2`rPVdi?tM@C|_3tjoeRR@2%UH@VcE5=$8R$9@ z$j3tn*}tDDptvjy*K0qn`&#{(E0(3HvG7=R4x9uJ$-Y-qZU^(iivqZ>?oh&DHDN%! zJYf7xM$-7JZnSTd0la@S>i*xiIR3(WfA_aa@d0_|@u+4^r$<5b_JZaQvfmxrOEjmN zv8V+`TH@;5GX$H5?Zvq%NXLYg-XE-2vt$l0z0EN^ebYRntXH_dCOIrN7+r(h0%Fy&x;Lg9(SQJiNK6CpY%ALLROpoKLbjFtAG@Oj$+}HYy*VJi6HG2`{P(R z&zRXLRp#Q*6TF$T{>goxVUTjd)(2fP%L|_N81G@jo^K)Kf)LdPI&6r5CqC{$5 zBW%`!cb(|kd@%qr{`%GvIdvtSUEDQNreA6j!d4#Y(!w*~Z{-y&f#k=6>8y$fV;_0L z)ui20c0V0OEluE&xn5L+jZa6y)X$I_NSt4SbrN>JP!A~ zpFYY|;B3OafyzSOpDM_V7QOM}(+7tM^)P2lEBF96?ozByLYmbWht~-^kn7qfoC! zACpxH&@x3R2EeXFymV}C%r&4k@1&jo3DnZsn`+NrdHmp9>ri;qEMhw}5@Hj!FqX6d zOuC8S6R>`)N|a%0=9y4`r3NFFEq=k8;PkUcA6EbIN{Bw`z?~lBxxN}UIX!~HLPIj= zE=pSBUFrU_zKv;VF)RJzH@ppsN(-XZ+fFXE$+s+gW7V=TtW27Bvca`W!iYrK8G`BCpOVk5CM1 zSn4aQ^XrMExzZ$(iEv5tQlMpHDKAbf_OHr91+KF0Ar`pZfx-{Pa^m>m}YBDC1zij$1nkqkyL}>o348QeG zO7a|?^N>u?usJz&?ak0lGhN4&+}0Iu%VuxE$>=a?5Ww_=a{#V5W*oP9`YvUB!e>A$ z_)$4z-^Tn!z=)Dcz+h!@N&4hV(>^{g<=0g^(&rgZWX#ofraTKA2h5sl9p{B)%?)^x z>}uKM`ktAlA(O_JSCOjvFZaqO@~qNeI_b@1e|4%0y-EdtF~<=}a<)Mj?o%~4@dSWh zm7N4`1-f;~l*@u4PZRTE_|uTXqseqJxtoDVVwBSP+e8+bl$607h3pNXUMb2Tr^at~ z{25>E^4H(XV$g7z5A73Ru;?E*SY`a@%truu;0?wvU%p7?VIwyt&FoO-@5WD!1rN%x$aTRB|F% zUvlwTc`R6bRfH653Ddkm=GGwJ%)FFiB*FT{a|#>A7= zq_P0)lGl1FKr#QSMO-|nTU%_{o4xVG+!wE`4ssa9qOIoH?b8 zC+584_Ufz(Cqvg{TMsVJWgZvTRH`0!6tUtqa5lcv^Y$^z4EG8mmTNr`1jWUvkeHew zhqd*9;PKepvvq8m#t16i4p7*gO^vA;_KZjaxtM3Q{g7QkuUv-p$o36qdm>(hpAOh< zVM?II%bii+h6I;p?~EUP`$y?7}5OhUGa>aq%SeeinnJ36IvyXMPPe zi-C3g;fNX=rCB>$dv`fY+A#M6pFfRw$a{>>*7&y%{lmA(|!S=48wrWnX4i%pX^S(&jEcs?Gbo zWXgaPv+i3JER_3%?Kv-%VoB=jv$B;DheQu7pW57nDQA#>hkvl&;T_`QP9g01{(Pgb z>qDV=@DI!8_0H~}Az>PQ@xiHjM%%I8*=1YaYe9P5fB=YmI3OjVU3APqjmrcYI%^wHp9n402+!(fcPF?4ndXPF_y0hI@NIe}8{{{Il|Vhn_@M{%~(rBdZ$JM;{X* zHeNbsp`!SjRG`X+cUD8Ff?mIc+KV1NSdG!fjZ8&Q#q>uBht{i60F+;w6Dqzf4R_l7 zUP7lAXIkSiI;Bkvv|&89Hq&oY3$85th#*+mDX%ts8e_F{Vw#UjqlC1r!X#PF&R0#d zt>Q@ydwkKEd3K3~O>t9WyzhBYgB6pwy&^_9xbtyI<*d)<_=0Zu#l}z;^aV9Tr3ij= z=p-`^_*W^TM9{t%(f!1@-?llc2apMLmtNW(oCnw=0iu+Pnkz%f+>*Y-ff{Un!6BDG zi#Ctcn!i=_%=p8(i8D-!+su4r<#`*>1VVybsUS+j{KDTj8A@)DR_A0tU(&yI90SMEoX?$Fd-pvDHXv8~U$ zez#K+aKnFfXneK7pz&aSYa?AlE5=BSk?&S|*yjsZ*E2FFC5ZNBvxC*ey{AT<84I`a zd1Z|-m|)`B06Xe!KV8q^?HF2&LI{3zd$N2TOSRFmkM^dWL*^7RHN+=zjHFWBQmLRU zJ$V069`>#(*IHjG*IeD~&YXTa!CD;vZpl?N&j5r!ta}eWIdCN=H6GYWm|3G_uZFe_->ajg3OCqF>f<4!w*|4@@j@pvETv|mI5VZa_I%E2x!*KBT%KgJX-Z}-bJ$v)$_Ct|B+s_Ymw$TX0pfo!4 zgyJ==g{@ocJS{k(s`-z%7(q%`z%g$!VCe-`ot>sPl* zj}rN&YKrLDWMBVF={1^ly%1BDOfV6I8_^Avx9;Os>DFg;(f zc`eX^dDf3vb|8LKX`GW|@@aWV@%Z;zTKjD9;aY~^Cq;ki`h8gyTU?e?{;`NPoh!2`|dvWL8YYPR3kpT4YZ7D|_DY zH6AzML8APeap0f+pFWLE4ehw}q1IP|plaeygRn9q=g}fQBbSAfo4Df)FNx5u>BH`~ zs4EwbB^_EX)9>XEr%sQ{$((IvTC|jf_$vX7W!a^6c%grl$OXO;AwvOta#ck|!8TWYySV+7e7fd{&DW0`4nm?7h>J&PRwjuP&O~7QI+pawUTYWx!i8UlOJikv2Y+I*6-*ncBp2d z+mXU2YW>13f`xJs3)xP6e#!d>P0wRiZRlNg zfR#=n(*O^@cF}3XyGpCZegf!Fmeh%y04;T2=U2^5eFc)B2$(kUv85-;QuWCd@zzGl z!ihG3`M5g3y0tJ2MMYW?g4L@*gQ2 zvPq6t6b{K|8)}Il!;czq$RSYa_)-)mZ2>W6KLFOL^VwwHk>ozw7%Chu(U%bm!|yW6 z2H-2sv-=xEj^c6IXV83)h@^43bxLNa9xJ$?{yptay*k1c%=W z4i1S=6S}N#px$%usQ_RXYw)5co4m&q>@#c{{QA(T8Jn$#L-xsG`mSDuzdWy`7t$N2 zNB%qmIOZ zJ*{dzU@phG9QV0aN9J7lATifkNCk{$)yW8W`pS86*ro-O9U~sU*OPr)jvBa)o2_a; z|DYCZ_6kRxA#XsF3B&G+_HniTYLP`MRYv+BW-T9p5*E>HDQQD&NCYJ{NL7@^;_34i9z> z_({Si(FwTSAGduMk6y55#?wa*ES-OU-Ao?Rwa>n-wVzKn;W=kZoR1S8cUCEAWPhgD z7O5u*(KDT@vf(G_gnxhDSAVB^71R`QJ$_Gun}TF7m{a~~Kwiw0b8*ux^c={Qi?NR` z)8%^X3y+!PNRM ztPCfc9MZToDeIyhWP;Zn(|%LV*^h{tBmuDtdy zE_eTjcbme=BV~4&oe8j&Rj`W@GqE#r3itQi6z;qVk3+R1`NEDnS6W*Lu>4GM=R3Ky z3@aso+#))pMKPe4`pAeEp!MA;dEfR>I#>v+9NfOb7TkC)(+t{Lm+;;(gJb`wtQk_J zXpTnDo!=|Fnmp0%6O^(rBN@K$i6EJh*JO(uUc)#xU1u`-Btj-1A7lu^>`S^33Vwd@ zK!e9&o4l}zl`mqM?Bs?NCt*1aYSZa~_-y+aIKk_oCzIGx$eA-$@{&qGSbeMqOKlcd z+?}qTNiitB!HSf>Q4Y^=oBOg zR%F*Lcu_KAi_RueR7(P7Grg-f-0Mj5bHZ)%RW}T zc$V=0(hD#BQ32+b6A|dl@e+Z2e}_5pC=1{CROM1=z6*s=O?88l{T

EbQ}OS(nE# z?qeddZ7tHdOFSJ)ZHTxWnpwp8ZOioBSMK8gwg6jN4ca{U=VE5-v+oG29J_L#JBkPalgrP{{#mqT<% z>>dj*=pC>A;@5KZwPx?*X!&M;cNzupl8jn^cCWOdIRi|zZ&GH6^*rrRt)!I;#kV4s z?N8s*u+A#4T|VXhCM=jx(5fv0-d1W!V$Hlv{@agqoEC;3H`*hG`A;c(2IiL(=M&yxEuqMt~>YavtvHMX5=mp{XWz&Xcu=prorC#qa>tG^9WG&O9P9ggNkVA zoKVCC+N`YloTY8K4;w?ddP*K`aVWCi<@&$R=dT6hk1yl8r!_EfV;UF|*~GBulwI2> zyC!8TkiaUhuN30>)Gwztv1%_>Pl@zeW>LbG+Rv^5if32SIZMpRM+`ps3?(e;nzhwH zz)N8~eyojg9w#o4(EQ;Er=K~nO=$QM4db0STnO}5Nq`a_stCR77lWfDFY4$8Bq?e^ zyU1d=KrIHx!GUsJOw5I7W>d=AJB?Q2s9?L|z^j&(&dE#3cCY@GzCmh4A^~Dpe%A~I zIZTBU{}v^7W+?bBhVYl#T}j5vO-FlP{(i(wtK=vN=N z^`kjp>qlfj;hMsixf3=)_6vE?(nk;lw6eD>0O71~b?t*=Pl0%rC6DN`A=TRQwTB8y z^(j@h4~s5jvbRt)*D;$i%EZooA6(`~H%fvcVgzPpou=vRwh2e+Q zkFeGo8`+*x4PzfOxQUTSyZkY$JL5{NN&xFiW(EW^yFzxG#W$HA(Qm8|mRG*Q&;Ph- zGv&h=*0c~dCg$Lk{Amk|kby$>6?f+#F8=hUvYc(NNq43j>USDPKio{UW>f-mCNN9q z^~9g{nEV3gr&Ipzuu^7)Z&i|uh~@{2h}s7Vb*miPPq~R@CIO>4t!wR%dNQRzOu2C9 z0zj@j4Ke$vkm{-D(-F-8K5$OnOo+5X$~1)h_2^o&^HFtIv&PoOcO{XAOilCHwC9AK z=@Fh$?JSd?Bz6F0E8F^rb4X0yV@`!{92ytinYX|6-boj#9dHh0ASH!EwFJp$SCS8K zg?5hP;?=CQd@!VJn)SWp;Uxq0#xU6=Hr9IGXq-y3-=HkfKj3PvJi}*TlZh|(L)b)c z?;T=wlGKCbC0{XDW3Qp%@Js*|bhX>qJoK-C$AH{* zTFfc6j|;xTkwTaeYQf_hm4?FwJU$0ZIztVlan+xkByAMjTLHiCPuN*V|GF+Z)Edr zk}0Beypf$^s{2TtM=4%@J^zI5YX0HV2S4E&S=ZY;8JYpG6>(rmd56-sVX4<2kL8l7^zvW^p7#>i)ZxjN>C zi2U;l&>ZRF+}u;&o}Ve})_xyzRffN_0W@cFUv#PVpojyh4YR@f;g-J(`Cfc6 z^+i)kemJ~RZ{`-Fx;b@YU07@i=u)hksluDcnu<+Qw6xMec6DRCYC>0Lykx!3Kk%R; zl2CR5i&}U0+LQMe58ax5hJ;H2-?M$^KSFw>=x*xNWJTbqBy{R%oq15M*=3dHz^$g0 z@E^6N?)iCkw@Q$C;SrAkdC$#k5O0MpM$#r$*dt%YVQ=SS$w}2)>43oA# zBJiu9SqdeUq2=59B7MJ5DZD;o?)E@_17jS}2q zUlekZ&1J;|$>vcGmR%5_kS8Thw+F6zFijKg8e2Szxr04P(T21=J+z!~&pYO<99X`a zDcXqP4S)DmJr*~T$HdKZFxVu^2o@Fz*VC&!(b#(l%v=CZvZIrm&Jz>07%=byq>CAb zZyRc&retxih(kO8bs-nGWp+291b#mbPNDnLGf;_s?o(&j>6uHWaV$J5Y^qayOkR8# z;loJrV3Z}Ob}%%!5n6bNM5JBu?H~>7^&U{=XY6r?Mnsw<4pm+~J_07|O#3ToMY8lz zA*RXF?85mFPvN4|`KR%Yv_r)<-4dZ|(-L5BZ(H3shyzQxk|6Q+@w3t7eXA;NA`Rcz zkrDS83%S3{96GmH|3erzQFXSJCpbN3vjbKR1I6UkG`>3g90fDif(wnFr>0v}1Tl{o z12ROu2T|HrX|A=gO3c&9%csb|NHUtzJ@P!EF5)?L3^}TuGi(b%8t^50UgW*F*hAA( z=nD+$zqTy}zPh*=F0`oV!jUj*t{KkK5(z${*a`nwyVl=dS@0mDUcy-;P4^7Uj9Fgh zcbPam|CDqLOSkn_jZD=|-l%TL&Ti|N@ho~?M2b+$8cC+RKLf$Q^dH!y=72A(ROG@j}2lBuxf33s$_s8K)!{T*kL zs97g}v3zX6$pw?&+*lunfaZbgu5M=|WISxp9A~=QY9{uD9`*OOg&2}XVAEW!+>+Bv9yd3nn_9Sgt|3SkWf1% zP8UX6tsdQOb+w-*$K4$#EM@Dw=UpG2Y8A834CEB9y|t5?DKp=XLEAw!Y#zIddw9Ck zLaJcZA9S$-_ftG(@+!Dj%@tZtt_6o&9N}Up;Hy-dm(&%w4s$! zXl{OTWOILMYhLf4+~80U9nfz%;C#kFulNN6m?KkB&@pQud+s3H#!4JG6fX@tj&F3C zoR|il7Nr9Z8gqfmz0N?V9y$qf-5rU;!t21^Gs5U!0sFy){^qcPrNF62js zmsP7)AqsPDJZ@o7p;n0wXwHdG{v{9`)N*SUokvvI~=*#4r& zz!oFQF@pr29y)sGG({!$`xO(x6ami8@=5P>8c-F3q&@& zPWgO6pw^@Ut-pxe`#d7ay^*DMGM_JP}IX$ap#bzl^Z4*IdABn-f;Li-&U9 zBRQ}xM7n-_!h58If2%BiXKN1OJc>$l!_4ts>yKwh5%DeF55qgM$SXXrSR{U|EFTOSQ3t;KOscKJLeNjtN3o4pK|PK2J2 z--wcBg~8~67fB`stE@Ew(7C%7s+99(31Aux^0Q|e6Mb%@Kb=6?p6!^QDW+i5Cq@Yi zc>u|2%gnAtHFzv#9scr0bs1XoRWh4`e``&cLZ?PT;cqY0$4<1ybNuXk^xzalu;4F0 z`?W4Q@)k2ifo1^nW_Hf*vS_zZkuJh?a5deWtU3-{j(=PW->gT}fX}t;(lwKqjw(YB z9*ylP-J``QzmFQlQ%Dlgtcr{+Q=}YPYSq#$;#YHo2JKWfh9W2QjdYTLEn5L?=_o-3 zhH+1{ooXd|AU}Jl&)X@daDCFVfoWb>y11>3$u86jss=9J6V@5+D#Z5vW*A(i5kZQ;DP4sd9y^+O$S1Z+>q8Dqa& z+P8o^Jf%hIf05Z~camydoZW;3oSEjSQH;?2EM7t($AV}a@Af<2&hm9#(jhmb7BQ- z+GD*To+7{8P*5=b>Li=OMzfl{1*2@d(s@P4Om&LG&yF^t8yuS5rmNt=#}wNoA+!0> zPnCa-VnX&OjmgG8(zK6l?G>xg=y-2G>5G~eHZfxIY_%u-=)9YNh3TpPELX;vdPw~G zArgW`vt;Clbd5Rt`$aL!DA!*K)k z?01=XrT=T|G9~Y()bB{cxa|?A5c=vl2a5Nkq)fiy+AS8{^PA+dSgj(RFCA)@5mznK zT@o89=!k|=21e)0uwmb;e++tAK9Gu~9Mq4>=3+1n_tK}yi6&JU%cqG`O;ygn%y5vy z3deBCUw%64KUrvKZTPu~A1t!k%H&Pi{RMxy2H*!t5C3Djqnunrv6PnSJiA_=WKg3C zKKA;epdJ&0>l6R&f5&@(Vr4QxQy+b3R)l+*7C#uEP{HEk2NSdCGGbbec0$}?sU1Bw~gL! zV>O&qQ}jlkos`CA7aXE}MgP;eNP&SYwag=DRIS<(&;YNJB^Pq7(nc0-POtoN;_*Wc zUwD_+%O0bR3{6nGX7WAEWi48aeZhytIV23gOA}Sx|=M04`_$#P_GwfTOFct!BtR|QC z#<>jK>)22>qa|%S@jmki`@hXhG3ShfH?{Vc^@sM)w*ujH)Q;~ZL4(x^b`#QM_%&k6xm#Uv*}_Xq?h$9xmY(>Ia}JJ;9YCz z)2C0=nGC3osDT3;f)XK9EKHKFx6==oDKEY+JoJKNjEc8Mh#lKM$yQ|MINttr2n$l_hmHvJV>{~N9{%}(Wbg{ z-J(5-KKfHMi#9}aXM;^!?Ldf0%$Iv_$x5aB!LjiN3F6uVlhGeEg+Mg^xW^~<-^o1D zaY&X*hblSK57~+&X%9mT48pFatbLj=8I81IcA5E_?7J;806&#~G$j5T$LMe1yYNrz z?+=~-E)|@lf$XRSRcX|(9Hba0LkKA?MrI+;hdt<7N(&0KIe-)tYMpv9$%fv~{UQdn z`lr7iZt1cbRDqMEpm2M^q_@jtl+%NyQ#`n;QEP_Cp~7)Ay(pUN9wG&^ULM$ zPoF9Zbln1a&)RvV^n@K%9xVJk+PXb;#xGou^3)1^~B=KY0mK} zkrL!j#*+pYzcKdsP&kUxF4Tfi0Q?gb-W`_44>16P6>}9rAQ{geJqlL}I^<@R^Vf|% zCLZqqiSRPG<06%;Rj0TOYBlVJ>|7UDvhGcmTd*8Tp+OIzKe5h5{IHf%#6_nB8pBAbG? zMj}i8moHD}zP`FV^#4%x-SKR`Z`<8VOG{B|RIJvlQEImu#4c*Dwo1gTJtB0_+G&ia zy7Z3jb-!w{%ZXJzhvZjmux+(_(tgO~;LcRL+&{z8+a8i?Ayh zrOcGFCY~2( zi~qa5fPDH&_%A|wK8*a;fGYYd#wIy`0OyOsvvM;p#v2(0iH{5qgQDn1$EdRx8K0V& zv59xt(e_IEsTtG-md{b6R$ZON8{~_Gl%-`-jYc$Ov8c z8=1_y_5J%9&QG{(?-*Uj)Pw|P1s|Nplw!BlLwK|gwuvMYy=BEmu;S<|UC@mHt;=1> zme*h%B6sx=iZx=`q#^EV`3rs_P1Ow{4%$Xjnk!RlmbAL|6N}NC9{D`#A)Wo%Y<2D$ zYeFl6^WcH8*%uRe1@pjEK|&UNz0PGQ0E~5gcOJ4*Cp37&eoLqX_SfHA;xbRj|0*6-8lgy7CQ*5mY)t10AQ6c4xw}*P1sCg4f@}ZKRJvD^tI{RuxClpsTOnHZlX zgZ(y#Lp$<#jnlx6ewi&bRUyAIVFOME8n%PQ3G##Vv_HXakz0N{Zh_Ja+b>D$>%K|pPB8ii)TLyk_A+FYyG**3gvpVFL_T_6M3^R*s zTG3^}e<&2kh5=fZss-+1+lYvR^*&sugH8fll%lU90}7d&&UXXqyDP+Yu|P$O`? z`0jmT6!H_OssB77gyo^_6ThNw{W8LlD}7I=$Shko`hg5@LpS3_=lkKoErv_qf~$K1RLUhyXS_!y6q43z8$k6!;sNZK@t8oUczE!X0)*FCo)-d)5kr;W=2Vl zUfj5VzO`5Z zpSs7Wl*aDY>HwI)%V<%jONdZ|$h$E)VC%IdU)V%HL?g2nT`yq|T79pcVCj~f50#d) zrZmL)=X#4uXCWN7wu5a)c4nR(HTL%DNiPLg*;Tl*bFyPcaQLgF6^=?fgLv~Ru$DDfNkBp{>s_~!Y(ER;`C{LmXo z)dFZ(7&~rfr3VuhR&^M(zP_GB>5ryvtD}O<8tpCxK8mcTr>w6Hz@i<2Cn$JCgrHlP zK5RIN%kq)or46nClz}z&WAM~Kbg=uYlB-8+Q=L6?;l-*_;#u^e&?$^?`d~`%xCQE| zk3EEp%!(agSdT`Fpc#(i$l`tgy3%CuU_Qx>3v}X$?V7Nt-iAF$-t^c^XA1u4v1BGQ z)G@LY>*&zIO#b~pD8r<#^$k+2yRg=E)cEn^)70^rk9D3i2G(_Mi0pYBz4R0j6HDTi z^;GZ zv7li+1^t0?pDeryc_3t{Fh0$6ms&m0Xkpm`<)`oPrhUM&RI=2N@U5QC?$h@OCSU2} z5W;f3M9nAGfVc8S^(35B*Z8>ak+~^yu!`hD-$W+r8tpvPV26=no+B&(m{=+Rwg$AY zXlEQDYW23Isca!W&A{bGI7Wl8&=kB{x~8E496WI**ci0B$2qv@%h%p7@rkm{HTkM* z^@@=u+WJKdrpzXs#)UJC$LhOssTZppeWn=*@VYSLf&y}V(gWaGyn}D~mty_${y)r+ zp=7B`87)UC_&DhXEi$ppSvm_29$uaj>t9${__O0_U}wjppRF2)6z?mP`PFXi`G0rw z3Y2X}gKu$*oQuDcis6aZ_@-=0UT5v`^C>eLipoS@w~Qcqud(~Sw~ePvrc{m4BOP-* zy~bc=3m&o0+z^8$SkGC7eW~~)bQ!U@U5XagfR(|`%z`WzKl;A6nvswd@}MO1)Hs8a zq&BK;mdK)3W>@I0X~E#VQGUoYLCm_4H@|8~n3DqR?fNPUslE>B|C?D?40sDWx_$Ob0aCZgZ7>m+bVNOlt8^5Rf^-${MYI1hs-!XLxc?$W*@~r zw9b&aLyTgj^Y#CC&QJQ((;JmZWN6hm^(L&trkjImZn|VeIYliRZdFuN6!L4ue_#0V zLoZDRdLfxtgwfSi8~GSDD$XE^2jH3n;N55OFP*U0=Xl4md-&JCxJ_geM|caWn~#0- zY0W%dy%X~5#U{tcd=vBQj>$D-@{U=Mot^x=f~A4Iy_vn9iQ-9HNk3K9anu}ERB-fZ zZGG?JxQFGD+{(mpP?|9$h20%TJ9Z;cxlJaPmhUx9Hu9k}HcoPCOpz4LZsaeOr0J=I zrGhoA~pEPJ zbQhjd>y9q&Ctm8QDWAX$d2j(Kc^=k}3@KF7#IuT%kjmOn%ALmP{jWm^TF7+wcwxJr zB~rg9G2)@xQN~X0%bnnL)ep5@N8MglbGibDSO)&mVdm=;N9*itZR9@okKVNw#4=*lF}O zwm{LusV`q#Y1e2w>i030+LvEav-lAW|6g;tG3pry}M08Y7_E5lokH=!x>rrd8Ifl33PwhtXUST=!E~sZ z);qH}9Z1xwKyQdeVb?#yU8o8wkw zHDy$yNM__9Dn2Ts$GslJ&dNI2;Im{iUgs`6GCC?B^ZEFW&DHTL2kdp14dDy_LbG|m zRr`xXB2n&P>ZVgf)E4rZ>+;^lT*XcHl&25~N2Y?$1^U>RloZ%D?S9B)Kq)L)e9IU} zfk!Nj4Sp5SQw)+JDEY5`5pFt7Z%2CSl(XvRZ)2W%0G!{PRnx^&j~v=%+lq|?*3O;Z zBd)C+&WDWM0&@QQO<66ym#gwZh-r*R^3>T=IVDf~XGCFn?R1y+b;!TpI2HT%S$7Dh zWSQQ*9RdoAMu6A_mQ0%HtO30JEqa-tTUqq>V3k$>)7R8(-yo|`nm0+JFQ10hXW2E2 z`3IS<5sh*UiLT}6Qji4p(Y2xmrH;fKr{WrIkI17b$7;U#-^|e7eZl%FURxL$UV?9& z+ezCS8>HZef3efstjuliq;=}%9gH~_i{{@8+t;Gah4b%33x%uruRCaj3Ux(VFHc&v zW*2h4wKQaz8gK8mJ;6_{6&hx`zin#OS}I({%I`g2x?XxB&|~L(>+K_d=W;-BQ`?*R zr%;25oyq$~Ewd+`nIsZCG7Q!d6OXOmR97*f@TE3p03N8q?*WTlzrxiQxg?P^1!(cC#Y-Qj87Y_g7^i_$t zEM9q14SR#+);>G~s&yxQ4Af8@A6_C3ZJUoAkSg;$V<5i=NM9JZ?bJeBwx@ie+TBBr zYnX*+`ji|zqguq-rW<*2R`(=a&h8L5`&0A0X|&dzp%nq8_yDzo5m(- z?I})sd3ngg{GV_hReFe0SvT6G53<)iP(v$x*2?dX53w81GQ%0xUwxH^jtHh0(+$ey zHnbs4@jA!EW4#k$Dzj_(Oi-i{Z~PJ0EbMSFTj&FKm|fV+fvfsbm!$qP6y@DS$*7@q zJ#YRy+K|%S-+Can_e?m}9eG)!dg@P^6K6Kxjl*l9znP9Tf?v6U%e|Z1-zR=>R?5qf z1nr6wz@vIOcH+T<(3EB^6-kcAW%1*;&$Y=|m-JT>mS<*c9V$;F1|s&B2lKr&D!;x3 zogE1Leavcl1|2p=H^Lm6BwrrRz7pkYa`L6>`EOZtwmiIoJL!puPU0q$r$ab6569dq zEOQWXr*_ZiK3|kR5Y^D?p*x9B)!2>DI^%_%)2J<*Pff8b9q~3{hGaq3W{zHej`Sd# zW(<#m$NT%49#%I9)=ZLzn#4K9QjRLb^&2sA;m;yvc@z6jo<5G~YB_z!6wrGq_4rqz zF05Bi{sH2cu6*-x61=@BCIzSBA$&njCC4djVUglPzxLFoMM98S6g7nwlAX?*!n=f> z&tCg+G+ZFBQRXCI+XJ5LUeTwc1)m^VKj!#_mVkE#&F2>OAVjV_Li zwi97OxX-u`igI+EZ{2hOYmnc!NoAE23r1Uo_g|+JPZTfctqUS!MWjq?S_>_If_|^c z&nTiv&r24)l=r+hc~-ks<1EF3=dW z2L?W#SjPL17Rlaj1~XYzD+kPeW|qUyy=)$T(wua2cJ21U?3v=2@}q;Vb9Eo%BVZHN z8EG$fUg3`W%-WFFD|b6SIs?!G zd#iuYeX)L1Jr47mh9misX4Z}>J<*#Y1od|m)jnUR^0NUmAislEJl3{y1l!F}^`T3ccBC*^FEde_B=kcMfK#K+U3kWs^W3Ro%)t zCQ01oQ>1c@w4G~tw_ALkj2+}T^xlPH@mBE{D~4uW`LK0|)z3B?(;K70od5K7`-xQ> zdqgBj^r~rbdjdwwDB-J*P*#1dUX{@x-mLz?npsgWF3&}mAcDDjikTlF?~ned7LO6LAM|K7JHrcU0+hp;rlnR0 zU4A3b<_0w$pSEe^(U?n(w@RgT^z;E}q&{A=jk+u;QS5lU7OW~)YUszq!%*pH%jV=Y+o+*TIGRHFI78eQe`4_ zU&Xuye#N!iMdz+9K3qyW(?a+>32C&Z)u(RmF1uE#NYue3Km4;n4l*>W+asE2Fw{kZxAj|HT^3MCW`m)FN(*;JGa4S)_cX+1(`{SjvvK0?o{3SJg`G}4U z#l?|A1{t8go_(*mP9qNw33@UW`p431DzKuWFD-)YBsAj&Gwjd2Hoe1CET;ViStQbT z=uxCEg)Q^m#3sB*B0>i+@`HT*JkxIi8(?OdetAcy5a5PHI_QdxzJSbIdEl#b|C@0z`iFh`jxjE25mb$GsFE^LHA5`M^FDpQ8u3F|t~*6Cn} zFY8r1GmnDQyXXzi1k)YGc%qzMMq$kFC(BmXXW4jtZ-}tHdR%>D~8C*9umE5tKDC62WX5b48x&Q z@t*)y`+AVs=D2A(ylh zg^d2gc4X2`?79ZTCy%dP$Kj7q@#>EhQwgj82vKxRp7yR6Ad@~Fk@0~fhr zV6}!-Z=c*VRNPz~03%e-bcFPH@IhvKHh}5wyy_(mf85g>Pf&4^E@N=SCLh5#&5gVj ztp}`XcmqIp+TUN03b0lMrX37`RdIOWuP3OW3zpkdOm0u1THWJ5$;fSbmx05$T436V?Pbp6X~lKK2ax{2IBHd`a-Gdtc`s%YL z1kie$g}kTnF5-JbhsF2N;+@%bKRJ4wZ3S{)SsZS0knfY@SYYLLdUJ!G)ObNc-_;87 zbRChP@|7dJkiy8p#xECh;SV5QPHUap2I28>T&=Tp`>|S+ODi^QQi_2>&kSd@qHO!O z&Rp1iaTqOQM4!WQI4#BN#f5$hLWFQK1H`-lNBFRyk$v75X!0`|bsu6J7)}t?Yg{FN zCdCkov@sb>zokLwP}cxi#G+sPyer^yF=(@Tx4yBH^9gD}waE5Y>?UGn`Vl(&%Np}< zp0l{@Kw#R0Y$nsutzxRn_(T!ISE&I{sz0sj03Ilc#Z7I$jKR8hMB#jcEfLMnwSlM+ zXklh$lTHHYVze1yUON#&^OjOYyTF`~BlhY5cO2LXHf2fxT5+vA`UnrAQY|s-7S3M^ znQk8}cNMHHy*sszh>w%FLU+uhS!Rt$7ZnzMV3V{H3mc`pzC+mfD&2`^h6F=I=tbx= zu~0VSP!FDkwJEI*4UK2P%h&zZiJ5^yX(w^B*lRkeJBRM!Ao<67*(CI9*chAE!Ba88 zgz1Si4#BL#V8m~oieO1uY-%w`X1Z$GyNvWR)w6a=>2~jDU|N*_)g(Qo2@Jbny~@6N zM6R8zZ$z2RGm#rXZiz$=xq< zwbmHR90ojV1nyGKdf6_UKP=sapNO8ChHce#eTQv_+(}goE6pO;Ybt8S2Hf7gy^Ef@ zp<1hy29hy$UbRm1LqrMHO6axo6FJn}^u7+;VN@-bZS2Dq_J2#R`wK=JpUa;jq2Z>H z(@O8B5!Cult{1#G<`T)Cs&v(2u@9ilz!7L;a_owOS8Z7oq!}P?bl?_KzM>VkJ@j~O zj>iaf9ucoJ7i$`u=xM&&2Rd1)8?tBRPp~dBN=RX>Avolq@ICYMJ*PH zW($~9f#)?t{@@^k=nj`M+I;;tIr?6_tLMYbwv6fn=_0Z~fBSLR=%Z3)Tsuwr*;L3l z-I;uz)>Q2VlCZzb-tgMqK!gSRlJnrdgLxL=(fD^HEuI3;@Bi9u4(Xmr(bZ5d-AzgQ zF7+qCVPnQ}|4ilU)5izs9^aZ9ko}S=`@Yv7)jFUZFPeaxfEp9df?7_!hAeZ_8@>e`QRab zkB7WB7%?W$Te$4^@H%<#1&5ON{3XJcAWQT z1a)(g^+dT49unCkm=r>(p0%K$Hm|KAZt3Nmdft44217yv3?=vVoWw1C4OH@@O$LTI z$7a8#mK@5^@!Pdq980(J6W=5)VPq8&KO_Ccah_@C&+A_}3hDMCc>uT#HXM}fESWAa z5it1UC<5nx%!9UeR#}Hm>28(r`jZb*Z9h+2skkbNPs4uLv82mb9}H9y?z3=9+TAk{ zpufXgko=S^E20k^#U^cA{7Nw!T!I7izCg(Jg3Q%X|Di=9KWN7uT>x;a(e)GQg#bcO zgL)Q2G)k{06@qlBDvy!Pe?<}}6uBcL-hj^jOMYCx{4W!r7;4eE_kI#k;9|?$cuYuN z9=c|l>t{+SUYE%xd?*#E!bz%Zk}sHZ&mW>nB7KcoKrgD2mJXHqhT=i3ui!+@XbkIl zU}F^X@>KL0Xsyh6?9YiKGvyt_q>bZX#T%1)J{3CoRf%a!(5bn?zzcClDIc93HMo{S z=J2xh8c@r+kU#dtGyPCP#oqcKevt`v2DZuq6Dd_U#y7x+b#$X(3nuG=M~%5G|K8Ub z>822MaS7N&_rjdBb^}hzV1>yur_a1u*Ijy&SM1^`XD&AqrljpH2yZBhs9?@(uIS(P zJ=z`}3dqi^K+{pc2YMW*?JXX4Xb7rj#n7XXr_M*TZ3+gaZP5R0z;pL@IJ?dRi?HPEZW*slBVz z=+2~@)lq+N^6Mxm#`kC=ICvAkW~l7>Bk!5q+SMb93DA^O^gg@nq1Nu71Imc%a)ZR9 zrrW>A9S&!2_Dq-hVE2#i^r}5)cYgIbzN7!5#l=UNltn;$13&G6dD^G#NOo^A;7K)? z_UFyTA@LO0oHgnQfUksW=st1GC^#dk#6ajPDB8l&k zN*B_Eg`{@UU&Z)pYg)T_QF4BJ`rNZu@5dhU`E_js^cp|J*#1yF|5Zt7+w+NlMW@AQ zeT9%f@$H6L%QQQMh%8#gUeMl`nks2{W zmfy?m(a({B-M!i<%jl2CJ1mVQ`u+6JN1{&;rSD`2)Dn$kFk#_%~99Odnw>K9D;BHDAa&)aq4)|!cX;zW(aPpR4n?~cQkzN;HW+%4Cl^1zGr>$SWe!p(`bqfqRI z_`DjUyN^>arQ3ObPJUpkS8HlpV~QKk^r4O%si=GM$Gohi$QD*E_RYR7T@NaJVj8_6 zEFMaB(Y-7)dixODC;KP+K`L0b!9YY6Xw{3+Oaw~E?AW;rnWayewl@ZEa|AU>_PM{yzpfX{SsT&*+qRgH`4cj_pB$k1`7XHeTuPSW%{!ig1!3SDK;4c9t@<- zdV-sre41r&I!|!`^tqh_Nwi<Cr(A+2Q>JJjV+}vZ;KtRIH{?*balzo;r@we5tA({2qx-< zYu}bM>_<#Ato>t6^<=20D?^@{epfwg8DrN*iAD%i9?f6S$`Tb))0km3c6WadDiV3} z;VMEJ_q^>)@Mf<(d9z=eR0Hk$p8BZhc2X79$eJ<%)j2gGC;7D!RJ(h##;BRYH;TubCtBhyqwnag>s1!m z>E@jCK}k&k@&y4a0z8vDZ@2>^E}cvO2yUKKs8wlN(5Kkrg*G<1ZP?4*M;f8`-jLtPkTKK{_Tn(H`tUo(Q3cfE+q`h zNzz&W;fhJMs08_pOQbY)n7_OZS(A~(cH31u9w8MZ-tN}*zvea0N&X&P7Y5Z18{Gp$ zV*ue6%?I4MCjK*Q$N~k8WVi!ua1k%SGSxb0 zV`_V2s%$3>7@5BbbcQBIbC4wzD9*oo-7}U%`!%t*t>%A7=-z8tP~!?h{+Xyw4C(V3 zU!Qq-xyDXH0>S1zUG-$S&YSMs^r$#d`PFJ~+otp#DjEgTh)9~QEejloX|rN-e`|I9@`Z0F zXM0Uh?~AUGYi`JpJ6L;n&z260RVB<0#A1Bv#2*u-ssP0^}|Nz<$w6uio|_=t1O53znaX?s3k{(ydnRcPq^%_MV~ zA}mZWYGORuik3)O2Z!ykpLiq%JRXyKVy*uerBCPp_>P1PYa{+#DQhWz^|ThJ3i&j1lGNJ9WgTRbZmHVy;ZTD8I>&@&Xn2gaN1wIpaxEywfqa;YM8{TR4D%av^$ z37+OjLojA*GhW!&Kp5Ki`8ChY-sQXakK|tnF&v5cq-mYCzuuN7L7n#*y#e8CbN67> zt}+plw0Uj&hx-Ytp+D>--r9M8{dx+HoPccU7-#6Y)vpRQQQg<3t;yuNi}|{$He`9M zHW?hYe4r^$r4Xb1SY2rYLoYM!*dZ1>)Cplh+RwK4om7!fpcS1c=w*YBmRYQ4(_8fS z_Mv~$uGU2-xj}JhU?v}(A!z-BUR4pkS$a6Pkt#jS%a>X2NOD#kptHD0$Z* z_db!tn-zt~FQlTiP}>XKwWsrC(@^3_pmfP~h}vswn$*))sCEfR>mk@K=}uW4AgWws z^fOSAQ>aUBsobI0F>DuP%XpY1~{ne2R+jsKm+glNfit=q8raPV`YVF5jr)r#JD$xM!p_D(yT z4p6vrd-jjyNr-1lqfW$A|vsNCr|*P97sx7R@fp}{1*1{c{ELQkMRZ~ z%&^{N*8hx9C&c>t6MhP-CVKzCg2NK05o~Uk;_w`0 z;1HvUxLlZ7r$mM0n?1C!OS|913?QiX^*6I`gm5K8OlSbW&V27%hVyD7-B2_ zeUv~&)i(sb=H-_rNnF@SJfzv>MBicLAfS7^rn@Tsts=OvYO}6wv!A3pd%yu{9l7h7{tl%yqAtvH zq%_%e9P#TC)_>D|j0R2Lwr(1s{?dsyRS+Z?4-Bbelc2M~h;S7ii_XA04oEPa2ol$B zF^H~u(8P7z=3t~j3Jt@kZm!0OR04ySD%2I98Ee+q1&2%5trnb-idShkKdgX@QL#GP ztB<0$mG_vI8Kk)rMdE)e0;cX^^jYjisT0a`$|MoIG`D{b*3K}p#?|`FdWwNaow7mb zEPfX2Aw&8YR~6WILI~#l^BHm*^{rHqORN68OPyuM_GzaxuqIt++@G}@&jmLN{qv(S zkJe32!aXXARKxY)l!vnCvH`t!8wj2(X6g%|EK;HN3o(RKU?y3mN{21eUt?>cJU5J>GCasDNO%+fk}GuBi;@4cyh}DuLk4<1<5RgIzMZ z*dUtg^qWMlDITQWPrF6=GWO@k=Io@{($|KE)7H5xtPt2viqGaj4SHAARXWob;q=X- zeMie?*gFX4$#&F37g*DXp4UdZma36cr6wX~<;6Cm!lJ*XEh|BKrS zKw825(){hRN@}G&XTAYx5Iau_&Bpjc1FX^nM+Sk4&(wUO^18JlY8V%M)`A%T2OT|Ks_;5# zG2lez+IV&PpWURP_^F2B5|c(1(xu3cVRXn(LJwE9?rfW9IPJY~xT3(1rl#`~vUVTR zuTprxz@RQbS2kow>H!!}omyg`7yJ738!{CB5<&D*P10AyWyjc{%R|w$F2>t`!9?5R z9_v!_fUYfIisU|&0i?aW2)LGT0mvx}(3AOdEiLZCsW%s%(;+LpxMl)2k_+i%fZgC@ zl5Li5kYI#*&aMe$_Hn7mz5G$T;0_-2`Sg#mn+*R|V!WxpA5}H;2sQW7F}BtF^1qy7 zroDw;!^J-(ITn$=kEN0$SNkOkJ!~7t^RH>kwmQ7af5i#7_AgKI=-=9l&PV=BVMzmQ zKN&_uoPYMr0wk!Rk(8Zn2;E)F@5@9p-LA>ByyC0UQ*((3_(G zHeRBiDQ8^faI-3~kAxR?9-sY?{WV8fbCgiNExh`m>R$TJEf|709dKf157}vegu+{6 zW~(lqI(5hEuax9pI!RPqTqEsyS^{XZU!87eh!7*3$9URT@Dr}uZs}FT)cF;dmb|mZueEN%YdEu$>6{>*pI3hx7HU~Nv>&3E5x;bGLL~) zm+LQUA>9WDQj(vGZZJAUZF@!f+HQ!XJ@5kPr^$9DMG?OI;s#Ds*1wpVE9>w|!a@HZq0*X`}%Ml>yICIy$ z+q>eHrzlpo$6E-&CSAr`d4FSfm4$_R>uyqW>5*CZZV-IP0ORlvaAj0Uv$lLa<-qGx z#%?M7m7I_NuU?5?mdS%am))C!vg1Arc~U*%nbBWgmiIH_GZ1WN#Co9TGA_q@Ec^hL z6?@xtwG1pXQ#wSOVUc4#^MqX9sW`ZNKE!t~?+@{ZU40>ayovZs14(E~dY z>+928YkgxG?SZWW$2&w~0J8bq2@Y&z5U&-o7*yn@*?1!wqpqEu))8lox>l1neKg!L zD%uwJ7{xm6kOKmu=%swaRRsNV>epFP|85zloi&|#CdGhhmx&$)@$bEzb%(Koc^p z-3Y57TPue+t&f66*~xX`vcpBHa+S}!-RVGQ$@1@ypNDt&Dz%g_Y0%?u0pLE~eiq70 zU;n2bHUF>3cgFhiYj#yr*xd9(=>UgFqn8v_Sxc}!ox)6N+!oP8GYZi-mBNxBq+5|; z{q})&j38lf#mbnSw74Z)U{;n7vtVOE>vOwitJe_doNr**eSLOnG5d9~pgK}*oh=9v zAA0qcCx_o;ezb3_!#~UTw)KyFkN+~gdw&t%S;U1Lj@+QviELyDOZl!=k8I7jv!u5s zCt#rbd4qoEuFk*H|H1$I%N}epbd{S%Ifq4vrxg8t1}y#)-Z^kLMuFbQg_%9=;*-ZRh%Uk;XK?qk@%(pd_nMnZ3fJ^E+cDU}_= z(`hKWPvx>{#S!Wa?!u{0V(-9k!sN$j@}`~E>H~I3V%6PTNRP=$z{9}2=oVbvXU({n zb#dXg=iKNOJ3UzCl;qG-p)rYh!H3tZb+a-FxnrIdr2I_ima^{K7g&?$rbBxHnxS`> zw8nP`5q!7Gb0Q=UKM^WIQjt6mPCUBgZ*u-OLvh;Ny+i1|zO6FQSLCX-cf9n>OBJYC zukgscAmZDDTUQ4#_%mC_wBgGlyBmY1r(O6MMVCmsXLAiV>F3mmamtLN7o2fBU8Iel zxKH$R06Cud^V^k719{EEydQn6dz_2?H!5~YW)hR1c_U!Ate?a~^Zwj}hcWZWgg$(* z^fX_gb!DSS?c^B zoe3K~j)N{!HILfT-VUPG9dMh*SLSWTs?5Yf-iChmSBevZG~>%l9RAlUN?0K(tWt+o zTWC6MGfchqwj&u}R5GZjmTBOH7o&+dp%fF%rUH$Jt!X3g-buXi6-!J~6eyeKKJXXljh}Zs=h9lTu zZZJ{wXnOqv;{gvDG-KFn-{i*wq-6;M!<(y>p&C}=W#bNllj&;GGiJS%eC_&x3mJog z#2aM2vW#iruT&+68xuGfcLrNdnDKV=(U`l^wqy3%xEDB`2o}hTlC{4N1s9I!Nv1G0 z2@Yjx%k;kPp;}p&+ONyqd;4oQ;$^y&irJfiRM^BnXZUCX{qK{mG}*(D z2^4RoAph3Tc&IG>)|y9{f_SZEqRmKAsMta^Sk6>Kk}?f{+SD96mbid8uHXDDR$+PWt@u%S^`VK|D7FKT2HI@xcng=V4fA+*fxjX+>yMIdW0-RVzv3eR_c z)AoVb#;)%o0Y{;4ye%KOS3RR^x~wkOwEUo7w$TT$rj&CyQg)qdx{Q5QWLoK}DcV#j zA2tO?sBo(GLm=H<&y-7Qxo9E2$I9m0-=VN$b7NfkI~riQx5;_td=uL?dop~FpPr!` z${c1@Es3ayt2Y2I8N3Ao#rWN3KQaF5KB_-Ie8bq9aU}F&KTnZ5 z{Fai#DCtFpRL$?8`0N%g5ir^zRpjPDj?(}RZ)U&PxMEY{P}F0An&V-xG^9N7lp%Vf z@b3b|Xd4NB^Xo)a(2JqY>(qLgX{o>sp0G~QT3UnI0>27l-t1HuPrAfx^N%GxcD*50 zav=->Sr_V=6klb(AcH$1@CGYR1)@!605nOLV z^s^SEb+It9GtepT^17}tpLG}aLwO<%tJE@q-(_q>RD=ZGNx&G&w*!$7vVMY_5*=*wu%8b0?L}i0B{})P9o=zVwfx z>5W#!+QbUQ(&9l-r`M(^*_yy=ly|D|nPD;y)ZhI0Y9rlgmh=YCPtfU1Zl7#`?@dG~|PXt_P&V3?gS6O=6t5mhzKTnM@ zk8fh6&kvRAHd1&Dh;A`dZ2Xz_^Jo+vw>lcC_mNs8gf+?z^Wu8{8E;F`#UF$`g@ZFe zaQ=IQ(d`0vF#i@Lrs@#;9XV$qL&)WD#J-Vv+hBO>IIgB!L56T+M~!Eg+g8HJ$%{Bo zO2aW;t}dO6#or(gxcU9ukNx7M@T+3m@eCkS@&8+cf&^jz$~@sk*6tZeMg-eCN}7Vl zXOI?cpc<&5$RR`cbJQi4s2*xv>m7qprIbCLpj~4eV9{v-TN-myku@EW6=_t(4fqVUe25ihg{a%r|XOfm~uYszWjWXl$?hJ%rgo zE(+K>w%h$KU>v4A={=Wx1(q%Db&35-=eYd1IVjY(Dpo*rS~Wk8&u&)R2n|AB+#S zxJq4q!B0oZ)<3m*22gQtmu=kX;aJ#wG+@ywzv$N#OuJ}v^AGh^u?YbB zn`IQ%e9=?|hD$p?DrlQaiW49SwZYHZ->u}Rh%u=DX335_fP7y1WzlMyHp}34l&6*e zDpl2E{>ggJ!_Y3=6(D}Tou3+Vx(|T<>aGBAZ~O#z&?G^XhvjOs|Fqjj)sQ5?<07sJ zjNqA99IjlG$lzS{y4xD<+j6)bx)vor{{8M41+T*gukn`{UMG%C9u)9iQzI_>=TGi<;t_3^ppx-gi{de#4@>0CyXV;S*E9~3b=aeINK}F1ei`_pOjVyjE!$=aN z_?OX0{As#S^MaRA6vn_O6M;N&R%LHw)oU@PBJ7Xx6ScU2!dlg6kPIEe2lE8^6XE_b zej)=JRuWLB+~mC#tga}>0@LxImXvYPW}&2W|A)EvjB9G!+DFxGM?p|PL_k85u7dQY zQi3$4cSIx*ARxU4>~t_x>52iQ1O!4av4V66Jt3e{1B6Hm5ZYbA?K$qV_j&Jo@BM$c z`M7>rbImg5Gsbwvm}3Uw4oHfGUL8s5q#R2?5vf=CT}K(w(x9XD!Y& zd)+MS>56q9aR25sol`^R+IRDQ&&s*$lfzAj?WIFi1o|p*`*`to_KVmkC2P*Y<%f_= zhQZ_U$1F_mDc%lly|2Y9%1BQNJ>UDoqe|vnjQF4@MaQ-3AP;Ynv6UdR52g%WXH{I7 z#Y6V!8+X-84=y(J-}bvwdn!L*gmdjPm)F!nZ$nnVCN+3wS`>|WwKG{-Ij1ha5T(Q) zqr}-1$jKZ~cRo*%>@VFXtw=dr6N^)t^V?h=SX&6i6?aCS%L@Ndd84dAc@)J^Ne7Eu z--;YR`$=H|H?IDTRFbvB?MbnV5BE9Wk%faD^OzaquG%WFKDx@J+cb45&e z7R@|~#a<^}QWzJV%e7J`${HCHDhJ5j4 zSFc+BI3UrZ3b;5jh(?W6cL=hAZi7zeTLhbAh+TBUgn9>f4vdf*iOX<8s*VRD4I+S4 z8-6~JDAM?NIn(4(32Z?T-$$qii~QN5?DUnk^DR?8=1`{5(M+Q8Qij22Z$epy(4KAF z6CnvOapb5nXl`xkg`6L_Zh`ej_dh^RFFyKXpP*W&wuV2(%TA>e+-0g>BQVZ2zQIDg z^Y#%-J~sDC5%;*JqL{Kx*mih~yY z<&d1NSQTN~NB7gbY2bH3lcv}8`LHLn?gt2Sf0;`Jhfbv4mS|s$^m?=Kbl=Yz+WYIi zxF@s`CW1P?Sd?2-l(}`$6P}@5zr}>8%Uv8`S7NkumgrYOzJGcE1V_XV3#y|g=ZqmE%_SD`kcb#^{+pCm|%Lev^;tcupn3T+lx>;I0+NALJGH1NxP z?$zko-RZ3B`;M(rQ+mxg7lXG5dcJ(FAI`CHMpPvj33vANyo%_J$ye zz4>DDNZ2shbBcj|oPo}HEWaU^jrbf075Hf7KLbCW0{F=krgn5Az0-Zy73DiEOwa|r zEs|H-`h-%{~UPS!-{_n^2a7LWI(hS>0Y7L*xBO-wh_G zkX0|-S;vFTS6W;G3ZFj-X?5Sy(CijZ~6bUOm4U>LSus6+a+Inb%UOwER_ZDfr1~tHmn}Pksq=ZCJ1aF)D%Znzu5fj}J~rGu zp=U-t2s-B?Fhw7CUe}&n~TASEdX?^P~Wx?vfox`>L zsi60J9AjUNvzv*Pt3^f2#`wWG`NYW=!Aju+MK7)?yV@!qo~)#Lq%I{hWGv|#W{r|U zT3@;(Hc76UJyyWaz>sWEr&t2kVr%^5 z8v1lQnM>|^JE&v(KAV|d79ys5no@f@iFcWdtM;#R`6y5Su^RM>7srbf$>a&PW{Gnu zRhUp-vxpO<-g#(@&BraamgQR|-A=;3gfI9HBkt>E$&EBW*%fi;9qe=9O;Am1EnA<{ z7fpuMOvAsz_#WPzmRa;;ztY=DKDpz-jY2?Pb8MjP6ZzIM8KmW}%xBmSB1JaDq1LS7qb7RN)Fh0&pz zCaB@DGCx~Mydw`kmQT4Uv+wKHzv3PMt0X3e@Np$^(vIg{{pQGjal_zyfmXJO6Wi54 z3TKH}Qh~6lQODPUF9D^hIG*aLIN&yG*Q`NJ|J5)wu5$*?CxmrUZrIG8Eg1jC-gV+_ zR2=RiNYRd5`K7%7E<11veO{u(d3ETnP+{T8aI_U=I@xi%Nf0{_g}!PqZ_Y9)ilBee zRBE3;H{fcJC4%)(PsQK4T-8hpLlf7-J}q-Q)=CB}9xsV=5JXVOF)sp=52+)h5+sh* zrn3!fviLns{-#tvsXbG+@L68hs@tD^cf#8MD5#w0r-s|MH8=K4lIBFjTtrc$$~n2; zB~E*Md}5gF((Bh38kEll6wM%eWP>`YAzf-fEhl;>$VSRT{iwt{b&xpkc{b>{6s*ZC zHo>73weW2^zZk2;SzW>YfbL(ZsnGkcs^6%Z=Q-KymM1{@o{MQ3E)DNP#5{45hzrWS zj%2^WgQ7@a{Z6wG9nY$!+OMQ$nU+@_i$p(Pq)!f-k8^UBFas>j9nZp@S3W!|Y_VYZ z@=+zI7YOx!dl}YO5S`19McmPBpvuER5q1h7lxvHR?J4~dum;n*VK}-<53WFel98Cx zaPfJ?Wl7JGTZkCR_>%ye+VhtMHb+!K@}|4<>auM{q^_DOd9w|C?h!`Zl7vk1Yq7?NJ6)=S@#}E z^mome@>yqbCzok{7-uAE?7EG;DRX9m${KqY`p3DFAZAMCj?pp#**dXcEz=|(f)9`) z2hiB+$4V@9R@O1igGcsV$oY)~INlDHe$58u%eO6mi*rFSX?x2r-_bd51b1Lbd)muF zFul*^bl9@rWW0NGLT39j54PT#J-#>hY$0$H{6bn~>~U9vRU)$k-)^T*ooj)rIR-Vn zy5I7Epat%TpKMwFv3yNr!)mcVEVDmWtg!MOzX!|$H#{Vwbat)>{*ZR zH5F-y?c>}=Tpw~mhFG-h(G2X7{Meh;MpjlzX1DqStb!W0{c~i@)0|EqAVUq_s~#fF zjLI$|!ywpr!=%|U2ZeG>&#WBR0^hyOHeYJ>r~V2n{zi*BHj}JpK%^N&S|Cfz%FbA9 zSi2-^3tZvZ?#L*{mwcQs2`g?SAf_E9um|{h0|=frw|*uWY!ZuT+{fX}qR{U3-J zt|YdDHMjNxOhw?Vp@xVB=P5G6Rrexbe?7>(c?art{GRcU*1iXk`}gS5a}OX-rrvkl zRX-;g48&=HpQF>yN#7?4M0cM3NxR>9_iw`g(x2hfeSiEGb>RkLyhj>$sLlaPEdnGy zT0@eD_J{)LzEnmUtIvLURPRetRwHcv_#0L5=fI@?Jh!w)Ibjytta|vvF+EgF1JSvH z2~ak)cNKqoSK1$uWCQ=4H9|O{+<+JM)DKp)p-a3Nt%;m8jk}0y0gOi4_kJ6XjyW=I zd`)A{&t7+z9{N-%o}ILrX{1OFVBX$LS|z&-ROOR%IYn^y8yRp(?tmpc!r!K@EbXMw z)9Q~IG!L((E;uFm){uQHoU~^Hks0JS1Jp&%wr-C%^_*mPUwBDHrOs+Tu(b~CnYF2$ zzs*Ei5%`E6GuD9zf{hfW$2+HT)q)F$t*!hT%3G;rOtoOYx!H+`U}pVG6_?+t$hRpd zp`ukG$W@BYOtXp&gxlDA!*|q15M57Tv8d@B?Ub?in`czR5n`d1qjrVj%Vd%6pc8$I zU#0ezOQn~_BK!))^fJ?e@$R?i;pGr!!eB^heZ{8l@^KQX;}1ShrzwMEX+Ee^T7+1H zhuLY(3;+j6gNzOqNFCDU9#!*b4F+;-+&3_Y#F01qG2hwE?qTB6EF*OAaxXOwgP%-? zQ9TYKjGN!piI-Zx`>VeDrBptP@Io%`9Uyox^?2|2z)2N}>&strg|YhSH2iZ} zJhqoie6`RFTGC#MBgks(D6Z5U(3MQH%1!$*Qne8ly| zAS}CJP(0h9`}0k=QU0n(`wGsV63sx9XaM#Fd#5fO^~j`!x}?nz5Fpq#$_0n*PHn%p zd#8**Qm*g&w@jry16;KWtCn7%lPZ#bZqK8C%3A*G%F4?3w!l+K{lALB1#j98J_{K8 zdq2&errY74k6$bcU>zv8et`G)_b2p@qU7H!w96icpEz9;Op7q?+xJqC7QAXnmyWzC z?Cj_qe5hk2z%tB>4Q5`|y1*?bk=un1`D5P;S}Mh*Uj;1oJT<_(Rhj*9a}l^C#;(aC z^sf=S{4+$Am#JmF;(2Yoo^RwH2;aZI_$~2nyiDLY>LYO4e(%#@CSYu737z0%@mHNF z{H?+y6x2_t_}%-@p(YXDwm{ZO-p2BD@54WiSk5(g|8;=zHxb3{#G9mNEVpSV3*v8s z2J_9FDo&_)HVJ>enG_ij;rRVixMaYJ<2h;9^OI9kzmBZPaP7Hsd{~k8$XeiDh@SUb zC2u-9*b=yowypx%qc6o|6MZ!Ir2@xbAh#h7yewUpb=3;4}iknAOCc@L0DX1HuG#l4{>-C@W^TZ<9Db0ZJ`7M zV*!!VjyQenukQmQhNQWUC;vY`?)B{aT{yjZNYcO*=!X(zr=?H)O4Z@Dt)1Bm>F0l3 zNnd6MWNU9MDsh*ry!Hx*^w|bt=6sNbI{U&@s@qM7nfbeH}2LC2$ zxsk3wg!Yf;a@t+87}_q{`|%#@RjV39>LdSn=+vrtE| z$)1oM7Yw@&q`W)D4>Xx#-Y1B^T4@t|#Ug5MTH}3cQe!9<{HdJb<;LB=cac9w0()Im zzRL9m%Dgh>V(m$0Vq8?E*W^jq%(LQQMteouPwVnNM_VM;m`Q5;fm$e$X*eA2@ZWY5 zln){D5_aY0e8qQjgAO1gt;>#Niec+TNo8K<`bONFy={UZ5+=C)9y_J+QByP^zQ0dA0C)LJ zP+*`JcsWD4g_#&j=H)5M@ek@EK7 z-J}yj#|+I6IFDs_c%-_wg_urG%=TAJXUzU@GOMO3$oonh=Z5rz4rrZMp+$KZ_A)F zw2~6vJPXeiZBaNq-woUR&rv?waVau@8i-uQ*VfEqLIgx5Z;0Rq?5*EVnpZe6 z^AG8#lFZz%+Htz?Dvm$b{JM?%xW{OZSr_KVG@h+LIH?^7oseSY&P(=Wt%9Vf5#(vbT%nWdqlVHnyZi7&Oi z))m1r2gEx?Vw|RoTgt_f?5z6r~q}sW5e5f;PA{h{Lyz z^L?aBS$!HG4pGY7+L-}2ACR=Bsiohx9ngQxaPVBVLVOc|q;ZFH(YrUR)0st#XGJ7WdUO zTs>VJoAr?-h=8oGB_*S?zxkWj_^sI}LwxWr7yn_lT1R={`)yxI!OtcG&cYvrFW*X2 ztpUoFmO1$QcHgU*6n%uVYI*;?7v8Qce^+_E=hcAvLXZ9~m3wIOf9&z)2(JqlcI;A6 zTcnX=+}%J?DlT3*v%`Oa?>icY`4gA^Sz-PcJ^H_X4Dh2IM-2^hlau<&+CT;LFG}9k zXd4e|IQj*zQ+ViXay6b!; zHm)7KA%jf*R|DlloX=KlEbw`x@ih&!*PP>twTSRHiqS%H>}Q^{30VK*TwE}-6|Sss ze(-8}A*%O~4QH(FhGG10WB_E~i#K)W=0oPCooi$lv(Vuh(FSr#JAolhbcHLq?R;5xC^JLZR~r<7uN9gY!HN=P8S81G~C&$#2H( zGSVwoFHpmSi`DUI0)R0ok;Fz8!^MY@Ny&Elgo!h#5*C~+X_ zfLZgwWO6s30op)kSe!7^j$EP+jMZSxAZAOGPF9FqV z%}Ml+y3cJ|OQIWiFisgf*zcw%poJZhcyBYL@BzN!@lO|Dtx~!+H^2Wlu+f{MW^Bg- zn~n&OZcG?odBw%$+MA-eJIatgo^LJFjn8jo*M+(IVD!@479-EXT(@oyMRIn!)E(`L zVKoF!VRQFPZ*%p%Pely0wZ37a^2hugT=JQSmo78iF3-JLz-EOsa{>zEXk~b&y?w5^ z{rKIzd5h;dAVQ7zbQlOlo!AM!4+Zl#e3<=eM&_t$%xL}~fvQQ#lBx0p6o!O?=ls$7 zH-)O^%DPc9voUqiR@ z|M1o%e{)%jko>q=3`wKutmK=zH5}8GPB(T%0Gb9fX~75!;zuMkH{x|V>5dmDv~54P zAV_@fq~iweOY?E5iD9x+G7)t<4dOV{e7&%1Tpu`;AR~q;do9s4^$!3q2%LKuK3cV} z(9FcUO)_N2w3&WDr1Xpox1ER2MxgRbW$&GM_sTxufa41$jngtAG8J>(;X7VA-f86l zdg!=DR{62nmG`hO6iMjd*f>C|Nmy!B=C9^;kHxpokbyHLcdM#fce+JsC9O!XR~Bs< ztjs_%>UN!HV3kiGTB*@O4s+I1-P}z>oa{8VY-=|wQ-H7Tmu;MlwIb?~P-~CoRyRI2 z$yG5le0>$$v%23w=j=bM28EMIceE`Ppjg@Yu*E4J_uqeAK0~o}?%2z8`%gRkYtSo5 zQ5wF;Q}XW`9U22z#&$G{=;K*6+@~Ipz%Qrc1PyZj&)N2WAI1M&+n&~Ha<_hsrGu5$ z01zPWv!&Tlops=>$3GdU2avsR=l@FCakeJk8cZ5{r6t~A$WQWRODI`oY~PK*1+6hT z)SbU!6jMk)UCI5_C;H2olg@esR?gC7&}rbv>({ZIr#QFa#H0i~`}nnagK3SCO~#XM zA( zD~NrI33CW4eLha^7F04@8-aE4VX5+}(5`xl8qJ zFC#jQQA1h5JZX*Ur^6SpzyTV6DNBMer@Oj2y17b=_2BC-b%)myhbL_d)A{S^firA{ z8CmXy3C7!|SL$OKd^_UwyCi03&tBx7Djn;CF&a&t%%iuuk}+OHQ8W&mH7)R2Pg-A* zB8u52$Bhijb&3p&y3tj1OzX4&H${@xrG05zto`X}V)>u@sJotKumL^>E=fB{n5E#o zbSUJyH?dDG=}?`HdbnlRr$A@v*T`~ikSO0j+@(EpX3*_+kb!fc4(Ua#EtONXPysyj*VYtJ4x z9rYVXbBon=>*doH!Nou_S$zA4H?C^aV&3~-`NI%zXJ6zpi(X&{2Mv1c z0Gdi=t645-smfE}i3(XjF8KM(J+@zr_h}ky0JukV!%L&qq7ItaLx1}*0 zXp6#)qeF>_SY2cV|5xX*p+z5Pa2VQm(Lg`QC$(Z%_aRAwLG z6zV)f$lDhIwvVdHtCugEG#h92NLM;A*^rz+8p6d2RdL>gG&K&TO0{|78!&fn17FO`bl<l(8fSgp55N4_S$U({a#-s7rP5xe|{3>92PD6cv5sZ&wJ~F}@``F=SAbn7Z*ye)$bxThef@{nq zfdAI~WsZhXR(4lNtgnGP${RxKAhLFb+cT>iXjbvF+X@AxKN|g;JuchP_(IQ7wOaaL z5-PYSp~F$==VGhD=1D~WdsY5I|IF26_WlM{3gs^@ywnbS0tj*IW$${W>&?!de{m6F|l~< zsz#CcEc3~Vv9=;Et;ZRC=wpRkHFHQIZ>zYpoh%gZiKzjSl7oUa z6lbWWVm|*wpx#7&JgB4Eu_BZYF{LKlUlRSwj~K8w(9AVKngQCTj`tQ(3u)%s@S%n2 ztR~WbAkp5mV<8oHXJy+%lwl$$<}RL|=m=?Og?o;p#Ep^f+cVLJ3(E z4lQJgW3xUhRLplHkt4$n**z!k7b6>s_qRbe=#7Y}%02lzjh&VdhCU@ob`fh!Uv9x& z|I)XaMzj8X-X1hKp7q>C_VIQDS9g}&uAp`h2U<#orZK>;nV`?yHU@w~aPT)Q&2cIy zJ?p&DI??BwuUuc#7`B92y!l!D9l@!TMKDOTw7JApV{O2sIi{J+VW0pa!Ftg)Hy=%2 zE^Av1UfS`Wn;SRuJ@m%zW$O!93Cz&tzf<*l3idce^?=~xQq93?jB(ubsMR3Uex1f9CY8lcMpi!_@Dm7|3ve*Z?Hn^HU6xR zZlL}Df};PolKADx#69`necB&5Z1Kx#)4u$dXada_`5ArNx3A;u&k_I9MKAsxO`*Zb zPe;UuI_c#fKyP%U-Q=q!Za20)aP>;r? zTPkc-TSov0PQWnCc83F=hPT3-#e69&K-im=@V-VVPC2#CZv=m$?)&s%PqfK@{Vpwh z;PYqrKq}%&?(EB(CR~~>v*MH>woskHJOVo3KPM&-84}u63Y+$m@{057^eYd3I zpzl`{Mcbo|ay{(El{WkS`TLu?q;V#ws~b>kuYrvngh$f!sai-JJ|cGn+B4eV~8RVgTNDQOe#`*2vztDSo=v+gyZ>d*NP}sa6jR z+Ht`X-bj+mej5OowUb^O{SHX)VdFPShV0PfoVGH4#8l~aX&Xou0w3EK_Us?V0T4zS zFD_G#qr`GXQ|4&!XGj18hc_;oK|se!HGwjW+qRo^8pDgy^mGWf*(+If$}j){7Kazl{5c@l&VNY zayZ2FW`^ECrNh(76Xg_JyPKK*a0M=@Dd76V{V@-OH|$N{qVR7ApTgJACPxFsvEfNp z7`5{c!2b}^(i{#1f~ie3>*@dD#`rA;@V^SZ^*a8F)#b+gmz{SVGo%CrTrKx%KLX)H z^0Fx6(zFfI`Og^UOaE*emo((?nFe~mj|PIrN@GmN9s0QHU-7SNo^wiTFGLGbF};v zoBFOQ)epa@WiS)NUH_$7K@|)?<iX*2(dK`)06*|4=Dw zs4S8xW5UOYH1i)rxd?}6&qOC(Y`hD;ovX@pt{xGP{Lph#mXJ5?HJwyhl_ zWyW65+D)$;ik`vC>Ckq=rjATFv*+a3M2O$|O$qbpHGzDiW*z(7OmrQ#SYAfPso<(v z6{KLCx!kSGv9>5^2 zX*IZajywC`|3? zaY8FlWf><^s7^wCaYh?=>@9JsU9t3#Pjx>BNX!OvNfgqBN$w4kIJW*6rjvSg%lpX( zA#CQI@cDUmJR%}?)9ky}ZR;3`E2&x%2wlFOmi!CME%DLY)lb6EM;9Kp%$*}On6|9k z8*0g)tJ_L9eskJo%#%rIu`BcwNg30z<)47;3T%!m0m~2f#Wu9mL{h$0B`YnAZK@d| zC8j?ZJ+fHoS5^|hmUS5RH6Y=)I@1ykagcILxTjBV-^*G-RjsG|{GURkv(X#x_*%C~Y)f1|p?q=yNV2I*%GXici0V z==|aia#%{I5KN(k$K0%M@nxJMYAY+e*UFI^Yl;Ou*$Ad)6Wt_2IQfXnqoq$GyviBq zaLmMZpLq0aVMx$iIC`_;ymGa?B17=GO|v@XaPdyD)szUfk^ya0ZQhkW^uejP;&d=gB2eJ{dWsJ+KSy24_jRVTw|X+E-o zYdAEmAU!tGPx_>63q%bU?h@=&CBD0}oZqL8Ad${m3j6pUOGFD}nTCD8^ewEa$?aU? z30dGxV}xp!H&UCYRcnXIqm>-Hs%XqSxkoLtYIiInYS4Gn6R2C0S=-PykDJW(bI1#+ zbCE|_n`KG}WXU_J)w=7IH(~aK{mF_G`kL>>r(x(Yy9M<-APs1RL|n;A-TTpwrgW8- zrBzocen$7DydP9)7EgSs>fMXXll5RNWqY}|%woR4xriA_M5o(eM5eFE;Fj&@pu1bb zi|%!kqlRR!0AGEhuJj{S3etxNVssi2Q(o%0`0SKZ>&RA4pySQf33HuWM@$p zQMuR^EpKx>h}$=|w{fa+j;uG3?+nTaE8itdR|^qdjB;qLN)>^*b~kL7sf8seS|u1) z>%j4o%S~x+se`XWY~ZU#G=P7QInm*$U3jwghTyzB_KBAah}4mr>DKQ!Xn8TNI09{^ zU_WZD;1;8>U1Vl%D(ShroZDD^hb6mHL`W?Q$*aM<*&UZ>LB>2!g5J0|LdgzXyARlFZ?`X_KhC*?{_53p*TskfIO^5pu<*r zz{q6Qq;_FCI*1a}%;z@}d%pL|aa{Gmm!~gapPXUe`!8@_y3U6S&d)^roP#{a5x(NV zi|xUf3s}5rD5Yh9or#tb+dp#<*tMV4>lUsfy!4P`3bWxWo>Skym!-r`nB{tli;Ck5 z&=lX*^SJ$vZZ5QGPVkn38{pWO9Sr2LJm0&T3w7=h(K@3V-a8*^IAt1B$KH4 zbyh~&eM>VOz;IW%a4-5aEF8-J)wwczHEMf`#8hVB!sR0joG#SsIsfj|!<~=OT3o=r zyPj(V-!$OjT4Y;lw4O8_NC#ZnQ(Sk8*FqI3j-#((%}KTnXc-A4H%uK-UVqqd%&eSM zh!jl=5xjKV`>d;r(AG+xa)nx^L7r|-8`@jy-;E?|AQ|k{0)|f$=~%^Hkb~FijI*bw zr!5+9L4P0V{qbAZBIK_a=-;Ex50~pS=lwS5HW6$O-Sc`Gf6#XK4Tj--3H?NhP5n{^ zD_U9#=){BUo+iHTkafG;udGYbFdJ!@%OSgKA!A-awPvTF*CV2R2v0#Zfd825qmdCN zj9sKd)L&>32)cp_+}+tGq8A|IhB$V1pe2ovp+$ufCLtr(YVt4L?56rLad|4SaD7nv zSY=l}>K6o$C@`2DM})N%DlMfoajLa7D!-(dU#mPEAC=|=BQ5`gr8tcMr~ca#moD95 zJ714Agv_=`5Oh#-!NU}tN>}up*qIi4M(8dX+(xJ+jUgxnT_0NF1xS&JK}&=4Pj3d= z(Mafv=U|oxwnN#ITghAOW9!fSDZ>uE_8m>Y_wOT$yI!>Zc+1x4VaROXqOMlUp-G0E zf@Z7HWYUr!5iA9ilF76WsPf_$$NB@4yX59X8xTQ-HlSD0ns8uQwR%7#Rnvl|*O{kE ziU+j4y)G4lY-C-1qNP=FMlW(|6&juEYrumA5HGZolMb((LB1}|tdwiaj-qxztSv_m z+bn$K$m?Lkc5T8ccieY!P_tpNHgyJtanQRlvOVs(>2cR>lNB~-1HqGr9jfY#l=fZt zbJrLlO<35+5W(J>J3cGfX68w(Q8S;x#IFIrZJ2#>*AO6*N$N6I_gR{len6_tgB6~248Fe?h|Gn<}ydGUw!^O9l znx8hK1Xq$2zIC>hiWh81o+kPQeoTQ5fM&))?I}uEDRa1aeWWR9`>gJOn+6hfNub{` zbfuzy@%c^^O<0M=VDXGfX5x64g0pp`+fi|V_<}DJJy@C_B|Ny z+4X+6MXK6ym{v1a#ct}NKb4$mUaF@+>~sUhTRrE}qBYaoYa^;QmrZtjp0ux(;)}p- zjf52!n*pmFE1~f~%GFOYNz+Zf#i(|HxlJQ4)qp^?)8n^zfyJ%TRTa*60%(Rt3#(@lMe%xj;g69-WIoz(bxBxc{fSYke&E(J$uYtbX|-+SHj zN#=~^nkqHg4r1R33EnU#C@fB#o|;MVoT^C{Pnou^b)?U-iZP9P62JzGsgkV=b8w&1 z?sB2cHKgY?q-I`rxI3WL!dGUUH99P`#Ls!|ypUb*lU?rZEu6xKT1$)t?uagb92cJA zifOP5UKzRKVz=|HMhj?bAD$C{rtfS!M@;mxm}pq)tJgfk!_Z2w%Z3aS&POvoO?ez8JTidC%S0 zn$_jq4#S<2U5F3-o7R*b=7&wk^iEfU^ZJ-FT-fFG&UW681kjdB*AmfU$IV-T{d$EQ ztdUYtl9D{l((!7TZffU7G6`3O~JVq)Tq@?yu* zyq+88oa~RtCQCWzcIRm+bA*zsF{@r0%^-{2oxi<|flo+4zNYG>JSPe&_MRbFE{>>|<_n*R9SG|;p0Y}8)**G@nDvA$ucp?Z*CRG|9NMVMbMB-N zY2{)oNj(B{#tqU2{SS@JF4kH&7wP0N;CnAko-alL7BkHa z1GfT^-t~8U4L2JcK*UiJ+S`~v6f1Z@NAK=g*w=DU}w*Mq3G@e;E%?&UBHUxfwnnK5RK{+_8G0N*2vT0 zUQ6|i2o}cR#qZ(+C?Tyni8j{$n-#{1EQ@{A?@#(l9!&FDQ@jHf(Hpz2@V*5D+&bO^ zj+oTK$Uric8v34(SoSNCO0>BL3+8(~>PVJXLpr>cjg5$o?5>I-Ssqc&kb~QiznN>B%X##T zQHFqV@U9l91;XVr{nX#q_I-P2XKFx0rrAOX&lzC1?S`eC9kzX@#iPUL`5HusL53bg z@T>9eEuBf8Pl;HjQ`pK?5H?GSTxL)=`8ltmeM(JE{C(q{O3^-weCwRaYm0ESLRGF1 zDZKD#;1cnOZqGXJL|VMgY#Wi`7zqQWm?K`#ul0 zJ-GodUQ5St*=MClXR|Ov5tcSCgmJ%&$f@v>WYm^5dM@&kbfv_P)$!7xs^>F)^25{i zfj$kY#Wa~)`r_Bb<+53(AT8|>!yymJ4B7GbocO}%`R&8gHV{@jn*y@^`k>|HeY?Ee}){7T&J?i8FlZP)$*+bI6Xq$Y_>TfaCR=kut<;7{p zSh4eWxTV?U*!0-V4QG=R5L_!IH1zvwMv+$C5^F)O$7EgoWNA0vn`djB_vf6gsR4y! zsVQKja%R{{9thER8NLX;*@(k^=eH{UUU)n+Ry-fK49h;Yln=I4_U^bbHC=H!Nj&6h z+Z2~BmqB3{DrqBj5WRNK2%i)WAvX6W$K=BOwthrbVxX7?PyEV_Fn%MbZ*l+fOq)mF zAXny6XM9;#JNxa^h|ZAYVeUtBLRfvckI_Ume3>*M+>xs4km(DGxdn)U3O!pFz#9m( zf;vE5Anej|_-TRp@noCennJ*Gf&!LPT$*tlPYof_un1M3`cNY%hyVgrPz1_?s+ssVTHTXRDe%G$hC*UY zH4_R}?0iE)qQjh)(rl)bt$Q1F5IgNxcRyAJ&W9*MHU-=Cl(xQ}D`iENfFf|Rh}F~# z;o*?nII*_v0(6k$D;@FJ`nclv;;`CB7ry|6S=Z*#ch6`BL%f6sE9 zp)v!k#Y~-OiT81;Qn0qPl&moC5F_V;H?PcUka<2S`h@gL4znGSadzLT}t=YTm=5`PEplt^^kO=0*W z8$KdK+#b!I&RNP(=1h4czDendt<=NFjTBsQ!C;EuWLXvDGBa`Aefg%O0qy?ZJBs(T z_vRu}GE$+gSvONJODSV#-XH-SIYR}_-t*!CiNdhN-Wwk)Q3}3Viyv?&UkgC zrsL8eUj4bH5~8uT93+aJ5qf%Eo{4lSe0i|Lq)hGb;Atpy+$6_7jp(y#ChrY}bSjNC z^(~loHo&O;jwRUikWpA$#h$DG{BjIH_9^<9QmciTCeOfC4wno(` zBMzlX;T|g=$aJgC7)c-jOWEdoVv5QID9~3w*9nfWK7&xYr$!|pzzmhbSj7iEN63vl zanmm`!X&zSN_{Bh8O?O+7TyCKXKc|o06jriP<9RbLwljmi0)c;pABhtPpoj;VBPSG zPc7&|zdGfRNjHrjm{@`~vR8>un*B6XH_tcF=)Mk;uNW?|D1evPn1k_vYcFC2qDnz< zB}QTfTmY-DsFXOuVG-D9^W3RSZWS+(pI#yj8`TKBK_kIunC~gP{zZ_STBQ+K_K4v3 zr=j`aklGT}b5g(cRGr-`^bz>9z9rgOY|m5`RXu0^x`CU9oGZt#WcC~;yrR(stTZ0% z5%^=$wZDD?xH?-<40n|kFxQ}>ZFvS#Kt~l3F=Sjc_;KvNC*&`mX|ZP^>TzSAXaASa zc(AEa?ZUxh31MCKT0w zjCfzbA+|2Z#|yV;yg;N+2fz!Q0Kw@IhnfGISp{ei4Mym#?!UesaR#tm{XO4$B-RvM zv70h6j?Wner-k~GC4D=K;lZvD?0k{B{>#ZN9-4Y+fA>zMH6~x8C7vA|94I|v+ga3} zvK@$Vdx9ELCe#9^DlOWJGk73t?UvYVPf&&{kDPLydAcvFYArxG0gPK454LMU zjjFDCuJ12aasmk8IteNHJ=)%VnkA_8q$VD2*Dy3Xaq_WA{a_UNoSOv_rr@t&M1U%- z4F-1nxK%92UZE-6rP;snZo-=_-@7Hu3q6`eCS>Ic;bA9E;33C^>%D+ZcTC6G0R0mNu>I%2ft#dtIduSQkm%P4^Lhv z1tBP#wFm~@FSuVOF+NOE@;@Y6@Fp_DGy*vsK^`&`Y5=w6zwuvkRue;L2^8w&324ks zs^P}+n3uo_q~+WAaKtg;QfK6_VxD1!ePAj8g}HbzmHYaF-Y_NBESMsU4d${6v~k^T ztXuxd*%o@rU=SmowBjv<-RsgDP{#RC`K%N>UiO&1bt?mB>8etps^0r>&RfdQjOhB>gY}6wl{~4@}~*=)~Cl(0mk7kzb%ZQvhqeS^uMw2U}^SU$c{( zLf`=CsGywbG95&t>(U+EGcSG`OdLc!6Mg(wT+n|4p0*!u(sbSaaIVGEpiXUSG!QP5 z<$Ui_mSaN{SR;0_uB#X>j7VB%6551^5U1Lgq!x4)lciGb3T&H zM96eu3Rvq3=CLEk+WyBP$qbAmlytDgD-+jhb*cY`VS=j2c%ecYQ5NnMx8TIlA8i0S z$E%x-c6KyvDVt2XR!?R}c!3sOIc%_M*ChW}@kxZ6cx6u<8^M*&ubuGA`Ky z1%fXZ&ygCJngyAP2`<_o%#pQ>Wv^%Ny5BZ%n>T_)Thjk9*$_yJ*aH@AP)A489Z?)R z6M#D^B^SooVBH)yZO0J&9O0*-$V%zgdp@QJcBFzm^>2u5As^=Dwzp%!`Z1;)3 z?)85;eoU(8Do_0NBgX*-*S)8><`!?5qzl`B^KQjr!CbA8UI+gNaJ+`JZTk;7{g)KqH;~uh2qx^%Y{7X|E1D&)u{9i^Kw-CN!p^NO|!M^+t z4Fk|&!otf_cP52AjqID+ONs!N6(Pky9)&KXTWxNQv?GVjqLC_X8yeb^t-dJ_A3jXr zFmQ+yh&Ib;XbTEj`>3;)#*fKhU%2F8Jk`F_U?Uluu7^XXIa*XDkS~?bktD+9m3J;5 z^=Odb#Z5iKLD#O9RU_qZ^typjSIhscaBxYg@$25(n)BZWC7aNLKcEx=3y&9 ze*S-IvxqZLfl$D4{lA)f&!{G|sBPFOj%^eHkx@i6fQ*13phUVQfzXF8ATUY|5RhI& z>a}DL4+qDw04&sBrfaVJ&GEec8d{HuE*DCr^3j=bjmS<_#Rv(DkuE z&I8wwhau@mry(>p$peI(!QaG|DlS%T5IIXDix+MLQ`?tOjF^{oDDdm4?xhJPo>RZ5 zwi1!Jq{C(qybdMR_Pl%jkYkIr<(@x{7&F8X2o(=8Hqc>*@IFpx(I76Z2Rw>ar|35cPer)YcNL(J$dcf5ag zYNt^n0|$t#kM2(6h$l;6Nm3==@`}p&*_GpABh~@p01ogh_7gcnpt*sxoO1PR>6Gz= z($e7QQ#kyY8qH?p4bcn#j+H zR$5@6PWT*rzI`yFJVCme1N09&dShHB#juCt`s=48MDNhd({N- zXhJDtKM$|+fTVyRyzL({3IOG3*o54RsG7F`G&vaoVDdznPHH_lO()2X!oD#BQEh5Z zZFAuM22oK9rZe>WV%K5hzR|H6GGqPP#9AxK`asyHz3%s4o?vI`ZJ;ga1&nJK6E4$P4geONs06 z=DMYHTu~aEETI`DK?cO}H^KNqFfad=$*aCl$_zqy9ei+dG)qg8>8>4$Wpm-jozWF!8SK(U`(%%x6P8h(I_@;N{ zJ|8FV0F>2VdL-2pQ?83S8oTVqw}1@4fzbcwaVf;YB(xUyfp&Yn`Oj`Q)srOf!fTG_ zzcEy7fU7VGlBG?*@V*u>RCv@b2paC{I&!Gwl51H}SK4ZFp9@@-H2GmzqdU9GD>pYY z{gg&AdY^~d#=ZKy$h+xF*gr{~)b<8|x!|hhTC=4vN&JI6Tn?-K%(9`x3iA3tTmFb= zPE~`%+vi@l?NPaO5H4E^jSeh6Lc-X8QKbCm?(!xR&@v{sh(>W4Jl&Cp{#3?em3~gU ze*GRPRO+GmetB>}X55d%k@+Oc+Ujs8}{t(8tqDAIi#GKBa6W=jkhPiTramNtXB{?;=1Puk` zrIcMcV3HhM$V~lRhJ=;XzFbQOVm;VzUvN0;A3~515K(|0gcDdGQ+t+G6(uk^ zu-IEi{@wtLC_a)Aft#L!!dBuK_gu-mpc4e%zbUY{A z!I{tReWTx5VN?3;u=IK@ngb1itu(a6u2`d1u?X5X6^RuLxx9v zCS}+=rY7SoI_1o{oE3;2$v_Md+7g3-w#P2$a3(OWFBs>qg0;m0Bxwe2THdhPIEgE@cz* z$@4S=Z_7TC;2GBYmc{8&#!{23nW=&#`7g7{;BZQ&aw1HSANYIwqbvUy21fWQ)-D~cO2F8n_rkBKtc0{^v4Sq|BnAb7kR7<+LS3fdqL7Pn1&MbIC}ezM9~svr zBO_3vHnMoew1s{6;K7dPBWj+(hh0$wl|_x|Rj(AcsY}?Jv5c6o@yN;}Cxba51Uc>e zmGy?zp#;%H_kOpaJhyzGq0jhmY2J$Pc#WKGlAEPc_;TjF90^pZq1)Zor;!np0~`JW z7gF@aLEvFjE=^fJF`+>b9ezTU5lmmN12t0ou$tP6m2)pQ7L=--TkYmckP}bc-pBB6 z#R={KACzkukdd&f7KEep!bCyCKLLoHw~CK0@T4dJ-R#ZEdNNcjo~BQi!`|U(;?>EW zAr2O*IBm6@ooV+T7ki8ZvWyYY)x$(l=BcDSIpsbFGSNoXNvUQveX;&!NUOOMjcMEL%4@+LvU)y81HqS|NQ?QXyO{d|2^)aawa z*}-gJZS2)TFO@1#ol^_nF70xgtRf(SiCxmfP!V{#+hMKL81HwjIy4+@*=AYmQ!kQU zf0ZrLtB5=Wv`m=RqviV8$LneT*k+WT(7#mBmRlB2<+L|gVyG9s5o4DDf%piLu^e|= z7RTN9-g5d$D=0@Jzh`hFF~uVHDT57S)Ut}ZfohW0TYIV#qRPhet#XUz?%#eR>>eE< zZ#Cf7O0UeP)sKZty(vG!22DfAw6a;670ThX!*W2kNStTI;>7z>f@|=4|F%jAO9(pv zbfR_YM_Y;^^iq;PAsa%W#02>tR+&;g2N6U2NPHtM0ClDgwHN$VrccP}r0dSQW2C|? zDD|rU$JjYHh~4YAR-G#TQ?;Ux#nUfJl0XkiHz$;xtrInHx65)CLojU*T%Pt0#+gOP ztgmv&&TJ1&&LwOJU_Pk$51%HBr9o%Pfv7-7IY4p)SdFOd9WOD2D9gNG5X(M?q3V4z zSArnKR#nv4ak((uSdm*Z&KWCjI#+UHVQEI9)GjP&VQB8%91v$_X@r{TKOh$lDx|;j zEN@~MCTW9(;py?i-r}i|1lM77vDmATw1XoLuFzvGlkVz?B_P{Jl={z%taHaBXW1^* zNSo%A!r^*t>^}N4ClH$(@`h7595p@&c{Br9a0Hc8DRjWs^^d6nV(AnE^|Q86m}9!H zurrkJ>@TNeUL7{~fjz#LUHUs=YM@)@m^NCl+vo`b2&$xFgR7JZ-*sr0|5D#)bRR6+ z5EVfnlE5+v-B5L0JSt0JHOg=t*B&e(IH%D;N;L{1Q}1qMp|~W@1a~MU@??cu_Q$Y7 z%T8l*zc9e5wAUA|!_|C5#fx!|(@$PSTu7WaGrTyr7^z#)+R@$8574xLBWKH&P36fW z6p#|^bI=#Ljg)vkSP>Vc=dOR2IY!iSYLck}O0)BxUK89zbmtT6!!G99Bxwlp5cGNI z-(=BOQuOZ{@$WdiWf4z;WDIT69zTBk6LU3)RWG3^wR^N}tuFzO z>h?cR*`!@_V1%$&B?^tdkJxIu$7{3h^ZeM8!xH%RpQAnD4vuDOn>`c@zatv%-^84AP@&|J5RF$RFd4>Pbc1Ri^l3GDOZ%iXl5gQ)yBmf z;Y#wK-0R&1koacVud@k!%HJG=fYz&f^#JfQA!@?1@>B{HNzm{pe!*lSpQCE{mNg3b#2*i(u!b%h8Z|WUYW# zht^}M{d1CZCp)DT*&&QWUG?OUq`1tie`?)Mw z4X4P)B1v~ zuGYqv{;rY8yj&jPjZxgRwEzc*1zLME>-((46Q1E;R|ySvDsP>i=Gz(G0(W>K zTP$^tbsIJL6hIP;W!^q|I+2v8M8#@bDCJeaE$kiQu!1$2_bFDHrVPhYR7;&RM=Ixff{`I&?t&70a0O0ij*&(XpnJCXON+0SPlj@OAzod=ln%#w4IL}f6xf|?6n5oOa`(k|dB*bZ=ao^z zM=b#BtwCf2=Kqvo`fxZPE=X!VoBt4sLq<_*PmU~c*TYhJp_GeBlF>ZH_rYL6Pzi9~}iomx!2MF~TL|+E%Z40RF6=;L9Pf-!f zrYp3j9%j>0Z2bUw(a?FGxcZq<{jO*%Ke3JFS?bxc?|?5D)Y&&5BSZ4r7~Zzi**O08 zqA!oB+5sBgS}khJmk2t1lQ5>bv`u&6VsU(iQhDWUQ5AOQCE3hqf1qx!$Y|nm(}x41 zbV~JsPW{CqdBdWvyoFoGWk85#{KMH0`7(2Nh#e%f`Y6ZxO%mgC-<;8g=l4?+(DleOa?yKDHNvgI(=^w3Tgo8eL}qkvB{Zjj0kD zC0!&b2)#GI)Eg()*Iir}+=LcXNlfa#=wVoRD7LGm&y!AsH4I7HqvMx#GGMg>qWYx= zm&hiaJ=UoX8&G`dy(w9eB&l^M(1#qXW;~nBAm2d3&rCZX2Rk&H1%UJ z4`9MoeS+QKsH8}NsheajnfK@INzyVywEq z@KJ&k_=;qc1P{cKI5B~-I;gzAvtX%YI`{uVjejwF(>2&iA&w09 zO*40Kxfp$x;L(*=)zTR3lLQ(bWx~7^b$PD_;v2sSHUvB{nXQ$e(jjl7Z#bB*;gA2x zN$870!#V#N=T}L~SLN6Cd@Cv=K#XB;{;j23u0`=g{#O?f5L8HEvu%l5D_Lu=_@DNs zlQ%*CFQ6&l#_#KENKcnfCyfI^`7J+iBS%$TRUGWukw`bv!ve4Nr{2~xDsGjQ%1J6q zF8Y!+bS0Hjst8ZxWwMX8*W3J|C(K(VU)+v=&91>?(1}V7W$!zN&PBf(mH@KM*h+*B z10R2Q3JR<9E@l&NQM~XnL8*upMZo{Y9hEn`H9wf&gi&)9YKVOAY6tO zoc(dtQ>vkoV`r6*!l{Z_#JnC@KDVZlc+c-0Q^^#M(10=-VaVw~LnU8yc4H%+crjTH))BEfi8{}}nP|r^n7*NgHbmjP*0{&2i*gN4DM($A0?V;CW(0%8eIs7quiII- zlGRoZ#25ub!{t}GRTw2{2koCdB2y`VN?-lg5O)f~SIYwC%E*2bVXvcTgE3{92Ty>- z#1iC4equIZDS(8jRjSbdLMQJd+k3oKKSdY-5OiHpLlZ>aStPT%~ ze+5vtfEwe#&;KxJ12m|q!49mFByEwArL@$?b0_#^R;HJgBJtWP@Q$}N<7TSGO9xbJ zWz*Z!!z(dp%3|7qgPE!|$Jh_+@Vj^KmcCzz^bnyt9k;9Pn@2Om|0!kvk^|k+eLE4Z zLzY(Pvb1^60Q888wzsao5RQ-GFSuQ;29h`;*bb#u-524cu6LQ`W36)qm*6-pa?bxM z6&&n$C?t17>W@}qGrZ+qOIzgpTDzaFMN^^`x)hUxb0e11JAkrnepc*jwSOl z!F1g{ze`7H8q$4}b)(`ogrp@zo`!vQigV{-i%J38^2PxpeX2`(@fF;X6gDBEfQ0-k z;zMY%$J=G9I@i0pc>Rl`1{@E#<5WD9}z?8xR&EbOWg;^UKmTp4GloZ8?(l#a5T>P(oof1)(b22WZUE zL$M*Gf$@vd{*A7-w8Qq!YxRe69eirV$|WVfAJopjA%OtE+I#lYAJW=$x;0JKCyL)v z+xzeF0NLMpjJ%Tovrp{!-~qY|%6ERco4$C<`p1ZO!c$B6!L5~t5E_CGaz&tz^neP? z8r1`al<&gckaziUBzIx>8CU&E`!d8XzR#*eyi%ZCB2l+ySkN#SpHMTcuoMYf-&ylV z`EpXJ$iFs#8K}wnpqRy@;-|)t2KAztz)MX*q|EL0GKJ=@hcly|n0@DDieao2RK1$5 zw8l8FBXNMXxKowv98D9@=YGDF5mQZar0kLDi>zGw;vVPi>P;ni{5*zb+?>ZM>RJ$&CTx9F zRdWQ5bi(vYfh_H2q^Oz!GU zLTaew`6AhlipA8fPi-&@@~}6dUt=z6lb?G6%Y^}#;E;dWbd)v4^T;U}8Y@DENqP14 z8cFwCxg$jCELDXk?mQqHJS*LkY83Wl$Q&cnX;no~Pq9X`{A+nKF5RH2mgd0*MTeoW z)HLtyF6(E?8r|69yBZy=b52=AI1rr8dMq0du3#a$e{3r2b|uAj4k0sV z@os8Jjm4gd3gNE$x4IPfTSPFJC!N}v$$YDBE_TrzL>kyc)|-Z1j1XMrk#)7FmCAId zvy^!r>|M#afot`tl2{yINEq!mi#dgBUe%1nLVOJ&UJ3D<;bcD zB1*h&2g(b&P_;)=hY173#r5{!#v(lA$Npt~N+|I(yJ@weGwJx)d_AJNFiaxcMf>bt zKhqQ(>xhIdjQx20V)$vkEA;=!f*d!(K;Hq4!(?)VJy!^=lv#1hnyEa zXAEtiFN?KGp%DfXw&MX$8g%FdmYKr(xrg+(T7jnAh76`DQP#S;T`-e73}&m39NJE1 zuClS6X`HA=)1Od7`EUd*BhfvUZ%)i_lZ?uAjN=FS-3M{*ej!^#c;N2|B)s%c7)XNx z!4y9&g0)&1fSc6>{RPi4HSp$5hccsH2?K_JNl`&mx&570^lpvLT6R&P(dEai4nIczdI09jWiLYf4Hm? z>FO+tg|N50GLH3Kj;K=EL6Qx1)>#ekf`*^+Nfo3IF^9LJ zZ@l|182b{`zP}0#ONu(hZZggg1W!;ibIO;RcT_311A(Q@%Qs=IykPiNVRRIrMZjN# znJ7<~0SFjfh*|hJ`nnfMs2$B$>NGBH5niqNqJhc`%A^!YLNY`X_0mUq$$fV$smzgZ zAj!n?cZ+%9>+-I7BxVT2?y@h41dqUVdu!;gM>INi=%B%q470mu4`;apqrridzn0qIm7(Ln5aG)&-<*khQ7&Ns9#kQHin z4kJj~RhUQ!X>F<#u|BH1%LjFe>3kC+{mv?u$v_CxN zZiEavZJS{{l<%GI<&|4bG|E^AJQ4P=8z8-nQViVu^K<0kO(#F5R6I?Fup-zGYr-vrri z@|#(OJt-Y-Plomu>NZ#NxPcUqmTg%Er?0|t&wv5B`hcNqwx1Y5_K=M;3nad43T9Vv zU!v7&&YR#&uIlVaa`P;o30Z%9E}w+BttLm>eIRZt*fHeSfSh&2AU6Uet|Q7coJn;G ziyw&VX--ohaKkzz214*}Ki*vI&RH=hsghBMa1iIw>rxr&bHYZG1r`~}eKe@>Zn;J4Jc{ zp-hp!%2}Iw(TvrXdZ#0*00&a~uWV@IRDITJox+kiajI&mQ5d4K`0%o{dfDQInDG^t z39!~mdxd4l>1C#PfmW?!5INUeJlAFw^<-WnX;5JMY(+C+BXFZPxZo)*K=wtiUrVwV zeBkr@KRO};v#=7lQEgT10be~X3e6ZqOy;iwkqQXCSB$ml^nddJ!f;cU(#HF1eQ(W7 z8xMk#Q?;BRta;a-m;{lf7Ho-T*o|2!^0KrHX%#uB8f9hm+9+P8^voC~X!p4lU(JRX|^5r*qu zdZ~TcZFw%b*<=|!bde}cXi5PwY62=iSw_Y_K?+iSBEf?{I~~aV0av0=kix?Zoi62R zN~}86$224dMU42jy0TRd?fRGzK+A!#2_d2zX`Jy?LxL_~2(LE|VqS+sJ5oh-1v3+q zJ!>z`mB}NZjYGTZN`8edG;-eoRW{LQ;*z`CU?3Ziesmzaf2tfU>6(ZX$uX}_M-;o^IANQ(({ZsJchsgTNu5P9a|DDpxq%X?3RFPY=7so`rG+T zkWYeS$W(|vz<4w^HY%(J0f_2ON)c6Qc7vv z0uat7W+QErn5q_?TGKZkfCw9PPPUhW+heO=GYe=E(a0WQFI+hUQ^gin5ymwN{Gv?t z&Po75*9r@A>?Db=(2{zygnxb*Ky2yz%4~f19r@zIK<2##Fn&JHGDEz;BwLxb)?d3> zOYqv0c3={|2N_o%A!X}x!-dVF7JK!&wN{3lCu|SrYDM&~GicmWwa`yTHm!=^POW~o zqI;H?7`HlO3;}A);8#W>x@TugR_8(pUQwTJN~GPsz4c3!m&d{nb8**r8F;`Dgz2lR zVRA&}ZhJ_$kB%n9WUvByd3P5 zmWg)y8dq~~{aS?N|2Op9J~@(a=567G^i~sjh|cNQYBg`iaILV96O7x!lh2oLjWf0e zj8?REMQ=rQcGvc`%}nO~A#>l}czJ$MG9gV*$ZqAdJejMK*o4ysT2eL9OL^ z%&fX3BrOJiS%*E3fnpe$BJeF9xl9z3`!hv(H+;ZaQ$Tm~BE5a5l=ir)fQ+}3ugq)y zvdOsq_68`x0hrC&F;g!$xAe6e$69y^jf-aAG~{_n6Gp>MZm!^?N5Go^Uj=d>@#anF zT2A>$68XywK%9Gjwa@?Z^!r`&e^oT#wfU1Jb-I`RD`Amjc)%|>O9wT=ohj!nz~5gT zc{KRd`Z|kPK$=a<%v8~fKUAT^=2u4eM?a@>)dE@!s@keF%LZm9KlVPI1Zoc6JJmjp z6X1TTd@FB9_2K;!9QOYDHWiP~Qwvo1!EXiv+Xd7Fj2Ev`MvlJT5wI|>UsYFk50+#E zX>&v_^>ymX9mV)|!~4Lrzl|P=-Vfg&mI5CEk#_CcMGxSre-COx-YiiquwhR|{5e_g zcU35oZnUw04W3P5D6R|$?xi!tTx!&sDBt#G>vNkBe+}kKJ5t;Y)Y)4-e19`g>DTeR zP+(%H;5N^I@ETwI*J#U(UjTQ`UynB`p`%!7whn2heHF4)bWoF1K!uLnlg#=xos5uV z?wg-4Eh(w&pd#FuBTXq(rjECQLjwjo{41klI!}hFVzHui zc~ZR*^?{UU8}PoYJd;Cc^T7?{)f5~uR7^)!CKe-ygQ=-qNYh|E;e0VZ=qx7TpfHeT zWH{AbMb!3~5B3EjJrZcIVZA?RZ^p88p$X+c1NKi^(Y7(#FF&$8wQg<*SpX3N7Zy71OR} zmwMWqJ1xeAeI57K09(CMn_l2xy95nie&H}VLqon8T1uVQ#%IYB0_pkzwA4}8TI8xW z>vfjAus*jFb3QUP*_G-ut<8E-OW1dUU0Kgr{v7t9j6>Kymw8fjiMfp1lSUrT`aCYz zhf1%;of2Iclj)s*&0!k`3|uFlrjoG3MZTG$bZ~qIP$tF3QN!1>W~z&n2W5@kw&|*G zhFYZVIWePnjQ=gvtw1OT?>oHYNVHQr^=a!vmKe#S>u&2qd6EKY8a@Qtq2(V>ngYQ} zqI7~0)OK8L|F{g3ZLWLkwhS{~$ArUA*clTV4czj~*Fm-}N|Qdu6daE!bYZH+VH%gzmDol4q#b z^+SlxZ}(uRVc|&`CQhU5lpX>fNKF+Rowa%j+wda~5an@Ct!S!>q;iSVgc4%Lzi(4Oyk^$`v-}{v z^Q9aIt-H(T`L4y^_I<7HM%4&Ay4Y@$q0&b`@hgy!shq4KGKsNcP+Ab`iX`)(e!N7J z89HTpae%4*dyXlkAxOM*4I74zk`$t^+Ooo>NIIsFwb56J^_z6&i~SI>q%{v-wX@9y z!XL3ej+aaspFQPk8%0eKgi}>T#x52OhddJ_0zvd+aLW8c1gic`xM#?PO6YUKdfvqn z1g_jP9VZ#NBLvvqtpG>c%$lsv)e&uHL965!4(TsK!;acr>S{dMHxtCK&oTY3@Rj2; z{?5qw(30oglT|TB0*b_8I%5vzf=K+2oQG1hQ<$1E7L5s-SMSy{uvE}!W-MYWI)w@N z8-^&m+YWXD6$b{H4tlLsy_s=4Dt-YkPjJ_*mT^NVIVCX9baA%5tAHEa;P?(AL90A_t2na z=!e^)B}T;V?l0x-nwp;OxD4Kr+~;E+NL#SLsSwGT_fHe9+XBKv7bEI5$$()JfJ%eM zh3K~@q^o`rBeba49NY4EM$q&$z)sh_tIAIl~-2pc8T!j z@vO>v#j_*O9H3Ni##n2DsH!#;Qya48U=6-dzFevTYC4&DZ?WnC+R?!A-uPC1?GH)t z;f3g2d+V?5zb$&p5#ty(A;Jbt_?-HC z2bQ0k6{9Y<7EBRy6$ANSv#AbvGSwCx<@HjS-n`X5xhJ;zNC@j-te!v z)%nqZ`;A<9C0tkwoxruaUv>h>B{kEnmlDkT2iy6BfM(h``+PLbXvscz{(XFIE!qNSueAh5I1s(~!CexK|5ee1*C;(U z^@-?{k4}tce!#`=H~_bi+~*-{)VC{Tey(}}=qOH_ZK)opDX>SAJyeB03%o~q_3d|{ zx3O+V*K8t`_$eKO3Op2Gt1eCQg@BMB!+`STk3^@Qh~96owaWps3|U@|{Gw4?u);hL zl42aYDAsyEy*#}(m6$F`+!&JY$_AG!Dgb3MMep-!&UtM`68R%~WPeD_FWf@&`G))C zwiQX>Eyk)RNWO=`Zu8Z)O`#)Mk=zGrtFu*;uT_ZYNkGLqvU@JLW-2~yOfQ#z5%M7R zP#E`l{R(v@O)qNU`D!bQs~7NICLxol75HL(Y=h$4rQ!Si*}Gv=*&)iCFv9>)RUaNI z`F0;*P1nPo5z~|N()uO>dhgtBG2yKm@UzpEep{ZR9Jd}!`TY-2lPsv|QY=J$bkzIZ z^&~+VP(1XILzU#_qt{-&`B9BvBuU6t9ee;&%+k0#a#7oNq%pLoG3fZDac5^rtpeVq zE6-{3@hyS3`(hQ{-=x6DYv1k>6QWCSuC{1?`eR!+M?mX${Km~~Pf!x~4{scqh+18_ zj{4H*<4&E>Pmcir$s5t-3!o-TC*|1KpsKo0F}4@esx}l(;Dt`a9@guelH9+a&v5|_ z*W!0aFAjB=A>yDlU=itER6(ow#`ZA}u(y{v}%oawf1^AoSq z)q(XmV&+Z7GD4}SK;%ed=t*1mPZuVMC`x$t>Z)k>bt3BZL#B4)WW6Zf7E7(5hBK$S zuMc_mrlQuivY6a%i8Nf!ZXKXN#My0|@58_MzZWRqyYVuT;Sw>^dVc+~%IC*AU>)OI zAyM30^;3o+nSZE#w+ufmQD@ zA_!{-0+>q74OiQguJO-(#38TvdVvQ~fyMQzw%knAJkgIT8s*~Cq+09E-O74ukD{$N z>)dtP753)>sUIgT5!j}a!{CjkRouoyBSO?l_as|wH9J?w8?VMaUNvPnHffW1ZrwMM z`zWm9wp8xtX^Aue&Z=qO)Q^QGs3n0>#EuQ@A)6wq2vD7cu)^A=+_@M2QThtGssCs0 zq(r8U0vKXfR$Dk;!C762>WiElajrPI!F5VQrOdqUVENjaX=_@==dSb%f8cT;ML=~{ zeuxh8Tmdxv>Zjq!NhXk?e|X2zg9ED)rf!rjqTY>g#-ju40!}J2rL!Glw3E3ypReRQ zJVkmP2o_>MsK!5}wleN5uJ59qa-G1v8Qw>CZjDb*k}=&Mv#6is@!|c;o73u7SJnK- z@2zbZsYHHkCVA)LL3GrUqeEp3w=eEg z#gCEDHMX(Du8cF~;69ucG@RS~!z61%TZ4g95^1b~8A{vXdehz*qxWA{2ZL>XEtMsy z2}_NJ~ZKDX&-O)`a2>;wk4U5aTcoYu=qQHI93C z^XB}bFTofv19^vNaqIAY_=iv6*6#AU!ePYFOR6yq2pGh6g07FSY{L#|*H8@>b^{q> zFGDboMai@8d{!=IQW#Q0!zJF5fkqhMGH+ftACHNN(p$Qle%dz1JYOqEx?%ZvEGQGD zLuuXN-#|p!tA#`b9mKhd< zVuA-oyt@!GoU&?^MP=5*+CQkwM(4v3la_0BKY%y}fk!@wO7q@&R)%~JcEM{eyzbIC z)b6T9)x-~yKp>=*2m2`LcliOIF#JLmwv%I98hj=qs&{DRX#uJA1awVCha24cUy+P-)!|A_It7Y^jJ|b& zj>HPCr}8y4FlRbPL8Y8zxy$c+?{eG6(IP#Bz?bs!3KaOT=%fNh`9y*^rH4O6plqiQ z!)U5MKiCT|59IUbtyMO?yx64h8Yt#e;rKu-PAyUV%Y)ull=PlbV@7|Zt%oeh7r&Mg zHj&&=NY#m`@z|f5(zVb$@v{$K4+9N2ukS$CycyDRZ_U%SQOh^#KasN1BUY2s0+hbK zIXpWBG(79({H1^Df$r3;R-1GP@Clpp7WlvIf8Ou%zy0?6@3ajK*Dt+263_425TJ^i V#YSp+`11a!4>f_5o&WvD{{tm @@ -203,7 +205,7 @@ The lab architecture is summarized in the following diagram: ``` Enable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V –All ``` - This command works on all operating systems that support Hyper-V. When you are prompted to restart the computer, choose **Yes**. The computer might restart more than once. + This command works on all operating systems that support Hyper-V. When you are prompted to restart the computer, choose **Yes**. The computer might restart more than once. After installation is complete, you can open Hyper-V Manager by typing **virtmgmt.msc** at an elevated command prompt. You can also install Hyper-V using the Control Panel in Windows under **Turn Windows features on or off** for a client operating system, or using Server Manager's **Add Roles and Features Wizard** on a server operating system, as shown below: @@ -303,9 +305,9 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to ### Configure Hyper-V -Note: The Hyper-V Windows PowerShell module is not available on Windows Server 2008 R2. For more information, see [Appendix A: Configuring Hyper-V settings on 2008 R2](#appendix-a-configuring-hyper-v-on-windows-server-2008-r2). +Note: The Hyper-V Windows PowerShell module is not available on Windows Server 2008 R2. For more information, see [Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2). -**Important**:You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy, then right-clicking and selecting paste. +**Important**: You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs and between VMs. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also

directly from one computer to another by right-clicking and selecting copy, then right-clicking and selecting paste. Instructions to "type" commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. @@ -318,16 +320,23 @@ Instructions to "type" commands provided in this guide can be typed, but in most ``` New-VMSwitch -Name poc-internal -SwitchType Internal -Notes "PoC Network" - New-VMSwitch -Name poc-external -NetAdapterName (Get-NetAdapter |?{$_.Status -eq "Up" -and $_.NdisPhysicalMedium -eq 14}).Name -Notes "PoC External" + New-VMSwitch -Name poc-external -NetAdapterName (Get-NetAdapter |?{$_.Status -eq "Up" -and !$_.Virtual}).Name -Notes "PoC External" + ``` + + **Note**: The second command above will temporarily interrupt network connectivity on the Hyper-V host. + + >Since an external virtual switch is associated to a physical network adapter on the Hyper-V host, this adapter must be specified when adding the virtual switch. This is automated in the example here by filtering for active non-virtual ethernet adapters using the Get-NetAdapter cmdlet ($_.Status -eq "Up" -and !$_.Virtual). If your Hyper-V host is dual-homed with multiple active ethernet adapters, this automation will not work, and the second command above will fail. In this case, you must edit the command used to add the "poc-external" virtual switch by inserting the NetAdapterName. The NetAdapterName value corresponds to the name of the network interface you wish to use, for example if the network interface you use on the Hyper-V host to connect to the Internet is named "Ethernet 2" then type the following command to create an external virtual switch: + + ``` + New-VMSwitch -Name poc-external -NetAdapterName "Ethernet 2" -Notes "PoC External" ``` - >Also, since an external virtual switch is associated to a physical network adapter on the Hyper-V host, this adapter must be specified when adding the virtual switch. This is automated in the example here by filtering for active ethernet adapters using the Get-NetAdapter cmdlet. If your Hyper-V host has multiple active ethernet adapters, this automation will not work, and the second command above will fail. In this case, you must edit the command used to add the "poc-external" virtual switch by inserting the specific value needed for the -NetAdapterName option. This value corresponds to the name of the network interface you wish to use. 2. At the elevated Windows PowerShell prompt, type the following command to determine the megabytes of RAM that are currently available on the Hyper-V host: ``` (Get-Counter -Counter @("\Memory\Available MBytes")).countersamples.cookedvalue ``` - >This command will display the megabytes of RAM available. On a Hyper-V host computer with 16 GB of physical RAM installed, 12,000 MB of RAM or greater should be available if the computer is not also running other applications. If the computer has less than 12,000 MB of available RAM, try closing applications to free up more memory. + >This command will display the megabytes of RAM available. On a Hyper-V host computer with 16 GB of physical RAM installed, 12,000 MB of RAM or greater should be available if the computer is not also running other applications. On a computer with 8 GB of physical RAM installed, at least 5000 MB should be available. If the computer has less RAM available than this, try closing applications to free up more memory. 3. Determine the available memory for VMs by dividing the available RAM by 4. For example: @@ -342,18 +351,20 @@ Instructions to "type" commands provided in this guide can be typed, but in most ``` $maxRAM = 2700MB - New-VM –Name "DC1" –VHDPath c:\vhd\2012R2-poc-1.vhd -SwitchName poc-internal + New-VM -Name "DC1" -VHDPath c:\vhd\2012R2-poc-1.vhd -SwitchName poc-internal Set-VMMemory -VMName "DC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20 - Enable-VMIntegrationService –Name "Guest Service Interface" -VMName DC1 - New-VM –Name "SRV1" –VHDPath c:\vhd\2012R2-poc-2.vhd -SwitchName poc-internal + Enable-VMIntegrationService -Name "Guest Service Interface" -VMName DC1 + New-VM -Name "SRV1" -VHDPath c:\vhd\2012R2-poc-2.vhd -SwitchName poc-internal Add-VMNetworkAdapter -VMName "SRV1" -SwitchName "poc-external" Set-VMMemory -VMName "SRV1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 80 - Enable-VMIntegrationService –Name "Guest Service Interface" -VMName SRV1 - New-VM –Name "PC1" –VHDPath c:\vhd\w7.vhdx -SwitchName poc-internal + Enable-VMIntegrationService -Name "Guest Service Interface" -VMName SRV1 + New-VM -Name "PC1" -VHDPath c:\vhd\w7.vhdx -SwitchName poc-internal Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20 - Enable-VMIntegrationService –Name "Guest Service Interface" -VMName PC1 + Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1 ``` + **Note**: The RAM values assigned to VMs in this step are not permanent, and can be easily increased or decreased later if needed to address performance issues. + ### Configure VHDs 1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first VM by typing the following command: @@ -367,8 +378,9 @@ Instructions to "type" commands provided in this guide can be typed, but in most vmconnect localhost DC1 ``` 3. Click **Next** to accept the default settings, read the license terms and click **I accept**, provide an administrator password of **pass@word1**, and click **Finish**. -4. Sign in to DC1 using the local administrator account. Right-click **Start**, point to **Shut down or sign out**, and click **Sign out**. The VM connection will reset and a new connection dialog box will appear enabling you to choose a custom display configuration. Select a desktop size, click **Connect** and sign in with the local Administrator account. Note: Signing in this way ensures that [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) is enabled. It is only necessary to do this the first time you sign in to a new VM. -5. If DC1 is configured as described in this guide, it will currently be assigned an APIPA address, have a randomly generated hostname, and a single network adapter named "Ethernet." Open an elevated Windows PowerShell prompt on DC1 and type or paste the following commands to provide a new hostname and configure a static IP address and gateway: +4. Click the **Ctrl+Alt+Del** button in the upper left corner of the virtual machine connection window, and then sign in to DC1 using the local administrator account. +5. Right-click **Start**, point to **Shut down or sign out**, and click **Sign out**. The VM connection will reset and a new connection dialog box will appear enabling you to choose a custom display configuration. Select a desktop size, click **Connect** and sign in again with the local Administrator account. Note: Signing in this way ensures that [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) is enabled. It is only necessary to do this the first time you sign in to a new VM. +6. If DC1 is configured as described in this guide, it will currently be assigned an APIPA address, have a randomly generated hostname, and a single network adapter named "Ethernet." Open an elevated Windows PowerShell prompt on DC1 and type or paste the following commands to provide a new hostname and configure a static IP address and gateway: ``` Rename-Computer DC1 @@ -376,26 +388,26 @@ Instructions to "type" commands provided in this guide can be typed, but in most Set-DnsClientServerAddress -InterfaceAlias Ethernet -ServerAddresses 192.168.0.1,192.168.0.2 ``` >The default gateway at 192.168.0.2 will be configured later in this guide. -6. Install the Active Directory Domain Services role by typing the following command at an elevated Windows PowerShell prompt: +7. Install the Active Directory Domain Services role by typing the following command at an elevated Windows PowerShell prompt: ``` Install-WindowsFeature -Name AD-Domain-Services -IncludeAllSubFeature -IncludeManagementTools ``` -7. Before promoting DC1 to a Domain Controller, you must reboot so that the name change in step 3 above takes effect. To restart the computer, type the following command at an elevated Windows PowerShell prompt: +8. Before promoting DC1 to a Domain Controller, you must reboot so that the name change in step 3 above takes effect. To restart the computer, type the following command at an elevated Windows PowerShell prompt: ``` Restart-Computer ``` -8. When DC1 has rebooted, sign in again and open an elevated Windows PowerShell prompt. Now you can promote the server to be a domain controller. The directory services restore mode password must be entered as a secure string: +9. When DC1 has rebooted, sign in again and open an elevated Windows PowerShell prompt. Now you can promote the server to be a domain controller. The directory services restore mode password must be entered as a secure string. Type the following commands at the elevated Windows PowerShell prompt: ``` $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force Install-ADDSForest -DomainName contoso.com -InstallDns -SafeModeAdministratorPassword $pass -Force ``` Ignore any warnings that are displayed. The computer will automatically reboot upon completion. -9. When the reboot has completed, reconnect to DC1, sign in using the CONTOSO\Administrator account, open an elevated Windows PowerShell prompt, and use the following commands to add a reverse lookup zone for the PoC network, add the DHCP Server role, authorize DHCP in Active Directory, and supress the post-DHCP-install alert: +10. When the reboot has completed, reconnect to DC1, sign in using the CONTOSO\Administrator account, open an elevated Windows PowerShell prompt, and use the following commands to add a reverse lookup zone for the PoC network, add the DHCP Server role, authorize DHCP in Active Directory, and supress the post-DHCP-install alert: ``` Add-DnsServerPrimaryZone -NetworkID "192.168.0.0/24" -ReplicationScope Forest @@ -405,19 +417,19 @@ Instructions to "type" commands provided in this guide can be typed, but in most Add-DhcpServerInDC dc1.contoso.com 192.168.0.1 Set-ItemProperty –Path registry::HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ServerManager\Roles\12 –Name ConfigurationState –Value 2 ``` -10. Next, add a DHCP scope and set option values: +11. Next, add a DHCP scope and set option values: ``` Add-DhcpServerv4Scope -Name "PoC Scope" -StartRange 192.168.0.100 -EndRange 192.168.0.199 -SubnetMask 255.255.255.0 -Description "Windows 10 PoC" -State Active Set-DhcpServerv4OptionValue -ScopeId 192.168.0.0 -DnsDomain contoso.com -Router 192.168.0.2 -DnsServer 192.168.0.1,192.168.0.2 -Force ``` - >The -Force option is necessary when adding scope options to skip validation of 192.168.0.2 as a DNS server because we have not configured it yet. The scope should immediately begin issuing leases on the PoC network. The first DHCP lease that will be issued is to vEthernet interface on the Hyper-V host, which is a member of the internal network. -11. Add a user account to the contoso.com domain that can be used with client computers: + >The -Force option is necessary when adding scope options to skip validation of 192.168.0.2 as a DNS server because we have not configured it yet. The scope should immediately begin issuing leases on the PoC network. The first DHCP lease that will be issued is to vEthernet interface on the Hyper-V host, which is a member of the internal network. You can verify this by using the command: Get-DhcpServerv4Lease -ScopeId 192.168.0.0. +12. Add a user account to the contoso.com domain that can be used with client computers: ``` New-ADUser -Name "User1" -UserPrincipalName user1 -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true ``` -12. The DNS server role will also be installed on the member server, SRV1, at 192.168.0.2 so that we can forward DNS queries from DC1 to SRV1 to resolve Internet names without having to configure a forwarder outside the PoC network. Since the IP address of SRV1 already existed on DC1's network adapter, it will be automatically added during the DCPROMO process. To verify this server-level DNS forwarder on DC1, type the following command at an elevated Windows PowerShell prompt on DC1: +13. The DNS server role will also be installed on the member server, SRV1, at 192.168.0.2 so that we can forward DNS queries from DC1 to SRV1 to resolve Internet names without having to configure a forwarder outside the PoC network. Since the IP address of SRV1 already exists on DC1's network adapter, it will be automatically added during the DCPROMO process. To verify this server-level DNS forwarder on DC1, type the following command at an elevated Windows PowerShell prompt on DC1: ``` Get-DnsServerForwarder @@ -434,26 +446,26 @@ Instructions to "type" commands provided in this guide can be typed, but in most ``` Add-DnsServerForwarder -IPAddress 192.168.0.2 ``` -13. Minimize the DC1 VM window but **do not stop** the VM. +14. Minimize the DC1 VM window but **do not stop** the VM. Next, the client VM will be started and joined to the contoso.com domain. This is done before adding a gateway to the PoC network so that there is no danger of duplicate DNS registrations for the physical client and its cloned VM in the corporate domain. -14. Using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it: +15. Using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it: ``` Start-VM PC1 vmconnect localhost PC1 ``` -15. Sign on to PC1 using an account that has local administrator rights. +16. Sign on to PC1 using an account that has local administrator rights. >PC1 will be disconnected from its current domain, so you cannot use a domain account to sign on unless these credentials are cached and the use of cached credentials is permitted by Group Policy. If cached credentials are available and permitted, you can use these credentials to sign in. Otherwise, use an existing local administrator account. -16. After signing in, the operating system detects that it is running in a new environment. New drivers will be automatically installed, including the network adapter driver. The network adapter driver must be updated before you can proceed, so that you will be able to join the contoso.com domain. Depending on the resources allocated to PC1, installing the network adapter driver might take a few minutes. +17. After signing in, the operating system detects that it is running in a new environment. New drivers will be automatically installed, including the network adapter driver. The network adapter driver must be updated before you can proceed, so that you will be able to join the contoso.com domain. Depending on the resources allocated to PC1, installing the network adapter driver might take a few minutes. You can monitor device driver installation by clicking **Show hidden icons** in the notification area. ![PoC](images/installing-drivers.png) >If the client was configured with a static address, you must change this to a dynamic one so that it can obtain a DHCP lease. -17. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. -18. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. +18. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. +19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." @@ -489,7 +501,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most ``` >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. -19. Open an elevated Windows PowerShell ISE window on the Hyper-V host and type the following commands in the (upper) script editor pane: +20. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click Run ISE as Administrator) and type the following commands in the (upper) script editor pane: ``` (Get-WmiObject Win32_ComputerSystem).UnjoinDomainOrWorkgroup($null,$null,0) @@ -499,14 +511,19 @@ Instructions to "type" commands provided in this guide can be typed, but in most Add-Computer -DomainName contoso.com -Credential $cred Restart-Computer ``` -20. Click **File**, click **Save As**, and save the commands as **c:\VHD\ps1.ps1** on the Hyper-V host. -21. In the (lower) terminal input window, type the following command to copy the script to PC1 using integration services: + + See the following example: + + ![ISE](images/ISE.png) + +21. Click **File**, click **Save As**, and save the commands as **c:\VHD\pc1.ps1** on the Hyper-V host. +22. In the (lower) terminal input window, type the following command to copy the script to PC1 using integration services: ``` Copy-VMFile "PC1" –SourcePath "C:\VHD\pc1.ps1" –DestinationPath "C:\pc1.ps1" –CreateFullPath –FileSource Host ``` >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. -22. On PC1, type the following commands at an elevated Windows PowerShell prompt: +23. On PC1, type the following commands at an elevated Windows PowerShell prompt: ``` Get-Content c:\pc1.ps1 | powershell.exe -noprofile - @@ -514,18 +531,18 @@ Instructions to "type" commands provided in this guide can be typed, but in most >PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. We have not also renamed PC1 to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer. -23. After PC1 restarts, sign in to the contoso.com domain with the (user1) account you created in step 11 of this section. +24. After PC1 restarts, sign in to the contoso.com domain with the (user1) account you created in step 11 of this section. >The settings that will be used to migrate user data specifically select only accounts that belong to the CONTOSO domain. If you wish to test migration of user data and settings with an account other than the user1 account, you must copy this account's profile to the user1 profile. -24. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. -25. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands: +25. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. +26. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands: ``` Start-VM SRV1 vmconnect localhost SRV1 ``` -26. Accept the default settings, read license terms and accept them, provide an administrator password of **pass@word1**, and click **Finish**. When you are prompted about finding PCs, devices, and content on the network, click **Yes**. -27. Sign in to SRV1 using the local administrator account. In the same way that was done on DC1, sign out of SRV1 and then sign in again to enable enhanced session mode. This will enable you to copy and paste Windows PowerShell commands from the Hyper-V host to the VM. -28. Open an elevated Windows PowerShell prompt on SRV1 and type the following commands: +27. Accept the default settings, read license terms and accept them, provide an administrator password of **pass@word1**, and click **Finish**. When you are prompted about finding PCs, devices, and content on the network, click **Yes**. +28. Sign in to SRV1 using the local administrator account. In the same way that was done on DC1, sign out of SRV1 and then sign in again to enable enhanced session mode. This will enable you to copy and paste Windows PowerShell commands from the Hyper-V host to the VM. +29. Open an elevated Windows PowerShell prompt on SRV1 and type the following commands: ``` Rename-Computer SRV1 @@ -533,7 +550,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most Set-DnsClientServerAddress -InterfaceAlias Ethernet -ServerAddresses 192.168.0.1,192.168.0.2 Restart-Computer ``` -29. Wait for the computer to restart, then type or paste the following commands at an elevated Windows PowerShell prompt: +30. Wait for the computer to restart, then type or paste the following commands at an elevated Windows PowerShell prompt: ``` $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force @@ -542,14 +559,14 @@ Instructions to "type" commands provided in this guide can be typed, but in most Add-Computer -DomainName contoso.com -Credential $cred Restart-Computer ``` -30. Sign in to the contoso.com domain on SRV1 using the domain administrator account (enter contoso\administrator as the user), open an elevated Windows PowerShell prompt, and type the following commands: +31. Sign in to the contoso.com domain on SRV1 using the domain administrator account (enter contoso\administrator as the user), open an elevated Windows PowerShell prompt, and type the following commands: ``` Install-WindowsFeature -Name DNS -IncludeManagementTools Install-WindowsFeature -Name WDS -IncludeManagementTools Install-WindowsFeature -Name Routing -IncludeManagementTools ``` -31. Before configuring the routing service that was just installed, verify that network interfaces were added to SRV1 in the right order, resulting in an interface alias of "Ethernet" for the private interface, and an interface alias of "Ethernet 2" for the public interface. Also verify that the external interface has a valid external DHCP IP address lease. +32. Before configuring the routing service that was just installed, verify that network interfaces were added to SRV1 in the right order, resulting in an interface alias of "Ethernet" for the private interface, and an interface alias of "Ethernet 2" for the public interface. Also verify that the external interface has a valid external DHCP IP address lease. To view a list of interfaces, associated interface aliases, and IP addresses on SRV1, type the following Windows PowerShell command. Example output of the command is also shown below: @@ -563,7 +580,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most ``` In this example, the poc-internal network interface at 192.168.0.2 is associated with the "Ethernet" interface and the Internet-facing poc-external interface is associated with the "Ethernet 2" interface. If your interfaces are different, you must adjust the commands provided in the next step appropriately to configure routing services. -32. To configure SRV1 with routing capability for the PoC network, type or paste the following commands at an elevated Windows PowerShell prompt on SRV1: +33. To configure SRV1 with routing capability for the PoC network, type or paste the following commands at an elevated Windows PowerShell prompt on SRV1: ``` Install-RemoteAccess -VpnType Vpn @@ -572,12 +589,12 @@ Instructions to "type" commands provided in this guide can be typed, but in most cmd /c netsh routing ip nat add interface name="Ethernet" mode=PRIVATE cmd /c netsh routing ip nat add interface name="Internal" mode=PRIVATE ``` -33. The DNS service on SRV1 also needs to resolve hosts in the contoso.com domain. This can be accomplished with a conditional forwarder. Open an elevated Windows PowerShell prompt on SRV1 and type the following command: +34. The DNS service on SRV1 also needs to resolve hosts in the contoso.com domain. This can be accomplished with a conditional forwarder. Open an elevated Windows PowerShell prompt on SRV1 and type the following command: ``` Add-DnsServerConditionalForwarderZone -Name contoso.com -MasterServers 192.168.0.1 ``` -34. In most cases, this completes configuration of the PoC network. However, if your corporate network has a firewall that filters queries from local DNS servers, you will also need to configure a server-level DNS forwarder on SRV1 to resolve Internet names. To test whether or not DNS is working without this forwarder, try to reach a name on the Internet from DC1 or PC1, which are only using DNS services on the PoC network. You can test DNS with the ping command, for example: +35. In most cases, this completes configuration of the PoC network. However, if your corporate network has a firewall that filters queries from local DNS servers, you will also need to configure a server-level DNS forwarder on SRV1 to resolve Internet names. To test whether or not DNS is working without this forwarder, try to reach a name on the Internet from DC1 or PC1, which are only using DNS services on the PoC network. You can test DNS with the ping command, for example: ``` ping www.microsoft.com @@ -589,7 +606,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most ``` Add-DnsServerForwarder -IPAddress (Get-DnsClientServerAddress -InterfaceAlias "Ethernet 2").ServerAddresses ``` -35. If DNS and routing are both working correctly, you will see the following on DC1 and PC1: +36. If DNS and routing are both working correctly, you will see the following on DC1 and PC1: ``` PS C:\> ping www.microsoft.com @@ -605,8 +622,8 @@ Instructions to "type" commands provided in this guide can be typed, but in most Approximate round trip times in milli-seconds: Minimum = 1ms, Maximum = 3ms, Average = 2ms ``` -36. Verify that all three VMs can reach each other, and the Internet. See [Appendix B: Verify the configuration](#appendix-b-verify-the-configuration) for more information. -37. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1: +37. Verify that all three VMs can reach each other, and the Internet. See [Appendix B: Verify the configuration](#appendix-b-verify-the-configuration) for more information. +38. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1: ``` slmgr -rearm From e248bdcd9a58006ba4a58b77bb111d96542631e4 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 18 Oct 2016 13:22:34 -0700 Subject: [PATCH 016/210] new graphic --- windows/deploy/images/disk2vhd.PNG | Bin 20359 -> 24397 bytes 1 file changed, 0 insertions(+), 0 deletions(-) diff --git a/windows/deploy/images/disk2vhd.PNG b/windows/deploy/images/disk2vhd.PNG index 7b9835f5f653768d14e770f9f91747076257127d..629ee33e6ce6260b7b064ccedf79cd1ea56683a7 100644 GIT binary patch literal 24397 zcmaI71yodD7d8$K3?U39-7V71(A^TEgh;pa&|Ol}At5P$)Z$@P;Db0&}?L$%AlZBCp^3{Lq|SixhNaBp`d`i{r*GkcP_C+K{5WR zA}{mY+jzgtE|I$b9gXh>DUK49fcufBNVk-wSa(6hQ@dZ`j#mj1@uZ`lBnkv5zT^ow zi~owX;TVl7jALN_9<@)$rX4E(jQw$P=oDwg+e`4iBUq;uI}bnycL{=qcjD z^)d6S6VX14aBJ#XEtQoGe<|}TJt+4(R8j;Ybgis%#jiHNCb`Js@_E;&#C(7$3K79O(DoD+%l|CAXiVg7fSuMFtFn{%8CNd50J+`4t^M=&mv9L`#wP_JM?KLMIB3mIBU=wKuKAT@T^=<8>Ruw6BsCdfOHozXAj< zcdZ2MkFL^~D-w2J@I9Bo6Y>{O2hALaD&}2ZKb^Y26@>S%7;1P)wuj^fSaFt5P#7sl z%d(KE{+aMXLI~~fOL_Ll^Ra_yB2Kkew6mp%ppi=B0uRG}+ry;Uzq%UGLYL4V=sMbB z+IYI+?V8$t6GM;qIXXM3x9RxNFLz!&2vdLNe2O#T`z6@dwf_<4 zoM(36(coi=reAac*H`=Sn5RlxwNgv+_xs#;?{i;%?QRiY@l6`-NXTd3!bW~PQB=T6 zW>c_dLSDXJ19an&NDgT zLrXgF$h@Y!yV=b{619i+&j$U%51RKAwn;c|FO(XmPb)L!?r$5o$HVMj@g1KwTrX~Q zjm`|U*~{o=z1o<|9ZH$?4(#%(YY2?|1skj1OHmK7tgnr|e!9izd|jGI8?fp~>%WhA z@{X5FtWtgZ5nc{q-l5cwKQq7%3zE85pb+znkLdsOZ1S5F`A5zB0qV@?Q>%Bqzh@Ys zjJMcZoYklq)pNh2BI12~-6EAsRGJr5InPpYZ(HFSP~m^~!j=1RgY!en zd{gBMj}zy$sYAn`Y++aa`XixDXM9C+B=I8kM)8ocQP@D~He~;mjJp81=MaPRa(AIo zGt?h>x;ut^=$4^j^Eq;DwSpiJNdb$QbEV;KIYx8nzQ@Mi!dorREUp+ zahkEyQR8Qftl|1{42@*XmlAxc+?wq&n)^8gHlEq}tc_H~HW#@crS2CG$MTlh3V?Yn zF}Z{-Ji>7_YHZv*ukp$!cU}pnJ9X^02#l(MhEAh5-wqa9!r4X(zHPRvHTrvUwf&st z>X3A~&!bvdZz z9={tnty54>op?qANqjMLH{jNTGy?tHamM1_^tTCb3vn(V#;tXTU75&acf(hQeUdS6 z&Ko=8lJ|u-Q%u0mM-^de{;SbLq_a(uMtDN%(+zQX40m`TKevV^@#=%qSc#g1=il_!ud? z<#CW7*_+&{m%C|?xLs|28LGUz+4}SDR&CwGF+-^_$diVXe0B(T*Dse^XyxIqk1-54 zUBoHKU#X3Xi?La9l%dwp#={7B(mVL{-9T}htXD#eP>&_(EI;jas$`wek8YUSx!c%5 z<&U7^$6=M>zRIcObL;(q!YtG%#Z#Q9(pp!{X~;$^po+V%Q$mD zBH3hvXSnZd+9ly_VH{q2Bh0n$X>hbiML-|mQ}NeV%Q-atOIYs~46N?PLhaCM=23n7;vPLI`nwmVA{ zU3q$&AB*5WgX~zbLlPre7S5w5VXEA%mwfw6E$Q)8VA(7o#{y*4$;S3GPDD3pyR_Gm z2Wh~8TVA2xVOzS8!<_W`x{|G>Wp?}hZ6-VpgXR^^+C5mk1r9D0SN( zzK~s>#FRKYE$6rDpZCj$h_{*OYq<(P*d$$?=N-f@klf_F__S=?)*35m-jr(W;jq1L z;dAhnKb38)I`wmjc!lq@2Ps!`5uUk)Xs2o0=!=d%*LI_1mGBR%#{T}cRy|d-(662R zcAkxT2LTtXqmvmwaJ*I5n_s(>=6aq;jb-9{ypxZ5uaZZ76+@`{vb17Z)FHYE|G_g5Vg z06cL;ldGM^t;&u|Vzs6ai>u{C<4rC^uFIn?!Tq~2BFK5*wWgQd2HJ&ldY?uIO{y@I z-$>^1&i>jB-bB7b;pKHat8FGij3rXrIdwEqW%k8m6P}c39wP4KzitN~ei4sRXWM_e z#WD_*tK^;Up6{57`FtO{!Yy9nSOVWKd_?`mm-D# z9|NHwNsOB>FQZFg2j#q!t=MtxBV!d{AygU5i_NLT*(<@Q$Uzs+xy>E%@ z{4Sgj#|c3k=@jjkz1)Mg-8Pb^-HT4cMb#&?J$z&J}3X_^V#H%Gh0`E zMPWl_5P!DxA*snwqFF}#Ui-?O&2i}OA?2cBjnKmOr&7ywraf-AXSEO|`^ zTr4ShEnf*DN;?owmJr99ZQ2(w&GtE1w%~9^uzd$JtnK<(+t^F7l!BE!@(5g(dQfFqh8i^JKoFZO%kHE&ELx zM0=E{{D~sp{7`+pp0l4;<1(u(T6*{3lydIR1(b4@0^JG;qy;J977gMU-*Qp zt7qX1l{R&YpG=z0hedTop<9ejk#w)w9lj>>*)=xN*7*Sqzu(*L|1L>g@e5+Cp;_?h1&Fg1o)u=Eql-$kNVDC|raglT2w}Y|Ic55Z0 z#h+-uzdvLKYz{q%*EzxZ_L?5oYLIcz=2SLpJX+ z=>E+?`z9p>yCqLJ>XDvMpH@4i#onX- zgbw=b>D|9$ferFwg_S~^im_!2(!XPYd^r9}sY_q8OmaF$@>RDzQS0aAbfumSqP32n z&UfV%pKXw%ba}bxw}<=TQAeHO8&u)Ac17;Wd0DCVXJ`Q%K~mCqBR82Mnr1oP#2blo zrmhPu94n$Nd@IltxJ}S0Q#pLfPj4rG$x(^cw5)+LOv3p7TSA*Ok@;;v|A*SY2IjDH zLmDJknbW3d(O>-Uz^Zbn5k2!f$16{w?ITCVKt7tUh!DwFJ@vjcoX+r9C+$zZO@)2$ zpHgJy)>`gCcNFt})~f3&uZVRX^;l+^&zJw6?Doi6r1jbgvG(i6_wZ>BaXBj-)#bUs zCoN;f3}5#HLW*UdjQHI4zo@wCvI(~#x5gWBm6XjDhd*?cS&kTPy4$fZ2UCy@1^o#q zQGhR_L%v(EZnL_jK{NeJ36T!;i|4_kN{QOSyXl`V{+f|xNhpoOt?{DQ4I#Y@1~TYF z!9f8aZ}~i0i^9yQA!yWp9{-d|M};iheYX2Q9U%LWHtSRcaT&KNE03Z6^X}L!Syhs3 zA^@KrU*@j>H-x4S1uBE*B{>&#Q5yv3MUWvQCyFiEC>3`72YhoVb5h5;jN%A{2LyLtdX;OF<5 z=j68nTi(`|`J*L;2|&e(;3T6@70+J;u5>DMrRAtqblnXL2|Q6^MCsz^;rP=qoCf$( z9VF0C1D0w3wf>R+q~zq$8c&cRR=8%Hhn4^=)oq{%hNTkc+YrP<#|U(Vsy*ZB^m7g_ z939_8HZX<>Tu?FNxl0<1s{t~|yLeY7P`F^#@UmO6-FNlPXY5T=@Mk0z%>BeoM#wyIOp6FuqQ72nuAiO{TF0mxu}vK}u%J{d=ko+97jUnAJsqdU$@@ znQ8kzz5@E|=d8ex&~;~=$L88hV3+9+3S4OOyc=(EQTD(nzpvk#Oa22gTUxM7d%5Xw zRpGq5zlkhtudpaQHnT~QYC`B{x)5+?72f$_cF4;qU%i|$j7*uwvb7xl0niV$FjT@@ z7;+baY-Evl%p79szuQ^QE_GbdvG1Y88OuFLuI|4sJzZp+Cm@WwGxGKBt<{fXgp;y5 zm&xM?NjH5muegXMq8YF+M^LSCi8BPRSAT?rxZ~7CQK3YkF#KZzV{Bw7;7$%) zevf~*ybZfMwp&ycwqaa| zc^c~9mIcCr8^eO7o?8YQ5X4sB)&ekjDp~H2 z;gd}3012pB*wV3I7Ra~WUbfXNPb=7M1u&EzFbuIbSG3m9OHl!lGxs*lcZcBn(`$J- z`By!=@lumxQAh%)cn^D`nV8iD8XLeW^GZ8G&4D`~o4GuQMGZVF26knxsw>%=3+TYR zF*#CZY$+StM7L>C&B_5M)pPG_(`FGT3br-bpL|S`!-alAEnEy-bEZcWhkD(3E|K=8 zMF&)6#Q-!<@}MVt2g=FOg0m3CX#g8r5k((Rh>LPq7hf03=<9idt-jf8$C}B9hZt93 zAJZ!0ayRo7u9NMgDMk-6_4nqa_M<89fL+@-+A4pl<#}1}7K2FYlh+ zIZQ;6uiefFo3@^B28?Mc!62!H7dg`kwI{x4o#IB-c{!gS9&r)kgZ(DAOING|2DfcQ z(uNT~U~~+?A8C&uJO!4*RQpk%!^#3vZtdvBt(WX>Np^RA4fxEhQfZBJddA=4V(2O? z!ZAk`+8haWSU!}e;8bqm;aG3ruqYELJ5-wH`$O`nDmh>0ujnW)ipotT=!0SdEK`kY z`&ws>Mn=u^m4JxevXwQC7nWU3m9kz(c1)c=Z1P8S&j4kiy9gXG&DqiCQ3X)lxAN}C zF|lPCw6OH@4pknZKi>Y}m-CqSg(yBgCuc z)%o^{5hksOp--iCFy(eqjv$mC@%WVg0oOM1-MIwiXe>%Rzi z;+r)88FvqyXvKQLFegmY_iY-X*eg1qI)76F)rvG_A{%k zMR53BjVfF>yuvW6{hK}cI8Kvucf<>7x0$%20X_Y*xc7vUbQl?C)*6bd-YwscJ!Sn~ z%7P$l3`6?wlh9T|ikz+C0WAC`Kdv4j4g#!~c*vSu&;z=$0Kd7&YFtP>BS!Vo8aZ|O zsJ@OA8Cs_|00<)gi1XW}haB`vpFvTn1gQl71x;O?U@DYgM|3)Cx+N)q3~gaTNXW>y zKXe27FHH$%%<3{1OXw{a9kco4vg<(q4U=_j5SJs&v!&{|*Je8=E26+Dfkn&tLn(&# zcPlb{UIk@i{5bBcKS}rijYd%+BnqHUCHL_X0xmr670HjO5^WxMgAX{0lRQ=$Y4qA_ zhMaZV3vx$a+sxcrZ#-_fvEKN08n{mEt2#aTvp0s#`J^UgOzg;j?l;s93L$cg14F1^ zejy0SHS-rmFC|V(i4L*PHg0y0{#0DNeX=p+zA;GL?0fcwiLfYs7kd|b|2$hdeJrw^ z9)omrtn+rUgjAUWD12*%v1{F_arA0E3g3KBrGdlt33^g zS{lxw=hf|aXAbayl~Wx8YjyQ*viec7v$qFEBgO<_x7QbwGv$WNyteFMG81`zYmS0r z4$93e?oz5Bm5;C-2*9Rcg<#kE9(<%krlI4OyVI@#dLtKg&QA7`evYW~j7*J8ox;+9 zLc8jnMJT^^yMhq6v^}3n0e%BL1NHaiS=?s1AS}qlfG?=(`ATC!TKUgeW)<_3%q_nh z9&>J$N|B8(bvmpV&aKD5?dU?_?o4^%J9fQ^diz;Rz5)4eGvVEAqS1uO0&;%aaeS!E z3!X_3_@y#P0HY7Ym%VXXrc2?|&Qgf!K}hg@r;JHj+@i(F!5^mprJKBLR*3lhn(J-j zRVxF@GvgQsAUKKv@1?xF0@K%=u!P8(qkwViX~m*Q#lzVyi}dPJ_}F6U20WZwrEtGq;s%wQdT0nPDYe#X3F?TYoGAuMWO?x`;j94vQ1?L|D?Ka!h{FJko7Mdoe@_&yy!A|k@} zY-d_PP*B0SVo;{{aV#Hu>gojrI&fU597VCl$>pCk_BE5&>28*0&8 zh1zc?^5nIV0uKn@ecqucnE(0md3@QdvB?W6I+#mJby{NB0xOkq3nMjM%&k z-Dl+En6csUjBrkRjDfhot!A!bN8Zo@N@M-*a zC*|04S=(LMINw`7-H2~P0Ub1Pu8!~b{3Wuo!2Ci?)&vg{!{Yh%m!zHM=1YYMgq)Yv zOLfZ&YHda*pisFVadflEHrbxp`JtC z?6O=t-5&C|%$WoAwY62kg!LAG>z<`O27l4C#8EspjW`td&2e1F+0$?jC8r%h zi=a@NaLnj8WlDRFn8uX?QBlJdhTU5gcY8C(Sdd_=x4?8Zp3au($N5GZ=2aH^kZTMCF8m=flt5lc^2^yHz3fJObY+lp@tO=xj( zUQ#tee%&~iD++R+;k^ttAJ8j3o6I)`A>;5!y6{eEbe>hn`CGERm5#gyrzKUrO5=B* zAuzgr-m!48MeALs^DFGtVwW7zg{fx{x`9sRtsj$Ajl0Im4+zod+4&MZIwD0|Uv$b! zWbC5=JaM*0?&5@(=_FjIOqZHH>L44c&7S-3)mgxp8q!mPPBUxFxwOR!{5wi~tcdD) zg#UiIE8?TLRn2^JR=_e#i>EAe-ZQp@(Q`+O@YDKKs#qMjHZtPQ|Jrr8>YTNHP7i8+ zW;C**tHCjtpG5q^_;Oe}NW%OB6m!TV!TinW;LYvS3MuT678VtSFl3a~hJT||7L36m z2C54OBTdECjurR{798C*UZ}*(J6C6yB0iI;vkhAVh8N9P7KuGB!+Mo=Qc zXP}b_qwgdvz@W=}MnU~!3Z7VmRRgC=NrUp09LDG@ykoyn7n9R^})8pXcj_*vD+P!|QO0zr6h6l#XewWb(c}5U1hx3DmV09BV zoV}lzfu$7GpNpH53#s~47-y9CwAKaGe==3=8x89B!Y6A#1>Xt9-)i(F` zrX#-T6l;w4^t@pLs$&`loV_3yG=1iBi}1*79grE$H2P=?v==d$9nO?nHxuz!7Fq68 zIj)U3owhl&gGqyJ$RT)GSofS*F?s47N(}0>q6lcTq7}tu^a7EyoW#khZ59hKvP|QTHPJshHUjxZk zNCdc%`b66oF9JK?A2EjN)n!EfA`B_i3H3ed!T#!nY<-g7>{228n1vk79km`ay7m$M!#y5zd8`^U)dHq+5*6~hn>S>iAl7# z=t%rmF#jKp$8B}Nl$4Vl?St?2Ct1fr^X_AP>$2+RLf_Nb_6V(@R0SegmLrshT&*O)nhh$soI90W?(IGD-s|WywFqGTn%v-K&PWw#Ou&BD4 zLm7}X2!93x8SjvoqaY=qDmP~mR&rQAHYEWuDk|8vq4rpu>fv7=M>^dM1(rV~TKCS3 zb!z$>KV2-Ph@5GDDKFCH1$zm0%9u)<{&7{%gg?$L@!vcox`>cx(5_qwKilyFh5wLr zSEEtSb6!M4Qe{CIWK>dt*+;YjD7eyqF%;y@(mptVY^lou7a^yqSSpezB@1n^>;uwc132Ix6ObNlg?3GPZ_bDEHZPw|nv^gd*mNk&m`~t_-*s@id;OfG!QEt!TuxJ+G=k zP{gZGK2?}dRW6iGRIwA!c2ou00=yPtK${w9_?v9@=G%uyrx!)j^Yd7ngBXxEN-^*I z13zVx(ug_faIbtLX9dle&VR3MGujBI>YVp8Ei=TWSwOb|;ar;KHx7hckS`;)P3g(C z`mLJd52oiy@~xX&`$H)3w+Q}sR7#E%`>NQK6^ZK@`Q$Ll ztgoxBPYi_ z*16ta-sb^eInadtpA4n8ry%o9{o2~85e#8yhzjO&GO1rvL>u9op@ufQ$F?$UHwce* zA;W9{jfk`B65+OT3`LK|)H5|wdekUP8FwZd=?CWW^qw=|-M*;zrspB^7=JdJQFO>M z3&!#g_OGVd!4Uh}tJWld8=H(@psgnlKP_R8X;kHD;DfVDNqi%1z&oYIq5MI0d68G+ zxP=n0^TIAp&~X&?C}K4-j-?fcheJYsA@}F%e$UTZ>urZf+5YlFZk`-rqC|n8_#2h! z+>AiEC(rN+@z=I2vdG%bDIT8`C{R0G(>n0Izsj)P8hW_wYftl$Y-^1E&)CX)QJ^84 zxq$j(ZjyMf@U`!=s6?<%%r(Pv>R}RR=@J9Pzc?|DQmuf?F*`LO?=Tun!y9dBk-6iC zW%-eAu$Y1QSe&e^oVsjG7>b?AO|PM3){&~{aS;C>0@$#$vZ zmd3@2$JAfeI-s5a!K=T#hl+0Zi;m-;WW;Y4l^Xp<+6wT!4hzll9~E{-*LvJc?joKB_GW^2R67Dd~nZ{+Yvi4&&y~87Hz&L+N46q2keb zYc@@>;%~mB>X2XT%`;L)|Hs)-AergPHe{8X%Ru9yiSd&JhPBGl zNy)zXqp|!Rjt374Bv=B!iJTee;sNAAJP7!$LR%pR`RDpA>ip)>QAiL&2@cl&`w<06 zy9Y75^3~s*|M@p^3ja&i<{Sp?cXFWr)kr?h|DfXJ91pER+x{p^C^+s9f%sq)!=6~w zf4Y^1BKycpg z7vHt7Hr>g@%a?S>{UT>?q$x55hc?Trau`hwtzADe&hkfeMhyr^18%=?a-^Ggg-y}c zYrmq!On>@nUq^H-H`>ypjy;i|nIf#~$8=Z|b}cS6*npd7jGD}r4Qwi_wM&}{^wkm> z>vRQb=zz7izk(CiTngJT5FQ(tO|Nd9w~v~BB-&gH@c*i!K52r6%#h3* zv#Cjo?8wU)>bfL{dAFTeVJfvS@S#Fb)~BfZux_IQ(SQq)Av4KgP_x=v0S2^Y3+v5& zInY#@iB}cxiB?|MY$4%mpff$X5X97NS#6pcxYkGYzDUC3$D zCV-(Rerbt)gdn=b!l|PHI3n}-oSA~rbN=46D1f`)r$V~{-fejQY}?LxY}16hJ%Z-Y zia+MDCGr1meN=sy!)jAF7(w;tt)Tx=W3Euj?@dKM`=90Y#RC+{gW7M$7~lMdtxtCc zbC0vfQC(sO`?vKgk8f_d{i*#j0hQ%-yD#@UDlLWktlZp+63dO~=@>_A$AYB|Gi+u# zz?ig+ZSX!_3Q`M+z1vZU9FK7Xg12zKp|gEJwatHp8%*WB(@08f#oa&->vWT*qePMm z_j;t=i?>`%6shHcTUZUb8#4Xy_77-q3Yn4QV=MzW2QoM4lJjcY;_ zviw~^q%)cCZQFY6_q#Y3@L>LTap|ApHY(%o`g>&kAN{somGsp6;Yj$?0qmUh9{3uX z!BG)Mk+k{a53XDABa`$hTCW~DaA#X~4eka1#P0IOs3T&K1&jrcNk;^2lR@yk&I{q4 zky7e-Ut5E)G|rH5n})a#QBo^pXE-$X$TC`2Qe*SPWk{lC#=L_Gy&;ohg z#eL!CiQSNxm({{PCoi8YfQ_PRK3bQJgV$5%=0zc&p#3Rdu8p78XWZz+)>E#wtC=(T z=EGlj;{jsdcEt{hvz*)WJoQfoY-$f$a@}49T`a9ke4ey{G8=y3@Xhqu7|fEgX>st? zovm5OK6hxk2vo@XVyEw|c5?@>EX%Nyk5{d43BNV@>`5B6uE-N?lYHKI>i(=E2RaoA z_Pp}ipA_g&oztl19;9(c1JAjxL~i}M_C(h(y(``gQY$Jouq?R=jeDJ6GV7KENYnf7 zU_Y3t(j@sbui0S09zVB)dhIN9F$v2S_p5>9h>mWxkI$GP(BNaKk-N#q73tBu_q2qH zIvr^tFF$*>Af#FYSBjegD1JHa$Hd{~JnyBJE?O{R24EXtGcNZogm64av1WCrq*}lj zAJxs`yv`f?qV%L~PsMzX;zXq1sHLh-flt*GnCqbAFtGPQvb2v&j1 zA?T?w8*AhGBs@0x>41rgSedWK7GvpmpTQ@h+!q~8#`H9nS3*YB%ad?>JHMg@&f{mo zs;KjiM6fE^e_*V4hSF}H!7jf%Z=obBRItF=FmP~*Jd2ssuob$bSi}t2D-lw>vu0gl zXQ4c+{&W-X*lH)rzprf>Gm$I21Gz#y_2u%*uV?PG=#W+oX6VMqw?&wuAP?ev99#^v9Q-6c~vWU2v(^}0xW5KeEMYAA9O!q_B&!O zAliKRAm2KclL4dScHh}cd|EU$XaKJAnc_yu&gu)3E|>*o%B!7U{A!TR`v$v7jn-MArbOWCG&iY`B2c4DJ6 zWYq%i*}{iCnR?_0Tlr8ryIfOj6Po$6I9K~(6JrQ_?a=XJnM3yb>Gsa~bx%!qKwaF> zT8Dzbn%xWQ8E3VnLu`nPziJ{N(m~tEm-(jyB4v(fOkF<-It<>7raW@)mU*Xd| zXJtZ-&(idb%7{MK;saEb-d8YC$?tn@HHNf1*|iwm=6yYQZ4%kgg7u@JE{LvpQMb`h zn8s7qJUrm-kdPWBjfMb2-Z#&Fi&vQz&kR3o|<6=B@fa3P`_}(bFg`? z@s@gz3PLBQ;08}Rt#npSWy+t1(UCAgwM#9;5;{ayE~!Fp9@-6{M2cpYLZb~U}WIqMnb1*5iOJ(50cr}{kyHH5`(TPW2J zHNz*rEXo|63(E#Up;VSAMWob;3UGgX z%VE2kl1bLb#wU*r4Vrg)g=)FR4|d`@YIx!yrB*iMwA0&oe~sm|ym5O1{!X>X3k@s+ zfoEJk(>=5NcRWjCWZd?9`9EIIJHwUk?zBAdVRT`!@Pcn!y+UDBa1zvrN$8CXLa{XM8E))lN^BD9j!vX4 z91kHiyLX3O(dZnk=s$#Yiud*$J<=OK-l=T!fFuHV3;Yu+T#;>ILaIDA$v)RP&Ps~j z_c0@!O)}K(H_nypdfyxI`6g0;$@XS7wh2eZH=tk>8rDj&?Zn4DPz4%RV_jnw{OTGd z+x$v$2#@kD;D9AO7L?QD~UVp3N)*AUo@+(Wa)cb zhe53XYB*e0s(hOJQDMkyB8a$Wwf17T7^ycFbFrfhzNMV)3QVuI3fmLviSBYr4r>ow z!xZQ@O#3#f<1`MFMyWe66)d0+$to8E`tyle;FEBvfv{)KzK$maP`P#fYzjPX{aoDY zJ4p>uZ7E0Kk17HLQ>Ze0*FEj!StgVy7xpQ0WZP#HKp%EhcNc7aEbf~I_zzuoYbp?! z<6Xb3qu#@W@OU2aQ0IutSYUvnYe_4{O#C-g5LaCN_dd z+lr*Qth4!{b%RH;MMU2|8hZ}suGJQum(eU@OpsrbgWVfHW6B_N-pPvN)$Dg>>MYmj zU9PAv8Gt3(Exxz}hWI&)2gPaMKGQ$ZR)5Z5<^O5EE90K`CbC^TE2A^b6c1?t@vWY* z?Kj^yEkBxWZZX|{??mRH+;5KB&cEkvnq3`RW88+(34XLE7m(C=iA#q8j+(hF9|60Q z{lZyzQMtYPRl?f1SDt8u$9*+C1yCfs(ZlhvXQn;XD$=)y#l4Q+2V#_f6IkH*LC1ZY zjhm*dZ=!dCbM|yqg%v%zU4Vhh(M~uUCkn{38Xof8@8D(Nixixkxzlz)wYG6%&fxNH z!)G)dl7_cOggR57PO)JS!M$k`#m{P{_f(RQsnH3TPvXIDV|V%5fA-Fi;+?z{+6NK<>{( zqK#iabdo0mXHRr~`f@>5w~B0%nZEGBgU1pWL2rp+td` zvM%f$E5!?_7{Njy+Zqs&wMQ`Y#c^hs3#ijcnP9BhyaBl68&5vH>baMGc0FrEA9v$qTI?FCuS= zM_3ke1c5Fc8G^63s_o&n3k98uKs6v%vU3jp+_}!S8p!F|=p%KRI9SU>8HPuFOiJKG z#BlEz2(F&vW&)aJs|#hbTfTZXuTVXNohceRKGa9xj`myTk?!TuvV)9`)DmA#C#m-r zk4~KWi+_GfS5iC3!hqqJEK$o%rzd3mfpH5H=`X~2wG1FAHd^nL0WcJjKZl1~g2?0- z@0t>00C3@<1?FD@kog~F#Z2f=poWYO=^~KAFUkYOe^rky97v)Uzj?JYJKX6pmYF_ z><2YW8G0P7-+d$1-lBh8%C_C?GT`L$SM)a}yQPRY@?yR|ylQ2Mc<^RY`x!S4(8HVh z>_-x<#)(-0VmtJV`-Hh&W5DF0djL`Q*$e4}N_0d3`EYFl1ozx}(J|MS+&`>a&w1az z5sxLY-^)DIe<_%_g%h*=?dxmbvJJO^g;|@FJay8IQtpEtA=P)zb1$wuj7FRT1(ClX z^>_rHYxkqwC#Nh15GidPjavx#_`i)1j=RhoBzrQj-*ZYmJX!4Z+Zi!D zc{Q$*?4z);VFS1fP5qOE_Wen3vx(Q|&TR=-888BFLq%+98&guWT;CTmV0@}PsS2Z( z`R&s*TNLpow(hXVIYoqgvNfUr=^A;GPZt}UFIX}5(1uU(W5d#0@r($qklDZ5p8kr( zqMU(Dto(9*?FA@{Um)rjn=amLD+HU|&rV|J1#~NR&-^RaQ{vix-3^eF4+>>}Zxj>Z zU=O3xKbslxY{b?pVWkWk(-w4x)u02xNAXmKl5U5-LamY_bkN`-~IHZ)Lz zKKokW2TUwWs??$*$S&$+8jf>hK#HmN+E?%(i%7)Pz;9Uf-=JuE!{hN2EeGrt!S(8^ zH1hacTh#qhc^%eCqH%8RnFf^!^|rmHeoofUvEpt@vzB`fdJsvVDq?OSluan8Je*tD z3Z!g&M=)7Tl4-|~ou=0Dw0?1_h?!z_!mwp=>F60wwmz4?%xF&S+PK-no$;+PNvqs% z>rvR&$zgQn`1?WpDxuxU#R;Y2VEuY)3Fw>hk=&{y(`!y)ric*82!F71X$EJx!C^_Uu+Tz)*Hw8BETYJ& znNz@z%y==VK3v_KcMBEC9yoqdX!XeonFu*}_UbyJV~~v7Fx*R|XL5FhcCoeO;1~gU z*&a{PIWmjOsiEVz9P8LKDQv&f>~55R=hUHxs9C{=mY*Wg;0?pB^MnZ8Ix(Z6zQvC3 z#V1$A`6k!cJ9q;2SNDw?^lDzGR_*+G>BZfl*LcZ3+~<8pBz7(wUY2GbPhg!F?9sh} z^t_lhHf(qoW^evZ!e}M{yko)e8P$7S6Lv}5%rGQpz(e;p{^f**AR{&nZ8}(wDe_S6 zPu_wogB+5S88BcGoE!$+8r-DN zrBRvETWO~Re6uS(kp*zg3&pGNyNGB@JCn!5Bdi@PcIEsxsa2jQ887z}sb*rs(r)%cE}Naa z(cEs}x{cJF6EyDs7ycs0l+s^p>piI)UrRjEX-0E0NtfswOeK#ZK;?1bdxW*RrIW|D zaydI%o4BD5OuZt1ZMBzd^DN5ux;GPGZIU`Ce1e0y&OgtQx9dyS;))qlL92o@A$9R8 z-1FO-fGw+ZhOar`qmRqWW(j=#iP4uy7@yFIA~>$0>s7XXzgOq_;I_^lP8WBOmpC43 zkOt*!V~dt}m%;g)+C8>mG7R>jMczeyuWXG)1~Gjf$k9a23ka6k&6u|9 z(S)lC=18<$`sJmyMxn(ug`sX0@`U9YgfK70?xPNJd1ibgUtz0AMHn%+M&9fio1L*C z&%NzGkz=O@%ohgp;Az)@C4{4+&Z5gl>TIRW4d{o~e&wMz!-i4~O(Ikh#RH-h#PW># zm9rL?2xCKdf_dC|fbf!#4v8@bErC7>76azFFr*jQV4sCDzxhnWx;321@4nWJ{ysN1 ze&WM7C5jlTIq7u%z2SZ-R@n|;@`frQBJA{($(iAeg=TgRCj+%nY#CCg;WlUpim$A$ zVaX5lJ8z~4&9A8{Svf-|g)1-b1a66~U0$6;TV(V?RGBKD9%x1Q);-}+<0{sN<~8+< z&3JCIYKN~^R!PbmjtMiH(vb)rRasz(?|afeomTzl9BM!%2LoP(zicvxGD${H=NC4}1LDuFUgAszu53YVSX6 zKhRc$0a#|rg7yy*)9s64oEa1$XC#1d7ikKJRD)Cl1f@n01nEthfb?DjDFzjS z(h-ne0@6YW#2d%xw*7^AmL@BKzG$#H7(PbjSU8!gp^!h z@szZl+y13qML9Y^`CN14WV!fFtNRufAetIX)K9@tecgHhS9ZAE!(c^H>?t;x4Qx-w z1!^$;HpaUqEZkalD`u%AnK)Fs?uw-8Y&k~#TynCHvdr5xpFs=z@Q`mdvvrp1*V^Qg zN>F)?Gy}`UgX`2pJUD%2I`J?P<+;L$#roqn1Ns0sRiOSgPUND?*i)_p3-hbBdWitd;OHx7^e}TL`KtMm?{QlBHFCB%hH-vqQWB&pqj~2Li@{4!mCuNv_gZv1l z3Lk`&^s+Ae?$H&50L-!$TBr^1?Gx`$aMDLqct@+C6p${9zXCk;U#&#~ib@lTONT*6 z_`A|g{uvDb@|w`M2hh7)pnam#a?ro|Y%My4A9ecveEByZ}$pX6fj280#!850C%zvRg z@sXX)O@{}^NT1%+M98q{Wwlq)&#hg(Op1ZW5|aFcI1C6}$4TvHWk84byIQSezdxw- zSz>ikbuENH0)?3v+b7nc7~~3495LJIk8Im2hZEXxSLn)SliRD}n26cJB!gRzz~1LA!0-1e>#CN&yiH+& zL9!3wK{EH>yx>HHK$_-o1-)GtM~D#?mnjsZ%-pXV+xV0=17yky=vT1JN8QJ;y0)lP zI9NaxWR7;jt})& zVCD;I-L0No51*y$Co(C%C=ZhE2)<6s$!HRNop@3x?roqjBy?BdBc+fjS)v{B)!4_w zaV$h&c(0XhnTEOY`ywkZ1E*Z`M+(PQY?3J3gnXHpCAn{M^WRc1wdWyo8q%7wK0vF- z5fcIRAIK^u5*O1*yl$?XjtSyQB%}8}PZ!gi3q4=%X>2o6lXhb@=W`!(^(;(0HBPgq zz*4-kE~T&gMH;Yj*Jj;^OcoJmhEqIiQnmZ@4O}=M-D9U6V76fWmU-i)6y=QNk&ELD z+mFS4Hp*Kf&*^jWRZ}9@Cmsys9}O^1kpUCwajE~YxeGm^+gKr$oO^mbi3~+eTHmwO^tU&y z*rGZ5F%|6H;ChswqcY_ZcJSV2HU?YDOA4#BbspEQQEfPC_&!iTnpTGBxTA27-QhAF zDgCxoe0N5Mg1Bz@UWS;ls)mL16~1>|AX*hZP&Fy-EXBJORbEYd$BeB0lvoSH0Z%<$ zhI9^+*IZecCN&0)n0(wm3x)L6Dd_7vkv8!?jZ92mjn^$ z-?|a{-6A`BaY*qRD%JRk{J?xASBMol{(_?_hlnvviIKVSv=+aoQ6{}H3SwaTE*4@# zulVWRxZ#o3HI-Enop#QUnA#NpoEv1qar@l#a(hG+S)fhup(dgzmdYK|kuPNTV2nP~ zDICpltBpBTNy;g>C4#R;Rj((%?v^oc;P&@IO{&Bhx$lL@;9vA$$Kf67C&2_$!IQy2 zh2Dk@HLQ&7dC#;|TK_yxzQV&wInmQ}!CDVJQ#p_^TIK5{Iu(0QolV@SvbN#j{<(xT z;ls$C0lg`R2jU z2r}r%p**KnO?WQh9&VrvU^FzHi|3<$bayuf&i4#ytzZh!iJ6zG4C!;w`mfuo2z5q@ zAvZo*z+4Ae-JBF2TF{g&Tj?Paw4ZiyW}hF6Bg2nS6KT=&cys9Hf2bc%453%%LV!e7>=@!ZYudr!-~M+@2Zv*s~g`B$|?Np zjhtblQ_xNvM!EH<-m-w-ALWa!rkGi~&GDN2clyLBWHli;$(rGSg+*8ck_sN*H@f7D z!6-IRWT1*OTD8XvT4OzlPXc+)5q)lY{%vLRvv`M@e}Otw&)Kav=Qik`vm=8n=(8-uQ0@`~#|J3@pYexid~!H&y=udP4Q{X+#k+X|qQ=mFA0HNOkc46H z4G{e2DY5 zeG)A)DyNP|^BIn#d*@WI#7EEiuBUti7y`DO3#Za^>C;dlX=zQLI@hT)kKfM)kTQHt=6xx|B(hTM+7YomZ*PdJF0b_ncSOCdz(1On#29W=LKz3?P~)w zQ~v(m$_pdAb9487)Xnr3o!6^x4}P4GQ40t?9zcmK+0YMIFuu5dZ_h|8J|XcEwFkZ< z1{4YNAy1|wMZ@|5X%1Tn?^Uz7T~Yi@?9=?>nC#X24|mlkRL}sm_b>XTJRsz7?uUCrmv*)sVa^?w^X%wJq?e z(b5$~39aqABQ^L~QQaFXGQN;M>U|3i6igBxVOOqPnPDM1+L>&HdrYzB zYRjlih~e1$=G&teRAS2)-*%?PIevLa?(l{4?Yu*jYp;8*q69BGf8OznBhrFyF+vrv z3O5?|%AfzJD(9EX{A~Nz^-VKyLg%a-vl-oBwkjZdpNrB>2LmBD~Ejf&ss5mDo#@1M7Ra5XE4@-^w^j${TX zRVFB!Y!DXk(>dnUU<*{2WmGFEn-wapk;;lAZZzMk!YlN$&Dk-lStBeQ>o=M@VPb1H zk$4kLZPb_*!Q z{%prG|Kmy^(~M=nha_f?-@Q-(H;Ez(W3uW9{KMs82Zb?hfpH%-Kz=89&=xs=in|hS zzrrmKp6yp1gZ4X1erOy!3~O#tSpudBDBUI6N;On8@#1Kl7iE8U#MWs4PIWl|@k7Le zrqMoD^^MZVh|1dVWwZcNF?dq?sY~w8$_;AE>8HtvO&7Z7Y18wyOajrUS&15fV!dyl zg%4N-{n=hVpS2M;{_)PV`tNxXSKM?a-{duL31c*O?Xqpgtr-KD|y&KE9_rspn@#Vp3E zunNs=X3>7idL`=M$xvNnhm4}=ipc5oR;mAcda=v2!Uqb-xZiKN%Y;BwobsQ;v&2Or zsqXPITk>J{b5F4=m$6@+IY7~}M`DMoLjlCmp%VFflEa?0uKhKPqkB ztwu^9VR^EyMyuGg>sPeFkBi;y8}F0(1k11f?ep}Yr8b@5kt%1?XKY30^#=Q*_!-IW zb!#tpcOFY0hNm1S9SzS-WCchZSSS7v-MZ{EQL4)EbB&+f`PkfNLJR2?Ua_;Y;Ag{* zp;>G>R$61EbG((Uz|Ks&7>46bvS8Ioo;0f z2h0!tb4D%1R`Xv{44$>v^OXj;Fp59<`J8(}Tl9yPDD#2$R#0DbZ}ZsRqx(L`*Z|En zx~Sd5dZiH#be<|sQG#ui`Jj61=rQt&q68oM0@8xK|9x~X&RK1I{?rrw_co(b!`mcn zd{fk8u802bS=c~b_qQA+JeT66QWK+H3{-BiO8eYRtv-2+W&+Q?k@OZg{DqKJ{Ijru zL1b2ehr%bWnkelBaz4`#B(L2|bJ{#Agq8+8Nb0#;ZthfRl}82t({6I00+J`_;t}-7CE_rrW#6i?)ZaIfc%#+Yo0^1H&{*rC zC`EtHqGQC<&)D}eMuJ6YMMuGh6}Si~ER9&jvJe%R{%uGsyct*D91AiqYxYmc{g^IC z=JESUWfa7#@QWVoBmltUuGOLN2~*~T?wzdzDxw-7U*;~fw3fxla6}&xgE2OORABYX zpoX}X3q&!`IJ=C2!T5-RaBQHIFhYylRuOOrXQaq-$ad`alG3zQ(wq|DuJQIUIs`z@ zu;WP(Fux`2(c(iW9ytBg?R<(4t8y(Ys|QPn?O&Dj#c;b0NrBb5Kq(IQdKYPKAR|YUTqr8#h}OjH_zoO_v|as<&pWZaKepf~GQz4^D@-q1i!W&w;&mP0;y3V%(#D z&@sybfiX$N*?wY-$B?hOc(XfLdQ)d-MsB>e{r3V}XL=yktJpvGjLV=NHB=Y< z+I`N{@8rwa?>%2)(sCgrhVNG;&j+0V0in688|lUF!`lw+Mf#npFVCVjBN?nW#Vxan zy5yl%?qN;-dJe~Y*e9ygAY0J1*T!=7@XEAVoo2Y4YJH;JLvk!3un0y>OS`C!Y%_x} z>wGOc8>74G=eeefb(!Lo!NunF$_Oe}0YU!eaG5+r_qPewhVXb+{|FfioS1a((tLxj z`EfN?zV0E6XTpY+jz|$@nK@QO$9Jt|-TRsv&o>_Rti>?uU=q((ux*WZ?-}WmhqRqj zR+W4gP}6(9G|SzvE_rLL-iVs^XouIY>FBxXs`&N;e%V;gTp^<0K z`6Y*Z7ZE;b_SSbKd^^w-cZTAE1EKa(jEXIvI?VwXS9?40tN3_-W3dCl{yU9e&&XrV z^N8rato_5G@@RA?vGMK(ntGOUcI&KnwFFf~Vf}O63}tbCjfX$NKR4Y~Y@yXXzq3XE z#uIBNH9>s2m(tzBO(zUfF|5{aw^a2Klerhs??U!8(e~78I!sA3EtQKp*60_SO2iea zhU_17z^eemsH3wpzoKGGt8TqR(lOrxQD;}*xtF{Xz~0pw=`nvg1<_;&Z^=Fv%*4G& z;jabggiDzzQv&Rl)!+u9sb9Cf<#rJYvQb|unj3REI|hmfj+61_^QRg0i3oEb6=&(f16C-S$t=T3 zqb}hR?XMrS&v`4oGknKx+`a?24;&Vgg+{AeUYwZ>-+GDP00V8d$%f;iYu{yVi=g84 zuK~_wd`YUec=d|1Eo62#^cHmb&T_TglR-0+b8BlcZ)oAy)r&Tl)-ns9c2hnd*-(%t zzAPxtgZ66LQo3>upw_Xb@H%hyL=TjV@AgHL-27hgj@N5DOC%&xyS(!3sJ*p;KP$c~#s2{A3-~=- z5WLD;0QOARZTPU)q$M{S8CWx5&N2C&&?Q3;MatK+JnU?agWCXeDxqQ`1$ zl91WCNa0b?kaqpruT!@g!t@I^6B`@5u^cApy{h%%tAhX!4M3ok8-?$0tFBi?`6u|{;kjfwGRkVXWdA1@(_3=p6BTgfgF(o%Lt?jKnpz z?Y@&rg3c9^(jtNnfu}V zdJDbIj{oO<=FFTj=bdxr+kD{1&fdwruf6WIu63<--#b`MMUMCm^&JohL@fXMl{yG? zlK=#|VR9P}IPE1p<{s5MF$|1$-v3d;P%?1R`m} z{@v)b%`*mpRB7d3Nol(2ZzZ3{(zeH-&l#p1O()!*|Cl{Bfz60{m{NKW#kGh@Mz~VZ z1X9r;4CjnS>*|+cBZ>Wfx7~ChvmxRch4rHre39e`+(>6 z?rilpst*EBZH?bLPt-Lc9mUss|NL0D$W2QLR z56!to%1GEv?BVX(`!W>h2KMm8sov`9?-6hk;T4HJ2l5mi-x9?>I|w9Bx3fi^qtJ4z z6f@s6Z4aDj-WxxgJ(#pbrlm?8NcYX3RqIa#Rtaq7q)0r^yd@T5g*VZ8$UiLTANO7U zeS=XP?BtqX4PC4?^tMS`ML?|byZ-yygm+*2v7o3)pS#7+=~uzej_LBLbQvZ#rguj% z#X||~e&rj@ZrH)+WT}J5=r-_W%~@y8yFs%TI~%JVOmo?YR9J+mSXFRQa@F_k>J4WPI9@$buavEfFE=py>YkS z_~>r91`;b<$2pr?v_9COAsIaOD)VWC_8qUfD!$7@V+|K>(ChK-?3g}X!e&;Bw_3bt zqGF*7{e7^xg#c3k$uhNr>e`mryO|XdtOmBiJU@r{ika?DTOSLE%PlQHI~afmp>d5+ z7ZPnSicXoVPOYRn{W4CMl;zyPcd_A^xORM*dC<49o$hrt^z)!~`0aYlUB$KUJ;fOz zxYy_3eg>clQ!=ihrx6zYtdMa3fr)V2Y#}6PG^8iw%05+1hx{*0a zRm7n6(7qwwev;pKlJYtx4rF_EwV$4=?!0$Z@DqHAq;Ov&+=6)Vb?q=ouSAw zj7HAo@@TJq9Se#zSckfV!Hh#&S+w~Dr6k-f#n@*&Bd?AUlbw(=K^CXAu)~=z0;})z zXWsQd?@8{!UM_XDNl2`;2L$lZ#3@UD@8repe#634Ya9Bx*LsSBn51#1=^FM%Fx92ee*@({ z+ei~M*75tkVC3iG;HsL>EOV(wL_Xj3ndLgM)1h+|`X;}=%-&m{;WQFfWfh%*fcd9P zdB*8azK}(pP8bYc*RIi@p&90+o6g&Krn$I&q%hoNw>d7pYhgt(JQjN$m7=mtn4XlH zt`4DHUV3nF6~%FOC9PdRS173Q85NypqSuF8bOW?(=!d#8Dj&z)(dIT>N4e|KP&DpR zH%K`6@+W%7;p6M~-9NDt-}3A_e+sYE7b3yI4%r%gY8qUrVM`vf1Z9|hYD3PgY zxs@a%nLG4p0Z_TM(jJb?)XPn?16$I*%-oa@uQ=;#eaC4s(_*TecM_ct%K}3)6+G4= zeSlS+5TCByqPOWM%px$ALM{V|risT!&g>P1&w+$*D4g?a7Pe6KMmLs(P$LisaRaEQs=UjfrC#n z7)VUBI_rwePQ5zFb!sCP7-X-Sk(RhvAYCh}+s>%4ni!sIz&A&AG#qRg3}kwk4P-yq zIFI3pZ4XIQ+Q_V#NR(M6o!gU$lfk5zJV_Ph82IM4rcc$h41$juQPgdu<_PGCmlS*zYViq?S-8gg``EF*@k6?+oS8#Lb z+T|g%+Me#3^3|Ncq_s-b`O}=#Z*LwlFsRN$RU-EHh1N(FWlbn5FYRv+l|apt_T8LX z;0L1`szWrk^&gdQlD3{5Zsb>0#p*+rADkZtQ0k}2(Lc_;D47MSF4bo+8U`opG+W)Uwz5%FW;vm;eC`UtU8KK2i#{wZ#Y z1n1vd9S6kZ*xvm}ySjq8ucilW>W~S{xn)9Y?Pi@Ph77I`4HD~nR>QrL6|Z-bH==oB zN4Dy#>zRhUmqYISIa;$OKUKeUc1D*^Nqnc)kk_Z0gB65cF@vm}sfMjd7P`66h`nW~2F$Xa zEruxs*-=@8m+r#6CU$HIO>r+1`K>d|Qla0s>vqJg9&Xoe*qqfhor}~Sj_a%e=W-HlYW=R3 z4Qz5lI2(L9&N>7Df0`+Xu4(1qXwv6A?rSY)bQ1NYZ1&Rq#p`@QRhA}W0UjX7SZEtP`!8P89k1x$MBhD5VMoqB z6|z=8zQN2uGVT$`H1-J0!X#;hR{Td&#JAfH4^DQ1AE~UUtI(8Vo?(SiL|cxS9I;XP z+U05)Vd9*?d0-znc@NQi-UQ?0A%UHlipNUew4fa!cse$^DH0@rKar}abHB4a_ofiP zW}UU$NIpO%+GgX^yG2s4Yrm?R*)KjYxZd!}4dJMb<2bLombpe*#SS9%&)Cnln=bwc z#(U*XXxYB$4xs?U+V6d&NFcu26Wm%pmuWm-bG_R0tJ_?39XdQt447MHvper8>J>yb zuq{HHXiW@8FC!w3-5`qX8&(BZ@@L81LiyzxmwmQn?5g8sK9o?c6vY9~rwt4dG^tjd zli4An+KEDaxRnnoMM)9hH>phqC89FZ4@XKTB-uxn?;gt*K-2l7OGzb9XRiM+e1da* zCv4(bY1Rr|eNe6+=m(^EJ(?4*C1N@;lbegdx>wdMPbyRx`g4;x7XWqYMO*1<*NZam z<(~fRHa~>SUO%gtLL0$^cN}3l9rPdcZ+Ov4J8gPFZ@JY;=3mWnC72~q$F;B}w~KhN#y1x+awKz( z*mSv=X!g=e5E;N~le$0&zA%pDE1XV?w&us~&@od~989t5GIfg2Yz_tJU25$*qc4@D zbQ%LV^famIUKcIA2bC`WLeM=UXOIDv6X&r<{ngQcNS7(DmkA0_&1`AQwZw|_Gt{pz zobyH$cl{RE`OACdv)PHT>T)OX4hexUwl*vToTp3{th-%05)U(vUFd(Q61&hRX<}}q zO1baiUzi`8y4%5BXf+vtC#Lq1qiB@cI6oR`G0Od00@U(fe4MHqZL$rORk_IjtBs$A zz5Ej1@-5;vpr!L(B;s|hF67SrDmJ&e1)!z6d*K~E449DBN4D1p?_kQ_Mj=9k0VAX37PFt}na z?(HLwy*^FbhtI_Y6nY@Z#LQC=9vJ(3b4Nag=4M9hb?fjIoQH9^z)@P?(EszG`BCz# z>HXm(>$~wo$~0pa)J35x>u(~wUeVNaChdR0<>3L( zW@$!FB$m94TepAH-Qv{Bkep{}w5BA{bhqTUl&~_tU=PoTa~6h*M^>B-#Qwy;I8%4mvQ2hAu638D0vfB2b{UrHybQ<$)$xm zi5KhT8{z%6A+h%gPF$c{)Vy!Wvy%exbDzd9(v8xOIB?OpG+)ZLSaIilS-R*)d>!*h zTy?Et@v*bzjVFn@p_D8Rk0ky>LCF{Y`}OS$xuY(&lh2P_d|tHPnpH^fSECC|a>h&zt|Y72pqm*+7zIY5(iKWdVgZ8@NS#O5m73 zoL;Uq1WNS;5a7LI+yqyYxDe!{_iw(kw?aC5^qVg^b-H1DZ*Io2@0&Ia2D5nPYn-mp zn@pg&I&q8)n@+kUR@V25@)HCiJ{j#CGP(Zf$$me(9Hph7y>S!d%?g0cSp+{mb7^+s zT3_oWuo=ryC#-%U4wJ~R)zxew7+T`=Waq_SXZ~Z)<-F$dW6`iMS8h4CF`0XGj%P#h zNC?DcvJc_yb?ym`pySn;Ai7&_JsmpS8O6eXbY(v`z$+i7Py)0cBys+^Q@RcwDMQ_0 zomSwUuPx;p5@C+nTQ4{zYnvzTvDeOCbjS2WhS(K&;^cOAW?tMa^^E;~9n-luR_Uog zo_pxDaxm5EY)`-KciTxGp{O*l8N~c9^-p0|3FH^*8$7j%0udJf;>m14eemh8-$wUR zbM*y8a^@bIu2VqwB7!e9XVdv&C9V>aY3$>-X+PLnUZD7c&ocSm=!&WOFmWbNLqo5>s!^2ZoQAsZ>x{;-Gu zF7zw3Bb`2%k&;j{1pIVN_Sv7MoSrk?UDxv)U&jGadUVe(jaD(Y-J}M}&Z)6kJLOcY zykCtNsI&1Y-MsfhO*_gUk!Ge!+MP#h>r@{$A>ff>`8^hYk(W zYYx<4ULvF#E(Z!+vz53S;a7|;1Dt0qjE6zPsLM}l1li;0aQxx@@Gic&qv8ozrYaH_P{a;x+5CP`_s}rBbn^9HCCk7vK{8WBz|jp*+6{p1HQGoy zWJAh5HWS?Iq&O0^e+i&(G59c@>%!Jry0$Tu6YuEml2t?bCm$~I9r6-XZho%y)TMI| zWgj7YRlGle@BHlycfQ}NeKD>S zk&;tUp=M@S)N$(81eX|%kB1Mva6o5A-1;{ddwBDt%-AjU4)$O5lHfIm7D@=Ol!*T1 z<@`=~50t8zN@bwOb{^CY@oSlQ?58PxU#Z-Y*C=u+q(6Ar7~S8@UY!`0Q^2O$Qj@>TfOtIm`T~(x&DBqoscut@@F!v9+kHOPnIjL9`Rh_GnowQ< z5iS;yF}Z9$<}7*iQmWpTxGiP)TJclK{F|-$VU89;6p`c@#C)#4bg28r-+YrFE^mG` z?>qm%#~#mc+HO$7aYZRoRs7Un{PI9U*mXN;Hb@?Hh)ohPDU3>L$6`7b9gD%5?gK_T z`KXeiQE~KCwVT;~rN3C`t%ws_fz;S~>$@@5$9moio_l*F$GB}NbwR>1b524T%3U?~ zwYT--E8DFHmS@GlO&$)ds&AJnEs%>A^scJrpDy?-R|FlA4HzM@u^hLgdj7umq6r7t zOIEif1MI*byEfQ(K2O*BQHVDsnD%{8dWkQ$wmDS>I9xW&M6gl2{uwqCx07;wee@JZ z0elktXf?cU{w}_^rlj2(huxI>t9hklwvD&lC1}E>nxpDr{%hI?Ltv|i7iogCC{vNg zTrhbZosUU1HgAgh2Ap$7ehwKr8uvt6lOwb}KzUDw89%SlC{5NH2_&EF8l4>x6Rufl zNl3H3+xn$?&l4U=@Mna0I3Cl$AP$GTFeKL|2LkskAHhu$r@h7AV&<)kev6|qoASY2 z{pFhW8H3RZr#XJKtm&(`DAxv2ZK3JY{Qa0p2xD<%JDY24|K%p+xeXzM0Mun!>DcW? zLm2yueppSqQx)gPO9W{2b|2&C4Wx3AY{%;IGW5XNh^$e<>Mos_yArf69Y`++nUL)7 zgz&*AEWd`yM;6~lrJ4Apdc38+cT0EYL6I)@_Wkwy_aT>Cqm3Ri>)Ge0#PWz&+8q38 z3~4G_5vK?v{k7?4y}^>vr-0^aYDs)=KFF*A7S;!3|Kc4&f2`dEQ-4Y3)jOLu`j49EOzMPHx8~LmJG84 zFEl74fQ}u^-K9%bcyA%-U_3#pb}8Z3L4ye86e%YO$u`FT<7Ard$>X{dmARE>x)UnL z;FFk{CAou7Pa_}tEm68X<&ESaD(cN5o*N+;bi$f;8t%`WCp6p=7SYw&-7c;ctF&t@ zLEa!_)S_c0A7%I#6hXg| zon1sk&phYx%eB2mkA!ccZ$QdeX-3^J`{)~?L>~P^GZ6I+GxEyA!x5ha``VMbrgX(3 zJwxJFXID|VR8RLgdIowbmJ!BkzK;|9SrY6Q<;^<7$=!XxCoRZfWZplaE~oX zy=7$*t3aAKX5{0xGfMa13`01ojmok5=Yo1Jv-b|Vzg{hgkau)+Xu=2A8U}0)Y8(v( zT55R-dbjPHj>jeG?d`OXvah!s;{*67&)}Zh!LNi#&BXypKDrG4z5dQv!O z-3M#&1b?TraIfr8uY^(3d5*ku38g1qqQ3`rmK86RSOM9dCiUN@!!27Oz9jiPw7c+Z z?Oj3zS%9_QDoY=XWbeWBL8NpjXdkn=$?LCl_#kiU$I7kW8(aK;inxpflS<^+B7a3T zx*R?&|1?H&&etM9&~m7r6Z3M#^O$$!NkrDW4VHyj7R|`nz*X%AQNKzG?uwdr4{oHnctBh;T?<<>HucAJrd@`@D zeq+lp`qoDInvlR#P}=gKQfuYatdqHMsJ{N3oPhw|!g(3R&`@UQXcdiu{FjwvxEryglySBi)*d3R`u2!rPtTAE~;i$7owGb+16oTA3CkgQg=%osSoJ*>hLIo-!+a=PJY51`p76$5%COulh`v+`!_wDp~UwpB&aiuJwIP> z(9mED(o>*a*cx&pma=_exZG%Z=?x~>=~SS`Jp74C7xdcmL*@4gx>)r4df^)&YoLR- zV?8aKcy=^WrpP}GOj}mfIMML4iRWoMvo(KUZuWL|t`Klb(TjkJXYMkIm?tue`Ui1a zOSh85CJ0;i$LbB<70}sxvmFP(y%8TLdaCv0^@nn#w0Xybq^m%5`j``^?BLmgn>33bx9$cZ(pXJL(Wzt#8i6T5l;_1A=;8qTLIXU zD_h@xmpc(WbTg4KT!?f2^M{o<#fk9qwQ2rq_Izb-{>TJTjz5;pwbmbU3Ke^bvpcPS zad-c~j2qk67EX{(!>Aygx~K7uZZmqi_7jrS6=zs|wGM94+x<~?52BkOoYp;WVe;o- z$!*><*x+4GDD$lFO9{Q%{(Ly*HR=Y)9FinIIX&br}v@(#L$t->R{l zmpm_>+0MIAoNYuXp0U!G2<>Eku|Xz~q~fAd>seT$#i#wJ?(2!fNhonl?U|gkCi4BTQ{gNCks>3HI{+8srkGkqt zzu>?XCnP+XG3UFdb8M5NHGAB5S2G?_(G~w8%=KUO^X#&xTs5I8N^&!R-tC0UARfTn z3y4dR7DnF)mgpUbp0|F^Gh)J=p_1c7;@>dWy_g}{O`%Lj#tZe$Y74H|goU#!2=EU=wX$(y(^x*@5E3)>LT7k~KEQ8m@ zUi7>p4U*B0OzHC1tr3}qy@hD^y1Yy_@hE~696pZ~rG(i++_$k>`8^NJp7n4_eP%WO z@Lhd?^TkPQ0x1C1QvLxi!E}kbIXzs>fowCo=(ptWoaSWaFmD6>)rUK|p}xu+<*G5`)Ra%MA&QHtIry#9(TUQJ@5#36aI*3K@;5jgvsi}!{QKIj>o+MEiNrB z0Z)|J#`wqEJlL;*{5I5Ro_;6S*CR(12VYwpOeB?cFybeD8sMa|vA+J*uUdW}`tDe2 zc@LbAUp^7#k~17Y^?KMOaZ6|hyu)$_u<~drt0{RngM|3Agic0gDS?Kb4AQ#$JBm?2B&rNDX(_lCxLr*V|aM&?T!(PM=#g9Yz~CJL_YQb96(zU z0$!M@aV+<`zG7)XSEk5w2`v|z(>R^BedVyTS`N6$#Rh-Jj1-qzbyg+$^z_rs#+|$S zDNkNGfMrDkb~lJChLC1$H{c)u7C!*%XbU0mECI>5%e@Re?nRvsq99DM--TAhrX!vq zYgc&!TW&4+Om#eRa?VB=Ay&m?)P`qtDC7ZPQJap5cc7K3BvGE*`EtUf*axk}j<`K5 z@=SZ2@x76n9YISKA$bj-PRhj(=|_X$WsjD)5e*Z}y_?H#8-C_~vEN0o92=pGQXl>* z`L#Affuw~vOJZj?R}^k{wE1DW!9!pRwk2DehN9t%s8XB~*sTe(CC_0Tc&Mp6#=(G% z2nCH4c|pgOP{<8YNu1(2Ndq46JkqT$8j6#O$N>8oyw*Cl_o(Oz!Um7JW-sF=U_6EL za(Qp;2^Tfs$Ivsr!{cLB0&&WJVl3hPV?dJ33-a)MYI>MoTwMJ8gjT$20d~v5b3d~h zfsGs7k@Tx7-YbqINt4TLXOgrwxh8_+M{B{?AL$xDIXtnmUV)P@CyII;&gVTLy&@_<-IG zl=?^Y3IDOq+NR>o^Dq)tl@{~+#C}uopN22calop=?)&!%-4BVrR^-wAZOHlo=yM9d zAB~QQ5{4SMr+3z#e|7|IuBMSFG96a)k$i>ODP_B=qeEBg`{`jk3zaf+Su?&;3ofrL z0+r_3quVC=bGm~OO!5`^iM1kxXeR5^ydYsXkCMCVS(4KAOr;=`g%#^8uf7AeGZJ?b zTk@U9;~EhO3wvz3L=a@X0fqVI66WxGJJM4=HyJcGt|k1UTQpO7TBCb+Py_v7*hARS zw{e!VT(!rxhoa+=g`% zVXB?BfV#;VV{opZ)9NhSq6K|2e>-OD=+e<78K%z;WkvsSsxYt@2ap+JyYTs?^7C5T zD={_^1Wwyy)f7Z*Cge*HDu-U_yw6nzw(v(IKqJTd4zQ*H2#v??R+8fGsuJ(CkTzse zQ}oAv*|o_W0xh&VPN@O6FG)i*lYNd(PcQkq4nElmm|vD1QcQnW(K>6NEZubhHfMRS zVbjAIP}>MC$5az|=F6ewy~A*fJw0X3%=jOnt(lgoKfB*IhVPTNMFvXnexp^5K~*H% zJ9pQb)FM>6xuoWxc0;rp=bh-^fvoWDmw zm82aBp+RY9cYrThv@r5j4Z7YgC^iHxjdwD5(b~Q!)=nqYcyLA{br_Qv#6_T{cn6$b z6VUil4SEX>swg)kPtaKv!5!1WUJ5~LmK8oY<9eIEL#Am^1DQ+!e>CLpOA<=NThz7O658M!}CK8^Ey2M&!fERB2PZX2Y9mJBH-b`b?@Rp;e`<5S!5{ z#-+pb?ZrkHCpEcVrA8{Y$?L%Nx`~M|9P44ETH3_W*+lti+Mh8zj$kHz<+mdZ$gfE| zD<9k9{RhO)ldcZBPKjI%PTtnman9}31##5x(ob(M%QL&smh+{0UEQJ+8^snE__uXPy?l*B zsgEpE!aT|(9yi5csDfewk;s$}N$VpOXsR#Gl?LulsqY7yUhvzaVBw6u zw#fc$R?ETb_jKlA$%pf~@}<5v5LL=?PiNv^X!{TPSDz+$Q)mK&P!&vWu-YOLjyBGo zEf24r)F8YMMa=+8z#N#B6~W_N)v||1gZAw^TStysy8(*_NW_h>N{MW1&u>BlN9Kc- zHBCiC@iutdMO*eY4u}=BLva@R0y86SZtmvGKqW$*q$pFIooMBd66Yk+w7(*E3oQ>| zrfJ0AdU6j5r}%lTQJqU&wBthmC1C8+8F_BqA(M7Qxj4T)GBIwR_QA1J`BjJ&%Fe1e z^=y^Hi22S$9I!p&%%Th0e4dVJsMW1C_@3JDrI-?=aLSR2MUIK{&q9et?txB{%l%Bk zYyN{V>d0RIPV);iRRFg%tz3!9@BhXqu2g)1F!dxqQNH(l^NH0NXJ3toX(x+*3quA)f1O4rD$^Ga z*0YQUbv)6ZQNJXuXH`hf9kGLQ9=gXSa0ac^Zuj}~%jvn(YAJlcS>ldgd5YQPpZH0q z_(lr;2O|_A@oD z>Qoon-;DzL0VNLT7?|n{UF6G&7jXJ@qkG2DE*B6SitR0&L`7;J~ z^#IgjWAvI&iKRZAEY|}1dAw18UC2>WAOEiE=nL-%2zqi}XVZP(o|FBnjE~Fxc%~YA zrF^#cunTFCx8b6kIqAx+xqyp19;t$qs9+M-ZpP*LXmz%Oj|FKvTT{mgzh2zQ(%YNe0{Awy_{^wdK9;-&kB>GzlqVfx3F=*kOt;==zUi#2 zh5YfA2eIP=bm`aF#^`-EJPBTaW1Q9xK7ew1(Wzc4_@rTchq{&l;z|z=8pO^?sPTch zBsL=l7%2B(FP|5r6hF|5D`96>{a>JR9TcqouSOmOf3&kB!*aQE;26*zEgKNWF`Q14 z@X}Yd1!LLx7IY%wh8mk2eJOQ6BUaUsjXw1KE4v=Oe%qGlAGFfPMuV+Yd~=F(xCqSp zlL+>^m{JFGQ(+3|{^YXrf0ZayFT&*C@1K1oO03*Y3m7QQ`QS(~GT8D)*yHH)AR|$4 ziaf6w>2HrIsB-oaf#p9$p5x{szj!poun}i5{Xs!5oqsItXTkbgP5^{vR6_Uvs1@(4 zN{%gG3I*o4_mAM-RSdf^1-ID80PbXriJI|!&y!mF>;H|{KBMrx2(?#18dQ2hDI|22de2w{}<5{=$k(DP>l4Th#flCaRBo}Tm7 zjgCj2UgJ-M-4EV>tDK=9rYore&rl%Phwo9pB|2kdt_i4c^bTJQBK zGh5}&gm)RlncIZcmn`yxjOo05w$j}lYQ*CDwOF`fmeL?LUQf?n$8DxPEH%`FS*&o- znMB`jmXcFqYd5mReqWq5Ptiw7{|MC+ft)9l0VVMr-k6d2b z5UZb->d6Isq>0^(M6h3}B;mB_En+VL|D&p1sWe-qK|(^`70oK22L^tP^FNp`ySRM4 zM!0G4>vuyu;rGuNL#FNL;uCt_g8?O8r@q2+lGo&Hd4yug{j^Xb@vF;}*LvTSvd2X47IL0!CTW zF`~x90N*<-(kNw6I9|>U>Q){OSS;7KkC^l@b4i+z2%@Z4Ao6XXuqg^Sd!T6Ls#f&8 zNhv$L_K?n!Hinz@r!kCWN0;06pyETG0_K;6QmaQ|Dtd1eokF4 z2v%TP(EK0@TplNVie;CrAWKd8*Y1G_0^~kPU|2R=9RqNJR zV}h6z%h_mip7(4g7|BxwR6gkbqw3mHOx9apX?&!&i@{Vo=pv*K$KM@MJJv-7{*Dp| zLsS~+tZEfQ#%!uItdBd|=*rM5dZ>K17o6})JCQq>X4)^58EWqJiGMcafG4I@sA!>u z8%2f&B$7I)C~3$yJTIzK3-Yqf#RM)5m~fQ+nS8c9UcIA+Vt!HewfE&a)+SBSpv8t( zSglfrL1V!S(!>r%T0uS~0px^LD(wMr=pborYOd|o2&(+^SlZ?D*1;u0P0Ve$A_VgYrjkBE&*-2sk@|f{XQB4ffzA$ z|I|aKcf5(m{4&2H-%UIpIW@`V9ZMXibZD9uN0*4KG zuU(eGtv}G~MZxTWk_b=tzWLhb3}Vq(jZI(!YK zZ$)UV&{~J~+)Xv8<}BOaaen%9R_N=BbUi97=JAMI-TJ@i;nQhD&9`1Uum1b-$OlPS zW%@r}S5e?1FnwQ7W1x3iG<*Mdu{a@mSCaAwKF`h>T20oab7S8(AF<}Z8@1ex*(%~C z)0O@BI@8$J z(yF;N4m~cNqfCM-*&bJj+7upXb||VIKJ`p~xfU!9by&OFTdQCGgwTzX3s#DkFRO=r zIJMs0Uv(6ktGE-IZ%_nRJdV(s-vZ~|Fh;9VVYs3VR=B(C@LwMPe31M0BRzkZ{A9fe z+tzGd1W9=4h@Wbs42H7tWv)tUX4gHY)ssDWYKBziF2+fpZ-ly~#q4)V)X{e0%ZqW3 zzPaCL;rP-pxVN_iU)}dz#+F37wK3*$`r`bw9 zU1AvoO^CE2uea4Cgf)TCZC>Alq>+Xl2F7Ez4XT%*e%jrW1xWHg2F=U+XsFP8mBvp< zaq}gwGTjB83=_4ZX<|?(y}STmdw0(7YUQ9zDQd?Zp^PYjGFNbGbHc*^rpHC(%;e2!|~+m zBCK)vMb`jiRD5YkqerFhSIs&ZTfTH4%O>B zBYEMY5c1eX+|ozfsd#LG{xj=;Ye}d?g08_~%Vt`DFWQQnrz!4PyWetyaI?TpMUiPg z-woLdm|sKx9x-pCfys0t*PZVis_U{ge`FfT{v6oiA5#7td_vK$b)h3CWcw&W!nA(! z?IxZh^muxEtSiK9|0}EA<$*Xw2mka~f3X%ob?K|!aqG) zm71bg`c1|2e5fB{kE%-J1p(YK>|&(hwARgzbXo&utdgF;_?`<&nm*?!E>0YxKE$CUuNC=<{+< z`u>x;JXPl5wAUjfqdy);R((rgg7(@*w?InG2lto_x&$0z0f9yFNxZ$v+tDr`zZ~<1 z_!H$xTQ(*+B&(xZSDuKcj;MErUR<)U7l;#3l%h>>>WC9$5v)=ew2qB@k&+0qE+=w$cL>mvC- zx>*^EH#m-I^QfX5xff}wEtGwmKoCNCbNblnAVve0r*0^6J84yi%sl$3&+dwhCQp*Zgs7PDtg&hREm% z&xD|$LHQ{vJ7BxQeZ~*SBmA~g3LeMXnSM`E2lH^-p^Jc>!Tb@l`TlPLVVGxBM<oXE&UvVE@Txlc$Sv=5i^%G%oNDzq=DJEE7}6|!Jl5Um!tj6)p8b} z^f8_)%OT60{OO+Q4q~TUr6!ZYcPv_}gcUTaciu=2{Cufz)wGi?o-=KLY<#KwXeWVk zoM0eLBu1EY!w&1WcDt0|y%C(NUr%g%jFeL3nGLeV!hI4H6R5C_+)~Rsa5at?&An@f zn=cX#$$?V}8f}UH@ZI{;|2y#kZ6s{n@#rnFEqOU9m;wj;DQ&HgMalOXNsICRzcOD( zk0LT7n{6(=>bg4T3D~E}{|QEh@^3*CXvqrym2Jz_9!&q$%{b?ks(%27Nx@EK|`g~~Ttx!@?9Jil`lCj?zxCzLNVpHF`TQmHXsu=U&qrY%e%a1&y3C)5O65Mr zT}entL%pQhhQ*4KBMuYNi{4=4Brv|Om}g7*;Vqq5rj5ywma-y+*-cnv^!c*{|LAB( z-w;K2Zlx|jl-DWD7{^!opZ~$Kn}T%{Q~$&tXi&ndZtZU(_zgnO_bION=DP>5>9ZJE zS43)0ia14*5HnPE7&kCLE9a<8OSEK;H~Szi67P2Ns>hvI1RF^bQGMI(2vb5tyOLgn%4{l{;f z0yP1Nh2v9K5_j<9Db)dM@I6!^7gk6<_wtB=T75kDb2lL_E)CA4I-IYOOCET{5H}6S zRj#2VvvkQWW=FcMn69y-Wy1$7q6rqOc*`C#`!p_zGoMPMq7*1qKM5*ZWxkWG>1OY& z&?}dT(vpZ3G4a#P1mYsC8TwrW|0F3=o@`AwP(tpXyZ+EU-N_*Fi>Ak8<~Xlc)Tv7gCr3P8nTT+8qyV#GUnZJTcOXm)fg_a&j&-8A0n zBVR&$#h9Yb?)!{k-3~k9+q4HOa#0hh0@D{o7g&zm-L5?hmYTmva@n4#@h>SU$&bgS z7hINJbR_s$II25eMKenC=TATJjw$i%!C~~cOW|tFEAmYx1Go_T`O2ZAp-b$lQGdq0 z9R(9{zUBQhbhUkiYwq)G-HHhHeOh+aRnhMTscL=PUyp6m-g{~|h&OU?^~DMc>{^xu?jwwIpAYE$gt`=YK;TX#lV30z zr=g=~qNkA0H1)NIRg&HC>F;U`*-I5i=QipZ9SV8hfJ|R`0coxldXQ4(p#MwA6;g`f zRUl1_#0DleK{h!L!E#}_9Jd-qo)-t(+;{TOC8@wts zy8REE6@(^qFzyyhTGrPeuxr;Y(z%~USOFdO6Gi57PIc^3VVa8u5S{E$KNgqGX(KPH zC@+5ZzUgBJW$ClT9EV2hJIM0Mlqh8DgwuL9N5vNK=9gXC6V8 z%T}E7V}Ud*Mk8;BCwZvpWp)wZ8n4ep_t8PmTzT9u6{{EFnq82|Xz)j!Yny4I>e!=A z5koI3hoxQSpU7X_NX8`&B6UxD424?WvvvWsF2^kU=;wI)h_bbzi5hT-bpLT>P@}+H z7tG63D^^&a--~s26k&37x%YG2EfMx0q377)aa>SGL0UaGYa_>K1E3}H>OFp%r^TXI zdTnzRfY9dwxDc63hr=+~e15(;;db@X*VARHX1ry)9cMzld)SS7p8zPz#%Y9EDr%={7b~C#+vSJY9Z>O+c zx=;bsD>{T8K_tWJ3vJ^Ml~h!w4FZhu@LbV}xHX14iy=mwn(k`w05VJYE}F85`X?$Y zQVuwKVL9~)m5$FkCBXuEXBW~_bDtKF(pl5uSbI*x|5f|STOo|c*S|fB{VJ`gDhk;M+VtRH z0%6ELBX+?ByEQOhOnxw0U{Gy@O?%Vi5nt5AOw-lT3eRZ;mr)24-(~$s`;x# zZ=n@fFm*hC5p=)Z8D1EA$|o*vlS=!Gd;XxzY+$;n?dj7PUIG_8MaK_nWnXQ1>@nRm zvUTx-sRl0=oMOIo*2WeczkJB;OO|J#BDjEoi>kedkE$4Oelc zIG+MCJrK?lq2T_tSsiWIe^J!>-)Ak8=DiyK@wZwICGDSV(LQw_PgV%(XCI-zRoP;u zpgXe4``JA|<1So;0*00EG_}5NaDGHVD0B>OJiimI_t5V>M`|ikKs_dEOVRwsi+#jL zj1^(FfNV}f7Z+}Sz6UZLFIpht{qzMv-%GFUNlzgRB5(Mw34r}C%1rnc$i~OQe4f9*#(1J>>S(Nh1kYjN}cqsRLI%X0wx75tTB zk8Z02D{FuA1v9CIC6JT4?=KBBI?DL;~OYDDs3H?9u z>e>H4C@?4gn_uVq-)B=LV6Vo1vFpnBAw4NQrFA{X{DJ$GpyV~z4*Qwyal@TYZlZ3w z<$J^LkB%7Dma}_SvnS?2+@kcN9Mf(VkMK-b1n?}xz2ht8tG%{$-A@*R)+S4g4o=aj zet!p~XRw|DnY*Ou*MwZHFH{_4ADXQ;5s`ga*qgUs*c<9l-e0Hbu{fMQ1eRem)`f?Q zcHMTXcTdbwU@4;Ee~*3Ar3#b2ckiCl)dfV@gyZ>_`G5VK*xMA{9rSMS7ES+fSkRRc zY4{EN2>b}bhzNe0sAt7Z7ULl!2UBLLL%=pJNuvL_LjLI8{5f}EOrAWrg zxULP=ipmV50rincXrs0INoh}cm6OhI{{A+1%}or+oearY zU)F%7M8>!IqU8l4`^H8k>4~Pjt2xBeCDg!9C2cA*a+tO6BKJL7DclG-op}F+m~z7w z1?ur|Wj_aH-%32KFuX6E*@IkQABjiyi@$@{_vW5EN|_FMv=1}3hfjd$DdTVl3+%`) z2EY%mEDr|wT#iDzcQ@aT4h_AT|4Mo2xm{lQ}kBa;FW|f>IZN|GJbpJ00-S zpKsrCZ&Vlpfzu1PSJ!N_(Mwe+HeXKE?=1g*gk>CF0yrE#hH4O5V>76M&jGtxSzPMz zni;*{$tL(e1q-UgzIBC;J#W<-f9zO?hV!LCFOP6dg0iB&{=9rjtu)X_#hKxR8jHY0Si#p+rLi&y0G~ z(lkA2qvDcMF1cGSVT**en1v$B;sDOEFU`mI{qVl`ocn*C-~I6XFZbxcMz}+R&_F2v zvRX4RKhzM<81*JClL$I}Roa+siwIzQ?fF*CP}IGx$+~SGQ8}UxK!$*N6=vj^KoG{4 zf$6fOJ;I>D!II6P`Ifxb@Uj;q)gaR?oM)zHKU)Kn?#Ls zNu!k^N?0XVzEGKQ4)ZLm-xkm2QoNxRaSmWSvf;aDm^CUvOzpg<~ICX$!e_T;^zQVr?enlVY^at zsiz3m{RGX`R4Hn>!)99N!wchjnAWJFL^!RJu}Y*OK%sp7gO&dMqp#wMJGQRov#u?n z6ffM{Mb|k31c{&fHke(EYvVViS14;5&;d{GO*|7fUOoBNh)E>?UM`eA3EQC*pq(;B z9hBY7zUYT#Li>hRXC$_A(HX&u_d8p#ka5OrjbVXf?QxwH%=;6jAMNBV6Ck%1>dEcS z#`_t(=+N*LmtD`*Eq;>wW3i-73Z2ImP78KhInSSiZVF~)BY>y-?v!|>ix1OEux=FT z$F{a%y|K^B~L%ft7!c zS)CQfoFa{QEPzR=MvFGHeM3|E>59ZV_R|kjmg7?sShO86de5qiRh_Lv0#O#fE@(FN zmKBhru?v?dtW&WX^n>@!Y8QCmd{io;7aS*Ybd!=LCq)sMsZJJ^)ac@QdY4?1WiZ1F z(5f!Kesd#5m7P~c0r^e;q%~gptHBaEh*wI=jl#mTy}m%0#EyOe-G+7FwOZ?E3K^Kq z`6U01Z!WL3vTr<|G2ee~?DK39c3&&0xTiaAcLY(!@79kaMHyye`nF1`6VfapOc11{ z1PLQ8UmGe1`1;5qEICvo7~H9|RaeaR&*Au@#*E;bYj@l3RhnNI#jX{PtT|+yEP#m4 zzoAhbMKh2$g$4;k2iqWOaFWLeI|`>6(N89mJEun=GXW8g$l)V5g3Z^gErkByZQq4% zJ=Q>&H7ira8%A2el_SMl=q<~2uJuZzjx(b_NESZpoEBJ^)90Y&zdC;xdCNiBi7c|;)$Y_l@&E^0`77JAg_l>0w22>>^-y(2|I88 zGE&oe9bgA)rWcXQnDUSqEw1w#`#%2i(FAxe6G_|W=XW0uFj1WdjOTbgp#LML={#6I z(vF|SHWKm_zf6HGvw0NWRh}ON`LrUjl0AZd&UCd-6Bt^lFrGrJO`==s&fbKmjskAN z#wqz-Pj$jo3w-8=b^0shpNbZijNlyFsFFK+G^$(p=Bmc($>tO9{61J_DL?NEaRfbP z+Y36?Aoy?e{2@e^cLg`JzL3DgkG8FZ5s`tqRr;NTr^5{*)jI*bKCY^s0f|V}5X+AK z_BMwYw!QY#w+y=F*RwhbaR;Bz$361-ze}Lr>g;Kzcx`inhOPScy~e?{$thD`y>CI| p@LIr+J&5p3y{-DK#$aLTs!^Wv5ENBfr(QJY?;E(c@~6nGe*v$FK>h## From 9cd2eada289769c1e95df7d9bf52f0ec51ae0cb9 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 19 Oct 2016 11:28:55 -0700 Subject: [PATCH 017/210] t --- windows/deploy/images/disk2vhd.PNG | Bin 24397 -> 20359 bytes windows/deploy/windows-10-poc.md | 22 +++++++++++++++++++--- 2 files changed, 19 insertions(+), 3 deletions(-) diff --git a/windows/deploy/images/disk2vhd.PNG b/windows/deploy/images/disk2vhd.PNG index 629ee33e6ce6260b7b064ccedf79cd1ea56683a7..7b9835f5f653768d14e770f9f91747076257127d 100644 GIT binary patch literal 20359 zcmeFYXIxWn*De?ZL8OWb(k&R8bfk9$q$8jxUFjgb21w{2QY9e0cTkYtyMXjw0|W>V zdJDbIj{oO<=FFTj=bdxr+kD{1&fdwruf6WIu63<--#b`MMUMCm^&JohL@fXMl{yG? zlK=#|VR9P}IPE1p<{s5MF$|1$-v3d;P%?1R`m} z{@v)b%`*mpRB7d3Nol(2ZzZ3{(zeH-&l#p1O()!*|Cl{Bfz60{m{NKW#kGh@Mz~VZ z1X9r;4CjnS>*|+cBZ>Wfx7~ChvmxRch4rHre39e`+(>6 z?rilpst*EBZH?bLPt-Lc9mUss|NL0D$W2QLR z56!to%1GEv?BVX(`!W>h2KMm8sov`9?-6hk;T4HJ2l5mi-x9?>I|w9Bx3fi^qtJ4z z6f@s6Z4aDj-WxxgJ(#pbrlm?8NcYX3RqIa#Rtaq7q)0r^yd@T5g*VZ8$UiLTANO7U zeS=XP?BtqX4PC4?^tMS`ML?|byZ-yygm+*2v7o3)pS#7+=~uzej_LBLbQvZ#rguj% z#X||~e&rj@ZrH)+WT}J5=r-_W%~@y8yFs%TI~%JVOmo?YR9J+mSXFRQa@F_k>J4WPI9@$buavEfFE=py>YkS z_~>r91`;b<$2pr?v_9COAsIaOD)VWC_8qUfD!$7@V+|K>(ChK-?3g}X!e&;Bw_3bt zqGF*7{e7^xg#c3k$uhNr>e`mryO|XdtOmBiJU@r{ika?DTOSLE%PlQHI~afmp>d5+ z7ZPnSicXoVPOYRn{W4CMl;zyPcd_A^xORM*dC<49o$hrt^z)!~`0aYlUB$KUJ;fOz zxYy_3eg>clQ!=ihrx6zYtdMa3fr)V2Y#}6PG^8iw%05+1hx{*0a zRm7n6(7qwwev;pKlJYtx4rF_EwV$4=?!0$Z@DqHAq;Ov&+=6)Vb?q=ouSAw zj7HAo@@TJq9Se#zSckfV!Hh#&S+w~Dr6k-f#n@*&Bd?AUlbw(=K^CXAu)~=z0;})z zXWsQd?@8{!UM_XDNl2`;2L$lZ#3@UD@8repe#634Ya9Bx*LsSBn51#1=^FM%Fx92ee*@({ z+ei~M*75tkVC3iG;HsL>EOV(wL_Xj3ndLgM)1h+|`X;}=%-&m{;WQFfWfh%*fcd9P zdB*8azK}(pP8bYc*RIi@p&90+o6g&Krn$I&q%hoNw>d7pYhgt(JQjN$m7=mtn4XlH zt`4DHUV3nF6~%FOC9PdRS173Q85NypqSuF8bOW?(=!d#8Dj&z)(dIT>N4e|KP&DpR zH%K`6@+W%7;p6M~-9NDt-}3A_e+sYE7b3yI4%r%gY8qUrVM`vf1Z9|hYD3PgY zxs@a%nLG4p0Z_TM(jJb?)XPn?16$I*%-oa@uQ=;#eaC4s(_*TecM_ct%K}3)6+G4= zeSlS+5TCByqPOWM%px$ALM{V|risT!&g>P1&w+$*D4g?a7Pe6KMmLs(P$LisaRaEQs=UjfrC#n z7)VUBI_rwePQ5zFb!sCP7-X-Sk(RhvAYCh}+s>%4ni!sIz&A&AG#qRg3}kwk4P-yq zIFI3pZ4XIQ+Q_V#NR(M6o!gU$lfk5zJV_Ph82IM4rcc$h41$juQPgdu<_PGCmlS*zYViq?S-8gg``EF*@k6?+oS8#Lb z+T|g%+Me#3^3|Ncq_s-b`O}=#Z*LwlFsRN$RU-EHh1N(FWlbn5FYRv+l|apt_T8LX z;0L1`szWrk^&gdQlD3{5Zsb>0#p*+rADkZtQ0k}2(Lc_;D47MSF4bo+8U`opG+W)Uwz5%FW;vm;eC`UtU8KK2i#{wZ#Y z1n1vd9S6kZ*xvm}ySjq8ucilW>W~S{xn)9Y?Pi@Ph77I`4HD~nR>QrL6|Z-bH==oB zN4Dy#>zRhUmqYISIa;$OKUKeUc1D*^Nqnc)kk_Z0gB65cF@vm}sfMjd7P`66h`nW~2F$Xa zEruxs*-=@8m+r#6CU$HIO>r+1`K>d|Qla0s>vqJg9&Xoe*qqfhor}~Sj_a%e=W-HlYW=R3 z4Qz5lI2(L9&N>7Df0`+Xu4(1qXwv6A?rSY)bQ1NYZ1&Rq#p`@QRhA}W0UjX7SZEtP`!8P89k1x$MBhD5VMoqB z6|z=8zQN2uGVT$`H1-J0!X#;hR{Td&#JAfH4^DQ1AE~UUtI(8Vo?(SiL|cxS9I;XP z+U05)Vd9*?d0-znc@NQi-UQ?0A%UHlipNUew4fa!cse$^DH0@rKar}abHB4a_ofiP zW}UU$NIpO%+GgX^yG2s4Yrm?R*)KjYxZd!}4dJMb<2bLombpe*#SS9%&)Cnln=bwc z#(U*XXxYB$4xs?U+V6d&NFcu26Wm%pmuWm-bG_R0tJ_?39XdQt447MHvper8>J>yb zuq{HHXiW@8FC!w3-5`qX8&(BZ@@L81LiyzxmwmQn?5g8sK9o?c6vY9~rwt4dG^tjd zli4An+KEDaxRnnoMM)9hH>phqC89FZ4@XKTB-uxn?;gt*K-2l7OGzb9XRiM+e1da* zCv4(bY1Rr|eNe6+=m(^EJ(?4*C1N@;lbegdx>wdMPbyRx`g4;x7XWqYMO*1<*NZam z<(~fRHa~>SUO%gtLL0$^cN}3l9rPdcZ+Ov4J8gPFZ@JY;=3mWnC72~q$F;B}w~KhN#y1x+awKz( z*mSv=X!g=e5E;N~le$0&zA%pDE1XV?w&us~&@od~989t5GIfg2Yz_tJU25$*qc4@D zbQ%LV^famIUKcIA2bC`WLeM=UXOIDv6X&r<{ngQcNS7(DmkA0_&1`AQwZw|_Gt{pz zobyH$cl{RE`OACdv)PHT>T)OX4hexUwl*vToTp3{th-%05)U(vUFd(Q61&hRX<}}q zO1baiUzi`8y4%5BXf+vtC#Lq1qiB@cI6oR`G0Od00@U(fe4MHqZL$rORk_IjtBs$A zz5Ej1@-5;vpr!L(B;s|hF67SrDmJ&e1)!z6d*K~E449DBN4D1p?_kQ_Mj=9k0VAX37PFt}na z?(HLwy*^FbhtI_Y6nY@Z#LQC=9vJ(3b4Nag=4M9hb?fjIoQH9^z)@P?(EszG`BCz# z>HXm(>$~wo$~0pa)J35x>u(~wUeVNaChdR0<>3L( zW@$!FB$m94TepAH-Qv{Bkep{}w5BA{bhqTUl&~_tU=PoTa~6h*M^>B-#Qwy;I8%4mvQ2hAu638D0vfB2b{UrHybQ<$)$xm zi5KhT8{z%6A+h%gPF$c{)Vy!Wvy%exbDzd9(v8xOIB?OpG+)ZLSaIilS-R*)d>!*h zTy?Et@v*bzjVFn@p_D8Rk0ky>LCF{Y`}OS$xuY(&lh2P_d|tHPnpH^fSECC|a>h&zt|Y72pqm*+7zIY5(iKWdVgZ8@NS#O5m73 zoL;Uq1WNS;5a7LI+yqyYxDe!{_iw(kw?aC5^qVg^b-H1DZ*Io2@0&Ia2D5nPYn-mp zn@pg&I&q8)n@+kUR@V25@)HCiJ{j#CGP(Zf$$me(9Hph7y>S!d%?g0cSp+{mb7^+s zT3_oWuo=ryC#-%U4wJ~R)zxew7+T`=Waq_SXZ~Z)<-F$dW6`iMS8h4CF`0XGj%P#h zNC?DcvJc_yb?ym`pySn;Ai7&_JsmpS8O6eXbY(v`z$+i7Py)0cBys+^Q@RcwDMQ_0 zomSwUuPx;p5@C+nTQ4{zYnvzTvDeOCbjS2WhS(K&;^cOAW?tMa^^E;~9n-luR_Uog zo_pxDaxm5EY)`-KciTxGp{O*l8N~c9^-p0|3FH^*8$7j%0udJf;>m14eemh8-$wUR zbM*y8a^@bIu2VqwB7!e9XVdv&C9V>aY3$>-X+PLnUZD7c&ocSm=!&WOFmWbNLqo5>s!^2ZoQAsZ>x{;-Gu zF7zw3Bb`2%k&;j{1pIVN_Sv7MoSrk?UDxv)U&jGadUVe(jaD(Y-J}M}&Z)6kJLOcY zykCtNsI&1Y-MsfhO*_gUk!Ge!+MP#h>r@{$A>ff>`8^hYk(W zYYx<4ULvF#E(Z!+vz53S;a7|;1Dt0qjE6zPsLM}l1li;0aQxx@@Gic&qv8ozrYaH_P{a;x+5CP`_s}rBbn^9HCCk7vK{8WBz|jp*+6{p1HQGoy zWJAh5HWS?Iq&O0^e+i&(G59c@>%!Jry0$Tu6YuEml2t?bCm$~I9r6-XZho%y)TMI| zWgj7YRlGle@BHlycfQ}NeKD>S zk&;tUp=M@S)N$(81eX|%kB1Mva6o5A-1;{ddwBDt%-AjU4)$O5lHfIm7D@=Ol!*T1 z<@`=~50t8zN@bwOb{^CY@oSlQ?58PxU#Z-Y*C=u+q(6Ar7~S8@UY!`0Q^2O$Qj@>TfOtIm`T~(x&DBqoscut@@F!v9+kHOPnIjL9`Rh_GnowQ< z5iS;yF}Z9$<}7*iQmWpTxGiP)TJclK{F|-$VU89;6p`c@#C)#4bg28r-+YrFE^mG` z?>qm%#~#mc+HO$7aYZRoRs7Un{PI9U*mXN;Hb@?Hh)ohPDU3>L$6`7b9gD%5?gK_T z`KXeiQE~KCwVT;~rN3C`t%ws_fz;S~>$@@5$9moio_l*F$GB}NbwR>1b524T%3U?~ zwYT--E8DFHmS@GlO&$)ds&AJnEs%>A^scJrpDy?-R|FlA4HzM@u^hLgdj7umq6r7t zOIEif1MI*byEfQ(K2O*BQHVDsnD%{8dWkQ$wmDS>I9xW&M6gl2{uwqCx07;wee@JZ z0elktXf?cU{w}_^rlj2(huxI>t9hklwvD&lC1}E>nxpDr{%hI?Ltv|i7iogCC{vNg zTrhbZosUU1HgAgh2Ap$7ehwKr8uvt6lOwb}KzUDw89%SlC{5NH2_&EF8l4>x6Rufl zNl3H3+xn$?&l4U=@Mna0I3Cl$AP$GTFeKL|2LkskAHhu$r@h7AV&<)kev6|qoASY2 z{pFhW8H3RZr#XJKtm&(`DAxv2ZK3JY{Qa0p2xD<%JDY24|K%p+xeXzM0Mun!>DcW? zLm2yueppSqQx)gPO9W{2b|2&C4Wx3AY{%;IGW5XNh^$e<>Mos_yArf69Y`++nUL)7 zgz&*AEWd`yM;6~lrJ4Apdc38+cT0EYL6I)@_Wkwy_aT>Cqm3Ri>)Ge0#PWz&+8q38 z3~4G_5vK?v{k7?4y}^>vr-0^aYDs)=KFF*A7S;!3|Kc4&f2`dEQ-4Y3)jOLu`j49EOzMPHx8~LmJG84 zFEl74fQ}u^-K9%bcyA%-U_3#pb}8Z3L4ye86e%YO$u`FT<7Ard$>X{dmARE>x)UnL z;FFk{CAou7Pa_}tEm68X<&ESaD(cN5o*N+;bi$f;8t%`WCp6p=7SYw&-7c;ctF&t@ zLEa!_)S_c0A7%I#6hXg| zon1sk&phYx%eB2mkA!ccZ$QdeX-3^J`{)~?L>~P^GZ6I+GxEyA!x5ha``VMbrgX(3 zJwxJFXID|VR8RLgdIowbmJ!BkzK;|9SrY6Q<;^<7$=!XxCoRZfWZplaE~oX zy=7$*t3aAKX5{0xGfMa13`01ojmok5=Yo1Jv-b|Vzg{hgkau)+Xu=2A8U}0)Y8(v( zT55R-dbjPHj>jeG?d`OXvah!s;{*67&)}Zh!LNi#&BXypKDrG4z5dQv!O z-3M#&1b?TraIfr8uY^(3d5*ku38g1qqQ3`rmK86RSOM9dCiUN@!!27Oz9jiPw7c+Z z?Oj3zS%9_QDoY=XWbeWBL8NpjXdkn=$?LCl_#kiU$I7kW8(aK;inxpflS<^+B7a3T zx*R?&|1?H&&etM9&~m7r6Z3M#^O$$!NkrDW4VHyj7R|`nz*X%AQNKzG?uwdr4{oHnctBh;T?<<>HucAJrd@`@D zeq+lp`qoDInvlR#P}=gKQfuYatdqHMsJ{N3oPhw|!g(3R&`@UQXcdiu{FjwvxEryglySBi)*d3R`u2!rPtTAE~;i$7owGb+16oTA3CkgQg=%osSoJ*>hLIo-!+a=PJY51`p76$5%COulh`v+`!_wDp~UwpB&aiuJwIP> z(9mED(o>*a*cx&pma=_exZG%Z=?x~>=~SS`Jp74C7xdcmL*@4gx>)r4df^)&YoLR- zV?8aKcy=^WrpP}GOj}mfIMML4iRWoMvo(KUZuWL|t`Klb(TjkJXYMkIm?tue`Ui1a zOSh85CJ0;i$LbB<70}sxvmFP(y%8TLdaCv0^@nn#w0Xybq^m%5`j``^?BLmgn>33bx9$cZ(pXJL(Wzt#8i6T5l;_1A=;8qTLIXU zD_h@xmpc(WbTg4KT!?f2^M{o<#fk9qwQ2rq_Izb-{>TJTjz5;pwbmbU3Ke^bvpcPS zad-c~j2qk67EX{(!>Aygx~K7uZZmqi_7jrS6=zs|wGM94+x<~?52BkOoYp;WVe;o- z$!*><*x+4GDD$lFO9{Q%{(Ly*HR=Y)9FinIIX&br}v@(#L$t->R{l zmpm_>+0MIAoNYuXp0U!G2<>Eku|Xz~q~fAd>seT$#i#wJ?(2!fNhonl?U|gkCi4BTQ{gNCks>3HI{+8srkGkqt zzu>?XCnP+XG3UFdb8M5NHGAB5S2G?_(G~w8%=KUO^X#&xTs5I8N^&!R-tC0UARfTn z3y4dR7DnF)mgpUbp0|F^Gh)J=p_1c7;@>dWy_g}{O`%Lj#tZe$Y74H|goU#!2=EU=wX$(y(^x*@5E3)>LT7k~KEQ8m@ zUi7>p4U*B0OzHC1tr3}qy@hD^y1Yy_@hE~696pZ~rG(i++_$k>`8^NJp7n4_eP%WO z@Lhd?^TkPQ0x1C1QvLxi!E}kbIXzs>fowCo=(ptWoaSWaFmD6>)rUK|p}xu+<*G5`)Ra%MA&QHtIry#9(TUQJ@5#36aI*3K@;5jgvsi}!{QKIj>o+MEiNrB z0Z)|J#`wqEJlL;*{5I5Ro_;6S*CR(12VYwpOeB?cFybeD8sMa|vA+J*uUdW}`tDe2 zc@LbAUp^7#k~17Y^?KMOaZ6|hyu)$_u<~drt0{RngM|3Agic0gDS?Kb4AQ#$JBm?2B&rNDX(_lCxLr*V|aM&?T!(PM=#g9Yz~CJL_YQb96(zU z0$!M@aV+<`zG7)XSEk5w2`v|z(>R^BedVyTS`N6$#Rh-Jj1-qzbyg+$^z_rs#+|$S zDNkNGfMrDkb~lJChLC1$H{c)u7C!*%XbU0mECI>5%e@Re?nRvsq99DM--TAhrX!vq zYgc&!TW&4+Om#eRa?VB=Ay&m?)P`qtDC7ZPQJap5cc7K3BvGE*`EtUf*axk}j<`K5 z@=SZ2@x76n9YISKA$bj-PRhj(=|_X$WsjD)5e*Z}y_?H#8-C_~vEN0o92=pGQXl>* z`L#Affuw~vOJZj?R}^k{wE1DW!9!pRwk2DehN9t%s8XB~*sTe(CC_0Tc&Mp6#=(G% z2nCH4c|pgOP{<8YNu1(2Ndq46JkqT$8j6#O$N>8oyw*Cl_o(Oz!Um7JW-sF=U_6EL za(Qp;2^Tfs$Ivsr!{cLB0&&WJVl3hPV?dJ33-a)MYI>MoTwMJ8gjT$20d~v5b3d~h zfsGs7k@Tx7-YbqINt4TLXOgrwxh8_+M{B{?AL$xDIXtnmUV)P@CyII;&gVTLy&@_<-IG zl=?^Y3IDOq+NR>o^Dq)tl@{~+#C}uopN22calop=?)&!%-4BVrR^-wAZOHlo=yM9d zAB~QQ5{4SMr+3z#e|7|IuBMSFG96a)k$i>ODP_B=qeEBg`{`jk3zaf+Su?&;3ofrL z0+r_3quVC=bGm~OO!5`^iM1kxXeR5^ydYsXkCMCVS(4KAOr;=`g%#^8uf7AeGZJ?b zTk@U9;~EhO3wvz3L=a@X0fqVI66WxGJJM4=HyJcGt|k1UTQpO7TBCb+Py_v7*hARS zw{e!VT(!rxhoa+=g`% zVXB?BfV#;VV{opZ)9NhSq6K|2e>-OD=+e<78K%z;WkvsSsxYt@2ap+JyYTs?^7C5T zD={_^1Wwyy)f7Z*Cge*HDu-U_yw6nzw(v(IKqJTd4zQ*H2#v??R+8fGsuJ(CkTzse zQ}oAv*|o_W0xh&VPN@O6FG)i*lYNd(PcQkq4nElmm|vD1QcQnW(K>6NEZubhHfMRS zVbjAIP}>MC$5az|=F6ewy~A*fJw0X3%=jOnt(lgoKfB*IhVPTNMFvXnexp^5K~*H% zJ9pQb)FM>6xuoWxc0;rp=bh-^fvoWDmw zm82aBp+RY9cYrThv@r5j4Z7YgC^iHxjdwD5(b~Q!)=nqYcyLA{br_Qv#6_T{cn6$b z6VUil4SEX>swg)kPtaKv!5!1WUJ5~LmK8oY<9eIEL#Am^1DQ+!e>CLpOA<=NThz7O658M!}CK8^Ey2M&!fERB2PZX2Y9mJBH-b`b?@Rp;e`<5S!5{ z#-+pb?ZrkHCpEcVrA8{Y$?L%Nx`~M|9P44ETH3_W*+lti+Mh8zj$kHz<+mdZ$gfE| zD<9k9{RhO)ldcZBPKjI%PTtnman9}31##5x(ob(M%QL&smh+{0UEQJ+8^snE__uXPy?l*B zsgEpE!aT|(9yi5csDfewk;s$}N$VpOXsR#Gl?LulsqY7yUhvzaVBw6u zw#fc$R?ETb_jKlA$%pf~@}<5v5LL=?PiNv^X!{TPSDz+$Q)mK&P!&vWu-YOLjyBGo zEf24r)F8YMMa=+8z#N#B6~W_N)v||1gZAw^TStysy8(*_NW_h>N{MW1&u>BlN9Kc- zHBCiC@iutdMO*eY4u}=BLva@R0y86SZtmvGKqW$*q$pFIooMBd66Yk+w7(*E3oQ>| zrfJ0AdU6j5r}%lTQJqU&wBthmC1C8+8F_BqA(M7Qxj4T)GBIwR_QA1J`BjJ&%Fe1e z^=y^Hi22S$9I!p&%%Th0e4dVJsMW1C_@3JDrI-?=aLSR2MUIK{&q9et?txB{%l%Bk zYyN{V>d0RIPV);iRRFg%tz3!9@BhXqu2g)1F!dxqQNH(l^NH0NXJ3toX(x+*3quA)f1O4rD$^Ga z*0YQUbv)6ZQNJXuXH`hf9kGLQ9=gXSa0ac^Zuj}~%jvn(YAJlcS>ldgd5YQPpZH0q z_(lr;2O|_A@oD z>Qoon-;DzL0VNLT7?|n{UF6G&7jXJ@qkG2DE*B6SitR0&L`7;J~ z^#IgjWAvI&iKRZAEY|}1dAw18UC2>WAOEiE=nL-%2zqi}XVZP(o|FBnjE~Fxc%~YA zrF^#cunTFCx8b6kIqAx+xqyp19;t$qs9+M-ZpP*LXmz%Oj|FKvTT{mgzh2zQ(%YNe0{Awy_{^wdK9;-&kB>GzlqVfx3F=*kOt;==zUi#2 zh5YfA2eIP=bm`aF#^`-EJPBTaW1Q9xK7ew1(Wzc4_@rTchq{&l;z|z=8pO^?sPTch zBsL=l7%2B(FP|5r6hF|5D`96>{a>JR9TcqouSOmOf3&kB!*aQE;26*zEgKNWF`Q14 z@X}Yd1!LLx7IY%wh8mk2eJOQ6BUaUsjXw1KE4v=Oe%qGlAGFfPMuV+Yd~=F(xCqSp zlL+>^m{JFGQ(+3|{^YXrf0ZayFT&*C@1K1oO03*Y3m7QQ`QS(~GT8D)*yHH)AR|$4 ziaf6w>2HrIsB-oaf#p9$p5x{szj!poun}i5{Xs!5oqsItXTkbgP5^{vR6_Uvs1@(4 zN{%gG3I*o4_mAM-RSdf^1-ID80PbXriJI|!&y!mF>;H|{KBMrx2(?#18dQ2hDI|22de2w{}<5{=$k(DP>l4Th#flCaRBo}Tm7 zjgCj2UgJ-M-4EV>tDK=9rYore&rl%Phwo9pB|2kdt_i4c^bTJQBK zGh5}&gm)RlncIZcmn`yxjOo05w$j}lYQ*CDwOF`fmeL?LUQf?n$8DxPEH%`FS*&o- znMB`jmXcFqYd5mReqWq5Ptiw7{|MC+ft)9l0VVMr-k6d2b z5UZb->d6Isq>0^(M6h3}B;mB_En+VL|D&p1sWe-qK|(^`70oK22L^tP^FNp`ySRM4 zM!0G4>vuyu;rGuNL#FNL;uCt_g8?O8r@q2+lGo&Hd4yug{j^Xb@vF;}*LvTSvd2X47IL0!CTW zF`~x90N*<-(kNw6I9|>U>Q){OSS;7KkC^l@b4i+z2%@Z4Ao6XXuqg^Sd!T6Ls#f&8 zNhv$L_K?n!Hinz@r!kCWN0;06pyETG0_K;6QmaQ|Dtd1eokF4 z2v%TP(EK0@TplNVie;CrAWKd8*Y1G_0^~kPU|2R=9RqNJR zV}h6z%h_mip7(4g7|BxwR6gkbqw3mHOx9apX?&!&i@{Vo=pv*K$KM@MJJv-7{*Dp| zLsS~+tZEfQ#%!uItdBd|=*rM5dZ>K17o6})JCQq>X4)^58EWqJiGMcafG4I@sA!>u z8%2f&B$7I)C~3$yJTIzK3-Yqf#RM)5m~fQ+nS8c9UcIA+Vt!HewfE&a)+SBSpv8t( zSglfrL1V!S(!>r%T0uS~0px^LD(wMr=pborYOd|o2&(+^SlZ?D*1;u0P0Ve$A_VgYrjkBE&*-2sk@|f{XQB4ffzA$ z|I|aKcf5(m{4&2H-%UIpIW@`V9ZMXibZD9uN0*4KG zuU(eGtv}G~MZxTWk_b=tzWLhb3}Vq(jZI(!YK zZ$)UV&{~J~+)Xv8<}BOaaen%9R_N=BbUi97=JAMI-TJ@i;nQhD&9`1Uum1b-$OlPS zW%@r}S5e?1FnwQ7W1x3iG<*Mdu{a@mSCaAwKF`h>T20oab7S8(AF<}Z8@1ex*(%~C z)0O@BI@8$J z(yF;N4m~cNqfCM-*&bJj+7upXb||VIKJ`p~xfU!9by&OFTdQCGgwTzX3s#DkFRO=r zIJMs0Uv(6ktGE-IZ%_nRJdV(s-vZ~|Fh;9VVYs3VR=B(C@LwMPe31M0BRzkZ{A9fe z+tzGd1W9=4h@Wbs42H7tWv)tUX4gHY)ssDWYKBziF2+fpZ-ly~#q4)V)X{e0%ZqW3 zzPaCL;rP-pxVN_iU)}dz#+F37wK3*$`r`bw9 zU1AvoO^CE2uea4Cgf)TCZC>Alq>+Xl2F7Ez4XT%*e%jrW1xWHg2F=U+XsFP8mBvp< zaq}gwGTjB83=_4ZX<|?(y}STmdw0(7YUQ9zDQd?Zp^PYjGFNbGbHc*^rpHC(%;e2!|~+m zBCK)vMb`jiRD5YkqerFhSIs&ZTfTH4%O>B zBYEMY5c1eX+|ozfsd#LG{xj=;Ye}d?g08_~%Vt`DFWQQnrz!4PyWetyaI?TpMUiPg z-woLdm|sKx9x-pCfys0t*PZVis_U{ge`FfT{v6oiA5#7td_vK$b)h3CWcw&W!nA(! z?IxZh^muxEtSiK9|0}EA<$*Xw2mka~f3X%ob?K|!aqG) zm71bg`c1|2e5fB{kE%-J1p(YK>|&(hwARgzbXo&utdgF;_?`<&nm*?!E>0YxKE$CUuNC=<{+< z`u>x;JXPl5wAUjfqdy);R((rgg7(@*w?InG2lto_x&$0z0f9yFNxZ$v+tDr`zZ~<1 z_!H$xTQ(*+B&(xZSDuKcj;MErUR<)U7l;#3l%h>>>WC9$5v)=ew2qB@k&+0qE+=w$cL>mvC- zx>*^EH#m-I^QfX5xff}wEtGwmKoCNCbNblnAVve0r*0^6J84yi%sl$3&+dwhCQp*Zgs7PDtg&hREm% z&xD|$LHQ{vJ7BxQeZ~*SBmA~g3LeMXnSM`E2lH^-p^Jc>!Tb@l`TlPLVVGxBM<oXE&UvVE@Txlc$Sv=5i^%G%oNDzq=DJEE7}6|!Jl5Um!tj6)p8b} z^f8_)%OT60{OO+Q4q~TUr6!ZYcPv_}gcUTaciu=2{Cufz)wGi?o-=KLY<#KwXeWVk zoM0eLBu1EY!w&1WcDt0|y%C(NUr%g%jFeL3nGLeV!hI4H6R5C_+)~Rsa5at?&An@f zn=cX#$$?V}8f}UH@ZI{;|2y#kZ6s{n@#rnFEqOU9m;wj;DQ&HgMalOXNsICRzcOD( zk0LT7n{6(=>bg4T3D~E}{|QEh@^3*CXvqrym2Jz_9!&q$%{b?ks(%27Nx@EK|`g~~Ttx!@?9Jil`lCj?zxCzLNVpHF`TQmHXsu=U&qrY%e%a1&y3C)5O65Mr zT}entL%pQhhQ*4KBMuYNi{4=4Brv|Om}g7*;Vqq5rj5ywma-y+*-cnv^!c*{|LAB( z-w;K2Zlx|jl-DWD7{^!opZ~$Kn}T%{Q~$&tXi&ndZtZU(_zgnO_bION=DP>5>9ZJE zS43)0ia14*5HnPE7&kCLE9a<8OSEK;H~Szi67P2Ns>hvI1RF^bQGMI(2vb5tyOLgn%4{l{;f z0yP1Nh2v9K5_j<9Db)dM@I6!^7gk6<_wtB=T75kDb2lL_E)CA4I-IYOOCET{5H}6S zRj#2VvvkQWW=FcMn69y-Wy1$7q6rqOc*`C#`!p_zGoMPMq7*1qKM5*ZWxkWG>1OY& z&?}dT(vpZ3G4a#P1mYsC8TwrW|0F3=o@`AwP(tpXyZ+EU-N_*Fi>Ak8<~Xlc)Tv7gCr3P8nTT+8qyV#GUnZJTcOXm)fg_a&j&-8A0n zBVR&$#h9Yb?)!{k-3~k9+q4HOa#0hh0@D{o7g&zm-L5?hmYTmva@n4#@h>SU$&bgS z7hINJbR_s$II25eMKenC=TATJjw$i%!C~~cOW|tFEAmYx1Go_T`O2ZAp-b$lQGdq0 z9R(9{zUBQhbhUkiYwq)G-HHhHeOh+aRnhMTscL=PUyp6m-g{~|h&OU?^~DMc>{^xu?jwwIpAYE$gt`=YK;TX#lV30z zr=g=~qNkA0H1)NIRg&HC>F;U`*-I5i=QipZ9SV8hfJ|R`0coxldXQ4(p#MwA6;g`f zRUl1_#0DleK{h!L!E#}_9Jd-qo)-t(+;{TOC8@wts zy8REE6@(^qFzyyhTGrPeuxr;Y(z%~USOFdO6Gi57PIc^3VVa8u5S{E$KNgqGX(KPH zC@+5ZzUgBJW$ClT9EV2hJIM0Mlqh8DgwuL9N5vNK=9gXC6V8 z%T}E7V}Ud*Mk8;BCwZvpWp)wZ8n4ep_t8PmTzT9u6{{EFnq82|Xz)j!Yny4I>e!=A z5koI3hoxQSpU7X_NX8`&B6UxD424?WvvvWsF2^kU=;wI)h_bbzi5hT-bpLT>P@}+H z7tG63D^^&a--~s26k&37x%YG2EfMx0q377)aa>SGL0UaGYa_>K1E3}H>OFp%r^TXI zdTnzRfY9dwxDc63hr=+~e15(;;db@X*VARHX1ry)9cMzld)SS7p8zPz#%Y9EDr%={7b~C#+vSJY9Z>O+c zx=;bsD>{T8K_tWJ3vJ^Ml~h!w4FZhu@LbV}xHX14iy=mwn(k`w05VJYE}F85`X?$Y zQVuwKVL9~)m5$FkCBXuEXBW~_bDtKF(pl5uSbI*x|5f|STOo|c*S|fB{VJ`gDhk;M+VtRH z0%6ELBX+?ByEQOhOnxw0U{Gy@O?%Vi5nt5AOw-lT3eRZ;mr)24-(~$s`;x# zZ=n@fFm*hC5p=)Z8D1EA$|o*vlS=!Gd;XxzY+$;n?dj7PUIG_8MaK_nWnXQ1>@nRm zvUTx-sRl0=oMOIo*2WeczkJB;OO|J#BDjEoi>kedkE$4Oelc zIG+MCJrK?lq2T_tSsiWIe^J!>-)Ak8=DiyK@wZwICGDSV(LQw_PgV%(XCI-zRoP;u zpgXe4``JA|<1So;0*00EG_}5NaDGHVD0B>OJiimI_t5V>M`|ikKs_dEOVRwsi+#jL zj1^(FfNV}f7Z+}Sz6UZLFIpht{qzMv-%GFUNlzgRB5(Mw34r}C%1rnc$i~OQe4f9*#(1J>>S(Nh1kYjN}cqsRLI%X0wx75tTB zk8Z02D{FuA1v9CIC6JT4?=KBBI?DL;~OYDDs3H?9u z>e>H4C@?4gn_uVq-)B=LV6Vo1vFpnBAw4NQrFA{X{DJ$GpyV~z4*Qwyal@TYZlZ3w z<$J^LkB%7Dma}_SvnS?2+@kcN9Mf(VkMK-b1n?}xz2ht8tG%{$-A@*R)+S4g4o=aj zet!p~XRw|DnY*Ou*MwZHFH{_4ADXQ;5s`ga*qgUs*c<9l-e0Hbu{fMQ1eRem)`f?Q zcHMTXcTdbwU@4;Ee~*3Ar3#b2ckiCl)dfV@gyZ>_`G5VK*xMA{9rSMS7ES+fSkRRc zY4{EN2>b}bhzNe0sAt7Z7ULl!2UBLLL%=pJNuvL_LjLI8{5f}EOrAWrg zxULP=ipmV50rincXrs0INoh}cm6OhI{{A+1%}or+oearY zU)F%7M8>!IqU8l4`^H8k>4~Pjt2xBeCDg!9C2cA*a+tO6BKJL7DclG-op}F+m~z7w z1?ur|Wj_aH-%32KFuX6E*@IkQABjiyi@$@{_vW5EN|_FMv=1}3hfjd$DdTVl3+%`) z2EY%mEDr|wT#iDzcQ@aT4h_AT|4Mo2xm{lQ}kBa;FW|f>IZN|GJbpJ00-S zpKsrCZ&Vlpfzu1PSJ!N_(Mwe+HeXKE?=1g*gk>CF0yrE#hH4O5V>76M&jGtxSzPMz zni;*{$tL(e1q-UgzIBC;J#W<-f9zO?hV!LCFOP6dg0iB&{=9rjtu)X_#hKxR8jHY0Si#p+rLi&y0G~ z(lkA2qvDcMF1cGSVT**en1v$B;sDOEFU`mI{qVl`ocn*C-~I6XFZbxcMz}+R&_F2v zvRX4RKhzM<81*JClL$I}Roa+siwIzQ?fF*CP}IGx$+~SGQ8}UxK!$*N6=vj^KoG{4 zf$6fOJ;I>D!II6P`Ifxb@Uj;q)gaR?oM)zHKU)Kn?#Ls zNu!k^N?0XVzEGKQ4)ZLm-xkm2QoNxRaSmWSvf;aDm^CUvOzpg<~ICX$!e_T;^zQVr?enlVY^at zsiz3m{RGX`R4Hn>!)99N!wchjnAWJFL^!RJu}Y*OK%sp7gO&dMqp#wMJGQRov#u?n z6ffM{Mb|k31c{&fHke(EYvVViS14;5&;d{GO*|7fUOoBNh)E>?UM`eA3EQC*pq(;B z9hBY7zUYT#Li>hRXC$_A(HX&u_d8p#ka5OrjbVXf?QxwH%=;6jAMNBV6Ck%1>dEcS z#`_t(=+N*LmtD`*Eq;>wW3i-73Z2ImP78KhInSSiZVF~)BY>y-?v!|>ix1OEux=FT z$F{a%y|K^B~L%ft7!c zS)CQfoFa{QEPzR=MvFGHeM3|E>59ZV_R|kjmg7?sShO86de5qiRh_Lv0#O#fE@(FN zmKBhru?v?dtW&WX^n>@!Y8QCmd{io;7aS*Ybd!=LCq)sMsZJJ^)ac@QdY4?1WiZ1F z(5f!Kesd#5m7P~c0r^e;q%~gptHBaEh*wI=jl#mTy}m%0#EyOe-G+7FwOZ?E3K^Kq z`6U01Z!WL3vTr<|G2ee~?DK39c3&&0xTiaAcLY(!@79kaMHyye`nF1`6VfapOc11{ z1PLQ8UmGe1`1;5qEICvo7~H9|RaeaR&*Au@#*E;bYj@l3RhnNI#jX{PtT|+yEP#m4 zzoAhbMKh2$g$4;k2iqWOaFWLeI|`>6(N89mJEun=GXW8g$l)V5g3Z^gErkByZQq4% zJ=Q>&H7ira8%A2el_SMl=q<~2uJuZzjx(b_NESZpoEBJ^)90Y&zdC;xdCNiBi7c|;)$Y_l@&E^0`77JAg_l>0w22>>^-y(2|I88 zGE&oe9bgA)rWcXQnDUSqEw1w#`#%2i(FAxe6G_|W=XW0uFj1WdjOTbgp#LML={#6I z(vF|SHWKm_zf6HGvw0NWRh}ON`LrUjl0AZd&UCd-6Bt^lFrGrJO`==s&fbKmjskAN z#wqz-Pj$jo3w-8=b^0shpNbZijNlyFsFFK+G^$(p=Bmc($>tO9{61J_DL?NEaRfbP z+Y36?Aoy?e{2@e^cLg`JzL3DgkG8FZ5s`tqRr;NTr^5{*)jI*bKCY^s0f|V}5X+AK z_BMwYw!QY#w+y=F*RwhbaR;Bz$361-ze}Lr>g;Kzcx`inhOPScy~e?{$thD`y>CI| p@LIr+J&5p3y{-DK#$aLTs!^Wv5ENBfr(QJY?;E(c@~6nGe*v$FK>h## literal 24397 zcmaI71yodD7d8$K3?U39-7V71(A^TEgh;pa&|Ol}At5P$)Z$@P;Db0&}?L$%AlZBCp^3{Lq|SixhNaBp`d`i{r*GkcP_C+K{5WR zA}{mY+jzgtE|I$b9gXh>DUK49fcufBNVk-wSa(6hQ@dZ`j#mj1@uZ`lBnkv5zT^ow zi~owX;TVl7jALN_9<@)$rX4E(jQw$P=oDwg+e`4iBUq;uI}bnycL{=qcjD z^)d6S6VX14aBJ#XEtQoGe<|}TJt+4(R8j;Ybgis%#jiHNCb`Js@_E;&#C(7$3K79O(DoD+%l|CAXiVg7fSuMFtFn{%8CNd50J+`4t^M=&mv9L`#wP_JM?KLMIB3mIBU=wKuKAT@T^=<8>Ruw6BsCdfOHozXAj< zcdZ2MkFL^~D-w2J@I9Bo6Y>{O2hALaD&}2ZKb^Y26@>S%7;1P)wuj^fSaFt5P#7sl z%d(KE{+aMXLI~~fOL_Ll^Ra_yB2Kkew6mp%ppi=B0uRG}+ry;Uzq%UGLYL4V=sMbB z+IYI+?V8$t6GM;qIXXM3x9RxNFLz!&2vdLNe2O#T`z6@dwf_<4 zoM(36(coi=reAac*H`=Sn5RlxwNgv+_xs#;?{i;%?QRiY@l6`-NXTd3!bW~PQB=T6 zW>c_dLSDXJ19an&NDgT zLrXgF$h@Y!yV=b{619i+&j$U%51RKAwn;c|FO(XmPb)L!?r$5o$HVMj@g1KwTrX~Q zjm`|U*~{o=z1o<|9ZH$?4(#%(YY2?|1skj1OHmK7tgnr|e!9izd|jGI8?fp~>%WhA z@{X5FtWtgZ5nc{q-l5cwKQq7%3zE85pb+znkLdsOZ1S5F`A5zB0qV@?Q>%Bqzh@Ys zjJMcZoYklq)pNh2BI12~-6EAsRGJr5InPpYZ(HFSP~m^~!j=1RgY!en zd{gBMj}zy$sYAn`Y++aa`XixDXM9C+B=I8kM)8ocQP@D~He~;mjJp81=MaPRa(AIo zGt?h>x;ut^=$4^j^Eq;DwSpiJNdb$QbEV;KIYx8nzQ@Mi!dorREUp+ zahkEyQR8Qftl|1{42@*XmlAxc+?wq&n)^8gHlEq}tc_H~HW#@crS2CG$MTlh3V?Yn zF}Z{-Ji>7_YHZv*ukp$!cU}pnJ9X^02#l(MhEAh5-wqa9!r4X(zHPRvHTrvUwf&st z>X3A~&!bvdZz z9={tnty54>op?qANqjMLH{jNTGy?tHamM1_^tTCb3vn(V#;tXTU75&acf(hQeUdS6 z&Ko=8lJ|u-Q%u0mM-^de{;SbLq_a(uMtDN%(+zQX40m`TKevV^@#=%qSc#g1=il_!ud? z<#CW7*_+&{m%C|?xLs|28LGUz+4}SDR&CwGF+-^_$diVXe0B(T*Dse^XyxIqk1-54 zUBoHKU#X3Xi?La9l%dwp#={7B(mVL{-9T}htXD#eP>&_(EI;jas$`wek8YUSx!c%5 z<&U7^$6=M>zRIcObL;(q!YtG%#Z#Q9(pp!{X~;$^po+V%Q$mD zBH3hvXSnZd+9ly_VH{q2Bh0n$X>hbiML-|mQ}NeV%Q-atOIYs~46N?PLhaCM=23n7;vPLI`nwmVA{ zU3q$&AB*5WgX~zbLlPre7S5w5VXEA%mwfw6E$Q)8VA(7o#{y*4$;S3GPDD3pyR_Gm z2Wh~8TVA2xVOzS8!<_W`x{|G>Wp?}hZ6-VpgXR^^+C5mk1r9D0SN( zzK~s>#FRKYE$6rDpZCj$h_{*OYq<(P*d$$?=N-f@klf_F__S=?)*35m-jr(W;jq1L z;dAhnKb38)I`wmjc!lq@2Ps!`5uUk)Xs2o0=!=d%*LI_1mGBR%#{T}cRy|d-(662R zcAkxT2LTtXqmvmwaJ*I5n_s(>=6aq;jb-9{ypxZ5uaZZ76+@`{vb17Z)FHYE|G_g5Vg z06cL;ldGM^t;&u|Vzs6ai>u{C<4rC^uFIn?!Tq~2BFK5*wWgQd2HJ&ldY?uIO{y@I z-$>^1&i>jB-bB7b;pKHat8FGij3rXrIdwEqW%k8m6P}c39wP4KzitN~ei4sRXWM_e z#WD_*tK^;Up6{57`FtO{!Yy9nSOVWKd_?`mm-D# z9|NHwNsOB>FQZFg2j#q!t=MtxBV!d{AygU5i_NLT*(<@Q$Uzs+xy>E%@ z{4Sgj#|c3k=@jjkz1)Mg-8Pb^-HT4cMb#&?J$z&J}3X_^V#H%Gh0`E zMPWl_5P!DxA*snwqFF}#Ui-?O&2i}OA?2cBjnKmOr&7ywraf-AXSEO|`^ zTr4ShEnf*DN;?owmJr99ZQ2(w&GtE1w%~9^uzd$JtnK<(+t^F7l!BE!@(5g(dQfFqh8i^JKoFZO%kHE&ELx zM0=E{{D~sp{7`+pp0l4;<1(u(T6*{3lydIR1(b4@0^JG;qy;J977gMU-*Qp zt7qX1l{R&YpG=z0hedTop<9ejk#w)w9lj>>*)=xN*7*Sqzu(*L|1L>g@e5+Cp;_?h1&Fg1o)u=Eql-$kNVDC|raglT2w}Y|Ic55Z0 z#h+-uzdvLKYz{q%*EzxZ_L?5oYLIcz=2SLpJX+ z=>E+?`z9p>yCqLJ>XDvMpH@4i#onX- zgbw=b>D|9$ferFwg_S~^im_!2(!XPYd^r9}sY_q8OmaF$@>RDzQS0aAbfumSqP32n z&UfV%pKXw%ba}bxw}<=TQAeHO8&u)Ac17;Wd0DCVXJ`Q%K~mCqBR82Mnr1oP#2blo zrmhPu94n$Nd@IltxJ}S0Q#pLfPj4rG$x(^cw5)+LOv3p7TSA*Ok@;;v|A*SY2IjDH zLmDJknbW3d(O>-Uz^Zbn5k2!f$16{w?ITCVKt7tUh!DwFJ@vjcoX+r9C+$zZO@)2$ zpHgJy)>`gCcNFt})~f3&uZVRX^;l+^&zJw6?Doi6r1jbgvG(i6_wZ>BaXBj-)#bUs zCoN;f3}5#HLW*UdjQHI4zo@wCvI(~#x5gWBm6XjDhd*?cS&kTPy4$fZ2UCy@1^o#q zQGhR_L%v(EZnL_jK{NeJ36T!;i|4_kN{QOSyXl`V{+f|xNhpoOt?{DQ4I#Y@1~TYF z!9f8aZ}~i0i^9yQA!yWp9{-d|M};iheYX2Q9U%LWHtSRcaT&KNE03Z6^X}L!Syhs3 zA^@KrU*@j>H-x4S1uBE*B{>&#Q5yv3MUWvQCyFiEC>3`72YhoVb5h5;jN%A{2LyLtdX;OF<5 z=j68nTi(`|`J*L;2|&e(;3T6@70+J;u5>DMrRAtqblnXL2|Q6^MCsz^;rP=qoCf$( z9VF0C1D0w3wf>R+q~zq$8c&cRR=8%Hhn4^=)oq{%hNTkc+YrP<#|U(Vsy*ZB^m7g_ z939_8HZX<>Tu?FNxl0<1s{t~|yLeY7P`F^#@UmO6-FNlPXY5T=@Mk0z%>BeoM#wyIOp6FuqQ72nuAiO{TF0mxu}vK}u%J{d=ko+97jUnAJsqdU$@@ znQ8kzz5@E|=d8ex&~;~=$L88hV3+9+3S4OOyc=(EQTD(nzpvk#Oa22gTUxM7d%5Xw zRpGq5zlkhtudpaQHnT~QYC`B{x)5+?72f$_cF4;qU%i|$j7*uwvb7xl0niV$FjT@@ z7;+baY-Evl%p79szuQ^QE_GbdvG1Y88OuFLuI|4sJzZp+Cm@WwGxGKBt<{fXgp;y5 zm&xM?NjH5muegXMq8YF+M^LSCi8BPRSAT?rxZ~7CQK3YkF#KZzV{Bw7;7$%) zevf~*ybZfMwp&ycwqaa| zc^c~9mIcCr8^eO7o?8YQ5X4sB)&ekjDp~H2 z;gd}3012pB*wV3I7Ra~WUbfXNPb=7M1u&EzFbuIbSG3m9OHl!lGxs*lcZcBn(`$J- z`By!=@lumxQAh%)cn^D`nV8iD8XLeW^GZ8G&4D`~o4GuQMGZVF26knxsw>%=3+TYR zF*#CZY$+StM7L>C&B_5M)pPG_(`FGT3br-bpL|S`!-alAEnEy-bEZcWhkD(3E|K=8 zMF&)6#Q-!<@}MVt2g=FOg0m3CX#g8r5k((Rh>LPq7hf03=<9idt-jf8$C}B9hZt93 zAJZ!0ayRo7u9NMgDMk-6_4nqa_M<89fL+@-+A4pl<#}1}7K2FYlh+ zIZQ;6uiefFo3@^B28?Mc!62!H7dg`kwI{x4o#IB-c{!gS9&r)kgZ(DAOING|2DfcQ z(uNT~U~~+?A8C&uJO!4*RQpk%!^#3vZtdvBt(WX>Np^RA4fxEhQfZBJddA=4V(2O? z!ZAk`+8haWSU!}e;8bqm;aG3ruqYELJ5-wH`$O`nDmh>0ujnW)ipotT=!0SdEK`kY z`&ws>Mn=u^m4JxevXwQC7nWU3m9kz(c1)c=Z1P8S&j4kiy9gXG&DqiCQ3X)lxAN}C zF|lPCw6OH@4pknZKi>Y}m-CqSg(yBgCuc z)%o^{5hksOp--iCFy(eqjv$mC@%WVg0oOM1-MIwiXe>%Rzi z;+r)88FvqyXvKQLFegmY_iY-X*eg1qI)76F)rvG_A{%k zMR53BjVfF>yuvW6{hK}cI8Kvucf<>7x0$%20X_Y*xc7vUbQl?C)*6bd-YwscJ!Sn~ z%7P$l3`6?wlh9T|ikz+C0WAC`Kdv4j4g#!~c*vSu&;z=$0Kd7&YFtP>BS!Vo8aZ|O zsJ@OA8Cs_|00<)gi1XW}haB`vpFvTn1gQl71x;O?U@DYgM|3)Cx+N)q3~gaTNXW>y zKXe27FHH$%%<3{1OXw{a9kco4vg<(q4U=_j5SJs&v!&{|*Je8=E26+Dfkn&tLn(&# zcPlb{UIk@i{5bBcKS}rijYd%+BnqHUCHL_X0xmr670HjO5^WxMgAX{0lRQ=$Y4qA_ zhMaZV3vx$a+sxcrZ#-_fvEKN08n{mEt2#aTvp0s#`J^UgOzg;j?l;s93L$cg14F1^ zejy0SHS-rmFC|V(i4L*PHg0y0{#0DNeX=p+zA;GL?0fcwiLfYs7kd|b|2$hdeJrw^ z9)omrtn+rUgjAUWD12*%v1{F_arA0E3g3KBrGdlt33^g zS{lxw=hf|aXAbayl~Wx8YjyQ*viec7v$qFEBgO<_x7QbwGv$WNyteFMG81`zYmS0r z4$93e?oz5Bm5;C-2*9Rcg<#kE9(<%krlI4OyVI@#dLtKg&QA7`evYW~j7*J8ox;+9 zLc8jnMJT^^yMhq6v^}3n0e%BL1NHaiS=?s1AS}qlfG?=(`ATC!TKUgeW)<_3%q_nh z9&>J$N|B8(bvmpV&aKD5?dU?_?o4^%J9fQ^diz;Rz5)4eGvVEAqS1uO0&;%aaeS!E z3!X_3_@y#P0HY7Ym%VXXrc2?|&Qgf!K}hg@r;JHj+@i(F!5^mprJKBLR*3lhn(J-j zRVxF@GvgQsAUKKv@1?xF0@K%=u!P8(qkwViX~m*Q#lzVyi}dPJ_}F6U20WZwrEtGq;s%wQdT0nPDYe#X3F?TYoGAuMWO?x`;j94vQ1?L|D?Ka!h{FJko7Mdoe@_&yy!A|k@} zY-d_PP*B0SVo;{{aV#Hu>gojrI&fU597VCl$>pCk_BE5&>28*0&8 zh1zc?^5nIV0uKn@ecqucnE(0md3@QdvB?W6I+#mJby{NB0xOkq3nMjM%&k z-Dl+En6csUjBrkRjDfhot!A!bN8Zo@N@M-*a zC*|04S=(LMINw`7-H2~P0Ub1Pu8!~b{3Wuo!2Ci?)&vg{!{Yh%m!zHM=1YYMgq)Yv zOLfZ&YHda*pisFVadflEHrbxp`JtC z?6O=t-5&C|%$WoAwY62kg!LAG>z<`O27l4C#8EspjW`td&2e1F+0$?jC8r%h zi=a@NaLnj8WlDRFn8uX?QBlJdhTU5gcY8C(Sdd_=x4?8Zp3au($N5GZ=2aH^kZTMCF8m=flt5lc^2^yHz3fJObY+lp@tO=xj( zUQ#tee%&~iD++R+;k^ttAJ8j3o6I)`A>;5!y6{eEbe>hn`CGERm5#gyrzKUrO5=B* zAuzgr-m!48MeALs^DFGtVwW7zg{fx{x`9sRtsj$Ajl0Im4+zod+4&MZIwD0|Uv$b! zWbC5=JaM*0?&5@(=_FjIOqZHH>L44c&7S-3)mgxp8q!mPPBUxFxwOR!{5wi~tcdD) zg#UiIE8?TLRn2^JR=_e#i>EAe-ZQp@(Q`+O@YDKKs#qMjHZtPQ|Jrr8>YTNHP7i8+ zW;C**tHCjtpG5q^_;Oe}NW%OB6m!TV!TinW;LYvS3MuT678VtSFl3a~hJT||7L36m z2C54OBTdECjurR{798C*UZ}*(J6C6yB0iI;vkhAVh8N9P7KuGB!+Mo=Qc zXP}b_qwgdvz@W=}MnU~!3Z7VmRRgC=NrUp09LDG@ykoyn7n9R^})8pXcj_*vD+P!|QO0zr6h6l#XewWb(c}5U1hx3DmV09BV zoV}lzfu$7GpNpH53#s~47-y9CwAKaGe==3=8x89B!Y6A#1>Xt9-)i(F` zrX#-T6l;w4^t@pLs$&`loV_3yG=1iBi}1*79grE$H2P=?v==d$9nO?nHxuz!7Fq68 zIj)U3owhl&gGqyJ$RT)GSofS*F?s47N(}0>q6lcTq7}tu^a7EyoW#khZ59hKvP|QTHPJshHUjxZk zNCdc%`b66oF9JK?A2EjN)n!EfA`B_i3H3ed!T#!nY<-g7>{228n1vk79km`ay7m$M!#y5zd8`^U)dHq+5*6~hn>S>iAl7# z=t%rmF#jKp$8B}Nl$4Vl?St?2Ct1fr^X_AP>$2+RLf_Nb_6V(@R0SegmLrshT&*O)nhh$soI90W?(IGD-s|WywFqGTn%v-K&PWw#Ou&BD4 zLm7}X2!93x8SjvoqaY=qDmP~mR&rQAHYEWuDk|8vq4rpu>fv7=M>^dM1(rV~TKCS3 zb!z$>KV2-Ph@5GDDKFCH1$zm0%9u)<{&7{%gg?$L@!vcox`>cx(5_qwKilyFh5wLr zSEEtSb6!M4Qe{CIWK>dt*+;YjD7eyqF%;y@(mptVY^lou7a^yqSSpezB@1n^>;uwc132Ix6ObNlg?3GPZ_bDEHZPw|nv^gd*mNk&m`~t_-*s@id;OfG!QEt!TuxJ+G=k zP{gZGK2?}dRW6iGRIwA!c2ou00=yPtK${w9_?v9@=G%uyrx!)j^Yd7ngBXxEN-^*I z13zVx(ug_faIbtLX9dle&VR3MGujBI>YVp8Ei=TWSwOb|;ar;KHx7hckS`;)P3g(C z`mLJd52oiy@~xX&`$H)3w+Q}sR7#E%`>NQK6^ZK@`Q$Ll ztgoxBPYi_ z*16ta-sb^eInadtpA4n8ry%o9{o2~85e#8yhzjO&GO1rvL>u9op@ufQ$F?$UHwce* zA;W9{jfk`B65+OT3`LK|)H5|wdekUP8FwZd=?CWW^qw=|-M*;zrspB^7=JdJQFO>M z3&!#g_OGVd!4Uh}tJWld8=H(@psgnlKP_R8X;kHD;DfVDNqi%1z&oYIq5MI0d68G+ zxP=n0^TIAp&~X&?C}K4-j-?fcheJYsA@}F%e$UTZ>urZf+5YlFZk`-rqC|n8_#2h! z+>AiEC(rN+@z=I2vdG%bDIT8`C{R0G(>n0Izsj)P8hW_wYftl$Y-^1E&)CX)QJ^84 zxq$j(ZjyMf@U`!=s6?<%%r(Pv>R}RR=@J9Pzc?|DQmuf?F*`LO?=Tun!y9dBk-6iC zW%-eAu$Y1QSe&e^oVsjG7>b?AO|PM3){&~{aS;C>0@$#$vZ zmd3@2$JAfeI-s5a!K=T#hl+0Zi;m-;WW;Y4l^Xp<+6wT!4hzll9~E{-*LvJc?joKB_GW^2R67Dd~nZ{+Yvi4&&y~87Hz&L+N46q2keb zYc@@>;%~mB>X2XT%`;L)|Hs)-AergPHe{8X%Ru9yiSd&JhPBGl zNy)zXqp|!Rjt374Bv=B!iJTee;sNAAJP7!$LR%pR`RDpA>ip)>QAiL&2@cl&`w<06 zy9Y75^3~s*|M@p^3ja&i<{Sp?cXFWr)kr?h|DfXJ91pER+x{p^C^+s9f%sq)!=6~w zf4Y^1BKycpg z7vHt7Hr>g@%a?S>{UT>?q$x55hc?Trau`hwtzADe&hkfeMhyr^18%=?a-^Ggg-y}c zYrmq!On>@nUq^H-H`>ypjy;i|nIf#~$8=Z|b}cS6*npd7jGD}r4Qwi_wM&}{^wkm> z>vRQb=zz7izk(CiTngJT5FQ(tO|Nd9w~v~BB-&gH@c*i!K52r6%#h3* zv#Cjo?8wU)>bfL{dAFTeVJfvS@S#Fb)~BfZux_IQ(SQq)Av4KgP_x=v0S2^Y3+v5& zInY#@iB}cxiB?|MY$4%mpff$X5X97NS#6pcxYkGYzDUC3$D zCV-(Rerbt)gdn=b!l|PHI3n}-oSA~rbN=46D1f`)r$V~{-fejQY}?LxY}16hJ%Z-Y zia+MDCGr1meN=sy!)jAF7(w;tt)Tx=W3Euj?@dKM`=90Y#RC+{gW7M$7~lMdtxtCc zbC0vfQC(sO`?vKgk8f_d{i*#j0hQ%-yD#@UDlLWktlZp+63dO~=@>_A$AYB|Gi+u# zz?ig+ZSX!_3Q`M+z1vZU9FK7Xg12zKp|gEJwatHp8%*WB(@08f#oa&->vWT*qePMm z_j;t=i?>`%6shHcTUZUb8#4Xy_77-q3Yn4QV=MzW2QoM4lJjcY;_ zviw~^q%)cCZQFY6_q#Y3@L>LTap|ApHY(%o`g>&kAN{somGsp6;Yj$?0qmUh9{3uX z!BG)Mk+k{a53XDABa`$hTCW~DaA#X~4eka1#P0IOs3T&K1&jrcNk;^2lR@yk&I{q4 zky7e-Ut5E)G|rH5n})a#QBo^pXE-$X$TC`2Qe*SPWk{lC#=L_Gy&;ohg z#eL!CiQSNxm({{PCoi8YfQ_PRK3bQJgV$5%=0zc&p#3Rdu8p78XWZz+)>E#wtC=(T z=EGlj;{jsdcEt{hvz*)WJoQfoY-$f$a@}49T`a9ke4ey{G8=y3@Xhqu7|fEgX>st? zovm5OK6hxk2vo@XVyEw|c5?@>EX%Nyk5{d43BNV@>`5B6uE-N?lYHKI>i(=E2RaoA z_Pp}ipA_g&oztl19;9(c1JAjxL~i}M_C(h(y(``gQY$Jouq?R=jeDJ6GV7KENYnf7 zU_Y3t(j@sbui0S09zVB)dhIN9F$v2S_p5>9h>mWxkI$GP(BNaKk-N#q73tBu_q2qH zIvr^tFF$*>Af#FYSBjegD1JHa$Hd{~JnyBJE?O{R24EXtGcNZogm64av1WCrq*}lj zAJxs`yv`f?qV%L~PsMzX;zXq1sHLh-flt*GnCqbAFtGPQvb2v&j1 zA?T?w8*AhGBs@0x>41rgSedWK7GvpmpTQ@h+!q~8#`H9nS3*YB%ad?>JHMg@&f{mo zs;KjiM6fE^e_*V4hSF}H!7jf%Z=obBRItF=FmP~*Jd2ssuob$bSi}t2D-lw>vu0gl zXQ4c+{&W-X*lH)rzprf>Gm$I21Gz#y_2u%*uV?PG=#W+oX6VMqw?&wuAP?ev99#^v9Q-6c~vWU2v(^}0xW5KeEMYAA9O!q_B&!O zAliKRAm2KclL4dScHh}cd|EU$XaKJAnc_yu&gu)3E|>*o%B!7U{A!TR`v$v7jn-MArbOWCG&iY`B2c4DJ6 zWYq%i*}{iCnR?_0Tlr8ryIfOj6Po$6I9K~(6JrQ_?a=XJnM3yb>Gsa~bx%!qKwaF> zT8Dzbn%xWQ8E3VnLu`nPziJ{N(m~tEm-(jyB4v(fOkF<-It<>7raW@)mU*Xd| zXJtZ-&(idb%7{MK;saEb-d8YC$?tn@HHNf1*|iwm=6yYQZ4%kgg7u@JE{LvpQMb`h zn8s7qJUrm-kdPWBjfMb2-Z#&Fi&vQz&kR3o|<6=B@fa3P`_}(bFg`? z@s@gz3PLBQ;08}Rt#npSWy+t1(UCAgwM#9;5;{ayE~!Fp9@-6{M2cpYLZb~U}WIqMnb1*5iOJ(50cr}{kyHH5`(TPW2J zHNz*rEXo|63(E#Up;VSAMWob;3UGgX z%VE2kl1bLb#wU*r4Vrg)g=)FR4|d`@YIx!yrB*iMwA0&oe~sm|ym5O1{!X>X3k@s+ zfoEJk(>=5NcRWjCWZd?9`9EIIJHwUk?zBAdVRT`!@Pcn!y+UDBa1zvrN$8CXLa{XM8E))lN^BD9j!vX4 z91kHiyLX3O(dZnk=s$#Yiud*$J<=OK-l=T!fFuHV3;Yu+T#;>ILaIDA$v)RP&Ps~j z_c0@!O)}K(H_nypdfyxI`6g0;$@XS7wh2eZH=tk>8rDj&?Zn4DPz4%RV_jnw{OTGd z+x$v$2#@kD;D9AO7L?QD~UVp3N)*AUo@+(Wa)cb zhe53XYB*e0s(hOJQDMkyB8a$Wwf17T7^ycFbFrfhzNMV)3QVuI3fmLviSBYr4r>ow z!xZQ@O#3#f<1`MFMyWe66)d0+$to8E`tyle;FEBvfv{)KzK$maP`P#fYzjPX{aoDY zJ4p>uZ7E0Kk17HLQ>Ze0*FEj!StgVy7xpQ0WZP#HKp%EhcNc7aEbf~I_zzuoYbp?! z<6Xb3qu#@W@OU2aQ0IutSYUvnYe_4{O#C-g5LaCN_dd z+lr*Qth4!{b%RH;MMU2|8hZ}suGJQum(eU@OpsrbgWVfHW6B_N-pPvN)$Dg>>MYmj zU9PAv8Gt3(Exxz}hWI&)2gPaMKGQ$ZR)5Z5<^O5EE90K`CbC^TE2A^b6c1?t@vWY* z?Kj^yEkBxWZZX|{??mRH+;5KB&cEkvnq3`RW88+(34XLE7m(C=iA#q8j+(hF9|60Q z{lZyzQMtYPRl?f1SDt8u$9*+C1yCfs(ZlhvXQn;XD$=)y#l4Q+2V#_f6IkH*LC1ZY zjhm*dZ=!dCbM|yqg%v%zU4Vhh(M~uUCkn{38Xof8@8D(Nixixkxzlz)wYG6%&fxNH z!)G)dl7_cOggR57PO)JS!M$k`#m{P{_f(RQsnH3TPvXIDV|V%5fA-Fi;+?z{+6NK<>{( zqK#iabdo0mXHRr~`f@>5w~B0%nZEGBgU1pWL2rp+td` zvM%f$E5!?_7{Njy+Zqs&wMQ`Y#c^hs3#ijcnP9BhyaBl68&5vH>baMGc0FrEA9v$qTI?FCuS= zM_3ke1c5Fc8G^63s_o&n3k98uKs6v%vU3jp+_}!S8p!F|=p%KRI9SU>8HPuFOiJKG z#BlEz2(F&vW&)aJs|#hbTfTZXuTVXNohceRKGa9xj`myTk?!TuvV)9`)DmA#C#m-r zk4~KWi+_GfS5iC3!hqqJEK$o%rzd3mfpH5H=`X~2wG1FAHd^nL0WcJjKZl1~g2?0- z@0t>00C3@<1?FD@kog~F#Z2f=poWYO=^~KAFUkYOe^rky97v)Uzj?JYJKX6pmYF_ z><2YW8G0P7-+d$1-lBh8%C_C?GT`L$SM)a}yQPRY@?yR|ylQ2Mc<^RY`x!S4(8HVh z>_-x<#)(-0VmtJV`-Hh&W5DF0djL`Q*$e4}N_0d3`EYFl1ozx}(J|MS+&`>a&w1az z5sxLY-^)DIe<_%_g%h*=?dxmbvJJO^g;|@FJay8IQtpEtA=P)zb1$wuj7FRT1(ClX z^>_rHYxkqwC#Nh15GidPjavx#_`i)1j=RhoBzrQj-*ZYmJX!4Z+Zi!D zc{Q$*?4z);VFS1fP5qOE_Wen3vx(Q|&TR=-888BFLq%+98&guWT;CTmV0@}PsS2Z( z`R&s*TNLpow(hXVIYoqgvNfUr=^A;GPZt}UFIX}5(1uU(W5d#0@r($qklDZ5p8kr( zqMU(Dto(9*?FA@{Um)rjn=amLD+HU|&rV|J1#~NR&-^RaQ{vix-3^eF4+>>}Zxj>Z zU=O3xKbslxY{b?pVWkWk(-w4x)u02xNAXmKl5U5-LamY_bkN`-~IHZ)Lz zKKokW2TUwWs??$*$S&$+8jf>hK#HmN+E?%(i%7)Pz;9Uf-=JuE!{hN2EeGrt!S(8^ zH1hacTh#qhc^%eCqH%8RnFf^!^|rmHeoofUvEpt@vzB`fdJsvVDq?OSluan8Je*tD z3Z!g&M=)7Tl4-|~ou=0Dw0?1_h?!z_!mwp=>F60wwmz4?%xF&S+PK-no$;+PNvqs% z>rvR&$zgQn`1?WpDxuxU#R;Y2VEuY)3Fw>hk=&{y(`!y)ric*82!F71X$EJx!C^_Uu+Tz)*Hw8BETYJ& znNz@z%y==VK3v_KcMBEC9yoqdX!XeonFu*}_UbyJV~~v7Fx*R|XL5FhcCoeO;1~gU z*&a{PIWmjOsiEVz9P8LKDQv&f>~55R=hUHxs9C{=mY*Wg;0?pB^MnZ8Ix(Z6zQvC3 z#V1$A`6k!cJ9q;2SNDw?^lDzGR_*+G>BZfl*LcZ3+~<8pBz7(wUY2GbPhg!F?9sh} z^t_lhHf(qoW^evZ!e}M{yko)e8P$7S6Lv}5%rGQpz(e;p{^f**AR{&nZ8}(wDe_S6 zPu_wogB+5S88BcGoE!$+8r-DN zrBRvETWO~Re6uS(kp*zg3&pGNyNGB@JCn!5Bdi@PcIEsxsa2jQ887z}sb*rs(r)%cE}Naa z(cEs}x{cJF6EyDs7ycs0l+s^p>piI)UrRjEX-0E0NtfswOeK#ZK;?1bdxW*RrIW|D zaydI%o4BD5OuZt1ZMBzd^DN5ux;GPGZIU`Ce1e0y&OgtQx9dyS;))qlL92o@A$9R8 z-1FO-fGw+ZhOar`qmRqWW(j=#iP4uy7@yFIA~>$0>s7XXzgOq_;I_^lP8WBOmpC43 zkOt*!V~dt}m%;g)+C8>mG7R>jMczeyuWXG)1~Gjf$k9a23ka6k&6u|9 z(S)lC=18<$`sJmyMxn(ug`sX0@`U9YgfK70?xPNJd1ibgUtz0AMHn%+M&9fio1L*C z&%NzGkz=O@%ohgp;Az)@C4{4+&Z5gl>TIRW4d{o~e&wMz!-i4~O(Ikh#RH-h#PW># zm9rL?2xCKdf_dC|fbf!#4v8@bErC7>76azFFr*jQV4sCDzxhnWx;321@4nWJ{ysN1 ze&WM7C5jlTIq7u%z2SZ-R@n|;@`frQBJA{($(iAeg=TgRCj+%nY#CCg;WlUpim$A$ zVaX5lJ8z~4&9A8{Svf-|g)1-b1a66~U0$6;TV(V?RGBKD9%x1Q);-}+<0{sN<~8+< z&3JCIYKN~^R!PbmjtMiH(vb)rRasz(?|afeomTzl9BM!%2LoP(zicvxGD${H=NC4}1LDuFUgAszu53YVSX6 zKhRc$0a#|rg7yy*)9s64oEa1$XC#1d7ikKJRD)Cl1f@n01nEthfb?DjDFzjS z(h-ne0@6YW#2d%xw*7^AmL@BKzG$#H7(PbjSU8!gp^!h z@szZl+y13qML9Y^`CN14WV!fFtNRufAetIX)K9@tecgHhS9ZAE!(c^H>?t;x4Qx-w z1!^$;HpaUqEZkalD`u%AnK)Fs?uw-8Y&k~#TynCHvdr5xpFs=z@Q`mdvvrp1*V^Qg zN>F)?Gy}`UgX`2pJUD%2I`J?P<+;L$#roqn1Ns0sRiOSgPUND?*i)_p3-hbBdWitd;OHx7^e}TL`KtMm?{QlBHFCB%hH-vqQWB&pqj~2Li@{4!mCuNv_gZv1l z3Lk`&^s+Ae?$H&50L-!$TBr^1?Gx`$aMDLqct@+C6p${9zXCk;U#&#~ib@lTONT*6 z_`A|g{uvDb@|w`M2hh7)pnam#a?ro|Y%My4A9ecveEByZ}$pX6fj280#!850C%zvRg z@sXX)O@{}^NT1%+M98q{Wwlq)&#hg(Op1ZW5|aFcI1C6}$4TvHWk84byIQSezdxw- zSz>ikbuENH0)?3v+b7nc7~~3495LJIk8Im2hZEXxSLn)SliRD}n26cJB!gRzz~1LA!0-1e>#CN&yiH+& zL9!3wK{EH>yx>HHK$_-o1-)GtM~D#?mnjsZ%-pXV+xV0=17yky=vT1JN8QJ;y0)lP zI9NaxWR7;jt})& zVCD;I-L0No51*y$Co(C%C=ZhE2)<6s$!HRNop@3x?roqjBy?BdBc+fjS)v{B)!4_w zaV$h&c(0XhnTEOY`ywkZ1E*Z`M+(PQY?3J3gnXHpCAn{M^WRc1wdWyo8q%7wK0vF- z5fcIRAIK^u5*O1*yl$?XjtSyQB%}8}PZ!gi3q4=%X>2o6lXhb@=W`!(^(;(0HBPgq zz*4-kE~T&gMH;Yj*Jj;^OcoJmhEqIiQnmZ@4O}=M-D9U6V76fWmU-i)6y=QNk&ELD z+mFS4Hp*Kf&*^jWRZ}9@Cmsys9}O^1kpUCwajE~YxeGm^+gKr$oO^mbi3~+eTHmwO^tU&y z*rGZ5F%|6H;ChswqcY_ZcJSV2HU?YDOA4#BbspEQQEfPC_&!iTnpTGBxTA27-QhAF zDgCxoe0N5Mg1Bz@UWS;ls)mL16~1>|AX*hZP&Fy-EXBJORbEYd$BeB0lvoSH0Z%<$ zhI9^+*IZecCN&0)n0(wm3x)L6Dd_7vkv8!?jZ92mjn^$ z-?|a{-6A`BaY*qRD%JRk{J?xASBMol{(_?_hlnvviIKVSv=+aoQ6{}H3SwaTE*4@# zulVWRxZ#o3HI-Enop#QUnA#NpoEv1qar@l#a(hG+S)fhup(dgzmdYK|kuPNTV2nP~ zDICpltBpBTNy;g>C4#R;Rj((%?v^oc;P&@IO{&Bhx$lL@;9vA$$Kf67C&2_$!IQy2 zh2Dk@HLQ&7dC#;|TK_yxzQV&wInmQ}!CDVJQ#p_^TIK5{Iu(0QolV@SvbN#j{<(xT z;ls$C0lg`R2jU z2r}r%p**KnO?WQh9&VrvU^FzHi|3<$bayuf&i4#ytzZh!iJ6zG4C!;w`mfuo2z5q@ zAvZo*z+4Ae-JBF2TF{g&Tj?Paw4ZiyW}hF6Bg2nS6KT=&cys9Hf2bc%453%%LV!e7>=@!ZYudr!-~M+@2Zv*s~g`B$|?Np zjhtblQ_xNvM!EH<-m-w-ALWa!rkGi~&GDN2clyLBWHli;$(rGSg+*8ck_sN*H@f7D z!6-IRWT1*OTD8XvT4OzlPXc+)5q)lY{%vLRvv`M@e}Otw&)Kav=Qik`vm=8n=(8-uQ0@`~#|J3@pYexid~!H&y=udP4Q{X+#k+X|qQ=mFA0HNOkc46H z4G{e2DY5 zeG)A)DyNP|^BIn#d*@WI#7EEiuBUti7y`DO3#Za^>C;dlX=zQLI@hT)kKfM)kTQHt=6xx|B(hTM+7YomZ*PdJF0b_ncSOCdz(1On#29W=LKz3?P~)w zQ~v(m$_pdAb9487)Xnr3o!6^x4}P4GQ40t?9zcmK+0YMIFuu5dZ_h|8J|XcEwFkZ< z1{4YNAy1|wMZ@|5X%1Tn?^Uz7T~Yi@?9=?>nC#X24|mlkRL}sm_b>XTJRsz7?uUCrmv*)sVa^?w^X%wJq?e z(b5$~39aqABQ^L~QQaFXGQN;M>U|3i6igBxVOOqPnPDM1+L>&HdrYzB zYRjlih~e1$=G&teRAS2)-*%?PIevLa?(l{4?Yu*jYp;8*q69BGf8OznBhrFyF+vrv z3O5?|%AfzJD(9EX{A~Nz^-VKyLg%a-vl-oBwkjZdpNrB>2LmBD~Ejf&ss5mDo#@1M7Ra5XE4@-^w^j${TX zRVFB!Y!DXk(>dnUU<*{2WmGFEn-wapk;;lAZZzMk!YlN$&Dk-lStBeQ>o=M@VPb1H zk$4kLZPb_*!Q z{%prG|Kmy^(~M=nha_f?-@Q-(H;Ez(W3uW9{KMs82Zb?hfpH%-Kz=89&=xs=in|hS zzrrmKp6yp1gZ4X1erOy!3~O#tSpudBDBUI6N;On8@#1Kl7iE8U#MWs4PIWl|@k7Le zrqMoD^^MZVh|1dVWwZcNF?dq?sY~w8$_;AE>8HtvO&7Z7Y18wyOajrUS&15fV!dyl zg%4N-{n=hVpS2M;{_)PV`tNxXSKM?a-{duL31c*O?Xqpgtr-KD|y&KE9_rspn@#Vp3E zunNs=X3>7idL`=M$xvNnhm4}=ipc5oR;mAcda=v2!Uqb-xZiKN%Y;BwobsQ;v&2Or zsqXPITk>J{b5F4=m$6@+IY7~}M`DMoLjlCmp%VFflEa?0uKhKPqkB ztwu^9VR^EyMyuGg>sPeFkBi;y8}F0(1k11f?ep}Yr8b@5kt%1?XKY30^#=Q*_!-IW zb!#tpcOFY0hNm1S9SzS-WCchZSSS7v-MZ{EQL4)EbB&+f`PkfNLJR2?Ua_;Y;Ag{* zp;>G>R$61EbG((Uz|Ks&7>46bvS8Ioo;0f z2h0!tb4D%1R`Xv{44$>v^OXj;Fp59<`J8(}Tl9yPDD#2$R#0DbZ}ZsRqx(L`*Z|En zx~Sd5dZiH#be<|sQG#ui`Jj61=rQt&q68oM0@8xK|9x~X&RK1I{?rrw_co(b!`mcn zd{fk8u802bS=c~b_qQA+JeT66QWK+H3{-BiO8eYRtv-2+W&+Q?k@OZg{DqKJ{Ijru zL1b2ehr%bWnkelBaz4`#B(L2|bJ{#Agq8+8Nb0#;ZthfRl}82t({6I00+J`_;t}-7CE_rrW#6i?)ZaIfc%#+Yo0^1H&{*rC zC`EtHqGQC<&)D}eMuJ6YMMuGh6}Si~ER9&jvJe%R{%uGsyct*D91AiqYxYmc{g^IC z=JESUWfa7#@QWVoBmltUuGOLN2~*~T?wzdzDxw-7U*;~fw3fxla6}&xgE2OORABYX zpoX}X3q&!`IJ=C2!T5-RaBQHIFhYylRuOOrXQaq-$ad`alG3zQ(wq|DuJQIUIs`z@ zu;WP(Fux`2(c(iW9ytBg?R<(4t8y(Ys|QPn?O&Dj#c;b0NrBb5Kq(IQdKYPKAR|YUTqr8#h}OjH_zoO_v|as<&pWZaKepf~GQz4^D@-q1i!W&w;&mP0;y3V%(#D z&@sybfiX$N*?wY-$B?hOc(XfLdQ)d-MsB>e{r3V}XL=yktJpvGjLV=NHB=Y< z+I`N{@8rwa?>%2)(sCgrhVNG;&j+0V0in688|lUF!`lw+Mf#npFVCVjBN?nW#Vxan zy5yl%?qN;-dJe~Y*e9ygAY0J1*T!=7@XEAVoo2Y4YJH;JLvk!3un0y>OS`C!Y%_x} z>wGOc8>74G=eeefb(!Lo!NunF$_Oe}0YU!eaG5+r_qPewhVXb+{|FfioS1a((tLxj z`EfN?zV0E6XTpY+jz|$@nK@QO$9Jt|-TRsv&o>_Rti>?uU=q((ux*WZ?-}WmhqRqj zR+W4gP}6(9G|SzvE_rLL-iVs^XouIY>FBxXs`&N;e%V;gTp^<0K z`6Y*Z7ZE;b_SSbKd^^w-cZTAE1EKa(jEXIvI?VwXS9?40tN3_-W3dCl{yU9e&&XrV z^N8rato_5G@@RA?vGMK(ntGOUcI&KnwFFf~Vf}O63}tbCjfX$NKR4Y~Y@yXXzq3XE z#uIBNH9>s2m(tzBO(zUfF|5{aw^a2Klerhs??U!8(e~78I!sA3EtQKp*60_SO2iea zhU_17z^eemsH3wpzoKGGt8TqR(lOrxQD;}*xtF{Xz~0pw=`nvg1<_;&Z^=Fv%*4G& z;jabggiDzzQv&Rl)!+u9sb9Cf<#rJYvQb|unj3REI|hmfj+61_^QRg0i3oEb6=&(f16C-S$t=T3 zqb}hR?XMrS&v`4oGknKx+`a?24;&Vgg+{AeUYwZ>-+GDP00V8d$%f;iYu{yVi=g84 zuK~_wd`YUec=d|1Eo62#^cHmb&T_TglR-0+b8BlcZ)oAy)r&Tl)-ns9c2hnd*-(%t zzAPxtgZ66LQo3>upw_Xb@H%hyL=TjV@AgHL-27hgj@N5DOC%&xyS(!3sJ*p;KP$c~#s2{A3-~=- z5WLD;0QOARZTPU)q$M{S8CWx5&N2C&&?Q3;MatK+JnU?agWCXeDxqQ`1$ zl91WCNa0b?kaqpruT!@g!t@I^6B`@5u^cApy{h%%tAhX!4M3ok8-?$0tFBi?`6u|{;kjfwGRkVXWdA1@(_3=p6BTgfgF(o%Lt?jKnpz z?Y@&rg3c9^(jtNnfu}You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media. 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select checkboxes next to the **C** and **system** volumes and specify a location to save the resulting VHD or VHDX file. If your Hyper-V host is running Windows Server 2008 R2 you must choose VHD, otherwise choose VHDX. See the following example: +3. Select the checkboxes next to the **C** and the **system reserved** (BIOS/MBR) or **recovery** (UEFI/GPT) volumes. The system volumes are not typically assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label. +4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\w7.vhdx in the following example) and click **Create**. If your Hyper-V host is running Windows Server 2008 R2 you must choose VHD, otherwise choose VHDX. See the following example: ![disk2vhd](images/disk2vhd.png) -4. Click **Create** to start creating a VHDX file. + >Important: You must include the system reserved or recovery volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, see [Appendix C: Disk2VHD](#appendix-c-disk2vhd). + +5. Click **Create** to start creating a VHDX file. >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. -5. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (w7.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: +6. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (w7.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: ``` C:\vhd>dir /B @@ -725,6 +728,19 @@ Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyo For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. +## Appendix C: Disk2VHD + +If the EFI System Partition is not visible in the Disk2VHD tool, use the following procedure to temporarily make it visible and include it in the conversion. + +1. Open an elevated command prompt and type the following command. The command assumes that S: is an available drive letter. If it is not available, replace the letter with an available one (ex: mountvol T: /S): + + ``` + mountvol S: /S + ``` + +2. Close and restart the Disk2VHD application. +3. Clear the **Use Volume Shadow Copy** checkbox. +4. Select the C: and S: drives to convert, and then click **Create**. ## Related Topics From c24c0f8ff0d2e140c72cb349c09a293575dae6a1 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 19 Oct 2016 17:35:46 -0700 Subject: [PATCH 018/210] t --- windows/deploy/windows-10-poc.md | 37 +++++++++++++++++++++++++------- 1 file changed, 29 insertions(+), 8 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 282b202952..18255445d2 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -28,7 +28,7 @@ The following topics and procedures are provided in this guide. An estimate of t
TopicDescriptionTime
[Terminology in this guide](#terminology-in-this-guide)Terms used in this guide.
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide. -
[Lab setup](#lab-setup)A description and diagram of the PoC environment that is configured.5 minutes +
[Lab setup](#lab-setup)A description and diagram of the PoC environment.
[Configure the PoC environment](#configure-the-poc-environment)Parent topic for procedures.
[Verify support and install Hyper-V](#verify-support-and-install-hyper-v)Verify that installation of Hyper-V is supported, and install the Hyper-V server role.10 minutes
[Download VHD and ISO files](#download-vhd-and-iso-files)Download evaluation versions of Windows Server 2012 R2 and Windows 10 and prepare these files to be used on the Hyper-V host.30 minutes @@ -38,6 +38,7 @@ The following topics and procedures are provided in this guide. An estimate of t
[Configure VHDs](#configure-vhds)Start virtual machines and configure all services and settings.60 minutes
[Appendix A: Verify the configuration](#appendix-a-verify-the-configuration)Verify and troubleshoot network connectivity and services in the PoC environment.30 minutes
[Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2)Information about using this guide with a Hyper-V host running Windows Server 2008 R2. +
[Appendix C: Disk2VHD](#appendix-c-disk2vhd)Information about the Disk2VHD application.
@@ -267,12 +268,11 @@ w10-enterprise.iso >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media. 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select the checkboxes next to the **C** and the **system reserved** (BIOS/MBR) or **recovery** (UEFI/GPT) volumes. The system volumes are not typically assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label. +3. Select the checkboxes next to the **C:\** and the **system reserved** (BIOS/MBR) volumes. The system volume is not assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label similar to **\\?\Volume{** - see the example below. **Important**: You must include the system volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, see [Appendix C: Disk2VHD](#appendix-c-disk2vhd). 4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\w7.vhdx in the following example) and click **Create**. If your Hyper-V host is running Windows Server 2008 R2 you must choose VHD, otherwise choose VHDX. See the following example: ![disk2vhd](images/disk2vhd.png) - >Important: You must include the system reserved or recovery volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, see [Appendix C: Disk2VHD](#appendix-c-disk2vhd). 5. Click **Create** to start creating a VHDX file. @@ -470,7 +470,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most 18. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. 19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. - To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." + To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: ``` ipconfig @@ -504,7 +504,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most ``` >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. -20. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click Run ISE as Administrator) and type the following commands in the (upper) script editor pane: +20. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click Run ISE as Administrator) and type the following commands in the (upper) script editor pane: ``` (Get-WmiObject Win32_ComputerSystem).UnjoinDomainOrWorkgroup($null,$null,0) @@ -515,6 +515,8 @@ Instructions to "type" commands provided in this guide can be typed, but in most Restart-Computer ``` + >If you do not see the script pane, click **View** and then click **Show Script Pane Top**. + See the following example: ![ISE](images/ISE.png) @@ -525,7 +527,8 @@ Instructions to "type" commands provided in this guide can be typed, but in most ``` Copy-VMFile "PC1" –SourcePath "C:\VHD\pc1.ps1" –DestinationPath "C:\pc1.ps1" –CreateFullPath –FileSource Host ``` - >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. + >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM. This can be done by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server operating systems that are running the Hyper-V role service. Otherwise, just create the file c:\pc1.ps1 on the VM and type the commands into this file manually. Be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file. + 23. On PC1, type the following commands at an elevated Windows PowerShell prompt: ``` @@ -534,7 +537,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most >PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. We have not also renamed PC1 to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer. -24. After PC1 restarts, sign in to the contoso.com domain with the (user1) account you created in step 11 of this section. +24. The script will take a minute or two to run. After PC1 restarts, sign in to the contoso.com domain using the **Switch User** option, with the **user1** account you created in step 11 of this section. >The settings that will be used to migrate user data specifically select only accounts that belong to the CONTOSO domain. If you wish to test migration of user data and settings with an account other than the user1 account, you must copy this account's profile to the user1 profile. 25. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. 26. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands: @@ -730,7 +733,7 @@ For more information about the Hyper-V Manager interface in Windows Server 2008 ## Appendix C: Disk2VHD -If the EFI System Partition is not visible in the Disk2VHD tool, use the following procedure to temporarily make it visible and include it in the conversion. +If the system partition is not visible in the Disk2VHD tool, this usually means that the client is using EFI firmware and has a GPT partition. Unfortunately, the GPT partition is will not boot as a VM when converted by the Disk2VHD tool. To resolve this issue, select a client that is using MBR or complete the following procedure to move the Windows image from GPT to MBR. 1. Open an elevated command prompt and type the following command. The command assumes that S: is an available drive letter. If it is not available, replace the letter with an available one (ex: mountvol T: /S): @@ -742,6 +745,24 @@ If the EFI System Partition is not visible in the Disk2VHD tool, use the followi 3. Clear the **Use Volume Shadow Copy** checkbox. 4. Select the C: and S: drives to convert, and then click **Create**. +mount-vhd -path D:\vhd\w7.VHDX + +dism /Capture-Image /ImageFile:d:\w7.wim /CaptureDir:H:\ /Name:w7 <--this takes a long time + + mount-vhd -path 'D:\vhd\w7-gen1\Virtual Hard Disks\w7-gen1.vhdx' + + New simple volume, created drive G: ---- + +dism /Apply-Image /ImageFile:D:\w7.wim /Index:1 /ApplyDir:G:\ + +boot to install disk and repair this + +the idea here is to create a MBR VHD, then restore the wim to that. + +--note another possible option is to create a backup, choose USB as the destination, then create VM, boot from DVD, and restore from backup usign tools. + +--also try https://community.spiceworks.com/topic/435119-can-i-virtualize-a-uefi-server-into-a-hyper-v-virtual-machine <-- does not work + ## Related Topics [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
From b746d717b5f62c1b7c041cb37464b6ca9d9224d3 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 20 Oct 2016 16:03:45 -0700 Subject: [PATCH 019/210] t --- windows/deploy/windows-10-poc.md | 19 +++++++++++++------ 1 file changed, 13 insertions(+), 6 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 18255445d2..f1ffe18d7b 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -261,14 +261,21 @@ w10-enterprise.iso **Important**: Before you convert a PC to VHD, verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. After converting the computer to a VM, you must be able to sign in on this VM with local administrator privileges, while disconnected from the corporate network. ->For purposes of the test lab, use a PC that is assigned a drive letter of C. Systems with non-standard configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than those used in this lab. If the computer has multiple hard drives, then only choose the C drive for conversion. +####Client computer requirements for this lab: + +1. You must use a PC that is assigned a system/boot drive letter of **C:**. Computers with other configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than those used in this lab. If the computer has multiple hard drives, then only choose the **C:** drive for conversion. +2. If the PC is running Windows 7, then it must use the Master Boot Record (MBR) method for storing partition information, not the GUID Partition Table (GPT) method. This is because a generation 2 VM is required to support GPT, and Windows 7 is not supported for generation 2 VMs. Alternatively, you can convert the VHD to use MBR, but this procedure is somewhat complex. If you must create a bootable generation 1 VHD from a physical host that uses GPT, see [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr) + - To determine the storage method on a computer running Windows 7, open a command prompt and type **DISKPART**, then type **list disk**. Disks that use GPT will have an asterisk under **Gpt** in the command output. If the computer is running Windows 8 or a later OS, you can also type **Get-Disk** at an elevated Windows PowerShell prompt to identify the partition style. +3. If the PC is running Windows 8 or later and uses the GPT method for storing partition information, then you must create a generation 2 VM to mirror the PC in Hyper-V. + +####To convert a PC to VHD: 1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy **disk2vhd.exe** to a flash drive or other location that is accessible from the computer you wish to convert. - >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media. + >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media such as a USB drive. 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select the checkboxes next to the **C:\** and the **system reserved** (BIOS/MBR) volumes. The system volume is not assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label similar to **\\?\Volume{** - see the example below. **Important**: You must include the system volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, see [Appendix C: Disk2VHD](#appendix-c-disk2vhd). +3. Select the checkboxes next to the **C:\** and the **system reserved** (BIOS/MBR) volumes. The system volume is not assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label similar to **\\?\Volume{** - see the example below. **Important**: You must include the system volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, then the computer is using the GPT partition method. In this case, see the [requirements](#client-computer-requirements-for-this-lab) in this section for more information. 4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\w7.vhdx in the following example) and click **Create**. If your Hyper-V host is running Windows Server 2008 R2 you must choose VHD, otherwise choose VHDX. See the following example: ![disk2vhd](images/disk2vhd.png) @@ -731,11 +738,11 @@ Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyo For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. -## Appendix C: Disk2VHD +## Appendix C: Convert GPT to MBR -If the system partition is not visible in the Disk2VHD tool, this usually means that the client is using EFI firmware and has a GPT partition. Unfortunately, the GPT partition is will not boot as a VM when converted by the Disk2VHD tool. To resolve this issue, select a client that is using MBR or complete the following procedure to move the Windows image from GPT to MBR. +>Conversion of a disk directly from GPT to MBR without data loss is not possible without the use of external, specialized applications and tools. However, it is possible to create an image of the GPT disk and then restore this image to an MBR disk using standard tools. At a high level, this can be done by obtaining an image of the source drive, creating a blank MBR-formatted disk, applying the source drive image to the MBR disk, and then configuring the MBR disk to boot the applied image. This procedure is described below: -1. Open an elevated command prompt and type the following command. The command assumes that S: is an available drive letter. If it is not available, replace the letter with an available one (ex: mountvol T: /S): +1. Open an elevated command prompt and type the following command: ``` mountvol S: /S From c79a7b5777354cb17038452c4ae74937048169a0 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 26 Oct 2016 13:10:37 -0700 Subject: [PATCH 020/210] added intro --- windows/deploy/windows-10-poc.md | 35 +++++++++++++++++++++----------- 1 file changed, 23 insertions(+), 12 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index f1ffe18d7b..5277eef390 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,9 +14,20 @@ author: greg-lindsay - Windows 10 -This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you can deploy Windows 10. The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Simple to use Windows PowerShell commands are provided for setting up the test lab. +

This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you test the tools and procedures necessary to deploy Windows 10. The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly and easily. -To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed requirements are provided [below](#hardware-and-software-requirements). When you have completed configuring the PoC environment, additional topics are provided that use the PoC environment to deploy Windows 10 with current deployment tools. +Overview of procedures in this guide: +

    +
  • The Hyper-V role is installed. +
  • Hyper-V network and virtual machine (VM) settings are configured. +
  • Network services and settings are installed and configured on VMs. +
+ +Completing this guide enables you to test Windows 10 deployment procedures with current tools, documented in the following guides:
+- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
+- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
+ +To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed requirements are provided [below](#hardware-and-software-requirements). ## In this guide @@ -25,7 +36,7 @@ The following topics and procedures are provided in this guide. An estimate of t
-
TopicDescriptionTime +
TopicDescriptionTime
[Terminology in this guide](#terminology-in-this-guide)Terms used in this guide.
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.
[Lab setup](#lab-setup)A description and diagram of the PoC environment. @@ -43,15 +54,17 @@ The following topics and procedures are provided in this guide. An estimate of t -### Terminology in this guide +### Terminology used in this guide
- - - + + @@ -157,8 +170,7 @@ The lab architecture is summarized in the following diagram: [Convert PC to VHD](#convert-pc-to-vhd)
[Resize VHD](#resize-vhd)
[Configure Hyper-V](#configure-hyper-v)
-[Convert PC to VHD](#convert-pc-to-vhd)
-[Configure VHDs](#configure-vhds)
+[Configure VMs](#configure-vms)
### Verify support and install Hyper-V @@ -375,7 +387,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most **Note**: The RAM values assigned to VMs in this step are not permanent, and can be easily increased or decreased later if needed to address performance issues. -### Configure VHDs +### Configure VMs 1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first VM by typing the following command: @@ -772,8 +784,7 @@ the idea here is to create a MBR VHD, then restore the wim to that. ## Related Topics -[Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
-[Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
+ [Windows 10 deployment scenarios](windows-10-deployment-scenarios.md)   From 4033aa678ef804ed7f3dd9ade5dd0602f1e45b02 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 26 Oct 2016 13:46:08 -0700 Subject: [PATCH 021/210] ... --- windows/deploy/windows-10-poc.md | 31 +++++++++++++------------------ 1 file changed, 13 insertions(+), 18 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 5277eef390..f5c9f43400 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -36,7 +36,7 @@ The following topics and procedures are provided in this guide. An estimate of t
TermDefinition +
TermDefinition +
GPTGUID partition table (GPT) is an updated hard-disk formatting scheme that enables the use of newer hardware. GPT is one of the partition formats that can be chosen when first initializing a hard drive, prior to creating and formatting partitions.
Hyper-VHyper-V is a server role introduced with Windows Server 2008 that lets you create a virtualized computing environment. Hyper-V can also be installed as a Windows feature on Windows client operating systems, starting with Windows 8.
Hyper-V hostThe computer where Hyper-V is installed.
Hyper-V ManagerThe user-interface console used to view and configure Hyper-V. +
MBRMaster Boot Record (MBR) is a legacy hard-disk formatting scheme that limits support for newer hardware. MBR is one of the partition formats that can be chosen when first initializing a hard drive, prior to creating and formatting partitions. MBR is in the process of being replaced by the GPT partition format.
Proof of concept (PoC)Confirmation that a process or idea works as intended. A PoC is carried out in a test environment to learn about and verify a process.
Virtual machine (VM)A VM is a virtual computer with its own operating system, running on the Hyper-V host.
Virtual switchA virtual network connection used to connect VMs to each other and to physical network adapters on the Hyper-V host. @@ -107,8 +120,8 @@ The second computer (computer 2) is a client computer from your corporate networ
Disk50 GB available hard disk space (100 GB recommended)Any50 GB available hard disk space (100 GB recommended), any format.Any size, MBR formatted.
CPU
-
TopicDescriptionTime +
TopicDescriptionTime
[Terminology in this guide](#terminology-in-this-guide)Terms used in this guide.
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.
[Lab setup](#lab-setup)A description and diagram of the PoC environment. @@ -59,7 +59,7 @@ The following topics and procedures are provided in this guide. An estimate of t
- - + @@ -137,9 +137,7 @@ The second computer (computer 2) is a client computer from your corporate networ ->Retaining applications and settings during the upgrade process requires that architecture (32 or 64-bit) is the same before and after the upgrade. - -*The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. The performance and features of the Hyper-V role are also much improved on later operating systems. If your host must be running Windows Server 2008 R2, see [Appendix B: Configuring Hyper-V settings on 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2). +*The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyond the scope of the guide. If you must use a Hyper-V host running Windows Server 2008 R2, the steps in the guide can be accomplished by using the Hyper-V Manager console. These steps are not provided at this time in the guide. For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. The Hyper-V role cannot be installed on Windows 7 or earlier versions of Windows. @@ -712,9 +710,15 @@ Use the following procedures to verify that the PoC environment is configured pr ## Appendix B: Configuring Hyper-V on Windows Server 2008 R2 -If your Hyper-V host is running Windows Server 2008 R2, several of the steps in this guide will not work because they use the Hyper-V Module for Windows PowerShell, which is not available on Windows Server 2008 R2. +This section is a placeholder for instructions to configure Hyper-V on Windows Server 2008 R2. Full documentation of these procedures is currently out of scope for this guide, due to significant differences in the Hyper-V role in Windows Server 2008 R2. -To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. +If your Hyper-V host is running Windows Server 2008 R2, several of the steps in this guide will not work because they use the Hyper-V Module for Windows PowerShell, which is not available on Windows Server 2008 R2. The performance and features of the Hyper-V role are also much improved on later operating systems. + +To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature cmdlet: + +``` +Add-WindowsFeature -Name Hyper-V +``` An example that uses Hyper-V WMI to create a virtual switch on Windows Server 2008 R2 is provided below. @@ -740,15 +744,6 @@ $Result = $VirtualSwitchManagementService.ConnectSwitchPort($InternalSwitchPort, $filter = "SettingID='" + $InternalEthernetPort.DeviceID +"'" $NetworkAdapterConfiguration = gwmi Win32_NetworkAdapterConfiguration -filter $filter ``` -To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature cmdlet: - -``` -Add-WindowsFeature -Name Hyper-V -``` - -Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyond the scope of the guide. If you must use a Hyper-V host running Windows Server 2008 R2, the steps in the guide can be accomplished by using the Hyper-V Manager console. These steps are not provided at this time in the guide. - -For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. ## Appendix C: Convert GPT to MBR From 041251216600028ba0478910bfa8361b1e25ae2d Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 26 Oct 2016 14:47:51 -0700 Subject: [PATCH 022/210] ... --- windows/deploy/windows-10-poc.md | 79 +++++++++++++++++--------------- 1 file changed, 43 insertions(+), 36 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index f5c9f43400..ac56ec7481 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,20 +14,21 @@ author: greg-lindsay - Windows 10 -

This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you test the tools and procedures necessary to deploy Windows 10. The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly and easily. +

This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you test the tools and procedures necessary to deploy Windows 10. The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. The guide contains detailed instructions for three general procedures: -Overview of procedures in this guide:

    -
  • The Hyper-V role is installed. -
  • Hyper-V network and virtual machine (VM) settings are configured. -
  • Network services and settings are installed and configured on VMs. +
  • Install Hyper-V. +
  • Configure Hyper-V network and virtual machine (VM) settings. +
  • Install and configure network services and settings on VMs.
-Completing this guide enables you to test Windows 10 deployment procedures with current tools, documented in the following guides:
+If you already have a computer running Hyper-V, you can use this computer. After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides:
- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
-To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed requirements are provided [below](#hardware-and-software-requirements). +Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. + +To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. ## In this guide @@ -37,7 +38,7 @@ The following topics and procedures are provided in this guide. An estimate of t
TermDefinition +
TermDefinition
GPTGUID partition table (GPT) is an updated hard-disk formatting scheme that enables the use of newer hardware. GPT is one of the partition formats that can be chosen when first initializing a hard drive, prior to creating and formatting partitions.
Hyper-VHyper-V is a server role introduced with Windows Server 2008 that lets you create a virtualized computing environment. Hyper-V can also be installed as a Windows feature on Windows client operating systems, starting with Windows 8.
Hyper-V hostThe computer where Hyper-V is installed. @@ -77,7 +77,7 @@ The following topics and procedures are provided in this guide. An estimate of t One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. -The second computer (computer 2) is a client computer from your corporate network that is used to create VM that can be added to the POC environment. The VM is a mirror image of the computer on your corporate network, providing a realistic simulation of the upgrade process. If you do not have a computer to use for this simulation, you can create an arbitrary VM to represent this computer. +>The second computer (computer 2) is a client computer from your corporate network that is used to create VM that can be added to the POC environment. The VM is a mirror image of the computer on your corporate network, providing a realistic simulation of the upgrade process. If you do not have a computer to use for this simulation, you can create an arbitrary VM to represent this computer. Later guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create one that is mirrored from computer 2.
@@ -110,7 +110,7 @@ The second computer (computer 2) is a client computer from your corporate networ
Architecture 64-bitAnyAny
Note: Retaining applications and settings during the upgrade process requires that architecture (32 or 64-bit) is the same before and after the upgrade.
RAM
TopicDescriptionTime -
[Terminology in this guide](#terminology-in-this-guide)Terms used in this guide. +
[Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.
[Lab setup](#lab-setup)A description and diagram of the PoC environment.
[Configure the PoC environment](#configure-the-poc-environment)Parent topic for procedures. @@ -50,25 +51,7 @@ The following topics and procedures are provided in this guide. An estimate of t
[Appendix A: Verify the configuration](#appendix-a-verify-the-configuration)Verify and troubleshoot network connectivity and services in the PoC environment.30 minutes
[Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2)Information about using this guide with a Hyper-V host running Windows Server 2008 R2.
[Appendix C: Disk2VHD](#appendix-c-disk2vhd)Information about the Disk2VHD application. -
- -
- -### Terminology used in this guide - -
- - -
TermDefinition -
GPTGUID partition table (GPT) is an updated hard-disk formatting scheme that enables the use of newer hardware. GPT is one of the partition formats that can be chosen when first initializing a hard drive, prior to creating and formatting partitions. -
Hyper-VHyper-V is a server role introduced with Windows Server 2008 that lets you create a virtualized computing environment. Hyper-V can also be installed as a Windows feature on Windows client operating systems, starting with Windows 8. -
Hyper-V hostThe computer where Hyper-V is installed. -
Hyper-V ManagerThe user-interface console used to view and configure Hyper-V. -
MBRMaster Boot Record (MBR) is a legacy hard-disk formatting scheme that limits support for newer hardware. MBR is one of the partition formats that can be chosen when first initializing a hard drive, prior to creating and formatting partitions. MBR is in the process of being replaced by the GPT partition format. -
Proof of concept (PoC)Confirmation that a process or idea works as intended. A PoC is carried out in a test environment to learn about and verify a process. -
Virtual machine (VM)A VM is a virtual computer with its own operating system, running on the Hyper-V host. -
Virtual switchA virtual network connection used to connect VMs to each other and to physical network adapters on the Hyper-V host. -
VM snapshotA point in time image of a VM that includes its disk, memory and device state. It can be used to return a virtual machine to a former state corresponding to the time the snapshot was taken. +
[Appendix D: Terminology in this guide](#appendix-d-terminology-in-this-guide)Terms used in this guide.
@@ -77,7 +60,7 @@ The following topics and procedures are provided in this guide. An estimate of t One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. ->The second computer (computer 2) is a client computer from your corporate network that is used to create VM that can be added to the POC environment. The VM is a mirror image of the computer on your corporate network, providing a realistic simulation of the upgrade process. If you do not have a computer to use for this simulation, you can create an arbitrary VM to represent this computer. Later guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create one that is mirrored from computer 2. +>Computer 2 is a client computer from your corporate network that is "shadow copied" to create a VM that can be added to the POC environment. This enables you to use a VM that is a mirror image of the computer on your corporate network, providing a realistic simulation of the upgrade process. If you do not have a computer to use for this simulation, you can create an arbitrary VM to represent this computer. Later guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create one that is mirrored from computer 2.
@@ -135,18 +118,19 @@ One computer that meets the hardware and software specifications below is requir
-
-*The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. Converting all Hyper-V module commands used in this guide to Hyper-V WMI is beyond the scope of the guide. If you must use a Hyper-V host running Windows Server 2008 R2, the steps in the guide can be accomplished by using the Hyper-V Manager console. These steps are not provided at this time in the guide. For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. + +*The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. Providing all steps in this guide as Hyper-V WMI or as 2008 R2 Hyper-V Manager procedures is beyond the scope of the guide. The Hyper-V role cannot be installed on Windows 7 or earlier versions of Windows. + + ## Lab setup -- The Hyper-V host computer (computer 1) is configured to host four VMs on a private, PoC network. +- Computer 1 is configured to host four VMs on a private, PoC network. - Two VMs are running Windows Server 2012 R2 with required network services and tools installed. - Two VMs are client systems: One VM is intended to mirror a host on your corporate network (computer 2) and one VM is running Windows 10 Enterprise to demonstrate the hardware replacement scenario. -- Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. The lab architecture is summarized in the following diagram: @@ -178,14 +162,15 @@ The lab architecture is summarized in the following diagram: See the following example: - ``` +
     C:\>systeminfo
     ...
     Hyper-V Requirements:      VM Monitor Mode Extensions: Yes
                                Virtualization Enabled In Firmware: Yes
                                Second Level Address Translation: Yes
                                Data Execution Prevention Available: Yes
-    ```   
+    
+ In this example, the computer supports SLAT and Hyper-V. If one or more requirements are evaluated as "No" then the computer does not support installing Hyper-V. However, if only the virtualization setting is incompatible, you might be able to enable virtualization in the BIOS and change the **Virtualization Enabled In Firmware** setting from "No" to "Yes." The location of this setting will depend on the manufacturer and BIOS version, but is typically found associated with the BIOS security settings. @@ -710,10 +695,10 @@ Use the following procedures to verify that the PoC environment is configured pr ## Appendix B: Configuring Hyper-V on Windows Server 2008 R2 -This section is a placeholder for instructions to configure Hyper-V on Windows Server 2008 R2. Full documentation of these procedures is currently out of scope for this guide, due to significant differences in the Hyper-V role in Windows Server 2008 R2. - If your Hyper-V host is running Windows Server 2008 R2, several of the steps in this guide will not work because they use the Hyper-V Module for Windows PowerShell, which is not available on Windows Server 2008 R2. The performance and features of the Hyper-V role are also much improved on later operating systems. +This section is a placeholder for instructions to configure Hyper-V on Windows Server 2008 R2. Full documentation of these procedures is currently out of scope for this guide, due to significant differences in the Hyper-V role in Windows Server 2008 R2. For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. + To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature cmdlet: ``` @@ -777,6 +762,28 @@ the idea here is to create a MBR VHD, then restore the wim to that. --also try https://community.spiceworks.com/topic/435119-can-i-virtualize-a-uefi-server-into-a-hyper-v-virtual-machine <-- does not work +### Appendix D: Terminology used in this guide + +See the following table for a list of terms used in this guide. + +
+ + +
TermDefinition +
GPTGUID partition table (GPT) is an updated hard-disk formatting scheme that enables the use of newer hardware. GPT is one of the partition formats that can be chosen when first initializing a hard drive, prior to creating and formatting partitions. +
Hyper-VHyper-V is a server role introduced with Windows Server 2008 that lets you create a virtualized computing environment. Hyper-V can also be installed as a Windows feature on Windows client operating systems, starting with Windows 8. +
Hyper-V hostThe computer where Hyper-V is installed. +
Hyper-V ManagerThe user-interface console used to view and configure Hyper-V. +
MBRMaster Boot Record (MBR) is a legacy hard-disk formatting scheme that limits support for newer hardware. MBR is one of the partition formats that can be chosen when first initializing a hard drive, prior to creating and formatting partitions. MBR is in the process of being replaced by the GPT partition format. +
Proof of concept (PoC)Confirmation that a process or idea works as intended. A PoC is carried out in a test environment to learn about and verify a process. +
Shadow copyA copy or "snapshot" of a computer at a point in time, created by the Volume Shadow Copy Service (VSS), typically for backup purposes. +
Virtual machine (VM)A VM is a virtual computer with its own operating system, running on the Hyper-V host. +
Virtual switchA virtual network connection used to connect VMs to each other and to physical network adapters on the Hyper-V host. +
VM snapshotA point in time image of a VM that includes its disk, memory and device state. It can be used to return a virtual machine to a former state corresponding to the time the snapshot was taken. +
+ +
+ ## Related Topics From ae4a3b6cd4e93d5c30c3a7b66884f1da8ac977ea Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 26 Oct 2016 15:21:51 -0700 Subject: [PATCH 023/210] ... --- windows/deploy/windows-10-poc.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index ac56ec7481..34c2fc7354 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -169,7 +169,7 @@ The lab architecture is summarized in the following diagram: Virtualization Enabled In Firmware: Yes Second Level Address Translation: Yes Data Execution Prevention Available: Yes - + In this example, the computer supports SLAT and Hyper-V. @@ -177,7 +177,7 @@ The lab architecture is summarized in the following diagram: You can also identify Hyper-V support using [tools](https://blogs.msdn.microsoft.com/taylorb/2008/06/19/hyper-v-will-my-computer-run-hyper-v-detecting-intel-vt-and-amd-v/) provided by the processor manufacturer, the [msinfo32](https://technet.microsoft.com/en-us/library/cc731397.aspx) tool, or you can download the [coreinfo](http://technet.microsoft.com/en-us/sysinternals/cc835722) utility and run it, as shown in the following example: - ``` +
     C:\>coreinfo -v
 
     Coreinfo v3.31 - Dump information on system CPU and memory topology
@@ -190,7 +190,7 @@ The lab architecture is summarized in the following diagram:
     HYPERVISOR      -       Hypervisor is present
     VMX             *       Supports Intel hardware-assisted virtualization
     EPT             *       Supports Intel extended page tables (SLAT)
-    ```   
+    
Note: A 64-bit operating system is required to run Hyper-V. From 8ed78a18c31847951ffe73fb9b496fb24935be07 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 28 Oct 2016 10:28:59 -0700 Subject: [PATCH 024/210] ... --- windows/deploy/windows-10-poc.md | 323 +++++++++++++++++++------------ 1 file changed, 196 insertions(+), 127 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 34c2fc7354..8a5496b4b3 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,7 +14,9 @@ author: greg-lindsay - Windows 10 -

This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you test the tools and procedures necessary to deploy Windows 10. The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. The guide contains detailed instructions for three general procedures: +

This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you test the tools and procedures necessary to deploy Windows 10. The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terms](#appendix-d-terminology-in-this-guide) used in this guide before starting. + +The guide contains detailed instructions for three general procedures:

  • Install Hyper-V. @@ -22,7 +24,9 @@ author: greg-lindsay
  • Install and configure network services and settings on VMs.
-If you already have a computer running Hyper-V, you can use this computer. After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides:
+If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. + +After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides:
- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
@@ -164,6 +168,7 @@ The lab architecture is summarized in the following diagram:
     C:\>systeminfo
+
     ...
     Hyper-V Requirements:      VM Monitor Mode Extensions: Yes
                                Virtualization Enabled In Firmware: Yes
@@ -198,9 +203,10 @@ The lab architecture is summarized in the following diagram:
 
     The Hyper-V feature is not installed by default. To install it, open an elevated Windows PowerShell window and type the following command:
 
-    ```
+    
     Enable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V –All
-    ```
+    
+ This command works on all operating systems that support Hyper-V. When you are prompted to restart the computer, choose **Yes**. The computer might restart more than once. After installation is complete, you can open Hyper-V Manager by typing **virtmgmt.msc** at an elevated command prompt. You can also install Hyper-V using the Control Panel in Windows under **Turn Windows features on or off** for a client operating system, or using Server Manager's **Add Roles and Features Wizard** on a server operating system, as shown below: @@ -225,11 +231,11 @@ When you have completed installation of Hyper-V on the host computer, begin conf ![VHD](images/download_vhd.png) -2. When the download is complete, rename the VHD file that you downloaded to **2012R2-poc-1.vhd**. This is done to make the filename simpler to recognize and type. +2. Download the file to the C:\VHD directory. When the download is complete, rename the VHD file that you downloaded to **2012R2-poc-1.vhd**. This is done to make the filename simpler to recognize and type. 3. Copy the VHD to a second file also in the C:\VHD directory and name this VHD **2012R2-poc-2.vhd**. 4. Download the [Windows 10 Enterprise ISO](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-10-enterprise) from the TechNet Evaluation Center to the C:\VHD directory on your Hyper-V host. - - During registration, you must specify the type, version, and language of installation media to download. In this example, a Windows 10 Enterprise, 64 bit, English VHD is chosen. You can choose a different version if desired. Note that Windows 10 in-place upgrade is only possible if the source operating system and installation media are both 32-bit or both 64-bit, so you should download the file version that corresponds to the version of your source computer for upgrade testing. + >During registration, you must specify the type, version, and language of installation media to download. In this example, a Windows 10 Enterprise, 64 bit, English ISO is chosen. You can choose a different version if desired. Note that Windows 10 in-place upgrade is only possible if the source operating system and installation media are both 32-bit or both 64-bit, so you should download the file version that corresponds to the version of your source computer (computer 2) for upgrade testing. 5. Rename the ISO file that you downloaded to **w10-enterprise.iso**. Again, this is done so that the filename is simpler to type and recognize. After completing registration you will be able to download the 3.63 GB Windows 10 Enterprise evaluation ISO. @@ -238,7 +244,7 @@ After completing these steps, you will have three files in the C:\VHD directory: The following commands and output display the procedures described in this section: -``` +
 C:\>mkdir VHD
 C:\>cd VHD
 C:\VHD>ren 9600*.vhd 2012R2-poc-1.vhd
@@ -249,29 +255,31 @@ C:\VHD>dir /B
 2012R2-poc-1.vhd
 2012R2-poc-2.vhd
 w10-enterprise.iso
-```
+
### Convert PC to VHD +If you do not have a PC available to convert to VHD, see [Appendix E: Create PC1 VM](#appendix-e-create-pc1-vm). + **Important**: Before you convert a PC to VHD, verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. After converting the computer to a VM, you must be able to sign in on this VM with local administrator privileges, while disconnected from the corporate network. -####Client computer requirements for this lab: +#### Client computer requirements for this lab: -1. You must use a PC that is assigned a system/boot drive letter of **C:**. Computers with other configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than those used in this lab. If the computer has multiple hard drives, then only choose the **C:** drive for conversion. -2. If the PC is running Windows 7, then it must use the Master Boot Record (MBR) method for storing partition information, not the GUID Partition Table (GPT) method. This is because a generation 2 VM is required to support GPT, and Windows 7 is not supported for generation 2 VMs. Alternatively, you can convert the VHD to use MBR, but this procedure is somewhat complex. If you must create a bootable generation 1 VHD from a physical host that uses GPT, see [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr) - - To determine the storage method on a computer running Windows 7, open a command prompt and type **DISKPART**, then type **list disk**. Disks that use GPT will have an asterisk under **Gpt** in the command output. If the computer is running Windows 8 or a later OS, you can also type **Get-Disk** at an elevated Windows PowerShell prompt to identify the partition style. +1. You must use a PC that is assigned a system/boot drive letter of **C**. Computers with other configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than the sample ones used in this lab. If the computer has multiple hard drives, then only choose the **C** drive for conversion. +2. If the PC is running Windows 7, then it must use the Master Boot Record (MBR) method for storing partition information, not the GUID Partition Table (GPT) method. This is because a generation 2 VM is required to support GPT, and Windows 7 is not supported in Hyper-V as a generation 2 VM. Alternatively, you can convert the VHD to use MBR, but this procedure is complex. If you must create a bootable generation 1 VHD from a physical host that uses GPT, see [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr) + >To determine the storage method on a computer running Windows 7, open a command prompt and type **DISKPART**, then type **list disk**. Disks that use GPT will have an asterisk under **Gpt** in the command output. If the computer is running Windows 8 or a later OS, you can also type **Get-Disk** at an elevated Windows PowerShell prompt to identify the partition style. 3. If the PC is running Windows 8 or later and uses the GPT method for storing partition information, then you must create a generation 2 VM to mirror the PC in Hyper-V. -####To convert a PC to VHD: +#### To convert a PC to VHD: 1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy **disk2vhd.exe** to a flash drive or other location that is accessible from the computer you wish to convert. >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media such as a USB drive. 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select the checkboxes next to the **C:\** and the **system reserved** (BIOS/MBR) volumes. The system volume is not assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label similar to **\\?\Volume{** - see the example below. **Important**: You must include the system volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, then the computer is using the GPT partition method. In this case, see the [requirements](#client-computer-requirements-for-this-lab) in this section for more information. -4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\w7.vhdx in the following example) and click **Create**. If your Hyper-V host is running Windows Server 2008 R2 you must choose VHD, otherwise choose VHDX. See the following example: +3. Select the checkboxes next to the **C:\** and the **system reserved** (BIOS/MBR) volumes. The system volume is not assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label similar to **\\?\Volume{**. See the following example. **Important**: You must include the system volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, then the computer is using the GPT partition method. In this case, see the second item in the [requirements](#client-computer-requirements-for-this-lab) list in this section for more information. +4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\w7.vhdx in the following example) and click **Create**. Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. See the following example: ![disk2vhd](images/disk2vhd.png) @@ -282,79 +290,80 @@ w10-enterprise.iso 6. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (w7.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: - ``` +
     C:\vhd>dir /B
     2012R2-poc-1.vhd
     2012R2-poc-2.vhd
     w10-enterprise.iso
     w7.VHDX
-    ```
+    
+ ### Resize VHD The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 80GB to support installing imaging tools and storing OS images. 1. To add available space for the partition, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: - ``` +
     Resize-VHD –Path c:\VHD\2012R2-poc-2.vhd –SizeBytes 80GB
     $x = (Mount-VHD –Path c:\VHD\2012R2-poc-2.vhd -passthru | Get-Disk | Get-Partition | Get-Volume).DriveLetter
     Resize-Partition -DriveLetter $x -Size (Get-PartitionSupportedSize -DriveLetter $x).SizeMax
-    ```
+    
2. Verify that the mounted VHD drive is resized to 80 GB, and then dismount the drive: - ``` +
     Get-Volume -DriveLetter $x
     Dismount-VHD –Path c:\VHD\2012R2-poc-2.vhd
-    ```
+    
### Configure Hyper-V -Note: The Hyper-V Windows PowerShell module is not available on Windows Server 2008 R2. For more information, see [Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2). +**Important**: You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs and between VMs. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy on one computer, then right-clicking and selecting paste on another computer. -**Important**: You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs and between VMs. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also
    copy and paste files
directly from one computer to another by right-clicking and selecting copy, then right-clicking and selecting paste. - -Instructions to "type" commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. +As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. 1. Open an elevated Windows PowerShell window and type the following command to create two virtual switches named "poc-internal" and "poc-external": - >If the Hyper-V host already has an external virtual switch bound to a physical NIC, do not attempt to add a second external virtual switch. Attempting to add a second external switch will result in an error indicating that the NIC is "**already bound to the Microsoft Virtual Switch protocol.**" In this case, choose one of the following options:
-    a) Remove the existing external virtual switch, then add the poc-external switch
-    b) Rename the existing external switch to "poc-external"
-    c) Replace each instance of "poc-external" used in this guide with the name of your existing external virtual switch
- If you choose b) or c), then do not run the second command below. + >If the Hyper-V host already has an external virtual switch bound to a physical NIC, do not attempt to add a second external virtual switch. Attempting to add a second external switch will result in an error indicating that the NIC is **already bound to the Microsoft Virtual Switch protocol.** In this case, choose one of the following options:
+    A) Remove the existing external virtual switch, then add the poc-external switch
+    B) Rename the existing external switch to "poc-external"
+    C) Replace each instance of "poc-external" used in this guide with the name of your existing external virtual switch
+ If you choose B) or C), then do not run the second command below. - ``` +
     New-VMSwitch -Name poc-internal -SwitchType Internal -Notes "PoC Network"
     New-VMSwitch -Name poc-external -NetAdapterName (Get-NetAdapter |?{$_.Status -eq "Up" -and !$_.Virtual}).Name -Notes "PoC External"
-    ```
+    
**Note**: The second command above will temporarily interrupt network connectivity on the Hyper-V host. - >Since an external virtual switch is associated to a physical network adapter on the Hyper-V host, this adapter must be specified when adding the virtual switch. This is automated in the example here by filtering for active non-virtual ethernet adapters using the Get-NetAdapter cmdlet ($_.Status -eq "Up" -and !$_.Virtual). If your Hyper-V host is dual-homed with multiple active ethernet adapters, this automation will not work, and the second command above will fail. In this case, you must edit the command used to add the "poc-external" virtual switch by inserting the NetAdapterName. The NetAdapterName value corresponds to the name of the network interface you wish to use, for example if the network interface you use on the Hyper-V host to connect to the Internet is named "Ethernet 2" then type the following command to create an external virtual switch: + >Since an external virtual switch is associated to a physical network adapter on the Hyper-V host, this adapter must be specified when adding the virtual switch. This is automated here by filtering for active non-virtual ethernet adapters using the Get-NetAdapter cmdlet ($_.Status -eq "Up" -and !$_.Virtual). If your Hyper-V host is dual-homed with multiple active ethernet adapters, this automation will not work, and the second command above will fail. In this case, you must edit the command used to add the "poc-external" virtual switch by inserting the NetAdapterName. The NetAdapterName value corresponds to the name of the network interface you wish to use. For example, if the network interface you use on the Hyper-V host to connect to the Internet is named "Ethernet 2" then type the following command to create an external virtual switch: - ``` +
     New-VMSwitch -Name poc-external -NetAdapterName "Ethernet 2" -Notes "PoC External"
-    ```
+    
2. At the elevated Windows PowerShell prompt, type the following command to determine the megabytes of RAM that are currently available on the Hyper-V host: - ``` - (Get-Counter -Counter @("\Memory\Available MBytes")).countersamples.cookedvalue - ``` - >This command will display the megabytes of RAM available. On a Hyper-V host computer with 16 GB of physical RAM installed, 12,000 MB of RAM or greater should be available if the computer is not also running other applications. On a computer with 8 GB of physical RAM installed, at least 5000 MB should be available. If the computer has less RAM available than this, try closing applications to free up more memory. +
+    (Get-VMHostNumaNode).MemoryAvailable
+    
+ + >This command will display the megabytes of RAM available. On a Hyper-V host computer with 16 GB of physical RAM installed, 10,000 MB of RAM or greater should be available if the computer is not also running other applications. On a computer with 8 GB of physical RAM installed, at least 4000 MB should be available. If the computer has less RAM available than this, try closing applications to free up more memory. 3. Determine the available memory for VMs by dividing the available RAM by 4. For example: - ``` - (Get-Counter -Counter @("\Memory\Available MBytes")).countersamples.cookedvalue/4 +
+    (Get-VMHostNumaNode).MemoryAvailable/4
     2775.5
-    ```
+    
+ In this example, VMs can use a maximum of 2700 MB of RAM each, to run four VMs simultaneously. 4. At the elevated Windows PowerShell prompt, type the following command to create three new VMs. The fourth VM will be added later. - >**Important**: Replace the value of 2700MB in the first command below with the RAM value that you calculated in the previous step: + >**Important**: Replace the value of 2700MB for $maxRAM in the first command below with the RAM value that you calculated in the previous step. - ``` +
     $maxRAM = 2700MB
     New-VM -Name "DC1" -VHDPath c:\vhd\2012R2-poc-1.vhd -SwitchName poc-internal
     Set-VMMemory -VMName "DC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20
@@ -366,7 +375,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most
     New-VM -Name "PC1" -VHDPath c:\vhd\w7.vhdx -SwitchName poc-internal
     Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20
     Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
-    ```
+    
**Note**: The RAM values assigned to VMs in this step are not permanent, and can be easily increased or decreased later if needed to address performance issues. @@ -374,95 +383,112 @@ Instructions to "type" commands provided in this guide can be typed, but in most 1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first VM by typing the following command: - ``` +
     Start-VM DC1
-    ```
+    
+ 2. Wait for the VM to complete starting up, and then connect to it either using the Hyper-V Manager console (virtmgmt.msc) or using an elevated command prompt on the Hyper-V host: - ``` +
     vmconnect localhost DC1
-    ```
+    
+ 3. Click **Next** to accept the default settings, read the license terms and click **I accept**, provide an administrator password of **pass@word1**, and click **Finish**. 4. Click the **Ctrl+Alt+Del** button in the upper left corner of the virtual machine connection window, and then sign in to DC1 using the local administrator account. 5. Right-click **Start**, point to **Shut down or sign out**, and click **Sign out**. The VM connection will reset and a new connection dialog box will appear enabling you to choose a custom display configuration. Select a desktop size, click **Connect** and sign in again with the local Administrator account. Note: Signing in this way ensures that [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) is enabled. It is only necessary to do this the first time you sign in to a new VM. 6. If DC1 is configured as described in this guide, it will currently be assigned an APIPA address, have a randomly generated hostname, and a single network adapter named "Ethernet." Open an elevated Windows PowerShell prompt on DC1 and type or paste the following commands to provide a new hostname and configure a static IP address and gateway: - ``` +
     Rename-Computer DC1
     New-NetIPAddress –InterfaceAlias Ethernet –IPAddress 192.168.0.1 –PrefixLength 24 -DefaultGateway 192.168.0.2
     Set-DnsClientServerAddress -InterfaceAlias Ethernet -ServerAddresses 192.168.0.1,192.168.0.2
-    ```
+    
+ >The default gateway at 192.168.0.2 will be configured later in this guide. + 7. Install the Active Directory Domain Services role by typing the following command at an elevated Windows PowerShell prompt: - ``` +
     Install-WindowsFeature -Name AD-Domain-Services -IncludeAllSubFeature -IncludeManagementTools
-    ```
+    
8. Before promoting DC1 to a Domain Controller, you must reboot so that the name change in step 3 above takes effect. To restart the computer, type the following command at an elevated Windows PowerShell prompt: - ``` +
     Restart-Computer
-    ```
+    
9. When DC1 has rebooted, sign in again and open an elevated Windows PowerShell prompt. Now you can promote the server to be a domain controller. The directory services restore mode password must be entered as a secure string. Type the following commands at the elevated Windows PowerShell prompt: - ``` +
     $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force
     Install-ADDSForest -DomainName contoso.com -InstallDns -SafeModeAdministratorPassword $pass -Force
-    ```
+    
+ Ignore any warnings that are displayed. The computer will automatically reboot upon completion. + 10. When the reboot has completed, reconnect to DC1, sign in using the CONTOSO\Administrator account, open an elevated Windows PowerShell prompt, and use the following commands to add a reverse lookup zone for the PoC network, add the DHCP Server role, authorize DHCP in Active Directory, and supress the post-DHCP-install alert: - ``` +
     Add-DnsServerPrimaryZone -NetworkID "192.168.0.0/24" -ReplicationScope Forest
     Add-WindowsFeature -Name DHCP -IncludeManagementTools
     netsh dhcp add securitygroups
     Restart-Service DHCPServer
     Add-DhcpServerInDC  dc1.contoso.com  192.168.0.1
     Set-ItemProperty –Path registry::HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ServerManager\Roles\12 –Name ConfigurationState –Value 2
-    ```
+    
+ 11. Next, add a DHCP scope and set option values: - ``` +
     Add-DhcpServerv4Scope -Name "PoC Scope" -StartRange 192.168.0.100 -EndRange 192.168.0.199 -SubnetMask 255.255.255.0 -Description "Windows 10 PoC" -State Active
     Set-DhcpServerv4OptionValue -ScopeId 192.168.0.0 -DnsDomain contoso.com -Router 192.168.0.2 -DnsServer 192.168.0.1,192.168.0.2 -Force
-    ```
+    
+ >The -Force option is necessary when adding scope options to skip validation of 192.168.0.2 as a DNS server because we have not configured it yet. The scope should immediately begin issuing leases on the PoC network. The first DHCP lease that will be issued is to vEthernet interface on the Hyper-V host, which is a member of the internal network. You can verify this by using the command: Get-DhcpServerv4Lease -ScopeId 192.168.0.0. 12. Add a user account to the contoso.com domain that can be used with client computers: - ``` +
     New-ADUser -Name "User1" -UserPrincipalName user1 -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true
-    ```
+    
+ 13. The DNS server role will also be installed on the member server, SRV1, at 192.168.0.2 so that we can forward DNS queries from DC1 to SRV1 to resolve Internet names without having to configure a forwarder outside the PoC network. Since the IP address of SRV1 already exists on DC1's network adapter, it will be automatically added during the DCPROMO process. To verify this server-level DNS forwarder on DC1, type the following command at an elevated Windows PowerShell prompt on DC1: - ``` +
     Get-DnsServerForwarder
-    ```
+    
+ The following output should be displayed: - ``` + +
     UseRootHint        : True
     Timeout(s)         : 3
     EnableReordering   : True
     IPAddress          : 192.168.0.2
     ReorderedIPAddress : 192.168.0.2
-    ```
+    
+ If this output is not displayed, you can use the following command to add SRV1 as a forwarder: - ``` + +
     Add-DnsServerForwarder -IPAddress 192.168.0.2
-    ```
+    
+ 14. Minimize the DC1 VM window but **do not stop** the VM. Next, the client VM will be started and joined to the contoso.com domain. This is done before adding a gateway to the PoC network so that there is no danger of duplicate DNS registrations for the physical client and its cloned VM in the corporate domain. 15. Using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it: - ``` + +
     Start-VM PC1
     vmconnect localhost PC1
-    ```
+    
+ 16. Sign on to PC1 using an account that has local administrator rights. >PC1 will be disconnected from its current domain, so you cannot use a domain account to sign on unless these credentials are cached and the use of cached credentials is permitted by Group Policy. If cached credentials are available and permitted, you can use these credentials to sign in. Otherwise, use an existing local administrator account. + 17. After signing in, the operating system detects that it is running in a new environment. New drivers will be automatically installed, including the network adapter driver. The network adapter driver must be updated before you can proceed, so that you will be able to join the contoso.com domain. Depending on the resources allocated to PC1, installing the network adapter driver might take a few minutes. You can monitor device driver installation by clicking **Show hidden icons** in the notification area. ![PoC](images/installing-drivers.png) @@ -474,7 +500,7 @@ Instructions to "type" commands provided in this guide can be typed, but in most To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: - ``` +
     ipconfig
 
     Windows IP Configuration
@@ -503,19 +529,20 @@ Instructions to "type" commands provided in this guide can be typed, but in most
      Dc Site Name: Default-First-Site-Name
     Our Site Name: Default-First-Site-Name
             Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000
-    ```
+    
+ >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. 20. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click Run ISE as Administrator) and type the following commands in the (upper) script editor pane: - ``` +
     (Get-WmiObject Win32_ComputerSystem).UnjoinDomainOrWorkgroup($null,$null,0)
     $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force
     $user = "contoso\administrator"
     $cred = New-Object System.Management.Automation.PSCredential($user,$pass)
     Add-Computer -DomainName contoso.com -Credential $cred
     Restart-Computer
-    ```
+    
>If you do not see the script pane, click **View** and then click **Show Script Pane Top**. @@ -526,16 +553,17 @@ Instructions to "type" commands provided in this guide can be typed, but in most 21. Click **File**, click **Save As**, and save the commands as **c:\VHD\pc1.ps1** on the Hyper-V host. 22. In the (lower) terminal input window, type the following command to copy the script to PC1 using integration services: - ``` +
     Copy-VMFile "PC1" –SourcePath "C:\VHD\pc1.ps1"  –DestinationPath "C:\pc1.ps1" –CreateFullPath –FileSource Host
-    ```
+    
+ >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM. This can be done by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server operating systems that are running the Hyper-V role service. Otherwise, just create the file c:\pc1.ps1 on the VM and type the commands into this file manually. Be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file. 23. On PC1, type the following commands at an elevated Windows PowerShell prompt: - ``` +
     Get-Content c:\pc1.ps1 | powershell.exe -noprofile - 
-    ```
+    
>PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. We have not also renamed PC1 to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer. @@ -544,79 +572,88 @@ Instructions to "type" commands provided in this guide can be typed, but in most 25. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. 26. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands: - ``` +
     Start-VM SRV1
     vmconnect localhost SRV1
-    ```
+    
+ 27. Accept the default settings, read license terms and accept them, provide an administrator password of **pass@word1**, and click **Finish**. When you are prompted about finding PCs, devices, and content on the network, click **Yes**. 28. Sign in to SRV1 using the local administrator account. In the same way that was done on DC1, sign out of SRV1 and then sign in again to enable enhanced session mode. This will enable you to copy and paste Windows PowerShell commands from the Hyper-V host to the VM. 29. Open an elevated Windows PowerShell prompt on SRV1 and type the following commands: - ``` +
     Rename-Computer SRV1
     New-NetIPAddress –InterfaceAlias Ethernet –IPAddress 192.168.0.2 –PrefixLength 24
     Set-DnsClientServerAddress -InterfaceAlias Ethernet -ServerAddresses 192.168.0.1,192.168.0.2
     Restart-Computer
-    ```
+    
+ 30. Wait for the computer to restart, then type or paste the following commands at an elevated Windows PowerShell prompt: - ``` +
  
     $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force
     $user = "contoso\administrator"
     $cred = New-Object System.Management.Automation.PSCredential($user,$pass)
     Add-Computer -DomainName contoso.com -Credential $cred
     Restart-Computer
-    ```
+    
+ 31. Sign in to the contoso.com domain on SRV1 using the domain administrator account (enter contoso\administrator as the user), open an elevated Windows PowerShell prompt, and type the following commands: - ``` +
     Install-WindowsFeature -Name DNS -IncludeManagementTools
     Install-WindowsFeature -Name WDS -IncludeManagementTools
     Install-WindowsFeature -Name Routing -IncludeManagementTools
-    ```
+    
+ 32. Before configuring the routing service that was just installed, verify that network interfaces were added to SRV1 in the right order, resulting in an interface alias of "Ethernet" for the private interface, and an interface alias of "Ethernet 2" for the public interface. Also verify that the external interface has a valid external DHCP IP address lease. To view a list of interfaces, associated interface aliases, and IP addresses on SRV1, type the following Windows PowerShell command. Example output of the command is also shown below: - ``` +
     Get-NetAdapter | ? status -eq ‘up’ | Get-NetIPAddress -AddressFamily IPv4 | ft IPAddress, InterfaceAlias
 
     IPAddress                                                                  InterfaceAlias
     ---------                                                                  --------------
     10.137.130.118                                                             Ethernet 2
     192.168.0.2                                                                Ethernet
-    ``` 
+    
+ In this example, the poc-internal network interface at 192.168.0.2 is associated with the "Ethernet" interface and the Internet-facing poc-external interface is associated with the "Ethernet 2" interface. If your interfaces are different, you must adjust the commands provided in the next step appropriately to configure routing services. 33. To configure SRV1 with routing capability for the PoC network, type or paste the following commands at an elevated Windows PowerShell prompt on SRV1: - ``` +
     Install-RemoteAccess -VpnType Vpn
     cmd /c netsh routing ip nat install
     cmd /c netsh routing ip nat add interface name="Ethernet 2" mode=FULL 
     cmd /c netsh routing ip nat add interface name="Ethernet" mode=PRIVATE
     cmd /c netsh routing ip nat add interface name="Internal" mode=PRIVATE
-    ```
+    
+ 34. The DNS service on SRV1 also needs to resolve hosts in the contoso.com domain. This can be accomplished with a conditional forwarder. Open an elevated Windows PowerShell prompt on SRV1 and type the following command: - ``` +
     Add-DnsServerConditionalForwarderZone -Name contoso.com -MasterServers 192.168.0.1
-    ```
+    
+ 35. In most cases, this completes configuration of the PoC network. However, if your corporate network has a firewall that filters queries from local DNS servers, you will also need to configure a server-level DNS forwarder on SRV1 to resolve Internet names. To test whether or not DNS is working without this forwarder, try to reach a name on the Internet from DC1 or PC1, which are only using DNS services on the PoC network. You can test DNS with the ping command, for example: - ``` +
     ping www.microsoft.com
-    ```
+    
+ If you see "Ping request could not find host www.microsoft.com" on PC1 and DC1, but not on SRV1, then you will need to configure a server-level DNS forwarder on SRV1. To do this, open an elevated Windows PowerShell prompt on SRV1 and type the following command. **Note**: This command also assumes that "Ethernet 2" is the external-facing network adapter on SRV1. If the external adapter has a different name, replace "Ethernet 2" in the command below with that name: - ``` +
     Add-DnsServerForwarder -IPAddress (Get-DnsClientServerAddress -InterfaceAlias "Ethernet 2").ServerAddresses
-    ```
+    
+ 36. If DNS and routing are both working correctly, you will see the following on DC1 and PC1: - ``` +
     PS C:\> ping www.microsoft.com
 
     Pinging e2847.dspb.akamaiedge.net [23.222.146.170] with 32 bytes of data:
@@ -629,14 +666,15 @@ Instructions to "type" commands provided in this guide can be typed, but in most
         Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),
     Approximate round trip times in milli-seconds:
         Minimum = 1ms, Maximum = 3ms, Average = 2ms
-    ```
+    
+ 37. Verify that all three VMs can reach each other, and the Internet. See [Appendix B: Verify the configuration](#appendix-b-verify-the-configuration) for more information. 38. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1: - ``` +
     slmgr -rearm
     Restart-Computer
-    ```
+    
## Appendix A: Verify the configuration @@ -644,7 +682,7 @@ Use the following procedures to verify that the PoC environment is configured pr 1. On DC1, open an elevated Windows PowerShell prompt and type the following commands: - ``` +
     Get-Service NTDS,DNS,DHCP
     DCDiag -a
     Get-DnsServerResourceRecord -ZoneName contoso.com -RRType A
@@ -653,7 +691,8 @@ Use the following procedures to verify that the PoC environment is configured pr
     Get-DhcpServerInDC
     Get-DhcpServerv4Statistics
     ipconfig /all
-    ```
+    
+ **Get-Service** displays a status of "Running" for all three services.
**DCDiag** displays "passed test" for all tests.
**Get-DnsServerResourceRecord** displays the correct DNS address records for DC1, SRV1, and the computername of PC1. Additional address records for the zone apex (@), DomainDnsZones, and ForestDnsZones will also be registered.
@@ -665,13 +704,14 @@ Use the following procedures to verify that the PoC environment is configured pr 2. On SRV1, open an elevated Windows PowerShell prompt and type the following commands: - ``` +
     Get-Service DNS,RemoteAccess
     Get-DnsServerForwarder
     Resolve-DnsName -Server dc1.contoso.com -Name www.microsoft.com
     ipconfig /all
     netsh int ipv4 show address
-    ```
+    
+ **Get-Service** displays a status of "Running" for both services.
**Get-DnsServerForwarder** either displays no forwarders, or displays a list of forwarders you are required to use so that SRV1 can resolve Internet names.
**Resolve-DnsName** displays public IP address results for www.microsoft.com.
@@ -680,13 +720,14 @@ Use the following procedures to verify that the PoC environment is configured pr 3. On PC1, open an elevated Windows PowerShell prompt and type the following commands: - ``` +
     whoami
     hostname
     nslookup www.microsoft.com
     ping -n 1 dc1.contoso.com
     tracert www.microsoft.com
-    ```
+    
+ **whoami** displays the current user context, for example in an elevated Windows PowerShell prompt, contoso\administrator is displayed.
**hostname** displays the name of the local computer, for example W7PC-001.
**nslookup** displays the DNS server used for the query, and the results of the query. For example, server dc1.contoso.com, address 192.168.0.1, Name e2847.dspb.akamaiedge.net.
@@ -701,13 +742,13 @@ This section is a placeholder for instructions to configure Hyper-V on Windows S To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature cmdlet: -``` +
 Add-WindowsFeature -Name Hyper-V
-```
+
An example that uses Hyper-V WMI to create a virtual switch on Windows Server 2008 R2 is provided below. -``` +
 $SwitchFriendlyName = "poc-internal"
 $InternalEthernetPortFriendlyName = $SwitchFriendlyName
 $InternalSwitchPortFriendlyName = "poc"
@@ -728,39 +769,63 @@ $InternalLanEndPoint = gwmi -namespace root\virtualization -query $query
 $Result = $VirtualSwitchManagementService.ConnectSwitchPort($InternalSwitchPort, $InternalLanEndPoint)
 $filter = "SettingID='" + $InternalEthernetPort.DeviceID +"'"
 $NetworkAdapterConfiguration = gwmi Win32_NetworkAdapterConfiguration -filter $filter
-```
+
## Appendix C: Convert GPT to MBR >Conversion of a disk directly from GPT to MBR without data loss is not possible without the use of external, specialized applications and tools. However, it is possible to create an image of the GPT disk and then restore this image to an MBR disk using standard tools. At a high level, this can be done by obtaining an image of the source drive, creating a blank MBR-formatted disk, applying the source drive image to the MBR disk, and then configuring the MBR disk to boot the applied image. This procedure is described below: -1. Open an elevated command prompt and type the following command: +First I capture a VSS image of the GPT disk: - ``` - mountvol S: /S - ``` -2. Close and restart the Disk2VHD application. -3. Clear the **Use Volume Shadow Copy** checkbox. -4. Select the C: and S: drives to convert, and then click **Create**. +1. Create VHD (function thanks to Senthil Rajaram). -mount-vhd -path D:\vhd\w7.VHDX +function CreateVHD ($VHDPath, $Size) +{ + $drive = (New-VHD -path $vhdpath -SizeBytes $size -Dynamic | ` + Mount-VHD -Passthru | ` + get-disk -number {$_.DiskNumber} | ` + Initialize-Disk -PartitionStyle MBR -PassThru | ` + New-Partition -UseMaximumSize -AssignDriveLetter:$False -MbrType IFS | ` + Format-Volume -Confirm:$false -FileSystem NTFS -force | ` + get-partition | ` + Add-PartitionAccessPath -AssignDriveLetter -PassThru | ` + get-volume).DriveLetter + Dismount-VHD $VHDPath +} -dism /Capture-Image /ImageFile:d:\w7.wim /CaptureDir:H:\ /Name:w7 <--this takes a long time +Be sure to use a size sufficient for the backup (i.e. 100GB) and specify a path to a USB drive. For Windows 7 to mount the drive it must be .vhd not .vhdx. - mount-vhd -path 'D:\vhd\w7-gen1\Virtual Hard Disks\w7-gen1.vhdx' +CreateVHD F:\pc1.vhd 100GB - New simple volume, created drive G: ---- -dism /Apply-Image /ImageFile:D:\w7.wim /Index:1 /ApplyDir:G:\ -boot to install disk and repair this +2. Insert USB into client and mount using disk management. It is possible also using diskpart but easier with disk manager. Note the drive letter of the mount. Assuming G: -the idea here is to create a MBR VHD, then restore the wim to that. +wbadmin start backup -backupTarget:g: -include:c: -quiet + +- this takes a few minutes then you see: + +Creating a backup of volume C(C:), copied (98%). +Creating a backup of volume C(C:), copied (98%). +Creating a backup of volume C(C:), copied (99%). +Creating a backup of volume C(C:), copied (99%). +Creating a backup of volume C(C:), copied (100%). +The backup operation successfully completed. +Summary of the backup operation: +------------------ + +The backup of volume C(C:) successfully completed. + +C:\> + +Note: Alternatively you can back up the client to a network share, then access the network share from system restore. + +3. Detatch the VHD, remove the USB, insert USB in Hyper-V host. + +4. Create new VM with blank VHD, add the usb vhd as secondary. remove it later...no need to keep the image on the same disk. ---note another possible option is to create a backup, choose USB as the destination, then create VM, boot from DVD, and restore from backup usign tools. ---also try https://community.spiceworks.com/topic/435119-can-i-virtualize-a-uefi-server-into-a-hyper-v-virtual-machine <-- does not work ### Appendix D: Terminology used in this guide @@ -784,6 +849,10 @@ See the following table for a list of terms used in this guide. +### Appendix E: Create PC1 VM + +Here is where I provide a procedure to create a blank client VM. + ## Related Topics From 44d2cf13b5082cbca4f3f247386c1298dfc60326 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 10:38:50 -0800 Subject: [PATCH 025/210] rework client procedure --- windows/deploy/images/disk2vhd-convert.PNG | Bin 0 -> 17223 bytes windows/deploy/images/disk2vhd-gen2.PNG | Bin 0 -> 19807 bytes windows/deploy/windows-10-poc.md | 232 +++++++++++++++++++-- 3 files changed, 215 insertions(+), 17 deletions(-) create mode 100644 windows/deploy/images/disk2vhd-convert.PNG create mode 100644 windows/deploy/images/disk2vhd-gen2.PNG diff --git a/windows/deploy/images/disk2vhd-convert.PNG b/windows/deploy/images/disk2vhd-convert.PNG new file mode 100644 index 0000000000000000000000000000000000000000..f0614a5ab17a9910acdc8ee57b40fc9d32915b78 GIT binary patch literal 17223 zcmch;cT`hb_cj`Ah=_QQqO>R=pp=M!bb@e@rhRPzRW z3a+o=ekJ>c)&DF-8h@wOE!zk*vv2Mk=9r>ZzV5FJOs1Dr8k2Um@Q~cbkfntrJo{MKxwgnVs=_i z(>WgX>7JmHJmz&9V{j_=Rl{oH72HHau0JuuLPY@Bq_DL#aOW`j*kHukKALt|m8|on zg?EvSmb$FfDOR3o-~5;K1xAR(EgJ=5@ZP^7O|Q*ULJOt{kpk z5AYUjICkbn!i9hzm(p-KP2*N*c6LJlH^R^iJ*cwNWx?t)ETb;1VM9kIe5UFY1101A zUI=V8*$xQdou1^1o+(%=uNIc*Ny|$vj`{h7$$S9`3tdz7!ulPO8w+`ZvTMWus~BtW zyI!%Icd&3~3If;CYOIOIp@JWUfa~*RuX{$E-#|REi+N?c%DmO2XQDB4_o>rhlS#Ef zT2*F_H5KPJi%ayU&!J0&L`SYBTGDbcJHhhX1Do1lbHmr%z&ftMa7jC~xUp>edKXt( z@^)|C)E(=^9qn~I^%;^>8`SpEFyX>PNwe#23x9EZY?O;iNsb6|#DE=KQ!9JjYnYdh z!&gKWzG^zCp~J-u8M=-$!@ah~@)y4r4s z564(8oUYm=AEnsFw_LiZ*TiWsk@~X3uJ6*x(5?ctwAN~$w^HuDSp%AX*+_j8b+K6u zOGLE1rY|>F6j2f8rNnHDCF1F}6*(gD40TiBo#0Ya8hB8qn(^kKfOs8L{<^4b-(Mp8 zp+%PdjIJ%N&6yuuPq}>vlU%hk>D9vq;JUdn$9iU&jO(Oa5YF9|)#JDNV$(+d2ABWh z7cj!tbrvbso%L{Jh0&1`?iw5kU27(~t~>P{nY`5yqU;%VZ?>Sa0%0K8v%b>ue)8V> zWIz)E{i8hc>wJ0d1<&>CX;on{UrKdNJwnq&`yaj<#F-lKS24R>B5=?0ifDPnt&zsg z$gmYjoOhpbkbHV|*e!oQlI551Q(2XDTJI^Ymtf!P5|m-Ld)3eQwvJk5eD#Zm%A2&e z2=%DO5LcU*&E{4L%-tG~SvNM|1w$aYk-PhDXYa0cN5%4TfOop%8Eea)T?)e&){Sgx zXeZ@dX?g3#oAxF)%+4XmrjjRZScLkaeftJ_ycoT-BY6#_7$$->RK*2~1dIg<(XxEq zj|=P@M%7N=0tZ7z0%^(zmoRmdn>Nhx@Pl-Cc;D)HrhlO4t=kesR%H=us+wc-g72Og zSo(Km%LEDv3oZSQZDY8Sj2{d~J`o))L*{wS%me{~&BgLE2@Ny_@WE5|x#SL=Iw zM{W5t>pMCL4Vpe{strLM!_#P*R;%(3#9#hERnYwN{(b23a>cLs0|I=bf{yqq?TvOV zdiFNPWAM0EQAd^1&7tw9VaySgn!w?3nYOJh!uu!V&@8Etopp+Mw*V}xBXkA%@P|-6?3BPo(fLhar+)`rVH!;8QHKHy znq$a6u(Tn~&^mGASo1dhNd3>M%mw_q`(1jDH@=uem`c5Zao+^t#~bgT*8iIJWp~jI zH}%lkFyS=ei@vTO#fN#fWJc_Aq&w{1IUb8Z(YV+HqmeCT@lE<)^M0uGAT%Vq+cl*4 z`U5F#y*`9%jCf3>;^1yHr+`?8L$KFLLgaETq^J7_^KU<0cOSdh12xBzH8G8KR9_;q>2h%Q!HdAfmw-nTf=nyKW ztfJCWQZiCeQkf|^;;#`tA*9mPRGz|x$@WQjx5;U{W;+GBO@h31jF%faR1M>;FH2Z5 zan*0xm{53ue7Q-F{`Nc1i!wke4L?KuA*>l z5skC*wY+!L4Pgtm-Z9HlnmLfUFnAJu%5#WVQ|7t3tbWmZdgFUUKr1;|!TJ`tWuu$h z9+EBfB&K)Xo9m5jfKNr<D7-#(h`^}(vdp&w6rSqq` z&=K;VGg(Sik)Lazh1AhRFd`}N*8(;!IZ*%1Cd6@(xaeg?jpqjL#X#(__S?#gowBDGKcjh27_mJ;oZoB8`jPT_Qj23ThK+*pnHlL3;^RPWZ)f$i1|2IdpBC|c-mjd>3pi}u9j8s}2dSmb;5H@IX0N(!uQUax zLnCmCsoU2ms@rVuhl+<2x)0pl^KHFqqDyMXf*Xu{s7QFwL^inQ$@aNh= zE7ddh3!B7=03~^zHS-0e(`c0d$rEDGJn4w0$vQcmp?;&aG*9}{QtR8*Eh)LQ`~gIq z_3INMa`zDg+a|BjQtWVrlY?Dk@!Bs${spM_&(MX5z z6Q0v^=uom}>bZ0Zaj0^ zk2WUUFG@o)WeAJpG59&p+FfUx)t$zZ_m?(zoZoQlGElDJq3yU1QbzS$cs8*tII<3= zcF1IOH>>}W4p(_!U{6uyCKn>WU`%lR8>QsMk*EM_U(Zu+ZNssRzUucomBfh5(e3%5 z9&<~3ec0{>amFvJKDK0S&1G87yY|f}LuKJzi}uzBV1F8Fj(T#_+zX&(-b2+21J@Nz z7p-nK%nx~{r(1Mu>rw|by@$Z%M7TtdzXL8J%@ab7rv^_eBZb?Vu?tf_thxh}6`-iC zw}$03{FSPe4e`yBnYa3pLiCL(Dax&22d6|L?vDLZQu@pXdxP&g8d?^E>`D|kU3nC| zV2PO6WI~PPY`JevAcqZFZc1q8k(a8P750964DQS1-c7Zz-$C4!!K{VatYDrF9l>}q zm6!CuvZ|L5ei0ST_{w{>i#x%MzDJ{9r}Isf zkTwR3ZTjV#eF_i)g6er~GNiTn^#)J5ll6D?z<5~&Z;f7XET01vt7a5FG1af2;g$PC zP9HH(4|L`7MhVcX^up5@@Xx9Y8m{XN1!}elij%s*TA~pULkDS8E-XTiqWrbx+!Y7v zla&QxSXR}%#`S3EyeN&TG9sdNIPoD$1xDIlikLd-1;3+RJlf|j`YO7?hyL3Yyahtg zSJD@9-#!rab{GEBXzgx2<;9PR)t}riyO-a#TzR{e&|*M~+ssgz$p#Asc-+`h%qBXz zYtwfoJoh#j-PyUh+hp5r)|A1er9>Q0UHv^v>jF2YYOZi>w5Bv%25(Rz(cTU!2|KHD z3ppw~S&exrjobB%(hj?8Dr4)%uSJ%rZ6p?MK}-e$lxjOdnpCVI+Wgq&f!|BY-`@+v zFurryJj?2sy1r;#@aC*sFMQlBNET8D9mO!b({Zo*XsX8aOQOcP3b|(5gg-(aVHMPo zekHxZ7w>ABe;f$&j_$4X%WLK?y9N+e4);Cnb$!^X7`n|Ca&P?@j{YKvkz@qTMMkXJ z;6lC@`)@YIx!K&(XtOJie7JKasN_D=+Ix*{3QyQaR87}xIAr~XL^Vf*-_~`YBoT3D z(sg7DSBXo6F**#fv?pI%pR{|Gkb{jYHQ$rHVSM$M z>?3K?fFcW5%eTMy7JrKMRKicsF6=VB)%3Y=vmEA7{$2YH>%ze9Y?JEFmt@+FrB8R9 znB&8v&s7LNaUDzV(Gv&%@;k+6t1}0?us(r6J5rb4p;#%--o(+H6@x7_Sd0RV8^S-G4299X3tLay>h6K zo#+@sshe<_dTC#!b0ORU>-vRRF+Epg8z}8+rqiLYQQZsp;4UMBSHQOk=*D% zi@GlCt$pvQyN&J7rIqsp?ek|a^q=nbC&6=@;u3E#L}N!v$mH^hl|@;z?IqM|TvUEm zgdi}`?4x3~9K*HrzH(_66EXX?n9WQA_@eWz543mZw4*zS7vNt&$4iw#u?K)J&-(>I z`ul({e|vB}5@S&sVpWH95`a(8U$*<-83Lb=p7S2$XElDL?h?2EF{{zL_JK*A-xd-| zN=m$kr~0wUZ^TJPa2to3v{n;E=s6W$b`VJVpzZ!Q#fFDhdScUE2$Q~*6>wRTl23k< zea~BxJVo{cEtG*4^@fM>ukXE0yrhCuCVeZuOQ^Gh0Njw-`Km(&v0`U>xd96zBTp3S zk$|*e+j_#aN=VjypK2VA0;{;~!DSYpuiIUPfX@Zn!Kyr=Zm6lLS)UitWJPZ-z{mir zH^%pY%q=B?!$rz{dQFJ)fUq}0fVB`l+x@riCmc_4A_WdNucWrU zpc3NY_lC&>5r%2-|4g+i_9e7)#;VT~v#{jrag|AG){T8D-rc(52+Wh~=>DjTkHbcq zuv(u=Oz|}F^^B0_pLM@TE>#Obk*7k|L#`r+RDr`d*DrXQxwq91p8j_SlpPzDSLN{F zfripi)`943k5d{-_CK3_;;?sOEAkD7t_!)jNA^x)<4Z@lJ^MrZ&wJV32%YoFx@o;x| zsf5vbnX`hs)HzB>?x+Ar=L4Rf!(@mXDJbloVCJcU?_9d4)?Vb^k7bzfRmZ;V7y^X3 z6ub2*C(Ij+gULKt!Lq%J=oh;s|nnr%F$%;Qp zYw*p9IhhN^0%YDnR)*cnR={xorgbSKh91LVL-kdE>T2v3!8 z-hE>S{U;)c5ehz9$&%1(niA)rZX#MpCGOc9Em2)f%?&Cx!OtIHDFeGR#U zvr=tU&V&F2!tLVxRP+XV7`r9wQ=iFO?u6C`>Exmf4gcac`q{x#UD`Ql-N!p>)s3?z zmiu@QwYLZgsEeiv5s`5NmYF96h(ksS8vL{SLAPxNVh`}+IG%YW8>w_vY?n6c`HOmU zdTYv)@wwnwDg58AvTh?ci`+=)@TkerRDrk_Q$-kI&fRsmIdS9CKkJW`<4N{ZyZGQ? zk^VlC5Soln^j!%aY$!T2how>LRM8n&>{NU-IoL;}oM8vZ{p4gwT|c%+W-eGET!`e^ z)?BA4(gOsAL%NjjRt4S^{M0_s?fteAM}HkOkmu*HMRxk;^6KmI`>3>)4x5>TE0R}a zApqg@E_u-pMr5-S_~c_LG0q0?n6Ivx3$P4`nOdp-*X81D_8Tk%)64y5EC@e`h=E)5 zlRX;|@lW3id%_tYUu9_3)ur;__#f&1r2o~-zB8!Qu)ohhCg~<02N&2|q~hFUywt?H zL!I6E`d!~I0f#^Z-dn@O01)w@Y_-^z(X}`^-pSwF55F|IA1+bUS#s_`WxlOGrh_`~ zAn}`x8?*d5;E=S#u-Zi)DEpMiAfJ z>hw;h;D$LyXg0=|QP|$4AW}Vq%epdblY6pSRkWchn-WR|WO9B*Pi@1TGM$PT@*JrK ztU|DlP&o-Sbv$I+9pJe_)!pRFv_0Jg1g?gU!(%$nZq0?K zj{Pl|?me&WC#{KUDGIu7iE^X1z+11RPm|~7$bjcEA`oYP_3un z?I0~Wc<6h2#B`Rbk0Y-J{1mjWp>fUDAZf2{B_2)D~~LP1bqB)yin` zZlhQaTeO0Zsf|j-F&$A|{e1$5Lz(mON1~M7`#RU@6me;ucRU^m7j6p(H(E(}K(EUg z=f*~TE&ZAvE-i{%B1{ESb6(`%C!Sj=lnTo<=;+$+#5n*vwWI{xw{;_p;?SOt>X!7f zA}c;$M`@m__sxi`={(dFF>bvXwt7rxF>ub5|hsxz%o`e0cZ(V!*N$W&Dz8r z8^=AGvXI~%#d5|yUfl2LI#fFlGnxByX)IMnd0nN~IL z(zf?&$iI6i1Z7NdORlc2-n6u|ynXuN-B12A-P5&)?S$>H56`^LHGD3_x#DSuj3Gap z3>hNpc)pP1VbP$}H#ftj9(y-eojiGp?zGC55Az%z;z#=otTtD4Vi`SUe#QgL=DC1M zH6D6jX^jKIBd!zc5$a^)YR9~9i_CwKKXB+fYjSV-BHL<2vaGdkczAe4AkD_6%ES7$ ztl?v`s|j}qXY*!!GV@`;!eb`U+P$I?^HlXm)P4MX9C8}hJJ09d*4Gur7(VK5+W*(P zvNd!^khP_u1tjUUhZ#XK_*U^IjpV z11{NpyS4xfIbc9d@(q(>1HBVn)XU;Lus!mm z*tYr#{t54)G&!D=&_~J;(Vs-0mUMyHmXNQA(C`A0f7F@f<8%;fXbk6p3BJRvGCZJV zep`v61@$XJyexZ>`-OYEs4f7s{Oun{2L$1I#HAZg{~((fIUc|>#zh|VZ7L!4e%!+; z1>k>8#d#i^psaWC|4Ua{0~i4kDzU=oG7IFGLI2sIlYan?fUShbAi%g<{PC;Y|8)-O zOq8JV^FM~|kEaU&Y*$b$>L#n{n`cbq*|ST1Y~N2nnE@i71K5PB^>y|1o(i#pr1P;c zJ0EW47c@3zUC+|i+M?#%kkC2%4X~A)rmrkMiha>8$X(F-yprlnk7`S_+dKj?GeXBS z@E*?0%&fTE^sGRqpid0_x)JMEwAl>FG>*yItm408ZY>e)Bf~3TL;``P-hnryu4kN# zj*H@xvFMz{$IZ+Ql>cQb5zJk46RMinCqsOi%*-}wCEr)*TNe#~2`_?i00z8jJ~7Aq zR>G^Zd8Ckx>gaDufLE=<#t-;F3WP;<3e!smluN9#kg_uXwvQ|`hfI|F6dK)U<`p<3syK8ij5p?3o+JT>7qpb0RDvYGC%Xj-TOFxm>X+LIEq z%ywss6r;WC`Z!Y)elcW9b=MW0n;V^$mR69TFSQZSE&Hzx2=2BU=u;39zCLI`>~%*jx zlZC5n#g*KCfMV z4_`8CK-i9ARft|g!WyE3{5(AjY$5d9-&PcL)*2bvcj{KsUZxF>Xuj$T)EX=jBoPh zNyl@s2fRjEY2la6aKu2OGr*|#~o&|-JnGt>ac z1KuXtY?;DczW4>pV-xV z@p|hEzLcK>zFTjTy08RTcD)>%(lI2Yl5JWOzK}J_9Cuq+Qzv^QO%3lL8XR@YJv9I^h=D zS{#e$^xJc#xtW%2lw%;XLe>oL{_#^vmCWv&xxxV8@7eB5t#(K&bp&)z5E)m&iYSJV zEkw*E0|0WPQk)2N!XxaUM|%tG>(C!Q^-_5^V3y(TVw-DfdI(-S$Q(GUle2&ZR^Lo`uf6f3|vHQSKVG?Wa;zNojC zYbKDB0%n=Rq7A<<>Tqbi^dGkEXaOPuT4&*>@D?HN;=ih^Qk>{|OJ=BK=WvMBH82QN zMtUZ8hWz+7c_Q(w)VZLdaAe8}8!5N#itU`bic&MEJmd`!cMd$%OE^xyu+;1!`vK#$ z^>IM+$5K@fLr>LI0)J2A8q86b;E(v${X2(72f~tiZ4fAjAm^FzaC?P_JiqVthVm_m zdr8cv?A(_CUg6NNnZ&&)mV=sQtFF-3wIEfoqW1!J;6CuF!v>r@`ex(7i$t-B&yV+a z8D*pQ{_rXh&d*|_;B@j0KR?Ax?Qr#t5*>a(9+w422hY^-bI@qCt{<$3RDElXf%;HX zTB@+&1={UD&53IAt5+udw%Hq>rn|=)$o~mN|G!*(d?5y`=u13Oz`Db`4hF;@1;_Z# z@yzMT&!8Zl^eA%lhC2UGIebPA zRs|p*UYU>ZawH>68txNb|M@{!q}pE;1o~{%I~BwuE6ViUJ2CX|%~lRPFu(B!NBw=A zT3a4ah8bgWG|<(d&nh`UwKVY{9c0T`aFMj^+?b%K+tFxQi(c`aL(a%wpc1u{y zG^+kv@@if2qnG!miVyyHDB^CS*5EMJZ*cZ^fCIdklk_w^GAhiwJD%0E&ZSBUAS3>m zrs5F6*r+$fjg7mLeQT~HT3Gj`3>85^K^x!1&_lp4T>4+vTvfdR)~DjPB=cy*rO*zK zjwfFz5x0h>_p#~g#$VEur52(Mb@cRFx&dkQ$iJS6!zybJ25V$ha8cr)J$sfs{2TRH z?96?=gbUh&?Lxr3ay5Wr^_xk&L_VWm(bLm2@$&5$Z!DY9D%aW??x2BheOv`nDn6Q( zOM%*MLjQF6q2)Bp&jIuns5b6dJ89BYCTjViL(k?zdw$=aVLc1*TCm@!8;bf*wBF{# zxO@PYNSUJQu;%?`b23z)qz%m+e5PrxP*%BQ>CK7<>fWKKTy+DCIh`oPC5N#n=|~~| zEL|uq5mJH8p8^OZ&CR)T|DCP%ePI`U!e!hv<0z<5#4)gT#zz0-J*|?Ps2D@_EaRV~ zF#XERAQa^zYoODRsg1Dc{%y;RU`@2s>(E2hJ~t#5s}`FHAN$45_}e*X%EKscbmjOt zcv7h13~ao0#Oy1KlR!}Z}p56%|@ zSdkOvFo_I}pmw}e4l8sRTC-X_sNp|tw%Ff2C*yBtP0D@cubtFPk@dd{gs&oWU+cxqoN!_$60LokaahuBZN?_;eVUcn*oHuDSI8AxdSJw&OylzgBm>R;KWghjC=D8^i zz$~n!LON+`7TXSqwh3{KDtS6jugdk)SLWw%o7|}T+in<8_zTN5WmzXiQaTbokRj#cl3OD%C5-A;f4gTD|*dJBGXiPsRUUs>4v!h?A$cA z2L&respy>jPC3h1Hx}XsP~-`lp(9gg@p>eSLCqSMhlMz?iLcR|{;P8Xr?o#Qg^QSK zNJSNXM4?dQrEt35=1KQD-q-Ei zOh;=!*2C(NsAyz>_ zLFS^i3e7|7InneI4E@mJ;?u4;%WPwj!eK?MxqZT7t71pz=g&Ik6P#6%yE`8>s~lfe z(~USO_Am<9_yjvf0COct-2!-cy@Xf$VxyMWDDi-acx@h#@Ok%D6Od~yJOcX^zPV~X zRm$g7muYIFy0D?{4U$H%#=oD?IW`6}U&A11Bem7%k;Nxjy8RVSB*ORW_yA81_`)O7 zJk9JGDnJ-yXz@#5*T4Xva6z|ER)3V?!9MwLWs69t3oaJ)rX=#W3xQ6b8rxg;csyYI zbl^UF*aCDAYaX8Putl!g*_jA*e&m7u^>@OB3lAlyd*SbQT%NaQYMHtmYJbl%anfvF zfcI+69I|>>86d8uTA$#Bogq|sF93ONvYk=vft~yd^(?lue%wM)|7%eV=Z644!l!ss z&+LX1`x&Dhqk55{>rA()Sn_l&hY>(nfB@<>PRgh}u=u$Kw-B)=u=U7P)MRpdq8-Gd zs8ij+jxd)hrG!#K&V(B_2<(3}dwj#=*<@Nf5VW^u(;}*AouuCK~d-9#rrl|VE*VBox z4YvB-rm-9;%lYh*68jqt1%`&WlhzPa^4V(sAM3el9av!vejB1~c4`3OdP%LfqjtHvRNEF-xu=zg{dG0rQ^*K;TH~;yb4PwQ!SohsSqn(@MWmN( z&5HO3KibW0_LSx^e%WD?mCo?AQ#IENXy-^wg!Z=5P2Bq)VH>4f;|9x zS|GbUP?6Q6lr>aDC-wbSXlv=(nJ5Vk+$Bss$-z6mk3B2gYEDt@IE`0KM;e+eT(ra zd<%fn!4?0leh%DJ$w9_$2^O)l;xzW&nsadGt&4o;KsjZ)6Fmx~^YQktiUc}-roq~D ziDL7D(d|%qgAFuRxo_R5y96@1N^LW$Meq%pN*@Cy@omU9hdcL#p?ZD?`^@BLLReeX ziMuNvKpWP#UDXEj9f3BuXs@6o)C1>KS5`z=brzER94{fUc_eiRZ(KI9O}%Z zWD^}c90u{4(fqOEh+ppOD#a?iFdAOfgF6g&!(UVJpm)o2F1I4J>si5&`g~ipKk9c# zsp{~9Jj3HI?HTb6p$~Vq6uYWKos0l#*G*mwz%RkyiX~&Cisl6IdjM@E*7nyQIyd4! zC~*&SyaTE1;W)ELLObI?M-cD0#R>f<+wKUTJv8}Jq&n>!54qjbU-?pd_CZem?(W+-y1KStrJeDH2hvx z^&N+NFp-&$7*H^kmTIxfq~eW#lwg<>cujPj*}qR35~ZDDlx2O2Sf`*x*n9fPhlM|Y zNajAH3UPh#S7rL@JW%F%jM15G6zk$wm~uXqO^X}GD2~_U(d;{U8M!*)+dwfph1g>YvaWK zJs80D?xOM1sWxBk!}!1ZNE5)W=#sW1XZsss0%?OH+cvK9N7qs`M4%C3-Cd={58@6$ zP!$o$+bMBck_#tEh;%|l4wgT*T#0UiFUfLl92Fkn2Dtr~1SJSN=sY1pK5o7B*>YL) z+d0c%H9^*i@IxGUwq4Qrl+z+wg9ZTL$=TW2xx1AaUCPU0k;WP2 zs*_nNHeQaF zWI5!K13O8bTbcXij~+U7Xu9>(P9buCSCGKRQo~P9MoVUmg7>xd#%8Hwif(s=?q+-o zXWL(+*l&}42Os@3*?1`#?p(iA+FI&ll< z2V$3-JjhcrdX zosv^1fF7zxX{Y-vVH>{5ri<5ULil4?`{WiK8|9c&^Bhnf(qGkS(mZ8l?!25V{-9UJ z3jl7weVuim!VM_)Fz|JXutzNbdIrEg;QGkJ!WWTJXJl$wb@KO`ik){9ax4B1s&`Z3 z%_K&PzxK)?e68>;5W=Xi{Ockn)@x)~VeUhlXGMSsyXRPg_{P-rwl=v^{e4iYVl$Kg z(uu-be#k@v)4x)Fghq(-yV|cHcMj4L1{j^(dqm>qqN6Cp6mXqWQ*Z@Pf&8e8;*6pU zDNTeJj#L=~e5OSrP~=y2eXy^~s1_G!(0FS3^J7t)a%WG+gmHXv1w1YDR;!?Fhf`}T za{?G&YDLcn15Rs+wXg2Iw_UNxH5I*FTtwZc6ENO!@0@mi2%o z+wRV@_I6rV5I3%tyYtJ_nCZm{@!mmP>9p7xYIM0OtiR#gofVQs% z7SEr?`P7MkFlgj^9pLX_BFiJIBNva>emP1cU)AW#|OQ&)$rF>*>v$@U?+l&g@fkMnVe<1bss zMd9O8{)XC2�Z;UL_<-ncj?y+`X{Vu3I{0^r`Ik#dPrO-h>Wznr^a%or37?2Z46J zbqy#fe^h&tXQm6?v+=er)p-P#{I3Fo%ua2TpO^5W`;Q%oC$#lA)yd7J607%owa376 zfzCLLqisxW{Og@NcOJE8Of+t&9uE%!qP8t73$*g}7()aGL6*r?=W^QMDedrY%p9bGz5LV?p}-d*~-eVi_5+fo`3 zp+jzDJYHWKWv)OSQW!xB#l^ko+)|<Htvv%T|WP%h3Zrccp@Rho6( z?+>uEyvNsPT*X~ro4MIR{moSxGIrlisUB>s^svD3-19uTrK%Yazd087N-vZop%v1_ zb(du48oHYUu1;2ge7VVzs^2+%tc-@kghe@|}}|4VQGgLt>0c>wSCztG=*TcGzM z`hEXf|H?`{fTTbFkLv&bZ};LH{U=uaqXwLNCZ<;w2>XCl{dXwfe^{kOfc`#!7+`S& z0Tr+LIWB%y9k7*%iaXHEe(#5s#i-4zqr|`Ncr2cJ@_?VY!)RvF48%Rd_CR27sE2#o z0{Z7d&Vw3f=<`qg2>?zD_Glm#xAt;}l7pa^*9Jom&Yw%V(Ixh{aXKyKR*`WX`e%)4 z_{h)jlCnnZcAlD~+Nx3wP)MVjMUh>~0X$eb34gz}Swd9M=_2Zq0p;1G#Z45=9SyGn z$DaLQmGEjs$Nh3m`-g6#eA`ZL5-NUP&8K+Gp3n7Cv%mM%48s4Bh5)hs2bmu7`m zx4R9%HURYei`;mZOaTFtwDdq0m7c=eqf0_p>MdbYGlf(LLi9W=5oklfB8Ry=4h>>M&GRq|;)${RAhsgou z7}f*uZf-ouF;KoSMD0=@d>zLPsyxTAUY%5L9!gFTh)u#_@bU1nBHE7-k2HjoXZ~Zc zFW=-KP$gmu7rx$8qa#t0;6#aDohi<`UjonwU(*XWL1yXQ5oA3D2&$Lq=tKjGG;-`U zBwDsQQxP#$Jq3mdpSv?sfkda#c9D={{KWvAr=y$w(d_9gmjy+4(j|kq zmc#%hZ&@WN7G(hk(!hgQV3|I2AOi)_*UWj(s*sRMUdhqQwF0QbZlll+e0@#XEY5Ho z{uM~{JqpXIUzpsnvj#jbpglV9v;QatOT(MN|2JavXQiQP2t&Hqp+1e=`WBb~Wd10t zWh-nIHDpnu|Mm4*6IYvErL>K#TOXF7LT*!jGU7t0A)WNu-;rS@zN2AWYc{R83vob- zkqhwug#hro0i@cEG=k<|qB=(XhJf)?S#`q~*Py%{*>MLNBs;X2KuMa8wLOpmKQFqr zKBrY(Y!??r5Dk6l6}oyUZMl^<%_riJoOZctw{KpwMV9R~_jb&S%GI}(=4~3z@f`^r z=I!YiHW+7vq+J^TTYgV`dvPLxL_iuKL^LkF-2BhtE8KcqyJw6TO(bZ}CSug!7E)Uj zKKI=&WXn}tt4jsxEF9|l<}HC@;GAi7VeUl_{fYC@qwOt^t08FQH3SjGo+Xqeo>iEk z0^8rfA9n4Ss3riKUd5qMKnOkl`4fViY(OvE^yTtm=_$VZNCU78xHf}5D=`E7 zUlRr{jIuU09Y6^;fC2)B%ki}U0z#xBd^2#c+8f6B_mH-kW2QurT1122_@@8nXjZo= za}-?TKDOU~4CUtE@i=CBryki|uf=VUCma?vuc0L88@Z635Q^kN*egw~i65NTP)N<% z?+x3q`n~o$c)fp0b1h?ScujcSZmMowaItdS{VPlf;8rvrUS^e^3{`n%BM`?1aRD-( z17*>JgM;t)J<0m#w6V<5&>5u7ZiWMP&YV#gk9h}6TZu_9ajuJs2yAXCKriJo6is)y zHwM<94qb~hgx1d8XZW?iu0zX1E>t-`45hWqP>A(UBAk2fMAGlHhXrS>iIB6JJ z&e4>)6y#%MH1Y*99+`klLcT?6smFZroA8_TBl-RIOQMtAKNFu|e&7PAfGGQxI=2bh zR6gKiy_^xtC*wL$cE4-P)v7Mo=eG1BeIV4!R+@*0mB)W%^Hl5${2hgD&*cj8as59vRl>vZgAIgX)uD(pz9xAYseqj21r!{&oCYNN!fTn$=O&gI_x^!T5rG69RpW zzF3`c_A1`PDIRchYeV#D{5~)zI8mN=Ewx_v@qaJ%Ktas*8;%T|rK#TxtlxO0VIIBYD?z5tb=QbC$7(v?aAKXa^1TyS zlU-XtTS{9++d$h=&AZ`HnA}>L$1wIU5a_gkopcebadaD@8yXt=9~nhPFvLUjC_*!h z7&zB}$Z7eQ(OU zmR?X9^CA6WNL4H~v4#CC9GqAaHc>aosz>TPt4Z&y7ug&dXSq=iVcqvTDQc zZ_eGC&a&KAtPi1Nb<0%MqjnzlWL_I=7z6dB02X5Sd#zIkzA@7gT>{ z`L%uIRmjM;R8vIb=1Kxo^@6Iyl`>ekY?y~{Mp$duT-dQN`LOF@UcRV57CY?y_6dK+ z^bJ7n?S!?%QbR&RvtgXYk>(6m)rIbVL}+|}9guLCCZ~G?0pX+bpF8eHXoq%q%KRTd z)&B!w{Vy&o0jJ_wJ#q!M{?l^$V`0gYxV4bQfTa?F&%vdxU1Dh(LGo=VEg|_y>K7uu z)BC7W;5w-wKo2q#vfW zhFe@&DiP8tPFHlf&TxnX>X6*-+yU*aBN~GY8c`aChFi~P1%o%r>bR}F^!G)&KQH9p zKKSg+pJ}+>^(|E^t!vGXyqgt)2{dSr2J}4KJ!%rV`)%`rEN$}@AaxJ%U&jU?b*QL6Ad ztFQ+mz{_y~H9;0mt~6Yn2UkiULp>`6IEb*wdLfLYIS_njMDFp4pT*JflL1q%FalyZ@jS`6| zG7%@5@c_~4qm@Va)A8n52FVL|G0!j9)=-w$R7fVNNdHODuJo1e?Y3I(*;GXS52C_= ze9{AHp2<-mw^0*^;kc>X2eDB=tzq~4NUdM)SZdnK0lS4?h<~5tCs0l6lP;7dvy`*d zx#f8O9FH-4x7F9%1P2XqzyCv|u!7kER7IkhuT@muq^DFYG@dkK@%koT*La4?hj9BeT!_GPuWGxgiO;g(X8Q_|iJ;|+1uOM7`J z{8{H{U%~@TUXIb!T!KmQ$JnS$jUaODSQI){C65%S`343&#vRQH-(&VJm4JuF|6XQ#_P}cwYR?)>32sCRZRqjeV6FfAPP$~`bz!-HuNn~N% zix3qDOqR0fEYdt#4BgA@=-l2LhUw^2RZMzZn{UZNAa0g+_fC-$W_@}>SXih^GO-oYHkrh23p zSMqXPZM6Ko{eDa(P?k3?j&cSN+9f||H5B`uy&QO{=_B6z4&>hzo+q@`SOA-^I#wIm ztI;6;>!w8S$B*ZE28V_U`2{!}G`+*@S(_T2?q{_(9jg(L?a2cUwjmF$H2eOq5oAdMYh@I%7wse(0+L^N+J`Jio+(;NB5T9a9(#A;0&3s79 z_K5{OSTgfWOR-_9k{i!R2(=if>^xx}aUlxB{znV<7X$#dHk(W)Pj9#H;`iyX49*0V zWUs;n%$dxZQ@cUbZ7c>T_I(`AtR0I#uf5ZE{OH6V3j`wRv+N4&{FdCclV5?kW~>{?L4OH-P+I(9~ol i&=+*W=R!`*4wN%A?EG<`URD4OGSa{PcZu$uC;tsyOWNW9 literal 0 HcmV?d00001 diff --git a/windows/deploy/images/disk2vhd-gen2.PNG b/windows/deploy/images/disk2vhd-gen2.PNG new file mode 100644 index 0000000000000000000000000000000000000000..7f8d920f9d91075593d5ee726e5f7debe27e709c GIT binary patch literal 19807 zcmbrm2UL^Ywk{l+fRQFjkSd~r(tGdHtD@2a(vePRp;x7YBE2gDij>fMZ_=fO-bsMa z1EIqWetVz)zk8f9&b{Mi43ez%zVGUD&SySzhHxznMUvYzw*deEiL%m*R{#Jm5CFjW zKy(XRbClBd2K#{nd8H@|C?2HSz!vbWWYlE<09Y*W;vE6DOzfnj2LS*`+i(7Gx*ZG5 z0RXi_(ex;j;1${wdLd~Gg7Q=@_56wnVm{ydy{0t z&A*0I~R@e~&N?(x9pH2M9i4LBG zt_C{(B)+LkX5^qIqqnE)7-T+{W522CQvi0!DbfhHr|4 ztT8>(!|i4P#>QjEek9{*Q?1`w z$dr_@WAVvh;OSBI#fRFX_$-~ipfwldxFdgw-%%lL!_sC6|AF7;_7@B(`q?|p(}-Hc zQHfxZ{|nV}pH+Gr1IO!%%n}*Z#s{+}qSY_+Xs*S5;TwWk?ZIb7+hkgSZUl1ofgu;x zP%4?5H69T0TlDPn$P^IDx@1IzGd9^Vcq0hV$@j^cAv4we+Y7!E7xk)sLu&KxwYA%P z#;>u1`ARsdnbv0{o!-5a5LBn`eg1JEW53~jep>LRHv4P)J}*f(0meR>hdD=Q0@XhP zvdhd%i)p*#I&mo^^{2mDuRL^Lm&)Jq?N1khPKdi7w1~U!uDn^kBt#tgzL|b@*19Zl z4bvBh$WODN3blTs4z5!Jpn>OT&dVp31U6-8>pO^3)&$>JIlf6}x zOy0yP%a{tPvu%$5w)K*I_Us+{gHH1wLrCH0Dh=}2f|S2dU4bk>^;FX(^CwhI(AfJ# zZ`spN&jO(*JC4btWUsG1+Tl%y0V1c(#=QRf@S)ThQh#g7>!N0X?&~uVbXIXwYs0ot zvlZuMbYK5fx0Dq_E$y``LX`EE_HlyDrEAWTnxUvf;6qvN1ev+Wm|5-H2-Y8dQ%U-2 zAzpI64FfbfitF(l$3HB>2(IxTv%K!TtU_*z|2}1p<$3^Worc(V@=LPhXk6tMw2O;6 z-y30n6!-nI%6f&3=oi9A04cQ9_hzjK?fHd=AJtyh#jh}}Y0;#Ynm+V%K(k!({6N_l z32pm9dHzX;jgJhw$xHEK#Y-qunO}Kvc z#PXqVV@Jv@mCM1w_~aqd72B$n^Koj3Q}LS&N6$;KO^jFt1UataC-_mh8L|@Z9z*xB zOk?arTJxJV5@^^gwYje@JXuJ~2*jQ|;{rc9wa>MfUiBq~>&@+2rpPxIifkLGG~2U*;nrY@IoI=B>&<@?-C5Mkv#9JD|Dr%UEF_9#E6TK53Pj_$+lrh{WsV*L*_`>&7= zJjZh$S(Lzq^ZDccl~^ft_6+X?aODYdrq z6(WjcB3!*goAxLVNao>be@yJ)_t86-S_PXgH@8M&zTb8EHE5{yEQ*V47q19sKn%$F zTUaL{DV`B;qEe(O3}uB#{hbFpDn;6)4Y(@0&k6p^AiTiJCagPu*SCLIHO=pO)3(3S zW5Lm(>D2Q0O}l;doMqG1QAyga-*G*ni`LQASiJ!$vFof!%h`P4f`&*PLj-r>{pbGY z$*1GSr^nF>tp`{!b^avCWfuuiT74a4R*;rL{I|sYAdk$A;`^ zI@;K+TRqpY+O5oVsY1fJMES853R ztjl3fbo1!|;%8woFWe9kU3<`5I3PB^?}zR(_A9SFL2?NuU7US?-)TNWzYvq0^EK-_4^3kCS8l4!i0pQ~Z;V!7EX18dl>KAg5MG!D+fuAfxCE2Vpl zJ#Ookaq66Q-Z=1>aIv3bHgAGj#Xf$9ysL2sbM4|9q~~xY3Ey|&?G?8CFiqk1c;z6( zk7e5esVv%y*?+TQQ$6)pLzLyq_hI^I5d`r}SfJ@typ!NJx2 ziLjQsvO0N*Xus*hJv>FXJ5>yRM)?qVX?CXy6LHrHXL3E*9xMHV_XORn$Dp|1&L#@{d{`8 zI3&1sjUDdj&v)b{DI@aReY&q+8ZjHfE3#}-54n6YWv9k&!CLxKONABG^?BG+6{U>J+!lgV+gI>t@09&jlP4lb% zm>A*cCO7ChJzx;BYA_M@UZ_=g_gqnvY^Q$3cBe$`b66Y{KutKFkU(%2d(;(PZmwwqMIiqD~M zY)bdeDDVdCnRxd^5D?u!Tmbng3vi!}=;o^(-{}H-ddKzDO(9?ePHtSdQ26)z_7gU$ zos%tR$axknw!*|9?h#YmeIQGdYwYRoa<1g&<~=e5qyJef!s>dDuTM(k>e=3L)HP+y zb;-(Fk}+5`XXkAJ7hiVeO_z3*knqr<`9l%5yMC77+P#Qcr==k1#u|u&OP;gAC#Ne< zwIYUHrI>y|5?FQvHBDxcRoQ)Z_^Ok$rs{WeI4{Ns#z0&R>z=>g5y*unfnSN0vGVq) z7R*71r*DQ=6<*uXRwQ&?>z#W&%1Q<1=4$G|55DUvqOV9LZ=2r{$u)iDE^UkT1pt#z z5mdlK^QE<C2Mqmw zzlb^VYvs3`gqt}@XP#!UUmRxDg@-0-S7@-)P7!jDVe0{Pux#DZga-2^Q<*Tln2DRk z2i!@+jxTHB;&hW9|1lNkNv{(7q`$x?={<#;%iIk5ok6$mk37G@$t?&R*v%sWkH~L^ z3t%0I*G*3SJs30fiB80lbo_!QCnh}Q=LT0=yP4t(TE%{toP?vicSgF_^(V8B@4aGD z&IB?l5E<2s*oUP-UQ|GK*6wVjDo&aDCz=IZMC8!ovRg22?Pgj325BNF%V-5BSqF9v z1Kx1c!Aw##EQ!6!2`~<)@P|}1_ol_gEn~Fw@7?tRi|b+AD^ACTJL$U#wr(Zw(nKeG@i)9?bEzdspl$}JTB~J6Mslf5;6@Bu z0MuV}hcjskOoPILf|wZBy2Z{crAcwB9^o%oM1&gBCdxM7JsBmo8by-)z5n@x7~L@0 z06TFBy7QJ)=ovX4qyY$8lNH0EDphT*A?-MVlfUtGyPSGxWcN*;Rah3x#ZRM2^Zc)a z_3LwHXV61X#VKW|H3)iQ=5H{>Ut5UeN5f^_PCUbd&F}ieIaE=|s|Wua*mHeyJG^T$ z&A3|n##_^UA`$*qHlql_{(j#3J70h_#s5$YZI>vouTN?^r8pd_`US)=0!;7^nWRD4wb05g`415)`X$kc>UX9ENJ6qE#pCRC@29<84h&XY@eYVM= zhvmJWziSWS>e5a}>DkzNzg0QnsOP|r4#yS*{ODaDoz0(dFKG6sULvyxu2Rg(@YeQ0 zOMmGp3NE4DQXE82FmB=jSqm<9DB0AU$0Vb6qqaLCw>wlaUOT{x4b1#z)2FK3_4eGW z=5`>;6$6cG`RLEOG|%l<@BslhrS7oO?%=Qvkqf8%b^2yV-aVfn349?6RyjcW+d+@m z9rGWgJ5ljx9OlOxZ?0~G{Y!t~NVV-WooZ7$rfJ+ZbJsHX^0BK07rf=I=)EGYXyDCW zV#-Xhg!mTcPjjG~M)}y=ZJt$@&d-G|1XMbAX+#7yNaf42HZcUW1A2$?8*F-8x>e03|DYoD7 zLrgJaf^nNyYMheJn;kXkGRgY}`d$uSplyQhS$K4AtV-##X{fghehB(b(Y6h=5Y2k; zOT`!hbsMP<{%Sv$Zgd!){}DY>XR+y`S>aNZY&=8DUp38e{F9CA;3KTo<<+8onSH4^ z05Hsl0s%!7sp+4KAzPm!)^N&59sVfW9u1%Va)%l&Iyt^NVo6)T@P*NEs6WumP(X^* zOXLaKmlAt?mr>fUUpxGvl!R%keeyv2tm4V%6e)d56~|wZTYOXT?w$;PvJ^xMgY$nN z`6c!8O@XJ7BWsM7BoV$hT^8$FZ)ll5tvFW09rjOm26-XXtu^B5oZ6uWCZHF%Ko=1t z+wNqLM3ON>QmLDc#|N8*M^y}$zk~XRx@0;q5UgRhjCHl=%C)ll&hPNetd?`I>#SwF zfzw~Z*eYZ(tp!~#3S5apI?NLMAwNKF{@H?Y-hJ(AhXO)f);#rh=m3CQEz_N{Zryzu z`~*I`hDGJ1v1ailOf~4SpeBwaUw($6A6Gjvy&0ph^+HnMoiQnpEBk!jm1XPrTm`y& zvbK9>7OXvYl&?ua%~u8bgdR;y>|@+|G*|g!5-Ks)-Bn}mC$#HV#2Q^h>-dez{)#Q_ zhr{TZes#)Jp(JC5=6ZKlw1i&KOV*@3i$NTK3E-CzJNaPkhX56PMb#MI>Dm=5C~fPE znCCNGSy3ruVERMvXU(Cw_tyq)Edj{hetKSDZ9xkmN58RnPFuodW@YyL$Qgr4wfOu{ zv8T3gDnz3H8O3#M#Ih(Wx}ZY)sCpXMuzPe}+1mXxdSOO(?z`k4XLgo}x$is%Rp}Yp znD!wB@XgU|3=2)MhGgDjM>-e3E_U{4VzpV++q^!%u|$U*>z%m%QS-N&zu8Ov)hYp9 zd!0At65vJf7bO7X|0*tk)<1;Me-(43V0(v9$ZB6V&rFxW5XYr=JhNhFto{nE9ZH0q|B?%Jkiq z%q^K;xad1AZCZQ&JGDqrJQ(0CJD&wOlx7C^o1r`1M2GvHr8uT#42h?uYiG8XT)nxd zYfB)O>A3ce>g_Dy`&l;!CF1`wl)oFoLQ}k@ZP|8^cT_6bSvEfyr2EaWX;*$w+yecP z<=NqvP{x@nU$@r7y^b#C^O_X2ni**Acjn>mq4@RDPbHGH-6K#E9NoJ{9c`|n0ym!B zth1x((gr1B{SPI=h9i1ZfRXw>Rv!lu&@$-K$Z%iujmVMj2RMbW#kZ@Sr z0vuim4hxMor#1~-5II|13o@DfmHB)xLJYif)0@!F3q3G2Jzcw5S1QN|QQgtRV?Y6# z97!ob{)>H&-SiC&2rU;F zy1fh;8YQ@WyeNSC&Q7H-7b7%MaX*p}%?5T$%X%bZglCIXkPL&A-flWH!3Bk}1hQZa zEM3rstG#Ze)sO2+tSqImM`%b_`AM-m0%C2KM7Sq2SX7P*8R>Wg;U3n7El_;!xwtu;aJx!D4;cZ{NB) zlFP2wB@%o}Lt_Ia#azbHTvC33b_RLl;=s7Qu&cSWLl%(pb=v^&76$|j9P-1IYq0N? zFyg*q--=wosS$(T-V?Om?FP^{-6A)B@MTX1eCfp`k}ryqtihNy?S(uV!0YM;WMMH( z3nn|9K$h}$$UPvZbv+AV=3^~5=J4YOeLrQQ!z*z%sx26ZsyO4)_vxb!N4l{R@fPX; zET#)!_#GZfM*;)1(EL-(S(IYamjL{_`#&I`{}CpwQ*3`%wYNUPg4QZ+cDkLExjBi8 zXQlw@U9CMh7?qA^igPGaV#-7^`O(tR1HPr6Ak7dYc3EF;=1v{|tgjm#=_4ja$+vcN zgV1iZtak=o;Ax}G|5TlCo%gUtgeo!$e}BrZ$}a5ev_7O7D4wK%Of?zaT&(zx2WUyv zea+4vG&h20eS)4~C$lobNt!11e-?jL_vG^a!1q`;;?m}pjch4U@fz)eMoB&4*%^U) z?~miBuCM5A1H~s*Z0rRckQ=UaS(4oQk9xP%H}mhwU?Dz=1=RGbPl_jgE-ooEId`qh zUbKFM5YW=aD-3(sDP!PUNK`|zK4b)GH640JM5gvv)b0~)WGzWfE<{Q7%@yiC3@qhK zsayF$(#4tlH1G>ku#frsr-%3Ps(-jy8_R{2>0dS#Q?LIRik9>gi|$-I#>uj~s3}qh z3+Cbh1XJHcgg*B?6`PHV9a+gJx#|e$trhbSt@h~M7k-8cHnG;cHQ&+Xh>3l>h9Ogm z3NcF*nkYO9?+Ci<>PyRlk(;U;G~a3%%;ks_#5>FCp||{Q7;& z@&$j#$k~Ptdq<11$AV-40#|UVq9R?_dezMRs^sbO3aqVVA3{wWd~gMKF-_wG>`2%s zfyz!mkD5p89~zd#rDI1fSI~I0VTIZ97V_K(kK?l9Tt>;^TE)Yy$+g`Hmd%gAf(uwv zVH&}>ZoU**$9}F^!Ax&d^ij0kxjX5KVUN3^@ucuw-XnBvj*o+%4?S#XxrPPnNFBat zomU?HD?ID8$LkZ@WXJ!9sTC$2a#Uhu7~ zet}D=-pkNB{$SCT2v8L<9v*69_BH3;Fg~Xe!{h}MYZZYwhtYJUnO-raWL$4qgN9#s zrfs45ap1JXOX1S(T34>jUnVxU92wRLYR|qKjlB%Vmzqe zPfOpsIf-c|xgnoMgx*A9o6a94UxNKu7<&)SZeu1v6j9psyn@Eari}W%`sjR3 z-JH_qk_cQK4SdWQDywZa^nxFGkv?Kydy@8v;lW>Rv2F1ZMvkj;P&4=a4bJn)BgSV3 z7k8g??O4Z`Nk$ViJlB1@p=cjxhrcu8{0n|}>(eHoKaT{y4_L9FJF9y^Sl85;Rr7>K zZaQ9a&p99W8^thz4=J6RYXPJi-Fq7ID0b!y=LRTwnZJVpx+3q1eWrR>rg4LrvK3iR zh9cgQQ8RIvz9W*dyYttL17s83xY7VX#D5fj$+P=hpDz$%FSSHj^Hh>eJf+%eC1mu$ zzGdxXrRy%5no?BML4Lhqx3;-yKq*I)GdupWEffg+hYpCMJNu{2hd|$lREU82>bbLS z{%LT=1CvwH@p=`+dU+}-mN+rX#(MKItz4&gG#n+BxgO@|X3;zz&Be7N!L!F#1%&5# zk7E@4NiVW^)~cuw8+=#|9Q{F(92j!PPf`m>5PSd{eheW1zb#=Ox(ZV~O6nNF6iP|x z(|0%XPki?sH1x$rQcHgi6PgAN2QgOvft`qL@5jEc;b*AvZ8=`kER|BH>HNs1JpN(5x>=yS`$TMu8YtoEi1hOQ*mN|{_Wv2GjGE9`dY5+4TYKCEc@Id%6WgP%UWv=o>5 z%Wr~7EF}8qMdq>{AGYB{xbWjzb(4>n?8fR$D&6$Kk6U;!X+%7H@ltZmXm@uve_^2z zN00=wj|z<&THcgkI)AM__d8!x;)INjUjO`Szss4L4cOI{f(N^Q3Iy0)A_6H*G5bF_ zG_1QzH1+L5fqU>4*n4ZYV{T5Ez&4XBmr-K6g70~2%NgBSPOgXy^SL7XtQFHwLxw-t zMGkl=m!)C4bRmbxqm4;psmt{4Vx~eooqc0#6IuGx3wtU9rm%b67SzE=`24@B^s+Ts zVB9PQOn)Q3>Nh)kbDVl)vx@EmPq64l68olEJ@hu>ul?-rdT#dftw&7dKgKo+^#5vf z0f2uq7oYaS{vjuNT-90vs#_$?f=HHsadi2w>KJ<*L&z@XtEsf5VU2`m#-uz+mya^`Xa*%)9g2| zelCC`K_EGRAxPTnj5_VfyEDIT_Cn4#w0>=_i_!5^bWm z=*oFvCE-Ry+$Kp=kGp!sG@zF_v-z>3>nnF{KpHK4M?tF7^i7;@?#V85*c z?MC)embLfiuCIu$cEm@eIGPL7h(jimR077@WWI#k^VC}lRkE$z?*6;%RJq15ay)th zO~$a| zl0Ta=14tHs6&pA~sFKwrmcow**$|$vb;dlO>^l4Eq?EJpy5lgH;g83oir+H`j1wKI zv{mw=|n{|GjVdAFk%VixZEiiWkmHuq^|t&V5v&P6!8IWA*4Th48N{nU=9p zL3%^)ORO_0t+-fvMu?-WIpgZIeRM;J(g(J0GUBUA*pIeW!lkhL>G~gyxUT)69gqjj zS!a%nw7f0-5@|8v8{(T35bz`4UX&bYo81YwtJGCuK|F)3$b(X7vsBP87AvYVM> z0|O4KyUxRceHqM{DM$VrzU;hPa^|%(qZ+m~4 z24Zw7C+r$KC6zIORZ?wNcikM>+NppM=vb7_d2j$4$afO*GK|2ndH*&I89HN{8ZL?% zIom_QF!0SIRPRfpNB%Rq7Y$?RCui{-Syh#CZasBvwI?1JfzmxM0_-%D9&UNMK}R&~ zDwThBDhu9O`vknZxriwxdd(%}ewr}wQkR-r-10t<_+809mWy-nPrwjjl-ry-W!L1= z+t)mPO`i>HP~Kvp@{Dtygn4@JWxdzhve}wCT526Vb(koTuJLPJFYH!yrH-uVl#oW& z9(*k_Npe#byPScNd^wYoY;}(e6%Map_2XR&sSU5T`8O`B14gt{k>ANo=?pT2)M}bC zG&g&K31>VS<~b~TOqrH(V~nKy;weUEMb8(%7(l=vGbdA~Y9#H-o32UZq$+B~RMyg$ z)tI^Y^AJw%uiP z)bxDe1p1DC-JfR&IkQ}r4qUg=dRRMx+QrVyFL^y8lxxMm-3J;SRF+=AY*Cb3l22W0 z{h&0}%AO3Oc~zAaAx|O*{4&dt2hb`oJAOinWZ93Q@e-y<+^+5(pRZV*0OppoqyqNm z?ZlgS$O@E8y|}WsDm4w9csA=40)fpR>3?)7KMi>q5xPYU7srsIR<@Q%_kzt0It2;{UP>sWl;E1Ss#9w_h8Wzz)I6QMcu}W(v;i`5mWKqY zbi=@^rNJ+;qUmFFnHj$DN&mBN8~Q*Z`}_VS-Ul|S2D4b(Zbpmxqe43OjKPcB)u0Kl zbko+E3Z7!OtGFwc!g!<5X>z`TrmUtkmJv@+t?;OONS?BGK;%zL_G?p1@Qqz;j;j zu`LZXWinFQZg|wly|&yPU@i1UJTEjdLQ{Be_EEjR4Fo?yiB_AnD;K<^WvIW-awM`^ z&M!y-Y*5b72S4f$bb6Jus|K$9@pT93aZqM~;BX_5LOmyg(ai0@i*XFf^ z<*^K1e4S(>w@~<8EYlchw0+Xr{^!cNnx_#Cc)k^p|0(a~F4v$aV<(kh%0!Im6_Eix9yjT4rz)VLsF2wNEYm$(BaUPPrOe1J=6apN`i$p2VHs*( zvTCa5)9jSED%LuOInH1i$jgD3ZzLx)_nfC8@LfYG`ZBVZf>GEo@_nW+STIXPt#2bjyJVjrE0lUeCwt@~HPe1O;udMx!=QB)w%v!0Wg=le2gW{y zdDRZc_+n^PvGgrvSKs!l)uZe^XI?2;pqg@4LK@oq$tj`H)s- zbXqZ2su@dikWm`QPZBgnW)Z7Bw|Nq#mV%$jf-fm!$&R8urzS$P9!H7~O(po$*3x1H zAz#-CMA|%j0(HR4wMcKznhtd#ou96d&-I$7N}0hrJn-mcrdHb&E#Jy)Eg#h^`RGH{5sxHn8Yr;zd2dK{Nd;>?Dpv~B5k)0_tZb@;iD$t12wehz&f{W^}ckF__dGxRwU zE~*YJ5cSR@=$9nONos&y3hLi!xP1)XY6O=1;L+C!J-o*P(r1{Kd~Q8 zz1@xGV#9OyC@xF7W;Nwq`Rg+yNTj-Paf{@SP zLs1eHe@+my5@eHxN^k5InAC?YK26~=5ib!^_$>8X4*5mXu-~Emb!-ej;f`Rm zW^A(pHseM#=14zij_ItmPtP+A2b62gz9fDa+RH6Qkr8jpGI?6V_HMWa@2;=A)bKlG zCrKtMxKKN)(sdq3NUDLWX+b&d3&Yjg=@$`I#0dP&_kF)`357MYIiE~Ebnp4Q9}|-k zikfx0Q@4G&;`t(vkY_)p%+5J3w|e`}Im|qKx8t~Mk6F=alkpAX?KK3Q zdih>yDa2@(JJ(zLV`rABcl=#9ctkQDr46@#fIV9!SS9-mRBgXpzp5uRmLFAf<3J>~ zU=7VL>m#R=Ytj4+Ti4&^4qsm-#MWUi1w7%V`6t1^?}kFb<_P>pjQP`_FoJEus2k=K z`!W$!ctT})`VaTe_wHLqTO}N9n+Zic@MyRLlfG76p5;oz35fTe!X{lu1w>N-J?7k! zyx}c{;G^dr;CsO3ZNsT!N-fETdXsOT9JN(Day$)ERc#w&)S)wGtV4mi>n#;mX>_>9 zUCK{5tYS-TC5r9KKAaxs6?lKExa!N5V~jKdU5+_;sjPX^pPOWZ=J)r@+=el4@W9|E zfL3|_9eWZ%S$4x3r`B-%RAH|=X)K*mK=sfl`yvbeU7miLmbSIb$(zYJaa`We=)$!> zqe6mZNeRTpwZb(&0eqW?NBoE9Ipl>52Q=C}Qev5|uEDQ!0hTSUa*CKQU0WYYwnb&x z`a4XYPg-mpWq$FlHEdddk%dQH>l`QKdRcfF;#Ga%KW^PY=+`pQFVjT5!UjD&4}P;; zrtmmI`wY^*K?iKXD;!Xm)T)dHDW*utnsC|BWbE_Z;>CQaXmUAi>Xv-$$~e5u z(Ntz948l+pwXS1xV5;Xg>9{47AGVS=`8})&=m`(S0*J4nJ1jt*p_^Sow@xgZ%zk<#cVgZt zn-m$TtuM^|{?P3WC;0er%Z|`pl1;xo3sahm(JS+#j!45XlJ}o$pCI*(R)`g!T7I48 zv%NbwccFtk8kJr6(7@Ms6l|xQ+FvhzD2YJij!6#45wX(ul9_C^Kkhg4GZyHr;TIg@ z%wk;-K3=<3bL$%=@Q|t1X}=THEx%|i6{4xZZqB%Cp3|wH<%Nfmn*&Zo4jGT>dzA`| z6hwL4m9&4qyESn%>EvpTY>G?dV9qFQj@cOUWI3%wrS;x6u+IOJxx5AX{zsvU(4w0` ztE=^8-?2ER_3ngpOs$zu7=)!a)|y1&8C4sytdA378t8vXE-3<&j$K-vGr9<5<_K|d zUh)8@h0g$^fkRRbxsBPrm)YQ7e*UH6@p}b2#IGu{mcN;3jV8~K+RSQnZ%u0;M6h|B zuX^!myqPQ7XPDQ2#7~rju1|DNvT($TITD+?uxI*pOFrB>sSp@GP7v03$f%XHwBIpM z>4N6&5TLHq&5nI~Z#|w87-B%=&7;s}THE=SlUtvBmc-$)3)c(eBG;biz%H;_@t#;h zILKvfOD>aDa#?=hMfh%aRlG4_tn260xgrve2_KS9(ax#^oHv+f#mwbJTejahec7WL zmsZ%LFT47HUi9Z$$t4;9PB~tl-<$33oMt5tX~4%{PZI3 z-D}f#Z!5eI-)F8lZ?c^17`{>bWv12%|9i^mLA36$U(4i&w>Ob&fTbDs`NY3@N`O+j zhg7$RRe5N*cyZE{mk0#p>k`wd{jj_Nz<`Bnq}uqIW5mkhKy(@j*&;a*&*c5nO*&=o zYN189--;#k1C5;3Gqi{LK0WEyjwY^6N)=hnDNAO@76RUg?Ks~U-!OiRGG;qUU`ikg zy4s}iVEP8fE=I1fNJ>q)zFQiIrUe%HPm*1DQr&cW#la-1z@w<{ee`qAbAW0-dI3Y~ zcN}y5`-KrGNeVXO&Vn&4UP+x8KS~G+rFYye>5;MkQzfl_69Jx1`%Vvc%?m~QE{C*j zIWraKNDOWtw~)h4Y)qH_5NiA&4yFR)XW5BTffzl6P0APj&zXdS&D}~# zGt~-B5>$t-NpOMNe9a3#-G8+^Lu*#1OanKOc}pjE>(jGleTeG|($bw9v~4StE%;<~ z5&12!&HUK0JW&NsT$R1ro&g;b6SLh1_F4T$g2whFYd#7eYH!V4nzy!cGE`@8Jn9^{ ziw=$sH1>4ZPT|gtj2k)0bn>{jrJFb7azu}_&Gy#VTD8hd8GnOHc#-{GOoaP}5(FpS z2)-;{n^!3axg@fYxe%$SN&+@BtFs=BQiK$xf2_NX_97I-Nd7ri7WKz(PJ|TLCa0kS zi*Y(++kX(L013NDj16iBm&B74Rmt3^HB*iHG`Ryy$Nhs}q|pv&Aj8|oiWjh2KI_gC zYumL!J-;#=-z8*USG0goQ?d7xBpn!;%~s>*8J4%wdq+LRWXwq{LjK{t!nOd|u;^5U zuEAD|(1RvSZ6x>K4qWbFJJ`*ZP#EkG-Bp;T${AE|1*-vjZ!n{LZabrLQx92EW;Gb*BuZFn8y6*K2e0x@a`m`Qkmw@${&b; zPGIe=6oJPs=Z#U!H#V$&Pz5n2!#J9wDh44_@lEw*fbU)vY=S!G0SI00o@8&)` zT3TkRojMffu|lCvbbn!KxiBBm}8}xheGR z8Y-RRe{U1iakmpFbtlMWUusQ?xl*7bjWby=;coYSaaxIeMJ~AhS}DpfLdPD|oFYq> z-DB!5>sD>o!D)rRII0z=Clred#j`?ZCn>!fclFO1dcHWOp(Gm$voXq(hoZ|iN+@V(yPFkzJecPH}u`*b_xY2xYL}a|P z;ZDesxD^>PvFa$tKVH(6nBhsPnP%K&xQ)t!fa$3TTLsI^vKjdI5FghH;)IN`rk^hx8DiNiFf>jLF9ZOV=^5Oo^)eWUtOPDIdnj+HBXa4kcJ&9!jRS zw}Q*#f*&J6=@kJCoi6#Rkf#}?%*bC@H_ySwfU#CX)u5UilU^jZKx^$rHR45kK1>XG zf=KTwDGoHGg*yBmpf4x0CsAObT9*r2T8`w3(FnP*{6(g%IqasmB1N;Ew*-Nm6!*B= z5-(~Gu!cP+W&%@%=MooPUnwkf;5A^BRa?1H+J$w=TzqLP%(Dlha1iIZ{=do*l>_#-Y@$`eS^xR(UR#_i5Uic5Rq5C~YQWt8&*|6Erq7XL+ ztVQdg(P-#4?cfqDoG2^;Z2^&kn;jhCd*t=o9H0`fTiC5)D~e*(^7GXo#Rl$M4(t}j zUk;6;By^hGiq|G{jq;4&IoI48M2C^qA-QRAb%^gledr(OPYRE;oCQf%v2l}A7 zO3GfV&2<&aEzTNlv6ln|Y73o{h z!S1zLj=e%{cfBK708JKSaC|V24}SE*7VGSqpRv@o+2IIC>Yt7Vz`6gLNdm9U?QC0 z%E3`T>f*&{P$C@#wZvQU36v(vh#-E}d(N%?#EkbbZ@aBtEuT9`WJWWkst`gRM#?v6 zaa1=a?D4KiFD12KAicj)S1Q(4=m#8;Wb7jikJ^%RBfFQk%dS;WpZIVzOZYz}J z`1oA2%*~XEGu1~?O1)0km4U7$kCIcL!eqHKxjZsbVv-gFW6jDIyR)c_cr|Ed16H-c z;UJshMKQt0MXzQvmR?zJF@Ks6m6Uy8RyB_k?R(F)(H(MntLd8BfR!q!j4E=8vtdl( zv@ABc#gc+c7P|idoi0K5u{+3*%m!4sna;t>rKF7bh)6Zge_}NNm!A*R7AaFzw0~Aa z_#Gxn>t{Z7@9eYhPx2JAC^?#QYSsZz{wM6HV_^xVts*;|@w0Bs0iW9O$p2tmRd@R&>0&=2LZdGAifA6IUFcSD zKC057S7`6Ddr}rA9cji@Hj)7jq59cp30RT80pTHso;;RY(UIf353U42YcJ{RmszFb zKg+Ryf3jM#hJZ)+)|tZ%wjwR!9~hr&hkogzE=LPy!^l#xd+OaJvn$nw-P5!8feQp( z@?Yh(s48pYOw86x5j$*b*BRLk`H^pSn7#LVBc~+>OhMRe`0R&B-d9HLJk}p-$u`^v zX;G%JWU=a#4XDA{A}&Y1LmABXQT1+IYqO-4*LFo_W1B~JEVtx3vDkh)LZD}jcKpf= z%Nkp=OY6?|x7Bq{o-yv*J>3a%jfL6%Y|$nT=Ds|)l%7jG=6bI>4o=8)tREyx zMXv@)8O2Yh@1sOABg@RK)+pzd-_gE1p#KQPx# z`J4bDAqVk|wBZBCSGG^WLc3Q9Ngt{$bM z+P;;^u=j|TpBIM8_d48}7GS-4IMxp@JxSwEIT(D&;%?wzI+Rq~^~A1uvr%bf&unlC zs&|VxlsP_pcSWg7^4{lK#CfrqUH0ktftzkSQ*kR*Bmqo`f5Y_8o?@`VQX1g5Up z_a)hlG`k8$S>0HB(1KJ+tA08+e^FSpgaw_pok7~Ov&5s1!U!Tj20eI!5tecL8q(mn z195WBvA7+K7X9j)+3rK}j72Aq=b*z7#NOfl_yxZ_Wpxr=+1pIJhN$IVs*o(BmHVGj znmJkFyAh`f!kGCSk*_e7Pj7~T8JI`JL%ddg3>-_tO~g8JMNVf;om3)kDQH6MH*g&( zfCr{eyp@I$Mz?C+gS0=}7--V3Z?gE!fAXj+Hw_#a;4^4{On!1Ge9WY)>tb6w;%0ie zW6q+RC6aR;?%QL=c(=S5Z)$3`4hn)~u!#)|V1-nxuIF)umJvD#_NS(&Ei|eA;f8UO zhq<2~r|=yckE45AOTs^FXZGRCuLo7(w*2v$8CIQ&AwJO;k676g(o0f1KkB)7+YFmA zGMvFjYA;!k3JA8pi-qctT|s>Wa0Hckp3Jo&MjF;H^y?e7j01L1IBT-@lWU=LSthVL zxmr$RIlE8HZ((RqNux01M*0)_=TyV0$$2t1)w9M)9O_1`R%qgz2 zp%|Q4--mPzX{FFSUnEkZx}<~VF)Z(srk-3E)|*3h1YIyZll;)f@sL9yzdPN;?n~1- z1XQS5=&ueI3HXp<+#^{OB(nRsD0uGf^hh)19BzkC9;xW$RGo;ogM%KlF0ZkOzuJea zqv7jdm)XS=rkSS&m+6f>?xf#C19*dAWVZx$LYl65+s0oKmpwOb)GW89?%Oy$0|yt~ zn9c~7cCMR$h>-m+PVmNb68s;T&i}Ba|5rs`rGGH~yPQtD=>OC7l28jsjg`B{aeq!? zm9pytWK}-_z{I)k40w_N#%3z0u~=GJQO_rfyXiL zO!M9|09sB;;ZpyFz8Z69Y)ET&|%ZHL4MqN`(WcJg)D@5JR^z#>S z0KY~Cf!%s4PF&-8mWk%JDXJ4YQ2Z=LRU<@_ns4WrD-t;PA%CVcU@Gmy|*mpXOK z>(jES+9m#3_$;$P!WXogSDKtgwkk66gvjFZP>3#x!el_P`^&HW~r_*h{EU-^}UKsvD-sK|479DNPLM z$gIpZP$(#sL-#3#?TQN(@7?=JSrxVF4kZOpb1a?hn#TGi5EF24^(B#`-S(a-XCxR$ z3W>~i+w@!wLk}zIFCUaJKVu{kip#P4C>h}=vY>(dvvYoTQ2vVZkd4YEBLOc5A~~F# z^fbFxi>C(pG;e@m5YH}HAv8aMgX4oGJZ8ff#Lo}7AK^ucs_kFY+)M7~O#nSE( zipb8B`npyjeD<$KuuA(bEtH-Edwj~`pAz1En$OeXx?C9D@lVoG_c>dWL}=2B6~aXziVoG0={5^>hK?Mk=#EJiM02e!zN z@Hk#NUJl7GQW<0?zD#ynY2w%?!0_(3%m3=-N~4;(f^djMt3im+#tI0uV6lPV0%esV zR2B;cw1^1>i2(|-DaH~Y5D{5bwxR?{*jkA~6bJ<(79p&WC1EKFK|nxBKoTW}#sm=h z68L3LdrtrK*L~-`cW36zy?5@NnQyMh$GE7MRq~D7EX!PU>MkPw_9gB}L00lTUt8on zJEz!&AQ*jW9>|Kh$`7y2ghM#! znnA9XfQVJs`pr3MdYi@7&Y`*Nlej}Sq3LtA^xW8rMJi@;W@P0dk#impNM+DskCNv|7j@jlGG8r6rn%a8 zqAV!x>Iv$rogEpN9x2-g%}~hs4XCNnDv2B1Z{&Hp z!UHg!MpvF^kY)?i?xkd?L&RZU!oN4N8Y>5bm`f!#A`>Db^qXpU=N^R{QXTbQVNW_l z=^20rNCk?Ba0PIos~zKO0HWY<3crY;noy@WD(O4mUV`pv%0s1}?I_USf_WlO$S~9T zwXHz3&GI0NQxfm766$NY)3g5zGiOz1g*=dwu%p!K0?2E-{DgM>V|LD_>JYhjm?OcN z+6gEBf6^*QKx}}2ba3PkHL&#^LiC^Zl@ETdxj;Y9FT^LpYGXEG1PY8TB3Rrxu%hfT zz{~iRZ38sN08S-bdu861F!;+P6Q2j5gBK$Q7t{hDUR4fXweKitPkd_cp%er%|I~8s zpl?T_7t9mDXQ{Tgx&Rq6@;1uFU1`Z3mr*E+Jy7d=I(BQo#_L;^SbMQn2^f1OQV-?? zZU>KePTuZW?>epWopGad`dZtIXO{vpwPpI^a71{h7X*tBR#3+hl%Za^+I#>`U5z2EY0n!U-_wMOEjCL(hY6T&AmaK4Gq z6JI@!iHMzzt6w=d2Zxz8AJFCZ4(Ly;eKp6YWcR;+IpF&BTJ)HYrkFtJ8onyYvv0Eb-Pf5eaLY^RU*}BktA7h#1~lXQWk3}^typN>n&sufLas% zO(<3Kv(Fx@osM;0yib~F5pb%COf4GoxVsTe=DZ(tfbFi{c21%qEQ>v7eHq$B#RSp} z1LnE-pM@Hb3#M-~;Eo@K&kCHV+xyzvt^!Mr+&$Rgz=`ZOrSa4&rUf9V~bHWOC2 zt1rYHaX+7!+K|-Viq69)Z|J;$5}NAVG-|~VTSqsIiMDNMR{6OTG5gMpoPLd2gb|l? zxC&d^17s}IIT}jLBW(qe!T=BK6w7W^6k9~nK44Y*kX{dhKTWQC8{df13n_nGCT)gAG+x7N2`r+EwT><;b63uQz5-M|sYZ4VR zNIH;3H1pAE=0v=l?|tDtDla!8cUKfHjwsZp1W(a}b#hADTXB817Cs!{N|@_;^#GQY zNd+7FQfa9EmCbh(P$=!R=}cNC9l%nIt^F`fB|^#uWT)le<}qke{dG>)N>?TWSYN`H(lN9^_iUti~aXHg7q}~ zKUEog@U<7Qz9ZQN$0h)mKgbO)2>h>gpBpZ_GADmcjXRRQAH_-6l=nL7h&)p1fJyud D{tvmz literal 0 HcmV?d00001 diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 8a5496b4b3..8673e4fc15 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -48,7 +48,7 @@ The following topics and procedures are provided in this guide. An estimate of t
[Configure the PoC environment](#configure-the-poc-environment)Parent topic for procedures.
[Verify support and install Hyper-V](#verify-support-and-install-hyper-v)Verify that installation of Hyper-V is supported, and install the Hyper-V server role.10 minutes
[Download VHD and ISO files](#download-vhd-and-iso-files)Download evaluation versions of Windows Server 2012 R2 and Windows 10 and prepare these files to be used on the Hyper-V host.30 minutes -
[Convert PC to VHD](#convert-pc-to-vhd)Convert a physical computer on your network to a VHDX file and prepare it to be used on the Hyper-V host.30 minutes +
[Convert PC to VM](#convert-pc-to-vm)Convert a physical computer on your network to a VM hosted in Hyper-V.30 minutes
[Resize VHD](#resize-vhd)Increase the storage capacity for one of the Windows Server VMs.5 minutes
[Configure Hyper-V](#configure-hyper-v)Create virtual switches, determine available RAM for virtual machines, and add virtual machines.15 minutes
[Configure VHDs](#configure-vhds)Start virtual machines and configure all services and settings.60 minutes @@ -258,32 +258,137 @@ w10-enterprise.iso -### Convert PC to VHD +### Convert PC to VM -If you do not have a PC available to convert to VHD, see [Appendix E: Create PC1 VM](#appendix-e-create-pc1-vm). +If you do not have a PC available to convert to VM, see [Appendix E: Create PC1 VM](#appendix-e-create-pc1-vm). -**Important**: Before you convert a PC to VHD, verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. After converting the computer to a VM, you must be able to sign in on this VM with local administrator privileges, while disconnected from the corporate network. +If you have a PC available to convert to VM: -#### Client computer requirements for this lab: +1. Verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights, if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. After converting the computer to a VM, you must be able to sign in on this VM with local administrator privileges, while disconnected from the corporate network. +2. Determine the VM generation that is required. See below. +3. Based on the VM generation, perform the appropriate conversion procedure. -1. You must use a PC that is assigned a system/boot drive letter of **C**. Computers with other configurations can also be upgraded using PC refresh and replace scenarios, but these systems require more advanced deployment task sequences than the sample ones used in this lab. If the computer has multiple hard drives, then only choose the **C** drive for conversion. -2. If the PC is running Windows 7, then it must use the Master Boot Record (MBR) method for storing partition information, not the GUID Partition Table (GPT) method. This is because a generation 2 VM is required to support GPT, and Windows 7 is not supported in Hyper-V as a generation 2 VM. Alternatively, you can convert the VHD to use MBR, but this procedure is complex. If you must create a bootable generation 1 VHD from a physical host that uses GPT, see [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr) - >To determine the storage method on a computer running Windows 7, open a command prompt and type **DISKPART**, then type **list disk**. Disks that use GPT will have an asterisk under **Gpt** in the command output. If the computer is running Windows 8 or a later OS, you can also type **Get-Disk** at an elevated Windows PowerShell prompt to identify the partition style. -3. If the PC is running Windows 8 or later and uses the GPT method for storing partition information, then you must create a generation 2 VM to mirror the PC in Hyper-V. +#### Determine VM generation -#### To convert a PC to VHD: +When creating a VM in Hyper-V, you must specify either generation 1 or generation 2. The following table describes requirements for these two types of VMs. + +
+ + + + + + + + + + + + + + + + + + + + +
GenerationArchitectureOperating systemPartition style
Generation 132-bit or 64-bitWindows 7 or laterMBR
Generation 264-bitWindows 8 or laterMBR or GPT
+ +
+ +To determine the OS and architecture of a PC, type **systeminfo** at a command prompt and review the output next to **OS Name** and **System Type**. + +To determine the partition style, open a Windows PowerShell prompt on the PC and type the following command: + +
+Get-WmiObject -Class Win32_DiskPartition | Select-Object -Property SystemName,Caption,Type
+
+ +If the **Type** column does not indicate GPT, then the disk partition format is MBR ("Installable File System" = MBR). + +>On a computer running Windows 8 or later, you can also type **Get-Disk** at a Windows PowerShell prompt to discover the partition style. The default output of this cmdlet displays the partition style for all attached disks. + +**Choosing a VM generation** + +The following table displays the Hyper-V VM generation to choose based on the OS, architecture, and partition style. Links to procedures to create the corresponding VMs are included. + +
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
OSPartition styleArchitectureVM generationProcedures
Windows 7MBR321A
641A
GPT32N/AN/A
641C, A
Windows 8 or laterMBR321A
641, 2A
GPT321C, A
642B
+ +
+ +>If the PC is running Windows 7, it can only be converted and hosted in Hyper-V as a generation 1 VM. If the Windows 7 PC is also using a GPT partition style, the disk contents must be captured and then used to create a VHD with the MBR partition style. If this is required, see [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr). +>
If the PC is running Windows 8 or later and uses the GPT partition style, you can capture the disk image and create a generation 2 VM. To do this, you must temporarily mount the EFI system partition which is a simple procedure using the mountvol command. +>
If the PC is using an MBR partition style, you can convert the disk to VHD and use it to create a generation 1 VM. If you use the Disk2VHD tool described in this guide, it is not necessary to mount the MBR system partition, but it is still necessary to capture it. + +#### Prepare a generation 1 VM 1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy **disk2vhd.exe** to a flash drive or other location that is accessible from the computer you wish to convert. >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media such as a USB drive. 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select the checkboxes next to the **C:\** and the **system reserved** (BIOS/MBR) volumes. The system volume is not assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label similar to **\\?\Volume{**. See the following example. **Important**: You must include the system volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, then the computer is using the GPT partition method. In this case, see the second item in the [requirements](#client-computer-requirements-for-this-lab) list in this section for more information. +3. Select the checkboxes next to the **C:\** and the **system reserved** (BIOS/MBR) volumes. The system volume is not assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label similar to **\\?\Volume{**. See the following example. **Important**: You must include the system volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, then the computer is likely to be using the GPT partition style. In this case, see [Determine VM generation](#determine-vm-generation). 4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\w7.vhdx in the following example) and click **Create**. Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. See the following example: ![disk2vhd](images/disk2vhd.png) - 5. Click **Create** to start creating a VHDX file. >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. @@ -298,6 +403,43 @@ If you do not have a PC available to convert to VHD, see [Appendix E: Create PC1 w7.VHDX +#### Prepare a generation 2 VM + +1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy **disk2vhd.exe** to a flash drive or other location that is accessible from the computer you wish to convert. + + >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media such as a USB drive. + +2. On the computer you wish to convert, open an elevated command prompt and type the following command: + +
+    mountvol s: /s
+    
+ + >This command temporarily assigns a drive letter of S to the system volume and mounts it. If the letter S is already assigned to a different volume on the computer, then choose one that is available (ex: mountvol z: /s). + +2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. +3. Select the checkboxes next to the **C:\** and the **S:\** volumes, and clear the **Use Volume Shadow Copy checkbox**. Volume shadow copy will not work if the EFI system partition is selected. + + **Important**: You must include the EFI system partition in order to create a bootable VHD. The Windows RE tools partition is not requried, but it can also be converted if desired. + +4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\PC1.vhdx in the following example) and click **Create**. Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. See the following example: + + ![disk2vhd](images/disk2vhd-gen2.png) + +5. Click **Create** to start creating a VHDX file. + + >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. + +6. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (PC1.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: + +
+    C:\vhd>dir /B
+    2012R2-poc-1.vhd
+    2012R2-poc-2.vhd
+    w10-enterprise.iso
+    PC1.VHDX
+    
+ ### Resize VHD The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 80GB to support installing imaging tools and storing OS images. @@ -360,7 +502,7 @@ As mentioned previously: instructions to "type" commands provided in this guide In this example, VMs can use a maximum of 2700 MB of RAM each, to run four VMs simultaneously. -4. At the elevated Windows PowerShell prompt, type the following command to create three new VMs. The fourth VM will be added later. +4. At the elevated Windows PowerShell prompt, type the following command to create two new VMs. Other VMs will be added later. >**Important**: Replace the value of 2700MB for $maxRAM in the first command below with the RAM value that you calculated in the previous step.
@@ -372,13 +514,28 @@ As mentioned previously: instructions to "type" commands provided in this guide
     Add-VMNetworkAdapter -VMName "SRV1" -SwitchName "poc-external"
     Set-VMMemory -VMName "SRV1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 80
     Enable-VMIntegrationService -Name "Guest Service Interface" -VMName SRV1
-    New-VM -Name "PC1" -VHDPath c:\vhd\w7.vhdx -SwitchName poc-internal
-    Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20
-    Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
     
**Note**: The RAM values assigned to VMs in this step are not permanent, and can be easily increased or decreased later if needed to address performance issues. +5. Using the same elevated Windows PowerShell prompt that was used in the previous step, type one of the following sets of commands, depending on the type of VM that was prepared in the [Determine VM generation](#determine-vm-generation) section, either generation 1 or generation 2. + + To create a generation 1 VM: + +
+    New-VM -Name "PC1" -VHDPath c:\vhd\w7.vhdx -SwitchName poc-internal
+    Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20
+    Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
+    
+ + To create a generation 2 VM: + +
+    New-VM -Name "PC1" -Generation 2 -VHDPath c:\vhd\PC1.vhdx -SwitchName poc-internal
+    Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20
+    Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
+    
+ ### Configure VMs 1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first VM by typing the following command: @@ -773,9 +930,47 @@ $NetworkAdapterConfiguration = gwmi Win32_NetworkAdapterConfiguration -filter $f ## Appendix C: Convert GPT to MBR +This appendix provides a procedure to convert physical disk that is using the GPT partition style to a VHD that can be used to create a generation 1 VM in Hyper-V. Because generation 1 VMs require an MBR partition style, the physical disk is saved and then converted. + >Conversion of a disk directly from GPT to MBR without data loss is not possible without the use of external, specialized applications and tools. However, it is possible to create an image of the GPT disk and then restore this image to an MBR disk using standard tools. At a high level, this can be done by obtaining an image of the source drive, creating a blank MBR-formatted disk, applying the source drive image to the MBR disk, and then configuring the MBR disk to boot the applied image. This procedure is described below: -First I capture a VSS image of the GPT disk: +1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy **disk2vhd.exe** to a flash drive or other location that is accessible from the computer you wish to convert. + + >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media such as a USB drive. + +2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. +3. Select the checkbox next to the **C:\** volume. On a computer using the GPT partition style, the system volume will not be displayed in the Disk2VHD tool. +4. Specify a location to save the resulting VHDX file (F:\VHD\w7-convert.vhdx in the following example) and click **Create**. See the following example: + + ![disk2vhd](images/disk2vhd-convert.png) + +5. Click **Create** to start creating a VHDX file. + + >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. + + +--here is where I need to insert the procedure to convert this to a bootable disk, given a vhdx file. + +How shall I do this? + + + +6. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (w7.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: + +
+    C:\vhd>dir /B
+    2012R2-poc-1.vhd
+    2012R2-poc-2.vhd
+    w10-enterprise.iso
+    w7.VHDX
+    
+ + +First I capture a VSS image of the GPT disk using disk2vhd + +Then I create a new VHD using the command below, attach both, robocopy from one to the other, detach the original and load the second. + + 1. Create VHD (function thanks to Senthil Rajaram). @@ -786,6 +981,9 @@ function CreateVHD ($VHDPath, $Size) Mount-VHD -Passthru | ` get-disk -number {$_.DiskNumber} | ` Initialize-Disk -PartitionStyle MBR -PassThru | ` + New-Partition -Size 100MB -AssignDriveLetter:$False -MbrType FAT32 -IsActive | ` + Format-Volume -Confirm:$false -FileSystem FAT32 -force | ` + get-partition | ` New-Partition -UseMaximumSize -AssignDriveLetter:$False -MbrType IFS | ` Format-Volume -Confirm:$false -FileSystem NTFS -force | ` get-partition | ` From ed7e43ca37fd462d0e0856e428517565c75c1de1 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 11:00:25 -0800 Subject: [PATCH 026/210] trying to commit --- windows/deploy/windows-10-poc.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 8673e4fc15..c126583569 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -686,6 +686,7 @@ As mentioned previously: instructions to "type" commands provided in this guide Dc Site Name: Default-First-Site-Name Our Site Name: Default-First-Site-Name Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000 + >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. From d368c488ffbf6652b4ffe9f031b9f11637599e34 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 11:31:13 -0800 Subject: [PATCH 027/210] stupid error.. --- windows/deploy/windows-10-poc.md | 9 ++++----- 1 file changed, 4 insertions(+), 5 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index c126583569..c6ea9a2de3 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -653,11 +653,10 @@ As mentioned previously: instructions to "type" commands provided in this guide >If the client was configured with a static address, you must change this to a dynamic one so that it can obtain a DHCP lease. 18. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. -19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. - - To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: +19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: -
+
+
     ipconfig
 
     Windows IP Configuration
@@ -687,7 +686,7 @@ As mentioned previously: instructions to "type" commands provided in this guide
     Our Site Name: Default-First-Site-Name
             Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000
     
-    
+
>If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. From b01ec83133643717a55676ff35ff03622c581ab6 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 11:37:37 -0800 Subject: [PATCH 028/210] stupid error.. --- windows/deploy/windows-10-poc.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index c6ea9a2de3..2295a75f56 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -685,7 +685,7 @@ As mentioned previously: instructions to "type" commands provided in this guide Dc Site Name: Default-First-Site-Name Our Site Name: Default-First-Site-Name Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000 - + >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. From 5a58807fe212b44cead43382a98fee0f5881c40d Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 13:43:59 -0800 Subject: [PATCH 029/210] stupid error.. --- windows/deploy/windows-10-poc.md | 8 +++----- 1 file changed, 3 insertions(+), 5 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 2295a75f56..ecaf2f117a 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -655,8 +655,7 @@ As mentioned previously: instructions to "type" commands provided in this guide 18. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. 19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: -
-
+    
     ipconfig
 
     Windows IP Configuration
@@ -685,10 +684,9 @@ As mentioned previously: instructions to "type" commands provided in this guide
      Dc Site Name: Default-First-Site-Name
     Our Site Name: Default-First-Site-Name
             Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000
+    
-
- ->If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. + >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. 20. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click Run ISE as Administrator) and type the following commands in the (upper) script editor pane: From 42607f03295be91b42fb63ad846a9b88ca5c989b Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 14:05:28 -0800 Subject: [PATCH 030/210] stupid error.. --- windows/deploy/windows-10-poc.md | 31 +------------------------------ 1 file changed, 1 insertion(+), 30 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index ecaf2f117a..544da2ad39 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -655,36 +655,7 @@ As mentioned previously: instructions to "type" commands provided in this guide 18. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. 19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: -
-    ipconfig
-
-    Windows IP Configuration
-
-    Ethernet adapter Local Area Connection 3:
-        Connection-specific DNS Suffix  . : contoso.com
-        Link-local IPv6 Address . . . . . : fe80::64c2:4d2a:7403:6e02%18
-        Ipv4 Address. . . . . . . . . . . : 192.168.0.101
-        Subnet Mask . . . . . . . . . . . : 255.255.255.0
-        Default Gateway . . . . . . . . . : 192.168.0.2
-
-    ping dc1.contoso.com
-
-    Pinging dc1.contoso.com [192.168.0.1] with 32 bytes of data:
-    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
-    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
-    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
-    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
-
-    nltest /dsgetdc:contoso.com
-               DC: \\DC1
-          Address: \\192.168.0.1
-         Dom Guid: fdbd0643-d664-411b-aea0-fe343d7670a8
-         Dom Name: CONTOSO
-      Forest Name: contoso.com
-     Dc Site Name: Default-First-Site-Name
-    Our Site Name: Default-First-Site-Name
-            Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000
-    
+ problem text removed >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. From a8b26c9b52c24a51a7c1f3127ae67c8fc9031281 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 14:26:01 -0800 Subject: [PATCH 031/210] still trying to fix pre error --- windows/deploy/windows-10-poc.md | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 544da2ad39..409af9369a 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -655,7 +655,11 @@ As mentioned previously: instructions to "type" commands provided in this guide 18. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. 19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: - problem text removed +
+
+    Pinging dc1.contoso.com [192.168.0.1] with 32 bytes of data:
+
+    
>If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. From 7f201bfa1f1e7fbb73d1b9ef5b10483e7726db81 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 14:30:02 -0800 Subject: [PATCH 032/210] still trying to fix pre error --- windows/deploy/windows-10-poc.md | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 409af9369a..294b45444f 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -228,8 +228,10 @@ When you have completed installation of Hyper-V on the host computer, begin conf **Important**: This guide assumes that VHDs are stored in the **C:\VHD** directory on the Hyper-V host. If you use a different directory to store VHDs, you must adjust steps in this guide appropriately. After completing registration you will be able to download the 7.47 GB Windows Server 2012 R2 evaluation VHD. An example of the download is shown below. - - ![VHD](images/download_vhd.png) + + +
![VHD](images/download_vhd.png) +
2. Download the file to the C:\VHD directory. When the download is complete, rename the VHD file that you downloaded to **2012R2-poc-1.vhd**. This is done to make the filename simpler to recognize and type. 3. Copy the VHD to a second file also in the C:\VHD directory and name this VHD **2012R2-poc-2.vhd**. From 9ac0d0ac20ed3fb86d3c16e32e81d58b0993c09c Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 14:44:41 -0800 Subject: [PATCH 033/210] still trying to fix pre error --- windows/deploy/windows-10-poc.md | 10 ++++++++-- 1 file changed, 8 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 294b45444f..02c6f0bdbc 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -227,8 +227,8 @@ When you have completed installation of Hyper-V on the host computer, begin conf **Important**: This guide assumes that VHDs are stored in the **C:\VHD** directory on the Hyper-V host. If you use a different directory to store VHDs, you must adjust steps in this guide appropriately. - After completing registration you will be able to download the 7.47 GB Windows Server 2012 R2 evaluation VHD. An example of the download is shown below. - + After completing registration you will be able to download the 7.47 GB Windows Server 2012 R2 evaluation VHD. An example of the download offering is shown below. +
![VHD](images/download_vhd.png)
@@ -659,7 +659,13 @@ As mentioned previously: instructions to "type" commands provided in this guide
 
+    ping dc1.contoso.com
+
     Pinging dc1.contoso.com [192.168.0.1] with 32 bytes of data:
+    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
+    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
+    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
+    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
 
     
From 4a14a08118488128459ff1dc3c919ce2031e1775 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 14:54:03 -0800 Subject: [PATCH 034/210] still trying to fix pre error --- windows/deploy/windows-10-poc.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 02c6f0bdbc..a9d98e414e 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -662,10 +662,10 @@ As mentioned previously: instructions to "type" commands provided in this guide ping dc1.contoso.com Pinging dc1.contoso.com [192.168.0.1] with 32 bytes of data: - Reply from 192.168.0.1: bytes=32 time<1ms TTL=128 - Reply from 192.168.0.1: bytes=32 time<1ms TTL=128 - Reply from 192.168.0.1: bytes=32 time<1ms TTL=128 - Reply from 192.168.0.1: bytes=32 time<1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time\<1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time\<1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time\<1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time\<1ms TTL=128 From 2e290b79c757fbdbde69408f1853a575c51339a2 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 15:06:10 -0800 Subject: [PATCH 035/210] still trying to fix pre error --- windows/deploy/windows-10-poc.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index a9d98e414e..dc628f8f97 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -662,10 +662,10 @@ As mentioned previously: instructions to "type" commands provided in this guide ping dc1.contoso.com Pinging dc1.contoso.com [192.168.0.1] with 32 bytes of data: - Reply from 192.168.0.1: bytes=32 time\<1ms TTL=128 - Reply from 192.168.0.1: bytes=32 time\<1ms TTL=128 - Reply from 192.168.0.1: bytes=32 time\<1ms TTL=128 - Reply from 192.168.0.1: bytes=32 time\<1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time 1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time 1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time 1ms TTL=128 + Reply from 192.168.0.1: bytes=32 time 1ms TTL=128 From 36506547889ba4175b7437896f55704ba40655e3 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 9 Nov 2016 15:24:02 -0800 Subject: [PATCH 036/210] replace > with < --- windows/deploy/windows-10-poc.md | 28 ++++++++++++++++++++++++---- 1 file changed, 24 insertions(+), 4 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index dc628f8f97..e1eb798421 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -656,17 +656,37 @@ As mentioned previously: instructions to "type" commands provided in this guide 18. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. 19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: +
+    ipconfig
+
+    Windows IP Configuration
+
+    Ethernet adapter Local Area Connection 3:
+        Connection-specific DNS Suffix  . : contoso.com
+        Link-local IPv6 Address . . . . . : fe80::64c2:4d2a:7403:6e02%18
+        Ipv4 Address. . . . . . . . . . . : 192.168.0.101
+        Subnet Mask . . . . . . . . . . . : 255.255.255.0
+        Default Gateway . . . . . . . . . : 192.168.0.2
 
     ping dc1.contoso.com
 
     Pinging dc1.contoso.com [192.168.0.1] with 32 bytes of data:
-    Reply from 192.168.0.1: bytes=32 time 1ms TTL=128
-    Reply from 192.168.0.1: bytes=32 time 1ms TTL=128
-    Reply from 192.168.0.1: bytes=32 time 1ms TTL=128
-    Reply from 192.168.0.1: bytes=32 time 1ms TTL=128
+    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
+    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
+    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
+    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
 
+    nltest /dsgetdc:contoso.com
+               DC: \\DC1
+          Address: \\192.168.0.1
+         Dom Guid: fdbd0643-d664-411b-aea0-fe343d7670a8
+         Dom Name: CONTOSO
+      Forest Name: contoso.com
+     Dc Site Name: Default-First-Site-Name
+    Our Site Name: Default-First-Site-Name
+            Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000
     
>If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. From 41c0891c458c15d774ab60b479902e7a15f9aaa8 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 10 Nov 2016 10:33:35 -0800 Subject: [PATCH 037/210] lots of format errors --- windows/deploy/windows-10-poc.md | 18 ++++++++++++------ 1 file changed, 12 insertions(+), 6 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index e1eb798421..c5ca6bb657 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -655,10 +655,12 @@ As mentioned previously: instructions to "type" commands provided in this guide >If the client was configured with a static address, you must change this to a dynamic one so that it can obtain a DHCP lease. 18. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. -19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: - -
+19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. 
+
+To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection:
+
+```
     ipconfig
 
     Windows IP Configuration
@@ -687,9 +689,9 @@ As mentioned previously: instructions to "type" commands provided in this guide
      Dc Site Name: Default-First-Site-Name
     Our Site Name: Default-First-Site-Name
             Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000
-    
+``` - >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. +>If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. 20. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click Run ISE as Administrator) and type the following commands in the (upper) script editor pane: @@ -976,6 +978,8 @@ Then I create a new VHD using the command below, attach both, robocopy from one 1. Create VHD (function thanks to Senthil Rajaram). + +
 function CreateVHD ($VHDPath, $Size)
 {
   $drive = (New-VHD -path $vhdpath -SizeBytes $size -Dynamic   | `
@@ -992,11 +996,13 @@ function CreateVHD ($VHDPath, $Size)
               get-volume).DriveLetter 
     Dismount-VHD $VHDPath
 }
+
Be sure to use a size sufficient for the backup (i.e. 100GB) and specify a path to a USB drive. For Windows 7 to mount the drive it must be .vhd not .vhdx. +
 CreateVHD F:\pc1.vhd 100GB
-
+
2. Insert USB into client and mount using disk management. It is possible also using diskpart but easier with disk manager. Note the drive letter of the mount. Assuming G: From ef73b412a8ef0d86f3cf5250b93a4df329648b2d Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 11 Nov 2016 10:17:40 -0800 Subject: [PATCH 038/210] draft --- windows/deploy/windows-10-poc.md | 119 +++++++++++++++++++------------ 1 file changed, 72 insertions(+), 47 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index c5ca6bb657..4dffc3a993 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,15 +14,17 @@ author: greg-lindsay - Windows 10 -

This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you test the tools and procedures necessary to deploy Windows 10. The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terms](#appendix-d-terminology-in-this-guide) used in this guide before starting. +

This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you can test the tools and procedures necessary to deploy Windows 10. To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. The guide requires a minimum of about 3 hours to complete. + +The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terms](#appendix-d-terminology-in-this-guide) used in this guide before starting. The guide contains detailed instructions for three general procedures: -

    +
    1. Install Hyper-V. -
    2. Configure Hyper-V network and virtual machine (VM) settings. -
    3. Install and configure network services and settings on VMs. -
+
  • Configure Hyper-V. +
  • Configure VMs. + If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. @@ -32,11 +34,9 @@ After completing the instructions in this guide, you will have a PoC environment Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. -To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. - ## In this guide -The following topics and procedures are provided in this guide. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. +The following table describes topics and procedures in this guide. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed.
    @@ -64,7 +64,7 @@ The following topics and procedures are provided in this guide. An estimate of t One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. ->Computer 2 is a client computer from your corporate network that is "shadow copied" to create a VM that can be added to the POC environment. This enables you to use a VM that is a mirror image of the computer on your corporate network, providing a realistic simulation of the upgrade process. If you do not have a computer to use for this simulation, you can create an arbitrary VM to represent this computer. Later guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create one that is mirrored from computer 2. +>Computer 2 is a client computer from your corporate network that is copied to create a VM that can be added to the PoC environment. This enables you to test a VM that is a mirror image of the computer on your network. If you do not have a computer to use for this simulation, you can create an arbitrary VM to represent this computer. Later guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create this VM using computer 2.
    @@ -147,7 +147,7 @@ The lab architecture is summarized in the following diagram: ## Configure the PoC environment -**Before you begin**: Ensure that Windows PowerShell is pinned to the taskbar for easy access. If the Hyper-V host is running Windows Server 2012 R2, or Windows Server 2016 then Windows PowerShell is automatically pinned to the taskbar. To pin Windows PowerShell to the taskbar on Windows 8.1 or Windows 10: Click **Start**, type **power**, right click **Windows PowerShell**, and then click **Pin to taskbar**. After Windows PowerShell is pinned to the taskbar, you can open an elevated Windows PowerShell prompt by right-clicking the icon on the taskbar and then clicking **Run as Administrator**. +**Hint**: Before you begin, ensure that Windows PowerShell is pinned to the taskbar for easy access. If the Hyper-V host is running Windows Server then Windows PowerShell is automatically pinned to the taskbar. To pin Windows PowerShell to the taskbar on Windows 8.1 or Windows 10: Click **Start**, type **power**, right click **Windows PowerShell**, and then click **Pin to taskbar**. After Windows PowerShell is pinned to the taskbar, you can open an elevated Windows PowerShell prompt by right-clicking the icon on the taskbar and then clicking **Run as Administrator**. ### Procedures in this section @@ -207,7 +207,9 @@ The lab architecture is summarized in the following diagram: Enable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V –All - This command works on all operating systems that support Hyper-V. When you are prompted to restart the computer, choose **Yes**. The computer might restart more than once. After installation is complete, you can open Hyper-V Manager by typing **virtmgmt.msc** at an elevated command prompt. + This command works on all operating systems that support Hyper-V. + + When you are prompted to restart the computer, choose **Yes**. The computer might restart more than once. After installation is complete, you can open Hyper-V Manager by typing **virtmgmt.msc** at an elevated command prompt. You can also install Hyper-V using the Control Panel in Windows under **Turn Windows features on or off** for a client operating system, or using Server Manager's **Add Roles and Features Wizard** on a server operating system, as shown below: @@ -223,7 +225,7 @@ When you have completed installation of Hyper-V on the host computer, begin conf >Before you can download VHD and ISO files, you will need to register and sign in to the [TechNet Evaluation Center](https://www.microsoft.com/en-us/evalcenter/) using your Microsoft account. -1. Create a directory on your Hyper-V host named C:\VHD and download a single [Windows Server 2012 R2 VHD](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2012-r2) from the TechNet Evaluation Center to the C:\VHD directory. +1. Create a directory on your Hyper-V host named **C:\VHD** and download a single [Windows Server 2012 R2 VHD](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2012-r2) from the TechNet Evaluation Center to the **C:\VHD** directory. **Important**: This guide assumes that VHDs are stored in the **C:\VHD** directory on the Hyper-V host. If you use a different directory to store VHDs, you must adjust steps in this guide appropriately. @@ -233,17 +235,17 @@ When you have completed installation of Hyper-V on the host computer, begin conf
  • ![VHD](images/download_vhd.png)
    -2. Download the file to the C:\VHD directory. When the download is complete, rename the VHD file that you downloaded to **2012R2-poc-1.vhd**. This is done to make the filename simpler to recognize and type. -3. Copy the VHD to a second file also in the C:\VHD directory and name this VHD **2012R2-poc-2.vhd**. -4. Download the [Windows 10 Enterprise ISO](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-10-enterprise) from the TechNet Evaluation Center to the C:\VHD directory on your Hyper-V host. +2. Download the file to the **C:\VHD** directory. When the download is complete, rename the VHD file that you downloaded to **2012R2-poc-1.vhd**. This is done to make the filename simple to recognize and type. +3. Copy the VHD to a second file also in the **C:\VHD** directory and name this VHD **2012R2-poc-2.vhd**. +4. Download the [Windows 10 Enterprise ISO](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-10-enterprise) from the TechNet Evaluation Center to the **C:\VHD** directory on your Hyper-V host. >During registration, you must specify the type, version, and language of installation media to download. In this example, a Windows 10 Enterprise, 64 bit, English ISO is chosen. You can choose a different version if desired. Note that Windows 10 in-place upgrade is only possible if the source operating system and installation media are both 32-bit or both 64-bit, so you should download the file version that corresponds to the version of your source computer (computer 2) for upgrade testing. -5. Rename the ISO file that you downloaded to **w10-enterprise.iso**. Again, this is done so that the filename is simpler to type and recognize. After completing registration you will be able to download the 3.63 GB Windows 10 Enterprise evaluation ISO. +5. Rename the ISO file that you downloaded to **w10-enterprise.iso**. Again, this is done so that the filename is simple to type and recognize. After completing registration you will be able to download the 3.63 GB Windows 10 Enterprise evaluation ISO. -After completing these steps, you will have three files in the C:\VHD directory: 2012R2-poc-1.vhd, 2012R2-poc-2.vhd, w10-enterprise.iso. +After completing these steps, you will have three files in the **C:\VHD** directory: **2012R2-poc-1.vhd**, **2012R2-poc-2.vhd**, **w10-enterprise.iso**. -The following commands and output display the procedures described in this section: +The following commands and output display the procedures described in this section, both before and after downloading files:
    @@ -267,7 +269,7 @@ If you do not have a PC available to convert to VM, see [Appendix E: Create PC1
     If you have a PC available to convert to VM:
     
     1. Verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights, if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. After converting the computer to a VM, you must be able to sign in on this VM with local administrator privileges, while disconnected from the corporate network.
    -2. Determine the VM generation that is required. See below.
    +2. [Determine the VM generation](#determine-the-vm-generation) that is required.
     3. Based on the VM generation, perform the appropriate conversion procedure.
     
     #### Determine VM generation
    @@ -278,7 +280,7 @@ When creating a VM in Hyper-V, you must specify either generation 1 or generatio
     
     
    -        
    +        
    @@ -311,6 +313,26 @@ If the **Type** column does not indicate GPT, then the disk partition format is
     
     >On a computer running Windows 8 or later, you can also type **Get-Disk** at a Windows PowerShell prompt to discover the partition style. The default output of this cmdlet displays the partition style for all attached disks.
     
    +Both commands are shown in the following example. The client computer is running Windows 8.1 and uses a GPT style partition format:
    +
    +
    +PS C:\> Get-WmiObject -Class Win32_DiskPartition | Select-Object -Property SystemName,Caption,Type
    +
    +SystemName                                       Caption                                              Type
    +----------                                       -------                                              ----
    +PC-X1                                            Disk #0, Partition #0                                GPT: Unknown
    +PC-X1                                            Disk #0, Partition #1                                GPT: System
    +PC-X1                                            Disk #0, Partition #2                                GPT: Basic Data
    +PC-X1                                            Disk #0, Partition #3                                GPT: Basic Data
    +PC-X1                                            Disk #0, Partition #4                                GPT: Basic Data
    +
    +PS C:\> Get-Disk
    +
    +Number Friendly Name                            OperationalStatus                                               Total Size Partition Style
    +------ -------------                            -----------------                                               ---------- ---------------
    +0      INTEL SSDSCMMW240A3L                     Online                                                           223.57 GB GPT
    +
    + **Choosing a VM generation** The following table displays the Hyper-V VM generation to choose based on the OS, architecture, and partition style. Links to procedures to create the corresponding VMs are included. @@ -330,12 +352,12 @@ The following table displays the Hyper-V VM generation to choose based on the OS - + - + @@ -346,38 +368,43 @@ The following table displays the Hyper-V VM generation to choose based on the OS - + - + - + - + - +
    Generation Architecture Operating system Partition styleMBR 32 1A[Prepare a generation 1 VM](#prepare-a-generation-1-vm)
    64 1A[Prepare a generation 1 VM](#prepare-a-generation-1-vm)
    GPT
    64 1C, A[Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr) +
    [Prepare a generation 1 VM](#prepare-a-generation-1-vm)
    Windows 8 or later MBR 32 1A[Prepare a generation 1 VM](#prepare-a-generation-1-vm)
    64 1, 2A[Prepare a generation 1 VM](#prepare-a-generation-1-vm)
    GPT 32 1C, A[Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr) +
    [Prepare a generation 1 VM](#prepare-a-generation-1-vm)
    64 2B[Prepare a generation 2 VM](#prepare-a-generation-2-vm)
    ->If the PC is running Windows 7, it can only be converted and hosted in Hyper-V as a generation 1 VM. If the Windows 7 PC is also using a GPT partition style, the disk contents must be captured and then used to create a VHD with the MBR partition style. If this is required, see [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr). ->
    If the PC is running Windows 8 or later and uses the GPT partition style, you can capture the disk image and create a generation 2 VM. To do this, you must temporarily mount the EFI system partition which is a simple procedure using the mountvol command. ->
    If the PC is using an MBR partition style, you can convert the disk to VHD and use it to create a generation 1 VM. If you use the Disk2VHD tool described in this guide, it is not necessary to mount the MBR system partition, but it is still necessary to capture it. +Notes:
    +
      +
    • If the PC is running Windows 7, it can only be converted and hosted in Hyper-V as a generation 1 VM. This Hyper-V requirement means that if the Windows 7 PC is also using a GPT partition style, the disk contents must be captured and then used to create a VHD with the MBR partition style. In this case, see [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr). +
    • If the PC is running Windows 8 or later and uses the GPT partition style, you can capture the disk image and create a generation 2 VM. To do this, you must temporarily mount the EFI system partition which is accomplished using the **mountvol** command. +
    • If the PC is using an MBR partition style, you can convert the disk to VHD and use it to create a generation 1 VM. If you use the Disk2VHD tool described in this guide, it is not necessary to mount the MBR system partition, but it is still necessary to capture it. +
    #### Prepare a generation 1 VM @@ -386,11 +413,13 @@ The following table displays the Hyper-V VM generation to choose based on the OS >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media such as a USB drive. 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select the checkboxes next to the **C:\** and the **system reserved** (BIOS/MBR) volumes. The system volume is not assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label similar to **\\?\Volume{**. See the following example. **Important**: You must include the system volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, then the computer is likely to be using the GPT partition style. In this case, see [Determine VM generation](#determine-vm-generation). -4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\w7.vhdx in the following example) and click **Create**. Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. See the following example: +3. Select the checkboxes next to the **C:\** and the **system reserved** (BIOS/MBR) volumes. The system volume is not assigned a drive letter, but will be displayed in the Disk2VHD tool with a volume label similar to **\\?\Volume{**. See the following example. **Important**: You must include the system volume in order to create a bootable VHD. If this volume is not displayed in the disk2vhd tool, then the computer is likely to be using the GPT partition style. For more information, see [Determine VM generation](#determine-vm-generation). +4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\w7.vhdx in the following example) and click **Create**. See the following example: ![disk2vhd](images/disk2vhd.png) + Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. + 5. Click **Create** to start creating a VHDX file. >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. @@ -422,7 +451,7 @@ The following table displays the Hyper-V VM generation to choose based on the OS 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. 3. Select the checkboxes next to the **C:\** and the **S:\** volumes, and clear the **Use Volume Shadow Copy checkbox**. Volume shadow copy will not work if the EFI system partition is selected. - **Important**: You must include the EFI system partition in order to create a bootable VHD. The Windows RE tools partition is not requried, but it can also be converted if desired. + **Important**: You must include the EFI system partition in order to create a bootable VHD. The Windows RE tools partition (shown below) is not required, but it can also be converted if desired. 4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\PC1.vhdx in the following example) and click **Create**. Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. See the following example: @@ -481,12 +510,8 @@ As mentioned previously: instructions to "type" commands provided in this guide **Note**: The second command above will temporarily interrupt network connectivity on the Hyper-V host. - >Since an external virtual switch is associated to a physical network adapter on the Hyper-V host, this adapter must be specified when adding the virtual switch. This is automated here by filtering for active non-virtual ethernet adapters using the Get-NetAdapter cmdlet ($_.Status -eq "Up" -and !$_.Virtual). If your Hyper-V host is dual-homed with multiple active ethernet adapters, this automation will not work, and the second command above will fail. In this case, you must edit the command used to add the "poc-external" virtual switch by inserting the NetAdapterName. The NetAdapterName value corresponds to the name of the network interface you wish to use. For example, if the network interface you use on the Hyper-V host to connect to the Internet is named "Ethernet 2" then type the following command to create an external virtual switch: + >Since an external virtual switch is associated to a physical network adapter on the Hyper-V host, this adapter must be specified when adding the virtual switch. The previous commands automate this by filtering for active non-virtual ethernet adapters using the Get-NetAdapter cmdlet ($_.Status -eq "Up" -and !$_.Virtual). If your Hyper-V host is dual-homed with multiple active ethernet adapters, this automation will not work, and the second command above will fail. In this case, you must edit the command used to add the "poc-external" virtual switch by inserting the appropriate NetAdapterName. The NetAdapterName value corresponds to the name of the network interface you wish to use. For example, if the network interface you use on the Hyper-V host to connect to the Internet is named "Ethernet 2" then type the following command to create an external virtual switch: New-VMSwitch -Name poc-external -NetAdapterName "Ethernet 2" -Notes "PoC External" -
    -    New-VMSwitch -Name poc-external -NetAdapterName "Ethernet 2" -Notes "PoC External"
    -    
    - 2. At the elevated Windows PowerShell prompt, type the following command to determine the megabytes of RAM that are currently available on the Hyper-V host:
    @@ -522,7 +547,7 @@ As mentioned previously: instructions to "type" commands provided in this guide
     
     5. Using the same elevated Windows PowerShell prompt that was used in the previous step, type one of the following sets of commands, depending on the type of VM that was prepared in the [Determine VM generation](#determine-vm-generation) section, either generation 1 or generation 2.
     
    -    To create a generation 1 VM:
    +    To create a generation 1 VM: (using c:\vhd\w7.vhdx)
     
         
         New-VM -Name "PC1" -VHDPath c:\vhd\w7.vhdx -SwitchName poc-internal
    @@ -530,7 +555,7 @@ As mentioned previously: instructions to "type" commands provided in this guide
         Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
         
    - To create a generation 2 VM: + To create a generation 2 VM: (using c:\vhd\PC1.vhdx)
         New-VM -Name "PC1" -Generation 2 -VHDPath c:\vhd\PC1.vhdx -SwitchName poc-internal
    @@ -660,7 +685,7 @@ As mentioned previously: instructions to "type" commands provided in this guide
     
     To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection:
     
    -```
    +    ```
         ipconfig
     
         Windows IP Configuration
    @@ -675,10 +700,10 @@ To open Windows PowerShell on Windows 7, click **Start**, and search for "**powe
         ping dc1.contoso.com
     
         Pinging dc1.contoso.com [192.168.0.1] with 32 bytes of data:
    -    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
    -    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
    -    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
    -    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
    +    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
    +    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
    +    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
    +    Reply from 192.168.0.1: bytes=32 time<1ms TTL=128
     
         nltest /dsgetdc:contoso.com
                    DC: \\DC1
    @@ -689,9 +714,9 @@ To open Windows PowerShell on Windows 7, click **Start**, and search for "**powe
          Dc Site Name: Default-First-Site-Name
         Our Site Name: Default-First-Site-Name
                 Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000
    -```
    +    ```
     
    ->If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them.
    +    >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them.
     
     20. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click Run ISE as Administrator) and type the following commands in the (upper) script editor pane: 
     
    
    From e5ecf111ec739435c400bebd63668f772a3c9553 Mon Sep 17 00:00:00 2001
    From: Greg Lindsay 
    Date: Fri, 11 Nov 2016 10:31:26 -0800
    Subject: [PATCH 039/210] still have text bug
    
    ---
     windows/deploy/windows-10-poc.md | 2 +-
     1 file changed, 1 insertion(+), 1 deletion(-)
    
    diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md
    index 4dffc3a993..8bb82a76a0 100644
    --- a/windows/deploy/windows-10-poc.md
    +++ b/windows/deploy/windows-10-poc.md
    @@ -683,7 +683,7 @@ As mentioned previously: instructions to "type" commands provided in this guide
     
     19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. 
     
    -To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection:
    +    To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection:
     
         ```
         ipconfig
    
    From 6373548d640f783534b073887ba2f933cd93c19a Mon Sep 17 00:00:00 2001
    From: Greg Lindsay 
    Date: Tue, 15 Nov 2016 11:01:45 -0800
    Subject: [PATCH 040/210] draft
    
    ---
     windows/deploy/windows-10-poc.md | 26 ++++++++++++--------------
     1 file changed, 12 insertions(+), 14 deletions(-)
    
    diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md
    index 8bb82a76a0..e55c76e6f1 100644
    --- a/windows/deploy/windows-10-poc.md
    +++ b/windows/deploy/windows-10-poc.md
    @@ -921,9 +921,7 @@ Use the following procedures to verify that the PoC environment is configured pr
     
     ## Appendix B: Configuring Hyper-V on Windows Server 2008 R2
     
    -If your Hyper-V host is running Windows Server 2008 R2, several of the steps in this guide will not work because they use the Hyper-V Module for Windows PowerShell, which is not available on Windows Server 2008 R2. The performance and features of the Hyper-V role are also much improved on later operating systems. 
    -
    -This section is a placeholder for instructions to configure Hyper-V on Windows Server 2008 R2. Full documentation of these procedures is currently out of scope for this guide, due to significant differences in the Hyper-V role in Windows Server 2008 R2. For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library.
    +Full documentation of procedures to configure the PoC in Hyper-V on Windows Server 2008 R2 is currently out of scope for this guide, due to significant differences in the Hyper-V role in Windows Server 2008 R2. For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. A limited number of procedures are provided in this section.
     
     To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature cmdlet:
     
    @@ -1007,17 +1005,17 @@ Then I create a new VHD using the command below, attach both, robocopy from one
     
     function CreateVHD ($VHDPath, $Size)
     {
    -  $drive = (New-VHD -path $vhdpath -SizeBytes $size -Dynamic   | `
    -              Mount-VHD -Passthru |  `
    -              get-disk -number {$_.DiskNumber} | `
    -              Initialize-Disk -PartitionStyle MBR -PassThru | `
    -              New-Partition -Size 100MB -AssignDriveLetter:$False -MbrType FAT32 -IsActive | `
    -              Format-Volume -Confirm:$false -FileSystem FAT32 -force | `
    -              get-partition | `
    -              New-Partition -UseMaximumSize -AssignDriveLetter:$False -MbrType IFS | `
    -              Format-Volume -Confirm:$false -FileSystem NTFS -force | `
    -              get-partition | `
    -              Add-PartitionAccessPath -AssignDriveLetter -PassThru | `
    +  $drive = (New-VHD -path $vhdpath -SizeBytes $size -Dynamic   |
    +              Mount-VHD -Passthru |
    +              get-disk -number {$_.DiskNumber} |
    +              Initialize-Disk -PartitionStyle MBR -PassThru |
    +              New-Partition -Size 100MB -AssignDriveLetter:$False -MbrType FAT32 -IsActive |
    +              Format-Volume -Confirm:$false -FileSystem FAT32 -force |
    +              get-partition |
    +              New-Partition -UseMaximumSize -AssignDriveLetter:$False -MbrType IFS |
    +              Format-Volume -Confirm:$false -FileSystem NTFS -force |
    +              get-partition |
    +              Add-PartitionAccessPath -AssignDriveLetter -PassThru |
                   get-volume).DriveLetter 
         Dismount-VHD $VHDPath
     }
    
    From 7569bea69cae376a34a30f0e631115c20b59bf7f Mon Sep 17 00:00:00 2001
    From: Greg Lindsay 
    Date: Tue, 15 Nov 2016 14:29:49 -0800
    Subject: [PATCH 041/210] edits
    
    ---
     windows/deploy/windows-10-poc.md | 36 +++++++++++++++++---------------
     1 file changed, 19 insertions(+), 17 deletions(-)
    
    diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md
    index e55c76e6f1..7e1f1f21f9 100644
    --- a/windows/deploy/windows-10-poc.md
    +++ b/windows/deploy/windows-10-poc.md
    @@ -14,11 +14,15 @@ author: greg-lindsay
     
     -   Windows 10
     
    -

    This guide provides step-by-step instructions for setting up a proof of concept (PoC) environment where you can test the tools and procedures necessary to deploy Windows 10. To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. The guide requires a minimum of about 3 hours to complete. +

    This guide provides step-by-step instructions for IT administrators to set up a proof of concept (PoC) environment for testing the tools and procedures necessary to deploy Windows 10. The guide requires about 3 hours to complete. -The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terms](#appendix-d-terminology-in-this-guide) used in this guide before starting. +To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. -The guide contains detailed instructions for three general procedures: +The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terminology](#appendix-d-terminology-in-this-guide) used in this guide before starting. + +## In this guide + +This guide contains detailed instructions for three general procedures:

    1. Install Hyper-V. @@ -34,9 +38,7 @@ After completing the instructions in this guide, you will have a PoC environment Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. -## In this guide - -The following table describes topics and procedures in this guide. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. +Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed.
      @@ -147,7 +149,7 @@ The lab architecture is summarized in the following diagram: ## Configure the PoC environment -**Hint**: Before you begin, ensure that Windows PowerShell is pinned to the taskbar for easy access. If the Hyper-V host is running Windows Server then Windows PowerShell is automatically pinned to the taskbar. To pin Windows PowerShell to the taskbar on Windows 8.1 or Windows 10: Click **Start**, type **power**, right click **Windows PowerShell**, and then click **Pin to taskbar**. After Windows PowerShell is pinned to the taskbar, you can open an elevated Windows PowerShell prompt by right-clicking the icon on the taskbar and then clicking **Run as Administrator**. +>**Hint**: Before you begin, ensure that Windows PowerShell is pinned to the taskbar for easy access. If the Hyper-V host is running Windows Server then Windows PowerShell is automatically pinned to the taskbar. To pin Windows PowerShell to the taskbar on Windows 8.1 or Windows 10: Click **Start**, type **power**, right click **Windows PowerShell**, and then click **Pin to taskbar**. After Windows PowerShell is pinned to the taskbar, you can open an elevated Windows PowerShell prompt by right-clicking the icon on the taskbar and then clicking **Run as Administrator**. ### Procedures in this section @@ -318,19 +320,19 @@ Both commands are shown in the following example. The client computer is running
       PS C:\> Get-WmiObject -Class Win32_DiskPartition | Select-Object -Property SystemName,Caption,Type
       
      -SystemName                                       Caption                                              Type
      -----------                                       -------                                              ----
      -PC-X1                                            Disk #0, Partition #0                                GPT: Unknown
      -PC-X1                                            Disk #0, Partition #1                                GPT: System
      -PC-X1                                            Disk #0, Partition #2                                GPT: Basic Data
      -PC-X1                                            Disk #0, Partition #3                                GPT: Basic Data
      -PC-X1                                            Disk #0, Partition #4                                GPT: Basic Data
      +SystemName                            Caption                               Type
      +----------                            -------                               ----
      +PC-X1                                 Disk #0, Partition #0                 GPT: Unknown
      +PC-X1                                 Disk #0, Partition #1                 GPT: System
      +PC-X1                                 Disk #0, Partition #2                 GPT: Basic Data
      +PC-X1                                 Disk #0, Partition #3                 GPT: Basic Data
      +PC-X1                                 Disk #0, Partition #4                 GPT: Basic Data
       
       PS C:\> Get-Disk
       
      -Number Friendly Name                            OperationalStatus                                               Total Size Partition Style
      ------- -------------                            -----------------                                               ---------- ---------------
      -0      INTEL SSDSCMMW240A3L                     Online                                                           223.57 GB GPT
      +Number Friendly Name                  OperationalStatus                     Total Size Partition Style
      +------ -------------                  -----------------                     ---------- ---------------
      +0      INTEL SSDSCMMW240A3L           Online                                223.57 GB GPT
       
      **Choosing a VM generation** From 30202a9c5bcb8dc05611abc513c7ab1fcadff229 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 17 Nov 2016 11:53:45 -0800 Subject: [PATCH 042/210] lotsa changes --- windows/deploy/windows-10-poc.md | 219 +++++++------------------------ 1 file changed, 44 insertions(+), 175 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 7e1f1f21f9..ed1efaa54d 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,15 +14,21 @@ author: greg-lindsay - Windows 10 -

      This guide provides step-by-step instructions for IT administrators to set up a proof of concept (PoC) environment for testing the tools and procedures necessary to deploy Windows 10. The guide requires about 3 hours to complete. +

      The following guides provide step-by-step instructions for IT administrators to test Windows 10 deployment procedures in a proof of concept (PoC) environment: -To complete this guide, you will need a Hyper-V capable computer running Windows 8.1 or later with 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. +- Step by step guide: Deploy Windows 10 in a test lab (this guide): Configure the PoC environment.
      +- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md): Use the Microsoft Deployment Toolkit (MDT) to deploy Windows 10 in the PoC environment.
      +- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md): Use System Center Configuration Manager to deploy Windows 10 in the PoC environment.
      -The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terminology](#appendix-d-terminology-in-this-guide) used in this guide before starting. +This guide requires about 3 hours to complete. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. + +The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. You do not need to be an expert in Windows PowerShell to complete the steps in the guide, however you are required to customize some commands to your environment. + +Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terminology](#appendix-c-terminology-in-this-guide) used in this guide before starting. ## In this guide -This guide contains detailed instructions for three general procedures: +This guide contains instructions for three general procedures:

      1. Install Hyper-V. @@ -30,13 +36,7 @@ This guide contains detailed instructions for three general procedures:
      2. Configure VMs.
      -If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. - -After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides:
      -- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
      -- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
      - -Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. +If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides. Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. @@ -45,9 +45,9 @@ Topics and procedures in this guide are summarized in the following table. An es
      TopicDescriptionTime -
      [Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide. -
      [Lab setup](#lab-setup)A description and diagram of the PoC environment. -
      [Configure the PoC environment](#configure-the-poc-environment)Parent topic for procedures. +
      [Hardware and software requirements](#hardware-and-software-requirements)Prerequisites to complete this guide.Informational +
      [Lab setup](#lab-setup)A description and diagram of the PoC environment.Informational +
      [Configure the PoC environment](#configure-the-poc-environment)Parent topic for procedures.Informational
      [Verify support and install Hyper-V](#verify-support-and-install-hyper-v)Verify that installation of Hyper-V is supported, and install the Hyper-V server role.10 minutes
      [Download VHD and ISO files](#download-vhd-and-iso-files)Download evaluation versions of Windows Server 2012 R2 and Windows 10 and prepare these files to be used on the Hyper-V host.30 minutes
      [Convert PC to VM](#convert-pc-to-vm)Convert a physical computer on your network to a VM hosted in Hyper-V.30 minutes @@ -55,9 +55,8 @@ Topics and procedures in this guide are summarized in the following table. An es
      [Configure Hyper-V](#configure-hyper-v)Create virtual switches, determine available RAM for virtual machines, and add virtual machines.15 minutes
      [Configure VHDs](#configure-vhds)Start virtual machines and configure all services and settings.60 minutes
      [Appendix A: Verify the configuration](#appendix-a-verify-the-configuration)Verify and troubleshoot network connectivity and services in the PoC environment.30 minutes -
      [Appendix B: Configuring Hyper-V on Windows Server 2008 R2](#appendix-b-configuring-hyper-v-on-windows-server-2008-r2)Information about using this guide with a Hyper-V host running Windows Server 2008 R2. -
      [Appendix C: Disk2VHD](#appendix-c-disk2vhd)Information about the Disk2VHD application. -
      [Appendix D: Terminology in this guide](#appendix-d-terminology-in-this-guide)Terms used in this guide. +
      [Appendix B: Create generation 1 VM from GPT disk](#appendix-b-create-generation-1-vm-from-gpt-disk)Solution to boot a GPT formatted disk as a generation 1 VM.Optional +
      [Appendix C: Terminology in this guide](#appendix-d-terminology-in-this-guide)Terms used in this guide.Informational
      @@ -66,7 +65,7 @@ Topics and procedures in this guide are summarized in the following table. An es One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. ->Computer 2 is a client computer from your corporate network that is copied to create a VM that can be added to the PoC environment. This enables you to test a VM that is a mirror image of the computer on your network. If you do not have a computer to use for this simulation, you can create an arbitrary VM to represent this computer. Later guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create this VM using computer 2. +>Computer 2 is a client computer from your corporate network that is copied to create a VM that can be added to the PoC environment. This enables you to test a VM that is a mirror image of the computer on your network. If you do not have a computer to use for this simulation, you can download an evaluation VHD and use it to represent this computer. Later guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create this VM using computer 2.
      @@ -128,24 +127,23 @@ One computer that meets the hardware and software specifications below is requir *The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. Providing all steps in this guide as Hyper-V WMI or as 2008 R2 Hyper-V Manager procedures is beyond the scope of the guide. -The Hyper-V role cannot be installed on Windows 7 or earlier versions of Windows. +

      The Hyper-V role cannot be installed on Windows 7 or earlier versions of Windows.

      ## Lab setup -- Computer 1 is configured to host four VMs on a private, PoC network. - - Two VMs are running Windows Server 2012 R2 with required network services and tools installed. - - Two VMs are client systems: One VM is intended to mirror a host on your corporate network (computer 2) and one VM is running Windows 10 Enterprise to demonstrate the hardware replacement scenario. - The lab architecture is summarized in the following diagram: ![PoC](images/poc.png) -**Note**: +- Computer 1 is configured to host four VMs on a private, PoC network. + - Two VMs are running Windows Server 2012 R2 with required network services and tools installed. + - Two VMs are client systems: One VM is intended to mirror a host on your corporate network (computer 2) and one VM is running Windows 10 Enterprise to demonstrate the hardware replacement scenario. + >If you have an existing Hyper-V host, you can use this host and skip the Hyper-V installation section in this guide. ->The two Windows Server VMs can be combined into a single VM to conserve RAM and disk space if required. However, instructions in this guide assume two server systems are used. Using two servers enables Active Directory Domain Services and DHCP to be installed on a server that is not directly connected to the corporate network. This mitigates the risk of clients on the corporate network receiving DHCP leases from the PoC network (i.e. "rogue" DHCP), and limits NETBIOS service broadcasts. +The two Windows Server VMs can be combined into a single VM to conserve RAM and disk space if required. However, instructions in this guide assume two server systems are used. Using two servers enables Active Directory Domain Services and DHCP to be installed on a server that is not directly connected to the corporate network. This mitigates the risk of clients on the corporate network receiving DHCP leases from the PoC network (i.e. "rogue" DHCP), and limits NETBIOS service broadcasts. ## Configure the PoC environment @@ -162,11 +160,9 @@ The lab architecture is summarized in the following diagram: ### Verify support and install Hyper-V -1. Verify that the computer supports Hyper-V. +Starting with Windows 8, the host computer’s microprocessor must support second level address translation (SLAT) to install Hyper-V. See [Hyper-V: List of SLAT-Capable CPUs for Hosts](http://social.technet.microsoft.com/wiki/contents/articles/1401.hyper-v-list-of-slat-capable-cpus-for-hosts.aspx) for more information. - Starting with Windows 8, the host computer’s microprocessor must support second level address translation (SLAT) to install Hyper-V. See [Hyper-V: List of SLAT-Capable CPUs for Hosts](http://social.technet.microsoft.com/wiki/contents/articles/1401.hyper-v-list-of-slat-capable-cpus-for-hosts.aspx) for more information. To verify your computer supports SLAT, open an administrator command prompt, type systeminfo, press ENTER, and review the section displayed at the bottom of the output, next to Hyper-V Requirements. - - See the following example: +1. To verify your computer supports SLAT, open an administrator command prompt, type systeminfo, press ENTER, and review the section displayed at the bottom of the output, next to Hyper-V Requirements. See the following example:
           C:\>systeminfo
      @@ -201,9 +197,7 @@ The lab architecture is summarized in the following diagram:
       
           Note: A 64-bit operating system is required to run Hyper-V.
       
      -2. Enable Hyper-V.
      -
      -    The Hyper-V feature is not installed by default. To install it, open an elevated Windows PowerShell window and type the following command:
      +2. The Hyper-V feature is not installed by default. To install it, open an elevated Windows PowerShell window and type the following command:
       
           
           Enable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V –All
      @@ -234,14 +228,14 @@ When you have completed installation of Hyper-V on the host computer, begin conf
           After completing registration you will be able to download the 7.47 GB Windows Server 2012 R2 evaluation VHD. An example of the download offering is shown below.
       
           
      -    
      ![VHD](images/download_vhd.png) +
      ![VHD](images/download_vhd.png)
      2. Download the file to the **C:\VHD** directory. When the download is complete, rename the VHD file that you downloaded to **2012R2-poc-1.vhd**. This is done to make the filename simple to recognize and type. 3. Copy the VHD to a second file also in the **C:\VHD** directory and name this VHD **2012R2-poc-2.vhd**. 4. Download the [Windows 10 Enterprise ISO](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-10-enterprise) from the TechNet Evaluation Center to the **C:\VHD** directory on your Hyper-V host. - >During registration, you must specify the type, version, and language of installation media to download. In this example, a Windows 10 Enterprise, 64 bit, English ISO is chosen. You can choose a different version if desired. Note that Windows 10 in-place upgrade is only possible if the source operating system and installation media are both 32-bit or both 64-bit, so you should download the file version that corresponds to the version of your source computer (computer 2) for upgrade testing. + >During registration, you must specify the type, version, and language of installation media to download. In this example, a Windows 10 Enterprise, 64 bit, English ISO is chosen. You can choose a different version if desired. **Note: The evaluation version of Windows 10 does not support in-place upgrade**. 5. Rename the ISO file that you downloaded to **w10-enterprise.iso**. Again, this is done so that the filename is simple to type and recognize. After completing registration you will be able to download the 3.63 GB Windows 10 Enterprise evaluation ISO. @@ -249,7 +243,6 @@ After completing these steps, you will have three files in the **C:\VHD** direct The following commands and output display the procedures described in this section, both before and after downloading files: -
       C:\>mkdir VHD
       C:\>cd VHD
      @@ -263,14 +256,24 @@ C:\VHD>dir /B
       w10-enterprise.iso
       
      - ### Convert PC to VM -If you do not have a PC available to convert to VM, see [Appendix E: Create PC1 VM](#appendix-e-create-pc1-vm). +If you do not have a PC available to convert to VM, you can download a VM using the following steps. Skip these steps if you have a PC to convert. + +
        +
      1. Open the [Download virtual machines](https://developer.microsoft.com/en-us/microsoft-edge/tools/vms/) page. +
      2. Under **Virtual machine**, choose **IE11 on Win7**. +
      3. Under **Select platform** choose **HyperV (Windows)**. +
      4. Click **Download .zip**. The download is 3.31 GB. +
      5. Extract the zip file. Three directories are created. +
      6. Open the **Virtual Hard Disks** directory and then copy **IE11 - Win7.vhd** to the **C:\VHD** directory. +
      7. Rename **IE11 - Win7.vhd** to **w7.vhd** (**do not rename the file to w7.vhdx**). +
      8. Create a generation 1 VM as described in step 5 of the [Configure Hyper-V](#configure-hyper-v) section, replacing the VHD file name **w7.vhdx** with **w7.vhd**. +
      If you have a PC available to convert to VM: -1. Verify that you have access to a local administrator account on the computer. Alternatively you can use a domain account with administrative rights, if these credentials are cached on the computer and your domain policy allows the use of cached credentials for login. After converting the computer to a VM, you must be able to sign in on this VM with local administrator privileges, while disconnected from the corporate network. +1. Sign in to the computer using an account with Administrator privileges. You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. 2. [Determine the VM generation](#determine-the-vm-generation) that is required. 3. Based on the VM generation, perform the appropriate conversion procedure. @@ -315,7 +318,7 @@ If the **Type** column does not indicate GPT, then the disk partition format is >On a computer running Windows 8 or later, you can also type **Get-Disk** at a Windows PowerShell prompt to discover the partition style. The default output of this cmdlet displays the partition style for all attached disks. -Both commands are shown in the following example. The client computer is running Windows 8.1 and uses a GPT style partition format: +Both commands are displayed below. In this example, the client computer is running Windows 8.1 and uses a GPT style partition format:
       PS C:\> Get-WmiObject -Class Win32_DiskPartition | Select-Object -Property SystemName,Caption,Type
      @@ -921,143 +924,13 @@ Use the following procedures to verify that the PoC environment is configured pr
           **ping** displays if the source can resolve the target name, and whether or not the target responds to ICMP. If it cannot be resolved, "..could not find host" will be diplayed and if the target is found and also responds to ICMP, you will see "Reply from" and the IP address of the target.
      **tracert** displays the path to reach the destination, for example srv1.contoso.com [192.168.0.2] followed by a list of hosts and IP addresses corresponding to subsequent routing nodes between the source and the destination. -## Appendix B: Configuring Hyper-V on Windows Server 2008 R2 - -Full documentation of procedures to configure the PoC in Hyper-V on Windows Server 2008 R2 is currently out of scope for this guide, due to significant differences in the Hyper-V role in Windows Server 2008 R2. For more information about the Hyper-V Manager interface in Windows Server 2008 R2, see [Hyper-V](https://technet.microsoft.com/library/cc730764.aspx) in the Windows Server TechNet Library. A limited number of procedures are provided in this section. - -To install Hyper-V on Windows Server 2008 R2, you can use the Add-WindowsFeature cmdlet: - -
      -Add-WindowsFeature -Name Hyper-V
      -
      - -An example that uses Hyper-V WMI to create a virtual switch on Windows Server 2008 R2 is provided below. - -
      -$SwitchFriendlyName = "poc-internal"
      -$InternalEthernetPortFriendlyName = $SwitchFriendlyName
      -$InternalSwitchPortFriendlyName = "poc"
      -$SwitchName = [guid]::NewGuid().ToString()
      -$InternalSwitchPortName = [guid]::NewGuid().ToString()
      -$InternalEthernetPortName = [guid]::NewGuid().ToString()
      -$NumLearnableAddresses = 1024
      -$ScopeOfResidence = ""
      -$VirtualSwitchManagementService = gwmi Msvm_VirtualSwitchManagementService -namespace "root\virtualization"
      -$Result = $VirtualSwitchManagementService.CreateSwitch($SwitchName, $SwitchFriendlyName, $NumLearnableAddresses, $ScopeOfResidence) 
      -$Switch = [WMI]$Result.CreatedVirtualSwitch 
      -$Result = $VirtualSwitchManagementService.CreateSwitchPort($Switch, $InternalSwitchPortName, $InternalSwitchPortFriendlyName, $ScopeOfResidence)
      -$InternalSwitchPort = [WMI]$Result.CreatedSwitchPort 
      -$Result = $VirtualSwitchManagementService.CreateInternalEthernetPortDynamicMac($InternalEthernetPortName, $InternalEthernetPortFriendlyName)
      -$InternalEthernetPort = [WMI]$Result.CreatedInternalEthernetPort
      -$query = "Associators of {$InternalEthernetPort} Where ResultClass=CIM_LanEndpoint"
      -$InternalLanEndPoint = gwmi -namespace root\virtualization -query $query
      -$Result = $VirtualSwitchManagementService.ConnectSwitchPort($InternalSwitchPort, $InternalLanEndPoint)
      -$filter = "SettingID='" + $InternalEthernetPort.DeviceID +"'"
      -$NetworkAdapterConfiguration = gwmi Win32_NetworkAdapterConfiguration -filter $filter
      -
      - -## Appendix C: Convert GPT to MBR - -This appendix provides a procedure to convert physical disk that is using the GPT partition style to a VHD that can be used to create a generation 1 VM in Hyper-V. Because generation 1 VMs require an MBR partition style, the physical disk is saved and then converted. - ->Conversion of a disk directly from GPT to MBR without data loss is not possible without the use of external, specialized applications and tools. However, it is possible to create an image of the GPT disk and then restore this image to an MBR disk using standard tools. At a high level, this can be done by obtaining an image of the source drive, creating a blank MBR-formatted disk, applying the source drive image to the MBR disk, and then configuring the MBR disk to boot the applied image. This procedure is described below: - -1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy **disk2vhd.exe** to a flash drive or other location that is accessible from the computer you wish to convert. - - >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media such as a USB drive. - -2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select the checkbox next to the **C:\** volume. On a computer using the GPT partition style, the system volume will not be displayed in the Disk2VHD tool. -4. Specify a location to save the resulting VHDX file (F:\VHD\w7-convert.vhdx in the following example) and click **Create**. See the following example: - - ![disk2vhd](images/disk2vhd-convert.png) - -5. Click **Create** to start creating a VHDX file. - - >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. - - ---here is where I need to insert the procedure to convert this to a bootable disk, given a vhdx file. - -How shall I do this? - - - -6. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (w7.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: - -
      -    C:\vhd>dir /B
      -    2012R2-poc-1.vhd
      -    2012R2-poc-2.vhd
      -    w10-enterprise.iso
      -    w7.VHDX
      -    
      - - -First I capture a VSS image of the GPT disk using disk2vhd - -Then I create a new VHD using the command below, attach both, robocopy from one to the other, detach the original and load the second. +## Appendix B: Create generation 1 VM from GPT disk -1. Create VHD (function thanks to Senthil Rajaram). - -
      -function CreateVHD ($VHDPath, $Size)
      -{
      -  $drive = (New-VHD -path $vhdpath -SizeBytes $size -Dynamic   |
      -              Mount-VHD -Passthru |
      -              get-disk -number {$_.DiskNumber} |
      -              Initialize-Disk -PartitionStyle MBR -PassThru |
      -              New-Partition -Size 100MB -AssignDriveLetter:$False -MbrType FAT32 -IsActive |
      -              Format-Volume -Confirm:$false -FileSystem FAT32 -force |
      -              get-partition |
      -              New-Partition -UseMaximumSize -AssignDriveLetter:$False -MbrType IFS |
      -              Format-Volume -Confirm:$false -FileSystem NTFS -force |
      -              get-partition |
      -              Add-PartitionAccessPath -AssignDriveLetter -PassThru |
      -              get-volume).DriveLetter 
      -    Dismount-VHD $VHDPath
      -}
      -
      - -Be sure to use a size sufficient for the backup (i.e. 100GB) and specify a path to a USB drive. For Windows 7 to mount the drive it must be .vhd not .vhdx. - -
      -CreateVHD F:\pc1.vhd 100GB
      -
      - - -2. Insert USB into client and mount using disk management. It is possible also using diskpart but easier with disk manager. Note the drive letter of the mount. Assuming G: - -wbadmin start backup -backupTarget:g: -include:c: -quiet - -- this takes a few minutes then you see: - -Creating a backup of volume C(C:), copied (98%). -Creating a backup of volume C(C:), copied (98%). -Creating a backup of volume C(C:), copied (99%). -Creating a backup of volume C(C:), copied (99%). -Creating a backup of volume C(C:), copied (100%). -The backup operation successfully completed. -Summary of the backup operation: ------------------- - -The backup of volume C(C:) successfully completed. - -C:\> - -Note: Alternatively you can back up the client to a network share, then access the network share from system restore. - -3. Detatch the VHD, remove the USB, insert USB in Hyper-V host. - -4. Create new VM with blank VHD, add the usb vhd as secondary. remove it later...no need to keep the image on the same disk. - - - -### Appendix D: Terminology used in this guide +### Appendix C: Terminology used in this guide See the following table for a list of terms used in this guide. @@ -1079,10 +952,6 @@ See the following table for a list of terms used in this guide. -### Appendix E: Create PC1 VM - -Here is where I provide a procedure to create a blank client VM. - ## Related Topics From c8395e273e979cda1640b963a211595a6d19fd43 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 17 Nov 2016 16:24:10 -0800 Subject: [PATCH 043/210] finally did it --- windows/deploy/images/disk2vhd4.PNG | Bin 0 -> 16148 bytes windows/deploy/images/scanos.PNG | Bin 0 -> 61226 bytes windows/deploy/windows-10-poc.md | 177 +++++++++++++++++++--------- 3 files changed, 120 insertions(+), 57 deletions(-) create mode 100644 windows/deploy/images/disk2vhd4.PNG create mode 100644 windows/deploy/images/scanos.PNG diff --git a/windows/deploy/images/disk2vhd4.PNG b/windows/deploy/images/disk2vhd4.PNG new file mode 100644 index 0000000000000000000000000000000000000000..97f944844141f4749bb95d14a27778649bf08a1f GIT binary patch literal 16148 zcmc(GcT`hpv~Se0fy#^mQE4hFNQOy}xhw-`?k`h55zZ zVh6=QAkgmLF8yi=0&NEVzsY^aHsF_C3dIw^KbrzAFPef1+hj!-KY5(Hb`At8!iulB zYz3}&-o11q5Cqy&EBd>M>i6L`2xOe|+pp)WLt&i3oyl@NLA^_5%m#TS^HbcTOYWzN z#(MjY8Kks)W$G@y?0wWOhEUKxS7$ne&`LZ{%t>di@VUM_%}J1#!}bpBLT> zsuUJd)|O8i8p`^z;k!YgpSNK%cAM-UIIz}kvP{Kek8A>gzHZxt+hf9~uWQW@YF9~r zsE`AJtlxTnaK1veC$k^w%ovtr2j6dx2|uiqApyF-dss$d_v0ACqWR*ZE0lp#0fu^o8MOr^wivRwa`>`m$ z02`&00S9mEmgt!Zykv+?nyJ%x&TRDO%QDux*Hv38nTaP)m6QHOF5jYD&=))W@LUvU zX#aFh-PbM?d$4g}bKtO*POCVs3gNQ2BCy3^hi0!XeyfA;7+Qo;4lrAHg1!eStaWzv zjgUQSs}o;r(5Sx0Q@pX#C{j-jpR{m#V#+e-h;PEBHE+R7v)Er)+%;WXFB< z6ski7XOk-ebVuQ^8;%5%+GrWFG$CgjJWu+Hf za&JUWYo7q*NeY%03)@qC6CyvLkl|2K<&Hf+QdJ8kRH?5}6jr_;rSQMR9Dhzy@?J`8 z!~e~uL;-C7!XU48=faS%;8__ZaLH|7+-f?dQcWl0Vw@7SEAaO_&UeS+0F8dYDtjVc zrt7obJ=;*v91d3%U`o#`ordNcNNEVC2WDsA$_;ZU%iD*sCXv_5*<6f!%c$PirlcMX z%j1;mdbyK&xuH&E-mCVO3fBTdTb*Hf&=_j81CF?YKLpT8_NVW2X{_Jk(w6IR{m_$*-}UJ&+_T(w-7#I=E%RX%Xs<aI7QKWT@n|awyCSX*&S7HSA7pt{-6{ zg|Ij&YH2}HXI@fjG!-EeBP83m%N~rOy9M~r>q}|PMVhH>er7>j@z1|ieCt|V#f76)tWvUBn`TZ}hZioe@cVr1X&Tr)%> zW}9>rhaUWREUz1Lpl4veF~6thu@GnfXWI#h6q3D{NgNX8Px6dV(UAue^O{oW^>fSj zOnk$INK`Srvm2$Fz#IeD-7|^PQn@IwDk7!5Dw*TY0 z{vi!X%RuD~A9PN7s+H&jcBilqnGwS}L-BH~%p}-BCB)P4CHcR-ROO#93$jgz6k|d# z;=$$t%-EqF#KGY3WTWt4Tjd6feevzzLcimqYM5A)46^a;=PkpjLyNYHD{heo)>a8C zVdW!N;NrN&7}c5?^eAlru)laPAnY=os3sX)Kj9BBHKE6^FRc@Oy~+!hkYv|si_|Mi ze~ZlNxiJ29#F*a3j-lHK^GT$)WlhaR2-U76or~=&IeHI@0ihT9`<1(mH#rsWNbEaG zlkschj+SqD9QzW30UbZrh4k6Rqt%+Jbm=Wk!Z=f}J(-w?8IPpJ0*8d+!#RSryq$zf z0!KBHtyAo}YxnMJNBk#x29(xu>x!;aRgq#Hmnjfm3+1JJ6MX+;@SM^3Vt*|0$&87< z(m(_+q&C40CN)hKFlOgFpi!mXJs5Ujm9bNBpW85WeI5$jc9L3~eFw%watY`Y1HmlR z@Jkw6lO!OTi~=f=OtMcwLoN#EZsn}1pset`Q90GPv9Ux>b4*hD=~5gx=8pMf=?gu1 zzqrt$n1A2M+e=HOeAsP$Onjl~TJ7*cUtVD2=5my9!So;Td(XU<%Lw_8{rag3-wim-Qs9gQXpz#%evbirL+D2yr0~?RbePpW!|XTN7?D4 z$ICvN#!g)MDDTFLj}c4JcWFj~$B>9&@f*Uq=5-a)3~EL^2^Mx|kxf}nz1xU$KB%$W zt5jPRxw<->v{oCrM`5J_S0323CF`<5+ypws|MGJ59KwKs4Qy7?zu?8trO^q0B!M9Y z9$rH+$W`r(FvJDGLA>XT-GR5G6RJs}eR@_xSiW*k3@i48*A^S+`3mpa7&<&)U5;Yo z_F|#l@kiFtGlM=Qtk^ck30~?6*Ic!YNC>>t`X9kXXKsCFtx8#F zy}OPYl88i4WYgCV%dz{IdscxNkYbDe&Zn zY!K-C^nk?zdEaf6FZQ*@;y8 zGdn{Ri1#B1S{)Hko<$JQ};V$#Buc#uD6M^;z>C~!!27->3A)LCH#;yZ_JSD5v zV&c>!qZbe@`vk1gAQNA3Yz(rZ4DOo4tw~jE6WjuU&O|$}n_ZL^gVF0p$`dAuu82sO z0fF{z6_x>xsncWZhin6#eb>u}-}AvgPufRiuIc&;N76{aFx*8UkQt?0x~G8wX0QKX zHZ&$Z)@D%9FAq_Q>kEd#FB`d9rxg9ovF9E9&CGz2GBB^dQlVo&*F@?{sXB-ERWCSg zY%FZ4jJ81a2Z0WLDO?9mZ!;k9J-{JJ0(JV$H0SlY$EGff{w>1~R}Y9J6&95*blCFj zV1c+ufM?I)KNfcHKOMPC^d9+qH>zOMNv|XcEM^&W3(@+;(`DnyzZG*o6qsPxOcDfMp(}G*DJ)lqV zqGQ}qAg*6+@lgm<^Mz_Go<>>JOeYmV(f$49p1A^YSULrH@z8ja8Ule^U+EEXSJ~Bi3ou5E#7T7auulwDdbp_l(Q^RW<2d% zZMqry7gVPC$Rg6pDJDVm1d|fN_z^HMZa&ix18TaeDVjxL8mVwCz6QIJ>$VWXgV+B`wCSr5uPkR|4KI{qee! z#~U=%ko&6}!|?3spkMLdcB$Pg_!6{jGKn~g)Ac{{?Af!&@k-DqR@vs5j%=uv@*DL4 zaSSGP&vvboS$&v?oEQPwSa?tn&asX|mFj7`Gr84>q!&7Nip#EhA*YWgc)*!xLV8mX zL7Q6dW5^(Kk{76YFvGaI)w8ParO|{-o+0?V+&XX-*S^p2p2Q77>9(I8z-LM=e&#;v zuV=23l1bxys<2FsH5&Vr$@M0|k7^ZqGKyDi`?yF=WGfphKp3<&$^c%bC)7lWSD!hO zgL>0P!VIbIZA;UOf6619A#=rp3}JLPR{A8j9SQLN;Mzs6b6vfrUsQPC;uQYu*Vvb| znw<1b2*Zu>+31$Ir_9!f*gAi@IZ!91luuDfvV($UH3D4Vnp3R{JLBgi|K`951}^rK zi}>Rb584wu81mS8{Qcm+6`&PR05jKq8|C-QmU=K>H3&5|`zk3vG~)s#%m?me(v{T2 z4RA&3F$~>Cii-XH7@fx7e2QnALw=sG+5vkoJDEp_%X3g}sBVh6;qOEbPD|P+0P2m{ z>BIj>F(--@4m?4A4=E1C10b$s+a!1Nc+W5B^ z<<^F!5@%A?R=5h9mmb`Vc@)TMi_NoC9_45D`wuK+*Jq6co3xz^X;ha?L?HD(jJY1< z%WXv-QYFx0`pT!N6|lJJJZs8yILbB`PIs$wJ=nLf99{3-QXgdE=R+b`u2#-*CiifrxpJ?g?tP9>M@IgFpJow zxQA-yXO(!>z7O1=V@zz0UV89zUbe-@B9)lX>%J*^R(jtxxFM3CH1?}YmUSO=wS9J{ zE<_Ua2Ha4C6Qnc(QT^v)Vp$@}ij z>XIVdsk2EF2o>M<7th*_wQf1{w@)lKbr~yDEPeA9NCe*We8oKM-uezxv*6&`k}G;1 zG{5JcUFXVOd=%#LUmLg!tLTj_7B5;QUPiLf04h+HpLSNwAd|YRmap-(U6K^4CS_-~3i>7%JZus+|NSRRWyAFqp3C$=#c)f?>6CJd zS?S6PkPI_ksaH_~)Ba!#FE@EI6l+9vZyDMH1kHN9>*4O-Fs2E~v2=8w-N6zdN-^u0 z_5(9xz2%54$qY-(L&=?0!JMY($C+1>+$qrx^IrJp`WM~}v8_u-96mkD7s8C5ONpgE ziQAqj2W;iB#txl)Vm zo;E9-R&)5I+>)vT*(D+20jzJWE_oY1R+kUB0b2n=El!ml7f3GWKoWVO3otrsvoX+f7~k3Vyj`hJPdUS0fOV-I)to?mR?cPZ{%!ynrfv?R{s@ zeZ~=S%9>l9Sg>N= z+H0pR&FT%7g^ndX&0gT$Qkm`u?h37HsGRBAVq~S|kR|I?)p*?=(8k~u`=f);~_*q|_`m8Ey$^*&aASzG1^ znywL@4O53?jZ}9UmZdk{+3u+9BX6u(jgu1F`@2>#;IL~Z)ZgcrX_tPNuFGplYC5q` z#3acW)B*UMxg<$ihEeKj`=bc(xl1oT-fn!!H3}nk<2kB#w(6Og@I-GyjR@vu({LU1VB2$i|Aql8r=JFX|VNl^)O&C3{D|7(Y zZwDkhpsSI^vsYdmioAZky5yv;t}aX&Kuj>eNqTI3NQw><+X`TKbJF;?1EFni*E-Q& zP8n~DVxz(QI!jcJUi7$mYmXNYeM^DpYoYq{tym4fbnF^yAZ8C&3%@+sEmQpPT+9|# z4avu9#}mQOF*=YY2OMED;PkBt^yvt6m2Z1bV%21mKNW07=u5?2a&*DL# zYsbYY>U&?=9o<2&I4fvU{YgLb($9ddcdsfv`Y890M|m{ec@6WhVEesDQ~b^AqQb+# z2Y=HIQ&YAjyQXaQ-KR%Dj(VSg$2{!(sgG^%d>3!=`$m0YATqyABIodJ#nff6GHAGn zD!&B;I@Z`fQII3D>nY>VBTjb>tx7GP>yScb7@zAm{@9WlU!U;KCT2x@WFU{Xyw+-7 zwbMl2e)fz%-m>9x-(6rod?GDYj6?z1^^rbHjA>+KTx12n6>g6g(W2tD!reXg9)xgle>``ekxy8WL3` zN3lPTR&9YDws`U^L61~nb$hVq;AgL1xOGpSP+2feI8Iv!%o~ zOnZT7mUBT$toY~p5!qJNj)i)k2YL2nEiyYB!#Ta+s0TO<<~&L$ImJ6ALdlqCU_&zz6s zB~0Xbm;hE_jA+i2V!dAmDu;7r=Bkq81%oEA?VirxUYZ^*J=woX3O20Y$Ld=N6Z~bD zx}Z12h6{KLE4RaHCFNl}B+?&91^BrmWmK8e*Gf{`LG#jm%938WYLDHd?fi@(km)O& zY?#f!La3`1@BIiM>?1N5(`yVhF=Rqg~Ow zGgLaHqbUPlg-Ngy&l7*F%xjQjuuUF-XVRB!S?-rlj0@8orBPkXns$1tb z_cck2*<53bGz$hS35fA-BOsf8K3y>traU!Rr4!Ed`SE8dH9sZC)Ma6+&*kRLLurP{ zQ^M)9Ql~D|H_0*vPF#aXb{9A%kzGI_i@5xB#%q;jp|E5|tU=+h^QJ^5$#K&7z+AL6g3Y$6;)(M|MhUEmZ(<7$>20{t0@y` zBM>MZkHDCczDcP^a2)ot^?X(9Ke5ArqE8%S`oLC>IO*RX1UyB~R21LZXXj4=5_6mYi(!&uz0qpZs$O(^72+?hK8Ef*5GXl1V>Qn7>M}V^*S52)$l6!2 z9uOhujHRRa))x*SX0VsbJg}mdQ{r8w->k+EwR0f7{fmVw4~Wxt(A1Y$3QwmkQY zef&~gf1P8Ak@^Wqk}gn&V1d$KKS<`lfdlkZdHTI@6E_`(j*N_qBlkFMSCw|sIs94t zNppKY9^uRP>ENus8Vns0X<1#W;b{OylU!b2u3tD5ED9SgM)IIo# zTiw^&+k1gX;+th0cnfIs;%+JRH?gprSUCgjG96@IKz=T(>$?E&$PnHU9G~g?!(Oq> zJZy+7^yv(rFEg(OXtee_@R#PwY-Pi9dE>E39#5Q8n>}yf@2;&Z%{HkLt{(AICdjEy z5=KgUVB*^){V!GQW#S?SmY}Iqu)^VWsGSb?{b}uim{a0 zOm=)|k5ctT*U8|}&@&qg~VS`_)pKhDrl4_dvi;%@@mQGsso z_znn`K;~4Fa@ynNXl%kAdT5{K2}|eQ5)w+ZRvDary)`q|VjivkTZ9~m{R`EyC%=Oc zGHDpYz?Q|#S?dh?y}1!>tmDRn`P>rvToBtjhz(rfz7r>o)5~xsOIp)dx*78F4@$1$ z8%Dd({K?f#Y^y3{x{eefQ=%99tx-IRyp0jm0JNZseAOk-jFTzW18*(PLW*&_g-e&} zn&TQ{V&}xS%DD<4&w5DhZ$GnBWhp0d)eioJV64#EPEsrziknsrXn*qLiT>Qcq~;(4 zdV@5>2phV8QTif;q3ahwK>tf*f@yfw(Z*i5Y|#g z4hCbD0PaIwRr3AIiC^cS&7@G`Yu}k{HHHpIGX8Iq1tNw1mW`+(vW7}_A)y5bdjP!;W+*4@Y zUJ)wtC8A%V?;-FX!#G(Vy}#c~J}p?vzqB|DH{QQTJ~U?*E8hf5E=JlK)|atU2Jh)k-VlhzPA)EaqCv-|ub``ZS^2J+!oprLYOH*>m}Ys*>8ieF;)K z9;JpnAyZ8kzh+Z@L9-Mi_hmSh8~D)6jGC`ViJ5`lXNZ5WtT;$GWv7%oXDsURbdngd z{1yY79As`iW}z=lcSr{A-exUx)+2e+!-m(~60Z}I!Yu+$C{Ya_k5U?LSIQ8BDCiwn z#?cQL&ql#_fg{(l?#^28nCl?ums)%SAT#|N5!DMuz2ynfd7X>a0}J8)F4Xa{gajQd z7@}XuxxxY9q^rN-#>PONkeQMj3%p5GnO5R!MJaHw4=kh022(Tc48c&A=J>;8g{8}g zHM<(Kq#*@{aHvpXi#XUVQpbfFmu{sZdCO+bs=|huewn6YJo7eKEdlN>FB6ZF5+FHY zHt9ND5UzbLEv^Gy<;NRYDc}8uY>8{k#dWFRkUyS6K<%W&n!9~=(x2>!5}@WMXW<&l zUbaUg7E3~+0tp$kHQ$;Hqw|tt*WR*Za3R+X5}P2Wp|Jdx#jsvvQ;S}gECB+M7L2v- zep5PUjI}YzvoYo&i%v0Joo$rW;AKZ-^&-wVg*2zlt~=i|Tl}VgI&5g{;T+2E3Irqn%AG>hv&>!d?p^iB2mw0rD8(NQ~lF!D!JKzo9j2-Mea!YooA_&qwWv0y?4< zA1!_ka8U!|L5{t=A46AO5R}`wG+u`=kfO=V)VXRy1IhMe64FPF0Chb`-UxH=>!ET>;C#1f1IB{KVuy!aMUNLC(7hY@LlpP0uGe4uA%!<&wDT2qrRw-Kq7Qd| z{`_{p^jzfLgt-9gE>nEdK<=cbK1N`SP@Cqx56FF13b6fRWQn6mN>)lpil+KxjE8B0 z(iQm?YRfHNlresv=3jg3krta{XX)(m6{8b5I{**2CtR>63V#jY%QvePc18#+nEf(y>#fQWpS?Va;>jRhT%u=|qduj0Ta>jlDubUe&T~>o^KP&u- zYYsCm$sy(Xbe%H-mb{m-Y8Usl=u4mgfm>I79EzJiQ*h=GU znCgZRic1?NN$s3tzaKN$VJVxYAEc6ItiG-`XT9M3#9U2sr21`W?%>nhj6fAii=oKE zWbmSe$Hy}3l?iZHByY1P1>-<4G))d-ZUEv~FR=P$N;;sQcyr_mb&-p|T{2l5Yy4d{2H z405f@#2;=L%tJ6Xp|xa0lizaqH8ReoQIo_B1v)w^)1_9fW@MhZjn`T+Rb9rfI~2sp z#I+XV`f`Dm0@rPvU1@qw?58D^M5;ETtvcr9nNK=XbfSr@;i9E|=_IC7922IIacoJ& z*INxjV-va7@JX9GPOc?0CeDhcI|wo8Zb~H{uw=c~_wD0x=jQ4Yjg0Rv6ycghB>Yt& z*;CvC;0%{>uff}NW_HnuGY#m>Pmr&OK{;q37?F;QIN}Rs|Ggth|qf#%+IZ|`1%@fK$29A$y@>CG^Ju}J9p%tLB zZ2q!JQLr6vLum_Lp9~M9`ut)IgQx8G14WzCkjn>wfmo4B#gR5>DPn*QIjsSKb=ui@ z#dZ1@l*0o_Wpdd*8LeHYR4|LmxlqDmBb8H=_OixeOHg6EV(XYA+V>acjN_LN*!okH z5?FPJt5|%IE-?KCWJ>lQ|E$Qr^c=3FK6LK+$e*1#R>SjmmONf$7tfrsP#zW7B)op- zIbF;okyNOi_9;l2oF=_6A6WZ-!2bN`q+)Rm zw>;X?`0Uj?*fOwK08<^34dX1n^%~RU1bOqryO?8g#1_4YiloM^-)>mq=*9j7 zIba5FK$jZh4VUcza2g=#(aSF%DlM^cTU}e^y;6P)WQ=tn?bSza9>P1qSRMj^hAaJY=A@0;Llz;vu zx)|o|zAhbC!1czls}XcN)wXN=JCV7Z*bbCT46~_>=>+i=lFOUeg7Gp<87va1P5A&7 zSZM-5k#!m6-WO3i>^;-6^!gH@gaFqfC5lSo;PRZ3JkIi z(6Llx(`e|3e~xPy&+dSXpiZwz#+we(ckH7DCnUQGnFFVI*Gd6&gqWotqB0bd)Od}P z)DB=~uaJRd>CxcQym}+E3T~R&YR+nBxxI=;Qyh@9W`M86UgHCij6*Ue?0&Icks~V3x=tuPe8qogqBw$)iJ{uT10~KWA9A`=nP?@r^b;z7hSlryQrEAky zBSvpIr!@hLrRNv|@|5`ndM6xjVa7&lW@f_0MVxoIH)!fyk8Kg4QFZx-8e14j-r=$*=WsU|LFwtHs9Q?BM(fObtpf2rkqQvq>&me=^G<6Qdjj z1My3Y>8Kj=`BF^gcr_XOct$QlIgoZm0t?X{sXmXrdUt*JV*72b7Ey418p}|v@C%dp z7s)s|1At^PFq8TbXu3_!9Bp7Hsyo(%^7`WWAVy z2K2N$7*CEkL&M2@`R_(Agzp5Gr&9+^DzE`2d`1&0QK&9(uGZZIDo`@}l65V$rao4t z_Rl|W_I`9ZZ%;v^?5lziw!bzkPZiLM0OUMm!2e<>J9ph+g}l{oXC!g`+AvjqJ*7oP zesyBD7Q5#2ogL}Ah*w%iE)HjV33=$_E3*%AyCc~ZIB}Ct@1-3b=3MHA66g`a#aBezk09;|xhsqs2A+?XZ~2!NL27Eu4qi9a%3xFdCYzd$tUWKCvZSq;{3J!_{Kup{m`_sBWvGwOR8AJ^19e^!_N zbn`h|y=PEbJOEC*b#D6I0F+D&z>T4sQSgd@W1u&?0X0Zm)t>QQB2=uCU4}vO>b)%xyt-Fm4px zh>8~~39e6PGaM^u0hF<7%504|=)U&zTP}6cQqv*Qq7F*|jZrD*9fqGR@I$GttYk&X ztr0W*B-TU!Z0#eyFEM$NEXaDMrg9_P9})Q*B67m9X6Ob#a9GKN%e$W3Z-NzeR#$f2|oC1VK&T>+#N7Dw%m+*E<7wSo5l_(Rloy=M%O0Df6G23 z#{tk-Vis^pA|K6$)Ymt?El;l6Xl3! z@%#2b{Fd*8;qTV&)_F`rO$QGDaRpMhzd}9$aJ*aZQQD)vpQg3!E^+4rAE6~b)eJBi zt(1hEde`%u#ky^S!_f?RS2>lmT<3MAtcI#=5w;v&)culuxTmfPmH|wU*}+jk3s;mz zS=T5F{oeZ(d(IceI4R6jZW`qL`h5l`2NZ;ueM%R+;5>rsGbf1(jR4e&ceZ(FhQ#Sm zw7!O+iHB|v;_cen+EmEFG+qCi^gO#p{&V(`9%_|u5wJdPsl}rhe$^is5&=5L4>uTW z;ByOQz73i`2B7?|>Tc*09t$oGz}q#+qQ-uYSs^x(qw(j`MBdy=nqHv0_JzW#5R)npf>9*4w6_=j(9rRhlXZ;S&tCo@bvDG{mr=*uIrukVos9YClR*K_qsxmu)0;DJ zcieEeIYe+HfBHNj{%_8}VwM#RM7@(QoB&UC73!codw;?Dgk&gsxyjh%gybLkg%-2R zVRD$wSr9Rdp^f-f0-@)+@>OT5lo&Nmj;)JAp?pa;%91Bh*OfUMc_6aE zVs_3!2{JQB-Y{Ejy@0j)ijPb!A`}=#wa|YKw;OSub4c z3sh#2HOVLcdakq>gZEC}jHWZA=jo~qJ3dr@k8)ifZ_yy^SLT(D){*T??pfpSj<=+I z1hSQ^Vt88OLR|&Jd*JV#lmZi@tNy-T`Sme#R!p`{riJGyucWD@;QP||R-0oXxxiu4 zot58LCz6VC2HYpgOWh&`Vq7ovosZBx~ao1y!zcudXY7*{?icfsX=zG z7yeHplgaDzKJn-)uKsc09(%O}1Dg&!Ae38Wly*Qmy_G@UqJvc#=l22QB29j006D@r z5J?{csh;3IZmeag#cYNGzahLVGvkpPGshklp;Ac(22`wlOM-x1EzeJUMDoV7UP8WF z1LzDhXU#nx7^1pAky9F((jLAT#>wSchv()>ip8SQSs8vgtebu1;O6G^++rHdU0Uo2 zzx4WocXNHysJ11b6*4-$J}OJ5EisMN(Lw}{3AqJf{G&R_ zdjOVR&KQ}5r8^~=pOCDy0jRUP3)uFS%Awr9_VCp7Ftp3`OE`L7zd}P&%&Oy+={a>+ z)#+Udk%Q@K$93j_$uJjAf9dZHL3oSL_q2fNL_h4jf+d;#>4c>D)kyPyKio|0XH;G|68nkTbk5`3+C=7@k8O4__;jRSkDDqOCj_+ z{xh$`ZfvQs2M;ZbTB)2)IUPeOIriE?xg}Xs(Fy1a0_dV{9!T?YVU!cN!k7`XrE+kp z5BlW61G7?spxv+3_0hIaLtFw^iBdDwcR{Nb0F{XNB zOljzNjq+bU@v4N9DF7u;QNEATDf^EB{;b*a#dEmwjtpG9O*mRx$ew+=S=5wLUor;< zUMPX&h)nUV*Pd@;{0chxLgUFSvS*hkq;C`(>hnxgTeA;IRAuli-J)D!#$NU4WG3q`!EZoOPjO zQVzBWh>PWTrO8i`h2g%Zu(!8&#T6lob8yAQNB!ITz0Os}P_NU$2*UHaJ7oQZj8Z2^hT=NIG>Feh4a2BQ^yz?$M;Q5%Di)%QN zCLn6t^or||1d8#71Z#(I@!QUQ0Nl{_CCW&k}A<~wlA9;IlyY_r-C1{Bg(>dpRksdr(_m_ZI<1nvRJZI_>5|l&n z8cj?p&8^H+?A>ACoh8X0jrbWh28!#?1LI|`Ta0_|b+A9}0X`w=9>$iRH6WvKJH{{N*363gqIO^D2$}VvrprOdK zB>V*;+nbr04cZe8TN`$IH3l2btgiJh#2$b?8ecZcMdj7HJ;vkIHPZ1nyAuS&c!y(i zjks`B5m00bGLoa96CaWuQw*|QJ0Cv>pXVi57myABe-7VYHQ6PgS|A#Ut(th-y1xUt z$bG}UR~FX99O)4G)KZpG>%Kd-zBb)Oye82szG{s=tcZ6oD4(jUxE%ExZ`Gti9WW<2 zwkT5I5ICNg!NfIEfMfJkTlmKAl{5F6s{fq+b%^dgB1uZPHxTOgQ%5YxlkkGH;Av$^ z2I@Oa^%##OS7pyj?R7MG+<8NT7ph z``{%DoVfYPoqeA1ZuBI%XiL}>Xoao`4D@wrDAkx;eZ_QwM-WDxEQEjKuOEDeMIcNF z7bj&;o9VbJ3Lk2$CgXbKPPX=O5!uQ-!i|4v^)7aA39(u%M&Bos-p3Vhykw}OAR0a2 z&ur-QsF>=NnSGjbtN4ZWI@`_Nw%zS_9<$r3ktk7Wuq{(XqOE-aW0$c1E?vNTu$8fA zfT|sa)$<UY54W8zBk+qMjkDFxUU#3K?>`G1*UZnH<Lsd2JEMpqS9SlmwfVi#3KQR ze>)RIvSR^LhnXTePNZ+vI>~{?wfos}sn!nS@0< zC+Mal5olVqf2Vwp;HZY8?AH5Fv{%`&QB+N#hhCB$?uch+sBKfP zpF=VIJtqw_jbRdpi(Sz^0)|H;u8yLaX#6JSUp(v*L(qshsib>X!}lf_Npsv3m(j&* zwtYCpFkTv-iBmCMe`L;hZ!q$TwhvLPs!{K|N$-gaNVAb|6X`3}UU=;DgVcSJu%DXDBuTJA5d}ZyO4WX4BssFY zB-7{|`DRwGG2^YC*_k8S@8>oZ_oi%<=Fo2OLt{0mJR~xDzoLyY;!GL5i4qXKRCMJ# zoQZYGol{!kC#ch^5WCrJ3P3xJI#-RxfBR=hn<%IB=0;npT-$kvTbl0F$S8X{p64)X zX|S!BCAh`e|0a+@icIOJ923cCpE3HyDs*4iW-=@eq2DxR`5JkgVn7AnYd=i?X)?;F z#xZjd30Uk7HiAeN@VhdPuQZ3vW-LVFH^fH8y&Ihvnd)1{@i^@}Sx&BA{UAm}#+v#^ zxx<%!sW&fa7H61ZBZUT1YAH88SKl+;0$0!7WbDW7pZ6q?xFZeL0KtiUl;OQ7cyEtT z^mzd^UI;-xtPd#|cX(qLZKu?i?$ZVRQ8F!`Un{{P))r-CW`%3zUNW)fHt+Z;N2uhG z##zqb?T`TflGKggn;RoUrnK4DDT?e&kZVx?=Tj=d4S*PNg%TM^DRb_oWX<_Bx+9F# za@>qrh#rSY=(a4Ohn9SE+K2@}A6py+C&AjjblXg5*I7Wg(^!TlDn2Lq5Q#)|_XMDG zPqovZ9z0v=xL(Y8ky4rti*HcV<*|gZzKNuQDUoF}P>>u(|Bfvb$x_Fu340PRReEII zvFR&5F07aKOa1t!^V(vYBOPGHy1dAJO(x>H(digU_Wf5|+ePjeaJfJ%KBl>|8|j95 zukFm~j|=i-R+&?F7{AVaVUXiK*GD#Qx7RtUcY7sR?u|lI#Cr9e>U9wH_EAI;iuFhd7JN6X!8%7iTv6f;Ug^y^j2~a-uzM2^ao`z)xoIcNdq#=~*x;th2&P$06`6LekEAbo*Xm`8ls0!nt8@@OBb*Z2_)?GVh-tHcIfAL+ zHk!fefz)8&>Re;Zxs+7WQ&eb$@M<-8FjeG=NYLXu)q&P#KTcQMXM}7=VI*g0cSzo> z`uh{)F{!~114G%`^Nv`}93Ou=qUNy>^GjA`!;*$FQCE)A2NXjGr(%F$wg89yHg=`1 za)=mwjgtb4&)$Ud&gIl(*C@XZ?Y2BU#f-N*em?DnsT<~MdwD10;ay35pp&D z5UTUXICR5mugTk>JmCZGQYH9c%$GK11M5pKKC)N%k014X(1w&5ga3{JvkF-{kRj}^ z+%B<_3`rv2bCL~Z)>xXI*bcOYZdeyH1=QUfD-T@lYtX}f5VJSXj2S{F=&MD1CA1r| zUj>~Xm^OZAn)B{tJG`%Nv7|M`R}0w}{Vu!jUxQzgQ0fp%&{7$1$BQI|_S1b(l(AQ* zsRS!E@mWcMRc6GHES7-U?E}p<(^?rNgKFbi>a?)dcAY2tOS(i>DSu)DV^*8^yX6%; z-h?@{)OUhiZzeM9Z`=Exit%?PPqIOOX4fNXxx=L$4X%+p|282%O}gj$irRA^Y6yhN z-1+Gny%JHq$}+)?7YQd!0SgnPL&QjshKvGCw5CrCq(fd^50sk!R1k$7{B^AY#?2q= zMz}cYuKZ~saYNxRfS>&mpkew`Us#copa%iMn{hKy;fKhD@IPzi>2>8dn7eL2HpJ)p?bwZMT?s+d zLKzAgPbxC1dqRq7Dh9i5}muZ4#p2rzBziWm`k)gX-PG-LSmEQGl9OC@}la<*#zwEK{Ygfbc76GB* zX>9f1ZeW9Pov!RP037wxw}^}}&;SI&I$`!cx8)nw9aNJsbBc~bIZHLdQ<3(?k0|y_p;p9v<^W+G$){g8Wp0h3pK+J4t@-Yz-z`J%eq}W8 zus|e%YJ`qDF2S9M2#2W>(^n z^G|}R>G#FMWMzkUA4DV^!W{kgIjk2xUI$PTNZ@--_@j)of)pGnDwl`!c=Cen%_qy5 zYhDBOzq|-o@orC8;bx6XH3mt08T9AqE0vEG^>bDQ5{#1rE$R^j*%re8gq<$V!5^O; zU}oxE@}kzern{xr9BM0{P_h32(1g2R$d~d(N-N?_l@qZw&TCU__N7Er>u=VP-JFtD zkTw+r*x-J80H6}+*8i|7ux%FbhP;&|`8=YkRl~9uY7xe~bG?_HMWMsLSWSn1n4qZu zNnE}Ea**d7rM@%m-({rEf)Y|%bwb_+q~EfwKTfc+n?Z8R$5z(oENOQxYy$SIM@+A= z(gguA@;Xj8t5)K}A9%qlrnEN=KKlAl;y>BlAGT6u5!pT=7ur@$5J8FgyJL~m*Ubfz zYZk}1(`2a+KQpSBG?Eg6ztsE!kdxLea&v#iCTeuP{~g%(;o_~dF{}CXTEzi_QLt*b zpTz2Yhn`Sr`DKFEiAZa7lVSml3`|mRmk82U_e=l*z5_|T43zg0tc(Ec87KU+ZDsN7J zL5F-#(uSyG-Vi5hq?R@9^c)0ld_S;TVnvm{P+bV1NEW-+4bz}Wd5FlqkHpK(S-f`)*ll0Z*7+JjAOp78CxP)B0(2r)4fgAtI76!_14Qzi zweviwI;T95e9kFvlRSBnHM234HG!+-CzZ}d&qb~K2OJ}Qcb0^4lnFDn)IF+~sTN;f zBdavhs#sn2Y^`?^Yme^KYl`y4u&N_-a9Vn;x4L-eIlRa%?*E>)n| zt+VilSGVlXAH7ja>YpWbLA^s?x=SThmE&9uN@)jr1b>b?Sgm|A@>s2P>1V5T1zLYk zk$vWKIt!i&|9rJR#-*)7%?W}`>$ke{nE(##zvbTGlV=3R=e8(_e?0QO?eY}0s?v}0 z5rUx?jsJt2f!^=w+`#R#O&4*F1!6)hr%q z7-$-7P-!A>`{bUR?)f1h=Z-6tlRV;QKC6_+Q@KrzT|d!qg!91PCFglOlb4siRrC`dOX0~<_Em>oTaZE-`B*EeLp@TKHec0-vx@evhFt=O%oShB ze)_-Yi#yZ3Ox`%HnXngKbN&9#p!=%V+2o0pt`j&Abf52|#Q`3z^ryMe<)veXV%&cO z5Hj+$vDX4{+;X<8@y$IZ&B}v1!(RWIu01@(Uz&}^;2hawK3CJ2FUGyNe1rLM*B%kL zjVmadC9n=KUVPG*<}{}rvBcFXT;E2RC2*w5dq#C9Qh0wdZ{X228=m;`An5) z9$sLnz4=wGz?UmQy#om(Due_gABN*3$Lten_RSwOmY@G*v~_8--g;}vUR(nqmypBz zeuW;J899Z$2X(3BF~8z+zIO{0i1w1EKiIfpMTCkO-IS-2oNK^$K4GyNORs$@1h<3P zl!fJk@T<@>!kh4j1a9mkxB*-?g|9P1Z@fp}jKmwsZ?Xkv?prL-zy@RA8r6_66Rjd= zA=K%!QzX}4IWc0w*;UeQgcP%HP6SgJ!Ns{G&YR)wU4Pm}OIXG-jodrj>0*(H!~-Nq z%)qiXbilE^-W;j*z|9XkCW#o`W+hr%5j^Y*Vui7{=qIQFv{z=-+7tyCD=ZttZF$l*vRg52vix zk1TXXymxk;TGw=;GnMZ9LRBTTZ|LDqn%j^4n!{}`1(D;#f`x@owaj1j!(M8X`#5mm zZVU~o6UC?yBVEqfNIztHn;1N@2l(I3d)J(>u^Yc~QVUCj6-f5OH62nB@=E`r^rEMN zSz>lLzy-K~t-jR4oH~V}?v%H~<<~RKk=Y)%!YA-*0IW>ol_&-ZSONt$Hl6Y5(IUl1 z*$0acwd#MyEnNXf))D9JevvgjG*-2JvCSlVt!^g01I2;nPbWB6GcL-)9`8fXR+sAS zk3TBC-Z@Xa=ThYor6l_(((>T)_`08XtwM*miXpVCN1xrsc@dDEIY6f71d>Gb$EN8I zLcib?qz8InA)ddCRO<(wCM;8AG;Cd>ggFnja`99iTe36T_D3ZT??vqu43?(V?$yK~ zBP%0|>E2+F3l8jSP6X3hZ1?Jo%zrWTgS4SeIk$RAJQNF=Vp2QFhSAo0=z-@jNaA)phxk=y_`c~M5U#1rLB@VlxOGQ4L% z7;z*1F{UHJH6z-C8R6PK5Wr!jga>LB}=dJ+4ApY6&m)(1eo!KLTAGtR3Ij0)M;zuh%qnu>q7u( z3AwHrE21hL+tlD)CHHZD!Oj_p#2)sp&X<~+A*{$>&Tn?km+gu5bro2krH{Af9{MdO ze1x@QyqKefX zso61=g3gaa=r4LDTLWjmV7(1K4|_c~rUP?nm&GAsvEO~XEPw$x+ig%UZhxp5CUk|X zZoH0>y~ZGviF1|8I?lGYI1Q=QX&b54=E5+u;lv|OTr6x0Qyj@!Z8dJC5`%}?9o37B zf~Q#&M>fG~yS)%S+rQQI+np)zC9hb-4S!pUsd29VUf?E8 zV+Rl_=HBog*22OT9&%DQkWpZT-#>*3QnmTK%tg zJQwZ!7)4da6E_$ukmKpjVB1L=Et4)Do3pJtvvmQbHVe`Gz$5!GPU^%qwv64rncC}t zF`@d>C#o+Kfy5{yI1RGG`xjR1`VVNo(mE5MC$(BecWA$+{LmxAur23`sRWz`C))Pv zr^&d?HdiOt)sNtxjf}DvvA|uAXhVXaDT{6TzYG4s+DvRN1rZolRr0eC7U9PXrusr} z1TNQdey53pBcC_n34_^~9Aw6l=@A`f$2VjKHtU^zcpQsWm735{%=HVz9K_srUj z?|M&|%i_Go%lwk>>h83|70A43e(2=sYNpwHWd7mG{7ysiq5X)@N4)w}6zE`?BdMtU zhMBu|jx4UI5q2{=o0=v5wond@DdFz(tm)`y^5HTRQl6ZzEdsD%u*FAUR#@pyq z9rc1d&CU~eTIzXvyuSO8gWd3ndMN%Q%?778+ITi8+*dmu*KOO@nr+L}C2nUm35=p~ z3?9(F>=)3R9y@z}L?y4nZqajAYko(L9D1 zn!55f@d~U;npD$C@rnZ@pk@P*h@i6@1`jS=ZqKT>t?Ry}p_Sl*M4vdtQ(z+Kr<*d` zD{{GQu!5`oXV!JV_5rExBk2@n!@E0?pUxw6IA+h}g~bk>2^MKDO5^1tm8M~*i61e` zyPyJbJvMXm(#vKYUEjQ}axbS_`8<*9ACU+)e-1Ph`1tL%I9wQ8nf?v>|Y5sj+6o z?zk4Bm)}iopf@q7>OfOiag4!U!`e^tTo0FJ+HVGh|FhWX@CHyex0B!$efC~Y9uBb_ zbZeDa@IU&X_Jd)Atlwp>KCl;~a&s^x{b7;~NR%VdGhZ#xdJ~45K-PukCWs(kW@>Re zvVr?NXrspYMA^91IeJ%hpb^m^YD=cD#9P0#Nc)gHpX6(dg|7RlpmJ-VxFu1Gzmk$9 zJTO5r)jwz`J8-*AzJ#0G{bNMa8-dUIc_(x`OZYa~OY8Nl4b@mHlIU;pqNL|7?b+Mf zO6FJ}ZS4*gyTdMa=>gRRdqNTW{XQq}0KGp1oM@qZs;IC3My_IbxZR*;B4$tO^I>b9 zuB`5IbJVD@rr`QLdFI(6A05YTf)m;KHx>f$r+>D|vHsN3NwUopG{dV~msi9lmh?Ey z$=^aXDWAxFG<;8hO=IG;YDyXa*l)bzMm$_0_-KhD9zv4a@|_^dh%;-UyB25)B?Utn z$o-F@bjz0&kymPbY=4NVJS(?`TF2Yz0rU8xeb$)^+-M*T5cNZ~Z$a;|>^_lr{A;2Q zW!pL)yVZ8S_fqW)tOi}p^lod!u%1X08+|9rFS`yf$fV!OTR?P7_BgIGSN+Pyh(#S0 z@Bntpfwleqg%LZnbLAfpX?sK6zatrlH(l+Ym_}9U4H5PqM`6}~#XH7Tr?JHQIc$WS z40aMjDjGL2XE03^OMqcHRvS(CKv@2eFPUG&fGnl=!1}s3@IRIU!Xmk-f+&asV;Jsg z%`dV6xsx6eF9Vm(SN#jjh7fV=4p)|lpIePgfeA=X~is{Mcs? zss37HW|_c!+uPHJcUEr3)0+VH=Z{H=KKl-I2X{SXEUg|0b@s0v-q1sMVJkVTrvQ?1 zK|oyYI*Rix&jX$H0m2mQU49@mQFvEVfcXH5V$_8xD*)qz_3WnY7r@&nuNZn;Xfetx zfz7lVLvk-h1H;5Pm$3r%uaH=U{73Wf39Kd~t41W{0@hU4-TUfWc_YO#iFFrsObgGl zPVq#ok?$UmiFuO_sva}{x#!;_-*;Le@1;#XzFs3bV|;IHvLzsHaTts<)aZrpudJ`y zvD{zs@B1c5O;SJ73d^f)-SZ)7R1vZ~&YsSkG3}jB?8f2C23hq$NgqrHsSa8}7AEt0 znF0`DO72qho2>neq>SQcoTM$4eBHpPNGDPF$jyzI;>Gvt08B3@;Fprt9V#_r7#`#+ zsIaqJ0q;%-0`+(CyU^2beY5NIUP2>%%=oll4W+=y5@M!j3_aMJg&jrm)MiIp3wV`j z@?@Dp*uCs(Edur!#XT9lYAjoJxdK;d6z4gutKMM3Z~o#gCdgBOXNSR04aiHw_$Dx&h-K$ICFKe&)6iVU?cWeg}&Ba zP%?(O>^b&NM>zGo*a?~YOe$tJTvMo-3Lya_-$Ig4fxFc{TqRpPz}@HzP?bKDHe0z*~=_u2bdK_mRQPZw{#(lnLF#ogprmkTj>j zI2JD$GM#Rl&uL5HAA9T?5y3E3YqE>wf^&Y(dj?nf?`{&=Rd(5*x+dH7Hhq{=ph z3tAKX2gwS5h}ZhLc!&WKESjj=?rM&sgB~FEQ+mU~$X|<>llm3ypO?C#r8EAd*;G5h zdgm`1MdpZ!?7<%eOo^*6n8Hu!>w33>*^6p}1|Sg>L}c;kXtjhvwE!edlkkGXN7V1l zY+3?$@5817sXw0r3tQvUPDa-QztV$AEuMsFRj>}HbMpyH)6FO<<>uK#pwN! zklyhByP<O?mf-)+mwAQ$Jy5v)5h|h6ce~dA{g1EZ!K?MsIAT zreY{=V{3KaCa{*vNIaU3?ASTkz*7xEjse999c?fiOD3AgEBL_P+yw5PUrNj%Q$K7&_$Oul%mHczy-rt5!h2c2VKx7_@AK(tTQJ%u1wKhh{&*nA_IGs?eHP5I7q zaiYO_Kv+z1y>K#-5i@{_df&0Q$pPy^IL2R@i@|~9OrUrXkhskih`Q640Sj-Nq|k1@ za99^EWSR;%;X^+1GGOQqM#>SiyuJZ3NwJDJ*oTb(w~Zz3G~58uQ3Uy2pFQ0Ltj&d)rp<*6zHhj*$K1;r#;YxvaMLN#pq7= ziL99CN(Srj`#7#%Vb@5Cu8c?!o&>uwxnNa-q^a3%b0=%fPg?id<_+adx_eUBriZDO zH_j-FEL~35)ib*ebr?sTxPcASppS3*Mrn(k5hqq<=uTLgBo#Va z@t*8JLy-8(qU{Cs$GvOtc6xXYY3Y(1_!cc6IzM|vq#~23#oMkNS)}T+q;f&10L5oo zZ_IArNhnG4tUKW#tlbLpA$n>(J}PluOPSWvdeUSs7%|3uQa#Mw5C$`7It(@(qC>C2 z`*iVwxY$MIJ4{3*5-=KO!xyhq$0yv_;r!r&ttV{OHoGxH%@+xIUTsjQi{G0h_wg!w z?jw|VzxL}tx6a*Te>bQXQ3Mvhy9!Kh3=o{Ue4sVibu6?WcN>cQB4>~^R25hp6qdkth}g^?z{N`zrV zR4JHzrh4=KmNE~-kpU;j9;AaTd3;P;PTW3Uv6JXFMA4xmKtJHJ>fiCOH7C@Upbh*B zHb7tt(%keW(1~~2N#50*g`TWsYBMPY62)%9hpsbu^8})et#-@pF`BK!#Am`7^m)2_ z(M@`v`6leYMjr|k6bBJ~oot5<{5)OL0+Lne!?rR%!}RPoAUIQZ@cE7a#L3Q0t!85R zQ&@Cygr4^6P~dyejvap$jIga>!Tc^8WNvcMVYBiGZ(_dHmv(6>0vyO$d|AGEIID#N%>j zaBR|M`HJzE^JIVs)f?c^Vl zG5XlfxV_RYq}_CVnJFJ2=oo-=Gj5pNaS%B3sUEG&4n~vxb#rhW$!@mp?&II8r*{YH zc085>NuY?1v1}rn&0FkWE^kYVf#LEV)iy>CdhC8w`U_X^hs2Px46}kf6NdTjk#m5FJX;-B1i3;Q2J-n@Jc}olLZQ9zerw( zXWZIOc*e6tEtw6%S{OpJp&o7I>7<=Geie-Lj>g&l?QB$N zRZVT!3A*l4VE=n$Ie$>8?Idh4WO0FX;~u6}4^g%E0n@C1=NUO&Jj@1a!Da)CS}zbM ziZ%$FplKaNnp&%U?~9MA{_=Mx92i*#P#}6=yG|J0kh$sw#tgDa4*gkbL;USS)2t@v zW+znA4&cO=aN@0yxrebqFzk~0sb*J!Zy8h1oYWO`(`=G5^Eswwf_Ka7SICFeFSt7E zMeGLG*k4arOeL|;+LhXl}JQ! z7e4TywK`&a8mV5f+=EcI@5F4g5hn=g>O8(?E!AqyaX)M>8VlE(|R=BZ7q zdeWqZMeH^gl-N-DSTvh79r{BwzoJ`U-j0iOSEQX|3d;L>_O+B%CB?2u$O}BN6&2s; zbqxoxP;VYy`$GoIMz5dPTCH@K1}oowEE?45b~ZSjqA;5qeqUQ+Hk`coD4z7u>kOCC z$*ycgHsLb9VNh8NP~Pm`)}J%HsZj>VbEF&(S1ikA@i1ppeF)?g<$HM9PvmEA+{L2# zM7^ISTK||Dp)BJ3@L8^+fg{y%F;IDh55B5oJ(Cn7>_z=kYjY@&wt&}IV}mf|GNlD5 zoDiJX1YwE%o~qfaauO-Z`l}l~ODp{|j?Z7^w?DwPMWNrd56ohamXwC=srlu|BOWxO zrXOqE%yAYkC*!_Uibt@0#lgpZFZlD~BsU_5)S6L5$s7S?u>Dd(Wt1H&zQY)s z(+v~mm^cJruokJ`9wLtzn*bHqkM`v>9)GhlSa91YYYJXnFm!*dH7T6?ct0 zb8d4V^hkC4I4BCv#$e{UHu-yx9g_nj-;6cDWH)^wI?w1Zt^tOLR?rp*G?6^XNKD@d zTm4RMK8tMGxaW+~>$LS;9$y5gQ%jbMfB4C~FD6qDVC>OI)WUWTws;Fy+;N<&?V3=Ac#= zK}$=g(9&6pR!BJ{xW6j6)9vGU7HVuXB&~o4jRlW2$yr_P{cdg2>EGo8#va!^wNJa1 z-iU}nDLDw7p#h^RQw|RzsQ~SttOcYbpsX2*NhdSYq#qk z)oFrF(f;1-`vMH&Kc$#W8RQtMA@P`V;+z7}rvzVkrBj_Hj-_r0Yniy3l=Z+qUnA?$ zu7B76#d;!fQUNgd9+pk3w5RUyp0os=m*tkkiGOh}XQckl_SBg_93ZNqsPZSpiEiy? z1e8*Oo_z3&ds`H<^fLqAB#D`|q7wGM@O@V#cXD5zP(wPz8COv`9>h;izd#Ln;3{Mc zB1#~1{9Q*GN0q*Zx^!>|pBC=sBNih33kx^%3^VGSZAKGsP@U$e0(v%fjnwC+w_0Yu zcrkS3QG^S%bUT!pp%0}!3``%mzUL^#_L}IJND#zs&avp z<`WH!Pb5#(evlHCFD(i(?t5pEvdhSTO3_0Uq$&gpth-K!FKUjd42$=RPAKrfDcXP!{cp{jie}?bG3| zDlg0a^O#^VO@bc2{!lZ=k3-JS()kOXqY<@}=jrcTz&z5*L+AkXqcRnnvvQ#dNGtXz z&>In4@-fvusVeJTR;S97fv;}Tm+ddEtfh`Bg3vtZXD7QYOPLu*ndgjLX2a3Qg0jfD z_)4y^{fM1y?!1B3XsfTCA(QGXIFHFrbt@$exbnUj82mV zZ8t3wwRcbKAJWIH{??RgJdylVzVu_Y zn5~HPRTMe5O&QCelBez>Y!NsKJl_ zgoLUSU3H}f;y_ozjQEqPBQlm{utJ=YVSyYvr|#-1(&339&YHvwH-4>LVmA45HZ91P zh=uxt&C-mGufRhc;B35KAJ!ybI%#f!Uzi8}ae?!cE!4l^)kxnWlg7- z_*%bICG+-+!Kr>#p<=3Q+_BwaPY>Isk4di-y-5`%(UFqrp0Fv}fkCm{Xo({zvpHKr zt#JQy13w@pa864S$+{Z&#eE|8Uy!+6@?mM5>Ie|O@G-fwEEK?4Cj(*kH+W8^f1w}~ zZ6}oco`Q5xZJf>;FiY6=X*Kk$4q&@ zovSIESVp&XmMAHSH)1-D7MlGR;VBGSw13>_+aC<@dCoB`{k>K`XNy(aL`paae6*!w^4fA%>y4ae7yccm0x4$zu#!{^N<9VKFvEUi5`E>I_r`b zVLCc+(wmR+$U^&J_=%fwC?wh2Vp%dS*U-Q!w4DHnaT#4`I*qK-b`Pyu;$p>S;5 z2|M@3%CG9M`D77P6fwhtV4N7YV?76qN{D}-&=UN3oiFBwCx9I2HMP<07-;-?P3V4^ z-6o(V%cn%VjoZD`e|Kl6D8)Y<{T^80F*zS;M`9$>3QpTE`DCe7`>Db4EoMf0TUh3% zgSXc9K-+l=%V9q87L&>^?&_$gYH(uGLrnbWYZz!GH~(ovFy2FYRXfZ3Me#*pA3Q-| zzy_`}hvrA2JX^6{qc-;JLd`hi5RS#6q24=&M@y{-%C$cDSVTF~~A5MHOC<DF=vFbvvRH;LFV%ClN1khOw!PjW}irAJ=DzV{vax2B)#*))5^Z+@u zfvZ)Gi#(>AJZuHz+j6>q24@7DI9M}IL!Pa>i)!VA)o5w>wN$FkmORo9{qbI}3_!$a5)E`Iwaaa^{pfYiO1aa(qH5 zCMtm!NURVs7yImoi2uBfz5S?8(@nVLY7) zSc1DfHM0Yxt$E{igm{*B`7ff~Gf$5r>*u(3f7cu`zjpNJ9J<;*&fb_t9&E9J9s`Pr z_&A5)2}WuWt%=n2KyLsC3egh0>A>Q)66=+YrAW7I&cP<;*Nd6amVLmdtdz(>tSGWxa=D=Ik@oNYrU zu`YMOXRWwAdu{S~tvK+gfMTad0~C(EqaU3ck3HZB$WIs^w&-}}?@8$WXA(oSl;tt3 z!&`8#p>h_M>ZC@iWZ(R<1(k#q4$Bq>ueW><@cbbHBW*;?zH1zkm)X$A`xYi65T*W} zk3$tuDhk=GNcPDSFYjcTLT-1701a>*1z8eth^@K0RAnlH;vZQX7PR5M)pA-g<67i1~1Q~OKiL6Dubnd8!rp064R=Ae3`0(Ix9 z=1d;W-TgIr_dk|>Sm@_39>45j<(e#Kd0^e{_+wnb0WC=6B$63fk_p{yi*0J}|7X0e ztZ#|Y-s+>W=40g`+J4s0XWsxxQr%4dY@~=DeEa!}qW|O_HsYsZI5VohVi`QE8kpSa zCM3fz$T7^AljmsY35|#CIPdee_a2CIK$Q4M6|HwT%1@$b9pj4jY#&%fT;QDJ*QDcu zpC`7ag2X5;X{8Ztg*3~dzB?0CS@UHChP?_$EhSECVpv)lX|_YhzG6%lfLF#sxy6gy z_#8>zMQecGj0e@raZe-)PW6;6)2?LlKSSMLLVEoWlolx7=^C{+>s7r*3v!?=$dtrc zt?udq>>&a$Up-w_#W!PZj37=pS5*I5VcmI%@0JxlXwbqVoC$}#gM9qI!gpvNdO(QM z2v7Oj8RGA@rr;6m>D3U9uLR|T;KV|f*NpyEQUAB<9V#wu5XL{$ee}e}rTq_%8~q2n zfNuYT=&0L$|4-LHGATHcfKl12bISiALumaEf;xf!1N^ACJ>mZY{V4w-3xeZh&1B!j z`;hcMbxF9=2x$LPycQl4uSV{Iim&uP!j+Al>YVT->X@N z)@T@B;(sZ^D*m~Uek!nsyu<$=?fCEikFG6RnI8MUI?%KS!*=BVpE#)u+ybev|CRAy z#mk&u_{<0B|DOa}x<5jEwgdlFOiTA)9W59FYNXfyWm1aDo;2mL9r&+eTDl)V08-IV z=>Lj$CWs>Wzh(^o|FzyP?fnf%_ZgpksZaIO}+sA*~AwlYQHV;dl zky?&_Gb*X}k6({5UcXfg7pb6K34t`M9`kCA_(~KbrNyCKgH)xJigAWE*t;l%VcGv3 z>J_~#27!WjF|f{lF3B?I8?UFWYp$ILb-r)N^gEnm!+Ne_Fry%4(Mp$QA#%VQhVR*}2hiNb2prO!Va59q>LF z+K#*uvNa`G4*)6$cHdi`&$L`tK>Z&vaLue0PALNA#VzuK*pC{nPpBwtVNi`Oh zkB);=WDSNNH%N7D{T;Vki06)idLsEGT7M$>brl`Sv7_q|B$!|0z4l@FkCUHweC&LQ z<(rVd00DM(BupT#qwRpBbn0j(2*{D+=J35I?oCFPuY?ICCZNV9v(AF6Z{myN$KR|$; z5i8#O8{*+jAl6B2fcJCqF2UCs<00qdJgx)BB?Aku(|0j}beQ-$4qOI?XD6}6AU3Fa z<4@iq>rWuRuEKX6QFJWdF3j(@hR)>g<)w@A?Xvy@ z1lSqT#)J`%NCI&j&^U}7Y6q&VE>(+WJ|{q#&z)6(2?7Aol?2i;Pd*iRr?B+==CeU2 zo|X^)-Z>MkKcRdqwmX3&Tz?|@bq!tLMa0WD(fmH`G4|mje{XviBl%JindKuVC+$uRV{KU&jSV*W~L( zB6$V~u+w4H+kZnmlt7HLv~y0!31ghZI$CFrWfAAFZov1V9Svu`j@n~rkXN01`gFyi zZ4ipi5mT|cYxA^6>G`z9^Vez8?2NXH1nW=OF2v2_nIo}$67$%({5nVH^LIhMM5psh z{*gBB90qyq!_x0Kfe4++w`=?b2(VLQ)!Tn((uhUuL-cPEUD$;L_^Cj_xwBhj0Rja0 z!DID1e@8sNvjh?#K!5-Nb{?!@!iYzZKmr5^5FkK8tbO0t5&UAV5N_d-of} zBS;_t0t5&UAR*Sj_YJ&gdE-+o+4L1cNw!0BN?#t+BLmXYQn72F-bmJYI1QoH9tb7# z$o^qoOLO{#LMdzyAtOco+-sy4X(y6NH>)>7X=zAu=5rxhraiNdJ@P!AeR?O8rsyn}RCu!|jTw_GOJ<*fL-MjIc&efi7+th#89=jneIh!;rE%A^|q!VUssqC9cke=03 z4`ioM&gQegb%n&EWM^p@d1`)*O-n{{26Yv-YqU^5o+oLnu1D8lKkNEFhKF9+4&Qwa zv2B!VveqCQN=YJ5Db#a%)P|DTCzJ9{&g6L*Y3$#V{Zo=eSF}hwiTo#XUXFKp>eih$ zXV%aQ*-2r_K|G`*RkBnc>Mq@x-}QrZ_V1l7U$E!Nl2JN&>DC8nX&K1kHOW(LT3ZTv zOOhPI9{DBpvUZT2!O!XJlZE@Q+Z7?)LPA);ysJJlUJ=TOnMG&OOG}aPDQVj zF#SSnv3)|MXYGMLMH)%;6X{kq9FJtmBsJUem%;V-&XlcMIT^X9IsTa}`PebilbK(# zXJ5(5_!{|6qW)7d$ctl--Fx&vID_#a)YtH>@ve-FPjLM`$Zu+@bR^l^xz#tB^!ln_ z@;GF59zxBK{Lrd$u{x&W`$zkWM~&aUIs@?K;EK8;>cpm!7?LBYlnOjWA`O zO1sHmKiNZ)_|Y1r5BASw|2=x{i45u^ELrnhe8$8Nty}V!TqHlEN6t$d3rp5)&tyLn zFK8Rmjpj?$d`X;7bID)XFU;#|7p#v6I_EfJ-=h5kKzst(^xZrkZJ?i%+TS%wW2OHfv}0`=oBv+af-uiU&4&yt1a7k|9w z7^?d3cH!fwocm|1F9R9+@sv*^3g->B@^R*NVU5%}mYLfLc#^}gmkKfMrlYWTmgF2A zV-Q0}awJcZi;+$29QNGG%!P3b1}PltG`DzXyVhvr5M8T$ zQM4`nD7-X7N!@tuXLzQ#1%mD+>L145BP+47Vk!M+1?t9MYRAR+PdWWZ?QN)^a7Bc! z0sDx4s(9m3^pr?V(dF&OM0Q9I9#!?FtMN>g*kUvy&3~9S=g$hhzrAI|3tIA>(o=W3N zwL(xIGhTgD=ychvC|TK=iiXz|Fa%W$R)|)~qOU426dHh$uaLjFLvT`tXjtW^&~WAC zs!UWhWts{{PA$V$<;3xF*351kL%xi&*!37EO{MXqu&>4$=OkSkPYMHGGL6_cv#D}r zWGT+B$il3f&gq_?Fl-qLo;n-h?xdT+F)11+IPG`kv;7>TcH>%Eftc#gX^R2*ND@zB zRj`^j+Lol9!uj*iy5uhWBDI&tV2{S#Q<=aP4#n{bn7T%}h0VGo3(`?_%U~`?PUo(} zRAB7$vq{aEHFO~RaK}lRNDr#!Owu&#*Ldx!GB{3-;?5as;I59N*HlGi(N;9>S9rOs z0#97XodNZy#P1y&GIl85*e0iPDl}U>MEfNf-72`)^9(|~#wHxvLs}+!_3VX8_sRgki;C|w5({K+N|@pF=` zhF!js=og{$7od6JF#J5+!^+UW+OzbP!ZoCE2OIVzAB{I)0tu&+X7;Y+HPbU*bFnY^ z*IF~E2dz7We5#69V2at@dq11?9fuK9Tj@V{;zY-P?7ViT=O*oR!>4p1yR)`n3mNSW z(o7}o(sct|T2?O%8dZ*0Zaa`RO*@g@vY+T{w`h0t={%+we>4RJeZW-W9{HYlS00u> zbr$`H{eArB_+e^48>viGX_?Zo^dNpjLp$y?R{q)nFo|iW=g1(FJN^qtmt)Fp2k_jk z%cW`j$Moxu;Zqt=J@*bAYjzj*x=9e+{e@B)@2K+(*_M$(iZeEidQU|+7O>i-S^IZ+ zA}{7#;5tZ8y0ZF9j@2J^B>ic;7cQUQJ2oMuKvNk`tAb z%C@;rIF(KWJP$MA#8$c8u@{X#$ua1Rq&`e;x<#V#Y$qSb z-MIu+V=u6dp$f`4jx(O~A2)azD#u*tw9_c#=XD^%Nj7aV^r*x3aSXf9xsRf5@nD>k zqM*)ebXc?g&|cVu`pfVJUD7$A=fUQ4r1I<*y+tFOIj$Kw!#rQi+q^}CWbvspkM@Ao}e7jLEJ^KyD)TOg=W?Z|lZ*R*_cayB_weIQEWjNdH@KSa^ z2>Td4hp;=*t$TER;!#D1iWfJa>8QYxnwo{5-@6D)A38nKUr1(g)Bm;{l#RN`UQ5Y# z?3DJ!K#^gRrLL2fv8N=*eyMNAetTy#DW)eQ({sCPS64r0J%+m6J8&Wsh|c%x#bSv^ zbF0%qpRE1NF{671_VQde6}~<*c^u~y0=s4GYL43I`> zd=hc5fA84z!9U=|%8&jF%^Uxhg84N@uByk&XK}&dp2%hZ(tyk~D#l${)}9ERISDmu z8&O=b0%fH|n19>h5#lLneQ?2F8c|)5hx*dhSik-$&o|qTz#|J++sZN*W$?~C8%ktF!XOf%=Sq(32iqFUDS-~s$$eu)}X1n87pg7;nDLPI`I%) zPcZA*eK%Y=W+iIsmZPG4C04AP5E}?-1mTP%9DC~`w2Z$vdYzCFm|F}CHpkqu1Wn_d zTU<&!UI+0&YgRSt8c> z@v|8qd@ZS6#Wz&a_d|)J@3^C+p>CNpW9x+oO_Ql*Nz$d3d-vm z(YT@+6;EDl?vtCo#=iPv)WUTbb?G&DVsSC58p^R|RU?KR;nE|YEPO7QScUrf2CS^B z$KvHHQ8D{Q9FxR=Yyx2)uCE^D6>Cw^Sb2u(HXu%>k-iVEjr^yS^qt4G)rda=5ePBo|Gs@ppuoHXPW zG&Z)NwXFr^k6&o2-Dv;*cw)gCJaNfYc#Qs6USELKYw9p$fVa&qPEJE}6OPo2aZ5q3h|IiKx-aH?TV_ATiF_Me5qh8s2;EE^P zP+7eU#l_8NUOft@^SYkP9(`LbDy!7ig7;U}QvMtGxe9ILEgjJx$oNuL*Ni&qzl3~e zWrmT(IqfZM$*~V^TTqMA$~CBDd|6*P5oc+KEWX1B;V%nY@Zg1);o$|#P|;9;HEU}z z^k}WY>BAVOzh=->z6EQWR-tJ5LdL5el#6cbIsF`%TaiNC_3s^-XtIrefA&C#>IMD?G4X)CBb`eVc^OEBZnBXL0J6o-}%RB1TtKXmwbjJqm? zJ+%Gp8Nx3feFtUBhT3f(#%t05ZuZ|>yvr_MF=C7atL zN>WMK|1V?l#weS((pX)k_tx&v&ZU5L*{B-Kzw0}5f_slPyPC_NX+h3CN7#O;ERcBo z&7Du8am>Yrf7iZ}jD68Qn{qJfH@a=RD^4HwG73$A3{z$)7&xg2C4adVyGR~syQB9N zqfxtP2#z&89D!?#*HgYn+A1}byYf5p(O7gn_ErCjrlV*!ZAopr9clQ;?0Xb07_%H> zuiA|=<__|)r}6re*BSZiC6e^MmS4f%JLj6s?N@j0I@$uo1ftY^X@^NTbMRAWeCk4b zP3zdqNTTnFXcj&)=woPWD!L<#zX#rZF zb`yx!qi3zMC7!e2(M%vsPT-Fs8HWy=h;gL9o9K5V{YN&TDF0drCOM=s zpe5;^dJ3y0$9TGB^rRuN@?%y`p@WCceI9FO-;4f6dBX*|7@>qIw!q>{&ER+;40k>$Xf7h%ODH-U5p zu9?+cC{4Hg&c>AH9Nc@%-bPn?OC)s8qo|v49Zu2?fCjDm=2_%r|GVa6#klhgjnvFN zsUO`!Nx@Oq=V5u%1Nc2ZheN&S6!vW~-QG)MQoQ`hGRzzDEBtn0Ggdu%0lMpXQ99R| znrV1H>ej``Z+!s2GrY;*31_G3CJ!(4AXsl4xeo}Fm3Rl-jaO>!#(6x?PGMk4%SIa4 zn0~}<$f+NSizves2Cp=(IXU!m+*9`=uIDZ^HKhj*zVTVCm^K6_gq&NPsi)(`<_i4j zRN9(k&v~RryKD3C6Q&L>9)pG@gV8VhXgoZw1k)A_Vd21l_oo6@fwWIYHwqR949&&r z36B0~UwYP;O8Xj-SA!?6u>BO!Lf1Tl%GtMIp!#K=jTf7y;r7F`j9toKLYIz4Q{nwM zN}mS|#k8j3IG^(*QT8cm+BKevq0Q5A(~-$Y?RO8BEE|dA*!P56=40_4$Fuzi+&q6Z zp1N8Oof%kftUy823-}|Gzn-7O1{ms;#X@RY2IVf@xYwm0o!fi$W_?5E(SMxEJ1L7h zdEMfr|8RYeUv9^lXD(O0KzR?xk-A-*nS_3~Ey9wf5x7=uar*Bjd2p`ZOlU^&olZj6 zZDHN6c6RY;&T~*9HJLiQ;CZagy_fRi&QZmx6Gx7^f%ZGe^&hs$f6|yB9UTq0X+Bye z#wCz&2C{YQji06eo=MypUpNLu3$JB?rDt#Ila1dzw-LqnpG3awxQO42Hs_aK_q!_> zs~BI*b?%x|DDUv0w_HsTtJqukdKq91J;9avgwSODpiGBR{jFxavi$ zm_CB>jYS-HGe_LM1dE#Q##Lrc6?V3-1<&>TFO5l!GEH@Nzdtl=`RE_;V(WWvmukJ<5@3JYI08I98i;|MVp9*B|obr^3F zjN{OkO+?M~8|i=)th0+yb$QSTRB|$e}NqS3Hl(+@a{F z&orppo+(7rV`p0W3{K})FUOo)jzM=ClPWVa#(_yrT$f1<_Y7-yYf&s`h2H?wQr+%-wNwDG#?GDa7@DST<-{Jbd2o7?!eT> z3AjiPK6x#j6=3?+W6(JFR-Bx~1VK6q5L(9pBbRah^GuRXN$$bxdSIAho*NwT_*@hg zHKMYi4lS(0MJs#vgUDkT{T`}DYikX*tgXj2$D~{5((M=RVn|ERpALC42g^$uP|;M4 zRew1FY1wpe?I6|H3$07Hv=}_B9K;(7j-&3t^xD7R0`h5}ld<6F-j~J3L-=s^2qt^m zH`Uz79)RCZoq}htK8e921qWRB0!l_-5_#*a`!2`Q!DF8(DDbu0O{&oO^}{I6djzK( zdM}Rv&R*V01Avp`{hHTG%s znRLaosG2(%1K8gEa3%=q=VIsihe^!WPC&y_7EoHtd5_}*7E_1ty4u4gfDOR4Gp1qU zr6*Iy7h-bJgZM@Fff#bnqZm8(Ui>WUB-}Z7CT==N>k4B}jyrtR5)>7;qPnpbP0p>i zj6Dvdt?JDlCK}4g?)vOJ){c`|(5Y~;c6z|@rSzW*jQ?mSscUJD|2$^=$KmnPXHY-m zHdffw6W67k;h~SuMnQ2MDx0gY`Vs2CTN(>SCN483jPu4cVBsCkj!rz8TW^vrb$sCI zm{#42+PB_ASzbBbr~j;+cQ=k#LFWmWN8GuT{&7CnqjM&I(s6e7r7Oy(e%bgs9aWww^rw)df_cNDcsGmiFBMlVGR}yABa$fUAL~AMC_5-0V9?g z{U=M887$5+nC#Aa1Ru;CiG!U!di^~)bP66=RD!236PCS%1s%}HBSQEp#a5TCKJ>3hYiAN>X=0(F9 zK%xmmw}KA2zXauvo`rN)Tz2bh+boiB$bBWKdi-3&zx%M?+it7IC{0sM_aB1k4fo(& zbI+IaledF!dj>5FhU4c+dWat#e<10XjXD?UtYowv`+!o<1XM|rA31CI2>dyx4Rw=# z8yS1u3+0$IcmP5tKZTaM9E?0p0acYU$0&)?k&SF6kK}=PXjU7lpLAZgi~;#IeVucC zW)ezMv2oNNF{^GIE=-rat^U%L;Eo-JX)X8RT=N~E-6)rC$PWD)Pu0)GEv)bqERMc) zA(|&&X=s`^?r1~OO;|}vMTS{tduIzL(SDB|frVuc;=J>pz{|QNbj}mVzxfv!Jii2k zPoN%Hh3joJ?W_;IuM8EmuM7nVCrG6y9cu%uu`jKU{&MkisLmN??fcMsFsJ^{xH65q zaGvW;pnY$C7WMP*HanEmf%juh<3miG@+I!-xC6-worW=ub8!37vcGfiRNG{ndBn|l z?(Xw&?zoq6|KVrhx!PxOvDtBCm^GW7f#lDE>!CSoP%-XW!(SR@5q(h2`T1G$75`~W zESbrfjva(>;JrntlK*ghQU5sxBUs?s=Ydvt85c}I#mqm_{}@D-OgY{>{MP&_1M%?e z6{vp7tN$=Ad$JDGZ)ZYFPBlK_K5$P@ISwP1uf&|;$C&eM&2j#CG%px|lar$_AV{`{ z+*5?g$Idd(U%f9yxa|ksSA_D%&Zhs+N2xbmPfa-n_bh9}qQS?Qb*E{q=Z!}z{o|Cd z`%pWXyX+O1ar+U}cQ+;-(&f68sM5?EimrUHPH~k6cXqOOT zkxhH<9y$}xG!J*Y3_3VIXF${TvVdI)q;7R9MF4xVQRglr0)zs;*=`fL&OQ z$If#5)2O(`uUK%KNg&Cg{us8P%4wG(Q;~kjIF!x1-QE`#deiaKl5ytE_oHFF6}&+= z-J&@fBNx|T!nxLQbUj7m=a0b8GIZPLEIgS%3a3&z`?=#BgnRBmrFjA#q3;veFJvh= zDTofl>(B-)4gaO|2s=Z=;>7Gz4wA1 z5}rZ+o5otl7rO7hpXukGTlrgKjv)02JTvF-n0ynBw-+7m?9o_PLIYedGAf@wRz9bb ze!UY|>~%{ksn_0IPbxAQRP;8{KKCra#%EkU!}$I4RhV_lQ8+SPRoFsQRFvWFgE_u8 z<-V70o%`}>AEIH&-PZnyBky<_RWI0E7ikR8UYXh8D4O1R^_fKhcTwRzZ^D8# zvyn6F8FQN`6uudwH`ikRf;`;iJ_zs0^>N;_Zn_Wkj{Xd~>(&VEYe^lRK2JrH=Hd?O z;?XGQ4$$myd2Q_U5AfnG)NwD$>+JDZThxZioZC%%a?%O7uHYjUAV=CAR7w&qoAxg1 z7T;;s7Y^-@d-JOC>{E*|lof5}*-zu~2ghOQ+}p6fp-=Q;;-T&o^d>y=c;{Tladzf9j0?*w<5O`mmPe!dPu{f`jvF}@rE?!P&jtFrF(p&a77oXpRbSwdGq{sYr+m_Wi~Fj^qjce| zkzHq~H{(favXOt|*l1xB>gfc~KJuR={D$ofW1PgPq}iQCZRlXkZv6z0|BCab(m&EK z!`+onqh#K2M?aMD?maPZ*i;nF`jfe>*emSFrl$?~M!vMiU*C8S8Xf)1HnY;Wix2n3 zH3b_m_x3~Vj+gUZ@Zwu2ntQtwPX?IyHIDJiBzYqFQp%47Y(#!N_M~jnOj4Eq?SIcw zY<=#!$UNbY{OcSPtXq$|`Z4B?K{!=AOK1EK0VZ*H(E8PTD1PhzAl!dA@>Xv_b^S(^ z>kW#!YHZHA(FslrfKpWQE;xBaGnyJ+M`K+RYO3-vZ>W7WRDrSE1&?Ay=^8Ya7ofW8 zCER$`P|Tk<68o|}oja7l^9peHZyZKgRi$3~FiIESXbdQw20S>Y0{5KeDxeoKE_njw z3x}}63!`WF6pVPL0(Bc2QQg{rO70*^OR7-+1cN8#>8HF)Xl5V|=64`1{Is^>k5 zhE>#wW^QSXlN<0#U>OvRQ83BVR_32l+_oZw(>>X zdhu;oI^{NFjOp2D;1=?i-&T%_=6W>MuS8=_8P+~y176SM^DuOB1IjiwpsKYAwbd=C zDK16Z;};v_$so_s0KmXU=hyvMy#*qNH5Jtp7+TqUYEHB&x%(~PJtz{=;&HZ;5U{1t{zszGf-3u+sQ<`!&RexEVYP?mNY8TiAq zwU}|e-BzpmIdAN~7VN%T|tZ3eh!p35>O&`KwzbozGFe9VGhm1zylrxQ< z(#<#I9U6q)?kiz<6NswEUQ8gnQNCAVbi+c_760A|SOaj+izO(npN~6_?M3+>i6P_i zQMa}V)h+e3uV&g;E$W`Q-l26A?pfS`Dd(o6SE>qv?nt`mPbi-AdvgmmMbDv5xfcs7 z)}gq7c3Lt7N1yX7O4z=)#%FPk(#iC% zXA4lVr5e?34b)*PDoX3nFv=z%yS{p^FAY8QWlzcXibt??+3hBQrKX>VA!Eu>U)_Z2 z+9t+`CTynu5BBO`6?EoF_)|_H>f6?#qN<$!X`jUhqJF*h6f-8ugq z6N^x=mb>@n8u||Xr>G1oA9cU*n?W1-8J?v=aymO zFS)xi_Dp}h`a$I7-(sG%rKbN3L&sF0k$zdrwN=(MU~Az$I9#u2JNnBA^<;7J2aK=e z`bx**!ffuqdN7XZO)s;C9{{#8X?U^eyTmdReyIk;=pX%oX;t{VDDbe z+gHv*D`8Isf>0)foNk;!*LtSg?+xsioo%yd2HPEB>}R&Y`b4`6<0v-PpGMWX!3%qPs&c{pi71T2zHQ z2KK<7nF;`;v+Eg{R91)T)7eM;MZ<;pen#9i1|xTSD(v089|M^x2Yn%rL8P1go{1gD zK$h8uftk+JOM#5nR6)t%wKf@8y8cW;2t9V&FGACTbB9$qv&tnc(Qt1y>`A#vCK?y& zt83k{cM5kN=3JE>b;aak=FiZBat7DFq^EZ6BuwS+g4blgz0=Xx{JD?4k>%XdGq(*g zsK2x<=es3+klgn$OHb!!4jyUb=BPEdlUFQ^EcBh3o}yuG$onekzS;I|7`-85lM2_J zCVQe@)hDf=v6o$TJ;14wqhnp0vk*^$`cNLEm7*`SvQ6IsI)wJ3&&hpcpS`T^LVc0C z>!F@Pg5%Tdt(9)|(F&sxQ>?xLdk? z%cqBEJF-gB1Mg(*0C?W_6kbol&x~J@N2gEPuG~4Oy(jhT^5(8z!N=%K*L3tk^F-}6 z)R*H~=$S9X8T+$zyZ3bbC$$&)$R7B4Z^u9N=Y;m}>G0QcSIXHL>pVM&=-)ekU+vg= zbap?P++o|c-pHih-3q;TrY%1A)R!)GO*=RJnHRTs%e3D^O6ujvvk%+l-{yG*`(^Ys ze$jnT?Lb7cCxftki9zQ*vMl|*b;rQDX3*Q=&#}Q!cW3@S)VE18Y9rF@^Wbn#`Yn&U z>BSiyWB#&$`7Q?OL1Q$Sa~h+9PG1uG?d} zPMpw({t$^LKM=hB$v+`%b@0wR-=Or>e;J|a+vVx3KGL{AIlCQXm1Vy9tA%Jm0=MA$ zvQt{z{W-k}|o9pmj2?$4onF+BD$0Z

      z^-b(^X%ExKo(Y36t35(_=&$#Qfp9?WaM3?TacgXKx%oa85HF3qX?x#UgT@l^AG zo^5h!wp&?vpz8{fdYI~waSGR{TS5BPZe(p5t7?v8+*@0bHt9g~bBrr5!?U>-CquLT z_G?xj(Nljfbj^K}FuuQT_j&Cx9?7(2m!{FNUN~^pX`nR`=0yU^EM#t*=zAXe%L$T! zZj-9b>F+>+Mi034mk4y*QO^RBN#FW|)+X4ovURv-KhJCts$JY-X5U2dU4NS-N-8xh)+Q*yEj1hrnrumZVk$Mn${JxkK7x#@;SLHbQ`{=Q#? zmLT8PmkmWXa$WwF$}y=N8~^;wZ&Na0Ydhg#V*V9Jm8{Ae=t}%zP`-l>>)zl)tqy=kMtViX% zB^Y)*`yZ};HZWOQgpAMxKN$tj3D+?s8#%ZQ3Qm8wBJ)7bt{|(2XE8yAko?SBQt^hO z9fBaaOTL`LeIV-Xr`?JBS$w+>d)>fdu5nGNW`13Zj&-5Ll4%0DrD3j{ouB928LORw zl7|WGl#59qNj8BPUNnD%2M=^j&gA@ozUXy5)RzM~3B)^|M>7wP(yyiAv^j8f0V|e<3nNG4KX#0cvOn2g zI$`7=j}B-V7=HD_i8q1BZ&g$X)<+D#aeiTB?1JkHhn3L8m)l2t@~9ZYHKpip<9Te| zg-Nb)*DOs(76Ox%{$!6UTg4u|jiwg?^bAcry1Gktla33GQQ@Q8mHh15iue;9`$CGo zKA=SJ+9~-oi9qsk`&)Q<)n}VPR4m)1Yh+;NBt*;8{|ALPKK&QoVB&D`)(8JY>E^%3 zbkYJiq(1I-2XcJ3!Z6o(u5YgQCLQyRzM!hOcP~~S`d)=Kh{(fOV+4*N zXdZ!M1g$lVW4-+7OG!4#Is6#jM2{7gTU|JP1-)cGpv?C+ z*e5cc$Vg}4H8Qi~;_X|3O0VpuM8tJ_KX3k8NwY_Azk!c-s{$VjN%e2)i3`uF1GE z(>XU4sX3jsMBt1Oyz>~k#%ZGcjT5P_b8f~Nx!J@QZ$K{Z-fOXl()L?lJp5_d`MtDU z7#WjiRk~j1h_uJiQ^4_lzd$sV7;Poko_-8W0Eq7+`Pm?D^x?z5O;lWi+Tz-c{B-od z+iuqE%qzaVJ6Q2+{`|Vr*91QXo0v-1jMdT7j#^`UO+1pAg?%3w^Z!aIV$@Uc7 zHNU4V(uXi{i(~B_0MWBF+tG_Vx3D^N#~40i;$mF;4*_o~X?XC)r~iS{t^bNB-F|Uu z8yPkVj#a1^Qj{FV9)*qt>cT3wV?Ls^9LP{ie?hzuj6kJ5+@#!B$=X`Xu zhWLKl4bd|2X^Y@noX-cYoVIOU>@PTe;NQoUnbS8OU7ok|c1zE{&HA6@>rX>-ySC!n zZjgw-?*q=7B!9&p!+&BvyDszZ0qqkAcOYB;=_rA4w^QChT|n0ph%=9;JqlOA>gRrL z-_MNq2svsz(eWq1EMezCJ`S-!vMsy8k9X|b{aMq@Nrf;JDU4=`l zJz{wC!k3N%)9#`pxjJ-+uB|;5UcS0MUVRexjY$@M*rqw#Ob;?Q5~4vi?rtmq3cQHGyzp?hYW@Ww?kcA3x!2mvcjTu&s3 zt_dn4V2^_fetlht5BIgtNCI)kB^didgLln_eB6_)w+9=TqVhE|Ht_EsL4-HUpTBQdS~0YJ`*jTO*lioX?Q{8|tMhM9(B2mK$=BF5 z=j|$woxzUvZxiC%%sd^=<+M47^5x&(ZMS{ew|}pQe~7;2lYgP;HTw|V+tJ?vqDa*K zUBWBit{AF#HE)@jz!f{*um2AlUfx~!_3IeM(Z1)k$MWyOzpvU%|Hv4>KHo03*}l8P zo70DV?RxzBbPYcY{rR_jpD?!V*o(n-+KV0U-{yzJ@=$v`{Q9|bTllqquZaJ1?(5$B z1_fLG5&L|Au!^woUjH$}tmj9cKwRt??>`*9y3W+udc6ADv2}k}_;K6P&WG=M2lSIg z%Nu`%7i~n|rf*`uX-h<^^|5CboOr&twHkgo&VhM(z}p^&Z*M(TPWCM(;(K!9&UODS+Xf-|x$tXGgl|v& z7CXYr_8^g-U4FiMp2UX|$oFS^J2m1HNZIC(Yy#0A@iKp)u>ChyrF8p@#40E9r$QVB z#XmnWNLcOepmIA3048A4fIP2BcFk}*Pojq{@8b;LtF=#M4J z_WTow(Mw165ukIlyM?voV^p{L-@-D6=ma2ZAfEQl6t1>T9aBo{*x2-@~{cSzrP3MQGW*8<+W3OJCddJB6Jua)UGxaLE_ch))i=sgSa-A zXB!|j53jrM^z%deB24t#&(SfM6gg*Fvi&K9Z%3CFc3qwGBANPKcM*||=UNOLdHLzp zcbr$Qw3#IR`E^gb5@?5W86CR*(N!65i!OFz#3zu-S3j`{BtCgiISN9lsi|gHqKeMj zZvNhXN04H_>jcsn%>1Msada=@`nvG#Yhi@Sb!1nP_i&1g;Fc@avZVojOB2 zf0TWSaVWLfYi{)y=@W;J>2E7Ir%51omuiExf?KToV)`q=u&@4vd1|U;DSlkJTRF$` zr}cQxBamJU#DkShY#(R79kss%dW_*$eG|yO-Fn2k;Xn4el?4mB7<*LTWTd7fqgz_o zBoXhJ#87`1v2CvGU0uYtyXdSfF&zEVXH!yKS-85_TH7aBuRZIxJ5tm2Yl~4HVt%%v z9n??q>%ay?H(np6-;S(tCqaAysoMG}YFGRn-XFX%pa7*L{c4$UX!D~!uHY3wJ$=1! zg|7r6xaW~Rt|C0jbNj^f+d)L=xpTSmIdjH<*Ib7+fhP(R06Eq;tmtV?9HU?Ji~N=a z5#7Sa(RcZXhc6%gh&r*0sB_us-VKQC@5o)hdEox~oz`xD;EHW#?r#(EYu0D+5|y81 zV+)Y>YmV~IHt{YyBahzeF3cE*e^(Z6AhAhHwnccfCU-lB?Qd z`Z&BeylVI0<7j`}?Ul-B#h`ou=xV9+T zkLx--+?{@PB9_ykh(`sb)``zKP(uY-A<${384;5exsvg;SVQnJji5vE0i?EU35 zLPqZf0v!d7cl(=u>hCB}{UfwIaQWC_#Leep01>{8(-OMZNN;;#f{Iy#g$dZ6bE{j*#o<-ESRUAt&VZn9x($5yXV9ScfM z_PTe@==j)c+XBC_D$LTj7X9?Eej?ZYa;4$l@jw02rhe5?zXWQNg)=spHqT;MKNp>v zoPvySHv4(}(Ll2D#sh~3(RUF2TX}>T2`qNcxFP1|$Uy{h+;mp4QiC97Nj8Z!cS# zZc;SPn%0-s^}FHZL)S9w(fp3N#-(Yj#)vol{`1k8S<;5(^M+X3;)}dw_3UQ*b8SEC zZI4j{wd+&=6yvCBPXvvNI&<`z5?csq5d-HubZ#qSt??+#C~iew?qDlpI#k&Fe5Zo3 z<-zcwTW*p`QWnAWlP~p`Ozm6>R3T(@ebJv6)|zyyz|oQ9WE|S%(ems<>l979UZ+oT z7Eb7^bGr^z%y#TCm@uUjkDQr_y)!fiuW4drY`5XR3U$T&WP{zD& ze{)?yh`jJTCV_ISc+22tyBo1~m6XQ5-eAgcW+!gu*ZL)677iw$S~@z~mrSDPR@a0X zFWyLx>o7mqrexuaH*4^M@;TX&PZZuAzx+o(qZ&5X#J{DHj6c7UhZnBvhy8oVrd7c^ zmAe8c^{n;Sbr31`rM~n-}2TTk@YDl@@V=>9w`}| z-`!bc^ICt5pIU^6&&b4{nU3#i&NQ}he#^J6AB9<^E3th3Fo$moweNCo1Gd)Wppx;a zVdB;1x|M-`KA65MTXEu(e#e=&WrgLVN-#e*H^SZ1@bJ z%)@Z&jC!;#Z$v{`EvjlO(Xw$2PNl)5GJ&`R(irql9bSO)C(c23Rx+~E^uzjT=oRW? z9W=ZJVse$&?YPee_p{z7=MxEiSX}oo^KD6v z4@#iy>lf}6djjdX2><~n-P5?mRoYsTxz|oj+oOZkh%8q_T!xhmL^Z(b8@rnd*OBVd zA1g9-E>4F}r+|9Zi9O_W#}3cFq9px`?dd)N>u_c&Una>i(IQI6j2bu&zH^-i_~=&RO6 zw1a^siWAabydaUpr>9OMZtEDx-|j|uu93`c2m)L5G~s+&!m zaB_~Y#U4>0N#;f+7slRi@pkR*)cxh5$hZBAPomSaD6sYD zOySCZ`$5xtFZH|qMp(OLf@kf_zhBm~m029986y19iPI6F?Tz}fZ!*ed)$YFrSZ=zi z<%NnVJU<_mpH^OS97K_2lK7q&fl-ingXo-@gQM#o*>q2j8*o)~R2W$uxB(yA9%Y3eB1Y^PJ1vnVxP z+qR`8x=d>D_%20#Z2i(hPw2mm3~jirm1^|1K2K;v$SQ|#MP1=H-1my?;69k zWB2e|vFZ78HkLg+Q%c{vtc>iRj$mJ5o>o(Bqd7v&fG78jKDtmkq0v_`HZTC+-CcR) z&;i2$*6df&T{OkK)DaOlz5!uMgzb)Qx|ig7xa`xkWT(K@RoA+s3;JLG8XvP0FGUQ| zk+8>aDWA?6hEGZlTti6O0DZLqbu)5u4D&e#eyyl~0Vk8$p-O|ATT>tmi%)w#t$RR+ z`Jq1qu=X-H)Z+s{?U~!VY-KqlAGeA&R*e&by!nqw)lzw)>D~=bCj(Q3 zl1AW)F59W&Jw(LgzbHwO@VMe*%XPE7vJT~wzUKtLjIFR)u?^3Y$PJ|wv5^Ikqz^>U z#+pv#k90+e`|Dhe=5D@%t5bcnS z+d4a{(L>b!7SIws-F@9`2#bhQ&~20XkqI*=wIBxULp7zDfRUbmEf$Oez}a*)tCChI zG=_IShg*g3{st6gT9^%4(%tS0`l$cl3OK~Jl51t0ePYNfZed`We$s5-rLGeW;6zAM zF6r&-5=Iks7o8x~(DgfYLZ_H(V!S(KSZ#c5P-1wA7@-Yw%MonFbVH`xyP>^XUpQ2& z=W3OU?iOv+;I~yxocsf64rzqeeuf7&+57|HLz|e(vugC-jBboG-RUDJ zI8P1{uMjuADZ`p3+XI6ea56rt_0fRK z)BMZW?wX@G7?_|^<}3i2v}B_6Q!iBEBh}jaH+5R)HAPn_jaMw-O1)UE@s5HxUsMt|DK+o4UUqV+Jo|}7tLU+eKd$=WbXjP zbFfQWN}(=RR18$ZVFl2Xulf|nN{y`mD!XtR_V$K5Ug!#~bzUs*hGEfsQJ;17qq&Yv z7H+l#QsGpZMhpNzd9!!QknkHw+jeB8@h2ZkQ4dh$y|#=090UHsrGIV5!ZfYB2*g>jUu@M!Sq&9lttP&$aH)@MNC`U;$}*OsUX&HFOo68cb=;8^fi1!Y^O32g{MD_N z2xw@j+aqIsd4BQDhPn1XTIXhj1o4&z@Twt~5f^PfGB!Heku^ky!D(oGe;R!$kSPnq zOjm{=%@)es-@aX|>o)?*Kq~#qmHsFgJ>|!?#4Z**8CEx>aV-tp&QBco@dn&&OhXJR z+m@C&E9OLGzSq%AmF2QN4!rAnhClXHSiOyY>=%=XnZl$nC^`V`Xo(^dh^)!hrj~IC^@zUoU!+PCnlrusYC7(US4(*v*Ukw5pqZ zdDgcWB=MequmJQIspZq%Gm!nW^TXy0Pi@c-GT`w<9W)+^$^v1N2vMjRFuXQy1IwwM#$ z$WPw&8{glf$yNdxP2YxwOiq@@P8W09@@_hxRz}BVpzHgZOUBqFVJkDqZ7q|EDO~bq zVL?8Qw2Hs?w=Xv$_Z*GhVl2wO)yR=f@1yGB@Kr~*p9BWSkW>dd11rWBk z#m9BuD_7bBWvx-$fIHqBwsu#K%9`974nq79BC)XLv9il;0&0x6ITRa%CNlo}vHt31 z%;p1lq+L!d3O+3JDl4Qau-w##z}rJ%rl~gchzu}{N!MOakOUE#fqY1+bAiOxeda#a zE2HI(M_B&O-KBqHVe#*i>R^i+zv;6F<8MPLfr%Bx{T$B&pJ_vL;IZNvjjp}RD<0)q zsHI!wAkLFzX0ZEZQc60v#XC#kclYe2Qm;wc)i%PzOJ*!d3!NPEc@JBxHNsQ8Af!66 z;$1zW)K)LRo-cM^rnO8o;T7^a z4EfOL1^M;f3N}VIYN1%&NapC5OZ2l_IL+TKW$g`SqU0u(c}EUzOn1~ThFb*WIUt2! zhUUATclo_UBs-^g`SP>Vo?^y^Q$cafK4Jg{Lo*+RGb=|2+X*?4yvzfN!9c!vM5s*Y4JGYn>vR=9{)61+3Y96;e;K)L)}{gakM*a5v~&k75!Je`jv37&tBevv|HgV3XYCjq znOQ00N3(tWj= z>fmMHRn3JXQfG+E(6eGpn<9ZDptZ=)TkR}%+GomqF2)ZiA-M*8Pja^2G$lEvL;AM$wVdjH zH1ub^!#Rt2ao$01@P_gPTJ4pE+Lv0K31t=LHS`Zhh~z$wBY(xp^B)&{;%aGqnQMM( z0=0B<-Uhu|)K8Fq%4w-g{+cDuK&b%{Nd4Xn$dt{M(w`O(?V7HbxaRCE!tf%i-0m@& z5;(?!PH8l2VUK2;4TW_$^wDlHw3aKMbj_-qb0!@>8oZHJi1R(_B;uJAVmcry>P4O(x@NBd(xe*3*qUswNz zrh$vY>ul~J+<@pn{=NK1l0nAhW=BbD3)i)&3yT+;HJ{*B4y2416mz37jR!WL`Fpke z_9Vv`SelwQWb}vot!rpgkTSe_+YR{~q+aF&>p3On3Vi}5Wq#=yH*!OP^VaiiNo7WK z6dPsUKSy3P9H|AODXIoB<9bX3Znj-oPa+0ZDa z53Kbs1hn|E+hGV|?)079m1}>#Qu;-h@{hX@(z?E8T#6tzSIHcS4OxJ~NrD{Ab;Qs9Kx^+RMJ#iJ z3|_W!K&I1XAmaAStZCQd)=z*^4;H~aq@B#_-AY;#Dz*(A5?c`jmGm|ax30ww3dwTG zWtUb4Av7V|H4=3qwS6-mTlCS)%xT}Zn!iqW6nBI_2bqY^g6?r45|b_#W(Zc_4s|e$ zwferPfryovGj~~Yq+nSS&KOgE9w!lY#ZBAG(J(Z1=*{P)J^Fgmq<}7Q6O|)|a$B3h z@><#Q)z5LydlgG7iSZH0gD7@Wt>y{g*Nm0@iKcQS9X1Dl^@G2`0B|HVa8aC9wM@TxVx>EN`KfTvd|mH-0! zsNVF|U|WffQCyQ2QGwO#`x|TLWe$ZYqKBGAzZr!vQ&bCa9dv&nGXi8J#nw9yL`t z{U$!^iVqfl3CD8Ha(P$!Wqy)$!u=>$NJAo3rTVNJ$HxW`@ZD!jWlGgjZk@ab zW`z3__z|7yNDKS?X*MXn8I3i1F~8z3++5U2ja2}1DxsG7^>GF$_J#NZ7a8r` zBvql}@|Gk|p@7^>siHeJUlt3a2zmj`U3!h(fzE-|@%}*UmFv}gY1#YVqmO}2;gP3yzsL!{e2=9XuNjm)qE;`TEEW!L zFuh)^19KtP)!m3Rj)XKU#cR!@BTgy1kXZ*{4Tv0aUCh7CIH57O-=HINcfu*95JuNk zO{qGu&HIlvkT5>o+8~*7FVSb@x@5A003}ll!R6ptZ@kq~Jk+-Zbw={HXHnW_%gVvU zlhhK!%S9`$DMQ(+y!a>o=IZ<2BHFYrPIjMKoH<9~bl)$ZEjL|Qy5^^WyH!~6IaO}Q z(a)BKJR}5lPF4#5Fv+(7lr`-iwdw~{DphL$#>RvKJ4V}GJTUl!u%L*~3kC)48(Z%@BQ>GaN2T1l(GJ!?EE)9HJSt)>e(G&SaJa^W!X8M!PQrU zzw15Z@#}#!UHfbdG;IE4vb+CriIuJ~lU7_m&)DcYvj##$lwZN=i* z#6Gxq65rH@tSSc!p=mB`w`r;S$f83*_!r*n=@O?BRfomEcZ`{7HgVnWN6og*5R}D5 zlinM0QcOh4I-{^=wE9**qv<8(NHS=!E9BJy|DGXb`SlxmJMM-FxSd8f7jHOmw%Cdw zt9$xdx!orML;~{6upajsVxk${BHZw9&l_quVYWpKO*Nwrb+j51UIE9`Pw48m4;k`v z`r3|u$C}=GfoP5M!{qnsOC ze8)*{73{*Dl^EZ+&=&C& zIv6!+$Z+9>{G*64!w$+5YoldmBe33hrusd&+?_o`i}`PIRcp)8ZzuiN+-HG}x)hr_*ZJX~?`gb8->Q5t~wgH?Te~GFRt%Yb<&8b4eS17c{7HU)S5dXoLq{x()UH z_5xK+47j%G@=M!lIH>TqA1Ha{`(8p7CB$>kYJ&mTkLl0b;vw^X!>Etz3U!6Vo1!am z-V&bO#K}$m?b`m%Ep?cqATHkp@0F$|ag>!;o}kc&D7jsoSK`3heeFiUXLl;=`!7+- zf*sp}a^Hc<&yGFiN^l=y%QWe;G<|v|#xb^*In)QVUO0FdBdJwe5kBZ@GJ}tDJMZ5L zH$n@1GZS@<$ccQ-FnIa^$sZlPOz;HNqjxBH9%=~M`1^jqau3ORP8cc&=R4WRP`&NV ztVB5)l1D6)b`FXjIKSxLwAGI}8!rnWKTz)z+W22NQ+H&7Ee@$-3=DpvVowZY-*kA zA0vPv6Q3|&#txL%=~(UnBK;%60!N>*I%=J7B8uL&QnRE4%Ge!WHI0%I;lF-O$H|o# zZF=SSru9aY;wd7#|K)p^$>wLy#AzKL2Fvq^-BV?uo_A}PsXNY!fM^lUT1*TQ!tH8coooh4hlSrz8w zI2TI#(0VICK+B+&_b(5JHuDq9nAr71BF@33=)p^E+D!2t4*m0*AJVN@hL6N(X=@6k z@}KT6ra1k-ARY7Z_0n9tu(E*-ogxRVurD!E3(O;#e(uitSUlqMBiQw)f^w3Aj0lTWcEdt1ej_yB$uJptguamiZu!%1+gO`Py?_ z1xOG-)8bO=MQHh$tW_zc%X?-w|7c~PXvK9$!h?3A$X`&@o_uoP_#Bm&F6z~M{mqT= z_2COEA!c;v{6(Gcfr-khl?a!-Or-bW2um&x>tcT6Z_lp=;S2FA9Egm_pr9E%CY$B{ zTcUzSn6c6K^6WqM!AuGB&B~b^(zk*D!v|@c)HKoX>+xF{injubHK%?3PDv0D;>L0@ zudo6x$(9+|n}6Hx+2=F4zxYY~s!Vds$0b(J%iUQ2C+c-W=#`ASQ+rg9n6CvZh4kd} zs$TqHsq8!vk@+p&T~St{1$~bp(87g{g;lGdwGuwXa%_fc^fHLyV@GQi2^4AYt7}f; zfr}~Ot+~DN8B2McEgs11lMlkN($LnYV>$~X$whMXW22_APhA5^H`xSXJI$QkzU_KyJGGBN4eM!yWvnF+8X>mO%yQq^0C#8VvIB*&c_Yeorm@n0a!cT{$EeWFnAXTVHc(O+AqX$+gU3r{cG$| za0iySE>lUq8e$9ye$c{NmZ{PDdwVbNP-W6&<*H>~3^=C8^E}1Uf>817r&wIiIekFk z%_pxo;dXvjPVTt(UVS;>Y(us1fIml*4QiBaJHwtn!>+fKLrFxk*mo4pyLwL62c|j3 zpT$J@pNnn=*|CD2nA88BIXME!Ejr73uZ?y!oZx?>rCceWJK$l=u|n&YCr?)<{Jja&_9RIKUw08u* zSuVxP`0um0p0hGu#lg4^znL8iHxaRHzKYd9aq;)d9mOx}=%7V#P2Y=UuIX`ZF7~n2 z8Qr|nWrVxt?TM#Fs#`>#A@@#1&c;z($R)FN0JCUANCBnr<#0A_vf~+x9Y1LVo%YKf z{G2Q}YdX_q;3v)xcZ*Jr{({p(X|=Y&6^>H9->rKdwJQy>cQsB1x@~sWe&P)EN>rrl zQV!SJcZ8Aaf4^w%w$oc=B~3T=)9YOCi6fwe{Fo8l{RoIJWxUqTE#-)n;tei49Jf87gB;$d@8!4M*ckO_1~3fNFf&_J5oPv5>S+_IxDVZ_v3 z=<(VMo@=05$GG{61=<4p5CD5Iak|9&P#f+b1kuE2t`hx=y6czZ)oa{mT&){2q8?46)Ble$H zB;Q*qPA;gSI4}C?AWPAMv#l79Q`*>@Q|?HcTpdvb_W8Dbt`{;v)LO3tpNck5QEQ$~ z+@Ulyt|UY{bd+^Z0{B+8QfsX{rH-1jb&zMr#oePimDu-W2YaZnoUYb3<5aqwY^h|=`P-(nK6t3`Uu%R@8h4`wN>tP9;9M!2Z=YRG^WL(cQ|@V{Bp z#1>wsW~Bm*J{G46)m?6s4d(KLE&+6YqasP+-*7|crWm|W=n@-zBLCgVQx+R%6)-Rs zk%*axz#SbfVt^LdzgOqlOFP*OjMdT(&)l|Fzfz<>aBTpc$!f?kt3sl@+$wLEgEwbq z5zOjHZ{j?LJ}^YOit+n+XKT3umc0iLBZg0N$7foEbIHx2!g5VrXGFa<{QCv1rC6kP z4BPcazP8eBbBB%tkl^w&o!_41Mk_y{ErDi-tUoUg8}(n2gtfwQ&YX_YJCikiqx^>^ z9r9jh+@y>-UzykQ-K3$m?cIVmqO28$BT|ijP{tXU>|Pv$5XLeCwg$JDkyD-Uf_WE7 zD6{!fr{2?C3-Iiz&8NKnF?$x#%QR|e6x$i(rZl>d&FMrOX*FOZh;_;-On36?a zkk7G~Bq($J92=&O3%B!QZ+8%9srQSVMEtV+945!KXxfgvN23@yX}2C6iS~)0Y2u3T z4qdO19w7xm7=$#Vxah?nbLH^E7NsLIx7Q?TbR2SuYak}AG-w~Af(@{J=a^|?+kZtA zU*CKlD?OxpNc3{L@e%j!l+^qKbc+H>6&v%CO6um+27?X-;HRT+moqe8usc)C@hM|w z72XgzR*;^TgoMPF&u6G1vrr}nNdu$*LM?!qc`&PZ#e~i#t8y&kCLzt0Go^La_=d*K z^W%>9;XTC-C|cv_q4Da#L(;(|px_4ePDLTDl3pMEn$4DwvXt1NX7h-{xso%aq=xcn zR)NYWup#H6+w3j>yRi06tM(fpt-MS5tmUsn(K$j$q<0>3t_ojliD0vy9k-;%Dr7k%zDd<(75< zkTQ*ex(o#)EefA}>y_gM`|I3zE|u$K%ewnYC^$eztOF_9TXCVnO^rq!(ge6RX)Vuu*n55E&;r@~>>;bOWrUzCCzqHmsk7GgiXRw!ZI56wG1KjW!{W z*dZrHv{aq9tP>l1*WC)R?|_j8j6qg%1ZDcvid7x1IG9M4BL;~_1-ab zpK@Po%(oBm08SRPhrglG_udp>K8gjk+Q?H0_sLhN#y$=S9-n~R6y~^|?S_b+kjoi6 z2IY*~ZQYIk15LT3!NVNyWuMd>BvpE9Hl_*XoPQfrxf~Z;_4#5Nx12(H>}uH&#cYvo zc@XMVE}HPx?9o`KL@TwbeQ+6;us5T0Ef@EINRxd1`+sAV{)c4r{{|y{_+Mb9YQz6w z6D_gBm{0#@@YxgnA9~UMK!sMr{s%Smf8{Lw{~In6h7Z!$ju1j=k%B(mM@zj?xBLQn zn4>tj`2`DL0HRyhs1MIUjo`z0>XziUCdqr@Eho84w#sw;LF_*9z~-xE=4l^zm(X*T zjKgovFPA1C23-yR11|Ew9K;cF36?&CBeRzZrr=rJAY2`T(eZ?T#O=1TJ+Qyf0)t>6 zE7chn_?jOZkGQgA;}CNg|F6LV2X;BN8WXOSHY2dO_EnN0;ha$X6%lt+SY`;7PTkTG zPg%JwH{?jqS~wl?j4MIjPx!#26n*MJClIdzkDMWay)u4@9R+y3ZzlhS2ojPZT5Mvw ziv1PR7HEgk2p-eV_l%yrB@*unq7-+hb2Ib;*+84!S8u^suVKWm+k2EL#&XX;jlQB7 zP8%~WUEX?#1YtOEZ0{c}1?C^h6S520oks?0Kb#ndeHwzUsz1J1OfR#2)b@G(|Jo0qGN_X_d^rzJHl_sq#H~8OUkAD#oD-=kf_tY%WgL57IW^2* zD+UtG-!VT>n$OV*x;!8s0TCUa#4NN|lF4w3DL}_;S0Cf|st{gU&dAGUcnmY1t{cvl z)^9y517YX$(+_cHjE%IsQo0xyhCHt#;>bAT}@z+qlo!D=mv!pet_X5{f&Ldy#Y*cL-X|kq-)VJ(uY0bbgA$0*OW{NV|76ASOnN z8yj`-6zRtvG}M>_JK0a?7q*Y4Gj3X zdol+p=#qw>HH&_K_1|^e-K8})Zr%|r-ugbYMjbM&@g(@NmmB;h{rtER>oxIT-d=Kz zinHUF%QzR)$D{E$p30SYk*uc&vfQz3 zdF!@uY0r6_MyG(YEx93BDqGTUV7`1k``caR%z1hj)ANy+Opq{p*ZYm^{uWAJA!RDZ z?i(5-Z(sluRrV9}k`!&H-eEhKWoDH^GeJ#%eC_87ISf?sXH6A!AZ2_Q)0OT?q}t^P z!ppNeIr-Y@_?gFKlYBlffL!=<{+$iw`7`k3W>k9zSHR}uHbRuJwmlLFchiUBT-8Ul z;apNOkpLP8Rf(vj)VU_^Cm3K=(9=D@Fk8GbS34-5h~(T!e8v+cyF&c0C{6$o`6UPm zntePKx8d^m@)a-A_~6|JoIeKde*`rU<2}sggkC3gQDN{OEZrtb9MyM!@yK<(6@{io z7_e#S@&7Q|{%>*|IE+fSPcWYjI&VapJn=O2`3#2eP6VN}b{mhM^pm$AKRaB!WS751 zOm4(&>lPJUj2t#!x_YMW!o9mlmyvY5Qz^xL; z3Az)#iZi}`350i-JNZ^sb{+xKq|ViMkLMS;2SngP*s05XPe(Bb2cv*i-L@IxBZA4 z%zSJI?Xavp+%36*ymu01*F>@_Ho`Up+$MI2)$93pD`B|EM?TGm{|MtV1n{zWGG%P` z=rL&w|8!!)mQR9LxO(~jQAMY|Afa#PXfKlwZd+>N>dz0JyF__Av}x>8jrepQg6zHE zFDqg++4{9m4T06~g`A<4B#J{9lp8sqrN@93^F@11?!ViYTR~6cJ_{<2y(KQFiM7W`J4b{Y+xFy)U z21UHNFRdd%R~fWQ2`w~WmA^maC^MkvETk0TLk8!2_PGC zUz~Yz5_P)9g}pr>J~J8w!8h-;SkWR-glz0w7@hwPklqr1>w-O*9dVqOv&QrPO5%Nm z#I>glzqpHk=9I)dhfxnul@fs@8YFT0cqbr1<31u8^Q(W-X>o3=9d?5_5T#7<$+btl zjyq2$>$6wmtE%b4Yz1o?|H*UDxl6NredpapfqCU)+~eKzP*;cDjqpAPS`gH5W+QHF zswgRPNY&JyL!PP=_C3%D$nN!OE5yNr#f*^JBzuCtTW1EU!JZT6I-=x3>%N2aA2A-9 z9S40ggmar0Lj&Uo)I!!B;hkLh=GVy&l%LmH%vguhTf!WE8Gm{eY7)mwps96(dNRB< zUuK)jfj|q7J5ZlnM&DnTtH-bxg*W2`Y@k)VTPGaKtW1@f-NSbk=5q0asQJDOg;Q2d+{LI9`DfYzitSx8at$Fu3 ziZe=vFA0fRgPxNqg>Fu5hSB>x*9^tAYOV&kI&?LLSBhx=j2VusXaw2DhGqQUGjF*! z`s};z#||%Fl-Q-deE^XwQqL|$QHW>WQs(t zcepQHgWj3z2Q{v^R-*?ZkdkL58i}3#2&g?bwYeMfy>Ep&baa{LQ2@B;d3zB!) zi%!)EbhI@I2*uYT-*&lV8aO3{@&kLKtx9KhRqD1to{aCHh!o;YLoHdsmNWz;PShbwvkN>+g zVth9R1VT}{d&Xo7&8@Kt80q~k@v=eFF>@-xltA2#-o&jDn^n@>80zJ(fW^qf3=uA3 zCJ!*_IO3UD`vDLxF1OFUo0GMo8aH8bXOOXI*t;W~G#Xz>mu0B9Xm-Rui$CQ%f7YiR zwU@V5VQj{>QoD%_Naw$#c||I&L`hv5Qv2(i*jNb?#3e-Y7@%Yx!F%`+9|i^aigz^2 z$cShqdGvIjRmm5?-xMM(Le4HpyL@{zxivL3czLg}{p&g#rdsaTRu95Eab>%YOO0teorM4HT*f9EU_35-$@BRNvaxzxc& z)wL}N=FGuhL8H-@B5=WBXAVhKLjIsF)zjX>6~$mNpv@e@IoOK)B1-2-A`|(>{agsC zbyaF0c|o`&>HIVh?MOClZ!OOLtML*8AJcuhq_jRnaOTj^CwAncQ{5iu*{r>;FR^ER!+k85Q?-S2CRMDClTVg{I&zC^@8 zWfGDbJsgfx1UKc}7nqLZNQ}c6=EO5k@8WBx+UrrR*FF{pl{@sfGgHkD_B>}0GUAKe zkGabv-6{2;hL=O~fjPP3V*|9xV=7EKPPVj1L>uwVJX~XGDh5zi@2t3k&D}C(M!An& zp%XU7M?vIj-+6S9sjo$dmaq&IP{1)&>|u!gx%8IU0=;+)dhFrqYOwR7;b{pZweE`~ zK7r;N9o3IH&dRLU{rB$y_`MGzB%(E&T8Nm2ERI@GvTjQ<#F@}!AOp84R-*|q)`yH9 z*Jve7f>?R09HIBN?{wq<|GpZieH4(|#ZXzLHj%L5WHS25`m5GiGfj1aB$bOq$I|8d zo2A6vH{r!3*`>1LYet^^NhTLo$tT5F6Cp9{y~^Cf98v0o4d$&2m%u=MJU~#`9`+5& z)-m&r&J*|M;6~5RM}q)(i_jwK(Q-9Uy>il~NtUxJaY>!xSZ9h?H(r6=RrOcgqPDEc7rq{`*cFqHR@u8Cw2_rTH8Z zO2v&iQcT0_LN_Im{rn0u#&uu@mOW`$h=@Kz1A6A@D0^HX9q>Ud)TdYWa`-N~Tm{V3?7R|EcD!-|&izWj<<%5~J3)c+wC zuo;H40|33a3f>{o&0Q_ z=8_8K&i$rvPt)FTPHVs6-=!`4{V{5Kdb+Nh=agA|zb~V(9&Sup9K84|W#(v(a$qr5 z&1QL4Kd>@8D|5c1T`zEm-qG{vXY+6=Jw-e%3v0zG37<@~-+cQ6X-e%0+V|>mUDLNb zc-;LrY$_%y2AXhnnij-DA?h4Ug)F|4fKvk@1uIx0b0w49n>0x&iR0|u89r@~=D1oaWRSEjLg@j{OxpH2nzX*tyF@Zs*N1Lh4a1R* zhW32mZzJLJ-eJVUrZeLT*4a>;wNt79elXoPmQrwISd)P&i3NpHM*4on&iT+_Q&8-j zZ9)LfFJFdl&@Cvv@WrTMny}D!|kwEP+(Um?%O*um;P1?5hiP)#7zcS4w zTnTbAY-X0I7zw_vnwuCx+Pn*}NI*5Kr)meYFF872W^hUum;g2 zO4OP~hTd0lqbi5Iwe*(A&r_{9F_~SK2ERisuS({n?y@V|NW@@GdS~>ox0vL}YXiVI zzgNDGhoBd8@=%rDrY1BaLHJZE8{%Q(XKf^8mWw%0c7Rd zX2-()R0K{V>@_KMslKHNzm>i+-&j^%XbN*yP0(tdDV-+2{T@I(qvo2;^(!ry3Rp95_{^9ZywiAGwo(dHw@H0JKTlUk zyzRp3uu})xEam92L6mcogxD&uNF7sR!C@avI`$9+EdbGkVfAavRAN|HNYB|Hk&u+|?hxeI z?H-Z_fH)3LwqblHij#YL46~*gouAKJZiQ)&C{U+Uf_hKzR(zoV5{ zk422-$scSy@wFPaiWL~ll;#NpO%n2my4FlS zb7Z}s-PJc0$Y@Ed!VJSUyN3*Bop<%3d2zIU_`A1nus z@kHk}K8ua!lu^tvPxA>;ZTYtvO4)+IF?RRHfEaU8xtf3>VI5Z~Ht0gDHNmqlj*;<9 z1R}+ zFn*`067BT4&ZgI`?KlVQNZOyQ1v7R{wI4g5J#XYYTw-J~+SWQmbhV?jUu!7nI0Y{VgwBil~6{Ytcko_=44BxU38jNDcN!YT58?jav zG2bEO0q}!+^V^6YEo6{juAAuFr`(16+0OJe2?3d5*E@^Eq+`EJ~zSE#>t+;->Ba9kL>L$JfsJT zuiO+)gSDhSjH#@w*J5?AY-C12sra#5sB{MLDSFMt3!#Wl5_<93MUu9&{RDi>rl;;B zulK)emHGHex68wz7c+N=PN>VXsH52WVJoFZQI_Se*V@*tMNmq5&>`j;w@}n>iOdpo z9ii3GYgzQ%gGuD+3j56%s@W#fGE|IJ<-gBch~p3wbRJ(`DAseadAQVH2wO}fGfs5 zQMikj_U50z(iJk2(nTi42oAj!&Kb1%TNP-w8FV3VXYU8ULGt*)NGFgb@M_$5&1>tu zGR!D^A2gK$JMyPGSbw7sN>y=#XS|)e`Yh4dxOJ4_jt9i+ipn&Syw|^W`BjcwDmT$r zmdy%GAv!0?`Egg5a_Ap~Gk66U+_ka&t{JRLcoPNK5 zM7{O0fls|Im~y409&VTF_2;N~LynI9Q~$zv*!4{P8;)|uD^Fn1m_ zwC7Zbp3MQJDPPcOCh*i)gaoLDA+Nhj^Kr@bL$vjUj@8?jxLwSuKb9IDm7JqP9KEfT zL!4otj_7*IKS@M?0+ z-B*Q0QfsP5ZupfDU(R%m?q^$pODME zKtRZKecR?JplD_gwbm%V9zHn_+Fz?@pLLvtEqk6!?;IXn)$X zOxwI84;uQbTL4Vh`hR+R%b+-#@Lx1|a0%`jAjsmb!6Fb65+uPbxVtX8*kZwh1t&O! z;4JRJgUh197g%h8-R1E9&&PA>ez|q;e3+h^uIldTdgM2cb;%z|$n~jIi=UwSh@0Au zkz7YLF+ky7@E?>`dH46^=E0Dj+0o#=D@k7p1`HQ#-EBa&b;5r?2)SD#JEz@@jdC>= z3ucMBr30PMaW#hsDG_nlIQ6evcjStD5b~LrfMOC|Gz^EhZJnee(oq74op91=uYEer zt7m&_Uxe3xr*&%)R~vYoN^j*+XHfbP6Rov2#JtI>u#zz59{jDyUIZH$MBSgc1#tVz ztV{*(KVi;e2N~pRxw%SEpt!eRC9x?ecRfE?Ct}Y+bXx->Rh4a3S~AXoAEsx4s7I4rvFe z7o)A#DOuF#EMLdGeYV&NivTgtI^u57YMZ{F^f;*kNp-UVOu`1g}-JB-=KLn!}ywi6dec#MW6nSZf{xBo{_E1uhQA^ah&pl14C*cqwHAZ zOq>Te&=@M;b(MT9^3aNlrr#60Dxmrvc3W~V^Cv6_Ivb|K1*Pwj_cg3XDwgEb4re^X z%w7Q%@BH@LzrXP93t=Qh*8DAF%+Rl|>JU2Z?bmjj1gajsBbQuwTtcbu{#EKaqIWap z+LB&D`KGb!=*9^B(mrm6DeA`S`%AQ)5d`N#l4!d>MPKQ~x6HZ?<74CCc4tALt@}w1Of4|Cd#tJt@GPffGfZ)5V)wa2uCU%y&Iw7EkD zBTsuRK4aS9-zD&m6v?HhBK@2|3$~B@QJmcCq-ZbeARjht{{ii=g8$Ps77=hRde==@ zv;qdRoV^|5(lk9B4U|*N_skT#Me5kz3z_EsK?bBuP6~m)4fC>!C~ez-2cugV+{!!g z@m37$kE)^OR_tLtBEJ?~1bt&%>yD~_*mL&3KfHQY@K5fK|8G1e4K%oE{#{4Y8QweF z4&NSxpFXQ*253=INvuxn2c>l9d=Cvie5*q=GuZ#Y$M8ymSsCLKt;uZB6Ms7%3(wZx z7*PQL(@1tLCjQ`p$jF0c-`g3#*{R#+Kc%SGpHA7gv%%s_Juzh4I#vdfH{_hC^~k2z zUvn?LmK{0HZF1J3?Hj@?F%MX7S){W%NSUZPHY25If>-J7ke{rsRVZ?)iKu_3JRSP5 zE$j%Gqv%iIr(Wx{aUn3p2p6jz*3s9A*TUbCv`O^#Yj@;*$HeaR7Y3=5K2qByrUFGh z&%z~y^g@f*r`51_$`0sao+x*TG45k-&zun$5$_Asid}zJ2jQxka+dSqxTQPW6?na%rtd?1*v`4Yr$er3uOXcoC$QCkg~XGW1#f`b?BOO( zS$;W(ar{X1*i(QVSFyr7&m6<+%8&5PINQwpmx^kmKTf*cr7#YRneTovA_e0vvoAT+ z`djbKiTZeAj4;2+FG`oUs-=Ki4E6m`tnx|H8`3=Ta*tN3x8JZNt?EFN^D&}N>84(} z4zSfRDrB8A!qTYWvN*F(5pVtfi1u~+o7)-O)&L$-Iy^m~WXV$N#>U@45pn0b@Gp~| zi=X^WGBMl9^v7;T&1u!m-JQ*EF{I2op{pNjdAHwU-5T4`zjvGbg5RRd z$e7u4#3V8`=2xEq-T6^atbC3N3=Hqac*n5=u4pe!W|DY<3hYJ7=X}8589UQ71QV|L zo~WbtCkQV^e%XzM8T}AX1W>$4j?9Szd z;BF!6V8}F^(w*yK_!;9D}|ZflY^hrwUPe#9JuNpaZTE ze(U99VJVK`*U;{-+9j=)SsqL@8l;~u z*6m?At~7SH27pFU=|bxRUfj0dBmv()8nnRASE+K7MYTW~Y2cOvhmGG(#@~6dCM6yV z4&R^r+sJj8OAekX3q@O?Eo`q^nIo@kWVW7HKBkZm^j{Ucc46;^i)z1CobwJ#*PYp< zrc1nCubX9FjGtVgcl*(bw^oU$2ue@e;=#@B?e>Uyl|S{P-Gk%3#5a4>^tXp4o2x#0 ze-(dw4WH(yTD$joTgtWuyYGIx;GiF(do+->$7|aMv{sKRb@^Yx@Anu67X8J%J%98S z)dxHJw(t+mOO|eVifJDG>N*!^-6Pm3yszI|j6#&RVy&G-x&An!y=IgNIf;@qpQjQR zF^DQa-$b3?c|x?`fZy70NMm*DR~>m_DEN?VA8EY!@Dms85=KmKg@-3I5MCRruX1{S zVEhUaT69j!svb`IFv4%Lih!#`Y9}3?RCh#*SA=cOl0i<{z%iv9XlFw; z_yVc%^co#AO};v)Hg<2o29U!oXJzIj?)-TU^xFe8=B9JVpz(6F>NO-CVUG*Kw(Puxu6+K|Mi!&nZdhG z?|8uNp%xLl|MVB9kAq&fXFdWT^@*49rOJ{&O*NNwR3lEsJk-CVG*p<>bajcsak<_b zjzp=HIAxLEr~18Nw%c?^(LCF%(EQ{Ft4X}wdGMiu^{)?n{J2}3#I?OHD%;U1EodFr zaB3hZ>Bfd-@8EV(;a!y*RKxhol&6O1nRe&px4m@2{J$4<`G{5p3qxtebnZcyLhbcv z`O`mxYJmaDFY@}Tzgo>aYmi4=eWj=G@0Qdgyx=3Dij~9sFbqWyqiqpyM3uep{y)A5S}tp3BRot(m>|;On9L8Z_=Z zEIA}S%=@%M3Wi-wWJByZDSDZbB|}UJ)E}Bme{j3;Y!WhvCZ+=uxX7~SB}q;9lvlg& z?(skTLGMP-o}IVI6!fZx(=mz3UHz4SGUyr~(dn6+{eB1_1NlN1SjEY29M!$N1T4-u zzt%VobRjP>gJ2xV#Rk%rGMN^v>KUTv(fxF+PC6s{wRm6@oe9c*AjxAzZB{Ff*Sru$ z+z~eatL>e>gxtGN^+pXd$xyLjBR?EsKYD`pXw9^T_;0inSfH4*DW#d{j7>*{pMqWY zG1HeW@(CL6W*=T(E1JqrMoEZ6gfc}xa+gx&Va(fn!o`M!>&%kI&>q1C$T3>2U;(xc zPa*WCs_BM?NP!@?ic9URo8z|)36smIZ0ofwqtDV>g4OtfJyv`d67T_krZ#_Ggr4}t zD$pLl`L*GosM+^(E=d5c7U~9wpz?7cZjyE+)50YAudomhTcb(1)z&Z(BzxV~_h>`&DN_Cvzk>wq`p zjJK}%!JIIB;XKQ|s-g93=Hrw7UZ{foKuw;u+mC7{mRdx;=>GH@aCS3w`*M5dX`~Uy z);~Roj3+Lm#EXz1sJqLz^+<`5Tf8Yq4ePYaCuuA&H8xmz}g; zUE_^R9RhViTe@XM$A@!LNV~+#Nex>U>5y^4=eCOQN)Y8xyJVxqO`hcHa3v)5;0juvt4^t4dlcPv}g!+&t{WspEK0trasGivG_mW%NID^EM>yE7E9>f;$=5Bk$GU&97)z(Y@Z>u zIc*}>Lq6m}f8>GG_Z(N6dOIic7v7qd$EC53mqf*01r<)Qo9_lL+LZOy+> z6xSqQaM07Jfqlu}XabIYTU~CzKwjQSrdw;}(HYKI{jpxwrn_N@MA)g^EuFVZ7xA{X zrGL%wLX}L|u40#t&DL(rWfQ)>dNP4zK$rXcM_WJdZ=&TEXRRX98tPj%vWf$xIF`SI ztz&3Gs|%pMY-YF9(QkLqsl~`3<9LHWs)1|D$9hDDjr>{Qi>+^@H)l&<(W8P9%Co24 z>Dt+Kwy$!Xmp&1>?b7k|W|CpK-PdT>yRGv`wr4aD=glSL-Q@i}P5ZQd$1ZUK>ut*- zmqQE#3%83-S{yvN{y81@_btSPrqBI#%1$i2-!C%=D(cU;to(X1P+!{GqN(@xLv^KP z$J1An7m{u61NK+r!&Mjix&pQVJGiF|7w*9w=&tFzolmK`6KFT*1;Nw)(flC8vCO17 z9Bz87!wSw|qN2Rhmt)(_o1TEbZu z@q0S^OpHF9EbhE*Y}dEt9%t2$P0farIk4>67;wW${6KOH(8n=e>9*(lT2h91Okpuj z%@Xz5nyx~9qGx{Ixqy~y<>#M8P zcGgwr-WSj1n{7Llu@xGs>IAO`DiuxCZSR?n7ern7-f=W_49H^&Xd^R=?wejf+yH|gk z58rCZScqts+#Ej4f@S6}X~C;8GR$8O$z}qZ2vsaBVFQ)&#F--!<_4dsG>zP_1qcPF zTLP)=o~&^>s_oeG!Nemm2YI465w18du}YiAM4)YNSOr+L{f&XutI=lA{+?HPV7cJXiJ<$pIaX_bZB&pA4Jcu-dWeSPP_$LSN_GuCIf;f*OgdvtfhH zetZ>!G3Gjb!eVo8{R&spH*;-}fZ+9tD9}MpWVV~@2L$Nq0D!^^bYX!!>+HNkYx9U&D{xNS5kAbBd`lhZ3Ngj;rTDN$&7XC=m7$grt+x(>o&ZTbG-9&#f&Zkxu1k0drls+Y z{c&Kysw{B=f{WS}`lp*nI_fK#@&g+f41E~8SrR)zcVm;^Ji^?HGMA^~1+E&{Q=7Jb z^PyDTe+$9&7?&=16Fj{)f1^&M;7cTqYppCmc{n{Y>RO0%2%50qpT6PmBCFG^0qmf} zTYz#G4mjiN!Deh&hQqAXXZn52Msx_P*f%gZ)!su1!K?S2 zpA(WA<5O~S7L;slw=9w>ELvboMZOLRk{`G7+9$qfY+?wrP9EU@Q!RntWlVRtg+iR= zDB76;j7TP!jOpstPb<*&9}_*!Z%qK^4l@{TEiDc`6FokN;TM?;b0BTX+!^tFT#a~g zjKTVa0<1k`Q^R7t^ecZ}KQzsv!)k-{o=(C`K9Ql&h)SzxG#s#*AS~jcg}@EHjgy*A z8ar3>k=QEQ{g}gIb4m~Dx-})*`Nu3a-uZs5cXjU{K-!Q>CiHOG^&WQ!*xVnzUUU(A0_3L*M7 z`2aV;9%MD%*`H6PCwWPUMEBC`((sO|ikV8xbqvX^WO-XZ3-&FOc8AYJlA9&rwOb_8 zir?I7*gtDDX?@C{+wj7thi8qcn*GZ;G3lF>#P(fi9xW6-)7cwqvBYj}@(pf1vtA!( zsmFg?cYbDJl(CbYzQj!>wU5IE^;dbn!hcn=L^wUqqB@v11VH($+At)Dl zo-2>rG}41a!o9A9wIk*}UuotI`Jf5^Gl^N-__5Q9cIKCpqbpaEV;^$&6XEcl7O$bl zI>{Vsxtcn8+4D#|5~r*<@)u7mtt00`b@eY2_-vAjBqhwC&j~!=EAa#dYT?J1**yJ> z_j=og5FMr`TzD}Mf2;Sm6;4#n0Jd8C*SlW@_ITWd<$SxmukjXV@xvaZQCUw4%e8F*{m^)s=v%vaf0rFZTbUf3 z?y-AlD%iWZtElUvqc8bXMNLdYU@5*vS8~fJ9^kYW#K^C==k)fvb}$pC)?%eiqjCJm zGe9s59gesC_mzM;U@1n0&!yXMxoeB&0@k5Z@Mf#k>md?4p`fcLr;`vvjIcTtZgkE| zbnA!-GjGfduX{j_ymM(FHXjtn2M&-4)zPD+nlc+|{V3V<3!WFCAAztdD)7zdg2pV> zx$U1h5}3qxn4#NXhKdQsIp*5!Dv8*706DJi+>fS0k~tBFnk}NsToO5d0h^?b6ziw< zUln4~Ivc}cFXZOx(bSZ zV@3Hm^&iv4ox!q610->xZQb>Zf_a%u+nMB}6b3`DaARZL#&sp3>92cF_k!9NnQ=8i;3YB&{=^6(3J z!s&Kv`U9xX7}!TbSG?wM>bYeg;FaG*5w#vj)>p#xE+7y`!C071*BUywW~kWr{qwfk zrTX@P6L63lFR>tKK_Sq+7%!KYonpo(2b zUjT3heX9+mLo1lH#UftR^9nl5R+CW|y5mhNrrXMH1QF!_s)^}NW zFD;WjzXWmhPiyDny^@cMSP7_+j$}!Puj-uPTT6OeB~DiCin4SRsV8(US)`IK>58n8 zw`>onKSnOl%4#30FN^{OnzPgL=O&Fe7G#SvL4S~bM*0h;0I$zZh9d zyYD(+^0S=s0*~i8-NBYISbumcG(GSj}p9m*4KRns~3>&10 zewMVl5DQNE{+}ZGedA9Sg#QD3{v`Ry#D;8N(QpWViWE^ zT?-b3d8B8+?Nq)OJlV3Ef&4*9@r?LMAYCco>~KgwQI+pKHJ^sjs16s}4I*3d^6Ob( zZtS|?ab#Kp=Ou42{zqZVt5fE_qJ`GR(W^O0vC9aji3aS$tjIi;<%G{Cu+4miV-HkQ zK({sug;@X1_mE>@TC$uJQ~}L%vo?RMy;rFxGUYilgg)6Fq)Dvl?$uKt)DQ2)?A7;Z zkuCk}ii=DCnz)HSJV}C#glS65kt#68cv*=|5zI2dz5mX#yKW+Bibu1X(1CPgnkCiJ zmMgx2uhQ8GdyKY2s%9$Fs#Q49TZ&gPo?M@TcbjW-HQQ)S*k(Df*Q5);wrPATXGz5$ zp7;n-(>}Q18>(ZF15G@=opwJ=WxoF2nIu(3de1sV8n_Os8J}|+Opc3ac@2-U7M|~B?mGS zI^NJWs|*MTu;u}UAjm!8?G_uE9Yxe%#kJ?hfSVUV8KCps&$6E z=7`LY$2%>TIi|&9n;L;1{rL6+#bfx+qnqaS|1X{WG`y^{^fFThiV}Y(Y2)q&NyPp$ z2PfMR@7q=l8OWnCXB0=Ig!eKW$~@bd@aRrlXrWKs@uTnegE$U{a4|hXtlD=i9p&jS zNO)Wxsp^Ue%Gh)3|Mb;}dd{Bu4`>?5ZqwW&c@H_ND=1$p3Kzx@27eoA#@uApB#pMS zO;TQ$3{RbmmhP(kZMGxM^PDxFi8wReoo^s%ug21)VE8onr4WWN#BK-L>t3jgRbW9O zb4Eaf%n7fcRff-8+my56a&rXhnTS#Iw;O7;iuu#Y4!$mdu9zO3+}~7ac;EUj3=NQ` zuM7czLh(s+#-^hhI@bKpQO9tb4AEv_ot7xiywnW^8B{=n?%p?e_Ze9ivFPCxUlsJR z=AGB3|BW{6TDvUydeXit2`=2}$zn5f8Wc=7nDM5^ft434-QlRB`-y(R)5IfE$eHry z3^BbXlV>N973;g`5Zk4oW=E_NuQ6RfZD6Q!UQo{1Q>*RKKuy-trrx?OPyW9F-6G@Ac0Y!r=Xj##u=W>OpMHPlbSRK_$SLy$tg}x*aMqCQgj-8Ha8f?GGUJ ziwoTMi%$fs%zoiI31fb1*X-$t?J1#2&lkm9vWrYrEDn|)qnT0ou3dq~nF0KT;H*I1 zUgD^(HLU!U@=xp2Hl4tKKsr_BKX;muMLpwUr8_aLLm>>2Tt?xkEBHBk>EuJ)H@DWb zru3~i#W(n4%HJLI=2qn6__vwWGckzhBae|+i-3HRMa>7-z9e;&2gzd9WgIKNq85i( z;yUgN*)HVnm_19AODNU5um63k>wU@}g(Iv^BK~-ruPCM(Mx2Xbg)XrmXX9HxsqHo2 zLTt|VAooTf`r0WqEoy@>r%DyRcFk<^t`G5_L*BpPM#RKCyki(6Po6a>oTXTw-Xypc zDLRwX0GA>w&BWLPd&(qkglNwRY~;TK^aI)hm(&Hq1MSL23?XKyEbZt}!oic=;LvM< zeeDJ~@6A>>;5n-k*no2}{k8u)@%=*~A>Ba6Bdi15^KO^fC zA}Zp9P-A}cdTYC1-NNRxXSK?1czjZ(4joxhY~}r{I1dc!hv|sE6KloUVew#*IgJF& z|A^Rz<&y$IAv@G$EaIwPLm;dKSK8(TSCb2^4++3P?8kZDi9O~_$e+op1cu=qx{;FQ zu6=_ zoeTx~G0IKe%|kw;xxk5#5*Fq`p*N+qd`ZXK#~5h}%7nMFzF{_`Z5G4Q-7mpuAOU41 z&oi9WUx|bzhSA9LIH5ZGRXA-wCVI%QD-eB{(F}|&&)2Zq9d<+SzAmG|SqA88bp82^ zsjGR9dsK@KqGgGknN*mVgMdDW1hwH($kD0Tq_3V{yXccF0F|Ad3R1*a~m-W55D4;f0O1BuQ|=&PBhv{Fdgou7J0Pt zYQIMj%q!YFP*#|JpF-m&ttgtQ{%2o%DwvR2KkI|LyyyF0m5AS9eH@ zOh~RxmdZux&rGedlL$DaYR zU*1x(%RU~K^kwqT_3WA7p~?RY{8v%?amD%CuW#>c+j>sJD76c&`99SkPu^lYO#t|; zW}GK0qN>g{+z6aZ0Z>fKVWF1?v*JlP+@?R#oP7CmSR$!8xG##4bO$u>N%H5WNJcFA z9QLhyb=_ncxD+2))cruL!KU&Sl~@+6_TTm(f`gIAcag=~cYlGQuAQrK9H#eF6iHJe zxPABP#>sR2jq9itzIZT_pqRzcw3MN(R}@1yA$%2+f?`n!;x5IJU9bBXXc^Ok-H(t- zaUmQQ0&n;K_xx?$zoDA057GO7=eYkzcKrXS6Y>fpYkn$p@UFff_z}Sj>gO0?iZnsU znV90sSs0$mRTnfr2IbEe)jxWk`jDyh_CX zo0ijBZ8tUQ;3~c)VpN{y(NS_IFnxt&{qj|NQDm4h&Fp@M>a${}iI>RZjIrPJmE?-b z)b(tpN=|q8@=pS6gY!a3sB$UvSaGn6wfT}dS}uFx9_+IjjgJBtg1JMTw2u3s7GuYN ziZbVOR1J^F2bFAs*_Cday?i$K!3VHdag`h_JcNv!{XkAcpVMRw6Mb;`64@}8p&>?y zvW}7@>XSO)2_#2h>-4|a$$nYTRVVdG3fxo=?=ggRDDMd4ENMY*I_8-0-S_(d{)9&= ldHoo<{{IU0PW!MU9w=?K#~LXdJ)S&XuhrhE*1R+e`(I*XrPu%f literal 0 HcmV?d00001 diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index ed1efaa54d..d43a0ddcf6 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -16,27 +16,23 @@ author: greg-lindsay

      The following guides provide step-by-step instructions for IT administrators to test Windows 10 deployment procedures in a proof of concept (PoC) environment: -- Step by step guide: Deploy Windows 10 in a test lab (this guide): Configure the PoC environment.
      +- (This guide) Step by step guide: Deploy Windows 10 in a test lab: Configure the PoC environment.
      - [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md): Use the Microsoft Deployment Toolkit (MDT) to deploy Windows 10 in the PoC environment.
      - [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md): Use System Center Configuration Manager to deploy Windows 10 in the PoC environment.
      -This guide requires about 3 hours to complete. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. +Configuring the PoC: -The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. You do not need to be an expert in Windows PowerShell to complete the steps in the guide, however you are required to customize some commands to your environment. +Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. -Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terminology](#appendix-c-terminology-in-this-guide) used in this guide before starting. +The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. You do not need to be an expert in Windows PowerShell to complete the steps in the guide, however you are required to customize some commands to fit your environment. + +Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terminology](#appendix-b-terminology-in-this-guide) used in this guide before starting. ## In this guide -This guide contains instructions for three general procedures: +This guide contains instructions for three general procedures: Install Hyper-V, configure Hyper-V, and configure VMs. If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. -

        -
      1. Install Hyper-V. -
      2. Configure Hyper-V. -
      3. Configure VMs. -
      - -If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides. Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. +After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides. Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. @@ -55,8 +51,7 @@ Topics and procedures in this guide are summarized in the following table. An es
    [Configure Hyper-V](#configure-hyper-v)Create virtual switches, determine available RAM for virtual machines, and add virtual machines.15 minutes
    [Configure VHDs](#configure-vhds)Start virtual machines and configure all services and settings.60 minutes
    [Appendix A: Verify the configuration](#appendix-a-verify-the-configuration)Verify and troubleshoot network connectivity and services in the PoC environment.30 minutes -
    [Appendix B: Create generation 1 VM from GPT disk](#appendix-b-create-generation-1-vm-from-gpt-disk)Solution to boot a GPT formatted disk as a generation 1 VM.Optional -
    [Appendix C: Terminology in this guide](#appendix-d-terminology-in-this-guide)Terms used in this guide.Informational +
    [Appendix B: Terminology in this guide](#appendix-d-terminology-in-this-guide)Terms used in this guide.Informational
    @@ -65,7 +60,7 @@ Topics and procedures in this guide are summarized in the following table. An es One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. ->Computer 2 is a client computer from your corporate network that is copied to create a VM that can be added to the PoC environment. This enables you to test a VM that is a mirror image of the computer on your network. If you do not have a computer to use for this simulation, you can download an evaluation VHD and use it to represent this computer. Later guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create this VM using computer 2. +>Computer 2 is a client computer from your corporate network that is shadow-copied to create a VM that can be added to the PoC environment. This enables you to test a VM that is a mirror image of the computer on your network. If you do not have a computer to use for this simulation, you can download an evaluation VHD and use it to represent this computer. Subsequent guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create this VM using computer 2.
    @@ -76,58 +71,57 @@ One computer that meets the hardware and software specifications below is requir **Computer 2** (recommended) - Role + **Role** Hyper-V host Client computer - Description + **Description** This computer will run Hyper-V, the Hyper-V management tools, and the Hyper-V Windows PowerShell module. This computer is a Windows 7 or Windows 8/8.1 client on your corporate network that will be converted to a VHD for upgrade demonstration purposes. - OS + **OS** Windows 8.1/10 or Windows Server 2012/2012 R2/2016* Windows 7 or a later - Edition + **Edition** Enterprise, Professional, or Education Any - Architecture + **Architecture** 64-bit Any
    Note: Retaining applications and settings during the upgrade process requires that architecture (32 or 64-bit) is the same before and after the upgrade. - RAM + **RAM** 8 GB RAM (16 GB recommended) to test Windows 10 deployment with MDT.
    16 GB RAM to test Windows 10 deployment with System Center Configuration Manager. Any - Disk + **Disk** 50 GB available hard disk space (100 GB recommended), any format. Any size, MBR formatted. - CPU + **CPU** SLAT-Capable CPU Any - Network + **Network** Internet connection Any - *The Hyper-V server role can also be installed on a computer running Windows Server 2008 R2. However, the Windows PowerShell module for Hyper-V is not available on Windows Server 2008 R2, therefore you cannot use many of the steps provided in this guide to configure Hyper-V. To manage Hyper-V on Windows Server 2008 R2, you can use Hyper-V WMI, or you can use the Hyper-V Manager console. Providing all steps in this guide as Hyper-V WMI or as 2008 R2 Hyper-V Manager procedures is beyond the scope of the guide. - -

    The Hyper-V role cannot be installed on Windows 7 or earlier versions of Windows. +
    +
    The Hyper-V role cannot be installed on Windows 7 or earlier versions of Windows.

    @@ -162,7 +156,7 @@ The lab architecture is summarized in the following diagram: Starting with Windows 8, the host computer’s microprocessor must support second level address translation (SLAT) to install Hyper-V. See [Hyper-V: List of SLAT-Capable CPUs for Hosts](http://social.technet.microsoft.com/wiki/contents/articles/1401.hyper-v-list-of-slat-capable-cpus-for-hosts.aspx) for more information. -1. To verify your computer supports SLAT, open an administrator command prompt, type systeminfo, press ENTER, and review the section displayed at the bottom of the output, next to Hyper-V Requirements. See the following example: +1. To verify your computer supports SLAT, open an administrator command prompt, type **systeminfo**, press ENTER, and review the section displayed at the bottom of the output, next to Hyper-V Requirements. See the following example:
         C:\>systeminfo
    @@ -176,7 +170,7 @@ Starting with Windows 8, the host computer’s microprocessor must support secon
         
         In this example, the computer supports SLAT and Hyper-V. 
         
    -    If one or more requirements are evaluated as "No" then the computer does not support installing Hyper-V.  However, if only the virtualization setting is incompatible, you might be able to enable virtualization in the BIOS and change the **Virtualization Enabled In Firmware** setting from "No" to "Yes." The location of this setting will depend on the manufacturer and BIOS version, but is typically found associated with the BIOS security settings.
    +    If one or more requirements are evaluated as **No** then the computer does not support installing Hyper-V.  However, if only the virtualization setting is incompatible, you might be able to enable virtualization in the BIOS and change the **Virtualization Enabled In Firmware** setting from **No** to **Yes**. The location of this setting will depend on the manufacturer and BIOS version, but is typically found associated with the BIOS security settings.
     
         You can also identify Hyper-V support using [tools](https://blogs.msdn.microsoft.com/taylorb/2008/06/19/hyper-v-will-my-computer-run-hyper-v-detecting-intel-vt-and-amd-v/) provided by the processor manufacturer, the [msinfo32](https://technet.microsoft.com/en-us/library/cc731397.aspx) tool, or you can download the [coreinfo](http://technet.microsoft.com/en-us/sysinternals/cc835722) utility and run it, as shown in the following example:
     
    @@ -207,7 +201,7 @@ Starting with Windows 8, the host computer’s microprocessor must support secon
         
         When you are prompted to restart the computer, choose **Yes**. The computer might restart more than once. After installation is complete, you can open Hyper-V Manager by typing **virtmgmt.msc** at an elevated command prompt.
         
    -    You can also install Hyper-V using the Control Panel in Windows under **Turn Windows features on or off** for a client operating system, or using Server Manager's **Add Roles and Features Wizard** on a server operating system, as shown below:
    +    >Alternatively, you can install Hyper-V using the Control Panel in Windows under **Turn Windows features on or off** for a client operating system, or using Server Manager's **Add Roles and Features Wizard** on a server operating system, as shown below:
         
         ![hyper-v feature](images/hyper-v-feature.png)
     
    @@ -217,9 +211,7 @@ Starting with Windows 8, the host computer’s microprocessor must support secon
     
     ### Download VHD and ISO files
     
    -When you have completed installation of Hyper-V on the host computer, begin configuration of Hyper-V by downloading VHD and ISO files to the computer. These files will be used to create the VMs used in the lab.
    -
    ->Before you can download VHD and ISO files, you will need to register and sign in to the [TechNet Evaluation Center](https://www.microsoft.com/en-us/evalcenter/) using your Microsoft account.
    +When you have completed installation of Hyper-V on the host computer, begin configuration of Hyper-V by downloading VHD and ISO files to the computer. These files will be used to create the VMs used in the lab. Before you can download VHD and ISO files, you will need to register and sign in to the [TechNet Evaluation Center](https://www.microsoft.com/en-us/evalcenter/) using your Microsoft account.
     
     1. Create a directory on your Hyper-V host named **C:\VHD** and download a single [Windows Server 2012 R2 VHD](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2012-r2) from the TechNet Evaluation Center to the **C:\VHD** directory. 
     
    @@ -241,7 +233,7 @@ When you have completed installation of Hyper-V on the host computer, begin conf
     
     After completing these steps, you will have three files in the **C:\VHD** directory: **2012R2-poc-1.vhd**, **2012R2-poc-2.vhd**, **w10-enterprise.iso**.
         
    -The following commands and output display the procedures described in this section, both before and after downloading files:
    +The following displays the procedures described in this section, both before and after downloading files:
     
     
     C:\>mkdir VHD
    @@ -258,7 +250,18 @@ w10-enterprise.iso
     
     ### Convert PC to VM
     
    -If you do not have a PC available to convert to VM, you can download a VM using the following steps. Skip these steps if you have a PC to convert.
    +If you have a PC available to convert to VM (computer 2):
    +
    +
      +
    1. Sign in to computer 2 using an account with Administrator privileges. + +>You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. + +
    2. [Determine the VM generation and partition type](#determine-the-vm-generation-and-partition-type) that is required. +
    3. Based on the VM generation and partition type, perform one of the following: prepare a generation 1 VM, prepare a generation 2 VM, or prepare a generation 1 VM from a GPT disk. +
    + +If you do not have a PC available to convert to VM, perform the following steps to download an evaluation VM:
    1. Open the [Download virtual machines](https://developer.microsoft.com/en-us/microsoft-edge/tools/vms/) page. @@ -271,13 +274,7 @@ If you do not have a PC available to convert to VM, you can download a VM using
    2. Create a generation 1 VM as described in step 5 of the [Configure Hyper-V](#configure-hyper-v) section, replacing the VHD file name **w7.vhdx** with **w7.vhd**.
    -If you have a PC available to convert to VM: - -1. Sign in to the computer using an account with Administrator privileges. You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. -2. [Determine the VM generation](#determine-the-vm-generation) that is required. -3. Based on the VM generation, perform the appropriate conversion procedure. - -#### Determine VM generation +#### Determine the VM generation and partition type When creating a VM in Hyper-V, you must specify either generation 1 or generation 2. The following table describes requirements for these two types of VMs. @@ -316,9 +313,7 @@ Get-WmiObject -Class Win32_DiskPartition | Select-Object -Property SystemName,Ca If the **Type** column does not indicate GPT, then the disk partition format is MBR ("Installable File System" = MBR). ->On a computer running Windows 8 or later, you can also type **Get-Disk** at a Windows PowerShell prompt to discover the partition style. The default output of this cmdlet displays the partition style for all attached disks. - -Both commands are displayed below. In this example, the client computer is running Windows 8.1 and uses a GPT style partition format: +On a computer running Windows 8 or later, you can also type **Get-Disk** at a Windows PowerShell prompt to discover the partition style. The default output of this cmdlet displays the partition style for all attached disks. Both commands are displayed below. In this example, the client computer is running Windows 8.1 and uses a GPT style partition format:
     PS C:\> Get-WmiObject -Class Win32_DiskPartition | Select-Object -Property SystemName,Caption,Type
    @@ -423,8 +418,6 @@ Notes:
    ![disk2vhd](images/disk2vhd.png) - Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. - 5. Click **Create** to start creating a VHDX file. >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. @@ -476,6 +469,34 @@ Notes:
    PC1.VHDX
    +#### Prepare a generation 1 VM from a GPT disk + +1. Download the [Disk2vhd utility](https://technet.microsoft.com/en-us/library/ee656415.aspx), extract the .zip file and copy **disk2vhd.exe** to a flash drive or other location that is accessible from the computer you wish to convert. + + >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media such as a USB drive. + +2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. +3. Select the checkbox next to the **C:\** volume and clear the checkbox next to **Use Vhdx**. Note: no system volume is copied in this scenario. +4. Specify a location to save the resulting VHD file (F:\VHD\w7.vhd in the following example) and click **Create**. See the following example: + + ![disk2vhd](images/disk2vhd4.png) + +5. Click **Create** to start creating a VHD file. + + >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. + +6. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHD file (w7.vhd) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: + +
    +    C:\vhd>dir /B
    +    2012R2-poc-1.vhd
    +    2012R2-poc-2.vhd
    +    w10-enterprise.iso
    +    w7.VHD
    +    
    + + >Note: In its current state, the w7.VHD file is not bootable. The VHD will be used to create a bootable VM later in this guide in the [Configure Hyper-V](#configure-hyper-v) section. + ### Resize VHD The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 80GB to support installing imaging tools and storing OS images. @@ -550,9 +571,9 @@ As mentioned previously: instructions to "type" commands provided in this guide **Note**: The RAM values assigned to VMs in this step are not permanent, and can be easily increased or decreased later if needed to address performance issues. -5. Using the same elevated Windows PowerShell prompt that was used in the previous step, type one of the following sets of commands, depending on the type of VM that was prepared in the [Determine VM generation](#determine-vm-generation) section, either generation 1 or generation 2. +5. Using the same elevated Windows PowerShell prompt that was used in the previous step, type one of the following sets of commands, depending on the type of VM that was prepared in the [Determine VM generation](#determine-vm-generation) section, either generation 1, generation 2, or generation 1 with GPT. - To create a generation 1 VM: (using c:\vhd\w7.vhdx) + To create a generation 1 VM (using c:\vhd\w7.vhdx):
         New-VM -Name "PC1" -VHDPath c:\vhd\w7.vhdx -SwitchName poc-internal
    @@ -560,13 +581,60 @@ As mentioned previously: instructions to "type" commands provided in this guide
         Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
         
    - To create a generation 2 VM: (using c:\vhd\PC1.vhdx) + To create a generation 2 VM (using c:\vhd\PC1.vhdx):
         New-VM -Name "PC1" -Generation 2 -VHDPath c:\vhd\PC1.vhdx -SwitchName poc-internal
         Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20
         Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
         
    + + To create a generation 1 VM from a GPT disk (using c:\vhd\w7.vhd): + + Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host. Do not forget to type the pipe "|" at the end of commands 1-5: + +
    +    New-VHD -Path c:\vhd\s.vhd -SizeBytes 100MB |
    +    Mount-VHD -Passthru |
    +    Get-Disk -Number {$_.DiskNumber} |
    +    Initialize-Disk -PartitionStyle MBR -PassThru |
    +    New-Partition -UseMaximumSize -IsActive |
    +    Format-Volume -Confirm:$false -FileSystem NTFS -force
    +    Dismount-VHD -Path c:\vhd\s.vhd
    +    
    + + The previous set of commands creates a VHD with an MBR formatted system partition. System files are not yet copied to the partition. + + >It is possible to copy system files directly onto this partition by mounting the OS partition (w7.vhd) and using the bcdboot tool. However, this approach is not as safe as running bcdboot by accessing OS repair options for the VM. The following steps use this safer method. + + Type the following command at an elevated Windows PowerShell prompt ($maxram was defined previously): + +
    +    New-VM -Name "PC1" -VHDPath c:\vhd\s.vhd -SwitchName poc-internal
    +    Add-VMHardDiskDrive -VMName PC1 -Path c:\vhd\w7.vhd
    +    Add-VMDvdDrive -VMName PC1 -Path c:\vhd\w10-enterprise.iso
    +    Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20
    +    Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
    +    Start-VM PC1
    +    vmconnect localhost PC1
    +    
    + + Press a key to boot from DVD. The VM will boot into Windows Setup. + + 1. Click **Next**. + 2. Click **Repair your computer**. + 3. Click **Troubleshoot**. + 4. Click **Command Prompt**. + 5. Type **bootrec /scanos** and verify that **D:\Windows** is found. + 6. Type **bcdboot D:\Windows** and verify that **Boot files successfully created** is displayed. See the following example: + + ![scanos](images/scanos.png) + + >If there is an error at this stage, ensure that the system partition VHD (c:\vhd\s.vdh) is correctly formatted and attached to the VM. + + 7. Type **exit**. + 8. Click **Continue**. Do not boot from the DVD again. The VM will boot into the OS partition that was expored to c:\vhd\w7.vhd. + 9. On the PC1 virtual machine connection menu, click Media, point to DVD drive, and then click Eject w10-enterprise.iso. ### Configure VMs @@ -858,7 +926,7 @@ As mentioned previously: instructions to "type" commands provided in this guide Minimum = 1ms, Maximum = 3ms, Average = 2ms
    -37. Verify that all three VMs can reach each other, and the Internet. See [Appendix B: Verify the configuration](#appendix-b-verify-the-configuration) for more information. +37. Verify that all three VMs can reach each other, and the Internet. See [Appendix A: Verify the configuration](#appendix-b-verify-the-configuration) for more information. 38. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1:
    @@ -924,13 +992,8 @@ Use the following procedures to verify that the PoC environment is configured pr
         **ping** displays if the source can resolve the target name, and whether or not the target responds to ICMP. If it cannot be resolved, "..could not find host" will be diplayed and if the target is found and also responds to ICMP, you will see "Reply from" and the IP address of the target.
    **tracert** displays the path to reach the destination, for example srv1.contoso.com [192.168.0.2] followed by a list of hosts and IP addresses corresponding to subsequent routing nodes between the source and the destination. -## Appendix B: Create generation 1 VM from GPT disk - - - - -### Appendix C: Terminology used in this guide +### Appendix B: Terminology used in this guide See the following table for a list of terms used in this guide. From d2578a905828f20e4b23f2bd7c3c9fcf3e5c48de Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 17 Nov 2016 17:22:56 -0800 Subject: [PATCH 044/210] finally did it --- windows/deploy/windows-10-poc.md | 76 ++++++++++++++------------------ 1 file changed, 34 insertions(+), 42 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index d43a0ddcf6..17193c7cb2 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -16,11 +16,11 @@ author: greg-lindsay

    The following guides provide step-by-step instructions for IT administrators to test Windows 10 deployment procedures in a proof of concept (PoC) environment: -- (This guide) Step by step guide: Deploy Windows 10 in a test lab: Configure the PoC environment.
    -- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md): Use the Microsoft Deployment Toolkit (MDT) to deploy Windows 10 in the PoC environment.
    -- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md): Use System Center Configuration Manager to deploy Windows 10 in the PoC environment.
    +- (This guide) Step by step guide: Deploy Windows 10 in a test lab.
    +- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md).
    +- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md).
    -Configuring the PoC: +The first guide contains instructions to configure the PoC environment. The second and third guides contains steps to deploy Windows 10 in this environment with current tools. Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. @@ -60,7 +60,10 @@ Topics and procedures in this guide are summarized in the following table. An es One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. ->Computer 2 is a client computer from your corporate network that is shadow-copied to create a VM that can be added to the PoC environment. This enables you to test a VM that is a mirror image of the computer on your network. If you do not have a computer to use for this simulation, you can download an evaluation VHD and use it to represent this computer. Subsequent guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create this VM using computer 2. +- Computer 1 is the computer you will use to run Hyper-V and host virtual machines. It is recommended that this computer have 16 GB or more of installed RAM and a multi-core processor. +- Computer 2 is a client computer from your corporate network that is shadow-copied to create a VM that can be added to the PoC environment. This procedure enables you to test a VM that is a mirror image of the computer on your network. If you do not have a computer to use for this simulation, you can download an evaluation VHD and use it to represent this computer. Subsequent guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create this VM using computer 2. + +Harware requirements are displayed below:

    @@ -252,14 +255,12 @@ w10-enterprise.iso If you have a PC available to convert to VM (computer 2): -
      -
    1. Sign in to computer 2 using an account with Administrator privileges. +1. Sign in to computer 2 using an account with Administrator privileges. >You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. -
    2. [Determine the VM generation and partition type](#determine-the-vm-generation-and-partition-type) that is required. -
    3. Based on the VM generation and partition type, perform one of the following: prepare a generation 1 VM, prepare a generation 2 VM, or prepare a generation 1 VM from a GPT disk. -
    +2. [Determine the VM generation and partition type](#determine-the-vm-generation-and-partition-type) that is required. +3. Based on the VM generation and partition type, perform one of the following: [Prepare a generation 1 VM](#prepare-a-generation-1-vm), [Prepare a generation 2 VM](#prepare-a-generation-2-vm), or prepare a generation 1 VM from a GPT disk. If you do not have a PC available to convert to VM, perform the following steps to download an evaluation VM: @@ -345,7 +346,7 @@ The following table displays the Hyper-V VM generation to choose based on the OS Partition style Architecture VM generation - Procedures + Procedure Windows 7 @@ -368,8 +369,7 @@ The following table displays the Hyper-V VM generation to choose based on the OS 64 1 - [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr) -
    [Prepare a generation 1 VM](#prepare-a-generation-1-vm) + [Prepare a generation 1 VM from a GPT disk](#prepare-a-generation-1-vm-from-a-gpt-disk) Windows 8 or later @@ -387,8 +387,7 @@ The following table displays the Hyper-V VM generation to choose based on the OS GPT 32 1 - [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr) -
    [Prepare a generation 1 VM](#prepare-a-generation-1-vm) + [Prepare a generation 1 VM from a GPT disk](#prepare-a-generation-1-vm-from-a-gpt-disk) 64 @@ -401,9 +400,9 @@ The following table displays the Hyper-V VM generation to choose based on the OS Notes:
      -
    • If the PC is running Windows 7, it can only be converted and hosted in Hyper-V as a generation 1 VM. This Hyper-V requirement means that if the Windows 7 PC is also using a GPT partition style, the disk contents must be captured and then used to create a VHD with the MBR partition style. In this case, see [Appendix C: Convert GPT to MBR](#appendix-c-convert-gpt-to-mbr). -
    • If the PC is running Windows 8 or later and uses the GPT partition style, you can capture the disk image and create a generation 2 VM. To do this, you must temporarily mount the EFI system partition which is accomplished using the **mountvol** command. -
    • If the PC is using an MBR partition style, you can convert the disk to VHD and use it to create a generation 1 VM. If you use the Disk2VHD tool described in this guide, it is not necessary to mount the MBR system partition, but it is still necessary to capture it. +
    • If the PC is running Windows 7, it can only be converted and hosted in Hyper-V as a generation 1 VM. This Hyper-V requirement means that if the Windows 7 PC is also using a GPT partition style, the OS disk can be shadow copied, but a new system partition must be created. In this case, see [Prepare a generation 1 VM from a GPT disk](#prepare-a-generation-1-vm-from-a-gpt-disk). +
    • If the PC is running Windows 8 or later and uses the GPT partition style, you can capture the disk image and create a generation 2 VM. To do this, you must temporarily mount the EFI system partition which is accomplished using the **mountvol** command. In this case, see [Prepare a generation 2 VM](#prepare-a-generation-2-vm). +
    • If the PC is using an MBR partition style, you can convert the disk to VHD and use it to create a generation 1 VM. If you use the Disk2VHD tool described in this guide, it is not necessary to mount the MBR system partition, but it is still necessary to capture it. In this case, see [Prepare a generation 1 VM](#prepare-a-generation-1-vm).
    #### Prepare a generation 1 VM @@ -418,11 +417,9 @@ Notes:
    ![disk2vhd](images/disk2vhd.png) -5. Click **Create** to start creating a VHDX file. - >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. -6. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (w7.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: +5. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (w7.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory:
         C:\vhd>dir /B
    @@ -444,19 +441,17 @@ Notes:
    mountvol s: /s
    - >This command temporarily assigns a drive letter of S to the system volume and mounts it. If the letter S is already assigned to a different volume on the computer, then choose one that is available (ex: mountvol z: /s). + This command temporarily assigns a drive letter of S to the system volume and mounts it. If the letter S is already assigned to a different volume on the computer, then choose one that is available (ex: mountvol z: /s). -2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select the checkboxes next to the **C:\** and the **S:\** volumes, and clear the **Use Volume Shadow Copy checkbox**. Volume shadow copy will not work if the EFI system partition is selected. +3. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. +4. Select the checkboxes next to the **C:\** and the **S:\** volumes, and clear the **Use Volume Shadow Copy checkbox**. Volume shadow copy will not work if the EFI system partition is selected. **Important**: You must include the EFI system partition in order to create a bootable VHD. The Windows RE tools partition (shown below) is not required, but it can also be converted if desired. -4. Specify a location to save the resulting VHD or VHDX file (F:\VHD\PC1.vhdx in the following example) and click **Create**. Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. See the following example: +5. Specify a location to save the resulting VHD or VHDX file (F:\VHD\PC1.vhdx in the following example) and click **Create**. Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. See the following example: ![disk2vhd](images/disk2vhd-gen2.png) -5. Click **Create** to start creating a VHDX file. - >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. 6. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHDX file (PC1.vhdx) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: @@ -481,11 +476,9 @@ Notes:
    ![disk2vhd](images/disk2vhd4.png) -5. Click **Create** to start creating a VHD file. - >Disk2vhd can save VHDs to local hard drives, even if they are the same as the volumes being converted. Performance is better however when the VHD is saved on a disk different than those being converted, such as a flash drive. -6. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHD file (w7.vhd) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory: +5. When the Disk2vhd utility has completed converting the source computer to a VHD, copy the VHD file (w7.vhd) to your Hyper-V host in the C:\VHD directory. There should now be four files in this directory:
         C:\vhd>dir /B
    @@ -495,7 +488,7 @@ Notes:
    w7.VHD
    - >Note: In its current state, the w7.VHD file is not bootable. The VHD will be used to create a bootable VM later in this guide in the [Configure Hyper-V](#configure-hyper-v) section. + >In its current state, the w7.VHD file is not bootable. The VHD will be used to create a bootable VM later in the [Configure Hyper-V](#configure-hyper-v) section. ### Resize VHD @@ -523,6 +516,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. 1. Open an elevated Windows PowerShell window and type the following command to create two virtual switches named "poc-internal" and "poc-external": + >If the Hyper-V host already has an external virtual switch bound to a physical NIC, do not attempt to add a second external virtual switch. Attempting to add a second external switch will result in an error indicating that the NIC is **already bound to the Microsoft Virtual Switch protocol.** In this case, choose one of the following options:
       A) Remove the existing external virtual switch, then add the poc-external switch
       B) Rename the existing external switch to "poc-external"
    @@ -544,7 +538,7 @@ As mentioned previously: instructions to "type" commands provided in this guide (Get-VMHostNumaNode).MemoryAvailable
    - >This command will display the megabytes of RAM available. On a Hyper-V host computer with 16 GB of physical RAM installed, 10,000 MB of RAM or greater should be available if the computer is not also running other applications. On a computer with 8 GB of physical RAM installed, at least 4000 MB should be available. If the computer has less RAM available than this, try closing applications to free up more memory. + This command will display the megabytes of RAM available. On a Hyper-V host computer with 16 GB of physical RAM installed, 10,000 MB of RAM or greater should be available if the computer is not also running other applications. On a computer with 8 GB of physical RAM installed, at least 4000 MB should be available. If the computer has less RAM available than this, try closing applications to free up more memory. 3. Determine the available memory for VMs by dividing the available RAM by 4. For example: @@ -591,7 +585,7 @@ As mentioned previously: instructions to "type" commands provided in this guide To create a generation 1 VM from a GPT disk (using c:\vhd\w7.vhd): - Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host. Do not forget to type the pipe "|" at the end of commands 1-5: + Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host. Do not forget to include the pipe "|" at the end of commands 1-5:
         New-VHD -Path c:\vhd\s.vhd -SizeBytes 100MB |
    @@ -619,7 +613,7 @@ As mentioned previously: instructions to "type" commands provided in this guide
         vmconnect localhost PC1
         
    - Press a key to boot from DVD. The VM will boot into Windows Setup. + In the PC1 window, press a key to boot from DVD. The VM will boot into Windows Setup. 1. Click **Next**. 2. Click **Repair your computer**. @@ -633,12 +627,12 @@ As mentioned previously: instructions to "type" commands provided in this guide >If there is an error at this stage, ensure that the system partition VHD (c:\vhd\s.vdh) is correctly formatted and attached to the VM. 7. Type **exit**. - 8. Click **Continue**. Do not boot from the DVD again. The VM will boot into the OS partition that was expored to c:\vhd\w7.vhd. - 9. On the PC1 virtual machine connection menu, click Media, point to DVD drive, and then click Eject w10-enterprise.iso. + 8. Click **Continue**. Do not boot from the DVD again. The VM will boot into the OS partition that was exported to c:\vhd\w7.vhd. + 9. On the PC1 virtual machine connection menu, click **Media**, point to **DVD drive**, and then click **Eject w10-enterprise.iso**. ### Configure VMs -1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first VM by typing the following command: +1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first Windows Server VM by typing the following command:
         Start-VM DC1
    @@ -735,14 +729,14 @@ As mentioned previously: instructions to "type" commands provided in this guide
     
         Next, the client VM will be started and joined to the contoso.com domain. This is done before adding a gateway to the PoC network so that there is no danger of duplicate DNS registrations for the physical client and its cloned VM in the corporate domain.
     
    -15. Using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it:
    +15. If the PC1 VM is not started yet, using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it:
     
         
         Start-VM PC1
         vmconnect localhost PC1
         
    -16. Sign on to PC1 using an account that has local administrator rights. +16. Sign in to PC1 using an account that has local administrator rights. >PC1 will be disconnected from its current domain, so you cannot use a domain account to sign on unless these credentials are cached and the use of cached credentials is permitted by Group Policy. If cached credentials are available and permitted, you can use these credentials to sign in. Otherwise, use an existing local administrator account. @@ -789,7 +783,7 @@ As mentioned previously: instructions to "type" commands provided in this guide Flags: PDC GC DS LDAP KDC TIMESERV WRITABLE DNS_FOREST CLOSE_SITE FULL_SECRET WS 0xC000 ``` - >If PC1 is running Windows 7, enhanced session mode is not available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. + >If PC1 is running Windows 7, enhanced session mode might not be available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. 20. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click Run ISE as Administrator) and type the following commands in the (upper) script editor pane: @@ -995,8 +989,6 @@ Use the following procedures to verify that the PoC environment is configured pr ### Appendix B: Terminology used in this guide -See the following table for a list of terms used in this guide. -
    From e5fa0301967c90f4abef83035df7175030fca9f2 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 18 Nov 2016 10:31:30 -0800 Subject: [PATCH 045/210] finally did it --- windows/deploy/windows-10-poc.md | 20 +++++++++++--------- 1 file changed, 11 insertions(+), 9 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 17193c7cb2..7110b5d3bd 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -260,7 +260,7 @@ If you have a PC available to convert to VM (computer 2): >You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. 2. [Determine the VM generation and partition type](#determine-the-vm-generation-and-partition-type) that is required. -3. Based on the VM generation and partition type, perform one of the following: [Prepare a generation 1 VM](#prepare-a-generation-1-vm), [Prepare a generation 2 VM](#prepare-a-generation-2-vm), or prepare a generation 1 VM from a GPT disk. +3. Based on the VM generation and partition type, perform one of the following procedures: [Prepare a generation 1 VM](#prepare-a-generation-1-vm), [Prepare a generation 2 VM](#prepare-a-generation-2-vm), or [prepare a generation 1 VM from a GPT disk](#prepare-a-generation-1-vm-from-a-gpt-disk). If you do not have a PC available to convert to VM, perform the following steps to download an evaluation VM: @@ -271,8 +271,8 @@ If you do not have a PC available to convert to VM, perform the following steps
  • Click **Download .zip**. The download is 3.31 GB.
  • Extract the zip file. Three directories are created.
  • Open the **Virtual Hard Disks** directory and then copy **IE11 - Win7.vhd** to the **C:\VHD** directory. -
  • Rename **IE11 - Win7.vhd** to **w7.vhd** (**do not rename the file to w7.vhdx**). -
  • Create a generation 1 VM as described in step 5 of the [Configure Hyper-V](#configure-hyper-v) section, replacing the VHD file name **w7.vhdx** with **w7.vhd**. +
  • Rename **IE11 - Win7.vhd** to **w7.vhd** (do not rename the file to w7.vhdx). +
  • In step 5 of the [Configure Hyper-V](#configure-hyper-v) section, replace the VHD file name **w7.vhdx** with **w7.vhd**. #### Determine the VM generation and partition type @@ -448,7 +448,7 @@ Notes:
    **Important**: You must include the EFI system partition in order to create a bootable VHD. The Windows RE tools partition (shown below) is not required, but it can also be converted if desired. -5. Specify a location to save the resulting VHD or VHDX file (F:\VHD\PC1.vhdx in the following example) and click **Create**. Note: Hyper-V on Windows Server 2008 R2 does not support VHDX. See the following example: +5. Specify a location to save the resulting VHD or VHDX file (F:\VHD\PC1.vhdx in the following example) and click **Create**. See the following example: ![disk2vhd](images/disk2vhd-gen2.png) @@ -471,7 +471,7 @@ Notes:
    >You might experience timeouts if you attempt to run Disk2vhd from a network share, or specify a network share for the destination. To avoid timeouts, use local, portable media such as a USB drive. 2. On the computer you wish to convert, double-click the disk2vhd utility to start the graphical user interface. -3. Select the checkbox next to the **C:\** volume and clear the checkbox next to **Use Vhdx**. Note: no system volume is copied in this scenario. +3. Select the checkbox next to the **C:\** volume and clear the checkbox next to **Use Vhdx**. Note: the system volume is not copied in this scenario, it will be added later. 4. Specify a location to save the resulting VHD file (F:\VHD\w7.vhd in the following example) and click **Create**. See the following example: ![disk2vhd](images/disk2vhd4.png) @@ -585,7 +585,7 @@ As mentioned previously: instructions to "type" commands provided in this guide To create a generation 1 VM from a GPT disk (using c:\vhd\w7.vhd): - Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host. Do not forget to include the pipe "|" at the end of commands 1-5: + Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host. Do not forget to include the pipe "|" at the end of the first five commands:
         New-VHD -Path c:\vhd\s.vhd -SizeBytes 100MB |
    @@ -624,10 +624,10 @@ As mentioned previously: instructions to "type" commands provided in this guide
     
         ![scanos](images/scanos.png)
     
    -    >If there is an error at this stage, ensure that the system partition VHD (c:\vhd\s.vdh) is correctly formatted and attached to the VM.
    +    >If there is an error at this stage, ensure that the system partition VHD (c:\vhd\s.vdh) is correctly formatted, marked as active, and attached to the VM. Note: the OS drive is only temporarily assigned a letter of D.
     
         7. Type **exit**.
    -    8. Click **Continue**. Do not boot from the DVD again. The VM will boot into the OS partition that was exported to c:\vhd\w7.vhd.
    +    8. Click **Continue**. Do not press a key to boot from the DVD again. The VM will boot into the OS partition that was exported to c:\vhd\w7.vhd.
         9. On the PC1 virtual machine connection menu, click **Media**, point to **DVD drive**, and then click **Eject w10-enterprise.iso**.
         
     ### Configure VMs 
    @@ -987,7 +987,9 @@ Use the following procedures to verify that the PoC environment is configured pr
         **tracert** displays the path to reach the destination, for example srv1.contoso.com [192.168.0.2] followed by a list of hosts and IP addresses corresponding to subsequent routing nodes between the source and the destination.
     
     
    -### Appendix B: Terminology used in this guide
    +## Appendix B: Terminology used in this guide
    +
    +

     

    From 32381196c5a19cc8e6b3d870d3f13153c2a7db0a Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 18 Nov 2016 11:25:32 -0800 Subject: [PATCH 046/210] finally did it --- windows/deploy/windows-10-poc.md | 42 ++++++++++++++++---------------- 1 file changed, 21 insertions(+), 21 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 7110b5d3bd..1aa6dcb7dc 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -8,7 +8,7 @@ ms.pagetype: deploy author: greg-lindsay --- -# Step by step guide: Deploy Windows 10 in a test lab +# Step by step guide: Configure a test lab to deploy Windows 10 **Applies to** @@ -16,21 +16,19 @@ author: greg-lindsay

    The following guides provide step-by-step instructions for IT administrators to test Windows 10 deployment procedures in a proof of concept (PoC) environment: -- (This guide) Step by step guide: Deploy Windows 10 in a test lab.
    +- (This guide) Step by step guide: Configure a test lab to deploy Windows 10.
    - [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md).
    - [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md).
    -The first guide contains instructions to configure the PoC environment. The second and third guides contains steps to deploy Windows 10 in this environment with current tools. +This guide contains instructions to configure a PoC/test environment using Hyper-V that requires a minimum amount of resources. Subsequent companion guides contain steps to deploy Windows 10 using this environment. Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. -Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. +Windows PowerShell commands are provided to set up the PoC environment quickly. You do not need to be an expert in Windows PowerShell to complete the steps in the guide, however you are required to customize some commands to fit your environment. Instructions to "type" Windows PowerShell commands provided in this guide can be followed literally by typing the commands, but when it is possible the preferred method is to copy and paste these commands. -The PoC enviroment is configured by using Hyper-V and requires a minimum amount of resources. Windows PowerShell commands are provided to set up the test lab quickly. You do not need to be an expert in Windows PowerShell to complete the steps in the guide, however you are required to customize some commands to fit your environment. - -Instructions to "type" Windows PowerShell commands provided in this guide can be typed, but in most cases the preferred method is to copy and paste these commands. If you are not familiar with Hyper-V, review the [terminology](#appendix-b-terminology-in-this-guide) used in this guide before starting. +Hyper-V is installed, configured and used extensively in this guide. If you are not familiar with Hyper-V, review the [terminology](#appendix-b-terminology-in-this-guide) used in this guide before starting. ## In this guide -This guide contains instructions for three general procedures: Install Hyper-V, configure Hyper-V, and configure VMs. If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. +This guide contains instructions for three general procedures: Install Hyper-V, configure Hyper-V, and configure VMs. If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. In this case, virtual switch settings must be modified to match those used in this guide, or the steps can be modified to use your existing Hyper-V settings. After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides. Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. @@ -60,8 +58,8 @@ Topics and procedures in this guide are summarized in the following table. An es One computer that meets the hardware and software specifications below is required to complete the guide; A second computer is recommended to validate the upgrade process. -- Computer 1 is the computer you will use to run Hyper-V and host virtual machines. It is recommended that this computer have 16 GB or more of installed RAM and a multi-core processor. -- Computer 2 is a client computer from your corporate network that is shadow-copied to create a VM that can be added to the PoC environment. This procedure enables you to test a VM that is a mirror image of the computer on your network. If you do not have a computer to use for this simulation, you can download an evaluation VHD and use it to represent this computer. Subsequent guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create this VM using computer 2. +- **Computer 1**: the computer you will use to run Hyper-V and host virtual machines. This computer should have 16 GB or more of installed RAM and a multi-core processor. +- **Computer 2**: a client computer from your corporate network. It is shadow-copied to create a VM that can be added to the PoC environment, enabling you to test a mirror image of a computer on your network. If you do not have a computer to use for this simulation, you can download an evaluation VHD and use it to represent this computer. Subsequent guides use this computer to simulate Windows 10 replace and refresh scenarios, so the VM is required even if you cannot create this VM using computer 2. Harware requirements are displayed below: @@ -81,7 +79,7 @@ Harware requirements are displayed below:

  • - + @@ -96,7 +94,7 @@ Harware requirements are displayed below: - + @@ -253,15 +251,7 @@ w10-enterprise.iso ### Convert PC to VM -If you have a PC available to convert to VM (computer 2): - -1. Sign in to computer 2 using an account with Administrator privileges. - ->You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. - -2. [Determine the VM generation and partition type](#determine-the-vm-generation-and-partition-type) that is required. -3. Based on the VM generation and partition type, perform one of the following procedures: [Prepare a generation 1 VM](#prepare-a-generation-1-vm), [Prepare a generation 2 VM](#prepare-a-generation-2-vm), or [prepare a generation 1 VM from a GPT disk](#prepare-a-generation-1-vm-from-a-gpt-disk). - +
    **Description** This computer will run Hyper-V, the Hyper-V management tools, and the Hyper-V Windows PowerShell module.This computer is a Windows 7 or Windows 8/8.1 client on your corporate network that will be converted to a VHD for upgrade demonstration purposes.This computer is a Windows 7 or Windows 8/8.1 client on your corporate network that will be converted to a VM to demonstrate the upgrade process.
    **OS**
    **Architecture** 64-bitAny
    Note: Retaining applications and settings during the upgrade process requires that architecture (32 or 64-bit) is the same before and after the upgrade.
    Any
    Note: Retaining applications and settings requires that architecture (32 or 64-bit) is the same before and after the upgrade.
    **RAM**
    If you do not have a PC available to convert to VM, perform the following steps to download an evaluation VM:
      @@ -274,6 +264,16 @@ If you do not have a PC available to convert to VM, perform the following steps
    1. Rename **IE11 - Win7.vhd** to **w7.vhd** (do not rename the file to w7.vhdx).
    2. In step 5 of the [Configure Hyper-V](#configure-hyper-v) section, replace the VHD file name **w7.vhdx** with **w7.vhd**.
    +
    + +If you have a PC available to convert to VM (computer 2): + +1. Sign in to computer 2 using an account with Administrator privileges. + +>You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. + +2. [Determine the VM generation and partition type](#determine-the-vm-generation-and-partition-type) that is required. +3. Based on the VM generation and partition type, perform one of the following procedures: [Prepare a generation 1 VM](#prepare-a-generation-1-vm), [Prepare a generation 2 VM](#prepare-a-generation-2-vm), or [prepare a generation 1 VM from a GPT disk](#prepare-a-generation-1-vm-from-a-gpt-disk). #### Determine the VM generation and partition type From 7ad6529cac618eec850a6dbf01f12066b792741f Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 18 Nov 2016 13:18:08 -0800 Subject: [PATCH 047/210] minor tweaks --- windows/deploy/windows-10-poc.md | 21 +++++++++++++++------ 1 file changed, 15 insertions(+), 6 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 1aa6dcb7dc..7cd92679cc 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -270,7 +270,7 @@ If you have a PC available to convert to VM (computer 2): 1. Sign in to computer 2 using an account with Administrator privileges. ->You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. +>Important: the account used in this step must have local administrator privileges. You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. 2. [Determine the VM generation and partition type](#determine-the-vm-generation-and-partition-type) that is required. 3. Based on the VM generation and partition type, perform one of the following procedures: [Prepare a generation 1 VM](#prepare-a-generation-1-vm), [Prepare a generation 2 VM](#prepare-a-generation-2-vm), or [prepare a generation 1 VM from a GPT disk](#prepare-a-generation-1-vm-from-a-gpt-disk). @@ -312,7 +312,16 @@ To determine the partition style, open a Windows PowerShell prompt on the PC and Get-WmiObject -Class Win32_DiskPartition | Select-Object -Property SystemName,Caption,Type
    -If the **Type** column does not indicate GPT, then the disk partition format is MBR ("Installable File System" = MBR). +If the **Type** column does not indicate GPT, then the disk partition format is MBR ("Installable File System" = MBR). In the following example, the disk is GPT: + +
    +PS C:\> Get-WmiObject -Class Win32_DiskPartition | Select-Object -Property SystemName,Caption,Type
    +
    +SystemName                           Caption                                 Type
    +----------                           -------                                 ----
    +USER-PC1                             Disk #0, Partition #0                   GPT: System
    +USER-PC1                             Disk #0, Partition #1                   GPT: Basic Data
    +
    On a computer running Windows 8 or later, you can also type **Get-Disk** at a Windows PowerShell prompt to discover the partition style. The default output of this cmdlet displays the partition style for all attached disks. Both commands are displayed below. In this example, the client computer is running Windows 8.1 and uses a GPT style partition format: @@ -492,6 +501,10 @@ Notes:
    ### Resize VHD +**Important**: You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs, between VMs, and between RDP sessions. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy on one computer, then right-clicking and selecting paste on another computer. + +As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. + The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 80GB to support installing imaging tools and storing OS images. 1. To add available space for the partition, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: @@ -511,10 +524,6 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to ### Configure Hyper-V -**Important**: You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs and between VMs. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy on one computer, then right-clicking and selecting paste on another computer. - -As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. - 1. Open an elevated Windows PowerShell window and type the following command to create two virtual switches named "poc-internal" and "poc-external": >If the Hyper-V host already has an external virtual switch bound to a physical NIC, do not attempt to add a second external virtual switch. Attempting to add a second external switch will result in an error indicating that the NIC is **already bound to the Microsoft Virtual Switch protocol.** In this case, choose one of the following options:
    From 45cff09c1268340b07f29ad237a9bb47e4884a59 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 18 Nov 2016 16:00:24 -0800 Subject: [PATCH 048/210] finished one guide.. --- windows/deploy/windows-10-poc.md | 96 ++++++++++++++++---------------- 1 file changed, 47 insertions(+), 49 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 7cd92679cc..5bf7861466 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -253,7 +253,7 @@ w10-enterprise.iso
    If you do not have a PC available to convert to VM, perform the following steps to download an evaluation VM: - +
    1. Open the [Download virtual machines](https://developer.microsoft.com/en-us/microsoft-edge/tools/vms/) page.
    2. Under **Virtual machine**, choose **IE11 on Win7**. @@ -268,9 +268,9 @@ If you do not have a PC available to convert to VM, perform the following steps If you have a PC available to convert to VM (computer 2): -1. Sign in to computer 2 using an account with Administrator privileges. +1. Sign in on computer 2 using an account with Administrator privileges. ->Important: the account used in this step must have local administrator privileges. You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with Administrator rights while the VM is disconnected from the corporate network. +>Important: the account used in this step must have local administrator privileges. You can use a local computer account, or a domain account with administrative rights if domain policy allows the use of cached credentials. After converting the computer to a VM, you must be able to sign in on this VM with administrator rights while the VM is disconnected from the corporate network. 2. [Determine the VM generation and partition type](#determine-the-vm-generation-and-partition-type) that is required. 3. Based on the VM generation and partition type, perform one of the following procedures: [Prepare a generation 1 VM](#prepare-a-generation-1-vm), [Prepare a generation 2 VM](#prepare-a-generation-2-vm), or [prepare a generation 1 VM from a GPT disk](#prepare-a-generation-1-vm-from-a-gpt-disk). @@ -615,7 +615,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           New-VM -Name "PC1" -VHDPath c:\vhd\s.vhd -SwitchName poc-internal
           Add-VMHardDiskDrive -VMName PC1 -Path c:\vhd\w7.vhd
      -    Add-VMDvdDrive -VMName PC1 -Path c:\vhd\w10-enterprise.iso
      +    Set-VMDvdDrive -VMName PC1 -Path c:\vhd\w10-enterprise.iso
           Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20
           Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
           Start-VM PC1
      @@ -638,25 +638,21 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           7. Type **exit**.
           8. Click **Continue**. Do not press a key to boot from the DVD again. The VM will boot into the OS partition that was exported to c:\vhd\w7.vhd.
           9. On the PC1 virtual machine connection menu, click **Media**, point to **DVD drive**, and then click **Eject w10-enterprise.iso**.
      +    10. In the upper left corner click **Ctrl+Alt+Del** and then in the bottom right corner click **Shut down**.
           
       ### Configure VMs 
       
      -1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first Windows Server VM by typing the following command:
      +1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first Windows Server VM and connect to it by typing the following commands:
       
           
           Start-VM DC1
      -    
      - -2. Wait for the VM to complete starting up, and then connect to it either using the Hyper-V Manager console (virtmgmt.msc) or using an elevated command prompt on the Hyper-V host: - -
           vmconnect localhost DC1
           
      -3. Click **Next** to accept the default settings, read the license terms and click **I accept**, provide an administrator password of **pass@word1**, and click **Finish**. -4. Click the **Ctrl+Alt+Del** button in the upper left corner of the virtual machine connection window, and then sign in to DC1 using the local administrator account. -5. Right-click **Start**, point to **Shut down or sign out**, and click **Sign out**. The VM connection will reset and a new connection dialog box will appear enabling you to choose a custom display configuration. Select a desktop size, click **Connect** and sign in again with the local Administrator account. Note: Signing in this way ensures that [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) is enabled. It is only necessary to do this the first time you sign in to a new VM. -6. If DC1 is configured as described in this guide, it will currently be assigned an APIPA address, have a randomly generated hostname, and a single network adapter named "Ethernet." Open an elevated Windows PowerShell prompt on DC1 and type or paste the following commands to provide a new hostname and configure a static IP address and gateway: +2. Click **Next** to accept the default settings, read the license terms and click **I accept**, provide an administrator password of **pass@word1**, and click **Finish**. +3. Click **Ctrl+Alt+Del** in the upper left corner of the virtual machine connection window, and then sign in to DC1 using the Administrator account. +4. Right-click **Start**, point to **Shut down or sign out**, and click **Sign out**. The VM connection will reset and a new connection dialog box will appear enabling you to choose a custom display configuration. Select a desktop size, click **Connect** and sign in again with the local Administrator account. Note: Signing in this way ensures that [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) is enabled. It is only necessary to do this the first time you sign in to a new VM. +5. If DC1 is configured as described in this guide, it will currently be assigned an APIPA address, have a randomly generated hostname, and a single network adapter named "Ethernet." Open an elevated Windows PowerShell prompt on DC1 and type or paste the following commands to provide a new hostname and configure a static IP address and gateway:
           Rename-Computer DC1
      @@ -666,19 +662,21 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
       
           >The default gateway at 192.168.0.2 will be configured later in this guide.
       
      -7. Install the Active Directory Domain Services role by typing the following command at an elevated Windows PowerShell prompt:
      +    >Note: A list of available tasks for an app will be populated the first time you run it on the taskbar. Because these tasks aren't available until the App has been run, you will not see the Run as Administrator task until you have left-clicked Windows PowerShell for the first time. In this newly created VM, you will need to left-click Windows PowerShell one time, and then you can right-click and choose Run as Administrator to open an elevated Windows PowerShell prompt.
      +
      +6. Install the Active Directory Domain Services role by typing the following command at an elevated Windows PowerShell prompt:
       
           
           Install-WindowsFeature -Name AD-Domain-Services -IncludeAllSubFeature -IncludeManagementTools
           
      -8. Before promoting DC1 to a Domain Controller, you must reboot so that the name change in step 3 above takes effect. To restart the computer, type the following command at an elevated Windows PowerShell prompt: +7. Before promoting DC1 to a Domain Controller, you must reboot so that the name change in step 3 above takes effect. To restart the computer, type the following command at an elevated Windows PowerShell prompt:
           Restart-Computer
           
      -9. When DC1 has rebooted, sign in again and open an elevated Windows PowerShell prompt. Now you can promote the server to be a domain controller. The directory services restore mode password must be entered as a secure string. Type the following commands at the elevated Windows PowerShell prompt: +8. When DC1 has rebooted, sign in again and open an elevated Windows PowerShell prompt. Now you can promote the server to be a domain controller. The directory services restore mode password must be entered as a secure string. Type the following commands at the elevated Windows PowerShell prompt:
           $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force
      @@ -687,7 +685,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
       
           Ignore any warnings that are displayed. The computer will automatically reboot upon completion.
       
      -10. When the reboot has completed, reconnect to DC1, sign in using the CONTOSO\Administrator account, open an elevated Windows PowerShell prompt, and use the following commands to add a reverse lookup zone for the PoC network, add the DHCP Server role, authorize DHCP in Active Directory, and supress the post-DHCP-install alert:
      +9. When the reboot has completed, reconnect to DC1, sign in using the CONTOSO\Administrator account, open an elevated Windows PowerShell prompt, and use the following commands to add a reverse lookup zone for the PoC network, add the DHCP Server role, authorize DHCP in Active Directory, and supress the post-DHCP-install alert:
       
           
           Add-DnsServerPrimaryZone -NetworkID "192.168.0.0/24" -ReplicationScope Forest
      @@ -698,7 +696,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           Set-ItemProperty –Path registry::HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\ServerManager\Roles\12 –Name ConfigurationState –Value 2
           
      -11. Next, add a DHCP scope and set option values: +10. Next, add a DHCP scope and set option values:
           Add-DhcpServerv4Scope -Name "PoC Scope" -StartRange 192.168.0.100 -EndRange 192.168.0.199 -SubnetMask 255.255.255.0 -Description "Windows 10 PoC" -State Active
      @@ -706,13 +704,13 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           
      >The -Force option is necessary when adding scope options to skip validation of 192.168.0.2 as a DNS server because we have not configured it yet. The scope should immediately begin issuing leases on the PoC network. The first DHCP lease that will be issued is to vEthernet interface on the Hyper-V host, which is a member of the internal network. You can verify this by using the command: Get-DhcpServerv4Lease -ScopeId 192.168.0.0. -12. Add a user account to the contoso.com domain that can be used with client computers: +11. Add a user account to the contoso.com domain that can be used with client computers:
           New-ADUser -Name "User1" -UserPrincipalName user1 -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true
           
      -13. The DNS server role will also be installed on the member server, SRV1, at 192.168.0.2 so that we can forward DNS queries from DC1 to SRV1 to resolve Internet names without having to configure a forwarder outside the PoC network. Since the IP address of SRV1 already exists on DC1's network adapter, it will be automatically added during the DCPROMO process. To verify this server-level DNS forwarder on DC1, type the following command at an elevated Windows PowerShell prompt on DC1: +12. The DNS server role will also be installed on the member server, SRV1, at 192.168.0.2 so that we can forward DNS queries from DC1 to SRV1 to resolve Internet names without having to configure a forwarder outside the PoC network. Since the IP address of SRV1 already exists on DC1's network adapter, it will be automatically added during the DCPROMO process. To verify this server-level DNS forwarder on DC1, type the following command at an elevated Windows PowerShell prompt on DC1:
           Get-DnsServerForwarder
      @@ -734,30 +732,30 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           Add-DnsServerForwarder -IPAddress 192.168.0.2
           
      -14. Minimize the DC1 VM window but **do not stop** the VM. +13. Minimize the DC1 VM window but **do not stop** the VM. Next, the client VM will be started and joined to the contoso.com domain. This is done before adding a gateway to the PoC network so that there is no danger of duplicate DNS registrations for the physical client and its cloned VM in the corporate domain. -15. If the PC1 VM is not started yet, using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it: +14. If the PC1 VM is not started yet, using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it:
           Start-VM PC1
           vmconnect localhost PC1
           
      -16. Sign in to PC1 using an account that has local administrator rights. +15. Sign in to PC1 using an account that has local administrator rights. >PC1 will be disconnected from its current domain, so you cannot use a domain account to sign on unless these credentials are cached and the use of cached credentials is permitted by Group Policy. If cached credentials are available and permitted, you can use these credentials to sign in. Otherwise, use an existing local administrator account. -17. After signing in, the operating system detects that it is running in a new environment. New drivers will be automatically installed, including the network adapter driver. The network adapter driver must be updated before you can proceed, so that you will be able to join the contoso.com domain. Depending on the resources allocated to PC1, installing the network adapter driver might take a few minutes. You can monitor device driver installation by clicking **Show hidden icons** in the notification area. +16. After signing in, the operating system detects that it is running in a new environment. New drivers will be automatically installed, including the network adapter driver. The network adapter driver must be updated before you can proceed, so that you will be able to join the contoso.com domain. Depending on the resources allocated to PC1, installing the network adapter driver might take a few minutes. You can monitor device driver installation by clicking **Show hidden icons** in the notification area. ![PoC](images/installing-drivers.png) >If the client was configured with a static address, you must change this to a dynamic one so that it can obtain a DHCP lease. -18. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. +17. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. -19. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. +18. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: @@ -794,7 +792,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to >If PC1 is running Windows 7, enhanced session mode might not be available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. -20. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click Run ISE as Administrator) and type the following commands in the (upper) script editor pane: +19. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click **Run ISE as Administrator**) and type the following commands in the (upper) script editor pane:
           (Get-WmiObject Win32_ComputerSystem).UnjoinDomainOrWorkgroup($null,$null,0)
      @@ -811,8 +809,8 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
       
           ![ISE](images/ISE.png)
       
      -21. Click **File**, click **Save As**, and save the commands as **c:\VHD\pc1.ps1** on the Hyper-V host.
      -22. In the (lower) terminal input window, type the following command to copy the script to PC1 using integration services:
      +20. Click **File**, click **Save As**, and save the commands as **c:\VHD\pc1.ps1** on the Hyper-V host.
      +21. In the (lower) terminal input window, type the following command to copy the script to PC1 using integration services:
       
           
           Copy-VMFile "PC1" –SourcePath "C:\VHD\pc1.ps1"  –DestinationPath "C:\pc1.ps1" –CreateFullPath –FileSource Host
      @@ -820,27 +818,27 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
       
           >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM. This can be done by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server operating systems that are running the Hyper-V role service. Otherwise, just create the file c:\pc1.ps1 on the VM and type the commands into this file manually. Be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file.
       
      -23. On PC1, type the following commands at an elevated Windows PowerShell prompt:
      +22. On PC1, type the following commands at an elevated Windows PowerShell prompt:
       
           
           Get-Content c:\pc1.ps1 | powershell.exe -noprofile - 
           
      - >PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. We have not also renamed PC1 to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer. + >The commands might take a few moments to complete. If an error is displayed, check that you typed the command correctly, paying close attention to spaces. PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. PC1 is also not renamed to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer. -24. The script will take a minute or two to run. After PC1 restarts, sign in to the contoso.com domain using the **Switch User** option, with the **user1** account you created in step 11 of this section. +23. After PC1 restarts, sign in to the contoso.com domain using the **Switch User** option, with the **user1** account you created in step 11 of this section. >The settings that will be used to migrate user data specifically select only accounts that belong to the CONTOSO domain. If you wish to test migration of user data and settings with an account other than the user1 account, you must copy this account's profile to the user1 profile. -25. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. -26. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands: +24. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. +25. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands:
           Start-VM SRV1
           vmconnect localhost SRV1
           
      -27. Accept the default settings, read license terms and accept them, provide an administrator password of **pass@word1**, and click **Finish**. When you are prompted about finding PCs, devices, and content on the network, click **Yes**. -28. Sign in to SRV1 using the local administrator account. In the same way that was done on DC1, sign out of SRV1 and then sign in again to enable enhanced session mode. This will enable you to copy and paste Windows PowerShell commands from the Hyper-V host to the VM. -29. Open an elevated Windows PowerShell prompt on SRV1 and type the following commands: +26. Accept the default settings, read license terms and accept them, provide an administrator password of **pass@word1**, and click **Finish**. When you are prompted about finding PCs, devices, and content on the network, click **Yes**. +27. Sign in to SRV1 using the local administrator account. In the same way that was done on DC1, sign out of SRV1 and then sign in again to enable enhanced session mode. This will enable you to copy and paste Windows PowerShell commands from the Hyper-V host to the VM. +28. Open an elevated Windows PowerShell prompt on SRV1 and type the following commands:
           Rename-Computer SRV1
      @@ -849,9 +847,9 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           Restart-Computer
           
      -30. Wait for the computer to restart, then type or paste the following commands at an elevated Windows PowerShell prompt: +29. Wait for the computer to restart, sign in again, then type the following commands at an elevated Windows PowerShell prompt: -
        
      +    
           $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force
           $user = "contoso\administrator"
           $cred = New-Object System.Management.Automation.PSCredential($user,$pass)
      @@ -859,7 +857,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           Restart-Computer
           
      -31. Sign in to the contoso.com domain on SRV1 using the domain administrator account (enter contoso\administrator as the user), open an elevated Windows PowerShell prompt, and type the following commands: +30. Sign in to the contoso.com domain on SRV1 using the domain administrator account (enter contoso\administrator as the user), open an elevated Windows PowerShell prompt, and type the following commands:
           Install-WindowsFeature -Name DNS -IncludeManagementTools
      @@ -867,7 +865,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           Install-WindowsFeature -Name Routing -IncludeManagementTools
           
      -32. Before configuring the routing service that was just installed, verify that network interfaces were added to SRV1 in the right order, resulting in an interface alias of "Ethernet" for the private interface, and an interface alias of "Ethernet 2" for the public interface. Also verify that the external interface has a valid external DHCP IP address lease. +31. Before configuring the routing service that was just installed, verify that network interfaces were added to SRV1 in the right order, resulting in an interface alias of "Ethernet" for the private interface, and an interface alias of "Ethernet 2" for the public interface. Also verify that the external interface has a valid external DHCP IP address lease. To view a list of interfaces, associated interface aliases, and IP addresses on SRV1, type the following Windows PowerShell command. Example output of the command is also shown below: @@ -882,7 +880,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to In this example, the poc-internal network interface at 192.168.0.2 is associated with the "Ethernet" interface and the Internet-facing poc-external interface is associated with the "Ethernet 2" interface. If your interfaces are different, you must adjust the commands provided in the next step appropriately to configure routing services. -33. To configure SRV1 with routing capability for the PoC network, type or paste the following commands at an elevated Windows PowerShell prompt on SRV1: +32. To configure SRV1 with routing capability for the PoC network, type or paste the following commands at an elevated Windows PowerShell prompt on SRV1:
           Install-RemoteAccess -VpnType Vpn
      @@ -892,13 +890,13 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           cmd /c netsh routing ip nat add interface name="Internal" mode=PRIVATE
           
      -34. The DNS service on SRV1 also needs to resolve hosts in the contoso.com domain. This can be accomplished with a conditional forwarder. Open an elevated Windows PowerShell prompt on SRV1 and type the following command: +33. The DNS service on SRV1 also needs to resolve hosts in the contoso.com domain. This can be accomplished with a conditional forwarder. Open an elevated Windows PowerShell prompt on SRV1 and type the following command:
           Add-DnsServerConditionalForwarderZone -Name contoso.com -MasterServers 192.168.0.1
           
      -35. In most cases, this completes configuration of the PoC network. However, if your corporate network has a firewall that filters queries from local DNS servers, you will also need to configure a server-level DNS forwarder on SRV1 to resolve Internet names. To test whether or not DNS is working without this forwarder, try to reach a name on the Internet from DC1 or PC1, which are only using DNS services on the PoC network. You can test DNS with the ping command, for example: +34. In most cases, this completes configuration of the PoC network. However, if your corporate network has a firewall that filters queries from local DNS servers, you will also need to configure a server-level DNS forwarder on SRV1 to resolve Internet names. To test whether or not DNS is working without this forwarder, try to reach a name on the Internet from DC1 or PC1, which are only using DNS services on the PoC network. You can test DNS with the ping command, for example:
           ping www.microsoft.com
      @@ -912,7 +910,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
           Add-DnsServerForwarder -IPAddress (Get-DnsClientServerAddress -InterfaceAlias "Ethernet 2").ServerAddresses
           
      -36. If DNS and routing are both working correctly, you will see the following on DC1 and PC1: +35. If DNS and routing are both working correctly, you will see the following on DC1 and PC1 (the IP address might be different, but that is OK):
           PS C:\> ping www.microsoft.com
      @@ -929,11 +927,11 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
               Minimum = 1ms, Maximum = 3ms, Average = 2ms
           
      -37. Verify that all three VMs can reach each other, and the Internet. See [Appendix A: Verify the configuration](#appendix-b-verify-the-configuration) for more information. -38. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1: +36. Verify that all three VMs can reach each other, and the Internet. See [Appendix A: Verify the configuration](#appendix-b-verify-the-configuration) for more information. +37. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1:
      -    slmgr -rearm
      +    runas /noprofile /env /user:administrator@contoso.com "cmd slmgr -rearm"
           Restart-Computer
           
      From db85093e4a54f345dc9dd2ea66407065fe7345f9 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 18 Nov 2016 16:16:47 -0800 Subject: [PATCH 049/210] finished one guide.. --- windows/deploy/windows-10-poc-mdt.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 05589e281d..f182004d72 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -14,7 +14,7 @@ author: greg-lindsay - Windows 10 -**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). Please complete all steps in the prerequisite guide before attempting the procedures in this guide. +**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md). Please complete all steps in the prerequisite guide before attempting the procedures in this guide. The PoC environment is a virtual network running on Hyper-V with three virtual machines: - **DC1**: A contoso.com domain controller, DNS server, and DHCP server. @@ -25,7 +25,7 @@ This guide leverages the Hyper-V server role to perform procedures. If you do no ## In this guide -Description here. +This guide provides instructions to install and configure the Microsoft Deployment Toolkit (MDT) to deploy a Windows 10 image. ## Install the Microsoft Deployment Toolkit (MDT) From aadbb583aaba9fbf02d80fcd142a8a8035cf8749 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 21 Nov 2016 10:08:22 -0800 Subject: [PATCH 050/210] . --- windows/deploy/windows-10-poc-mdt.md | 4 ++-- windows/deploy/windows-10-poc.md | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index f182004d72..c742bfebed 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -1,5 +1,5 @@ --- -title: Placeholder (Windows 10) +title: Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit description: Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit ms.prod: w10 ms.mktglfcycl: deploy @@ -19,7 +19,7 @@ author: greg-lindsay The PoC environment is a virtual network running on Hyper-V with three virtual machines: - **DC1**: A contoso.com domain controller, DNS server, and DHCP server. - **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. -- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been cloned from a physical computer on your corporate network for testing purposes. +- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been shadow-copied from a physical computer on your corporate network for use in this guide. This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 5bf7861466..3a5e667ef5 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -1,5 +1,5 @@ --- -title: Deploy Windows 10 in a test lab (Windows 10) +title: Configure a test lab to deploy Windows 10 description: Concepts and procedures for deploying Windows 10 in a proof of concept lab environment. ms.prod: w10 ms.mktglfcycl: deploy From 806f1cb303d6c642aad36b312f969a8e4aaa52f5 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 21 Nov 2016 15:58:25 -0800 Subject: [PATCH 051/210] . --- windows/deploy/windows-10-poc-mdt.md | 4 ++-- windows/deploy/windows-10-poc.md | 4 ++-- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index c742bfebed..c3d260d53c 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -1,6 +1,6 @@ --- -title: Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit -description: Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit +title: Step by step: Deploy Windows 10 in a test lab using MDT +description: Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit (MDT) ms.prod: w10 ms.mktglfcycl: deploy ms.sitesec: library diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 3a5e667ef5..4e2ab3dd85 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -17,8 +17,8 @@ author: greg-lindsay

      The following guides provide step-by-step instructions for IT administrators to test Windows 10 deployment procedures in a proof of concept (PoC) environment: - (This guide) Step by step guide: Configure a test lab to deploy Windows 10.
      -- [Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md).
      -- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md).
      +- [Step by step: Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md).
      +- [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md).
      This guide contains instructions to configure a PoC/test environment using Hyper-V that requires a minimum amount of resources. Subsequent companion guides contain steps to deploy Windows 10 using this environment. Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. From 4e287d56f4efb2fd2d4d1ad39b0f56c83f988c07 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 22 Nov 2016 13:10:52 -0800 Subject: [PATCH 052/210] . --- windows/deploy/windows-10-poc-mdt.md | 17 ++++++++++------- 1 file changed, 10 insertions(+), 7 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index c3d260d53c..1b561e224a 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -14,7 +14,7 @@ author: greg-lindsay - Windows 10 -**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md). Please complete all steps in the prerequisite guide before attempting the procedures in this guide. +**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md). Please complete all steps in the prerequisite guide before starting this guide. The PoC environment is a virtual network running on Hyper-V with three virtual machines: - **DC1**: A contoso.com domain controller, DNS server, and DHCP server. @@ -49,14 +49,14 @@ This guide provides instructions to install and configure the Microsoft Deployme ## Create a deployment share and reference image -1. In [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: +1. In [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md), the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: ``` Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\w10-enterprise.iso ``` -2. Connect to SRV1 and verify that the Windows Enterprise installation DVD is mounted as drive letter D. +2. On SRV1, verify that the Windows Enterprise installation DVD is mounted as drive letter D. -3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. +3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. Note: To enable quick access to the application, right-click **Deployment Workbench** on the taskbar and then click **Pin this program to the taskbar**. 4. In the Deployment Workbench console, right-click **Deployment Shares** and select **New Deployment Share**. @@ -69,19 +69,22 @@ This guide provides instructions to install and configure the Microsoft Deployme - Progress: settings will be applied
      - Confirmation: click **Finish** -6. Expand the Deployment Shares node, and then expand MDT build lab. -7. Right-click the Operating Systems node, and then click New Folder. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. +6. Expand the **Deployment Shares** node, and then expand **MDT build lab**. -7. Right-click the Windows 10 folder created in the previous step, and then click **Import Operating System**. +7. Right-click the **Operating Systems** node, and then click **New Folder**. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. + +7. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. 8. Use the following settings for the Import Operating System Wizard: - OS Type: **Full set of source files**
      - Source: **D:\\**
      - Destination: **W10Ent_x64**
      - Summary: click **Next** + - Progress: wait for files to be copied - Confirmation: click **Finish** + 9. For purposes of this test lab, we will not add applications (such as Microsoft Office) to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. 10. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: From 53a4950d9c5f141bf3ced12e457c11c7bf2d4729 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 22 Nov 2016 13:16:39 -0800 Subject: [PATCH 053/210] . --- windows/deploy/windows-10-poc-mdt.md | 57 +++++++++++++++------------- 1 file changed, 30 insertions(+), 27 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 1b561e224a..5c2849f06d 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -56,11 +56,13 @@ This guide provides instructions to install and configure the Microsoft Deployme ``` 2. On SRV1, verify that the Windows Enterprise installation DVD is mounted as drive letter D. -3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. Note: To enable quick access to the application, right-click **Deployment Workbench** on the taskbar and then click **Pin this program to the taskbar**. +3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. -4. In the Deployment Workbench console, right-click **Deployment Shares** and select **New Deployment Share**. +4. To enable quick access to the application, right-click **Deployment Workbench** on the taskbar and then click **Pin this program to the taskbar**. -5. Use the following settings for the New Deployment Share Wizard: +5. In the Deployment Workbench console, right-click **Deployment Shares** and select **New Deployment Share**. + +6. Use the following settings for the New Deployment Share Wizard: - Deployment share path: **C:\MDTBuildLab**
      - Share name: **MDTBuildLab$**
      - Deployment share description: **MDT build lab**
      @@ -70,13 +72,13 @@ This guide provides instructions to install and configure the Microsoft Deployme - Confirmation: click **Finish** -6. Expand the **Deployment Shares** node, and then expand **MDT build lab**. +7. Expand the **Deployment Shares** node, and then expand **MDT build lab**. -7. Right-click the **Operating Systems** node, and then click **New Folder**. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. +8. Right-click the **Operating Systems** node, and then click **New Folder**. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. -7. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. +9. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. -8. Use the following settings for the Import Operating System Wizard: +10. Use the following settings for the Import Operating System Wizard: - OS Type: **Full set of source files**
      - Source: **D:\\**
      - Destination: **W10Ent_x64**
      @@ -85,9 +87,9 @@ This guide provides instructions to install and configure the Microsoft Deployme - Confirmation: click **Finish** -9. For purposes of this test lab, we will not add applications (such as Microsoft Office) to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. +>For purposes of this test lab, we will not add applications (ex: Microsoft Office) to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. -10. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: +11. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: - Task sequence ID: **REFW10X64-001**
      - Task sequence name: **Windows 10 Enterprise x64 Default Image**
      - Task sequence comments: **Reference Build**
      @@ -101,24 +103,25 @@ This guide provides instructions to install and configure the Microsoft Deployme - Summary: click **Next** - Confirmation: click **Finish** -11. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. -12. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. +12. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. -13. On the Properties tab of the group that was created in the previous step, change the Name from New Group to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. +13. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. -14. Click the **Custom Tasks (Pre-Windows Update)** group again, click **Add**, point to **Roles**, and then click **Install Roles and Features**. +14. On the Properties tab of the group that was created in the previous step, change the Name from New Group to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. -15. Under **Select the roles and features that should be installed**, select **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** and then click **Apply**. +15. Click the **Custom Tasks (Pre-Windows Update)** group again, click **Add**, point to **Roles**, and then click **Install Roles and Features**. -16. Enable Windows Update in the task sequence by clicking the **Windows Update (Post-Application Installation)** step, clicking the **Options** tab, and clearing the **Disable this step** checkbox. +16. Under **Select the roles and features that should be installed**, select **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** and then click **Apply**. + +17. Enable Windows Update in the task sequence by clicking the **Windows Update (Post-Application Installation)** step, clicking the **Options** tab, and clearing the **Disable this step** checkbox. >Note: Since we are not installing applications in this test lab, there is no need to enable the Windows Update Pre-Application Installation step. However, you should enable this step if you are also installing applications. -17. Click **OK** to complete editing the task sequence. +18. Click **OK** to complete editing the task sequence. -18. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click MDT build lab (C:\MDTBuildLab) and click **Properties**, and then click the **Rules** tab. +19. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click MDT build lab (C:\MDTBuildLab) and click **Properties**, and then click the **Rules** tab. -19. Replace the default rules with the following text: +20. Replace the default rules with the following text: ``` [Settings] @@ -152,7 +155,7 @@ This guide provides instructions to install and configure the Microsoft Deployme SkipFinalSummary=YES ``` -20. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: +21. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: ``` [Settings] @@ -166,17 +169,17 @@ This guide provides instructions to install and configure the Microsoft Deployme SkipBDDWelcome=YES ``` -21. Click **OK** to complete the configuration of the deployment share. +22. Click **OK** to complete the configuration of the deployment share. -22. Right-click **MDT build lab (C:\MDTBuildLab)** and then click **Update Deployment Share**. +23. Right-click **MDT build lab (C:\MDTBuildLab)** and then click **Update Deployment Share**. -23. Accept all default values in the Update Deployment Share Wizard by clicking **Next**. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. +24. Accept all default values in the Update Deployment Share Wizard by clicking **Next**. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. -24. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). +25. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). >Hint: Top copy the file, right-click the **LiteTouchPE_x86.iso** file and click **Copy** on SRV1, then open the **c:\VHD** folder on the Hyper-V host, right-click inside the folder and click **Paste**. -25. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: +26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: ``` New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB @@ -185,9 +188,9 @@ This guide provides instructions to install and configure the Microsoft Deployme Start-VM REFW10X64-001 vmconnect localhost REFW10X64-001 ``` -26. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. +27. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. -27. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. +28. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: @@ -201,7 +204,7 @@ This guide provides instructions to install and configure the Microsoft Deployme This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server. The file name is **REFW10X64-001.wim**. - ## Deploy a Windows 10 image using MDT +## Deploy a Windows 10 image using MDT This procedure will demonstrate how to deploy the reference image to the PoC environment using MDT. From d244e9a3a6f443dcd62d021f6851c82e6263843b Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 22 Nov 2016 13:57:59 -0800 Subject: [PATCH 054/210] . --- windows/deploy/windows-10-poc-mdt.md | 12 ++++++++---- 1 file changed, 8 insertions(+), 4 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 5c2849f06d..04f2f6bd8c 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -87,7 +87,7 @@ This guide provides instructions to install and configure the Microsoft Deployme - Confirmation: click **Finish** ->For purposes of this test lab, we will not add applications (ex: Microsoft Office) to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. +>For purposes of this test lab, we will only add the prerequisite .NET Framework feature. Commerical applications (ex: Microsoft Office) will not be added to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. 11. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: - Task sequence ID: **REFW10X64-001**
      @@ -104,22 +104,24 @@ This guide provides instructions to install and configure the Microsoft Deployme - Confirmation: click **Finish** + 12. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. 13. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. -14. On the Properties tab of the group that was created in the previous step, change the Name from New Group to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. +14. On the Properties tab of the group that was created in the previous step, change the Name from **New Group** to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. Click another location in the window to see the name change. 15. Click the **Custom Tasks (Pre-Windows Update)** group again, click **Add**, point to **Roles**, and then click **Install Roles and Features**. 16. Under **Select the roles and features that should be installed**, select **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** and then click **Apply**. 17. Enable Windows Update in the task sequence by clicking the **Windows Update (Post-Application Installation)** step, clicking the **Options** tab, and clearing the **Disable this step** checkbox. + >Note: Since we are not installing applications in this test lab, there is no need to enable the Windows Update Pre-Application Installation step. However, you should enable this step if you are also installing applications. 18. Click **OK** to complete editing the task sequence. -19. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click MDT build lab (C:\MDTBuildLab) and click **Properties**, and then click the **Rules** tab. +19. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click **MDT build lab (C:\MDTBuildLab)** and click **Properties**, and then click the **Rules** tab. 20. Replace the default rules with the following text: @@ -173,7 +175,7 @@ This guide provides instructions to install and configure the Microsoft Deployme 23. Right-click **MDT build lab (C:\MDTBuildLab)** and then click **Update Deployment Share**. -24. Accept all default values in the Update Deployment Share Wizard by clicking **Next**. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. +24. Accept all default values in the Update Deployment Share Wizard by clicking **Next** twice. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. 25. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). @@ -181,6 +183,7 @@ This guide provides instructions to install and configure the Microsoft Deployme 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: + ``` New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20 @@ -188,6 +191,7 @@ This guide provides instructions to install and configure the Microsoft Deployme Start-VM REFW10X64-001 vmconnect localhost REFW10X64-001 ``` + 27. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. 28. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. From 206021c1e7729004fe899cba436ed957c7714a49 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 22 Nov 2016 14:22:06 -0800 Subject: [PATCH 055/210] . --- windows/deploy/windows-10-poc-mdt.md | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 04f2f6bd8c..fcb5c186ba 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -191,10 +191,10 @@ This guide provides instructions to install and configure the Microsoft Deployme Start-VM REFW10X64-001 vmconnect localhost REFW10X64-001 ``` - + 27. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. -28. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. +28. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes, and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: @@ -206,6 +206,7 @@ This guide provides instructions to install and configure the Microsoft Deployme - Capture the installation to a Windows Imaging (WIM) file. - Turn off the virtual machine. + This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server. The file name is **REFW10X64-001.wim**. ## Deploy a Windows 10 image using MDT From e1f85cae95287e0e83408867d54cc6e48c952efa Mon Sep 17 00:00:00 2001 From: Jan Backstrom Date: Thu, 1 Dec 2016 12:36:03 -0800 Subject: [PATCH 056/210] new content; Surface Wake On LAN --- devices/surface/TOC.md | 1 + devices/surface/change-history-for-surface.md | 6 ++ devices/surface/update.md | 1 + .../wake-on-lan-for-surface-devices.md | 55 +++++++++++++++++++ 4 files changed, 63 insertions(+) create mode 100644 devices/surface/wake-on-lan-for-surface-devices.md diff --git a/devices/surface/TOC.md b/devices/surface/TOC.md index ee3fbbd2b8..e4fd6d25d3 100644 --- a/devices/surface/TOC.md +++ b/devices/surface/TOC.md @@ -13,6 +13,7 @@ ### [Manage Surface driver and firmware updates](manage-surface-pro-3-firmware-updates.md) ### [Manage Surface Dock firmware updates](manage-surface-dock-firmware-updates.md) ### [Surface Dock Updater](surface-dock-updater.md) +### [Wake on LAN for Surface devices](wake-on-lan-for-surface-devices.md) ## [Considerations for Surface and System Center Configuration Manager](considerations-for-surface-and-system-center-configuration-manager.md) ## [Deploy Surface app with Windows Store for Business](deploy-surface-app-with-windows-store-for-business.md) ## [Enable PEAP, EAP-FAST, and Cisco LEAP on Surface devices](enable-peap-eap-fast-and-cisco-leap-on-surface-devices.md) diff --git a/devices/surface/change-history-for-surface.md b/devices/surface/change-history-for-surface.md index b3601e729a..4c58aaa0c5 100644 --- a/devices/surface/change-history-for-surface.md +++ b/devices/surface/change-history-for-surface.md @@ -11,6 +11,12 @@ author: jdeckerMS This topic lists new and updated topics in the Surface documentation library. +## December 2016 + +|New or changed topic | Description | +| --- | --- | +|[Wake on LAN for Surface devices](wake-on-lan-for-surface-devices.md) | New | + ## November 2016 |New or changed topic | Description | diff --git a/devices/surface/update.md b/devices/surface/update.md index 3e00c77e71..46d1f3b6bd 100644 --- a/devices/surface/update.md +++ b/devices/surface/update.md @@ -16,6 +16,7 @@ Find out how to download and manage the latest firmware and driver updates for y | Topic | Description | | --- | --- | +|[Wake On LAN for Surface devices](wake-on-lan-for-surface-devices.md) | See how you can use Wake On LAN to remotely wake up devices to perform management or maintenance tasks, or to enable management solutions automatically. | | [Download the latest firmware and drivers for Surface devices](deploy-the-latest-firmware-and-drivers-for-surface-devices.md)| Get a list of the available downloads for Surface devices and links to download the drivers and firmware for your device.| | [Manage Surface driver and firmware updates](manage-surface-pro-3-firmware-updates.md)| Explore the available options to manage firmware and driver updates for Surface devices.| | [Manage Surface Dock firmware updates](manage-surface-dock-firmware-updates.md)| Read about the different methods you can use to manage the process of Surface Dock firmware updates.| diff --git a/devices/surface/wake-on-lan-for-surface-devices.md b/devices/surface/wake-on-lan-for-surface-devices.md new file mode 100644 index 0000000000..4aa2aa0a12 --- /dev/null +++ b/devices/surface/wake-on-lan-for-surface-devices.md @@ -0,0 +1,55 @@ +--- +title: Wake On LAN for Surface devices (Surface) +description: See how you can use Wake on LAN to remotely wake up devices to perform management or maintenance tasks, or to enable management solutions automatically – even if the devices are powered down. +keywords: update, deploy, driver, wol +ms.prod: w10 +ms.mktglfcycl: manage +ms.pagetype: surface, devices +ms.sitesec: library +author: jobotto +--- + +# Wake On LAN for Surface devices + +Surface devices that run Windows 10, version 1607 (also known as Windows 10 Anniversary Update) or later and use a Surface Ethernet adapter to connect to a wired network, are capable of Wake On LAN from Connected Standby. With Wake On LAN, you can remotely wake up devices to perform management or maintenance tasks or enable management solutions (such as System Center Configuration Manager) automatically – even if the devices are powered down. For example, you can deploy applications to Surface devices left docked with a Surface Dock or Surface Pro 3 Docking Station by using System Center Configuration Manager during a window in the middle of the night, when the office is empty. + +>[!NOTE] +>Surface devices must be connected to AC power to support Wake On LAN. + +## Supported devices + +The following devices are supported for Wake On LAN: + +* Surface Book +* Surface Pro 4 +* Surface Pro 3 +* Surface 3 +* Surface Ethernet adapter +* Surface Dock +* Surface Docking Station for Surface Pro 3 + +## Wake On LAN driver + +To enable Wake On LAN support on Surface devices, a specific driver for the Surface Ethernet adapter is required. This driver is not included in the standard driver and firmware pack for Surface devices – you must download and install it separately. You can download the Surface Wake On LAN driver, SurfaceWOL.msi, from the [Surface Tools for IT](https://www.microsoft.com/download/details.aspx?id=46703) page in the Microsoft Download Center. + +You can run this Microsoft Windows Installer (.msi) file on a Surface device to install the Surface Wake On LAN driver, or you can distribute it to Surface devices with an application deployment solution, such as System Center Configuration Manager. To include the Surface Wake On LAN driver during deployment, you can install the .msi file as an application during the deployment process. You can also extract the Surface Wake On LAN driver files to include them in the deployment process. For example, you can include them in your Microsoft Deployment Toolkit (MDT) deployment share. You can read more about Surface deployment with MDT in [Deploy Windows 10 to Surface devices with Microsoft Deployment Toolkit](https://technet.microsoft.com/itpro/surface/deploy-windows-10-to-surface-devices-with-mdt). + +>[!NOTE] +>During the installation of SurfaceWOL.msi, the following registry key is set to a value of 1, which allows easy identification of systems where the Wake On LAN driver has been installed. If you chose to extract and install these drivers separately during deployment, this registry key will not be configured and must be configured manually or with a script. + +>**HKLM\SYSTEM\CurrentControlSet\Control\Power AllowSystemRequiredPowerRequests** + +To extract the contents of SurfaceWOL.msi, use the MSIExec administrative installation option (**/a**), as shown in the following example, to extract the contents to the **C:\WOL\** folder: +**msiexec /a surfacewol.msi targetdir=C:\WOL /qn** + +## Using Surface Wake On LAN + +The Surface Wake On LAN driver conforms to the Wake On LAN standard, whereby the device is woken by a special network communication known as a magic packet. The magic packet consists of 6 bytes of 255 (or FF in hexadecimal) followed by 16 repetitions of the target computer’s MAC address. You can read more about the magic packet and the Wake On LAN standard at [Wake-on-LAN](https://wikipedia.org/wiki/Wake-on-LAN#Magic_packet) on Wikipedia. + +>[!NOTE] +>To send a magic packet and wake up a device by using Wake On LAN, you must know the MAC address of the target device and Ethernet adapter. Because the magic packet does not use the IP network protocol, it is not possible to use the IP address or DNS name of the device. + +Many management solutions, such as System Center Configuration Manager, provide built-in support for Wake On LAN. There are also many solutions, including Windows Store apps, PowerShell modules, third-party applications, and third-party management solutions that allow you to send a magic packet to wake up a device. For example, you can use the [Wake On LAN PowerShell module](https://gallery.technet.microsoft.com/scriptcenter/Wake-On-Lan-815424c4) from the TechNet Script Center. + +>[!NOTE] +>After a device has been woken up with a magic packet, the device will return to sleep if an application is not actively preventing sleep on the system or if the AllowSystemRequiredPowerRequests registry key is not configured to 1, which allows applications to prevent sleep. See the [Wake On LAN driver](#wake-on-lan-driver) section of this article for more information about this registry key. From c7061f80d4cb5210cc72b67d06042a7d8362293d Mon Sep 17 00:00:00 2001 From: Jan Backstrom Date: Thu, 1 Dec 2016 13:16:10 -0800 Subject: [PATCH 057/210] edits --- devices/surface/TOC.md | 2 +- devices/surface/change-history-for-surface.md | 2 +- devices/surface/wake-on-lan-for-surface-devices.md | 7 ++++--- 3 files changed, 6 insertions(+), 5 deletions(-) diff --git a/devices/surface/TOC.md b/devices/surface/TOC.md index e4fd6d25d3..0ce34a2dfe 100644 --- a/devices/surface/TOC.md +++ b/devices/surface/TOC.md @@ -13,7 +13,7 @@ ### [Manage Surface driver and firmware updates](manage-surface-pro-3-firmware-updates.md) ### [Manage Surface Dock firmware updates](manage-surface-dock-firmware-updates.md) ### [Surface Dock Updater](surface-dock-updater.md) -### [Wake on LAN for Surface devices](wake-on-lan-for-surface-devices.md) +### [Wake On LAN for Surface devices](wake-on-lan-for-surface-devices.md) ## [Considerations for Surface and System Center Configuration Manager](considerations-for-surface-and-system-center-configuration-manager.md) ## [Deploy Surface app with Windows Store for Business](deploy-surface-app-with-windows-store-for-business.md) ## [Enable PEAP, EAP-FAST, and Cisco LEAP on Surface devices](enable-peap-eap-fast-and-cisco-leap-on-surface-devices.md) diff --git a/devices/surface/change-history-for-surface.md b/devices/surface/change-history-for-surface.md index 4c58aaa0c5..a91317837d 100644 --- a/devices/surface/change-history-for-surface.md +++ b/devices/surface/change-history-for-surface.md @@ -15,7 +15,7 @@ This topic lists new and updated topics in the Surface documentation library. |New or changed topic | Description | | --- | --- | -|[Wake on LAN for Surface devices](wake-on-lan-for-surface-devices.md) | New | +|[Wake On LAN for Surface devices](wake-on-lan-for-surface-devices.md) | New | ## November 2016 diff --git a/devices/surface/wake-on-lan-for-surface-devices.md b/devices/surface/wake-on-lan-for-surface-devices.md index 4aa2aa0a12..5dce70e3f7 100644 --- a/devices/surface/wake-on-lan-for-surface-devices.md +++ b/devices/surface/wake-on-lan-for-surface-devices.md @@ -1,6 +1,6 @@ --- title: Wake On LAN for Surface devices (Surface) -description: See how you can use Wake on LAN to remotely wake up devices to perform management or maintenance tasks, or to enable management solutions automatically – even if the devices are powered down. +description: See how you can use Wake On LAN to remotely wake up devices to perform management or maintenance tasks, or to enable management solutions automatically – even if the devices are powered down. keywords: update, deploy, driver, wol ms.prod: w10 ms.mktglfcycl: manage @@ -30,7 +30,7 @@ The following devices are supported for Wake On LAN: ## Wake On LAN driver -To enable Wake On LAN support on Surface devices, a specific driver for the Surface Ethernet adapter is required. This driver is not included in the standard driver and firmware pack for Surface devices – you must download and install it separately. You can download the Surface Wake On LAN driver, SurfaceWOL.msi, from the [Surface Tools for IT](https://www.microsoft.com/download/details.aspx?id=46703) page in the Microsoft Download Center. +To enable Wake On LAN support on Surface devices, a specific driver for the Surface Ethernet adapter is required. This driver is not included in the standard driver and firmware pack for Surface devices – you must download and install it separately. You can download the Surface Wake On LAN driver (SurfaceWOL.msi) from the [Surface Tools for IT](https://www.microsoft.com/download/details.aspx?id=46703) page in the Microsoft Download Center. You can run this Microsoft Windows Installer (.msi) file on a Surface device to install the Surface Wake On LAN driver, or you can distribute it to Surface devices with an application deployment solution, such as System Center Configuration Manager. To include the Surface Wake On LAN driver during deployment, you can install the .msi file as an application during the deployment process. You can also extract the Surface Wake On LAN driver files to include them in the deployment process. For example, you can include them in your Microsoft Deployment Toolkit (MDT) deployment share. You can read more about Surface deployment with MDT in [Deploy Windows 10 to Surface devices with Microsoft Deployment Toolkit](https://technet.microsoft.com/itpro/surface/deploy-windows-10-to-surface-devices-with-mdt). @@ -40,7 +40,8 @@ You can run this Microsoft Windows Installer (.msi) file on a Surface device to >**HKLM\SYSTEM\CurrentControlSet\Control\Power AllowSystemRequiredPowerRequests** To extract the contents of SurfaceWOL.msi, use the MSIExec administrative installation option (**/a**), as shown in the following example, to extract the contents to the **C:\WOL\** folder: -**msiexec /a surfacewol.msi targetdir=C:\WOL /qn** + + `msiexec /a surfacewol.msi targetdir=C:\WOL /qn` ## Using Surface Wake On LAN From 6bcfa575d0afd16a12b7164d6584fe93979c9019 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 5 Dec 2016 10:34:22 -0800 Subject: [PATCH 058/210] . --- windows/deploy/windows-10-poc.md | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 4e2ab3dd85..9b9ffb35e4 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,13 +14,12 @@ author: greg-lindsay - Windows 10 -

      The following guides provide step-by-step instructions for IT administrators to test Windows 10 deployment procedures in a proof of concept (PoC) environment: +This guide contains instructions to configure a proof of concept (PoC) environment using Hyper-V that requires a minimum amount of resources. Subsequent companion guides contain steps to deploy Windows 10 using the PoC environment. After completing this guide, also see the following guides: -- (This guide) Step by step guide: Configure a test lab to deploy Windows 10.
      - [Step by step: Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md).
      - [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md).
      -This guide contains instructions to configure a PoC/test environment using Hyper-V that requires a minimum amount of resources. Subsequent companion guides contain steps to deploy Windows 10 using this environment. Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. +Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. Windows PowerShell commands are provided to set up the PoC environment quickly. You do not need to be an expert in Windows PowerShell to complete the steps in the guide, however you are required to customize some commands to fit your environment. Instructions to "type" Windows PowerShell commands provided in this guide can be followed literally by typing the commands, but when it is possible the preferred method is to copy and paste these commands. From dd724106962e4350e30ce7ff9804ada269325569 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 5 Dec 2016 10:39:00 -0800 Subject: [PATCH 059/210] . --- windows/deploy/windows-10-poc-mdt.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index fcb5c186ba..3a31c1ce86 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -1,5 +1,5 @@ --- -title: Step by step: Deploy Windows 10 in a test lab using MDT +title: Step by step - Deploy Windows 10 in a test lab using MDT description: Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit (MDT) ms.prod: w10 ms.mktglfcycl: deploy From d6344c11efca06f27882a9a6051f17a0a1f4d167 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 6 Dec 2016 12:11:21 -0800 Subject: [PATCH 060/210] . --- windows/deploy/windows-10-poc-mdt.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 3a31c1ce86..da24dec5fd 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -21,7 +21,8 @@ The PoC environment is a virtual network running on Hyper-V with three virtual m - **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. - **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been shadow-copied from a physical computer on your corporate network for use in this guide. -This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. +This guide leverages the Hyper-V server role to perform procedures. +- If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. ## In this guide From 3aca9ebfdd8a1ebef3fb7b308e63ae6cac7541b3 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 7 Dec 2016 11:06:14 -0800 Subject: [PATCH 061/210] . --- windows/deploy/windows-10-poc-mdt.md | 45 +++++++++++++++++++++++----- 1 file changed, 37 insertions(+), 8 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index da24dec5fd..90e02d038b 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -16,19 +16,44 @@ author: greg-lindsay **Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md). Please complete all steps in the prerequisite guide before starting this guide. -The PoC environment is a virtual network running on Hyper-V with three virtual machines: +The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): - **DC1**: A contoso.com domain controller, DNS server, and DHCP server. - **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. -- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been shadow-copied from a physical computer on your corporate network for use in this guide. +- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been shadow-copied from a physical computer on your corporate network. -This guide leverages the Hyper-V server role to perform procedures. -- If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. +>This guide leverages the Hyper-V server role to perform procedures. +>- If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. ## In this guide This guide provides instructions to install and configure the Microsoft Deployment Toolkit (MDT) to deploy a Windows 10 image. -## Install the Microsoft Deployment Toolkit (MDT) +Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. + +

      + + +
      TopicDescriptionTime + +
      [About MDT](#about-mdt)A high-level overview of the Microsoft Deployment Toolkit (MDT).Informational +
      [Install MDT](#install-mdt)Download and install MDT.40 minutes +
      [Create a deployment share and reference image](#create-a-deployment-share-and-reference-image)A reference image is created to serve as the template for deploying new images.60 minutes +
      [Deploy a Windows 10 image using MDT](#deploy-a-windows-10-image-using-mdt)The reference image is deployed in the PoC environment.60 minutes +
      [Refresh a computer with Windows 10](#refresh-a-computer-with-windows-10)Export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings.30 minutes +
      [Replace a computer with Windows 10](#replace-a-computer-with-windows-10)Back up an existing client computer, then restore this backup to a new computer.30 minutes +
      [Troubleshooting logs, events, and utilities](#troubleshooting-logs-events-and-utilities)Log locations and troubleshooting hints.Informational +
      + +
      + +## About MDT + +MDT performs deployments by using the Lite Touch Installation (LTI), Zero Touch Installation (ZTI), and User-Driven Installation (UDI) deployment methods. +- LDI is the deployment method used in the current guide, requiring only MDT and performed with a minimum amount of user interaction. +- ZTI is fully automated, requiring no user interaction and is performed using MDT and System Center Configuration Manager. After completing the steps in the current guide, see [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) to use the ZTI deployment method in the PoC environment. +- UDI requires manual intervention to respond to installation prompts such as machine name, password and language settings. UDI requires MDT and System Center Configuration Manager. + +## Install MDT 1. On SRV1, temporarily disable IE Enhanced Security Configuration for Administrators by typing the following commands at an elevated Windows PowerShell prompt: @@ -50,6 +75,8 @@ This guide provides instructions to install and configure the Microsoft Deployme ## Create a deployment share and reference image +A reference image serves as the foundation for Windows 10 devices in your organization. + 1. In [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md), the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: ``` @@ -390,7 +417,7 @@ This procedure will demonstrate how to deploy the reference image to the PoC env 9. Turn off the PC2 VM before starting the next section. To turn off the VM, right-click **Start**, point to **Shut down or sign out**, and then click **Shut down**. -### Refresh a computer with Windows 10 +## Refresh a computer with Windows 10 This topic will demonstrate how to export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings. The scenario will use PC1, a computer that was cloned from a physical device to a VM, as described in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). @@ -441,7 +468,7 @@ This topic will demonstrate how to export user data from an existing client comp ``` 10. Sign in to PC1 using the contoso\administrator account. -### Replace a computer with Windows 10 +## Replace a computer with Windows 10 At a high level, the computer replace process consists of:
      - A special replace task sequence that runs the USMT backup and an optional full Window Imaging (WIM) backup.
      @@ -536,7 +563,7 @@ At a high level, the computer replace process consists of:
      ``` 7. Setup will install the Windows 10 Enterprise operating system, update via Windows Update, and restore the user settings and data from PC1. -#### Troubleshooting logs, events, and utilities +## Troubleshooting logs, events, and utilities Deployment logs are available on the client computer in the following locations: - Before the image is applied: X:\MININT\SMSOSD\OSDLOGS @@ -547,6 +574,8 @@ You can review WDS events in Event Viewer at: **Applications and Services Logs > Tools for viewing log files, and to assist with troubleshooting are available in the [System Center 2012 R2 Configuration Manager Toolkit](https://www.microsoft.com/en-us/download/details.aspx?id=50012) +Also see [Resolve Windows 10 upgrade errors](resolve-windows-10-upgrade-errors) for detailed troubleshooting information. + ## Related Topics [Microsoft Deployment Toolkit](https://technet.microsoft.com/en-US/windows/dn475741)
      From d6ca4b0feac95828efec0f3d72a7d81221539df1 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 7 Dec 2016 11:54:12 -0800 Subject: [PATCH 062/210] . --- windows/deploy/windows-10-poc-mdt.md | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 90e02d038b..18136b2e25 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -21,8 +21,7 @@ The PoC environment is a virtual network running on Hyper-V with three virtual m - **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. - **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been shadow-copied from a physical computer on your corporate network. ->This guide leverages the Hyper-V server role to perform procedures. ->- If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. +>This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. ## In this guide @@ -115,7 +114,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi - Confirmation: click **Finish** ->For purposes of this test lab, we will only add the prerequisite .NET Framework feature. Commerical applications (ex: Microsoft Office) will not be added to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. + >For purposes of this test lab, we will only add the prerequisite .NET Framework feature. Commerical applications (ex: Microsoft Office) will not be added to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. 11. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: - Task sequence ID: **REFW10X64-001**
      @@ -207,18 +206,20 @@ A reference image serves as the foundation for Windows 10 devices in your organi 25. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). ->Hint: Top copy the file, right-click the **LiteTouchPE_x86.iso** file and click **Copy** on SRV1, then open the **c:\VHD** folder on the Hyper-V host, right-click inside the folder and click **Paste**. + >Hint: To copy the file, right-click the **LiteTouchPE_x86.iso** file and click **Copy** on SRV1, then open the **c:\VHD** folder on the Hyper-V host, right-click inside the folder and click **Paste**. 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: - ``` +
           New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB 
           Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
           Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
           Start-VM REFW10X64-001
           vmconnect localhost REFW10X64-001
      -    ```
      +    
      + + The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. 27. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. @@ -234,7 +235,6 @@ A reference image serves as the foundation for Windows 10 devices in your organi - Capture the installation to a Windows Imaging (WIM) file. - Turn off the virtual machine. - This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server. The file name is **REFW10X64-001.wim**. ## Deploy a Windows 10 image using MDT From 08357b8921337f19c89b213d423e9c14f95c2e01 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 7 Dec 2016 13:43:26 -0800 Subject: [PATCH 063/210] . --- windows/deploy/images/image.PNG | Bin 0 -> 41429 bytes windows/deploy/windows-10-poc-mdt.md | 102 ++++++++++++++------------- 2 files changed, 53 insertions(+), 49 deletions(-) create mode 100644 windows/deploy/images/image.PNG diff --git a/windows/deploy/images/image.PNG b/windows/deploy/images/image.PNG new file mode 100644 index 0000000000000000000000000000000000000000..0bbadcb68f47150cb9e252250c7d7a0965ef558c GIT binary patch literal 41429 zcmX842~<+~|Nq~7o3u&InNN$OrcP6-X=S-iDq7Rxm|NwRsgR}Oj^+v|)L1%YW@&0} z(B_JYin}10nTZRzBA}2fi6RODvj6>^|2^k@?s?sN&b{Z{_r0(8^Z9ta?vv~8P8$1k z_U+oWOT+n}%QtuJ`oEc-5x7@n=g3c2-W>dYyZD<KGl&O{;cY+F8ulD?(x?xf9g$H~0 z?R}Ep{HM!5dzWH6Q*E@8&Y=G{@Uw0@=LGI&-Dla3suw=y_9A}2ZX38Ce(_-}>HO-! zf0lc>BK%}f1Pq=eYPPXUey;=(oyG(I|4rcKHVh156nE8vhdDm}$iiU*d~%ibyFj;= zcUz_AJCRe|RgB?E$KSU_Csrbe)Q&hEeIgLDe&bfHF~>6MpJLryKD)Ck&hbM@*u`&Y zE8urW1&NoEVw%wX8sdamG=iN{%nHy=;QYZ%636vrkKe#Y(R(u)7?N3OUa8GH9UdA; zaU5^h(;LJ`j%=b&3jYT;eI&6BUEh!7Qk~azy0y{4M`vPhSvhL=;_K8-fD&D<;1{W zb;ba_$P{JzLGt9UAQHFS^#(q7<3n_N*QT}>Q@JLId;My%S3i(RfBD67RhqbB-zP|J zM!DZB{Q@g{bZ9)XJ-IK3Y2&LvyfS`H2`AA|*Y#JVztThk(X@T|NGH4&Okf;>PM^or zw>d-XzaSh!iUZGc4*FYhEdA}|>i*|B>i!ObgcZxK`_}?}UC&RRLEnEGcwXS;Uw6;+ zU~6jAytwj{kDFZ}3tdgN&>86(8@~Y?0KZGjBe&+;ik=QY+N%5YWB3$@U;rk+-@ENv z@-%)j*}ohth;B{EZdSPazaw3zr0od_iaTQ29dSz82Ro;=x|DeON%_W!h^T_Yi$RFg z@OtBD@8vg9$h`WceNusCUP5Ahvul4rC<{7WANd1_Z!8mHhdga_g=Q^K_!Uj`H+XEJ%rnH#!-(K9nG^E%%+*By+ebct-`w{< zF0M2kga>v$uVg`oKK*S^POmpRJ;wL{z+%&n0%7*Z!%#-vHi~<~gnaxtCHoZi$^7b> zvGZ98%BtVBlq@YHUot+IP86htx_20~=H~oPvIYW-jMavNU zNO9xxHFl?|%i!QK0+<+jJ=X_?dNq+FA;9%7*^@85U^>-o%>;v1Y$iaC1*j433Uody#3xYZrGFm=Ke?XRBoT zxK(FoJN>=^e%@sNVxa3feeibN%@bVY{pZ}w__3yVF~E#39pM51HUXwj7FJlB@Beb{ zsuf=x^LhxRc#1JhQUDq-)-` zL?*en_LP03D}gBXW%)`&>NSKVx-}{w4IaeJ2m9yLBq20 zSiO?C&bs2n*632efRAamX$2~%u5>IaR&I?{MLWhobYWjBTH_&SA>cC5G z*2zn!eF76pyq8brWlhb#ea6hs(SQ2>>2KwvjHD(KiCTV79KY`x`0uT|U5CTyOXT=D z+W|+5>P_H}{(sjSAH$&X_=`6XdR9j+(nhfFEe}6R$mJ8x?PFoa$c2Y%E?oXsPn+ZCX1B(@{)?O-^s^k#@$0tHxt~&lejXX@ZqB8 z7rT=lIVCfze-@(Z23H0DHrI>!LdYu2E2h5K)Lsjjp>I@YFo(!pl@QD}7M`xsodE^h43xc2IrWh}JaBN{ zh#TCVywtxs`RCF}d)<@pbt=MqFAuiPEh)@gw=vZ!WWFEU8-8-QQ-*lAdhKoYO`0>{ zB#G;>kK=JW`A~s<<#A?^e;kiG5bMffi%*1Q zIJEvn2Jd7qOQb~_&dHP%E%q(IN?tX)h3jqn6^@YKev7K4JBx!wd7quvarL#F0g@H^ z<#0V$d`(0c=KjLHD=#wQW>Zc&b1w4~MnP2Q(fW~1IPjH8hv>4ip7Yo}T7ik!>uymX36b9zEy5FRljqReU z{y-I8=l0?}upElUiV+J=Z%BF1IyZncwjlZxXTCsNf&>dN@Hpq{Bze{KL`VQqF(A)K zW-^^x;^$^36*Jy8)35I3w3>pwIZY=aIMd3q2uvk9+%%-A(8DdEd}wQ5czJU`hHPx5 zGJ~A&Int2t-~w0)C^Nd}!1wY$x1g>a_jn*oy4FUHF|t?!f2asVch@yc<{fehg^L$G zqiKy!#vsjVk9H@)59<wrAphsDz+&L>;h`_6G4&%%dyg{OS}Og@GZj=_j0??An=! zPr>TTKl+Le%x}xZ;^Yc6B1c4vB6#UTP(zn$ z7(cl=Jj``tVS-9++Gk}9(ua6V}FJcF18z5Bx zodwCpPkQ(n--f4lcNWxR?*GHXN^hik*x>E<4Z7aRnLoh;FNCiaqq<3ksV3P_RL-Pr z1zF$B-w{Oqb7imn^L1Zddq;=Yd4aJbU`{{ZH*r~Uo`Mb$9_ht-=>yQ$;3GOq-Ybvn zT@+FH(oY}%(RgjMfeQW0Y2T7D6cvHsyig@)^^5jj?C-S@Y{@z#iTNzc*~Q4)Hbs7t z72J3u^(Y9Yi1bRr2wZ&tRjjujfYpsu`})ea@T%(lBfjFvF&F?ctJhh8YHJ0X;%n~L z)jM0-*=tSi*5kuU2^Ng0$I1QNL3H{&3?NJ;7mQ*_8xq!$$@4^_ettd^>zH-+!B*2R z&}(e&+9VLkCLcei9B9oH^Y?|DBD~3A1t>Rf7I{B()0Uk$yuiM#6SYfQZ_4Gx@9(4D?}xiraZ%s_vcTTNfbTo_xmultImI#sAU)&+k&rR?aj;Wo-RdM9 z>+A5wO{KMH4EE;U+k1HtojZ?HGyFLNU{;7{NaBU7?RfREPFoI(nt zjL2j<`kPA1%nR0s?qJr48`oxH#nPR3M#3LESFS|^A+ZEbU|Fgm$LT)z?f%SU{>75E zmA5eILI_)|#wCpS=Qle782iOd(hQ=FDRFnE(EvGJ$4GYrfO$~mIt{)5*3B7g7m+m(eu zU(tmf&sE1?7f0D}7$^xKnEQ^n+iI4dT3x~0%W?gS$^RagYbg&TkNfC#*gi_O2_T(o)EL7 z>#dHLPdt8@)Ra*GO}Pr2`}b2kztAV{(y=#RT#s?T1$AEZI%c2zSV!M#SI_tDTAE=Z zBVy~4>bl-5ofODK>d#!t>*}lbo)6uQ#+fwQ+H?OR^o}@9JS`mlzmATQuDPDYrNVQ2 z&4yL1?q944HebO_LWg{GaD?7(iCR$wPp&IuuXT^w)Zh}+Ad55qoaSZRoQo-tbuUB4 zvdULgENU%bUQY-Xes5Nx>GqJx=(j(W5S=TWM1Q$K6FnCq_xA!Mi7f^?&a?hGyw&in zunTjBwyR;6GT)^>+V6g~t72qCH2W9X=h7{~^MB}SHpiFdMXdA}9T=;B1(9s%(70e( z>Qb@ll{i~NB6f}q6CI5LFNxTL?XZd8RXyho!JfHjDEoM?Adw@68LIh8aUJx~YcUo0 zx1u61bQxCs{mbwhSMl1RHj^|n$SjsL2}Y*6#d(~asSX-oELn9{9Ed+s>}( z04onHe6aLdk52@}PtHBIZP`4kH;zl}T@nB|$J4ASgCt_T+HTibjIJ2fvxp#c4{uuf zh|}QxwdNEHzF&x$8h2OvsE~E!*~`L4_MNI@&a->3x`rQ5yu7qRhGai`u|CQFRi$AC zw>3iL!h>FGi)<_LHF%aW5&=vJ-6xXPvhB^V=dZnQ9dPsIIXsdqezAMi!h6$c3t8yh z=c%{#(`(W>d;0ZI8U-gzeFXjh{$3{kzrMf^qI*wN)cL{fmDp>jhh%lAyp*usbG;CJ z5)z+?=G!Q*hF6t(tMqKw6^>H6v1UTnQpiE|Y>HW#jjw>p?E9P|0T?BIp)&;<`R8=BTDZ z_K82a`At#v%(uF1lrO?hO(;&yEQ+_JJf1tvzzn^knqc!B4`WDv3ET7at#9z(RkRpM z8PbWadT{%lYzpx>%8{-ePTg*UD5A4VHa8F*=lSMd=N}7wmvq^^dpYEpX8ES|*y^H8 z!<=nWNR5Hz$9S{gvly6v)#~YuEy6lm5_Ewu#ynA8ckd{moU?S!pQ4r?ja0c=G&;iI zx;iTtqTi8Rqw&&=D?r12nu4^WOFtj+ z`|lW6e$RhG{{4*<(!Hq|G42;`r=y)m|M*l(>eX><%LTzOz4Y@RQj4vWfd?~=y&czV z)DdzCs=G1|u^ghmem)<4;M0M}aCU4+$Zsm_iwa=poDZ_9$2}*tZ%1NLC+@Uk%x8>9 zvFN*zA??0_*jYP)qci9{U^ok}di-ALz8+ z(iibpYG9-sbIIy=b7Z`=d}=uiDb$IEzi+&#_t@qOaA2aH+&zD|D5l7a`ygSq+}BZO zXk#tE&Cfd&U-OrDVrNW)R(;p(nE+%KFFtd4B2kVi04^E&ihiuV^-{4S+(IC;wsMCl z9sK%s#xjNYj8^$lY<;V@vboND&b@_o0 zNk;1GAMU&v8;NA-Xk7JS{1G4TVvOk^@n=pGe@O%vsQ7pX#=HOc=w%jS43~AA5rIq9 zO*gd9ck|ipA}N z>;iUaVG%o*96$#0ACPW*p>RVc1)XTRm$hv@pM~wDE}Nznj9{yQr|2I#t3_Xi!fa^W6z+P58C7Dp5Q2Ctt?rwocV9~Uy&V*6SG9Kb3go)FNSYRbpxfq ze3lz~uNRQ=nzV3qNpP5uZo*0=dbg9th8ua`m)4h0s(WqiAL^L*X)$#$-bgZjNzp}z z6l0})>#%P2q%1q9rZ!mJ%(u+9Q|%R6>|2cj@vCSCggh7`-ghwURkNe_?;m^Je~xr6*ruz=Q)qT<}O<4Oa&Dem^D1~=jAV-aM`bTfFK_;^O{+(2}jkKhCP4fiJ zK`#TXfg==Izb8QAQkKf_Rv`MjG z?)^W>9-SN!R}d&Tn(Fed74n>2WhQR_rg{+J2t!c2O1E6Dfw&t{frHGY&wHg^T<#N7 z?dIdV5ru5`6vP1h7XPPu$*YdY1V@wAJ^lpsykBzfJV*~pJi+k}bUvTa6I;_xRF9L% ze-XR!j=Vx+Vf9V+q{*1-jfxLKUf3gKHz>U_VEN@&e~@tcSNtDGt( zU)YO&*w*Lg@MpPrko~|E;y=Dkg?6a^h}}tGPsU)&%!pGPkj}IhD6gf0ua^1|%s`PnHqR7{EC=_Y{YbgxPNQw}k?uiH+VEnLtxqLM36A!M&x zpU4v5=XUFVmZ#{Gqc#2MmOx{IK0rwi!Dw-%D;2M z#G0U16a4jK)v*hHL!E>FytT{Ix{(*Yu9fcAYutvmBjx?yi}QGlJ*7tP>V45qQFZ7paGvDl({) z)3CHHOF2w&Plvma>W0ho_FTYU)+@x8@%=7?Zhv28r+$g;w0R`ivPudf1QtKHdCF)f zGvBy_DCo9P@E@-#N}{<@%^XS@c6GbOo;eqJtIPnE`6(5!`8W4+zWeKt4Zo(zHuh^C zx9kxUXL}PpybttS&9Snso7w5>b^WSGcUI(uI`DVH2{+dAhjhR1kp+odKqO?W1%kVR zcy3$hx0;sWsh3xny&nC<_KwY;2syP=ajM8u37fQw2br~h9sI)GKS+EVbeZ)ecyPG;svUG+J17cIM^ z_0sN|_Vk?(eUOQMt9y*-=*Z;uGT%2eUxg<1&ZS>Ng0w2Q9*Y<%7(At%1X(b z%cAyMJ2nx|%p{3SfdT9Pbig!MitmBLI5?86`37xJ^tDbnu zT0UQUOlUo{ibfR`Mw-K`BO~bi#ohaJbPKwFNc^<4A20f)<~DvkMZd74NM!qg zH+Zo7rPD^azDl{HwZvXp|vU#>$WUe0aJ`$5!6Y)MTMEj|kmCpJi?IHsBLgc9L z8|q(kjln2I7r@h@Zut{PP;X5qTU6OF6lKKx-;XlS?ns@~NiWpExk-aSa^cO#<>wSJ z+t73q)BM%amI0eEhUy{ui&)^-dx1N?S5F`saahBpd;Lj{l6At8o*Y~k^q@mt z)SEqqJo8!xa#`#&A@BB&-M{t;y1%V*&0883D}#~tLvGN~1bCX7faaKfaGiVWm9qBq z$g3I5D@WXZ?^LW`Q90RO7J4<2N$-X_eDi}|if9LC5)U`sXNUL1N_Ezj%xQxbc}Eh8 z>rl1>Qyz7+<@NYl-tnSUa7R!5bgQSm+Qui3xexI9?2b+ zvB=}U7g2T74&T_sMu;^}`ByCm4dliX{fjQ)=YX0q7t%QfjGJ--y z&(rA4Zfhp^t&Q?r>eQ!ryxnI$uei<}1*lq$9<{guK8UDdt<-j35^*fLQBG#$t;oQl z%Vy*dhu1e1y|v}*A#ch0;xyxt)biEDLA#no)9V0VDrTIMww*NJ&xn(pYNX^8MM4US+T8?yCnognhQ$y^DAB!77XwPc(42POln zGBv3;4gUBM|2$a&%+Q6X8HUg4Xw*(^H>po*hrfJQMMj-z{{r^3*Bp2-tQv$$R^A?W zV;liEVwF7!rpox4Fql{+eI7Tas15#Rui42g!lW4j1;d3p)upLP6monX>uOZeYx#tD zAK$?G%#AV;Z|j6{%vS2hUtJ$)y31@$c4M8?1P&8hE6ZP3x9@8FINTXNzH1WsZOM^z z`_F~eC_(SrA(nL4NASAUG=Kk)s{6plQLYpB#k|?ngU}+$r*8jl|Q zNjDqC9C=y-Sdq;2dy!nWkLIrfhC*usmLK;#V`%kl5|7LY?p2IzCPfsX3MrUiA8V+H zz<^5^n8xBYqNd_-jrVMiMILuk>>*NbADBbXuZA5zsU0vT zVaU^&A?A`H^~ka1<4||W@M5<)uIv=~W;^e-{48^c>%~|X!>hpD!PeA&KTH4ZVAOBN zLDCb4`%DvDxp|I}Sdmukb-k%O!-GTluVW0}bp7JOvjQc;AFhuU8h7B+G!K{;tq4;K zPR@Y9rr5$xri7ojh5w|vlY?PpydFvEq3Su5Lw|vX!-=80SZ58)EZab z4oLjc(HbG?XuVH64*&c0DB@pl!?nnKf@r_g)X44CTZh5=*GJO<@~sVutB;$&idj9k zA4dn9)IFg&T3F3sr=(nNI`4>j8+%6|JM?nQprP$9!>y*>(CXUQZzJA~L#sC*=i%ps z23lg67bx?VwC8?_Wt;(KO&Wk%EAr7-2FQ+;K*gt%ddvi+ledV`V-JIlizZlWkbHm; zM=&vKHu8Snx|;&RT%ErGA1=vz$v{U=h`g|mqo{8x~Gs4 zsugH*5391$j&Zo7>M=czf^T{Bs!R4H7oDC-tk z&?j}P818Ir_GxLRxRt9$Zd~XVR;lQj*jX(*yw`j7w&Y0Bn~kqA;3}<9H+yz5AhYM!z=eXemcE8Xa zs))i5oRJ9olD__S2+mhMEgmf#dZ78c`|AQg4xtxZ&bv(5Is|8ABBEVy#!LaJZc&i`#Kx%_CW?q4Q75m|huJ1KtYRrG} zv<6m=(Cn^rjSXG|pM5oQ*+9K?`&4<_a{#zkBk83OER}2ty02~rY3vIQo4rtrcc{yU?$B zUE99#okTJ5er*`kF|LRipw{ie%Bc^y5^A!+;{?_FOI)j_CIqY4Sp+eMs-i; zatNqpoV6B`4^I6U8q+y>IG_&v&b-)a!@@2+m+_X0#H2D}vbbkUDx`>h8)A&AK@Cgf z0B|%&>HKBtLL_QPIM5F`ou*Kojt6b~*~RyAIqxv_xGQK0J=P4X=%;%vhi3WKJi{sp zB%#0Xe~*0)m02nm6^wv;YW47m=g<(IV7VKKc;JniHBfP3bV%BKthB|@NJKOXxpohR zW!}j|DE9GNI5DR_<>(0Pmj^yRvU+O{=XQ;+rTGSikO3`s$!YKETPRu4SYPCXAxI*> z^N&L;hN@~UqoLsU`xKv;U1|H90sEEzxpl5(28GTR{@wmIP#B1FPG4PnT4zai@2i&g9=q$Bx=8&Ie_R7xy#s8h|T0^c)7k|W_KoahMTe#K{ivlPd6ke0N|p-p2q&jVH( zJf>%s208XEj+Lo#@8o_<9T7-GxE3&}gs^(w;3MN6gv$E~-od`Jv<9JeI1)z+YV5TF zAJ<3!(Kl2T_j~DIu8lO z5ah>q>RISY8ehRXmbAQ6BP&a`eGAxjS3Hny9%gNcoqG2@=bVlVT%gD+!7az zsH`8q01}LhSNW(+S3iU<3%tp=ySc+nenvgk*=$|M>KLC$sR%Wj3K_M z{^#(0r(g*x3&7OKq`{+)b-lFy4xIXaV|T+!=knS�tSj#^&EO;_-=WhR>>ac;dl?s=XJ=U!Zn>!$3{b3s5}ZJ#qEN4D^M7S&=A(1qcadoaT6_hdNjIJ5&*Kj_c;?!gaTBxbr5=Y)F*w9 z2|k_KZ4Q1HcuqdCLHVb^V^e!=F|)Ay)QO@K9-(aqdehu{VvTmoX@)j4H6U2QA!YH1 z>AyJ)^IlGVTm53_+1Ul`T|c8^_^V>MC#gx_lDaP zKP!vl2lrjm9&D`|=c@>ETEEW*vX6I1tNF}^Xhli#PE)u38x~Q^tu(1)gGjSWXY%g% zgqEb04~@dKt*uai9h4lN2Cn+aew=Z}LT~C@48CVMiWU}_Ik06vcYReMwDvz7de5NI z&;Lwg+mTz1g{do|*6&)#h7+s$jh==zziI4#_*8GxLz8;NU%w?eVDnAd9k~H#Ex9Tl z=7udJ^dUC{%%ttNa9SR@^Rpqgiv~NR-E321VgJ1a)Or#FY3y?(_KkdFeGql`3GLUo z!7BA_1Litv$YvTNY1=_4%R1xRPXN^Bl;Z!+E_EP#_TJ9_<$R>v+CQbw)^6+jFG5zn z4ON%;exU@?Kx3;;d|T1`=CWoHIGNA>xs|QgenZsROc&boj#*y`4U(`U*FrMa!lh-h zOaAS$Q0@Azs4*zEQJ#~69lo^#zi+kl0mW><8hJ$WQcM}1jN~@;VPaYqM)Du-%c#AJ z6pJ;iBl$`BqwjrYd3Gi8hsQ#WOQP5FJ8g=7;YNW2_-=MIyE2lx#?9dS-W52kB-@P( zE%Ihav`bd5dXO1J=UdGy^PlnFho|Y*q=`U&ayg+a)j+MvJmcXuP%K9UM08tR=7|KbZ=}w9(;Ha>fX=%H6%cqNdcHVIStH z3b~Ofu`9>I7C?J2b=%u28qZWHGcd2o^>2%QH z#ENxz0s95kq6`x`3`%U%a|{7tT;-Zp?l#j<-|#=0=Ldy1XDNIwZ2n1ax$H41vgfGI z=d|0qYrCSRDmd2sV#goF^yr<&vS?nh?%Ebk*rYY(QACS_G|@4XSF)qQFE~H zQ`uPxZ*ad_PKx+4dQNu9T3x1B6uJ^W(@CtioB~0{x70)HfRR{ahby}<*u1`jQBd1W zbAO#{-}O{yo+$fqIG!~yN=?{!sXoPW!p*5GEvNA z4ttNP-_mzY+Hrzri-u#1Rx&q4ite(Nz2=o+44SH2d~Yq~o6p5aY(PO~wn>`wWZvy^ zOegl?*q#yu_<+%Bx9HpV01Nd+;WxYTnCeAWblLw4V^b81V3+cbhz{C23vb3X55j( zA^RoWe;vq(8LXf9L&z#w+akVdWK<6BUsaZu;Wk4x&T!k*T7f~882R}{kfOgpar3sQ zp{xe~_~C=~h5yX#gSla2ic>)4ffh%2m0aB6HpVYa9#Da&)6hnG0<8I#4P874X&f+b zX5mG{<`V`@Pjt?XQ2)HNjY~`#JLl1$g=euMdbegM#wev8V=|d)o=;Rx9cy+Rq|lEt z6s}=YifsupP13nkV%ZP~tEHiHYUCZ13aoZ>VfeQ;Njz zSjJX=O)uiun$*V_h11eo>+nHbKHae5Bz&-~f> zL){-XeM%Yy`~6$RZNiI_t7eyLdK9sF9M&)y#n} zi4i$AfGCUlf}ecoh_?)o@&JOrb*f_UgGWGO;P0olnKwY~%doBu173vempYwF1++h6(G32}a3OF$O$M9Xi^@hDGvlG9D!m2*BxKmgPQ`O>mBA3tm*tb^0lF) zvoq$@VfD7Q0a(r_ofyEv*y@xOTs z!$Rs`BcDx`e<<9tL`OTULM`Yfl8WCMRRvlnR|hh9-SW4HS|ePt@v0 z0rA4ov-iF`{<(!^XjS(*+$bBwotb_UDFy|N#S{R=4IUZpajgutSetO1ykD%=0g!1HWBoS-WxBVD{o zVM5|zGdLx}KbAlpgCJ=re`p0kuroDRY)S~yN@Q~za4SKIvml1D27a6ZmN#u-E#;Bp z0!7OrAc>)pC^U^}v^i}*hB~)-1b(f25U4Ec3buqa?=fHOuAe{}vjvW_JL?hJ6D`UJ zDMx+;&gl<1P8qbXX-s1x)2?T*!r*cWGN@&>I|4fm@v!6N*;KD7C^Zp}95*IKbToG~ zx<5^P+yBjTb~GAGMSE9JHzR$hrX~m0zI%WSrvCMr{AEZ7Kfa8YhH1Zmd`)3gJ-@d5 zxm)NULR_WixNR_%7S#ugBk3e=_!{9jF8fq~)bYz;rS-i9M0E1&g83vGPmqm25CUrqs%L9Ertm9%IgWne%T z+e)0>hL^Mm4gHg54MI|o_qd8aEaz1D`Q)X2Wym%Hm+eShM9cV0q&bJ2GE%dahIV}fGw&|{=X%Q)?PRdJR0hV+J+re}X5DlC?0Q=}f z1hZ;@ie9Dok-SfVZDs8b(3`qO2DS{iH~TPZ)=Euks& z&uC^8S3J1`Uqp%?6OYugG6{}J%f%w8z*;hG{|j8R!H3KlwAfCc=9uX*q{9w zv30sc>5*mm8j)3&ASTk{QA&HeMLx`_o@am)tGC$#S}rooP6a^WXZIRO-$*zh3(%l# zJfDy>Viv4lcqCeyfczYqimYP~AG2Qgb8;@8i2W%?Q%Itt!Jvj40;#nI12UN=zQ3!e z2$D)t$ex%r-cu~ViauppzQ*?y2t@-g2p2eH+*%Q`%_m)>&r@o_adZqbLkRsjr=uG)Ns5GADfvgj`c)z1IZ~auunfS`8kPp7tP}@5DJdE7-#UetkMil; zMlFtQHF79tgOjt~Lr0(YRo+H}TIC`{JnHJeT_vF_NPgg(7Luho2nVBzx;SyO?rnvq$wE_T|{uE zw67!UlFHe1O>QgO`zn#7t(N2$MW>=_%9CUx0PEXqzw?f%S}RcgQ?VL7S05LW!r{! z;8hLbT%>|x81X$&4}U3r3(lD(c8`RHowb&OiOnY*nW0(?7W2Z_1nFWvqxyTFWxIgc z`g4eiWmpyR$Egz;cCXimqPq06=JsFpr;m>zKZdfalLjX8I1g9UqQt)(sN>B)ioofUHQKf?88BgHpiJ;Pyf2yIeKep&tv^89g>e`ZPn)}qt(Om$d4WA-9Vah z2|)N5G2>Cx-lk4XjvCNOtV$;~mq!{j9xzKS;=reJhLPWG;s0*E@fZZINtdLjyGD6 z!oHJeFlmrFy}$H&UL3ynaNYGi-uR+bBG_sD7*0%O(kJrUs!)s=79s}mn)8>RA^SL} z-kj@_G(wX`PuV7Z)U~F~sd}%Kqi?8oFZGqKNfxH7nak^MJp5y<(o!J%a1>3uVm{TZk!Rf7{(qiJ|6;XfijV zcO^f>E)4sWu$_f$;GaRD0YvjzM#7}L^+JDIneA)jfg^FgG16(Cuq7<4G77%I8*SX!@WYH&nMDXknXWm72IRA-y66?|A<$| z8Si6`o9~WA5lIU0JJ z837L5(xEF?$X@z}#vETN9U-d{1jOTP|AG7yeB4^x^l#VNzXD<-rOdBUt6Ss?8=-S# zi5SjD-?bgNl-i<~IQ=u-iHv{8_t@@c4;yNv%AA6078JgBWsv7m%_|ltr_ewcrYu2mQMhKI@YpU_+80fFGDWvBrMyf2$H!TbTUvG7`9s5X%gQl&sax{& zN*?;IM@Lxp>6xmYK@)A!;5sf#CFIwsfV;D1*y$_=&X3aRy$tTsYg_vrQz|%Q_g>9*87?_`k!A3lYX zC6zB&BvGaZu(i{m)Bx`0q$d5@pjCVPfe-FUBQ=X=ttsh*wMukbp;tuGCy8?GBPVuM z^3YZBg;{gN3*^nsEq_=8G55%_S#dzf&cWwU+=c^|U%SKjm(2SV!^1Xf4Zj?M_f$e~ zAxt?O-lMO!Hq72FvpE1TwW{joIVC;P9rRe8^}V$nx5T!KURma{33bz^j?nk0$GioV zk4BNH)bx7jD2@9X&Xu7%7OBzk%Ix8st9F|NY^xE9rw8w9Q?*d~ zL*?lz&z>racD!eK{rgS}8MB9-!d#+O58Au2`k z(4s#7=y_H!Z8E9!cph|qMS43#=!oeR5hL!m1@2U@_1+3uSJ0^!mKI#j#dvnr{?u#L zhDqzVw0pH{LJ{^rE+E(Jce^3w2evq3eWdR%2GSI#ghKH6u?S>pbur_iTLj!p(EwmM zXYD{?IzjH&Aih!3DnWDpXvs#3_q2F}I=-ReFXZSE#ryqh7XT53Mp&6Id<6v~6I0qw zZz3*7gA=b)+S$5E|IyHe^1Pu^&DUP7fS?NtF1h+m2f)?pWckx!AfgPFrLs2ylT*7E zX{PMYoHVRf_XUN32^hLbrM!za;7E-WbSwMpD66tA&d#qxjM%3PB~en4NSrFX!U>mh za5(^M@{Y@ZqjBI5xYc|Bm{#N;)6j=ORN?_g5C^_1+w+tsO0>crd^i;kE4+wo_erY+DLTd~;$ z6J*cqszyj z+__e+h0^|m#oPNY%6NHBpV}g|YVn_d@!L4g_Z(%HUJaaz{5ywmAw50Tnyz1^pf>G?;uO6dGVWR`DK1Fo=w6ZTa!SSRhLM|VmpiZJ>OCy<~PBMz?elW6o0 zZhn&N0cy}h6s(hiad^bk7u)^n+UAmBVZ(rR-yC&HcwVf#zTuxaIq*5pOk7l=vz~8p zw>QlvxZM*6kh^xJW~gs%#RtDKqLv%EUn_V}PUi87#y_!8`{17x=Cei~%`O#X2MY>o z$DpPO2%hH3=M4Cd97B1DqjL88wyvBM*=NB~22^3auPG+n-vxo&ElxhXweqg0y@IP`{{jmq;~A~k7i8PRPE@g?Cqr0j>)L`r@EX+)gCQcJJ|K)ZgUL#vT|7~ zlqI1NcF^Xy*| z5IU#`NS7{MqzOn3Jp{xENDb0M2u!Hb2_*pn;oV_op7Xr#dCqyy_r1UGdw+*N1b6mc zYwf+(eP7po-S=Mk;!Vc>Z16T)5*pi!tgPxjshVJr*~P;LqJ&oD`r>xdqo60uvb{XU z^}QCQN%|4`IuSmv*^1KwpHd8Ze=qUOAl31(X_z^o*1j?Fh5D-W~i zKk%2Icvj|4_?MveZMEtZ1F)+um3K7j9B0Vs6BL)8<~`|!h!EF^o9Q-pl7R!}g&R634 z>EX~^5#g${X1fXy>sb1%m=`Ap?O_I{R&K!uOlv=fgyd^bCv;gy7;${!m*mBNrp~c! z-kyH8rL$g`yTv7c5P$1fl9&Vv^|*x!f8!CY(+1 zLKg*uprJrU6)9aJk>Y4rH>sI+rbO4wAwqykpMKbuQB$npI~uUwm|G$^`i*j6$*h7I z45{@ye7S^GDBi=~Q=E43tVGQWoV4X4($;)F%IAj|??(kpKLat(d~?-$yBjaYP84d5b-+^=cQi)sJ77=h4vYo+ELsDGbJs>djFWzCjr{|%C+BeiLk6ys zqr6JK4XDFcQSxL{oXaE&2GQd@W7}nV_>S%sdD4UJ^_s^d*d)7 zGbp_h+^xtrQzrE(h-qaRB6DsGK=vQ_;|*>LKPNCB#mI>brfm#CH5`cF2Kj z0NO*`{T%9Pk#z~`Aga9nyPf$s4Y%b4^4kGHN|3VRmNAJ0|Q;lH?v zFA9KqM9OdST!+j`_)K8O&3{E78$o8z;S#ZKZX!n_FTctOCw?Qfy`DXpolmY@ZZ#vp z0(R`=89`rJJ`xoz_n89lJGMrO0crh|#i1?s2(Yv0oSG8zM-ta!MHN^fL=m#@$=Lm- z=Z7){O7ld{Z=?7gGty8z{!O693P)Rx`94!JKVrv*{)jz%PHKyaU_G(BR2eh@WCGQX z+YjJ<(@PV1GmSt76TKKB?mj!y!c(i5L|0LhQ$w_2%Y!d}a0?$sYYIAbT>`Aeagpl}8~nH>%@ZQD4mV6YpTpoa1y(3F5`YY*Mvt zD}GDrAtbvA)}?KD#&A%Z7g2uQ*R4Ee&4Ksts-3dj46@P0}GJlj=J~Iq_8VFOnznaMekK ze0Y)CHw|g?PFNvK*Dpny*QBqQ4;VCQ%FX=%sUoYCYB5f(Vp0gf82>`ghU^08zHD7U zYw=B&C(l%*oN4RS44CO=b11uM22Y(nnVCR}9F(BeL_wrdcD>d%{U#o=yt()II0<7E zQkLzv(Mn3bBz;%idz-EfSEfJto60gP8E-i(f^|~iswqb87U-;d&jkLyfaokL4;bgSWwC;tz3m`ra#sVk7I>w2zLNBvimCAw);npiE#x?|zaDUy zr?aLZaLgXVzAguvFEf|v<&OyYnz|fZ+*2#^?bEzrU1&%!^>OBA8w<41exH1&EXc2| zpRIAY=tH~$xlF1sps4@2b%SWNm#HQHh2f+}gVb*BFnEYLfmI$3F@FA{v47^n_?b;g z#Eo@zS>EfY-|auZ>NDA3ppn2DN8NDa@Cgm_GxMZ%iJ2r!RUH$iDryoKX^8N##iAUN z6yxb)G3F8wK5km)my)LEa*&*4`#~$EU6Wd<3dZe0H@4fJCf7d+e2#)t zBSXR@zj#GpEDJoJT$&d#46TVu&2V)~9?kPtx@SMLWV{u|MGJJNa9> z?}ErB6ABT*lSOVV-FANHdKgmqkG47;mR7-=jEOHM0^;u&ExaLPyA_e$i>@fNSxC)i za=L}qgqwN57**>c;;Ngm4~ngOW@1Q7vmuC_?R2N2MJKj9WMYRuVnXbAC3)mU%ZDM? zJ16(Ek430TILgFtxqgPA#eDHlva$CTX)E5fkL{?QL*K6k^+!G!*H^Y#$GWnc8tC+X zo!HY>&$>#r*s1UzS)}-X28~ZTo10bNLCx7qTgR#+WcwX^PsXQrLPfBM+^S0X^&>ra zj_m5z5~d=x`(Q(5O~k7o73bH6T9@@E8S8apLSC#R$>IU43(ax-)C&mymG2_;K9z0# z{`yA|^2lvEh*7qk_iDNL-Ic5(uIi?tkhi>{)kMvd(R_W%*JVppbn*hYw8d>$YOmD= z>wrJk+h|tXV;5pov+l74l&iEy>obboD`3>+g<297oyPp2f1wA&8|l@&m|57m)NV#jQ_u zs9;-}+Dd&!*||qSqd%XlGO3O4$G>Q`iQwE)4p=8|)ZG&>nCw zu_uxc?Blr zRU9EGY7~77(Uo)V?Uz0_%09{ELM&}mSIX}k_18b*ZLm)YDL;CyaWW7_8oEF!nWI7= zOWW)ED643V;3cu1)gJ>gSA6$+%yAc*EAOZuC1@BN@uX3sQC6SDNGn_>0&`VDN79xX zZ0245Z7ap?TgCN(Wc`!rb)_G)cV@2_PYm^3RLe|JZ>UMG4i-i6FaxVlRPOMM?lAU;2H$I4tBy zWUgRcYd>IB;gk09ZM({JdJ);|a#eUvBHDk%zEH!sj-28F3Rz2fS@lz|$p@FYJxNFHO`+CRlc=M1BI5z5 zLr&Itip!9Xf}_^-YAlJwb=byF;RuMGM9#Hse-N7XMVQtSgdybZ-u3gKH#s{U5XlLs zbFt65+qqWj?0zHf=xKC>%VMds>$3f#;X+kg%5QC|j^B;^&&_;vmUrzA=}o3c9KTq> z{RZD<{;=_)dL7KS3ej^a4fB2P@YQBzQj;{BS#_uaNvD6Ru3)JkT`?WAeP z(Y$-5EY#u~>>BmGIO@RAfauilV|sGblzXpWg!g#&epIWvzAODAactG;dJ%>92Z`ag49`4LVVoA_5;3))}J{seG82_VN^)P1e z^;*nk7|$=4z~(OJN^~Fvn3IBxf#Dsa_u-3@=H~+8ZEXD!FPF>8^@^gGx27Vg_oj}UObuyF3oTR=^pZR!HgK`4I&D~+~v|J(mxEoo{v(M)qB$?LlK#D)sH<(VDEu(4>S6#DPBR24e|A zW-N}HvteDfq1Wl%zM{6aSBb^t1XG;O6{9d7mNb;)R#~Sd>>PpnEjt`E0(_~!!9mA0(v%^a^s6mV!gHeu-SN!O71j1wP);g+8}Z;c3>2^$?cBBO%5T z;$B;OFe=+ivm?i6T12m+yFsFLjVGPES*vqSaZf?L3XN9}X?035ILgjOQt3djiu!!> zlBMnCRhM?MqLs*mXI}O@f270ltx_fNDW{R+%3lR1j_S5<4X}img*%LLtkj0Mc`8cW zJG$#p8dG&rzVx%W#?F*`S@8aIiH~SApUnR0mdR=NK?TyTQry#fnsp5n@ZC^qJbwu_ z__$KiU4AI;ka)`mQwc zBhNsw@ZDTo$=+#;z$3<1EBaQJMshx^G4tnAE1d^ek4mR;cP671E86qNwZT)(GgI!) zpA>bx4+b8G7*8D_J_x~+yL7@RGdOK>gE8f(pir`(b(M?q3Qzg zl)IE!Mk=;nXu}Ffe!ur*9dnSIYX$gBw6sTPkLxi%S?YSo_|CUu3pk*ypAS|oogIli~}Mqc+sa$?6VX;)L-fHH^K zOINvBDxPC^$Cb2Hwylk8*@_4$m#)OceY0q2e(0^dx%e_A4ZF%X)0LA)vfr==;=x5X zSEmtb%ex8c2h;w^T=@}d)_dmx$_K{piZGqs)_ujL&5(?0d-rIL{4@AoimqAi2vJGV zR%f&cGbTae5*Xl^vM}Y34pksm_3-$q1YH>X-0n7l;|d|~PPKrD_2~ZS@h0oNfpEC1 zb=x+$TXV*@nnRrM2tuNi&gAAg1fXV*rN5nwyxW-DSEb+(Gu8aN8kfBAOq%%KoP&zk z`dzjY&kVAm_c3_=-GvD3Y8ydui^Qd|BCm&h>NjeR8`;C{1y2|I^vy_^>(`iuHfJVr zjYTXttKQrH#Vcd{H~Hd@RcWlVd3o#74&!RZ${l_A_i)oq;&js5?{#e~PJ@3aCYv`> z$@=)CO@EcR+FQZy_BXzu)?+S^rhH5)#2+6%J<)gHICNVMQurKqG7Zl>#x`}kv{axX zdK}#9{PMU4KW!G8>l&AkcK65EtRn)aPV`X?d&xAW=%U%)d{{d+PVV4en!^OW zlwW-*C9AU8Q@l9Q%592bdF+Yta*S;#J{O{_9J2lxLgH~U7#*N4*dJ#<#qY=#l6j=F zl>+Y<^+|ZWR(5X0>(Gl$2}FRW+FjJB2Fm)H3OaO$UdC5qYEL5DzPu92-B5cdw^71P zz20gEITA?ep4rswgKx7u79Zw_X{eAGai7WjNML9~AjkPZj11ndJ_{0{EaPY!Ndc!8 zt*BY`)~&CdGC%vVVVd1tm&FX=EpIjJxfB==sx;yTN(7+iDBGCdEqVL|qYbot%Du~! z92+AxgJt>#yh0i{+fq9N#==a3*N9fKr$=rctSS=6ez zI=ofDq3abvd9HL3q;_1$t|zYa-J(_>Nc0{f=Qq8c}Rf=iT_f3uS7vfTtkao zG%ztCuLkazR03Q3;KO&W0)cMBhc}#O3S5%JtWJzMhqy#yvW?VH&aI zl-lr(Q%g5^a{-etx0xSrJnb8x5Fv+q$sIN7Za(C`_g-v0aaEBSt$`Q%R-xk)ebJFf zud_~vshZEGca%zYHJT3dk~cfbilP*fCw@e)^N*ESv8gtP70TaAu~w4pugFf-NH)XD zOKO0*P(_iy76Eg9pzuEes-EYy3<%bcJ*O~u3fkTKM?9?DS zb)I(i`MM`JV6@-duZ-@}gK57nKM=b1=b7j8m@lGZPd|Ke325Q;!w+HnQd2BPM+PM7 z=EvXuY$W!X8I-t*j&$|VFTd^MiPP_JzNOGI&GJu2y2bia`B-hgvv+0Bi6dWt~Rd-oqzV2ciO#EEP?X_wD4(384^=p z7||K)8Z;&!wQALPdQXFfr#%OvIr`xJbVK;(5wQ)+e_!uG+a#xU802H_)36sy@q%CY zYxI(uw0nj(6F9%kH(wb@%Pd%wlj;hpI}}egl72WX8QkxL=Pbf}Z#gpgYXaEr&~Cn5 zYKmyIak;hJgHBGOqof2TioMn8CZ5FEb-|II@t<#Tc)!mbd}E;#`(4yo{)uQ;JWue= zI}mW(@K1j?Sk@B*FCs$Gc#C(J6hC-HE&4{xG8ziytjA$uhh2XBpBmEyPbr-|j%1(p z8iStfd9#e$3&6hJT%zPhZZ4~g_fmg-EY{C!@xMHg^)Jp15rSt_LB8<5vw+HHKfjMV zY#yE~IlA$8<4LqJjNRD4pa17k@zR6;KH;y`@L!*;&+gWL4dZl4ST=eq{%A)ZM?GK~#;q0de!v6alpto-9VQ-FfMh~;#1_J@Jv=1?c?X#Vp)V%i-VKNS-p58 zOml!u<7PFF_@q=x^BFXVc7`Z_xWv?@F$JqSZ^p0gGq#t;W`xi|4WrUiz%O8mXy;f+ z0wb|^ZN)9RwDkIq%{X3?p5j55yQZ&0#b<8()sbixp#t^{xU?VG@SC2DuQ$Z~^$~{! zFh=_=PGFlgPS%Y8msSN9x0Z8%c3*W1XnM)DWqi@~&De|pI>^nbakJh1EUnv^R06$^ zD>`TlK~=~U=pQFpvAWZPX`g&z5N#pAL$g_7xquy?p1gMX7Td-i8Q4`t?eVW@Q_?01 z*>m-o<>}=ALHruWy765l$<_|1m-^-s8dSCFxs?@9bCDdCL^~PuIxi07vz_1l*_@A0 z0#{M<%H#&@xoIw3@&VA>Tz7?IW9AX`lQ?3XU+rrcfo@`tHpKhIp#-|;^)Cr@H_{&$ zCc@5q+V~1=$z@x$khj!rfl2#TaiW&w0}Mg-3O)GKS76=2-9)F>E#5J+VSdMtH3)&u z`QE$=eh`GeUIr?FSQ(o)OebWFhSGg3BJ;*c@YnA_eSC6bF=dN>F*|FOfuvS7+jR2L zg6jiQNMJ6K-y_rDnU0wPUW4s(0mGV=t$4*AU;8G<4{&qQsX2}BzV8QQylRCc@g7}+ z;hOJXz|Fbfs_1zeK(k=iAR&&@*uw%pD>Ce z0Fn%e;cuPWD&o>uH!SMew|8&QnIQF`Qo!6*1%whf4KlpyVV{kqT!+Ks^7xQX%`DRL z@~&+Aa97?EH<;vnt+8(%WYAf+aow)*60jM^y?JK1WC(H?IkKf5ecRQloSCs!Jfk)Z z@>rm!6toZzJXch^d;Fd0M=Y&Q3^s(kE0x_glIc8`EGuf6oL*OA_MM$eq%Q-nRxVwh z9ap5h-)}nO(5UHe=70AVHEJBvz2)uK{>0bUy5&V@i|>~!n_fOmPcUpNQ?_~@Kv|reIN^M9j-d^P4e~g&u=WAg^P(0_8%Qw zhx&@4xE;aWI?b2L^Qy0uDxR%8=|%LHVM7O37)@jH2jw6N8coY6XJ!`f)VLPY86>f%*>DXt5Jj-$GTF{rnbd#bzLKB~n zTz{Ad0@kNMy2m3Q3GpOZms=*ApFG)S15{WFIdU^Q_%3-WU)1u6zHOdTbntkS`)$hS z3w|v!@-v*vIT^0@*U;O?9CxEV4-0PsM9Z)^}d zAv2A?fj};kzp$|3L?y2IFCKn;@=J7@)DU-7L6V5{8WxWB`*lX7N%JO#Sk-bi67qXn zt8C-GQHL)`VjEb9b~x6Ks=$zQJ?|}%syRcZ4j?7=yjtM}#s{y+MK)vN!Eu^N_N>!| zc7y}(#8ta-2hp)S;p9<@_{F_S?s$y>p=lLm1cg0u@$PitU9E#4mN^?o#-?%J@kc&P zD;_OtD~tDp;~&WKMP9(nj+ZDl#LTmf(p|K@*)|6m+@LpR=vaR%82Du;V_xS3#D}pX zEFS=V8_!Pf19{Z1^!~#RD7Hd2XU%ZT_grFJ5h1Jb1tW4rZd(R>fc0~#MeK*|uniH{ zxg901n%~*D%?`oV_-dOyh`F*+f`u!K2~LU#MQazDCKf-BP~o_~AjvDHV+_}d0F-REI_AzJU zD^hoe<~Ll@W}LgFo+Z{eOZz%H>^$C>sT}{P9=-Vt?yuy#8yK;OdZHhkd*FvoQ$oYl znH8dTq7K{|?V!F%&qzV1OK|h?7Z9o9e!Dw;ywBAePbWMkznz!gm>8X8cCfkTDiqFc zL8e2a1iq0p#d4sIS*EP1UL>b|sN(Zy05JRz9>8MVg)@pj_XAP{KxhX68ccup5}o>C zP#^f`hrwk4sos^-Xwti30O#%-6Hg<66|Y$EUx>~OU>*&J9k~Cq1JAQ|Fp6A2V6ozR zdgWK5G9WcP1gM(q!@oKP061G1!1UVdG;Wxu$pR3L$%`~%_@wv}T7KGP6|wQSgFnIP z?6TPNF79f=#(Jq?T^p5wkpy4nC@~6YZVL)%)7u;P;-OsFZnnCzQrBK%4N)UX1tJOZ zn>Ewz52n8FGt4jojpHBFRy+uRR97{h>lQ(HA#uD?h2Ad;3QtX*GhbncfhSB+q07{F z^o^v#sgHE|{AXM9>HJmZ6q!55ziva}g7j>UH~69>Xby2_6C_VY)5Z%pj7DXG_Hu6c1u00C7z#Ims~^Jx;qqVBQA2}`it zNof=AaOgEanRhC4k%&+3X2;IUqH3H&mC$ksi0phF{kbkNeXmo-v6XH6@`73y#R=*w zC&0D9WpU0?bgEjczpsvcWW;7k;*WGk4aI=6J^yqO%=w}Q&K&lG@U8DgO~1u$U+!1F z(`yWTqY7dxp+?RY=f@UiZMoR0%9dWUPe7EuP=VvA?y#%~>i20=2>c|hP#BmZqhA5< z&BTto3G66PfxrmLL>o)ad!vCZWV|8K9bjC#)`!f!vBWb2Q*Yp|ko|t-Pi*?Z z`W@h`dLN00X1?vRDGCsk9kY0(C&I37#|gfOu^(VZhek5kDLjU}-IUbKF|!Ppl^#yt zZiHriU1JcdS5?T!m=-L5qv?eq!r|pLJ5l7B%bcc_P+4F^@KPGBDbdydc{@3+X4eWx z%ytJWAn|=$odhgg3P`!c zuY?D*@JW7UEt};G*NGW$z@Yx4B{t=4$cdRQDLWa7diaTPW;FB&$fT+j4y_d!aGh zOsplHsB)frM4YxxxRs^MK5HBD&U);mZ@Q?y?kd6fFL})I@IVi-bv0fO_U zvXIYk-cq9X5ls-UOK*Y~_R4Kz7ZPG@Ema>H$_@$2wP`-Xch-F?xd&2~lBn0{^UO-S ztSDapEqG3-?y-)Z7^6eVn;1C?b=*tS9bWZm#X>%-Go>;+s2n`(!%(O_Vg(iNLiQo*9F42 zriT)2c9W}}GB*}>TZU|T0QG`j%fRU<&pMLOKg3@It>IV__yFas*>bthG~zPG!ToA* z;959^c>kN=*|i7sQd2mdXl5^p zlj@cC5*@Ez=BzSm;fhlsaxkuLAl_@8o8X890k5!COt*W5JfSn8Jca3pYNwo;(LRgH zCvrv4I@=rwLYV15JmlmK0DDF}faNWK`&fyzQO0TbO2^8xNyHMu8Gij&4qOij@)5-@ zQ+?-u1{S6;58x7?N*k|BzC!X<8j>#? zwW#OJZ4mGnIQW3hhrH~X9pJZg@Gh}FshXist>Fundpq@e-o-^NqUdQ!#UJKW@_}ut z5^U(eVwi4qvW1r*xT?etkdXYQ?#kufbE9YEm3@0~cip0OSjNvkjCEx~-M(ke&ZEX> z;<^y`g~!|4!Spony?~a_k$gM%+Kvz>0_Mw@eW^`?uK!VtDCB#1E4z?O!J6q0ezDyj z<{sq}24dhg&pjnfL{aI40rd^T&vkfn4Rv^k-uQ|Eu(^BsrVVd1>`mr?dY2;w9?BPQ z-+!s++*zJ3nmN7#=Cl^bMQ#oe&V+#Pz#u8y5G=M!obQ z7cTL(fTh|wr4wIFe{-K9~n`8hGiC+rH^VTj%2(I+M~#&0-A7_v9&FZ?+eMYSb*(x!;x)9A@-%m zN^xWZfw57D%%SCiLY5jfqVI%RQO-R|I|q)6`t#Nr^Q6*`-J z)oX0hzV2KA@^M2oPDxx7G#?KV#TgH|T1%_I;J6zQou&H#O{e zm%XcHs$eR_yCByx0CRF_Oj`K$cnqg!{@`k#R~;L@udn^Hopm*h(y`o*Q#_k|7zW&Z zM*5VD+}qi&$pOAZUu=ESdOUA1(d4=GW%dmh6kIN!!>)0Mho|*bfx=F9y33!B0ZL=6 z>D~S4AV(G1vm6m%iJp#K`0dl{1}z$g3vYv*>nUX*J6W;uZb9GU%=f>)rR4~a?`a-b zA}KS1W$Y>ANO&$`>?Bi|k1u*glH)mv)+4EzD3UOe7WYMB3VTo3jwa5o_t0oWzdGz1 zr@E({C(CF2Yf5mpxg_y8ywPzY&V?mb;gif2_KnUxY{D`pVe?N(mv$8Z+>sz!Mq(uL z-=X+_w2Dt9_rD?uH(Ktt$|K~xo4b*4g$yTDY=YHrGvmIz z&8-Xp-#_|7kM<|N??eJTkBMgeFA2iXr{YFvyr5b0r7C2#z>N(V*v?L3`kFY?`eMNM zdkaLLf9tFh^emJ>VqJx;vO8E6WCj&|6P>C;O0c2vlTuTWVih5)$shWDO3R#ERBn+} za0b@zcaJ*&-p%PLVC zHE!em9(Y6WE948!VJBuqtX79P-*4yhy0TAaa3WU15wv*k(&h$Ca+kl#)R;FM!J2 z_k`yVHX57?osQ9AAd-;*U_n52ii|L=Wj2~uW)PhMo__gQpC04L?z^ffQU6YiI|U9b z{i3dy2g02+{t9me9(O;?tx+YTW7;kV-}emtofV8;r=vN0_BdJ)P|gAbbBAeR_siuTHxLLEnF)ug7@VFL^IrNp$AXHnjTj z*04n*dum_-;#-OKM!6lKKlNpdBwF49;JB+R95Mga1;CobYh+56T}8VHCb9_0@94$9T&#eERw&9NAD-HIKG0&|%8STq}|oy~PSMuxe(f z4^j#QM(waf(?jU(Uk+oDzr^drWUg;I_|~ItEq8f@UOj6D9*%^Ptsi;an@(+Uv7PQJE0sotBaO6&05Lc< zv9*(hR(z%h%Sp3=d?N1&4>*9c2_)?5=a1gQjTM%CGQfP)GSM(7iWmIEaCL39AVT8H zVPzoSqa?44aK?s$g3CGCx#a`~%k)S$lb27;(I8RrY65A26Qrgxbvb_0{f@*mXcZa6 z4CxDYYiOUY2!tq(jnD|&1BezdEZ!TVYpdJ3&x#cUrY{)b?& z;~~1>7EUlJCrkw~m*5va{1M}TJQ(N;YX5#V89*bOv3q4cv5FZtV+k;me4*>J3u;eZ zzQqGjEUEC>-RH+|<_xS%`RZM<@L>mtfXG&3-nT!Q6kzc%RXNI9l>IxOS6vyJh;(PW zTFb6~jw1hmz@LBE8Suw*n$QLSQpn98{*Nivh5{~iBQAqOezV%F_;s;Pi6M`k>o1^l z6RN<{Ycr~J29=V)EjYl21~+a4z7Ju{x^bpVuen@A?e^Qvj0c%jIu#e$ucT2 zI(b7AMjXgYfH7gS0l^jc5OPYP0AdNup+w=by?Hsc&M&Ab93#l``O?xtk@Pfq{d>z} zN8g}MV0UsK&IU+sXB-x=QjIu}szhX_c>`1dZQt(%oeF35Y}>T78_c`KnnK`QtE;Fe z)k6;X505&Bg1Ux+W(HPmX=d+1Lwac%zxvXtQ}hcM+w_}8jC1}$Y97aHkaJ{$P!9Ns z8mJ+HB{l5T*4L@<7DecRq&;FC1uw}iL)H+YiouRG&=az zhGmXMi(Rjt>ORGqh^-h7c@YMT{gKt233zA$f#b2^ZG~oF-+h{6NXxa7K}^OwD=VTo z`mNGfVJA1Aili^lbckS@-y+1=Lw!5ra#$kbEga5$u1Wp&cG^q71)AZ(8Q!Y}^=-Zs zuL!Ro*x_jss42|??0%nv8nRtghsgz)7%oj!c@+ek8J23N=9u3B_hX0RK3`2p=I)ix zFe&5icb{@h#0bLJ`Vy~BSfWkk#>_Rwy(o!^QF@eoPtiYUKJg4~6n)9kZ*|1Jd>m_I zW(<~;i+nS?z*afO8PRZsIA1rjVvs7&v3Jj+V!Z~vmzVW^F z@-?ZN3lBhoNbu2BeFKB`m|}w99iR-PHu^joG^ghA?o52ZzrhoF|0N;($A4yJ|4QHe zXVwHrH?yZDCnL*jK$etd1^?9$1UU2mY1Hz6>5_X(xgmgf3`C8m_xNTm_6e2}P2-wT z|1L25R}T+q`cHy*b;6b>lHy_v@E?c{46w>cz&eyZ7gC*er@f$?7OGjMrlF{@>nO@7 zHBn}+g4fpU>*^ahMxT~>Lj$+AJ-F2Lj)hxVoL;#ivS^7%EuUL34uL-`)1Dlq%6%;J z5sja_xLn-DzM{pw8xc8ol;T>=!IgeScsjU?=#?i zl2>U8!{0M_Jf`H9Lc`>azw9!Aw8-qqBb824obWAX+!PX66b!DDQpu7Vh4<;q%-yW-%NoI=8Y|-q&bDXrI!vovtDO8pS?qLm>9q zFq`KRYknx1XaKp_x776!oH1!*VWb?sBe8d5Nwc89j4mMEpMQ^ctC6{fA)|V0a2JYgqz9FP_q)ndn=3^i%qn13a`Y%8sXNm+?sVp z7#&#asw1Q79X-UV)Flil`at=-yh0cO#)3|tA9=Ert(#7W!*sZ#VSQV`cY=wwzX6Gb zm(;kQ+_btjytN;6G4aZ(NHkXm(b^*e3%@CyvE|a1{@#{BDUEL=)(lFkU@O(m; zjv}Jrs?7=8;%+i`AURo((ia_~U5Uhy z+Vq-#|7S!H;G2M|4j7AuMvcgYNIN9L_Xh0y6J_zK_NsZ_YL8CwyJm@(Gm$PcioNt& zN`c^q+LOd4XjV}-+5mC#oD_Y^fSrAy22(#~!>zB(JV0DVix0Ov`)9`!-Tiy%r zR(b!R^~!^IHOod^M^!k)C{+H5H4wICB!GOJzKDA=WwL<1h|eOw8{!>O`o8+N&`B6t zEgl)(yn}Soj4?)a zdTcx!Q}a`pFYHT@xm}CCzY^P|1(P>O9*NbBP<|0>LO=*=}opm`R8gBDb`JkQ#30 zw!ihe(oXDU|Dy}E41ukr#8m!J)nWzcnYDq{_i&a)K;@LxK2^Z7ts9fDqk%<;Wp!63 z5HjmW8Uqrfh59Mkr&30qsqTN4u8g8-6+krPOpAtSu=QWaDExEI;l3s|SCiI+tj7OK z?L8W(R>b4&aYJ~b-8=p2$AwmPFC^dfAH3)iSqMkYlmhy?%x#mE%JAmQ554~9)MnRK z*Z@v-#L2I}E)prR;q-Jdtc9U_$GuA}&U=q!>}D`0PfM^GjvgYM{mp75**?$8;L6+B z3Qd7`&YS(u?Z{NT3HEQvquN*|^bEwur)1*<<+QWhdVn0XxU$3ewQ!_q?dTs2r{4Nu zDkD9(HquUFYWf8@;|!nIyml8`pYkP*hT>e-0^b1jXP%cA?oFW?-iBqT#^>=1?bNKs z)|+J9+*us~jlb*5BNc9o6X(*g{Bjhz_1m%YM}(e+Z#E2K!Q3z=iHS9TjUDYApzFE% z`WTh+aIY&)<$x1>pH0`WHhBZ)z|>Fg1ANJ-EV?m2cAmGzhS|0F!*z~r!(o>a)w`)p zy8iNDy^?lTVa5Kq1BqUAk~67`u6j3Jd0a4Zu2UFX<98Uz&CZsy0lr&eKI-J6drJyA z?S62ce?C*3GlF)rOu)@b_6d%E9LtUwLQ?2Hip*%Pxz!)t(m{*Ax!aP+x){C%Q%h1M zV%OIU`{~%W#fA>P^~rqFeBVS6?xSn2zPqZ6*s_o-6=#OxV`sxXVyzW%Y-NZgs%ykQq~nv&;RK^jIV6wGPajc%tC z1+yO<(RFx4jWaG?SBJmWdAl5q;duYGuZ!33^}W~X58y4_cZ%fqjqjr*;C<@rj0K;+pEIw4s@)x!sl8=4IL9B4Y7Qo39X2rRQC?$W8|GN2>`vzaED_2XFAj5MMb`L~ zwq>-kP|cQ)FD}{JvZPreTwitGr7;yYyv#>ST$)F6pG=oWwoG7wEdX&He+~aOnnQMY zaJi$C`>CB~bhh9?uz-BE?>B-1ll6OFkLFhSA(RwO zGo_e4Y_!(|$FnqY?k9~nd$tY3N9eZBN-m#U*Xd1C;h`6c_y^6H!v=GUaY|O`!+cP3Jk=Q*oUn&n12f+ghB!_|woC6?EUx-Hmb= zq#*ufJEm7oLD4|htguT5>GCLUQe zTNXozt;B_2Y{w(f895jLAeV+68Z*7K0D!!4^&yAb_nV^$_FZhUJq5$AGR1@Gbhom) zx(6@=!*z)L4ow*#V&--%ApXje9bD8&*|V-@joeB3*9dt_?|(r^oxc$BZ4ZEubRvHt zE(r>6#rxO>}P+R{DW8;KX&d(l-N**euAFr}$Yh zcCV9z@lYvka~wvPc8#>pGd-%h0@sr50%V<#J)at^pcPXg;$^=b6^Lurfvi2C z=VKjDYrScyi~o;O^fW-7Pd;A04Mgo9h9#$gB=;{}?0Ge07MgH!?X(2oe<$AfAZdAP zd{Dg*9$$#f-oA+BIEBxY(mlotr{ba_&G$hx*5b_A(IBCMZ|;mnZU!Cv*MYJnfC1Q_ zN8^Rx66ns0{#}m%V@Zz$I`OKW@hY=#V~piVh{i z?&}Jx(L*7EjuA)K!PhrD`($V-^ zf+~Erv43cSP#Yv|OlfqT`0XDG4qV#~rq+P}n%c+zmqWRkuWGF_%+O`iIJfhI@|nMj zwD7_`eXh%JOAasecAU20IpWrP)q&a0anFo`>henDft1qZ-jTXHv7QS<~H~%)0&(E$FuT5$a5B-|)+AUU-k=P0m9@V%zMMzP@AMT#{`;l&33tWVN zQ9mFV7f#pI%1z5gALH5dMVI<}@<09e%YWj9|19$cYSPYdR!ZL308%=ox*wlDsSCOG z4?5=6Dmj5GwANe2R5YPxN}+5ZOOLGeG4t4=3eu7#P_^cF)8LV!d@HI=c0S9{cB!kY zXTX&?=fj)LL~+MPOae`mo&?nShD-F|`#`#T11OXGE)P2|0Ldxo76X6s)`8qTTM<;^ zBO1%3Zg2PW*w;?sQm2#_L>2fRLl6v6%NBcd*^^^dT5Jl410=cfyM5%%V5KUuIgXFy zXtM3E00w<>Kl_uiHO>Xl*?NP#}SIV+)Ef@)3uO;=vX{2XL#db57Vkz4w#% z&ub37{w$FG!tMNKy=1!VavkNp7eZ34QYuPLx^40KD8JM(*Sjozj63-4U|*I0)JUWB z!1J^$ovX!-xgtBS``pn(iSLI3lg*I_r>p=-RdZIl%=f-tz} zcNqXyPVa+zqyY$0>AwlV()yn-5pXX7MSsT6*T%PZ=)yQ3q~Sg@=l^K$+QXq-*M95s zg)*o}%!Kw5%5gA^3~FVEatb+2%lR-4F-(pTwTe+WC5OqBL#7>aib;mSUYW&Y2Gd44 zt7#H)SWYFx-p{M3zO}FY$G7_DyRPrgx#oT5d7smL|L*7ayYG1=N@7|&iREttDlB}z z=5Cl5m1mUVJt|La#cvtPSI}zG%zW(oJay!pV7~@P#?j~LKJz!Qs$D8CH0VZ}jAl7O z@w;nV#FL&KM$$t7h_6thuf1wE^ZdBn8nc^KiE@quq0Dx0a6GhbWp{BOdCFOT7AF6w zHHpHY2U0kyE+qlKsDYjP1T|7Sf=viSjEt=EPztMy0Uy5L-~}XMV+1v@zE|4c2IF*8S`TC! zr110zA56`3$vGJEnascyMYi!v4b6IP)~hhKH&Y8Z)Vo}^+*{^QDS!HHjy_XKvd8_o zr2yr&%sgs7QqQO8kmZ{H35tg564#5m4hbm8K|*gZ^Hz&l@*~bgCX+V-7+3!t0GcH| zZ{ru+o89-z={oypn!J4cOo3EN1urSIOgDD?{ekjrPvdq9FJ95A0x_&aXAy$84_)Dn zL;LFT;O&z{lm`Wy*NQin6R9{e1`E5tKF&PM4X)a2Pa1Ew@@PHsf$stOjZg#&NPJ{o zKz6pRG{qMeL&fB66S~IBh!^19jwh*1U0Lr_VaeaTuuoe^K_>s#Cq%m2fAN;Hl_dZE zDJ~`dj4o`?G7wKH$xvSk-pZRM5Xocw)NJzd@}Xn`$d2+Gdq)(tI^{v5(u(18n88_^ zexf&`Ls@GDtJluj4PGD*FcjMj5jj>Ge3OQ#^*g{KzE6%e!}+5raI_m1`jc`O9GL$g zpaqd{^QYv%E^WvqLec4;O@!K4I4LUt1bN>hT4XAMP2 zC_2=P2(uKU}YAeEZ^HgGh;wHXcR zbJVhmflEx0@i6qgY^h0phP2d#t|(viC2WEv(9uH<8+T=b7=495x~!y4rI7nLf0UVy zDp@TisBa50<%9GktY7i_Ii4d6Q#-Ly_^SDpr|0ynJx1Nzr0IE!Jm?!(jTovrJc=&(LH%b&PN2{1t$0lQ>M|TZ=4Bj2i)jz*Oa0NT zX{7{in$;GE7J^_MNPvx?KS}cW$HlAw0lvNJqrS*ed2Ur{wf_0BPEkcmt+pRWd(7Ix za&fV1Py7@JCz8UImHzc)5+j~G;_N52Ier4jeQ!Pto{tu&NT1egwGqeBxRsk)yqZK! zqo3=X9mN1b?>PxkKAn<_T{HyLoz zJmZ#2o!KQ@e*+oYcBS?u*oaA* z#^BRmCPNtpn_6OBgXiSeNO#)kwWNhdjd-D0%uoj@6QvEbOzIXsv=Bah-v&))@*6rkY9(y& zut53@P(qiSS`lhFWFs-1$H?t@9p$&K@-Tsf6)f`*qnjLmv<46G5J%vEv|(5eabR=7 z{CdNSeQ$NoqsDi0lx3j4!R^mtq}C1Y`>B8^%nnuM$6$E75Yxo$*J-d|jq|1-o7zID z3)i^KJn%4dMFFM*IVfyqYBPrfTC#n~M2xf5)Y}RLtxks8!D6Ot9qKn;=G{?dfNa+6vY5f0h`oCJJmS^j#9>KpXM4rk%9G78eaulH5x8^IbA74)eW~MdiI!lJ8txz41}FraIopfM9=TltXqe%I&#py z_>@gUi(#-|=wzp8?-`f*ALyvm3&k-nwXgN;&@uEUaT^!-Dz35$LG@`TnV>>{)7szn zPHEyax@(U*5A3WiI&VyIz6WEo-0q(B^Q>)#7sJ?_vsA1~#7O2Hd_NNK0`t08aJSx= zx>efv?YWWVC0=AGP2fzs1*7MsjRHW zrX!s#XA`w;q_Q?v%CqwW0-sl=mhBxXmYe;y=(3EzA=7~uM7x#2i7YzS;@g8vbSXD{ z()Dtra@Z4*%qzDh+F+%UPN@Z|)Hupzx`X;9pok5?)e6aU?)wgO?vR=gM{n$vc_acg zO^p8UkX^WyL^F%d5W^kPB^;t62=<$d&iQbQAIoz4Q|;(+*o9~zzB=C{V$%`VV3GDB zgjH~5oE5T=oOn2$sei`s#MCbDF{KhY!p$Ibi368<*NJ)jn|`aCgGppPG%>BR6*EO} zJfV>Uf}5fI-Y36}WE7^A#sr~W;4f{bjuG@I4ev#K9gvA@7RT*H8l_=p57a~*iVLzG zG!@;GONzirP@)EoPHp#=6rXNb!@pro3?Sbr-Tv98oUp9g{mm|-Pr@ReYpke52${e1 zt!7J2pVZk(vDH@`2+Fe8NZyyZNV@f#ETun4BK;Q=#;T4oy5cfLP;}z)(63ChJEx1@ zlicrn^!?_3=l1rIy*(wbYX1^DA)uUXti;$jG`{BW2!`|Rt?X_u;RsyT>D9~_Eil1& zd&8glU}1H#h@677gF>mPXv9KBGw2B~vDyeXC!B6+{=t}fR$0huVuDnNinhl%1gbO4 zo2#xeK8Dbu?DT6?$|U^nYN~7;>6W{*=s_DoVE9;(SrWL3;T3_;;|^28#{01e1|#hF z5uv`x3$}9UFnbm$Lp&=#vaUHa{6>GE#Jv3eX5>E;<*m=@s7U)s3CSlbs#X{3>z$~fr%TgV586Ik3V3?I2hI6$sEI3viL1M7E1DD1jZG!>yVIOo zS8*e@XpQC>u5iuog)K-s%2G#D*PQyn#hg3u$;|=Rtp!EjaM)HY80Cb?VWUGRp$ZZw z@}r}sZ8RHcgO&CZMBH=HR_-BmezRDCT7&ef{oXXpae5L~<$jyK$e!VS=qw(3%b+(q z*aUU|Y+%keQ{NOUst#N1t!9&(nf|n{AfJ}`h^_Phsp%{0UR9>z^8?Rz;wsw6+HRPIR=?R^~gcbJvhSTADRuGEZ_obS6MG-!YKJ-{VG`)IAnX3=_wLw_39kH;KTTb|sPPU7x^Fpt%<`}0 IN8K*{3q;*HssI20 literal 0 HcmV?d00001 diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 18136b2e25..b9a217169f 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -36,7 +36,7 @@ Topics and procedures in this guide are summarized in the following table. An es
    [About MDT](#about-mdt)A high-level overview of the Microsoft Deployment Toolkit (MDT).Informational
    [Install MDT](#install-mdt)Download and install MDT.40 minutes -
    [Create a deployment share and reference image](#create-a-deployment-share-and-reference-image)A reference image is created to serve as the template for deploying new images.60 minutes +
    [Create a deployment share and reference image](#create-a-deployment-share-and-reference-image)A reference image is created to serve as the template for deploying new images.90 minutes
    [Deploy a Windows 10 image using MDT](#deploy-a-windows-10-image-using-mdt)The reference image is deployed in the PoC environment.60 minutes
    [Refresh a computer with Windows 10](#refresh-a-computer-with-windows-10)Export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings.30 minutes
    [Replace a computer with Windows 10](#replace-a-computer-with-windows-10)Back up an existing client computer, then restore this backup to a new computer.30 minutes @@ -130,8 +130,6 @@ A reference image serves as the foundation for Windows 10 devices in your organi - Summary: click **Next** - Confirmation: click **Finish** - - 12. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. 13. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. @@ -235,7 +233,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi - Capture the installation to a Windows Imaging (WIM) file. - Turn off the virtual machine. - This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server. The file name is **REFW10X64-001.wim**. + This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**. ## Deploy a Windows 10 image using MDT @@ -247,29 +245,31 @@ This procedure will demonstrate how to deploy the reference image to the PoC env - **Deployment share description**: MDT Production - **Options**: accept the default -2. Click **Finish** and verify the new deployment share was added successfully. +2. Click **Next**, verify the new deployment share was added successfully, then click **Finish**. 3. In the Deployment Workbench console, expand the MDT Production deployment share, right-click **Operating Systems**, and then click **New Folder**. Name the new folder **Windows 10** and complete the wizard using default values. -4. Right-click the Windows 10 folder created in the previous step, and then click **Import Operating System**. +4. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. 5. On the **OS Type** page, choose **Custom image file** and then click **Next**. -6. On the Image page, browse to the C:\MDTBuildLab\Captures\REFW10X64-001.wim file created in the previous procedure, click **Open**, and then click **Next**. +6. On the Image page, browse to the **C:\MDTBuildLab\Captures\REFW10X64-001.wim** file created in the previous procedure, click **Open**, and then click **Next**. 7. On the Setup page, select **Copy Windows 7, Windows Server 2008 R2, or later setup files from the specified path**. 8. Under **Setup source directory**, browse to **C:\MDTBuildLab\Operating Systems\W10Ent_x64** click **OK** and then click **Next**. -9. On the Destination page, accept the default Destination directory name of **REFW10X64-001**, click **Next** twice, and then click **Finish**. +9. On the Destination page, accept the default Destination directory name of **REFW10X64-001**, click **Next** twice, wait for the import process to complete, and then click **Finish**. -10. In the Operating Systems > Windows 10 node, double-click the operating system that was added to view its Properties. Change the Operating system name to **Windows 10 Enterprise x64 Custom Image** and then click **OK**. +10. In the **Operating Systems** > **Windows 10** node, double-click the operating system that was added to view its properties. Change the operating system name to **Windows 10 Enterprise x64 Custom Image** and then click **OK**. See the following example: + + ![custom image](images/image.png) ### Create the deployment task sequence -1. Using the Deployment Workbench, select Task Sequences in the MDT Production node, and create a folder named **Windows 10**. +1. Using the Deployment Workbench, right-click **Task Sequences** under the **MDT Production** node, click **New Folder** and create a folder with the name: **Windows 10**. -2. Right-click the Windows 10 folder created in the previous step, and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: +2. Right-click the **Windows 10** folder created in the previous step, and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: - Task sequence ID: W10-X64-001 - Task sequence name: Windows 10 Enterprise x64 Custom Image - Task sequence comments: Production Image @@ -289,43 +289,43 @@ This procedure will demonstrate how to deploy the reference image to the PoC env copy-item "C:\Program Files\Microsoft Deployment Toolkit\Templates\Bootstrap.ini" C:\MDTProd\Control\Bootstrap.ini -Force copy-item "C:\Program Files\Microsoft Deployment Toolkit\Templates\CustomSettings.ini" C:\MDTProd\Control\CustomSettings.ini -Force ``` -2. In the Deployment Workbench console on SRV1, right-click the **MDT Production** deployment share and then click Properties. +2. In the Deployment Workbench console on SRV1, right-click the **MDT Production** deployment share and then click **Properties**. -3. Click the **Rules** tab and replace the rules with the following text: +3. Click the **Rules** tab and replace the rules with the following text (don't click OK yet): ``` - [Settings] - Priority=Default + [Settings] + Priority=Default - [Default] - _SMSTSORGNAME=Contoso - OSInstall=YES - UserDataLocation=AUTO + [Default] + _SMSTSORGNAME=Contoso + OSInstall=YES + UserDataLocation=AUTO TimeZoneName=Pacific Standard Time OSDComputername=#Left("PC-%SerialNumber%",7)# - AdminPassword=pass@word1 - JoinDomain=contoso.com + AdminPassword=pass@word1 + JoinDomain=contoso.com DomainAdmin=administrator DomainAdminDomain=CONTOSO - DomainAdminPassword=pass@word1 + DomainAdminPassword=pass@word1 ScanStateArgs=/ue:*\* /ui:CONTOSO\* USMTMigFiles001=MigApp.xml USMTMigFiles002=MigUser.xml - HideShell=YES - ApplyGPOPack=NO - SkipAppsOnUpgrade=NO + HideShell=YES + ApplyGPOPack=NO + SkipAppsOnUpgrade=NO SkipAdminPassword=YES - SkipProductKey=YES - SkipComputerName=YES + SkipProductKey=YES + SkipComputerName=YES SkipDomainMembership=YES - SkipUserData=YES - SkipLocaleSelection=YES - SkipTaskSequence=NO - SkipTimeZone=YES - SkipApplications=NO - SkipBitLocker=YES - SkipSummary=YES - SkipCapture=YES + SkipUserData=YES + SkipLocaleSelection=YES + SkipTaskSequence=NO + SkipTimeZone=YES + SkipApplications=NO + SkipBitLocker=YES + SkipSummary=YES + SkipCapture=YES SkipFinalSummary=NO EventService=http://SRV1:9800 ``` @@ -336,12 +336,12 @@ This procedure will demonstrate how to deploy the reference image to the PoC env 4. Click **Edit Bootstap.ini** and replace text in the file with the following text: ``` - [Settings] - Priority=Default + [Settings] + Priority=Default - [Default] - DeployRoot=\\SRV1\MDTProd$ - UserDomain=CONTOSO + [Default] + DeployRoot=\\SRV1\MDTProd$ + UserDomain=CONTOSO UserID=administrator UserPassword=pass@word1 SkipBDDWelcome=YES @@ -377,13 +377,17 @@ This procedure will demonstrate how to deploy the reference image to the PoC env 2. Click **Start**, type **Windows Deployment**, and then click **Windows Deployment Services**. -3. In the Windows Deployment Services console, expand Servers, expand SRV1.contoso.com, right-click **Boot Images**, and then click **Add Boot Image**. +3. In the Windows Deployment Services console, expand **Servers**, expand **SRV1.contoso.com**, right-click **Boot Images**, and then click **Add Boot Image**. 4. Browse to the **C:\MDTProd\Boot\LiteTouchPE_x64.wim** file, click **Open**, click **Next**, and accept the defaults in the Add Image Wizard. Click **Finish** to complete adding a boot image. ### Deploy the client image -1. Before using WDS to deploy a client image, you must temporarily disable the external network adapter on SRV1. This is just an artifact of the lab environment. In a typical deployment environment WDS would not be installed on the default gateway. **Note**: Do not disable the *internal* network interface. To disable the *external* interface on SRV1, open a Windows PowerShell prompt on SRV1 and type the following command: +1. Before using WDS to deploy a client image, you must temporarily disable the external network adapter on SRV1. This is just an artifact of the lab environment. In a typical deployment environment WDS would not be installed on the default gateway. + + >**Note**: Do not disable the *internal* network interface. To quickly view IP addresses and interface names configured on the VM, **type Get-NetIPAddress | ft interfacealias, ipaddress** + + Assuming the external interface is named "Ethernet 2", to disable the *external* interface on SRV1, open a Windows PowerShell prompt on SRV1 and type the following command: ``` Disable-NetAdapter "Ethernet 2" -Confirm:$false @@ -393,7 +397,7 @@ This procedure will demonstrate how to deploy the reference image to the PoC env ``` New-VM –Name "PC2" –NewVHDPath "c:\vhd\pc2.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 - Set-VMMemory -VMName "PC2" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 + Set-VMMemory -VMName "PC2" -DynamicMemoryEnabled $true -MinimumBytes 720MB -MaximumBytes 2048MB -Buffer 20 ``` >Dynamic memory is configured on the VM to conserve resources. However, this can cause memory allocation to be reduced past what is required to install an operating system. If this happens, reset the VM and begin the OS installation task sequence immediately. This ensures the VM memory allocation is not decreased too much while it is idle. @@ -405,21 +409,21 @@ This procedure will demonstrate how to deploy the reference image to the PoC env ``` 4. When prompted, hit ENTER to start the network boot process. -5. Choose the **Windows 10 Enterprise x64 Custom Image** and then click **Next**. +5. In the Windows Deployment Wizard, choose the **Windows 10 Enterprise x64 Custom Image** and then click **Next**. 6. After MDT lite touch installation has started, be sure to re-enable the external network adapter on SRV1. This is needed so the client can use Windows Update after operating system installation is complete.To re-enable the external network interface, open an elevated Windows PowerShell prompt on SRV1 and type the following command: ``` Enable-NetAdapter "Ethernet 2" ``` -7. On SRV1, in the Deployment Workbench console, click on **Monitoring** and view the status of installation. -8. When OS installation is complete, the system will reboot automatically and begin configuring devices. When the new client computer is finished updating, click **Finish**. You will be automatically signed in to the local computer as administrator. +7. On SRV1, in the Deployment Workbench console, click on **Monitoring** and view the status of installation. Right-click **Monitoring** and click **Refresh** if no data is displayed. +8. OS installation requires about 10 minutes. When the installation is complete, the system will reboot automatically, configure devices, and install updates, requiring another 10-20 minutes. When the new client computer is finished updating, click **Finish**. You will be automatically signed in to the local computer as administrator. -9. Turn off the PC2 VM before starting the next section. To turn off the VM, right-click **Start**, point to **Shut down or sign out**, and then click **Shut down**. +This completes the demonstration of how to deploy a reference image to the network. To conserve resources, turn off the PC2 VM before starting the next section. ## Refresh a computer with Windows 10 -This topic will demonstrate how to export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings. The scenario will use PC1, a computer that was cloned from a physical device to a VM, as described in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). +This section will demonstrate how to export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings. The scenario will use PC1, a computer that was cloned from a physical device to a VM, as described in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). 1. Create a checkpoint for the PC1 VM so that it can easily be reverted to its current state for troubleshooting purposes and to perform additional scenarios. Checkpoints are also known as snapshots. To create a checkpoint for the PC1 VM, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: @@ -574,7 +578,7 @@ You can review WDS events in Event Viewer at: **Applications and Services Logs > Tools for viewing log files, and to assist with troubleshooting are available in the [System Center 2012 R2 Configuration Manager Toolkit](https://www.microsoft.com/en-us/download/details.aspx?id=50012) -Also see [Resolve Windows 10 upgrade errors](resolve-windows-10-upgrade-errors) for detailed troubleshooting information. +Also see [Resolve Windows 10 upgrade errors](resolve-windows-10-upgrade-errors.md) for detailed troubleshooting information. ## Related Topics From 89251878e919450038ef33c8e220e6b6af69efd8 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 13 Dec 2016 13:13:21 -0800 Subject: [PATCH 064/210] . --- windows/deploy/images/deploy-finish.PNG | Bin 0 -> 14263 bytes windows/deploy/windows-10-poc-mdt.md | 4 +++- windows/deploy/windows-10-poc.md | 28 ++++++++++++++---------- 3 files changed, 19 insertions(+), 13 deletions(-) create mode 100644 windows/deploy/images/deploy-finish.PNG diff --git a/windows/deploy/images/deploy-finish.PNG b/windows/deploy/images/deploy-finish.PNG new file mode 100644 index 0000000000000000000000000000000000000000..4f0d5cb859c309aa0746bcec674952fd834c2a36 GIT binary patch literal 14263 zcmeIZ2~d;Swm+KIV{>c=oKZpOZo5T6Kt$#tt+q|uGPELK7!m~oG8-WT2ua%RqqIzM zVjkiI2mvBv7($}W5G9bP5CViGLV!pDi6Mj#GW~<+y!-CG_3G8DSEv53Ue!%i@+IHS z-g~XJ*ZS?X_x^o%e)aL(^40#Y006+2vp@fM0RUKs2LQeh{ryY*osalo{U_jy#0#FM z0QGc}IsK2nMV|CN2>>);H>s~|(Er|e{bx`j0I;=t?fnHc;rUenz|rgMk0&ptfEPF$ zADSpoW-DhK@9>?HV?ECveRJa~75(N=3`jZ!RYWOz)5c;+X{zO3=k%YK#}`lkwQ|Yw zAr#bl_5AS3-~Q(O-Sez<-=9Bte%IN*Kl|bA2k+m%d%5Y^4*)mVwhyR3{&uAN+X`L) z95Hw?Fc2QdSlX;zpYD;yqt11RcpN5V_{5`X0N}SDkLVTp?i^?X;A>F71px5oLckY* zpYt2P0{qYzRKQ$su(fA)u!O%7lZ%b1PesN~q{I#k4D@(NyP#+_aB%WgW#vBm5@a?zJ{k7vFazF9hA%4ft@_!QOs1k((AHdG{zCO!f*s zT`-U(=xqA7!@=@Nsx1l;@T;t&7?WVHqeq_)kUc5JU|LqTimn?`ZO6WtH2_V=#VD3% z2Ls82#NOW>6Wc=4y`tQ5-_XAVTu$w$edMVhQ$m9;Wemm~Z>}}%goRht?s;=A2K;kY zXSK3y_{RA`Sqx=4rmLmoViuG@GHtq>nV$waa3dYb>SOnBut$;tf;Ry28#*qy;GPs4 z2L;F$i+Ju<7j`k#;<>1*vJs_ng^!hZ0hdR^T_O8k%a)0hF5)d0``)^s(Z1GfS~NOP z9v5?P?6d)(Fyn@ES;G0jL457(8GBvk4_f$dYD_Ol?GsbpK#LAwj*#OlA`J6J z6w}Sr7C+9Eu9_;)@o*CVXo(fd3lU`AL>=e!*;1!PBrER7v0MNEdgkn!BsoX%GfCP; z|A3!le--OW3x-%|1&~~9EsyFnt&z0JT#4+4C zXbmX@T=R>SrAS&xR#2V=qJmrG5tY~(O`LL3?U>F?vgF-Ds(GP&(Ws7_+Imj%5 z4W)glU=e*5oYnybKue9qdRrPXr*PF4;zxUixbCvq6a|VS!OueNbrOk&E0MQe@V7pB zi&QJG^cQC)zmGcghe%#9xVWmB!DHGl+_C&BBvq694K~;eqJ+W0e{fq3=+)t)%ZFNG zwJ(ArI`_5abin=w_-K(Ct>rB;`1|!Ei0P4ie^Z3_*nCYr z>$+p|HPB!rr7kh!#Y#dToPFAq=s{lO3rP`5SPlej-WY?MfWA z$F}Lr(LgZJaUO}AU3B7k!U~%0;=S3g zhjR}Ct~VP8{37tXiy$k_S6xBB-za->F{m=BszFtd z-Z7-w6d&b^5*fw=DMLY8`po5h#?qA6Qv150F~NKzRC$9LCx3|f9^)0TIg;o&wX$l8 zZHgs+jaX&{{)iVPZTZ|O4cYVJcrk-k5QUfDPrWio=`Pmo^j9h_$aJ%+eFOFf$zL9W z$Zth?^g}jX)@C0Byclgva|U|rh&4(Mi}c!I5J%aV$D|Vonp=-H*yRFV?kGfn1|`k2 zx(onw8WCy^xtO@g3g1g;GfzY;e}tNR@mqzRL=RYiEbsqI7<=ds0Nk&rT?e>(6uKMm z+g0zflz#KmKk8rKwV1dh{S4Z@ef#!%C!W@3{`u#hKR2EaII~tXb{PMy{&he0p})R( z`&ozn8h!Df-x)*w*Q(ynX|z}?fAiBnt6%*$RR;|>roB(fFP_8unwB0~>*2!SlZQ+! z!R3g@%45UcjraiSofw}x4}3iAE$gbFAY=1#l0yLQMq2B{T*GYh5E95r@LZEHSA5h5 zpYIoik&8( z%{g5etZuNdY%=%8Sd5ge&N)FBBBO~mYtndn?y0CPe~|{CABQ7K6UFqlmG{VS)&jQg zw4wU}hMO$JO{dP1E?N?LvTV9`G29iL6gSHj0Eog16}4wWwzddMHPrLuEVx*3>nw5z}%Grxoh6F*>LqL=0Y zN7}8Mo?OX;VBAI$(vHV-wLivEG?Wnsf69IkyTIrM1se5UYq(&TP)2_IwMz5>s^<740OVkV$GVT zyuMd{r+_)+k@{2mjAbO%ia4KXhSKblve1j9!qsY8n6Qe#$Q0Jsz7R9|MXypMcL=@f zv1jH-jT%JUKiLY;i8MwGOhYf=*TmWMKv_Uza~uqk9!ce{yv;BV4Pa!&`BEQMC1e$i z&#Zau^!2OXLgkwvtI@G-pPr1S55gPb*g3Yc8A9(CM{zbw!-w0-yCbQ?!0}yv2_)-E zbOh2%Gf`ek^4Ou9MS!zIk>AEoH4|n= z;7HPsCyMO4B7zcl6>`y?HBH|~YN7J!p(&Ewc*>QXkcCt%Jd+vR zII$nbjN4v<_$lN;9t&H?*-7NV0!A0kERVDE_ z zu8gmBRrET^)CGJQ1Y=JoNey6&M&K-80{Z}wyISU?<(rR~cDJ>sV5;z~Hux^r25%aI zsPKw)MP3J&cMwcYaN6T2v4e^@1q9R-(%o3}YN0jMNAEpXqx2ZM+KJKDr|78KqxJ2= zj<(t2n5keM>99jc3OapxsH!h7kh4vqqGjAzf0aI>$_P(Mz)e>gvSvUS|rS zwsHj_3q!e)P)ZV4udGxV_SG;o&tsY+HoGoMjq;xWtd>c8F z#B>jn(+5`w8U-bRWzx z7PL8OI00y7iLas#^Hd?k7i6)za8rHxYMBPcWFmTqV8u4it> zX){kb#ua=P(oHWU=lZM4m1QC!lYl{?LTA6e!%57wa@BBdq!|hj_7#-d7o~Xm5_^3m9Y7`bV2TtPm9_>nCb)$lmqm?|)E=w*f zh9nO}^Z+%Ggg;B-C-&LdMMgs5jfeo1pLJc{ai?U^0fEnq6K$&!9E0l!FY<$AvaQYa zF4?%GH(%Fs$3jD@tWMg_Ksk_?TN0iDIm*=J75X?uN^fU@v$l{c?^%D`d`(?6V+k`RTV@nTIQj1(8!z zS&ne+d*;5#bcbAJ0%n_ThN3yIo;0JFYgG-HJra~e#XoJf`m?#2`a=f4jh~C1^Yh6e zl%tX-u6M&hurBju3B_@%iPJXyWJ&A)3C1NxubYcRN~OrSb;HY5t}SdxjMQ7am7!ZJ9D1gC4L_3=}%YnvktqYKAUFE-cL2d zgy;=92ctU+dRTgAOyS|WfZAza?oM-D`i+19-7$|v>CSMba3{Y8UoTYS3}VNdk2u7R zZnLw4(DRGvnW7AS7iKk5T7_8^l&$NG7(AkP?7FNbdhs1b`fTD2JB*Ah2 z(a0tQ5Z`!#%>jFlS&CneROi39&5v`-FV{AXms|>0&#dL7TYYEsi3<>OI^_DRGqCq( z&3lhjc~Mn7oi;_#iFWn)bknfMOe4kh*kV@9%P=>h;Q<~t6!oId`N72QEsi}1vaD>B zj6w?NbNXG0aDHD7Y_=$}Z=-qX-8|+4e$P%;PlE)7N&jG@weV=QK!!Bwlojco&Ab<3 z4!`a|A|S@JXmj|P7jr%{dujRN7xbv$!kE^vWaqU6qWf-Y0TZ~Ymt^K7C`eCI-| zKCcX}dO0hzA$|Jm5-~p1%h#8RQ4%oQ%vL^l=1)V`ZCmT`gnqIsE_lr}CzNRnRGnCZ zteLasxIKb$1ULk@`#q_Yi&Ai4k}gH^eIph-f#NRi5Y>-1LeGUDIPfyU-_w_#n&sr_ z6^p39HeW7&M>i3#8=B0*hIQAD1Gi6B-4&n zw$HrY**RA?TI2MJb5XCw_BrUAe=dz)xBY*!bQ(H>XSc>}T9f78F1y_Tz}>^2*LnXp zJ6r#KN%(L2D-#xiJmaNdh{9%Cx~L`*sxatsdTpWeD3bKE3q!S9=m9K z+w(VXYMm&gKmd=cM~b_6-#G8I!6PF^7+|LeS$%MrZ-RF5t>)3*woeCkLt7>%9z3hH zuAf;7y7b!ycS@H1Pv@4#!LuD_#{1K?^ zG0U~!p!ReJz0m~$g`YoQCHdo)8zsx(r+(qJE=E3oS#HYsqwy=+U;pTjR{Z5MzcpIn z`;s=j?oq7;9@;Ow=M4(2eCY2Ky2NFpi;CRaoLhC)j@NB* zU2g|C@2mm3?$*b|T{dvOY@t zL5r6Kl_zo%Aw?tZ*p3A`CF5qV-Oa{vWOwVzP@LSG*Y&&>yL)VP#_;acsbSsY_o}xR zkiBULd!e-lGcI|W7MR?nFhPkicNTbK^d+X=cojBHoxDw@8?kdcs%zZnYas}_45nv=JuZ&x&R$V_LLjAD0 z>pFJ)r^?9*b}mK%gKJg|+bYBB_eW0jxzk@Y>`h-_x=V7XC$9U%l^5K?2D4?R0{Qrg z$Mbg_U%8X2#jNRU4poigjquxFDri&SoyFLv@f>kuH?Dh`mhGZAPxV-xh``adOX{5M z*|n)+gDN;HhGKU4{f@(Uxe-~LdfGaKx#^tbTi)#YR(u58+w6Uvb?hzShI;MqEcf>}WTmCG@_=iMOe@-brwkFp~*%iQt7s z=C(TFc|i3sF~+5QSx{Py1P*(}$V|W7h-y6s9%ioJF_?{-<>mgQWv1(FM^=iwO+*i$h?`CuieMSPo=`fvSCwUHUTTBV zzs|9X-|0lp6($Cu+?EQzgb3D$2cb$qZ`*QU+&T!My_jFinv%QD7FsRAPuvj@(MM&Q ztz8KU+FRSA0sF_PCN=DYCdx7+QK!uJJD}h$6^ENSQ^fWqQ5brWFcF6@2|$&L$`O~} zd3|ujb2j}@0=yESOB!EY5B+$i>xuZ(&=3bA|0^)@i*m_l{ltwXk)CqrIuFwZoVb-nxbu!d`@JtN zTNbZL8{Be0)wqYiv!%wK4rDgx8+_!)XcyVsmTQ|z=KPB!^ zoL)d)T|(}?B)DkS2zFDfjb0svnF4b^S_}!tTz7RJcIUE zU!5kEi0O(b<{GRYpU04FgGW<#iEQSTarWh#(kPqvJ=hq!v$zk2mXw{f@=N#-bkWx7 z|B%zRey(g`YpUV;tjKSnErT0skdNmmza`mNz|C&|!Nvzu0){eRL%o!ybZFXw!LJe7 zo7f+2C4E}o@@sbYs1b$Rpg0gI7;WOWw<>ry`8ChupMH+IA%ioKnmyl#zfIvgaAB=T zeZ)}*RZ%H6*(u;XF7a`UPL0TZXh|P(5juYM*ePnbw49f@p$pQ7j3Zt^0Uh0Va5iK# z(Wy#4>hF*3ioT2`m2zpj znOms6+2&pcywMAo_3uxY9k0i38TvB!v4!exor$j|B`_UbXhg`Te2L+Bb8v<0SF=;P1lMt6C^#_V94tR7ep!jW-51wCgPWBZ+B zUFy|snnJ52w>@fg>j6fk?S7H+c`a{g-1P0NCd6*Gw_!^xCR=cQ^myGG))AeFl`O&D zHKfC)VTa3t2V=Gsmg?uga`A?W`!}=BvL*~Jz`i*89`jA9Uub>ASl=e^`gkBGYQ5Q4 z6n9dO$BDCp`f68U(>Bz>eX`I9)3~qOI1a917Ra` zp`foKUiB2$?eI^m(e8f$ zJFsv)`M_bAFSObrv1_D4!LeUEp|8-GY3JI7gS7-|23Uz*gg5A*7~tJ-2lBX zqH1~n38H9W9T>U|xndhr{rPY3X8qY#I=B1!%3=Jus1L}CsfQA!qTHG3R>ZU58dkYr z=981K-s%(+c{XoCHD1dQmP{_X{iMF1_pI zcRWeBxmY&#?)&he{;)Ca!owW7%B^aQt;DdIGD~1Ro#x0%ivL5k?;sfRpgC)Y>eX4VCj1Lt8wt;Ms%vI0w7 zFdSTVg&luSOvegW8&_qL3Ar8qxsJo5anHL?tM@axvwgZTXpgtyHD zPHZb+eXtGAA#l0_daNXX{InQj)&jR3V0w$*VDfkhk#w=qs+Fm-_(4EV82V;QY*kbz zb6xPYCUm`9SJXbhm{DHIU9fmT zQyA1dC*xwG*Fi=n8==|z1z_R8NaHxFwBSB?RZQ}SZ#vZw+iskc<;`&z zpQofus8TzE-+xKWo7>&yHbbc^FVXB)%-^&x3zqK{Uc|=4yUH;QhXXm{59ng*kwB1# z4z7C3*XJmKIw^gjN~gr<@;=De*VQ>^nqoes?uB!A=P+QpR5{SlTQG6rC%_NEJCEXN zWnuR^NJ+ULYXC2|{{$+ls6AAdScMo3)UyH(-fMI@2lDn;uvW^A0Z#k>P3xoob`baf zsMXpZX~N1&&i1=49p$Fh#pyuHury!EeEW4Ov$nhVDApkooc_M~x~f(WkHlZt)?)rA~& zsGCpUR)NTPl2)6Q`nY7cwSd-}(rzO7ZsE?{?h00_08Tk>eCH|W1?zX)r?HP&IZve> z>pgM3NAT_H)7N^FmfsDh{tBv8w<%$ z&C7B&$0N`1GC77LVi$e7yBBTZ&ED^JTWcs;yp)uuuygF=%%P}2mC1?hD-y%qP1wj5 z;0QgfB|Mn9=$56-lNEE4qtYH@CbHU3mv_ETRU9}yv~)8`y4t<+G*dN>VX5cm2<=xIiKZz0ix z!rcoe`Uh2}WjFC%rdxQC6LJIUGx0XJg0owxdM~qYA&#~)B;2P?1>cmpe-pGM|S_Hr4MsMaAFne0{QR~(R zLu_^}NC(3vHaQE@Iqgv678go-!@Sckv@ICU=3sKPUdIB$fsFV3WCBCW>VLsE^ANwh zXK}AFC=_!+6tIOI5I@=~11=Cb@%0O>eIR1g*kVSUG?9$$Fr1utL1m_P=fX$R{NXas zI^K!8Inr0mxu<=utP@?J_Fs1iE8#gvFTR(tgDHGy{4gPq)Au5^eHN8#A5rn-zD?5& z7vzMcZArjL0!AGk6GUFPaqGM+rrCueZ0$pF9u^SxBQ)n}j)P_bISA#3Q*6Bc3^d(1 zUU`&R2aH9-!423`oaL{&^#~pBs@jQ$+>S$x!Zx!5Qrk}rZAcqNH+otk5!H)^f014H z&!9FV^|-ct2`|bM_%jC+WG7EVhu~$2%B9N0*Moz&15a`*=eG1C`qCn(n3pfY`vuH0 zReImk4j*fr$0}*@uVL{@jmkt@Ja0ErxSN1gQM=^g%hb&OjU4#8=yoPeQ@8AJRP_7R(sxxAb7vf}nTdGg!t^=!{8WYLUpRxl)_ zHyy*lZ+H*k_q3rsMo^UZM={p}x3D8PBv@t6e(Ya&mFoo;z^xrzz2RZYcCiDCy|TuF zID#TfJOLY^$S#rEs4n6Vc+k*dT!H1VH_hH#vOg7lnq?+%5@vUzhZdi5yZI!lDE~+^ z$joVnl^)}{bBBFtz`L{B#dA9Kd80={wU(;vC8t+a%2F;PZ%wlIw=7)wX)O*GQ6sgk zsdJ4qen4K1Q<%XvZ zI}CB$Gfuub-Uk!-7kE0sLyX?Li!Gk0*gMKC6=#52V+FrEMzfXt_Bcb$uLn}~z$LVD zba(X7sH)@5OWwEtz_Mc7r!){;^Uq^N%eLuV+J-uzm1|$>p4+$t_yqDnMtS$dQoH0A z2QPwp1NIB0dQ9Gr`Qf?Ud|{0M>{y3Sbt`VQBdRBq0dg!~udG~}B6%gH);8DCI|fyz zlJWbN!1z_?K$P2jsSHP>p6I-g)1PcWw_#DbCJ7}WLyP|WdR{PD>ONu571;r2gz)fD zDR#f2L-s{}=f;Q3o+Rt#ryc;mdE^&<>DOmFiqTHXV(Aq^%RpU z&=y6Nc&T`N+fFUu=jGFhspz-%y1K-}N2wxu`eFRb$%c7aG>=fac(l_n`wa?^ME#a& zxYI1j#5rFFkMtmA-0bGRR_)gl06jPV@7asg6B^9WE0a!1AAi;FId1}ivjt5$56yrb zOt;=}IbT1gzdIBZV3z*rRm$pI6+bT!d`EvWVIb8=bYFv!3o5CeD$z?LkoISkYvLyq zFAu^PVpNws0Ptw6r(d`pbRMPOXrEGb-Cxy!&!T3Sf&7^QijfU@sVhZ$tAIZi33;85 z`YxW5h)D1T0G>NGG^Ty}Fa$cQL6h>$Eo*qRETN+DN%2fY0pw03jz; zsV~(XY5K8lBLE;jq*o&C<7A4oq97781GKkizBy+@89!2MLt5#dZ_Y4Hby)^}x;l|4 zdD?&yxOZ6r052cidC087p%0M@^49a9}sH%s_u!nh=8G zbK9oJJNb<<)Wd76wEDu__BY6|v@-~H69TO8qGocnE=R`W2=jZ2EW2h<{>yA4y+76( z05})*Efg*xtEO&dlxJ%UJ@%=@NVjFv6t`ra>QePb?_O`Vf|?(PjvY(zR4G$>hr2l z!~z!C_e6j-X5t5PT&{?@|w-9**ARCk+L#r4lTK7hP5zX2dWBk z*yP=NynqLdD-L8f>z6wQ`o*JnZ7uh@jNYbfb%%)-4EyA~F*8;i+o&XA+&GZaW^O(B zOElV19vsNKr?(GG+2YFY3zn=kSABSPh=%x4Af8Ab3OS+hB3x^Tg?F{1npO2j0e}Z5 z8XAk)X?%Ly>}}Vnev#x3jlkPk5Q0F2q%Uw9qGSi8gZSiLM;nTj{?x`Ye$+vTtKEOJ zq}^w-G%iO@OY)!HlFn*zqs$2!uc+1mE;o2J*Y0sh;A}4dciK6GcG;0p{`r=OWbJV# z98?q+`NAYwlD+IJQqiMv{i}J6F#TT4WPcMWLc2-jlEx<_o#dIGG+4l6wa_|Y0Y?%4kxsQT|T zu0dld$MWL)`OO#q)mr9`Wj)jX-06P)@GdAk z=|7b`WWGCs_4E6D8M<(0jWi6JJ@U)wQ>=%@mbDUnRXs`f7k$3%pw$h#N!5vLwZx8m%;f4O-OG`iZ~tHMU3aB9KrtQ#=8xHZj(v0*^5Ug zOZV#RX;$BLHFmVbbEhwuR#oo$zE*5=Z4jsm6WuNylvA#OT1B^l>sEn z2v=Xi^O%7J)qJKx)7;K%M1Fjnaj2AV^~|CbY$CrS^+ErIdH!QEEV_T177gAJ8P+|b zn(Ade5q(%5CF}B1>XVhdnV*T$8MgY`A8r~PDlJ;6tNj_hGJZu*Rc53+ao=~UR)g)} zG-#2s?tSPuFSBUzc!iv|I2nT!`C8BD+kQq9=AM&1S-niU4qjOt!ub)8SJQR&5}FBa#$r`a#l$lg>VVHX7GF6h24;Vru)i# zLu!kX1*(QM1;4z#c1ou0M97cnzKVyK8TNv z(9PCfj?Z;x>=8xWO61o`Kk4bLF({cS78UH!GjQ8V`a>l1j|PnH72U&S!}9x3=_$04 zLT`&g0_MdicSBj@>M4O#?Ppq5@!2Yk1AY%*s3a83UqyF#^PGjFizRlwOT->XsGlZv zlq9@y=5`&hea#VfTH#f#J-3T!;l89DjFCaf^kveg{!OqKvPAG<%67KlEX`==rio;bV5`6%kzcvM*%2I1 z6F{Nz-{WA%bpB`uRD!@drseKP9+NuNdM+X?LPqA2x?t=$q$^vD1LyvS@3M&ryno1U zt;k7EVCUF0cu{4ll99+mX?hL8pr-$@RSIZO_Of;Kl9s8yZPlRouu1w?lV0f!i9?RD zV>=4qDH zUW@f%Uw5-!8t;TokL z9R3q#A(!Wiu4Q&UVh&rCq^-4kHlI1xS+b=%IMVsQqFX0IlK(I4Lr&lGJaqrOaOAA} ze?fsxK{@i-H~)&vdxeWmR{m=bN$7F*{P$iRQNaPwl+O=M?6XYW_#nC3nDXtvuK&V< jf7e43KPDd5VgP+pU7mBG5dB&kaQ2MPkM*Z6|Ng%KBJ32M literal 0 HcmV?d00001 diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index b9a217169f..a1190baf15 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -419,6 +419,8 @@ This procedure will demonstrate how to deploy the reference image to the PoC env 7. On SRV1, in the Deployment Workbench console, click on **Monitoring** and view the status of installation. Right-click **Monitoring** and click **Refresh** if no data is displayed. 8. OS installation requires about 10 minutes. When the installation is complete, the system will reboot automatically, configure devices, and install updates, requiring another 10-20 minutes. When the new client computer is finished updating, click **Finish**. You will be automatically signed in to the local computer as administrator. + ![finish](images/deploy-finish.png) + This completes the demonstration of how to deploy a reference image to the network. To conserve resources, turn off the PC2 VM before starting the next section. ## Refresh a computer with Windows 10 @@ -454,7 +456,7 @@ This section will demonstrate how to export user data from an existing client co - Update the operating system via Windows Update. - Restore user settings and data using USMT. - You can review the progress of installation on SRV1 by clicking on the **Monitoring** node in the deployment workbench. When OS installation is complete, the computer will restart, set up devices, and configure settings. + You can review the progress of installation on SRV1 by clicking on the **Monitoring** node in the deployment workbench. When OS installation is complete, the computer will restart, set up devices, and configure settings. 7. Sign in with the CONTOSO\Administrator account and verify that all CONTOSO domain user accounts and data have been migrated to the new operating system. diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 9b9ffb35e4..6bcdaff0d0 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -193,9 +193,7 @@ Starting with Windows 8, the host computer’s microprocessor must support secon 2. The Hyper-V feature is not installed by default. To install it, open an elevated Windows PowerShell window and type the following command: -
    -    Enable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V –All
    -    
    +
    Enable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V –All
    This command works on all operating systems that support Hyper-V. @@ -445,9 +443,7 @@ Notes:
    2. On the computer you wish to convert, open an elevated command prompt and type the following command: -
    -    mountvol s: /s
    -    
    +
    mountvol s: /s
    This command temporarily assigns a drive letter of S to the system volume and mounts it. If the letter S is already assigned to a different volume on the computer, then choose one that is available (ex: mountvol z: /s). @@ -518,8 +514,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         Get-Volume -DriveLetter $x
    -    Dismount-VHD –Path c:\VHD\2012R2-poc-2.vhd
    -    
    + Dismount-VHD –Path c:\VHD\2012R2-poc-2.vhd ### Configure Hyper-V @@ -634,10 +629,19 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to >If there is an error at this stage, ensure that the system partition VHD (c:\vhd\s.vdh) is correctly formatted, marked as active, and attached to the VM. Note: the OS drive is only temporarily assigned a letter of D. - 7. Type **exit**. - 8. Click **Continue**. Do not press a key to boot from the DVD again. The VM will boot into the OS partition that was exported to c:\vhd\w7.vhd. - 9. On the PC1 virtual machine connection menu, click **Media**, point to **DVD drive**, and then click **Eject w10-enterprise.iso**. - 10. In the upper left corner click **Ctrl+Alt+Del** and then in the bottom right corner click **Shut down**. + 7. Next, automounting of new volumes needs to be disabled so that the GPT system volume is not assigned a drive letter after rebooting. To disable automounting, type the following commands at the current command prompt: + +
    +    diskpart
    +    automount disable
    +    automount scrub
    +    exit
    +    
    + + 8. Type **exit** to quit the command prompt. + 9. Click **Continue**. Do not press a key to boot from the DVD again. The VM will boot into the OS partition that was exported to c:\vhd\w7.vhd. + 10. On the PC1 virtual machine connection menu, click **Media**, point to **DVD drive**, and then click **Eject w10-enterprise.iso**. + 11. In the upper left corner click **Ctrl+Alt+Del** and then in the bottom right corner click **Shut down**. ### Configure VMs From 3887d2fc83c77749c1330856161b4249cebefa84 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 12:22:03 -0800 Subject: [PATCH 065/210] . --- windows/deploy/windows-10-poc-mdt.md | 1 - 1 file changed, 1 deletion(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index a1190baf15..0f81aea572 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -113,7 +113,6 @@ A reference image serves as the foundation for Windows 10 devices in your organi - Progress: wait for files to be copied - Confirmation: click **Finish** - >For purposes of this test lab, we will only add the prerequisite .NET Framework feature. Commerical applications (ex: Microsoft Office) will not be added to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. 11. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: From a3a1d7493ccf9b7b3db07c4cfc12707b3f4ec4f7 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 12:25:59 -0800 Subject: [PATCH 066/210] . --- windows/deploy/windows-10-poc-mdt.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 0f81aea572..3bab678592 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -207,8 +207,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: - -
    +    
         New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB 
         Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
         Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
    
    From 48b379af45ef8295bb725dd70415e437f1289bd3 Mon Sep 17 00:00:00 2001
    From: Greg Lindsay 
    Date: Tue, 20 Dec 2016 12:35:49 -0800
    Subject: [PATCH 067/210] .
    
    ---
     windows/deploy/windows-10-poc-mdt.md | 8 ++++++--
     1 file changed, 6 insertions(+), 2 deletions(-)
    
    diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md
    index 3bab678592..68dc947c1f 100644
    --- a/windows/deploy/windows-10-poc-mdt.md
    +++ b/windows/deploy/windows-10-poc-mdt.md
    @@ -129,6 +129,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi
         - Summary: click **Next**
         - Confirmation: click **Finish**
     
    +
     12. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step.
     
     13. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**.
    @@ -207,13 +208,13 @@ A reference image serves as the foundation for Windows 10 devices in your organi
     
     26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands:
     
    -    
    +    ```
         New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB 
         Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
         Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
         Start-VM REFW10X64-001
         vmconnect localhost REFW10X64-001
    -    
    + ``` The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. @@ -231,6 +232,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi - Capture the installation to a Windows Imaging (WIM) file. - Turn off the virtual machine. + This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**. ## Deploy a Windows 10 image using MDT @@ -243,6 +245,7 @@ This procedure will demonstrate how to deploy the reference image to the PoC env - **Deployment share description**: MDT Production - **Options**: accept the default + 2. Click **Next**, verify the new deployment share was added successfully, then click **Finish**. 3. In the Deployment Workbench console, expand the MDT Production deployment share, right-click **Operating Systems**, and then click **New Folder**. Name the new folder **Windows 10** and complete the wizard using default values. @@ -263,6 +266,7 @@ This procedure will demonstrate how to deploy the reference image to the PoC env ![custom image](images/image.png) + ### Create the deployment task sequence 1. Using the Deployment Workbench, right-click **Task Sequences** under the **MDT Production** node, click **New Folder** and create a folder with the name: **Windows 10**. From 98ae6acebaa9816996314d2319e1873649272f7a Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 12:54:43 -0800 Subject: [PATCH 068/210] . --- windows/deploy/windows-10-poc-mdt.md | 21 +++++++++++++++++++-- 1 file changed, 19 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 68dc947c1f..d729eb8663 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -8,6 +8,20 @@ ms.pagetype: deploy author: greg-lindsay --- + + # Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit **Applies to** @@ -208,13 +222,16 @@ A reference image serves as the foundation for Windows 10 devices in your organi 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: - ``` + +
         New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB 
         Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
         Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
         Start-VM REFW10X64-001
         vmconnect localhost REFW10X64-001
    -    ```
    +    
    + + The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. From 720f7be0612bdcf121a917f6dc1973ff6199437a Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 14:50:37 -0800 Subject: [PATCH 069/210] . --- windows/deploy/windows-10-poc-mdt.md | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index d729eb8663..278b1daacd 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -223,14 +223,13 @@ A reference image serves as the foundation for Windows 10 devices in your organi 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: -
    +    ```
         New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB 
         Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
         Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
         Start-VM REFW10X64-001
         vmconnect localhost REFW10X64-001
    -    
    - + ``` The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. From 09efffc34eebe9510f5b62d2091800f868128187 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 15:02:09 -0800 Subject: [PATCH 070/210] . --- windows/deploy/windows-10-poc-mdt.md | 1 - 1 file changed, 1 deletion(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 278b1daacd..70ea6d65c0 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -231,7 +231,6 @@ A reference image serves as the foundation for Windows 10 devices in your organi vmconnect localhost REFW10X64-001 ``` - The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. 27. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. From 12690fe446191fec4f329f46e1f1971d5090f159 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 15:11:26 -0800 Subject: [PATCH 071/210] . --- windows/deploy/windows-10-poc-mdt.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 70ea6d65c0..0bc8e7bd20 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -223,13 +223,13 @@ A reference image serves as the foundation for Windows 10 devices in your organi 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: - ``` +
         New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB 
         Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
         Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
         Start-VM REFW10X64-001
         vmconnect localhost REFW10X64-001
    -    ```
    +    
    The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. From 5aa860f24adbe43bb1722b579e892830d92d7a36 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 15:25:01 -0800 Subject: [PATCH 072/210] . --- windows/deploy/windows-10-poc-mdt.md | 35 ++++++++++++++-------------- 1 file changed, 18 insertions(+), 17 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 0bc8e7bd20..14b6fecc0a 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -223,32 +223,33 @@ A reference image serves as the foundation for Windows 10 devices in your organi 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: -
    -    New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB 
    -    Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
    -    Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
    -    Start-VM REFW10X64-001
    -    vmconnect localhost REFW10X64-001
    -    
    +
    +	New-VM -Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB 
    +	Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
    +	Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
    +	Start-VM REFW10X64-001
    +	vmconnect localhost REFW10X64-001
    +	
    - The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. + The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. 27. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. 28. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes, and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. - Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: + Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: - - Install the Windows 10 Enterprise operating system. - - Install added applications, roles, and features. - - Update the operating system using Windows Update (or WSUS if optionally specified). - - Stage Windows PE on the local disk. - - Run System Preparation (Sysprep) and reboot into Windows PE. - - Capture the installation to a Windows Imaging (WIM) file. - - Turn off the virtual machine. + - Install the Windows 10 Enterprise operating system. + - Install added applications, roles, and features. + - Update the operating system using Windows Update (or WSUS if optionally specified). + - Stage Windows PE on the local disk. + - Run System Preparation (Sysprep) and reboot into Windows PE. + - Capture the installation to a Windows Imaging (WIM) file. + - Turn off the virtual machine. - This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**. + This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**. + ## Deploy a Windows 10 image using MDT From 7f90c71f372f1f598fccd71e871b99c486f16def Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 15:31:39 -0800 Subject: [PATCH 073/210] I hate this publishing system --- windows/deploy/windows-10-poc-mdt.md | 19 +++++++++---------- 1 file changed, 9 insertions(+), 10 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 14b6fecc0a..452c7d2b5c 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -224,14 +224,14 @@ A reference image serves as the foundation for Windows 10 devices in your organi
    -	New-VM -Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB 
    -	Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
    -	Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
    -	Start-VM REFW10X64-001
    -	vmconnect localhost REFW10X64-001
    +    New-VM -Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB
    +    Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
    +    Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
    +    Start-VM REFW10X64-001
    +    vmconnect localhost REFW10X64-001
     	
    - - The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. + + The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. 27. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. @@ -246,9 +246,8 @@ A reference image serves as the foundation for Windows 10 devices in your organi - Run System Preparation (Sysprep) and reboot into Windows PE. - Capture the installation to a Windows Imaging (WIM) file. - Turn off the virtual machine. - - - This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**. + + This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**. ## Deploy a Windows 10 image using MDT From d425c9fdb064e0176071d404139760dbcb4be457 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 15:35:31 -0800 Subject: [PATCH 074/210] trying again to get formatting right --- windows/deploy/windows-10-poc-mdt.md | 16 +++------------- 1 file changed, 3 insertions(+), 13 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 452c7d2b5c..9dad69d8fb 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -8,19 +8,6 @@ ms.pagetype: deploy author: greg-lindsay --- - # Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit @@ -222,6 +209,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: +
         New-VM -Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB
    @@ -230,6 +218,8 @@ A reference image serves as the foundation for Windows 10 devices in your organi
         Start-VM REFW10X64-001
         vmconnect localhost REFW10X64-001
     	
    + +
    The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. From 8a313d65ecad660ae9c42bebb3903f50c92960b1 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 16:10:58 -0800 Subject: [PATCH 075/210] trying again to get formatting right --- windows/deploy/windows-10-poc-mdt.md | 8 +++----- 1 file changed, 3 insertions(+), 5 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 9dad69d8fb..7bfe888c67 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -209,17 +209,15 @@ A reference image serves as the foundation for Windows 10 devices in your organi 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: -
    - -
    +    
    +
         New-VM -Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB
         Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
         Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
         Start-VM REFW10X64-001
         vmconnect localhost REFW10X64-001
     	
    - -
    +
    The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. From a3bf6c6be9e96aba4525316b50c6dfd01742b3c6 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 20 Dec 2016 16:22:40 -0800 Subject: [PATCH 076/210] trying --- windows/deploy/windows-10-poc-mdt.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 7bfe888c67..f17dc17b46 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -209,7 +209,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi 26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: -
    +
         New-VM -Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB
         Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
    
    From 57583442a931b101dac22398d8dfe9f9414f80c4 Mon Sep 17 00:00:00 2001
    From: Greg Lindsay 
    Date: Tue, 20 Dec 2016 16:25:18 -0800
    Subject: [PATCH 077/210] trying
    
    ---
     windows/deploy/windows-10-poc-mdt.md | 3 +++
     1 file changed, 3 insertions(+)
    
    diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md
    index f17dc17b46..abe4fb20bc 100644
    --- a/windows/deploy/windows-10-poc-mdt.md
    +++ b/windows/deploy/windows-10-poc-mdt.md
    @@ -235,6 +235,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi
     	- Capture the installation to a Windows Imaging (WIM) file.
     	- Turn off the virtual machine.
         
    +    
         This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**.
     
     
    @@ -424,8 +425,10 @@ This procedure will demonstrate how to deploy the reference image to the PoC env
     7. On SRV1, in the Deployment Workbench console, click on **Monitoring** and view the status of installation. Right-click **Monitoring** and click **Refresh** if no data is displayed.
     8. OS installation requires about 10 minutes. When the installation is complete, the system will reboot automatically, configure devices, and install updates, requiring another 10-20 minutes.  When the new client computer is finished updating, click **Finish**. You will be automatically signed in to the local computer as administrator. 
     
    +
         ![finish](images/deploy-finish.png)
     
    +
     This completes the demonstration of how to deploy a reference image to the network. To conserve resources, turn off the PC2 VM before starting the next section.
     
     ## Refresh a computer with Windows 10
    
    From 1a1b0f823810f432d2a0a035b3e6274b813a78c6 Mon Sep 17 00:00:00 2001
    From: Greg Lindsay 
    Date: Tue, 20 Dec 2016 16:38:57 -0800
    Subject: [PATCH 078/210] trying
    
    ---
     windows/deploy/windows-10-poc-mdt.md | 9 ++++-----
     1 file changed, 4 insertions(+), 5 deletions(-)
    
    diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md
    index abe4fb20bc..9ef23ed45d 100644
    --- a/windows/deploy/windows-10-poc-mdt.md
    +++ b/windows/deploy/windows-10-poc-mdt.md
    @@ -211,8 +211,9 @@ A reference image serves as the foundation for Windows 10 devices in your organi
     
         
    -    New-VM -Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB
    -    Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
    +
    +    New-VM REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB
    +    Set-VMMemory REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
         Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
         Start-VM REFW10X64-001
         vmconnect localhost REFW10X64-001
    @@ -234,10 +235,8 @@ A reference image serves as the foundation for Windows 10 devices in your organi
     	- Run System Preparation (Sysprep) and reboot into Windows PE.
     	- Capture the installation to a Windows Imaging (WIM) file.
     	- Turn off the virtual machine.
    -    
    -    
    -    This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**.
     
    +    This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**.
     
     ## Deploy a Windows 10 image using MDT
     
    
    From fbbf03a34c391f79e04661e202478bb4d354aeb7 Mon Sep 17 00:00:00 2001
    From: Greg Lindsay 
    Date: Tue, 20 Dec 2016 16:47:38 -0800
    Subject: [PATCH 079/210] trying
    
    ---
     windows/deploy/windows-10-poc-mdt.md | 4 ++--
     1 file changed, 2 insertions(+), 2 deletions(-)
    
    diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md
    index 9ef23ed45d..af78f7a17f 100644
    --- a/windows/deploy/windows-10-poc-mdt.md
    +++ b/windows/deploy/windows-10-poc-mdt.md
    @@ -214,7 +214,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi
     
         New-VM REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB
         Set-VMMemory REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
    -    Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
    +    Set-VMDvdDrive REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
         Start-VM REFW10X64-001
         vmconnect localhost REFW10X64-001
     	
    @@ -234,7 +234,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi - Stage Windows PE on the local disk. - Run System Preparation (Sysprep) and reboot into Windows PE. - Capture the installation to a Windows Imaging (WIM) file. - - Turn off the virtual machine. + - Turn off the virtual machine.

    This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**. From 792da4353d0de79789d6e80af015a0160d2f97ae Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 26 Dec 2016 13:00:43 -0800 Subject: [PATCH 080/210] Merry Christmas --- windows/deploy/windows-10-poc-mdt.md | 7 +++---- 1 file changed, 3 insertions(+), 4 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index af78f7a17f..2062208b12 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -390,7 +390,7 @@ This procedure will demonstrate how to deploy the reference image to the PoC env 1. Before using WDS to deploy a client image, you must temporarily disable the external network adapter on SRV1. This is just an artifact of the lab environment. In a typical deployment environment WDS would not be installed on the default gateway. - >**Note**: Do not disable the *internal* network interface. To quickly view IP addresses and interface names configured on the VM, **type Get-NetIPAddress | ft interfacealias, ipaddress** + >**Note**: Do not disable the *internal* network interface. To quickly view IP addresses and interface names configured on the VM, type **Get-NetIPAddress | ft interfacealias, ipaddress** Assuming the external interface is named "Ethernet 2", to disable the *external* interface on SRV1, open a Windows PowerShell prompt on SRV1 and type the following command: @@ -422,9 +422,8 @@ This procedure will demonstrate how to deploy the reference image to the PoC env Enable-NetAdapter "Ethernet 2" ``` 7. On SRV1, in the Deployment Workbench console, click on **Monitoring** and view the status of installation. Right-click **Monitoring** and click **Refresh** if no data is displayed. -8. OS installation requires about 10 minutes. When the installation is complete, the system will reboot automatically, configure devices, and install updates, requiring another 10-20 minutes. When the new client computer is finished updating, click **Finish**. You will be automatically signed in to the local computer as administrator. - - +8. OS installation requires about 10 minutes. When the installation is complete, the system will reboot automatically, configure devices, and install updates, requiring another 10-20 minutes. When the new client computer is finished updating, click **Finish**. You will be automatically signed in to the local computer as administrator. + ![finish](images/deploy-finish.png) From eccae322966671d5fcbfbb0121d2896595c64612 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 3 Jan 2017 13:02:18 -0800 Subject: [PATCH 081/210] I think I have it now --- windows/deploy/windows-10-poc-mdt.md | 29 +++++++++++ windows/deploy/windows-10-poc.md | 72 +++++++++++++++++----------- 2 files changed, 73 insertions(+), 28 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 2062208b12..3ae6e6e6a9 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -433,6 +433,8 @@ This completes the demonstration of how to deploy a reference image to the netwo This section will demonstrate how to export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings. The scenario will use PC1, a computer that was cloned from a physical device to a VM, as described in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). +>**Important**: If the client computer that was cloned to a VM is a Windows 7 PC with a GPT-formatted OS drive, and you used the procedure [prepare a generation 1 VM from a GPT disk](#windows-10-poc?branch=vso-7992313a#prepare-a-generation-1-vm-from-a-gpt-disk) to create a bootable VM, the VM must be recreated before proceeding. We can do this using DISM which is installed on SRV1. To recreate the PC1 VM, see [Migrate GPT to MBR](#migrate-gpt-to-mbr). If PC1 is running Windows 8 or later, or has a GPT-formatted OS drive, you do not need to perform the GPT to MBR migration and can continue with the current procedure. + 1. Create a checkpoint for the PC1 VM so that it can easily be reverted to its current state for troubleshooting purposes and to perform additional scenarios. Checkpoints are also known as snapshots. To create a checkpoint for the PC1 VM, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: ``` @@ -575,6 +577,33 @@ At a high level, the computer replace process consists of:
    ``` 7. Setup will install the Windows 10 Enterprise operating system, update via Windows Update, and restore the user settings and data from PC1. +## Migrate GPT to MBR + +You can use this procedure to convert a GPT-formatted OS drive to an MBR-formatted one. This procedure is only necessary if the client computer (PC1) is running Windows 7 and has a GPT-formatted partition table. To migrate the GPT-formated VHD to an MBR-formatted one: + +1. Verify that the PC1 VM is turned OFF on the Hyper-V host. The disk cannot be in use while performing the migration. + + >In its current configuration, PC1 has two attached VHDs: c:\vhd\s.vhd (the boot disk) and c:\vhd\w7.vhd (the OS disk). The VM will be migrated to have a single boot/OS disk. + +2. On the Hyper-V host, type the following commands: + +cmd /c "icacls c:\vhd\w7.vhd /grant Everyone:(OI)(CI)F" + + + + + + +2. On the Hyper-V host, type the following commands: + +Stop-VM SRV1 +Add-VMHardDiskDrive SRV1 -Path c:\vhd\w7.vhd +Start-VM SRV1 +vmconnect localhost SRV1 + +3. Sign in to SRV1 using the CONTOSO\Administrator account. +4. + ## Troubleshooting logs, events, and utilities Deployment logs are available on the client computer in the following locations: diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 6bcdaff0d0..f65acf2828 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,7 +14,7 @@ author: greg-lindsay - Windows 10 -This guide contains instructions to configure a proof of concept (PoC) environment using Hyper-V that requires a minimum amount of resources. Subsequent companion guides contain steps to deploy Windows 10 using the PoC environment. After completing this guide, also see the following guides: +This guide contains instructions to configure a proof of concept (PoC) environment using Hyper-V that requires a minimum amount of resources. Subsequent companion guides contain steps to deploy Windows 10 using the PoC environment. After completing this guide, see the following guides: - [Step by step: Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md).
    - [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md).
    @@ -301,7 +301,7 @@ When creating a VM in Hyper-V, you must specify either generation 1 or generatio
    -To determine the OS and architecture of a PC, type **systeminfo** at a command prompt and review the output next to **OS Name** and **System Type**. +In summary, if the PC is running a 32-bit OS or the OS is Windows 7, it must be converted to a generation 1 VM. Otherwise, it can be converted to a generation 2 VM. To determine the OS and architecture of a PC, type **systeminfo** at a command prompt and review the output next to **OS Name** and **System Type**. To determine the partition style, open a Windows PowerShell prompt on the PC and type the following command: @@ -588,27 +588,25 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to To create a generation 1 VM from a GPT disk (using c:\vhd\w7.vhd): - Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host. Do not forget to include the pipe "|" at the end of the first five commands: + >Note: The following procedure is longer because it includes steps to convert the OS partition from GPT to MBR format. A temporary, blank VHD is created, the OS image is saved to this drive, the OS drive is reformatted to MBR, the OS image restored, and then the temporary drive is removed. + + First, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host to create a temporary VHD that will be used to save the OS image. Do not forget to include a pipe (|) at the end of the first five commands:
    -    New-VHD -Path c:\vhd\s.vhd -SizeBytes 100MB |
    +    New-VHD -Path c:\vhd\d.vhd -SizeBytes 1TB |
         Mount-VHD -Passthru |
         Get-Disk -Number {$_.DiskNumber} |
         Initialize-Disk -PartitionStyle MBR -PassThru |
    -    New-Partition -UseMaximumSize -IsActive |
    +    New-Partition -UseMaximumSize |
         Format-Volume -Confirm:$false -FileSystem NTFS -force
    -    Dismount-VHD -Path c:\vhd\s.vhd
    +    Dismount-VHD -Path c:\vhd\d.vhd
         
    - The previous set of commands creates a VHD with an MBR formatted system partition. System files are not yet copied to the partition. - - >It is possible to copy system files directly onto this partition by mounting the OS partition (w7.vhd) and using the bcdboot tool. However, this approach is not as safe as running bcdboot by accessing OS repair options for the VM. The following steps use this safer method. - - Type the following command at an elevated Windows PowerShell prompt ($maxram was defined previously): + Next, create the PC1 VM with two attached VHDs, and boot to DVD ($maxram must be defined previously using the same Windows PowerShell promt):
    -    New-VM -Name "PC1" -VHDPath c:\vhd\s.vhd -SwitchName poc-internal
    -    Add-VMHardDiskDrive -VMName PC1 -Path c:\vhd\w7.vhd
    +    New-VM -Name "PC1" -VHDPath c:\vhd\w7.vhd -SwitchName poc-internal
    +    Add-VMHardDiskDrive -VMName PC1 -Path c:\vhd\d.vhd
         Set-VMDvdDrive -VMName PC1 -Path c:\vhd\w10-enterprise.iso
         Set-VMMemory -VMName "PC1" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes $maxRAM -Buffer 20
         Enable-VMIntegrationService -Name "Guest Service Interface" -VMName PC1
    @@ -616,33 +614,51 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         vmconnect localhost PC1
         
    - In the PC1 window, press a key to boot from DVD. The VM will boot into Windows Setup. + The VM will automatically boot into Windows Setup. In the PC1 window: 1. Click **Next**. 2. Click **Repair your computer**. 3. Click **Troubleshoot**. 4. Click **Command Prompt**. - 5. Type **bootrec /scanos** and verify that **D:\Windows** is found. - 6. Type **bcdboot D:\Windows** and verify that **Boot files successfully created** is displayed. See the following example: + 5. Type the following command to save an image of the OS drive: - ![scanos](images/scanos.png) +
    +    dism /Capture-Image /ImageFile:D:\c.wim /CaptureDir:C:\ /Name:Drive-C
    +    
    - >If there is an error at this stage, ensure that the system partition VHD (c:\vhd\s.vdh) is correctly formatted, marked as active, and attached to the VM. Note: the OS drive is only temporarily assigned a letter of D. - - 7. Next, automounting of new volumes needs to be disabled so that the GPT system volume is not assigned a drive letter after rebooting. To disable automounting, type the following commands at the current command prompt: + 6. Wait for the OS image to complete saving, and then type the following commands to convert the C: drive to MBR:
         diskpart
    -    automount disable
    -    automount scrub
    +    select disk 0
    +    clean
    +    convert MBR
    +    create partition primary size=100
    +    format fs=ntfs quick
    +    active
    +    create partition primary
    +    format fs=ntfs quick label=OS
    +    assign letter=c
         exit
    -    
    +
    + + 7. Type the following commands to restore the OS image and boot files: + +
    +    dism /Apply-Image /ImageFile:D:\c.wim /Index:1 /ApplyDir:C:\
    +    bcdboot c:\windows
    +    exit
    +    
    + + 8. Click **Continue** and verify the VM boots successfully (do not boot from DVD). + 9. Click **Ctrl+Alt+Del**, and then in the bottom right corner, click **Shut down**. + 10. Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host to remove the temporary disks and drives from PC1: + +
    +    Remove-VMHardDiskDrive -VMName PC1 -ControllerType IDE -ControllerNumber 0 -ControllerLocation 1
    +    Set-VMDvdDrive -VMName PC1 -Path $null
    +    
    - 8. Type **exit** to quit the command prompt. - 9. Click **Continue**. Do not press a key to boot from the DVD again. The VM will boot into the OS partition that was exported to c:\vhd\w7.vhd. - 10. On the PC1 virtual machine connection menu, click **Media**, point to **DVD drive**, and then click **Eject w10-enterprise.iso**. - 11. In the upper left corner click **Ctrl+Alt+Del** and then in the bottom right corner click **Shut down**. - ### Configure VMs 1. At an elevated Windows PowerShell prompt on the Hyper-V host, start the first Windows Server VM and connect to it by typing the following commands: From 44dc91fc1a3379b36956a0587ed21252638097a5 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 3 Jan 2017 13:43:34 -0800 Subject: [PATCH 082/210] again --- windows/deploy/windows-10-poc.md | 21 ++++++++++++--------- 1 file changed, 12 insertions(+), 9 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index f65acf2828..5f2c3639f4 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,20 +14,22 @@ author: greg-lindsay - Windows 10 -This guide contains instructions to configure a proof of concept (PoC) environment using Hyper-V that requires a minimum amount of resources. Subsequent companion guides contain steps to deploy Windows 10 using the PoC environment. After completing this guide, see the following guides: +This guide contains instructions to configure a proof of concept (PoC) environment requiring a minimum amount of resources. The guide makes extensive use of Windows PowerShell and Hyper-V. Subsequent companion guides contain steps to deploy Windows 10 using the PoC environment. After completing this guide, see the following Windows 10 deployment guides: - [Step by step: Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md).
    - [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md).
    Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. -Windows PowerShell commands are provided to set up the PoC environment quickly. You do not need to be an expert in Windows PowerShell to complete the steps in the guide, however you are required to customize some commands to fit your environment. Instructions to "type" Windows PowerShell commands provided in this guide can be followed literally by typing the commands, but when it is possible the preferred method is to copy and paste these commands. +Windows PowerShell commands are provided to set up the PoC environment quickly. You do not need to be an expert in Windows PowerShell to complete the steps in the guide, however you are required to customize some commands to your environment. + +>Instructions to "type" Windows PowerShell commands provided in this guide can be followed literally by typing the commands, but the preferred method is to copy and paste these commands. Hyper-V is installed, configured and used extensively in this guide. If you are not familiar with Hyper-V, review the [terminology](#appendix-b-terminology-in-this-guide) used in this guide before starting. ## In this guide -This guide contains instructions for three general procedures: Install Hyper-V, configure Hyper-V, and configure VMs. If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. In this case, virtual switch settings must be modified to match those used in this guide, or the steps can be modified to use your existing Hyper-V settings. +This guide contains instructions for three general procedures: Install Hyper-V, configure Hyper-V, and configure VMs. If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. In this case, your virtual switch settings must be modified to match those used in this guide, or the steps in this guide can be modified to use your existing Hyper-V settings. After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides. Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. @@ -209,7 +211,7 @@ Starting with Windows 8, the host computer’s microprocessor must support secon ### Download VHD and ISO files -When you have completed installation of Hyper-V on the host computer, begin configuration of Hyper-V by downloading VHD and ISO files to the computer. These files will be used to create the VMs used in the lab. Before you can download VHD and ISO files, you will need to register and sign in to the [TechNet Evaluation Center](https://www.microsoft.com/en-us/evalcenter/) using your Microsoft account. +When you have completed installation of Hyper-V on the host computer, begin configuration of Hyper-V by downloading VHD and ISO files to the Hyper-V host. These files will be used to create the VMs used in the lab. Before you can download VHD and ISO files, you will need to register and sign in to the [TechNet Evaluation Center](https://www.microsoft.com/en-us/evalcenter/) using your Microsoft account. 1. Create a directory on your Hyper-V host named **C:\VHD** and download a single [Windows Server 2012 R2 VHD](https://www.microsoft.com/en-us/evalcenter/evaluate-windows-server-2012-r2) from the TechNet Evaluation Center to the **C:\VHD** directory. @@ -301,9 +303,10 @@ When creating a VM in Hyper-V, you must specify either generation 1 or generatio
    -In summary, if the PC is running a 32-bit OS or the OS is Windows 7, it must be converted to a generation 1 VM. Otherwise, it can be converted to a generation 2 VM. To determine the OS and architecture of a PC, type **systeminfo** at a command prompt and review the output next to **OS Name** and **System Type**. +If the PC is running a 32-bit OS or the OS is Windows 7, it must be converted to a generation 1 VM. Otherwise, it can be converted to a generation 2 VM. -To determine the partition style, open a Windows PowerShell prompt on the PC and type the following command: +- To determine the OS and architecture of a PC, type **systeminfo** at a command prompt and review the output next to **OS Name** and **System Type**. +- To determine the partition style, open a Windows PowerShell prompt on the PC and type the following command:
     Get-WmiObject -Class Win32_DiskPartition | Select-Object -Property SystemName,Caption,Type
    @@ -541,7 +544,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         (Get-VMHostNumaNode).MemoryAvailable
         
    - This command will display the megabytes of RAM available. On a Hyper-V host computer with 16 GB of physical RAM installed, 10,000 MB of RAM or greater should be available if the computer is not also running other applications. On a computer with 8 GB of physical RAM installed, at least 4000 MB should be available. If the computer has less RAM available than this, try closing applications to free up more memory. + This command will display the megabytes of RAM available for VMs. On a Hyper-V host computer with 16 GB of physical RAM installed, 10,000 MB of RAM or greater should be available if the computer is not also running other applications. On a computer with 8 GB of physical RAM installed, at least 4000 MB should be available. If the computer has less RAM available than this, try closing applications to free up more memory. 3. Determine the available memory for VMs by dividing the available RAM by 4. For example: @@ -588,7 +591,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to To create a generation 1 VM from a GPT disk (using c:\vhd\w7.vhd): - >Note: The following procedure is longer because it includes steps to convert the OS partition from GPT to MBR format. A temporary, blank VHD is created, the OS image is saved to this drive, the OS drive is reformatted to MBR, the OS image restored, and then the temporary drive is removed. + >Note: The following procedure is more complex because it includes steps to convert the OS partition from GPT to MBR format. Steps are included to create a temporary VHD and attach it to the VM, the OS image is saved to this drive, the OS drive is then reformatted to MBR, the OS image restored, and the temporary drive is removed. First, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host to create a temporary VHD that will be used to save the OS image. Do not forget to include a pipe (|) at the end of the first five commands: @@ -681,7 +684,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to >The default gateway at 192.168.0.2 will be configured later in this guide. - >Note: A list of available tasks for an app will be populated the first time you run it on the taskbar. Because these tasks aren't available until the App has been run, you will not see the Run as Administrator task until you have left-clicked Windows PowerShell for the first time. In this newly created VM, you will need to left-click Windows PowerShell one time, and then you can right-click and choose Run as Administrator to open an elevated Windows PowerShell prompt. + >Note: A list of available tasks for an app will be populated the first time you run it on the taskbar. Because these tasks aren't available until the App has been run, you will not see the **Run as Administrator** task until you have left-clicked Windows PowerShell for the first time. In this newly created VM, you will need to left-click Windows PowerShell one time, and then you can right-click and choose Run as Administrator to open an elevated Windows PowerShell prompt. 6. Install the Active Directory Domain Services role by typing the following command at an elevated Windows PowerShell prompt: From ffac904057bb86124e3cae4157dacf3260c4e608 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 4 Jan 2017 12:39:47 -0800 Subject: [PATCH 083/210] done? --- windows/deploy/windows-10-poc-mdt.md | 65 +++++++++++++--------------- windows/deploy/windows-10-poc.md | 10 +++-- 2 files changed, 35 insertions(+), 40 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 3ae6e6e6a9..d34e56bbdd 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -39,8 +39,8 @@ Topics and procedures in this guide are summarized in the following table. An es
    [Install MDT](#install-mdt)Download and install MDT.40 minutes
    [Create a deployment share and reference image](#create-a-deployment-share-and-reference-image)A reference image is created to serve as the template for deploying new images.90 minutes
    [Deploy a Windows 10 image using MDT](#deploy-a-windows-10-image-using-mdt)The reference image is deployed in the PoC environment.60 minutes -
    [Refresh a computer with Windows 10](#refresh-a-computer-with-windows-10)Export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings.30 minutes -
    [Replace a computer with Windows 10](#replace-a-computer-with-windows-10)Back up an existing client computer, then restore this backup to a new computer.30 minutes +
    [Refresh a computer with Windows 10](#refresh-a-computer-with-windows-10)Export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings.60 minutes +
    [Replace a computer with Windows 10](#replace-a-computer-with-windows-10)Back up an existing client computer, then restore this backup to a new computer.60 minutes
    [Troubleshooting logs, events, and utilities](#troubleshooting-logs-events-and-utilities)Log locations and troubleshooting hints.Informational
    @@ -338,6 +338,20 @@ This procedure will demonstrate how to deploy the reference image to the PoC env >In this example a **MachineObjectOU** entry is not provided. Normally this entry describes the specific OU where new client computer objects are created in Active Directory. However, for the purposes of this test lab clients are added to the default computers OU, which requires that this parameter be unspecified. + If desired, edit the follow line to include or exclude other users when migrating settings. Currently, the command is set to user exclude (ue) all users except for CONTOSO users specified by the user include option (ui): + + ``` + ScanStateArgs=/ue:*\* /ui:CONTOSO\* + ``` + + For example, to migrate **all** users on the computer, replace this line with the following: + + ``` + ScanStateArgs=/all + ``` + + For more information, see [ScanState Syntax](https://technet.microsoft.com/library/cc749015.aspx). + 4. Click **Edit Bootstap.ini** and replace text in the file with the following text: ``` @@ -433,13 +447,18 @@ This completes the demonstration of how to deploy a reference image to the netwo This section will demonstrate how to export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings. The scenario will use PC1, a computer that was cloned from a physical device to a VM, as described in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). ->**Important**: If the client computer that was cloned to a VM is a Windows 7 PC with a GPT-formatted OS drive, and you used the procedure [prepare a generation 1 VM from a GPT disk](#windows-10-poc?branch=vso-7992313a#prepare-a-generation-1-vm-from-a-gpt-disk) to create a bootable VM, the VM must be recreated before proceeding. We can do this using DISM which is installed on SRV1. To recreate the PC1 VM, see [Migrate GPT to MBR](#migrate-gpt-to-mbr). If PC1 is running Windows 8 or later, or has a GPT-formatted OS drive, you do not need to perform the GPT to MBR migration and can continue with the current procedure. +If the PC1 VM is not already running, then start and connect to it: -1. Create a checkpoint for the PC1 VM so that it can easily be reverted to its current state for troubleshooting purposes and to perform additional scenarios. Checkpoints are also known as snapshots. To create a checkpoint for the PC1 VM, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: +
    +    Start-VM PC1
    +    vmconnect localhost PC1
    +    
    - ``` +1. Switch back to the Hyper-V host and create a checkpoint for the PC1 VM so that it can easily be reverted to its current state for troubleshooting purposes and to perform additional scenarios. Checkpoints are also known as snapshots. To create a checkpoint for the PC1 VM, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + +
         Checkpoint-VM -Name PC1 -SnapshotName BeginState
    -    ```
    +    
    2. Sign on to PC1 using the CONTOSO\Administrator account. @@ -466,7 +485,7 @@ This section will demonstrate how to export user data from an existing client co You can review the progress of installation on SRV1 by clicking on the **Monitoring** node in the deployment workbench. When OS installation is complete, the computer will restart, set up devices, and configure settings. -7. Sign in with the CONTOSO\Administrator account and verify that all CONTOSO domain user accounts and data have been migrated to the new operating system. +7. Sign in with the CONTOSO\Administrator account and verify that all CONTOSO domain user accounts and data have been migrated to the new operating system, or other user accounts as specified [previously](#configure-the-mdt-production-deployment-share). 8. Create another checkpoint for the PC1 VM so that you can review results of the computer refresh later. To create a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: @@ -504,8 +523,8 @@ At a high level, the computer replace process consists of:
    6. Right-click the **Other** folder and then click **New Task Sequence**. Use the following values in the wizard: - **Task sequence ID**: REPLACE-001 - **Task sequence name**: Backup Only Task Sequence - - **Task sequence comments**: Run USMT to backup user data and settings - - **Template**: Standard Client Replace Task Sequence + - **Task sequence comments**: Run USMT to back up user data and settings + - **Template**: Standard Client Replace Task Sequence (note: this is not the default template) 7. Accept defaults for the rest of the wizard and then click **Finish**. The replace task sequence will skip OS selection and settings. 8. Open the new task sequence that was created and review it. Note the type of capture and backup tasks that are present. Click **OK** when you are finished reviewing the task sequence. @@ -516,7 +535,7 @@ At a high level, the computer replace process consists of:
    ``` whoami ``` -2. To ensure a clean environment before running the backup task sequence, type the following at an elevated Windows PowerShell prompt: +2. To ensure a clean environment before running the backup task sequence, type the following at an elevated Windows PowerShell prompt on PC1: ``` Remove-Item c:\minint -recurse @@ -577,32 +596,6 @@ At a high level, the computer replace process consists of:
    ``` 7. Setup will install the Windows 10 Enterprise operating system, update via Windows Update, and restore the user settings and data from PC1. -## Migrate GPT to MBR - -You can use this procedure to convert a GPT-formatted OS drive to an MBR-formatted one. This procedure is only necessary if the client computer (PC1) is running Windows 7 and has a GPT-formatted partition table. To migrate the GPT-formated VHD to an MBR-formatted one: - -1. Verify that the PC1 VM is turned OFF on the Hyper-V host. The disk cannot be in use while performing the migration. - - >In its current configuration, PC1 has two attached VHDs: c:\vhd\s.vhd (the boot disk) and c:\vhd\w7.vhd (the OS disk). The VM will be migrated to have a single boot/OS disk. - -2. On the Hyper-V host, type the following commands: - -cmd /c "icacls c:\vhd\w7.vhd /grant Everyone:(OI)(CI)F" - - - - - - -2. On the Hyper-V host, type the following commands: - -Stop-VM SRV1 -Add-VMHardDiskDrive SRV1 -Path c:\vhd\w7.vhd -Start-VM SRV1 -vmconnect localhost SRV1 - -3. Sign in to SRV1 using the CONTOSO\Administrator account. -4. ## Troubleshooting logs, events, and utilities diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 5f2c3639f4..f364f7936f 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -726,10 +726,12 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
    >The -Force option is necessary when adding scope options to skip validation of 192.168.0.2 as a DNS server because we have not configured it yet. The scope should immediately begin issuing leases on the PoC network. The first DHCP lease that will be issued is to vEthernet interface on the Hyper-V host, which is a member of the internal network. You can verify this by using the command: Get-DhcpServerv4Lease -ScopeId 192.168.0.0. -11. Add a user account to the contoso.com domain that can be used with client computers: +11. Add a user account to the contoso.com domain that can be used with client computers, and set passwords to never expire:
         New-ADUser -Name "User1" -UserPrincipalName user1 -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true
    +    Set-ADUser -Identity user1 -PasswordNeverExpires $true
    +    Set-ADUser -Identity administrator -PasswordNeverExpires $true
         
    12. The DNS server role will also be installed on the member server, SRV1, at 192.168.0.2 so that we can forward DNS queries from DC1 to SRV1 to resolve Internet names without having to configure a forwarder outside the PoC network. Since the IP address of SRV1 already exists on DC1's network adapter, it will be automatically added during the DCPROMO process. To verify this server-level DNS forwarder on DC1, type the following command at an elevated Windows PowerShell prompt on DC1: @@ -838,7 +840,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to Copy-VMFile "PC1" –SourcePath "C:\VHD\pc1.ps1" –DestinationPath "C:\pc1.ps1" –CreateFullPath –FileSource Host - >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM. This can be done by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server operating systems that are running the Hyper-V role service. Otherwise, just create the file c:\pc1.ps1 on the VM and type the commands into this file manually. Be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file. + >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM. This can be done by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server operating systems that are running the Hyper-V role service. Otherwise, just create the file c:\pc1.ps1 on the VM by typing the commands into this file manually. Be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file. 22. On PC1, type the following commands at an elevated Windows PowerShell prompt: @@ -846,9 +848,9 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to Get-Content c:\pc1.ps1 | powershell.exe -noprofile - - >The commands might take a few moments to complete. If an error is displayed, check that you typed the command correctly, paying close attention to spaces. PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. PC1 is also not renamed to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer. + >The commands in this script might take a few moments to complete. If an error is displayed, check that you typed the command correctly, paying close attention to spaces. PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. PC1 is also not renamed to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer. -23. After PC1 restarts, sign in to the contoso.com domain using the **Switch User** option, with the **user1** account you created in step 11 of this section. +23. Upon completion of the script, PC1 will automatically restart. When it has restarted, sign in to the contoso.com domain using the **Switch User** option, with the **user1** account you created in step 11 of this section. >The settings that will be used to migrate user data specifically select only accounts that belong to the CONTOSO domain. If you wish to test migration of user data and settings with an account other than the user1 account, you must copy this account's profile to the user1 profile. 24. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. 25. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands: From 873af7c2a2d72a20fe85d0e0344e008536669483 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 4 Jan 2017 14:52:59 -0800 Subject: [PATCH 084/210] #3 --- windows/deploy/windows-10-poc-mdt.md | 9 ++++++--- windows/deploy/windows-10-poc-sc-config-mgr.md | 4 +--- 2 files changed, 7 insertions(+), 6 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index d34e56bbdd..7536439af4 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -507,7 +507,7 @@ At a high level, the computer replace process consists of:
    - A special replace task sequence that runs the USMT backup and an optional full Window Imaging (WIM) backup.
    - A standard OS deployment on a new computer. At the end of the deployment, the USMT backup from the old computer is restored. -#### Create a backup-only task sequence +### Create a backup-only task sequence 1. On SRV1, in the deployment workbench console, right-click the MDT Production deployment share, click **Properties**, click the **Rules** tab, and change the line **SkipUserData=YES** to **SkipUserData=NO**. 2. Click **OK**, right-click **MDT Production**, click **Update Deployment Share** and accept the default options in the wizard to update the share. @@ -528,7 +528,7 @@ At a high level, the computer replace process consists of:
    7. Accept defaults for the rest of the wizard and then click **Finish**. The replace task sequence will skip OS selection and settings. 8. Open the new task sequence that was created and review it. Note the type of capture and backup tasks that are present. Click **OK** when you are finished reviewing the task sequence. -#### Run the backup-only task sequence +### Run the backup-only task sequence 1. If you are not already signed on to PC1 as **contoso\administrator**, sign in using this account. To verify the currently signed in account, type the following command at an elevated command prompt: @@ -564,7 +564,7 @@ At a high level, the computer replace process consists of:
    ---- ------------- ------ ---- -a--- 9/6/2016 11:34 AM 14248685 USMT.MIG ``` -#### Deploy PC3 +### Deploy PC3 1. On the Hyper-V host, type the following commands at an elevated Windows PowerShell prompt: @@ -596,6 +596,9 @@ At a high level, the computer replace process consists of:
    ``` 7. Setup will install the Windows 10 Enterprise operating system, update via Windows Update, and restore the user settings and data from PC1. +8. When PC3 has completed installing the OS, sign in to PC3 using the contoso\administrator account. When the PC completes updating, click **Finish**. + +9. Verify that settings have been migrated from PC1, and then shut down PC3 in preparation for the next procedure. ## Troubleshooting logs, events, and utilities diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index 9f6e7605fb..68c3dc597f 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -14,9 +14,7 @@ author: greg-lindsay - Windows 10 -**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). Please complete all steps in the prerequisite guide before attempting the procedures in this guide. - -If you have already completed [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md), you can skip some steps of this guide, such as installation of MDT. +**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) and requires that you have completed completed procedures in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md). Please complete all steps in these guides before attempting the procedures in this guide. The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): - **DC1**: A contoso.com domain controller, DNS server, and DHCP server. From f2a667e27780f77cd0db157d3ab2b4abf80c08f3 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 4 Jan 2017 16:18:52 -0800 Subject: [PATCH 085/210] yay I got the schema extended and site server perms --- .../deploy/windows-10-poc-sc-config-mgr.md | 75 ++++++++++++++----- 1 file changed, 56 insertions(+), 19 deletions(-) diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index 68c3dc597f..fb73ead309 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -1,5 +1,5 @@ --- -title: Placeholder (Windows 10) +title: Deploy Windows 10 using System Center Configuration Manager description: Deploy Windows 10 in a test lab using System Center Configuration Manager ms.prod: w10 ms.mktglfcycl: deploy @@ -14,7 +14,7 @@ author: greg-lindsay - Windows 10 -**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) and requires that you have completed completed procedures in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md). Please complete all steps in these guides before attempting the procedures in this guide. +**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) and requires that you have completed completed procedures in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md). Please complete all steps in these guides before attempting the procedures in this guide. If you wish to skip the Windows 10 deployment procedures in the MDT guide and move directly to this guide, you must at least install MDT and the Windows ADK before performing procedures in this guide. The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): - **DC1**: A contoso.com domain controller, DNS server, and DHCP server. @@ -53,20 +53,23 @@ Description here. ``` D:\setup.exe /q /ACTION=Install /ERRORREPORTING="False" /FEATURES=SQLENGINE,RS,IS,SSMS,TOOLS,ADV_SSMS,CONN /INSTANCENAME=MSSQLSERVER /INSTANCEDIR="C:\Program Files\Microsoft SQL Server" /SQLSVCACCOUNT="NT AUTHORITY\System" /SQLSYSADMINACCOUNTS="BUILTIN\ADMINISTRATORS" /SQLSVCSTARTUPTYPE=Automatic /AGTSVCACCOUNT="NT AUTHORITY\SYSTEM" /AGTSVCSTARTUPTYPE=Automatic /RSSVCACCOUNT="NT AUTHORITY\System" /RSSVCSTARTUPTYPE=Automatic /ISSVCACCOUNT="NT AUTHORITY\System" /ISSVCSTARTUPTYPE=Disabled /ASCOLLATION="Latin1_General_CI_AS" /SQLCOLLATION="SQL_Latin1_General_CP1_CI_AS" /TCPENABLED="1" /NPENABLED="1" /IAcceptSQLServerLicenseTerms ``` - Installation might take several minutes. When installation is complete, the following output will be displayed: + Installation will take several minutes. When installation is complete, the following output will be displayed: ``` Microsoft (R) SQL Server 2014 12.00.5000.00 Copyright (c) Microsoft Corporation. All rights reserved. - + Microsoft (R) .NET Framework CasPol 2.0.50727.7905 Copyright (c) Microsoft Corporation. All rights reserved. - + Success Microsoft (R) .NET Framework CasPol 2.0.50727.7905 Copyright (c) Microsoft Corporation. All rights reserved. - + Success + One or more affected files have operations pending. + You should restart your computer to complete this process. + PS C:\> ``` 5. Type the following commands at an elevated Windows PowerShell prompt on SRV1: @@ -77,20 +80,22 @@ Description here. New-NetFirewallRule -DisplayName “SQL Service Broker” -Direction Inbound –Protocol TCP –LocalPort 4022 -Action allow New-NetFirewallRule -DisplayName “SQL Debugger/RPC” -Direction Inbound –Protocol TCP –LocalPort 135 -Action allow ``` -6. On SRV1, temporarily disable IE Enhanced Security Configuration for Administrators by typing the following commands at an elevated Windows PowerShell prompt: + +7. Download and install the latest [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/en-us/windows/hardware/windows-assessment-deployment-kit) on SRV1 using the default installation settings. The current version is the ADK for Windows 10, version 1607. Installation might require several minutes to acquire all components. + +## Install System Center Configuration Manager + +1. On SRV1, temporarily disable IE Enhanced Security Configuration for Administrators by typing the following commands at an elevated Windows PowerShell prompt: ``` $AdminKey = "HKLM:\SOFTWARE\Microsoft\Active Setup\Installed Components\{A509B1A7-37EF-4b3f-8CFC-4F3A74704073}" Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 0 Stop-Process -Name Explorer ``` -7. Download and install the latest [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/en-us/windows/hardware/windows-assessment-deployment-kit) on SRV1 using the default installation settings. The current version is the ADK for Windows 10, version 1607. Installation might require several minutes to acquire all components. -## Install System Center Configuration Manager +2. Download [System Center Configuration Manager and Endpoint Protection](https://www.microsoft.com/en-us/evalcenter/evaluate-system-center-configuration-manager-and-endpoint-protection) on SRV1 (download the executable file anywhere on SRV1), double-click the file, enter **C:\configmgr** for **Unzip to folder**, and click **Unzip**. The C:\configmgr directory will be automatically created. Click **OK** and then close the **WinZip Self-Extractor** dialog box when finished. -1. Download [System Center Configuration Manager and Endpoint Protection](https://www.microsoft.com/en-us/evalcenter/evaluate-system-center-configuration-manager-and-endpoint-protection) on SRV1, double-click the file, enter **C:\configmgr** for **Unzip to folder**, and click **Unzip**. The C:\configmgr directory will be automatically created. Click **OK** and then close the **WinZip Self-Extractor** dialog box when finished. - -2. Before starting the installation, verify that WMI is working on SRV1. See the following examples. Verify that **Running** is displayed under **Status** and **True** is displayed next to **TcpTestSucceeded**: +3. Before starting the installation, verify that WMI is working on SRV1. See the following examples. Verify that **Running** is displayed under **Status** and **True** is displayed next to **TcpTestSucceeded**: ``` Get-Service Winmgmt @@ -118,12 +123,46 @@ Description here. If the WMI service is not started, attempt to start it or reboot the computer. If WMI is running but errors are present, see [WMIDiag](https://blogs.technet.microsoft.com/askperf/2015/05/12/wmidiag-2-2-is-here/) for troubleshooting information. -2. To start Configuration Manager installation, type the following command at an elevated Windows PowerShell prompt: +4. To extend the Active Directory schema, type the following command at an elevated Windows PowerShell prompt: + + ``` + cmd /c C:\configmgr\SMSSETUP\BIN\X64\extadsch.exe + ``` + +5. Temporarily switch to the DC1 VM, and type the following command at an elevated command prompt on DC1: + + ``` + adsiedit.msc + ``` + +6. Right-click **ADSI Edit**, click **Connect to**, select **Default** under **Computer** and then click **OK**. + +7. Expand **Default naming context**>**DC=contoso,DC=com**, right-click **CN=System**, point to **New**, and then click **Object**. + +8. Click **container** and then click **Next**. + +9. Next to **Value**, type **System Management**, click **Next**, and then click **Finish**. + +10. Right-click **CN=system Management** and then click **Properties**. + +11. On the **Security** tab, click **Add**, click **Object Types**, select **Computers**, and click **OK**. + +12. Under **Enter the object names to select**, type **SRV1** and click **OK**. + +13. The **SRV1** computer account will be highlighted, select **Allow** next to **Full control**. + +14. Click **Advanced**, click **SRV1 (CONTOSO\SRV1$)** and click **Edit**. + +15. Next to **Applies to**, choose **This object and all descendant objects**, and then click **OK** three times. + +16. Close the ADSI Edit console and switch back to SRV1. + +17. To start Configuration Manager installation, type the following command at an elevated Windows PowerShell prompt on SRV1: ``` cmd /c C:\configmgr\SMSSETUP\BIN\X64\Setup.exe ``` -3. Provide the following in the System Center Configuration Manager Setup Wizard: +18. Provide the following in the System Center Configuration Manager Setup Wizard: - **Before You Begin**: Read the text and click *Next*. - **Getting Started**: Choose **Install a Configuration Manager primary site** and select the **Use typical installation options for a stand-alone primary site** checkbox. - Click **Yes** in response to the popup window. @@ -138,13 +177,11 @@ Description here. - **Settings Summary**: Review settings and click **Next**. - **Prerequisite Check**: No failures should be listed. Ignore any warnings and click **Begin Install**. + >There should be at most three warnings present: WSUS on site server, configuration for SQL Server memory usage, and SQL Server process memory allocation. + Depending on the speed of the Hyper-V host and resources allocated to SRV1, installation can require approximately one hour. Click **Close** when installation is complete. -## Download and install MDT - -1. Download and install the 64-bit version of [Microsoft Deployment Toolkit (MDT) 2013 Update 2](https://www.microsoft.com/en-us/download/details.aspx?id=50407) on SRV1 using the default options. - -2. If desired, re-enable IE Enhanced Security Configuration at this time on SRV1: +19. If desired, re-enable IE Enhanced Security Configuration at this time on SRV1: ``` Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 1 From 8e502d286562055dc3ddcb97353ca11adb62be01 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 5 Jan 2017 12:16:05 -0800 Subject: [PATCH 086/210] #3 --- windows/deploy/windows-10-poc-sc-config-mgr.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index fb73ead309..b26acbc9eb 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -177,7 +177,7 @@ Description here. - **Settings Summary**: Review settings and click **Next**. - **Prerequisite Check**: No failures should be listed. Ignore any warnings and click **Begin Install**. - >There should be at most three warnings present: WSUS on site server, configuration for SQL Server memory usage, and SQL Server process memory allocation. + >There should be at most three warnings present: WSUS on site server, configuration for SQL Server memory usage, and SQL Server process memory allocation. These warnings can safely be ignored. Depending on the speed of the Hyper-V host and resources allocated to SRV1, installation can require approximately one hour. Click **Close** when installation is complete. From ade2de217ee791aca3ad8789b514b632419bdba6 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 5 Jan 2017 13:28:05 -0800 Subject: [PATCH 087/210] more --- windows/deploy/images/sccm-pxe.PNG | Bin 0 -> 32220 bytes .../deploy/windows-10-poc-sc-config-mgr.md | 18 +++++++++++++----- 2 files changed, 13 insertions(+), 5 deletions(-) create mode 100644 windows/deploy/images/sccm-pxe.PNG diff --git a/windows/deploy/images/sccm-pxe.PNG b/windows/deploy/images/sccm-pxe.PNG new file mode 100644 index 0000000000000000000000000000000000000000..39cb22c075bbe28b681e5b45d1e54c622e8623dc GIT binary patch literal 32220 zcmce;cUY547cYvs6$^-pNGB>*IwBwt$W~NTnu zB)ng0zkq;%@XZ@n?+OU)!~-w%-aWuykm^pr2Z0?vca5$H6m`l>0U!Qwy=;0}K%gY% zzy^Fb@Oj^p8#X=y0tYGEuN_p+j}HU{FkUyWUcToKo2?hDQ!+y5>EFVaczs^cb^oiL zU3|Z-5-L07H{t0wi~6dyM|AfUq054&UKG7iGLm`lDxr$N$ z5yZCi0;!FQ%Q0r@+1eW~YknoDrYl?sePS8##%#Kj8?e<^$OovV-+fde|S@tewdb1h3$`*pRq&ft*AM&>!N;DN$+7`ZuU&IPI zLmPwUY=)4&^DqrPzqt!~zB3nxsvs_M=C>!k9L;q}ki%*=I=mSZ*dMA?R3 zT05np-Spj{AJ14RSq6TApX{Gt#u1U7eWLC1ISe=Z2ZeWiLQI@6FDH~;(?Gi2 zm4(%vSNhEzNV&h5hinX=p-*0PkGroQYS|63b6P%+Z!7lg+;V$`tKSGcCt>x>D>jAN z9lo*H5 z5A8FKu2=6nBSzV;W)Q8nb&r!FxB)Hv^u*8i{HK;4@JGf z()GF&D0)T9yv!(9-C)Veg{C=iMOw=kz1l8U80ou_4r#;Me4~FZBx5D6&B?dic^x5P z>fks!Fgv>*=IDQ0JLwH~Krf6~#~ZxYyW?U)ce&{cxNrdux37eASt12qC<=%Xv?}Pm z`gY}Ild{W)fT;T}N1Q@G5mH_!x4yxu!$E`LFF9VE7>N=!Gl_Bru|oD@l50A9tVufg z%Uy>D8Q_2@jV1jzvN%=@sq`tMIz7kB#fu2?lf8xPmlln#1#kH?RC1k)HtSS8R}C(0 z*5e}KAt}eVmqdax9rfwW-O-p>3EHkAKUL<711d9@U&41ws4o8I({^1!y!k0?c=>^! zqQ;*P7`XT}!>=kjS}IpTo++7kB5thP?VhB%_B=|;>fIyvu$I%2KA6(QRg_F`F>zV3 z=}pRY2hhsIzWIzv)NQ(2=2^CCnxiK}B@BNj3O<{pEpzrW{?PWZm^sKk2M-gwAN@qc zOFgIcxEtk=lx!5XpPrINl=*r|IE6sha~;#dXFhQc>(HEA{zQyEA6l`RbNyV(W%uJ{ ztNH3K2)0z?@4*oDM&kA6HTJCCli5c?$Va1dXl?C3EnsvP=N? zR%gcHJJ)ks-TZg`Ufdu2%6hknsBz&z)11@+s47>*+kM}tNTnc|L%9n8;;I&Dgh-dQ#zZvuKmxxi&A z+_0T1gGoUT(TqCOv#J>~xB*dSwcgg(p!v(v?Gad(Y6sc9!gPI&ufldf*_|&PS(6Sf$UL*=1)_YnpFn(&1x16($)_!g|jxw2Y!!rU1az! z*)WrpxoOtJm6W=%*JnEp5Nf_Wu3JMgm8}T_!y>6!TT{Uu&y5`1%&G&k&|`(ZDl{b- zzeY38N?MeTZ97vH(=HR(D96cX%W0_wHEO4L>cIQzW?PLMhS{DY?$LaXbz1PjpcLLb zZVB8I@KdmztxBfK_)*L_mC_*1vxNo^uoGeo7h6^RuDYMERf*_kXiP2Bi?fmCkwR=P8O}MVSBocqRpNYtt-EekiHojR|xV9S|SoWDRIufgeA4bA?eSWaHM`Nn6B_L#?m zuA|;Vam)@o(&N#MPYjJNgH;_SRb}G^Zx#t`1$|cA(|*Kt6w91X_0%7?Zdcd#@WVjn zaT|I*pCh_1dfI4u;K?XHtG#XWmnQRVaI~80pcAkcm^>bd#%Wi@Hb--aXGfO(zd1Xq zogG=Q@%e5kGO+BZX|y?cnfcqawnLggg48CiWCl{QWZi8c%Vs{m^0KtrwC6NciQ@-3 zUz5O;k+T=F#)?*DISx**yNHasX_{)9Hmssc2G^p(i5>!}dy>D8&ac3bjtg&fCPMX@ z%2{($nHRMx2FFT=Csxs~5wLoBi}%CaK$iS)+#kbRW9odRL1$nHoe@ zecHZI1%{7eDWXhmyw_Te1$J2G$!|h39oLjhw=v`#P=z$eto~J&?j_o@vLa1>5Di)O z_xZuyNatm_&RsOJ+vUCJ?s!pJmEj57M202rI(X@`%u;DtM_c6_s_B~CsFM{Y%d>Vt zsj8NjJzvrEjTuPEo4-iK{V+FW4`Ew39=PV|EUZvFJPWZ6v$p!2V!zZR$F*mg3RNkL zitB7m9M79m2eI`D9pldP&vGb&*x-l!jjS|AZ9tWVrDwH!$3}Y>)DZn+fhp@Z%3d>A zOAYMcICfvyf{%&i)EJK(fT4>s*mOO4-r6DQx8KElG?qr9Ug8{xqv5^L>ng*kP;$c3$mhOXqK(ZzUlkETd+94rMRv^9&XAKA#QS5d8BQQ|NTf}1zi zEoN2sYmd5{t^UyBu*sXs%xA8$?$N{*<6L*@R&Lj*2X=#n?UF&Qn{i5&=_xrNod)oH zeaz9Z1a{y|V2mc?>E}C4v^HZRa>j0!zi6zwrp<)Z^A*I)7SaXV6=92}%+H=d6=+_c zNOc``q^3`1fxOwx|EqX|s;bt-Pa-6X4+U;?_zjQydXed=zpOpbUsF(16zVVuuD(oo%FcCxT^Nux*DbHwCQ2G8fD_7ghh2g3+I;^&5 zR^s&u|27mz8^T8jiZhg-s;i>O(&R|XHB8?`mL`PjBbdUL7=ss@E@xI*;oyUC+1~r_-v!L3&oV%J9I*J?=Qc za(s#Ya=r=`*b)ei&xkN(xBFFZKZnh*S1`+i(ge!CSnFrq-8md zp7rP?jrGjcu6M0DpmnWz*cr1)20=bRrKiShRM%ZOYXzj4X=koQ)5b4x$dJrtExlS6 zF%W|3nULjJ2yPP5u?}o&n=(b@qA~9GSnl%svWyc6zN7vv%a@p?^-Lq|)P0WrS;h>F z-M|LeO?f|zK27! zi_~cGtYJnlairgA9om^2ezaz6TEsdrcm_PnuMXYON8Jz=FiKqPG;$|{^X3M&3UnTxdq&`Dy(f2E?DOmS>`cmjsfnGS^O2zt_bl7 z za7@o)dpDStfg_lSxo@9~&0h2e%Dmkd*;WkmT_T*}EM~!`C9O;0BekxcujcCpj)ueQ z-8j?(KxCE85+|(I=`6dfKOrsN;k-u5J=MFn#ahYhQ1pz?AgSsYR&2x!b+mcZG13=* z$Z@fWG4bZrV+G6(&?SaUnKJ=BRNsWT7!a?FtI*szzuKI^6w@LEJx~#u{r#o>=Xdk8 zDhE^*I#{!YI{G9+hgnqbVf4G)e6I4$PetZx8|gtbuXlv0EvE+f7GNjXnORSMK6=X8 zuAL1j8>-_U9%~OtKBbQF+rBcovD)Nladh(?#K1;%@0O}?>haCHhu(LuO5}TRdf3Z6JArA zoCevQ4a1~p&Q@kLyc$^RGoI5TqtY@sBfcGThqAF@XsT(`#@8H?>I@Tlm}bOTPwhFx zjJ3mNvChhhKC?Q)qx|~Td7oAX^O}(fZF~NQ^~o)+D!O-;)VdbF4>EDNc8)%yM)nZS zcg$LuSnqfx0-2?m(~Q>8>({JxD9U$fKcSd z=n33F-Ps@oJ4H!$6NkiXpPpx=jR@Xl9u8iqqGLMhR$5h47fr-&s zIEj4V8Pr?uIX$OEnjj+EjR|#KG91bEi02veCG<8`NT9=r7u~=O_Pb!~OVH4er@H4r zP?^o>qxq_cN~i^2j1$HU>f`S`xyQlxxq0<;oCp6w6}JJ0>6XDn0sio+9EYhY!LiFC zcBI^IIX{-5(>j=S$~nzbo9sLfvY|5UM%<~fjW<1h#$C!wV;WU;v8`Zu@2l;V= zuSvfWl|M^xy85BMp{=H?5Y+9h6#7M;e(77PI`0PbP}yCxHp*3MMfuGh1~hs)%7qXA`_ z2DG|nv-hAf&oLUMC{8BgP8>l${7xJx$7HaL{zpSyHQ_4MLf%pF4ar&Pu4>I`tLcfr ziVJj6{KEu;VQ!GJ#|Yjl&db@6T2192Il)QHFhnO9)TjNzD{6a;kP9A z!}SE7FFj!Y`mP$q1`;>N7&e+)2dar0+8*h zED}8tSWsI@k#m{e zh~ni)utEXuUssn)mF5|j!#7L>l21F$2kU-a!3Zk~T-=2|-e%YbSsf|C z2((2PfNxK{Q*OE<_iIs2T=axz07­2N2FdeR0=B>fN0~C3L?i`akVqbT7u_isGf?!}3 zeVWkFT5x;Yc&w?-D>S7nFQD;aM(LH!LX&Z{v-q55666Q4l24AwpR2t!_k|!=xp{e3s5>EL$6qm- zBb^^G5^G^3oSU(ot2Z9~1~+~>_gbgJu=_w!n)XdB)wpTgG^uWF^MTR5#g^*ENRm6- zLM5-EW`*{n=2D=N^PFSu(8j1+zys1>Ju#MaUJcRfqwGb9i0i!^NQ8ES0jz1BdUovC z2N6)VaMqF{@+9v;Sa)F{iKA444ccC8_OYTEwt15zKBnCfcKUkjNGAca%&*ny-|(JW zYbIo?_U!5H(C@#qR1<_BHY6FykdIS~9PQ>iXZs%rl^(>(kuugBnLRPJ1i1g$`B2M6 zn@y_=BykHy1$gC%SH~ijovo5}E*Dy68NZLA!wX~;&wSWEh*y8fLmTxZ2lH(ilL0LW0 zNBkZSy?*z`+A%j)CKH-bcMBI_vI(8eF^7=y10cRzQpou>R0eL@>qV#P>WV>?Vw}TO zX?fP&v*ahM1|LQVS;w87jzm<(1`#1TH1>QOC1B+GuRmI*IBS)Q`RhG5QY5Ul#P;cM zF?;WxVO?CXI>gTwOJ2;uZvcRB7tN``bo-b*k`C(YMgV!(j1z~I~9d)flBck51 z-Y=kZJ3(PLaEl|R+>Bqx!wB@|xzgK~gaviVp*HPvDD*NKDn9o%?-!>byzu~kdN*i{ z5T!*T7RK1AwrTfsyN+MQo)Kt2vc^xm(k};4mhzL@rQqKWw2hONDUfrN#qOuMcl$cI z*}^t>$C&7S3(LBlRXzML)KB#O5-pNRH|NvqZ%YN-)k_eNKH+jvRHs-Xbxr#8c^-vG zT(@@0At_wv=Dlj%f8L8YD&3cllxq^9NE52idycPY?6{w}mtn}?JA{DlaQTCOeMQ7) zO9VTdHk6vC@YGI+yG0zS5*ZV`#+pZ~6%dKO!D=RQ^;TFuxTGXt$^NNHKY4rswaCB4 ztsmI17hO?y)=hd#i0M+@`snu8%dw^AcId?0CUa9w86@#Xi1*8IH)L3j2y zXF~l7CxO&BzWn&?vfGMI83X-g22yr?Mi~C43y$3v$!W%wMP^F4n< z&KxQ(T`)g1MwKwE;^OW7{mO&xZ7dj79=y7($w~`?ELc**`K)Tak>dTee)FNBCF~Ma z(@5x6&l#;wufuH6{nVMk&D%%xK>WL}u*;chDxonW3(di&gVu{jv(^J-MZXgaLOn&1 z(kq00L#83kU9!&i@eJZg<@ac!nVD%nkh3Ls4l~b@;M~K=e_0s5L|exuYcc zO>xxOV|s8Wh@U`y_=us;{!rAx{<6TXhVW&GyVIDAc**9D+?GtuKu@ign(J~mPt&jx zv`06h3a(UTNt9{{ylTLnX;+k>>D+hc4*pj^x;bOuevGzptTq*q7qY9VKc0_6=)US|wi55zsAxo>RVAW~s>wL-mSRPN^h%9&*yrJg<&=$=`AD zRe#q@^ll1}Bg;lu?=0~(ENx@XZD8h(PYH?PQWmqJvHe5xZJRsT6$H@*G$XC)~8te>?il&rXNdQ`GYALs`!%^pT?S zw5{@2Q9i)e1e4E{tREFP7W|JOx`GWJzkq$k4K_6Cs5tR=nZ)&D_6tN@o^kyOthVV7 z^UWoK%U}KW+nFjCVIkyBr%e~rzY|}{;%8i-%bg6R3&__UK-%ekY&h?5vgw&e&?--c zL0ogct7%!?sQQLT7F70P1iIR4*t6pqTTPbfJmP#%9kR1*U#R8|$#wigIc&e%0|Sm$ z9@<&1NQ`Tz@k7@n3~l3=V%Q$@`7t2GpG~j=_q6s6x8F&u-|A`0A&IfwZJjy6QR}!cxMJjeMF=^}!xEjOM^R#F1A^yAKt8Q$oKL$qF^i zEzZf|bhy-1d^wugm(uHOmkMJ0%J+gdioZ1nG2P8Ltzdh_xhj{>sN{p3(zy#^$)M*0 zA0$JU@rc&iNTYO@%7$M}Er~tthsF4<{m4E9xbXus_g*=ApxmCXRrWA=@Nz~u9B}5> zK>6co$dX7THoy+HGQ?UFEc=JNYZMR(583Covhh4KtlTm3&Md zgXiS*o6>XIo;nyZwkqgfIz9yo+ZM{VKeRjPmF*RTEUr1FSkCJzI&)Ldd?aAK;v4c_8EjYF z8)Ifqf8aT-O{|a92Lm|fuTQO-Uk#><5;OvGunIy}5Sqs5%gQpapd{mPp8J%Y)ej%b zi5YD(2ZpNepVLLbY-94g(XgLLb|)hq5NZ(R$E{tPI9_)!yMe%agH-kTTO)Ekpyp+J z9^uJid3QOXe{VuwGHK_sn1HIdXgs%Ew6}9c_o%~sP;{PbHf?zG8Tglk@rXz;YO{ON z_zEn=95MfHa&;msphIK<>y!D*mXP$yzF@gs{@tue*SkD3gKM88eaK$;Dy(d;gCN~= zN}tBkuYz6I?J}T0XkBvPsyocz3Z1d|M-NO!idX9QjfkA~WG-s^V>y|=CiF?MTIqxZ zYBFLx+jD)_tVCato88}%=Fgjb3cB{zIZ^x7Wy{c~3VL|oXs5fJk;Jlwy3B;6FyxOe zW47zms}A4fTkI)szqY3}o0pcudpb)Y)f|Ztzh~{P9|J#L^j%krnv8^>=l&l~n7-HG^SfP^W&);^G^WLjf4a zAAYes_0W#%bMm{^*T-F#r#UMIo^s+C^R)mmYq^M=QjA(+s|PXa|h(Z;BUM4*qN z7Dx{D23?NX2!)A~@!10UoqE4sYr-kgQszGDk-M$VR7WYJ)}SV?+=`=oM5St!#Yk|8 z>(%L1V=51oZ)X?Meu8OqU+ZBa90iJf>e;Sr3GwG>Uz-ZM#qj4d?@UT0Woust4yQp= z4@UO*mcpM4;yX*@rX*-iMJr+91|sz1O7!JMuN6wcdUq_yB(_53SD#9FJP*`l;JN!k z*1NeA^e~V)8b23SwejP?I+vAGsW3{N@@Kd{$KB{1jw70z<4Ko_B+0X7T>kA6S_zad zmEm(LNyg{~$?Ei;^fa9EpcUSWQR(G^IrzN_7tS6#0xvr0ik3?NSx}qq#%9mkuBPum z(Z8^!Nvw^vzNNzTMOFer%1L%ZVz>ks^O0-T-;`xO&Z4=EQX~hG1L*Zbo_;}JbctU5 zm&kX1`7|{V+Jf)}1e<@a1@j7H+dfHio}hJ346hGT zmkKNxe{NoEBbCVkRm(5h?$L=tR0&y zeAn0zdl-)HPl}EL1_%8NtQPbfcYr)Hm5B}PkGrr5P08_f7yB2mOovu1QF^mIzaI@& zyB)MS{`zIDp5G+8OJ9p52(nF(Zw$9=;14NiAk`DlllP3N~OnI_dBg!B1{&EdN>G`Md)+{*sX3ALB9+UxT_)gCNzf7s#V(>XT1 zCRYw#mi%i==!s+PbdBQ+$5Y@Ed-!Pn=32tKPg}q!rM@|!-~PLKtG>PETo($BH~Hu= zr1I}M_Ko=Gq}h95*Im4|U00;x3wK@&mv2VB^BnyJK5c;W;Z=So_lD?*U0AWPcv`Hr#q|XyaEq(4yu~qHZ3ssh^5X@zplQgbtC!$~8GQTcW9YP#|Cpv!I8-`15<|P##+Ef?YAoo4h(ukx|A$Xz zYlW0LM=cC}zmgD~j8Anu*VK5WF06-U^&ieeSE>uT9?=|h#^9_F`?kr1ZB#NknF3ZT zqn}{t%vSBXbd1T@2Y()H{d=WF0pAHwpB^QGpV0rpOX*5w{tSz{&eZVqNwsGFwDlru z?kb`@O-@23=`?KYZ9jw1#&0%dpy(T@> zQs|RJ4-2xz>nv~ev#PgAxIiFo4g@&dULMJTuRON%)MVnrhlmI$nO7`a4 z+O7xj>q`nBv0CNX+bYYxf-Dj)Xr3>9wBacDTdEM=;rH7~4^`sNPc79DXYPCADELG# zHNdZjw){~1FHGU_Z*I}~;K+Rlgn9`$6+5w}S-A;cFV2XrILba2ze_;i^L@9Ddbrrb z9);SXch^0k3Gjujy|<<<(No!v=_;#}y5XvO*ZXcb=4dInI_Sl)d(zyu4)YFiUL^=} z*coJHf)wHt_=NeZ`wmF*kwZ3HY6J*9MW{rDPj!!i`CR#-SR-*woZ-FL=@q) z4+h%Dv;WqNi=)(4o?`H@Xj~SZx$hf0l@J>fv!XiA2C;`SlBiO4+Q6_9a)lx4cvQY7 z{!m`)ajOJio&rM8Xv0#p%daM$OZ{E%r*^%Z`Mr22@Z|I3?2vz|6r0}tyP>I0S?ezv zap@o#kSd2}N(g$hJe3%I@gTu}iW?iRBb`D~djFI$9{Kk5@1Fh~>;B(rq$a~NM#vQ6 zBdbK)+>xoo!Xl*Bee|cdWsq8>v(p z=@mWOqYkz7YQEg{M}XEsfPg@|nym!wkA}A@g?J{*>Hchuv$JMQtYCsf|6#}nqbug1 z`aR&3GvGH!>T&X=t3}4p{=CSOyyOO!?x6+6Uw8Igqt>eTZj&AOS$!bmZ z!vg{W`fhNj#bmi@f&Za_usr=aH&MmqS+g3`{c--E`=oYQCSDPhYepg5zOG)6%CdOu z5tr$C3x^sj%vQmE=g1`5NS+n=9Qif`ZhB?*x4(~qNZ#;=V|vA#&lAW+;~+$$L2Ep* zuKg$INsf1)bxGL=zZ9b0s{y)bsqcux{Sc7FC;JJ7<+OP-qLw?dJ$PZ#K6Zf^h%EALge-5BL_R~ z1iG&|*fBgw2m3-by)%Lw9+*s2j?|R|R)9C>P#okuB$r$5dwFy;@U%T5fkF+mKe#@s z;MBYEIsk&R)4l;IDxB`hN`i&8&-&~X_)P3hO@~*6!!b^0gpn(n0_YnphTy=rc8H&H zW+TM!hFu1Aw?cEnEhic~-D`#=ce`%f^KgB#)1n&z4i+S;`jrreS(ZE$zO7GLwaH>U zU&8aD5U>Af(eLVJOHH6K^Vsa-qFiZ7Le#ZEaK@L;C}*;ccvI;k;dPjFpNg-00St98 zN!wdCpDA6rj7G3!q;X0yMywt}0%9Mn%wKh!RgzBZq;qSV;5GAS+a*^L(rde907}BG zTn+y!T(a4B^=laP_kFsEJ_FnD9jJ8XmRxv7<*c#qNW+_cL4*swR4_L=W3uS|A*QdJ z##Bef1$2%>BREV;32ug(qq5~jPgAU;6{9CKQ9=f=B>KCKmg5+=;O_)R{%~ir3(Jz8 zyD}KcZ(0*+8-_kAD$uqkx+{h0#Y94m0ih3XsUX^`w-AFZYI8ynM?oUr&672N$jBRf z!vlA48|@BIQeSJ_Upx%wJ|8!kd5yVI>Y&ptZixlPM@#q}OiE7vu`AtQZe zY+(2j^6N0s1ZFWf>Ccyn=!(kMfDir-@zSNMA-YQv+z^?iS~Yk2u77YOTh@pr&~xYh zCEU};S?ZRZir}iFW2${EgG@TKDxy9YkMaL6l99au){xQ(5IUjP0kI;%Z)byt(kw2w zrzo=rp63U>ajvx*eN2pbQqUTKEyZF$r#bTI13hojl~ZScq%-Wt#Jc%EJ@zilp+%XFR-H+&~q6TeH`VccZ2Js zMb6xYV$=8#uM`S%kc%dlXP-k@>+o&4@DHO8Gtz#P;8YQH6<0C#NZuJfV4-UtQ`o9r~nK#dFmruHVFwcTyS zBFjN%6-jA(y9Kt9TqF3{KPW5}_U{I5T&O@Z*9q#%AwS(Npcja{dSIJd6cC6q{O=q8 z3nT|nTK12>{lw2s|HV>N6o;b5nxb}zwryJ%fovn>J7MR>+edN#uwsSAqDAv>7C*)gcGyNuW^w9wKQIhZ30(QBb%R}di zqhw;~1KU}%@(d3Ef3vS0pxC~vsL=Eok2Oj)6w&W}s+)0&q99W1TRVdJfwoY)Sl ziN55;mDk#|$+A$;=NyeoO}l&9;JnxJVy2be$FgFB2yfvX_fG((&^F`0_YK#itkAcc zsiAWxlIFWt!@{uP&0Y&$PMdF@I-dS5V#5C|t-LeDm5oHoh@rE65KfwI=-`kK1=O%R^)^-?E;~oS<(3+b?d)b#O65g{CE5 z7mlP+xR_z-X_eDnkOfZ=492;&dd=*Rp6jm;yXoegf$l(j6-+*a4o{GyQ+vFo1dwHcn!=&MaYs`;ByviKXJ)1t=-8F&UYo))R!|+}m)%o7kweID)x@qE` zg~saMyjVH@4*o6_-uWw zqGZcmliQ;`W_w31a(pkyC1gvO-yY?V*rJZ{Tr_S4v$ad$qI6-1Hh$5Ito1QW);C!% z(Yl^(>j^Crbe_7L3;OeCfoERl2-k5oxU#2GBsW?)Nw6C8W_jlIq>Lr+_2OLh`&vax zIo;ifN^DQ!f^R7P`kT4{Tb*H@=W`3V6L5?_5TCYUv{37u#MmRbyi zpa@#Q?qdgg3p_gmz(z-oX~7IJG+zV1c>92#ntjSfPKZ4z2J;T!y`KRF=s>isc##-8g-}o?*?J#+TQcIEj9^y zv@ihh#cD*yBGhZ?%>g1BSzuD2+$#~5rAE`B&gqqur38Vjv%WGUV!E!@q-rGll}PLE z8r5Y?z7MT}6Yq3#%&Ug4J3g^le|uT(Q|lN^o*OX_v6^51Lm+tvfVj8vG6VAEb01Np zz(L?SINUT33?8puI&@egl`iJ~BJ3|P{z~wVH=EuX1)Tkx_6d3#Z@A)oXz@ikWa)Y( zVbYO1%h^XVXtrFkOj2!s$40QOrF6(vE~6}U6nzR7c)CWn<=P7Oal~gs=J-8jqeUZ! zIN#KXMd4g_7F8!S-NGR&2OXNL*jzZ&7)`NGf*dJWGp;?B`550Qp|9eK#Z3?EzTP>w^Ex;Z^<+JY>(Ehu2-=(P>?$K5gU>;7_7<2)uVw zE{Ds;L*?8gBxt*H>(cB7zdgQSj}Ulv&h`Kjx_xQrZ4Kc4{@w8U|E&SU`ceEm>-EF` zbK}t`Me7qQ>wT1B^=GZcYjY9JVT|d?wGw15Tt7WTPS7=gZa9MQHX!GFWNql-63$l^Zx;!{|Vh|xyYTe zmR9k#tCbH`d5e`(AHgbQ8SzycZKK{~RvS38 zIEm2fG&3a~;YoZ=hGuz0jx5{SP9-P&@~_AWuJDagH0;}wFQS@ z-3yw;&T~=dxoQ81IUt_DANtMKpP~?YFLH{LwG{+ZQt1_p;%}u`J5p?u_r++6q0uc* z8-+qtMSf-Mc;t7l))Ltqe=}<0K%0VhQmaFdhZ1UTvfo)KR(-lehm%U3#I6-x)A57* zS}U$S)k%m|O1Z^w^)styrz9l(idcMIanRfM&Y6+MaXL9aE8nZJwSZ<%4Z{GN-hRpU zfam`xt`BVl+3m8Hu=jlM)!#knt5)=9aHIFViGx16K1X}0zYr5EP~WJ=d#FKQlhSMj z9v)pd;=aVPbT0A66}2I#CBFQ~51n^xT~A~sdDy*4x%JA2v#hhWJl0mwq}l9`5(2`~ z$o~r0qG-j}eKm6G6kz1n&li@}*CxUfYSX{WG2f!c`%`+vdVE>F(JK{YrSTJZq_y=i zMea73rhhNWw~t03WhPPQ(4Lf~_kt(ZM0#(YA@8e1C|NeK&3;{> z(s<6ke(Utr!PbRCbRFH%9V}oQ)dYb9lVGO5e9y=PBaEEN9*YD5w#O&qKRwAcq>5iZ zbMC+(+9J8}ql4|W^HrK=Mec5H8|d4a6%}Yo3<;GkBhIrlaa(M7t3ycu5Zn4nm+HmH z%UM5@zaqGgSfI+XtMrePLupOTwruRqr)Hjm1%zu4>@~+wsBiut(P&vfkt(;n-h5i| z6^&2oNftSe>`i4=fu%j#ZR3#jKL6^d_@@51hgI$0TOXarqMTdG2W3ai1q6NozqfL8ckhrvkH<2*4Mj9F%<{-^ zVc~BdO^@U%B9c+b)QYqaoe+dlhM!4o#RDrVO9y~`DDf2#D1HNMonm=i-Awy*cW9sf z8;+n_WHh|J9W3?MCfTA(BA9zM&)v2N+lN>BB-@Lwg8|Y5^n+DFk2z#y_G3VXSCeFj zjXrNY&S8M)3!SK5b<-HOybB7v6_nft#Lq*y?x5ew=+z|ekHhTW(c(CPFu3jnl*`YOSPjFh@P32pH&{BSf~P%E_wN{uc9Nb79jxF~=*5 zMow#;H)(leCbqth=?WiJs}9Tyim}+YFw^L#bg$Fi9sA$&AFxW0va?-P%e~`E>W%!< zj=Mj;+9mL;(GdAlxIp5rdTtkPlauiLr%=AP3tIVKxbMf zSkVSR4fpeRN^3EAM`yrr?`@jsSa|d`{p;BKt~uzf*{2L$(m6s}m}-ne78q7Fr8Dp2 zfN|mZ{jbsp^HkH9=*xe6VKF35|Or8C#)hDexQE1CZ zNS7oLq_1t%QL*qhM2#e=#>i3!TQtKH!WL928Q@>^ytnyT(AxY>CvHaPKyWfVaK!3V z)`bt4p&bIBPrm(62Ta%ns$AM*J%hjI8}?Oev(B-mC~1tOXAWG5gNSgbt*<$o?qxAg z+Ysjxbb6|t1`V<>vv?&`M-bl80VX!qrB7MWXs-Aa@k!x75X^!ZD_ZNKUlLn+4G`jr z!Wy?aXi=_&n&ZGXm<7(cI-u*!@41$~4u-;yp&0{lVZ=fA<&q+>TCmd-hl322b6iaP zT0XFGdJ2nE$!{I#;NHj_iQ337a%~r{5*A;<_BJzX{(GuvUt}USU)$%`Ng$q$t5)36VGjZ;@)aPv zEOnQAEo9Y&J)p~m`WhDcpbTP|FU%wAS=Z0@ThO`n$*F>qRqx}wCWM-%y$7);mo42< zHQKLAO64?8`>g0ae6f^Kb$(5l1${kLWD!fb(_^mW=p|=E9`uj$kd~^h8?NfnaiY#? z{**e(;bH=N=s39rcF*ZibIaOIu0uaA3GZG4lY7OzUfVo!TFV8%d`AHDUjd|O_S?mu z20L;Gv>!YX22khLzkHy~*ynJE$JN_3^Xc+qw0{^)pZ|~4=Kq`rRT3!K>Qw_SWXqPY zT25^bp(L;vEO_GOp<7}=@r#h+XSXlKCtn_tx(X1Q+m{G-Q(hms;&uoQ75!YiGxC^_ z;+4JcfLpMp0ziSEtr{N4>+Crks`>o7^uHXY#P=hw8h|Pq_V?E|QGH*oJcnP~d*Wia z8h+o!(c(v<{SPd{;UO~r?&f~35PJ^DjSS{yBT{#Uig^bJu`5kog16%DqkUk>$XNEF zD|>Z-(UbdRX=Zx3z06g@eteOVn6t5B!9uCokX+zcfoZXfYDz+19ih(jFni52ZRIY^ z>UGIcgnMyGXo-aueyBZHcv`OHaesM~?#n}0LjDmZKg^*mtp%E{5z%^%Sm`aJXb0q4 z&?>GlABx?0?Aqr)s`Su-kWlZ)w(Jf~B_(GHaX=|)4sKl1Q{9XL=3NJL)82a!3C#n& zY;|j`VK^)|mD(rHcE28&DKFeH+i&l5qj2h}I-I;|pJd&*>H~%L!%aUK?maOM5VH5R zgbUUtNhej-TmR%Ccz08PP$_qIa3E;glQ=q4&UEM3s1RN+u!@W0g$pd>NZNxRwuLtX z_Qi!>te`OsiB4MmZnVOid-%^OqE|eA(gxxtk&fJsJbNSo1? z59|&V15$SYy>h184cPMF`_RKz_6nZ_Qis5O_-`-%y}R325D)zOyTCsmkWiMe0^|*L zvkgT7rf_DUjJhx$XHF~u^Ot%$r42|p98*xa)(>UVHc($lof+j;+YGr6K`PtIt%2Kb zg$9pCC06eWDgJ2~3);5P!G{7fBc=b9HI({)|NeQW=(^8opaWDx=Gn15l>Nn@n?>XR z$jiyb2hg58tX)pf<6T|zh7Sb$#Oa!d&cG;o=MY65V7mu=f)sPPcI|?f1ntwae=puedT~)|LeA;3QmF#zH`g>hfT!IEXqEc~>5aTU+R`{* z?IY~N4qa*9M@jt?A&i8SonGF&EHRS_u=raCX3Z)U?HYJ>a~1A`#^?-PnC%p_Y$nD! zaJ_Ffh;eMIVpj}fAI%Z@n-|ck>mE4c^GO!&moCk1)mdK{=O{WUHA+pVtC_WiqS6M+ zFFS~|g_;h11l082UP|ic$5K`U7-1oJt%U^fm*Osiu+E&eTi1(!U6Khds$yMZ=r&Pn zD!XLfaLR37i|zXi$^cK(U8bTWhh->x`yrMgO<*1DrjS)n(Dj zZk>+Sho__`wdVy~s;zFn+KTq8(z5#R4^atr;-5p5ymzKJw->;x#ch>@Qu6&|D8!>2 zD@&NQmEX+1w%0z(-!Mv@e_@=DYgd(Aa5b|w8DfW00#t%bKT zT^n_aoBkKRxD~-WAS)`8D(WGn2W&VC{_Vw$CJuP~T)(_?>r-Fyk+%j+@eS&N3Jmuk zYd$m7dG1nL76YX$JshuNiK#eE-jn*Fp!JG-Q``-yH3yZs4P1;cWG#IkSb_d14p{w}oSKX7xTSSvdD z)$ZH>ar9_Az7$^p{TqJ&8{PaL;5P3IK$fcQ1wg<0%Rlxd`~Tp(k{XbH2lCbu;r*Nk z!vItqli+;`239_2KP6QF_$LqL|1r1!39P6|QU=v$t%jbiB}Rn<0eU%*phuuAJ^;yi zs{-f2j72Y{V=m(VHZB5`e2Ic@eH=?Fe{E@5So3E$0Er`&Esu-I>CLL=GABCFvbW;! zKSNDj?68AJ-C=Vub4(BCMBJ zQq<^DHf&qD1(M;id+1$bC;%2u1F&eShA&VwZtUy352(9dd!>LHd=w4mA*GG~$LC?slDhjh&YlZ)Wk>uOG43o=#vp zkAZsT;@8?}?vdm_{=C2!F6g_|(F&G&cc$}Z%){h`j_tw49#swT?%0%g12XhzwsjKYE zB&9-_gsgKRscfOKhM2NV2%)i73dxd?eJP>LSSI^k4Ks|bvW$H$F(!r)6JreHJ!k5^ zuls)9&;7p7yFAZdw|{(`&NQKCWw2+L!-m`tuhhBZ-(jMe{WckF<@19V?#f5v4hjt#gvGmfa9?}bldV&Z zmyW7*FED=NZ9QlPZE2`ea$B%TYsW_hgU5TvW7Vx2OO?XD@F0baz=ou9?(+r3aZfG1 z-(1<#MMAoZE%wREEB5Ns7UF$waAC3wI>_@d8MKxfW2mgC}eAPF1-G#jOq*JKvdTSXM|0j*kDiB zAxzxCOxsmuB->d?K8u>XCa8G??{2XDIaTdu!uY4Pbk)ZLjC=6lM&Bf@Le&yfic{@@ z9=Jh^xHc$yW}qI1D{O(0T8L#LLqtr^v-D4YU|!DwS#gPu+lNg+M(*v_J6*8FC0=F` zjvowrSg^n+iaZ&_9C>n}dPv;F-W6zq%GuhEY>aRHd8W?k#RcqWJv#A5ZukNk<{+~l zD7hgdh9#!q59-nKH7aG<+o_J(U$EPM^xCVa!R?jj{VJwb4LYt?da#1N0x$pRepu6S zE#i$Z~buz zMq&1=Da`Oj!jp*Gk3YF^G+w}-q;ipAZU;n=K&Bqxrk%R%aw8<7^N+nft$_LX|5X1~k#b>GBnL;nT z*O)=>Lb~2M4M|G}VgqK*m1g*99K)LTiaKzx4acei%3kH@^ew~iPVG0`7;Wy{u$5&* zn5uW4{_0!@cDhya&$)1uqaZUI$u6HRz`=_h23TKO><9g!$WBPsPSS4h8#JpuT(dFG zQod=BA*{Q)W#v>hx-bOpZNmE9jn7rSyJ+gYUX_$$bIZ@c`!RKle&_`bJJ7GXpq%*m zNB{{PWOC0S+`60x;XJAALSVn3D`*=90yt!M$tNc8`+JtGAScMfR9QX15t+5b zWLlLzRzXdou=D$OTFPkV8+pN1o1G5??t^)q^>28dF){ul@OJKsDg2XFn$XrG&CFO} zyp>~4l83QTxT#)m`Qjqk)?>_A-7p|4%GJ&N%Gnqx7^Pxi{RxI|YqG5*;dkzui?=fn zYem|q!b#$QPFWY9^356HVJ5sd8P|A3aoRczZ!LD+!95?~Qgu2BJ3TR%5eCMZ6+9Fb za4AX|RsU8#qkaKKr9u=|Zuwfy^W?GIi6Zq{hTTegU>&R}iyLd9#^(XftGMOO@i69( zeqozx$J;q2l(%gu^-!+ zAGOM2E~zbr(;It6-15ArO*B&)K+RI0vBAGKb#d`x&sI=?y(D|UsCOY7WkJndw(_JD&PHfGqcQZFUAt$g)z7+N1D<>G4@L+A6+Yu3e zF`)EfXA1T>{Rn*@*B{DmCk7+ngUkjrsxfQ@OB{AO}ivOv^nxajUAcyZ{t ztt~X*7c}jW_?Zrg^^FTwIL+8-=h2d>&szcT94^sl_JT$V57Arb&9h~VRKMkb=fY3o zNvC3T;>3Quj|Xh(F6TLq!`t!X?gn>t!$GM3qlx}NdDB4MSMbcOZ#?bWkS44Mkh zwRB&7frl~lS6H!HQ}yi;ag>(*R}TZ2@v?vIRvPv&b$r9`=?pIiJ0?{x{XiM^RWH|T z7dGu9=$oUG5|&{@F!})LOgzwP>bgDS#H+g84I!RtX-7Oz4oPiyG5%tjM_%_e#EmY6 zTTY*v*w$0c{gzqZLR)@BLT>_$i-6r+_m2aa5-E{r=diC&PIjLz&i=i}{A%#|;3n|1 z=m7cyTdm=0#GS=ObO^6xS?_vkko?n?CgKblqmXLn0Kfzc4@wTdm(r|@KC7nx+wMn&8oXRMZf(# zEt7nj^d{42vMeSwzW za;m0T4_X%Gr|w;$q?X&B?3f;V#0Wshn-QxM2jKG?PXUIzLmBS%73H&ylK>EDwY-$2!4F_-ooEaeD#1Yx; zXY<+qy}p2)rN3l-PF-*n(1fmPs*m7uq|X&W*$}qTlXAH}Us?yRiAP$EnWo|S+~Lf} zh)sk8qXG^ZqO3HqTmTyXp#_U5FPK-!3LcKvQ1@?e87=Ex^KsH#+c?sC6$(tp05UHG z200PRN}4*-aF5Va0L7WMs10QZe5L^Wl}@(KI2+?E!N{wgN8H&+1Vu(SMWi=aZy$V- z9vXdF`$A(;d3M1MbSbs=d}3Slv|M#*NBQ*Q3P?P&&Q^>owX!Uy*j1~nm&6zM^vB%j zdNp5{+)5pxW0c8)t+tpMs{3qHrpEROz*f;{)l>w0)*3Gr78oSZ<$A_hVG1qTio-n$ zGweEyb%-@Eh8BkmC#GN4o}9_|z4O z)%GL24d!4Yx#PUw(&A+aG@_ez2AfOuQNaqsjFZ z;*R1)=bbJc&y#$r_*BCF-7>dpAMQ8wM9ozCv1#g9aboR}01Y#D$1uc10DYMqm~uqY z(`NUGc531#34&|zoxT{oDI#~8(pahC`7v61022&oN#ordy8%YU@7$#-j1mG=>@|+4 z%mUp9fIoPEMAd(Vn*UE25gwRL(892@Ld&{~|HfQ#Ra3rQ#RK)Dy6LgPn~O=Tvez<&|C>J zGH;X9TQp0Na;|R&&z9Z~Jo&pO@6AvS8l|>339+FbIC`eC>YZJzlY{Nq(!gQ{MLD`- zHN9R%axhHesB%4E9xX5a(z&5Cij8kxm4}k#X3e&LnDv;kX3R7IV|3wnX*61VH=27f zMY6^GqDo7J37fQ33M8gV=IsD?tQvl-QVAP=#Qzx_{Gb{XK;^KLB$Mrc)xY#>bV>-3 z>F7^z2&!L)Fp?o)fDZ4z@AToHD&_*{IdAYmELQD%ZSdxk+V-80FGsG(pkr!NuxTQA3xs^crAeoxlUlXwiPjU= zJ3PMz-vNhHYqr1K`5~_(| zrC4)2A1N_2-|gAEgf}jWE(|XO5iqMaupIj=9<}=9WUf+iw%?U=hPrbvNz44V5izm_ zNf7rCotjh_T~zBw_OjfPjUWlpS{Pm2<&dyM4V@(y+NhVaHBD11ReZ4N3Ro9mrum^f zF=2VJWJvxLohCcaY!f00z@27d1{(d$+JozdhgZKZKGH1@8Ps?ae%(}z&`Aks-5OmV z*HP7A#rl2=zZ<7qj>wH=b-`cM%DG6xXy003urq#_5IuDv8{M#T1`dOx(3wOBSl(f- z8>YWh^+qne33q#}rl%d(^83;4;VZ|%zl(L5f1-V|8Wgc{G& z+|xvDuhUKn__X-Zms3iAckGdG2le$hEho_NWYj>WwOU`pc*}MAVdmpb+@r-3d_c>? z8{=p#4V~_{Z}FhUR>1Y-`Q>M=@W1UNiz36!(3kpRfgK_+@I&3TR$h z)s!E>J^PQQCjR38!qjLToogsY>D!c1V7H);zztsb^V#YSU@vRe2n4!ZA_R1#weF|E z$(W*0-DO>XSw0O#7z>L@MgxI)c4oygpr5gql`+jmmZL&=8P z<9HBnkbjDf>EM2BcSQvTCp!^7lpeLZ%gR4RF?731Yk^CAK3Rpwqm7D%WqDFqn{FZppyP-(Vw zgXV!2FzCqeG4mTVhhXBOZgrB4;pLBzD z_WA#f!;)1B|8Kfop3jiQdJJo)`%fC`s9MQP^qpeA2xk@*=VRV(ZjvDoK|M@^53vQE zA3yVYLuB{gLnT3O9~=A9p-WD?dEnZAU5(Zav;k?;g=rlbit$4pO&+DnD8hCBc*Hi7 z2vM@W?rU&5@xF6B4tj|88i4wMRS>;ghp}s~@fz!B(cle{ zp}sJx|1RY>&H^p#?TQ-78|cKa?$93vAQf_6M9Y|ND)`FQnc8ueULEFbTH^M4qPMl$ z?WGU@_*_{~JjCyVQI92v6;5kI5aE&=-;r^Q0W)<;R>$YrPBT_4V&&oXZR%pvKv+uo zSP``%cE{E_4&tb%Q*266L>Xh$0OH>5)u(Jm1ls8#^EP+Dyf@2T$;^m1#qlzO z6?h!&p?C0$nOOT#3+`2W^8sG}`oAmF~{(O%&O63se*u*_Akr+}O z53WXhf7hy}sTi7r*c{i7ub*zsEcQW{6ST+DyK--}gs%B_!$62+X32dY=_m_F?g{7B zC}`YUqDMS!J87C}>+1+k_;RK#tsL(Q)rlO%kSUW4%aLY(}2l2LAgxN_tB8eDfgy-eqf;yYgj83OY7E;U^LHu zpl>}Jp*`?Xn|)s1)jeOF>(Px{q!@6E&|bQox0Lh!xE0}_&iH5;K_CgcMnidCH{n}9 z@r$H7r$X{hXqJ5BhOB@1s<`9&-OmORE-YLkB4ocPU_l@=fWZK)lMr#q(ds#nf=L_@K(2mGP$GY09+OJP(+?)3(T z#=s0VU;8o0huqA8GH6h< z%~e7Mj{*>!>)YWS3Q(GHlw*%xDa4z6cB9&$QNfQLK@Rj7x8h`C4R1+oTB3QeP zah`2yU1zyByFQZ`Iyka>6=)1O^W13v>+q`>+3Ws5t8g=$P6cG!qg5$ZIrk%=7s=lg z;;3`{@_R$mb52_1VRwf(4NP#qiJCf1{S?75#Ork8r#?U_q;8*ju<%=SK;-?upZ5z( z6~X-)B?JwO#uY$YnLqgJKVn1Xk8_Q}TXoOy7&Omr9r&aaHAPw5u0iqYdMfNLK;Oko;x9_BlAWoQ<3{MdAzg z8#~APB4eMVp2T8tHn(cJem^`P=h3-P^wvG=tPj9r*lThP00#g*!hy=vt~~2hdb(wC zjB|XreA(9$msdq*WCCt94vW1-+IUhuI8S|!*Qz#ODv20dA7(GhITJRy27(c_yfJ&F zF$Mq01KNJUBu};I!T#wn`=##U(x)3{Cxp`IbF=kL<0}1OqLi8m^gWk7Lcsg$B_9E} zKS1g8gZVL6S(jH))volao58T6nvY84=i#f?TzGP1b$p@(``&)`y+vYHwf%3!M=rHs zMBOK%sz2_HLLfKZ$|;JNCglWq_U6`bSR-$I+35Z~j9s;nEmRUZQlX)2U1$Fmxn8Fu z*bm$A3{;nEvAWvp@Y!+nqDf6|*L|;_;QKVdbph6I@JgWB(hi)0rEMZ4=XBwN1O?dLjPq;2g!Zm_yE$d;8G#b&ksn+ zcqWb9>Y4QZkhAn|kLttHLl=%e1W^Eqt$%ABP21>a(_wIb2g*G^$oU0D5^z@DD zYmYS_Y((naG})zulKz>Yh`BdioqxU{Gh@&$`|{%RRNPRd5D#T9$Ay(YRxcGPIRmnV zCbhTy<8?`}a?PcVyf>rGGUaR6W7^z5uKGtz%APv#p(5en-yU2ob67c{Ku>HaJghws zN_a?Z4AA> zx`IRd8wG_`*7R0Tdw3|LraY7efOZXF+>(<=dU=Mp1S3EJzdcfy^Y!%<7d_4YDXapc zp~nd@o*E9^R}m2L(QUiNXOOOTR5d|Z+pBU@c<2zo1O_k#tyi`#xS4^9eYrPx9Fd9dG3Wa|60P3Jxw6x5U^iYHZ$=5?4#Y^FXi-S>= zo$NeS#l4u$9gk5@PFjJUA3W(g1myPu?Jeu4!Q|SS@Tm{qR^RB$DWjM`2V+3)w-<)% z;okR*&24K7!~uBN9{jUFFr?1z$293bf4*zdjFD4|#01v9?cCF0X%SFus zLIEF}^5C>JZ=K^2KlpPX_|kN|Tdix}_X{8Fe8t=9hbJ49$YssU%HXb1*2!+kr%h#~ zTaAT|m3_$sx!3Wqh!I0wnjGzqtWL$AwXmM{~~`)U{qISHE7rhY^{x8#i6 z4$4lp=lHasxJA_|lms`kei1=Js>{k~_9E=2@GY(s<(cys0?9XQy`*WjK6j&}XLYa~ z=p>0~TZq_v@`fMDE}LP4UGjWP(Dq8)@&$h82AW8_XKF9+{8K`swWdM6Vvc`1?b@{OV#<#V_-lnp}5ehyV zQ3?Lt`eSu9+<6R->~eD=taa22+k0s=VwE)$3dU|Orr0{jm2V&YS<89D`BTvyt3&=W zMR%7b!(53v@UOtP%JFOer~m{9NV?j~T-wSVf3I;^uBi9eEepk4&&?bs7`fWo7X#>a zQ4q628-LCr`hK^!aj)RB0}6E&;OvMGyLTO`+5R34aZzaaRxrB@w4Tox#;G>GtL)Rk zW&4}rvis-KD|>auLcet@_t?7SEaG2N7b*+K{f5*Nl>4;CswXO~r>IudZYMWBoRnLRV!tWqWCV=tm=#(#*YIqiDi2 z%e2b-;XrS(6ztLCotW5JgMg@2^*)4Y)wr}*pL!#ZmTYh<5A7SwY<^!=hPzwFUAkKp zwQ~RZSve%5UfEMR^oAfmd52`%#)B5e%HL}ga|qpG&0BgJTSLJY2zucn9&L)^TeJNh zZms9q=ee-=RZ&@KgNkziG2P;kt3DKnS4&P>DW1m!_tpbD$>6rbS7>})%DMcqx-Kff z0(<*e_}ztI9HC!Fsn>k3!0#MA+fVoHhcGD8i3%t z!Z~^5MNYbjm}qbb~@!|LDJkVw~u85tw*aPud&>9#1a9vV=(KE zQ)jE`)tOR>=wm)k>5<>ZzqXcK9UY8qYro?p)q%U(Ev2fEW>)T2SBd=UIktzOn}!?3 zVr@LrY6sPyiX-ZuCOSpVFqoUU7IE$60VuD@)&U`ctRZ#^FS}GMUJX|tPM4_wo`t)tkB8`I^$RyI75cuc{xb?X1uAOCs4CL= z2R2_`SM^(yqQ<}NC5;)Z0Qj0G8Ch&{57kFfQRVZ|_;}C3O3ye_qAPZWA{xb7eAFFt ziMX7jp;C4yEOrwwUs$u)Y2L4@X6@%F3Og?t;RS=CWI;Ds8w~@ihv7&v2s=ZnrY9G| zxd^^JS^?9b*IKGCfLbGC0BFe+DjloHMbrfQxciG1Z0d-f1X^!A3?&p(r;zauHcn80 znTvhZ&(|I2eOQv>kBE<#K7Jc?^de3y+ojleexvGuFJiOdM5&qgwUF-NgK$bB6J_WT zr;!H%RgLG_Z}d7@63iAixA@#_yb~$ZlSbWKeBnK^_$@|0yNhJp2?(y@5M?3%9^#+ms+Hj&)!f@zEUQ+3wv`s&uJ2~9p*)p}i-W74Ys zB9-)QxWd8LQ6*us>7>pnp_^rY?+hmPdi?$#kdV-H?2JF$Zq&iZ$9_PFq~e7E<5kRQ zWeqh3h~ZX9BB?C1)rS)EV|vB9>dZ!8M8*nYvw6N3PCY55R%P2e0Olq=c20BX;4g!0Dkmh&y!Vb{ z0y}lC(pH`y>gah;z?H~z4AFBwHJwf8S^76sd^E-`}Za0 z8NZ-?I7+vnnZwQNXx}=WkG>~s1cLF?l+Vf+31weL8^F6s&X9R61goXAcpy>2D5*7^ z)zFIa3c5Z>PdYc* z16t!g_^Pm#9E(pb^Hw_#g9tu}?DbR_wov;}7!6riulNk!> z`KWk#^B8xsp_tVpS6gV*VAi!T@nc@3*1M$E-<5i{-$7$I-EssuLfOuP{4?G&)m9+e zS-Ti+LkY47bAWESfBq5`aFPu`2<~Q!E>y(oWiM)fhI0?=Gjwh8l-QRAh|HhM0i<*m zk7(XYs47acr`G{r5o_BHc#H3~fU+#wD-FyjzXyfYkE(YTIQ%W{221A<#?HsC5#9V6 z+s-L2e6Pp3aanX|Go+M(DBs8X_UUKDMgjCJs{ZFl!>rOE%z8~^uG02S(N+%*-%s0_` z`#KUyKFHWZsrL}g?{ketGTd_K<`vmi`r`qeg;B>JNr{=|S`2~82qJ5oE3lI#^#Vcw zoK<{1^CgLwV#>DmK)=Y{fAx!8jxr0i<$=>d*MGK&xKZMc{-1gcb%|NAuCPDJb#6~- zcLmjF4UlDa?pE)q+;S8X)W-|A+%~f2Tygh({Of=5RwEUzMb%2E$tqI}r(TBZUX$}` zBg#^Z1K)CGHZ#|bM4ZS6I(+<^*u(0H6O|gPOF!>+4_vH~38+;;uEcV1;QK{MB11gZ zMXh|lzL(cyx_e%f12J)B#;PFsd~AT7=1en6MK=SwgZ(13UTnPBOMY}ff7|FE8N&@8 zE?)V@wEbU=clv3i{i`=>hW=|V7r7ki zJ&&)lE6v9AXevMh(poU$;p>{+g$A32vl7u`brvHt=}{vMKO~}&s~#Bzy)n4>l-vN2 zM86H@6t(35wN_VnT69(V7B8$#3n+yH{G<$*V;6O&jWOo4JP`^qe`LkHKa%a6qT*$k z^VtjHEaO#^ZF?r;m2$UvvQp`R8#W|IjrlhP-BU|-=j@0-qtd(SkIcUvYb;EXPynMR zQ)Dea!6#+n27HQbPK@)Ey`EMkJ9Htw2klbBA+qponi+RcYF65+U}wd z^oWsA62lJZ5K*t7zcecI{9P2-CHERTa(izK4lKxjd(OZGm2&!2_rPyD`A$f!RC5t2zb8!hZv%UvP7_`5d{VI+>~Tay$%V#Z$r3==u+%mYeV07f9C<036ke zuyIiB5ZJa7iq_$4)z8dh2E=9{ZR*R)HwvW$Av86G{)S%MO&rxtE4$2nw?W=U`TLr^e-e*eijqr0ol?LgbS2)i+oxccPGaHF5b56Z%c6Q0-(Mh_| zwSRoM-LA-7Y-Xv*D>VE(3MeF$N}mZrTK>~nv|l|pbi3yuYHH)3Mt^^5AacYG@}Io? zj9Y5pu)UfIiZ|s+X_m~;9(>zSDd?9l03CA<{W?oPX6NF;zp*U1M0NjO=HdR^f7i`G z(cH<<4gc9%1v@sWkt<#Jt1fJ^$}gJp{p0!UA{XFl{^$SA?+;p@tO%oG?IS|*oDXna NHZZ+Vrg!7v{{W-q36KB) literal 0 HcmV?d00001 diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index b26acbc9eb..edad111c16 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -227,16 +227,16 @@ Description here. ## Enable MDT ConfigMgr integration -1. Click **Start**, type **configmgr**, and then click **Configure ConfigMgr Integration**. +1. On SRV1, click **Start**, type **configmgr**, and then click **Configure ConfigMgr Integration**. 2. Type **PS1** next to **Site code**, and then click **Next**. 3. Verify **The process completed successfully** is displayed, and then click **Finish**. ## Configure client settings -1. Click **Start**, type **configuration manager**, right-click **Configuration Manager Console**, and then click **Pin to Taskbar**. +1. On SRV1, click **Start**, type **configuration manager**, right-click **Configuration Manager Console**, and then click **Pin to Taskbar**. 2. Click **Desktop**, and then launch the Configuration Manager console from the taskbar. 3. If the console notifies you that an update is available, click **OK**. It is not necessary to install updates to complete this lab. -4. In the console tree, open the **Administration** workspace and click **Client Settings**. +4. In the console tree, open the **Administration** workspace (in the lower left corner) and click **Client Settings**. 5. In the display pane, double-click **Default Client Settings**. 6. Click **Computer Agent**, next to **Organization name displayed in Software Center** type **Contoso**, and then click **OK**. @@ -247,7 +247,7 @@ Description here. ``` (Get-NetAdapter "Ethernet").MacAddress ``` - >If the internal network adapter, assigned an IP address of 192.168.0.2, is not named "Ethernet" then replace the name "Ethernet" in the previous command with the name of this network adapter. + >If the internal network adapter, assigned an IP address of 192.168.0.2, is not named "Ethernet" then replace the name "Ethernet" in the previous command with the name of this network adapter. You can review the names of network adapters and the IP addresses assigned to them by typing **ipconfig**. 2. In the System Center Configuration Manager console, in the **Administration** workspace, click **Distribution Points**. 3. In the display pane, right-click **SRV1.CONTOSO.COM** and then click **Properties**. @@ -258,6 +258,11 @@ Description here. - Require a password when computers use PXE - Password and Confirm password: pass@word1 - Respond to PXE requests on specific network interfaces: Enter the MAC address determined in the first step of this procedure. + + See the following example: + + Config Mgr PXE + 5. Click **OK**. 6. Type the following command at an elevated Windows PowerShell prompt on SRV1, and verify that the files displayed are present: @@ -278,6 +283,9 @@ Description here. Invoke-Item 'C:\Program Files\Microsoft Configuration Manager\tools\cmtrace.exe' ``` + The log file will updated continuously while Configuration Manager is running. Wait for Configuration Manager to repair any issues that are present, and periodically re-check that the files are present in the C:\RemoteInstall\SMSBoot\x64 directory. Close the Configuration Manager Trace Log Tool when done. + + ## Create a branding image file 1. If you have a bitmap (.BMP) image for suitable use as a branding image, copy it to the C:\Sources\OSD\Branding folder on SRV1. Otherwise, use the following step to copy a simple branding image. @@ -290,7 +298,7 @@ Description here. ## Create a boot image for Configuration Manager -1. In the Configuration Manager console, in the Software Library workspace, expand **Operating Systems**, right-click **Boot Images**, and then click **Create Boot Image using MDT**. +1. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Boot Images**, and then click **Create Boot Image using MDT**. 2. On the Package Source page, under **Package source folder to be created (UNC Path):**, type **\\SRV1\Sources$\OSD\Boot\Zero Touch WinPE x64**, and then click **Next**. - The Zero Touch WinPE x64 folder does not yet exist. The folder will be created later. 3. On the General Settings page, type **Zero Touch WinPE x64** next to **Name**, and click **Next**. From 810ed85135a6b76c52a7203e4f57ff247a52bf44 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 9 Jan 2017 09:58:28 -0800 Subject: [PATCH 088/210] bbb --- .../deploy/windows-10-poc-sc-config-mgr.md | 58 +++++++++++-------- 1 file changed, 33 insertions(+), 25 deletions(-) diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index edad111c16..5d5eaf5c1f 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -318,7 +318,7 @@ Description here. ``` STATMSG: ID=2301 SEV=I LEV=M SOURCE="SMS Server" COMP="SMS_DISTRIBUTION_MANAGER" SYS=SRV1.CONTOSO.COM SITE=PS1 PID=2476 TID=4636 GMTDATE=Wed Sep 14 22:11:09.363 2016 ISTR0="Configuration Manager Client Upgrade Package" ISTR1="PS100003" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=1 AID0=400 AVAL0="PS100003" SMS_DISTRIBUTION_MANAGER 9/14/2016 3:11:09 PM 4636 (0x121C) ``` -11. You can also review status by clicking the **Zero Touch WinPE x64** image, and then clicking **Content Status** under **Related Objects**, or by entering **\Monitoring\Overview\Distribution Status\Content Status** on the location bar in the console. Click **Zero Touch WinPE x64** under **Content Status** in the console tree and verify that a status of **Successfully distributed content** is displayed on the **Success** tab. +11. You can also review status by clicking the **Zero Touch WinPE x64** image, and then clicking **Content Status** under **Related Objects** in the bottom right-hand corner of the console, or by entering **\Monitoring\Overview\Distribution Status\Content Status** on the location bar in the console. Doublt-click **Zero Touch WinPE x64** under **Content Status** in the console tree and verify that a status of **Successfully distributed content** is displayed on the **Success** tab. 12. In the **Software Library** workspace, double-click **Zero Touch WinPE x64** and then click the **Data Source** tab. 13. Select the **Deploy this boot image from the PXE-enabled distribution point** checkbox, and click **OK**. 14. Review the distmgr.log file again for "**STATMSG: ID=2301**" and verify that there are three folders under **C:\RemoteInstall\SMSImages** with boot images. See the following example: @@ -338,9 +338,7 @@ Description here. ## Create a Windows 10 reference image -If you have already completed steps in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) then you have already created a Windows 10 reference image. Copy the reference image file (REFW10-X64-001.wim) from C:\MDTBuildLab\Captures\REFW10X64-001.wim to C:\Sources\OSD\OS\Windows 10 Enterprise x64\REFW10X64-001.wim. - -If you have not yet created a Windows 10 reference image, complete the following steps. +If you have already completed steps in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) then you have already created a Windows 10 reference image. In this case, skip to the next procedure in this guide: [Add a Windows 10 operating system image](#add-a-windows-10-operating-system-image). If you have not yet created a Windows 10 reference image, complete the steps in this section. 1. In [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: @@ -502,7 +500,7 @@ If you have not yet created a Windows 10 reference image, complete the following 2. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Operating System Images**, and then click **Add Operating System Image**. -3. On the Data Source page, under **Path:**, type **\\SRV1\Sources$\OSD\OS\Windows 10 Enterprise x64\REFW10X64-001.wim**, and click **Next**. +3. On the Data Source page, under **Path:**, type or browse to **\\SRV1\Sources$\OSD\OS\Windows 10 Enterprise x64\REFW10X64-001.wim**, and click **Next**. 4. On the General page, next to **Name:**, type **Windows 10 Enterprise x64**, click **Next** twice, and then click **Close**. @@ -510,10 +508,14 @@ If you have not yet created a Windows 10 reference image, complete the following 6. In the Distribute Content Wizard, click **Next**, click **Add**, click **Distribution Point**, add the **SRV1.CONTOSO.COM** distribution point, click **OK**, click **Next** twice and then click **Close**. -7. Enter **\Monitoring\Overview\Distribution Status\Content Status** on the location bar, click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. +7. Enter **\Monitoring\Overview\Distribution Status\Content Status** on the location bar, click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. Processing of the image on the site server can take several minutes. + + >If content distribution is not successful, verify that sufficient disk space is available. ## Create a task sequence +>Complete this section slowly. There are a large number of similar settings from which to choose. + 1. In the Configuration Manager console, in the **Software Library** workspace expand **Operating Systems**, right-click **Task Sequences**, and then click **Create MDT Task Sequence**. 2. On the Choose Template page, select the **Client Task Sequence** template and click **Next**. @@ -546,13 +548,13 @@ If you have not yet created a Windows 10 reference image, complete the following 9. On the OS Image page, browse and select the **Windows 10 Enterprise x64** package, and then click **Next**. -10. On the Deployment Method page, accept the default settings and click **Next**. +10. On the Deployment Method page, accept the default settings for **Zero Touch Installation** and click **Next**. 11. On the Client Package page, browse and select the **Microsoft Corporation Configuration Manager Client package** and then click **Next**. 12. On the USMT Package page, browse and select the **Microsoft Corporation User State Migration Tool for Windows 8 10.0.14393.0** package, and then click **Next**. -13. On the Settings Package page, select **Create a new settings package**, and under **Package source folder to be created (UNC Path):**, type \\SRV1\Sources$\OSD\Settings\Windows 10 x64 Settings, and then click **Next**. +13. On the Settings Package page, select **Create a new settings package**, and under **Package source folder to be created (UNC Path):**, type **\\SRV1\Sources$\OSD\Settings\Windows 10 x64 Settings**, and then click **Next**. 14. On the Settings Details page, next to **Name:**, type **Windows 10 x64 Settings**, and click **Next**. @@ -562,13 +564,13 @@ If you have not yet created a Windows 10 reference image, complete the following ## Edit the task sequence -1. In the Configuration Manager console, in the Software Library workspace, click Task Sequences, right-click Windows 10 Enterprise x64, and then click Edit. +1. In the Configuration Manager console, in the **Software Library** workspace, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Edit**. -2. Scroll down to the Install group and click Set Variable for Drive Letter. +2. Scroll down to the **Install** group and click the **Set Variable for Drive Letter** action. -3. Change the Value under OSDPreserveDriveLetter from False to True, and click Apply. +3. Change the Value under **OSDPreserveDriveLetter** from **False** to **True**, and then click **Apply**. -4. In the **State Restore** group, click **Set Status 5**, click **Add**, point to **User State**, and click **Request State Store**. This adds a new action immediately after **Set Status 5**. +4. In the **State Restore** group, click the **Set Status 5** action, click **Add** in the upper left corner, point to **User State**, and click **Request State Store**. This adds a new action immediately after **Set Status 5**. 5. Configure the **Request State Store** action that was just added with the following settings:
    - Request state storage location to: **Restore state from another computer**
    @@ -595,6 +597,8 @@ If you have not yet created a Windows 10 reference image, complete the following ## Finalize the operating system configuration +>If you completed all procedures in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) then the MDT deployment share is already present on SRV1. In this case, skip the first four steps below and begin with step 5 to edit CustomSettings.ini. + 1. In the MDT deployment workbench on SRV1, right-click **Deployment Shares** and then click **New Deployment Share**. 2. Use the following settings for the New Deployment Share Wizard: @@ -615,7 +619,7 @@ If you have not yet created a Windows 10 reference image, complete the following ``` notepad "C:\Sources\OSD\Settings\Windows 10 x64 Settings\CustomSettings.ini" ``` -6. Replace the contents of the file with the following text: +6. Replace the contents of the file with the following text, and then save the file: ``` [Settings] @@ -625,7 +629,6 @@ If you have not yet created a Windows 10 reference image, complete the following [Default] DoCapture=NO ComputerBackupLocation=NONE - MachineObjectOU=ou=Workstations,ou=Computers,ou=Contoso,dc=contoso,dc=com OSDMigrateMode=Advanced OSDMigrateAdditionalCaptureOptions=/ue:*\* /ui:CONTOSO\* OSDMigrateConfigFiles=Miguser.xml,Migapp.xml @@ -633,24 +636,24 @@ If you have not yet created a Windows 10 reference image, complete the following EventService=http://SRV1:9800 ApplyGPOPack=NO ``` -7. In the Software Library workspace, expand **Application Management**, click **Packages**, right-click **Windows 10 x64 Settings**, and then click **Update Distribution Points**. Click **OK** in the popup that appears. +7. Return to the Configuration Manager console, and in the Software Library workspace, expand **Application Management**, click **Packages**, right-click **Windows 10 x64 Settings**, and then click **Update Distribution Points**. Click **OK** in the popup that appears. 8. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Distribute Content**. -9. In the Distribute Content Wizard, click **Next**, click **Add**, click **Distribution Point**, add the **SRV1.CONTOSO.COM** distribution point, click **OK**, click **Next** twice and then click **Close**. +9. In the Distribute Content Wizard, click **Next** twice, click **Add**, click **Distribution Point**, select the **SRV1.CONTOSO.COM** distribution point, click **OK**, click **Next** twice and then click **Close**. -10. Enter **\Monitoring\Overview\Distribution Status\Content Status** on the location bar, click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. +10. Enter **\Monitoring\Overview\Distribution Status\Content Status\Windows 10 Enterprise x64** on the location bar, double-click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. ## Create a deployment for the task sequence 1. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Deploy**. -2. On the General page, next to **Collection**, click **Browse** and select the **All Unknown Computers** collection, then click **Next**. +2. On the General page, next to **Collection**, click **Browse**, select the **All Unknown Computers** collection, click **OK**, and then click **Next**. 3. On the Deployment Settings page, use the following settings:
    - - Purpose: Available
    - - Make available to the following: Only media and PXE
    - - Click Next.
    + - Purpose: **Available**
    + - Make available to the following: **Only media and PXE**
    + - Click **Next**.
    4. Click **Next** five times to accept defaults on the Scheduling, User Experience, Alerts, and Distribution Points pages. 5. Click **Close**. @@ -660,11 +663,16 @@ If you have not yet created a Windows 10 reference image, complete the following 1. Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: ``` - New-VM –Name "PC3" –NewVHDPath "c:\vhd\pc3.vhdx" -NewVHDSizeBytes 40GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 - Set-VMMemory -VMName "PC3" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 - Start-VM PC3 - vmconnect localhost PC3 + New-VM –Name "PC4" –NewVHDPath "c:\vhd\pc4.vhdx" -NewVHDSizeBytes 40GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 + Set-VMMemory -VMName "PC4" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 + Start-VM PC4 + vmconnect localhost PC4 ``` + +Problems here, first I got UEFI compatible not found +I tried stopping WDSServer and this caused nothing to be found +Now I'm having difficulty starting WDSServer again... + 2. Press ENTER when prompted to start the network boot service. 3. In the Task Sequence Wizard, provide the password: pass@word1, and then click Next. From cda2700ce55d979ac7c430e597958a8e4df5337a Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 9 Jan 2017 12:15:45 -0800 Subject: [PATCH 089/210] bbb --- windows/deploy/windows-10-poc-sc-config-mgr.md | 5 +++++ windows/deploy/windows-10-poc.md | 4 ++-- 2 files changed, 7 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index 5d5eaf5c1f..2b91d63262 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -673,6 +673,11 @@ Problems here, first I got UEFI compatible not found I tried stopping WDSServer and this caused nothing to be found Now I'm having difficulty starting WDSServer again... +If I change to gen 1, it is loading PS100006.wim but I must press F12 +Seems to be the correct image +And it popped up with contoso and asked me for the password +Ugh.. I got program files for PS100001 cannot be located on a distribution point again. + 2. Press ENTER when prompted to start the network boot service. 3. In the Task Sequence Wizard, provide the password: pass@word1, and then click Next. diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index f364f7936f..240a25cd00 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -16,8 +16,8 @@ author: greg-lindsay This guide contains instructions to configure a proof of concept (PoC) environment requiring a minimum amount of resources. The guide makes extensive use of Windows PowerShell and Hyper-V. Subsequent companion guides contain steps to deploy Windows 10 using the PoC environment. After completing this guide, see the following Windows 10 deployment guides: -- [Step by step: Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md).
    -- [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md).
    +- [Step by step: Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
    +- [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
    Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. From a85729e8fd8bfeb4666fab89d7c07db61b768b80 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 11 Jan 2017 12:11:49 -0800 Subject: [PATCH 090/210] comment --- windows/deploy/windows-10-poc-mdt.md | 2 +- windows/deploy/windows-10-poc-sc-config-mgr.md | 6 +++--- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 7536439af4..68f5a90b1b 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -62,7 +62,7 @@ MDT performs deployments by using the Lite Touch Installation (LTI), Zero Touch Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 0 Stop-Process -Name Explorer ``` -2. Download and install the 64-bit version of [Microsoft Deployment Toolkit (MDT) 2013 Update 2](https://www.microsoft.com/en-us/download/details.aspx?id=50407) on SRV1 using the default options. +2. Download and install the 64-bit version of [Microsoft Deployment Toolkit (MDT)](https://www.microsoft.com/en-us/download/details.aspx?id=54259) on SRV1 using the default options. As of the writing of this guide, the latest version of MDT was 8443. 3. Download and install the latest [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/en-us/windows/hardware/windows-assessment-deployment-kit) on SRV1 using the default installation settings. The current version is the ADK for Windows 10, version 1607. Installation might require several minutes to acquire all components. diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index 2b91d63262..91953dba22 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -299,12 +299,12 @@ Description here. ## Create a boot image for Configuration Manager 1. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Boot Images**, and then click **Create Boot Image using MDT**. -2. On the Package Source page, under **Package source folder to be created (UNC Path):**, type **\\SRV1\Sources$\OSD\Boot\Zero Touch WinPE x64**, and then click **Next**. +2. On the Package Source page, under **Package source folder to be created (UNC Path):**, type **\\\SRV1\Sources$\OSD\Boot\Zero Touch WinPE x64**, and then click **Next**. - The Zero Touch WinPE x64 folder does not yet exist. The folder will be created later. 3. On the General Settings page, type **Zero Touch WinPE x64** next to **Name**, and click **Next**. 4. On the Options page, under **Platform** choose **x64**, and click **Next**. 5. On the Components page, in addition to the default selection of **Microsoft Data Access Components (MDAC/ADO) support**, select the **Microsoft Diagnostics and Recovery Toolkit (DaRT)** checkbox, and click **Next**. -6. On the Customization page, select the **Use a custom background bitmap file** checkbox, and under **UNC path**, type or browse to **\\SRV1\Sources$\OSD\Branding\contoso.bmp**, and then click **Next** twice. It will take a few minutes to generate the boot image. +6. On the Customization page, select the **Use a custom background bitmap file** checkbox, and under **UNC path**, type or browse to **\\\SRV1\Sources$\OSD\Branding\contoso.bmp**, and then click **Next** twice. It will take a few minutes to generate the boot image. 7. Click **Finish**. 8. Right-click the **Zero Touch WinPE x64** boot image, and then click **Distribute Content**. 9. In the Distribute Content Wizard, click **Next**, click **Add** and select **Distribution Point**, select the **SRV1.CONTOSO.COM** checkbox, click **OK**, click **Next** twice, and then click **Close**. @@ -500,7 +500,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 2. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Operating System Images**, and then click **Add Operating System Image**. -3. On the Data Source page, under **Path:**, type or browse to **\\SRV1\Sources$\OSD\OS\Windows 10 Enterprise x64\REFW10X64-001.wim**, and click **Next**. +3. On the Data Source page, under **Path:**, type or browse to **\\\SRV1\Sources$\OSD\OS\Windows 10 Enterprise x64\REFW10X64-001.wim**, and click **Next**. 4. On the General page, next to **Name:**, type **Windows 10 Enterprise x64**, click **Next** twice, and then click **Close**. From f92e65b109101ea48c03562280b31c29b8e4f346 Mon Sep 17 00:00:00 2001 From: jcaparas Date: Thu, 12 Jan 2017 21:53:27 -0800 Subject: [PATCH 091/210] update urls for aad, arcsight, splunk --- ...aad-windows-defender-advanced-threat-protection.md | 11 +++++++++-- ...ght-windows-defender-advanced-threat-protection.md | 2 +- ...unk-windows-defender-advanced-threat-protection.md | 3 ++- 3 files changed, 12 insertions(+), 4 deletions(-) diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md index 65dcdf6805..72bedf6291 100644 --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md @@ -48,14 +48,21 @@ You need to add an application in your Azure Active Directory (AAD) tenant then 12. Type the following URLs in the **Reply URL** field: - - `https://DataAccess-PRD.trafficmanager.net:444/api/FetchAccessTokenFromAuthCode` + - Depending on the location of your datacenter, select either the EU or the US URL: + - For EU: `https://wdatp-alertexporter-eu.securitycenter.windows.com/api/FetchAccessTokenFromAuthCode` + - For US: `https://wdatp-alertexporter-us.securitycenter.windows.com/api/FetchAccessTokenFromAuthCode` - `https://localhost:44300/WDATPconnector` 13. Click **Save** and copy the key in a safe place. You'll need this key to authenticate the client application on Azure Active Directory. 14. Open a web browser and connect to the following URL:
    + - For EU: ```text -https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234 +https://wdatp-alertexporter-eu.securitycenter.windows.com/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234 +``` + - For US: +```text +https://wdatp-alertexporter-us.securitycenter.windows.com/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234 ``` An Azure login page appears. > [!NOTE] diff --git a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md index 614004d2dc..c4386cb504 100644 --- a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md @@ -69,7 +69,7 @@ The following steps assume that you have completed all the required steps in [Be Type in the name of the client property file. It must match the client property file. Events URL - `https://DataAccess-PRD.trafficmanager.net:444/api/alerts` + For EU: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts

    For US: https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts Authentication Type OAuth 2 diff --git a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md index 60e1c00469..6f03941882 100644 --- a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md @@ -56,7 +56,8 @@ You'll need to configure Splunk so that it can consume Windows Defender ATP aler Endpoint URL - https://DataAccess-PRD.trafficmanager.net:444/api/alerts + For EU: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts

    For US: https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts + HTTP Method From fdf6917880713f7a5bf9432eb938c058bf5e515f Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 13 Jan 2017 11:08:14 -0800 Subject: [PATCH 092/210] comment --- windows/deploy/windows-10-poc-mdt.md | 6 +- .../deploy/windows-10-poc-sc-config-mgr.md | 32 +++++++- windows/deploy/windows-10-poc.md | 80 +++++++++++-------- 3 files changed, 81 insertions(+), 37 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 68f5a90b1b..d2bbba8e83 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -22,7 +22,7 @@ The PoC environment is a virtual network running on Hyper-V with three virtual m - **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. - **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been shadow-copied from a physical computer on your corporate network. ->This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. +>This guide uses the Hyper-V server role. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. ## In this guide @@ -192,7 +192,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi [Default] DeployRoot=\\SRV1\MDTBuildLab$ UserDomain=CONTOSO - UserID=administrator + UserID=MDT_BA UserPassword=pass@word1 SkipBDDWelcome=YES ``` @@ -361,7 +361,7 @@ This procedure will demonstrate how to deploy the reference image to the PoC env [Default] DeployRoot=\\SRV1\MDTProd$ UserDomain=CONTOSO - UserID=administrator + UserID=MDT_BA UserPassword=pass@word1 SkipBDDWelcome=YES ``` diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index 91953dba22..7679255448 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -542,7 +542,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 6. On the Boot Image page, browse and select the **Zero Touch WinPE x64** boot image package and then click **Next**. -7. On the MDT Package page, select **Create a new Microsoft Deployment Toolkit Files package**, under **Package source folder to be created (UNC Path):**, type **\\SRV1\Sources$\OSD\MDT\MDT 2013**, and then click **Next**. +7. On the MDT Package page, select **Create a new Microsoft Deployment Toolkit Files package**, under **Package source folder to be created (UNC Path):**, type **\\\SRV1\Sources$\OSD\MDT\MDT 2013**, and then click **Next**. 8. On the MDT Details page, next to **Name:** type **MDT 2013** and then click **Next**. @@ -658,6 +658,36 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 5. Click **Close**. +## Configure a boundary group + +1. In the Administration workspace, right-click **Boundaries** and then click **Create Boundary**. + +2. Next to **Description**, type **PS1**, next to **Type** choose **Active Directory Site**, and then click **Browse**. + +3. Choose **Default-First-Site-Name** and then click **OK**. + +4. In the Administration workspace, right-click **Boundary Groups** and then click **Create Boundary Group**. + +5. Next to **Name**, type **PS1 Site Assignment and Content Location**, click **Add**, select the **Default-First-Site-Name** boundary and then click **OK**. + +6. On the **References** tab in the **Create Boundary Group** window select the **Use this boundary group for site assignment** checkbox. + +7. Click **Add**, select the **\\\SRV1.contoso.com** checkbox, and then click **OK** twice. + +## Configure the network access account + +1. In the Administration workspace, expand **Site Configuration** and click **Sites**. + +2. On the **Home** ribbon at the top of the console window, click **Configure Site Components** and then click **Software Distribution**. + +3. On the **Network Access Account** tab, choose **Specify the account that accesses network locations**. + +4. Click the yellow starburst and then click **New Account**. + +5. Click **Browse** and then under **Enter the object name to select**, type **CM_NAA** and click **OK**. + +6. Next to **Password** and **Confirm Password**, type **pass@word1**, and then click **OK** twice. + ## Deploy Windows 10 using PXE and Configuration Manager 1. Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 240a25cd00..bcb9e04926 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -726,15 +726,8 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to >The -Force option is necessary when adding scope options to skip validation of 192.168.0.2 as a DNS server because we have not configured it yet. The scope should immediately begin issuing leases on the PoC network. The first DHCP lease that will be issued is to vEthernet interface on the Hyper-V host, which is a member of the internal network. You can verify this by using the command: Get-DhcpServerv4Lease -ScopeId 192.168.0.0. -11. Add a user account to the contoso.com domain that can be used with client computers, and set passwords to never expire: -
    -    New-ADUser -Name "User1" -UserPrincipalName user1 -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true
    -    Set-ADUser -Identity user1 -PasswordNeverExpires $true
    -    Set-ADUser -Identity administrator -PasswordNeverExpires $true
    -    
    - -12. The DNS server role will also be installed on the member server, SRV1, at 192.168.0.2 so that we can forward DNS queries from DC1 to SRV1 to resolve Internet names without having to configure a forwarder outside the PoC network. Since the IP address of SRV1 already exists on DC1's network adapter, it will be automatically added during the DCPROMO process. To verify this server-level DNS forwarder on DC1, type the following command at an elevated Windows PowerShell prompt on DC1: +11. The DNS server role will also be installed on the member server, SRV1, at 192.168.0.2 so that we can forward DNS queries from DC1 to SRV1 to resolve Internet names without having to configure a forwarder outside the PoC network. Since the IP address of SRV1 already exists on DC1's network adapter, it will be automatically added during the DCPROMO process. To verify this server-level DNS forwarder on DC1, type the following command at an elevated Windows PowerShell prompt on DC1:
         Get-DnsServerForwarder
    @@ -756,30 +749,30 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         Add-DnsServerForwarder -IPAddress 192.168.0.2
         
    -13. Minimize the DC1 VM window but **do not stop** the VM. +12. Minimize the DC1 VM window but **do not stop** the VM. Next, the client VM will be started and joined to the contoso.com domain. This is done before adding a gateway to the PoC network so that there is no danger of duplicate DNS registrations for the physical client and its cloned VM in the corporate domain. -14. If the PC1 VM is not started yet, using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it: +13. If the PC1 VM is not started yet, using an elevated Windows PowerShell prompt on the Hyper-V host, start the client VM (PC1), and connect to it:
         Start-VM PC1
         vmconnect localhost PC1
         
    -15. Sign in to PC1 using an account that has local administrator rights. +14. Sign in to PC1 using an account that has local administrator rights. >PC1 will be disconnected from its current domain, so you cannot use a domain account to sign on unless these credentials are cached and the use of cached credentials is permitted by Group Policy. If cached credentials are available and permitted, you can use these credentials to sign in. Otherwise, use an existing local administrator account. -16. After signing in, the operating system detects that it is running in a new environment. New drivers will be automatically installed, including the network adapter driver. The network adapter driver must be updated before you can proceed, so that you will be able to join the contoso.com domain. Depending on the resources allocated to PC1, installing the network adapter driver might take a few minutes. You can monitor device driver installation by clicking **Show hidden icons** in the notification area. +15. After signing in, the operating system detects that it is running in a new environment. New drivers will be automatically installed, including the network adapter driver. The network adapter driver must be updated before you can proceed, so that you will be able to join the contoso.com domain. Depending on the resources allocated to PC1, installing the network adapter driver might take a few minutes. You can monitor device driver installation by clicking **Show hidden icons** in the notification area. ![PoC](images/installing-drivers.png) >If the client was configured with a static address, you must change this to a dynamic one so that it can obtain a DHCP lease. -17. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. +16. When the new network adapter driver has completed installation, you will receive an alert to set a network location for the contoso.com network. Select **Work network** and then click **Close**. When you receive an alert that a restart is required, click **Restart Later**. -18. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. +17. Open an elevated Windows PowerShell prompt on PC1 and verify that the client VM has received a DHCP lease and can communicate with the consoto.com domain controller. To open Windows PowerShell on Windows 7, click **Start**, and search for "**power**." Right-click **Windows PowerShell** and then click **Pin to Taskbar** so that it is simpler to use Windows Powershell during this lab. Click **Windows PowerShell** on the taskbar, and then type **ipconfig** at the prompt to see the client's current IP address. Also type **ping dc1.contoso.com** and **nltest /dsgetdc:contoso.com** to verify that it can reach the domain controller. See the following examples of a successful network connection: @@ -816,7 +809,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to >If PC1 is running Windows 7, enhanced session mode might not be available, which means that you cannot copy and paste commands from the Hyper-V host to a Windows PowerShell prompt on PC1. However, it is possible to use integration services to copy a file from the Hyper-V host to a VM. The next procedure demonstrates this. If the Copy-VMFile command fails, then type the commands below at an elevated Windows PowerShell prompt on PC1 instead of saving them to a script to run remotely. If PC1 is running Windows 8 or a later operating system, you can use enhanced session mode to copy and paste these commands instead of typing them. -19. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click **Run ISE as Administrator**) and type the following commands in the (upper) script editor pane: +18. Minimize the PC1 window and switch to the Hyper-V host computer. Open an elevated Windows PowerShell ISE window on the Hyper-V host (right-click Windows PowerShell and then click **Run ISE as Administrator**) and type the following commands in the (upper) script editor pane:
         (Get-WmiObject Win32_ComputerSystem).UnjoinDomainOrWorkgroup($null,$null,0)
    @@ -833,8 +826,8 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
     
         ![ISE](images/ISE.png)
     
    -20. Click **File**, click **Save As**, and save the commands as **c:\VHD\pc1.ps1** on the Hyper-V host.
    -21. In the (lower) terminal input window, type the following command to copy the script to PC1 using integration services:
    +19. Click **File**, click **Save As**, and save the commands as **c:\VHD\pc1.ps1** on the Hyper-V host.
    +20. In the (lower) terminal input window, type the following command to copy the script to PC1 using integration services:
     
         
         Copy-VMFile "PC1" –SourcePath "C:\VHD\pc1.ps1"  –DestinationPath "C:\pc1.ps1" –CreateFullPath –FileSource Host
    @@ -842,7 +835,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
     
         >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM. This can be done by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server operating systems that are running the Hyper-V role service. Otherwise, just create the file c:\pc1.ps1 on the VM by typing the commands into this file manually. Be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file.
     
    -22. On PC1, type the following commands at an elevated Windows PowerShell prompt:
    +21. On PC1, type the following commands at an elevated Windows PowerShell prompt:
     
         
         Get-Content c:\pc1.ps1 | powershell.exe -noprofile - 
    @@ -850,19 +843,19 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
     
         >The commands in this script might take a few moments to complete. If an error is displayed, check that you typed the command correctly, paying close attention to spaces. PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. PC1 is also not renamed to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer.
     
    -23. Upon completion of the script, PC1 will automatically restart. When it has restarted, sign in to the contoso.com domain using the **Switch User** option, with the **user1** account you created in step 11 of this section.
    +22. Upon completion of the script, PC1 will automatically restart. When it has restarted, sign in to the contoso.com domain using the **Switch User** option, with the **user1** account you created in step 11 of this section.
         >The settings that will be used to migrate user data specifically select only accounts that belong to the CONTOSO domain. If you wish to test migration of user data and settings with an account other than the user1 account, you must copy this account's profile to the user1 profile.
    -24. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. 
    -25. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands:
    +23. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. 
    +24. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands:
     
         
         Start-VM SRV1
         vmconnect localhost SRV1
         
    -26. Accept the default settings, read license terms and accept them, provide an administrator password of **pass@word1**, and click **Finish**. When you are prompted about finding PCs, devices, and content on the network, click **Yes**. -27. Sign in to SRV1 using the local administrator account. In the same way that was done on DC1, sign out of SRV1 and then sign in again to enable enhanced session mode. This will enable you to copy and paste Windows PowerShell commands from the Hyper-V host to the VM. -28. Open an elevated Windows PowerShell prompt on SRV1 and type the following commands: +25. Accept the default settings, read license terms and accept them, provide an administrator password of **pass@word1**, and click **Finish**. When you are prompted about finding PCs, devices, and content on the network, click **Yes**. +26. Sign in to SRV1 using the local administrator account. In the same way that was done on DC1, sign out of SRV1 and then sign in again to enable enhanced session mode. This will enable you to copy and paste Windows PowerShell commands from the Hyper-V host to the VM. +27. Open an elevated Windows PowerShell prompt on SRV1 and type the following commands:
         Rename-Computer SRV1
    @@ -871,7 +864,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         Restart-Computer
         
    -29. Wait for the computer to restart, sign in again, then type the following commands at an elevated Windows PowerShell prompt: +28. Wait for the computer to restart, sign in again, then type the following commands at an elevated Windows PowerShell prompt:
         $pass = "pass@word1" | ConvertTo-SecureString -AsPlainText -Force
    @@ -881,7 +874,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         Restart-Computer
         
    -30. Sign in to the contoso.com domain on SRV1 using the domain administrator account (enter contoso\administrator as the user), open an elevated Windows PowerShell prompt, and type the following commands: +29. Sign in to the contoso.com domain on SRV1 using the domain administrator account (enter contoso\administrator as the user), open an elevated Windows PowerShell prompt, and type the following commands:
         Install-WindowsFeature -Name DNS -IncludeManagementTools
    @@ -889,7 +882,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         Install-WindowsFeature -Name Routing -IncludeManagementTools
         
    -31. Before configuring the routing service that was just installed, verify that network interfaces were added to SRV1 in the right order, resulting in an interface alias of "Ethernet" for the private interface, and an interface alias of "Ethernet 2" for the public interface. Also verify that the external interface has a valid external DHCP IP address lease. +30. Before configuring the routing service that was just installed, verify that network interfaces were added to SRV1 in the right order, resulting in an interface alias of "Ethernet" for the private interface, and an interface alias of "Ethernet 2" for the public interface. Also verify that the external interface has a valid external DHCP IP address lease. To view a list of interfaces, associated interface aliases, and IP addresses on SRV1, type the following Windows PowerShell command. Example output of the command is also shown below: @@ -904,7 +897,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to In this example, the poc-internal network interface at 192.168.0.2 is associated with the "Ethernet" interface and the Internet-facing poc-external interface is associated with the "Ethernet 2" interface. If your interfaces are different, you must adjust the commands provided in the next step appropriately to configure routing services. -32. To configure SRV1 with routing capability for the PoC network, type or paste the following commands at an elevated Windows PowerShell prompt on SRV1: +31. To configure SRV1 with routing capability for the PoC network, type or paste the following commands at an elevated Windows PowerShell prompt on SRV1:
         Install-RemoteAccess -VpnType Vpn
    @@ -914,13 +907,13 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         cmd /c netsh routing ip nat add interface name="Internal" mode=PRIVATE
         
    -33. The DNS service on SRV1 also needs to resolve hosts in the contoso.com domain. This can be accomplished with a conditional forwarder. Open an elevated Windows PowerShell prompt on SRV1 and type the following command: +32. The DNS service on SRV1 also needs to resolve hosts in the contoso.com domain. This can be accomplished with a conditional forwarder. Open an elevated Windows PowerShell prompt on SRV1 and type the following command:
         Add-DnsServerConditionalForwarderZone -Name contoso.com -MasterServers 192.168.0.1
         
    -34. In most cases, this completes configuration of the PoC network. However, if your corporate network has a firewall that filters queries from local DNS servers, you will also need to configure a server-level DNS forwarder on SRV1 to resolve Internet names. To test whether or not DNS is working without this forwarder, try to reach a name on the Internet from DC1 or PC1, which are only using DNS services on the PoC network. You can test DNS with the ping command, for example: +33. In most cases, this completes configuration of the PoC network. However, if your corporate network has a firewall that filters queries from local DNS servers, you will also need to configure a server-level DNS forwarder on SRV1 to resolve Internet names. To test whether or not DNS is working without this forwarder, try to reach a name on the Internet from DC1 or PC1, which are only using DNS services on the PoC network. You can test DNS with the ping command, for example:
         ping www.microsoft.com
    @@ -934,7 +927,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         Add-DnsServerForwarder -IPAddress (Get-DnsClientServerAddress -InterfaceAlias "Ethernet 2").ServerAddresses
         
    -35. If DNS and routing are both working correctly, you will see the following on DC1 and PC1 (the IP address might be different, but that is OK): +34. If DNS and routing are both working correctly, you will see the following on DC1 and PC1 (the IP address might be different, but that is OK):
         PS C:\> ping www.microsoft.com
    @@ -951,14 +944,35 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
             Minimum = 1ms, Maximum = 3ms, Average = 2ms
         
    -36. Verify that all three VMs can reach each other, and the Internet. See [Appendix A: Verify the configuration](#appendix-b-verify-the-configuration) for more information. -37. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1: +35. Verify that all three VMs can reach each other, and the Internet. See [Appendix A: Verify the configuration](#appendix-b-verify-the-configuration) for more information. +36. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1:
         runas /noprofile /env /user:administrator@contoso.com "cmd slmgr -rearm"
         Restart-Computer
         
    +### Configure service and user accounts + +Windows 10 deployment with MDT and System Center Configuration Manager requires specific accounts to perform some actions. Service accounts will be created to use for these tasks. A user account is also added in the contoso.com domain that can be used for testing purposes. In the test lab environment, passwords are set to never expire. + +>To keep this test lab relatively simple, we will not create a custom OU structure and set permissions. Required permissions are enabled by adding accounts to the Domain Admins group. To configure these settings in a production environment, see [Prepare for Zero Touch Installation of Windows 10 with Configuration Manager](prepare-for-zero-touch-installation-of-windows-10-with-configuration-manager.md) + +On DC1, open an elevated Windows PowerShell prompt and type the following commands: + +
    +New-ADUser -Name User1 -UserPrincipalName user1 -Description "User account" -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true
    +New-ADUser -Name MDT_BA -UserPrincipalName MDT_BA -Description "MDT Build Account" -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true
    +New-ADUser -Name CM_JD -UserPrincipalName CM_JD -Description "Configuration Manager Join Domain Account" -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true
    +New-ADUser -Name CM_NAA -UserPrincipalName CM_NAA -Description "Configuration Manager Network Access Account" -AccountPassword (ConvertTo-SecureString "pass@word1" -AsPlainText -Force) -ChangePasswordAtLogon $false -Enabled $true
    +Add-ADGroupMember "Domain Admins" MDT_BA,CM_JD,CM_NAA
    +Set-ADUser -Identity user1 -PasswordNeverExpires $true
    +Set-ADUser -Identity administrator -PasswordNeverExpires $true
    +Set-ADUser -Identity MDT_BA -PasswordNeverExpires $true
    +Set-ADUser -Identity CM_JD -PasswordNeverExpires $true
    +Set-ADUser -Identity CM_NAA -PasswordNeverExpires $true
    +
    + ## Appendix A: Verify the configuration Use the following procedures to verify that the PoC environment is configured properly and working as expected. From cc3e841a4b7a36a4b9a60148eafee5507bfd69bd Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 13 Jan 2017 13:29:31 -0800 Subject: [PATCH 093/210] comment --- windows/deploy/windows-10-poc-mdt.md | 4 +- .../deploy/windows-10-poc-sc-config-mgr.md | 40 +++++++++++-------- 2 files changed, 25 insertions(+), 19 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index d2bbba8e83..c3ca1fd662 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -49,7 +49,7 @@ Topics and procedures in this guide are summarized in the following table. An es ## About MDT MDT performs deployments by using the Lite Touch Installation (LTI), Zero Touch Installation (ZTI), and User-Driven Installation (UDI) deployment methods. -- LDI is the deployment method used in the current guide, requiring only MDT and performed with a minimum amount of user interaction. +- LTI is the deployment method used in the current guide, requiring only MDT and performed with a minimum amount of user interaction. - ZTI is fully automated, requiring no user interaction and is performed using MDT and System Center Configuration Manager. After completing the steps in the current guide, see [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) to use the ZTI deployment method in the PoC environment. - UDI requires manual intervention to respond to installation prompts such as machine name, password and language settings. UDI requires MDT and System Center Configuration Manager. @@ -180,7 +180,7 @@ A reference image serves as the foundation for Windows 10 devices in your organi SkipSummary=YES SkipRoles=YES SkipCapture=NO - SkipFinalSummary=YES + SkipFinalSummary=NO ``` 21. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index 7679255448..ff3f2c3e60 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -437,7 +437,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi SkipSummary=YES SkipRoles=YES SkipCapture=NO - SkipFinalSummary=YES + SkipFinalSummary=NO ``` 20. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: @@ -449,7 +449,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi [Default] DeployRoot=\\SRV1\MDTBuildLab$ UserDomain=CONTOSO - UserID=administrator + UserID=MDT_BA UserPassword=pass@word1 SkipBDDWelcome=YES ``` @@ -699,25 +699,31 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi vmconnect localhost PC4 ``` -Problems here, first I got UEFI compatible not found -I tried stopping WDSServer and this caused nothing to be found -Now I'm having difficulty starting WDSServer again... - -If I change to gen 1, it is loading PS100006.wim but I must press F12 -Seems to be the correct image -And it popped up with contoso and asked me for the password -Ugh.. I got program files for PS100001 cannot be located on a distribution point again. - 2. Press ENTER when prompted to start the network boot service. -3. In the Task Sequence Wizard, provide the password: pass@word1, and then click Next. +3. In the Task Sequence Wizard, provide the password: **pass@word1**, and then click **Next**. -4. The Windows 10 Enterprise x64 task sequence is selected, click Next. +4. Before you click Next in the Task Sequence Wizard, press the **F8** key. A command prompt will open. + +5. At the command prompt, type **explorer.exe** and review the Windows PE file structure. + +7. The smsts.log file is critical for troubleshooting any installation problems that might be encountered. Depending on the deployment phase, the smsts.log file is created in different locations: + - X:\windows\temp\SMSTSLog\smsts.log before disks are formatted. + - x:\smstslog\smsts.log after disks are formatted. + - c:\_SMSTaskSequence\Logs\Smstslog\smsts.log before the System Center Configuration Manager client is installed. + - c:\windows\ccm\logs\Smstslog\smsts.log after the System Center Configuration Manager client is installed. + - c:\windows\ccm\logs\smsts.log when the task sequence is complete. + + Note: If a reboot is pending on the client, the reboot will be blocked as long as the command window is open. + +7. In the explorer window, click **Tools** and then click **Map Network Drive**. + +8. Do not map a network drive at this time. If you need to save the smsts.log file, you can use this method to save the file to a location on SRV1. + +9. Close the Map Network Drive window, the Explorer window, and the command prompt. + +4. The **Windows 10 Enterprise x64** task sequence is selected in the Task Sequenc Wizard. Click **Next** to continue with the deployment. -- ok I have an error that PS100001 cannot be located on a distribution point. -- I tried going to content status and this seems to bhe the USMT and it says it is successfully distributed -- I tried software library, boot images, and distribute these - this didn't help -- I tried software library, application management, packages, distribute content but the distributon point isn't showing up. This is likely the problem. ## Related Topics From 5acf292d8280261b6e0ca0502f7fcffd6903c808 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 13 Jan 2017 15:45:58 -0800 Subject: [PATCH 094/210] comment --- windows/deploy/windows-10-poc-mdt.md | 3 +- .../deploy/windows-10-poc-sc-config-mgr.md | 48 +++++++++++++++++-- windows/deploy/windows-10-poc.md | 8 +++- 3 files changed, 53 insertions(+), 6 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index c3ca1fd662..2f68b2d186 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -161,7 +161,8 @@ A reference image serves as the foundation for Windows 10 devices in your organi DoCapture=YES OSInstall=Y AdminPassword=pass@word1 - TimeZoneName=Pacific Standard Time + TimeZoneName=Pacific Standard Time + OSDComputername=#Left("PC-%SerialNumber%",7)# JoinWorkgroup=WORKGROUP HideShell=YES FinishAction=SHUTDOWN diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index ff3f2c3e60..ef5e1258bb 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -418,7 +418,8 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi DoCapture=YES OSInstall=Y AdminPassword=pass@word1 - TimeZoneName=Pacific Standard Time + TimeZoneName=Pacific Standard TimeZoneName + OSDComputername=#Left("PC-%SerialNumber%",7)# JoinWorkgroup=WORKGROUP HideShell=YES FinishAction=SHUTDOWN @@ -707,7 +708,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 5. At the command prompt, type **explorer.exe** and review the Windows PE file structure. -7. The smsts.log file is critical for troubleshooting any installation problems that might be encountered. Depending on the deployment phase, the smsts.log file is created in different locations: +6. The smsts.log file is critical for troubleshooting any installation problems that might be encountered. Depending on the deployment phase, the smsts.log file is created in different locations: - X:\windows\temp\SMSTSLog\smsts.log before disks are formatted. - x:\smstslog\smsts.log after disks are formatted. - c:\_SMSTaskSequence\Logs\Smstslog\smsts.log before the System Center Configuration Manager client is installed. @@ -722,8 +723,49 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 9. Close the Map Network Drive window, the Explorer window, and the command prompt. -4. The **Windows 10 Enterprise x64** task sequence is selected in the Task Sequenc Wizard. Click **Next** to continue with the deployment. +10. The **Windows 10 Enterprise x64** task sequence is selected in the Task Sequenc Wizard. Click **Next** to continue with the deployment. +11. The task sequence will require several minutes to complete. You can monitor progress of the task sequence using the MDT Deployment Workbench under Deployment Shares > MDTProduction > Monitoring. The task sequence will: + - Install Windows 10 + - Install the Configuration Manager client and hotfix + - Join the computer to the contoso.com domain + - Install any applications that were specified in the reference image + +12. When Windows 10 installation has completed, sign in to PC4 using the **contoso\administrator** account. + +13. Right-click **Start**, click **Run**, type **control appwiz.cpl**, press ENTER, click Turn Windows features on or off, and verify that **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** is installed. This is a feature included in the reference image. + +14. Shut down the PC4 VM. + +## Refresh a client with Windows 10 using Configuration Manager + +1. Verify that PC1 is in its original state, which was saved as a checkpoint in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md). + +2. If a PC1 checkpoint has not already been saved, then save a checkpoint by typing the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName BeginState + ``` + +3. Sign in to PC using the contoso\administrator account and type the following at an elevated command prompt: + + + +CCMSetup.exe /mp:PS1 /logon SMSSITECODE=AUTO + +3. On SRV1, in the Configuration Manager console, in the Asset and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. + +4. Use the following settings in the **Create Device Collection Wizard**: + - General > Name: **Install Windows 10 Enterprise x64**
    + - Geneneral > Limiting collection: **All Systems**
    + - Membership Rules > Add Rule: **Direct Rule**
    + - The **Create Direct Membership Rule Wizard** opens, click **Next**
    + - Search for Resources > Resource class: **System Resource**
    + - Search for Resources > Attribute name: **Name**
    + - Search for Resources > Value: **PC1**
    + - Select Resources > Value: **PC1**
    + +## Replace a client with Windows 10 using Configuration Manager ## Related Topics diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index bcb9e04926..2ee43eb267 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -14,11 +14,13 @@ author: greg-lindsay - Windows 10 -This guide contains instructions to configure a proof of concept (PoC) environment requiring a minimum amount of resources. The guide makes extensive use of Windows PowerShell and Hyper-V. Subsequent companion guides contain steps to deploy Windows 10 using the PoC environment. After completing this guide, see the following Windows 10 deployment guides: +This guide contains instructions to configure a proof of concept (PoC) environment requiring a minimum amount of resources. The guide makes extensive use of Windows PowerShell and Hyper-V. Subsequent companion guides contain steps to deploy Windows 10 using the PoC environment. After completing this guide, see the following Windows 10 PoC deployment guides: - [Step by step: Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
    - [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
    +The PoC deployment guides are intended to provide a demonstration of Windows 10 deployment tools and processes for IT professionals that are not familiar with these tools, and those that are interested in configuring a proof of concept environment for their own purposes. The instructions in this guide should not be used in a production setting, and are not meant to replace the instructions found in production deployment guidance. + Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. Windows PowerShell commands are provided to set up the PoC environment quickly. You do not need to be an expert in Windows PowerShell to complete the steps in the guide, however you are required to customize some commands to your environment. @@ -31,7 +33,7 @@ Hyper-V is installed, configured and used extensively in this guide. If you are This guide contains instructions for three general procedures: Install Hyper-V, configure Hyper-V, and configure VMs. If you already have a computer running Hyper-V, you can use this computer and skip the first procedure. In this case, your virtual switch settings must be modified to match those used in this guide, or the steps in this guide can be modified to use your existing Hyper-V settings. -After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures with current tools, as documented in subsequent guides. Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. +After completing the instructions in this guide, you will have a PoC environment that enables you to test Windows 10 deployment procedures by following instructions in companion guides that are written to use the PoC environment. Links are provided to download trial versions of Windows Server 2012, Windows 10 Enterprise, and all deployment tools necessary to complete the lab. Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. @@ -250,6 +252,8 @@ w10-enterprise.iso ### Convert PC to VM +>Important: Do not attempt to use the VM resulting from the following procedure as a reference image. Also, to avoid conflicts with existing clients, do not start the VM outside the PoC network. + - + diff --git a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md index 6f03941882..9a9ce3abec 100644 --- a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md @@ -56,7 +56,7 @@ You'll need to configure Splunk so that it can consume Windows Defender ATP aler - + From dc5762f1b08eb0ca8cdc0f7d18808e15b76b1947 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Fri, 13 Jan 2017 16:00:28 -0800 Subject: [PATCH 096/210] replace client id --- ...onfigure-aad-windows-defender-advanced-threat-protection.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md index 2701b35d24..8e7ee1b37c 100644 --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md @@ -53,11 +53,10 @@ You need to add an application in your Azure Active Directory (AAD) tenant then 13. Click **Save** and copy the key in a safe place. You'll need this key to authenticate the client application on Azure Active Directory. -14. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=&tenantId=&clientSecret=1234`
    +14. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234`
    An Azure login page appears. > [!NOTE] - > - Replace *clientID* with your client ID. > - Replace *tenant ID* with your actual tenant ID. > - Keep the *clientSecret* as is. This is a dummy value, but the parameter must appear. From 6de731e1fb06ec63ada2c90f7769a7ee1e14206c Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Fri, 13 Jan 2017 19:23:19 -0800 Subject: [PATCH 097/210] updates --- ...ows-defender-advanced-threat-protection.md | 29 +++++++++++++- ...ows-defender-advanced-threat-protection.md | 38 ++++++++++++------- ...ows-defender-advanced-threat-protection.md | 6 +-- 3 files changed, 56 insertions(+), 17 deletions(-) diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md index 8e7ee1b37c..10f8d31da6 100644 --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md @@ -25,6 +25,8 @@ localizationpriority: high You need to add an application in your Azure Active Directory (AAD) tenant then authorize the Windows Defender ATP Alerts Export application to communicate with it so that your security information and events management (SIEM) tool can consume alerts from Windows Defender ATP portal. 1. Login to the [Azure management portal](https://manage.windowsazure.com). + >!NOTE: + >Use your Azure credentials not the Windows Defender Advanced Threat protection portal credentials. 2. Select **Active Directory**. @@ -78,7 +80,32 @@ You need to add an application in your Azure Active Directory (AAD) tenant then 23. Save the application changes. -After configuring the application in AAD, you can continue to configure the SIEM tool that you want to use. +After configuring the application in AAD, you'll need to generate a refresh token. The refresh token is required when setting up an SIEM tool to consume alerts from Windows Defender ATP. Without the refresh token, the AAD application will not be authorized to provide alerts to your chosen SIEM tool. [AVIV IS THE LAST SENTENCE CORRECT? PLEASE CHECK.] + +## Generate a refresh token +Windows Defender ATP provides an events URL that you can use to generate refresh tokens. Some SIEM applications also include tools that allow you to generate refresh tokens. This section provides information on how you can generate a refresh token using an events URL. + +### Before you begin +Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: + + - OAuth 2 Token refresh URL + - OAuth 2 Client ID + - OAuth 2 Client secret + +You'll use these values to generate the refresh token. + +### Generate the refresh token +1. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=&tenantId=&clientSecret=` + + >[!NOTE] + >- Replace the *client ID* value with the one you got from your AAD application. + >- Replace *tenant ID* with your actual tenant ID. + >- Replace *client secret* with your encoded client secret. The client secret **must** be encoded. + +2. Click **Accept**. A file is returned with your refresh token. +[AVIV, PLEASE PROVIDE IMAGE OF SCREENCAP OF RETURNED VALUE WITH THE REFRESH TOKEN. JOEY: BLUR OUT ALL THE OTHER INFORMATION.] + +3. Save the refresh token value in a safe place. You'll need this value when configuring your SIEM tool. ## Related topics - [Configure security information and events management (SIEM) tools to consume alerts](configure-siem-windows-defender-advanced-threat-protection.md) diff --git a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md index f259348294..fe9d767764 100644 --- a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md @@ -25,26 +25,37 @@ You'll need to configure HP ArcSight so that it can consume Windows Defender ATP ## Before you begin -- Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: +- Get the following information from your Azure Active Directory (AAD) application by selecting **View Endpoint** on the application configuration page: - OAuth 2 Token refresh URL - OAuth 2 Client ID - OAuth 2 Client secret -- Create your OAUth 2 Client properties file or get it from your Windows Defender ATP contact. For more information, see the ArcSight FlexConnector Developer's guide. +- Download the *WDATP-connector.properties* file and update the following values: +(JOEY: PUT IN THE LINK FROM DOWNLOAD MANAGEMENT STUDIO) - > [!NOTE] - > **For the authorization URL**: Append the following to the value you got from the AAD app: ```?resource=https%3A%2F%2FWDATPAlertExport.Seville.onmicrosoft.com```
    - > **For the redirect_uri value use**: ```https://localhost:44300/wdatpconnector``` - > -- Get the *wdatp-connector.properties* file from your Windows Defender ATP contact. This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. -- Install the HP ArcSight REST FlexConnector package on a server that has access to the Internet. -- Contact the Windows Defender ATP team to get your refresh token or follow the steps in the section "Run restutil to Obtain a Refresh Token for Connector Appliance/ArcSight Management Center" in the ArcSight FlexConnector Developer's guide. + - **client_ID**: OAuth 2 Client ID + - **client_secret**: OAuth 2 Client secret + - **auth_url**: ```https://login.microsoftonline.com/?resource=https%3A%2F%2FWDATPAlertExport.Seville.onmicrosoft.com ``` + + >!NOTE + >Replace *tenantID* with your tenant ID. + + - **token_url**: `https://login.microsoftonline.com//oauth2/token` + + >!NOTE + >Replace the *tenantID* value with your tenant ID. + + - **redirect_uri**: ```https://localhost:44300/wdatpconnector``` + - **scope**: Leave the value blank + +- Download the *WDATP-connector.jsonparser.properties* file. This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. (JOEY: PUT IN THE LINK FROM DOWNLOAD MANAGEMENT STUDIO) +- Install the HP ArcSight REST FlexConnector package. You can find this in the HPE Software center. Install the package on a server that has access to the Internet. ## Configure HP ArcSight -The following steps assume that you have completed all the required steps in [Before you begin](#before-you-begin). +The following steps assume that you have completed all the required steps in [Before you begin](#before-you-begin). For more information, see the ArcSight FlexConnector Developer's guide. -1. Copy the *wdatp-connector.jsonparser.properties* file into the `\current\user\agent\flexagent` folder of the connector installation folder. +1. Save the *wdatp-connector.jsonparser.properties* file into the connector installation folder. The -2. Save the *wdatp-connector.properties* file into a folder of your choosing. +2. Save the *wdatp-connector.properties* file into the `\current\user\agent\flexagent` folder of the connector installation folder. 3. Open an elevated command-line: @@ -78,7 +89,8 @@ The following steps assume that you have completed all the required steps in [Be
    - +
    If you do not have a PC available to convert to VM, perform the following steps to download an evaluation VM:
    From 3290200b9045c777b5c57f73332315ccaa50eb7c Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Fri, 13 Jan 2017 15:46:29 -0800 Subject: [PATCH 095/210] updates --- ...ows-defender-advanced-threat-protection.md | 24 +++++++------------ ...ows-defender-advanced-threat-protection.md | 2 +- ...ows-defender-advanced-threat-protection.md | 2 +- 3 files changed, 10 insertions(+), 18 deletions(-) diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md index 72bedf6291..2701b35d24 100644 --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md @@ -48,26 +48,18 @@ You need to add an application in your Azure Active Directory (AAD) tenant then 12. Type the following URLs in the **Reply URL** field: - - Depending on the location of your datacenter, select either the EU or the US URL: - - For EU: `https://wdatp-alertexporter-eu.securitycenter.windows.com/api/FetchAccessTokenFromAuthCode` - - For US: `https://wdatp-alertexporter-us.securitycenter.windows.com/api/FetchAccessTokenFromAuthCode` + - `https://DataAccess-PRD.trafficmanager.net:444/api/FetchAccessTokenFromAuthCode` - `https://localhost:44300/WDATPconnector` 13. Click **Save** and copy the key in a safe place. You'll need this key to authenticate the client application on Azure Active Directory. -14. Open a web browser and connect to the following URL:
    - - For EU: -```text -https://wdatp-alertexporter-eu.securitycenter.windows.com/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234 -``` - - For US: -```text -https://wdatp-alertexporter-us.securitycenter.windows.com/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234 -``` -An Azure login page appears. -> [!NOTE] -> - Replace *tenant ID* with your actual tenant ID. -> - Keep the client secret as is. This is a dummy value, but the parameter must appear. +14. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=&tenantId=&clientSecret=1234`
    + + An Azure login page appears. + > [!NOTE] + > - Replace *clientID* with your client ID. + > - Replace *tenant ID* with your actual tenant ID. + > - Keep the *clientSecret* as is. This is a dummy value, but the parameter must appear. 15. Sign in with the credentials of a user from your tenant. diff --git a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md index c4386cb504..f259348294 100644 --- a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md @@ -69,7 +69,7 @@ The following steps assume that you have completed all the required steps in [Be
    Type in the name of the client property file. It must match the client property file.
    Events URLFor EU: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts

    For US: https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts
    Depending on the location of your datacenter, select either the EU or the US URL:

    **For EU**: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts
    **For US:** https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts
    Authentication Type OAuth 2
    Endpoint URLFor EU: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts

    For US: https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts
    Depending on the location of your datacenter, select either the EU or the US URL:

    **For EU**: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts
    **For US:** https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts
    Select *wdatp-connector.properties*.
    Refresh TokenPaste the refresh token that your Windows Defender ATP contact provided, or run the `restutil` tool to get it.You can use the Windows Defender ATP events URL or the restutil tool to get generate a refresh token.
    For more information on getting your refresh token using the events URL, see [Generate a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#generate-a-refresh-token).

    **To get your refresh token using the restutil tool:**
    a. Open a command prompt. Navigate to `C:\ArcSightSmartConnectors\\current\bin`.

    b. Type: `arcsight restutil token -config C:\ArcSightSmartConnectors_Prod\WDATP\WDATP-connector.properties`. A Web browser window will open.

    c. Type in your credentials then click on the password field to let the page redirect. In the login prompt, enter your credentials.

    d. A refresh token is shown in the command prompt.

    e. Paste the value in the form. +
    diff --git a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md index 9a9ce3abec..c6828b15c8 100644 --- a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md @@ -25,9 +25,9 @@ You'll need to configure Splunk so that it can consume Windows Defender ATP aler ## Before you begin -- Install the [REST API Modular Input app](https://splunkbase.splunk.com/app/1546/) in Splunk -- Contact the Windows Defender ATP team to get your refresh token -- Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: +- Install the [REST API Modular Input app](https://splunkbase.splunk.com/app/1546/) in Splunk. +- Generate your refresh token. For more information, see [Generate a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#generate-a-refresh-token). +- Get the following information from your Azure Active Directory (AAD) application by selecting **View Endpoint** on the application configuration page: - OAuth 2 Token refresh URL - OAuth 2 Client ID - OAuth 2 Client secret From 66d38c79a88412454deb23d790005c6bc883c408 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Fri, 13 Jan 2017 19:32:54 -0800 Subject: [PATCH 098/210] additional instructions --- ...configure-aad-windows-defender-advanced-threat-protection.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md index 10f8d31da6..af9b4e69c4 100644 --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md @@ -107,6 +107,8 @@ You'll use these values to generate the refresh token. 3. Save the refresh token value in a safe place. You'll need this value when configuring your SIEM tool. +After configuring your AAD application and generating a refresh token, you can proceed to configure your SIEM tool. + ## Related topics - [Configure security information and events management (SIEM) tools to consume alerts](configure-siem-windows-defender-advanced-threat-protection.md) - [Configure Splunk to consume alerts](configure-splunk-windows-defender-advanced-threat-protection.md) From 8e01a9edb69dee8b19749ea790cbd730fae30d43 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 17 Jan 2017 14:47:09 -0800 Subject: [PATCH 099/210] comment --- .../deploy/windows-10-poc-sc-config-mgr.md | 137 +++++++++++------- 1 file changed, 84 insertions(+), 53 deletions(-) diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index ef5e1258bb..cc287fd834 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -23,11 +23,35 @@ The PoC environment is a virtual network running on Hyper-V with three virtual m This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. ->Multiple features and services are installed on SRV1 in this guide. If less than 4 GB of RAM is allocated to SRV1, some procedures will require more time to complete. If resources are limited on the Hyper-V host, consider reducing RAM allocation on DC1 and PC1 to 2 GB and 1 GB respectively, and then increasing the RAM allocation on SRV1. You can adjust RAM allocation for a VM by right-clicking the VM in the Hyper-V Manager console, clicking **Settings**, clicking **Memory**, and modifying the value next to **Maximum RAM**. +>Multiple features and services are installed on SRV1 in this guide. If less than 4 GB of RAM is allocated to SRV1 in the Hyper-V console, some procedures will require more time to complete. If resources are limited on the Hyper-V host, consider reducing RAM allocation on DC1 and PC1 to 2 GB and 1 GB respectively, and then increasing the RAM allocation on SRV1. You can adjust RAM allocation for a VM by right-clicking the VM in the Hyper-V Manager console, clicking **Settings**, clicking **Memory**, and modifying the value next to **Maximum RAM**. ## In this guide -Description here. +This guide provides instructions to install and configure the Microsoft Deployment Toolkit (MDT) to deploy a Windows 10 image. + +Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. + +
    + + +
    TopicDescriptionTime + +
    [Install prerequisites](#install-prerequisites)Install prerequisite Windows Server roles and features, download, install and configure SQL Server, configure firewall rules, and install the Windows ADK.60 minutes +
    [Install System Center Configuration Manager](#install-system-center-configuration-manager)Download System Center Configuration Manager, configure prerequisites, and install the package.45 minutes +
    [Download MDOP and install DaRT](#download-mdop-and-install-dart)Download the Microsoft Desktop Optimization Pack 2015 and install DaRT 10.15 minutes +
    [Prepare for Zero Touch installation](#prepare-for-zero-touch-installation)Multiple procedures to support Zero Touch installation.60 minutes +
    [Create a boot image for Configuration Manager](#create-a-boot-image-for-configuration-manager)Use the MDT wizard to create the boot image in Configuration Manager.20 minutes +
    [Create a Windows 10 reference image](#something)This procedure can be skipped if it was done previously, otherwise instructions are provided to create a reference image.0-60 minutes +
    [Add a Windows 10 operating system image](#something)Add a Windows 10 operating system image and distribute it.10 minutes +
    [Create a task sequence](#something)Create a Configuration Manager task sequence with MDT integration using the MDT wizard15 minutes +
    [Finalize the operating system configuration](#something)Enable monitoring, configure rules, and distribute content.30 minutes +
    [Deploy Windows 10 using PXE and Configuration Manager](#something)Deploy Windows 10 using Configuration Manager deployment packages and task sequences.90 minutes +
    [Refresh a client with Windows 10 using Configuration Manager](#something)Use a task sequence to refresh a client with Windows 10 using Configuration Manager and MDT90 minutes +
    [Replace a client with Windows 10 using Configuration Manager](#something)Replace a client computer with Windows 10 using Configuration Manager.90 minutes + +
    + +
    ## Install prerequisites @@ -136,27 +160,16 @@ Description here. ``` 6. Right-click **ADSI Edit**, click **Connect to**, select **Default** under **Computer** and then click **OK**. - 7. Expand **Default naming context**>**DC=contoso,DC=com**, right-click **CN=System**, point to **New**, and then click **Object**. - 8. Click **container** and then click **Next**. - 9. Next to **Value**, type **System Management**, click **Next**, and then click **Finish**. - 10. Right-click **CN=system Management** and then click **Properties**. - 11. On the **Security** tab, click **Add**, click **Object Types**, select **Computers**, and click **OK**. - 12. Under **Enter the object names to select**, type **SRV1** and click **OK**. - 13. The **SRV1** computer account will be highlighted, select **Allow** next to **Full control**. - 14. Click **Advanced**, click **SRV1 (CONTOSO\SRV1$)** and click **Edit**. - 15. Next to **Applies to**, choose **This object and all descendant objects**, and then click **OK** three times. - 16. Close the ADSI Edit console and switch back to SRV1. - 17. To start Configuration Manager installation, type the following command at an elevated Windows PowerShell prompt on SRV1: ``` @@ -210,7 +223,11 @@ Description here. Copy-Item "C:\Program Files\Microsoft DaRT\v10\Toolsx86.cab" -Destination "C:\Program Files\Microsoft Deployment Toolkit\Templates\Distribution\Tools\x86" ``` -## Create a folder structure +## Prepare for Zero Touch installation + +This section contains several procedures to support Zero Touch installation with System Center Configuration Manager. + +### Create a folder structure 1. Type the following commands at a Windows PowerShell prompt on SRV1: @@ -225,13 +242,13 @@ Description here. New-SmbShare -Name Logs$ -Path C:\Logs -ChangeAccess EVERYONE ``` -## Enable MDT ConfigMgr integration +### Enable MDT ConfigMgr integration 1. On SRV1, click **Start**, type **configmgr**, and then click **Configure ConfigMgr Integration**. 2. Type **PS1** next to **Site code**, and then click **Next**. 3. Verify **The process completed successfully** is displayed, and then click **Finish**. -## Configure client settings +### Configure client settings 1. On SRV1, click **Start**, type **configuration manager**, right-click **Configuration Manager Console**, and then click **Pin to Taskbar**. 2. Click **Desktop**, and then launch the Configuration Manager console from the taskbar. @@ -240,7 +257,26 @@ Description here. 5. In the display pane, double-click **Default Client Settings**. 6. Click **Computer Agent**, next to **Organization name displayed in Software Center** type **Contoso**, and then click **OK**. -## Enable PXE on the distribution point +### Configure the network access account + +1. In the Administration workspace, expand **Site Configuration** and click **Sites**. +2. On the **Home** ribbon at the top of the console window, click **Configure Site Components** and then click **Software Distribution**. +3. On the **Network Access Account** tab, choose **Specify the account that accesses network locations**. +4. Click the yellow starburst and then click **New Account**. +5. Click **Browse** and then under **Enter the object name to select**, type **CM_NAA** and click **OK**. +6. Next to **Password** and **Confirm Password**, type **pass@word1**, and then click **OK** twice. + +### Configure a boundary group + +1. In the Administration workspace, right-click **Boundaries** and then click **Create Boundary**. +2. Next to **Description**, type **PS1**, next to **Type** choose **Active Directory Site**, and then click **Browse**. +3. Choose **Default-First-Site-Name** and then click **OK**. +4. In the Administration workspace, right-click **Boundary Groups** and then click **Create Boundary Group**. +5. Next to **Name**, type **PS1 Site Assignment and Content Location**, click **Add**, select the **Default-First-Site-Name** boundary and then click **OK**. +6. On the **References** tab in the **Create Boundary Group** window select the **Use this boundary group for site assignment** checkbox. +7. Click **Add**, select the **\\\SRV1.contoso.com** checkbox, and then click **OK** twice. + +### Enable PXE on the distribution point 1. Deterime the MAC address of the internal network adapter on SRV1. To determine this, type the following command at an elevated Windows PowerShell prompt on SRV1: @@ -286,7 +322,7 @@ Description here. The log file will updated continuously while Configuration Manager is running. Wait for Configuration Manager to repair any issues that are present, and periodically re-check that the files are present in the C:\RemoteInstall\SMSBoot\x64 directory. Close the Configuration Manager Trace Log Tool when done. -## Create a branding image file +### Create a branding image file 1. If you have a bitmap (.BMP) image for suitable use as a branding image, copy it to the C:\Sources\OSD\Branding folder on SRV1. Otherwise, use the following step to copy a simple branding image. 2. Type the following command at an elevated Windows PowerShell prompt: @@ -296,6 +332,7 @@ Description here. ``` >You can open C:\Sources\OSD\Branding\contoso.bmp in MSPaint.exe if desired to customize this image. + ## Create a boot image for Configuration Manager 1. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Boot Images**, and then click **Create Boot Image using MDT**. @@ -563,7 +600,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 16. On the Confirmation page, click **Finish**. -## Edit the task sequence +### Edit the task sequence 1. In the Configuration Manager console, in the **Software Library** workspace, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Edit**. @@ -645,7 +682,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 10. Enter **\Monitoring\Overview\Distribution Status\Content Status\Windows 10 Enterprise x64** on the location bar, double-click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. -## Create a deployment for the task sequence +### Create a deployment for the task sequence 1. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Deploy**. @@ -659,36 +696,6 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 5. Click **Close**. -## Configure a boundary group - -1. In the Administration workspace, right-click **Boundaries** and then click **Create Boundary**. - -2. Next to **Description**, type **PS1**, next to **Type** choose **Active Directory Site**, and then click **Browse**. - -3. Choose **Default-First-Site-Name** and then click **OK**. - -4. In the Administration workspace, right-click **Boundary Groups** and then click **Create Boundary Group**. - -5. Next to **Name**, type **PS1 Site Assignment and Content Location**, click **Add**, select the **Default-First-Site-Name** boundary and then click **OK**. - -6. On the **References** tab in the **Create Boundary Group** window select the **Use this boundary group for site assignment** checkbox. - -7. Click **Add**, select the **\\\SRV1.contoso.com** checkbox, and then click **OK** twice. - -## Configure the network access account - -1. In the Administration workspace, expand **Site Configuration** and click **Sites**. - -2. On the **Home** ribbon at the top of the console window, click **Configure Site Components** and then click **Software Distribution**. - -3. On the **Network Access Account** tab, choose **Specify the account that accesses network locations**. - -4. Click the yellow starburst and then click **New Account**. - -5. Click **Browse** and then under **Enter the object name to select**, type **CM_NAA** and click **OK**. - -6. Next to **Password** and **Confirm Password**, type **pass@word1**, and then click **OK** twice. - ## Deploy Windows 10 using PXE and Configuration Manager 1. Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: @@ -747,13 +754,37 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi Checkpoint-VM -Name PC1 -SnapshotName BeginState ``` -3. Sign in to PC using the contoso\administrator account and type the following at an elevated command prompt: +3. Sign in to PC1 using the contoso\administrator account and type the following at an elevated command prompt to remove any pre-existing client configuration, if it exists: + ``` + sc stop ccmsetup + "\\SRV1\c$\Program Files\Microsoft Configuration Manager\Client\CCMSetup.exe" /Uninstall + ``` +4. On PC1, temporarily stop Windows Update from queuing items for download and clear all BITS jobs from the queue: -CCMSetup.exe /mp:PS1 /logon SMSSITECODE=AUTO + ``` + net stop wuauserv + net stop BITS + ``` -3. On SRV1, in the Configuration Manager console, in the Asset and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. + Verify that both services were stopped successfully, then type the following at an elevated command prompt: + + ``` + del "%ALLUSERSPROFILE%\Application Data\Microsoft\Network\Downloader\qmgr*.dat" + net start BITS + bitsadmin /list /allusers + ``` + + Verify that BITSAdmin displays 0 jobs. + +3. To install the Configuration Manager client as a standalone process, type the following at an elevated command prompt: + + ``` + "\\SRV1\c$\Program Files\Microsoft Configuration Manager\Client\CCMSetup.exe" /mp:SRV1.contoso.com /logon SMSSITECODE=PS1 + ``` + +4. On SRV1, in the Configuration Manager console, in the Asset and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. 4. Use the following settings in the **Create Device Collection Wizard**: - General > Name: **Install Windows 10 Enterprise x64**
    From 6212fed8ff68905e45b53febd6b94397842eded3 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 17 Jan 2017 15:03:26 -0800 Subject: [PATCH 100/210] comment --- windows/deploy/windows-10-poc.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 2ee43eb267..18fe963e7a 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -19,7 +19,7 @@ This guide contains instructions to configure a proof of concept (PoC) environme - [Step by step: Deploy Windows 10 in a test lab using MDT](windows-10-poc-mdt.md)
    - [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
    -The PoC deployment guides are intended to provide a demonstration of Windows 10 deployment tools and processes for IT professionals that are not familiar with these tools, and those that are interested in configuring a proof of concept environment for their own purposes. The instructions in this guide should not be used in a production setting, and are not meant to replace the instructions found in production deployment guidance. +The PoC deployment guides are intended to provide a demonstration of Windows 10 deployment tools and processes for IT professionals that are not familiar with these tools, and those that are interested in setting up a proof of concept environment. The instructions in this guide should not be used in a production setting, and are not meant to replace the instructions found in production deployment guidance. Approximately 3 hours are required to configure the PoC environment. You will need a Hyper-V capable computer running Windows 8.1 or later with at least 16GB of RAM. Detailed [requirements](#hardware-and-software-requirements) are provided below. You will also need to have a [Microsoft account](https://www.microsoft.com/account) to use for downloading evaluation software. From 6ffc0dcf3fdaae66610c32fd16e8979cc3271dfa Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 17 Jan 2017 15:27:31 -0800 Subject: [PATCH 101/210] updates from sme --- ...ows-defender-advanced-threat-protection.md | 25 +++++++++++------- ...ows-defender-advanced-threat-protection.md | 11 ++++---- ...ows-defender-advanced-threat-protection.md | 2 +- .../keep-secure/images/atp-refresh-token.png | Bin 0 -> 229396 bytes 4 files changed, 21 insertions(+), 17 deletions(-) create mode 100644 windows/keep-secure/images/atp-refresh-token.png diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md index af9b4e69c4..bdab2fc797 100644 --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md @@ -24,7 +24,7 @@ localizationpriority: high You need to add an application in your Azure Active Directory (AAD) tenant then authorize the Windows Defender ATP Alerts Export application to communicate with it so that your security information and events management (SIEM) tool can consume alerts from Windows Defender ATP portal. -1. Login to the [Azure management portal](https://manage.windowsazure.com). +1. Login to the [Azure management portal](https://ms.portal.azure.com). >!NOTE: >Use your Azure credentials not the Windows Defender Advanced Threat protection portal credentials. @@ -80,30 +80,35 @@ You need to add an application in your Azure Active Directory (AAD) tenant then 23. Save the application changes. -After configuring the application in AAD, you'll need to generate a refresh token. The refresh token is required when setting up an SIEM tool to consume alerts from Windows Defender ATP. Without the refresh token, the AAD application will not be authorized to provide alerts to your chosen SIEM tool. [AVIV IS THE LAST SENTENCE CORRECT? PLEASE CHECK.] +After configuring the application in AAD, you'll need to obtain a refresh token to be used when you configure the connector for your SIEM tool in the next steps. The token lets the connector access Windows Defender ATP events to be consumed by your SIEM. -## Generate a refresh token -Windows Defender ATP provides an events URL that you can use to generate refresh tokens. Some SIEM applications also include tools that allow you to generate refresh tokens. This section provides information on how you can generate a refresh token using an events URL. +## Obtain a refresh token +This section provides information on how you can use an events URL to obtain a refresh token. Obtain a refresh token used to retrieve the Windows Defender Advanced Threat Protection events to your SIEM. +>[!NOTE] +>For HP ArcSight, you can obtain a refresh token using the restutil tool. ### Before you begin Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: - - OAuth 2 Token refresh URL - OAuth 2 Client ID - OAuth 2 Client secret -You'll use these values to generate the refresh token. +You'll use these values to obtain a refresh token. -### Generate the refresh token +>[!IMPORTANT] +>Before using the OAuth 2 Client secret described in the next steps, you **must** encode it. Use a URL encoder to transform the OAuth 2 client secret. + +### Obtain a refresh token 1. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=&tenantId=&clientSecret=` >[!NOTE] >- Replace the *client ID* value with the one you got from your AAD application. >- Replace *tenant ID* with your actual tenant ID. - >- Replace *client secret* with your encoded client secret. The client secret **must** be encoded. + >- Replace *client secret* with your encoded client secret. The client secret **must** be pasted encoded. -2. Click **Accept**. A file is returned with your refresh token. -[AVIV, PLEASE PROVIDE IMAGE OF SCREENCAP OF RETURNED VALUE WITH THE REFRESH TOKEN. JOEY: BLUR OUT ALL THE OTHER INFORMATION.] +2. Click **Accept**. When you authenticate, a web page opens with your refresh token. + + ![Image of web page with refresh token](images/atp-refresh-token.png) 3. Save the refresh token value in a safe place. You'll need this value when configuring your SIEM tool. diff --git a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md index fe9d767764..c8c613de26 100644 --- a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md @@ -29,8 +29,7 @@ You'll need to configure HP ArcSight so that it can consume Windows Defender ATP - OAuth 2 Token refresh URL - OAuth 2 Client ID - OAuth 2 Client secret -- Download the *WDATP-connector.properties* file and update the following values: -(JOEY: PUT IN THE LINK FROM DOWNLOAD MANAGEMENT STUDIO) +- Download the [WDATP-connector.properties](http://download.microsoft.com/download/3/9/C/39C703C2-487C-4C3E-AFD8-14C2253C2F12/WDATP-connector.properties) file and update the following values: - **client_ID**: OAuth 2 Client ID - **client_secret**: OAuth 2 Client secret @@ -47,15 +46,15 @@ You'll need to configure HP ArcSight so that it can consume Windows Defender ATP - **redirect_uri**: ```https://localhost:44300/wdatpconnector``` - **scope**: Leave the value blank -- Download the *WDATP-connector.jsonparser.properties* file. This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. (JOEY: PUT IN THE LINK FROM DOWNLOAD MANAGEMENT STUDIO) +- Download the [WDATP-connector.jsonparser.properties file](http://download.microsoft.com/download/0/8/A/08A4957D-0923-4353-B25F-395EAE363E8C/WDATP-connector.jsonparser.properties). This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. - Install the HP ArcSight REST FlexConnector package. You can find this in the HPE Software center. Install the package on a server that has access to the Internet. ## Configure HP ArcSight The following steps assume that you have completed all the required steps in [Before you begin](#before-you-begin). For more information, see the ArcSight FlexConnector Developer's guide. -1. Save the *wdatp-connector.jsonparser.properties* file into the connector installation folder. The +1. Save the [WDATP-connector.jsonparser.properties file](http://download.microsoft.com/download/0/8/A/08A4957D-0923-4353-B25F-395EAE363E8C/WDATP-connector.jsonparser.properties) file into the connector installation folder. The -2. Save the *wdatp-connector.properties* file into the `\current\user\agent\flexagent` folder of the connector installation folder. +2. Save the [WDATP-connector.properties](http://download.microsoft.com/download/3/9/C/39C703C2-487C-4C3E-AFD8-14C2253C2F12/WDATP-connector.properties) file into the `\current\user\agent\flexagent` folder of the connector installation folder. 3. Open an elevated command-line: @@ -89,7 +88,7 @@ The following steps assume that you have completed all the required steps in [Be Select *wdatp-connector.properties*. Refresh Token - You can use the Windows Defender ATP events URL or the restutil tool to get generate a refresh token.
    For more information on getting your refresh token using the events URL, see [Generate a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#generate-a-refresh-token).

    **To get your refresh token using the restutil tool:**
    a. Open a command prompt. Navigate to `C:\ArcSightSmartConnectors\\current\bin`.

    b. Type: `arcsight restutil token -config C:\ArcSightSmartConnectors_Prod\WDATP\WDATP-connector.properties`. A Web browser window will open.

    c. Type in your credentials then click on the password field to let the page redirect. In the login prompt, enter your credentials.

    d. A refresh token is shown in the command prompt.

    e. Paste the value in the form. + You can use the Windows Defender ATP events URL or the restutil tool to get obtain a refresh token.
    For more information on getting your refresh token using the events URL, see [Obtain a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#obtain-a-refresh-token).

    **To get your refresh token using the restutil tool:**
    a. Open a command prompt. Navigate to `C:\ArcSightSmartConnectors\\current\bin`.

    b. Type: `arcsight restutil token -config C:\ArcSightSmartConnectors_Prod\WDATP\WDATP-connector.properties`. A Web browser window will open.

    c. Type in your credentials then click on the password field to let the page redirect. In the login prompt, enter your credentials.

    d. A refresh token is shown in the command prompt.

    e. Paste the value in the form. diff --git a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md index c6828b15c8..ee6c76e9b7 100644 --- a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md @@ -26,7 +26,7 @@ You'll need to configure Splunk so that it can consume Windows Defender ATP aler ## Before you begin - Install the [REST API Modular Input app](https://splunkbase.splunk.com/app/1546/) in Splunk. -- Generate your refresh token. For more information, see [Generate a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#generate-a-refresh-token). +- Obtain your refresh token. For more information, see [Obtain a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#obtain-a-refresh-token). - Get the following information from your Azure Active Directory (AAD) application by selecting **View Endpoint** on the application configuration page: - OAuth 2 Token refresh URL - OAuth 2 Client ID diff --git a/windows/keep-secure/images/atp-refresh-token.png b/windows/keep-secure/images/atp-refresh-token.png new file mode 100644 index 0000000000000000000000000000000000000000..3f7e8c7c6936074abd1492b8622c3304ba5e207e GIT binary patch literal 229396 zcmcF~WmHws+Abv}0t(U~0uqwajUe6K-6h>ENOw0VDc#-O-QC^Ya3|-x=g)V4-|cWX zTzl=c*IskZ_kC&xN=pj8L&QOZfPi=>BFrxf0RgiL0Rh`W{zAkYv#6NBT3ug8B_S~=U87#Z6^6rv2WgQLj*Icj5|^Li?woykuF2&Nkp z1n>^R>pOCmhIWoRHUFhdb-<}M5H+op;ova*>tQ7w8w(Q)BZyYq zZE)M*ZvXRndmB9ih^rT$ga4lP!}8}(0}DHd>%q7da18eKGyc1!B! zt~A~=4gL$y-v@uBct+&dRpJa7|KArk=I<5qP^Pn+Qir@c!b?*d_wwf6K@0VNH z|G$&rAp-fKyo?zUy=D#+Jm32ALBK#kLg=f&evcx_7$XnlCpu!;a*HC#TcM42;*?~? zljM*h`EWPuE;o@T%82s?54m8)r)~9355G+oVa{i!)TWY$8Ns-%x8oNzG0jq9TF$b^lz*l-CRYem2>LDaZdBOP$GM+1g^L+Nvlypq<}r+$0gve_PP z+ZdyubL{Y*iDMb?(+YO_J^o7n8>!5CZYsG?aKZPTOP!F^F$Jxq*Jv;9_C=pBeG|Jla=IB}DXIoD}WM2~P%nipP)dGZlu|JY@f>RLKl6 zya;r?F=Nn}apP)&6>G?xd9yx|cN-x%H+LfO+Lb8sJ2+{8o;?*=I7kE89~vTk#D8Ls zBvLp+n1l`sY2PEBFNy?)SDNSJ+83r5QI9vg-~$CMT^rVq9y~Ph2i~@VMDO`!I<@K4 z71{5J@Q^cS4oY_M(m&=w{f#0pSpT#5Ld)KCkvVA%?yY{NL6d^W$0memQY0#?+P4KR zhB;~e*r$z9u^?8NDrY)Tn8dqHTeyIszbu~by{b7gZbZsI>`=j~lvvlX2X2a=95|sw zLF;d>n5t;+IA!+bPOk9+`RQ;%O-vN;*J%+&u_#qYm@%aXwNk@F zv8PHt6~~C3Fz3u1jP2Qxd_cIuVtt7sj1*RPz|P5`y-Es-D402zNVB&(GfEj(%GqXP zO8qMh&x<-f9977R8q@-6@1nL^k~?ISTVjYTi{{N%f7&M8k7#b!hXxp%%HW z#>tt|NwdI@|9Nc;ctPw%!y4GYXfxsj_H6v-`}`sBx9MC4JX-4;?;rVFGg|?c5Q+r~ zA6M4TSbu%@a^ftOWR#_TXU?2#`Y{tPT9^b?Kqj>jjF1A7Se5LB6X!ltEbmHBpk@D` zC2hKYd(z9=!5INd7I4B9aS;aC!CmKhg=S!-o;j(fCOlJvtFxyTOF^CwXg}qESulQ_ zNWXS0=5!D$I}=MUJCEeXjDhZXK<>bZ+e!~_ie?JdKJcmL7=8mYcZ23;q9V1Ki zq0Kp%8$9xUO;i{dUg3uZ&61YZcBJ88s|fSlGG+0n;)%WSH0XGr^Fg`7BE7PNud9he zhDfl`;NFjR!2j>n#YjFR3~g6FOZO>}e2_V@%oqL_5FKQ^sHQJ{pP@`8$cm?UQL-rq zX1z$1XXSqC;EAFX0`a>l2dcgeR38qMYSJ;8kCCQ(RH>c^r%ALMzLhv6sM zVpOI~^RSqA#dD>S)mSM%A0@jYw=kvE9`&uN$)E3UW%Z57z2g=)#gP=+%Kt6d&4pPA zR#qPLZ~s9n81U&=%*j(SbnOdZlTaK(gY}ju=6d#b0Jg%n0RDC8A&Kz_ma+inU7pob$N#+ z0mP!qVE*49ij#b}eR{6k3DGUf;)Hu$;wN861hT2*JTYN@Y10Wa;t1qUc+k(v9MfL}vTGm~)ne)s%=V4W@Fd;8jWw(^;3>{*qGd+jsx-3Z;F^M-)j&ObpFxIj7H@Jh5Jq zt?FD=U7e2>GuanMKWk=Y1})uHEEak1$7)}SxL2lP$F4E&=-=@d(IzO_^n{U@o>_Wd zn+6>*Z%>KzcaW>UENle#T|r4nZg%z;Y7K8f?TR^gSf6~WSq_JZE%DRX%3VA5`uh5D z{@*RW%A9%8wN|X+R2Xta>&-}Isxhv46MOOnXm7rh#IFw~GMKEy>OB*v%g9kz%Pz&r zy+O==7nG4;`18TKtXfv46ImGXOVDXCyjmWVcK#P%T}X6znBCpoKjr1JT#D8lPh#-B zVD>$!THbUP7t=uff&e4auvFZQ_#jpr=C0VeamMJlI#~(&a>0>E8M&NrC|c6|2*q@7 zUWR}c=+HrE`1tq`nDCPE8{VLl_xATgMU60Lj{Q?rbZuH@94l>V;*v;Vz(O*`SA_Y{ z#jX}-z|O%jvG25BA&f47hwPu!vRpnxQU~qBM5g@1&y$PzqQ{f z?MJlfP(uZ$%AYc#zd~iJ;(sNQ%HPT^m&zZ#Qc>r*TK>90-1YP*n^oUS85aqD&a_>B z@Nly(`EzzRO5Rh^$WF)3g~s(&Y^7g^j;fm4geLzpb%^JG0T#E}r4;ww<_N^H>j@XL z<+8Y#*jot+3GiE9Yj*{GL`O$ob!eD!V)Xn;nXqhKkNy_*cA)OmJuPdS*P2Zt^y8$` zU9M_tk!n>?&9X~yRMdwlzRLk=n)qNMB=S2+YKCmi*rJMx=vYdna@!rr^NWkVzP`H6 zyN@$g;XNI1X&YN3iG{Ej43RK`1?*4c=9|YqQP@|45B%^)mQhn1=#Qn$%gfU_U2V&! z%k1>HZxks~>c9F*NvTq2^My<*P5<_E4J)*p@om>Zw6x8)L{n2!A)k0Osr9m7n($(3 zO&_k0HWH1}bVmR1ULMS#u%6KDU)-@eof3N9Po!J1;vwNM3QJUwh?v+5*M%?CSnkyA zq-ECDCM+(h6E0mTzW3BEOHefw^$5r3=nli@`1kMMpPU>&_lIlng9^BVM^ZWb2e#Hj zS(dd=mYYJbzCkrCrD0GWM_>NPvnZgZrfz&ZA2?iTNgvA;@?6_!zbcl>JA;P2+Da`? zKVMY5t{dMep|1uw*nGJ$5j|H9YSv^HXdHGViJ=qU|Fg~#F>I=S=&CDp1nSZXg{(?5K zRQcE@8mKqDv{WQ%P9wlcurvDi2j|5g!{aI(kM=_K&&|!vh{VLcy@_1sjZhYHO3KW- zxeDi^mHZ5 zb)@iSIaOmb(&Wrc!Hd+pl#)j+>%fVFtHb%KV3rj(ISr;0P*CnDrgKCa6!=5r#Rex| zK7sF9YH%z#-dS2&0ym^p`mc8iVaS>KdX=(D{Du2p6-*tP1zUd8)Kq+X? zcJ}rfqbNCupAmn3hY0V9-fmxXU0-UTm0y%mDpKt_UTWAoK9+Rdv##5UuTSvSy~|cE z1GAWk+TPy2@%jE>a&q!tah7PKB?0;Sc|#O&>v z2*UmI^S{Q?X!PeR6zuNrXMhp#fkUxb??iAoUhK<}NCpQ*D@q?p;!=a&YVQ+?HaHyV zg0iHQ#J#+8aaG6uZ+r$+?aG$iYc-`H-8OP~D36v;;XOWGx^?DnwRbsU1mxt<3Y1C| z5A?Lo%w9fZ`JEY?ndx2aPsuAPdSn=-6T(kUPoG~eSjuT>g};)+nbH4w-Ijm;YCR+v zhS!%R5>5W~>$+0Q{l_xp5H*WBUkbS#a8hfYTy6rVbGhjlVUX_pS8vb*K$SXuycp4A z#CgCwz3z(m{NonPoY0BA&6}1NE`o5ORAB)3MMXt#j~!bEyda?gFcD8>k9~Y}d;P(1 zpWIqg*lfKnFsuv=3>q(nIrI$-%BO{s{;#U?BHs@GwaVEFP#p*wTrt_)uQ}`B{FL+Q2zA|4e3qBNti7b zg$)f!+qCJ1xb{jU0NmUdg7M)sH8lk^1qqk=@a>5qsJ?8j*HnOpg3IXCEQpYN;LjWj zu1BTBu#(G_TnlB1i;msmLw~bwZ6Ls90Cl4x?nlG@J`!>%_x6#>_~*|pI|(K>wmN;o zx&VG%_zVI_{15c(DnhI{-MaMAYc?{f>`64~@r{jc?PKty8$D{XyTXX zyNSkOnnwylJWY`YV*ISq=O?T#L`ejVKNEYk_xlBP`}qa(m&E9%w zK_Db9;<0?753K!dJeoVDlxoH89uy#>tQ^o`*rQKJL`Gug?bWBvKZ>v$<3sEH2kq3} zx$b!WAc55b%E8}R{skIpruMe(CDT8?4$_3VD{a0SB_LdPPg(3(`>g!2{tNRkyOj)HN? zZfs1cGMgE1@$@8czm!?G4h+R*q1S0A0gI_^!Lme#+7JD+U|_Ig9yii3ZOrD)gEf09 zXe0q;dObG#lX)!>S7Wi);h2`KpsG4?5->Sr&6z89sdSZBm(?Kz_XW+Fw*A2j6hp8p z_mcFid&-USe>V*-cr5(8!nz+ZxdfP8|lc_viMo;Q5ByOZLFIjK{>gUUS6gN31*Z0n6 z)<5^#5Bf1pJUw};)6=g#;Ny*rKlFmub5Fi07VgO{R^0e!$N&b;9 zPbx26$(u@DFUox|nAEDjXATVZ#z;4+VIje4I&Xd49!$)vHwJtfti^KxlF*G_IHw@!vE9F>e*=9 zIMb%X0;NmTmIKk3Z`PdIjvZgK1T%d^h$!+;QxiTfDgf5fBWUn2td7TcptgO}>qbTN zjWAI8_@Jt)diwChiibRf&w>gME{y;K1@3Xt!f`%7M)Z$`0ih+hHYKIr?&#m$tNTh3 z-XA}pUn?Lcre2vcC~E+Grg_|(AijO8(&+RJ8Wu_TEoyP&+0C7sypj@wb}PjF%?Sz# z8A_0V23V8_S5c{{p&e_|N&W+lCd`$wPiU8#0(9tnT-W9e(dR^y%M+3Vy>01uf`wBKmp<6b#GaKqaK?@Z~}0mn5N6E9%UY8J?b!;j|(Yj85$KyVrmGhOazm zh!`C74`7>$Il!Itq^-+TQKDv;K%e<8Bn0Q|?A)i|W$&WtbY^hvaSQqM7FJfnHSYQ8 zeq!xne15Y3Hc;>E;m0J)6x!P!ET(F7BSF&TV+fZqVRi2ap5Gl7f9rEF>^}Sm3XX&n z5!FVGLK8Of^RZ$L&=g0sq=`o>=;E&_d0WvIB0@VlFC9)Eq`$SzM>Jf=z$8yV4W8=R z+OY;$*s{vX@a6nJ?d@f6hlf8?&J-bP_9G4>`}^4L41d!XM)>tTz=<=gV{P^JYye?c(pq(@BGRLMW)=hl z{etu56ne|WTb|#rnsZt6qV>fi#`X+Y8yQ5Wr=tjCT@pna!(?Uo&i?fg!lKiLV6$Ke zbixyntY26A$vnTH+H2hqD9D$>s_8RiNK8wMQZU48D~4M_?dj72hkQZHbB9S~2&dS9 zt>p-z)hg8cDMQ~FK~|g(L%)!excPg;@U>(XLEGo|!P@k@fxn~N)0T}pPmZ#Ri;;oQ zFtEi}GBdHfTujr-P@47oeqOb{p@D*e0+Phe1}clyhNxSNwz>EI>fm*8ITR!+ll&eq zA;Y^w3;u0fSdyu~D;;4FVW2OzC469u2q*MIa98P^IVg>iX`CXit{i}g zRaY}#Ipt1>*xE7xc6xcT@~LJa72|Y8o6c%`5PN=pz7{mw2!lj$J>4=aFy+CgzkdBX zx@QNbUjEts{=q@7)%-UsBs?CElvh+zv4HT#Cnh%5`if}=0u>3S^qN!aYySYyPGhbc z`Jn?YLlnS;Kn<-`r=hPXhrfL)baj3A$}*-4RTiB#Leb-62;sGv$uRX)nznx`7TzgZ}>V)7Y7 zj81n`n6Hg6F3l*6N`w`U`8%H|$!>f+G|A`zTCZ$Mh0%VQ>X9-PvpA^_j>nJO=&@j; zT@sko!Lm%D-rnBbz#>W=MtFX`&oI!p9ZSEVAdyJXXd0r8iM&6eA$*veVHq8t?v6o- z4(LNj!o{`L*B>39{5=u*t0R)v{tA20kO6=+aH+ASB?(Z3!N@%}dZ(d6lS2JMr5-9m zBH+aGk%40eXiC@yFI7^=&=8iLH)mks*PL$F@uEtIAo0`r{d+_*JtTH~Nt|SyGnb~z z5!zPM^6N`7b~_tyekv$gJi6~hZFROgr!GxkT}MX73jFI))yRwQ4_0c@1RM<-jZ}(s z^}_mmQzR%jxNoo@DwU=V@=O?}%qYaR`N>`NBbEJq^z-?;t{j8Gw^#fiOp#x-uBCuzf4`Jt2lb}ET5NrFFAiMgwaf8=V%E@ zm6MAZES)5V_?Iho*K+!;C7oxcODjPmh_cvI$>~WShlGYIzIohEr$EM2N={lfEc&58 zKEfk0O)kgdsdjw#z(d`HNp$;VVud$5Ew_e)B0I(cA^$oh%IC~Y-eM~kDcZ-%3E)MN1b!#{ z4%nz=%M&v$iv@q2L7LmS2w0*$_4Ws|Ks}k!aKx`L9Lgvz4&!pYUOjU{h56Ok$Qeha zl2QMe;#YdAB$;7FVplMx?e6GjkGlaanyxIN{Ap8QO${uD<1hsQZa-bDF;J}0 zkih&CCxg6PrvsK>W;4H__?5^@EA7bgCmkM|PYsE@Pl|~Z7m$(fs*xt=2Mf?>By9^Q zG>pv5y3EOE4^NE`#|`4i%%N(QO|ii90!>(-K96VykbO1)DF6uta+B55)eM8#G}WO) z!@h0~Rjss!#!$2SLqN~Q;Zj39SkHjXhI8Ksppi+g-aPE>?rP7K8$3?%JVk#sEK;ip z13DmhA{pfLmdl)^;t8$bw&isyo0~zEA*J(tc3XY?TEWD`M5R$LA1YwG+4~-}SLgk_ zTr6%kR)9x%UhYOffhQcG2ZE6iShGMr6sp<;H~%V2@cO{&RLt!j9(L-}>r|=UbmeYCSI_^DzEg^ z*wnP$qDBtrLr*s=BY>Ns3Pb``5=a?F!zrI}LS+>dyO$hSBmfC5X}NI{)^v&1 zhy=@0XAFg${F-dZ3>q?=2#G$Z?u z9Bg{<9qC*yjTHe6_y6SH8WE-IaW?3wORu8*GR$!}SK+Vqd>+rg@eLWDUEDu67?5dM zdB%tm_an2~CBybL^2E8m`h7cA=l#7GV2AzV-N2;P44K%|2YQJ4Qhh8CLnh|t`Z!J+ zI~MC~Uweztz`)&AiAUFH+mG8mDGxq6teob*fgdRqtrmXP=+LY6jf_aCvS1J4aXLxc zzd-?XHiQ2>69DrPXgMETz z`;i9tKk*6F=Ts^ynM-vx9_;Mz|NZ0a?u{hA>+X0-u$x1A^DRh3X?kKxp-`m)wqkBD z>WkPvE?Yk(E%(rZT=k*E{fe0Q_zf%8+vl4WDGv{BO-mLgCL@4Z2UFOBtv5(f!^Ij; z7e4`d3;1`wWcvE{UClSwVXCPv>9SRJfPPsPt)Kzt22CklCR4D?`N9xrj{y1;V`F2R zFJ2;3Q%i8(uKK7uF4@EU;8iSE&#Q--KXSmJQ4i?TCqjiU^?dOll}r&95kaV`swz}2 z^G4VpJzw=f0gG*}(gdyOCqdEzKtn#WM-BvTr@X)m1(F|>y^(2x!;m~O9_x1jfj5pT zO#yd~Zg2d#=5D~eUw1GXpPd~XC}|YtBkT|%wCKiP~0Mm8W zwD>Hfs_XA$x<9bG)rN$HAp;d(xl|jH!Dx81sAhQ`EDW&Z{0~Z6(tvFEs&COVFtFM0 zqrZ9chVyz>56EukZE&B~01a^{gpy&Dm6z|lK3YKV<-_B0L60BkLh(3-9u(xVe>Vgk z$t#d^6=UFVJl>3}vwe?5I_P&ni(+aze14$yk|a#h-tx52GB!QkUE=v<28tRP&mDq; zD+f^Y*1%m*sa6IgCE-jLsr7)-C#R;)Zf=f5Bg<#C&IoF62X4N;zO2?tZ;pi8Z1qoE zVAdL?Im2f5#i&bQLyCA0Un5srt_&|XxjL^0lDYi;Yv^#YJTRFzvua}?qpBJ-X8}p_ zL3X5_$D3gEN_;;G!_C7JHFqMAmoakpy>h7Fdl9~m1d1h^67KF?U~R9(safc(wflnE z1eDe8zd!szoS}8&jLz{`eS0Lmr1`fj#t0})`cwG|fHnaK!TD-RX{tIMD2}gn!^})h z%WBS?In8Mu0S_4t2x0aI(|>0U*lf3vC>0A=pC3+g>+6$t(mm7eE_N z@?vu_#9|9tNtxveH+U8Upy4IUh zIh_3lB!0jnIiGJg7+I>$$Hht_l9R>2VmWDf;r1ph1?A5V37c;!&oqpnKznfZ?6w}- zscES%9*#>dXn)@{DOt_L++;g5{CZ+`Rv1iIP|jYvNzH=uVOfu{iOFBk*?j8*L{N}Tn#(@LBHP@d zn7a)n3mh!a#klwwUWaUF*0T-dJff|E6o5 zfNBTTCXJdo7SN`x4UCb;g_b8=Al2&u2Y^bwHiE4pnpSk>Wz~Jz^W|yNsZD$HS>T4j zX%>FakTSzK>+jz{nau9h8;1%|V*s-SjTXo(7PV`z#pw+G_#Dd{D=$wgi5!kJJdbNA zci#mZ=rAT(EJ#OIDO!Xw|9&Gw|KB`G;5nzhm;Ap|Zu(tG@ z>_b5Xo#s3)>C>;-u>+|RNDSQ}*d1URvpO7N0T%;~kdiW($!vObY>Zb>5El49tp``< zS0$dQt|v{HB2fT>?l0IHbg>zHg%ey6(J`qZLT$2$n~ zh3a?0L52YTi>Gm_q-ulGJ4G!T_$d}g>I*@*Ud7zxuLNBa1NuZPE*D1NoEdHQMh+%1 z1qY&$tvfW#fhyv9b1Z?8MyOq-3N(d)j9$>#RGM7uW%+NrSpY40yv*eRf}46%j_y;9 z{ehyUJFtr-Q~RlF7TbYpOqV>AZ?FjD^1R|=Lr^R@FGqjivD*ctKVRko6~6*>_Ammj z{&y^kt?oBVJpddz0psEIWFT>a%CbF_+*7L4F}@fO)4CW%QU-i0WCBiMK$~At%;nz1 z;c`>5HeD|$&##58ZZ9Xf7HGzSf|;B*i?**GLq-M>faBP})Df98Bi{ z;(Eu3$29|ZrM1#J4Q*rhbHd?S9K`WG2br zacC?UiZ@)Yq?NO#PA!*9a-iniWu1bZs9dP14?{G@`oj-7SIdK&o)8DgiM`(GS&H@# z8vpZ_)=TUe8tK{rGM)D7cZ-%M2huRyfu9!^Yx@+@b$8vknI$fxYbAjr_K+v*CB;#KCd9|8zrd((d%UbMrFv*3$(!Q?u3Ln;t#Zw;vkz5TcndR$P#C|ASamkh$PNNXl zCl3)n;BFYKzJHz>X^e{|`>IlLKQdcrxV_}|R^nZ#`EqTbG+{3#ZPVackSKxsCT<8m zm)}Rr=B~CUxZdGGUAsMU!B8rL=SHiE^WyeR+QV_UA zP@s{OS`3*kt2ZNY(KF@dzmh7zc1N&t=!9B)Z*jNYPnb zvbv>m7m`x8JY1a^o0xBm`G4AQm3s6F=Vop7IQf{eQD6uLzU zS8xM{o9{2*r@3lpv_RwE$(D`3*k(pHyLh-p2528Yl^BEq` zq4n_(`J;bo#r)GFzM|?~3=+X`?|7N{QgyWb0n4x9)`kT~>#Ra=Uq>3<<)W9?ZR!P; zGMjf#=fSfTH_)%}Ncv2>I|P5kwc+}7xtMDfAK6foCwYxnw9arINmMAbEiv-fpBdua ztJy=z;)Y}PAUJgEAqBYvHa&KS;KZNFEHaKcelo;<3?75VlIfgnaiO>goI0ErmUW5l zpBhIzpC5UEhJMK76cE&p7J|o=ggrB)zm-4LSf~5t>~{zQaYavk>vuy%8qM_d)RQA# zK`C1^4%+5R9B8Fr(rSh4hQac}TOT)mU+TArax;_1i zjzXp1ac?g_lhUrs@;+hk^_)3{38o_!R%Gws@h zZycc$?ZY<}2o;!1rPA!okZSbcf=LPCx!t{7n%TW*i>BcMbN9pPw;~dyVOgj*B0L|9 zcki19zEdPD?{D?oYh5kEX`IUm5{^}fP^du(6JAydy|*LUb$Rv_NTyGEKPe%)ApJs1 zd~NQXG%Yq29ZuU~cQY@gVn5C}DpjGecNJ|Atx5B#rmyMP(mU(Tt}hwp{VX>rWPK${ zm40mbORbB0wt?p}C+5gS7t8ylH}=B9h(F3_E3ogE>AVX43I6T{*CFhp@?7NvYz4hD zG;N9#4zejP-gzUCZoe=35Pm`PkDblnK%wV8--mCcrTGCilorus-2T-GIfDB2J?Vhx z52A`-W+ZS*3`f#J7ml_8?Y?#6?hgMHK4d7TS6in}!~Ao;GmXm?KztowPyy`z&my4T zdC0KBl-eG6H6E9lpJbGjdddw3CcPT-3cRXnYUET^`(H&4pnb7ApOb*D4;(6Ka1clg z(Z}js*1I5%w}1T)UN(=?JR5dZNpZbm&K$&(05Jy2FUTALCJo>Uuw0m)V0|E4R-~vf zHo*FQ4VwU7?(-U-n41#;S&K+vevLJ09e|lkxdDM`4|q=uuo?IXfbTfpEIB4J7$IBK zBm*pD(Qw2J4uX>72JE+24JlsBBavFI8U)&a4y2$V&H{cZ0C|br?(DA!==*$7rLV6q zFtr!}>^T#fVX7E_VL!55ZfQH?{D_|^1#*~2Ii=8t<~pOsq0m=0*;ctkr9L2 zt<|fepCJ%jyOZYnnideF!;%+h#OH7*1z4)uVo6j@4Hx7sAUMxD(H3n-xa8&Kr4<$Z z$b)K^EPx~oM6V9hDw~~D$8&IBvZ|^{7{*+blyChzevycPyL~N)uR;`fq99553cZpo z>H}|!;#2n@tRGf;t?1nE?J%fS`N>hU8XA&?$;Cm~^2z2Rf!+WS{6kJdW7u7}N2S@AFujcd zOv&E9{_P%~=Wo|YWG9}L;V`Rv=Qcg<929u0@CfidBqZN08Fi}X<{FPQ6bn@cyw*Qh z)Ef}Ujyz#pYBML6aum89lnEueT%mK{pZ*{M3d#OHmI`~y-bBvdi7y&PnPqf>KEEb% zCC}!?Xl32cVGd><6K#!5dmVQo0=mW^n+Y6GfTjsJvtb1rw(%!?Ft32xy7+Wnr*r&n zuzpQ2Np->4^k;`|jdpcnASnsd8vL=xQ^XrCN~IDVr#*5+IAq=LXAl^R_CTM?eFe-w zNdfBQYZ3|Haq)G)u~;ndUaili2umTy!}o0+zFk!zJCr%~1zokjPD? zbi&KShOPNrY2;aEw+y{89da&O4F_06ZlR$k<~rAdbK(R%fj0nl?*64049D`7p_PqT z2{+5t>PcccFfkQHw7R={!sc>dd_ufG>*VoFhr^_WgzT0|68F$~&pzfgXSk)d@{Bw) zSR0o#&%U3Wl$T$ub6I;P`~fS(C0{CCvO5ea?dfEt%(e%4S+mA3ZrczR`D^>cvZPVG zzXS+6m|hB}Aj1JC_^)v*VdF2trN49;b0Jwi!hC{^*a@CJO5YhvO%@uk1_g5@(|`3G zY&12UOyCENZ=ulLOy4D#JE*f+;3cY5+B>`t=-lJ6LJb?FIxH6dK;p}!MaSRf^$Q9A zTgWTUS{Uu!tElSK|6U^2Eb#FS9t~ODo2S0v10li>0(3Z|*dZ{P-$18Y_u|3hrNx1S zl%c&=Zu!e?6g`3n8Qu4%{wjG$cf?k;TU%Jw4`hKsK5wAXWCDxLh6K>n%9@&rp9{>A zDXeW5BRnGwC(Q*k@MEK+f397<2}j4r+ku1x1TX_2>VefR7)~JJ>N<{SJCwu(G-7&C zSjsCZ5?L$>fSmwxd9QJ*SI+>5|JcCB1PaZT5YPSl?Ck8#?QPu}vL!L-Ul5>%4JLep zj_&(CWGL2cbEM_fr>l1!Q;^^~P$UemuWtyDgTkWC!B73I%@6Pb@P3)*i;b~GC&$_g z*Qqf|X@po|Huc+7#Z;JY1fY9|hxEo3l+XUK>ao5 z!&fIJSm#GuI!+zn zPVYJ{2Pik|%}RFau`2=u3?7?NV?Qbsdb$$V9YfJGlw+~$lW0Bc&&<^uz^SoV8ZA>_ z)E!N8%vKygS6SN69>#p)f^7vh2@sIX`i6%M!Qur@W>8SjYoJKEar5&B+225JfYPQT zJ;>@aC&h?HfFau4#<03sx;firY3ZwJzQX_dRq}jH2u`KN1C7Js&~T>s#`)ps-7X9< zY-XZ1BQH5dkGZ4vfYlmGkCWMy>HSBHv651+zr=puPOd%wJa&pyAJ6vv`TV2qq4|ML zR+HC2f$5bfT!om;RbOz;v%BL_afr6G6OoG71$`%xWTh!k^CswcBP0ETpMnI-1d2GuCdMFk4}Mzlr?t;<^y6HhT~C3*3iNs-b&K@33( zVkd`fcYzKccvH1K_lr>4LN#Y3?epbf>iGL73u+2&%7}Jx_vC)oOSx~}9aXG0!bg2A z4s5EvFc9y5iuL+kY_vgNllJ7Q=5bv-0+p`Q^gKJLC9)Dt1+&znaLrv3ZzJ(r?8LM0 z((@O~_=C@+OR8$icxN5=*Y?=UPv2MC={~KrXsRd7+!B562T5#FG>i{3Z!GX(@}s~PBj305n%oRBZcQA zX=bAw#AkrN22zQ#va;iG1uE5!M5 zSn>K7V6WzzrjtnUiW6#B3LDr0Q8}nSWlOLFB)H3ac<}>Z zLy*r`(s^^{nA=}K4F=n1Kx3&GB5{?x%fB0l*?F-Nl3N>61$F1`6Iyr$cpfw%JZq7UQEXeZX#naAyXqxnj9GHXgehM6k-{v@^>q91q!>Iqh_O zM(}C#qU!4Fweq6UqYv7JVF2SBJ;rxF6iE;~B-!%pEBu`VgN&vxp@=!A)))c1eGKcv z=;R{b4><-GpU7GgVgUo#IP?uW_PhcvpMNuJ!+q_>04Ay-z}8!{n%CNvgUl`wK`;=! z;Mo&1+M(#_@$Bp!GN8o;Bax+W>+0$%8Ch)d_hG;yYK>iMokM%+n?-A(2A>eKhDl99 z@1kc2?EaAQk26e$akY{oBAfO2kV+5k%_OgZeC$;)gO;1PY1_M&_w+ z#;p*o!u~xzbLN7y-@!1cs{0JYC8R@Dp0I&=`!_r^zk$p z{qyVbF!yEnRa_r8@*DwaJ0~DVumP0|wkhpfrr_9gin*t)Wo@8ANu!{d+}om|BG!uX zfKGi95#9UCg2-Rf*ECRVs8L9Y$*Iz;f=hKSro$;;I$}k5U--&x7lG&yxnUEL9xoO; z6oic61C+TcX?9&!mK8hVz=X~W0Y_Q)e7~TLt;#A!2J>ERcCMq%&3bFY`rT`|Uh5sg z%MdcOs1S6YwjX|UFVzcdZdoD3LX>?6@gx7n^qh=31Vcy}e1gP!X?uS}5vE0;z7w?b zPE+ROWyB!ELd-C zGTrD22e~3+3ky>4-jNOcM^a={xyuk4{BY>K+jf*zn8f-DUoFO&$LS zT)fqYhU5Cd{xuU!Ls>Wd8tm)BV)fz0jfjy-bj$!wObjcF@x*yhz z$5XW!m9aRT;9nk}KAq+AG_`(8cMSt6PvBoc+AQ`NmACyPrfFlE$T|JQ^TKA?d`BAY zwvkMwTX&fCl2q&7M!{^1j2NvbNqzWs(V5P zIjg(1@aIH~@OYXM6cIn(t}l$tOnTMIuJd*@f35I>RkCXJ=`z~j*&%(#I)ScvoBr|y z{eXhUFW7VXo|w(<7QW%;FdJ;15s4=KJL9A2>0z%dESVD%D5eheLn`@R{vX4iW{qY$ z%vwVc!neD2{X4#V^JKhyWo=?SCjv_u=xx&R$JKEJT}SjhTbny~k8bS;xx<8VU0hc; znmaP;QXelk@X3kh$pW)t_eGt)5RH@7S-Kx3H+sg)C|a#$X+79Fxm)m@DkXou-><9N#KZLFI5_-I!27(6-yblCPHqY^F#iNe1{tUe z3i_EEu`c!dUT>{%XJ0{G@FuV|@h2MY62EBUPrd6UKn!T~HQAZ5bZQUP)ApbR%lSlJ< zAvic#TuQ0}Y?pCyb-i21Y=KWGohmE)R@`_ldVM(80YJlCjpZj*v+AD<-J6>vuU0%T zXJ2>8wA==_tV+FHN{y*rfTRlj$&bvjUQaUzhd9u4IISHErZO~3GGla?>g_r2Hls;I z_$)1H<>cg?Et<%KY%uf{8Hrre(ss@!<)qFYz@DwwthVcMo&WQ*2Rl3axsjm?MuB3H zXtYQN_}s(vYdG+{=xG%7O zqb>qRYtiH32nh*klb)H2E7d1K1R8AjN-$U1uOQTL$sOh`s?Aj~MSA0bAyJKRu0o0!ldY@ou zywyWd&H2mI*2}<(+dV_$Q*lFCwr?0((iN<0x^qw!H1y!GID^wYdI=tf=;~c9>3nFE z+G?=YBh<@nY{~g_O>=Cz`^m#=k|ItXHpE(8P)MjO3jw!;2J0@=J3=<^w}DFILz*K! zxWvmwg=aAO=){sh_9m(?Bvk1~amnFTS89&~7SGTTxBHecQ|4RG=R=d}HgbE>fe2dwcg1%}N>s4U!r`VZ><*4@l5vaI=jD44K46 z*!XM%i4#7C-+zA>?rU#{YChRHoF^BBcasa?hi-D`vb%AZFlUk#;`p0c09~_6_>r}E zX#dxg+r^rt7fjFlkkCZBMzi8NAdq3<;Pki6ilc;tgh-R4m&zu-^(LIb1ejJiE(_GG z=4S5a$B~zm61OeN$8O6aQ`|7u!pvzxiOr9i{o z5NGGLvT`wX6)$msQwIkntF zow9gF570D(fc+X7RezYZz90~Lob7m|dA^)HM- zdLF2`9ap4p<#V|vV5hIDq3{gehnnTt#j!d%{4P?X$p9i6FwakSiNme-HxYu0b)9bU z;85^%uktNo(BT5wAmvDDor(#A6VE)$mUL}*6o0}{Vqz<+~-k ze}(h5N`SLOfas4pjSM*^1^VKm8{#^u7`Cmcj!s(QoeEwLDWv&AMrH$AHc40keEaXr zlIH&Qbtr4ygfSI^t&qUfpUC_&F}Z=GE`gB*zX_)H`HE30)`dZ^;_~Lk7AUfSED1O| zvdD_QMv*~yEOAt&SZU9h^*qKaZbWzMwf)k*|A4PSlpJ6OSNS)GX-39w2_U9L=@ zH>I9oMlSv-7Bt?j2O}XP6aD^EP(VqoDEDX1oSu=9AH?&)caexhG0ew$f&Hfk%1%WX z)$}I^RRT~eMi14&|A(iu0E+Sp*Ern*0@6rGEFA*UE!`l}&C*BzI|i~s>WlmBgZ#;4{G74Q3v zC8xV`q3gnq?X|EcbUIp$~40k zw5}&5h+^wb*nzPAC>Sj&OlX+QTNs>;*eC|0JH%N-7vW_2kb(9yq-mRE){I6jSFhmt zc^!;R8g&f%A_i;jy|R_M03KVdvlzcy==Yza-WZAD7yGknkcEThb-X{GN5c1;M!vxe z*}e(3m2IJ=m93$ocePKwe@6&X3|bPQ#xs%eCvsa`rTo`~g=f<^625<78uMe8-Qr1s z(rRQLb?bvSH&eb78>e@CPc2Ue!j>PW;uwhi+GGq{jYKDojKYymAFj0yt1BzvU$<## z7i*t9mF-fVdgM7gP*t9#E3+N1=lH<3L|`W_hTF`|tF^b{MnnnMvy1JN8QT(V9TT

    TD_et~ zQ&WmcN}T-sX^0;H@j-R9;wK6U?H_9|K8Z0VhuK3}u_Rx6?NE!H=ixlVEd7;?N5*nM^tp5gnOo0}gH2|}Cex1win&(F^}I5@;CEg6cHvrO&mqMMufQBY&> zMTLYEOQ&gK%?y2SEI^BlC%8U#D%Ga$Y7Gd2f+ zbkA^1o8dNa{{k8GGyuojA3%#vfF3C-D&hm^32@22eTJ|l^W1_ZB{R~`&R zPUF9VtpJiNf8RxU4{vncO$1hPPg%z=bF5&zVJVvstXmEXguCz-5)=@)&RV&lfLdDK z^fHKa_4XoxX$Z&jun4d;??5R4)S1hF%fs8EPoCrhCIGhQ=!6~JJzsbMfg!MG_dY({ zfkJ7U&-t(Hn1_(lIuaO;t%C7T*O}0t^P+c~r;e+g@PG)7BhqaGZrWy`A~qj3EdHm- zbU##ik3k6x%r`qSqC-Gts$z)(*QhH9^%055vI1?0m-6_KCdT@#a#bY1y?iYY~~ ziG(lZ6$#+8SLZErHWybOd4VT(Yew(W<}*bEP;OAB_4oHTUCih;1Jn0eGlFX6EWhU| z-}D|rP*AZWCN?0Lttifxk3@#k-Uc;QjJk{;f`Lvp)M|$t6{o!ylU-rPviMI}l4u4QRi*?kSU z`bTC##}m01e4Zq@vbKLbrc|7Mj!|Ta zIAsc_7(~h{ItJ$}Iz)70%69vY-(MJ=Tp3-{w0_nf$@t{^MmUS&w{28#zyP==fZJ;C zVjhTH;f$MJzX#&a%f4hCXI(3+ zr8qtz@`c^+7aN06Rxsgy#=jY`;?`xE*^5?DcG~+(Rj(UUa>6MsGr;F|{{dRWz%R%x zTe|7Ao^1A`>gbF2UCwK$$2AM$L!0+%ieLQgI)c%|Pzt~2JuSP?lYv9?CKQNWWB2XP zSqLNN+%OAHZoa|azX?X6i4iAGHoIHh$HyF!K|zq=_34i)RiBSsK>1QrrD|bro+KF- zdo2329i*tN{FcunbZzbB-UaBd^SvMTSIp0si1YI|nkt3|2hr5ZZdQ)&Ua_^VJGb9X zSDr4_j-M`DW)~Uj-Ji1G>rJ4aot+gq4o?^l38e#}4xgOg3ylIf*DO#g3YssDi$pHq zoC=lzN`R@g9jy5I4^aAK0>u3E=U2bLDF)>llV!NlJFk)tL}&;(faQG}1A=6C(Ft#11=i|u~&BenBW_4cWP=RQTF)9$~lBn4z%du^GvKVoqCyKb=* zJSHAH#CquM_c%tt^}0bW>>S={%f%}ov2%x&Lt^gj8hldi!rx@%YL5i%DFB=CLZk-6 z*V?A0!GjTkVwKn1dF-Ntb92P(hkgMaw|^Nxzd(%zgX63HXf~4z?&{LY_H;rxt`CJg z#)1jWH^@*ZR9jzvq({ChxSvwkD+x%V#yW&Yp5tGdo*wW1cSXQg5sDA`Gz!HZu4!5e zC2QJ*={;*&HzSrJJ!W5pVU=HGzP{eH|MZ3I%jLn^v#%ixhjOcr$Vf{5C$K4uz9%y1 z&HDW3XJf~M{j+)@ayLH?3e~T;1Dqh+3*-l!WgU5kjr;s_d9Gh?LVsUh^Rc&`d*vvo*c1hm|Ix7g=b9`= zjQi!Vg-1~_+Qs;3I1^m3>t4u512?({+b@6@`0Nbzh|9Ta2KY?QJt`={Mf=*1gcU4H zI>9$DaU&neH!8vGh|l9@srU{-Z9YHh#6dDs7r~yc8#Q8QW3SK8LLk!{2TiL zcYowT^76tTB9%`bYx@n2uhiG3f zmKl!#-Tk)a*Og8ym z_)es}%%Mb1mH$<(`*@%gSVV*%3(GDn;j$9=ltZN<6G{T;j=veFa8*APlrpV zb?=jRCCY}o@5cjauA!{F8cY}|)HxZ$L>0w}o>Gvxc(eCa->(CO&$r9?Xcj@w@7Lo8 z-ira?U%6r~bPkj~or2`s>p4VF}Z_A321HAnnh_W%;yvuPVVotB!K3(At4&6MI- zt+Ca<4_?o43k2_@V`7|+SH*!|0GJd?ARvs9m`I>K2lPCuWaw>^M|)~p4);eKLIlB(y(%V&ixz%^Gkt!bl%Un+jD~t>gX5; zG#a+{Yg6x)ZBY0WmX=0+^*Jy*zqqIdO&$s=>hlXW?^m>fMfUHr;x^4?S99>_ck$8h z6*Ur|&{spr90t!;FD@@n0gjUa>}~2Sg#4gxKhWClIOz#Wbqs){+r$X!N(%oXo1qQ#jzedrza=D*2 z%OnvRy*$)o@X2YgxjUjO3_X| z7w>42rE;4NV;8ksp%i8tX6LRKHD04O{n88`Hxni(GZmJH3-$V5^M$UOOe`!ccqk&4 zVdIW>hmB{T4vp^#!>&FGAyR|&>`j-ZrDbiOuTmAtr?G;(AR9NzO?if)hL=MUOz(-s z^XE;s#}syUcR_Lud_~(9sd6^o&z5C9voA}cqNxs{0Mxv z;{28(886IGq%$pVN^|J_Kkr3~^U6I7?*npyh^CVlvr~4zcZ{Y%td(HXR=Vx8U*XK{ zFSw&k0eq4v`~^lU_YAB(gATj@cGtc|v6(`lp%D@2iFeK)C?86_n%7SiNVMB97;{_r zR2X0Mv8G^@?H-v8^exW0%oqOtj#;*MxE8zk$>J>Z1p#@6%bT9(VhU=5K)0s!=|@BW z&x2xgmYIWldKB-c^@C&F+Ns1cowmq&+gs1gxt9_hA^Y0;HMR`G23h}ccRIOyB@h{T zWY6!)2{6(9Yr0?s3u0)kW$4b~?)tjDp3+(j(WTRLHuLWOeoqa#*k9`Z<}-(Q@qpg@ ztNtHNQUcKY(m~%VR2g~5hmDH!+T6?Qe;3AQ{}pg!fTaY$l0YXq*6X;?D+AgO=%b#+ z;+SA?Q@sf`_FnQ=1N4UR+14lk?ZUu=E`6^)0z<=ECQsWlzzkOMmjj$&RW%1+lxKYj ztcquUuG&+;SQ3ws?)lCDy>MC@Nkzxwtm`gR!E@s- z0m{nCTedTYjVoj60r2ie3qLRI^*k@rio+#x$UZe?3$9#hMIxtk+Nv?89P6=eS%PMF zhoe|Ia}`(yOa}S{ft08*GOlz6M%>Pu*~86u6^)aNQ!%(yuF*+>kmI?l`_E~a#Ae>E zN&A(p=@~26QwKh`j6gN|FNs-`$pQ*3O3lj3Yi!H_if%e{#j|x01AHgfewQQyJ~Te( zChc>rmy#%)964Z8p}gfrHtCjDS3lH&dozpl`f$K*Ba(pJ;Ty;yYP}-X^T?_0vH) zQ{?CQZ`zOgo+P4ok5_qaz4l_9vjU-Uck zWm|4zc5BHit?e#MIapsPt^C$nim!*xwonuC{O^$msACZX1c!uf2OF!BRslpCOpxAb zyDs34u@;UgSR_h?_y*HY|5o<+K{)?Bibim;;NO!;EY0WN3+xXIuRYym(uNt};_2dk z{qjhzyz=;?^03;m@;F3Y@9xSX+Pdt*+h!DKqh73CCpfG?G7rnvm>I{?6)4G4U$jAMrlx;X}JKy$Hb($!`o_`k1 zU$Jvovt2GHDPb0@Ez-aB>Bgs@S#CV)rTHtTTB%Fs?ZY7_>zqdCzHQOJ_dnYo^M7a| zOotaP-ia7zC{sobZY|;n`aYE!r9Cvk0t6&z4md0N@wB7vnlH;E?l+x`8`jpyy{ZI!(sPV4Ul&2$hYv0OvDYn-YCnyy*5 zvrLOkXOaOY&;iJwNqs;Iq^itZn4V5HVu+*(q{_|DH`A#OOJ&ss)r3vG zcD>Dq*MvH3DI~977iqKnnwoMk{4YK!fmZI=hjO^akvvQ~zYEy@U+=ldU`9~3=qJ0A~f^u=#D>s(#^m)!eskS#EE>{ghgj8 z2QX)63LWPP_iL1o)QwBdm_S?rCdf6<*A@GxYdC(X&%J#0S05~DB%u3&*_P1wu*)V7 z>5ICV=lLA@WDSe=%6JaHSh?1)BrIc;9*B*e0dcgPoyxEr$gs~}Ps40xRohW89|LMg z6p+{gH{J;fD%CfL71jot&GR9r%p zeC(lrC@ori>{oR2n&7S~4)~>eZrrLt}}mnl=Ue zE{+p((lC{njH+#VoLi$RRfJiAy3pDARHoqP*w1bI21VUAy72s89(8yuWaLyMLx4AZ z=KTC3jqd{$Hhz-DOKFpANv2r0iqa%Jk8)CB0~DmP+5KURe)C&qG=#`Lnq zyuiJExh!ljGR~^XLImMM{?XZ^g4mOm_~@vJ8YF!(Gmp(J?9$9p6zYcuF*fAQsexG+i`kh~IhMED9UE zqFv>YbWKooX8rC`TbHin_3_FqWylJ?9Gch{!XN%dK#(b^Re*~wWW|Q_ZKGI;eqOO3 zkIs$?F%lof1iI6A)MWMMY#n`lARX-0+oJzE**`c8q0MWl5|jDJAR%DoYG{?48n|eZ zuAy#g|J}J5&JS;ZKT+E@kyjio5$Uy9@!F-n*fzaRdPu`lpIYzzy^ut>xBcGXVWB1) zeo@{nqV24@fj$VV3kBn>)fP5TKzmv}0XqR4e&k2lskbBJqhRN3KOz%`ZRRLOxj+hW ze`#_>Z4i%RLQrd8eHFdIH+x7@Dm+Y??(<@+>~x;#_z5SLF|Q&YHlBv1hX z2KO4~b$f2jTV@osVyDVP_#gQ6XAbP9*cT6WcHecXu~L-Ee|~2*dfn`jG`#68+_)&w z7lM0UVW{Nh5DSUiF=!Kb6^v96OpCIMJMc1lTdg8>Vn)3rX^~)ASokJ&CyB>Fhp^8y zo-ei_kG}yk~;cn~)&f$Ur@sNW{P@W!ySQ%5ajP02VLR zdvNZ-|D6%Qo6AFU7=|s`%~7CLy4mtk-WsE=7rLYyFb?t-t++|S3>>KTy->t=hO`d9u26yIlrttkO_06o<(IL-Y z884itdx*&kK^IS2T6D`@$7^>a>|8R&3^M_VJnhAgV3yfe)w^=HzP`Sp+1Vd@oy5p{ z`RG!h_2P`9pZ0i2379Buj_v}!?zilE==MfPGsd^3lZH<*$_gN~Q&Q0p*hkS~PdWuV zXBIX`cAg;|NT9!vs+RjY`Q1~K>99d92>}V6Hjkgl;%Te zTC5lr^V8(v*ybA!v?}`np#ccjxo(yi0kI%zX^&+oWJ`{_z z-=Y;6vBNiwDObE0sxT?4lR#LtLNM?h(Msi|l@fX71O-R%j`Js9RZVl9YOvuq=+5o_ zFd)VJ<-0(|Vw!~;hTdTI@|s$?A4%rT%WD&VTR|&DsUVH2_|%vc=VmlHDFP|&5E?YO zdfj6EU2Z0USEO{Do*t~oR(O>WEChqv+9t$>W^rTlNWn=+hT$4j;se+1DIm~-%DzD; z=>spX2Yr|!{%nJKnk*Gompi;TIRj+)XI?WOud{FmhsvkVIHdp0l4=SJ@n@z`Os*oo z#!D8Zbcw+&9BE~tw9D+JRg2ClYK~Y(D`icw_=ayTuo8onb`s%DIn0>JFy7zs&N|Q4 zOPJBZH%5wqHom{+l^QWV9rgQ0v9|eKbte4&m-5=p*_hvOBjh*PxNcu6frm9AG=(%+ zqnWt=l*oKAr80cYma5+B$rlLP|FNnw5meiUK`^RW&b+_JkY;Vh-p@S>A>$_IR-N7b zCccx`Asm%P9Ikd^$-uH2|I2wNG7RTJ6+7xf6qQRSfE8gD^8u3EGgx-zV7=S5*KiZ( zD_V>GHb)cz_N#H0Oz95M^V>HvVp~fP% zJ7nSN&ghPRzR4V0SIdc)If=TE7E5xSZ;YZ8v;NY>XJtH~tjuTy%v7!?!bEz*MDI=h zJUw1*8>174o#8yL;sDZO{pj)E5lncv47j4-9xh~Tdp2uiEc;!SEtaZ5#muz4XTEleb~iJwv!^8h3WI|6vQ9;8V<^C_HQLsL~#AGl)bc8~^HP z5LHxJO&;(Dme~Zss!sZu7mCYGsx*|W9LOQ99ceR_pRZ3P-}y;%_uqeUAAI$ii(k_j z7mFk(MtFRi^!10N-&+JIQ$}Gc-@C$p%Gdm0yVZh0%Ubor7n^icg-i|d| zf>Hs4w4P~GokZOS_vSThqhVK)&3oix1H_eOAauR+anO9HGy*qbj>Qf5G%%zw6eJ%ZK$#GVvTeNFfB zo|4XyNSZd5ayC9esw<-H5NT$fgO5J|Ur|%b{E`l20Cz)Zun>Zik}&$b2X)(J@CLLS zVr&H!K4J*nyJpKq#^Tnn-OJRYYgKk{YTcQ-nG- z&jvB_%b}XZ&Kf%kc{E+Og1Rbw#88xS6e_1k2VX;S;u&a#W!w%#LUuS6TYl{>51yR* z0qB@`ES8=hR2PcW)(3WI<=^!pn-CZ8m(pUT@G`%Rqp~f!Z4KE--6jr2(Z-WdEq%9p zP=@;+9Y$yEL5&t+pOJuQ@}C?ofdQHZRe2UkLa>N@x=5aeqw>7$qBNrT4_cJ>)&f)i zH9`nj%F4cnhErjU{D_ov#ih>t=H$B(-1~I`O|wwy;Ew*PXg?5FigD2T6~-_;grgI` z|229((jqHqzw^!;*|=CPFS_$l@9`}+;-HORujdFEq*b(two@>I>3*=G3doscl(D|L z;AE|RSP)gII~g#?%MaHORAig_TqGciG^FG3Bu5rL+Tu_Qr@#2Xoi4JOkP+0*Ts=yq z=y>q^4}$B2)EpDf8f^s1_}3VHOh}U!8&UgguSC8-AG+H6&ml215kcWv;8QYKQV*Fp ztHQ+2o0T&A-isQL5;#C8zK+Wf$cIr~*y(1D@u#0Qz|x!pc@?+lR|TbYup+!2rjY2j z)gm(W-8SBI5q0@Ms!q3M?#lgNXJ~Jf{(eas=FL6v`3i}sP7c|e`|o$Q?X0NbPW}dM zV_Wo}NJokksbb$y%^M$cC1V&KH4=I{ANJ(JwGhnN*;q)KDmJB`VRHD0Xz)UexIfqg zQ%b7jFAb+>_*m%BD>|f!6i2`*zNIxnMfh+MoMmU;5nikq{`tdJPc^&CF7CnC{dCKG%9e zQhY5fOp^FU0``v<*XQi8i!;QWa3_ut1zK9rR-pxgSFN!@kX40P5=|(a3L^Cop)Ts-@KNB(&5eZW2KjM0PGhytrB_u9@`x z7ITvd9p`PVlF{~@59Fh%P_ZEg+~&NT0BSV?*3t?XUB%d(^SlpqT6-~|{F13yN6o*i zqy0#uT*m0e~A?0$eoeGV|J49c0tARP*f33)BGpe9|<7zsW;zP|HMI(~c(M1xup zbD!_iHp8iQIv$nwi^Kig`x=)^ix$)_^dAGe=bH#HkPDJLvQuikYK|IpS(hXxkz~;# z2qLMlU;bjrjM2hp?M&c}kB#3oRr|z)wt=?j9L@Mrawlv@`%Q5CX9}_b_&T*Yv^c!Y zIoU-WuJsVwXuJY-S!%Qm+7)Y9VA4FnDj|h8yTm*mx2CO|;euaW$Mv|MvP^S#jHu6> zlz+{5!MQr+Car8}5i2%%xQuF47TD+!Gw9t(0R@v7j!Otb>Y4msU@AU)m7ZQlZ}t5i z$UMfstk|NVqHXLKv`9fhaQpWhJYJfVp_|3jjMgT?LXKqSVv~>jfGT*^<-|s1LoBE`tg$npGWtQRvIoDV}JE)4(`FsKVnVQdLVhdTZ=! zd;T?9rD=I563UY@6sU6an{?w5=v-0DzN<^L%NMDqE=apZ8>W%tj>og2#v)UIbn}VH zS%@(Yj7FVFIRz5EhcpJ)*wMJ~+bK|kiJis(ZS=7Zj-C#Rs(9+*zGi3yRybpFh$>+= zrNq!ojU9tUYZ^aEKc_s&r5?SEx_m*+FMfO6ExyQjSWF3@O|)Uaq@p=@;`XX35=(2t;!CNp)L>bDG6g=h?we56hEUKNcPzZSQ$R%W|W$*qo zt(L8w>}DhoV}Q&KR?k{dC5I4n3*nkueVs#$hOt zn$gEMgcv|bp-P0U)GXgz4NlaH$}9w%f5eXwt-N!YtSP&9p{5&hR$4sI$zwFUlED1#Hg0T+-NV3sFm~?8e zkVLKJdi#N<1x8%xJg+*_Tgp0V4E*ktQQNnV#>6TLEy_^@l0^NeS7v8t;t1kH*y_LN zCppy;h%NQz(P$-f`5K~X$P;ZRc(K3M*^w{uoFN8Kdc;|=40O3;&c#Mq2tpS7uMm5j z@e?4?zt-Pi6wt()Ce+zD5tHUlMi+KE>$?~h9S2J>r1L3bP0Cna#_`^&kQGnV8zfnf zp=5H12l|q~l&OXv!_{t3=;FyhK@d+h##lw$Xx;oP@M0%bs6ainJ?g%lR;{dL#+HDb z$YN32&*blidF&xxGs!-bBLvt$H7L5Gi#7w7BkGOZCI*-mfDinRPa%E}c`;FqEtbxZ9A) zyAl)$ysook(!p#@{f15m!89R?jvaKXCHcILwA*y!VZI@jIbp|L9aZRhSQV|$96^Xs z@SZ%RgvAtTRBJV?C@8kN#I*q3Y(gUa2tii>1t~F-I3zBvcR@41ar9zrg+TF_n-Q+L z`QrJA9eOyuMKm+YF zZ21~uG_fJf%l;_CI;OBd2`0>e^3=$m{FQUwL&?x9#<$jTEp1qxd9R zkW~q*kBVz(A_AnM%I+9tp|`k&(R{VM+I+FyZWJsETh8e`j4vi~3O20t`X8&4l27Z9 z@|3HRl>#|dOA`2Ci5;`D!OpU(R(WFD)~h_hCkd(rOc0HD2xGPSops&}*D3qx*7uD9 zmO;p(W6ZBRmBW7rq(j#l>OXm@>~;&2;*+&j<8#%1?N~7qpr=EWWhWR1Exn72X1nWO z1Xb*QnS%u-5H{4;88QzK+HI*!r}L06&RJAwqUs;PWN|Cuq zNoBoWc8C;IO!Mx@++S9ZDk(tgkhPR1B_t0zE%ULV?7QXNg+Dp&k2tE?eK(fjArcS} z8zYhDZ@<{AF@1 zTr&$G!{%RRIoPB>f8(0qHWM&MrqeQH$CCU885*}neci+HOdxc1iT4i-fKySRUo5&nq{lG&TxlQK})d~MVj~OFvMiP$xca5!LU%hnt z)NvOJYqTO>cpSvBygdbk=@~||Qe_ALQ(r~?PJfZ4p0tF(Nm}1+Zu7*VXnOEF&3W~Q zCR33LlohR~sod1K;f?@rAkQSiDulA103%Y1`I~l~B0*3fbc*9lo^E3m)5Pj5_Kmi_ z-RWsS3UFzz?v-9<`XP#nO^LPrDbUnOKa%-MQ9NnoIQ`*c;i^ELE(*CLMg2jmZ;N0K z&-h#3prl+grO8)P@$@rvho`E2!DZ@>EzhwSimF*Xf9RwDn_ z<#gc8-y+K(8KF<5i>Xy-VL4<(eOaelgy3u$CW%YBh1l6#?Fp>U=sj`SY+=%v^6#x0 zMuan}ZV(cFv(5H5XBnaG{;R1DiO^-_-~Cq=`?ADLi1V$=(f4ejR>gXBib9svZoWZz zR(@TRA@3;`x}=MAHv?1C=o&JgXQ6{!1B=1`GTm=~{L7y@IaafdlFP5R|Z5 z&(Dtxp>q%F5B@6-G0{pM|PjcPp=cTL>xfgJJY(GR)Z23-w9#bB*0D`LZ*o^#M5?xEt789ZEMfSXw*` z<7!eCrzm>oE^jWyzt}!yxzBhv%+FYH!|cbzT6`BPKy>(Rk}vMI08{kHmWt7*6zYiT zUKH)Jbk*^82YmMwsa!d%|8P-zoq{*C88@U7td#H+-sCJurHziiFWYOh@_JpU-k&`I zZOS1F%lvTMqDKWsI-E!`r&8dyjwiit!$)NWsMDOJykI$5dEOfFP+S3skZAs1hsF6z>n zkglp}2aFy{KPFq>tny9RSToUyPa)>F|=2B^M9e9S8aT=oVy{vnrL+d4-f4@R6sauu zL~l=GDTfC?trcjmkjZ<-0D}6jroCh>`^GAB%^*zp4WIKa_@_4J(_!{SmhHv_wg>7a zB#SnAdsE9d_C$%=$WZ3~9_1h|!cQPR#qh9x8c=wQ|uz4tGzd; zc;Ls3;@bScSjAw2l3($mk5HD)O~5!YceApMzPcdA@}VHZ{asyN$Pb}9f0J&Asi#B0 z{NDRTxh5M++QM#oe>GA=Ae32lb~hNhT%hS_XEEp6kStxtHjhD6)9m}}ag+C=6A@=A z=Y@8g;dmD&H4?yOL8tf(=@|mPDwa|-)_#$mn*A@f7IYOVU9s&6yi>KyT)f)Eq0j8e z-$WJQY3c>`O5iQ%>+2&Q9CB{5kRAjnM`I4BKBD9HiIZR6u3DR#BEW%xx4}IX8n8{= zd}`2T1!=@7WV|GUNy~!7@DALhvW#b$4o-I3xH@dLfQt#n1%t56h>s8gRe2}i%6hiO z;v>O>sQi(67m{!o=X}jL=y$QTp;w5<0Hr&<-uU_!ycG~gPeMsqoS**&HIR#nU61yy z7+dLanh)$ji;#5Twa9O5t}I{^0BJ_grw@Rj8-+skpA4rcPaJ z0Wej25=UufbQn#1Aet2tsVIEuYWlJRdN$D--w?-=Ho|v6q7hhzhLLEuW;7JXLNpwJhGu85 z7Z7VKZUywKdtWd?;OI+w+A{3U}+O`*S+#@Tw*oz8Rz;UZxs zAJ5P*J0-}gG704ProWq~$^9Vk#UU0P52;r9E;TzXuho)=PJ=v7Bk0W!uY10HGqc`^ zZzlyI6CD)PFe~1DO{OfqSX$+-#=J>-Ny`C} ztW>D0D+1&6)A*kZVHxM_?d%SH8>0YS|88vV3GFYIwHY*hFj+Oi_X-$t1F>=AQghhj zayA+8L&nvcBx()j`XhF|hj@3M80`H74^ z@bYip!?!z1YvxWua@$Al+u2vHJae`^PrR0ii>&-7-)ky-5u5U75M+EU;u~pqwtm*S z3xCMQ%^eg=9e`29GR0}pf>-xty%q~y07VP$*DeCrf06%HF+~PXSvSI^WS`Jn-`Kq{ zhlAPp^qu@MNe|kfZK2K=5c=kiUguUNXh&!@|0~xPZ7XlSQeyAngjlQ%x!F5Sx|La* zyhf@Pv4xuYDy>jgMSNGGgz16}JLQF(8V6k(j2_dE>_cJsm71B3biH7epn>c|@CsZU zGNK7br4s(wn7pf7kS0@K&cl4p+J)COU`J%DA>Ibn4gqGM#V4J=EFii)ew&EVu%!q)3r7-GHdsA(GxUTxQQC#E2x z4y;`GOO+quJuo`0Kc`iJL!?C?rbI2gpx{KR)t=U`e9BvBUzJxK(d9JikrQ5gXHE2K zl~GYI6P80wCnYFV`p)`d{vWQKz{K8=?05g<@Ah5aKODHzX2hr)NVODU3Ai6%Be&ty zH7>B5ONFAhj$iRJ6NL9kTX75W-5y}eh2C9Jf-{_sksks{3IZ7w&f_>NUJ(fLC`oGR z??AZS)W~<_RBgL@E+iY=aY#rgWt{&@jnrm-Q63hn_z^Fno;pIfxg-cGpDLfjQy`|| zRUL~W7fn+-XXmcjH-ocsYkm3xlX5g4O;ywEsT~@UHh(%f35fIH~Vrb*z%BWd9~1-kma$tEBlm6k}Pu zHj#|?90Exqcluq>+Bd^Cek;48Wab~L&Ir2NRqsSp=~btt5H@QtSIx!Fzp<~>5Z4#U z73Z5!WxpT9i)7-q&Z-EWNvxVjt}UKQW<|*;_)l}sz-y2gk6Y0A^M4NyGCd|l#$vVQ zc?$%Qg&2B^g1z+gaj)itN2<=ezj|;facOjm3I#4>hhpv8CEnq@j$?LnP8H1qIC$NF?H4l4FB|M_0Zm1unN? zS@w}e_Kg3TBpLY0l+Vc?ibS@^ADiG=<$3HuAYc%&{Y56p){SP8ST^t?WL?Znfa4Xq zB#PXJkaRIz12I^YU2g5vSKH_%k8yZt4OV#H-^uDPu_%yuV#>F#CLcjEbDfO?Bgn^->1A zQ%LfqQ(7n-R%=3F0h5(1K`BKQe>Fd{#$nm-{%KTNrg}C#mBz^ye>)kizP8~_+uwT> z2g+eoJy+ur_?O)~Md5%GcI+!K38 z=c*z7jzBXbaNg3!x20Mk?>9X$#=2vv5ATjYPtmVL0xY>L+IUMBv&4r7;pc<|0Xx~q z=synm|M8v()<~4k_a|u*eE3!(UNNz{TPys1nlQ~Sz(J*d-$kA2okx4)_*NpTMBdA# z*Qk-SV;^8^WvcnA5Yx}iPIDojDvg;JL>ixdlVxkIUhV~>Lveit3b$m91MKixWhskz^Y`iwKZ(|5Ni7Q37bWa2$^SJ)0M1-q&PD8A$eaA{JHrT=ir!a}iKIG^OOAQ=_~t)71Nb>?F<+==ONq@%ZsF`^d@F zb@1u#p<`pA-j+{)%-7@}vN3-Z5lL?#;^~+l`I9e>C!9H!&>zhYbcsJ5x5p@eokgZx zt7reh+1Ik?AU??NC# zs{4C8DgwM$+v`#26qg4$J6txw{3n69KR4p4eW!kcMVfMP&)69Dc(!o9R;f-FH>!FD zJO}VBTgObTIcj&Nunfak+>L34bDeC`q1DJs4)2=v$M)(3t`~#QMP-#?DJeQSI`D?6 zT|scJC^bspWR8k`tsX?BDd5YWX+}YScWx#h7#ILq=NKUfjh|K;%&S689KF15n^#Eu zVL|WT$=0D5Yt+u)FOAN+E#G$R?plKw4dC)6gyZMy2ns^X7Vny8oL)_FkIE0Ch$6CZIIa2-VT7>kTDKWC{u{_;raEp8CCO33Ms0V=5f)h_Fr{jv z&^(2Ujg2j%bv|wsQCM+nU52?%b6^3Njh>#~bL6a@gTpEN)4hwGJEbxapT0P$eIkqv z&lAz)30}2i|3FA|jYBPe`IQ|VA{rL3-wKUQJ{4aHpAwzn?fEe4f@1Uz3q!;$pqp#!dMq;nK%&3Q}0?k#iJn0|8wAYx6w*0R`Gk2 zFPk1W61;mytqLc{q)xc?U4fD%lCCvKfNGKylMKx)61u(!k=HD3mSDbq`Q&Z{k^*fE z{UB4JbJo|R<$=SC{N1WXzrie(f9sBma+}=$M3)Nmrw571e)!$79X;JryCEv8A5UHR zz8BETEy?(+@Bw=ReW;!^%P>WGR_Yyf+B;eEDDDNk`j)Oowa|zBx~eW>|EdRDy;-S1 zeqR3AJ<@M^m>k1#$l9hZKOwP?!tky-BP7i^$MqvbXGKA&3c7x*R>D?wF(Pk}(Fb0oysv%p=d}# zn#^u9v$Om{LVtsBL{^WFC%*G3Byd>s-Z|U^ZHHCtXJ%*XDiNT3xme{B6hy4TPdMXf1lK3f?G%Sd}m8pEN|?lTJwo34D)KI_^1DdccwHMVmFGlcHLN1P%#0t&W=-q(xr;UY zF0#hHlsWlA(d#Y5Z=ZK@RDa++v42$Q*5)UAm#a9QRCeEjt@ZuGVl80qaPFOR_I~yg7OvM{1hIH!x0kn> zBb1(g4{^V39lA%?hRGhX(ZtWZ^X**{ZSCi_xspIdfo*c{V7n^NlY=ffgjn7);8!S> zWi`2<^O8)p7&*#ucGS$;c-9H(Et0{dRJEcvSYpJuSDiNptDq?eW>gRz8s!lm6+}P+ z>PHrj<})xSHj9?=w)GAMw z%`1dm@{4mjL2qS?`s36Xh%duyfWM|V;pCNMc7F@&^QrJude)GZ{?;T^;VQ+VG?Ye6 zXnBJ!k%o+%nk?ESM;33!dbDr zDxSyfNqf9EZw;NojF}SSF~r@_5)P zd=hoT&bRHS9CYY*b{CnEL;eQ44h^vco}nCHhC%M4SO8LO$n`}sv8g87eF?!vn96qV*c?+(&1xv!xmlKUS_hj~zQ|J2N@y?c9)@wzE_vA z2_D{!Kc=0ca}5SLnW8b936+UwWcPYtO(15o#ySOfYINUx9li8&O*bi*Dy?*S?#GK) zF}JN{P19M_7ZWldEY1p^U_$kYQ|vV=ikYcy?cc21{C5vTjNfA2-_mm(F{8VnNj|Cb zicogeIG(zuh&0Y)U>d)9A9dK_-(k_naFJ~BXmWUQ*GNm4AWh6(iaOxI$OuKcxyBzgl2L?JZzsOKOU?S~cDO8`6s z{Ge3yk*QcEIyo5+SfRA}-ExBDJu_qDU|_w9mI%UHi;cXWJw-Wqt{>ei|6u+r8K%mfx{4K0BK zOLg_Th9#DEz4)CSbC|crj0CX{7wNqqk`lZk2n#(8xb6gw#188{Q^UiEjg5^Uta;7n z@Li4~LjtAf?h9oTn1^hRr@jT{UC-^5Bh3WoxmV8p_34~LYi4fl(BVHFmax@TeUZn% zssg!~z!I*istP1PdIOa&A0J=e>9sC|bY{UlaoO68IbLZ{~^|Cd*| zTj-5nKBmWwcDlVV2i2Ac5~E1KLk4hc>t)DQbUoh!(aaiJ`uaN$x0iYEUs2X=eQ=xb zzt~1uvP(PlKlSYbZVC9YQmlqOlOWx3ae3L)**OuIy7OeeAws{H7ChZ>6VTStp~+PQ zCFtYlWz|G$G=mZDx#m%|t#$}(eNM7sqcqk$%W@OPP2G8?iHvj1Ga0FI^u2Ih( z)xjDc_Mpv8l&{ApTOMz!nExw&o6KcX_jnYRAnGH_tZM9Ff!H}W_WR@KkFQQv3`=M2 zRLc&~v5-LIlb1hkcD653#1}(;GE6;(e(W3~9HWyp=gbkT6IXZl=;j@!x7I4JVeO77 z$xJ?SqU~A!@ZGW`pZc)SaYRnm(BTn$8;;U~ISsax!~_Vf{}TB}md?bNQ9hCa*wj(P;Gf)|eQ-t92RrTsHVNe55w zEk89zr@!X{+<$n{@D&vROog2 zA>?Vw789hU5nn_}`djis+Vl4RBYBrqjk&;D#c>qc=n`&HE}kxjiJ4$+tIw*R(+?By zuTsX$#d}z~#F>9{*H+WYM!+F~uo=rMGm4pr@f)YMw5ciZcFF&3WNjW-I)z%Fz z0ZHdLqx8FV%kX{LjssU$u;ktHopaD8tSgjx68U%%7|_CnQ2>u#;^fT8`K8ZtbbUV8&#AJ~>aT3;*B z3T?kNyhV+TMMKAk-D_Mlo$AqUK&}JgctJryA)midAgm7ql&3G5kw72^{yeQaXaq`) zkD54U2Ev+o!Bv6B0caYd2RG|TW*B3@V)7(V2seCa1`AhX&^`X+2X>|cc*7XBr}JEK zz@H!&Y(2QqVZYin7TkgP0SE;L7x?ps8KjGijmZTZwg$v5-oU?mwbHMwaws^edrwvx z3ESpj{@LaAN$qJ}dpn48-Zh!)+q>l8A^0%2F`KOa_4L?D!xk@2`d)wb6&VFZ@|YPA zqZTVMI;C9IH*tlpqHI3gVg9_gTL=DdWj-?Xo)VbE;9&_ z(Beny1jLSv2~=x@YIH{QEE}7-k32nm3P5TC3T z`3^`HPG_s#{D+Ed@5p8>ya)7YpaGbi!a$Qt!9euiMBH1nlc@huqGNmR_e^9K{joZH z0V$4$jKW;5H2H6bK)MDiHj4LoJGH0I?&ctb%z<#ngtL`Fi}kN z4!GWQ=z9fZm;?sq*))!TJGeKUYwD#%pKXtqFfz*p(NZkqOs>btaY%J59PK~HVeJH$ zwql&T9a7H098LEzOJZ`d^ls81O;{gU`HN1Q9I*B*Dw@wAQK`eQ@5;$fVnR>w{Yw}j zg++qF%y(nYV7eM-W?i~u!Q$dfHC=&;w}jDQn_P}ML&w3_&b14s*47mIymF;;X>1Nf zvs5IQ7vZ*OZXFvg%lrb0$m08{`kTf;d$Oh=zcgX6sbIN0R z{XIZQmCp7c9REk4kI$-?@vXdHj#<7O@n_waS>a_tIxbH7;WAHR6kmfV8uiT5WkGZq zP_ZkbIkjmZX>V@*`KD#q{+_v6pon(xbDV%d(;KCu#Z?|M)^H0_Jw*;mXf*yPs_J{{ zbN(a@NN8L&A_?x8crM!8L1GWkI zMn+CD%DgD)j|JGxIvCn%=jgdb%i&X&NNED2J1)+f1Lz(IUq^JmH%jUCz{Gt-Nthe{ zeZi=L_4Ayi!AzxGZJ*f5!5QZlld^r^$Tg4G*$q?g`L9++4c*0D)~1?Vq`aEOe`d+i z^+c*rTKF!5p0f*tr)=o^sGJ#w#*J7d7DX2g7MB3$_<&HK-}*QESBMmO37baP)wWws zK4q<&w~8TiCcy^lu_r%^xd&iJHFbr4$LP+Z&?sKx{QdB!YG8Fl7aXh8HuiLLz^hcN zsB-XJET{1&@v(IF;(zdiBH=zr%u>o9xZFZ*DudUd3?#9*e-V}h`SO*joHn=ABWQ82 z=jYs%t*#YZeqm0n;<4)G6)DY?AEI7;NWpZ{2x_#89}Ly^6C(r#&G!Kc0pXjQWO6#S zhbLnt|C>meeYlZx))|i$C*LF4Br!Xdfq_Y67_r{(7vm(ib_CV7O69G{KKdZ>%cmo1 z7fC@25B7T=T@sjcI6eM>>p;2hWIAFM#7qwv#8iEcXLox1bG8%i%WQ$lX?`G0#&-xC-74Dk#+hXoi( zvqi%BEKWp7fFDJw1sdutNvil)m---mj?By~6B|4HP6=7MH|pC6F>n;EL?cdo14?}2 zj6^iK@~YLIQGfFS4;tx_X0WV0viQ`HMw!#us&GE-Y8$Tii{gJ<<#N97V#%W%{Iaoq z_F1PVg0m47N*E#?h{qeERonYKNX7g zQ(9$lV<&-7$wJkYu69)1s#*rVc*_hTEZk4K{1dr9xiQR89z>kiFU%L0mxjI=apAs6 zoubMH!{4_#8W<<*fng=?pw#N$!)j<_7sq1!wXwkt>HhVd>&>4y`pQbe{Y*qpUXQvl zdSHK=809rAImq0MNJjofBsLL@>yyUb2OF`ZR^>tbiZ@7UH5I>ozg=I2L-J=qQ%l`1M$+MGiv zpKnIM*|G%^twHuLh>dsQD=Hphe>3Px&t!HRjhK5v1E7VO4*VyW~&+{N|hViA|UGQHw^6FTzF) zJs>UPCCMHS0NP0zm{?eiU0suFYZL(LhQo>-qM;0Y;1GQ}Pq+nM(*sz6Hxg^Ur@|m4 zEy9?{?{>m)7x?;6@H(z-V?Cb*0>L>Ev6F8%XghQ|6d7@;GbiSbK2X8eM>ARM?zKA| z;J&qOoSYtZ>ZIC_L?dK%I$2=>1TRp*vGdSxUZd2OK%scz1yNtD({1smKQ`UJE1jN> z5%RtW%RRPNL-Em{^^%u{!4Gc~N(A!-X1Z)l(i`DI6wh*{?S}y&n5P2vk#e%)jtB_C z=@;>lFHCC7qnKFXHl#xbL&iv+eX$n5%UawjswsZ8$ko6p*2e8`!-d;q>vYCWyzArL z54DK-@+<9+J*TDmM~E^+T77H>%}OVmx;N@=f~vbn*ClniURrT#YL6MRPlFN6-)#}v zi4-f+Gp9$UBpXv}_qa{jlp?Q?$7BLTr_Bo*PfDTfCM7y{G8!HZIo-%eQsSTOsx=0I z#1LLS{;@A?8fOCGjyf`-F7+R%eaHWkBtn3-K@^57gP7~8*tT5lMq z+euWk>Tr3sNsz!B``@yCh=jNU$&5xBxBJ5&P6SQSe>(3jh8oHYt{;ttOD*=Zn3w!A z6;OVbI_Z>cVT84xhrh)ir@?VNjJnQA<9nyZq>;tdiJQRVu}{Pdomrd3;oN=2Xn;G&$YSp&cpoC267DqW|zw{M{xY-PM-|yQ;g>d8Ngq zN0bbsnguJkDBITcA&!ibSC;_j*2YKr948nBQFL~2j;>@g+#LT`$t6&@wESHmXo5}O z=-<{G{LTcs9z}^rCoQ_NTb0*KCp3xtZxZ=mPf}n|)QH0V>L0iu=_z2J!TRJ?mkH(5 z9#+fkayfJ#sAu|0`G!eN0Dr>0u!uU~^g1BnZ93~^FEGpwUoh|=y71$K;HlReH}e1J z5bq^KM~oi&?k^-PT&%`iU`>+FW@rIEjsQn^A@%_10ies^KyPVn1>P4ei>sKCgC=lT zU!lO4vv0?xzOJtC=}E-%WCeEP@81+KbHa-qV&Ty(Rw>Y^1YY_NAuqdR7syU|_+|L` zS`^s+EiEq>EgYT?u>~ZqKd!Ft41}XSjO9I`K$D@2oJ|5GzkEVRM;RSz6N-}gQW0++ z*m-;V{vMG{RNAtzC}I<#Zu}GXA`+j)(MVg+$}lu@G09rWgh{0O&lVD&u=QUBhDMs^ zSRTRRs+=}w!i`*(Af^An(^HSEBzB)(sc8tTWhuWNrXZf_fX$#aUJq}Qb&?`|MrPLc zJp$W1MuXjx!N_k7{1sD}o%b@^sISqDE)QJoFnMR|F_=k?$low6xEGqvRT*?CGVA6SOEfRhXA0B$YHU^ML96tNYKVmvCzVbIwgw0D_M&`dt2b=qWua9cQ zi=}9i&7W_=F5gbTi&HcI6WHl6%EFM5&J^sOya-QkyFO4&YR4pDCnIJM5}9hheFK6= z&D@V^^i{o#5XC8K^bAdR9}t+QD14)Z>{aU`uM+UweAopz!Uv&yO$VgU;t!LuJOvv*LycOwp3bU!~-;~SoYmZz;fWB8%n8`K0dJr;AR$W}- zhMlrpRsH}^I{d?iY zzR?@H_9Nm*24^)Rd-u%ZTi2ZI*Qjv4>ugExa>I>V}N&R?r| zk557{Z(U(jwxFw2_8&54q|>4l8BXjFQEXgYcQcT6e?R<(8y~@r-v7#%k$Ewv3Y_Qu1xYxH{tcI4UmT4DQ`I#R~bKNR$H%QRCnF*_vO z1YFmRci$tS%a~9tm9@Gt|Kf>j5i3IJD8NOQZoeIu;*y~GIynb>5spgw$+K*JS~N6MoAa_XT!~ziH^A8+$T9HPlroQ z5c^_Y2+#)*HG_T|E%q>NY zLZsvVi^szDFrned393sHQ(gL>I#(^&&g{f;;yS@4VG$a`YA21zMx9rlP8s39Uc=22 zWs1jbXG(X!y9xyJ=vE!7w~I&dPX>&kkfD8EjrVW*11f(BG?BOi;olFRfe8n1>m1iP z97M>_YlM!Dv#gZ+nJ+)Syy{(#46~wG{L`bPNB1d~C@DAmm%PH%SBAv5X9vk#4x&Q7 z0pEukg#i`CrgNg-IYt~K1lH^J4l+MK4-bP+KD==4tx#Mkqj7`Ndoj0u9zJQj%iRQ7$*xZEg<_tRIk!%&&t79*w>CWa{D6 zfk9drP>Y;FpRw zuF`5&;gaSJ9FP{O*e0{_4w2NgD;-l9TmB4}wfpQwAGsEqIEzeS81$f>n5;&Mr<_lT z8M1u1H#b6RXMeik)Zy&=h<|wIb;!SV#;0lEO@4ibEK@Gj9@EA^DY{ZP{|7rR4*K_o zFP_1wMR)S^7yz8v$uOO7f2&XD8h(drmUB^OGAUKeBcn%Zb$dl8h_p{wi{VMa($-~#7FJp(IGH_lRo4q=p5-Jn9tA!d5qU()H%=UC5Zh5=9lykyh=8Gz&B{`1ML z)HK)pq;${+8qLD`sRn{i7y(tA4CA%A_cYU=Nw`vNk()vSSG>kxZ^p$(rd z(plcUJKyMk1$<*bY^r8;9CxlF@HU?Tru4Vjy|<(wL~hj~y}XdlG0MqJ$E1yctM9i)1gz1h#X`|CHerYDq~k2ENyIJY!_;@Ma%$40`wI>5B~w+ z8wzX(Uy^=DMqW@sclT5+mWYWR@dbDJuP?=JuArv~LxPZ?AYg2q16(}cngqyLpta9; zwE!RA0`U6wrFRdo1O`9I&dvry2zkVg*47cwLxDlZ`qS|`J(z-wG0=Dep2(sd&sP!u z7-ORO8vx!7C3X7zV{Tx9UcVT6(&Wv&s%vN%n4c#ADjk5>P0$%ArN$05wBR;U~+5(WioxOd1Z|@91 zp}@nR#+y$k_i&r{%wJKlb$QE@{1MD0Zf@F)a{Px+r*~X%&=H*la>0lM%m+Z04Y)~g zS`Frd>`{`D_g|@~X3dVbgfwfWW|Kdx^NecvwE3Z8_GW*DD>5CVS(NBn@yHr^p6>yoPU*<(EJ~ixSki>q?M3wj-{AW&hEgWm4d2aF=52KQ z44oWW~DCP@Ch=p@Wu_5JRaXYO-_azoquupZxV#!4{R1lSf3fMa=cH z+B|tD9NgVOYj|RzGnmgaY=P6uhW=>15FzYU|4`_E<-<=W6b^wwN{iv>P0g578nHIr z(@uTz#TvyLwNMxF?%8~mN}VwPtJinr@so+)!Fl)q<*Ll+>54<9Af+QVYQp9v76-nI zPQQmts6}P0jVtzrRlO{6n>1CFmFm z=g^uw*T_>+Gt0Btv{INdlRRT##eH}qX0?OH0-r`f+-!GK}~qjmF=z(8D9yrzk{37e%2Hvvvd4HKFqd zi4z(J?hw@Xc%MfAYVhLIdwVHH7B591=4_QBeURD&CEW^!@iA{=~#Y z7l=Io_V!;C=&R{`z}5wV8BU>7V?EHY-w3^^Wg}g<*Nt-kAPwURgC#< zBj=}9XjP43eJkY_>3Uax@6(|wK{~u()6e6AJF2fC;suhGzjhc6hlyFCu~O&K=0cmw zIvBIuE3c7_u2D<=pdmREqgXZd9pFksM-J#510T8VnEBw6$>3I`rp@6N$96v?wVm0u-p*ZvcE*m~4?`&F}tNFfcyIq0E~Z9-&<8-%xXhvW&avo5M=q9 zZR(>UH9WI&gddR5R!S?zo2ru#E~m_5cV*tGm=G$~d&^4mqo&y>e^IWuvFm(Z7v7JV zme%0u+>-KV+1(FuQ^`=CLJ>jD8a)eVYVl4&F@!6RuXSA>;RkYp^Z|bN@NJ!Z75CoXy zn}Plw8ONdRo0}l;@p;vYg)amKx;#80<~|SH(^HUHZfHL589)B!CX&$7$NXyrR{bpa zKG6pf(fd6^*8t~;7WDT}SbCYr%=q6Z0!I0?+FyyG2i<}S(hSI#Q0p=kdZsWSUc$jBJYCIVAmvhmhmnhy9b^VqfS*#7mx=+Nq zTiT<@$GBZdorfV9U_$GG=)axSx4Ua<5cudWJ-D^aW}vsTIq2)v`&WwIRMErF0S=bU z(8peV)b({n?xjk#A#Lioi?e;ovE>L$t)7XC&e3BCx!oWR25mMKHQrfxAO5#=Sd@LR zzTf7oUy4=0?s)EuV|s?(T)UUO`moi!V9-csDGFfRml6;_^59GXZ6x6EfU!F#XdnUa z5mcp0jAr%a3aUSRekZw?@wtoP0w954Y^js5~)urS7mb7q=>q#Ic} z6FK_yv@|U(EfBqS*_ikE*`-~f7_f7l*f}_iS7XHsjBZOXhDEK=aZtmnb`d-}a~)c3 z<#?G>Q5{;BFM>k}bAKboVS?fpBvJwn3n;$RCpd(K?YXbp+zxO-tT13{mssz2IJiT| zW!VrHCIKzTu0`xsyhmpoc#CsfU>5Mg3^?}^TIuo61{_n6CjwX_UP2TUq5+@RPc6;N zzJC;vk&!vSe+10#j#btjm!&^{EE|`AdF8wx1xz6rV#ue?G(CS2lkv2WE(SkCAS_-!rl$$dlC;V%xsSpPf zd3f_e1MDB2>lBkBqoO7KE3V>;W+q7F;>XA>y{J> zirec0UQ^^#)Bxcf>>a|%KH9oY13m#cH3HMvH)I@mq@ZvTB?-mU!OWSZ`y=nOAW<*wbIkAKFJFe&CZ&s4%?_jf`Z^oBGhmo=cFt^!|cNGSSF) z&cxI`Jv3DR8%Uwjiil$0WAXkCqpmC~51W-bv0zLT6IYA0<`;h&Ti?`RQr~h%P=k>7 zbP-aNY+8s+hKKn0UMH7eI7v^J8KLYld*&<0HBAfeRa8+53)A8Xwtt~@7B)g+pVsfo zF6`oOy>~loa`H}Y&b?6OdN*`(x50eTuLT(x^PXhCyD{aMIi-s^W#;i~GJ2Ww zm@Zx`UmLM+fE2KlVn$6}L&I8Y3})ju>(>V!on++XzphrfAT2E|O8CW?9qL!DTi>fv z)L|_eiG6*2AD&L1MJz2XLEf0?#^sD??JIk^BqwL*;ED<`H2lxcIaS z&V^j)(`PmalkJun1aVnyYzvvVaqTR45qU>@zzi{$p!x2-c{Kcf*3F|CCh6hfXp*D` z@-ly}g4g950Zcq?h`Di2Vlh9jho?1<9c&Vt+(~!)j2jPhwRQc?M;8D^f4Lz%`&~^D zzh=tSJ4lH2mGi_Gm>SJF1W2h#rNVoaG37JzJ8ON=jZl$J9ui)Z4jnTCBKeXzTi554 z!zKa91^zhaNFLe=2}C&&BktB~c+S-;;3mnTGkmv9;UQ>qMMia=F=%1^cWE~Z$KCdx zOqjA{PVD`c;Jn8Nj(cCEs#+Uyt2gM@o`PzHKPzD6(wu$LlF|`m7}%uPD^tc^$Fb{Q zlM?{Zr;7(sLmP6W+^8Bxe z!@o8B)-T}WXNY?B6IbA^zzCcB17nHSaHZvYta7J=rZ;NZ18ww_Sv#6=?_=N+D98a! z(&|`Kpo=P2RkX}Hl;p}T+pe;oDphj#u{O?re@o9f+Cjds!blsH;2S%JIDs;KgJ;m( zr99@zin*s_EN-Gdywi<~0#O72-GF1c&6}|ZQ|eUyrKCvNv~eA!u?7}}RjO%Y9^-QM z>bj`>$?(GC%}YWdzniGlV~W-*gx`POsVL5{wRxUWIMc&XQ~4P{=4=FuZBd7DtA3_K z&3K4^TK#U)3GpagRzZI6^>+vFWTjnRx9ub(k`?l0>~>J}hJul1l$-A#d&ZwmcQLu5G+l@P07^QfT4rf;jV zCX!=DC~PyOpAk)49PMW9vs2{r>fzB&aQ~!>4Cjh$eJmWM*{h%Qwa| zOVuPZBze5c)?Wv>QpC<#*iyvvD*p3mB^hZSvHRTwc9&xJj_mARo$fKKH6o=urCM^Z zq?l%{TE^alf7?J!P1~4T@1jD6TMK-~z<;fvZvr^XgM$)l{)YtKC^9mtX4)3Mx{H2v zQjE&B()Kb;;rdYn@N+IU27LX*?+PkVTbA=@-OdSMJqBN|Goi&4>nSqH(RoW}#Xi-u zgbu50i%F+MWi#_(x@r16lrHo@Qu@J^e8%tg0eff7o=isX`poV7@JB2N-hbR;N`>VF z6~{mR)Hv_;jF*X;rF|$`H5VYkF0K2C=y{O-g}$U(@RlMpGPm{Nl;+KLRDzbAQ~TpyFzO z-sPJHzmsSnYfVFiEK{MpLBEZWsAVi0LV(7@NRB``fbI31o=b_ea-1=dJS7j4k-vXx z|49_8V-@PzSkSP6vtg~`*a?S=RpT3CRgo=Jp z#s|EEVX(_@Z-;?9h@-C+;+hxu#4ma`n*bbvr=}n;Ok^N%8vxq-8{kxcJotsJ_n~1| z`yML#1np2b+t>&Klyf(IOM%>rqowy|+PlEaK~niUP-_!oMmFiZBOBQSRNvma%3kp_ z^A|WAX!(j}qxNR6sRN7!-B#^P2=vbBn#JkI#6c3_Hw2H!psH`p}&aoj!sUJ%(c4@%A@L@0m~*4EaCLD z)+j_m!eLAO{Sxs-~?26K4IaVi;E;cm<{+_MClC3JfMxyyjCs#Pmm(v_EPlO zl?wu$c{-YDb3Y^iD+O*CTi~rcpxPYX_Xa+TAR!?EitvAZ)eC|Cuo1seBE5i?Nx2P-7x)qh&WiHysn&0FkKMiDzi7vU;lMZL+9w@w>+P zLl;xugvL4fuFTO6ZeV%63faP!F8VxzmB*RK%GkiGW$3x6^XuHxk)w^wY3VvchG`}t zeiofvt|QoHAa)MTVYMgHgt<;lG;4CBKiN{jLZp)yXkrO2_gvR*vt(O6?P8Omw9^L6 z+up4BUxFXI)$h^?g>JS|xFFiP`o@l}v~5iEPF_DPMY5edvKoJOjZAkiPPOp`M%OTt z9XS?gqAK(e_TJ{q#fm&1h(3$-V7&}FqV4@j)ius6R0-B{cu$(84tA}gOqcY~H~-$G z^zR@<&ge2`jeGIs&)HulQ$EA1r!FnG2ixr5G%~IJdX4_tVZB4{`5|P+#n65E|G5AG zswx)zs*cmUzXg7n@=)MN;dq|<PrH#d{C3^_as*+ zUHqjCXgW2aHXjIN;L#Ea!@^IgU-LH}WXRjcjeP3;Ci~vw>S`8$-y_RPe$U3%KbJ3- zpFjKTVk<|nad7-MJw8f9O5<CLPs&9r`4>vGw} z%3!h0zD}LHeE&O+ez}vk&DANne9v`nn!+2=oMhHIi|9@zW-Z}|y4d9Nv-{+pD^LL# zo*$IvUECekni3(3K5Sy~ixN&-zh=*x*}Lg6M0)_6fY1ySY^`8B+vHQsP1QdyK@{sV z$t`aEVf0CtBLaR|SFz!uNoL}B{X>jyn_5_b+$-Zgh z^Br^J41tU3GF$BZw%NAQ{YzZ^gXU{YLm^spjYRX*xHxVB^3<26zjHXY=sm?y{l@5u zHIAe>zSL}$&JSx_+jK?U#Y|{2|MO1o(`i@0GiKn0=rc|SoH=ao-4;i()FdfVtK=1; z$)vaO^yM6yTkFuDE1m|AV$8>b(q6iE<{F*CNkX)Lg|&1Gc9>Us+>;rw@*PVa415GB`@I7wkwxAI5^^koo zoEaQR=hBPRU1sgstJh+wTSMUPn7$`82@Fd(ym4K8pAoA)vZYHW zW^dm-pPdsn*Nv?T9*QfCOx(uyK9TnCbY6+(TYtgFZU1&rxi0i=^&n~YP06x}y=&^X zprT}08MYaYcj;w}ZSB4NGzi-7Z!d;87#?}T3pp~q7Zp`gYRMs9HybEGQ$?}sB2h-g z_gUomAK_vPq-b_yXAEJpa3bzqdUGm060hUs8SkfA2&sBRT(delN=vK8St;IE(d-R~ zut!VF;_=^3CHE;(Kh}Fr!syuVpTk*p-CnN4{wV$Drz!8U88^K*di3n+Trsz zJr{`GO%Gs@+P;}75f2|o>d1&pXZ>s}b^kxx>22VUdnn@j-Q z%C$#Y2+OS|k2fH5_NYLahQfJxdSp&+Ot9tE_q0Tx>cX#)K~iU5x4GBN>@4wv<_C9~ zJ(JDvWUWW4mT9~`Pv|LW$?H2%Oo^2a#U0aINJz9SFIH2`e461GrZnYc$x@7+dY66B z1P<)YksONd?V?k^*mdtyTk&Rt@J%iYPO_wJei;T=5K5Fwzp}EvlNWeL*1AL!i|6Mk zj(>ARX?Okv^kz2Wbjo3??6co^q)?vhK7M^8iI&H1%}MbWl)7AqbJ)brm*F!|Hddzb z&!o$`vN7L{u-PdR+Q}gNKHg%~wpF#ADR088`)`dVKLtF64Vj45E7?|lpU5Z2);ZUkVDlr@1v6;}mqdmfvg-p<#PlMjw1UQ-iiY}@ z@y$z1_rls^PG2GW)Uj24x$0q=aW zBQ%>#Zanm=lFqfnLEsZzkX}iFa+KWG*c9QCMu~r_C0hKxH>;OF<)Yc=bd>2v?+2 zJr&BUhxUY~KPF{}Mg1vxPus@&IL)1%L$~dVu?}{2fHNRPZ=8*h6+)jrL#cOR_&o7E z-1~ge3euk+k;hWJ&o*F<+ct_E1Cn#!h0hgC7zUnyLF#Sa*p0)m2t^Zl+{RhfJEyN^9&*4;784T_#_Q>UA5b=p_{e_R@!0PCSNbV$-aLQqAZ6C-d$wbbT;;FA zCA;~Lg|82;K!y8)V3d}Ya%1TbMF0sGAbo%-NP_578*AXh?}eUWUB~WlC?6oHxcK;d ztX+_pYwF-qR{xcCe*)@tpjiX_j8BbA+kg=YuH)k77FJOKj_4PZ8@yD{=_OFg?OyVO zp}S+iWj0^Ds_XPB=q(sy_=JQ2+1x0LK0Q5MQdzQeu6#n~{!!%mbbZ8`4B*X^34sr$ ztZZyR@>$5*y=-2u1>pCWPR6n47QiR#0NppyCU^{>T)$2<&jjIX0*5s|Yqx&!#zfoR zia=lIOojuipT<;dJ>K6B3zS%zAO7PEtrY-Z+NZBV{Vnz{(+3bSZ-C|nE?+cjWN#lg zYX!b3lQ-MD^aiPV_)?H0gW%YXn#Sg4^;hnsq@*jofqAo5YR^nD10cM00<50*S12E* zcA7H~!>)Pnk)sb9)oY#Y&lY9P$)@cHpy~_Trs8OsujsSQR7~iaM@wZiM7gjcNi;MV znL=R#6J3@l>w0>Ir?Wz>#lA9^#e^{j+h^O=T>ns4QV8v*qeG^Bp!x=|?+zRGYx$3I z!}eUW3dw8ZsFjDpdh$v^vNo|?a&4}A-18a;0yvUR4;Q$DE^WS!ue95LPGqrdEM4M( zX1s8Y!}b@oR7h&g$FJFb_eHg{*400bo7w_fN#X_&&FU}HD5$oywj5OR=^0p%k@s$pu6rdj`wA)= zv7e(r(dD>DQ8SRJ(bl2O*_BqPWfk&rVrgb>zV;_a*OFm|!M8NjXRo&C%v}AG4VLN9 zjYY1#y*=cS0@2&YKiXKr3Rqh6sf?rlZ z7f#B>qIInEEpysS$Veo2&Wdkkafu#cDm{qvwwof?0cl-612SUgc=FRuR%ujWSORWc zrtpI*euG*Vvi?Znfxvg=Ak$1U>+!2$l8y=`3yvCd6J3Iqa#LLlfp^u2s}-WynVjZK zms{ImbP&b{;3Q1_2@PM0_UsitLRK8cz>m^V)cFNX4vgdjH_0@MZS5Gzv0Oo34vc7( zkmg_NTYS5>jciP@Il0yLJU)odH1Bg2X7O=?tU56C79^9*LX0BJwL(1d!32!* zunWGZ@NnW^pzC?KkS}E10!*I#sW5)y_n(%_WMTJvVs?f{)0Czf&e z(*O4=#oM<6gK`6QC$qZx5*liBQs&RQm?cb{68M8gIA&d!SDkiMu}2l+A%rsNi*fX| z>&vyYdvZ)PcUTl6TPNMTR!#P12jewa9_e(^a>@9EO4`TOE{7U~3oxw*oFtR7Nlx0} zd3IRQ&iV9GrjlPOP^PpO*wJd1lQPY)yM@M4&9EZL=K}+Cp`aIkV^@@h1H{! zBKUYKWPP0^3Tizm^7JNRGBB--Pyl4!9DGfaWzJSSD@CJ3v~BRYA!^Egc2tWD5pjWv zERg~<0@=&!Y-Yd{$Mj^vtBkx@^6wj;PIR~v(25r?Y6<}>U(npqp;G14+I7192wSdB z>ay3;*7kGeH$fT{Yf-WJ8jWGT;X}|5E3Wdch4MA;IZr%P$*VH5L=P%`8>h;NpOs^~ zj}XEC%IV>(i{@Po^s+*0^LMc16oZ(@oaWBj_0H+OCDMRw{!PbfP8F4(dHqxueOLV-^ecWod~{PFs4*K0+g-AKzbRh&^`|%IT*5om3>7 z6I8ddaBzmftewua53=PGkrqP0Hh`x7*b{1ELbh{-{X4NS2NGsq3@eG2M9DxEeNZeRFS@ z?4njGn%E;QYH_oVW%ha@j~m0DIZ@UF5~_BpotI7wC7-Bh`7g!JPM(~Ez^D<$1-{BP zCw3BLTOYr6;&H^pL#s(go*^zJ?@r!%ZsN`4TxB6p8-3$C)f6XkUu@aX&>7;QuM8Fy zmi5r@(a%lmXJ&Y8B+)m|&;UkAT4(OC{l7n+c0C;WAWl3Zv}pD?3OA2;nnsj#yNSa? z^tk$xTEvavs$~Q5E-9NvQh6BjVKX6d4KC*m6WO$(W-6T01n1T7-uGUAh)X#H@_ryk z<9@y7?`fpSG&AHWj6zJCC<&I&qq41yvO_fcQu#%^RAYx;{o5dyc7?`ptK(i9toT+- zcfY(o1M;(E&pOYkjp2i2rF>e1l(tc=TPOYBpe#tLtYqD>#DSq{-DITGXm1f8Jf9NZmd)2G-LAcUJ8Aah=-uoTpNO4Ex6rJFwAgOTyH?*=n-QsuMGX@l;@vx?;1YRyN^-{m zt+isDMrB#KvbW(dEc$-6N?%FkX6b@D684XbVivUbD+KNNd1cuPW&09*Cob*Xt-bynUfB9O zBdwnlu@b{(p`h`csHB8nU%9ANF_Dd}`3~AT`iGwUqJ_far`SVD|M3`28V#F1cnT8J zEQYN9usoZ#<6}y*CwiakCp-GpY zj;5J%SB?T0u*Nfb*2dZ@PmVn0i-#q(_JwvCz#nb&h_w+MZi5%O^qFwH?CgH#>qraN z9qUdyXEK1meDBkP3E*#VhPB7p){m@d_%k+b2F#d18K?B`w}hL0-x*JVhPIZd5%WHI zJD&X8d*Ru-;?l`5s3FrY`oDEI>fV4G2PUr+S2DoDrgn7o^cdX3#yG~-T6JQSyAoC5 zm{w0(1a1OkmH_LKrStn#Dse2M4)xnyruYTU6)y)hFDEAyY4sz2hN)H-!G4ogLu1M$ z%haFkSW(qa$S}M{9pc|N-mx!mqs)ax7d$_h&+3{o8Y(hGnN=ps7>54jG{_B8#=X+*5N}W zpG)Z0rrJ{7=Ij?V+>6~Q{^%-J-}B>pyKXjOnukU5^Zt&=$z>bRpOpQTH>@AQ3}+$; z^Plw*lr_f-1y`Q98KmBIo9eEyjL?T1#P9~=_knWhJxz~yCPy(P4|k=fc9>pfTm-#W zH;2(>>e78I*$a2}cS>`n$qXu~Sd%V#i2lK7oofYkU5W8>)8Nteh)CLgTqZ?OotsW# zH(7{{W(d==OPvw|TA=k|*-IHi?`;?($p{@bA%@pucq^KvdS({HO{;L4R*VN#>eh2g zqj41jWUWH4_Un;XpM0MVhUTpzLIQ}quk$wZS{lD1b!(>gEvNvA%uv7ROXsh@bt1vO z_-%d8&3c`_xBWh+t91)(`0RV}T;eOWy)^_XH{LVaxmrb)2eqTNTxCp(0Hg;{M`oJp zw;*NAH*FYM7U0OAZf2@ud2LdlVhH-iFb8Dcj?Ct6J1P)WAicWny`~jx<<+sM5>YGejzyaS^dBF#rOG~2cW8R}XDb#v z=!MEcb(35dZB?C>Yg~)(I@D?_`=d*k!=#xK z^R?->V%9)*$R!K`v$<~81pRG5oJXp*NhazZ{PVh~Vw33m9@a{B}ac{Cu&R;N=*lIV;xmg;=1 z=mr9bBQ`}us2l0XYgdNcXELTbU6~-aXR-n>(~Cv6%Tdo`uf`$2)*g);l2;c@v=@41Yfo=|v+va( zU6-HL8NOL|?7kii?&8U`g+!y00#vKVK9}|SXX==UhNdDx;~CgkMw8B?zn52!5K)@8 z9gQNhlZ+-jqA-gQKcVu@mWeJbZ1HrR2(!)POsRwM63jb#iCl8GV3M-IcYdYCFcJKE zle)pC>&Fxrr(~3SR@POEPfuZFn;N-V561kWO;FK>}a%i2Rg0S{W;ctzh4F~ z-|r7ybvqr21z20&?&>w&QDheCqTMkoi|If4+tHsf#{3j1%R|k4C&pFur;ojB9AzH- zi@Uuhg3gz%-hr5cy=n*mE|^LXfA)6@#0@sDC(O`s-4jdmBoJ0%Az*Mvsm*+ zdD5Eww3Lq~tuB`)bz#Z0S*PLKwCUibCFIf57z{f{9|yI0-@;V4*8`MJb3l*SXf039 zu%C5yJMHq)sN`SQ5d-S})Ng;U`}0MJWQE8plfryic4ZB#T6}Jk2cOZkUPHWZgLh?0 zp{_pacvh|B`W8i3TSAXGe5eFYm+>>Vepap$ji*526A1&0u(W#raE)&11NMWqTfkvY z(!MX1yaseZ)7@g-scWC|`#V8Z+V)@mG6XuluQ=mn*Z4?i)_j)pQf}6ElxEqiejQ#F{x(4GwxJC z>4m>RC3_0V^qy+G@Sj^25FruCt;Ki1$V`pPej<<(y1_)cWlmcn@e0qg41(> zZ^((~0tBg_+Sb`R=_x`PYoW9@oIee8MllJIE_TAdz-C!eQl{?VtC9%Y@ZIM~;mfOE zY`#99FSt5kY>u>WRd7&W2yOG>nDv8FZD6HqO7d{h$~3Iltxrnj=&>+Po#Ta=^&&*F z%sF!t={;;a3FRu4@IH;x?O4kc;n-#+*6U|PMl{k_m_u00uoeIF*94k{MjUxCzsK=E zsQ((>``qg68gQi%a#gt%RUJm?Mzq57eS4#J(50l)2iwP@Xdfv1d3X85EJX0Z&oieF zUbh%U4_?nJK^v>%&w|?j!kJ?L)v!nyak7WVE1{<4bjE)f_TP0nu^KrP7@sxzOd%yf zG#iSV=55;A(q+|cP7b4-H6>y+Q;Jx|<-gn!5fo^$Y5m2c zFw3$erL=Ym?fZ@PH*LN;J>NeCt2aBG02U#-~{bKXjjw7Q;LdeS{8Hzm(EV5Oyo`yhFLXl{3 zB~)%MXbTd@kg1SPYOJo1?nfqzux$;qKgiHm$)Ew=Ip;p~(@oT3O&YIM(#7Q^d$QpH zSdpU+Ze&SdSP)tAuS_^uoVr&b*EIbUk>ny>YX-&a99JYAd2>DKyFw0OUf6#yf7wgy}X3R z8myXT&Pb|s8~!vK3j-FnJj}}6t>Ir3$da^)76OdII3B1~t7be!z#5RwGv_sGb3Fj!Z} z%c)O}_k`9TWW*_CWlP!7a2$Z)^%?B`;M7804$~@9Vj0tBaam2*`$jV6CB!M}tlSD5 z96tv+-7`%|ETfc31!PlD#z7HeC4%UyCpo?*N}*Bj+%NJX|9>w)+9bGYmS0GCteJ>w zaj*P-v%D_z#+1av(m(n;6CO%by^Awj@eG?2lH_9UGf8cI$q|7YUMeY^BBX&gr5ET}2$GBJ%7u@P3T>-Ys<5J6T5%de#+mF+xKnQ32dMIk z?Kqlscc#nz6!1`<##PJq=6Eu~sO3~Lizvf<##isLfm$6l+Wv_^dlo>vao7aqjkGdZ z;^DXvagroE)JE1$R`o^d8O3dafMK=2&v03s%Y=7=tW!3 zYupGog}QZWWJ#-jD+kzFF$5z z@J=R+`kum$5|G~~HP)V|oW?~R3)`AqNgr3c;K(Jnkii$n##C6JfR7CK0(58< zxCO@@^E}?kl5QIabh(_jwym2ilxso!WoXJef5wYaH+2vqv0U?ZI;p+x z%gfZkFF*SB8FAOw#07%^?YsxFH^}G{SraLCNtU&~vL3U%#_2bLC~-8Hj`Ca9LI}p*|%aye!Kf~{TqE?#xh136a5ohxKxUFyIQjP`Vt#t-7`hstf zhnS}5;>ynMbwkG$5TO49@TKEpQPt8vGk+hRAUl!Tdb>jID zn~@8l5cFNp_pOPC^h`~wm=sl1RgYVMa%AYfFSo0Co{jN>aPe&HB1{}c*J{bQ`-0HO zoagt*WUa8>{{T;9&5Q0jj8Azy4Qq{uT`QIfY;7yJ6nwL6&^Mm@P;lN4h$XX0W-fgmD;!a12(~wBiZs~22mUXEWpD+-8K=Dsglo;m~B~x0iAmJ5<)er&J9f!$%kmm z>uFUpm_MVAf}*S=e}%Q;4xbJ$xvcJ)X^XBQN8PxqCP(d?hAxHB>I{As>GRHS9hU>6 zjbZHKqZq=EA7o8`<$%>6a_WrT&M?dErpHC#pukI|k}qt~M`+aw<5~V&z1N2phBi}6 z8Zm{UAD0kep8LaG$^?gtC_5~TgB4GC)UnYe1)Cq_Ja>MtZ)iyVSu#y3#!yQ42FpB==l6uA19>Ex$6;g?on$N%Xi#qt)18Ce{`Z47_$_lO3kXIHmIS@Y&3 z315{}tmuo+Yb{VwO;{i+S7o3jHPkL8H8}_(%SbA%52E6H>!e)x47AUC!H4GvDaMSz z7J7&Co^9AP93zsEtEy)>bn1oaLh|ANb2Op-)Ra^!%B5Vl_M+`?OpLAeY@fvz;|SJW zxjp82Fm2r(IIZTfjI4JJ5c&6b$?k?`DL|7~&u;pQej#i|A(~1lg*%r^0U;gD7@f)& z5i!p^6)Q}v*8uFaX49evq< z+gwIvKwrCi&*|qh3h=BjO*#T2qXX1U9HyF;(G)0y`ihF0*?p2}%!!-6t)P8;Vmm?_ z%feou(E)5AFftE8g}>&M0?4XzR5Eei<7~f;z`CKC5fF6NV8S9zQdG^`W8iYw(TB~8 zp+FfqrM>3;E^GDjEs9TTC!?BH{O6&b!W3G=l{k+DK#;}pkhF2u+z=MSVsTR{@YBl7 zj|o2G+qIXhoT2?lh3K4wQskAQF9dU3_Yr*im5!ya*@BYZE{8D8U#Vr0j}r$z)NC4mJiNuPA{kamx+C)vQ zjNU>RFj7>C>QvpGQ>V_+m#z_ut`m!svRMAe-4O+8Oe!hd*owU4lVNkFAr$2b96i<= zHon9m3RlP@b1`W-bnyDdrj&>hd8asUe<>$4uDHs37bJDLTPeN>6fNCX0q&WO#h=e0 z=afBsb+j}q`r3M6LgmyZe%?wc7xw@pUSvb2s23GWg-iECDpfTL#Me00ELygBtYKC5 z8edN~@k9aep=(Ss*~x5XXMEar?d<4SzQ_Y=8j1e;6pvb^=U}cH^|N3bERu9){AAKk?Hx zZ3IF<3R>lv|HQw{4OjxyMBL1%#BKhCPzj_mtez&H`bC)5etq+w(ez6ozT3(tw?j<<ShRXHA-T%CR%HGZEHc1fmaL>lORKrz|b8j^cM=;d-dn*^FH@*zCSHLL*lRstgSd( z>+?qi&?k3)j!yzr+#94EaE|WXyOFCFqe>w$cgr$RCtB6$q^>1bx|*4g3RPr9E?R&} zgGR2@mcxZ~OaKki*u9y(0Ml3!3DH8|oV`CwyV@XbDe@eyhc678tszcpw{1VjkRCSl z6S~wrEbER(^|C#DAnP9^%bVX}Nw|ZzD0r(x96j?WUvcL<1vO@{nsI_4N*(B|JY1nk z`@s^N+z;mMd;P7=2}e@cnwp$*5|CrgmhKeEls>1&Cf>K@A*G)VdJv3r;GrNX>n0$K z+>Mn4CSJ}cl1rcnlLOP*R6cv5!OUl_IHOgXmPBkor^F8g4beXtO@~8q9i{&_K0dz% z?Wem;&nBT8nI4K+o7{5%-^wSfd|`r7 zv>jTyf%KKeHv#hi_RrFm5inu9vs1yfv23qRAY_0?{fUTq^w2&DWJl=DUHvLqy}O_e zs!*~MS01Q@Evl8IIxguI(}FI$xzSwlQfJBD1yEvyFri%DN0&NYw8Rs6Nsx7?r4S`g zeSdV@#i*+w2cwLGCVtv8$yM3edKqCMuKuSkL7R|7vA}cbeQyg5@rdW#){EV1hmfJ5 zp3BVmhr;D31S~xkE}(L=B^iZVq=<+E;>S63 z;^b=2P2N0}_KQQ3WhT$!g5C|RoNB4w?JJq{|L}+jJ9>GQK$b>Fsrk+R6|ga#JI6BT zc*x7MYK^4up2_fp!omgyEo`EMiB)6?XP>y#)mb9wtRsvA4@V119OnB15GT0_YP$}O zia^r4zCrg#Meb4=a~Zksxd^s*7x0iWz+B>J#ESDUWWx|}^aY?!qjQs&CF|$q5E@}M znU0pD7sVMN;sM&;YLmaEzADDH5N?8XaNo4jx?)RwLkfTf)K6%{vWRnnezjijk!Aj= zx;IG_&UpLg_Yc`5=ZZ(47A$4?O)9q;c*f32Xfa|=Tr2+*RFU3<9K6a4?>;Ob0+${T zC*w!h2QT;3FB@T9>1SLC8&mj8b}H|cCeV{D_!8h!@z&C2?#gyeOUm$rFyqE;tP_fu zan=>!Von-!Pf5y8CR2)({+y8HYbOuQ*Zpqj!jU%f1R@G@#b|SQkFbF$PzoB_(r^2jdkllHD0}udp3U|Bj^`Kwz^kRr^zL9h*yww zaFBuvHIZ1>iF;dIL(fzFoUsdG{CJ$I%+k&?K-eCTiLzkyvv(&WHn{rlto%htWR>(WfQtg4aYTvqBx2ClaIo$yZU!!BZnd%W6JULXvS`?|sLjjdpbo@Q2wq^ufuD+9*vY7bz0Hl1 zn?*D>+-7u&dHO9Y;v(~=2jcx?5G%5R-jx}8AR^DX_H6Xpzlu|xfkmpHiYY#3^Loat zRQ^X(TdU8|{^8~WKP2&ENcxfH?;uww}*1;REC(1sP(+7lW`wX2iJ4G)}GKc<0ipI%L!?>x_^b71Gjqj9eJNJ$} z9Yab+vxq&NONS)kNvonigHglBeJX=~OPwF^{PR`!=MuJ0ZhQdsLqIk8-x%E_#j!H; zvWw~-{`vJy1%hylW^S=hhVh4#zU253iGy9i2 z6Yc!`+0oNtfi6GumHo+^fX@qr42qg3)M$qqELBsKmF~hN6&^jRu9G&rjhbPNZIX?| z>tSW(^#eM(5=z>))u^zC1Ic8_W=FYn(C!Gg8#L(LIFjO4dp?BIUdH0$*xYgzChYe@ zs6cXC24D>Q`jv3vi1?sp7De(~EHvKAOu=gl0kM_({7_ofX35yab2HD%tU{-*blz5u zc9TmvW6Ijsvs{m#KFl>a=ZdTA(yu^s*iRm9doGzlp{&cZa+4}3AxR5w4HA8G zK9o&M{rURu`TB3)fJ^rK8=6h+uGZ@d!IKv@9M135=R;lCcc}l-X)5~?V-=7_HW<7o za0WdeUf5jIp*6TcHSCWh9KDyT25yUxl~6{2Wd25MJYUkTyjq6Xek$;*G>kdm`@67! z0qCM6P|7B4{nujo_4%~xviSY6_~Cfq&EW%8J#ur?{!0p_-b;Ykmlab&*zZ3_nX#*- z^7^{Ex}2OGF`9Jo-gOz4>~OohtFN@MT}xzm>mK87L?0t?KY+e+g2bqRG=~m@p8!<) zHq?;KX>BwXllG#{^cC^_0`;AZt&qSdK1t?~qgrOohFf_AKt-__eG55V>zW#a)FeP0 zS08k01M~l)jkYq2*l>vw@U4;YE)a11X$Nxcb|81x1)JC54Qlk-eDS{xuC}%6JAcNP zb2ogefklq9mzqvdJ58;pRd4zMb;8m_(f5V(uHo}@-bQQf%#H+uJHD&)<9DP=yu_ms z$Zx8QAU~-{XBFS=9|%Uh-YBw3MB*)aA3E89E8+$)?|_X_vTQ#=2)pmjUm)o7`F!AA z1b}t`*gLlsV;^#OD5HTO;`8sI(cF5+aFMFbbdqk{8c{CuobMXwrcO z_c<@(FEa%nFm)PQT6REsL-71NCQzxfwub%qSf;7rn;Whq65%+Fng{^jE%b6RV%xRG zh71jG3Hki*96h0pH^%@ipD>_FY>~@tin(iRFccc1?AhzD+ZZuK2zV^HeA)ir#lMmN zx;}aC3(dm&#z36K?5s^=Yf)2;1Brk?Zqx+OhR`w#2buSE572|8a#r(6U?En3p1G%%h5p(il5!fEGdQdEEaW*!;zfh{4h;;%cnD7|a4OYOOZ4xVOo=Zi5t2 zQUA0`2@zO66@Ie(6-*nEWJdKG`^L-LV2II?*v?0w_#Op(5skDtuT_~K#*H%a=3jFopq)`)9zgjGwd`!z8!I>xNgE_9ioi`-N8xj?^yw{b9 zHzctYp7}1wD8GU$e@0ZziKcr{abbGElI~D$GAx*I^I=qUwKGwr3TUf+fEY_Al`T~p z1m4F0&ss@Yxm1hc-$#|F$afFlsLv0ZH0Yred4^ath-fT{IQ<^l|Lt-AW6{`m!~qW) z4B(jc3=Kzsf##3)+HJsi^Lgwce+(ygJDdR&{0zY(l_H^7T$8Vmc_4E;I|SfUM%H~c zQC7S@wA~9t0tp@iNPvN2mJdC9p{sGqaVw5*$Bn(Nw@2CsJs;BI!)(X^Aa46tF6Xze zmt}v+SDd>5Bn`6*MF6ldn3$M81~Fs-cOO`30Lj4h@EtK4gNxn+xbo%KF$ca}x<7(JpxOmDm3DC*G54UT^Hi zg!%lJuL%w!))%e?Zj5LhrnbCq3U^_TH5V6n|1?YJxj-f<87a;w($kM@bzCrvYJ^~Kmqa!5+cPwR$%bBX&?!hik@=M zUIXSw*m-%Q0UR3Utsimly-#p-W+wKB4mq&KB0+XvPdiqc1E0PB`tBD30H+V-wnRXl zjZ{_Sk?J#vPz)xmikX`mdeQ!exdPUQblYmieT)Ma0iYT16;S+1o!WKX47`VoDdIwu zQjP5f$mHg0JSIVp)iP8{Y#NN```LpT6Fs|#) zI6B1O{lI%5Jo&{qWil{Av-NNZ223!}qcVE_{&sF@Z;v=D^324gJo14%{V<{5u4e=x zrDRp!w^`qyXjKXZ2VSNIwmvQ{r=3tzQSj9uOA2=>{;Y)?)JCEm4(E2Th<-np&>&-J z1Q}6-MJh3VJb4rBVgU)^G?Et8xOGVS?2s%Xp77rej<>Gyx@SxNw(KX{nolk}+!JQ6 z|LHMHBrN+}t_M#%3Qaq3FnN|EKlK?j1zjD`4yYfYcBdR%D;&ZFHuWc|^*erl%CpVs z`7ar-Y9RPN<|c6IvKQN*kFDsHsQkUl;$;r1M70Csri&pz@g3!<``=jpL0J})imWgTv3K@+bOmeb4WS$)v)+$21z(XW`bm9~y-k)`I?I z=D&HB8;#|PiaNjIcfI_V=cg4lt!QUDR`Xu{qzdPnQy7c=C)v%rIZ@C#G?klg^^LIc z*%lmB{=R0N;g_)Zp5_*ir+yM-@sd>Uvvj4tUwl9zi3fI_`^~~Nh&#X zqtl77$nS{0+wc^Sh)7pm_r6l0{(D7U>Img1ePW3Cvj-Uv3#?zfUeh!}K-A7DnL@7{Q6 zrO%wuCT_ecJKu0y5IytLl;1sPB^Ec&KBIe@R|nnY&t}Y4o(`aAY{sFFxlp8VPC5t; z7CL?jaJ=oB1zttP#EZ4j5QM%U?9dDK?F(Q2rg{v-x(xV^kXdn6C!LG|Jov*hU|!gy5N#Zk+zR zzND5nCYB5`=t^K$TjRKUAdYq0BV8`OBu}QSySue%JkLoc0s|v_r0?{_vzC5-1cE+i zQa~64oP=(7C;BIw1Ee3`lu5v)Gyroo9kxssj_N(@K?2Ow@$vD8k?ZoH zJeeYWV$1aX*7Tn*$ywjM$%pq8A0N->cSH998wofz+~k?ar2YS10HBSTFW`YKjBM}{ zJa*YV8wj*ig8@7qpU+u=kcB~mjyfII7T<>eVoPgl7;u7?=+u4O`9ENPs1%E!7_Ybi zw(uWtqVrzdHPy zo;H7fdj-gJgC4WO00J*|HeiqQt$hNQv%vuf;Us))o=Lu@iuJSUYBtvwAIy35Kq#^VM>JT6~v?mWka_eE+et{)(s6 zteYweSmyE5O_CT@-$9U{#Ab9%=NoFm?~1bQs)Jph@+M0YIWk{bkNKy&xC0uU9jcr8 zBWAdzz{Q_YX)&X`%U?3CYLxSy^7ImECYN~*VtD8-X(0%#%Nrp&T5ePm=zC1&|JlBZ z-aVir^opJHCRI1r@l&K)SRTf9i;=J&TMjIdjycYcJ`3DBtIsh@-t^x#RI9vkX8>Cpdpj_g1uO0n9qx1&FBS8{(@IrXC%=~Q;%*c-_=p&JoX@WldC!7RR zr=8$b(OC7K{(F}t(0$~Iu|)t%Yw)@VdiihR$$)wp+Xc8p?bvC=1D@9BGU|Z^8CFy1 z5}_Z?Baw6{aVH4WCa%!aW`Q#ehGM zNCw{wL>+)iV8EG2@yLg~D7b6jl^L+BA5O&2pVEN%>-OV*u`EmW2(Sm^fPe%-tU+gF zcPbkl1`_y=bB;W2XMgztr_=2D?)2+HX*6Js(P2UZTI$^T2;|g&wFuf7tcc?cuB1TAQ_Mal-ApjW11Ogj2`koXpqtFoC}*Sa!{h z-;!5Co+<;CS$LlN?gE>VP2W(&7Z7Eqw*Vh7f)`NST@D(}is!X{q4ExQw#Z&IaM9=W zLND1P>**DFN`$R$l02$AJRDsIHG$W*Of;WYSFAocrB0J#Lf%+J8?qn^n70ADn0J02Lh2S)$B@emzK|p*RG2eaoK?Jigexb@XpRo zRAKOhWw!+Ux5jujT;EI@?yIp*!mQvmqU z=D3u9$4>%dA@E^hlWDd*`5G(ffjhn=K%~B71&byC0|O*szN3<5Hf=wvZ{~tFPLUu- z=6bv?Q>XL#;z0&4{*YuBfp{PU^r(vw2z}0QG$^1YbXNhEAVe&J4QS-TR2X>dM>6I` zf5lf$6(>WB67gI=$to{jv>RdL7`IV|=yCkC9O(%iW5wEzhCdRq+>*jxe#y_S4hyk# ztgNJ>v&BaONWD6?{fS;bD%Ei)F({0gsGGMnwgU@*x&xclTGEYgc z=!Tf%0Y8AqQq(AJrt~ZJVce?I7ncHuyiRda;}syVYu%_llYmHaqRgJ9M20$ug510| z^S;))jhmdiwf$7G?@u@?O*OI+`AKh!wNZH)1-j^%qFiV_ z?<#$_uJ^d-9C{O2UagH)p7@o|o^tHommJG)!pqviT2qsVGL|-pu=#lrb(v`G@Lwkaf zk;&fd?Tii(sckyH8;w8ry$B?Ilz{ZE!c4pu@BPc`RwP*X`Ref{iXZS8>2;5aRjLvt zN@2*MBFHQ1wfzB?z;jWIJUbd(A%bZlj7txGjDWF5^KikCZVB zEa7ucq8d{Go|da5bJw!(3nY#D&!HhW@S*c;$Zjb87ah6Oat~JTr{C^+-_W^Gh^Hh< zwGs~L9}8|w;9JB^#L-IDou}^BIsw`}@R$H|tIo7%`E>Lgw89%RNw)rZ1kGtmrkhAu z=~t^GR=h9&y{CY>z)z|nH;PTxJW0y+rCYgRX2vVl_@6?6@DOrGh5El!i%>%JJwUVs0ds&6y+iAAo2q%C5{(kZ#Ar-5d{5Y$b&3TO4V4K?j{)o17V zJd=hRS?)#|5n`;$+C_%c71o*NYV9aYw^!&A_@!1w9D-QgFs8F?t zi&wPV#-P+U=n$vg@%^@o*Mp*!3h+&rxs<MBTECHOJX;O<;K={Svn%8cga7 zws6_(I8QaW;0ZsEW=tAQijaDoG|`i@Co-<_cmb7a{vik=6k=6r78e3SG-fnvqYo7% z=JT4#`eUKH2nju6LHDoYv}{o5$t;W&YuTg7Q&E6}_Fe{$y=DgMTp{PM97)!4#vAsb z7#_^rEwaHh%_Jtaog(p=Bu{o|)WLoum?C>tBBIYLHkZBBVbHH3wC3nX6d!3r-SQ`# zg|C{=MGLiWGI&vdh5l*5zV~I$fa)+Dk$ld%3rK|W*7Iu@OBZSuGzQD;-u>oJ@yN5w zyLfdTIQIJ$t-C2pp*@At^8NeYKILqdXW13)_lBw_0_65TIFpqWB|p6)kCuT0hauAp zFDj$B=d=2n;;DwU?D@o)(oD^biLp<#Is96uwQ0>QMYo3WlAHWv%@wHs+*1HBzmw~& z^?E`vL6WCB&#)hkJD|~sUFT7?7;2YC_*==IKpW?#kARU(RJMT;Sj+uDN#5wJL3LtG z`xSljzLYCp_@RTB4|Ll@(f-EgwB&&fRxgfN-fb<0+Q`O_d|F(|P< z6Ir|{z?*7q3Vql@9YF(*N+8B?FHPmrqI%!4s{0-Or&7hF0#~YcJqhR37!2sSQ221t z9RHrhuNabktv>2f7>I1{`F0yfdg@IWWey;x0a=+LwuBrKb&=HcqRdu}Ld1EmIQpD= zfmkdir6j@0FKyAm)sQyWD_+(i9I*tyN(+nZA^2;+RJ@27i{HqgWe3W8QiArcAN5|f z4a@H^S2;HCccBtUHYDb9bZ(VUHqu{g|H`Ta|IJx&{(ZdCWC?g-tus4HHITX;LG~fp z3GBk={O-0y_@2PYIp-y8)2#hTsbjuPDAO8eO(FpxM>LL6b|QGu;oHwq03FjGlx z+Km|lc6sx|4TKq}VPYg}xDw;%<4NlN0h`(J9t3q14zY*Lkv{q3ii52BP z6|p#0TdI2fO?ztEgLNc&zx5L~s6Xgg(q3R(u$*cIk_VPEzzGI~@GZVSTA6?yi_b>+ zSnEV35 zhAe%K&D!0d$cZPk9t6))I*Uc>8}gdE$`E78zMz^ZRp2KDTp00s5&2JOF~^`IkLo80 zNY_@$qWy`t@)jHYtoC9Fc>1v&qmr5VrQp{Wcho&T~HTXrp%v)5mo=$jzA7dmbfb6cD=yyyG>sC_iz%%4K`N zllOg+@M=sKNpo7e2sHgIy9_tO>hP{7Ul zY=vx@A$~X|9rtK#wA*UGYFyzj-PL$0{ITwMtu0t)m*FUhXFig)&J$dEQ)D4a2gkD* zExIhvE_Y*wIDYC#X8D~$ia_=o=czBxh2udv$ils!idf_NfcIT(E|ev%u2biB#12|= z;g0(HL^sO7$BPoCBXy4>&0HgUIbK?89}s=D?;yxmT)MS#7b)S7DM6vNM+ zH2JC-h+)8cgXEsdQr(mBJ*C#d2fC%!G5xAya~@9}nsG^mpstprsj<<*#zrQ|@aoI5 zS+c-PP0>*#!c)=S(hia8X1cNlZ$ENRNzG*B&DRv;!!B`YX5CCyaa;neVu=RDlVRUt zk&>1iCQckHX|7qDwpG19I(3m2E%3%G)>{nvn?ZhT<9js&m7DW$Fh`QN78U~~x}v#| zsX@%VKi>dO^P&p$IO90Il?VH`9Q+Sq3_u=Br;d2$i^s3rlwT?Gdh4Ni=)PKXOSBOAtN0B%I1CQ3w}7twd^o_P=!G8m7DoTc}_A z*BUK{kZAV7)$x3_s&&1R5fuOJy6b~9p&Pi!Y}u++;t6gjq8Sdqr5Dt^YwgbLU$+q3 zSwYCzO}H^-Pqmogp6Zng)TYDYp8_)WcAiT;n6+-2pI}jR+?TYXbx>fckp#K%s^B`8 z$k3M6jrHmTp|n4x9ErP^OG66(2)9!3s#~^ik(V`wQ6s4psST`CfxsH4&eeELvm`s@ zODCu5RwD%3kyKbqy5LJMDIz`$W~D|dBu@vER~0oZ4jrFLE4hCf*V#=j$d04BoTXOV zKkNV4dh>Xyx3_&bIQ%rmv$H*KHJzJ_jdmPcL7 zHLmD1B;@AqEx4axU!0dGLRxh}DOBI5g|Jr_u}RoV{J_!oAITWSOt^h835UozuEiu9!MJN|mkr^k^ns^2Rf| zlf4^tHFSFwU+O=2akRrK*R=biJ-6%LhsA5I(!Dj+YSZI)@O`%=S)%?vCWdic?d;zu zO9yJrVN};(BDLc3JL85M zV*1xY57rdKS3{7EyZImdT)1a&mMUFUi1!|wSl zo|_}(dK!j<{dYRt6+R>Hd3aEeN4Hv_U3tx_rl6FC#Lmb4b0LO?n3Xim?CU(U&BZ@N zR3~b)yT-}xE1zrw%`a;=$rj!{G#ERfN{M=u(PGaQmSGFwwH=xp#^VTp^=<20wuQo)ALf}&GpSjPXEe&rbF zJ7*WMQYSL*dr~~Tjj~gswjGI3eRos;^y!-eg(T%W5fuIC%9g6Y z-}*d@6tQ!6_zwy#2A02&EPupfZr5bL4| zK&$v!w{JP$bk)6-!r}xgTyB4_k;Ow*r#g~F1am)=lD+Ex>F}SFXr;3Wv0HC;7k!b z-!BXA+~#O{`@2fR?uHe?C56elEp3f<{VPtSZK%{) zyE^!T;4;I0&d~4YbyqgJ%Bd&VKGf{x?&ssw@G*JiWR%Ls>dns+AF$$^Y}&x8!b3-T zG`;T{>GrOu&iR(Srox_O`4z)~yQkG3Ngj3$;ftN2J-f4+hu^h9@|tx{S|mBQPdJ+BL#Bs#9Jq_>9rq8_WT2~}U>9bRc zSco@r?G6h~9;D7t)V=pc*2GaIimDDJW^?uL{w62rvSDINz#T0Xi#;=glIp=q-VHx| z3KcG~P}@S4e5h504n0+MlxKS`?8&q8NUD#i$+TKewSLpk&`?LY=4}5cG5aNTW^;f? z!)+R+FphWSro$20A?10ADj}9X69oczlk2l7V`m)dTLLL&52D3nZDpu!Niti#Sg7B7 zD2bcc4SL!WN2s(P7b9{SK9=fdNKn)x4v5us+)LJ=eY{SYd05`1Ok<}y$^>|R66sV9 z5empm?#rSKBtLlYAdcGbeg##z`z-mAnULhJ{G%snzgw!R@Wl9Qu9OEW^YPF@CY;_| z)JsxEDjI&A;&gwmD;ZPnLsNWMqkKGuGO9vj4^T2Y7eUFsN3lqH@DFWDnOb#JfwL&W zviM_~y&D7rAG?HjDoiwX2Pijl;F2>UT{`3CQeQMqT@xT9yaSx~D-63B7 zfBju)$9|9Hp?`gtkBN-DqubAa{`xHZf6b-2KgOgi3A$sV3npe3&Qo{^c!q#jb+dowv(^t@_+$amgL)V65LZ6*;O6NByh zC^di9>VcZ&xrhumx|^8;_^lv~h+<`I;UJdx-4WWeIBNg+OdTa8B;?QkEHLDa5UP33 zBG0HEqV$0}`)HegGg)PiSi=u1 z&Y~cp7|MLHZec|72kPi<^^5qG1*M4Wr@F)GY)!+hS^eVt%y=9%?az{0 zgEWF=Y`R7r;)y7?Ob$YsLQIO5nwlC%btvelql~+GV*lLkCzmw*(BPaV<|f{emXe&3 zdNCp|MIhiI?PDQDMT%X_ml*+|EaEIo^Fb=WE6R) zaw-hN)02Gg#mN)XbX4U%VYI1L87I!;tVDEUg6&P>gIa@U60_5(-zO>OA5gj}0RdJN zPCVU+JNe4)gEdn};iad^q4Lr&i=o~2&lsf=v6j=Zgmly8rC=o=OQeh z9-ssyQx$06$U&>>8Lguf50m{r^`zGotKwQ{6G6$<$4^ow*Q+IPy*0JRzy8m0{iPQWT?9qUru|SsBGe{|BM|B%^ zLLk5+^K^*}MIG+D+!mT0Vr==7C;Gm?-Q^3$P$tg)aW~`RFfR;?@kwq4!Ba>1kL#0EUV$6u6%k8^W#brf7w+a8?rXXjPS_RyxZG6%@#|Ah0SmVan$ zY^UKRQe9`k_)>;=KGWg~9g_W-5lPb{T6 zio#a9wuFkGcerY@xu zt-hK$fWiaiy4R2^FK$L7M9Ne#vpVf=jV1a~MaRJX;;){y+x-0Wk_)mwI!qQ@t4`At zWwU4l2O}RxN5?|gTHqSENdijVOVKO4CP8U{3Uu`BUS`Nsam9oqCsX7%m%wtcD${8_ zg_-`=68{W-dpCZ+1OT8MAr@DXsbguDXZjWcu2LJui(fgw}Wv6YzvrVbA4GY5`> zp@_O)Tvw_PJfmW<)YtPER;F~9sb@m}vo=JD&EeG;{EAnm!yrn|H@nJy{uDKAxxpfz zT#5QrTDb!M0Scftbs-}8?eCq83YVg{^<2QEZ93_??`vzTXX-!3IzvW+<8gF4GI^Cc z%{=C=Exv=Z7nwjQ$L50+#%0h0G+E_lS^uyTSbmlN5HwFv={D+GZ5aos)F7c5*;E`? z+qhfS_eA;%qZTu_C(oZVROevruz_I9Hqqob^RJ79d&mUxGniVW%_N{P_-^&G?xx!R z)dKXGy0#2B-8;G!k2ebe42RFUe`qVm-h@%GS% zvmrhE?<|8ciiAr1IK|=PaBTTyAcZ(7kRZG@->-ZU3(B&*jqWDemY&j?UlyFgvXm~Cs{cOkc&quMN7s?;Q@3$*owHC#P@cy4wl}*D zKW)7oP@$A?1xy<>ZaN|xTT9?M??*?6%_lZ{Vu%}{%^B^+lHX6V4aM?bpQYosq0Ad) zwe0(-5Sv2lH-sDMvX6KuTMH>uQqopxJ5{>o{d*!m0qD{nDS1SDp86rj#$ZNG@ER(; z3Z9^QYx|1(i|!f*%e-J&iab5mQ?SwX{iG)dOyEwnV=y~kmo86`smk*LvQu?&3MhWz zSsWH{1$eMSB7q;|eeb{28P}pcE6!tiMZdW5M-B70QcW+=v18H)cHS@%9)D>5(JB|V zYwq4Ym}i|298sDX14izI9+`erEM6m(=GADm7m~hr;!Z|^O;JAud%hHkLBs-OJ0RK_ zOnQRI%G5Q#-R9fa^!+(S}+0u73}w8v1ie}n^x!F4W;F1BcS398kjUWN4HVb{WJFH^6|W)k5K@^v^FJv z=4HP};>=QWS=<5vk+o@w3-^&s@0`}h&$1iyGY1IEcW|rG)`AIx$hu2f^Jnx=qoR=? z*BLjvn^n0>ZM9*`MitTO^~J;0C0r2B5AVOj0<>8w>dssyt>TuciqaIFLn{&*WI%$J0%!PF^Q%LXJ8-6zoyzNp;;i7|wE#@37*0z)X})d-jMmwkRfe z>;|L^3z`+ol~>x1WC@xD9}MlPt^IM*s-VWvMnjSWq_-kv*~z- zl;@GVAGY;MSJ+>Nk;N$U@HP5)Ej(`Xa*|QIvnE1KgC*Knt!T1pqGLB-<4Mi%Zlt|xLWLdc~t#_K;{>` zO0-QI1ZSnYPd}si(EJ&W@8xwkx%1AKr;C~S3ma5UQuYT<8KT~P?}ZmH zBxQE*zJeR3>0bV`<&dL=K*1VS$1Jwl;+-z+OGbF492Nch6;Dc>JGoJDJmh3ZQ~CxZ zrRCFOz1enMGLS^+XAq5`s&W02%W(1F1(*6}{=(k8fFhVEl7H79SvmAX`|5qqtksX4 ztaJ6@Z%2>%5~AIV#v}MwGPvvgHom8t!tZvJvhL3jT?1H4N z?-IQ6Kgh*e*Lr#^{&WNFsg))|8!!tH*tCC5x3x*yF?IciEiLIxtO*AY*4Jfa*B`Uv zwoZ4+(S+{`ucg}avY$P>PUMT2@jvx;r`Hu8DQ7z0tLLDxPGr2R^{Xb&reMWnncoJY z&Eoa^t>t66HMy|#Z-MOBpOrc#kn!)&5JMN zQUQai$lAKUu?COA-3!yC>q|0<3IE7UeO|^b<;;l23-Y?jDJi7kS^Z{hl+;Z$3w?>Z z$s4>c<)BkPD~eR`HAoKJ5l1-}jCt74N(AFOWy(;Qil;<>(#wT+}r$ z7VR;rB0c-_Y4%}MCy_N@zg32OEOOa7G2FE?<_Ye2CY>x07RGnlc9WI{yuv5XNh2aP zv|IRY2VFPmwIaPZ0ZPkyKSY({embH8#@=%ua9ED$j$pSRn^BCzg$t~SBAp1-FQEIS z!=ZWyBz4G>Q8B=pYo*5+VT-sLcDIz&ny$%uYl)uYBK~jVrM25^^Rtnz;f0WazL@?V zN&Lad;?a$$0dNQCXQ{4fCMeR0UR{sP*mGQ$^kVK@9Nn3Hww9N4X_2$Ud+GBMoT6pu zmmmsuvK447JX0He5KQ-_{?wEUJyjd$Y8U4MrBAfu&CzX0DEdEb7sK9*vs0ttCAW== zoI4XU&;DK2$}qjhkOO!Uv}#CCe+$7}B+^DSgnI^EYb9#OE=-SFAPJOSnChl;3%tGf zh1r{-YjULReAW^=uZgEIU#d?ph(m>Mliw*c>~umTlr(LaprI|g7yV3?6|Nd;YO$w8 z|FpQ_>LpyvjpVJa&k;O*k3G32g&kKM@?{zo`9Pf-cOu=y)pZk=Q{&(`D}IoOMoEXs ze;Sxj4rBBJ3^RN(qq@goRIBs%nd|6e!#WzixI`SvTcRC3jr#}@6-JG1P+!`;9B0E> zB1Z^!wES$#Rh8lOu(YH{p&DLYdBm`Ylvg-}T3Ib4w3r1}=qWU$N6LIE)c-!lyJBS2 z=#ZT5zx0bg&#vnZF6ib)Uly@dVjER-P3?9i0SY&nOkhTI@n;%SkEiU~yZ1>nVvA zB#?K!XY;*F(LlpgVgC#FH=_Lhik^qk#aZt~W>r@k)VX&Lwd9z z;9SYfTZSG_Clnq(JBv_(EkQ@l8*(^N+)7V&TqON6BM)jl=uu7oxuQxupR&o zM7c6@<0ngIHh#h#H{AO#(0MQPdZSg$`Paztzkrhai_7lQ!6!48z5>$5#3yqb#WPXf z<1}Bw4Uo|PiWwDN|8rd?gsM+liPpc5mO`2{ak+bfp;$L?C%g?B>MFVx2D?n*u`f;c zg#URcv@hX+^Fs@d^{ThcN7ujz-~ERVuP0Nda9^hx+?4{2^5WN0BWni-NxvCuk~bab_p!7m!CI9h@{N@|WEqJA;@C z`Ez!0F)=q1@8FFtVbrNT&UW=p zsfIsspCs%#43SPN_DTJ@SRg-|!e_j^c3bSU7)PAwN$4$yIBh5g;yUM#p)dJ`&4 zsBDPP8?FWt9Z@#o4-w~~@ZB_Q_n;?~wQ?+nTAWbk!g7Ch6l?&>gz^T* z9##*(AkW}hdq80M==2MZ`!{C3=>_LQnp&#a9659Ss$*ehHILKpZ;dF_T!b4APG4ui zM*IPEHeyi8Y~7N(eUJD`cU{jM7?pw&^#k(dGaU44G{~%!vQNPxw4Le9T}?QuUI@zy zT=%%Ug6?@{(U;UL2q`a%hV-vEMDMnv`YJU7`C#^N>Q4Xyetv!*hj}XGBqBRCPp56+ z$zqd#=X_Rt)Ap6Xh6*{C!%oEQTAY%Mn+Kc#JK1s=>V%1yZEVk5a#%{UX@Wrj*#__h ziAY6=&E{MB9Al{wbL!gL8uNnh+^g=nZwCjuN%B%@9I~NuCPOL_UcC4Kw&0h z<%GhL^c8LA*_A)Ge);@UZ^X=b43|H@e&@4{0 z%d=7K)QVeq;rAM!@$)UQ9t>_%442o+mB>v4MT0GFKhNL4rFP7`-KJehA~K-Q0Z+`b zd^ELG1#7=w)jR9)Vq#QX!iH@idVl3t0ICqhIWtc^rp;)z~K^WA}7MBlf z4}k*A?!UqD`=Vq7i+r8f&ecA2Bb^#5!p{MC002pAva((>G%F)r8**h6|7s4zm4X3= zA1n3(0qCi>h9Qyj?5w`qEXbbXDf!;!m*A9$g?Bk)q}B_A_k;27})NU+~d3 zPwr7sm~`zjmK9RMKek*y1kvA$hDVrEroeCokf2L0M2s#esaM#XR&vgt7~Hd$A*{^F z2<`)S<5nN}5s6?^(%;^qtT3=9IMMMJ`um8FVxrc+<@ zw5>~NZl9dLpZRD$6oBs_bE)PKzv__hm?t0d++BKsnf4tOfeKC3`F!UN^a4B z$t4np*>A5!gNBNV%U^iBU!8S3TfgaptE~M)yI0=<;EfLG%Gle5EbQ{Q@|g!NDZ3W1 zpj^VY_)dH7{aAv#snhlAs=oCelIBnOex$E)%U!Fx{;{9cUK)pMh^}}d5UV7&bM=Ks zVd|qe*+7^sTh-=|gH;AR!Y8J=)c2WOYd0#)UKsm?dq=2EKVBTAyw3 z>qR5*;mh{y*^_<9NPJh=y$pidpDDFfkbLui@p_t5M#}&!ls8=0<;1wuE!A-+Blc+z zWBNHH7rPD|*gl}16aQ*EPi`(68hb0Z#2;Ebli|i(>@|4on%lSVt55rb&ICuHZNVAs z51&tDoCvY$Cpt-^sQ!hu7nm9Fo|>^m2{vho_5o2Hw(+ z-5OF^c9jqA0X-Y^DL+1fPz2U8Bo_ay$!a4$3be$hlXsl!>NhVU_C9y$xz#~UqH>~1 z$9{2svO1PbkU+^|<}Hhy1K&H<5MF#8r6Qfy=bLwyro9f~XE6VK#rbGGlW1@$X+5LU zI^(z0Y9$l*E97M&D~?V6ld$EnV{MlCE5s&Z{$tZ?E6#6!p0M6W0L9{m=!5>O_JlTA%RAxR%|M+)ho>6@MgIxx@3H>Er0v^_`@$ZgygqETY<%Y+ z6VPyA+<7+DJPBx!Ix9Q7={gHiV#E<7pU=me4eWn?etrMgIv6~HYS&D2J~U0gem<=w z9<4XUJ`#t;ca;BCw3SYO4_$%}KC>V>_q+capk%d+LHI3hB_JiZY+Cd~+cWf`vjVfdOZvNG1sULHCJ63|Ic6xUPz=L0#>O zVg!{Tz8b+EuR~Jvyo<=p>C9jDeX=AIHORD*>1kJD#-H{uLlF4p ze;m0q)0aYwbD8hew8m(3fWrh2z{2Gjh&wThbnM!-IzH`nVrP*{wHM=6e&_3(e4USK zy%J_r*z{P7um9KF7|H+sXW)f+-57v^FQ^p>PC&Yy3dKnKF-nuyPDZ5C#9WP(#=QuR z?GkWKSM>Y&R!7$#Y!nH-HOI5UvTyq{!)G7bHLl##yD5n)@CMZQE0ZSQB@fMkK$`FhvfIDgv9#$Iqw$ zt`9B}h>ICI?MR9?Q0NfO8%OWLQxU{07+0I#Bx2pJlu&Nett@Z2QsywW$F{$m=ch9((oogJDvmveb z_cw)*@uDZ@4r_;JGs9V%pT;bX4fpr2FQA^SjkfUczz|}pmDN`OT7v6W`P{teirR72 z&C*k0if7MmLtDR4c=ZT25EZy8Kg*fnPcIo68Ce*XxEJ6?9M`O_Uzd+GXDfsYFgTQ|F;}`eA~jSmt6S%ev_r8rKWDE=j?<% za0XDMLfSnA(e|v*96XQKj?^4q8}R`k?L&0ibmo zrO-OR!#4IYHDS5tGHMOM1Fxo&uX}(cRBCv=F07SJMyx#catq|=%Zj6 zzhjoj)Vx=DMTMTB;WxMvM`vekVb)#hA!lPe!@%^WXBDGorL5cDd8nf@Y=;3{25^di zprCaGz{?zfozj|`-r`-B5YP8O%?C_h)j6AReaR?GN5^{;6V9BRoOI{x>?#JG$G(MV z1Xr3LUa4=u9sTfOqIN3!lGTqN-|(l@EHLaSbn=gj6NnXi!n^;%iQ2?=3W zg*X^2|gwMj96TicoZ511b=NI>Jzl9WP7j;KQ5O;fEE^pZ^CM zDcF!SFEMZB;IfX6hb*}#Pn;lQFVOxfz|FLQ>E_7nykLk5mU+Q1Iaw&$b3$)(5CZ{Y z%*@QNBn{2YN+(aUr=^XC#LQjC3KkX>?Pk0NzqWh-eq}SWEpeK@hc~~5H%38f2J59! zTv3+lojUcopf@@pJ>4HCEfUwMXL~PtA;{KK)~W=rn9i-8%-v9W=ex z)z`n?pdl?M&C6cH1(2x%uEc$EC@D2n<=%4k)hk#Prwi1@xc~LXOIMTJlIn3pixt+p z-*bk7&jN;YEo7Spv=^JJ1_4WaIIeNX71tf@WTGv z?StRZZw#qRK$Mh=_`ZD=Q&aoFky=ZriiLNhi8wAH;To~hzzUci@%^9->lzx~ynoM# zVG7)mju6Tp04~|*$f*~mlBAuez5Uq3{Q}D$rJu~w&Ny)Z+7Wylme|;P-U*lCVob;L zPFvg|`OncQPA;xZoSgC5*+ED&*844oGKq2RS`1?#JC%`hKVp=;N!#mkWZ!oqYDCm%neZ(uO}tCSfo?`L~Hb9nXJ@qw1q zCad4$GdpvJPFEM}k54KuFMsYi zD{*>ZG+gn4gG6M{_nJsDSIitUQLsmX>wz4=KPo3_n*hvZ^;bmRhs}MIRz;f7FG*v_ zLJT$pR_mvfV9G~ABRG?s7cbN{2ci3zSST>_Wy_Y4BZz(}1?GdeS{O-L1YVAx|2?u8s^WjIM3OgQK(hc2I^h?Lt&9hw|$zX_SY zvvU|+O|<*afezb!u<7O36*Ecn7o%oFBAlr+K76%@TEQThT zSzF)6&5iPLEKqln`$-#*YY?CtB?1{w^W_4je{8~47i|6{oFL_sgI_Dfeao}Bfo=q6KckQ|X|5>~kp7w*iL+s)C#Sy3pI zUnjlCPd+ykGuLBlDRds>?Ck7(DCu---=|C0fQCjyMk1OaZG^Lei`aPeI6q5lZtliI z-wa-Fdp+~|%w07h@-DTqi_-Py?%{ZR@)%Pm_DV2m+pgjoaM5srqTbWt-YPJiFbfQQ zs=;AFj~XHdR5v~*yWrsva|<)akUJcwTzXRabMQscA%6ax_oCJDB_%PK9wmO@KxLjy zI|mn6Hv$SditYJ!u*(DXU$38I7=h>;ZXY4GqQ@cVXc9&MZ4Esdq$bpwW3h$~4@R(4 zkHy)pUd*yeeEBl!l&DY@ed(87H<@_8HfI<-%g={e(h2^-6@c2RI01m*+f6dMVc86QQm!}jIJlN?q;{PV&q$t~TpN98Q0|Txmt56-0tz{=4g~#MQ zdsf%kS;JoZYelT_*GpsH)xGAr`JTct5~g9K18JVH`%A=5Tv+`^-GYOjeW&p^oE!q` zV`5h*Rv+UJ%HZ)4^19|~x|YWl6-5I0htHXQ&Fpn(Klk@9H~Gp3#z&<}#-tD?m;Gus zup^$Aq?slhB#K^={(wm)t%%(@qI+<7RaMu#KEt9;1KaR>auVWVMOUh~cgcm})}%aV zrU(ndxE#+oF^%iKeFRmkTXSxJpn0Gpq6lX~ZpE(Gg7=>)m7PwvZme)o_En@4aCA(3pz?0O=(U>luWW6CD$IrR-A7>hNX1F^ zKv)0smDmzoAYp#r^`&vpdG^2xs;`z3w~M6#leAMEDZkrt8>wA$o!^VznETgV~aLYvR?Dhc~Two zY%WO?W4N$i?eu9rO?G)3t!5<}#d-KsfC&fjc^I+efLs?E@G{;4w{a0fA>wl$rHMqW zCpi~{qupcEWNb}$cQ@pQtcoab>)$QuFQ6uA`}z3LOY;W4b5>2E5l>rRFNcsd?GasG zu5|S^KO*HBM4QWp_zCe%vg1vgHhn=LVTxm#JSpH0`# zxaGr`_fa=hrz|>m&j?-d@1&h03$w%iqnfjN>gwu#dq<}|;+H5>I4zuiQ%v04^zXIo5ETUkP8Os)P*y1PXnkAT z(ak|{(Vw#jwn3*CJqjkrKfgrlnpw=gQ3DaOXg96nU7CNS*fdA;Mli5->$2? zdj#v?3W6JN4DM`I_VyrU7Qe#`%a$euYl8E%$tPXCZ2N&*;Sm9kI>l6?$F>Ky|;jry^AG_%AX9 z3Iqs^Qh@MDvV%3Jr!l`GZjy8Y)PY%J7D}agF!IA}*|BNq9)|~Twn$Na3=gmD57H|n_?B<*8{KT7%Cdo@i32_E!i-o_PdE0FdkMjItFB2dO;ufsC zilcCVa7HUFpMo@gh=i-Y=9#AOE}#@Rd8b6h@h=)0%-HeRgoI^*6{SdDkmv#8MA1$B zFODEFM>aO3<8;4&|0cyCpjafM8+oMt-)_!6rM5pCvE0ES7=<$48yEy)>K<9y+F!q( z2&?2OO6Y|Fp1^6DnVm(6YMQN#vZl1O6s6P%gc`ho6yr5 zghV{@_XIoMH!zTppMTPEAnM^mQX=HH*IHU;lMKaZ?d{dC zUR@T>$c+>xNtJxuAz{||j11hAe5p6e1qmYxT3{ab1%{$Kc6=GRbof(b=kEP%{z1o5 zHu3SLXs5;suP$;PT>n8cutEWa1Rw!B&jEvYvtKAkkxG^B0$xFmZc7UY8AlhFJ$v_V zjnF_siLX|biRnc~_fXn3`1NbKFFwyyv$v|Ow>|lH=CbnUX(vG%Wk-=(j*f_pFxS%? zt72-mjXnf>eD2&i3}f(Tx*2*D97tfi@baZsY8g-GS07TR9oD+HHYviZw2yk zXPq>sJxH!Z$q=M`__1n%p-@aMt*(y0YIk*yxJ(T5p?ga+Gcr(&*E>a-i>svSdAH9nR%_VTCGk_!cffYVZS)|(+!+`Qra zptIe(uW2XJQ39Il39+t*O6BnM!2Efevvl7b4roajrs`bh(g+r8=zDhRxH|2!hQkzM zMT=9tQ!cQH$MrL3!;dEUDka>$ef!C?XJuOgrE|XA$9UuRL7}K)8~op%($`0EuVr|e zM!`TkOpDUhMXcv)7Q_GbJ6!hg*4udD;an8#Qywxu)ecwZltn*LEE{*X_VDmf=zHwB z7JH1`v*5aOpB0|Ez#5BkyVc9f*^-;TdBSU@9?r6MD#OX-`N!6~8=_r=LSFYcpxyUv z0iXBWZsdSSgJ1|1`-(@_+7ETjcXq8~x;g!oz2teE`KcBs9HwOI>Y$cgi~>qovIsA` zqoEYc95}X8=ie6L{%AtA7^P2Q9ozCZU!J^+$l23KFfKS8p!!e-b&oKtTiGvv3=i3x zo+e`aq2+A0oYA42G1|{$dQJ9RI9;)De<0XtX`4&l^Dg5zlo)usnnuC!8jAcAMY;TT z^;8|SIti+*-&{F5DjpCJz$N|+YfYoT;YctXw9Pm0J(I^_BIWnf3I3O1Z$z>mQzp{o zc$%e54EqBIe7u^Fg1dVWi@CMEk``-KPtJ3R#v2?`wKZ&&9x{A|naeyx+^cQ*&t#=k z_pHB)R!y$xs2vM*rqKg$_s*Wrd-dG-V@|e_Eh?rnyM&K!7#wJqj~mRqt(1U}ha>yW z$UPXnOJNe5UkGOxOvcvMyc#^K%7O>49>7#*vPa8 z*N6NYir9aN$c?Vo^Uj=GQwJwhy6d@PU+@pg`Lh*3LROjBftm=f-YVH|6(KZ{wPT@e zEpM#Y!#4E;&1OF-B@!PL@9&F#*J#y*#tCdc2c&%IFwX@l$Cv1XXCSSC{HF7PNnoa83b$hM+jX{>D zs@<2@#$Op^`G?J)>x04KqVo|QgIG;g#rM^N&TB@>oo!p+M0o!E_>lt;7gxu*JeE@# zCo0XwVK{3uACI>zlknA_m_*Kf-+za6+c5=onuPSqqB7@~d#YsYUM5sVhqnxDY;i0w z#OUUDVR=eUBqKny-9xjA;Rs}?RnpRIpEu9Ar>2QiIos^6WSg*tc%J3V;Fyh8<3dr? zp0h>&*a%#BdBHN=vTc?+F9Wz2HPCl6zNcO?&Rc@UO=DhqP3X7FKRTF)>@!JQu7woe zH`*JWEeZ|A1kSY8Fb`FHD#_zd7p^+H@Zz!er-_b1Cw+wDuLh!Q?Z4*7net{QeFlF$ z>n-ro$aGPM{{XUa$$20q5K!HJ|CDBl2V4AO$S+>m?5~-(p<1lka9I24>4}z--&yRU zKeMvfqdteM*Wxm`ex)!S5b)~PRX@X4IOOTY zUq5FvT}D23J?*9PnfY@}7~06aVM|w|&D~QFexTOS*a!eevBhc5Ymr`{lx^YX`LJq> zFETkTZ;V}Zb#GiQkeT{qe9`@(vr5tq=hjSdciYJ|TPN3?oRr;Wa7aIJFio3P<#9?{ z!SLV;|65w6-6yi?66n*GuD`3VzAn&?HA-}i+EW?J@M<=W*W&6{$$p!wh11ls4NC{L z?p`)cJ^E_a&sWDVf4Dy>R_+kJn&V5KG%AMw8}M`d-qJ;D{pLOyF8D~tk&>^JGfS0f%5nrLx|>64)~#KU+9b-V2x-22yrIaKaj#M7 z!I+y4Nj~ivCLBV-Ij5G^|z3gVcz?c{+;mX zHu;{Hruu>li%zfRV~*Vq*(KYZ9>W_tzUj!k%P&2b#jIar<>O<~4_^#@8kp?%?$MZ) zY$zP)kljDFhu(xQe}OYH+v~B!`dI6!q4IRk=C+QKPgTo0+F$?o&yquEG0(XXKmLJY za0b2rC26dfWb4)xc)~X;EZ3L~@R&JgvU>zah1T{eR;DIX0XOP9zIY}Ix3{HZ&p<^; zbq~;>cR8XD<#8C^2|r!&a`r}^LxGy$`gLo!uJP~CSNzLye4OF=vp{D=9l6vbSSsrg(eU=#&RRlblYbFxo9Mc(Ckvlyz)mXE26RpEzRCjEN z`P%bi?t0Ap2dQn}YoF?XN8B?n@;pHuTb>5_Y#ykD5LfdOvYcTjgyPQS%^~}eQA)-_S z1WAOJAYBNap`E(?6?#9Xp}6L+nvOLVia45t+K;R12WH}i9<@;TRXq46CrZybyl%WF zP$KWSrPOchB~@%CKZo1R@>Mklwcp6j(`3;mj`|${HIe?&aUC6M_P;stym_DWlPF7P zrUy}4E1d-1M|YjwOTiuY&k5zJ9OzttI}nIAR*X(eOw3_+!iLxN z+q!I@h~(X1a4Yz{Mc@3oSir5xu0EK&9Owide8Xk()gZ`FW+`XRB1o~LQ-r{Vd zWLFnvU0>jlp1$2&Wn+M(`CCDjU+WlWs3;$R7~@A^Z{F+NTjBn`u-~!JBUK-Y6R@J# zY{f7OT;V+jc8kHQBnAzJ!2OBY z6&T(j8~mg27~YHYLjb1$@V792dT}Gl;Lo3989vB@Ecn4zDAWGI*>!7(3gM)@y=74k z5d!bd9VS>X5!3>v5DKZp68$52jO=fCwIUYSRzd2tt%b!6^po5G>G^eXmT(2r_g=O2Ta}Ku(Hmb5MP6aOB2X{Mymn9?dWhM)1*D)+7O%GtmF_f$;7Dxy{6l3?n zy^N)?;9<^2yV7U1s3Pf3N(I9WLS9@#0@BMKjBnn?8)&A-MkMIuz!AU?)G(mc(GOC? zb)XBd&rwlP=OTR4(vZq8y>j`-t5r|_1H0ae2kl=2MDznL&MpPN422IfYilr zJv?yH2c6It0r|NHuo%Yc>_w$74M+g#h;oi%f#LFMG|%Ap5eab!Kbx%Oi)b&jvE6p{0oqCFPU-w6}S5wTb1^Ij=nUD!)iab zP-IQ8vLMmW>*?uz0n6nK>Mn5J zP+rgh!rttk1=A&?&P#Uz+XHFDsz|QbnViKTO-xEs{MOJj=4v0^HJoxvGzV@oWpTH6tq~O%J3@T z%Rk|AjDDHPp=6y->D!-(=l0&5BkJ#=o!`F0;ggOouq_M@Av86h6_R!^GU;z6!GlQWhkv8G;>Q{t-lg%R=iy6l21- z2nrh{=m%WZ_S1_>a{B@`0vL#GXQ3hv85Fi4W{)NXpYuIa!kuB~{EMh(paJ-WYZ2}M z9{z<6$uaWpFdy*;-{3WoFoF$GNudD^FEGR$5%Oc84ho=P*s)^=Fk-*)gFy7*T3(Oa<7JBH@C`=BR4Bamo;Re+rW?O&X*TO=2*0l^}|D*VKfCr_Td0>%hX z8u|oDNlD*|Zf+Tm`?XycRoO-rk0vc$Qo^oFLt!0Z5i26b>N<8TjzH;)$1&JRAu}>9 zjnFQJ1#jTf03?1se|nY^DiAKoxW9~Iu0M7uhtHBmBSY{7NGygr3Q9G+XO07Fy^=YA z%48Id;q%BPm^}QD7FG$Km;l1-{p#S9(BV@HCKsqSHVQNaA}L5uQfz=YLh58#=tyn@ zi~Xed8x4_AmW%)fCI=Rx4P0RYY2;1xosnies1MfCQ~uDrc;2rL1xSj&Ks^LxDbKo< z@KrE^-Wcy_D4a&nm{yAuh=+U)DM%Sm4jg`X4dgNSQs6^aP?^)6^*xioD^C2ubSxYk zw4b*TI-fA63)L|NBioBuAV2&;y! zEM!jbh&Ux^GkOZH4U_|<3G#8TBJGN|A5BG;re|bi0agsQ6?`=5$x!Hh&{}S6MyXd@ z2858)F*HiWHZxv}pni35eWbJ2P;8t%KY;{kuPYx5q9yXq&*J!jK_w!SJRFg@Z;qbD zkN(e*Un|X`54O+?%N!8CwOJ-KztbcwO*_2_)4dh7%321w#bauLVawlxuT&0(8$E*+ z!J~}kW_e3~2H~t4eSg3X$wnjCx`FUOa+3*J9EaWz*8# z2%Idl$GJ%Hgb|>|fpL5hvR^EvxgOvxQ@seyxJ#{jswgQ>KXkEp{g4NF1HUGz00*4H{36{YR#JJ;JfC}N9ZO#izGzH-kR*}40wnrAtjuyO0uDE~eJk3lxv!}VB-eT7IZ|a5s zrJZWt+IbARUi`126o~;v;YVxG;na=oX%5&?hD;tlaT@1JgY@XhEKb*s5jg{3Vh}Cr z>zWe=BqNen#Q~bv8hub{e*Hq;rZ9_D``)-MS<|0+T|WZ{dg|WTE9Yk!vK73?$Bn%n zbY3{5#fsTuXFrwN=A7~FQVO%EpJwfsZ-Q9J@38#im>M^&Z2b(-Twp}wH~B}A80g*L97$u<&^`7tEr(9y#(|VOAF>0vA1Ji=* zqScoShuoP>Iz7+tU7aL;B{rtD>1Qo>On}y>ISY3Ov6p?jGX`rSd5@=Cd+ls`IbD5G zR|KF2)mCigIp1f+&Rr6Vn>0TfvfK-;>CH4?=9kfDjy08GiCm*5@z@ zGYhO^wsm`d?dMtb+26Hij;JYw^=SBANTy1P?fVNdzGAKyX3=}EHDF1sm{4f71x!(s z-Cq2`?Q;@z44IQ8BvV2mGocJ2p(H~pnJQz15JD1}iI9v@AyY^~QpuE%IT_!)o?MaYjRX8pHWZV0VpCAf~X&4^H)?{KM-zj&`L!`rVJc$!yXgaUp0wGQ4hPAr%+vX5 zRlq@0D&D@(EN9_#DqpZSxtFims2^MNw>fT)s`1gwr}Xv8;?g%TF;-G~(>MJt%sSz`Ze5Z{6?31# z!9Z=k5KH>BA#8LuyF$hnr;bK$Us~QxM^$XJ$~dRgRIQ>dXI9SE z5@H;2`h9KV++%vj^$h%B$+raAl@DsF(bp+Np8vqVhpS<2ziY)t)+G(q)yml`Lie~Z zu=MFcVdb!=XK$ZRUv?4@nCbQuL(``#8FDkqwp_tNO6j!ffk?yT6n)LJ8+CFL)0h>H zO@DP?#nqsYd*a@rx46#g&V~8%qpGWK@6?cTqgND@9r$qNKhOyNS;UrZAb4tI9So6* zhTLwFnTQ4ij)0O&u5~zmNkd&dtYN_V{Q1Pq z;*$)rF2zQkI=|u2_)4jJ)487Zzx<`RL`QqzrQb%tgmCj>KR^ue#cpy6qB(C4Msq__0qHD3WC1A<(WS9jl+GJP@EidyuUnDzvA7aHokSME{jseDl*97?B8 zclj27>cB7>j^=EL_mbsZ9pL{rCjb>kA1qE=jQtOq=dxLgY$|M zeYk!*Q(5}i)AKjXZd{5RN0-Kq8uS=hE@=qr@SjA3k<2F)uI7~?pS*ff z;-1Rgx)0XYnrUsrdKWS?iMkb~{&QQKmm@G`h;CO=48#LhReidA5QUSl+S9Cs`DE7= z&WZ||4*4TB11=cT8{K45ge*^NT2;+q{1tx3HAd?L=NQaN8#8(nR{5 zW^xBN?J;8A7ql_W@NU!1nl-KAJMLrz>$MJz*t{Ca>{g8&nSB`B5&iIC3dAsE#O+U<^4nv3Mk6WHDJYySqztq{GoBK1<6mCuiuCB*ZBs_(vQbdfRepswC4==Hmw9Fe^6 zZKgekzdw_*$jI)7nZf?)m;E336Yj?Qruk_X3uV;FrBg=)1go|RH!d7% z%TVU!a$3oGw5WyDofWH4=Ph%&{rUQackmT9Uc7#ypu|PYP`GG* zXG-gZ*bttmWb=0B$T=xi?P%&2djq!$-FAm!QT_;iyTVNa4}B-61Xf<5vFR*uqWx0T zL0SDI@1D^Bi7h~1AvOIW{B5J)#4Fcvl!%a~UF>>}frd3c_BJaUH3i!TpNvR~U;5e) z!^Gvw&XWT_;s-RDMde9$)h?J z?hl=&1<*6OnJBV^H%5#_1bew%ax2kdeEyv=GCJ1yQASkVV8Gg=9_B6UB_+Ek*AG{m z2Jk9XqSafcgNR2x-8LV`ONk85ac@&J)0z)4eGsOuWgN~vS-6S%g^L`8N`gZWEZh>o$9Xyy-Rvo?`eqQkEX6#hh~Po<9Q zoEE1U`a0)nVm6lIls~*uTv66hlFBQ4yff#&nyn1u0Np1i6+3&-#{=mGz|HFVbAJod zsz<4*$0$vq>Vvd1-+AODz(FAEgdl;!7T5K}?b3Q^Jp7=6d+i=^g8Qb1i2+ipdi5c= zsMP@JPyDB7HGwe$vW0PA0)b6i)1tWe0`k~t8kQdZsk&7+?eeA=BtiVla=YTBoC=`&J>9g%B^)Rlmy6YPgn+IVe+`PjT>UXT` z{rmSH0SewE0>Kh@(+kg-y}Q(Y&CYDwT&(r3j&T~F!G5H#3w!2~P*#I;%QZ8Ho1q~& z!XLYp*$b6;nerA7w$jeLkD=r|y$7n><2+W!70Mvvj|CPUW*Xem2#x23e$2C=W4o!!zoB<#YQsyx) zm27nU_s&7nmxE5>rBQke)Ym3#zFnZ^Ts1Er9U>!j?9!!ufH>wp?+jbp@`$k^W0O>} z`JYNZS0#zB*GKh$lgOj^L@A3Cpv+`n#qSFhZ}3nkCU_Z2*I)e>Ca9}+H0Pu;V}rsi zv$M%#Vtb6UOQjcNSI*Kds@K`(t}H{VQ$qx%Pd64e|aabj*uxADfi&*WaJ<6mSz73LmMB zm!QAUMzy`QYM^{JA&|>rbxM*yovvJ(Q~aK}SJEA9yI1bGN$7>jI7iNOM+W@>%>O_C znP~7nA9dza;yY+)U2q&j{tD2D2?Pje8VEJdK~fJrF#K&$2=4wzAnt$XDT+kQO3V`^ zz&yc>UcRINULh(b=7_<^@F$`4;E8t&vlgw#A>_-*ps2;PYu7+Qhe;nYwa%f5226-E z!Ue06n4N&OgXjaG$d%VXLXse}0apXQjX*;{X^5K9b7g!*4eSe8QwU-SqlDiB!Ryk5 zpDY(W73?)V6Ji>re80`k2UZ6>CK&OE) zK;Q`i61lM*<-ZS7VB~2dgsBdtUx?`}_2KmZ_$H|<&%llbPP3wERP#&-(^16A2f%`U;45o-YL;l%(r+m>W?wX_CFTTzwMn^ z8=%A;@rsRd@@=aI=V=q)>@U4D;wGGQRQayscGpW?tuJ0od|cp@S+`E6*wzm>BbywZJo8>wt z{zWeG?SlBh9Z`!9#Wkp#=!B{@lxVI@e{7`EOm4nE&@9#N@Z!+_;o5HNMIdwQO`ayM zJOFQG`VFkQnwf1_qhRKVJJ5t`{ByAmO)kw^2rkh2_}|F{xd4X=QqUUmuJwl=1Js9H zG2{NwPD4jj5tnIvN+`s^$Rfz77Ls!anJF(rhl&hc91o+TqY#w~t;iB5vyuM8?v>(# zoGkOuYIh#R+n@OA!mJx2&#I37F6w%*xmSJat_>H>D_J?ZGgGu{4}{mfrC4*~h70BQ zCswacyl?$tckNQ)Ue&!_pJpQ#IkdT|p9JV-y%;{(_F`qj0t=&MVY1z<@5AX;Yn7`@ zA0YK--RFH3731Rz&gU;&a6y32A*4t_j0dAjgJ3D7+vGYSz9H~jP>83dr1%;LzPXU| z;?36=u1LgY53hsC4DmEzq3+`N2c3%kAQ7}BFlTH!VtxiUgYOCEGq7VMB2I&cn;XQ= zHMcJgeU~LI)4KqNyTB<=j2O^If5*PV283*I4yK_uI5|){RTM`&(p(C-HuX(sZAOMN zw>C9Rko{B@AJw6_!C=Xi*XrWL_^jd z?fW+xMhTod;G-y|&K&Dna_Gu0O6j;=f^Qr1O7iYBp0jYeM00vk%&C8(mBr<|aMyFY zgc3w|x?KWMIR@`?jRe0Anf*~gI;T4&ddX;360mqH4qV}J%KJMMgR-)H8*Q@9mg_XwlVdvm@Z4~r9J@cgiT zML@$qA_!pOT80_V>AQm0`q)M#K?Y8GD)^mU?d z)UVinDRVgh-99+T5D+N6lM)nw=kw~kYMpoP*pX0J7^M~~w(8rJ(z-!ep}o_K5EMwT zYyrSNG(H{`Z3Iq*7^}feiC4_4eZAJV*<*axBLqAPLAe(Hz`C0c{u(3(tP4=mARteG zSp%0)&t=Ir)d#&-gB3*7fW>SIY$%)j-Uasg;UTwsF)=%fgWBv83_cWJ9^+t$Rhmr^ z0+pV7?M|KRHsW!`f}zMZsgS>VRlM`_^=xy=xbL5f53n7!?3m^OJ9_Avy==3TlRq^5 zxG-_Q><;yZa%R8UHrxeb;jjCygf(opFO8$0k@{l1tL#rZ^NrlEZjX{Ic8dLy-;&uD zyuQd-Ot@jrowYuhu1?_r^xC3%Z@uOX+j}!b#Xi6pM9j!=n&2M95OBT-YV9FG&c}VC z;sts1w{O|>ym~K^KfP(rYgL)v5nFXeR@3diW^_~?;p#jS^Q)g-bv`hACVK7@{~7kE z28aIIe0=uWip8rd!AQi;_gwM7or=pYGLk`N>4zwE2rC!rl|b9pPB~sa%3yiSO8k0m zEkYcZKw`>5^~1>&i`&tkNZ(rR?1IpJhoOP*b(~8~kNB3yCfajYx-yYY>WS zoLI>d+XJh`E?+;5&{I)0kj=2?A*JK*I~Agwjm;i`HWpB8Nj4-{fH*~Jjao&cW4TLi z$E4JO@=K=RF`<)2#O66chRVLlZ;r(z{SKC+6!5=SO2LMk+1gUWKMiG)Sge}Z9$;e> z+RsWoS7gwMW@PZgi6SnlfN0msa*j{%bvex$1O+u zxVdObUx^BC_vEiiGyOJx?2n6}*v~WbpJhXwnoK_x{m;>ceGbCU(gJr=C@UP% zJs#kWuL6ToEW#|%<-pGJy2oA^@;Q7J_G&S;lmABL0A}|LLaE}!1RPp z0<8DSWS|2Js8k3+XemiHf?<>Ek9P^({iif}J@%BXEHC1CZ22d|0{RT_^-$sMU}b$n zXhLBCAUxr9PmyTI_rOq)0hK;jH%PURia*wdKTC}108M`&=meg`R3oA3Czsp4>>DRhlt+>{5e>AlXG&A<^(6+RMhr=F516~a<124q#2rVSoeO@xDaMY2@F79-cx2M2(JRECZ*Bb&G8l1j4D`h139pWWWE_qVFfyR+ zQ3= zwzgccjpn%q7&D0eK}~IQK|w*@Vj3JbFkE3sZQ>`mb=}>i0k=*igM-jEH3g~-=@z8P zD$dRav8Y|Gm}85Jp+;{9luWii%bw)P@_!!1vSff^=_A&X<*2F;|DZf7?Pxb=%A>WmGB zHZ!so2MzYwmB;(pt9Y-QyWq_b0T=|NT(&u8`@LzPdrS7h;!R$f>FA1wxW{ z8u?pL)n5C`t|{=UB0eug~R&HVoideCX)FM64u=j`!~gnF1>a&Q}y2dU|?T zUl_T4-Q~Pk1DyJBr0otpjyT%R5@!K)36PuCmsQt~V`3Bc0YTMdx_vKx(V@IH5FD|5 zNNjB{OfoVvbGt@CX}o z7l%rMD|_xn+xM>90UtdK+>qbn`$Q}A;1?PQMsD60Z0^Z^OP6XBhv$~|>8~<@euGdu zHJp&_xrKy1M;VqaewSZCCd2+zCKn7OrLDU zK|dZXy3n&8HEOUD3Hh9&>+$R^BjrhH$Jm;!jJ<48-`rUbCJZ053qLNkAfdNvg|pCw zrAIL0gtQ~GvFEengR`>Nw{*0dhp=k!*S&njGvI{0V>g+qd@e`cV@gVpLHfD1L&kw) zIr3GM${th~SQGecf3?Us!Y3BRo4V0I!bU{5uY8UJSr7596#^9&_>=0XIvyI^0~L!e zA?5@=vdfa<{iz$hDbE$08rbjil*X1Rf389z=Zjsp@D{nT*ycfe`;WF_(8e(YDn|Ys zDG^eguikgSd(%h2bT!+$TO$UcD%aI}(tY8tzX>`l3am{F>8^jBDc3~BLWfdpV%!q4 z-d@a9@W0gCO@YX`l2Yhtf%1SN;iBt7s|W=X#A-1T<5dT(-y-^KCU&c1~#@K(k{bsXzYB=H=WeYoP;jx<+5u|gQW zJnomwtH|*BR*@A=V5Iq2^_+n0wng{I*1e&}&*XPP5)xnRS!`r-39_1cm!<(nptF1@ zb?pS2NQ%1jLF%JTr!9`Id8+jTN7sA9Q!Zom^EaGBKla$eqq@=8i@7SUz7K1;+B~74 z*s`(+3ZWDm6)i=|mru3au%yA#%{#G|!$j{AU;T;B^XQ;&F|uB<;fOWJ?1ce)IhB?g zrJng1)(@(%dpkmIu+&^%9&^ z?!#Hpt)?KzTcuV4JNx`cM@H2d3)Rqk}%JDzI&+TLv#QQ<~AtNr!1@ZkM<}AHY)V+hgW}13>dt$ZmnWb2pefyBt|F_-4KYF9Qpq^}0 zNmwuAAn(tppk=~GyYGs8+O~a>G^Kly)ooYUXD@-<0Yx;Qgs!A2e>y!S|JFSwH>jC& zq?D3rIZQqsRO3WEHshRMj+VcuJU#8Ip$PbG9;grcHtVF*_=J7j@&tgx7yz$o_vciZnFMnRgLH?YCsRfH%Cak}Ji?6pE%+r~=1gpS$SjO#; z!=KJ#wWrufJvdX_n|5_5Qf9qu_e3N<;tkq1_OO1xd!&D4!vJucCLiA7?bDWpT?3zR z;7om#r*K14Q~j>K*!^Px*BidIVf6(%hnoDVpTn0}%{nQVtj$+uGQR$m8l~oI={?_J zo1FiNYOI){%B6bdwxc8aoj{Agf?tLg$~1Y8TNw_x=~BJz?R1i0Ih)_Pd3w``xyish z_$D0c@g<%#o3c?@!{O^Ale@n9s^7Rn`2?HO-f9ymlo(4hw_#x*r1DG=At8%5FE zjq|AKrorKe?6UgtTlFq(pK}HN^-5a|yybL-qAWXzX!x3xbqx19ZaK+%h4kd+!Eig# z$=>^@kLan0Q)vt5B**+y;XOu2v8oZzF?Ha~QJy0XLOmSYWEuT0+;A>@z*J$zG*y+B=oG#h4oRNj z5+NUHG$^pqViiqZOJY{^_wSvH7)x}Mp~*VDL7=*9W=rrD!*Yyc9ysLvku#Xjq)M@{ zqrNX-(bPqwYGv1!4L9ZFnvN#l-|fB0VH{^_UH^6E6np=n5}{rC5y`a?W9*Zj4&B}( z$9J#gb=X(^XPbEzFs%!E50IE%Kkxc6ng=XlX|g|ilR$ldfa)rNIHL%84es!S=g&{F z>i4e;@Z98}=*I2M!#;7lID>wuDu3uo>3~bM^KB=6J-xcHOSu&=u=eV4(S?rG4qaB6 zRHKxNcpZN2ca=1Ka{zDi`u=(EADo}fU&k39@-!a}ToP#&g}jcrYIo@up%CNw7n+Aw zkS|-n?QL=6npE%?yQn>5x9W|m>aCNpVRPhS}(&FPPZ=(gLNZ?l3Q&+gZ@pGf@b$*CZcz$ z5095shIstq#7h1#G7`SWN&fBD&f`y)!>pOs&yIJ)Oiyeds7Ik;jIc{nsfn}yL&?s& zGstme*?nk=ZeLkRHsTN(N!1H`jGQ0?GJW)@_K?)0Hhoi)ZUAl5r>?G>8Z3Kpl5RcD zq9ftXkJB7o`@JJz{<<+_T9_&+y-pckuvyIRVV!%L0k75Cx zx>_s5zrDz(>i;v_ZH2tJy{Df8Y)GO!iz%UuuY-6V*qC3W+NdOkl+4~fxVP`(3M|7W4}zO z7x(wMp7Bll$IV&2UGv}XG1$;zuFAc<` zOPLIKL}Zt$>@UnS`qeY8Jvpti;psIKwkuaCnL4EHevifAYs<^0Iv zRRM-dhjtkB2yh#mHol4RkP)C|UuMIdg%*`q@wzcLM+a3u@K9hrFee~iMpX3pu|QgD z?*p0-KsKmsi2ZSosE1G6qK3hE7JRDYInMe~g%lmjF&#u-MW|flz2H4_BAswYJUk8( zEX?(^)v8O_cwShXP^qGQ|Lbiq47ix6Itt4U9v}*`9eJigQ7*(b#Sob1WS4y50$@0_ z?+`HK0rX;?0U^F1`6r#tv12v9i@VpVw^VUPsN}*viq)ZcWczRH;{Y| z(DSRu;zcBx+`oUHP-XCq95R*tGo*nM6PkGaE2VIUlV^%4Ei79$kc=jz>wqy_J;D)5 zYwyEkRoIpMNRO|Ua&iW!BeFqS;HRpQ5EZRjS?*qm#plCx2IA&hLEruo8g6WXoQ?*3 z98@1*8Een&iP&*2vEQKRNtFaj`Q#C0|4-nl5Tt=p3wUsVv;3Vb`f=~OCk+?)*2=J- zc_{1o5E+ZS^kEm&vV7_tJ8Om%aPIx@0<0ci{TwEARR)Y0!e4|Wwmf9k^i=v;ZhQ>f z$0nTieEDS1B?Q?hp`itu24Dh^3p(5PJ*1mO_=vN!Gu|sAQ`j456gRSDZCZ8k;6apl z1f?s-kcPiH+5PDMk#&TcE(xta20#HRN4g0?yYXtta&c;w=4lY~IfMAngTz8N-7Kpi z%#@UpqEw>g>+5TPkuK)B#M1bWTLYhi1O}m-2IT!uUQqGXaaQ7EMOq&MW!@o)15_&d z(tjl8@OFK!@QlZa=k?pl$_imhRU=Su0`Q0c?gQrmw~7V@Ym&T+(ZO1Tzw<>wc!By*s14y`46WkRsv??F2oeuCR&;@eI7q^jpYbuix&>xnum z&>PRlG4A$vy2KAH=DEamh~t%{Xi=cwCWrT@Pp6i@(JbG91V;p`5f~0qjb)*f#JQoR zr$_Q!!Js<+gk_Cbt$+aQn3{$F)kG-I>C>dMCUMq-(`ZcaR>Q`c@KV8Pz;ViGa%~lG zVBlv+fkNUZlW_+SS|TG_vtbJvi*%oCZEkLGjpP~Fw32QfjY!_xJdu1MhCqkOUd4=z z4138qbdc-UuSa|eLG1uFf?L70IsjymI5bO2ByqUS5$84{5y5Bzm4sLUzY8yjB=3S^ zN25TtX{1f_+qcM`#x8)86M#+{<~?Io;-wJ&26>_QgW8`N<0N{ltn&U<_sdU~`l@*s z$EMT))__%|@?5^duOC|Y8z_jM51J67X&r})=@zJzI-|!63)evaT)!Rzyb!$fUymjf z09AxQ1U*>4h2bq+>4 zjCTT{U;{ju8Sn0`dnV1K9N(fN0QoV5Y?FK7YK+sW0?5TG&r^ zi5+k>uFBTG`9{zIO-AIn`QVPmHi40hIFm`NAQB=GTNR;#a8E*vm1JXgCZ_?P!4(Bd zRm;bZwYaY?l})aPx*Dhzkmr>l**`o)ouNh;1Zsq!k^D4BGOFwf5#t1?3fLOD8|*{! zH?+0+AUYU+K2DY`$b(h{)P;KrA(?m`q!j4tUMBu6paB3dkk5)|3V#Y>li>M5gxmf2 z_(Ayh$O0uZpl;xJQjM~dV&#cGQ9sp!`j%KXHTCt685{4y8^K1xBr&;MgZ|IOPAIOh z^dJs`;;MYU@lqbfTLB!wOam&sY&;WUb{!rW5%+J7h_?OT))|E9l90tVOBWvX2j7sl zMtpVyfQ%fyPg+QVkAE5ZKLnwfvSga)?)s_%$?rCjj_x0U?C=>PS5%ZIH3xGEN!E7NQS&Q4b z4_U}SW%#~d>@JVPnM&eLLE>B581d3`pmqvt0>Ee}18D_sVmr8Lf2G>yiDKA-EN#0Vz4$WSR@hXZE7xA|_rO z>Zq2Y3%&zEhrbSBIC9(Y)LeRe7)jJ__k7b;G4Bs6b2YMvUI)Rr6$}EI}>Hx0GZp?{b%edezctPz&E>bqO&GPN0-t@t{K}~#w zbG?Bd+S~J7rq2PwiAm8qeL4_p8R{IeB$BhUxBN9;0Rw)DcsfwfNz?BJrwKicv#AqP zZGW1(;C4oDMdVPbrVHeAkV%1#Py9cZoub~jJ!i+S7t1s-}orRE&Fi8ks60Cdy4J?`qlzl_D z;vf)#qZV+8YS8GF!$3F@VxTr_n4FHK;25IxL;6l{fl|ZG(c>h6@`YDMn-&oE{xpLfo?;8ONEg>1aR zX{l=ya_43@4xSU;i5n-xbMey3UVJc|axi*|^}j`c={sy|{)pG(v*^db{d{O^(=s(} z#@}{X<@>Y?LfdR_U}ibuxNzKw?nD=OsrDuCEZkSfyvCKStEbn}*{O_^8%q-h9LZ~~ zoB9Shhj#kC%a=ftp|C~84^2p23XiXuTZZxtqGtI|XHYTnQDONc%4;w)xIIamh$?(e zeC2yLDZ(L@r-jBp}1&x z8j$|C3NsnbUc9JQp0p`cy;YRd|M7o1<0lEjxiV$Cya^mG&fU%;5{^!WKA<&P?!t4T zc)$4|YH*OcxE&pf@o{k>0^>sMh07ja2{kK`Uf|5Ynf3-P2V{%DP>2~H)kxa1(JHZWCy|(`eE;`U<#NLYDiA+C$ z30y>kXkO6HLw*dI#vGz$ZnvEuK$Ku2mINdcC};csVE#?{p8OA3g6K$)1zGE8#{R*d zIv4NpD<-Z&>+FJgnG{Src3^m^o){x-+~KZIpAhwJiMf0g-OV%}6KkS9#gNfJFdg(% z&3G(OR-w6R{qUg*!42c(i$Z^0+8`TobLaJ6MfwYFR1~f#s?g@3!LXctSFt=&f#k`5 zk|3TxN6?Er^Ks@RE@rkT=<$-My0$4cE^rrGk5cl^&yJ0Ek5jh?4A96g(IW zM0$ahdD#^!91$c{7yA{2Eb`9%p?<2UU_&1TR+rxVi=FsCj56vX!X=eq-9NlO%m=Oo zg7P0FLb0b&X23KKcrL&z0x>J1XzD)i)(kKz!ubL68WTiT!(di-0jV?S9`HpV_Deu{ zoBA-d^yGv8XaTMVKwX4;3TrY6si6`QwHPAViCNE8POLngdp1RTa#U?b!Ifz&_)aSjAZBP=4?3;Z$Of3d4MUqDCYLpb=H7r%F+FZ>%af|eC10oiES6L`5H; zyboBsU%hah#W9Olj_L%Dm{{E(v;FZ0LyjSndPBe9OY18 zLuLY_B*6=Ys<;>mWGo8YyN)($gw_yHU+>1ei9cX+EX%D0JBnnsP>@obNmd6GpbO(O^iYl2sj5N4bYwx z3qWsh8IaF}Pe~Gv0G^PM697|Cbr9zN0)3p&MKNZQWCWb`Y-@@dnnK1(;joXp_W6BgXGoK z?F}4$Ksan{dZ5$>F%D5iEfC(9_-vT+fNLGvP_PsDFMlUz$*`F&e(Fftln3D@Fp`N` z&y`tnS|T@-j1R%Na7=b#E0I^@Ttx&eN-P|`*mjc`bV|nDpmYvB?hVv%NC9b)1TsY6 z!&6`lXql7VT>;!oB;Uv;(7;y2f3PpfZHqy)B=#Kd0*XNtSxn5#q?JPViVEO0*{pbO z_@?9r0BV4(T!YY{pT3g#mH0Y0%$RVlIpL*}APSr;I0s2;Ivhgv4_+a1c%5?TmnICf zAkrahW_-Tr?blGYk+X~V3jmGa!$`!blinTU0_w2@aX*p}1RVe9Vn7;_P#yAyK#E{u zlQ8v=I&7;MYxVxM?N-d+VfQNTr_%koevZ>lIYVxVE1Mb2%y zZrFeeq&Qc*-J@_hlX(n~F2i37qiwFiy%qJ;*1W9kcLy%rLV_xQ9$kLr)VDYog`!kh zbtn(N-m!MXPM~ESG#&LKn$Rz-V+yR6#}8V%VhlFwie}E=s6*awJZbnk2CVC;C+`ca zVz^Um>fe{3Jrs+Lu#1oPp)K}kfh}!a7Gj~7_}&PO)i6p|*u=yyI>~+ah)z+4ehLXk zaHO8g$M>GqsmYZ3{`l4$x>Vd28Y{mvNDdT2f_#s2$xE=TZ||rboJ{`joxhk4I7sSNsG4r43$Gc(EmcfV6rSFE-5H9M}QeDAA^6zhDipvgPM z$W!pXj$To9s6Sr-QIG7NUua87fOTeOU$oW3&|=$&JysFBwyr}yJydNFVsKPf7GFg5 z&L8oQw+qERbbNR+%v6+DBWWc_m2`7k^hG?tfM9b$j>>x2m0tmbs?8F=`8O~DxD2TK z026$cnukAr&AYg1-8@QpNq+5`qzQxh&KxTCuz+c#`Qx-o(EO2Gm3(ZYC<-iSyD=u= zwoMFFJ+-cT+P^XOXbrAdQtC!rpt^hO;(*n^TTWh&t1Va{i0@5gKA-HRT2$#hqDFZl z;?{l28zD-M(TBi~inMd!B_yIGBLi134a&7O3#*`L!4XRFe!CTL>fP(z>Z^Ynn)}ec zm)X?wRUkqI+JkxV-8tz~J1K^|w{e`=1MS5*1NTT_PLU$kfq(^?*uFx!TdT;^c3EVKPI=mOGYqqnR`BQ^~B>jHPiV2s>U{3qZ3Y{ ztv+KhpT0Xzy@A%bg*3G)H#f;_EmgRkVDFeTnPO%yX@&YEGiz=&?VpbrFRITFo6F$Lu8t%>!gh>d!ASt`tg1 zp;ChYmgneK9F0uORW_N56G`=UL4~Tp>s}0VqyRIX)9zDi0c+A!{@j zAndbFj#yneMc;*dwz;_?LFF%bmVtuIPw01=8K;rgoNtJASteuLA?_~_F;=LZ{_FV7 zfv7z<^v-48wk?mhS~2~#6e9U%AAi|K5b5+!y$`pX%U3r0t>4JFJ?$Pv>RO5aNCC+A zg9v0)hocimFz!_>AyNUOr-i_?QkWEGs3PIqgBTt=S6Y6m7-8dUj$PDRX<)Q9{7SSY!5rLWK z@+m~T_F~@kC04e=@f;FZs)+`Y}0#eYnW9$*#@!} zvz*+&&Uv)_VXJN~*$^UdcR6KVEr;#j55|M>DFUD<_&}L&afDU_w-%gDdEUCMqNFiE z@d>;+(wG-isRk5)xY2ME5JzZ6hB+`P5?c?s6tq|*ksf`T?botsfEAF>T0TG~DU0-V zdgyj>!IPjlKyq+(UGq8$dEOmNPBNs!T#q>-s?Q#QsVNxOD)gwhpuWML1^fi*jRdsC zQ39L}zz~opGfWb}B|q)wIp+uE3w9|Pc!s_i;bsJf2EK*Ii{_F~p}nn*@M&Oi{3?6C z;f_bYbID!pBO?HkMdDclItq*mohd+dl1)YGb$}gTznY+mhGg^{wjk;~ zFwAIX;Pr{qwn6&oanQP*rY#|HgZ*h1^O2RfP6NQpmUe$ zW_(z2Y;+}UaaPfV+;*P-X<+|8)urLw+uZA+w6#JxNo;ONE0ed|t)c{h6+yO8Qcqdo zfq*XtHVpm(JEGVK?;h>p%82KmeamCx%fTewaNKS1Fv0H-ISE$D*K7iLeyBQ$I+u)3 zDlXmu5C)Yg=A*vqo2-50-YR+slLer*#T_1nf(jX5xFQL60f-M8TY&!veabaBi-I48 zt39wilvjSB5AZK=hJpSSw4sl7fG!rW4TR~~I#}`dz**wmp<;uT0iYI&8Pt^F>ZxSR z2jE0tLO?{OIUZrK!EJU!H;f75RO(F1qGP^;+s_rIY;L1zsd z5`4m{c15n9;Wb5Y8~__2%%A5>&hmEXPqp1LFDw3$RMq;otQZfXBCb|w6(*D6$U*QA zDeu!W!XU zgu?@s1Bu8S!UU}VT7eY<>e7Qt&%ofWT^ZgZRsrZF)LQ7x05Ibe#My%rjsT<>zsMJ< z_*e_S3g8=nHxf;W-v%0Rstk(*#!b}8hY%KrAHdzYmCA>}7&x_n5rBt8oYx?P;aE}l zTx2evgu`l_nixHcwHwJ1YsSRnJ896!_+R^mmwrX$>2fn^(?6K!!j2EI03kd;I8>Vh zX^222zkb68aE+@>=j-+HQt=g0N#jwYfIuSwgc52ZXrz&A2k_(onra}=AD`K5Lt}~N zg9Mo2{0CbBX*u-Q`0ROt&NzR;2BI#0n@+Xf3rmo6<(R;0SNM;d7S)2Gwj>Bj4Ddh+ z3Lv(#8U}WphB!uWiRA-L?zD792Ldh+1tYc$tgjFb;CugL;Gn=SLd}L9gbtOkkbixz zcQ@}r849BcmE&vUwEx=_SCDi@KP;-o ziMcwIYtN>t#5VfY-t(Ff(F^Ti2&qZW&R+kG;PHU7$jmU50Z@~zsUL7e6$UfJ-%{DP z?L4HsYeo_yApsspk3R9;>dI?+Su`@Zn9#7OAKL%huf|Xrg3jKU)}bn4YQy!5yeC=} zI%Z5Sm_+}(!h$rhkcRK&MifjyOsKR=vMkO%uc?|7${^mWu!?$JTb^m{B>c%-HU%vXiKGwSY z5yEOZRNC^^bisL!#exl*0_%!Ug+MZ`1v!ktrXSBNtW=fIy2zvVTZO25R@H6tBW zllM%)DX2i=Kk4^Bg=u1_3Ye!vT$4ue4}N2N0t9)KWCMn&^j?@{;9eJk23s>W_`o8?Ip}vUT|(btQ7ys?>VwXDEVEoeelD z&$77np52ycny&llo9(tOVt7PomCof~w6EE?f!XboGdGJ3N35EW6-X0f)m8JwHZdsF z_;>?G=xesth^y%YTuR*bvvQCz@j?9!e87L*`EyZ0crNKSJO9&EAuI>Dd{aK0<=~l7 z5N5WifR;s|=J#~4c`fhWy~H^|hAI($4~7f?J9st_!=N|<--#OM?yaaFDZ|j9;_0xE zG0!hS(G#sTL*P1y?ADe0O@HA3V)N2>sral2U;ZclFBj#jbmCP0|08jWApBl$s9w9A z6l92wiRlIW0<$b;AdwlXWbKg2oj~1^@Ywhx@Y}Tgq46ZZ3Dt7A*9OXpk)_b+?K+FEgIf_IWXz~pH+OIDTujPR7J#?+twur{;3lCUXcuAzkTQu@t9h^wIkGsz#V&rTB33B~ zMod>0I&hx6-#VLLk_w>m-vu;%gImWl>J=K#xua-5(6y4`nE+~FKL&Vgje9se^*UflgC?(jbYawcvq9*u`d&!01>wUWF6JiUMH zARobBfy6vu)r8D%6yi&7v(x_j8&Os7V~({JMeXy3psYZ*s-cD`GUEhZaiG=PK6ykE zl{|__LN#NsA+7}6V_-eu&;c@sVjrIpy${eU&|z?AVdBn9O#Q?-G91YS$;9VJAu&km z*D{xI!mS}AlQp%q4j>e6ToSho;1QKEZdx*r?;mF&ZdKydA3zBQSPe9VD)dg+kpySK z6@}WCq;L8#nm~ob%dY;f$_d|ZQlJ{G7d`?(!!Z01JOp{VQ4OJu=K%LPTKHAwCLA3G z0Rj3M&l=czL*!muO>X5Y@h`+(!bXb5{#57{e$UOU8FrBq-+AEWdO6yvmq)mcM<-D> z+*4CE`FKj=r_U~`y=6{SffH=sf_5cP`iMQZRQ6yu^io_EDYts}P43$_@7E|bJLx+& z>RoLryrC{KKDxT(q2h|iR*(7Ha*s;+FKyvzJ{0XDdEgQ?X3vVzJA@(kVip*tS-Rh=!uC;1T{)7zz&ZGCy~3wg^LPP~1yVOGiZ`~W&3Y;&fbBNvm z;fDxNMt_1R-EH9SR!>OqibEos)3FI?2Xq;1sK=2z_8JujDv(tQldm`a z-#7aE{rW4mv5l^V@EE_2Y*o;itTJx?vtM0luyx4PUE=S<4n-s+39gaAv}F{1IGTcS zD&5-e3zr?LJdE%{^EF+VfH_rQ@Ub0`@Xkj527Cn!S~aDhfN3`n^cX4%^mzu6>lC%H z>2I+uecSMtQ^M{si1b0C490YAOwgnxPDkX0kPid71I0_|knr@79g6E6n;;M(GZ6l? zSOIRwc2S^K$7s2g@noU@@2z=mc*CTl7hxD#&1A9U`G%0p7T? z{|yO{Mf7i^C1!tA>FQYm0fWpS51$%;qp#Uh^ub~n5;qMEfCb1EsS2QqSSHbyhPFUD zQjrK0JjExAOji7H^h5-gp)YHn0m!9=`Q3=VWGZa~g|U>-~(3I|~>qHa(7? z-{s74*?6$|e#+2~LL{~<7iW)@xj(;ncvxj#v)B%$)rv`n^Rcd~ybA?81)>_34p$1Z z%-?pVZ7mw%sFz>LKAAcByR=JlA5Eq3wdlmpX(kx&+bX(iCgB-|VJ+ufjO_@o*V1ci z3Hfy(;@EuAG(!bE$WpQk5Bhmz^m8->8yx%hq_l_z4GIi1y6b1QiG2v1;)>m~n32kJ z&v*YD?9yG$r6cE=)@SPS2bTmm(_0>QrklYhIW%=O)$*;4hDJvIeWedtDw#Grqrwl% z=6Ujme}by>JFn_bjRljWhi~gbG&{Lu3k9oX=ocgRTd@_zrw=+IFq)HQp>y;&;j10TE2UD1T#{6mgcgqK{LZhnjAB#Le8e?vXE8NdbZF49)10+srOE%;cNh!K> z$l7&1ubjOt8@OR&Xs$vR@JI!@W7R(EJ zwwU2|WzHmnbKXuxU^w7n*Oo)2Gq0b}Ak(%mO8t*WddU zv*0}?qSo5OSXInW_ewfa+Q#jXn7=b^{MKpb=8&qv>V>x0F3r#g&$eTHz}NyF{ezvtz?KQ8X4{!CY{2%D&L>gU#&Kw)1T*HDexh4VPs{ zvQ4EA1zzMf?fX5+rJu_>gJpL6cf4WqIMU04@(3HxMe@3mZOCcQA!rs0E4EE@qYayD<~o||G4n>RCF-_E zoD5GlcfHcDg2bhC>0T?*5QmNeUH(H;S>j^CCp|Cn)wge+cL=?{97OvkaW22q1Z+cm z`p@el$1`#aF16@uc4uVNxB8bH$xHq<=5kP)^S83JF=LI`l!e`ncT$f|J(2vG|8Pkm!Y)OYw??SsYHv`o=8NWwY0*9)KeJu@{m%`K5B$lOL?49Q5zgi{5 z3;IvnZ?Tf>@#8Xd1z?Ta$QQz8+;bbqF)=bQmi(}y8`r*0p-sX~QPC%(AGjHxk z<`6EoKxPHoF5iw3B-1TfDQbbUzlA`C#RkO&6?;-{PnyYB_q^K_&@Zk zp!$~YWMp70uBP7hJNt28e0?sro8k?VV8gBEK>+FKIPkx)hHOZ&LA;RUa9r~sM$F*Q zoExWrmSb(JsMeE{(A^~PQsG>yh!TPcq!SC*(maM6V6+7fBKmH1k00ZucdU*4gnucj z)}<+a)%30r3L_Z$DJE79BGxejSU!FgZl+)vZ9QaBNCXdRfBnT`feRfu`S`HQ=3A~x z<5SthkUw|*#nX$-&o55PJa&Y54W^Iv(wsX&h0vQok14c*%4XoiAA#>jO5~3{h`-!{ z{zjgR63aTwhIp*S24U*^DYp^T6e6b+tE;z;!fp+?k&~J1@ZLpl^)<7P!v*(FbhAm$ zRj;4vyJX@o9X-6a;TE2(iBi||S4@4Q$&6Y4{w{!+XS^UQ0@c4|KB~bIAJcDHi*3b4ByCvgwIdZ%pU*wJQ!a4$FaF%6ZX$3G?yD;32o*(#A;3oBO}NJDpnw@gkT( zKS71V+`4)`9U}wrp{ye%!DoaijXR2iLaC3ROT2>_BDkvO{g=r{4Lxq}y1QZzYh3C= z*u!;RN0!^q8+YtluG(vnI}Sn!n!QI9VUhpQ0^sNJD85ZR(YUbTkC2RNdEg^)8y(NE zF->FZGE9N)%5r_1u>4pA@wx!BqYe+Cbm>?ZQUj#_nuqy|&6VG-A208G!c4&u&lspE z!{EPg(U1XHA}$nX`kBy$yO*Q)`+_`-XKW2$;p`roxsGlVbqxd{MImsRqUc_vsE_&? zWUKy5OXIP2x?BfgnSYdwP3#ht!IJ~J@^vsH1G*rm;u3e-nK+4*RUtD^jf60!XL2%V z0d^zafZmUrFTsGcKQY+fe>q!|cQ-wi!>&}BthV!5qUpNz2|0j`EBa@y!x!(;$)!WF zMRxZBpQ08B2dquDOx~bGUZZj4rpq(Oo}64mfyM5Z!(*(kw;hS*zGjaQ9FUy6E+z%P z3m@m>^B|SvTUbaVZk&KSPm#76Au2$e%WZw#9mGT>$Gs~lxkzH%?pR_)%=7cv=9Gy{qvJZx*uR5C4a z9j3D!X5E)=Y`*x}GEDkzGp_&ro_QC$_Wy=_8l%T$#vkRPDmeex_48Ku+>hM#;osN& z5}bc|eOmEbt{t=QtC?uG=iTGo!uoU_TXba$%dKP9lg%-yd|~^3=_d)+YVy;hqZq*8 zi(Tb`_3K$j#GmX@h;DHU`t+?`BTS$%-TK5<(~@JOY2ufXo_~D48BNn?%)QIVzy;BD zN&AcPmHtb7n;R3-zlv^1^+*&8bUG{fh3ogh8JZ^+*1MD}(mrx)$;6~gI_UrMNj#x^ z?wQ!5;vMtI6{#IO-+pPF2NWhY7dB0qt%`zdb1`8ujDw12 zFW8+?@yQ%=BGqo3HG{H1qY>f3KEsXPOsVc(@eCWcq07V%PUk&I+B( zwrlPqb=rU+0K8Ak`xB{#*|u6Usi5-(B{n+?TeCN;D|+agR;D4ZdxIypQ-S81l+EWm z*Kg*osJQR!3B2y0!0Bk0)D)Ct(_b!q-KM71I;lb>`F)Db&QNwW)_5h((Zt&`(? zukCnTMcS2v=3b^B3OIs(C~>-%l$Dj)#3+4#7F3)1mE)5dXGu%#($mnqopq_9#cG`8 z*`cCAb3wog)F8?n0-h%#c2I=JrYhv1Nb1F;(V#hR{H*DR|3})JfK$1)@52j~21R8m zW0X|NP*KKYN=cs&9sc_(HW%ywL5MJR@yb-N z*|EQ6bXM4yqW-T+^`9R#&4rSlKn06*0o08g49ossUZR^SvXThrF<|6pky-{8s*od|^)kkA*$Ow(_v2m}m=wN;|cop+Vwk-Jx8#-=|kT zM9bV&{`F;O()@9$h@WtrtdF8W-JZKYJJ^)?P0izEi3#KaG{A2vx})I%lW%LwhxyH2 z-K_7sW(c;Av`92@L6Mh8w`z$Y55Q4Q)#sPRq~j~Tn$=*({&r~Iwnn|fKX zY~zU6-SIO5K}~yBbB#G}y!+98;|6+;(ARs#=r0@1T`k$VC&uvZ$1@y>Rcz^IS8pkQ zYde&i|153ei0$2}hswW_0;gU0Gg`bE7h`^`BWIwr2u(`U$7CXee7Q3mpD{%9H=H>(N}S2q7CgD!VbTGzC$D!eTd$JBEHm8K(Ix!5Mp;^Yj1*A|e$~ z86&Icn=^pppnwM2fCfS8Sw(4X_rBi)2+&AY>-K<@U&OAEtpkFe3dT6J<+n+qAfJ9n zMG5ZyRPs|*6_$SWj5Ke4tB0^|u@9Nl9nhr4@Bo1ABKh@yS%dXPOv?*J7(`0@%)*lE zuf8%33(3pKSf+HMx}}Aol-))bJr0i;L7+lN_l`3!Md_SjhSDLEM?<^!E<3*JoHsg; z?JA-O9_)rdn2xp3qE;n(0@)m%G>pQdlxYvC+EIW!1Fq_v z0>K;$kI?xWnL`4XLf_qG2KffhvMx)LjttW#Vq; zUq6pbGvKnLbxaJ)9JQaBAZL2MUHHfsj`lH$cyHHoc6@Q<=5vvPK~8pHexYfH=ODuV zJx43?6g&Z^q>?Q~mg;ZTEG|^(6mvA}>5AqIt8ErYD$dfKD~ncsAt>nyQa<6ws{?0pT6*X5yvizXkm6kYk*xWMA#hqwF+12qloQb48<0lUQs*08cdtzMV+zSaYv)!(tSTr z0YowG1>7HfyMH7UF!?q)G?n#ICKI(w_o77hX)fBv*mvgs>hv3Z@{*hSXv^>Q?dp@D zcr8YayogAFIl;)@%I&N?`0{jD7kh8i*{9l<5`|7gDmrR7FV8ePIV;HXSm;acZ}2kl z85ji{9(hCxi`xfX=2(oM_Dh<30AzOyDy2A;W|-m&;8wU9-JZK`+KlJ2#=ZCJu|E3B zw5a|Z1$6^=A46uYW7e~A$jHn5oMcbDh+RH?u~-Dpl*e3Y!!lZ$w#c|kD08UT05bg+ z>q4a6Z0F6pp*N*5*{GYYg?DZFdU+Sg-akN(bw z^>;0i6IYh(ISM1IOye{ZEpJQ{!Y#&=0tO6IEPH}wKE*v_rhR3ri?5?LjS=K*xR0X#9%v!B99Vx?6}C*~x3Q!$ZY zZB>~Dy`csLr(Mv%0%f;KF44qN8dnt{(>X+$YAj<{z_JriWyf?ZWt6-2PxDtCGvT?u zbwnjj10G+w+_EAxRE@;4<=GTNtEDwKyCX^j`0FoY)}9mY@B?J?s(3FVHlXpk^F**%i#w_~6sc470ezEx>FlQXu! z`HLOYMM}k|giZ*2A6s7QyY*Ag`#mvkpFe&Cf6rQb-Rw>@Urue`6sl(Cz1G{BJ#%N> z(4I4_rZ;}1OxV=#IVw`hIe%z=(~pykS2L%c?AywC``{Wb#AY3y<(bK~Q}8F84Y5Ag zEYm7c5~Eevt#ajZ{yFp2LNiP?W!0~luQBzAyivCLt_jUwLqFiOKu~YZUOKE&piMAa ztY8-bJs` z_U}fhe=JKALW8br_ehV{%OCevq=$-@V&(&TWpf&??$x7*%UIl9dKMu@&UXS7UVym} zU0SvQ8Cz`Mq+dJsmcBQ{r+zZT;Gee&h!8F%9Z&dFcaRVFzq8QKLBn; z&(3d<4by7PNCaGUQZ|n50eyV@9JD*Qs6MvqH=S$B_+-+2@uBhlUmo9Jvae0U`m>%t zpSzU0>w(@Eg%eeW^c8ajv{?qcD(ok-8zT+4l=jzJV=d9Bjlv8(172U*s4FmG3=egs zujydkZw>uxk4wia`~99dpAzrh@q1^vf8T-M$4s}%u*^242}L9{x^mB-(P6!5a`(hn<<7>Bjin<8-*8yIjY?}BVCfg0QLft~@g=iuqcfEG7lkSmIWH-l zJGlY%cU7z5!Mt>H@i5yr@^9AG^fUye{zO5$J<|NE^XGXXAjWHrH~$Wq0tda%Q#_~4 z^gd&~ms`W0Ptmc1juv^6K`n53-6vc>xE+qyXx-1Be)P%7J6+82j@3$vI`GOJzfH&nB~bSyWB8E<}9WnylF(dr(u;izjx^ z#8>y2qrUw*lQ~sfi%ey?hvVN#gRh1aarWBBj_Vcup`aQ9c}QyX zY9*7)dhYYKDocVEwA7{c3f>VKtc@yQs?|5XoaxU#VO%huv~0e+j*IKze-(BM<|8$M z>nU^IkQV{zs2IaVXpYlTTzu!zA%ji{W1}k+@TY#guCf4y4VoKdQSUy;Rid|#mKV4~ zdyXoIg_fWrj-E21T{7K?!3u??=#_yZglW(+tRnP5GK{$b2>I%%e#=mG6zRy~<8qHS zJVR>EB&N)LbthJQyO@=ebBA;vF~x+TF`8kA+-;^ouHRTs{#SD_?u1Kcb{9qrkY8gb zq9MjjvHH2o{&lsh5X48{qhl}EJoD{Z3fb<)&cjm%?i5o%+4MP`qjeUTslkdfc}-0W zykVY&H0v-Rt|$;B&lh+-MiBUcBJL(+Zk)1zlVlgbD zfUfYQ_lI_C)dQ95S;4h-Gh{gy2C=N<{3 z`(25)1KQdg&{lvL$t%D=P*WN6Vo{QZoCevHG1Ml5k{E0R{G1<5Kn$^h^iYP`Ancka z(mDBL0vb%ZlMjITTi_6bJWQ^>5Ke=k z__}E`XgVScU5k-=|Mdvx0&eJAm9irTCqs-QKf=rnjEt6mcM8=0(UT|SW`IhtO6kN@ z&B;=BJQ@p-Y4EK;+SbW)Vu7S7=n?o1m_jSWfE+_{Ay}AT{GuY1o&B{N#f+OU2iI*b zhZ6VC$zKUsVLGKDlU)H{Y{{^-WEW8ZL=^W-j~Fz@H*M|R#$)daZRf{rl2ecODyR?Fb3oOZsxi{kbc|3$ zMoUdeNkM0YTw$6Jz6E-Jv)BC@d`IaDjcKoEp7_Ov;`z!(Iq{=a8jBjO7-1!_jf_Bv z1l`H~4~<9C{>*Q#~=E#EORi(51V!y){d@?v)+7W1}Qk%2jp~ezn`dz`}R9& z^7Mx?S7f@@X~*>*rc~%Zh!?!pccidayLBKXAv5O1WuY;rJX{Gt8vP3gyl0d~tGcaV z{v6*TgRT&%QhrZOS*q5N3yytZ7(VL=eUv+h|vz4no z&6K0ts>#wm;!#L)KSzau-+tCYzQJ*WJR0(ac)c6?TkrXQKL>WnxUbaZO%L_A2lwsL zqS;5wznSC2nnCLOw=Lb?t8DEL1h!q@@fCCMg81^M|FnOo(U}Iiz!*WT__i6lYQgy8 zDq@BK9f;H8y1eOFQ3s61R_Tk;Ibw${1mYAv9b-teXb@$iJ zn-M5b+l7`I3m*DD;sA0*6y7K*<>?iXqji=cvD#m!UAPe_?!<6k1 z0wbbZ>6ryBgx|GDJr%sHQl{DZ2cqjdyV+NYujDp+>zN+Uo4279MqRJsYa&X4=#pc2 z>p;3G2f82_6!Vw#S*58pSDUN~2?GdBnVfr5Vl!QCnZy zcV0!fG3tF*))A=Xga3~}1Tq^4cv>$#(WB>%n{dioGtWHnb*IGh$jcID`%mio+>rj} zs93bLZ-;%8VPF$A)4a7)mdoXl!rUy^fxS2F#+yxWuUpYwsYg5h3fsquA+ZyhbvC{$;mr;Y)^i5KH&{iO{jjYBxgppcfX;30ohbnx zER?C_r7Ly3eL0Fnh@Ks$^G%x4-j7HxZH9-IGuyK3I^sFND=0=SZ68~j{`88=X7Q3^qE)h}UOy?Xym%0xxtsqJ&lqSp_sa)ngf z@>7s{;R{s*IOyo{v4r<_Ru)@;!yOvF`(;Sep`kW4xRqjSe`4KWs~U5Z-OwW|dbRSW z2%zkS{#`+*$^gxQNJg_stG!{>S-MF2pu{#Cn;ebALOArkK{FmM`UG8hU{>_D&xSxT za4LX~p>2*{SmMx6hrLVJBub}NVZMqUlMqGuS2EekeQwT=V{#K>rHxD!zS$VcDlphl zqoRx@LMLnOGV@QKe{}QyApff+OIrj#s7`xN=h&9y?KtruF?Y=%fA<8f4quGkm*(ih zMbEcR8`?+ty97DRQ-=3F1HBQcF9yD#CGqnECeh7?XVHUSl$U4t_$?zZ`Y2>u(8|O3 zTcxMm!7oV(4!=VD@7JX-F_^~RU{eW2yie{pHGi9hPKwS6^<&@Ch5o}R4o){0%r`G8 zty-aVzQ#Zn1W|Sd15?x0Ncc$!K!}~-*W&=@`+CuuztM(acLW`iEkf;8)7rWk`4Eyx zoouV6Am^eq_vcsYtP$Ma556=zJA1p70EjKP2UHgMRc+vG4prqKSpzK+J;kXS0nuS) z$8!&F19t`clB}gG0V7)!d{Zpc>W9!cg26P`WxO-Qh^B^%8AmW|2@dP%feTO|%gsT} z6+*XEq?di?0Bv;clgmB6XcV1Ja$#dwY6J?Ml-uPC&yd_X3J!jY&8S_&f7MzxvZu_v zcZ$DtKrz=Gj5Z5YK`z*|g?g#m{>1w(OYZM$1F~vT^|Wp+KtiPm0|%sr17eLuUf{%{ zHI~xgduTJQ(g}3Xkh(DHRVPEP2@l&LvUbfDNzZ+lJtUbb5?qkYCr?0R02EeI7m!^! zxGf-l7a`BbDBKiZxDgP2a1?BG%fQYZ4x`R3`@@vwoLI%h5?_VVsDUnRE!s?U;AWk7 zbq%ldnF;>|F5m?~KU7EMfv0YiLOPZ=s~!x#k6lz9eB*Ka1an(LT!W2!Sk|@RnOjE6 zMYk8{3l=5F$L%Ub>e@vTX4I?DfB`>xI`wn`mEgTpp(mByBGAHtIwh2zR^gtLm8xK8 zw@)~M7@ct;b9-xlR(`%e6h1n;0_2F0-LbB*X-soLIS6gD%=NX=03ZNZTre|RgK$Xy z@PllLEDCYVC6VV>#OQV%Q>7i4tHYYhPVoabthSf+PZ+>|M!JlyC@m{Xef!oA!b$Kq z+{64~e9m##6C6x}enpIXo1~sjvXndU`{)D{-D9*whB{;U15SBntqPqfI4(FWjmgbr zv*HYNm>6@wv;i5`5E2p^j&1Gaa>C1J_pj9J8FNGvYOc(Ej-J2=s6!B8qQLCNoy7jG_?1z-a)!Vh0K~0twXC-Y+f- z%CF-&j;Bb96wE4+!X8kMf38fqc%%{a`|tah|Xtz^^>qL z0&1ZCCOfhi3%hQ2V7LGiV8eY$DWgiT^&->_Fz8jgk@N@1&MZgKMAS$zn=n$fI9G-2 z7#|43l2=jjGE@me!Mi>9AoQNd#+t~*xgLaFGFlp(2kJaNhJYjp8F=zQpeXGsfq<>3 z<$QWGYh1XWK_eJ+1SM20P-7)u7Z_g_oe!%KhT?bvO+a@Ce;$Pzt`AHEVltN^U0ETZ zLMaTmaP={X)n$PPM)s}es*B-&0X0e7fBHSGD*C<8*mph#g-f5J@ydg>8GAs=u{CCja^F7o~FcTaL zcMlZ_6coDVS>d17HeBA5(=qkxYzR=LLz{2n@;pSCmq!({4~%Zw03|C9G<|&(X)(w` zKMBsd2t+#RKEg92xq_3$TRC75WGdX6`3pdI^0qlMWFP{rqA|mi1OC%(B1s=}Qjmm# zY1OBOeFWM9ejb+{DeVPn7R=O?<$-clvp z;X*+()YwGixCh);Fd)*ML%E1E-C>b6SaUHa=;P2N)?9%cX*qq5tHxh>hOPo*G8F;$ zQ<9UhO@f6?t}?#$Da)4OW<>swiC*7ueTo|k63(6>BoVlZexq}&LzTc?ko0;44CXSI z^8~6vJm3}l4ThqqvIFR!`@Sbjksx4%Evi5-#^iniaKr!;ePK`Tjw>P8_Ho)ZW;P16 zkMZu|a^53lrR{@o+H{?~<@_;BXFf18^iE zv*Se^E%JjYvaiv@0Eilp(oXx!*rH7=h$xuj1X)1Z53DTWZi#j;rWP!rR*WHz^Uxd^ zdY%Iil}O~+>utgJY{_0vnd50Kgiq_+2I5^rVa=_lY5Lb2#_&B zNHJUkebz3LFJL?uUIx(JA4Ku$)s;jsNiJpzi@h-NLUz^dgAf*(K7rt|PJtU2Be!(B z%JC{VAfR9X88AmfNANhXUveRnS8-+;V;3KGSr=;zxpz>Aal$0`9yq2l9lpA$uv0*V*8;<>S^ z*q1L?6SNYqL{ug}gn%3O+*@QbZewB8;R6*A-ldUV(^$KT*KNLEzpExzh3uvzXer=4 zX_qM`+&<`c6ourEZ{ari)H4Pkfyy-r;B553SGa$C9Ms3~0HD<)A|rE`#91QK1o6jP zz>ooM!7Lasw}$w}jj9F%)6lOBI4k6doT&>EqR8U+K}8hZIFi*6{XB9 z5fP=3m7F$9fc`qxN^+nt4Hbe%VPOEdzN@6eNg#>?eNBZnoeNg36aL!*wjZ#=6{E%> z3Jq{Zj(JEvFpE7r7P&}7PWC~o6wMN%*+%r8p_N54PyElKy^w|yK&M2+k%1B7w@zsi zc|x2D%U_M6+&Wm?2m%nq5Ybl$=;rtqlA17%YAQ7V5cRLdR60~W>cVf^H^(zD*+0YQW ziAf%p#aZf~UJe=&((GuBDM_SmPZj0 zZRe@@2%ML9I5t?c;7RO0&#C?bl|10dqnI`)pARCB1<+!$Rgf4Zcrk=c$SGw{+gPa z+IjpIiB|Ax*m`#ZLsjJFljF*)RD@~Asc;X(7}B8_4JjZ|5;qN*9%?wuTUgEh)rPyT zJW{Kxjo1D`aiNmQDQUBuh@KL|b#w9Fbs)jH1-TZ~0c5Az>EJA*AeMp0il8rjohU?; zO-2)kgUh$HnEpHGwJW2RCPcvxU_6Jv0pi zkR2eH#-d|`rEUk2eIel~$c5&|lAfwa6%qE5Bf@!qx<$xRkO}|DeFf)ft>zQ{6ZC{SIwiLiJ^-<5@UAM_J&o=f^qK{Eo^jqkRwtP~yq5B&XmCGvofw?nB8 zpgjS_$#3JYJVfd@IIT>ptnK#Z=N*59*l9^DqvqKnqVRnc# z2XIf2Vq8xq*NX`dViwq2WjWj~|8}I5L)shfLyj8S800wNjKja(Fg{1b0-@mMgQV&0 z*k`FM*IDtQ-QRqaq|U=P!8}IJp2*Wf>;|Z?6r?d8IT`pVM0=2{`eh6=k`*gdks|b2YIC^kcpukx|Tn>C& zgQ^G_(w_n`Fn^{##Q?sf&&RC>6gH5I6Bqsu|yyO21~vuC}G5vqVs_qn=~;u87#qfX)}%#;>_yh2_68Ojwbg4TbNKI65;rf@g zTVA)oH->Sbl_!te08>WPBHsX&5m6Q)5sUgsRTfKmp$^K+9WYkd3)N}hbH9HzdBEH- zyG}eIg_|0fg}NBJ7%jQ>jK~KuPv2jT^JW3#0ML)Y)Bv6fAC1H?#Z1fwPp2v+!u6QC z`e?WoQYK_X=)4}>6@pnOWS;1mpaLgSo;XH073k`beUl`d!x_6nCX}`^4Q$QSH*Zcg zO@wtcS1qKJ+$k=-+=dP0P(zrPsc*A|EnZ)f_F*txh!I>M|ZFBz^3 zg+QX6H~`8y!7L!!L&OjAf2XH(kcKOuBXqivsxUT+@7>!$f~t`in2@kE;Gm6=VS$Z- z`vYC)VdRCRg$0Z#U^mil>{Tv?pFoq@1No7~>_Yi5H(JP9y2`msRbQauc_OaCbR4in z1Th8DnPhV*M6x)bc6l&e>pk}Dkop%cDn=tQ3eJa&>iYv``I9~op&BT0Ell41_;2R- zcXv)b$%~F?Cqr8^CLw_y7TY6L^z$sE?mBgqB?{3@AdHe|g#(H-4D&z3zHfE}uY`K7 z4>U>8>^>wO6KiYZcMa!=^vNORLt-?rnE&}@-ib|rLfPlmB4gU|20z|rs41y$d$Ta4TzJP0oH|bQV zHfznfJ>)i-`$yykVUc`+4AU+o^eAUh9uYT*d;^p9knx=IFGNQV3hLAjgp8h z5p%U0YP*YTCZ>X8+iUZ<;I<|51%K!F#AG2XLt^8fs7U(zOv|xAc^RVnpXE2Xxg!JS z?i^(SJSup42!k;6f+gW!V zyq_qXS0S(*7Z+@X-hd}9eb!-W_(GZQwx6;|$T_+osea#Zat&ATW{$0nGcK}3upRw0 zhw-0l;hw2V;M&Uh+oP*bZWbx1dbIa!R078nmk%`8fj83M^oP}cw;sM$;eCkmfa6GJ zfLP}rdlRV=JaTv0({g$l&VbK2k?4iu@1Zf- zSWK3ikTZo!IvUsyx#^qN0g9n_FZu+tL4R3JU_TN(oC8idH%|9)757_sE$VaxwP>U- zWB?!i_WX&L<{e?#rtQL-w;V2 zZWpkh8}Ouxe8k)B<1D>FM^CgmY+Z2_&@m*0so_pvVUl{n*OCZ=G>9x9(~jbic7Rm( zb&>;tHAFHKxG|D1gQJ8jO_A>g;tm1rim+413od3XchDg9QCHg$B#amwC8cig8NDJ@ zl_*I_ati;C{&Zy;F}NYuA?KF-+}vDJdLat~Z~^RcDb6=$=ojT7+otzNH2C8}mcRExT|J?yAU*s&=FWcI$&zQq~NAJV(x!>J^4~?TSL`d!< zz6YtEpn70{SP8e)DRl|lkb(x^U7-n;X;jxqT@;GM_W{D2TX+Hq_yVkjE(BqVF{|cX zHXJWvDYd&h|40HPS$KR|^vCZ3tkykmqr$#a2RX6aS7o;EzV>D`0YeLYy}cdw>(Vnb zku3(u9hrP_;yOAK8vymHAm#w=pf-`z9_pqD<-@+YnYgbgiV<#6_>XXj!pV{FNOm|- z3b9ya`gS*{UY0EZUs_s7dgoTQZYd|M6ksbgk&R&)IPrz{ag+cy?>BYyQ*);NHcbvN zG(;u$70SF!g@}rPq6zPcq>QMFK=*=HV|#7{xl}gDvdb|zE9zY3%M*qyOwexpDubf@?K4f!sv$tx&Aqh+i+S@`$ zjf{1<4Iy6zKL_{;H#!CLZgQjo!7!(N-A+_Gh`+I~u?z@t0^~aE38Tjo z!C+JM*RP)D?z7DlvR7@S)x=2Qd$HipL&8bOj9MgVKgLAJz@GpA8!9Wsn#&OWhwRN#+A1ns_R7<77UhFrjd_8eL0w* z>ID-(xx#KpigBO~)wQ)Z(P5Qw{@sqf;9gI!Of|UApOL*D=t@sZ1Lhufjz>e|X6T}S zSr?g|5f;YU4is`=LP#^FnXjy!z&!_og~(fZXEeHf91bxxKmW7+W;={i$nC4)3V2|L z8A={US%4D-F&$U#eTF*ZKM=V4iyNvrBSlLaRu=XY?bi~n*?5oE!cWv;;fMKxC%Q3i zBNDBy^~g$a?P$GJrlHY4GTfm+DMVC4l8xdLn>KDjZw$nDqDX@L{{8MM>EfYxlBm1k z;gQZEq#}dBLh>n&oiy#pq@|gZLdNuwkpRAcbHs=l{-0>kpiu)CPmhf-NqDVY=T$l!x6dc;MfsgA6{k%kAHJmD z8o9%N_so$k!Kb=64e7TgIP=_}eRQ~j<-NLQ{$V~%gB=l@k9<|UD{%Di6P3UvE7mE{ z$xQa{Zl!m-cFmsdd(%UCso(R9&(AK|m{iqN3=Ur2XGv$aS7xn}cqAlhpalf?W}(YA zV8=nK7+g29N=RxF?B`9hsY&B2`K6nT7_;G?k@%6#ahKDz2s=#Nr13h6LL`<+4eXfW z|280w971zh6K*MBCDN(7_}T~Z@oY#;HBuf_^uNGo;KPccybTcc)x}R6_xb;kzad0X zlo2ma7n9@_YI*5Y$fb~M>G3B45)qYSqxBZGUSC{IfF#YN(-$WC>bGlM!z!N%N$iC2 z!;%CP-fFsr=g(6xrIp-o07V+a^zA{1SX?*t!=otqnk!h=jpNF9W$N*p|s zc#7bMc(NyrSw4OK{BF|q#ktqZ9vYL*62dBiRvx13VaUgAmI; zVths&=nkS4sabGSEa60eN!uPT$L^$6$gfa-B0v*)IpjlxIT;zL!ekm0E%Yxgz!Jh3 zCN~J=QkFP|VkQ6!Wsmn>14y%^%#z7-6R_aatSs+|{sv6qcR;|tP-e1)6kyO|Uw7^6 z3whbdGbz^s{QREz)uZxv0kTh!B*?2H^(Ju_{Zv8{M7UM~!h`Y)lFS=bMkTSqCaga3 z4WYitj`$oClzHg4YXcQaB(evle!KDj@OTH5qW;2q|E_kVB4F~JauQDA!kkGvRMwSZ zYpxrg(=ED(twcp*(k-?Px_vf{1Xx3JhCm+7E6K_x>8fJ9$y(1%$S_C|k5!!z3RsDZ ziX5S&`gg7N)Ya`5U+Jyc5(>8G>!uPsw^I}|B;FA{9dpxT*ob&MVdk)MIOkUp;2a2_ z(5@}EH%zGu1Z}@&h0lkwQ7JIt;LpOyu#l@d+MRc9uLToFzDzugSVeX_Fu@;SY4!;%J+!L_Q&d0?tkz84@Iv zEQx9rP@6LVaslJUp#{>UDQ*m-CwuPjVw_$tz&!Y#=pSOeJ=PU0K{W#vyW3s+8nY~8 zC66nps{%8|jX99pN_Mga%Px^8b&yS-B)WR)Fn0pWv-&3fQrJL+zan1*pf^a!cLgpT zT)ycR)4>lZvQ`hTa}I9vQBKPUDdv)?A}HU&uc`&LEvsn`{3^Y%HR~WRUijzL%QqR_ z7L=WRdsuH}G1FJ!Z0W!L;?|tjrXq><9}i_mnm?@j*URzuvdgRvXp4m!E#oAg_s_T4 z;nU;T$0SQ>-C)7LI1w{*PW(>Lr}=Jo$`RS1pgt$_&07zCNZ%fON75CtpwCZob=xfG zn)Y|&+FzbrbD1}!(l&U-)Xy)+ruEeie+fJ~j1D45n_u=SiZ7?NmE2-s9XqF<5Uaiw zTZf;wgsam(G)^2`qIwH-OKLqyiv)OW)_}y`4C{Ez?UzuvxE2uj>uzNWB zMr$XUW%YJxYjcdxJ#QUfz4(2$)~)vQ1@`Bo6JJlry^uFA&12{%OTzM+|Io6{U)OqhieF80awn`S=o zub^43v8K#2XFNKyb;6RL<2zj;kRl9PG|YD|VJWjjfI7wVb08`+<%!nzhA+p?U&(An zT$j9IHlxbef<0kBNVrZ{j#4zNv|iY&^FDr(N3;U@}1e1ljpjv+dQ+mFN$$n zu37B3ugmsSO3FU?kz4xr))#9O8S)NXBTJP?aR+Tj5k>K(Abve-M!g{ z#Z$hAv(LtB$m0)6!(Ac8sG3k!n>3$Zwb^w<$XD*%tBht-(!tBZDly^&kk_2Iu{pKW zSnK6OtvCI?*UmlZE8?IWxw##l27C(vguDp1ncn1z&lp#(>y6S&fyYf;TKD0D_sY?q z@*;@@)gi+qSX$B5;l-nzRDV!1TyI?=)3}np`8ijr3NllsC08%3ZqfOm{V;v=fkXea zdwi({=V&?akjO2&eq)7Od!hAW?H0N5a30#i(G3>sT&y|iAvBhSo&~T(FDSZhz#6;b zMVSzCZ(pT9b?{8Jsu*)xlgSy+60$GH0CA7(O9Vb9x^Lg|23yUGHr(kB+M5wQn^0>mr~T4zi}wPW4v$9M?Wf0kQ5X-q@&L9j zlK9tgzjaSvRQ9vBs4h*`>7?86YJk%X;5)%v5Ip@->o(E=jGNDW9-1Rm1U;7#CDP1* zq$B~spd;KqD~o5s?eudK4ki({g*7;I2cH?nLJzW>Cr^Eg`w@X4*dQ*p@zn)7v{p#0 z#Ja)QRx<)yqvplm0%<4k9^h_FKO>}yo3(gDDER_1A)*#OjK<^n`sbQJ3l%Wgj*%VL z$yP6-qzuHg5z4|Y)G}m5C~46<9|5HD{7eM#^*3)JprbA&U=3+~uI3Owj}L@XCv6+) zDg}HC;D+`6R_1vVtN`pW#e{5!6x66gTJRyH-A|Yuo#^tv2T=JX>EvI|@_R#AG6k*L z9*dvVn=q41U}wN7q-aMPg?3EGtSq{Z^=>kNhZldFFM5JJh4LMO0-Ki8B0E_HFa!@0 ztsnyON^_raK8X21XxX#FxC)CI)$^JVm|G9zRLNo(4 zOnUlzP+$F53{(_Ox)O*mxxX_xckmtbO8-n*AZFtySkg!C8onHn2?uST@blr!$#ejK zS?HwuR=EyZBNXzJ7hpTiTJ(8%Q3pQ!^-}4t1Lv0ab7i5-?621ju$mEAj8-1^2G31+ z09Y`02Ln5}QbPn+vV;qRJfv+bjb)&~KrJ}wN&D{Wi*r~%aUJT} zUd4X2wE%=fYb3T?N6tR^#))a3C$g>^v6lHb$1{K^Ot1^0XD@Ev=Eu9d`f57U5*kwe z*+{O&*fWx50=W^Cgls@2C?wuM0VEz2V?e-QZR8y0gki`gq+rgNBB7r<|2wk)YDh79 z=`zS%@uELH3uJ$!*@5Kr25gTPybx?^_(w~zl$bCYC$U;DJJDN}Mixmn`jDqH>574D zf-{mt9u<;@`%HrSyM}@VTPRg7-pqaS?{Ix|gv4{4>4 zjvc~!@ZsoIGwhzCE&N1jLQO^_`{A+39nCNWEnyRb0x;p{9xNbSpqRMHdjO0kNKJrS zAjI1LEi+l`rJeB@a`#T8i+v>(=&;!q-ugmxTG0qa>y2Ps=&GZ-!LQ>C;(g%#!0!f^ zQuDMPIzXi357~WulJvq<*LMDU|8WauYFP+hj|ctCVXUEV2P!?)$yVSES_lELP;8>% zc{a~!ZyWF=a?w};B!T6)cVIhcS^^LW-mt7inkK#GGU@u^l0e8ffDhGaz%p4+jL6_{ zy1N&wES14$pH08YLT=(eGF0rP*nkdvF=<5tChWLD&rNc^$^1zfm%fvc8VUFH(7M1e z*QMV*S;f3e||eKRGo%-rQdu1 zO7^C=RI^;?0QUre`E-gNf#EvIhT9CY);k~ACs_LoS*C> z`p=|Ufyi{srE@(AMh*QAKSD2&igu#!hXSL_E!cJ!u40ND3Zva@+ zh;;&b4joGgGECTusGGcD7yxU@jus%!#Pvce*pn!=0(vSWqnHFKoS&IkUd%*p8`Kll zACsmjvn27MeXHE`ie&u)e`N9K9vHOd*peO)xqk$JMf*3?eKr%p*c;^*=|N$BRSw-$ zfWDpxe8=2p>ZU$klJ#&0>#&46-%5p42oMF*>}WFSMDK;9^PtcG_#@08(j>t(c=qQ^ z{kkOQi&z9hL)^8s68eujJh8>Dt8jhvoY<(oFdu^gN*q8mMU$?0qIS8fDadUHR`=v2 zqihbTO!QdKSth?d_-5BWghRAFlKY=W-Uv%^_q+gO>u}`0$x9}d;x!OTVWSkYh>DG# zn-H|5t4?}tAxtDABSlS6yC6^u_l*buFQ7 zsPj_Ksu^P`#R^TcZI@zeh}Bcbm=?b5^`Y7A_XJWpwH_{|P6A8#vLgq{MMx#G3AE&6 z{-pc(D#)!d@6>+r>v`l>2w?*e>ItYOaZ!`^^Pvxp8PbBQDT;hG^`GH#{JS85Ktg}G zI@T@Hpb|~)$NXp%iisCW+5T_Egp4u2;-h%bn1lAXoRq%@sE?ItUv_+$v3#3XHfATu z70)Qogt%5OoOeUD+yLeHLt_L}a%U$ecj)GFp%`$F$<1>Qv8zwnYFexP8~(l51_CUn z!k6|2we{mI_S(hCS{==knXt3xL>sF(?M1TlhkbRGTjsNLS^<~WVn@WypSR|OyrMtY z>NX72uHKM>j2z`^xsgWw{^hjs*KpOLYTI2WrH_?Q=cm}5O1{!84(}=%zQ%<*R9nzy zXQg{4Pj6S3%D8gr^P$=2!ZKAD@p^vjyY&@`JgO`8Ov;l4jcu9>s1_(!pRD|J@nqg} z;esR1juFWAo_^Cazm^!(<9H-_n=xHfX~HktrmN}a&z%lw%T4wbVW@ZLGu7UpZI$+B zAyb4Q_uGLA;f&b&tG0LPbW@Dw)aM@)kA#4qTOp9MVF?Y&O5n^7^bQvslG^Fj=xvw# zQm;8=wC(WZ7CNn8uXVJC=&o=y*yd(zJ&T&>%eJ<>hCqc|-)Ef)e(P!fmJF5+8ST$d z`1RU9c`TD-Hs|G9#ROwLA?B4=r6)eqlcA6bmsCC?=2eCgcR`@etIAKm8BxJiEKWVl`KUAV4O z+vAgWO1{jz#I%G`ZEWwsdwe0f&9m~8@6B=FsrXKnzJVlX^nrq7I4eS|3jZLCBkv6HJDS(()N`vXRoIxtT_KrY{J;;IR{G%C-br0E6IGsx z&kdbPN8I~nVw+dYTc@s{0UQ-R@J&CvA^E49RSHjHzklP3E7w}j^iBjB7yNROO=)`< zIQ_Drr>42nZp>fLj5=B0leh4s<&3`E#LR?-M6dRAe%C%y+~r?m_w2K#PHHZyhEG_= zPNpwpKagQi=vMg|+1sUPlG<2_+V|Vj2D9NkD#o3t}EPqA2B_tv}uUxYGipD+B=iXh+$>C(NPkMrpme%MV8>e6s-9 zha(8Dhz1(MGsVK%;KB7sL63dvPS=mKx}&GmWU~FzyA0F%WoaV*?+uU-0pNmzU8)1G znyoYVtyq2LOl0Hxz_n#M+gca16Xt^Y59jvZP`DC=T*e^+ljtwUU)y)^POyGApE26$ zyV5n9*EmG-NYj?(+drqe2rQPA-+zBBMS*WVMT#+xMxwRpns^v;{fhD+XYZ5SO*h*H z{jRCp>C2b+`pru}?G?3qHm=_LJFa!S@OoQFPAvaKuq#J=)%V%7L&5HOrb+!?KhwuE z#}k(kIaZt9(;3 z*=JD~8bZ&U_AJDU9XJHCk6s(CCJDZrL2n-|Dn=U@IfN(}Y|0=+B10 z*-BR$p%rJdlAF_)uM68erUuK@(qO$}P0^L)|EI8gZZ{U&`c-7Hqmyr3O-}meqOz$kTKiAonbUoWe z#RTnOO~a=R%Bs`44NCZT*UgLuHm&uh!BgC$xoxaY8*rc}Lc|;BW`Vryun@8h8S1wV zAJ6_7J;e%p(Mw5+iq%s-e}z}o{p==Rz0j2SPbKbH6^+0cs`m7nkn!tt^;I!pqqz&` zVW$(>gU+`vcwc;-XmgTBF2)-8%w3rk4E;_onkU=Nd;YwdRNuEUnR47vV@|b~KJ-ZQ zK*sYB?gxQhn`=|neZNoQ4tAexu{KT_ijzAP=v7m0lva6hx!AEI`?n196)B9U7;`g) zSNF`e(Qk0F$T*#pIITJ9YLuTLvReA8T%KJw zzO22(lN%XV*fF>2En)LK`U5lSXO`(utrz1X6enc&t}olYoEG>;`tUDT+Fd`7H5e7~ zhB6yGn;808s=xR`qL44>%23bD$+h#&PRgPF4-o61v*BJIRN9uHA|~n^)CQ2mD*FZP z`GfHqCyph?4?J|fv;CZ_Q}(#k5l6F-?k%fMH8~#>PEs?_SR>=CP-RdvYnE+tzkBAi zNcn-f{;$mi8Y=TEuDotK<$u9kF*`(CChzO(9~7a$n&xvumt=Ae-8{AK_|Lq^eP1h$ z%YCec&z;L_Vy=`4uX`;PpYN1$D><@KW~3n{N&kpS#3|vB`UI)RmBH4S=f^qQpHVB@ zDdMxM{HAilsujN~Y~#)2!%G~$G@pt1Sz&J^A9KlZxzi6lb85f(OQQx=io9%4Dqqu5 zjWQ&NfQ_{KHzZ2t9eX#CP(2egqa7WP+or}MlY0QlXO!yT)v*onlf79>0v~ep)K(4H zY0JD}@;b+9LfQVI!MUIcRab=-TgPnz!}Bb{J|`w9HPnF+6YkwQ@yiuRKrr zT%eWku3d1o@eTLWg&2L!BvSersZJg?pkUxs%E5;bgiS)A4f%wOa@VGWQMDIE+uCEOnd{5Qvc}tag+RJ+TF5Zh3h=`7QG zNuE|evp9}=w9mL!w%|~>M5>p-?=nRRwejjWVYLcFF*`t5YquH37@lBUOW7@VA$~4r zdU_g{;X1gQbElV2ZW-5&qje}B6I=#Z) zM5{UiW;p#_4;Wsc7|^VX-C2rm$xAPeyK~ zunpw>t*au=P`LKr@G6rP{RN8uUs%OGspWJQe*uWMTIAWU^Z)hVCHDfXUoHFFE7(UZ z)jt^j@9)t$T0B+a5NE+3dgp;^LS3L(a=&s#N!Q4s&{NxUq+g!ip;5XdX#8Mv2EVa% zmG6UI8_7U1*!~VaLk;eroG_h)Rx_0futk+CmdG=0J1NM#pskB-d`cCM{CvTF*=BfC z)qSUskYWY1@B2d=f>L#o>iLX;b;qd*1o=F`sBfSc(t13)F5J?-38y$U*~owgSN3eg zk0vkxiGO5tcm48t#rcmX-1RO_T0rumhCOb)m_+d5cotZMgTw|Y0WtKE@oKx`lH}wE ze&w7YY6ASmY9{Z7hb`j#R71JSd>(9IXZL;}8XBh7XKdhpx0f6g-+*E=+&%|H=$r^YHxL3=FL9oe};&Gp){1kDi>scRo6@ z8l~T5&Q^_`{w^sH*0yDx56iZIq1iyOPZxJ<2!wr7u3%WRM!5p~e&q_l6L{=jD)(03 z4R}q{VFl<=oha>X~qC7L-ev$ zIB@W7byw5*jMZ$4jdUKpiS{vj@g+~q% zvJ+2T@sMTSq*C#zUWy92f;d;TnV7m>e7Ya`>(G;GrT#vj_H28N$Lco;kZ>E8F~T@X zLskfg*Oiz(`tayyv})wzmP*AlM@4FigC7^D{W!ed`Lf1j@TjWV_$!S>@=X$blAqS~ z;#wEP;7Gb!jq=YX%I+PZA)Y{8H2ZUP_3=10Xm&n8#R^L_EHf&2@0v&>gf<0V{y*L`+oPo0>nffT=eH4j=OA9RFyqv6 zTmAoeI>~vjYiMBG)-~%E=hvSTD2DPXP%Oh#rGhjF0>y9_a6GJwOvE|18P}*`4<;DP&s%?8cvdiN>3b zhb3TbEE(?qKs50T=<9F*T|zr%LR-Q4=fhHK0~n=LSR?CtnLVkY0^Q_&XLrlUaKS$9 ziWM1;{*YhaeC?*HqgrVq+&Nw{7FE74JTw%SkZLGkeG=w?t63bN{~oBsA#;pX+|FaGat{%@h;|IdTxUCwvA`Q_<2Y@fgT0Gr$3n70RO zt%V(I17yK(d^KGw&TnXThgEoLYU-g-un?3h&Yre$sgEnrS~lNyc@Lj4#J}%+AP>9F zEE9+A+yBGbpFnfjx81`yqR>DRn#_bu86wFPkuoGgkyILl5M@?ENu~&qc?x9=Av6og z+_y-SnS_v8@BVZ@_j6sp|9`FbUGG}2^*q1DqK4I7V0SqCW z9nYpACq$(Ax>QASR^Pt<9W(nxaFQ}L<%Ey@Sb9?(2>%S*6|C?a+r+wiF z4I8lBHTAvr(5Eb;Z1OW+zFv-=r4m$tK|0<6DdU*dy4N$(rgHb+k-xrtJs|jgL^Vp2 zA6W+w_HuEwXT1c=ESr@Cm$MEmM4yxzi;nnwCPyaBwD7D>>ic)^-iiG=n|!>)XVbqc z1CCQHqCfqp<^L%q)Yj~*c`*8a{?$+J|92_j|NaPtK3$Y7vo=b#--OdZ-uS;!!Ahfg z<%R%t-1w%vzv;QuOx)nCr6rF+dTy?SLHg0`$M2jEwKw)E{Jpi4&$RB7$9p7~!iVF7 zvgv>~jA*s)|9!nT>;*;Zc0|7Ip8wR6pc1RsKItIIBmaxdE%U5QDe(9Slfr>RxH<7RR3Yj}qL`SKdU3|%{+-p~ zyJYUKR*2KZ^Q#{dykdh>iKlF}3oq=hFJ~Uayo;XlBY}IHG-ASXG^rJp1bdJPOoh#5 z^C$n7POqaR^PL4NBM;oqwW#966Bj?!Z-w-M7r%d7_}s-SS9Tes8;U&EawS#AdvLb? zCo7%a%@%kTXh!;Us3!RXe`*A%SY#2>~4qu<}aM@jA4E+}}XcB+dZ zJo-)m6FDO%zlYqP@~bg9A*>XfBemjRMI;Fyi4Xpdqw)XkIr#s{OZ;qsOYge^>X@XZ z3&UQ1Bnh(c^PLEXt=kO*0R+@WV}8nOWkv~#$ZWF?lbUwhYw)%p`E>l>tU%7m+tjs$ zz$N@Q=ZoCaPJJJGeVGK6@VdUECV_>R1zdOk|_R`pK-d||8q*;qG5RJM@oky z8@5y$kRNYw7I_;_)@oN%8!0DFC!-#?ND|mv)E>ij$UK)zYD{+JZxLJ$Ik06NIjPZ4 zLJ*lg(S|!%`qYr;I^TKb#0fLAI}tlKWeB1isES1q=p~m~Uc&)|9G9{DskPM*??6?q zq3hAwTxpb%Hh~OW=U%vO&prK8yKRZRM!P7arfi6vVPUC?Nl+;^;Jvox_k|_iofAbb zB^U2I$NV30;r}uJPaBMl|C#hon&Rp@UU1d-8KvF22y~@JyArI*KAcO5>g0Oquywl9 z1`4b4&dR=pXZ2?{Kof)EOtGzmtM|uAMQ}MVJpw>3xu)s73`|47R>csZsjG{ryPuO0 z^A{k$OY#`k62HY~f0h?8m749{t{kw6(}fCd1C?W77|^Qbof%`9J5>AAl@o~oQ2y_| z7ML#-ft`toGr)X|TC#48Er65)ENsLb*g*}IexLQOSWq^G2}{Y@y)LQbMnvh17d|6K z)t(t({9sxHLM^zbfHI-!z{Hj)ChV6NT?u_*c5y(t%BCwoiArwfcsclul`|D%mY7|W zWz`rbuI!pApHE@W%mzzx4Jf!&U%qr`IlU*thyzAm73R~+s5Wpp)_?X;obTzbQl)B` z1WUEaW>>!DtCa+-HWU$Sx(+UAn=#Nh46hFk|11;7iEFob;cVXa(=oTt=}>Jf{t2um zezP=9>kVUghKVhB4VY+P1_u;(dZT%BotUy*tPZBnw5n9yDOcyFe{Y=A&A0)r5yhEI z*dgWsbCa-e0n+;R$P=j?IHOeEK>Y}rwN9ey4mgE`eMAGw3sKJEk->M1jQ73&OmO|V zPS`x)Nm|UlWQUZKx?%F9DH~uCW?ImT%@>StH4>kz@zR1!|FG%aFHG#+irRQ_%Sg{=9NgC8}!`#Hd)`8z>;lnp~rS7!!(`ucYQ*u79W>|GJmSAMD`^?kE{au4h@Clx`Mg0u_S#w9-EcVGBi zVu_w&!;O(LP(-roUrD|O^#Y^oChHFSwS!agnWm z7Cif9K|a5$^NJ=X#o zN^~>YV5(|g6CFNMR{;_W1ZU44aR!J7)I;J>Hyo!_{KmU+G;?eLR7*lQ(oIkb0-rqv zWDCMe06i3M<;OHG91vAzr_n0mKFWyb@05}+70cH~%JM`H79}Xj;Sqy0i+MJ7#4o;5 zUR*)dP1taJA&SX1H)rDtN*>zrMQ%w!7y|}5=TVtmfp~>fQPyAdb!XWFW&Y_POv-Fm zCtf^Zy6!^939cF}%dor!PL5NXC2(56<$(O_NfhaDdsJzF66#WvR+B!Xc^LdbP|dp&jw`*8Tm#)@k{%q3moDOOX{iPsL@ z`fT$%GVrje%FybIovNWaTF$G=I_h@Y4)aS>2P__JV~ByxzkG1YgS~U{Uz9;v5ZSoVsbw3NXY-6ANM4#c z--~U#c5%0lm<(23RoDhL>H~3x9NAbMoTQwgvK&Sst!@>zb#8x#bc1O#Q!U&(v>zxk zoFBS%T9le94kH7neV6!DDOk2h+~*Lm_NP#H6dR2jU0wF*GA_V?51|C4&R@S3?o?2( zzOctrl{@evfM;r6(>t}((@I0zl%Ln{lO9?kCpqwZwfG}Gj9lmKT&Z0Jvg#SB`#E&znl!|tMy$^{-SA$l2s#3N*h;ScvOIy|NRtI9^)@m>>4(8-G ztPbuGioJ-jwEGubW$1jtcWR9u@_g>FhySV2%t#zxZ_@2gS2pcA6+3ken_$(X?)#1{ zSg&LD3|qCzZQNivN@{8)6W&iGVG!#OU3|Fpty-s#l#IE#n?|Nhxxu**YX?66zNau8 zc$i^+s`%<9D%Ezc(mD0FsiG@!LzEIMcso!VXs6kgx>hN@jf{;-TUWxUre$uWTK1r# zaoUVCol1YE#kP=}`Wyol5>*?gf!&)!gZT$KL#|3RTgHH7ud`N)^HQzyK4Y*;OpvhyvzUblPz^CGP9Fajj#N@(#>R zTs8Y9qjgCPVbNXdd0NRjqzdpjDr4f~e=^eko{ybyc~-Yhg2Mj&>Te~jmI3p<^r;Qo zfxK_C-wFK$hRO3<6r<8hV>blzOPdG2AF0`AYrfsB=|-&7IR+`pR4{wj3@Lr~3hj&9 z*maz1vcgT^w4M@WMQ=sVv671=Wf^y_cFn*%F7Zdka(6LB`Cfz5A49HKPzSo6P@*WF z);OZiEokoIVD^Kh`J=(P~t$Kf>wKAX}E z4(wHpZ0M_WTzg*yM@*NEs?X%sW&TZOERR@LX+C&_8DzX_R)O>n#R@X&! zOW<*5_-c6juYeVzdJO{m^h39w=3VXKL=!`6%|9Lm&!PIWM%5U}_o>5wEHfk0QK#lm z*qt=+@!9$wA3a!PggNl0{m*p<)UKALJ>caF+*o1J>t3M0Vfz6=7YD(#hQiN}jy?PO zlfhQxo6%D-GuXkw_i zB(89&vx0FDT+LO_d**Y$0L#*-(KtsSI4(ltZIsvi&%wcm zWyNQ7h5~7a_`3UPG`Ak!bj}UtUk=WXp;nqV`B`G!CeoLvJ#HXz@bS?jJ!w@{To}1c z-;nTFwzZL^i4u7q|6#xr0G z=BA+Ui-Eyf_xqNSzC{9!haZN>Zrbo%bC*i|i4ju|mc~^|Qa>G&b47RUiCZUi|4!}m z4V`znE1y&>SBajo3KQIf)nSzvf7DjE*YS+#f8mD$>I!YO@84iv%kp z5Rk0BeJ3#ULvoo1u_wYdQX}z@%iYKH9;~!sN9f%3ZbZDNH+A}bHd?Fkk(>$l=Wc_e zrc*V~P=JS^DnvcilsbB9DzjSrw_PaBjyv13wRb(lrBTAh&pI>FWRhzWd^oC`1 zy*K@J&mMIMU$&IwC#<&L%A!j)4ocJcS~$35KUY0{l*~EhpF8s z+P6cgbMmChoCRhO=r7L8Y!=yZq+Q$T*!;o8{Y`WX`T=?ZUWv0>Qt4CqyrW{14E8O> z?(sLx#3`~>wM%#nRrfEwK01*kAP-~Lh(G*Y8{)!B&P+K7s2-SDaU|1_GW3DP<6dQC z;t|kZv)c@c&H4$6+=|P|!ea4Ag|3uRZ&IA1OGNR81+g-I&*X*H?;%>sfl6!FtU(=y zG;6iW$}Zy9NXFye?W-#i&WQ2#Q3kv^y<#fYs-PN((!|94TUS+z;3)^uUg6X;+Gx>; zB?A$(1Bu@pSx zkEe}Ar$l#FJ47mu?uJ=fZO5(K5hx&lsIm_Bp|S}gJ+p|@@H zXufgjm%;#apQMB&nnw^HAVn~^Ug@OJd9OD29M9kjktNRgBfr7t1PLAWdNKk6gjq%} z3eZ+HOpZeq_idH(EH#m3$jbV`)d(aV(l%Nv^Sgc*)gv-1^asSC9>Pr`8x-Nwm-=8v zG142oNOz z{K@hidiJAAA?rL~$pRMs8+MD=aCHmp`m@wk{pnLQV}Usomw-EmHzpA#FL{(`7m0l) z{H2orL*NEY+BnuO0jne+W;>kg{RoH_Z2H0Wd=BF$(j^fdDd^JZYq8_w6|{drSWVCk z`YYib+yDMyYJ+L3CC7Kr3n5UwWEwt_ctHT8dzPa_-Anv zIiCm~AvPwC449k?Y+pD#iYo!;fF|d8)nZ*0`4z-l44!0dJNB)q{AY%`INY-FS~)t0 zuik$=@e{Yo+fxCmKALNSeP~2nfZ`pD?vh%4NC)HEXSfp@vX@qo!vzIIA`SqG2`;Z$ z!jvV#4se%Hb>hhvl}A{eGwJ`xGDhOz1D_7S6~r5chyjgtB_OgzwW`VG$;yr` zC9vsC)V*LWvl+Rc^hm_Q4OWNn)#?W2{x$KZnC%H6ZZmqyOT_&S_z96|I1l$gut9b& zWQD)UY7-$|ATT%pi7o}&Q|zz6Iei0i@kE-0Cj$hX#6OA1ZXt?#KB-7Hc)0wk+3xVG z_rPC|BCwqg;ARkssVXyhV)!_Jom0^Be?Q(e&qmG?FocKO^YHVI0W?IFafR z*#Trhm^2bfHcRz7GQ~(5qzZz8r=`^djp|W`9}6Mv?wnfAqq`c3j!)PDZe82 zANkClv1d2H)gbB@=vnZ&Gc)217AnCgCVwXKPG~K?X0Cc0$K7^;f`jnyA?Sdk(M!M8 z?BvcV&JUD0q&TO^g0b9W`(Tk3`YfOy5gEDw5UVvz_gpSB%z7-);pB4FB#_L_ho zpsvTe4GZIwkyz0eWkE>cpmgVf22WfS;9>iQ2q(zdBul^gwYOXZRQXiUk^%YKTlA zRSEH@qWQwC>ZGN#kTEq-Glc$JA2jlFw8@`j|Dbc32M=r2sv1G_zt}X^3>fa z;d8*pq1?chpqev*a`T48RfG@%~=%=ui zX%#?02$0(jq{j~slNxdyL%6EVuXg$&iEiY^EgVVNIcIF41pXV z1Sropg%DPbBAzPpJ4{((6qL+@S6Dz>0zX1LQ%KA5fZ$*oroL|Bs`)~An$^{P$H=F_#|+kbD4O<4v3K`M*i~r{qf-8yg*F9h)+ux zpC*yElcx)#Cg^U6wV(quJ*YH@#VXDNL}{y-I1Qp zQeCQA+J)!wvts51u|#y4ZZjrM2A~d-q69)nl4g*2!1f=913BXNHsl`sA8Kx{5yQ3r z4ATmJY2DfXUDokdKWjZh9=qy!!m2XYPR76c~t@XA77 zd38Rq?AL#}0M6zh4P(}6`c!fapOqKq)JR=}Tcftr&)(?+|OHJ}PuozJC?L zZ3iBr+o-A=`(@rWV`&;WAA6?zKxwKCFDS$jiw%JTuJo_;D+-1el%R%I z``6`+7SpEiqae77vK^WJ*wN{14#5S8>+N}fZGqa&cutE**%t;;IW386i;bS^*k#l4 zv#fd)=P!OBa~b-G(JOllZuS)o^!)^g-FD(el_)R+;8oUJ63aW2oenYm8ZIL|ZE$lt zPH4_+Rz)t35wVH>(pPuoO@Zjc9r$K`De4WqA01B6;>W#h<%o2+;PZ8VT~WfKdCBUk zcZpB!_Rxka(UsMGc8@!8T=Rce4ZXkLxg9;V>91~r1*dRJ*X+v5@q|C^{}I;Co?ifo@bVrBhMRTwl-|zzBfNzOii_s>JUH6umv;i@bjQUf-4}2@VVJs3_XrHHAiO1 zNSVEPNp?u8d1}z!&;Guh3cM(obFg!_tXaU?Y;As9La6g)Kmy(K>C5RZex;q2d(+o)z8pERCu%{x>0-)MSJXnK-KwLf7S)$LcWH4$QkSvV3ARpP;;p&JYY8iAd_w-{5Pg3pf_*J#4X1niY6LD7#SK5ygy-RHd7Ao!gBt|xOM9=iPH=+@&jZ8s1KBaKyA;1Y5BzJhON&r*t^Bw1af{zuw|po zy|IJcnR1`Lmx%+(zWpYdv3qD$s8;`HiEzm^M*T?^RSy>bPS3{K)+NsV&!I;*{en zvw@RUoX`Yxfx}&wl@4^8EuYNq`R1A>nvp~H$=L$sz?4HCmVfm&%+7f zuC^)(Rpb8#o2GZijUA~nUQ7CLOSV^6U7RlZa!TJKQFilMyvb-&pjSgoF1@zsYH?Z0 zoLl?(T6FA2OwlNzrpwMkWCGC{%AA*yB#l8^X<=bOd8v#d_s(Wl+ao?^L^us(fO(1jDHX#Ec+r45ZBeoLGgKS87NcSp4gY9Z zb`&!{(b~dMIu?icxY>rnglr^~&1jGx(ed)Beak-n63z?>I0%x?HzHuH%o{pkafE z5pUJj>LJFj2L#P=Uyx2PJn8OEoG(8!)aO|GZjD(-aa-nFsk2jE?iQ+}Z4LK0l(`1R zPK~9meI==$W`My3<|QJpj;^aLy|-=IYDD6H)Ow3qjj^MG3@UfWH)t3;jl91veUKIf z9FAD~Xz{T-Xf;r6_fF2`yqR=dd`2yAx~A(k@-DiGH*enLsOUrGR_l+MGbtHJ-3+4_ za0>x#+wOyNH7ZML6{}Pr&4gCvGFn6#C&qsefx{#vVZJp3{WWP$@oc!rABpY}nrW4` z7Kg3GlpFb8{_4-Iq<`!U*CS?WWHlt}n7@N7^kSrh;`E$qdMBDjKmoj&{VLW4iUYnm`O!F%98OXy}>2DhIoTPO?W3Z5#eI42lXAs9jMIx%7r<+V{L&OAJ?G za3uc`ROM+#JUE&VS>g$^6vmo^JmNRBgEN#AGEL-G(DuE zkeUoeix@m9&xI==Ha(%r+>L^f)SYNoX&NT;Ff1gM*en0FPvOdn-Eeqt|53dWr;Um+ zPo}YFlk141IeN_OS0^y@D7bH_fH|K9i^@musOJ^WC|wK3&b3abgmy1KZY(tJlRZ)G zV90g>gG~S%#EoF2jPx>ah5jq3Uz%zWY0Mq-7RsHBImGhc+TN~mbbHPIyP;>v#*>)a zVx7S``#Ao^Rpe3Ts<>8jEb`LA3|g3pO6YU_uw9dv1R29is??1l~i(} z-&fkN7dV`(e*3Pdb)i^IzD;$0xS;@hse_%t0i)$>&)7@fc{+w0X5Do(%XwJvsb(Zi zw1ze9R=ecz@Ma48o^)^sgXa)Br}b*&nQ(f|emgHc0|bHi4k3GM25-ew zoa{j)PEw@e1nv*zExi1p(}p7a8ywgMAonJN$Zte@jMZfC_(JT_paa_?-m1j637yq9 zVq%W7O^y&^2yqBS*(>k*i=V(eu;T!|9!ut3f8V*Rc@s-x-U)Eq!~rK3=Pfd1*d33pshA9-l{(C3@=7xK zP%`m*fMsw$2Hx=Djm3jPIfCB(Zz~jEO{x4X3-dh^B#UiZ+S=X#+QBNmn_ONTT{FAk z{uH3@L*CoE0v7;{O)_KzT?m8(Lxlq{vT(KIv7&e+$5tB%~rsP(m zVY;WMG)Ig;NjQQpz+rg3h{6>U&#ncx33eDMj~)P7#$7^x1EZ{dtV96`Cf?;cT+lk+ zB6w}vwynv3O6}Ih`xo>QlJ?HOT;A3n(TKH_?9e5%?3~o0xV-r`KQ`Lk-+F zUV`U3TUWJs5E+2%R{9KUdve64-QsW?`Fs;IGO#3Oy;b#E>AN33e2|ind5yOne&C4} z729}d?;r9BWY3%2c6_=kP#tqI2?i}(0-0Al}ISm#2heP-roC(frC<;{#IaZ11h z-SvCGcC0!bK+7$38wSulWX}t%M^2KH1$$`Xx2p*A33PqY#Fm?QGmygtz|j$&Z3KcM z{}0m_S9lT3!S4P8%)_uv4SQDrg&@+(2NUar25@o8a=;iQBvq#nX0>s$X#smj?&ai& zW6A2a=?T#4E@0`Zv$@yoD=sXOC&sMmSd~gPNRYP?FF?}-E|>&Vva1*{YjbC3JxCFx zdo0D$4AO{)?ETGwQ}lLH5qEob?9cKgLJz`$zaGKTB6C16oIGim7vHVxBYwqH5P`tL zJQV7F2P7$vt^t^TDULs10kn^F*91_gY7W)%j$&N zkihS;u7(Eh<;xJ@;|%eGRsx8ZctsatRR_sVd|cCLt)8* z6AVYk_yH`-2<{KK;lrU)@IDUMT7VeEzlx!B-GcAQ|tFUX8%R_56o?(f$Cdw;8X!J;dOvL z0r2Efpi&5;03TuZ@*eL6-WmYNj(C6|j&TxDnAs;I-t9Jy?XUTfT)wn3f0mcXRTmfU zLSlw}-K~NRcApFUU}TK=N5EwG2B*St77Men1*PtE$lkYjiAv!Pg*Zcg4D5m?zFcm= z(!Do;Ik7E3<1h(k9n^;fJI}Ql02%R`6NFgY2U=)H10fgMmTT~)6iSmOG`-oPoGnrvwaC`@X>ag`DD1T&aHnJnxU;cwQQt?DtJz2O@r5@}1<0ii$7KT*L8xfQCzJSyzBm+70s+;Ns|+ z(1sfsrBucwBxD$5;-d0J17RA|($%Gh)J)O=8VIrh2Cogm>}S}P#iTo+@_|QAEsAx5 zx)B2>L|1rZKEQoLV+62`j6BN3QS{=T<>lo)$B7~q=;;@}%YTS5eFVdxf4-Eq7-*YO z=m2SdmtU8amApJ{@n`yvgE>17tr|U^DX&8|bYgXV2;~4$qfg~)?TQshXwY1j4ZM{E z0TL*|8ZEyvda5N|2W8D=L=&72|8(MMg*CzOQ$R|?`bQ8#(N%?`q`*xF5(`^0(>)_N}#`!u&}(mtd-R290wFW{E*;o)Erpx2urg)ZGtq+UTUS2Hk4ka3szY9vW?;((d&f*hHCfrQ8l zoADNrX_v47!0v0vi`bo>ZyQS-j(h=4;$RblJp>0({zrvJ`@A?j>j-cRR?3VoummWlp>H<*` zg_HEL{z=ZU)A`DkyN3kB40zMjTVzfO^J&QoAq(J4r;KXTE-(!Os*i0B0;CNxv zO%0kRGCEbG2k%Oz5@8ek0W^6x5Sv*wuoC?`f+2kFKcfN0dI#M2W@Pi65gZCq_>PU8 zLs^5Ml_s`s`@^iP^D(3xMUY0Cj7I0K^#s1#D0on!Y}&k;SS)e)tHM~D`BqrYNb#*V zc->JGp-RO4J?z$tN*Od8l+)xFqfRJ53P%N{jdvYC2Vnc(FpHRrc!u9yEqQ0KFs~l} z9GXkVI&AX6t%k)d)N=21M0`&orJ)V~$10ofcL2w4l#-x);4Z3Yu=bu7}hGa@?n|_s7 zEtF%@V`vn#^%l+r%6!qfWNa^aC5fDbm&VCFgDm#>ZHo_zDis%u+E193(do(+L`VEG z44#1(sKXoxxdUB2Dl45`v1xFUZkXhaGFM7ChbzJF?Hn;QN<%4%LV`(H0Iv&CX&dgz}~lwHcBC0w|gU7zqNP#|J@e0y{`1;_cKTlNtehotZZ#WP;D@ zb;#^`^70I98F!&mf@qI(?Y~awd;@O5#iEq zGyG7BGhC~SZJo?Raz+-EKpfVI3~m)55x3_3OH zs;n%~u`k3>;lH*WVT~UT35n)>+>eIAOq@NAPtl^(OfXFAiD+?D)Wx~EmorJstd$>S zFacDDPHvd!Yj=t{<;mW(^B>I=V#N4_o+tUrnhp`gOM>C5^y}NCS()73+{P6p6fRx% z?!52}*Da$H`1atS)R6ojjJ1B_?E$Z>N z<}T)N+w!cks)T&QkNM{1@*%cng9N;SIM_#9TO1x3RUg!vTzWmJh#Uca#x*}bzjwPg z1rykB+QG!4YbIsk^{?O9qS*t8O%dor(_*N>{!vo|XX9_y>+nEk)FVa_V+$mo=qnnnf4*!U z*xL@tW1piBc%VoIunp8{@!8w0MtyE~(hVU1n!dN#X0o#OcL6#)pH%Llx{YzgH?>03 zL-*t2kbU^lQuT$Pok$KXvwzVg+KBD9%)Bg{)m~n_DV}VvU1QnX>V4D(ml-s!ORiz}p+kleTRk0`r-SyE_i*-Z{zs-Jt8qjQ$GXL{2e2eH zvRwK3>+<8H{rXf4Z-VV}%R=>S=#J9oe2c%3bors{5!H_36t83AC$u)bR=OC&#$Z=Z zqkef4J3D*Id{kYZkb3ETyt4sW^;T=PUA62~vwZEa6{1@8$K#(Gml&QrJE1#xZS@-& zBctQK`9bKK3~Je~=jaO|Tzqvjlh?eaWwLhQ=7pHq%C6>OoH7poe6=sricHjrcu_ewr+uN*7P%TqBnrfgf-`6c1<+}7Ix|N5Hqpr;HcooKf4 zrJ`A7HW@L-=BJpw?4KDVMp;qz8eJK6GFH3zXT@5ED& zJ>IYTpufv6H&)|W|JX~7tCO5ZzFkE>W0z^abFF%k^S9EN8U5or{HsG4{L=d`-(0XQ;BuaX)d!a9 zys_yQt~w3NSjai`igN9Eb1GkhbqepTvAohtM~ZdPJD!goW);Bb9%!jpU-6K=oU!+D zjJYLGQY^NCKVoiB+u7u7j;;{F6tw^*HrxeydCWl*_%xFOhrANAtYwsA2DIh(t6656 z%G>=6ABUixPS{GuRas~JBAZ`iU|nzzoD`4Ij_E(S$mXE-BGWXQvD$V}XszE1`>nn* zU1wr6p7x1eeQP9gPsj|#%YL6T9KmHVle@yS)O&V4x?EWP#7tb1*W}aBB+2r24#u$? zNrU~aU$gpPo_5mQ{o&{0ZKc9I=Z{mIkK4WeW@7U5ktkbWYRgchyUo*cmeGnCrip9K z%ZiSPv3!dCLj|lE?U&82@|T(HC>{Uz>++0DZh34R=TdqE6ed9s0}hqs(}Js+PR|f|I)yQfXREk*Rp}qwI>uUF+M_*Q=|gUk@f+!U6OTT= zd+4ms>Dafdd8gKx1dU&j4m-c;PyJ+ynMl}$FICBu`pLreKJhkRws-E2^|dMh(nDbnvyOdjv}%Ws_0tP!JueVD^eWXvq&dP()^sJf=Uro( zmFZE|j~wEa>}+gL(f_091YtzzRs4k*=zvn+_%;6!x^Z-U{p7QaNvAA%)R3(R`VbPL z=`Q)XxE^Md91ItdQUsh1`H6EG8I^*52DB<{qzBxJ+iGgDZ+!Jvo)*seFBjlFeVjsl za9p2wxSdp}RKz4;Ltj-n>Y>i_wAA9bDW_NDp{1#T4|z(NAN4E}V2@d;NybQh#|G87>@ z+0ZhOwUQ_RS^ctQb%xb?ICi6aPxJ*3#Lb0#6-**#OG8c$Kh~NTu(9hT{iIy77 zE%hW1G%M8($&GLICAV;L_Ji{U$O2e48fJh*8ZVD=7_j-L>!Q?GP|!vliDLb5#XdQT zW62kGou^tC*}i`qxH!9Z57*Dy-_27UYxCP*y1Kf{?CCtZr}|Ry63yiM&d6_*>n&cL zHMNiv*`e-RelGLta#{RRHU0{MOpkII+i<~ zFyXD*;eEh&vcIsT$!+%3ht2;Rjy6orCCTn-LB|O%2!OmW6R1a{0^DkQLIcnlPO|*g zwgbzaZUY0ty&+mNF5o&(&UK{g#JUV7-J~L5G%zY?gY!WPBU^l_$Sxe1oukO6=K-b7 zru|6(@PGu;wP3R{%*#oi4ZISHx!c&ts5C#wM=Xj5T=6nb)L-(FW{ld4C5dD#fIGZT z`+&QhEfkm7pTsw3en2p2ni#PjCcWNA^!1KYN>Hqb_ge6~EThewV===T`5a5xG515$9Xy#H_3z$2ap* z3n#qt`BRvXWNOpsRc@>JeO)e}l7_zB{O7U<=d$m#H1Mq&wx*mYKe+kj_kqT%TiCD5 zN%=?Z9!!4u2nW=&a6-_eeDRy?_Xj2afRa_apGY1@E!+>N23skwqh}``;{=f#DZ?xh zpi(jy@Oc8$QDLfDhdC-_-lVUAyE{S1Nb?TV4IoCqE-z)=a111pA3qKPN8amqVZsEa zrTcl0MYkrRS23r2esbZ+lkG^i1JL@Boh+oAN52g4XD>nO6&v_s>+fo(VVbJhn{zOu zg`9s3=K-sNANByWS&hSF6%S!{qQ{XS!&7qN=dg^7Y<0=Eb$?T7XTh3n%Qa;hdBb4w z?G1hJ(?WUtr)m<#B9*(s-d^3ZR;i1(rLhBc0lxixOPZ5k zPkFVtS6MaW2krXiU-!qglXI7Sy#3akQuYoJE-$;KnG2MP4Ry5L<)y#w!UoC)~@c4FNT!pb#d8?@d>}k=q!2ZxgqLz zNO{MIH|ONobZzJ-!0o_1^?)p?(WBFbm=Mn(%kUZ;!>vwrnju!U3B3*ad(7&SIJR|s6}VGnq&d4XZ>cx7yJyGOCk z59O+XG=(qQ>cz8y%#;;1C#AEu7Cvb6*m2c;Y3+pTkED_>%TGQGw4M3dw^Yz{>TAHe z7aS+-=cK(_G?YD+zKqKEi+i&dADmovO(@oVOhJ|$=;<-l$jXx1y?c`YaU~}hKR{JH8v+{v2s?*8 znr;=GMrQz0!Zs8fM^J15zs4bDB1!=9lMlvL0W09s_+$XNOhkW?(JBUBffAMP@Pm?l zS%5`mw^ercGyP^_N$7uNl3#5+$ZhJzE>3?>Vy-k(=Bm!q#b+HOU72f6^=Zo`4qY~) z6)y{VvhN91)s9_HXYEcj1(v(Bu^8qX27lc9?P&3&c9Kcy$nZ^FxsOh|kAIimS}qS; zUQm3?RrkSJj;48AE}!aporZdfh1kjx(>$}JDKX_wn)cY{DOTDQGow=eYAI_-Guw)$ zV&QjJ^r{IvzmB65JLmN_?C5YSN>O9#GUvIsarCo6s@{$d+nDbBZ+r=uOKyD0Zu$K> zpg4l`V+~@}@^tQ8zg$%fa;2$>NjG>aLbqRnAzTe?5+ErCs18_x3f!LT6~&A?t)gOY zd&?*Y9Q|=uzf%8I^-8WG+oH*qU7)#`jrLbA{Oo~gJ{4@Leqp^90r>&ZktEo)^z$l) z2+(R!zwok02Mfn;jG%U|xd9{|Vt35%06G6c79hiH0MxU&f955K_dBx>lCC3`YXTo9 zpV}2f4-7E$BP!Ztbg0myKDcbLZlp$|)GkLvo9GRi+L98huldeTAR$7JXTg z{oD%oX!(fj65{rgP@^6yRPsJiZr@oHR899ew3C*ewbe+y=-#QiyL!5hn9Y?|gmFJT zF=1OuThPl{5jzkRRP}Kp*X!-TH36Q&G>?Lz3bUm->5X!O~H@Qzsmdjf@Vw6u5m=jEr9X$O1Hl!5(iIwi<{3 z2Q4ATA0=GX(2pOl9Ui=+2Ht>&#v5LPpYjUa1OshgJ|O-8r2~;JW(IS>3%$III1ar^_?S z`Rs9zD`}fskGIh9RL>+$93PUuwcpi;rtC%G$A_`>wHxey!Ak$Yu9Cu$Wb3f~hw}C5 z3tAYPW_2~)v=5qlH0(P}|6yo>yCPB1U?qjJx%wCz|DkaKgIkf8pFBCjSDt$zhMTr| z21AZcN&9W=ItO!@i*2g+Z`_=f^N9HwnjmSz(C&j=8WUmf1f`GLpPXDMvkjAB`4oS{ zN5x3ijG{_$QevyHZ}SP`}eM#LfWkjI&pNjshQ zOEGk}_U{()(`YW;N_C~^b`!_GW(Vf1&1QQx8=hz_QDT{1$J1YbIn#CP{vHd;4XJ%2 zbFra0fe|ce4xHJ?-q=LcU){=TuGxNcWNQHJw)J<6+n$%$vhw8{F7H<^n^uVVI2dkU zdAplKm{!g9@y(Gvs->H4v$L%wHGOGKp1}~<4 zTsapPcn%w0kKm^J6daPXgY}@S<7a*mrEa>(qejMGR>X`k6A@-R9KnuwG~8e%qcSyn7|&bDF$VSFZE3uIIfklX=|PFe!1% z$~JAkGYZ#L^fMzd`w&ullpHW*I3jBhz^}y8b?;$}TB#vVxK2rHb+}UHj+FU`9kO?a zy1VXczY&Q0s83b*OHxO6^E%&YyVjD80&K(o47w`$)$>gvEYq9%aP)w)&SJujg-+nG zXeiSr-|aB5NjJzelD_G$1_7hcZJz=jRzm*ZS_04m&CQjxnoE0moh~IW>t#cE~vA$i9{p>t7dHpWjd8`#S66&NXY3 zHq8dp2?@pcjLp;Ygc;~(Mo8B4m*w!v+<0f&yIWqD`%LD38V`2LM57Fy;a-IgS4COt z*QkqU(r!88Dr2K@U7vSkok5t8TXNeA%TgB?p_t$ZP6I~6eStY+t}Jbh4Kc zchPCA@OV%b6rv)u@^*3(w-77a;NTB_?S}617s;kZKwjUeJhZnNKg0bzpj*G;%3-4> zgDRs0&(O+_^Agu1MB*hP3v%YUTlc$UuZg!cP8Pn-%@VKereBy%|LySAi-R!-M8c?8 zhjlmV$TmhKT5Ri5Glu_G@Dv?ZAh>X*XKl!dzj5%OBIS+ktwWU&{2Lg|8ul5ndI(SK zW$KjN?6qUllM5A$`)Lf<>I=V@@JS9EInUG|n9OUwB}rCYqJvQ+c_iqA9WC9iY`Vyx z9iB2t*ODYW$7Ic%ZnxjcT$K59miy$fV!w-fI0E?9)H;hLo%xt)9bPy`3cfj)Y9<=0 zyM29Duz7Csh@cvESGZ8wX6MMMGbzh;Z*Lfmk17<8-qqr`=3~{?=)B=gXL|x24`3nLnS-8MHg#Bd_or zi?!^IS-v|>Sd>&9@)I$Y+k@#%VUwC=>BQKBtSoL?uYHC`ohpnJe|vgR-rN(pZC7BD z6M7(xVOpEPB=X?PHE&Z#N;$H82HZbgi95sl`Md&Mm$49K_)Igy;{Ird@z}(;$St31 z?{$9){X8dS9(R9`Lu2LWqb$7asVwsb%5;7fB4-jgt7**sslTIqL#YoJH|gJTG?!y3 zi|I7a<5x5i*$B#uMSle5Xn3ufK1i;C`&2j0dHSPC8*)sk;MmYqDx;HvX6FEx$h}%d zhf8j5@EnL|n>jj|e8k9EqjVoeQUJ}Pjzzm}q)8Gxw1@@KX$HdfX$(yU1LKO8PqVB{ zktNv<=a`A7j3@vOiKs3fRT*D@J*8G=^M`emOHU_QUU-=u^xq)5O0-Uu{(Aa_^NjSO zP8Ina(|dhcR=aX9vJJ-Yo4g#b4-?iC@{Shx>aBlTscQRj_Jkw8(liXdd3ENO?80S4O9L zW^XF3j$HmW>f1oxYn|`K1SVaemlZOeb?uDgU(>`aNV6(*2TT?X*HvGgP>k}8fBi~B zg*;*p1|G2f2hJw4NI>b4PByR@`?odfs46 zCU^tOaAZ){>|l&`#W8`fLq5s+xrX{i8~27iFM1T|9>Yu{%W8P$p$qNOPj~U#SsG(| zDXNDJeR=c5_6&xoqj$=)U1em{=)0NT)-ow3-jlMwY0VF}jeKD=Jeg71=gT%T^aZ_5 z6o@!{JAJ0MnJ4LazxXDmv;khLyzr!Cp@X`w(#K!-Ct7OySba`qS;?6At>?2WE30o3 z-DGR)4cB3lgOg86y_zqwn!cF!klFk6s_B)U6JLcKJAX^Ay_Y4hQ|EdM^F8k9-~Kc& z;@%{k$PU*MOrHBF)nN51?WRpB*PK$TIknn_Th2)@4xbv_VU*T)Dv~O7G;t_MO}2D( zY<1>9*+Jc!$kVK5FBqwrRgPbo8@KJu3YXj{pq=qGofXdt$Q4Y*GI{+(mr;)*fW>FlN- z#};I+9?vvPK9L*VFu+GKlSV;_>haR0F~;jn4iAJDi$3d=d@;Y8F)uDIZjjwZwr^ST zuDljw#m65V@O-UF&gay-`?+7&oHq|*Y85kikdPvFk2`90`TPZBHLE_Oui zurf3fxUcnnPL(4!XGn`5Jq2u|R8D?oOSfEU3A)75Tx`m@?<9C$uLGN64FY-@GrE5% z$laXuA7y2Tziq;zvvFg?OfvIsit~YJ2F0$xt&x^ojI^8wP1mdzU|;0^u{+$rzVqbz zEXIcs!>LCYd|7;{-Quz2mX5#AdM%&jep}|q`k56xGWShNnGy%w!MbgU8+&_EUYC{b zwni+_6s3gi_i3vc4xPHE9oi{3IH`N`K)A@qEdFrShsQcIQ?f+-o0%_oZrQhUd|W?j zRMDs?TdN^MY}1tH(+^j+eCx@|I(2^YmDB5dQ#!7gJL&ABD$>4hBhoaRkB!GPXGH>Y z&qoJvr|M}xZ1X4(rrVfz(OHIH%}t15Lmi`9%8D7|ZV!VkKOgz|(TtAn_PwT^29?X1 z!WSmaTbb4?7~RYJVYe@LwNjLUx=+vm-FImr4*$&>iZ}O5ViIyk|NP{NlK#zxBC=bn zlPW4~g>4Mhe)x7!+3`zOZGm~m8OdEvMi-YuV~jN2l=i<|^P#0N)T}{cBcqy8XnaUd z>5FHq-8I~)M)XZjgM9|TM7q@4QJu91_?eq~xhdyHk-Y&vTNZU|xebeXDrJ3qGTXM; zrqCwmC12p5Qqj~ouiE3!vt*!ss73v7gpf>^vpK6qz)L%GN)SuGOvv7Z=T_+t8M6vx z~Jx-JOSnS|wmz7qGDH(g2<27FzI*77UX0!y~t2}(N^^Py6ywPI?|MVNYc_VCR zrLJeui)tEV9TYXbTk|k_W$TTt`}o&BG=)UwPXDX)pJs-|-0G3f$IB04!0K2vQ4-LG z394swf<#kf&D}#PX}zao7|*7}-}Wu*3$yV}7GE0W{Wme)>j>F)_4(`9b+j)Ho<6Ju72q1S4w`&VOw(WO8QtvUvG2RO0Z=ZDb!mm zzOhi}iNB{UFux48@i(;M@bwH)hRqfbdf4k!V}^Zf7}l$X1o)Pcm4&ua5^Sp{B_)&J z10_HbYI26_bHGU1;(+(^cF;u@hZ2^Boy+|r?jBOu*WGdVQ%*yD&G(o%FDJ#*%zN~=!(vf&gBy$JqwU*Oc2(4RovPEy<-6@<-E?e{qt2pSudu(p z`jKW-<5bar@#D%X-mZ?L6D>`wZZ6fo9;Gy{o-R6PU4P8|QNQ%XhCWBn(aGrk_S2Qv zP2!5*>3#>_y|SR9Nb|`+PN)CS>-NjlS3drnnf{XErXbaOIrBM#@#KL)#;lLM*8<~T zIm)#v3;g@ZR*FUd$41=%>8v?ry&5JPwb)%&1A_$+1HsD#vhhl&^aYf@VAfr!3jmR8 zH>i`?vd+?pYQ#`PgX!8KLCC&V(nNg*GrH!?U7KA8(VCZ(MBxm8zr{@5w-E-NLY zloBB_%1C4jk*$(l2_c&#p$MTu#P4zL_vbx+U;os7SG-=&*E!d@&h=PC9${cO0?s8Q zK@ZJx>JhJ53R3dJG4O)H&mlJ-=o4U+09L;yclqRCWg^4^&y# zVTHDWUq@rvWzHZTFYR^{j4#%{;+`_My&^AuGT?YZ09+!-jD(Vmxf~H>+`D)0`H$*N zwz2hjzP|)98G=hbnR~+m1LRvgx8;e-6=3*~F4hp%YSr}(7&T$g_b-4z*GQj}3dA>p z8el4tW=B#ai98D2Q_R1>@q~D34m`kTz|(-~XJxq}aJxBC;kaTaSM2`}j=W-1R?Au;#lMe}*Xq zaS4ffm_xn;@tDlvtLH0M|MK;V!G$YJAk7X0M?7uJE=dU|^JT#n=z z5j_P3H78+UW5Iw5237v{UAxji>;uCQ*#J<1-BGfF)P^YCFnePdwCJ*dMq;^Y_cG<+ z@~GsDY#0DDSi6GPbLBnI8^^x0pvGcP^!D{FA`P$!FUSYnJy@-}*86~(3l1%$RRmDM z_Zdd1qbMvY0s-|G$CZBeaZ^Ra~!K{GVofz0ekj z`V8_aprL%QFo8IPPA`ExyY~G+#~aBLm#(EJ`o=!^CcW}^ufou9a93qya~K(9F0O89 zk@bw<<~zm)WlyH0_UuZ)?%WPrQ6;!kIyWR|61h?|2F!1kEPXHiok!K=;TqF*JJuWod(}+I6wI5y60Z0Kd*hX zj#53aPSr_%{lUXg;3pX8%Kx@eaD&*!D37||ek z5Q?8@8Fl~P4KB9*e%Rb3Opu^v>(cDH$06+3cBnZvLrFU1eX#zL@fTxh%=@jvOdst z`y}A61GfPbD6otPk(`Kb#x;3&QM=Rpn+p&lv2H8l0W>0GmkD$Zt}9VPCG!!m7iKOL ziWggOI3GQF^lqj;HD<8DlS@lkZPr?X@e3k;jre}|g#0+kg)eP}EN?xu<1fYD3f*aQ z)_F){JHFO?e7PdE3;cXl5h12|pa%~sIo2%&lgJRF|B&ls* z&bx$G9#se}zdt#_v4{X>0E2^sM@&JXB~w2gxD?HXrnAqmeSrAYg7i(CTYz~Ib&o~G z#gHy5Ke^s*&GSC6t)Yal3YIUv%fq|dTU!-n5=KFr1&tVkce1`9Mmz^A9TnY6kh-5b48p1!3M~Ij@_aQGky3iQ zFkAL-t;_Gp9(rrps2Sc1{{^mB&2?7C^H#=JF~OT&%E(g3&IP3bL`$p~90{1N-=G7i zhc^UjKFNiy5heaG5Dj=~B>N{E^2F)}3?#$?(zFf45)Heq+_5iu3w#^-CJ=2UfTWA@ zdh)w;Li>K{y`B2^Lq;Wz8wAJxhklCjxy`Q0i3yDGPsZ}1G+;N7%>$x%?nHsl5=q6W z!jv9DIU9WTx}6^&G$E=8h#)9Pyf+|5cy17Vf`Oq8D97rl@R+oQqK;73@%qW9iE|fc zg||Gs53uTiv#BA>2O-9(M96^u9f=Fq;TI>;(U?GuadGPThHNuJ0lzYR1yQ9XpVx-o zIGy?O?3nb&^wiQ#@5MbPb)SZ+#ENwNR(oQ(e<-b2f-Ky*G5i9%O11fXN(|AbWroOApF&HDnTA4sXPQ{W>)j`Vsl1$$YxD<7nbm zXGK=w05k;gCJ}jq2kW48_c;eRcA=7u1)^GvS5b;_yi@3@%eEjUDiG^_jwo70MPHFL zVG74SaH4^o#Je?(*(gd8|$+VM+S@zMWQt8x|Z5qily}vmu+|-SPQ^qB}%4Bev7d355`ZUGwZxWbt7 zcH8s&Sl8;U&pQ%S^l8a}DFP5m{ob+WGOsla?_PoY)I0q#fsB8_Djwt0vx2 zGV}cp2lsselg_px!C!|d7-_hFo&1<`Cv|3H6|0WQ84HuU;z@dIzbWyueHdK#eMg4s zg^&jUj|O^OtLEja-12EMKeR24v??;@je~nL z^vm`OS0~* zH~AcWU(*v;mN%ajd$Y2%<$XKzooV+oPs)AYS2~T3Pcnx3^+>nZ zt|Scan-9`EbK=3-3t@p%<|jmt#!NU3d5n7;5zOIIhZCgnMbP#Or` zJ#oQ`g=&~aL29q~ROPOe!biRWpL!&2=8FGy;bFbcuCH!*v&^l~@PMLH$ru?@*`ohgw}Fr8#w559U|FHTKPwv{cGrJ*5{r`{4)ECQ+y!scf*0r*Y)xb%h++rK}2@Ja<`?Vu3;3^ zx#C(!s1-ryGJqrsLW9BiJu@F%*bNL%njUoQs`lh@nlv3Z4AwONy?SQ437#}96@ylJ z2jm3TFR2T0m-??!3un-}9VzrCT1aD7*KucKIOE>tOjpBPw|j2`EHc&OEfV5C7^lA! zNM|2Av=S=0sA1h$V5`TZcKguAyHu16RMcx~UpBp*zbL$ZfL$koF+7NI>}Q^R)@{Y( z^L;H#zn}gITb+}Q4Ca}wTf@Z=xJGdwMe^aYj6LcM5quH+Oc{2zBhCG?zLkm5(Jaw1 zG1Aa6LL^~96F|r&KbHPZocZ;V;HJH%u)uo@`Xp6V=+J7->n_EAG*j$t|DguPgj`-F0OpPKHdTZ`KhemOH&N zl||X>`C|4v^)ZVYnDWLn($i24T!Fp-x2gW66LeJ2JfKx^E&IOm{hcBo18?}7&vQ%k zRINFRra~-sj*hBb9>$`_c@BK&>e>^;m7Se^Ly3O2Y;)_eSIoT$Za9Ik51|m^V-mNW;i50Bb=YC<)y*7(QXOyT>Q%23Sl=omw4a;Oj<#F{|=!!LDSz4x$I zQ4F^c>Z?!BVhU2>)~zjYQm^BR5Mta+_0%!0Am?85*?xsPQao$oO{4}-#in8IVCU?7 z(cyBgun2v~4PB;n?cy5)l+c1OSn9v@mfwxr@dYW(OamodCU;BE%D&(chSUOWQFaw3 z6-XQ+xH0Cc^G56}?bWQTDbL3TwqdAojN#j*=#!#>CxnJJ*(&>Uy4J0E(;*dZLc6HR z!Wef<^u|7#FKyc$bvY7_xi0q731(7BHjoQ%@RDD^+$tUzjQcAFp{VV23e{g+Iru}3 ztNeuPp=+>bKLF_&?oSIbe*6`Ki&0lHW__kln)4P=2UzUtE8a-8=C#ATN}0vQ%B|L> zs)mM87-HOGXo$Uxd9>9gy$_Al(IF`U)X`c=7D`dp22EiCZ&-^}%5+k!zb;s>^Ao*# zvgb?CIt*vRWD8S9GQY5RQo3f{l>|A{LP0;xnIHf8TA1XzpJoRl zhDUNt`{pWop3OBdzM5Bjdzm7eH?gIHKSReQMtW;Y=<5+`ubE5z%*k1C5(dNKLI||j z&G0h5o;FG6wG#yhG}E1yi1riOx39IkyL8H}xu$ej-HrW1fKnB6di;#Brx*k^8Cl~r zv`F))5v9IWvwKI$DOT2-LqYOa1;0oomN;G6_tDegXSW1vbRb7?q|p7i<4N{Y*MbS3S#}#b!@M`^W$4lQOw@*i4zuu1U>jlvjw4;`%xCa8{v)Nq1$r$ z8}G`a`tdfJg5xS8(bPANWJIXvTdZ%)k{a2(c0gR$X1k&;zv-uT|J+L(nTK?lR7zA6 z2d5jR^8(qM%V=v}i8fN-3}~^s%+WM9hpK{H?y)&~nt=Bn35PkZ=1$zGIR)p0eh=Q@ zHLNnR$6=g?`fkbDNbes%cW7Fg>-;~8c0F^(ngT83r`c0e6Yhnyw`!n!E6Kk(?D)>w ztve|3q||4coBkX)D6pKH&eE&2S~6|ENtD!*t%ZL@b0?pH3d(fyp_4fz1>uokEJn+?L-DOcT{t|&5j-8 zd=or(3PPQCDA&-t2FMoh(Ffh2cYM8VlXd&{pb>`F3si}t>G$($yCgK99CYcXPt0Do z^_9oH_16_WwR(%O?jEi8PkDA3^`Pn`o#C&F2GD{Zr=|vY%TEUhH2?XrbZ|My-!3x$ zju>{&giNdL2d()~Wv<=hpT4^vh5#+XSx;*s$cSbny@#8>p6Oa#IOWQt2uiSbI)lLNtE`%dIRkE}5_Vbh2Hn zgTuSSwW=b_U`SJ4SDg0@?E|HJzTzGIGaj{M6Cr;-#?X!k&2#++1%kM8a&jOXG>*I& zdM-9?se!4lIDa#v7A<5Zb>5Wi#qYg+)xFAQD^6a$YIVlt^2WsE&szMy1$vYc$V$OlFJg*peC@)%^WXzG)&4u=NaKz*?0Lufm6k2O%ujiRC5)+qkL}42Q9nyZ?5ss zmhz7poX(@(u$xnxGPe|WO?Wb@MPR={n#fIjV~v?M1t?98Wm)d*uvDj0|PD5O0x{B_WjB~rsvpDQUMEsf8R zKiI+Tt2c|ozKfp+m`bkbcgE+ujK28&o*=(pf%km>mJYk5OvmtJucw<0Us`{jQ`>F2 zSKyuql|%19orpn zBFf8AzwBr{gV%#6DpCezqU~9=y#)f_N~UCnoP!Ep{VBUv@vWlykNamEQ%`;0?22Qf z8oZQ)1Ht@}`%;SPxHUY(ELZMFs*GJ~mdYAyFL;zZVCq!a_`_pqNxZIjVujy4=E@{Io8^Rc)O@19sCx(5{K!i^7xOl%=yUww zZ9C_ED*Yj=y?^!Pwno#|eIA&OdRyAH8viDG<4pt4ElFaPI*SkU>T`pt8tUGd-bz*4 zu4QGUY3&j?P%MLCyF3IUb#5Q@0!>;D?#eQ+az@sd+68x1Ke(4XLLH=& zsj;C{;gC{1D88^aM|v4-G+-FOq=JMUMrtZ4m(Mr)3Wqw3tt=VEdAcamC)OA9alWD9 z8Bmg}n%>sc@v$H?aAW96hOl$DRgUm6Fwv}!<%K~>11!U!7JrhP%N4{0BJ-0Jp<9G`= znZW4C%}p*f;&!F_Lf~Gp5B1ekNAhieHuW?V3Tz#$i@2SozWhCX^&RvKq*Y=|JaA4J zGs8Q4LEf;-;N3xcl9f3o`Pp&#JVt81?pJND)gE*zT=X#5wVZD$&WXEUe&FcXO(T=O zl6+28(-K|gB)yVc$2~!79M-EDi}S}g8FaW<8;!5&?KEo=*dFmsHpr?j{Vj9&MmEDI zA3O!}nyM=Iu5PC(T{Yj~w|r&R?&tkwDav0~ebv`ns;0e`SA2{YDx0t8`o(Pst~#0% zP~q_Tai~yk+}!Hdr7rNV|MfMzdi>bn3cvt3s8mF<2WBcW8<+j<UO))ty#-eY4r3gepomp*YoMu3Lc*aRHrI1H@?W3P6e zZ<_Kkp#Bg-9q50IYuDJok^yKG=FP)waTp(IUH9Ub5ntr4#Fsl5p-S59`#3?aRK2eJXmQ?gqL_^qf(Fk27g} zO+Ww6anWW!q<-9ZFK6Y}MDEjZ>%B4qt#ox%C{=E_r5}G*D0=H;pK{G912vA6Mb=$A zPJeyN@q(>F*CyQR#V-*^j)5C zM~Pb;ulXXbas``2hwxDct~nNQ%=@6?{+P!V*}=BTXD;(=i#|$PJV@o3#(TcKEb01H zmfG~7`#05uLXK14J5{E;j*OWrYQl3}v7008w zIipi@Zk`JNDUVyj2G*nYFB?|dckQ6R=r5!?h~0)HAtSN`UE&H>Ii%<&2o z0R`As!zlz4+Lu29L=b62pc0rOJ6BBrW`+|9OjWAK=E&e5_y@5TyJ{Y%!K6ae6PN-+ z{FgKA1`8Hg4q>W!7Sm)Q5fQiV-TUEebsT;|D8YP=%4M4_`k0onMHo0Eb#?^a zctipN{1dVhv~$qHXlc=w=Q0M@b%WyI&v5}JSy-*AxR_&zj32+2d8`97ec102$2w^1 z9_f8p{TIHl%Wv5Q6Hxg^CAEW+!X^NiL`M9pRd1GjT&-d@y z>~o!8;iwT!eH3>l6`2^D9znI3eG^1>U;h3Zpphho~^^NbtU;po7C7lJmRPbWY1 z^KaQL|8Bf`vz8Vn9K|7%K0bW0Yrgig?m7#H9k^xyUb=nLJ1}|U{re+g#v5AN+gKmJ zc(L(ni=4+@NBe-h=gVu5iKJ)6pO9qm&h6aU*sUKGLdNfX>zkq5s_;C{K%l0gA@t-| z7GEuuxeaf&75sGWRcfgh)~p$Q`--RF!R8*#ptO23t|5+OiV)iU+%AH~d7G0L4K*L% zx%%$)4?5^3KFuYr%EBkZVs}~nqFegHY~w21&K%k=2VC@^&^teThV>11 zA;JhOgZD79xp!Pn#q9`fgYREK7GtB#Y^Mtotj^s}udNMJxam}Vd;YlCp+g#O8fxHtmgAiqIHcLB+C zM+nC2)JJe=fcyXo;jLs*<{B_MdX{+1Kw5`o4R~b-8=D$815Oq_bMs&h>US;1<>!9S z&sPKtWjnMQdZyh`eGIps@YvWL#_tcozc6uic?|Os;;x5(4F!ujFg#fQQXsmIxY{f0 zenB&Xs}S*{1IB}wju%Nh;Q%8MG#@LC+W!?~X&xRPK&GOjqj8A=bpfca25JC#V}Sk% zy`rs+ShQjK374h0<++wQf>1-bbIQ~xwcF1rr;npbyy>9lPU4XDj~R|4lM2wLYgt(& z8zhm-<;xF|89S2laKwn2;SKZYgB~9`>z}?8(+c_Jko!X2<&S|t6$}lD#Su=u%Eh?K zQyw17T64MrQLH;(G$Vim>&q^;%_SS23SDmwrM*$3=o}K#-rxWF zcTS&<;r5QaBt8bViYuZ*3E>W1x=gp_Dt3*wy;6yeG5R__o>{9It@b3B_zwX+-Tqws zu!gzdn_7W$EyCe%zMmXxc7h}R)t*J>^&(q;G+M1hXvKLE5SubFtmD#}s)EeCywnc* z!7P=aE3+-TYMtgXKLwueSd98Cr*O!UeW$MW(^o8A26wNFyjqf~yz=~b=}2ziPY!3E zO`GUv7|*ZEI(;TDQz_AQ;+WJtTjjx-NybD^r{EX7r#}u}9N;P&oG7VNr#;$0yRfl% zYmi&u5;KKDu0-;`@2|IRHTY>;AN9ThrSoMX7{?1ko9Y~rqnG*RVkDf*4uFvY&J*l) z#kG`mQ{Yw9S1f(;JFDkZKhQIxm(~-GAfw!oP}xBFpUC?{Dt9@5bih zy;ps9?AUS1)>r`q4YtR7sKj@hOU}2I_^@sLHTkM=-@~Ql15`Dqly$iut-JL7l`lbh zHAG(Au!{`u`pmR(gPr}8bO{!om*tu=Q5;5$ltL%GW`YY#iY|O!*blM?VC%fQHp~N} z-QDd7k$v%c^kc~V;=0v^6$O`}{_QknvdK;}ZJVrW>qmQwIDLJ7Qdj)>W9wjdYVh%r z+BrAbnJ?$;CT)*KS>NUPJ$2=VX3{G+t4j|LOWm0J;x&4`o!xJho2{b!@}Hh_8`mF+ zN>{5 zI(7R34u&5NU!I|TqwD_h_2toH^^Aek-Dgwd#^7`vT}*2kFYWWN$-Lx%+~r$Uf=5yq z`GxXlt#=1~pv&I($b9{^lYw<3hTNv7`Z_0nPTtMP%N|A?j_gvu8+7y$NrKlmTkTFw zmP=I6&WZ)Jv3Sde*VlVJyga%+bl1wkbnTZd%kPAcHymS^5yDAPcY3=@ zM7Z_LV+^4L>o+=dt*DhG?&6wooy|(&_Y|b?H}Uwmfo>p+KK{(Wts55;UCc`Y4(``l zs5Sre@KS%?tr^O!yBoKT4>8bBxh*{!^H|&}d}Hj%+H;Gm<|Px#b}_%^1KjK$8jTJ8 z`)g)*Se$=3oWO8@1_pz*cMEmi$jHdn)|TUeCaLcru2KG2^gb4GBP$Cx6*A4Fx`q+0 zUS?$9PJ?!FJn*~Rx9jUwCAFIEPGI8s>({S|9o!4vgy|-q*up#v3zTS^hrWO8d~s&G zpc(wP>YG~)Ln5fi7v7zduYn~fVx-PM8%_Zd!volfbE|PZ&|HHF$k2uRxK@pik5k}f zJt{7a1~v5`8eA+Wl9)8%2mnn2Al`a|@h&a+ts=X`u@7D1Hnj*O|JcAIoA{`rt0gQ} zc;x!Gj6ul(5yrK{bqOOWN$L@`7#JY32_AKzRe~@{(azW2K5*N4N1=pqymd6KghT{4 zy_IQo!RD?cL*Xcxp#k~3fF_!}FACIETYGyh_S>a9Ee>iOG2~uT1&30%s7r+sYdKDX zK3P@0EQBaUrm$_7uUVGXq(u^OM~6SjH7UF*j)~SDjs#pv)WgWmDY~ z&Qb5H>8SC6pb4bEc-&O$Isiuq1OZP*Zgt z{Pe!F_dIGKqWT2I&RlQFD}dP~STr?g#-Z-~5)ku}`dEtVfp50|f=6JU z-`@$QAfAtZMh>A}$Ec+wZR$Nt!*)Kc`UYii>F}zKo$LQ(?`oXFCX~u^oUJk~VHP;=d zCze;$N(YOc3I8>AUpKUB&^7w+)sJ7fUch>N@Mh2<2i#R~Aty%XaFZsr9LF!Bzfdt1 z@yM_Q|NQa7(}d9?h*40~9f7VGCXcw^;2?g7HVXfN=?S@|B)9Ux^Ac1aARENh8>DPF zOA0k|(NR-8Ehr#~%wYGF_eCn|GA;WmU{Fd(e=yR8fh&pVrofeE2=#<8xh;en*v>z{ z)-rYmZg|8J6+6w$+#C%dOc)E0^oGwI0Y*FE69Uci8U#Xx*~R{xpJxnF1xpzFt94*t zQo@qdM8ea;i-bkwTv47+2+lL#zY|u(9P{PxA{f7nX~W6o5=I{uGcM4q#1J{p7efu_r@&4RY{#Fw;>$^<5 zXRKpSN~ymzNz-ZDUVd@sKGxCBTBc`i!5nYhJv<9+CXAR4zP9IjGix93D1TJLfsOaV z_XU^2lYvJS+$a2%fyWN{cVhkq`i0R;$*Uk@Lc7}h*r6zGq;|8 z4PMbt$MMwsvVf$aQw*8n2?GOY52EYJE=xFm{e%?)*n>BHO2^z>!?Q&dMBQ(FW%rtC z2W+o#U|rc>;~O3>DZB8Ep{6T$<_G-TyZx>nlR74BuKaYJc+)Ko>d09YYnz;+@rI2T zw*Gl4Ec+_BNVC>ssw7N0cPZ>(Rl~rys`v{mYkvE@q-wbJ`|y^m4b+b~o`enh)UM{* zyD1oybM(zGy55>Oyk^vA%U?wWbDujKf)osHh{vhhf8X1!G%~34t8z#(^MdDKk?*kY zuK#`|%C}9xs@+ME&SIM(F7*`^Y>6!-gPbTDuzxJd-ERYj=b*b#m!X$=BX@!{Qdr(X zjZ|wWQ9n?{u%X_=DpDfO!{HTku!_Bd1G!vA+mNsaZnfMBM|e$w@eMrhePPgA0roBW z=H{F59Y4V$fEWtG#3AC1H3?wDv=jRq>mQ>&ST~~-0Racq0;9^VvH{e0RD3YujoW0_ zQlg396-JDGgc=e4-o{L2Zf0g{XGd&Oubz8&`6hxcC}EvT%w}Mi4emVR>d3VU<3F66 zgmDW#KiHu-Z8s>=VQDEp)-~%hBX^wH-%Oi==OTl6PUo8`tDXJFIkbTqK;41u-a(0= zi|1XToacX1MYR!DDe2@Un~@Wumia3^Xb7+V@*J}4; z9U;iHK+fEGNMd;IO@@7)ousJfr;9-YNTKwtESCs7RqXi9287X$4k?7BWA=#lTMp;q z_VI~vzUa5CX&e1tHN~CbzQ-^2KnQ=Mt*u`((;_+P<+YI!9{fbOHrG$jGtvYEDszz` zC&tcBPW#}^593eNRlt)qqO9A?t|i65qgkoFu;`B;*SVI5Hi%YJqyuUR9~m%d!fgVM zal>}j+S>ZY>fdau)HDfI*>LN#XQP$5)Epex1_tC%J!Zg$F2Eg_CV;EG{eY%se_Bxy zDj{pM%{|Rp{-~hu-7ga!Jdl?7<(y_B6d}k0BULoQr!IYwIne&BmeGZHn>q>A|9CB$ zmHcD2QKY@~qrcE~JAaPe1#hupmDI+m*to4GtM6Cym0tP$;AgL45V*DQK6)f;Vhqih~6ZZobJoEk+OfI1GU~)fjMX2X43K8pWdb zuEf00wGaW}?*h!5yNubiK0{1Q3}#oZ?fN*A>8Ly>sITj&9hZY2GawU^glO3n&W*!^ zoO@T79?nU_aDkhFFX%HOwZ`VC{XeC>mGKy%5NfQ(HFatGO+{`7mj+~m2dX~C#fmGO z8uSKTrf{1F*tJf5&avlUvpqczZ{hM>m@n&OdZuRy6j-?IwRvWWib_ixm9{mRFF8v9 z!@&<79r=ZYH+qG1A;b%;6>xZ%R6M=mP7Rq1RaMTtu@94O_V1->*TdzP z5QvDw2lnvk{L+h>?JsVQjNrIU&dh9!Dl`$|Y7{GY64AsA3Ou@4PyxpD2g+5yxnJDZ zVFdCQXs{9726xz%c$f{kJW6gipi_r`HOHfMd`z2cSJca0#iDAb=kI});%H0tN|csK z4FrmNO=oYbKA!5uEzG$+z*bycASx?mAS>(8prD{&?dkn!ehY+*`vZdfg&LW+B_tyw z3+ESTIp{i*`DX7WF5f`GA+ZY9Dx6W;^jmJh&Ig~;Xjf;5TujTUSYGfiEMcbfIOZ)# z19p+R)`{i~A~7vx1J?zAZR43gL8n4bMLAZy5E9l>8PaQ%SUp!k>pAh+%~)@tt2lA} zRsjwluMK5>D>*ZNM7C9~()6}o|M+;q{*{lq2fdu^f4){M>D(<#c5=RUDGX3b@;GD| z>@=^($3&;n%KRbT%Q;o=jSsBV2{mYmR^aqq4(i-{%>_c@T5jvOOrxPVK;tLHJ_;H= zad3hG4nBWUa)|rzRl$oM0a@ z_v`$U0#nI&na4-Z8v|EVKB6^l88i3XIpW&Gd?5SGmy`*a{T@3^k41c;Nzz`PTU@@? zDbjDb>Ee2DBIw|O~K_gQ?Z`q zi!w7=p)D`QvO+a}`Fygdcot1?ozg3HuKyj+li!7{_EVz_gXBWHhMk>0tNgH>LEEl% ziWe+ZT5Xv!sM&Ss9k{{+1;ycpXM8e?WdK{)3N$3G{W&aGD2(4>Rb$toxn$i8KE#Ax zx$))$o7XlL^yeSqf?sQ{ewNwy{hQaei|aDkBn;=uu!IKcO>TC-A=fZ87T@P0U>JP% zAEggc{J=5eW$AIO;~bTmWtY6~HZV`4v-@B!SW3x!aOmcsL;7^d{mOe6C#ZF_HEC;L z2a}eTmXVj2ZXpa2Pyc$lEgk;09^S!q$rI5KE_r;Crd`V(FTG8r)n~BSsf*Ucr{6xQ zi#{})s7N1;-Jjk7Z0xqn`kO8#z^fB5x(yZWJ_nTlXkB*%2Ny#}>7 z=rlO!7Vg$io9vY^T=mAt27?^S4Kep3z6R208y|h;Q7^s5s7UZNeKtEMSQ%LCf}+w& z4~DP0!X(PsxYeE#ntc?2uG9>fmGJoO_Gf#3-cS41S>Jf} z8OEX!NMFDOBH9LIwkt2@Ki3NH3ImKmM>TXLH1o>5XYCWEq#xnhBBg>thJNd(WIDti zY%X^4`&u3o9ZlZd@VLbpu?Ox6ZrXnYy}O%6Y8&Z8raU(NLtlI~HdmG}$Px@|V9853k+oC*S#G8n~($?;Yt`#F`38XfADLm+6{L znfv1{KmQ!<2=H;)U7i6gVUN8++3DN2C*B)3+iCv)tj|Hq6rxQU%+-#$uI?n-SBx7Q zE;=N21UBfHS)=C=+rK~G=-HENK+E60rGXHYhjnwgM{d@DoA%#*rqMV~ti`^qY-Ub6 zYh#0a3(OOoX|j{~u%yw*!7US4m$r@$kmN>@(y|Wc9rir1`K+vRC5WVtMhJL3vo<{; z$d&P!>|?P)jm}M?ub6|d5Q)l+1P<9cI;Q03gWQRx1=RQh5LH5k zilY&IRu?5~pe?pN+*67Hg?eg)pjnz8e-~x(^XGTc>?|sMcV0ay`Zd%AJ%rWjpDvP< zgbj}NkMwW&4!N(5CNH{K*l7<)B*NKk42m2il0e6bZ;f{XQc|dhE)&k%sr$G|A2LdJ z?uE3j|EGm6(|#?t1isNb5Mh+gZ7p>p_e3Dg@F~L)jL5TQ$P@`W0Goez87)i8ozQ9E zg@0>Lrv(1yaPX_O#N%gUx7)-$z6`kbv~LMO!DQ z5hUCoeK`_uC8#v?^#pZ3$a*0$?SZxQd$JQ8nq@AGR=J4CB=|Oh75hUvf0^%S+Pz)0 z4-Yi|r_&(68TO>47pR7%oJ&9~3Oj+n(VAoWgG3ZDyf%E&u+buj1}m0>2a2ha$!u(8MG`AUTvG)z++_b@5IfJU+soW>`}Tnq@Ug)9D|W)@6z$_M z5R3`sJ$qI0mWh4|7(1Xt*v(Jq*|vWxyyCQ_L%VQ1a=5e8$gvM6e;#8$Sj(1_O)l@G z*XW6|rdS9+D=Z|5i?@}lJ>D(;^_852z`_*?>15m?$y3<7{~|8glDqH&ynj?}aE_gZ zQnf!cw?K%rxS);_1rkm|lu!rvP8tJt-+wq*U}8FNjxTo(Jv^GyDKi1wl?40zlX*oF zl)zZV>jW5M?dXW^Zyys4gg2hr?27N`uOuuS^3T>c2l>&z>QTjSVtY3;+(4{p8ynFJ zmN$2Nz0+5g7$5WBIXn4X!!%35aJ_517G5dQ)SeW5jT~mof2@&gL_HE<+*_I9`Sv|O^Sr}LSD8^A_U1e_G{~7Y_J5(F92OC~ zhQ%qoDhX1CyCOG3Qf_WDvnv@n0Pfb(*JlKlB?}QXQ8B~Tt*wm#uM^N0d_$EWC@v5p z`r4`fvKk@}#3%)V%rCe1KIFi~^1}yQLvkj}+~`!o51ecM(R^qcR6!D@6(&1NO@X&Y zR!c{RA<4x8uwGPDL;|JBjAr-WuSY?~NWd%=IKv`l{u=mUP!&rd4jC?U1$OPcXb>^C z#5HmjQO_h`#m`S+_2=(E@zzdB}OXHngR6o~=DJ)5lBvDt; z=HkjntOyWfj|)dt`*8(?MT{VV8cPYvN+Re(z7m-S!|nE!MVX z1Xe!e42XcLM()nwLcJue^Ph0TzoEp5usPtTsi{0z_aq`MMDpXOmeu8!fx`FY6LOS7ED{@35tal$+?o zDG5+%ZC%UU0ii8mv%uunsLHq_JfD3l2wpV;va4WR9Bo4?cmd{(2-EZp!+?gEIFf)g zf@Q5NjxF|8{x!!NCtw;bg`l3#09*c-#s4;xk~D}OF(lv$KZ!9V)SgH|{~F}29dan6 zv;uGUGO#yn93TjIe}s1ckWX4#O?*eH4j;^V2YUjMs%FD-9VjO4!UTK0~lZzUw8W@f%&9)yKe zmj^Bj6OUvt(;9@=@IOg_C1<;#cONJ`o)IVrHlgg?y90!-F5C_2KPJz#h?L=AxcyH@ zGCB&G6b^eJsi?#lZMp&DK%E5$?5WTBxRvj?+%FQ+f>4_(t;{|HF3;gEKZEK`qTZm=XkWo>@&UXi0OQZh%y`&klUFkPdJiTQgw=!A4@rY) z2qD^6%`?Zi3FRK zpL@{qzPtOFD62K1b}$3Leh1KxJe&OI&)*@0hd)aFdtXTyGORpkc>%8)SN>r}MT0ne z-BtVq)O*l2kb{SA)$ebYU(?{|M!n*Ah*&B{AvVkq>=HsERvS~$son3z}e;R1u24=fRewAqia7o zRktcEV*u6fuiF7tD9^q3#u}uD&x>P;V>lmBJAhasn#~&1*>>>(;fHB<<@`yQP-(T}p`rHx zewdZTMeT1Mmy@3#jug=QIH4#=OAx{)Ndh6iefu_q@3xoWHjF*cub;+H234I{Bp?ec zf*S)j#K!dYnn{l6F{xA!J?*>0xg&(oEdU(AUHP!e_w1aUI&rPdH6~q}O8+R;Z=NdU zkB_#Y4^hQ8{7l@e@7_=|KKpMj0QYUwnX=GKGyzzLnc3NA?Cjn+Nj)tue>*;&B^a6e z z@R$Fadn_7Z3dy<;F0D?mDL~#O(o3pN-UXb*75=*1Ik!0;g>{q2^H(5Lzd8F1HzO=i z60Cp?kI6mQM3D12Hyu*ZCB(v8y|^=uj|*TQ;Gtq>iQk~1tSF*|u41}!Rh}59V@B>h zw8@Hu9ZSup{=Yrz|KSKn1INF9MdS7qn+@NvJogzE3&ufY3&RxvMXkQRzWeE^wWv=7 zTY&S38#qs0lScab*Kvm8)5pLcjZrs32|&*cOb+A=LQ9Pu5YtFBX%LRW8ygQ0Q%kIY zVRQt<7y`?M3?b2oqJ$Htqnh0-cXjw`-CE=taFn9o#Jk4c26M!7K!YUxW@UkrGN3e1 zvbUh3N1-fB;BOoe!{7>KfLsQNlMN6%5?Xs8adC62Z6sdp-0!~g`c_sgaECs2oJlAY@XOkfB6y2++xHz2K@aH(nhEt z*EIXH{W#+m!l5U;WD<#oLsy993>vupQkUx*F~Tmm1>tGNHDSZt<;D&q;5=NqiO~XH zAGaFnFVKrG&GUF}7^4C~72jclR|xJYx?(Ich?8V`;|qJ?{(}#bumRAeAfWJol+EO1h=vIMt{_$R3oo;q|}ZlT1u=jldp zldIuTJ2Zr#C6Q|YGRqKXcX>QB-C_o1vy4{sKaS%Wt~*|lC2QSV-OY;=}b&b zPhp({n);lQCF7idcK}?=)Y6i4FI#S9f;q+#Odni#*Jis~L`F^y4{8nSbV=(GOef>i zS-0FmCr##^Tq<}KI3RJrLN$te0ERYnA*wTr-sEaxB2<55tK1hF&)774GwSu%(LEE- zXKuBHzrH1uo$oHYM3)=#o#v?vkF5L@^5ly4LyL#+p5K{kn6uW_CV&l`gD@IF z!Xrs;Pl@D9{pv1bn?o4LXmfM5TbYzDpjO{YIKV#^*Mfb8AHO&6rBVF%SRXIs)okohi4 zPl$!h9A5rR6*276s7i1D_7pcb+`-{@QdbAE0$oG3_GBfAAZ*)-ZP>2d1c zMt%LA4X02t$b#cmBjf@!(>dCFzhuMyg)zba{p4_ch_z`wVGOO^D*Mj`O!h+oljGRf z*oe^&raL`$%c$gdtz0IOZ{(yB?gQqUPL9NMB-79*bF>k7%AbQBGO`H zr)R@XPuQZ9yA^&EUn&+Bo=^Z|%q@w2{5zbj>1L6s#&+xtQRg03ofKu=y#D$>zudI4 zQjSe4_kOcGM3qWWXFzD(bup&gp9W@Hix&K!6@59bIrZT=J#NjIjpm{`oY$58n~H6# zgJwhu!^EGz@``i@^Gkny4NtH)81}tww`jb+{i*=>vwlBK2jqlDeG>Z^Ev}XQqeon8 zdx&ab-{koFt26qtjbkE~(9&ayX7>m@4y7a(id+4yiyoUKv-5ZewH2Qel zQlXSaH&jF0Cw|#V#2F?wEa^ql-{gEb&8R}3pnYrFXZi}+9I*7thE}(7@SMGU){YXO zN3)CKT5k$A^V<}4S@sy8tSb#`xm|Ev5Anv@HZ25cAb}PL>@;3%6nndt@9j!dS3^U2 ze|FAhjeUKl^5(@Qg=e;R%F0XDPa5_DkO>D=*P#AO3aSE`3p)IjN7n zEy=sEwM5bZvR6`gkVX|72`h)Q@##mkfgr zWY;C@edXUixYaR!_GeSascXYr9T%ihI_xcHzS~#X_N%(E4@)&OvrWcK@*SZET*z;D z`v%YTDvH7R?4{IW(cEf05|qzj#|3A=<#iNf!U5ptJ+qIggGB^)=5H1A;F)vPqRRXp zb@wAL8^u`lZpmf8HM?Xho~7J4vl6++rtJKuQVO%)Q_q)O)?cRt7a;tc6#M6L;bNzI zHa$UdGX+A~-wz5GMqh4})~AWmWwPWn2-QEad-tGA1%*TL!2hhf^)-3BfrwjrDMWEy z?JQ?FXmrJxQc(6zJpwhcB_Vt*+V5w20_&|dQ_p+Hd?{Oqs%?%jwKvR+7}C&|U`0fo z)9rbv7rA5G=AzCUr%J2i@>2RHjZT~z_CK!1qym$ulD;|@cJINw+Vr+f8vKS%-xZqe z_uE?>)>SuD(z<-V>e3PxUUyX5H=4XxvppT3P5AYq(%*SKG%hkEzG||OCP-$ig zW&d6*x@$ypW%!I$kjC&X`@UaXg~bMyMBbHk-g8po?#bT3+n3QlOXyQ^3=Glp(Udi?_Cr^sqWT%T#2x>*51$wUO3?J3@f$MO`omIu9D(lU^e)lOnSm*`G`%;}>;o z>DKhQWc?V>`w*0z(yQMx=g;-CElbH=fwJYcEdZ6^x{7;w#E-H+QsMX?kd8QlnRY%*_SYM zdCQ2I>C!V$DdQ<3m>F3j{g6Th8gR1FT=2!#D7COKEv@LPd{rx$g&r8C#ui+Fi>+{mvPdf6rUEpvVqgF_Ov_ScQJV1e;>wWxH z6S(h`{{7wOvNNVJcurGGn~N?(NX3lh?}@F5r%6awcueoCvq7jp^Q7sT)Who3HLQc4 zYWe|AjRJD6U-(D>(LeVhv27&<;%P=(zs`G6b1r08{t+bBRNMTa=4i!9f@sOO^;)93YhoAWP`3m-37ZE3OeHfDm|&%SKx!7&x?`Zx8z0%HY^oRq*M@knww&VL_|KHR_6al8@wc^JJ4FxE1Wg z@7#o$AMbG4SmMYp$Of6qVqAfe}28iSDC$k6p@mB&BsZ`x2M8GB}5 z#vjgQG?0)k;pwbg#K5BoCt-<@Kr1Av}#6lVS zUzz_ErWL9bvKpNDo9<)#D&2C`15LQUUZM5(>YQzIC%zOMcHft)FxJ#j8NKlTQFY#d zRQCV>PlU?O&dA;)At9vft?a$`IAqUcgiwUC%gWw6Bb$?5Mm8bI-uw4D_vicj-kTC>1`lBuC*h+LHNEahSmy#QldwLkB_RZi-}&)z)uEFedlNnW)N7JkJ3?1L*U75 z9S;Pg;j2)sfS8UYM1oLFME7!)QRz0{SsCjPGqTeLI?wr#L{!BCDm?G#52V7w%(4f5 z%lr^W%+T`edI(Xyz&2z4Ut9BS$9Z`sO`9nWlh`&Rwkj@1-D+Z@UP+)|?+VsBPxF1d zZoUu;xh#u$veSKP9Z89A+;LCre8VqXEg8Y1=YH#eEGrTTWQmqf{g9% zOH!-&$?!L`mnzYyxUgu4@yplkfe=L>T-p{R>KeXluBSbETP+Pg1iRx+w}9w)17GZ} zJC}^c(|{_cbgy;yjHKMsIyL%Wmp2$`YA$)AburOvrUv`oMB1Vke1QPUR?z%W9m%c&BWyo&0n6p zv;1085ZwSMEuppsG$A-8=IS-KQ)p2&zaF&_I~Jz9T+5a#y_I#u;!tjW)qdUf=)+T&aI zNvFK_BQ{fgFU!p+QNP`H^Vy>sOjB!rQ){;?&z>?k$u~6q*wbV~zL7dbx_LI*^cRK4 z)UX>EI&5&o4Af3P8@ez;FZu6-lf0}!0bO@p*s00?H7ap}8cCo*V(5I)@p7c0Pil`a z2?*X1uvX2p9Hd2ym1#Z^uoZyr_Wtepo)LY+zs`{S49$GSKT`QK?#uSFo-ER2V8+k> z=a+bc2AJ(!HcMx#v=Mxtc$4%U+i zi46VcnZ!i5#bU$`$S+R=&Tc^pEMi5wl2YJeG5rjyX{W&mv*>~6Z$r_p1;|wye-e80 zX~Np&WJ*RK@KABE%F@K5R|>CNSepI!r*wfm2XpsZi?vQ@!;x;oWuEvI&^ z<>A@FDzrt}-N(Y8?#h|izk(xuy{ct?NG2fh7H!J1)5Wrr5M&VjRT;2%L@8h0Qc7Uv zf4T5W&A=Y_euCz!7*8dhwlPOd?1E>(dRu5G+D~eer(Z_J)A_bkF@dZ~r(^Za2=yy< zx~UwKHKC7Z1k#$*H1(CFzx1C}ee0T+9@bbo%O6?7oXR?n5GyqF7)$29zpUB0xqLXM zrx*OCoJ*@Fop9m*yRDdQPFUqXitqi#pMV%41fvO1Ow-FV*S-43t!nMgZ_=?>Yh%41 zW(;*7nuD;xE?K|&A$pQqx-&6ia#X1@Nr{<7SO1GMnnG*H?#hJ!q~?a0b0F^87@?=2 zp5Q<^!ZK8|5mRz-ZC?oThC|NXkPx823;WUYsc~UX@yg`xc%#pKNJI(YMQ;WLdKWwb z_3W`VlT*AZ%Ukh`o@rhElO9m;2bJ>TJE-Fb72j~2!O`i20uyUNTT$m(zq9$pnBDHp zb8dlIEZmyu>iAR3BRLujlBwPU(9!@IHg>aT5U<{8# zwnJEnV$a*_G%}7~CX?``W8%$~fjH^A#bzegOPRocGnJEFc+VMS^L@=azTDqCsV`Zu z+zm+@%b2ZJ;yQM5F1q8>j9i}B$KD~E^qzae7=bS?+Bc*X?YzV64bo*_Zg(S&BtBkMw{G+K~xrGXGw9?K`SGjz}2#c9mKi?gApkY{-_q^`Q_P~D4 z-l!6=YG2M31Z7;)W8`@{|ootg`VlZZcg*@xb^4zwiu5j zDkz+nzdgXC^$(9@QQ7Hpy3h-{BYtIW+G7R=;i;!#%ZCw>@k*PU4es_UsP@34Q=jdr zK(ZO1WUUw~=J1Q)froo{#BZMdZ8qas8&fJbo7B`FU{>Ip2{?4=CglAFh^^oW113o@z-PHkozpU`=!GMR*!RYOA|~VO}kvTk5jW$(MH8(wBMOiz>!d7qR8J`2adIz zQCF{vt7#7NB7!W+zTHS3(HMDC8vi2`_*lqI?s@y6z6Vvx4N`q;F@EuPwg~CTW?~t? zRy%OAjk>2%9LhJ)k2>xrUv`y+H`l8x)*13YJI$R|q?%{xtX2B%a%!w$w0n;e$vkb1 zy+9)NJjjAj*|%~<=lFZqvQK5}?MRLN62IX;y(i+B`0XmwxEsvmhrb%Kg~pRck?anP$A!3=I7i z1>85rI~+u6Ms)t}{M~K-wS|zP6-qRr!G1!=@!MBp%=AYy1X zeX?(kXzk=m_FN4~)T!}DpFJAgL=TEw;c-6NA~XzG*XU0XQL0cgoBo9{?B;ctT65IU zd@91n7Y*zZtASLLuKwxowlpInw}D#!c*gsXeD=KGqjn{&;rN@C_+x$?1bWQ=$ZgM! zj+MI2x%0mwrL=ESL_9(-FKRAd*39~Z!8dJhY#++Ty#_n4bThh<%4Zih?R4qho-p;Z z1YUs$U#GDS%=BWPvWU-h&nG@OSYA`C)cyOjF7;ln%Jy*Nfa}3GHt%VsckDe|LPy7+spx=py}$r`>yLmNtZS=enP3 zdbuyx?&ke>q_|BMcb6>JjF|4c_Bkl3t!3YGDV$vz$L8O`e5zKrQ{=+&CG@BxKi9GE zqF{~Zugmm)qTieQZxasA-_@-iKh=KpIa$T2ddBo(rf{o4)MM1e!9ZcjuuAi}mqVYF z*?;XG2<##=gC=eZR#i$iE(x-dx}axP~_&6GaFi(N`=Mm95NN|8JYV#|l$^bKJtyH0zr8oElWk5y4CK zQpv;=l#_^Vh(j_-VlN1FlyhcTfFp?HqngY!q&}TSi_&cLKBU5x460Y5v>Gp#qO`)1 z_WM~Rh&`y27nkL=5-(|`W0CAB)L!&M74iD{^pu}c?^31tk3-G~0?A(k#5fHGwndt6 z>ClnAU0>aA;HL~nT32OM4&P%_W}p&rG9nK-N|VV~x3?)-O^N$h`i5g!DIwcjcYcEV zgSvLBv>h&m@e2Y$8%nx&Ej#vuL`6@7OXXq-y0#y&#;U!(RhwlJyzWyMnnfb{t5ub> zL)(zXG}(fUU5>Ci#6d)ZA&#*V;m7}mnL;+oY(nESj&oBlr85g5T|{#ykTrapiVQc{ zBy>~nw=Z^C;g>?8=)AEY4Wv@hnI2ndF};|z60wwL$4|L9j7fxq-GWf({+aFH1=iMm z(a@J@Ro-!*j|_=lvJ1Yx?V*nTDwM7&Nrj5(jzHQXA35&!^c9<>t4icDN5wKZB&;t= z?@&oYSj;BLR4@BY>w8`-`Nvc&o@o`I4iTT6Q@>0T$yU5~CLgjMC6tvOBG3~aj}Cz- z$=&FsPiiDtub7b2hjhA4-yPz&;-@0| zZfkeYTzN}1n2^j}g~Wa6kY8y?7$m?oL)poGQM3AE^ocqD>lNRpy(^FPvy3X1^J`fO z2jA;Ygp%04V8Ic>pzxE^(gYKSvYAoa3wDmg=$@s2SOYM*9H*w|a z_#3=bj?=d;SD4KG%qlg0)x_rxv9RKAT%Stj+~ePUf6*MuI9rO+sE>Op@_M1!z-E#) zHBud^7DkaF8&BV7`b?Sz)BZS+UY@Ac`qc`iXYu1CHhTs7(g-p)XNNG(kt`eCaDg|G z(%Ia1MhEj^8QTypHjmi4p9Puu1WMYyAgGrgyYXp6qM3H#2rar%|7*nWrgE<1Jw`bJ zT|0f5^6#r7j`v*l)oqON0;4vRP@d40e3i2){R)+j}!W&XRVUITPHxEmfCs>GZ`5$-U6O zQxVa-$k^dw@7;*3Eq=-5@^LIdlly|~b?9UJu}AdXm8}V*8X*t5J1kP!IJ=k?)Yan& zJ^i`;i%Sh6EUvv?ARepQ-R3z-V7&fl?kyulT7$k3x8&ml3)c8g!|yE_@OL-yPx${t zk*se$OjopcEzLl=kNKfjRh}-mrCJ};BzVQ^$NONlh|Qus+jV?N{jm;&3xe~ty6Awk z?VApo7-2Qe{e;h_Zc|BE@`2wu`went@)zsT?KGpen?w*$ zHftkwv(0rvL!{qTj|pFn<4FhJ``-jsGw!R7`A?1*Q6ywo^MUn7G9M!h@)L%v)#Des zr`Fnfd6o}{`2)VPe~;ylD9tMTQm^?gjuCqdovR1qGe22Ao~mU$K#8rBpH2{4HfE zpT3kiOFgv2Wn-T-=d^oalK)2CRDoQY4tGE*j$ZSxrMsUEdDqcKyrJOIJM{?pBQ_m< z%7s(07tLSLlb#UfvdL#ldF4}n{L!kHBVa?B>E`G(uwO!uozT&tfB5fr^;esx-~D7wqc%xjc-tve_O>}^=b8|$>_0GDEQ*)RTk=(x4}LD! z(`Cf{Fs1E8Cr4 zGQ=WyZ-SX;l@3C)jhGDs{{it^bT}x6~losrk!!v&; zLFDm$y=B_5ze}I!gj*$xbBP0OT@F!g?9tB=FAMTLnK|Uz=QZz9o9FBM8xO`D2Tl%t znr;dul7@|ayJgh18MA3{9D`S|8ddx-XSC|OT!ukIbbV;1-Ll+XRlwSxu`+kT>f-as z^5QyS(Np<$UB{CDJ#M~k*+qn(-~Hdk_n%*gJ$ik`>R)^8pC9@Lk)!qhcfJo|>qi)O zucrKW@)`be>$)k1(7$o_e?DdYRy+2;N8Eqj(8ltLaPEIyh5x)ERE2<{1wz69=k4it z=!bMUB+w(LiJKi6xX7Q(`5e35l;wLvX)B1mqw+qenvN}PGi-2Yw>hS}*l3xA`nBJ!KK(Fuaj8R>yV0iVy7A4+ zeY)xTSZ_%##ki)S@~5waUS5c+#c@V4>dxz59?Ie9E<3PI<_7YkP4+Y&N)O`ftm(dB za-Fok!!cZGPsZ`1kFn3;KGmZ(tkl3Y$*eodUwKZZ*B=#ODi6gBlYYQdkf^~glJ{iBF`O|N@@mz{g zF739zMXqOC-;>a-)Fau&o{Jw-hPqC{oTTHb`8%|W8NX#>m+~ra=%Kd}Totb&Asv^x zMoQ3mESl$a{Qjz^`$dgbr4R8V)yfAN#z@hs2>yr+LSjF~7VfkPDKQ@8j)?_zIXRYA ztGdy>Ap#t;&vm@=5>{Rf*O0sNF)|f6rK09{tt2bK{K%>$u=Fv7x46!MwdrLBV>(2GB2Q4JLijQ(t4|l6sujyPhydp?o z@upMtX2KfVSUw6QSXi}CDWXcS8DY)hf#`UJ7LzpbdgpmW&Y99 z$48pG<)un>#r$uG?F`UNFj@`k@US}YQx})l9J7>~oV zgp3iK`&%|YZU@ULI_142QawbcTqjLjSw{HAwCw-J#o`a5M363O58igO9!<&;W}@lf z|A`B*|IamlaO%-ZGc=s&sO5;5SwC*s#|UXW7eTk(7c5>RkS3hB4t^7>OJF=9C`T1% zNs+cj#B%+`CPS9FiGNy>)go|vt@bbeo98Y?uyKe+~5O0Y>cT)tfF;JW*V_wVm0J$7;wS7F)f4;{(j-QII60}nwaKaz)S>O)@mIBDZ zgKI7C=2Ob&gX%I}O|b+M*#c7I>){5hnh2^mM!CCA_6tJ&>2J$V_PifLgIZ~bIY0S= z7n(d<}$3!Vlj>2Q=W8WWCSvidX2eEXOy8@*7@<`hi>ph}t7>Dlp0g zt<~dTqKophAgG3)&DV3=B=J#3fmX39+{Qm8sKErR*@L=^LU?H_AKyV4#Db7Cs$Qm} z;!VzR)z{LlXFd@#r7{IGrsTMJr*8cQqB3)so&xwEF~a4YvmU2(m?J_LugM}Ucq1T& zBdJ?j>HL9HA@BZGuryumg9+-4-{(A0!Q`Q+9tLQV2xEb*#r zC{*q+NHAT`^bFptH`k5pyek{N;-zn>n>C$sM}uO$lTl$Buc(u;(Vw=f8r)$YsUhRid9Qm7^fNTCwV}}sXr#o zLMZqDi&1n022cSmm`30Q&35gIeqwb>R*ztffMhF3;3ilAUBG2^INLVOrs#T5#!27n zMe;E>gaKI>qMI+Omp^a#w;~;9I2YHOtKnDJetY--iVP>Mqy}QHtg3$x(tt>I+Kv5iP)Ml-0moyU_ zMG~hnY$x_f6Wu^GD)N4*Mn#A#Bh(bez{UL2Ep!@L8=Wz-Hu7FuCM9bxjLuM%LE}aq zlYDLlUvU4MtM+{MY!bT9PwDohsBtLML(Fskixh{aC1cy7_(cLXNee=NQ=b#UlV|g8q=63_ zvJRFguPtr=`_~daV`M$^UFZH)2+WUrJv2#4q-LhGNt!$5PT(38ZX=8JF9}=ml4T43 zggse}Fu3nzl|mF+XU!CR2m7k;EK9^E`PUWpIukcqs@LTi!EAv9?lVbQsxG*wk?hov zcRxfG7T+ma6(;Lr5k1e5)6mUk*SPbw%7AJ>$|82iy4{-p(}aC26-nQ+(fh54u$iZ?uH3St(TP>J`>v`Zog$5q7DLZ~$M7cT z&em_dlcVSX)@bY$;qYDpc_OCk>`L2fV%2Z*L7tWpUYj zrwm4PXWW<2z8cRSLI?+u%aiDI%!ogZS2xv9zD6|ZT5UVG$%#VmbMW)ImXahlq zH{Mi;952@ThKmIWkg<;4AYW>xyTyxf%!ExGL+qfWlVHIpr`{*dwp&Ib`RrfN%^#?_qp(&MaN`g(SPmKHYZ&A{>sp)TTkAG zrQ*sEU?4wWGJMAJ(vHi(&U`ARogWvLprc9C8*eW4KE8(USMf+l_-OA=FYkB8zP6s= zV9sj=*z1&`s=HdD-ng=$Vf%2kO@y|632-Eg zxGgo8U{WlFJrg0^-A3)O^I&njU?bOycIo{~rC4Iud)-fce%w>T(Y5n+%I3`I>1w@w zllqw%CPjMsqD{(Dr-Fu<_*idZRLHT8rdViGGgYxj^wnnxVao|0OA_?Co$`|J4wY*L z*F?|YEHXF+^Ik9S0dE2W_Ep}c=lO`#jKYY3HPPDMcH-|;hsw>&v~Wqj zZ+o5OL`bsc$SePuWV>+bOfgbA-~NHVk9KfXujz)6ve+zIXy$8Ovj61)h0an2vmXRT(o5ygZCP;h zllU<1V@6mSX!6*aWF4=@1hiX;?NW@Eq|X(3h(X>83Tbq7br+yj*8Ff|a_3=E;aNvN zVlGVl?7_>gf#RNLYtQTH))R~x72PrE*6WSdi!?WMh;t}qZiK2S-g8!KId)BaKV6A- zgHV>__LB!hX?_>jsYq&?)B8r2;{%@sIG^2^{`yLqz_{VrSR8hW#*iA<0C)) z?JKWW)FyqXIXhC|a{U+ASU`cb<_3i)1KX7LzHY-U1A=Cb;$bm|nm{^9%cs(RhwufFJ6UCGTT)&79mohP*0gkxQs z|N5N^9EUt@J07v}I$lcjI@@+yq9HU+ zf0Q&giFef+lUtX=&=2xZsSgw?_N8>Am?>WvcxFBqp{ovdFL;5Ggd6$nQHjXh?*f_k zsT1upehtp{;f#mmNPZldV?*_&$m5KfCtRh+E0@QIvR#(>4%dHr_9zo+Ij zwC?fVzH(bXd~{BjRFcPOeCG2phoOC@(8v3VAFQucQqstO%@8;LWPp`XQQK|a&=I;S z$2hpUhaKcS&vn&?YQ6yvA#^8Pl95+nsMyfHO1?B$Mp`;yVw|+{=C*@SMBX*-#*0^N zVMb6n^LN@uq|Y)E{+KhQ%l?~dU#!**QoC^OY+j#=cQbAUNUqJI!e-G0dX61AjQ(8j zcbm0gi%~he%=A$oJAPcFD`Rh*I7wVDydi>IBOZLV{kMF{sru5c?5CM+pXeg{@cZ*8 zh(5}S*;)zynN1RRVve;R`Z|X)*I%VG*RWriwH5Eg*P@UyEQzrFH}=uYG_H(zz2Z#1 zIHoV1`99zzUBwxN?7P@6S^QbYx~R?jd*5p_wPvEu53A1`9c{|vH;wKKCE-6iOFW|O z(D%80Tj0*p_wZY&@-{Gnm$~(g7wbvmZn+JzU2aWp(r1}BRdnB{x%9IfEm|3#V!BvL z9C*Q$cZvoj^}j08z22-hxVxOR#fk3oTz)&<{DM@sN>jRb`$LN103^|oyb)gOzd7`E z-)9njmm><NlJkT@XP=h1X%uu<#BgSF9^oOi%jvp$9QVHr#1VUHD!XnXObhx77x z8$-`kscMG_P@X<(u%GzyBDKL|dx^(4yspFRVk}O4?#QPLrcC#|Ry41`UAfGmU;7MB zTP^7LP$45my3FHxv}M9=m}CV_8-IURp&D*y#15DNo@jEJ>QM?!oTv`Z)6J%?#egF$ zFwb{--zL_1BBCGqxHANXyWa|QtU(TCmH_!$2TJeco5vm%yyH}Y9O@ycVerbOl-cY` zH=X>}+NMrMZ3UglB_H|T8;W9I_B*><4U=)(zo?);_CF$)1 z>SeAMT&w0o9tpknv5FV0e}G?mW*l$o(SDm?Q1j%W9~F(~qJCo7obI9+cV`j19T$FW z40}M)+8D>3i~R0&&FI-a>t)r zd{R=FZo9j3xq4|lxg7Pz#vZLY5MNwK`Qhg>;MzgIt*am|WS={#?DfaKR!|Q{n3Yg1 zLHpnJ+oMWx7HpBbHvtcU$N%LBX+?2x@^`B0CDukmI_=r+Eh>=%=8>my`t_b~$BZ6E ztO*?zw_$-Uw00~io4vW-Fj3|w0)L>WtXOJy>L64dVkbvgMJXplPldNl9X>c%==Jw! z*~<^BZm9pjJR7e>Fw{7FuyD5w-L+D2U1;>kyG9eG8dx;g!uCdE9Ie2 z(nzjY*7B*Ma;5d?8Y*qilI|Il85T2WFW3|N&UJ+wC53$@BrxZmq3`^IN_jP%*6qXD zC1}z|RY{{H-a|sJ+1sdJ7$Bb;uj5ymk>~qBKiK)7stzYc=+5B(#lxa{i4R zk(Ux4&!aW_9vFF@?`wJe{uovV&2n1?kU^1MAXlj8q%heHPHmGGgkDJYOrOqqt>umRYZ<$75>As%F9!nV6=Vl2T^4lw49UmjFV5Gv$v$4yS5)?55S)aEL&lbvX9XG_Ei{C1e6BQ>zvwP8X zemITnP_Uxd3&p;pK$5^v=P*eMRTz<{no?XW1jWoOm;?JPN5^-FL!?Hl}=7 zYBuYs!x^bUseI1Kr$e}-G+#bGq%rNPrWP7DnOt_*<32n(8N1+$i(4C#AEbSb5(3(G z@{7|f08PO&VD+Q3%mluMJpE(~{ zTwfVToj#`K@9svljvkc8NhKf#IA47BeNSv`#MWI%nBdvbh@kzfXA_`PsI7Ch zpQB~J>`rakQM*@RD!SKKW2RK5^pe>|ua)NO68(l2#3;5( zqnOffTl&fIhv#gVnGr62pOfViPq(gDITg9-Y^#ZM{kQ4CEGUu0jz?Wj#x~!EuL7s8 zG1L+3r!{>0ezG690O*jtQ$P2=wYbQBqa?l}0$twwHL{=RdN8nivK2sS-6IXvgo3W^ zxsRz=z25G`U-#uZi}IuNh9@Osi}P5`Ee5BXISu?0HNB9jCeaI_*q1X^%Xag6U;^noH7v z&1g}O)H+J|PinWY2U$}wO4#Wv*HmO*1D9`LHB?IPe&Qt^? zH%})dDW4$zenv$OI-q8}rAcJ-7nJeNvxpyG2h|{PIKzRXA0UAJh+xi(rqK|;t51d6 zo}W^dZG!h6I)oX3oq#&Zp?|?9$ptD(-vq%C2BHvBjR~7Vv9St-KdSm>IlHVaynOP8odw1zP^B|3A>EX;}z%V zXN>;zI$2kz$na(2&8B@Zo`;7nh8{$S*>kMxSP!9*@TFmxNi%ZdDJ{`iz~4q2XR1Rl zIPmIFX7bn^J$4`#_7-u+W8ywlcYB5CEN!(<;}=@$RsEXo9C`BUc|||-->s8P+)uvW zv!S^zJXYVE7r$Q4G#T+&he+-%u?kQqZ;>I)oCo~&6$kb%JANOITw%N>q-?6QsuGXk zoRb@%gYh_C;@7QnOs0e|6jdF~IDWFdVfER<28)e8N- z7`tA}E6coSlMM}MKz{gYTjjF7Af=op8a}!9h+|dz+l{9qBj0#9LD7etnwp6UZ}E9u z>BKs!AC+3f9Yy|7ZaijYN%sm>adUes%Z%z*wzjrqjOziQw2ELNDA2~qXFCh0;!IJY z0PLWYIk0AC>JpTGv6m~9stjx}Wur}Q;t!pT^qk|ImLM^1@m#U@E$(S;fi8j=6X1 z!($FouZ6+5+G&~=MW9+aHTxx@W2FIy=w@Rfs7v&$PkPAa-h*c4TQ`0XVjm4v@&N+^ zKuR~;7q5RKy$8_WzvDwnkNv0(OJX874dy^J2&RMcQ8!_IwF7#KWrazVwzj_R0wB1) z+E$nfa_BdB$3tU1VfYhS<~ZO6aFX8Ct8whuJVePmp<0&!LJrcl|51@q0#YoB1Ld(X zvjh|o;0pu4xefHspbyO$dJ3Mghve7*f8Ml87Z`WI2HfFj-r=aMs{V@Q_2Y&VNl})` zT|HG^Gj+vxy-V_M(WK0e^CjP2o{|yMim}%srY(CJ`~#+{V{Na=y;JeD&PPj* znw?{Lwm@HS%lct)RDQsXb(vqg`IS!IiXyak#iUqSY5AMjWHL)z!|w*X3vtX$kNED~ z-m9h37Pd3RApOy|wnE0HG={dS$uYA^k3Ht6aub7h{!98Nb4FPw2Rtp!=7;y0Je@Sl z?(zQnIx_$GyS^BZqcFiq6_^w&^w~jd*s>t}Q$7Mj2U3(-fY8;xlo$K};2Ym8?{%1l z`--Um!BCA@lm;I!4A&scUQhteRscxAp(oft*29#$&_2I3+7yop0KTmV9-bniV0& zpA*V8Tg~s@GSKNTtytJSdDUT7OQo#-fgh&AJSY*J&C_1cX%@tr^T`3V4yZJ>wXY`E zJ8i2LTivy&7;07!!KIn4;aFc8GIc3cxbVCBr5;mE;$$jsth?G5+DuC7**7l;$ z5)>4GwF38GTJ~y8FV7b&qO!?#pa;O%0KCCdlm_MupmIQ}jyth!^?7WcWzUj}5EY0b z!v17hrVVUO+HbDen-Wa?2QSkjh;e)0D>8$uguT(28_)vxzTVAXyYJdX8$-?UyO86V4^lC znJU%e%*hw*jlZK28I%*hmh|joeBeOU)3GJLCf~~;RToHJBsy}yo0uG zjuqfv)zyyrZCE)RzD%dJnEP4Czk5$A*0F!%fSg97>tOc5+RE<7MP$o=y{#La3Yw0 zjYdNQMjh^-ZQ*_2vdn>zhQ>F`U99Jq=Wi(;h%p#z2ecNXFl=Qv0n zSSiyj!monaTc@vl!}XJqDxvigk+s8`3y-@4z>S9KIPI9Y8GcM)79wBu6P_`035ffj zSbLL>|HG5cv8mPPW;52f>AV)8Ie>s?>{t`P+U*}m{&fEfJV|@O+c1Erfu07o$+53t zze=5c&NFtCGVReq#C}pDk_2rdbM)y5f1xIaU^1@KNS1NUMFprx!|hU4i_4{(u zWLvFJoCb)p#8~$}y#5=eO$#@yTl8L$HsYSCL4nb&XC(zM{?F?x3z^iITjMi!0ROr0I4F{g(!*1e$&c*N!adTsP!nf9PtDj=?Z*v9vB+*L04AbCLo*1ZY2Tn`{w5@XhH1NH1J=Qu}ZOJ|qua$F2sg3>>NgqIurzegf;_jG= zT-;QX)Y|`YeblK2vR++_Uma@{4vjym!c~~mOaiNo_(n)rw4b&Qj(NpISkpaNMf-WA zi!@9^x5@v{%XdfBr7p#g>nD(A*eoA)2$=JI0NK9UX~)=}EMl$TJ3#baaykC^Mr@7_ zp}fU<*P_vrG5Euub(*Ev{FyOtwalM+7=^0=ZX%{r+=-FE=%s%PG#8tw1G-#aU%YMgT1TBskw^=u zzW|B~wbMNp9uwjzSo!=j>gY2ff?y`f^PNOOkGU)(5zxLMrGq0yYDT*LALa|~L=3D8 zSh$7S*2e$mwbj#lW^}n0a2`s4A6y_4d`Fs|@QWc23WxbyMjVCe0(A|z4Vd;NV+wp9 z-f?sPgFEH>#+!&VsnQ+$LK@R$fmaHXXZPdv!&rh{_TwdX`WWZ(>nmE^iE*d5`m_J= zO4HfD>dlhuMscWSPeyB;>-6Cw0noYmWfu>=3s|XgT_X*fO-Mjlp{Pbc{`p5bCvHB5 zJ|+npzi-I}cF}*vsl%KPW+9yQ@8q-P=|c0J<>oJj`IQcgM)*N^9t1m}DIgjy8df!+ z>wFIzW&!y#JU)IT`}R8OhzA5L>I4KP%0#2jp$yFx(_&Dx17iRJGo+CnK_jd0PHQID z%L7bj3fgQs>R&ZQRslQRchhGUB+Ww@%9(uk^tMnu(*jr#q%>GpctBx$}6?Vz0F zJZxIVdd=Ek3_@NPcF=uD3z+Jo$mXM)0B8a3cbuQ#2Sw=GL@f1^fUpUiWia56pDHoO z;V=lcs^9{J^555mpD|JReh50!w2T*cvw*^_b6ZOwmIjd&Ip#Rn@K9aE6cmp}_<^RR zpr8QW9q6Xh#K=UjDCfq(p(~u4qsn>(&i$-YK*6hVk^*G#ZBYNh!lyHXSI+_V9oZq7 z_bisX!kq8A1Xxr+5b_k|?kWYiETB(;eguS5z7LF`8>giu1HT7g9Wc9Gz#fBdhCLbe zKPY!HEDY%Wt?TZ{Df=ZC3OK{N7D2_HS44zkvSPyCQ#4J$u?X-#z^Azahdr3`lk3cs zQNUrhNE4i|ztzeF`x4N+sPM3W&(-X;vh zSsEJ+mIF>%0kx${*w{MH3+$}FGmW=nx){b3U&%rjogJ0QTiGWOZ{Rqnm{8;;e`k{7 z-ta$g)E5yVz}6la9hFv5!3PaAyA&I^Z?HhP6Ejs=LDT{*i^JK(w+I$(dQmB+wG_LKYJay?@pHUP_Pz)f7+cLBV$q2Im+ENhsg1HQ}mP!v_@R0E(RSZlCT8hWoXfy0XG z?1E3dl2KPj5!VCk&5Yb!ETs_?*A0w|*ytu8o~crvSwi z_C5effm{pBew6khuVy_fK!RmgRcUAzI@sAQ!V@1~ zcZW@{3y4r&TXSeU&1ZZ7v_nDI;0%HiFd^?fR{!R7xJ_99697TR3wsG@KL692faK6n z%x{(z#FL<)@K!c>y1@g4!$Hg$PE=^K12FLu4Gj!>*$y1kQ;Tw zbU&24LD)J=m31pm#V-QB<|Avww|PN$pg_(9axEYsvD7g@VHP%NJ^_IaR1+#CWo&eA z&5XA~=-ue3D6j}ojL$m#XaKyi`SuMAAPHKuIl&r)qZNH{a1cd!XJB9e815~+FcgLu z?iY4RRq*&A-vX?(MHnsC2uaY#5=@SQs15+_l);}szxu5}Wf{C&K-U@7=gCJK1P%|6_crZ(#IC?g-c}@eQ!r}cNpsEAt1eig4 z2M4Gf5Y7bXZ)1efyxa}Az=tF1%h?X{Y*GAz0XELubbnxDeg)E3t;Z$}(3OGl4YCy9 zbe5fk07eMU3`VFsE{(byW6}F*ndWugx zAhv@d*mZSTpy9k_DTc`kOhrSlB@(y{nBQ?70x)4wvjbdii-ELe^f&U#CDg@nLt`IwoBo`~!Ks&h=+ z{GE7tNbsZy^veKzFC~TXt?VGo^a*?E5q^{yEIdCDCKHBT3^n?blL|gQr_FO(6aVF` zz(3~}Bcy_fqobpD=DwoiQ42qThqh(%5#aw4KpzF3A8c}P3>ZOcJDf_eOz;Da9s`OO z_HCCgctR+=2?%#StM9C50pSLPF|roWE&`}1-CNl$l)D0}I9ffg9aa{E zxxiEhT_GE=Z~(RFyQVjbvZP@DDD~Jh1j#0^rFbp#poMSz{Lse0b$<7ZBI}GjP+Uo zZyF5I<<}hX^1y{eRs)+cdoIg{GAXBr0BPHt*ZfKSI`#|1`;F$q((p$3!utyVt={3IE8=~ zs$&^U7MPUkf&a)G1@&1n#Pz)CF^3(&I*A#JC3fZ}oh?i-*tww~`VoZPK(D~?>HaQ& zKj9`r071=5&X|at-#vcSwFuiZcyB1tuPcC7Nt7Z?QO?C-BX-a!(ggDi)WlR-8F%v@ zW#?Pdzin}>839l*ppD6K7Iu$;z6ccKo*)uaLom9)Gy>iwh$)JtyRRZMUKVdOwTLqn%l z;+5);`wE}Z=?B2&2ga$I@FaW(m{`WVtQ}Gkq^bm`E)CP5C9wJvJ?qXN_Xari`Et_; z4z93uvPDS3Isc3uRt8)m+@K=!E$C5iv8@7tC%`waum`2TXDH*DKl%d70w9k8wnO)n zzbQ>vXs8f~GQnC$k@Ubs0x^u|-jw9zXFKI$m9qq)|60{Jqh=Qs;-?i(;E2F_fpram zBUrw#pw^+!5`t!6oT2ccu(`lsljHRMNdp{k7OY<&?gIV13r-_2I8oXCJ}3V;(9U3v z1GxxU#440N0MPV?lp0`8=|IbLXy^r4u>e&8Yz?IIX@LF+)(Q%U{AA1xXrh2cF#8V; z6?{cFtl&K^AQc0@0pA?11+04TAVG`@PUEb|_0b|dutUHKgFOXh#(*IQdjMFwaJ%r) zb-u@ZDCXwa7)leH81^8bFrli4Nh60qFA^B50I3H(cO}g~-`!Hd1c1{3j80>i?+|17 zA2k#BG#q?HB{fL_rBz^w2K0G_g5;|8q`X?j%AI426EZ#iFbVo(10r zb7SK`VE6;}8;nXYweet^1Pn90P=*YUi@@$yCCqPCpQqhn5H zCd#4#lslvg)B|s|npU|g6F-4lHwFqXy!n|%2LuCq%)!DoHaCAl8i@KkYeT@^0g?cu zMO+Ry3{Yq!Fe?a6CQNC;hyeQ+ETeBKEWt|iX#gEZT`la`LlYBh2BGkKuqm9u2tWxj zgx_MxGS*uE1yS3hnw1rj-u#f7KUnAsjVkp7hmkb1nLkU!n$JI-TK%uTt{Qc`24XMw zVRD1J1g`4rW-jpkA)doY%0Pt&!abmR_D^gySCN|*2NQI#MK%1$4_`KLooO_A?0UtFaOTiJ4DJS4IXaH8mBa5EWin zgH|r^y@8950w|*-%RVTUmzG|U0FwY_D%2c+79XIKLFooQ2Mjt0q=Lx6yfe5$r4#lr zPeF??dSn%>0As;q2&w^ycxYsVVFf<70p>YSbRj4L2ZR@TS$%y(jtyXf6eEnlwt|Td zoOk8iTQG+{v4WFx@BV!m;naj;9yP*ewLdak;s9_Au_W*`U?~8*mMIY_SJuC_Zwix( z+!lmc02OuR%@2pCdBm_9!G;Is{bLA9gXTd;hm^F83{YzM7zN02KuQUGYLwjwVPtUX z{|Q#Z#lzTmL9^}8q*4_^UG@~Kg(^@G>o5f@{R?2?gPEKqQD0ffIPJ+CcRi*H@Xl?Z zcF1e0HZMqy146-}lk1iU1V|4D<=DW@NPc`nynKZX<3`vL)cnFc2bjM)DQacIlUC;> z1@!YG=o#?wr03_`b($C(Z#fM#2TN2KdiqRlra$o?TGX5McQaIb+xqo?O{KZTAkgFD zmL!&v^ameEdOM8`{MPJtBoCh+N5Wjs) z)-z%69<`-@t_#V75&qt#ouno>luiw~6SFf|J0VnKuKfSVdJ||a*Yy|4XRXuf z)W`FAp8L7)>)Lx?dmm70HtwPTI)g*N$1WuWW~7f|lY0)~L)V7M#J)65PZ^};ye5V3 zK#-EkBAoFc>WWQ|GL-S9dp-pO3#>{QdP>-da%G) zFUZjOrugygJ%_RWjHOarS?;>Dd08m_-g@^23(qA-zn>>FB^MoT#60ccW3n%hT>PVg zjKN{KRLR8VVG)f~$2wcIcJNnxteAMH4bUa_HQ@7T^v(~ozPgb10zT$6-p1Eks_uDu zmY$rdeXx2g^u3Vl;z|^UTT9G=<$9bM|NP??rM2U2sjuNf`Y_JjhR;*@%Gpw7hY8g9 zF2$RAGTfZ%9&EMEn9lBLvdXsMwyVwW81r4j#4V{#YtB;@^`$j_&AY3IXUzWW2!_ozTGi33T_0)A~Mf>%QN4(;LA@qOJsdZ zWWR{77g~KOQ_HxkV%EznOH#Yo#?XI8US@gvRy;jrWg(I#fDV08_r>U>Ut!@PZ&vMI zeivwe+%duWKlg9-?U1bj=_3X7%yMVR7h>!c zKLqA6I6sI?FX+$_^ldRu&=Jhoyx`iTN-fhlHZ#q*#N`Fi<_X54wO8a~$E{@$}+PxxE3yGC~@q9IP z`Knvx2HX*+dZ%3W@4Z{gW-I<;=q9Dvu9s@z9W~;6T-R5=cA;u7xwicw<%^OQfsBQj z`56|zr3)UZ``#^O?2C5$;(K!Pc}{D{psj>eI@k1EjFax+wxp`bsn_}gy&y=6)NVS`F{Gts`Ni{|lq{6qO8ypT|}0PjRKkEU(i z_I+|RNf#Zd6X>yj@NpYb$IAN&wRFemWrV?l|0&N)YTGl^JCqqzz3flE@t`~r)VUbr8;XR#df36fkVIaBqJ4i$v5`Y`d&rpsY%&wf8;{-enDzB|3ZMxYFOxr|Oe_a3r1cOu<7sZLlTt9a4l(-yIw%c{p?uzy z*4&#?DEY%6>i^b#)oP{}N&zvo{U9ibs_J(<*FDrxNLU+RSsr)k4LU-?B|LyR)`G>D zTv)OYI2X+8M#mnXHQ2^wX;M5QGk_xM(co?W8*(mqxRSO;SNoNjFefWTI z#U2|`KttUbEAtuXmA(UKB!bDvB!|RojQ)j94~gdBtzLgyO;j-dJO52)y93ca1BR( zBq8A1)_049)xtAK2&roIyJa}$bzAlK z4%D=;-bG7D$T(nbJM=&8dGL1lfXr#oN|Ivj1=m9sWOooSqP^HLY;w{TrI|K zM%Cw0*AXvc5>gWzH4lBo0f{2M%?2rOq&r0l29Po^-au*>ws3L|5V-s5 zVHBVUgz84h#m8#BZS(x;sb0^o_*o+EdX?y|Lr!$fb@Ug8mhByxoWMj*YgpH&VJ#Xbj%`EvpL(C9lrpH^+0=Q^F@ z5G)`hG=<1VR;6aL&XCh%fMyHGC6FaV0d|u|>zWq;V2A83?AWwAZ?0_!tCh#6k{}`gJV|JC zxfZ`up_XL=<$$}3UI{1xQm)8y#S)zfT!+38$t<|+Y92gJUPhMuJ@d{UeYHiH|9nxnAN6C<7s-ScZ{! z!{I86qZ(ul{tD6?s6e~`t;YHPBACzXoXX4Z)+>LkAuQ;HtM339BUE*enN|Wp$EBhF z0XPV}1&^Vrwbi$Im~^zj9i(=u>E_$51*-t65G)3{4|uWACxe^ODRO;?qZA$FS+t}V zbFOkfR4@<@&jbF2dq^N&;TL8|rbjwQjdC{-VZ7{k#}Pb%TwWk-K;Qsa0bd~L0XUtM z`5tO%YsVsL1YrFZG~XZ>SB9mQb{9{lSyvk}Dd%5_jE=4xoH{*uR$U!W3I{dl4F>8p zU$RVS0oTN4#;$+0{=U^H(=us#7=gGP|e)`49^62xawf}M& z??jmeE*M-C#oe>NNua5iST)&KYMIx8Kmo}L6#>>AQZv8>A%P1(i7@bV2ql20`<8Qa zdFAT}5~c?#H}qeU#sGP-gyy7G+<+PrG6W-I$iqXUhb|ll5~@K$Zj)ds+)fOE{xSN8 z4MAiWGz6ECW?$0PKpr!q+tBm_^|S#k4Kj%2TS9Z`AP!^Q1zoiA0LiePnm&F6R6&9d z@dR-%NfrwJ-Y@Q`#|`AI1xE-NLc(d8kRYf@Kk8};{Py>~f9oU*qwxQsua$<$XYZ~c z3B-1=ej9OCNBCVolbP)#o4*{Aoe|bk^Rgby6f`5h68vTk0ut@el+_n0Uf;BIpe8o>>Ii zao*^&B#j9`t0&rcAVE`u4fenKPOln%`NnxN?!(t?#5&=V@uct77XqCEg$X@;e+fcs zWC5h!I|Z>AG!Iyy{}AADhy=~dJb;bM1xb}y{P86vF<=rvfRO{8HSho;&uVG{=n@d4 z1UP?^z=v3#Af0Xj9RThNiV%n{7%q7gX4GTk#Q-{|ns@!r*UR~sKnfGo1@|3|VhWot z5PwQgqQ2N^2;U{aIXIfzH2}SK#mF=X2y8L$hqdP_Nr$z5e6MBho>zYeAkG$07h2+H z`?{gW#OeV8kBl~8hPXMWfb)R@&bpA|Oc|q)fS7NrYDl8zK86)nAiT+Wx-M9Dn#u`{yL5whxYYOGUCyY3y^qQAlx5jOmo|a zPc*)b2@*enV*`~tJyWkIGc8ziv$DWeGy-)=sSs_$u@#Aa8P9=t>vF7yp8^qkE?OeD z>niszzo~$)S0V2chPeQkq?;dnBN_%tWF-lr1Q|#ovi1ZJr*zPL2rpRkPx2-pGbC>f z2bADRVCyAjwzK=C(*D9(r;cd-gJR-X)!x<7Z`VEP>^u;D8A@wneNO}YlxTgX=CJ<) zqXNpTk;($8A4DpfOytaiP}Qvn;Tt8Sr*C|&W*!p}!4p<%izGyxbtGB=@L+CR9eDfU zp&?-TfCvc>PGS_9X>5_J2_PGn2dwtoxe$p>U;wauPV%#s4^CB6x!`EHjIV?fC5UTz z!WVBcnYltv?~9iL96b{m`fm|Q`OiP!FIVwA;f;aV0oK#xg$56_PhO1s1Xx*;IgIxK zdd?jugF(yQOi97PhN{fVbR8uHq6bmqB+OzekMb>SAEcIs&xJ=skk~uo6MkxE8HtTVS;AHX z;z0<(Y*=2vf`KigbHXq1^5PwT;`Zw_aQwavvScTplv+LsyXR%XdloPD3t_b3c8Ap< zXjPD}Bo7u~Bkt^Xpz4G=1%Qm-KsAX>xH-8tW8um01~(t%ZhG_}Mi_tMoCf76Vm7fY zVi5q%XwA^C>YZ#voHF)gg1v*lqWX>;Y+M^y+Z^7(U}{~^T||$7_nPoI2)-o4GzrS; zf?@qZCme0p$g9j^uQby0SaKx!khq7=h!UkBoH1@QD1CbuEeYX*96bVASD`I}JPn3<%K(w=aCKF5?ncO@x7(u-{B0Rhs z2XbO@@e`TYw-XZ+5sTuIG3UfLku!p=cw#L`VCW9Xv5PVbNBi8EQ^^^9{g@BoyUUzV zfS2}8zK^=evzUXlbL`3hpOsq_(h~}lk0mfZSQS!58~J{%DRAzIT4~+qth)OQG9M3( zvCaw94w)#4yVniWOcSXD)Hh8{$M-PzkmjJZPvJcCTHo^0zoC{dUrLK|JaQ4A!8wQb zkEAqWU9U`+EVDrcd=nxevM(Tgkhv_y-W3&TKxLd;Mq=W+k}jcrsYj#FYX3gH*xA&? z?JWlB&{PK}(kXCSpk>bE)%9u{9jNeUBBc-E=W){3^c*7=$asRQ+~%8OP}Q7}{7G6J zp`zdS`B@K1N}h$pl9@(DUtcKNt*7ABhgfW@$dg1^8cykb(LQ*ML#oQppF8H=H9kn@ za8R~Dim;zu=R7~n{`UV@l*;nUR6wY91d<$7F#xF%_=cd%kByBacN!&EOG_p0r?IFW zau1Jo&22vsN@&n!C5O<)zr$k&IACXmyMRN)GC&Z>>9CF2MCWI74bF*OaZ@z9!vFBmin@oJ5_S zq*NE|k1l{J>LCtuwE4)D5eY%=-Ew>R|WF)Qk)Sp;vD`6Vu?o z?t#MHvzI5=(XpWwF5SIao+7nQar6FgK9{=RSw6kD3o|BSYiqh~?w(DeFiu%Lc}Z5{ z=6Pms>^0Cgf#4KoONJz{Y_nSZHkmt&WzmRq-Xy7zaR0-x5xacslXo}8dEM6SI|_yo zRR;7U4mGF&agR$cDHpt@(3acF8Nx*4-6y8(m7MeXHHn0E8C&(a&syN20?2%X52ET5 z&#k=u6!jExLZdRK-TyJYU z&x?P%{L(7gz&tbb-;3WembPFcCW{Qd3#W3wBJKkuAQ3O+woSSgfx1GCp{1ucfCA)c zcJ@P{IS6#+pL%`+^GO4=`m?tbJB94BP+r)Kemew^2b~e2DX~hJ7Glsnfoijb1~dF< zBEZEIKJ2w&GQrixammT2Y22`r7ovRv#a_E4AFl%3916NT z)oYa-iM8u8l+Yv0RE8{MlcNh3?W~^-}5~rbSC;9@*P0tLrQ6i>Jeuv z3Dd={fpd(EU!fWxS`)-gBYPwsPY2m3=LN&Gb#zD=B@R^Vg5)Tc!Dn*}6OkRN-?E8%e>DfDc8cufDQ#a+-ozM~4DV8k%No|Ebz5Oi?vUyK`qEdZ(~&oKI`&zcuVVS)VL3nO5498F(eX&IK7oK0 z>SeeY@~6D42SOq)u7DFiIq8WZJ`-mHIv8|&1dzejhDCzROdP5Tt=jlg1Ovs%2klc6 z8kxi^cv-ORBh6QMJUng>wigK50bAf80~#Rc{RZbAgf%EPK|G@ZH0I1g(FaQQ9lkC0 zBS|;;Z2(^yn*_c$BDwMFtbkO|#r<|oKwZ$FrlbfTK70bVfyBWh zYqg+&uUzf&<;!>xNy<6sao|>jwl^_Z`#f(G-b_$=0hT=j8}3@{1_#2=`hk@xT;l25 ziN-at^WS~+^Xk0UT1LI8%JN@GscUy*Iny7M`_-9=`S7(14{CsiyYw#QZF{sKx4JK2 ztJN!iL8Hv8I!cYN{ipe?dALHe{HMR&iIwlFkcj-SHMjpu#qme`u5w&U+qZSRs=z-k zNZztH=kWQZ%tC)7cc$jsl?9Wwd)n2xDtUdflY4FKEiK)y&g!xp$B;{G*!GwPgWL;J z&vnua=C?mS=OHK!+7Z;xOc; zyysL^#3}3TDFJMO^7*6qd2rl9cY;R-EYNN6Xjkd@Oz*U-i9sxiX%tF0*|JGVv1Ur|R*yQ-)^ zgd)FO=IMPA%tdUD+w0{C!BM`>yU}Y#ha-VC5}M`S^8%U#XNBn6eiU)|jTa0Gaw}e` zXZpfC6+{!Lw=x`oGQt}H@(}Ve)$o-eewPO-c6IfH=V1+lE~DA4WK;v?7(|(X@IDOk zmRZT^gHK19!75?%rUO91X7e44yDcJo60iJPcigKH%=%_?pw?(-Kc0q`qkoVheCtUy z<%>YnVq+O4d%G@!7^&rE|C0V5v~`&H#taD{kDH{ahO<6AL_K?5Q#g8Tsw zpr${IZb9uqfUMySQ5ytf9$}BOCQ~(gQ&iMh0M7vtyLamS#HSxK>gqt{C?4Lucy9;Q z-MRUIO2htlldIWoy-&qfjR7n>h$akQeN|@e=bqWBX7vE$f4$T9HA>BWuTt<{X5*Y> zxfobGH!;g;YUKIWs`Jj{>`dvq>e+Y!n2&G|U6rX*JrdjZ)pF~2Qs?*=o5;$RpFV9@ zPu#TsV!74Is8epNq>ehehS%z`Qsj{R6{dh-6Q%&oOH49@<`+8hq-x$R*jmYi)%Vfh z4`*8z#v2;+8g=HZA1xbe7wyww4xam8f~eATP4j2v{&8E~x3~RkTKmd}wLCa9>sfjV zj*Di<%@&J>9ouLdG$Hy~^N&u*Y@{G3PryiMosXWC+H+|YW^&VP*Y>Sux83$z#gDHy zWJKSQ-JI{?{orYcIJJNNpE~4w=xqpyrp;|J4_CcAiAPOFO_t^K9a?Wn5dV5QyF*Xo zT;dG5TvuON?B%!1E=rBoyk(R+rHifXLbBQgrW|gsea|IES6?x~Uc)MAmC z!nZP7vUCJ{rWo|vpv@r0m;VE{yn1Ug5k;h2&`Mtx94Zi8d-khup-+necSdR7Z${J9 zZOjMrWhhEA25v_ks}HCxGfnOj7T!CwE6DAzZ?KHQzV7v(E**%>Ji0x`b8b$|ed0FP zrNjGv|M{Jn>a=@0wx;fJtx1{jEww_w3-7z_zWG(ff0|u1Zjn&XuIin+dpe=fVM9o> ztUqJ2^Q|mO_Yk(gj&%vb{%Y%TrEXRmBXOJJ`=(DXlJS!Dn|QM1ww>kEW{`E%t$H@} z%&0c+>cifz{kEYE&%J((@bRS8VeGOByXoPJ#yr1ePVb1U>2dhBvht^MzRj2RuV2OBvx?%@PHGjpIK?x9O?=gYZ_L}WLUL==izlSMEC2BxzmeUL9B+5O zHa+dW&V7D=#@m%UZ_2StueoQ=a#QO+T7Y$-OuWAp8yv>;x^;fLacOLlzWHdE3)he9 zDO)<4i$2eP{Ba^ff2DKAtf+_%kJ?#*rXK83|(Ec*DlA3KdV3^89=zla^7 z_diMfm_nh2rrU)zh&EhKlPu&eZ9K+n{McvxBOv%yC(yh~K zIcG3*Tte~E^~ZO4i&y)t)GiC9TArj>=5#s2e^ZGl^v_Ftz4V)K89z_ zkx7#;*C_e>t=Y&_vcD}ypk&d?(o!W^4K>+=g>#CE5^h7#eM&>6t&93vE%IxMLCfU;!BN|7!u?vsH+N>?e@D) zFVlXVzU9JnY}=<%-YtZuG_bRxH&~ zgH@k3S~)vES5YsF{4Bfbbo|Gbwn_mvicqzDNPYbjc-o{F&^FFBnkaQ5_^L{g*VWNIGuX%@=xBS!*Ev<1>drDt;HjEq^MewGNK&N>ETKOz~?My`&-28H$Yz|S`b4bX}h@pG()`e}0%LBcY z4<(AWS$-TopMJ=1jT>{#F2n9b8?9U&5#9I;P7`Y#=r))i{=~;xZ8l|p#Xj|Hrq;8J zq;T4oI^H()<{O^3Zlk2wHrjaigVX1ik@*c?!NnKPU*j+nSvTgQcj@cX5u4ddCBL~@ zY6VMgo=A_6R>(i0uSqpJnr8T7^j55AzgwZsEiN{0F6T|dKim1KM2hCVbmV{C_;};& z?>Azt{9AQ$#nMAUeMd`f{iIUrZfuM&vT;&0ky&A449Xp+4DvlGd{N_-YF47>mBUp7 zqIHfoI{QDovF8mI2p-OJDi0ow-a>7NuBmnFr9`oE$*)DUFzt+&mXth%FENB$Wof4ciFTFOmWXTemfpQ}8 zkr(g&vr0=}e|Km#%!vU}8=_1n6HAyZ8g_WDk($NFzTH0R`1!oHZ{K*L&z?_Kd#=U@ z%}Y3yVxK(I*aM6*VV;60LUJs@t>ZL*_Ceq>`#PYNU|p7p3S<$0KQ9S|)#4u$RUtbN z!?sg$A`X`hcF|2K?%FZCs6-Lh{WjmJ)7aSTv6je(h06`MET$G;H2`;MK+ng1%;sih zCRF*adue~DdNp13Rr@3tzc*NCvquO7U3$*lYcU1ox9*T#WZSb)TbUUZ1s2eEV=zs4$U>L-80`Bn0&V}C{6v=w;m1s9{+A}|01uFeC?YU_lEOz%c4pYs_lh) zN9iuC&7?}}sw#~Yv*P9n5VPTUnI^uWiu+5?vySSSfzfiIFWJ-jwxY`t^Ss4eqmqwo zGL|$`?gSWhHVh|U`BugM1z+axGoM{yGKFqhBemLw?Iwr~phXD&gLnW1R+FRdfICQY zkek&t#%~zJ`Z=n&qtDi+L|a%`pi!nP-_Gd&{)a9Ap;J3Cc?^4dNaXPR;3BYxnFoJM zsI0T`ylyMQ5>=k#2y4)Z+mOT9*XO6#e*3ls{lCQgP&_E5)pb$k1Tq7d_vFbF{dYS1 zm;>~M*X=)2Qt_dWIk@*FI>nFv)CC(gR;Rn$JXDC4nG=R|7Obk+QGd1|LQQvLu z$mw@wS}oC(yn<>qtnTI5KDL+mSOl zye|0j2Z7uLPEI|RKgZ{T;wcIOd$o=ZufH?kEbx+pO}F*g(C4Tvx#3i2-|Q>(=Wvba zt#QvU@bUaCQ9Sx|f$mPU%SRnE(TxRfLf?E!8}CzU-tWLAX>hvz%4?O9eeYtw4v7z~ zGm8lHr2TVSHj8WLrTmECD?eXs{pr;;mdCSX`l{;aNZ~;vzk|m=+|+bnv2>B$$HjVL zQGWw>XSC61@6V}M-#1*I{xfH=#1>n{)gooRQFJml*9=28f0tEHsQ3ChT2Gv)Cfazu z2f@3brzFXgAnAeFpqWNr|2D^xC*n&9&tt$Y8Z4Wj`d5|%(29_Uc$NfL0uqBs3F5Z^{k7e%zUr0F zn89L}@<>eL&Bru!`t$}2E5FW8c>aJ^Q zR|{X>XTyWxT)u75iFiF@xbCt0_zOZIGuQx_gho8X)?v?rTa zl{bzBQMJ6@MioUzFW;4X;>G4p**8v+jir_MdmbfrSErgDkr$CI{1L8~J1l3h_eaY5 z%?(za7OH>x;$8f1_TTKk)%(Rv)J)urXF$Dea>3tIVvV)B<>V||ot4wKhKp`YJdZWi ze&;OMuBo7!Zit*x?%ViDM2Y3ne>Oa?xVD@iz<+@Dh_u0NqLhkAsK~f4hAcsLp^*`m zihQ4@k*1NXkqS(dk#5}_QFDRu2E9cYp|4f-?j4Z>d}(jT_+GXCZ6VzPIp|r==+83( zPVHNqn|hIvF-0b*for9-@L?SRvaK$o=W?IrhRCGw_s27C{rmJwMU)6pJXgtb36D1@ zXoGg8N~`1Fk$t2|KOnVRfXvG#;WcqieapujaBid2Y-b7624Ck%??Exw zzWv49YR|=Mm>i5L&*a~@tv#gS=85u35ywBj|9GY|QLi&uuEC{X@D=d^yE#3gZZ>@H znVZ?m66oM`Z6Z18+^eJvHjb^^*v_}&BtiN+U-YPU@vrMEw>^(7MR|;KhzlmgxZTp) zSyNGW@%PO1ulJs^j|)75OFx$J(Aoz|*nQs~bA5QKUHiho!||27LDNbO8x|8oRAUw2 zvh93%{=qxTPjeIHo2~>_&Bd%tt@ONozn@L$$?m?H?x_(D_r6sP5>s@RnWALeGQ(|r z;Q_68Vok58Qd?`iQLAl4?A@~mslxM|IBYDFThFT z#8idy(#GxIkJw(_T6OK>x32Ot|(tF7y*^H$Io(G~5bp1-k9GG;t|q{eald{=j`zfEUA z%u4v^xD!)Z>&Xr|g9LpChT9>GO`M-se5cR#6|%HNBqmoJ`CEG7k?t=rU`HGaacKaV z{oeEy-NucSKh?BlS@+Yc&*$Xk;y^CwCDH@z0;tHKR75|#H+9+Z+O?XO%DS!Ke@(DU zmX;oe^gz^oQ53j6hp5e}^8H{ZuUcEjU)cf{1ArZxUU+&LfYJf74(i|^6NB)yG=aHF z4X-Eg9s}`AG^rdL?V;Po!Y76jzMHrb!Klc@ZZ8>>zu@fq|(r&nD4Vj zAs+Vh%7F zdy)3)Nn4+N$>i1wM%&;RiTdQ-TuI#`W?CC`l;Ts9B5%l|o;*Gf_GoV6U7hLLRkqEM zER-U$);{8$gNd76Yn56f(sL8kYvQgAHR5`Bzuuy#d;`h_rrk5U5I2^;)>M-S*OQjS{ z=l{FdKqP+nT60jemgbGBrE8jsOdazk%vYQrzn!j?C{9sJ`OkKj5hwdAar5JXpTA>&mhFbh5iu95$q}A}H6r{tI%~(*3`?-nmX22-Hy_X_* zv4Q>i(nvQ2w}mX3E8FRxHkpy7XCLb~NaIb3S_v$y4bDvMz1dA>r+lB#)9koMjmj-A zk6OgTGF^?2^u!Se#h9qsmoWh$@ACb`i?Pa!!T|bvPD;%)K-nt&>VDQ=TILak625$4 zP&{w#!$Aqn)>SrI)ff971Q;Lvc6w(U8K$JU$nJB3pA`$3rY#3*YRvXQ*zr)|bdojH z7opY4$!caITci(4C7Nhw@w}d8kZz5PNu6_hf;yFlVMkc)z3OK}BO^v##YN9l>m+Pi z%vqG|VenB`XghgWQU4}J0BgSSty;eH^lQ2$#n3eLQs;?@4H}|TY^PP~9Bvi8BRQXEGG-FwA)U&(Ch0 z{3xgFLD6A)lBhZ{#SE5GP$%zgn{^4sOTL2>$JjA+7$B#}$p)w%x*wuv!d5^CdU%=O zJOW(`j12F1tg;{YE#h4ZZVi?>?)TuB;QlK#W}=sC<#E?SQCInXx=!cb4G>bAP_RPVl%Q&WNnb*$ z;?B;`i=#)7-cE*2F^avDGlYaB5F(d285PbUOCHn6!cYmI`#N#rgmd4$lZ3oO$UrY< z8j>IZg#;0HqG(jq_$pE25%$c|Qi-+11%DK|TaW+-s59H=76EOf=u+vT=&2A?BD;CaNH>&)=y_t zbU*E<16Bid8M{v@J`#iwM1bM(JO2^yp*jTxf^GuJ1CU=BsDi!^+IlE}vxg++X7>X`x=)S0A?w6F*S;|nSY4m+5+#He_Ff=}n5m%%vefjncv{(?@ zGyHr+$pAM3`-!{x50eG@2E@GrRlt=9GM7^By9rWry1b8;p$&tugCHM=(i(bnrR)m{s>#IL z17A;9R~KXwsa-L)1~wLR=D09i56W-+4jv&Up+n({g!KxDU$-?`jgJ)LxLlW7(^r5L zAUD9xLg9r?2dZv-8l~q=omxmA#iPMr?d5~^;(b2+C9uR`c_a^LG^XJov_1 z_ZCJfF?kP;+ZVSFL|e7-eYEyC)b=Zdp5%1#%E>v5MwKy3S&qWwhQcbe=(*> zh^pWm^$w)%Fm5q$>iqm_TsOjWus#k)npjwz5#O~N6UY}Y_CgCtMsxh-sMkcCeOgzi zgw+iW7rI$Is)BTA;JCRi3vb31_!#Uzc(5E)Bo^O|g+I{5pX7}uGO6tBLrA3s1F5#J z&dpnQo3?4v?yp+<33)}86W>?eUVVM|ePVT5T2^7++nzFxEgR!^$f7)>rwtDl9wzWkB=TWK_ucSpZa+RE~w^4kU!`;AXdH@CJa>02L3=s8R~^{T>%fm3RZ z{YFuTT-k9&S)(hqp3~Xt8@EZkZ7ilJ5I_1{ecy|A?L;;H#-=AG&SqQ`CH@Vc@?Cnj zG@sAa*1veX+`!p}E7|x~=M%w4VXWHuue{Pr-%rqApZVSNwP|B|`MC@o)1xs|t-B)6 z;^&^($=p-_OSn~X@oxLKE$NmAUna#oNk2;$G@$dL;lRN|rzN(;W+X+{|KTq>rhB#j zh}PrCUEhxkj}G_TyS;Ear!x6L0CUc-2WRBn5|3-1Jc@haUln)N((0w_f3ITA)x@K=xy2cAyi5p`yU8XvpQak!mCBofgw{MjH&Zp$(0B8ro)KxhMr z@(HqA#aG&5uXF^vas#seYfEuoHp{Vm!=r5nE)+lt+sL%Idx^e}noB6((cm5OK*&ys zY_a4`?zH_hTyQq~g5`RKwS8;#^L2PRHe$@LhS-ba^(U@eee#K#%*+OQ=_8mnx8?99 zEOYLUY1e}v%r8e?NXrSm_}=*vkD0C8J?D#Fm4~-%$j>gi{!G=Ehzem8CGiS^sTw7m_-oDczq1*!$%}|6#a~D>WMB7C zLB2ji)QQlYj(>diUuPI(X%rshk^6f6tSb`l+H(5c0_>IB1B=J>gsN=my%j4Kd|?j#)qv#ED^}lc6u|Hap@^HhEZ30cJ)+s z2VMA1<-W)i)r)VsTbAQg*mGk%`b|gvy~3&d>tokK)|-XD>6qFRyu0jEdG~%FgV#|j zT-h<~B{Mg&a&k^&U)c3f0Svpb{#fonXW_X{cbNAgR;(?*Rbo>Ll z{)5ByKc%(Za97M5rFn4gYn=}?x$5~k>mqvIjnN*h&Du|Q+dP|Z1_EU1^Uh3cZZcO< zi4hY!Of>h3+Fi6|;ICL`%U`}91I>`vV8erFXS;oqfY(0V)~{c_S&3do?c7uV8Sqy~;0fs# z4gMLb#l~H{em9rMls4vrA#G$%tI(mMq*!$K2%H@#NdF+U%c{qv)e)j8JPxc)2&`I* zM))goPsATj(+JI9@)~-ToxLmCveRD1&(2V=Li|e(^be1EJn6UeOy)^&dF^=!cFFY2EE#MZGLp6*~S=0gcR-743kFuC_fIr#g^?Ti{wGxYoW|1P7Raz0myL zZw!Mk%=BLbO8aF%*&B4C|4U_*zazk5tK>_dHTsJauViIrdX5zQqeX!xsoZ=*zO4rG^WFE!(iE&2`odPNA=BHWR^f&nozz%|*;?+O>m4kd9j#r3m&6 z$e#HgJ_|L_f^K_QFo2nW%38Y`ckM& zUTS=B!dzsF>YAGiM~^>kIkcmFXHQ(A@}5iDj~sH>GgOb<{3V`V(e5&6musYO=W^~* zW$HVfqjGz~b2G|D?W8p0Y>usGQ1L2WuNmGj_$Eo}O|-vZr&pxP9Zga9YYo{m&Tm3= z_b_96Ody?yyN|kC=Jj5^jMfoVH)hJmPI_0{5>=CxQ(KWUKAQ(QC*3r{wRPdy(t3&HF7shteB{!Dlu!0hT|e3z)-;4DS&dDSFg& zCW_kg)5tQ@MrB*hzyn`%l#299s+M@=PIZe<|591{QWPW_BURHhz*4T*e04a6t^1EX zhc6u1AT>j!BS3CBWC;dOdX9NW?T*O}!8Z2iT%pj|;0tE^!ZwxNk{RTZB>Zm_#i+yy zaHl|7m@Rt0at=q$_(DGK{LccbGZ(WjC_M?}>StH`zvh6ZvVlui)WM61Ho}UjyOZHo z?YnnAg|p0J^{9m$gj|F^6&ZNnlHT6P=(?Mpt&FE{gIWG1X0}+Kp9*~pOl(V?wAZ*L zD1_HAMi>Sj`Jl0#kAcSEI5l-o*&)_IxQ+EozNy@7dvDXJ*3iT&T8~R%1rrhi!R82`6Spxsg3f6?NRiAtJ=$!yAy(N4xI zwu1il2KM&nefk49oa0K$(s<=gG+nlKKJa#azTl@Xd!WrFmsU+bxAYMO3WmGEwH*sC z@^lP2d)qZ+l$j|5MT@nnKp=Nqk?~^WNgoQO=k|_Q^!gR>^6caVQ4Xv13oIi&OKl6C zj21-~pD~m@vH9fh?jrvSi+901B9XtIN9Pu$?OEr+jdx=XN!N<)`^Gq~WUck)@k#5> z!l@M=@>Yw1+hvK?pXsu0^JX;jD)ZPu{WXK}lV_CHYg-{W3NAK8xs zG!&&HZ|P%$-%MRggVQR>Oo)-JLpPM5y1p$3I|TfiU*X7s835FfGkM(=-Z?f~)+hPB zciQ#|evh5zFBu(AIOG>u1eG2<;iXUid*5 zFJ4@n)?YbPvhb$l3~0a>O?`~~=yj*+FY#fPR#lB@eKl+#wD@yGgW%eZ!_#ZED^m+C zT1*ION#N67=%fLCVtm{MfN9_1PMVtlZ-m!Opi?z~&^AoZ)gLz>3!Uyds(dnM`|TT` zuT^j;A`^Z?L(kpn_upZqdTgU}L+yRUf0a+<+@!eVs%wV69&IIzAwfqD_Em>wJ-um@ zPQ2bQa0R?S$8zd-^Et?ErFlcUr(#wlpb#Yej6#A;rdA)gypP8}cXrl)`NEEU7shm& zJ|ofMjtUxb(NR$qS^VK!(_tYD$tNU*F5TX2XvPL%Wcr;*0pTKDWlNe>Vss0RGozI_ z{eb9ryPpnCBxI>QQW&57r!TWZcLZ`etQNlc@BjQc4DH=ed^WROpq(Y?4X|8q{HP zxCG43!1ou1ki@T`Ae~4~(M|*4FZ@-r4~^(4Uab=NRibkR#e~_oGjP5_r_84BrV?Pp zb0jK#1jW9#Qlp3xrW)R2JXQ3@ya?LP#g49}Z7^3uT*rQVSqRX97j)alEO0b_Sf7i> z3w~37>4zo^0DwM>WR%q7HOEVhZ_nw{$ACANNb#Z3e+Dq)>ftuk)5`y~U68WSncfuE zd0PB%oh!w(Y&EbFcmVXnCozjA!GN7OdhtDE-?q(iZw-2J+V;A8hebrZdPVWzG1v-M zdi2(?;LWtWNaKoj7ELf74=^CWIJHqW#On**Sf_RxS1PI8h2u14OHkt=X2V1qYIhj7 zp#*%Kh%zo#BlUE5{Y53FyK`-b!bK5@&Ug>AdGb%Kj8-u08v!MOqG&?*yUm)%H;TGT z{ePG29!VOee*h0aQv3n}w#bzsBMI169O=r5$uK&5qEjCpzIPP;GcFUj1GXRhAs`|6 zK9GPTTdSm=Yh{uP`Q*4xOuJ#qcy4h}ssYOw&qMX?4-8W7r{jA_1JoM7z`KfzM{kbB zW^NvUAA!31AD{tn7I2Bnn9l`FfNu%}67mF;P$=F^F>(R?4R8_QFWf59^d+1LW9Q<+ z9CKE7w)|fg33!UR%yc+Gx`20nYWSQ-1e_=K#m>VWxZ*rz)cnF z*RlXCL`h2tq*bx`ubREUG4M#2TPWs!;1T`d$+7FOmm*^!7)rx8#y$ZM$Q}bUxDWWo zXq53Y@qmD;Ou)jEcsT&|0b~Yf0*t?>Y5ym@(EwU1vETq-V5o-h4FFqUSuoh))P=@n zD`tGj1Sh6!K$v3qc@iE9kKq0yrXAdSiY@B-#DBo&e=%rf32G1|ty%o2rf=Oh(Z;;C z0Xx-em)|w}KN=wr?#-${`@8wNN39wN^HEk9F zoVp5?GlvB%bxOKI&}dl(8foycVBM_3&SoaU7lTS3G|FC)fNLYu1#}i^ts}xZfTb_7 zpQz20jiv8&Nzq7!Msg@{*~7xn*p@5g8Qml9O;8koOzN9(hpm9w~ZFfZawa^ekyt@@_y36z3*${ zWnN4UoK02Z6Mkl&E4|t&+B6~&WmN*TV+kd-%&G$YqnnI!FAa#EJ;UWhtAgVFrt%&K z{R5}HQaU$f++8=r_G%T7J@}^Ads?>H>ETF*LwuF(s%Khz2HxTh9QFLT#r1AN&>fl9eZii;S2p1ae#&InaLo!&UwLkDKbSs%Lr7AE)3CS_Viq75gNpR0?mncnfL9Lv2qF58TH4%KE!UNaj6vglsI zrPK^Jb%9YlsIM6vE^YsG>1vv5jTzQ8S$lp#$Bae@x1~Pl%elO@hm>|O)11Dih^@#+8hhI=Ia2}0A^sN5aJ z*x+Ix?XO&kHw|EBrq)kR?o)p1JaTHyuOHc{OlnbIlJPo7x4Je<>+k47kh6q)$g6rs zU7SxCr4fibi**Za-5S}_+cJAwTU$L%kFOVkMh(kLbigWhC|+hyrQ3Sjx{+)9!fFA| ze;odOtm@0Q!}BVBa~++Xk0@i(N3dv-I{{s-ZtM6_)7q>Hawo07Or8u%0~=FZ96VBh z^96nnD2sGk6ONwqO8u6j#LsFGP5_kxziUpu6@35m{oL*!SpM0t{8Ol?>=az}4O=k- zhi#MHhuc02^%I#nJ&0j5R7n_n)5*8<22+6-1{;}hlqyH7h|*jxz2UF9!Vl5BQ6_-$ z`_ghd<8%a3YBk}uqk>(N}>OEmJ!Sxsi|?;gJidw-~11ouVKbg%!8Qrr~hTNRfFN2_BvhPBBYFw8+J zu-9-NgG<-D{d6uFFk4fZTXKg1IhiGdXP^N{pbKdyFy6+o@t~NPKR7WMBM3{VQ=bG+ zWfq`a=DkZs&mud5IRf5(`5&-v=i7AOy1Mml+2bn_7!;)|{|>XstV?n@r`KnDCHn38 zqpziP*V36o0DYm*{C_Z2=IzDs8c2fjT z_sRY{(7pWEb~F3zQh<##w-@3-9-)r=i23SQ4U+rpW3a4Hm|}@=9CKBpQ3QM3Q@%;6 zZ?cMOH?||N7i%cNcZOrAj0lUM^dbH=uy2NE07wGosk$TBJwSwlq?v^s#wmVQFh`&? zPC$c%asc|iN3a1|MJz`S9z9BnIs5%Yt$?!zYNWr$B(T4Tg+fx)X^aE)Hnx?5N6Y zQ71z-F!wpPSRRA=B_&)p$$^fplZ^kNzQ+h7$a`VvvtU}z=>IY&=Ut?Av45{9y05AH zh8w}4hj2RKn1>H~ARcIZ6YQM-dMV&VMEU0oMrqK!gNkW5iPy#; z3z#yQ6_u34%pe^qYw#5R#wox$nG~`7tU%OI_s0NGnCf+D5c{tKW)CzG!UZXNKha}%VdJk4S2a9$Ko1GhWjf{XmUpyKb(Xo(IM0Up!iEl(O{ty01AnA3G^kd zF1*bWeFw@{n1qmI2?^)B#2g-E+VGQ_!70eVQ2j&WFaVkrpeRX=K^e9gK2@1joX|^7 z5ECSnln~&<`kqwoph4~6dIN?Q>lcdzKOYD#6fI~MF;$<1 zUS{(zj90EAmPuIt=(0&&_^&?@0-loe@qIvd;uc{b*wggXPs}Tm{ROfQR2@34CXhg( z@g%d=gOW31oi2mhKo&zUM+|w79t8@u4h>XGi#mv6{80P?JwCX8l;7CMNtDV%9MA(D z_PSx{vLG=)+adAiixC-b1`ny4+JeFoE9h@H1?~vpsmYuxeBEv)P7H_!^Sy=t-~W5b zdo(GTBJ#Vi6T-=<8(SFG1((@?9us#s5MN>)jp6TAPJt9yIFm5XlJ*HNhJ71(kgKUS zzJ%FCnuZa^Q88!>*H{WTl;J9bF%1kRr;%a8k?woSES|Z~*rKCkh9`rM~A6K8c6SP)CqTWGZ$oC50r6 zP3*Bs;QssKtt+T{ob_`!Om5&I;i;KgS_WZL>lFn_nF-Dng*If-ploqFLEf9-F<@33 zZ8Y9oySO$;ps)RW92E+35^pB_d?c2BH{*hVM_~&iCS=6d;9o4I$A9;iFJHcs0|k$s zm^c>~*W;m(><*38$s=%IZH7Qh;BevE(b59-Z`&lMi9y|5w%7$JKmCar|OvA);cH*K4EaayPv$t1-gOi0+K2 zG>slMksduPYBps(d70T#YVjhnm5H{J+f5s$COs&2U)YP=eHi zP+2Dnd|I@FXaQY<>_lN>;kiOzX1m{AK{C3f62(TgDCCIF2SfN;A^j@iaT>_P`$n$Lx z&fqYTHC(35l%#4$Re z0<}?$$2bFRrpbmE{cXJ2_@$^y%YS0I-H)s|q0<07Me2>~YjL85KOLki1jmG44Q`0$ zZCt+Ssm1O06?~$b!EH2& zSJx&e96$(7LR_mDJOE?SP!OzXN6AH{ZO>pg2r3XzY=uU534eg2p@PH$IIznJu>+1R zny*jG!;1>8R&b+WvP8MnlVmA^b8{p16 z=2!YbpcnZB-ht9W#dgV&1l%$EML6I}DMy}3mBA4PvHbE&4klFEuZ&Xw#Evf) zl1F0jF0(Ao0oiD?82=kIF}jr*}?2YYMh2iA}SQbIi2Wy50B@xcUZk~h}>{DQHYjJF9)~Ol(5(v8)m$* z%I+~E*tIcjJ=%a7HH0i(c91EsT~kQMy9E0DPxXQ$`|fp6p)=BwWX|_IYMt$DK+ktewC9@3L`vHS1;E%?Jg1H3N6LX3(jTv^G2F zO2POZOWz5*4mq82nkzTEaJ*x1_jvxI*r0T9we88I^P}WmCtdb1{_*m8|8CEx-UsaE z8C-^qk+Lks;?l%ss|ly<4A0v>ex!}&dE@07K6i{>(KM#=KV^O6{#Z zT9Xf&!5m`ipjWZZU|a6R?YibnpHLsaF{&!3(8dy7RL8s@hV_m*@ps9HmZ-P>>W`kI zt-l|(qAdJatYW3hD`jRQpWg XCt2{#)_YAg5`GrDD&(i;uif=Ox_ Date: Tue, 17 Jan 2017 15:40:01 -0800 Subject: [PATCH 102/210] minor sentence edit --- ...nfigure-aad-windows-defender-advanced-threat-protection.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md index bdab2fc797..04604678fe 100644 --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md @@ -80,10 +80,10 @@ You need to add an application in your Azure Active Directory (AAD) tenant then 23. Save the application changes. -After configuring the application in AAD, you'll need to obtain a refresh token to be used when you configure the connector for your SIEM tool in the next steps. The token lets the connector access Windows Defender ATP events to be consumed by your SIEM. +After configuring the application in AAD, you'll need to obtain a refresh token. You'll need to use the token when you configure the connector for your SIEM tool in the next steps. The token lets the connector access Windows Defender ATP events to be consumed by your SIEM. ## Obtain a refresh token -This section provides information on how you can use an events URL to obtain a refresh token. Obtain a refresh token used to retrieve the Windows Defender Advanced Threat Protection events to your SIEM. +Obtain a refresh token used to retrieve the Windows Defender Advanced Threat Protection events to your SIEM. This section provides information on how you can use an events URL to obtain the required refresh token. >[!NOTE] >For HP ArcSight, you can obtain a refresh token using the restutil tool. From 645b97a7c32ae6226513ca34d434304703285cce Mon Sep 17 00:00:00 2001 From: jcaparas Date: Tue, 17 Jan 2017 21:09:08 -0800 Subject: [PATCH 103/210] Update configure-arcsight-windows-defender-advanced-threat-protection.md --- ...gure-arcsight-windows-defender-advanced-threat-protection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md index c8c613de26..1c36768862 100644 --- a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md @@ -46,7 +46,7 @@ You'll need to configure HP ArcSight so that it can consume Windows Defender ATP - **redirect_uri**: ```https://localhost:44300/wdatpconnector``` - **scope**: Leave the value blank -- Download the [WDATP-connector.jsonparser.properties file](http://download.microsoft.com/download/0/8/A/08A4957D-0923-4353-B25F-395EAE363E8C/WDATP-connector.jsonparser.properties). This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. +- Download the [WDATP-connector.jsonparser.properties](http://download.microsoft.com/download/0/8/A/08A4957D-0923-4353-B25F-395EAE363E8C/WDATP-connector.jsonparser.properties) file. This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. - Install the HP ArcSight REST FlexConnector package. You can find this in the HPE Software center. Install the package on a server that has access to the Internet. ## Configure HP ArcSight From 2ce69ec44ddad431e0800b07215f002795fa8f4c Mon Sep 17 00:00:00 2001 From: Alan Meeus Date: Thu, 19 Jan 2017 09:14:56 -0800 Subject: [PATCH 104/210] Update windows-10-mobile-and-mdm.md Corrected an error in the servicing options table. --- windows/manage/windows-10-mobile-and-mdm.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/manage/windows-10-mobile-and-mdm.md b/windows/manage/windows-10-mobile-and-mdm.md index 24514e3416..cc517ce971 100644 --- a/windows/manage/windows-10-mobile-and-mdm.md +++ b/windows/manage/windows-10-mobile-and-mdm.md @@ -713,8 +713,8 @@ Microsoft aspires to update Windows 10 Mobile devices with the latest updates au Cellular Device is only connected to a cellular network (standard data charges apply) Will skip a daily scan if scan was successfully completed in the last 5 days -Will only occur if update package is small and does not exceed the mobile operator data limit or the user clicks “download now”. -Yes, if the user clicked “download now” +Will only occur if update package is small and does not exceed the mobile operator data limit. +Yes Idem From 9f3c0ebe6b009b254b075ac2c77bc2815f4976af Mon Sep 17 00:00:00 2001 From: LizRoss Date: Thu, 19 Jan 2017 13:06:37 -0800 Subject: [PATCH 105/210] Updated with RMS and Work Folders info --- windows/keep-secure/limitations-with-wip.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/limitations-with-wip.md b/windows/keep-secure/limitations-with-wip.md index c95ae45458..bb91f92bde 100644 --- a/windows/keep-secure/limitations-with-wip.md +++ b/windows/keep-secure/limitations-with-wip.md @@ -27,7 +27,7 @@ This table provides info about the most common problems you might encounter whil Enterprise data on USB drives is tied to the device it was protected on. Data in the new location remains encrypted, but becomes inaccessible on other devices and for other users. For example, the file won't open or the file opens, but doesn't contain readable text. - Share files with fellow employees through enterprise file servers or enterprise cloud locations. If data must be shared via USB, employees can decrypt protected files, but it will be audited.

    We strongly recommend educating employees about how to limit or eliminate the need for this decryption. + Share files with fellow employees through enterprise file servers or enterprise cloud locations. If data must be shared via USB, employees can decrypt protected files, but it will be audited.

    We strongly recommend educating employees about how to limit or eliminate the need for this decryption.

    Important
    If you're running WIP with Azure Rights Management (Azure RMS), you'll only be able to open protected files from a USB drive on computers running Windows 10, version 1703 and greater. Direct Access is incompatible with WIP. From c87e4998511b2751e1d2d5f733bf7b293bc7e800 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Thu, 19 Jan 2017 13:12:33 -0800 Subject: [PATCH 106/210] Fixing formatting --- windows/keep-secure/limitations-with-wip.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/limitations-with-wip.md b/windows/keep-secure/limitations-with-wip.md index bb91f92bde..ed21652e85 100644 --- a/windows/keep-secure/limitations-with-wip.md +++ b/windows/keep-secure/limitations-with-wip.md @@ -67,7 +67,7 @@ This table provides info about the most common problems you might encounter whil Redirected folders with Client Side Caching are not compatible with WIP. Apps might encounter access errors while attempting to read a cached, offline file. - Migrate to use another file synchronization method, such as Work Folders or OneDrive for Business. + Migrate to use another file synchronization method, such as Work Folders or OneDrive for Business.

    Note
    For more info about Work Folders and Offline Files, see the blog, [Work Folders and Offline Files support for Windows Information Protection](https://blogs.technet.microsoft.com/filecab/2016/08/29/work-folders-and-offline-files-support-for-windows-information-protection/). If you're having trouble opening files offline while using Offline Files and WIP, see the support article, [Can't open files offline when you use Offline Files and Windows Information Protection](https://support.microsoft.com/en-us/kb/3187045). You can't upload an enterprise file to a personal location using Microsoft Edge or Internet Explorer. From eb7de812eac255d41a7e89ecf8a43ab068751766 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Thu, 19 Jan 2017 13:14:03 -0800 Subject: [PATCH 107/210] Changed version info --- windows/keep-secure/limitations-with-wip.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/limitations-with-wip.md b/windows/keep-secure/limitations-with-wip.md index ed21652e85..6854c45883 100644 --- a/windows/keep-secure/limitations-with-wip.md +++ b/windows/keep-secure/limitations-with-wip.md @@ -27,7 +27,7 @@ This table provides info about the most common problems you might encounter whil Enterprise data on USB drives is tied to the device it was protected on. Data in the new location remains encrypted, but becomes inaccessible on other devices and for other users. For example, the file won't open or the file opens, but doesn't contain readable text. - Share files with fellow employees through enterprise file servers or enterprise cloud locations. If data must be shared via USB, employees can decrypt protected files, but it will be audited.

    We strongly recommend educating employees about how to limit or eliminate the need for this decryption.

    Important
    If you're running WIP with Azure Rights Management (Azure RMS), you'll only be able to open protected files from a USB drive on computers running Windows 10, version 1703 and greater. + Share files with fellow employees through enterprise file servers or enterprise cloud locations. If data must be shared via USB, employees can decrypt protected files, but it will be audited.

    We strongly recommend educating employees about how to limit or eliminate the need for this decryption.

    Important
    If you're running WIP with Azure Rights Management (Azure RMS), you'll only be able to open protected files from a USB drive on computers running the latest version from the Windows Insider Program. Direct Access is incompatible with WIP. From 5facab755fb08a3b16586b27b29c0055f933c4fa Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Thu, 19 Jan 2017 13:22:50 -0800 Subject: [PATCH 108/210] Squashed commit of the following: commit ae0821cc0bd6f378aa9da4674400ca61580a3fbd Author: jdeckerMS Date: Thu Jan 19 13:20:22 2017 -0800 fix opening commit 734e033365f0a6365e589d15270649f4cdc7530e Merge: 7bd3b34 f240259 Author: jdeckerMS Date: Thu Jan 19 13:16:36 2017 -0800 Merge remote-tracking branch 'refs/remotes/origin/master' into jdshsec commit 7bd3b34d4b91b09f3165acf03c22b6155189a9cc Author: jdeckerMS Date: Thu Jan 19 09:08:06 2017 -0800 desperate commit 91fe259153f2e2f83c74252507a8e9dbe1875cfa Merge: 46294ae 305a40c Author: jdeckerMS Date: Thu Jan 19 09:06:27 2017 -0800 Merge remote-tracking branch 'refs/remotes/origin/master' into jdshsec commit 46294aee6f5d04f6eb622f7cdebd80253b5f900d Author: jdeckerMS Date: Thu Jan 19 08:14:03 2017 -0800 complete doc commit abef5fc778ba8a94d0c99fb42230348c5139cdd0 Merge: bbc7a1c 54590e2 Author: jdeckerMS Date: Thu Jan 19 08:06:29 2017 -0800 Merge remote-tracking branch 'refs/remotes/origin/master' into jdshsec commit bbc7a1c9e4daf6f19834c36139e6db22645b8142 Author: jdeckerMS Date: Wed Jan 18 13:18:43 2017 -0800 sync commit 4190ca3fdf310964d903a5efb370cda43041b3e7 Merge: 870ef9e cf11083 Author: jdeckerMS Date: Wed Jan 18 11:33:21 2017 -0800 Merge remote-tracking branch 'refs/remotes/origin/master' into jdshsec commit 870ef9e5d67a9635f70bcd98eb09aaa3486a1b34 Merge: 9624fc1 cd1ef88 Author: jdeckerMS Date: Fri Jan 6 10:12:47 2017 -0800 Merge remote-tracking branch 'refs/remotes/origin/master' into jdshsec commit 9624fc12b4df5f076afb951af42e3b3428f081bd Merge: bc3a456 c053cb6 Author: jdeckerMS Date: Thu Jan 5 14:54:28 2017 -0800 Merge remote-tracking branch 'refs/remotes/origin/master' into jdshsec commit bc3a456bd53a44a8bf1021109d10977b99c4145c Author: jdeckerMS Date: Thu Jan 5 14:52:56 2017 -0800 save commit 32d3be63c88eea3c9586605ae269c19c6a0717a6 Merge: baf0d3a 3fdfc40 Author: jdeckerMS Date: Thu Jan 5 13:38:22 2017 -0800 Merge remote-tracking branch 'refs/remotes/origin/master' into jdshsec commit baf0d3a6a3e10dbffa2a4543c2e8fa37697e8613 Author: jdeckerMS Date: Thu Jan 5 08:06:27 2017 -0800 add new topic --- devices/surface-hub/TOC.md | 1 + .../surface-hub/change-history-surface-hub.md | 1 + devices/surface-hub/index.md | 5 +- .../surface-hub/surface-hub-wifi-direct.md | 121 ++++++++++++++++++ 4 files changed, 126 insertions(+), 2 deletions(-) create mode 100644 devices/surface-hub/surface-hub-wifi-direct.md diff --git a/devices/surface-hub/TOC.md b/devices/surface-hub/TOC.md index 47279ae319..3c1ef3bcb3 100644 --- a/devices/surface-hub/TOC.md +++ b/devices/surface-hub/TOC.md @@ -36,4 +36,5 @@ ### [Troubleshoot Microsoft Surface Hub](troubleshoot-surface-hub.md) ### [Appendix: PowerShell](appendix-a-powershell-scripts-for-surface-hub.md) ## [Differences between Surface Hub and Windows 10 Enterprise](differences-between-surface-hub-and-windows-10-enterprise.md) +## [How Surface Hub addresses Wi-Fi Direct security issues](surface-hub-wifi-direct.md) ## [Change history for Surface Hub](change-history-surface-hub.md) \ No newline at end of file diff --git a/devices/surface-hub/change-history-surface-hub.md b/devices/surface-hub/change-history-surface-hub.md index 81f40741b7..dbf6b92769 100644 --- a/devices/surface-hub/change-history-surface-hub.md +++ b/devices/surface-hub/change-history-surface-hub.md @@ -18,6 +18,7 @@ This topic lists new and updated topics in the [Surface Hub Admin Guide]( surfac | New or changed topic | Description | | --- | --- | +| [How Surface Hub addresses Wi-Fi Direct security issues](surface-hub-wifi-direct.md) | New | | [Connect other devices and display with Surface Hub](connect-and-display-with-surface-hub.md) | Added graphics cards verified to work with 84" Surface Hubs and added information about the lengths of cables. | | [Online deployment](online-deployment-surface-hub-device-accounts.md) | Updated procedures for adding a device account for your Microsoft Surface Hub when you have a pure, online deployment. | diff --git a/devices/surface-hub/index.md b/devices/surface-hub/index.md index ddbbfb4fab..ce7c4f3c37 100644 --- a/devices/surface-hub/index.md +++ b/devices/surface-hub/index.md @@ -34,7 +34,8 @@ Documents related to the Microsoft Surface Hub.

    [Microsoft Surface Hub administrator's guide](surface-hub-administrators-guide.md)

    This guide covers the installation and administration of devices running Surface Hub, and is intended for use by anyone responsible for these tasks, including IT administrators and developers.

    -[Differences between Surface Hub and Windows 10 Enterprise](differences-between-surface-hub-and-windows-10-enterprise.md)This topic explains the differences between the operating system on Surface Hub and Windows 10 Enterprise. -[Change history for Surface Hub](change-history-surface-hub.md)This topic lists new and updated topis in the Surface Hub documentation. +[Differences between Surface Hub and Windows 10 Enterprise](differences-between-surface-hub-and-windows-10-enterprise.md)This topic explains the differences between the operating system on Surface Hub and Windows 10 Enterprise. +[How Surface Hub addresses Wi-Fi Direct security issues](surface-hub-wifi-direct.md)This topic provides guidance on Wi-Fi Direct security risks, how the Surface Hub has addressed those risks, and how Surface Hub administrators can configure the device for the highest level of security. +[Change history for Surface Hub](change-history-surface-hub.md)This topic lists new and updated topis in the Surface Hub documentation. diff --git a/devices/surface-hub/surface-hub-wifi-direct.md b/devices/surface-hub/surface-hub-wifi-direct.md new file mode 100644 index 0000000000..6a76d310ab --- /dev/null +++ b/devices/surface-hub/surface-hub-wifi-direct.md @@ -0,0 +1,121 @@ +--- +title: How Surface Hub addresses Wi-Fi Direct security issues +description: This topic provides guidance on Wi-Fi Direct security risks. +keywords: change history +ms.prod: w10 +ms.mktglfcycl: manage +ms.sitesec: library +ms.pagetype: surfacehub +author: jdeckerMS +localizationpriority: medium +--- + +# How Surface Hub addresses Wi-Fi Direct security issues + +Microsoft Surface Hub is an all-in-one productivity device that enables teams to better brainstorm, collaborate, and share ideas. Surface Hub relies on Miracast for wireless projection by using Wi-Fi Direct. + +This topic provides guidance on Wi-Fi Direct security vulnerabilities, how Surface Hub has addressed those risks, and how Surface Hub administrators can configure the device for the highest level of security. This hardening information will help customers with high security requirements understand how best to protect their Surface Hub connected networks and data in transit. + +The intended audiences for this topic include IT and network administrators interested in deploying Microsoft Surface Hub in their corporate environment with optimal security settings. + +## Overview + +Microsoft Surface Hub's security depends extensively on Wi-Fi Direct / Miracast and the associated 802.11, Wi-Fi Protected Access (WPA2), and Wireless Protected Setup (WPS) standards. Since the device only supports WPS (as opposed to WPA2 Pre-Shared Key (PSK) or WPA2 Enterprise), issues traditionally associated with 802.11 encryption are simplified by design. + +It is important to note Surface Hub operates on par with the field of Miracast receivers, meaning that it is protected from, and vulnerable to, a similar set of exploits as all WPS-based wireless network devices. But Surface Hub’s implementation of WPS has extra precautions built in, and its internal architecture helps prevent an attacker – even after compromising the Wi-Fi Direct / Miracast layer – to move past the network interface onto other attack surfaces and connected enterprise networks see [Wi-Fi Direct vulnerabilities and how Surface Hub addresses them](#vulnerabilities). + +## Wi-Fi Direct background + +Miracast is part of the Wi-Fi Display standard, which itself is supported by the Wi-Fi Direct protocol. These standards are supported in modern mobile devices for screen sharing and collaboration. + +Wi-Fi Direct or Wi-Fi "Peer to Peer" (P2P) is a standard released by the Wi-Fi Alliance for "Ad-Hoc" networks. This allows supported devices to communicate directly and create groups of networks without requiring a traditional Wi-Fi Access Point or an Internet connection. + +Security for Wi-Fi Direct is provided by WPA2 using the WPS standard. Authentication mechanism for devices can be a numerical pin (WPS-PIN), a physical or virtual Push Button (WPS-PBC), or an out-of-band message such as Near Field Communication (WPS-OOO). The Microsoft Surface Hub supports both Push Button (which is the default) and PIN methods. + +In Wi-Fi Direct, groups are created as either "persistent," allowing for automatic reconnection using stored key material, or "temporary," where devices cannot re-authenticate without user intervention or action. Wi-Fi Direct groups will typically determine a Group Owner (GO) through a negotiation protocol, which mimics the "station" or "Access Point" functionality for the established Wi-Fi Direct Group. This Wi-Fi Direct GO provides authentication (via an “Internal Registrar”), and facilitate upstream network connections. For Surface Hub, this GO negotiation does not take place, as the network only operates in "autonomous" mode, where Surface Hub is always the Group Owner. Finally, Surface Hub does not and will not join other Wi-Fi Direct networks itself as a client. + + +## Wi-Fi Direct vulnerabilities and how Surface Hub addresses them + +**Vulnerabilities and attacks in the Wi-Fi Direct invitation, broadcast, and discovery process**: Wi-Fi Direct / Miracast attacks may target weaknesses in the group establishment, peer discovery, device broadcast, or invitation processes. + +|Wi-Fi Direct Vulnerability | Surface Hub Mitigation | +| --- | --- | +| The discovery process may remain active for an extended period of time, which could allow Invitations and connections to be established without the intent of the device owner. | Surface Hub only operates as the Group Owner (GO), which does not perform the client Discovery or GO negotiation process. Broadcast can be turned off by fully disabling wireless projection. | +| Invitation and discovery using PBC allows an unauthenticated attacker to perform repeated connection attempts or unauthenticated connections are automatically accepted. | By requiring WPS PIN security, Administrators can reduce the potential for such unauthorized connections or "Invitation bombs" (where invitations are repeatedly sent until a user mistakenly accepts one). | + +**Wi-Fi Protected Setup (WPS) Push Button Connect (PBC) vs PIN Entry**: Public weaknesses have been demonstrated in WPS-PIN method design and implementation, other vulnerabilities exist within WPS-PBC involving active attacks against a protocol designed for one time use. + +| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | +| --- | --- | +| WPS-PBC is vulnerable to active attackers. As stated within the WPS specification: "The PBC method has zero bits of entropy and only protects against passive eavesdropping attacks. PBC protects against eavesdropping attacks and takes measures to prevent a device from joining a network that was not selected by the device owner. The absence of authentication, however, means that PBC does not protect against active attack". Attackers can use selective wireless jamming or other potential denial-of-service vulnerabilities in order to trigger an unintended Wi-Fi Direct GO or connection. Additionally, an active attacker, with only physical proximity, can repeatedly teardown any Wi-Fi Direct group and attempt the described attack until it is successful. |Enable WPS-PIN security within Surface Hub’s configuration. As discussed within the Wi-Fi WPS specification: "The PBC method should only be used if no PIN-capable Registrar is available and the WLAN user is willing to accept the risks associated with PBC". | +| WPS-PIN implementations can be brute-forced using a Vulnerability within the WPS standard. Due to the design of split PIN verification, a number of implementation vulnerabilities occurred in the past several years across a wide range of Wi-Fi hardware manufacturers. In 2011 two researchers (Stefan Viehböck and Craig Heffner) released information on this vulnerability and tools such as "Reaver" as a proof of concept. | The Microsoft implementation of WPS within Surface Hub changes the pin every 30 seconds. In order to crack the pin, an attacker must work through the entire exploit in less than 30 seconds. Given the current state of tools and research in this area, a brute-force pin-cracking attack through WPS is unlikely. | +| WPS-PIN can be cracked using an offline attack due to weak initial key (E-S1,E S2) entropy. In 2014, Dominique Bongard discussed a "Pixie Dust" attack where poor initial randomness for the pseudo random number generator (PRNG) within the wireless device lead to the ability to perform an offline brute-force attack. | The Microsoft implementation of WPS within Surface Hub is not susceptible to this offline PIN brute-force attack. The WPS-PIN is randomized for each connection. | + +**Unintended exposure of network services**: Network daemons intended for Ethernet or WLAN services may be accidentally exposed due to misconfiguration (such as binding to “all”/0.0.0.0 interfaces), a poorly configured device firewall, or missing firewall rules altogether. + +| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | +| --- | --- | +| Misconfiguration binds a vulnerable or unauthenticated network service to "all" interfaces, which includes the Wi-Fi Direct interface. This potentially exposes services not intended to be accessible to Wi-Fi Direct clients, which may be weakly or automatically authenticated. | Within Surface Hub, the default firewall rules only permit the required TCP and UDP network ports and by default deny all inbound connections. Strong authentication can be configured by enabling the WPS-PIN mode. | + +**Bridging Wi-Fi Direct and other wired or wireless networks**: While network bridging between WLAN or Ethernet networks is a violation of the Wi-Fi Direct specification, such a bridge or misconfiguration may effectively lower or remove wireless access controls for the internal corporate network. + +| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | +| --- | --- | +| Wi-Fi Direct devices could allow unauthenticated or poorly authenticated access to bridged network connections. This may allow Wi-Fi Direct networks to route traffic to internal Ethernet LAN or other infrastructure or enterprise WLAN networks in violation of existing IT security protocols. | Surface Hub cannot be configured to bridge Wireless interfaces or allow routing between disparate networks. The default firewall rules add defense in depth to any such routing or bridge connections. | + +**The use of Wi-Fi Direct “legacy” mode**: Exposure to unintended networks or devices when operating in “legacy” mode may present a risk. Device spoofing or unintended connections could occur if WPS-PIN is not enabled. + + +| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | +| --- | --- | +| By supporting both Wi-Fi Direct and 802.11 infrastructure clients, the system is operating in a "legacy" support mode. This may expose the connection setup phase indefinitely, allowing for groups to be joined or devices invited to connect well after their intended setup phase terminates. | Surface Hub does not support Wi-Fi Direct legacy clients. Only Wi-Fi Direct connections can be made to Surface Hub even when WPS-PIN mode is enabled. | + +**Wi-Fi Direct GO negotiation during connection setup**: The Group Owner within Wi-Fi Direct is analogous to the “Access Point” in a traditional 802.11 wireless network. The negotiation can be gamed by a malicious device. + +|Wi-Fi Direct Vulnerability | Surface Hub Mitigation | +| --- | --- | +| If groups are dynamically established or if the Wi-Fi Direct device can be made to join new groups, the Group Owner (GO) negotiation can be won by a malicious device that always specifies the max Group Owner "intent" value of 15. (Unless such device is configured to always be a Group Owner, in which case the connection fails.) | Surface Hub takes advantage of Wi-Fi Direct "Autonomous mode", which skips the GO negotiation phase of the connection setup. Surface Hub is always the Group Owner. | + +**Unintended or malicious Wi-Fi deauthentication**: Wi-Fi deauthentication is an age-old attack that can be used by a physically local attacker to expedite information leaks against the connection setup process, trigger new four-way handshakes, target Wi-Fi Direct WPS-PBC for active attack, or create denial-of-service attacks. + +| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | +| --- | --- | +| Deauthentication packets can be sent by an unauthenticated attacker to cause the station to re-authenticate and sniff the resulting handshake. Cryptographic or brute-force attacks can be attempted on the resulting handshake. Mitigations for these attack include: enforcing length and complexity policies for pre-shared keys; configuring the Access Point (if applicable) to detect malicious levels of deauthentication packets; and using WPS to automatically generate strong keys. In PBC mode the user is interacting with a physical or virtual button to allow arbitrary device association. This process should happen only at setup within a small window, once the button is automatically "pushed", the device will accept any station associating via a canonical PIN value (all zeros). Deauthentication can force a repeated setup process. | The current Surface Hub design uses WPS in PIN or PBC mode. No PSK configuration is permitted, helping enforce the generation of strong keys. It is recommended to enable WPS-PIN. | +| Beyond denial-of-service attacks, deauthentication packets can also be used to trigger a reconnect which re-opens the window of opportunity for active attacks against WPS-PBC. | Enable WPS-PIN security within Surface Hub’s configuration. | + +**Basic wireless information disclosure**: Wireless networks, 802.11 or otherwise, are inherently sources of information disclosure. Although the information is largely connection or device metadata, it remains an accepted risk for any 802.11 administrator. Wi-Fi Direct with device authentication via WPS-PIN effectively reveals the same information as a PSK or Enterprise 802.11 network. + +| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | +| --- | --- | +| During broadcast, connection setup, or even with already encrypted connections, basic information about the devices and packet sizes is wirelessly transmitted. At a basic level, a local attacker within wireless range can determine the names of wireless devices, the MAC addresses of communicating equipment, and possibly other details such as the version of the wireless stack, packet sizes, or the configured Access Point or Group Owner options by examining the relevant 802.11 Information Elements. | The Wi-Fi Direct network employed by Surface Hub cannot be further protected from metadata leaks, in the same way 802.11 Enterprise or PSK wireless networks also leak such metadata. Physical security and removing potential threats from the wireless proximity can be used to reduce any potential information leaks. | + +**Wireless evil twin or spoofing attacks**: Spoofing the wireless name is a trivial and known exploit for a physically local attacker in order to lure unsuspecting or mistaken users to connect. + +| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | +| --- | --- | +| By spoofing or cloning the wireless name or "SSID" of the target network, an attacker may trick the user into connecting to fake malicious network. By supporting unauthenticated, auto-join Miracast an attacker could capture the intended display materials or attempt to perform network attacks on the connecting device. | While no specific protections against joining a spoofed Surface Hub are in place, this attack is partially mitigated in two ways. First, any potential attack must be physically within Wi-Fi range. Second, this attack is only possible during the very first connection. Subsequent connections use a persistent Wi-Fi Direct group and Windows will remember and prioritize this prior connection during future Hub use. (Note: Spoofing the MAC address, Wi-Fi channel and SSID simultaneously was not considered for this report and may result in inconsistent Wi-Fi behavior.) Overall this weakness is a fundamental problem for any 802.11 wireless network not using Enterprise WPA2 protocols such as EAP-TLS or EAP-PWD, which are not supported in Wi-Fi Direct. | + +## Surface Hub hardening guidelines + +Surface Hub is designed to facilitate collaboration and allow users to start or join meetings quickly and efficiently. As such, the default Wi-Fi Direct settings for Surface Hub are optimized for this scenario. + +For users who require additional security around the wireless interface, we recommend Surface Hub users enable the WPS-PIN security setting. This disables WPS-PBC mode and offers client authentication, and provides the strongest level of protection by preventing any unauthorized connections to Surface Hub. + +If concerns remain around authentication and authorization of a Surface Hub, we recommend users connect the device to a separate network, either Wi-Fi (such as a "guest" Wi-Fi network) or using separate Ethernet network (preferably an entirely different physical network, but a VLAN can also provide some added security). Of course, this approach may preclude connections to internal network resources or services, and may require additional network configurations to regain access. + +Also recommended: +- [Install regular system updates.](manage-windows-updates-for-surface-hub.md) +- Update the Miracast settings to disable auto-present mode. + +## Learn more + +- [Wi-Fi Direct specifications](http://www.wi-fi.org/discover-wi-fi/wi-fi-direct) +- [Wireless Protected Setup (WPS) specification](http://www.wi-fi.org/discover-wi-fi/wi-fi-protected-setup) + + + + + + + From 61ad054e2e0253184217e310d433e2b4f2bfe969 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 19 Jan 2017 13:35:23 -0800 Subject: [PATCH 109/210] comment --- windows/deploy/images/sccm-assets.PNG | Bin 0 -> 133738 bytes windows/deploy/images/sccm-client.PNG | Bin 0 -> 99265 bytes windows/deploy/images/sccm-collection.PNG | Bin 0 -> 73646 bytes windows/deploy/images/sccm-install-os.PNG | Bin 0 -> 72877 bytes windows/deploy/images/sccm-site.PNG | Bin 0 -> 42269 bytes windows/deploy/windows-10-poc-mdt.md | 13 +- .../deploy/windows-10-poc-sc-config-mgr.md | 211 +++++++++++++++++- windows/deploy/windows-10-poc.md | 8 +- 8 files changed, 216 insertions(+), 16 deletions(-) create mode 100644 windows/deploy/images/sccm-assets.PNG create mode 100644 windows/deploy/images/sccm-client.PNG create mode 100644 windows/deploy/images/sccm-collection.PNG create mode 100644 windows/deploy/images/sccm-install-os.PNG create mode 100644 windows/deploy/images/sccm-site.PNG diff --git a/windows/deploy/images/sccm-assets.PNG b/windows/deploy/images/sccm-assets.PNG new file mode 100644 index 0000000000000000000000000000000000000000..2cc50f57583ea09b84461c323fb12beaed610afa GIT binary patch literal 133738 zcmY(q1yCGK*fol4u*JjTi@O8}?ksM>g0pC_1%d?@S==qS6C?=)hXBE4fuI3iSll55 zcZZ*^{`=LvcdDjlx~Hb9tK~UQpL04!M@xkO?=>C@3JQTLSWyoJ1p|nJg8CT;>!l_` zR)F&5f$F8FB9Br%4%~YwU^vKW%AugtCE-6Rr?+8thC*Q|(MftN#0t zt@_@H|u^>p^(9Uj|{=ivsI@jcHIka zjJb>(+z1S7c0Fikt4)(G_eHEX+jx+*ZVd%Brawvc=iK#NlD+V0fXRVrymlgZB0pBE zR3a82=DxKFC`e_Z+TSkyZA~<_J_)jk`?J5_Ods5pA0P;PXi?AS>hlsV!)Gk{F7x?e zxHp=UtoP&?9FQAi`if}HW8hq-^p4}*#Epd;PVGuxnN*K<>b63 zvV^`fGAb(nj+Xx4HhU$9LPVaCfniB?J)vg0reoCyS(pLszwaL=bJTKCN z>Rt3TJLvuk9sL#UF;c zYB{?yB67gBXN<46UBu0L!$SJiYchaWNx9racJ(QlrQf@mkHy*kIok9;?seE;-+p|Z z`f_Cy=tgX*u=!7f^^=16kA6KJQ?9zII;*KXoUzK9v?qM|k(qaK=5kFp<^~+n>cOvR zUN^ZUY#AAy(y8Zd4PDKR=t+n<=npq)Jd zlwqOT-x2UD9!Gzti5TAt$8?zbq7Y8C`|r-&{x9Yh542Xl2TiCP``X5v8EzNozd>$! zE)%+PcH2dgeH0iyg#1QiHv}X*ap?QgH^WWDXVt)!*8Lz<@(R zaeT*LwbAy{5Ixc#a%9h4pRtEJ{PpkpzPwbeSceI`PSNoP`$<$YgoM@!O5cTCZA=pPZjn<77b1$tm?Xl$cGskG zp{|-qaTU@HZFUN`iC(t#fM1Y%i!rYsq*HTYq0P}s>-X?AmtDv1#zlu{nSYCfG>AcF z6o;-DZQlbTxN}f=pdr&%1Ct65pB`^^$`? z2lJ=|g$Sq3uOXduXnBtxl^WF-ibE~~y6gX%amNi0oFUtfl8-%hsQFzZ0xM`R&Yb$X zb*0&taUHUy87AG#aQ=pEd2{gv(E>DrWmG=yC(-Kv466Pd>|lhTv@!@Rj=-PbT4f!sv7PTvcHXOsc|AjMEX?^VOv`90Kf1^6^5^#1=YThK-l~&1* zm`>hdwI5-=XB&=0nl0m3iO4X!JkPN%T3HgJIow_jvlu%hzhm;JKyzZ;gTZI^xZn$K z+0}@MI65GYBq}Dy;KM|MXTWDua6|2>P%kO4t;bwZjI0F@U#dq*<1hY_VkCo$+Q0z; zM;1#~DFui+Z)?M80%VwCsWCS>Y_m=B*e z|4}13qg7rNm3n*G>Q3Gs$){4$k3+H0+Dgohn-T4bJUaiefy*Y&6<=^8sG(!H$Daf@twt0~{^%MyupI#vi$_;BlnrRi<4Y>@Pt_3DX2_puV7YYdMh$=39U!4$K zNIotiOd&5u?M$c1-3XH?VabPGrPTp0qG2E8(x!ItTfPg^Ocfv)_BD1(zJ7iRO zR&*mSV4fc3y?fRe)Fhf$CKT{-<{E-5<=$0Ie#ioF8Ue^RJ5hJtiv zCBhE^;C+nUq`*5IN`YcNC^Bv+ ze0;JsPlcmw74ZkUFLC<=79B`(9MmL0@R#r{ zwWH;ESXB#i(J35CY6teNb>RKf6OC{OLo2V6q6282LTx5%tU_8nnoOYn%5uOWmKXttlWHr)f8yIVln>fm@YE ze3o;ohBTR=Ae@=ASTl@tYJ?!-5b!OnjWJ_>Wdu=ykmhmBXX|z_;6M6Q-$nP!O6-<& z0jDSeQ!)OcnqsGpo{NO7>EwBo)^uskI`WMMfng>b$y5x1ByVA506Hm~l#Jpef+UKE zj(x9bm}SC$B5#v}tQZaTeyDB7tM|)7>P3;Dh>1`0W+Q0`4{tc!+cCF})nnVYrpNwv ze6}SmB=rFAkKMw~I~pJ9!7|3uc9l;P7@%$q=FsvQxn!SvG;)5&Oo$u;b&=qPZTDiB zL!6(kiW0Z%Zk{Op2Hbp;dM>g0nf6md_umbgdz%CfH`YgJ{Y z01Cs-tW(nq|r zKR1PA!k5xz>Z^UOMsj$Y219W}B$B4p>BNcG*A&VS~?yt>Gq0$7MiwDn}xgOET*hFYf5|f(e9J4A6z)NN+a{uO|Q_mEI8Lw>m3*>QpTu?NlnPYkSX+95m zt2Qtd5TjKQKW~(^8&vB~7DY3M+YaK@C8bLb)YG0yM7mB>F0x(9SmJatNG1_a@v4+J z(6jPU=_wPF$Qqd;Wk|WmoiI{t_{4vaC~TPWOV^<|wH`)SB@1o{!K}FROX9tG{qYcK z0u-yIKlo9TE)*8M8(qWm*yS2S>g>8UaZbY~snWsmgz%P)I}|{iIEm?OY?hvk&*w%+ zfNo_h4jBzQ8P%Uqr_nF9-OlCi<4yfhCmSM|=eT%O9=EP|J2iY&O15rnk-sUaVty~x zKB}P@9U@~+rzzI^r^oy127ytVN%yaVt_Qm|4pY)DDScS%LCW%4;P_qFm58^wg73ha z0-t4R^hQK7RBWB37OYGo&9K4Epa1jHU)7SJGB(6Sjaut&bBQWJ8@>x!r{8dpxqo|i zxnFU!P81w|Ul_zZROnXZdbbAlN`tsfeT{WRGK-*|vZ6G*{M6e|{&?eJ?MsEdTa4O|#{1q0zU;r{@-&xfM_P zaq(+;jT^s)RF&pUyv5m`1=hwY^<@-mpYCK!KmZ%-xMkcqZ`-R~OCKrwnuNJ5A;V>> zMQe#qD+<(`zfQvx(`=7pjIf;Z3jNkK_ZiI=L@+XTK}-{!cZ5OD_cDKPJYxyvYKKJ^ z_hZ5(V1jlUrsH?jw~f}B0#`5Lynxm&>4Rgi|0`%okZ@7zgi{~iKxPw|8A zg7QGU2yC`*gh;zK*Raww`M%Fexu@NveE(p(Z_d$NV>HR_Z3BtNeH!C|1jQn***>pk zB8d-lr!zN>D+)#x5ip!>{5`xY-_u^_es0OL=D*0#_$*VOctwyZOtM$1 z1q$6%RJwf}P>yVSYP$U7#>uNZ|M9?|ca2gG=4jQw4ucZbD;9k|Q;Ln@KUhE<@uj#DA% z$a0d+)psz<*2tF0dbP^0!PJ|3r$+(naWxn6-cC&%pO%?IF<+LWfCrZN!VbMVR@=<2 z<*NY({z|!+_Qpa(ctmd6>6%c@W?kmWA0O}8&}2J>>U2l!p;m=gMIlyJ6&@U6z17Y< zu75cPonx^JU9@^Gf69dHV~_#FAaaXMJznT{jjj&VJ43sVC0y0hPpiJR)<%qYcUZQxTi-Sgu!IoB#0u9Sycms`hK$@-j0$J)*P}bpP-CIak7$ z*U&wAB7G@ywwX}k^87jA;dGEl6H0ZnF4F$^hp=71hh_yxA329`={Z-J+ng`nKk1Do z@bjNxeN{-8kRk*T@XUx1@Y*m!xF&H$Qc8aYBk z$Ha`q1a)Un$kMR?iDjuw`=_c;k}ix-fJd%MJ+?hmLCuSSSpn|lco8EufPU_XGUq^ zG5LZVK?vn{{GhkdOT#Hl=rK37s&UZWFm3Cb&)VrAq19xq0vdr58r*bYwiLmwp%A+n z%F~``!iyM~jWm7R@u$B|FoyDE8=UUi;kc89HC#^c*P07CIy(O`NH^tXVSYvUaI!Ee zW~g>^sWVOB5bNH%^`3R+eG-Iag}J`+{W`}~C^Sm#y24PTvb zXBG>k^B89jeHd@u6YH~6Co|>vH(!Wn- zEoonaEVhm4x7%uD;S{Ttx>UDX5P>#p7W!L`!9d`xSEv=1Img`0yZ;(A5B%Su_I&o( znT}*$O%6`nH6W2lXQ-zK)wVkz24zh}vg|i(4<@nhC1HCak{2^0;v!C_xQ&g&_1xE| zZN_84|H^(g($fCC_^+8Xq||w}tiUV&B&V}O1|o12{D7&E^Ak-sn*~Yy(@2%)xTp8O z#X3KAfLrGyomtQ&fjB;oO$7^ge2y^vbf!zg1G&xh#lC_!x4vw^-F9e>a*6W>b;zc4 zYiQ6P%R9vVb1zNUX_U+Z$#G(KY;-)+W7(&L)E`uW*5yIh^}!e;)08iWkdIo=v&)*a z>K^Ka3UOFyJ@~#~=cy8jSPdllZvK`nM#QOcP{d#Owqtv*=H3UUfSAXQ6*`VDD1j7q zCeP4#gkWTBBad^BgD}o#6|MDqgCuXZ)LSmc?}>8_s;{{|W+<>zR}lS+TK2tEx*NU! zqVjDptNyut*UL!d{S~OtJ1=|{x5;kK7Y?(2B(mrG&*O4E&+Z@dB9ap$&!4-m4Xd0k zslD8_Lo`19#`>%&{!ny8?0yg9ag*=1y+$b0eUK&7@(U!5NpQ1;C0~eKtuEWv6zA=* zw?+n$X&T{Qsn+#G?2qLNSzA0SsU>q&!BcwSDx zTepC%R?(9!u47IQww}2%{P4V7XXjS;T3qal2m;yk|ySu4yF{S5e|GJO&7xQ3e2&59 zr}pVX$okFhf1(h(ezzvo!o7;hp*4(=3z8mqZ_gU97#SH^U^Q4)^ z$LODaL;_9S$2~o6vpQAGs0C%2*tj_J5jssBV=>#F_1hk2fs-#_Nohx^l~2Jm%46|} zaDR_1ei;(TE{jcnJbU~zh@75VYcNV(=;Tj*epY)RrC~UIH>rCt=hiAI@KbnP)+A*( z-mBuQPH9s8IXfG~U4B*rBW)iOS6yo@)*{}A2n_v?j>I;1?vd!xM~yDEjClOoo*1%Fqqz9N`HFb^CW(u>OI%BE)V z!5?1_#1}GUk8ekzhj}{SEk9F9Y-*U)|3PL0HWtk+VAvxE7L34ST#ngrE+M{dJR`K7 zMgNvgyQUF?QSw#a*2F@r)LF$L{7lWtR-U znh7UFv*fsOazOVy%~WAaDn);^j6{89owoxnljnC9tg%@@>ce}GYL_7ALbAznjFh+R zCp(%{qzw9AO-XyJ5kIRI$VjI)#qal92g!bl;YZKWkhLZf>iDnS&JDJ3r$x^X#LC5r zHi}{cQ9lOqto0+Zfa*}=Mi2TOcMZhZSY69@fr`ia8(*8@SzDIsK>jraR$S^~oC#G8 z@QG@CD~7_zJkcSDR88d7ZL+hpaoWM^{a>#v{!M*YmT0N=$fCCJWkl}5A zcYa%>nH$bX9DX`*k?+LqOgFlRe<%*Kdky2i)Qq1Ofk5bP^6h3s@9CUizX%-KHR3g2 zkG!sT?k8*(2zC`Npy8K~_yx0lVD&4!)%{=Ymn3e7Zf6#b z2k-wVc=Dt_td7-geNX%qJ@>rB*;?yZ{^2Sc@Ie~GLY zgsomLg5oDYwxHQ_BbR|M6P@L!)^rf_>Dt_x%cuImE=Ek$*ZOP zf21S)T2Y*0e_s)urq^xURG6n40t^wx$6?Fb=hRlOGozAJUVS@Gcp`}|C?n&;nk z%!CCwbrYNUA8H!YbeQ7SQ%i7H*v_+#BCwlyTu;PhOKJVXce2~i^bw8Diiz9SPOr6h zHPEi&m@Y=#2?m5}+J9{HB5q)uf~WUP_S)HZhmGo4LAfm_3$hMXV3Vr}+#vd{iydN? zt+?5vN$0~#SRpxMbC!e4+e|-VP%Bw2d!mL(ts2ZBhXb;qG#LyCXkt`3OuG5zQ37i< zLUeNUeZ1?Ij*KM;Cjsubf~QQ#)HX)h~8GqUUd{%N&sgS62Fl*GXaT1Nk4y_E-`i5ALqU?fO^bmP#~vI_zrT%=4=p{ z-3H~csplkV8jQNFWIp}tM2>tYVF91jXm% zCz1$F3;5azMviIqf4v>1`o)jADWlqVUsyhZuE2W~WS#N<&+M&n34fKkVC}eo`=Y;c zx^UHrypCu8+INIybzUv$!czC6y6+CXOg@n-!ciZ3Qu(#k9DL3?Y{~VUeCUMMd@!nv z47!Cg$x)^bOHsGHgO9v!X%7`50;q{C7U@QWePpctCU2D%UiDGIf8x<-smZ3 z5(hL*u69(8Way|O`L=PqbKzoZ*jyx!VBMc`t0(q~1yJji%T6(W=S+FW0{i}j=>dEq^aHh_ugz)Us6%sl~k zO(kQaQXByd#UsT2Cm`HOO%I~5Qg^~H!Q*Ngi$>oDS3CEW+Y~k$B?ylT&+qolN+Pm^ z)IN}mZ8Mf#36h@LY1)YBl`g{)WE+vuX)Ubahx!j8S+MP)l#Av64u`&OX++tF_LsNg z?~xP4zOsa%u=0?RF~mOPM~`z1tlasKQ&B145i92vtr2IlopOHt^FVdSy{qhpOksYU zH!UeiBB86IdS8N$89fFd!XrE$mO%sUw|%yTRY@mXc#MQ)wfV(K%W|m3&WHU+@{2#{ ziqi~s-OzG;D`!kvoRU}f9_unSuSy$u z7dQK^K5L6&XRs5Czk#WzUb!zdYBvV=$FLQK3Qe@4Y*M=D6@r6Q7i1ocAG(&$3W;t( zhoDon#JA3}<0j)b$7Y^#&te1xrC|+}V)q+om2Q)rS%MmyVgF{df3B6N|9Y^^vkY*+ zI10G9m6f56!`!!NOyn30=)-m)tqf&mTTiXrUU&apfqEL+01<15=z{aD7DNWn`5R)A zNjsj+%?@s(4v$vz`#cBzHpvq6is3!>xKlUt*}lB19k~0~CFw%5nkRz9e!3f#gl|TM zM-VyL--#yW)sNq#xHxMlU__nsb(+yf6P)S**o<4G36mrrIjdXO4LfAWfH%nChCS%-|L3g*& zKT&DHnuc3}afJ9!2r-kiAO%9EH<~OSwZd)njyBpZ{sDsQrokMAsFd{>U7@W*bTpP@qbeer=+}u5n zwj*@5N&l>PETP(kr|GHv4jSErk*7PIf%U*j6`Ub-SX;w75m@1*L0h8mbxl@pVjdp@ z6B`dohAm@39w~9;uQQ4uxiU0kuyRI%+qfAGg3_=1oTGH-2%qUpmR@+Bx@<^B9_8@f#DX zid!KSjvPH8U>VyW9l+h)jXzAxZ<2@f2)fK|k+kzgLK`}>F;9A`$_$^kytI2lAGh8p zS>X|aj>#zV;0gzHjB%;T0WK4PL8D>}Hzpqu&`G3|TpYwbg=oRx=BP_z{EN%<> zZ`XMZoJgbd>|!3FFOkhR$2ndP`eNJlm5SN?)!VYY~8A<7;RtO(jejW4=QrP38-dXz@Ken_U9*8wb7n1?T(UX3LWpQ`H8D2S z6Z{JNfiz*X`~B#70WngFll_NVUuxEzycha~Z9PAQ-nx)@b$OfTy>v&t!pH$nWlzoX zi9_Id%jTcs{Z+*-_aMs3&FK_wSJs=?C#p8$TH?3zAj3Jv;&$bSD!_&ri)|~OHT8Yj z@v2<>%}SFsQ^oT+r9b0uv{+Q@SY;Q|-gcf$j9*$xv0yw=G zn_z0Dkq;z%0vbHd{k$=KjoP9cS8SFl<^7HhcKB1@G1AAt=eShvJ>$Pw4>+6;vC6vy z9N$gK&|xVIYRT&v)-83tC#Ui8z*6#-(Bm>Sur2y3Tii1WkKTxV@H>MpC51G1X_++i2Ve%jQ-h zqr>yXJA9wcezY8an>*d9B|7Qla_7w6LKg_$t00!O>3GAT;vkaja>|(Kk5N%|-cz6- zc8fABokmtaT9SY(ZjeR9ub>=UN|d>S8tck!+)Ch;;id?b{i~{leoY)(dg&ofWP@ZM^cqPP76&cPu&m(HM!Ko@A@$;d@&Q>>w>L z#qIpo&AL?4TKCQJ$GJXE*<`3kyLhJmi^ZWz#YQFg(n2+F-e^S|5e}!>9QRO2)u@+a zQVgCK4I+9)Cn^Q4K}H#vk~R`P784|rAW~Mzb0I$eF1!_nZp>{qMzcmu$cvxSfP%AH zdPB{(^TN^`x@4w{qz!0WalHsQ`QpX-__lI8o4rYxP$X)PTq2PE&L4p08jf=1yi(8e zA?kFkX^-o%^sg*jOWr-YLm$dtnsMWp_@*-SI(+WovJmobR^muM7c_bigORO{;`gp_ z%S(YIs&Fo3Z7pxz3ZJ&>OK&IvIbF1|a}4=o$)uX;febF64Bx1bok^1PWbl=V11k6c z=T05fX=;gF?Q6nwyy!8l%4R)PqxDWop?9JYAQ+Fioygur z_f_m7*MvLJ^2}V#6bMl^vocXY-nzd|IuPw*W}C45=3Nog{(g{I=9hh-S7cu*fvz~> z7WQ=`HrX*XAW`&x@X>*HF)@XHO#j#EeIO@8uJI(@q0G|-{v9)FO{=Q#pd@5;f-=*{ zGk#AhB{+ckeE8h(A8b8q*7@|ZaawC|ucEN{su@H(`II}6pNLP*Wp+lwDGnvVP9(zP z%hT*;5z8}w>)XU4X6&B8Zdmf-Jy?}UlDx-Sp_MR?krw>~3f+xN$vf=MCLjZ$sdL7! zC4)B2#^361=m*?lIw-m%3lMkJ0BYKW05W&O+6K_*rOoMiY={GQPYFRC7-<=iLOl{F?Gq$12hnlUq1m}ELcnWz1%;bcrP-y zTkE~GD`b5EycF~d@ssQPndbGqPWnRyZ(+-Ab(ChT~qDspL?sF|gL=+Hniv*@%V8`OF-mhF=1bk!5 z^BR9!?X7TXf`MH)5miwb^!~aCXAJWC+?Z8(f*^`TO!DE*bLsLoXI{YmJ8t6+qMD?b zz7UU7<3=BPH~%0Z*0CgIMLphBAM*9-gls=24JrgLxQ8wG+8^H6v&O`Ffmw{Ezz(+; z8@fChdXd8Pes#2j5S)NjR7(a-G_HOWXyb7oqNXD->vB$7w?j6DO>MPn^0-1 zQ66d`_Sx$j|L)VDjNy>UR9pq9+i-|a4&rTyCjTXww8MA%fN6Pf>YYYL*XzAGZ11vc z6rq%oE%rF&T=!<~cO3irBGYS<{Ke?vm>_asb2`2%-wzTAgREatxVx)?LbJP{ndOK4 zW0%5)mc;wh6|Oa+Ki>n)brO(yY9O_$*7mL2YgU`dn|W}07RYFZS!pBn{Q{H6htGUZ z|FxXQ7}ZYf4${T=+OupfhX~i@GJ4oP2vwF<;n#zLu=Y0Yue+Yn559j;_7+NR>v}a0 zNNV(qF|gzEnf3XX(g0+a2W8GMeB4wW4_woT@+hq8KRn}?)9vN1Tq{q_TkZ}VPsHKk z#>XK9nc({v>vyX1gW2gn9q}v+pM5^B?rm&UfAu}qsx_r0$w!12sIzsUaiuWq*U~g&)qO(boe!cYJbCpQ`hvY*20)z#g=4t#uha!g-(%GZn5K&*xJ%Fg!D3) zKUeK|2pIg|D5eqBD)Sd7DMO2hJvV8I_B@I4n8~P+GR$I7pFS0Q(Y44$`WeffTa-a; z$zB}Ez$`oNyHr4mTF>QHMlP~E_MBQe`XEj2+mMN<+(_@OMdH^J>It6~Vh^QB25D86nNUG!cq7h(DITCpeU^gla><~6G!q2u-X z1OahnFh$;V;b8;)PNti*Rf8)Yx=Y%1KGF7p5H9l|;BYcY$=Sz|nw0cz_*0|xKOqVb zC7Ez!LVkR@>Bf(Ve%Dzs$fzI4$*vtd^OtBO?Q3!iv2$PAn*>E`Z{rdGF7w~oLQu<# zDQB%apjY!>W0#=FsNat9ng%AoIAdBIAe3qVaE;}Oub|eyn0RP&2A_X-&G74P@r*xx zN|6+djAWnkP2~y_P3w)rTRM){9;13+OV)-06m^i&N=(iFOw0k0?T;g~n6T>@5C?oVTvJ>(7r(v7J{S!+vS4lo%kP!JK67p=Vu8+;3 zA-iM*W4q}Bxa2Ra8XlP-D^lcf{m+Y6s_;=r9w&k&p>pPr;8gI7PCCIbGHFzhi_E?s z8&gTw=z25C^aJ0JD}{yXTt_ZuE}rsSRp;$UKaN1-2(uDaB2N(8G*(x`4QyO|Cn(pB z{b5OL-xK&Xq?S`J6H5oQCS}_$me$Q7Ry*ImbS&(}8*GXNdh+>e zTE3-;y1ht(X%aKF%N1naj7Z4%lD&Ev0fFCk zQMashi0er}Oy^lnoxr^|KO&w|Y1Y}jU327gm3QIGL_7y)}GLT_!45xidP(D_;nR zLB^wZL(P%y(30Kq42?QC?7_gR(7wZV_Otbr&|!=7qor()5hz;B1S?9h4)XbXarfXf`izS=d}VSUHjcQ z*o@_}neABRy&Hj^SEaz+m$#hq+$&^pZ%C-cDGJhpciB_>hrReP6R`&hdj4+?yG670tv)&QYWWaJnQ&%b(u)Sr$= z*Q6cF@Vvjpmk{M8%iWWQU#rdkDhwjI3{@I`0zcosDtu+lw-P!9~6|PY`1~tdo!2jBD8{ zA;6Wt+4S0?Un}7R;rvM=(HnaNGT}c&^Zrvbv(6pG4u0$n@#6X#GrdSZix=&ws^ zipL!CsW+**f8cD`iM?yr4os#tbro%>5?nbc@0nof_o9!REG;Te#UtsR4)-~=6GlTz3eMzilGqAjLKP57XF#%53tis5FyYv^6!e6*-4kAT0%Uqr^mo=lhoZmwX{P?> zk(1zEWrN^W{;_!RM6in0ixC_`GL6471FxU(G+)dqQ0Vx}F$b)L^{`sTJ2TdvC}sfD zIev9EYPU3$<5kUG*h`v9RPad&lNg|s`ayw0M7eCgua5CDUZRIZj8hM%M*yRM=%!s8 z1jK;t!q@}^^o!nPSUZVJ8%J(Mby0|ChEs(`^~VQ@oy>VRYd)*)An8*hT~B8Z0Fbo) zSf5*l5o~J(A9gV@2fW%Om$cKeuJ{_pNlr1GZ#zgESgdQF(+i)>#hnuRvW-k@o~aJG zo_$+p5j;k2qbT1S<*^{#OB6#gNciaR`d-3!ey5wv4nAGHC$lM6(t~YvSF;fb+>1(! zPixO^)8e;KhOWWb7}ty$=WV;@gU8<)1Dn+cMPpK5%s5g4LckmUDNRny2fI8-)^(1L zL7-~g?8vmrIImSaJ3})6d8X-#Oe%LGjga&nr78g?cB*PB1v6nvGJisUE_{YB=yb&G zQK*4c%uw}Uw<><}%AXH6k>Gq@_>eS@1n?nl?Ny{Gb`s%|P$F|`06cg3+obSsMll?J zwsrf!kJ_IrczQxt6F|Rr&in6OGCoXFUzUD*7M>eb@9tWdAgh7_%L{d;Wri76gsk z{lgA$(S7NnCJNQnYoD!!%D8b*&dkJa`?~|I~?e)GM8_3Q~=z-g1`?(Gg zVoubwJ9AjTd^tD+FC9;RGD?2n<8Ad9Jc9Y)V#O1l|1UbpV@B#|;FAEA6%Cj*hSslA zSr6FVdjIN@o^~8x^i{+-fw{jUt{%_qj3-M2n7Ik!6ke!D>_H#|hP(Y=qs?Ndq~ytx zb5{Gu{N!=0##=^z%R$lmN8;x{$M?o{_7brRp;BdUTF%!UPW$Mes8&<%_`1$sANik= z1J9SA*|xh9;;LH-_U_}>ot+fBHV2+WlQJ(h>m+`X1>nQjf4D1kz04E$2if2B_XMwK zB}l?l5)@LB7gIT9Z@AAmA6j;c9qRn%Uq^EdeRovKsG$uA%>U|KX8EXtT+6HjMx>3m zprEV7|7k3I-bykSbLP2H&u5VUKznZ~8NZd_>Y7AQiH*LuhaUWVCY@WlFMaw=Z}KkY zW(%w-v*SFtCt&epeK1$!yf8hJzEAQ(ZDS@xk308HDw;ys&zZ|x-cMEX2Lv!xw_Mq~ z41Mcv8%0w*xMnm692%+|^!8l}3mPDBqnb-EbJfIM9YqXM>zCQcW{>VaG5aB}?aOMwV-%%j1c;}`$uG`xaWzk^5 zOn;RRM;|#Eiqd`Bc%kN_Gg7SwYj#K3IA*b({gInB+j#{OELefjJAK0RNO??b_^z2= zPn3f+e;TpaHB_gUx8L)uq`HjgPQ6sJkw#uEt7#)JprQ`UL5L=`66NpczZBZUnFef z@H#NIu60a~$wmNcrJ6P2{pJ@5YqEu^%IrEiP%G+K_Pljjc)#W1O-Kz$`EKN1?gAtR zmCO=6sK|D*4jQvty2$iw4OVY<`2Gws2s9?hS+5n;fCczoynC_d&{bdeYeM;LVqb8B zs%!$aXT8mIMpSwW5Kj>N$LnZw?M2!czq<=8TsGGc?l`!}W5qCYMOUp`IOE$}m z3c9O+D=bM@KI>(6X{9x0)%6J{zPaICNSF=!Fwf#vN7>rYy;}Y6`f%QgWWQ6d;m$0} z4wFRJ6N&DZDD%Gm%Kur+-ZA$&&Gqd|O04kkU%@SgLo5H-%f|(~@~~X#*C$VA9!i68(V%`S38tn!IYa18TrffHD(e8}9)~Gqseq)@_3J@Q^)^Q49~`4M;ww z0vIErn_qS(6BzsAnAm^-p`gE9U2NW;x;7ie?+1cBIWQMDt_AN0?bI$39%a6+O%75M zVz{0boCyt2bOO{7CjY1ljVIoYgau_IU)qPr6#|Y{(F05o^Gl=viy*>_f=C>~9U)R; zAgG$G9E`X%v3fhZ?YF*y!)aBOG~=AHE-hEp*Y*PNQiAZlRG#4@co@+C_@)(dtJ4#@ znRR#;^hacnFUg()t&15vYm#xDz8UX&CXtLG?b<~QANnYHzv2Ay&&5lB*k7Rz5_YlO zxa6Fti6gFEcj$0BXf~(SpT^4!ZV8st{kYmVC)2*L+J^f9{1!# z+*Sj<#wN^4W9%AbIQZ*dD-3KzqUq9AZ$zzS@`ukB#Aq&0Eo`ZT!6TlhUQ<;^T=KI{?>q!2M+p zM8IZ)+uY4#5tg*~gxjbR$|y1dU0vTZ z^7=~r<+Kdd|DKkC*9_#<^O8=_IsCo++ww`#$d{p{QE9cgR_Z57!&Z-J%)g&qQKhNk z<`gGR#%NDIR}o;IEx~ZDK+rRI*?V;pscR9NdlW=QDq|6O@lTm0*TY~bvzRc~M$hB- zfDr>@4N4dyIDGNgA9x@4&!d~Q?pFSvd#7n9DAQfh$sn%CWZ{vJ^E<-{v$PYN)^RZE znL4M(LMx?B|9x6=x>0=n0@j7Zj#xbKSz7J;`v@y^r6ySqW@s;m1Jj!~1Ow>=NXyyy zM*~`siC{OL8O(C8d8vwVdxG4 z>5x!bQb1tnPNjvRTT(jS@j2%_@!|b8Ke(>_Veh;4z3;WweNR(kC3#(6j+lPJo_R6E zrL!iM&uZXw^&aK%-L{x&`RUsB!Et|(PG@z!lJAEf8%K=C8{-3(-ELN7c^^XBBjX>i z+az8<&UxM!!!Klfj#};Nn(#)b@@Z= zQJvE}_l%m=gzl__e{jDnq0L(@QV}!z<;QGwEC;WWwR!+EOb$8Sj7hs9w}$(*+n+nq zYJcCPc$Mb6i`H|kRB>`Q!>44ghF3af4h=Z|PL%!n<-=pc%oYlVR)#)E$lF@W@&hj6 z(#Sq>_S_d}Pvw|dCU?F{^=meg=Lj@F^qALiN8))+07I=IlxX214E@j9NcCh1arShO z`tHr-5H)^8mnSE~46^WA&=A=Vi%v1}k7A|X3B#fPgp*>XO~Rr!SVCGJQQ>6k_@wtw^TK9OQc8Za70kBT)ilX)b z(F4M%UrfSMz6`IkvBF0YeVulpUrr1REZ;=q#VL*<5SenYa?I$&tao3&gG%dR7p`vq zDFOhlTeUW1qM7J7)rj{*<@Dv@un}c;0E8mybV;nfiGvp+M4Kb!jtHe(%|+&UWD zG35~?i|_6gw!}~osdk-%BIEBuc)%c*=VkJ%JRj2t0fsp2H302s&9{rNZtNvGar+eM z+B1|aSSr!Vy>RX+J~m+jHQ`|*WBjjl!$E~g#&m9nUSerkpiKkB_MI`#{z%3(g<;ZUgKdb6ew`Zc zGPWBp8bt|{6h~q9ql2Zz@a2N&qx{4I7RcqLzT8tOK7~1*4aYD5 zbV+Igy?KdSsKIHxq``?!I{_d9N6cR_z~%Z0MahM2XJoHce+f|b-qU8irk-%2T8x&-6p$att;9lP&9=K3~#W~%;V=Z61 z&i&z($hn&Ff++b8=r^k`=*<3BX5ibneM{HZVxStX-c}|nT%=oW7e6vD-LN)~gvoF0 zm<-oFN3UzlLabWttJtjHs+I+lw;F~L3-U=(25YGYZUm{t;7pKPk+_VN$LaL)qaXDX z4HnEr<-~}XWFbeUv$wE%K9@*@Cw&YtxBHpDwmEvA*ki!x1kr{AI##{mPJssJ;juk( zSWn_SuBEGk)INlS%v_Kc%*y@`vZSe%#E2BDIHV?wD8O^tW=&|#u~jLZX9{h)awtGB z>;TwVM=e9|o`tB1dK<#!N5JWZs)txuJfF*T<)2QGuTs9N#eTp4z;BON6g;h3elT(@ zEpn~R5KO(J2d{wZySR&6&RWf1;dgRA@k)J?M_bjD>z;W2QoBw$&w%5VERjnN)H+BN> z(t9_;_Lk}-G^87ro}W%+mm!ifO#J@yLZ$5iC&*djfBlPB1A;K;EOLf1h%&yMzfFKD z=MHxkm(wMO2gjMWkUn%gOhx?Rv#Y|Puga972o*?x^?Vu#O2pv zXOr<1t}hK>cLd_@>S2g#tomofmM12-UU3B0NteTezV6tI#OKD3L}ooE>uF( zhDKBQsuu}wuzXQ0{R7Zrg6OViqH~mkXoF7-w68vxK0Bv3{pt(s-kA27Qlc!bY-$9m zJKy8}o|A=#u7{D(X-glu37$6##Fy_04z@J67KmF1--C2gh-Cf+(qx9l;5|I-nU*v~$m!g3~M z9ye_{C@d2QJS$UgQ6s%sR2_$8wn^(LVeX{hr1*C1twA-aCl@F{k=r)8O)U~KHQ(;T zV9)@CB-NSbIs?itHOemw%H?boZBL!%waHO4l^MIzrmQ%&Y@q8<|A6qDtz3aMd;(nj zI4mVHa@vUC0(6s%fcb1Q@eEDP7cF{6lOY}9@9UWLb`G%?*TrzEy=GKnghBk!F1eYse6IB05gogXMjgX-Rkwo{s1Pia14Fz=8eQ~$Zl zOxZSgOmv+fI@TW;O)BeeEeyOk4TdPA(W}Pu%L0`l*1(JKBXE$Nw2eJqEuo!lHS+1h z!fRE{*4sdjS_ib8<0QWpclFUjcpV!D^XeV;pZKefL}#=T+NbY#UP{a6UyqdF@?NGO zJBC-&qv-|Olv{vf|N zi2*@7xitoUidTn8uf8A{9!hs**N0Bw&4wouuuri;Y+&>7jkpd^%_Nur=Kbh-efRTw z&3e}u?Td`7m~|*M*>;w6xy5H4rcvhvlv|xMx#XA)v!RMK#yu}wleprTf0j+;_9uTk z-dv?TdinyE5J3osR9NDjMqFMU_wF-+%Zp^YO0lWzGRW zKP&Hgm7DgYB*AphNgTb5PM`we(b=ylvgzPK*w z*z$ol?N}<9{w!yenGc_~B={>`0#1s2f5g!g=EIs_nT~jD^xgNUst+C*`(Cn;S|zNR z4g*JBo9=PDHrh62*t#ER>eU@6@jj34^3jFM_c`IbLkwPA?u-nn&yH|LS5l?{xUgkl z0_B)*1dM^5;vF0ew)CSH>-gAzs{K{NBe|ZPN|4l<)H7HFj29K0X>~rf6Xz4Js}dSz zizWw;*@#m~kn5j3;vsj*kUm?rTx7v18$9%XVL* zW4cw3OprN**3!+c#Sz7z5#cO+deWFx*&CI|rQ)8DiXX*HqBQ{!%^s;vb?k9}z2QO= zB%$Jp;f_l*fLI?=S#6&S!Y6>?jQ!J5H~{*bQ+s-B^7X^#4RY}9DazHUiB{e!hzr9I zH4$xO9FePT`^WFdcQ}SjDIy9t^?sk{{nZ%`IKPPGre`tHBbmtQTS7Ol&A7ZHdSGG| z7vc=+AhT>`eVFy(4J)==KULcto5zT8=vpMH=s1L7Dr9Qq+GD5`?4mPf^b~RzDPvdL z8(mL@&6|6@^I>kIJ+?-d5sKQCl^L|&;~6Lv(uhmAjD3bgCG?T;bvl!URLEq{+?2){ zF0)HR($O4@bT1I3gtvXp9pBcG2nFvj%?@F^I!Ob``$Hh7A#&@o{X$oD*Q>4G+zh*Jo#-7k|1xCzo`1VI>*|LXQ5o{C-@x?i9pY zdt25~0_{PYaMx{@WXF$9XWJ!kJ>G?_u2%18ja7jU&gxqJBxB?uAp9*+NRF25K}4@% zB!WLcfhI!P*w(HvNt$squt)KglLQmj`@t0ZUJ4OJLYv#blGm)==HXV$&5BBGXFCQ) zJZKNpTcyh9(#>-vok(pcy5YNVui>WPn@4}=bwB^MEAa~^gUKP?)%Oiu!)=vdr?42j z@DAm)xyFslyZkP;5z&HAUrF?$sjm+>917J`eRBhezr5MkGgyUPjB>w(?2(tdIw|?u z2n>HY;D6JNMJ0I3T(_F==5)YhmE+SwVj=Uu8XSvW+5a`&epcw$Tf$AFW+q-czQ^GH z1@_NQN~VX;a_$o=bU_^@IHxkYdjmdKQqkWknrzG!QE&6#u|DU@IvF*nvD;=lNCpLM zvL;AyE+$)Gv|rxeQGtD>nM#QCIw%zH7D@DeM2XpOAYZvsYnjXR2fc-xw&rZ_LSMj+ zD|!m%l{KSMBhmW7HK-)tjP#`mp1?brp8z;&d>MXoLQFTf6kdK}NV7wPWj1pj^=rKO%~ zDqPTBO5M?FY^YvYv|(TfDKB>?lJ~bT{|AE{SxLnZvHawjH#bUj=KW@T<&5z6btUtC zO}Qb{c_($4F(Dd45ViE7W`woLA)^8TIU8a-=wZKNY1x{ZtL>~KyQLY;H3MJHZ$K6? z<`_6S&8|G=_10&!n6X$WxE5I8Tm7+DG7p%yK^s`$-}4(D%c75HPp9AM4=UrGojEb4qJeUgi1ou&Uujw|-X8 zwYH}F?K#%0^U`PLSEw0|g7k|hiD!PK3Np8fedwi9x7`xp;BlGEol;E9(t|KB$ zFq|*fBH7keQw7!Dl23ho2+QVneD6{@Q@~?pUc(%ub(r|MX90hiI~6@Y2+|>v>chcw zn)R4^O{|Qtp|*>BrG=Bx8wtB!uW*}fN~^_b`LRuUC!80kfu|-ag9Ug-RXkw1zeo=g zSobV;u%wS*%L_43W1YD+W9BHVnxyjJBTLc16$Q!Iv*Kf5EpC1<_9G{*=+^fcP0p#8 z#z9v@yFx7hcSrh;Ul$Zu->Q*zPf#CYWE7mtDW=#r*$orNQ649LT~@)cHt3_l%a$`5 z=g)Y@G9xE*?@}21lV7uQf*%k&30L9LU+I`_GXoPM1q9P8=o{e92{s89i^Wf%{!+=~ z+!*$0dR(qbBmoV8hW!P^r5=BPGP;HF5VRME5&m3zOSBtZjm?V0sb8h5=HrMkMLYeQ z0l7nt2#-L1iuUdA0)iZVW7OK?9y+@&`CDr=cnNxf&Ni2eek>oBy&^q?nbgXWVXpSs z-6%Mf`z*uT;qH)cfM8=d5ZB_cY(^$%i#@vKJyRBmDwX>R^Z2$M%?Ndo+ixNz!W8ph zzSHFe-f*#WqCc_uEHO9{RKTg>O)u`uEk^W_6R*69j{FdNbNrAC zp}MI?Lt6sTT!3z%wSWKB?*YpnqRyu;lyK6MMKr0$Ju|;Qmpr*u>o`jpA$sOB`plH| zDoZi%M&|ZZ$4436fimen_0ZrY;wx^44Rl0sR{3~p3m>46=U;r_ll8>Xl>g4Bws&~3 z2Y#qlCr|~*ciCQg{>*SU4g(%}ZnAb<<`bm+7<{{s$^VwTX(-6Ffdzv|`ds{3$c=@o zL-zbjV0Kl2aqXcPr6ud?NL?o1Q$#&qSpQhk-GJ{1C?T#-uIqV_;#<8!(Li4~qm+~s zF&SI%&4^WN`r95#GYC5;XLsYAWkpcOMuLQ)HG|){&~{y%`7hnS10N4)^`{{Y-(y$v zo-@?Cqj~h@#)d1tfQFqX28iWcPUy8A3pUEsl1src<1wch?zqy|I9t@@VL_#Klsgc1S5#D}V6^lt z*0@NoTBCx-2jR9%lOT0RSYXz#5oCb(y{gmQT{1GcjFM((ykY)yV?`zQh-Nr@ z$0$i>^vCt&XH!AZ7sA!Y%eMlKC;SaDW6-Z}K)=P`Z*<%-Yi4(vuC@}BWQ4j09kXG_ z#wj@Ykad&!?pu<66Q)xgo{xPj%a4}opunfTK?#0pejMbklvCCtm2Y2Y9q7?4!Mz#H4An&#Hh1cfAv&TB3V-5x3;lQtmPS9P-Mh2ID=yWH>kjdK zg}9I6L{4Vm@(eKSF*DYnwBR|k&WD4&Gu;#3Vdo_eGZuZcM;ZLn4v5nCWOqe;*mu znIfLSS+2_PD#Rc5=T_}mysGTUa+)xD5|Vz)@*nwrHB=)&T{y|JKdywHhD9KRaI|<| z1jdptRy1LQLdZNOj#~j;-I(NUkC1fNfx`DR<|)zOEM_~0DC)b?pf$aMARC}OwrK`G zEQ{!2QAUCl^535xGekTR^>UOeccd?~4p!ED3Mp&;xvxiL|#zgfNc<{8D~k{Hmai@i3=YKe72`Nn+R{dOW?Q1Z_zZ_n-c zCC&qeMVHr%3|c&;>ta45k6m+3lJpy(yfLarinm?%j;4XkmSg`1LFxSf)%G8G?{_ps zg9Y;U0QBDWSR?bUoE{l<*8SudD7Td!)=MrL<6}PMblWoyG1&c>$MKiH5(pC82}gyJ zm}@?&WH%_StJ@BEHTC)J;bU-&*jayuee&`RTYN4b7CJ9Ywaa!4bp6#M+B|bw}1Se4yj04eeL@r7x_KDJ}~S`9G9&)e6y!ZFJX`) ziCo7Tf#DLO_o1ygG%_-9SZUPBb`_^w0PwOLVhNB?yVhCUNp zBBkn2RD#i14uq!l7{h-Wvp{Drf6G4CK?$wLZpnckCe~`nl1>QKAEQ|%4wV32K8I5S zB)`VJo*`w-bh~-=CssqL{*?eB;XNN|o#=hs=8W4NfGxFD24nOPeH}SE4>v`-6 zH(Qr@iDB4n11OjOI}OxfV0A=8RYdWDB8Ofiv?A^+mF`6lb9p#2@@qQg0sr2K{+#-Q zH_oQ64`fz)E--NXPJe0n`F4p*KHSo@3wvX%r+C5;w6govOrM6(hSV8*L)suzrX_7ak|ExgNN_AqIlU@x+?m9!=cO&=0<%*MEOhctu z{$w^n#BS;Ca%ESti~A4wj;>_xB};=^Y1+QfkYs#xos%JaNRYrJlDw20u6Q4lC33&D zDG0f5?qn0`h`v(RGW;qLGDO31MR$KW!B$w*L``j0$>)KHXT_)bak$5Tr-I6?80OGNEM0EJ zcE!NBXdU?K)8*S7pZ%dX$Jg$`L~ExX2R|QnrPH16hHQVleK8*N`e(~Qa@i#EzX!@6 z22?wXe19wC5N}4GQ-1yxJP<_o&~YjSqBLY;8erSFQ|EZ1!@su{>Bh?@hBq5+3ax!_ zVU0@^d(Wd3AH`ECZ`eWP)y#&-c@$-+?oMp^YTTRAz_^s>b6S=<0gxaauuB+F+p&Pf zt>eBj7C{{07znKQEU;HPDr;LdUZ2oI-Pf*bp4gP*Z~mE(eByiqe4)pDy~N?L*5V#$ z@^Ih(HuxW$)Iio5BZ&2APPwa#(McX;0uwpRM$gHTXJqvAor=3 zY_?Q*V=8+13wz?K`{ZNxr(FL|42dopW_<+^*-ycJqIQSm!sL#f4`cE8=yy@%7jgcd9OU z!ZrJa^0<-9d}|xtlCSye-UP-JkO@kP&fP_rw8jzuz%GB{7+9FNy?dcClUwUbwKRU| zIMV>Ebz=Sz!VCs0VKr(<5S}v2k}jlcNJrZ-tfDyNqx#TEOW54+NU;jA!V#V%+VP?q zoTD{Mqb33h)-YlW42tX@oQ^ZSa$R1x!&bAoMUgQ~sHyJ5RPy$V&wc&Jz00Dk&$I$Z zzsc!lU5G-gsDRr`uE6}<4)kdkU_ZSA1vL?xC9rb=%V5@Q?jk;jZSC#soU{2M1NDX! ze-Tj`|2d`CqrT2pdl-6(d>)yk$ydizTQ4DLSby)RXJ#X-wnOr6TpGcUTrky=q(fF} z!yD=$K_*zV96PE&p^m2(>LDy$&{yI72CtJxk$p4A2}uu>lj=-c=8xkz!J$xN z-)+Jp2lC8tDLlu86zp?v#wE+796I33KGEV!5w=Tz+3GrOM>2=M7g;s*e7$dm)?0v` z6&xJrdl%j_p^b<=FyXL{3X`1lQLq>$)g5HDV1&Nz<73+sEyA1`6PwAsK?(3R|AmMO zuOoBpxd!aVlIiO#Y4Yd`M2v9wjlV-;lY>~fr@Ba~P?Ma=aStyVQDd+p}fsp&`5v+8rN*%)Lg-TQ9}JII>eDW~l_a}!L7G7Ocym-W=Ktr^+eu9^}G z!VCYgB~2h%#@@wT6aU^;_K=tf*%SZ4| z_sHq^{NDVRdd}fbN7KB>VtjHy`oHkJ`4$i`DVX-ZK)o2@E3#+5jYR?ZK59yyo?o5C zr_3$c|Aym-A&i#W$GsNBHqpu9(#Xj=;)7q%HBCF%5yLIWh1HU-mBu~6G*VQ#dcf=4qSz}3 z_J7?VhY4a~(=?yRjqDs=18rlnYul6)0=$yV=b$Y?{_IXzzDBbQ!Zm=qPs<%=n1@wv za;3!Xk13Wf<|5GKlj?DueIgW$wJ|tZn9IshZ&-}jE8LXb)Ea+J=z@+;Yg*xn-CsGc zB|<5H(w_}xMx7pi64#fXzb#Nmz`~8uwU{gavrm(Sp;cbvo?;ivJAkm#^N;^=r9sC~ zrZ^51N3JdR@mJnONkJthk7tKq8|pXm+%3a^=<8%7% zt8K>CA`%vT2OSUL=jdwFPnl58Pd|OEw^q>R_4w+@Jn1bbqoUg1Dbkhq1$YpM_t@Bx zSe2P2px04z_-tIJGgr6cc$8>G@ugo!2`)D?zR{76$revGdl}9oR=WM6@TF~DODDFN z{5ExL&ewNAcgn>LADWzHIKMS1KE63HPqH#C^(e1&l8sGsdb1~M;~}=6y+lsnsg>#6 z%^{n)K=ji#7Mx^Nw2qcx4vA1u*XG3q(j;4%)Ce+AS&c^x@>Kl{qW7izv0IvqzWOei z_wpO{YrhUjp)?A{(*7D-w2V^-J(ggP%~XGoc;6Bdh}4B5&kf7y&6pYbmX|gn@_08F zG8+%NsqJgVua&f_5RRSKu95S7xii9yivpDG>ze`qTzba!;9z zKA&5^kL4r6eu+*$C|30mmI7Li!v19))h?Bn^LRRVpC?mzzDU*1B`zy{FBQRK_Y^$`bur{+h~tJ(I}UrnrYfRo|6z% znb<|5P#WXL?yk$TfsB}9Q#FN};RhpRQDi4Hka3_NYsO8qlXgzK4OWk=V;EOpDc%xN zy0bj_1D3>!m0D7zGYMJ^1oBG+;ZAKpT3=1`(p=rlGs(*|6$xckT>-`>ECD$0s@*f2 zv%7ze!bk*QQCRRxW}($2Ux#4g!BOqwB9buPbuLZF>Yc@EmIvl8Ar z@+^Avjp7_bhM zhvNbxV8HdtdTxCU0mvx+{nf-1C0lN=h;(MNID-g(z91FA*S|_bqT#cAG(j5=@NN$6u3y8BbyrHspUlxzz^So7G+g0 zsial(%^|Vq!04n&PR46;VJ-Fwmq`}lZacl1L93~3y%~gxf)^LfLvCxkd<)l?aQ3;g zc7+63&KzDAb_g&lJ9`SrF|MuZt`LNlMUy=_`GeD!=j+QCtI@b?2mtjP^l5x`=NHM$ zK|@zJdWIv0-7bf3Xrx@6kk=3n?R;1(`IV{iG-&!ak53|)%rd^BQNCvXx!XWqxO3X zsh)JSzrU32$Ucdcej@si##N(j;&mE)PCe!*mwZ_Pp7_vVPn$&L@L|^4q)=zwqHJBq zLxGDkTSAxRv?6`pGXhI*brQ-NtrWY=)!C`gvHU`p>(M#T0s&yisefkZoz!Ba7UzAb zK<7;qiRLpl_(9~nuc7h5Z zNfbVWCs$JhPgZo4*j|j-3vg_eO9DgK3oM#1bmxz*(3t@(TO_Qj%WV_5EbE@D{u5$e zUH7(XCpk_aSVV(?BEK|vA^=JvdW+xWk%r(z-Yc3I)-Ypm-1fdRGRT8%@K8W?0CK8; zb39P=KOtK7;^+Q+Ir69zxpP=y9Q4ElE}qU&okPchF3D@U1*kn!sCORN{OfSNFuK)= z7`JZtTDOwvE?1l>BHe+Q7;uYQMm2@^4#1Dj3AkXivgt+7mdy4d=Q_OConpl1J^+x? zGO1Xt8Bcur#)v3(5=H;M^#`LrIG@o2oAvg4ECC#wf)*dD2vZ2{Nz^U>ha^o|rVVM0 zrc6loq?C6S!G*ojewbk-!U>hp{S~_Wg>civmq};vU0%|kK(XyRab0fo z?>X)YN$=1_{WpPJUuePyXPXOKr{(rm z*`|=8$qs)hdgo&>t;{$N8gG>Et^h8T5LD2)YUmn|Na4QFWe2sCx6-k!+xer_dT-c2 zeE8ia^T09u#k_>bb)M~E-khg=uPZN0KAPVW%yi4?PMEZ z;>z|MiFaZZ7)v_{@(h;kYF4C8x~t6xy5DAjnt}myO@%o?8Qit2pSOBOJ1RawT>GFr z0#g2Q7su1L>N%S)*Jlb>Rp+rN7)f$GVaS+Q|52jeTP&23%8F}inz=s0NklrI&-S0=R> zz|+_g&ml3G`8b}P1a+*`o1{4PFQKrwPbvPiWa9$UCf;NKLd-~6$R`pI=z^TE4x!qG ze8qrYr+(U>j+n3BqCgU1&$LszF?AO*7;^I~O0hraTE}8XLf?ZSLc~l+JN<^5r7Ho7CU}3j>Il~$(C74Yv<6!c+3aWN!Au#8N9-}1&_dBDa zBEu<>)&cdeKFp%*q)8KW99%4gT7@QG@KE+G;#zujG^c_ zWtD3_QJSedH>}$N!T^707jR#ZB&YTC^0GKj6tN%Ap$36n7QXg1E>HC{;t{5rl-XV{ zW8+_2qpkRLx>K>gRvBAOP~%F4-3LGw5+NjHx2U4Y@MtIJw`%ylY74oUZH#ElOgAHe zJl(NCViuUFx~i?WQ+AS#%({AZICe9`w|4T+@=P<~y1xO3q=(f2Qp=yA+$o+YL-xKb zNjxw?^Wp95#c&3Lz+KtGG_EhdWuprW2ffX5lLE)N9nk{;wCG0nEEd?FxdnCKw6MP> zS%+{fM$H;Gkhv-X7nhc%R;CKwWu3Onbr-{Rn|%sC8zIFI_KqA5|OnT81r-KY*&1m|59`I{?F8|fXy z$#5JKIfNs#qAr-K6$f2~#zqAbiG*_qCBejJBw`#?pKYeko0t8+Ucq>JT?rwh$>9gB z5IeH$rIbQZMqt?3kueN^-Gve9H*%=(DP?CeyV_|LVMP%zl6pRZlE<}Aq1TY_t@Ax`{pH5B%ct2+8wMc)!fA9py(R2KwlrTVN? zqRPdopzI;$i|hNrkinp~%#dM#8@^(Tck{uA-I>^v^TdNFlvU;nhVWSM5AiN%t}1dL z=2O$o15UdP7n1n6iWol39J&(}jFD4ogm>LUz6}+_-Lz)AwOo z8ShONeimB!8%I*6U)WY**NgMKppIvEB{g?=8g-p5hPQ?hQcw$)twG{Xc+;EWMrZml z>LA_{Rlc-&fU&hhDA8vOa?)l`(546jZyQ;%zbiJ^rQP~CMV#6f+46OVe!_aI z`d1TP?7ht`u)JMi@NiDc6jp100WyBn)^OR~-Bom814zEbCDNXPk9zWJaIu4lLz_*0 zco!73TEG`5ze#uE5&#%RJ#p)Mp{QsMB9I6)_yVCv-)x2Hw+3jc6cex|SKus1i;@2kKiPwRcndDiu|u75KMo+kdYOxL=0YpkkjD5?0r9hR*h_>$Erd= zYn+@Hm?n&cHP=@FT5J=PHC+-W23pRJU8q8S(zL`Zy+_)ggde{PASXA)%ko(m%(S$; zlJG*{vJ$eOsi>VK`)}jAoDIsP%!@V4zO=pF&!r-L`_IgVx`1>Ox`J&Czfh^B)dw-o z4vMf1uG2hgReACVRzo{ed4dR*S?d;SMSTKg)}NfpETqCzEH}&>75q%q`U3j<38Zlp zaU{>hwE0s_4zbN-W^xC(}eo zhQ48UK)w-0RfJ-f8$|(x%~R8{1S>_$=xtFwGy3A15L2Zq)34r{DdHG_5}|QRwb!G1 z8sO(Graa`)u$icy_6RbzYq@w^e&JJ28#&l0e@2~1qUJ;OVfnoPhZYs%z*UMfOATs| zEuMgMA-;hD=V|BFM zDrN7&*uX6~NC}wN-xUTskllP#q#gWEs=RTwt+TeErEpj8&)FiOYV(vp@|<>G5DaB1 zR_gR_`ru@KE7F{#NmsKOcV3rLhMZiaav$R@=WbmdH)F(8Q%{n(D`pNpXAE24aEMUan zhdI&sTNx!0MIxnB`<`4Pbv9aO`q`bR(tQ?Zhqj%}=50@-$9lzee@AVi=Q#629{0e| z^p0A})f5FvqW&?n+FjHGc|NN~rM>HDZ>3gb!BEAF5q2c3Ux7UQ|8`;{)m<*+zKi-n!?LYU%=G?BX@!)aM|Piy6GcX+oMnZGsRt3T zQ&`1t?GvXaCG1{%12Sd{8yZlyO2*i^lArgz)-P4B=F&6XS8$3BCq+}^2b4rynk&L>7y~++fh)NGk~kcm2tLZt8qW+rDoTI3MA9c&5P0X1)6ZgrA)iw>G0MV5>}{ zJU-Y}ZYCk{#+S8!bb)8Ed*0uSO4Oace_}Ne=e!;{Qi$Zri1@poPGL=ssZ9%*OSaiA z+0v7gw~DK~%t0j+7r8-xcAJ=SSv1u_UU>b<(4~yUop`2OCdJICIGvsZn8je#g`I;9 zo$aNO_0gkXYq9+$CIC>m#R^d3sTr;rXj}oPYwlUN4NklBBhT|v(=QEu# zJ+v#>j4J;J6h|%i=m|-kqkpAPcdAzukA84nXzilO91(6}=jnn&QL<_4Y%i6iu{3GA zr4lU1G5!2&trU}GUqZ|S8=r#$@kfI8&67$G4)pU7^6ymu#t96pYzZMLT6cZK*O)!XER9 zUTM0f{i`^J9bCjT;gKrMWEN{Yp3dR1lcry0BRf0o;;4Jh6JS(K;SNi-xz(9I&I-pxFs{xbLWPbm8AF|wxv-7K&dPk;~no_dG2<}xXkoej(-N!UT#4%RHDciM{ zr)j7OIRsFM)LN3BHo4VYU5NB@%Y*G;R&^&4HMe3Gmlv%FKj^MqmRx>=v+~`r{6rPQ z75GJx9pkFjR#!uaJyO+w|B05?abFQ{acX&6#m=EVo>jCb z4!otNfr8o=(k)Q2$gqoEC}?REpM(2zgYFwTAK!={T)dZib%V5K%Hz4UXI1UC0m_lW zZ9VeM9v;NyCsSzP(wsQ}4tAetFG1TW=AK4;B_NL&SWBeT>dJo~UeE#U!CvLFB!|+msTF7T2!kvh!iiZ#!-CUp=?-mbl#J9jAiffgzE%gNSX9VkbxM?tyq|-14-_8Z$u)c>+Ug%?KW_6Dy)FQY|^zD}# zYhp9Esqlj2qskF5WDl#61eoJrEkb8a+u{w|NfuD!M9$AO<=BQ@YTd3^I&>W%GVkx; z*T2jy3*zV$*yKlA;A2f>??Q5%8jjk1L(L`rrH|Z`L0vd;jQqVzoqTrKVZCM>M=+&?US1Me;RgKutcpcvq-{zMEskA1Ct#1EiM9XbwHX1`>*joGY? z#bN=^;wRT8n`nH423Nu2Q0dQ;4F7gbtjnz(hxRa&h-y!Q|HSF;vv+_y8a;-AlX)RU zMYiJdT2!)W+{qt=jPpm1ZeQl+)S85v>ClgY-kVE7FU_ZDVNKG7Dgjy+(sw1UXsNT@ zH@Iz58(~Aogq=kn9Z#J#vlO~+gE^Ks;m%|YcM_9RD>xzMKxO5*0)1)0@V?io$cY*p zLQ?17baG$IY@wv;-$X$Z($vi4up~!0k8c=WznBjLDtrN&%+x!X_2XgZM06N%JkK7%RyYt|0nLi{6sYc1rCsIO+6I$`zR4n}&r`sJFRBBUj1glA=dp05r)>Z#2;rSWk6 zi~}s^AggJTjHodg>x%CEDd^+dy;}Xzm5y#_)Q*~GL>zUowl{p}jX4IUQ>^P(*IQYu zU9zC!#ETEoGjA_LgKYBWMVqZ@Ia-1~2d(Uq((WUX351OP;Vk4-`7h#22@Ae`P;A2) z3ufHq@%#<58VraH{ZRTE2Epq6M~kvZ2m5B*CspgLZP;us%l>fC->#TAP|V%+;73yf z_c<;9RsecX?Nl)s+4Lp9n1JHq2jlUe&ur~xcvdNTNi1ebOs>4aA*?z&q9Pv&aC3e4 zvBN7-ss~O=>&KV&<8<(V0Rowm9=nwEU#& zHSSX|Iuh%C7>P@GnvUp_%-ue|Hj-|rCaZK$sIGOr*O;P|k$;c|v@9Ipxc#vprg8X} zxcJ%#VY7oD^0#*=YInn4y@1oSkjn~1*ymWm)5!v;1 zB3}Pej6{;XSWp$f9vmFn>HlRn7LP|jyX z2S+;x{5PA|l*e)Db#Dxi~cyE&EFsz4!flE7(?IzDhcojANqf+3v*% zw7xoY=m5Ifn1iuR-O$ufjMNk>Bs-c8Z5k(xi*}c_)GJKdSATW52sG7~6L^2c#2|uB zoTFXWHQcO-iHmhx(Lq8BO0-o#xpE`69rw2KVScm!@PfCwK=XX;84iG@EKy9gR9yHXk@w*?24B_j}aNtcuykhX^ykAGVk- zGEcGeYUv`hW0FnOD);&gHlh6Qz(4GO=OYUQYjqrhWbzUs-znmcA_>RZ5;q5=3pMAKq8{7+HFP6Ih zdBE*@Q`7h>i?Pr)Y`$UGd%kw~P5$96rraL%efi{mg0cK?BZoLTvc8$*4cd1c*o9$k zQjp`4h(HzMSismrB1H=9sPbV8A#yWS-*H9=cxRh{zuV ztzfg%U(8?=k_bd2-GYSzKug=%8@cEa&IU$@Q^$57ROkPb>36Y%f{}%u0%Z#yS_YC} z)$)9O{ug)yp4+niP1De@xv2OTQ92BT>^D>sKF%PmHqt!?$iR@fN+C-j+j}?#yfkU98X}CtD+N74kaOA+cfqzBR2O z{%bGSMk2CqDYhgeTeq$--7tq9sJD^aOZD_>3Qt&Mkg1L6%+`y49&dIrm+y@6_j{{5 z`x0Y+TSZt|i37t}-KNDW4;p+7(IZ3N27W-o#u&eX{MPFBz`84yPz5{SkPn-<3tTR` zqXJ=_9JHM}IPzpf>-ga*EzJnhQc&6?mq`BMr??$b&t>rw!-25y-B0O*lf)bUn{aXF z&=8}ajqKcJOm3=Y^tu=zD;Lww1PzP1w`FM|ji3cgD-AtE&_<@^;8?PbrgdgL%7dm8?o zKmQ+FZyD8Q*KL8e#oax)I}{7W-6_Q>5~NtM;10#zS_-tdOL2Dy?o!-?ySv}K-}jy~ z&basf${5L?C(qb>?X~BeYfg_dSQ73(>v4S;o|b?4Zs3gwMaf>LfErk1fHAZu_Z4Qn zc-StV=6B2gbRSxGHyEOH)<8zM+4%zaVzIsMo~+vYaXdZRhC;u{Rd>$%aLot|T;HGu zJ|9eqY)t==ZJIsA$kYM@udjHpNs>tu`CYbjeOl+M5C3T>rJj+IF%@98v!O?SWupg~ zB%R3yT^K(+SBBTH^Q#%FNpc)z^uzpv?&~d#M_G(B;_vnC+sL0EuJHgttmUnr5kmQ^ zJ(6%tSLdg5%@2xzMbib*LT0b>0 z9sLl>FfG7uHoACyw`;CbR8eYqPz^YoVtg$_$x26Wm zzf_KgR$}RQn+Cy#^*!^t2m#F!7rLs$Xo9;J$o9g;WRfLk#sQD~%bvGExR+*pH@hH@ z;^_+Yw;P;{89DEy&0WoOynUrV=4F}&1t&0q|Cp#zDdz5kCHUY0cQ|FANkEg~p?5)=ms6y}s~wSAW{tl%~}j#mB6F z`1A3(4veyPh7f@Qb2iion0|kLDyp&s7GZc3!tz3H;*S4_^<{{(NML?8I^=32s%344 zM=H2q`V0$QDG`O)?Uc8mU_hWFh_w8b!j{}>nspVeH0%p(d2KpF;r^(o2&tPh2rDQcbV0qhZ0qZ@@O`EO2@E#R+QJQoR`uTu zv$8n;9W3nha?Piw(UpXoEZ%^h+QT|Lt7t3JsIdNVpC$vT#wU-q3#n(0Z`X$jUhv82 z+%O^8KLe#qMJ^)I=vQUI;fD-Brsx52C-#1h0LUj<<00azfO`Tb&i?2}?A*TAxcAii zX)|h?8#QVN-2uxqX^yi^@(RO=7h$Ta82bWQ#A0Bc_q>kw~k$VIYGGZa?sivd`%V^WC|i2A8!FJRwI^ zPiA>a#FT?xu=9y-Xw9i^z$3`;@t(aHno4tpLAVT57l_+BqeOz=E}^yN9`sfYH>3uU?-_xF2rCS4sZAcd2I-T(dbw(0ymvpItv&TUMY|SCDz!Z7yi9xmU0Gcj%$fz4R1*yQZ$U7-cU>?MfDI@UdIB}VM0B11)kL|Q z?$3Nf$t2xWp^XsMwSh`~_>)EaXt9lwG1H4Ma=Qj%vpY|X``!JZalT22OzicZvpK)e z;>-SZL;EA>?ta`aATe45)-%AWeBd{zakt=(S9bzFz-pL%<$q4_>4F4I?)9qx7W6Ya+}9=l_>dZ;O`YA=Fc6xb^NAYTD{5qz47-Ti)l^b$Ri1uL7MltoQLMSH* z<_aD~p#`ehQjHLi${;w8Iw!@%DoxsCqzZqRriF>srV&lbu@IHOR^p%Z%IJaMse!)? z(W6ZD$(jSBgnp_tbnnSorI)!4LoK>W zM!P#Z>z1#V&R;Ak#qCuoV9SII14Bh#S-wk#$PnFMi8YB`KUQE3khLx7Y;ja#vy}G#}z6-fDh|I+#(=>KvsFH zC&H*80q>+7j7iv8dkoZ0{v^NfWd+7x9;KN+J#W>-Csq$H!qQh3Hv?)&e6+5=x8wOg zFBQ-GXT8bfFpK~x!5mD6XR11@EXoB#W#eACtV+3F$NfcQLNZ%heb@|}(Xqr{&@ZA` zzdXqc5n#NX%;tm<3RDv?kGiXF9Dp!Dud#RGzbohNJ?+)~YET#_Ty&>#PiV$p%uxBq zx|Gxg*^QDg3usGWZ2#>?vbf8WjG*v6x*q!DKK5~22#J7QcayvH21Lir__?o0%AdUe zhY&dYjRy<8sR2HOnuS3PT`d6`_$gA%h?msA*$Vx|whvFok+*di_2!HDFf&)tNr4BL%NEckkcZxu zdc$fQ3{H&^&lxr=0(Vx+`ambA%}Hh*Vd`1{IzAv0E>P+{%qu0HHqX)4i~aZFaXup5 z*m1f9jnqf38ZuzbI;Xz~4hBYyy3R##JRUx|{D#=G3%96IrP}c9oPgD;_bCSCYM)0< zS2wukF*9iK_Xj$9JsyCS<-iQ=&=8tLgFr$a%z+SFi02j-)1dm}riRPq&Wg>jio;4+82lRa+rmN= zc=_w5>~-&VLf57zkzs*pP$VjcWDwq%n^z#NKBz1yE>cMw5->-x@bBeT_=y$j6Z_8< z%iZT`5Lfv(F9unC4|E8rV1x0we|=eK*X;6!H_u`V_Ep3BmQ9Z1s}i?v700LHYSp52 z7=||&T5*C)G)BIGO(?s8MdTKNivNzy1nT>AeGvgXzrZ?gU={6&(D4iI0P!hskuVyH z$fW&>`~lAhQc~7Pb2@g>N%2XV`B2LGA1GaaDZYNbfL>i$4Wzk;{SUFiCkg*(ERB4_ z&WjxuIIaW+Ckbg5LDkl=0UH_#`g(Cy*5p>U4$`c1ngg#2(4cTPBx-AsZ#iAQw<~da zH5ROnmg(B*`<)F6wamq!yK_kbvb(wE<-jVlKGX9J`VXvuTOHNasDp#djVH~Abt8>c zn_T<33bU*%wkARTr|m-WmSSr1P*JQM7}G#vnUSCKwii3e^Ll2E_jGp2Ue47OgOn__ z)<`AKi?_fi0ZL2yBf={082n2k-TfL zkCK%Lz{))dFf%g9dKF`4vS{KTDm4v_sEZOW0{G~82k{%@vI%914+WYk^E!h0{+n80Jt%9Akt=6^4T*{Axb4=DSG{*XNW2PYKtk}}@uqU5aYK^Wt$w4hPb zy?euGbdK}lcl{;J2Lk~?NgR0HybpYSfTe?k>H# z%`bZ#{9NPTI(Eo%GSa^1wA-z=>Q(#_bKX%7wnOU1&XpQknka*vz)cz>h70iV4?mKf8@Ri;L{N z)Af^bUm0%f1J$HhOjlP-4Y*Im8JvWQda1<*+^r7*?#71P^`}RHR}G^aUksPkOi?%* zy_q>0ElD_9lXYXGwmcFjU_{gZWn%t+3D`;tiRh{JCWPFIz2Slcd`$TbWLg?*Ujl%# zo>@>9vdINzs4#VNlZ+@n>aTDWWjSd{QcUDu8j$Q796KKsgoqm417k-C>Z6qi!VZvv zunf{pa&q!!q1bcrgR63f8JE=r6((hEUERJqasj3P)7;g-0{YYN;2=cL@>)(x3I@RH z7#Yup_SxynBV{LdKOiauO>9yG$;j(|`&;~3 zzt{^-KZSSNY}3UM>x|`C`+T!2>#E~+H`>3rKMzvdU@z*Oi&fTMy6Fg`PE zInXq(;1qIm2EVoQ6K%-la)8PaX7`j6)J|BFQqfzxs%|138EyD@-qG=b_dtHBawT-5 z?{Sw<=t?L(+b;aHKh8+)JpOiNiQ45TWt2L7AJ!1Zb$a}IJU0bg);Z*^ov;1PXFqKf zc!xkQihzJb`+<0p3i*9sG}SsjgC@+q4}kzr-ku&7v?y#TYN-J~B>(wS@jRHO=SBxX zRiZOu^&og??^hEf5T=ss>9~iFT&niCVMVJ5k?68g0YOSav(w1hVQ z1ydhnDfd}@3r>^nxD+0HVC!a69&)U7d?_0cKjlMh)Bc-*9^d;?$x+;g?1xcM0jAjE zhhRP-1SEaky`#4V8PMCukm(7I&kvv@^bYi7-UECfI&2_c-EwQzO@i zjQN2Uo*c&B2QPO?;wL5M7D|`AK9Sf;QO6f(aU-^~dI1)pl z90|yE+lV|<*(LQP2rxa}E@8|6knF-9cf$YjMYR9uEF>s{4_8qN4FoU>4F#r*C?pb0 zM8}#&aY@E@j}Y{Y8}Hf)SdgDCAu~yp;*-#-n8t(i(Z+*_(Z-#@vc{cayT+4!E`!@6 zH-lH(#*NTjH+V>14f=33=HXvNyUG7ndYWK%@d=`byp5ncdC)$OuO;O?(M`nvRZ~!V z$VeihDgH?W?x3EJGCOq58_HOnSk2Mn(T$~dHT?Ty<1>6>s)iIg&6WX2vWA1-RY|QKikH%QKZ}Z47xs$D+gI`!=eQ*Uh{xIgoLK< zE=qPwQeQ^7c)}$M8Mv%DQ9rQ;Nr$phE(QO|oX?Sj)Q#Kf;H>xU(mGC|eQLb#C0>4T zDy70~Xd{hVGE(R~u0Ra3h7oZ|=H#>a{{r8(thzqXqp^3VoUsA-)$gftX0stYRUryd z%9O{g{}(CxpGBVigT}E>rN-4Cer4d??PRdi98bw5E+py{6re<5085dMb49_J6D2R; z!MFDr!zIx)_MoS5Z%qmp0)6aTaVXe0d28KxTjsJXzy)`UwH)!dTA#K1{r_;%1e87e zOUC+d*Cl-ZkBFe<NGZbWB{R1_bzL5A!#= z2VTb2H}y+v{J6G=g#AERM~T>4us4CUF7bi~3(TFJRpo8qH}lXW8Tzdc&U!mgVK0jk z@(xso-Sicv%|V_N1r9|h7E9fgTn*TSY@K5e%cQxgX;a^@@|9I5IeahrJIeCw^v}*t zl-B1lSLLgB0=SEKX&d4nxy+fHuL!blMqQcGj(rl=XB*nH!X-_Smxstvm-~YM+k2jw zhc5BJ@LY;mVJ{p&&Q%%qa^mD-A!PB*MWA=mA`h81%-Q?HpY?O&s`Ucca=t{HY~0?~ zO|Q$648kE=vhUhuHpdy6ps>p$b)3zx~Z<>n2D?j zmsA_)c;Ji2s84%uU=Cbdc21yuxs`?B1YwNei-({gT_9T=mc6h^7=|y8-ZJHxy%&$_aOCOfF7_#5}@`?GPffiX(lAvRdGr-BL z4Q}d%#DkRasVl;nYN_UwYyP5Ls}KucG-uVq%b4eTWzg;m6DpF%Er0B?Q@#pa?yAmx z*Z#GJ6a42e+xtoR^GDAxRE;^i|1BmK|EHLkjCGk4CmF1-b8*pRUw~rQ2l*mRm;XDMFp;q^-&4pp-19RFyn1Nx>%3%d9B1|5ygI3GWp~0RkY|mDp)MG z#Cn>{WJH9u7V!^g_e9bA=;%L?`8>jC6lpZPn-tIe^MOfD#gqbfgq3b9H>LT=~=p^RLb?CDtgkFV_%@9311>BrrI@Yh;O zt6ZVwhY2#xEXQw>${=X%deW;N_Q4N{kLGFnulC@Fh18BQVLY9$hGW3nU^TKfNTO@a z=D$Uc0D5D)_m6@yDhLhpMyfcBlcMpLiGC_2d6^$|-@6)&clXsGCYwKMv;5Qmb^esB zAK^mA4zX6{>2OR%%Mjxw2l_liil9aG=K3siaxg32+34K@?ef8As2_SccFWs&>vVOa z$>rd&W){JE#Sgc|Z$3YfpVc^!6W$$svI*^jm{_>({f*ZS0JQvNgZHTq`MwI}XYi5| zkYsu0@;qv&Da9KDhU|naqE`>+X6a|puKn7T{%99GdwTu>AJbb7V1JB~=BHoDFGAnQ z%rfQDdVa}Lh4AW-IaSVcqAXyR=&9PWEY>SN1q(BuKr#yol#L(%m&y32>HyvXG{Iol z1qls!j`#%Oqws@e|LkU+Vk zL#{OkA^mioer*Vv`WRL*)=unFn_W|eL0)EO4mTsb@9nhrX?%4PHT90 zwAS|b4f2T~ja($DEOB)YBHEKP8Q%ZCWsr8``CBYG3M2wRv!C7#Ov$cl{h|XI<-`){ zW)B6?>w?;y?4jDBmHyO>lK!7g6{qNt)9i98 z4}o?-?7dX9=AmEBnFJiiDed#m)U~B!_Io9TuKCJ;Ko14rjD{SUSoX5nzhpK|!CLLZ zp%^hgd)jhGKNQ-L9KMw&;R&J{5cpSQqZCuVi--j>{NJY>xpKt~?-O z3KERa(>>`Q*tkYW1GF8{`uf+dKMcA$>EA8qW+@tsv99$NZ=)y;mR1q0buQj1 zu`W|dk2nPFDm(W{Oxe~(#98abFA@> z-VfJba?EqIbtlP!mzVGBhg*N+--DLE88#x1AKu83*!|e`V%Ey3qSETHK{mB@nf>SvwgvNiYPxAq6wYhUtRe5I=NOIm>C3#Gk0ywG zUz;sz-SQVxtR+Ac*6l*1#w**$g?&D)yM6QyO2xpUXm^R<&92~GHg&=WgCUU7CQf3v z)4?u*RWaCLEzHo46E*`LJ&lHAeIYQ+Cs1@KU4xzOMa?xTxtACI^02@x9imaM4~$8D zMOGk1Q8!ac#r|tNDUtmuk5YwOZ5M7_0~&~XksPkq>wp`jGn2FxTxgLASCew)xuF>7 zE4{xwfBI9g5x|(y8ER)zRPG?|t5JhnPIw-aS2EKnK>_z=IzZe%Ca%C1yOg&p9R004 zxtSO-LwXh#zdWjE?O?jh-I0fU>Au)y%GhPW4g>Z5s8!NDDRowM_FJtPEh}5wM5n72 zj>7Z8@QIu`MGghgpVEKZXF_M%d(yf>=1nPHbz}MUbWZahOdqL(>#MR!u3ckDSzqqA zjb;So^_r6OIqDZ2`leC(Dh?Ni8cY?>GW2$}OW|mO49DV+IUreD;R4hzcz@k$n9U9j z<`b(}Jg+z0;d~u#hCT32%PS92m|XUi--O)Ze!J_bB7Rem&b9w{b)5#AsLHIfD(ji| z*Kzdfs(Gjx%l$1;{9beHNfT z438{b>Ev3GHf}a#Z;H>(25*uaWKA)*!);qkQoiYdOU`A<6O2 zqfB?p66@Jwfm3T!Z&(XaGPHCscXhXx3pNoKIhehJgW9Z{NGhbL@)`uM0L}hZE&V z#|diM*)2~MC#%vk6%K824ss6NQoNjk4TE*AFKjb%M{rL44wfc4`z;-NKjuM_83d0Y zG|K79J09w1rJP}%DLsZlJu++IhY#pU`mU_RRwWI0=$gkSxA75@T|9{URu?wCq2Hk$ z6~}_Cd(XmvebfQa;*HPk>u%SUFZ~RAZ~;D>51{SA_kQ&iqSdVkH@&}C#GP1gf~}lG zr3?*o3v6Eb?9)ljaJ^#E6VcvH(VYl8Xmbz6iouZAzA=Vo;X-6{2q|S6_Y_^bUS)-K z*nMC9w1Bap(wEAi^HzyPn=fLv6LC8hT?ZhgHyd%1M?)#oRb(ztrSX0@G~&A4n~n7I zNN{6D2`R%Oxxk)N=-Vd;R-X z&DrLe1GIy-J>)gwf!`13k@8OK>GmwOhZ1@cILr=#=y0<297q~FFmjo2o`K=P zFGo&K=86Pk55z!|0?LlxtC5+}ERr4B^gut%iBmX8rG<~XE!;!f_gKGi^GyNw3UL)y zHQLQ=Rb4MBGX&M=J>9g9z43Vi98UNO%ooHgDO5EVH5xh7+^x_(njg}>ZSfY=p5%6& zv!m;KiDqW{B0k3mR<=bFg%xlFHoIL!M6n}vv}a>wI#8kxQ4}=G@$c2giVO<6_x%l` zx?k34Mq*UhC2L7*4PO%E`H%xj9BluB!aP@*;L|$JF2+eX3&CevNdDXQUvqlsZrhr* z<3@3pEF#EXzkdDNGNk?n_q%O5Tn_q_r11ss8b^ia&N9O1)$6wl?|jvloW?G$`a9>{ z3It7_9+uaSQh5lev*M0G3JNIIHEz@l41@}LpTZS~qzz_`j+UFyiiOM)ngmE%BHaeL zk?0Ww2S!E`o0GVDpGkmbVaLC3?h3v6oNm+pPdDdrH`hI=)gB3s8l3EuKtK}MZMVuw z0b76ef9eQ#ShxJN2H`a8hywNdQ+6ml!K_vuG=x8SmHoGNTxSv*dt-EZzQscgFnRpe zKR2_{j-lcqg5yDl-sq19?q?Be7aR-oqnycJvl7H)>B3^1Ue|Zng{C_E+-$hzkVuF5 ztF1F*NPZ?I`|5aE^5fj^8L83vUI6D4VN6aE3o<3ag(({5(~Pcv9f2gCc(TLOc0*l0 z9&1v$>?aA7n^|+{c{o}8oLY3Cujf3UH`P%0F75pf0q*q(8}NgIe|MzTA6VgK6Aj0} zWujJ}t>`HOzCNKj9+ovY55UxCZ%3aI?{3d><2DHgd0^D%Qs6by2jJ$mtfDCAND4Pz zVVV;QDVbm{HSiQk?2hy5a1M)^xfmI3seG5M#d>Oo;tb(hT1C;2^pkJsz=l~Y!3o^?}celZrrHE$~r z5ky3G4sUxC-9attO98%VVN7ZNt8@I3EP3!Oxrl#jmw<|cpW?Lj*SFo(g$PLQ?<$sN zIHaN9RYLu7S8&JjLx`s8PfToViB;co&W(LnT)t-#otr%u9DDe7QYC6nf3{O3wVbU~ z*|f>^;gD++BZrM9NZfWBzjWp6R(Y8x%|9RA11@V`%^~g2 z3m0v30VB&!c@#`@m(L4G?~L2^MFe1A=lZW?q|JmvB&MXY)uYd2-H`Jst!J+4EAuqM zd)nwVfswiq9Tdm&2oKA%O4>+roKNL;p8xbGnc1z|tmq9X00e*m80>t42JGZ&)#J2i(ji4a_DwFQA_o;8Wr)qq>b0}QI z*ZKNmkAvbuIO!O_vEO|9m!lP%h%9fAQ&!d1ip+TpH%47>^~VySf`#6P>NpB!O%D%< zWtM-L^3E0&I#u*2tlbxD_lX7UTjP&t+ANySBer2aZ-)~Z=X%HL9$DlKFG>%S-}Lq2 zFQY*cqSdii*|mA-lb^VW&sSAjxxWytQfPk@WF=G6TnLVAcEg{0d+&NZpSl(cgX{?a z(cuzg__0H*huqc&wmw|eh)LzTM2QvWPRRT)d3*1i=Rb1~Veu}gm{PL-_>C4#BsF4~ zESE5uqUG!GJ6Ohf;J$s)kMW|^^g6OGtuF(t@uvntcKbsrMMb43EW6nbcY~3B#EGx? ztE|3=$%Pr;kkl(A41ahZb)aU6PYj&;+^g;omloTIYpIC%Xw@;@&Sd4aqRN>6WMVp} zt|$TsBA5@1arV9};~tGN%gzSS91U{x#|_Vx|a`{0y+8U?MT+dz41w>&ywz zhTF{F*UoJv{}`pDjMz1f!!RBFlO9@chraklq;tism3g%blp9S-aiy?$ z;Gb_~GZI=}Vv}!M?aj@yajgu%vebILxVfiX zky%U9;UBgXye%L|ByHePmZk%V-U_+LWNNg`G6?ce)NAwCPI_&Ec(^Q7nX4}r;|&*sM>Yua2XEi$6i*rcz}t!y`bApA}xIj!10mg-F`NWw3{kN$+k1$*WI6QY0X;`-IQ*@ z9(Vf(ejW{b)~yCEShDv7>N z|8seG+lGcosUIjMl}itt)&N`O5Kqwat9|1F((N8Q1w2R+OPTO%@R0p+lxjqjXcJ%i z4sBRXf~8X;KGS^IN}D>fnOsH&T&_DdvR?w8`1cv_IubLXiC3@MRqGd}Ynw^W{=JQh zVOn7D<$6>op4f66*+u|lyAyArlT4;_B~|}ioQ+HMZ(rg&rPKhD?U}nVP0DsryuDjL zo(GI!Nbev2(8(sebG3({#+E%<;WTgVj8$(IieV8-EPPOizS3Ct&wR$sfM!c4Leo1*t&owsNu!mB*-#7KM;mxor&CgR6~#NUXO$wm^6tbYjRc)vala%> z^?lh>L@Ws-QzNTPuD=L7KBEv{4lEG+&!G^Dm$fyTOmI`pHND@8xr1Zqq#6 zQW5WJ@XjwwlfQX`0o!me2~9w&ga6}Fz?J!MlFbJRiO#$!!ep^{AWxk1%9i7P&^>|} zeys`2F;B>@=H-4DgxzSNU;FXAGZALjA2D%bWDkua@sCur?;=c_ncxD3mHhD{U>`F`{z%s`8IE?F_^Gj zTo9F`Fx{;g6}@%mD8lbKcCy)h)ib#OC)v&oSf|wPJciRKkb9N=eEhU0hx!q@)zNS!dR7(+13>(p34(AP&s&uMz`whX|}l zP_fPxNIagJ1kUz&DoplL6kv+-YiH-nvwvb5-$&@Il7{Zr5Een9M{o)8tr`f3&UV2l z&TaN)y2ec*HGrk}`vt8vqZ3yRt7K@I71c|1f`$I2-7g`FCZvax0yUb(LnAT)rz1LR zq$KidIO+ITz7H~;8Euc66Bxa#&kG_2+dJF2CFLB(v_>bJ6Q6zr9fg|S1a1ca+uj?) z53&5=^BoO6CLRBTX90iVjH)J*l1~l>9CGsbHJ4MavU(#{BrQkH4W0DI4_R_g z+)}+HJUQDwzaFI{`2czs`Vi=_apkF~QK$!r{xYGYPf*uRcq2_gT$DLcR*XA|;rjUN z9lP6ZSG`ZQs@e70((GkUAZAMPVPiozVR*#P#tt@7RMs;_L zLpR>6rA;Re=;4Jnvk^w+ugX(a6PS_y@a?2PK;nqdF_m&e0ZHv5V{&JUcLGsyybPXA znmm}Oh;cqn^h&G#sR;CtCBm9rp0_6o{>Yl(pd9a@0=;@r*9;BlZWjW?(HRCz@jqei z+P%=0D}TUguoWY@Jr*Xnn;P%G&3220QXN?Br>%&f=#0HtoriC&oD~!mT?u2{OR7`x(cQot9a7x(KeAmqqI53uy)&CHftW%<(8*DO9FY)S)Xx*6TSIPRNL{1MubQx&3(SbC8b3qEcNB&=|+3&0^`#nI_E@WnK!Ep zfO_W3t=xex8$n5_nQ`sD4>|L@{R7;z*rmv(Pl5R!n=@{E;3<^5ryH^Lx*Jf|ZS71- zn<;CKgL_Z;_ctswKEB3$_RaU0w)2eyr~VTZxw0`o_tA(rV5vd%{b_=iXPs~^Dd`wk zXsB)K!f5bOW|-|x^*`T8AQ`#$5h$i)NfiM+8pJy*IS`9@&6i?0-ZMFh=Qj<1Qqygi z#gSYNggex>9w|K9<6k*;LIV`=m-w-`&51TNnvjzDqW>xgbGICK5xIJ@Z(&a_)5oiF z+Gar~5!O5z7C+C1ff08bOMD)uKdzk$x(9w4u^H$^>kTXB-EsN($paVmxvP}Jyjj4U z$Qe`X1$Uj7SG@hqI`7~@;6CiKj5wXNvXtfyF<%MelQF>;RhF!=t7E%+BQJGwP33i} z5fcDvD~s()(opf*PNgGQPxx`CeCq^%q@>VUV%aGT%b9+q;LqDK>%DnL$5=RUS3LZk z%kLcK_&iESpseG|9}|SxAD5Ge%F}_$`YB@AaoPIoFU)bz6%vPoZpgr?1s!xMQ0ELZ zZst*V=Gc1Z3!r?==+?<@0NedtJ9oVa>vKY4RRj}rdwpiN;4o;>UzQA#M8ynkz9BEL z)K$9dad~D-TAT>88%^o^0#Yl4VzUrpkx0o#_5lOmA%y+za}1T#bO|q*3q4o;a9Lcb zj7Ko1@T=%gDWG?I8~GrlsJ@=IfN56SvyhdZQ6o3cb;y~&)|C^yK^&q zW?3MyL}L-4<8FtzcEwFlb?t)4pzZmzQSkc9a;hs!#t@LmAdpxh*-V7KJ;ryiMvE_r-Z`nm_^Pv;Mg?m#n6OZRZm_*xur{l8gRHe`gHA90e#kz6J(0PRmY*$GXiff;%JWVfGyAOwUAr8&l@6zz}L^E&!vCFI#mTvOt~z5IPqHE zUU~k~Hd2U&Cr#vjKzi7G#2v?h%)I<;LGJbV`Ta7Ti@6m;=)(tjh{spnRzhTG3gRCbi5Yrbj2S%CT@D(1=I010}tSw)!Vi5u5XJXOYwU9aCuCOUik zg<~m1I+VkErtl`|igXi)0(D_GntrJ0At6R26=5sZC!(xZBm}58VfQmlL;BAC_9RRY zNDMAu8LW*ni4fM@rvf=29vX>_+8iP3D?Y3(?&f1NFud;5nvjq6d(XTzKPbW1GY z7IkUE_f+FMR%Aw>PQdNCc;8Qt_xB9=ghH7s&0KZG^f_pl4`QLNI1qNOBLy(mOkG9% zI4FrQVE;jnO_q19Ov@Bj+r?pN>>!UyTDds6qTn&ZL|wRCkd@%5RYt(W*X?cO)5-epG4-Fl>Yu zdpuzDu;29u8~tT&Fo{Vde=g@`WbP#@>z1Z z_Jq!$?M&6>8l$UQ3=kG!tpP}o5FT&>D0OQw5tym7EDqG&nv8j2_d8AAK;S~NnZ$xm z+8$`=IkA2)#`PxBA98#A#6nB5#lh5O5n zXuTjUHL9VQnaQbWSmgjrzF1A|Q2PawLnP8P68D!X#3=kX6zJhBj+5GCzp&#gPJ#H=8vpPRc`Q)i2CKWxnp>ihJ~+5UUy(2UmSm6 z`;nx&y1LSO%A)o5#HaQ8T+-9$F-Xhm^_b9S$`a|r^=ibJ@6=iEEwegUx5mOQtxQ5n zZqBJ1#ZtHjAi>^&3osokOp?|A%RILcE>uwsxojR{nn$dc6MQ+jnZ^a62AeT#TvrN> zPIKlo3kb%BA{I02#Z)%<9i0&Mo!iO?)oXl}c{3l1eeCb_wH`kp zuP7@fiiQDbfOUP zuxz*AH=d)YKdfr_H-n?J!_ut-9E){m`4AROui;M|e(|tub>P!5d~2d3?MvIHa;?HW zQHD|*_N!6{I%S?=6sC29iS516opm843X&)m0s-~iP*;xX2@;jxnaqm0Df$qciF8R9 zlLUPBK{y~8tU$n`m`+d5_pD*Jlk#)WkB|K85%5NH6&GW4ESXFkRsKYia zIPT2Zuc@S=53V4>&$;cgMK`R)JH;>xm9R-dNs1DJE;0gG0cYW)>7@umoM^;5(!C3gl5-YEwPXgk_o@$S@!i#Ruwp>Bqec> zEB`Ei`P*T&f1s=9T7IEUtmcN#CMTzkHMPLT#FQ9Y^kHszujrx#Q;TtODJ%2PO)oYu zsHFQ#Smm0RkP1`(g3qa4JD3FXb_=Yb(;CPVe)ZxUy*&5l<16+15nfa!mJGA}u9L&k zLYyRW(XW93{ZJKOD}c)L-s}KNLS(YtM07tJ>L(KKkG~*n6WooO&Rh9{Et5 z7B)yd9_dU{pJMnVy%LIYdgzbYdz58i7+tN#>|UI9;vooZBrMyU8_&)(ianz)r#?6c zCwMU$jkRDkn5PFU1PoSjPjS~-pDu`*6>20yCsO>Ip~fYD_CIarXF%9SDR22|bq}a^ zI_lJw&8o5HW1!f5jS*AOIe4UyDe*{jK1n!BDlmUAp0+jSNvmVHYzlm+N7{wU$)~a6 zht7BvGe@6(Jh1#O<$9%qe;}p5J3i*VCoitoD?sev9_{I>#q10Z$KPWYp3X&~^Yy~M zH|SS#b{Vv;^v{{eP2HY>2T?ngNNB7~9CSWgZao=95lP!e4^1%%+YEl`hc>p$ZSJD+*67KgyQ?kQ0Ukjem2Y)!@M2jMW>jPSws$#yP)5St361#$UWC?Ok6ydwIoCsy} z=-4ccgOym~H9kjbh<*+s(t#8C9^kA`N5-GfEk947cOsGiCu_F`8SDAp6)K&} zN@(VFbk^aPWHdRD2#(+9TT6k#x3EH^=)yu!XyNV?**IG(Aa1ms7)x0Q%g!PrmXoKw zt8CamD0V-0!hY;NCGq`R5|fI?7a3$Uxr${_Ks9yDNhz zPhlQ!8n+AdE3MW|HFeHM@d$v&nU{J!rO@& zj`!O-K-gsPv;+n!k{0Y7bKV7Ryv@#Kl?kL-2S)k0>}V|#k*BNBYW;SqCfMvl4Kun~ z32@8bEbT4!*msF)&X;08DydC@VviOMwOsDQLRPI@YhrBUs=HfDM1RWlPpj5THB{Vc zER>zj3!nG=a5QtME(F2l9G!hA#t>=h5BR`XLe5SAOWeHzLjptORaB&$oZh<~%~PjK zp|a@L+y3<3(N_X)20t6tc$MLkxfSH~9rXmi8Lf{@9y4jDMK03A8d=(35{=EJ7%lvp zk{P=TTbnUA%hwaJE*!mr=_=-76Ych?@{_b*mEz_Or(gyFXoa`WiYy`p;%XcdX&OrA`~2uEqBi@RvR4Ze6^@dA~HO6>|tN znGHFtjyL+Li)zgFm2)}X<*hyFnRB`M+;%z51+iR71W9Mx;9IH_2V_MsdDHQH^Tla4 z<}P!WP`K&FR=8nPy_L=HZtZ+Ic>Kaau5elC%=IRH!-Gh4w1ccoF_Uojc6~E2_1u2) zrf#!8~~=9H7d-^q5Nc;^Z)Sl z7Jg0t(f7D?cXyXG2#ju!7C~B4K&3{HmhKWM=@3+q7C~Z+8UoVNu`#+wj{ffb`FwuA zzhIBY>v4CV_ndpqx$632^F$kYuM%#a;=C$XA|!E$JhM_Xq6eH+XzpZ@3TaDeQDfL~ zV+HDy!qyu*fOm5RKuC;2XSQvuOb({n;&T(jewMVueU$+SxS>1|cD9e=@F%v-ix5#lA9XpK6VcSwdOAE1ZQTAAD;GpA zd&bGhT8M392nl2ET@K`;9=z(hDUEoHL|u-Eif`N=i#eRX9WCm>FA5=nhO7+2Mkw5n z_X;I%%{hLLot2*Dk$`TBZ1cbh#$#3j!nB6(6ZB->nuqdgJSK0RG929<*S4oBHfR>k zah=w$o~jzg{By%Ez~p&}9nFDOPirPpRkc*bpo1&89dw&#;tV-sad`kj)~yOTgZCo* z(qbNH`{$`JNwB5f^ouj5ISH|gNPb9}NS^1@xflF^^8@AHJS~0za4?#%;AVopaLwG; z%0vwUAGjccXJ-EzOe7KIR^lIs%MDmfcAfTuW?9PU7^|u_s-j(c@ItqZgSgu%kzB_< zkM--#L4$4BqW}7W^99ZnFHRyI;c*mS#@YtrOEY-T5XudBc3$!yO!_x7lVX17`{RqO z$*r7~P!1OK2q&Jv1Wu+&&M%TGJK^1{ItmfVE!R*Xf^u}<9Rad)nN)FO)D7QQHLCM- z!;Jd{COOy(Ln89&EWfbcp>DAYi_ZD({Lwez?(Zs2YO=NAk7kdQj~2cPW7fA3ZI1VA zz>&C!^1p-4NS85x6#pY_XGw(QDn;nW2&V4S<;424BbD4j`4i1CkGCbhL`njkEM9N! z@Wx$VM?rnYAg^~Hdw%|j82q9W(cfN>4qeN=XHIwTz>1*vf0h*M#6+3qp#o@l$)9-1 z$BN|QiTL^%muCjMA4JXr05Cag!GtkHP(Wd=1EGP-=Tf#ywkd*CU2X2~ImYr|L_Y5S zrg=Q*rbw?RMeP1mQ5z>_zEUSw+^%*!y4yu>5on&HR#fgb*nE*SdadvSrsEyEX61>Bf*VtLF8x>`~KZJuF(t`TX^ z1$EVRET3!+s0v5}55ejdNhAXUwe{4QQ$9%cmrs?Hmn)kvU%l$saC?=k*B@PwfUtgQ zy7U?I!8tqvaAZId`{coY`P1wt3rLy61i^+oZY(7;Ag;YV2;J7RC0Y0tfM!^BMZ2vI z-^e<(^TqF9NV|^SCl4LV#K!)10X+M66=4+BN4FN9-bhuQbXLV;r{tTrUcg95YNK10 zOyZGsG)N`y*{?3}2#NkaMj;Ryh+ zxyFR>;QhwT33ROd68QYmZNNZ&k=HpDh=V9c^&t*w>YZ}+N@h)G%@fl%gwR$>wspE0)Rbzzh7mBh-we28>=`H+-MY1H#>KOOR?COl19 zRFP17RHrAJ$*Ye*Jw0x@RN|!oZf06UsNFwzyjW&Y0r~@;N$2~)KV&kW5Ps!0DifJj%4-~VJT^EDVuaNP))?X*-?3(N0tdG!)Ff1Ir zqotFL-yJ7IgVx?_Tl>JP96j&tv}Et`v61zD+$18;#z^G*wYUxwk!;64gM#tYL=rj? zS)A>0If8BdTcWYTJ3fW3bBa5!5#P2780QA{CgW0z%)xl$^n$r0v%bF+4-!H1SnK+3 zEU&(L;3d=acD0lPV^)>xuc*FxbWg2tqAS{j!SHc~Y;xyc5KVHRug8Cy<0PlV79=Oe zcU=@M-CGTxWWkh}h)@DZjyZh-EoE-lqN8G(XIyPjj67Zm%8EdSv@HN9j8>|`-s)fmF8zE!JeD6m6hpmJ#CYH;_ z=H)K&*S9r=MI4i{2`E)B{4@YUEsYDx!x`bH9`&Jz4r46XN!-(l5+b}bj7w~Xic2=)7npo_XCf%(>q5Ep*IH0B&i*U?gMA}C zmg}^EtYC#kN)~<1@M{&VR=h8p|L|jVW2qQbGUv!j=J;@;K2E(yk`tSnVZD17#83Jv z5k-h9$23i(AE$JPZ{}AUxKl_P&uBmpC5%_2Ql_+?SDMVgG99`_S_%sibIcL};jNtf zr-=bc3WQlEj*S+ihUdo*kg;0XGqJF(138D^-)!_$k!W0-0wZNy>2tQAZ z=vRh5vKk2o(bt2Hpe&lM4o8bsV69u<13!IqFd7VeF9Ohj>P4jeeCDM;H{~eqaC6tf zi^hJUUrm4~gi!Z`7&Iew;++!>JiR-Ov%akw0m(&Bnp+8_>u(zyv!(<2?;(Vfd4$*k z(kN^UxGCBht{0vV0U^7ElZ8~mGA0x;0zEpZ!FD%zcVYL(z}eO{*xJ%#LP6GJoV37W zf3y5JM2~?E{`Wxeqz(mtY&$U%0EA`)a;=WEV;sME9X~hF*PHw&TZrozL5$=7}cafkb2=!h;1U5du-+6&mXks6hCC~-eCkqmb!br6W0j&?#$+f z9ZyJY0wf;-h);|WXLe~Yg|uf@xA6{8GbJS(YYcy&Dq)M4bitCTG)I(wv9$sJrraJE z9a!Vbg^6-WoK$!310fkd+QR%K>KHN;rS&2so6Q`?YI)i&S|0!#4aLt*!3&gqXm{;M%3%bdqb3jRDE$u@okQl31l{-9%>~3GW$n7bTBId3a zB9hRPYaJWI8o%DX5rG)j;e##rKlVvkKXQgo7!C9ZxFXtHl22S_U!lBae}Y7BwOZ&x zc~SiPjGb9QIIE+bl=UvQvD=cO15}pVi0+wb@99=BVz`pZ8#1d5Ye@w|65Y}v$2pJ0 zU@H(HTQs?F=d(!HIWv1*9x*Ytof5pxB5Z}smr2KF_3AF{ z2?uwS8!p+7hf(?TG6CXs9Rc)d*Z#`f%u93x5zNssR9lD!gbX}$Zc6OE6%KA%sy&Jt z>7>j;FH5u|Ka@^jlIsAO@-IKa$6RML24);m8G<{HCf)4%-NqX!kT1y-SY<;r2}#$R zH64$`PXV=`_qjIcDh( zE5BOY3Bv{kQB_;6PNZ3S0yCqyNhChUakVvp9Vt1SGcm9VU{G* zm^CV}Q2xFi;579JZ_2N(xZg5IzW;OR$NpFfNHvViE0qt$zzr=t!B`Y89`gN2&08y1xl=?kH;QfI6l>hc2o-d!6d5Vv}X>-H4xC zDrOM{6bFtuIeGtyAzp5jh?9lm&iiDBF$*;N+#uPGoKlEIS&3-~AKEvbDY6S23 z@|}K47>_MnDJ39%`nptU+3<5#UBs-ZQu2UfV~Ymo&=v0HWZ|mcosS>pBJT>ib%;W+ z{^TOcW(1LMxBh_?wv|CszQV;rU|J)spk7}R))BO!d&4GHn!y~_J)`G6mqz4my&lx& z-M7#daIxFwxGT{1=3x!^P)p@K`)Lhv*=~*=i`_t-C?BMP55=J2=Y&H6hQZcnB)47% ze(3Ez4)(+CBxBImpE{LH4<^oj5QwSyw2%GZ$bU~L?$lXzWEvgS zGYy9H`4&Z6ZA{I7H>3k#XXWiOw2g>$JLjrbPTx-SwDhhZ4lJ zqPMDApCmI$C+fs)+dDIyh8kMKRrDDt6BVjY$U(LtNu!)~gwY&SuV!*@r8oa?S zEH%dNN~70X-Fv8>7qM}cTehMtkDP*9f;Oi^I~N3^=#-wSR*P8X$$ALP*6Kwmt5K-f z6gXD@@H@W<@T~>aN#kXYFmL$3icIJYI`KEM%N0lf<=U9xN>4GMDf&H)eN-nz-r?tY*vwLwz&pQXW7K93cHzWsI_lr( znqwZA>fzU!V`pBt6sr*!|Ej7e)-CHX?TjiSJ$H%~daU(;31$j>W|$XB9WJx$3J9Od z1caCO9rHezp5BUUBhvfQ2L}HM^g_0&A0*lv%j{b64+F3MJR>DhQz8dYQ&7-F>yfp2 zMSf@|Op3uO&Sx7`E@4abb-|pgGKFWC<1gw9sPsl`!7{Xet$)IsL*K2~M`|9YfkO5L z@&L}yw*HnxM^@lfsBdec7RHwl^J{_qM&V~Plxf$r1mK_Z>yp(N zc{}~yKCfF~A5}XFHS#x4(VwH$eI=2zTT=sly`2#o1Bp=q;#PWNxFpNF&aVs_H4#aF ziJcLa#MUtn(sG@B?%2#%ULGB%#Kh@hl3GA?Ph{U{A(WGY!vbE$d}NK?snWk-g^B7>p8TRA0KEHKhJya?^B%0?@*c~n@V1>2 z2T5HxEVt}3+x)sDw)uI-*5(Ia^M({EBi5P?A&;}l$$`VHgRdW^k=MOs4WNam8+6{S zmF+AB0}ssdMd)}^sSt=_1%%|01s}rU+1c+K`z5yYbss=K=t`z4;80ZmaA7TP@h4d9 zXZ24f#_BMYl_)G%z;j4ho0i|i<7YOHuSZYx&H+VVVLc2OKjGo{X)xF*GrQlqER7u? zo$!GNTuHAKK_7W1L0yhtwoK?PGS$iXLo7v2RaI5?^sI*bJ8`+%`S#Z`WeDsp{lxJS zd;)9r1#Y)ad-q+Mc)wdu1h|bLK^*tSgUW17Ne302atFL7Nzsl%-I9SDd;7gv8%|ek`|_2%D1o7k$+szP70jlIXU2x z5OctKgXeRAM#cn*^8G(hVZcIYVPGGnO~BPtn-yN1YTItsV}G0UAfjz9Sw$??$uvw^ zTtj&Q06@}A!vb)vtN)Qxy+Pl0P7N6(Kt1=d1miltoSywgwXv*cTgZe!tIZB8mH-+z zDtIY$Y!>CB#JK%&C>!MCI+7;Nsy8#$j&8xi?v99ZbBz)`NQzHg>3LaB@W$sxY=RwTH zBcSJF?ir5ijIfa(pY(K@HI}fcnI!a18@m)}WGO_W2C`vGQePK=Lgz^1XBV+E1955? zEc>B$FH)$AeBp1<3t4j*)jhtc{n0F^-{v5ip zuTY6d`5r;sd9nLm$V#3rKUQ|=6qIRAuYv*9vk?>^*TlioW_DoHg>*6SOK;rvVopAk zuYY~pqsWTlrA(q27(xh2ChJkuk%uLkzP+cp9%z$Dg)4ZySR_qIVfDh_UBEe|PdGxd zUqvMlkSWNi#STm{TQ-GZ*fIxD9qophMZcA~a}k=Cn|nL$C_4|67;rbrRQNnqfJJwF zCuKVyUQ)OKye`iI!VAH$Zl1aIkzSb-3nUn6Kj=)a{O)P%@#wRhHFM^#jlM*rA!l9@ zgrwexfo=K=ch`5T^mSh}Z2PcMzP-LBG6}i-zdj)TKg^-`BHn=+kY3TV35d%Qp8@Dq z?=)eFj`)`L@N+TYIl``#hx0%slY><*Q!aSLCpgRkP|VZIAxz2+MQ9Io=ygvP3l#HF9*kR?U5k1rz28q+v^cq2VnRb(*xOd{VkTET?nS3?Y&@O+umD+_OtLp zvEAwu8Z%C1Fs7{+LufC@<#j*1Ch~^sBnESckSM;DoBuKD2+-*F^_3m*eGWd;MGu9! zO+xYpEhC|3QKiaE!MHe45)yupu9E#$5_aXQKa4|xJ#azfQ@t6A?t3t46dJiZg_rt!ldey? z@9WY_f5Ad@=2*KXH#=-mRUu@=j7p4a7uOhv%KItZ(OT?0l14cf!`{^-NwnpL4kZQ8 z@5hy3pJ%quu0VBPagoUGb}@$ijAPYgTr7fPX10cjn# zf0OW^#H9qa>rWMYB0i3awU7-amabcJADyE_YxMH>v(cIuUs%%&0(mgofjrjagEs~7 z!LR>$oapQl`GDi*WE9dEn&}dhs2N9&^hjssccauz&}6j9YXhA-PLxZlgfDas%_(k!2bdVVQSWODmCF5r$y^V^4(S^yq6HfZAe zjbmb)i$s}^F(>mwCt2lSO`Xcz)faSlg2=N;ZN&baxwrQo0l>A74Y;?5@LoT)gJ0>T z_j={r(WkqEiNFOXRPVSd@}&FlHFAwn_s%Ce!?9Eb)!C%=Adnz!7`b7188uURgWaBj zu8FO_fHXc~KbalIWAAtcyIl*PT@@0q(X>^DebIKKo-!y2^o;BDIVAEn%Cvv+P2)2efVG3?-q}va5$XABQH!%D;TDs$S*?CO z!zq~-ALYo;K885;|9*6s*$Nc%Tnfo+LvYpp+2~2MB+giJpGLwiPw`zJaki5+W z2*j0e9oNtb_O$7aYH`P=9aCRKHCl*!ah#ssd+!R9i~;q=1v37pijvN$CIY5e+5+H~ zC_p32gY^yj(Rp!Ny-QdmkKn9aGX}}#r4-)#gHJG+%hzff3Enlx_7xY8lrZUF(5ZrV z!$CL&^Er}o9F#*F1-GJ<3b|2nd_VWlJ5zk0`d<%o3ehhqnZ<_MD>vXl96tJ8?w+4P z8(jufXUevWOJgwc;@qa*pSGRl|KTfFdJP0>;8i692uUH18#wBxJ7qoWi<~%k#_`%4 z@Ni7lh!?XX=I##xqm3xBM;x0x5VN7}mGxZ^&p@2h$x^KLdaf^7pL$~8dLUIA^)=T} zc>>3Q_ZqImpR+~1;Avp5VAhl9v&f`@d_IscH8XV_nPuS@BDFX4OkmUT z+g+Tql;9fnwozP{%-kn&-2HxmI%Io@iiu$(pcH%44>CQ#RJz+B^4ni95~+Vd7NDSu z!5Lt{2py^K7TJFpdTOcd)Lm5?Qm^#(Y=UdBB@TGd2pxV`b_5Evi%Vq|M4%JBRg4%M=1llCsBCMZvIq<v zJsqkL=#mA#nq@=oZ9$RFm)39T+HnGd#s)KxT#cSGbM_Iy(m_K4(t&jby=@sLa=d|9 z9g~5xSX_j(=PG6V|3Ez+Z^RenCCkq;ac%Q& zrBF?m=~W0Bs_w`2_Eg)GE!k zA*$(YE~*Z-Q$f1EXav2xK0}u>VXYmQ)|yJjX>-^=Pu`UVmxLj59DI;K$^!0zmV_me zDP7Yy(~YSaszx@us!@v+yg1A_bh#yr9-ymRJOpyYE~`#of$=m6pEX z(qvG#3M+jpCcI1FXXz*J;<3*QCfZxe=?t>SSCVG*dGHv{k1lgl?wP8sOM{gzFiM0z zTLtL>`mAi!--)vBe1X|NcY7aTp4%aMwX#-ad}!6;m(A5lKeeZBlCs;)`3_;`&LBk@ zv=$!ME2`WxX1m7ezid$%e#s$ye$C3T^f7glnwoh_$cBa}y+FZ;kWA-KzW4R=a|k@S zc<>p^ulugZg3B+J+r$4;x#~xDNS(`M5VxNI>zX&qpwZ_vmTwD#owr$7QUTO>{LIgI zUjC1KbqB4ad$m6pwA#oF(x3a7cY5Tdf4FFux7hrDyo8Y(^qJvp6gph=eVnQ=h6;5K zXHR%s#FuTmUuW2-Hp?5?upZyR?dzx^;nNZD_uI}*)ZfYy*q7Q?fdBm@z+qSPqyPsk zj`L0H7dMHBDM{B;De(U#kLENqa$FT-*9%RMEc50hmx@Q)T1;8@A1LV^6MnO31XH&b zNJ_NjVzNa1^AwQ{y8jV4`D=~6^Lkbuw3}@{d9*o)Ji=p{=s12dnkPlqygfRw=)d3a z?u?h)gDUN@O4y<+m}|Cn$rzVxwc<0+8ps0zW?HtaZ=}9=$kh#uuNMb zV=Jr3x|N$GJmSgldb=_EQdrgrqJ&d$Exjn8bt6cfd~!$_zqGQJ@pZ^KB>vQ)l78vs z6uAi1MYXG5yrq}96G#WJt{yvWW8NmK#=$W%akX;c>|x4oFB_<|d0x{%KuF3Ku_!K* zCOwY!#BL1#O6=dR7rpp)t0KvXuVW^7PTbiyA;^T0)6lp&5w3|S5d*S zy%u*MOW(HlT4;2Kb7Zd-SG&kbv99bSvb!31VDQf1@6n#m)tAOFYqXU||J_BIz@VSq z$1FCL(qYnb< zPKz&i2`zs}8k0}2I^XIkT5yH8mPf!MMoOS5vP7Br+frLgYiQK6)EyRomnOqgV_q*k z`|neKDqYE$kT6!?&lZc6|Bq4skMD|#B-bKlBS@Fw_i8!K&RFkczcIr|ba!t|G3o8^ zj*Ixg8_c{!;igBu1-ENi*mB~1z!p6Ur3BjrQm2&!J`0yUd(NzQ0c2LZd~p~07L(P& zzW^O^-$`*j8xv~yC`zd;LJ8l{jZrt!P;}Wr&Dk>^RP{8n+5OUPNuFsD?G|-VPYw)S1 zar%zApF5zLlm44V4yfVw=r$aMYBq!wi24vEog53+50=G0Vr$=>Z_~@E0mjM=+++Zx zKR;LfSg+QnGektAIsVIo=5d3ByDTQ zRf62sWN5I3vTIO|Q^5tmdD=rgJ@A(?{3uyoUp`&oMx*w}Q(L+Fk(g;Vk^RaAd(Q}`!7jnIRUnbOKU5Jk=d?z+WYW(|l^QEr2sq9K~ zbFMymsg)oJePc&4)o5!uN}LI-^6J&AlxzkQF*oRkwzi-@eJ6+Iu3}QxCfdLWcM?`w z|FoZgUc8Iqu81Ci>Id~!JvrE93wosXUapT2Mi?nwQ+HktE=kmXW1gOFI(2eB?gAUs z*8etmHTFh*)2Z|6eyiSc*koVrFOzMNrrPh&nVeWXvw`)YbIUWg%~zWQ`!A3!W$`-e zm*;KW6#vlngj|1OMhOY&)~fv}(~aZjeY0NjTt7@gHp2h0%Hy7^2N*_**Be6XZ|yIm z(0`GFtSO}DtyljA`PIr>)}I@WsCfnn&&kuTFmmAv7cFv{`dkz5mis9tHt0H4;G04B z1A>R2LDoK1XXdWz!M^q?s$_mkH#}RSRva>t(wnm6EisL5hC7JO@XMxWcIXbhGyVmS z(4^y%uIlpO|629`!ZJjQ===|u7-*gzL>PVg1M4LkqVZ(I*n81OdFD$iWbbc3y$$=$ z;>rJPW8>B_s*g&*<0L{bB2B$2F&?55gzdh41G|`(GwlhHtZ1JAwl-1-6HY@$#ZQuS>=TN!au?+X$cAf@x0PaG5B4D(}R$Bc_jfW`{3Z z{`U_e`H2AiOs-%37J&!Q#Owpalg5mrLSbvB;9sr z)V3x5JgddQRI8tT`aB(qWn5khk2KVJx}7u_d(Z9o!#5-zxR71;p#95d3{_bQ98P)>QECk%R*^QF7gLArMqGjCw`|uy zkhHt%`#Hm*qe~n!61Fs{3a#F`O%r!U`NcdtZ35EZ<*LeOozo9YlSffjyI!5QIITxR z{k@w^Cx7S^-z?An@!d?p&#oTtX{1*Q_^mKEvLC=O>oJ38#~;l{l}kD+5LO3BuH+yv7k{J)*vOx0=>7K>i-$i+!{>Ct(OC7#cg>a)6Ull#Cqo~4S- zSKg7mKJH_SQO$hCNw-;E&@gMyfiO3(-msdZ-un^O-Y}x$UPWKe-kN0F{t~T6M%Kw~ zkIi?_MFlbpn{ArlH<91ST*S*;saApIt>vu-{(7Av<;XihqFm;o{T-4huL;;HQ6Wc0 zHk*o-A;(Jz-^}6yQD#BIM`8~0Ev4)aeHuZ{d@W10R1 z%;rPya5y#^4Z2_Y9WPjiE`Dd9Q!^zT{*Wa0qTz2cOY@w=*#`lBW@#d~TLTE{2w|Kj zvUt2{Eif$Zyk)a|-@}D(e(hfb|>e1TOKnGhGCo78ZWMqvwT|GQB z=8QaI9)9|@P;(RbbcgwOk(SKwtUCFE7}6@w^aha}V}HtDST*un=(aw$&r`efnr_-s zYg~KJCv@e0Zt3e(N$6fape&jn&vtx&a77enq)AwRZlCx4^2*^qk8i(&ik2@gLWkp& zW^dZ%m5p1o#o(SL?|<29k)eO#YW|Qk3HPWD(vt=W>9uJc=5>nK*Rtl zT)cC=Tn;%}T&HE`r`!o3@c8#H2fYQEp5OIvU)muRM9E%XZJG}U6b9Tdc;C-c75~+F zzI%hy)crs&h)b5ECV`MK$otS+$I|$2;Ioyp-yS71{kSh7@q6j0sB8bm517&N>6Gk# zw?c?9?OWXs^Hj?{UL&o~(4}a-H<xGrmSFZx`}yJ6 zZ<{w`Sza}bOcTezZ^Bh!h=-+Iziz0&guM4e+(a{!0XJ#fJW}*Sc7e3h;FL4}u;^fa zH&w%%AtCOx*C|C#xn-cEfJ#!U4=jqV_LG5#j6NRfNU>QD-F|T>OS*lfS`sl2O-FK&GOOuYB#b%jRw>6CRSj~0#{fo-&4NiIybr;X@+Si9Mk}KWnP>Vd$r!u95&pb$3 z$qg%#0{eW_`VVnLDCw%w_Fw69aBujx11 z!x-y(xAnNbJ`~Ru5y!fARZmk4wg3#xt(m&o2DTgMq;Y{Irzx00&%PXv4IWMT?d=h@ zUv*38$@$s}b#}D2-J&hUBbO}}7Vy?@z+dV=^Zl27kFmUiE`Bdx?ll>;R&T-9^+ft^ z{w}5N@=CN;b538lt^z{?vBDWN1B?Ar^nQ+@9$NW;4(N2H(3)>KqaV&rUFDHg)X&&}8^UUJ9~ z+L&a-%y7c}d{)YLKmpxn=0Tp{^Z15csHr)sGYq9<(u7p&fK9%!uiFWDB21T+pLr)h zmZ|C@*Z2~G=ZlxsC_idzgI>Hdo>Waq=e}{u7rbTCvZYQ3?(lrx`8d)v8T{4Mxb~}Y zU3oKod6c?=;&+eUx`tfAv1TIr@h*vBq`}n#s_xkS{9uMkG6a3*J5KlS*-TylR5kw-6Dsq zBGK#a{n#tzqYs!7=!qNz>SV}BVFeUuisWahCozk68i zK_mUsnCzIuvOM)qUp)I^fl=fA{&-{X^`cb}z?Z%KD$qjG`TdV)I5?5{=pyay!b{8M zRM&M;73vB(hBx{RL^-E{dd|eNwg$5&Cl9@z>#KLjD5cfZbD)y-8a+n>{{J?cz$AKc zKpk>9oiT3W!bF=qF!f?RbcnwyR5(@+C;kI)<`b+(k!h!Yn-=9X@^qOr+yp^Ozo$mW z{D!&u$b=r=D8{}t+Qr-&$c`bD1%eo^evozBPmqlB9$$;y)t@R zK`YTMUJy*}9rJ^^RWqfr`YW|{;2REV3<(LshJ*NT7UK4d0s1y+qYV2m#FQyyo2kUX zP(S_aU_f!#mQv{L4c`#uoM3LVX!%^%w9Lwv>CYKJ{P4SJJ9}i3)O@QXm0jR|BKke= zOKTBocSPiZWmUK2*S|WkxGwhvhK;A?7?2yT_ob=lneZbR(vG!B4sFB#dTUg`U+tHt z9aADtgnC;l4!-}UH*z%_2t?iKL6K6Gij$WN*GVdaf%iwZ^X(nBfwH}qHJwk>Heaos zH=zg7s-(d5NY?E-^Pk4?9&=~pflSLmrfAn{TC{xeb7OY7*&8XpZ4)%7i?rHB)TP%C z*Spv3e|N9x?igw7+q;=gd$1HsZDvZstxpRl4~&SA_B{4xWIYHX=>B}JT>0gT!$z+X zD%?doXf@(;P9ilZFW0#e&5D)#*6#66MUI`|^Ie<3@vo9Mr~A%meTkJTK;xp2kQokRa$lQUad%|HT)+W>W!x$(w_Th^h)-+%MG5Q~4G?@hA&`6fH) zM~Hbti6_9>cDgh2w6Y;1(~b+Eadyrs#yd7PdM)UDm#5?V#$wZ1RaIESzZL(UBUm59m$I04AB=%bu&iZng{VLaUMEMs>%WRLBL`;@TpP|%tOHkS%i96sekdwIA*ky)7Xd{ z2g9{b(9qe`>nn_v!tZUqh~2ordb{LPL{X}^`e`a7GE7mdmU`>}9D^tjV74;}c8gDw zyP_8VB85$ee-?}I(sfIF@eJfJgwcYjs(fIK;5bl)o0JIou{bq%$tHO;cMUhEwDE zSElMG_s*Sn>qkFKlHHu&jZSl7>w|i9%#L{@mO`|8PTsdKxoq?bt_tLyPRJ3vDRW!|uyw0@-U)S2^Gy77mN};KBp`R+ua%I{62O2+WXpy`lyG z!L+pgrG|Ad*DF9HyqjNe*fpWaQpiZY1$xupF4@=nE#ALoSKB8*v*m%=flGcZ|Bp{; zW>jAg9lPYXm%i8Ga|lPldZuibl769_^_bW@9Va22_((EDo#*!YrHCsm$ICEl`Rov< z?QuyDc>Ie_$5a6=B^-GUf!H^HLzUiFqw36+ojz~&WE5G)Y!FaoD7T5e>^_VcO|?$F zrq+>{XmGr-akA3uwR;)2=_Wl=A+YjN=6}bD8_CSz2O#Y1`FVRky4)F`kBZM7DJEGx zeB!hkd{fUs?{SQ^#|Oa2OE(NjgYq%UxLRtyevtum8aB7{i-e?7Gk1<{Wx88y1z;rU z)x2TK`Z(?6i1nw^_kg6L$1Z6D9X5nB(l2Z0yK(nZan3wRD3ecdJl=jmMD~`$hG2JS zi?AA?EjKGQ16VWAJBT0AY}EjaYTV5mlf$|RGzT_M>#q-pZa1C5n9f6V_oEbtV?#uM zds5Q`pvAe7jdt$gmWoR&nKi9vZ_}!Y7bp6KGIItDiz1!xpb^XE&XE|W|o?bDW z5j9BQkCafvs6F>J84Ll*qvVaX1*^$lZvj9h;Y>oFC=A-6tml7A#qtP%f-?(wG5Ud1TOY1o9TFYw%&lfa?JXVl;JFVkqY<1oiv?u2vWWd)y z#67&w=*&xaT}Ws9`ui4x;3c%QZCeUW6?|j!1RGIon=no#{;^dTTe-T#3E=_smk|;9 z!=EB(g%ae+Mh0TAgo{Vyn|ub+!EdR~fNQuSU)r|ftdYGVUa$hsuF5B6i+b_$iq-h? zF%^Ye>ql+37^C@M(-{F=wNKSq#rf9UY^zGg%QSY$r`Hb+^xR+GBqx`b2^u6>v0-F}lsTp$%cc>hxJ&ZSxX}{FX3H`?t*tea|CDZeUO+sJ@ze&^1 zX}EJR+x#96%|S_33A7%jBoQadBgPDZ{;P)t$QR2W4AXfnDp7DBA&cKytOmOV7&!5= zL^%V!DqAoo%5cs)VFh%U=3Rb_ajwje#)0iGsR8I?s!N)sB>C$Yb)rpo=8DY*CTUbP`A`hUcCm=GYtmWUMxdPz~$BMcyyTRILy z>Dbt)zh#Y5M?ekfnDycJe;%lq-~actERX**P(5@-3(2P#C&IvSj!kpq`d3|HsukGr zdF(3XyQ>-9(J{%$K|r<+1yE;p4^I(8<(qC_=1Y6Y6i?f}u2HZr zd*8b0#G*ga0o6=c=TCG<6z%ipfQaU8(X9Vcbl7p?V@KB4&3+ht0*AbR7u$VM{#Xi^ zFcdBTU8Ft^PJLpz`ba3E^CD;{?OeeUI;qVjJpM{)w&LJeI7BkwrTs*X@mHWvoVJLo zJ<3)2Hva$%ao)YVdDMN3LCmHoo)hrbU#5Rb!lx*o>Z!q4DLGP^m^ISX4y04{I^a6n zJIFTZ-lM%z?N?vx&TdC@m;5>MI}hONHjKCTZrK%GuUNcxK%=~aXVm`{>qMIYS8QLs zX9n?zGm)_|IyX9j5Kp|^`MFSf1J9aIBNHTYJ<1vglXaCAvt6XVHhO?sq8aLn(3(MQ zmTr}CC9F5y!o38K7sn4VnNEBVx)l4H(V*vmb6~B-Ptx7|cEEjYM41s-b%?4}+G8aW zk@kqyy}!a{YXAhY&c3%h;N`dxvuGv-k`3J%Lm+fH%H>M}Pi*{T(Ps_PDvKBZ$Vw9= zN>X(A3+GvGUBB}9HQkiY>BJ9nw$Rh--161WWEh!}%sKTxXzHsiArQ2S;cfZVqFM4g zeJl2|=dxAfuQ~rKV0)veX!-kJ&_}~0Y-*aF(LKzV#Ya^-=A94ww`x1r{AOQIJu{uW z777}taqtKUJ-t?rGzvzt| zt~hlYQqX-nk(jeo1XJNR6&r1NwJ(kM>{h3#qeH*2Ae$%d#Ov9OW6DO`?vxOuYv>L^0qGb( zO1i=Q_^!3~w~u45?+?F#ndg4)E6?*fFK43>u+!hkF4z@h#1Rt&*ma(O=<44wp1P-z zAtxf%n`r;UAYcreQ0g{SqPR2X&oh!uk8umeq2#P*n#gy{iLo)YMt!-cd7AUrd#48I z@;KPd{7<)UTj+ci=k(CtD`{HE zvs}{OU)sn4AOC6MuIJj~%aq1HZlw(qw4{TwM_Wa-gakDAVA0(bm66t>0&QDMxh7>Y z%O8i_lUxQCYPkY?gw>@0E$ByKw9eRC+Ea(V9WtH(Dz2gRDuOnaqAAelw?DSaCSTv0 zbve9OcLvF|7cyK{BgjJW8*zx^eMOv?XILLht^)wh;&(FI%GIW z(Z&|j-}9;{vUaQmBfVk2=e$lOgTpU;#$h1_&6Eu2T4z!wh=o0|sg8#z{yn=!{T3{+U{;wx71JZ92=$7f|n~A9x z+SuTojPviB;|(G}m};^CLqBQ3C-%3W=m0-kG`j{5j-i05E5m0O1s&u{?xNoSwod9G z?d*{{B!czV)~h`N(I*`meY#wO7D<)fXoz^`?Gyp4p|v&Omv`Csp{fysvrU4!V{c1J zO5|_O8P?NmvU<-m(_njtEHyl$WC{T!Dw$G-x3jd7gHx|_Cn&li{3S7`UXLZXJz_0h z56_QLsPYR6b}=BAU~A3e*AK4xR-ki1S@nCq zQ<4FAaQ&ouDmn_k;F%PuunY3`2pJdu&Ol7OXwSR7+PN6OH$Msfd9m^%1n>jQtc7Hh zB3|`>sl#XuD^CNSnxY|Hr$*2taa~_0J@16erRbELo@e_Jr)y5?0B8GM53V6dmMEw0 z)Y(=bOF>9kWSlgvqbLU?j@p?sA@e52+v}{Dpd*Plf9>K+)ugXd2*>i0#otCZ^&{9o z8+DJWfWtUu$Zj9kIDyw`x}EQ2FP5yhJzfab7kSvw%(813VhUrv?6oAfek)0Fwwsie zN0IqTT>Kj7kpK3QUAlj?VKJ!Xzz18~W~{qD5#L@(MW%~Mae!e!I@^_6YHtF^)a{O* zroN~L4_t#+5cL4}0yBC%eH}Ftc-aWUl}9{`<+W<&r1*o(+3uV%adz)cerMZw_@%t& zwIzu&E&_I!aneiZ{2*ffBp!vcws*qU)rBhGm=~EuD5;!|~n!BuQ$WkO=8xcIr z$?x6u51xeyflNEHHr*_N-l8T`bYT`U#6=^id?!1$;@>16cPMG2I4nveyrpCnKcy>< z88k|e&p`gZHf-?G(IC~8CNh^T#?gJ^rYNQ5rd`;xbziXNN&it*O<{^laFE3l z+1CjSlGb56v48QCqc_Yr&(w89`|+`S3j%r?reJJAByZq=k=WZF0XNT4p;Zn}pnv*0 zk-NR4Rf80NhXfQ3!A{LaHzM6M;DhYk_gQQ=g0o$7kF2zs(2`g2K&}9Jxo$_n=rRSyJPvKNcqX?SRN}*Z!tU zrvtD^TKp$Qa3YacfW}9Tc6KrnjCameVbQG*06buj!7&nNCn-6DwKE`24dJS>(VYf)&}bhp zCb_QM6JPQKbxCT&2P{n_=}FLoxXXiVO_MZHc01(;j$D2Si~5Xf%YBHgfsrEgrAv?5FkN2I}ASwaV5V>Jh_MPToo>#QdEP z;&gDUudWT%n_}8+V3W-y6=XCgZ^k+97Zi0T-@hK|U zJE5^GoDAu5>TE&-=t*!3OUBXy?%z%zmZ*hpz9`Iar194fWsi4+g6I-R}s3rQP{^Bh{8 zwnfg~NC|bz{6M-soX<_M)Q8n0MFP&&BI zs6%4YljSk5BJ6;BYXt~b&#>9E$2zW=n1y6z2)q=^=)tWl)UZ?x&`=@2(O3Gy6bw?lz-7!k%^EdxN71Um4)Y6j&{I=bZB!{I-QH$jh*LEAHEn+ zfMns-Pw1}il-UJ@2y18ddT#PxuC%7$Px5fHX6HSWsvxJtKp{jS2D@{P zKneH*Zc25Zy5YwLO(tGro@ZcSsNs-lM01V^{}oi-L0Myke?X0pEE>&- z+=*m15;%3us6T*ZNZh1Qc6?=U*Y&O`&wILptURWbVRKI^95w(u81lS;uXumInU|oY zkT&13H(*x)al!P%n=d#vKdble$|bMv_|3zYQZ0=5eJI8<2{HunV0KvWzPh&((pGdN z9-H4e?Jz;ZNF^8eCqvGE_0IlDjFS5%9|3;1QG%IgDu`oh3m8x%qCL*fUW*Hsi~lqz zNg7E@{2tY-Y7qGVbF3)#4hz3q@XP;X=4UWNR5d z+}Jl>x5SpFTpRI%0{Y3r%%=um2o;oG<8S~n_BNSuS&w^9fgiE=<`JzQHVN3NNQ+Ou znFO<)Kg;_-7oSq>+0VwkV=e*vX$-G+Y4dr1eNm#B({}884Qk%sK5S~2_t-`YzjYQa z&vY-Fr#h+IX~T`JOJ{XIeS-ox=fd8{sXI}yLs&NIyX(ogxG$;8^sl;d&n~g)FAvE? z-lPh~KuC3rjANuu_&ZwK%6yx{Wr$_xrcz!t0$aCt+_+kl;AVav)B<1ia5&VZXLyrM z`KqpW9D-UT=F7&!J+3NWdJShqELLHd#+n42c(bnW30ON*VTNFJp&&NuJl#|*-7vSO z^!GnI9$cInaV%Hor-HD%hmaevc)H?1pJ0*yCh-&{V zExt!Lb>HD$pRf1jOb)B2*Oul*SU=Y12B-~7J`J9pdF?v8w##}Yx3`-?VK#$iqj^_C>8*ST*VM)p_$JTW3vTfPd zr|H4LUTI;9eJ-TWBk>^gI&MfTVFrk79F6vaqGMI zm0jv)&Cc?bZ>pFZXW3BH1~({7Rwrf4QqPOtJ;^%1nVW@Ec#r7O;H?AA88PjGTFZgN zF51I)X&C6feeZojgGfkpOxhgilE&XfIbuw{)3TpXAeQV{qF_}jX|^>*XGG&6ghKKdfc>c@V5Jg%vSnM1cbC;mS1-vW%DU-{>o7W zN1>KI3>9W{`_&Fh?Vy=-+?6t%PQ2Cvg@XwKf;FoYl*uBik+95{E-@$Pc)KfDtT?s8 zUfW8;JZrZrG;`H#ZbrYj>1ejbj`G^`1u|gV@Yt*J^#Y zU&UGR77uMW_f*D{to4PRe5eCi$)3L$mVp{^><*1^B)UT%N7IX7#!B2rkJP#uaz?gF zS-rMm;+qK?8saplEGv6e&!;e*jyh6`HwSit!M02(I(JE>DX*lC^i%n-Uc@K7qMN05 zvnosw<~ocffUqXB;}-Yo3iHtOGV<9NBlP1hn`}353~Y^^d7Oz-%04&)N8s(o8;L7< zLkL9*BNrEqy3`zb7~Oe(DxGP(X?@|vg)e+ISGr46TAX_8ZWmz?qbv-T+~B9`K+NHC zm}#_{(GGju)f?LX=;>CMiZZ=FCw$!QGcE-KmN03o5InOn)o>-cBk@v~-ja=`6~UAP zhB2#R{z%h0Uuu3CStHv8eh0qPn=;IQ!*6>{%VDLG-u582-WM#gJG0epYgK$sBZ{pgda<x8bTaREF<@Vld| zN8|S<5((FIwwkB8Gbo3@b+)#T>blIEs2TmQi^e7)XUA-YFX1K93sI{-P0CU91Y6u_ zl~?9uOM8;^a{X%E%{@;}Gpe;BiP_zUyGt`?@`pQL9JiNe_+&2PfFY!w?+nvd%&u$R zsiyW7uzn-S*bHOvd3-MZqO#-YwPpLAsxoEEX0VhA0YK|tmI0s;TeZ{!pPN8$Jh0Ih z#tS7P!UhN-WGDBd*Y-k~GIQg`N9DpPY0pba(fj~w$M!pVZo_7yF$5Hxw32E{%VqOO zC6%A}T{Z%jiYm?XS7FLz`OF1&NaX4TCj1v`iuqZY(8qkgBReZAiUD8d#uPd8019n3 zK=g=EGH@Y7LNsBuv|c^maOMCTOBTv`y!tVUuXmd21ekTJa=P+&kjLr`k>L9&aT^Sw zl?d^(%qcLs$2>BnFbO5I6OKgW{SFM4 z^NW7kNGqrKfs_y;-E}!A7~;z?CUGNcgc$q|Jx#F~Tl>zuPb2`QkC#%O^^w7)&A^H0 zra$oQO@b0#H8NSheJNGHuhRW%Dz>T3BZyk&H#i9iX;et3$?C2 zCthm@&0AbZ^RA<=E%lW@T9ZeU5NGJ7H3JvKxmUI7v6v0C3QOJ7>l}l6O;Y~ zJy!B4QNsWHDy1N&8o7Sih^qrxrO%9w3S zVhVCNTj{>D8e-CD8n=>v&((e0F^@%O5c!Z(1(c?JKj#tpi)iZV7^s?el?oUtLmV41hvz_wZrFiY2Y!{l${rT%Bj)@DE&ntHtN_^NAG2y70QhvR!g?^ysTUJ7){!q~GWTv~op^tNAdB|Muhh>4{y@2)uWaL^_bwM0;% zw?E47+5?lg*gHAgK;;*}qPcov#fM48ye}usrTc;h1&?ME#&P;>1cmJvndaNwyI(ei zq0bkd!zXND6-EsTx3Ej=KMa1iwiw;0fkD2H@1)jjIy%*3#GchBtS0RWTb%ZAcy0_9 zhww}~PF5CYd*NuajU$VCbPA#vpbkrvP~QFp%whSo?uq=12UbpV&oKeD0YFU3yy?jD z)yn{*bEkWS6!YWLIqXE8oJI)q;vl<7Y&37FS*jy44%HiLRP5-z(yiW}NTdIFq`?RV z$nL&g?VcL%2qd;-8^o)^0O8{Ag~gCCLSgs}LNZw`-9B8fXevRhq(ZL}PPd-Wq34`s z%!4Jkj&iz#c6B^JUK7_W2yRL6Q}*?WHq! zjSZIQIDITc3T3K{w!WyNsgrF#IG&>Kw!9F}TuPW(85-YGV)~xB85+~!NB4JxgM;MI z2nWOHm5kH-JTx1ak;md$&24k%QzzNp1d}%J!5azDvuW-4#5x}GrDh@Gemakgk$%sA z^6T6}*eGO&uYKcj#o{cY9mHe3_X+RX^H*Sy3dOiyO)CJ2D5CyKy1Y~ZlC03H2W8{V zj0=_ldEMuUDxxj{;zfVA@$q%so7xD!_q^QT4*2$*3ilWf#f>$ll?pQ_$@06Vva$x` zMg_G>*1xvP=Ey3--T}4ylX?zTNf1SbKhsB&1}46778^p8Cp!@hUfTC|~uM)w58N(8Ju$HeuO znG0J$IB5JLMM1SZ6%6tC-&{VIxF2z0ULwq{J{ss&H(%H;%{$!W>f#?^rS z)S@lzp~!4uUaii?zR8b|H+*En3{z(9%8NChY|w&u4hOe|Q-)c9j`C5VsK$uGleZ%e z01c}MJl;0yU!o>}28P9g@7QfmJ`th+hf!4pXtif9uH4ofSOdM z??La=tt{n7+XE*bh=UzVawdQsh&|g8&YKUWIxfq&4*a*Bt|q)zS@rTPw;XGDSmkg@ zmb#b+C*s$GS#I+n%vqk-m<#ipng&^d#M`H}4i4Z!1H8IYGao2S;^dY~U~;|5y$Z)> znPc4DIcN}2&0MAQ4+1gxyy7(&AaWvGWcFgekcHOTa#sa*fOHZItnf5l3*$HJfQ zRu#*2s!M_w>^DmA9PEEJlm4e{IU*DXl-o~XK#noT<=HWplDcE>O)b@(+sT(DtFnChP~kvl8+juk+PJ#pooT9+P5icvM$vE~ zX&CKase&N_Hc~&=MTK`Qah%fTL&}Un zSBm1VgnVH9BQ8bS;b!!}13ekzHZ#E`hCnw+B1-ggk58cQ$i%uZ_XT3Sbc~(VgY)9* zlyA8EZx^})tgqgx&{F~1;|Mr8aQO*)qoOm=sKzBASdZoJna#NrVZWBls6I{|2g@&}ZnfF>_c8(3@Ht%0w$BOrQobgGQalecT=a`3d(w7p-Js_g?JV55OCa#tqc7wbN z+C)6hAc%xnr%fX~p%NHfx_KFmY^-FntvtFJVOBnwGwwU}VEo^$Cu%_gbAWdtSKjUV zzwMaexenwb*tELq%6tzn@L}zddO!z4KO+Ya73KIGeny1{qQf#hlWFYH>&Li#{Wzp+ z1JxuXi5f_jVZqoh6v`C*(!&Dn6Q(4je3U;hiGG@;+Cmt0s0^eyod?{N6z8vMaMBMeEXu{4i@=vcRWyb?IX_-awntTDKCf> zg6)LET>T34MdELS!{Oahu4;=yusrm6MVSycO-iTN(nRc%$)B5in%-0zW>MDOyknZI$^Z-l#R+2?4)vmcASZFD)nCO5ZD7ruHOnSmHPoREg! z29Qt;e1KZk)V*|GE7?~OBG)!f4kDd8bNr{evB=!)v+S=l-(J^cfx&DAkO9j)7bl+> z@0-THEok@!a(ostyJ7gvCoEJXwi|Rq?^-><|986K*Gw;3gn3R_2P%@PaKNr1uugsCbia%yZ|M&z^^ML~Iw$Paa?L<>0r*Va^G_jT@H5M%(Y*;jJ z4Q<{1^`*lGt`coCpZtLcC9GEh*Eu~-N))*+n2uc1U5t{Q?6%FPONTmsj7yVo!c z7!jcjbBrJfu6(MZ=(@~CigkWq(5KZ-mR>AdzUJV7TG~{;WrpM}?(xSEL8!zbDDtXt zIj};xAPoaVa&u&n&XfEy8baLT!2~8VRs5uVzS0(9NR1{9`iFQXQ8BgPxi>3>|1W}w zN0if7v({&OK5uNnPzGe;59;c>ncE)U_oZXkOn}ueeOT&d0t-|-5I@aZQ(=D3xjw{@ z(yyyn5iOgjX%WOLmOA8O5cG39j4lP-F5B}Rc0Qsl$4#h!MMvE48i@&^eS5C5qJ^)i zh9cgo(8D2*ULOJB5(=$_vAo}A4#K(Ut<`_U5|f(KKBd;kCM7j$`~%?2ApYk&7OXJ( z8NSV8+2w$hNF=`wIVMxF{rqs=zxdA$u6E{`+=4h*_R}*s5tO)d|5o|odoLpj*`g+l zpvGJ314)*(A#xav%8xHd@4DmbSd93;U-9HKN%I7e+-$^f`RYdQ+P*#YVE#gez{@_4 zafDVlkz(JjAP+5)>8*Bs_XjAcLI<2&xjbZw08h>#X{JoqfZnk zdM3h!nR}D~6`T6)6?*+2wLceRzsK2Nq-P11y=Oq|6_FIb^unT*<506FI4QPrv5QMqh8b%}bso z8to8Yc-H{XC~jj0T=s7sX)Y7+@UjULwb}DzxB`K}`G4ZY&jdgeu$t6162{&InA&~7 zKc;57&T@dK;`W1Z>)yF~(i16zUo?-54MKY#lf2muJyU2fmqj@-M7&ymM~%S>-3BWg z_uxI?%#saamWmyrpxA;*3psve^!8p%op-3I1HY9I+V%d^v|I~5FHf6IZ;-2kznr`SPZAL7Tn zH5r)|KnE$EG8;`kX6fQbY7s!w#cMholXJ`k2%n1ul}ct?A{7CdDY_o*B!F|JsLwn9{?_UtN~wHae5K* zS2;N-B{#o#^_Tna-shv-{F_s@%QfQU-1Cg%^KC~?Z9{tzLh0@+S9(&BwY_?S*UDuZ zG$xNFCub(e#g^aoX$B7r@O)GZJ@LKns~9O}8s=Ert=H!sO%H_y+=WHQwiHXAe7n)F z5gtr!Xg{Ps*&Ak{ocbj0v;On~n5J;x4*QViFyg_u;;7LgA}vs~Pv9eHlDw&EcR^_X zXZ^0Hs87enuE-=%E_c~r*8rC7=xp(Ng0BC>@_k* z7#Zeg^TBAeWg-f-hm|EB7!)Kp6>y{}PtVR!Y8(rk%+iw{oPrg8v)KZD&$&;ZzZqmn zxHuWLhfXYDf;_U_&iew2R&wM+M-_QZc zMAVaG4h(o8^;lp7sw~DqKS}uAmMm&uBN+{VjcJ&kr>rpchU8UCh^4#th7~drL*?3~ znaAybTAZX6gq>#*!~#p*1=5ax&W>#>J+Ip*+chG}4*MmXKkR}XzzO$wJ}*jF-^E^# zrc-NYeoni_0asFi4`klqq>2GomA2Ve8sCy_RG^3h%2rZZhnUbg0-D8d4T3rI@ravw zk_!pQiVl%q5UCq-tS2s|{XmBxe9Od-X5Ykz;#ZTOr(BYL4KJ~&+is9dH~R`uqbSU8 zne=}9o{lP9XRawn6k%4KvmXE-jIPJhGQ)V#>9>Y#zHCzkM={|was^kto# zcDe#5@*Eh5q6%mlDmTveOGo|Mj#(MlM+?-yD7%>0@?Em&(gN_Px%ue7umv6D#)$x&Nr88m75&7nMR34 zZ^Ed%7^t{?R93tAe2b-H-|)9q+x`0hz$CN(nxy?GAVde9#t1{}KzuJS)-tc5HQKXv ze~5`@9B1Z7_G6e6U^h~33qnu7h&9u-0UchcN3SU$`HUJdy<8%zi|3iuwuV?QE0;sr zvwc)0tYUk|xcRQZ)FH8eQt>SO+>sv-Eac`5Q}VCPFWfLj{Ci}9C!xxE%pri}wBGx<@v_g$B8(&lybqIX-}=bjJE*DAox`|-cB zG70}-W!}Foxu$gA0yvfp{IWL{>B5PZz{Psq3f!3=2Mn|K{WlS+A4cSmF^i+{6?Efb$D97%CQOWml}=YF_|9Q~%hgZ$tGJS2?7!-<^&gIUQSbZpLN}si z5r@BK^qal$UOFoE-DD#|rfC^Cd)lI$vfXz=?VCD+YDWUk7kq>@-e{BnRo=J9Z^B9S zQ%>%d`eWABY?ghiEc_a3)f0InKja0@w{v9kl5cN$`;l$7sZ+4ICQ5oxN$#ml&C!5f zWeYt`e4m4d9(-ZfU|A)8qx3+-R*73fHYA3GYQX||0Prb1=5rq)C3cMF=1Bh8*?*q@7}>D=ht^iqZ-Y!h-jn_Q25FO*VJfkAa+VsC zlY11MHkb`1zF7R{t1Bse@iein(y7gQ`YStM|(4f0==X6S+*_TBU{-;^Ql{eY|x!OY;(G90($q5!yXCv^zfcMHMm-JA zd5UcA{`1iPd53DLKNmig0_!=hZYlY#9(|Ei5U63|8lSgN0G;hfMD=Qk?2G%cGeB?{ zZeiN*kL-k5l^@C!p3(CQS4Oiy5`j@1SuZJ$SE@~X>`f;OP_f^b zv*&fM$WdqhI8aG1$KME9c?SY64#%;5{-MDY)1^{bjU*2tgX=bTmkf{$8h}Fr!fUgG z8h>e84U7@?gyb`PSF`@1WuOF>$?Ok_QHeozI+ZD72QF z#o(ug)4}tze?ACCVv1nPfZtj*xk(a&jOn4qc-N+1;>m#%nt)mcgZ%`0&# z5ttaUmhPG(Kx#eLWFmSP8Cf2ekrn&YGX=r(+B}Drs!6J8My?Y31gkh%tz^cs%m7?7 zNATz^KnJSBU(0wZ=dB&bazOCST%wNF2xALnW7M@rNXxb1#Yf9HAEu6K~ghX|NDjWd7+SlAs6}q`Qu$Fpv4sl zLP&o(MmVeH-g4z4Qvn*^p5R7wNVO4fe6n^hx4K5((Fcf;H`15pOSlmy5(SYFjS5g4 zn|6k;Wj+B}8Usc;_eDCR6L1Nz+T7CDFP@N%A_M9Jg9Cty);kc9bpo=NxcS zufJvRe{B+~HAI?E#KluSaZNOP0*q;eFknTUm|F_CZeSQp0JZu#MUbLOXZ2))fY~xJWHu8_}%(%yCkac>Wk;qC$|6c zv|lX&0k2%Gisfpu-5-v-*kB~$~6b#l;AS`P7l zi81ccfpYQE!4(U#Rwyr?(QuVm1_QLFh~i@Gv^DC&EeIpeymmTw*z{t~@ia*LDwN1( zd_wKxr=%@rsW#EogY2%vhNgt9Oa>20i@R`R_M+c7y6%KC{I9jyU-=PMXZ{ks8X(H{ z${d+(dQR#UK0*_+TG1*C$T4kPu(8bS#_8$oiogEnp#Of)PvHC&B5aKKY}5Cxf$xLG zk%nLiXAfV;=j|Ll-NqVi3#H4kt+Ltg`=O7=VvQmQn=my!c{OdpPS(4f#zlQE?;_?b zZ}RqqQ7#R-j{O07tG@0-srEwRt!q99_apM-nWx@FdiA_d(j&#}zsvUc$cvvuJtx8x zYu7k6DiDYr*v;vBnAT5&jVCT+wRsiy>xhYK+3_~(KUWX>$I4OQU)P=T-|vcD<(IED-GRlCGi11Rz%BOqaV*tVRGGv-4w z_0!0Bn-GaV#;XyWXCFiVh_9~kkt*bOU##Txa5Wr5UW)!I3vtzskO}Q!A9~B5q4x-j z8#|Vd*4M+PX0vm*1R1R;dIot$TWr|Fm4}9IezVa;`5=w$c<6XiCVoF9<^$9d&_3zBfn%kv(Vj>2XMR z_7<0-a}kBD=tHZG8ncL}untXUywMT^Os~LCbD+Evv6_cY&xengO<}VTTG(^fmCO#a zA8|ZbGX#7}MFYx@J*`r&IK1CHUk%#grYO%A1a0S>SRCcy`c&uD37oKZw4qvbs z$0h%kYYr0>$U`|dY0}2xiwknYF0Zu!KrTma%?RcufO@Kc3EJv<7J^mJBTb|*&Cne& zpLKu??QvaQ(81m+QZc&J(o_dzQB%3PMDu>nEn$Db?H(WkYlfE0Gi`K56!RmmMOkDc z!PG))A-rPP>|Egfxo>>!z2DYWYz%O*3FNu@(?vs`-T3}aGYV{tD-;R#@N*L*Ai&ib@xM6#~poU%W0S1+T~e8 z+hn1kG{8RxA*Q|(HbW_)9q*VAF*2;iZzMj?o7@$99Gk6F0%i=6f|Gk73`Bc8*PYL8~|L z(b0>w9h%=re}`6zKTR)smbs6YhHfvSPJ|yH9NRgPU8U-EKE~BdzTINeG=ZO~ddv*! zib$K))ah3yXFC!cWk#$jX)lBPJWemUDqD0B;|Gb$;@WioSg8IdzMUqI|Ke_!NM{x~ z5z@%Bh6RpBnwh8*nqUUc?$3nbCpYr6QwK;lk!4mycMF{Z*}^7m6`A?qC^O;kl3xe6 zqG`f-YmwN6(2xh)CM#J0k@LwNpcwcu(zce|+(nBMjTHs`{J=c|p&J{gV|^qyAo6jB`e1c)R$SktLrgBsjb%(n z;<(>@6e#6YuF7itS3I|BF9Lry#f0-shpTUSgezw#^<0!f=#Lf!zXRRae=->oD6b>Q ze@QZEW|r=sXZ*1T7VzA$4h)^)_KSq)J;i9d#+Q%jAGW$u7rSgJ)6~=rI39YO_)?yT z7cU=1@~ohh7NrXzcF%3}q~I)&?cFUMxBz6aI8`m@M zf-NspU(y(N$l_<02wYqU>l3Gdo*xVH#SQRlyo+~@tMwpaDCX@dC%^??B}k4q`hcyp zN(PPzJC)3_f%%-ir|ww zt8~`UO~GZCj*cuN(Uie1Bx8~viV6`_7oiWA=UnB%A3piyzo%0Oh-c^}<$w8tMkYU7 zM5L*!`yqNnWn%+1xX@DOVV)B1QbMw-BomTjRF^BO#j#hdibCbRD>T=MaygRLiLf+C zdt+KyqI|2@G@P3!h6^&87Vudm*&8`$l$^oaa`XB+vou|i<`j&{3TspdrLGA`cMXn< zr|5ZiArbo2RtRmC)5)9*5HT@Y(Gb1OeS8^+hD&h&SXA&4w-k&u-Z?n6xRFGmS9dM% zD9A9fnsQv@#iMg3pw-NBEUwe_TkG_ufEeN=b0nECz`uTFTt>9q;0!ssVQW|S1Ed~4 z4_MFtO;gF0Px?1Dg#KM#{inom>6+dw3bjDbWid4cA|Hev&Lvr z>@w@ibK!A$UmMU5Q)M_5_gP%R?}QtXIH@~Ot_o#%VsgHYYh`Pz4(zHBS{@G5IUYy@ zXGlMIE0(m@4Q(&K6A< zlq-kzy?KCK*)Bkqt`~iak}yQ#N^*_BG*qGWvhu3;Ze*8FMnF3A~S9T zw2uGQ2AdHF3;P8B>O1|v<+dt;&2bB6$aQBLSb*lIm+y16ak*j{?Py!v>jR0Uy8%3> zc7ffc+Lgm@jYPcP5?U`K;05@raCur~g+}~B2mvRI)iPxvj7g9^oWk^;h*08`B+KjE z_mqL3p0!sON<8KYGvZw_-OW7ymMlNJ@+Gp&cwlHyA$Oc_3ME}x8V8_xC?eKoXdoV! z`@u+OV(E#1_lOai zp;gTqq}S&nLsv#2AL$LxtDQD2fJRgf#n&C^C_1jHc8!hgF$nVT1bQ~b`2Y6#A z81GSr!s~Hzf1Rg;_X4NiZ89M_gWCjEwgZm?EKH0y(X#KMo)WTf?J$rS^j@{u8`kyI!x z_(0GML!7L<(1k-dDJ=%`N7xA|6!yUGhXb-g)K0+i$IB6eMmoHg1)UU?mE1S>5YaaB787SQ+|bG$4tbf72|*dsgW`p#8(+JPGVg_C)6V)hm210ps!)w z3F93Bh=cD$WyG`y=RsW4KL*e>mcy_R!AE_?IgPl(GoQQ0V;LeD7{r0KZjPNvdg#gt zEYC-Hdz1H^5zFN^pQG$*>d0Z%aV*2IU$i=z%4IRNXfGaX~+FvZnLVT4XoN|q>uhJOeNzhM%8(GNEp`VuAuIj{LxhTg)fb07cq08 z1&Q32RMsb}HcKU8D?~)#+J0i1%c978^swOuwZvqxS{hlT#ij2(ur)=tbj(0Sa6q!yov*OHcaSc9cctp}*Vz=!E#nc2e3- zlC^8@A<@q!UIi6?=5UOQ?tJa8rir2c)dw%@!JnNSn6xXRV4H|rpRa696c`QA%f3Qi5Mk+X3V)bj8i2qy^ zlg59{vQcs5sAdSGbJyQTMe2he3=ZQu`{QjA zN7+=wMpFJ1yssW)hzmsvKJ$j3Q!<$Bh-$XuBaL6qA=Y~Td{>7<2l!kwY*yd=;eQhh zsHF`Ryy@wIlcR^+nh#h3w)>;ytT`^ z#mYxXsl3M4?s3fRB>$sZdtSfWUC6?#&iVV@WN!#O@)+oXj6DfMUe2I=aJxrazG5`V=dLvT@HGdcYWq1eRAZb z7Dn&I(JdaIY>I>X4-H>{FZ%oAJ-QrnC8B=32W7Xim~>z7j3V5umG?0~ z;-ya~(Ov`EPLbpe$ZjB1fyw`S)$Z_i`%iOk@O7uN0F4_qc>hMVM`-=7v3lm!ZSk)C z!r`KX(GMFTHR?@dgs;}ojlvDo~mn%ZPWRy1lHGZ*#4Y`0!# z?%7x}<3gr(mUa&u2VB-+&t(GzrVDz;n(osb_f||_Og)wqV3Or4PSDi|l<=oALC8ty zgenytcDcig6tkq&=|$xp@$e9Y-BqxV#29>FxMQL!UNnm4xoW8vS`6E#N}8=ML|gWt z3h6NUf+5o0h@S0xZu>dP(DY^1GABc@sx84PFwrd7Cqf>HHnZ$m>)LmfBBPzv_iX{d zaJfLvFJ+X0%`VxsT~BRKTc5cerf7Ud+1YSe2BM!h#bU9F;nRxY>Y2DCwAwf&yo>}x z9wbb;ptkZ0$E8Z5if$`EVSr>O&A&JEI63iz6t$-ii`@WPJH5si3+%C+?NY$fEgZ~$ zhDAYw4xp-<|Gz&eA_UMeQ(IhlDtGE3zuoDg0hKnq4iU!e(wmsfh=gYthclHg8k_GZ z5mSzd3-aHLP391*qp`c}FbMfHY&E|>qH$a6K_q4dsuM*a4dHqD#ML(f{0S7`EQYDBfOl^Bt<)@Evu;iVdEOcN~PIxsbo`0j7@tHh$i~ zZi1{VFo0%M`G4qo>!>Kdt_@hJA%~D=C{aM9b7&9{m6n#4Mq)_m8d6F`q*EmX1tf-s zVFZ-!8iW~;?r!*Qf6w!L>wUlPeb!2A2zn6l)I< z8ddvo0pwz`s<$RE6>GKqMp@mYo+ZVeFS!u6Gx~iEu8LQ_QHz^9qJ}VQrB)R&En2&Al$b8+fO?FArmN|{_iCN1pTkGV} z5)iuP(X>cx|IU-EDGLmHX-eIv?cU$6Z&bdW`i+FGW{}}7k49bsQm(|e?$@8GN!81t zEeczuSfMXFGLshzETER0ZBg6NAald(#`AK!R}?{#@oSl41Rq|949F}rt!<9B3#x$9 zFce-z;WVcl3(|%_W?jGM(p}N`Yk!tHZC+(1wVKA`1FBi&;cm42HS2`i9RK1^-9Z^v z6OTRpwCyT6*^>@6;Y9H1{j_V7<;8bIA12crDoO3NN&@|x(I3p|4mQ*T)7z@l!7FlngwDU$txNX+HdDjxP zp;=IZ%##8eKi(>EVaZ0s@NrR@!C-@=H|{);sFUsX-f1H9;-FEimv#n;w?mVZ9I*sD0o zh`I@sWR?XbDMjsO{az!sJxF~mhpxu78J$Ea3I zLcn$i;KX>CnLXWppXNmNT)xI{L3Z}$Pg(s+RoXrEklkbnn;B+u*`&1jbHY*vzY)h` z5p&GL4|kP(3^dhY+J*4U-|ZUn+;{ton+=FbZ036IHMpT7rXLE~pBZF4Muv&-`es-8 za?tY5$GCJzekm`1x5N9n1&U-BFo&@@J$@XWXz?^TOy<q{_nrGKeZZ-Qow^cxnBwYgGqyfXofoCODprQDRo75*6 z_UM+xUn0wUv|O#xpBI|?@6&0@_5i9#w-*mH$o-ph^T5LB;vb>zDMj6Qc#qiOI0Od| zkOllE{xXBci0@^aCBkG#(WnF!I^sj$y0k~3(m|Jh7=#MK7DA~g^n!CYfY@3eiTj4E z*}k;0rvg32l<5%|!+&q+>13Mzm@15|r(u#gfSB_9If+<6A;0uFDd@Gdmq}moy3WzM z%haNi}|KcEOt3PQC%4>x+kyoNKN$bxql;!qJP z0~htKOBJ-B<1lS}7J|L&M`YI0bK(cWeP;ZTQO0T#YDIi#&J%CU2(f*Ua;Z!gUi9Z$ zd{FHJ8#`BaVGrWn?PzA0TbAnHrCJ3CUoQts-@dKPfqNj7)2aMB3D8f*F4mp&TJD+( zyKm-^L@cSK41K&YIoLgTEp;pUDwvZh(IlyQ=k~-FH)O5j#!Rt1+>){La?-x|VM$1kOQcBfb0*%cTOYT&Cm?iw$n#q=$1XW%K6v zAE{3ALAix2U-vS;_pH#?Y(@JSSj~9F(Q~Szf741(E6r{_2R8>~&vwL`=QX+3X(d>h zosHFVtK&qnOt`EInjt=-owyqlrdD{Vb8-}l#sAPkzC`Hu2E3`qMwe;d-R4qs=cPIe zIAn<-ms^XFajQD8rr?b>{O~$E7$K;zr$BT|eG>gBy=aB2@d;A&L_OwwrtzpwdN>3l z$e@*l`0Z|3o)}d)S&f+2uhXHUruMpiK&)*!w86pC#t#{4FkFCBQFysOie7Wg@;7Uw zAEx(e3Xqoj(GvfNd=d~<(x%sbdCOiH#+xdbkB2A5(ZNTsiUVk&eeBsdJCxFsybrBx z;VnMt|C^;z|F^5$6^Yz9dgiWp^R;cagCw$TJGK|Wg+%_S%UPCqo~|u^bMi}qj1B@t zh2j33Ci5!#igKP+RL}2l3MQD3u+tHZw=TlbtMb5UOmVSYLPYfEyJC; zIuUswEOWVO;=A};Yxv_ltU)PwGf+ zV@isc=SS@fXsT9FM$$_N#AJ|^30i92Zwwh_n3Na84{5bxl=5PTej@bt-Dat`6%%UC zm8DefXNdfoP5E@XO`opCDs;mF9ErBF%igwps1vHWvkf_G92u(#X<>QPbk2+WyQ-r1 z%t!jBsM$Zz3=G|Z5F*3Y8eM`ugrh$YXPuW9H!U*3&v{q#M1rHa*~WOw@-Z0m=Q{k% zFQ_nR_a1h82~+Q@uT#01WEE|AoypJe)XEl=ab^swi4KkNooK_I(mDVs$y7rDpcziR zF6PC|-oOQGX9R)SsRL<|kTdV!t~|R(W`(zP9JgfxGOO}Oe(w?2&c1x@=cB5dn3Tzm z>AENUH+(g+wF}D_s=k(+_>6ZOfyp0C94f8A&9}0(7!>2h=8K6JqU9BJ*8VO+3Dtw%etC=hq|>nBnim5 zBqhmFbq|>7Y~#MUD*5*Z^NU=VIjkr>+}T5Wt*`OMf7_=%mY;Jd@z?FS9C|B{%-;hD z*U8@oG(K_E&)9?{=ZZw@;8sOzK3+}00QIaR=WWHDjm7@G1?Oa0BCvB(X%h8AbrDuZ z;6|j4*Ve;$5CSu+wdn&UJoI)lqp~XZ0f%o6?dL?T)FSky9RTkVyJF#|7O2{J(p*Ux z`{04cJpS*3V))=rRI6zCK&6Qh8z(Z%otpU2n8?4i(YaJ~;wv7}n>&}A;y#l2jy*eH zo&vloV0c>ONgmah9a0Cs8XZl|*ETdJCiae{f7AHm&H2##MQbWb?nm697NB^D9&C&E zTs~@Ha)`rehm*@Yc>$wRjc@ZKC`LCUqKLuD0@eV&3BpN9nfwpO`#(B&vKU+OkbInP zx6p{i5jBBM00xO)2*d-ufJQT*kYWZ^JTn||KnWpAWr@t z(>b(&t-W8BZ{+tg_Z4#>Xw^I3D;7G)PDF$cK=DDX%nPZn+W-(q=4v*&ekay&cSyvo z=RSqWJI_DDxZCy$(K#Y`genA)FIw5=Ns|HLQP99+?Lyp0f&mXe!tZ^SDi1ds1%DDZ z@lHn%Uxr5mzCEV+A7^+Hc5Su~%76%^- z!g0|q-**POJ%cu(+b6Rp?JW49+=qM0sk)Dd4$>Ex-kf=MT`>SQ8HYvNE7!tRqFgyy zkNtnVPG9N#-1PQ-Yg?yn6Cj#KL^PW|G@U&piw;dJ4mePKv|@1-Tc2jR3M&fde+ii7 zI+q5X+a*)WuTycYtLeJNlqlbB+1k!{?o zkqXSe=kJXAqh1lH!I=|)KM$r<%~fh=eII^Hrw})GYl9*v0Dq8S(9rqY?{_?DTIxoX zPx;F*4}~6(YTLY30e zd!pOo_ZKTfe6TwQp>67*Yv>pHww*d=^1!L$f&Tlc{Q?1`f3sS*2&j8c`IN_-8ucX8 zV}<&#yQpkzrEH7B8Y>RA-_7?h`km{Y2BeU;gl@=pI=nx?kzPYUvz2%kTID~h!U#K^Fyi zmZuojp`(r0yXT;sJ=@{|k3rIbcuPrv8z&|zaZ|d9m+qcG%XXxxCcEpha#!q5N;X!( zCOhN16PsS68cQ5%fIM9O`~xxI=G4vrI_D+$OKpCwXKn@@oc?Ll{hvLnV?%k~aYRR9 zOE1NFoJhbnb0f7-KVLb`Oyh)Vf_sZKt!P*mq6}sht+Og+Sz}t~%%l3gpT8wqTpgB= z+g~~=v%-s~xuXSW?|3+g`)u}g01Bkf6@KnL{*z0F+uhfJa5p<%ejsv4+Gq^=atM} zo8v&PC7d{<&3H!u(2&oqru;-j`chdUQV%QDNuV-D(483cq?aUrg`DHhDLpPE<4h4_S}K{SieB<2lFw<^Kxzs=^cy8iO5=`Sx8?v zuD!&M4xNIqa3z`4-MAgPc|AbQTdkl#(CAHecs{@hJ~xOA{n_2Z;)Mn#cp^oZHtiAs z-gx1^m0hFM;Y!BL;kakM80u`P&(tWcz8_sba>A+qTpV9UyV+J>kbea11YnPGneDgR z1U(1tG89d**^ArwJ4Hm-I6r`Bd;R3&QF-Bd%ffpn36$qcndh~hIG*+Vr5cZyQIvLk zOn+uftLrK*!eAvaw&)0`?ORJKoe(U;#>EZ+N>)7-?WkkkNRK6 zC}(@{geXrHm=V)71*qXCi_maGsV8E{sx$<=3lvrVEOxz{^?G*!v}($5imQdGHu&Ak zDb!{FCj0@(#OZXXJJsVvNF)*-jftyhe8wITU?)i4`?h1@xiktnvi@Kpxi?PqQ@cXP z8y9BRx?659`Pe7Z2y$qLM`n|U|GPlYH^=F^-xlK0d@n~ppJ1u3Y-*S>{5a99CWtcoOz$-C>N`co+iTlJ+$B%b-Sy76-Q@V`A7+ma{9p38OiMxTn_Y8*uCD~^po8c~Vs6U|!hc}KG|zg= zvhZez2`xUs4zfX29>yZV0O5Xp!=GFto9NS zy*|JEfoOB&aYJ}K%m;lU3e4f~r04r0GZ-N$?xV}S{(z99d<3=jsR0?FS4T^)iVWM* zDTGt8r4LMlJs#sRmsSFkYhRfv@&%2yDV}Sa#zedKeZ&Lhs_EP{<#Vf?oev9;PXB+Y z<>8#BmjA0MStxKJJBkP#0R%8XnE0(U!}<&{HzB(LvwKMZ@}9ghYA^6sRX14J{`&bZ zK##?S;X@9>p}};a((>0cKe>=$;yw#grlJjA)9+t6o9j7qmmEX3J8TnWbw2p%%h=mF zYyEm3jx(>P$j+|m0BG|6xG(+#kN7pqZHaM+guB!-uhE;~#UjhT(^7hAs~4nE`m?7` zMQqG7#N9JxR>~fpJsTNbEVlfCN0}?b{IQttZ{rdNS6_?}PnUXhETb@g=IiF3olhEh z)%16Y2k*>RXLL#Z(~eUmYSE=h(}vXu{r@-Qz4~Mo4wvA**&j?`Zuq0HwZ*olg58h1 zn{4q%Owq*keLAJmpO2&bX%B~z=@R9Vs+LH4GAeL?@1@1;_xPxbQux?F{RgbegHyG* zoL(W081}!1n9>%0_`J()A0ERYF*LRzny5l8W?(w;h&X(q#7qVVSjmRek8=fZk}AfK zT0Qs9n!@~y`3>J|0nMJH9IX{M^K$|1-R?Onb2X!_deWMZllrAOXsl<-tWn)39l^BQ-4AOFfcJc8tSM>a-D8|kHU$bcVkB|+y%~O=s;1SP zt+N47pTUJqB(J{-Cg{_Ro4sb1NOd**Ku$*Fj^oj66dPeU8{uNwDScp!Z*2~-?^dtn zu9Gy)?o8TVgkc_+bZ(TAuJvKBXqX%sXwE|cg~UUO(mR``uqUdrZN>61k=Y)yd3B$-!v@K^yu(J6tn9>FzpZNqY%7BuU-^|-j2)U9`qYn4u(TZZMqkW|S)Iv~%~ggwzQHm)kjbo7 z;N_8vdeEIdvvb`q!0nA0$86nV9?5 z6nNN>9@7G(KSBLX3b(Y`BYXn!4S-7l|OW`R} z;8}eiw(gU^bvPfAB(6(Tam7e#?oy0nej%K@yMAEPJqmMp<&q@-Q^=LOL?H)(w~LKd ze~snC%PrYwe8^Ye`ccBiFY6Op7`-=Tj>9uJ3n**)25`2JFKn6ke$a6Ngi;C9`o%9g z-q#L~0+Ym;_2>npa?5ZMrlf_xd;W)pxihSg1FG$7#0S($N~%o{+@X-qm|b^j zh-6s!$Isk)ZB-o{wotFl_!aTL>#0cJwkviCUt+VS{=XKKs}$Ql>A$O=z`Q~cT~X@w z^urvTPZLTdq;7b!E}#s}s(ytn(y0CIecNFR`j9Y%wsqk9qRdd?H;uqax8idR(K?}) zhngwpNC!PXB@P|OPo?^)!xecgm!C6ZrM~yda7!#twV( zT?V{BmfNf>8S%sxE;#14qSus#@@S8dBRRh%a*=ZFS4QfUo~3m`15NI?!J%`$gkbFJCi}X^3n_DejMH-pR}BK;NU1<292IL24mnt$UFgsFw^xI0?( z-h)y5dFI(G7Kf{AZ5jvdun$gX4#GPTzrrg%kiT@5A5KoOZR=E+Q9+a z7g;@{7vrHhN_`<(Q&)zmz2cpj8T2El>p1s|Cg{5X@KO6JqHyoj`@y@aby=nQu{6 zd?#q_sNkVLChY*usRF9tdy!^a>4N1iqTLLzC?s=SA-o!rS(~ijiM>0cFD3t5F-jZ) z9aZED_~)0e!T5g z$YR_-+}Kjv&wt(@Iaa&o(!_7R-gDnYCcD^wBu{pB zm9KEr8FE;~pbW;jCSw~`YajlAJ(2A@;rjc^xT>TeMf!*D7{R0-N1jaOD-gjF@jNMR zLuA0)owlS5@Lp(>KzZnlC1@M|S$=Ce3a(k5K&@-B)Y%_upl~N1V+DY;aEg!~f&B~ht zO9cFNoc@goY*3cB-QkV|C{Z>q3e(8~xGlldo`P{uW0;3UdYvjsCgJ6nTS!a>ek+VA zoXo5wL3HD4+>yrubnSE#FO+}riWF`ntuKb%meBo?s90fS7cRsc|I})~|JcjiIg3V2 zlxaNx&oW#v0|N+^8X%(|FVirqDD@g&JyUOG6!9nN#CPG@O-Yw;V@f>bW29g%EyVV!kIKuh{w0ixdNz;0$|FE9HD%_qV z3&qmo;ts>O^-Mw@c)!jla!l9Hxw!6| zafnA-f2+v+oPqFW5F#o1*Gd(5ymoc)%M9)NNznzb)ENV9QjnF0H52$urTZ}J!Rc&N z-M6@Nnv5L#u*7d9yJhq4zp6(4m*MBE!QN!AoOcw|R`5$USYFJ0Jn;a|VM?qqiNQkc z+JVeL7t_B#0eap`5MhOvB1Kf*rzl*w*>h&6am5Ov7zRE0%dy`21Ejq-n=_6JT3Ilx zTH_JS1%J9_oPo$8cQ@rq{0}vx`!~=8wF&QTJW)N0z0e>|%torY^>yT&$VKJNojkl; z?{tI)jzoXaR%_en!fG7Cs zn(+^9_9|rzQHKrNIWN%kvHk*9c?w<6l0HH|@Fh`c3Rd_dDO&5b{~VZV55`Aa9-8Cb z&CymF8k-Kgid5Y_0EI-lG##&zu!Rh&8Mqyj!ZL#AIR@8-FZ%}g4tXVVCH1!_ujaqY z{uY^!vfT+el)PF?m7k~&Y5pe_5FB!jk(>M_Z9x%%yD3+UOB6NTEZEr zv%wT_ng6gJZ2poKlq{Z8Q5x5gaT`)2USb*An=O_PccKa0Fkzrp=gJmp$7EKMIJgR? z=OJvEd%oNyl*sEYU6*Px)iEoB@57YJu6ZlKkL_to#Gy?2PgSUA#nI9pmo;++o@hz4 zylRGeje+Naw_7y~<|t*kSBkUJGE55lX|{Kc<7GarP%oC!75RT)CYo^3Oghs658_5<0|9gzg^E)XTW!90 zfUx@{!dVY5vxXAswVY;%zbJw?r5WUTC`sjzWT8c|*Yxc!}@)J0*@e<7@^3_5VUpn_z#W9xgFw9-8IWMt*X+zgF)k=y{BDxzHNz z-kU=nYKQNpV=1j`-&*Wujd3CFop2prbKapNzj{V)6LR)PZN|njCxA7W;6(P6-mc%6 zK4&feTm?4_KIhF;w=Q?JT70tZPs);*1GZF|@wvQ277JeezV9z3iZ-k9(3N?+qL3j% zcUqCoiwdiJ1tzQ~X|_4k~3F1r}!NG`X>D14l@df1)occ((#B-Els zRCh&o|4qUL`yYIb5^YU@)@F=^bo4uM?NI z2zvGHdh0ujy*Thif5#3br_4ZXCBGeH{@9>KPghB+6}Pl`BQ&`Jst=BiGX^%;H>!Ez zuRY7Ut1Hx#PCBC|!Hmq!kB_@ynD3LMpr&s*TJ=G?lk~*LQb{yvj&|uw1(@r-zc)_= z^6nsvB4QZG9ozHg=)n<#ck+kZ!(c&7+T}Qgnl#Jp`!=>vDa_>=su5z(SxM^Fkbef- z-F3|7t{5lJu#p3Gc+ypj_nP?ZOb&8mwuniIw;OldnbSQDa6nt-gDx4t6a#ve6zv%_ z*^cdwlLbYdjWX~6*H>E?0lO(pEMvG%1AV?hU4gScCjxiEPfuRkEqd8%1ZwXvg1bav zqhw5VTjOVC65AtNLs0B_?q;E{nJeN@FZJ3+Q23%n-~TFh#e5QpgRUY2)uFUT6J4O2 z{nFW%(9Ic>lEffB&5OII<8dN;=jb?ZDYEDQ)*yxePqj*cn-X!lWxn4f2f4v#%re)r zUVmsmIO$r=Esz0R{g-}_wQ%2yN&<4(vqp2;h~bD8_I?84km(|pv*4>2eRdIyQrdxs z)S1%!s|*@ZMRf;L)hD-Dd`}&(U{69ymDjU}!PXFWZ4znBy}?Qjql< zxvP;Z|0cj=Y*++U&urf7+eF{HXFxt$L|3OHXoN!ca$A~gR+!Wwyd~T!|9$HKJG-X^ zB&YCz0oQz?_WYbMN&9=iKqgQdA42F4j7dZ}pw?lEqO4v&(QMF*Fh@wuXkb3&+p3$l zEa{^*mQ0B2O?DUIN^st|f^KNnZF`MBY1t#y)KE{$#be$eHGH=M%odd>(-c=-cZkp* z&->fH7>3K$Z>lwC?fZ!N145szheMA+WHIRNpl4aE*=APZLGSvEERBmsjVedUT%{v! zsGi~?Yo4M)*SesVS*G?3nP9t&3x^rDqHiux8)lggmeBIK8jx1&uK2d!>HVDR850s< z3qjS+6Z6?ErfykF;ybgfgS}EPGGlC?YRz(5vLt`j2XX*0AE-ATo)|RsPwN-GlYaqxZz`R| z)*rRnS3WE|G2tNJP2yx;tyuo6QQ!Dup&K4U*Ukm8T|3|hA1anKv!S=Kw z+?%Dhx33crvtQwE1Z|>s9E69UKc)4G+)6Q|_;T}MH$0E;w9m>R8E$FG-9!bCq6+Tl zpJH83ELY~>GlUpt!q#{100~4A{C*-i)^NY<`$#m$oJs5Lli3@>+<-l?D~zffD(s5q z!Pkjp{2TA&C5HOZN{mlGn)y2*alQiGH2`Ja-;}mzf>F4J2guRCgIi6)*pe>SX<7ta zr3$c?2qk(#*sZ)inBbBrD(py|C6CT(os%AXrdmU(fU?@y#`VwWP7b3di<%<^ee)EL z`If@))jA)$8y9V^{^U+XRX9Q)7Dc8Jy<_@XbwLF3QUu}z6nNS3j9})Kp&y{fb-Ck3 zsD8vXsr2Z{;_5G_>@V?_ZrhZmuSd<+8OLLkK8w{aw%S)ctPY8SV<+7PhHuNKosr_q zJwsaNqzh*^{Frae`1M0n02Ky^eOT`bLpC!gyI>e$4T4Ovz_)xAOrq@SlIHT8_WV;* zoDl^ADE8?C+S%_xUzwsj0wVu?QvyiC%{?&)wB+*|Ft?PgQ_0D9F5o&tuZ@($4IH?K zY3n8#Hf>^~`c?n5l+{EqySjg$sHINecw=oUum;^%EivM5~q`~DZEE9%4q+oIg` z)Vm*uJ)3Yre}E#Y!6p30H*6=`(y zyLzlby{YdX(tU8wSd^kg6mA;B&kPeDBe$yw-k^v0X#dwbnXR($wPjjTpn{ysY%$F_ zP`xwaAg%}ELls;>GNlI#63O3webu$F^lERcT7ZMX^|3A*|0;Awmxf*DOZe{BrsJ}C zHOXL~`Gcv3;@7CK$xmi$)8}L~%|T(4atF_AP{ z>!Xd)y{@dCRTEzNRZqblghI2N3un<_cHFcl9d?*2cO3CV=BQ6i3c7;J+;H7@&^F<> z7U1b^MsSub2^&B8Hra(ckB8iX$ln=5ih~-+<%@7$>EF~z2ZwRx2Hz%^+rQ^yzr2dD zAKJyBCZP^X@Oyb7Yu>XL?H{F{V2+_8;RL_PB(CtfwG13M;Dc{4n?wZLr0b4Ouu4r- z#EC{$e(uFmM+Rh5pqGMxba{es!j?(hzD;6ls(2J+4ed*>)(iPA`}cZ+NCk7cLRVMB zf3Oh$(vrLPT|NqzjCd{z>3^)m;TJ%lK~i);n~=Kkx^si1s{0lF(4_^50j#N%w`JfjgZuhg^qp}ciRol6#lsYLoT(Kq)YbYsA)sI;e}tpA@4t7c~)jackb zDp72E_x)Ry*@{rkSyv_IyAWY|vAyaKQj(YE`oC&?8=X?t2#O5HBd{bBYcdBf)a&$_ zSH%@J#nsJH2EI3LxyJ}Wn)jW1{77Ztf{N)7J^U=4rvOAD3~3xt3d-Mjc_<0)*81@A z^CE=NM5C-O@<`s_93zJ1uj|iHQq(XF7{vf4v_M6$zKUW z=rETgopPwZdultnTa3w5m>|O zy~k!IP5;#5!laE2cWfcamZZ_sq_`5yM3GZ;F^psZ$={1Vj)XA*7t@W9skB> zAv3ndlYN1e*p|K{4Q8o9m$b8Tds2Kepp3S4^r+>V~5LznBS9X4cG^E!vdW@3-O z#mz)u>{EE=X_?Y}@#|WUXo&Aa_!TFyl~?5r>@Obq=)LERvx6gRA$Djxho7)xXe|w! zk84g-FS06u5TS4Z|8R925+Q!XL!n*C+fQK4SegBe>7l(KdT3cONX<(eKFW`98QDDd zG5ePFU4609P`2nZ4{2Rb8PmU@mZ2ym4P2aLT55<~SQH?};+;Jng$si8Z#iX%u#9<_ zaM=r$h`K14Dy&GZ4%XFa%JzoQDO9u@(C7U-HA1G7U0w_t6U*B1cu8$MjbWrU_f4b2 zE4Vpygr+kP`B3Z>!e1WDMoy`NbSK1_HusBo$;g7&kF7=SQK=_b4mJ|}j)G5%yKk&r z8kv7VT5hPPzNP?>?I=rJo>%LX$kYB7y1P5lHvbB65chiUI{0(T7Qj&iQH8TNuE669Kf!TGW>jM~Dh%@!svW zuChd)R|w_`>&a>|__bxN%Iwy(Unw5^>;5_|*C|!RugHoz%JKC~it<-o$ajkldboIu z;IDx`O3wMiUkI4L+F|ku7_+A>nZTkg)WT z;kX5$-4Pa7*Fozi6eX`7oA2pdkw#B=(hd6`zdSr6T`!y{B49e#B@-46VuN*{hZ1`}LOA<_t& zsipYaFPXsZ)$CE45}c2PUwZ435tz`7yU5}IkxhLJke^(C4T%xODqyXyUZ}f>XXB4e z-QF^zJKV%4%iGDHKo9V|EW!oRyFm1QT;E4MtfcAU`d12Rl-JU_F@zvh@ zYE`ND&YH0*MMRh|8w$ybo>Fvo^E0nsa`9rgR^z;|>Q{$pM6q~ta!VKTd z8f}^0c0?GSOz?+}_3=kW(p?5H-B@iLd5Mej_7A^W4^8*uz%j2O#EV@Eo|kkjnv4{7 z(;R6n%OFD&igu&rIwjh*+AgJ!ywJL&oHew;TSpNTyFR)Wp9m+x};h|MRUB-8l9 zOyw5W%e)6rPV|f%PSE-@fI@NUYBv+h>9aVHqOKZN&lM<6Z}{0s{}`gT(>Xl&#i9{c#PR*N{{=7hFp9^7>SB||0s2H z(DnX^(B1u@R+svuMw5JI@I(;u!o(yx)#moW6X#cV??$0cU(%C;sQO>SgR*?zT7AAh zG72jJi+z-u#mVbnbsXO4v(J^EC6$+V6knB7UYmB6@L_#U$;z5ehrM&oq}$mpbFNT&ynd?Dtby|G^XjXgBxnY?~5 zan8yqjJuVf`i}ARMJ|YM(Xt=Y>5>mVU&(ObNIX= z$0x$e*1w1}Qv1%I`GXint+7(?BSc{lElq0h`Vqt=TV#D9vvLmU(TH$Qr4k8n_fcWLw>;ME#fn=mb?7+S!7+Jm_C9>)de(R=RQ{qz%8OTH2wvr z$ZovtnhE^lQ0%_WJdwSJV9BDKA^s`bFFQRwgi+0LqQJAyZDiwN;M4G&y&62Kbrtki zy|r>f{m~-%r}%rx4lN$~iK|kr+^OzH@-vUA^#|G;zo<8SF*N@TxrpCNaYffmme1&v zTyg4uD!L!GPEWK}R8Hq=Og5T=)eolLO_>t<1Nc67LW+Ye6U)wW&x>5rwS&fgoIj`0 zfrm4m2Fl^#>c=SKI5@po9SnUz9*w&$MXhM|iMF;@jHiY6h>UV9N~!_1 zD8gLt79Bs%g=bP>3-gzLPEqk}R0BW8lnYj;w3N3v{?#OK0RH42RjhL17){>fkG2)M zae9S{GMaCm>Xu&H&5WSzrV{zmgB5`;$ug>pf&KE1M*eRArAPM9Vm4wi2`<2ZyaK+@ zy&oB5LiH^1uDx^%B4mYOuM4r5x|Eo;GB)+c&B1p#R5vA@uRa{@WFVB+Lfi>ER!$1U z_2SOY{l~^1+&uzlVP$=Nu_CQJuthDonVFe`gM&g#Pm=Pf00X-|f)*49-k3D4rSKN& zoqc`lsGs@VLKs?KPr<}(szi;D^sVk$XU-)Xr>%eB7ENNGn1 zQ`8sCZiC6?YF6=eh)#$s5}K60gx1v5wC|iOj;(pTH#~vS4+nmhU#KgKh3$GHYpicbL z1}z=yBc?p5-+qd10n#GUsEayzQXu z6=z#$8XxdIBtfBAd*W;Ds1r{A$*B>-#V}y-G@d!Wdq8ONTc^u z+JIYrM>c@~g@I>m`wPKCmlaEl=f$y$d^AYTY~G5lxlKr4fSV9Y(4}MZZjW9w!kG_D z4N>_lUwG5`e$aD>JgsKtxZ|I$`Aj2F(d1n8cPQmhO5^fgC3su*lsQZJ{B~V1LINlE>uh?`yMNzK!{#V^aOhyC zRS44PS#J~b+detpVNRPY+EOs)s|n)e&Rh%k!-r}=7t0407G7>nRVl5Y{h|u!0fF{g z(`PDBz3GU|F0g3r>w?x=lCUlxh#a$W!Hl@Qg73JuakH;bZosxASz1dEDOdJy|II0( z!R9cwzq_nX3X;AxLLNP~rc)iZ8}_!=+vN*+|1SP|a!wAME;ocKN%mN9yX8bKa05M$ zoV=M2u|&QbhwAFb@#q(Ec0{X*bJe+E8(b9AZKm2#$u@#fxbrWnT+re&H?s$S9Zd}? zUL<5^L#SzK7gmP>Gt-+GQE_p0NFoNXFPnj3cmXV4a{6NUr+kT+V)m9)^ufv?7b)#r z;DN^F<%)cg$UCW^bJ1M?_0p-#e;rh;ftGYThsyoE56`YAb+gYfsRN=)g+P@H^I868 z)>IjE;bUWGxA5mzid2rB($l9zBcr2Lw!O48i#8`EYEdtt5V=6Yv(Jj}Cw$nZhKNFf zxCSDmV4RR8g<(oPeSQCl+UZIwrSMpqS$Yla#`!Fd)ob-OB{OjYtFUhaq+J5lt_puy$MQj@L5bI-tQ& zKAzMC7Nh+4Q)FcDdx6h0+zJo3b%53*ER>gI}D%@eMcZ92~(YP3gS;19?Xb>T?)l zZ^o2KCaTuF|M<OC5Wvco-QbZelep; z1OkY7TYDbX#ik1ZT_5kF;7%exw=Pg6-^!8LaELhAJJ(Aa7Tp|4 zvay96Tsn6gyBxi5mynKi&&12=jr4j^MEr`M+;P9RT7lKp)x9GD5%sRpQZX}Q?!Z%Dv42)8vv0qK zLT^D*j6iVV`5}8Ui&p67IBa)9As1_z1_f)e0h_bexUc`t3 z)0ewjgyLTL1r4~#oB)t|P8$dB4ua~L{xP16LIms@5DVajIxZWKyd04vxoh0`OQf1} z^E+n(P>+IBifYoljX!nt2!l=!g3~!W&BI&`|F1zx>Ls8Izqhj`$;a^=bbGHjQ)XkE?6 zg8NQVdXu%*^I_p~2)D`veCdR)P~&1D>`@><8>QPekxf*g1qJ&*Ww|ujo}(JeHnxTeGi}fEGDvYg=5O`(6D?Rs};Wt+?EXL2=rxVMfDLM1+RS%R}(&Ju4t`H zh%>!AgF1lZ6_q+Tfc4$c=h9lWERwqE-9Nf*Bg?6VXRY+sD0Zpd0yHEB=suCq);rzM zE-l%gv|hySZJEHP zbqxF{c6oVLCJEQEDAXI8hli-UTG>#n@thzvDr}Kk?uMVjRXdD>EV^Wk!qEv;uvna& zl~vYlZ0?<6WhXt=D_-YkS&Xh`*qkQ*5xx}}YD0#>O(@cQv>TwiGgdyMOZ z@gU!ZEz~!IUc3+ChNvVXuDG5W3>Fj-j+eCB_s`NFM)M{%Mj5yW4>{NGT!Sd|R#FTb zu7?DGuGXDl%MO`Wib&gsKUYb9Cu&TE-<+4$=`-XHQy?8JZgG{BX`4;F3IDwzcoge~ z{d(c59Y{X9bE8%6yP==WQ>q`-a?2v9S}I+?r1X`df{w`~V@Qlm>WpT?x;;J`JQ0g! zQ+H|(PUDC>Cwuq*@b%{LP>0{&aLAHnkdU2}3fYY*dqQO`dv>zLF!r4ojj|?X-xabA ziLq~E$-WzmZOFcdvGaV?_x}BU&wW4l^Lq8_FXeNcbDeWt=Y7umeQ8RhG-%N`$rR)ejUrT?jBdVYkRw2v!vC%jOzJ+EQ|s7nd!n=L*S%hct#&XwL=#hd$l2hLkv2=L84wzzuuFS;uk=+dsSS6bSDR z^+|>QdEQ_X5V!)wI$`LhnH3oVF3$o=`C^tiVZr%Qk&tTpyI7zx-L1^syhr}mRjg&B zLId}lyf(2M?R*zIxn2hgzOX!7)FZDE2;1gkgN$q6M#>>tbpC2Nj><2-Pu!WbR{Ofe z1X9s0Y`qh2lvTA7DslI-@Jh7I`Db;$17%n%z20(dmp~2cxOZ!{zm~cxrFkuGzlPP| zScugxAVk4jOdM<{8bm@wMXK;5P)QBAd_+>U!SY(0ve3?e)cFR#2%fE9t1dY6k@P*7 z6$y9SZCE5RcM`cZ2~q1G>nZV@4wg;tts=eUou}+2|0O08WB>qa2&`iHYr5PmM|*OG znH-D&1pa-m$gffA2%{gbKLmIXr5AmSj}LWU8#UjYta`LKSI{t3{kjC0(2IzRi{p}( zCOSD-njPDjzsJk}L|#59K>F^9_(wg9i8ab|J4pW(AXfpwx>g7@@n%J^qHBm!G1l(x zD~!xnOv7CJo5t^2aNsq3W<`K7RV9eU%#H5bG*LH>*0*1qr%Kejh%1}9|v7cGf zJDWlqiLo+Z9>}Xls>DWkdk9Q#1P@xPAdoMOf(liVApTtfGx^R@)7OW3)1w8n#AqRC zuJ46P0zRip`3-P6bP~5oCJv5iKKwk9+u|~!S zW~u-gZGmBg+*i7C_a#l(97H6XSIBilSL&qTWV=nv6L(}2_)c$ev-Q({xtH%aZEaZ& zje#=SR`ZOyB1MtdsjHtl<~KiS1&6rE>6`Rp;IT8m-d82N8wM04aT21est+yY5}0U$ zg{HTUjX`%iP&jkQAssO7uiGTsVxk16>cU)AxF_YNEsM@nJj3M<$f1L%tFB$;_9f!?1xqzSQuy2%@3)iC@fAuL1DqW;bz|ouj`eLr9IlWr-PM``c~$ z593b)^BiGHeYgax7YmUM7>0mLh6l~3Ha9<(ZkvTNc%+$UAc)#uEG*Ciz{U!=AU|KK zOO1iV5^_6PxY3Pdfk#e4lw&ef=|@Uxd^e1f@>I>hq5_+Ylj{aYJTr3|y2)L~1j5Ud zNIB6lX`$t1m!XwZq->|{WH%3$!t!vlNT{M(rExMujE@Ep~``dnT|OT!#c8k zc>k`DyVbRTeGleAJbO##kjx0`QF#%`NZPnM9j~7|#Mq#q=L+`rER<&Ph=M0_45ioq zal2aQRw7RBH=f*FY7WSrhK4fx zaNF7Kd#Rj#JMplDJ13tc2b;0n`1j}1_cXalr2karkl zWxQm|{6w)Vb8Yfr!ZXm44ja*$>CYU6CqsRAXW!H^gIF~Hl0G#lh_&DH9#SOsnlNh{ zRIQ=!q7V!Ab)Z&%1wML5oit$ocN zZ+W~(r~jfq!rQ>z%YNut?azCRo-)!b_W0j8FCDTkK_y_e2mpPxZAn}uQ;#Fv!`pEt z7;?W)tdonyonTBDHBdJ9#(;tV-Ym{)D^h8tn#LJHS{nc;0AFC2({QuY5?nNn!+que z%#q1MGn}I^Y&%;ZRD>}H*sDFHRFR=RI$(f|JN3qiKLFGUJ`;lPl_>`AA!xv_G)WuFJriwp)xJ! z2ndV>voSM!*(<`qY`0<_oi%a?4BE~*geraE04Zu}(aF7dQ3_@`WDPBLZCos>85kaX zrYGlt70Aa)du!^ms8%sACC`D3A9h%47*VA7MvcN4+HomVL30u zwqlodfrw81+fIr$3{`HQcE*pv+_qZ*#xuR)%@w|mo>I)9$F~4HQ}EadqJ8z|&$~$= zv^iv%^S07~11U3!JJ~3TYtVa(cKW_r5Z&T0Oc+&!$2QwM=>|#zkDyb}OtGHp_95GWqyS zklB6zf$f{k_XANmaUd~1=8+#5Ma|3E&X8evAm+olFY>%s`C{5Lt7^aS`IhQE%eE_# zJy7RWmRJ4#Eeo3>0(kt~dz{cFE!x~qm>(Dni)guGIs2rCWE#sR&gvx@A~+cg>mt@h zU}H>uu5T@UwQTycaJa9cwbQABoF53~XdgnVwik}nz$DMDIgzI6GK4w0Qf`V!4<#Pr(9%mp#sUc-t!~PVCva^K%^6*wP zx665R(%WBB5zegdfK7{v=w@A?E(7@58?D9C24k@?(9A!B2bX=wU?JMs8IOHWS^uqo zvz+{?m2rlFhNDxghDViqV!N;c4_0&kU@>3Jx0|N5$Pz{s8q)|GQ}QvSqeaf&ji3U$ z{XfUem_QQ_Fv`&LIT8WqIfMe6Ul19uA6H6#zM^;JL;zHj`Bjjp&8nset-MuvFwf&W z9ZV7BD6W4;i}(G9#@q=qMDmMlLKYdi;3Il5w)gq-BXy%e@fyO)D==V9glhm_9o}D^e7C$o@8@+peQS2ko%Y5h2G6xW```=Ps#8F2 z)>`esjMw>wO@J?^b@@>{sc-_j@`z_UWhyyJ8W`PGM{R>s%wGd9G5uSjLdmJrcITeW zs&YFeVtK6T0Uud&BU8p@$C@9_#r}FsURkg*NJXa~XdMQZvH1CovB<*ReNJknZ_(H( zCw@U0Y>%Z2N#N=Rv=amz85J|zQ_0qU~t^0IQD5DH7g?#|o; zs?Q}s#bu0E;X=q=6Do>ac0EqkA9U1 ztvq|5L@(^-%Nr^G)BynxP?oiMln32qxF!>x$uk*Y=FfMUsid7>`<$68KhOuE@T8np z7h2HRhP09RS#Tv+ZT}rY!FAYylii;d=t4u8DTx8|A2Z99$!GQ;MjeN@Vh(kf>g}?! zvRs}b(504uEQ-$KCIZD|Fzb!epSI!@n?AhX!=ZvDYHIIu6e!ekC>i2JYv#zMAv3fqX8vM3-%nJ`Z z=g@AG#(y@=X-&PQ=jV+Y5veXAjc5Xo&+vLjZ}49Z1My1d1qwe$mElF?P2q z$1*NQ$nBd{-~l}Yr59_}em@_O2vt*;x5d?DAkXc=4@=r1#bG>gu4I$0v0+H@B>B-*g%n%8HBGW5{g4 zPc#i#nm^Ee^IA&v+@lN~%I%w7SDdZArQ^Q0{30^XbLSKSo0W4=8;<{7n>3c>FoR6# z%g*kArL<#V^1aZ3*P0EKr1cw3Al~bQASgeC0MYhae8upVk0@(*0k{U2d^bzVVo~}`UB%>APCD)_Fq*5$Av1k6+iwifGk$)?#-!J6UtkDjZ0=Y? zv~^dQC~W%DMldM|1PN52U!Uw0OgLY;>%im`9 zzazo=c=Q21uh%k<^-X=dYXr*aEfJ*5w3&IdG!o3iEZBJa?B|hAFg1He8dRBgt|3Fx z?_Kvh`s?pW1~rm>DC8cm{l+-yRErI-Em79pimH!?g6Wal?~-3=Ve$u)_t$vsgr3;k zdXkRT{1*H<>Nuuv5&5}r9bQXdY!WJZd!K0S>KGf%+D^`^-p z1+8B(4!cmJn?%^!GGCX(80BiDx4HI7=SGqw+oXAuXyvMpEJge>{NERdszWvGIHTqL zd17vYZVmj(*8s{eBYtY|8(YdJJwemLsOPq2LFqm`M7tJ9%JKJg$t_CoAa6? zW7`br58o}k-O)w576b7xcA-aPCH|_?$Zx57}B*knj0DW;r<{FnGg!aV$9b@ zsm7|k>3-~b%%4f~!SavA{PG`E(7ylKO2{dnkmAKes?cQ5@?p#xz0C|vBPGnZZ>H2I z*xeCj-7`+EqXf4Bi=&AQ`JXx9ns>^H6=W|)Hu#gPp%~L}0glE$^((-EzYg)~F@fVh8kAiEmM=ztS`wikNsbLTyUF zD5!>}H=TMfd)&{idX!CgI#fi^-SbBAl?RJ1+f{~KB3B8*nmIS+LGyb5$H#y0PI*YOY{?HWuAYiz zt&YHiL|G%4Xe6#`H}*pzEvlrBFINfs@^QAsuA@buE8c4<<-72Q5CV}QK7Q(^J$e;G;ne|0sK?dS4}TQc}}Od zpzY~?4zlMfch#O^NwwqMIkzZb+c!0}y+Gfr2-bW2IYvepaat#H6gyC+2VT%sHzSvh zJI(?%>n^XC=nLe2@tLhAOB;}0f^}Yt*P6Z1U1B#uwG|6iU>Zw^wvI0KIE*tjKY%)M zC8lCUND2O-{x+Oy;OW!ef)7O<__NL387#AWE$blhmqpjnI6UxV)5Y(QE_p{Xed3*9z`U4=ABu{JbYdr9 zQ?a(;Kx%qs{9P8&9j`zPx%NrsF@wMUZKr|^oX~vgL!Z=sp^Tjp4|JSY5~r%RQMOs- z%5)rRT<(qbIqW8AF*AnE*cjpjkcbE2p%klu6iL*V(f7Y?&<@{}6QSEmnl6svJa8Wg z*5G}hIooK+dbq8mAO_PUKv+H+bNad+noLW!>+$|kiU6{WPD47J#pzhMxC&1KjMmP2 z84&Yov!@fu1FbXaIBoYs2hzYN<;dW$uvM3@HXG>jjfhd9llaWthJFpn$>Sz zg++M5b!~^#RO)T=CWXcMsBSH)l)@F`ZZX;k`t2|kxxliRzo9Twok^6cX-JI@>UXQW zgk!&6Yktzwb^E4cH7Yltebo~h0idm+Pb(dNA&5AbpFz+~0Wh<&H+*0I52t>bmpcAr zDUd`7_%q}U8Xz45S zWJh^dd&bjDl40=AroK?6KbfDzSZ#Gf3>vO|i6Qxn8Nt;lCU1|jAm{7b1A`xg|M*yT zhfTKH{?Ykqmx}NL9mV!Zx_Udx5rW9gNpEs>8kw(3+^D=5Az2^${O+6KjDpTrwgvJ0 zy0@!ks}1qEMyzb{Nz?w0A>TSy02mgypL%g-k5ow@HlJ|rAx8-e9ez}ewVr7%ecd|Y zReh7a*>={7hEiex`h6z(SZ&vU|2ELZYH(!+jp)>Kv4Gm6*px9t*96WKsU?*q~0C&3S|GE+&Zql#4YP$N61n%tdQ2 zOxulaCy}iV!8oORNUl?uS>(V?B&^}VWo(C(p(pGpR+X9876Drt*V;M}kVwbgd_ty6uj_FWZ3$2As=rPqUflj#x09|(i9%Cq`6lSc*M)AlKXLKVrkt-f&?KOP4E0VYoR-SX_#hhVVX zt-1>?s8~NMfXf;x+8YLn@_+>dlWo+5TDqrbjf zsGY0O&uN&s-$jLggm!&%`(iQ4vX?dt2z7wrFJ4aNoYePh2xX$mixSJq&!i1!v@)BC z;?}Qrqy<@Tw&lFD-}w^gb&ccrjB)tg7VYUM>Ef(w`tOPhC?L=nX@8e zuk#`{{c7iH`M1ndzS}7&%0U%2lts`u1dG!kkZ-#SiHN$eZ3JpWmNH`qxbWRd2eW!? znqBC^LQrh8?OYNOx4awBRSt>A2^mpGN;zj~54oQc_7)T{0kUd}8g3-<>_?5AG=xpe z{KgeGeGjb6HdBhmYJEl3b+_8nq+5SU>PKYX4R>BXl)1q=6_%}xpY4ue{ms$c4A!YX zw7rI3dY%34jI|f$0Vj7GlLh*bX^FE|%r{ljjB}7o6ct>!cU4naD3M?xqlB41Pp?nu z?!Cf6A!49#fPDt(w*@Bk!|}zg0~E=}r>o!M=f`$l{w(**DlZ~xI5KR2-{&~YU{ATh zA%j@N3)Jo`8v0B%iZ%N&GkDa07oF6^U+L?yk*(aoZdIxrw5y}y)npBN)lD1hT$^Qt zW(t#C99ar2m#%#${jy#=cVM4>S3s(-yQ<9ve`MB6YjF|v{$Xf$m0h~8hc}}q%VMqg znnSXce!91j1ax9yeIrpuRXb1nC?J%Gcl`Xi+@zM(K;gQ;K_N% z!4Fu5t_g3Cy3*k1?{>rNas)Rk-k;P>v`;vMb}bG~BkcNyEz`cMjM->m8o^UCdyJi| zyEzrT0YeiL;Qw}HjvkuprsLof8%QO=yHp@5h-?H?ia{$_URwd%d9Dg0! zjr-`tLT=(7nfbB1g%e<$3B4L?n2)(t{b2ghKn9WZs{x|10Q7@Zo1-{@nQUDu3~%F9xWC88gg5Fm$XvX`!b&xgB2@Rde6|z^X9g zC9d`d*0alHydd3!&EnYV0IQC|mY=AtS4`Fh0fD*sC7lvk8p=s|1Ll61}Li+swCqNd?YP|{OAzx;>*U&XJAEFeGMCwH(T`;?Kq8c>O> z;HYCx1_6_|P;7T(3jlfi@Qwmwab9aRR?clqyd_Td za}=klb|)$g5~lSfKsyvW0)FKtYe()iHEo7wqU4zYbK6pG<6@p&!0?ZB+TM+1Grh z{K7l41(UmjHD$zOQ#7nED%bHNQ+jhI2b2Du&V9-!tnRz(6$wj@*gaSNOu#oHP_LpI zZ;}%u&YYC9RNv|Y~s&CReLPL;I$9^`t%KCtcgI407`lD z5P$9NulJm@D%1 zLl|bvj(>X<=+lkFmo^qSaVx$=H<=nzo0h06SaLqUh#<{^gP^y>vPI-v<-fICKYg;b z6cx8(2N6Rf$)3D=VK{?0BULGJ(_yymF$}@v)I~15shZ$u=5i+h0QI1KmcbI+0l!*F z8&FQ47b!)2;o}|L5SfGxS}n?r!J1;+Uq z3i(-HK3`yZ#vH}|5D~YidphcL4z6$*PlCm4ti^@xyn!SHMKk?|y9Fw zKZJxcd?b-xy<#p!w`5Gn3|Bs15ARmCYY(hzzMHKzf3fw{!>NtmhKci6O5NpTt z5$$h(uT6sORZ+*Zd1xO$KGsPc5$7srmHX0%%u~t$M*x#V+DF`EA=v&gAKIpB&cPVZ0DUL;y$?b9R5~`ApWSM>0Q%T*Eo2p<7$)*ItcdG zk~(1B-z<$ud)$4BAXd7P+k<7Z@%dBfyy;%P=B=6Y>7FW!bQb(ki(gGGlWon?r<%=* zEej_!VkvVf>S5>yy<~p-LEvvX;(sZ56&kqV+FTz{wG@ZdE884(HJ9`-knB^JXpg9D zACh+TNdNGRLnUt~z(lym1T|DwuQx;;;4qqL(}$Y$Rx6PhRFg;KqEmy z`KR)S!L(m;R{!XNOxe6Bl=Dg{&Y$w}YMb)C@d{V2D`S(VQ6fKKo@;%|46^)yc?V|F zHYJjhzj;qPKV6S?77OSHkH9MbRI?jnRV%0*a*Y@e{(Z{&5}@0DFs8p zdyWvdA=Y-P=UI@AtI6f^u$)K1yl0f}t%sky+JiEP;~0iRUhUPK`sZ`_oha&Lm<0aG z{5-;2^m62zoqSo4D9_<)5BUfPyEk3WNrsN}r`mZ;Ny;>PjhpC8=Mwz|{Qz5cIIf>c zJh7N%`1Qn0Y4E4{Nm6vJhbzK(r>Ahe3A z(mQ|BYQHXanZd=jSG)9QM^G^qGzg-|%NbB8*q(F+9<-5O&+H4mUhzKuSV56x6 z4#fn{)L9lCs^9hyGnUG1-C{tF4_E@yl9W`J5euMFDL+OA27-!j z?i}2dp}zY@`L7RvWlrNBFx8*hb5#J7=7jlB#cx@+GL9MYLynW$GD4l_U!5GSk1N7SFmY@xCQL~AF6#{F#%q{=6f{#r%B`KUGV~?>Hc*QhgPOs}6 zCK^oDbFU!3ZQA(Gy&l;x?y7J1y8GmGH?7xYtF>kxm&!oJ;{;8E%ME!yR-6zn)}lIG zC4rT*|6Mr~2+)ZBG#9rbAnYi4(`F?=r4=vNs}(z4dEq$oNo8 z_Gt6n#h$c{z2~`?%~W7J-SUd8BMH_^{vLvnp}L9$D}M|EZnRgj$!{aj4kbI}x<0wI zGHNK?WiE~DgW5W^4h$*pXvA-}kmmlLqdtcOBTdGGP@YCDCsvGm4{oT4_5yAE4X?v0 zzsX}5RhmygVmmmi7VQ4W@fg>0&2HhGthjP6jJ-?XVETeapz8N0NJr;>=yZjs39dAG zrSRpn_)sg&O6d}9yq*ipO+&`E(!uL~TZp2BKkaKf7ydan(=SW|YHKSA6i1-P3}F`Z zM!;o}e&%F{;dEZ&V1AQyI5W>2pGMeIoVxE_+ztW*||hLXBv=KOl4*KORy#*GBo>39} zA%{tsL_FnYeKoYSR&ORGsL66UjhbgljqYVMfLyyYtgj*bjej6rJEA`LvR#Tek!S!- z7eFs7f}zJbOJ0>bAI_`!;&4o`d=n$a)vzoS7R}xilYIx`Tu2rQTI80smlg4JLRS>= zm734L0Zd3zAfad8il<1B4y2p*SyNL@Jti^n!oBnQ_!=F!V{N9I-3a8-}ab@f6l_8qipsl?6oZrGm#%gAbLukwew4ii70QGcEiYhIAttmLj&&4O>B zeG=iz%W~B<#hJbzr&8N04m*wq8gG|IO|hdoL>wP3V$YmQv7CiYouX4ydRlS*VI-8E zUU;>eHy3MM8~7ep(82#&tlPcMh_AAHEwrjQ(cO34NNXJsD7GZpCoxF z`}LTiSkFIS!3xS2{H4(rc84h9$I?%)!;XHJQ@t{8o;Kos?;@Go6d6) zL^(rd&ZsqZ77Hi1zwo{>I#-bH*E##f!gR%gdqi#2_f+sr?l)4FrV6z;1<;vAMMZi5 zs2lXqb#bmn&$x&x^qWfj+>eWz8ysh+xBRxb`L=5=pt9_~*(AH8V2jl-hVEzf?G$Cn zKXD~43(xz&?c|{Mb%Ru_{JUTpC5)D;(RoF z&&d2EA`i(!D{1V{65uKI=(UcL6SS39`)0U-hg$4w1VWf$-LhQ_`?MtT3Oiry(q`Fx zo2Z!YPN?>PyC-S2QK-l>>BNQlOGB%s`A2-(x4UHq*cq5Iii=~Y1rYTF>E!OV?nF^x z|6{k>-Cjxk5;KA*4q2QXC81r!v3e?Pg{7++`}1Ue4&PCDVDrx(=oBKUMf`y|hvDuN^W<*C znu)hZwV$3PTC-tB8@-OKaqLx;>}xfG*Z#S@b_B&fMi8N}gr-nniUoZ2@kZW@vz^dY zO}1hMt4g4JJ~}*CTiYJ!D{6BJuwazg`KEB#TIQ}_A|A4z*qEedoUlJlZnTev9)>zC z%-T?QKUOz+@%ZiQ`SSu)og-;j9dTp_knVGMXv8n7p=REWUHsVnn=KPfd^_azQ?uh& zt4#dW7#zw9rv%Hk9KCCxSpIF^HR2Qd+s_qtm70wc4nO^^24P_bRczgU>$zhc zAo4`=B&FX{Zs^Vi zM{1*|lO!Bzk{lgOG=7YyK!SZ0H`<>H=}-lKsB;X4Q@!Er`H6LEkWN!lH9$!TL#q~4 z&oRTCscWGiwlG2L*clFA1&wtSOs@AfN6A+jJNBt*DE%jJ+COzIN(!x<{;p2ljGO;) z)O+Ng?1T4~KR&4=M|b^o*tF@1-)(Et56{YCT(xOlUO|>(N%Z;xWIe5ZU;pRwtuGHXuGICzRjNGL4tfB z6D~3B*!&YUI=_!GMe`wRBY;5>&^ReM9pP;jlDH1S=aR4k@;NFKK#5761XcWEmUsge$%AIiohA%C&`;VJ$L_DfGg0*=CO@`5j$y%FMB{OF znML!V!l0^x&!vBvvaWQPSg#K zmfloJ=Y^52ImsE*JlTugeEQ18QRv}{e`1p1W?xee_2w|p6BJq*S=0v@m;7F?gSqND z@^zi_BD+0*F!dgGe&e6Ht*07Yd|;a~y&8*&RxCBrD5o4Xl#_La)9TL9S6Z!6s323v zF%Ko>32RAo-NOo1(V4`cHJ-?s)Kr_%sjc|EC0}|(d}ctycanoHnWfrJSbE)`m);G4 z5_B8)eK4BKL**TqZ34FhWoSAcQ@EY{(a`Ir#FP+6`o)~X>8P@`c_#;dYdrE-(-#!| zY%m#WjbmJ=JMc`^R{JSUQB5H5nR9K$t zOkOQ2#x>54fGHey-*!8EZ2k_SX|>g&YooxvgtR#%ToZ-_&19qjOFqd?_<#m1nC#0(dvYCS*$@3|D9XDvN` zz!xE)a2B9NC`?f>YY=&B6?!CN+-!_!{X6UOK5EopDEuDGy3xo6TnDr$_n#729KLIs)d(Y z*?+pMP+%{6Vg1Nfv8yb=7!mz%7ty%f2f)i3_X?k4-`!!snBh~7^o1-57S#h8%VvC7 zkPTq!zWU?mNYo2eHy=^utLBye3H+1~jRs_Xc^F_;&3W$0{mxGH`<+0?Q%$X>u318D zJ1)$7chMZ+tNXNF9pa98ba*B{R_)HW*qd6wL6ey5E0qH~ProK|x?aRyy8GU){inI*1UEnW$7ID++IO3S_EtwU1**?ssCTKlhNHO= zC+rseph4qg?2qry28t8kg=zy2%+yv1YFGXy6XN(RhuP#rCBb?t8&jT({AU57mz^*G zc-97F4Cvj3%jEaf7Dhr0>D9=##S_H|w6(ujVy4}?Ux{%fdq9XT(IHP$d$p0Qf}B>|@>R!RVBG=;`&dv5LDyc7_$^E30C)HL&|Ge^fMevRA)D zRdsurpLyrLm1U&YuS+Z(=M(>$TUrU45I|69>JexJqit*){3_xJys_6J}Kh($LblMeZi z(;9)edRR!Z-{G>ZP)R%zqkGmdP6deAKl68~AhMAe=DT$~lskATcE`;?C)%l^q~bnV z^Dpy%H#cB{a(HBfn>C8_26=XEEnz4%hrIIu7ps*1TcRp&XXlH>+JB=e%a6-~EcdFb9|^Mp|H>Hnp$z@# z&HK3y|8Z5YPzB6Ey)5YYGc@jrBH0Njt)(|5do0aepC-haEHK@Gv*=gxcDoH$SZ|Nd#QoiBj$v<+B$ zSgeV|k?txNF|b?ZkAvo~HCO_(cK--PPqIEBKZ~+L)Ub?i)Mn2^*@q%93-*EAraniJ zDCwgR4T>vh3 z0;h~x$z1{sS;|R09Y0>OO1{i{X!P=JR`A(adhCZiX>2KUji>Nc)nwW9YuvtsjW-~! z3=;-mcheE3^`1$#yL_&U_>C!e%DS5(a3#1=#q`E75m4lSpPo+YtNoSlxcrS`n%}iv2M*>EN?2dKr_Z{n8*&I*CbybtgIFdb=ET`~dpQWpBNL;3KltP2>B&g)HcR?g#Qk*s7RHMz23NgQg=b8#EOPziijgv4 zC!^6`qO3C8*aG1NG!uY~SRQu7F2x{=i2;@yTj*Qps_V|??mdC-wv*)1_WzeX?@)#Q zNy@n@P#q651?p0{yCyw?{{s~@w?o_CPl*TbWX@|Y@}Xp@181S2+o54Z%G1R zhPGa6`ahSY{g$=(wwq-AIkaTrqXW;73^!7*kas+r&3ohF*+hJUaTAT$U$ZERpxziO zCDO`K{a`8Py4W4ESF=@bm>d7)3+_*sAf~HgEb6{xi;pU!n#>NXb02Bv+9d6_w7&)3 z4`gU9h1fzB7AF6b~Jdk-ORkQJ=gUjzuTi#~~`^L0XYIfuyb!sHz=wC^q zA>F{AS>J;+O^>>$URezJIT$7cz)*qv`X1vkY2hjYRZq~e7EBKn(-zv2?2GG~M2%?> z;Q&|l`Sa%`0ceu$1OQ=(x?#36_wEpjENTd|}QoT4c;-Z?)bkFG|{>WF$dCK>7>MnTTPDZMX7mRCCUN{^_|gsZOURu)|u~ z$HblU;iYNp#>qlJqJ5hG)Nk=YFw?p{PkfJizd9qpTpZ~C@(F>qGqpsfK)kashWElW zj9WUz4R`7|oSI|4f)vl7y-3W%HsX`l5}PqxE+ z^Ha*u4nDewYJ%k_R8Q|F|MQ)iZrOCYeF|p(=e6A9LCKaK`>j7~i~T*%h2Xqp>29{S25Yh3VmUG7e`E6UP? zq@A$xAr?S~6#c*4HaIvaWP@2d+(Zht4xmX(efFRG9TiaQj5nl3&m8{pJuK2#Z#i%h zY(?gb&H)$A?cwAHhXdI<_xOJ`4&G6@+@b^bwwWnw;IDlfdo(0Vo?06LR3>jL($|~b zuUq`m0)bw&@Za)wD$RCJYP6tBV4j;&pm)5YiW&Z4}9LDx_w~$_#J(AfDE!bW_ZlOH`U2e?O zA6+f3E@CyU$+<#II#lYllcmo$ugoe{LjY`HkCItX-Ufk}h^73cgHKLN`Z#j5j6D1J zd{eum0`H|MqW@sJnrIU4y{j8$EGc>nEz^}!N2 zj5Pgzv-^SeY)merWp9e7u+zEkuU^@S>^g2MdFbr~cajwqJ*U-}r8rmNrZX0&p3$}T z-jE$&VzIrrj@ZY4I!niEIp%I`MVYq^$ng-#(Tdp!7=xCk)Um~tojlb-e=ft)g$$S# zQiT>4@~fuHuqi+PQ{s!!HF94dG}^CItbFNja+E4wxp`M|d+0>edF{-ga^swJ($BOS z%*ycK)lGY=(+@<}mNaAV*9WG;_a$Y=#`kj&yg^MI zg!9E1g<@t>iZG_9`^h^CHCx^^D!S0H_)I1uASD<=c0kS_(E>}T{Xz7yGllPr z>gm*OPa)RoiDmBPy`BfCn>yB#?k*Kx=IjO_XU{gQV*#Bi=`afFS$w)vWBSF&<5Rq{ z-YlF08|5_Z#oE{R-fT6v;t+ZR*>KKm;=N!cb#dxC_9YRM{Qy06Al1)Z0<<)1KMgYX zElhg_w#z`tV2SRP4l+|NFBE1!uAco+)A*}^@#ods(^m=^fcwDtpRiv%JyhB`Hsw64wIE23Wjd<;J5IYn8c{F z6W5Qiv61WR{t)+7?ZPjmjHGS&*#!99YXm&irbXV%iO5-)l?OSw8{D<%C%h&`yDozF z5kUtn#U|fn_W!#}s!r^GyQ|#*2r$<_D4E>1gKV3w8-o@XW|P+RW-UzWHS=UO_0naJ;{50R)45s&*jo0wXF+~#Y&CS11cx#9M(bX3)0KA0#09~;z zR$>BhJ-57v*xlc&$fQygLsY@P6Ys8EGKdpUv zJk(wPcO|B*l|=R~l{I_ztrRVUHe0qVL$*N%S;iKXt<9D#EfTVuk!37n$*#m0V=#m; zmLX%9!E@Ag-FMy3{XDv=u>=a0TKbI$pmb3X6Sd+}Yr14EmAZj3iSIp^8Lz`!0!^6&d`ZYAuapg%hlN{O2M$Me?;O#;u8KbowdjsJoGEq3 z*#hD2tw{Gpd(4KfS%tSM*iS-L7rR?xkM{kVO!Y4uKXSE?oHLAT)m+g_lPuZ_gH{Q% za)YVZyJt5jc0{{V6`*%F9&+j{uCGHLCnmmc>+b%7y86rS3hbw^vL(T#O;l4n&PeaM~8Cj-oW2Q0&ZSEdw7QLgrK)30)kYFmSidO9gW=?_+mJLSIWFA$t+N+52gm6>p38%cJP4$^s~k0#R%+T7X`mLypxoFoc8)tmodJ*Df<=wx9RDYKW^I%Fcm=U zw!p<+cq3RrWcnJ(JC^T$&arrZqQr&VFN&|#-WX?nUL`h2ioIu7!f;2=#YxnToMk*^ zaP4|YLfFacV(koFxw$5Dr{i*$fapykGN;fd*CS8Y_YM1vuzTq$^SV}-xr2y1?tpss zc=NB3ICLKbw5~Hs37niHjN&@_}04}LB6#v(od8wAX zQ_Y|fiu+)x^v5>`;;-x>3@n$q`N2CjfufghEZng??6;h3UKQI!IlnMUT+7!Ym#Nj4 z=3S{|46D*h&r^w@lk8P)02(4mMCDfcyTP~uf$9?I3S7!OHLA2dbchKb;|_>R2kpU0 z%|WMtrY?*rCy34yvivRJTk`JzsdBla6Q%q0F3)*P7?2LBpR#yoV$TXeRPJxMz_RBU zSLfavqy657_7Gk*3$O9cWAsJDQ0(Y>7i-XWqfP2iqM^U*HSU2U>CLkd)5RWrS3p*m zi8;ocbKoZzLk|?)E+*LU7rbn2(dT1EFwt5SdxYqHYd~ePPQ`BDIrDk{%g5<^ZAwSso3Y@*TyS{O6;SdYRxsE!cj*axnXX8RJxA7JZRy)iW)Y1w5ibA zOfWLJuAyh$>QsY3z1ngC>PU)b=8~FY(?l_T0weu!ehYg(m;>Q>u=f|kE9 zYiwJeV!p!AnlE#^EiZ0q26ymb3y5G9!8r4>pEz;Ctj>E}24%eX9;ZmVHcaS;W428gzJST3AM%1vfJ@ zNZA6#eFdwllGKfcCh-D-*Abr)%lqvwKz@PRAtca(f3n>HnuASybbiy|=KZ*-sHk{{ z^RGki`}EGayIg^dZ*2&yZv$s5?Q?@#ss+-q+#!v4e-iDi+cgGpA1CHhs;Brfvk2j@8Vvxz@E4eJu7vZR3=Ru*M-2iWu5*5d@pzu8{XlkB zDb`-_Q?;(M{9LbyL)$DQyGy-T-J&mSRAuhK8O~#~;3OUif51Bi!ASUHIh@>nDDg!B zF`0GP{?9#*4^r8I(-W)G9OT?hh~*eZMFY26sLX+IZJx%GFY-at8=5K0)hDPCJyGO@ z(S`b$%RP3jZ7XIrd!-2PE_7gutUqBg>R88`ZDfpBtBuY3o)%jz4}G2aC3;Gvi2yc+ z=x14e;n$&;N* zoi7Q}t&USAGC78~X9r9B<~Jxx<}HHMG>wp<;F69(Z`4e?mJ{5(kK>sq(zPAe+CCqX z(dugnPI*S~J3Wp#Q^g!CAA zrlerj6Z(gp_s!uta4IA2QSuxKuc~6&tGg&%eMOx@RRhNAP5WgA)HBYSAW80LZl7`|~C=#QIGg zf6m7O$R%mLGIsRatPm~JhQ+nluRuO{clr$X~-|Y zs{0|Kb?RMu8`Nn$0wF6PM8({oE@Rh-)!M3$JV%4}m=bQr7g=2k4Ud=sFuzGbBKep) zOm_F~K2m*H$H^Y))-Yr;$Rk2lvQ--noOU!D`G%V$g=usQo{16o4#SNI_H|Ve^pUPZ zNSgCIpFnHcBxRHfQOZkf8vP6CN1S zvueb1)srVPO0gf^Hr#|R2ik}UUh}zi{_lwiM9i-|k*8g%IX<2HvvL5jGvMBJdnM^q zZoa3E@b&2S7qSu&Y``2hf|);xv#36@G731o_@_lPhvd6j5@YUWtJpK%i9hnX{JZRx zN%MiN1kVh?%*vhZc1B#m3>l%q zo@2OlDRp<5I_!#4Jv`#1-2quqXc9HxnK*@;)k^`UD3Q@FDLS(zNn4SmU zA_c$hR9l(f{42-(^LLk>TKyr-G0Vq#Tq|($?Q%#ASpWWs(Zph|)z!EmSnd+`mAqL( zUNQ4hYaH?AzR!1G;trhgHS7N{r!(dtj^663pw@3E-yfy+U7{CBs>=pm=2PNgm}9@y zv}`zURvE{M<$gvSjQQdXNTo~|z_(AC8=UT2)Uo<_h=x-%$3Ze6nj+68GD zo7!U`uHpNW=BsW^#qJpyu=|qy;Zh8?1bU=bSZ=0iB;MTVXmy>FkYRCmX~A5D(Hj{| zWGiMNVkQfaK%}d0EoNaUgYT4~oddM_MCf9fIdr>A$q?VEJkNP8!BHrH^q%TfL36`$ z>BSRe`I!?k9$K~B!~UP@;Bg&~lci;TA`15E@?TKLG=o_{BP^CsJj;2>=o4W;GM(C&q=j9CRNaEA*Y|$E_lSq&!>8mwDD7-eI&J8 z$h8J5WpA283?4R@0)J4e>7x-xn*WGLt|{Q;UYoW2=qj9OmsWo2y%sSyT&N1HEE9G+ z3MD(xW(Czh{|&GZMje(ng4Rz@u!MVt`5Vd9|&lnlDM9pkag* zISRURu0>HUfKmcq>vta|nA#oYDFu*wb?mBiH|$eK2PVG={b+cYA8@t=-@a{y(FYGc z=a*<~iJL37ZP1Xis^U4CIx|?O4N+Caed->G23`iu7Dt8T8C;ZYPlquy+xEB?&okXe zra(DraG9FluN*P z&BujW%=m&G-z4uoz$Qq&(@t!d-j8~#Re?M3R)RQ;J~AHE^_2@fgx8dk-S6`D+`+Hz zJ6)dF^Ihv>Lw>DRdQ^lt5^HG1^c^ltLe4OK_ULun zT6mbchd^IE-mg#eS~vTK6+^vNi$`Xy$66|Wf~=sx%}T1qqKBrUWiQ1({mJbLzT8|B zuu|-|XuZ?pf9H4iE~xu#X-LBq?L{jvZTkR;Z>O!bK4Hi&mA1Q#PZ$>3={wH;GA7A>YX{0*F#g+J-xR#IezTBdGv>T(HEiRTW~u* z*4xkCegqbk+_{(v3A3#*=3XHL{h_~BUux1b)35d!XI9h~J0B&V01Lj)CFj-@T7w`+ zqho}&#Io6w=iNWfF(GFXuY4)<4*Zr1A4Zo+(QMmO(N!Hye@`5akZD*NJVBoBgcPYY zE-6?VTn>HVANT^xY?#eUwvy%ZLs31+; zPe2bWo?O3GS^kmHnxjwDI$*ZNz%QjG!cpbxpi?NbpkDf3%o)bCAX|r*H&;bsZQlsG zDmf7I7Q5@YwUq_xHZ5hw80zYF)os76ppvu~G2H0P1VoJliyuKdHTJPaU_nlz5U|5W|!Gy_vKdo?l7@@hC0F10ZvMCd+pxd2DQhkPxdO~OYlTENh@WHFz*V&`??MmQRdxO{J*Hkt;Q1V;>++xW!npA zufUwx+EaE8M^Eh-_J{+B7VMtQI+I@d|&a<#4K_tm=V(2KmDA7lW4+`K5U<+0wvz z;dR&7!9aEeXLi?-B>{9nx^( zLyUexe(4$DsPpx7#jBGqhsI9*73TC6HV}0O1QA}R<$oc#Grx`pz$U}*jqDGCQJ9>r zv>Rg{N7*HK)|xw`zD4P7iq)gfq4@TlZg##2i#p4aM?aWexRhP_O^o6QwWq~rm?a|x zFDHMf9}ZX~_7d&$;?xL9HrlKT15OEBX^M6Q2QYTtJB}!S_uv&v`hgg`(}Smm*el?` z`j84&l?+pKbyoY1R}Vkudqy&j(0pYM*XaL@AM4-~qda~ESp7@m^IcRj$` z{~G-R4?xy~A$4XnR*H!s<*p6NS$q6vFT zDO>5w8=EJ99 z^VfV~Jagf6OCxOQMn=O(C&8;!-p_7yMDtVI6;lUcW&I~t?9hT`ua69wW1u1d|0OcJ3MK6VoTE~eCb=N;n5W*N`Y9!F* zZJ~0-69EdzeRp##0X|5&Oo9emIyyR5(w95zUEBIcz3s&*J*2wotXH}IfF|DMzwL2;vky2h&5vpj zecL~wZ=O^?X^p-3vvY4f(gQP&*cfqAaR#%u*KS{I64ChT)$mooIctec1tYmDhFhj- zG{l!HWO1THZqi^b*V?pWyK!zv!GLHs>o_ERv&g6 z@p9LREEENcfP4uss4~eUw3LHWiO{`XPu^Ig8xsQJQ$Zou_+WQ9@ z)sKMhFbK`hC-+*-2I?kEUb54=J#nRZ*6*!5K z5@=TO*u|TQvcQNendVp+_S}52XR*8X7o_xkS&9GaOKU#%W34b4R8_Xf=#^fx&V}Kq z^Nj_M&M~t*T56Xp8k^0pi^hA<#6#9QY{u_%TlXSVZWi9U4=8`PX-EMO7FLfgaQn8P z{gUkw2%z^ziUK@M9;_b=3*ITxJ%Q29)we45sKOvP=AjJ2_m~z9yF%s@3gD<)eV9Sr zntw~}|7t;Bp4^vtuZ&UqUil@fYx2c++n$<9+RIpXxY>s~?SXuT3)}JSatiJ8O*%bk zRe~l+JEC+;q&rgK0QDgVt_&LWos{!+!_8O+zcc#>^SOA0zY>49`CblNb-_$@n==0N zB*}h~(%d~!b*e1WZPf6ExPGdAeYpcomH)Q(V6;PPx;M?adv|+5;3RGa9{B2W-wwa| z8O}ze>?b3gE1~DY*1*o4PhR3Z(b)AUJ6b1VS_n`6+HjK$8pZ z4$)kaH*I~J(<;^1nE5r+i#(rEKefJ_Fw#=s6rxAWQ0s*X85}f2s(HS8i z|BcHa{)NlH1w>HWg_VZtqXbc;%NllsDY**(XxWu+6x@7rZMTx4DyoQrUheDW6ZhhC z${OB$-6hr@WYu;MM%uz{Js9vl5=;Ovg{C>I1TaGqv9n1Axf~ zeC&iuu$6wUjmvC_@LM{IA+{!rgd1(Pz9X;a*M%C@P%Z{-aA!447jA28ZIV4F@}TJa z^{KScMqi`tUE8bQ3@aBCXU)$7HMc^qRkVN;i*bN^+at^12Tl zajxGCpp!+PPSvh-OZC(|`L;z9dLT3^w6&z4>Btnm-d&khJHL3L3^*Ct;e;4^1QxI$ z`QzTV8ymV8S6b9xyQqK|7`u%hGb&e~MiZ)$<9U+YV|k0G8WU$%+7}BNd_i+NYb5KT z<00=g@k-MX$*r5J;w^;*_g!#P;*tQomJvcq{}y? zOHp<3D}zA51C69Pw0ozzfW{}di|bj_?ljF;`WmP=Exg{TReVtHi_lVgz0}P&)HV&i zvf%3B3+*EufkFn_DNaHR?OM_lw24#3Iwj;_AM$UeNz-O&kE)EJzHNQOu!3Oe*X>@mTVvcmSpnq-is#CHDvM=`NaEe$onpVW)FA>RKZ znLy~{nKX50B?c#DSWXSop!MXiA}Z4ysw!P31zFOA8|wxz0-AhaPWp_tcB&JWD8CXr z>??vY0*fCN?-D(TS7`0~G?H2E9;p3HK;e<2!6-?skmM~Q?x$VZJ^x~&-jT**O!2yi zELtexjEmc$+P)axG(1@}nw(y?(+j1~0yn|?53P4M`k!3X(em)8>jkan)HOp3H+_PZ z+l*YaHZeV89jMJy=vAOA=98gIqRXd>mI$qdEvGqxh3fptf&vfxE2g<*6YkooTEtcm zWe?%gzDHr=l(&+Vj*!fi&^j4crpbrFNCE4A85xcu^o9fwA{4vy-Fu!Sh#}kS8++&O z<5Moggfp%b-<`Sb;E-d#y~Xcq^+^v-*@@zj0DXqXM=#(R9CL6C4x9#+9a7JviXB6p zIcf+>&lsPRSURrmU>YdLqLsdGA6he|v&v-@L>Y<}jfLYK0EyotW{$47nPWCkkmk-? zQV=Xfn)kwWDYVvGD+SAqZ>4A;CnlslWE{alg|fH z@_L9po?B8|%Zunpnc&T$>$Y$a^!g7JY{oK~I152XyCUvoDDhKBSJvEmB*mOUp^#uH z4C1{g9SfbZ37q%c-;m|fD)|XDC*MWy&@S;LjvWquw!nn+$QquZb7)Z?cbC!ZhW;W+ zt^ifwwKW1E3MYDP-ZYR%HDNMGE0TOp1qTx-{x)Xmc%S$+;5Q1bz^ zg(mq*8)a$fV(kM0tEXt>S;-Du*}h9rrq`sa24! zs3ku?LCuo66}~OEDYUe9tu9tCOp8uDQCzz2jyN#rmIwrJF~c>wP86y1OM8 zo*))CIhrH7^o0<4`s+JhihUfO12aLb=IM#DOGe4zrX(@Y|f)@*tcjxe|Yn*-Kc?0W%sgEMhB}$7r7$gHNFssuI9*L zEAtRi_si&5SaT?@gRc1x1-N0PI4KqLQdt;M_KBtdZ z#r<8diRJCLS8+oi__pTj&~ZIBE2Cs`vQ|Wo&GLyLB4Ue6%WvIg+$UMWdh4$(BDrV` zq2<3{D}!Pl6f$cwzLBbIx6%@JlpW}ZpIJNAH`ljEP0qi3+>mT)Jj*5gLZ_>x9J5@@ zICHXo68Vvhk};3Rqt<|=Fb!IiMln#6^PLxdHnUKLC9gvNxsSn!O#O9XdxfB;RzQs2jJ)oZh9q{l-fI?JU6~2wm2d^vvjRT>#7%SyhBY) z2|^<9GRcB<6DIQfX7HX&O|R~B)z^I>I_Xtgk9KH5fq@|$o`g<3dwe$GUmTEGE6x_! zV5JiSdaG|cBEfoPe-O1fVf>jkm0!!3FioDBLx=XOy?P9vtcVMtkU zAY$14Bkj%ruCTh+fkrG06wqc!xLjI8RN}9R&nGCa1(svy9XTDUN8eQ&=zW37c1X=p zp1I@8bPcpC)7^f(!A~t;tSa*OjTmO*J=fJtiy&D z7&KJ`ZZP!K>7~zgTZ&txMXiVg#AFZo{q|}=5P7sNvaWKrh|G0zzr8V^AKs)Nh4Dd-m=rRizFujy(3%v|M1nj>39$41 z#a#O9bL2pz96va~BS2ICn5!ofp!wZ@+mS?kYiiv>SR+KtA?|Xb$wJ#vhz)I<)@|yn z>5?g8O?#=W2f^;A?Jon=qw(H0Z}bCMKk?WeCB5vdf7$U3-;itia)IeK+={cZB=(}h zOwOriQ(TV^F@1#7NOb}ShIYRroMdQsXb?*_eCbjQ1f`dKFiN@xnOHB8+KP_gk`>ZR ztVfTv-wG+XnARrWMo9>uTX#|b{GKE3%6AF;ST@KS&8P0QLo1<0({B)M)jeNE(C$~ zLPG=Lif&yuPG>mc7)$paRe1MZo{bVgM|L5o425cxpL(Z*OvUrq}Lz*S?wQ2%J-d{`jo7HAG{J#}8k`e*Bc?CnH!x z<})jG*x!AfNuvX}lxY19BT_G!V;Y7pkz;IzBWMeBxsmnBHSz+>+K$b6&vF!P5wXiv z+3n(mG&Nt|kpSq;vqLZ<%U2>0_hNSPymkr^jSk!!=;U~`Hr*s)GP`k;)I(vkdjlfx z{)Y38zo1^S!ZdtL98dDxWUvlc);fITa6poBYz}Z`2|XE6TkDwr^Ai=G4jRBo3&!< z6LX*SY@#qvxm+hu+Jg;h9hIo_*Ee)`Xd-t(lTp)mMfDx-fwX{52bP?WuP? zu-2l(P^=lTM0R~a30%DtLL@IBkTUxi&iow)w^Ln@OTJ}=tnGfHUA^J0fta_M_-M1m zy67(1@M_aHCGBW^hb#NUTfdvLrVdr^Ag*mGfJK|yu-dNp*TG%8n6F$scjmgLN5B&E zR~(ZeBh!d=naIWqE1j|irQ>EJ1$bXzPOw4b6>OT1u*&jv$AkueTR{$R>SQj`!QW}-OifKTD@V^z zn2V3;D=N$-K?zvv8=(2FD|FHG(P5K;EcG7#tPQp{lT|8%38%C}Y`x6{!w%8L$FP)WFC`$=21{Z8-()((G zzVKggH91i}N;kmwfaF?|-Q3ofNOLx$?v8qqGWdA^YU{n)#Kx%I<-wNWsi$q7PNdvb z|Ah2}$~FWe!abNab29Nc1P;9H1t*mQMIo{oOi>q=gG<+xnLJJR;Tkp>?>Ex2AGR%p*96Nif7qDX9P- z_LP$=mpQ&}i-q9N__Fca*({dd7lehly-IrCBirs-0(G^K)qvoCsLzj4);I8Uh^i}O zB&C{}F}g!zZvO;F(XQ($x4!%QzOc_qItpeZ*x}h}~E6|EK=~0Cwv$K)}oe zRD-|6`8!*?Y#tb5=d#~_U*pb)U*E~^{B1wu2Y%O05#e5)|99bCrYzE*F}v~Gu@LFs zr_LE{&r93r3a&bGHfzul=AGA!-;gY{kI_xK^1*5VcZq)&d(XYb!Evrg=4a8={}?}T zX4Ki#?yn<1>`GZ~I~zpKa+UMzSAG6`w`g8yg^Q);+@+iX}Ovw}wyR$xA-#m8(Qvja7Q7p!<%o(N7bj zWGlF8>B^(P=W{ZFrR-ymBny{1`B*{Vqk!?K1Or>;0t7qfO(`|Sg&8j-u&xjK6S+c} zpT$tu|6CW|QM#TeRU z+E(;V4HaM1r{nL_LW-1^#yG05zBB*KXT3XD_Tz)BKQ=v!i4mAA%J_#bU-N9&4YQKX zJx)ENk*JY-oY&r=!$8VKwtiqCuuM@K4BIl39n=Ez^@f+c(tv>h6`(3e)3)x~TpLZ$ z7YsPJ9pBg2_ZvC;s)4wj$`7FFK}{tS@B3Mh=UiNi-Jxpni8tO0SE2O-t)n9N-0&!? z9d9SKZIDftEX&eZKEccAVU^&nVRYiZiDDxkZt+k-_vdKNSu*1 zIy{7+M;=o+U%8OUtg-y#HgHaXtZ>&vhd<@i99m%}&Fc`lrrkj*77vV%0hqb)u}e*K zUxhLFVPDFo%va7drLdhG2InyHI=UDL=PHeJvDV6Mu)(7q~fy zg`#uCw>!)?Pcr-PHQxY9APDMB_7FR$y8m;h9-qGd?*#;kA~0Fr zYm3bY`m{z6)yTS4DCGNTdV^4HM8Y;okv@-A`0-Pj1N7TJz}I0h+)YzrP=Bl>tD>|H z?_J<3sNRjV!lpo^?7xui%8)iZ9s`79<8ddWV5RXboquG7} zA|hJoGaGiza)$rm}X@D_x%WX7~-k;n^ZT|Tlkyn1-?stx}XwVuL5rql? z9!Pw7d4*Y(+r=-YHp~;;|MmIL<@h5XhJgWm!(LI5y_?vt_n({S9Tk5@V41N`w^`|B z)bCp|^=CQq<~Z;w{c+ylpWE`GI3u<}u zIlH+5J2D=w-v;XHwFr6sI}zFYFU#^6)aS>70x0_5Giq`t4-fO_*w%g`ACY<8|GU*L P@bBXJE9VN&+J^rxj}NS2 literal 0 HcmV?d00001 diff --git a/windows/deploy/images/sccm-client.PNG b/windows/deploy/images/sccm-client.PNG new file mode 100644 index 0000000000000000000000000000000000000000..45e0ad88837a00b6f55b2cb41ba60e6577f2bce6 GIT binary patch literal 99265 zcmV)=K!m@EP)Px#1ZP1_K>z@;j|==^1poj532;bRa{vGi!vFvd!vV){sAK>D|D{PpK~#8N?0p4* z9LJTm!<-Avb;0|(psy*dh)6+6Sn^A&fjAHYqEc8M zlak7~6j#ImUgJ_!PQ;`LZbcOc1DM|?Oi5)z!xxoTOF>x#a>BS;R4EF}BS2J2LJ294 zq@=8>MoPm8+(SlXHR4CpPy%^GDdZQFClEKTU|uv&ZoV8iZpF+yz&sX|L9UZtX;o5x zGtULcXQ2b;Sy4f-Tn3r>vF?;>WJe_r@(YnxNmUA{k&-YFLORe#k%K}-(p)uv#$ht^Xxm06(quS!EdUzF_rr;=;ZaY} zPZgk_(W|dcr00ck%x}M65Yof>>RB4#N4VjxE@=5w*G6~wsz1P%FC)Akjr8a|hd_O} zem-P|xf-D5AWRw3`zFs%_34AUBfhPFP034_1Ng(Hh4&*UJqMZb-z3<&(o~&s^KRR& zFKjTJw*Ly?rtL=~odRz7^nS_2@ySGfvv_@w_KaQuSXYAF)1EU>3LB6J%0m`!J=kYu z`U_(#(2ce;uVs}{g}t|7{NZdE-ZzC3aF-JBB_bbb@oME*TV2C~$0!(w;SsO6yh?x5 zy(|=!^00|tSQ?Td@FOA;sg`BSmdm6`lcYt97V?d6d_%4&MdZAqu;dn3OHN5ba*CsJ zwy;X_N)Q?3gD3!DBl1g#YRLnc%PWmYF2HL(2nvZxVHp&}@OqETlawK2L?JT+6hR3j zBNf%PQkA?Qp;&_>HeEMuB~Ixm0qD>2vD`VuRnP&5EglxhS5Y`6#Xw0_Ev`(1 zgv_9zvc{kSzx82q&}5~7Oy*TPcwZb1XMr-q|4QK*x{VPO{xt*h>r~u)3+Tv&&)tSA z;PY^iAllZ+?%`@f}ZZ59?lPc8B9Ec^XVtkzYql9 z{&wZ~(r8j&ubEC*&xs(v#xQyH+6a*r-+5m7iu7mN7`DxrdXk5}C{JIWcy-QSPK^^X z&x3H&41kx0bu)Ui`V7`7fv~xm+u{5J2@m92Ypcf~ctDn<1SvNo6PMMj; zV-~L++~@OJK%X0*udmHGum*Wh96W+Z5g=aVLTG*l-gArPGq$VjLL_er>eg@R<2hm%rXm68gOl!^%AW}plNhT+c^RD#e! zvCgbj0Sb{@TrPRV6(E6?C{PIOGOS<$2}1-Kmdq2R&q09;ki`;`OUeoX6>_?uOitt! zgG_}$vJyH=#o0T3n_>x?L(B})AATlD3MxMXj(5G{JLli&REkxLRi)h8n-m=Tm#R`uZCA$Av~{+dvN(|Ju-TB{oFce zeh1fKD>q2?<>IxF5d^24a&A(SpOZ@w_>Pmu2{ULW{%{p#So&n{^LE*^b%$((p8@W-?*(?t=54!x zow6DJo3`#$Y}~p_v3@gTZQ3TQH*ArW>o&>eo%>|pk&|-#Od$vxms&y@?C_ljnm&6L zTmk%G+!Bz`(khTxXEv@F9rG`5x>bJu+ds<*kvH-ESo+S7Qpv60@jRKVL#7^OgmLm{%4*O!&mJ@_O)uELu`Vrw!e+wDZ#sg) zT4aQEbk1AG^{Q&5fs-2WnT)u@Imr3;SV1uFB6$@f{md)Kub{XW%%*>csHZ#)(caStY z8>jo(@cYNVyjc=RxVlCp6sw0`ID=RNq|9DBkhxO0l~vbCIT7)}x<%{tTE-bjT*I*j z3Bj#0T8Decc}1vIa7ig)?lZzTd2AAy;V%bH+%g5oEcY5#C8Z)-D`6;#SKgNq5uyg+ zGjI{Pjlu#(-vGi{_~U3k9Hhm?L-XLoc}?NzUxBh4@VOc{4d<3E9TliM#KrQPR$jUz zoLf%ybJEoGY&Zu_IKO@x=_nI!T%R02GRn{-g5tWc_0__0M?AJG1EZTtw3iUTtF}FY ze)e}J>@&b`SGLU);pV|ZkbXTq!96XWmF?X7Wjio!BfVZ41cVQg;ig6KnOOMTGvj1J z!})ZQneQ|-Q69&w$?`gWX>j$Qp;rslX$IVIuN1F^j7z~^KD2MQoJ}LJ{s9~ZxEjUW zBaHR)rI#klO(#7})B0=*zPL8cR{}?dK4avq(t)cJ3n%}9={oo7@0aZY`E67#xW5Y6 z{07426KR{aZ{rxhs(5`CuM^Ur`|F45c%33B4_UnRV4qb8{cSi}IJ3rmXiXBd z((;hx7nQ=8iOX|iCMc=l-+9oS`i6uwoJ+{L3rVRzAD6mwF=@bWP%sc70s~N_OzO_3 z;O3`L7x3RXxYZ+kE#jsSw?-l;)cfP@dKaUiBsJnnGgp#nW+q4bJs02X^dk2EJ1kE92 z&hkZ%m^tLknQ1eJ4y1!&NYHM(>tUTuBcY1cT);y(hlgS-QGh(%spTXrIEw0Ij<`2)?!po;GzqU+Gpy@O& z1y5&<(Ku{Se*OK3jjPYc`K@`RpFfXTyfxuGv!;+GXjd2Pv(h#Qo00^`j~dvUpcIz` z!`V0_YEjr!v6_a9#vBwE)}6_L2&)!JS~I!#E^%ypk084ZXDZe!#%BX}D=AoJ#KuSQeRK-SECJO@V_T z^JN>9(T_3yO*$8YBgaWk(`J0?7Qb0$-cuhew+U~;y5Tcm{S^K*{74I925kPeX;b%F z9{Abk!Sb*k(2eP+JHjzu)NxOHHZCaJgEh{~y+2&j(6T`;iy9T28c?Dgx!JhOS7^=pL#@XNY)chWgB? zfAdlR&jkfS|40Xw?KOEaSUo6;k z)8XXN(XY|1r(gC(Hc$3h(Ot&_rpbIOys~7<^uyG5$IlnXz$?F%>B{m!!y=q5KY!Dm zzu6A?+txRRr4F=yIej?G$NXD=zwD-9^5?= zg5hdvXpIQbbqw};OcIHth9~(djiBF(!j6x{B~n!_ zmEczz&dG}w+9VQzV_b_LtEw&Xm&97{Z>DRP8yCC0y$frWWymL@KF>rznHe zNrW?Zk?JJEbAHP(%?6UJ^XI@g8HO~Af0k}>Mo;AEu{=3&C{K#ZK+516uSI7X4NFa} zA&ve&&bC>?#=U9zB|LN_V#t{uIKq=E4GGhkG(SN@m;#ViOX8H6F${^Eg8SIw`gwxf zqOjb4=R@eM*}*%5CLRU}8HriAnw1Dd3_5@+rM3#?IG7`cjvSIBCl1Q7(+6b#{=Kqe z^KRL?X0vQux<;l?orOUH4;wHBr7`R|SeSv+fP)5?b#Pe*2MP{$;IFuz#{dmC%3uX% z=i|iDft|ApD$6kjTrivg%Rr)O!n0fqYr>~@b{TRV*_=sKAWxhLB$!8@hRLhW4k8YT zB|Aoz&nqKgWj2P*FB>Lxpz$G(11pzJQhrc8KN{uPmv@tY>*l1Vc|^n4e535pE7Pfj z?$ww;So=JfFQ{JSP)D48=aM}BR)YiA%4%zfI0Vy8&qEb-tNO`sPb-IOz?nP}_KiE! zLO)~bgHuPSBl?-Jo*XOJ$}z;yAI3@BuOH2`@wd;!-uq$wtRDTaVT`=S;ng30Y4<=B zU|A~gyeqZS{WmO4nzxUGWxYTW_-6lVIAbN3d1l#SlBA=Gfjsn zyOBxxMqVb;bUuCa%a*Zm9FsTC-^OKGd9QU-^@lv*H{JO>nKwQ|`)v8# z)ZOV%7>?!1;`M=BuU=#L>xKf)G)vH~9=HSzBq$b*D?uX>BDu1ptg0%~2s|~>4@=hS zK{U7&(axTcpxHV>SfWPaRb5@JWQ^(YGg}8vC;w7GAY10gslT=K*|^oGHO815I+uL$31GC=_)R%fRaG`5SD!G z!g-LX^9=wJP=ZE~TJZ{Z(6Qqua%9&y(A26g`~$hmWz zRU=I^1dX$2JPbw2mwu;Py66;?=+0z1&z!JlDBAZRF5a;+>Y6MlOYn)&kv zE*(TE4`3Q53@bb;A}SMS0lh)kgk`##FATOE!1S#mpkZ`yG_ZqS3`RywujVa0^UJ}P z;Z+XT?mNpmxl~Qd>B@2Ps%0?w^h3j_UQFIBL9%bBO&A9%*Sj||Y&z-CWpi#m5RPSr zPH5!CpxHqp;d8Rj z3bOt3oqJEm*588qaMIU$hE5j#Y#)qcbmP=BhIic3>lw>Nqdz6(Fm(AwD+~jbeOC+} zYAw1E$|s>lzleM~gjkJOt_5ek_R_QRm=`yHw)`x+>YsXKc}nvYxHa57_g4B z?rNWdGO#b9fy^uKS=asT*Onu#e7LuIVcpaAf_su?>V`5bkzks(p4#@$d~#W@g)NJ} z{F=6HEBI}6VqtWn1dqQ}o+-1Ik#!q&noG$&JvEkX>NevWf2Pm&%`)gScI%Pzj5Ivc zryLKOZ*@0dcL6&Rm&ly2IW5(uy9qu*p1{Lfj_u|R!cond_H-PAig7v`1np=Xu> zLnNL737XM^DL=t-5mt{z|JrXO9-(y`NY?}NY5G1LUyx^g_AD>U>H^`ZV?UzIn<*#5 zP&Vrp%gb^bVwBLlYdwNH>k$2|Tu%o!-#%!0m@dnQG_?JiI;w5dk-UqN=J&!Em8aSSO1}mXgUDX=nhSNuf_f8d21l7}`Fezd;5WPYECh z9ZvyWxp9}=wJs_%7p{_!+Wk%(biyQY497pZk)ZK(`eN`5KS7%?VL~QB16e7qlChKK zs$r9?MTefm;2cj#G?tJ^6eKOd88H})kva%XN{?R8$zT887UZnI+;Mvs>G1D$%jlAzlLs9;g4v>G%ht*HBjjlGdPv&=52`V`h%( z=aKx@jmsSM7=1f?rXSWeAJ|p`=MXgW(e8wlR3xRO5+G44kIS9+Hq*h46(tlyhmG=w z5`2SSFDO3r03#9lsX&Kb6s?xs+xN?RKQ}?%@u_8U%?J0%w|*Frt+^nsA>eeKj2Sl+ z1AsuDc?+upg?1nuAkE;zL4j{2`L>bwI*=iZ8dw-SNzgcGD4Afs5Z)L8Mg}`0m8J3= z<3s(K9tU5}Nbs$$(^)y;8OFX5<<%NnDpSFM&9AwQvYX)0Krsm7S$uqz=tH`bnqLs`Sb%Md2SHHnS8AgAUY2;FlOKi9wQ1=Ad z^iBTFU{5*BvoRXtY_PbR&7jucH0h`gkv3;hyn&nP+jLA>Xe^LOP%nHwYCJfw0|n!d zoR#XETt}yxPe)eN8azn1nqUWDj9sfk8fu)WV45VzN&;ARUGG(Qk)2=CBb%f^x{p;20 zmihs>57rzm#QI2oJ|oKZo|Op)`Ai?_sv!)0(Ty`?T4#_a*3UTlY$f?lKcZ#Ocs8$) zgEAY^V#;Tqr^eUz!hE1EqOam-U8r9r08Tx!pnjE6t$UEG z`f$pnzm0CH(4X+dh9L)VclG1cE!B~^_v)4>+th6%-_%F;Ej8|pEy+I1L_HW?AP(Cy z>l<~2I>+CfK}0aqPeCTjuH+6-J+VzX>9LG_!NeCcIwObvlVu4x`Jlc{eK2Wiz0vrr zqn_Ti9wEFTVCzG)-%X;%TIkfFzwOwjrxp{h6V4b3#${; zzRlQU{EaNP{!s?=srhGGyyx>rKAdMty)!@VSPMPq48D`MEM9x0)veb9PW{aiw5tpD zS;aU*1(L&Mia`V|5{XDO8r7@+p0i+}gnPbXxaWzC4E|%v0gddxrPfMW{BUw zdjRp7?+sgaf^3m^fuPxCja;_q1Mf>hab1#90`gc0rR76`dirBo#5a3pXV8+)H6iyu z+8UiV1~k5XN?nfm{!);%CUo!_|9RY6Ycng@KOCSdN^`lWVTI z2F3sfK89sD3`EZ0riO|mg9DEpcoiIs`0QEHxhD?KtO{3Sd~jg4h7AW%2OR9wxJj33 zi4F|`T>^q|tXK0FuawVz;Y)Dm;D|Jw0n~zns2M0B3;8wo{B6>qY*StX9Vj8Y7$lk$ zKewntm;5k{XYkl1ZN|;$!IZ~Mn|c9AO86~5H42@Ws=m&9goP7N8);r~zcYHvudFKb^z6V<(pHVZAv%#xjWpvAOYTl4vZ|RqLzWUq& z8Wd`Dsea&w-;8PPdDw)n6?ADnSF%3XFD)$kuL&RzclYoSq)5i+`cOf zMmKsO6Rz5>eEOkGt&2!6ji3?C2V_{i*ff-wXk7DRh0m0G2d?|UPi6S1u{v&2pIk;i zZO$Tj;L%oyS1a?Eu9DvU2g}KvVi@+OAK|m*Ny*o|i*@rIa?QIxsC{;u4&Aj6)Ao=2 z`k#wUn`yA#v#qi3pdPD`&VnVYq)-26F-GRQ`e)tb*vB@KlV7g&f_0e$nZMZ%Nk*t& z-M0yyux*imvVVvoKA$1er@r{&i@M-g!!&i)8tqQ&wdRA*+RU)B4BBq+EZ8jVSim%x zb{sPP=gZ&JWyq$y@Pm6!Q6=Kk%RhbU|H(D)F?w0GeydY{w*T}QTs}|gQ{`&CVS8nt zV8$2LEw)e7zFE&u58%!)1n+G-r@Lu)49D=uGvqP7QrId_cI_n}|JTppxqU!B^s#@@ zrQ^HM=0Ah+j9m-2iG1{*{z(oUJELXD;sB<#H&@rlHy78)m*Mv0^D86~D$;aF(9HO6@vQZ0!@N8 z@#O`YAr53A8V%tn2wJTq(ZN<#H%MuDN_zKuUhcfNo!oU_N4fj{Zt~~bAD8K~H|U3_ zV?6943FX9T!0@BhAUpcuwkV96805y4z@_RgNI_w_RAHb=LJ2%v#GH0=UddSsWJ?bL zK?lf#KrHIH7V$c>N(+v1zZY-LeCnDi|{cquN>+?jVJAwcMdb7xTAq z>u#5z5hPosJSN}$CK}x%+8NUTsi-FT;w)PTWh>KEdR<(d!9ly`q z^jQ<6#S<{5jX}O21pteG*s0vKptpdxP~6mXT?^79)2t* zvZvro9}T67sxuS}mL zivuyQ49j$wUL~#(7$<-F%N=sy$Z2CNpxnlQs?pCnkQhv!J{RSrfnP5Rm#mY$2TrIi zD65(T8s%pmt)W1pf%&y0fn{J>Xke7Vu%a7{8|sX4cps)L=$*18$ldT zXgu=04y0 zPlk8v1j|V@pe~v{CakB_Hw|4bnKtE%x;p2KsJ>B0Tz}nC{Xz!o74<}YG0$qKGJnu* zzo&YVMJe~ed#{;rbG4!U3`%)Pqwrk>3kG(NK$Eid)X@=~8nL(714tf8o+ zg?h7PXI!{>Bm{K;P{IT`l~v}=9%sDFjB*A+Q&6VqJM1&EGdTQBBX~dR^EbZpLv17c z{7QatrF;|jci-PkpEaKu((E6o1 zq0wxJ0o#GT2mpZ~abSC{Mq4qnc&M8&Do44)OjozR7^yf4j>ojGLojgO@cj*b;*U0#(Gv$dVyJ|jkxgupkPATdF-RK zoT!_t*KLts+<3FuhY7v1-SV(3K0~%2>Y4|Gu^qF{(Vx$Yb(k+^b$JftkRX+?jv_qA z8yYX{1FN(ylXSs2Vp~DJD7Td3KKH;OJnK10H`^>vHfCF3TlxNv{!ja;V*Dogi}3jZ z-}>H9WCO-)mVqxj1`K{q`xR|}D8J@U%g=g`u?Tv%gp&1$WuQNQGY&uXV`g!oFQ=X< zP)6pNZJ*DRZI^u~Wir3fNrb#TXCy#o#*Dv7vUpE& zMmNr)F)qV09>+32L1Vw6hl8Nc;EKO)!=}l%cIC=XhZo7OMjn#C3|}ul9lcrpcVVsk z=kPrFa^D>J#N-XKWBo}f$T$5l^JMeIG4HX*+o2zfC^>7App}836~cfi0%@5#bBT6J z?Cf;;g&yKzXijxZq)q$&O3of`-b?;|ZzuWVZLMYf*0UJUD?o10k%8>cAmAXzB?6_D z?7Vs4z8R3q(7Dm5O`=0AC@M#W@EgWA30eaRO>)M+dJX_kI1MLu=4y=N%D*TScIZsG zY~FiD7Oy)X%Qx(mRhxE!0OhICRmV6acy%Ct4LpM1Y)xCgWf$@oO(SR}$S?FHxfrlc z<(8`9$N`9h%;~&hIa5%A`#POP(n0tf28HvQ zk80?z6pTElyi`sV*UB}YnIP}^>?Zl(=ZoZ9KRYZZ%SG}FFrXY0S+PT8>i8A%)$dN1 zU$i_R-3Cn5PM-vcGm>iDX@xYMh&8a7Uy?Lyys)f0_Z^Yn{pmJ5i=>h?cQ2Y692bEa zK1`D&saD!`=!9ojr3NMq4<%)IzG?vRs(CQRi^-c$mM%A;K})0Ako8k%3*`5Ix*de( zqd^23XF-@sCCkjd>c}j6;IXKN<W78|PyL}Rb`;zXN&>*QGyIkYPaQf59kcD;@ax~p z&b^1Bk3u!rD4Pb%>6{|y=7QuDlxq9pJ;U41gL$J~*(oty>Vm(S4haXoyHd~^jHfj)s`iZ6-2^wn>mj)h^Yos-;xawUdE&^ODW1PTw2 zhAjQ_P+v^>LaIN8r9RH&7UP;!`K&9{hZ=auGxN`SNq;`0+`=-|J3D(_V~%#kevn7& zQXYSwIFqlPHUA8;GjILP+x~R@u?=gRV;zQ@A!yV~ojla6r5^5dHosWO4EqK8GaPlv zc$S>`!8Tz?4@sKQEoTM3_O0(b_nfhyVO}ragF$@?^@T=l0qQ^NE$al^8UJj#S&vw6 zxQv7CkM)^#nS_?V+1}Yc`AkSI*q+X!zhxZOOV%~kZ9dyl81KgTPwBYAeZX#54US(@9A_`nP}n*UxC#Sw7DEGf#iJ=OJ0Vd@a)Ciyroy zF>Ui)&5(z>#X89)y{uQvM_zG->QD(<=N^0vI?l3xB6-@r`+(eX>)*8hpk7a--(h;} z7f4$8yhPB_ITF!ak1Wq@GB|*fv=gsXyk4h7s!`%geUN`bIfy@9gK9uC63N zy5m5&dp|u$$r<~(T-YugSNVKc)=&J)XS5CL3IK$ErN|PrOM&(8^+%SVU0nzyXy{`t zLF2N-h(prMQpT|EHREgd-Iy`ANO z=1)ntzGJ0BkLRRgj}gEyV5oHJF+_Uw8!1l>94)KX?LubG!I+}49MaC8OCgn@p-?n( zNuuf-&P#1wo!}xlF#dM#Jt{{|7RiC5`Lg%WS=oCyN4D-iAv=%c$i5TBvSIfrS-f_i zEM31>R&3lWD>v+tQ+cJ{DU@JHshS$$$Fq6AZZnrSlAuNPKYmF>@YQ4 zUYamf@2`2syXEiq+^6!nJm+V>{H_cfR)n(*KzuFzUDzs#cDj;%wl%8ns?gpI?%8~xH0>CtN-o_`cNH~yRvB#HmQkAEhs)^3!4 z|J;A;J~a}&8l->!LoHn6w-L7{N{Hz!x)VsJjgHG zJLJ%?R)Xdb5c@d-OF%daVGe^Z?Uyg7w(i_7U%mEwu0hNh92%`dMvj(lz4|NRJ$5P= z^#t_@<$K4wKcED6(9q}Pp8FqBJrXp&fBN$qwa@?Y&weF)K>YZ7&;BDC?_KX>{C8_z zrs4eHqmQ9pvOT;LZFqi%~>|+hR^?hzWg;j6ZWm|kS9BJ z*KwD`+GeKYY?=PcV{pH>0kN)>--$K7Q zO~)Co+?hCKrnGAPq>`|g#$!xDpUd`r<8S`}{WsuQFyB9dy)sDUE=JqtH&a<3__Fo( zJMWi;%T`Mzm;9r>F&|vjK^!@eBcJ}v7ZA2a`+|S}%xB#?!)Ici(>3z@Kir~jmV`~8 zHQ)6ci*b(bU;8=?GRLiBm+p<+R~LfL^$*hv@iKGQ;8$wwT1m@kJxXLpp|0~V8>EY5tAA7mSd3M zV1a_uz(OY3sXf`LKa9VYa>t!*<@Ud~m0SPTR_?f`qulvGcX{x!esb4?-9Xqn%58VH zLub}b{(4ti3>>ZG4}Wfk!Dbi?x^g`wvMl5*i9yF(P*kDv6Bvl<8ZIcIs!2giQyJhKy1F~fO0a*;cdl8`;fn3D ze9dktC^0h(Jcxv+xzvH3aqzGNjpQt^B%&uTlBA^&m~T)!b$<%Ptc~3E_xrU&?t}rB zAMeI9*Ch@lXT{DEN1Z_fLDLyD9u!iQk~W?D=nNX)GMY8~aXEDOfV}HngXCQw&5@7( zXTJQlWsSVNsa|HCs*(9eM5b&hmFY7U$k1{1(sNw341TJ&loS=nfkTJoY+;F1!mtRz z&>=W5HYR9}aYCRBY811=qGC;$I#ULZ7$pf5p37qx#wAcLSiybwG>8$7;p4ElI4HdP z{U4HVe&+{XSjs>+FMa?lK_eMKI2xHWz<%)K|C3`Ub97MTawA{aVdz-t$({$m#eZ~=EESk{-?i?V<*nY(c`D(yWjhf zoII5yAs8FuCQg+ez563o&N7+V4x=waBDhyWji8V@fv0QFzA|I>e9g}-^z1W0-vamT|BQU>Q~x3- zL5es7`7IbVJN6uaEavkj`RX^mjSi$9aSLJ8+$@{7?^eU)CJ?kuTX$(0fBvhRWaE~d z=v?abO)`yVwvp?9`b!X%(Ntt0fSMPAQoJ$n!I z`fZerZ| zr=b7|B4@0=`i<-GY){KGLq^E>$gCHyWLVFK3?C)`{pGL2 z@YS zH{SF|Z6ojbz(>($%aqvm=<~GdfF$PnpWPrkb{|l8=9Tq|Bqt05JB9{&?}LxX+=WY& zuyD5LyFd6T2;M0f_2PILG-M>|Nxd%P=6+zUAL#2;AFfVJd8}S6NmKn)2j~aSrD^>* zI;Sk$E2+|S%#0#uO86Xm^y;Vm5SLYd{Gb0_<8rKd8OC>K5D+eLoZ!r$ab<-rGldM2 z-J;Tv5;T^J{T=%t>Ygv9I(6+OXY)(slmGhf`of6&tJiPZD!;z@&nQccT#ILODz`{y zaq>|X_E`&-ESGj2yCB>)`G24LPkm7nLbXdqb4$kBiYd_0p#eSNEy#QtU z!B2i6fBefGTIaW-pZw>4`<%|)t=X_uU*??2E7BK!V<$|JPkidr+DGXN0Ms?kpdCZs z$u`Xw0VJSLcIgR!*3AYbf-jDntomaA_4_~Frv2Ix^#AX9|3^?)#%Z}$t=kMT{wGbB zGqbmX#O~OAP{!h!Jqc3B!-V)!sz;yxG8rU_`T6{ReG%lem+F%J1^YPWgEO1ge)mVZ znu7K~2>yKG$=SImp55`&dGeY6_#f3tZb6w#&`8cmviO_m-m7mK5wnDC!rR*vB#660}4-sr%cQUS*6cjFJ+n46FRw+B(_2?TF+bsgR1|xRS+GO|63C zB;%8yv0vnNF5Y(r#~?AY2qtJCOBl+VJhIO0G636_~h~ySmfu!*O z5dIE>3{~p2cmJVE(3(Bo9)>pkDs&H;{kSy`g5Uum+=FJ8IN~=C2?^Cm=UxLbfSp4p zUI#;n1pXIINRKYC2QdQ(b{oDw-uDRQWQ2YQIi8aPyLe564B)+Hh@ z4tYkNefk+0J870Km8--+!WlVk6gT86y(3|zbd3}pIC7`I>i-*2G4+^5DZ{rOgxgzmq;^bN>3FX6~}UC#4`FMidTwc$*U zd4s=W_kKAI^74&quao@3QZ;&(tyl}ccfcT@uOx}arrC>PmJV@G%E6N^k(l(S)6ddkBO{wV77+|bB2rt>ZGZ&Waiw3YM62ci}Lt}ch=m+asr0+7ytKKo%N-` z`1G?wrDwl>+MwC!fBK7G%g((ARZk>nD^{;pW1r7#(X!S0Mx9F?fBXAC>&MwSoA%3J z|4!p@rgGV;bto&}e6xdkm%Kc4o*EkrziHcUl}lspCfx7Zdk9AJGPwl?9^*0{l0oX^ z);sP|of*7Cu6gJCW$MiNs$-II8q=&Nwr*%$P(tO@LHglY&{*~4yi2}+{r|xr;~q2` z*S3Bl4(cxBn?ra&yiz=&@q(jQvk#5W`Gql)(DC(y@y~BJ(zwO5hb)%q{)d}`NS&4~ zJNAN9eNX+CEMF_njUERX=)jw`)O@_>10Qi_2d;tNSQt#FN0>OQ3ygvcs zjP>Nv7OmCT-M#;?{OY&A*Z$|82OiZK1eVE`kF#t?PMlS;!any8x7@D!r?F21m-`vn zN9rC&Ts<;HP!H6nfhB6J%OuY4e2k+0_565Af=d+;B(&bT(A!szdZQsD< zY)4M!>P!gRjFL0d50Wer%7sf-%3{u1&dceeoDR$ z;;PF!QD^uvVDt7pFoa>bXFLC+=IyF z+9W-z*KU+T)CCfid+vW!`v<-$oi%TdZpw6N{bW~@C&(ok=8G48 z+J*#;eE?rZQD4;au5zqfb05)Pqgi_F!zRmT!Ff2TEEv>qdj* zTi?50@5g|UjfXBcuIQ3=kezRR=lj|o)d+%4xJQpV<{n;tuaqS0H#h%D+I8-t`upqO z+2^o+piLo7&Xzrowo6_9+h@LD3?}H3_%=ut+b5S9laO-hB3DAFPJQjNb-PY@o>8rz zdk!3No`WILW{+D+Zu-NmvJ!eM3v;hCPmJZN6z*?p&?V*nf#6I3EI^K`>fa=GYJ}Jw|E>r_nPJA=F0DW_d9v- zd*3VXcnABDYvk)+|GK17DVTFX9hz;MgbB#LRY;pD@jE*#ljxL!ZNvoH7eyAFqGS}xH zJeDh)b{v)sz}g*$WX;Y)vT^qb*}V6(EZwkQ=B?T(%Qqj9`M6GBuwGVe+%J0%<)I^v z>RU~Sle)SF-Ot9ikcObyLqfch8+p&;_R+t}q2qbdzDsY}zUQzG+Jz`TiJB#6+_Pp0 znvyh2&?*zs`{`jy&~zC~HH?O6LiQg%AlF_yTR#5Tg>ub@*2=$r^Nft29h3PR&&!-O z7i8vgkzr2_ksBUcDWCeuQ0X>wws1Gfv6Dr*7lwPtcoG=jY#T!4>qs19!jL5oG_+`B zaT9Z^b{%!OiHSoa*{js)@r-gkPCdhyqVW`Ak`_}hl>8cGHM&qk7XMuZ-Z)CZK zpBm&G;J9BXA%liJ=PXmALH7Z(objFSm35o8Ar9&sjM9x;&44sy#3-F@CDGzCz4v|K zV{-q4Ep$)d4}S7t=fUmeMC;2 zEkwSMM?7d6^lTV>^GOoIStZW6^?hof5+<{3ajzQPTz+%oZ~qALzZS;R9O?V?AZ>j7 z<4o0$egZOwft2k>2?)x}=XE2Df^jgKm((jo8(78Dk@5evCQD@Njd`Qr^M2NFq=qr>={pq&9DM9xt3#miTNSlpllm_`X_IB3|hv-riYeka>@?N`H%hR!cW2La_wW21W#L{ad+-7GrsNfs zDdFeyW_{$W!R~!WwfTK*}i+fj72-^)o*~-SC*CSn1p~YYe;Z8AaX{EdS=;4iursWe6)p@ zZ~xI#+CSMBQ64!nWYZEfg{z;aPe0c;)(>BxxcXr{1Il9^wo7)I7Q=G(-7HN;U#29L z{n~q^NAIU~Mrp>J1=58xXlQ#Ar_Pji+=GTb*}QB(9}S%rp-$KtH15mJ$uHJ^>^tB4 zk*rv=LFUX~0>b`RsevLm6Bdb^gDKdPa5Vsz6EgkVQ2*F}zBq28dz%%A9ksELNlWtYuY^iArtJP-s1_&Jq8S4)F&uhQ?LpgpXPX-PdAur+CpUN%J zyq(I)*V%vWIpoVk5%`hoH2WL=t!+&Y?thNs5{nS_Gg?$=d+=4 zMp=CM!!f4cfWh)ut2X)!_{X+RqQ?CreBPh^k1uLp#(lYdg2sN{)+LK8A!rts>}8iY zn*QnaMwXymU9itezuD^$G}{HiTCskow0mirbQv;Lw>oh@8)xFG&{Zs5yG=$< zT_~khobccZ0dqKr%10kHV9;=Vab!sv({4o2$OL&rIggQ@1%g(Jj<~3Tq$R8eE98I~ z<`zcfY(ZSQ_Ih6ae(#g=w|kzHJ0IvQ_dMKPrqA0f2TqjBse&pgeu$jN+%jPaC55K0S#Ekzs>O+QIf;C{f67jytqLlh6TDv^*qhxW?#znCT; z{OokO<^xmZo&UU1nsq%RLq=6g|L1F@$MX#`?%Cclv`;4)+!upKzvm=e3H?QRPz%Wf z-x8a{6bu>iIuUDVx#Y?L4PzS346|+b0cqK$qcK2q_RCagOQwQALxjd*5(60DHu4QB zPaLDsZI4;zegr$4mL`uz46dfJm^Y9#+BlHi^oKvo?gNJrhHs0x9I#IJ_}%lsBWfJ0 zfsaPT!!y48wQuRHry*V;7%zo7aGlI4ke~kY*V1>uAmMTo8g^W^!-hh_|1B7mxu{<> zM7Y$5o6p4 zU@&pxKbHxUpmhOxQc{I7|N3{gfD}&G4(0!D_^s?YcocQFT4yKr;`ivW6XcfL|E2~; z35daee(|gN)|`7ve)Q8DWY@kU`n+hIT>rCQDM34WG6!V(gG%0*20Iq|x9iwl?zsB_ z)iL=e`w-4*(b#7`ZJp4%p!LB&Q$s%*y)_z_dy&5Vy&ryAB#V`8iEuLtHI)$jT8te(3^<=x#PtmaaY!@J7ANi+GX}`f`w4J;6 zMmZ8XBi0dQoo$1%_!5J}B_G6w1TBfW$Cs3RS@{+8N9{Uv(K6@emuUaX8FG?Xg;OpP zQ_jw@?tJZA*UA1P$7RY49!%0*w(Q(3pZM4Rhdzl*2RRF~Q~vPhzq-$d``do|`@d*e z6BwsQzA#Q_-8p8A89!M*_36*RuSVO_gvrzN#e~i#q3v=BH&0>ZX9GHQ>!UJBrul-! zyrhbu{eY06e`MWcAH()Qg0^Dq2Kl$o{f9np)(Mi>_kQ3b+NWz@fV{D-A3C0^+YR`A zQSMLOzI&g1`t$#;{yls5QvmkJP)?=FLAWL{dgq=jmR!{B-lP*e`E>T)dfF6qmAMxXe4Z$72{zb zT*hdR+rRF*>ty-zr%jo`S=agDOscON@;Ojc|;D7Oxr zFTZ~AjNCD;SmrHbKaKGUaSxop7%*?TT>Cwb}l}ow!hHTct zm3ovekDJdc3CUR)=3EY#Uy6{6I&Q`&2D+D>?x5v0tkZZbWV6kH-IpiRhKrdShg2sD+m zDPQ@@82P}zz983pWQ@G?lXK-)f7vOIK3*VqJ&`B3Jdq>aI=07vRjErd&z>pQGH~GJ zfM`Ax?HFj81TCYI>YHDJ6%`<%qVdXav~W)e#v_&EH5Om;#(uf8aQ0~mjh$ubN}@v_<{K88{vc+1YBzK`TzQ|>^pQ^-)QhK1#T{1 zv1XH2TKawHpFXL6lV6^pWjcN)U;g(S-!b7q9KL`3&(%OAiR|6)8FlCWqUT0WkPm+J zQ+m$>JD5k7jdhR9!f1$cnc7D`@h`er{`WAnxv8E5Hx2wHE4bgt)G2OQ=i5sXtuf<4 zwBP$71wS_awdBSw8vB_kCD8bm?VI0fRn$CqFzp3+ZJ=y#3OX!q)=(GBVh z+|&=xqZ)ZT14ERC6v+^YI(4iBjD{@a@TGwLl!GM^I=cpcUAl`a%S&U5@;JM|rH(vB zQ@??RI>H&$8FLnDr^r7NXqMrNU%6Ih&tHOk;bGyg0QzaxvbE0a+F3m=Q)S=5m&>OTx#!jC&6q)0s=A!+UN5ri>4K)YRdFM^7uE-H&?DeJy-r&)I{8%T~#M z{P+JtCnkIg@x;G>Z%&HPQB%R zqiwqn$_GI<_-x;y`ung<11T}5R95H6U$!wj z!2KG1311j+fO{DPhOui)B0&$J%xksM?CLGe@ayj-*e9kPNOV9|- zzgG?=X~aeJqsF`+svD=iI=Z2|_G@}?j-2NbL+*1Tf#tqV&Q5Vg>JPX4Rc50-jecp8 z+91JBcE?o= z(8)XBC*Au{PQLCB_8cmOVTB|l4wS4>|>Ey|2`h7LlF@Q7f)Dio55+feyL>c8tFI%n1nugApP-rjW@d?_60J~`0f-q70wE!@2Zr!ON4oJ^QC=Yx6_rw15i*B* zAU+8iKU8fA8V>|1D=U-HGiJ(nh98id=2pw~^P=*NmqYT0VTGa0rF-K2~jXS<53Pe^?}1d&|u7lK+Zx{7o-vf+OFMOTcm|rSjHUze?g<)2 z9=IHb-<#n8!`Zai3zo}M&kWPq1`cv0SCp+sC;Mbtf<G7?RV+k4!8i>&=pAn4{9-g5j2?I0TXizgP`svJw4v1#i8Y?%!2Ex1<1I;nSkOsq< zLs|G%lm|laU;{2CAsXH32uzO%6^0yw87WWLpmm%D1 z#ZMGaM-}|wJM|C03dkZkpi%hq8$b^C9?}kkdgNPXk`}(nW*(?7-gBw0&hWYEndh(1 zmd_1&;*~mM`g~rxzYAei$E-JyPh*AUQDcgLJ3qg`B}-Pf+^@s*NzzQ+F!e;A7j$a( z^iVET=a!pcsY~XIGFg{MO5OcG%p+wnzX;E?=uX`#^f@QB?sDdzvRN-!?^$;CHS}jW z7=~AkgSaFD%meG70)Es3^~CfTpXu`%Q&-Fr-E9~eYRotDW$Ulj0ZoJ7Q{>(i^UWoO zT;hAqk(##dBeT^-fQy#xw{N*zG!M&p&%}=I&GUWi2K{u0@k;nRC z`wycZj9p4Xy|$tK7yRtY2EO28S*#3O=lPbG1(Jv_FH_J!g$mp?@c;}u<*)wtg~^x00i0Mp+(#m%kPMBCBo>j6XnUy-JMkl#z^I} z;dsq&(&*=&wInWRb-i2aX-=<9VWD80}GsP}n(U z-}&YlPi^EfL=rZ-k*x8`k5F4O=bu4q0GHsNGA>P|y+;xi0)gY~*|jg^$hQ}Yd|_^_ zd|{=?Cl@rx2dBs6s{?n)9ld7Df#dn+;1T4DtGpEGTRC2mpbdNOMcw}35j5^WTb8lJ zk$WxB!4!gs&0D$w1dSxCO3s3yodH2RTLhw3TqUOq!g3-nB*$~BWc$8c`RhGxf%fuX z^B(et+nULs=cdZ;!})Tiup03qx@qooVWq~;(StZ3ub=|PQ>C87rA99X4s&S81wFly z%ROoc{3i795JK-8^v&Jkm78SVk`1zQ!#>%v_Y6p51v*X)PUuCs=ZwUxmNRHP5i*&= z{W(3lKbW8yq7@87)C?grN9-4sIY;fojWdKKXoZzADZl_cbo6+sgyuPe#wCgo44UiL zu97877s|}JGi1v2$ufS@Sb1^uXnB64q&;6^xcUBg1-+W4M4V}KZUhShQP>7s5^hB=jv zQ|(-SQ>!y*TvBC-CCUXbZPp{^!|2PnSuhuv-{RywOO|pJ4FQ$wpeTFr9@t%*DH^7mVriYBQtec5r^vL^6{n-4l zy_mL_9zPvE{WS_}%SUqN=v&A4&vaH$;;O6GjNhdulu1?x+J#yq~UCPj> zsXx@K)s;zya_uu>`_LuBJY^TpBtrS<&v;^K$1XiV%*;|%OKO;gIe?03GEeF08~KL( zFb%B(@U#65%V+b$tKQ=`rwY;~^kXe($VWs$Gy20VHZb6^L9YT&>@KA$Ee~rqH&*x-;1{I zmFuQf$bT&r`TD4X^3};9`Qfmga$}EaGH~WvsZ4N-MnYFQu@7bcgf3Rl)#;0N_9LTS znxrcV3rfS_Lm-LO30b;q1qj+CkD&3Rj@)NMlE!a5@i&j%=LaD9QC5D)mfz{&X+>v? zs`SLdqi0HF(wtRt_d}1%ZFfBaqSj1aoH$EP=2ghivlSp_AZZE^wE{!#P8WpabbciO z|GYANtIs!YRA{RHf-Xx;fKVlCQc}a?DM7GmIRjQ(C-op*=jt2uXl5?E+Pra9@%QFmJti zm=8Z1oMxP5q>)7yS(vuLw#GhW`kY1bXv?;~8Sreo$s&u(gB@qGc(cISDISB*i5X7( zaQ2I*IFg`oc8cI^nIG2O`0<0*<~wLyj>s7_?s4Un_nbxJssi1AQX}%{=v8v){f$To5%7ERr7YVR0jKlJVpY zq-)pS!?N$tNfa!i%Y}H-RSn`N`QbT*iA(U9eNwdbTXunLRVhK^l1od{(r3*)f~H6E zJEV+z*A&ivI>uF!7D^~lD}_-wX3|Wv2MvZ|C<-H*ZyW)h_OkEbQQ5U;zbsp^LY{x& zMVUH%mJA*Ff-b$}vLL>JwaEFF&aFmY^vdQs&)bnI=1nEZ)w@Xj^L8s zpLrrtqZ}U5&%6=*E@SW^AsGaX;LO5WQr#PY{EhoQJKblE!HjT4q$8*Y* zaFML#m&G(Jmo)PJv@>HyQpRw^35(n^kTejq0v^N>#UQ|00e%dQ->Jf&5lez?5}aPN zWX+pZBXK2}BO~RyeJY9j)JSw{>NsPSkT~KbNX~e4e=R?P?Hm#Ug2p9|mTVc4mQK)g z$)b;-xj#j&eu>EQZGd$ALsGnJcFkxdyaB zPk7|%j$9kc!$bJ7SZ>@UYb8Oe1GrZ$4n^=pNY2J_$t3r!>FgT9ZQXUiA!s0;I+Moz zXg*@*5;Sv~qmnX*oEcK)5Hq?vewjLW&*D;OgFPfgnM|*zCE@_x|z0xa#{Gx>UX~s{PD8L z;cGq)x22E%7eDT+8*ed+o3TNX;&?+N| zrU@EBg2oxLZ9Dhta>q>Y+b=8EZqh41^vmDNS8vd(4YOkX4#o0y+Z8L;ZiHf-G~8y&3Qybah6 zz;E+TS+^PTc-@3}o3_i^jayx?@WfWg-+SnU?A(70gfQ-sEW3|P_n~F%MRN(8C1!L- z7!B{Zn^`m-giGNgw!j&=`L~YKZ)%d+iX3k$JvlbYrUn8u7-wK(zV7bhg zzf7jjTPib%`NT5BCzdPt5%DbE-Y|8+){CYwV;-?orq4C?$+!p0e4}COb7r0i=9^ay zyKqHXTj4hvXJ@z>&}{|cSa@l$4ViZ2Pd6PiE`p%&S!D5ABB59L8U?bhRv8vPu>#UMceztx(KcxLoEgSf-e>V5#~oUcN@= zFNO^=Z;8x--A+G-^T)B^J>yXJ;$6sQ3xmq)9;p4S_g&#)CnM%c^u=nhSon zir{j{Fv25j5GboSlt_bnkVd#h_iK^daONqWhjnlkEu7Gg(U$UiE64{??4SfP37#rN z@cTRp^(Vn1@EdZBUqtxL78fW7zd^&jJ7rZ+M5IP%@Jf*%rt9Xjk}xDJ2=vpBTWffS zs5!7?jecd3l$3K1Of|pZgtC@1EOlT`eB|CVUYS1KT{1|rr!WVR=wT$dPlGP8%;Ig0 z%sLSWrw)~Qpd0--YaJ-}jYOmT5;l)!R-1iBDcWl}5B%^0ZC8PIOg{tjL2GT>fVM5Z zh;iB_<=dPlg&(A1@ zjZIX-<|j(4%t}8$=w=bdK12>gu0uDjG~|`{gbm}5V}C0^!YG&Vc%}zs zaTcvfg2ttdJZX^AY$Ry;MHNcWY=W8@AA*RPf<%a9Nr_A*NYV^ZBdO8O9>yAHvx-rG z5*T9)SBUro-7P#Kmi{oj883Tp3{V4W@S#k&H}Rdk@am8&g%dw$!1BXQhxu^gsvNkP z@)&nZ$SeUP3;~3DrH`1UEvGd4$Rdl2!Wj%M2gax}#LPvI%r^u6JY_<|q_;Dokg#pg z_4nZR5d{2gI@Y)>fSU_lzU+rDoQsSw{`gsB@oJD+x88*MXU8?y%}pyPFN7~_7FlGG z26tS_;!Oj23=b{zUkP%YreMSP!EIYSkv<3ou-)n36oTRqJmbUuRvCalO%gQDrWt}Z z*&}EqVa};|?s&jDic}?izz`xTeGU!8lqWv^*qRCM~{g>z63miYa_Jnr+f zC;^JAboQOdBhcO~_z8`C^kJNtw{2JDq3r}hjnT_QQ2Z>icr^&BXH6j}{;Ne$I!z%c zeim6|;lgjXW%1@9jqq^wobx+~m{|mcZz>Kau@t^=K?sU#ktPFI>qdgcRf>xjFOdlo zCVB*ohkbC$%_U$USaw>@PV@P}X}CZ*Q+Q@6p@p~f$RK0M5|=jOS_;1sKdKD4B+`$P za5^&mb@?KpOBeyp+_|%NgmI_80(muI9e*3%h0o7{jmPqEiIq)H$r?!;z_=z2`T>+f zfJM8qbwg}8qF~)kLqPbe5~e(CMgxen>9sjb)iy=r(V|Yt0|M6g#l)jl|yj0p(hyH`= z*X1Bc)~iKY8W(8`L2%r#vG3q<#r{Jl(s1DLN!fqcyWe*R;T-tG z?RIg}hf}gA1G^8WV;9`g;g4^y>tJK-Cj8;7-+>dd6X12%LBa{^ha27r*9b-qvGc%j z1;g67dzg1CgJJeNVeor5VbgJBDE1Qw=fJwVVIAx}d|E$8u=mJmq``C=>oAMA7i>Lf z3PEwMI-pIl?z3%d+j9hNC*{zIT-l53UiITO14j(@`LO@!sdVu3AU^CvJc~>}7f3JA z9c}XR5ES?7!-1ox)A6R2El9r^c>@~9d!vwoCaEUX*3jz3H$g5q2X{x~+?0oW?XPUXt!+#)F}E0;x!7R!VQK7z)NKJ$Ek z9#?N+&+zx7Dfdhy5YCUJALoLRXabGGIWjK^W)+@E-2Q&j&P0 z`~sH{-p!G_M3q z?{blzFFzXj`RZTPiTipYEp2tn%zGADWDx{@dpCamBJC$emqZJfa>R};GA+M-B4Sv6~MU^gcib4j(;ftdr z7`Y`OA0UrF-aJsY11GJs3Z!3HsYl?u`9L~m{|c`F?-e$#i9_TRTDP!IUIpZ_d=(m& z@r)c?ed$|Sjlp;TWe^4B2Kb%BG!ZY?#z(&LO1PIM>V9vH_x#-mbPodjxQ8c;ea>;KvA^B+Mr*aC>nO)G2*~f|6a}uk?z?cGf%|P6TM6K6>CwWD$ z$dB2_LCWIET65*c?dk6N8^qaZ`tB1j{E4LRnnWHvoYQN9aKfa=ZyHI$$zxLpiuam; zvNPfMxn+aSYwY(W9k(_3*9tr+hx^QmLDUM- z28z(Oj-1SqBnVm*otn;$u#0=c9Uon-pUFBWnCI}Ai6x6uM$ktm#-R>sRsJx)%ClAJh%kK=hifQ@}2Yz z{5nqe*Ssk_w?^sl8T;=q3%)d*tBXeYy9^+XUl(p3-8yRE`T3rC6Y>n0*NdaZ{q2wE z!$sw1kwq3w!M4*Z-aK4t*5AK6peeZFt*t@$WV{jtr9)Vf#xRL^QsVJMFhNst2GT)- zW;e=N;uZw|hPO;Vd+c@E$%>Z?d%B~~%{%?k%Jm~Xtbya_+dOFftgN&H2NZMz7!F2a z0Z17MkUbXP9N!HCQp-mKom2@_K>kHgqF084JQ|}ejGOD123s!V^9o>(_P;F9Aiiv% z44JUH&EoBYpn4EkU#<*V*HQ2Jl7chJY?s_8#@Vw-oXZl~u^Doftm6^_2Ow|?cL@Q> z8p9Y^13u{(@FZ?(09!-U7e>SR$bgcQG+aQKOo#*Lo?$ZMQFf-A9~pVbgg;M>;gsXD z0C^6A<2vq4Q`5F(w6O6E(#qh#@84LyFAX3letOw$x}JXZ8EZJ}cR^Bk{^mF2Y92Gv za@`FA)6ImYe_m3Q@4(BKg_nm*!AqZY(5Da7ODiukp9YMdnXUuo^VPu0(EMcp?pb7! z#l;as7_xX{!I`N(S@>X3#*=E>6%gNLmm9)9^lm zmI+HN(vOILW6(HVk}B_B^QL49#w6epGlKU3-`aBqt*|VLdvltcDN{9M@Z;JnBS@M8 z$=QhiGTh zXaw6?wK&L`E+HdHbHccTtp(i!I@=_nVQIiNhUUi~-jQoy408X#qHkdx_lrTx@;X3u zk%r7LPFYkZM5h1c;j;6OvYM-trUO^E3MVhF9{{4kt9{+`Y<{l@S5OX{hb*$lA^=_+%;L=fiO$uG>gsA) zvSf+wL2KT;xku1Q%8JUu3QN+Is5zudiJAT88Gic-SteYA%^?P9%cHndkMO%)7AVJq zOF9%V7%gZ#`tN_N<@+#0|vN183R@Kf!{5 z=|G8^k5mFx%ety@&M>9i2e|DN8Cb15yOZ zkO7HX9D^m7KysGNTN3FI4~LlP-ZhXj_W%*~htUi}*BbSW;Jo!xAdPg`w7oniG;Hu- zqQ^6-YN2>H5{Bu73EQ zpLxbUIM3Y>PzN@>i@@r>5ixVpNr$ZuO~dHa-fsvC&F5vDbXf~|9ci;5;{JeMuocW?* z$$eoYS0rhiq!IFhjf=)=H}GmCVB1|S|mB1JOh5jJo3%+8>xJJZB9jer4e zSsi$ONEbSD!TSvVM#i%X$U+_)1AZ1xSl1X=_a?&IFj>5PVe5j6;Cd2NpV&q@tF7&{ zjO_|-!nRw~RlZ2svG0h)b-9%xWjc$N#K4%Ku}PyDZZIl&(j5&?L)KsnTO$+(H4WnG zWSw5E0c;F+&j@84&d!hs+T~r=7*{Z^0%6mPTx--`(Dmdz9g?ycmtp8;3}%GIZ=RTE z_P@c+g*VVNM%IfLVmk#xbd+LDCiA!7gJEA9X8e(bk>(vK6{SfZ@+=J4$(6obL z%H`w>zxC8Z`uXx^VV)8Fj2`*hlszo;{gP{#|lLIO#KA*540nC~FuCM?T=`(S+yo;NdD> zT!d4i8W7%zlf~N%_Sw5Ib;8yWTVHJba1ZNYeO7nWan4?cQTGv+{`$g0+Z*B{ESDee z+<#PJy1dMgGu?O_ub1jrE$+`rs@}LqVjxB!Zf1tfkP2N62ZB+JIN?}IjbF1A(r=6c zlv`tre%Qe(Q;8ah0F8bf1YqP6j`8aPekuduxJNErU8CtRKJ&*q%j%|S*aKR;{1cGj$~8og&@wv&g?g~hiKH zLbogj-Q##}5fFGj4@=V0(J*rYL&-_-!Yt>)n`Jm-j9i*3qdG?pVD~G*jIRgM$ z_P5EuEsIy4EV9Vr(nxDpS-dF-B0X0VF1p0gzqFC$jD$@|S2&gSwQHBS`AC@`_CO8; z7+M4gn!*_VBx%MtOTZ9|!_6_)KvFD8qXFj`b2QlEdenSgiAU1X2paA+JPkWS2^wVK zsss)33(FHy5v@02k%v6zn0y{}PXm(V%$y(>2Wg{QRKLkYLPlbi2c2-XO;2q^c-Ij1 zL-P!s$ol##(Xgk zzHoRhG?JCP(P&oixmcLI8(o_G+Y>R3P8ru9$AtIdc=57$8-UL`4PHGk^~6Al7Oo6q z>JwkYuujqqZIbmH^`8Wd;n>FbB7}$V*jek+a9nmBI3_VQCTXyPFu{PN(MiI?-{{-q zg22dyUnE-V5DbT;If&BurJ;`SH0}u{Z-}EaUm#~hoXaLb@JRA3IWv2Ym==w4pW&{s zhBESluxf&h?hb}c`{%P;_3-|aBG^R8QIntpnDDS#CYa( zK0}arHS!4LUESdiB#Ale$oy0q%1!&%(fw$#ndH zFa`3O2CGX2?%g;npF_^vw0O@v@cEJ8Fi&tteqy+qnKBYF=#^!r-krRXz>(~5DPi2E z<>bc@WMA5RZUn-n!}uG5ZAcntaJ{^Fght615{{w*#ZWP0NK=Q+!vsqQX$11zbtNGE6nj5Nq3IdcIc z&KPDOCP<@@vquDeE2*OKW(gOrI@1I9T#y&@JuuH*4Lv8U=WdKcrq6iX&q8umR8gZJ zn^sZ?@}b{SbG|)BS>=&hO`kJohfd__EE>j55HlW!4>DI0(%=4L@C{6wN?0_{4!N<% z=i}bY3>d@HC2B~kBm^B-r9i9_AZOKbwjd-YbIK&Q$js;&k_OqDo{?ohqUg=$@z9cD zHEazLQ&L8MUIBB!i6LlS9w1wdXu`?A8q?GzKP^Cl#`sP=JWDUUKaK^{&Eo9?|FbvH zc7VE}^~=7TL0Hx!eyT!=nuaAoW1IIAv@qgZf@bP;SyfziA3P>eHAYF4c#@u&6ZK%= zmZFXyKaneSAQcU;cPpzB0)D0>jYhhXFBqLPX2(bX7>0(tz(58PF!&QR zkd5I@5|iT05)FDJOz3yifS6us_&dfj66LZs%Ezt1p4PmQz|64tf-%UfhN@_^XT$tx< z^<`!Up(7<}PF+Mk{REOaBuR|KYosck1QO6`gFwy5lbOY3c@WIZLIS6Ai=}73XJo~i z&G4rTlpXbl;Vy@uWs)*K8WA);UyW~&b|?w_J%W}cYFT7)C2-qV7H=AYNYB-TK!Qd> zMvx?NmdTPX60(jx21xVveLzfLpgT(-{Yx7&$r-`fFhi&eXpH63*r$O;V;^ouP8SQt zCZxw1t#cp}BvG76i|Gs*36l9ZGxCA(r64dQaycL^^e4e0NHFML8m>Y7sD4zMFz>FQC!1w#_UvH1=1~) z*$Y-n+fIFD?WVm_7Os_fOV-KO-A6U7Ny{;QDU(-+2-;ZE0| zDb{%|_PdVEE;Zr4OpA`saULsg>#@XPquq9~cbe2JvG{OK+aMmOS>l}aGdp<1> zKKwZPv7{R3oPF57`>?cZ-9=Wc+bReu_deW0X3Sfz`%G!H(-5Yt<*PPHi^n@lr>;-Q z!_C`B-=~Ml@aM-#KKceOmsEov#xe(CLjYj#!qDaKNZc&3Bq5_eiOh=Co8^hN-DK0Y zeTHNpKO}?v<2A3aLWvu=iO$T?kdC2TH2zsG5*=$`o7ppm2-MKPH~BH~>Ldyhzz+_C zw`e>PhgckXiIec0H))XIAf5rq#sziPv;Yze62C`Uw3S&4sGn-wLk5%-iGi`=Z_?Dc za@!sENwZe%rT;U-W%KrZ5<)+y@j3Gd*-Baf=9Ti9Z!QDma#Xvo$`C!26VHRBfCQH$ zf%+g3W_TsXNsGh`fqqsbb$qijf*f9y-A&R8UU`wy49?`7~LQx(kYFjefN9+fqk~;**WJv z_kCU8>xILszucNf{Py}p!%~+nj(U%0ak}`%*8i2Hly1V9$@x{dA(%A{EZgwfi`QC6 z-EbkBG3#bv{_%o!`&FP(5S49VNf(RDYn)yvM~lhg_N64iAg|Ja$9Bhk)P6#DIWW8<{s+se&_tJ<<5Q<`gR%p253`B21D)E0{+>5If(&$ zZDSs+zVJC@MBbatz(N3YfuIqw0(}x&e*p>^@f_r9;X+>`HEsQvB6nqiz5St!URIx{ zX8Ag)vN65aM!Y}Eeu_j-SuV|lTUtyACfqe%osTP8h!7X8+DxI-@tbt7W^C>J(oB}tBy)Zyl(gogLFU^ z96HtlIX(=)9}*BgX*)Rq$g0O#D{WPgx?a5Rl|%c#YV?hkQ#q!`JK{7WCc9Ci5Bkb2 z)jS+SI#k19~ zSBTciu2a@LiS_50@x@%K=13|?CrqKb%ZFaFrLa+f2IOz&c;%8z z%vy?_fQ_;Yhq0T3cO88S#$nkzwgq%*GP%#UxzjWVY+uurWU5N8IU#arSjfV;L=0(a zRXb$zq_tSIFduEG+X;)}hu~E7n<(M3yv9dGj%1`?xG|YhC~!%f#nMlXKczzO^`kq$ z_yt+@r$L9FO~aYy0Jo*)%X$0i z;r6?TQYfZUq?kGmi+XN5v$n0(7p4+CkuRHU90)pl_w+b_d}*|(WJWUkK|!^k<+dR- zSi_}$gZnv$bYQX4V7xh33Ws3wW`h|FXEN~OYJlgvaz>{JW$pCv(zxw7q*(q1@U4`r zw@955NY~+*o zLX`g*Dz)5uYH(P5!_L6wv?J6Y#Vhs@0h%dUf1UK1mfekweaN={!_Q`H4AvNe7@f9} z?PDqsam)*BmCi?iCyO<*3gVc6$rJaWzwoOMEFSbw6(_-U`|0hOy~V`g*Rize%LeG9 zE3C-@ywvuu36)&CGf$XgTom3cWf1jojy2#=b$kDSEcH*v(}Z9=bDaZEN&~2)HwHg) zPDxFxz&U40d*b(-Nj}XNai(PAWC{~ASvzq(I1&@6MO#cN+*sc~#tgXg_362g^q=fbLM~odSXiAC7KIxsHUqkua+(}ES)BS{ zzGSMw303o`uXtF{8-pUbxsKTCTj=$D6{F^fU zFlu`RMuB$@j&DnyFR#0q+8Y6(YhMIoQ8yqp7GQCA7y6ZyqG?X7aUEAQ;Pj9@R-=Wj)J+N{sy_x$#AD~GcuwB2$`Gsh{l~ejv zp|7?EmYl2}7I9wTxm1qwR(^PJ5Hmx0_)~Zgn~~>^{3oW{{YDVqtuc)-ihxry>j_#= z*HUkvq)g@JW@ENvv@*4<3wU8r89?{X)44)HQ1r6zpzV0uHkU@m^a5JUzUh zZqGsCMm2&sd!l)#7xla57&8Vg62tfk2!|>EeclV*{OoxuO^^9UYCDuI%oCF3C}tQX z_I`)@(0MUm*?zr9)E7%oBbKurQIhDD+_irB`B>hQVzS)o@5`~|blt0TPBY@^_JN)D zvH4zyqcVNulgM@(Hb&Iol_slsOpIZ zo8fot4&HzHG$;PMccBIaC`4^kF63`)I4|~g6lPVxVuk%}`%58rMS6x)HnqvrV4+~9 zU@k&fVCX8+i4In*ESM$qA>>4#?s^jw)}gHitJX$6V!u!D4pt^oWmRV3R{7O0DO&m8 z3_dA+yHKyHovAs+abAH1%Pq8XMl0*(2RTQI`FG&s7yxJhUilL@?vr@Ph-6f}V4G?C zUs|?ATePE9yTY-|7WC3m14n)n_O*MW$n$Tn89vMdm%R`9-%FmpDfZmA@6^ieeEsCR z@;Fnht(&FbQzI5s{QWpmcu?||&1v;t0}^4nU0I^#3o9Zk&>(P>`z6~_N>*Bh<$9~` zhC35v#^5@w6R7~OvdaHKfyv7z`!_Fj<Tzy55aQyT~?23>Q&wraA|cSdR{c)>iLiI zqQ~s0#$e7#gUh%#JM=QWT1^^@)y=XrAfv)-FyU3g{dH^gwC;?Pi$4~O!*^a!!_&U+Zf6?TNu1}KtD0a9-|3%!&FOMy#j$3T_A9oqM*sS#Tku_}{hEfQMpl8{2QWwb z=WEVHs|V~ldYT-yk)-OZ-HitK2=4#VpJ=+GlTwOIq!kQPOHe6TG+a3hDFG+B3A8EG zbfa$yo%PLw*x!tsc_%s6$Y>T+sD)ky(}&nMDRvCcQaT4MHQO=Lgg-I0)N6ppBu=HO z!_Q;9f7t*2Ej;seMG*#DfKp%Vd8(E*hiE?1+GAYJR>OQ~;-9icwKvMP!(n_}F)WiM zJ28Ld%h*T6Jbv-aua`RGm%TW#rk7Mc2{?nGN``2;Na1j{@c!yTHWr_?b*=Q8U!U&+ zT*oM29hN>~TW_6-?R22^BrnK$tusn%@TOai&!iaz z9nOqtRNR%db2;R%lKeyF4qEj|aio?+tsdp}zc3?~N{YL)r71T-Ii$ixZ)PRaJSmC9 ziRShO6Zbavv)&>7M7x>BNp%zvih5OXS8=RWOW0@>_~38(sL8|8jwfGAdh6yB1?I9M ztZ+I`@`~|Unr&h7^3k6$_^GQ#1L}9gq~0s*rRQ zTlMYVn-uvn9&YGw-%dGkr_?dCRx_O)_*;wWQT@V?m>L(o z<@E%GiaiEFsQIa%fj7MrhEl3vP}eCWOTvdRt^reh!3zXf$VnqbEAW<-4wmhwn}Oh9;Q1f*3^VZ z;0QWNrBc#J8IxgH^2rZgHGQ^?g z>JXqI;R4{Aw|VAIw5Q%Uck>-9X6C$Qgkz#WhZW0_%md{@En=w*GBo)=Z>U(h3R zSay)aIYadLX6QtBv^K25bNFgD%sSQe2NvqQkDOSgo{%$z+k4{PDLz3|e_W^hus{FA zPnKYrq-N#`C$cOEb;WlWSpK77w&1oz{DVU=$!xgEbd-%=zHYnFybdVx;_;2ta-pcA zMXj;^A`|=0{y(GR)bFS7W8|(eldV2GLl$ZP(L}gJgioyd{@g+L`CB3mgKuGZWcR~VJ(UB+h}CO7eh;b|xRoxU9#rJ`_FTk!#v<>VOoVWW_~Af=71trL-h*9+>}P4vM!H?1nY<|bKp zZXDCv2q|gP;PW|_E!vtZi53kUv0yi6wa#VxGc}~&m3#hpB%gSIufQPI=z2tiIF3GV zQ2jKTqTzH~f$bB_HTX`COBau=!)WAn#&>T4?Yyk~V^+AS@)jzKM{8|M}*YW#HoQ_Ujd* zZk!`_q{57Qd7kmxxh;* zVu2&QOr+u(Q?1)5O|iU)&Auj+>LYVw4Ot30K>{0NuKaTI9wx$E%W-1QmhMq#KYvCZ z<;W*W6TKx3C~0-N^-gNjq21GZM*N7Qi4!J|yFreSMSk2#>)+O5?n)daw&T1;I#HuI zdwx1Zc_UQIX4tyhqZmvMvBn<^_0&qDo$UgNKGXucvHE6J27Y>J~?VZNTs zwWxnFW%qI?;%j57yZ0Y)1Kj`ootiJ4(GnOW>F)UEp#tWO`cOPryB%st%d!dfkZkg; zVvH{z5tvmq%LA!pSqSr&_i5$_>m>%8!KoGZ_wmgg@wEcjaCC2TRpbo|lP)UTzOaxpE0mY@25elp}!=(uH;NI-+VYS^S{ttS> zq3gLHrcg$=e1L!FocPD-AOG@I@;CFp>X?Jj(dIl<Kf5%K>@EvQX6(79_%u{iw8k z7yYh+|HAjXRrD-V0I3f>a*Vld71{o-kHLB20wmrcz15?SqffZU9{vQ`OjVhwyjQ#` z`jI9#k=vyKj$rU@lE>N6c#O0#+@x36l(b~8r+8do<(EO6ir1$cO z+n+d3X+3N1SsYZIO=Z)J^%2h8{iy>x^AGX2G# z2D?e&8UTJqZAM7g;L!zWVHTthq|ZU7rzawlhs*)&HD<_Zns3TOc=os1H7K%|dkou> zfa09-2h|@mxJ!;%yTv;>JC$J7eN8MBDO}{kS21N6b{L;Oc21`98?k>l2paXgyk-Qv z=|5FO?BdH1OzkenV3`_|^Ko_Ca$jyeHBJ1; zPexV55kN}gmL(=`{$BRMZ8dSG_tp?|x$BiB%;@R9)h9n?a1M{+;}E5_XomG)sn2 z{uqA9)Lh6}ZifD?ury|asQZn{f$TnPI3$56e~jv<%$>K_#Ta{oOg1fdp+my2FCt|8q!#XoSp1Z{EnvV8hHitqln8Z?HpeBVYAK-`7B`8X}Ip)KyU6- zpp^qOZ}#Slc5|c7#`aop=_a90nAA<%{N#5qKGF(Y`? z7q4ZL6LVyAc?z#yY9+TX!ucT1M(0hRymIQApzx_+m@8y@T^U&zk%CKo{8EwLXrBNb z7e{w)3*IQsroitPTDXJTVq`d|=X5Cz{Z~?B|Jc0N@Bs;-?hn|}3N+y=uPMl-C zXO7j(ksj@P1fUAdl!#FY-VN&W-qD$IWoweUOQwKtWS=C0Uni)o-@qA2AUF0Qoz>F$ z`f&<~V;{5jcTo?w2~pqN_V35=FM4mJ@031^SA(9+?y!+xf4Q$4HG)GjV|lNOcubTFc{+?HV_`_>Atwhhq5SXi<~;bgr2-a7 zYuLKMB-cPj%jaDa`#Ii~S|@4Q@^0h^sc1d~NF-3p2o zk8Rf>7u)#HG8_dY@O0#ABS^=Vh7{N|4#^%7&>H(DRmT^I==S}3&eHaLi`L8HS;LEG z%yvNvK1&?1Qf-tfR3`Br^_>xRfBZC_M{7B-gebJ;XytbrfURL9+7Ou5U|a#WF5o^_ z4&YauP~cZ8pE0~}Za<0j9Eqi{1SupFbK8x36)zggjmt`$2mG%bsSf|p1OF!Cgm}g7 zROvx2s;ZrSi{E@G`a8Yv@aFki3Zg4Qb8)zvxr8ao>o#=Ey4@(BK~5vcgVK9rhET-! zhB`pv<3#SkHsAKPvq#zc#EM**aPNVS%5{;2Ft%~j91)(5a-P|rx3eS_o_`0Tq)(tN z+<1>&!8D1yyM3rCk<0^@+4H#Ag_r)Lakso_E=!M2Kd|Fo!v|@o$z@^OG{saJrUBdkIL(JtvVi;4TgNH{ z-%XvsaS9B=9wQ*4O^*kl3e-q(Nt{pJOj?F4qj27OYN_UvQ@mE*546&KQ|<@=F?~^T z02$jCyGgLaL3UmP(p@3$pFqRgMT*plqtMY6-!n|Gg;DJaJF!BqX;Ikz zr3OhL{$06($mRef+sF!{we0O{6d9Mvv_l%m$N0f-m4e;LLUmj@dSp8ACUkFSX|(Cl zW6*K-FY8RnsXO)9WYJ_*vXFWoDl;61*fVOT*)giLuD$tMX>NS?UL7_Y`{EZzL z|0b&GNaXc$Az=Z}D*$~h{NyomBp6uYc}fD}$e2|jt$N1lL-lL82-L&#>gGN z|5Q|N8mb6;>$1;3yUVAt{Bd}}8Z2}h5=7QMJiB}F)PU;69Cixsrm#sES(o^oirP@% z{Bmb+WGgjPxBq#WQuZe$jIArvznPZACqy74x63z7%xzx#FQYU!sDIJ!wvCOL^tK^J zv^vj^U`n^R+N8x2l_e8;B01dqg6?cpz=q(EkGw)~kopZT|H`#u0oZXx21(DQD}Udy z0C+oADvchq?pZqUr%k0l&q_(^c@g`} zC37_za~}pcQ6ARF`K)7NDT8ZRllmNZ(po@SwX;-^p!L{;@}%IU1g%$*)hXz2K1P;f zpl>Fj?&)^iFX(sB>vJp(i=o2 zwH*bV2BNN5ha7REN z@~nkCt}Ni)!_Td)+dqxMeE`(n0-5tBn~nOhU%|@N6$z~p;3hcX@%!b|DKO79ND6=siEHFppAlo#2>j@ z(ZG^H-3$p!KU4z8$JhDCPpQ?vn$#{vP=LW0~KLP6F#|;^^fGvGioO8!KGa{mE_j9eT|-ar!7Qguv6Nr%6o9EU4p4V=q`c`rYa5@+OesxTg=IvlmfX#*okmDy~dj zy|nSjl6U)-YLGd5@4G4snz%4DFB{mB2SR<(rpQH{`tg~BFPk2rs*!`IgEd3;zmukC zn(d5HJzV19QfH4;slR^j>hp^i?}iy>ew;S;lK*Qyk>S&AIxSk4;KQE}WouT=S3M%@ zkj7s)uw@}`ajJ}b`l|1cbT4<;?R|mtXH2HD$}YNZkXo7d@4k$d)Xv|ZQa1Z`S}1BP zy`7=&A(wI;fGq8 z?my<4VlTBe@>@pH!0h%(r8}g;Pdt%A<@zuaOMV>Xnz7vPdKp4+b@wc=I9@M%1gqM3 z5^7?S*>o^Pcws%2!bHWt!lhdXSZ)0v>8V$RLEU9L2yJ}GRhEH@Sl4bor9W}1EvoY*HQJvQyE74$ zKh;_`;BYZ>ldrD>$k3%(q2_}yryI7L)koh!a2IqXZz4puta@zjaAI*`;ug=SWWI_+$f%1xJZ z9@?vsRC>wSeYd|gl1JxV{XEb4NC`(HEi?6R$(o*XAc-AaAZhHJco;B zd^UV_B`fmaNc_036Qp^D>d6X($XRxu#^x>32&1^e=Vxq!18L$yzi&PW1hVq6ug*;@ z(M2+YHt9S?-|q&rj0TRzi8|k-WDpzrD($9S^(@@jiB$V7v#l11Lo=85%CwFaze+R- zk|!!VG^C+lsG(aLcSQ7~v+tkB5g=J-)Wg=bx00VM1O|NBe84~_rE~mu)sVayM;TLzIT``67}Q4 zLslHCbvkLeJ0>>9h*?SdgPi~ZGvI@MHH~`CSK%7ZEJQc z_goo~8!#1MAy&FExMRO7rs(nIWmnJuF|Ixb2rDC9Sm9MA(A+dHJkBg!Z3xe2H^TUr zD1Gr^nn;%0MDAH(9L^ngpj)h{U~UgSWJz+hEp`0(zWBT8r$KpJIl>I+lAzG(0|)I6 zw2~1Zq{Y(By2aaz5S@7&*yfqi$Qd`3f(CLdZqH2+6^st^KTL!=^*4Sb7z$ALoFz79 z1=7lDMH$1N@pE2>@OD)?jDlFy0-#IG8H|UL0~84S5Uqna(wW7{=Y{lqyjzz)VZUp<4z!h(6hF3_NeP{26rh0@a19-nzR!{)epWEuyh;U< zL`|tGApMpvj)vX_me;-qSpG|77c-LMrE%hCd^V}vqD=ydn9{&S`_@ZHEWjY`c|>|kkq;H;UP&D`TLx8 z^Pz^3g!A=Ks=Iz&YxX49YvgVt+8ArWw}MQEVN=Qs^rOTdjx3_bM|c&rjz=z(#-akC zDZXJA=B>DFdBy%vS2pL4i_XGQy{-TwlXnQ(HFfmX?PRsnqZ|mzA`ooI0d&>VkfE4B zg%GS}CYoIm$|m|rV&m@5aM3!S@MQ>ZQ|B88V&*hjrH3auy%wmGGuh@-#~x=}Nggf~SBc1BkK|_emLrJp+wfWcOfJy1oo4@O$HCNhvgsD$(*C0F zC)aa~?em>%@H_yuyvW=Rz%aO`|h1~Ppc%Z9VXm+PIXb1F(l zT-HQVUP*$WpXI&|@=c@6+BfgGRUUtNoMrag{J4(!v!B$Rj;c{u z?YkJpwDV($fnBkAf_ygRnp;+nJ=FUQ@vK4aV1;)i`HVRW9l`aUf23dM`%jaIjmzSO zjWl41U0@4o2d>A3_wI(VrQ9y~hwluBnn{Eg0qg7u4!A3UzTy*ka+mqA8EB6$IQxl) z(uzOCV^-fXQ|OCYsKesLY+m?tdy2_0+s};R<#UNB_MWy``NuiQ)0dL{Ew?suyBQmw zgLVfr3uGW8gl*0{VX|8(!GAEt|C6GE*u})M3TJk?;eFIy#sLCVZX1mU9k+mM0JSy}wTM{PrXa@RS^-r=agF@&3&aBxmi?#~nAD-E`6wzuHh zhly(Dek=0lj-~*INYSZ?I4b;&6Pvf$iX)1X0Gp=L`Y{oR-Cbw`qd)l;K1VP-w36m- z`0k^jwEDzt>R~aH?z>U}6C|)mwo_*kzXQ`P_^Sw8TrzgJ4qTvoNE!bf8|GWp61`#k z&GOSW;a5@Nm6-PF{n370RbLioX<@xvovhNdfJC+oKUI?yV`~Mme}ikZJ!61N@aS&< z<@)wL)W*K*S5j?-ET{H7&@NLBB@g6yxK4IIBsij4Ze?~x!=bXK<~k4Unt%((MXLR< zUjx$(xG7J$6QiqzHm@){e7c3$oYLtr-Vs~0Fa}jIT$Le# z9}aVw!w6zrx=p7x`91*og8*$2l20(C;quGv2tmrTx{sX?rk0-zSak`5&~3##s5oCH zbde912Yi(y;VV#@6%z`~XWoxMR@hxQlzC7S)t);ASscEvqc@Z;M+levjhJ~3+wQiDYn4p{76zA;&QnaHD2|6E!6%$H)4`$ z9c_rM$Yw{m%_H*L%N9aX;0Egd!XKyk-xUEaOvXGR^eGz#GgFCKKUTJUKQoD&H8i0 ze2=KF>D58;5onZ~~eL#m#nR zjqLvVixxoE^zjN`j-Z#U$tiU7DsE#W3mx95&c|*z4^p0*8lFbfJ_l~OwI>%=zNw9D z2D_UVr(?Ctp2_Ht4~fdi*)0r0c6!$%ye=b%!!;)e-f|hgSk&37!;$%2KqmdZ@IEOk zA%|*cl7w>4>Tz70kahxladLM$T)0s9G%6;A;aC6pXou6C0%o#k#9c+k`iR)A&jm)q z1}FI7?rd)*3{cGuc0Tu=_iqJL2R=RAY!F{+Y>E$#DYLoQ+1`3PbwwcZSnZ$mAMl~Z{Y~gDfUkcd-y!sb z&5^(kJoA8pcxS9-wd{&bYznpK5-X$>MzoH7Rn53MfU35BKO^PH1F=|?Ocsi1%?vr{ zIo5q*CkbCSx%$pKqaLkWu8l2(IofIt)eje;4E_u!K?N{6#Cn6$0i8-)*`A*YHOU0Y zbRT!kgdeFVCj_A0@uNJpr81cDkjI^~zSMzXy5H$VxUII24oFt*lY!){48Dd|YCfRd zeG8`cQL^$xv}fop(r5K2XDdq8gp+M*hGI{!TdX4cvP9vcp^Xk=)%vK3*i|e>yLkUB z_V3sp+I>7keO`sE&3maW@UNfQ^|XKwLXsQk&+Jx`uzFW{fnnBCp$cRH+FW`V7|VPR z(NV_7$jAbFDd_LL-4fi=+p661jl>Kr$vE8>+WZE>YV+3&IiczCIMMID7+lbn-Ge8v zLOhw}Mze2S=7^1{covmeAKPrT+8!`#-dNEid3$#Hg%7BGk)57`>76Oobc1|#W6?gs zLbcXbl%_Y`GBb#A2=aH8GL4{=+)bY~!NFtCK+>;_4kC5USmX4X$_t0&filRjypu*p zC=M-n7EN=C52VTJb)3OT+VH@)Z#Shk=%G9170@@)?aphxVj4hR~?s zc!LV6ay#HaQ?{s~e;#l0yzgctm7A_hKC}MePdYmWZNj<8??}iFdFnhhhak$jfZO^f z-^Nnn+M>t5)&DvjS&h7Ed{WHXnpoFBg@_jh94px1WCtatW~o$(qS=-}bTD!>U+A}2 zMCRp-*AvnbFHZy$-^6<_wnp)>4uL&C^KI?@S^Jt-9pffzVRt4O$s2pXtz{DGumRM1 zND{)WJb9^i6Hlc4YV4xv%Cs=Hr_`p+}% z@TQ+o;6X#ch6}B$nJUBONP7}!rbA9_0kri%DnWn-``ZFw1U_jOeSJp9G!y}lpInP{ zd(})I)H|n1zD`K|m3jVOR)MUFE$m;HhRBegk+6rjN3BFK;Rz#vHm+)uh#wp*g| z-?0-S*@jJpkvkh->e)U)a+}8BTIII(k}T$~e(BYN*YB=2Zobz;X1#iOWxT-g~RZ1{20IQ9+&#`Pq*8HT#!Je7);nXv#CRf0VaAz zd?rxjj+@P$0)NeDz_4{UVsqh&3>UU!1kN_$rgWm8a1d)vW?%y{BTuco!m36h3E1Tl z2)c;0Gp|I<09$UO2f?t{Qnznlfj^}<@&~VnIUX+7JaIUycNZ1t9u_?3CNFjUU3nHW z@&&8$!&|yOND0d4qyx*Rzd&%T<;Gi1^XqLzcZ6zrhX%jxG@pN<=B#Bn4CP(RA|fXG zy77V5sM)%lcanHyoCTlJM9}x!HNwN^Fs19nDNpQrdd`_{C|uZUk`LsD_mO6(s(E&- z8TY53%LZJy!b;83G$E(i2S81{$Z`4hVO2~_9wXh5SodOwGnTIwGX!&--7yf|5oD~7 z$&c~mev;#fKjhS?n#In7M<(WFM;&FtW$TVZi;EX8bF*T~3y5>!{H3zd55duBC%EA? zJ;xzk8zWOA6AkkW#c)yxxR_s0Wha!7i(e2K@^$b9te%y}8FexTCA`7!YHGN#S$!r6 zpro-~d&sP3kbX~ZbeW_=nGxJoo7vtcGvV09lx|)h&(iaJP?gB>H=nG}7AA-_Od4iERW9zGhzYmBeygKJZqc z8JxVi2TzOfi$BQIP(Iy+=hS-WzID8C>8t1?k&IO7h1keS!z2g;RNCib)~v=gg~0>S7jv^c+GLifSGP8}*=p@$ z&Q;CCyKe1jo808-8v@S&(jL|`QVo9?9F<~dZ2M#$!_#pw;|n^cCar%fps-oE*=$aM z@H9}z12PaymE&JW5rFzj#oD#$6z-y@3X zBw0Io7mGo+l##in_L17er#mW-Oe?#ii~#g&C*X$;$ zInkar85T8ilSRZJV!-Z@Mp`I?@k{RrTA2E%>8y@yKUofXg-hEdIuMdMwCa(x-95Gw z_liGJelK}{;zz;pjV<9xA<>LmYX!}UtA%dD`a0vT9ztw^FN?{uF6+sgfC%{u9fE$5 zuOlVrE2`U$<0n_ zALBph#k-51su~QrfRtduy>`-g1ntIX9lkZSimDvIATmN%)l7;ru;l8&mR<~RD;yus zf4&Dsq%EIl98YkYg%fv4jJ`m=LPh?d4K;Y73F3kqpkoAh4PNu2l_S;O3zX$cSJoXhC22+cJ$lAu2L9-*X93P zgT}9>1XOz;0<)f+RdW*yZ#QT?0xvL>Ye_*K8{yw6=waDJ(NP8Nw~vo!7dxd6TQ{5S z2cn(5tXWuD4OaMKIx8NcCp{a2k#X*w{~f$(z0F0QKWU)KQ+RF1ZLLZg8XBd=#Y(*! zXAULB#d;c=qxO59eHv3vI1r)Q>Q7aqNl^8y(5{WTMyK2l#mt2mUBohI*61{0brCRq zjemoIRAF?dWHA+~}Iz_IOYe!t`g6?C$iF0cvc_XpXHgJi@ak9K4K=tHx}BlMsEt6e(K&0I=mu4+SQKAtD`dV#5)L10<&tI8%_$d zG7%pHT|L`(N6VLsEF*Liud*+=+f;N#LLDo1L`hw?vJv$$Ue;)3JsFfIxQ_(UDa09t z$+^H#X>c{22q9#={qB zNA}~(+6|B`@1=T3PW5`dVI7_1hm81~n3q`QwP-k9MKQjf>u7C(ts5@%gyi%K-Bc3F zfvh)uR<87b&`oPRAoSN41j4_(cF|2K?`Nyw!n2MG1yQZ?xNc8$o2?bGnP-yLX25ex z3)MSUg>(Pe^t=XV-r%aczP0kL5ZA#v(vMKVn8F)3p{CqtCmHD1g_BrQd#4ZO{;zL% zBMz66hrttK4^vH3#6OG z;DaU_xU@ln*57o}YfV`7D<O=p@ohdv{@28oYM|n&p6AB4QwPLHU5J& z%RF4KuM5mG{#p58&E)iaV5ja=;h!ZR6W?rG2ScUxq?1AU^;{@N4IT!xq5N5%xgHNM zYczTC1s=ijMy7#U3YKv3ZUZUs24}Oa{(LI|u=?c-IazJO(KjAE4B#we({a!ZPsb$3 zm9mbZ_9+kC4W{_=Nkb+2p1$g8#J~N%;29}fopYwt$EPB7EuOx4y@b1rm=U3wP{5IT zeeS558N(Z@lJit^&YB>SRVia(sT|U62F#$Ps;k?fQl$dod_ZkS#dm;3Qf~S0#0-Ig z$&QhLzq_}r@(Mw7DNLruqVP(;nlKl&g?OaJx9)&$um^q_B`QG`6D3CvZH{`%3QqXK z@+M{|1y%8~rG1%wFPH53I!p?4^_?D^NiP*2@Mwu0pr#nua;Qa(6!MT}2ggpvA|~Xq zo5l^51KB<)&^jA#X)L80>W|V0PwbwXXM+L)mowheMbI}@`l27Oy?a#hFrSzUV`_(- zEud{f)|}V1^r$hW(@t6S58Merh$dV9XQ&NQly!F)kHzV!L5z^@1QmH~QI}g6@nB4g z+5tj0+)^AP=|5DY7St#Pp@kZmT#VqDIk4lJRUWSeVZQtcBPirv^FjULT`j%!)HjXI zxOet_G$8yuJSm}}WW%Gp@ZMrQZhqyDRLmspnkASU8YG?67oRkFQLk-sy_Kp+D`LRG zkDtf374Ld9oO38~aN_}n*i2)!tW#b8Yx;sRqkS^&(o|e zbx$;s>7+W}TVNX4YlIKBbrRcD>6qFxt&usZ=FDy9ImjK%KD5Q`iH_t~ef* z^_dXBB+Lq|DrC0M4`TTJR7`T5B_LP0XV|J#Pc|@(a3#E@xhAUiz$_U&0Zokh1fC$=!hTE}{S%`MYj2 zhQ?Sxr<;}ZITJuLov$xVR2RbTIDHuXs;U3eSFi~Sp0WgYr40OQDxXP*!Q0%OP2B2LVx#vu$=gs>QGKH-kuO=4B-rm1 zwGIyt*(vL$4JjQRMJu-nOw(ixJ{eeIs9WTf>ais-g-7>&P}1R86i zhsTF=rj1OXhG!$^s=#rVYU`hrDN=1*JUeH>-RU;nJ5Q2 zzc1$a1S)aj6vpI~3*;5pIyOp9&B)Mvf%VOu8pjaCkJTL-szf6VEv0xtY5Ti6MV*bs z@Qf42i*3pZ6xF1kj+wWdBHUdy?%UyhuHvAV^6qu<99nKzk$Zkg^<*d$kQJsW`Z@IX ztFOpFr8LTk^Y`6~R>b9lyg)nRe-$A?9q;ISIcHh)y-_=Ke(kvhjzOqueIP*w=|5=E zfqknut~nK-$YUKvAS^5JUvT%okQ42m8jQb^`E8Ir)QhG6H`baFW=!{w@!3NO(cu*F zg^D5nV%}C=YpDggESP<%Z3l!vJP>RV@n55!1HeG#=OiaESV@tWg3W+lO@nxZ-9O<3v4VhNx z4R2AT@wDkzVY$Qn>2?(t+x<%)rPIuDavGH~O4HMgWi+Xi!Ts?m2BE3Rxx!rL(*q;|9`2`}#A=374i#=J-3Ai}4w&`jp}XG*;R1HjVK8V*v86 z-4aS_`xxN9_M-vC6kows2#xd?ZH)UHCShbki3P*}@d_-Mig+s}3Gl!X;&66_+ncagyjcGG&bsqS z{#J*UDoj^FAfwtYL#ag05doSsx4Y?kD(U5|v;L?3n=s(1oA=|1o1ul`-bjYNmyPX5 zQ$yp$!bjnZ>>=`R&X^xaam@JMu!>ijv5V}{9`5wsVpW0$+39OjDG(I@r0`$V;%Ty( z)x6@tGYBK$=4J(Yq)V#;^LP0zss#^G!SE<^;F;LaEfd2V0a?rgR+{RFvAbn6=g(Ex z$)7YFsJBQipvMNu$ICtz6O=}Xg9kn7WOFvKjn6Js#_0L1w4P!7l^vTX=zmn51y>wQ z(53MJ!QI{6Ww0T5a1Ry&1a}$SA@~gL8r3hSC z6-to<>H~6UV?SYy0EWtuLpdS1M|JznNpgW3BSTpAO?YgPIR+?I@Z#$KzE?HtEPT@` z+AXJYQgVu5GVLGX<+5D+cDU*1?{Ye=E#1MRgOlj~4{lh6xAlTa+KMD$_AA^V*) z*K{~hqFVoB4Glbhl?hoF?v9`v>Vxfn>J$0q@qVC9Y}LC_TOG4xQ?3zH^a%-GaA5AA zYv@2HKCe3x%f-qL7kKe>Var+)QEvh8(628>|LN6=Jfk0;5Dt7N4db_6rxiwSY0m$G zM8KcAI4jUiG2C_C>=X?wr7O69F=?g~_rqqnP=39f^msApo87Y7dLn(9U*zv*V6;;U z0cZCU!xQ!4(M&4#1RJ@(_`z2@vNUHbbSI*IUg#ZhI}Rj&ppRT6+HcXHxW3Oa`kz)w zM*rn8-38;E{A78@Fkzg!0#*MR++~cBApkg5Om{n)8BD>d-=k0zeh7MQfQrfZn+v1U z{PfrSe2i-|mP|FX|s&ux(* z0xMWX`Jq^CL1O_}9asin)aypUH^{}b6QJ8NCcj|CRM+iM{G==y;J}3b&>!H5ixG}u z4uxcgi0CoOk^Km4rr~LQQN!d0eiukWB?V|aiOm~k!4xW_#z_Z$M|bES=KM!DbpG{! zcT`4jtl%h9;C+(jz}WXXhcEvnbkwfRUJ{tgeW`Ay&FfRk^|{+ngp1cIo zxHh{VrCX+{BVMB69{$P2ZKhLeI?5GgX(s%`%uL?QOz(#d-e@h2-q_e!xtUq(*c=Ls z*!jC4X!7)^>?p}bUQ51|`?|Rl?FC%}w0=Ds0Pt^b7fwh@Ds6s&E~&By(qKv1sUqp3 z!QNhxdqf)@WCd9@aYXYM0}xM7LmhaQ1qIfo1K8;l{*1DB1mh!g`I~2XNIz!V3__N- z`$APUHGeg2crx#qyY8d4p88r0@-6o7N8*pfv`^-vRPl@VJ$i_pL1tbiH(gv<{$! zH8jq{k$*rMKFErd&`r-~*DfCE578Hf%3|pPY6u|v2AaC!VnBBr`>V4Qk;*~xW=0(H zT(kGTnAJf8^3|2qd07&f$q(s>!oQz+D)pMk^qOqdiL)=rPqeDOufqo_{qls(NnGf^ zN7-%euAi-koq*q;otKL)rayXLOW>vWGI;(*`irhrX!b@9kzAB(v_lyuAP8(WdQ zB8aDuJ7g}FosqRtb4TlWnM7RZ4|*nY&MO#QxVgFF$b5F)9qaoums(ImG1i{E_- zV(T}SvvKB8<}cR#ze~LCQ6WR<6}aCl#p>QG4ca*D)&xLyN_}~bKINpVuNV+pJ1z51 zPfOM3e`jnhhF?Vo0slH?NxckDp8c#yWDs?vxN}M{>qQ6=a(FSP1WNle30f-42t(08 zi2we?#ySEwehbwY?;+c)cap+O{bIm;SZXlmPhvBKh&vn~8OFsM^N+wK; zQcBn+*x1+zfuL0;a`*-}n4~1Re#T?z&XtOs6MSvy3{1}?@Td+d3}CC^XcX#KYHHEZ z%5*+z6JQq7)gpBnaTUwp-b818e#=HK>Q;EmhN<7h8C)NPB3k^_P@-Df*ofEg#zKPD zyItJ3&-yZT?I~#2bC)SpZE~P=vefWdDfu%SG&v-LuuaG*9=%sL@@WaAZv9Dj4o9Xp z723iYZmKyv3>uUXGQ@gGtU_L;eWa^pI z4dl?a_h;*j@8T-p+0KU7 zxrlV0baX?MpYSb;1&pXxx9LJSlrBC)o0T>|k_#!{0hr7If| zxEx-h#%?V#<#FPb!28{v!*+#d&izX*b^llPSvX@ygVA z2fqDgCer=+v?*~jijccn3Vtk{emUl01S&=P zL;SzQ`>XrFJl~!7{iT)XaK2+<`PQrgt*hhF5?C$?>*hkEK|pQ1rV~pHaoEAElsZG3 zYDQ4($8Y}YHYPA0OKr3!oUZ|$qW3>D>m z3X^uVF~;r-gLHU@IHRaRURN&$IaB(fXCu9+mWU>10$%Sy=&=?ybst;uwc20$ha3~U zIVNULhyxzR)YYI0^OolRmAv^_r~&c5@n!R3_5L+I=kci!$KB!a<#f(-jnz2O+(T|L zD#BKTta-HcVsCIAUO*6Q7- zTvn>bpoF|^i8UBg&=T-?T2jZkrmIoVzfEve~2kUsTCGLIMF9~{E zv92n$wi`UTZ00oTh1(Oe-_RF++>JjnWJ1zgGrbBz-_SNPyT6%L4nIAZUlDwhzxdeB zDJZ{9d^e?CwB8y$yXv_s=ifCxWe(mnH%^FJn(Jp1-y6O$e}cF8tAsLz(yiJ?ft=r; zYt*cdwu`@O@(dwGp3th)Er4R>XIHjOR4xlMVq#&x;aDXvqVq|H|F#?V#~z~Gj5ZD zS5fVRK|tL!N3l2e<&4H$$06-N_fX&Z8g#x(>Hajw)AhZKq4hMxBf{kA zBazx*(g;UpWXchR&2lLJ{j)BVkG6)l(3&#G>l>dX9|xLil3lOxiu^4yQVPB0u_~I) ze^!4XWBwiGaCgOAMMWU@Z9oX~mBN1jEgd)CQbip@!eSdo+#baan!SlVFlIA)omkuG zDs<8~%76JmysI}q*}i*C&SWbhR23imyS5PxM8+=M6UG^VySwlVVNAK!!l#M27QYw?%s;4$6v5iW?HlJyPmyJ-U!uX#%Y% zk*3|D7iB=wVk_Dc`9oTEmfAGoF~gB32OdWJ=N?{8je)PXUi1k1h0)2fc~lPO)W7DS zycHUnW$`VXgaY}bt$zIPDtS7qjduNB=N+LvL7%qI+Rl3)E_XEBY31=oM;!_QMd?Cr z5M6cP{k*pN{3sU&;?~8s1c9hG0rKb18U&=LPId90$h|)tXJ$Dw#F7k1N9W=p2V<9G zhc>rngrqlhEzWjj^qIu>n-A>J;M-lXpVI|UwoQan&9@?Ae5?*RP(_%mim1g5>{70- zh3(dh#*Y!W-x|GJEC{ubia(xP$o3L(1za9DbmwJqZV`!2>wkcOhRz?y={(;v(G&n~ zijRoef{ESamB8)B*53BhCmtlX?}ix9=w`q3%dyD(Ff<#Kpc|b?hQ@jtN!wI3)r&;Q zr`T|}5GYA*sWUJ~1R6M1CmUul;Vs_$4HKjDEQv~6i8=ESO^J%fE@z-CK8Ut;|0Fb) z{o?@T$}<>2Gj}SM)Y*c*goW^^oK)yadZ5Yjjcf|uZx)g7fShSFPa;x&gOg3~n@f6! zX78kJ`cm?bgd)tDk&46r-QTas2j`iQmEz)$6^10)z~9(opc4siBKpTX+8~G${l3Qw z{RJhv^PN-6{46Ao6OuH5ceo_A?b3$3jZl7p2Vo^S+m?cqV$0dKW(-vy;&W6mK@Gg@!#<`C$3~Xfwp-)va9((5t zU%nv&1z}G^*AuTO(G#JshpHj86#w^+tINytB>R`HvdTVllTM%qSf(e3jP*prv(YV)W21D%p$KfCrRF(;?BBjTvx&lv@IYQZkF)esOP1LHHhfHX9Cd zUR16^r=jW-cHBbINVW1TgncjGo{P&W`lASEYiyRe;B{T}$p=7YBvPZp!&<&B5+UBX zc;$6@m(zpfJ;%4QgFD3$&r=fUbS8ulYs|az%}^w4FeX3XOtR5oJ8)OC^?0SGX1&B| z-}NlvjOBjK=&f;LM7jvFDJYhlsp;iXWWQ5BvwHuoA-M1bmZ%F}+FT^Ck?a-*eqewU zY++NJyctMvceecN7RLO;w5j**bag(2m@qXJ#?YG6_Q{3!w5B~*A6Q~w^R<<(13}SW z+J?w_3eh6CjwYu98@R(Gt7MA<+*zr{3*b8YyRWU zw5kfpd>xu-(o)&bI#UTaORaoJ#i0ZKlDf@EdeREZ^HgMyVZ6`;&r>#Cl?4U98#6l0 zb13>MMv-%fNnIiN6%McR{OXtBYY9AMK&q@jWe76q21gQ$-mlo8^S)>PSCNg*!}E(X z=JTx}!L}L;^G5&JUDACwrZ31h?b}*4{h7Gw`P2-VeL4OyK%ycQtenQPrBHX1wlwpT zNS+_N&BFw|M#x9Plxv==>qD#z;?hc#X)6WTboOcYp^!iIf{_?<^~Ii@RDApF`XMU$ zWL*O9SW!emn6d8EwN8;2LUQLwvY*s?OG!i<;03NPWC8eYJ{o(o)n>416?HmvK=rtT z%*l=+(y*RA)Y9`{M;YnP;BqL%QQ?Sz2e|sN3~!!N@-6DCJ}+6@&9${&OdgZWYw(#+b8 z^QDPQF1Lw>nH_JpMaw+%XS3zXGNEPLx%s5WP8UDF&a&hB={ldf39^sBvoL9w-{<@r z&6TyZf$DASShYkkVWZEYB;9fSpE*GzKLhGPRuUL*q7E)h>|*5HW)mtgji6O6Sct;v z$u;Z@@{}%I=L)*~Cv8~Wwi-&L>$qmP7PEjl$eqN4bOip*C)ID?@XF2!o17sjsjLivvKiF5#I7nr;<|YG>9+gUQulH9r|3uMo z)lkf#dP8M@Gu&j~BJ8R1Lh`hL2o4i8dJ0Q-W8LeaZ*J-&ZJ&24V}*T*fqA6PS-K+7 zX)PHyVzHA*87P?uz+*V>rX{!V<`QX&g+PaP*qV^Mus>;-$Wp5MI|Gd`$O@Zk!IPVw zsO0M&xY9$g@AI|Z-krDvUEM*1k=!wcxWBl2qZORN@?|i5_E=NRc4Mc>?cSWiw zUS;qL##Y!^_5uNu13uy5>gG8Er-MS|zJa4vt-2#5n&h?ABclZkTe!s9D4ebw|9PLBmJbCqncHTvYyFzCJOru z6*8~tBke!iK4%elHuf={XgvG|oOOB>{7WjpmSf4m9eLS;z$#RQ!5Z2bOKwb&X3^96 zx_lMH=s%$NB|o$q1g{U*>AA;*;(6vFd_6boew(PhRa~a-@A@!Bi9!s(VefnhocZ=B zUQkw2qGdhR9AdLlUo{_VcYkI;AY>Qi0%$(oF=~h%%Iavle7T-10ZY><5LCU0zCBPM z%I=m5xaj9er;~=RsAHJ7&F)1_RJY7#u#p}-3m$s|Y|~BK$R`MGvwRK50D|}ZfNZ5z zvrHdI169r;sna0}P>9Aqj`duQI|s8I@!M^f^p^`SgKr&H@Qt7SadCD>?Sr*D?va!; zRC|6#~B!Skn8Kf|7_nOD+a9af0;%OO! zxkv$Z9HnJeb7;N93sn-finwT?i)XV63(OyuIBjcRvJVjc5FC%q6v)gF!4VvO<7*5M z!}tdS>@fJainbER=892D!-C0lh&DOGImbt zarZ+;qsIyqE4)FG6P#j2Ki8jFn#xbtGR<-_>D`*l83AVHOCC_8ckY~QWmshqu6eDU zgmrhkCZ;;XS|eb>hB~5brOk-`)hks}%P-ZJ)kGrKNExaFkjS_uvC4%oFo_7JM2H_7 z`!CnI<`;FO1X1%(tYMcX{xovYm3fq>7?H+=@^!Yoj@gVd8Ky)*N~`8F^Hmvr+r zQM73o5es?m{?@8H4xckxR5g#kI6q^KrPN{I8@kel`10WuXeyaRvk;y zOJ=P`7nW(Q1=NupGA)bsfU_LZVm@S%MAkDrIgar$cX=waV3TmIlRYAyN6vjV$jRr1 zxV1l|R$}=;Fl1AkTSzH6U)_h^@nuo1H8?>=r~yhOH49=*e$(rAibl={pbTvWcMUt{ zE4N8t4L)d_Qj1xWu9h4pXnO0>Gi`8f@Yg{sNCivJC?_jseDxfi{cnWF9t(fQE-aK_ zt^ztFj!U~ ze+<0kGap7k89s}zSFH=3MkXFFFjKW7Q=^UK?(o4} zA0HF%^3zgweY$n{x_O#Tz4_xfsbXkkOy!5`&5+UUwq>A>_2({Uy11)LFY}Kw2~7ye zx1`un6(^#U>DA#&N={d}v_Qz&s61~)7+)xvW`yS9fFNSkJU(sMf>^fz3O3cRukC=@tqht`+_U?}nYeUr%sez&9* zeY4>?^V*fe(Vj!zg`ckYcb$?)p@1b1N3B_{s zGA<{5fPZf*tRkovKbrgIlixbN3FzE0j=Mu3gpX!RC=m27#)T%zqBMvSh4!*bT;@|3 z*vuuj-lU!Haax-+HeZNE?Cf-g&>~g|+EzzU`aq0E{imQ$C5;?|(lC!pec1#1^xrBW zPiX*IgF>T?PQ-mNJ!r_e$7@K5_FSyr%h)Tc_D(g7d0#`+aL(&4H z*qA=?9axkjbDCxm#_>l{Oczo46vhQct!xoFr=fAQ0ihlZx?ZbXzfKGI^+YbiJ(o=U z5!Eur_q(YFuIuR2~(oaUre7Is^xN_OgRzZpk_qrSO?|CNM`J z7vZCezM-%ky5X{&dC{_+&5{e<|18FAHq@V!0bv~ri+||kpyKO$!at$6i`#4l+hT>P z3}DtzSb{UD&G|Bx0d4alIga>)KmoMq!7}MoL<58r%z;)&+M)9;rnM@KjSW^@ykW5G zAx2C~GlK1LqsR=j08G(~L1QDSRwjI%eAn49X7Sh$GgqxQI6l`g8#gn+MjKkd@!46+ zsb`UpPSa@Td(i-<`=R@VGhD@O7?dvLNrhKtDv8DLSJIsXj5?{+IKG>v4R*6Cxt|ub z7F9r5;Q-y-XAR6LL`7uZxLM@e`ypMpC=}oh9VLuK91=8`IAo5$;Ya@wuN5*4C78UV zQkf@g9S_c%vN@CN4;3dgryWUeEJy4glQ-nCe0^d2eR}A)t%9w{8ESV8EGL1TFTd*A z`Er(@$N-`_q@QNg9NR97T3x3kVHC|UClJjA*~KDrf*Qvllmb>>I*-5`1tWo zt$LUC_EOp#5S+QO37V$C%1N3(9>zr6E&s9D3>OD+&(S^dB4+TGp2r=k^7!(kS@%2y z=vO6-??vZK5KDSw65r0GIwMdquvC3%7-gowl?ZwqE^#<=gBf>1#zv~x~(X~<`k*l%VrxvA`?m=+fgOZ zrYIZ#>ikGj!^h*wQNc!wnwuX-#K;jKIA5$k6SS^&PIoALx|*H$rdsj4gwz?I1v3Uf zGyQPK@e5-G57PWRsoVtlv;e1n`c)YCfHsHxKaYwP` z2x#A^&6a`xsYb^w$pxvQ98RSsp7KmqLeEJ}BoXJHqp^}!`9V+T_w&=|vT8GHz6~N# zZ0S6mcPjE9U6qA7P)Qpqz4 zdUnImcEqxEXgKU~hvCmHGl$q>9zBv+N1v~h!qurWOJfpf*QP>bCE8$E?e2cluupwc z4+R>i{F0(U6Khp`*F`GI?!%W?GUovleoQ`k%4gqGTx(2^qcpG1b>7a(p}_C5z37^L zHeyh>@Pw9d`DqwP}Q868VwodO%H)q~xI$&iPg$y?kCX;K=y z4iYezs#$uYXHw@mot)lLLC`?giCbgYyhvlh8g^;yy;_#IgwwjzK8NbnMp-=`Uo`9U zGJBcplx^9&7Q?{aCd0cC-MaK-?fH9&R$e{n@#@?R<;7euA2dg!BhNP4JNkvUW(=P8TvEbiioNHrmW{jhXTIdS5!vv_byV;`^4qb+HwN3Umr)g$r8Hk4GEzAF1(<1 z4Ju&um&n1R=<>%#Hmf!K1*byyMuU|;OD$evuBU=IkU5Bfi1qVC);#Z90FO@5bghz! zMN#l++|}7e1HPB*8Qy76mO*B&SRbK%+t<9)nyja_4>>Q8VX@CAr5yGX8;T zU0&{lQl&%Mi1|(uX$Wc|{_0n2)aikv2I54EY;G=sPABj~$xDH7+@fcavZc_1y;8)% z-zGcihItKXiQp`5IWu52$P+XJt!S7&Ul3$Q+kwYQk=X)_2Wor)|M&&xz6K4W_hn1* zMR>sFk4moMk1`}BXh2Ab?F}s%^w<*bbWEBOgR6+#H)c4*hr)ppjR9?=akS$6YPp1el^0}SYKFZ7f1utb`B?9v%&$Gw}*N4>bknxUO*-vh! z6ksECgQ_bec@(<(aA_y!h1pntSe@^li7X#dG|0(J*rYQu(_xTDB5cKb&2YK0(k%Oi z0nlBY?(ys44Sz$iH!Y$zmA7F|JzcHUxY{T<`+Tmd<{c8{W%g&U7zGpswx?XlU8nO6 zDtU}~!o!|SRC@#^UPjSoOMV*eihXfBMcwEpWW zmq(YiTsrSXXQWs(I3eHCF0oN-vsa<9qCQopUeOPP-WojW{8KIdfj69We|E@OH7LXR z@oUi1LCaOLd5{%OTf0*D_PXria#Dpovpn##3>ZX}k#;~cr?Nkxef09@X9x~2SApb| zT*Mo4l0puxFA36TX|O8imw5RrS40j$_|^=pMaByPoNqh)bKcWtre&i8)NsrdG%AD_ zrgP%pHOz&Srn$sDj!xymL>A`JWR1mE&=*Z6w9#&kM#9nJ6ZsAeGHG{hy%p&qR=vgv zoZW3Yo^SWH zUrmnN!ZW*-YOWb3Lo@XHUn~EnrJw!8-CPJies28z(Y1qbyuQK`c1aYjCNIKqQddsj z!7+SXIefWLHy4jyGljJ`x#KzdLLOi3hMQ#8A;iqu&3qV6k8jKFV)f~*OuuGcZ2$+y8NT9j- zo-G2Eq0^v6m15;b3i>U7Wf%{|vct>B2^=Rt|1=|fB=j$oo^{#yyIBxr#u;^}_O(!z z>qR5ur{LixJd_kbe^q{2b!O3Eo>y6~(X(o9Gug8f6@HgA_a_VwWC(i((Sih1$mL&* zCz9hOzfly$fB`9?5+d^uyQGp58y9zNwcjT6EhRbuBZU{trCEWyGEDw$7G;z*0aun8z;h z+@-Y>KPNFU(d{w$E6lgZEYYDnxp7@f_O6XW7Yg}gO(MNb#nTzN`Z&$Cb0+3zU9C&o z%;rve;=&K8qO5sSQ|qpw{BJhu%sHcPXcTdlCXWc}YkI;;15LXkQ1SGP zfe+CI`RGryF~Dwh(*4F+|GRWJBC$0qIXVe?bQBd5OnUS|C`2kChmLkHMq z8KC;XF3hAlA?n|tSP4JHKBKZna?w2+wqCTFSlIqGkwZ@tJD^W=K z%yKQL)ii|XdWaCj1%28b5HvJ4)*Dc+Z?jZOn%;E!r;*f4?QiZyS z8BZfaBUr~vQtQ$t)8}i~{oSir=FE9Xg*UnVChfT~X0)zThe1cAn@MP^a$Eo8lopb< zF;T(#5|u08@Uubo^~Tvs-?;2&rB(kiv@8b!qUdp>J;HknNSEEe%f^mZ%B;nxD} zX9bgmJFd5g&`-y zD8N1ARlq{lt3$))AkBd7zthSMvOVc8rue$N=uhVXhf?AUZxmv}sA4zP~opLLaG-WOy3!+qF zF80X(V`KQ10O;%^24rRw6!MilA^)=@0A|3ZMw4vhRz%42{a55f7bMhWZo7+o*g<-VHs(79p$5d@qj8y+(|BIM9B1E-OTsSYg{|@v(45 zioGp*8Qpl>N{Kri@(`KJ||TBjFvbVoOW0G%ZCXN^HHtyxXTx3i5PWw3lt&Z|A|l* zX_ptj)f|KO)iC|Tzr1J;nxxJ|ww0l|!?sK_M9#c&RWnNt55=ldwj!nS_Kof-B5w zk}GM79VHcy@)l9L4hd)tI)OI zN5)865AvG7P&`g#3bo-b<`*ct)n{&>92}jv9?ZOo==e(uH6AZ#%1>(AJBl>4@a9PE zz+h)cr(g)oZj!|-X=6=5pn2dOGJlAtP@WX4GQtDQQl(2RLS1Ji!zh6s^K=wo#D3ja zLzVE3)nudT4K)r3TOGl zNeSiJuYOD*CTK9V1#JQC@ZwVH@keAn*4JE2+q_9A`Ha1%H2+V^%$o$vN(-XPo!3sN zn@EF4lm9-_SNg92O-6yd87Rd7_=4>yD9qT09)TloRcJEEk7+#0U&lR&+*CED^F|t^ zay6I=^%M)<(Jig`GA0W$x&74T!B)3aalfwvdf&@iBCm_ zTZ-K*GgA=vStH(~0WQb%j}JRk(WM)~j1ah|zgD~8S$b;J`c0-qRJD7!qxOXQpk!ML z)0i7!K>JLkuO&7#Z}!rDX!E0y9sS~bxB+TKtNJ?p1cP%5LkFsDrruXSGS4{8C-tJr z^xzaqMd-9yu;UKhe@M%}e-<)&ddz%wYyPOj{Dt+F*LXI|ji}a(RWeH7$r|l8Ar3qd zjyr?Q?#yhAN}U4}`sVKxD`y%4&nTs7FIlA7v1NvQXaeiRA4lfvbz;D6jfcGsNDC)?^V?fG5op$DPd)! z7-L2{T{ajD%Q1VN%!Y*`n5xiujf*N5B7c=>ZKoZZZ%@8kVZW`u3x<`Qqnlic=TNN# z0-=gQsR4_+v zi7+%H-M|f3RZqN!Ero4+ft=z&i~a;^EX$}9(MZoHot;~zZ2TxwN2&jmKFU<4Cjw8? zD0L1mv<%#ouAbgpODF)qPhHZUCFdI@!g$D<;*-Ea1o z6l%YiW4H4^BOvP!wi_yPadLpQsj~b1Wg0Ex9{>1aQX9wU58Mv}X<}D==r%5h@#3B9 z&;14C(>uZ966=6$J{@U45ot(j6jHo7Vma^c72H2rQQj{ny`4*~La>*G62-0$m{EMC zw$JM%(|_6GsO+Ar7ULczjiAe(_Nk5e1FneBscuiL>c! z`2XL}`4k##zt7dFzWqr)ZGXCt^&+qZtZA zQ1#r5MiK&}MH?~2I^3Bjo>v8}USS_eFS zUa1Dzb86Y^AV+sC6I5V5`$89}?i3mSO(3-5sTv@aWS9=TUA^0iEkgJ`KnQ%s>?RKT zU0qLfIe;e6fyql6t4<`(lyQL+hCl^osB}QgA(ht5L?1uh%o*u9jKwUebNK?V5Lrgz z;Iykklwx_T2gy+avMfwNh-9E{VS>Jw_@yo($v$gpw7{e2&B?UfBCdqHbTa0R+hjg+ zojo=s&T|_j5kksyj((12kc(-o@99bcBd=b+0Es_9yoP!n>e#Tn=HmZ8mL%iP=$3!) z_}Y=eXS))1l3^o2f_AdnMQ#LLUjt*YMw35ACSI3$%98o2pSgaf-_jLK83AHtXV<m zRLDSzB3TUCOXsSw>H`G-HD2AMA??Q#wC`IAH{6LV;a1f-kgA}kQNd00#%?}-lZj2$ zMls|Fi4O6O_{??|$^7XJnH=p=0g5?f_1qWn!+8m)lZgHM8@6=xGuBSm19ID)={CCC z8gt_^p13!_499o*;LA|IgFor-obTb?Rd;6}FKJNvBzUw1!7hfwUcjcGhbyBY3 zyS2mHFQ3bo&-TT!ye7$V>Rx3^d_^)u>NFKU*O!|>W)b(-tHVdB9HS^QT0l^3;)wEA z6o+)`Xb$xF&Rro?MMnkhxT502sl9IyJ((Ygedi^DG=!vt4|Y4!a`H^%!d+OvVT+=7 zn`1y0&=6@-a!XYI_WGRH+6wTPZ!=J4H(xNB$`KzfQ*Q zcc$KdeE^-eb%Ct5+VVnW#}#@_Ol|LbT`%~c^3qbZyDl(ylb5}#`G|ADXwQzDJQyh3}z_BXV{KJUogeS9Ff5QUG%(5RLzy0;=O_;ZyT@&!FQm`B^Wy zT^ByO$Q4ehwTOcUwH(ko$z|LM2mGTKllLtDACk;=A)CkoWMgdIgAy`Z*3dmF^<+J=Fq3G$gpu0i{rKvI zJN??5UpSadZ$cavJJ2ch{MopRFx)opt6ijbzE%H(e{(nxL8K*8J-++>yMVOi7wx}~ zA(lfc?1g+5F`w;V=DjdO<{X^eDky#sS$fZ!SA0%|_31R_SBr(l9a6 zQBfz+UPNDcb3kceCUB%k(80bSq3574kK=7rT+<)>|Le(gi zNPM-+Uaa>whjes$*b7%t`&_xq)C3(c?CfQBPIcZbt4nkcB$YkTCa<$XrqX~ImmmF8Ni|W z!L7QI|CvcVzMQ{lNx8bUQOE*d&zet!F5(9$&%ibBe}&eKgtma8djU4+CgUMScA?jq zPxMxT^lE%n>1xqVx|syeSKWl)2D2f9AKP*DsyeDK`^|#Vci|oC&AA);<)-xYLGHbS z004sBXU}HEz>B-$Ewv0`Gen`5R_tC1SI4lnk;wn8so1c~uwv^bMq&D4^DAHVx7JrX z>}jWVwCYcRPgQrboH|^V@dw!oLL4Oe(0*X^ei(MZ^}Fvx5q=oLzK8%HAap?#SMTII zbn{`EfDAdQ@p{4XAJ7hM@=d=KzF|n`YvmtJZA1EP&UTh=w_n}qqr}oC$EucwCXqg$ zR>dJ!*SL)pYp}#q6SSnCjYJql^EH#J@}OZ#Ym_p7_yLw(SGf zyk}XP@6Wt0Pq-(yZ+$kn>8}N4@iXnN8zp2Q zvA2k6ACn)CW>(*$HiHjfPoMb%bXc2WJN)b5PF?H_zrDpjAWX^IP}Nxj8wv++78gZX3C0eA-)o6MRv{VCX>()a+W_H{DVTa~4S{rMS6y6Sdtopqf_SZ78 zN?aSEDg0_odI#RImc9SrpkhAT_YS+yS?))IJbX=~4Td->5&ZSxx|&}4EB8z< zmlL1z?Ns5gZD;WGqh*$GOB$6v@#J+hlnXr;sTBbxXH|_$WM5*&w-?3^Y~3M{(S1kBpyUpy=YUC-Bkg%OFT&%sX-=?S$K zZ|-U5?q?ml$$zu^0kCT}a)qw%i-QggZADGEc6KP=B-%kX*d98f6NX}}d~Is@LltuNL2 zVDnWO28eyjDSO_HOxdwY>edAn5@ORI(QS~%$5+2UV1n&%(O{pgTC4KmIi z{Fcs%r8YMl*9{YWt?EC66%6BVF!{S{*?jOOqoR2%4a&q7KcfcM@g~|0A$C5H?5@K$PL7t zi6SmPwTRU9eFaBlF#9wm@-*LXbjmDekVt z-CY|zxbx@z_WJ(4_DNQba*#)6o|*f;CijCTj{LuPi=Zu|nL@exZFGMj22F_Gp8-C0 zfHgpJ_0VLP%YF+0e=Lw|S^LMxDic}2wi$-Thf>EgwM5({j+fdoa{@%({b&5_ct%k- zF{mh{5h0iMHg=K8cSzLxxYu8CZ5nX&$!PI_#mMD4=I-wVN1sY(JH_01(1WU>)WsF5 zSo`@!X482htFuN9tIJ+jrZaUJ36`1+B=GdRV1b*E?8)iS8l~{Zn@I~bWl;v45~tox zy^Vf;!57Ncr!(TsUbFmoJ)`d@emu@2XQy43&sE)$FGqo2h9bD_1mzt+yY{jN;smvl z(hY)2Jfq&B$&mhGQR;bLB!S0s{i{y3`egd-yTM@G1~|6f4E-QLIom5HiK7;rJ=fo$ z%d$Ewkdi8(A_8w%T5gbnTH&{KcM1p3r2kseuBo<^Zx#zO1t75##n958 z_t#q^@yUY`^cCON)Vd~Qf}`59#Ew^5u?J9r3(T=lPX6c6g|(3+PW|WJ+&SZ4r{A*P zO?ljgDnNN)t52b39N5qI`M)87LZh}bM_*nvc#7txq2It6zmHCvc_ig^c_hhN=z0#i z4}}%uazFuXZA{?sCAAd+$wue|7i5N~^Qwk|bA#95|AsQCdGqyU!O`I5RZZbSic;Vi zWI@~*I+1_>UIm+X#a!Qay(Ozi%iX%i4dS40Toi7bk%O!>$h*P&!!V_roKc*uopM9h zy=APT#}9!I^vH@iIV}=sERuIbLlf_-!?kYE{WKsbXA$f)~QSF?ce?jj7m+x`;bl2gKTryLj6X zvNOqkM_@Maj`VrDyS9_}3mJbs%qr?@lMw?Bk>92}7b@!kvp8&9Bb~kkz1D!zup#B=A?}+&(o--^c-{ zC!zM&Auu^5HJ`c)rx{?ql(7Vt-F_4z5wpVlpX)}eL%Y>)Y9?;WN)r6x*)j_hz$3e` zhD{3@`PyLxcJ~=QNWPaJ$`WYD+NVl61;L$<&HwF%?b^v1aY0G42cJWzQy019b4zQd zWbNogInm6F8Wq%9=Ph_X>!6t$p0~VY!*`h8hI_`yS5U+Bh%fD#cp1RKx_dZyjt-8sOMr{m_v<^2Jim)GKWx@+aKHt#juE;KQ^6 zmhu*h%)c!tp+k(ZZ7Pg*&PS9NDL~ikYapf3{7q3vQ$V8i*p~42+hPYEfoM;pr0|i){e$Ea_ITD~PD}J}46)3W=>fP!%0N*?-}1`b13`Sx_pLd`ef|FLfzLV5bQpiW=Cw ze9$n|Dnej4MPO$XCC+%Cp_J!@Xd|}3>EtF9h&sxt`{U^7Dy@2MXZr)B^-y95oGmKhjF@oO8u!@841M)6;4{SL;J)AK@M(kBD zjb(~fR$1Eoq@w5%RlanoPqR9et|f%(~;s*`juErhzvDsB5Vr?La$Or^$;K5>!D)@5t4;ul|kXNZ9X@V;?= zC$vK#>sVrXg3k00jj^-8uwx7E>8vk_l)p&ek;OYfpCnIAi<;px&>gt$PgeOzc!CF~ z`I}-2e#8~EGY0qV6jHSn26%P^;N_f@Y>j4FOC16?d>nwC4mxoTsQ!H&t4 z3lVCDYa{=y^k~rh@<*vMd0NNl-}eECvvVQ@xqEv=)S|p7?@@T-eYid$E=Q`m>^7ec z+1dtn=#RaKI6RCj9`5!|-- zbFF}}iLm?Ul$URiG#%5TB4y%}^#2mhmzJ^OtDDbGf^HeiCxIfe{~hUvjHvD=Nn6zb< zKoM;QrZ0yXQIhaUr*Pc=>L0}jk<$66xtJ1nmWn<>R%C17_5xb#K)q7gge+w&{h`nx zlkKCoOAF?L8T_Q)XO7IYgHOK}C@v*FrnWRH`t7^flWALv9bF7*gcm8+V_TZdWEJw7 zcqu76DcS4liQ3xMvAc;$IEfGax700wU)5tBKlnhe(e{(WBP?^Mq;SE(%Nu|#iW=(V zIKdRf8OqduTBa7>=VtTpq1F2>_>`Z2Zi?;)(|)0+Mx|#^Jn-5$V`0*@#Q&sQ>zHsC z>CiufLIf2Nzqjsabp_)Uv&MtG?UxF+X~F)ha&=WYXW8^#qd=1A3e^NYKG8bQ3! z;{oz{Sgy8OB9_iAv7=U1&Sam5OOnuZT)0LaVHc$i&Cjk#X`jZdob%*-=z%Fdiffc4 zgEut!2gb?9dr4tUrreSzoqN#}`;t4ng+(cdbXT%xdaP#*4_EsOTL?=iIbqvRhw!)= zmJG?>n1%xl*G2qBya`{FS{<64N)U`$#Tb##AOF4Z>|wRDg5p zhV(;k?ibPEnPv&xaq$fjb^1A=64eYk6URh0DI)8|(Jl!8!ymFarj|}tYwswxAODIy z!yY64C$KXk@cpEibT{yz#>A;kd_VbAts6#$jgeK?)r}<(%)ZWYFg=C;#YNFN{eW~5 zRd2OsgTf}Hmk#!3Ri#>GyP=!iRjDZyY!Z@Ha4Uo4i|P&tC$H8bOHuI67Ja%dh7G9i z{VZ+^n9@b#-DVZ~8V=lJ-Tcsin#d+9dRF=-N9te>-Ckw zdk>#~YLD+Q=Ddn8ft4{ye@MNwMP84uYTcZY!w-;*J#U%|<6KI!%sh7MA4rUJ%d0jPSAr}#lhtRdqkBa|eY1$zd*iltQ?ogCP~j5?Inh9|KKPw}`L+MwkVO^~p) zfyjuHvFY54>+8P>*P3kOVY>T^>_g{etiIj*WV))Qx6%3ZE?2^NM&IrKURMWd8CxRD zw@af>4yb7d&Cf0t3!o@&SmkJuquJd1ApiE?{dz!6j&8o24nv<*Qi__x7(eXy{17qz zB3>mMJ*gBY7z7cDMjXoMLjT6xK#-B_h4J-Hqy&^>!bv{(4K?ddZK(8u&a zHpWB0ANpI%(Rh-xbvdRow#sZz>LOz8>nUXUM`nhfJZ4BtH0grw@j6K!-A3kI9$)-R zK5^gdB`bDl3RJfm4mS$6e%@;rY$Xt-AKy1NIBe4ExvBQo{4k$#a5Zy);yPTdcG!H7 zI|~g;w(d+ej%~AQdp7rqoAn@mPFyG#oH>(V^1y4Y8*@t`-WhSxyAToYh+ScL{pxKE za-B%@^r{hCZs=Q?xG4-k(-N>TtxO4MKz67Npg(nltu${m4KDv^hGUs~$M&q7IN}m= z%p`Rvn{)QXZj|qDhXekZo5r@C;z`=ZU0c3f%`80DxRV+?!i#birOIG4+uQ2ns-u5Qh{=?cRI7|;&PX2=3@T+r?DXXujvgvKDeKa8h1RP`aiEQ zHQZcVkMF$0q?0X_9&NK%9I<>6sMbdf*10`|vK6MoeYO!W0fM=^SsVTGdnOig#94)= znUx^#H|knxLA@&guRE?oz)A5{{qGNpZ{-UpJo2oBoun!jE3XB6aCeJ!$`H)R+NM0c zX&s#9f&HCm{2jiLGt>g4b3PEbJImm0VbwMhw!Fwkl~T6k^MXD#g{Sl|d3rI9hQmFP zSQa&zm~9^mhv^3MPv3+YsN6u6&a6+7y-X#TB{g?DC#dsOcocH#Pj9NRY>RZgA#D;R z*l}$)BR*UlTT@uDG_D_T_DC4-D65Mx2sEFo@{JZy7isOjC3oh@yy@AB2ob0% zfHfJXiv*+s_;NNdau71%&8croaQNT+Qi0Yxo3%3h$ylm!Ts~D{whGMOqqw-Ugcw&6r4WOm>(Hg85CW!3x_r zq(BBZn{5y9v0_8Y<7H)c(UoA>6WoPw&Y?)SD_gg{f#@LeDT>U~Ejw#_JbeOSL3BVm@|5r|Vde1%CN2;vm{o52OC%lh zYvLioApNn!HO@`6#P=O-^0-8!rl+$ z2mA;>%BV`#x+pS+E>Kx?767*yPf)fghOwSMxt{4$KFAmNBMI(Tog7^hUtr8${Ms|? zNO-$Ha#0u6`9u@(JWZM}_Dzs-iDS59H>ZZvhe+99hZBY!Y21k5NpE1jCf+DCZJ)9{%h9Hgen<4gh`BQ{RN7q=G%Rd+meK}R^wgeJ{W|# z0hePMe1d|#Q1{=zf74!b!cqDEZG=>IL+js*IW9uvMc9*da8Xt4FNWv(rW>~Of9f-s ztZUpt1r{f9^^w5ym-s2~i~EHFi$J6^e=)p?w!2g*6%-Ty9g4Q=DS6FPgtwjdA5H@< zY=dj9+F(zE-aC-SscB$birYf9kQHJe3w$fRK8L`_}EvJBQyV+m z8yMVtXzQ*DpuV4yjMm!~QmBMZI3L~Is~^_}Y?p#YtHv|CMx3xTCh!HT&F*SBJ6OAj z)Nd!K9JCOW5N7DU4Mtxv^k1inGs6|)C)>&LtWuW`1sxp3VvdcZ6mDoXbMy1RE8(;x z4=jf8US@>-L~lpoDmWy7A28JfsB37@g~OuhDC6?m+bQ6#<^Qvv;2TTCqW|SHZGzBq z(7bG7+vC+#&>0!Kg3yCVrQ2$pbFomk~H8GT&jfWQxq8#|%El z_(B6{@*O>IIwaJxcywZ*8_fDA@KS)y;14JeeqPa^!l9!$!^Hf{o4=iM^tZDmHS z&1ovjC#z(g$H@-}`kH$w{*X#d$=Fjaarq#jeR(Dtqd%9~bbDX@U}P@jc`kSQFS-PJ zzEj0=zx<~o9kgsi$Z7BbEoA-{4a){DoB3NH4VG2v_@n93$!wd-1lsC3YU4U?Dx_k= zh+tLcsC54!sYJH@{JPKu>?FXkGc|GkzR$?iwl4enx*=?4;_Jk~$e5 zqU#JMiqDs1h@?YT@}}Ml-(U=+3yufy71gSCXTY;dC8Gm5QE+0X7Ve4N{j&svDko}q zZ>s12-Zt>bK)&!yLx{IvD|!RlB0Q`0;AGL18ti#mIH-aAAb-A^D~Pjc6YQSY+}^UB zGSO>HoR6os{e5NXwng|Z@Rf%6b%$!L>70nM@C1R#8sW%oJH6JG^{^+V_~M8938wNx z1nFL>JCgcQY!`#TQD)rl@m_3=TH{~HAYd}8hul5A>FGbldy#^yF$#4GH`69U)nLZT zNLJ#ZsM$u0;_v-fl0VozEX4Z@wT6v$(3MTdh3sA6Lac7t@-;@I9~4@WM=Y+>ii`c=Ey0HEt(~j}FHI zOCRJx5a5bvq%o4xGjG*Jb%Ac%qX22KVpoNBDqt>I2 zEnKB`mLnEVZd1o_vGz0(J6P$=|L?`Q(VnzlA}5W?*``9^X@sJXE>3osJ@TTaV``2l zJ*lV=smCtCa!{AhOtq2!ILUb6yDy}jVcg=E<{93m+CWTTi2zToXHPkR8rhZ6+Ml+8NTiBjUPRttv}b#}d{VIqnG|DjEY2-2291j+t(zvDr-&i+qvsK$Pud@qcdyu+p`;)KM5; zy>XlSpT;vznTj~DH7qH%p_ll(ps#{R>oHte%lx)cFybu@eNm9Eq7DNO2KKff_Sm4$ zYZFo6%Z~YzyA;AsssK$Z5tHj1<%WtNUK)fwtbE`xOw>N_t)t~e#I#)%pjsgy9Pr^I zqBPsO%$Fz{RcCz39vldDP(J7M-~EO|Bt%u-a@R0|cVWnr`c~l!IE|au#uVoH%kMRP z(#^ub{;G{`E=Um$w4g98RX;Zc(WVe~&FtNq%jtv#ibsNPk?cPgmUHNQ<x%j2I_Zh-_kir(; zxA%dY#VK;|sdR1n2SCGvmhi&_WPBz|0-5Inv_WH20aZC9(@`&07q?}Wm*HewXfz5I zGr=7}k*ZvI4@Le|=TWXtx!-U7u|6fl8qf|KWr|Pb!A%w}9pG^uW+{^4;g~7b(2vYN zOChRC3B*2}CMr@aLWftOMkd$SU3!K`#<~j>lg>9odCxa3FkqATW#>b@hOoJ(u{-k{ z0e^05l#cX9G7Ia|{@`anZnyo<%A)^&%21@)PCQvmU%;%NFwTTnF~G`|CsMf0_~-IG z7ke|hu9w1AMo~7!z5J#)cBA`^!O-}|_ooX?rmEq=%99NJPJg;o)torX5$iAazxEu{ke61LNW!S3PU(v}Bn>Svm1Pb_Hs!|?x zOpcNoVwhIg$cnz;Q8rgAr>t63Djt2K+Y$a^fI2C5Fss}{)Ezy6yO60Pvb&V<*nf6i zEpF;#Uku=_#MlM40h=e#>k48BlVR({uC_3szUzrvM)5V&o_(h_20?<8qvEA^Np zY5eo@#g%ycal=yROkTskxem~4t!r_2Z1*n1IFxvB-n^{nfhxMP&<}SeU10R?Q?! zG#-pamr#NbEO{$bk&MhX!N<$}j?1jqq>LU!Fcmt7b zrfs95m z?cW^>n~bkMXeNPP#UTsZN{yu$W{RI!6 zFwP+}$l#k@$)ijlyHa?p85X>ams3{qSY^b+$$|#WU^eWzTSyH7=N%#jwCEMJJ+wWn{xEhx3 z{@dxLx7~ZYS&!STn}r_|3qEJjd$+LaF4|Pl{wb(vBc)T$z(aw6peur2`a^J>1VuPQ znP7gwaz)43f6e^PhcOEM2G2|*l&u)_O$B3nG&@9#H6qcQV{JXOuPMSk#hW(haMEbs zwH|iZ3{OZspmd_)>K1sa1b5XzNjt$Oe(7k2rVdMpdSe+PJ;JLJ?(bel%80O&`R`Jv6KO#5cCqA&`vX#NicAH9=N-h*gpnAj! zVB3qQlJt@7Yzb1GE=aHfBK1VU&*Q{6loiSUFs;61SuhRhvj1goU1HDxFMB2vD&4Ra26cg(&?7 zlBYGn@AC1oY_r&CS9HsS2 zmuDFWoYGoEA#F5mms?Dctm^qeHHwHtX02sHN_M)w-g+($o6z|ZSGIza;()h`R20~^oYL@&El#5)t?ra^`q#$oawRJz4?I(mBZQ@604jtAD;MPdEK zNo)?;92Lf`x*lxP&rI2pm!rHTZo~hw2+G`EP)Q}jz_#@wfnP+QZKC801*wbeNo&RT z{|Z52B#s6dpz8m9mV~K8yNLbMwa;4^k*UkKzsbn zwSXh+W#L6mWSYDFrF{K zj>g_V-$}o_qQH|-klyp#osO)s!kf89P-u>^w{T_qo~M!f{q>^HAEbMR6cX<-so=MQ zN-WQb2bkWs?RiZ*H;JKU(KViikuZ(c9Xh_^zNt9tj|I1XgVvO*+M zrVVbDnydPg4Q5=HblxB-RrW-1ClTc0V%=+4^}weB?1tGk`ERP+-SbVzVDy@(3$AJ2lBQ6 zv{sqV5^FhM#|UoS-mb=oQu(6tOH?tjIGoDouvQTxc%rAvY8(D1$-8Ra_Wib=Q6hKy zBPKg&$`lkF*t+T8Ci+bXoy8srxF?)?;9DqlSx3jwK=h1V1Og=(xne}X%2F=_h~3_o40 zWw5H8~ zYxnkqgoGtnYAv0@6qjF2p!dA1{@}{1wy}l5GS)fcrEdYEU=F#Oh&HHhXZt96RZ4wRMgUSPH&{&9&qY#gWTZQ!Sdh6Rf0F4GcQz?UWGblU$8| z9W~}A!teMM)Wbt%hkR9f=wIxLgoNJX`fghZG1)F0Tlk)VgdTilStiI5zqwDDhTUc$ zaw(m>fCPa9a{J<#P)nTU)Q#|QoE0|zb~~ZxR^Yyp{A3kRKE`jB1b$Zlt!U`c2*ZWm)N0b8JuBzd?&`Txwk{ZyVP=sdOtger*2~DVeZ| z&Uva|9b_6V``uI=C*=hWQmWIa=oU>k%#)iGGEUBiqh7RbW!8v4rA)`R$uqLdU%DS@ z1AuOB%5lIZ=R9A@(F|Vs*o<^RC#;u;K(#)}8;anl@Mqk{lQt}D%k_|O4970efRz;_l| z?t!)9#sUK>6EjBH?vOM^(;Nlkl2drz)#vdWuDEBlbaV>n{5QxIaOQ3laCRMF?(M7Z z`?7COk!B8j$Z$xXfeMM;T#4mGnP(n84%~2uU(aR(t$}_umHRwL_6@zT!`_?8iC+~v z%947}z(MVYTF8oN)UEU*Z>6w!Z=FMSCj1u;LVPiEq3qW)ThZo1hz>^`fMms@T5XYX zhWf0ZB)zNl?kMJe7EyJn+Hs}XymK|WJR+lQqM228l9%w?!f~5 zvlKqi6`6A=Fiu-{k65Zz5rO^Zc)i6_Hjq3{?2=`l&4hK&i6|bU7+a7yrPXDlcLKeb zaP!t{Jv8v~K5+YIu-hnD-z-n>nz%rcbh{w zb?>)gEnmM3k@$<))dVpX&EQHvj3E?4cGokeCeg2Lo3u|C+ZgBjqEx+mjsrz>jAmD1 zoX9eVNM8UX0c`9q zQg{(^PHc8awN{6&{gp{tjl*&S3S0=>Z<%KL9fPy^9r0~5Anl4GXyn1Ps>^=pV28_U zI1S#0%$;9|tyymB%3f8r4PV00-R@tI(6;YFwYJop|Jf2zCri@5ry6`I$nCX--h5+m zZhtl`Zv1^r^mga>$iq&LM1XTQ_ndycNWBolICW4cKtt6h|BPRl>i0@*W2su%x{eMF;t0#Z8&uhsS&)8 z#-$m@Jz~7wtf-Nna&JOZ9wGicah$W2%?Yx$y>z!Je+tsrw|@?;2ZA>L{WpKa>z-!D zWoAcfS=U#LVqFbH?qjU4pDrReVnn$=(N^DiZKR8{zJ zUOyL*Ecgdri|_DHc#xd6-oH0bAD4&QWUL;c3nG*$Cb|PN6KP8w6&C$|-8Vdq8eS(E zr-6l$9&-}~_re8Nwbr1@QIVOWmrtcdopV>7f{&Rq1+SR)fdN$Boui)9GdU-R_4bpa zK?7~gQ9JVi_W*0|WQFkhCOPU)BDqfO4@91pr`^1q$2}Xbk9b+PdKj>xz*dSkXQO@g zbZaEs^_XYa_WgtSx;rOv@>@G`8-4${cdC8tvCx$Qrtb+S6Ji}R+@nWOIryd9Zea&a zr-d6kIe`~BaN}Clxszlof}XJ-eh7>Rkp!Egc^g>oSX?k21=4fjW2fIFBKksr=1rjM zKWtmax+?Kx{gu=P^I?__Hho9*?gV zI~dgt54sXl%3ya|oWEN*VrevACI(fAgfP%2xg-%|(X_bTUeLupNVRabDp9lNd7Ank z?a-u)x#cYq701`OUSfFtK^B(9vPf1)*3vG^wcdY%0F*{%6)b&H-qerdh`q>t-AxX* zpUbAaD*Q!iuv1FB7-PP^&F{TiV*SU#n#i&J8D!f^EpWCNH<&|NF8BU^>nstS3NYnq zyApvwS|p?@4aw}%szQi4(bGQdzu;eSc^>mZC6N7ND_<#v-Knzh(}+3K@DMh-xj@+G z^6Ma1Z=?5}a1OVVFs1Ld4}9!HQ=4u#$%@@sx0pYhgSg!)0itH5HC?U>4p(M@+~yC| z;uvy4w0=TL#TkUOS(o1VfVIvAL3<=^CAHG-$0+bkKm7V=emhoWVe4pWhVz-&NonF2O^ z96JPcZxtoWp!Y?lM{P_GnK{Ht2TrlpNBY&qGb_cdH?uB2e1no&eb!?}jAcT)C(;nf znTD3M7qW&HRqUDHRJ~UoUba_{Aq)F{ijYp_aVxN=l$L#ba-#DGACHhUV6 z;SGAOqI{>mNV)8B*D&|4tz0!7KDKx>dLS$xDs<*Fu+#Z6X7_abOQq>jSdcPM{HN#{ z+`5&<`p5hhkDxWnF04nxO+U8~@jeBSU@mNKh&(usVk@fZj?h&YUFRf4)f3fYJz|k6 z>@P17b!Sf`21hG!^S4}uVawB@p*nC!K0(UB794~n_#RimZzq3(%jE$;pzEv70iMPF z5z{OCT$%L1R~94C6niw+D1r0uyq7TIrzw6-6pM!bX>x2M)lF*m)ThjF=71|w=zY&m;T7j*@*R(43M z+>WGNyc{6wed(T#u{$wRHDiC-NlPn>k-3Wu`mK~R6vuDK;|wKiR4_3M{)3bqu%**> zw~WG6@ouX(Z|8hzk@@@wS$CX0_Tv)h)n4HrFUAE9VIAvrlMwaPF<}GKZC_=y!Os!pFqumT$CS$XZhFrrja2eA*n( z;B33Wwc<1?qK>08MfwBhR=?py7aKEdF{yaJtC~T4-A)SkTBp@<*v66YTq0+S0aEij zx(-bJzXLm0&n|Lgp2tu^dUN$D0!^D)9L5a8IF1<{y_GIiuFCv~*2zbki2effIwYt-X-PDNr3| z)bPQkeEti$B=}YkewYJo;nA%)x9cu#!~M0|V$gi9bnY-q()l3^_IQ1?z(5J9s!tyn zHZ4+V%(rY96tk5NhyAi8sT{FjsKu;pDYI{BVa=?-Ux2eUO9MQft{w-Q>IU5|+pAmD z9t`SzJx3SzYoL4&%jNh!CgYaZ?%1OsEAFflxNtjz_R?)Jsr+zbP4w@4^?w6RpBq=! z#1&p21vcJLSj8q$z8cNgzNs5$j#*ZNPq%rWlI*_Av_Ijb>adg)hX*YnW)?y#)~I95 zZlf^pS!%NCVtN`gjp@pHzDIq!HXR$_oG^`zLUHU>t6KZXTDcN|LP;6GY zx?*OTTFSjzO0NJGv1o3+9JehZDR4U8^Q_h$6x`W?8Sr*Bg6j2x=Ly!qI6Hs*WI|GO zcW>d)v?b_;`p!7Y)W{tf^i->?uD>Sx_cyh_{NmwSdU4R@r&)x>GJ& ziq1>3?PR^k`QXh&o__9eikC!>&cZ8^8rs+Mok3Go!ywQbluc{mSJAiYcdY*R*J8*h zMkrpF6}Ml`S*bR2K>mp1o$l1B6-x=L($ggMB``iz^|$B4t!LYV2d}kK^T;Gmhkkco z`((&RO9sN2FS&fT-+d+2E{hfH#J}A-uV#w(1lGG?KNyK4ye=I`IzxkAyaN|)+Mecd zn6-vTq?5#kk$(`eZG?2ZsT$}sy|OR@t?`rayNFy2lcV=Aeg=oaovXwo?Qe;VeI$NF zQ$pl|Pkp@OrB<T;oTow>ks2+ya;JVKEfd1zj3f_ zL#NFzAi@v+;#B#J6N#6k1lmY@*{+ACAHT5ua1FkM>(wOgzx_^rM1NZ8e61ja6C)VJfv@@!h(9 zJZ7x~DbiQmkO}W<;=wwKZM!TCemfPgv5&F6O z3>rTtnll}EuqJK@g?huwkDotD2E1N9b{~SWF&?@R$KF{DBK(rd7F_$((GdNNcQHdW@ zRpjirm`LxQ-a+BJ3x4cx*AhKjh1k`a_57|F`_cy!kJ{b6PiDf6L0-dCWrfqYS$CMc zv7-d2xrDl53~V3pa8fbXPW zO-(rni&J8hkDyKLtjkZXRT$RNWOqUSqEwJ2###DRf*Xx4+O3WcZC7(1uf(r<7H(NE z`bIqDlbsxXtG%Q(!$Q_)r7iUX_Jk+LO)*m|_DxwMWf884qPP#J{m7p< z6(x7h#>nUR(4pxVNe*Bal1=y)z2n-^sE;hZ6WacF3NNs~sl(&r-+=7HR3ra(%0u9jtM851QlS;U@-1f$vwS)@p*ae3LJfqe+Rr(NaJglwit-k zk<SRvM+Wj8AZ?yLcZnQ&?ibS?LbFYz}eeMjW-%zw${$VN z4BHv<@uMr>#Rtd3l8U8)<&D*K_>MOd0pG9xbE~DO4UiCB&N*NW4SO(+R|Tz{gpVBP92M4JkT2$FF;Mt&DpBBmRW1_C*G7m6+Qw^g{#oEQ z8lxcOtHA{J^L!E3)MCL&=7gc4?g8jm@40Gofg*XDM1U;v5u{SPr)vNaD7lq(h-OpA zx#gGpjs2$~9O@mS!!TOULt*527ChXqJQzra^wAAMmWeYA881NyCY8xaxms)( ziF`hLj>rrU^UU*)LQIteI7|l#&NT5Krj_~#JewDJi^NGq(B~f9Pw-(DIdg? z*zk2_SDB3Lrs-7ai`)fgqW3-F^!qe1=8r@p)(Xeyn*}(tfu}hng4ueAN7%NI=zDN4bx#KTq-}Tw zcB!Q>YjKk_~PSj7O{FL9Q8a6B=SK7Io$>H*@;V>gcCrc zNAH&ZQl*Z(JbCt=0nr)j;{2sRpZSlg^;=d?$7Qck{e+j*mA?EOciS5A$CSR6M&y{ud82Ti- zCRh(Tq!j+t@n|Zqp@?K4%%P1MO+GXZugQwe?i0;ejrIQIC#$v({NetyOr5=JH-?-@ z!4>`3TLW4-`0_-0JXR6HI-Mud*;>o0Qxq6z!tOc}ts--=>rLIM8)HXK&}CkuTG8-0!Qsh-P=>*$xa7Z>#_EZLb@Mf?%qau*XzpWaay-sN?2OCB=5Fq!i)^=w ziB5o}1R}p*N;06~Vxrb1PIXPm&s~l(&R_sA0c55lt$`mkbrXVe7U^v8{85v_s8VBc zyQauJAB2_k)QO~YJFpK-Uz8E~Pc`+i!#fS6_3{>n3B89|T$v2nco(*Hd=4QJfbc|= z?jIhEt0eHDws<%RO?%@J2+C5+O4Qm<>5TF#b^$Tye3$)Jp4AvAkZ12vVlH!GR^%Ve z+3^kc+^5k!B9=)$dP4W$R^JrU*wrE<<~L`u*Ml%O_t;N2CXtjd9hrkiSPbubF^xZ8~aSS`1?j8 zN!slB6iujq5Pa3z1>&&2S!}&afrm-ax;R`)Z@qLw>%-%ZQV^F1D>iHdTPi^7y&GUZ zAwN_*pHR@tzaQI%QcQ*97nW>Q5S_)zyCI8;`vhCrvTdW0v7;rPn%<^CHIyIouXhgt%ERn@SAn}1 z{?>!~)Hs^^s~C9rtuBy0E3mp%ar$?|2Wx&XZH?cKp1su3Z-2C z>OGfkqtf^P__XoM|Gg|{rWK*3_4g+CHQoILQk=z~^)CKJ_%z{`jG9A{TBz$M8?mv5Y_kGbw-4w+VTB2x&u=i}t5?fuo zPPh{B2iu6MS(fs61LE-P$MS49!ny*gZpVeQwU(w7ht+h#os4LjZV#rKn35 zagEpRt59Tk)6s5HIC0e4it(nRO>lo(QvANlKhPyJC>%FBE?iM;Gw35GxxDL8O6+E$ z)`w$(CxT>T=L6dyoxRB+F)81C~TsB8WLP#RIWBAi@n;DOU2S7Y3m1S$$ zaU%X_)t6F;2#FV12mqu?x=yOY+)#8CCJkEz@rbRS3HovZm-30pG_!=;3{_pC7}d4$ z`iRi%wI0==BCB+2@?E0_nTzeiLCRx1olTo?t$a+)cP)AL`EMWZGZVPRaeY^ez1fR( z8;h762Vx9aEQCGgYzoD9+>;!M*jD0g;zbd9uFQeaF~(sO+Lq1?O7@FTDzr%@Iv*a5pB*zl|+eqc}o? zpXA_~F>P^hcalZwCh{RP+frV2C!^5Ptutc+bZgA0U6Y`_e6WwUCZA&!*AUrSLzh?5 zcscwaI~n5{BZ5*oP~TtUN>p_tZKiuwW?#@c6pM%_JYgf-v~$C|4>}C8Yz(81Nx`?8 z;ptTH6^>Lsj%qT3Y;u*;cS>T=UlEgQQ&zs@k&9J^;0=zosso^cMaY$*dA;LAtg9fA zq&+C3wP--)Za$(jwm~MH;qZ%zm&0s?cWpIM$9-v`pX8Ef(dNytc!Iyx-12?OIi?F9 z@?>KJn1(UoF?W15x56j? zta2I6wd*7S7V26Ex5;}cp0G|$;7gG>L*gdhTKQ@LKHcweXoN7V{<>4-;w53Xm@JE& z#swwfB&D0c$_Xa{%$}V_<}Ovhv^k-ekr8QsVBFs5_`i|>O^#);p7}bFr)IW8h~~Ll zvixBz1;FZHBv6FJ2o*Tr75S$^o)#mVq}xi`dvwB`)UFQ6PiV=ccne+S$wpB z^$upuNmL4bh;`n+{tvT0F-flmekX6<%Ypi;Vq4B+D9&dk|cbKdjf8 z_VAwh(QwN<7VLz}j()XjQ(9lwSXXVN_|IqFmp^E`9#p)znn-ruHRz&Na2z*B2$uJo zS|mm%9Pml?cW_Jne(1f(CK#OQ@~C)C##g^uV%{_DBBGjBMrO=;w}S=U}`-1QLD-5yTI$;xIF zfsXkYFPT?SfmmEz{7)nNSA|-~Qtjhs$Y^PJ_Uf8T!a)UWTTBtFfXsFtxa|v22JBp) z{X=meo@EHjObnsEtc|Gt!NCxoO5l@e2E`KPTXfk~xWH|hBWNqmNuf;ah~mIMui+4J z#3heFKK%Gb%G2%(Nw!g-BTUACE3{Y>adzoRl_IRF@r4pQJH!@BJPto<^qYX#D6W!x(h8Ygc-b+>S^i z1!J4(uF9V!Kglaa)ed$fJX#!HRd~{jg0q1?Z&TY`3pKoq#o8RFG`nClyEE^p>`A4l zHbrBe*H6obP?8=OT$>1uGzU%R^x(u+<f?csKc#-FYVdOb6M%A8hp!_>1lgrvMFcy?or2z*oR=$)8a-*k6Z=!SvI^hSbebO_ z|M@!p_N@&-j1b)bo}cy+VYm&7m}KVuuRA8284Ey62<=` zKhu>E^UcEfNK;~A*&M4jDe=S64mF+8=vLyBBq8(^jC8_j0fgKYS6(!me~{Edobf~P zjHE7DxC8PuG!85&0e*A-^%55w7PUu5ZRQ?2%8E;VB{=vc6lHnu)$rI|2ic*>M3W?6VN^He)Qo$~Al@Q}9)FI1$3v_=e2>zuv|DUd} zfN$IyQ_7*Uspl_MvQ1ov5R^~ih)A4#)>bgES+68uX3AI_WGdp~6OnR3;V*$=W%L4J zD+z*2O{VP4Rjd9UNQ?OkIA28|#z8TK`X>*?F*@8-Bqp4gL-L(RYe=mQLD9iDX(sdD58r9up>@USjG$Z}qa@UA75y#{ZpCa2K17 zP5esuCrk%&g<)ove%%M{*h_p-GPPa$V1i~3tRz`n`-yq*x(AtczcD&} z-wY#OT@K2ECbu3&GW_)<`*4ib%j8!gB6)%_#S>A&*LEVwPIeeqX%Xvlh>wI1XJk{L z23dvc-^lfqkPo|ur z@zF1!E_pUn<(*V*NE{;@99FSL?bkP$K)Em8q&`006ynTLA4VOpJ?48dY{UQ@#A4CH zwAnjp0fM%;m{H9=hmjv8%ajVW@x%->g{zC`L!)c}kAgbOz!C2NhE{NIyT5|Gkf*5ORGg5}72%Q1Dw6A59SR zmgYm))CK8(8@77u?S4NIu`%JjYC!y^ljR?gkzH29JaEVKqt13&oH4tNm_dEAcSR0% zsjeJS`M~ybFuy-rDPGfhnX_jmdQ{WLg{k}!p&=q|jB>lrl073^;dw-TG%z;M$MGzc zXX|UbpIIcN?nfx1*Cy;bIsjX6q_^;F8u|DaM582*sq~iw0~3gRL-o|&xOiqNb}uTE zBDn|`@MS*H)X#s&K!GjYzb#yIqid%(E++g&8)>iQkqy^$(23%B>23Lqn~sQ(rotUb-Zc8?mJ8DSh;%7(y)AjY(Vj&~+Kr zD@BD*`ejK^IwV^@Ja-rls0^mM{+F9kr3;zs4w=RBQ-GkS>~UV+Q|~{F z1Qa#pP2xZ+?p+iwWWsJU9d&H@9oIYgra-6#F7bl{K!hP0PN7<4>c=RBBZsM167x5| z45|q7c_jRbND}OaPH$Vz`22*|Ji2#hseQ%^)GQ)hVJ(`8jmRMhKb~rfN>c z{mkGYza%XcJ7+=g#+8>%xa?_!-SmXFl#_z1|Hi!)4Qx&_t?;Wje0oCq*XLGl!OHyb@M_ z(O$86BTWEx;>Z1QW-3Gw-tl5Rw7Y0xS-}X#7&gvegZ4-5jGL`7<=?rdABOK=pZb}1o z@*?@#6!~Gre3*VGjQtbksVAi^NHK4MM8u+4=1P!qYN0@+P+1C{!jG6@M~K*I13aL@+^%l}9x?gJ1+h$JAB}nvIYMUo zbk=UCaI@}(7k60R$Nhb}-{C|LT8!lsky7>`uG#%Pj!_M6<`BKusAE3u;2AyNk%R>m zmQ_@V^I&7-g(F=IB)#VKOvP;#)*0Q3yZAWdzJ*b1siet3Sb{P3h}=*OKIN`%zu}B>ep1lbx^*Yc9}V#0U;cLoN6}9lLb^9D?88?P23p#lakr{|-^Wm~hs5rRo>&%ytx6mw+A6^)9d#l$ z-Ozf|LClVuX}z_}1SB#v?FftO62leXAuVHh0;)@-l3!uS8!hqKhnluG+*WT4&f-gO z`AuI*b^F#$5O$ufTfZIp1w00F(A2>dWQ9&e6qFGV%y7wD*aH#Sb%e{XoCZ#UeDeDM zaxELL5UAhxDjS@lS3&*aePGy#LO0}*q`9#`?qsa@^W9E!`Y$(ym?pH=BV1%)GKlHMU? zvm{j=MVcawB;5nUiAH{lvrdS!u+qj5k07}#K{p~3x+2rLD{iY zeflr%bQ90VHV?_5nuukA=GR20`c^{Wgv+lPgnF`wIH=v+maa}ob1Dgik#PB8E_aVMnO^Xv|tGH zp@RQ}MLfbp7ek&m1C`+j959jof13B-1hD4BE)7t?jt&6h1GUF0V zE!tYKs_kd-xkSqHeS>Yi=!?9_+;~yjQy3<2e;q%{^0;rmB7`-y+>Ii#50e`rH}??G z!#OulgUoR^ts9AaLlb&R8VTJTqL5hSAxuqHkCI_IEWDx-*x%i);L*_^da|05woAo= zH1J!192@HxyO0D#G_`i&=9fFNQp)?CI9npet{Wd zo`ob59IQ3!N$>Cb@m~FRceXcQUv`}LQ@hmdgT>PUGClgiz}j|)MJLjzv}U+=*RwBj za@Ep!R_3a#dvOz-iwzDi(Qh!-3~)N7oAksnMK>p#>Z~>kUa-p0HJyslmJUIu6;`&a zB|Op|f7F!}BXytIE+5lak~&X1Fvl`l@L9UwVlsp@PcOFTxi|X3qzax#kSj4H{PVO#*Smj6ByPvR6TX2vMO%3oV;0Dvq1h`<<8(>h&uA*H zhoI?3B<5E1)Z4>IA#djXCl{hkhadAH6y5EowmR;IdzSPRHX9Zh`@=4#Cqd^+nc?tc zo|N-+WSp)ayV72o_{_}SZ6SfLny~aa@}n*mH;tAD?3#yugItpL&#vIbt}^`h#U7jI z0IXa%1o^+h*V_+LS1r|HBBj>!0l`(5kHd;-e3k+wvc#d2A>L8y>+Yx?!Fz~~t(Wlr zQT8PeOmp9>$g$>myexr7f2QrQ>nuce{%AzcmR?cDsm`^=nOmw;7~L3q0Ad*nGq`?P zL?(c}7X+|y$NbUH;#Z=voEDgKZ;r7vOuD@-ASflq4n3T^l8uXl?2FT?qDks3=?)m= zSDmGrxy085Zu{Kd+iq%u`4J)s)x1{(z96SC%wy-`(W{KMRz%Gd*K{%?S}v0-AJ~jN zm}A7j-O@v5l{n!P3B@K2ozXyZhhR=m=1-l272&?y1XnvJnVuBf&d0_iF^eC&7{vSZ ziF7Nb4urwE5pK!xB&JL34US6YVuPJsg)u@sEmlrAdZ0a0QME^OXHp25higw zg1;){J3n*f{o5x31Iyak5vQThaMKiU#2LM=u7^t$g&F)-N`Er0jy?_XpZ_L6&$4YTJ|w z+it6Hevx<%67D0IWkZoz23U**T3Dn~_y9fVzt5KoCz_~&&MAJt{O^$#hs=PY$I8M8 zNrG|2ukoWNpuyo@sSuywDOLoj8>He+W})>;$7WonL9wG)OFbwx@0N`w+DZ(Xv^ImL zIWH;frzeq3X$qWIo8>#fdot(W_T**15|a@cSQW63=+F?5bWY_@18eq+F8mG~l=wHF zJDVy`)8)o9kVDqOfOipMyh6@8Tgzfe=>o?>4Wc9l$^!dybWchDE3(4SC$M@D^qqT7 zL#4mGbs6hEodm4c$L=7DM@nz$Ul%u5B@C|~Crp29O16WaDO?J69#y`~D6-xfc2Jxt ztT|mCy9@ESNb$gfV|8DmgQ`$eBC_(G>=w8xh}4r?vPNttei2z=Ss~@wy}=SoyHq16 zuL#+m%|O~eU2~rmMO(^YKvrtoBE3KPkJ*U2oFOuqM9IVNUoQf8)PHk{Cul{k>x^lX zjssd#B>2iby<;=qK2wYp^3@Sr7?`!e<``s3@(n>rghW4mr%BB|l7IH}T&_=G#R<)} z+R1ujCdrYta|R|hYfvK?69hOwe!Z-`7T-bzw3f?voFx$*opdzH>%`8@`_Q9l3zyAx zDkNsC&`u^|p63cFM7jyIB^=$%-e)QkD~McmXeTc-{=Xtbihld3gJM!5SaodT)b8I) zQ{JRRlrMQ3z(vsU}mS`y;JvMvNpPlS&omLIGKe1;;_k%KVyOum{V1JDrObn&o{lSS``hA zuz)P&lZ|e&)fPKY2ntc1`Siz8FrQa3rH-m0fV|Q@r6GvDk;B~umaV!5-OZYJtf4~L z?(dPtEC}GSPbcL2t?${8hp%qr=-X0I?SfBW)8mGL>VzSqM%Of3Hj}oBx;>v-&&~QO)>Yfm}^^b5Q0?tI;4LqedNsO!J(l6yOPE8YFZMp)>@xw)9c@?^=u{ZD>q`$LMe zW|~vu1LV<-KTKJWjrM$g7v!6>Tm zAq+%NF$E5uL0CWD3HED}J84w5tH+DtgGP?IU|&7;?q2G4i?2qA@Ox$FLt}TZd=0(|`r&^&n^S!cVQDhKEZbgQj4H;1#~! zj~yFE{WkHd1g`)Li&(&u?k9+?FkrNBnE#>CuxBK~PtZJvg8>@~|t(0;J1wL2-DV7$!JoRO;Wa+ZP zY`9gy%l1nYjp5KMmM~K}#jzCZ-g4vseyqvV+f3KTm2D^dZzQj+1L5WFkttOJM0VbJ zeFV5hyc%%f$HsyQMqPSzEvrN-k0E<)2vQ#9A4aQBsL4N~xK6l|wBw!)%v*%!lKe^H zE`}4m@@m^V?>)Tx#g2!*iAX^|g%c@`<2ShDz)KiWQUu8q(ONdKC#IMF@@a=?hv~mU z18%syG9naSFki$amPRMMluqp3Di~U`ndjXgOb8e@8Cb+z^kB2*AD4cbprP)X86L08 zR;@G>XWrTNj8QeR+PMhf+VDkCT~iy*9Ee_=P5r|EDNWD_AzFr33_wH; z0N|9-)Y`H~sFUQ?j4_px;fMKxmLL0#Qmet5Q_t(sr4^RYMH66PgiDIR!dNZt?F3(N z%Y?XuDR){ShbTi|9Hqou9w;+In&QK`+EB5;w1@D4ep6lXR7BJXyZ|X}3zL2qinQdH z%VoEag+!3aaa20liL9ttFY*bRTL=f>R4(k4o9V0E8t`KhTV)Hiv7jWZM}9TVoYP(@ z-iw3c-q)nuLji->i z*;L)|VSwV{yV1VI(qS$!GW!&RiYjUu*m2I{Q7{xRrJ|eh53W@jEcqTn6g_dkOF8kXfnV&`2d19rPB)?ONv8 z4m-65P^6DHR@?<-AwRVa$}WP*^#>;v+vyXD28fH18yyaCw?;RO9hv^yA@3Csc((= zFUk;s)A+tcXY#;;*(KDhdx_1lJB^AvtcEix79grt;D&1JWy*$(wqEU#CY6cTX|$U| zub8*}YjpR}oJAwd*UVyF+^t7Ey+Pf3p`c!tZt^_*e%~Bl1m@OOG9M2`{gX+0$pG>5 zY|^D{KJvr%Ux*#@D%q~`$Wz3E5L$>cvU#}bex@Q?*_nQ7nO?#F{wS_saREf+NGjjI^OQ!hesHO3KaxG>GUTPt{&!w zXN?sELs!qc6rw+zF2x6Tc|RBC0TJ7R_x||a-Y#{r$b44TQ{-iCf3f_2kP7JWigti< zyd2_+B6z1F_1dMgUh2R?Rruz20&Bh6MrOrr3u1ve+h@}9*HT9(LwO~}>dNvT;p^TV zH6yPPxh~OvhvZdaj;Vna>k7LRfZ1Uxa|pd)K+tdYEcCMoC;a?e-LqHWLWF@k)p4Bz zZ@(cLTkfTfP^3qR-eP}fNvF=g{_M`vmBXul6}DYTaE(pb@YX@fX`A4;#Sj9}tZ(Y*limBO> z?*lebJI<)BH=6WEFcUoG6Yn0SAuSv{sw-ksaA0mt(?{QQzr*U$RLJw|Zs2X;O!1L3 z<;PsMLYgD|SLEim=Gjk3AWYUeKnK#ts+^b3AFWtCv5MbHxX7}vns#(0geFHHERI~N z3YPt<0_nd|5-D^L3)y?Xo zv)_va0)mBrYL?lN!ms*h=wcb-~Sf7?-((4h}towH|Q3T$&=|ifDHjMF$`S3>QM_S8`k9 z;74qpJ(FRywjm{U=P<<)tA6XZNc3&Jwmq2~fm@7&eUWRuUw^JYFkr@I(vPgiDlKc$ zj~b0{oD^5+8DQzgg;)&@CHtYZ?0xd5`A=! z?v%dW5a(lUNL1sYN;N!ZUFYN{OHLy5ZukDy0<Y=Q6V5R^Q;LD;R5LAk-KC)^P>6+_- zckBL7B8M%p)NQC~urY}clTkN13n+HK9ltLcH-``g7*+z=EHm>!{FVzL) ztus0;cSlyeb^XJl;O1eBA-gufE$J12+=Qr44Og<*^CS?taDTFhfpI% zT}V7W{)mFemo?Mt`}C*|i&)cBYukk*Ec}kCb6u%D)$+~>g#;zM<$2R)l;_M*9C(hj zb#&}g3^7h+Usw`=xU1Uc<$gH62-f!?<_uVvLgYleT~ZFLH{EgNfsuvlWb~sp*xOP0 z3>jqx-yM-`#f{WM$$IgW>2MwxyVV&RQcf2|BGER)5Ws)t4FTV9Jr|a{N-^a$=}k*t zIW$M$G@mpkS)e(B12Sx@@5uS!C(haqw)I;EuH-qsmz=Qn_rh0{xJ=rG;tM=8oL1|Y z9k*{Zh;ab(*#pL*N;_}biv{Y#;%hQn>~A)`Kgdu)@KBC&HWFa$vht|{j|`A>Feget z;Brl-g1KJYpW7c;%&@qf%)O40cMU)m^7AHWL!5Fw9UbsS6U-N{ zH%An$#R>Iu%}`tb$H&4v0QUwT=KC>OH&|DLpY(llqXrZV?Y5o&nHkx0G*TP>`SMI6 zv7X-!`UNFnVgul&ilj3E*9rr}V>3;Y{qpsi91@L%x#PxB)wkw(+nM)FZiu*dcGhlD!5v(<>w z0FyvHPtjgfK+{7b(>zY2+j%&Aawep`);_|Wlayv^%e(s#=Niz+Mv*ta`?;u z;ByC=>-nV8EMyy;)xkP)ILO5qL+8_`XOjhdsh$rr#K5iEG1s|B^k}VkpKbT^XX{mO zkv(DWi7((iD>RJTg;p|?>qmY@3;{0fwe+$_l^q}DQP1EESK*L6X59{85iAbA3{unm zZ72}=o=)}b`)h0|D$&N!l+OgK&^9u2Iji-1#+V5UU;6AAdP#x9pP{eevUq#ds&T0X zGNYM($xvTtXpQh$84QrT+fO@By-!b1kzli)&z`+}1yfg7XTRjjS)5-}=B_#U9=uGP zXF08AUawuJ%m@f2wO#8sDE1QBwaIZ=FH`4c0m?n1wFSAXYvP>MYuAcH5R{n>r(Dk; zd$tLI;|7d+o+jmt9xlZ;^j95(z-Lnd##=4F2M$K=eF9GlxZ5|_=5xlJI@%yS&S zuWH=;jI6=gVj5zHU2m9E3NK{RE1Rs>&Hvfw51P3CrLVC;5$|N4p_@29EB+^Z;P(dM zQ^M3=-=AbN*v;1l;|pjb3d+LiYCrcg$1K4>7ZPa*!xo09J1=C@HD(iky5bnRxp`A) zRyj#MbbC>z_C7ReJ83xBb;{MJ)_)KW*YTKbXM5ZabnGX2-rEX|D7H2ZKH+zljF}HA zVp^*v`FfgE@vEl{YfR*p24u3MZMRy6wjhu{OBC%UscZaIty+@?4Czku(wU{4wSA2z zF1JxJo@d(Vdi#;U`&iB)HdohV@x#Ilcz`VKv$E$eEc9{lw|yc(qt)$g&sO1GhbYR$1r5$-N3r#CKr6us22n2>Tbf)aAOwYu?YQ zuO1Q=jyrik@~gW1uNyB5ZoAE^r80Z`KVbN^!6+~(IexL4Hromtu7G$+d>}mOOJXr- zA_hrMi&p>b=(~2~{S-y)ikZAPSx%t1BDRGpl?pP2+e{JUrd%aXsgG=YRM4YEN+Xl z>T%P@3l%>YvAGSjZ03Ms)un}(HfA8FUDrjQRuXY*kZnn=pw$LVL6Fo^j8=6YQCk02 zGkX-&0DDm40(U!QR)C68ZDnt(ImJZ_eH1n=UbQIt_zf;9XP&cZrO{xmj)7VnL6=y( zqt2LO;;Yj^qNeVx9V$@(c4u>6Um0EwJbUoCa^0!0Yu?xNI@`&W**Ez>4q7DfNqacr zZACmF%}SAGZsZN?PxDH5`ohW3$2qR4AD@yrcq(o3(mzn3p%8+{T}&}aKM)_d8Aa!8 zZ$pwnh!s_^>|t&TBiEk_#VRSc#bq(+Y?a3D;O0B z=>*+4i!GJ$sh668M|6y@aODydf^ROo`uZ&zQ#QS+FhtbSo=__Qh24PJz|uNsMizf8 zgYbhl>b5T7DyPz@jWRW-uE1}bMZ=MRtJZ_oNwB@n=nDO1J=3t|G??+B2njHgUjt}4 z;!NYj@1kZRJMzC;3e%$JdH9KcZ zLKeiR*UU$RSESy!e^0W17ZoV$r_jmoW+G=J@PpcP5 zMmmvTM>+gwlieJgSj`4j^EO_n(!3hLQW);=xGt)wh=7a!ht&&+_l+ndl z%c-lv|HqQ8s(-^U1d+rCAJ_TBFiUH`DEO0OVfIs1{LE8sbqnVCTq~*6cX^AS%R2+lz{R+(TJ=UHWjrn zJkqkSo1tXx@2zWVexq5d-9wU9&>A;v0b0F(N2}VcjpJoWO?7<<<~^fV)A|#9q!Q{OvaX@-YoyYp-j9av@F>wPDg&ZVWn`CoX1Yn!En)WpA5@5&BOYK38FN7i2t>KuykQ9rq-Ib)0z)uL;(c4 zA#CQNpa1=jTLc{3o(rKYDCFOr^Z(g~h^xv?WUU%rtCG(Y-(~au{be2s;YBfdP!uzV z`ClecOwq>yW;`(jo$cpT-am|_*yA7uhXUc3;fwIW?bnN9hkt)B7Pv3<*R##1{_12z z!3#Z4py@&0o^{hXxJ_+9UgxUMeOs*LLFiwGgN*wKfs%}SgQ+R#Y(70VzmAM)C<&wW zIN(uwB^ck9O19%>e&+x)@(}O0i6;=QBQDe;$Q7 zt2xu<86;eF&8Lqfx}{XfymXg$%;Cj+R2gHE+6Dbc+r;(X=xISoa zzztPK#>8(HItGSoz56XrbDK+71Tjq0sVpfcxbX#lIzVdm#!N2C>xQwQy6_Dt-h|u% z?M59Z(M0E@+qj4isg7REizAA({?D~rmfaaR<;~&YEvudS{V&Lb`*x{GNyAyZP92x1 zUgdXpISK9pp8@0v@@~UGi`nnL5~vb>Ih*zi3JS7W%oKGU6a1%5goK10uTeUt6IpbF zgM*$MZL#=-&Jo5k+9P9{v@3LmC~mn=jH|qkg_eQ-a^g{0sH%5b8*r4O@wpSh&wB^t zm{w?gXL?oaqrWJGz2BUMA1H_yyA{}s9#$TdzS9PVIL$;vM2uxI>9kH|4q@N}*C9i# zvA!TC-rWIZbA@!(s zhZ&P!K_(m{SjcVyQZo^US0Eg*^8=nm_*kZeI0QCH@k)_hNsiZvp|9@Z#{01(sNwRP zIS4-gHDjCacpIGkpUfH5s)jSzz1kjUcrJ<~CKhNwmf)$&$oS&;{(3+9bbDNVz1NpE z;(UGF=FkN;ePg!@cPGm`ayu7E$p>to1rxI0KCyx9z)M6c(3?kEA%d zK2a>^gFo#?5sJx_mX=l#5IEPh1eW_gklX1=rT6*t{-@CL3n2dIPtSD0AI&OiYAfa) zNXGQDQ3ULa$XEyM|8CuQdZTW;Yqpbe{AUy`N?hy4SY6b_L(*re_O5bOu-^|v#at*_ zzPsW5nm}{m)z!6uSA5gBJn; zE_Z$3UF-gsHFM_Itl7_V&faIA=c|^65+ObfJ^%n9R8dyc1^_T2000md_u11M^dce8 z(+%jMtt1bq8mBvW3b1VD)a3wx+E@a#1@=>n2Ua%p004;k{_h1Ga4oR{03Hif6y%B}5EV*DH z8xZ3=KzZjm%U-6i;Ezm~ame}OII8?;y-ivg^ZAR{!fTrr5dEsduC=Q%b5pPPsv^u+ zV{WCcDsqPQ|5+7sr6=whXc+zJaqzZUJujR00iM-Ozf@tZ{5dQ7`)5shHqP?MJ24+09GIGF#aQi+l;d1?V%k%r(6#)ZmGT1UNMo;kPx*TGFHg^h%2WVidzm zTFkT94&Qd?;0!LSWCj_Ni(|oBm{vujO6AiLkYBg6xt%|hK2-!0q$$yZqfil@^HlOJ?h+(=K?Qm)M)xB{pKd!_UG7U*kg$qef0qCGcQhJb z9<%PT+(X@1XM#UY!Z|kW9~rq7GK0)hgz#?3qBmoo35NW8J*bawuhQY)BLiqO`e}^m z=IZ;OMN4xT4?QiwDTb{Fq^yAA4r}pAb?j34`YVyWCFAtj7P2`UOF9!yc70$&(lZ+^{=_V<5sTw8PVYMWOYoy^v+m@yi+Q(jD zAI;7w0Qx8?160kSHad{)L8B@tf$hfH7a|R*YYJ&;At! z7z(JHgZz9mk@#&K|GNgaUOmJ&k)F8RZwuZMJj;Eq{6;qVbHs~ZXD!5rEsp=aI9_JD z6zJA}HjV48a!H$@O_&RM?xs0duFyugUt**bE{9?E$q~a^j>du0GAA-K9&=`gEoJm& zi?M8r|EDT+B@U!PzBY8q6X)}P$ym5~pDSyeg^=VFvibg0sc$=Lo&XrD3A;Tr~JM!l4YrkY8;c=J=F}yu}kYDz4&ZkG(StY zWuSz?U{P)L)#_m#+uQnq`y^tDz*)Hq%h$>ChV)qUZwbcYmi(X4`HN?Au-ex#0e0-X zA=wr=ZfQH6qgpQBOzre0Q9PLkrLL%Y@Vk+OO<_s>}oJzW1uZ`o6V)Q}OTgP#P~weWt|Qq&+aTqQ;gJ)kU)AKj{sXUK-3{ihzmI$WbUA#qM33J( z(0)?)Oh%$8mBY z&y{IZ3?30s`*Y2;b-n}8QkU<* z-3p4T=ibm39?Wd2eoQIH*7`r@XQ)bgm?iWAM)iSZ#clRm(YNV@&B-b6V-Q;cGHG51 z*6?a2uc=!+Pdq8%`Pdg318JTI_o{H&q87u6+Lq`ZIBi?*9sa z%cuSh10Ln3*B=EsZkH_e?Uk}Ko=|Xi!Sv*?LA?LDiVpe`V8@|lJL zb(U@*fqW3p{{KK4?xIx<#J~JqV1LOYME@czNNQoJx$gb*5%GZQ3)AsH-snr=tb|c- z1yk|Jnph9wYbpnek#Glz==)ge^0>K(pucOrz;R&Ga&CT^!uj-k@?0Rt>Pp)R(1|{{mFU;LtXlu> zyzVyz;9sWj6YdXHmAQFF`CRr+U(+@hd6Nv|3M98Cfm%+OFDXGky4L)D7E6cWI(NoX z3H;yK+(>=Hup)>l4i&l61_C2t+AJ^+&TQusV+mH;re-Ij`@u1pK^a*U?hRe-2pK4c zif-ypcb(>+7uJOzLUR(|#|_&r-(sasH5f{$(QTFHo;Dp*AkA)`KB0-bl|IaA_5U%H zh(EVgP6Ph!gxnv>v;fuQg_Q-SlI@Zq^h^Z$YkB}eO?rA$Z9B{)1d7O2i6$$-5$9cq zWn8GHNTip-4m&1~saiq(r)%lYG^#rEQbki0g!j}b6!+OD=o@+aT`9&&75nI94jpP4 z3ye)9zC=M6JAbBGqUy`<)OV5c+DiJ(4G@f&HZ3lI2?x_RhZA0mI(+S8r$iQXOQQvq zYVe25N?M<}rMbwPBo&y$$#ERZ=QwN^rx<0n^x0FXg>SNJ*;>RUIP!>gkcc#4lqhHZ z*>S%Js4b3><#m7<_BBz9Fd@3wsLdg3R^&ah8ophhY7BB>`jd0;GVm>gp}9N()K%RmcoHWaLQQd4*e zpkrlZGknBPUUR0An-)~QP$tn!s|t}!5y*b#qfITP1`G%XwGC)Hr@w;g`3!oiJb$QF z%lP(?ylFclTEB++7kl;TY?0ukEU8H|WXtLHtyoYimzW7x1*_Md z7vcY)RIG`=Kc=HGp(=CUzMRs*|@ES!3Oz(2RK>Ni@{W zw=g~x6)XezOthKAH@O&Lxv54cHJPORfuF;@MAqgYWnPgokOp8=i@7Bk$N$dfSkG}Y zcD$XAuJ;7%Q*e9IuSAtJP*7I~QA_)G@Ip7Wfe}E8PlXz^Wvay;QmM2YZx3QB>&!X~ zUM`GQ5K6;a_24{S4^(&G%VI^el5Q8)P6ZqJ8x!|>snFtonf*FU+Zgs4Bo`ZA*>?Lr z&W2_$R}a?f2e4nuop&K|BR+VUyErpL6p~9Cw1@OtYOsWhu)T2LQA1p4+qq&MBzS{> z5Zvk}kbCWxMMQhDV__3lS(2)_@JzCwD$ylIhtT2yEG1l=(D>h;mio9(AD)pzdcye( zK{bAt#qA_=t=;-@-BjD_GwgV&Q@6=^jn`4HGU*)wb%+_PU34vuN< zUJIr06IeUYm*Z|5_5p--mRDA8C~b~gd5(&wMMml@)ciX8%4N{p<9Q;Aao^a^U#M$i zV|P4Xn{l3gG2$RjG-b0)8g5@ml6{7rm*z3%HxAlH&Mi=JnC|zecK@8HQ4>oS?PGBM zK@J?1fB8>JtnQ)HdPM7E(8(&UHD~fbza?FNqs6fM$e71tC&~ZdPN>h0in-e4|Ah6! z%M+s;KVkGIdvcNX`_iuDF;XnTRdxVmC-&tnrrU!Y^#QlI{8vwnFKz&8n05Xm3CAY$ zXjTgT z#VV4l|IJ`}Ib?Qxo9Dzo!}Dd*uQM@KNbIE_`(f%STZaYGCC+`$vU+t1nD&#*^_Bpa z=F=Z#aOv}L zw*XFlv>-emS4HY6_YE2}iv&pl62&!pWGcabep^z%jMXM57 zuSnYM^*51G7$Tp9*)6on3!y@PC32|%RukCS+0%9emFvYqL5gN9+xxcq`cJ@-KB*$MTwVs8jN<@e%0JB~cs^=OsKl!FT=} z42tptNE)4iUAA0?hOdI#Tg2EB1yglv%AHvjF=l5gpS!jt$qT1y|A%>+KmqkmplICx zEwN^=!QX=3-J~rdc3x>yeYly}cv>t@37Kc@D?6&@hw+3k#eX8?g;gq6qay;?{RB@{ z_`l6wizvyTwOHU_?Bi{FB73KSK5Sz4V_z3E5JwMyjVbwz99Nj`Ux}9DQa}Z66n8K2 z41$f*2fSqpdFg}E?H*UCbWLz4?W_%oZ z+R>X`lN#)XoC!e4_n2~;YZ<5>&Mx+iTD>YEqQ9w*E7Gm3fy9Z z&8l|#|F$SNd#N4;N4gYgI;NkAs$e?gpN0PdXkbZU(8FZPHj8>+uc5|_Ma^fwvP(>{ zZERZ+|Lr@K9+T-mm;MfE>^ixi7lJKx-VroBGA{@L)fm>NsO-Kr~`j5ZSxr> z($n{n8)4$6)0s#eyJO@gsMD0cprfnyO;d^hewZ zv9}Z)#0sWh81|D<-#_Ek7bHt>=m#O%G8hwcvLT6?7bCQJv^(vOw~mHQ4lsbh)JwZK z-aj_(S_}g^J-9Wg&-P!NI9qz)Atiy3H61D@V%efTAw2Kw@7UF@8Jf6G|_U;)$fH*(p;E=vu z=f&#mS|Ze=_-Kh@=TG@bNy|s{a=oLf3aH67p>t(n5Y7I{s;8*+e7r$I$m2oE*KvAH zC{Ql8Lt52pwqy@;MuH~Gt)DssSsb<-RAcgRJn>-ikD-j=>&b*7yQPhdxvS5GW zNbdd|9WqwpC*?l!dmHjfz4AFGm`M$6XBkN;9-58=zz2qh3r4`;hq?>|8UmmeV3hoineg6XyfcwHT6yby;siVWdx$}GheycMM9 zEw;3^(kz@ZeWbr$zWTI3PYn}uS>t;|O+3Qr%ItfEDTw`NBM$1I_EJfScARZ#4HBg< z%mCuHP*G`usAoiL-p?aJj*YA${T&viMj9>emdwoBKc&YoToXewn*PSeLN5yn?^68E z)8a!cV)bmZuY7%jZZl=!J+Cxm{~b(ZbAkTR;a|#-x?k+`!0}u)6IPHN#l3&C?-k79U5MRh0RUD<$8$KKlAKluGM9QQe-3}FUi zdL(0RMs7Uz#QLEwZgE;+_!RiP?IMwH6-CnC<^1RI-801hv`WL4Elq>AMV0iNca$9n zb+eCFWQ&xp^pof|ZSSSO({jEIc?r`p>fW~El(@wF5}&_%H;pf`*NAx@k;Y;RWjZg_ zH9gm?-*%rr{uyvyNPnI&bx|06Bl2x(c_Cd0ys%_HeCH^rlvS0Nim?h5qCoCqB0DV7 zOs+D)3ybO4tLiUiRR~hX^A!?@Rmi~uXW90i?^|k6_r!3vy@x|l)LCouNOg6KIrQd& z$7=YP{e{Y2oCRsxg}~IlQ{hVif-`|biI&=Jo0zDQ0Cmf#sxl49`Mk8ai1sQMjlo`v zWHhu2O~}yPZ=gq6xy~<~>XIy>DmH{JJhJ}1%m?^gaoY^>R0YAH-ua|$00 zs)1ySX=v_3+of?Fuh@^|DSDb@NTlK=UwFRYJ{=WI@e_A%wq%dc5Cc>CiRGbb{(|bk_uL7%T@|M}n~!AApf0ziJU!Icie@ z=KATOElEVc1VNqddd_0mcP+w{GSvY-Z>7+S_3nr{F`nF}+)ux$Lmp2CWcUQSgftvz zS@DCgn2CIu7Tuvmbmu#mNkNT{-!_?JU{WivgZF=YT$s(9NG}|nRJh~LpV@ootOL4Bv-x9*ub01}B5wQLY zNo6n<0f`IFI^(W^C->Gk2HgfJe>bU#lk_bndn7GqH=SzcjJnGm*4Jw}^GPah9ZuYn zY4P>D*ELwt#`Kwm@aO_Uf`lQPEQ>Vjclo6Dc1}rlBHRaRMl$c}!2=Iu8~3D_)Gfy^ zfC7nOGJw;bh4lmh&8R_rj^m_i8MyK|)U7q(BDwLLiY)&;)$)3fW4$67?)Rm>qZUjt zJ<1yNGyabhW|rhvwnqT;zzY&4hwl(j7TkVDw&RWo8A?DP#~{Udn3j?fDxR_l)T}Oe zYymUQu|us?tDJk85aDj*M-aqzjry{ zeZ_VAv!1HXVK@-L>&A7iowQJoQ3nR;_uPB`QHo!(Te~{T?^dsJd89h0EJe)^;qZtK z#dN+|e(j*-=$-2Z0!hxY3?fL-V5KNi%+Gr8v?v4ute^%nXqwCqCg@F5kkDx?tI{=R zt9ql^GfB4aW7Fx)*pO)JVG2%|>q||4Z|9VtYx7sb)Q=}P?)^b)JddZHNlvl<9anuA z>EVw53u@m%*cK0&2SSqr?$PY$`vtLBMIIvg*dYP~Oz@EX!y}jHo-%r*-Cb8%CtNqD z2s-jz1FyCodgi9o#$)nBWiX_r$}n$tbL$z}1=sC8x>6C~LZ?T9xldx^qo&LpaAxsN zwzSN7zUIj=2}#v(vEqfir=XM>n=$xd=e6w-0#F#-WK2Z1U0cXfXJad80t)TBHDN*} zBsl;jRf=iW&8hVF1V(fRZjox`c&=R>=J);AS~S6A3tih`6g6`+sv`pr4~%COQJ8~m zKWX63^41C-@<(~65qk_A=6ONtf#v$}mw#;E@UCoYd9nVp@%}8&x)SzzP}B-_L{o4$ zVXNyE81?o}+%svyFjW5;F(NXhrD$L~5avLE(MruJLMdhWyWB}exFQj}2h8rJUnw-@ zZ~fyCIIlY=dI%;q(jL17VM&Fv|?xS z^_EqvuSUri3;rx_%`%L_nap2o{PD^>-P~0!s8HM1KG2Uq;(wTzS%hcp?N+b3M#M%_ zG`p6$3$lasQ>vG^OJhVO;s!_d(|C4rIGP3@ueB2c&`l6TD`an^KRV-*xN(&xcf`&6aTELvc1r&3MPDDK zT2^+#+Mm-r%j#16Xhw6_Wa2%i?mkD@JaW~%&I<2DQliF^7lsL{H2|jwl5vBpQ85UX z3@d+#)>y}uj!Nf2si}5Y4!f0%r zg&EWv(EVMu!TjD8`V>Q%RjNB}66QIoMHa4P%mwE0 zWTah{zF6I#K2>|1R5x?IZJ(DGqo;Zv_GkLOj;D&dwY5(+=;Rt&y#uWP54CU{8d74J zooHn1aTi38+@4)Kt}UT#I99V)V!Y#wwHTl+1t$BBcvM<+hBQPnBKd)~LHK=0M_ zmd(xTL~LHFCa0IQu!AXq66t+LHkl68R)qbtkPqfaQR$WW`C-KT9ABcpx>Lqd!@4EMjm$rLK!}3}3HNzw=*&6{TTgmO zee5^5WbRR3=NA_)DIQSYDD+Nh^U#Dqhr)RKjSK2`wM(MMI2^Cd5bFKFcYZ>EvAa4ryUN^HR)H%Mq5b%k}K9!^5_=>B9GoNeh&~Hb~@icen}cFqPB*k1QhI!tFVnjqkB)9KgnF>X3uET|EK^t{0Cj!@Mbe3xpH z*T;>jLBvgD`4a=ByodF>9{9K#t_SNU;A{e&=WWM0xEE=Vx7l2uY)6x8w>MIXmA>l% z0=##k&KH8NiTAatrqQ^OQIoAZaT-n0L=kgMLfm2W?^+6U#{*cqMbY~w_gw*ZcaPuh ze(IjEHZhwUc&A0aSX}bFn~dKaKap{sN57aQ{l#0+D!AWE-*>|t{dtdwy?JX*Bu2@J z@la7}#ALCq`wM97Sk@SPiusKKv>zA}eRZ*C5qrOt1{+)HZ$#a0qn@~NcqQhxQFjf( zGVr*Sa4$40f-ur!B^b5bwi0mX5X*$>yImO_n@HxXPA2TTT=iRWUlDgPaxrtEU2dq% zapp1B$X*d`go+XeNj}sGcXYazbRF9EwH{pQ$FL%3pQyDaTEVW3X-bjib8;ffLd!OI z)JpqH?GF<-_Fz1Cz06IYOq?)uK*}8Yl-Bg2Hwqmdj%5_*?x;{BWQ&d0ljws|ZXkBE zqGCv!()$~ZOC6HLZ;8$@))88~G>Ks=&4ZHQkI(KIU2X@!|J=@{7q0=7KuClJ*Ci9f zpY?!ivd@W`A`L%(&e5hA0wHt`zi|LCPK|6)M!fU(1X0hO(Pj?9_>zu?{^t_c9V z1jx7xfi~mu&QlE(bxe@kmg)IO6cV_zhF#OH0QFnX3VwUL#kT)a$iT%;Y%$Qa#EDtE%;>Zyfl7zzh6X}eD2t(jlBNIA>?!&T#oTrG=>U?0M zCQYAqt5(_TpERf8laaH^XV9wj#K&=fxKyrFTWP=lY1sEg*l*JWQX=)PBSHKgT1R95 z8Lqud1|fqKp|>MZJHtmVDSd=|;HYi^ZWGM7qt!Qg>b#3@-s3B?7J~=asgXW*il|p- zJ5QP5>q(LIj7$6)Od_C+)3GMV`B(XQfuqq*vHqJu9#*BHlGg>+=yo#yLNDGw3eto3 zcE2+g4hhWB?w@}YBs2P~dJynE;3=U`zx1^t@^Sg0E%lpo8;=LW{{T$@ai1zddMNyQ znulyB#-AaD5^W|iD+Ch^2hATWq?+O3f;h|Pou9=8zQ4DbFy<{VXNVGUmu!ef+;qyI zEu}i58|^Mfs`D&8WxGz3>(8XrSTs_h%>x&KIF43J!(Q$v-Gw8@Dp8j;F595HyW7uQ zr+-G~B!?xJZl~Is9nF&i9!54M^U`E)rY0Kh@dEq-Q!?lwflFeCv8g1aDpS!HP>pmn z@6J1sfETAj9cpiL(8qhEMd}Netg~lEHDlb<7gefpw_zZRmlor@*4BOPaqr{ma&0Zf zu;uhGuZs_M5uqEkgX-5lIo2+)CFy^6hA(UA1In4S+(rgY?-5(We~)MUw%e9E36Ef) zW|M!J)@PVM_ylGy`a-auHGfx&S{R9xJ_$9yT49irWN0C9zb@X(Zg(>vejBuQB=_1i zX!+q^p%du#e)V4-;sns{Xv){jYF1BLljU~B-0jXVW(XaPUF?I>@r zn`5(C`58jE-kN*0lK}u}San-I)*A=l-8{|6DVusIf;=>1eUzXcs6hAiYL`@V6L5Pb z=HeYPwkpBg+%3n%u2YYqft%p~=gq$CqEwvS!fnrVUIypV;mV;vdhb-r@sn#|Wuq)easU#>2h^)3zMxqj0!X~0NIyU~93fYMc)p|{HhC!>sG zK6*U|`BM z<D3cAnONW98`4FBX3 z2C5Qs*PO1rzIS;Zd{HV4=PX}v)jiS`&SpjQI{n?#=E=N^10}vUztHuu2x$K2pn8wia(j!gK~HR>YLXg=1hsM3(hw^ZxskszjuY-0iD}1vSqx~KRQ#zWN^HM zp4XelAMCP@Qt-$qNQU2wV=Ac z9xU0`E=p@pdwS{g_*B?+W#}KIB@9pjmqLH>Ltg8MqWfZ{b%7+J&X2YJNEp*_O0!JM zcCC6J^hCX6+hc$cwzc{XHvvxfaQ-Yg@sQv%dTY%?Oe4toujZY>)_7a(b0?h0lk!!$ zF9x)+dvf+G{-ImwLjoFw2%35M$MBO;+}rn=f8koZ>0fmKF5w+bO`@fxrSYzTN5;3H z+jjWf5371=SyTB09icq%g3T7c;iQb`5$}8e)plUI(jHU#W<@&n!Qtr0-O=^1uK-^h z$3RzQ2LXoQY`)LvQ8f9K3E}w(-g6RqtfsR_hl2RFr!$JHtODuaWRO zldYtwgKb$39^B-UF&NWFng(}o<~3+keQVJ8$%fZ}#}N>ShQ`p(nADm|F0YUy@s$@M zKp?ur&jWtvD-5Bu_jXIHJ97oAW1Pl3{P-}@#@rqrn6(WMVq%VQCeBNCAa!#&(&>`o zY&<`bX6~=_F!ShRI(`#-GNSajQRu$(*Xta8)6j8RHYi=7m>qNu^hHnIA+m8!5{nsv zJ}#57v_4m_OSY$vih+EgSnode%-Uy8)5D^IH;xmFB@wu&4Ghkzft^5|`i zdT_~e9?zHXA???UDZ#Ak;70@!tBpcXd9LB3o%aGSA)tZEib%U}SwA5kUcVzo%B> z_KDmq@M(m~$9>pcp2hbaBW&iLB$1LpjpW=fJaSFM_^I@rSDPmmk3VH;zhv~k^E>q@cJrSe1w?L*DzuaRi6R5y-R?z*|fD@R^JAZPmst%|1 zTH}X<#GJVn;(SYW!0ziKhY{td1=_slO0a3X~hR}EUW zo4q>5ojwhRGe39#!fk{czeQ91G_z&i<^8P&v%c!}w|`kvFe**roVM}^!+hGGZZ9XDL3!pyPo zZ&${lK`#GRiBJdaY&sE~|0CwV85&gGHpW@5bQt;H4X}C>LU&vvo&N0qm3O*`#ej11U{T4q} zQa%UsMAK+~83g#0R$=tFWj2K0DEq_EzrQO89&^+;r?oa+4(% zrn)+~B$wFwLj(GTYGLTNz7!`Muy5)!^taB%G5T0)5`&XlnO>;;olPT_#D5BmT=h04 z@*(jvB}Yj+Un>$Sdg&$g=}k@TzPsH2<6ns!C&88-`JD6YO~DE0CZ}O@y@rjz2H%BU zt8uHkH@%%=aiIdp(&QU6G4AoP?B4Uc0MY{%hOHRKdBd7dvI<#vJ`SAg=DBBMp$bm-kyf$4zUD_b{1cS77KX&8$kw=9BwV+kKytxuYz8&mnlgwNjlA z$_Sm^W|bXUMqP9x^RTc1bozJ5XxH^1u(9x@kUQ?1;piVuYhJQthen=<<`_SKc%K*= z+enW$i=cq-I$a7xbD~4dUDvGlf2aNWaWZ>phkwabDSEn7VkCqpVnPsJNY7}HEXh;( zc6+8uG|}-VJ!6yx0+@+?$dF0-dNQFUh)8ihnwLcXeMGf9RoNzalIFJE5)-$ptCE=$ z$1H;l%sIk3PlO-pT&%00rUapsZ8CsllyNI6QZ;ajDFoX3?;N{6%3f@tqMO$X?a^EC z$BDL$uDjgc(|OZ7#CFaDoum!Um4&n=QXVw|f7q}i>(Dx_7~Tr<6a&~=j5ZbeYf$5& zuL|{*6+9HZkJqc2h9q^vw;OA;#XL+yt$^RHo6chaHGS-rCi^VmXRX`4d5&op170wf z+qJY5>FZ(%lB~h6d8;vv@Wj8_WK2#=YvWB`wn`aWDE~c)p5S@@UacVCo8KDkK?V#L zr|tBFt7nURVk7&#B@rY%RH06$p`QnGTu1_1z8J`SuKh0BW$dl*L_ix^hq{~bm{@b{ zu4~^*;wxv2;kBy`bTVj0y3nsV?x##SGX^c)Uo|7#s}nO|e6YthW7G)aleE^iSu?yx zv$=j(pa7>TEBpI{0Q|*?75iA+bahM1+-C;Q!KuOKW`w%8V_CMX+i_}74ncjXdOzQ2p^% zqpSQAyw!gvO~0FKGj;y_sT~5wiSwlbQvt2rG2;7t#7U2FL5WbH>t6GU3w8wbR=1whipB!r+lvm6h(41a=L(?6Wx?)d-H#6_ z74>xQww3fur0mk^QW8a0#Fr9?4t_7RvD*zrWK6}gur;aH77$pi7Ti^7bThE*0sO<; zt;0dxML>~m`tI@PwIY4O_d+9d;5u@mt)J82W^n41XaS>Klf)dqW~X=$q`-5qt&wL( z^YNG(b^UlijVcIw6uC@C|CSj`)C_b?4%jtbLAb(Obr}3^T&OQ-x&;T){vPN5NY;r6k%@z-j?c=`kZ|b1N7&4^6^Dvo-o@ec)g6T|W zIhMJVu)q@wKnvB|r;Zre1f<`US}b8%7C-pYzV&gl$h> zFbfw0*fD8EpzX#+SjYOVD$_+_;*)Iyc;A}d78<5R*wq_P;$Rt z5f#M!{9%iz;)O6cwMT-(hc ze~zCF-=h>e%cEeS*@KOX#>1Uo*TijKe=dJrL68+vXAE+uU8DTLTXw~BwE$Q9gzeta!ydk`Ywv7XS_^n`V!dbic7k{S6+m@Xor zpYCqwZ{T~7cFFAQ*ut7wWeJl^Ie(u~1n|Br&fxi^&tu&GG|5XJCEr3o;eg9!x!!0a zy)63Xr8U6uD;tN}>kq(v?b3!Sx73iEO8QD~8v`3^WXm``pI7GWSb&km?NxZYPn+tl zfT6&nt+vhsGRy_FvzT>$_IhRKv8%?g%lENe=zK11I${{ZM{aDx< zC=&14{+;gPl@D7%PWFB{cWrp@+7TtP#YYg{zMX)Jru=Wfq`kDPNQLSc!7^Y1vk%hE z>NT>gU}`6RGZcPJHH@8V!n2ndl!iw4@>q@D3uIyZa3yn3fWPeTJ`10mcP#Q(?np)ma?+GIxCcsX+ywS8J`hR zjI*^tWZp{{i>a_F0|atC_-&51Fi(O%^DM@zk_3KswjBKBCBNiqafisFcZI^6&o_k& z9Eag}a(~qP-n?n7vzua}mT>=hyjHL2@TIc%T~z&7{;xK6q`BB3eWRlgb-4qq^|-vq ziqI-JHm4Npj`7B0>C-`&WrG~t*EB_Ry3zty~Ey$zypuv1s8cQI`+&k(>ild1^j?gWA9@*6aDp;P3uIxf8zJ@r@Z^&cR|94O_D-gE6Zoz;`;x7#LMl*HoIL~ zvi#;>3hR2rJn0a4^!U=LmLsarbh69=BGOSMe90aH)d&R-c4bf?HOEtiG(U*Ll-Z1v z^w)nB313}!G*b$yVN6Q6K4AC;qG{c!xA=SWG=q~O?aU~7jhLl47D;={j*N!m^a%$s zf0CZ2|9MyH@?l80U|`6X%AAi_TEa*aDb8kcGKP^w;7#5Wd+>TK{TYB^GlpqqX{wMU zWrE`SId+5;PiRIjEmLJzmt2$6IybH8Nm8`2x5|@ckK^7#f=xCNDZoTuq{?}GK$?}M zu|)*d3zgKw0!4sC;;`HM^@4eIfL>K3F_ZmxCO2zq<*r>DM{?GU)+3aLt?q@q1~szl z{wLDD7h__GueRCx`y%!GlNc6OuRd~a{@5VZBOckKOOb!QwNe^Bc^I6}h|H zCN$Ya=$R?}-6=y0c_ESpLO{tlJ{8Tn-|{0yNb{=LvuE()JokTQ*p$c#{6Fvr8L`*M z6x8Leh$s$c2fzQ=`o3ino=K2)kVZ15o6Ay3p<*tOXXz>f>!lRnBN#;|4Ety8XQkgn12JL z>w$Y6T_*srvzcb`MRu;QRz|yR;DOq7LO!~;)XBc8^D3Y6IsMDhfmWoZy}@^#unen> zEt@5M^~Mq}7jrN2Z+Wb9*g?Itd|oP?z~62R5&lsQITU{wO6=#DbLiFw;p<1o0`$_o zSM>=dmC~vdY=n~|vP%IU&++}7+XUT6El?zzVm#>i2(s5;K0Kn|YPKGBtD$B|Qr%U` z<%~4(532gkakqNHtx+23`3k&af@-F_OzD`LehNZBN3YZ7x;`OOxBqND(Pa(lw2S;Y z7xMnYyAkca1AEQqX|nl4c7XQV#@M2(E!sYU2710B;JK}UAw!K#*EqkGNsM{1DM$>w zNM%q03xsF~ANOr5#2ahy@lcp(3_rZru_L=Lz|Cew6S|qS^Rve7vhej zg!U41U^l9iY!&4Ce<>O2heBuu;ogJ@JG#%3KH3oqTpsvc z))VM|Z9uVl7Zs?&fBVyqTI>pcRqGA=OI_7+-VAn0^kvU77kWA=?~Im0w(0MVHqB#2NFWdj zK(#K_k~L;7pB6K}+NcU`%S*T79n>2A;Anu-0-o|w0>7*gt#WkqfC{Pd@9=i-|5O>Q z++K@^d?2z1_p9A|6CXUeNq&8zveZ39(NmdPcAr{iP6!D%le?NdHu-UnIeWA2MXO1v z_M*8i{MLBohy{3vI2xI#*n*7mB6HB!&)05P2ma;}1EmL4hm2}@0ZUZLhJe-Z*YnkN z$s>=OfjfM!AdP2GP{enYU}!NM;?qc7OUE1UB~ zGW-<_?D5Z)Mby2zqt7HhDsxDtiwJwGs^;gW2tPS#vOX`Or{)Q@SaX5BEyd)^o8v=T zcD{XFOyi@GDl$A6417M};{4^CsoEk97Ap+0h94H{%m3K`=Z18pT0Z&K>}urqT9fkr zqBd+6VS3G_OZeLU`yOJAI*QwcoO^%Ex{!*RVs}|TT*_N#$)0`j?Aci{g~QEI(8MI) ze&G%k^M9Xrx01dS*hRjai=V|H96oLy>b`I{Gny9It`ggidoB{_W7 zh=v38<+fmnq04NurynP!U(Y7ZUiZNYaz%;X1pHdM8SCus!nspBb|q~aW$gF*BdSmL z-jKPuI;;WLj-(R&l!!%*cD}VN7D zXR^1M7<(x=GJ>hZ$i9L3#E1q~8_GZExh!%;>AR+&R2SqOt=3;SG&&&v%n8{}ai?88 zvB6G~yLX-iGJRD%U-$Z*D|ro?G${Fv1sHiZn4S)rCLkP}hlj6LtmgXZ7hQj&Yz*7{ z!g$SEH5#qvBn=PkmkzJ$R%fP@9djE=(0Wy=>^$)d*E}Syzl{t#0=!hBQm8B6-)2CL z6R(V~e_S1U;$a&7?O5X14VN0vKLBJBAO9b^-ZH4ou!7 zDHa@xr7gv+xD+ey1h*Cm#jQYaf)gBy_Di4dJ!jr$=A4=Q%48UFXUn>-z1G?kn9`|o zS}Xz)zAj1E+k6LXq9J*iGDao8zH+0+&C>{cXqnJFywHy^#j2v#+$`!fncHw`8N;5 zZQrcI1B>trUBh|#xK^~I|#tMb&WHk>|55s>ar6RtUmw&nHv%of2+x~ z?OuVuJz4X!p^aP3&p5G9EFH&MQ z+Ds_83v@&KXzkNqo~;vv77ZCAi%qCH~s5@vhwuAmxykz$|lcWVBa zLOxityM$)?)xzv&r~That`We4Pf{5z>_Bd(gk1;rrh;8VnAl8hYUl=2TPhDMn2XJ4 ztfhGSPWLXB^Iq2VlFOs`m)GFEp~Ty;1NY_)u>q{n)}0eIBl^#KibPD4+KLhJR|ma#haL%ZLjumY;oVkqJ>(n@ zzea{a(3Rbpt#q1JRzTP^u;_1QN|MTx-jEU>+-$?8@On=Msf(CjlK+U?$|z$6wazREXY$CE_vfHF6#r_a=j0D zq~kCJ%Y`aJaLOgSSjsdgQoy`8%m%89=CEsIOA4nmP3jvzNc#Te7du?Tj~oO>xk|vF zCbyN8@$p#B(xmTiKYv!J_fgeee6xMl6fygm)y`^8rx1_{& z7W+ZBcIhT3BSf1k-UZR6_xv(#2Jr3>tPeAL98zE7p5Fyl{Pc)f9X`7=eC!H%umt$x zgMDeqhyLdo{PpND(EhVtlrM@W5=8M2i7$*HAqD>_hjug=6SI9c!V{%C>M59`hqk)+?;1-(D7`CY=Y6ujW z3B#IpZ3B~K)R)HgwUlf)&0x)E;a`zFY^c-x)#%B$%*rRq^aFdJlcCVFyMqL^&!MN+ zkNX}x(beKXQ{*rQ{S4xtjrUx4S$_LtXAM$<+k@WgBu!!U62g_T?=^ZY-_T$!2Ngu8 zqrSS&fzPpN>-EkWH81#n6ECzTd+1ZQh0M1%);k}v4RFDVijS*d7609Ph5CHpJv zSzi*8Kad>RexRJdaf&ttXrGS+d=$$Nc-yoN+QlrjjE{VIHcI0Qbzoifz8y(j|?3TtJ9-O%sc~mc! z>Ptmu1gO*L-Yd1l{t3Qddx#}^b9%FeHx6)Kp6jd+nAV(e=|22z#G6&O`epU!_EDg| zneX9|p6HkV@AOZYuEt=>3}2L*IhmYW#<3?j#<-Ae?EcUtel4|%@3!PqTU52XdCeUy z!FSmu+j1ls**Qst|E11l)n*~I%+U96k-g4O_uY5~drfSx1z+cdrv$6jp}+{C+>JXf zyF|I(^Cg=fwp_0e8Y+8Z&{6BfQtebS*o_{;yFZ>pWlM|R2be+ymlq>}?vgbTbFKs0RLj%{8%*Ah1-708Z0-&4) z2Q3Wc@p3x!bPVnnKQ_A}PxLv7rzGI2Kcfytu=YT&@pir@w;L-NKse2?wM3cH=7)S< zB1;H|xaIc2=myJS-qN!LLDkN5&s3^$r7ff+Es3ryC?H@;yi1__zdVQz+Uztm3|JnR{{$q~YQ%27K*Ms<-J5Jr^ z=lmYt_g=eyuBnz4iJtB~=y#1*3c2O_eYxX{a8a{2=n{@IPz6pbmwV?iW$AuT`IRee zHW1ImZ)E9ToWa}BCGo->|3mV3{qp+rApzxV@gms_(2Ka80jGtWVO8%!Om65UmBZ01 zDaxq=)30$_s=zWu6TTSgvAoh$Syx%fw=%i=QX;~G@g|RPA!Y0AvTGAnQg!1H_E3rV z=b_SZN+HmZmUTotB&SgRwwm=k!Sk`F=9mMkvu%sYw z!n1U)UngiR4avB8x%v54`2BL=4~<6~AJmR`vn_LAX2KoG{Xv={Wo~k4plR=-_#2+r z^ULt|G}R7av+Z?d0Hec4v~LA-qNhjiU5eW^Z8YDPsB13jCY|a{ zjwfblBtNRKY!$pTN;_*fo8m*vE{$6aV$UoY)QpwqoQ@|(+jmvAlqz%VMyx;1P^`Zq zQ|>$?5;@$$p>Iolm-|qQxa)k{s#cnUs2QvqA^~Ih0+@X9FA`SeKoH(e^q^&>>nSVi9HD$T6>+b%~_yTVGGahfIKpg3PB@@W}7 z5am@-rbzC*`*EB|Ch)VLOw)Hs>2+wQ+Gjs1hML8I;Uc%60*D>@+-0tFse{Wek@wy6 z+7WWlf!+;~K^cxXSl3dVj*6cL_QMP8!W9s;2*_yuEfs$$;VvL(;!_1?5wm~oE9iTD zJdIN2&T}R91&R6kg39KI#UF8{l;Z^fVQxgsEnQeS2acBg8Ite!F!(yg?D56DXqCzo zA!hb#%`FM(6^2DSXw2u1wF-ls=o~u42Ha-_z;iisZtCZEdQJiUDG1g2`D$6LpD*8< zK_nB;FydCI(bhFP!>dDAuOX;pDYOLPAPnC55kfRmX6++!ED=^~jvC*%m_843i9IBp zJQ+HZCo0pU{LVPOYE15Lo=I}20#pr*<#;axWSbt?`54_og z;HL$Sld!kunT~2fh>G@GP8D)e`cF23j3P$n{mROf4;oB!8)o;y!QwIlL zo1_a#+Ucw?qGJxwkW1NS5);Ue2`36Ti{JKGE`ucbmy(^)_S-SqSzGz8T^2%D{SIXt zo9}uovGYs&FcR*b+NpHnBej!_@ z^c-unCO=+w5{>_9R>&$>Eg;hT`o<~qqUskD(Wv(0S;JW1V`^@q6tXIR)uU`$O@98! zkuqiFlYY%=KY&u4r=eL8J>jDo5%BM>+>?A_$a`bh;N$?G-EbUmNd7z8&=xNX z&QfVEOj&Mz*YB(~$l%Bp8-*P2y-xbI5YwR*613|#q?JVaA<#`L&-43yhMX|hxG)D9 z_Z{sF(J}EDX{#TdGNv+x_e{fPBg{oF4gDXBiNk{bWKnl3m^qbjW28ORTwZv;oAegv z@3Z*0EDcDY)@{1W?SgmfwIuCT771OcxvZYD7{h_b^h?{@y?6Wap=~DDpP`mAA0DL) z#bDg*h(`HZ*RLU4B?gJr<8Dw~AK&Afbrku4RujKG^ad>U%6^@AyzDKS4_}Zm2(rTp zo92g`v}i{dU3E_7g>U3Mzr2+u)DG4x)16N`StHiQfU^8Xbwo}-vO~g3H2R=t0DUnu zzuM!aBqQW5*`c^sF*?K9RO%X?gbBW6%`Y5xd_%&T9OZ$R?oGHZhB0DXQ4ME3KYMbF zu!(HtV&4-nKeI4+;y<{h?N%{UNUWj5XKb9{SZ=}V%ai_{dYUBxJ#tbL-+cFnsj9yA zg?>1HNqpO)ZCgbs=NB@YdWp38;LfH)gP{TN^cl<)Zre{1w$-I2K|hXGXa{&p_=)fB@E9+>v@4+QC3)U0Y!ldCtb zVv4+xcy@}HH&LJN$`xnq(diu}LZaVn;(J0Gt->v`_KofOH?DrMLZVDtEM6Bk@#&jjpbUj;FP7PPuo?jgeP%4{>%ZzG&W1J5) zg!i_63^%IrIMY{U{S3Vw&1Clm&^B{gV#2o)MK^TB4VhWLm>8ck$4wY5tD<;!Da(}b zj#_&#`gdM1mHS7MT9=O$-ZoxXZ^B|s8pbQN1{+P2-7;l)eSufAWtV(Qe2y_twB8q{ zLYq(1bIf?tVOu8qLFAtSzF%x@5>6_UYx74be(T>O-3|VuPD7j{mDSk8K&NJ3(C$$xf zNZ`QrMqR%p{_#NF+pdB*6=dg@5$OdXH5oFT(eaU3yG&bAUjF)4TVH$mdwy+%h5RM` z$M7k7Q=$IBz}_4MLv)xZ~s~RUaO|7~O>m)g0`;|QK_7E=i^Be$aR3JkO3$yLc*|hvH zhye)c9~3!vCQaW+7`MQoE7rsGpG=yIYQ(i}Tw^(Y@lrimQQC!hdp=u$bjWie52Q?{ zxw}Ho@8~}hjw>+9xu8Q`&Y1@J>{%nWL?d_|N7zQ)%# zAsT;a?o^a^5k`gt_0Q#3;|@Kfaq)T}?V1C|ri^how>A-B!Jve&xD zr6l2#bbqazX_Ar~byG?qLtroM6wq{pfwFJ;Q}R-^qLO^AsP-imIDHwE*KxT*ze;fT z<6uQad1xqob=T)`zd4X8J>4o#U(&<%wd0L>iw|8(1>N<`4<~{*C^gGmx;^e0kan@d zE&dCwtVwkzLS~`sAgoP^T*80jZ@e6bBY%ZLrVgCr*CcXT?OKnQu1vD-Myvdq(m zM&;C69zXJ75%&tS9NMSKGmRI<{l_;Y^94J^yGbUin8(HetT%sNh5 zhU{yn8Ah@L24>C%FX+&eZ;6=BzKICpfYAkj4fiDpM|~{0nB!E9+}D^~yx`~j8KOFB z7CwqkoY?ILIw(DdJv@{anqj$$qn@K0*D$l>oqP*C_`t2B^_*OV0`1c8WX>1~LufQj z?ukW|OX;dop(~G?)DmyiuBoqZu`{5HOcNA3Wt zx|T9L1DfVILv8(ehfJWXwJU#rt9FWdsAsYnE&H|fRm$=$MPADKK?|OT(sZL(#B5+0 z)UmN9`8yeZTsnJhAlt<8E63A%kwwuF)I2Gm!{dr^SGwb?8*QIO@qfj|2jCn^ww;>J zBkr5JH0_uV+DSvX{Y|TMu8r}%tu|!#y>OCt85=scT}hj)QBRpiv(}Qi&OEGg)=|?c zXAXcf*sX-;t)`JX#tSzLF+q&gyPHTF|qkIjUeV%qS6;B zdhFt{nQC5Y4UeSO^Y`ZUjDw8#`k%k zSR~OWuB6?*cPiHNW)?hjTZMC(eKeW5|0;kiYJI>M2%9Vb%9Q-`! z7tRnZ;LSY{l=~w3_VL$}v4N9>9k789uZNK(zE<@hpEjJf(wYX(=Pd$#Tsx6zrn2%c zO4Bu*YGlQI4gZ_)h{ncoI2;D-!`RH@fM!X1)Rj1}Kyt1ic>(gvxJllu>X<(nK5B}< zb*S_g-hEQn`S8=UqcSRqc{6?oXXRUBmQliA>nAm#p>qpWz^h?~YuWDr`aTO2c^jPe z@O=qV6wGMU#{(Zxb-2<&52hF@Tus?7Nx;6!*5#hq>)HjH{HO!!Kw6pptSE-zGhM8Y zg_o6WoUGuLzm>mktRr}g>rKYG|Dc9xEoik9)pBR>81k)sy5mId>Q2R#5D&h5X4Y>5 z9h}`aN26y;bjYL~s}Q{c4{E@ciTAte$fe?WIG=}lE-O);XzO8S`xX+Cn@)G^XC4yx z5F8fQ(Q&f>stC-!c3?w$J*VF!{Jx$l1V;sw*<@V|_xU@G5*Q#;fXHA46eY7JOv3+G zp>?OgVJr62%dImP_f$HMP&t$vW>G?uZD`e(P;m79fkby&#e|6;81}aHtS!)PGmfii zpA3n*h+pWaz_)KBVg@P}aAvNPs+lr;12m(u+K75zc1_=?q(0}i zz%L8@tD7O{kzpP@o#U7eM092_4bgZX@~LE|=WC?ZETet>%)Elxdbq!2f0#9`ecX;f z3A$50=~4CZb4~A5zgj@1EfCDZrbK{f-C)>ED>rH`@CL;dLiMc2kk+g1yGfaNlr0V2 zg(*DXdh?9p9vOP!-@5&Rm^Ik6`RF@_ezQ|+ZV=L7bf=sSnb;aL$Azhx(@AmZhi%`k z=iYTL*hKLJ{U*3D#A*k?2wbs0Iq7Fa+(IPD>U&_*SBMyeCkYW`IH z`g$jyw;qp;$qHvK_+2a6B?$+euv>&q4o~6m547$%vW^ro{)$49t8)(i74@|)5yE? zkh_OgQ={;w)6G61)Z+$O)!fuj*QM4Ilx~B&B~Bjsc)J)>>6+=z;BQgxoH>)T<4STX z$fG1Smpq?wS?|;A6d!Ww=HqZ6Uo*=@g361IY`L_eFXnI4H+X*H84R0`70Hi~zdxuU!i1PFH$v3^Iu! z&z>N~FF=Us9Ka}KCda3cEvDy<8uN$%_|*Ak0V_Sfqv0~>9ykq9CK>7YdEoPL$D_If zkD-{_$9PxI?|WY8=`6>*XVaAQ)vuAWKMl6pHIb(B{Oz~IwAb6-a>mkO-o#;tv|H_T z6HWAM0r5O0O%{fgtE@)m;B@s5W>Wn1ewV%y6WTRvR~JL?RnI9K%?xw>u0(Dw5n{tA zg(0B30`UGCcK0&*E}b{rra)QSu6FX%@5lU3Rmg01KRbLA4tDoA&lM zBMiVr`x8*X80?b7=h>FRq_z%er4EVoRgpPp@@M(A!>DUH>a&i9_cGEH9Fk3dw0<0bF=NZH1M`@<7m;W*q!S0 zSM2_!%`TXG|B6V+Gqe6Ad#@$)R z0k1ZvI{6v!kj9MEnw4Lf`b`(^?<#7tsK@cNcv$;S7fH8s8AS{qXyW{r&e}mLVo3k7 ztJ=LM%`|Cm&C`Bb(xnaF>U6kYICTBWyZ!;kQseH^<^kGdgbfCe4Y>gYWgvD>vfWHj zvqyx_T3z=;IP$W9!_2Dte|2t-y_p^h`>eDcWZ61j<4TmI^eh4L?WZrVp3s-4&v|SR z&kSt+tRqLDigj{K4OEG*bzijgJ`+fRf0l#pXIwc~#;)A)OmBzBfO)C*fw^y$cYY

    z!GP{B>X`$dUNffom=O;_TS|tdNn#Ten_fG``M`epyP$=)xMVB(WHYnz)w!1TJ^xz{ z^ME^N3IWWkLkC~KJq!3neb1^DpT>aW%(l!|A8b`+PMDvCHNi$|8G3->n67ji%mgIA zw{({diy?3A5PA&u_r1V;z5PnLK(}@OHc$r{ zff|B@w4U9zBOXjfv&dCUMqk=y zxEd2s&c(lFB(!DUx0cReoVMw)7>0rlxTzMtM-#nxlz6hDW#+9bN!o;Tu`v)jboJW)7msz0*h zt)&=81?@@`Vf!BT@`0jGb5{sf6vH8Y`Hmb#%C`0t-UndQugg-HXjK@HBeGpP!k}}F zFH=>`MT)gfz5RL2v!9GQ%vquit*#3O1fYr}|Csr`gcoB%ueqOg-xWsfkKN^^qz`J$ ztS91&PE*4S#NcdNvVSuxmpio39DD1D`WD1)9%$+lcmti;GWX)uMb*Us$MU4A_NOSxZeCjI0r9q{=0kBTOcp`oB21@YK_t>Uxm%6s^H}W2JYX;C8kN!uG?Op46Q4mC#*I2OKlkfLXQg4>JK z=h%Hp=zAkS`Z?r2`m#VJFNx`Ki@tR?X(a9-tDV`pcIU8z-?YsXvP5=F8YkM{ zA?s4-3w2`HY+YJ!CS8-gig6;t#eHsjDpf$o^7%#}j&7VcFYr*-!Mv~V@|*p{tss-j zL)|lYE0xLsn|CeIu0xfdsMLX)3)RS|4P-?(fzFbJer-O#@ikK z>f}&(^ocEieHQoc(94>AaG=JiroY!2dh70)nf=HZwuEsq3RljJ%!^*LjR3 zWVwf`ztFJY!6{EZyBNazcS0W7&Y5*a@zdUTVowxTv<&g{btovKiINUkUdq^S3DG-$g~x?jg!Dv zz*TP8oOSF+?>7Bm6J<{kO9IOx-|6Qk4ztAT9<+Ph&=B&Wav14A0fVK8`a}JZ#l}|d ziFI?X?#^}hh5B}7$dF}l|HIjjhE2dntk#EIva^}A#?wJ=YN)v*g{z>DL*IHN zqmKf;DRl3C{T8zu9molembHX7EY{uS53qdvJ=Sv6VJ2YB9{NziKCc&#k0e%H69AUjAdK9^v-u;J|dt6h1Lme^^uM93_uIAV`qBHhZK>|T{T6)xs;DZeiat?$W9x!mJBb-4Zhm`Z zW93s35~@-`=g_lNo0C4!#aiSiZq7nUfgq9S4jG?P;{wDYxiIj|PFX*O?q5e)g zIRre2r`vU%OaO4WU)j_^@h2^NPZy{MMl48VzA4g33=i^$_(YX}v3fwm<)cYFxP7#1 z&v!e89;I7vkb_%q!p5L24nrtXI{)OCp(3XkKmZv1#~d2=c^D;eOotUOcsAC_|Fr3~ z=W#zP>e_}8Frz;IS~ab5@$+qSS<`3oPozlbecwf^8k(9dWu<%fHEru=7g_z=2g@em zE^(wq>-reZ7W>YFvU}?e*$v>b+G)595l23968QO@oPf=z9rMBXRe>%k_j)*JslVP| zrAj@!-k9&tXspma0=!i?;y$%ro@QB>YYuPGV9 znNjWh%a=fxHk5gdBg4CZQ4Ny)OGos4k0m``@Ct;ukM8A6-=K+@gj8yB6^P@-CWE`` zcah`pRr8oz>4N!a@^#WNpPNWP?YD5|=QG2J-A9n{aMV4vq$NsDlV#&%^1e#XcZliw zFkv-hl{{eVwJ;4hAEYt~`yu@MQ;YlIpXt~Hn`QXfrO}o2U4L-z!me|7?3@|8DYBh=^mgf+ER=O<;evLsnfkzqy@BQH>0;Y_>f1IxZSw6u z7WuL=OW$h>YIq=K@&7jlG5$LS?VxnfubK%k8bCIEJ(Xh`IR5QzDGwuL!8Yoz8Fv$6^S?}ZVPi)B?V) zVkQh9!?>)s4b3T9!p*0(Xo%~VYTdaGbbWc-P=#uNjZ#EaO0?&<`cc2ysQ5ZoUS#>w zPvO};`>uJ^ah9cQO5ya=Zh_7g%WV?_x8DbIVa&Uft)V!t{ED5PMYZGP>yDH z-`iH64;diVDuGu$ERlN(Ymu085!~T61agre`LC>N?}uJ|i0dirlb}{-r^vjVCv+s+ zh5AXHBTT&`i3qICt>V_b$$So-+!_Fisy1zKuP0R1ii6&GknH!#g?C;1?;ggg1qYOR zIzK7$Y_S}oMk{Rx8(Wn?nC`3`P2omZQAab*bbQfL6T>sk8Orxxar&oX_k^EmpbM?X zt|`SZRDH&TJ_Dr2WYd-La8Y<}&@{)Onau%91H)+!MhcRp99GQ5bKEOcUhdYhz&yy^ z?#K^8oup|;1D@~4h2{!1zqr(t`ZTy59e>s13yPF%#drSOTg_}tSB8p4A7T7;cMxY8 zQeXRbZ*_hE@hf>JVzwL(s25AMY{p3l^gsYKA1y@W1?5IFEAX=RoWk|lp9wTBxgNDp z#I){-lL?apW@cNnDu}=4C?oaU)wEtmUylrr@Oig@u36T{MoO{8Y`TH_0+Z6T(UG?> z@Fnw?Id;=t$628XOu4O0U(7fv?r^;I2n5;}QYkv|8=NT!uM3WgP@^E!umXj0_8lqume+Ludp`6=k_@zi1AVmHhy+m= z*ui0n5Pm`^UHT*76EMd^_zQW^?RDS|c76Yp5R=JLHHgWCMqsKNr0-l)nMC>Zd zwuzwO)263A?_=QA$3Db0#pJ`Vq&lqJ9k3^$K!PkIY}-<;i%2+Z{AtJJ(y>@bkTab@ z=Gfc>@?otUBYkJ7D1WeK!>0Q>ciiLGXe2i3K^Wjz!DgJL1Vxp0v|cic(D(y1AqFv? z>ldM=$;Y!5TLYf{_Jm33x!g<>3_7A#d9IHInqA?Gp|#w&bJ*owYyTM^8aH4u}kC zwfX(sdmM*rNpRM-^yNMYIEV{;Hj?w;*`@yv62tDJbIqZfztZiY-;_pi90!@33m5~n zjcP%qVJcsXWY?;BX^`R7g7!6D#e{40IpG_5Awu)GgMW_f%7P%sh!8FJ2lH!fL+Cs= zvTD;v7G#9oZYn4LI_xPBo{*!3MbF?oRFLk=AQ`Q=GeZeCP$z!|7mUMCP=QVp^G+E+ zJ=ZmRe{30GlcA&7m+B<;r!c+5Qmd!q{1~#C4q?I`TMMLYL-mB--w=~tDj6Ia{U3CW zhMfIlyNPL)o~rA07wG-L$_|*Qu)+1U%q%WQR4*;8-2M%H$y8CFRh4Yj{3|52&+k&? zt!bzIIf;)mg*Op)`@bIjpILJO%DmIO)y8%3%oyRT?WU5#Fr8mJSncW1T{wO09T0)K zQ#aTayO^Ov8hel+ao>tFm2oZA_Co`$jfSYz@>N1dYeqk``!c~#O#`OxhAcN(%Lygz zQRDn@*Deg$9fvo?URn*=7#W`);5R4S$M3X5lq)I%zqvX!q`)ta4hl>Ro0o-?%}mg~ z%-3^Ts0ZZZqjQ$o-JIJk$FjvUE0%qySf)IoK*IXj@mL}yWdA@JY{Wd0v0+2?ZAf=N ztgL#TiPRr|ELR%KGCa1wU}=sNoT@XLuDnpl;^ns?LNwW!Sl0Y1iA$-o6Y}tBvC-F* zVrNi7&+f`e!Y*}ST~jr1+IMTW#5MC>XF`PL5I?->0~ZQ#7DVTA z0axu?ZQ@!m?0`D{-g6?nzHp2_hWI!B7rGMas2D;yAr_S3Low`{TKs$L*Q@0OyfC{T z_1)WvHR5$;Ne<5vu%x10T5JH|DBl!L0Fp~?2=*aAiL1{qUyo%_mLntqE-sJ%dDBQ+ zsvCX7>ES*9`R{NG$<^w>0l`N^^I3lmTF2%c0~6=t-e2D5BjbT^e;ImkR>~|L@@+LD zPLYWB;sOoKC(aN{GZ+EHaFY4nonC6%r*63@I3obh(kwgz7;$iDrAASe9>%FN1jdB? z(t;S6)<$r_@@;hHbp1!(b6GbQ!l_OO;ZF2sT5tOA&fde^;2j-7T(deO8!+nTlxDmN zd;Xu_30=;Ke4G)M5e0?+(}O6TcfZ5YYEtM*eoyMXm(dpNN-V<{=WArL$_z<8=TJNU z;QIAn>2VKH)Q!XlS6DHgTf|q20!Hy2R;5})0-s3cpH z?7-{CCIOnK6YaQ)e}jU&yj%5o3lbkg|;SnHDR>3hkwj zn8j`4w0qJI4S!1^z7jRJDkt>V`0dyEV4nKGJsqCM+n%->S*6ZD17QiwiB9@o`4+0O z#Km!V`jJX_Is^Yo)*Y+FY+-=_b!ViXaYd?c7H{W72BUhO&aEnFrG2u0xT}9MRgjW< zi`~f#R&iA;nq67pWH_=Qy?zl)jr7!3f~qaj%%t!J~FQmKp z%Kf2Vsf*!RzIZ|*01}XS#fibd+kmj$X=DAB_`@4@|HVM^TZeLfQSauOpn$K0XQghn zTj5cvQmU4_H)r1WgAGnKiV%?_@Y3uB%g1`_ot~U1@@`Tw?chH*z|ho3M$kn#N!l=x z3c*($JSsfDi)p{c@(i0?wvQ23c-B=}HN=!_dwrR=sr{*oKfJ``cA|&~NftVUyFEKy zC5sz5*mFFecJ|}kU9wq;H|q_fxET3UmrQo}=t4%9mzPsBGtU!MUu~TJ(cyj?`^L-5 z>z^Sqkvx_>AtHKsE1txa#tK-{j4|pFm5(Y}T%+Ge76kqgKj8P#g+iq3d|596^Sw41 z#RVBhl%O3L2}s@szY$v@vSn-x`D8-SVqm=s6a16dyKV9{&V607$2xZwKU2B^o~*L` zdRZ@)uTxJw{&g*7FR{kk9%Adai-Y&gene^~(dSR#I{TJ*V13#(((dQ;4C_)TGDJwN zmjS-RGB?W{lysJp7)7{Lu~DiQ7h|?ud*9` zx0wkQGb&S>j)_=9%YB|(}C|0;az4UtkYnpR}HR9JYz?Ce4@$e}xiAW~GN zvyWpU!{eY5*GF3VSq=mA-H^&d16J%3TE1~h5CG?F z{0?}+heNDZJO-Za8g#Di^=1fxY<8-GN` zlO_0n?!C;Vrg{{O*R|~IGhLA466vp4-Qt`^jDlYbqnm%*166o@-o38C=ZqBS$QpU} z>ym19m2wR+gq}y%mp=8}HN%#CPC-Y220<3jC7+XeO9vQ9i(YBlOM5V2`x?<+s(T|` zok$QQ+UXe_`^MS(?)Ig@P9eu~hcRusRf~ zIWp8WOZuc^YZnxB>Q&kMq3Sq$@9Wd+7uVy&7s89k_*2I=q-yLP9;HM#1fwoEG;kE4 z^k-{=D9+G(p}2eZ%rv57*a-VK&y9db2{9h~hv4-9ypT-B#pfAgs)TOTTJP-kzbpV! z_}1Al*g5}vJy3PrLz9|pb1=YWK(|2S+6XuZKV7+Ov3bKKkc*Z_xCV^qIK&jo#915P zit>UQ1zmrx-#UM1m2^4n4X}Z3tJly&oC2)N5a9qgzzVh+w(kfbC$jrr32M|QJQI5- zqn}x_E!zmcogw!Aw3ibaafZ@euq9i0U`1Vy5Y;ejSR$LHs+T5VD7+n7HZ6~Q5cs+U zk?7W>g3r#Xpd3j=RA+xrP;iK;2P@iVf2c5VKFBO8Y1WB9pffAT2MvBpvn=v(^B+a8iZxJE!) zG6)dtV|c)gmrQzW-rxDgm@zGWkC}e@mkw^;C>b&B9Q$|y!u(tN=n|H zC;ct$U)@YY(T-dHJv$xhlK3<7kkZj?qFVWOp9xRMwGf)>dNB?F>-V`nx)jL(&+jJr zw!=uAcMGCnr1t&PwCM>mc(oXCv;owiM6Tiq5}-;U|0zH9+HU>V0njlh+ya6DR^`r9 zk%p@LM&CGJQj5~co|eY>EeskI@=<$wN^v3_9C?2BR(h5Rl*O{9U=Ou5ChxkpC`{yC zt=li^&oKarQwzA}Vv1pSnA3Mk=u8Bob{y=Zx%!Y!JAd4w?@_$vrI@M>bLbuG%PCm~ zugG7XLr%FlG)*4wZ`0CNb+l=YNR0r_W$Vm;I|YsZ^Ao;+N0~uUFCsga;}hb(qsAp? z7dil$zez(tj<-+YH$w4Dnc!$Nf-+21#@{C3D6!i>8y>hxx3}as_iXW~_ZcsE{hdDU z904#wyu>_Kg1q-*@U0{iDD!!7YB{$Ww26hBO3*$^^gJ7<+|Yf^$!xA7$p4dmN}Zi8 zU6a;60o#ToAw?xqz4W6W{5*Sar{1ZEfW=ib`OFSJGY*`uRcAVdy~ne}d<`o~eBZZ2 z%ZQklwmat@@jAcPpw;lBOS_@Q_ut!H11BnF5Tj0UCA6gU-KiJ-7F`S=75}hw7W&>i z)Iyj8IkT43HR6dGcR7xV^(xQ<*^B8pKBpcUG=5wpPc0{$ECtt8!o!2t?-1xHUWQ?f zefrgZM@O{Jf+hZp#g)v70uAhJ@uT&Y+A&9X&1o%`6e9dp^sEk)F5fzZo2(!`RY|ZO z=g%DX0f^z{`<6ZAT)b?J&p5=oFiT7VzjqXWhX}PM+~u>H2J01|73GbAHqIC1zRm~o zd&lX6)+@pT6;fB$6^M9SulKE!P=#_Ibqezc zVxFCyy*wjW=Y#jT`FSi$uk;GKyL*?+PWor#VY^x^r{4S?rL(7TSE*Y#Fpq9;np%z; z6OQABn}9Y2dEa6IjDf11a@<+yM#@RA<%r^9ev0B86C zzLK5N8?+&OEU4m_@kUhj#NL!AtZ>o>wb<)IxueuvOx=zgW&4&ZC6Y?8rlWvZd>CN9 z-<(Cg@rs5^I!p@5x73S?9#2l+KhS8&49CTKHbp?V_3&IjJ&{o)#%qJ%U;IK zJcZWLVQRgwf}4kB&SF`~a1FR$1UN*BHY;{jX?TXU3j>5cc?+rI+-!^AlW!DBI-9&| zL(zhg%OHI@4jBlOl{ zc3&3_5(}R`b(N<48^=Ty(ad;prLm8Qb+Aqb0bx}b4ECZ%3;@n7-l2ViNT7F{GkdkW7KQ>u;p@Xy!~plDZFjp0MQ^`NZ+b3uH+ARZVKSTgQ$483Alx4k-) zz$IWtPZ8`EUdPMtw@JV^4yzIMULg_tVK-WmQ|~j6CZRvgQB{{hU;eY**&|h0xakdW z=o>ln%=9c)5BD>zz9%d(R6tWIqA#hbN;uLV&RX_mAYS3BWcmuS1isi?xIvg&7?Jd% z!$Q=FT7f_Z0ugJ|R}6kDbB3>if4g&b7};VoiVzj4IJNPKr=4@;^lL3)x#cR|PETq& zg?J5lkl^`D|Mp08gXaTFzBhY>u!2LvjDb(5f$IjY?l zd*Chc*CdO1a@b{x*Gg#o@uD!f*Bk`-u8J8%@X30Ib>bVj#@{;2;dB(v{jrNlN)PWl z6O$UzP6&V3F_5lC02KtfuQlwKCVUy;WQTw}_rIu(NUxx*Us4L#psdvUf3|$L?~-CbcYTqY=Qg86L1L{mm}$f$RkMBbtB2-?1wLMKJrbsS}d zpJugZymWA4#AFQ#Ov9G52S}KpqcN9$eGOY*R5oe21jtnzn(Dft_BeMFCl0*Qxtd|O zyIWCw60cm;5OJ_W)_jH!zFHE&&|t=QJ?<1Uac_Sxq!kHB>9|^~!1uXe_dXTZipgSZ zK)wjM36#jC!wR-lkrT02k^A*}c3ttTFNS|;do+vd%qEkz$0FJ(P{{rQ&uJUr+nB47 zCv7y<2t`9)WW9`HHXVl@JH0gdNZU44Oy)>?gjuOfV!-|D{RsMi_;>npn@_1;u3f7D7`t}KzT&D$wYPr;DZz373Fb)G6+p0@$MPn1%%j0^C6rSp1||qPYiG8_rZ;) z3PkQV|A(=+evA6s`o;$kX;1_d2}x;C8io*1KuSWoL_m5Na_B}>N?KwFX^^g=Q#zE6 zA%@NwdWZp@`J8j^^W4|>dVcu+19QD+?Y-Apd#_iZk~&#rhcBt`LEJWnivi8~swsoL z(R3Rf!FYXS5LTs_M2GUmg1m&rDpnU%E852fK?6c~vNWtUz&&`t4-YjmnMc+UCCwaR z&B2b+8PfR1Zf+!!(@xdjzyus!DI}0E8hKJa2nh}EcWNHJ{&;rP(^k2=*DTD}=Lb4y z!|BDG960079-bdqSkIn-AD8NwJmEKeVlP#J#wT*r=+{i_w_R#;a^@5^P1pCbFy$IePmuW?)8XXwoU@iZq*QqspIJLsX%1EiJ{7&Pia*Na>64-aTBx*2BJ%2S^RP zM(AZ*9>d4|SW&;C9A>l(t=e&ShIyf@d=g~YUmr0Fl9ElOyK~*&#MTKK5C;et@aiM3 zVpwwmju#D+0t|Rwwon5X5v$AAF-_Fv@$H6IwRm^4<3KQ$On1uSPV>Ts?E$U0jK5{6 zDEBWMW&AE)bVSoIKPGpx&zW#OkgCiTCwYGIvz-J&8}i`Q*Mx6Ylv;DO9x3}}(RjPA zywvAsWi zhA-a9oQ2VsNPani)z;SAro!yzxUo3!_q0fCs<9(L4u>%>E&t!FE7rWa_h@kq z3OJ8fn|(J@An)SZZ>9b-Hs!?F`YayS4l1h{LL*H{^V1GpsaUjm{h13-iQb`g;l!!109H7)eHs zYr1KIi;Qth<3IKWeImYd;QGWK+_WWbL9+T6N{8T2?z$;b5RCY;f$ZqKskWJ+nLyH>$}H~;MLhqV{l zvbuDLBP%>BSoi{XG3Jg=BGMge;J|?c!+^17@r%;p#0X@O7zspOeS{HS_SfMzYK0V> zO7#8$%77C+EzrhF=ppoJ`1|F_7SCjvX|vwuD3qsEze2B)HBT#Q$cxyJ26+*!*A9;G zv;B=bx&Al(9iYW1?Wxt&e6*y}YX{<$5OQC^Wv;*Oavvo+40Dv~kyz=udgqx#t(FsQ zfE2zeInis$UwCC6dovXY3n-YWs3Sakg*vhiyzGv{@~zsx&(j<8wQqgt8mW~({x-a< z@nmz50kXu5hWo}!onKfIH)6`cy~C-3m#ygaoQP-IkxYCpsFv#(xCh$wctwF?FmK=y zd#cJ{q(Cc^YBIkZTxlcKCM#~v?NhEvn7R?pNJG%{&#e$>7sKxN;Bko#s2Fd;pJ_Uz zxMP)SFb~nswFYm)Af|SwNO{>t|Ega=1A)N11c_=}NYZP-7Yq$0DFGZ;N{-<`0&Agk zUjnuC2Eg3IqnJZV!FuO%0M*O|z_xNoK&O*TrN6Kid%GVkJ8tGQD66zC~sQqiGyy>5CsG9wTSR za5vWV8XNWakx?_r}Ppr_XoDr`&P=cr>__y%{AxTJNoO5_c%8c`@Ks?)%Rb zmEq2lh2xclwkd~2@*{FCww2WKbS**%-U9au`S&{44SOh`4g!=G40LF$`K}091Abg= z^04n*JMkXRdwbkT@N66G?de4uYf(lBn*3#0Lk7?3GsA(TJ?4=Yj11&otE3wds_q*C7UJLGr!>U(hSi#w^;;{?0_vLK8Y7`j#Pak@p)#+2wG%#nyjmbu!Z5einy>gS{6M8?O2!Llw z*AJ1}wkdWQn(Pmd7iFozK+8tUCq^^FXN!6Q$I#^#_PBbG_lHx_#+y1aNeAotS^k%H z$?ca&L5a1BXDPC```5<{J38wj1T;i2&9A71l;K37+p+ZH$L0ZwNFUD>%$kG_j=59( z>I=P_&^JM=xgcU3)pqR)HzuUMmEq@wiKeVjvV^ zBJkMsQ1xk(w2{W@!6BkHc{&FwBp+420k#+-|$)w3eVLJlKV_6v`*iTlM! zCx2jsjPg8l@2zcj#M7s)sDw_o$Lk?j57U@*5-U%)F+P|}ZZp2LC*iMVe2Kl8$HIc7 zzhMY8g3RR(#?>fU8!mJ{5b;c;6xc+X!U#d zY@AYEMR4RzD@lAf@Ug{m;7WGDR?0o_&T!0^p$k39#&7ZkV*3v(6)%jcT*KuVne7n- zBpbm5sFa7SnMuv4Mq@sRK#RChx6nvmmX`^#870$rcYAH!buXZ1hFM4}(C7tLAdoL~ zjUy^0oaC`Ry=Cee8shDJ^!u?Ds;!kc_|*4&&L*#*z$hZPz@6*94oG%Z%NjPs1<&^b z+t>`&CVc(jJn@}kX^MVnHg0gJY^)+aZjD@-)Me(E1ZNgz#Lt8v&dNB#Bw$goal0JN zwzSC1@L@LAKk%o?=^+6pBo=?XH#wxSY}fUDI$ro`VbYg@2m?cFK%1y8YoyQUBE z@5LUoPeuDc0Njyp?OwIKyLBwtUtD5)+riEkgKyl(Oo+YO^%s5S8LY*<5C8bGW;8zVcK`Qr;hjU2 z-}<}9{m*WvJTDKVT~fsx6bkr|$zMsDtapFaRXZ%_bO@*XG7-qSJuOsiTIq_!?S|T# z2Cnf5UghiK-P~vS_kJahuqFro&%ME;1QA1Len_*uUzJ1xPF#e$eRjDabP5xLtTm2= z8Wa9!vyy_h4Ey6rQF(ojmS!M#5ZZ@yLIhG=TU9qdZeznsTsO8ch_u(}7ts z5VZ)jyf7*u*SA|bone3EN(<$4LnBRzlXxGEU6N%&--ib&{i%7SZ+0?D0jZ(>AqbPf zAV-Je4T&I^=O9y(n8?o@E+*!WQpU_N<-gzplstKPbqecQ0<;3ga;-??ioU!JRsUucxyfXx%C)ISBO{s4Un&aqwsSCxV}-m zus#kH-TpIr&REMcZar_}tUPg$z0dlTsng_v{i=dOV%M9rP(eBjcx#^-r1F)uXqy=vPTn$Fm9Arjgf6 zJ8Pux`$!=)`?iwqi?Mm#5#$56`6%TB0)c@{E{cJ5CH_Qn|2y8x6lZhRz%vSgA=KT@ z>&yNuf$xD5&J|KplFwPq#)eo0HmooUL)KfFp{?Vrvsk04EvvK7PV5a0&o$x%0*)f7 z5gIm^z*D)85#sd85}5UN{ri!a7h5wCI1o7R_r^b)pnKvDscXH5SThbc{+_vL3qDTQ zHE&Isf8A^y7rsUS-TXd^6{t0WBU{VLFpm#3}teOhQt=4 zK`}2jJE4Q?L$sU{(7Vo1-D;~HV#9Weg#G!}$1my?udo&J7)N@ z>5tL8j}Y(CSkO|smdiA0yrIT}t`ohxAOFe;k=J!~0@i+5LfA7Q4GB*=k)%G(!c6?Usojy2h zKuICNz&`TJ;cyg>?J=;e75LM2y3x%FqWYdOwLw9~cSCrfMsr8B@o>{lFwk14yh53K zf}Ln|aA3e_Wh8ut$S>nZ@4+&Cq)#_Pb`B}z-j^ltR>V62f{kuQ}Tbur)DIm~_ zVafKYNggnlDGlK;y5?Tt*VlZ()oBV?vHm9gAp`Wb-eXXxLLdQX4i(54V_V2fVIX^% z+L$jV<2#yAT~op-3!qxO?xK0yDLavwH0B==YJ&Mgpxj`J^exsaZ@p${Rb>Ix521`W z0?~^zd4w=-rgx^QO3_>utV z07(K~-28q&SIf%P5NpJ@+ydgx7GsV3(Qlq1qG%R?4zfB~+Ru4lvou_n>;K2>N}6T; z+&ShA-e;ifEEyHj{wZrUrZr^)>N}Qn)NrS4*0Q;GjKP~3d@O^`!$jO+qA*8UQhb4@ zDD(KcW3h?#XKmGLGM54l8(Hmjij00A(;OG-+F8nWdkwN^B#lr=*q&K9R@4c|=kGcD zd~G2oqx>wkn@=gq=j~$PZKNB|XYVF&!3_MN>{@t>qZdgAsq;;Utu6;=eN!tU732&i@N)tXxm!Z zG?oNyMy0}dp6oH4(|>y#q?$iIP6{h6k>s5yRM#gwSP{nT)XJL@ZPLSP1TWKapfu;4 z@`*QX(a3u|@`jR@yuQTx_;}&dKYJ~aTt>^bb-B+bCJ;~tfbKq@rgoI&Z#SczClTX_ zH07bs9@aUdgd4xxNFgC)f%QQ&r2zP})^&o!QDuu0D3Kb`CyUH+E*RGUyG>^RZ zC3r3@GT{z|YGp}C5$nHIV7WWnv&3G0#pQ1gww97r%?$Y4eXRI{8dQA%wt=^;Rj$2# zeS=y49*HJsjL#)}V~rh(`^uFzOf)feS|6ZK@?oc(qoM!V-2|b;n$E-qx$6v z1%6gMLAj*T^LC&djerpo$>vy`M2*c#ACOvh5^Z(7{&m}`l@D8d3mg|4D_9t0rSLB= zasC*cVvr!Cuou2+drUZEAz9&ybTQx=eWP+Wl9}(7{u@miu zm8DrCsmy4dVLA`I{iZ)T>w@^1TSW6e>dm43>s~`L8TI_JVRj6;XAbHEt~2F&fny zIMU!sSZbk3^NI;A)exi@*vr$I+wcqLWc`=`eqxd{Zg?Do#Pr5oa*@g#-A|6)I3q!t zY{h`Z@WFi+sZE*^d|IQ|bKgh;Y+%_C@;^yV3G-ARib$NI>sc$Q8{6pS8`BhM@OPAU zJqWEOr}*cjl!=U4v=XhF)IUb!*Y&(vSOx6ew~K}BM*Wx*zoM|yfRD5O_Qae^j`&YT zNj2!|t2!u|-TesN&o4fD;rg&R+EXQd!j`3m6bW2n4(H8wTLzgZZOU&uCivB=P`=Hh z=2K}>j#9XE87+Ghw+isbUg`d@#g{uwo}pmBakl^78*~K84q%B5=DSwh#2)274U4Zt zm|(`Wj?q!+hn@oX9>}YS^0Y5e0k_tT*YL3+>E&yb>+-?Okb>pbP@ebRlw^a?2=}YS zW~^@q_nccLc~BA|)?!b$oX{YEkhSRMxP?UJc6$7i^@J;*Ya+1cq&MBUwDRyJ{BPcy zA9NBvYFvQ@b|-}Y>@4QgO&_nV81teW9RuZA8`0%<#b3qC!2g0ue% z`$V-k{aHhx!B&{uYY)6qu5MGg{zs|n$yno-M1%@uTh#AzGE{Oc`N%r3*AF$#4~0T~ z9C;z1w5iCi*L%3I^UDqm1PJNpMv8WS&f#*3l%TU_eHFKiQ*KhHA}0{t5*eg6`fc!Z z#K%q1L=(Kv=2u1> z(j5MJ^7%vGY3gH+Pe+k1Pd@u*Zs7z(m0o&Vvzg3S7ZQ~NB>BT%SZ_L>l>H!hey=fu zdh`U)CVJuF0muY^e^UV-S-l~Y|C<+`FtNgxo}U!|fp{D5ur7GS)%Kd|SOe!&{B=S% z7Z9Kumi^@AgPG7@y2>nBguBtw;wFED<=u=3x~v7IDfjx{CS>25((d3Y3of(CQLdzL z_2AF#Oygzlso{LDCbHwz>lTQXUy;rG8xNZCASEe^2zW(!#$;AaaG(qL@caQezMA_6 zSfKNnhob^xm5H3u$>KQatZG+lc0!xG3L{#SFUpYE$;xVe-%FSYMzY&O_THHMAPL=| zWCh2V9`A=Q2C`x2UTKc@c% zxY?9hmDdf|Oir!A)krbRit zzOkgDmlmTH{~FJB9T?QFG0e?QS$34;u{bg~`^eGp1xu1nJUo%0^(LE&c2Ycyc@2PU zf2lBRomMLf(YO;fB@PDnB0}f|2b@>L-#@I(LDs%@fw9lzsH)sw>2nLoa4=jGb0>z( zx;=FJ%+<*Nc#Qxp;ldvI!O9t!D38PyJ_*xwUl*7e0b=iQbTK@Z;8<}PbNlw8r|w9w z)>VS0#XX!@{WySo3zOX%Ea-44wVVuYnRxiYGl0;a2B4LD&Fv08a415mxk&5&rUQq5X(;Tu7 zWPiB9jbZfj(#xUXAd#XDk7aSUye8ivuEXZW7{(s_i|m^kWnidpP~?xtIBLTjQ*R*! zU)}#fVOT)DS=EeV-8~;{YQ@lZt6J<&67jPaYb4!0u#NCc4gp%l9v(t z+Hdhe?e7|iNjn@h4Dp|!niQigZ-t(H;~3DuvkB+jHG9=w5K5yX) z8>2JH1Bn!({hjmE9Tx!)Gch&Rl-VYcnRT;`dSXU5wiYC~3bJsmDAh)!s7at57JRlG zU_;9-AvGcYoO-et9XZ2Z3n!DE^R=oRz%tyRYA_P4LgLDMO9dS)?o^#`|Gj=M-IugO zQoFn~A*+5g$2@w`2zP>3&rK>Z;60QEw&M7+AjT~mIO9a`E zauc_HyPe;>bx#H@rHuI;v*S_``2%m27oLjRo3~&M#L`4{ zw9ABcmXwqhR{g*_ukxPt@pCnam^gVV{6M;TmdxmGM4IR?j;70rs-s0=l^rj{l%Qh& zJ}Wca;_vXc9cEZ(0I+;dG0KNbs^#{JY)n4tCm>|+k zywIG+&R!~-#8zSPIMemP%>LSIPLn98$6Mw*VJ4k+=!B2!SG;|R;rN7nfVPAk@sQ1g z`$9e?QY|%BsgNF-nNe@TnAN7gl+mD&404Jma`-6-@_4^wG{uy=$&l!~1m}!x#bo|k zZW4PD@SRW%`MsZs=V|a53K_fgtas-#`|GQSpeDqX%FyQ;y&fh9OU=S1frAH@fwc$) zGO{@bnc4LalkZpnWcWXz)o%=YOjyvWox3*lB$zvCKy_RPhk-AqXVpeR&LUQ~Sglj1 zjg234kStx4i5Hi?todGY;l9iKZA*{kTf+uVs78_e;dm;a+`ab?Y7N`lth)b>_aQPo zJkF@WeW>C*RTW0hR0l=j?=$w{$+)43CB zFPIq}f>U7#JK(Z@RX}PQ#)M_GIg+oqn1_f`z~6@f<>T<5DRT9%Srj#IR23r@j!h1k&be30onArU3D$XdNEjvlDV22A z+hYgcGm!}LYZo8#5c4IC_5P-PnvQm9x6ogU$h>@JBQu*aM&#K@P*OqOd$AsBqg|2A zt%|{Zi!g~lKN1znBqZpaQ+)f>Qm&WGSSu=uQjSzhH-5h%J3hsHk$PF7$e7-&#Q3aT zl`#-OZCK}BI4S(nG{70l<`l~WK!@A8lJUO$^dr=XsPs^OY4@#wJ)Tz?Z_pd|^7$0F zG}t~Ju}qn=Db7f>!)T|zp8t|Eg7U$H$B@7M2I>#N+wRXb*k{#7^uP!02Y(u|h~>xJ z?~6LitW{G8u(Ef48%^I%g6)5oc(9k5HNTy9f^!e)m6MVB{;I}WChUo08_wE~XFi72 zj`_Tp4_|*7RH=ymTF&kkS@`B88Rk0uOQK0F*uMTA{Y&T&u5M_8`wV4tA2RD`IOR5CjR?TMD4QEd!w?HOG6I%O~2{-4G`-M*H>cvLS znd-!G*O|)Dl`ru(S*KolZ|7aL9wt2C9k56g6CLfB_ z(Zf03>}L&Xc}z3ezx})H__W2|+qM_fh$v1K1Rbl*d1mWPSOi1|smNypOX7LHS76)P zkQ0+P$3@tB3p1!0gYXIzqyO^0u2e`1YP!!qzeJ+)t_(ivXZ{feet3f5_y-3;j4P?n z@f7(FI{9M5r~u1yyLjw|#?1a6rJGQQ7@-UC_?Z_tg;J11DBu%9EdmnWJFbPS9*mP0 zvChu=Iybrb*tsL< zQSjiS3GGxbYbI{vA(JBR2(j^MJHx1~VC96AxUGT!!d#YF!z215C$D5v=Ha5ml#~cQ zr5v)ed|`7PJ(7aw(sTr?H>(5k3=!b8tEQQ#z5v7aH5~vvKaWdg76*=#MhL0f{*^lV z+{W?Oz8~Y;`{e-bAnuYT2`+-YpVe!xplX>_nvDME?B0jPkJsD!lm<*GWH~0b%I@{7 z=$j$h_;3V8O z!SZaeE~xE3kjiNIi#e$X0bOi0;|7LcJn!!y#5wn?zFF_9V#9q_mVJ%D{+3#fJQPV> z4`*P9<9qCy+-X0dIQ&KEjTJx=?s2Vduh%7av$b)%f4QE`d;D6QVBhv@&8|SjT3kA^ zSWnX%GY*E)&~(ifNMWtSx=ILM`f%*IkZ zsJl$DrkNPxT@xM957I(o2$m6})@GV?c3uKM%HMfBK{Dx*>@Uu}9Uz`W%&k+TS=j8; zY3d*VQ$>d~XOEhgy8=tzyZvNx2{P4@5|~mal6e0t;YI|j?&D6FZ~%y*hbL&yWRwI+ zlD~bAfK}AqxDL5U@)YgsB_T-N4I#eB&s@#M%5EDZ3na*48O~oLVw1&5zGVNKt;18~ zrmh>dvr<_!=!N%ijerXqG;U7+e<&+gdVg-f+|=(2uquX-Gcw3SJcx)4w!7^=;~*iY zVZ0bICIQ6yHcbh0Y=A9IPKskU^2q^(--EsKoiXoePY$3YY}D0AMG&n9WKOV|nAk>_ zT)(_IdSYQrcdlKK@4|aVc_aLP7;E>_v2fF=uR+b(v4;xS1LQ?5oJvehyW!V?2Ix3{g6Yz3JXO(?V?gXR9k&tX{sp^=M{ zzVjcJ3?gzgV-s5I8XAVK&h}bsz`$`)dSq#)j4*vY;vD`2baqo&UkQD8<5@kAN$g~> znP7vvynB+HRX6z1$d-CNDlLt`iqC@>^tA6+yZ*P_2inQ%C$p!B5X4{4Z8E}i%Lb(N znMP^Df2mY~6#qtFK0prBw5i3mSl1Y~Zc@l%D%CQj44ayprL(|$4s_&b-3PN;-4=A9 zv1o+eGKB-l!sVnhN9l-fw<$eTfCRFg#~=WA*})}&=rv{Fd?*nbb?j{F53T3#XrdK2b_%nS37+|BBHQl*y#K+94*z(m%}dkz06|k5 zj-L9n^m*Zo47H_G6Mo>g+mJA|dDCSoB58Ni355=fd+hOHZ_7Fl_oZ?|`$TqBKIDI} zNml(+w++^q5^;+=E#lW+3i6^_<9Q;e9*r8z3JjE-_Ttb}T1*u%Jov@?h4x8l;@(V( zAA-J;#KWg(M*4*^)jjued6hs=kSn*!?vgM z3*hE9#EqZ*|16)>6XeJ3m1~3sA`;7|ZW-6cR|=Er(0Q<;b;vXFx%fkh!mUJ2zxenD z?#|SiRxtrwBv*}$kEqxw${TF6sy{fO&li$uBDODr)d+!pOzIrm`QzZL|Ct0k7?o|D z34HN?P^n<1p*gg1p>l zEyNs(QF$Tcf~B?7W1ZI&{C^NPAw%WlUTtxQ0c*kqCcr>iV=r^E11Fg2@?n6Ci1F-b zVF1w3X^9T`)8&;uX=NN|uqiE)8wggSfFyD&O+^QD8- z`D};{GJT)1z`0i55J}J$myEr|{chOmQ0AC*lD6-I#z{S$jCNhD2w*Xn+^caNQ+PM9 zX&RyG?Qq3e+65)>B97F1+8dOI&t)2q^CDkQFeEWyx|n82XQIcIwx4D4s9Avo8YY0e zVOU?o6QV;KtVKvt{|n`D*Sf1u2>C=}UV!ivtp9)Q&=xUxU2k4f4t}NF9z#cWLO93c zY!ljSH|wCX6kxaO03HvF7N&|@O*#Gtx6+PVxdc&3Z*&wxZzd^cPt*F`VJW~QvvHH- zIC>1z3im*TR(pu8j8?($J55=wXZlZGXP0gcrw64e1}rGOam#m?p~_LKC$;bFZVOHr zqW|k^vmi97sk_5SYjwO_8W0ZtCj~qOaafX|N^@Gt8usXx#tJ|EHxYH3s@_|fu;qoc zcJOCEvdM>PQLLyWivtq1P>1DDpCo@P$fE_&;B3DxHMSZGIjTN}Dp}v8qx<1;`U593 zflB;0mtt1Kdlf@%B|hQLgia}0CPi4ygW^XT;x<<9@dh=jmbaK~@)>cd2eq0s_b(}& z9Z$Lm4DLC%7g`+rQ7@RG=QyNwU_8;}Nway&N|hX;nY>oj7X6aE&?=SC`rcb&C;3SF zvT*e;5v|E_ulfW9Dc+@-+rm)A?oDP>DBHjX2cHrxwf z6qcKYV_W5(UfVPL)OR>nBrb)fC-+&3^M^DOx3M5rKIp?*IeN`68hn5x?-`z9_V3R( zM5dTBpvu}8$D;s## zcMNh_xN%>)Kjd#cvJkggZC1GJ?VcwpJ6(n~68K5v-X<;;Kh5R-LONB$csZGk zyt`K6CH1fD0>Ig4T4ltjK|c&G$3~g5+e%jLgAn%KXdAMIkH~)42VKOpxF5_NZ<3(j zdI+<`S(zb53UXc%e6iQ`Qt2A`qRR1Lsl0i|(>rk9(Jq?VPt^oH7WITL*X#)^-`~8v z8Yi$S>s{XZx5aAfYcu*sqBVfdkbP-QyzD4tj;Cc054we)W_w8rsADv$s;K)U=33iT zRtcA<*^QDF6HAE>y8VkC8R7VK(aU^Amh@O9f>Yq}0M_K|IsVjNEOqJA9;$QHNAn!t zzM=9FJxFQ(s<~qJ=;K!JqNC05K^_CD_gZv2_7PGs@a~2Iq=XI8nY5O%`B@#*ulY!7 zJ3w-}S}^9$+n4tM!m@B<1q$70`)Ee$Ry&i3h&hw!_T9B=b8|{ZuUx$T$B)7CZAT1F zG$mH(;;+5+XS(|yo5Sl|Ngrl#zu56}72E&hmh>ScsdV_Zp2tP}f%Sn%t+J{@!fU#x z>q!Kl?|lN8YB+l0-2mV6&GPa7&CJlew6Dn6efi{+`)eY?I4bD~Mem@QsHQ*Kkh40m zfytek{O}EOkDO*Z666nP@hDew)1iKJ7=%9UN4lElb_c7 zlYbFN`<&7um2H`}SsWgmV1`6T&jDBN?VBRaJRY6C5hq z-xQ2wl!EnjW;oSHw7fS{x7L&N`Uv1SSC2coV~5h6-{A@? zT8*`FH?EfKSsjfh1$EP0Mg(5vwO|It2Oa~hfA4x6CuH5=Zh+p*>H$8yb`9spOZ^@$ z8In%o7SO2qxNGq+{)QnOECz-RQO)z5&IyghI|0#&qnEgq)yT0JzqYQ$&-t=z&9@*U z4sAF*rFeOHdhM7epmf7!anaIPKStkIuYI1ZCspDB)sIYE);}sS13xCJ#MXGbLZ=|G z(!>3hR?mH2xb7=P%r=DxZtYW6K3DO$WN#ovzp84(AS>FG@15DDuJ`tm!^V+a#Cp=4 zo%ePt6l=v`7*uZbHFvm7D~Kv6%0AnD)=Iw2^Q*g7dGnEI>PrWiK}vluR=D&voYUKT z*r2%7IhhXBq}z6N=By&pfdZ?C(*G(+T0pkwk7D2{@3SQKNRErg0yG$Xj}0ZfU>a?n z=MC(*;9pL*$^HZsrR=C_ATrq}h$+HL@uO{N?~_+Axa-ay)^U#e^jQ?PGFQN9nBipa z=9d2fDMtYB6rw2>%7DY&<1${RcQ#o<0@S`5fxe?&R}Yk)(4ANFl=Fs5$E|L*somUy zqz#@oXn@3d#H3=K#HVAAoPd=w^#LIIZ-{-DqE0T5|Dt{i@_e3P;B3qPBZ?N?wsP|k z#rOGaIbD<-t#ow&^VYl-KflfU5zCh@P4R7Q+Jf`{E@B1s&~MlIYAw(W#<~ujBn{bf z#@fJ9PJkEE5C@IRu{#8H&18GY8{L!*onZ6Eo$Kyn@uCb6{b2GCU&9`jG% z>^=4X5?nru#YMybiFJDqpT z=!G;C+fPf3=AYtt#@SLn_DGDPKl{0Ud;n;Z^tfwozf+Pxb(!aqt-79+LAKvSu?w+_ z;E+22Ld`FZXU>dU4Fq|L9ksBI_B_rl(poZi`4u~r!zH`D@f$H8>1q{)zO3OePL}dX zVNV>!Do_DS!V-t=?R5@C)c6-0oKY862y0+d(wShsW2)DFnp93SQS0P&Vsf+^V(ZWFc9!b@5sc2cY`5s{Vj%07j?UVnQ^LncD<6 z#G~TP?N%lv=a*5lStgx`QGm-5eo&)gj{^?xIPT*l#k>*cL-8XuH@2MbkJbOk|41-& zd(1NWMq6j*C!mkH{9e=allIo3_W-ksdN8)IU{fI(wmDi|DX&Pmx44aJniIbzXuQL` z{$^}0pfi{}AZ-J6^oCmw`Uf|<+<1V^mHk^u70Aq7_V(IVTmLMJKu~19vS(;IaQF4t z_0>(IE6R|kw=jKig0F~Fv^;$a{NTSu$Gjab*oaPU|D|*Sx6Ejp4?n)1^CY!@*RbgL zWaiHOLBqsN+s|i1h?%%!Hx&Lim;EZ=k$n%Bp$CcO(kPzx-2Yhy)-EW2M9^s3j_o-G zB_euqf=^}75B ztDYzZ*SiJdjm^U4q)VQLw<2W$F99EgV~*3A(`w;I*Fbp#o7nyv3TghVyYZO~%e(7m z8>QxV$t|)T1p%Q-k&6@or#cJ)-scT%Jh^7{q2k+Cy*jRl3W2!5+sV{_3cQAl|K?+> zk*kqv^s73*6Jyy|S1;#k?kayRz|==E82xqB?QPb2q`8E#-mj%>A&`-{B`u*_Sx{5; z#;9GWX1Ce7*m?-`a)e9++iFb}KTWoKhAEddXF)2Y-k!tnm?(TIvpBJ9V6D=4mhEWh z=xsm|81Z|0DtfOX^qM8VS(;o#xTmcB`WrgRSJprbx#-({@BsfNhEuHNE(5W6Eu;)$ z)N3)nvCg9#T3MQ?5AD4;_Y(i|-$NrXw33`|U1ROKwBB37ng?;cw!~)T&)6?Xm)?WmuEj{YciNZxnVWXS3G;85!HL3wX0|A zaunx}*g-d~YKuMwRdA3uT=LIYTL;EzrPswgFEPD$pv0j_hXZu8s83bV?z?!0i;wYOrO)^^3wcVAE1y>HRa8;{gi zVLciqpw%9B{wJifFmw+?s9kRiQ1rg#i`iLNa7E__9~9FA+%SL^TUyvX+pjOP^PUtYc*oiiL^gi_)F&37#w>tIa|Xl2DSLFpHTHWI z-tT?{w(p~pTg$HCnPVXSJ~fBlRD{p)?Dz+-@1q0gy1_(yPk&} zS$liKeUcS2Vkl}E(Tc)0v-5zt1xU%KotKbrvX8Jfj!Pd?b5~;25=0!T?K+_o>k~vs zd&t@Acg}KFkF`u*ULL;uFdBd6Rk$qnM2v?#H#yJJVD%xXsqyCued^rh7Cf)5ldn%C zxty>yVzG zmQAypBrx!Ews?e#`JXU|_S6Q~`^$?I@CgVvY zUDg?za~915-=9>Pz=a&g7GLcDpdLk2-=Sdst88F>r~l7)o|I%Zj(auzXDP%8VU`XZ zYX{LS9`Oyz$Jbje5wT3Mqi!TbrzZFOGhMyNpM^)hdI4;wdb7mZ&$kj$kXX{f-Cj-B zMrwRy6~b{>C7tm+dzxf?uFdnRGv=!Q1+8X;ZfvfucX0WAG5`Jb-GNG&i*aCVh<|(6 zh=#u~ADH9r$G5Q3W1gkJtT zqT*p-{hJp_I-$Vpo-tgy04|9;Mh)rT@uvI1g++wnNcr_f;_v$Figp`BA$8sT!~AR= zYe{YPoa11sHNAZ$+a!V&2{^1DGD%7b3P4v$M)!BKYAUpt0EGbAul!w3&WxT}o_9VGGGp zQuBQ`*G(+nx`^l8pdK*BZH|*fvG284aFz~x6(rO-8dVcuZj-0AanGpp=~VXz{rB2- zIE-`Vkf5?t$5InFdX2s&dKcLLT1^IGm|LUC$0`F}n#kWDyO~3PTe?6pNF5%d`Z?99 z0mZYUP=@qXTI7?>V;I9dS5hB-T%cH8{`b*KIqr;6A4AyLPT=-e6^G9EB2k8-9BGon zT;-C{d<-epSgJk%SYN(?>_`IMcuP)ieCb~F6eosYqvFoFqQOS_^)*YJGF4FxDTLIv zpmeQdBtiNfx7O>vH!UA~H_@|4JcJit(`8^f?O$tx zlR|iO3+r_oh(Jwb1!XOtBx|HfWghJ(MhoB8IvURfiymi9YFz$C*aGRpo1s^>P5j^n z2eg?Z2W+9*gAU7%2|3#nBZmL$GuSAne%25|o=?s>!1(hcZW1VAs@&e;JF9_Z78Nq2xyi4a9@J0< zpFhz26a+o~(*5^8|N6Aipb_Y~|D?sN0ztVEPZ_(+_^!&;#pUJT;Gmzx8*DJJG3ioZ z4hEi}Jw333EuMq!<--D()1u>C`bEpr8_k1+hZhit6>dJu{g?LzL#q5-88?P=K>vK=}*>C!l6752@?yae}8{QE0JaB`Z z^T=lkwFhfux5oGa2UR_2sFON$)(c`7a$I={KNjg&)A;CKVivGsStX&%aa;KpyL>r= zZRZ4Od&Sw3rGD1h={q$)MjK-Tib_Y?TuVBq?ALY-Q#i;WKpbuHfBwn=Sl`g_Ye@ zc?YxM(B>T>CjxDqddutQSY@M-2H20?|3leZ|3$raZJ^SEgh;o7(k;>{D2jx1=LkqQ zL#K49NHe5#_s}uGAdNIb4-G@d&}ZEH*-xC$dww{70Q0?B_qtbH*NW6fI5o9r_7GF9kOQYQRg*tCOxp!4m>zTYPPp-HP90QFs|?kCjWw8*?U zPg;K&VpXUio{Ds{$6~xoa)CV2 z=*g&6EPbC5!KW^7a`Po6nSm_A(nDD(5&9{0Hw6v*;Fqq-% z4rl?$r$0k*q1{yly$J14~W03hlmNyLwC~%7Gy;fwH0aonR+8ugiv_ zoV+{}H#gz#c5`}as@I$&6eiKg9S6-_w%?nnLJl!(t_Cgfyou*%$oiG1n=HUWM`CdR z=`Qq5Ca$3fW}8$3nu?f zQC3_aRA_7*WtP`4GJdm@exz|0&tsMF!NmDZWTvc0nz~3Ga*tfM5NLE{+4sI>-Ect5 z`5n**Q!z374Ww+^)8|}hqbVU#`>L%Ix%xX-L-H)I@=HILyp`vRNzKUlAVw^Yp1i3@ zMhtq4WIwc~v^ld*!&e?o&6GQo!^eh3XGK~M*o=(=!4 z_E2E(d7sn%%(Lr69>JXeC!WZP4~%1Ls|lDu{V{k=Fw(VK#^+FpS&{)1VUO_=mwmdZ zmOzP$it00}xjaB5`V2Lb3FphpKI@|@DyWsx?8%M?cbc{uV)fYdl0*Bqup0dWAy@1s z*rdAQeNut>K}jp8^1+1QSkdk$02iLh(Z$SN>uP1MkME^JkS9-?f6`#P%aubq+prA- z&o@?DHw8xu;lP^T8Wr=p0oolLs+bb^PB;4X@Fk3tSuAAbJ;jbD*3DtOco5fJYg)#Z zRhC%?NB#}H5fw+ahYB&?@yXY;gplO*4^Ep4<3|Ha6>s8~%H($i8{g>xNvUS#3pt;1 zY_jaZ?wQWbf11A8<4=A3#Fj6bxa9~>ui`?gn@cGTKHR+DV|?$lQF$XZ-onX4^st%i?oYsbHJ2y?=tLFmb|!dO zj()(~_jpx4d8>+qOpYJb+(&fr+_yX&X{C)SZ{1kQvp+es9x?YgkI{I}!eWNH={7a$ zPyxA=RbC0z8kM=h2m%$IASJzYW&y8N$R+4OKWE(Tn!vd$twTMOy9S?pb9!53eo-5w z75uPatjI1$UEL1gTW;=2)Do99}c`c8@xwa=F{qX%U@w-z>;T960RE6>7L$!chWSW)+~$Zu8V!MB`{o7~TF zq`?SZma%=W)Z4!v^({3$pz#sla1;(dluCl;{9;%=l;R>Z=_@^`VvP~~dQOsm(1J2lS^6}Cf(_NFbLb&{a3fhabIRw6o`*gZM6l6SbsqC-;^}?p7 z>j$Ym^ycc{!I94Ifwl{&kyJ19;h`HZ4>x!7S94025pMD zLxNTOLmFKy0o~!mf9^|JaI6jj@*E~1FL?i<(y^?mi*DMyA`?F3(!A%Ew&|8Kfn$@l zH8JrOt@v33mw`r7J4VcV=J~4A#@mDV_~Ec4Vh{r!?mSz^Ny?HC)a2q;McQ4NzNu}2 z&JO0*9j_uK?rakL1>7ewQ(PAVcLPhG1@`P!_OlFVY)z6py z&Ie*}v$uK)Ufyx@*c|7NHqr@?h>8QuRWtB;8NEnkw(Y3)j9SjC*Qv0~s+KTES|C}Y zsf03iHkVe3e-eK_J|9vxGK$Pj z6I}QG#e(Iy6PI=>`mI7oJWDa&=mj~Dr(RA`+;WKUOa`18LjPa zv&@IHZtRXwD}>vWU<%51WlrZ+l$zL)Od7hiRv??IhmNMEqaeb{#$q5XV{c!O@FKls z#gh26)ogl_d7|mYxD~Rd{`%5~G_I)4UR*NYnnnfTNTae}GHc;G40o))JM`G{R(g(S z8G^t616Sb~H~jdK1g87t*7N~Wt-}&ABI6){CDSW0AjH3?R|ypn;O|9ZwlKLrjJ6BDnD7#R=XJD^@b8K#1QB9J~M}tyKW&F`yXymVz$%s z(+;IJygq>)NN2V&6ge7UwOl4zfOF3zJ}<5kqBps+7d#l_``~!dO0+zcKXmkV+P>J< zXa(T$iB~H?-VTT@IzCKd>4X&dFJp*uHbu+!z0p)N)#fB-01Eh#zf$hOQrHgBB5IDC z<8lWYmNN!6en*?{b*1CVYw@FQlH$8i#_OMu^dH+1)gri-Y5e0gZo22LqDCs%o{T@^ zlu{6UENiqD^t<&Uzc_k00TvG94@p{|;}xvJDSUa!{R;1`uRh3hGTl5kM_CI#*3KgEnwi&}pl6#gbq7u9*|q zv%S*o)XsSHOKXu{N9M5iYi|H>Z3Z|~bMYWy{7HjA zE1eLkp@{1MOmiWHEDRd9Us#fj(kjCxk8<3DF-*8?8VwD)cuvGiP>GfmM5I35{A82E zN$8K`*U+_u3d!xlnrqIUoQSw=uu88{d_S0PB(a$)?cA9x8EaH$@j2|o@i?2*#$e_< zIy%DJYjWKVx;|)MqVU@9Az3qtCtmQAFtwOvndoHZN{6zw)JKR6pdu9kmNlPYPvJ#c z{pLY_MXcQt!_GP8;$~&RDP?%cIIM!9VEtHUqt2;G`O3(x2{`CdV<#FHzvJAVK2nUJ z#w3BBfOl-Dx%m$ub88d#CjRkqIgaC09dt0gMvg-bJ??V3_m@sVq&)mYjS~v#NhW30 zJ7S_d5AN%S)0c~;nOG}xMHdpI3J1-sA*JE(N_7*YzY0An(Jqrl$?zv)xT{{N`D?2k z1Al`(^gO1d61Zz&`(8n2rzvKp#h&E%?j!*A0#<;+&gVIU|-x@(MF5 zky9HcKmDR03$RJygxXG!@U7CmHApN}2)hNGU~_a_;*gUr{hfh5K3=8*kaw_ePLfmc6zy)39T8C-2Je? z+Z|7MjTr+u#q5#PU2&06EwcOFMIwCtyx{N4JaIP6N2Z_54!qLTPjmHCKNm&4Ojqk- zyVA>XT40;e)x6&=7+<1Du!4Xg?Q7Nu0?O&_Ye73rw&#_$E%(aYh^TC?SAD=Q1|qZJ z`?n&XMcHvUR1!ds6ykg7Q=oW=d-@EbdN9+UMeZl25rI=#5N%>r$` zb{6;~yCB`m88WrDE(I{&2i%}YJ|;8rDdw_gg{jfz99pJsUF^>t^g@td)^%!qh{;Jh zxD05+8ZkfBFj|-m@1=yNz9b0w_73vG0pI97jbN^RoRLQx{1K+9CT7K(cklG# zQ1R01^)WbdXE)meG1M^WaO&}h*`bQ_Sx56(J$ZO+gk}d+y3pTYi!pgkU{BCatnm0U z0e2^my)EhIiLeL;$Z9j9M)+p$W&zLm4>sr9X(-oi>vMAiO%~=m3|Y(cyTTQ9-z)TU z(bmx^yp!2D+CVw;}w1iX>qIDAUWGt~$9`-mkQ`S1|PLZ-1fbzpqvZ=^YG|aZN*9s5rm3SUl&mLHPV>NJ#bkvUU z35unT7YP+(SUx(Kr<|c&j%1BpDevfk;a@g5Q15Z_RxQUed;e$~9kMFQ@bS}>Mza`- zkelD}82tHb_GarvxE?PNO#?F%$HjwVJeSHulY@bZwl3SH`jWw5szUaP*QRY0Jt6X+ ztC1k~=76m44I*u@YuS0%UBqX%XMLby6llw+Gc$sbe+-q$2mS{q&KYvIs z`)q;esriY!^@nE(>XGFOUS`NXCrtMq>k^B-YLAxF{$1-=v7LyR@`J1%Iv_k!$~brg z+b0AecJbsZGdxp6rDW=2wcn<^Cn-3z>w}$7)6j{>@``_s=fD)DpjoL`mZImn)1&<# zR6%FLlYi%fO}#+&K?I6WK<(N1kjU9ns!O~xPUOr1#NjyM=WADNqCPA>06uz>K93pOsJovn4ipdi-_2Q6%ZNu z9KEUa-4{WP)5oS0bCn*+kl1z@&@*O73559xm?T0j=V}r)iz5RX(EOmI=J(6_BU!~8 z4rju6(Q&O*YaLT0pm4Rojyp;}#&ax+*UsX3Z**p4pXVc|ryMlR=lK9Kr53Y?I~H%` zOn$EwQA${#CvwI>hYfL@Seq#qe>>p*WG9=kk}fHaH=Z<+s2lepz<|(TB)AQ3Yf6Ty z6Xf|-me`k=8#n$4gGaUAd_U(uGa(I?4;AB1>l`T#9@xMsAXOI)`e3|pW9Is3s~BcA zYm~Wge!A-Db_OhRnnA&&H0bkH{Dkz~wpU{O9)~9Q)B+EQYb<_6g5Ht7#{C0>tKJq9 zI%=!7Izt^dg)+5OHYUW@`?y01vB?PJ@bowzAIWCc<296yTT}l2+Fjz^v&fEDk%MFp zV%imQy~z-5{oTv+X7d8xsL)?TaD#{WXs0wOSHE6`dv{~!TzBJriFw1wRAa2r@s-J# z*JQ9m-bih10f0hZ_JyzBhH#BNiwm_Apc41(Um)GW$A2h-LcVPQt^Mdpu_d|K@l?lx z2XVGRbTF#@QenGA^k4dn) zu5zVb%@ii}PuQswc^uVAflJVM9_(xAm)LdE=wr~HK?|jx8g+uswiyZnL_wt|QILhn zrMzC#0?AbJKUe?fHQ==lv(HaHc#KUxPRrnE-$~b=6x$$t%uX+>?3W!XzIgu54!(4J zsdY&idTf9R+*d;v#}-3pGWMM`f$HatjFwLazu@$?YO#d6bH2wavme=^hfxohj#qYu*q-wUsj6~sQ`90#G47OzaI~zeYg*j7;xfqY=TvjXSVYLo|w z`Nae?>~j`!9Je|sJMh$HeMl->QO?};D6g4oV!(I5c}j8HEE+rhpk(i$z|A&9I|*S6 zLS+Z_{+V41sK^9GY5^)y?YK1ikfrR^nG0bbjlbwECjhW#jHJN4pqe_^lTgD4sUNKm zifYBuEO-cP(-dRr5Ceb#4~x;qNc|&p{c`x1R%Y?Yt(M(5Lg4zd?nTdy5?vU~Kc4bo zsA#!h+IG*1?Md?leIH@2dor%x8O<}!rr(_HvuPT+t6{r3v43%dt1g?z#SSV1%I2>GPXvcv z28ofNbY>HuiBPZu`imUjNmO6bSz7OvRcS21QSET;Su#icB8PS#kM<^+z>=&c>5V7H zO7?q(isfy)Of7~|{<@)RPiN|n4Z#>_BZD@&kOFms1-mKKtkX1;e+%jkL+iDF-_A~{ ztnNF#hTelUw~{JJD=sy`=U+*x*g{&^zU}CRfne%itF3YYB7f`U2nf_s#_i5tQYF%j zvIC23kOit4;^NP%g`KesgWpv?0t-iD#OugvUbj9PSzpH~)gcmEam`Tki!(YqI3pcZ z)xAo<^8=qibWA|X=dwj3Qw|rjgHCUo)N3YMb6T_ZB>}Saxf+cKs!K;B3!F+^C*vH3t1 zzdgamaNL`#K-#qvcO{|CicsE+0RH*yNr^j+(YGr;gPHh#21%g;zO=|%m0eSIEhCPY z+*hPma}`7F;{z^7!8$%F7xRjjRtLASEY9CV%4cRN+M4ZToTZ5 z%ZgsX7$1|=t8x{(S0FpO?N=b4|FW(;~6 z*MRCd!_anO3#3bMLl&Y7h6-dPThGADK(zK{H@YQ$^YnLgnQp@sPONo{5Gaq4Hg6#d zxXte)$g6I|YZT zng^lg^B2H{{L`Zz`L&ZOmCpy^h-#W%`Rj;RG^!n~8gyBQ**ioq zE2Sb^{a|eY$a@-5(Wi^i02i+UAJmE(ALG_jJ#DC?ce3z}Pn+S=+@12V@YbOTpvzw# zv9cPvnFCn@C4%~`Z3+FsCyzf7%kc#q#q*vV8?thqj;?)OjhdfHX`@pC8pJ;0){DMx z+jvm!jbxRK5&l9D5{4@3rTw5?8r-m_PYQlmjyJI4o|GHTobl#IrZzg&KJv|WhT2j; zU1yTl<42RaKNnS@n_9_rt=}PM9HiiwseTZaTMORjR>(+@tbGm9UZD}Tn4fMlw)ntg z#mCCkQZi|7{UjcHTEWi3zfA)c@X~x~dS}Q=tm^ZTSv0*w;xacujm1z$%+TgaJ9mU! ze3bU;F}X;%&M{r$i`#$@Tq(02Y?F;@l9@Ixsz=uTKvJ`RE@ zj1fChmi{82TsuUdF7$?>I)fYDVG?3qZ(lR^R$~SPOow@sUz!=7g`rl$k_pZzF{~TSTGDZ{yYQ zHdQ1oQSJji&Avu)%t6jd=P>f=Pz_PTT;(%-Sai(#vGnz}Y4OOew`c*H`_%adY_N49 z9Kanc<%#tbg0)Ybsl;oI|A&hC*lB1#8==?gysn^_E`X&XIf?C!yT36QAzgBvdl*(y z0Jpp+2{AURp<*C7GU;z&q9k*|kEig7LnA5PI)I7}My2lRY&1Hnr`DFjQjOr^j9wy5 zqd&V9ZG;No0_XhQW^F7;`c)NguqQX6N~Xhf()Ic&@caGUk#MpVf}Z!&k81UFaA4!9 z0765H$z=v&C@Di+QJZiqt9FdL&tH8wa&9xaHvQr7-Z(yDLnXZRr>V&fX~~7 zET20ZVi^ov0jUtKp2)17@F0WlNl>k@v;nj_}o15pqJt$*8;@tMZ+e^yp_- zmD%RvWqLVJ#R0UIEegfGx`@15j-k+vPmRw!XDU}Hh3s1Z1|t~< z*{BT*{kK=XYsvX-psy{zmYCg7SJ&CoVb=6GyXvgA|DrHaZ`^q+&dn}1BBJx>r0mh@ zGWkriH^;_ETo=KRZ}+3~(6oMKN<(=rz0Pd86VVPX+>{mxeT0a>K)Dc2w{{$akOAGBj;H zVt2&S%NH`#)PC;b%aiKleu7K}JhumzquIID{?Xl7$4voMF-D z;Scw#`3bXoFrvoReqVk*mJ)L`tWi`nzM=bl5@{~q`E~wies57Wb4GTEu#gTtSV7jeZ zR}F>ECz1mf18sLQVd_O)mqNbysUuQL^lU{io9KZ?cU~~uk!0&_3^m16vPT%hI7TtE`yR07ZP54=#gy#Mt=t}H_g$i1-{-2qF}Bbm2T)#vj6!?f&2R)Lqb za}R5bM<4_jrOBbeDR; zq<@i622mW4pq3my@&oGq6)fzn#A;6x?#%|vHjg`+OuO&RHj<>N3q5=0$)#1HD06e% zvy=T$RrQ3JEIzm}Vaar`mNJ@F5Iq=&sB6>MFZOqJ<}&xQQTA+p&z|olP79$*ThsS1 zQMoaLujGx6L}}jFtT^p0%6(+|%07x5&gN|hk}x`hFU=p-4*`pL*7iqi&I^BtaHyVbN{F$#XIpQ zoar2{?O53UQx+qO1x$ItV*LtY=f2rC_DV(sK3vmCtbm*5`|3 zg_bE7I-~8BXl?KO_#hVIYZ|58G(>X`=IwQ8^Oga z8+ZD(Z<|Q-8f?7!&nqw`0*08A34g7}0!p;uEBUojQ5dYgE@AQO=nG+~bOf?(I9wA( zq2@;=_x(b8>9I>P+;g?jH$NE2Syf#ve;qpzHUFCD7};RAv%6Gx<@7fU4oqmmi6yA2tpf#%fS{iBst4OmWk;lPD6uj%wMRE1d$nF zhj49;BKyTUM@eB0|2+6|3U)ZglDX38PUmMJ0 zsjnRJe$N9BFj$|5bLBfB_i6$urA+bYucy^9>n`9uNyhSlX}z)i8-jub?n{p9>hl*J zxs*~)>?o#-}FH*T+mac7$Elf|aGal`5qELGhbBt4VOM+Ew6RCY$Jc;?+o2(jpSvG}XzW|Ch{Tbs z`?kJ3?uc1=xIrin3b$fYw_NS@pO1{Y_K%&Pe@!}C$C2-(3+5$XXu1eW+Hq=X--Gd= z@yTW{cFk6sb4Z!I?1-U~AV*C}RCnTO8SP;xAGb*sfOxzb-}WXQ-jJNyKzY*8O}R4E zz+E{71-wuqhFAnl@EMmKMty#{{LaR6b{9H9Tb*FHh@*Fk;j*v0oKcGkq8~W2X;nn_ zv}}dMnrCpF{4_t?IHg_@r`o=8o~B;0y_SbDJ^Xp@r+#x43C9f}Uu$aX!;7jlCJ!c!+IMo!LhA z@k2Ahv9 z`@BaS9fu;XCgZCoB@XWV{?jew5z8`YUxLq4nY90*^2NbO$A^1A&A{34Zvei;j^FxP zAs8u*>^!pCC>(Lrl4{OvD;$e2>RZ}@*4f=|L_sBB+9-&H$c&ul#pBjTX=)9`UlNJs z_L-7fD8$_JbH6U{_}_bh&_R3Y=pHTW;HbHbAL*|HY8w1Ng@FMlk45b7ny zrx*CrYsDYex%!ziSn4VhHTHMX2%cX)=XmPbN{s72&BeaIsHY?@(b`@Z7eKKMJ4rt&8)ouzZ~!DzPXy@U`G1jRUC6 z5vshD>sUW4#DWSW&M7hrCtIA8Qd1)<+V7~-1oNH>x)ZAb_dA)J;?%cLLl%F%Msey` z#Kbj~s3mIMFG``2b-#4lm~nr>2!;QIz>j<@R)zA!dXK(b#mnU0Y^D#3PnVbBA6;5q zOLRhMd#5&i{8Ow3T~K~%YOJ&LC$Q<$T}2Z$xy=!ASnTqS zpMgI_30!C8Qv1{S$y6CMz3&n^P&W-YPrt;Aq+}FfkX@-6k%+q-LlI>Bb$U7;74uz-S6>`S+u0Os0uMl(Amr2iSwZT3=QCN@sA(>*^&lpe)<~_D%I!v3j!_T{ zLMlXUOhlJ$61Tg-5=r0Jr`m2P{w{O=E<`}Gq2Y53KVF*BZQDt?H!hz3aN(%Yg+GX2)-u;`qOF|u>w$!Sr&-JSTcI6bRTI&kdyv>QM0;k#I=%7ix42N;E2I_c zCo$i+uGuEzPFi*_Oxra_Oa9H9BD)mzd_@^GwI{uC3=TbH8m9i`I7d!Z$)e_r7Hx&OCfXN^F6I?tbCbGJWb3&07;vl$#co zoQ9sC+!_Y#FRy*%{oswte+k_BS!h>uEoP;c4_x*<7Xs*v`yEzWHA$il> zsAR8zc&)4#KnGlns_H>{IkQPptB0U5Spqt;DtNP&k|?G2ZEWAeiUaZj8UVlL(gs$` zJa5=hb?sgh_uxFLeeW$*1Mk}y@I_#l6HXuw1l5PBOq#6IGk9Zz~Z5Qev(FZXYiEuDwiN3RBY4V<+b9&2(MAZu%c?Ive zkV1pJjqO~12Ek<(2XD58eRX1`Ak&1B3CGe(WJp^@dmUTS*Triyc)lq@aWeqeuteYR zko@4Pj;nV8PF)Q?Bs8vTs|s$_g8Y^B0vUSs(qd1JQwL1R(|(n&R|QXK%!Rf?H!<3} zN<~gc_l}YeXJ|#-Uw5uwNWDIL8D&xeJRriYBsX>1b3WaM#RWteKXqueFk`5Tsu*Z) zm6UcJR14DbOI8#i@9tjh@ox`3qp8o5-Ap3wE?)wZRkYkC&Rz9yQiUCVbXwDQ6SrLx zj?NTNstaUDgqVA`U~XRagc~P>Uo+gWbaDmz3|(_j&Zm5|XexIsD3ejGH_woqN4TNv zS`~*Dqp0ZIf$p~x4dj%eca`t8R;eLL+?y!!r~J<37K6#5<|XkqKc4+*5~$LlB}7>s zjzKrT$uJ1H>GCI;%}15TLJse5?Wyjj7;#Z^d2(R#A|9pJ&sr{KO-hyYqjQcS)@cAI zRjib!LH#Bj@Cd)2ZwI*cE#SIKP#+6&nXCadtNS=uQSt_<9!>kwsEoc24Cju7b4A;u zMt%71)Kn&CM{CbL+<&ONxIOl00Is$2(LE#R8Fq7G%XhiMP7a_$>n*qB&6avybx&5$ zUqsOOZzzoW1JXK5;H_Y2y>fn1^=i5et+8g>@x+u$e;K&w6IP5`U>1=3}Y$Mj^sbfOh>|ajhB@cz>T{#k=6NZPH$NW_upukjxjGVnH89=lozK zq`4B$9vGrGv_cVo;@-cot*g`GO6EnZSa>mbl-TvehV1jspa`aD>twLhzUMOW-a=;J z_hW_mxjlDU5x=0h)ff6a5=&Ly3|GE4DRV}@h|n4@r#806PJFRKu`oYNJ(#KCK^3{p z68JaYS^VK@!L93tJ3>}~UZs2=p)4x2DgA@f=MOo0hb69YedwP(;9}Hae_g;`k!2W0 zQB)2|<_8Ftx1vIFLC42|pRp_kW7QDNm-XaGh`B%G1Kr{suG1eYZ8!`Nv4iv8%<{XE zVwd$Dw+VV4LT%p?lfrb#lkFQwoRs#ZL(8S0D`E;GI20dp7mO++Hx~^>^<^1)Uz8xe zweSnscI%wM{O>(E~aV$fIMGc((DoBOvYNbqialh5oX zMVB_}1T53=S&Pf8fCMavh^3c;`QQbQ*AkW!rkmM51H$1ri-*Oqn=PHQk4dzP7TaYS zu=m=fia!N~v=7K{aLx`Ocg9a|O$3?M=$4`>I8D5=F#}0d} z8QLx2{m5LFfjGadqj17|lNkfPYo9uvySP4vPapjv|6^SNb z0CH8}1?}5RpJAA(=icSnlavW#!^~l0x!bj*i4zj>lS0tVF9hHzeCd_5uQ=h2*e_Yn zH+|WDM{X-OWb&vfP`?U9g^kv=r=!b>)>rt}s<<}7);^||8W{PywLy0V{<;JdO&Es0 zpZ|QL&cm<=Ok-a4 zTr+TPD?p9pWlt$7{IVR=aDOzVu=J&|Zx>d)byjhgylk#~!}Yjw4~LpNZTH#N%0cO@ zXMu(wW!d3hdm|-*!H7pL3J!A$n;0Z#x*+X!ZQq)!oE7edO8k_@o|%-4bs`RSiJWEV zPF!euM>RTPx4^+ReNM}6L2x{9-Ks+!UKVF(rNN-toIYSONHOZ!Wgr zvO3;CGMa+&Pk%G=Pa=xR-a1-#Vg!Rin>n?MM7i0SOjecx5+1h@_Z@t9=ijL8=wkrq%Ut?2Vez zxvZTj)Ab*{)#&e;>|W_y4aNiZagqQ+bqjAs2X47Ji(b12Qe4*}aj8Yh$?T2dI}S`DpD;={Wt@ThTfRP6$!_}X&aslQ@b50>=Sc*Oby ze6>8B^tSGoap*{!r2bLhG%xKQrqbr`g5QFHVt+LR%H@o5*e)w$1P8rv=2n^~YNR^; z{6uBctZZ4Qy<&B;7#*Fb;X-)5=(Vz`i1YkNHVX6k|0r3+)>1 zt;HHtQvyRFWy0g+$-G~6Ow4pK2;xG_Lz@kDfLeaIF=#Oa(35_{OVvrBL?ZdxHlSo) zT7No=dQZ{idPeISG*@Wak5^$|f#t3dx`WzPqVJ|RY$-zlyp7n@^KIMm3_%GCF*y(;+a*izv`<}h%e)5eqO?&inAP3g14hw2lS8E-r-s#W@@ z;)V4TFE^n%b;<;)H7Xzf_EGpli-%js5BEIQW3@{>9+@jYlhHL5siu1E;XK0ex#iV& zIPRCyWAuSZ3-CCKIOd3{dtIQtUptf_Ht^QSo~2@n&x4W!h}S~8yd^0-LqYLCaDtEk zh=uQxUqs*s&K2L-$+i!Z)Ur5Sam*YN4T4#xP2TM!KzCXa%OsI=6=&I|8wn zw?~uptB4f~Kf`+6wh=sZ$jJY3UDW%Ek4^Ohx=1`jsf=3TWf2L7KTdMbwp+5$XD`kB z`nfu@(RrNb^YF?k@9-2jA56gb-E`5U*QDx~xlL#a`b!YOQlZi{_|^6$SY%TLcyQsg z6Snr;BHL!Jj&W&iJ2Dkd^!_QgIlAYIMo9~ko?MRA$H|vI<|4f*c4Ct^ZH{Td8af3RqW-+W z5Th9CeL@Rb>8lL8{$^mFsrTGlTSeWlFLg)Z`ovM5s^4NSyH_16$1he4t~BPD9a;X> z+wAqq3+%o1jSP9|@WiPzMECPix2j^~E%Cr_zpk8#OkSH#1*ngilkm*;wc{V92Y}Or zofwOYiw_roOKkqvT-W-vQg>V-49}LuN&`lAxim+$4fa&gi&KvuJYe|#UQR}1RLFf# z=O0tSi1X)zdnr0MH^0q4JI@LlxLEQrk6hC?^9S5|qLN8GsL!fn)j=m~Z#?g<>00j{ z`rDzH{D%YXo?}gJ zyVOwk3Z=zpRJ}Y~gY7IHjT%rmpCq%WY?^w;P9}{j#*YBK`7O0mA>!2VRoTig{3xro zwsx4CjV%y{_;&%9^T*ua=DB*){k|Jq)kj*(vq_1$+Yp+gb8ixiW1EwKS~1r>6us@u zCjS zG8@a{%e09+U#Ny{Pf8O6HsMQdRJ)1R(4iXOSFb8>y*d7)l#>Bs*UwAa_5_{@ptkIR z+E~hz_4&Mg>*)|pn^^}1HGle96+wb@R?X+rg-}Afjj6$=4p2Qd8-XgmFCxR?V5z)F z8!I>gVBGi;W}28M^KlxoJt$}$@FPL`sIm5cz7--dk63KPy7yxuZ*O(x<_5FU-+K-z zyWWCHU6L|Cs&r52^JRKHBWw`=9@MZ%6Zc~R5$jfo(B~UEQ4bWWH|iN*?kTZh{=!$f zE#Q90Z>m@@R$@PwzC>teLC1{g>@5;ED^vw;v%O#ZcO!p@5$Z<7>g{@W7s%l%{+WTs z266#FCvp0HFcHREZ$8^O)qAbMY}qiAQ50fj(m^p(>6r$gvu$0qn8V%LK?mBBvZ_}d=HD6^_?%(h ztX`;(u63~*z}Tq}P4pTSVx#(e@oH+g?&Ld92%)+z&Hq$lQ4ES`C zbHwF?{D{$BJ4Zb?F-r@WN&PNE>~#a5PbhiPQne~JwaQ1Y|UhB9&6v!NDLg`><{vWN>cvr>A%Sgw50 zG~I+bhlQ^wrF3LZ%YNs%g~k5kM+ z^S_1HH~ASgsCv=&-Lp#lR#AFBzOiHp7RIez!r>6lp4bLC(c39yPW!#`BVUStM+1%2 znDgsnYX_g)Q+XqMRu3z0#d!Xs+9;FVvsz<+4K(`4&aj@MYImc0EEmoXTK@gvtrw0g zs7SvFvE=!W>C72LSv*eiOgC8j$-jl3ozwx+;gsC1_uu@_Q~l#4bbO}l?uY*)G9z@L zSrxJrb_e>;Nn5F3&C?AE2b@a4egF>?Am_C)Gs)G2xHfR&21fFe97ehm)L}>G{`YSr z<|R)1@NRB|BEZXCoV6aStjs-k;pSFSrm8zC$#o`q07(@7ruRRm)XoiShGs1XkN6N11If@$;jP4Y)k6*^pOE zrT?qUkFe~2BvUfhX=n%IwPd*qu=;kib<#uL^1I;iEzY15XPCsN8CF-nm7ah~+a!uI z{f2TUThVF5Soe_zXy^nT+KPnN`CC+J2AZim&H(J|ApCc!?o0E6yQq;^P@B+-?SI7o zua5vf-F+#<;yB#KkdL;Ss1>Vd%z>I`6H*b zo1QyF47K85i&tKBL+H+-$cfpF=OEe3P*u8N!QC-vdarH8el9kX@_;Aks#}sO{n#Vf zZWK||&}u%QRqU^P=9Km}IwR`}L27xfo9S}x25Pd6onEhTlT?OXK<@6GUcqcP$if!? zt)iC31laqhmb|c&&jknXOUAVZjWX@zoA*VwuD3ZAQw4C<3zX#N%5Puw*T|;fzRE@o z!lor4w=hx$pnu1HA}J&j6Q{(>H}EnrJg(8!K3F#{l&Qv!S*|Mh?0wpjnmn zs^WJisi3VZC$**&&@O6*or?58d?an{o9!uWaTPEyfMvB;vTCi|z}|pkYi-G20Y?ZQRR| zAwd^kaX+s&%4x9u32hRA9?OycKHHQ1+FkVj|DHkDHk49~QW(vU7Yq;!{7PjJH@!)% zNExd5unOb5=Wu}8Ya;#NIOQa;UlhBFEGPwv>oMqJ$34!LzA(BxTsq=f*>;3XLtU{|^U{p~e8 zjz^xVYJ&lXylA1>U5ffN^H#hol_ni#8811pV2Qsr=MxuwB~PbO{v`ANsqD(*lH9g- z<&>71nUw?5X|gg+GbfztST-rvY0^Y7Da-@}=h@22a-xoz1A>)D-h@)Y~W{B#IIKL^-tmOkZEs9?kZ~dKHm#7`+Dzujl zAQ>IcncEIA^_YWOzFGPSM5blunL3rd5=l=Mn>lqgo zCvtxGyI}@u_G_=ba++9qp*f(6>G2)7N*?Q_3SHA&}Av3yqs;F%CGM2ez z{A{(OF<#61MRQjFANXP#v0_PBjSGXsIVMpxL+i0gT(R=bf5z6^TjWBhPL&W%9PVUc z;QQYjW1?#tQ`mYQpCo}8?gWkhSl3CvPQIon*k9A}Z@cdryk>$O!L6Py2e`~;oxMkp z{+3366Fw*VSu2|*D`9ucq=4lOF?FBx%9cUt^~XN&^Q{|W)H8lO zP4^qtz?POnSh;dZeytmBVRAm{qH!|M*puK0@#uhvPCA_iGrBxSqsqY zw`U|eOp+7vv1z|w9;QBU?mOagx*XvG0AKvxWw`YQqC50)&OJt?bbq!Ht8b_cZary9 z6AZmvx!DY}_sNstOM*{3?&6*9)!sV1eMi=oD~K0288oq?=_3G;xQyk=`8~LyphG@i zOK%g1Gm{32IOJDDWw1!A9;`eD<)`j4Dcac+_*AbDn@_tv9?Z|zGWY+c}`~aAEU~xz%yL% z0StgW@i=!j0B}OQ7m%#@+WPEiZHpBGWz`uviKRc;v@c&Ni8m!3w`R>x zU)WFAG4Ru>m^0{FD#UG8CBlsBgGO5)|Qsf11KDD z>zt;0{4$%e-UH~fXPB;NA=v*_sWX{b$6LB(HA7FEKMHI8dIBaE$p?OkJc{j2Qtb0u zLuM*3km?O+oIc{dN(ACWG$II!^`>YEW`}&_1Kgih*DC~oApYmqxsx?VDjLq2;IsZ7 z&JT_OE>71}Uy4OrFvpZ=cuAq`ar5Uzh-)$IbOyxWV4P<&yB2L ztGJP#t1%eK0MEAVCXYrWx0t6GX|<=_x$wBX>cuMos}#LS?|ti#$;!l(q?(!Njhrs& zx14!jDroBjy2wj*q9X?%ZNSNBaPx68#ng_}RFFUAyt_Jgn4?5JKcJ$Q+0qyFnqo?n}6uMRi-tRyP+uA^phz)z< znchwqoBb=P#xyQ$Yd+&hI(NqJ#&15}EWIo?;Yupckn?2VKrS{+?bK``Ej<+Dm9)_1 zG2bo>?`%RFFdnhFKJx0pp-s4wq#SP9+@YilR#Rbd`gGv}#Dmb*VM#)2BxT?`x^%-d zQC)r)(azO0yjmA8?442mA!jaxh%?ByC`)9IQD1$UTH)hx{f9>(7erNld4>xtVO!zO z5$K=(T&i4k!B9-NSXx>1v6NaQ^)<&6dy>w@xW%U)V@?1PmZD^KC+E!-LJp|{6snO+b`83wUgkQd z$005ADbE*GgxE5@YnCJrj_&Dcc0 z*0&j!5J#ZFJB5Yo{?7hhL;&9Fh>h;cSEE74peJg_&*kWcG;7TFKF^%BYGR*s*j>dukbx^*i6V|k}F?Zboi1Dlnvmj>O;8ECpkSKiQ} zMMJt+93MUav5n#u`6jam)0+-ndc@)xYxNEf_Uuj2nq=%;49(S=?L?*^LsYlheg1%h z4%CzLVEhZsNkJIAf!LLjz?S5KnF7D}vnk99TVm_20C8X{)}0xy^1?*y5l>?c@ibcAucI)w%WcAz^-|a^Q{au>@8*V3QZ)qY>&F!M z&+b7TgVsON$!;(4Q2yhOKh_oRk``zW==)DdqIwBq4w+P3rvmy@#aG|@Wj^`&;>XAR z&6bDERosU*xHSkZ9O%34>}*F^@aygE&m4-jZ)`})e_0`)4bYfzY}q%24|@{Mq?u4z ztyJRfF0?&Mups-dO^^V7EWCAgZsNRAPD7;~dCP%6j0uGDP9 zzNH+1a8MAE>#7W-f;}5b>Xh|8Kw}r%mOgJIDU@ zVd1WQ&+VamW9gUmy&I$MIZFoRoDsIpLx1|_OA-N9O%2Zew!j4` zK?G#nB%ts4FDB?UzyvXsYhSe>vIb)tBaihK+Xc;$51{NhcjI<*?-v+p;KwNgF<3}$^1xW2U3VpLSK+&RTmDQ5nR$Z#z8Xb~J^zlL~H^)wUhle6%q>jT_ zvOVzL<{u;FX~E6PP}YMpQ;gWi!2itpx)qxEF5Be=__j(HQ2x0#%ZQaI#niwy7=Rx< zP`c|vicB`Na%-7!V0r_l8eNX`&RPLRZ`l1J_oK|}|AVxR+h46|q_&L-B`ay3Ao!Vl zOnLy1Zq1vNTkVwi@Zz@EX(4a!9s=fUZs48qc5*`irO~gG^L7EjNmsqCgwXo9IzPs}@tzGhbu|c}KheRhyX+aQ$;S;}aowa&g2O*;cJIvH<`9MqM6Nt^ zqEca0-~x_lzX8j?x!r)3T|wr_KjZOSQmCp#mq7iiRTRz0+PLPq8wvJW_SVyH$V&KL zF?h!7-NJ@t7x}Gk1(&-qcPc7SbsDCI5)w=hqpyEW!QOBk|A__$qpC%1NL~%HzUHX? z3|J9ls(>bWW}PQO{KNIP5PLLVCvZKAH+^9RsqDB^W5m?Ug3J_-QE$a9iiB4}J`}3@ z7a_VWi(UBn{54UEYLFA9#DR8X`sM4fa({)nPwt4#zBQvc9Xkz(ng-5B_^9Tk=1Q8rC&o6e1QoBoKQvcv#M9lyI%~>L z6U6tWnWlGWV$8}S8(RH38b0t`5=-iED7ENcXOHUFA;YwPM`IthO@V;a*)5(A=RV$l zu-PWTE3E6!Emw8yQWXa;D)Wz}VkgZmue@zBS+aV~*@=FkNeD>PexNOb+Zxmq+!U(a zdhuWuUUgODlpk&FW|6}j6P2JF+2l86nuWl=L%d|J^-Z&BQ%9Mnq3k`u2E~@3%o;lf zHlk)oP_AoT#>w6r;vBrzuLG%pPwaqNwjtg!haFOeOiGFD>986mqa}H)(bLJv40_(n zx^UT%EbPh!T+yD1p8tkKkyUTeXmE=#yexSqF7?zvyLoT=nJ2D**o!W3qQwWt>DB8j zg@F2$+A&{I=eS;X-qC%Hj_Yz-K4+OA9ql2ogwIWP7D6cuvB%(<) zj_aRUyH+EU^ZE)dnD}VA%}5gpW$pQ+;0cRZZ`+nrb8Ssok~@hrjkTI7eK%Y|d~3u^ zLdWM=G*{ixaHkx_$I)C2=tgD4fkxcmRHN7$pJa+*)MsWaC&kah&r0y+VjAABqlI?+ zUmgtdG||zK&!4%=0OzO2FHx^rhWn4nnYVcClaAkAU*K_Wv)-bfbX+q2H|slnIefBwu( z2suxI4Rh(O20wP@j1)pl?QY{l`E*ru-td=}lq&@0a8U3gvn`5%Ay@&u(`}4lAvf4h zHH{>$N$*02XhPlNqY`+$g0i-3BC6N|NwuH_VOYw5PSjie`vK>rQUrll!t7`mGWu+S z6}j^K_h$`-)N3e)bcjfOzOblnWTjg4*GkVN%k=*Zuqps;tdrf}L@*xcQ1JOIULqdE z8Y|g_SFVUaC&n6ifnS~kZ+K#dhgB_o_02tQ%UGOnWA3-jc{B4`U>Hwq?g%khqhkA6 zP?F-K(mwk6k&e@E`a#8zkt!m@PY9ODsqvj3-!3H$fuk>py38r*1`kIo0{3oS=Nr-_ zEG*wAN@M$vzEh$F&z>LYG7eEMX%b+IEL_SWGj6fUK^1nHrl7WL<{6F)5cIHW!o05$ z&UBccN18PjvawkMY2*yYOj@pM>rm>DVAep4h)?t{DD>F%EBFYuxAGr8++aR6xP5*& z06uVGQ}}K8;#?psl(z~N0AGa(Iv{0iRkYH%7aXULsQ-4wK$Uz4vT9}G7jHunS+<3+#$jL(@&P0S=+w zSV86E=NIR43f$`CYHMp<`CaA7`UvTr(6qa!pW5^jys8CWb+AgzQ$%=S`H*Tu3#dPeTI^AGR^8 zzh~d{Gs@nmqz)3t%Z`QY2UNmMVt9^5zswu4N%xDM*3bQ*+h*j{ zft|EYl|kvjB@ntI5H=ZOM}iA3c|!d8tQb7MUg7>y&#-@0uZP?}O4B3Xny@#?MKY=Ygge*OC8y8iftkW!@%hVoqRX^Wu-bx0JLcr&f16KgQ<42%}$-lea{0B?Md13$n literal 0 HcmV?d00001 diff --git a/windows/deploy/images/sccm-install-os.PNG b/windows/deploy/images/sccm-install-os.PNG new file mode 100644 index 0000000000000000000000000000000000000000..53b314b1329605dcd805421f01f933d1ca48dd66 GIT binary patch literal 72877 zcmeFZXIPWX*Dq>EMMMxmr3nZ~S5SIDrT5;ONUsqHEg_(y^deFsU3v%UHRKVHDnV+5 z1dt{rkWfMkBy21^@B80-U+3HTaL)DS3W58+Co`+f%v!&-hH!07C92D}FP}Pfib_RU zUiZ|gv$Lm8opHT*;rNa}>Xy;*uhU+-N>5LfBbkq{?` zO}tK>y4wEh=X4ja(Du}+qdXP)C;EPttLYTam_{4x>?CuCF1SjKd-;iL#DFG3o%H`pU`0Tj-OXUU+_I%up1e$A1*#DwA;P zCfg#!FW_zN4_1U(?YduiOJA@31R_<|@1DI}N%atrn?M$EhS(_@YzSwCcsBw;>_A&!4l8qEI@nuKed&rIkwz%d+dI{36L4Lq|G}Pctet z{v9Hc@U_z+=^J^eG(KciYbVlXUFO2|(=arC0%fTRCnp`5YPPly*%%5 z+9wXZ`mp+Y3_K)Wq2f%~H#IraObGZW6Hvg{q-&#8*+ZvMf;y|LW$6TY3augb)YlJJ3r&9L>-L6)KDrDsnsA2iv(*)J(-_FyGBD`nN~)RhZuvVMejEz`_YbXf!d>*474IwNKH`<1tkT#8 z2PVZ)$EwOkTv>u#35dFCJI>2TNPvsjRZb`w85yzWnva=zL+Y2^3K#@ti8s~Hb=Vud z6LJp#1J-z*^D#R6MmJdKEKmTaBytT zfOd-7RL?C>${N4k$AB&B)OrdXOjHUl)>;;1GA5y_zqhvZZ5_tR9=>HszEzRri(G|H zMS4M85O8l|-J}CVqE41SI~^%36i{ou*5_Z!J{+lmzVc0R+UxI{_|kGJr71>ttK=Sk zV}sRHdQ}HU3yE!89W50{>IozPE;u2os&v@~D4LOP25gkyqeE`+TILJ?KJ=7*olmm&bgAwcX1I;snq7ZBI(LA%Kst0Yoi#?tgPZIuVmR~g z%wt&dzN$4=`eDIZDj4uv-z5TzT4TXfNd4NB-4ht&#O6q)wMX3!wsa0!3Pq((Ea9au zK$vi%e^vQWi2b$G`QZ2;pKY~izaGSsBx9fSw)tBGDWeq>6fXPYIvbHS@aqDfExZ1) zo8cLAU6|qF6y3y_#=KLq+?~?Ls$GK1a_b6WIduKalK0Igs_XR%7Y&~*dA&2 zHN?u@b)X+-5|o9u8rRscuER)<3HUD<5e_f-x29$=>|YtiV*0|9UW9r`Q0}?cesxnx zbxy|m)mC5`Cxn@ltZX4r*9!r4gVX+3cEmAmf4O~ZHC4wc9`)suto(g1PtQLq3;V3l zfj3KV!gg=Pt)Q6C$J|OdEIx3giB;#zyQs*LZfwWNKdyGb6za4OcTzj3nNf^v__a=6 z@*ka#tdRYb!1d`3Wo(&NPV}f-4ZJS>wF}x2x3W#xfv|pCmGD|3QF9NWtLcX`+C4gb zq+QLQ;zO|ucfpx&cLq&V4g;tux%$==Ar^bI-~K!YKAXyOM@@@c05|CTfL2d$<%ql!U`55CX6K%M==>&w=# zD0{lGn+k*B-FfPDfNQz~$DEC4uKGS?X^)HY%#Vu6h3O=K=k2&6`p)k@=-xaS7Lf3T zDfQH0LZlT{AW_aJ_kmwVOS|RL&0ux(MVh!$V@@OzT)*I|d?w7MG%0u`@6{9s$Bck< zL2ld%4}j;4Zll*bY1Ic_V2ySN<&oE(jA4yMInvPLFc-&hzVfxvx)@2^!l5lE$vIWF zMQ)(F#tciWTZ1yiKpQ+zHiOf1F6qwga3Q?imIT$vFJJH1i?ERHgmt?lh-FxwxzWgU zv4s0OCPeXghhUEGx|VJ-la0xLo&AA2UubIrbN)7)b!C~;h zzQXr=Q^h+_)>l<(jQ0c!h`DUXvoEI8ChUek zvb-*C@wO$hC|leD>9!<{2fv1x0YQwvCe=G#eXZ7peTV8L6y==sJ(?hQSqs9IzP)(J zQX56xFgG6kbb8!OgF%+X!S$~xocgE7ZlaBujwMrV|3*JI)v*yUbp80HTHVOo7yrok z)IZDZaU;ShP0vDCk^v_F`hYa=3^B@oo1FUPz~&~d|J?_V@21h68B$9*>EhHWZi<{R z3Tf7>CtrAZy<-W}`LwKrddN-D+^(oX#&8-;Y^f9QJU-zG=*CF?7{eR}Zk zjl=f;>E!>HGT8`U*EVKOrlm`=F8w#`NxOP89c}FReXqe!Fqjt-qpPLG4Ir3*Ks6;N z3$*jjik0){BxSg#Gzw2Ou$C$#T*{o&1W6qV%^#cPJ3@m?RggS>D-I8cQqhHP3=)j0%_} z+c}TMiEr&g8bdhL1IDp`M`Qdun$Y3$4VI5M?Fc`F)wMm>xk6e`JlkdO;4EM6~ z)nD%Hz6q~r;WsZuG{^#G^Sv`%I!O}t?cftqY|j3f+y{|3jUCPs&47rK=EeOt3YdD= zU9_2C!`;AdT_^MW+1KYFcbhEhxw$L^wp76uFyzu#0{cEO{C^5NmeEXea@i|VNDeM@1|J(HB3#`VgA%Qimzr}QZY=A7@`-$T7PC(` z{}rKl`Y(+)&-^x&?prsdK1@lU5PsP8%LIbcUR4G!_n%1UpP>I~`acr*e@z0sUy;ZQ zr*1yJcJ9gV_XaoDVo2E89~2i~-}&<R2!yrULcRJ%R)tL%8wJ?>W8RAYR}MbWXY@T z#sm4q$|(x2{%4n_9k5oScy#7^6S!rwvx~?1Cgcm-?6dnPYW%Hg>hQ2sdqvhl^ZJ>{ z($afi4DQlE?}XOe@i=P1*)1#Q1OgH})4i@Uf4!K^*cH9i-KytTz3L4Vk}3>I#Y(y_ zi&AO$QZvFN!I005Q{#1a4&paCAoRlpOkG^v8~g9Qe5G*PL~+zsBUW+_*_x7skK7p< zTwFB~su;W<82%vX=CXWO;x_}e2!M1YqSMlAQ!m~^?x;3DsyAizHCx!$VMx-_yIY5LaHX zrcNPiDvY?*UxrcBaNLU1uTOKAG*+GyGa6TGPtC|+A+|@bM-&0( z%d%JWG|vd^4E1Q)*l>`3iXpOGD&R>&Lqn@WpYzJ^MOz;BYb{@Am4G27w_KaZ2fM>r z^R$q)^*qtJ`;(w9y%A8UnSj<&dq3zP(_v%au+UT{Zp2n;Sjc^!Hr>B7c?F0P(9$4O zOcDc#U)Fr}Ty>f)?t}d2g35Ke?xr0LMlNM^S$?d^21Cm5{6P!W#20cca9d3xGMTV} z4ODhoV6OQoOZ_be=w5^RZ34n$&pmPRG7l%is|Cc|H+&)+f6!Y->lN32ZGt2vev+zN z)9RS?rg(}U79f+t8wz}t@au>~n9pVRe>ENDn8j0}V61DbhF`93S| zz=RRlvMT%7pi(R0rBX*IZ`Z`i(m=h13N;yWs}{tRIl@{No>d|= zgL?KsJ^)&}Jt1mHKg6g-4nvX%(PwdLbr7Ii6#U_fJF~xRM7Ykz6Q{#7o1e90I4)kH zg1*2}(b_R$F_jsn20?mrfwWq-4i9NO#u3#pw4PQ>b*9jjbHlL9RY$L4ZtV>yD}Y0x z+W{^cBiSudS-s*QiwfALmXP3PceCqJCTUcakk`7Z2CTqJ)Q_%7#;VA|>Ojl_tHi!D zlT)wXdCoO12{B@51>7VD$xYydR} z@3TKeN{EQWmp9`iiC=^QpIBH}?A)FXHz7%$57-gqEygC!*jTs`4r42{X?;tJq5?NY zV~2B{s+YZBmX96MNHk#UPR%LQgIYwH-jOCOkl;F6UDB7=j|D;!0?BIw-=e7zDiRy$ zC4>w~WqWs~%>|+IY*fClPT; zHaj*A!gbz!$2&spa)FjajK&0h*)gjq=%}%HE3Oam*sET#WR7MW?$YK38bFn6cS(4- zohySJs2Jdj@qi~^wgJvoNO1-8Jef>f1CE0La~iWd-x!A;_3vAH13cQq>kob_svGR$ zsBm&|;Q>GfwpYC0p~zNV!O|7*QrJ{bK^XU%$;$pM=?$ErLC7!5?_OrE2U6zfcG!7} z>Op5zyK>!f6goyfd52zXM$3$|m&eV$M_qX;1B%ioVg<&qH7}fdM*B45#%Osw_v8P$ z%vsEy+gje`(_7a}RUhV(oG89vl7R)A_G+*T4j#OS{3K%-PU|=o>ve=&+J65EX%<mabU@?k^Ayw+7I8tsGVPU;1xZObzK~%OB1d8GicitLMIc znK<9bFtpPl*(=eI*1GlMNXH98U2Cu~sD<#qv8L*zFD#B5V!Rh&#pf`;_{n9$YH6&X zpor86>6m0EuPIsTxfS3nA2UGrQTo%GH4viJavNiig1^C-Cy7E2 z551PmWJw$fc{li+#@d?i<{FPCACA-~9CnsMGRqt1Op0CfzVPB$HsmOe7W}Dfl}S`q z@KPD$f4iOKsS>7FoR6%ekE(hogDWF_ZRT2&5Mp z-k_I#`~g9e~kw)>h={pyQ?b zsSun%YvDKZmX3zT8kQnrOoN&&gmf!h%!@g|mxLAQUEpM2t^gcdgD!7n8e|uvsP4`Z z8}%acFcO#vSek0_=KG~Dmt^z31|$ZCb6Qt3ea+CQg~46-Jz&IFx9r|Glc4?cnIESQ zx1a;H6YexHlK6lgxJ0Z|Y^PVS3m)y2E;5v)(h;;7tDt|avd1O&<^8}msg-TdjFJ}L zx`CizcQSE%Wg>8YR&K|I*27;&i!|xGBw}^ICNRyC->UxG+nOiD{@xTPMRKqvgXyf# z)Wy+5OOViJ2W1A#d%^d-YvNz@Vg7f&Cq37Tt*xeLlBGfQX|g4W+E$6i+hQ{u3(}g= zUcdrade_I;;qjfv?B%h2HJY$ja}K%LZ*?QHV}w*jJt7*ajmB>kyj$5xV=t+fVxbXZ z9)2coo*iq!j_&p%Ek%u7Zyf7drQi6R_DjTr6_H7MpXI?Fa&mG8v3p(v00$T`hCm?R zP9YOI+*mfoX1@<>Kb3{g9NUuu0R$`)ITlaG;z35L#+QXhme}K6#d`;ND3u;WI_He7 zDpx}ge-`lgOrIfc4v7m-)qhWQ%V4fcc%Jc1 zRUwa%_YA1Zs0t#@@l!3Tf%E=u?GX97`Okf#-E*IPH=#iz45* zb~tAxk#5AuGza>lnBGUTn_uRimDAvTt3>Ig1ZHCqG|K7e79hWUEC~5F(*V%p8C~1` z%-K49GUY~nSmfi@THg1Prni?8L%Sg1dtI_yas#kanu8!2-^=9$$3E>Bw^9V-q!z=}p%iDml9|i$AU-Gt2j8lbLHBt70E;)SZi%oSTv^kqe&dfm&>BJo zZJfDb1UX{T)bDUn^IG1w3P_iM9$1Zbcq;MfE+K>vZ+@;S&t?|v!i1_ODZQ>1WN1`iMgd_ByJWi$N8Ijy9ruX;O&8$}%?z0EQs2vYmwX}QSr_s8>#r35vV--QpWm(+>P>z5Fw=)p_Q-npjcdbq}a{l|@i| ztpxTGPO=KPD+99l%rjV3ig2wooNmd56;U8*-PYQd-mMSHK;HBX zaYjR>>MY^|wH(YPGKTmhM?DWa!=1ZZ)a!h@;wuV!25t5KInbKQow)YESCf|8t(Sqp zeSBM~V;i9avmkMTJvMK1jz|hurl?18V`T$p7HT+p-upCOAlWRYmxUCg=<~r`VFz7^ zBNZd_KsbNe{kZazI2I_eRp}z>JLpY zh?*BS!uN_Cl*^f* z)U5bHnXcSz^<8J`9pY-7s*4LB`~cSs+W5jSjGKg3jLXDDiPFTPh4nNvxvYv+@#VO5 zR(0EZhe`v0$kqV#xnBO-P_sV~R$Bhw82Dz@DLF~q#6uvj@zeJnu>$E-; z&(B4JYwp1r^{GJkbx|O@;F$FbYXJ1s^0?^pq@U|P28B>^aUaeoKqb&iB519%~ zA&;mE-t4-;^`LCuI*(jFDmuer0*X9JLkkO1S@VQ2HOzmb*)-w_)y#vv&Q2vD!M;ax z7D|vpc!Au0*$O{Q3H<_c14EpCp=b)5oS44;opL9KMF7Yee27v3`l(#Dh5SVhB;MNm z0S@j<&gvR@7{1cjE&NbI=W>Z*L=t~QLwEzBb`RUyl?<>U_!Bgw+nWWs; z-uxBd>t|BBEziKSC(Et(kGCy?eQr$Nm3=0L)Tb)7sXli@@SUai3CW2kBu{V% z^Wj!*CkJ{ypNLCn)S>9qB6#BexG5K3r}>;vwzlC{9^LL8D%6jx?>a8^?MRo7$kYjZ^D7xESvi{=H0>NXpf#e}xnx@%Lf(#`&q}KRrgB2=4Cy|4)$6edpQaZP$-W;NUzUs0eTR zbL|AQcy(-zZBY@Q-mqdt&Ns%uOHr&sLlM==^{ch6%%PI>C+Jeti6C!OE}+ahId{A) z0-2V4AeBZceHqSBEZZLwzxe!w%cZccFoBwvE@@cT7-lKSi^R*KN7FBhGR~i%F;gc! zGFL`_7x>YHiOjiN?U#E0QeCymFc|+Yh0D=@<+c=lvEnq1^;^y#ESF>@mCbeCtRMO7 z16byiN-*GuKoQWb-nzeR&Cj3cgPi_pMGp#Fg^#G$|q({^&)5 z`8a50yS`Cc%CD-fp1Z%bILz#ec>=Qp^Q8O#Oa{%oWf+PLIzRDdL!(-s=0-I3Zrqmi@xw z-G744tPQm;7a{Y_%5N*pA&;cLBy0vkB$wI?+_S0&4#eRI!Ljm30k`McZ&cU#~}QrVqn$4cL)HqjWusjs>-}`i#Bu4F|wG z<35=0V2Ndp7xFg<#2+U93!s=kb}rwA`5o7!MYGCUl7hK6Nuw2kiR5EjK}J^G$Jpyw|f6OybsZyQUCq1YIpPzXH;|18j8Cs)vKcV;2t9RbBi; z2j*<8APjL6Un(M$_bts3q5({U{~S=CaEE1J((2f!hMxeX19HG_Z(}X|l2_7K@zM*V z+I3c0o$ZRI<QJ>K_&Ts zExBzG#Gcx8L3-$H5gaZDujoCly-Ba1UfW&N%Vbaz3nWStKj&x-YZzrKF&)o|Tf`4( z2X7RlIXHq@f(|{lsXr?31(CN{d%u1q6m#?e5u~~mW*GRkLwdZ1;TR2gwUcjItU^en zoZ_F3u#TC^&6*s&bE6UB0m}Y4`?!Vj;v1N2j z=DFZ1A!27mQDONme(o8&+|YE!{S0K|CKj}$eJ?QMcz8Z@u2l<%oi`^{gAV!qrI&O@s~yWoF7Dfd^X|r<9?7MRnCX? z`T#Jj#^OD94lQe1W2idiR!iW)OnQRNl@9;{` z$=&?XNCP;UT=&g#oKZlVMCHMXi%N9qpzzAraGBPXE#aOP3u??p9c>PToCJ9#O`5I^D|vvo^VO-*EM z5cNh4z@6XJ=6GWR8fjJF;SiL1_4{??tIDo0c}xNi4^Ix@35DZm3e`imu`?;6UMw2v z4`BJ~nR0sh{X6!=JIPryqOSRp$r7k`+bLAX@|NT5*SCaCbo_E{z0AjC^TlZ2{BK8) zIY7z-;3d*Qt?!cTVZg-K{Tk4h+p6lSc}>I%E6dCIIV+NzWIIfgb@Cy;kiwU!UiCA~ zlKZ`-QBpxhs*JwFYDymYLL)aceriXCb*UDEW*^s2QV;_86x?=){=DTd7&I9m$U1gdkU~& zt&BZxg}V&jYfB4tPPI%uRDF!#S~Mqkt9lLichYWQEHVwS@A*n?-p#c1P>k&)uRFKN za_P9a9LdV+U7+;<@LO2!j)qdM>Ef3fPnVO%5u=XLuVyR4uted;OeU@Mrg1{Qi;%7z zD}2uxOn4ivKmProES6r>1m8&tygtsSeledraOdm*mIwbTNW(%+fO)DSG_VZBNWyrF zSsW=11yNwF--v8H&5rJUM_|MSDUkSogTLJ`zWkm%R^(0C=+~tInS)Xf`1+8VP?4m& zy7&1o@tb8)%HO5tQ?R9_<|&UHPOnj3&H2{tCmC?}Ra-VKPZTS4pQo+4Rm_z)H8wQ# zcGuG%&qPVXBtzM4c1A)bbrP)a2Rn9qf&XqS;23_PeYC`&sFmc!?vWIH|s+#$3 zYPD)*OH-blxpj{-{X02-K^f(Pe1ZAa*t6k&%B~5-AA$!jJdyjEA2|=ISE;~y*D6&s zUM`di9Rw0alL?X7udgTGv1<7SZEwn;oot^r)*G=_y6jpq0N>M)Qa*(ExNJ1w$f$%L zy)M-oWtX5k+Av8yge<@@mF3GH)IG?7WG~B4 z7S5bLB#MtkJ|9#pY=?Iy}41t7zT2dlv>M@Z2``{ua^$jvSaIq3N zI1UR8Z>wh1r;-1?XOw?PgD7*kFghR7Y@k^8FF+4A#1ijfgVwv!{ci}M85U|MaBQor`a<9?7Y3&4o$tqS0LGia3csf(8yWR_yR40JA_szKVMU7+vzlcbx z{ns=#3hK9dpn%H?U6*>GVd3>*5o*~Sm6zylq!woEw)N@$d|NAM8phBd@D~1cL8)P_ zdr$vzOjyAqvz?)z%uncOZpiV8u6~R@l#Wt>lEx-$oY0o^8;&W>&n~%*Hw8zisTP%$ zB{nrl#>#b2v3`^=D#Y?u-zZ1ayRNaC=uw-TNaYZww?bg6V2VRLo zH#&t6R>aa1wF1cY6RfZbTcwG2mntj+iMw>u^=CoEg%-`b(n2lAf%sOCl^Re$sxYSg7Kw$l43N#Q!0f+SBn?hZYDf$|$q;(cy3rvY zTdGRHe@*wDQn6~?@`buza-j2obi7%`M{^#GZm8KB9=dH=7A&Vi6wDFR1IPI|;#{g) zQFgvgqT1yC(e5WOb9w8oRq#sfn484nm8D|7Y$?PGdgv-2V!i3A`B4l)7$O2VWZr@q z;e@2`vTr+Nde@<*FZ^-n%zvSU;ePu1`mDre*@n`1$p;S}bZ*}cQZOfHdH1fpKa&2* zIcJ(MZ4Ul8;G; zR0wTjzb7FOPpdb?!zK|;8$ZmW@?&9MKQf^PB&e0w&|#~ptU9x(E0mZ?$wLSH$F%DO zpeQxry`svHrRjxw*b|Qy+(k7A=uCZTn#x8`l?GFve-v-*qK$Ij*SrsVbTXayMj;3v zl49?G(8r%YxkmYr4$sryu~jL4qdm@-xmYLkB-B2ZTfnDyVWD`RnCCkxk;4mn@yHPn~iOL z6d!i5)zo*O6?2e<8r$|qVA&R0anGMckZI+t1V09eO~QnhHkjc{u9zbu`Xbzd=Y+*nf(_mcE#w}FL}x?cvL7AXEJORu%TdMVSOgD ze5842!X+B}hFPgrfmO{aQg5gCmmuSEaXf7I9-K3j1Ho5L}fglGx**rBlSz)+f zAQyA^bY*EJYX|A>?1InTi4jb~xUZ}{Z-RVqUs+w5^6 z!KutvKbE#uwTu@4ylpN`j4$O8p%}nkzRq3b2YK^pdiB_qcX4+*#gShm*xPR{HzxU9 zfW`(wmKp*is_eZ!5{KF(?pi1XJ($7qpj4(L4a#-{W~}S^tn}a5jw7Uf{>vYbY-H~7wwQ1Crr7A<9^Y|}c&f>qvc6i(e4TT)Dt)Wv7$u$zscuz7d5tY= z5kD7wR_>(TxTSAmlJ~|y=ABQqU&#RkqENO#J;=VaHZt6wDKkp?Tm}i={Z!~%UC21o zB-~-J(yi^e`~|nE@%)Ip%f}2kn}a%Im+*He<#{s{4G%1UfbR}(W3q6=D;w`z$ap$yt$UR7=|6k(o`{50w;H907b4Lx5g?)x!oH=Rd0W- zc)I~uiAd60#J{HBfWfwRu1ML?dZ^eq<=<8mLiaMrPq%KdP0(cEI6H_9+Y;NM6++k4 z2X}Xq)&j!oWQ?phE@JS^%TBQAvwG0~S}fm%?@+c`&A?shKZJTGlF_I?rJK zn1Y(+;n;B0n=tGQ7Fl;;g=TlO?$WLIWU2#6&x`v-ePM59xAF@dz9sPJ71flcHJRLl z$X+m8w&nr4xa9o&X`eI$?o4^9EJ}YmahrYIf*+HfZr^myQV0YBeR^5X^UB?BCMhfp zmXuUn$H>TN(w%D3(RfwOPYQ1a)=o_^Evzel^;2l+#>T|lH4lNg)@;a210g%vGbN#5 zzMkhMq%YpB=lu&6T4b|?FBjWbwQ>o@f0)3pY1D&%*8W(r#Nbfk)}DgXQi$ zs@*lUe&m|2(>BTWevQ#YXj{J6%+%D)w1MO^%7=g+Xhy`U9U;4^5PZ6bx83gq;DfTh7sXRDWwc-cuL(O!*axhqpxZD`3k_K!KZ8fPq(dBm0$BNOP*+|)JokfTMUwcHCOS7>*Jx5(=YH*%{c2W@Ee^kH4mB7?av z#lp6i5f9D%^;=Zz^27ty6Pl2qg(Nys;!NT8%JJ#<-M%|SuJ0T2SvJ9jCbFAm-5CC7Vr|A zw^TI+YrwnmrWIZTL2S_B9P2>~s^Pi-250H9OoceE^n%|tq~`S95mrmq`=IbKFQ$5N z0-kPGDPp5r94blRaG1H{vlZ=kgjiN*zTG3 zl!j)o1~~oX_#~s9)6Se9Rcl{nu*npJ-}n<}9_Io`{Nd|5w@HPA-M89z@f8h)QM*?5 zR$5a}qWjDA^`@1#7{bCT3@Xgr+^A|H@@c+Y+;<7%4@$&fls~uOgU@-|HfEZE#nW;* z$`a*P(79*^;uR}j`$Bn)$lZ+C9*{*zS|+Z?tG=YdX$@E<3XK$4{Nx#)bhS}X!jBxO z8bu&|=47|=Oe?vnSS)lppeIs_XbcT^4!RW;hT_C&4>>ahx(={UPjBzwqAnb#*-Qh8 zc_MK4*hktI1ZD&HiBl-tlFF$`tEwxBVQQw7&zFdikXXH`c;T${fLDZxs&=2U>ya6y z8i7H!Z$i{}xUNsTMG!Jd%MhsXeTe9XU2u@B)-McOBJLM5C2wwZT@XG^Eqiz$x@yC! z*9PspHAXU6&`HWWtn6aZ1AuU%0da{p6k^dRLl^b-QSaCqdY8|WE&`6$V=axg@u+X0 z$s|jmD(TTX{Y^0{gh!;Z;5WZ?GrwcUJ{!-il~uLrDOqf5Amd1zn4qr%(ibkXgvS|{ z8mpn}*0S5Ob&JbfY{O+#si^w-dlRn~)8(b;GB%s*nVT!_pZ}t-ZLI!QUCDvEe)K8l zm*YTm@w6$zoln4|>iyH#?Z!lrQCpyJvKiDy#9*s+u`;ZpQlSOOIm2 zVDP$_RWY*9AHwV3f6Pdv$2=n4{aWhw>Evq0$KHt zTwL`c5}LZ)GoB2zO2$`36a&ybYX$ZI-%R3}cK?#H&-VA(%dO-j9Fq4X1xw6tsNt~? zt?9g8Xuk}ww};jPS`>V^YP71gB`LG-zm~GYaJ(#95oOk-=_(Xq%JZ~wZC~ZVN10kf z&94TF)sH7I!wh`>y&4fiF9gC0d$R)fO&XOLm}0}!#@}!UYFSr0WrQEt$_|<>7VXw; z`Pe?{d9p&{zfOXS0vQwaM~XfDnOBN?NAj-vl4k%0qT03y;mdP2RxOED#brXLy$^6~ zD>#(Nw2xMdh~xNyGvl!9Uj7p5)E_s}`?nj3vtJ&{BgAJOz7cF*6@GMuwAm+A0Kvmy z=dEii$=V+kFf~_SW*w(CWq4Wn7jAD9=@sbOxr<@!5C%=$Ihs?51|vsD42IEgI>W`J@rb~boFHEP%f<$jcNy>EY3)j zHrP~#(mS;&(G+SSm6tz1GzG}2dA<+6Ohsi7-#se!P}dEbvqHl_Qy-GQ_?_KdjU)42 zfFJ!xkN+1zuOThMHMjk1Q`4V}p@7B_5h^RxEmazrWg8WqJXUSR&CXX{cm9A*KRI^= zjS46o@JaEK4Lt95aiHD>qC^R+T%2ZMzJr~FFVMovE?EHx(Ajq@{TExQ25G_c)?HY!HI_2fo$OY)HhXgBG& zy;?Ga_4PrW>*fK|jbr$oRK7nOd^WNnuz#MCf0039^Wbj%TKtw5wGJNdo#c~NFNhT) z2C)4~DR*lhCwb&}XE{#GGo`63vd?A@aqzOsxDi3cMV0PxobAJmw^QytdKAogc!yd1 znri4%cAhsp{DryYnn~W|`?r`ApJcIx(|O*{xQdIldrn8OqcBYV=s3YZr*N<%DbZ%9 zalO8ij$fIx#~5b<5k%ynWf!mH`pv8zu#7jr}Cr{lZ)7mjQ1hRiM0@#M89O{;COC6d2WHH4C_!m2@>53{XiQkWX} zw(63s)|3iE8Z-n9cRyT^ZE0PK!xm7Nrz_M4DByD3R93o#n$p~x4rnr~W2qH87T|_P z35r2`nRv*KfNV)o$?K76O5Yfzj)m{O0;%)ftD7SJ^W#B!x|Y*G_`Gk^eYOu7d*jqg zZLy~D+366RKZt|^X6-TnS=Ryc3Huwd@VR9-)bgK5J;@`ii3uBX9taM!vPDccVy(BE zMZZ7pIL@lRn~C_F_EVOps-CAF6MhKoP2kbjvEKIc-37&CQk%20buFk{fmZhgENkAM zLAhG9#pbnOJXcnqWx3RWX}>s)QvwKt?rSEER}XKZq*T+>r<5B@Va=J|I+1C5W7s!ro5EBfDQ zPT}H{>@zJ54IU?>dYsgI=rnYfS3n>uBWKclN=_-Z@_sc>OsBn&W?B@RTpf zE$iKndyk^b!w&~F^Mjr0opQ=E3|Cg2^LLP3&Mv@@buo(6YiD4-pt|)fduKP7{QP|T zh)A{k#6B_YZy6U=!?YG{ias_qnHCq78)BuJn~F^AHGqy;=P6;|OzAh$WY`4**VH;V zeHsV0FADoqlh;BWF%4SU&-CLgekWbK9ghpnwESr(e%K1r>ah2-XQZUqNBZ$>6F}8D zrtMk_I^_mytF&zR+}T-O`k!}?;RS81LYqQ^RI{1M1iGj>G_R!~a>24!%D4_~QirBv zW?pk1f7)wmJd|3PSDWFK`~Lm&i0J6NnvpBKyuA5DqNKBHaRISO(%GHf37?&xB-*SL z5N;IfXI3KDv7dHpL006@G1gB=TR42Q(Kf8ne>)7DVPXHRiqg(x?-@J7}|} zt2(KqkdHNfpIR7y-VDbrnCk1xI=47>pAd7E-v0@;nvq?4iv?e8&7&91k4DCH285^O z%iO$2zUddun}ffanWYvs#@WI15+^1k3yYE!TBal(0_uZkb{8hVfd4BY=7d6}4sJdg z7@AcA5}9XY9#Xt}|NSxMLce^q)`FU{-h8oaxl*Suy>x{+x11BEl>9>j73ZxxH5eE* zfd)6g-IEA{$FbtEEKKQfiu6GG?Ie0q!roZua~Y|rY1GTNbkKSv$CEhwoDeQra`^YCtj4_;dSV23H|2Xq7U z!itIcVni0n*`A;*7@K>?+V{Hcd6@Otw!hEz5fAyu!qukq7C>3(epNJg$IJx|XZ;r&QZ>j| zy_FXg4v{wx$@kqAmp?3|-N*qbjo#m>8seR(v6d1r{q&kE@P2T$bfl&UfVfrDE z_tA?+tv#m59(Xsjy+A#s496_vpZz5_+{z@gCd}`3R$f>FDV20FAyTXuo;~WLq227t^+Mk6YPx zcU%4e_0i*_^ilJwPAS!Jw=%@T!YBglpZ;_kU&Kt@ z`KJ{E)_0E$;rICOhEGl{anNwi0+cM+1*>yh!tH2eC(5{9#GA#ds7CaSUfb-AFy$30 z$s2lqo6+B0$540iV@BUfVNFAlYQ&q{yg0c>dJ4-dK0H4zip+&~;%! zbY;mke@yiFMEx3b|Hya`w#oEHx`i$(J4X&DHl;35#y{4-J%X9dHhGhZs;|*Aa}j$a zTBqw)mQek&I!Y`&%7q4ajmB!8W}|81_P-=>{nx^8oyf8=GNPaIP$kl@eyP6vvp3lI zlhgaY>0uos@A0I^kt~wWBYn20S?BKFC#5tL;*9r)sj}De??Zmf;dC zdHffEQCJxDwk0^__}~(~z3M-1G(cOP&=X@<2L3(9rO2+@5i6rd9z8PcyA(!1q1egWI&s@p%UU#ZdI zgPFjm`V$g9JT(&q7QETh=bSGSa2xsVNTmfNaL!7Yc9@m58(1-Yr@eZjZOyHdDlK^o zyQQw~N+U~4b#>$lmT^R&pLRC>o+NM54xTdWN3eB5%KIMgn93S8j=J5dW=dgHs<}N< zro!F?|9pNhm{(TOB3-E{2W~b=U)FqZ?*<*6Cpy$|xN{Bk?1(KQT1CHJf=@`u!33B^ z3{gy4S1i^+g<)AXT>sU9{l7Zcpxp?s3-jIn#N?}OBS*Qga6?xeBwa@JzbJdls3^NO zZ1^@1fm?BiK}0}@kQhQzT1n}YngOJ{yOkV5x>LGCx{;2dQ()-s96H|1JD%tHzV-ch zzqMHN1J)X@YoB|cwU6UCQSVKaOEPw69Dgtqm0xqv4qN0}W<@N~VUA2;87{yb<^eTnAZ$rN)?Z8cpjWZIa zUGnox~ zT9wHtM~726HDh-3`4_^Y*?l>A0NN%>{CF$_jZ#nHwI-9kv?>nbI$69b-}F8+7zs8G zG9LC~kBUhUu}6>R8#a`sheY79&=|?mFu=+}o|1D*5w3nxQfz~0A|V4^6ZA{Z6aE5& zKK2TpjZ2!LS-Lmq|KN{5gMS+h4j+Jc1b3X$R92nHxtQ?pPT3O7IujlC@Zfz$kU<8-j%;_=bQ+^-E8!oGDw#Ti1COU0 zDd6KcPh>t17pG0vVdv-O>K(4RxIP_@k^WHOF3BuH9+0+`&z)}oDw%-rr;6}C`>UD) z+FQZ9e{qnXJ^SOQ5y-kg3|_n%v)!X^!Z;y;+5<+$TG%WmYfNm{**p7I5yi2~vTCq;38USnK}v7d`yZy?cKIS0HlA5VATTCjIce zs!4T5di;E#I8#tJA=||b{7#6hlGAZ}WcddFhrJxE9wmkn&v1#l3aYLeSCll>N`So> zW9U(b%|sVgvpLEMy0IY7z}z)VDNDNLGy)|)fIrC1`>@BySj}&m)0wTDAKf!;_3byZ z==aabq50}>9`ctz{t)#>$m)TZv}^a$Q^?})YZ$y25S^W6aZdbG#4@`91+m{|iSLI~ z+nHL%&csya&BWxvV)I=6V5(xKxixg4GpQN&=J~cE` z+h3I#)cO)roH3VJ8l`g^w6u0q#E9@>3XT4aV+?!y@-G@UpfvWJ7&I9mE0r#;Xej5Q z{o4M_t^gKi@90Qd2#fEzX=Nu340$Tq&R6jxc;*b#Qnwadc;yE}*af+{8kIf6igopc zo#7a&*3Gi9vC$;J)bsMIQovA6QPcaAiZU`!$Hz($$G882Cks3N;$Z)N_W%SDK_1xw zqdk*#_yOaVQt1~~Qs@$70sIupFzU<93APhXW!V>cEER}F24#bI+Cvn@tTI!L*iRC* zp8!zc-_;EG&07D93<(l#w5(@KwKu|I0 z7mIetpM9VVyQ&$O`+gJ1=l;v^$E41FlXrvL7cdh{e8zDn9fgAD7Zv&b>y~v{{$k%h zeE0`*8AMYB8oJ-(di;D|SY z-!?>DV7xRrfS7fCq*EG3!*cW(aD=%jHpDEUe{YCax(t7ReS3RI1$Q8$2^rgr!glcP zA6EIy5t}3ZpHIRt2RwWZ2WKB{sI2m#yaWcUCqRySxtGQf5;Guvas0J!EqTQb9?0W0S5_WGZ{d4SYF)O zxwei2PVEvocK|RducZD#SnBQkrSIYWB`z#DHHpoLGTT9hCnYF5u8z?p*MhAC6Sxs2 zb|+!oREr7trPs>7X-rnseb{5IUah|U!$R#ZeiyLwb^n$yc-ZdKuC#~axh+7ToKs~@ z&0gN8>ZoL0CW4wvWi>A{x4XK-VV%V6>Ni3>E{Zu)y!ZGYQ?tbA{?-!s@LuYp)M`_h zrnRCoc}h^uShfX#`^ofAvF%>5C03fUjZ#lg-w-vt_^2akWucknd}DPChY;GoM9&G3 zE2ae6{m=UQwAbzou9)9Qqc~X0vr2qS&BV#s`Iaf5OPu?8#1nIt zh#JnneF^Y+`=3>L7kd-m(7)bp?oi?=r|Rd-MIs135<=KxkvDTqxQ-rZMu3JSMm-NXsUt9w%MxKI37)s(b_XY zYsoliV%7G>!8Q%*68~~i4NJDK|D0feZvK~qz+*(forgdR>li$SYLC0=K<(^dG01Te zpqw-}7V+z;O&^d2dR+4@?N#{;wfpiz3PYwel?R{fay^`JPBH+U#h7sd_v^kHue?9#&~XlHX~eV7t~2!hS)L6je^B*xa?1n@?#}xCFncV5;?)U>POmTXmGBom+?@1j_`=P8@kH$pwg{oB(c?uZ3Ec%KWop%Xd3%7583 zeDKp~J-?thoxZrH^>*?B@!sEN4r_V!HahXSl*T5pV;7sAMo?*tUVyk}W$?Ds_~C1$ zx}SZkF7oPxgJ(N;7a%N>qV4o%k6UhVr5#fv+Y6+>eK?VxIh%^XsI6%fE3!Qe4hrU> zm@!rp&;(6hh1ZC9)*L47{{fghxU<_of5xKz+v(1fP)A3H1Fg;Ux+>=LC$G9`pI;Ov zt0>E=%sUWixNPb>(6Ye)HD3#t^UV7wHoF%y@5nAsKBkHyXaH7|cV}1Zy$9M66QiKf z+C;!95u1asQhA+OqNAdQl6J8^|M^x|4DuYKZ=Q@NGtOh;k3ZQjZ(`IZWwsTMUoE%& z6UJE*xROQOatHdiD)&7j*zu{2`AFX;*JJ$#X@fVhh_F)Y`9Q&M*LEIee8req_9GY_ zbfIKU-d1frNl21;H*cH9UUU+FMP7FI>4P7|-~LdK%~l;zv-M-|VC$l)7=5ahBK>mT zRPTSDR62alia3Pd5!18uzHSIcJ>E~F&zQ)*XF8W^p$|K4NrmDxBS*2$t}JZzS&NCu zJO44$aNp(#1>j5iSO;-J?2O8)jz)P?sqzkYyOh?}D ze1+2@u0NcjG)m2^FyFZgU{Gj96!*`anYut;n) zjar?u0U7=(2E&$<>!Y*BBb(dgl%r2de24k)mpAs0TQ{>D*M}4L-QJfQ3}$;aUUJ;b zyV@H4crSywDZJ^b7DMDo#OMkH!a?y3|HgB>DkV+gh*m%(%&yJTr2H6H8ln35O;S!f_QA* z1Ch`DsodUt{{K%Om+xlMa|p#C-+B6z#;fC5(#x3L!3D7xYmZrxLgCI>n|N^(nTN}R z&Xmjzj~33=NRuSyuUe~(_xren^?k>}Kt;K-MCrL9#@&dt>_SzK;Ed^$cP1oHB(l1U%?=E8w8`mB}_#6IdQoR@Dcy_3Wi#R_J1$IZL%@FxyldX@A z35+&X#7)yGnsvU`0cEzfnd*22n+WZ7mNraa|U zl%5k7sYylCugi_+b15~NFpd|dboJ$2{=^uou>gH4Q4`Lh2P>d^YsX4$s3+saRtsvA zwqr0EPl7sEK8~|mxRh|kEB$&1BJccH1c!nIah``M?BFwi@ugsOe}9fE zm~hy;Kw@K@z2&4gSYSAC6=^(KMM^*n`kY_cS|YtVVthS3lxBel=`FWarCma>7}~XItExaiy+r zb889BL$2BAH}Srht;TIFd?)9g?kS<$aO`uvKayQHEsduaMb+y|zT7{{Qv58(%P<=$ zaqM6)y7b*loiIsyyVb^6Qi;EaCrW7MY3%R|aG3~?t}(jl&uId6DM{Su;fgRib+_Cv z6aLx5mtl6(&yvIogvyN7J~Hm}cvp*OM_(xztI0jWAnVPL4yUT%U`rKvW;h)eN*w%3 zA{Tm3tLJ_b-8->>bGlpSr&OKp-k?{mfN1wCUy*C%7y+4JZ2?%0E68c8S52wRjhZ5~ zoYu2Psu#|jymm9+yg7{NDckI^QF0O_rkQ@h)GV?pnVr|A#eWUM9o4)Qpwr-Q)G}ET zj7B8RnaXGmcI+bkSpTKZ{pSR4;7S*$J-%G_Yc|V>ZQC}Ix1cEMGtEAuZjvPNCK}mU za6Z|uG&Npb<5Lo?H~O!+2%O#}Zm$f9#;m`;4Qte~eB|4?mytMl3+B7fWM+6w zpRS))3+MEncuNxh^BI_HPL%(o*Z=6#)o5)$6#GvDkN~`0C$+09y6D*=`QuTpugfhi z{g^t0$oPEn2xN)p)1sBKDUu8$X{(8_k+XAA?Bi`_2j)iVuE7L%+LJb9aZbX4w^ErA zV>Dx;3{_B$d{1j$Fz>+kR*X>^&lUog#n`ig=H1n3hOs&6lN_w(G;z-hlAF!pH=k-l zx}6r6dfaK$SwvnB7U&2@{cVGO(a`h%@2&qN=z}NfpwHlP(M#|$6;SCOr0 z4a*vGevC;DIu@I_j<&d|4+=J&$}#Rwa(9kHciqEn&T7Am-g6eXXjSt36@Ip;+6kmn ze|-Hwd*Urwk~4B}qr_(lCS*#I>NuvB?$0=?H?=nyqyT*1fIHFicC7VBmrpYF4~q5^U&_Jp9ebFyh($2eP#4* z3b?yD(l~Qj1x(e`=iMUnIeGHJrWx~@gP17Mv+G+K?B|>z1EgKssR7@!!uLmfzL@Ub zU<}oA4y6Cge6C)#a5sE*{wvcA{?q$J(21^JRUn{=eUGkgHGF#`-PS|Ku{~#a`Ubk# za$(|B_w0G^i08)zUG#UPS?1Gs_jb;_tY>=+&5c528|LcY1XOOtbuwnB4hNKSyi48# znc*-6ob9-XxY8G)l#@YGs$jTPhs)ooz0_?j*?@&e`~`+P%ld zr$ogr_T7X`V_kN1xPV0byu?#sE{T({wtW78*AcR+{z_7rSa^T#F36K1 zb_>wP6mrMcXtOaZWc@=+OJ1TM)%iv62}tZEV9ALe?@zm)G;2uK2PV)~HzrRIagO>I zI1B~q(~tR>vAj)`8luLp?C~*Yu}+j)pvJFlOHj>#5p9aGPx0mvbZo+k@pT!6jcqth5+-};fiZP{$fyYNv!k$kbuQi@biB%s| z;cOrqN?0vn!rOv4MjZvAqg@XyattY0jhxR5?2z&EnOcLA8Oi<-!lOU{2s4no`6SB-vk;9G%=fd)|K5_rN~O5TMo)%JTd(v?6uYGCaF?$Dr(6U z4tD1=+^gr`UwPU+AZs~N_@-^P0pQNRwEOh*Y`KHZD}urHAn(>i8Yh{}e2vHsNQbn~blpb_4j7VE8gPKus8 z56GG1`dQwX#vn_YIAfr`%?4kG5jDJLdfELw`Rzr;Yd9n zF_LUS8Xg^lsLqR%!2LH9;*;w~*GIh-!@(CQHtKzdwzc2ekcZI>(pZw?3_P<@x z&6Y#`t4Mp6I6Q<>7u`MC7AOb~4skXzVm*WJH*rQ+>6_*3KZHvNxV;JBAf?Uxw%DL` z!TeJB<93^5ypD&aFo~1%1Dvl0jjh&C7bd_Fc`=UN~zU#G~ zy%Y6~YQVWLcn@Yg*vL83Sp z4`Ci;=`O@lsS7qfmPbY*<1wxI|QL} z;-CEu1hu_6SQS$qlGGkQ`Blf}Vxr5<*UXx@=BGEz%5=@dpw1Ed6oWjyuTKiNEXV-b z%?TXtj~aQ*?|C})u~w}cZ0#584kwF{sPN?oUz3N}-+cx(uQE9E2U%d%gpk3rCTnB8 zH(E^fkR0>FCj>EL@9PEEhN_*l1Yjxo{O}S)qKG4=TRa&&Ma(r4 zJbd<`IA_0vKD!@_y~6W`$BvM^>kdaEZCAdwf-6ZN%s;Bsh-qc{2JeQtG@^q$h(l~` zBqZ+s^vjNI2+~+cm>B7dr6`=J`q<~&3k#uN%#@{8CoM{rHP5GRw$HqblVvlT9#l4V zD$V0^h#m}1zG>_-)p;;^NObIx6nDn1{ELn9V4tbEgp-9{t$n}Y1Sg8ilEwG-q|5H$ z>;6a@X0z-f?oF5=c}=vJC;9>Q?L|L9pU$m+J$a@-nLBX*kECIz3Otg`-<;FBiN}^O zp?UL0>@~~nrO=%a=Kh^Ub0$+VfN{NM-CGSc{#|wdH?}HDx8q>vt0iS@d^9Htvc)Z$ z2^XwKLb>LabYF-xxn?UCg6-Y#K34|tY@vy|D{y?h&c$5if=%_t1S> zWQwW;Y>D1TR`t*R$N5=Lv=ujDhJd+M<=e?MgN$`|*e+XY27&X9$VR7aZ_X?;rq36> zdyk`lz4?B~jy?FMkVwa9^6T^Ia!#+Rjv-D}JR5K1iZ?<=rtA;z91D zsrW79_HYRmN}}lAaxr%j`z`!>`XV5YbfNvsw4&pyabo~_*xBxiO6z;Wsx9qxi zq~qw~oBcGz8&5&)<_j!eerqOQ{?1VRy^LnQ%ja2!UfY523SHikAyL^Z8=& z!ip3uWT(Fx?Kbl2c|$L2sddMpK>4O?bEJpu((eD?GGa{$|B&Jk!{nyU%VDq#Y!QHG zTK^;iQSZ`GlwyN;H}bozLxx9qTpYREZWN5#Y;KR16V@ZAjV+ydNOL#759L4QRu~l@ zu1qHAXaK>D&Ds*VB<%Rwnk-XC>n+g7Chw{$_qbi0Ds4&DZLk`h>P=lMi!wr7FS_r! zoZFsqq}GQvU2!!QTh7dNE&lTN4l5O$uCsw?WNar9zbCIfqDqMUCC!6>Y`hp~xEZuO zkP)0n(%s4m^EjD~~&_qs%#r?%ewT?9D`!6J$`Im%y}@I#}T7qA1L#Uo(lPTJmExo_&IBNYfCn(c5Maqi>YQ`w>OXv z1vQ8Q>JrM*QQ7UsC|4fV89d1iF(S{Dz)7YI3R#)&L(SI-t+&^vf#;(S2#TG;TJNr( z``)3ePfD8k#c_GhNiHu+JSESrkIqhREmOY7HSyy{1Op{o~zC& z&Dv>r)}wE^E~IVfe>dd*5z7rWlfeYV>d&?@3=8gptsBkIUNAub_kaQpZ-YbQfXrP%7_JRuWgbeY~$Efsuh z(J|oOSeok(njvqhf~(q@hrxTgq|h0*w+SrU!}5k7!1CSQ(+(R$ z>*;zErE^3vUwTeCLhRpoOO%=(=gBMbz0ausxIZ>;&+;{a^m$7FH{HU zqkozq7}I~o2~PK+_1~eD!Rw@l>=oZu-EIH$+*osP?5%oBSdlnszV4E!V`JPxb#NLuI8CL0OR>-U8eSisI#3Wfa&f;PDwgy{l_K zEP?y=65{QpP^8*-my6Cu*8hvi6w7vc^g-o_y^wR8>Eu`Bg(49WMv8h|MYsj&{qlqj z#lch!ey5piBOyL7rtvgn5^LwO&vm9-S<2&MtIMqR5k*R&B=P3gZk&==G9IWF>K&N}GZLOQ$@W1mMOhS)2D3ECgJEE-UN#h#7(7X+ofH)|qoy*YS z&WI2$*5|ROb zjRG)y0m)W9^Zzx2iEH~;0D<{e#}Lyq_t9;6G?hgV0ntJTVSgG7GCYoV5y5fUNy>5XKuIEQ0 z&^#C>J%ev*Y^ct+8?_r!>Qw#(3Ee3h*!ooU?A|=@A4eiz?o`cj36C(o1V8-+8Z3E| zn&>(9CkYR}j|qwEl;R%TFl`=_=fbdXYBk@M#kz^}MsyC=v~X4lQsjB+5Mm7tpC~iW zXkyDdX}Ciln>Q2_G2-voZ`Hcdb~RtogLl7ceQOT#uCIJ!#n5L-DLbz#&(6uyfSbsa?- zE5aWY@g#}Yr{^0x65JIb^7Xgksi%oMJc&XM<}sYfW<_~I*@i>9U8V=N^$GezHXbbx zn$XnHll@)v0IDv<2KV$=oUN>^Qqg}T$-MgC=KHQe+QSTQ4RL#kE!Pe?O8H*Z_Q)4T zjtaU=JzxdK9i_2jj_a?m*AbQ!gM<^8w+GV$L=LVgmk%r`S{bxnsV*^SiK^l$NY1QW zI=!)GtdVNUWQLf>_g!aF*>_D<{w+P2;k~+Wq2CI_>@0>gC)aNHRvdJV7g*5 zuQdjL2zbgaDKp*SZD0K%ieL`toTe2Z=_w<1MJ$& z!+?wI^!}$VS6I`|REoMdPsBx~^io%*!gLD!<4i;lG@{q2U`(7bgOs+Tf<7zQAxG)( zNWv zIl+}~S^P_;%sG#*o*_4YQddf9BeAn(_m4{*PVyk8r2V(}X#u`q@dSv+H;vK*H3E96 zE9(3cW_1wwy~$laF`r*W+Oa%B&yp27YA95`vyz zL27yP$Ii=NV0*j_QXBo9MUyFj?tXRgi>hckQ_Wg;k)8lzNzrSAsj?st$i3>`f)d7m zFGw!VRCF#sGd3JADp^H1U(Jd$Qgf%sW;@O$E-jjOEzj&rS1oYwHwi?~U0JPv>5L z+-z(-8F-|R%ROG7)v-lEy+)6UL9;F}2C5|_N%*zGPJ{``MnCDI+Td2HGu8WEov~0I zS$JI9+UBDEV_GN6p#KqW0k2u+r>}E`%4X@~rVJBC6XvJSa(@Yua9SvsO;@P>a6Sg( zl2n`Je1kdCaA3_ij2LKNF?Lk#y1GpL@UNmjJuS0k+Le3g{Hxrs#J|zioA)8c?s2K* zya(>p8To zqWUJDm6=H(@li_os;|2@t8a(5x3?$fr0=DKJi45Qoi7Mkme)|1WRhr-SDO*9UO%0C zV}!}>SS9BUqZsYAQ}`tGAX+(AUfY>=l`vX?ksRjW0a^tU%6k~UUX6{C)6{H&2sD4e z#>UR8sqyLU?H$j6#zsXch=^pVGeV*1>FGMS3I-8Yi~euTQ-JIGwBM4-@OJc(^LnzF z*3Fj6W(y{HCNPP?`|i70dPPMA|4gWInGVOOVb`~eJd%uHWET?W%sr;bX>y*1mL6F{ z7Hkm~{zUkC?7`n{aVb2;IAPGAOqS)suu`~d%eKIC=;($9_|Wl{e7@@i#l|ln9!+R=)+O&p; z$`92G^%j*2cl8Nzs&$e(Ou&2NfLwavyr3zE>O+fP5?@KGQ^F9IvrUOp%OCXINN{Q} zV-9wq^9iK&G8&-JzyL)SGHc3dAr_>y<_8dt6$ce{j)IgMuZXCKf)xBERVnlhbyofn z0oXWC5w0L(|D<0@L0MdF>LQ<)|Lt&bWKZZO;JVu-XL=wDoAC`HspVgSd~z}~&VO_t!;q zE{3Y4C&xsJO<_PM8yHJ+!)%UmXvMneKfh*LVEH;Zg~zC)p{~9LvXXXo_7$Xj3E_7E zW+-UmTfd3b^5D8T@E6GZEndLpdTMs-%Y(`x?cc`lbgioYYy5_f4v;HlQB-~h;2wFcjx(lbzwa--BQ2+O&u#H!LSuAeXF zwtQAy6Z=m!t_X7S5n^2dz!VE@M%j-t+S&}?`*z?G{hz-Ydw2*G$Q8qVMm@dKFk3YV7Nir4 zq!V72VJ56`HadE2WbQ*za`IT`h{nuVyO)ND^GI7tq@;1YT2y#)MhI(AtgX#4O{_0> zA~~zA&H1mRXuTjS!}Zlempt8YB(nBGkiTT`?8F7<2!0lf1DT6%&;r>Z&Nl$Ipll$* zbU@(Ft?usj%6PWU-hJA->}0&l_}XXk+jfZmQ2*#=Yp8oT$4d#8V$Qb&5XKSr$@%OT zliw)SdeZFX(L^Kj*%r*jXB~$PAvq-7-J-%MO4rYJ4?yHi-OWXKkv=%0@(dH82_ zA_Rru%X?Uc7s?R+&}t?t(zgH)WEd%?4{7)?XS{VhtPROqx&}qm#mUs^V6D4&)SzOJ- z@hgq?R&`3guB_GkNp2QyWpNj1b$D1*z7H=gm3J0T8=f`T$~kJ)XGQ4~(_8j$3ToLn zs(J;c+qvN)^^Fx8g8m0s@TDfV5omP!gBzc`Q?fERPION8t!xpZ}Juln(dQrJ}|n3Qm9QM@ZEp z<9u3Z8#5&|h!Ltb~=2t|2ZxZ3g1G+dhNXI+Sgx=fNXOXPo3`yI7 z%#(pq4JDnJMxzigsnpRRvXElG%)wCv!W2rJT2!j%7UHMxR_vGMnj%}_1A{bu5rM1H z2u;RfHA0F@soVle6~eT)Ab`dRlP;+G8CJD6NGnYqZw^UEwFoYVMp&k^d*L1S6VM2a zsC7=31()a(6Zwg@6Nmb+@|^tws*q_@$#>;fV+4maHBRhGyi|Nb;+20Y3OsW|JoOjL zU;l9!U_w)O;x@^_rtn&_U@VfQkv}E1>tH#2;~hHJuejU_Cdi1#*fw00wo!{AqNJ=Q zZ4XEj&CLqgf0I^fWl0?LO6*WbPVRze{IuyWONybuOA#MN8Q8dROLF1ZTNG~{D&q|( zFes$7Ko~O(SMvvBE^5`HRKjGrIGw+)&t1uYU3ZW4)R7eon$c$mw2G*U3M!cjczW{QAtTC zLsxtY&^+%A#tX+)jS3CnFn!hiHrft#Ms%HZ6|;=zEx&AhIlOusz8P0(*thXHfOyOnvB5!YXtLylsRLRMQGRjBcGq zS4dEz4A9*DqA^z5_!!s{?VO|PF^82Boz+8i_~1hg=%N?m+#<&6Lr@LFvUY5la=v@OUHWNVXnDk>pagtj(5Dj`zD zSZxZr5Kk~Dn3@ouSA1`Qf_KOQKGdOF zs&$4=x;@1p8#chksntxA1#};Z^YfMY*3?^9YXNTpPi2#3eb+6Q zgLqcMBc_bIGcadB%}yJw8^ljW-VSH)3 ztyrjA9c7qx4^bRwvo}-da<=g1^5j&XL%VP_#h%n&Y=9h_47^_Y+oonuS~Ei!yS54` zX8xk*%J2d`FJNCp(s(VdHU_XP*9w&i#OWNSb^aLeHCy+sSPk1h!(h6XDoSn?l$qNz}LmawLH<7@a^$z=lTpv_jZ zAY$k;>)J`WFv?(pH%+D6aF7W4I<@?LsgK*9U<;lNF!u162&WO!^f};jzq36|qb`;#QYUQT;D)R~8!H6op zTFSr;H_U-=#}6gz-;B=S??qX?u^^6}JJ1B}?}E;@o}6{p}O@>6Iv9>OfN94LWET`hWs*w(a~D$cC%GBMfC%c@MK%QyK* z?J8OAU((h2CU?$0FENR(ZH$3f_A`iRWJH06lOp`|@UUy;(@?~fK)PMG}cgaq}*`EZOyRI*fxT;UsP{LS1wMVfoNZ%1KMvCg$u)H zJ>ke22H-cy#t!q9ODhtFMNOg62c&Hyvyg$4z#3hnIzC?a+0NH55{jt+%5!}Z#6tYs z2pAT7palL5Ism9%gAdIiOITO|`3+4!;>&E0Kb6#+I0doM@1$)=)a`1oi$jMYQzEBf z_Tw}C_mf`pjlvnvFo+gI*4;b0pV`mx2du(+6-HLnt+x{noh;sP&_<6$q|-9d`mjJa zhB=F|zhB)|CT-bp)37qeJjGEn@RS%!ehWOnLdlm%#mht= zZBxcN#=a(oSKH9=)dop-@e6yC$@w==Ttp(J$R_8~jLglmIy*(P1CWW0VKzVl{_JoOm<9kGV*kKpko7lkPs`)X zv16)%z0+Bwi$DsxYnXyR2~s?a$2;_6>l7u_?JwA#Y(GA@MgX??O?n`>NTho!Uh^4G zfVsiQxr$nCnT27A?DbiSPye^-U>-xo>S^|#nuJ{G0H=LnbM^MdJ=%f$b3EcOtt7}^ z=9$akocPR%{gR?8kP`fk;#BZ}cR|(olC87&Ra|@I#gwQz%bJB+L%^1e5R3lr7UDI0 zigjY`Do%2&Sx8FrDxWJn>+KhZ?|rG3o?>Z@(=TGjSlJ6$Q!Uw$Tf0V70lX#gn)OQ{ zxJ#i$nZ@~|sI0%TBvA4Hp)sSef@5GD)6mGxg*~{rR>?` zNJ5H+^F0Nf*+1Po!UxPf>G7n?WZJ*JFBVZ>J$hux%`w^}OZ6W|Yzaygwe(#0rdZc6 zrQ#%6g9ElS%|6itc@9dp7tO>tTc~8~qh2qOpMtDi*X+QSEkMFGM9BoIw$L`{Pp~)( zaiw(Qm$v_S&c=l0h-#8rtnrO+t;?waAE+G{xdy@@7PE>dJnJj4ftS$Fb%v@v;yL=o ziN-btkX8rqw<@z?7O+(d*xI>R7>*7!1!#RLNyGafj|8mh&>Z*QoVCWOtOg61~~tYNKUX^0>zNm)m3$sc?7Vp)j2 z81-#-%llq3+K-_Zp=;q{>9o+L$E4gZWfre#+J>_n>wSFd3mYQn^7F^T>^FD8n=#uh z3>OAzYYyo(O($+SrNNT%g2ne_K^HR1yQ(81?TW&^ibYt{PVQ0>V?F7?V{R@7iT5fF z-gA8-(34lwpp70^k~jXu7p*dpzg
    9vuuo-7SW=yG5L^Z3ur;K?$e$CZ!~9+T3` z#^d>p8#~90%ARfWGk6^{;GxKBEg5p0nlH$KY#xuZ7y9djqiN%;yv2mfj9-)=j^_iF zMu7IotZ7zprGOl=F*%+f-TyLct)=(v`Qw&pe?&}`XS7Z8@4V6Yn z(?#bZYN-wL2fsP!EPCP1mA^}RYM`VK7Hch9trj@QE^$hHi(S)Mz=@&+ECWPcf8}-t zVjz$^2EGH5vRe0e#ZLc^?R;nWT6(hrDB5LB$bf1i;I?6WON^lE-=0~9SZgifkWfao zbFvUi>EWZ|PlX!w13~uN6RxVw9^N`_e%~~Wu*m5lK)uD9hGafDKYuv5vjJI%XNgMc zkVkvWO!{q$5oeRxY?N*h#;T2EO~UrJ875_doRIc&6P1er5icH!bTECZ|YBNSS2(b|sqC=CK3&&Ew+Y^H+OTQup@RgdzG zP15r(4YmqoX?1?n)D+M2d`ay|ufOPR;q&(qs3IAzIMEKrP5uNz252-gRU7PRS z?wKc@8@j9r(2o-lLKawHE+5*dsTL(q4f9Ofjw4z(V@wBfvM|f6zn#+{dTPaz5zYMC z4LSYvmTqt?6fmR?ncB&as~%N(QdbS4weQV?al12Y@7|s6CGmT07G})YC)Q1>Pi*QsSWsNS%zl+z*+;S5Q2FJ!b(xgtM%qqn`zn5F#rU5fut0@a$Q)H^ zO^(BW>!J%uDB-^ZQbPmIUs0QoJb^H>0KF_eKz7r{yyl~`vT_xkB<&=A zRe&4LrL%+to&M@d{!G*-Cv0U{7lT1W^;$8|M9AAaVN^P{`I zryrT41D*-&rOPiW$mm=%U{9<=^%kaOMbnw6(==zsdz^V68;>s1<#(@D*_6}Lj@Fs0 z8Gqo|)oAwFyEwyUm*S`8@sCgqjBU8$ak-8rR*HKjK7X-QZTv~~F=5Pv!Y31``(bCj zk-ZyBRuLJ8_(azGi<>tAPL?I-;?Jx_gU;Rj5%gH(6p$wOtEafY zd<>->R4uZtSfieAXRc8U;CRC`Va0b7LPH`ymzS2t(eo@=iQP3#9B|no>LZ4kZYwil zWd;`7Nk?R+8B067_zBU4^1<=1cbhj=)S8i|ow_ydvq*QJnTR|q&Ai++}FK4gHjm4DiXBp_r zIqPHT8&Jy`sj`^EI0A0ZJE7bW@)E?pR8is4QuH~z;)4yo9~kEPUa=2%ZspTn-J zxq3P(3S(ntE}*q)YM>a!lQw=eU62Nf!qdK3G!8T)K4`&5@W9$=mX!f)EM_G%2LR+z z<&K{E-S0snkWsy~<2}~%Gsx+^qG{&G?C2W7M#znyOisCeEF%0z%9E1uOnpZ=WzFYq z#hgcVH7gG%DyvRbIclW_Zc|HviJCfxk>Am7rw81o4qm>mp1u%sg2oMlb)t zK4TT)!CSI@J75}+wpO?JeRa?4GWm#kg8K!xVL$~2;oTn7`QT!6OJ?(|vPX~X4q;gb zlgrY%DWGSvI@%a~w>VX#{I9E*1AG1w?{b7HjRcaS8)faMoV2S9DbtMCYMTyrLno&B@l*Olp(dBxS!xVh^VW4PX-ue*(($!#v z@fRD1Wf{)oFD@IHQ1obLtA^XdCgd!tzRwv{XRaW_-Z7)bfH*m4eV#vnkKZd$J8ohs z@$D!^;Y~tU*_}^V=2Wx&y(=-x4Ew~X#iIa~TuV-Cy^IjKaf$N?1qA~i?_S!gl#CEf z-Dw+%vebL;%G=4#+rQeVwf=f0U_m?hO|7U=r*+y*p0H6Sf7|glCMoyx{U42$jw zZK}h=CvnTN50_&D4Qec^HypYOew)q}(zsU;p2zbf!3506>K){3wOx=x5O!{FIMvyJ^z3k`?#ZAQzN5e1Q(FZXNTW!89)&aPMX~g zQpFH0%$$QHxR`S}$iz&CF|(UqQW(rak^RZvo&5NiRe5ayeV=>^EaAz8P_D5{qq2ENcg+XibFepFz(yY6tBW*F3@O$Ltrm9*51=B#& zs{jP~T&RgSfT?WdAn9Yy+urq?fI`X#u(0WPHjri_z8s919JwPLEIex|Jh^(#(b89t zn3>@)zi|1ku5?L0p%Ca)Wa*}0P|mjJ!O+@Hj1TRoE9@flZGZnh1CzG5@lhy)hNi5O z=+-~@TAN$nHJ92qeWw9vVgO1t3gwWd-6*=Iz+Jo3FlK``)u#qbi(2*EK>?+XnhHGK z?TEpJio)9wK~f}UtA1Ae<~iZHqZeCS0d6Po60PxzJMf_!953`4T3K09Ed(g>jef`c z7`p%J{sFWd@8wR+eZ}jSA9_|52+$7lQHOSI^-;)mOb5HIxB3ZOeJuj0=?oZW1hpo? zt%B1hT_Nn{Du#&#i1_x0^&7-%L@DMWRoE%UMXv1+>M7ND37c$b4ixW{Yd5yMyzb{Z zex1mkXx~60ky#B1{vjo|0E8unJq{jJ)K8x163$MPzzMs=%)DAXrzTj-6S6AqD7j!d zk`k(s#$(8Q_~-}z-d+NoheS`L4J!;PR?rqLWzWeJ-9aklFh{V8i<-%y8pO8i5}9K_ z<0S63QpT|!=v|wQw8TWaV=fN26&2$>m{;m#Fpu#867aS$*1IR%t66VeDJ~q5gAllB zBsMCh75FiP;zWbud9|32w8JH5HQ9if9^{F`q@SiG#A&Y`44ruG4tfl7 zM0h0%&Mh_{?aGD3)g<6j+uPlgMN^I@z_LHSnQyx2+2)>3I7XCk5lsZXMHRqHbi2U+bL#&!O_rL=(5Ke zD(60AEAoR}Lm_Mlkhk6{kYXj`K3`TCkmiUP3xJ4?-*hO5H;9)2F=wIY4EZp1@d@D? z;SYk3A+?j`X|FCygH{cKBiyP=^eUXB`6Y=DGgfNk~x-as`-7~fRW$WqnKcsyAfYf8hMqeJf_G-YMUvQd3%|f z8OnEct9;~+c3<&~o?9+}PMn}se9V9U%$kDgRwkF48Y0zM;~ByQtR|ists;Bu+a*96 z!@Pv-jZ3!C)TJInPrqF5>pbWF+z8TdoclO8q3_|$kBru7i3u&gD795zvW9~irDb$f z`0+=V47Ei6>j!MYvK+4yVV6fd6Idc(Ew_J{+IM?*z*Jw_!|^M7LGU1u?H`2I8ljV} zB)-1SZ}5Z=$B4wY!|k;Y%|0M8SAuHxKFwpXLJ6hn{;im*G|O9I)&w5{j=w#vx)sGh zPZ079{lVLp6j=HSUw}iYSE@(RBTvYYx&1WyRi^*#$O*Rj%3cT2Q&jV+uWs_N#7Q+_ zOGpd&uldT%d~Hn;QD^%`?7b1K;o|3uI3~`GddT+@oR~IunOY?p_gboIT-dF}?-xR_ zooPg`@f5ilz2q@=s^R4_>aK2BnV|`}A=umt$`v_j8nKw+u9-Amg)+^Y#zO1Q)^|eZ zVfSG5E%n{)?FLu{9+AqLaKU zrZG{1TQDuLWN9(c`4;6&CL7!gO2W`u|)y-dh03|&IoJAMvBHj>2I~;J+ zOTy4u>eR`ELJteG)Id6p>g{vguITkOBgS2O&eEuC6CrHU!z`aV3q) zoN`OT9l~kDXmaUWzcQ;ZL`bGaavds+M8N0vbRj-dk3|QR=*UwFZZ>r&7Ekg%8OqT= z>IK@J<;6QKI4~7tMpV0%zh6-_O%|swM&+jY1jX|Wj))@)5T(1V^0Fw$^@^JSmo33# z#zbLe|Id!AGydwHpeMVmB>O;c&9Cj)ePH048!Pl6<4XbrZZq=j#-Si@10OgTfS@mM ztZR-5m8EKc$bNO+Q-Y%8Z&gV902O{8QWOAjjvo~HOPDQe)g6}`Ax?Ng_>JH}uw<%@ zmnC{yp8%u|#*j^A8T`em@qFO^;{3B*Fc174JP3ZVeOn*x7m{>OJ3!qXnY zJ?93A&56+34sI{b7fKfEsOomxxFmH+u7@V#^R7(Gcw#|o#54nS4mE<5z*r5LXr#(m z>!AFy?#`%6#vS!0F8N7EC6rU0ND|{xyQz zckmx~aRHGp>92k~;hKnpfg~+!{DFhlx{KNOOApEqcSnu;b$i4`0VJ*JcFFGD9x#wM zbM>Mm03Pe~yFXuj1Q6f=puCiDjIgTkULqPheu^kHrg)#$P|^v=!z8sV`Hf47%yn1w zg1>>k7f+tV$r0_Q6tj~LXCD3_VGQ|^=Art_BeOGyT*O+V!=+zX3Ki>~CP;%$C2(=j5_|}GvNG9exbXyGU*R5Oqv88wiZOoF(4@s6!V_kphwn*!5mn-# zr!SNR%z;nP$ksY&zw%6@7~D9Yh314py9@@E^@>+mnB~xvfvaMLBV$_>Tk1_eW4j6! z43n)Vy7HTS;EJ_=R#fE?)QI0%5NjWl1Kn5Pg8lH1#dh2L|HtWS&T*Xg?p*uQKJ{Ju zI#Wf-^vgU}N&m~f)?30rZya&oaP`h#QtXb)3Y-qBnp5TYwm(1?-@saCz!XK|JF-eZ zd5z$l>JdZ6m>;fzLc=EQmtj{a*z;K^ARFf)g3e$4H;TJT?L+@qi6WiUVeAK31Cb01 z{&wkBaP>`q@3n1TLC+^a=%N9|i~;d*Srz6_oc(&91N1a^TZxEx#0O8H)S%@N2c2VF zVsKWlScQAg8pu1Srzf?O=w&Z9eu>2*5X2*YYszoQfPmbxr4?aIi=HFJRcEn{OKdkA z%B@b}^!Pl6>gyFD(KAM-ip{Aj(!lhEeDoz(SBVjGd+;#013c0G9>NN7ywj#ehH1AU zsxwur{oWyHncheSy0_C!LGv4!n~gfpo&T693i8dCj?3o*_s(Pfl$o=dpf0{-p75X! zB;9I0--c*SXfA2UWzSW*08SocYh{y*R>}&gK=jLfpU(^v#sNID(Ww77vCERRrWsvh zNO5ZAIEu}v5UT^05{T+DOTq!er2faZ!k!aOGu43CckVGiXY{vlwo8@ zZm5_(Mbzy{*Q*eAeq=k*pp^=Sdfv|{Sj3e?G2LTkrQ6N##QQlf;j^+O9AfT|ZyDb* zHV5FfPl}Gz*B;Mhw4^TeC|yUQ0^a$>OL)Zm=&#%-0Iml!z}&~99?E->FJdt=LvEE5 zMHV%f)I|@b=RhV#p-rJN$J-_>eT)lSH8Jjldoq2+uo!UFJ(->8rm11$BD>L1HB}4`d=BgnFmWDoEJ3K|f}2y$ijCg{ z;*&3Od@uQ&#_O8s!jJWJMLs1SS=P1nW*vx^9hOnt#CzQtSn$LIdbl!m@#V^K8t)F*A%v-xbjd~sb?lkLxK|{l^7Af}D4fVbRnLB@?EukL1^V$!Bd;Yuy0Ab}_od_K0eheB?U950hp{i3c1jVrQqXM;|u(K5m z|B4_^IBg)1rx97o6KzMdXI9_TK`u*U33%S1$3PmM>LlL|z^I;Fs`xVv;#R1eSoqr2 zTHmV0r+{d^qJm9Y{rPhj=2{!$c*V@l_hyMetzHfswpc_W*AEA2X;;e6Am@Zlh`s(u z`_TF;fNq1wZnwoci@tCc(6?Yc&+-i`;3-}|SCK{6(0;2I#K+Pc zv(7o_Ti{=(43t6B#V(J`dS7n+SjN!jFR)%Z%m#5K1`aCrr`DC;&?%)^fBn*bYs$u^ zvv=^iQGR}BfA38Qc50$1J2Uh(GOzdpkPSb4Y|hNDtd2=%b$6R--xng5nd&;IoYB15 zIrvro`SX^}_Fm&NXKXsV2OF2vKR$m%PG@R1B_|`P&xM_dePdHxQ%E0XY3cc6;a$FQ zrFVoUj&s6)v6S8;g{rwlQAnjSCUHN&0eYAs=-QJOYW*NuWG|6NN0cuuv4MGrqevDw z=xlZkKR_b&FNx9LfN+rCyUe}=I^y7MGjIjme%qE%)ky^AMT)B?4OfB;lWz7BJ*{bolb8=4fw_u*sXn7=h)h_$&h@d; zKWO;y5il5j%GCF6*+tUG5_l|0filrMqoXAO^7UV(Dlcl>HTryBk5qP4)`EOgUheL@ zTxYS*_3zH#Gh`Nq(cEpu$A#^LFC|KGZ`+=?64Dp8zqw$bbv$VaWlv8ws?Hs|;OXU= z3;X3)tL;+(Df2Q<&c;H)w)JBQRkPh8PDjbo^`SJ%lQkmGIc6uO zIZ};L08y{z5Rmn_wl6@I5P1UPS3gcf`0#jDK#JC%iLysCt4igcLi#4$s9vbvlTz_g z?d{3(RWxw;bA{LQ7oN&3>8yI1P!``28kloO>~86JTt*Z#>RnSiqiz`_NDbdoWV+pO z%TbO&rg*xzCLPqY#>Z?#F|o{%L5|`ERkP?<7nsod#=ypV?^aam<8Rd0DMllxFaj~r&sqCCFB6*-Z=?@rfyN8C3yBizR}wwP z|D5^5b>_$9?Y0V<|DCn~ixtzyKuX~QC<^@=pt+W6R>Oi+ViMEbW88h?X~oZX zi!?pz%@C9hviww|@b#08z$jAG`~~nwl8Oj5aUF0og&K(VmxCbZp6KtBo+4C{PEU@a zRPy292=14exWnm4r+bQ+(NQylo5IZEetr%8fzey`sI+?7`Jh;?n)CSHwmT(6k%ai{ zGV{Gp*I5yW27|i2_ zfJ^YiyXMx|q9=x$xy~pWA1@hZTx<0Bh2K3uk-swB9TafAT1|b5LJ4`{eS`n&=ZiH+&Dpibw^i5P-3Vha ziKoGwc_sJia-fF4HUB~PWP=)rmk5Y%+_$oLI{oIZO~v55o4+2OM`fG=YbpM3EP=x9 z;{!sO)@hJPM52TPwE&r6d0_o_y^paEMK40}K86BhV5%m?P&39E zIUE|Q>$VXw;dM_mNp(}zxWLuKOuGwX3)-~CuQIF6tYS0CYSCQUD;aCQ&zNOT>Xy~7 zq&Q?crqCYXtMa{@Ffj*2A35TEGqPdamDQ4Wi(X7xO{`$o3nv%{Qp>_r0VtYPB^+@3 z;dL;}ZOhvi5js%?9mR4DkMDMqBi;an+Bvj&r7ucZJRaZ;NPZd$3DX?0{-Um?HV#l! zO$)KC%71+BB5_VAm?>J#Vo zepqjRU||yN*Xi0FH^zC>K6=Swf3ZSsRlZ{pCUJ4_$b25aiABrALRpR@MfF9KQQ}$R zB~N(`UT#ijfTe=QDW0Ni`-`(r^Oj`}JtodQHhD33Lq*cjBzoaiGz`o+6eqv&_ne6s z`1ljapA)`7{T8}gzlraT2ZdYYP>7zTA=ZU?N4j&gV$|CEp>M63-~ zPsh)*&o80(^Ia3&bJmSzhjOmhkrB`}CAI zDeEtsS%0#QFBb15O*P-GbD~BGtrh8Cu`nDX4yRY)=7bSv-?}2^AP~Ycqmy%vTcnJIj$4`uR>w z0bY+odZw!T=uv!U-1-Nv{#{AUyR4Q~K9U$O{qWD2`u99I{dw#kfE({pS8qlNR=-Wq zBI#`$@%L?b*H?CF`WmtCD$oB1vL*PaVE%W{XSdR)!molkQrTUA;eW0q)PS{uw*!XN zRBoG0BzIFmpj{zIxhAP+R#v8qtIsXkDXtdn?QbrS*1rS2nyWt~|4Asaigq1I`Y^{f z482|nZV_NYDW)NsSY~n+i_9N&qU5&ou+JN`{{G*@0+pePl z%)3^vwYdDsqF#!ij4tsF2Nvw#-Va(4`1uoA_;AY4AFv41-we|%pIkN|jca5yhn7^= zpjsqLuT_}xWM0tHisQupt`}-Aa*~pgPKt})0yZ4)#Fa%vg@=TEbTbPy3IS+>ZR^K^$Z6Kv z4asl^G1l)sqQ?tZeCw;JJeO52Ve!TLw1S1KKIj}ZH7`z4RoAAz%BACrM~_90mhDPW zMXLqNwx>-iYU=8Qc$=fz?SCfsZ$<28WX1KpjN2w-l|2q-I5oW5P7Z*pPdyV`vv zZCXgp!Qh>(oJzRpj0vNpc)7zzmWiI z?`i2HwJT#<{hsUo$6kynpV9w$az<`t z{a}mX=YQ%cD82&P8|TlDX-R?LJDUsRt?DxwLtE3{=yNhMU$q4^GlE_@q5?XPbie)}fj3Q1_M79*q7>-yw^jEnB!Vk00QqSuGq9FK;T(|x@@kcS+V`xVWka5`UHL)!*w0?IE<zwV{l#wy4KP~{~kj%(PJoYEKj`$X1l)jmN||qrLRQ^&Mma6M+eQvrT=bZ^qgkA z`RUL7i#vV(LKO9h^}(T&TS$^&K7WI7=i{Bh$X;-yohxZ@oxIfj&_%?w;v+<^Yz4hE z_!vnLqm(*p$efKq{0=@#2sv?9!A`*N?1@+n{j+;(z)MX#!?oT z?yX93;VTy>T~Mpfw8);OgZCHGe9`b2ImzwK(x=2`g8TAMd7wljhgVAhGN+6th2^!zj)Q~ z$%a6XnT&njDA@@3|Ltf1t^7(bd_%OJqXil=>B>Ye7o`CVgM$KK&L?AtpQ1cf&Z`Fp*F0#|->XidQZL59X{#680c!2kaA1*hpQH$L28Ncw#L6X$sT8`0Lw zDoD3KR0MsxRcm8%)0iS;qH!r&Bhj_ zL!?{=Xwg@9pWi5gg6bM9w9|%m&tvlVmA+Pwe-^7785UNA2<`Mru;4f6%yV^l^I(f69?u<4{d2~mKvurvJ~Xp2%E1@ zM;22{JQp8s=-TYy9FARX>CP7jUy-Z`YKo4~Xj`I^N7wyp#7qWHPY=+PZNu1Lcg^M< z-4926u`gNpOvfvCpZ;`Dkn0V>eS5x~U(6WKnasG@dO;^(VYG$KA;4N)l!><5RQKUj zyPkIW8cel<*Jo) z-})-H((~}}fe`G=wa3hqez#g1yP5ROd*6cqZ?#ja>XG^BO-rv^5`Ma`vrfv(kloX# z`N*2Kyv-+Cj%VKG0TS781$5=reqb-(uB+)TJ5nfE9J;-^!)MXF{X2BPg6^4)1B8M3 z42Kp+acg;1HFYk&W|W8NRST%!9ES>jJW&Z%8d@2|waaRW8gH+w)L@9{#Gz`ar@=sN zwPJy6+xu!YEZ5=UHHPdV@bT=r7z=d@y4p<-m)Ba3DR^R7(7R*A&Vg^g$JPERd5pQuk@n4K#sn|_Rrvi$U~SLF z^r_ZZqJw6&*cKNRr{}R~69t8Riq-}3AuVfNI|0ZnW0^sd z4OxqYs-?&mL*1u_yr!1)zZO}G=J^lb zTP_SdwOGI>>W?D5Y5QxScw6s<^|GF&ht-_rJtpgnp%j9Fwe@?R$qKkQH}vv_x>mQM zfY%T@aMC-kbeg7m>SBHSBgCmuA+)`rG<=gs|Re%r{fR%x#e-rHbew29qZO)a&(-xn*lgNBqzVk(ev!6NBCuSmjNcTnID-$nr zn;RY8jTN3r&KwH(+-9+{SsM7owReorOxQtvESJ)=QkNJnNi`d&Z>2(DOtoLm#O2#| z113H%{{AR3z5GmcS#R2wdUj&E!4c5VQ@qKgGmRDz_;wnD z{KJP=24uxI5>-N_ht|qxQ-PRZ`C7jspo3PboQLf6kHFtE`EW{Ju#V5&cOQhY^!Z+o zNf^gd$fR91Z4v3TbAS|p`YafoJ)}|R*)vynU&JX8Jus*hDK0Q@K3c%W&D$qETVBh& zNvARAMb$;4sxgb%Xw$M*^b(_wGnO<^5M8A@?(OIops=C2GV$YXIbfyxLK%{E-!g*h zs^?dSt;F2C^;D<(E(RkbS?TEecS~V|MMZ(*ODk^|{af#lEjG@7yX4~@?-mdiQF*1o zkx@qOx8(zCS!;~lWbo-9-g7PaOWX&?g}9u@fSD{%t_aK0ho;|(F@}^Mr5&}HL)&Wy z_=u?ToxH+T?;Xd}@O#eHL*0`j^VwNxP1`NTSBdB|FOru=aqWXHO$SjjsQG7sgM!ry zhi3S61E#*<+6DmE(@(Db<7FIn#(psE&Wie9!W^~r#@{PjkK8EIn9CRvjAqJ966F%7 zrpmal*7^R-A6hOeNH52doLyQIiYq$}!?fB4i_rQfMzY!xKG zrxh`<46v{Z3qw7&72Qfxv6b}!5ArOR{im%mOuV)ynwFE>Rc(s9Wf4j`^TuG59KkHg=~UAX+hA+75nKK&pDt_VFbP_?G)X=?4E; z>vEg6SYmilQIUpw^i{?FB5rnT;_`1Zl0&B+1kTUix^aGv&!!+ z&0YriECEJuD?taYwz;c#U^Im1g6fNh+)W}jI&z)pYw`7-^=4m+bs?3~Gg(?gT&4DM z0bvrnE~N{8=m1t8DmMH)o8{i5j_#W38b15&lHS0aC1!`FDk(GH`@QPHf3C%AB^pJ( z+OND9D+>ac^U5j(Oi98U$-s$&Ys2UUE!i#mAWE>$(4o6_yirefs^n(!?8;1l@l}Ve zxYV+^{h)BQ#f(Qi`2x2Ze$zn(p(nrHk3JTywf@jDpgY@c{1E)5?XhSXlpDKxBQ%s0 zjHQg`+BT&-3cxpUL4>vY(V7y8FfEm4{|+=Yih!5gO0=SeNEQtZQbU4ekt;JZz80&k zZ+C>J=`-7vMvweYH#8QadLm7}ExDK1@%hr*@Ge7O2{N%w{~eyEQ3;Dpra-3%FX%sX z%OEp8miF5jXU;@-N-;04%=vg)MO$gWZ@{x7BgW1-YhU<`#_C4&6;APcRW#>sRh9?n zBUAD9TajaQz{+!JC7wV$b_j^N&l#4*$J0smmoB8a><_rvzbHSg3;X)K{-h*n)u+BM zbizGnWk+bvwSBH@$tAwQ@!86204W19`kyINOS@rtAD9EK3f>tAW!JpdO5RaFdcyUi zw#n-P+nrA#N3|JkKt7Ed@MMLmJJY38RFs zA^Q@ytZjLf+ZG|QAj=3QyY5654cf>F?X>(Diuk~C&tSP5;M0}7j{mY243=~!Z$F?b z+n}Wr5r3Bn_^VQUe}(~f9&Vxt$R_Iy)#Z;&PEF`;j`ibeX|@!ePEEAx1b%wGjy3pe zHw>7_O}9y`w>FpAS?4!luH01eH1t=+^+kFR86LV|* zcw2+*=D9Vszb0J}))F(bj_Mvv$5iVF(^*4i6-Efu;JGh~an+#`zan0|Jz+?(KMf9Q zzEnR#&V(WT5R?(g9fy_O&q)|kl;6}qYVnTI#ah=GvL%7jKq*mlso#wWS)&tzaUQEH zsos1;J=m4mDI0J8A-|qh_7@vl!Rk_`G5ckzck@m{0DEOf)EGYc4L4J@GK$r%_#yjc zk6GjLc0kln^Q(*h)Eu(sq`qjld4AvQF#Zu)s`#U8el^l3AMel}JU<72H7mN926i5? zTJ7&k?@O@r57iI>mO{*j%p!eX4A5^fAZc%M8<_J-Lz`rw~*OYQuX zOzcB}wXRQE7QgNN5IbeXSb7nH_O6QhyCyj$Hk}LT?m+%YLacShCMX833LNuqGVrV0 z@u=!Ur(6eYSHwar-Q<}umi3AXu%Os8UjAlMKQwhv2k6LcqjWds;q{wO1|Iaaf2;nq z94ZdC^YyxY%HcG4o7xr#Z6K$^t~y?)tO^X8t!Ys7R#i76OSb6qb-}HD@#SxQ zY2-t?uBmNdQj&Y-%uua%v?Jp<=rANTFq^P9#<*>$wEbM@4=!Oz-R1#GN$ z- zQrKZ!_Q##MEVkhew}+jqUZoIlzdm(7c(`Hgvw;8FG@Czt=f>cN(qnt})cynq?s2im zi~kj89%NSxXk@wP(t<7}H;@z6xr+yF*2+EczxQE!R`N<(FX~j9rFXxbw~+;4s`1D? z7EH%1rraU}5xc}>4Q~EPKemB+*TIXVbjo66z)R)L+dErA?0k~XgX*cIHOMr5vfTBP zEIli&fDKff8=DDdh2gG zn+?*@M*)P@ma@8uU@w{kl!Dm{=yG@Hci_rn?`*e=glY#5`?8b$D-~dL=K+Y_RIjJq z@MrbfImy)-wt8D2`f30`(UTl2Vd{lC!rAVaTxqp+Ei`bq$VTMpnk0WE^ zdD4^Q|KyVYKr9KVcj`pL@caY-U_tqE6WA}7c(txO>oE2PDFCw?EkeH%nfc-p~#PHnW`Su5W-~Iux}sJezNY`J^pP3Ghuy>Wmt6mS^)s|0jPzjNHdi6M zf$pZfnF%`*y( znfB5yf`Y3%Wf201!-e}#)8scjreoM*F8=L0i8dJZ?ZF(fJMuz}h{l8z87C+@P_6-25>>0#;Ov)#B!5&G$A z6kQATvP=qlOeiMDCb}ZOp@!0)^4-A10y~Eh7WIOKDD6Z zX0XY%VkKPn0(w@3&ADnz+s>uWaVlZ{>Re5y9!kL1tYdcDOY{rOSIdxIk&1jvvQ&z9 z-|(6nM%-$0lX34?x?ItDvGkIQQKvCt`hF zK7Lz^8T)ft`yH1v_9Qi(v*zJlR5f~fPiZIs`%WLZ3f5BoCpbJzT=iziBn%0<@SA7} z8*6PJV!wdY&3IW9_7&H|HK#vrdbip5bt#=ybRd|(i>i-3i{Dz;9XzqUx*+S(eaF{h zII?i4dS+&MEUH#Z*lT-dTPC<)hPPl_>3nnh9(0X3Oqz7MKpii2If>Q5U@HU$aem%` z{b7s4$6$fiR~s|M)EpzLAFk21K1eGX+igNsvvVH20&joO7U0^x@tRU*g&;rI*GBJb z!D}pr)>>!lh;;BK0d*=^|2#*1`t))CZT_0Z^i`d2FZGvFSNesfD>tSK=LY?2%N$Zb zt%L4uxJC(>fJNm*7rV)VuBH&Q#jA}Tnroeng9S+CHHO#(xubetmWLq}-Z&NvrNGTy zqcA4+ki=H^;=ltY-!t;^>!)+wvYG844yPnq6y?U54-7f8RQL}J(DO(?(x)nJv%De6 z{PPErAbl^!7(%Y{`4V%e{6>cLsJds0HF_gA(DYLGyqAXW&b#^Ys#RY_*UGN73yFr* zHtxWrz?TO~hwY08Rqq*n*k<61uFv%@;*HccMo+wc9g zV77@{=#^sPC}y!`?3%es;u7ZD*n zLURRs)Hgc2)8B4*kzRSf4CLhYWd#lkErHX@a*N>u0PwOJVxZ^*5^<()Ezd68$|JQN z*yt{EtVKAap9xwe*&ZEQ9To^9RnI+V4+W2v*-dguhjr=etLL#gG!>iN5)E@``6>z&*{U`SQXYKG5|D z9}SU2tZ0^ZrC$W)&4v>J@0~7SI=OHN6h3v(7dwkq`XBEN2+$xpt3FYmEYyY$3i>MW z1~&#*MlqFvd_CxWEw^P8%!?6COXZ$bx1oLiQ*geXabQa9A}MNwa__Ar6_1sfM1o8Y z)LVjSbIm$<<@vs>6fLc#Z|^2SJF4W<@6Do@Z9ejL0Qk$BCF$Sv&aKtSU%4})m^>)t zTJ<_`%_iESz+T>SAH+TI$Dj0crh9;LUq$htA;Z6M+v9!?0`)St+reQUG@XmC^7Ew3 zy>_hOr0-}n!#8JVYuf^@h|k6Bul*)j2@|j0*|wVw+6a}bUZIBy326M5vf0xX)=|Bc ziu)@&E9{g7O4OWWoxqavJhov#(Up40JvDy2+P(@F0eE`Fm{t|j#rx8F$5ix!(GESo>PuMv^p8oYIX% zJ~p;l@``OWy%oSEY#Kp1n?8&#ce1+bz^=h9wP&)!c%-(vby_azxCj(2-nzbK#qPXC zF;V5lZscJr1`)ZzFeMA<*Uzt1p7z8Q3y@~e1-HXnIS zrXNP8J~1|D5Vke~z0`~tnZ}}|DdO4TkLWETjai2b!jAX~{LcZOiV)@>K6ZRhaxnLp3_}%9!K= zH^4SII;d!KbItx4KCbgx3EsXdVztr13rNfZ55{Sfrup0WJKtvZwV?2++& zM$w}1Q>#9@K!UOK$l zA8UJOF#fa-BeV&XMAbi&)!Bh$sDw}rr``Gl@8l7%>(3{bEff06QYq2PRFGu-JEyX? zJ=nbM;-jKr z$0U0kiFuo1wXw-9>&e6rmDbg=LMHl981J)%`SQ4kugG?-|MUs1xw5$asgR?B4-?h0 zPs-hGEE~Epm@sf>5M*{Y%MqU3$y(k&+T4 zybS79vjc-?A542EYg80s2(-f!4oUi)1(<%W(1)k`5rp|%wrm>ih6E72?33eTim`UT z|Cs{yu~^CyOQY<+#s?len&xg|zyQ$OAG6D3x+eT#ED^}Sry*l*{2LPflV2gS8_mfo zE;m$LiflK39N=Sp%*aBE>M|OC+tdc9VCsX&YAE?@xno9C$y1Q0z!GXEuY(%ECLtk-e+x6~ew_bPVkN0TJi4@2^LxEW7 zq6-Ix;&9iOa|0Y{?zum2qI9Tj`v;)q1RTq8opY5w8VTTP&3AzGTuJNfyQ=zu@s#3jbI31>IO(Fd@@qHXKXah;EdqkS&ctIym5Wx*qUj_b&sbzZ`H@a!5qH-4#{ zIW@^2z0NA`KiuFR#l&e`>LEPzw~kn_C?_$ec8+D6c#ap zBtt9<-&71t=RS2}dSSZGZs1qbJ-e+2+?F4g=oJ*~d~I|vIx(3J9M^#<^QK|9c}s>h z)9YYg;`5c3k34$5;}@8tkm>YxaCZd0MD`1~X?_7yo_EBv(kL_F=~aioBDxebCf%e% z5j;*CEQeW)@s{TbQcS$@Q|61+8aO?lCz4s1iD*OIL z9mg_ajWii)MlsSwN0Ank0Rd5>NHr8G5fwrN41|&}!-$3=Q4tU+QE4KOP!npf1R{i@ z2m}a4gAgeJLrH)Tcn6*N>dg21yZ65L?z`{)anE0z&CWS{pS||lYk$^ftqsWc&V`!f zj2+meA*EoZ1yoQx{c)9=2K-Gj;@&7?#<{#Cv{rWYYeh5hc&l3Q(1lCO)a7FE(10}G zk&f;;RXXWyY)*QjIF*awP^NhsSERwvt!rW0wsg-E5mm}VEYu<57Jg#jF2(5!`})Ee zze+~pe_V4s?u+;AnStWduYdy}jS;h%N>PI=Vw1=~5Uw-7PrbinG7;ECQqus{+AzEi z++#3RlpF@HI!SuCGO*3S!E`AqjHd03{$nAeEK&ESUfoK}=NBtRN!r_i{LG0npPDFC zS5rgUOCTEK0g)x4rxC{OcDF^F96u4r&L|YAOkJBIXUXRCJ^9%AoPflM2 z;-1#v@3J<8v^dr*k-lPV!YtFJ^Tb74Ojl_}qT7e%mcgYKl2_egCwW`MjBZ4Nxnh2S zRf@2NYqS835C%tZyYy1p@QmSyQvT6hggY?e>h64%*<*8@p86ti(lUA;pz0AL_`NaG z>Mt!J=~AxqFJ(tIp2g)%q_l-!QWQHK?l~HwxduXI~hx?64wIpFCQ< zy=Qrqd-Aayb{wEhUEJ~Kqrs%g=_d78rGQI+X$@_z5VaNH`T1r1xb2v-n{d2tdHe%l zVFU;ZW1Z!avB(;D*IZ16L?!)H#eP{%Yf$B(0jt*Xw50O6EntoymwD&&s3d?a?IG)| zT^;v7e)~!zljILGlet8>L154FswQM+I)C6^CIPDN1|e=rJ~Ti}xE<`HzbA9m$-CM( z<@KgDa)w;M=+>1pO*?G|Ktt3MS)9EnF4_FD=DhYN4dia%|2wS>F1c3B zJzh*uoQkoplk|KLx`Y4XIGqj5)m`{wTO_{>#uq32FIIavkefcJo-}P^|G~v;OXq5% zO1AX~>5{OmsYDC5?&K@MYh|z&9kLwI&VsGGc=ZH*W2P%z7Ez+RmuOz?Lce&)TO9YZ zT-t%gnQH1wHv0u4wcy=R-~OFujB4xS{@s$ZH=%Mh9q-F4~c2PkE{C5TIV~q`IdZ*oN4h z5!W+UyQno(K2&6Lp0%oNAJI(f#M>SRhY#?DvvGyIL$g&D3>$m~K2i-%Y= z)hc;m-k=V?csNV}9^z}}*ej%Wx278<@dKNnLe2t(S&!?~U6&F6ZIV55s!`|I=WKq_ z!R{hVB!zj2OIoXnuYL5-y;(h#q(0ioX2<4_ccQDNYR=0dc#1@xfpOZxyXmg^c^QA+ zAR<{aucLV4<-00TTIh>%!2L&ZyUs`S7fT_N&}>BI5ts1;if&1S9zT{oQXvRi4BNvI z58MGVOwNBi3G4o7#?JWZl%9+5I*oJC?vte?cp!CtLA|39kKHB=)ne;=y2m2a2aJ;_ z^HY{gR{6P~U?I{rO#0l|vYEJ4-2{=HM_SS08}{mz&CNYCNIJrHtM+Av&>7@A#bb$1 ziBzY%_Ztu@_7hTAt?nQ%!ysczJx1sp*5yIJ97B0nx(C&@4N>{yHnow^H}H4NAr}g{ zyRtBBl7UrA61f>sJZ<0d(7xQ(6c@Q*XZyS`l0_J0B~mP!8`+0jy1wCynfuj!ZG-ny zeF^Tg+oVmNPKq3Ldoii0+Yn0Yc)y=P5gw?IuvnoKvf!;GeD@4wE61MgRqr*E=+Ph*IFM%Zz%cENT9eh~dEpVo_XF!=%!R zf)!R(EXxTg3%tzmR$@X0G0!@Xs53%@<{3J2x7uKPg!;{(CA0p+YK%H1eMq}~|BAoO z)Wp(l=JXjt)pYUfn15$ml#>6O9};%(1GY)Y)oHOkQC#q3LiQx4J2X~Ds%_Yn(M8d= zP(VBMBkFnpRJz{uj`L_;F2`GxIZC_xUN28FL1)+ z<_m-_@{_FbteT`0BX4U5$Fbf!w5tnxP9cCk@DWnk`-+tw6u#GYm2mjafk zytobi{1V%t|72c zo?)YZzdcBn!_Cn2rZ$E*H}=jg+6tG-yF=2hOlFLseTTSDga~9z(rpHc`^$1)upvQT z@XyYNzcqp;pO!|#Or@*qq}|{IWsX6dIw#VisNW3~O&QNl!zMh(?XD@z1oHTo)b_jF z)#;wI@dGAb)O=RWB>gof-RtG&Rl%31$a3Cy(~hz6Re{`5pg?^4qFuF7e+h1x%;k|55S3D*DwpM%!w9CCXu`p!;)l1gv(O z*yGStaMcetw|<+1fS*yB!&X9yT|T;kp-<2HZDucScrN%XYOft>5jk1>mbd1+&v%Hg zTgiBNmvN>=Hf^hj*-3Pd`%-%+H zg^`Qcrnq}N#=|f}?(n6Nd+^s@3zuv)2x_UGJ-7jAl{KEBmr;Ht!qa(CLyTvQ(nM`~ z`;?}dol0N%dMj!MrB&5Fco$GtQac^uzJ5?$+g1b)9B(_9j%U-P+Zsz+ax;46mvMvQ zmrG_duUgyEK$i>ylZ(8Db0%kwEW02@hFw8C`Duf`Kcg|e@N@ut+2JnV-Ayz81f80m zx6?oSawZjD$6W}!r5D(QQ)Pq;+73OQf2huRc`t+*NY2uY%J^ju2O9NLBKRr3#xX=v zryUU@zd2j_k~AVQ{n?UK`(6STq`jWqbfr%=@4U(zztXJP^X#NK`{o$^CMcWVt(PZx z>I9pV&{iTI0~8cVLsI0b$iygWx<(95Q{oJj_S5{&xj`pm>yu^{AAj;V6TYZPkj(e_J0RWcz!uhlY9MGuE{iP2^q-jMbvY z_kL(5Hc_4|X9M2JA%dEKb%?)AC~)gSdiqYh_9JGI-o?M28(xm=_a4ZLy=qod(L^4O zS+zE|9Geht~dn7QzV~c5uC;qLy#tih9=tud7AN+`U%l&C<1mN8wj6 zA5{Crw!T9_b4Ra9bIoGoNBzdpcA;lM$%_+(Bl=3Y@=i^Z^u7IL(!l;Zl{Z@3cYICA)z!&U3XsxTPh^pN& zC0QM*7OBB`wv$XW(9WWEGbE6EI)-_lDQWc-r~9f=wNEph?I)lz(*CgmIDSf^h?4>4 z@TGm!iGn5yr!Y1JW42_cpz3g!cz{Y#GE=&AJ=@7oi6u7LAk9yN*)r4|sy4y_At%nDx<%;ZO%jv6+0fS+SGQ9+`YM-5#WsI zR|S(S`loY_^BWqJJr6Kv)s%#0@ljfA+}yLw$@%PPjCeklceonmwdTNgDk2F`WGh=h zS87XKGOjygmcH*0jIROT3cEd(vWaf4pI5o!lcj zSdm}{_(5fgc_H&)R||4Xu2(~xOQ4hViB3igRV#;8ILa@vpdjIbSh6XDsq;tdd>83@ z*!T@hycax`R&-{>;y4{E0ZPRn&U%rpvuxI}x?D8i(dtyobhQlsbTB$YV@|U0K5oqO z3e#03NxuvUw=QD-Vd-03=$LU1w7iQwc-5eUwj`%*pbO9$O?v8{_@$TbN{I#HQ%wWM zk_jS@LBl)zPcu(gz}VNFFmuKe8H$S|R(;->#czATRTq=P-Lti0{Z{ljiRndz)wI6E zW5u>HjT-={sl}dEEAMyf0+5=RG6?mNkBdFM7VCLV=|(7M3Q|dKvW_p@1#|Y6vjtGm z{;I(PX3k1XHZUR(cZOBP!mr(^1MbD9j%Q{>@4_2hQQPYlA^9p3N2gi zNqO(o*om}XE-x^p=MgXG%$54W>8IIzTEQ7+CodPNmf_n(3sAYhzU$u*=*kN#c8x0T zLs?V(VEcwbY-d~66q?sVT~UOvx7;zE0(B)}eLQs@T*+~q-Ra+-i?L2(Xq(Z8^g6jz zqlR9Xsl3$p+t2jh#yW>Qsv~@=&f*uBiY~r*QWL(11sQR87t8Bh>kh@9ng0_3!*xtZa$Hr69AIU ziV!@5I?&yBc%183OxfnS=C@zI-%G3Y3Ism29tBd<7wT%&M$E8ihlk^)&O7*;qH_}H zJ$?0ydkLw;2pJb@4|a@Jpg9?#F&OncnXRI)sCu5HJ-FtR3P&*0rk1JpqRN$Q6I(Q< zpLh=C5;x%IS69#?>CYxPyRcA4lx*p9XV&ouU5AUE(Ge-Pwue8P2-DyM#fM^#)^5sz z0U0*tPH&7(RL|v0`>lB}@Xfyb0*VaCvorDIyf=#tJE>|v8j8OFRsRa!`G#Hnz3426 z#R5{xUR@2i`pWM3e}R$w3%U9egcz8@k5Bmu_b#`5&N+aCgs-9v%f=yI5i{ZU3+k3` zeD0Gw{Bo43G*+Nmv2-J1+u*UGo2@nmJ)x{&_uO=Wgl^x0DNO^LBpF=`72LjdPT;tV z1%KdXPcOQLUBp~ASg=(4N577jN*%&_R0xt<(vQ?S)lEd+jh>Jc7H)@RV6JvAnLaF< z+sQZY(%uZLH;+nxLF4gl509uD>h64V!mLJfx@zwCxewx=W429zp#p$?IfuVfKr%oA z-jCqrV$_Y0m8Inv%w7&}<2S7C&mN<}ii0IuRATInWNK0De3A$_AUaulJ3~o@O=xB@ z3*RFaOz5WZ%+Qzs@P~Sw*=$fSJ4gCz^>W8%tw6IrAM?e%=-gR{11zhs`rV+~eQst; zo9@2(bQGn|fp|U9(r&*er{L65k8X&YTy*RU)Wfv|R^Xn)|i%A<(=th0O}cf8Z&=U+=*RhFjC=X z5YAQjTtW(Nn!I+YWtl;Kbpvv`E#S-q*rL8n#~qi0OPnZ<*Twa!CnU_Z9ZCRW>X zc7V;vLE9Z!TdVtmRzX{fuP&mmduNaO_9qTcJwqlnIS8ZLtP3iR!)}OU1Lo@-nU}M+ z@t-LE>jL5Ba-s2(7iu0HWW z>$gez$Y}%UjCyH;tpD8+jv&~@E!eEjuhb%9B2<-%q~-{x$jTxN^$`ONH(ZeRPeR!c zCkjWC<|WFz3YnEzRxXG4FW-Nt+^!*lZvgqfU^^5I?Wj1S@DCwPGO@^~y2kz%AQHrn4zw*xRO6`8 z1xW#SokH#=(Mz7OeM3%|>JFGkg|wOvboO5oGRdz~+3)Ng*>&@vf5c#F$h; z8$W}H@=>OfN?qs?bvN9ImV0BS0fo(Oc8}j)uG=8(&m&K|L9X{I84!Zv{EgcE`sHP?&+4kk;?62x zVhyfapMxz&CYpp~ns+gEK96V(xIID4#mql6GanfrUwjmZI{f-rHn|r9I}2&$KVUn& zh%XclzG((xgeUx*rb2d05?~A&B~<#1BYh|&d0M<|Jsv*}9G$xA!~Kgn`Q?lSO_B8TQ3SN;f$|If&T8^Ytbw zje^6Ir8|XhZPME?xEM-}Sc88|GpHE>kMg=wcfHQ$dD6q6SnPG@-rR~pj6C1)it%;7 zXJR#?c~ELIRWTUlEAEw=)-eO)o}Vx?5a>y_mA76o6!PWO_{9WnyTI}(&&Rt5sx-tU zq%*6QXJ57YFZF4Qp!3rHQ{8j=q<34tli1Z5GXPdoGsLK~@& z$*MC+NH4fXa&HdAEBlxfYVFfzx{14Jr%>IMf(dwRlO<{_!Re&mFONhp9rMoTsW!=q z%ZB3FF>gc5<8fHo0*g_~v68|E26BJQKCW0)V_F#?uVQ0#BZ8KPaNX1TBgYPHJ{>LFAGcqnRc4krALSL$UqLoZErnZl-GtSX~V->HYTYmJB&9Q058nz@JXzMsDjUx~Kz!NXH%n2ac_?@sHFR98jUnZERwa=LvzPCsUz zggpdYu(m&YkqVA|vaEtwhu$MYxOQ@?OfvizUk!rX3(0P`EKD_^6gQn(!8?Ba zT7(GBvM(+S_3=l;(Z<=KbLh{s&GuQ>jo~Xx6GxuMTR}xW1UnZ4ey&cJv zm|bu({^+j}RXd_J`Ny3pxii-pNqKPm8<|o(M0snNr@0J1u!xEg+gW$3C>DkL$E-a5~aA18@ zXc~r-=RP9|93=1mQg%QosCRtmL($3{$TVEy3+k(=zSX{Ic3)qURroz6t4wLbXh@cc zhLVn2Q1P)*+|Si@{W-wl#TY3~$TVp4?RZ$y@U!AB2!AAJmz)1)fWa<%Hv|yNlFNFH zkFc`WGd%99jjQ#>)W4Cee-O=RmvEdrW-(FxCZq#dh0=(kDDnF?1sS%tg|GZz+NWi8 z-Fm2!%Cj0pefw%$D?1twzv6$c#2+eFe&XbfCH(m_9JYl8P1#RQ&$- zyX{ZV`)G9dc$Hsr2_HED?i;RJ1&d-5escx;3Ex&x{jmGeg5tUk+xGYfjX{71==*Dk4z4wF$N9{xLPva$!$(Tf@{@eRvf*~oi z+)>3jtK3m*@ewoXC)u_6Ha_gP%NG4=byWpOOFcHJUuMdip-#vb>lcIjT#aqp%QfM* zY;=tQ+Y<1YQMG3!y!s2v-fZjD;-INf+hgJhx_@M3d@nfo8}?>Pcdw1W@}KzDx2vPb zUgH$~x3gKcW5kG)PPrG^c}+!Sy8Np_OO8dHnu(W()g6G)28^*wm+rdjzCVvzX|RLz z2KEOQYr5UI1@v~+Y4zip=gQx|USEaND)kfRgYWz>_J$j?1f1JcnF`Gvr^RV$39tXUBFGi# zHtzlAfd+uqZ3!nQJWg2ic`8EgvHz&i*|=BB-GDc?ab zw-Hj0x%_>XYIMbfjhhjgdOAcmUy4$z#I#5q0Hdg&hHKY5&6w7FYhHvGOjQ(MOT#2sbyD)1_)87{}s1H zoM(rAK6}4nM4=nknc2`5GMXxMev9Pml#4d?#w%18G8A{CNI+uTcf;RrsQ$A1G9hFB zw#R3)21zs49f<10r;a<;g>eS0c5#rMf@hEwiuIlWhayirVsBCw2I>Jy?WR8S?OCSZ zyOcMn>ks8Qmc!a*MaKrZd@|Od{BBgVUN!3E=QUs1O|ga!4blPNWc16&j>VtQhZK`%Oj)N)G-P|X zJH=Dy^cM*AuO{<%ax72v)df^`yXtC7itM#bhAAZxGRUDj#lA)Lq#O>|4jVT0rrk4mX&9F`z@HoMz%DZF4WX;32Y zba-FZ)_&bdSRc-r+{*0k-cyct+z%ZLGiKxf7WZGSnXds(_zFVCWwzw_Ldq_CGX#!n z>Y~zUEXSG_sHGZJQt#~`zR!Q~Iv{-_1hNujd_u)63Aq~)5&kwds=g^+MX{PXNI!Z? zrv&(p*8PU{;y7-Lpp>}pN?7r=de6_?LVXy&xEL|Cyrn(Zg%X&}F0bj(-Ot;i%xO>R zP$3Q_iFwXG*xClU*phZsToti3`@Rx$8Rx-SWQI2JznUsO0~{O!F%%SP#GSzDv(OB9 z@{s3$nh)b|6MSx`c`-F>rjJ2iXj?zG`tYs|&&JxVMb-v9@iWV}-o-&g;}#wi!izoj z<%y=%6HA_bIz2(u@-fP|=$LZ18`qYhHrn3UFL-aDdT+K^!K z8xQn1`};VZ8j&+@rz_2Jbts}jcKAQ|yY#IC)5Pv5V&`eyO)NGxH=zv7Irtxx$G-?p z|I^W||LKIHzk_A}D;}>DcV>utE9LN|k25MM)t6mp%S*+7yn5lu04J5>R8lc{>SV9pbU5Rzj=zV9`)2 zK!@TP{?@!wRTOd5;Sg*_wxw+Zxl-hJqb&;Xx!n|Vn|T^`ck8OFkUBPPPXTa0504P{=lq( zdj<)}!!b7VG^+W~DUedq@x7c^KY#{te_xRRu7%k8Sz(&v6%FgMe5xTkAv8pTYRd5N zguSu57t8)FwyLZqrlcUjqPktyr7ORy9pd7R!t%5^b5AaEvv#d4`MGiOhbdTIb?d7= zJ(MTmXpIX(IxQL7xvbf=_ykc<#I8Js@oiR!ZFLV1M}!BFVkj}5m&X&uv&Y8tdB2kV z+on3sm7RmaYPc!0X5+=wR+a+m!I9Ybw6j{c$?l+7ZvB%@*pi{7(1uKIz#PV&a3(yi zcDc7sHo7?l+IGD_P-$m46%%rsU>S#{37)-cEsxiMQqT;x&#y{8PDZ%ehG*S6_1M`( zH({{hcY*MLNCK(hcK9oWy_|BV%I?ezFyLP;k+9n1mTl`)u*SzoO)F}h6q_R%ob3=% z9wG4W-xS`%ijMTAT87#0KsbpI>{8y-W>n~p07@l)*V6QaEq!J$U7VNyE22Sy(3)Tv zpWULxu-H8v{Afl-c!JxjxZBFmLEL~OYG+$?8bdgqnxY#FpJJV|s$mj|^T ziDA4V2^+3*nKY+8?1?~w?3K*5{|;y58RXd)q`kH*PE%&3*T{~0BicEelP|*F3?=wf z7ffd&)hWi2NeM$5(V`2%YX_~aWwrL4{Mk2b7-xeD>9jkqYpk}5lJ-a}R@Z_ey4{)FN9vyYC&|8bG{hgoG$VsXc9)Y}ilZA9o&U#rdU z_tX0`SAuBkt9?a2!f1xH5VE{GhJALC=bc=xjb_k2gyVL(v+B54`xR4_hi5CUE>s=m zaQ_gLvK&`gNg;~e+>_*Gn96@x6Vvd*#h}Zu?lJ55*s4pHAcDEUB_!;Pr(SIG`YUen z?&%smv@q=4n3Sz@4X!tI!t?P&of~-v^LBHxw5s}5K{3xq<4{n~ryhwZxE8#v@ zZ#U5Q#?!eU_1T|YIbKf0LZyc{Nb>h?(^rMzE&8)dXJ_3{3Kw<}&MdkrmX_4H?glbh73Q-XLHoN*)9}uxhF6}O1sG`l&#r=xS$?^S+vk$ z0#`d`J5gNZ`L6OEjY+E|;bp~n1HEp`MqPx?BuTGSEp~uOjiKG&)E{tk#jbz=jX;%X zV@aN6T-x(-%?}r7p*GqOPNzC1^oh1e3Nm1)R~o4dd5?%_k_<&s9UZzL*ar#Gh&~5+ z?kxrL9;kN{P#6&fZraF=00A%sd^6Q=$|C)lzf4Q|;=1urm{<^LvVsLjbo%-1P?%^UTv#K;Tuc3G8t=`5e%t%oYs zXh1s7Vk`{!xF9EyP4H=rpw+3SSE!gg-F+%Vvou0b!}9Mc-y`mro(}fl=CK^nsdVVZ zp@1sq+0xKl`hgRxEb4y^>8jc94lfGmviCSAf8Q~5O>a!i9vyE9V*cMm7~s=*bt{@W zleBUK=g2p@Tq@UJmYmLcYrCuf{infKj-mg^Bl^}u6or`>RzmQBlVBR z{hgZgUomd}$7*dSa8fDb5eZ?AQg!Lh%Sj6di#>N`rQg@~DXq(sU%4ba(9=cK{&9`c zKg=G;t)*X*mg$`U+2w$x!YgGk$$0&xx?1Ob5xz0BM0wE0UEk4;zBCcG&9tTt&usfW zd-+E9K_D0A&CTC7w_lh);^>Iv3-$1Q&a9SZGxDA8h1ii`Cfu@fFjtF-;>An>rt`ug z;C#NGZAaec6V^`X>7j6v_?#|3&CI#plHOac)Zf`U7H)-jcF;PqwK``Sb2CuA8e96( zlVd2ulNJFh*V(cw2%2BGKoG2{jR5)o_Tk@cK9ST*hbF{Q2m(iS{8KqwRgMe_Z6ASIqZf3q*5f zZ>u;9Ykq6|`%CZ`ltf_H&Z&~5Nef=xr5q56G{>^X|?RAjBrNYhs_QiqpllY3Z zgJy;#^UpUNnXT!EA<6Geo+k%I^+}X~MX!q|RG!I@w>`F|k1uMEd&l4n(5f~$B;%+X z$)et%G1D57wtonKbo|>u3UhYU--o}$f@Jjs(0pEWMVX#K!e>2&kVNe8v(hH-bkqFb z7+BJ;i;9~A(($a$JR4_S=;Nokp`ET{23e&<*E8C^89fg4u(|r`L)yc3baechi-6zd z`>ADGV+=+eg8i(1tEzCv^H7kisnk%YA;@8m=K4Cd75h8L!GfO{SOH1d$AA*YgJ~?e z!Ubbxen2XIIpAS?q@ zH2$HOb^izs0Ft6{EGy{h1`{105>;9dCI46~2eu3}>g;)ihkV%izfXgTy^=k3Z%PxE zo}E{_Q66lxE2#3*i&mSTk_&36aDn-5;%nAzRCrOhFfQy>jvF+Qd>(iG?ahPBm(l6d z`R2p}>?5M9*q@OMisr&>lljb?e~9)4`(mV34fNC?B9(%=OT!FFUpGF}zvL1y2qclS z!_6@vujYRprkoKPT`(}#*HXJQj=V^+J31h;pezfnF^4)S=sIl@R>O_v|0>C^|9tv? z6px24@wEnhbNRV1_Y#ai%bzN?O5ZJ8>tp6z-`sT1;z?q=V;{2M0OOva6Ntd(2|CO6 zmgHgy3>y~Cnb3OPWhKh-feQK%kTn(0b$o-Z9a66RH~>*&q7ics(2OU%)Z)2bm?E=t zYNhVtGDhTI%N^kMqD z8OLaL{ec?z236OHpU(lZH~;RJJXazg8{sncxhY<)T0X+TQP@p>NzPb8%)g7j0Xy&x zG;FRE>JfR6;ZTW&YjD8R{La}5oT>cH=*A0*2!0cTI&kF5aJJBA*i)VPpE zr^Fe~@J(f+tzZrs;gK?%rK{*|3=*!hV_AyC4WQUUc5Z>DIy-2v!dU!dcs+_Zi8-(Z)oWsUBRhDqx!cGSPoFrvn(DK49gfeWX2)(}m=uDw#XkHdq@NVP2YvCxfl`%P{*aed9GL4UDokOYE7Lf!6>Im=h^~EpBGI) z3PT^Pj#~M76%P7|1B(V>L?-eb4WlX))ZbNE3+I5^XikI@W+~;&QFW#(1YR>$2c%Yd)h#2}Ur|BxnV4&AE z3uFjMkA%F;Sd;JDgT6qOuB~uRw+KbjYS1S@!OD?WEDXmtEyEU0tj1`%Udiu z9eel@X~n;0A&yX+jHzpk!30A;&T!KCKpNkpfJQZ!7E@-c+VJ^5g*iMQ7R)-*v*W}b zx`{s3gu=R~lK*i)hU_4c3r$J;>Db`IcsxPkpM#-N3uGOaG&|vC$#g6zu=LnNLDTO&9XD&fZXDa; zZe|-TdK%3X+;gpVwOJjR3-)6+DP<11)uIO!z?`X+_NrwiX?hFG!TA`^-5(!xMq}do z0SRGrdlm#{548iq8jPG(Y0acQg}1s@BO(p0I4Dzsne&si$l>1VmfFc+dO5U^;Sm8v zsvUCr#{c_*%%L_+eSC1o-L&2y-XW+v@0GgML#Ee1EiJj41W%KjAlOS4*B*CZYG_>1 zN?89lh~cZ;ZIU}_xG5QfxRnlQ;H=8iGXK~TtV+gyuU-6o&YVPrAV3Y=8~LvqL{GRD z{l7f30$!zohRytEZKKOKKE;G8U z&{(y2Ci+{((=Xtpfd2L0c^L6-^uN9SM7sx9@>>eWFB`u9_Iv&S@{U6OmQfi9@|65< z^=YGJY&z^q0*t?M#{G_`LjKVN3_zx~`G7eD{$ z8x7UO`r%J|ZrpKSe-b#4;;T`+2DmK#1skm1W&JBEc=gWaU%y_xQ~hhLUcLEE>Mzy1 zdUssnuR&V9Q(pg2Bp% zKKc7WnjrqPzWpVqL`2PZMu%#(8cBDVftZ<*oZt zq8yb0rcG}HPJzJv@TI`wF&R%T0n=mv!Z;9|4_wD3j7*n4Yy#6Rn1=J7X++`4X7o*? zOR8V%Z@H z8Z&;Ejt0OJBRI74F7@F!V24)y=|rT9)H0IC&^)|!SRwK&r)qgd1Ma081zZ3C49&2_?B@h`#Lo9_0xNEcfz%>T_o4n(#Y71-xYNEc;*mX_HA2l11#nKGb`Q;^ zub$SidS$&arw_+e;OGBH!J{UA!kE829Nl?Zs_*oh>J@7=hc+9%*ZxMG}D~7lZfx)%$rc&S4Kny&AlH4QQ8l`?=RX4lg15*jmvD zYKuQT=Fa`U-ux?FX$*LAC7$dW2HQV0eu(dw9F5sOl!76{6C0^#_J6RGYiok(Utr-m zcMJzXuDKDQDo z2B1!wjf+mvz6msQ{&z259cU>qP9**?!anMKh^AUl!xI#ZQTT@Wx?WDkiVX&L8Hv8H z>B09?-nibi`|%{x%J92R0uvwsKd-R;mNd1W$Q@x%GN)rtH%~R+SRxtb`&Anx^get| zac}U+yjK7_nhq5()uIpoaASuFuv+afd2PF2mY-S$rl~N0bg$=azZ7zyt%V9?^fiCk z#8ygwz%H3{@>BFEgBBWCI~^T&fT*9ISUfhc?$4k9wC8+^cR|HW@`sVzDIW(`pW>vr zMSbdyHYx#SBO8L<$INt69A8S^gpqPFzW?zau{?#ja#3~hn8lK%@?VX}QERJMAVFR= z865s$VE&?GI`^^0_FMeZ&J0~>Z=+|3eQ=2y+`CjCR#_Wyow)cB9lX9jVXUNJ*8hw> zs>f}#`XtNJXnEhaHYF~_%r~8OM7Yl>q~HhnXLr@P+_UuEUvsbXp0ii!>&_Y9g%OQu zGF^5UdD}Tko7CVC5C*xFem|LZ+gp4gVGebsOSiG2=5CSB?q8RuUYV`TREhuI+$%$p zDYmg4ew*@9ZC*=)jj!gB+oO(95j#_($zJ7IdmF*er-%J?5ieT1er6xcasp{6grxNw(0F?ghB*=O=~!=0^uH8Tw_#|ku6xo6g_j?n5b e9YTjFFRdv25}!-nwmEE7W-ZOEO-UvfBmXZ~&-Ca3 literal 0 HcmV?d00001 diff --git a/windows/deploy/images/sccm-site.PNG b/windows/deploy/images/sccm-site.PNG new file mode 100644 index 0000000000000000000000000000000000000000..92319fdbf7f1702ed595c072a496904ecf95b5f8 GIT binary patch literal 42269 zcmaI8V{{}@)Gj!t&+qN~aZFTr%UfuV*KW?v8tE;+e zRiC}j#7PpquzrQY8@+AE0*eJCHt zKYYLVVj?Ij_~AoU1l+U!*Y|4}TZv!xA3h-V{5w7l*c2Lm_>fyIDI%!iqH~%Ct%pC? zRF5Um*2MAtdXu$2XaoWzge0s{84=GG(eb{K{XBr;utu9#dvKBu~Sm0FtmAVme#1=Hw-bJf#I*H|4~cl;!YoC%gsVStEZDM0Sh(snEfE z2ON+uJUysFV|3~UYcw0sb(3r>D(D10Pvh>ysgM>l!Y=v8(Zf1{k>(_sOuH z49rSu7P|SR&eLcKS~zn&s0V@-1!9bRxpYRhEnXuJWCW4FWCiNm@5j08s=h0rLrVa* zqOI+tewEobu;jq&fdjKBGha`xqcA*E*c2ngl&5F*uCDeBYMI{Qdc)_cImh#= zDe&;H$@*F?V*eQmkQlX2DgAHIlKd|>*ZeK!@AC6opJ@0EkP-88Aq8%^_N4~DfSSI^ z(surN@HolwWOu1yGLQU210cF z5$h9GOnEr`ypRRlapvRukJ*c^9)@Ca@;2RisFIkV>dyMYeEpzhbTr!D$P3muje1(s z0K61qw8GsU@Un+an{58XUqzmL<(C_{MDGVd;TLqdVh>Mf(&rGAmbe3dpQvj}ZL8^o zQ?GZbLaqB9lsGHnoI$?6&uh9!*s6RpBmhKNVx~lM{ZcEmAIFX7Cc#=Zy_C7csG6$( zV0nZ4v~4#yS#uch9S$0;+Eh9~N}oFY-VqTQf8g)u%T$Vlde`On5w(Dmtq;Pxg+S_c zZ1mO%Tdl%kO@`1B#<&5H7;i$BwakN<-^k3=)fImn)iLmp1xKV1w}M}qVNC=jb6k)J5alTV027+(0GB9fn= zCojd+E=egSp@m{#0E;5`chV1)dFGRpys=b1A*O7JGk}0d;`@wB#64S#BZpJJWiPj7 zy}88>({!}pu_hvqgc-bwTlqj?M1xzSB7eo+T!>EK_R1BU&-ZV9;n*!1tok>)3V>e~ z@aNyl2796(UhY0IFYp4QOtvJnVB1$Sd@bh5_0(*cUYm=MN!Q1F^D4-?FDLn*ZO1=8 z>$!btf72rg;71d69b8;WL>v4WSHEp1)!J6?QQ*?wMt>N5nttYX9oPIMDE>$U%RIl z+WW^RU3!hsAqeFW$8{DFI806gX3vFD=6&NOOO?4o_>xp=n(S?pxgIC-L*gz{81%Y? zzBcyek*iwakz2Ty668Q{S00@qi~gFSxJ0z5i0gQQu0LeVK;|V+kYTco-o=q_ z5|4ji9_E%U?0V$RwuBH<_x3O-aTqD5(ii60%RBjzrM<^P&hkQqBIB<<^*JK}QFht) zZ$jRG)F+wD{1*wL&i>Z~kQtq*A`El(L=P=04>>3gei@oYLUtdD^xd)pz0Uk)+`Bbc zX|0DLo!{NOTFAb5s++@Z;{QszCOJ@NW3pK~&{G+K@E)*QfP)%Et%WBfelx{yj48GT zFo=Ds8xl%CvXx3ee(=uEjumu-Ey~6VMziW zC_;xzE3T20$`iC%SD`3zN`BbGM0l&e3v;RclwCB0pb-5AwrnlANe)xHDJQ(VLjQ#E z@izU=WNe1~3#AOLty?U;d06^L-tL9Lt5JsCe#aUSp_PJtihw#B%Uj-jR*z9zPpt}V z_tBuLC&}T(lA*<>?IHZ08EMlv8L?p+9WQkG0Nf;#|ZmBruw zDsNXAZpmLH{3Yzywa$p>c)oS?aQaf~Gtno=d{$Yj)I60L$6Ij$0W|}xVyI@ku;W0C zp~F%PKfjcn^`M3#C*y-(h}wej&e~DDQ*JQpMOytg(ZsfU4#>assgtCRv-pgMg86;M z?-`TaBT%joU%5fJn0|}Bj=^+^Tp(t#SNl*|E#h`^;2W3LG&Qo`B6AJrmWAH*xYfg`9Qui@q8biViDmqeX^w@Yj}nLh>g@b?T?*dt5zyZ^TSfT-Z9?{JMAr6px7lN&d6)QUdk zVIQd$_EMWIkeDv*Oa9qCrn-vHgj6Td1MBRm5)~z>NJSkDF>iKL0l-E=X@l=={Jrek zln7adZbLOj%_92Ua-SnK0OIZ0S&kS!BU?RibWXqWWOj|)Ozf)1$L^kc4bA8IPj9W& zcBH6-rmG$P%5OgO1{v)W`Bs=j4Bycj;GE-tNDBkE%XI@`?-95+BV@nhJ^afMWT^QJ zjw;=nK1tx>w7HSVizO=fT~3^Jou)8fdRP3|ls}#Ujfrzf1c#NreB(m} z`{a5Cg>r@Yd7^y#i{qm$sEO>V$AL(`OX{PxSmm%CnLHQJn2Wz6aBRo>;)=#E_eJ}L zve#sQxP}o%5M+3jq)JIEC*)$ud?(sFBP)n_SMd3Hu1?bE>mo{ASYa|VemISwj0?Ac zvSt;B0oK;E(^gl?S?88j-(tE>1Zff%rEIpn)UdFUAnDc>pvpp>xIJIfvsI)9)-0ft{&E#gjPU z?lk#P%~O+dEQcFTt+hnvsW%u+?j)Qm?J=5>wBq%L?vb>~ja}3KO7gI0l9uANzS*@IVN)s0F-qBHNOgg}IoLpu>l*d-kr&8T981 zEZ0QlIzsoM!h7-$y7=5791U0o#~go=lNEj+gpuT;$C9M2zb&at?k+`|*wh*)?2yHL@DW%AU3cS<1>xI6&iT2(K zI4;=)3c z$7bLSA!dPo0Ekuqoch?DC5gm*su@xDGLW7kN3*4VLEqQ$lzOOmWiRN4+rp@v1ijWr zkk1<7Xo)4SM?132U_HPN;XZ1Z7_(xz)eJnfiz_;~NX9X;^=`RpS|q(`a&SJSad>`xDP*>;Lxrtwq=eP@s+wNv`YPn1N2XCyu11r7*_vL%U^AkwOOFm5{ z83mEp3kX4ZFqVB#9D-o8*igWx{EduCi=g`}T*9lZlnE0h=Vh4!-zMQZuH9oszgl zr|Fo*5v1T7Z<(f&n{**RK?dhjGil|EA4p*O#VZQchfVh zOxI*OQu{5k8I!K-Zlh0zxW@)JoGkMWrwNyfSZ=Az@b`^T6IL@@?RqnwU(dOY8Exb4 z32`ble<8Jpevf!W;Qc$5)Eveu<|%l*h&~3&=Pu$c%c$igxKGkaH}60(8Q<4wu|TaU$#$&5ysIri5QyNsg=b{BT3yaIC-|yAr{U>_J|eP(22 zB=?ZmQ&*cRPBRe3750BZa7^cw{!f2?*;VXa44 zI#JmCJaDnj0?)eH2v!W-^7Xv!nqMh9=Q2>h^V0xBP=&jHhdkAn_wZ0OmYzE-gxyGk;th5ta<&N+KNe;!;aPGAL(*-8|kpnm{xGYmNH~sPk-evZT2mH zZx0Y{24dlN3Cm;Y4IRh17-`e#XsiZV>3aHWG@EVQpCg&Xk(3qU974=op6`k@u0&Ct zDA-~?nvl?Upa;8x7d^3q!XY1O$OVF(x8+HiK1dLM)_v@CO@vsnh3}mAr%pxac}dV` zE0;vZ68Q~K@CNkhBLs~j^p#SvR6W>!jaIUYifzJ}8F>3FjWpHtvxEU?R-d}Z5M6MlD*C=<3*YGRix=H&K-qdQ#Agx1+Mj%rlP$)UtBizh?NWu z$jQ9n_QKNsK&A$wRANJL8b{LmUzHj zw2O1M02wxm!7-qHi_7#&Z8KnttCrOQ{21T(9MoqEK5ejl#owBB8OH{!{oZm9n}M}q z+b+*3o!0LUDPIjMi(KP4qXF6N34ZIw2L+8FmjxC^Ix_*0uU%1m;o(s6ZVQJTYPLN#**ImaCSeKXV&R$^u zPVZ}jNsSUCtUyrZdTTn!{rh5)0n`J2>$F1a2X2*JGaeD8RF+ZVFXh$Ry&Zg(X*T11 zb(;8$ZNI(Rc&&h1HhzqP(}rY!=89{BFCl7u2=ePa>r3_K4V-h&iPW$|ZdiT(K2KyS z>R>>xWZ$s4mvYu0LRuzK9wagw-`DuK2WoV>k_ZDlN3jP7UdF&~9s3VcVq9Y;Z`};7 zNhHK%T7Ob$hNdDYvjjIHnX(n_uAe0_gn`8)oM|Qi?YE1XoDD!?{z~xueE;3im6y(5 zd(*Y!sbnC__-X667JKKM7!bkD-xJqzr0%iTWljEW=@yR;V>jGu&Lq<_Z@~jk%<@+u z94iq(kw0phk{_D%f=8yzUp*KC`&72n2(C72()VBl_rL1YtKLgW+9EL_!m{jZ^C%Ir z$zs0rb&GvfE2t!Qudmk47N3igQ!bYR--LRzNP`d~x>Ic0|0n?3&iN~e1l{j|$MxSW zmu|S)ACKTHpLgs%o+~CUHv==aPrb{8gz}wcB2@BpnPEtbmx`d~fwLM((FbgZ$?{c|2ryzB zQio~8(NPjc_Gd$4PpET^_DU$;eK>`xJqo^q@E0`uRIV%3~!q)loUMTA-Y+%-K^~L!Ak5&%%V1SB0 z`_mJ3#Y;B1$*?MMrjOFXVi-j5lP((ciGvu56c0J9pV3n|p!FBd6j~egPynFR*U#q5 z;iRM#c!5IqTR9Q@LavfOq@*n-?Np3}KP6cx>9D<5&fC`|$Z670vW`Yr4W=cw%_*Uq z+*H~gIvA+1G-e~@x>Ef*e;N&%VJJ(5$@6443t*Sf<8{G_TL39>4)|YlhIfV+5X%FM zpzM_2oct8@9hsOzu0|5&0s(`y)F%@3KOLlS)*d$Gu_2RBi;|~O$R2w=`(}B|6pvN~ z)+bINA6vI-)3Jm>%3@LU6ee%vUtLd74yi*#k@G!ff`)!g1;A3*Ri@#M$3~t1MsTgJe$>Jrqu+#}^JFFj256;5XPY-_}P!^jD z0~86eYot+RY0eL5!z+ZPs5+43`_r|5LdhCyYem#n8}FzqxP|N^-S=TB;EmuG$uPSE zE-A2VA+_ccIbHokUvlyOKnD4F(3|Mb71*i zD~}q_XUOYjjCmX7H52B!gwnz($jSGs&5H)H&yYB9kI%d77S!f+%0$|KMj?yKgZs75 zFz747@T_vkAmz{o+V#*VoEe6eil`=_D<)}g0bkU^n9yJb?!bVZ6uh-<9}=Y|BbKHu zQ*vcMMl&2KD>fW42Wh)<;oggD_6bWH*;aLj%^RY%%8qj>b7MvpcXj|7P6oGj(;EW| z;&{qxx6Sb6A<;uCEK;1FX@EHjrS@FZW}MAtPNX`DrpRutHo^=o84ha0XGxEm$#1>6 z>RUgpxvHrFwuas?tCk8l@5J8Amsi{i)pJW#8q@!uF!=Uuj~7}}`lL8kXiA|&oS}p8 za6>CY@DO?$;tcrIFy>%*wzAx$(V8gugwg2wqP{V?Xew_K6#31|ueD

    SATPB?YX8 z@W4XvrbE*LhkPQ=Hl@4tj!I zf5y16EJ%i1n0zE+RvAV|v0xf32&+Aq%gd}lExk+HBTr-b6PKVsDG9e#-Zn89{XG#h zWN+aWdid0v$sNfmXcnHZHVez-JkDGd2U9bo8nVQz%k&L44D2gR%C>QBey)w6GJz*W)xrqE7lh{NspOI`Dt_V~G5y z4k->YH^f-@?yELx)-)HJPxuQm7BbpO&P{GNq*cU=z&8qa$Zfr;q9&HEreoZWc&_Y9 ze-vb%9larMJwJ^g2*(VYQgr&Ij@aMk=YMoM#NR2C$R1y5mpGU(B5d43Mfv9RLDkvZLL zmYkyeY<78jz!fsW9C@+Az^sL)iAxTRY#Iz*_%LH-f6;?EtF4y_j#jxM`+inEn?eg- z;aKg&X>rNI^fH3fzaKwdOyd6MZd~9r^<(Z<19^H&A%No7;^bq+83{4%31cg44nZvW zE~qo8GM}`=gT{1XdsSoepZzDj_-9{NQ(Y~vDv}xyiCW^uZk07tO;4FB@nYW{L1^J! zs((b(G+|#&)p5jDToDHeQwJf}?rq_B;R<${<-JeyN}N5H=DJ7~IT&p-D>&>bz;y&> zbq?Cg;UGE(^7P5&zKB&wzA%qdf6|2LJAKG$bRv`Xuex1X2QF-MnC;tSk5F0sbk!y; zUdpv_aV$|3#wt(Vpvy_hyYs4pRW@@Z-EAGmXypO4vLlzF3fzCPcNF%cTH8yke z-KW<4lu>EY=Msl0^s4*zHV^O z{sn0{^Woy+PA)F`J-Q+8Hz1Ae)1|`xj|#MNssTCK#d3<}^#BcwfvGA%41bomIC^UA zxWGbk)2%J5AHd;lzwRb2f7lX`Vo^>wSNP1bqRpS~R7W#c8rO_vCGEe3%Zh4>IrSb| z+B2D3vk+DLMjpTuC7o>N5$}y#$tvTVuBfq~(ckQSw(%ywda+l5%NYk99g)SpwH6-x z(9f8q#ky!tn?Psv9$y=d?_@%?^T&t?wHATEb9VF>iBI zN4sBahG8CBYC598go-+~a2()Cv4!v@08jRGyBb}kqlPY3PPh#*)oSW!|EiYh2$yEr zB48T1|9I?xXbws>d>$$X@hqmlU#+$-?WdX={jEJ8j@#!X9z33u_T&DZM#OhRzefFM z=-jG6jtb6ETAliG-5SFsDO#Oo)X*UR-cOz_E{Cuontw#4O?6F%P+@0&$IvA1&FcV5KRw^7gBP@*GMxVU=lr$+d>`g(exP+?BZT4^QkiRxP6yr_9);U@HGI zAGuY~)X|3E#?$E*+$GTKmYgyayr?(P4%dWDGvqy{Sxx4=qNj3+GXg{CJQ10Jd4Ak=a4Pvu?(Udk^eb!kssysw{R_v-E6Xq8`jUyR!C9A5qA z8&(3BZ?_wb9O&XN<7e#K)v3~l0j)B?sAcn)a&08Jf&_6>VAKFv#K(Y&3Us(OCRWYa4!jet{D<&van|pitA`zaosV)3qr*z@q%kB9T@aK%;Z_G5E-4he3 z9?!AuD{QNX>2anut#%!`o15BW5JH$;xRU=EofRt~zuF!^MMbcx{8fEYpj8#(D!xuw zz;2&PJjX9(7$zLPX9 ziZwr}vrd7~WWSGbw@xUeV#qB>m~nceB}@sqHp%#0QJZ#1iu>C`RMN$ALi?e78nnD? ze2xqA>g}|Y;mTx89hH8G>O0DsT9Qy&k?xx1I)HC$&9jEUL}u)DwZ)Q`y9o(;htYNB zskSd;V`ZjRe8uA_Bi4l_qCnXn<`(9&nlN+E{N!;x=l*snM@=#SggNFq{IyKNnFWw1 z9i0lrobK4VvBY7aN5E6h5_GYr8(zx8ip;(^nuG5VDP4OoW4UZ5Zp+lG)KSb)GI=d4 zTO{dRPF)ot8@ig3V&Fxb_eDCOcWODnEq??1lR+w$&YSiXN zJF(!iUa=>>-S58X7%Pt#T3$805V8JLUS5<}Wi3F6TZrH&4r#uWO6Wii>DQQH!o_0M zNvXYmETMKm+`O-@yX<^=)@Y4h?%CyFSHv^LS1lfRdT!_Rzvj@wJ^tHMA!u|5f>mMGq)m?%JJ(p-E?W} zQB}ltgtzUwEebCxpAj0~^)NyusNI!I4#@{aEvUZOUUFa2d zYv>80=d4j`pL!2p!OdZwZgE%bin{{abiR^ zI#1cd+G_R{rXX#)(3o) z)E_wB;E4dbm24bwQd=Jw8kH>r|{JF3iU%y5SDQimyssAOzvs zAefq4DMuV*(Q3)Ka?v&TZxy8;nYRaTE)*xaJL~-?WSrIRx5iR$*%aFkkzl%^!mpQJ zh{5-Q6>gigU~{tIwSOqevfj7dhN5c?AonRgf{j&AnC?{+q=8DFG&Lx!$Q%kF&mw1* zOCOY?u`sRcj4`82HqGV*NE=HZ7MmFUSTy~Uu+YvcwP z;g^|ZOU8~ys;#$D(=!0kez2&n`&YcS8pET$l8MpOJS@V?r_j6_$ozujI+bvMF!TK&v4)}%-_O$_RMsDaq&Ae| zN}^=RxTbk|YN{UXs-~rr=^s=SpGq1thFz!2^4&%b#fp8#)mw=5w~MlG@@8%3YIpHI zZYMh$o>=aj;yR08@_o0ineu9vEX~Iw<)*>+a6|SwdO+gz`ni1`xZam`PM~^dK_gX& zbYNT*+>du_k8q0@(LfF0E5Xa9CX8T3JnTQbNJnY3ocx3yQ$$dbStWI7zO*y+P;vmc zMxYi@H7lhSxBvBVb!Y0qEca4!yTIo$en1!w92iHV)3f!JmGD5UBA{PGn{Czh0=A73 z$x0k^OW^e-(1rXNdv5((?FXi;9MEoNUt#WzDr@-z_nfWkEPp%KCg_)TiqB583wM4^ z9^)-~fJ{Srzn9gIx+rV(qXVr6m=6t2K3gTGC+ag6d4IYAg|vhnakHl7JYC**^;?6HfXdDzPlVQn_TCZXCxszWse#fin z#Leea1(7!wyVbJAQf&{>?cQ^kP3H#hV5jKIQYD*B7Z>tNDi;?5Ag=gl&r|1PwmG#z{X|MCs8*n$p16i5lub@oBVwQ??5d3l#HKXzjLf%C8#E265Y9vgBqsWy6FS}@X;aImznRWB4&jC%ub1pMI#B`xZ z7$}e)0!iRzynz_<{lvm~tdzFtqQlC_S{>AWEHyrB&E_Edo53|(H+?P!N&(+3OmR|{ z({^VSKy@Cg4da2 z8)~y+`?ZUo1>h&O3jv5zNxcF9Fg22)*V;HRbW)jMArZ5@4_5`yw!p6k4)qd8< zhkJ|$g!D~@xQME|MFOrR*?2?LxGk2AvJUo%xK4QVJoi+&^D|&6E0onzB^Myes>|e< zr7NkqG^PAUZOvvJE-4NtM~4}u`IRs!+`nvK(VJ$DWy()pm+@aZOdzSBCZ*=D7kKo*tST>SkBQl$KR3=VpU2=@w3#|2FZ! zs`o~C5sw{}&+(AXO;d=>K?Hx=~QPhZ$%j&6e{WQW4k)}5F`8quuv4M?a4-$n6uTRem zuK2LiL0LW_IP(ff9;HrKM@q zN?i!xh87_){TOUUg*zC;vOyS*hOiE#Q@B`uzd9b#)YQ)V>D2jx_#|B^H{-OdV8R!! z(GZd^OTtMSGNFRpK6T(+K?zaYE2g=9!N9PZ6;^SUWM0ip{b}^82ynHanwR6M`!z&U zx%PT|@bhX~W@EtHYvQz8Z!yTdl@Utc!CqBG34Fy27@OL$(n>)Dr{$%zr2P8J7gFGG z9iY2)x7bdhcD-Vp^YUCT=4wP`O~m~H&Iv0sX$vB(#|1$tq~i(CzcE$eXdvNDflpN{ z9KP!AqVsRfT(;>v(%E<-ors!AwPL>(j_WUqt(Dgz=ES(WWy z#1H$+nqx`KlNI9=gpHFTq?*lW3-G3tn8m$@XL|dso2N?hQ$FAN`Kz7&_|ZqXbjfHf z@CF=hzHDg>w)TiQ%r9j-fzjeUG4q?$pf1YB<8@0@xo|A!3Gk`@G8@S2OT5qT=le~3 zWXL>sDw577`?`cjf+PO+Tal@VCJT5$!z)CTqgOPGGIK#jRh0`6LKCG5K#VoYPU<)L zwf8aBzbqTCzhm=5-#a(j9b9aHJ~bvT<;0r?4Mu4eG|O9nj8xEOHjT_ImOKnan$6L> z80>#^`frO(s8UzE%F)9T4&V*;jc4RQN#*zwyw3cWJH2mE4`tn@OC*XqNd|z&6$Y z8q@1HMF7_YDPZW?*!oK}Fk`?KOQzQ^L-A=mvvnOW;vOIcYOThPgWlWlZsLWGd&jaD zf+%HfIVM}(f-FqeZqV)5FK<5EJcuh7`ah0Fa234{ex=GDzP*&z9B6rmW8JA`GTs_# zaqm#^a)k^-UY%8mR$ePs8}IF)+m9dUU!ShHf`&^(2S-OPZP520vOZ&tuZ2Gk=Nx&S zxq11Gock{<e!G=fX09OpMjv`?lZpVFHj6eT9wcI5BTI>2v2U zkj8Uw)>D4pHu;-|C58)rCh9o>&7QqII&+TOZR{W%Tv zkIw*BZgkZ*FZq@Vd25k-3d4x5EzU|WABtN)eO0u#9nW(%nC^S5!+DnXn*xsoM^Atd zz(qt_7o18o?`*lEZ*#sezJTi|I86HNrqF%%u|)`HqBpDk_a#`Pk<8 z6&ZzX2iO>dAryg;T!BZIS;>%qtN3XdEgKjcjy9^5FfK544-0s1vFvi~N>#yq58>^j zSi4Rh`N|6mbQja%X8?r0@6F5PyD%?vus%| z`$Af52mB``0>2a9oWH$RSZ=i^RphIQIqiH;7Y2Bo~brP+ugd_(@p$D}3uIoTp z5j|Lt_FwKKPv~=1m0toIM?o<2=rbYY4nOD}v;r4?qPf7}FqgGTQKhQujbl7@JDOVa z{mH%}LC4(B`Yr%x)F*x@x)$P1_vkF+g*8Yi*ZYd)?SDC=Y0B1tB@Zv~nWIcn)EvlV z9+I$WWAcVmGe6qXk>QS}BxRb{=uQnaZMddTjUbQk#8mE{6JSki4houZA8siO@gq}dWZ~_2%QGa=Km|ukS zIK)gOTE1;^vES8L_hUVSjtJ2kmQ209^qF9#uPzJpJy>qY%FKlKKV)IN$=R%Dg~Zg zwcfU+D<3u_4Krwe0#w5u(d1rjwWKZJ;%T+To}M?=UV7}WDAzDcik$Ox|C_(-SxiYu ziHeKc?f(uigVOA-_AxQvY-I~u8~Q$~l{1hbP?}Epwd|%;PL`bn=o|guc?*!ux{$V81tUo7$>8F2R|4Sz<$4}HC$_K>#(Lwo z45=w_{CO|AtOtfSctCx9^4rI~_=d55Bv+kj4|5j-D76sK^Zv%)3oB!)E0*cVr_&c~ zhf91B4+u7tN5c5I_~(n4^XCSy_RmcAFJ;(XQ)7!szkbiId@;0cMe=>!hw%_O#kJj( zv7~_)G~c9fx!F43pdGf~oYg}&Q6mv3LH@OrG&nRaq@%{p%wqag3=IMc$f5(>;3g+W z5O)NTzplXN8j};VQ9&1(rCdzFnbx@kG<6gJkK_M>HeHeQ-Q_-3$1q36Cj5SAr8Klo z5;U&})$jhzx`q9DgWM~2@2QP@>hE&O& z#_1)h?RsL!i$!~XNam0gwL+gg5yM8tFt$l~ya`_Q?wUFz=w+3ocfS^O+ z_IdKs{@D{^nfi3>x~LW%YFTWv>xd`=ND5RRcte(NV~6g*uY>v;>K$QE^ny#(VzOPV ze-E^3nNb!F0jMOU$Q!^VnM^lY}Er^mZM=BF7cm{Y{PT2JyT zq4)Zx*|VVkFi~LOx$4y`X1KMp_LXzLo9o-t4dL^7X3+x)SLi4^w0~E`MmMqYrR>fs z_Q3-WW}j8gP#t!yo~Xo?j*9m)G8959(Ryw!FHIyVBA&INY+w|u-%!J5h+C5Vzs zFh8aE4bZkO_P`Fx7ddY|TZI5alc*{aRGeQD^3uXUX*8TCi=!zTZy0$e#3WfYC?#g4 zAy$J()Enn8JQSa>6$kWu(M)bHinE6qBNvxGAU3BdJ^O%Bc6B3c;B`(^oxmp?cftWb z>Gai}7L#Q-y_G#uB#h(Fe zzttYHMD+)0i@Tz78C#hSpA3<)Hg&)92JcLR<@5i;3rZRC4>(ABal(g^6_07|zF79s zg|nn?wr1}G2r^g)NNCDXKule=$?{?zy(QS}F66t?;vUAlc0Poi zqF8c09EwPKlQ>9vlHF>}XNRVPInt5X;ah`WxW`pEaB#SmB=Q>f_ApB|Uf+R|3&A^) zulmGX1JnE}>4270<;YIYYeIb&xwLO&qPMQBzKPY*1l4m8KuUR}18@I~AWhmp%+rPq zhIIbf(WZ1c2c-%FNeUU!mK@d`<#qk-_xb!fUJVF+q}BC0MH>uGQ;D|69p@w-59puI ziQ+dEoT#>Xe4^TJ6;s{kgie-SD7;=r2F&I%f?G3_8izqNI@BwF2E5KXPiaC?l2U!2 zdo6cnTn#51t<6n)i&aaybY*&IoKB@ZYX>eZ4-Ag(9QtQ*co_8m?ZY}_zPq_`a8?87 z1>4f9arLN0T~7CM+H(6$`!afFeg>)^f&^!V3MuJqR9mT5_HVS>i}=ekwo8qYE8nXI ze$&UFZEa$SPKZGDulmc#(65cOP)!h=MXqaSPWxwWvM;jzT%QU1_hwag&fUJed3MQo z#1IA!XPPx0Y!y9R#5@(QF6g-$$0rXu$-F}+{5l^szIB7~&U4^Sw+p)c!_9g(6Nqig z_Z|3pLuK^-h|I#wGMoS!dN>130IYjj2c3xv%qa3SbA|vM?W4pX3{Aowi16N)E{I7& zdP4B9odR^$$5LtZ)OHj=`k)6@-5@*Q&FK}8L<}(>=oSM>HeW931?8U0EV3o zt%$0q(8jv+3gfua;S$fZ&?Ya=9ycy299=3V1@%v65!Pk`T!)wwec5s~T2wTS?^r}S z*q-oLm^d_-?P-W*?*NXP7%(a%y?&%+5X08mprlGBU8+HMcCt21M908omL>o zL?`sV#ym34^Bc@@|Hi1`OeLQy#~JPeUzis=?obj;;iw1ng6H{uBGa1+mEi~%Zmgb(_LiyYdY1llQ3H2q%$;Wa>3+rc{d@d@9;W|6?#~QP4#UX-<=X!=fzvvQ zXyZmledBOx)@F5@=Rr27fG)tEzP~Z!B5;eK|N`t4*)myeY%fWSM|ynf`RYezoL52%Ka* zc7M7L8FOmlj%BZZ!WNPMwjUSXR%8^qWIl2zC-+2c9US8g53q{;MRmpHj^Tax$?NYm za0ct<#pV;^^S*}{X(ii^*mFl0!{+e;fy6Qs!M52awSB$^r!V69q~B~ABoOv#6-o~xo5WSxC$g;O{6k;*`$pB#71zH90s;R)bh7noR zM|PEs9URI!MYhv6~K=7B62zv3YNZEhU%34}!#PukVXW&%MPx3$4fZ zK7FskscM~;mlhH-C%Lsk1swD{-wtzJ92qd*J?1!k7UGCCJOh~>N`%7+t~JPSUX8qk zj}6sH$c~Cbx->jqQNa^$>Hc(}z(|z~eCwx)lA^NZKx*AZm9Wxo*+h{i0bAY>e-s#r z@<*r$M8}Q#CUMYrKA5tMSCsH$U2zLS-TOMoV~f^#Pl=>mqSGoVOc|uGaW$eG8F+Zthj+4 zj1n+A%GHG?daDQd|Kshg!=etp|4{=`Q9uLmL#33ImKK)or5D&m6lqwMW(fi5 za_L5DSGr+omIYS2yY8ZXf8WpdxxYW|eQx~4Bl4azbLPxBGiT1cUMcb%;oTMn$1G3y zgz&dRNnT~{xPG<0mGS^uUCrAzz(fs;Rxa3c*U|HlyYG4s%owaIC${X)_&GKFd|4+% ziCOl$cr+&C^Me}VyKu$a`nPS_Z4Ba4M0cs~4sTeSfrsD-7+ZdlR6Fn=>==!GP zYT$Y!Y0?00C#1TdJSztP-{ZIW3eD89c@G#FmW9ZAHw3i$;OiHl8AJt6Qio4nXk%_dJ zm|{dD)636#Mh zD7=cE*Xd{4qiDg$xB0Y@PZ_u$ZR>+xWeHm_ucwc-nAL6o-KTBOhCI~20jWr-<&SM1 zrRseQ+`IpnTJXYFl2x9SK{^iMdZS?@cjo)vOFL8Yhk$63=m+799f~f2RYr<0X$GTz zSCG>~e7HM z(`QjE18@Brmh_E;ZP*`%J+?8=xEsMzvXBebHW5|*YT?~sQR`mzpoGOC3H7UAi}Y&; zS)N+b@chF(NrRsD=seao9?)XL5b;gi zoJ}Sxy%dudCC9(>yIPbcDk3vfDys8)t?f&dVb&dm{bjVy+nO`StwS)YhHuPMBr9Xo zin>~8&Vf9`)05A3_Dr+xOvvbG@E2{L^>=$-aWa@^*nG_{tubYb=;Mi63CXTRYMpn4 z4$EjeIXDO=-ckK&VF$F}47GUsnk-&rT`8kJRKtQv+r)d2q}Db}!RUUw#>xGBo-Y%$ zuPq;sv0Qmf|Ccw?s1t?uohhl@EhG~~r}0>Z2sN!Zr=MudwlT>M9AyGuf+-X+yxh+| zAW$UV`}gOlYZ8uLt#skZWq&WIVrL+2$#bZE9oCa&pR5F07KeirROLGt?gMqAx7+x8ez)WunAm%d8I@xi@rOoKt}-_t_);) zeA{+>ul5^E+RooWGSZrV|47u1BeKSuPNHL3Tb+PPV%kP4O`cVOAq*i)HueI;^eolM zF0T+}!yb(wx%}4MsbjBU-0lWD*snWdn-R*P;?Nx%TP3jAIeXMP%;T_8YEFF3BN)DG zY(&#UdGr2NG9*RnHUy8Rwcp|qsbaQV+YVmFx7V?eDJ}E1A5_1^I^xb8{D$I7uM=6m z{Ssa0b9K0}n8`0n?5v|Nnf?$S!>v1_7|pDjv~BSjCVhJHuZY3w9bN&tQ8GX4%HAi?%d%5b`vo1v*jxq9R1kDAi}cpB(cjZiL>L5 zw$y-NK+-q2@a!TDx-n8k>;is@8_m8V%_255@enXx{_C?jfOtqac~CA_7`eTm>H?#x zI#|V$cOBjt1TfdHRI z275KjARfw(u_vu)17cT0vkzRRr||h#{mNSKd$PMckp13K zQR%QQo7%ig{%T{t-W7$oE=_D#$)n=%5;1I+@W5LPY{c6qg?TFyz&ZO%GfiXi81cc` z)7+M`y^SUv_OmqvDy_mo9~qa;QfS-|wNz|1Jhpwfyh|(!Z{7uff+7l1@2fPMPWsiF zi(iTpT5j1f_lZbbtgZX?_y61P)kR1JnS2fi8bPfOdNY32y%xr1K*;xHJ4CaeNnTEY z`AJv{fK8QCwGgV>8Wemqvw%*9%|n z$Y~l`$O$fH#)?+J`d&ENn(OvMECj12M-)VI9SJ(Ift_Jd^Ns1$H!BtaPE{H~qn80FJ0iIzje z>`Fd-S8kXt$m~EbjuS+vOb&ayV4g?dYwQ@WQERC@iq`qy{~WVOF`CD7{I+(_gZ<;s zZ%%VjnNLITxHQnst^|4fvkr^S%|fgYr-_OsM>*hAnS)eOR85M3K|>?6^E-5lj`#9n zmbWGPA*WF(OW(ZLS;l>FEMU;Ge7REhqFL+ZZZ5VrwD>R^3}1`M#Aa=k;)p ziXT=S0R4GmqFgw-G_vODQx(wzymEK?oQ4RCWN#BA9^SKddS_XC$JFSlQ+Qz?8(g8bAA!yc^+a4$B+i6PBIWPtqGRLZ`aSQ`@?`IE3{#qvzvGHT3q3A*<7+F) zqi@3wExzmjD+*a;Cj-6rn4Z8IX1xB!aq-NDYRSGn5P8##ZqgvRpl9N(8!gWwTs?O$ zd{nb$xa3~0Iz>_T*t}i7vseZAZiO{-TvKO>dL~y4B%LZB_SWyQS+YQy%ptRXwt0JL z)rcXlGI>$6G7l#roQLxb;Na~f(9rqazihKw`yX^Fcc0&Fz;Ee|RL%_*CbU%*pkp2N zmcI+`bwq=`cmO~YxI-D0=FqxLDqh}aM&q@!ppg+dcaCYh3+_VFKw<`0w)eusKp*Bu z;-JsY@D{N}N`RZy+=SNWfx0rWvX`mfPPD1>x&hgONU=y#EwSXd9hw|Znw*2=Z^CJ! zps$_tmq$6WzY{t~2k9Is){S}+Rs~lU8=q+V))?`u>%5^;=qp*2P$<$gCC(X=`F@g6 z!UN@-z;24jsExfarrw~pzT6$Xu_&Q-OzCDCfQ%Ji;x8wwUj$g!3q%rS4HVbE9wt(H zb*V*@xnplL)~AzQM#F)qu$Y=R0t}E!J9GH;A`!-iTDpKay}DIe{KhCU^nn&vxx?!T;5V-VEu zA71tepd<|essPzd)B!@Ck9zT)Vpdxc^^mzk3Ey?j@g_go^AFAU*b08M+T%~z2U4a{ z$3Bl1ji3K;iK$QS6+%y_4;n~JDe>+Hl+m(B#`W4n+ZEK-@D5TsTI{(}DQ!BfNxmS> zrwf0&Z)@u~;`FV$2PpD)|4EtN{{ zx=~Z@?(-Ml&0G{HZV2$~wNk;FN1L>YS_dIACRWUxmLr6L=Tnd%b@_AI%T-JeZ*Q}n zc1`x>+8`d&NloqrX6&h%&GtOAo$sCvtVo3Szh4Q&Nb}iTZr=-FWu4iPYaTcWZ~b}p z0UpE`1RuKh`UPoBmyIz?PP;8>iAK}`&sdjDbS@ts3{zy|p(UPwyPQ3UJ+1ZkXANdb z7dl2(?7(D($sSqeL?5W)AkR}`NXtyAKIbxL1x*%rDXQ{9OpNdo71mzb`c`{^TUM=L z#OUMwTS?W^#csMT^to>C`-v~1B8cG8*`*7<^PC;Kgpyp{coJlVTfI;u34+>jb_Ac0 zG4e#cL{Y%=Jc&}CE#l12Y3aZRDa3N$2(Az1Vo@h8`)#;+QBZeIxGeym;D zLS}WMzItn2Cd^%Z42h1LG;5hYshMdVwIL&A)ZlH? z@+Lc1mNeSRd}84{UAv~F^YL4lLPTC$uB_~7JS!`At8^qOL_-V2&P6RT8(VN-v#r3T zU|(%zJ*Uw$ffqn3 z30lgIWEUq#xf(l9T#iBZk}X=}H@2WR5zsULAW9%2WoYP#xthh$_ETMEF!j<>3z_4` zuV22=zmhN&cZNi+=2Vz}a$4JAYuv;whH%%kyVI6;v9dn;zYW9Lp8KM0NMm(>;H$qm z<7sO0i7*4U*k4Xka-qN4Bz z@ali-ozf_1ZUXaZW-KlAu(`ZZDeb@cHEUmv&|PLur~}miURie~^GIFOi!*PDZ1WkD z5a{Isd~2*1Z*Fj?ZYTzomsU`=cwner|+6BR@Lg9zTxbkcbME!77 z1Vue<&@j{MlE>-*Jw8b(++!+PA>iF&#<&_4y?TzA!$KR0J*ZFnPFqg^Cy_)Hpxic_ zZ47C3A1EnXXGDmuhtBbS^{IV+`y{={TfUwCtAv6_)p9$Pc&}wm2isJP60NI()B7kP z)t?2d)prX#Zk_4!f6 zHIv6D_RV$}$pulVDdS=D&R@{(NW8O6KJf*9DLFHP5rb1Bk?M_kjhsk{!|F_T?-&AU zp9mR>mdMhOdwPZqbnCgYK=F?dt_{+l+9>~nIA)FmX->Wa?#|V~tPXFu*Zp&33AxZy zw{(T(-nT-b@S3{tp&E;Y{sl-|>5?alM!$^H;?SB;DM`^nvCzVb5{g>BTB z>ru55-!IqO9I<@gqzcg6E)R=}+)3?g4irc!%ixBD$z11@u{jMz81BXwjv0-%Hbpty z;`zZzS+RipeA&dIldsbKS=|w{zOM~UQGQc=Cv9ydX9=uC{RXk1-RXRVWrH*5NOYGj&I(V~&UdI$a-$7k% zp9Gesub}j(^K#2}C{6_5k9NexLtf(2;}#9GmSh+LqnJnJX-_nC-+<%ujcTV`w@8vB z71MEb$)`iRHXC4ZlyNukar(nJ+qYXW_w-c)y? zD)51KA`QTO#(q-@gpTQMlG!u5{VhH7PxNdzG)u07O+%w<^cCo`XT$sA#m(AXr%{Wo zZeTt0HDj_q>CT9X_=^2cJ<-u!9LiT`tuI zcnY4ng!QhYLUo0%mp$E{eBd}dTmMyS$%!nB0?SRX;0YJIRW7NnMwRAjvvO@e9iNNv zvdh?z6vC+!&}8BKq0 z3#Q2lV#|CfwB7h6{#1D~bN8DMESEsoD@U}1w8%K;JP0zOs^`**)znKuvxh9Ew);iuY$!#oMxh0KRVRGgfPK8|e@;c7ZOqF3N=p7vx>qE}2bhxcVUht2NQtWrkAa`!<=vCdtcE6ZUi*#jfRAyL=`3>=03tupy{z76gtlum7=q zYb-3KB`7s79=P;|YaP)c+R8^|y2a$Zb5BKDc599(O@VZ`%9Qb7gqJP}=R(sN{Cl z?qN-jkMtu4Eid|5O5baFhY=~?@#{dEBPNoF@E3$W(!3_320yTT%CT8ZE=8x=6e-qJ zaf(r+q1~L1oQI^9#L}GJB$p^VANQ0hWA5(`634kXTcJ5~wAO#b^rV4!JGZh-b&{Vo z2{mRybj^gZEjw(=w|wY1*7rj_=d%2#+p{HbMa&gxXJ@=hyPtM7{02Lix~UT)j96M_WTW?uk*}yFa;wSsHxPo<}xGGH4AiUem^VFoP z-^AU?t9!IOXsvUOB6A{X1Mw(3wE448N(E7-U!BidOHV1sq@j=L;A7;HOC7k*ofEo6 zbTZEE@9S8u?5qli;{ol<=CDn*7JA%NSMeLDFc9h2TQ}_|ybe1?RuSrPoP|4|zD@kG z9u~1G9B<}Dgn(DMoWJSdju;u|??I=$?kc^91@D5`IZH_FeVi>P;xLwesP=qu0-K|-H8#m`Hn z4u=gf&D*^lv8y@Y-IN-A_M(FOCD317%Yq(DH1+!*v*>hKsv1(^z0q=wNeBgEU{V3vF}Ma1SM^y3g2oSZ zgT#z{nGmFp=qFWg_~4LX2^HuN7q?b)n-n2mE2b-#yZ5VE?oF2VEG8~g&^mdnoC6%A zJ!WecMdMVx>&_iIoM#ofJkXL(+dc_-H1U4F>{SH~AYokuEv4F4VlsJ?_XAk{V!A)4Fa3@fLxDK9a;S@h@-*)Ql;+z8( zOT~nbXr!ccSlgw6W^D|89hbn?pg_8f1}AXx!Bd={{_Hb?JELpNh3PGsIK7oyXM29C zikm$q1UD{LM1vl6p-SG%>+VA#q`2i13J<@+p=P}L?l184Fb;tF$|C<@P~(1H|A$QN z!GsGrU;oA!@vk`V@(;S2_Vs@?E|(F-grIx=H%MvV;H&?CYW|mAA{HX?zfu%`hp|wA z8^-g$!`RWm4dcmQfbC=U|A?GdPV!%XlV`Q=-0Sr@jIHN6TeLi zNWTZzo=3CaH~sRyTNR78X+91)J#eKtapyD#0CXlSyW(nMNe+hJh|&QxGcd8ieEW9AwsG(%#$exp1J{Q$+m3}#UQZ$5$JX0s4`oK!; z6E|sl^{_xTwe3Y+b?W!B{iLBoUD)Y0^RQiYu?gaePxO*sIjr52$AGSr5-d6FV8JC2f})vV?XBnqI^ z(}q0E!KHb zQqt{#Ff<#%DXpF6Wnr%BDe1-Pvc=gX>9eDbp*&H4i1@|Pk>~#PTCW)pGSR>P8`T~D zSS*uGkZ&?@P1)Oeuu?Cmk-(D=SNOOmIrCPEoG6pC?yP{z>q?i_b>k zv#;R^?|;mpl$2D1`tJUiDPVJ^A>?w)Am-CK3D+@ZKvS5&V;KjPlKQ&+5UYcsD5;#Q z7qRDCh-F)wX`nU*@5c&U?giZBlloOQwfAkA@~WDw5ZM^$#p38|DT*+U{erO8HRHtY z#^JD1JZ5Q@l&gU%g^#=NXJds=>Hlj5;(Ss=Uf%0-Dt*(SOP2HXs##qqNIU@OWqXs7CbSqU&+~{bn>mqnFIdQvN z57auWb!yOCjABL{-+Y3c2rGzy%m)3Bc~VzX+t}UGL+)76R&L{KGtY!9olU-p2NFUq z{2p^(XNURFWBiY3wMLrv0=;8V85I6CPq4L|!ps?#N0k34WE z28}4g6pJ7_OE%qiWX64cBsvgd&`}@=u}wyEax(3S3C|K z|I@A!2!;I%57XeLm!8}6?RFz{$30{gfm82ywq($f{09YT5zQ4)XRXbm-5j)7kuenn zJu=`D0U43z?!U9;hK6$?xCsQW-1UuS6b6I2`N46r(yaNztzhgg7UTAg7lDWAXSC&Dy!-wdL5 zFdLZpp$F`bzDH28d3CD4sQI##m%5L$`?8 z%lMw`(oSui!xuK(mIfDZ3lP$2_Z=Z#-3b>-e!dxW4c*6DDquK}AV~db+Z#VEFH;IW zw*g!3KQ2`0z>`%y)d)0_?_wI+H%4D)51pydX%t8SX?k*eoO4s+T+Y)gu0%)V$4!D=?vsK*yXYCA<{tXw#9Qg$4N%BCh>qbg0Cn%^we zowQE5?@qERz$Ca^$$B-Hr~9;gcg(-DdUmTRo+QcG4dh&w}?TuCN)&xObBE7CgUrl45W!)(W<{S5UAFvIh+pTc|oSuJZ{m?$_L( z?(Ye5b_zBI&vXiR8B)>4t}B~@Z~}2>R;Cq4kM^ndtK~d`8o{Vkz5dK<04W^r1@uL+ z=wWesEp{nxwIHj1Ss8~`e$2D)j?z8ve`cSk(9r8*I-$J6CUtH-OD~L0o;7HE`p7xq zDRvP&+x6yLb`0fM;XFpXitzY>(`1}yXO(kZ zDuR0oWD?;tF*700AHOMRW7_q`u^$r&nDl%biPEgpU*gw3_A#icUGF-W^dJxQ!Fdes zP&nxYuV+)J9)LUN!E65zxtvdbJ9A?aHLYh;$)F|NgIzHTX-!4V^C2kOY9|#Le*?kzVwT~l1rDL?Qp^gvCtt_q#7}kz@ z-CMr$ldFN>#o9`Cy?he4w-ipav`u4&?Rwh>SM6?R6<_2W%mPIAgTIb?9RNA$5oHt} zqp0v--)nD88_BNC`?X&=n`v4PuZRC83dZ3nHC4MQyuD01h3JiK<#4s+bYSOJbnP&J zc4CvXjSE;{ymhtuje)RL?Q%D#lk~4*-G;{}=`8e;b_3cCf*7us1&i?>CE^{r z=xkW1d=sszcd|5z7$?b=oW?s$q4e!j##v*Z(E81Rcj0n?` zDUVYfq#LQLYNfK$6X}ZI>P?10axI8%6Uz8UVT1qjZ{<UjPI>^N&vE1Fvr7hm#hZG0;;MvKH?VUn}`N$W`x>aIlKV*!-~qJM%zCoY@>&^YG}**3T*3mb&6FDBVD`q#i0$! zFy^T;p4U#66W_ha^Oa-Qv!>T$7VV<-;{@|Bs~vE8y1UMYXQx$uLY~l7lrqObGmw=} zWEHPP3F<+7x`cko-w$1HDFo7fqDIbm8`fQSSrWlwz?K(Q+=%m2PRnG5DX*zu^ED~l zrYR!_hX=sIG8B$*G#6>Oy~k`2nADv zq*@9c$1r3x8x=*IFgHMA7vIS%=%9tTy0kkkLtD_{TgPPyvX6#!+ZHYr1{?N`Q#nb~ zJ9_}VF9nZ#3sDt09QdB+1N)Gb2)N7_(2aCvWNmOmQVqn0!YXo=ZA$c@la&&k5D~xD zi3UgQ{u*j{LAm>7QK zIpCDFp26F--y-kExLAwPV;;Lz?p5CuS` zLKAI~KNy>Ie&6_S@wiL{(+cgaBslRCtt7Rja;}p9-G8UT(|%??b3}a|VsO8{A+aIL zcaR$UHAOhukPPKI4nWH1h^Cxycu64{@#sP z7@d(o`jXE|2M@%H3AV z;bnOxZ{asSefs1LP%gxwiB|0##N|36i|Jnc?rIyWoGV+H;!gC%tt-71hZSe1P*NN$ zspri2!|8R@2;&`a3V1|S)OshS_VlD!jY^_q^mzLeW|*gW#nLyIQe=Ucjxd(`@ZgT0 z&M0d6a7w~)?JV`g@WnQ+<5Ddr-xB^vx`QViH;{jx?B-5!pqe6l5En;Y-@tW+0;}ll zW#~`^(1Sj~yFni>$iBHAA?~Sd~hRR>>lh4u(r9WVjEwBqta;`eR+1V?jsK0mpWL+^?3 z%fHehel-3ixx@?(QR40w$j86P_y}jjMRW16=W&zB*DbjP4N0VoUqS*>_owutdmLB1u_m(n^I|%Bkqj+(AJIWk)@asP~h1^pdx86MZ$3m8 zM!){rK3=9UvboS=4$d@3|Fq}Gn&F3F9$}P6qzfnKdw>%|vERD_N0S#1)SNFWSmn(q z#z+)QI6Q4{HNPjUls@5Al7^6GrTyM&j3VhZtZ)_=&KdIV(ji)}i?y7<{)GwGPgrFI zTSYm2CJOCOUJ8=~onY_2R+NkWAlzvgYc;hw= zQOdn+0Nk-wZR_lPGk3bDr?W-JXvUNv>{ja1r+XNp=L?=QnrxAHhH zimM-3Rd#KX2b!ry9nhUFZazYf%9gtlJGO#0bjW>1uoRTLDQOcE9 z^0~FMQ}BR}~B3kr{hd zZ6fLQVyoBsl%LEKNNcuGVIHsh;6CbI!Amd3%gC%>zFOEw%WSY?-9~6lXSsT^D7tMU zVQ6s`6j_Ae$MXGC?NB04wS7eW_i|~AAy&jJa@V2{Y1@Bzxo#I&25%KWcedsO*aO!H z12BcebD}a2W$Nn5sXje-V0n-NqJdR0e}?P%#2q)Q7!*NU0i!Mg?2#8Csd{Lh$H1g! z)tdNj6{rMu=AG13?93wtTbV7+-DF?uq%3oeg-glYIHu5&pZ-$Z0l}x z%Es*S&2ueF&lS~de&Abt$vCBxW=*YX>7CalO^mLXox((1@U8G2CYEuc%K?}GmH(Wk zR+QT)mt3#Ghsv7z62KZ(b7}&a_GW2%bad%@uv@(Vah6Ct;O8PG!fA|7z>WVg&ZVRU zFO_$VlvU16&=wtKkb4*0KdPOh%r{Vf(o{_YYb0!kLJq`fE_az}WTYZ^s;cHq4Wlqa zDdkDCbe~)d8hm4p(VWS?XimwL4(bwx@vrYyLngXmP#I@qTAafv@ zJLQnU9n@hW&Q12U;KL3^UGbpxZLB8sX7&8rrKS9=e%)x#<@J9aE%D0+&iLlvIn^0m z{1i!eS+EuS!G5lq8*ki_%iH6)09ENoJ=y>#mXUDgqPeW0i%Rngr`p}&J6$A@-0_n- zSepsI`Pwqo64HhcrgJMq;|p)Q6$9MR;As_U{`qd?dK)m&;yp*Q`Z)`rSM(}S1~GkO5tx< zPC?kCxQ)wCGujwFSZeq|8YMt6_`Q)bioX71SIOi@8I`cMtuJ>`4fYbA?T;p7YDlY$ zfB&R6fd{Snoh9(MAXUwv(E+y0rmgfeAAyrdh2-Pv6jAQo7UYjk{cPxQA<)SYvx}n{ zx*CvMwaF&OlG~21sosQ5=a5O$cyhe8p}L;yDX-`Hqri)s)D9;nI(KRo`%I3aCmQ(| z$^VPQMhsUwvGI?6a4KycHzi9hkQ^I3DTRXll%s`ce{?$q4x0fNJ=Z6Ljq4a(W`~WB zdgwp?T9Z*gq2J&sQjEuK_i#+CY+ai0eFE=LI_V)xFqhpxvR?e1KqVybBk+{fCwUU6 z2rT9wo03Ub5t;Wyd)5xPjOI)%WvN6lW*WAh<{O&~R%lgiVgZPU#fP&shnqVQn@ZG^ zJ(!}|a#20%`-Ql`_~eLK7*$9-`~0^t#$~Q}JFLGBnFkPXn0WT=nc9&zn%2L9kXR_b z*|0+0%tzmde#{=Xa=ch^L0W|N*&3N@5puho!t_gCQy{UlH~q6^{iB_(lC6_f=lOAK ztXX^5BNQAUK=kPoX3_=csM5L-AdCCG$ZCon#N)~8=A%_sg+`GWTNHg2g(7FdT;Xc{ zZ7bhMw}|9^wM5^ovG6^23XR%uBcOVe;7$`du|yd+m||Met?!QYRl=2e@rS#1RkMX- z{Toy2$^<9>YhE_6)GiBOCPOAwx8Nk6)NxbbDt^bC(o3SJE_%|eT9H2{b^dzmsbwC( zrEo^B)(?1zX%pR0wrXqHZmQze0c}V~$a6I{qWSrGoBc+LzP>bQOTN|Q8Tdor(&wkD zKaJ`{nFp*xV3tOI>RFV9_S1@Q zkH1ho3i(y2i%&-y{~mmL7~SEFj54m%n06sE%v5sNJ-oGa@kuY+?ME+*+E&yatb}YI z2gb;8=lr%XYH-?+rTyKI zEG^;5P@Tr*&JVqBsBZNhF08(;KAufF^#wwT_w+|K5H*6@ADzU(GL1R^GgXy{!)Um3 zBsa+wlL4f8a??>qCcX2&2`B`(d(}7L&f(7<;kX9wuC$^m^d8_{@`{hDa~#Z}_+LDz z{o)9wtUDn1Fh_s!5W@ZFzZl1-WEzZ{Pm+Z+0|rl7=`C zz2k&OIxJb? z$}jXCHuTP%@MiolT>sUxn5&-E!pl%oJWVSG|KqoJ0oW!>o?kp#ROsSOM zFyl|)0A&BfL|9>=!+(A7`KpnzEUG$cYF>Y2Q`U_S4-N4r zXG6xFOMopL2d2j06n;;W3hdHSMq?u#5=yVPcy)kzKC_d-rlk&%mwP+nf%#>VDP=9J+}h{e@xo391sU2d^9wbfRX zpwF81MCqGMc^C9>9_99x<4j1Pw6M0$EG$$h8imqHu|wzo%p=3UZo)Ow>b6t^0|RlC zjz&;t5l00D1^f$1b3t-0qr!+3`eq6;GBzzNac^kepXvMFf$Qy=)0!UcK`Uf$$Zczf z+7w+>B1=L-5&)Gxqrf*hqsG-Bn9t6f+ochvVHO%Z{^&*W$}%A$2k&MSDCS@vmyc|G z1^ER8MgT`}QYYQ)-n94hp6&F*VN#r&Dh*A&^u-wBsXzK*8vHj(2|(BnE(YRRx=uM& z)yR`KMkY?uK_(ZzQ=qYP)Lu_jNJNA-eR5Z4r>5x}#y=@zhA+xjCNBb*eG$u7hfyMP z*r<24Ze2pIowW;`(TV&2C@wG82HQlT!N;e6yE)a);^bYBh^s0N(%aO958ycL3v|T& zfrK#e;0}@AKRsH|+@$uE)OocQ#j1s)-S8wY>5Yu7FC6}(*PR%C&uPP+qiIx+OXkVf zqs_%uBH9+~G)UN^u6WG2{{^Xlb@!Vs>0lsD4!Zo$s@{)lLrs$S??5otX=WF@eVC8L z(m!V!e7~foM&;+T?=QSZgNZPrYOS_n#MnnyUHCQo5KyHdFMq4?c!|33E&S#Av?P5_ zj`cgQS8UR!KEyL;ym%#zk3Pt+et^Flp?C}50Ql8zQ!_E=P$)SXu)VUop*`R6d55aJ3BUDR0e{YEIRCzwhs#g(o6o7($)e+uC#4-R#(Bi5~UO zo~yJrcRAGxb{U&0N@)7+SkZ|stybYSyb_X;8rOxIZrCpu@HEjWyN+F4d@9Ls!*o+6 z>yZy1oryuwz!iwKb1&# zXzTZJvjjtIwbYpv8G!mX0+1Hf9Vq03mg&MReQJr5V-za|%hk}aC)+)IKBTnKtzlnGwoN%*7IQ-~W|F!ruM zQ96N(Bz2?q*dBmmcro02E+u7rW)38&0>T zYQ3k9{n(u#ETkebDW71ey={^B7QdrYJAeL04!T@&EQctuD>|7y()E83AaenrSCD=P zB_WQ^lX;Fjq;1~ZBy8Q>yxTtFKN~JHQ$d)y2_ZK8P+3r0t@g+1_`GazTC2-@$#KE& zc@Zayql|;h`i>|0qi5oyU52JCRQwnSMI;lWsJ#mWF1EEJV9{aQZ9>GXb1S~T>Ng3R zW4&nFDu|KMa3oHd8Qa*?4%8-&PHh%^r>TyEOmDg-9u+Ecd45k))E=H6z8d44ONv{b z8tNfZ!z%?(?^;3x59IQPKQu+8G~I}6;^Gz)yX8i{(bA)i_zYq-TXVR0VicyvkC0U8 zR%%H|d|iDpfESUoPDmyl(8AiQ*5W}dj}DuB=`y}xOz8>W4N{p3YsOT)+aiSVEd&)+ zdk>Nui5)9PoUMwtAz9~IiDk4s{`lzOX-$OF_Q>b9p*Ga<>GW~IJDH0;<+Js~o0KvV z1ew+dKn%n6%xvm5%!zF|JF6D`v5lnkRPv|nYy<6>__^m6eB4yW4`nJ04 zWtgQ~$LnS0wUSkl*!~OovCDf+wP@8sU%*XVh{;(Yzj8{sbt5=$63kvc&jY~HJEJ#2 zrbjD=)wT!M`8V14Hz$`9Eq zAO`k&n0^iQFBbJ}qX?|*OP1Nux=(*fL|B^Z-jz|9$83wxUBB1R=neRwOgQNi1Si705J9oJ`#&uPIN zie+&B@AG|)ardVQ`9brN1{K8A=X5M*`?mirNm;+G0j6NcD^T&gnR(+)8^(-?0Uw*ysGlx>WLoD;bc(Te2 zw{QN{)iWA#9_Fu+RN`_VWU=A&xrP)Qg$ijNYl4zQU*xSU)c)OOIl+S;H`;lx&3rfE z^%S@eKDdo7Y&E4LXr|wg3YncH4Vt}VyzhU6G&52t*xN0>4AY%AovZ(1F~Qi__LC0= zJlZ00m_8F~Jlnaqu=E>oQ2@2Iybwwhh1JFK0J*2h?$hmGFMjlA+o(a@i4y@4I%vp$ z>4noLBJ)Tw?QPWR#%xr<<_xr8Lp)@58hj^ys$Mx!oLbzCds~@*`30bA{tb%6?|j7i z=xnzyh2y}#X`VFMZJj0Ajc_+Ix~ycN`=Xx2^c^bqkZ)r&XF;R>Dl+(}tflLkPRDDb z6>(%}N?b=>s7T^Isl!2nv*T1;)SNw>%a=GbJL-`T)M~o0=l8(TbDmCEteJJ9nod?Y z78c>~rk98dDymam{#`CnJ#4bQFh?)*$ENqXr|}Wv?{8=KY_*5Osrf$j*>@_Oql`m$gNHzegEgK?eslr-y-sl;qm>s2 z{DE$`_gw<<3Y zzlhb1iC5W;H{)kYX|d1~1G9t^ki`ntWoG4(P2Xyb(m_F_tvkpK3SUs%i1?dHR$@Wa?BH;wwS5Rqgz1ICQls{gDLU4z(q&&sCujU{d_3 znd}+BY=b@Z%a;ck<<+l5JZrC0!tY^Cl?%YElcDbj?zQx$} zwOw~uliAW=7X?w;iU=41R}|DJNJj!>#R4j2fkmW73`IIfF9GSI6crT_fkhBRgctz> zgpP!2L}{UhvUEZ*B!R@>cM{mWdw1{iJ>PTh{rKzU$$8H^GiOejIrE#TIXb^iTcRxa zAxT*#lMz6uUmv~gl0qavJsDzL&7s*Fxd!5}G$7F#J_xhF^oyi=Fbss3wmhL1W(5|# zJlg1qKk+^pO^l}KM&FBH`qW=kBFv@BJ@yupHBMko6;|3lfs?T4hh~M;W6IkH@7Fw^ z-mte;+s3HNK*I+PE9XpjnFpIcalV({cEAusb(GP^J8AttO9ZE@8G85RXzdR`4~jS< z)VfyIuR1(zw(=pZ7=X0V>@wrWONT2LDEF#p=^@WP!7pe{Y5QFCY`ox;CQ(+;ItlUV zQtofU(c`8uSjFn-!OVOcOINYJd5w1xsUFS#Ov^Nn=?`i?dCg?J%kWF58A_|=xuJHk z;Jm^xq>5)XuNS;`o~kM{2oaPCk}xvtr)GH*s>)hDLnQdtAAlP#!&&N6{E_^wk@3$- zFv)x}-HKja!`GjIo(?J>__eve) zc8MNE_UYS*GjD&eU$8oLD?#hn5s}u57?39P49bQ-ObKL74qe}89XPCQeJZlQuzYzy z$XfZjnw(_y4)d=L{O{a`izQjiuhOS9uMVQn#*jCJ`aEu|!a-`i+qqYCxnce$s->b7 zE_HSz)3_dlV`8L%V9=qE^7aT|?a>?7~r2}9k{vpanGT{I;BtpVqu=M>D zRmrN>P(v9%qIqxVV`Lj?tjwfTmyd3LDzh4YDWYJ|lUV^z_O`QgMzO&ZJDusN@KT_C!ewm~M1 zVUUq}-&R)zZ<%aijTNP^SkKZ#+U(P- z@B>aNu4R_+dB;$16Sxd2n60iT@!*okg5d?qcH|+{`orEW8Te~-oc!!S!5|%|3h-ZMxkjor1-wWkPp$NNT0YBfy*jT@2zB>rO)n6?*@O)+C{zD< zvnnP8W|X=xFuAKFvjjcy;XyLfer>O1QF{B$R>JF|Zd=lfeq9OjC>*1(mLL@PfwN)_gymo;!C4CT!Hx=PfITHe!777K$xK+ z%=*&ff?vVSX7|IruPrO~0I0%F-u}21EIhd#?@`yOkcF&6sCHdKLFB5E;M5wPT8T2T z9M7;H`beva#p!E%Vn4mwc<$PGYE9lw%%8Q*TGdfB3^oQyNPjEDBXGdP;byjw~a*kW28!ii$idzUen&`4PGDDw1M2$pDko8Y+5A(kNVQ`jcj>_f7S`zd&B`kwyRk4MT(JA#^)4yf zK}W;+G^0cXbL8-EnCnhyaLs9D4;wtGO4!LTbA0fQjYQ?ZB1kb!PLMsTz50mhddD6% zGSm|$iF@}}L){5GF%pKVC>#!ICKF3N2k9upLUvr2=1LC6JfstXC)~Mv*Oa>h8W45@ zPR68qO%heav>C#D5Y|a2Uo@- zNC{dest2M*l>PVB3KFDlP8hwRWHqdKTU%@PR?#FSpV1DGj*m%24OV6_x_$Mi{*M7oH5VC0bO&oLiu4uZZ}+NdG^8CCX6>i;8G_+^ zAO090?n6LaZzTN;Rulq>LMZg!h*6EDpH7%i=g*(i)c$rco#Uq%erc;lYZO$R z2;0FhvM=O@{gpBvU@lq;z9+)AFk%b9o{~(nnU4^|SuBQ6Wus8epA1%jx|=@Gx=W%bezxBlD%}bwPu+LRua8p3w!5^PAY~=fwqmiCRC_ zj&NYUImg@oc7+oq3P$BAk!bqGRckp5BYH2*>W@B6@U}lWdenR3 zGk>|d1bE<#xD6<3YPx&=tLH*%3_oCh(_mJ?U`n#BR?;!~_wGaQtQP&=cpoIh(yp3k zL&;y&clRa~ZjYZq8;H^CI0d_!;!yJkfP}S#RLkDV7Ru;#6f`F-}%;^ z^Fw|-;lBFQ@A8UI)WVh$e*e(-An2Ao9DAtJ)NM%5&vvGLv_JYF5^YB2bhI^PIR^E2 zulnGcvhYDpP>nG?KC#+7{2le@;4+BaW?*joIU8XJ^Zx2Cw(Maqx537Tx9%Lk*da+0 z=8?nfbmAOd_TJh;{=JmiLO4DT+k!yGGXOSn)4+cd#R6q(Ja5y9H~ff=Kgu1b zC7S|&8F@i`)}gr-J%5Oa>(gk{TOcg>0kgXp4RnD`+pqv!NAiBCwYaH!l-F@DshfzK zSp(EE5e^60g9-^+FDidfp*9rMfe=$RcdN$@k!Y85eyAv~U0zamIGt4QO7ASY*nH2r z|JEywv0vC!?&UBToT%-*0P!#xL7rNj^)mg+^W-3@Fl}8P_bhtEK;_$JWkW^96U@)*kEPeQ@NQc#||`P3l-fU>BR_Gd%CLI{5A37fLc==8KsrTN}BgV~;7Gm6Z{2R*yPhfkKAZq3LUcAvR1j^R{I!(nQ!Bk zLQl=2yN7HYrw{NQ(B!ew9M?JJ{)P+LyRrchJ6rR9Bv*ni@u!dEd=$q`aKB!?jYLW% zIKzUn5;JIh-j>p@Jr8aQQ^QRs{I+}jMu*N}C(%_!+{)3S4qbFvv}cxqjP^EY_sYDO zLF~qi{{R9Oq1m=`3H7JW0S74Y9eN#YOQ_x(j;vQo35i1y+mr&*lXxcXlP$mIrA3X2 zt%|9h?xIWnNocD~qT|BF_OqcEr0l4HlUm$4SJEdCjYkz}1%uXh?Rb+)knp)o$zZ7t z)q*;X^x<{;BXGNtsXL zZ`-rAVoN7PRI^Fv)vjCVa5tnxn??YI{Jk+-S%s`Ma_bn6N!w)K{oA z_Zvrw?|29qZd*LNczMwjSM%=BCZ#)jM;ccfMTUcZUQQ*Hd9sjo(J>!RT z5*CfljO7UqxNfc+;;VuPu=4@|Cd4@CYm zGzXxi5bA>oTEtSg@gN@_Z9k|xy@@b4H2O#6>)%3CzexT&-}Q5lQ~k*DAE^U%!WwNs z31A*-EJg|*X5GQQkO?-{Xx$>Vg1x+Ns~pJTgVd zxNA}3$g43VH6-uPa)?{ami-);pM*x;*rXAp9aufGPtH2ptnf;9Y3W{Yy)Noo4lhUS zle4rR^mJ5D{FiTJ29EPSOij%xD&nV7sgVM79{O&2vQ2H;eeF_R#&Y*cnIL(y#y6PT zHQV8f6OST>b8l8QvKm;(K2OJ7!D?w#;N05hxIZ%T=^!Fy6OheG*~P_%Z|Yd%g~u*R z4g9@P!;_!MdWyhDj+ zJd4L*g(s`2bIeD`!mKE1zA$NY_O68b#JKD;yNzE<^6bqon4eY;cv2GnBz=U^7-Yq$ zhRuA?E^R;(kgxq>C1<1%%P$1U`Wfu9IDik(6I@M}XA3Hia2vw}P%<3^kO345W$By` zQg`Hsyw)E&8Ol1WE>mpI)Qk|2q=_XxG*>rBqJNlWopCZ~Elwbe7lnU~s34KYaXOx> z*%CwOlDMI0dfP~2;#tRl*#jZZ!$a#+wM&)!z>F~hGlsDTA8l!DJSKXa4o|d8T3P$G zw9Qq0iLyO-nVjC!HuAI=;oJLgp>5^_zCub4icJi6dOp9Rsk9wNk3N;)rkGkPBmmr4A;*4%!!wnCQ3skGa{v|bQR{=BUS9xT&_Zn zgRp)Ri&J^!wrGm1bz*BoRkR%%=tLA-C!!Uy9qsMc;)+U6jdsjqWKIr-s4sOLzd6;* zXJ0HCrNnKd>t$IP5)ALOFntTn0qB?%ix4eDk6LlM!VbyQ!}i zsxnDU2Rp8kkFbt)LQykkgd98hlLprZsL6Awn5*QoYjYUi#)_xoSCV6p3ofQM!^uEU zf11?^yee8+!|+`9=F&5wcKChthun|RJQU1>z)|bP%x%CD8FE0tQr;~&4 zetA}-eO@u1>LlRXB+e>z;N}*1mUK|sz0;RWB<=^PpcG%3fk41nqX^sCv(Qjmqcn$3P_(lO)N>PnDjeqS+jk75)2``s-o+Nz$YvVst3&eN&bU*sAoYX|^L%M!_v5L=tUE>6y3*}?EmA(xfbG%Y-sMjUfz5Kf258OIPifFXUo1xUx?}A!72Q>b8~a=6eb$b8fK%0 zp9pOS$1%1%c^70t##ZY+^mhVR1!qay?w?Za#ki&>v;EBG@*Dg;uGLl@^#&pwc@T`9 zIIt#$F9tpG(m;YX5$xrrJcVuK*CSTXQ=yv?j5EHeTb>WrRt6>Dz1U11q}QFim0idf kzU3i1_wP3H-2OG3RkTsdYx=VAJMee$yy3ZGookW*1I=t**Z=?k literal 0 HcmV?d00001 diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 2f68b2d186..63b5382966 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -15,7 +15,11 @@ author: greg-lindsay - Windows 10 -**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md). Please complete all steps in the prerequisite guide before starting this guide. +**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in the following guide: +- [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) + +Please complete all steps in the prerequisite guide before starting this guide. After completing the current guide, also see the companion guide: +- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): - **DC1**: A contoso.com domain controller, DNS server, and DHCP server. @@ -457,9 +461,9 @@ If the PC1 VM is not already running, then start and connect to it: 1. Switch back to the Hyper-V host and create a checkpoint for the PC1 VM so that it can easily be reverted to its current state for troubleshooting purposes and to perform additional scenarios. Checkpoints are also known as snapshots. To create a checkpoint for the PC1 VM, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: -

    +    ```
         Checkpoint-VM -Name PC1 -SnapshotName BeginState
    -    
    + ``` 2. Sign on to PC1 using the CONTOSO\Administrator account. @@ -470,6 +474,7 @@ If the PC1 VM is not already running, then start and connect to it: ``` cscript \\SRV1\MDTProd$\Scripts\Litetouch.vbs ``` + **Note**: Litetouch.vbs must be able to create the C:\MININT directory on the local computer. 4. Choose the **Windows 10 Enterprise x64 Custom Image** and then click **Next**. @@ -493,6 +498,7 @@ If the PC1 VM is not already running, then start and connect to it: ``` Checkpoint-VM -Name PC1 -SnapshotName RefreshState ``` + 9. Restore the PC1 VM to it's previous state in preparation for the replace procedure. To restore a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: ``` @@ -500,6 +506,7 @@ If the PC1 VM is not already running, then start and connect to it: Start-VM PC1 vmconnect localhost PC1 ``` + 10. Sign in to PC1 using the contoso\administrator account. ## Replace a computer with Windows 10 diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index cc287fd834..becba41a90 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -14,7 +14,11 @@ author: greg-lindsay - Windows 10 -**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) and requires that you have completed completed procedures in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md). Please complete all steps in these guides before attempting the procedures in this guide. If you wish to skip the Windows 10 deployment procedures in the MDT guide and move directly to this guide, you must at least install MDT and the Windows ADK before performing procedures in this guide. +**Important**: This guide leverages the proof of concept (PoC) environment, and some settings that are configured in the following guides: +- [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) +- [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) + +Please complete all steps in these guides before attempting the procedures in this guide. If you wish to skip the Windows 10 deployment procedures in the MDT guide and move directly to this guide, you must at least install MDT and the Windows ADK before performing procedures in this guide. The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): - **DC1**: A contoso.com domain controller, DNS server, and DHCP server. @@ -23,7 +27,7 @@ The PoC environment is a virtual network running on Hyper-V with three virtual m This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. ->Multiple features and services are installed on SRV1 in this guide. If less than 4 GB of RAM is allocated to SRV1 in the Hyper-V console, some procedures will require more time to complete. If resources are limited on the Hyper-V host, consider reducing RAM allocation on DC1 and PC1 to 2 GB and 1 GB respectively, and then increasing the RAM allocation on SRV1. You can adjust RAM allocation for a VM by right-clicking the VM in the Hyper-V Manager console, clicking **Settings**, clicking **Memory**, and modifying the value next to **Maximum RAM**. +>Multiple features and services are installed on SRV1 in this guide. If less than 4 GB of RAM is allocated to SRV1 in the Hyper-V console, some procedures will be extremely slow to complete. If resources are limited on the Hyper-V host, consider reducing RAM allocation on DC1 and PC1, and then increasing the RAM allocation on SRV1. You can adjust RAM allocation for a VM by right-clicking the VM in the Hyper-V Manager console, clicking **Settings**, clicking **Memory**, and modifying the value next to **Maximum RAM**. ## In this guide @@ -746,13 +750,26 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi ## Refresh a client with Windows 10 using Configuration Manager -1. Verify that PC1 is in its original state, which was saved as a checkpoint in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md). +>Before starting this section, you can delete computer objects from Active Directory that were created as part of previous deployment procedures. Use the Active Directory Users and Computers console to remove stale entries under contoto.com\Computers, but **do not delete the computer account for PC1**. There should be at least two computer accounts present in the contoso.com\Computers container: one for SRV1, and one for the computer name of PC1. It is not required to delete the stale entries, this is only done to remove clutter. + +### Install the Configuration Manager client on PC1 + +1. Verify that PC1 is in its original state, which was saved as a checkpoint and then restored in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md). 2. If a PC1 checkpoint has not already been saved, then save a checkpoint by typing the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: ``` Checkpoint-VM -Name PC1 -SnapshotName BeginState ``` +3. On SRV1, in the Configuration Manager console, in the Administration workspace, expand **Hierarcy Configuration** and click on **Discovery Methods**. +4. Double-click **Active Directory System Discovery** and on the **General** tab select the **Enable Active Directory System Discovery** checkbox. +5. Click the yellow starburst, click **Browse**, select **contoso\Computers**, and then click **OK** three times. +6. When a popup dialog box asks if you want to run full discovery, click **Yes**. +7. In the Assets and Compliance workspace, expand Devices and click All Systems. Verify that a computer account for SRV1 and PC1 are displayed. See the following example: + + ![assets](images/sccm-assets.png) + + The **Client** column indicates that the Configuration Manager client is not currently installed. This procedure will be carried out next. 3. Sign in to PC1 using the contoso\administrator account and type the following at an elevated command prompt to remove any pre-existing client configuration, if it exists: @@ -760,6 +777,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi sc stop ccmsetup "\\SRV1\c$\Program Files\Microsoft Configuration Manager\Client\CCMSetup.exe" /Uninstall ``` + >If PC1 still has Configuration Manager registry settings that were applied by Group Policy, startup scripts, or other policies in its previous domain, these might not all be removed by CCMSetup /Uninstall and can cause problems with installation or registration of the client in its new environment. It might be necessary to manually remove these settings if they are present. For more information, see [Manual removal of the SCCM client](https://blogs.technet.microsoft.com/michaelgriswold/2013/01/02/manual-removal-of-the-sccm-client/). 4. On PC1, temporarily stop Windows Update from queuing items for download and clear all BITS jobs from the queue: @@ -783,24 +801,199 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi ``` "\\SRV1\c$\Program Files\Microsoft Configuration Manager\Client\CCMSetup.exe" /mp:SRV1.contoso.com /logon SMSSITECODE=PS1 ``` +4. On PC1, using file explorer, open the C:\Windows\ccmsetup directory. During client installation, files will be downloaded here. +5. Installation progress will be captured in the file: **c:\windows\ccmsetup\logs\ccmsetup.log**. You can periodically open this file in notepad, or you can type the following command at an elevated Windows PowerShell prompt to monitor installation progress: -4. On SRV1, in the Configuration Manager console, in the Asset and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. + ``` + Get-Content -Path c:\windows\ccmsetup\logs\ccmsetup.log -Wait + ``` + + Installation might require several minutes. When setup is complete, verify that **CcmSetup is existing with return code 0** is displayed on the last line of the ccmsetup.log file and then press **CTRL-C** to break out of the -Wait Get-Content operation. A return code of 0 indicates that installation was successful and you should now see a directory created at C:\Windows\CCM that contains files used in registration of the client with its site. -4. Use the following settings in the **Create Device Collection Wizard**: +6. On PC1, open the Configuration Manager control panel applet by typing the following command: + + ``` + control smscfgrc + ``` + +7. Click the Site tab and click Find Site. The client should report that it has found the PS1 site. See the following example: + + ![site](images/sccm-site.png) + + If the client is not able to find the PS1 site, review any error messages that are displayed in C:\Windows\CCM\Logs\ClientIDManagerStartup.log and LocationServices.log. + +8. On SRV1, in the Assets and Compliance workspace, click **All Desktop and Server Clients** and verify that the computer account for PC1 is displayed here with **Yes** and **Active** in the **Client** and **Client Activity** columns, respectively. You might have to refresh the view and wait few minutes for the client to appear here. See the following example: + + ![client](images/sccm-client.png) + +9. When the client has completed installation, create a checkpoint for PC1 so that you can restore it later. To create a checkpoint, type the following at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName Client-installed + ``` + +### Create a device collection and deployment + +1. On SRV1, in the Configuration Manager console, in the Asset and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. + +2. Use the following settings in the **Create Device Collection Wizard**: - General > Name: **Install Windows 10 Enterprise x64**
    - - Geneneral > Limiting collection: **All Systems**
    + - General > Limiting collection: **All Systems**
    - Membership Rules > Add Rule: **Direct Rule**
    - The **Create Direct Membership Rule Wizard** opens, click **Next**
    - Search for Resources > Resource class: **System Resource**
    - Search for Resources > Attribute name: **Name**
    - - Search for Resources > Value: **PC1**
    - - Select Resources > Value: **PC1**
    + - Search for Resources > Value: **%**
    + - Select Resources > Value: Select the computername associated with the PC1 VM
    + - Click **Next** twice and then click **Close** in both windows. + +3. Double-click the Install Windows 10 Enterprise x64 device collection and verify that the PC1 computer account is displayed. + +4. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64** and then click **Deploy**. + +5. Use the following settings in the Deploy Sofware wizard: + - General > Collection: Click Browse and select **Install Windows 10 Enterprise x64**
    + - Deployment Settings > Purpose: **Available**
    + - Deployment Settings > Make available to the following: **Configuration Manager clients, media and PXE**
    + - Scheduling > Click **Next**
    + - User Experience > Click **Next**
    + - Alerts > Click **Next**
    + - Distribution Points > Click **Next**
    + - Summary > Click **Next**
    + - Verify that the wizard completed successfully and then click **Close** + +### Initiate the computer refresh + +1. In the Assets and Compliance workspace, click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. +2. Right-click the computer account for PC1, point to **Client Notification**, click **Download Computer Policy**, and click **OK** in the popup dialog box. +3. On PC1, in the notification area, click **New sofware is available** and then click **Open Sofware Center**. +4. In the Sofware Center, click **Operating Systems**, click **Windows 10 Enterprise x64**, click **Install** and then click **INSTALL OPERATING SYSTEM**. See the following example: + + ![installOS](images/sccm-install-os.png) + +The computer will restart several times during the installation process. When installation has completed, sign in using the contoso\administrator account and verify that applications and settings have been successfully backed up and restored to the new operating system. + +5. Save a checkpoint of the computer for later reference. To save a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName RefreshState2 + ``` ## Replace a client with Windows 10 using Configuration Manager +Before starting the replace procedure, restore PC1 to the checkpoint created in the previous procedure. To restore the checkpoint, type the following at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Restore-VMSnapshot -VMName PC1 -Name Client-installed -Confirm:$false + Start-VM PC1 + vmconnect localhost PC1 + ``` + +>Restoring a checkpoint for PC1 back to a different OS will create two entries for PC1 in the Configuration Manager console. One entry will have OS build version 10.x.xxxxx and the other will display the older OS that was installed on PC before it was upgraded. This is OK, but you can also delete the entry that is out of date. + +### Create a replace task sequence + +1. On SRV1, in the Configuration Manager console, in the Software Library workspace, expand **Operating Systems**, right-click **Task Sequences**, and then click **Create MDT Task Sequence**. + + +2. On the Choose Template page, select **Client Replace Task Sequence** and click **Next**. + +3. On the General page, type the following: +- Task sequence name: **Replace Task Sequence** +- Task sequence comments: **USMT backup only** + +4. Click **Next**, and on the Boot Image page, browse and select the **Zero Touch WinPE x64** boot image package. Click **OK** and then click **Next** to continue. + +5. On the MDT Package page, browse and select the **MDT 2013** package. Click **OK** and then click **Next** to continue. + +6. On the USMT Package page, browse and select the **Microsoft Corporation User State Migration Tool for Windows** package. Click **OK** and then click **Next** to continue. + +7. On the Settings Package page, browse and select the **Windows 10 x64 Settings** package. Click **OK** and then click **Next** to continue. + +8. On the Summary page, review the details and then click **Next**. + +9. On the Confirmation page, click **Finish**. + +### Deploy PC4 + +Create a VM named PC4 to receive the applications and settings from PC1. This VM represents a new computer that will replace PC1. To create this VM, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + +``` +New-VM –Name "PC4" –NewVHDPath "c:\vhd\pc4.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 +Set-VMMemory -VMName "PC4" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 +Set-VMNetworkAdapter -VMName PC4 -StaticMacAddress 00-15-5D-83-26-FF +``` + +>Hyper-V enables us to define a static MAC address on PC4. In a real-world scenario you must determine the MAC address of the new computer. + +### Associate PC4 with PC1 + +1. On SRV1 in the Configuration Manager console, in the Assets and Compliance workspace, right-click **Devices** and then click **Import Computer Information**. + +2. On the Select Source page, choose **Import single computer** and click **Next**. + +3. On the Single Computer page, use the following settings: +- Computer Name: **PC4** +- MAC Address: **00:15:5D:83:26:FF** +- Source Computer: + +4. Click **Next**, and then on the User Accounts page choose **Capture and restore all user accounts**. Click **Next** twice to continue. + +5. On the Choose Target Collection page, choose **Add computers to the following collection**, click **Browse**, choose **Install Windows 10 Enterprise x64**, click **OK**, click **Next** twice, and then click **Close**. + +6. Select the User State Migration node and review the computer association in the display pane. + +7. Right-click the association in the display pane and then click **View Recovery Information**. A recovery key has been assigned, but a user state store location has not. Click **Close**. + +8. Click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. Verify that **PC4** is displayed in the collection. You might have to update and refresh the collection, or wait a few minutes, but do not proceed until PC4 is available. If you did not delete the PC1 hostname from the console this will also be displayed here as an inactive computer. See the following example: + + ![collection](images/sccm-collection.png) + +### Create a device collection for PC1 + +1. On SRV1, in the Configuration Manager console, in the Assets and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. + +2. Use the following settings in the **Create Device Collection Wizard**: + - General > Name: **USMT Backup (Replace)**
    + - General > Limiting collection: **All Systems**
    + - Membership Rules > Add Rule: **Direct Rule**
    + - The **Create Direct Membership Rule Wizard** opens, click **Next**
    + - Search for Resources > Resource class: **System Resource**
    + - Search for Resources > Attribute name: **Name**
    + - Search for Resources > Value: **%**
    + - Select Resources > Value: Select the computername associated with the PC1 VM.
    + - If there is an entry that is obsolete, do not select this entry.
    + - Click **Next** twice and then click **Close** in both windows. + +3. Click **Device Collections** and then double-click **USMT Backup (Replace)**. Verify that the computer name/hostname associated with PC1 is displayed in the collection. Do not proceed until this name is displayed. + +### Create a new deployment + +In the Configuration Manager console, in the Software Library workspace, click Task Sequences, right-click Replace Task Sequence, click Deploy, and use the following settings: +- General > Collection: **USMT Backup (Replace)**
    +- Deployment Settings > Purpose: **Available**
    +- Deployment Settings > Make available to the following: **Only Configuration Manager Clients**
    +- Scheduling: Click **Next**
    +- User Experience: Click **Next**
    +- Alerts: Click **Next**
    +- Distribution Points: Click **Next**
    +- Click **Next** and then click **Close**. + +### Verify the backup + +1. On PC1, open the Configuration Manager control panel applet by typing the following command: + + ``` + control smscfgrc + ``` +2. On the **Actions** tab, click **Machine Policy Retrieval & Evaluation Cycle**, click **Run Now**, click **OK**, and then click **OK** again. + +3. + + ## Related Topics -  +[System Center 2012 Configuration Manager Survival Guide](https://social.technet.microsoft.com/wiki/contents/articles/7075.system-center-2012-configuration-manager-survival-guide.aspx#Step-by-Step_Guides)   diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 18fe963e7a..45164baec0 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -507,17 +507,17 @@ Notes:
    As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. -The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 80GB to support installing imaging tools and storing OS images. +The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 100GB to support installing imaging tools and storing OS images. 1. To add available space for the partition, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host:
    -    Resize-VHD –Path c:\VHD\2012R2-poc-2.vhd –SizeBytes 80GB
    +    Resize-VHD –Path c:\VHD\2012R2-poc-2.vhd –SizeBytes 100GB
         $x = (Mount-VHD –Path c:\VHD\2012R2-poc-2.vhd -passthru | Get-Disk | Get-Partition | Get-Volume).DriveLetter
         Resize-Partition -DriveLetter $x -Size (Get-PartitionSupportedSize -DriveLetter $x).SizeMax
         
    -2. Verify that the mounted VHD drive is resized to 80 GB, and then dismount the drive: +2. Verify that the mounted VHD drive is resized to 100 GB, and then dismount the drive:
         Get-Volume -DriveLetter $x
    @@ -848,7 +848,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to
         >The commands in this script might take a few moments to complete. If an error is displayed, check that you typed the command correctly, paying close attention to spaces. PC1 is removed from its domain in this step while not connected to the corporate network so as to ensure the computer object in the corporate domain is unaffected. PC1 is also not renamed to "PC1" in system properties so that it maintains some of its mirrored identity. However, if desired you can also rename the computer.
     
     22. Upon completion of the script, PC1 will automatically restart. When it has restarted, sign in to the contoso.com domain using the **Switch User** option, with the **user1** account you created in step 11 of this section.
    -    >The settings that will be used to migrate user data specifically select only accounts that belong to the CONTOSO domain. If you wish to test migration of user data and settings with an account other than the user1 account, you must copy this account's profile to the user1 profile.
    +    >**Important**: The settings that will be used later to migrate user data specifically select only accounts that belong to the CONTOSO domain. However, this can be changed to migrate all use accounts, or only other specific accounts. If you wish to test migration of user data and settings with accounts other than those in the CONTOSO domain, you must specify these accounts or domains when you configure the value of **ScanStateArgs** in the MDT test lab guide. This value is specifically called out when you get to that step. If you wish to only migrate CONTOSO accounts, then you can log in with the user1 account or the administrator account at this time and modify some of the files and settings for later use in migration testing.
     23. Minimize the PC1 window but do not turn it off while the second Windows Server 2012 R2 VM (SRV1) is configured. This verifies that the Hyper-V host has enough resources to run all VMs simultaneously. Next, SRV1 will be started, joined to the contoso.com domain, and configured with RRAS and DNS services. 
     24. On the Hyper-V host computer, at an elevated Windows PowerShell prompt, type the following commands:
     
    
    From 8d30af3c68d0bd1801b4a2ba3f77a7dfa2f06203 Mon Sep 17 00:00:00 2001
    From: Joey Caparas 
    Date: Thu, 19 Jan 2017 14:15:01 -0800
    Subject: [PATCH 110/210] minor updates
    
    ---
     ...ure-aad-windows-defender-advanced-threat-protection.md | 8 ++------
     1 file changed, 2 insertions(+), 6 deletions(-)
    
    diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md
    index 04604678fe..0106702834 100644
    --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md
    +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md
    @@ -25,8 +25,6 @@ localizationpriority: high
     You need to add an application in your Azure Active Directory (AAD) tenant then authorize the Windows Defender ATP Alerts Export application  to communicate with it so that your security information and events management (SIEM) tool can consume alerts from Windows Defender ATP portal.
     
     1. Login to the [Azure management portal](https://ms.portal.azure.com).
    -  >!NOTE:
    -  >Use your Azure credentials not the Windows Defender Advanced Threat protection portal credentials.
     
     2. Select **Active Directory**.
     
    @@ -83,7 +81,7 @@ You need to add an application in your Azure Active Directory (AAD) tenant then
     After configuring the application in AAD, you'll need to obtain a refresh token. You'll need to use the token when you configure the connector for your SIEM tool in the next steps. The token lets the connector access Windows Defender ATP events to be consumed by your SIEM.
     
     ## Obtain a refresh token
    -Obtain a refresh token used to retrieve the Windows Defender Advanced Threat Protection events to your SIEM. This section provides information on how you can use an events URL to obtain the required refresh token. 
    +Obtain a refresh token used to retrieve the Windows Defender Advanced Threat Protection events to your SIEM. This section provides information on how you can use an events URL to obtain the required refresh token.
     >[!NOTE]
     >For HP ArcSight, you can obtain a refresh token using the restutil tool.
     
    @@ -108,9 +106,7 @@ You'll use these values to obtain a refresh token.
     
     2. Click **Accept**. When you authenticate, a web page opens with your refresh token.
     
    -  ![Image of web page with refresh token](images/atp-refresh-token.png)
    -
    -3.  Save the refresh token value in a safe place. You'll need this value when configuring your SIEM tool.
    +3.  Save the refresh token which you'll find it the ``value. You'll need this value when configuring your SIEM tool.
     
     After configuring your AAD application and generating a refresh token, you can proceed to configure your SIEM tool.
     
    
    From efd96a34f07d296da8913303fc11cbb9d6783d69 Mon Sep 17 00:00:00 2001
    From: iAbhix 
    Date: Thu, 19 Jan 2017 16:31:26 -0600
    Subject: [PATCH 111/210] 64 bit reg entry corrected
    
    on Line 20  `HKLM\SOFTWARE\Wow6432Node\.NETFramework` should be changed to
    `HKLM\SOFTWARE\Wow6432Node\MICROSOFT\.NETFramework`
    ---
     .../ie11-deploy-guide/net-framework-problems-with-ie11.md       | 2 +-
     1 file changed, 1 insertion(+), 1 deletion(-)
    
    diff --git a/browsers/internet-explorer/ie11-deploy-guide/net-framework-problems-with-ie11.md b/browsers/internet-explorer/ie11-deploy-guide/net-framework-problems-with-ie11.md
    index b17d3b59ae..93d825a26b 100644
    --- a/browsers/internet-explorer/ie11-deploy-guide/net-framework-problems-with-ie11.md
    +++ b/browsers/internet-explorer/ie11-deploy-guide/net-framework-problems-with-ie11.md
    @@ -17,7 +17,7 @@ If you’re having problems launching your legacy apps while running Internet Ex
     
     1.  **For x86 systems or for 32-bit processes on x64 systems:** Go to the `HKLM\SOFTWARE\MICROSOFT\.NETFramework` registry key and change the **EnableIEHosting** value to **1**.
     
    -2.  **For x64 systems or for 64-bit processes on x64 systems:** Go to the `HKLM\SOFTWARE\Wow6432Node\.NETFramework` registry key and change the **EnableIEHosting** value to **1**.
    +2.  **For x64 systems or for 64-bit processes on x64 systems:** Go to the `HKLM\SOFTWARE\Wow6432Node\MICROSOFT\.NETFramework` registry key and change the **EnableIEHosting** value to **1**.
     
     For more information, see the [Web Applications](https://go.microsoft.com/fwlink/p/?LinkId=308903) section of the Application Compatibility in the .NET Framework 4.5 page.
     
    
    From 4f813b4c1317ccf52cc41722211ce5e881393e14 Mon Sep 17 00:00:00 2001
    From: JanKeller1 
    Date: Thu, 19 Jan 2017 15:07:40 -0800
    Subject: [PATCH 112/210] Updated a mention of Windows 8
    
    ---
     windows/keep-secure/bitlocker-countermeasures.md | 2 +-
     1 file changed, 1 insertion(+), 1 deletion(-)
    
    diff --git a/windows/keep-secure/bitlocker-countermeasures.md b/windows/keep-secure/bitlocker-countermeasures.md
    index a928d5da12..89261d666c 100644
    --- a/windows/keep-secure/bitlocker-countermeasures.md
    +++ b/windows/keep-secure/bitlocker-countermeasures.md
    @@ -53,7 +53,7 @@ Using the digital signature, UEFI verifies that the bootloader was signed using
     
     If the bootloader passes these two tests, UEFI knows that the bootloader isn’t a bootkit and starts it. At this point, Trusted Boot takes over, and the Windows bootloader, using the same cryptographic technologies that UEFI used to verify the bootloader, then verifies that the Windows system files haven’t been changed.
     
    -All Windows 8–certified devices must meet several requirements related to UEFI-based Secure Boot:
    +Starting with Windows 8, certified devices must meet several requirements related to UEFI-based Secure Boot:
     
     -   They must have Secure Boot enabled by default.
     -   They must trust Microsoft’s certificate (and thus any bootloader Microsoft has signed).
    
    From 91d648b2443669d91b69ee032fe1a63fdbdb4405 Mon Sep 17 00:00:00 2001
    From: Joey Caparas 
    Date: Thu, 19 Jan 2017 17:34:12 -0800
    Subject: [PATCH 113/210] add link to arcsight topic, modify header title
    
    ---
     ...igure-aad-windows-defender-advanced-threat-protection.md | 6 +++---
     1 file changed, 3 insertions(+), 3 deletions(-)
    
    diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md
    index 0106702834..d7147d12a9 100644
    --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md
    +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md
    @@ -80,10 +80,10 @@ You need to add an application in your Azure Active Directory (AAD) tenant then
     
     After configuring the application in AAD, you'll need to obtain a refresh token. You'll need to use the token when you configure the connector for your SIEM tool in the next steps. The token lets the connector access Windows Defender ATP events to be consumed by your SIEM.
     
    -## Obtain a refresh token
    +## Obtain a refresh token using an events URL
     Obtain a refresh token used to retrieve the Windows Defender Advanced Threat Protection events to your SIEM. This section provides information on how you can use an events URL to obtain the required refresh token.
     >[!NOTE]
    ->For HP ArcSight, you can obtain a refresh token using the restutil tool.
    +>For HP ArcSight, you can obtain a refresh token using the restutil tool. For more information, see [Configure HP ArcSight to consume alerts](configure-arcsight-windows-defender-advanced-threat-protection.md).
     
     ### Before you begin
     Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page:
    @@ -96,7 +96,7 @@ You'll use these values to obtain a refresh token.
     >[!IMPORTANT]
     >Before using the OAuth 2 Client secret described in the next steps, you **must** encode it. Use a URL encoder to transform the OAuth 2 client secret.
     
    -### Obtain a refresh token    
    +### Obtain a refresh token
     1. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=&tenantId=&clientSecret=`
     
       >[!NOTE]
    
    From 1182f345ec696cb508aa8ba26b78c4321c811333 Mon Sep 17 00:00:00 2001
    From: Greg Lindsay 
    Date: Thu, 19 Jan 2017 21:17:11 -0800
    Subject: [PATCH 114/210] done but requires further testing
    
    ---
     windows/deploy/TOC.md                         |   3 +
     windows/deploy/images/sccm-asset.PNG          | Bin 0 -> 93514 bytes
     windows/deploy/images/sccm-collection.PNG     | Bin 73646 -> 39282 bytes
     windows/deploy/images/sccm-post-refresh.PNG   | Bin 0 -> 393831 bytes
     windows/deploy/images/sccm-software-cntr.PNG  | Bin 0 -> 35740 bytes
     windows/deploy/index.md                       |   1 +
     .../deploy/windows-10-poc-sc-config-mgr.md    | 159 +++++++++++-------
     windows/deploy/windows-10-poc.md              |   2 +
     8 files changed, 104 insertions(+), 61 deletions(-)
     create mode 100644 windows/deploy/images/sccm-asset.PNG
     create mode 100644 windows/deploy/images/sccm-post-refresh.PNG
     create mode 100644 windows/deploy/images/sccm-software-cntr.PNG
    
    diff --git a/windows/deploy/TOC.md b/windows/deploy/TOC.md
    index 4fed1981ec..c402588e83 100644
    --- a/windows/deploy/TOC.md
    +++ b/windows/deploy/TOC.md
    @@ -11,6 +11,9 @@
     #### [Deploy Windows](upgrade-analytics-deploy-windows.md)
     #### [Review site discovery](upgrade-analytics-review-site-discovery.md)
     ### [Troubleshoot Upgrade Analytics](troubleshoot-upgrade-analytics.md)
    +## [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md)
    +### [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md)
    +### [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md)
     ## [Deploy Windows 10 with the Microsoft Deployment Toolkit](deploy-windows-10-with-the-microsoft-deployment-toolkit.md)
     ### [Get started with the Microsoft Deployment Toolkit (MDT)](get-started-with-the-microsoft-deployment-toolkit.md)
     #### [Key features in MDT 2013 Update 2](key-features-in-mdt-2013.md)
    diff --git a/windows/deploy/images/sccm-asset.PNG b/windows/deploy/images/sccm-asset.PNG
    new file mode 100644
    index 0000000000000000000000000000000000000000..4dacaeb5659776b1ff217d87f12b57f1ed56c454
    GIT binary patch
    literal 93514
    zcmeFZ2UJsO*EX!<*hN&7Dxjz^3P_bEBo+i5Ky;9*5Fu0n5$TeUv4If~0i{b+n$lwE
    z0!c(l=n)V?F+>RvX#qk>PyVPgjL(eDIPdqo>o4nH>i{R`>L-o_|g5S`Oy_C
    zP_Y|1POAm4*IzcV^Ix%IbKS?El{nw0E-O~>vrifxJsaXU#TBXv>UZdkr06HCyY5k@
    z?DLD4XQ{n?!O{5U^z{s0#J!8pwi^DpExxT);)fr9gvXeSkR(Uj+tP2!CqIc0vpjHJ
    z^>T8{k5VEJ77(@f_u{)%jhv6lj~sZf{iw8sQHd%?8dHDx8ep``dPg&Pf0zpOpV)`N)%a`2F9{#*3PMamHRL#bo(P
    zPn2j{Q?CB#{#%
    zGK8>?^I&`upPtVW=H1{w%Hz)hIl}p@dJ9f{9xs#s0hl)d^}K;`L41N0v?Ukv
    zvlW(G!C%VbrSZqG&nAL7cS&b@N-`D;@&JpLK*2{a55wH85KEp2>z)z>cPcMqKAmzl
    zkn%9tdhsm^uqP%eW43B8V
    z%^=N(<+0FMI^BAa9Zs6bpP=)3Bv6kmV-@UC9+0t?f58g&L74kEk2fpJt25`u0cpm0
    ztTsHSEsys>mYZn>?RAG*TOqjp2#20|1fP?~8{{ux3nyZ^D4=zZET0Uk$>US8?3p}P
    zI-Z%H$7Az(SmcBS2M#>bv(a((dLC~C!AUTOQYqn=tPu22giQ~EWeLm6!}B?K!5jJG
    zK!+YNNUhk}MR#5s;@QMT?Ci#T))N)hlROL~3Y$D}O9kR&rE;}1DvuSf!i>*x@q9#@DAkD2|S+(1oeD!D=ReZ0kU91g>wsgx`zNI608=*_`@Kjy&`s7HDb5?
    zdAsY_rhn|aHl3?#^Xoott2~{@wtjPK?2Jk=zWtq>gt3a7%CZF{!Id?jX1Yksn=*d@7kCEi2qd~lV3+=&RB5m*@R0(tm&a|9JVo6#i|05AU)c
    z{l&CDNq&nCmq-5{6nL=BaKPve^ap014f>)|pA?DF=<<`#%O=Cb-#GCv_x&bY|6!kH
    z*ZFF)_+r2({?P*ePec8yqyJ=z??b)DGg<&_m8wWT>qitzIy;y
    z`i;l`C!;=+`gi&6`#D6w*Z&ine;Iz?+W&iqmSgoBPVqG|`C69f{KCP$jQ&ER;edQI
    zAoTp=`mB_bQih~O2hsz1({@A5EH2|i282c=PDYXg)0$LJ3#9poJUC~GuHR4LXHW;(
    zh|EwK0X2Qt&x9;g4#FG
    z{SU5NCcuAi#C!6;sj=lTh2DJf4Ojb^_XI@#ok00YW(wT7_mbS)`n`bA1;mj7>^06H
    zjP0A-SQ6&_I-C+5?w*?7W;o=Bo2(9|ub~lV!i&S`lNIiAh>&486>bdD*N!9cG7jz*
    zvD@)?x^3Bo{y!5yC%VOd8+{C*+}I`7gfQ=&u>5-~YmGPt
    zRwzRoJ#Oy#L%%|t=%%M|2)DXgfy8Ca@rMinizk4+26H0`&2`xp2iAg_tf9--6~d=Z
    zWQIbH`|(WUJt4<^x6~$B06Gm=`~3HK%F_&D0RvLa#?@kUT;?@1#IYs3{(#g;cRAQ%
    zl-h(Tdw{GM);DGVqXuK
    zXQ43@F`3X|4?eY%C)|JGkcekOuUXb=SvR@%EdvVom?F&zRkC4DJk2Zm;b)lek*F!l
    zh9Pg3g^W3qBNahb84sU=4~b)T!w$R{Nob-&*tkvnV0qdgsoTJ_u?rBh(`*FE>(dU>
    z2GDA$onpd>W0?0w^btH)mKX)#fvaa2&tijs{12vgEaZUHeZJ!vA7aM%G{4c@_#htZ
    zoMY-HGLp%_b`n3BkMp^Nl4~`57{7tqOvm_fMmjf*CftB?Zdz34hPAFmOvSir-Nh~q
    zRRqYEdQnAw{;pE=OOyQ@#{W7YFGuvhu*274{F~1HpULyj0_{`Q`#ZVw754u(f#5MM
    zPgCJ$WA6j5X_hdEBrdUeZ)%(7Kz_b_n$8kz&pr|Lfc-4CrVFOZY>QeBvI>X&f+45I3W4O8+ajFl-AM^??
    z8R=ALvDg=88Oq&5=+2D`n%)Ckl)eS$Fk;zvUGzw_cxHYfF9C<`BoNJ9)b9uJ4Z0Nz
    z5wq*N72*)Hjr1Uk@L6Rd`i3W`OyCnkXA==d>R-*|e?7RIga4!={#}K(tSCP3d_OUK
    zn-#v&2x;t8{92{)d)>P1(!Y=CYgy($SYeCCzi~(}?YP9J&>uX~pfu}q2e^k92
    zWxm%D1oeaQ8oDP7HAEyBAB^V}65J%GyG>TPZA0h{Od^92+6itu4Km@J4?^^biMNL8
    zv&~s%d$pHk&i{*I`6HA6ZV~~Ne9bB!hxN&f-|r9K9m@iaK$fMMJ!vv417(f;(qHEv1>(W6j^-r4=_r9a2r#F8NUQ
    z#_%rkIfgPAWpgeQUTR}KcQWf4W5jQZqt7j;n<@4Ag+bggemK9_LT*OF(XK%uZU##B
    z5KsB%y!fZ=xZLAgrq?fb{sq+v9R2&9`wOc5GtYi``%nAZ&B4ESqy8h9eru+*EsNLx
    zhAscvT6iq5rPpbV+h(e9qTW+{QCpv_&)Y+sWKm#797i6G{Ca~EEwUN;tAkYZ9ZFd>LYA1*44Cfiesy%x=v
    z@7mJRJw
    zrz`z#yk(8~e{98%mit^feKiII^;Drh+RvrK5uRY=I6A_T#ywP
    z)&}L+*a@)}3*2Pp4&*z*P&*I+z_e$-#}91N0^riV{?oiX&|*ZbxE4=u@`9YX3RUP4
    zze?CwF2NI07qdHQlcPgJe!&`E-)2YG)!G;+>+CiPg7bk-bindDI}O9%D%9-d&h1oX
    zPZo^Fj#pMy!S?JIX%_mTZ~aGs_}{kYKPaltG55QL{$iVDBYm;cscH0gzO-B*d_Qfb
    zHvaUzs#4}-P)cbE8i;mB%1+d2eP}a0)@gY4y`{0d#@$0qi`|(|t}R^mbh&=bd_SB2;n2&j_9d5oW53x@
    z@9Q~!nS1{t*8fafe+1%}mE@Ps_j&)n=z?E{&VMsvmNnV;L-_qTwe1OT6WM=r%dvI4
    z1;3gMH+=jf*td-~%lhr$?S}u#;R4M#m8*mJ02O8~_I02vni$B1eZK3u-AhTM^0Yk_
    z@$mDbdq}jzimB+KrSgi-d7Be65X#|dI);uuj{o$8>vq>O?JmgiL+SAd{fBT4jECU6
    zD=hHnSZvr73Kx;;U=S`?G;~V-m(OoUS&Jq&b)!2Dh=hjTgKz(Q!-BLPdD^s_9PmwA
    z(|h=iCPPOV7r9%Xhdb#O2ZxMTUln1F%+_ykky8;?kNbSp?ZA?khT)I2KR9kID^O23+vb~*Hc+H($poII=g#oiFAGnkrykG@cA-mX}Uqo%?2c6<8lQ`~Ghq0XY61M%tl%~O0
    z{xmhi0_I46hL>5mPNqJ@7C*YCb^CYYITMux1)^ge-7po-Ngy$V-6()XU04;nSC)Uo
    z50isng0N$4js6eiX-ns@D7FEfmr7;x7vD(6!st@fvXXbZ7cG-pa9Fl!bv1TkZ55~r
    zJ;lrZVi?xuS>u{x)Z*kOs~n4E)bj87@rI2;g-R0j_%>05nlr#&B#f{qq
    z8-#Cr(PG%hCS9dvE_*@D^N*HZRR?mPHg9>G+olr>cR}W-GVA>F9o-iZ7mL*6@KuwF
    zI18ZH#T1iYEw;@yKS50d_Hv9vb1c;HE^<=it5Qrphgp4a~16Ha-@<-i$KK^6ct2&x*@fKW_Mi+m^vg
    zE#zRunsH0mL5ne9>8eYlmbC)xc{LJ;eHWfQfk)#^f$)W5ciu<|FiEnxLH-Iu`wm0%
    zirWu$bD@GWF8(bsSzkDgW}KjFpqU>Za7tu-0>%6SM?3C}p!x!P;7kE<$O4kv->KOM
    z3m&)9h!Z#qzYl$h@ut&u@#F{_o39CHTGmIvUB(TvCg)i}E!F=3ID8A#vfwU$BGX*g|#Ow%`*VzBty4Y>q_){!9
    zHn7?qSbD!Z#l%-q5n00PhOsQF1#3AGiOUOXwX%dE?^Y4|l?zLJtfga{A77@bx
    zmH27eBog78{E{Dntu6e|^giYp-5dgE;
    zV9~>_0pgKs@C~|SZ!YnlFiFhxf}|!4yJ4Kenb-%
    z7{VNW73nHLuoOTk+D02jgN=vJBrj2d>5v(rt02=v3Q>j0qe3aS<2+&$;hG5yY0{kZ
    zct*(dF|)m;_chX*sxbwJ!@WxqY68Q8WaXvn&
    zBU-AvJ&pe~Y%zCnet}<=%sVAdD+;TshJjNe%|_e;2bl3@gSnU@ws8?`XmP;Cr~Ns4
    zvP^I>lpq#_9gpIjq7OYbQ;!?$(KB;V6w&}8d{H;fV|fua3*`41ieR}y83YZE{4lgY
    zeI}zGH`yb=SRzt7ZUS%CcuuFs#JLz6&aqzUg1ou<`by%z`2sf
    zN%zjK@HTl`hDJ(tS}gwp{iOqP0z-$^pk>3_R}pcXobjtIlTuiJ)XH00PIB#g!v`y%
    z=jbgqm|}Lu3{&Q+fI+s$!$$~cdm}#)K__=4md}XI^$WD#6Pn7RCd7M&)sj98xgvhz
    zUE}c;8!2vPBOofTQ3_L3J(yyY($qe2cJ4i&b(bo
    zEfU-m!EZ)RP?=LI6Bu4$cOd&je+6tvvC0?Hqgd1-n3LmNprd^mEmX^N!4>C`9U5!3
    z!E#~qi}5yr2wFcZzna>}Zm$5mfsWZ=G3-3xl|}Qc{SwXo;=|e8kTddE9@Of`2yTO&
    zti~uxG!bgX4iP`DbO@TcN~o>^F>ZnS%thdYqjN3p>dvx=nP%j};Y>1Zu^Yjr+H9r(
    z^VxyiM#jV4)BBOLRi5ghiPVJyJ}n{y2Y?Cr9EmeP?YJDXUyxiKaR}_<%x2`mSZU7H
    z`^cq^iQtHp6#>IX`NN0#5V{&-mPUo~axER_b`U`P6j%wn8Kb1lZ{QC=YcFrcN4w33
    z<$6_;C?camdjmxGgbuK%QBzjEc!O{o642lOwvDMjf8bE{S{$N>tECZG3(2toM@}+R
    zAOQ5z0Ev!9HbNBVuV0XZec&b%5aSrmdmN79B-eTcY7MlZDLfteHAg**;O&s&pz9Bf
    zYrG$OKQNUUFEltfeyF>hE})AY!Q5L^DJ->>Ro;5D<=b^$aIk>OiB6h%&n_6hlq!XWOJ7)_a-vp#1~H$3tYr&%@#z#sMbS(lPN-`s+>0=%Z2lpV$pP{nd+S!Zwv+tqbgQwzZGX~
    zV)6>HcH&5N(l~E;v2(X@P)GDL#JQ(79m1nico-R^Y^H45+7VW$8As6^F=eCN
    z+P;8Z^jI*(=8W-iclo&#k2I#@^ZaN~2LWv~=@{3}+&vvuh2%EwFJzpb>^Y}Wx>h3&
    zxNsbJR=lYKJ?%pjeCxv^%V6Yu!ZFxw1
    z!RCWPh$Vp6IHb98Dx=eOl&rFIIK)%jI5YXKf<|JDGr-YPjvX+2=OQ43x_BLK7%Hd+
    z6yk=~x%)TIFXX%l#|)wmPIlX7L!*t`46nL^lVTjzb%Gxt{Zs8dw~u*+Xyr0T(MPX%
    zRzte{o42@$xHk4kofbJv8Aag7iZsI!>N|0IF{46(bCm9Rs{7K(EG&?MFrV|dA4za7
    z@zi&)3$ml6+%S!f<=>oE8e2cs3QX(b)C?88C?zX|HgAzX?%o)vet%q2SL~1hOyhx*
    zW~%D_I=_Mh?I_2jRzns{B&Gd{cG8mlfwolb$U+M#uEv?B`IHWq0WPz$X3cS3hqO(;
    zm>>&!%*<1|)XgOiZdy}f5G}CRFroG-=a#wErEs1oq5f4pt7kU(0sV&tOnpU=H
    zZ-C^U&-(
    zMnQ^w&9-y*T~*T>#0w$nRY<*dh|^fJRJlt%H5D*kLI42?DJtDAP1eaKNq3*Qz2z{+
    zUvwG1+U30I@a~&EiO{w)HP6z9Pn~D(AAYo89K5ER!drp&__0oQR05CBP-)fHNCw~?
    z5!*IB@l1h3PIUK`mzK(wJSHPc{1zyjAo?^be-^&@epUA(t&3*}Y
    z^|c^-^6VKdMM1utn^*Knst_Bz;VJqY1;^g}41gDtoy$kCW
    z;}%kVS?Vt=)VR5Ka@FFLX7&x>LbeMf?oW|$cO1?QS3Mjel#qSq?Z){-91hyIiNCok
    zP0csQS#tlw&PV3-djIAl+cLEkVVajZ-t}ysF~vcppo3|}a6>yI{|~@WA-tCP$o1bj
    z?)4^-=W{_3d4^HE9;5R)F-+-IJ9`ta}JRG)fHN=23+&txypfvGYOZVXE4}*~@
    z@|if`HB-K$DyAcqir}?7vt0Z+6%PUh;W6p*v!xwpvOr2Zjv3f%i!JdOuh-bOim{Ep
    zVG>WT9kqM`Z{y1pYes=35hUL=jo8_XxM_kN;aT^aVA<{MyEG+BU50u&dXo}nS^HCJ
    ztEm#39;ejeCn+tn1BKcC0~T_Y(f}{BvMmY2>lyF+!G?)>555+MxcTvZ?b0iZ!a?6TDw>Gnmg&C3EzVU)D{p~KC
    z6RCP-=q578hwc&yi`hY$;)ejR@~J@h&G$F?8rQs~9DCq~#K3qu7j|{1
    zB@!u&Qa8)dA>gqcRU=+T_VVh4e1|0~dx7Ltlh@5nKCDInQlE&RvpZ?q83n$9OV`cC7?!lU&z_U$^ayocuFAu1hg{e!;Ht$7jzhGL1GpZKl(4i#
    zytmvu3SU9E@Tx5!h7wWQ_u>fz!5AePpe2qB@Ob^Qy(o3L!T{(cmlU{Rxav)eGGfly
    zu}A7ocS=)0&7;p0(|P*ElBt`QYS{Q&cRI>T^-}ZY_ca=hhMtJF^UVaVh!ocb%>0|A11^1!5ehnSlYGH-kA((z`_3*d!44lRWd$
    zg7=q3nq>t%9$2VPfZxx`&urBJxyWVb%d_`hCIQ}8AL!bt|B#j&PYGLGkjn~J`WUXJ~pX0s&{|9IqrdWob}~DzB{W?Mf<(cvb%n4x$U_QCH{Nk>E@QGxZk^>
    z-#na*))4e05CO((*AhFMr{A~LPY-HWk?ZQH3?ocptZ-EwS!!H7eW!GQMQDp<{O}?2
    zQVf|oJ6l<;rjMtd(4FGc)}9HzQmuraPRJatk=`Ty;oXG;`IN>vCqLQzd{mY4SRiRH
    zO6b>~nO$Wn$fPaK+DFgZ?^tziSB(An^J~MEoBe`ha0jJOK47WAs^B=EUT1sD9rG0@
    zWN?BCJIz^S{%S($l6#rKmaxVd>HhGR*BKMeCVm^)9BCgCT0O3O-N0VGJf(={(wz^p
    z5Zzf5tHwGzot&~bF8Qmil*+Y!y&DOE{2EnzFk5#dYS-nqeF91FZLP@O1x-pwn%n&6MeR2XHs}c`vWO
    z>XfEysZP#O>*aS}4-C~;{v~7hg-%?vf8k2PhHWzU@hu?5b7rk;bM4d4YyM^f9+y-uR@_?C@b_@TWwb)rJXx|`G*8!jg~D)V}VeN!&AkuUnlI1fr#`+6_?i&8(mTaQX&Fw(%Y+hzO4w$Nkf
    zbON*{My*ly+|?zsxA)q6W8VXsippq}8=eR5>6OBvc=8t|O%B^ik~Lz2@M>6))LVI-
    z_-;h>jkt_S{O;KOvXh8nB}|9kbe$UQr*0{hZmGoGe%2)=&kCKP-K9cZKM~9vF?}$j
    zsf3Uz#2i71RH^;b;L{9wj~=XEZ_@zK@th9Q%Wt>yIE&%zeRXE*;L6gL+KiK6wKol<
    zit(${tJEUijMZ8h%NHw{t8O!l*4ZKlD7338YuICEt5s=#t->n9B>z%`ipIvGvK3)l
    zNA&PwX8iH%kAGFD5C0|VnNf6LSsyx}WWACROMC?E*3#V|ciwB%Z^wm6qw}Q3sv=wP
    z5%0BOGTf3pqGj6*3@|11KxI{33wSaj+u@v|Z8%28Z|YrTPZCP{^7$~glhtL7)p3K_
    z#Jfg;D%+^BI1HY9NU_>iHnZ2LNBz(QEET2oc|_OZ5RxO+Q{yy@n#56yRr^mnt4YZm^Rux9=BsMTqzN2c_`wANNX+mwj&j<@;2SNW+b
    z1Wp=#R9Vr_YNH5667Kep_G8psk=SgqS!2ABvZw4;dC}eJVVy=8wqU6NjT|16#
    zW&Z-h_5(O4mdNZ6ttre7O@aG(wh`JN7kM7H2OYoWyB4dJ?eze2tlB~ic9ASq5>_H<*$p`4`!aG@hc)0!;fT8Zry#^9rP8(r}P
    zMo28~krfPqyaq
    zpX=4iVa&4%^^1NeP$t`-DagF!pxL8ky0oc??ar~WM+K>9&%9`VvHv*83|x=EhYERJ
    z?hNK~slt;ZytE=Fl10O3PyS@%p#huf)`;;`_NZWZYaL;xTdZw-Y7JO5jp)eqeh@xO
    z$UyBzCok)=7)wo0arUKF-e$Uja*D9EcyL4-DyS*sX;hO8YdOG^MQ`XA}Fz
    zo%N&n?ZVIVkGIiAg0{N|NW-8V>$Ck>f$YD^|NkdyfwS@AyjZ_X5KfzR2!fh^KNl0Q
    z>D1jEmFgHm^q}_L>bg2I)rjGI9;VWAhW+a8LIaNaErC#?^*l&=Fq+^XAmd#J8&qyt
    zpp+WkF5-Ta%{L#6hKrr#$OW%M_4c9%?5}j1dF46t%A4lj(Tb|Yv4fJClR0I;5`&?Y
    zDZ*0{*kGk4%NXu6Tj7R`Kw~n&F~#KEk3QR^twifw>?7Jwre;B3>g(w#$tNLd${yWm
    z=w0)A?q00$WwpL+%}B`BA2;7+UD@Wp9%8r0RFu8X2i5-ax)$x|OyiuN>ixx~t;eQh
    zbPq15>3WM=zODK7gdSfmKY9+ZdHR4iR2Kk1wUwUne@rawdE(FA2f73|~}l#E5J=uINWED7aHn
    zEtt?(?HHsCL*5Kv56Rj?gL*0T<8ZYA8*sAO$PpirVRJdQPt5PifD_@ORoUd0?J4J@
    z8nIgDQFO?OmCQFq_&hSdwI%FUELgNUr|*2@%y!vX$<8guA#YEl
    z8%}}M0#8Px#C03(#q#eZJ=p5km-OtX3IhTuHlWdKH-F!#o!BRx;57Ph;ztM(a`@Nt
    zc!+f10zSDBbD2JDc>xrxkL#5$)uyT1US)Dht#jsamJi7TlvuLl;l#sBp&o1P%Xdt#
    z=_?5;GE)G86cJ~lZKM*!VaGANK1vD@y@9U9Mq=?Xo}e`rg}g-i6I5@~qz*CasxaC0
    zghT=IGG;0DeSFx#)Q@tZcg+IgXTXh80Z^>1*lA2ekm$qcI?MVTCzp`
    z@C((r{%?wf)5v{3yKeSLLw2^#)pGUg3oC1n)htrx@lc4=uxeCbnUI)?n!(tO1vUcZ
    zccMlTX*YEId~4vW*X?}E0%IMFi7iq2AUKnx?}ot;e|z9aL7Vo{WUF
    zC$*L-HxoYP(uh)=diIqI*e!z*NxRE6qVBRJlsNic>
    ze3VKVJ5@s{9c!->qe$tCBD4_Jh?@D7>Q+BkoY6XGr3*c4&g+5J%S3-6A1r#;_|0uQ
    zHYKcPEr(%NdQfK9|8QUXUU!M8dzXTAoyHVmMXASCawE|`-BoR~n(7!fPk-`e
    zp_Cu7-Vcp#y;59dFHjO53A@qGF{c7&2D7)a{aFcqsH!@Vp+k%ensA
    zmO0P%u0my*-7B8g_H3xhO_?pMlEAbnRrdZcb>iNnK1daJqH3$otu56S(a-vR3_V`C
    zHv_SAv@bR0-9mu^PVhbEHR^H9kRHiZ&JNR|1+E3sQ&+dL*$A@iS!df&Z{h`?b)RGe
    zQI>sEf35T3ca=+R@j?01yN_H-3OX#=gEpxI%Glt1KtUvcQDID;>%}*GO|VbR7zLEM
    z3FUikgu?Qxd>kqU7sv?IE`X&M#R_bi9@|GvizcNR$`|J@MtazNdR{E}*9b32EwSOop{FTNR3g2e?W9snyft9np$$vt2QE$7fiL1cPnEWa;qp;=
    zvJiwASF8mfTVW|VCtf-+Gk@sv)V$gi$;z?8$Bq#Lw)xirWUF|Oshvr{k}&FVt<9Gr
    z5W>~$Q;9PUN!tcjnvui83#T*`4MJc;2-83~EtsxYvR_4xWgq4p)`ziCiVTp+B8NwF6J69zEu6c1<`e;~x
    zAU~S_vm%Jn+4RC(qgUrr%M}*mM~#e+0%Z1HM+lZ(rx%V!dGYcw9RG2>mK_6avbaSr
    zGq0o74es+gtrUo!I80DIHH4h#Kfry59Mz=R#t?RCVfssu`p*=eHYO<=fJ=+o`)AFJ$&8Ip^z6&e@H}C4cw`#L+ykHsBkC|n)qG=6U
    zkO4!Ga*f~iW8N8P?T_oD>b35{YxD&xsSJKWSOMZhj-A*4v^1h#^ta>TjC^$J;bYz#
    z|Cc2Qv-P2HRb~QH?9G@;vBA_`-w`i{^Wblt3Ug496jGwXcV}>9B#sy}+fd1Kyq~#r
    z>&19fEHU)3k>2at+OyX97;@b(z}hCWU$i2;>M(}=sCu#%7paj(o?F{W1I}Isz$Sb5
    z5V?e$`L)5=@-ULJqqe}-Te046&qn!ft@jZvv8eOJ-XB7WU(y5Va!V>|#c5h`GKuu~!0Z!_gVyvN$K|gaPOrcR-xZoZ>MiUN
    zG2==no{@YdkTOFsO-1AB6xq<}$sG38;}Y$gqI1nguA+jV@Al&-Woj~F3t{Cb1jb|O
    zKV%K(x-24w(0$C#Zfe&1{FeSNdmp!;8<_9rsWXoBckbS*b)cq+<>wjy(=xTAIyftK|5}H0%$KoTp?CmsD(0o-)ub0XP
    zA$B(v>Z0?Zf3~lGyL#NJL-Q1Kx$vkd#3DjYvYb&&QfIfHI{&EO=&3;b94+)dc-p82
    z^DE?HnsTqG=-D>?VSd_=$j&F6hP^uh(uatC#tj}Db_XSj;}|L4>SP5l7lt9k;kRp>Gqa?5E*fLzCdF>!*?^o^&g!=&GZ3QFr!Bu)ed^}
    zTbD{*zz@7of9M3UZgICYxD1FXe4}OgNeAITl@t1-Rf#Ri
    zG`8MRw*|e|XP>Zmg*`#eWD|>dl56VYf*O*_
    z%|7!j-Hq+Uw)3~li?n4Jp(dH46=Wm5MtkogenV6zFJr}1WJ#_1kc>i+656drvfPDG
    z+Z0qM-sgVn$YAf&2gtGeLz5{|5Q-4LgP%UoaM)_v&^+L9{^x}9$TBdM%EP-z<#4kFHx#42|Hz@HjRLn|8u{Hx>pT7G
    z!kGB97P`+cA|y)4op~OUp~XKa3>L*IswMiITFGm!_1-hxI^MPD*|0b%cOmc&bGVPX
    z=#w-MTX4qPyhO9n{k6^Us|}J52eN%{ycUyL0C#Hls5yZjDVY|cg?3gn{_L%>vt*HI
    z+jXfASkHc~WwOfE=Rs^tTA#vPACQc+!}xh8`JA;7DV+dGdpTjm$z^ul?_8f>>7WUL
    ziK-e}>=TPthvJr=U3_ZlhcFu%h=Y53RhW%znUe5RgELCq#(PC$EB$sIE#DDxZWLZR
    z;l@xOd=y*TQ*ZXR@neU1Q`@FTQNG?c)^p12Bp=vrd>%)a$Kl@CN1IblhC;$i%3daQ
    z6WTLQQs!Wey@9n8+X>n`2@|sLX>WYeSnkxSYJjAsR}zm>hmnOyh+E5?tB8O6EP8z+
    z0%<&Gn25jDw^^sipd^cUF>Kwvue4XlO7g|l{O;(oxzv1c{-*q;0GUCC7%X7yKxz|X
    zLw+Z42GlN{T~XZ|$uoDcJnSlW4t6_d$K_v+)Lr*IdO*oq>9u6v{YRS;jWg}Ml~8*J*;sxzsm4E|{k?T&ozPwpn#g_cx7SMO$zC+5=T>9}Y!
    zsL<+g^LcJ!kzKe8S}LZw@8BX}>7()iE*<}ne>TIpW+dz!cwc!6u)M}O?4XbKQh{1o
    z?t}fg-3LGe?v*IFf{C>x$_f6hVv5&KbpfORpP`CE78@e8lMRVZUsJ>kdYbfDtM}qr
    z5S#M>8NjCypcm_+hKHQ;iuV;-fL()3@yhA`;R^kwO`^|sGa3R`Y^(v8^fuwmktL7J
    z%G|-vm%Qr?hqYlpVG#ih3fZiflr3Rvqrl;oAIN#nZdcsezs~b!B|O=C&Mz@>l%lmb
    zC-_$Zs?3nd)*Z2)fZRS###-y#O6%>D9xyC&kA~WsfmffKG0Z@J%_}GPqnJCR^UxX4
    z(Itw%BU6_|84ssN2GYb+KDJ}>Vs;FG_8N32_g)W*!jGxl!!rXKbx-d{oRPwJzo6we
    zTvpC?8t*_JZOCXL{izqTo7xU>ToZmRX0k7mF;C~ts(`MFNYE|iS;p&KPkFuzC@0xqv@i)Xi$)fsDRC|f`erNPkC{pIjrp&PV4U5bU_C|{{#`3g@I9409
    z>%h&AGxHxM)4tWn8I+B514|&0II}ikuDfpaiT=Kzblq;z<>jhdoYnp-hr`_Ed`W=u
    zyPG%vRUt9<;T4R#lZeGCzha=|%ES8l)Jr#28W-tLc9yBMnS&rx9psI<=*^pRimzVU
    zDJx1xRY|s&S1xuF=ZI^G4#EIHdjHN?plu@mT4dx#gNjQAT|}5qWzaN_8h5VdlFjN;
    z|3Zw-1O4(AzlUQdblkx`n0ILo=U&NUcj+f}LOTOf$uDaBI>t>~RU#O!G1Be%p{tL(J
    z)<;gqZKj6%&@s>XPIv})dsySsY=w^I#mK6oelai-(
    zh9S@Faa~EfmaC5pn`K>gUaKm?Or;PH^*j^S3kHr}(?}tgTq>o76!>oThGe*srE$B*
    z?&IB?ZGBLFA`;P=v0{`%3eJc83f#b0R+8|f=I&ex|NR|RVO!Zr(GSeiOoUt6Z~Y%|
    zoIUqXP61Kr^Gh#uq{`P8gW|DMn8QDd=qAV4v16;MGw2tbeirnR(#_`ksPHg7af_6u
    z#clNbg6ZIEXvo7dQE`i_b>iAxe*WTrQCl`XtWQlORq*_u#MYai27FtCe6|^h=xRL3
    zeODk=7$sP#p*!*(w%KwCE3B*PSkHXEteV_PUu
    zYM=)@A|-?cYkyLjJ>-rqN{}P(R^<}eO_%SXpgl>LvA~{%dI`7>@k2>|w4mQ&|E@{y
    z5NTZ!ejpIrH!$3)l@MMcBIZ%P^Q|@pUIE|>*VbV7m9mEXA~gtg3Jp1>XUf#xJC>CK%*lJxHE4{(r^qAkW}nK^
    z=jVR#hQtyg=4_?FTd{Lelq8@HJ2Y8VOACtGZ=Mv)Iy+yPZdy|_dYX#8Ig0
    zn@7CagIM6(N$0W;{xCA#{Cz?%RLsl>1W^;aC4BdCQ?a$Tf$4<%A
    z={iJ*0*j&ojx!6CRS!a0Oa4B*Y~8U51kDU*$vsV|tJOKh?4?NEo}O%V4b2obFEFTQ
    z9z|q6jN)yE+D7l^`-^Lfi*!ShyHXl(8NG~!=k6Qs(ls(g#9|DmC9Q<{hb>DYyVx30}{H$zgptuNXlg_1>2fdZE+zpB4X|l!u
    z{(fIrkpspf*=<_nZflK$z4el_5XuX4zR2e!#^{gfH*m6PN%?!%+tX&abDU9XqHQF6
    z0egFi5~Zglm}5LHUtIW5Jx-TlcCA}vl^I41t2?=>cW$8>yurh1>r3tl$=$abUiyyg
    z(owP0v-sgkOtMXV#fhCGgIaNL0ihst)Vo9Ww*;Sp?7~ma@Y>yF`{rVcjfG%lO`>-g
    zX_J*dN%dkwg3jL;iw4FbR(W$!kd=)|+1LCc{KKc1nr@>~cl-4h>5YU+DEjo;wlicug)ZGjjI|LAm<{*r~-7?-huEG^YRd*S((0jd-)o0IU2
    zf%|b@T#-1T>re$y2KpY{V4a(+a(CL16!eVSr0?vNnym&P4<|^oYpzr;_-tXlx)H9#
    z%F&Y_KZQ4Y%uxm!%<
    zXo4H+T2gI`ZmV{5U|nyY4}T65m~0a3P$zZ10jeJ7C79MLB&x?9f9_u2uy?pSHT&E-
    z{o%%IKlWR{^Le1qm6!Iu)%ylujZL>TNJ`o)%ju|ZlDW&Po?xpBc(98)KrqKdN=%E=
    z&lpaA8e{p6a^zJd3@{K
    zevKed-|g$x1~v`rQ8L4}i(Jyq$Z$x5<^h!G2%D{TCJp#rJZnBnzv28Q*MlwNlUg0s
    zOiuMW+lRxf2(mqQ59*=U-1@%7&PR6D3qaW=?z`5P&uM*CuAYR(A6xN+Jss{lODKZ5
    z#hru;;sz?YglNi|L}DIt^KR
    z;FVtJ;&V#r;j1JYZ6)*TLhfwz^YLB*TzjubmY@}p=fC&CGuTjj4C}??DHMd-N4Zt}
    z&OX%`U>;WFA(w`zydO3{D(4h<$E%@F#(Jz#;pR)cBFT3=b<}ul=UC61&q^7)
    z!}OQXJ9F_fJ~0pa+<1MoJJT;piG3xFZ!)ZN(of|>)BuwCtXg_#C+zVQQ?f;ssO^wO
    z_sQo0K&x;7**&?}yfD%eu1{miB*~K8p)_J9XfCaqf*H$YFSHF-cUrxZ&j&D4|C^Ucjyz!+E
    zUKBfu`h8;3_TB$Q-Frqgo$u}5Dhd_^6{R;pQKT7q4OSEZQBgVs5)mN;j1(zJP*Hjj
    zmEKekRBC{P9#9~Wt{@2=Bm&Y6NJ6O3Kd3X#>^=9r&slq&wVt=kn&p54e1BK@Tnigo
    zp>N7IKr0jqz&Q#@?IZ3OiF(rNZ`q@0X7&(>@CL4a6kgFQ;GS7i3&d}#xjAgzO=6-f
    zudbSVLIj@hek_oFYyL7R#y%%fN;w=v=RA=Rs-dh6NiNbZaN0F8PXf<=mp;2#tErkw
    zy8V#(MD_CLf!EWGnplm`P5dG5DJ@P&jJdD@l?~QW-}#A~Uk!u8Di6nt&d3pY+JWC%
    zfyT98NT$LjGGizCJNUL`n^?=NVEbn$zmDNK5cZT+B`}y-_5gEqS%Gm)Hf`2#eP^L=
    z+I(Xh4jK~m(hIR>_R_{TcTHkEfmqC2Y=u&dx`%4bGKpw&MRgMAJzOU^{D0oxRP$iQ
    zLl|Jq7?2WUvYA1i#~gxbJ!1}aDrEY>kLtGDcmyUdub#OkH3z-rpB$3N5V2D*${^j>
    z=M>L6%%LE92CMdv*-
    z7rVfkGVsvEs+c~`z_b22rTVsk<&(9Rd~Io)gIMs!y1}>y6rOWPAJK5;LVDMxX!-oV
    z{d+*5>$1z;^N)))us*DEmrahjcI=_oatY_1_6vzWK7_dFV$1r2_+)sa4(mGuGYNwA
    z?7@fhlX#NifDgCVht|XNANTZV@h}alS8DqWxVg&X)~c9+({UJPRlk}JqhLAn&Ip{j
    z_^e{yYS5~Wfo5D}iJu9WaT{*WJ7C81nUvc3Dch%#{`NDg{fyPy7O9XWKL+2}H2?Ss
    z4h|EGssUzhP(3;)FSCo6fB*VYoN;-auys=#q@sGcqI%^c^n-P==<=wsLZkmIw{>b^
    zu2uE-*}Oac3msYI#3kEn7P?j6dvwmOuMF$z%%r-X^J!gLii}JB05|xazdqB{K0nn{
    z?%;r;Oo_54p(hqFCwH%dhuC3*9DxH^8aB8=z(73s~lWSSBTY;~|i$
    znl>N$r=ptcWYj6#9Xp4)H>)8Za2(U7sb`@*kXb;nU%pp7AS@a+$^FS!$~Md|%F(|m
    zqFbq*d38$Qy#MrldgGZMiJQc!mofDp6nbvdxzJGKRYCQck||=mMV6Q9q3~UUYP#R@Z?j}C2PsKgly?vK5Gr-IDC^XFa
    zjGKfl?9KdA#u!kunuNEVXz-@rV5i9Dx~=&!efS&abLy|WE`{LMy3eK);_{2gTd0hM
    zK#<@mC2!2zs5auH)AJlzFK<=(U>77pt`sSGpnl@=ll-XN!Jde~w)FLBjO%`d)7|9U
    zn?t4o<+1WfA>V;?58vQ?B`tYd_oCB?6V8ZdJc^>CN?mz+p~dh^sQGq8?U_v0gP`T9
    z;g>^zH2bv@jftrnrs1zGABMwo9oxDr{fzzB)fQGQltOWp8AZ}FMy=(#6;qExgs-x~
    zYQrV(*DThhq2*Z+RJU8g>Ww4vA6!^*HT*MERlcK=wwF(UaV@6G(Km(&%p`&b3S%PV
    z@xGY|@fr9Y`moKv*P&wjSvEelh;9Crgh}1{qD>FI3Mj`0nRyi6e9IoFom0KLH$5^A
    zW#u}iCH8g3r`3ey2Te-Uc&Abc?wgQQfbhveO)nE!{9TT)x)WFBGt;(;jF(Ot8d-V`*#EFY((eltGwl9KTMVJ_f?rQ
    z6E1;e{BvEvxyS(Uij{(J(X*l*2mOu!%s#z
    zosQMMGnPQ74VB9oHlMIy(lj~3pXWa@R*P-x*@B+zC`qf@TwFNR)jq#|5%ls&WY*I2
    zyf*X<`ZcEsLAOw`hD2W&xd6Nx{IGO$30<|9WqUe4w7R<=P%Rtq9vV9sVc8c6Bvs+q
    z&GkMNLAfHi>Jjj+Jyak3#pXsna#Yx!rrO5v2#jmGwbURU=h(p{CXRO4!D$}oMhZk>
    zHX#p3JoARTM>Bi}ex}ItQ`Vp$9|7|G<@6{iy3N0_Hw_-w))wcTA`<6QQJgdN@L|{N_okzp2k_sMh;Km4@TmJKn3*SH1{63+;NkEY5S}UFO40-U3Z{
    zuD72KrH>fK*%Uo|v3OcO^K;2_Jb&F_c;Umt{d}nlVWACio5w0qT2=znJZIBLkGHk7
    zpBVg{4EcZ(#G){qLngJ}Ettsslgqx(xnkR9wU<8AZ2bmWVJIIS!2`>+aY!2&sMYxO
    zCsew6y^+gN5^Vt97hJv@9$wOQE4FQ9(rJEn?mUCEXcK}(PJer+s}YaLK(k&JxuqDJ
    z2j(eIf;!$0-TRU*3EywkAsayx_}=-*7OR)#HQp=!{UP5H_G{8ad;#cE>`U^%TB(XD
    zH0g7E?riByhrZK8uiCYP18RBQrv;C~vr#U6b>I-vnt*@HTm-DbCEYji66@W@J8FPL
    z@CtbgeqK{HAI>UpWi+ZZxQ>SPxUa_Nw*lSH5nA=45^i#Jnpj-ZwVnE0}KiICd5*rkHccLSBq!zU6-5T)HIJ2b7L@OA;
    z-lrC6);mstl|sS({<)@Yo)Puxx-YLNv3(sD>a{zy)*~BnA?M-$tfq%_O6R$$=XL5H
    z!x!m564MH~rUo1I#I8+Wgv5k?djNNkL^V={e2QCt3|mp6yDK+KWmDdG
    zLNwEc!I_{3Kex2Wp@s|E%M?bVNpN=2zY`d#&q~U{z?k#ho?aY{M;}R
    zojvr2Z8A-pI#qY&o;@LTTPYNo6OQCn@h8J0KhDeGayVoA@yq@Z
    z&hbpo#wzCRXsBmme$r{bLy{(t(+8_FnHU3#tZv~z1o65{oUfRl-2bT9J2@N6m|V=d
    zMksE(1#2n(6<0{jf6m!~rfFyeS}rh{OF%#}rOjz5(JjbVz!@e-94<~R^|ytR@Z^>D
    z>SgB4Y~><=2wBGat1dHJ7}_Pvp<-(vWOIuqDy0fNTgW8O9E*Ksed&0*zL^DpATYVL
    z<6fss;(6dPf{5gP?*(Re^&_v-kLU!Pb>5Bvi3D%66+5(AWy>rZ_vC&0nx5mfi!*e;
    zcF@?~TdEEc_Q{X@lRa`=%q*H~4$mv`gRNwTWuA@;FlLXYzdqHQ;SuPUdb^FS(^$gj
    zCdGR|Id-#@^7p-d?57e?y2C#HuCGJB`xNQs!0ri-gyt_pd4^`s3P4l3x-13)kG{R9VIALtwA3NB`J#)GOM;@
    zHJLaG(cV=;WOH5o2VSp!U21iEV}4S4w9L}qUL#DfF{45^=LzY(M~i=_86xMy-=8E(
    zt@kc4rwBdXsjV>(xj?waZi73R-N)!x*9fWPdd8FJ9$L(`cq
    z^HWBl#kQ}}`Kgu2>lEYkQbJ-wXmuTM?0*7sn@;OrF+%>}9;DJW*Nw?dinh
    zkV@YR=uxnfPSo(yF&=6C?87|L5m2@><&{wMQT=w;9UH#E%LRQP+!!-VcO1R7~}*E&VN3Y!+n@l8qrMY
    zN|e!G&MTb_|9@K?`CA<0vyYcTV|4X##w)Edo7gdW!)4?^WHgrtKp5_Hr!E$hMs;?+
    z!adA~Om~Mph#4%2v&c`>jEYLij=5WN;j%-`sXB!aY9eUZ}LJkmz(U^`I}5njD|h*;YbM^x-gcuH2RKSCGU_3yRkJ4I0yWo#q{QP6gWp
    zzsI1;_Z8z}Z(6_pIJq
    z7?;O<#s0X|_1*Z>4;F`vX@S8)`C0c&b|`wQvPlz%fE`F*sNak;=aUfOR|(Z+
    zuaBkSChJd(b8soC4LoXL=L5lwc$@;Tirtrqi=n4l_7L&s9fW%9g#rks7-PbiOVVE8
    z3yY+S?UVU@Fza-d_Ndw=Co@0V600M?(p4*U$zQ`
    zv4poXsjpj+0WI{+?;T|sA8s5y?eZhZ*`8%sTXaWfanYMg_YOsDVg}R5)-PGIL@(R$
    zm`rTBwUgaIqW-s*vLuWv7}3uWnW$B)g4+PkQ-)>g!rJ8QWUr)c*r$nVZ$JUR51R8!
    zzUELsc;_>9N218jnviLkLe_WXxS}d!@UpM@jD$#rn-*O6Vb7@NO2yGJzByA
    z^;!o&8fmuL^6nK~{3lB})J>#MzNRmhc(M+VhW=PA4UV55b8i}z-RW++~>MQI!?ZF+U>*(*4Nu9fEN
    zcr(aeJ0s1e*RtwVHUF<{gOmYGosRA}cG|^JbKuzWOY_k%Vo7z@waA+iu!>u&-38+58_29hw6(GWJ+@gEPdE0=gkHn7*Cot1j
    zeG|$w5jgM__>A6dls;}%I!A0qqOoIGd;yM>$CqD3*A)|ub+9w{Y34WY!9{>r@@<}<
    z`i-`G-Igjp^jq4KdI9={agmoH!n!^lpV~tl!brH)dogH{U%`YPX~T@!US4JyMwknB
    zvqMh?&vrAWHtD<{Snx)3L>HFfVbJX&uj9XK=`bc_r7X^PmpY}Y6}G6@WTu%
    zCe<=XGY-C7EWeZ{iEUZIjvVN9cdAH`F7U7Be_hq;oMx>T;Mi3ilw94~GZS>%e`qOR
    z!Ef1o%`0!eI@&d
    z7nlop)Bbk6>nVZ@kX`md*LvX2*Xia27^$$r1EKIw=EM(xh@9mp
    z*kSp>waCmezdtP;X3sl~Bd=AWw+KL-7Kk4?*;{Ml$xCk`O`gTR6*>*yj>%n}dW{mK
    zX`K6uoav{O7I%4C;m+Ec7_-Ez=Zqjhq^pZ(EIrxEp|a-y9k?1?_H|12UAb-d`Q!$!
    zE>5WT+w_Ei9($%q`RBpws>_
    z?-!0O>qgcVU4rM&qcn;X%yPr|bq$C{Q)5N+mxMzo|6p1}v9jJl*EF>o$zGMrg<<89
    z{_mwX5b$@Ju!TQ=@vDMej5G$zJ))CuOqcB}SQRM1&EIVfvMLcBpQ$z_@>jPOI)+>N
    z4x@hj-p9}W=z#E`uUc@fzDSX}CU!h3k}J$8D9z>HG(gl@4G>k;l??@uK;|9SZhS0N
    z(``huu(-0;cQHw!x7>aKpq`+^a1r^Q@d!xXO9z*QmkMUdJXt5DZu-&i)@pe|rShvCrKZlN-~Q*I`-TgW>CHqFBK1(K6J+ktV`wL$q#ho!!Ze*XxRq
    zC%@>uAPnX8)D-!C`nF&{PVSkI0REFb1=10<%Y^>wtdV2!=czd(0QN_0xYSCMs{{be
    zqYt&2x-j0Kx%mE!YY-x59r^<3mNM;b6p|fXYy_1@Exni_QWnG}UA-Q$=c2SFmY@BYM&SX;{
    zWoiXgm^Ph=JC}GQPZT*YykcK{cL{t#P-@kSetYkjo^|~A;w`FpnozsC7tDdb_A3J<
    z#S27&?$ZK6mVRfGTeQ;SwN5jQ18KpES<8W__H{>~ODirOoDk?Z>-&vH6UNNs>3-^8eacaO&UInheKMa9Kq)m|Ig&q(!}l|0>R2)y|q1KMkiesXQT>kEv9>Am@9ofjb5QnI4Ea`JHqS{aKys|qjm(Q}K92$w!Z@f0-Q>Ns7QGA^70c~?!jaUjP{a}ZF5;%%
    zzIvZa-^O)Lr_rOmtr>zvtI%?ZvJ8
    zL8NcBX9i85ugO8b!;00OwOKA4WPZ{*t;I<_xH{ECo;a{n|3?AFLa-J)n`9~g)#{+}
    zF8Nq3(iwI5`7=Br_;0X|qdnQtsp>*V>k&-+C^=7@r~Anfp4mR;i2^@bQW0j0sBxNh
    zW(Ys;=D!|Dg}{L{kB{FHxs668tjPu=c5a+Ve%|3RbsK4l3wyu#*NP@Y*sER)
    z@^ZD6X^im)hr_hOM*s)HybL80io7{;%d=S9d6&(xw3vs@d`)6bb|&pRXRwCjWgkSL
    ze$8V9ql6t
    z7u@ttvf8=JeUPHUsI>cBPyaDUTHpbaDmm-IQPZ;-z@YB)TyQG+QNQldE}eLPhF&)`
    z8^U(*r;q>cfkQy{uQ+L)qM!2!Km%BLZR2&c3#*zr7Pu`=u01<`o05>fz2UQzBuePn
    z9?Z<{>;BesV+%TY@l8waRdzGoJ~N@Faa5XPpPl8v`N5KIRO&^FY0Dj~&G6zJ>;-P`
    z9OZ^nPP{Sy9jb
    zCXYwsmeOwIL{R!FU1L5ggTT6!sM_7l8hS1qmxL&KO=lvfAB}db#PRg1wp5%E&dvo_
    z0O4wSF}T}#Te9-`z?0EZj{M?YDLP?4-FyB3@mJdp1hySdc4V+xL;;X2*IKkFRX8
    zHGp-Z-kB4<*=YRY{lf##!{5ue%7)$!^yttW89=w
    z7}`9wP9gPqN*Di@oEB8Mlz)|1u60He?K<^nT!nTN^IfCaq`{!5spGneR*p`4rg*bV
    zMRk1kXBqdL%2HkcHIiK7vX`&-UOo2H`sww0tW|iJJ!iY}vH6CmCm=bsfpBkOnp6CW
    z_uPi|rFKzaA1e^M2&)*RM7O}%5FZoM>IEO*kN%XsmL*Kf=QZ+Il4s{VSjC_g{;L8q
    z#ntD1GeNoArg_s+hNp_9jeP96l*xe`f){ch<+fmKo{)cScJT*w-gjtPm&xyvmubB>
    z8RAa$K45sAUn|DZay+ESq%~Jsb!wlVlY|bhVb>v@-99ho#HAmU_TAikz-)8xqp1nK
    zFN)9TRleTTqYt{Y0sZmep5=&Dd>nd8=9HsX`Y4}jg
    z(bX4JC~)VlG~2f2R7%M_=;HkC0{yRFxBp=h_9Em4=3mcQ65mC?e}B#vH_rBAgd8f4
    z-hkYNjQ8@ARVzM8ojLgg#?j51Mm}n*Ba9q`QSjN`aD|Sr+9_<012(8J-nA1V0A}#9n2X*MEMt
    z0>x!Zq3{i{s@>=5VWYdg0`j4jOp}z4bgN^%XCF-*n1GI%F4zmR87$cZXB$SQm^9l6
    zaP(7w0
    z*pYhwJuiiPUr6oBUehQ+0$8@+(#qx#Zf+TG+sSVB&{Q}7l+=|eAtj!&<6J=0e8XcN
    zt2F%b0BBc#NG!B*o*qo(z99ui6Gw5=*^!Yd)np@=Nt+0JAm-?FPf|o%O@5@vtBU{V
    zYK?t0;#*Qm_mG6p^URRqxBOc+pAaBX_yU)Ky3Zi5M%$cdMeBt7-*qXrjW}WL^%=)8f~orw^EnYZLF?w9mE@j!$4dG$kZ9>*4<9R
    zV;a|K3dEF+`_nsIBg{u&P+}8i`rAf8bhS!D&aC91m>2^nl4MbKhZ(dip6Y3!F4te5
    z9!>+rOzvqv*6S3$y6Q>BgH4Bh<>-LC{ja|7u4(%F+`|4%e|o>Q6ZhtwTwdZ68aL=E
    zD=`c&ikS0vh(BadlxBH|Eaqf25Jt3wCi#pnig^zQ+c}}7DA2w5?p^&-7sE{WoY(H@
    z$IJ4vuTJ|hw;hdW65(_K&_9NDNfl&u1&nC>t9nElR~W9#dblzwL6k0AgS#rv2kX`Z
    z$w1;6e4Crn1tIU)i%kh#x~cq6pnexAStv=YupZnH;H>1<#@ivgfhgij6?s(k7P2c#
    zEBszWijquQfBM&obS`1)4tSyUQItX)-0E@u+leU0H!#F`KiMZQLBef7OZx2?>;sLr
    z2l?BT80;7NqDm0>fw-4+Z6?Ucb$Tbz6ZTQ0wWe@ytzbnyj|{OQpNYZ9=lmNbq3~@v
    zJ$DVpj6vNn+h`vv!_B1oi%5t+Z=LE{YjYz0;z%Fnk*)%64T}u&BAs$VLj`-qwS|`V
    zk!U{Ob0g&NcXuK!q*cKO*^7x~gNN$9Ct(BMtqHF4wf?>i&BJ$KT$E8>+iu2)V(9I1
    z540sR6|yzwV&`J};AF2nPRt_xwpQFmYBPW!*go$w0$8ih_RfEdIy-ok^dRD1p)8KB
    zdaF-R2HSG0nS3Vz-`k%*Jun82r~};9ApFU{o2yko5wgQ)LyS8ysT-a&VZLj=oFJhx+6duMB^nUe>Omp9s+4M}`1eCmAuIQgq-bTkL%VK`ceO0}$CK*=e
    zwF!qrC-_tjZU=6LQo4(Nb&WvV
    z?^|B7Uqm^Fo&TTCy7;(3g;)n6TZb!JK|s*_N>vz$w?};IYi6ll@5sYPxNC6KE@XEw
    zU}x@KK+f=evlPr8eXE`}JSr~CmSNSW^%R+0YY)5p)LpfDS+PP5A`cuC&M1AM_9elc
    zD~Y4aayCVP9vHN!j5DZ;(qYkFqE`1T9gE50S6~j1%|j5QQF8fRsRq3fI&i~jCx^!I
    z;zklV;o9oZa^=@*!V~}v%u*f(-RvA3gAa9$0V&U0EhVR`IB{50wsEk>>goP;1^*k2
    zz91LjK2BXRFGh;&V1@i)JX<`Gv62YD%Vv2PC_y$CSryi6A@bU!fvQ5jCdLTy3V(oDJ;C?de`|6|eDVMh^
    zMH^#8kmxzUd(=Hg9nC#@q-kt_(%^i}#HVnDRls}1#oxylOs)y6$C&=O!Q6uV
    zo}&n}dwHnLWHU@F!>4?3)js7g@{VDC=l|YBDyK2Nu~FSKk+Kh#hyT{iULcP-6s#o*
    zk+SV1YP()*cU&+|PPy%Bgtd?BGT<4<+P#w+cY4ng!=cZD!c=wzUN=*dh}(>t?W`3#
    z2Y}yzbC%${MTv2FdO*O;*XwKBaLh0l?h2|9Q;^W5ifNeNkP@eM
    zJ#!mWpW)(;su21dhFq;WdTx4`dk3Fb#r)zsr~H6`*Ey*|q>XeUJ3MUBfq-*Vcx=f8
    z@@WtD^hy%%cGPXIo1Vuwt^d0gwiW2k4~*QvFO$%WzAd-v4Nw|-k1F+?jGkG8JA~8x
    z&Q)iHBc*L9!d5cUuJ&ow>4*w5sdlLdqZdDVL(2NgcYhSHSH9%_D^RWm2>|7u#2b9*
    zu>*i|a71)#x~$WdPffRgW5QpcQR+dLsD@WLyc-0_$D$^(<
    zXv8M0$>7f$Yokh|7buU%DIz4r#3U>2Y^cKjem?%c`03h^}
    z@F}m?IDa@eJ|SnpVp^jme}M<~H4l#knma8kK2PG+WJikDOwQD@b1fqR2B(_Y`MS5O
    z7-j4xHjZuqv_Ip&Xn#`vepeLM=}o{FLLL-Z|4@Sz@_FI;LE8+!Q1{bIwMd-kP4wEApCK#DFX+799;oG#?ZU|;wI*3JYniFWMf?9tl%)O~rlZtb9(5zj|dD>RsJA@Ln
    zdc9#Twkbtb&kf8hosRg^U3BwN5QL-4B0H*HF^=1sK7G5ia}1u=ELS%6qG9?(;|;_m
    zX_JmKTrg!Q^#whg^^32r3@-yTr|Y;lXq6(ceGw_}6v11#ntcF}4=C8w7f*Rx
    z$6pb^JAOhjBbu(N0^h+KHxa+ms$TYw-ZWZMmJD?dnFq`JbQNu)6dWXOh->+Ud##Vi
    za?2>GE|o>xP8bfvvu-2NGv^iJ0iqsYK2eQ3kf#=|_+vxu90XBui=ReVN
    zrauhE_oTm}V*urhR*CTbp`8736MZtwa64xVu>8u*xsle>&RR`p=wI%>)w%=TGiAFn
    znv?d3)Nv%r2^w^E6NAs`fjDuCDWc}(e9X|>V4t(22z%zmY60z;$+j)+ncqgLT>#tM
    zg;z|*T|0hQO7$tP*fXT$gsKf_V5wA5CoVs$#lOqDW%$lvVquGPjm$Dq$^2=@%gK&6
    z2wBRG-!!l55slNy)WI^3U{!7CB1Na1A9k2VG(QTC&X$2b=^?E
    zFjziT;Z{E}F-svC
    ze?%-Xv|eX$7A&v>^ja`|N?SUr%?;1Hczdb5TWMT-t*xnC9?)AX@BPrMHkdMhM83F}
    zF|TsXYJkYsAD4|a1J2$6Fx569U%hWUz$;zZ6^=TqG5x*Eb9HIlY3rFYtIv}s#qm#qa0z>$B_XUBmQO8d_#vbQ
    z?v&GG9+}ixs`1LD{gEqj_LAP018TfyHBOg1rQCKSSRcx{IPd9xlUv4}%5!RnqWq%}
    zLe|QuHmUfu+*R}iBeUMc{XGAFE`>O?c)(iBJ2xXaajA8mxDb
    zje^qp)O1M*uJUN+G)4E5&eEKtR~!00@omeudHXwq4RckKR{(U76RIuWhbN)QHXokr
    zR>us1buK+_Y07RLNP7S2V@$(MyS;3@cZp`=eeN3;CNCqh%`RH-KE#ltpkX@TI?KS+
    z+|_v1PnBI7a-;edqVWv5(d`rKmjk!C@O;uKF*9`Xwh3YaZXZrsKn
    zF9J$YdC0;ySf(D_q~}7u$_;Jl2$gNx;R^w^n4B`mhwVt-IqyW`W#QQ*JAKr`h)WBl
    zX=m60gNgoO?dgKn_(QSo17JSKbi8g8ZRVNQ6e9=;*7lvn%}7%K&WqQe$VlqU^+Zyv
    z>&g)9AHB^daN=RizEM__x#qQ@p0*I*nT;q^X>@48ANJ;pSDnj>Pp2i!ou{;0upiI6
    z0bQ#c!J<>L2P4xF;n|0gq_}Jqh=Pn_^t-NyD)eI}@O3ikxRS-Bl4?GJ``>t*Zu{nm
    z&roE4%^O`T)##||0pzXdh)W$uyX-jcZF&|?o!nK6mgTN3Ion!PNy>AZD>+i;N`i@e
    zJ9Ypbb#o|RqRh530tT_v{ftQtYwK(;0tGn|RUO81R&ADI9bFv#U38qEz6&U6xr^^mR`aCknScJfzMpJfDq-M&a
    zgr*Mo@|KwAgfMuKJ66@S`C!SPmpLdF06y>2o$(dg)iKlN`L=|A0_}oqNk1vOaldpT
    zu>_O9LSwkx^RBS-@=5$}0@1G|)!TCIR9lyi!J%s>-s&}
    zLtIvN%~IY&4eip-Fbh+_Em~y?&6}$l%kRQYb7rdn2hqjTtEVdM+5~gGzBv_mrLmyA
    zP>t~Ttm-439IL5IaLqhYhHj=7Ek1M8376{-F(`^P$bX(4FeMby3SpMdDtU7wys_NnY_K9J|)c1d6M0C9@m={Z!j&
    zSD>+iNC#4F1SDT*e==k`9H!l-x_z%I@u9k05omIBbFc6)fws0*E*6HAXTl8HQbTBN
    zyh=gK&$Rs~eXO@Ztpu?H>X8d-mpe}Mylv-Cb1L?W)JONd=0DFy%L_)*`(z_6!DL+r
    z3slM^NMY=9rrLM+n@YkI=-^|oFsjI@UU62#_b>e33Q?4H3WtMGXUA4nFijAoMa4aw
    zF9-g&iOq{r=oQDa*-dXU1qL?Cmx`@eN*e4uLev`A@A6~8X8yR8;tN=pl3TWRv}u31
    z`3>XT6+Znc#HfQ)%<7x_Yk*JIu~l+#y}qq>bnEn3uMYiWGF#EmO-4|Q)pa45{*-7g
    zazD&Q&TCnD*c$5IG#tMEpo5h1G%HD_l-x)?wx_o}nC6uuQx>D9t2L7I{SdkM5
    zYoQi@o)9m7VoS5(6U;t9*yuD(vvB}EQOgbZOuM)M``N@~`@3D9bQdl!69L&Mety`V
    zt+;3JzA-=XMgv4X>wk!L6}3AHt-IT5=VNM$K*POao@cba(P~M7mkrv!os`Q0MFe?>
    z5pQqz8c`n`agJ$t6`_0Z;%T@rlZMEEDN3OQk$q$$wuL*~M@%V<8Izhq>b>SpRovIx
    z9uK74ZA@fsbxP1$;*sK2mXPQDS@Fs^WEd+V_A%?I@m?AI=6T(7Ul)ZUf767~7G0x|d0y`z!Wkf#h15U8(hyfx0R%%-jzTUaRllbfXc40GKZhZ>querJw{9z=yAhQ)`UuEA5mC`QYVY`{OMaIld-z5(
    z6~JD9bXIlLBDuqs&24s*d1*~3c$=*#B1lalX8UCLNLB8FI6l2g
    z+o!sQAsn|kd=L@w(X*o`n@m6P%cSGL#q*45^)`jh-}5|*Tm6+P|FJ@V;d#WjP`ftZ
    zRBON3V72RwxeH>`Ph4Nh;Ct~~!omw9IWEUI@%Ebmy72GO@bpqO++HAPcA|=t@1Ywv
    zx6~K=LDim1+p%c{yPrl`1xDS|7`TY+Nv#gv%@fuzuu|teK?%B=NeBnIrcVV0ISA9o
    zZMWvg8<1moeGpo`zPCRv9Qc8fkxq@Sa*jNR;=bD7Az}<5h^L45_NIj{{D_|mF8s-k
    z*=^rzY#~V};e7pyT*3GP8cqLW7-S;B8>i3lbOzm5Y6^s&g
    zubo>Mf08DY0QhsGxhxd1sjB2r>f+M7TWKl&KXcPu=PvL#`Lr5+IqOpD{H44*)5&|=
    zT~vF;#%w{RL){+A^t#DP5;UX%nh-UMw)F$hp^CJ*6TWNo+_ag<+0;4Tq0gu=
    z+G0QleCTJ4{WdEGwlaRrCx66Zwt9^~&>6;^NA$^x{?M6JtNTRZ8|6$ep>tDgpZmuz
    zUg8e!^9S3Nqigvi7V$ij2mjbN==ywDPAdL^xnUy=yceLjoVn44W4D$oI0LjYt5+)<
    z&j`lSH-cbYXSnVOIb1*-xbGly7vLAhSthHlsEA3zPz#KD$Aahu6IT#v=I7>e_V#|HcG#ge_5L{HpmYu123&)YUW3SLzdNW15(d1vbI*(AtDeC}cxWpjeX0wPO3
    zwDrC#sXl^F$+{td*3#=*+&?Dy+Z4j>njzK{f)7@|I;C)j&&Jv16(3w$eO_`ah_}F*
    zO+F=mE4N;=jG|kZFv@*3a%rh$J*D;RZ~$6UYWl;@X8`>6<$*R?Q%Td9q(Mc(Qv8g6
    zBz6y}>y@S9gOx0)yD_=E*?SzL#Tq|TMYK5NHQ5Wxul8nDQ%a1S)0|V9e9Zx>ajig$4%H8t^*xr;70krh$tlvq%k;B`3USf^Jq4IX_}~>LrGR>~Jt9q>PW%u_
    z3pun_5L(TM)JlC~_);xhoUX4;N6+M2bd!uvayU~}MA3+7URLLL8=Bn~r?g!iIb{q%&l?@c4i_V*0$
    z-Lgr@I=99zamV1Bq|3Xm=m8g3!wbCA)=L1~^zkUhQ%Sl0m>6YPMXY1B4a5s<$yM4j
    zaH$JeA6qFuoC?KV2=pjdsFQAiCEhjX_7nBI;aNOcKbf=I7PJ~jiMwY%0)p8&QF=n~
    zPA_#ie`lZkyX^eNZo)D!y_vg~B><4*G;7^uc^#;rD(VPQ)7bVj$V$pZ&jHa^qW~8fPc7j4g$&H#-a$*VY<&u#-Bh_u*>~oWE$FmrAyVTc*(+m
    zQ3c^;3`?47AsRVn0U!}J*j1UddvxQm%lHeri*SvI<6J>zPS2ePF^u}ZvqWnDG|zGe
    zOmqz6g|NHZRn#!`ENRLWKh4@zFgmoctDyepaRf%Z$mji?;CJfRtU`?Omj`?JevU!Y
    z1%Y*9ZhxE^`;}nCA6xJLEl%HW$*2E*_TIJMH=|&@({
    zs~k84cxSl_9M{1GIw^w&*gxX+s}qsG;`L83Ku+liQcF``H%q^hqd7hOHf-jImE0>R
    z7Pr~sCu&c+MuJbQ
    zOQ=|`HBa32$fzueFYI__XdQt8Q(}-l#Sz4=Xnj@*u}@yaCK5+Jcp)p7sVnnOqcB3!
    z@=8d;B30PTeTsjOcf8Gh&Cu;pspB5UezeOPv+Qc7SyV}pcHW1|Q20|&*nt_%uydlk
    zO~659T9M`V(ZAN+#b$0bV3Jkqo2c+0K&&nu5i{70=RN_3l?ADu28^QLyfr4%lF6CP
    z(Q0Ku?fOmvw`r4`{3<57RhIIrqnclz|I0!{kcOEwTiCAX!whTXGLiG$IlGTJIRBf_
    zd$0&s*G~k6aoE!=@4w}crpK;HwHFkV9!kg9*Gk>q-gnf*IeUL!AYOEf$OJw^L|*9?
    zsc~CNM9|7SD%n2gA|f`QL>rEp9xL^BE3AH~z8hq^giXcJrQSx`B#Vp%8L)x!f?H1e
    zg6IM2X(#?%egc~=^6ytGp0Y^qa)faf-QT9}BGWfRg0G#;Fo
    zrpSvKOf$Qr40>Cl)WCU*rA>^uk+8`oAi9oBC^5)ZSWYpnQu;z|svmor#p+ZEwTm`g
    zcj6??{{qk5Bq2Wc4)XN2@-RGZ?$T9__|M`c`EA@f(nIEZbOHPA
    ze%IO0z^NnJd$1&3VHY4WMRYNIE+;SbPuxU*FnjL;k8S8K69t8hjJ8b8P-JSP~BDc3`>UGSz1i-M7
    zoqR(m+gYbdCzk#PI<-QEL{RGt%-4x?+KlLy9@tH#lXdEwy2QvQ&o+pqfI6
    zUNy++gu~Nh!CAe(7OHNfkapujw<-=|}Z&zClh9?DhV9dq)
    z+eE`VKV5X4+K*6|4ZR6zs*Tb~%i0qcVJWP1Bg`wFqb6%F)kSUw>M8)fK^`@giON3V
    zVj!7!Ks~QMJ=iUXe+-URAr>RqR5!$=W%Ho9aJ18i03{J67gM_`{G95h{yXDX48Ab;
    z5-Z3!TDywFd_&uQhd}7`$(;ZDfrpl)^Vy6LzX6hr@y|&q!u9`cQYvsq_+PG~YWq_O
    z&TT~Tk*2ADmW``uPcJbpY8xe+otK7fY1op``}vhv)=Z*UP^~%*c7T!_5lWw$UGP`c
    zURaMd2$Ma2%9_^_bR5A|yBGmdZwr!+;CEa_?%j17Sfiqqbppy{O^;&UfqKn};po?R
    zi$cd+8<>MoT*crQiPZYJ1GK_@=K$<+nW8+Mg*c#63vK2h3nOU;l*@TQby1zj2I}-O;od!Or^Xr3K{@+H7*w(g9{uVEye_PbkWT$VNUM%eOZYli-%5g8K{obFH
    z<4%I%+7E0%422rUbe#3pZAq~;Zb#y|zz+DqSejZz*9SIDo&y&&Nu
    z5H6DgcyfS~QB@zJwCM{HwZz0rtAg^?^x^r=%js;2Vqa5Rr$ts%+h<{<$wV0ZaJ}5r
    z{GDP11AvlcVD&wIyO(-c_fqYloOwUJb66~4u2aV^m=>tx!t?8
    zUvV4U>A2@Gt|y7F*aKxGB)mU>{U%|)kHMaaZLOos&>zIb-vLLjxW
    zu2Be;{A@RaC%MvV0w&r0tL&U@SkDGVTd`{!tN%wZU@1T($d$s49Fb13K;xd?d$EYK
    z6`ScfDKZ@mZIq2EhJi*wQl>85XB2BY&}-xW>LaklaQz}s@++z2i@*`AN#nMkw3^E<
    z2$)+3%l;olh&m)jq*HhOJwtRC<`lKd(U(1?moq<^9yBL!0TekPW6?|s`d*~A
    zZi<(F|C;rDI#&qFPu&E&7qo&#A{8wMf{i
    z(I@2(=HOWa@{CVMUw-`oHm5J&k5KJuu8aS9qx>Kk{OgP*KSMlXu6|AF57OA4@T!WCwW-!NCi}>%mYuLIob6y
    zFO!VyK<&USvN2&P`Rf+3mLdLS!m>zUYPm@5DsExtPnbcADhp;1DI#35q=;vWgtr01
    zoY&yD{>Nh^zo)}zBl_H)`ddE8u=;5=KeVD`Y3djNUFb+W!!49^%ydp>U
    zf+QA+R^N6PFs}E%J6wft5T@JC0MgTyFc{J0BOZqL@pLLyO%ko#(N#|NR>Su?R&8DG>yf?%qVg
    zK*6RNFpwAnX^DY~5)zXZiHVd*j&4+7bi;sA!hq2=*kEJu8|wABygv1f`*YmK@4olf
    zTfhVM=3qNt=ks|!PU2D=cIzaUNv=&%q`JO)+
    z@}JsgE??ZNK$A2R5b}?6#D=P><`=7jZgUyOh4_yvv;7Yjg3eJ#7*KQHqr8NG$0s-9
    z-I&0uHnQ;=!Y7eFia7H}dz`!czErJ618LpwO!#ETdZ(BT+WEc07v-CF7UEuOgCa4t
    z>SkxwTi^bF&|dl9(+xlBE8n+=-cp?0`G*-4!*4cA&A+Lyy^UwgN$a0$id2-cS<>#Z?=ao
    ztmuob80|;EV5)yn3PUEn`yB??-xv{yr4g0yT4W
    zi&|uvv8a}j)$wQDbv&(<^jf6&-rx6K>q71RGD$MnBtWb4;+1#_arh4M#kDpZGS87J
    zBiZ6j_QaIpxdVy`4$*Zha~BpBhIP3%H6P$1)%9!@SrWGeoIX6+ok68}qjOmgrSZrw
    zmeMz%_!&eC?%BM*!4YEig6`)82?UjT`2I#Kbyo-TrXTmQ$yJGa;X7z(vsPoc|JdbM
    zpB~iT+wtycd^r)F%$9YEP6VYdTqiMkROveYsH5{hX8a99KL5eR0rB8Qc^!04Rmp8A
    zlrr@*u62&|wZV&8UwLsH(X00^Beqiq%%2EMn&LW}9C;gdihUTVRA$
    z6328kb#`=)T6g^e)|uHqzHTD@6AXZ@g2wKz9ZRh6{R7zO4zohYJ@NG38#)Q0Y-*E6
    z!_*>ZI`e=-CGSjsZXVa&Q)U&E^!N)L;6P&!H*5MsfBN_)-lr+IGjoid7P{S5h0*QT
    z28Y7IfewL;4VsGedR=c4%VazK8aIsnixI_)llCSY{<6n8x(tR((bB)I8}rS~t=!!F
    z`aT3H%~|M*$VmZE%G|b#`||coZ7R1V48!hB8S~^Jy}QNRF@l`?*i6#T%s$}np!>}|
    zY+*QPT`SXY9CgMMc0OkNkFf<
    z*F1Omv0h`Wq^I9lqK(6;nox^o&u}1^UsK0GnF
    ztU*@olYT4HPTiSd&*iPw2X0cH4hC-PRlX^f*;t8!Z$k80K)AAH>|h@JfoC1HsM8;d
    zVKeBl-yV_#GE;4hsD%q+phY0x{xqj^3qoxoWCSF2_!WfC+q~RgE)of)UZWrlRXKm-
    zGWt#>7+afH;xC`{xQx&tX2*`oMo4vG02sg$$*CNL`{?
    zLVk95#Z;+Leoq+79IQJiUci=U9vXZ(P%uZCKwDy8Uwp7J3(dwfAnnDy7N6tp29vhV
    z%p>j2(LaJ#AAHQcfbWZqZkI52HddL$NQQ=PJ5#rMerX4+*q__QMs2L_?JYG7%=%e-
    zHYm)qoOh+0lJzyvU)9&P*tw5CyRQWzirG=2ay{wR(hWmFOEq)I!ppzy$^1P8>D`_6
    zTfb&GC4ogf_-WEAIBz*=b3@n7VWpMX7vQ}cUqK9TN{TiZ{=QSB7ehS8>&C;=Xns4m
    z@r&3DU@Usg>kYNbn((^pfaJ`=6F>(?Pd{{OK)T4io7JMaj-&+rvYzhqXawX`8x71A
    z{N(Iqce~TWJboM8DpZ2&aRYard*G!FE}|kGV^AtBPknQKR8S7YR#OxgqBNC{{Id?G
    zGjn0smh~<7QKj7;hZVpa$C#=QV9{iChVkU(gv3FHFR^@+)app`d_~DWi9s>4NSOXN
    zE3bc~*2RqCCByym)Vfj86~}l9eoiTRsG`aD@LnG&g@jJWhGm|~+qHw(g#-hS#S=Cu
    zTp?OULT_CAic2$D;+LqvBvKPB?Gf?_{aWov70&f}d_g9#(Q%>!SLH7=m?!17zrs>J
    zjsx?7ga(q4A<0x=luoB~dhv(R$wCihoHKwc1W&bmi+rgIq>uJlNj7>Fy~WfDLKN;c
    zwRz{_6UcCMh
    zdb(z0Z&z2E#ZhhC@O$DZkV37!rnW8JMtnGil==S?FsYjwe;F0k8bXJz47+-JtXK3Z
    zF(Nw$y-%56me2$p2Egx3x$6fypQS>Ps0M`ja#8xS576i_HCn#jK^rojIK(PVg&_j}
    zgds+I@zutfcd`|4)NkK#Jn`>$h8s`=Iwk)ILp;j)qaf+Xm%r`|doWK9*EzGdl-QfA
    z?7YhiZ#|^uSks&eubxE*TU}qOYLY
    zBkP^^`>O3ytF?i;le@xsD|Dk~wZIVk1hsd`Rj1s|msmhvzLcb(5I2L|r@$%wp*sGq
    z_UObD>!0n}f0^UB_oMv#Q~dK7wMx;CSv7LTVw3GyzupJqY{Eh{J%`1^!;NR9kSZOJ
    z`Ir#k&!3K}K-JbfD}U^*wB1INLfRq2b=+JKpPcwXbmh6aHuc>|-*uge+TDRYPxldc
    zN}4BS0W?n8g70lDziTS`63##nkZ`!vVuj6kBKvgEf#Xf+O->_=lpg8hvTSPSY5t~6
    zriL%z^vA#ha@)hy;f~K+de<*m5BGmSRVt3|`l8l?;0WA#t=zy0mdJ6A9(R*%bEg{of$3ne%PF7f4^eXw&G
    zEzT-8D6}DLkJMvc5t%$qvU(SwR^O>pBXamfR6FLw{q&fikh#z~
    z>7S4o`2jatsqiP~mwFrahiDD6v~BQ<)UGe0Ln
    zyk*czJ62j!<|p@AF(CJ2TE3X1Q;ms@px_f{;t#o1edas`qGXL#y?W&-TT$m^fqwI0%?D&$MC9Ty<0j~qzGHG
    zy0j7m#RUnRhDr=GZV_x#1v@l3b<26u%Zr8H1r_PA0N2CeE_?GJO4gY8uDN8$6Bfj?
    zNxxAb*=l8FY%_N+%WE+aI8=@0+Os0U_qu^|yAy`vXiBT^Hh!)=Q9S&QRJ;3@$l&U*
    zmXQv#gz&-NH)enh7V!NLmjo^6iOGHQg{ks~`I5_3Vq6k@WV29lyW$$wVcIypXmu_P
    zthk)6{HDEZ!B3vtt!Wgt<|>~XntX971|fo%
    z+J0x>xQ_-$?uGoV1CxpueWu9RBKtYxn89XVSaH5AJGR(-4BcuvoiNRTsxX@~zil5p
    z$nd=QklxSvkv;X$r5VCo?D4dJC^g8!XU*wd6YrqZ3id
    z$j}1l!3|xZ?+F5I+q+bzfvlk2sUR2=?u)QIhGK?4;#Q2PcU#3?4ik|@=bKqbD8h$r
    zxXp}8*9Tb#D^3j@=gczzUkx!NC{G>@w)sPTIsVvACMj=P23kI!#x2|n_GmBT#Qc%#
    zS_>E)w!NMbqg@5$X2mxc7Z&`P>k^uQR{zlzegoAdK$Ts#Sd8^<{EebIar>%pS?I9z
    z%4x^!l3(r(Nlp5febX~_@^|~@%O5DBjQ>J;U4(-BIzTdZAzOs&)m;qUJF7^uz8)#>
    zyRA02vAm-JNY0nW3LPHhww9mU5Ab%pgo7p08^GTitKsg&j-xGL&?@xE%)(55Nhsw6A5kwJJ1S$F
    zo|*)bEiN#&%nyWbu7j^^q}4v5Ji$%AGmPN&sazTE-D`e|Ko!a3z+NmMFXq-pmP#}y
    z(`3<>{ETmsG2Rj5AP|7}FzG|Ns=#5q(4so!P>2RHtb!ohP;F#);m_elHToM%LPh>;Zygdp^9SqtCq4)t_a1K!^&^O3=1xaJx#~T)Bp&d=
    zPno#Oir(jDW%^<;mvpfc{SI)pI>;MS4L?cO`^|H}56);M$^bNpWm>2zksZ9Zude>4
    z{T$1FX+O~`{z0<1C1*!jTXLZ^BZ)HcPjnyAMX*=7#05)|{#UZk@xhO_%fDpA9&vE|
    z4JiaYIDTZmm1I&lJy}I|Wp-{{$;;6idu4NTS6E4Qo{ngKRhE(smWJ2MBX=O+LzSs(OSf5zgAk#k0z5#v`4j
    z;buvTCwzAOICayvuz7`ROJTHAIhx${?w0J8vCd}B4>zThnkbre8b;^w0|tA088~L075l4Fd{ZvV
    z)hPL0J}f|95O%V3BivtwXV~JerrF8=nQ8WGF@LHBYrnA$SKygCRoc=F#+de-KK1q9QtdsqBQN(lrCO=xYjAar7Fzz{2!
    zrVx@g1Tz~Ml#go(?|pKD5fxcGgLti1yRE#0d&bxjNO}ailk=`AGIm-=1e=vJrcQ$R
    zoHQ6iGT50QC2U;dRFsPD*x^3X8-UL%mx^uav16Y&wv%!lDhF8$pUI5`5ZbX>NsTpM
    zP`Y-Nj=6HE(trjL9u8EQWUAakMh(x7Sj>fYVh!HMDN55|ia|`nfI^&%h
    zM1^|C98MXLML+3<4Zi)*z9XMNt1M?PEMkQBkYjamhuQ$Qm51c7v)}W75ZAOo?P_D3
    z$){=sZ}Yj<>MIO1ZXgH)3ZlVLgu2StZk#@HDMsQ&!_fuCVg8RiFhshWQZu|ZnG=9eT!hbI3hQBM6C8qOx&TV{cKj$V0Z}(XwosUV1
    z$H+{}gy@rpaIb0D8f_JUQ;B5LTb;xp#&-Y&OOq6Zv)9e?I)yd<2Dwzp{Wb`XY@zbv
    zR#wOj(L)238g|$D&<)rHyED+PbB89%VP6~l*#svgR-w~aV@2Qw(qUoW^5p^Jx!*ZS3ZdPPxAizp{!^HN9|AN(
    z;tT5jk5H*z@n80r>hC1eepoA&T~<)yp$k-5@NJDuViyqKXARV!x86Fh&j*yF_#gYx
    zJQ*cc$S4~x6OOOo&|AGf#PTx{_fQO&ehox|pdH+DS)x|$jGlY%k$}t{sBQVjly~kR
    zl}J`@DMLIUDEM>>#|nN+nI4gs`K}PgZXnPDWZm29xWa7HNT73j+>RS8(X66_u`Eco
    zw~pvw1x2I5G2Fu^7Zm|v4euTs;lb#J(+QnRdMIY^#0Nrf*o)A-ABFFh-q(NV)`nkDkePG8^i927s@}$)*ybp!Zk3)T*!!!}AZF(syH=Rw}DLd5lY*dBH(%5zX
    z!q@;#)(u*WjCn}SQE%?}rj>%{Y*V<}V+$b-{?G=$LX;E|;AB@(<$M6^9uGk)+AKYS
    zczyUoqYm$DR2_Fm9ar|hn2_&z6{vkIHocy|feRW?WBpT
    znOwa7fg-`nNG=&Frq}p9{00D|zg+#Gp0(ElaxE$9ci-Yc6M0VpGyD2bzvxU}(5{P3G64s4WefrazEH0yBFY_>%LusJ5
    zCVz)#U)V0g_3ao4b@SwxjMEap|ymiOW8w#tDG4Vabs3>#L!V9F)F}$la6WfXXNG2Ct
    zV7?pz&E5Mrw$Eu_Fv{s1tkU*^`$*+&7n}SJYX3eNnO~HA>5tMEGE@yI5kw`mKQuUD
    ze=dZViRM?&dQ+`ur*fxtgxt+y5qCSuncb!(00&1MGIXd5hP=ijrD$ii@%jK{i-8m@*b-6~!3S#Kw%Z`D~PI(dZ-SaX-Vw`6A9<`N2Q4F=JH93n#nLApg;
    zROj<4-ijyCu_?bqQPI))o3WMi7c4HKnH1E%{Y-4;P6aDPO1Tjw#L>CG(|(T6(Z2rK
    zEPQD27S0M;@vEigPv7%ieNas{V2q7gHWr7|^l)&eBx_P3?(~kWAZiKCpO`4ev65C(
    z*lRo>%=3@zUZL!#s7%WXU{A2(4=pCa-%(7312~;`lQ#`McJSOwSC2M1&Iac?^FxEq
    zIR|u42%n1TYyk-wdQg8G29-wAIVE4=)oP>2cOQM%9evQH;VX5R
    zGTYG0MuzV}6|#NDu&r=+9co_YoaTGr;9Ulr_iKK~UfH}#PNgo#hjwyNP#@&tv02&G
    z<@J!@H1)YKAP50>_f^ccW%-$pon)W+*c^jq0fgGX(bmT;yCaOBDx
    z$7`4#IMlQ-B0xh##*IUk
    z&}cCN;uM*mn{2fs(<+A={BzP=e-B*sxNX?;M@?d#o}94p-rTG#)gshWdj1HZ{xKJ@
    z^dpA<&troE!uzqo;VU|+kK~?v>3M(?WnUM2iHsW`e^!pb#UI|#U#vAxwiEd@aW2Gk
    zX}mSv`$jy;aj-25#bzcvu%B4RE+UFylx3lYA;0jUKV)&XND8~b|4YKSJ?XzCjNj7@ZmS$&iGC<5cR&_$0q06wy#FOj
    zIcP$Nt^@?dErz9-N!59Jp5;
    zUNH{2UN!so9j=_`T8zwT8p@a4Er&v*Orsp8EhIz$Mv{I2^GZw34ivo^dAvO{sjSEJnHJG|co%)GCMv6-Yir9$jh;6?#_T~!US3`eaAR3pJv91tG*4s~I-MKt8~%Yl
    zmg!_%Q`Yr)DcDPadi3BaW{<4cmw|)SG3|vyM|r*0YhLgaNg<*K7I3E*#*_rJ8utf3D6uQ5(sm<9mGVy_*~M;SX?=tw3jL{LngVB
    zHs*R^PimA7(a@O6U1d5(^YigR>ga_7zph=5sPg~1eBNL<0d`)wwWsh~0Z=bW=+pL-
    z==VI8{T}N0l*KtlY)gUg^<_HeI!2ygvP=8YQv+kDMYPNIi?#dg3N@piVi%P1j1zPvb5w-g-4Kr2zcWZA^EeQo}ruq0NGqi)t5
    z7ko6&xLn{eGA|8gR!TgSKJq9_%fv;L6y>G
    z*yDk4TuXnksw->`(W{caNupKP5<$bL&&ozTF5K|awX^40J
    zTs0JNU^B}n)vvchv`BxmH4N<9-l{LZs--VuEK4?uQ;*4~apQIgITR7FSvx@=W*J92
    zgi=jdS)&U-omqG9t&?js(jxf2Xth8I?aQV#v%cc)2D#<>4pw@I@7%}A(=mAq$6q$h
    ziO(naC8~Osc6{cH+Su8?n-{=5u;?h{#ZV4mT)s1Z@<_X4y4!+^ZbGsq#`i@~7-Q-(
    zYY^?x3t7R?x6UDlc*N)HUILykR44-3w4W4WD?HVT4h8M_D=nIWL)F01NKE^jt=y%B
    z^9VVeL1*BY--7bt@cOW6b*6IZkP6v~t-{2??T;_cpJwVE*;6&yOWVBq)xy4GgYIJU
    zQ1R;5!-D_=MDTnalltRV^d0X^%ey9DT*%Sd4oZGjhh+HH{8gPJ*75G;BX=!A;u<<6
    z=dYiM*e$fgz?Qd6fk&Jw_*pDf-Hu&oHu1?5RG(544NHQU@H55l7iCwM)BEwE|MoQe4Hqhh&)LRE8D4U
    zp!8hlOfcHnh)DPc$5mK_%zXNsu1PBZi@DKyWbb_<5Y(}thO=?PX4EJRy^qb}X_|j4
    zcA5!~&+5zMo@?
    zRfuh09`Y}qdB0PI$cI^CGK85?bzYLg_g!-=zeAvm1uzE1!J1Dnd%t-|qDy~#(NLdk
    z`ASu_?Y4_}Uk|)Oo6G|B7|N@dywVSk(warj#$E~qLLiTZi*NU7x{jhlMf}i(HV(Jo
    zz1QYJA6*5zRrwdLVFZ$?2>N3s@RBTf#&(Rs876hlk9GNirO=}fW5yNm+Ueuo1}rSe
    zn8Rh>J^oJSF?B8MMrF03uXD)--z6U-V*Ezwg^f=;_P(oe=3$NLNK>ibc_PKX#a*jq
    zFl??VD8f;)7zO)439#FUw{_=Z6gDvOIEMZDG)hBEqadiY5|3B7Dddfu@D
    zE(5t3cn9XkJu!fIir`({jIR`pe0%$Cc|
    zIWclFCE>(s14i$}tX>U=x<#@1wCw8_2Es)1@*+1ctluCw9u6;Gb7(}*S6PhCSavxZ
    zUO?mB
    z<6{Q?QrQ)E3MK1K{v{r>%{*NqPbj>^a|4^beot52aLVp3?&j1J(Ip87t8G9GZKjlF
    zo@GrKx&A3vvr6b@V%uxvI1+B{4MNdfs)!QY9@@)SF6I%!_%C@CcTCA_rfm*Aa(Ha~
    zvD*rqa&bEwW;v+bq@Xj?*{WR=V+r>VR(p`!4C#d0>=b}r=2-&O?fmem-0PB4b|Q48
    zUQ<*0?vtc}iY)kBu7n49Ud!Ja^N$Cs4Z)qBe5KKkSzC|UbZc}uW`;mfSG
    zVOn_+db+A`L)GHlY@0d10o~J;=kwRktE*Jx(Z8B^8miDPc#Z`NVvx+3W2bv=&IE40
    zZ`9XIFY$xM@(#uwF0Vg0IC@@Ej<6xYbu0M$#>U{(k=VhY5#@eP1KE0O4grhGsM8!x
    zQ)#k&RRY#`G|GF)RVKpQ!sSPyepHTbs@)9h!b4Cx^Vr3V=lSRAlKch)KuKyGBDgs*
    zbT_=n9Gu8?OZMH=O`yoY19NyuVl+vQ<%W*p({4J91<;MwcS0Tg;^
    zI-k`8vT-n_1dxRdpKx24*!f|g>#4qJQ3;tA92H6D<#uyRG@Z`Y>Iw4s0pgo$jzVfM
    zFR;{i-WIoqT$yyOgfG^qkgPTO;Cdsv@ZmXSI*|*IaQlF=yHLSnH18azVwY)XVoocr
    zip;Az+zWrfM`KFVC!Ie{lRwg>RJx^fgC>UKa5(<@yTUd>Cz|KYe*2#?dI+yt2MeqV
    zs?gB19(&m|l(G5j$&7?P&6nlp)X)EXT(x3SKltl<_T5W(zI-!ljKc&H$HaT~Y#E?i7Cta1v}R$GWUodM&lPTUn(`5sqb~K7
    z=?si8Wc2rIK5o{mjg2Zq8C>COwCYdfHxRv*O_zCSr%9ZqHGt3^d6j_VptK*a8oxQt
    z0fTY^mrhhx^N6=69Y+8~CgUvK1`ZCd6xq3qP_>_nwt)<~Zf3^O-CD=fzBMs^N+GYK
    z@f?THSBEtPUsc!2hpPM{=M2;#aqZ%V?IC`vio*9-#0SuxH&+E&9Xc}CpJ*NF%Oiy|
    zXe(8AJ?R%y3hS2>*MJUskqJnPnCqSCvd|d=O$yXrw;e6
    zzBA4niDoafDSk78vvTpg^~qsOoJmacPLL_pI|4B63!r7MXR65UVDy)=2%o3##u#aF
    zEa&@$$}ogJLfN{%4@>)Wi1P}Ko+6X_G6PlgOSDsXrZzzajAw4o%n0i;E@7bQ734`xiCI$wcO8q^;9HNVKQX-^`R*u1fjd_xsWszu-e{w6%d%Ja$#P0sLonv
    zl8mZ3ON`MRkk%<+xHzV3sqYi@nEOjv()8Z6w`@t5z1Wz89skIR92iXwc4hePV_W{O
    z_12@6?R5hJ`+%kaI#K!lyWiwio)QaBduo-gv9t0B>p>hI`D-0Ba(HVg1A9*iS
    zgCJYvYQ^1D^UQY<9PmqLQ-3V`nYXg3|A3MjnW-AhLVGy;tmij&7$Vo>R6(J3-qNA#
    z_jN=pvP_!4JB4Y~t%vU@4E0DZ0h~SKq)W6vW>58H@G{ewR@|ulvipHycS=>!S?|iW
    zb_aymO^6Q;O9S>W@@!yD?#H7XlzLK
    z8R2{2^>(SZ%*Mf-{E<*jU%n@0yeR;cExxm?9}24EuL=s`$jwqAc0v@qX`?VW`lTn0->zl2>ky6U
    zZg|aoayvhKCjh8!JKn!ed8Dvg|Dq+9`s$huQ(Fkj%M@OKN3u(^kxvxg8^~NQt41qt
    zd(2uMym6sq{4m3-r15l~_X7`E6rNPCtjQ3=OLT|c^ss|)cAtXB%twoWx3W3x{VYYA
    zGjQ-O=Z|@oTyfVaRK0a&#OglR^svSLQ(w5+t@h$x89^0Wb0}aG1}L+zRl1FanjDEJ
    z?9VH3eTfl)DOPdlIcwH$nj(C&&r1%PKM{@+gmQ(@EvY#zn2xD3%^f?@_VmIl*~6iB
    zS^f6*_`3{WBy%IMqa82BLPIAcW2zJcWo>S(r1>~k(9#Ht&Z$al9*EKTekf%+1^m2w
    zOOLRbMtz5djCXk*0J#r=k5*^ggN?OjQ^M94Xhhng5j;G1qY1Pxr;-&Io#Pbj;=OX&
    z0>+3O!}&zZYYQ*(w7j;(tLY1CKgAYs2N@|rOggn4q)SqPwfi{BGGN1f^DMmuwj
    z!%4Bygwc*jRf{MUAbMovd3R6+bTNLW#~>Ep(L)z*_E9Q0yi1i|;RET^(R=V^$f4v4
    zqmtaZ_=itFtRb0&*a}!mT_P0Bt7jZpVltOZhb;s3awD{apO4aC7zPVkkLk_W0G}MB
    z8HC*j#*pgxbx1Z7LR&r?<(YX{g!7e6r0^@hlH*1jFJyaqEmByOSDte24$yHnCiSjGZ;XseMUH#TiE&_R$UQzQUinDhH
    zLJ6EJ&2EDo&g-X|xmyY>XH;hzWczBo?W%LHUsia~EbF48YQMvuv3--Dm&8SCP-JJ{
    z7`ly-F>BXVdYTY$J_0ow;&&ecwZI%miOkJG$qAp$%E@_QXlU#T@gp$yQ7xx3pFA9iLqg0XufoKa&q&Iz
    zc&5?bl^a>y?Ots%4t=iL&
    zKP%lVGKwnlal#*@(X)HDBvS!p59M
    zg{fSXGPz8tRXSHuR&?=aU4#O%26d|sQdrxSAUYZ6dYQ+nT>>3ri@7uqwzx?|MLYG?4F_y
    zx1N{ars=7OLa@D&;}j~p$-syy3-P;aQ%8^bB>T+YGMfkVsUW53vwmaP^#9iwq2rr`uEi7-P4|L8@a%*enAQU~}YYB=Y
    z*>I}(sOq`Xn^$E&>|zi@YU@OZ;Wm@;(&cLp#s|29;ZN>!Hyfx?mUE^szI~f8ecN#(
    zLw0uS+%2DF=Ca3eA=TQad;I$0MvU*xne>M)Jt%!(&A51SNo~Wxkm`3lo_cv2A~m7W
    z6o1om)b4&nYLZEl=0Ed>ZYLhSE+L({89e*InRwa#0*Yl#^YjVzIgy+JW2%Co^x
    z4~6kamDM1ho`FKIPhDPTRIyk;pQ!3{0gBHJT!VU^1#A-pYUgxQrq8<|3U0IM6u8R`
    z7#yh)#f0#bo)rC?x5Gh8%X#$v^Jmx>u;ta}EuzB$;Az#;I&4!VPUk86anVuaCX>tP
    z^*kX1(!GJ6^hl)V58o$^&Sv0RsX5oJp91D~gi_eVRh1{lg%`e*9k;lNB47%BN|$yi
    z@X#PX^`$;)s);t-DQvR1Yd{nZVefLgIM8|F#rYm))<~6dsM?2uosKxrbIMF_K|WKz
    zz?bPr*(l~h&c_|!zfqvVZlkfZu}D%8=c4@w*G$X!7$chJbG#IXjjy3PUGQ10+FJl^
    zU(XMe+zpAPDknpA2q?3~@ncnLVh9{TOBFM4c;2S`Tcy9^(wWtK;q2x1olA+j5~Xo5)%-1Lz@~tGq$V%`Fy@Fy2T9KAL(+cMl+*3fWbU
    z@DtW|TN#t{r@4J3C1l^w!5PhjFK%XhIGY)^4wXz>dr*5HZQ#a3HJ6^sAA1E+63!O!
    zxZ_kpdQ_r)x3Z^}sgld?CPnL(lb)(YzJ^SUg}u9nQR{O8Z@H`Z3f0)iFD&iy{}2u>
    z#lk*umup!8+fVtG}oP|
    ziEoK=WkMi4gL~y#1u>nmtoK&Oy{6_XLmiqlGj0X{7G3`tb6bMC>Q;G#l!(dKXwD@n@bUgski4a7zNqn1Ym0v9%&
    zi4z_g2AhDT<{~vh&~a7iHAR5R`OudKx#UlAiqALd&qZo+eLuB9e7n@B-}<}k2~9|h
    z{YTjo;RdPv2rzM?rqy^{eAjeq&8wEnYsq9rU6Do3Oy8g=H9o(lOXO8#4CauMTJEuH
    zq<9VUIlm_H?$-@`jK>aBRgW>pFV(YdoOCxpF7x|Utdc5Pwb7}nCvKYR!MMNs<-wSj
    z-x5XAxXA_D!HrXJv^4o!C-E<)hKKT+{XT9q^o*~=)?0g4W__kyb4A8DCaY165u7`Z
    zC{UpC&T~2XZ>om0Dx|CNiz()y)F^zrGB66Um`3$dgemC(#7~A)A7#aO-Dfci;}@y0
    zKHb2&Fbli8+ZUV7x~?ypCgmYAobs@=U)3S!x&e{%_zUo9;T~|#q{Go^z8uM?sWg5o
    z&Zh6<>EZ?ki}DBN?-^(}$K5JPUO4826;zS{2Jx%cs{L?PiX?9J$diMhEi?pJjZ0W|Fcw`yj
    z5mnzh|A%&ROMFe{m#lwsUS5y;DYR%z
    zTZG53*?_^%hh)B{ca}ZdK8v^>{{C7_2C1eAou)f7BP3Ryb2p;}EDM9wv{@o%aj~-x
    z8rs`im)EDY?D6ZCh*$!WTIZ@1W&U8dHdd@G=Y&|F$ElVy(+BReDPT__
    z@qEC(}I8wYHdA4?j>
    zik8KKyvOK1`S1Mvwlw)#!lq1fhl-dq&}JahRyr$IIk9>gokr_q?MHs*(r-?J%D<1K
    z;V7F8tC@Tat~rApx*rSysT+^HssF25t7d2B@i}!9H`Z(Anip)_t|#YJEjpOk*B|47
    zk_;bJO3sdKIDyKZbzAkN{Th^-4(PX?cZ%e`yxB}=eP>n^p<&_@>;2q)ttY*5MBRl~
    zJY{R?Lc>!)i8Jet@3#}jkH9!K(v&uuQ{X~5OrnRwcWck2nqbyd1^ZK8?()pf+`sfy
    zW=^~E>>DLH5XQ-{FDGEvqg&7x+S+;*j`i<~NlaKT8DV?RX&e1c=vp>sp^~AKP0wv0Sd?J4%U*Mz{%jmrfiT
    zVcd1Fx9rRsX_@~#Y)I)^9;LBhsc04kK$ti3u8oz(DHYyM6bDMhjNft
    z-5YX0_8~T+61NI^Dg?xD-yJU}j{-L|OL11aVPrv}fwH}PS5);i9pvNkQ$Q4WVfoR(
    zE0%&JLmC>W=uLIiher%th8CSIUrOn7yc%#kaGUs6ZGD4kw{Cvq<}Wz{asANNRc+?X
    zHvh<3gZi=+9QOOcB6d@*RW((e%wqm
    zfHgF5VfQuT1rXuHO!Q|47|m8DVxb%ka6+pPd!%^3d0XONlHn^m2Z;VDMDm*r53D|M
    z+jp0;%tL9s#0M*!r>tyiEz|FfgZq2)`c`V)f#kYco`VnF=QP~sHEj3vE1W<^d(O)%
    zzOzEhJ7wY2}3jc2>wap=q2u2V)2JnOD7dB{_8SCt>;!H~x0>iEV8Q!!;Cuj6Yu
    zJJQIw?C3z@ho#I2Pb<@$A%*pXI%x6(q=vw?p5JrTeNo+wsM
    zH!5aaJjoDYY-j9(gY`$&62SJBqt{cDTE#$5alq{-#FWyzUF^Fn$9$V-O?(Kz@;V?%
    z(_M(x2eI2|KmDC&>uRAVliPy5d+);T`^xRyma1891q|Qbau<&dCfp7mA((p-cAuIG@Swem0?~
    zzoLp3h%^q&;UVIyB&6q)IScx%bK@HfeEYst)QwoGNetLBAVt%O=UOdkIdR{@pIwo2
    zKC?`Wmso)5n6!FE{ly@Dr4#qLf;`*&Y5w1y%@{o+ZVrF=?O-NI_+)oCk{!4S8%1te
    z3rt_sF~0YkYb-bLSkvEPuZ?rDGAd3wl}^juNyYk>YN~yneMT4eAUlS-CsJ}rSdVFF
    zmq#t{8}S3_*iL=&S)$G}-bct8=DnGKQ4raku`;irlKc1pv9bX8PT=qWQ8gJp+Cg?9
    zfp#@YajbhyiO0WA*boc6XGKl1d)n=tQk{m3oZ_>r`4%8X{{8
    z$8)Nt{b~{mJ4OkzdnCruR#wo*`+&FAt)uHG9_QKzOLPxC7S^wi$YkveQX1!3R6#q=
    zyUAM1&I?`3_Zsy7kZia9zZ@PW}Ys!=h>
    zIa9XpmafyGkGm|Ya8rdYAKvT(Hm#HAQ}IPSkm8HzV`Pn79>z+EPTSxn?k#oT+`^E`
    zL+kNt7L?#$r^jL)+xAC^;~QDsPD~faSy2y~^*i17w*wYFwr@FV)!tch=6DENNX;6%
    zbm==K>7csL@u1yZ=qO!Ssc}tSjUfJ*sM^ufnS^ustvCr(yvdNu5=7IXfeQBd=K}Q?gjae0xVL_8iI>fu}?d#di8)C~Yk|
    z<-iXJjcEc(&WIg@z!mgE7R
    zSnL_}M>{Kj#Yu0nWhh^Rm|w{D>Ow|ZlBn)5O0}P=pJzDu;gww
    z@jY%3K7VOk;K4cIrjTWhCGm$>ABm?r+OLZ*=H2XgT-$;^W~)nzwK=~j7POFT$aMJ_
    z_%rGXb=iZ?&Hv}AmikvVm-uOqQDyt)-u;i;wlj9E#u&vFz$W@EF?j9R!_L;_$;R;+
    z!VU$y+z{Kby?~3z$B)JPj4V}lb9_s~jc&K*l?j?C8&0bOW`;=_8ydO01jG*hEU|Wk
    zaQ`HCkXC6WBPE*W=?dlpN9?uASTVptQZ-(8bnpLA_ugSmE?T!Qih>0JbtxiUno5=4
    zks`easB{nk0Ym6S6PkdEETmVdB1P#nL0S;$y$47rB7_z~?;&_zL|v}3_qX>s_ul7R
    z|Mua*S9mk#n7=XRo~&1^*JLmIR(FZ^&W8=qBG_jhy?iEb;;exz$u8R}4;S$9##|q^
    zkNzs^>D86@wHxo#mC~J~H5=UVwsaVqIFz1x++bd`>_!*eN?0F+Tgp3$k0CPISX$rH
    z6wO?kMtVQyS{^}{y5*U|9b%wrJfG+e#H^eLIlV!H$~17@F!~MOzMA?8EjqRR5~jhh
    zc}YGrc771q-u-O|-+QxlxB3p*>4<=%{?y%8o+$$<^Z}beo~H4FdF05>fw{M$#Fhs^
    z^F3O$il`K+Q!aSh;dOYT>ucrWP}Z02!701K{wkBFj~|*0)k)HP->3*!R1L;FgWqPoEHu`9ljTd>qTXP2EAi92J!z)s
    z9-4u~C%ADpQBQ)L`3s{|AH>Kl^BHTV9fZUTY%z8PFgaH(D}QbG
    zTJrJ9@%U&XwInm;jofnBigR4Q1^ckUKK>E!=;|{!K8EE5-}7NsJ!7(-Wae34jcd{$
    zN!2ERn4G<5#;ZDs!(}~PKHY!yPh%jF!zG4|2bubxxgK3H#=o!^AD
    z-Lk>tT;bLyTng>CohL)Iuz#}$EKM$n8?syY@;3WXNa$OpdRUCri$U|BkoIe-If`{m
    zUlx^r-DGd0aQr?x%G2LWS)8d>qyQ5^-T_G-EijRFAs#mz3jKY96BADCxQs5NHvD>S
    z^Q4Cs8<;49f4)y)+V6Uo>EkL=qZe3_m=k){l3|?!-ug(CEx;7atK&)zUWtXsz$8*7
    zq8OK#OBSh=-#%k8Q49oSoJ!Dt&j>0*E*tbLTAalwMoBZ!c^w7FlS@MMT`ZG)tHD`sw=ppU#C&Ir2Tqi~hUF4~v%_$AL2(!LR?=Bmcb
    z=hgQ@dtI`@a?xDF<&3hp=L_|FY!TE%O5%g0R}{UCS5+%Ha(5n)hpbU6W=@9ftLZ+X
    zT1a#QXY4=HG5Ek7fx0OPeol4d8Y*o$WZB}i$C$YnuFSiexW}0&Nl@F1pfgXDv2vpk
    zF?Wjf{0xDvWjJ*Oypib{%uIgF2R3!$GhO|fEW5;O2KzK)|6%+|T|9xz{j=Hfky-1l
    z#HHC+OY5F5rR$iCQ6|egx^XI@?_N9|c&E=x_`I?gxj!bp6%m`;SmwIF*S0?f9betK
    z4T;=87-ydr-6TielAh(c&hnABD(e_Y9QWx9iX3-pS=oPQn_FVL7B$HnVM3W9o2e3F
    z_N@Dc{E-=K9$-pD(~NKs=@xZU!zMB13%p=(g*sB_)I##xf+}c~_ixXJ*4;hBX1S_o
    zB~QyT7;arotqDn&6aYIQzaTuBJzB~h-*^^#0f|wM<=v6t+o_E8JB9=uSP8FA9t(GE
    zF4|al2LfQ3k`Hohx6E0duAhz7HkQ$GQl2Yz5sUR2&Rc#QAfu>dtLZYDizd!VYQL*3a1z=!
    zh~*0ze;&
    z9~=)a8-wK#s>cb^TLC`X0gHkuJFhBC?q@9-Z%LXuSE*Bt7#V7Z9EIJl+|MrJ;-=8kVS
    zihdF;9djQv{Yj|be+~S_+Rq|ebJ|p%yQPFFPT4vC)=+{^=+4JgF-Du?hhOlib>pck
    zUsuid+ZLOA_L@e=2_8OtQm9=}%_eBEk%F!=4<57og(QjwjnAn@66!R#sQMl
    zfV(@0b9@GRScuvi%Ijo3a32P7mBHD_yD``|gq$2u9#i`nSx@f8KH;)DJ9l{a-Qu1l
    zc5H4@Ol$Lsp*v?_Opxx|02Ww+z6%1OcbSepp9#FB*k4kiEJBO6pK)hFlzX^B=AA6n
    za|ofpltON-{D$`HVlx$bS;EeR6n?
    z)Mf#eP}_gCdo=i3f(#6n@7@R#AE(4fyQxZ_-^+Ynde-z|W&I9@-9rMAd@LkZ
    zmcaOU+v>^dnW?j7OCKjHI`dmkOR)GCI!XJ5K7tE>@qD~eS=?oa-~-rp0pz)~SC1?A
    zDPH|SJ_YYP2q#`xhlx3NFqRe1gjH^S9!u}M-<@muNPlU<*>rcm@cXLLpu+r^8#Qg8
    z>*7ec4e)c)TUP8~@7Xl!u~arX`gnX2xf@;3@pUp+yh&{NNE+qs^;*M0Faxs1Ngya3
    z_nnT)m)Wz;b+*kFxK}A|iYGH7Pb0fgLJ=IiF2(ERxYeCO6)ZP7yyuaA=dwr#ovLOjs7^E@
    z^IHg5+N!Gi3_BJay!OPTSF8M$XF$~Wp31yYX!h>Y!m`H=c}zL^$Bh%VD);vr_Z41e
    zOO0194mtCI^j@s9&tyvTJus2u>>wi7S#%eVkKE?aY?A>dv$DO!+tBR6cD@elM}v1O
    zNozu~VH@-a^zV-Q{ov7|`q4K`#u3&4c*)IV$wfd2a+@mcUZ>}8=uc)p_lJ~f8W6Sh*5dHQkbFsX(m?fBF
    z&i5&!G?xz;+Zz()fp@Gwo*d-oOQ1))KCjD?KygjswAY8T$;Qp
    zd__#b5G4mcvbI-`GthSsaG`XCux||agQuA}Ej@WqPoqN3f{>pse}-MxZso-%_%$-N
    z-QJ?ZUfz6i{i|0q;GyQW^&Y`Bk`m@Y*GtS8kh4y@yKDkIzCJuN&#fF#uj3-sWHrq^
    z&iF0bGN^f+-n?6lSbd@uch5M`vLbozj>~R$l=5+Up-Hf
    zw0XEE<{sp(9UM_cn_1Ezv{k@?2cufnm3I;^SAAJb*El2CzjFBND0KxQV_bRHR3OBe
    zqkmctW77iBl&3-JW|4_`-qCsI`xi^S;QcjB<*W6<_NEu@SsG*d|AMVrCu{0;oY^v9zGG1fyP?WE4hn1Ex+g3>-M
    zN_Jx2sPN87QiP1H`Ugr`#@`m7?-QjhXnIB9Nv*g|nC+_CnsMyfYHm;Jv#C{yZujkv
    z{n!Nk9Y?mwO7wu_T0DT|HzwLj2IF@-OrlBaT6XRLD87J|N)L;#@(FG9(~NctB&Q6Qu|$_&hqwONV;^Y_()}AX*k10R7@4>
    zARv&CToAJxJGBsh^>{d(@e@p-lc7<{H>qcp{JD4nz(vE<$Z-*MCzW(*Zy6-E-n=@V
    zO_yZKO1hDnlm+qA_=eKuDp2c0use+Wi;MtQ4ysJ-V+R*X>3Y+})#nUs5+~OBW^Z=J
    zLJWE?dfm>nzw?Q>SueTXlTVbs=3l6}QxVN+#qI}gkuub7*6NN==i59f@qR(BwPA`<
    zdA!1or(BtiivhNsJ>J!*-g4Zq?hyT%fw)R0ru+S1YHrn0@}^FioE`O_vBH&
    zvRf+SiQ7G`WTi}~O<{H5XB16%D9nKka4Fs3LY>^OnSGm_gH92y;QmJJxi+n`;VO$6
    zIzjfC)yXIG1fiNz2Fw4slYhAC1
    zG=ARpO1@zZ)B7yWlqonbDt_YbX4n{LTDdD4nYsA{xlV&?E{`fcZ!se8UB07Amtn;a
    zx2>nf%SvS-5lVH>lO)Z<^Qpy7Liu|u>ViNv?R>DT+5Q6to-&iiZ|HhM4OKiMLF`4s
    z*7_64DV6>CecyKG#lF*KCXN&6vX+BUvIk@x)4iz~=8*9fyjLxgg38ZtS(*<>XihiB(wOJ64qnH$r0hm)$jh{4`~nT`W`u42x-#eas&xBl
    z?ba~oG(Zmui|{PKVNo%9;M3VAEuF4E_vJ!}FEltSt1uBI)j#k-0fvBe{Rmx;`!nev
    zt_}U5Pr78`=Ug~YS4JtFQ_))Ip6W1jM!CvhocA(<=`~_T`^A1v9%#(MNI{8d!=?{xvuGpjH#<+qKm8*@^2$Rzd{<{Yi?o}
    ztGF@dTJRZ2f-FLL)W_DQRrVu;HK^ch$DwYwq{B63zhe00T8sgaOihSSh8==%$n>%>0$CiW^}REPXEaL7Vv9G5eOMyLV-KYwc`k
    z(7C(TO+^*cSZ;d$^xSyf1h0IJE9wR$ebQ55Qupo)gUAbY0&9(+on>_pDpR?XeJ70G
    zCO!5tqvG_m9lhIYTwVvk)aUCX2C?3ap0tz@n&SX$$azv^LpYAdiuz){^0H1ILTUY)
    z>0bVVYm8SMyvB{zJW!{x($t5nvF^PqC4_8lR3b;or|fd)DVTKk82r!bzidOv*&r4v
    zn_EzHZUeo*7qdv?dk}q?xkN5=KZ@K|o+-rLG>M6Vv*c2F{up&$2fTD*zAm)!azNvC
    zOL#)xfWz(HS~mX}yPK0N(xK|(zyvc;aW9~$yAxnS)+rZuTPq}y<cfSqnP8k|^|pjtC9pS*>G>3Ci8YyQ2kmi9b1RnsrJ
    zJz#EX`Au+}*okP7k>1+mKjDj!6qGM?P*{6LB*c$iyG4;Vx>BKg1O|(Gcz?O?hsDS?N$%47a
    zT?Dajy1e4+`^v5pY}yPCR-SNh5j-1B59rez|G;8#dy^-%w4`xnkNX5%nm=a<**6W&o5@;B|@R&k*I-4~WumGDlB3
    zuJ}w39jn&>FjUQZ?4gsSzHI6{zFpCyH8De8%Ot)*$U#RDbEVuHuTx~rc_+Ep4~a?8
    zzLc*QfrfJ0)zo~W4fa2(q!GNqM47gTJrA~{^{3+r+N!rS2Jcn2F%J!hN
    zY-nN=g08jMc^2h{Qf}QM92cjOTRK>xtxJ`nBS3G8;cj`+GeRDp)fZGScPvFq6uXlQaL0l}@e-|O
    z!TxS(8~O9+GFDne+RL-ofY8VfiM|Y*-T}Zu3QyBgT3Ls=oU9)?TjMX0oA4^b
    z@3{VWS%mB&~XJJZ-Vxa^tePqP;YZoZjGo-yqt9c8VI4a7u1u3%2N-b$I?c5zA4fr>x;
    z6p{22zq1)|EbJUwB~P1Pyyfv)C3$$T_Y~ZWRUmX-ljt5z7iHnox)$dROZ9pmCu_-Q
    z_zvMVINCAv*jFml|D~IxI3Tu-O@+cR>km`Csgj8waV
    z%Oex^CgTWYz+$Si=7w&>K~DEp4mftV9Tl$>>%uD>?RuSDW0fXEFWVIh=yeD$$>8S2
    z0B(DK4^6?c9EZSq*>oZ5d_rkIN_{AG&0aa$9BrHnB}A!i!$c%3-g+
    zU@q3HJ5dTfpM@_hL`=bxG3Sbs%M|KfK!8UDq+J4asSR-~xtx{SqI%%qBj)NN{n4&)bl8HVkApY(F3!#WoPEj@HgR}BKW?r5r
    z<|^7vzE;j%sV^@OQD~)sgbkU*r6_5;AWQ3hM+|k5eU7PaKvoe;q^}yX!IGZs&te|t
    zc(9C@H9#^k*IUinE`kS)^d=a#%e;##R=4Xed<~|S?u;iGw*Ui>j&^XB#hJk3SE#c?
    zGVJ5j>-qL$5_>CBvxo?BFm{;ODjtm#Z~lbiD8+2np)(%_zLCVn{-M(`rSFJG^t$fi
    z&tEo;nbl36nkl!0&WoQ%)IozghGbN58fJRtMk%Hn4+q#Ud#NR~w!Ir9zhVFDwkWmW
    z^})8NjjxGWTn2sls!Zpjwy+X7{m5c?q|Im`&K#F7BM))Xs$MMj_g}Ob%m?CPmkACt
    zEkLS7ntCI{JmLVNWJQ};jtj*C@3qH()T20WY9O^5b~B7LdmMgtV-_hwoy|3lJ?Wl(
    zoSwnfle1Z3)|OL6h4VEl3N&W%;5C{OVfx~;CVMmc#gB_*;rJp!n9Ow22uCd?C!^x*
    zJJ}~%^^KS4Yq|ud)g4bs&D=9r92@H;eTA5VG2Gp3Uv1colFIfPMmY_akE(H`6!^>U
    zWSreQL8CyI^IBh;@*er?FX+7o3lNLrGs>wlg<(I
    zx=__Q2^6&T;z=m_5sKUAZjHS%rkndLQ42QIk5n^j^9tAPR9@RFbevpWJs?=sQm8j#
    zPPYmm3oDoi*_)rOLOh`>4H64BV%qJO=Q^gP{~ECN)~Y~U9xqhkwx+(uV)KBf7f(%-jb}S@>A90wvsemV
    zY`<5DvhlQt70GmHM8WYA)$N3yPYG(kDx-KEz*I}xKlrJ@N{*4IkNS>DBV=?)NZNT1
    zS=M3gL4a^22mX>^`+Hz9aZEsFKQI^~@C?e&7)wghPIcmnO$w@PU{U-Tuo{WG^3#te
    z`A-^S{!4MLPNTRQT2OEXEql8X4xiYqPR2RbS3RkohyAHOhIP5`HQS)4z
    z&!L#6o2CsIF}3LzCzteJcSyRMR%7fg?IY8Vo2VD|7->ybSVa4KL`wL}m4sxO5^I&c
    zrt5bvbLkXx>_3?EK5Nk0Wat{={FzjVfx4CXMYp@VH-BRLgQOD`Wuv`ILXpaM}P9)i=EQj^U)N%GX_H3Of4yqJUo4ig70EgBO_y{PHK6{U7X}6
    z_L`_0heLidTVu(IS4Nz+vve`5^GdB8Qi^^jat_*&;5CZm&9T4yRP_x}zOb^D(w_&E
    z@Ea7C1V=~U(v7rDWYIqDCFm=~Mt
    z_aHvhx*0F2*Z?ZJXavO~UZRk1Q75qM_?N)OV@~#xvtnNFpedhri!Fj>5q-Af{(Yd58)hCJ-C=uycuEYJY^Z!2JI
    zZL+V$D`Sj
    zaF3E7t>isQ!he!`{G*Bodug6vm6n@vi-g^Q2o&b@at&iQ^a0BzuC0_jU1!qp7|(6&
    z@1gl6afJ8zE&&UO*6iBSHlHA31x2qjlNA9C2$IzTs+R7?+OA&%U*}6PW2!HNhPfuU
    zr^Ht8iGliFARiuN?eds)|F02%=h@3=80@%omt17zlM63^6IP8F@0ZH7?3YXLG)O#)
    zQt%G`0B>oAQ)7%0cSuTF_?fPPjTwK7+{i%P{xCE6y9s9n6BJN$g9=rH+t(xfYqHG|
    zk!!98&+e5>HwVF1+5F?0!cK9>o+_7mP4CxbnKxMV%{y}n4aA|?^`N&v7@J}4@wLAQ
    zIX0ruc;puQcPUr5nH(9af+BB=dHp?tWQlW^R{JA^B;KKYUFb|eDRrWDA-&|>(>lOA37nXYc${S$RsBk
    zw~fMluppR5xgJ>x{cf86h-}-l{g83NpUburYk-VgHgklC+$j~5K!U}Ik!%HfgF9mu
    z`FR@=3OOeB;_q4$cxZ3e%qvTX;TPl+?$#`b-5ab*d`|iz>TaKPNmsP0)ydQMD+1_&
    z#y_TM#}`&~oEB0F(G={NYM4y=C+79G>6!7V`%%{ljkI@8$PI9
    zowD}~pT6)a7V=qt^Eo>jjP-J$sTj&za0R~4lYqSYNTVH_xUY`$^=lbPG{i|HlKz9b
    zvj)m!NbF2owJ93tzO~8x85CV!K+T
    zsp~CW@SM~*OB=~SY=m5{rdbvFj+BliC>{SQO+r7s_43
    z>aLVERmV+4A)ilYX4~v|i&JIn{JxbSerl^aW#R^QkCz3flZ|!QX}t4Gbzn&8=(pjp
    zDi=+Lg)a!A-Hb%GhZpvCT+Emxv?GC!v+sEXJM*snq&>*^ch~b_`Y`;A^p?9)0Y&X^b(K*W;;m!h%R9U}!5V;5I
    zyAZk00bO~{H-;lIBFC<`EhX+8AEHT#>5;#aKoYBszOB{nVj%8+daJBx$ld&+N#lH<
    zOJSvNURxt=uSMpPbqW1KRVrS`3`A@L;kP$fTVqUbWXPy*8n&NbZFUi-Yej!3P{;D@
    zWF(dv_FDKI{ZvPutxezXE+|pVX=;_iv`zbZ?ZSERmEEWOWuLs&Hnl}=VKX{Fgow?d
    zPQcWh6>h+a>6rCuHSXISDffPz*wy`=Jje>Jpu~;E=X^GQ$h?p5-o$iKMtbRZ&`_%
    z>WOM>bfQ%^lg=FVTQ{2*eTRXvcDfS6KDuV&waq}1^OqGVae5eyV)5A3XHqLN!+c*c
    z$()$QEYDJL_5FIr9X+KLJIht0RDTt}@!`hF+%;e8^BOb+PC^zH@wz$M^3byczi^Mp
    z?LcVGc9t-Z2(;tjRMeu6dg=?UD2FJy_k!4
    znUKwow!s)6u4vW@V{^gJuKo=wm>54~=kpG$dAbWzM{mxXM|`UsM8V!KWV(~_PoG?P
    z6(f7KeOL;39+qA$6nZXVwJO)sP6X-Ep1>NrrS=&B^{mgk<$!|kV*F?O(v&z(TQnck#`@=*)tZ2^onf_Jd7JMNX*&&_$E=eJMcq{
    zJA2aZZ;06D+pU6ACw&T2UUPycrI6@-3dyj|u9Tbk4CryG7}%=HllE4a#=xm7C#BF5
    zvQeH2`h<5bD}@ONc6?Ei%~l)uY_EtvH=IGQ5-gjG_lY@Cp@&0MJKnQAMR+F78G-O_
    zFuLdcJZmOL9W-;$5=f++cQ9>*QOQQoVLPI-R+&o3@ha{fLHAWK7cj#o~=?Z(-@t
    z<2PdE*p7z~iJIfPrtbU+1|lpi!#-amp9KRMdd@#(=n<-v``O;ZTAf`TN1c=2$=oZD
    zhIUxauniVHn+YIN#Ky|nSQR2jXQZl)
    z6Va5>y^XZCby-p
    zKWHQyN9Vn5F!B!M5YRXOh&9J5ZCt(8(2^%Qe6nO->+*gPY~DwB))``zaLmPl$9RZ$
    z(!ue!^dvo_C~?w0UoRKSaRk-K$)0m`1JD26W_N$!f060E-LWx94h-HO=#kQ&;THrz>pyy<%vu&OOASg#kmYBxf!*%nBZa1KeQZ4!uZj#j
    z$|=mR=x$hQl~Kk!Mi?O9wr#7u5*TydW$RA**=88L-*&A5R&-@lj;_yANq!^>f+2&Uj1FoV$^CHDkPxF*Q~qO|hcXGnhAF
    zJEQfnlQe$v#2+$~&=IFDqy4KB2>`N<+3H)pkaRo(%UW8461iGnozj!pSG+hC{s|D7
    z4}8J}R1Vsy|7Bg`VeoaSZ9(-vS+YM9y$nIkxtFM_M!*Ih)){Q5k;S@lUycc#>S~FJ
    zvD0kS%pbm)W+p
    zc@JFB&+<+;kuOuKQ3Px?KIwRBv)f-=tK$T7Jr{qrhU4m&3ya^WvuUq~FwIK5^N92eV45`cXcosM_iDvybEm
    z2^X#3j$e4CN6fEEJ$-uE?1KnCe~wk0|1@16Y#NmB$Ux2gWkk!zl59=A?O}t&VTln!
    z8|xbI{>f-=&OwCmExh0kR;>fs(vNY0C&fZyUVI$
    zOTX=r6DsSQj;Ev%uWlT|sfk4z8?7_Y`p*>B|7C%u7W_`D`VC7y+a
    z#!wL0BAWgb^ZcL6i}XY7dZ%c{)~zvT;>(*Q6Y*lK;$K^E^G=_3BSo_CdR?lZkoQ#*
    zRoF|2WRk1lYgvldURpKV2st*U@3@%452}satCMZ>0)^|L#YyLOF{CrLQ86|=4~h3>&_{3TD>Y>Aso
    z%S%3_a~*A{e&48KxGYji2kcZ`AevEr%|=wwqosa!mdPJGZFl@XC3XOZ8Kg7#-d;Ow
    zZG6^{^-F6b`t>8u=BdQrpD%FM1Ws88(%t#TN~5H6Zr2-m+!G_g$*C(XJ5x7StA;i$
    zF=XMO&=VC?gQ>xdjPl|LYwW@l{nS)zOX-bELiqPGM}~OCWtCLuIMPSe-qQ~kIH;qY
    zB)b-4F;~(ZwNR$EWk3NE=;6gMq@UeV!a$rKA7Vza7vt_BT9#@
    z=9ZGh`i%m2eI^!3v3F)$Beil{B_RFuefD6lvNbDe)k(&eyS;p>YQXQFE=Apg}M32z!Lf;%*~wc#6a}Y>NAOfqal<+$n#bVZl&kh(j(i?;)Iv@
    zi!{K8nZa{Y=T6@*^HY(Z=Q(**u((6eMZ?0RH?v==MXK1M;vG0&-6K~r%VsBfqB!`W
    zYY1?4#Aj2f&Bg)ppn9s6q&wO+Xb0Yf^NUz#2-H3c@>_~D57{(f5V|Y7DlvEw1FIU$
    zJ#%PFvH}nl(38X(XX
    zA_Y4du>I1Bbb8=NCz3of;tkM=WDQ!|mvA~pvLFLIGnA0fBsgbt^Pna2{}ws-pSMK18_>3zpRu$ZOcIjw$)!_xVb>~ha%#i~
    z!EaYOdcH?yK)Sf)%@)Lr=0QTGEHX(z!>s(pHACcm$-I1j0l!5SsNH{KlNx*(_qMozhscf2ncx>$S6n##r+&m0z1FYiZ4));zweZNi8
    z)lxE6yl}qcQ(?)%mBKr6R$}%$njSnQv@aA^e`%C-5sM1qnYjZkVJDr}C#sOYOER@B
    znU7^?nvahyaeI27m3
    zxF(uxm$``sUe?z!wI%ksmah31ZErL}5#y=7Yl^VXtDd3rbD{!M?w-=`F)h-(TzH;M
    z^#bfcFiTTioOZq@e1Kf&uCyQO$jr(+*e}VfMcMg9j7C#^=!Vm4VC^@sH3$Trz)kr%
    zYpBrYxgWFYpwQR6o19H~OzQ78lps87x~ARL2*&w6xOW82po$=;VqTNnbx=M7aN#)C
    zBQf-4NJ5O)dtB~V-L}EZo#c68+{wB8kY`d>AAH_f0CmaRP2Y`r(_9&Ru91fv;6c<
    zs^iYc_UHVY@FwlZ_8LS^#F`m=w8?S+c&gc`sur*g&Lpuy(P&
    zRu!H4%=*nf9Z^I;B>~)a1w|5_GtE(T&t(EdFQ%4yn#c3VzQ4<+E1@Rkg7FY`2k@3a{gIr+C8L2WA;Nn|5H5*Jmsw@au4p=D=*_K7wDBjp+qaq`Q1mv
    zY0Gi_Y%|Zug)e;D;X9o>G5BZIoF{tr@p*uOw4=Jbsmd05h>8Neu-`k({{)Nn`@vu3
    zOg&LwwNj
    zNM)B6DL){3UL^%G+hmR%49u@1=fFANJ9T2GPYE~b!S%8~fLmIGW6ZGt^l(JZ%7ap`
    zrgu}$4Ee~b8Ls^6F3X+93)B7m&OiuTiAtGxKge3Hw$>w>E6w
    zd7GHml*jxX9i>&=eIpJn9niyASb$qV(q-%qq#XlZoWYX;-4}_b=QEg#Q3?jycu~$w
    z1|hz4KiN@bCK)#Nfb*}?1%59Si~gfaR6$Y?f9!RlUQrm)Ab?rE?USv4jnmAT#a19}
    zG`d)@@#7B6W3}!qw|)7h_A5L}ms9$sF-NJ!Qe7SNcs9+H
    z;885wcTAH!BUR7wg+E)nbG-CK`jg+wye=Ue2SrFXHH+)m^9Nh
    z3yv0DUhRdWpaQb%Mh@J-PcjcG2c_9>S`w3?{YFaWW&o(@o*I4@ns_(eObB>uyr-X2
    zE{jIPfg)2Z0`LmtVqm;kqX?#C>m+q!s{^bw^S=IOq6&If6OS?iZI}!|MrMl@V^`UH
    zs6;fwRER^&7NxMWGOS#Jpb_x_snq9sT&#TB~|QXTVM
    zcGWB(|M|8bND+D
    zu9s}-W85}1DwLt3E3m4cGG5u06Z7WH&3$goLi1gTWxqVt_on47PMEpsMj*vF4~h|N
    zjrZ2kl<3Mb4G1=CRJC5@c;}c;5(3D>8PQM6M@MLI{Jk`{BND3V
    z%StEsd9&1=ld3M_qE+0i0i`|Q{ho7I55ztgl3ZqZ3wJBB&qKgLfhm3KM-U7V0C1<-
    zs6@xe16Dz>O=1wDrXtCDt}>^wvjwepB01%AnIgkZa03c5-{4hmC)snpu$K&pQ!kN@wiU(IG@p8v@>bG3kCJbylf
    z#NgQX5rKWL!*)WGo#dm{!9AL%w*V^Pi=3-ONZsNG^pX2#Zvx{&cM9|8^Fkzv>F0b%dZC1{F4d%%=^AsOi80eE(KN_*VOF4Zy@@DqAv=3uDKj;
    zZ_#U8$@$hR+ruhSZV6w-TQBn1$5YZeuFB<%Ua@B_P9
    ztLF;PsS7W>THzufoE+{RE^Z+=NLtJ9p|&Z7WU}&4kNBX8euBvU*t=wJ_gkne)N8sA
    zKer(>zkeJ}A=$=zRQ-bDi@KQc(m?=e5MwJi^9fg|Qe9_ajAIW{=N(Jb!*;|_yf3(D
    z|Dho9+sHt(`yY-BigdI~6Os1((8#n?_8Gym0vPLaF4_?hRTji7c+CXEm#dasd2{DT
    zS9Rt!Nv=UsY_lFZ!Tx@UO#C3?n%2|-eAyyw(+#6X=ldMz}V>c4kA)YW#3
    zEqwTM8tkFLYdbI+HiEKv7*6?{Qp47ZVG|k-mMylH7D-A|g9WLV
    z8Z*DAZo73O*zu
    zR82W^rOlD%aoX)0PkLnBzNN!XnOVX7{_Vs-Csik~%6e)<8}_8AO(oNM88DTH5_66l
    zy>d>*KYqV170&oUYCH|L8%zOZFsGV_xP-Q;c?1!AK~TqLkYk^&){9+7tBoU?cSGN}
    ze}wL3C70^)vNDlQh{{G(9Q2Hc^xasols0)dKB2ck+yII%F-5p};Cvzrm(#qHnOSBK
    zvBeqJ)N5BAZrWCLhsLcSFF?YlgNaPh%!IWgks8iOo|Rh;dBR9ATXdGWBH>`PnVMe$
    zqnfl#(gTVfa#`ae`}3dgXTz#8(clJUX&k~2iNQBj1XmT;82aPy^bQ#cL&BL*ig}Tn
    z2Q3fbyw(hA3!>Zr<<_*3-eox@6*bK@<~V)z;OI|`OjOulF=K|&Vmtbw#_)^T;G+57
    z>QV-~O7OuF>xm)!Oe<*ErgW|}R}z}e?}JQS7S<&LUT6JV?oF4O_On4D0fZy-j~&@#
    zw}|wYUW2$;6~2%QBBeTamaAPOzQYnleku-}nB;DTOH_x=jfW)dEO3mJ?u;aE9c}hf
    zRT?g5{LQ~UcIaPow5h0RJ?gD5Qf>nO7!h33`qtR-a+nv^X`T!VTJ(wO3~B~s^EEw=
    ztp26L2<``GZkIoD_yl6-G{;pviF^6C3E{~Ic|5%dDj>oVr%63;-Zy#kPDt3Q+WPLm
    zGuS5?xYm?Zp8+)As?udY&EXl(u~Ff{T)z1-hoJdw#FWuBc-@+9UYX%rIPWtDby#eL
    zMJwplYLzKxMG*9!v0^75r|at~hus9>bRL19RS$HmxfP0bRmEpq^XK<6&4Xk7yS-Wk
    zETmdspdT@^#SwJoU*X(xnU{a_#y69h4?gd$&FP6-zMq$deFh!(?)v^fa$Oyy1Atu0
    z!;Xn`pt1iOQ=y9+c;tB5(%7xkbPf)`3OKxqGnU^g9t5!r8a04b$!!m(F8_A35xsK$
    zfT$4ctdrlewurtao~3$j_rfG15mRcFAXK%|aOMV*Lvk{Taa)f;l@KwAakesvS&$oy
    z#W#z%d923Ir{lO&l$R^4JSeb4DXQ#Z7q1otCCZ(wF9%f`R4nwj&#lI{wrR6(48>V&
    zzGJ$eO(_b)2jQmNfo=sF_}DWORJE>Tc~R$Oo#}_B&CEV=V_8+D;(5wh{(m^?&v(M`
    z?S-B2JZhLHJUHtwhI*mplK;=*#D36@&V0Z$OZ2S}!(B*ir^?vi+4s@;#cKn9q~
    zKMp-^9u*d$f*0~kw$jqKR3sfYzf5QO?dkSfPXOf^qfckvPC2m-mQ`?sdU?~eSY?VKNQLGg;@W`W24M=tBaLr>n-Ta9P_Tn+~6~
    z^tp0~8}$2Cg~=0FTmkB}gL!obw)@MW0oPJuhIEMPm2Y@3i@yp$-%Z276h%Dzm;Y%p
    z_eaAiP2vM;f&^*g7bYHd+kYyM%4>@gNJHsP=}xch_CkYt~|BjJ;3`7rz<
    zYq0iwGT3*f0l@^9Yo1E))m^6fNxV;ky8}5-MfqE3l2{@jdC8IbYerR;_p$bs#F_xBByT7oEfXft*9mFuCc8(znEj}
    zNV50$JGxUMRO>y5`*<3`kqW{3KL1~}U3plN*&4TLF}2jx$u`A>GPAPM$sMxDEtSls
    z;yQ^_qfV>khRSAIDPx7GX}LftW;La0i#uppu4!q;SP&Vcq6xBzfWZCirqgqu=RVK<
    zXWoC{q*JZ0~R~_*Yg7q{$VMxS$rMN
    z^;(Fw(Ry~%Li9EyD$c%PBBee-c*Mta^WM6T-4yyq0exhCXXLIhxuh?0*O|nju58O1
    z_aw=B;4~4j^5l83fk(6*Ufip&y1BUpZa&`1)H)PD6I(J_(wHs$^)I)1EA$tVOfp!p
    zeF1~n&&vrvw81f-jOT(w!mi)25LLFC#}FZk+iqCJBe%HG{biD-`35y<=1Gg^qEa>*
    zuYp12+-&}rfrmwX!Eley=J;tKyYpMn$^-xZK?d=E1g!v2cLunLRDRu9xgJk3R)LDb
    zE8nx+*z!QsrxqZ~dbWx#fLCH+dNnh8kI@eOMe}8nKDhNPcYAX9I+?TG!gTK|Yjoyu
    zTcPT+sG+XwV9?+CTb9xZRCmRKtd!kFX>)<%xtTyxt>53)(D@&{pAmqP_eYV>!ztTi
    zW+^AMTpbvm++m2Uc0w>T6yXyR5^^6_d2}&o*{*MtqD^gGafb2>_87})WrtlwO=q4x
    zqnYX-QUFP6;Of0@oo$+y*AYIHKm|Q;2RZ;f(X7qdW#GZpe3pbY3?rc!#jmmvo;QnA
    z20{_tCD+_kZAbZo+Mu&UkBJA$wp0KfJCH444ph`$&X(0_gOZv&gl{ut!1?h^5vR0E}gwy9#Ol>*_I<41!~L$;%wU%`J1^>9GR
    zHYw0Wp6-f~qn1WEruM&b%+X(ju0f$~_!cD8p8=^sf4PKy;d1iy5)@>okfbYZY99udIa=$ux!+3Z>*&K@y{$DK{mb&D;Fi
    zp`u%Z9%!6+n!%S3BX1iY4o(t2&+C;u-4i!pib;A+$F;Me8d0J~(D}2+agIEbjON#7
    zjyygsF3k%q&pxTVFpO39$hTvX_y{CJvq!d`XwKQab5`<)C0!0ZH3g^Zd<$8m2#;kk
    zt6{xv%fT&uaOik=z@eHyb&+sHoqY|KcDCliD*`A!3
    z9uEOo>RI6b)`JG;C6dVK13B2C0k7p0GInxc9sI2fD;}#;J5=JbM(ZT2bY|rkuJ3t<
    z=`)+G1Fz0G77(tDS%?TWJS~
    zYrFFsTRg!`9tp;W>R3o2QZ?_Vpx0~@>vV;e2d?>6WVmGc?KVsZaMoD^C
    z$f&of6wR0CDro{GL>5AqhVb9B
    z)$s``vaG?z{iRUBphFri5@CSVfyE~BtgaQWb6ec2bC1xxXCU>1M7CcGQ=4RBQnlA)
    zM{n{-FulZ^SjV2a%wAk!OG$w#@<69bleaA(4cniG&*N=9=qGW?nXdWs>U#LPBv^dC
    zZ*`ELWzEt%cPXU#fMt)Z?Ddc_Ik=HDTpM;|7bsfx0UebPfb7^ofv8*H)3Ag99Q$s@
    zc|aV|yr&oREYsZq$8UDhVjNcocw*+JYG$wP7Vwbb>;ZuE+QMhOqN)f*SF-qdI9?u;
    zt~jXKupl?bn-bVtMl^93mE1Ie^_mX8s(&jvRW2DXAKU{tkLKT|wvn$nHx-te(6%g|
    z(W^Tz
    ztZP+4S0|ykZOdeB*2HV!&dcD7rG9ahp^chvHmzs$;9i+4{}a+L_b#3rP|l
    z=d!?M4NXVd+-Fdy6hMD23obK1W8i+q^;U4aZulkTVdH*5*1bB*O3cip-IGI`d|XjW
    zQS&JAtwj6_7J$Y&ClC-W&Ja{jH$YRpcvJJ%E6$mZTi=>UpnvD!z=huPRe{zaGI{#!#BkZ
    znlepk6ANYi6}U|e>Jq5Jnr>TkmM*fR8--FJs=fPKtDsbQK=f%q*&%2VdI+(AZ
    z`m)eIdhGqaA{4H~m$n2L>G)fzRl_ZjBhQbVBrFO^|q+A4`g$kzprt-?~!x9}xw3PFXY+fhM!_xAU6IPgk
    z)Wuf_r4@LVb{6U)1I0X>hL*f;WeTRd1?L%(NS&%H;dmc$0hb93sh9X-`%5rG7gg-1
    z7Qzbam5Hu1uC600@-y7Zt`kp=&4yK;6Ns{om?aG~s$!e!jhU^c;;Y4Y8GX?_J!B2`*Q}o))X%=T0Tw{3qKc7bz#q*>z;(7F
    z5D9)@leM(XYZVK!d%Ynd(uB7{lG-n-HvKHv+I_s3V&ysO_jl$G$Bv%s8;p7fO89tA
    z0W4JS3D@3RWYLPGH`C0c4WQF!3@@hcN(x9VW@k`a5#hz?9C*c@&Dab!nym~)^#wSk
    z(f_OrX8WtGy~_#|p^N60bE-?A$qw8nW6I*l7}qlEmpH4T?depgdis+oeMO3|VtH2$q=Rv)AvJT=DItij{_etwa#2niU`7BN>O~Ou63T@DqIY$JY^BXZ+NxIKuDP
    z9cXagXIT6A@sCDy8b)6Ap2=L|`=RVaM|~`B-&CG>MMw3G=(>&HHjc@x=08lmb*+A?
    zy+IUoevDr6OPcZAt>=H3wyuI*nXkV}ZXBTRJ`Vd_miO&u7^(8p^8p>JU17P4(qf}-
    z&Azm83s8M7ozPXfIs6@A!-c!wp4YmS{-gbsP3cVis!+F|FUb}
    zLu&dT=~@mH;(#|ESdi7fboS9;K%2vfuvaSIcl-+^<%w@#Z^yzLCjRR5j
    zXzqp}5Ck3?|3alk@ncroX!A8#6%s|44`_EKiOF+_+Yw}ho|Wz1=~B=yahm5nYR?z}
    znH@);E~vIlH#sD~h=h%c8cGS8JzFGSkGz%A
    zW=V1E!01}wr|M<>;kG-bp_(_uizmkV{5v#vpyG#vQFg$tkPaYi_p91{-NK5zzBA;I
    zG`kHQB|j#!rmJgRiL^_R6Pkvt%n~gj{*a0cM&gbm%0~6jHC>O4=Ni@Ju*VaOw>yzX
    zCv03u!UUWWa_&8xYA*?#JB~Q?+{0Gtd&Dc~0#%=Ha*ePZ8LydeBBF4GSI2@rd573)
    zG&P^ZTow2Z&&Uah8
    zjlP?iC0qWH*G?`ZjZxgj)x0tqVb;w6pZoozG~B}jzg_iSg{+E&5MaWaS5^WE&tJCz
    zGtL;0i>1{}VeEFqXVMGGMi$WlfwfAX+2ehacR^Jt`hf=$sY07QGLHWN%Hr?ej?cMw
    zBQ^VH^JClEdo?v#{h$<|ITs41nys}P`3O{=?_VW>mj5ONPOY-p-r9i#ugAnTxqS53(0}_*Jz>-z`Y#
    z3w-@4Rp-}B&&gS??5?I5!Sbz$&MVv}r}
    zhF)iVr37}VxvE}8)9vnFD}CNggHN@d+S(QFYl);J=$U9n80K>#>U~7$4awLmh~r)s
    zC@ync;A;%%>gYi^lkeC3&CAxS1vNRHtIW66)`hLFs;zx)Oft%s@(>FboX*Ss2}L}V
    zorFE4{z^ss#gY$Q-{GDc;<_v=GQ8grV7L7uw{%da)N%mfiYnxcDl{f27<~S7P4g9<
    zWHBTgU&W7AvJhq<3p9q}rHf<>n
    zQu$bS`J>nx?reGcWYyvY0PZyTRp}jLHa~QJ<7nmns;qk~DnDo&?Y&^BN3NtxuGB>H
    zEDN|4d0XhcuH2vSjt1G3$my!Vtwa1>K>@Ff(#niuoulj)#{lfwW$`^?Ce4{z;w0$?
    zNW*M#LAE{+xX`t!7JFeP>G&pb5uX0bmum@?+bci%Oy3MG!t$nd{bRjM=Ir~p1P4uf
    zj&TWVHuy}ax#KUt=@a`alg26SroQ`=+0hB@$U1EDN1=L7)jG@}k?94_AthfPvgVP-
    z(ByCazrz_D+!ithj^_X@Wvf!xut2B<4GX@UHjgk(;D6+dnkYPqnkeGnhW0assrM#5
    zJ<<48$up
    z?H5ib!HbY|1#eB@iU^^SMOajSi;s0T?})^auu7*5>0=h5KqqLRRiGnqQSSw_%pq-m
    zs!+}2wUYV5*Rhc251UOpK|{76I#%AEJsfjTyr@y6t9=WhF)6|)R`Z4|*ss=Cvs0})
    znWVyo9AFUa=4IW>RZh&JSZm-g+b86T@)J)q0a?7i!UH7OkZHw;N`(lE&zFuu5Qub6
    z0hun1qTy&T$4&XSMwEt1m*r3}9a&mU#0BTExYN7k6_mJOE^+cCCP
    zQb82{R`nQ`SFL=v&*g*RhVX@pE}!t^%`ez`$+UpGEcKqd+g&;1ok%wpz>=w-M
    z#Az6(g#3=C{;K4z@T2HkqGfqddH@1OZbkcQB*
    z@I6VY>{-8szogggPm2Oh7*f7nL{36QyQyVviWPWIYsB-^=9i1RL*jRXey@@SuG&28x1-h7V-MbRHU@o4FKm9~8qLG1
    zl~bTImWka6VWqS8fre@8uhn~K$HK^?ShZZ{h2@o8GU=#8RP4PWY$w|U_gB5|o!Xt^
    zn^8`{8`d{@c7Zl@>3Jhn$r&fM%R`%K`Gp6h>I1u0^25~hvV45+Q(IgjO-*$9T=91k
    z^mSN(l@BP+;$3Z-`<=fteac={falCs^)X!rby0UK?9vk@(xmP^fyJc`
    zvsggvd)}w`_wsQP#I%tfEKU6;H86p({kg@Q(K4J5bp4&>@+_bu{e5i+;C#Z;I
    zuFKyrzk2mMVoZo|&$@l^4e=08FVisXk$Ad-zx$Ixd|YI%E!Rp+csi*tR$7n@?gd@8
    z+xEN?RHSA!Wc^Y;qBK*)_e7!eCZw=_P4IjQxoli>qLUyE`?OZ=qHbKA2HlQUGmCx7qlE?8EV3n%)-%f0AyK-L_iyn&Lr!DjMdkL$hN4`ced)|ead&Bg
    zFKV>Ldu6lQ>;c!!GmKg8bVA!ulxa{7?h93EEf8#kG%Oks%&vDL)CR*L3qybl6w^kej%x@MTpT*?pK}O0p3q6(b<#@s?#19m_g@SJt}td=dYuE2AS_EH~))-)dZh_drL3w!5znjxM1mN1anZa5#jWnzj1rF7hEat>e=^9y&)SZe&N6i^j
    zFi%86=+PEd9wHPGc`+BV_9G(lYSrxIgQHq!qd|silXPs!Rvoy^?V)k*<^rtSwJ`>+
    z(I;Uemt@F%tZP5-kJV!0jX!rzCtMOFtZGbXsOv$!+i=jcHryPOE6^I6w548c^;=B(
    zY@Sxay3
    zFfCrG6>0JO-PPRv3a_YzV5GTtw|aMZyIo?868OjXMFMraD={7U;TR2|TW~79%DDdU
    zhX;_OYm?W+4%juHD`baf;=A910g0^>p!@u7ttA1m7Cr8?w75P@peL!tL^NzTFU_xW
    zO)l$QdUqaTcoBdc*{ZHDEslGW
    zV!`as2DpVJLA{~!Ky-N$V#DCYYv3itmvY#Q2>Buk*Azz`{k*F~JCV(yH$j9q%UWou
    zgG`b=ZlK$S4in$17f=ezo5eNHl@yO2tQ^6xAmzdd>C*zbLjoGU;FzGz))F^8{sHNX
    zm(0-h_>2xNilnuS#;W9Zd{AclvD9SI<>~DQ#z540U%6msqO8eBHIOC2IfE>Rvcgk!
    z@^8&HtG0zUlx|VnMKO=LZb&IB=i~D3SGo4&GI!5%*3DZqRX(c->oYs#Z%0NP&-<)r
    zOZunw_{+GL^mdPeM)yXDU7^U+6mb6Q-%6H&>fJFp{hKa|#VCAN-ZP8uU$q#~q2EIv
    zFs`72Uh8rlYZ4zXtyk7*`q1PTSe7iGJKclju6o9Md17!%Z1Dlz*kWi{KNg=+(_%6#
    z77Mrj5CpdFw5bOpusw7ZzZJ9)5LZLv{9e6!=>$A;-|Qax;8Jxsyd@r5(NV#}*(%(D
    zUK-R>57I?1|=Rnvq88oT0u{`0%EE#u)yY4MEL+Cssm)1OeoB~d?BFmyZyEXPMJ
    z>$ezXB{4WwC&`mot2w?^-kp#%!*x?n;OJ>L_!`!^@ARKSTwk!DYwXK_9HLxqGF(C=
    zo@G^|+ijaqt_AlN(?YNDg{D)n-43S~MTN7~+
    z%;0fJk|$9Z!s~6nS8G1K#(mxDUJAPYc62FRnK=^|&afLQzC_P_^*R0W*!Old0d{nX
    zu3YIVa~o{WDcLeM!6~hY5)9aWdwOS<9(jn~#7&p=peD@eO*uOIBWM3WIY8ohzYpbb
    z^AT{;VSz)rY&yLF4io5DAd>zB^Jxoh(wNLTcbIe2Luvm22R{z!siS+E5gpF3AKCLw
    zEHa1(QmZV2BchtU@bp8Wy#I9SfJ+-Z@9(uOM1$pcH0GfNYv;7j9}t7@B^N5QjkLwP
    zEw(hzhu)3yd&leTG?iRmk~ZH{N&9JUVpx%YvUYkTgV3Lhr*?SWtw)q5yHez}l;uhF
    zh$^e!FQn1Frsa!OL`EJt@imJb$r&0wsBSGrH|WkUj|I5+HGwEJeDlvDE+cYeRR3sk
    z*<~zGK>cqFIe=|zn-s-6RRu{ZURvr39^3qAbRLNv6@@1qnX7j`KHL_H-Nj*E5u);y
    zKRrWC_%jQjdNr{z93ua$=*sMElhD3-U=6wxny-v@+wwSo2;(VitJ;C$>Fwc(Z5&~4
    z?x6rpgiGY4o8Ka2#hojS{t>C2`Xapu0(3wP#Z3Y^#bOusnakSYq{jt&4duU1>aljs
    zez;n1NBH)=)SMa24E%!38cpI6Ng-DOS@DQ=D0RrH$O<-P;28uB)FY+cI=)&p@qg#4
    z_S>RK{s8d200(#8A?8h+0w(({647qy#%t7Ea&<>
    zhbliS*j74%|E1;Ms#s0!M)G*`m|FXp)~WTCMCF58>GPI-G#tt+zZ`i*TDuwIhfN$SWBTHLKTBaM(sQB8&ey
    zijd7po_yovb?oj;$vPTI8ZOLlrh#?OH_v#8OxjBXW&+Jn;k6@Mu|(a;$-V6|_E5D~
    z4%5L~H_bd@JwC2)-JihhzY6;9i9qlzNh+E-m8~QX0{(E($&ra2%iV9YSY&QyQG+wn
    zO-?@d%_IPjHCBP9oL)48H3Ew)AJ#uGoYOrG9sEVumtXUk1*uI|J28%WubK7h0g?1=
    z3^<~qgb$#i*)726LwLM1V8Q>2R=*C4W>DnjkD$IGzPP(p+k5K#3iKit;+P#e^Yi8l
    zpgdgeZ#_iL>IBsjWXoG2Do(4882G!s3^
    ziYAeYZ`cgkoAw(4X?nr&al6g~`WAv}e(i_5h`72R4QLaFNz#7Uvr5IQMFd$3wk*7u
    za?d(AZSn;)ILK!5r8c<^vX4U-;mA8bTzFQ87y;F|i+j{u{enH&O)L^gyOoi)vfY@7
    zZQ=6?cvKFz<*UC>jhm{7z7YZ2vy30lj~pHSN_5dg{&cu`hpGGiu6cLn1I16w-*z_J
    zN6U!Y!(&;bonl}u<#|)xQNL;R$B655!V=jdkV@n4Zz8XnZeusc>O;MzU*+ODmhQ@3
    zWHxLD4=m5OVQXjrdxsv=%ee4U54$;4I+gs`NSs=tPjO#jRI$%^hkeobPv`IP%m?AC
    z;cvyi47f7)Eg3et>=W>how_FIsbut_0EB5GR@OpaH@Q=pBn5rU6UQ~1FOqzO9HQ0l
    z!oIQ8Zes=Q-nL`<1
    z0_Q10gwbyrVsSGbVtsyVuKB1RgyM!duem_#V
    zWHzu1G$vbb_h}DtPJGN3hyiyq<0|%*Q6cvACQ(3KiqMzG>MGx%z+Qw)Ua+2Ho49BB
    z)tu$qRHUGk{6_-fG#(eRt|6T1ntl11w*7DbbW*L$e6CYLqTx#JZZe*@p@r{94&c4V
    zW}rij?SA_lf@HEoVVACT;PazMuh3YJ7$c
    zr|fe`C8;zz&2^q0fGl;I&b>=lss;vc0|2R$V5SR+h#ZoiGytnuFf7zQy`q-K4E{!!
    zyjYm{?cxRd)#w8T-&-%#>t-OXmGejGZ{)k;^gRHgvuE!96gBwV)w&@3v?iI`OZ-dc
    zooD1qw8RySF@3_Rt2so7h>UF~s1}Bvp1SWz#j;ocS6?<8ZZv0
    ztket-)!5$@STLLPX&dukBFrUE>O@Mbd<{{*D)a>Stn5U&|N9S^%itWD~Ld?Vz?KGInQ<(9mXX$*0LYYNDrM(q~D}U
    zxCwtawc3;MeKj_f5iVu5kruhl)v-*Xf0UaZE4?`G#)`j+>;@Bd#60{~^*#yYpX)=9
    zPIFRz(MW?%b?78(F+uiagQHes$2NQZNSW~tQM|I4=xzdwoLEj6V-e<{#Nj{uudiBP
    zw?g3%d6`^4{H%ILDzv+D=TgVlGu$fsGltvMDS_TC$K-B-)z8}lg3A3Xe$OjgMR5*^
    za?Mc0UIoKGe{Sw=>=(I8_L>^1plkk;;wN42_7;Lgj@NoD{Joi(x1z$n9FP)MHrX?z
    z$G;>NJ@j0akt+j!>3bBK)VQfap!0Ngmw|~t*k?PICACo
    z*i;v(9I@F>s3Qrsrjd;Z3f3E{abBWNo(-xAm?Iik&Cduvj~u5=7o;JW?2>krZSXs&
    z56JVf{bElCOSh-nt*(7UNyFr^8RaD@2xAl+8UoIoN}CKtRV^5=T6euOMw=a8Ro}Vu
    zU10tA(Cqkbo=C`xvcxSG(6C^+2AQkB9$+g^`sg+{lz)s35_yIikaZb^J)OqgvotX}
    zH=gmY)>xabuX^Elb9_Nj`7twQ#j>>2`0v3|;D$Od!n)K)@%%TKNkij;stPRwe?*0uRTXRL%v{Y10Cmcc8G{MfW2t1J`!%Xvgn2ai%6CW=2
    z?c}DZuv%s)-bx)?+Pn%8Izokwa`x`V-Qp
    zC9KEJeYp-?a>Y}>nx=iO{L1CWUYg}6aQ@VFEOD)VD4u>=KGMz4TBpG{?ogVt;%#`Y
    zfa}bh0xu=t)CO)??Kk|!e$Ed_BzG=Uf_fe572QyH@h#Y8*`@$5;OeYn>`=dW|2MR6
    zp2vxhvWp!6*hW&B?!!qeVTH!^dEN&Ol8aogtKBQpzmmP?&vT=6cviW17%3@ZhFZF=
    zz=c@etGf|RY-d+_;kXxoB#hU{9K(ijLW6Pts^7@s1RZVeIrzYF5eeGw19?^A@4y6+H>ZNqt8}6osB1IpCAfg(T5e}vr4qJN^xL-uLvqjhB=MXar
    zEx&N$g59NhOYzoDgzOUSo3hJRTk&Cl*KoP)%RxX|K7{u9$2
    z&>$S7F0%aiC2Ntre)U1nlsV7^EmKzNS(U>c5x-J%B6dyrLe*f=T8#t)2Rznq_++}x
    z(I0=nj1hhNQ&_4#&vU+>uUUE8$uX}A?)m+a@quHL2zBKdeS#2r?JsRromJqYzleFC
    zK;!iD_XP2@3u
    z3Xxr`Oep<9Upr&elclDME%@42n?JC!Sq6(oT-D!JzOhhYr?Q*+YK2DdO1?9gu|82eH#Vffsi7M)s-3~t+r
    z?Bc*jkZH086_j(jhf0*cZFde%Iz}=Uox6OoVFHjCT+<49V{N
    zM!)D`Czc41%>0@XDy2iwzlgGyvZ5y#E^T*xI8ydZGrJY1@{~TxPX#ULG(*{ULl+j8
    zixC8BaQ*KL1b9uF2BpEDpu3|CepSAM{I(j91D_)90o-1oXkR3NZCcbBYm@8+o7g3T6jr$Q0#W2Hb%Q0lLcm(`n@yXph
    zev8QgEY4-@^r3~xZnxq~4rpLA?vvLj(nfMC!JLqRjpPq?4cI?P^Cqxdbo%RV8NEGH
    zyZ9?tIdChoV^?LJd|`{>Yxd>it6
    zpbQkFHw?+!?B@RscUGf#L8X|0q>7(3ex}=uebw_DA?SJdpwK)X+oXI*IwUYpgm`}Q
    z`J4l
    z?^w@jWm|EQ;b~BxW?Tk?0WnjvewAlF0unO*^}We1-4`TZmG+(85q3L
    zX(QTc{c$tt@MJ}7DY`2ycMLodl8*h;ckBy!MD?;JfB-m-&XJ`1f?kl}g)4_|a;Tu<
    zFkUbAqm476*D&wHck+na-qMQ$rp*+0A>-NZi~A!#xm&BJtK9w@QkDe8_ob>r+
    z@(v$)3V2xOgzC038Jt^Z9kQ+tDAX3qu(#2148WwW5?|Jf&QMAM^;_u}Zz4CtfP<}e
    z5n=JjevUesQ8Wc!rKnd;?6K-;#rl?p#*8+o76=y*w>HTX#r*Cus;mAaY5(I*p4SYA
    zCeq_!b*1gGoGzzy;|+sXU8$|26MFd*f__rlk2B#|E@mV>
    zfY}&J$X@`r>5@4Hqs=s9(`jkoonJ5#-_f7~%K#)Sq?f5pb-8_hf@2%4ZWS-!EM*FG
    z->!BzNs16hL~XFulO1nPGl!hvkBJ2@Tv(oXIy8)AkD^BZfRmV!vL82@rEfh2`dF0p
    zI>9hdeq}|UYmq%sE}+s>dOW3MkTnC@XBY2K8bhv0ZPFYLD+kf_ma?$HNfrOGFfhhZ
    zg#y9IZ?X^X>Zug=xBnkcR`LsNr_x8xm;o#k;NTlJQ7D(8t8-2};ZHsV^D=hMAnN8D
    zP<)Xnu$OQ;!?1H7D-qb+H79P(f%|v+sNaEt%UU!v%TlY3YesB5Ofj3tX|f290l>(o
    z^|_szMRq$bECP<$EZ5MjLo5$UNbakd!I!?JZME+|pMwT4bU4_Na>$K8^*dbYVcQki
    zRMq_+@ag+;>Lc#YpYh(87IOBVsoMF{tJ$(a@}0#)s|=ZJ{Q(Xo1K4DaQSMx%GosBpVLy`2PwoTW?8{pzdn
    zaRX)V@*q_RjMe24fGnG96ov81a1jc@;1_+Qz~e7k10PyKtG-_O99Gx^iR
    zk$MGj78(adM_cL|>%ch_Rz^?*=$^oRgpU<>dU1KysBpu<2e6OBK7{d1Wi7$J)<@$Y
    zX14j*i=)*$PY1O+q(v7QCdM2)?}OH>o3_2|Hy2qNh?+&XfU5c1Yhtj#^vQRmNNZ;i
    zxj|@PqTlmoZ-+Y*+OY
    z63K^Ivvd0F>%r3J@g(XcA8)wXTCz&HhBWee*TOh#`gci^mGRhnBR-J75Bz6?O1gS@
    z4s@RQ>Yu6Nvqa>7%K}&dFyTK=LSoSTG_b^6#}AlqNO!9!SJ?WpEJRgA`AN0Ifb#(5
    zr$IQ|sMxA@QsNLEx`%CUGDeX`&F;MT-S-Z3L(+En@iB@hp*fP8+-FZ~GyHO=VWqE1
    zaR#p(@7Q^~xPGnQtNAYfl)ua?c${+^Pl%a56ysU{vzugtXWy3Yq@y%w;%OtF7yTP8A5JK{!Yu@~TF4ddC3Vo6?(UylDEo)YPGdjDB!SsT&k;!|t1=&o**WX&;~
    zh2oF^a#Ca|*JrKt6xXl39XI+keqHUNbv3p&{7rz?BJnTiPrZ~mY`yi4N(qGIu~}n7yM7eeaq%ns>}YAo
    zlh|CZ_CX$&xM6KPgWZgGm+-hS$L;8WP($_ShK*EhwG&cByZL^><8^D5cUSl(YGZeI0aO)NI)ICJo3
    z5w<$9bozPc{0E@ajU{nc7gf+x_Ah-pZ`MX1>rV_7F~IDq{nj}+_c8vqqa7Z%cArSI
    z<3G%>A}*gL=IH1#=`>&R@5Wshh@VQY;D0G|R8**=^Rjs5s{TIS@EO1$w_8+f5Z8|s
    zii&B`=KNS@>_2vUbUb{LA^5Z}`~e2OG@rZgQ&dGcwa(t4$8wA6yBxIje+h-R?M)IJ
    z#EnrNc|XEnKq(&kab~ft#{4zKzgT#hITEDXQ1EkAD5{XI{Ut4+JIL7F_RWLLe0IQu
    z$nwRamnDiYFFw^%vyN>_T9hv#4#DxBfVhi0o=2H$Dm`D3rflxUDg&E!_bds#&Y_hy
    zg*a#bA@kyw-l~w&c(qAJ{;j%EhuxEZvSAyfqigQ+E5Vfb-@H|7a(uK;eQRxi2wLSF
    z#9P8Pumh=>+cx)MDMf&zyZwZ7b&o;BrYE+V+Ah?tNy#iKz1GbTc?bZKLQ&4B-+lF9TFbZHIFZK?R#;Fb)FbA&
    zT3CKlHvjRu`b_f_r>Ul4(1cNX3_7*fi~WnO&dj_SPC8?vh?hX*h=yCvNB6^b@KE7+6DK^f(k}o%Hv)yba#Do2=)m>@Ss9w%U>1XD~m@_
    z-M8dOI}-kHDr!AmA!}y{5Jc7#MU>X*)DM(5plI5hNj4T!#YIcMIO;)F4>onqiO(*DKAwR`yGMzmDr}{>$iI1I0Iz-SNpR;yqY>
    z?TbUp;IBPc1{sa>&TOtxJPAgqVkZkwl(oDHW;g1s%zcKeUQt$p%KDa?IupXg&2qi#
    zJbWpBTypcAUfnt=snlfMJ_#uMcrZioLg}`8IuoJDAldqDQF_w1ClJpMgYaSd4Ypio
    z7+ORI%$zXQK~KyhPAUEOJGNT*-^@N%M;SxAz%T;Zu+m&_ZZ#ur9v=M4wtH_2?f;Zx8az5##MB+
    zvZr&~ocz*m)s`-*XL_9q8Ltmc=y)TkzWReR@?|gV#}#jE#4%T_>a5_4T&Zw3FRxy{
    zC{HL7EKo`JjO8WyXFLldD`MMo+nDB?c#tcI|GvXKniUi;e!~jY-s$C!%5c?B{lhkP
    zh4%UA4KODP@M(4ys2HPIY5GW@`gDGmeZ29^I2Joo(yas{|7zYz!(q0Lt628GfH>E&
    zIrA}%57LuyWg)Q|2*jLBo>52yKSz^sISDFrHuU=Zq=h+21G;CJs88__ynR@Co2B`W
    zd*gDE+s}s1lb_JVF<0i}z-sVaZa)wb(n|$DS0P+kUU8G~{KG`ZF#RdVN6d13Nb7Zr
    z3q@SEL`ZGZm4(oyfyD5is_g8}bkG4eF+bUJc6L^AUWA&anypd`L_vhB@6D6GG$GEE
    z(?PRFMoa%pkj@KTI?R+3YERqNtEKE$dYHz}S^x2g*IA=7Ql;iy_u%IbqMnZL0Euzy
    zqEo^jPu(8OTq%u(h4jVO#ClFB(Fzh#@BBW;Pd~+M&$btRr)L5$;4pQLP}af<aG=rL0Mf!@>qe_ZuGNarV;?Lm#i6l>FpSY^&k^}se~
    zs>Arq8%Ddv^kD+Sf2dKt_`OD`7-1_t+p)5hQdGiA8ZrQDm@-QH&4$uCRm$fBY3EB%
    z!qt>miIkVT!O{@fXZ&eBeH;V|m?759K*XA+?!%$TtC=caY*_|zy2F-h=7ZMV@JodF
    zJ;C1#H@_p(zf<fzwD*>djq8KF
    zGQwe>YITegH!~P%@LQdK`{WU8g~9w?t%-YYGNb{D=&lQ5NmX!{7F}#ik#MkzWnlBh
    z2j6O*L1LIM7`Eud`q4`{Y%~1IHc*<(s&ibPWnaS?&EGdc|Hee`N7^$fmBml5o5TUhFG*EiH9jt_
    z(Lg;Xcu&I={6$^*Y;OP>IhT|6I^G
    z%vJLpou(^-jjmFmsE~oS{s3X>cYWxxHPss3b{FvXlj+4Dwvs~7n^0ZL7cpLtGc-fV
    zV?6jkX&sk|U8hZnjeKKytj1NN1Inm#dE|%~4R)g84Fdj|(mwC3lZ@7S?dU=`6L~F>
    zWr_B=0D9G`@bijWPpa$`MV>$-^l*pNr`nz5$IQP+igi|OVamSJnuQj8p}vtl{B_ff
    z<{DyjdStnAwY4Hx4^Z@PE`4nwe=2g1{!;#x>Nyz+T0hLKCq*L3DC!ztaA4NN_eyL2
    zqP;8-i0xw7gf6!8t8W;8WTfnsMj7
    zY`E0)Q0~%^=(b0$HFoK`Yx~jN#@qS(&n%v00bIZUoKsre@JKhYmFZ(&uF{VAo9C9g
    zdat6j<}Owz4@`SQPj==GEhj>_rv2n&bp0bkOc8zM4-6(uL`v32j%yQ3
    zAO9xJ+HeH-=%J;`mP@
    zm(8jdv^;N%YqsYn`Sz^*n)E&YgPBl>^x|iZ1E1w5z86aY5r?;P?;c@Nm$6bvnD=2d
    z4Te_UFi9PuffsLjbdyua&AaCN(yxau1lO8=2_6^w2=4sIThlQ0W&C><5Ytn7@BB#i
    z%xCR*D=#Cut<94D{)~3c8GUi_dFt1=%knf{S+K^gO&~XM>QkrIeGLogRR-Vk`gHIj
    zzKC6i-l^{j1;&vk!PwQnnr#W)nVFa
    znX}OPx93UOmf(l(*Yh8Cb1u&>{3C7{Zz;I#1R|QsgrM8e3#~EIWosE*CJ4H+Qq>sk
    zGH_nN{hpTIP(|V);ogh~m{#nt9e(JCHF|=na0F{*CIXfdms}RT>MmjpIG6zqlI|Xy
    z(c7ZaJGt-tWJV
    zu1^H#OC{v3El4F9>4mnaxE=3ulvmKPKd*{BC6l{2g9lOpbA<{rN^^=;%hm$t$`jU-dJSpnmymo@T=YTeaq(?
    zu{9_KI{8L{!`psJPS0osk$i1w1`e;C*|Rc=cE
    zD*WbZy4pwX{`oa~Lq1O4orU;1rE<5k=e&f@Kr7Nz%r
    zKcD&o5((RE|7km?e&W3NZ;$znyUyvgIQhEw;nd3bQvIG3#;n@1SZ`DV3%fkVjIV`7
    zG7bwNShO`28DQR4Sb2Qwk9;^-dlS6Y^L@tj
    z4G-fmWtL8Bdl5w+LWZvK7L#YjF-ZLuZ_Dew(B6LhHI)l#v(%yeX&><4t;4?${~igL
    ziqy)9M^pd28>-9*TGp4zLzXv1cY}MJ-+~6?N!A3Ro#g1wNmy>c!>sy4VU6QlpY4yR
    z^j}~*F?%xMGd74+!wP=Gyg9V^;1V+}Y)Y;KhncjW{H8q~Mb?f69I4LV)S6~me*}cZ
    zAqqEkb^42g5m=J!s=%-6Q(c%Ewj$1#(OscJ5dZIShx_H%XFe+PL5a>S)XgccOcWi9
    z7~b?)N4)y|yLmJ)>MUpoeH$L2Y3K-N@3E?wL&&tV=m=F?rI$VPYZ8g)iPVs
    z2*0`q!Pn=AKMKzU-R~hWvttn#Y2>SS5VWArfiEgum`Z;O)tOn5<-ESfl|9I%te_B^
    z{4)00kVvHYvi?--aSNmQeWIv^cM&0kld5PXyNCLzE2de@=0~+JB
    zp>08%i#d|`X=^YdnNP2ka+2R!rH=G)zwcqCSlNb|w(nhOphzVb$7?T^T_7*yy52*c
    z65XD-pcNaVenuleTDh`RSv|xur>aEj(R~N?f1Vi6WA24kt>s^tYoavRYSiBkb`d--
    z^!3o9lkCwYSM(H!11G(vIAQTc5)u$IhV$9d0lN3?AvnVI4(;(2J?XW_yipq5)f>hX
    z?DStd3X@{fYo1V5#w|rW+;v~J@}Ee4$;4hHk=WQ)8Un9Nt@@GS7|25unHeki~5X3YU?zHXmej>UiwO=
    z?%h_|V+Nm01TuYmI$g8P7wuTt|6n*TgF3G%+E6{K+0y@HX3^q%s)n!V{S|tl>celK
    zum(AWeh)4qc_ax><@@%Q3%L+j-eGV=`sY|9_f@1tNp5O0+o(GFwG)4Z21LQt{(l0l
    zlnpRpvW_l`{ErYeg;&6bd7ev^+~UJ(ZwdBepNj_+z3sAj7xSzjwFEF}t41kPKS!Gv
    zu(uhEDaC1R6zaLns-iWPqTp5=g2i{9gyZ5H7IQ1lcxP!5A^Rkni`2;8mrb62{f?)M
    zqV#h_xk)uenp~AtBK&!JRJh?5HLr;VDPh@{s@pj?@D<^|N0Pp0Mt|c1Zl|)2jy}tv
    z$YvUOhfYp*50^W_^90$~4BQjE6wjJ_z8$4F-P1a@-tk-xwB5ID-ZSwh`CR>Is5aZ?
    z)>lqg-?)>FHvFz~QR!zGqxGbFeEH9|vGmdwA4KPy7VV_{Y*0YUw!5!_=I^DuajK(P
    zqr>R3sI`&mTF>jIG>Gr1V(n=xk>2IOML=%e
    zdnoipAo0W1@lz{9lkQzI!_^-%Do3NK%$o0fNXe#hyBbBkz(1L(4*B{zvTEV03mxNC
    z4o>wG`U2JwD>cHb<-+EHsA#Q+nSw)`M}1D3UAUli$`kWPkr!tpI?hI8CoKwW$Fu9d
    z0-BL-9E-zUHDt;~@p*~iz!Lcwx&hAAHA{a6o||9+tqoFX{_tAiXQTZ3&%^Lmy-&$DS~o%uf+z5V1=kX9mSnh
    zJu%Bqq?2uF
    z@knP`tRNz}UjB30LCY%1BcYNmVFnR`Y-~yQdaPQi%8t1^70ldz*sAEtNAs&$`d$G_
    z%O{)dG=x)%p26yq+hZcr2FbewKKrCon8sc!57Twt0>AM8bGkGT*eq@Rj{Pw&c@{V^
    zHR&@k@%eiR_7Bn6FJ(=EJDD0>4!t-pe`GxQV*f9ke~J~zbhUnRg~)rc67hLth4c0z5vRda;ganwC%)iE=4*eeWKb8y!_O@(0E&Pnd6Jve71d^re
    zsJiDCypk3xH-gDJ(AyQuHW2(59BTi7BLe$@D>K9@a$6E+V#5t6E5c56;Ma~mA({T&
    z%V81txKNY}P{DKy5Z*vA_i}!CIlo4DZFIC&GA!aKBO;H4Gio=V^Sn+ID1C4eIboox
    z97T2v{{DfEd-?VXJ>BBtVWItzZTsWzA0I#Gn6~83smu=VSJwYQkK7kD6fpZgfdCBR
    z%AJ3BRRwuz)?wx!*i~bQ2DK&hg31epgz*(?$@%T%U78t+tGUSx4fLSPNh6K+L-g5P
    z;)Dvy1>aT~8vYS(|J@8mj1*dXo%y&|)rI-4qp9ZWw{MX56P(THA*pm>7$N_=pUDxr
    z#YrZH?~KG}uYT_~`4!#G-@lKRC87u4J~Tkkbe}3FBne`SGWkfP3J311$Z+xqZ0^mq
    zFI_I{R7$arbYi7hvuuztUptgjEGp;@ayYq#m6t>Pk-*r{u~{uG#TD!
    z+21-hG&=RN86Lq%@pk0nWJ->WbTbI7y9xEw7tH8mp*PNtT=#*5y&d?0EeoQ;i*$Yk!e
    z|I^wxM+XsT8F_Pve9uNN*LR?)_gnHZ5mwAYcdj6dz-(+vmqB=RW*%)8)8~8Fx?A024p48ICcF
    zPuG3K1%kkVX(qndaM=@1|I@W!$2o_-RKi=litgsTg77iP|K9iDd&=9!ZQ)oW?R@O_
    z9mz$R8SHQM-p`giP5-u$U6J&TDn16R3sD-
    zlm_YC=#HTv9V#6XDk0J}8tHDy(T%`}0Ry(N=k{IS&+qw%fA(U#@AHcDx{mWWj&tam
    zFa84tx^$5GCV*d?-XrJBj=`^5YD3tUnV*((39WR2R*yjQF?|V~%N{RW-?Vs~?44fU
    z6g2%vCE?P0Glog@9*2fK=>Pvv3B%WtQuG)SES})Iue9Gl(p!1abxY|%41Zay*;Iwf)QRZ^xPKRGp7f?Yl2dChstMvu_Du|q0^xE5t
    z@m#{~%XVj~1`&iS5tjelb;6bbmc@$i!L#zL<#MuYWpt&(2EE!9y%}jCrldp|VN+01
    zAzZQ5$H4gmxy6`~#*Bbp%10Vr9yjjS!biWV#CMt|(3QTd`NoSa%#!oJo2$j$moDz8
    zalSqFmF!NLT;pfei{097&jmk|ku4biukoYfnR&~a{$EEI1GY=1CG$b8S(65(yzn?j
    zY1&^&$H#SZyXbATz#x7qe2;LtoB@#tM-jz(j(`;&A{}C6f<^Fybov|*9~4=hq#{$!
    zzG36d3AB6+u^{HQr5{#i5qkb&Fzq3WZRM?(gl;9dzM}?9LChj>@ro
    znf~vRDW&;)(E?LOjE(S!-`k^gqI0bCb~-@1VCe5|?2dp#3yz158QPlS2sPQmyb!o>7=9PKlN+go4+XM+AZQ|`lmpM-+O&Sb4=O-e3
    z_7!KM&`Q%2HML2;m?hZsI5ce!RjX@TU#d?#QGJ#vvQQH=a+vNguw)G1@(TD!{78n-
    zLnVz4KtlMw6LMFal*E#0P1QST1fc+)%qX+ZT1&=ZKLw5j-xNyjPr;&2-&+&LOP^z3
    zwYip`0TGcsUmnpJpE=Ys^_>jepm{P1q(AEE5;%CKVk?JdDc>?psplI&1Gv-h0O1PX
    zE#mn5j3BN^+Zk(or}Yu=zdn?bOK!X`vgH#Ttkx4mWu{17Gei|iFI>qeCuY*v(z8kC
    zotuJ@gIr?|2w!`HR9VECj`=+xH
    z&99o-@;?6UB7E>VkU@P{pNHNT4t!m@xV1(91JS3P+=~dfh+S~;nE82kN#jcmYT}2S
    zd69qbXYl5y|D^I#yrLqR_=Zblp|joN=77cfgxl+VI+Z5zQBk*$92eg;1N#G5WPNUn
    zi;Mg0*GwP6Te0x-uL_rJ)TRuPIkmOJO~%MLnFh=C-jAFZ@1QO3axmIUlv-C$Pw-TX
    z&LNMby`hYzAKP}+v*hL|$@I|gdc6D@0U-rr78L?g^*MBB{_u%<3fG#GwAWHTGNnxx
    zk~w~nGj5_M+lug94WCYHo=P2VX4w;emRT)=MW!RhkfIUe!vW&zY2n_bei3rXmEwJ
    z#J&4XI!)8zWQ6gg#QA!n=cYQq=$$F^fvO8STO?KO>}E~529(i|#2VdHS$oeiHJsHa
    zzAf$^mj=ErHj?xQPzfa|%p+^1BIjdRTu>G$y
    zzA=8M!g*9bgYGSH3kyh+;J3A&4fT>D1~c^Bbh*>4h-H}6nvRJ{>|1=IRdut=Pn~*^
    z-@l9MteIg}X|-R!w&`D|o&WhZL}T`#8O7pv;?qy}{r7JMUE-uiPm;oM(OV8Vdnure
    z_$}JqHnv4tHnRz|w_!JGYat8G
    zI`3o3b(Zd0Mq(;>HfLdotFcEOCRon|DAjr1hO+nvQcYRHZBQY{bv>gr|1E-=aucTl
    zFr#by$kJKKqy7DO$E`beU{LD8d=}UQG0Z>B-QO(4VvQy){
    zSK|t#9?}?Tl&pYo$aTsl>N4Za1%u|p>~?OfhkflOPgyfQ;*wOni~Bh^@_XM%$kLXF
    zvvj2EBem_v&!BD$mL|19G|m8y6!rtN_(AJ#sMoS6L(J{fW|huu-QTqrf2^pIR?6?o
    zM`mzXq>NPz{?8_goz}Sh@BR4Is~QWf(DaAGqLORdW0q0@=Qrh%X(KtgZRqT~@`J2Y
    zk*j@N{%@llp1x
    z+lU%-=(evMfeF{u$rYA&^2vN#Xjk&SDeTHIb*8C!WT}>S5}x*7=ubPm;JbY+AQ%>W
    z3gSJ29$dsP#N+%t%Cw=GMt9dRo^UTOc3s=LQYU&P^p#Y!KmYBFVL96v3Wt!4ZqSxO
    z+>iH_fh>2RB|e0O-zcTKD6MEx={T^~jX0ukNzJxbDrk&Icfe3X6+HF3$Gh@o?wXj?`~+bDTg4S4U@QX7A4;7{@N(
    z4%%r@=%3$8DMP>C4-#%PI|iaoTZhj3j383pY0}y$ORVxq
    zRB_)rSU$D-4wjZhlF)8vYVF*`guJ^{@Mm~NM{3=@X}U*nG^zi0%dz=q%SmShSl`6d9s~RfE@w`6
    zA3S()1Z??cLe7f;32~?kt%D|HoWXV4NI!Iy?MU|!Y~BJv_Rw`T)ZkIiEQ>rgmaxzt
    zB{PIi>A(@AzE`AbqTI;HihknM>TwaWg42fm8&}H?m&OtgvOnq5R1|UgrsI6alo65B
    z)?8~me{vP*efuLhjGUxQ56Vd2Em1dJ&D<%}DwDJGTkG=%#^(Bi1;7ym(l{#t=R}=j
    zz~Frp%fv=;rf$JD6E1L87Hjzsnl_F9>omxu-r5Mz)NLqm-G$1d(Ct%OQ#-Y7
    zIJByh|AOrFb!)UNH(-vk&v0qoX_@lT=#&2S6gP?w%*!>gcnqj9zNXVLzZgTm>m)E5
    z^ON69q-LMPwH-->oVuh>GQ8;y_@v(Vpo2m;7|&QW=V*1~+yYl6iB0HHbqlR;J^s3_
    z#4lZ&y!mRfW>e|rLL-z|#%oVR@X1EABBruxZvjR@D`+AT-{sN4Xy@YKSm8J=Fdu~8
    zx9Q%(T#$5M3*1pRd%AY<6sQ9d-OHp!y0c8~I|bitby*O!MA6aNwyrNUT?x9Ndcx|g
    z&s(>XhKVM}J)ihoEg&IfG^jb3GOq5%oqdW{oZ;~SdH}UHwbH&j%HLz!!Ct75U$eqq
    zI9Pi9&k>F@$MB&kD&3{E6*HaOTH>{oJwh?y`X^1+?TfA+XhK`-!JHCJY`LYV-6(TJ
    z3nPn%DOl#bFVH`$9*mp|L>aEs`pfTM9D`C?1NDH6`BzNApkK@t+Z^l3-5*R|BK&W@
    z1A;nytsY-+6_k2I*n9SAleEkA%UFYVs4eEU(VF*k^|=Hgdh4qtvnpfmGa^l*7Pq`W
    z4{1`(>VuB{MtiPWLs&OJ$9j{&c@Blt0HCWaOSI^RVNj5+3?UZ*kPAJ>$6W(^k2EK^d#gf
    zw;svlY#A@P)O_0wm=VLb#b;WQ<0wK;HfCoPCE%_Srx6I!t{n+kElV2Ryn@}Ms*h-T
    zMk;Lq0SXYEq_1EZc$H4`o&+5VnUQ*nph#0^a;11Z!rm>dLD~=xP8hpTyj$Sf-xCB2
    zB~tqPIy*`wm7WvT@6frnu^H*&X`yQu=HU2y@RP)1YX^r@R^&$^VY#GNuOd>C=#@LU
    zI)yXCB6oJ#1+&@pOkclc==0ACQ$2nynrSBH5S+MsyGYbb4`cQkxBQ4qi~3jWNwd+45w!ue3UYD(#kQkB++9;G3qAI4Arfz|#CGytm=
    z75U=gZGG%Q9b$Hl5X42aY@I~RztY0#bfcw3
    zHk>2t9&~W|UuVk2C`fILZ{D(Z&#SI~P%&7lR?EwtnIElwfZ5=VBH3syeMllEeYL^!
    z7;HwDv^D%3yDkuqX4m>B=%q@yDE(rV*^eStNv|XEik^^@X}KwGq-OI1
    zJaY1ud8IVBwSSKNjZpj@m%na*HiU&ysIAPN3nZ=U(W>>~`@&bR#4QYe58{(b`A=vG
    za(*d#*+Oe!V-v3V-m!^wN6_Tc2#KB4h<~KR5cM)pF@Mmcxrpmp
    zY~WVw8Mtv2FX~fyNA`Yku~f5$shkZw_%RgJ@m_tXU;7SiKh%WBgy{FvhpmaGBVdX=
    z?0n0=uW{A}yU)-XQEYc(_(_qAMAx+=j(k9_ln13O8m}S#8|V6O2hl`wxOhgSyvi}w
    zAc>_IQcv4U=^D5l-=l4MSLI1P%77Ey)Kkz@JpS#+9i0w?+^GIr$ab9;T=>AEg|MKB
    z^^?5Nq>KPp9aCwGm=w&FVAhYf$GGLkd5Bb{7{hmk)%U1)Md2G3q5lp?Vky2S+h;Si
    zvaQ`-Y%-^*#~Hqf6ZP!0*uz%8Sgdbtd?^$H<*nTB
    z{E}w@>A(H){7d_%$9}oh1RNheDK9CLl3q}#8$ZBb(
    z$bR9cT6~@~s_>|9{Gn)0KGy8N$lhvp2N7kgrsP&n`dv$Z4PSee2gpxS@!YiWJuIpJ
    zz794Le*2n>_vL)Oc7EPCQ$FE+NO;`x=*m~%06`bWB4=aj;CB+S2accmQzDv|>zM5K?>9%;^l
    zF8}2o@k~aR3jIh+{_jfC=-8N<(yJREOc+#>>6p+gtkc(M=#V-=lZ3s4Olcx7i6Z)A
    zmHrMN^B)2`18aJA0+;5O;^INRK*uH*Vp;)H5!5x41`qlaLB{xX)mlOI`S;y^Vq&_h
    ztM3T~HO5Vvd?;xJ#J*Hiv<0|jqX@K{pb-OW=iGY(DFUkXoxItnViF=|n|0h9rXL>q
    zFnxckyYpW!R@+)!61vj|}5Oq~g|e9_5wh*fx1BOZ~W_huS_J@@I?
    znn(X|J)d0ztcwhn{QVX4kjKPefE-1PQbpGgxWK%_5yXCZ)hEo=0%`I+~;28+RUC
    z^io$Pun}@A9NiA(#Md3$B-|dHozQRc!OPc3b4q>adCNv4JM03v^=9nL4gFdV%GagF
    zQ8kXqmIsLEGu7svZ=|Ef#|Y>@#@)9MrsB-4EoJfS&WtcGEbH)9F7d5CjV$KN92o8Z
    zJZFR~PP8y6oHKdQnr8Ac3}+#DwY$XBGis0_?A514ng#=b1c$q~wTa3t2kr()1${~E
    z@+O^(_*nD=tX%R-JN%)e2K(^T(rcHqzDGv`{M?`a*{8OGA>8q%kImU3$;a!7zj|$H
    zqSEPE<8$z`H;jYWg_^|m@lP&BMxJi#>{4Ead_6~Wh^N-F=vNb^)-$J8($iJ!-JgQU
    zygl80O_=j@@cHN^>oxl
    z;YX1ld9p!MYRp;0t5h;&R~qK6KaJNq3Km}J=`o($A+)#?uY)dzn&RcoeALd%%{w%t
    zR%#i0swD)t%VKS3VT*o_YKHBA53PENfT%B^VHJyU?=Z%ID>n@EvltHqqjy5)@{Q&6
    zemmy5x3^m2mS{Q}jxRR6-}&=5E~z6>nb0f*%j#bS1&9BD|(uUJN%}qQpz_C`Y2AH
    zq@m4g6K50N9WE3js*oW87Ezdo%;l-4Fw|jZEaN#~k*GE3FDIl*H#*n8-_iaO&+(R}
    z0mdq5#Om9o>wx8FjWx|4ADCRwyvR)?{Dc$*`tf`~!WTca=Q=#!n3@07Q)SIL#m$od
    zi}gBfrDw^;E>w};clv9?7rc#)nuugQ%gx`EJ{5(Gi^iwCd$aDhk({wzOF`yz
    zS0`qiE3J#aNU{SrwdZAaZO<=CjgE#qaWR6LILZbxKjO9N=k23o%41p!H+8RX{SeG4
    zs%4n0u~5^G|2{3sn-*$jDyBd~Ljyb!fk`^6XWZC5>n)tERj$wy{I?Df4n9d
    z*sURZyq%CL>787+_{3*I{5=yT08!7N0{}9`mU2xasbEQyGgIa^`&j)
    zyjb9|->c-i-!`L#gMN8n+RS2pngumVLg>%&F&;b3+Z9{k=aW~0D}YN}tbKt(H)G>c
    z7rsSQ7Cn;vcM*e@*lH4$DG5hP+(uk
    z94in|d%2Pw$8Ka36|8mt!h&vXufEEDzaF*~d2}TO#UfgstEZ-zL+By$8DZJ{CL@yf
    z_jLRhXA~gD>R9_7Cv2akC)^1&OQH9W9FF6b5Q9NU_@9;s-uvV
    zETkwpq)d)LcadV2Mqac*(a7)TBhXr^rG^87MLMcBnXeBHuj&|1Saidl@S-gHRxgJ7
    zNkkNVSKQ{^4+8u0To5AlDQ3P4ow#*`|4W-lC+Q&M`p7_e<`;dDK@&Gg@D#?Xj-i|}
    znw4!_TOYrZ=nh@y-mllwUtScZ2-1$Tni1&a2Zc6=dzp`aJCdq|3fk}+M9Sc>$^k9Y
    zf`=tZW<6!(P-=>Ow9Gv0l=I{vQfOH6+Jxpvhiw5CzeVAUv9P3A#h~dr4NX#EF(rN?
    zyS8&!1qwYg3qnkgk}-(g>HX*ENFScSDT`&6|ryKv{7fU>(Deq|5ZJ@hr{uYQ#m&Rt(^n
    z?J9eK5bu;SieG^3%pYUX63j=iq@BIfjpQ=1@U3^)jWg|rtCMhV37_J#bdNG+i!wP>
    zgWHZq4bbi?U3W^#U#=X3N5x}v@u7y1{Go5&kq<_^N$$m(?KYf
    zdl`$)4T*mb6+4+$O+ebsSFa{5g6-a|ldx8paG4QI6lnI;GQ))}&V`(2>sT_pi@U$P
    z$~fw{Vb&$8(h{zxDIbB8auM}ox)4751?gPb4hry|(>sDuU)?cdy282SUW)Yp9?;h2
    zC5-51zfp$Jcxfr0L3$e}8J=%@`g^i&E6aZ{B_kuK_qH&7^aj!6+M#$=3v{v(d|C;>SPG@-FY@Gk#}nRy)5K1
    zWh*KhA+EURyH)ECc{iNU{2F_TMuAO2R}iO+jaJx|VEY`z!4|M~z;I4{U;!tys!FxcBuR97@Th%rzEjB!t
    z5wh<;v8lsv<5j}1_S!ep`23J2L!z`hU3|b5In+UUsR?2|$v7BLWs23r&R)ly(oV05
    z!oXd&kfq4h7O-e{Ks6-^?J)SY=|lXJ2{cFuE+*^sy1V_P^kZ&hg-x%x;uN1Nyxj-t
    zTg#L`O~gH)`uDa7_!=l%*U*73)+FJtEZB>*jC5k9t2Qk<=J@F({g~odq$6qu^elFZ
    z$j&>U3JA?e@o3)
    z`yS4|J92xIWY7so*Mv^5BLEay`{xTwSQBbQK1jss=3Rb6r`ijA3m66SY7R0v@vkA`
    z;-23;O|krw&iQ%(8#7-zXE=4JQ5ebYI>l#&dCi7eo{}xKK;~bq63sY_F#o{Xzhe_p
    z%Iv)a&KR;pnHah^&-Ye)kk1Rzc2}A0OYig5O`EF|Fhd&-zU@+85g8a!=@yWbktv)x
    zOD;$s;sP7Des-o20h?F#o61b@06LbsV4fcROwc`K)fSQ?D*-Q
    z1J(PbYpx&3zq{ww!+dY3X~T2#Y*jV)Zz@0cDqB|+d8HQGB1F?YNL3=w&1xcM1o_8>e5
    z`Tbi#J>G-wN~ZSWx8QBpTnQuMi?P7AS{`um(rKxM*r>L+r<=^N9J2oa$ewpd?hbZk
    z&Q<}w3O`TiCk~H#bc8+ot@w<_Fmj4Oszq>5(6`
    z?N$d|-~Y-RkEtzIK=KEZJiLOm{iLEB&PM?2rF+H|q?Z0LQE&Q7aV;T5F;*Dz8Kar%
    z>T#opw_TA-24=~VMqIcM|JFnq-t2d8?vQAlPI+&RsA!lj?Seix8*!Ob{xi$pPd^{^
    zmgxw&dJWV#XN0mSpwff8t($bt$PdGAL8XtivTbi!2CrHKA9r2b=wIe@t9=%JrKIuJcRGr2XB(yj(sPtxI10e6G}{7
    z5peN9H&O4a2I-Tgd@43_@*eNkP%_vVj?X45BQ!FcGY8!(bEwjB#dy_9fg?g>2Fbi$
    z7knDH;H&$@QTvs^WjaxRiMvVoL=@>t
    z&$TiEbE`1sztZP}G`7MK(I<8?WLmnUTHh>5M~^oKh5{AW*Wwi<2)TL7=n6(MyWZma
    zm)oxyB0FI_6AImz&y8Fq%Gk^Kp46NEwVuTlH^goc$JpPlQrzRa4ah{OM1~g=lV067
    zHF&EZn;O-mp6Y5x98_^`R2R7U{2X%vZ96!@3f5Vl(H;#wG3!$Cmw)<=GpbUbqbQmk
    zT0A97klT07x9-&Tda{AGseOzl-(3|kDsjTX(%KiR->^qMZ{&fWo`wDtRa9~Xy1y_c
    zVKiGM*#8AUo-yP!vEs8==i$xyFW%~D$S%DrvA>b>jm^mBOWx-=lv*BlpyTZ@HyA`2xXJc-;D7^N+x48)h
    zjamh}SshMg0nQ^0_y5>UWtj#buJ
    z9q1%@HU1_dGBPqZ@|n-~M9OFtZPQnr=9G!A@2ImRvxSAYNIdPo@2bN&6!}Y4-qcb^UePVn
    z>s$n6K;H!W`+u%$Vv5F8UY95K!b*7&k1cKTdyMc0@~rM&X+~qsQrvW-j)XN0f82F&
    z&@fI*jf#qLBThJ(+$by*NDwoA*@Jt2G_{*P3*w2+wjmSj;E>;r-cNYL((s0*>1Qp#
    zJwNbix@@w%+5Z>jCG~hivW%bjUw~+kREy6|n^X%Z$+%RuPxkU^1CAWiYJad1yI^jH
    zcR>1D?u<;3^879KB1@J7&NYZt>WOFRr~qokx>BE(w<|0;!@HmSoihNLSA$Ucm)lJM$yjZxdvYyUc@<{$8_~q^I
    zN=ns{?RF(UH5;KfEHrxDzRB`T^Jkm)iCENdi~LFhho#Bl?da#Dh=n%Sw}zq*&@m^j4bY@iT_*ieeJZ
    zvXrd=OXXFa50$F|Gc2waZMM;vEoG{C?W7LG*d8ma|Y0%Ov|TGCCUy=K{`H7W>gr<)7Ltzy-*!F
    zXV$NXvv$&Sa@PE|@UDwj(md_gTHexo@eGuYwVE%d#_#HVg9kgw#h;Gz`0~wX9X0&v
    z4iW{k`_^Xtsy3ma1@&X+i8CYiJ?qa~`E<
    z5rDzLc0m$*@{#xLRoDSqAnRk^5w@3$!C&me-J&-PBPO5evjI&ev`zhIol-h?|1_Uz
    z`hDG^a%A5^HCxY^bLR)go@{>+qqercb}b`&U~Hm6yna%miFW*W<-E4BgQEWg@Z>PQB5Shbi2HTk^zB)-Xaq
    z$If2x#WksqG%qeP8t&rjnhExFadqak$pR)gVhrLa+WOV;y6BWn0@t|u&z?Ku9EGUA
    zy$dEk0l-^Ws<5KAu;NDV3kFu_vjRD?+c;VoN#n?I{UkSh?b`y9VeAD$VF9xOKU&@l
    zK2fT>E-cJePc^(-{^jXlEFB1f6fIzVhgp^Cw{z=v;0R0$omRh$_{NiP5^G`edwq^y
    zxw?sb_9E|vAF<@A1Zx?$4QVTXtKt>;mzU65ezO=FWYwU4o}T=G)kSfc);JNfo_`02
    zzY&T_{jZlvOi2lUo*|J}?u)c>T491Q$^Fqq#sCAUjl!`Oz^D^(=w)($$Jgosr#yZN#bcbf8-nj
    z@y1BhW6xxSpkq-nkfkZ?u6~^d+5IDi0IZS1Pr#&Eo9ahfiFW{V)h53<;o5*1nk9e4
    zG_;WJvrNm$b3Xkhwd2<-j!PIxjqIAyMEBi&vo=7Us7)8Adg-iwdE--y;W(7dV0yac
    z;viMnKbJ1d!J~1_F_nLVR`tT{;u6K)^c`~%{hG7i_VP*h8{o4apBBx6$Qqz&J4Vo^
    zv^ny3>Z|ju-yMY&x#C$m*ZUHVqI=}Kl{JSt%Cd|j?}5OCDeMA65g7UK^&REge@*V+^S3TbM(*V9E4M`XF!c(?vgwh&cu_}q
    z!7PT~*_Kg%gn6+1HBkBu8vy5Y=LR;G2co@-&01M_Ul;!@HmJIe!`XCyvO>
    zwpH5a`5UYtKlT(azdy{zv>v6gR|j^Yv|f`7KiII@%bxy?0hAYl@dH>EkJf`33JF=0>_dOuyx)Vjz>LQ=?}-w*TZ&S
    zl6`nHr0Gw`nqK|`aEdU(RorPk+Tx|W9Kb(U@O~_8f9A_H+z>2!K|AD@n-kFQ`B=ED
    zhM|7A^I7OdIwe~t+TG5|?wOsbk2BrG+*^4dggI6;okJniKA*>a9e$Sgb>p{<&h1Nb
    zGj{)pEp8X-+j>u1KKv|J@3r>(?;ZKpbf`25l|jAQpF%+W{DAtn|L#|I&$*Lnd>~}!
    ztD{e%?^^!q9g}ihzn1^va}>16n)7PF?1l37$n>fpWT2zk`c%KA8IPnkv!}>}Rw&RH
    zpB%9e>5JUtP$PbAM9G1W$nQ!L!g++Yu}BJ=I#OVJJnDh
    zi_{|I9|4D~0GfF#Nb?vyijDJV1?@vwgiXml6jkw7=i!F9d7DEmgyn9m7}C#7Mvr}0
    z1zg0Mh3oR$d$+EG}(9P|41h;ad4wJ%ozVlHK(iPpjTj
    zFJa0FtNyBuDkerju$3=hL5Uo`&ohy1`HV^3-xUsq5rvukz*~*K3MB@uhI?as>2iQ4
    z`3jfJU(>|dJO~0BPpo*$S5XHN(ps)!Zjq+FiX|r59d$Ma%FO_!>_y_Z@G)bK%t6yc
    zfTsQ|$dAQx6lc?5@i5<&i0A>0HBrwMUIo-_Qu>d`i6sTiY>T?UZb`lk8p8mM;yk_H
    zOOQ3u0HmX;U;Im?H=F5MuMYgjuMq>(xxqJ6Z*lNtg!`L`@lP;&_-|k`sWqJ=AhIWJ
    z!izr6YHC5_(9xTuAn{xSA3y|pv*-Y@2wiAgN~5X`nuxP8AA}c-@B)P;^WP`+oKP)e
    zqqc`w@W#=i$Ha3&sPSvcp(ixI1+RN!do+)1al4}D^ZaJrt&1L9n}YCQ;LyUM5%occ
    zUF^y1rxa1qOk$Dvk+|u5KZFF#UzQ4sD$O(r@b!pF)jH)5e5xGT?4c~fTlDd!%L+Pr
    zPThTy&y>psG+U$78N1n2m<1%
    zi4FrCn4ZUxDd^qqSx~6w@@4A&RS%}>aIMwSc=>`3g+1Atfo^}JV;H$J8l1_?N4ut^
    z{D>+n@`7F7h;+n6!S}Y27t7<#pb4p_wTvxnLapiO;2nUUS
    zyp4LwdP3xW7;gp-Jy3AFvxL6j!5mJ{)?FZ)XIlLm4Fsk?RuV=W%I6>!8rgVx2Re^>
    z=E>h+6wZU{6@Kff{b)E^H>E~g8#6VVM^P{>1VY?hp4U%vz`#;@Ap>z^Tym|SpCgVM
    zrrE6HlL%DHv|s6I*>!v{0@OVH!NSSMEIDx^icF-J73zzn)qCKpW2QmVKuXJefp(w{
    zE97(d<^;eN417VPOmVqv-Qpz9WIFjnZ3BWR;uv?=-Di5)jKlPw{1NrE&3~#b>##`pEVsnURbrV*DaEHB1d;P%zR>CX+5j?L;e
    zzQu9Wigbov)B&ysJJV#@>U)USF&wFyYcKpvnuW^d@N9%K`JR=kub2^`kpxl=E9N=a
    zBSrlb|FP5JWBEoXzwr)J1l8rtoEFvg;
    z)I}AqlnP~}w7zrWg2zk+y_S20a5_Ec<<-smkw*icvHt6kTVPH9U%
    zjP>PEUyk|LqlD~vu#MpS+lOm=mHgydTu@n=`VqYCOEA&(j(5LriYS%}=kP4oGJ55K
    z;qow3mNL1!VWP1zbzbp(>9)sPxtM$Wp^>9!16c7zN|BJ20f;j`q)
    z;N9aCdw8=sayYSNr7^~dAq8kS09=VXNsECn
    z@tLL|afuS6_py$879Hs{`mKJxRRuo{+&>L}tFD=U8^e3`rhrlZk_i7U`8C}K0O`#&
    zdzwh$J1^M>U%C29G=$+*&rU+t(l96PD4)7j6uT7SH&oQ{u2cr--oB3(0Vz5A}4*
    z-a*u(7p*`p8TsM%PR%=)Y&W5X(CqrtSs_LQ0|Q)=FCJY>3P-^YQaZIO1f`Dxrl|N^xFSE4;Z_xhpW4>_&L#E9Xi{vp4jppF3ATH#J5m(
    z3?{{Hsychk!cAKB!$yMqWwLx+*(JaW%=&kI%Wztvg(uF9=uFS^zW4))kT;AfQa^)Q
    zP>y|p8N=jr;LGISE;|>4RjJapA5}XvB?p5IQKiyr
    zpv8)50@>{!HY-udmk+Z~Yt6g5xjHj@Uo;1XRtmJ)tug0+j~;MGVSRm=&W!c-y|rc`
    zI4YPK))gUbl?i8oOJ4acVD8p_c7-TZ%AzjIftp}OD;Bmm$Dg*i0qoA%>)jkK)Lbt*
    zllhH=y!P~|P0h^W_4&e*c=c90C=|p9x0l;O040FfkA=b_DE7P3SFo#YTq!%O-i
    zMopz@0-|VyxYbZh7qgVxQc~kcn^i+V(b?bo?@r4a-6o6WhcN(B`h5#HxVnj29Fg?$
    z^DC1tWm~Yk)3OGf^WNF{&5c|;f;O0(6V*X+L71YgN0<$T7v0dSiFzB(ZMcF=T+mlF
    z;q|Y-*DGOvbURqolFCv`V1?^Isg1RPR4TKqlSb8k4)&F!WCq@@db61XIw5~h1Crf)
    zE90#oQG*0OQSChBJ2`FgG`cHgaM^2Uvzaqy=OX7Cc_sKE%*h+Rpx~D;#6jT-M>~y}
    z_C34_ciyeB7Ltn(&vvR(pqQw~QiirNU!4)wB-HJ@c3^iF0-;$Rfy}yRq9Z37Su(4&
    z6QC`@6ma=dPLsxvH-?Vv;M7(p|K|j058Az4ce0)zxRnq_pfH2k3JQJm_3qE5Y~PYI
    zNdwPw7D*w0!i9V?I-DZyHd^;bJnmz7dm2w!!GszwGr+5w0M^2nk
    zC@teW(6i0{l2>a5qK8~K+f2Hgqnp?jW6Tn~cC|e=LA(b?xBGaLQ;C0B?!Q9DiULd>-Zx
    z04T)9fQZ+b2)`3|57mJtYr%#PpJNqRf|sx%sH3GIXTGbgrJ)Xm0MD9TyvuUQ-(exLKNAmz7W41eY#O8_RMP5HJGSWwM_8cSOTtgl
    z1IPoo`x`g}#qY#Bu=zFLci2gu1vHZOd`rO#MYk_~0vkJvSD1$arGK1nrRQkf#el~V
    z3^!%eAg-=l3fyx3M#mPoZ|&3h$gGa3_eOVq4{Kon78sKIt2h^_%;P2I!>tw@G
    ztS-dl&QqI~-WMP61oK)IeqbWb;O?E4-3$FkJFvIrwM
    zxtRUQnZ!54HBDDy=K}6e0^oAFYftXalc;ejF-6cwDlMINv-`jhj4(!5j4Wx-8A?
    zHe5EOFH{(E*0$Pb>d<${Kfk2@#;w=x98`NCV=n*S*yQQiagk}o5OQY;DW37T>^led
    zj)^{*Dc@y(?JQU1VJ!jbEPB3v?e#5Q2}DoS^T)OP861%4Z?kUCj+we0E{v0UVQybL
    zKR&)nqOw8qr?}mO>8bhYbieK!zz`<$lovnNuXHLf!5BBsMjKh~rUdZjnea-eUpQs+
    zWUqt|6)3gSZFR|{y2)KfuRF|ou@l<{VSt87|2k*61MWnF*KW|U&N@2-(0)Ic@_!%s
    zz4sz@A=AnOe8zXyfy?0Eb4^XqGPwV~MX*}ewWJ8VTaARhqDp`ZmNVYT-Q0sJ`De9AN}P2emN4a
    zfw^K_-6CkUm;bwBEnQC2H#|24-tS=goP@38p^Qs^*##2kQ-6v^3MR?@n`%F}qr(3)
    zKR&qy7X34Cv!&eHcgVDqi0E=AhyV_5e`M-eo9OwlWXn74HTm|mOqVx?Pqbx!{kw>O
    zf!Za4-FraDUBJ${S#aIJo=mGAMK84Mz*~9dtmrdAu$Okim(_@KOqB;S3~wY6=D)hr
    z_5Z|+3{ACqG!TbZ1XwwaU_3(cD%F>=0vc$u{4rZ}(`XgCr82IwJsG;x#qp|XlGIk8
    zCu%c4@39HF4TdI`YkZ^?=+Q*95J@h0B&=-cnNnzMRhsWYWDl1G)4|Y}KA9!o&2}#T
    zZzRe_TPn;{d^tYw5^}3(yoe_3P0d+W(&Ic54D>&T>H@qkzPUTD
    zyBWf^_W(X-;-_KFd{QmWp@i|8{~eWuuPvdK#{<3mr=(gEzUdhozL}~K8K1Sr{7Cb@yZ~3u@&R3vF}d%v}p`~U<%yv?(1o)|H=Kuw8|S*$>6r{
    zd#g6q00Z@ThPXn#@sK!$#+q4ovd$f46k_4IF$@CB8{C_bY6OKErDU{n;NSU0o-rI&
    zW$K-Mn2LQGA85XY^(1AK7O3|q6F=qsOd_uMH|VIlLo+9_eD^V1Y%l*2=?54=DVFR5
    z?k$n#)waY*Ga7V+Ac?meFIr2j{6PwW2y{0hOFO(R?Y`ujI~gQICkPP{nI9ImV5d5nZSRz9gQ_tGYDH=bB#@xtD-5ZC`j((3WJOF@
    zV!pOdj)mo`qZOtneVDr*Eo+*wm~216{r}EL>FpPtY$+cZ<01jKb!uH|yWqO@;u6x)
    zw^fueCK>O2;kPOd6+Qd$DS}S>pPdAGGv)K^CwT2-eBpkcnEdq9|1GvxfFC}Bn;JjS
    zjEa_8_id(2tdkM`dK#-`Fx8CG>!520*8i`pE02eIZQnCZjaQ*aF=`s+VC-fhRMx1h
    zsZ+8fvUajdmMk*}MNDPiN#Zy~b{evc$u<WeM#kGiVn7G4*dO|QZkJSIL_Xp?A8ul!&!@m|uh8&BFdA9gF
    z@6nqQ>D?4gpwxzrhCg*>?`aRt!MK5vpMsspW>gC3at(Lq+`Eo~FRRhg^M*roFC
    z#ROq^?uqeiKGHI2pa~*B0em25S$`v7G#-R5SB}cDA5Wlp9I|Q?8m;iB6);TjE_D6$
    zHN?=tXFvLcF*4WbaWO*4@T>6apxb)O?+nZ%GDXQ(Kr{*|ds4Xw#kMw2YDXpmX}AaP
    zOe=XG+I4WW<)9VLvu+0$dhhk?P`Vbt+PKriHv&G`ryq@AnuB$Hr5dnhic0|~LvD*~
    zeM8xd_00EL)pzO|f7-zwpRIgOn0(LvKg-#ZdJPRgr-7h?I6SxHpwG)EP@N<&pDYYW
    z$tOlu_WFBOi>NOaCu?)&(T!mbrAM1gMsKRf;>N%cOSpU1p5H;W29X4b1>I)i5rU#3
    za5Rq%82ZSKg*T0Jwd9jxMIPz
    zyfG`Me(>+ew3{+*4Si4i3Yws6D;(|(yxX|lT~_6)G*`K%65T$;rQ<74=WSGR8$tK}
    z6lZ)ERD}czR_37LF%i(bV5{dfjsYpD4u*z!d)!c
    zXR+R6usNF50RmlBs#IV
    zN3|Y@lyPnBvs#2>#4+?1d@~r}wFW9iFpm{@Zp$cF`<g_m~a-j9bYQJ;Obl#_gV@2
    z+9!-q^p(+=@WodlGC-y8n#+r0j@~!KWWNC^&61j1t;1=!X~8)k5k8sf4UC9h0$v-X
    zPu>>FNs8sOk-I}1B}^8{37`ZZ4)+I_^PyG(JCac&SJyeC8+&MnMSHgTyd5kn=F5c5
    ziBG8kJ>54@t|0qb+9cG?nMGT-TJKb@ytyEfZOyuq^@D4It}bJLgl9F0fmBfvo=d{0
    zk(ckJLLUe`FLeY>n8OhkDrLO5<=*0jWZXxAnx&}*@9|PayZ86yu01Yp9iDsadQ4?)
    z7U}(?vJlAQSX!F=k_z3NVjfO#;u@HJ7ZNgMeyLWy21zGg7P?>S!Wk6dAR?(gTU4=P
    z@-7odVe-!x#Lq6DzykB+r%p?#cx9ut^=HHmzfHlA>7#oQ>DWL$BICOj{W!41h&?Uw
    z9y;D?Sm1~s4D5^L_>u`DE`I+tV(~Uk^*{|X$0}%h@`2y4aX&wJbh{36LR+j
    zRn|xStCkEb97p^GKS=V}$PFeY$Jt4N_E9p|Iul+$uJE5JSL*1bDd!8-!`i)RWwL5d
    zCfv)!n>@sjKk?}ko`3LXEMd`6g2b!9_9d2I5cpxta(?-wd|`pcup7f|&nj-Mrt4{b
    zKWs;vcczB>rYTyVdgK&e?bKg*1x}^RZ!GRgCLNrUJU}zUo{?Fei}tKV#l&9@Dwdhj
    zi)|D*&|4xav&OXTD;e~Pj381x4^Te!RjC(S0?NW@l9!dF&M`O%xRK6Rg*OLKtWOEE
    zCGoUTTBy8&w;xy&W7Mz-ML_wA-U4qzKJh7W#Cy&T2H_ZM&(?!gPd(Y$X22GSH41Rt
    zYGTOxq>Kyp?=1K-;S>_s+@X?qy-bY1wC!h`J~u4St^Tb}b<}Ig^lXFNxi-$j^^|!9
    zpm|fq2`-6t|4z^k<4d-MWYTJ+yty;exn=|90rHpwDz&i{L!0@`?K^lT8cG9Q`v??jZ3&IxiM7)~HE-m1rqY*o1Zey1OTR1V;|K-vQ1ngXE7`!nc*?Ns^8^m#iBP
    z1Tc1MpS!M*9UPr}R?W&3!1vSLJ!7*$A)LrT>wE^TX#bZVi&tx~T^^-<>l%dnL;+Zf^#M{ty)H=xsOwz=
    zy>TJ@89>ARV8K@ick<=yF{?iX9L`GiLgOrZe7!n6cja2(5{;|n&OzO5zknjHO9#SV
    zV_hQ_1KDkxq@oUDmUtCE?T8Q_#a~S%-Hv0tseJpf-{@KK#1)^5lzUZXam@~YX`d{J
    zh|b6R4EbwSMzLP8Q?Lrb_)Vrh$BPKcBqB|7gN*+$gU!6t$zGJo7nSV)E8$OF7+pbq
    zyC`|J+B2!FXiHOBf93qQuwQ=U#JxNf-4lQ9dcG)Y);amXjGJIC`!*{PiiI&Pchm5d
    zpDFp{9E99Nm~|6pd<1*mxnfDJmj`*n$4-+W&6at;d1i04T|KfLnD`p)v{&9(et=cW
    zzD^fO+jnINcrLobb0awnjqdT9dCh)aXGiVkm!Bi58J4S6TEGB=KjH4rZ(JJ|!*>jJ
    z(=>GE)dPBSfG;9L-^?=ux3m47S-<2>?1Ex+;Egpk|)Ifn7MWyD41=wa6`
    zeFYlj(>!hA*}GaWsayg`;6Dl5@8DK!x#=VlL@S8HuztU7A7p~>iJM)kUyNgNP*th*
    z2m2op-`D8o70fbc?}rv(EL0F|
    zb}Nl@1dGPJOoH{+A+NE*`H?3C5rf*Pl<``>sqg*M2ih#E&Imh#p+_BA2BY3uAp1!jc7ac`g%SP~E7z6s8KO}Y7F
    zg{mXHg1)M}HXJtV%au)MKa*R1I|%-CVkwY&Tk(_xEx)X-MZG
    zL(UF%_l@Im8}X?K_tv7;PRTNgqbc#ui`b^#&RBsgrWbZA(~6kCNRynl)FLYX%%c8
    zxcM&c6-GK)!vAi)87=-^Ga06sYWARWd4TzF@FN|U(a|p2l_cm@>rx0~dYnBQAat+w
    z11vzHoq${*iezL11<<^iPt>~(j*clKcZ?m+<4mg4=AHiXXf2`kB=lP^qE2*eP*NJ5
    z!fFf@qWs5PYKA7yO+Tb|->4B!+$$gDfz9H^tJG)(q@5wLilCU24t9#t7&;DlKCqdp
    z`(=j`zc}2XLV&uc5JV@}NM1dDr!4L=cCx=r&s4A1ed~BDuRb?AGA?kE%&J$)k2*BFo<7Nk*6F~ovo0Bxx$qsV=){VA)ix7+V
    zI3AbO=|F`u1X^Vi)BDY`uXo0}M1?5B^WvkqQ-1bCs)(a>nGWQiIfsgiQR<;}6Aw6E
    zB=@-BjdAB6(tCzXe;rLi5-I1m-hLkPTr%zik2YZDQ}S(2!%3D01%Ayr=%AT17&Wb1
    zR`_-PnKA{ntoQ=b=rMbY&9F*Ji&P`IOMcze>}1W|HU8mtpM4!#^9?e(HP6!daGYxs
    zgU^TtgU?-Nn4(o)o5wDGph-|#Xte{#jE4)SJa(ckDCTf4B*QviL9J3Q;O&(G+*3m2
    z1-4f!$U^33%!*J_(y{VXbvQ6m>pY-5P#SC
    zv4Zj7vjyYv#G1(7HRYqmB5dQHQ^yNoz7G39;Xy(ZX4x=13W{HvK){;ZNOpU1t--2m
    zBYpU?P_1h(y03)fl+_5NiG8*{k1MDRdQ$6XRwsfvj<^wKcgI=&D)w)z3J{{LTA$D2
    zEh#8L{+oN==(fSvTjA>|06A83I61!bX%{bid$Yn{N#B3mQK~-omJ)xN_+jPVsxVXm
    z5vFRq(;>#8ymI{1FcWDVVER}f#oc!6?UkvdJsNW>8Y(WPW$=tY!-qo-2!4D3qoXXv!rhsyfens6X^G#zyM_4e3jLvfuc77G!VZj<-KLb=@CXF~f7)6Gn)w=*LH`BB0+ToZ
    
    literal 73646
    zcmYg%WmFq&)NO(kD^{$y7ncIX0!3S(Xeq9xxCadyoV+c?t+*9;cY?IIyGtQ>gBJn;
    zE_Z$3UF-gsHFM_Itl7_V&faIA=c|^65+ObfJ^%n9R8dyc1^_T2000md_u11M^dce8
    z(+%jMtt1bq8mBvW3b1VD)a3wx+E@a#1@=>n2Ua%p004;k{_h1Ga4oR{03Hif6y%B}5EV*DH
    z8xZ3=KzZjm%U-6i;Ezm~ame}OII8?;y-ivg^ZAR{!fTrr5dEsduC=Q%b5pPPsv^u+
    zV{WCcDsqPQ|5+7sr6=whXc+zJaqzZUJujR00iM-Ozf@tZ{5dQ7`)5shHqP?MJ24+09GIGF#aQi+l;d1?V%k%r(6#)ZmGT1UNMo;kPx*TGFHg^h%2WVidzm
    zTFkT94&Qd?;0!LSWCj_Ni(|oBm{vujO6AiLkYBg6xt%|hK2-!0q$$yZqfil@^HlOJ?h+(=K?Qm)M)xB{pKd!_UG7U*kg$qef0qCGcQhJb
    z9<%PT+(X@1XM#UY!Z|kW9~rq7GK0)hgz#?3qBmoo35NW8J*bawuhQY)BLiqO`e}^m
    z=IZ;OMN4xT4?QiwDTb{Fq^yAA4r}pAb?j34`YVyWCFAtj7P2`UOF9!yc70$&(lZ+^{=_V<5sTw8PVYMWOYoy^v+m@yi+Q(jD
    zAI;7w0Qx8?160kSHad{)L8B@tf$hfH7a|R*YYJ&;At!
    z7z(JHgZz9mk@#&K|GNgaUOmJ&k)F8RZwuZMJj;Eq{6;qVbHs~ZXD!5rEsp=aI9_JD
    z6zJA}HjV48a!H$@O_&RM?xs0duFyugUt**bE{9?E$q~a^j>du0GAA-K9&=`gEoJm&
    zi?M8r|EDT+B@U!PzBY8q6X)}P$ym5~pDSyeg^=VFvibg0sc$=Lo&XrD3A;Tr~JM!l4YrkY8;c=J=F}yu}kYDz4&ZkG(StY
    zWuSz?U{P)L)#_m#+uQnq`y^tDz*)Hq%h$>ChV)qUZwbcYmi(X4`HN?Au-ex#0e0-X
    zA=wr=ZfQH6qgpQBOzre0Q9PLkrLL%Y@Vk+OO<_s>}oJzW1uZ`o6V)Q}OTgP#P~weWt|Qq&+aTqQ;gJ)kU)AKj{sXUK-3{ihzmI$WbUA#qM33J(
    z(0)?)Oh%$8mBY
    z&y{IZ3?30s`*Y2;b-n}8QkU<*
    z-3p4T=ibm39?Wd2eoQIH*7`r@XQ)bgm?iWAM)iSZ#clRm(YNV@&B-b6V-Q;cGHG51
    z*6?a2uc=!+Pdq8%`Pdg318JTI_o{H&q87u6+Lq`ZIBi?*9sa
    z%cuSh10Ln3*B=EsZkH_e?Uk}Ko=|Xi!Sv*?LA?LDiVpe`V8@|lJL
    zb(U@*fqW3p{{KK4?xIx<#J~JqV1LOYME@czNNQoJx$gb*5%GZQ3)AsH-snr=tb|c-
    z1yk|Jnph9wYbpnek#Glz==)ge^0>K(pucOrz;R&Ga&CT^!uj-k@?0Rt>Pp)R(1|{{mFU;LtXlu>
    zyzVyz;9sWj6YdXHmAQFF`CRr+U(+@hd6Nv|3M98Cfm%+OFDXGky4L)D7E6cWI(NoX
    z3H;yK+(>=Hup)>l4i&l61_C2t+AJ^+&TQusV+mH;re-Ij`@u1pK^a*U?hRe-2pK4c
    zif-ypcb(>+7uJOzLUR(|#|_&r-(sasH5f{$(QTFHo;Dp*AkA)`KB0-bl|IaA_5U%H
    zh(EVgP6Ph!gxnv>v;fuQg_Q-SlI@Zq^h^Z$YkB}eO?rA$Z9B{)1d7O2i6$$-5$9cq
    zWn8GHNTip-4m&1~saiq(r)%lYG^#rEQbki0g!j}b6!+OD=o@+aT`9&&75nI94jpP4
    z3ye)9zC=M6JAbBGqUy`<)OV5c+DiJ(4G@f&HZ3lI2?x_RhZA0mI(+S8r$iQXOQQvq
    zYVe25N?M<}rMbwPBo&y$$#ERZ=QwN^rx<0n^x0FXg>SNJ*;>RUIP!>gkcc#4lqhHZ
    z*>S%Js4b3><#m7<_BBz9Fd@3wsLdg3R^&ah8ophhY7BB>`jd0;GVm>gp}9N()K%RmcoHWaLQQd4*e
    zpkrlZGknBPUUR0An-)~QP$tn!s|t}!5y*b#qfITP1`G%XwGC)Hr@w;g`3!oiJb$QF
    z%lP(?ylFclTEB++7kl;TY?0ukEU8H|WXtLHtyoYimzW7x1*_Md
    z7vcY)RIG`=Kc=HGp(=CUzMRs*|@ES!3Oz(2RK>Ni@{W
    zw=g~x6)XezOthKAH@O&Lxv54cHJPORfuF;@MAqgYWnPgokOp8=i@7Bk$N$dfSkG}Y
    zcD$XAuJ;7%Q*e9IuSAtJP*7I~QA_)G@Ip7Wfe}E8PlXz^Wvay;QmM2YZx3QB>&!X~
    zUM`GQ5K6;a_24{S4^(&G%VI^el5Q8)P6ZqJ8x!|>snFtonf*FU+Zgs4Bo`ZA*>?Lr
    z&W2_$R}a?f2e4nuop&K|BR+VUyErpL6p~9Cw1@OtYOsWhu)T2LQA1p4+qq&MBzS{>
    z5Zvk}kbCWxMMQhDV__3lS(2)_@JzCwD$ylIhtT2yEG1l=(D>h;mio9(AD)pzdcye(
    zK{bAt#qA_=t=;-@-BjD_GwgV&Q@6=^jn`4HGU*)wb%+_PU34vuN<
    zUJIr06IeUYm*Z|5_5p--mRDA8C~b~gd5(&wMMml@)ciX8%4N{p<9Q;Aao^a^U#M$i
    zV|P4Xn{l3gG2$RjG-b0)8g5@ml6{7rm*z3%HxAlH&Mi=JnC|zecK@8HQ4>oS?PGBM
    zK@J?1fB8>JtnQ)HdPM7E(8(&UHD~fbza?FNqs6fM$e71tC&~ZdPN>h0in-e4|Ah6!
    z%M+s;KVkGIdvcNX`_iuDF;XnTRdxVmC-&tnrrU!Y^#QlI{8vwnFKz&8n05Xm3CAY$
    zXjTgT
    z#VV4l|IJ`}Ib?Qxo9Dzo!}Dd*uQM@KNbIE_`(f%STZaYGCC+`$vU+t1nD&#*^_Bpa
    z=F=Z#aOv}L
    zw*XFlv>-emS4HY6_YE2}iv&pl62&!pWGcabep^z%jMXM57
    zuSnYM^*51G7$Tp9*)6on3!y@PC32|%RukCS+0%9emFvYqL5gN9+xxcq`cJ@-KB*$MTwVs8jN<@e%0JB~cs^=OsKl!FT=}
    z42tptNE)4iUAA0?hOdI#Tg2EB1yglv%AHvjF=l5gpS!jt$qT1y|A%>+KmqkmplICx
    zEwN^=!QX=3-J~rdc3x>yeYly}cv>t@37Kc@D?6&@hw+3k#eX8?g;gq6qay;?{RB@{
    z_`l6wizvyTwOHU_?Bi{FB73KSK5Sz4V_z3E5JwMyjVbwz99Nj`Ux}9DQa}Z66n8K2
    z41$f*2fSqpdFg}E?H*UCbWLz4?W_%oZ
    z+R>X`lN#)XoC!e4_n2~;YZ<5>&Mx+iTD>YEqQ9w*E7Gm3fy9Z
    z&8l|#|F$SNd#N4;N4gYgI;NkAs$e?gpN0PdXkbZU(8FZPHj8>+uc5|_Ma^fwvP(>{
    zZERZ+|Lr@K9+T-mm;MfE>^ixi7lJKx-VroBGA{@L)fm>NsO-Kr~`j5ZSxr>
    z($n{n8)4$6)0s#eyJO@gsMD0cprfnyO;d^hewZ
    zv9}Z)#0sWh81|D<-#_Ek7bHt>=m#O%G8hwcvLT6?7bCQJv^(vOw~mHQ4lsbh)JwZK
    z-aj_(S_}g^J-9Wg&-P!NI9qz)Atiy3H61D@V%efTAw2Kw@7UF@8Jf6G|_U;)$fH*(p;E=vu
    z=f&#mS|Ze=_-Kh@=TG@bNy|s{a=oLf3aH67p>t(n5Y7I{s;8*+e7r$I$m2oE*KvAH
    zC{Ql8Lt52pwqy@;MuH~Gt)DssSsb<-RAcgRJn>-ikD-j=>&b*7yQPhdxvS5GW
    zNbdd|9WqwpC*?l!dmHjfz4AFGm`M$6XBkN;9-58=zz2qh3r4`;hq?>|8UmmeV3hoineg6XyfcwHT6yby;siVWdx$}GheycMM9
    zEw;3^(kz@ZeWbr$zWTI3PYn}uS>t;|O+3Qr%ItfEDTw`NBM$1I_EJfScARZ#4HBg<
    z%mCuHP*G`usAoiL-p?aJj*YA${T&viMj9>emdwoBKc&YoToXewn*PSeLN5yn?^68E
    z)8a!cV)bmZuY7%jZZl=!J+Cxm{~b(ZbAkTR;a|#-x?k+`!0}u)6IPHN#l3&C?-k79U5MRh0RUD<$8$KKlAKluGM9QQe-3}FUi
    zdL(0RMs7Uz#QLEwZgE;+_!RiP?IMwH6-CnC<^1RI-801hv`WL4Elq>AMV0iNca$9n
    zb+eCFWQ&xp^pof|ZSSSO({jEIc?r`p>fW~El(@wF5}&_%H;pf`*NAx@k;Y;RWjZg_
    zH9gm?-*%rr{uyvyNPnI&bx|06Bl2x(c_Cd0ys%_HeCH^rlvS0Nim?h5qCoCqB0DV7
    zOs+D)3ybO4tLiUiRR~hX^A!?@Rmi~uXW90i?^|k6_r!3vy@x|l)LCouNOg6KIrQd&
    z$7=YP{e{Y2oCRsxg}~IlQ{hVif-`|biI&=Jo0zDQ0Cmf#sxl49`Mk8ai1sQMjlo`v
    zWHhu2O~}yPZ=gq6xy~<~>XIy>DmH{JJhJ}1%m?^gaoY^>R0YAH-ua|$00
    zs)1ySX=v_3+of?Fuh@^|DSDb@NTlK=UwFRYJ{=WI@e_A%wq%dc5Cc>CiRGbb{(|bk_uL7%T@|M}n~!AApf0ziJU!Icie@
    z=KATOElEVc1VNqddd_0mcP+w{GSvY-Z>7+S_3nr{F`nF}+)ux$Lmp2CWcUQSgftvz
    zS@DCgn2CIu7Tuvmbmu#mNkNT{-!_?JU{WivgZF=YT$s(9NG}|nRJh~LpV@ootOL4Bv-x9*ub01}B5wQLY
    zNo6n<0f`IFI^(W^C->Gk2HgfJe>bU#lk_bndn7GqH=SzcjJnGm*4Jw}^GPah9ZuYn
    zY4P>D*ELwt#`Kwm@aO_Uf`lQPEQ>Vjclo6Dc1}rlBHRaRMl$c}!2=Iu8~3D_)Gfy^
    zfC7nOGJw;bh4lmh&8R_rj^m_i8MyK|)U7q(BDwLLiY)&;)$)3fW4$67?)Rm>qZUjt
    zJ<1yNGyabhW|rhvwnqT;zzY&4hwl(j7TkVDw&RWo8A?DP#~{Udn3j?fDxR_l)T}Oe
    zYymUQu|us?tDJk85aDj*M-aqzjry{
    zeZ_VAv!1HXVK@-L>&A7iowQJoQ3nR;_uPB`QHo!(Te~{T?^dsJd89h0EJe)^;qZtK
    z#dN+|e(j*-=$-2Z0!hxY3?fL-V5KNi%+Gr8v?v4ute^%nXqwCqCg@F5kkDx?tI{=R
    zt9ql^GfB4aW7Fx)*pO)JVG2%|>q||4Z|9VtYx7sb)Q=}P?)^b)JddZHNlvl<9anuA
    z>EVw53u@m%*cK0&2SSqr?$PY$`vtLBMIIvg*dYP~Oz@EX!y}jHo-%r*-Cb8%CtNqD
    z2s-jz1FyCodgi9o#$)nBWiX_r$}n$tbL$z}1=sC8x>6C~LZ?T9xldx^qo&LpaAxsN
    zwzSN7zUIj=2}#v(vEqfir=XM>n=$xd=e6w-0#F#-WK2Z1U0cXfXJad80t)TBHDN*}
    zBsl;jRf=iW&8hVF1V(fRZjox`c&=R>=J);AS~S6A3tih`6g6`+sv`pr4~%COQJ8~m
    zKWX63^41C-@<(~65qk_A=6ONtf#v$}mw#;E@UCoYd9nVp@%}8&x)SzzP}B-_L{o4$
    zVXNyE81?o}+%svyFjW5;F(NXhrD$L~5avLE(MruJLMdhWyWB}exFQj}2h8rJUnw-@
    zZ~fyCIIlY=dI%;q(jL17VM&Fv|?xS
    z^_EqvuSUri3;rx_%`%L_nap2o{PD^>-P~0!s8HM1KG2Uq;(wTzS%hcp?N+b3M#M%_
    zG`p6$3$lasQ>vG^OJhVO;s!_d(|C4rIGP3@ueB2c&`l6TD`an^KRV-*xN(&xcf`&6aTELvc1r&3MPDDK
    zT2^+#+Mm-r%j#16Xhw6_Wa2%i?mkD@JaW~%&I<2DQliF^7lsL{H2|jwl5vBpQ85UX
    z3@d+#)>y}uj!Nf2si}5Y4!f0%r
    zg&EWv(EVMu!TjD8`V>Q%RjNB}66QIoMHa4P%mwE0
    zWTah{zF6I#K2>|1R5x?IZJ(DGqo;Zv_GkLOj;D&dwY5(+=;Rt&y#uWP54CU{8d74J
    zooHn1aTi38+@4)Kt}UT#I99V)V!Y#wwHTl+1t$BBcvM<+hBQPnBKd)~LHK=0M_
    zmd(xTL~LHFCa0IQu!AXq66t+LHkl68R)qbtkPqfaQR$WW`C-KT9ABcpx>Lqd!@4EMjm$rLK!}3}3HNzw=*&6{TTgmO
    zee5^5WbRR3=NA_)DIQSYDD+Nh^U#Dqhr)RKjSK2`wM(MMI2^Cd5bFKFcYZ>EvAa4ryUN^HR)H%Mq5b%k}K9!^5_=>B9GoNeh&~Hb~@icen}cFqPB*k1QhI!tFVnjqkB)9KgnF>X3uET|EK^t{0Cj!@Mbe3xpH
    z*T;>jLBvgD`4a=ByodF>9{9K#t_SNU;A{e&=WWM0xEE=Vx7l2uY)6x8w>MIXmA>l%
    z0=##k&KH8NiTAatrqQ^OQIoAZaT-n0L=kgMLfm2W?^+6U#{*cqMbY~w_gw*ZcaPuh
    ze(IjEHZhwUc&A0aSX}bFn~dKaKap{sN57aQ{l#0+D!AWE-*>|t{dtdwy?JX*Bu2@J
    z@la7}#ALCq`wM97Sk@SPiusKKv>zA}eRZ*C5qrOt1{+)HZ$#a0qn@~NcqQhxQFjf(
    zGVr*Sa4$40f-ur!B^b5bwi0mX5X*$>yImO_n@HxXPA2TTT=iRWUlDgPaxrtEU2dq%
    zapp1B$X*d`go+XeNj}sGcXYazbRF9EwH{pQ$FL%3pQyDaTEVW3X-bjib8;ffLd!OI
    z)JpqH?GF<-_Fz1Cz06IYOq?)uK*}8Yl-Bg2Hwqmdj%5_*?x;{BWQ&d0ljws|ZXkBE
    zqGCv!()$~ZOC6HLZ;8$@))88~G>Ks=&4ZHQkI(KIU2X@!|J=@{7q0=7KuClJ*Ci9f
    zpY?!ivd@W`A`L%(&e5hA0wHt`zi|LCPK|6)M!fU(1X0hO(Pj?9_>zu?{^t_c9V
    z1jx7xfi~mu&QlE(bxe@kmg)IO6cV_zhF#OH0QFnX3VwUL#kT)a$iT%;Y%$Qa#EDtE%;>Zyfl7zzh6X}eD2t(jlBNIA>?!&T#oTrG=>U?0M
    zCQYAqt5(_TpERf8laaH^XV9wj#K&=fxKyrFTWP=lY1sEg*l*JWQX=)PBSHKgT1R95
    z8Lqud1|fqKp|>MZJHtmVDSd=|;HYi^ZWGM7qt!Qg>b#3@-s3B?7J~=asgXW*il|p-
    zJ5QP5>q(LIj7$6)Od_C+)3GMV`B(XQfuqq*vHqJu9#*BHlGg>+=yo#yLNDGw3eto3
    zcE2+g4hhWB?w@}YBs2P~dJynE;3=U`zx1^t@^Sg0E%lpo8;=LW{{T$@ai1zddMNyQ
    znulyB#-AaD5^W|iD+Ch^2hATWq?+O3f;h|Pou9=8zQ4DbFy<{VXNVGUmu!ef+;qyI
    zEu}i58|^Mfs`D&8WxGz3>(8XrSTs_h%>x&KIF43J!(Q$v-Gw8@Dp8j;F595HyW7uQ
    zr+-G~B!?xJZl~Is9nF&i9!54M^U`E)rY0Kh@dEq-Q!?lwflFeCv8g1aDpS!HP>pmn
    z@6J1sfETAj9cpiL(8qhEMd}Netg~lEHDlb<7gefpw_zZRmlor@*4BOPaqr{ma&0Zf
    zu;uhGuZs_M5uqEkgX-5lIo2+)CFy^6hA(UA1In4S+(rgY?-5(We~)MUw%e9E36Ef)
    zW|M!J)@PVM_ylGy`a-auHGfx&S{R9xJ_$9yT49irWN0C9zb@X(Zg(>vejBuQB=_1i
    zX!+q^p%du#e)V4-;sns{Xv){jYF1BLljU~B-0jXVW(XaPUF?I>@r
    zn`5(C`58jE-kN*0lK}u}San-I)*A=l-8{|6DVusIf;=>1eUzXcs6hAiYL`@V6L5Pb
    z=HeYPwkpBg+%3n%u2YYqft%p~=gq$CqEwvS!fnrVUIypV;mV;vdhb-r@sn#|Wuq)easU#>2h^)3zMxqj0!X~0NIyU~93fYMc)p|{HhC!>sG
    zK6*U|`BM
    z<D3cAnONW98`4FBX3
    z2C5Qs*PO1rzIS;Zd{HV4=PX}v)jiS`&SpjQI{n?#=E=N^10}vUztHuu2x$K2pn8wia(j!gK~HR>YLXg=1hsM3(hw^ZxskszjuY-0iD}1vSqx~KRQ#zWN^HM
    zp4XelAMCP@Qt-$qNQU2wV=Ac
    z9xU0`E=p@pdwS{g_*B?+W#}KIB@9pjmqLH>Ltg8MqWfZ{b%7+J&X2YJNEp*_O0!JM
    zcCC6J^hCX6+hc$cwzc{XHvvxfaQ-Yg@sQv%dTY%?Oe4toujZY>)_7a(b0?h0lk!!$
    zF9x)+dvf+G{-ImwLjoFw2%35M$MBO;+}rn=f8koZ>0fmKF5w+bO`@fxrSYzTN5;3H
    z+jjWf5371=SyTB09icq%g3T7c;iQb`5$}8e)plUI(jHU#W<@&n!Qtr0-O=^1uK-^h
    z$3RzQ2LXoQY`)LvQ8f9K3E}w(-g6RqtfsR_hl2RFr!$JHtODuaWRO
    zldYtwgKb$39^B-UF&NWFng(}o<~3+keQVJ8$%fZ}#}N>ShQ`p(nADm|F0YUy@s$@M
    zKp?ur&jWtvD-5Bu_jXIHJ97oAW1Pl3{P-}@#@rqrn6(WMVq%VQCeBNCAa!#&(&>`o
    zY&<`bX6~=_F!ShRI(`#-GNSajQRu$(*Xta8)6j8RHYi=7m>qNu^hHnIA+m8!5{nsv
    zJ}#57v_4m_OSY$vih+EgSnode%-Uy8)5D^IH;xmFB@wu&4Ghkzft^5|`i
    zdT_~e9?zHXA???UDZ#Ak;70@!tBpcXd9LB3o%aGSA)tZEib%U}SwA5kUcVzo%B>
    z_KDmq@M(m~$9>pcp2hbaBW&iLB$1LpjpW=fJaSFM_^I@rSDPmmk3VH;zhv~k^E>q@cJrSe1w?L*DzuaRi6R5y-R?z*|fD@R^JAZPmst%|1
    zTH}X<#GJVn;(SYW!0ziKhY{td1=_slO0a3X~hR}EUW
    zo4q>5ojwhRGe39#!fk{czeQ91G_z&i<^8P&v%c!}w|`kvFe**roVM}^!+hGGZZ9XDL3!pyPo
    zZ&${lK`#GRiBJdaY&sE~|0CwV85&gGHpW@5bQt;H4X}C>LU&vvo&N0qm3O*`#ej11U{T4q}
    zQa%UsMAK+~83g#0R$=tFWj2K0DEq_EzrQO89&^+;r?oa+4(%
    zrn)+~B$wFwLj(GTYGLTNz7!`Muy5)!^taB%G5T0)5`&XlnO>;;olPT_#D5BmT=h04
    z@*(jvB}Yj+Un>$Sdg&$g=}k@TzPsH2<6ns!C&88-`JD6YO~DE0CZ}O@y@rjz2H%BU
    zt8uHkH@%%=aiIdp(&QU6G4AoP?B4Uc0MY{%hOHRKdBd7dvI<#vJ`SAg=DBBMp$bm-kyf$4zUD_b{1cS77KX&8$kw=9BwV+kKytxuYz8&mnlgwNjlA
    z$_Sm^W|bXUMqP9x^RTc1bozJ5XxH^1u(9x@kUQ?1;piVuYhJQthen=<<`_SKc%K*=
    z+enW$i=cq-I$a7xbD~4dUDvGlf2aNWaWZ>phkwabDSEn7VkCqpVnPsJNY7}HEXh;(
    zc6+8uG|}-VJ!6yx0+@+?$dF0-dNQFUh)8ihnwLcXeMGf9RoNzalIFJE5)-$ptCE=$
    z$1H;l%sIk3PlO-pT&%00rUapsZ8CsllyNI6QZ;ajDFoX3?;N{6%3f@tqMO$X?a^EC
    z$BDL$uDjgc(|OZ7#CFaDoum!Um4&n=QXVw|f7q}i>(Dx_7~Tr<6a&~=j5ZbeYf$5&
    zuL|{*6+9HZkJqc2h9q^vw;OA;#XL+yt$^RHo6chaHGS-rCi^VmXRX`4d5&op170wf
    z+qJY5>FZ(%lB~h6d8;vv@Wj8_WK2#=YvWB`wn`aWDE~c)p5S@@UacVCo8KDkK?V#L
    zr|tBFt7nURVk7&#B@rY%RH06$p`QnGTu1_1z8J`SuKh0BW$dl*L_ix^hq{~bm{@b{
    zu4~^*;wxv2;kBy`bTVj0y3nsV?x##SGX^c)Uo|7#s}nO|e6YthW7G)aleE^iSu?yx
    zv$=j(pa7>TEBpI{0Q|*?75iA+bahM1+-C;Q!KuOKW`w%8V_CMX+i_}74ncjXdOzQ2p^%
    zqpSQAyw!gvO~0FKGj;y_sT~5wiSwlbQvt2rG2;7t#7U2FL5WbH>t6GU3w8wbR=1whipB!r+lvm6h(41a=L(?6Wx?)d-H#6_
    z74>xQww3fur0mk^QW8a0#Fr9?4t_7RvD*zrWK6}gur;aH77$pi7Ti^7bThE*0sO<;
    zt;0dxML>~m`tI@PwIY4O_d+9d;5u@mt)J82W^n41XaS>Klf)dqW~X=$q`-5qt&wL(
    z^YNG(b^UlijVcIw6uC@C|CSj`)C_b?4%jtbLAb(Obr}3^T&OQ-x&;T){vPN5NY;r6k%@z-j?c=`kZ|b1N7&4^6^Dvo-o@ec)g6T|W
    zIhMJVu)q@wKnvB|r;Zre1f<`US}b8%7C-pYzV&gl$h>
    zFbfw0*fD8EpzX#+SjYOVD$_+_;*)Iyc;A}d78<5R*wq_P;$Rt
    z5f#M!{9%iz;)O6cwMT-(hc
    ze~zCF-=h>e%cEeS*@KOX#>1Uo*TijKe=dJrL68+vXAE+uU8DTLTXw~BwE$Q9gzeta!ydk`Ywv7XS_^n`V!dbic7k{S6+m@Xor
    zpYCqwZ{T~7cFFAQ*ut7wWeJl^Ie(u~1n|Br&fxi^&tu&GG|5XJCEr3o;eg9!x!!0a
    zy)63Xr8U6uD;tN}>kq(v?b3!Sx73iEO8QD~8v`3^WXm``pI7GWSb&km?NxZYPn+tl
    zfT6&nt+vhsGRy_FvzT>$_IhRKv8%?g%lENe=zK11I${{ZM{aDx<
    zC=&14{+;gPl@D7%PWFB{cWrp@+7TtP#YYg{zMX)Jru=Wfq`kDPNQLSc!7^Y1vk%hE
    z>NT>gU}`6RGZcPJHH@8V!n2ndl!iw4@>q@D3uIyZa3yn3fWPeTJ`10mcP#Q(?np)ma?+GIxCcsX+ywS8J`hR
    zjI*^tWZp{{i>a_F0|atC_-&51Fi(O%^DM@zk_3KswjBKBCBNiqafisFcZI^6&o_k&
    z9Eag}a(~qP-n?n7vzua}mT>=hyjHL2@TIc%T~z&7{;xK6q`BB3eWRlgb-4qq^|-vq
    ziqI-JHm4Npj`7B0>C-`&WrG~t*EB_Ry3zty~Ey$zypuv1s8cQI`+&k(>ild1^j?gWA9@*6aDp;P3uIxf8zJ@r@Z^&cR|94O_D-gE6Zoz;`;x7#LMl*HoIL~
    zvi#;>3hR2rJn0a4^!U=LmLsarbh69=BGOSMe90aH)d&R-c4bf?HOEtiG(U*Ll-Z1v
    z^w)nB313}!G*b$yVN6Q6K4AC;qG{c!xA=SWG=q~O?aU~7jhLl47D;={j*N!m^a%$s
    zf0CZ2|9MyH@?l80U|`6X%AAi_TEa*aDb8kcGKP^w;7#5Wd+>TK{TYB^GlpqqX{wMU
    zWrE`SId+5;PiRIjEmLJzmt2$6IybH8Nm8`2x5|@ckK^7#f=xCNDZoTuq{?}GK$?}M
    zu|)*d3zgKw0!4sC;;`HM^@4eIfL>K3F_ZmxCO2zq<*r>DM{?GU)+3aLt?q@q1~szl
    z{wLDD7h__GueRCx`y%!GlNc6OuRd~a{@5VZBOckKOOb!QwNe^Bc^I6}h|H
    zCN$Ya=$R?}-6=y0c_ESpLO{tlJ{8Tn-|{0yNb{=LvuE()JokTQ*p$c#{6Fvr8L`*M
    z6x8Leh$s$c2fzQ=`o3ino=K2)kVZ15o6Ay3p<*tOXXz>f>!lRnBN#;|4Ety8XQkgn12JL
    z>w$Y6T_*srvzcb`MRu;QRz|yR;DOq7LO!~;)XBc8^D3Y6IsMDhfmWoZy}@^#unen>
    zEt@5M^~Mq}7jrN2Z+Wb9*g?Itd|oP?z~62R5&lsQITU{wO6=#DbLiFw;p<1o0`$_o
    zSM>=dmC~vdY=n~|vP%IU&++}7+XUT6El?zzVm#>i2(s5;K0Kn|YPKGBtD$B|Qr%U`
    z<%~4(532gkakqNHtx+23`3k&af@-F_OzD`LehNZBN3YZ7x;`OOxBqND(Pa(lw2S;Y
    z7xMnYyAkca1AEQqX|nl4c7XQV#@M2(E!sYU2710B;JK}UAw!K#*EqkGNsM{1DM$>w
    zNM%q03xsF~ANOr5#2ahy@lcp(3_rZru_L=Lz|Cew6S|qS^Rve7vhej
    zg!U41U^l9iY!&4Ce<>O2heBuu;ogJ@JG#%3KH3oqTpsvc
    z))VM|Z9uVl7Zs?&fBVyqTI>pcRqGA=OI_7+-VAn0^kvU77kWA=?~Im0w(0MVHqB#2NFWdj
    zK(#K_k~L;7pB6K}+NcU`%S*T79n>2A;Anu-0-o|w0>7*gt#WkqfC{Pd@9=i-|5O>Q
    z++K@^d?2z1_p9A|6CXUeNq&8zveZ39(NmdPcAr{iP6!D%le?NdHu-UnIeWA2MXO1v
    z_M*8i{MLBohy{3vI2xI#*n*7mB6HB!&)05P2ma;}1EmL4hm2}@0ZUZLhJe-Z*YnkN
    z$s>=OfjfM!AdP2GP{enYU}!NM;?qc7OUE1UB~
    zGW-<_?D5Z)Mby2zqt7HhDsxDtiwJwGs^;gW2tPS#vOX`Or{)Q@SaX5BEyd)^o8v=T
    zcD{XFOyi@GDl$A6417M};{4^CsoEk97Ap+0h94H{%m3K`=Z18pT0Z&K>}urqT9fkr
    zqBd+6VS3G_OZeLU`yOJAI*QwcoO^%Ex{!*RVs}|TT*_N#$)0`j?Aci{g~QEI(8MI)
    ze&G%k^M9Xrx01dS*hRjai=V|H96oLy>b`I{Gny9It`ggidoB{_W7
    zh=v38<+fmnq04NurynP!U(Y7ZUiZNYaz%;X1pHdM8SCus!nspBb|q~aW$gF*BdSmL
    z-jKPuI;;WLj-(R&l!!%*cD}VN7D
    zXR^1M7<(x=GJ>hZ$i9L3#E1q~8_GZExh!%;>AR+&R2SqOt=3;SG&&&v%n8{}ai?88
    zvB6G~yLX-iGJRD%U-$Z*D|ro?G${Fv1sHiZn4S)rCLkP}hlj6LtmgXZ7hQj&Yz*7{
    z!g$SEH5#qvBn=PkmkzJ$R%fP@9djE=(0Wy=>^$)d*E}Syzl{t#0=!hBQm8B6-)2CL
    z6R(V~e_S1U;$a&7?O5X14VN0vKLBJBAO9b^-ZH4ou!7
    zDHa@xr7gv+xD+ey1h*Cm#jQYaf)gBy_Di4dJ!jr$=A4=Q%48UFXUn>-z1G?kn9`|o
    zS}Xz)zAj1E+k6LXq9J*iGDao8zH+0+&C>{cXqnJFywHy^#j2v#+$`!fncHw`8N;5
    zZQrcI1B>trUBh|#xK^~I|#tMb&WHk>|55s>ar6RtUmw&nHv%of2+x~
    z?OuVuJz4X!p^aP3&p5G9EFH&MQ
    z+Ds_83v@&KXzkNqo~;vv77ZCAi%qCH~s5@vhwuAmxykz$|lcWVBa
    zLOxityM$)?)xzv&r~That`We4Pf{5z>_Bd(gk1;rrh;8VnAl8hYUl=2TPhDMn2XJ4
    ztfhGSPWLXB^Iq2VlFOs`m)GFEp~Ty;1NY_)u>q{n)}0eIBl^#KibPD4+KLhJR|ma#haL%ZLjumY;oVkqJ>(n@
    zzea{a(3Rbpt#q1JRzTP^u;_1QN|MTx-jEU>+-$?8@On=Msf(CjlK+U?$|z$6wazREXY$CE_vfHF6#r_a=j0D
    zq~kCJ%Y`aJaLOgSSjsdgQoy`8%m%89=CEsIOA4nmP3jvzNc#Te7du?Tj~oO>xk|vF
    zCbyN8@$p#B(xmTiKYv!J_fgeee6xMl6fygm)y`^8rx1_{&
    z7W+ZBcIhT3BSf1k-UZR6_xv(#2Jr3>tPeAL98zE7p5Fyl{Pc)f9X`7=eC!H%umt$x
    zgMDeqhyLdo{PpND(EhVtlrM@W5=8M2i7$*HAqD>_hjug=6SI9c!V{%C>M59`hqk)+?;1-(D7`CY=Y6ujW
    z3B#IpZ3B~K)R)HgwUlf)&0x)E;a`zFY^c-x)#%B$%*rRq^aFdJlcCVFyMqL^&!MN+
    zkNX}x(beKXQ{*rQ{S4xtjrUx4S$_LtXAM$<+k@WgBu!!U62g_T?=^ZY-_T$!2Ngu8
    zqrSS&fzPpN>-EkWH81#n6ECzTd+1ZQh0M1%);k}v4RFDVijS*d7609Ph5CHpJv
    zSzi*8Kad>RexRJdaf&ttXrGS+d=$$Nc-yoN+QlrjjE{VIHcI0Qbzoifz8y(j|?3TtJ9-O%sc~mc!
    z>Ptmu1gO*L-Yd1l{t3Qddx#}^b9%FeHx6)Kp6jd+nAV(e=|22z#G6&O`epU!_EDg|
    zneX9|p6HkV@AOZYuEt=>3}2L*IhmYW#<3?j#<-Ae?EcUtel4|%@3!PqTU52XdCeUy
    z!FSmu+j1ls**Qst|E11l)n*~I%+U96k-g4O_uY5~drfSx1z+cdrv$6jp}+{C+>JXf
    zyF|I(^Cg=fwp_0e8Y+8Z&{6BfQtebS*o_{;yFZ>pWlM|R2be+ymlq>}?vgbTbFKs0RLj%{8%*Ah1-708Z0-&4)
    z2Q3Wc@p3x!bPVnnKQ_A}PxLv7rzGI2Kcfytu=YT&@pir@w;L-NKse2?wM3cH=7)S<
    zB1;H|xaIc2=myJS-qN!LLDkN5&s3^$r7ff+Es3ryC?H@;yi1__zdVQz+Uztm3|JnR{{$q~YQ%27K*Ms<-J5Jr^
    z=lmYt_g=eyuBnz4iJtB~=y#1*3c2O_eYxX{a8a{2=n{@IPz6pbmwV?iW$AuT`IRee
    zHW1ImZ)E9ToWa}BCGo->|3mV3{qp+rApzxV@gms_(2Ka80jGtWVO8%!Om65UmBZ01
    zDaxq=)30$_s=zWu6TTSgvAoh$Syx%fw=%i=QX;~G@g|RPA!Y0AvTGAnQg!1H_E3rV
    z=b_SZN+HmZmUTotB&SgRwwm=k!Sk`F=9mMkvu%sYw
    z!n1U)UngiR4avB8x%v54`2BL=4~<6~AJmR`vn_LAX2KoG{Xv={Wo~k4plR=-_#2+r
    z^ULt|G}R7av+Z?d0Hec4v~LA-qNhjiU5eW^Z8YDPsB13jCY|a{
    zjwfblBtNRKY!$pTN;_*fo8m*vE{$6aV$UoY)QpwqoQ@|(+jmvAlqz%VMyx;1P^`Zq
    zQ|>$?5;@$$p>Iolm-|qQxa)k{s#cnUs2QvqA^~Ih0+@X9FA`SeKoH(e^q^&>>nSVi9HD$T6>+b%~_yTVGGahfIKpg3PB@@W}7
    z5am@-rbzC*`*EB|Ch)VLOw)Hs>2+wQ+Gjs1hML8I;Uc%60*D>@+-0tFse{Wek@wy6
    z+7WWlf!+;~K^cxXSl3dVj*6cL_QMP8!W9s;2*_yuEfs$$;VvL(;!_1?5wm~oE9iTD
    zJdIN2&T}R91&R6kg39KI#UF8{l;Z^fVQxgsEnQeS2acBg8Ite!F!(yg?D56DXqCzo
    zA!hb#%`FM(6^2DSXw2u1wF-ls=o~u42Ha-_z;iisZtCZEdQJiUDG1g2`D$6LpD*8<
    zK_nB;FydCI(bhFP!>dDAuOX;pDYOLPAPnC55kfRmX6++!ED=^~jvC*%m_843i9IBp
    zJQ+HZCo0pU{LVPOYE15Lo=I}20#pr*<#;axWSbt?`54_og
    z;HL$Sld!kunT~2fh>G@GP8D)e`cF23j3P$n{mROf4;oB!8)o;y!QwIlL
    zo1_a#+Ucw?qGJxwkW1NS5);Ue2`36Ti{JKGE`ucbmy(^)_S-SqSzGz8T^2%D{SIXt
    zo9}uovGYs&FcR*b+NpHnBej!_@
    z^c-unCO=+w5{>_9R>&$>Eg;hT`o<~qqUskD(Wv(0S;JW1V`^@q6tXIR)uU`$O@98!
    zkuqiFlYY%=KY&u4r=eL8J>jDo5%BM>+>?A_$a`bh;N$?G-EbUmNd7z8&=xNX
    z&QfVEOj&Mz*YB(~$l%Bp8-*P2y-xbI5YwR*613|#q?JVaA<#`L&-43yhMX|hxG)D9
    z_Z{sF(J}EDX{#TdGNv+x_e{fPBg{oF4gDXBiNk{bWKnl3m^qbjW28ORTwZv;oAegv
    z@3Z*0EDcDY)@{1W?SgmfwIuCT771OcxvZYD7{h_b^h?{@y?6Wap=~DDpP`mAA0DL)
    z#bDg*h(`HZ*RLU4B?gJr<8Dw~AK&Afbrku4RujKG^ad>U%6^@AyzDKS4_}Zm2(rTp
    zo92g`v}i{dU3E_7g>U3Mzr2+u)DG4x)16N`StHiQfU^8Xbwo}-vO~g3H2R=t0DUnu
    zzuM!aBqQW5*`c^sF*?K9RO%X?gbBW6%`Y5xd_%&T9OZ$R?oGHZhB0DXQ4ME3KYMbF
    zu!(HtV&4-nKeI4+;y<{h?N%{UNUWj5XKb9{SZ=}V%ai_{dYUBxJ#tbL-+cFnsj9yA
    zg?>1HNqpO)ZCgbs=NB@YdWp38;LfH)gP{TN^cl<)Zre{1w$-I2K|hXGXa{&p_=)fB@E9+>v@4+QC3)U0Y!ldCtb
    zVv4+xcy@}HH&LJN$`xnq(diu}LZaVn;(J0Gt->v`_KofOH?DrMLZVDtEM6Bk@#&jjpbUj;FP7PPuo?jgeP%4{>%ZzG&W1J5)
    zg!i_63^%IrIMY{U{S3Vw&1Clm&^B{gV#2o)MK^TB4VhWLm>8ck$4wY5tD<;!Da(}b
    zj#_&#`gdM1mHS7MT9=O$-ZoxXZ^B|s8pbQN1{+P2-7;l)eSufAWtV(Qe2y_twB8q{
    zLYq(1bIf?tVOu8qLFAtSzF%x@5>6_UYx74be(T>O-3|VuPD7j{mDSk8K&NJ3(C$$xf
    zNZ`QrMqR%p{_#NF+pdB*6=dg@5$OdXH5oFT(eaU3yG&bAUjF)4TVH$mdwy+%h5RM`
    z$M7k7Q=$IBz}_4MLv)xZ~s~RUaO|7~O>m)g0`;|QK_7E=i^Be$aR3JkO3$yLc*|hvH
    zhye)c9~3!vCQaW+7`MQoE7rsGpG=yIYQ(i}Tw^(Y@lrimQQC!hdp=u$bjWie52Q?{
    zxw}Ho@8~}hjw>+9xu8Q`&Y1@J>{%nWL?d_|N7zQ)%#
    zAsT;a?o^a^5k`gt_0Q#3;|@Kfaq)T}?V1C|ri^how>A-B!Jve&xD
    zr6l2#bbqazX_Ar~byG?qLtroM6wq{pfwFJ;Q}R-^qLO^AsP-imIDHwE*KxT*ze;fT
    z<6uQad1xqob=T)`zd4X8J>4o#U(&<%wd0L>iw|8(1>N<`4<~{*C^gGmx;^e0kan@d
    zE&dCwtVwkzLS~`sAgoP^T*80jZ@e6bBY%ZLrVgCr*CcXT?OKnQu1vD-Myvdq(m
    zM&;C69zXJ75%&tS9NMSKGmRI<{l_;Y^94J^yGbUin8(HetT%sNh5
    zhU{yn8Ah@L24>C%FX+&eZ;6=BzKICpfYAkj4fiDpM|~{0nB!E9+}D^~yx`~j8KOFB
    z7CwqkoY?ILIw(DdJv@{anqj$$qn@K0*D$l>oqP*C_`t2B^_*OV0`1c8WX>1~LufQj
    z?ukW|OX;dop(~G?)DmyiuBoqZu`{5HOcNA3Wt
    zx|T9L1DfVILv8(ehfJWXwJU#rt9FWdsAsYnE&H|fRm$=$MPADKK?|OT(sZL(#B5+0
    z)UmN9`8yeZTsnJhAlt<8E63A%kwwuF)I2Gm!{dr^SGwb?8*QIO@qfj|2jCn^ww;>J
    zBkr5JH0_uV+DSvX{Y|TMu8r}%tu|!#y>OCt85=scT}hj)QBRpiv(}Qi&OEGg)=|?c
    zXAXcf*sX-;t)`JX#tSzLF+q&gyPHTF|qkIjUeV%qS6;B
    zdhFt{nQC5Y4UeSO^Y`ZUjDw8#`k%k
    zSR~OWuB6?*cPiHNW)?hjTZMC(eKeW5|0;kiYJI>M2%9Vb%9Q-`!
    z7tRnZ;LSY{l=~w3_VL$}v4N9>9k789uZNK(zE<@hpEjJf(wYX(=Pd$#Tsx6zrn2%c
    zO4Bu*YGlQI4gZ_)h{ncoI2;D-!`RH@fM!X1)Rj1}Kyt1ic>(gvxJllu>X<(nK5B}<
    zb*S_g-hEQn`S8=UqcSRqc{6?oXXRUBmQliA>nAm#p>qpWz^h?~YuWDr`aTO2c^jPe
    z@O=qV6wGMU#{(Zxb-2<&52hF@Tus?7Nx;6!*5#hq>)HjH{HO!!Kw6pptSE-zGhM8Y
    zg_o6WoUGuLzm>mktRr}g>rKYG|Dc9xEoik9)pBR>81k)sy5mId>Q2R#5D&h5X4Y>5
    z9h}`aN26y;bjYL~s}Q{c4{E@ciTAte$fe?WIG=}lE-O);XzO8S`xX+Cn@)G^XC4yx
    z5F8fQ(Q&f>stC-!c3?w$J*VF!{Jx$l1V;sw*<@V|_xU@G5*Q#;fXHA46eY7JOv3+G
    zp>?OgVJr62%dImP_f$HMP&t$vW>G?uZD`e(P;m79fkby&#e|6;81}aHtS!)PGmfii
    zpA3n*h+pWaz_)KBVg@P}aAvNPs+lr;12m(u+K75zc1_=?q(0}i
    zz%L8@tD7O{kzpP@o#U7eM092_4bgZX@~LE|=WC?ZETet>%)Elxdbq!2f0#9`ecX;f
    z3A$50=~4CZb4~A5zgj@1EfCDZrbK{f-C)>ED>rH`@CL;dLiMc2kk+g1yGfaNlr0V2
    zg(*DXdh?9p9vOP!-@5&Rm^Ik6`RF@_ezQ|+ZV=L7bf=sSnb;aL$Azhx(@AmZhi%`k
    z=iYTL*hKLJ{U*3D#A*k?2wbs0Iq7Fa+(IPD>U&_*SBMyeCkYW`IH
    z`g$jyw;qp;$qHvK_+2a6B?$+euv>&q4o~6m547$%vW^ro{)$49t8)(i74@|)5yE?
    zkh_OgQ={;w)6G61)Z+$O)!fuj*QM4Ilx~B&B~Bjsc)J)>>6+=z;BQgxoH>)T<4STX
    z$fG1Smpq?wS?|;A6d!Ww=HqZ6Uo*=@g361IY`L_eFXnI4H+X*H84R0`70Hi~zdxuU!i1PFH$v3^Iu!
    z&z>N~FF=Us9Ka}KCda3cEvDy<8uN$%_|*Ak0V_Sfqv0~>9ykq9CK>7YdEoPL$D_If
    zkD-{_$9PxI?|WY8=`6>*XVaAQ)vuAWKMl6pHIb(B{Oz~IwAb6-a>mkO-o#;tv|H_T
    z6HWAM0r5O0O%{fgtE@)m;B@s5W>Wn1ewV%y6WTRvR~JL?RnI9K%?xw>u0(Dw5n{tA
    zg(0B30`UGCcK0&*E}b{rra)QSu6FX%@5lU3Rmg01KRbLA4tDoA&lM
    zBMiVr`x8*X80?b7=h>FRq_z%er4EVoRgpPp@@M(A!>DUH>a&i9_cGEH9Fk3dw0<0bF=NZH1M`@<7m;W*q!S0
    zSM2_!%`TXG|B6V+Gqe6Ad#@$)R
    z0k1ZvI{6v!kj9MEnw4Lf`b`(^?<#7tsK@cNcv$;S7fH8s8AS{qXyW{r&e}mLVo3k7
    ztJ=LM%`|Cm&C`Bb(xnaF>U6kYICTBWyZ!;kQseH^<^kGdgbfCe4Y>gYWgvD>vfWHj
    zvqyx_T3z=;IP$W9!_2Dte|2t-y_p^h`>eDcWZ61j<4TmI^eh4L?WZrVp3s-4&v|SR
    z&kSt+tRqLDigj{K4OEG*bzijgJ`+fRf0l#pXIwc~#;)A)OmBzBfO)C*fw^y$cYY

    z!GP{B>X`$dUNffom=O;_TS|tdNn#Ten_fG``M`epyP$=)xMVB(WHYnz)w!1TJ^xz{ z^ME^N3IWWkLkC~KJq!3neb1^DpT>aW%(l!|A8b`+PMDvCHNi$|8G3->n67ji%mgIA zw{({diy?3A5PA&u_r1V;z5PnLK(}@OHc$r{ zff|B@w4U9zBOXjfv&dCUMqk=y zxEd2s&c(lFB(!DUx0cReoVMw)7>0rlxTzMtM-#nxlz6hDW#+9bN!o;Tu`v)jboJW)7msz0*h zt)&=81?@@`Vf!BT@`0jGb5{sf6vH8Y`Hmb#%C`0t-UndQugg-HXjK@HBeGpP!k}}F zFH=>`MT)gfz5RL2v!9GQ%vquit*#3O1fYr}|Csr`gcoB%ueqOg-xWsfkKN^^qz`J$ ztS91&PE*4S#NcdNvVSuxmpio39DD1D`WD1)9%$+lcmti;GWX)uMb*Us$MU4A_NOSxZeCjI0r9q{=0kBTOcp`oB21@YK_t>Uxm%6s^H}W2JYX;C8kN!uG?Op46Q4mC#*I2OKlkfLXQg4>JK z=h%Hp=zAkS`Z?r2`m#VJFNx`Ki@tR?X(a9-tDV`pcIU8z-?YsXvP5=F8YkM{ zA?s4-3w2`HY+YJ!CS8-gig6;t#eHsjDpf$o^7%#}j&7VcFYr*-!Mv~V@|*p{tss-j zL)|lYE0xLsn|CeIu0xfdsMLX)3)RS|4P-?(fzFbJer-O#@ikK z>f}&(^ocEieHQoc(94>AaG=JiroY!2dh70)nf=HZwuEsq3RljJ%!^*LjR3 zWVwf`ztFJY!6{EZyBNazcS0W7&Y5*a@zdUTVowxTv<&g{btovKiINUkUdq^S3DG-$g~x?jg!Dv zz*TP8oOSF+?>7Bm6J<{kO9IOx-|6Qk4ztAT9<+Ph&=B&Wav14A0fVK8`a}JZ#l}|d ziFI?X?#^}hh5B}7$dF}l|HIjjhE2dntk#EIva^}A#?wJ=YN)v*g{z>DL*IHN zqmKf;DRl3C{T8zu9molembHX7EY{uS53qdvJ=Sv6VJ2YB9{NziKCc&#k0e%H69AUjAdK9^v-u;J|dt6h1Lme^^uM93_uIAV`qBHhZK>|T{T6)xs;DZeiat?$W9x!mJBb-4Zhm`Z zW93s35~@-`=g_lNo0C4!#aiSiZq7nUfgq9S4jG?P;{wDYxiIj|PFX*O?q5e)g zIRre2r`vU%OaO4WU)j_^@h2^NPZy{MMl48VzA4g33=i^$_(YX}v3fwm<)cYFxP7#1 z&v!e89;I7vkb_%q!p5L24nrtXI{)OCp(3XkKmZv1#~d2=c^D;eOotUOcsAC_|Fr3~ z=W#zP>e_}8Frz;IS~ab5@$+qSS<`3oPozlbecwf^8k(9dWu<%fHEru=7g_z=2g@em zE^(wq>-reZ7W>YFvU}?e*$v>b+G)595l23968QO@oPf=z9rMBXRe>%k_j)*JslVP| zrAj@!-k9&tXspma0=!i?;y$%ro@QB>YYuPGV9 znNjWh%a=fxHk5gdBg4CZQ4Ny)OGos4k0m``@Ct;ukM8A6-=K+@gj8yB6^P@-CWE`` zcah`pRr8oz>4N!a@^#WNpPNWP?YD5|=QG2J-A9n{aMV4vq$NsDlV#&%^1e#XcZliw zFkv-hl{{eVwJ;4hAEYt~`yu@MQ;YlIpXt~Hn`QXfrO}o2U4L-z!me|7?3@|8DYBh=^mgf+ER=O<;evLsnfkzqy@BQH>0;Y_>f1IxZSw6u z7WuL=OW$h>YIq=K@&7jlG5$LS?VxnfubK%k8bCIEJ(Xh`IR5QzDGwuL!8Yoz8Fv$6^S?}ZVPi)B?V) zVkQh9!?>)s4b3T9!p*0(Xo%~VYTdaGbbWc-P=#uNjZ#EaO0?&<`cc2ysQ5ZoUS#>w zPvO};`>uJ^ah9cQO5ya=Zh_7g%WV?_x8DbIVa&Uft)V!t{ED5PMYZGP>yDH z-`iH64;diVDuGu$ERlN(Ymu085!~T61agre`LC>N?}uJ|i0dirlb}{-r^vjVCv+s+ zh5AXHBTT&`i3qICt>V_b$$So-+!_Fisy1zKuP0R1ii6&GknH!#g?C;1?;ggg1qYOR zIzK7$Y_S}oMk{Rx8(Wn?nC`3`P2omZQAab*bbQfL6T>sk8Orxxar&oX_k^EmpbM?X zt|`SZRDH&TJ_Dr2WYd-La8Y<}&@{)Onau%91H)+!MhcRp99GQ5bKEOcUhdYhz&yy^ z?#K^8oup|;1D@~4h2{!1zqr(t`ZTy59e>s13yPF%#drSOTg_}tSB8p4A7T7;cMxY8 zQeXRbZ*_hE@hf>JVzwL(s25AMY{p3l^gsYKA1y@W1?5IFEAX=RoWk|lp9wTBxgNDp z#I){-lL?apW@cNnDu}=4C?oaU)wEtmUylrr@Oig@u36T{MoO{8Y`TH_0+Z6T(UG?> z@Fnw?Id;=t$628XOu4O0U(7fv?r^;I2n5;}QYkv|8=NT!uM3WgP@^E!umXj0_8lqume+Ludp`6=k_@zi1AVmHhy+m= z*ui0n5Pm`^UHT*76EMd^_zQW^?RDS|c76Yp5R=JLHHgWCMqsKNr0-l)nMC>Zd zwuzwO)263A?_=QA$3Db0#pJ`Vq&lqJ9k3^$K!PkIY}-<;i%2+Z{AtJJ(y>@bkTab@ z=Gfc>@?otUBYkJ7D1WeK!>0Q>ciiLGXe2i3K^Wjz!DgJL1Vxp0v|cic(D(y1AqFv? z>ldM=$;Y!5TLYf{_Jm33x!g<>3_7A#d9IHInqA?Gp|#w&bJ*owYyTM^8aH4u}kC zwfX(sdmM*rNpRM-^yNMYIEV{;Hj?w;*`@yv62tDJbIqZfztZiY-;_pi90!@33m5~n zjcP%qVJcsXWY?;BX^`R7g7!6D#e{40IpG_5Awu)GgMW_f%7P%sh!8FJ2lH!fL+Cs= zvTD;v7G#9oZYn4LI_xPBo{*!3MbF?oRFLk=AQ`Q=GeZeCP$z!|7mUMCP=QVp^G+E+ zJ=ZmRe{30GlcA&7m+B<;r!c+5Qmd!q{1~#C4q?I`TMMLYL-mB--w=~tDj6Ia{U3CW zhMfIlyNPL)o~rA07wG-L$_|*Qu)+1U%q%WQR4*;8-2M%H$y8CFRh4Yj{3|52&+k&? zt!bzIIf;)mg*Op)`@bIjpILJO%DmIO)y8%3%oyRT?WU5#Fr8mJSncW1T{wO09T0)K zQ#aTayO^Ov8hel+ao>tFm2oZA_Co`$jfSYz@>N1dYeqk``!c~#O#`OxhAcN(%Lygz zQRDn@*Deg$9fvo?URn*=7#W`);5R4S$M3X5lq)I%zqvX!q`)ta4hl>Ro0o-?%}mg~ z%-3^Ts0ZZZqjQ$o-JIJk$FjvUE0%qySf)IoK*IXj@mL}yWdA@JY{Wd0v0+2?ZAf=N ztgL#TiPRr|ELR%KGCa1wU}=sNoT@XLuDnpl;^ns?LNwW!Sl0Y1iA$-o6Y}tBvC-F* zVrNi7&+f`e!Y*}ST~jr1+IMTW#5MC>XF`PL5I?->0~ZQ#7DVTA z0axu?ZQ@!m?0`D{-g6?nzHp2_hWI!B7rGMas2D;yAr_S3Low`{TKs$L*Q@0OyfC{T z_1)WvHR5$;Ne<5vu%x10T5JH|DBl!L0Fp~?2=*aAiL1{qUyo%_mLntqE-sJ%dDBQ+ zsvCX7>ES*9`R{NG$<^w>0l`N^^I3lmTF2%c0~6=t-e2D5BjbT^e;ImkR>~|L@@+LD zPLYWB;sOoKC(aN{GZ+EHaFY4nonC6%r*63@I3obh(kwgz7;$iDrAASe9>%FN1jdB? z(t;S6)<$r_@@;hHbp1!(b6GbQ!l_OO;ZF2sT5tOA&fde^;2j-7T(deO8!+nTlxDmN zd;Xu_30=;Ke4G)M5e0?+(}O6TcfZ5YYEtM*eoyMXm(dpNN-V<{=WArL$_z<8=TJNU z;QIAn>2VKH)Q!XlS6DHgTf|q20!Hy2R;5})0-s3cpH z?7-{CCIOnK6YaQ)e}jU&yj%5o3lbkg|;SnHDR>3hkwj zn8j`4w0qJI4S!1^z7jRJDkt>V`0dyEV4nKGJsqCM+n%->S*6ZD17QiwiB9@o`4+0O z#Km!V`jJX_Is^Yo)*Y+FY+-=_b!ViXaYd?c7H{W72BUhO&aEnFrG2u0xT}9MRgjW< zi`~f#R&iA;nq67pWH_=Qy?zl)jr7!3f~qaj%%t!J~FQmKp z%Kf2Vsf*!RzIZ|*01}XS#fibd+kmj$X=DAB_`@4@|HVM^TZeLfQSauOpn$K0XQghn zTj5cvQmU4_H)r1WgAGnKiV%?_@Y3uB%g1`_ot~U1@@`Tw?chH*z|ho3M$kn#N!l=x z3c*($JSsfDi)p{c@(i0?wvQ23c-B=}HN=!_dwrR=sr{*oKfJ``cA|&~NftVUyFEKy zC5sz5*mFFecJ|}kU9wq;H|q_fxET3UmrQo}=t4%9mzPsBGtU!MUu~TJ(cyj?`^L-5 z>z^Sqkvx_>AtHKsE1txa#tK-{j4|pFm5(Y}T%+Ge76kqgKj8P#g+iq3d|596^Sw41 z#RVBhl%O3L2}s@szY$v@vSn-x`D8-SVqm=s6a16dyKV9{&V607$2xZwKU2B^o~*L` zdRZ@)uTxJw{&g*7FR{kk9%Adai-Y&gene^~(dSR#I{TJ*V13#(((dQ;4C_)TGDJwN zmjS-RGB?W{lysJp7)7{Lu~DiQ7h|?ud*9` zx0wkQGb&S>j)_=9%YB|(}C|0;az4UtkYnpR}HR9JYz?Ce4@$e}xiAW~GN zvyWpU!{eY5*GF3VSq=mA-H^&d16J%3TE1~h5CG?F z{0?}+heNDZJO-Za8g#Di^=1fxY<8-GN` zlO_0n?!C;Vrg{{O*R|~IGhLA466vp4-Qt`^jDlYbqnm%*166o@-o38C=ZqBS$QpU} z>ym19m2wR+gq}y%mp=8}HN%#CPC-Y220<3jC7+XeO9vQ9i(YBlOM5V2`x?<+s(T|` zok$QQ+UXe_`^MS(?)Ig@P9eu~hcRusRf~ zIWp8WOZuc^YZnxB>Q&kMq3Sq$@9Wd+7uVy&7s89k_*2I=q-yLP9;HM#1fwoEG;kE4 z^k-{=D9+G(p}2eZ%rv57*a-VK&y9db2{9h~hv4-9ypT-B#pfAgs)TOTTJP-kzbpV! z_}1Al*g5}vJy3PrLz9|pb1=YWK(|2S+6XuZKV7+Ov3bKKkc*Z_xCV^qIK&jo#915P zit>UQ1zmrx-#UM1m2^4n4X}Z3tJly&oC2)N5a9qgzzVh+w(kfbC$jrr32M|QJQI5- zqn}x_E!zmcogw!Aw3ibaafZ@euq9i0U`1Vy5Y;ejSR$LHs+T5VD7+n7HZ6~Q5cs+U zk?7W>g3r#Xpd3j=RA+xrP;iK;2P@iVf2c5VKFBO8Y1WB9pffAT2MvBpvn=v(^B+a8iZxJE!) zG6)dtV|c)gmrQzW-rxDgm@zGWkC}e@mkw^;C>b&B9Q$|y!u(tN=n|H zC;ct$U)@YY(T-dHJv$xhlK3<7kkZj?qFVWOp9xRMwGf)>dNB?F>-V`nx)jL(&+jJr zw!=uAcMGCnr1t&PwCM>mc(oXCv;owiM6Tiq5}-;U|0zH9+HU>V0njlh+ya6DR^`r9 zk%p@LM&CGJQj5~co|eY>EeskI@=<$wN^v3_9C?2BR(h5Rl*O{9U=Ou5ChxkpC`{yC zt=li^&oKarQwzA}Vv1pSnA3Mk=u8Bob{y=Zx%!Y!JAd4w?@_$vrI@M>bLbuG%PCm~ zugG7XLr%FlG)*4wZ`0CNb+l=YNR0r_W$Vm;I|YsZ^Ao;+N0~uUFCsga;}hb(qsAp? z7dil$zez(tj<-+YH$w4Dnc!$Nf-+21#@{C3D6!i>8y>hxx3}as_iXW~_ZcsE{hdDU z904#wyu>_Kg1q-*@U0{iDD!!7YB{$Ww26hBO3*$^^gJ7<+|Yf^$!xA7$p4dmN}Zi8 zU6a;60o#ToAw?xqz4W6W{5*Sar{1ZEfW=ib`OFSJGY*`uRcAVdy~ne}d<`o~eBZZ2 z%ZQklwmat@@jAcPpw;lBOS_@Q_ut!H11BnF5Tj0UCA6gU-KiJ-7F`S=75}hw7W&>i z)Iyj8IkT43HR6dGcR7xV^(xQ<*^B8pKBpcUG=5wpPc0{$ECtt8!o!2t?-1xHUWQ?f zefrgZM@O{Jf+hZp#g)v70uAhJ@uT&Y+A&9X&1o%`6e9dp^sEk)F5fzZo2(!`RY|ZO z=g%DX0f^z{`<6ZAT)b?J&p5=oFiT7VzjqXWhX}PM+~u>H2J01|73GbAHqIC1zRm~o zd&lX6)+@pT6;fB$6^M9SulKE!P=#_Ibqezc zVxFCyy*wjW=Y#jT`FSi$uk;GKyL*?+PWor#VY^x^r{4S?rL(7TSE*Y#Fpq9;np%z; z6OQABn}9Y2dEa6IjDf11a@<+yM#@RA<%r^9ev0B86C zzLK5N8?+&OEU4m_@kUhj#NL!AtZ>o>wb<)IxueuvOx=zgW&4&ZC6Y?8rlWvZd>CN9 z-<(Cg@rs5^I!p@5x73S?9#2l+KhS8&49CTKHbp?V_3&IjJ&{o)#%qJ%U;IK zJcZWLVQRgwf}4kB&SF`~a1FR$1UN*BHY;{jX?TXU3j>5cc?+rI+-!^AlW!DBI-9&| zL(zhg%OHI@4jBlOl{ zc3&3_5(}R`b(N<48^=Ty(ad;prLm8Qb+Aqb0bx}b4ECZ%3;@n7-l2ViNT7F{GkdkW7KQ>u;p@Xy!~plDZFjp0MQ^`NZ+b3uH+ARZVKSTgQ$483Alx4k-) zz$IWtPZ8`EUdPMtw@JV^4yzIMULg_tVK-WmQ|~j6CZRvgQB{{hU;eY**&|h0xakdW z=o>ln%=9c)5BD>zz9%d(R6tWIqA#hbN;uLV&RX_mAYS3BWcmuS1isi?xIvg&7?Jd% z!$Q=FT7f_Z0ugJ|R}6kDbB3>if4g&b7};VoiVzj4IJNPKr=4@;^lL3)x#cR|PETq& zg?J5lkl^`D|Mp08gXaTFzBhY>u!2LvjDb(5f$IjY?l zd*Chc*CdO1a@b{x*Gg#o@uD!f*Bk`-u8J8%@X30Ib>bVj#@{;2;dB(v{jrNlN)PWl z6O$UzP6&V3F_5lC02KtfuQlwKCVUy;WQTw}_rIu(NUxx*Us4L#psdvUf3|$L?~-CbcYTqY=Qg86L1L{mm}$f$RkMBbtB2-?1wLMKJrbsS}d zpJugZymWA4#AFQ#Ov9G52S}KpqcN9$eGOY*R5oe21jtnzn(Dft_BeMFCl0*Qxtd|O zyIWCw60cm;5OJ_W)_jH!zFHE&&|t=QJ?<1Uac_Sxq!kHB>9|^~!1uXe_dXTZipgSZ zK)wjM36#jC!wR-lkrT02k^A*}c3ttTFNS|;do+vd%qEkz$0FJ(P{{rQ&uJUr+nB47 zCv7y<2t`9)WW9`HHXVl@JH0gdNZU44Oy)>?gjuOfV!-|D{RsMi_;>npn@_1;u3f7D7`t}KzT&D$wYPr;DZz373Fb)G6+p0@$MPn1%%j0^C6rSp1||qPYiG8_rZ;) z3PkQV|A(=+evA6s`o;$kX;1_d2}x;C8io*1KuSWoL_m5Na_B}>N?KwFX^^g=Q#zE6 zA%@NwdWZp@`J8j^^W4|>dVcu+19QD+?Y-Apd#_iZk~&#rhcBt`LEJWnivi8~swsoL z(R3Rf!FYXS5LTs_M2GUmg1m&rDpnU%E852fK?6c~vNWtUz&&`t4-YjmnMc+UCCwaR z&B2b+8PfR1Zf+!!(@xdjzyus!DI}0E8hKJa2nh}EcWNHJ{&;rP(^k2=*DTD}=Lb4y z!|BDG960079-bdqSkIn-AD8NwJmEKeVlP#J#wT*r=+{i_w_R#;a^@5^P1pCbFy$IePmuW?)8XXwoU@iZq*QqspIJLsX%1EiJ{7&Pia*Na>64-aTBx*2BJ%2S^RP zM(AZ*9>d4|SW&;C9A>l(t=e&ShIyf@d=g~YUmr0Fl9ElOyK~*&#MTKK5C;et@aiM3 zVpwwmju#D+0t|Rwwon5X5v$AAF-_Fv@$H6IwRm^4<3KQ$On1uSPV>Ts?E$U0jK5{6 zDEBWMW&AE)bVSoIKPGpx&zW#OkgCiTCwYGIvz-J&8}i`Q*Mx6Ylv;DO9x3}}(RjPA zywvAsWi zhA-a9oQ2VsNPani)z;SAro!yzxUo3!_q0fCs<9(L4u>%>E&t!FE7rWa_h@kq z3OJ8fn|(J@An)SZZ>9b-Hs!?F`YayS4l1h{LL*H{^V1GpsaUjm{h13-iQb`g;l!!109H7)eHs zYr1KIi;Qth<3IKWeImYd;QGWK+_WWbL9+T6N{8T2?z$;b5RCY;f$ZqKskWJ+nLyH>$}H~;MLhqV{l zvbuDLBP%>BSoi{XG3Jg=BGMge;J|?c!+^17@r%;p#0X@O7zspOeS{HS_SfMzYK0V> zO7#8$%77C+EzrhF=ppoJ`1|F_7SCjvX|vwuD3qsEze2B)HBT#Q$cxyJ26+*!*A9;G zv;B=bx&Al(9iYW1?Wxt&e6*y}YX{<$5OQC^Wv;*Oavvo+40Dv~kyz=udgqx#t(FsQ zfE2zeInis$UwCC6dovXY3n-YWs3Sakg*vhiyzGv{@~zsx&(j<8wQqgt8mW~({x-a< z@nmz50kXu5hWo}!onKfIH)6`cy~C-3m#ygaoQP-IkxYCpsFv#(xCh$wctwF?FmK=y zd#cJ{q(Cc^YBIkZTxlcKCM#~v?NhEvn7R?pNJG%{&#e$>7sKxN;Bko#s2Fd;pJ_Uz zxMP)SFb~nswFYm)Af|SwNO{>t|Ega=1A)N11c_=}NYZP-7Yq$0DFGZ;N{-<`0&Agk zUjnuC2Eg3IqnJZV!FuO%0M*O|z_xNoK&O*TrN6Kid%GVkJ8tGQD66zC~sQqiGyy>5CsG9wTSR za5vWV8XNWakx?_r}Ppr_XoDr`&P=cr>__y%{AxTJNoO5_c%8c`@Ks?)%Rb zmEq2lh2xclwkd~2@*{FCww2WKbS**%-U9au`S&{44SOh`4g!=G40LF$`K}091Abg= z^04n*JMkXRdwbkT@N66G?de4uYf(lBn*3#0Lk7?3GsA(TJ?4=Yj11&otE3wds_q*C7UJLGr!>U(hSi#w^;;{?0_vLK8Y7`j#Pak@p)#+2wG%#nyjmbu!Z5einy>gS{6M8?O2!Llw z*AJ1}wkdWQn(Pmd7iFozK+8tUCq^^FXN!6Q$I#^#_PBbG_lHx_#+y1aNeAotS^k%H z$?ca&L5a1BXDPC```5<{J38wj1T;i2&9A71l;K37+p+ZH$L0ZwNFUD>%$kG_j=59( z>I=P_&^JM=xgcU3)pqR)HzuUMmEq@wiKeVjvV^ zBJkMsQ1xk(w2{W@!6BkHc{&FwBp+420k#+-|$)w3eVLJlKV_6v`*iTlM! zCx2jsjPg8l@2zcj#M7s)sDw_o$Lk?j57U@*5-U%)F+P|}ZZp2LC*iMVe2Kl8$HIc7 zzhMY8g3RR(#?>fU8!mJ{5b;c;6xc+X!U#d zY@AYEMR4RzD@lAf@Ug{m;7WGDR?0o_&T!0^p$k39#&7ZkV*3v(6)%jcT*KuVne7n- zBpbm5sFa7SnMuv4Mq@sRK#RChx6nvmmX`^#870$rcYAH!buXZ1hFM4}(C7tLAdoL~ zjUy^0oaC`Ry=Cee8shDJ^!u?Ds;!kc_|*4&&L*#*z$hZPz@6*94oG%Z%NjPs1<&^b z+t>`&CVc(jJn@}kX^MVnHg0gJY^)+aZjD@-)Me(E1ZNgz#Lt8v&dNB#Bw$goal0JN zwzSC1@L@LAKk%o?=^+6pBo=?XH#wxSY}fUDI$ro`VbYg@2m?cFK%1y8YoyQUBE z@5LUoPeuDc0Njyp?OwIKyLBwtUtD5)+riEkgKyl(Oo+YO^%s5S8LY*<5C8bGW;8zVcK`Qr;hjU2 z-}<}9{m*WvJTDKVT~fsx6bkr|$zMsDtapFaRXZ%_bO@*XG7-qSJuOsiTIq_!?S|T# z2Cnf5UghiK-P~vS_kJahuqFro&%ME;1QA1Len_*uUzJ1xPF#e$eRjDabP5xLtTm2= z8Wa9!vyy_h4Ey6rQF(ojmS!M#5ZZ@yLIhG=TU9qdZeznsTsO8ch_u(}7ts z5VZ)jyf7*u*SA|bone3EN(<$4LnBRzlXxGEU6N%&--ib&{i%7SZ+0?D0jZ(>AqbPf zAV-Je4T&I^=O9y(n8?o@E+*!WQpU_N<-gzplstKPbqecQ0<;3ga;-??ioU!JRsUucxyfXx%C)ISBO{s4Un&aqwsSCxV}-m zus#kH-TpIr&REMcZar_}tUPg$z0dlTsng_v{i=dOV%M9rP(eBjcx#^-r1F)uXqy=vPTn$Fm9Arjgf6 zJ8Pux`$!=)`?iwqi?Mm#5#$56`6%TB0)c@{E{cJ5CH_Qn|2y8x6lZhRz%vSgA=KT@ z>&yNuf$xD5&J|KplFwPq#)eo0HmooUL)KfFp{?Vrvsk04EvvK7PV5a0&o$x%0*)f7 z5gIm^z*D)85#sd85}5UN{ri!a7h5wCI1o7R_r^b)pnKvDscXH5SThbc{+_vL3qDTQ zHE&Isf8A^y7rsUS-TXd^6{t0WBU{VLFpm#3}teOhQt=4 zK`}2jJE4Q?L$sU{(7Vo1-D;~HV#9Weg#G!}$1my?udo&J7)N@ z>5tL8j}Y(CSkO|smdiA0yrIT}t`ohxAOFe;k=J!~0@i+5LfA7Q4GB*=k)%G(!c6?Usojy2h zKuICNz&`TJ;cyg>?J=;e75LM2y3x%FqWYdOwLw9~cSCrfMsr8B@o>{lFwk14yh53K zf}Ln|aA3e_Wh8ut$S>nZ@4+&Cq)#_Pb`B}z-j^ltR>V62f{kuQ}Tbur)DIm~_ zVafKYNggnlDGlK;y5?Tt*VlZ()oBV?vHm9gAp`Wb-eXXxLLdQX4i(54V_V2fVIX^% z+L$jV<2#yAT~op-3!qxO?xK0yDLavwH0B==YJ&Mgpxj`J^exsaZ@p${Rb>Ix521`W z0?~^zd4w=-rgx^QO3_>utV z07(K~-28q&SIf%P5NpJ@+ydgx7GsV3(Qlq1qG%R?4zfB~+Ru4lvou_n>;K2>N}6T; z+&ShA-e;ifEEyHj{wZrUrZr^)>N}Qn)NrS4*0Q;GjKP~3d@O^`!$jO+qA*8UQhb4@ zDD(KcW3h?#XKmGLGM54l8(Hmjij00A(;OG-+F8nWdkwN^B#lr=*q&K9R@4c|=kGcD zd~G2oqx>wkn@=gq=j~$PZKNB|XYVF&!3_MN>{@t>qZdgAsq;;Utu6;=eN!tU732&i@N)tXxm!Z zG?oNyMy0}dp6oH4(|>y#q?$iIP6{h6k>s5yRM#gwSP{nT)XJL@ZPLSP1TWKapfu;4 z@`*QX(a3u|@`jR@yuQTx_;}&dKYJ~aTt>^bb-B+bCJ;~tfbKq@rgoI&Z#SczClTX_ zH07bs9@aUdgd4xxNFgC)f%QQ&r2zP})^&o!QDuu0D3Kb`CyUH+E*RGUyG>^RZ zC3r3@GT{z|YGp}C5$nHIV7WWnv&3G0#pQ1gww97r%?$Y4eXRI{8dQA%wt=^;Rj$2# zeS=y49*HJsjL#)}V~rh(`^uFzOf)feS|6ZK@?oc(qoM!V-2|b;n$E-qx$6v z1%6gMLAj*T^LC&djerpo$>vy`M2*c#ACOvh5^Z(7{&m}`l@D8d3mg|4D_9t0rSLB= zasC*cVvr!Cuou2+drUZEAz9&ybTQx=eWP+Wl9}(7{u@miu zm8DrCsmy4dVLA`I{iZ)T>w@^1TSW6e>dm43>s~`L8TI_JVRj6;XAbHEt~2F&fny zIMU!sSZbk3^NI;A)exi@*vr$I+wcqLWc`=`eqxd{Zg?Do#Pr5oa*@g#-A|6)I3q!t zY{h`Z@WFi+sZE*^d|IQ|bKgh;Y+%_C@;^yV3G-ARib$NI>sc$Q8{6pS8`BhM@OPAU zJqWEOr}*cjl!=U4v=XhF)IUb!*Y&(vSOx6ew~K}BM*Wx*zoM|yfRD5O_Qae^j`&YT zNj2!|t2!u|-TesN&o4fD;rg&R+EXQd!j`3m6bW2n4(H8wTLzgZZOU&uCivB=P`=Hh z=2K}>j#9XE87+Ghw+isbUg`d@#g{uwo}pmBakl^78*~K84q%B5=DSwh#2)274U4Zt zm|(`Wj?q!+hn@oX9>}YS^0Y5e0k_tT*YL3+>E&yb>+-?Okb>pbP@ebRlw^a?2=}YS zW~^@q_nccLc~BA|)?!b$oX{YEkhSRMxP?UJc6$7i^@J;*Ya+1cq&MBUwDRyJ{BPcy zA9NBvYFvQ@b|-}Y>@4QgO&_nV81teW9RuZA8`0%<#b3qC!2g0ue% z`$V-k{aHhx!B&{uYY)6qu5MGg{zs|n$yno-M1%@uTh#AzGE{Oc`N%r3*AF$#4~0T~ z9C;z1w5iCi*L%3I^UDqm1PJNpMv8WS&f#*3l%TU_eHFKiQ*KhHA}0{t5*eg6`fc!Z z#K%q1L=(Kv=2u1> z(j5MJ^7%vGY3gH+Pe+k1Pd@u*Zs7z(m0o&Vvzg3S7ZQ~NB>BT%SZ_L>l>H!hey=fu zdh`U)CVJuF0muY^e^UV-S-l~Y|C<+`FtNgxo}U!|fp{D5ur7GS)%Kd|SOe!&{B=S% z7Z9Kumi^@AgPG7@y2>nBguBtw;wFED<=u=3x~v7IDfjx{CS>25((d3Y3of(CQLdzL z_2AF#Oygzlso{LDCbHwz>lTQXUy;rG8xNZCASEe^2zW(!#$;AaaG(qL@caQezMA_6 zSfKNnhob^xm5H3u$>KQatZG+lc0!xG3L{#SFUpYE$;xVe-%FSYMzY&O_THHMAPL=| zWCh2V9`A=Q2C`x2UTKc@c% zxY?9hmDdf|Oir!A)krbRit zzOkgDmlmTH{~FJB9T?QFG0e?QS$34;u{bg~`^eGp1xu1nJUo%0^(LE&c2Ycyc@2PU zf2lBRomMLf(YO;fB@PDnB0}f|2b@>L-#@I(LDs%@fw9lzsH)sw>2nLoa4=jGb0>z( zx;=FJ%+<*Nc#Qxp;ldvI!O9t!D38PyJ_*xwUl*7e0b=iQbTK@Z;8<}PbNlw8r|w9w z)>VS0#XX!@{WySo3zOX%Ea-44wVVuYnRxiYGl0;a2B4LD&Fv08a415mxk&5&rUQq5X(;Tu7 zWPiB9jbZfj(#xUXAd#XDk7aSUye8ivuEXZW7{(s_i|m^kWnidpP~?xtIBLTjQ*R*! zU)}#fVOT)DS=EeV-8~;{YQ@lZt6J<&67jPaYb4!0u#NCc4gp%l9v(t z+Hdhe?e7|iNjn@h4Dp|!niQigZ-t(H;~3DuvkB+jHG9=w5K5yX) z8>2JH1Bn!({hjmE9Tx!)Gch&Rl-VYcnRT;`dSXU5wiYC~3bJsmDAh)!s7at57JRlG zU_;9-AvGcYoO-et9XZ2Z3n!DE^R=oRz%tyRYA_P4LgLDMO9dS)?o^#`|Gj=M-IugO zQoFn~A*+5g$2@w`2zP>3&rK>Z;60QEw&M7+AjT~mIO9a`E zauc_HyPe;>bx#H@rHuI;v*S_``2%m27oLjRo3~&M#L`4{ zw9ABcmXwqhR{g*_ukxPt@pCnam^gVV{6M;TmdxmGM4IR?j;70rs-s0=l^rj{l%Qh& zJ}Wca;_vXc9cEZ(0I+;dG0KNbs^#{JY)n4tCm>|+k zywIG+&R!~-#8zSPIMemP%>LSIPLn98$6Mw*VJ4k+=!B2!SG;|R;rN7nfVPAk@sQ1g z`$9e?QY|%BsgNF-nNe@TnAN7gl+mD&404Jma`-6-@_4^wG{uy=$&l!~1m}!x#bo|k zZW4PD@SRW%`MsZs=V|a53K_fgtas-#`|GQSpeDqX%FyQ;y&fh9OU=S1frAH@fwc$) zGO{@bnc4LalkZpnWcWXz)o%=YOjyvWox3*lB$zvCKy_RPhk-AqXVpeR&LUQ~Sglj1 zjg234kStx4i5Hi?todGY;l9iKZA*{kTf+uVs78_e;dm;a+`ab?Y7N`lth)b>_aQPo zJkF@WeW>C*RTW0hR0l=j?=$w{$+)43CB zFPIq}f>U7#JK(Z@RX}PQ#)M_GIg+oqn1_f`z~6@f<>T<5DRT9%Srj#IR23r@j!h1k&be30onArU3D$XdNEjvlDV22A z+hYgcGm!}LYZo8#5c4IC_5P-PnvQm9x6ogU$h>@JBQu*aM&#K@P*OqOd$AsBqg|2A zt%|{Zi!g~lKN1znBqZpaQ+)f>Qm&WGSSu=uQjSzhH-5h%J3hsHk$PF7$e7-&#Q3aT zl`#-OZCK}BI4S(nG{70l<`l~WK!@A8lJUO$^dr=XsPs^OY4@#wJ)Tz?Z_pd|^7$0F zG}t~Ju}qn=Db7f>!)T|zp8t|Eg7U$H$B@7M2I>#N+wRXb*k{#7^uP!02Y(u|h~>xJ z?~6LitW{G8u(Ef48%^I%g6)5oc(9k5HNTy9f^!e)m6MVB{;I}WChUo08_wE~XFi72 zj`_Tp4_|*7RH=ymTF&kkS@`B88Rk0uOQK0F*uMTA{Y&T&u5M_8`wV4tA2RD`IOR5CjR?TMD4QEd!w?HOG6I%O~2{-4G`-M*H>cvLS znd-!G*O|)Dl`ru(S*KolZ|7aL9wt2C9k56g6CLfB_ z(Zf03>}L&Xc}z3ezx})H__W2|+qM_fh$v1K1Rbl*d1mWPSOi1|smNypOX7LHS76)P zkQ0+P$3@tB3p1!0gYXIzqyO^0u2e`1YP!!qzeJ+)t_(ivXZ{feet3f5_y-3;j4P?n z@f7(FI{9M5r~u1yyLjw|#?1a6rJGQQ7@-UC_?Z_tg;J11DBu%9EdmnWJFbPS9*mP0 zvChu=Iybrb*tsL< zQSjiS3GGxbYbI{vA(JBR2(j^MJHx1~VC96AxUGT!!d#YF!z215C$D5v=Ha5ml#~cQ zr5v)ed|`7PJ(7aw(sTr?H>(5k3=!b8tEQQ#z5v7aH5~vvKaWdg76*=#MhL0f{*^lV z+{W?Oz8~Y;`{e-bAnuYT2`+-YpVe!xplX>_nvDME?B0jPkJsD!lm<*GWH~0b%I@{7 z=$j$h_;3V8O z!SZaeE~xE3kjiNIi#e$X0bOi0;|7LcJn!!y#5wn?zFF_9V#9q_mVJ%D{+3#fJQPV> z4`*P9<9qCy+-X0dIQ&KEjTJx=?s2Vduh%7av$b)%f4QE`d;D6QVBhv@&8|SjT3kA^ zSWnX%GY*E)&~(ifNMWtSx=ILM`f%*IkZ zsJl$DrkNPxT@xM957I(o2$m6})@GV?c3uKM%HMfBK{Dx*>@Uu}9Uz`W%&k+TS=j8; zY3d*VQ$>d~XOEhgy8=tzyZvNx2{P4@5|~mal6e0t;YI|j?&D6FZ~%y*hbL&yWRwI+ zlD~bAfK}AqxDL5U@)YgsB_T-N4I#eB&s@#M%5EDZ3na*48O~oLVw1&5zGVNKt;18~ zrmh>dvr<_!=!N%ijerXqG;U7+e<&+gdVg-f+|=(2uquX-Gcw3SJcx)4w!7^=;~*iY zVZ0bICIQ6yHcbh0Y=A9IPKskU^2q^(--EsKoiXoePY$3YY}D0AMG&n9WKOV|nAk>_ zT)(_IdSYQrcdlKK@4|aVc_aLP7;E>_v2fF=uR+b(v4;xS1LQ?5oJvehyW!V?2Ix3{g6Yz3JXO(?V?gXR9k&tX{sp^=M{ zzVjcJ3?gzgV-s5I8XAVK&h}bsz`$`)dSq#)j4*vY;vD`2baqo&UkQD8<5@kAN$g~> znP7vvynB+HRX6z1$d-CNDlLt`iqC@>^tA6+yZ*P_2inQ%C$p!B5X4{4Z8E}i%Lb(N znMP^Df2mY~6#qtFK0prBw5i3mSl1Y~Zc@l%D%CQj44ayprL(|$4s_&b-3PN;-4=A9 zv1o+eGKB-l!sVnhN9l-fw<$eTfCRFg#~=WA*})}&=rv{Fd?*nbb?j{F53T3#XrdK2b_%nS37+|BBHQl*y#K+94*z(m%}dkz06|k5 zj-L9n^m*Zo47H_G6Mo>g+mJA|dDCSoB58Ni355=fd+hOHZ_7Fl_oZ?|`$TqBKIDI} zNml(+w++^q5^;+=E#lW+3i6^_<9Q;e9*r8z3JjE-_Ttb}T1*u%Jov@?h4x8l;@(V( zAA-J;#KWg(M*4*^)jjued6hs=kSn*!?vgM z3*hE9#EqZ*|16)>6XeJ3m1~3sA`;7|ZW-6cR|=Er(0Q<;b;vXFx%fkh!mUJ2zxenD z?#|SiRxtrwBv*}$kEqxw${TF6sy{fO&li$uBDODr)d+!pOzIrm`QzZL|Ct0k7?o|D z34HN?P^n<1p*gg1p>l zEyNs(QF$Tcf~B?7W1ZI&{C^NPAw%WlUTtxQ0c*kqCcr>iV=r^E11Fg2@?n6Ci1F-b zVF1w3X^9T`)8&;uX=NN|uqiE)8wggSfFyD&O+^QD8- z`D};{GJT)1z`0i55J}J$myEr|{chOmQ0AC*lD6-I#z{S$jCNhD2w*Xn+^caNQ+PM9 zX&RyG?Qq3e+65)>B97F1+8dOI&t)2q^CDkQFeEWyx|n82XQIcIwx4D4s9Avo8YY0e zVOU?o6QV;KtVKvt{|n`D*Sf1u2>C=}UV!ivtp9)Q&=xUxU2k4f4t}NF9z#cWLO93c zY!ljSH|wCX6kxaO03HvF7N&|@O*#Gtx6+PVxdc&3Z*&wxZzd^cPt*F`VJW~QvvHH- zIC>1z3im*TR(pu8j8?($J55=wXZlZGXP0gcrw64e1}rGOam#m?p~_LKC$;bFZVOHr zqW|k^vmi97sk_5SYjwO_8W0ZtCj~qOaafX|N^@Gt8usXx#tJ|EHxYH3s@_|fu;qoc zcJOCEvdM>PQLLyWivtq1P>1DDpCo@P$fE_&;B3DxHMSZGIjTN}Dp}v8qx<1;`U593 zflB;0mtt1Kdlf@%B|hQLgia}0CPi4ygW^XT;x<<9@dh=jmbaK~@)>cd2eq0s_b(}& z9Z$Lm4DLC%7g`+rQ7@RG=QyNwU_8;}Nway&N|hX;nY>oj7X6aE&?=SC`rcb&C;3SF zvT*e;5v|E_ulfW9Dc+@-+rm)A?oDP>DBHjX2cHrxwf z6qcKYV_W5(UfVPL)OR>nBrb)fC-+&3^M^DOx3M5rKIp?*IeN`68hn5x?-`z9_V3R( zM5dTBpvu}8$D;s## zcMNh_xN%>)Kjd#cvJkggZC1GJ?VcwpJ6(n~68K5v-X<;;Kh5R-LONB$csZGk zyt`K6CH1fD0>Ig4T4ltjK|c&G$3~g5+e%jLgAn%KXdAMIkH~)42VKOpxF5_NZ<3(j zdI+<`S(zb53UXc%e6iQ`Qt2A`qRR1Lsl0i|(>rk9(Jq?VPt^oH7WITL*X#)^-`~8v z8Yi$S>s{XZx5aAfYcu*sqBVfdkbP-QyzD4tj;Cc054we)W_w8rsADv$s;K)U=33iT zRtcA<*^QDF6HAE>y8VkC8R7VK(aU^Amh@O9f>Yq}0M_K|IsVjNEOqJA9;$QHNAn!t zzM=9FJxFQ(s<~qJ=;K!JqNC05K^_CD_gZv2_7PGs@a~2Iq=XI8nY5O%`B@#*ulY!7 zJ3w-}S}^9$+n4tM!m@B<1q$70`)Ee$Ry&i3h&hw!_T9B=b8|{ZuUx$T$B)7CZAT1F zG$mH(;;+5+XS(|yo5Sl|Ngrl#zu56}72E&hmh>ScsdV_Zp2tP}f%Sn%t+J{@!fU#x z>q!Kl?|lN8YB+l0-2mV6&GPa7&CJlew6Dn6efi{+`)eY?I4bD~Mem@QsHQ*Kkh40m zfytek{O}EOkDO*Z666nP@hDew)1iKJ7=%9UN4lElb_c7 zlYbFN`<&7um2H`}SsWgmV1`6T&jDBN?VBRaJRY6C5hq z-xQ2wl!EnjW;oSHw7fS{x7L&N`Uv1SSC2coV~5h6-{A@? zT8*`FH?EfKSsjfh1$EP0Mg(5vwO|It2Oa~hfA4x6CuH5=Zh+p*>H$8yb`9spOZ^@$ z8In%o7SO2qxNGq+{)QnOECz-RQO)z5&IyghI|0#&qnEgq)yT0JzqYQ$&-t=z&9@*U z4sAF*rFeOHdhM7epmf7!anaIPKStkIuYI1ZCspDB)sIYE);}sS13xCJ#MXGbLZ=|G z(!>3hR?mH2xb7=P%r=DxZtYW6K3DO$WN#ovzp84(AS>FG@15DDuJ`tm!^V+a#Cp=4 zo%ePt6l=v`7*uZbHFvm7D~Kv6%0AnD)=Iw2^Q*g7dGnEI>PrWiK}vluR=D&voYUKT z*r2%7IhhXBq}z6N=By&pfdZ?C(*G(+T0pkwk7D2{@3SQKNRErg0yG$Xj}0ZfU>a?n z=MC(*;9pL*$^HZsrR=C_ATrq}h$+HL@uO{N?~_+Axa-ay)^U#e^jQ?PGFQN9nBipa z=9d2fDMtYB6rw2>%7DY&<1${RcQ#o<0@S`5fxe?&R}Yk)(4ANFl=Fs5$E|L*somUy zqz#@oXn@3d#H3=K#HVAAoPd=w^#LIIZ-{-DqE0T5|Dt{i@_e3P;B3qPBZ?N?wsP|k z#rOGaIbD<-t#ow&^VYl-KflfU5zCh@P4R7Q+Jf`{E@B1s&~MlIYAw(W#<~ujBn{bf z#@fJ9PJkEE5C@IRu{#8H&18GY8{L!*onZ6Eo$Kyn@uCb6{b2GCU&9`jG% z>^=4X5?nru#YMybiFJDqpT z=!G;C+fPf3=AYtt#@SLn_DGDPKl{0Ud;n;Z^tfwozf+Pxb(!aqt-79+LAKvSu?w+_ z;E+22Ld`FZXU>dU4Fq|L9ksBI_B_rl(poZi`4u~r!zH`D@f$H8>1q{)zO3OePL}dX zVNV>!Do_DS!V-t=?R5@C)c6-0oKY862y0+d(wShsW2)DFnp93SQS0P&Vsf+^V(ZWFc9!b@5sc2cY`5s{Vj%07j?UVnQ^LncD<6 z#G~TP?N%lv=a*5lStgx`QGm-5eo&)gj{^?xIPT*l#k>*cL-8XuH@2MbkJbOk|41-& zd(1NWMq6j*C!mkH{9e=allIo3_W-ksdN8)IU{fI(wmDi|DX&Pmx44aJniIbzXuQL` z{$^}0pfi{}AZ-J6^oCmw`Uf|<+<1V^mHk^u70Aq7_V(IVTmLMJKu~19vS(;IaQF4t z_0>(IE6R|kw=jKig0F~Fv^;$a{NTSu$Gjab*oaPU|D|*Sx6Ejp4?n)1^CY!@*RbgL zWaiHOLBqsN+s|i1h?%%!Hx&Lim;EZ=k$n%Bp$CcO(kPzx-2Yhy)-EW2M9^s3j_o-G zB_euqf=^}75B ztDYzZ*SiJdjm^U4q)VQLw<2W$F99EgV~*3A(`w;I*Fbp#o7nyv3TghVyYZO~%e(7m z8>QxV$t|)T1p%Q-k&6@or#cJ)-scT%Jh^7{q2k+Cy*jRl3W2!5+sV{_3cQAl|K?+> zk*kqv^s73*6Jyy|S1;#k?kayRz|==E82xqB?QPb2q`8E#-mj%>A&`-{B`u*_Sx{5; z#;9GWX1Ce7*m?-`a)e9++iFb}KTWoKhAEddXF)2Y-k!tnm?(TIvpBJ9V6D=4mhEWh z=xsm|81Z|0DtfOX^qM8VS(;o#xTmcB`WrgRSJprbx#-({@BsfNhEuHNE(5W6Eu;)$ z)N3)nvCg9#T3MQ?5AD4;_Y(i|-$NrXw33`|U1ROKwBB37ng?;cw!~)T&)6?Xm)?WmuEj{YciNZxnVWXS3G;85!HL3wX0|A zaunx}*g-d~YKuMwRdA3uT=LIYTL;EzrPswgFEPD$pv0j_hXZu8s83bV?z?!0i;wYOrO)^^3wcVAE1y>HRa8;{gi zVLciqpw%9B{wJifFmw+?s9kRiQ1rg#i`iLNa7E__9~9FA+%SL^TUyvX+pjOP^PUtYc*oiiL^gi_)F&37#w>tIa|Xl2DSLFpHTHWI z-tT?{w(p~pTg$HCnPVXSJ~fBlRD{p)?Dz+-@1q0gy1_(yPk&} zS$liKeUcS2Vkl}E(Tc)0v-5zt1xU%KotKbrvX8Jfj!Pd?b5~;25=0!T?K+_o>k~vs zd&t@Acg}KFkF`u*ULL;uFdBd6Rk$qnM2v?#H#yJJVD%xXsqyCued^rh7Cf)5ldn%C zxty>yVzG zmQAypBrx!Ews?e#`JXU|_S6Q~`^$?I@CgVvY zUDg?za~915-=9>Pz=a&g7GLcDpdLk2-=Sdst88F>r~l7)o|I%Zj(auzXDP%8VU`XZ zYX{LS9`Oyz$Jbje5wT3Mqi!TbrzZFOGhMyNpM^)hdI4;wdb7mZ&$kj$kXX{f-Cj-B zMrwRy6~b{>C7tm+dzxf?uFdnRGv=!Q1+8X;ZfvfucX0WAG5`Jb-GNG&i*aCVh<|(6 zh=#u~ADH9r$G5Q3W1gkJtT zqT*p-{hJp_I-$Vpo-tgy04|9;Mh)rT@uvI1g++wnNcr_f;_v$Figp`BA$8sT!~AR= zYe{YPoa11sHNAZ$+a!V&2{^1DGD%7b3P4v$M)!BKYAUpt0EGbAul!w3&WxT}o_9VGGGp zQuBQ`*G(+nx`^l8pdK*BZH|*fvG284aFz~x6(rO-8dVcuZj-0AanGpp=~VXz{rB2- zIE-`Vkf5?t$5InFdX2s&dKcLLT1^IGm|LUC$0`F}n#kWDyO~3PTe?6pNF5%d`Z?99 z0mZYUP=@qXTI7?>V;I9dS5hB-T%cH8{`b*KIqr;6A4AyLPT=-e6^G9EB2k8-9BGon zT;-C{d<-epSgJk%SYN(?>_`IMcuP)ieCb~F6eosYqvFoFqQOS_^)*YJGF4FxDTLIv zpmeQdBtiNfx7O>vH!UA~H_@|4JcJit(`8^f?O$tx zlR|iO3+r_oh(Jwb1!XOtBx|HfWghJ(MhoB8IvURfiymi9YFz$C*aGRpo1s^>P5j^n z2eg?Z2W+9*gAU7%2|3#nBZmL$GuSAne%25|o=?s>!1(hcZW1VAs@&e;JF9_Z78Nq2xyi4a9@J0< zpFhz26a+o~(*5^8|N6Aipb_Y~|D?sN0ztVEPZ_(+_^!&;#pUJT;Gmzx8*DJJG3ioZ z4hEi}Jw333EuMq!<--D()1u>C`bEpr8_k1+hZhit6>dJu{g?LzL#q5-88?P=K>vK=}*>C!l6752@?yae}8{QE0JaB`Z z^T=lkwFhfux5oGa2UR_2sFON$)(c`7a$I={KNjg&)A;CKVivGsStX&%aa;KpyL>r= zZRZ4Od&Sw3rGD1h={q$)MjK-Tib_Y?TuVBq?ALY-Q#i;WKpbuHfBwn=Sl`g_Ye@ zc?YxM(B>T>CjxDqddutQSY@M-2H20?|3leZ|3$raZJ^SEgh;o7(k;>{D2jx1=LkqQ zL#K49NHe5#_s}uGAdNIb4-G@d&}ZEH*-xC$dww{70Q0?B_qtbH*NW6fI5o9r_7GF9kOQYQRg*tCOxp!4m>zTYPPp-HP90QFs|?kCjWw8*?U zPg;K&VpXUio{Ds{$6~xoa)CV2 z=*g&6EPbC5!KW^7a`Po6nSm_A(nDD(5&9{0Hw6v*;Fqq-% z4rl?$r$0k*q1{yly$J14~W03hlmNyLwC~%7Gy;fwH0aonR+8ugiv_ zoV+{}H#gz#c5`}as@I$&6eiKg9S6-_w%?nnLJl!(t_Cgfyou*%$oiG1n=HUWM`CdR z=`Qq5Ca$3fW}8$3nu?f zQC3_aRA_7*WtP`4GJdm@exz|0&tsMF!NmDZWTvc0nz~3Ga*tfM5NLE{+4sI>-Ect5 z`5n**Q!z374Ww+^)8|}hqbVU#`>L%Ix%xX-L-H)I@=HILyp`vRNzKUlAVw^Yp1i3@ zMhtq4WIwc~v^ld*!&e?o&6GQo!^eh3XGK~M*o=(=!4 z_E2E(d7sn%%(Lr69>JXeC!WZP4~%1Ls|lDu{V{k=Fw(VK#^+FpS&{)1VUO_=mwmdZ zmOzP$it00}xjaB5`V2Lb3FphpKI@|@DyWsx?8%M?cbc{uV)fYdl0*Bqup0dWAy@1s z*rdAQeNut>K}jp8^1+1QSkdk$02iLh(Z$SN>uP1MkME^JkS9-?f6`#P%aubq+prA- z&o@?DHw8xu;lP^T8Wr=p0oolLs+bb^PB;4X@Fk3tSuAAbJ;jbD*3DtOco5fJYg)#Z zRhC%?NB#}H5fw+ahYB&?@yXY;gplO*4^Ep4<3|Ha6>s8~%H($i8{g>xNvUS#3pt;1 zY_jaZ?wQWbf11A8<4=A3#Fj6bxa9~>ui`?gn@cGTKHR+DV|?$lQF$XZ-onX4^st%i?oYsbHJ2y?=tLFmb|!dO zj()(~_jpx4d8>+qOpYJb+(&fr+_yX&X{C)SZ{1kQvp+es9x?YgkI{I}!eWNH={7a$ zPyxA=RbC0z8kM=h2m%$IASJzYW&y8N$R+4OKWE(Tn!vd$twTMOy9S?pb9!53eo-5w z75uPatjI1$UEL1gTW;=2)Do99}c`c8@xwa=F{qX%U@w-z>;T960RE6>7L$!chWSW)+~$Zu8V!MB`{o7~TF zq`?SZma%=W)Z4!v^({3$pz#sla1;(dluCl;{9;%=l;R>Z=_@^`VvP~~dQOsm(1J2lS^6}Cf(_NFbLb&{a3fhabIRw6o`*gZM6l6SbsqC-;^}?p7 z>j$Ym^ycc{!I94Ifwl{&kyJ19;h`HZ4>x!7S94025pMD zLxNTOLmFKy0o~!mf9^|JaI6jj@*E~1FL?i<(y^?mi*DMyA`?F3(!A%Ew&|8Kfn$@l zH8JrOt@v33mw`r7J4VcV=J~4A#@mDV_~Ec4Vh{r!?mSz^Ny?HC)a2q;McQ4NzNu}2 z&JO0*9j_uK?rakL1>7ewQ(PAVcLPhG1@`P!_OlFVY)z6py z&Ie*}v$uK)Ufyx@*c|7NHqr@?h>8QuRWtB;8NEnkw(Y3)j9SjC*Qv0~s+KTES|C}Y zsf03iHkVe3e-eK_J|9vxGK$Pj z6I}QG#e(Iy6PI=>`mI7oJWDa&=mj~Dr(RA`+;WKUOa`18LjPa zv&@IHZtRXwD}>vWU<%51WlrZ+l$zL)Od7hiRv??IhmNMEqaeb{#$q5XV{c!O@FKls z#gh26)ogl_d7|mYxD~Rd{`%5~G_I)4UR*NYnnnfTNTae}GHc;G40o))JM`G{R(g(S z8G^t616Sb~H~jdK1g87t*7N~Wt-}&ABI6){CDSW0AjH3?R|ypn;O|9ZwlKLrjJ6BDnD7#R=XJD^@b8K#1QB9J~M}tyKW&F`yXymVz$%s z(+;IJygq>)NN2V&6ge7UwOl4zfOF3zJ}<5kqBps+7d#l_``~!dO0+zcKXmkV+P>J< zXa(T$iB~H?-VTT@IzCKd>4X&dFJp*uHbu+!z0p)N)#fB-01Eh#zf$hOQrHgBB5IDC z<8lWYmNN!6en*?{b*1CVYw@FQlH$8i#_OMu^dH+1)gri-Y5e0gZo22LqDCs%o{T@^ zlu{6UENiqD^t<&Uzc_k00TvG94@p{|;}xvJDSUa!{R;1`uRh3hGTl5kM_CI#*3KgEnwi&}pl6#gbq7u9*|q zv%S*o)XsSHOKXu{N9M5iYi|H>Z3Z|~bMYWy{7HjA zE1eLkp@{1MOmiWHEDRd9Us#fj(kjCxk8<3DF-*8?8VwD)cuvGiP>GfmM5I35{A82E zN$8K`*U+_u3d!xlnrqIUoQSw=uu88{d_S0PB(a$)?cA9x8EaH$@j2|o@i?2*#$e_< zIy%DJYjWKVx;|)MqVU@9Az3qtCtmQAFtwOvndoHZN{6zw)JKR6pdu9kmNlPYPvJ#c z{pLY_MXcQt!_GP8;$~&RDP?%cIIM!9VEtHUqt2;G`O3(x2{`CdV<#FHzvJAVK2nUJ z#w3BBfOl-Dx%m$ub88d#CjRkqIgaC09dt0gMvg-bJ??V3_m@sVq&)mYjS~v#NhW30 zJ7S_d5AN%S)0c~;nOG}xMHdpI3J1-sA*JE(N_7*YzY0An(Jqrl$?zv)xT{{N`D?2k z1Al`(^gO1d61Zz&`(8n2rzvKp#h&E%?j!*A0#<;+&gVIU|-x@(MF5 zky9HcKmDR03$RJygxXG!@U7CmHApN}2)hNGU~_a_;*gUr{hfh5K3=8*kaw_ePLfmc6zy)39T8C-2Je? z+Z|7MjTr+u#q5#PU2&06EwcOFMIwCtyx{N4JaIP6N2Z_54!qLTPjmHCKNm&4Ojqk- zyVA>XT40;e)x6&=7+<1Du!4Xg?Q7Nu0?O&_Ye73rw&#_$E%(aYh^TC?SAD=Q1|qZJ z`?n&XMcHvUR1!ds6ykg7Q=oW=d-@EbdN9+UMeZl25rI=#5N%>r$` zb{6;~yCB`m88WrDE(I{&2i%}YJ|;8rDdw_gg{jfz99pJsUF^>t^g@td)^%!qh{;Jh zxD05+8ZkfBFj|-m@1=yNz9b0w_73vG0pI97jbN^RoRLQx{1K+9CT7K(cklG# zQ1R01^)WbdXE)meG1M^WaO&}h*`bQ_Sx56(J$ZO+gk}d+y3pTYi!pgkU{BCatnm0U z0e2^my)EhIiLeL;$Z9j9M)+p$W&zLm4>sr9X(-oi>vMAiO%~=m3|Y(cyTTQ9-z)TU z(bmx^yp!2D+CVw;}w1iX>qIDAUWGt~$9`-mkQ`S1|PLZ-1fbzpqvZ=^YG|aZN*9s5rm3SUl&mLHPV>NJ#bkvUU z35unT7YP+(SUx(Kr<|c&j%1BpDevfk;a@g5Q15Z_RxQUed;e$~9kMFQ@bS}>Mza`- zkelD}82tHb_GarvxE?PNO#?F%$HjwVJeSHulY@bZwl3SH`jWw5szUaP*QRY0Jt6X+ ztC1k~=76m44I*u@YuS0%UBqX%XMLby6llw+Gc$sbe+-q$2mS{q&KYvIs z`)q;esriY!^@nE(>XGFOUS`NXCrtMq>k^B-YLAxF{$1-=v7LyR@`J1%Iv_k!$~brg z+b0AecJbsZGdxp6rDW=2wcn<^Cn-3z>w}$7)6j{>@``_s=fD)DpjoL`mZImn)1&<# zR6%FLlYi%fO}#+&K?I6WK<(N1kjU9ns!O~xPUOr1#NjyM=WADNqCPA>06uz>K93pOsJovn4ipdi-_2Q6%ZNu z9KEUa-4{WP)5oS0bCn*+kl1z@&@*O73559xm?T0j=V}r)iz5RX(EOmI=J(6_BU!~8 z4rju6(Q&O*YaLT0pm4Rojyp;}#&ax+*UsX3Z**p4pXVc|ryMlR=lK9Kr53Y?I~H%` zOn$EwQA${#CvwI>hYfL@Seq#qe>>p*WG9=kk}fHaH=Z<+s2lepz<|(TB)AQ3Yf6Ty z6Xf|-me`k=8#n$4gGaUAd_U(uGa(I?4;AB1>l`T#9@xMsAXOI)`e3|pW9Is3s~BcA zYm~Wge!A-Db_OhRnnA&&H0bkH{Dkz~wpU{O9)~9Q)B+EQYb<_6g5Ht7#{C0>tKJq9 zI%=!7Izt^dg)+5OHYUW@`?y01vB?PJ@bowzAIWCc<296yTT}l2+Fjz^v&fEDk%MFp zV%imQy~z-5{oTv+X7d8xsL)?TaD#{WXs0wOSHE6`dv{~!TzBJriFw1wRAa2r@s-J# z*JQ9m-bih10f0hZ_JyzBhH#BNiwm_Apc41(Um)GW$A2h-LcVPQt^Mdpu_d|K@l?lx z2XVGRbTF#@QenGA^k4dn) zu5zVb%@ii}PuQswc^uVAflJVM9_(xAm)LdE=wr~HK?|jx8g+uswiyZnL_wt|QILhn zrMzC#0?AbJKUe?fHQ==lv(HaHc#KUxPRrnE-$~b=6x$$t%uX+>?3W!XzIgu54!(4J zsdY&idTf9R+*d;v#}-3pGWMM`f$HatjFwLazu@$?YO#d6bH2wavme=^hfxohj#qYu*q-wUsj6~sQ`90#G47OzaI~zeYg*j7;xfqY=TvjXSVYLo|w z`Nae?>~j`!9Je|sJMh$HeMl->QO?};D6g4oV!(I5c}j8HEE+rhpk(i$z|A&9I|*S6 zLS+Z_{+V41sK^9GY5^)y?YK1ikfrR^nG0bbjlbwECjhW#jHJN4pqe_^lTgD4sUNKm zifYBuEO-cP(-dRr5Ceb#4~x;qNc|&p{c`x1R%Y?Yt(M(5Lg4zd?nTdy5?vU~Kc4bo zsA#!h+IG*1?Md?leIH@2dor%x8O<}!rr(_HvuPT+t6{r3v43%dt1g?z#SSV1%I2>GPXvcv z28ofNbY>HuiBPZu`imUjNmO6bSz7OvRcS21QSET;Su#icB8PS#kM<^+z>=&c>5V7H zO7?q(isfy)Of7~|{<@)RPiN|n4Z#>_BZD@&kOFms1-mKKtkX1;e+%jkL+iDF-_A~{ ztnNF#hTelUw~{JJD=sy`=U+*x*g{&^zU}CRfne%itF3YYB7f`U2nf_s#_i5tQYF%j zvIC23kOit4;^NP%g`KesgWpv?0t-iD#OugvUbj9PSzpH~)gcmEam`Tki!(YqI3pcZ z)xAo<^8=qibWA|X=dwj3Qw|rjgHCUo)N3YMb6T_ZB>}Saxf+cKs!K;B3!F+^C*vH3t1 zzdgamaNL`#K-#qvcO{|CicsE+0RH*yNr^j+(YGr;gPHh#21%g;zO=|%m0eSIEhCPY z+*hPma}`7F;{z^7!8$%F7xRjjRtLASEY9CV%4cRN+M4ZToTZ5 z%ZgsX7$1|=t8x{(S0FpO?N=b4|FW(;~6 z*MRCd!_anO3#3bMLl&Y7h6-dPThGADK(zK{H@YQ$^YnLgnQp@sPONo{5Gaq4Hg6#d zxXte)$g6I|YZT zng^lg^B2H{{L`Zz`L&ZOmCpy^h-#W%`Rj;RG^!n~8gyBQ**ioq zE2Sb^{a|eY$a@-5(Wi^i02i+UAJmE(ALG_jJ#DC?ce3z}Pn+S=+@12V@YbOTpvzw# zv9cPvnFCn@C4%~`Z3+FsCyzf7%kc#q#q*vV8?thqj;?)OjhdfHX`@pC8pJ;0){DMx z+jvm!jbxRK5&l9D5{4@3rTw5?8r-m_PYQlmjyJI4o|GHTobl#IrZzg&KJv|WhT2j; zU1yTl<42RaKNnS@n_9_rt=}PM9HiiwseTZaTMORjR>(+@tbGm9UZD}Tn4fMlw)ntg z#mCCkQZi|7{UjcHTEWi3zfA)c@X~x~dS}Q=tm^ZTSv0*w;xacujm1z$%+TgaJ9mU! ze3bU;F}X;%&M{r$i`#$@Tq(02Y?F;@l9@Ixsz=uTKvJ`RE@ zj1fChmi{82TsuUdF7$?>I)fYDVG?3qZ(lR^R$~SPOow@sUz!=7g`rl$k_pZzF{~TSTGDZ{yYQ zHdQ1oQSJji&Avu)%t6jd=P>f=Pz_PTT;(%-Sai(#vGnz}Y4OOew`c*H`_%adY_N49 z9Kanc<%#tbg0)Ybsl;oI|A&hC*lB1#8==?gysn^_E`X&XIf?C!yT36QAzgBvdl*(y z0Jpp+2{AURp<*C7GU;z&q9k*|kEig7LnA5PI)I7}My2lRY&1Hnr`DFjQjOr^j9wy5 zqd&V9ZG;No0_XhQW^F7;`c)NguqQX6N~Xhf()Ic&@caGUk#MpVf}Z!&k81UFaA4!9 z0765H$z=v&C@Di+QJZiqt9FdL&tH8wa&9xaHvQr7-Z(yDLnXZRr>V&fX~~7 zET20ZVi^ov0jUtKp2)17@F0WlNl>k@v;nj_}o15pqJt$*8;@tMZ+e^yp_- zmD%RvWqLVJ#R0UIEegfGx`@15j-k+vPmRw!XDU}Hh3s1Z1|t~< z*{BT*{kK=XYsvX-psy{zmYCg7SJ&CoVb=6GyXvgA|DrHaZ`^q+&dn}1BBJx>r0mh@ zGWkriH^;_ETo=KRZ}+3~(6oMKN<(=rz0Pd86VVPX+>{mxeT0a>K)Dc2w{{$akOAGBj;H zVt2&S%NH`#)PC;b%aiKleu7K}JhumzquIID{?Xl7$4voMF-D z;Scw#`3bXoFrvoReqVk*mJ)L`tWi`nzM=bl5@{~q`E~wies57Wb4GTEu#gTtSV7jeZ zR}F>ECz1mf18sLQVd_O)mqNbysUuQL^lU{io9KZ?cU~~uk!0&_3^m16vPT%hI7TtE`yR07ZP54=#gy#Mt=t}H_g$i1-{-2qF}Bbm2T)#vj6!?f&2R)Lqb za}R5bM<4_jrOBbeDR; zq<@i622mW4pq3my@&oGq6)fzn#A;6x?#%|vHjg`+OuO&RHj<>N3q5=0$)#1HD06e% zvy=T$RrQ3JEIzm}Vaar`mNJ@F5Iq=&sB6>MFZOqJ<}&xQQTA+p&z|olP79$*ThsS1 zQMoaLujGx6L}}jFtT^p0%6(+|%07x5&gN|hk}x`hFU=p-4*`pL*7iqi&I^BtaHyVbN{F$#XIpQ zoar2{?O53UQx+qO1x$ItV*LtY=f2rC_DV(sK3vmCtbm*5`|3 zg_bE7I-~8BXl?KO_#hVIYZ|58G(>X`=IwQ8^Oga z8+ZD(Z<|Q-8f?7!&nqw`0*08A34g7}0!p;uEBUojQ5dYgE@AQO=nG+~bOf?(I9wA( zq2@;=_x(b8>9I>P+;g?jH$NE2Syf#ve;qpzHUFCD7};RAv%6Gx<@7fU4oqmmi6yA2tpf#%fS{iBst4OmWk;lPD6uj%wMRE1d$nF zhj49;BKyTUM@eB0|2+6|3U)ZglDX38PUmMJ0 zsjnRJe$N9BFj$|5bLBfB_i6$urA+bYucy^9>n`9uNyhSlX}z)i8-jub?n{p9>hl*J zxs*~)>?o#-}FH*T+mac7$Elf|aGal`5qELGhbBt4VOM+Ew6RCY$Jc;?+o2(jpSvG}XzW|Ch{Tbs z`?kJ3?uc1=xIrin3b$fYw_NS@pO1{Y_K%&Pe@!}C$C2-(3+5$XXu1eW+Hq=X--Gd= z@yTW{cFk6sb4Z!I?1-U~AV*C}RCnTO8SP;xAGb*sfOxzb-}WXQ-jJNyKzY*8O}R4E zz+E{71-wuqhFAnl@EMmKMty#{{LaR6b{9H9Tb*FHh@*Fk;j*v0oKcGkq8~W2X;nn_ zv}}dMnrCpF{4_t?IHg_@r`o=8o~B;0y_SbDJ^Xp@r+#x43C9f}Uu$aX!;7jlCJ!c!+IMo!LhA z@k2Ahv9 z`@BaS9fu;XCgZCoB@XWV{?jew5z8`YUxLq4nY90*^2NbO$A^1A&A{34Zvei;j^FxP zAs8u*>^!pCC>(Lrl4{OvD;$e2>RZ}@*4f=|L_sBB+9-&H$c&ul#pBjTX=)9`UlNJs z_L-7fD8$_JbH6U{_}_bh&_R3Y=pHTW;HbHbAL*|HY8w1Ng@FMlk45b7ny zrx*CrYsDYex%!ziSn4VhHTHMX2%cX)=XmPbN{s72&BeaIsHY?@(b`@Z7eKKMJ4rt&8)ouzZ~!DzPXy@U`G1jRUC6 z5vshD>sUW4#DWSW&M7hrCtIA8Qd1)<+V7~-1oNH>x)ZAb_dA)J;?%cLLl%F%Msey` z#Kbj~s3mIMFG``2b-#4lm~nr>2!;QIz>j<@R)zA!dXK(b#mnU0Y^D#3PnVbBA6;5q zOLRhMd#5&i{8Ow3T~K~%YOJ&LC$Q<$T}2Z$xy=!ASnTqS zpMgI_30!C8Qv1{S$y6CMz3&n^P&W-YPrt;Aq+}FfkX@-6k%+q-LlI>Bb$U7;74uz-S6>`S+u0Os0uMl(Amr2iSwZT3=QCN@sA(>*^&lpe)<~_D%I!v3j!_T{ zLMlXUOhlJ$61Tg-5=r0Jr`m2P{w{O=E<`}Gq2Y53KVF*BZQDt?H!hz3aN(%Yg+GX2)-u;`qOF|u>w$!Sr&-JSTcI6bRTI&kdyv>QM0;k#I=%7ix42N;E2I_c zCo$i+uGuEzPFi*_Oxra_Oa9H9BD)mzd_@^GwI{uC3=TbH8m9i`I7d!Z$)e_r7Hx&OCfXN^F6I?tbCbGJWb3&07;vl$#co zoQ9sC+!_Y#FRy*%{oswte+k_BS!h>uEoP;c4_x*<7Xs*v`yEzWHA$il> zsAR8zc&)4#KnGlns_H>{IkQPptB0U5Spqt;DtNP&k|?G2ZEWAeiUaZj8UVlL(gs$` zJa5=hb?sgh_uxFLeeW$*1Mk}y@I_#l6HXuw1l5PBOq#6IGk9Zz~Z5Qev(FZXYiEuDwiN3RBY4V<+b9&2(MAZu%c?Ive zkV1pJjqO~12Ek<(2XD58eRX1`Ak&1B3CGe(WJp^@dmUTS*Triyc)lq@aWeqeuteYR zko@4Pj;nV8PF)Q?Bs8vTs|s$_g8Y^B0vUSs(qd1JQwL1R(|(n&R|QXK%!Rf?H!<3} zN<~gc_l}YeXJ|#-Uw5uwNWDIL8D&xeJRriYBsX>1b3WaM#RWteKXqueFk`5Tsu*Z) zm6UcJR14DbOI8#i@9tjh@ox`3qp8o5-Ap3wE?)wZRkYkC&Rz9yQiUCVbXwDQ6SrLx zj?NTNstaUDgqVA`U~XRagc~P>Uo+gWbaDmz3|(_j&Zm5|XexIsD3ejGH_woqN4TNv zS`~*Dqp0ZIf$p~x4dj%eca`t8R;eLL+?y!!r~J<37K6#5<|XkqKc4+*5~$LlB}7>s zjzKrT$uJ1H>GCI;%}15TLJse5?Wyjj7;#Z^d2(R#A|9pJ&sr{KO-hyYqjQcS)@cAI zRjib!LH#Bj@Cd)2ZwI*cE#SIKP#+6&nXCadtNS=uQSt_<9!>kwsEoc24Cju7b4A;u zMt%71)Kn&CM{CbL+<&ONxIOl00Is$2(LE#R8Fq7G%XhiMP7a_$>n*qB&6avybx&5$ zUqsOOZzzoW1JXK5;H_Y2y>fn1^=i5et+8g>@x+u$e;K&w6IP5`U>1=3}Y$Mj^sbfOh>|ajhB@cz>T{#k=6NZPH$NW_upukjxjGVnH89=lozK zq`4B$9vGrGv_cVo;@-cot*g`GO6EnZSa>mbl-TvehV1jspa`aD>twLhzUMOW-a=;J z_hW_mxjlDU5x=0h)ff6a5=&Ly3|GE4DRV}@h|n4@r#806PJFRKu`oYNJ(#KCK^3{p z68JaYS^VK@!L93tJ3>}~UZs2=p)4x2DgA@f=MOo0hb69YedwP(;9}Hae_g;`k!2W0 zQB)2|<_8Ftx1vIFLC42|pRp_kW7QDNm-XaGh`B%G1Kr{suG1eYZ8!`Nv4iv8%<{XE zVwd$Dw+VV4LT%p?lfrb#lkFQwoRs#ZL(8S0D`E;GI20dp7mO++Hx~^>^<^1)Uz8xe zweSnscI%wM{O>(E~aV$fIMGc((DoBOvYNbqialh5oX zMVB_}1T53=S&Pf8fCMavh^3c;`QQbQ*AkW!rkmM51H$1ri-*Oqn=PHQk4dzP7TaYS zu=m=fia!N~v=7K{aLx`Ocg9a|O$3?M=$4`>I8D5=F#}0d} z8QLx2{m5LFfjGadqj17|lNkfPYo9uvySP4vPapjv|6^SNb z0CH8}1?}5RpJAA(=icSnlavW#!^~l0x!bj*i4zj>lS0tVF9hHzeCd_5uQ=h2*e_Yn zH+|WDM{X-OWb&vfP`?U9g^kv=r=!b>)>rt}s<<}7);^||8W{PywLy0V{<;JdO&Es0 zpZ|QL&cm<=Ok-a4 zTr+TPD?p9pWlt$7{IVR=aDOzVu=J&|Zx>d)byjhgylk#~!}Yjw4~LpNZTH#N%0cO@ zXMu(wW!d3hdm|-*!H7pL3J!A$n;0Z#x*+X!ZQq)!oE7edO8k_@o|%-4bs`RSiJWEV zPF!euM>RTPx4^+ReNM}6L2x{9-Ks+!UKVF(rNN-toIYSONHOZ!Wgr zvO3;CGMa+&Pk%G=Pa=xR-a1-#Vg!Rin>n?MM7i0SOjecx5+1h@_Z@t9=ijL8=wkrq%Ut?2Vez zxvZTj)Ab*{)#&e;>|W_y4aNiZagqQ+bqjAs2X47Ji(b12Qe4*}aj8Yh$?T2dI}S`DpD;={Wt@ThTfRP6$!_}X&aslQ@b50>=Sc*Oby ze6>8B^tSGoap*{!r2bLhG%xKQrqbr`g5QFHVt+LR%H@o5*e)w$1P8rv=2n^~YNR^; z{6uBctZZ4Qy<&B;7#*Fb;X-)5=(Vz`i1YkNHVX6k|0r3+)>1 zt;HHtQvyRFWy0g+$-G~6Ow4pK2;xG_Lz@kDfLeaIF=#Oa(35_{OVvrBL?ZdxHlSo) zT7No=dQZ{idPeISG*@Wak5^$|f#t3dx`WzPqVJ|RY$-zlyp7n@^KIMm3_%GCF*y(;+a*izv`<}h%e)5eqO?&inAP3g14hw2lS8E-r-s#W@@ z;)V4TFE^n%b;<;)H7Xzf_EGpli-%js5BEIQW3@{>9+@jYlhHL5siu1E;XK0ex#iV& zIPRCyWAuSZ3-CCKIOd3{dtIQtUptf_Ht^QSo~2@n&x4W!h}S~8yd^0-LqYLCaDtEk zh=uQxUqs*s&K2L-$+i!Z)Ur5Sam*YN4T4#xP2TM!KzCXa%OsI=6=&I|8wn zw?~uptB4f~Kf`+6wh=sZ$jJY3UDW%Ek4^Ohx=1`jsf=3TWf2L7KTdMbwp+5$XD`kB z`nfu@(RrNb^YF?k@9-2jA56gb-E`5U*QDx~xlL#a`b!YOQlZi{_|^6$SY%TLcyQsg z6Snr;BHL!Jj&W&iJ2Dkd^!_QgIlAYIMo9~ko?MRA$H|vI<|4f*c4Ct^ZH{Td8af3RqW-+W z5Th9CeL@Rb>8lL8{$^mFsrTGlTSeWlFLg)Z`ovM5s^4NSyH_16$1he4t~BPD9a;X> z+wAqq3+%o1jSP9|@WiPzMECPix2j^~E%Cr_zpk8#OkSH#1*ngilkm*;wc{V92Y}Or zofwOYiw_roOKkqvT-W-vQg>V-49}LuN&`lAxim+$4fa&gi&KvuJYe|#UQR}1RLFf# z=O0tSi1X)zdnr0MH^0q4JI@LlxLEQrk6hC?^9S5|qLN8GsL!fn)j=m~Z#?g<>00j{ z`rDzH{D%YXo?}gJ zyVOwk3Z=zpRJ}Y~gY7IHjT%rmpCq%WY?^w;P9}{j#*YBK`7O0mA>!2VRoTig{3xro zwsx4CjV%y{_;&%9^T*ua=DB*){k|Jq)kj*(vq_1$+Yp+gb8ixiW1EwKS~1r>6us@u zCjS zG8@a{%e09+U#Ny{Pf8O6HsMQdRJ)1R(4iXOSFb8>y*d7)l#>Bs*UwAa_5_{@ptkIR z+E~hz_4&Mg>*)|pn^^}1HGle96+wb@R?X+rg-}Afjj6$=4p2Qd8-XgmFCxR?V5z)F z8!I>gVBGi;W}28M^KlxoJt$}$@FPL`sIm5cz7--dk63KPy7yxuZ*O(x<_5FU-+K-z zyWWCHU6L|Cs&r52^JRKHBWw`=9@MZ%6Zc~R5$jfo(B~UEQ4bWWH|iN*?kTZh{=!$f zE#Q90Z>m@@R$@PwzC>teLC1{g>@5;ED^vw;v%O#ZcO!p@5$Z<7>g{@W7s%l%{+WTs z266#FCvp0HFcHREZ$8^O)qAbMY}qiAQ50fj(m^p(>6r$gvu$0qn8V%LK?mBBvZ_}d=HD6^_?%(h ztX`;(u63~*z}Tq}P4pTSVx#(e@oH+g?&Ld92%)+z&Hq$lQ4ES`C zbHwF?{D{$BJ4Zb?F-r@WN&PNE>~#a5PbhiPQne~JwaQ1Y|UhB9&6v!NDLg`><{vWN>cvr>A%Sgw50 zG~I+bhlQ^wrF3LZ%YNs%g~k5kM+ z^S_1HH~ASgsCv=&-Lp#lR#AFBzOiHp7RIez!r>6lp4bLC(c39yPW!#`BVUStM+1%2 znDgsnYX_g)Q+XqMRu3z0#d!Xs+9;FVvsz<+4K(`4&aj@MYImc0EEmoXTK@gvtrw0g zs7SvFvE=!W>C72LSv*eiOgC8j$-jl3ozwx+;gsC1_uu@_Q~l#4bbO}l?uY*)G9z@L zSrxJrb_e>;Nn5F3&C?AE2b@a4egF>?Am_C)Gs)G2xHfR&21fFe97ehm)L}>G{`YSr z<|R)1@NRB|BEZXCoV6aStjs-k;pSFSrm8zC$#o`q07(@7ruRRm)XoiShGs1XkN6N11If@$;jP4Y)k6*^pOE zrT?qUkFe~2BvUfhX=n%IwPd*qu=;kib<#uL^1I;iEzY15XPCsN8CF-nm7ah~+a!uI z{f2TUThVF5Soe_zXy^nT+KPnN`CC+J2AZim&H(J|ApCc!?o0E6yQq;^P@B+-?SI7o zua5vf-F+#<;yB#KkdL;Ss1>Vd%z>I`6H*b zo1QyF47K85i&tKBL+H+-$cfpF=OEe3P*u8N!QC-vdarH8el9kX@_;Aks#}sO{n#Vf zZWK||&}u%QRqU^P=9Km}IwR`}L27xfo9S}x25Pd6onEhTlT?OXK<@6GUcqcP$if!? zt)iC31laqhmb|c&&jknXOUAVZjWX@zoA*VwuD3ZAQw4C<3zX#N%5Puw*T|;fzRE@o z!lor4w=hx$pnu1HA}J&j6Q{(>H}EnrJg(8!K3F#{l&Qv!S*|Mh?0wpjnmn zs^WJisi3VZC$**&&@O6*or?58d?an{o9!uWaTPEyfMvB;vTCi|z}|pkYi-G20Y?ZQRR| zAwd^kaX+s&%4x9u32hRA9?OycKHHQ1+FkVj|DHkDHk49~QW(vU7Yq;!{7PjJH@!)% zNExd5unOb5=Wu}8Ya;#NIOQa;UlhBFEGPwv>oMqJ$34!LzA(BxTsq=f*>;3XLtU{|^U{p~e8 zjz^xVYJ&lXylA1>U5ffN^H#hol_ni#8811pV2Qsr=MxuwB~PbO{v`ANsqD(*lH9g- z<&>71nUw?5X|gg+GbfztST-rvY0^Y7Da-@}=h@22a-xoz1A>)D-h@)Y~W{B#IIKL^-tmOkZEs9?kZ~dKHm#7`+Dzujl zAQ>IcncEIA^_YWOzFGPSM5blunL3rd5=l=Mn>lqgo zCvtxGyI}@u_G_=ba++9qp*f(6>G2)7N*?Q_3SHA&}Av3yqs;F%CGM2ez z{A{(OF<#61MRQjFANXP#v0_PBjSGXsIVMpxL+i0gT(R=bf5z6^TjWBhPL&W%9PVUc z;QQYjW1?#tQ`mYQpCo}8?gWkhSl3CvPQIon*k9A}Z@cdryk>$O!L6Py2e`~;oxMkp z{+3366Fw*VSu2|*D`9ucq=4lOF?FBx%9cUt^~XN&^Q{|W)H8lO zP4^qtz?POnSh;dZeytmBVRAm{qH!|M*puK0@#uhvPCA_iGrBxSqsqY zw`U|eOp+7vv1z|w9;QBU?mOagx*XvG0AKvxWw`YQqC50)&OJt?bbq!Ht8b_cZary9 z6AZmvx!DY}_sNstOM*{3?&6*9)!sV1eMi=oD~K0288oq?=_3G;xQyk=`8~LyphG@i zOK%g1Gm{32IOJDDWw1!A9;`eD<)`j4Dcac+_*AbDn@_tv9?Z|zGWY+c}`~aAEU~xz%yL% z0StgW@i=!j0B}OQ7m%#@+WPEiZHpBGWz`uviKRc;v@c&Ni8m!3w`R>x zU)WFAG4Ru>m^0{FD#UG8CBlsBgGO5)|Qsf11KDD z>zt;0{4$%e-UH~fXPB;NA=v*_sWX{b$6LB(HA7FEKMHI8dIBaE$p?OkJc{j2Qtb0u zLuM*3km?O+oIc{dN(ACWG$II!^`>YEW`}&_1Kgih*DC~oApYmqxsx?VDjLq2;IsZ7 z&JT_OE>71}Uy4OrFvpZ=cuAq`ar5Uzh-)$IbOyxWV4P<&yB2L ztGJP#t1%eK0MEAVCXYrWx0t6GX|<=_x$wBX>cuMos}#LS?|ti#$;!l(q?(!Njhrs& zx14!jDroBjy2wj*q9X?%ZNSNBaPx68#ng_}RFFUAyt_Jgn4?5JKcJ$Q+0qyFnqo?n}6uMRi-tRyP+uA^phz)z< znchwqoBb=P#xyQ$Yd+&hI(NqJ#&15}EWIo?;Yupckn?2VKrS{+?bK``Ej<+Dm9)_1 zG2bo>?`%RFFdnhFKJx0pp-s4wq#SP9+@YilR#Rbd`gGv}#Dmb*VM#)2BxT?`x^%-d zQC)r)(azO0yjmA8?442mA!jaxh%?ByC`)9IQD1$UTH)hx{f9>(7erNld4>xtVO!zO z5$K=(T&i4k!B9-NSXx>1v6NaQ^)<&6dy>w@xW%U)V@?1PmZD^KC+E!-LJp|{6snO+b`83wUgkQd z$005ADbE*GgxE5@YnCJrj_&Dcc0 z*0&j!5J#ZFJB5Yo{?7hhL;&9Fh>h;cSEE74peJg_&*kWcG;7TFKF^%BYGR*s*j>dukbx^*i6V|k}F?Zboi1Dlnvmj>O;8ECpkSKiQ} zMMJt+93MUav5n#u`6jam)0+-ndc@)xYxNEf_Uuj2nq=%;49(S=?L?*^LsYlheg1%h z4%CzLVEhZsNkJIAf!LLjz?S5KnF7D}vnk99TVm_20C8X{)}0xy^1?*y5l>?c@ibcAucI)w%WcAz^-|a^Q{au>@8*V3QZ)qY>&F!M z&+b7TgVsON$!;(4Q2yhOKh_oRk``zW==)DdqIwBq4w+P3rvmy@#aG|@Wj^`&;>XAR z&6bDERosU*xHSkZ9O%34>}*F^@aygE&m4-jZ)`})e_0`)4bYfzY}q%24|@{Mq?u4z ztyJRfF0?&Mups-dO^^V7EWCAgZsNRAPD7;~dCP%6j0uGDP9 zzNH+1a8MAE>#7W-f;}5b>Xh|8Kw}r%mOgJIDU@ zVd1WQ&+VamW9gUmy&I$MIZFoRoDsIpLx1|_OA-N9O%2Zew!j4` zK?G#nB%ts4FDB?UzyvXsYhSe>vIb)tBaihK+Xc;$51{NhcjI<*?-v+p;KwNgF<3}$^1xW2U3VpLSK+&RTmDQ5nR$Z#z8Xb~J^zlL~H^)wUhle6%q>jT_ zvOVzL<{u;FX~E6PP}YMpQ;gWi!2itpx)qxEF5Be=__j(HQ2x0#%ZQaI#niwy7=Rx< zP`c|vicB`Na%-7!V0r_l8eNX`&RPLRZ`l1J_oK|}|AVxR+h46|q_&L-B`ay3Ao!Vl zOnLy1Zq1vNTkVwi@Zz@EX(4a!9s=fUZs48qc5*`irO~gG^L7EjNmsqCgwXo9IzPs}@tzGhbu|c}KheRhyX+aQ$;S;}aowa&g2O*;cJIvH<`9MqM6Nt^ zqEca0-~x_lzX8j?x!r)3T|wr_KjZOSQmCp#mq7iiRTRz0+PLPq8wvJW_SVyH$V&KL zF?h!7-NJ@t7x}Gk1(&-qcPc7SbsDCI5)w=hqpyEW!QOBk|A__$qpC%1NL~%HzUHX? z3|J9ls(>bWW}PQO{KNIP5PLLVCvZKAH+^9RsqDB^W5m?Ug3J_-QE$a9iiB4}J`}3@ z7a_VWi(UBn{54UEYLFA9#DR8X`sM4fa({)nPwt4#zBQvc9Xkz(ng-5B_^9Tk=1Q8rC&o6e1QoBoKQvcv#M9lyI%~>L z6U6tWnWlGWV$8}S8(RH38b0t`5=-iED7ENcXOHUFA;YwPM`IthO@V;a*)5(A=RV$l zu-PWTE3E6!Emw8yQWXa;D)Wz}VkgZmue@zBS+aV~*@=FkNeD>PexNOb+Zxmq+!U(a zdhuWuUUgODlpk&FW|6}j6P2JF+2l86nuWl=L%d|J^-Z&BQ%9Mnq3k`u2E~@3%o;lf zHlk)oP_AoT#>w6r;vBrzuLG%pPwaqNwjtg!haFOeOiGFD>986mqa}H)(bLJv40_(n zx^UT%EbPh!T+yD1p8tkKkyUTeXmE=#yexSqF7?zvyLoT=nJ2D**o!W3qQwWt>DB8j zg@F2$+A&{I=eS;X-qC%Hj_Yz-K4+OA9ql2ogwIWP7D6cuvB%(<) zj_aRUyH+EU^ZE)dnD}VA%}5gpW$pQ+;0cRZZ`+nrb8Ssok~@hrjkTI7eK%Y|d~3u^ zLdWM=G*{ixaHkx_$I)C2=tgD4fkxcmRHN7$pJa+*)MsWaC&kah&r0y+VjAABqlI?+ zUmgtdG||zK&!4%=0OzO2FHx^rhWn4nnYVcClaAkAU*K_Wv)-bfbX+q2H|slnIefBwu( z2suxI4Rh(O20wP@j1)pl?QY{l`E*ru-td=}lq&@0a8U3gvn`5%Ay@&u(`}4lAvf4h zHH{>$N$*02XhPlNqY`+$g0i-3BC6N|NwuH_VOYw5PSjie`vK>rQUrll!t7`mGWu+S z6}j^K_h$`-)N3e)bcjfOzOblnWTjg4*GkVN%k=*Zuqps;tdrf}L@*xcQ1JOIULqdE z8Y|g_SFVUaC&n6ifnS~kZ+K#dhgB_o_02tQ%UGOnWA3-jc{B4`U>Hwq?g%khqhkA6 zP?F-K(mwk6k&e@E`a#8zkt!m@PY9ODsqvj3-!3H$fuk>py38r*1`kIo0{3oS=Nr-_ zEG*wAN@M$vzEh$F&z>LYG7eEMX%b+IEL_SWGj6fUK^1nHrl7WL<{6F)5cIHW!o05$ z&UBccN18PjvawkMY2*yYOj@pM>rm>DVAep4h)?t{DD>F%EBFYuxAGr8++aR6xP5*& z06uVGQ}}K8;#?psl(z~N0AGa(Iv{0iRkYH%7aXULsQ-4wK$Uz4vT9}G7jHunS+<3+#$jL(@&P0S=+w zSV86E=NIR43f$`CYHMp<`CaA7`UvTr(6qa!pW5^jys8CWb+AgzQ$%=S`H*Tu3#dPeTI^AGR^8 zzh~d{Gs@nmqz)3t%Z`QY2UNmMVt9^5zswu4N%xDM*3bQ*+h*j{ zft|EYl|kvjB@ntI5H=ZOM}iA3c|!d8tQb7MUg7>y&#-@0uZP?}O4B3Xny@#?MKY=Ygge*OC8y8iftkW!@%hVoqRX^Wu-bx0JLcr&f16KgQ<42%}$-lea{0B?Md13$n diff --git a/windows/deploy/images/sccm-post-refresh.PNG b/windows/deploy/images/sccm-post-refresh.PNG new file mode 100644 index 0000000000000000000000000000000000000000..e116e04312ea8461b6d165350f3ba734ee0083d0 GIT binary patch literal 393831 zcmZsCcQjmYxBnm)MlaD@w8UtM-lGQ*1W`joh%rQuUVPUz#TJ$gp zMvZPT_58f=z3=zlyVh^7b=I77{+YecXYbG6&)&}yZ(^iPdzJkv2n3?l)zLBofye+5 zh?Gc0arp)(QmTFVLlR)7tpTe2acleXf!s~qP#pwnNTI`E%k@59R7Auce+?v95`CEYKD(~IL+MuVIU|ozODA{y2%6ZuvjE%l2fQg zsxFVyVSG3R{9@u<%Oq5_574~+Mq2prri+o+_!Qkzw3O#4Q}4L+wnt=o%4l;ywcXsXQ30ERg>yMj6w`TOaoRWWCv=u?2_md z%bvoSaZD6@P>;ivDr!bN%Q)^?=ek`Rn|84ha4H+bzQb&z(S!wnfR3WaJW? zH42pFI++8;#T*$;SeHwGJkoc*?W{A=PPzJ$M23FpT~YA06=&t=8~8sJ|HAHS|)> zC>+nL5GNU7dc}6kMwlSnzZc%}gSSFluw`r{e(+d+i$>F1y6KvqaABZp{XLo~RZ~A< zsbR_7UJ!cb+il16;Q=(|EHO9f{e%8Gu3qT?z3_gn`ni_Qr0Qf*Ld&O(Dkug1wF@ z9AMbmQ>OLEV~C|{8jGpts=!*}Mv6RvA11iE9;9pGx#`!%?0A3pLGd85REdiacSoxRrxst)@| zi0|i9Uvn-V(dp7TQz_D#GvE6ND?j7Cz*YY~Xfv%Psd-IdxO>ao(~h=p@l3ORk$t#` z6b-fMds*!|I{XVO*mqX#YNOMIuB5H{RcyV79w6rL3=<`{4s_x}5sSjZrLckR)+qGr z5*h+WA#+J>A#CJ&Vnk-IZz-9vAkgKEF0y)Lmh=Dzb`<9feI~DTk=&;{lLPacq`!?H zRK7{7WA;jFXhWSpt}jRHxyJE5)$kQE7SD8d;LT0I$zhG#^*}U1Hw;TxKG$q^Mj;Cij+xr0&tY4VhJ1N-CQ?&UiMrhx_3U1 zd#Tp%_syBAUcBD$&99SJ!#BZE=i!S=IX$?@PvTEPg}Z9Y@6Z>4&to4$dQy(4;`PgEVGBd4mE6EuXdDh0s36b}TU|-}Jwxx$E?h{g|N-?7# z!c7;MhVQ36Q5ynxIQ-tTRD8ITb)DIEgB-frJqZR^Q`YGRa0;@ynLsN=;h$6&sZj39 zg!yYw>VtvsvVd#qHiPFH(kx^}gyqco#Zwfr~j7KN7>ZtrD_{6d$3M&s&@?i>f{o? z$S?|F##MK>PY-&s4s)}s%99k}_I^J=PZkWhiLaS~+EwJ6(;$T!=Gk%EbB{up_SI^H z{Bh97{DRaF_JZ;jdtUrf^Q}f#g)_dclu2U6A3{c%=qYln+TPF>-YL<_x>O6)N|-If+mlqg2EHLO zt!Y_jZ&&Qn+XD^{^GH0~KAW_P?D|N+bw&g*@7gWf?wg#OXVs{|%;06}t#%px>N-&2 z-Ccsi1d_&(=nL~_l@VR>H_FKrkzDGCYuditnf%ENfM#;(d0zyB#Vv6mn_u*G;p^8^OJ}u9 zX{IJ!NzAVP5$lnQS#%m!R?@kX$t`Ufsdc470QQZSHrb^gH|Ergii0>T^_LDq%%g+`0gdcP&Jy_^!3^oae)3GcQh z!48P==?M~fQXE&rUXKC4r?XXwB~$n#rcLz3#n*3Jked;YLgi2CMY@i`j6;G`xF|f? zm=>=a@9L48Ivj-+(M{zUx=&Muzixsc6H1kv z`w26C$aWiyt=Od3>VG>RUVI*{IE$9!NF+q<@J@2;QW~lG9p|eKSTT!;K5ly(0_>Fk zQrLYtF&+|PA4}|B_4Vcd+wnj~f>7T>Pe-0t1+kR4glMzn9qEtUJX+`eK}N;bze zpjrk}VW(%QVS_I5EpdNt?q%%-{3R54v~LPVJ&MNK_w_`l=k3KHCn@D8a93 z|0H>sY7F$ztECSTw(l9y#$Mwx(C7@~=t@uIqGJ0ve$;e&w5O}_HB3(26#Uib_h3sn zxrXFVqY&`-8>CgtSJPflXpp7b#9)WWpVKjMM%zZIsPDERPZMusEQuc4G?ezZWp3U% zL+aIu7aFG>kt~r>k}k3=C|=Pp13l(a-_4Jkc2NyrC~Qa_caJSgqWdPAq$G4b^-;Lg zAlnsE!lC4(83U}|cq=vtYnsAoChY)*rIveO2cF@-<}$*_`y_n{R|L1fco3mCeMMoY zbT%A#j*^7Y0c0P-Zf;Q$(Z4PY z`xjqxW-}&TH4$>Z5MTB`NwS>|@IQaTo1w^X9_=SWP52Oh5Zs=r9=r(t7RIo$8ysQn zHu+fTd*esr5Wo;8wzcTXvBsii*}{bgy~d2E%+Jb;ICytz)g5q=$Jt%(S}gZmjl?)x zIRdZJEnI;(I=J!!|HSMca(mh{c<@eI$wXv?B2%-{* zHkeIccYnKlgLgBKwf6-6tqQN^j`!=axxuodtwXWb%l`L3*FEmo_XvahiqiVPe)!>en@AZ3WN4{hqg$hLw5_*WNL$iG9gz1}5V?Va4B*6vb;~itk%FdY; zlPUVpMZxWJ5>4cHu6{-@<6ww#X4vmY^yz`9W4kVF8iTyjIe;Wf^ltOsKEH%urYO}w z;JKkS&X4k;!^nK&(CkOuFuf-Gr)gWLyg`x0p4__nMahA$Vs!&m!Vu%r#$EJP7!B#O z_S;KKmfCHC!dB*UD$)S4Jh2 zPWk>25OGTRM=b;e)>eFD6ulj5qeBq|;nL^NZ$-k)138#1ZlU0}UR?vEoTs5uxjlM;s>aDSjHg!48->sw*!#)`Q~%IgZ>z&m5*LyWh!>m}UHxtZ#X=A#(tB5>%ghAUR!5EXi(I|rH}Ir3p(CDym!(M@Aq?T z$O*B6)!m!^hIu>fV^>!c z{PQK#)9+C&v^p?j<)Rkbuc3<)+enowrRnEFw`Ii_RLR}h=Eq$i>*F%Un$X;r;E_UN zS>TrK4-=_7l}PVvHb%}J)`ft;bFSuy^(m$ws$WeXr57wsoCiU$DhPVuLuuf~f$U7t z(MWVfrhw-0QvEvoBUfGTpY@wFALw>G!AXIUS{v4`Ecd&;unu62?0eQ2G$oMCfsJWM1Z zm=a#S4i~&EMIclU6EK!}sS{ZX&7A3KWZKqmO+)uX+%lS;RrQ;zjy*OEJ0 zJ`1{sHdlP8N%*0f{bHBtgv^x_QeA_=E-2;-AYs@L3c}a`cB`1 zjrXmGZxDQ_px`S`N|54>R4(qr1>|+?=rm>FuAB4IM32o^b)b+A< ziJnRf`yA;k-Rrja;ML5xr<3#94Y2bbSkU@G+G?uv?O&0C1Vcz7mU_!~_JZLJw&oAQ zl_M_c=gJ0i<;O80OPr5tTl-iU^Y%G)%?L$qcf_odxhlBsViYX}v!%P2+*eR|^hqfz zjP=T)Lod|I58=8jmdfBkaC++1XE(qF)7KT4UFG#KqA0R(1QdS<}KJACZy~ z0g0+D%`P!#B5(Xi)tnVJ?OX{>bJKesy+{>!dhC6~x_;ofgj`?~MwDC?KW9NByF}FP zk$EteQ@9KO#UXmJv^FxGQ+mbX#e;CehfZ3w6BI?T zLf@dnKQrAp-|E@rv(#tHd$Y{3mbhO;sVADv<6#kj*WOJQ(oG!1L*?Y^=sk=P^dku- zkg_*BesB-YXK!Vw?H?$<=>A(?^xRvGV3N7UH+Zvo+9Bxa88WjW`RqgP*!QXepN5aW z{cOwE++iiK!>5nI2}|(Vq4uR4e_>wD`)WIRPry5(0l!%^us+;@7XfWP4_SA!Q@7D_ z1&C4fCiWAjEu7#Er8paZFih5E=sUC(xc_7X^pnVJ<0df;Le?#T4PmjyJp1!5$b4we zUhc=*U^!C}baV@yMPr3`$0IiGTwPKz0PEQ}!U|YX zGSrC!dqx7QNLeD$_meJ+^)N`o5Y8$NLp-2l*o`OKKH2-qHoC>VIx*;UHMiRbA-jdl zk&XYnMM>9i>NKai;L!)>HI473Gh~ zb-ry165nFOH1_1Qo(pfZvs$CezCW{?ygrHP*<*$3OrtxyqWlS1o!!BMrBAyCJb>cb z&V*k}c0P0_KFfy}qOY%uFnLR0cma**KKPPv`$NO7d~Po_qbiUW*j6T^n4`L-4M=g? zWh6_1Zzwe`hN8-=#H~Wx7hj+@tI$@VwYD(V^=P;&9rVv;rRKJ*V&aC|V_VS<|JsXC z@&oyYE%eL#H+~8|A<)Ea!eSihuUK|j4y$T?ffrp{?DZ#Y%4bvS;<=S|;ibNC&>Z=f z`Sa(h-zO2QQ#qZ78G^C2tIQO@tyiWhv4X0GBgMof4Jhl|z;8qwSXtvN7Txd*jYvP^ zvt4oeX=HtF9D6YKkRZCb9TLSAdF{5Rkr2h4qeSJsW&^yT=jdETV{c)LOxaC@h&Axd zm=Q1t%~xuQ?u`fqy?^mqqYmE|?FHj{U`;;7PYCTDk66>eF+c@Pi+ll}V?Zi^rjPW0F)SpP?Ub zELzE|zWj!eya~U9Jxlo7NATL;d$2f533pvFX>1t@i!`11X0_c8~ActA>)ZyqrrApX8L46!~o=&Sx1)~nB1 zKY=xDSpACWkHHcuy|g8BLm!>32h51QoFufE&FSudqXCbtR9Ih1*r9zG`tTpIuKDsw z`FFgpfRbXl?YEK`-KJ;ij0-#@yz5Q7pmzy!#toEMiJfw@*X~vks8Jme;IsNJ|IJ1P z+HHy{^C!(S54yxR5}K>K7(JJtet!m8j>{U+l5SxF9WV1JqrjPgw0f9qSyGvZ%LSlD zHf!;Pq&`uJq-WK42w>DD23bKWUm{-wG;eO?G07DzGB1q%dbHQw_H=x#gSxXkc+_~! zQ|vRx$qfaP+#kOlE{8I|E4MNryYcQ*+W0B^=7Fgz$+-d_9Gs=?E#>ZO?Dd&r+l_XS zwh*B?5ooY_(`{{R*URZVK-GH0lX9u!hSx#SM5E`KShzo1Q*F~Prq909PsBtAc96vl z*vSXRP|pwNEKipqxQR8{@uO+N2c}(I`;;|7&w6($b|(4pyC8QjxeEo!dbjiIrG!^k z>a)NLv=yU1w%NH-&_TS~jmc?Cs%kLL5_kD8OHS*hwuI`iWqRf+;vpjt2=r+xp7O|d7?3u_qbguLKu1ul75zVwawBDVX6%L$XdcS} z{^Ykdd#GcIwFgJ@Wy3(a38~kvXjSSSQcCIFl!4GR;nQROdb+4O$TsA0iXVS|+-#HX z8;f#kMl4zrMup+Tsb~w>)oS7ldAtHMNDR%3S@t7DP=_DhOGN70BJ!2lCbaV|C@}+k z?mPfLZVDpSnhE>Gm+$lI5MrKjAZ=4yX=IYgum*ju3N2 zNVO3^2IgQ+>^0S3Bo`N9h}3XUNHy@~{yHnS4&eu}%lN*1ZS$kBx?E)VDK#k9(OhrY zD|1cyUvMRPOOaW2yr!AOie2@@7+#A{na=%*k{=^iiw^~!ttZ~n|4Ui4_(bQz69Z8i z1f1q2*N#Uxh|wH``&;xB1t;(T19{a$>s5Eb<-_rD?D_xDO!Is%U@_CO8Cqf6ib#j? z4nZa~c&9WpGS-`~!(v-E#@PgJ#5468$^OYUl(n0-@E_;oztEKPH%*20|}lBzK~ zrdj3jw=-cX4~5c4x-2X!Mm`>7OwuPb#Po$qJrWv(>4CJ4=#OE?o$J6CVL*rU=Wz;0 zO3U|q1t&ry-~NH8w?xJ77aRq&r2=E>M0(z%SUk8og(ylAah+d>>9C@+=-4=Mm^}O! z$fUH(;ulS+SEWi*w}hkKf|q+5{7Ti>JD1$etvZU6Eyou6bCX&7_@f4_Q`!(jSOAe! z%+*@nJ)%q8#^tYr<0CY;0>pujmp%mMj57yj>;Zbkn4V97Hf}bJsdAQM_`R#R|<8tR&oLRl_7sSDtB0srWW)euPv6(y)6RaRaHByZh(i^_y1*$ zI5%*i+s#={&?MSm`A{B!DHEybBOYq=VFdIPQJC+WHthL6WxD!U!&0?6R={~Wwcq(c z^_`B#)N*AidvSN^zg8l2s#RZT$j}=M9Tacz%l z1R|l2^Q@;?bp?~|S);8us^H$%=yF&04$C$Qf6SPF+BAXr=S#d#_VGBh_eDAYrBe+& zI)1`ZX?)X~VSYb_EWd@8Lu<+g8ij4hl z8Cc=eBoF3dx_1!%3%PLzmrEU98$2B|2rwdulh2k(?4}rD-Aj-m5=V|ve-LAw@V46# z{5~QmpE%5sCw&kv_+6@^~-3F z;apP0qbB@GkV?<7F>;R^_#+d`4U~`S5>l{s@vo=@${1?JvN2GYu+4)78d zTBYAcZ0%Go9?e#^Z@m|v!^6(bt7x*h>}Vj+Fw~6sBCy|Tkz&7SN;v-#`X9bbY36uc zh369+f|pLr3!ERb*JvBU$FkK&4?^mAqtMo7=fVEP(Twm zz?V)W9|EXW;m>a|GJ{_IMUw2q!0sIbkFa@yzcYbd;=NJapjGcK66T=*-b3J!4`;sn z(yhY&TzXOGh+Qpaz!XqH6t@>Sw{`tFKKS!r(lFPzA_h>2<4#y$QIAd#wB-a*Ot$u$ zBl&Npbb7&t-)Kz34>L?ION;oILyqBiGR7Cp5+l4BM5aW$SK?RvY`J4+Pw!8qPLo#s zsQJL-{4h&e#k8HdbLiM|`wJUmeWbGj8tl5^!Y!s{nxs7}xcup=_!|SE}=uar&OLIF{f@d=(fcB!;rADH#OrOwYIHbLJWlb7I+?zjjAa<^nSC_RDKGK#8 zR%0H!+p)AudcLpi-b7Y~*Q!9?te=lSx&xe$oOO_zcEdWn-75WM2m*WIc+Cs=MS-6c zpxrI|YYd@}9mnrhDx(bV9ZNE%%zj?asDOmwFJAN!sad;as9uX@a283rLR5CZzoXP` zY7ajD!ydn!eY0VVu+E+HldJgk@5Ya_05ZCiMtZh5Gh+zR#bw*((w8MmdO{!5Pc!!=;iX)Ps;*#X zaVv9}(6x#%0{OMuk`s5;vp#F#29+1*j;>BR6cd~^a2galqt5}*r@Eg$A>utUAL%_f zc0Gx#0>CRvNRKlPwEvslPZknxj=M70?e}BaapW3x{u@c{vm>r_$vWlrhfv+?naA*D zEt793gU(ofYw~_Z*{PuRue9!y~oCYW+eQ%@R&n{bdX(Z;>+$>cc z_H%1*GJMCg`s@;o_YC-gvdIvQvn%%6QrVyCcQUQfGR1g(Qf_|oVmx??52!gO88pIe zW`A0P*W#|pdjIXlo-QqZwk9eABd}LE1Pj%4m%FP@zZx$UmQ zssEIux$er+GdElIJ${VU$XM2Lgao3j=T%JLjLWWf#KF~>R%TF??LjK20tJUmccS8e zyI+sLNa_;5ej*W)zhh`t3HL`O_JV$a1y%X9$z%EVzj#gp*a<4BpH28F5)yP^}! z0YVe(zlk8FnGx;V<}+(sXl(DF5`40y5Vq1X42h@Knqh)<*E%}C4P&jykiG3x1b*-t z!a0F&ml(qEKHg^irno`AkekIH-Q=xYv@3M_S*6Umy*ySZz=JaRZvO)%d3GyCL z{ViKT%|>Cl(lDwix|$`8oN|1Sj+^+qX5n3oxzpKa%F2Neu`-1y#}e$Y+F7)}1I3O+ zx(3#cdiO)*^VW)yDA%SMdzm(b5_W-1n?f@s=paXl{k+*S(Z!Yis<6d9vFy!a zF5Rcdxm(-D5f9rj{==plnbsG0QSD?lcW>vGdlxOiE8VHx~O=RqL zsf^nS#$OM$7c{D&&(OutK7r| zXF8G{;o-B8qC1wHRgRhsi?S1I6$4{l0au$&MGv9bIO)>H*n<6kN{T;!8d|lh@S1no zkLmTc9XK&{*>yOUL4G%RU4Of)`D$jq(mMDE+gV;I9JpM5ct^%?hmQzC-Eg&wENTJm zm5XZZ=IA$mqObB<=#Jo${hTCXQtZp)hLuAB2HF1!UwZnKE+wDZvumla51@%vaqBnT zI;V}z7v_-Wrs_Mker$|N5q&F9Qt{@mMb(`-L#;nH>#IfCpWzKF#~QMdFwFn|M?FU84U8^%d;lpE24d!KvW&s4}QC$a{~pu9oN+cC>6BxUbccz+3V)sO19 zo)Sp-nf3$Kpu*i;Z&7yVi3ke>>$c{KBu3)sT(=ONmw-pE|L<@4ENuuNiOs-gT!7yq z&-o2aWiIb~sG3i;3``xbi4paPk%fP+)c>8z$&EW@otFJGcisE^jrUVSxa`OIR;L;H zc-*7w)BL5h?gpdVBLX_lng5 zc6;yXm?Jmp3#cle+S{=(O3wQrI^t}JA%5;B4&_(fQq%1olgXyh@JI*o%;rE+<)rx3G#RTDzz{lbP zf5+t>6L9rA5iQ+)<9R=-1@r8Q_wN2j&UWUz+%9`4L%>P-y*+rTS_AJY{hcWprl0gI z>ZiuoN?hj~{xqxUn8IE8LUjE)@|jzm_JJM$h1yWqSycRspZSBOfj_Kq$h+%c>yh2) z{{E->}4#F)zVQ1^dTD3{;ad!S(X^=&*q z1do}s+C4*%QEwcb+7bEFnZ>91Nw3ALi4fAb9rzVBrM_3t2pEVNsuOJtWE#YN>yxU9 zWlWq<-R9WmtQXdKGJW&e!}s^!b{TQ!L=n+np+1SI>pC2oJPp3Xum(vfdz{|&c@N>G z!9_{aV~9H-vDlJ@q)yVO@J0mJQ`fmJJ%29-Y_{WH|I<39tJ1Y{LBfs|?H-Trt{K+1NhUskP)|&h7qdLvK>Gg#?;C;NJ?%2JBuMoTU7lBL>7F8-#;zVtW{bAs5$jLnsE47IvDU zrV(Q^TTCu&<8)-4`qzuMh(vr9BB3g)TfnXPnVXPCq}~bu8y>N;r;Dv3(?C)m=efm^ znT|BCgCoo?x>s2v~Q?zT`YM*yOM00&&r$ zg|KA1Pde$WNS+Asr4NxD$M|Nzx{u%?lDeR5pi2}_ne}fy=`NE=N;7zR2%=u6PCVj+ zufxdJ;ZbQk($h@+!Vx?}PDhLwx5M}IuU?XB)5)rvt;*$p8I9V{7<@vFH6Bbe#8kT= zO0zbFr%)az4@i45og+gqS|Xj-%CaY9CM5Us7;sOE=LYr%8sn$n>kv+*{qP-h9W1KV z{#Q#`PUT#i`Cm7(vpFYR(4>U3IE>2D&O9~!1!v!Z^sM)GeE|p2^$Y%>xd=G=G7vy? zvH7=G{w4gYJPn}2)rQLH;r2p+%@N>_on>IAIxN{YNrm~ z^i?fq2ZuQ{kC&ZPF8L_JlreMV#DAsBeZ-TaNH9M9{T)3F>?>vE&UbM21sZcuSGgJL zZj8Pb0#pG_wb@)-!hG4XwRy;rP zHc9Hba>i?>-K=TC74uBm#%^i`hhWsXu$%hGFg7Ov!bH-1v8!scin!)37T`V_9QwMj zUCX<;?xQ}qP@6Y@6 z}bs;lVIR`KR_k5>b z7zGG`D=U$BzwdQAAnRiwcl_auRd+`@Hrlglr@*(SQXgq%5fnDN`$RM$9!xxpov}X% znR_P3F8wOSqlyuE(XUX+Y<#x?J3pYxQXbWFDsI=21cSMrRNn8s`l6U1etF;vU zwcTl~G$rhi@)PXeXn8{iUL@w79@&hC%>G8_36^no*y%rhw1S;&wY0Jiyb*b> z36m8wCLZBFxX4h;P}>zVq>;z>3g+I?Bn=mcbcyn1&xtn#H{E4U8+~&Lgac{3f2qif zcqS_DQH%GR&MH+jZ{YPWl;L7l=#TpNO*(IY>9rlGOZ7SX@aI9j_dI=j1$#l$;e@eV zy62R$GSnY(2AQruw8~f$!oMVYK3H8A+LacDA9lDCY}Ix|9tPl>1D7g1chaA_xN8j1N4B*CxSkl&3o zBXd4J&PH^GoPCDd6Z(De6p`mSF~LyjclhapEpA}W0>_ULD)NehNNMrwsv3IogQV<> zO8Hd24KkT$=)R*CA0U6TpwYr*tw1~5%Hom1vhDUoqFFX>9!_CTNC~vT%LjtJj=&PY znSX%Bf*C$i>Q3u@n&*f=%5U0|)NSBp+abCBj-TUjT*LYZ*|FRX|`2!``7UrXhssenr0a+3j)S-|?xtO$o00&}Dkg5ze_y z)$_KESGK#7PBmm2{n}aafvMd(IPB-nYy#br@bQCJ11gOTuLm``rj++J`|w$pPBN;{ zUb@=8TdO|>*dfq%_}h~$k`j7Eo>|dgIcP;sF=Q*71qkl*CvUIuQGzOsY`wkT+@V03 ze5`qf#BV5^AYH@%%MU)|!G3oMJ_EAEZG}+55q2g{^V6Db2CC@v6tk!pAy5UBdB=`5 z3C$fWfkMcVaDS_rKsTP*{tjvK%BT&D3qGt}fmf49(t3*2)Pf` zxT)!1^^n=Z9=^?wi!1DWBrATRrD#F{Z+0)dr7`^W(P?wlu3qN!WR`$id%l>P4)}i5 z@HSL>cb-q{RI88S)jJ~ZA=mWqc3fkf{caRG>*(7H@z)n(Yf~)k-X3+{kB+#e8LTN> zrrC`>321+Yoa8&D)u%SaVs#LG$5JDux<|?K`jr6bN)-=Ib2B5=)qRgq_hPT<# z0YE$uBO(Y(h%wg{!hX<+YV-wu6EZ#o+C>g|@ZW!;!&yycWHT_iBg6e(@z}wEE*yE& z|E?Vx3`Kg+!Gc$TnUnw!KX}QHKGsD%k2q(11=fdU-!!1qU6(gHQZ)3JP zGG_?;o~@Y&{vnt)&(44R80JZrzX7~q?c~P2PW&%d89RSAUa;JZKhS0hn19YMdumre zu0$5}!q}uOW^30&<^wrzWZC^m;VYL1;ol>v zyRfqbw-eD<7ro#gje@RC_$(-AyAc!~I4V=CT=a9Mg?wWOJA(7)l;YegyvJz|egCrH z(tp;nI_Y1{^H94He6Nrm2t;@Zz?VujhIVVNqG9cP77|noR|= zb;g$Jv3X2aM*91=kSyM4n~AvNc#=Ek$0l0Jxh*;D{P%^URuft#+(A-Alh#ShBT%0Q|0J6YX0R+yzAkDht(*Ej_(Rkd+ zsf?T2c~=A7mBzhi58)^kj%ZkCbjw$kknwzb!zR4lwRAv)?sBgFud?zO@=)`=m32Cj z;s>dPu95E{l$DCk+nca#DK*bhO& zc~}$}C>--&XWWh8i?C)DFAE8QK3K9M%;VDg@3Y`<5{yv{s5tc?9!TT6h0U*0{=)ZXRMA83owe%#g0kMIt$ax8lvJK;WZE})$~>${r+M~e1bL5`H2d{o6tnZK;=t@JY!k5D5hR>X=(TQ|N7r_#25D{mQG zY)(XPa%o}9(*Ump#;O$R(G-_sN9OfzL#(<4{!LdW&%{}8OOX{LEG%k`BKMj&;n)vHOO=+=_uK_;R1b@{Sl#gKPzpb6O8zB<5MN?sigt0^0dWaY`gdb8<|e z@8?d!t_XQcOvt^s{vi2p+StqSg8;zSwuBHMs+BsbCS2@J6Jg4zU_hB9e0qL%*aJ|U zdG4?(dGuW}Ou9SI`0;2@)8&%0=QEasYl+g25*D6^A<18qyzKY~6cBC8M4xtT+$4!$ zNJ|X|aR-y~%r^=^?m6}q>vOel3~d(e=`|T@7ji0nU^`io;F*9QaY2Q@SN<2IHyv$a z_?=26bHcViX3JPYw5V#(9F3O&E085y+vq*XdMjRH$;S@%$+1>b=>e0BeO9cMje{d( zB(NV>``kCd?pXErBxkCGI1byDb(hoIEQ0SF1HPr_Zl;K{z&bdBZZ!D&!AF!v5AQmtVLpT-@|^qh(lz4NNYT>1m1tSyW5eY zQ;snQ=*suLQiIf%ij0Y}w)UqPm&9hqn*L7;!{8-9G`lOWbZBm-bW#7lwpb*(;X?+-yM!MZtEY@AisiZ^uct<3<} z$bv?CS#}K>94)6)lX?H%Pwm3QT8PUBtg8N~a&3DZQ~^It$W&YK=VWl@6vxZ#b)R?n z+Wrfp2F>4H#Jl`HL%48lm>Rzp7S{)!JUbvw)+<&uI+D~h!nI1s+hyX{j>*z=8GV$# z-_ou}y?8~fQ=dPT9I_?ppf5e+y)8WQ4jwqj81Mn4rgUn96*`f!k81N|vp-osxm0_x zj4viRo0xb$J0B#zIm=>;KYCk&R~!TXzSsXuXH*cFi}fTbM0pZrP4}2#ERMIw9tK16T< z3^sBepE90qow)E;s){+(ks9}w4^4w|>?14lHFPCuA~ zaMgt_BVVpQ-=(9<8>|@^{%*@2grqzx2sar_1614GaX}>Koxzg{4iCF77r!;C=ugJq zKixnK$c@@1aS*qsM+CUvV^0G{nLiD<#j)%sIS+{ydvWkS%KE&sEsW#lwf~VZz0C+6 z=?N*MbErYlds`KIa>gWEVc632 z`#Zs1Nm_Ut;u^lM^Rf;71bJVOP(-VbC)2~r%XLAk$!*F7f3^HwWBXaA<}C((_L(*S zlQt$tCy+`MCT8?{{52yDUpXIwBp;^CLK?6mzM&Zc7=1^qSzs@%!b8~UM3OEMcDDr2 z_k#3ym1ENQd%LeaV-07QX-Q1uvX{O{s_ocO@a=a)jUKCWkll|gFa|FQMv@lbyM z|NmGDAzP7kEMqH6SyIH<%1$V2Ot$Q#LSzgj`@TmtwvZ*+B}^oSQFcNoOLj8W8RNQs zSMT@d{eHi`x7+XB`m38i&YatIo$Gm?kNe|sxa>fgJDB6Wi9%pOEEPJ>SxD(af4g6t z4e>$6so>)U%-YUg3dR6%x6eIHGfdZEjlv@(o_}GNG;h%zP<}JrS*Ek$x*Syf`X!tC z13Uc#gz%2d3M*(fL?Cfm^RJ?iMt)3AG25c?-os(NJpt@1sMwLIvLwNIn?5=Ry-;3# ziqH{J8A*~I>qaz~%v)$}FpPX7MsGBxNLxm)VfDbP2ue7E;0o7`uto4r4pJL9z{vH0 zQRQ5A_wU#H%+i#-iE3>i?{=eV*F`|~L#Ms^DztQ{4N0B)u5U~b9&E%Nzgmry4Xr0H zcOzdJ?`+Yyn9}*H`jCW5Ce{do*Er#x?my7*rbQj>EkVh|;Um9W=YFEc)9&Aa7NTqw zIvVBXLTf=vTrZv-hQPXn1&o~-xT?GdJqVeUv^#aP;jex(A}$P5QHkgdaq1+mYm03K zQN!x&(y+RFI|1@B*c0ZvikVl2$Sd0;Qw32rc{G(efKe~{E_Zr|>^U9E;%)LvJvndB zi|*W0L>qw5lmDT|cJU(pEz992t!;YiI2+EwhTA+BtTCTDWFw9wmT6()RNBA_S{hsm zB!FskaMJ{zBoPq)?%fZ+T#xByblKpLNZB}LXKIxfkTwTYIpJhD%U_ZCU+Vn#Bd3|U z4X9npM$Hfgp~H^Kq^k2${zp5=djw3t2sT1oD<+aYluQ4{14rIB_}#%PX0sg*v0egW zjg)J&DTji)dcd#|ok1@-Jkrb9fITEZG*(nYcWuMfJ1rnp_xyrepi+ki31 zHv~?sF5M!UtVv{DxoGi1H?{p~BxShnw0=+e+P9B)^%R}&UzEy6w8mU19=n{w*_u%7 z@WESgHMM1E_ct3Re2f?WSnlhF(8yHwK7VWL@We&VTNanTnqu0|vpo3474OH^yB*`? zthv(_l8)>}wzBwtD_r4XO2b?wBGtB(%D{sUm;c>-uC^l4 zMTWS2ST0CUbC>u6H@pCN6R{2%?i$Yb^+|M@Ui(_?^h}owb+T>Ud_G=zH)hQX z=VS^E{n15tr5752qK(=|{8&QK`;+sghMr#X>Wgx7-(9mjnH+L9CN(C$Re0Br#t~7^ z{9>UZV_w49Dfi}-WDL@1i_eLswa-0&1EJ6e&)YkHsgZkN9)eI7cfscMGbP8KBzOY+ zw-V)lM2wY)5D^n03g*^PXrvXMhd9>^Xt1BL!w4cYnGGF0pN%<~_MHb)lh4K4V-fiZ zrzfli>x_Ge!jZK%ea0mRj-Gd&|H#Kg>d(J4I6n!S7kHr$yxm~8c`bR!d8-XY(YRxh z@S#%Soa?g(w)ZEfAb2ltWArc}$(4kg>p+)nH&4kgQ6?4jfUKiZ_=_GnHR2orqBS@QDfL&ptwDJ|b1nWE74bX?fv9Q~tqAjIvPpa4~LKU_&7&%!iSlL2&@>kyAhdJt~CFuT5`{+MYb+iE_eA>;Y& zP

    7O4@S9@TcpH-d6sZ22~VKw-EiI?5vwX4_^kmNy(>X#G%E9zH%E}Hve!kTMcGF zq4K4(3kai_jKR4Qfi28q#Yqe!>g1;$SVz@A_!O(-?^?7Z-0KBwr#~ktN)TVzZo>{k z6MgwtXsxfNR<4V=A)K$;R79Dd3Wa~YY+Ti4LwT}@?W&@xoMo-qzInI8uyn(?LKz)> z=G0!pYewOQ9WetK%qGkFVz;yXO&l5DC2+IVK0Y|}P`;VT-hDE2=P6~L8~ptc&;z=o z2H;805>LBQ{Zwt8tHpy~KW;B|{f`89s-G+AY(R;VP$tA+`eS<&qOaWni!P7B+q)z# zK}K4=XVDljP|9@VMrSJUC@Yu^&6s*G1@O7*TT-DC(ZbA=ivV|nq7ThyY3g1xpmoRr zIn=xkmx>@WBH;yZvz^UruO|}?J5R@5+O3=w zOmF8)Z^0Xn$JnyxwHRCzS9hC6P^r($rP~Zl(mUlmtKRG=8`hLesqtP4|De`rRU4V+9&#QE92VXN^k5PdNE!i zwwaqMdHyF9P7CjUwTwn4*sTpt$hdJc2Q}u^n2St3O3YrnIWWoPM3&mCRQ7h>v!o}f zU8-BpFKT=GJu?Onc>1thZ{7!#$Ad`9yh?ds%RGPL-;EvmS3wOf$pS2(407|$$7Ll7 z_h@$L$E3>xzDEhBWN!9}cZC4!Npmt|`ki#d#CwS^C_KW3aX;R9h^3%2*OBFx^-d(l z&)(+7glpK|nr2tuCn*yvrzWYMMhS8%gFBa*aBk%v=%t^tM1JX(&r3cq&I^ z?D4&u$dmc2=LjhVk2+kGZ@nJh`{Chk-d_kr;{UmHtKDp}6hz$W!u$D^jL?29z??cv zyJ06C!+yeGpVw_L+Mi>r?kU2)&P$%^qO2SL^&cN~&64`{_jz|JUFhr7ycxn2EL0U% zzlKT1a@Msh-ra*UZQ@KDv#i(Ff<-MzR~-_jP6=f#M-U#lsRre~v`tXTC^_cZ?ZF}E z{)g*1d3UDB0%r`Chax%7ho+844lmatV9E*?VvX5_*ea=|V;K!#h6L8Z z@td#F(>Wa~=x^Ld+{ME;zqHjaJv$lJg%8dEvKA%WkfZtu$ z19XHzvMFZmw91V3--^`Fi48M={T~lSnX?<;DhmMiQMbg^=Dv(>Y;7~0+`7cPGdZ`M z6%y(4Xu6BTlhp0B&O*A+_@R`(thETZ)xLrVMF z+p%fBByP#>AZx3sM&{cl2PM@rnx@7B8;IEb=WkbMhpNXu{=CnQ5zAcK;%Sw!1lW-N zNB^SH(f4hTU5`enhxWlB= zYF+;Xtc2i1VW?3IzOeBx(Io5y0M+n8<~4-P;lmF7uiJPY9ja8p)9-2y)m3)>u@v8 z?RSH|`7Yd|mEPy}>c1a2jL!1@1cu2``)GldA>d&9+eNK&Ga+CMh5*x;+|1vBNs3=DGTs9h%z#SRYXEX zPekUGcbq%x2C1l_6`B-+l`eievJcHw}cSJ`urAOxcaBWAl1wf5=|b_i7^! zOW8F}ND<**u#4CT_%iLMjzxHM-dRLYeEQrKj^}+Q24c%8H?9^MevmPIIle67Fv78I z0@ccWJXZ6qZgVw*IyWjUW9+*tW}l9>-A%_f@Uu~5DuSQL`?Wr$V7bOkyYP@T<3ZmkRe1VW?AI%Xim(Lig5Q=LvT+AN{c}Up-t`5?EpLeq}Y^V%Dj4 z6U8ynAo<(nn6n~4@y09bsaVaI4jCUsS;wo)0i9$pq2%^FbBV?LXXCeBQLoJs#?p2@ zlWDCmj*7|)ogP@4hFei~q@aIJ+NCQr5Y5Q|>d=^wbbt0VwSk{U$*9&g@^{=cesOc3 zXkuxgg2WpNfK(^_MepA~P4`ERWKwdRwp^7%@l3DFNWDVOwwY=+z+kXzP!Zg^K=8po z;jR0|@KB8*w?hC|PwUO%WcOI*OVCvdUg!nMn%b1MCO=1jOa6H92772GX70T?Wa>-0 zE(u715vds5kAG~vK`9G3R&YCQ7Ipm9f3~#k=ovO=4jKC6$cWTE4djkf(v};0k$PT| zY>cA%xzTeY3q*d26R+^v*fGWYV%xo71_GbFeu(?@?*!FQPnvR^s70&8K!8kpLt}C7 zo^OKsK8-37N*_yXqc_;4b9^cSB1rRETe=-d=HUDa7^MODEr1b_K`mDgKra2W*6M4T z*TSR~0XdLD^`s-JEHHHc$*AY-k-s@5OTeFbJY#^^pF~#KRUq?023UaAvV~m=2rG6E zkJUNt>Zr?mCo+>RT*jEAUt8IX5hsQZOw4@9T_xWuCpKV(}C*g@3F3ZQu_a{w)W6Y|JV=5^!bbKx`SVrC~HH`&_WN~q8dGEC6b1+v|eS47N5P&1DF`$0ASST%p)A?$0 zqb3mbcSZweZI*cl&UxLk+I!(>&Ad%lmnvCS^b_%}bWfqkMaM8CJ4e za=@mFG{%|%e$&VpWGamJPw=VZ!6uRXMGRvPDD%(P<7%f!=&|Bx=)uP_zfP299J1*c zjmcVD)+ORdiJupdJ<vAJvv@$Ws=;4$3YYaAHXPJM=ey4YnvH~gt zM5HLxd->rNQ^Kaiz;gA3su>`-+1j^Vy~u?`QQPE_n$U{gD@Y!nW%NQld(4lykt6Fb zGLnhMH2+3Qo4+H?Y7So{-s!uxm zw#IwiY?x?dZ$V;WBt;AAmFjuX^&ngCIi6+HSozG#_K~UHTK}3jwKJLZmfc(59yAy9 zcy>9`bQQUo>khHFO)xvRaz4*gZ9gAq(8=T5ejex6tA-ENI7+$ynBl9hy8qDv?o23S zVd9VVs!WV^Vk*e6@m&Mxrw;^NbpaBKjv?$l1^Z8u{nAoc-@Kce@e=M>mZDd`If%h_ z!j%p_D+1Y3a&HbrcA3Fc%6us%m*V?w5%Y2Z9{pWg`zF~f+N{Vla&m-Pwgk*lh(LX6 ziN0Nxa3jbj(8va(PT-EO7#EgUkokNbW8nOzyM?7389Zx>=#kA2sM(6BM>C{^WRiDk z`@I*f0gaCotiS>mpf|h>eZ7(*Xg@`_8)${IbSzy5La&}oW9$}S^$h3rZF)D97h}C17 zQ&T8F%tF<5G5YA~4038eq3fV?^7X0AV+i;i7}l}Xmm<;Sw`u~P--7c-t`P{B5v1N# zW`fL*7iPCdhk)+eYpBB)qiG=T%q=^8x#K#|c~@GaCmFyse<_{lD7}5=s_%r^+$vQjQhq-%f*VRt7ae`7*$$A*0^Nks5 zwY$)%NFSR2m39>;NN*3*38K!sO? z2=L;tUo=ysQ%m%T>5%Fp5_{b0|H@&H=Xh{oU|tW{x^ffn`)NYJWk6D4_64iVf-`&U zb^&hu3Aa&I<9&MZ*9%;3hW)S}t|Wi!7)-@64D3_oGNxvu@@81n5wAbwwbS3v<+&~1 zgA6~gl^q}^EqO%J!T@?fs*A=9Fg#L_G<%Z(mhq963W2JMcQNp<(XJ=)EBpQhg8EzK zs29KO$g5SIEB+*AlkQiywI)hbk00c4W{r>gR5>qUtAc_*7-~xmFFVCou*jX(%91rT z+_J6mTq9+7yI$<Rk?BlZC#RKU)B2JZP)q4R%2NDkgQui zHqv?lH9kl*!Ddj>7KXV5@sM5S+|FB2h>A54z;+UGP(+XwV7VBHVeR{7z9dwkf7e>~ z`lHV+h{6MEORd#lk!q}P6Nt_HpM+F;40{>&rHOUn1N+psh&zl=qUv%>o3&Q6)*6OVUrrxN z4@u~BjKR#@jOeZ(BhXzfwtR9YIW0(>CzCQfP%&Urdg#ql#|myKjh!g`0ur|EN?KY2 zsAj}T;)5k;+Y{8}NJ}E%d8iP?@DafLa!JrmCnJG$r9)t$A>H}-gQvikTO0a!n>jZN zW=)H8(w)0r1H=v^JzYz}=+Ufx55y&h)u(fZ#e4uh%tn>xh zkt8N!nkXza2VcNl52#tGeY!95CcBE(om7p4OdBmyHUZBH?p*$@uIJ!nuaO@5V^^BK z@}`WFuTIsJT(aMg)nc>Ypf4WN@b%u^QVK7Woe)rpNyg+rd(m~MkIfFt7K8R8xA~qI zlq%z0$c6oTVK&D&r9R4^XMm-UMX1;=G%&Z8fE!i%Pp>g4BN_qb>H({C?FX!X@#nKQdE847huWG<%A~!Vq=`kUc}v z*-tu|(sqWK)NM_*y$rf>0NH$~jau-HG#{J&RD>}~(LM<=|B%Jy-D8NOH}lXo!nbT7#+-T%oN7uxzPsifMZ)7^UFK}F#iv0l=tR8{H3 z51p$nZt;HB!^{5XyKfW{xT6=kFAZbA61n#tj1^IQKR>Cvj$YJOPsL2GTpkoGmSqC2 zM3{qXyw88;Fes_07bjyLz`vve!IUYJ;>E75TQ`nOMpa%$R&E3%r$uU$(Q7 zf!Vssc-2=S&JvG=t`yI_d5!a4}GwaYE`0dc}E?D7sj4_F)Q0H4pho zthW`73B8%~6`dCgrMM6lpLNi+a=}-rGph)74x@JNk1)Gd$?Ny9ip|E_U1Evmm+hb4 zPHJxn;{-n-U~@J8*pmdL9!3kQk8qh7z71C>r$z1X68s7|sg??Qr!#m|q1ZYq1Sm^c z8qI(l4z>?l);30$*Oe?R(U(HMIV!sBaY_V-jNrU0#*Np5H+aXxmTjwRjyfm#qilT+ zv!6V!cm-8Z+nuLO)^d^u7|6k)3DHO&o6Bs2f>iGMhLXsq^b_{qY8Ej+vk}|lL^ub` z+Im_*V@i~xGrr|c>UDa-RX@AiVz!B4i)(UrP=E#dG#57w`!v&wcap1})o)LHyzyIc zZPn#uANl%=_B@|K3qf7*CJCN$xI|1kFa^X9JA4r}w6F#2PnC$&L*Hv@0PLl`QNt^< z>EEAf%eDRrmKK+u{>;_<5)g$gcwaE$+;w{1&eKVA}e<4n8#{=^M~JeZ{I#S8v+K#Rk#@j5*68S$wA z%2Or1^MP5upUr36`b<9nlXbl_YMvx;G(+ABK@@| zvn_g0V=RyZwelx+pCsOo)BrxWuGKuXIVpISeNis3b$^2&?bU$U^IU6QB-6GJ92cs! zs8?c7J(Q|x>)N~RV$(g6Tyzf?+aO_+^}?uja*an`)O=gM!+v%%v~j=6iiLj~&D&tI zdmtSmAoXMWp$N~>72(;X-;-IdtF%+@{;&(TC{uVZWEo6*-P} znHvS?wk}ry7we2`jw1?u3Nb{xjIGL4Of)8mGOYayrb{&OqD}_o(^1miC9-3Yt|8+hKJ@1jdnfYy+t%{ZggQQ-!gTQ%vx|<|gxmRF@=ClK)Lbx6gsY|~ z@ow=B6L7#ws#bz)q4=sXvt+?f_v_Z4w)Y%*Zf!MeZ5`xYT8XRhrP+_sK^iNXWP5fTyX5woIzJgq7R^ z-bqT_ER})qw0gm0tWYTL0WA$WDre(9wKKZZo#;*DdZDdxs;@ z$I2NFjz@i0>(F~OQF*I7*>@*SwO0O4v=O(Lwdps$DV93=Ca5*te=@ruant0gPs|l$ zd3mM-8YN9y>c7P`+^`uy>1q9hPUUMTjJr0eJNrxi`7k(M^VQ55dZwzJ+PqgK zj>0Yy$}VLs^T?McI5=e-JQ>J7H#pNsb<~;H_En=yB1Y;$ zFE0~sT7dd`p5DJ*$yRag$mLo4jUxEUSkeYDN*VLbIU)3?s}epAc?cIUAti;w*Rsc; zt2<6z-~WtDjyGePTN)83x0n-75?nqm?^c=cTTGjI@yO-&+@yc_BA8!ta-n#groeK9 z+{I+NpW9(G+ZM{g!@=K*=6!E+lS#nbF7hZNYh}Isv;gYpiF{RC-3EwJ!tJ7{(ZFM*^Gz1kA%EqG!7l?&3o+++p&yQx^`Mjwe&Ys#-1Mlx;8=H!j9R}i7~SU5&|~BY5^7$Q?!|NKNIx|5&8+585WD{9 z!27#e`0|=u6+PL+&X1A+AVZ(5fWd zY5v!*OV^-n{c0A5z3)+{#X?#Y3k%)}$kb)kq!u)xek4l0YCdp+7#*ZBWW`t_Rr@-V z@zJBKv*DRhelDf5cjfZ{1_jQ%t7>fVb_|R;V!FU%-X^@dIJH7EbDbyKiIfSAsq9P* zneQwO8lUdSYK-Y!JbG{FIOUHe0{(2PLx*ld+3s^S`=>OqE+38cNhRoFHDVHj94o~o zPDP1;QzJr`E&M%}R5wQ9eI@rAGn?wGprS%rzK&ud2qL}+L&QNi0;cU)cxQYLWzHxZ zlAkUv6dkNJll82w2hDiQ7}4)we+M4<(nWMR4Z}X0>fp%NSs8POV2@M2aA5#7k+!J6r9R7hq%0H4%A835=QlGe3fiCK=OAwxDF$0Fx|74w3 z2|)Map!x{r07k)(%Y*)`NNQ?F3D z*D~6L<^+ohdoMn+j=GwhxE>h(ARGZOtQKnEDBauM8iY_i+##b?;=qr#map>daLsj$ zW`iE(rSwC;qRtW4Qj|Mp^Nalq_zF-P{GR~z1l@E< zKKJ^%E@T)#hyY?ny{gi_0kKKd_Ifw|)k52wGTEO)xpTn+!x%~BYRFG3^@%5PF zi*<)I56U=C#vrl9-eCrHQ2$q?y=*+(3w4L<^!?bw!}}h!T;Lq#*+mmgD z8*eDxni|0TTWKh_@V`w;h=WLAC1H~(NqWGu@55VUp+67X7lVm$%eDHjpS3M?2?!W% zp`;b(i=t&Rv)_29+@05x zbazUy?+vFdoG*BT8hI6B4eocPXT^L_)=QG_Gofr(gK1U zwasWpx#*j2^m{%d%-xoljJB#l$;pY%QoA@!*#Oq7QF+?wU8>cuy2RW1$1Y{OUCP=O zhm8d2cbEuQ_0VEYHof{DFgZijO1Uv>27YdyTr+K8lgN^14zjI_ue+nT|13G!E}gJe zP+Hzy68OP|ds2sVWU@24fYHQ~6!JgENG}b+lal|R=DSsHI}vxa7vxL@y%A+Ec4^q3 z8Xi(H(3wXA0l&WWovTu2xZi}J{`3kDkI+07p4xHezP8zK7|AgBwpD?z!|UIuf-hLM zeE6vz<;p-wkb@nQ>}+3U`EpFBRaH@LCcJoec%Qw-`-*5Y{|)J94Y*Ajr~UfpH8LEN zU-K7phChe8wtH{4u{Z~LtUu8pU3NUG%^OEP%Z#yn7^HrXuy4YNQQxsy#PUGlk7fwi zn70rK`Qx8zP~~+TMT@WC+Qnq1r$u33kUgO?lz9=EcN3wPGTsCsY!q)r=93hvx>7Y# zWvt&xN)a^bultx2z>BHh15=9N=^JSgEa7B^`>#|vAk7si2CLaC@V1BrE_PTg;RBL4 zgr{N~_z63#rPl`hWAs8QOU$jErk1RZIpc{hMtISVyN_X1#MSf&J;>8WiI74@jhY@^7m>cS{#H-ye@8pCDJVG(ZV< z3=A}XMXltYa1G%v$phDKKnYPaVGFTBgEaNKRP0r{p$t^g@6(oT&S1i7 z1f^;}9FK+$d^*oHmA98%Yt&17#(rm|y24&f`x;vpBO$$-w+-3#AWFwfl{K^QQlp-@ zKh|tkVS=bIgq$=vk#0gnt@lYC3j@O71T*;UZ>9U6VWlNR#Pw&Im-qZ~eG3N=)Rl84 zPan|=1{I9+gm6lck{DoOSzw60kbUJ%obvNxZCagYd-cVhE13r;$v4nliWHJ*=<`tv zahv5j3aWGKI>p)Uq0mbzU0mezI|EZj4c1D{#_F9Y0y5)y$V2{C7N!X<{adQh*Ept3 zZh|L9$GeEvJ2}3KyS(cK&{#4fRq^4(vh@!QO?) z!)_H|9MU`+Czt=Jl-{Ez;u1s4w?6LederQ#AAZKthAqO8096cqqD&h7LV?L#0HU@3 z)1x`OAS405gbB8%7J`O{eFwDoV$bb@MPn^3H)nxX6MQojy|FgCzzf=xYl`?cA(|a5 zJbJK;+GO_^L^V`^v4jD^RU6QQv@W3~4Vd*gdH0GXW=%$1WJ8=Z_<6wJ;{j>OdsY&B z>Sf7T-XiGz>>hlFblr}7ya^t0%s6$uIBTaP1l^#ciWaO>`+Zq11zpInbzpH6TZb&@ z&!m_@>eMJF=AY_dJ+Cm>I2~}WzAhsaS6ifQ`U?&sZe<>7ZMK{4T8ABq7wl#cXHPM3 z;fu=8sN^k~V@pxi)~WAp$clbwo;eeN!ZetBs06k%_JkgXwtLN@X6|RjTb!NB4AB^y z*PG@s>2DUh)T$}N!6t5fPboTr`Q(SMs0eSZzRUx?`zS44IilkL{{pweDPh^5M!b`6`wAu-uAx z43t+~OA9lqEy9+hxw#~J?P(Gc?(>VfH?a0Ts^DV%C6hw(JHD+dZ6<7JL;T9S7kXW~Yi&%9fnoL4Q4&v;Y9%LHZ~o?x$Uw0*mtBP zqU`?*Xeh#y!R^diD5~V(+CrE!m%0KJrA14HSLS%5*3%Z|o`L|VSFQ8x7*k~g3C3ta zhBxCj2=|=Sy5hqX_xipmd`PZYsZ^cwiBccFexB)))EX~|sxNj$PzgtdrPgKMeXUUj zAxsE&IIOpLLzI@Z6m%!C;p|>}CYbu5kG8zxxsv*2#%WtIvT=i^gz*dAo>Kr=5TOw%*h7<=THVJ*e`0d6$IbBVq#TBh32>N1_c^3V~uupacK0Z`ftq zD{`sDDHrc0U!%qsLXln_a(-!{ah)#FR$N83jAyL5*@HDY?eV?t1Cck#3j8)d#Ss-( zU4+BBqI=d}JeZ{$Wklyyb3XpzswED4oKu&yp+hjha#3ey9f*7)b(5A0Ef$GnrhW$OWE=1uVL`K|Whi!3hC8S_8mUXl&45~xBzE*Q|B zg>IDyJtwNKx2(rB^u*}pyMEfcr9LO?3F*TR7u2Y^M}UaT&q`;#@Vu?#$1cvVi|sAV z$@02$RD^4K9E0g0&(lrz+=C{r6wIc0^W=;_RU^)%V|eYvh0Ku23dK2IUL}QUi|{p* zVdp0b3-BFURWzrg%5@Zv6`|t_pK*c7&$ID!OP~JGhUsGT*dI!7>}WQ!*pTbAU95qL zofY{?EiEXZ|86h%!5p$4t)l`aT%-=UW)Jd5$8GM185<+z48F6&+XR8M>9a zYRb}f{1NF&7rXP$j?#GqULI*?CpFO2 z@zrl#GP5+XJ^fbJF7GAv9)hi)6T65imKO$HsMXmPZ4Hq4&N~Jlg;nOAPt^qMK4@OR zwksI?%Rv*NyoYfoSVL&7Cgz8Ty-g+N2MWRglXrC>0_r3QS30?q$RCbrdEX4w2bKZr z&$I5o0uJx))p@g&U6znR?^({ZaL+|5-Olp)*b+R-yuH)McC@$4($ydI=Se2Cpu9QzgK8s z2YN+Doz-X0E9pAFl@fAQ`>6=quByI{L)1Zat=2I%Q)1xN%?}OE>NX7maWaoyv3pMN zyRDcIS&CG>L>{*EuG9)|umxi?`@IRVM9>ooAWzM~Qx0@i#8~TR& z!wJGCt1(s{B9<)eUGA5hiCuBYpv;M+EzMrOO$>c>ssA8QW85ko7oN3Bbbs>NeF zY2d)Xo^&Jp@fU?O!PO4~!)o`;G6^XSV#L=R%$KP0I*~n?;B^;CFhn2LI!=@whkWaP z%qgj$>NZQlSys|s5?V`(qN4)#oB`KRwN3$~sy4IM)ftwu*8$!Xd=Kn{6ihGNQH@$N z^eI-|>rJRy+LTSHEw2QqFI&SBYaQi#0d~(1_`D}Vs z(!|z#KE(Np{}b4^k`Uljzc{G`ek5G2m#*8V-_ysMpHzTt%GER}sbLU3u+ufmOM&G9 zR4EN+hvy6%^T;O>L>5QxC1aoyryxhCeMKm}H#)yxs{6#m6^V)(O)r(Zd--(bUj+~v z!wad}b^-*6d_P-yb14H~r1TLpiSE`r!6!r1G}SCs#fNLoRBSR|UPNjFelhyanzP;) zsGzg_E%9EYkuDJmf95~{^M*jb2nlqqqWFgFuJOzvgRk{qgn*x|(Cxl27jW4osr}Sn zb!I&sB6XDrQ2{vztZwe|am|L)mrpEA8OrG{uRN~m6hLnpD&UWTgGj9>VqJ|FG0jDcLqkEIWw3o{;FeMNgt-9|vqk@`4JLEE^UsK3bE zHKnJ{-IAnk!*QM=S%Y{|Xe53@*6WU(K9|@>S#yf6gXhvkp}oZ_qMluSYSeK|Wyki|Wj{~ekP3_8tPCWNlEjxJy7ESxn@5ZHUY znodXI8DB}#bi2B+tlauF@sW;Iv8f3^>7G#1)*ID#p7;RIT;5co&6xP)jSdV#b&+yU;Au#?+s}% zP?#j{aOG*}A9y$|Oz%WoJ*S~=)6*|^7}4pJ!Y$(}QGyZma;UcT2ys>y7Hyb$6Ya>9 zdZ^>9oZ;yx3VVNtrzBE>I!EbjT|DQC$w2dX$B&Z`<~V#I!ro^+Zqpa;Z^skI#6uX3 zY`oBrqDhNggqH^8SQ*cHRi7ln?Q@AJkpnLL^VtFjrN)ZrQQYmGQic_bVP}X*wV268 ztQe#UB9E|Plv$rV3hLok#SjFz~keLJH`MjNwqTR~cs zHsH49hSfW!zuL{;v2K*IfSD2W?n~LFt^i^|Be4;{m)HC6aTbs^Zg1M90Bq+^~)gFLsz%uveI6IBdE-+>F@h>x(bfol$w zvZF^9f)0_{Vmjb;iUDbf5LQ4j(fHox)?GvI)~~>E+Sl0 z>b%&rm=ji{76@`=ku^=jktg{A*ip>{B?)H~_Dc$8%zMD9LUgi0)?1{@keWWoCq=61{RP zi!}%h>8>lecW;dt7}Xf^5(*Af0!FfUiwszL31@inkD`-CjNMvFOvavQU#)tx<@Z_@ z(i8rUCzeo@*k5K!n3B*oh4Ui_I=Y=wt! z+=}YVnRQYgXN$?$*L!~sp+Bc!PEFU*aqm+q_rTD(PB7IYhAe(xIIMVuR%3d0R5%`! z*2M2m4cp>fthj8Mbd5^;&we2~@5k$!X*XNzWp8eYMO8C;jNOgVFKsCrJA+YDR5uG2 za4-{Ew-n6FnW_bNO}`RT7$u7KQ^X?pQUY8`qhQVhFIHIeVAodLvnmM8~89Rv1M{kvK&3}di@Bif;;~CaY1x5Pfh%75lldu1}{2VnfXS`)i76Mtp zCqw1;-CuI97}A&S*CIYah=tmcLML2(l{*@z?w#35tk3R!p!-e`&|y1d8Z;Pav5tPq zwO}~YeR;bq!nfvCC+0~q;6HNUzw03iTLl_42-&KQ2zwsoQ`Ef45DYT_qsNRCWRM-og`>UV_#LF@xd%& zth-G>{XjsEPw556wsODN*3^B?QqzWO)0idWtNut9nW=1nN#ER=nUa<93tLYtRsV(R zCAD6#0#@ii@5D(BqKV_D2Pe3nxi#v7mjrv&Fo|2-sX>`g^Z*rt*034Mh-Zi8XrAGn z!w$@ucx&z(l>UhB6_qq12$`zHE}U}vU~rerKn4Op4JX3BlsrAYvGf{!2;%Euc+cbD_D86w!jA)Tn``K!POoAX^U9BXXSDRa;21h zJ?UVtf9~chi>46C<5QU+Ul8A2U0QWuyDc4K45KBv>XKi4UApb$$ln8cyFwX9KL#=1 z?T(=ep8V9M=}L2A;UsBq?+tw*UIw)zVEl0ll1PN`*Q%sE8>fPe&|_*sYXg%dEn6)! zZ|$q?E74or|E3p{S|zlBaenlY2lZQ*38C$$$uWnu>oj;Ymknj>&46Cm@1=c27#^7| zN_7)5I(N*9fm8Dr3~*8e8-awg7r!KSdRhp2Q(jLx^u(i!U5aSc(2L%Q5T4h7^ScHUVEn?5F0ne#K@Z8f(zHXEJUojNFAMevqn! zi(sP!{fiL>v?G7sz!Y$jU_|gK7-|Q)?3bxEOB@E>_XaZuGXBUfRUgXdeybewR=a=) zyM&0dfS`Kc2h#89(M?r57RHyV`!_${JrJ8l|;rewmVBnX~B#oW9+opO?S90B_+x}BeJ9nLnbAoQnV^d zWE+*T6-kj~-*?73W6brO-JkFC{XWO>dw$39JAU)W{OLH%b)N6*JYTE-2P+VEi9PmO zB<;-&HGWcM8~3;?9rA6UbnEQ1QM_cFp}WHaqa9!OjHZLA4FFKsSDoX1ZQ3p=Zbe{J zTNl6sCvRDP+nk5@X6+!owd%p%2$1bN=caT!M|kRZXV%qom7;>n*Dovn?dEsm3GH`& zxu(NCo2C(H7sF5DerH_-63D^*3}?t1Yp+H3*=y{((j@#1J3^VdS2>KAf^o2`jV-%x zro87;Y^t`3Kc^54FQYaKPuy&v_+Fx6C|ZvdqqKbf2g%SlWXk6>@Y}>?=$7VAM<%h} zSO=~5Sm|OOF?3hs(S84zk4xg)X%@(Sl^D)(z}t)6C&L0 zBu}Rs+Mf&@3XdCBo0aC1x-Uu>tV~9KJ#-xZ7XOoY$bMVj{?{+jFDS7=*)D{`@t-n* z8G^DaLM5_ggxPc{3kW6Uc~Xv3m@6&90mi(!6E_pUy#fY0&3ldkH4kk0j@tBsvx8MF zg!`ZSjr6(9U&ibIRnY_X0Id{5;?q7Vape!|7q=$rV$)}o4V zx3fWQopY7BA%UlFGC&o(?x)mC_cJIVSZak;B4v5zaYS0e(B} z6GU;tHAWAE0#!$3A<}S97x69cGc_?07=mI(#JTzMuJyYQ9Op-ls0+XwTmlrJ4!$| zK21aV;Um|bihb7_I>*Cy{OO*IJnI~Lf0_J-C+RZk%>OZlU^82^k{XmmuA%9+z*%Qd z+Q??1x@-rv|FuNI**Lf?navt$8eq3_tzgTz#t5SetxEqnFaG&Ht0xajx|K!AdL7N- z(mLbUlFJ1&S3vJ4qO{&_o$#j{(c*ozU}`F4Zj&l6XX3C)V?oczS+H!M;7t_tj&AYi zAKWtVMIucsv9`X|e&y<#&@RyC@TDNcQqchQq%XGAP`P^9H_YwjbgXfJjNuec8A@aq z-7x0Y2gRBx1SC7vXeQNu_tqS+P1+vL{MBbOh3WILO&S+mws^lXdn_&|CUuVvN7adE zbhw(@x)*WcU=28-_thiNkk%eHtMnLO86iGG@oUfe5pa;%q{oZp4aJ52? ze`Fj#j89@^Ue;V%eQ9<@e*Uli;@bA$u-tAW-AT<{4}M0nMf&0pOIgr<=$#cqGS|S* zRg&?c`CG0b`m`&u7UQXqIdFFUQI(=H$~@(o+a13wjnCt(D%Cu^w0Dn|FQ~LBl^}UO zc)ZUH>u2!IS@jQ!@(DE~)BeI6dUnnz3w1h-_6>jEa3NR%*5Q2JJjozb38mIyQ&Smd zm`2{uCtP?&+oHEL!}bf8=&+?JzjTdA2Nj+|AVAY`>R|8dT>*zwL0(JcMnU<11Ecl+ zM3B+nr2&gm!o4|qarkuJda!u&Z4$NNHBvMGbmR>)3`9q%VGt8^>edvbcymMA=A48e zCz#Mvqw?mXoxzTibV8;DMnB%Paa->p%{`r)8fypvBBga^`~F#=ZS=4Dho7pU{bXhB zbRlbNuk4rTKn&s^zup2+$wfMkSYCDh>?ZjoiOh(2?rn)tWlmpw`_P=ri-%FCleo3* zY2xBeqfgxSIGC9{INumeQi0=?SEH=@hJ`-(>n!U!z=*2y4mEng&(V<9SkvJ0+ipK}^BF z7`Y>2MjZ-9Ah+*ql!&vCc&CE0hx`WAjc6a_S#h^_9a*Ujxn4u)9onhN2|Oo&JMAks z9Nm47Qvlc0_oPcgl3Bgx5cPqkS*w(Mr-0K-9%B&17G<;X@4S`uUs&=N_RWHNm;3~`I&-Hz=`G3nb z{m;8M^t0UELSFEJ!SGDZTQbZsj~7Z4~s-g z-;t>D>mPvi$%_O@T)K7(5)W1+oSvw!7Mwlid4GglmJno|`U92x7g{CRKf{76`u-AE zN!PvKXE}XaM}saQ&^2J87v2kyVyq&m${*J?VNznC3=I#}LX}eL9Tcefo0NVwkmMO9) z>m%+Y>^p1DI*n$jWLgfr*e6&m@U&Q;BcuqMV%FVi1axdu;}BnBYZ-&&&3y4-q`V>x z22O>bUw9jib|I(lf)06+HpWx>HT?gJlmYm4c8DeIkE5{Sj|Eb%uJwQ36Z@R_wAjz| z?{wc}-X$cVIqIsH;YBzx#|*cS&#v7@d9ZCmn90_*V}7bnOVt}D%O9SLYw}XGO&uR= zgbx3L_Z#sAPZBZ6j&$KQIfP=L1>Z<>V{;TJywKk@IQs_)>n~hA#)*Tmn zcAkw!GajvYbv@Az>2v1$$*NlMK6~fYVAfIS(D%2+NZPlLAabX~fx7NwjYtj7R1MU| z?%-%&iX8t`3@c@kJA%J9Sd=mG`) z!{%OQ5}ZRRm!Dr*1odLdwVgFZzh2GU`f*@k=*&Z>mERA~QQDgS+r3x*$P`H8*}Kj8 zr1^JoxadelbmXR_=uZNQ=8*6SEoBJMWTs5op5h~4;FDp4!w7jF;&w^xo^9AW)ekh@ZZ*f%V8TDKOmcg%Xw<>`;nEyle8cg(p(C8s=rF8b zhV6IKHGRZsi9GUn2F375q5a6s@W?oFGJJ|2O^1_e2MdQO5r51P85A6H?G7AT&H6)% zE@mBXgt_%K_rc1#2YX$ImkYc0t*5~etS1)HpYuO8DF@8|KU14-wK^% z)NuE>(Us1cXzd}$ESGGth2^D68Tmtdemt9X@3ds7=}z97VSRJT@mO8s|2VX$km2W= zU`gIkIa&A!|L-nszHZ>PhJPD&WqElHF5#|qM%!)l*+v#uuxH3mXBSnOPqv2g6P~se zkN4H?`13$UB~sznboddlEN^JQ@k>k|8S^k5g+s*M7B%+~2v$a&aG**GOy0Wf8%E13 z-gKm(`5D(`^f)p%nil55Kk&pO1BQ|)88Fun!aci*B1oOklE^pOyWJ?JC2* z*XqgDiW{WV`AtF*iy*2%k7)UK<0`oBOe*y6J;8_T>NljdVlY;)ZxVC&-{Pir=n{)r*)k<2r_$Z46#Vg5_X(i8u_u{PF~_@83$fH~Gv?r*^Rb3sVW?a(;v zt0ny2ec!TC!N&3r(vhm)Nihox)XZB12g29Jn9xROS=-1V5Ll@15qz8Q_WH)JcEAyx zc0IfPVv2L>rG<3QYk&=!drVImvH9YcxD)rA#j|*e%ZsTSn9{0ErEa#@a5@&xix#QJ zuxxBgUcagq^^ifv!{x?L#mV8KS?99v(hU=F^BGHnzYkSyZE1LoJVds2-&=|)2;gMCM51$-N7&f97$ zU7h(f_sA-4>MX|*4Vm!AvLNA^1C0HDyNob5n@up!_1SAm4CqjI|5%$BQIa|_wH2RV zG1DOr%b4@8v}3b+)|e8VZkM)T8)2Tz?C+=`>yju5UA!$bCmjbiheyU7uW zTkS{HMnZRS$}&4e-_}vPvxxZ0(fb<*IkdFp`VS^`9#@a;XAHSJ&iJN{+<#4Hvz}G> z3ni_$+$*sHI*8cF^HZ%F8*Ysui?@l>D(_$kbPdX;jq;5QTZT-|MSsp%Joe|fwU2h1 z!!p_SQw@&%PPXX*^35VZjYc-bj&E$s=7~t)1dyIMlnrX1dTu%b$dS|~5x5l-@U;d8 z&D9PANqGH)B{fq44INIF&vquTY5OcuNm~flwMUM36i;vu8y>ZjZ^RBb4u zZXqWV$G@UvU-s*!?wfnrjrPnfc70+{0gkFLYOKO8$JU-U?|)J~IwH8tzREk^l>ya0 zYk&{_W%|BQI-pw3eKR!zA&+=>}pj3J$Bx3}(Fj5>;J?Qw^vmo%IYctt+?&z?YW61JtE9+05e^FFAbm-@WhyT=Ls(pN!I7|Jy_Y6jWNYVYd8J&N zh0G$8UBp`<5SeJ|J9Jy8$Q1xG+YbzrEQ=aCzoS;uddSd;Iy zs5Ls3|M118@U9)pI+hD#-Vd$l6c=(D$o@xsnK~kni@3S^y@1=^fVVB|&N>Mq;%c|? z6hPIocD_5m?4c)aU9{0~m?Bf{a|U_(Y$_a820}`FIK<#`O6l3omy6`egr5JxIs4g`3=7s7}tuS$;;}WN1pVbUGT0s@~h9G@Ejg~ zzTQ>5)&FhR7Wfx;=;9tR%~iHX@}>Wfp{3at*#GdLg3e#s^E<{E^4lD49?{<~*QGsq z&}3EShe(%pYiPe(X4ZoM_kGo~mj2qVtjOuhvw5s1`kHUTO663YFIYO~^c3+&bpqeM zyYf}_9o!)n_|$NbiGSX^k`?HvP3d%eCIoZFo?2^j6Vi&J#fVeP>2**)x zr8y7#Kx>c*f|Mdh6%OQ^ebc>Dm=5_8>CosS1YI~4N3cR|(-X4-Z-LZ0yIn2-*&ZGP`QX?PI*I0Z%-pxbPR;J}CJ;Xn-Z8Flweu1P1Ch=a*Tl!onoTZDF|bq+X3O z2x)^W$W?ESEb?vdIq(erxjsEDC?<9k@TZM80Do#dD9t-%S(Is4rP`Je7HLquqsPTc zq4(hf53LuUipDomc9*_V4bywnvsoiQvwwh1P7Zl%I5YLvRJ@v@r@@+uuaZ=x|M8ZJ zuS2IZ4}4NP)~&NTTf4l9uLdXEn}1GIV}%>J;ft!Qlhte38n=z#Q-;TPFI}BIIxc4P z{!SVF&)ML!l0QdvJ`zs9s0Uvl!aQG!77#e+?BIP=mAR^DYB54_$n)5Dk^@a)-?@fr zL=)+oyuu75Tmm_FG-vYF@|aKhP%{Fa@t>eVT}_ithWC7s*B!GjSmg5lM*RIhnP{zN za+h_Fkxhnlg%d*~ujQ&9X2!%%i+rz1ZPFXT=hm@O;UpXARf&+sedaZJ`1M92nBwF1 zx(nu*4W)-XEJ-jGA{awHNO4O*)vxqKpUQx3KjQaqfU+NOfBrVf#rN93po~vFOP&L5 z)$sPsh7t0WLezu=3B?QxjboXY{5t5)!ufpBw37^s?&x;nR8}~eHPZGet z>h(b^b*&QLoU3|;r~P9sW#Dmi))LSavvX1=84uuBwSHpHRPqh7$ysKKP@{mIDq_t8 zsT#|qWh7B=L%!BXFvhl#Ao-v^WNUs<>V`ajIbGN|$f!&z9a5Lb_4;LwM7`TWqDrVD z%$=k$bvAjj;sZk8b`&rqQ%5A@$2;vOIdR)XE>| zRwC|5<%U=SfigaQTE_RVc3Tkn%=Mbb&kWWsRn?oQz%xXCEYIXC_|X?Fpu83CFa=HI zALB2l!NE%`cm8?`&+`AlQzj?!ocYn=toq!4j%PhiolaFMaXBUVDnURD5qCdy6T}TBgS@Jn8 zcd6C?GdM@_ObUGR#4knfGD$iqrrYE|j;~#|1O^GJ(itT6cep4>4I2ieDGVoZFWWjO`SHcA-wkm z0ce7c)-LHFX3!V2&^RRxwhn3S39QK1*G`H`F{ebeq7JY?$o@cQuBiNk7+AdbhOvs8 z4H6+Yb3nbbTh9AjzlJEw9>R3`Ect<2b3kt3Bc5a`#jF|c@xh*w2J0ho^X|RMGZez~ zEn8%;!AN610cEIV?eJO#C5_S$t;K)KBc~3-qnX4FpvahxdUw@B*1cYW!&|zjdEemb zb)^|xUhaB4<=S_4RnhYvkZrFfu%SNstfI^Rkub)+Oxw7p`lY^&8rkRQcWz^F<;@Gn zS#~dHkJqz*b@aJ`NugwtF_si}AW(Thc=gKKcM9(nH+hO>AGI=tA8sv+tF8WP>CLB` z>INM)r}fqw7%cKe7qP~M<>%8q_Np*?j0i-Vkwe5Pv7zluM^Ef%JKr|0mR@4ax4j0U z)gDIXKV%DPvipVyme<=YCQ-FJFCYn_d-toSL*=T3Oq8!BREMkGO%PwkEerk~zU@jH z$m)=XpM23k5EkvQg`$(xpEj8&;a4XX)t7M%;vtwGt5F#eL|`X&I)I33)SQqSZ!hxdk!zzarA(&hj`4iUxv^x zbhUj0G0X&7mS2fPe!U`C4({yM{EbdFrTt6U4NCSO9q%bai+8JPo_TqG66Q{er|4mI zcMTW5ObhS#`sXm>;@fF!a>FlPqmB;0Pg(j~075^-evm?5y?M^cV|@U=acO1t0*74r z`tHgCgEz!zf5U0B&F^NhR)_9#HsuNF_tkLJ&RcMg&hdYJpV9i0vO~z`UBbaEf_|bf zdy9lv{-}U5f1$x3Wm@PR7BI5ymp)lpA@_>iHxwSpf)+kexf&4A36h`&7Q)m39ETE1 z+9NU^9i0DZ;k8@7dZi7wOF51jI%>eGM!uv| z7mHc#K?`D?V*w2G)#XBy8F0pLz zmfeL}4nBx%j>_9c*%6*a4DipB-KQ`xhJu>$*6l<-X>{r=Jhj{uhj+lY15CtLk0UAH zOE7h-lglV7Y-7Lt$o~eC^HTk+)ZwDYrE496dBdAtXnS-IGw&ay^U~*4IZ_LbXsQ}~ z3YmM7C&MNuZitugp0)F*lwj8hfkp!pHhvQh9x~>4X0hkS{`Jy+-k}9Y#b8^KP5+$n zJ}b@7UF@3eWWnu+u5hV&nKRY%Gvt&@`7~nnz@oEjAa6}?C|mycy1pKRqCfF&1Z4ci zFJ3!qi^+2+qDm_p=A zTMS;I3(MpuFY%>FlLv4c0ofi7;Pf&M4B=mkT+VriKaZICpRz@01cVLn43T1421xrTM&3-QqSH3KMCML@nNRq zCQ|O%G_8@Uyv*f;CuCfBKvb=m#EQ;1gP~AYYbPTBnxq73cM`8~YzMLUvz$WvL7?o( zhRXMQHbqH^M`couWx&B-;I#{PUM(YcL<+-kAoTbaXwBLBUy0712hMo$s5z>C?l@i^ z3&n*TtB%>bc+QJMKHShX@^sTLq^k!nEh|no-;ogn&*_aOCH;YWx_B&Sv%XG;a$ez0 zg5vZO%3@*H8#QS~xDfWOVGfSNbJeS7Bhl1Iy;rQEUvM#*)9UO@l_6;9ti@AOT{2;z zqBS9o*r0ZQVpMq;R<1{?j)GjkZ=@yJKd{;)emm2SO)<+seQo}3D`fs>5|5h_tTve| z5^_Ypmg8~_jhV`j>1AsUEl6y@HrKjD)qGuE1yN)Q{dziZSE#8A(ijv!yM^SnsnIJw zM~}b*;kbug)|4eMpJGoB5SjD4gc-u79QHO1gNtn^>Tu!mfKX&e`)8+f%*ng z&BrS34mN+$&7km- z{=`9mkJE`8*Rd^&X8-PjJ@TI`dYBPCK7-j4NIk=|M;~#z@m1=XyX43!18o8QyC!s! zs5F@U0_#YD-_D&NulJr2^iu|NXBo+O96fHScWO0%E~aZ%qkZpTX3 zn_2@+xwU-em&t5yCHAg*%t75dY}igkI8=P2Rte%kNO8&vLG1^itshVcYog*)KKJRwnz&w};{6UBwTcGVQj)*80W7Q;NOl?CNBIX z%)#q7z$ha8BMrX5g|C4Qt*8qhSRb?s4!TYJhkAMavz9h;O!4n8uB6fJeTw_EyKDU7 zkKU$m@syvwL~6FJOnEHpygCi49Xm9 zgWg^OEMQn> zxxK8l%esK87N-b`l;aRC>L}J0I=?9DzWRm)5ajTkRG;6?gwO2`u5@|{_;WrGzZ)P@ zXC(;z+jvwPlz7l7!X7DA{{ijS!`P5P;2=+Ehad13+bG$5plGWjZp89vWlUGi-C?In z=ZpY!O8%2%d$Aeq7V%O}g7|qQqx>-WgNNZ@>(D7FuF#@l>Z{QgxW&z~_P_aev0r}i zMU!|X3$Al(7Ej^aPN4L3(PCbl;g?)&g_kEzU?bNolhc`{;AQemDwBtwo2xmovG#br zJ7gC}o5qDdV=3YD5?pyQ9HD$d`JefTwr zN=*OWS(q){phkyEZe&3H`$gq}Sugjd4nmv`IWgPR&7tplLZYjJwOJ5dSlnJud_kxn zp&0$u=G-1aK>n&3CO1tu74>1m{L_#$`Nj-SoP#LAPXG%g_uS<~ZBB;Ke5$ z|6Si~n*$}`BW?B#EW)xt(e!P|oThM&1dUq?WbjmX`3RQ8-rdBGh`v*+{8Vs`B?QOP=QRco3#sPLkc7Ig|f~v;0GY6 zMrNP3ANl;zXaRki{*u_}G5LRYgS2*(kLD~y+jUo^3HAQu32c!f^Wsz8mws})LUFIY zZ#S(uzh!{U3co)BPXuy0CuQ&r+Rj;K{19W&{yY5pG0nbBmZCeBclWpR6<+42{xrTr z%DZ?ax+WPf5+)ve_-X4Iu|}x@{1jt+J9r5X-yo#Ipj%0Mj|%kaTy}{3>dw7!zqHZMbmb4p^ToVuZf&6B$lcM*?dbGc{L7{evia~Hhl(7{kh3xDz#Ti zR%)Q)d+QLu&5U^MS)!@`r19djT``)9n#A^z>fC1Z2^Nv}`gw3T-uxT(?+HgX6Qgs{ z0LsJP?>57pz$$|sNNy1p=aluMjMVVwhY~AKN`72Rto&=%_>9an<81Hm5XDPx`l9ree}xh( ziQPE14lx`FI+m*044!8tzy2ovg`v$%qfQ|_x%v#w^J~98?jn}0$qp>3_F9h`Ztg3r zVfQdU2gBE2?)(exQ?udpao{M07HPSkLLoA&i(eRn*&GmanzvHIEdY)H^YGLS|cfRmt(=qR9TedLAn{eNLVWis$lwxANtk^L$177?yU zd9;2C7e-pL8d&#$l(BVNfESv28)A zZQwPE5^iR2?Rm$Keh*9rkWA1xF_~vVcdj9&?k6!OF3Pn!B44CK6W|8_`o(kW+-}XU z?+YasXhfdmNE#)zj%?T5vC)cw2zA&DwwNg&amyAB2`2MV~Ah0%ivlb{yIFa(*Pg)k#l8Qm^XCo$8ury z@ns+Fs<u1T%0Y6uA8}>XqJLpBrDIc)@@u*v?&?CfzH$9N{Kzy#v=FZhdTzeB= zVS3V2RC7FFPGZC->3+z(hbF!fOSsM8UXN}*5<2~3pTmD|_A42*iHNZ+eK#+0hoUJC zec!EGc9o~)ohs8?8aK#ZN?|R&ey)XUxh}@*zWGDBknc4p(#NyUPOtC25|v*ni{i8v zu7^(*cU-)3IlE>fU3$(D#o_gJMm@Yp7W@(hZ!kFpFNHZl!`J{Py~lgHR>QCb(Iaql zOuB@75;f>XAN$FKTz=y5u}8B8eASJu(@vRN-Bhkx67yz@U%m-kON<&y3-mQS;}Cmy zwr74zMBnX$@lBMlFMJK!ebXZIvY2{EOL47)0s?ZC6AlfHM*vG5ZliRb)*9{BpIz@L zdEsDU`!=P&?%Jy$ciuvMWeA#MsI5q~q(&+Vvjf>-1O|-;;wv5X6$$8=r7YW3)i!1} z_q17`tGvvp>}eg3tWb7uQ{#jI#0E6l3haA0gUI;AgjI{&;{A}W&ThN63h$XHgQbTG0E7U? zs6=+(p&4>+IKq#-th_A27K>Mb27_+_M*%A}2|u0&t8oYJzzqk_Ox?T6)1ElX=X|1! zwOi4nRT4o+{}9$?k39STB9}^N#EU$~M00sh&kn7>TX;9=7jX@xUB--P4iA4Go$*aG zW2?DV@#uNdVy@4Fwzdbz^OS>AXl?h)y>VhvjLL9@wv_J5tKwh9-Wr;Mjr zG`x73@Nh-=P;ZiUt1>8ne+edfW5&za%I9Thr93CbHCmHLdoK-hp@c4VBwXMp#w7lsnBHxK}9^TlVUP=~%zwrHk9z zP<#)J`poQENXRhZ9pko!$u=A2Q6gJx{+Y;D{aSJ_X|MKPP~2vxA`pEz_1<=INd%V< zvGb@MUIbT6tvM>M8F?K=aKuo*5;uK{&^B~;SDI%72g zuB@Q(SW56sj2b-k<|}Lk6pz<<*-n{4x zB64W@zr4dbPaa*{79Ms}@>b#y8+!7rdqSLTv@8)2VqDJaV|$+9Ipyg6dztTzIldgS zerV8OSS9LF!K?$(i2_Hx&34!8zcV66;jBB~%is9I`gHhqOHh6CF|4ah&ablL?L%xPMCnrTZQ_K_eLMpNyV0Z0M9voOwM;`RE!MX9 zXM{%P2>ap$!s*b&#h7D?@;%sGE9AdqlQ|pc(vD%M3LK$*67t66>oA6OCfrK2F6hqJ z6cFC;g8(Ni!Bz6%uS_aMrSt`4ukMQu?4+h=G)W$95Vbe&ozV({9^TpIw5p{}1pQ-_F?Mz;%;^)T zp3wi%x~|an+>s%&n6naGBEd-4bnWoG6RjBk+-I7B6Zkx$c;>BRC&TgQ)WpT+q^-{J z!E-;IXK?h;XJ_Hq3`_SOn~SZG;WzBqmZvn(`d*_yL*{-z+3Fd%b;Bg=zYu64zMmmy zJ0~q%HfknW%FWesXPhOo=gJ2?N=9iyQPcvD)%s{QYIo}~=1D$0u-Hd3j%e799lX5c zj81JXjG9yBH5j{#@kWo<$Xb>Xv&0cZUK#DwAJk$#YYTT=Gc)3g56e9u^l#14P+a!Q zZdG{X5R{FWPm!re(vUYsXm!g@jQQ{JaENw67IP(fS@rmC zocq#|ehj)t1#>cRW2vmDPPED7^F_{P8wS~r)7dRqa&P&URJoT?S!@LQ^HCroY{%{Z zMOGE!ltk|B;d>upefs*MIlHy;hBR}v&OfODA4`5>mZXYm5u^)4G}}hVMx)LYYSA(W zn1&v8xrAz_NFBz<4wDTIzA``)2DO0~fDpPF87fScON;SC;r&ySygjSG#^W&8i=of? zBB?hR3_;W3wz$veUFP^(KKmGsCmjvXhURGG-*ifu`Z^Y8wZ9I|bK!kRgI##U`k{Yf zaP=hKL$zXAqUracG2Dpmmrd+IYuZfWeEV4~4i(jVm3tt=joY0Vb($mOjg)VqT$cQB z5D*qTVhZXSZ~sNPI;^cIu(Fv$H!fD=vCFE3WBZ}O1F#0{3dUG98}t|{wO?M8P2_zd zvR(oiWqmqNYEZ0qT}Wz62E|mfg5;#IuGp}xQ{SLv&*KC&TshAwSAUo&_7 z%|F+3DYu}Wt~rws7N$dZL3}u!8XdpjyE)u(qh`bb_WteC**=shY4m)meSUe%;?+8U zF1PDujMNd5tEP^xUvYS=Tlm88sd<=2p)c(kzGW^WiUGS?jANUU34c&94MqOA0Gy^d zRBE6%5qsJw=aK%bOs)XjJ5_%xAiRyJle9-*(ZcVlM%l;bY;6$EHsapNeuzJWDV#FC zU6~U3&>)I&WnOp}qh|jmyE((jUi2L;4w3#qgNAEPEk1Z5kEJgIMX8lZ*f@83zl@Ba zV1$|zG9K#BYUfVDOQZbPUq=?k&C$VIR?WXIuFKs|Sk4+LiP#h0fX~ctrk*hu5~A;@ zxEJ;!Aq5DJ46AlANycB;J=@@Yb#Nq|w@6yaQUzAeAVf8i&#UvVb9?M-yXitDK^Zap zDdu;=ej``KTr0>a38=219r@j+(NAutw^7pm)~wg~WPPVdEA@BTnOmKyC1plY zenE4ebe9fS=Z7a9YK_a>y%QLWh;Zq=t6kQ^hf8O7p`onHjwe?H|0$9xduPR?dP7@ zgw+;ay!S*=?(J5j$loW4)B6{+J~~DX{7~^9l|fS+|9+M5A2PR55qZV3vw6I-W_{}8?l16cu{B9E5ce~rhgX(7)!Z66 zQh)T3-zknzc|4`Tns=dY2T8*bC;^2?ahT%fTJzgxQ}Ao1 zr&hu!tB>9_oAk32*kSC@Bh;-W`P%m5mV@#aVhz-3cli_Caw%iS3?G|*k4=~n0|gt_ zq~~|Wp-X~i5_yc(cRv9Hb@S3=v8aExj9UhO#u)LjHf&g!exB}cj!&r@YS6EP^_BTj z`mbFo`Wu%v=NNypb=$eqeQmf_(Du6iYco}W?^y_6M=c5ARq@=Bds}=t*${LJL%=}$ z&=8jnokBvZh_59oD0v=4hcDFV8O!6O);!R+bAG)@7a2frrvHoWeUe5P@vu(TzWg|k zdQ~$UNO8nOEzbiZ`j7LLKdYhuV{>JpjDc2u(Q`L%0st`=x*!yj0 zyY$2*BNyfycG3A`NcqZ``-a@YW2}B(>kK|bxqhMS*l zJ$#ZTG|S{KV#{;wpBp(#4jh zIw1Phb>GCe{dt!*KSA3kpmb)a8MF!Rm$TQrx15aY!F4PIM;aPngQ5+E2k{DT$%<`E zx3%x!i9R!vk~o^PE6jp`K}cCB5|jl7!P7miC3*S=4pLS4jDwboHPO)X2!Zka2&WEL z3?#@k$E$A5+fsu!&TG5eV>p=~ceSQO9(ZlCPpEVQu>*(RELla}9SAuD5 ziR62+;%MATZ{hQt%Ym*Zrt+xDW$if! zX};-$52~$7UK}*7P~VghuyV;Gf8&a#BW2|eoAFZyc_q8EC}!+YnV`*GM$n-OzujBn zd6O#_Hb=VlqXjB7T1>~UJCDExeVb`Yvb#o}EIS46X{xU@SPxhkny5hbyni?od^CU! z=dt*V=dwA0c*}nCkgz3I)oa=F9R*`olrQdm!##)AU$GC2eG?@ZGjUtn`*q5Zrec!| z%Hg`G>rj$_CfrxH^hoefv}NBKg_E zHTc#rnSjYPN6kwkj!5UWiVC9Ub4t5q??9^E!fWo{!~9b#G?KH?+a)#Y=j1WI(-wvx$@wXqamET-F(23W3ty^%9-; zQ@e+YUz*5vBfkKFXk3O`?ICdu7$h7B-ac=%2z(le6fO9s5=f^2%n|{F9Kw4>C_Mv9 z_}}xkUf3(EbGP7mnz!Sr@XnX+KLoIAwUZ;Q<*pctTVLTvZ2tN~(Wb4*@-JlK2E(Ie zt6Ls_oLUlCPCE~_ZZXf|a8|GCy8s8-#|d}2*H-9Wt|3Lst^dlF>iS}@)eO-^U$_gMBn$?axgUM&6Us>pL> zM+}j?^=k9ZSJDfKcz0~;tFpm}kH=LFmmbLsWs5rz4X}}1{21l0NZ02jJO*vQTQ(10 zbSHbGz&~;;=|G(fQtlD6aEu1F^pihZn!20SbYpJm*$;C7{F~_zn9_DQ)UYVxEt!f# zw%kmDaERd>sAz{;PxRy-`gRCl$ih2S<*bdhzE(&$wXT2*AnjKyf^FMxh&G2%snEDB z(rZ=V&`D*4ixygZq5h$OsxBo`hZ-lT`j^vZ%Yy3ZOTNWcd%tHa3O;SNi{M>1wCDU; zAN zdatpL!fz%F<87ha?7mA6rT$-4pz99}L!u6R@b3Co0sDVEShbIWdiBLA-!h3;D^a3F zFPbOMmMb?soMN#l>vJuJ&v-++OMb|y!l_styG^vs-@X62by2wRd_5fwvh3v72KWqF1WP!AX>jGN=`z`JV5LDZ9Kui?ovf(eFiTXxqYgcM5_;e-O z>_EjLNZuDDp~k(a7Q%aNPnsKp=Pa%*){g@Zd9Vu#b*OzyduBFfM^1ZwNEHWN=y<=T z@iB|`M5X^meQE}f4w=!RBNF222xknTcWh8h1qX|k3LQe&>)k>rp_`$g!DZxT63{iUM8Dkyh#pg!Zj7ExuI8US992j(<20HYY zG{J#sYx36e*}iHlR(br-1jvA`cu6z36+$zb)=QTq2(+1Q&IhW=cf%ky$0eQVFiQzTg%Q13m zxuLBxE4%ZeA~lzD(~B_3`YUHgY8>In{(rYGFkbOC#}s2Okc_P$dFP9>+Q(T*mlBI9 zZ|_ixYqirdV24uE{sSN%-INgJ2gp_@5*4=*my^?ESma_nIBZ455zHYgbH0%hA~n?M zOi*|hO8yXn;5%S@`Uu(pRdsS@AFLpFTgA@V43rOOtd;!U^%Ofmls4mF?_Izn2W#^!3jY{65&13eQ;Z%gCQ^j5veqopw?u50v`- ziGY@pX7@z`*1~|uSFTyDo;%4PM<4F{Db{cB_>1ar8|Cb=^8Yl)j!JM7{tG2czTuDw zkEZus2RSIjw+g22_PratY`9l{iwpMTrgEDq?SF2;&NlZt7+U{}sW*>?`hVZYpR-_u zjHOh>*!LxsEzH=m6-rqOqarCGyDT$gSBzaHqtHeO5n?2jtwvfTG}e%PY%|Qv^Y`ra zd7tz9cKlJtDd%+0<6f@&y043<-L_N83fUkN*fS7i;S$s|>sqqb=G!D^`u0xWS+Bf) z?l;|saKBHpdU4Pv-K8M3q|&bTP1Dci5DfF7W>i0};U!gLMmwcppA6`t>CWAE z)2Tz2M#8Ei3M~4LLA>unNoOoqKR#p1a3kK{tU+F4_x@}^DF=Y0Iv#Lg=n&OJhQ2>j@{Me_VON3&v@LiTX+83)uOP_2 zOCF_%F!^okYP}DICfIUrJiw+#D=f;4sWJ3ML7xiVyn{I@JRL`psy~T6jW!6v@_iFa z+WxNh*FJ{3oT0cR=JD(Vq?DF%Et^cQei(ZD+Y=D+x6}?mPhPT`y<3Qc6gH+H3n_CG zVF(isoq{wo9{}xj9K_UGpZpXZO5YG=7owI}GHH_fGCf!+HaU}JJC?zz8~Og9^FaMN)yTVXZ$um3WR=1}z}BWm{K$d7DR!KEbGpLHLgQ`x~$mBS}< zFGB9X4ZIC^a^DJZv_nqAbt}G}k`&Smm~~lljPxOdAB_E z`3HVsSllV7g@%+-ei+Isy6db|$bnXHbTkE+FttV|)WJT887hyYk3}0E0(9lhqymQO zK&E2nSNMPHIetapqA=0Qo*%d)2i3j$R046D{FkeqCB_Rpw1otMOR@npoBIg<5IkJe zihi=5an1a1>Db{T?jDonC=*WU!V_`ONbBFJDS3MT>4PGG^&461^<^{q35Up7`GJj% z!fNwKyC8>Z2sf9$V&KvrhJ{5nA1gtnW{=^sYIw$~g zhX5v4Aq@)+Waj=rp)hdW8i4f0U>JJleXtwi=n{lMNa4^LxWc3mr@()L1M}Z-|7k8{ zPX9mSFrv1sn##ScbXEClgi|zr%&M}glq^$1<`uN@^-F)H21W$Etvr;@qHKI+^A=Y1 z>&_tr*|bghe8PGh*wvF~&lRykCTM)BEB;YJM#oty{cUH%yd*zFrPP=9ee`|PqbPT! znE6BVvpP)c42SS1)B5RIeL0oK0_(1gH$KvsE=7lFM3%i(p`u=BvH89CSjk17RmC}; zR}jf5XMv~K{p1pT;VS=Z%tJkH00@iHzORU-_X+rG{$*g*lu{_!lvJ%C8)40ZrW zjZy%QiU@Ofc{y??qg-IGEUHT#AwHPHg9BYVqPR`jXu zXjQWx<)0g){yX}co18&fh{D%s_6}|L8IW2plW3^+*Z@SQUH3@*%Nw^(Lwyb2bz`vy@}Q8NA+dO#`&_ICFBv z_}DhN7t48#`R8y5{o1=ncH`3j&{GS`$kLb8nAWy0g>8yJM%8X1RkxiN!(Z)%A~tqF zqx;G8)a1@{*&tmgB*KYP8E3gU2bE3DUY7Ko@t_GjWn;3kb%y8TW>WE$saPKoKrm1SPtrU23K^u^TvWjS1X&$uPAU` zjeVh@0PkQUicNY8%z9I^8kZ! z@OZn0Nx5yehndVUW2A~m;s#VFq^9xaE)Nu{h2D}!#yN7VxbjIUTs88s#fLFH;cMx7 z_yTgV!B9VDQ`HJko z(*sUj5ss3D)pU-uo-;UIG6!8({5x%M<1ETTXU-HI=9Vn@-@P|qM%MPr|3OoaN)5N8 zzqj1FZ4$P=F4o5GHEh+y_#}HU$Il2ZTkPHtm|$qo5d_6bc_!F>lKHy6dzl2SLT1>n zroeRCXK(hY07i7t;qzllJI$@Sv8?+y>?BUc%6WUv`_y<0%okc8+N+&_ zmnp(YorAo9Jf!?^jR`Hx4@HuMfoM^z*p764FQh{)$mE&pB51rl$^2OFR)aXjk^Uw3 z=jcP0k~Oxgx29{p!RwrUYmp*bDb;(YlVTS!H9ta3q?mE;N-{Hj0Iw&UkB;mc-^f{| zoDw~HfFv6d&$|RKft0^`LHBwV%~~GlI12vH<)~u+|NG{YFGaZRciTJYFhBP-B_vV@ zrXfaT&H285JJj!D3#lurkx_w@w{?A@`tW};YwM;!#rGR)KLpkv^TsH~_HS6}v&(qc zN>)Z}NAQBw+;P_!>uyVm@Mj6e?VB>4L4#az*A_xg^YXVAm8t&QUkfH4B&?+B`9zHI z?rs*CecVE^+JBA`PG3h&2(JE-rIR>Hf7NzmSi~}NWbD!A;edUtn`JDujVw8m z&O7bn;gLG(TduGeh)o6@5+WXkGb$6(|6{yDq3K}5{=rH>N{Br~yte_ow%{q&#KY64 zi5I@{0s;^viNjothx93!R4Qa1Nrl+%9N%*gMOkb%*jyMWf;5o^tuD69@pGIc|{qIo+fdaf-#2y>{TL?O*S&sV>G9eBTU7uc)ErtvC|r91BwP zvlJg{j(^=YN@A>)qn(5?9(yk+0J$uPNTtw2umSebX(!;M6+{Y_GEgro4UTU^F1HY~ z93qDk!5nb(fvYR2J6mTT`KxXAT zfytx~=duZ%nv_EYVMPUuwDKb6fk-&6`a$ z#@mywbc9bp$fz$~F%BByi(F;C{t3Mq#Z0kYp!VK*NY7l=TWVaZ6MSsV{g9I+_QR)V z>`PX**WK`yqo9~^>J)^8!UNm`{kGB9oDUCkj}%B9w_ED^wB)Jhq$@bKyYBoD{=dH6%jp zH+(K3g`y7rJBs*UIdjs0cmtdN#~V-;DtDW_Qe_+}HF(8dWcth1k(3v2eoI-NNd9mx z2MqsBBLBT(@YUFVY3uiS+nRm_aQfM{-hfd$MuxX^IIcPS@@!!1hoT};%`s}zU<=JMl;-`nM z)v%T$Y>w)K`yoY*!EovBHq}(!RDzz3W_IevczHHbb zX@}zd{W2V7SfCTMLbKu^jChH1Q$ksUn-CQwJyspG{pKX_2`eiHC_KTQk^UO=O9XiB zh3ln^Oym7GpG@Nwfh94|FB+NKszVta4`Q4W%uUuU+%!atKy0jpKL6&L6}-3{B&@IkEQMQ7}P=`SDAn z;a87>n7Lyw-;7^MDgCm;J|5Eq|7@@?C}G>Ay1G$3;~Qm3_SNjfN_=hjCDcICT ziE$t6%zIU! zFKQF1+$dh+c2?YR;W5@9SD-Ywqa2uv1y+lJqu$!YDVh!P2xd-^DVPcsH)t$>C=BGY zdS{LcLyT$}IcS(x+dSjkA4GlX-F3vn2@Qq}LT^SHx_JS#)ga*t%jS1GI^!D8hPz(& z>$R##4K{cUFm4P3N__pB_%AJsJ5ICObW0s1CC9IvbEgc@XljwpIp_)-gmc z`#yzq?etRBWBEx#jrbfy|Bv ztCaOIZ3F8Pe5l?c{>}M{GtR;;HkAJcEJXcPsjfqlJ*z zp8%~O6NO(p$)NKo70{rYobu}04d>N@A2C9)S)o~BS>YyL z#T~Tf%<_|1OPWN`iIwWkK`vB0@uWL?tOKys;O}xm>3tAN0!;RiOjfBYbTS{Hk^xd*aVkiBbc6PT)D9rl z&Ww1173o$^)~@cF59$hi9Xe4x$+30f3Y@_IGlBu~KrP_s=tL()RP#M(U~xfkGkI&} zqgj?<<_vXh<}z}S-I%qbM~C6|!V~CH(5I5+^8#d|+ab3@z+u+;cqDTMS|!GsF`qER zIQ>06gl#^Kl;(Ec6!}bE7sy8f&kTOAzQ@9Dd~=-r`BL^=qyLMp`KI7WO2Vc0+YR4F z9$rV>5X;)_buXJ1R{lrj;_~MLr)7)<33zyBVOsJbYmIGlzUu|9@%nwrUfX5GxQ<3^ z&O4uOO6IHQc}VaI$9}A02)iqm@5B1>0-#1@oa%bG1S7mAsm@EmtC2izj<&j!9w( zF9zcKTx*^a9uFMDuqrLfV$c5lHG|dMi5#MxNoDm$)^?U9sA%(gF#6~>jmamS9-^vM zjpUrdQOBFkxidAlwoFWq?3WR4_|qFq`9P5x5LYk^ulCh^K__=p&KZo8Ptc!aFQVS# z&#$$+m>fU6L#sU*a7CjxQGwDB4%;Arh_ita3&34QKoAW2t9MztCVK&i+wmfV>l@BZ zTXd<@k+qcL6XXKI!L8*f^1d_*B-n6@DHf(_?`q<~W!@z|4(E|>X=~xhOz)bH9A8~9 zY$SUPP^w0C?se6`hi0^2V>63Yw}PjpDbE1hG!_MDGpSsF3a3I5loSURtX3Ocn6!+K zewna5!rI!4^hcT#)phKsRd8zxyd`Md-X4cI%g`N~H)k=P`o1P~H0aGU4u+B?a)K|u zPun=TclwOC5t`xlX@9dykbh!Z*1}8&amDS$iQn$C4mzk6_=6q4%|6cS1wOoOlO)g5 z_U5StePIPJGjzyn9LMlk5V>G<`g6hj-mO<-%X{1KLt1Gr<=i7D7h&&+6v55QYuc2Ir)R}-W%J|{3AJ4#{7XM#AP8;BA|g^yUh!#yh~`;0WKWo>qBw9R0Kn=J1!0WQ zS~PLC2xzk;@*x@mFW{OaVcup$41mJh0wt_;So^jKFg8u8e0pr;09yypQ{n^Y6V-<~ zd>$)#E9d;l9-4luTM2ah0ickQ%Lgd6Ktjam8Q~u5x(V|)%C+;1sMk9yYfe+aAKwMX zubp8HPH&AhtT*RbN4D|r=}O{5ijuQt{vKxRoMt7S^<`71u>3&B|B}U&`m{IYP;RW{ zws@?^Imp_gd>*VGF#zS&!Ll2@6bBQIYRFDOK09pj*R!#J)?pLI`>aV)Q6HE>Ue`LX z^eel*^V7S=w?aJi1Hn^n%oCL^FWXY@-FkSjN2YGiREUOrgYtEOmPOE(F4c9DDGgXW zESQvsS6whsVvS!@U7D^ITWVakt(vd?GRrK#r$?FMoMvvlbb6INf-Rw3jm|r^8A=b$ zyRE9Js9@hL|BI9NH{#v>J5`FOUo~%B&m$-c8D}-F96l*Mlg6<97fx#+aDGIyw90Isju96@}X z1h|~in8+wV1?ii2st>*DEw*I6Vz-XO?hLIIji%2$&uzK1Wc+?7k=*@m-r%%x&XYHc z+rn4LPguX8T-Dkd%dFJV$PH2uT>6KnO1-sw6XJ!xsI=X_GF)Hnx?#T z1FxxrZ&%Z57mL+JV)c*u-O!Y!sZ3w6hvA!+&;5C`@av|U80JW5Ea%sq-yhF?&nD=B zimPXrehzjIx(+1Xy#JC~P@^*0teU5`TtNBF4$v{Oc5AxHSmcr)jA-rnwXSU(bN2JK z=U(wGD+el0%hc+&vbbUgDIsn#DeC}fXwz&iZ-#GKo)&!8Hs2$+Mi!forP7iOUrg>e z`#k#)9rMOBvOCyjIqrKm`my2WjqaIpaj?fG_Q?!$%ZKLK@iwSSJ5ofFIZNA)owmtW z;3r3ha>6l2s#TGkwc{qIyD~&P`pZR~_r^!(l|w4cMXz3`hww~PKhhY`oX}8bdTb|W zjazN*dstY@-?-vddV!b#TtJfq5pq{h$=qGRE0GBgB(QeGAx zP|stk0XQ(jVK^o5Bo`nl1$bQo-BDw=0Pxp^0~g*?l)!;SS{U1zsmZ$deTt$tjz7gw z4V@RsvbT$@&tfPpN~#EfNyEC0BMn1;yD2G?8t(%CYN+OX1dlR7ofsOcuCsk|*lnng zpxE4Szd7gpk}CEOExai_AZB_hru-7e*_p$RnOSkIlZKD4j)m^GZp;&*D|r9Tj}~OQ zhv0L;>T(wL5$MQJ3166(`vGF*Wpo3qTWu=(5;WheuU@<^587K7yE!Z5=U~PkHtwA@ z@>ZSf@dgKH^C2O}4`qTgnjamPHNP!ybq({ahv%JDX|s#;7|r&{85gjpP^@OcNj?R6 zlKCw0xL*`U8PFi7t)bpFy~QdV!@0YjUO!Vtpk{d;xm{BrzlZT#+vboVl^gc1%RvC% zw`Asd#OmocRVcLeyz#^zMxJ4R{j<;|c?p2Kl~3V8ug~#(BtK0NF?!V8UoK%d(gbQO zwB_2lV5)qu1`--l)3&t3)w-eqFKHYGbcHGm%~1o1jNNQGZrbJl09; zCdAEj{YV3!cMC72{H;${4EKAYk-28_Er$*$SXIXxYIrGe!fi`sgfP)G+%r(mKzKiW?>j5>*HygigT>u;y(~s{=Q#uHwvz*=(LQs4T zSj5mBX`Z{<4PLu+?9un1Tea7x)9B!*v(PX^>1i07d2l|lalk9uTmHdWnGe&Q&YOu7 z62*=j{R8fnOYQ>)q$C5PTL)H5RKks7q(&M|uQ>2)-!q_$yn6Sq)AAv3%I{V6TP3u3+SxEhyiR(F*wr8 zmMaN{6RK;QldN;o_E}*ha zXgI_6CT9cff#f{|`$Q;+grR(>|6scU=pG6mV5-6em}nADtRn^tRX~wg2Bm)|fm>QVjf`u8#0rOroL>*339OX* z15tS*cFaDG-iA|n#y*7Kn{`tGT2x*9ZLkIiVs8PmutYU-<=x)!@8+`}wf`ZwoYX!=ag&cxwg zy))DciBz;CUz_a@ant7mOz)}(>?&`{`AVC!F~%Thx!;xZeC1zJvW6Oaa+nJz#n9pXd_81#kB zy!DH!@)n1RK+N8`r#VtRe|awVe(m%iAX^47aErgL-}hE1C5D+ z!Z>%{_Q_5x9}q;Zeg~)>cfntgK{}Xk8_96q{{TB3o!0MnZ~-S1fa6McMYT}yAD_5j zk)~fZ$v0fO3yQgl9XPzzi(jstdSlyFr8&4(ZC$$ar+=KkDP}3Mu05_}*^CIMJ&9kc z+p#5=yP+KxpnWG^7^plwPdEf<#fozScT9;74x|!zRoE6iy_DNb@KqP|u{wf8Gq+$k zeP-jOse9R=l$8Dps1|&5j$oUopZ8KyJQY|ngoozm=hlUg#k=DYh33Oyd6 zmL4g+@u(-8>O=P{uX~9}Ci|=&-YilmR;?U4eD&ZT-58rpV8Z5etKu0{Es<(#+#O+B=;1La|^>|F;l)kfnq37dyQS~m{X-(8=$ zYM9^Pn?rkLnNSQx;6Ihf9Jvsg(Ln$IdMYJ0&Q)XPVSf^|U2<6KM;&sVAIH zUjUUyc8xS@(nRW(%>{V++9nyXYJJALJ#5EAkMdv9M%9=hPG}uzUl_@>vQISD5=PeN zV~7jiL>`|N95{H{Qdbw}??D_u(7L{;nH55{b zoO$Q%#U2Qlg3>x(iI>|8UPImceU33d@4=8@FGbrc3SPSknQ8yOv6O*QSgvil!F!t5 z#BwupdHUSW+3k;)2gnYyB0?bh$+_KyNoVu|oBgL-hiHcrPbi3VM-;L@$nMz;T{!$% z;2xciqidhof04H#AGHA zlA}?W*E@MgA^-bEw#N@4`}JWQH6#pIx&$`;0Qq+jh^t5T08^&K2?rv}4S0`kuUZax zkAX?=3n^n=5r{yOK zL{7f%zTx<&i~iQcnpgs#n>JXmt`U}gp#<*PtWIOK)V>%le=&Nec=+sGQ`5ZD&Em&x z_kUb9q&Wv=DrCIq2q*wsA?RU`ZO5Eu!ME`|`~0y#1(f#0t=N*ogM<` z|G}1f<|(E1)A%WT^EcbxW>iB8C18;jRiDGTAsQ=0P-XLa8=smZ?+za0w*gO-@$lA# zTthC^b?FB!iE8sctD)Q)JU!w7tD{DAv0yqVOjL$4H>@SI#-!a}2h}gnBaix-NL7FP z{xib!7m9u1+*aMfw?S^$0r)zewWOMUh_}~KJbaB#+64L z@cUI znBryPPdD(zo{F_CZz_vwO)IMuMt5C}IJsx&EP6nph3)(szuMH3TjVJ0aO7pP$?8ZD z)om_PB}VrdYv;q+n^eM!Fqzx_f!$ix+%oD#bpCZ*B$PA z+o6`81PfX^qRsWEUD-;oC@pu;!Rsk;ou5>Uj7@=NEO`^+ya2`w!P1VeO(@}m_f?5q zt>((%f*JGA+RLG4&B}C%Qo>_Nh}m7RusmXq5$v;R?HxX#VH4Iq7iLUUw==12;sbPo zp>QJFy^Me!QYxWpp5m{}iSNN?<_Q2$?Yam!{942+&da+qZ?R=IJeGP%f?P{*L8vWkB_^irVbH0Eaw0NH}Q{y9Uz2j{0 ze+^S!H|4~0#mT>HJ;K})r7;JL`MBpj2&7@(8;KA!S;-z{qPtsM8jtIB9=_j~pdY~v zDU}Hz9?xsRf=l>C0*w$M5yU=O45JAyhgva1qy-~q|H7hfWA?-YbKNBu+JR$OqTQ9* zKis6{H;&`hNJ{ei(8dZ35 zI7{S$j;}4V0BBDF4j@^ME*4B`Cv6fA2tfZpS2smX@MkVdH8)(7AwMCtBKS~=c_#rY z$_^ylo%CJ#H4z_2+AwtbvxtoEObt1%F#dk6HaKy?FuW?wm}0wI{P;>;#=_doSdrz! zBSsxQz0iWf7zm_Os@#uaXb23`(HK~v<2zA=N9)HMli5>G^n5;_|9N#`4gArAgeqv-#@XB+ ziW*swPB}J>KhJ)^T0VSl!k$SBFnmvtc~8*JzNN&;-JJ5winIYQ!4brOD+&6OZIE<7djn4uEgq~3a$K5V>76g3LeqT13BulSE7)N zazuJCvT&5!L}AyF*jGfIuySHqsJ$2vqM8ISJpc`WBo9yjH);0eAAHygZj$*5qh#XMv2J!I|tfKo?A|F*rp<{m;%g~ybic+G3a%Y3dq%Zd%pC_U4!OsoCQj=rq8vxj+J z+2BmvPTdP(53IR4ZR1GSDG$y&pnVGnlx`=FssPi?pe+h_BI8J@DXq;PHFEhZJInzdN=(KOfmV#N&Cb98OPR4-V1kowt>S?}cu;lK~ zn+1qcMzx)9BghI&20sn_Myxh61oPZQu;+hNStM?-DJRQ&7pLkNxP1j22Inj(}ZdvtIbV1HXjNh)>F8gu&bOrQBBv- zwjaVyWD{*q>CsP@jU1qkcgUN^6VuZezhS@3a5uTT&@f&^JZ7xqnSnXZ47fPMTbL3; zNmW`n7I)k7g49Gj@k}!J>ph4~3A?1X3(_XUzDpR9{oCG%(V(~kz)DMtH~c8F{~_=` z4>quvW(LdFLjF9bz%>=td-w>TrEZ_t%>~RoUL^Sk$>_u8J}`kXmx=$NqVJH8k0!X} zlEe+|yJpUTy-+$-1Vw)ug6N38FIL-JnjF&xvasf(Wu;02$s5sl9Z4Pcd7k3O_a@)d zjL6P=w9eBNn{3lW@CS{}%G}!~;|z5(1rCVXw2=h4(k7%j=Kmm|r1}AdyTlZO+7vUO zQ5g4QTazIP>@A&oPdNdg>p6=U-N9x7wdNNkO4cwpCE95X z$a)S#;GjCJU0>_`gYtL4Z9dpQ{uAjubcqE|+4-W|XZ|35zA@^%yr?FO%ymD|&kbvX zUqx$w6E0t)mksy^K)Kx`y^d5T~e7r|7M$0$zY)#oU_Y zaP#)9nl;NylC(wA~sd4njZSvvia9e z@P@hmlaV%Df^!i2p&1h_9DR8@tNM)a?bq`V`V^>S97TtWAr!JtARl0?%Vd;h$n#d9%qD%uHyodw#(BdRt}S<h0?LXW>Ap5salB7pn&hwTTP!LQ_F|!_2$` z(L4!08x80np@$2b%;!3yZdcA~$%E+}yE{P0c0Uj(GRNzwh|1N6-|iD!p-w6@Kc1q? z12tCrFh=ltU1A?}q@sD46Q!-cTP`xRyEjB1o@F1|c4{}Yj~89$7xMET+**m?UVddF zY24^zmfSY;a$)~yjEy;-6tjEFaNDmr^W)%TU4+ukdr97C^;u(@Y>6HRD|cVD{mavN ztaqCP6ODPtgPdPV_Zp2MSqTDIBnAufOl1{t15Qifp+U=;*7I$aa#&m$J}V#e1ecMn zyf`=7>0E;EDisch!LQ6yCZYOx-hrc=L6=hfK{)?RPFK3aJHxi(&Bmvq6rGz=MJ?wB zFFae>hELzk1psi}+T7&K-bIHr)sbcBaw#Zp`EPZ6acWq^9h<>x6K(Qu01Kf#%6WvlNNVO*!BIB5Hnyz=loq`v1oC)Hg7$J?l*s5^ia=uYJd6nW%=uBpd8*l0!i(T%J!8b<_m?K<+-+*KR1h z^2kEB1p$mLYI_>-O1E8Ukr!H@K`WSK;CR8Vg~@#0Tr_dvC!%{d1lsa*SvBP7!#+2P zAp9>Wav!NxX?ODZ8wj*$xBFT(pz?Wg(VmB0Wwcxr91uhi5(B^`!@H1iyB7tZo@2%g z$eJc7BKrXxI(0X#;L*iT^Ww1|a#CBPbwpy{E{gS}wteIySas_MWs=64Z`v>Mk?rxp z6hTxG<2+Na94ktwEp{*l&^FVA?{MJZOIGiX&xjIe#K-|DDXbRApzY)aP;>qmzo%}Q z;Zib}=sOs#XIW^D3hfmtU|w`hBOoOQ94Q28J^4IA?%;o1G1@uR{cB)=b!gz?_a?jU zrVHs&B3nC+#dU7o`o__y)h$%@skxgcN1ThdDo6z9h8dg)A>-d10ln(xG&=U1-Fjm+ z{)hdKwE_+B@C%mI@wdjTpgn}^cMI}w?rJWGHG8R>8xy>6M>INUD&Q#-FKfpOcWQaPX$FATo!;_J-P0+eEn zNkR4=+h>=UMHRO}{$;U_Ypx7_N$7E%IB*dy0HN)8Qx9mhk02^20%aowrP-|BpM*Rx z)PfTOVCc)rV(^rOoo>K_6W&-IO5sCseww3JELFkxXMxw?RxP|eL!YUsJ5DBvuSxxD zLcocj7Yp(eR{F2%*y(=UA8q7XipscO^xygH{(in|?Tmy0iGq*t3oWi2IO?8AC7s=u zTiJ2c=_YMrO=oG7_HCx)()*sRGyjbUF5od}cVRo$Ef=Bv8yfNyhn>J%UPgptEfi>T zxfPWKmMV?^@+MC#my=Bcly?5SzOTI1h|&N3Zp*vrnbkf~#tKgFa)vw~qRg3?u-h0# z!pJ~`C=XZxDgDCkCX@mn{4%#m`N%iYlTWD@f1Cqe zE#Rm&a9V(pZZyt|CNn{%7e3l?QyPncTcJuERuH#Wcx+W361%`tujlAiS#ABkg>`QrNXL{NiMMj3!4(~5GH$Cst-9SCn+*e%x zXFj$ya4EQgS+p6$DO7K=*U!=jW8;}e4=ht#1(S4gAFNb&%-F=<${rUoUie=GuX#@s zNaD-b4`EwdFF3i=mA#bus&ua%CxUJjO+sgyiaToC+HnSHVG4W6R=;J+I5H z_U=Uspd~);(&f5)K)QAn-;6e#mP0K|e*TFycDUftRSa0-^2$xL& za97UZCgLZ$eG^HFgn2c!k84Ho%R{j=MqO@CWhgP83Ka5BV-##S*53&{l zP5Svt^h8Vc!Abc(*@qd+dtDW3jsP`lup%ojQ(U9@m;w_Z(yPsYo?FlRX8f36GJ`h88#2Zvk&(W zpn2fl(>L`W&P}V#Jwrp73bYJ-;o-`Zy6v@`<^Kq)$mf{^^FwAJ2lw&IB$OKR}bk>^o3mBp!_(OGYj%n*q9-?Z%fpHzgs) zS!>d}1%3X@nbN<+aZx81eo1v}ut^IeJl6Mro7e;UcVmoTBZ2?&p(1yPN&62U*`dE` zV(_2x@H?CE8W_}Cl)#8ps6d(bG;Uz%ITR9u9m;(~I~9RO0!}?^dO}o3nI&n~?T_xV znw;{jai5NBmzN`NYm<3fZDQ;=qnt;qmY5-Z%hU9O;!@VDjl+KU2#BJ!aCgd;bK~iK zzV@m!B;l5OaS3o~{|Fq{za=0&T#;QN3MA0&ISti$1pnS{3OAsQ#N3+D^pb8bR$&+C zE~`&ZW5wZP)1ZBBtVt&}m*CE!LX6iZ4jh8nTaZG;ZRg=%nSZa=38qsbb3rI1XP+v8 z;8oviv85OOt%m-!_s{csz$LS+CEK^(UvdUU$=a2pY~}7+POJiF;BP?7jxFCCRK%|z zsaOk-GFnlfSYK+#sMW907u7kpkBNV^YY-OItF3AO;`Dkn$Z%O&B3yjjD6=Iomlxp` zX`*|h#BQGwHKy|{OOmzQ`xem+6KN04{aUUPNPB<-H!63&6Og zhe9#g?%T3o#(@}8{n8#ap`QW<`eU09vit_2&CrbW(6)r!d25tsG6LG#h3zJqE5Ji~ z;Rh&co(*!IcL5@N0YN-bR+kDh^7z&}W=;#6(`?fWuiB+kt(beP*qUNFO`d7?ab#{) zBUt+KGm)Ig+-z<}OcITPq{&`H#0{P&57KFiQXLmE%#>NChxnDCXFdgu(pjuy5bf9+ z)nCtgA_Fo3%mS=m35lt4CVl}*Qo0CxQCF&obb56Kg4I1aMT01)p!Oe7aC!>w>w9Xv zabP(WYWbWh^PF?Rv(=tg%ob|@{n6zm=aVo~EcN78`Om-nU@m@fNpq5={IPbat?Iqz zCARmQ){w^V3Hwz$dsHXB9F!~!>u9z5MXRXJA#H{ijB7~t3MFwXq717SN40h>f8Dej z?!_VEFc8`g`#56mKNZ}}gog~^jKdp(a2lw-QrN)+uL77=*ivTMNxa;P9n8=(v1}(Ok^MA6!QzYmK?&V( zs0AMLy66nI(#esBm5V{^9WoaHv9Y;rTC{I32szBMmFf+?kn6X5^$5FO zcD+miPkFFL

    JaU4yVUDM{jhh>#51*M;X_p6i7L;vB-7%|+YseZ5d`h2htGlwqW7+k*pA_`wQn zV7Z2P1$A1&v)B9mOyw*s9$>J=LkW`d+56KFP|0%EzOSlsxS5#&U+_CW6S3$=!$XM= z5m`hs-?6lgQQ&gYw{=i+ds@eI4Fit3|CFW&a~sx%TLO!%?zUeslW!6$lf9g#pKzH!S>645b8WBPWNPj`Tv{>83F z*v44W^IT2a&F!nvsdkBnorIwE8PQu0SS48}&nbl$b(Jz?1QMK9hJ{O$3PMEhV(b^2 zveQR5m7Y9s8$ih7cHwb{e=`@Z9@m`K!*@Nd=C_)dXXO8Lk-y)d%IbO2OQfI$Eg;k z&~1PmH&l-Th2C@g0$FNAy|Q+^I~~ir@)GCZLbQ#2%nu%bTV(iCM4LQUGSzJ9)a0gC zLOEXyjR(NpH>h$oX0Mv7&|raA+w&gVR>e;_GtW6rWxkixr;G0TdReuSuy7>rc5UZN zPAg^Bmc0g0X$tbRRJ?Nv3DaerpnFP2YVotGxQX8Ro<* z?V%KC+jcqqM4!|89`|52UvzxYUbHD^VMyZ6tv1%g1`~WVKIla$>Gk7?54NhFA`WJpz!};x?e@h#&__;`J4Egx8-JR>oV%a;>iM$;0@;UV z!}XuZ5T%#RJH3krJ1{&+&LkdVV|i|gL9qJ7OCg6!lRFzlx15r%Cw1hQFd%0z1NnYk zCB+NDQuFZL_N?)LJ5gPlxQm)0C9%n2L3otzk%yS^ngE9C$G1>kV0h;WOcKVRz-c+- zyG451P0P}u&WvwINRgs0C>%W2A4OOxJU+4(S1{;>T{w41JSL!lZT%lO=v*&=6^y9h zAmxV5=JF<2bR88{zO6i4e_vUFLVF(o*wy9z+0lZ7bG5g6$MJ?|{BP8OT~FT7lZ8e? zJIBj-_+Yk5YWs}?4qBx%9vAcdg=`{YE8eyh*ib1QXh2_3^x2U(^pvq0EpxzIbqVttbN{yYPp^+`;Zfy zb!^PLkK?7foFpS&SJ_26XhT2>Ei_n|EHFg_C%UQYKzXI@Wh5im{jXnMRlLfl+QDD9% z$=w(65G&kBo-J>l;f_aWN2dMocNcD-^9>8LBs|ik^#I-QXV@HxFTX2FA0(oog^TZH z1w2hcP;hV=)zlK%?~ro;4^!&Zayu|JIk*B%Ja1l9J=z1A?k$v;8mPZKsUpu5DC1t~ z8yheH@6>#{)L8+8nHJRPNd_<=*+Q2Wb{MyU!EaUe;SN~W=?cUyXp2z5+friZ-hZt} zjVDvq5(ohpPOzeR^9gU@3^ajbp3SJ+zqEAA$i85BCb5&@ip{&DAw||wgF<)!J$I@5 ztqzY78&wAVd!^9$@u9Bmg8I(Jy0h+Cjv-{3VvX?UCdSJKOv65{dOC zJrm73tPK(~e`B}&NWGa$vE^b_AvXsUT`1@HbV37W*7qU4o1ZAnY=akxJ%7@N#kov>-x7}B=`A-u^^L_FNxR()6{3*rCUbII}JP->QHPc?+jV{ znRkai^z&EoHLe%M?(yh*BJpX1+Za)$Bh!#iH=VAtNfO^Kq9@^I%A;Mncc zG`|38f!2UlonoXX1X(N+0&PbhkIh z8h9%Pu!gMxMXZ3WnK#l(q@6u{Y_He@-QDVg=vLkX7*V;t4dMO6;R8T!GJ?iKk<_pt z4MrDC%K-NfcrWpC=e$vNN3zh%I4pc>+#WSaLbn}rc?TcZ+K`T~G~y0|d`Zg!ORYd_ z^2H*K`>c(A9zS-ut;4-eGk{UP?G^d&B|!)Cr&! zeQu|qkW4gwtPA3@ei3IVUO$cvOK!aAT2tj(L>!_|T}cnd=G16Q&hVD`a8R}i{%a1&wa>j?+7&_6}C6iuD2jrbx6VIX^W|KBfZ=l=U)5S zWvv9>L7db6@1i_ug3Ic3el2fqOJGsrTGc2r+iK&CzZiDK>9&V>MJVH&iZPGWrL$?` zWdw1dZWT;Xs;`FzY)xwKTfF60H#&bk|IL~Ux%;UIJ&7QyEDa ziUvYfW02J}7I(U_N(0v&IM;^qO7f=WiXT+Aa4Wdru;|a2Sh^4@MLbvX^pm1kQ+!@uKDTVijQBgT*zyTEnKB+jUM^`*`IYm{@q#8C}CvQob3K zL(v(kp8T_N1nRs%_oETP&OfzH#$l!^zqXV{f%28t_01+PXRAqxt*^~5Da%?N;j$BB z@qL)#r))tU6|T4fJ+!1d9mrf&ti`@XniH?wAB z-(lM+ubc0JsEh*XfJswn2R%wN&Js$7wiKzx(l6e1`ahox9&$<-a*r44b+5nIDb7`3 z&`%dD_}L!eR+Fl~z*}%7sJo}xYPE*Dz+KE(+D{)ZZ<(c);q+vXX|DXyTL*Un>!t^ zBCCgNWz?vtiN)!t1-wYcw_m3PIv#hD^^4GO2M9U9e1WEOD#7$KUfRQ3%#i3L;&?=!-1V`=lQpgwtTuCxkBge57{D@< zPeSpq&i(2lonud2A59j{V$s@~=s4mHw^McqjV{n&C_FEvPguiW9KD5i4mQlYL&%j0 z?rWe2b=uxaNf#1#YH!i4e2}vUI1{|_$OpG|EU`ZYGsWSi#g+=%GW$Y9D-#$Q zy?P$hF!tnZ@po*a1iD_IsU_+1|AC?4etvPr-+r6l`jROuCb#GO72O854#%iKB#Q;H zDpY^}0)2>HpXsZbjDvTbiYz)o$Win0ct2~nB@faK9i%Ra z42dD&D7DxiuV(vv8b);+{Tx*}21d zpf=bqRn(Yk5jhO=Ug>H6O__FzUVbjY5uhOj2EAT`j{P;=M>i}Yi>1?9 z2W~c|emZDYpJ&3aEsqUU_Rz~OL{=<>W}zfob|SP%#A2cxv9FwBr$b|4`G@Q0-sUZz z*l`1O7DnPS^hj!V%CtNinqeN5wY>Z%vloK&PEs z&nA8Wtvo5x|2>{dWS?IYbuxD9^ogF0OhXZw4IK8ziIVsjC8rrCNb^QGJeIUGep8P z>rcp!^0Lks8E%imA?V(P{?C^bo5%zg;$8luISW;a!Rx{WFKY_? zNRM0{VwxTNiotE6@b6NR?#rv!N{{Rx9^@s~q-ox=g4eH`0kVFGYh#`g?93S?pFF+B z-1?7iD($nc(wz0O0Y1RmjR`aQ(=jW&cp{?KKZBhaSPoKTm+`(3k!-|BDeM)(xj7b& z<%c*b`UHG%e5990>5a>HGHR(4Z^5lf|)f8g7r%oiS8eM_c-w z1~pv7nH-;j zS-%1E*JSuk8$0zf8R)NI0{I>-f!`4(nH7yBWcCkwpTf5Lgw3_tm9mOz z3HkeGX)sWozP?XS+kfkdVR(sQ{H6ZZdVE+O`{hH3sY1Ck1%%>IYGWj|eu9&iB=kl% z{?y5>C>B88C+I$$UVjfSufSa~CoZG|_lxD{*g|)7dvyPR%Ss{+x18*C^}dijy!rb5 zyqgnwyEegpQ?<7#;T$%;5p5z4biK~k@LN0m@crTlevTKy62iqNZA7KQg@@{KN6m9j z-UClsuy*6cnWvLRIZuO46vQg)SeFu6tDQVbL`$}eQ4^7$nyH={D@;FGGD|Mxtkk-> zGg;MoGPt~*akb6UC~w6h|AkM!Dg(Evej#7PDXSp z80GroX*}~u84LZ?pYfR|b7l8+*&c8%(ekI^$PuL766Q z%VzQ?s~@~e{HS{6ctG%hISSAf7J5K2X$TDRharR6#K2Z|Kl7!gxnc0a9y;b5`P*yg-*nyDs zxi}kjB^@UMvb9W0HK5zRcb{16Yt**VbZc`&(M7#2??o=Cs)L9OWy-m^tqJ{KcMV0k zy%Ecq{#?C?3cIb_?cOWkL}EZ-C-?K!8v7Xram z3uN~Csv|Y#0xI}C5j}#gn3?Youze);v~MCmYvWhB?(}XUCEMctq|Wrdt*31Pi#*nok+B1b zZ7)urMWx}U;|YJSavwl$=3uH`-XwXI(vGvi^EEWhkMu{jrs&#ir5h!B2(jU2BM=s* zXZP!I9Ny~s1bL_|PcA6TzW@pJ?>zXTDnGAHQ&=|adu$R%4yKiRNL~d2IFa#|G zWZDv^<1Yz>tP9Qup~FvefP2$6PRX>}2!O;c!gNuc{qy=|uLjce#uOm@V7OY|$X~u+ z)h4C*>*LClH*59pFER|}j+Mqb(E9!!`SvWM1!O1R42)vMY(rx%KWZ7Pw?5jKHZpm1 zYeaNu3yguVau_LWr!X2;iKTkKwR8$27Ur$Uhdqq6Sh$s&a-T3@S0_O`F=;kh{vJ$` z{{Bg`jp`oj%DqH!o})sgk+0geYy%n?HJDzm1lcp`Kb%MbQ`5NHleVuQS0=P*!&YiO zKYvborXEnn@*a?8#ih@iy+UtVpFB_wXf7>irmd?j;GmwWZp{!LFdI0$#n^8caQ%mm zi-`1S{XP9U&b!X93uWG)u!;YAak(JMO;+|!k_0Ek3Mf5&p1M6`Pb_=fEF})+)-wpH zi;W$w7thNQ`7Y_mDM|&~TpJ`g3PLx4(}Qja2AvjliRN@Tf}Ejxjl>b80e(5w^?6XF zSszjRiqU_!O$A?Zhit%HUu*I&{b==~K~{5j<vN_?&fNKkR+L7d>Eca;9R3~ zQ;UsyxB?nAx#ogkC6}(ohDtE4pF^y7sxH5?m|1F&P-=W1O9K~_PxTvM2L?HJY|j}V zLhneQ_O@q>U%}>TDzvgVfc}#{(V`s3Wb*Z>Hz9=p;b^#zMkL1}kHW?&@t*ilir@pz z%Eb!2Sj9XRYY(Bfy2Qlmye@o$#8&aivF(GVMf|17`QcdjYMkttKI9TJiTSi0SDEHJ zl}n{(y|H<5c34@|b{{8`^RSwt(de^t_J-~{Bn~D*U_)=-yiuGDlF+c~Oe8^O5>-@? zDv^@Xzg&t`YME4`lu%ywfc(g0@XkG}TW;;;IdwmZD{~|%**+5KkF*zTN?1b~fnXSEQ_>_V+h7`sUqXNI%3)xBSZB2aV@opm~ zD*#>bTvCnw-dOam9Calj%|P$00fAs}9m?Wzf0i-*@YNGb6XRg*Vtd=%k8-D9thERp z=w83ZMrc?RN5U5SCC4tbp{@n@kVNfov;koc8xKcLqDWw$a*b4n&8MYKw206YDiEX- zVC^R|fLNUfaSXHh%r%*hI9>~7|Jt{9#VAF>u@FY;?k;E?30Xx`K<~f&z)Ov^Vj&F< z4hk=Y!xu=q?MIbp$=06wP|pqt&Rgx<3Rk&f;rW!8Y`unKy>+v(W}t@T5)(CG)Ea`d z&!hBoR`A*h42*f$cz6p_L3xQ~KjFcdLqrFpv=#U6Ii$SvP@^ESoe0T-WJ}K5MbVE#@ls zc2jZYcJpNS{XN%*@bv7LUUVC&yeG{q{iK;KgOWVl1N3N;z25e~Z7IFX^FP$v*w&5@ zRX?6M&@Ki7!*ST9?HhMGH&WS=B3vYZ?cec1Kz$yYQrqI0;-PW>;!rofMm8?)B&tV( zVMcB3=0G$q8FEpdvS?Uq@acG!_}~`FbOPK$027g+_&W3Ce3!!9Weq2k~Mr-7}Ex9C2 zO9c`)dw;~L)tBe5Hkmp0ne&8MoAW=K`mwuxsLg+DoE1S zF9Un9j1fWnxzFrW3)!bnCz|SUhf3EU%b1wYo-EIrTV!$wtnHapmV3HGwRf)7_U$uB zWX-hDc|xznfTUbYEno7U4;taXU9FO9q^4`okE`uB{K(`oLzVqLoc!~4YAzE^vVw^G zQQxuAt-b@z`#Ci#i5O^e*1vNIwoT$qa%Xc{h#kE!N1p zZ}A-Tm<)euE?n$6rI%lfe9Jg0a!z&tx?}l5hDh+d@CX?3ie=cs<^5IE-W=I}X(cfI zdC#0Tya70t8LFlv*Nu;yY?A=e4AuK=!XM_r5f{XO)u6eJ@f~YCUK!J4@<)FoXlHR; zl3MNHxaN;5OMe%~6*<}D-d9rX2`gq6aY8DsUkSkulJ{zW1#@r-v4Z&V{ zaQvwYIN&=BdguMy*O+@qzrNOiXWmwT1(1{cnQ#nW2SI!gW-x%#kMg&UP?!OyTq))X z%!=;=sIDgCiiMx$0?i?|uNf)7$NfoYtPxuk92(?^Do?G&oWkkKc;}G5@w^P^;T7w6 zPPK!(aUHPwmg^rmV&EJRyH>G1aOTe)I`RuUDY@{;4eYdsxP5esu8>A}w5&4d)GkZm zV$ERP1TqCbIBvQ2YQ_#e63#3R*xl*TnKGd*uaiO#i*OA=Np5SFAEIblwo`-jd70L~&?%2j{6l>Ka@kCZJZ$?w;#e?xIOW>Cd5$;nhS_EU zskZ6H&!4t&%&xfvrQ@dk?)r<<9*q1kwFoR_GW|exP2+)OaNJ4{#OI^V(gly*d|B71 zI-c)Y!b3zm#4T#M)63KQr{Tp$`FX^fg!oXFTntPS^O?1cefX7OG_c{jqI;d1MdH%T zD$IIVV6glV+vCfCrF?m-3OK@QeS4Lc_z8LTAJpl%8jV`f|eL_Di zN_2en1N(3f;27I<5d1yq5_Wb2rXX-+s66~ZTyN$%h`jsn!I%9%2Vdv3qcP7*M6U9} z#PCJ~&DIhvf}*a6@FrqF8{_y@g^p)i7e#4~I78{^ zOJ2nHQt-I>KV6Y412udEvrqH=hTeF6eRnAle@xT87ItLRKtv78;mOdPrHEk)!vu>&lMX@9H5VD zIMQ`VO?Lq2)<*+~>k@G3ESJ(+VH_9Yo(;F#xqIScoQ(G&WlZNXnMOD$kPC#-^ju8e z)UXn0OUUm;rw$Ocp)_%$yf z6tr!HAA^tTkLDGTsJ`1GZkSA=*Lo)33i+CqBltFDXf{B}$j)Zd=Cs|jqSEtC$e_!$ zzvQgiU-MuYW)Tvc{+sg)?3c07la1gY*Eec{=&LvRj>{0(D3X6#3%`9bKeVCsw|dPI z)8Ctq!Q7nMR^7%FCY+de;A@WPDsQ@75me58cT-4xYsiHpEViXo@PUHeLpN#IyM9g0 z1N(_LZ&EDv*#V{sSFn2{h#(}2V6(eDaRd95Awvs@egTfp5ijTn#5+2gE$ZAD6rk#P`PvO- zxY|K*d}N$QUe(YmW=LhL>zaDvAHUeN)l6a1;4ph&@OGEe_GU*i%0PL5`{(87aVZ-` znU=B@3NM?0TjGM!&Cd>^j-(=L?@HeIEw{Y4Cgj%r{}zRqSEJ7(Yg-%A480DIgbKo| zbs&i2ScviN1r8=`^&l6iR+b{9dh{DtWgm|f&FN`8&c@Gut=958x%AXC~=yN^S|rYh3-Kdzl7c(9qoK=>Y@z6qs=`B%Rk4*(jvRI z&VjH_bU7Bwgovced>vhru-U=Hca6Dx$RaGt6iE&FAT{Ck@fTwhB6YZtmZdR~PkG9& z%T-gd*`7WO)?KCtfNt^pw%L1W@7#gw!=d;VwADe6MnFH*6mf9Ej- z5j+E7aBB%5OWk=~!!l4~C=Mjm;%0?Z508>7=T+5LhI{LlIokh7$J+NDK1YEVtLJfl zom~!S@SD#wo*l4#IJVyW&p%+y57+sY?)U$#90mWW9DFRM>WUF5bo;&S{wavP7~Ps0 z=QtXpaX*Y)G-Ns7S2JK6cH!rR{*IYvGshdE65xSZH=q`qPcEK?v)aLELamHq&x-^R zOpvW2fwP)gUN>l1DD?Y^k zOGO0STQH#JzJ9v>4sr8$ddxP8i7Ya5>~lA5{-2fmrR-CUG|DBBOyNR(X1B|(K?}Rn z>DX@Pd3Qs?(3bOZW7Yokx4U?y6jb`7l@@KzXO5TU$Pm0Cr@l}=RqjCKidDq z$YSf+v#TmN9zU_kgrA{yv{C=yPyGCL8ZUn7!=U$4wbU)nap z0eh5eC`9uJY?c}M zN5d-W@VX?UpS2`C<3Qd(!5;riO|5tv-B2L6#+)ehg^UTm_LBGWp&xkb08W;@1=xpUy@d zk5Bd={?AePMhct(!$sxs-BowxB{9DG+~&|R?PY%n{OCL~ Lcvzw75c$6Vy6OtF literal 0 HcmV?d00001 diff --git a/windows/deploy/images/sccm-software-cntr.PNG b/windows/deploy/images/sccm-software-cntr.PNG new file mode 100644 index 0000000000000000000000000000000000000000..9c920c6d39cd8d9d423bed16b6499567a26eaa3f GIT binary patch literal 35740 zcmd432UL^U);Ep~M5L%AsDQz-;3!2z2uKqdMWpFi5FcK|&G*DWepX5mX>i zQBbOYBtU?OAc&NpbdnIMp(PL?2_z)>Kd3YBeZPC}+;_eI^{w@}mdockPfpqU?DE_D z?BnmJoNN`>ZCfWJBco_{;@96~WL6Ez$gEUeD+{y;NLMp~e^vzlW_whopjBfWcv%gz zcC?m}DN0gU@>m1B%Lklr4VIBns$KrOqQU>wRT-JP26n$%pABuu>x<4AbidJsKAfwn3@UM;`3bRIKiHlpn5nWlztpJAoJS zZ~f}4anN9;?9R(Fp0WoH08h5>zHULwcq-THN8Nu}Y{`@3C1U~VHH{AiX7Hb zGwW`a=xnE{lylff>~IdH++uDrL}VUZUaO4ExO!~;j3Tbq>Oy%w`QFk&8LsJ+w5$V-k9Dh z^+|@}XkdCS;t8^_{{{*DnHf=Qftu`QloSYU1LN)Vb6w>Y&q%5hEgF_j6CynvY z#l5#!b9t@{cJDRL8Kw2VX-RN)C?D@F|1sCV7gzymh(;opziwP^f?CBOV~!)zko{8@(98?Cu0oKF*(FH@lLyzWpHoMbbp0vvI@ ztBMCvCX<|}Lm^DFDM>>=Zn8k!{E*|15TZ%Jtk^FqSQ?z*h?CUy#L~5`_!|TQ@DePxzd2?5p?+DVo?cj9 zq4l~!2q~dVQJ?X47sM$a^uRhI=zUAPAEbl7zu?+L6G9&;y^=?1ja>M3wl-3L<>2?I z)-l6GdFbvcGy_esU=>vHFM@?hGzK$5;?E!?R(DrT*Aha|qsrw~qNFm2zxZmn@e=4b zB1q~hQXC%{?`4Z?6Zg|^WK-Iz27*hgr+}G6tdx)1Z#=i55(`KKQ!0Ow|57?edP_7xWGhwHOuWdDzRVbU&9!{V24LT6n*uZ|gQk303s94xF|$F=;jI9#AXz()5KH zFqwyLKj(kah8WEjP^QJ46o};j2R(n{)6qp50*ez?2bSi*j@}6Y@SX`E|PwNM7G~81pvwMPk#HWz!ud6VPINn5m zw+=qo@BTA0G%e-KWGtXZ-AT_fc1M+Aj?fq)L3tsE!RqG|rT5*Dh*Sd2YYZt%Z@oR; z$NMmEF$7Mm23MW65U=Ka&ex@tyt@t~QE?1yNS|d``@?ZpZ`^Cr8aGNMWf~@J!ueKI zO&kM6DB|?apGd3wuBKU44Y0?l#7kxFWlOvDBM{+_mk3U~Xz~pM(c_wZ&dN;x4>fgMUMb=&yCjHT$l5tf86cf2sb zDp5B^!mF}+H@FOzZ1uQ&%;o#TT9tfLSy1w zm$V2iD(E}t$_6N0*WlwJq#_6iSJ-R#)rQpobx$cjY*D9UztIpe$x+XzDS%x(^>TUt z?(tyaQOzhg4v94OvO@J`U2V90D=b`e9*pHyB(A57eaW)KP>__1?nRO>TGa<)kPoyh zlb24-)wnU?v-=CtNh01PWdu(V!UZp_2)I6b#zQhEmjrm1WMj}tD6e|@r2ytHy1dj%gVAxc86APh zUo2Hc;QFf~FrMYg?xIgZSJpE_y%Ww!Kc@jq+kZu~da4Qs@z1Qj%XGL6M||koIZ6L~VR;Vde>6 zaVDDP6t&RmMsQpun8tq1;0&@VEfv2OE_`q)+i%&nc5Hwzo@K9`xw3=SBSao&)@Sw6 z;GRW?4{O>YO@YPAjI0el+u30=qic7>?e?1HaddX-A2FAUu&>}MYE3bBG;Frj`O`=1 z!I$2?8c0Q4+ZtN|U$zHbP+RK=zo7aXAi@$N8QMEvuxsA26EikoD)`-2P_DnHAJZ;k zK$kv1D=3R;6h|vZ@e@>KiI+G}*iN(J#_$ zQC*Q^>XbvtMAwD+NiYAjNs@Us(k{GM7bjv?Eo|n|KvkU0h>v>Ogi3t|(T$Io%!OyC zV)gU7ohquH)rYl<9n(Om zK_?s}glDu9ctHYnD%Pnli^w>X*u2H2cO;_C1x`%xgZ9#LvR)Eb0PB6K0l1QF3YljN zOPs2}rXe4?*w@Q0-TA)aUM+Y279AC8d}3K+i~2_ORY)3>R0GGH3x*c3-jhxu zTpX%dhZ`?O8E0%DDI?Ic)3_ds#SswFnf9jLg8e0flP#rYaF`K*!+Yy!2I*SHJU1Wi zZ9aXjWc&`?Zf{01{Ma%`z>(K^o`_n|%|y&9+TG-Ank+2Qsy18nsL|$>Q5uD6Ri(S* zq;(){&h~o3(qP^0>0pZRwJklV${W=rT;~0ojmrkkSlgqc`jfAp5AhqyIqCW4h&h_} zC@p+w6u=_iwHsiyntueDJXNpX`O7YDNp^$(Z^iRmk(a2K%g~w7iIGn*jmXx|MKp z)$0sRjvDYW|H~F4(_~Z+Gb)^4A4>TFQS4L*j@Va=3!K>HUNZJ;gMYf$-L}w?H)m^{q{`Z5X<#+OB+HC&> z&Ob;v0^0C>;IW-QCd2#_@c#cb$iA(0V9t|J0GL4Hr=O%WE$@QNfxY`w>#`YBN5}df zU8fmaxLi|#QatNhc8d`-gI{RhC>@Jlw}xv6HUdw3gQmn=`A$DLAU^e23jwR_d_05w z!A#+^pRFsA#t}Z@$KRHMC70*WA6cWLbYYg)Hd;&dbYu1b zM6uB?8`dwc={7%DC0LI}$Nj+&cn5 z1hc68RxGT6j&(4~NZPvG}qi=lL?|LjU41eGWYbpq3ZBE@9 z*x40E4Z|CJWAyprPpbn#w`tLxr$k?$Sj^GkD*hm%niT}`#3q8}`AtUiu9imu&=&X1 zeNA9Vk0?*~qw!IH-AZFQ+Qn<<1)&@3Xlt&3$~ub&FnkX`k2rtvPdukTnWw5S*xL+W zr#NU-8Zg0xY5GX+6n2eVTor-W>R-5M*k0+R`)e%5i?p?1(um*&&WQg({<#C+_25m= ze-^*f5-rP&B^9mjJ=)5TMTPAN{!=yF{%rmq2=*Ulan5_BYJaLi`G?3bl#S7!Tbn1B|EZ&TIy>X2yR8oW^>xs?()7Rj{`*CYC=H%54A%Qor-JXU;rfmK zX%H%o{GT!IKdYMC8ZOy;dobZ~_$#lSN33p}9bA@*^>>iHSr`@E0l=&?l&5yaWgZ$x z{3g&*&)tZ2QDOJWEh0_!?WEuTW_?e+Z89#8T$rCfB;z5eGhZIzkSTKN!X})RwZ_=3 zfa2v}-E7pX%TAWgaWHTA9`JoPWxi8&t@MJ5vLVSp!5PTqm0AlX` zpi!qjGVD=#)eheoo!gu0Zt**YmqRX@-QPUJy{IRbmfxPNt{Xj!}y^3GxT7BI0VH@Alz%3KWQ8%IIkNbt(jr|ZoGb@ zQTg(CN95;_ufA9>S-4bvv6!A6m}i!%xu5^qdp*+RaOQta$=el|>wFwKfu$ty_b{6D z&A}F%B>Cfkg7kL$Xg_)~H7#YaBcT>?jTg*VAk{NUsMl_b56tvcbn#PAxPw)6x_+`E zW8%yFl-Ce39?HDU9v~+0U;><11R33zQ!makw$yAbp*0dkf!KFG&3CG3@*9u6yn&wB zuLr{PH`le_)R_0ARV{V;JK%_xq)Wjz7*}^lVZ?KT6%;^G=J^=2`qx1?sz`cBJc zZ>moAEpc;pXSbV994yuC&a|QWlA6NcbJ61b%n91Go6(mq-nSO!&#}6w ze~GC?g6vP$Y?384!nGzrM0!<^XJo~ z(8=@Qg9it_y}gHnRsmfJ@f@qo7V4EH@8LHjMnXRuQCiKOYmd5zu_8eZ%>SdP}xR5myYmyA<{NJoA4GOx9aiA1uN4-|z ze=Yv&;~t}dE@)YQzH3Q+hM;+l{v_B}dQpq2XLic^5@uTkmwmSpLG6istIN+A826e~ z0QHShRsErBnfSwIn3jZT2Pv=VQ0(B#s4|K(FFA(sRXk8#7@#q5u=FxRqEpUHlqY!{ zmLK%Un5dn46X6rI!I(Bwv_d9t7dvu+K7X55jX^Uy-YYDQyA3%C{6U(jlZzu&zjHrl z@s2lWKj~vRH?vO)bH`mm|v#Z{oP3x9oj5#h>*-nW8?*wfj9?lVanjCnKXGx4DkBJsr6dZ2Z2E zfq#^K5=YeP-}YQxM=L2IfvDptNSe-p*T(vSUSMzuNQL=i1@`Jdt*fcep-Yi>+wI%a z`bJrd6kP~CtJ^OqIJopCLUvD_{;}xkdl$8pBTa;k|G?y{Dx{LW$A*mlL2GmQmds3q z_a6B!vj;e3=nd;kKPDgXq81Ov<`$@UdT>;32ViJbJuVK+>*2sx4cZvg68Qvk^~8<;nypa znMlvJNRu{T2@gZNP~lh5V)*t+uz%BAYS~>}M_*S(5qavJAzRPMs?I-OozSWgx9)9^ zr(t+Yy>P+zJo$5@Wz~sC89|fX1xT89xS-)-(WG(tUFI7%Am}?E!?&jAuJHiX(=s+t zWhbWC^;@|YFL%QlHUmE9*<(4_7iT-?Rj3&cIDcE|yt41yfZ2Z!`FlTFA!mUv!(!wd$Q)#U8I9;wj6FYeJ1HqC8|rCX5qzlXEMsL^#xE|D8|rS|`7Jp&-f(aT zjIgUExjon}p5D{T z?l0r@INit5V}2?ExTS-Lh9xJwaaNI=vS3bj7dqRNtqCf1Fay}}ykmIZ&NzR0YNV)S z$T2lr*mo)1h|?4(U0A@(c${$hPf8MwYMgkul`b`ip?aB4t~fyFq#Ww4Zjk!B@$=83fek zVS<*@**~6K5-SZ#rbuV4>@62kv-~kF$83;@X8T<(zP z_nkEp`*E(}SNsl_;hZ|k zHi1P-~p!**?EL@bhwdU_Nc#K#Z2s@Y6kNIk%RB@tZlPchCV=Xmkt@#)qNP zHvrN7k>;~&!GO_|Gb&#@$maF{{j|LI-3CI3zX04T6~r>`^a%>=B3W!-Mz?hi(E$Md z3_6v3_f7BiBt@Xaw%4=zKPfu{-tBV5=!h1AOSva95sd za(}f%IN8n*=nZhYtg^hO{dQCObzwW!X`R=Q-g$PkY}{3ake(j03`yH(;O7h7-B{D) z`7ibiHi?OknQ@^AJA=%QJbeAHy4tBwh7!#H+$f@l%TT^XDtvj08F}bZ(UJxx^Cr8y zSC#9MuD55+!%B6ZegZ)8&4;`AYF8>%)~M`H#CB=*DL(EOvV`i+^4-zT@d-4y@xpIi( z{-2O}fKPvBrivIi-wX#OA>4$GV|@33PK3Ku*qz;U^|cqE#LMWs!bYXx zsa9OW4!$rqQ5-xo!7^1(7kc6f?mP!}q!C?*)^%2q&LvRo{2?d!us&yKXaSlEhx%Qd zCLpRBE#T*d{FVUrgxaf6^-B29nW1F0qa@zYG}uFnT9B%VHZkr@tN{@4-%qqJj^>i$ zrOOw8?ecEw$ieruV`#Xrq5V(Zmnnbpzah|ubSXqFoJ(_8O=lNm7$}o+TjOX% z0uV1meq~m=6UC7BA;i!g@h#*lOQZ5O%}5j3HP+@zMcvTQDMFNs6}9(k2S^lr?x)S~ z9bK%=&6|9u&U|Jc3@Ody5(=>WH&~6!lPXg$bsvHvIn*cMK1k|mowiuod22c`gK@kp z{i0lyJ+O`1ii5#+Z7cRAYHg40nJhfar`F^WSbhN$N#gQ-fSP5&tRp&e&fSd(FjKEa zvim|@MPH3e<5R(LxnAmm?v~CHwf9a)J~ARz0|sYXPl_1yB4mCIbO*iLV9CHhm!*^0?{euANPagUM#3if40rLCJ)B!^pD~D(T`F$Uv!_7m91;>zz;KuKzdW;GD}c7Kt+$elH9#V=xjMD|$+F zIvQp(RMm+;JU2x>A-bHwe{AXtkGRb5pXCU^ZcjL*5t^=!lnO@p$+uv)Zl16D(6@FV z%F(f)xTklfR6WKEq8GKLE?b*^Ox-vemdT4{x=k0>0hj%OG;^AMo99dYPARz7xyrzh|t1NC)aFf^p^=w01zZ-?H{FWl8eM$w+8GbbI#mQ}_-)SrX~uDF+1PofEUf!VS`m5QVni+pgmx zD!+m8^6oy`y=u@N zmHd)5sq?Bw}l$)|LOofCZH&9$G>q4-$BJW z#nO_Y(gT((qjP*^w_xyKDX0T?b|(!^j3+-L5)u zxt4047^1lvd}T1$nr`Kkldq<8Q-AY&#ecK=E$`$4pArDDes|6EOwfE|MlDa-9|B~J z%&qBqZbbW5b&^_Zq&~g++EB`TaR?4tl$u47g&PJXP=2NL#nQ7T-#;}SCUV}YfRkk_ zj=w2j6zD=krk7f=_@X1^uEJ@N0?Ae35t|y9v}+(J`9eY0sDEseSGPhbv_Sl*c(TW{ zb7?_mb)c*7+`$3y_-u{WIJURmb6Y<_eo$dZvEg%X_{h(Hzm@oUQEkgas5-s5<~U@* z`hv#+g#4hqv<9IID{a4ry-%C}88>RUc0{508IVhf7_E8S>dmRp(aPR(Ac& zP+obo8RgP8ex$KNmn3VD~#lKl4sD=8wfBVup;t#FFk-t}#XwC~D2hn(> zbHm??>rvF&!7V@iJ#~KzYyedE@jqdR?_q)hqbOk2`gNts0?23mKd#_*sQ!B`T6q(@ zPZ<3h0N4MO&;2tnX>aw{SiINFV+OT5Y{veT5hSx!C_i%EM=o{{QbT5P-=`Lnw>k z>TqUtV(+Yv+0D~6B%kH*>F?wLz+ekSo((}~Xe;9XCu|MTtkbXLt83of9Y>Hrrvspv z`8c#6)w5Xh$^Wo>rk9<9{!3Y3C32S7CKg-nl(dOHIWU8ppaOl zDU_}A_TcOX=uzkGjwu#nqeBhxBeZUX^MD+a^~h?`G5_ z%h9K}R~>AV>laPIRum@NH2fpmIfdYyViGb~hFjrl0 zhB&2I4QzjGH8J`iJjoUJxFK_IR2i<`GF$fbpZX=-R>#gOtFUT{903cuB1iT^rM+Jz z{@QY*I}r#(s|8DuWR!nK6%er1BL3T~3w^SZAHSB@%k%HU#kIOSTWow3$8!H-} zlPrkL@=fRmDHq!?yIh&?=Zki&g{;Qzm8bHVMGe!=M8j$RE(OiQp&gp0H+IR7sys+6DJB<72Cl3_?wTIQA z)%j1AY&V}Nv>TvICM)lB^IdchS?eX>hZKftVa-Y8*0dI7!!GhT^(NH7p{Tj5g6&KrNg{IZk63{%t;BmLc1%Gnw=kr!?v?IJrY}b zL!rbGJb$|{P?T5F8YGoCg6w`?umc+}rEzRy@Du%lXwa_v;y~1V&k%>}AMvvrXKSh$ zg&O=1AMQ7 z8L`I{UJmeW5#^cJs|ZWvttgYl-Ct?7H@C|A;2sMK7)%G6p9q^VBbnmI=MxlJ1MC3E zz9TS^kW7QM<4Bh>qlks3kX*s&>nga2%Y%VPed1C>cD|syi(0Trvg5s#9*8_tlhx4R z^RYm!%jl1JQ$uFu5MpcBtumc~o>MW$Rg`N>l?H`)TNuG?CTf~I_uv4g zweZp?=f>48iy59EyMe{58qMU4z23D%IQ+-$#VAfqA?}m7DckaM25x+kPCw1E3>ymA z_#W5cwkQAv%-KFDVw+7BNGFrZ#8&jllw+)C&Ry z<#xjZ4CQ#9?e>6$8`UgP9`N|ckR-wrydsWRqN>uu-xT51V!Ss0(aC3-tsTUYd2NKZ z{^~p8Jg+YcfgE>A?rmwZTeoN=tvXesPPrVONoqnSyVb{bAJ}_Qrc@Mhgg4N}sWym~If?y7 zdU8I8!W1*9?jug3Md?@0W3#dC6)X__aU*x}Wp_e0rZ0Lb)_M1>g=g0V=^)J@t0IqF zGu}eFXim}jq;OFl)o|+uYT*bxBni~R;%iG2FU}s1-oj5&uWL7)fWMbsksUWxe^I2g5lHS) zqr$?_2J95x4v1R{XR&0|LxqaxwZwQp_N=ekv;L3X%RTNp>-yM!Ruk1oniBQ=NOh{RaUs0*6>^D0=5HFS`DO%w2{tDGM6?3DOZAzHNDl`uj=`R z#B(ZzZdVZOb_H0uy8eTRul)xqbs2alwXo#ITviAg*u>NSu!++G%ZIlIZ8%uLCxTf^ z#$xA z{O}f$vmmR6KVsMB#(OJeSj>!J1s~_T8Lo}og;}dbb-~zuQ^8EPe-LaJ3CAk598Dyc zPbA_^CK5FWs3fb|P=SK;VTO3vz5r>f3_^m+IaXbI&XW7tWM>Yx&H_0T_8^OGF%ZnD z>Rxg>7*j&e=3w7x9zMi!+EsXLdzF7Gq;$eTFs$ZwAN!Ujpv)FseQZeIFBM5cM2S6e zRqSA$wCDI%(X(uGDn{_RAvr{*1*!14}Y5KUKvj4<~k5P_>~0jPli9+M|Ln{rvSbraPw2K*wXwW;pCRO5)a10 z<*fxJ=~{ROa*KOyfQDYl*;B2vO|eO~NSen1Wsv$g^rR;(ys@I&PDOe0V?Veu;8dEK z2}`f~sN6uYm$s@fe?uKi$ry`&@==!Cw|i9bo3*rhdg}2saI&eegLX9BGo$GK=m>q8qd4hTvtgyO=`v>3<%ecsKeQER(-*-h0>2PAAXH8d5G7ho6kr<{ z8^u-={n8N;GTH3eyG0iQf38zMwflJ{-YkTo@w( z7IP&(C7^%)%+vzUOreL%SySC3gf@e#ACPp(V*Km^? z=$TBBHmW8mAL)x@>2f}PjzWw+lLMS3otqp>S7-$VvGDlS9A??R@`iHdrI#5StQeSC zb!MQg5<8UB@r$5GP(9pg;#q3OB1y<*$ca}X$*^s^mpfM~Rwl9TVJ-^O(I3S?Oi@VI z>FwWym-r&6_s?)Xs7d|+5TYGMBnI{j2KFqFgKoZ8V%@{^Z;E{%x{0xxnej0E9 zkv*z~7Y7)D-io*SfnKOj>lS7-Dn*s~=T_-gsuJY~UlsoY#Ci8D3c;*4B?-Qw82hQX z=jc9tN(Y;ke49Q@+1Zf15I+A1JvOrf)eeGA-~+mn%0CyzXj_|ar8U|z?(Y;-D6;Z{e6gcJB-S%m zu+T*xl^fGlMiDibW!MYNg1(g7aw;1$#C5^+GdR&c)KW)f+TxeidBM9v@wj87Nz(4j z6L(H%n1p|XFZAx}kPc4LEv(E3s|76-=hUGu^ZW|U;3jklZFS)0H<)|M)K^Vf1xE!( zO;SC`ZYR|K!O;Qtj-so~nL9bui?IM+VcFo7F&-wR@5Zd+@{^Cimyoq=oz3TI(cK5; zgYhq!J(z{ZPY!HE}Cd zOG#I~P948qe5KaVdAeem_S6P7H|4*dPe(Pi?Ea*l4DUO-FeN1j3f)u2hQgP z~fmLkS#SxN~1_?=lM`Ku{LJ~8BLAi%rHn<4fBNZDSbaXK~27XC``$sGa+ICiyA(= zu`N+E6kW}=MhV;Y36lA*#~YN&Y^#Ygug7tGE5`4`xCXUq*b)~M(Nfi1FUV_Rpag^v zZ2_)D%*&OWV`6RB4@w@Rns-7-hgR~hz;X<&E8E+2qr!d`;e#mYID&9<8o0aRt3H|) zZ*mwo;eLHpMX)6JJ+@=_q~%)Cy(zESTxG1!W2A@a`r1(iD48_k7hD#fPf6F>uE!D; z6TuM$C58G5UQs2dt)cnM3IuzqqBI)kH{)?BpF{^#YN9wNI$%?xvez}m!Fsvt3WJu9 zV5#y}ZNRo+(kS^+VY*Z3gc9}<++PVb$|dcMoVwE}9r-V5l98<(d9@|9pl!et!89N* znahu7C+;p1{Sh1s3b9(6koz+9O1hmx=$TPP>0Cd2d75Xrq)FmJcQwoy;_560-tIt+ zUWe_$5BJYSi|F`WQ&!uQy476FIkN9|0ceTmZZliG9W?6u#3 zV=!Ml0N1xxo)+A)Am^=}Wk;4Z@-?v+F13ql9pzxPEm{_^s6$=W%Lm@qRg|qN;lC(P zTl`Ea(&#n(vj6vWZ<;=Hl2)91{!f`YX^^H>sJZxXkw_UZKpIj+xUul_rdCadKBw)3 zVA~{6h+Oh1JXWp8(=NbSQY3Z4zjcNQpEMnqpc&{*G@M|q_ul9@Jj`o14 z%^;N@@`~7sUyPbH_~pG8hfqX)ZJqPyF)Ch`Tbwtn)t}qf;X0A?XV&jW(S#d5)9y0y z4cc73PNF|@TbO1Rp(S6H)Lm_5F5j-2mxOm%xzw1<=_y); zkj!Lqh7HK(;u9NhvKaVeTgJ09vB~eMtmL^#<)G~mb($xL!Ao_|uC`qKgEYN?nK}=6 z>mkm^AvFEjuAe{-eM;IZ(EV&jNrpZ4BoQ-z+wA@>ew1BXfAU)mv(R1Rtb1nRQ};wQ z_oEP;1^HC^kdg)v`98R83C4YF(X^NtP0R=hzV0$kP}rzVe|FVX)c5vGV^3nnNxqt> z$CUd>CMxE8S;uPbotfnVPv%5bPm|Hwr29Wok$Jm-VW-kTQ!m-fdj*U7l=I3K%a z`V?sg9okpW4|X^Dks^NcpiXi$UhTQel@Hv)EkNA4c|%>%!5_)9cPBTB6b#(sR>p1q zUO2OM@YVXw5xK{KBFPJOKsLT!;j~QA;DXEg<#Q*EztY72XU)uxxXgoRXY#lGD2x7f z?)6ua8mQfQ3V8ObDg-=UR_mY2fc~zwC-jc<^W|%mIpep@dN-FkX8u`9)cMP|`!=T> zV-qzwclxsaI%!+S+v!KuOkXa9Z?i!wPfY?JtB@|=tDB0SnE<7Kz^CWS z+_xI1Siilk-!C>qjdAr#5$*2e-0!tby{FQTeY<8Ldw*T`jko_dzjRJ(Sy~tlWpSS5 z+I|%JFw+!S!-r!8o$r&dr{WMn87@(EcbIpCSr*w4>mGl??E|lZWZ>;*257ISH8e$ zmJ>vVNmmH-W8ziwp&>^(5HQSTm8r=G|DB1s1Z#Ta^o5NP+Swri?gg(I?O%q6|4>&? z3)sZ>-}p}VwzGp%#pfdKJd?e1Ct^zV+g`~g0StTv@AE}{lckS4)bErCHS4tZ?4dU| zJ1Dmx>-y7xgZ#rMm)ZU9$ZrFOl}jDb>;k|X9*$F1RD3xFQ&`iByu7;+AVVU{-2f0U zG74lHMVDJO{B~Yf*HqsLT&FlqnYsI1sGqhCcKWQ;>&%eOoe7GcPx`Ub;#9|k;Crv0 zw3+fAsUG7&jg4A!ej6fnbG{|yxQ=PY;L1pC3|zE#jgW@3~T+|=P0Yg^WsmPxZVzv+>;5+Z{h?L zrBN+Kek3IOBC2tBYFT$RzZ4QaY;_c0=tw9 zR0FYqs#N!?@KQ2RmPYqVbsLR|jb*fenNys~xz-e3?gWI~KyN>1~aVZPIC&^4r-%BeIkG zbf zZa{p1+wsUz^p&6G2Rw%m5$5s(C`aw4&c3W#U->aoOk3pHtYk`-408 zGv@R_Dexw4k|&MsywqbzkF^wp_7=?l90wVbkO~=lXrJcUg$#~f)z=0FuAlGT+us_r zz2V^=VC^Rr237w6r8};i{dHRmJ8z-6$`FCoyKdj7t(`?5`*=Zbr$W~B6FXsU#%5B0 z6@GPy*?z<`CI=Al4`=>2tgT+nHS+B$V_8WTd4dFe-uT37?v)L7srt)mxUJ6ifmStn z@k@wk-9Zs{nhj3O@~$X5WTDujpcCLc^&|*VNaGwwXxLNE&|B|yr`n}x0}J_I>Dtk# zg+&&D3DlyRp;O(Ujk4S%glH#tKAuHR+G9Oq2RlRr#asdDVQAwDx43L6PnyG2>xVKC zZK^S&PLW|qnq`mBtJatT-`rX<^wGVd-%fmI8zFi;KwW}`RD03w2$K92?CrMd5M<>< zQE^2rFLfLGoR>}D`Ce=DhpRo!)DfxKkS!z?MzMq3do9aSbYH^M7W>+T<|sR9ud<(g z3W%;{IT-`3Xmv9A88cV-QN#HyE zODt6s_N1J`K8tYmnn{xRyw6n)FM?v*80qmMc#jmySE92jHHDuf;b`XN5Tcg#Ev zI6WvuTsf{AyYD}WTZ-psf&6k=I^%7IiVEA_uA6B&;hjv#MkbUuUMCkj>-(~YlKHM? z`EXA&U)m}7u~SLcziVLLJ|paR8xQ=?7G;5%eP0~xwSms&IvU&%E&Yur5*_WGQNK9Bojv;q>ZIb5RQvQ3V4*$%cOM$xR6V+y zAz97kA+A2>-Yo*dqD4SOB3K-H9-UtpQ2y90(=lm>Y?Lq>`Y#OV504S`Yv)^yO{DlT zHW-1*97-;>P>w9i`sP{Az2?%E-I$|u)Iv}zc0W*fs7#gQym^v%EPXd{F=06rlOo$8n`}4iwbP} zzBPfOz9Kk;gz}r*IJK$6Yc1FgCsrQpJ>ol1xIw6+BW$V`dktWFFKW#<8T&V+D3U&} zoi81EKU2j!yj;NsGNwT#8Jeh;k26_WRvNcG{gtY)ix*Y=3tryXdM4K`NqhZVOA;a6 zPrW9LtJN>zz7o@WoRCw-_yZBN*i}Li&jcggPxwzF^+&4Pd5%rUmTKL#-PC*9*66E; z<__1%Ekq+X*L4dzF$7ZzsMKuCGNc1Un7|`nZv}VQ=|cEmb`p`2%7! z5VSwzKQm^H$JT1YfnLHxC#G_BKvu=}S3v5i)UQmJ(#(&(Hyu@$@VdG`G9`eyYQjMG zJNi2Jvflq2hTjjk+_E#E%F(E&>+&a7)#W8RMV2vIftzqK=IbBzTE<^=#$2FXfn_D+ z{PMyQ$VY(DX6nUael7MKL1GCdDfjU&EQ|nE{vuzxKX8oaz4mUw3z@9IHEWJ63nOD^e+k!qV|BiIOCTk;8;- zC?m|uAv#ER2a>~5pPX}A<}kKGR6^x2Y%^4(nGrV3=J%SBx^KEa_kCa2@Avy&-~Q3n zF5Y_`p2x@Y`Fy;|`Gc`&1*XCHK5@*ri()KmkhwJ+HrJJ4`g5cG zTY6swvm5^@y8As>jF0ysD$q{bg2`88yR8di+V|%iV2jN}UHpA2qbDvL!&o8!x*_bl5ARC>4|q zgIungVexB{Z!6uka(nmnZmOhbVX9MG%VNHAl9B9K%h*R(B=g9 z^eZX}63DzZYQbnJ9lAZ1u-XRSC^Mhkq7~qg5sD)5lYTjR;Yp6nW;6ksEVEIblP*nr zMa5c(;qrzwS_@JGWporwhLu=*rICYKHM_L|txr$&PzVK?nL1)tXROn@es9GcrDRlO zWd{g*$V&1gTZas0rJUH17-@!mPv$(L7t%C!&HE5#st(2^xOPZN0#!f0)dISvS<*1TX;pZ%(O=2#Oi83*-b!#?&eA53 zIQV4d6Hsbw+_0epkMAZVoyO?I!sz>K#oo$%N`AwX7wa6#+OjG<%lF5AuhhSirw?&{ z2Pc!ssTfDl=qO0lzsOhAe_wH#I_6HAJ`&}IMUGi?9 z&(-8aQsA-T4nu|IXa3E>ZmtcFjfs(i!OHTH%H9;Df^mgj9hgm};rrr(<0Y`am6o6{ z4Lyr+cwTFUShJ8n@7$9ARg}T}V zm=TVAawZg^9+L z5&~kPONoK)vO@UktG^VgZI{a7t%;|n&3wZ)VR|)b7G(?-c5M1v;&7r;7+`@x&`FT= z*9(6Y%7xUVRz4D1?qlW*A^bEYPk=xvROjYc5KDFf9Qz8nnohjFe8R2eq(1<-ccuT< z6`T|zIFqJYa0M%SAYONoe})IY4FOHr`arOUeq9|*%HMgy-l@6R^?=OAG^DKZ>R`kd zz~o;6h@ZRCLj@w>`6%*lEFM@Y)%tgf09DXWe^dB@85#uKD1goD+{$4GBgo&t93!S? zcP(5}FD?+NTFk$vapxaxIOFB z3Wj5W7720fu8CwD{9Cy4@tB{;E{w z&F)|_U)5){5YmMx;W2X24{)OvyfI`Ufkjj;;Wa|Ww2kv$9|RL{$3K+3k1{D>WO5nA z!p=MS^?cfirLCMNu|7$l%!5gh{KsoD0He-Y$krY_l1}`^swT>U^4zc1JnLX|wO{M| zGOrPYbos)LvnkJ)op4>rep3^#?3GVrTXJfBTHm8seAo7jEC})AHXlm4ERBL}YH#KD z#v5~(P5rHd_{nuyLb^Pc9fk~9XOW_hLImy<7_YTbdDXT@(Cj{lLwz&1qZZ{NP% zJeIhvo*3fHi>ox>&8s)z6{*iB@@uW_-}cbd)YKo~i7NFxLvv{KQvSvr(pd)JMl5?Ylv1#x zsnGnVkI8hSG-UzQ4xpl+)JX04=yNz3r$wlB9jtQX9*a)0g7Q(Qo@PJZ zr*RJ(=0njmsl50kr_GVwuQas_QtfE#4&O*u)50c!+4!*lFM^aLXxWxj()-1d5(XJt z95gIq%3X5jDZk_VXexHp+e$ouSMr}xLr}}u29k{&P-Oe*=W_LP$foQSyt{bw^kWak zTbK_F^wBvg6MRNJzr3}k?u7Tvzd@q zexe`c2rHGHXkguy)ta4ZU@LD_H!6k>v2POfCPnl~&1>eCdUCHRH6kgCcJ&=G)Kf^$ zfv4q!q8+0x2RBJab~jebT4-HKe{LT2APAJ26>6)ipW}^Ny?V=K z-qX25W{@EUe);gI|Nfz1;F->V8qi5lNCZ_Ss6R7rqWW?Y&JG$I8>lsj?pM1)dEd=w zd}u_$Q3e1(8^5H(0KoZTyW$p>Icd2#*Iw7oyKK5V*QxB>sg`(ej(b2e)BV|c zQA9e$;CTRa$=!y{XQ|#~ZCWJ+b(vd}&+-;!EB_KMwec&ln^W~9?&P7=iB73>i!4;M zwbw=ep>!y%y!1&$ggm32BHC}HQL+V&<8C00c@-Mh^~?2#ns(c4k! zLRD1Qqp$s6uI;=zVU`imF%V8+E&OCVwWVkCV4fQ}shtv(A3qP%c3u=vDXTkLTA}<~ zkFXYxr`9FBN8s?QcP7B>Yeh}O65Hii#fH}NDERq$;anWgo*w@rr`S-B>~LZ;n0mb~ z0SZE3PLXw>)*91Uw|@bN5qs)4Jl_9$SC_IXqLzuvM{Dssv?y0Y$FdH#{*Is@-^j6# zQ@MI8MAlenFu<_akLLos^m-a1w7>EX;CqNCBm&S z17tnTFf1)sF$)d4aHIJC77_IM~N@3d(DJNC)QCtgZ*o58rU4EN@z)KI|GSfYG(`1e7^Q$*qW zr3iASMiG}qpevqO&>?dd;#*f^&9|?tPDL7Hwo6b@$Ec+|m_hz}{mDv^!-MucODAkJ z;KqPZXi;>hnoF<{+<~pZoSH@x{S; zp4*r5ADQp!JsT~ht?p)6gO^S4%u^YLVFrFrdaowl^1iQm$8CuqSATw4OF%fhW$%*K z@wPmqi~KKewW^V9e0C%vsGwm9JD!Qmv5S|eC-PBM6!;ArWKQK>nnTg4fn@>5DN9;U z*GY1Qvd|@gd#Ozp*P1#0BnEB!5qgQw2ry`m*=in`b|V7Kiq4kgB>1onPE??{s34tV zOKi6Q9|Uw83}G&AN=|`vjtZQzsv#8`6<8*rT@T5C`}*pDJMIB#Q1RajX@4a`d)t_WV`bj@s8Tcwst)m#Hu2^cb z>{yilM!8@TE6gY0?t9|tANx<}cNH8z_0MF?;y^1r}m~tDxE4SIXh6{ zcWzOcqt@{g&(O{06b9_FdY=})L1(?ITAy=p0gcUUFKYK9nke5ZGj)$XnYBIH8@-xa z8RD_MeRG6e>)og!_jtgHK>M&YFDqK%=M&7ms?5*|0oznd(@Wu8v?JsI8&{D#G2G<` zZK*J^LeeI>(|`_a=X^8r@8^QY4X1o;m1 z$%2lOWZ>zdfal0_K$6&sirjQYCiEscs0e5(kij30EzeNbv63DdZ$ZnTFul~||E$m^ z6wmAI>nWriV~oJ9`UV)zwP_b%U1fY`;q|@O=@zcNr7PtOTzB%K5k9g?C zx9c}br!VO~nCe_Ij{jfxhzNUKFPdvGt?otyScEdxcuA|+j@vAMn?v37lIDUCU zQ3^4lGq4l~3Q5uvA(Ph4%Ajm2uAJTQhwXqSBlrlcVqZ;Efntzs%$MLq>Si`<${tl3DsZb2AjB2*n z-_`yoo(n3&;x&NrkmUX_va{cjYXPfqbFB(PZ^6DssyV#H_iw47TT5x&0dYErVZp5U z^>0>82vx6l31brhNFfN!fViTPxFBF)JxfMd-9h^l0AYn1>PZ~j|17}gjfJmPfsA#& z_B>N7EfZ-e${n)J7@!7Y^Tyxb!rVmE(up6;9jQKzhz(61?4J!^a} zTP|-{Xo<2^ESHD9ik9rKb=cmx?`;qJh-)I|^ybbA%Q1l0Zw;ir{S+x)QSt2Z8epbq zGQoh}XQkNF_SJ1`#GiDp?%1!xt_n%im1wyfw-}k9kw<2kG`;U5LX^wlF?~`$FgGUO zHv7z$<<$M|&ETO_kNADy26A4xpIXnDbg!3{uTCTnUccB8U;QN*Q$-$w9Y!LXK53rfMYkB<;sEq z?&r?VEH#|n9bPZfy$z6vQs82#{EU=&wpIq>ReULtq@nA5omoo<(AuMJ)=`Mu6%?_` zHYfT(FAFLA4p${NzVE`*VBb{-wM&ueceU{EgTWvqzO`}vpy+*dnQ}C#8oi~_?a@{w zE=en@0w0SckG`fLRKmlA$>8UxT*!xZ%L!04DreyRITkcgWNVC|0?`jRFxj`9mB*XZ zyB+S9`a*(rite)?*!CF)bmPbkmD4A+kG1Km3p{KXfI>B*M~t8-Wkv37f&exUzzGs9 z?VDGKy=pdnI9XxfCuh-awRTY!b_DNY8kOvjhU(6|yw&pM%$FQl1pQV*A^&AE^7ME> zmknZ^&pSoY->*{3ZFf&VD;I{s#YUhpVEBiaW7kW1b4A5Kr=D0Z_GAC8;EDWDK3m~y zy(tw0tW3rW1HY=|x@*O5WLX-IL&MtcMKERV4g{E6ez2;eXJVJ-8`VPw3T=9Wm5Hk* zc>D|t4| zyLCncDL33TIIK+l8t4haHQI~R%9mDaC-okzy=o;g&M)&nVUQg$vGow=VwZb@s9{rh zN#NigtU74f2}1~iEG7&iMDuC>EFVVnJ=o%M(Xf{2S68MpjL24puZ8=#w8hbLy~{w> zBuK!&i1wzkrYXx*QBg6C#lJ@Nj+t&#TE;h3{PrF%qgOXyRb&B}9nOehWRVQ=;QmY) zpm${X)46p!GE0@yfV{X=%qoHpVz4G8)c^z{bIF)bRC-_7$7^7neba&8*Xxu$cPn(( z-HK$W&3cUU?3}(xS?+Ugo4s5s>=p%VA|mU>rfs@%Nu@9i7AoAFD4FLn)EPq+Dg%*ZTE=F(Uv|B%%JHaqL<3WLxl=7gH zuf}O=x^0DXHrDrrS;ne6RJCj~FF44f_|UuggSk)-$R`F#gK}OCbY#!=7!o@#%NvG8 zz`T<=A+4Jw8p;6elmN=zg&D!h)KK_3?o zVfScW_tq$W$&~D6g@pFf3){AEM6JdT;pfJi-kACN1neFX+SIlU#NiIV0s~g@z`NC5 zD5$S9wK2yVS9O+E`0HvM6~M`* z1<+1_JSQh@%&Y-4tOX>+3(h3lVFNGadK_cKDHq+$TyL9yQHA&eXuzLQ%K*ztfTQDo zy4P3LK*j?=rdHL+^TJz|@#xqOSPp@|B-U^uhbd&WTt_{bYej-NAB>c=cKFl-G z7(T^`MfzIt0L?VDCJt8Xp3YSdht+z7RSo0XEm$s?W6Ht%XVYNNLDSA9mPE*FCn>+_ zjLzYNQP9or-Dw_HtzNa^VIacnb(my&cJtg^)u2s%|D| zR!uOf+rF?P{*it5tjA7PZj@O>dZAWT6O!)zD1g2SVMrbAV~KJ&@u-SATBQ#;s_Fv5 z8%uf!c!sT!Ah}^J##Bc^Zou2OE!Ue>4{<66y1JH-xdIwcdIVq{?tu}Iz%X@hcBP@- zu$Dp>d`c*Cq+u6x&Qn8HP;onYD9o3`0Fu+_ik8T)+b@kA{kVDO@TJ);mRJWWwXj5W zOwh2cP4(Et3*GWIFxC(=RN&p4%^V6diJ488kO6Dv zCs$tr{(v;wSx=ER{oivWLQdV8EsxNr&*Be+2XOAz1z8CpE(v~ant&$R(;m?d0DK^0 z2Su1ULuQzl6Br+QBJ&mmO=8DS`M%yU5m14j%BOjI?64=XAoAG)$l{Y1sfb*X=uk*W z1*lni2>SO4oc7%4+f34e9J&=G$cw1im`Cr*{mkm|gU~Xk= z9GL*`Ofgj9!q|>|hQttUng6lcZBr7b=2#yD!flm#V zb@qTaECIr`OjB*q*e0o?_23L#^^ zbp@|v0s^$YzWT|U*{|#S(S1L3S>NSJ=z3|>1I{_`_EcjLkaa;+MrUi)b<&9HcIJ8LA z6;!J~$6f#IS7wUfW_Z$n`DUw7yJ~|Chi6bnwK=D-7ZQru1RV)$c_c26@Uax^hHj<39K(tz20*m!3>}5 z`x91;o}L>OpaUhJeNAYKqQ^;y^km~FSdK7(hYVF(lVqopP{Q0pJ)$e8movFK{%r1q z>yL+}sw4gR+9uCQaErG?rn3I@r3&Gb0E4j46-a^L*bn}{xVx?MJjZbWs`8B-_L@=b zq9xjtgxJR+50#`T1^7}Qp3nD)6k;;7ZQXHhf#ChDpv*Yi)^q1j0r7$Wi20V-YJtAf z37l)^H^jDTzDJf)`L1<>7sP7F&M32=OZSQ2P+iagDg@uYrIg82T_@jKcf#jZ{giJg z()UH3=6ydYVCcWg)Fv|P|5xpEl-3CPsL*f9-3{LIEO_U#ozsz+$2ia}JGzs(bkpI; zh2XPuxAr^zP}{PwZ z;vXN#CeHH|{Dw&1HTe^q2Cl-ye?Ek9spC>%3HMW${p_wI_-Oy0L%TC~+6Da|N#eQM literal 0 HcmV?d00001 diff --git a/windows/deploy/index.md b/windows/deploy/index.md index 38c64b3abc..9bce9810da 100644 --- a/windows/deploy/index.md +++ b/windows/deploy/index.md @@ -17,6 +17,7 @@ Learn about deploying Windows 10 for IT professionals. |------|------------| |[Windows 10 deployment scenarios](windows-10-deployment-scenarios.md) |To successfully deploy the Windows 10 operating system in your organization, it is important to understand the different ways that it can be deployed, especially now that there are new scenarios to consider. Choosing among these scenarios, and understanding the key capabilities and limitations of each, is a key task. | |[Manage Windows upgrades with Upgrade Analytics](manage-windows-upgrades-with-upgrade-analytics.md) |With Upgrade Analytics, enterprises now have the tools to plan and manage the upgrade process end to end, allowing them to adopt new Windows releases more quickly. With Windows telemetry enabled, Upgrade Analytics collects system, application, and driver data for analysis. We then identify compatibility issues that can block an upgrade and suggest fixes when they are known to Microsoft. The Upgrade Analytics workflow steps you through the discovery and rationalization process until you have a list of computers that are ready to be upgraded. | +|[Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) |This guide contains instructions to configure a proof of concept (PoC) environment requiring a minimum amount of resources. The guide makes extensive use of Windows PowerShell and Hyper-V. Subsequent companion guides contain steps to deploy Windows 10 using the PoC environment. After completing this guide, see the following Windows 10 PoC deployment guides: [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md), [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md). | |[Deploy Windows 10 with the Microsoft Deployment Toolkit](deploy-windows-10-with-the-microsoft-deployment-toolkit.md) |This guide will walk you through the process of deploying Windows 10 in an enterprise environment using the Microsoft Deployment Toolkit (MDT), and MDT 2013 Update 2 specifically. | |[Deploy Windows 10 with System Center 2012 R2 Configuration Manager](deploy-windows-10-with-system-center-2012-r2-configuration-manager.md) |If you have Microsoft System Center 2012 R2 Configuration Manager in your environment, you will most likely want to use it to deploy Windows 10. This topic will show you how to set up Configuration Manager for operating system deployment and how to integrate Configuration Manager with the Microsoft Deployment Toolkit (MDT) or, more specifically, MDT 2013 Update 2. | |[Upgrade to Windows 10 with the Microsoft Deployment Toolkit](upgrade-to-windows-10-with-the-microsoft-deployment-toolkit.md) |The simplest path to upgrade PCs that are currently running Windows 7, Windows 8, or Windows 8.1 to Windows 10 is through an in-place upgrade. You can use a Microsoft Deployment Toolkit (MDT) 2013 Update 2 task sequence to completely automate the process. | diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index becba41a90..5ef038530a 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -18,7 +18,7 @@ author: greg-lindsay - [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) - [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) -Please complete all steps in these guides before attempting the procedures in this guide. If you wish to skip the Windows 10 deployment procedures in the MDT guide and move directly to this guide, you must at least install MDT and the Windows ADK before performing procedures in this guide. +Please complete all steps in these guides before attempting the procedures in this guide. If you wish to skip the Windows 10 deployment procedures in the MDT guide and move directly to this guide, you must at least install MDT and the Windows ADK before performing procedures in this guide. All steps in the first guide are required before attempting the procedures in this guide. The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): - **DC1**: A contoso.com domain controller, DNS server, and DHCP server. @@ -27,11 +27,11 @@ The PoC environment is a virtual network running on Hyper-V with three virtual m This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. ->Multiple features and services are installed on SRV1 in this guide. If less than 4 GB of RAM is allocated to SRV1 in the Hyper-V console, some procedures will be extremely slow to complete. If resources are limited on the Hyper-V host, consider reducing RAM allocation on DC1 and PC1, and then increasing the RAM allocation on SRV1. You can adjust RAM allocation for a VM by right-clicking the VM in the Hyper-V Manager console, clicking **Settings**, clicking **Memory**, and modifying the value next to **Maximum RAM**. +>Multiple features and services are installed on SRV1 in this guide. This is not a typical installation, and is only done to set up a lab environment with a bare minimum of resources. However, if less than 4 GB of RAM is allocated to SRV1 in the Hyper-V console, some procedures will be extremely slow to complete. If resources are limited on the Hyper-V host, consider reducing RAM allocation on DC1 and PC1, and then increasing the RAM allocation on SRV1. You can adjust RAM allocation for a VM by right-clicking the VM in the Hyper-V Manager console, clicking **Settings**, clicking **Memory**, and modifying the value next to **Maximum RAM**. ## In this guide -This guide provides instructions to install and configure the Microsoft Deployment Toolkit (MDT) to deploy a Windows 10 image. +This guide provides end-to-end instructions to install and configure System Center Configuration Manager, and use it to deploy a Windows 10 image. Depending on the speed of your Hyper-V host, the procedures in this guide will require 6-10 hours to complete. Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. @@ -43,15 +43,15 @@ Topics and procedures in this guide are summarized in the following table. An es [Install prerequisites](#install-prerequisites)Install prerequisite Windows Server roles and features, download, install and configure SQL Server, configure firewall rules, and install the Windows ADK.60 minutes [Install System Center Configuration Manager](#install-system-center-configuration-manager)Download System Center Configuration Manager, configure prerequisites, and install the package.45 minutes [Download MDOP and install DaRT](#download-mdop-and-install-dart)Download the Microsoft Desktop Optimization Pack 2015 and install DaRT 10.15 minutes -[Prepare for Zero Touch installation](#prepare-for-zero-touch-installation)Multiple procedures to support Zero Touch installation.60 minutes +[Prepare for Zero Touch installation](#prepare-for-zero-touch-installation)Prerequisite procedures to support Zero Touch installation.60 minutes [Create a boot image for Configuration Manager](#create-a-boot-image-for-configuration-manager)Use the MDT wizard to create the boot image in Configuration Manager.20 minutes -[Create a Windows 10 reference image](#something)This procedure can be skipped if it was done previously, otherwise instructions are provided to create a reference image.0-60 minutes -[Add a Windows 10 operating system image](#something)Add a Windows 10 operating system image and distribute it.10 minutes -[Create a task sequence](#something)Create a Configuration Manager task sequence with MDT integration using the MDT wizard15 minutes -[Finalize the operating system configuration](#something)Enable monitoring, configure rules, and distribute content.30 minutes -[Deploy Windows 10 using PXE and Configuration Manager](#something)Deploy Windows 10 using Configuration Manager deployment packages and task sequences.90 minutes -[Refresh a client with Windows 10 using Configuration Manager](#something)Use a task sequence to refresh a client with Windows 10 using Configuration Manager and MDT90 minutes -[Replace a client with Windows 10 using Configuration Manager](#something)Replace a client computer with Windows 10 using Configuration Manager.90 minutes +[Create a Windows 10 reference image](#create-a-windows-10-reference-image)This procedure can be skipped if it was done previously, otherwise instructions are provided to create a reference image.0-60 minutes +[Add a Windows 10 operating system image](#add-a-windows-10-operating-system-image)Add a Windows 10 operating system image and distribute it.10 minutes +[Create a task sequence](#Create a task sequence)Create a Configuration Manager task sequence with MDT integration using the MDT wizard15 minutes +[Finalize the operating system configuration](#finalize-the-operating-system-configuration)Enable monitoring, configure rules, and distribute content.30 minutes +[Deploy Windows 10 using PXE and Configuration Manager](#deploy-windows-10-using-pxe-and-configuration-manager)Deploy Windows 10 using Configuration Manager deployment packages and task sequences.60 minutes +[Refresh a client with Windows 10 using Configuration Manager](#refresh-a-client-with-windows-10-using-configuration-manager)Use a task sequence to refresh a client with Windows 10 using Configuration Manager and MDT90 minutes +[Replace a client with Windows 10 using Configuration Manager](#replace-a-client-with-windows-10-using-configuration-manager)Replace a client computer with Windows 10 using Configuration Manager.90 minutes @@ -272,9 +272,9 @@ This section contains several procedures to support Zero Touch installation with ### Configure a boundary group -1. In the Administration workspace, right-click **Boundaries** and then click **Create Boundary**. +1. In the Administration workspace, expand **Hierary Configuration**, right-click **Boundaries** and then click **Create Boundary**. 2. Next to **Description**, type **PS1**, next to **Type** choose **Active Directory Site**, and then click **Browse**. -3. Choose **Default-First-Site-Name** and then click **OK**. +3. Choose **Default-First-Site-Name** and then click **OK** twice. 4. In the Administration workspace, right-click **Boundary Groups** and then click **Create Boundary Group**. 5. Next to **Name**, type **PS1 Site Assignment and Content Location**, click **Add**, select the **Default-First-Site-Name** boundary and then click **OK**. 6. On the **References** tab in the **Create Boundary Group** window select the **Use this boundary group for site assignment** checkbox. @@ -297,7 +297,7 @@ This section contains several procedures to support Zero Touch installation with - Enable unknown computer support. Click **OK** in the popup that appears. - Require a password when computers use PXE - Password and Confirm password: pass@word1 - - Respond to PXE requests on specific network interfaces: Enter the MAC address determined in the first step of this procedure. + - Respond to PXE requests on specific network interfaces: Click the yellow starburst and then enter the MAC address determined in the first step of this procedure. See the following example: @@ -323,8 +323,11 @@ This section contains several procedures to support Zero Touch installation with Invoke-Item 'C:\Program Files\Microsoft Configuration Manager\tools\cmtrace.exe' ``` - The log file will updated continuously while Configuration Manager is running. Wait for Configuration Manager to repair any issues that are present, and periodically re-check that the files are present in the C:\RemoteInstall\SMSBoot\x64 directory. Close the Configuration Manager Trace Log Tool when done. + The log file will updated continuously while Configuration Manager is running. Wait for Configuration Manager to repair any issues that are present, and periodically re-check that the files are present in the C:\RemoteInstall\SMSBoot\x64 directory. Close the Configuration Manager Trace Log Tool when done. You will see the following line in distmgr.log that indicates the C:\RemoteInstall directory is being populated with necessary files: + Running: WDSUTIL.exe /Initialize-Server /REMINST:"C:\RemoteInstall" + + Once the files are present in C:\RemoteInstall, you can close the cmtrace tool. ### Create a branding image file @@ -347,9 +350,9 @@ This section contains several procedures to support Zero Touch installation with 5. On the Components page, in addition to the default selection of **Microsoft Data Access Components (MDAC/ADO) support**, select the **Microsoft Diagnostics and Recovery Toolkit (DaRT)** checkbox, and click **Next**. 6. On the Customization page, select the **Use a custom background bitmap file** checkbox, and under **UNC path**, type or browse to **\\\SRV1\Sources$\OSD\Branding\contoso.bmp**, and then click **Next** twice. It will take a few minutes to generate the boot image. 7. Click **Finish**. -8. Right-click the **Zero Touch WinPE x64** boot image, and then click **Distribute Content**. +8. In the console display pane, right-click the **Zero Touch WinPE x64** boot image, and then click **Distribute Content**. 9. In the Distribute Content Wizard, click **Next**, click **Add** and select **Distribution Point**, select the **SRV1.CONTOSO.COM** checkbox, click **OK**, click **Next** twice, and then click **Close**. -10. Use the CMTrace application to view the **distmgr.log** file and verify that the boot image has been distributed. To open CMTrace, type the following command at an elevated Windows PowerShell prompt on SRV1: +10. Use the CMTrace application to view the **distmgr.log** file again and verify that the boot image has been distributed. To open CMTrace, type the following command at an elevated Windows PowerShell prompt on SRV1: ``` Invoke-Item 'C:\Program Files\Microsoft Configuration Manager\tools\cmtrace.exe' @@ -567,7 +570,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 4. On the Details page, enter the following settings:
    - Join a domain: contoso.com
    - Account: click **Set**
    - - User name: contoso\administrator
    + - User name: contoso\CM_JD
    - Password: pass@word1
    - Confirm password: pass@word1
    - Click **OK**
    @@ -596,7 +599,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 12. On the USMT Package page, browse and select the **Microsoft Corporation User State Migration Tool for Windows 8 10.0.14393.0** package, and then click **Next**. -13. On the Settings Package page, select **Create a new settings package**, and under **Package source folder to be created (UNC Path):**, type **\\SRV1\Sources$\OSD\Settings\Windows 10 x64 Settings**, and then click **Next**. +13. On the Settings Package page, select **Create a new settings package**, and under **Package source folder to be created (UNC Path):**, type **\\\SRV1\Sources$\OSD\Settings\Windows 10 x64 Settings**, and then click **Next**. 14. On the Settings Details page, next to **Name:**, type **Windows 10 x64 Settings**, and click **Next**. @@ -750,7 +753,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi ## Refresh a client with Windows 10 using Configuration Manager ->Before starting this section, you can delete computer objects from Active Directory that were created as part of previous deployment procedures. Use the Active Directory Users and Computers console to remove stale entries under contoto.com\Computers, but **do not delete the computer account for PC1**. There should be at least two computer accounts present in the contoso.com\Computers container: one for SRV1, and one for the computer name of PC1. It is not required to delete the stale entries, this is only done to remove clutter. +>Before starting this section, you can delete computer objects from Active Directory that were created as part of previous deployment procedures. Use the Active Directory Users and Computers console to remove stale entries under contoto.com\Computers, but **do not delete the computer account (hostname) for PC1**. There should be at least two computer accounts present in the contoso.com\Computers container: one for SRV1, and one for the hostname of PC1. It is not required to delete the stale entries, this is only done to remove clutter. ### Install the Configuration Manager client on PC1 @@ -765,13 +768,15 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi 4. Double-click **Active Directory System Discovery** and on the **General** tab select the **Enable Active Directory System Discovery** checkbox. 5. Click the yellow starburst, click **Browse**, select **contoso\Computers**, and then click **OK** three times. 6. When a popup dialog box asks if you want to run full discovery, click **Yes**. -7. In the Assets and Compliance workspace, expand Devices and click All Systems. Verify that a computer account for SRV1 and PC1 are displayed. See the following example: +7. In the Assets and Compliance workspace, expand **Devices** and click **All Systems**. Verify that a computer account for SRV1 and PC1 are displayed. See the following example (GREGLIN-PC1 is the hostname of PC1 in this example): ![assets](images/sccm-assets.png) + >If you only see the **Devices** parent node, you can add and view device collections in the tree by clicking **Device Collections** and then double-clicking a device collection. + The **Client** column indicates that the Configuration Manager client is not currently installed. This procedure will be carried out next. -3. Sign in to PC1 using the contoso\administrator account and type the following at an elevated command prompt to remove any pre-existing client configuration, if it exists: +8. Sign in to PC1 using the contoso\administrator account and type the following at an elevated command prompt to remove any pre-existing client configuration, if it exists: ``` sc stop ccmsetup @@ -779,7 +784,7 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi ``` >If PC1 still has Configuration Manager registry settings that were applied by Group Policy, startup scripts, or other policies in its previous domain, these might not all be removed by CCMSetup /Uninstall and can cause problems with installation or registration of the client in its new environment. It might be necessary to manually remove these settings if they are present. For more information, see [Manual removal of the SCCM client](https://blogs.technet.microsoft.com/michaelgriswold/2013/01/02/manual-removal-of-the-sccm-client/). -4. On PC1, temporarily stop Windows Update from queuing items for download and clear all BITS jobs from the queue: +9. On PC1, temporarily stop Windows Update from queuing items for download and clear all BITS jobs from the queue: ``` net stop wuauserv @@ -790,47 +795,43 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi ``` del "%ALLUSERSPROFILE%\Application Data\Microsoft\Network\Downloader\qmgr*.dat" - net start BITS + net start BITSexit bitsadmin /list /allusers ``` Verify that BITSAdmin displays 0 jobs. -3. To install the Configuration Manager client as a standalone process, type the following at an elevated command prompt: +10. To install the Configuration Manager client as a standalone process, type the following at an elevated command prompt: ``` "\\SRV1\c$\Program Files\Microsoft Configuration Manager\Client\CCMSetup.exe" /mp:SRV1.contoso.com /logon SMSSITECODE=PS1 ``` -4. On PC1, using file explorer, open the C:\Windows\ccmsetup directory. During client installation, files will be downloaded here. -5. Installation progress will be captured in the file: **c:\windows\ccmsetup\logs\ccmsetup.log**. You can periodically open this file in notepad, or you can type the following command at an elevated Windows PowerShell prompt to monitor installation progress: +11. On PC1, using file explorer, open the **C:\Windows\ccmsetup** directory. During client installation, files will be downloaded here. +12. Installation progress will be captured in the file: **c:\windows\ccmsetup\logs\ccmsetup.log**. You can periodically open this file in notepad, or you can type the following command at an elevated Windows PowerShell prompt to monitor installation progress: ``` Get-Content -Path c:\windows\ccmsetup\logs\ccmsetup.log -Wait ``` - Installation might require several minutes. When setup is complete, verify that **CcmSetup is existing with return code 0** is displayed on the last line of the ccmsetup.log file and then press **CTRL-C** to break out of the -Wait Get-Content operation. A return code of 0 indicates that installation was successful and you should now see a directory created at C:\Windows\CCM that contains files used in registration of the client with its site. + Installation might require several minutes, and display of the log file will appear to hang while some applications are installed. This is normal. When setup is complete, verify that **CcmSetup is existing with return code 0** is displayed on the last line of the ccmsetup.log file and then press **CTRL-C** to break out of the Get-Content operation. A return code of 0 indicates that installation was successful and you should now see a directory created at **C:\Windows\CCM** that contains files used in registration of the client with its site. -6. On PC1, open the Configuration Manager control panel applet by typing the following command: +13. On PC1, open the Configuration Manager control panel applet by typing the following command: ``` control smscfgrc ``` -7. Click the Site tab and click Find Site. The client should report that it has found the PS1 site. See the following example: +14. Click the **Site** tab and click **Find Site**. The client will report that it has found the PS1 site. See the following example: ![site](images/sccm-site.png) - If the client is not able to find the PS1 site, review any error messages that are displayed in C:\Windows\CCM\Logs\ClientIDManagerStartup.log and LocationServices.log. + If the client is not able to find the PS1 site, review any error messages that are displayed in **C:\Windows\CCM\Logs\ClientIDManagerStartup.log** and **LocationServices.log**. -8. On SRV1, in the Assets and Compliance workspace, click **All Desktop and Server Clients** and verify that the computer account for PC1 is displayed here with **Yes** and **Active** in the **Client** and **Client Activity** columns, respectively. You might have to refresh the view and wait few minutes for the client to appear here. See the following example: +15. On SRV1, in the Assets and Compliance workspace, click **All Desktop and Server Clients** and verify that the computer account for PC1 is displayed here with **Yes** and **Active** in the **Client** and **Client Activity** columns, respectively. You might have to refresh the view and wait few minutes for the client to appear here. See the following example: ![client](images/sccm-client.png) -9. When the client has completed installation, create a checkpoint for PC1 so that you can restore it later. To create a checkpoint, type the following at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - Checkpoint-VM -Name PC1 -SnapshotName Client-installed - ``` + >It might take several minutes for the client to fully register with the site and complete a client check. When it is complete you will see a green check mark over the client icon as shown above. ### Create a device collection and deployment @@ -862,58 +863,78 @@ If you have already completed steps in [Deploy Windows 10 in a test lab using Mi - Summary > Click **Next**
    - Verify that the wizard completed successfully and then click **Close** +6. **Important** Before initiating a computer refresh, save a checkpoint for all three computers: PC1, SRV1, and DC1. This ensures that we can restore all computers, including Active Directory and the Configuration Manager client status to the pre-Windows 10 installation state prior to running the replace procedure. To save checkpoints, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName cm-start + Checkpoint-VM -Name SRV1 -SnapshotName cm-start + Checkpoint-VM -Name DC1 -SnapshotName cm-start + ``` + ### Initiate the computer refresh -1. In the Assets and Compliance workspace, click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. +1. On SRV1, in the Assets and Compliance workspace, click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. 2. Right-click the computer account for PC1, point to **Client Notification**, click **Download Computer Policy**, and click **OK** in the popup dialog box. 3. On PC1, in the notification area, click **New sofware is available** and then click **Open Sofware Center**. 4. In the Sofware Center, click **Operating Systems**, click **Windows 10 Enterprise x64**, click **Install** and then click **INSTALL OPERATING SYSTEM**. See the following example: ![installOS](images/sccm-install-os.png) -The computer will restart several times during the installation process. When installation has completed, sign in using the contoso\administrator account and verify that applications and settings have been successfully backed up and restored to the new operating system. + The computer will restart several times during the installation process. Installation includes downloading updates, reinstalling the Configuration Manager Client Agent, and restoring the user state. You can view status of the installation in the Configuration Manager console by accessing the Monitoring workspace, clicking **Deployments**, and then double-clicking the deployment associated with the **Install Windows 10 Enterprise x64** collection. Under **Asset Details**, right-click the device and then click **More Details**. Click the **Status** tab to see a list of tasks that have been performed. See the following example: -5. Save a checkpoint of the computer for later reference. To save a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + ![asset](images/sccm-asset.png) + + You can also monitor progress of the installation by using the MDT deployment workbench and viewing the **Monitoring** node under **Deployment Shares\MDT Production**. + + When installation has completed, sign in using the contoso\administrator account or the contoso\user1 account and verify that applications and settings have been successfully backed up and restored to your new Windows 10 Enterprise operating system. + + ![post-refresh](images/sccm-post-refresh.png) + +5. Save checkpoints for all VMs if you wish to review their status at a later date. This is not required. To save a checkpoint for all VMs, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: ``` - Checkpoint-VM -Name PC1 -SnapshotName RefreshState2 + Checkpoint-VM -Name DC1 -SnapshotName cm-refresh + Checkpoint-VM -Name SRV1 -SnapshotName cm-refresh + Checkpoint-VM -Name PC1 -SnapshotName cm-refresh ``` ## Replace a client with Windows 10 using Configuration Manager -Before starting the replace procedure, restore PC1 to the checkpoint created in the previous procedure. To restore the checkpoint, type the following at an elevated Windows PowerShell prompt on the Hyper-V host: +Before starting the replace procedure, restore all three VMs using the checkpoints created in the previous procedure. To restore the checkpoints and connect to the VMs again, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: - ``` - Restore-VMSnapshot -VMName PC1 -Name Client-installed -Confirm:$false - Start-VM PC1 - vmconnect localhost PC1 - ``` +``` +Restore-VMSnapshot -VMName DC1 -Name cm-start -Confirm:$false +Restore-VMSnapshot -VMName SRV1 -Name cm-start -Confirm:$false +Restore-VMSnapshot -VMName PC1 -Name cm-start -Confirm:$false +Start-VM DC1 +vmconnect localhost DC1 +Start-VM SRV1 +vmconnect localhost SRV1 +Start-VM PC1 +vmconnect localhost PC1 +``` ->Restoring a checkpoint for PC1 back to a different OS will create two entries for PC1 in the Configuration Manager console. One entry will have OS build version 10.x.xxxxx and the other will display the older OS that was installed on PC before it was upgraded. This is OK, but you can also delete the entry that is out of date. +>If resources are limited in the Hyper-V environment, SRV1 can require several minutes for all services to start and present the sign-in screen after restoring VMs. Verify that all required services are running, and start any service that are not running. Use the Server Manager dashboard to view and start services. When all services are running, open the Configuration Manager console. ### Create a replace task sequence 1. On SRV1, in the Configuration Manager console, in the Software Library workspace, expand **Operating Systems**, right-click **Task Sequences**, and then click **Create MDT Task Sequence**. - 2. On the Choose Template page, select **Client Replace Task Sequence** and click **Next**. 3. On the General page, type the following: -- Task sequence name: **Replace Task Sequence** -- Task sequence comments: **USMT backup only** + - Task sequence name: **Replace Task Sequence** + - Task sequence comments: **USMT backup only** 4. Click **Next**, and on the Boot Image page, browse and select the **Zero Touch WinPE x64** boot image package. Click **OK** and then click **Next** to continue. - 5. On the MDT Package page, browse and select the **MDT 2013** package. Click **OK** and then click **Next** to continue. - 6. On the USMT Package page, browse and select the **Microsoft Corporation User State Migration Tool for Windows** package. Click **OK** and then click **Next** to continue. - 7. On the Settings Package page, browse and select the **Windows 10 x64 Settings** package. Click **OK** and then click **Next** to continue. - 8. On the Summary page, review the details and then click **Next**. - 9. On the Confirmation page, click **Finish**. +>If you receive an error at this stage it can be caused by a corrupt MDT integration. To repair it, close the Configuration Manager console, remove MDT integration, and then restore MDT integration. + ### Deploy PC4 Create a VM named PC4 to receive the applications and settings from PC1. This VM represents a new computer that will replace PC1. To create this VM, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: @@ -945,7 +966,7 @@ Set-VMNetworkAdapter -VMName PC4 -StaticMacAddress 00-15-5D-83-26-FF 7. Right-click the association in the display pane and then click **View Recovery Information**. A recovery key has been assigned, but a user state store location has not. Click **Close**. -8. Click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. Verify that **PC4** is displayed in the collection. You might have to update and refresh the collection, or wait a few minutes, but do not proceed until PC4 is available. If you did not delete the PC1 hostname from the console this will also be displayed here as an inactive computer. See the following example: +8. Click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. Verify that **PC4** is displayed in the collection. You might have to update and refresh the collection, or wait a few minutes, but do not proceed until PC4 is available. See the following example: ![collection](images/sccm-collection.png) @@ -962,14 +983,13 @@ Set-VMNetworkAdapter -VMName PC4 -StaticMacAddress 00-15-5D-83-26-FF - Search for Resources > Attribute name: **Name**
    - Search for Resources > Value: **%**
    - Select Resources > Value: Select the computername associated with the PC1 VM.
    - - If there is an entry that is obsolete, do not select this entry.
    - Click **Next** twice and then click **Close** in both windows. 3. Click **Device Collections** and then double-click **USMT Backup (Replace)**. Verify that the computer name/hostname associated with PC1 is displayed in the collection. Do not proceed until this name is displayed. ### Create a new deployment -In the Configuration Manager console, in the Software Library workspace, click Task Sequences, right-click Replace Task Sequence, click Deploy, and use the following settings: +In the Configuration Manager console, in the Software Library workspace, click **Task Sequences**, right-click **Replace Task Sequence**, click **Deploy**, and use the following settings: - General > Collection: **USMT Backup (Replace)**
    - Deployment Settings > Purpose: **Available**
    - Deployment Settings > Make available to the following: **Only Configuration Manager Clients**
    @@ -986,9 +1006,26 @@ In the Configuration Manager console, in the Software Library workspace, click T ``` control smscfgrc ``` -2. On the **Actions** tab, click **Machine Policy Retrieval & Evaluation Cycle**, click **Run Now**, click **OK**, and then click **OK** again. +2. On the **Actions** tab, click **Machine Policy Retrieval & Evaluation Cycle**, click **Run Now**, click **OK**, and then click **OK** again. This is another method that can be used in addition to the Client Notification method used previously. -3. +3. Using the Software Center as was done in the previous procedure, click **Operating Systems** and then click **Replace Task Sequence**. See the following example: + + ![software](images/sccm-software-cntr.png) + +4. Click **Install** and then click **INSTALL OPERATING SYSTEM**. +5. Allow the **Replace Task Sequence** to complete, then verify that the C:\MigData folder on SRV1 contains the USMT backup. + +### Deploy the new computer + +1. Start PC4 and press ENTER for a network boot when prompted. To start PC4, type the following commands at an elevated Windows Powershell prompt on the Hyper-V host: + + ``` + Start-VM PC4 + vmconnect localhost PC4 + ``` +2. In the **Welcome to the Task Sequence Wizard**, enter **pass@word1** and click **Next**. +3. Choose the **Windows 10 Enterprise X64** image. +4. Setup will install the operating system, install the configuration manager client, join PC4 to the domain, and restore users and settings from PC1. ## Related Topics diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 45164baec0..6156ac502d 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -27,6 +27,8 @@ Windows PowerShell commands are provided to set up the PoC environment quickly. >Instructions to "type" Windows PowerShell commands provided in this guide can be followed literally by typing the commands, but the preferred method is to copy and paste these commands. +>A Windows PowerShell window can be used to run all commands in this guide. However, when commands are specified for a command prompt, you must either type CMD at the Windows PowerShell prompt to enter the command prompt, or preface the command with "cmd /c", or if desired you can escape special characters in the command using the back-tick character (`). In most cases, the simplest thing is to type cmd and enter a command prompt, type the necessary commands, then type "exit" to return to Windows PowerShell. + Hyper-V is installed, configured and used extensively in this guide. If you are not familiar with Hyper-V, review the [terminology](#appendix-b-terminology-in-this-guide) used in this guide before starting. ## In this guide From 76bdea1db23aa9b175f65d00df6fea6b1c087e2e Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 19 Jan 2017 21:40:33 -0800 Subject: [PATCH 115/210] done but requires further testing --- windows/deploy/windows-10-poc-mdt.md | 4 ++-- windows/deploy/windows-10-poc-sc-config-mgr.md | 6 +++--- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 63b5382966..944c0227cf 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -454,10 +454,10 @@ This section will demonstrate how to export user data from an existing client co If the PC1 VM is not already running, then start and connect to it: -

    +    ```
         Start-VM PC1
         vmconnect localhost PC1
    -    
    + ``` 1. Switch back to the Hyper-V host and create a checkpoint for the PC1 VM so that it can easily be reverted to its current state for troubleshooting purposes and to perform additional scenarios. Checkpoints are also known as snapshots. To create a checkpoint for the PC1 VM, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md index 5ef038530a..d9278a15c5 100644 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -954,9 +954,9 @@ Set-VMNetworkAdapter -VMName PC4 -StaticMacAddress 00-15-5D-83-26-FF 2. On the Select Source page, choose **Import single computer** and click **Next**. 3. On the Single Computer page, use the following settings: -- Computer Name: **PC4** -- MAC Address: **00:15:5D:83:26:FF** -- Source Computer: + - Computer Name: **PC4** + - MAC Address: **00:15:5D:83:26:FF** + - Source Computer: 4. Click **Next**, and then on the User Accounts page choose **Capture and restore all user accounts**. Click **Next** twice to continue. From de679bc0c14a38f8e1db52a178be93ac25dbf544 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Thu, 19 Jan 2017 21:43:39 -0800 Subject: [PATCH 116/210] done but requires further testing --- windows/deploy/windows-10-poc-mdt.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md index 944c0227cf..057d16d9f6 100644 --- a/windows/deploy/windows-10-poc-mdt.md +++ b/windows/deploy/windows-10-poc-mdt.md @@ -18,7 +18,7 @@ author: greg-lindsay **Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in the following guide: - [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) -Please complete all steps in the prerequisite guide before starting this guide. After completing the current guide, also see the companion guide: +Please complete all steps in the prerequisite guide before starting this guide. This guide requires about 5 hours to complete, but can require less time or more time depending on the speed of the Hyper-V host. After completing the current guide, also see the companion guide: - [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): From fb1459a8c8ce59deb02965cc40c234d2c1ec511e Mon Sep 17 00:00:00 2001 From: Justinha Date: Fri, 20 Jan 2017 09:54:14 -0800 Subject: [PATCH 117/210] fixed Important note formatting --- windows/keep-secure/credential-guard.md | 2 +- ...ments-and-deployment-planning-guidelines-for-device-guard.md | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/keep-secure/credential-guard.md b/windows/keep-secure/credential-guard.md index bdf1e9d9d1..eaabf72651 100644 --- a/windows/keep-secure/credential-guard.md +++ b/windows/keep-secure/credential-guard.md @@ -61,7 +61,7 @@ The following tables provide more information about the hardware, firmware, and | Hardware: **Trusted Platform Module (TPM)** | **Requirement**: TPM 1.2 or TPM 2.0, either discrete or firmware.

    **Security benefits**: A TPM provides protection for VBS encryption keys that are stored in the firmware. This helps protect against attacks involving a physically present user with BIOS access. | | Firmware: **UEFI firmware version 2.3.1.c or higher with UEFI Secure Boot** | **Requirements**: See the following Windows Hardware Compatibility Program requirement: [System.Fundamentals.Firmware.UEFISecureBoot](http://msdn.microsoft.com/library/windows/hardware/dn932805.aspx#system-fundamentals-firmware-uefisecureboot)

    **Security benefits**: UEFI Secure Boot helps ensure that the device boots only authorized code. This can prevent boot kits and root kits from installing and persisting across reboots. | | Firmware: **Secure firmware update process** | **Requirements**: UEFI firmware must support secure firmware update found under the following Windows Hardware Compatibility Program requirement: [System.Fundamentals.Firmware.UEFISecureBoot](http://msdn.microsoft.com/library/windows/hardware/dn932805.aspx#system-fundamentals-firmware-uefisecureboot).

    **Security benefits**: UEFI firmware just like software can have security vulnerabilities that, when found, need to be patched through firmware updates. Patching helps prevent root kits from getting installed. | -| Software: Qualified **Windows operating system** | **Requirement**: Windows 10 Enterprise, Windows 10 Education, Windows 2016 Server, or Windows Enterprise IoT

    **! Important**:
    Windows Server 2016 running as a domain controller does not support Credential Guard. Only Device Guard is supported in this configuration.

    **Security benefits**: Support for VBS and for management features that simplify configuration of Credential Guard. | +| Software: Qualified **Windows operating system** | **Requirement**: Windows 10 Enterprise, Windows 10 Education, Windows 2016 Server, or Windows Enterprise IoT

    Important:
    Windows Server 2016 running as a domain controller does not support Credential Guard. Only Device Guard is supported in this configuration.


    **Security benefits**: Support for VBS and for management features that simplify configuration of Credential Guard. | > [!IMPORTANT] > The preceding table lists requirements for baseline protections. The following tables list requirements for improved security. You can use Credential Guard with hardware, firmware, and software that support baseline protections, even if they do not support protections for improved security. However, we strongly recommend meeting the requirements for improved security, to significantly strengthen the level of security that Credential Guard can provide. diff --git a/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md b/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md index 82bfc43574..5de3da4f21 100644 --- a/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md +++ b/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md @@ -54,7 +54,7 @@ The following tables provide more information about the hardware, firmware, and | Firmware: **UEFI firmware version 2.3.1.c or higher with UEFI Secure Boot** | **Requirements**: See the following Windows Hardware Compatibility Program requirement: [System.Fundamentals.Firmware.UEFISecureBoot](http://msdn.microsoft.com/library/windows/hardware/dn932805.aspx#system-fundamentals-firmware-uefisecureboot)

    **Security benefits**: UEFI Secure Boot helps ensure that the device boots only authorized code. This can prevent boot kits and root kits from installing and persisting across reboots. | | Firmware: **Secure firmware update process** | **Requirements**: UEFI firmware must support secure firmware update found under the following Windows Hardware Compatibility Program requirement: [System.Fundamentals.Firmware.UEFISecureBoot](http://msdn.microsoft.com/library/windows/hardware/dn932805.aspx#system-fundamentals-firmware-uefisecureboot).

    **Security benefits**: UEFI firmware just like software can have security vulnerabilities that, when found, need to be patched through firmware updates. Patching helps prevent root kits from getting installed. | | Software: **HVCI compatible drivers** | **Requirements**: See the Windows Hardware Compatibility Program requirements under [Filter.Driver.DeviceGuard.DriverCompatibility](https://msdn.microsoft.com/library/windows/hardware/mt589732(v=vs.85).aspx).

    **Security benefits**: [HVCI Compatible](https://blogs.msdn.microsoft.com/windows_hardware_certification/2015/05/22/driver-compatibility-with-device-guard-in-windows-10/) drivers help ensure that VBS can maintain appropriate memory permissions. This increases resistance to bypassing vulnerable kernel drivers and helps ensure that malware cannot run in kernel. Only code verified through code integrity can run in kernel mode. | -| Software: Qualified **Windows operating system** | **Requirement**: Windows 10 Enterprise, Windows 10 Education, Windows 2016 Server, or Windows Enterprise IoT

    **! Important*:*
    Windows Server 2016 running as a domain controller does not support Credential Guard. Only Device Guard is supported in this configuration.

    **Security benefits**: Support for VBS and for management features that simplify configuration of Device Guard. | +| Software: Qualified **Windows operating system** | **Requirement**: Windows 10 Enterprise, Windows 10 Education, Windows 2016 Server, or Windows Enterprise IoT

    Important:
    Windows Server 2016 running as a domain controller does not support Credential Guard. Only Device Guard is supported in this configuration.


    **Security benefits**: Support for VBS and for management features that simplify configuration of Device Guard. | > **Important**  The preceding table lists requirements for baseline protections. The following tables list requirements for improved security. You can use Device Guard with hardware, firmware, and software that support baseline protections, even if they do not support protections for improved security. However, we strongly recommend meeting the requirements for improved security, to significantly strengthen the level of security that Device Guard can provide. From 95ed9932204e54fa096d72135faa99ed32fd11e6 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Fri, 20 Jan 2017 10:22:24 -0800 Subject: [PATCH 118/210] fix note tagging --- ...re-arcsight-windows-defender-advanced-threat-protection.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md index 1c36768862..89b4b13d30 100644 --- a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md @@ -35,12 +35,12 @@ You'll need to configure HP ArcSight so that it can consume Windows Defender ATP - **client_secret**: OAuth 2 Client secret - **auth_url**: ```https://login.microsoftonline.com/?resource=https%3A%2F%2FWDATPAlertExport.Seville.onmicrosoft.com ``` - >!NOTE + >[!NOTE] >Replace *tenantID* with your tenant ID. - **token_url**: `https://login.microsoftonline.com//oauth2/token` - >!NOTE + >[!NOTE] >Replace the *tenantID* value with your tenant ID. - **redirect_uri**: ```https://localhost:44300/wdatpconnector``` From dd9a51acecf4bdfd1166e5e3b9890ee135ac4895 Mon Sep 17 00:00:00 2001 From: Dani Halfin Date: Fri, 20 Jan 2017 10:44:00 -0800 Subject: [PATCH 119/210] Fixed redundance - GP-Intune --- windows/manage/waas-overview.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/manage/waas-overview.md b/windows/manage/waas-overview.md index 1d04eb0c3a..160f38bcad 100644 --- a/windows/manage/waas-overview.md +++ b/windows/manage/waas-overview.md @@ -136,7 +136,7 @@ Microsoft recommends that all organizations have at least a few PCs enrolled in There are many tools with which IT pros can service Windows as a service. Each option has its pros and cons, ranging from capabilities and control to simplicity and low administrative requirements. The following are examples of the servicing tools available to manage Windows as a service updates: - **Windows Update (stand-alone)** provides limited control over feature updates, with IT pros manually configuring the device to be in the CBB servicing branch. Organizations can control which devices defer updates and stay in the CBB servicing branch or remain in CB by selecting the Defer upgrades check box in Start\Settings\Update & Security\Advanced Options on a Windows 10 client. -- **Windows Update for Business** is the second option for servicing Windows as a service. This servicing tool includes a little more control over update deferment and provides centralized management using Group Policy. In Windows 10 version 1511, Windows Update for Business can be used to defer feature updates for up to 8 months and quality updates for up to 4 weeks. Also, these deferment options were available only to clients in the CBB servicing branch. In Windows 10 version 1607 and later, Windows Update for Business can be used to defer feature updates for up to 180 days and quality updates for up to 30 days. These deployment options are available to clients in either the CB or CBB servicing branch. In addition to being able to use Group Policy to manage Windows Update for Business, either option can be configured without requiring any on-premises infrastructure by using Intune. In addition to Intune, organizations can use Group Policy to manage Windows Update for Business. +- **Windows Update for Business** is the second option for servicing Windows as a service. This servicing tool includes a little more control over update deferment and provides centralized management using Group Policy. In Windows 10 version 1511, Windows Update for Business can be used to defer feature updates for up to 8 months and quality updates for up to 4 weeks. Also, these deferment options were available only to clients in the CBB servicing branch. In Windows 10 version 1607 and later, Windows Update for Business can be used to defer feature updates for up to 180 days and quality updates for up to 30 days. These deployment options are available to clients in either the CB or CBB servicing branch. In addition to being able to use Group Policy to manage Windows Update for Business, either option can be configured without requiring any on-premises infrastructure by using Intune. - **Windows Server Update Services (WSUS)** provides extensive control over Windows 10 updates and is natively available in the Windows Server operating system. In addition to the ability to defer updates, organizations can add an approval layer for updates and choose to deploy them to specific computers or groups of computers whenever ready. - **System Center Configuration Manager** provides the greatest control over servicing Windows as a service. IT pros can defer updates, approve them, and have multiple options for targeting deployments and managing bandwidth usage and deployment times. From 19e9acec1eefa4e321c6018afef39c0ea2547f1f Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 20 Jan 2017 11:39:37 -0800 Subject: [PATCH 120/210] change history --- windows/deploy/change-history-for-deploy-windows-10.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/windows/deploy/change-history-for-deploy-windows-10.md b/windows/deploy/change-history-for-deploy-windows-10.md index f7174c7785..88557fd56f 100644 --- a/windows/deploy/change-history-for-deploy-windows-10.md +++ b/windows/deploy/change-history-for-deploy-windows-10.md @@ -14,6 +14,9 @@ This topic lists new and updated topics in the [Deploy Windows 10](index.md) doc ## January 2017 | New or changed topic | Description | |----------------------|-------------| +| [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) | New | +| [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) | New | +| [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) | New | | [Apply a provisioning package](provisioning-apply-package.md) | New (previously published in other topics) | | [Create a provisioning package for Windows 10](provisioning-create-package.md) | New (previously published in Hardware Dev Center on MSDN) | | [Create a provisioning package with multivariant settings](provisioning-multivariant.md) | New (previously published in Hardware Dev Center on MSDN) | From ae0c837b179c7ba0db3c91c7358034940cc2a7da Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Fri, 20 Jan 2017 12:32:12 -0800 Subject: [PATCH 121/210] add video --- .../manage/change-history-for-manage-and-update-windows-10.md | 1 + windows/manage/waas-quick-start.md | 2 ++ windows/manage/waas-update-windows-10.md | 4 +++- 3 files changed, 6 insertions(+), 1 deletion(-) diff --git a/windows/manage/change-history-for-manage-and-update-windows-10.md b/windows/manage/change-history-for-manage-and-update-windows-10.md index 26af07a521..c9e8313b65 100644 --- a/windows/manage/change-history-for-manage-and-update-windows-10.md +++ b/windows/manage/change-history-for-manage-and-update-windows-10.md @@ -21,6 +21,7 @@ This topic lists new and updated topics in the [Manage and update Windows 10](in | [Cortana integration in your business or enterprise](cortana-at-work-overview.md) | New | | [Start layout XML for desktop editions of Windows 10](start-layout-xml-desktop.md) | New (previously published in Hardware Dev Center on MSDN) | | [Start layout XML for mobile editions of Windows 10](start-layout-xml-mobile.md) | New (previously published in Hardware Dev Center on MSDN) | +| [Quick guide to Windows as a service](waas-quick-start.md) | Added video that explains how Windows as a service works. | diff --git a/windows/manage/waas-quick-start.md b/windows/manage/waas-quick-start.md index 5c19c64019..440689866a 100644 --- a/windows/manage/waas-quick-start.md +++ b/windows/manage/waas-quick-start.md @@ -52,7 +52,9 @@ Additional technologies such as BranchCache and Delivery Optimization, both peer See [Build deployment rings for Windows 10 updates](waas-deployment-rings-windows-10-updates.md) and [Optimize update delivery for Windows 10 updates](waas-optimize-windows-10-updates.md) for more information. +## Video: An overview of Windows as a service + ## Related topics diff --git a/windows/manage/waas-update-windows-10.md b/windows/manage/waas-update-windows-10.md index 8fc28b33a7..c87ec80caf 100644 --- a/windows/manage/waas-update-windows-10.md +++ b/windows/manage/waas-update-windows-10.md @@ -21,7 +21,9 @@ localizationpriority: high Windows as a service provides a new way to think about building, deploying, and servicing the Windows operating system. The Windows as a service model is focused on continually providing new capabilities and updates while maintaining a high level of hardware and software compatibility. Deploying new versions of Windows is simpler than ever before: Microsoft releases new features two to three times per year rather than the traditional upgrade cycle where new features are only made available every few years. Ultimately, this model replaces the need for traditional Windows deployment projects, which can be disruptive and costly, and spreads the required effort out into a continuous updating process, reducing the overall effort required to maintain Windows 10 devices in your environment. In addition, with the Windows 10 operating system, organizations have the chance to try out “flighted” builds of Windows as Microsoft develops them, gaining insight into new features and the ability to provide continual feedback about them. >[!TIP] ->See [Windows 10 update history](https://support.microsoft.com/help/12387/windows-10-update-history) for details about each Windows 10 update released to date. +>See [Windows 10 update history](https://support.microsoft.com/help/12387/windows-10-update-history) for details about each Windows 10 update released to date. + + ## In this section From 7ad8ce788d2853fb8739792230ec2041c9d0337f Mon Sep 17 00:00:00 2001 From: LizRoss Date: Fri, 20 Jan 2017 12:39:46 -0800 Subject: [PATCH 122/210] Updated with final text --- windows/keep-secure/limitations-with-wip.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/windows/keep-secure/limitations-with-wip.md b/windows/keep-secure/limitations-with-wip.md index 6854c45883..39aaeb8dc5 100644 --- a/windows/keep-secure/limitations-with-wip.md +++ b/windows/keep-secure/limitations-with-wip.md @@ -25,9 +25,9 @@ This table provides info about the most common problems you might encounter whil Workaround - Enterprise data on USB drives is tied to the device it was protected on. - Data in the new location remains encrypted, but becomes inaccessible on other devices and for other users. For example, the file won't open or the file opens, but doesn't contain readable text. - Share files with fellow employees through enterprise file servers or enterprise cloud locations. If data must be shared via USB, employees can decrypt protected files, but it will be audited.

    We strongly recommend educating employees about how to limit or eliminate the need for this decryption.

    Important
    If you're running WIP with Azure Rights Management (Azure RMS), you'll only be able to open protected files from a USB drive on computers running the latest version from the Windows Insider Program. + Your enterprise data on USB drives might be tied to the device it was protected on, based on your Azure RMS configuration. + If you’re using Azure RMS: Authenticated users can open enterprise data on USB drives, on computers running the latest build from the Windows Insider Program.

    If you’re not using Azure RMS: Data in the new location remains encrypted, but becomes inaccessible on other devices and for other users. For example, the file won't open or the file opens, but doesn't contain readable text. + Share files with fellow employees through enterprise file servers or enterprise cloud locations. If data must be shared via USB, employees can decrypt protected files, but it will be audited.

    We strongly recommend educating employees about how to limit or eliminate the need for this decryption. Direct Access is incompatible with WIP. From 855f8b6fce1a027a25fd74df70f371ee3c35d99c Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Fri, 20 Jan 2017 13:15:16 -0800 Subject: [PATCH 123/210] sync --- windows/manage/.vscode/settings.json | 3 +++ 1 file changed, 3 insertions(+) create mode 100644 windows/manage/.vscode/settings.json diff --git a/windows/manage/.vscode/settings.json b/windows/manage/.vscode/settings.json new file mode 100644 index 0000000000..20af2f68a6 --- /dev/null +++ b/windows/manage/.vscode/settings.json @@ -0,0 +1,3 @@ +// Place your settings in this file to overwrite default and user settings. +{ +} \ No newline at end of file From f861293656a71176a8e6268c90a5a20ec97d44e2 Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Fri, 20 Jan 2017 13:19:39 -0800 Subject: [PATCH 124/210] fix format --- windows/manage/start-layout-xml-desktop.md | 14 ++++++-------- 1 file changed, 6 insertions(+), 8 deletions(-) diff --git a/windows/manage/start-layout-xml-desktop.md b/windows/manage/start-layout-xml-desktop.md index aa6a1bd126..356f06b523 100644 --- a/windows/manage/start-layout-xml-desktop.md +++ b/windows/manage/start-layout-xml-desktop.md @@ -158,33 +158,31 @@ You can use the **start:DesktopApplicationTile** tag to pin a Windows desktop ap The following example shows how to pin the Command Prompt: -```XML - -``` - + ``` You must set the **DesktopApplicationLinkPath** attribute to the .lnk file that points to the Windows desktop application. The path also supports environment variables. If you are pointing to a third-party Windows desktop application, you must put the .lnk file in a legacy Start Menu directory before first boot; for example, "%APPDATA%\Microsoft\Windows\Start Menu\Programs\" or the all users profile "%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\". - - By using the application's application user model ID, if this is known. If the Windows desktop application doesn't have one, use the shortcut link option. To pin a Windows desktop application through this method, you must set the **DesktopApplicationID** attribute to the application user model ID that's associated with the corresponding app. The following example shows how to pin the Internet Explorer Windows desktop application: -```XML - -``` + ``` You can also use the **start:DesktopApplicationTile** tag as one of the methods for pinning a Web link to Start. The other method is to use a Microsoft Edge secondary tile. From 1ed91f9c5445593ab941b5fd88e87410b8e65269 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Fri, 20 Jan 2017 13:19:58 -0800 Subject: [PATCH 125/210] updated hard drive space requirement --- windows/deploy/windows-10-poc.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 6156ac502d..27d9c03e3c 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -109,7 +109,7 @@ Harware requirements are displayed below: **Disk** - 50 GB available hard disk space (100 GB recommended), any format. + 200 GB available hard disk space, any format. Any size, MBR formatted. From 28a3368a946a50a54b0a88ad9a2d239797dcfead Mon Sep 17 00:00:00 2001 From: Dani Halfin Date: Fri, 20 Jan 2017 13:30:21 -0800 Subject: [PATCH 126/210] Fix Type and Rephrase due to duplicate. --- windows/manage/waas-manage-updates-wufb.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/manage/waas-manage-updates-wufb.md b/windows/manage/waas-manage-updates-wufb.md index 5abdf4a34b..a61fbb1548 100644 --- a/windows/manage/waas-manage-updates-wufb.md +++ b/windows/manage/waas-manage-updates-wufb.md @@ -18,7 +18,7 @@ localizationpriority: high > **Looking for consumer information?** See [Windows Update: FAQ](https://support.microsoft.com/help/12373/windows-update-faq) -Windows Update for Business enables information technology administrators to keep the Windows 10 devices in their organization always up to date with the latest security defenses and Windows features by directly connecting these systems to Windows Update service. You can use Group Policy or MDM solutions such as Intune to configure the Windows Update for Business settings. Using Group Policy or MDM solutions such as Intune, you can control how and when Windows 10 devices are updated. In addition, by using Intune, organizations can manage devices that are not joined to a domain at all or are joined to Microsoft Azure Active Directory (Azure AD) alongside your on-premises domain-joined machines. +Windows Update for Business enables information technology administrators to keep the Windows 10 devices in their organization always up to date with the latest security defenses and Windows features by directly connecting these systems to Windows Update service. You can use Group Policy or MDM solutions such as Intune to configure the Windows Update for Business settings that control how and when Windows 10 devices are updated. In addition, by using Intune, organizations can manage devices that are not joined to a domain at all or are joined to Microsoft Azure Active Directory (Azure AD) alongside your on-premises domain-joined machines. Specifically, Windows Update for Business allows for: From 60e1053b8e113170d6626b1515bf2429d3e93100 Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Fri, 20 Jan 2017 13:49:29 -0800 Subject: [PATCH 127/210] Update troubleshoot-windows-defender-in-windows-10.md --- .../keep-secure/troubleshoot-windows-defender-in-windows-10.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md b/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md index df382bc1fe..bca131bc9f 100644 --- a/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md +++ b/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md @@ -2222,7 +2222,7 @@ Description of the error.

    The support for your operating system has expired. Windows Defender is no longer supported on your operating system, has stopped functioning, and is not protecting against malware threats.

    - +Event ID: 2050

    Symbolic name:

    MALWAREPROTECTION_SAMPLESUBMISSION_UPLOADED

    Message:

    %1 has uploaded a suspicious file for further analysis.
    Filename <uploaded filename>
    Sha256: <file SHA>

    Description:

    A file was uploaded to the Windows Defender Antimalware cloud for further analysis or processing.

    Event ID: 3002 From d3bfdd63e7c155659eb5b68c3e5c608f697fc6c0 Mon Sep 17 00:00:00 2001 From: Dani Halfin Date: Fri, 20 Jan 2017 14:10:31 -0800 Subject: [PATCH 128/210] Fixed a typo - rage->range --- windows/manage/waas-manage-updates-wufb.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/manage/waas-manage-updates-wufb.md b/windows/manage/waas-manage-updates-wufb.md index a61fbb1548..7f290e895c 100644 --- a/windows/manage/waas-manage-updates-wufb.md +++ b/windows/manage/waas-manage-updates-wufb.md @@ -37,7 +37,7 @@ Windows Update for Business provides three types of updates to Windows 10 device - **Quality Updates**: these are traditional operating system updates, typically released the second Tuesday of each month (though they can be released at any time). These include security, critical, and driver updates. Windows Update for Business also treats non-Windows updates (such as those for Microsoft Office or Visual Studio) as Quality Updates. These non-Windows Updates are known as *Microsoft Updates* and devices can be optionally configured to receive such updates along with their Windows Updates. - **Non-deferrable updates**: Currently, antimalware and antispyware Definition Updates from Windows Update cannot be deferred. -Both Feature and Quality Updates can be deferred from deploying to client devices by a Windows Update for Business administrator within a bounded rage of time from when those updates are first made available on the Windows Update Service. This deferral capability allows administrators to validate deployments as they are pushed to all client devices configured for Windows Update for Business. +Both Feature and Quality Updates can be deferred from deploying to client devices by a Windows Update for Business administrator within a bounded range of time from when those updates are first made available on the Windows Update Service. This deferral capability allows administrators to validate deployments as they are pushed to all client devices configured for Windows Update for Business. From e4749a11aeeb1b99d1875b7dc06a8be8f023d78e Mon Sep 17 00:00:00 2001 From: Iaan D'Souza-Wiltshire Date: Fri, 20 Jan 2017 14:50:31 -0800 Subject: [PATCH 129/210] Update troubleshoot-windows-defender-in-windows-10.md --- .../keep-secure/troubleshoot-windows-defender-in-windows-10.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md b/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md index bca131bc9f..ac8772f7b7 100644 --- a/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md +++ b/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md @@ -2222,7 +2222,7 @@ Description of the error. - + - + From 15f5900dc3abf0b4e5cd251b1cccdeba2a2ca950 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 24 Jan 2017 15:20:44 -0800 Subject: [PATCH 174/210] c --- windows/deploy/windows-10-poc.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 8eb0b551c8..382cb7335c 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -517,6 +517,7 @@ To verify that enhanced session mode is enabled on the Hyper-V host, type the fo
    Set-VMhost -EnableEnhancedSessionMode $TRUE
    >If enhanced session mode was not previously enabled, close any existing virtual machine connections and re-open them to enable access to enhanced session mode. As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. +
    The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 100GB to support installing imaging tools and storing OS images. From 5977f0e042b4798be09f0ea8bf8cce31b57c6148 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 24 Jan 2017 15:29:26 -0800 Subject: [PATCH 175/210] c --- windows/deploy/windows-10-poc.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 382cb7335c..5d70b65ecb 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -507,8 +507,8 @@ Notes:
    ### Resize VHD -
    -**Enhanced session mode** +
    +**Enhanced session mode** **Important**: Before proceeding, verify that you can take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs, between VMs, and between RDP sessions. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy on one computer, then right-clicking and selecting paste on another computer. @@ -518,7 +518,7 @@ To verify that enhanced session mode is enabled on the Hyper-V host, type the fo >If enhanced session mode was not previously enabled, close any existing virtual machine connections and re-open them to enable access to enhanced session mode. As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. -
    +
    The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 100GB to support installing imaging tools and storing OS images. From b7c129f44fba27d70afab2315c7a45e5c916bc2a Mon Sep 17 00:00:00 2001 From: JanKeller1 Date: Tue, 24 Jan 2017 16:11:21 -0800 Subject: [PATCH 176/210] Replaced blue-and-orange graphics w updated tables --- ...oose-the-right-bitlocker-countermeasure.md | 105 ++++++++++++++++-- 1 file changed, 95 insertions(+), 10 deletions(-) diff --git a/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md b/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md index 0293f672ae..1c6c64a34a 100644 --- a/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md +++ b/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md @@ -17,20 +17,105 @@ author: brianlic-msft This section outlines the best countermeasures you can use to protect your organization from bootkits and rootkits, brute force sign-in, Direct Memory Access (DMA) attacks, Hyberfil.sys attacks, and memory remanence attacks. You can use BitLocker to protect your Windows 10 PCs. Whichever operating system you’re using, Microsoft and Windows-certified devices provide countermeasures to address attacks and improve your data security. In most cases, this protection can be implemented without the need for pre-boot authentication. -Figures 2, 3, and 4 summarize the recommended mitigations for different types of attacks against PCs running recent versions of Windows. The orange blocks indicate that the system requires additional configuration from the default -settings. +Tables 1 and 2 summarize the recommended mitigations for different types of attacks against PCs running recent versions of Windows. The orange blocks indicate that the system requires additional configuration from the default settings. -![how to choose best countermeasures for windows 7](images/bitlockerprebootprotection-counterwin7.jpg) +

    The support for your operating system has expired. Windows Defender is no longer supported on your operating system, has stopped functioning, and is not protecting against malware threats.

    Event ID: 2050

    Symbolic name:

    MALWAREPROTECTION_SAMPLESUBMISSION_UPLOADED

    Message:

    %1 has uploaded a suspicious file for further analysis.
    Filename <uploaded filename>
    Sha256: <file SHA>

    Description:

    A file was uploaded to the Windows Defender Antimalware cloud for further analysis or processing.

    Event ID: 2050

    Symbolic name:

    MALWAREPROTECTION_SAMPLESUBMISSION_UPLOADED

    Message:

    The antimalware engine has uploaded a file for further analysis.
    Filename <uploaded filename>
    Sha256: <file SHA>

    Description:

    A file was uploaded to the Windows Defender Antimalware cloud for further analysis or processing.

    Event ID: 3002 From 3e9de6474455fbb5d2aeb4a0b01e1ef4645ab70c Mon Sep 17 00:00:00 2001 From: loosus456 Date: Sat, 21 Jan 2017 11:41:18 -0500 Subject: [PATCH 130/210] Update configure-windows-10-taskbar.md --- .../manage/configure-windows-10-taskbar.md | 26 +++++++++---------- 1 file changed, 13 insertions(+), 13 deletions(-) diff --git a/windows/manage/configure-windows-10-taskbar.md b/windows/manage/configure-windows-10-taskbar.md index 50576b01ad..c655dea92f 100644 --- a/windows/manage/configure-windows-10-taskbar.md +++ b/windows/manage/configure-windows-10-taskbar.md @@ -10,21 +10,21 @@ localizationpriority: high --- # Configure Windows 10 taskbar -Starting in Windows 10, version 1607, administrators can pin additional apps to the taskbar and remove default pinned apps from the taskbar by adding a `` section to a layout modification XML file. This method never removes user-pinned apps from the taskbar. +Starting in Windows 10, version 1607, administrators can pin additional apps to the taskbar and remove default pinned apps from the taskbar by adding a `` section to a layout-modification XML file. This method never removes user-pinned apps from the taskbar. > [!NOTE] > The only aspect of the taskbar that can currently be configured by the layout modification XML file is the layout. You can specify different taskbar configurations based on device locale and region. There is no limit on the number of apps that you can pin. You specify apps using the [Application User Model ID (AUMID)](https://go.microsoft.com/fwlink/p/?LinkId=614867) or Desktop Application Link Path (the local path to the application). -If you specify an app to be pinned that is not installed on the computer, it won't appear on the taskbar. +If you specify an app to be pinned that is not provisioned for the user on the computer, the pinned icon won't appear on the taskbar. -The order of apps in the xml file dictates order of apps on taskbar from left to right, to the right of any existing apps pinned by user. +The order of apps in the XML file dictates the order of pinned apps on the taskbar from left to right, to the right of any existing apps pinned by the user. > [!NOTE] > In operating systems configured to use a right-to-left language, the taskbar order will be reversed. -The following example shows how apps will be pinned: Windows default apps to the left (blue circle), apps pinned by the user in the center (orange triangle), and apps that you pin using XML to the right (green square). +The following example shows how apps will be pinned: Windows default apps to the left (blue circle), apps pinned by the user in the center (orange triangle), and apps that you pin using the XML file to the right (green square). ![Windows left, user center, enterprise to the right](images/taskbar-generic.png) @@ -34,28 +34,28 @@ The following example shows how apps will be pinned: Windows default apps to the To configure the taskbar: 1. Create the XML file. * If you are also [customizing the Start layout](customize-and-export-start-layout.md), use `Export-StartLayout` to create the XML, and then add the `` section from the following sample to the file. - * If you are only configuring the taskbar, use the following sample to create a layout modification XML file. + * If you are only configuring the taskbar, use the following sample to create a layout-modification XML file. 2. Edit and save the XML file. You can use [AUMID](https://go.microsoft.com/fwlink/p/?LinkId=614867) or Desktop Application Link Path to identify the apps to pin to the taskbar. * Use `` and [AUMID](https://go.microsoft.com/fwlink/p/?LinkId=614867) to pin Universal Windows Platform apps. * Use `` and Desktop Application Link Path to pin desktop applications. -3. Apply the layout modification XML file to devices using [Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) or a [provisioning package created in Windows Imaging and Configuration Designer (Windows ICD)](customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md). +3. Apply the layout-modification XML file to devices using [Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) or a [provisioning package created in Windows Imaging and Configuration Designer (Windows ICD)](customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md). >[!IMPORTANT] ->If you use a provisioning package to configure the taskbar, your configuration will be reapplied each time the explorer.exe process restarts. If your configuration pins an app and the user unpins that app, the user's change will be overwritten the next time the configuration is applied. To apply a taskbar configuration and allow users to make changes that will persist, apply your configuration by using Group Policy. +>If you use a provisioning package to configure the taskbar, your configuration will be reapplied each time the explorer.exe process restarts. If your configuration pins an app and the user then unpins that app, the user's change will be overwritten the next time the configuration is applied. To apply a taskbar configuration that allows users to make changes that will persist, apply your configuration using Group Policy. ### Tips for finding AUMID and Desktop Application Link Path -In the layout modification XML file, you will need to add entries for applications in the XML markup. In order to pin an application, you need either its AUMID or Desktop Application Link Path. +In the layout-modification XML file, you will need to add entries for applications in the XML markup. In order to pin an application, you need either its AUMID or Desktop Application Link Path. The easiest way to find this data for an application is to: -1. Pin the application to the Start menu +1. Pin the application to the Start menu on a reference/testing machine. 2. Open Windows PowerShell and run the `Export-StartLayout` cmdlet. 3. Open the generated XML file. -4. Look for an entry corresponding to the app you pinned . +4. Look for an entry corresponding to the app you pinned. 5. Look for a property labeled `AppUserModelID` or `DesktopApplicationLinkPath`. -### Sample taskbar configuration XML +### Sample taskbar configuration XML file ```xml @@ -75,7 +75,7 @@ The easiest way to find this data for an application is to: ``` -### Sample taskbar configuration added to Start layout XML +### Sample taskbar configuration added to Start-layout XML file ```xml @@ -218,7 +218,7 @@ The following example shows you how to configure taskbars by country or region. ``` -When the preceding example XML is applied, the resulting taskbar for computers in the US or UK: +When the preceding example XML file is applied, the resulting taskbar for computers in the US or UK: ![taskbar for US and UK locale](images/taskbar-region-usuk.png) From de2c4797a9ad122587b528a6b3896894e159b3bc Mon Sep 17 00:00:00 2001 From: Karthika Raman Date: Sat, 21 Jan 2017 13:30:24 -0800 Subject: [PATCH 131/210] updating disable instructions --- windows/deploy/troubleshoot-upgrade-analytics.md | 13 ++++++++----- 1 file changed, 8 insertions(+), 5 deletions(-) diff --git a/windows/deploy/troubleshoot-upgrade-analytics.md b/windows/deploy/troubleshoot-upgrade-analytics.md index b6c6f5d87b..7b2d58bc05 100644 --- a/windows/deploy/troubleshoot-upgrade-analytics.md +++ b/windows/deploy/troubleshoot-upgrade-analytics.md @@ -1,4 +1,4 @@ ---- +--- title: Troubleshoot Upgrade Analytics (Windows 10) description: Provides troubleshooting information for Upgrade Analytics. ms.prod: w10 @@ -7,7 +7,7 @@ author: MaggiePucciEvans # Troubleshoot Upgrade Analytics -If you’re having issues seeing data in Upgrade Analytics after running the Upgrade Analytics Deployment script, make sure it completes successfully without any errors. Check the output of the script in the command window and/or log UA_dateTime_machineName.txt to ensure all steps were completed successfully. In addition, we recommend that you wait at least 48 hours before checking OMS for data after the script first completes without reporting any error. +If you’re having issues seeing data in Upgrade Analytics after running the Upgrade Analytics Deployment script, make sure it completes successfully without any errors. Check the output of the script in the command window and/or log UA_dateTime_machineName.txt to ensure all steps were completed successfully. In addition, we recommend that you wait at least 48 hours before checking OMS for data after the script first completes without reporting any error. If you still don’t see data in Upgrade Analytics, follow these steps: @@ -25,9 +25,12 @@ If you still don’t see data in Upgrade Analytics, follow these steps: If you want to stop using Upgrade Analytics and stop sending telemetry data to Microsoft, follow these steps: -1. Unsubscribe from the Upgrade Analytics solution in the OMS portal. +1. Unsubscribe from the Upgrade Analytics solution in the OMS portal. In the OMS portal, go to **Settings** > **Connected Sources** > **Windows Telemetry** and choose the **Unsubscribe** option. -2. Disable the Customer Experience Improvement Program on computers running Windows 7 SP1 or 8.1. On computers running Windows 10, set the telemetry level to Security. +2. Disable the Commercial Data Opt-in Key on computers running Windows 7 SP1 or 8.1. On computers running Windows 10, set the telemetry level to **Security**: -3. Delete the CommercialDataOptin key in *HKLM:\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Policies\\DataCollection* + **Windows 7 and Windows 8.1**: Delete CommercialDataOptIn registry property from *HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection* + **Windows 10**: Follow the instructions in the [Configure Windows telemetry in your organization](https://technet.microsoft.com/itpro/windows/manage/configure-windows-telemetry-in-your-organization#enterprise-management) topic. +3. If you enabled **Internet Explorer Site Discovery**, you can disable Internet Explorer data collection by setting the *IEDataOptIn* registry key to value "0". The IEDataOptIn key can be found under: *HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection*. +4. You can also remove the “CommercialId” key from: "HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection". **This is an optional step**. From 70bce19d623f0f51331be4e024194cd98f82494f Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Mon, 23 Jan 2017 07:27:46 -0800 Subject: [PATCH 132/210] sync --- windows/manage/start-layout-xml-desktop.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/manage/start-layout-xml-desktop.md b/windows/manage/start-layout-xml-desktop.md index 356f06b523..1a48aaad33 100644 --- a/windows/manage/start-layout-xml-desktop.md +++ b/windows/manage/start-layout-xml-desktop.md @@ -183,6 +183,7 @@ You can use the **start:DesktopApplicationTile** tag to pin a Windows desktop ap Row="0" Column="2"/> ``` + You can also use the **start:DesktopApplicationTile** tag as one of the methods for pinning a Web link to Start. The other method is to use a Microsoft Edge secondary tile. From 8c023e708d5dbcfd7a06bc6ecd63ca752c4f2063 Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Mon, 23 Jan 2017 08:09:27 -0800 Subject: [PATCH 133/210] revert some changes --- windows/manage/configure-windows-10-taskbar.md | 16 ++++++++-------- 1 file changed, 8 insertions(+), 8 deletions(-) diff --git a/windows/manage/configure-windows-10-taskbar.md b/windows/manage/configure-windows-10-taskbar.md index c655dea92f..bd5e26f4ba 100644 --- a/windows/manage/configure-windows-10-taskbar.md +++ b/windows/manage/configure-windows-10-taskbar.md @@ -10,7 +10,7 @@ localizationpriority: high --- # Configure Windows 10 taskbar -Starting in Windows 10, version 1607, administrators can pin additional apps to the taskbar and remove default pinned apps from the taskbar by adding a `` section to a layout-modification XML file. This method never removes user-pinned apps from the taskbar. +Starting in Windows 10, version 1607, administrators can pin additional apps to the taskbar and remove default pinned apps from the taskbar by adding a `` section to a layout modification XML file. This method never removes user-pinned apps from the taskbar. > [!NOTE] > The only aspect of the taskbar that can currently be configured by the layout modification XML file is the layout. @@ -34,21 +34,21 @@ The following example shows how apps will be pinned: Windows default apps to the To configure the taskbar: 1. Create the XML file. * If you are also [customizing the Start layout](customize-and-export-start-layout.md), use `Export-StartLayout` to create the XML, and then add the `` section from the following sample to the file. - * If you are only configuring the taskbar, use the following sample to create a layout-modification XML file. + * If you are only configuring the taskbar, use the following sample to create a layout modification XML file. 2. Edit and save the XML file. You can use [AUMID](https://go.microsoft.com/fwlink/p/?LinkId=614867) or Desktop Application Link Path to identify the apps to pin to the taskbar. * Use `` and [AUMID](https://go.microsoft.com/fwlink/p/?LinkId=614867) to pin Universal Windows Platform apps. * Use `` and Desktop Application Link Path to pin desktop applications. -3. Apply the layout-modification XML file to devices using [Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) or a [provisioning package created in Windows Imaging and Configuration Designer (Windows ICD)](customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md). +3. Apply the layout modification XML file to devices using [Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) or a [provisioning package created in Windows Imaging and Configuration Designer (Windows ICD)](customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md). >[!IMPORTANT] ->If you use a provisioning package to configure the taskbar, your configuration will be reapplied each time the explorer.exe process restarts. If your configuration pins an app and the user then unpins that app, the user's change will be overwritten the next time the configuration is applied. To apply a taskbar configuration that allows users to make changes that will persist, apply your configuration using Group Policy. +>If you use a provisioning package to configure the taskbar, your configuration will be reapplied each time the explorer.exe process restarts. If your configuration pins an app and the user then unpins that app, the user's change will be overwritten the next time the configuration is applied. To apply a taskbar configuration that allows users to make changes that will persist, apply your configuration by using Group Policy. ### Tips for finding AUMID and Desktop Application Link Path -In the layout-modification XML file, you will need to add entries for applications in the XML markup. In order to pin an application, you need either its AUMID or Desktop Application Link Path. +In the layout modification XML file, you will need to add entries for applications in the XML markup. In order to pin an application, you need either its AUMID or Desktop Application Link Path. The easiest way to find this data for an application is to: -1. Pin the application to the Start menu on a reference/testing machine. +1. Pin the application to the Start menu on a reference or testing PC. 2. Open Windows PowerShell and run the `Export-StartLayout` cmdlet. 3. Open the generated XML file. 4. Look for an entry corresponding to the app you pinned. @@ -75,7 +75,7 @@ The easiest way to find this data for an application is to: ``` -### Sample taskbar configuration added to Start-layout XML file +### Sample taskbar configuration added to Start layout XML file ```xml @@ -139,7 +139,7 @@ The `` section will append listed apps to the tas ![additional apps pinned to taskbar](images/taskbar-default-plus.png) -##Remove default apps and add your own +## Remove default apps and add your own By adding `PinListPlacement="Replace"` to ``, you remove all default pinned apps; only the apps that you specify will be pinned to the taskbar. From 7813481df3c40b24fef679c94bcd30729983ccef Mon Sep 17 00:00:00 2001 From: LizRoss Date: Mon, 23 Jan 2017 08:38:09 -0800 Subject: [PATCH 134/210] Updated for changes made to the limitations topic --- windows/keep-secure/change-history-for-keep-windows-10-secure.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/keep-secure/change-history-for-keep-windows-10-secure.md b/windows/keep-secure/change-history-for-keep-windows-10-secure.md index 900762eca3..eeed8b7292 100644 --- a/windows/keep-secure/change-history-for-keep-windows-10-secure.md +++ b/windows/keep-secure/change-history-for-keep-windows-10-secure.md @@ -15,6 +15,7 @@ This topic lists new and updated topics in the [Keep Windows 10 secure](index.md ## January 2017 |New or changed topic |Description | |---------------------|------------| +|[Limitations while using Windows Information Protection (WIP)](keep-secure/limitations-with-wip.md) |Updated to include info about USB drives and Azure RMS (Windows Insider Program only) and to add more info about Work Folders and Offline files. | |[Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP)](recommended-network-definitions-for-wip.md) |New | |[Using Outlook Web Access with Windows Information Protection (WIP)](using-owa-with-wip.md) |New | From 34ad2c7321f6f366d8696c70b5bfa354fe5e8d59 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Mon, 23 Jan 2017 08:46:44 -0800 Subject: [PATCH 135/210] Fixed broken link --- .../keep-secure/change-history-for-keep-windows-10-secure.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/change-history-for-keep-windows-10-secure.md b/windows/keep-secure/change-history-for-keep-windows-10-secure.md index eeed8b7292..923a810e4e 100644 --- a/windows/keep-secure/change-history-for-keep-windows-10-secure.md +++ b/windows/keep-secure/change-history-for-keep-windows-10-secure.md @@ -15,7 +15,7 @@ This topic lists new and updated topics in the [Keep Windows 10 secure](index.md ## January 2017 |New or changed topic |Description | |---------------------|------------| -|[Limitations while using Windows Information Protection (WIP)](keep-secure/limitations-with-wip.md) |Updated to include info about USB drives and Azure RMS (Windows Insider Program only) and to add more info about Work Folders and Offline files. | +|[Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) |Updated to include info about USB drives and Azure RMS (Windows Insider Program only) and to add more info about Work Folders and Offline files. | |[Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP)](recommended-network-definitions-for-wip.md) |New | |[Using Outlook Web Access with Windows Information Protection (WIP)](using-owa-with-wip.md) |New | From ca5b37c524b228f866809e44b407e0cee09b28c3 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Mon, 23 Jan 2017 10:00:39 -0800 Subject: [PATCH 136/210] Adding content --- windows/keep-secure/wip-app-context.md | 35 ++++++++++++++++++++++++++ 1 file changed, 35 insertions(+) create mode 100644 windows/keep-secure/wip-app-context.md diff --git a/windows/keep-secure/wip-app-context.md b/windows/keep-secure/wip-app-context.md new file mode 100644 index 0000000000..a741f3a2e4 --- /dev/null +++ b/windows/keep-secure/wip-app-context.md @@ -0,0 +1,35 @@ +--- +title: Determine what Windows Information Protection (WIP) mode is running for an app (Windows 10) +description: Use the Task Manager to determine which Windows Information Protection (WIP) mode is running for a specific app. +keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and Task Manager, app context +ms.prod: w10 +ms.mktglfcycl: explore +ms.sitesec: library +ms.pagetype: security +localizationpriority: high +--- + +# Using Outlook Web Access with Windows Information Protection (WIP) +**Applies to:** + +- Windows 10, version 1607 +- Windows 10 Mobile + +>Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). + +Because Outlook Web Access (OWA) can be used both personally and as part of your organization, you have the following options to configure it with Windows Information Protection (WIP): + +|Option |OWA behavior | +|-------|-------------| +|Disable OWA. Employees can only use Microsoft Outlook 2016 or the Office 365 Mail app. | Disabled. | +|Don't configure outlook.office.com in any of your networking settings. |All mailboxes are automatically marked as personal. This means employees attempting to copy work content into OWA receive prompts and that files downloaded from OWA aren't automatically protected as corporate data. | +|Do all of the following:
    • Create a domain (such as mail.contoso.com, redirecting to outlook.office.com) that can be used by your employees to access work email.
    • Add the new domain to the Enterprise Cloud Resources network element in your WIP policy.
    • Add the following URLs to the Neutral Resources network element in your WIP policy:
      • outlook.office365.com
      • outlook.office.com
      • outlook-sdf.office.com
      • attachment.outlook.office.net
    |Inbox content accessed through the new domain is automatically marked as corporate data, while content accessed through personal email is automatically marked as personal. | +|Add outlook.office.com to the Enterprise Cloud Resources network element in your WIP policy. |All mailboxes are automatically marked as corporate. This means any personal inboxes hosted on Office 365 are also automatically marked as corporate data. | + +>[!NOTE] +>These limitations don’t apply to Outlook 2016 or to the Office 365 Mail and Calendar apps. These apps will work properly, marking an employee’s mailbox as corporate data, regardless of how you’ve configured outlook.office.com in your network settings. + + + + + From 38bd36c83c0729790a7c2de8c884cf35879ff904 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Mon, 23 Jan 2017 10:28:25 -0800 Subject: [PATCH 137/210] Adding content --- windows/keep-secure/wip-app-context.md | 29 +++++++++++++++----------- 1 file changed, 17 insertions(+), 12 deletions(-) diff --git a/windows/keep-secure/wip-app-context.md b/windows/keep-secure/wip-app-context.md index a741f3a2e4..3b0275dca8 100644 --- a/windows/keep-secure/wip-app-context.md +++ b/windows/keep-secure/wip-app-context.md @@ -1,6 +1,6 @@ --- -title: Determine what Windows Information Protection (WIP) mode is running for an app (Windows 10) -description: Use the Task Manager to determine which Windows Information Protection (WIP) mode is running for a specific app. +title: Determine the Windows Information Protection (WIP) context for an app (Windows 10) +description: Use the Task Manager to determine whether an app is considered work, personal or exempt by Windows Information Protection (WIP). keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and Task Manager, app context ms.prod: w10 ms.mktglfcycl: explore @@ -9,7 +9,7 @@ ms.pagetype: security localizationpriority: high --- -# Using Outlook Web Access with Windows Information Protection (WIP) +# Determine the Windows Information Protection (WIP) Enterprise Context for an app **Applies to:** - Windows 10, version 1607 @@ -17,17 +17,22 @@ localizationpriority: high >Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). -Because Outlook Web Access (OWA) can be used both personally and as part of your organization, you have the following options to configure it with Windows Information Protection (WIP): +Check the context of your apps while running in Windows Information Protection (WIP) to make sure that your organization's policies are applied and running correctly. Using Task Manager you can now see a specific app's context, including Work, Personal, or Exempt. -|Option |OWA behavior | -|-------|-------------| -|Disable OWA. Employees can only use Microsoft Outlook 2016 or the Office 365 Mail app. | Disabled. | -|Don't configure outlook.office.com in any of your networking settings. |All mailboxes are automatically marked as personal. This means employees attempting to copy work content into OWA receive prompts and that files downloaded from OWA aren't automatically protected as corporate data. | -|Do all of the following:
    • Create a domain (such as mail.contoso.com, redirecting to outlook.office.com) that can be used by your employees to access work email.
    • Add the new domain to the Enterprise Cloud Resources network element in your WIP policy.
    • Add the following URLs to the Neutral Resources network element in your WIP policy:
      • outlook.office365.com
      • outlook.office.com
      • outlook-sdf.office.com
      • attachment.outlook.office.net
    |Inbox content accessed through the new domain is automatically marked as corporate data, while content accessed through personal email is automatically marked as personal. | -|Add outlook.office.com to the Enterprise Cloud Resources network element in your WIP policy. |All mailboxes are automatically marked as corporate. This means any personal inboxes hosted on Office 365 are also automatically marked as corporate data. | +>[!IMPORTANT] +>Enlightened apps can change between Work and Personal, depending on the data being touched. For example, Microsoft Word 2016 shows as **Personal** when an employee opens a personal letter, but changes to **Work** when that same employee opens the company financials. + +Viewing the Enterprise Context column in Task Manager + +Steps to enable: +Go to task manager > Details tab, right click to select columns + +Add “Enterprise Context” column to see which mode your app is running in. + +Work – Corp.microsoft.com can freely touch and open work data and resources +Personal – Personal, not allowed to touch work data +Exempt – WIP policies does not apply to these apps, most likely system components ->[!NOTE] ->These limitations don’t apply to Outlook 2016 or to the Office 365 Mail and Calendar apps. These apps will work properly, marking an employee’s mailbox as corporate data, regardless of how you’ve configured outlook.office.com in your network settings. From 24327f85c510ca2f94da954f64970187f0778d33 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Mon, 23 Jan 2017 11:23:16 -0800 Subject: [PATCH 138/210] Adding content --- .../keep-secure/images/wip-select-column.png | Bin 0 -> 5865 bytes windows/keep-secure/images/wip-taskmgr.png | Bin 0 -> 44189 bytes windows/keep-secure/wip-app-context.md | 40 -------------- .../keep-secure/wip-app-enterprise-context.md | 52 ++++++++++++++++++ 4 files changed, 52 insertions(+), 40 deletions(-) create mode 100644 windows/keep-secure/images/wip-select-column.png create mode 100644 windows/keep-secure/images/wip-taskmgr.png delete mode 100644 windows/keep-secure/wip-app-context.md create mode 100644 windows/keep-secure/wip-app-enterprise-context.md diff --git a/windows/keep-secure/images/wip-select-column.png b/windows/keep-secure/images/wip-select-column.png new file mode 100644 index 0000000000000000000000000000000000000000..d4e8a9e7a0a95e7420112f2e2952cdc4d52df522 GIT binary patch literal 5865 zcmd5=c|4Tu*T36UmS{1^l1YeYj7A12*_T8LLky#_XB%5&OU5$8*a?v>J(D!WWJ$8j zkYzH6sZknai5MeEmibM;_j%s;dEd|P{k{Lb_vgOOeO=$rIrnw$bDis)bKOaoFBu8! z6W<2_fPjgyzBK@BgYen~z8yS7A>X5b_t+L>ZKMZ0p&gy&4R*R;u($vKq_q7TF1r9= z2XNWk#(;+d02BaV0095<@p}w~0Wc^4hx0%v4@Lk05&+NuG#UyZpa2>MAmIQS3PZzS zNH`n~<>3ef42guJ(L7ei-vUra0Pe`+`z^+!Ff;&1!T>ZJ;JpF~gQ4N@Xebl`ARGZS z5bTk4mHa3oqMj(+$G#c&g?G3=N0E_^@2{0HI3M0Vb1OQP2Ac+8q1h|j^G#Nm( zfc)!VNFp3Xg8v@&0%0T2=vE{Qi-r@BNFtht69_=ed!T@KPrXc7}nV8ZJ-XaWIA zB%;Y=$0VjxK@XyY<@kh)#M00NCXz@)lX;YlCUem=ZgeXv1_oeZ00GXUuoxJerwSH^ zB*4)zE&vt@5YRvg0w{9uCA}I zCltIV)J>5KdSmEh0+URnVaw|&Ll9ISQ+7ye``em8Poqo?|(|9wm zSgi5!@h{8Vx$j$C?i8EN{_*3-ub-=2E{7-a+wcA#To^@GKTnOl{>Jt}03g`@yKU?A zt8(LkVi*HE%oRU0Ce$VH2H@}Fc@v{@^9DvnUFEb21ggHn;T8ZKv@p@XU=!x_tq5Oy z_^Mc^{ISRz7K$cv2Th=Te3V@~m(HAl9_kx%va>L?FjdPIA&XplmN9RkVd8kjC)U6v zw$Em0IC2~L@}l$5a>V_hDcb0ZhPU%B4MB^`oAX7QLA3ma&{q*Omnl~7#~JI3MwnUI zi+98ZU8%KskW*;$l)rbqJCt5@{mQX*6Ud~*6nJ)@WZgU_4ibo&Xier`XlHr3{kX zdgR_-01r6EYV0=o&|;P9^LY1IQ{>)ogkI&IF{;IEs;uqIH#O$`YRiJIW{f>i= zIV>!EeRowL)h*lDNu#^3PQZhq)QZ1huvcdu{K=yYBw3|%OO9!(WCmLQg_;RbyT_W; zw5qXvb@#zS#xzVB!LhPHrQGzvUYl~P$f_`mk{Y8+(3Rv`8zhc=Q~|g6Ty8azO?dKo z>k1Js_hf#b#qiT1mlqLQsf*-Tf-g)LazEHNB$RVwLpJ z1z)sGMoX0l2B#_QdM|B$@dJaFW<+06$-gD>!hrb8uXw5TGv(UK*tv;2R~H=Yb^IiVe`C76WT5=0LXxysdgt7oh)Zdu zi=%IR7jGkqv==`qAWj5d7Nhidcz;a^?5^Dynts~;tjIdZ;!t0OWg#OsFqIMS3qSs8 zszY?FW&KS(K4A6|e79t5?n3kN=ugd8W})NNKQEurJtz%7XFhHdM}UPm*Ak8rG$PBt zy^LD96sfZ6J-+G`;{VZ65hZN%avC%6^fWAFs502d2cZ$FG%|W?JY|n`hpOx+Q6t2Q ze#wkaK7EBZBAz7F)Z?oi>X)l5_KaBE&d7~kS-cww-+sYQMEZ|k(1r@F-g^yOHly@T zlP_H@Dy5c(4d^z%Dw=}Fp`Qn>_DO?oY%nXg)3k*9;(O{dR$pvlY|Iu?oX?)o@;RXU z{`=?5+;1=W-%&uhvJKO?v2N>6O0;Rzo7RS?ckbhH_3-GY^&T5G;$_Z_p_7+nNFCj` z;qOCs720-!ik_dH&{lcq{E{g%969mTc5zEA*u|Z{PwxjFA3zB_C*32h9qy$B=qzug2rKrv&eEPPfs?d`O{aYFXln;ZF&IX0bpf(#Z;bsBvD3FNDv|F!$uEumAn zbiPho$yK^SkMz}U1#F6EY&us!{H7)KO-Y>Aqi^3;?>Ii~SpS4Y_|;!rco1Fec|I9$ z1xvkPl$~n)?aC)JPQyM)eL3=siR}o-3#h&p-Gv@- zs~eV!Cn;KuARi4i)ecD*(5-2v=aVyXtf|RWs__ub#q~Y6nvBfAP-0dEr8bSEd9!GQ z(G@P?F7Q(T!EY%s8fwXnJA8d}zmvly3%@W^^`st4c&5mD&T5t+TIY&N$&|^flo$<| zd#Y{Dpxv0O=V|b?l~9Gj;+hV4gx_M;C1Sr}df(xMv|~CS%WkK53QZcf_Sd!!T&zWH z^QRi;@uV2tQcg*bucbmO&XCAm&t~oxE2>jn>L(t1-m&qmU`)p0p;p)UIzX848*8|4 zP2R}zQ6;lx4d>+#I=b#jPup}IMHIed5`1X z4@13DPm~Ue4&K^#6}La3MPS;xj1oX)7(1cr8%whphaaMsX}d3lWkyhSxR zr^q<7IlbZ|a@9%FYdtggZQ@xNf@SVWkS0!!bySZUA>c)+j{9Wy5cOvgFe^!Kx$~d) zXPMUB6K|+fI+AdJ`ql8z8;cy$`0Rccb6TUJJ{`9t6^yHpO|Fla7ax70oqWmu>Gsuo zwK_=)J+}TYA2J{mBy~WTlCQ&e`7({2CDnL0(!MPr%W%cD^UxhJGlN6vNAJV z@dE1&ajME*=8!BBMxSmHD_DMn|Jaq}@wQUxp^IYeL~YKx)0=^+`5SvBlEt4OM)O?x zP-kS5wK-s9STaNZ?OaaIweP<{8KZh)350T#n&B__AWh*2tg=dDc=oUKCgL%p zs6bL*KhT(Zvbo=s4;6TO?0EgQnK0DJ9cWxkd?pR|s;Thi$=Tt+ftaS?@*CQx=%R9^ zI7a$G#{<%>i|_u3R}1MqKUTi2;mW)N&ZC39eJ|KrP%rWJXnCZBc|W`-@bEl%Jm5p^ez;pp!ST5`!E zJJvmi+@cvI+shB@%O+lWg9+F)rbSN%SEll)g7aO7I6D`7HY0X_y#WI)D=R?6-XZzgq2QuONT z4^Ss@0psn1kq5w%$*-Tv-4UHjhf(cqJ`60id+C8D8j^x>6jobUJ}jZnRru!Qm_qZj z0gxig|Jdw>65(agK`P>0l$`}1N?Rj7VSp`$hzkSfgCK^rLbk5aK_jUQ&m0K&Sf$|g1(Esh}L zqw3kO)T@!z7re@c8tbY02cOvvOv|Gpk3^OxnIw&yPN{J0pD9Ewy*7UPnx0c#~{@nS9{^ z>d&uw3Bg`xM@3x}G!^M9M!yBL(e3xlcwhghRD){70k>>y?@luwtWPjR^rw#adrk9tdo}@sQYo!hT8ci{o>{p>zUvE_q{W7&?=BvDY_~WLzW;bmf_cafJ0>c0V|; z>kCD2M09V(`5XwsY^QL>z=QM9DPyr9OYIp0%7VV=qejRh8va7^!C#+W2VR8a# zf!7OhMA1S5wWI4*1kCBq;zInfHI_A$T8>+j&x?5L+#PbfQ6Y2R(pW%VH)D6ac&C3b z%P@4S=7l~cJ!o^sTgv~bx_KgL`xxZz>4fLlxZ6Ez=M*-plW7)rOMj{iU7#4Gg9aFE z6L+D0U%C5bkA7XFoJ4u*7|;#k)rXrfUj{m);n@sV-MY%d*Waq3CptveM!5{b9zyVCoKWux*%HgZ8c*R7zq2eeH^7`S@MCvbk)v04u#Tk&VP+|0!^- z>^3}IXlrYqmdjc4%&4(u&4C{OF-C%dI2Kl)_k82HPAF~|TmsR~6+dNRZl23 z!`(P7h}whJJ?7asS#$7yQq4z2diThZI7dS3^m?4oaXeF8A0ytc(wI0(mFcZ;*?~`# z2M_e2Rux{!&YjR^&%bgc84I^72ZAD8e{7RicJZ0iUfq?9S>Ehl=0mY}ygfQPJHebQ z)#v9`H}iM)qoohHD55q&v_{xCbE{s+^;qowB&ccQ%7nB1hiMEnWu%DD#6EnFI+A;QS{IzUbyqRWr zCaCOC+%rlN2rb-Z2Tq=^g#F%~g@$>M_CF6GITv*}FQhebOV+1R@nStP@sQEDPFBI> zE|ALRT1d$Wo9AD>1R{>NtTpbg3n?(x1C_mXPF1MHozZ@dsOak9+a-DJy1oqRY+4xk zSY^3?Pex{@ZkgKoKCGJDaH5u(xz*!jHCLftZ^sMaN$yp0lHBl|cJV^~8~j2V>+ch~ z$_^Fj-jdrc`gZJ$jHT|x;)ws@TT7M(S;7X*AM@TRtb7skGU;&+ebm6z7wHFWbd@WZ zticjmgpaZKxuOo2DPqLL{ED;-ea2Io)b-)_zOs8qlzN=YW~L-_@T|90#&BAtDAz{3 zz0LOZlbiQZvboX8em-t!p>vJJzFmsZTSHqgnm8c_Z0XkV*~Z zFw|cy9`Y3mn&}aOH)VZ)Y!dz8d3$uKF}6$&U2fLLIpB1oH`I3~Tm6O7Ey=0RZhWXB z13}d9%C%o&4#O*Pi%1aEyalvU->(-D)QRX>_^2{04p^#Y~P zk2(_xBuOK#0MqeNU6+fprcruYtW!9P{N@F|T25|xb>UnnbglhIYFV+Q19Rn&_413N zr{VLl4;vD9E|#2fUBxk}*PLILxsEhzUHYjd=35NQDJ<*i^!N2qEmq!qErU2b{q5Yh z(861uyH_qM%G%R*FJj_|;){*pK4%cQ#6d5fPbd9TbLhEn&2N(-J~(Tr9r*dW`a-s& zqGxY*jc+(Ah>@sV0P5`iZJ9`PBnLy2_c63pl5mJ%!7ll(pAc}0o|2UTa|Z{MltLt# zw-*N8hE_(ewTsbD_jzSehm4uw%C4oEYE6>e4?=g^x6M}>{0^tnt>JOa4{WBuU4r!kx!L+0KPsskX@Tj zy4uKTcC_0rbf7Mw~7adN4}waM%+t0H@_P_)V+61xrd?UOxS$X z7d4-{GT3s+D&=GF$x|biQ@9Yw3HN7nh1j${k(?VooATpRD_sV2@?(wM^a*b8k>KU) z(=T7Qq?4f`lev!~V8?s%g7hp-!lmL0Pxu&h>Wspu-OZept1E`SMhOtjfhb(Uc((+~ z_S>M+K`>X#{rVS<*WhSZ8nw2&4l(BN)Ig{LrV-DiXbK3IWm;QkVBVr$AEMRNDd(} z#0>Eb`a8e#zUQ28t@nG^_Xq1)^E~%FckO%cYhTwMLey0ihzaf!T)TFSSn-A2>uc9; zz^+}pzJ_-jdnd-tTmpN!W%*p?`L%0hk%VWaIM~nl?_TIRU%N)qa`kt;Cfa5jdy~cm zpzEUH@Yco6)XC!7J5wur7an^H7e+xIKAtB6f;aU&uU#v;uPFCi)7@zM+~)fu1)qg5 zQis-FJ-znjla9-|(~|zMhsd-d@=M9d)jh`>Y(kSEK538HXm~xQ5>(Dkr11kLTgsA5 z`V^nZmyvk#-5X*wYX@I*3`)L7CUcCjaJjBXbQ90zIp1vd9hsZ2(=W8$z?Yj7T4Q5g zZo6~!kX=jI!nEP><|bOp$8Gyu!fWVqO`2Xn@P4>_76K$V9XAj-`~bI_xK+)w_`$}mzrxvW_>2oE9bxy_|6mQ zZ2ckR)v4k;H3QSz)eF}4_1jd=NSJVH;@Rn*iR3?q2aMo;2xQXaZ9E*Aoq%}Zoa!+!?9?b`Q9(>2|-Z>{;Q?|F>A zzZG9LlN!6-9erJR6VhIte~Q7EO>mm znz~gBvShUXF0+Wi2%b82(MoL(sp{ri$VCQt}C}#87dD%tYz#xm3LCckAcNOj9N zw+-_$N?TFH6F#+671gs&SsrWR3p7O)PmBfSN4N4p%25gaRTSmZDPoK~NC~p=$XSOf z=yspG0d>t0f?DmGxJ{zt_US^pmK_x;p1J1n=&o1eACoev4d^ZIb3(_)TBZweAkZ1d zKBZ)ZZYjr&yFS|RC9eV?yw%A0Agj_OaL)UHcy-&s&kMU8aqmCsy;}b|QV^?XJREPK zM&PF+xmjiHY@Q^)%GH3orhgy#ZIr3?AJiM*X%fiNs26lfH9QZ2bEJ5)j`f!; zH-zV0WKAdZ>-Rd5MRV`kDv$hXKW$$1k_Hqjv+OX`Z+~7R#E_S`AtFi)sk*(%3)&Ao z1kC`IR}&O{BpJUO&yoE03vf|dybh(lo(gNFkkKarHdP?7G3k5IdAhJ~s{wc{esvVm z)N0^+%C;Se_XGFVJZAoQT6(y(xve#l_=f^6qpsh!e^!ea?Whdw%(q}AI%vSr&1u8u z)~+gt#Z*C>TV4J^jrV?>fI4oJUG-)+hep!6Gn%xF-~@H;w@tgIuiWLVS54iDB>d5g z>x~|TkX*bPyW9(c2trQUy9O>#7%tlk4$&;DyBA%g@cm(eFyBY-|8h|Y<+cd)+AccD zqm6dnWbm@0+GFqXg11BnyE<957ib&UyT+~ZDJ5yJ;Gk`m|}yV@mJRXW%^L;f-Xlq|)TwLR9vLkb$z6t#?R(p<3{)-1W3*@!T@Cdt@@TII_4{4sbcbXx z!&WPEgf&iK(Peh+iAQZK7{}j}ChZyJv+e@+tA3&k`#uGazy4AsmnIoF%LCkbvjnXK zGpsud`rNsCzD1Hi0pmAXDU<2&=}hI>jC6Qs2+a{%R+^!8NkbkCV2$*C6i=BCtaO>Yxp zG1-1Gj~?&u)yd@_R4jD6uRFzmV`x0lV}uhu87!Tii`kq=H?|LvzCHRyimPTt@`GzC z%n{ZH-31t>3E?7{uU36ZS)KyM6kW@{x$GP?5wVjc6&P=|(eyTCoFL6yMxqKmp8C>c z+rH*<6dr}R8(`$NCun8io%@9nTaxo=)X+L zIfn`sDS347pU9vPfUIslxBCkQ+_#I-4*O$kGPwi*uB+9=OO~L31w>7~yF5Q0>csBa zi8}nQ%-c4DcKWLZaH|mQQ&kA|U8iLUAURR_Ksl|h4 z`_x!6{0_C2;c8L7yjtv9$v#H_r|cVdGe0j+*g4;2&OG6`hfY|nnVPTY+PZVp5T>SW zb@Sc+n}Y_)ApwhcP@mzknW}Rjnan4DXl41|qj@MNv!}s#$Q@1<6CXS$WfW-knE4q8 zupWZT6!3FY7H;%*5T(kVVZ&1+8RsCt-Ka?9vYVK$pWwHHvwEbCzOBE*>NQo{aSrj) zG;N)ljGQ99?_;%xb-32oaRHYdJ0X*SsSIIik6fxfx7R8;ENz^)cE!!v?_MxS!{*&U>sfS&7Y@illnLqulah3hZAGi|*bG0zo#y3;gBnRsXfyBMtmJa!heN|z+N)1I>RWPN%Qb5;>NXxN#3l-m=m26E~x}nc7cf2VVyeW*w9G@TTL3tlwK3mO< zEaS?ak0oWQIvm(77>`zKrocaoZ5@mphrn44B6Y?qINIG_B?{-=ZH0P8Yqi!c+$t};W#HP5^Bgu7+P1fQp9hbh-jLBU z(m}0WAavY6KcSDd92ND=uPuP+K`i5ZS?7j6lF97r>B7+r(Z~)s5hg6X*{YJ-sPY{Z zVZp%1z{>fgRJgVQWdAy{;!gFh14TsSOTbUq`thN6dHsx5ARfa$|(% zj4%!sBrj2zDdjFVG^C~oJFEF%i#h0JnJX&kkS43R+|bnaA=uBr8>;+;cN}`0yHAO= zrPadg{IlP4FbVg=lK7NojgdwuZ*>bVY1+i1IS{ATG?Pd@Nca;4*orWCuGLS7Xb+z`ng$(%#?G$k&x+MMYVO{h2GJOU%K6bRv{RhoQ=~jBVLlJ zIGZ0%s12nnCOmzdB*I+fRZV|gRo&n08SH-1%Gd;xpxbJ*=x zP4qPrm^FXqQ`nsc=?Fc(DBbj!d0UUn9>Z`xpYY@CCW8fzIcImB)QWBz>7Tv<17_H{ zkCgv9KoOuy)3Wy-ghsVYRl>*R%GRUD)IhpwT@T9*6)1Av>^Q6Iq1$JtUins$KtkXC z)B>|T%caMnzU69_il*7qR^fohD!|PP7ogR}EW*MWq7t96XMAVG%;f_+7bM8qA#;r| zcG)mV5*Baa+*t#Mm&DyLmU5u2x-mO6v0aa*zaMtWj~2r9H%m)nNnX|&(mM6FXzG~o z9~MaNJ75e@{unK1W9qu>%tlyePCMiF~m3InT5kO*f-}X_)aK z5e6B!Oy>9h5zh4O&xEw#b&)LxXyG|gd4$;0)pGiQ6|AGry$-OkxayQY!nk@sF*sl; z&*Z9~Q3EXA%KQR?*;daVt9R}pt3>gm)z2u1d{S>Zr*L60A4MgoV@U>!I#cbP8C{IA zX-L%!3_S7|TKxXye}WeOE2R89c)8y^>{@??9r|PtFXh=Dz5&(uUEw|pY`ZM-yHDVA z7TCbwU9Jv~LEwkno8IBawl&vd2llM1f7_Be>BoXlB4Pj+4IM$!94RtsnT3O#ZCkhuHIO3GBRS z1F86CKd%x4Y@{@f0(F|vW0mhZxLOMXkhho)-b3SUDS+SJ38V;9z)qFts2Me-PkYpg z4N7kmlLz$Q4Am}w1-jlg0Gd~auU6nU{kk}AZmt7z8?fOe<6=jUHGJb!Dxx71G!WE8 z7Gx&-uRR_Hiael|S$$p%l02Su{mRApJVt2Ya@-8vy!e& z3hZO7_*cw3K5_{6EM|Fx2gcp9KU`?Cz3F9uHs9KH~jrZ^DDQq=LduKCcO@!HR(BVGyKQW zXOoWrg^hkpnnfo^XWiDFHkh))V@C6h;>ScRK3#}~k%DBTM znk`pIRUlSmCyD@ytnAsHmVMqWdQm9dl<&65NqWm6{!@0Wxc*|KM?q{pznz<3Tunac zdPNclw&a!)nb7Cq?=CD&;C%2{#GzNLs`|+U*+fQ|Cr|bMwE5-oxu><;z*w5fSfMPz zY{7ZpZu6G2kDs=Ly@wq!_+>l=Ov_J_A#zsM>l|;TursGv^%KjGmCR!{Af~^q+&}>G zNGlyyt5seMZn&KMDje7%Wai9FQPQPcHPv)kBVEvRbmS-_l==WMO}S=kg}C3Gur3iO zTQ{1piLtA6o-S=39!F7HxhxIH5+>~oeAOF1uT>A2BY>o^i5U!~mPfoL(E``if`rNa zGSD7{g7CR5LCP{AoUhWS=VRpqb(_!p5}N(0Pdj^g)PQh*c}BRR6@`ayUqWWR^PCcE6(Bpk8f7QfRMyke|EBwY#aZZ_Kd! zYP^X&h=S$UdpCo%Z_UY&1qYD>VWJ(k$ZmRh{wnV6>!*Va5IS}<;ThE#}n2BcOB z86Q3eKzzRPD7+!EdnbuJc>}G?8dy&Phqy4dZ66&>L;$?gq6Qv40%E55pq0Ksw9cw! zNiJe*>e%p(dzHrlA1aO9Or+iU#X#4s#tHl>RfW{B@MLUs?XP4RrUGy!i<48p zaK>r&BC0~WRwpr8tG!zlP*gLmbw4NVLbO<^s$Yy>rFXXfPcHO2fNP5VZ-1Z3 z+rBu74F!L7C7k6Ui%22$VIt}J6y@;@@luF@+oZ{NHJLN8|Bi(5dB5U4w9JDDVx|L= zZ78afwpci^=|FOIjzPkH{-7l?<=E%P$JN3}iPt%Im$Gn({`>1nwGp1Ec!*Gm4>D+g z@>t>xy~ug?>1@`*Q=Rz>kAvK1&mfNdL6mDE(TI-bC{EV!3L$)$G=ykR0x4S zs%{*>Qf*I!DVb3jCHI{dCc-^_q;`7eu%qJzI=z2Zm82dw@0N2`FP&78G0&{JQ%aKL zLndXXnYRxtF;oD;qz4Ew$_RQ%YZ3-2gTNOgRtN&={e?K&$l7~pvrqKNk7iU&sdR-S z9d@7Sqd!Fr5u0Z#lTYaCscj`|?nUFeI9V2Ui_cHycI7H87(JY3NEtj85v)D_7{}`j59DE6W@T2A95&Cdr^zA~E&k^M( z_qeHgHwPb1&w-~CNz{$&fYsqlSs`K%)ie>)KBmWk?E9H%O0xG*%%rV@FX$WPkUYnQ z*}MwDqhZr9~9+v-iFoIiKJb>ON9g$09lG8~&(sm$twkR`gdOb zJrXquG zzUOPay}UTr))Zq@?gM;zf~V~^vN^n@QMK4!Dw~i4+E%LuQ4SUA5fOYhIBM0Z4Jhdx z-ACeKFzzm=GVXJa%b?Inxs@IR#fHz)^bytu);5vpY$m0r(?YUfVucLQz(#6=>Mo6n zH_g!|7;G{RzbzEKV8gIps^%;WXxf~j=ao~bx6@Ob^1ZCx&I9aL)O6}RnLYV#{0c83 z@GYlT^R3gfJw4kknd2Xu<96-)oi5+Jb(2Ajr>islmlD3U9$hmLDWpxiW~*U&O`wZ` zW+{`4rErCQhNk_`m5{t$lcT7#H8lP7u6ux*Rxq?yGAOIjD`O(W&Omj6L+X}`;%Tu z*qo1shx5_rXH9iG)&`Q9(Y+-|`#?(fV)k_-!n7Af9neQkkyLl6mNlRwuaEU2ZKAPi zix5!@d!J=!F=xqxHqRk{tz+xm`Utn<>>b|W-I#U}cgFd6wYWQG>d+DMOVdqy1HKI5 z@n(-QegxX9*{$3AY*{Di*!YO)U|5HqzxjNo*-i>GHKd(yx8t{;%Y5$ZJT^8lQ~qSD zo>HQ8vi)Ew@Z&n}1FnS>JpRu}CRUrTbN)Zf2R5?)T7a-nZ8jbz_PL3hzYMjKsEU06 zg@re7n|{8$e@*?i)kBCa0!X$H@PUXlI-xsp|M*T16$}Ser#Cv+)xcloY3^M~GSLdi zBUP&cZEvO43>rq>JiUJh_@-+d*3on3ndYMVYM^5oa1Qngo|)&^70^|Kh8HyDipEoI zSI>BbomEM+0_L@SzRG_F_gU8HC_!JX!n69d^?=_6`{)nRp5G^U>&**7jt2Y=sl z2R4%Sqy1Rtx~jnn!<*;rbq!=`UrIoL6imSf8{C>IbKjWUND!(mM|y&=(eNZkE&J>d z8;r}if1!(IgAf58&D_m1iRNz+`La|PUX#y@^)mYaF8}C8&F-{X8hcyQ-&`e>se0H);=N+Cj&9> zug2Q9u`8hm1NqFna$ct_;q!C3z*!xvZz7{8Dot!UGC1fn#-y$qpM@D$8Q=M(2JFNA z1n2;6GvTpRj+yT z^8$B4UK_tpiXjv{Rzq&UPjoIk+0NJqLof%g4& z&4Peyf+n3B>BItR#rh0hM9Nm`VAwn7l10g^Z~8ibl(a0FAAkeg%}%S_0cyQMNyyhy zi-t49<9j>Kp1cPbz1)q4MbG60I`Bqd&xO}^9sJ3$Fa8qNv99)DEdk)?>ByveIceZC zu>HJjlZXx0e7bl!dbU||;rR?6GxwQ_j{))o*;{($xGrvf15h`% zWTYIGu_(;nz1+QSK7mEHSbSKK4At^}Y-M+*q5aG_xUG!IoW4jI3x03?Arn$LfDx7OXLjTGv$o};TER_;2LwL_#{@@ezDZ^io^}llz|3J=MNeek zx+G!5Mkp5JVKJ+16)_Jm@y%yk$!$gcM_9&U`fDmq7Mzf`q4XtF>N9NE@--6<9y?>X z_^WPn=zj8kLwa6*ww2q}jY8f8+Tz~V3S*(Fv_@_<8 zl32h?P=ndfm(L6HJnfmPa69`*^p=wxvJO2?D%rHX_vx$6P8LhE_dNaFc0kX-M3APj z)3j1NL-g;?9d+M&cQVXWhK;YK`89hSaqSiYY`VP>K;mAs9K-__)+$B|HtzT*zNS_tzf48V+O#lT_})L{?T5 z9i%-&v>jrHeL364P^!_*`|;zfkeA4!tY;^S4dR=p@+|a4P9wur#)9gm(?lPxRmx5*tM4Jo5ZejI$ks(+*}e)_1VIbBNN09t zIlJ=yJ>jzL_jT8KM$dv+M`b2fzE!hQu?F9B5s{_QB<-yD?EBSI$=pwn6UJ_QM7cK@ za;CU2D9!+X|NjAh&q1|LAZt3k)D7>n23LaAJf-4Z_La0fil

    JxD}_18!8Y0s-u zPNHCB&+V?0^DajQW!+Dlo;I5(%E8g4{Ybl4`ZHua4I3Z2=S>gb9bq~pg*Oj!pO%K4 z8DSVHT+K*&>o(W!*eb2MouI0uV}>>$4LkKiFYC}F*-zWi*JT#JpTi**b4@6(=pEQi z#-Gv!=TK!mqe@CTT0N6FzAV$4FCi+4PDA{W+V3GiT+>NT6(*4|kQZ6r}?E<;QC{WU)1$ z$Ru62lET|6$qQ8bWzv`#rg193p@)&;nd*xWD7X2{_|NYkVs;?kNvk!n2%5SU26t69@p zwJ3d%3kjSGP&dphyL0+x`M#a(-3=Rs^PXB-n6n7$dHT2n0@ySPy8Xm*KZhZ-%}2Pq zF`=FQW!+#d!=sfArLPX5a+hfz$5FZagSWU%uvtQ|MxJW&Ip$dZ)y8{17+nMZzeDRP z5cdmA{%^E|E1g!3RqBzE22uRzBpp`m$j>DKcctDC+qJVqaRbFMti@SKSY2Wh<~e^e zeV)2*0&3KU;ksC}>;zZ$4x}a`LTfb7bpbm$xtXXp28lY0IbGtE_FvE0#HhB*7q8|7 ze$-jdG(O>SPH2<-At?<+tcT5V!MnuP$=akKt^wlQ1|ERJu%5cFO}%>%3xmv7<~rK! z90X#87FQVR)cXZ1q+>ZQz>Wng=(+$L)UomPEe$qbHkh~#u<=6&YfC?#@4tb$t%la@ zU2qzy+ka}87*^LWPNHbcE~h){3mOgp``cJzF=BBr=W)5_g`$H*2UbAB!J z7j!utPvJbzw!~|m;=38kT3CN#%E#!vVtlw|^qz&}`KtZb!A0Fd&_Ly|qRpwr%D!L` zy}AkRSbAJf%P6T#-qSpra;XL^#SpE&SLUlp_{M6Wt$LeruqwWQ(1XB|jC{;KG^3)o zp?o(rl8W!&(61a4Ky9cwas4A-ryub(_K$)wYSM@T@8{^0W9lDuX+&$eIr~hLaLF9$ zcI!^r62d=dhtT2eq^%k4-mk;Eu%4!k20Y0o@4uLqmyS-&s?L1ta}Dlo1YAr zw%shKxIGgUFnyC#N=Qf#_|{#U6PQ@`Y4Ta*P5N&y%+#o!U8R1U1Nf@mew07jwJw;b zTr_2x1rj5PjV{v)by~j)`N%v3P)f5 z@KK|3nk$&|X7k1;C|FlW173{#7vlO&@v)n@GI+0Ig{5m(gdg@3wS?6`P+rJCQ4>~N z;=xKjnS5ctVb_1eOePlC(voH!%sr-O{|cu}%Au%Do04NA{Of-UKYxQNO4z=o0Y+B| z-sy{u=%@b;pHkr(B|dK>So)gbC(=b8-yRgIhz)AF zub|+h`)2tikzae6N~B7W!vN`2_O9MY90&e6(b~OrSD)TJ7&?8FdZ)}BTBHKckn|Fo zkw6sq-7Ul0Jv{mf{}{Ug#ZjJ+pL^Vp(*rSnG>T1238brNw|C}DVw=eHg~1J!dSgkh z#g&<0!K$i+J^dC4G2s50z;Eh`(r47c6Fm!QQzLESxECnb+^{w|cIiL3mLV%I9`N`Z z5P-}$*g+9FDnvZkD|!Shd%}Gl>)`TL<=@G@-@Fp?H?O3o%LLJ|Pq(rAkKkr-Po~J@ zcxLV5fr{s#T0V&a)R-(2<&!V`D08h(GC?`%UjU5+!aDtVvlq9t|K51e^xmvmM|_n} z!{gmn6!gu4VVygwm?BIs{?pceR>D|A7%K_4iI5_EDK3$%@f?e}8V9r;QuqxFcPUQw zebb`H^%Oqns#UqV%GK_zQ@xEw6;Sbd(y7Fib??0kSb87UWwUNBj7`DHpPjXwnsf`>kK8 zJ;+?;_t&Xl14(G#jQzcWw7%U_M;)Lq9go%4u8mloH&czh_9UvDY{Kr&e*qFYB?Dim zR5R;7vFN}%OXv*GdA(tIm>bB|0Iq=ECFI^-#EZwD*V!^^TOP%mbnId`hBL3r=|V8hnj1$y)v;=w zda**|aq^ZJr>(E?p=o~^gQo-i8}}hPyLXX~kQO5gR@+#aXWvV<=F@VGP6(zZ(@|<$ zJ=4wEj&cNu*m3haM}^;|FBc~rS?)X(c<)xBxD^<*$1(Hn%_LLbYxohHKAh^r z7qUObgk^k6GnDnaO5ODod;>A#Z3)+kNuK%Z zpV&N>K}=o4yA;>ytgZhqad#^qNQFIyk`N(z;XdS#$tw; zIcBN-UrW}wflpPf4|?`d%#W5g)HSdgCIAZz6UpLskk?O&Ih6?~nxJE2{}K=7{11J0 zOGY(((^3<9gG@$`;x5PvX-NI%Y!^uHeNi?wy>s))Lx9HD;>C4tAYrS6P#t@Ko5-Pa#6s$a{hGj_V-8og=>S72}QBkjMU;WwMgjx6MmNe83FSrzt>Yxt-PJx zN9`)`Aa(Hvz0!D3uN?B_x7A_Ki5IH@RD2pUpJ(xTXg-MsYwu>;$+7oi6{p)++t(Aw z3La;Jc$XJAX~iwn>vbG=c6(yA7by5*-BQYD*7K(=HmR5C48$Ij+gVuss}q}%XME{r zIKL`r*iv0Zp|0_J!QW?s(uMz2DEuYz|7V3tn-%Ey?$RN7cj5Fb;rvHfP-uHsp+P|Q zzpFjTpulHyVn^>NIr9T;m_Qr`iX{IjKrvxjBrp3V4svwv9dsj?k5K!N3UcVb2~Tyq z@K5a^2HFP~Bb}^&9%G~aW}+7XEeet`!+@W(lk(g+IQD+(k#ryF7V*g#n>o;(q{yk6 zrkA%yA!g$_;$_h6mEtBZ=}-qK{AG%9j;TNPgSw(+eyj;GO#+*7cW(Ts;K*P@aEN^D1d1lB}YkMfy8vj_r};RDDVQPaISi9H*K3)Q*>^R)$hPw zPc&O6?@T18zq&Cz_PzCWhf0PXww@j5=cT?k{_G@HKsaPdUkxlorms?zRq|wyh#}d@ zq#CsFzU0ojKlEv#rDebhEE!^~y>Y*T%QKot6oQt`WM-Bg{CNZ!K#{X^|2*ENzIiaw zqYw#LeP7)vj0wNg!kN;(-aFauv^#7;t0~%ddn-D?yp#&zxs?$)dHFDk|7Wzt{WuoN zK^-xgrA54*F;=RHz)|-%!}0N`xKnF3+Z82|@`)xO-1@bJj1S4mqu+q9&S9a+dT&)c8kcOvu&TA*6K`)lS(Ag@Vpa(gZ@6Kggb3u@ye?K^j;J!2 zQ@thTB3|Z6Hc@TZqkirRUdQNuvPaxMFx`&imyiQ8GoY8`-UHU?uxOWE?CmUmy3y+` z&!EWmM&FO_$-jJI)6K_|N6(aa+rD z3B8gg(53kf+fb!0_kPu;>{F3OVo8BH-WJW{7c%^M^`Q8@9{7Fbv*CK>_O@5Eg<<3# zl9n+fnyZC$qA8?b#cX6w&(PGH0(;oXCTQgbt{m4sql2n1pM3KN65f{#h|QptRecj- zn~g{g;{iov?*!a1lrY)tK{>$Y!?uQ`$g>5t)IS2jqy9||xpXOsIWvtx>Pyi~wP0r( zfvEHEKI2wpqCfIZF)GPAe%vNr;%85vq*hawU{;=acllO~NXA56*nYt#&?GF|2+oG>gBEwBcSAJ+!V!_GaTTR}y zK+!wva!C=mcsAER?b_5esCIu)H?jT`XE-_ur0bmbxXCA&Q0diTQF4X2fhY? z6DIA_jqS9bQ;5a3K^Bj11cD8SUcfxnU!Cu-ssmVWAHOKqD+0iaNyL86UTr#f-ZmEm zUWjxNy5QjYa+PI;v`EI-QVCGQ%<^Pto{m%+BO8F6WYYkqB{4($VuF3l=c(zQ- zAuo?xhfk?s{{C*t!J%9@?O@R4qMWfyitO)1H|^3qyb#f ze;4chgHkWjgm<8et$PUh3{TOSvZj8ai`L>aeHr(C;m+DUa2?g_a73Ki)-FtH~-+@ukm0t4k z6*h4;H1u~Gkk^XHQW#il3o0b*$xH;zb@+~P0L>iQ!3~DX1y4T5=i`UFZPCQ-=>-w9 zL_J`b&C}g2W3b(&a74-QcAA@NiwfVgtITi?euA#)#Ux};)0JbHj^?>O?1u7>|6s*8 zk`05U$<;*o2tuhW)w1P#!D3CewCha)#pIJmvmrRs+yLh}UXEgYkF^jgzSM_6$KJl! zd0#B`GM_p?WIW5UuOl^j;wcZbq{C@ts3y4nJ&ra=6_Mh8b2q(;8A5Io!vDxg;z6c} zdZ#6w(C25K-r4N&m|%ScRAryOAum5}1FB9GZ?Cz4afb65O{(tB%{tqUoR%DY-#zp( zIK6`4@nb|U?x#A3W~u)0qxtv+s-gzzOQYUXgE2FRO|16#%7{8uK-UB&AhTG2g1Ua; zTSfSsj*8Jjf`g^AZazqI@7HlbR3z_9+S%qdg0S(WmtrFHDTXG?q_rMVIAC8|_Wf>t zM)g51a+zxGwld^BPPMX9VUkrUn#y4K{vav02^ChZ-j;Cx^`%kD2MwR9c7XTgX}uLU!G{3 z2K$QUD$FHNtLDTnQ|yGXRPz|*p{eV6LyCCEtC^;!9$-nXp~kI6&Y$Gu zu#;*X4umy>YU4M#2P38o*}Ka7i~4H?kh*6H6%+Zm#WM+uli+{?Lk^d-kUTc4hr9j% zYodBZfqS7J1t@*-8!$B1j(G%O=@);e(Khd~zK@2|d(rMl6^{nxlO{4YA60_S{0{S` zZKW;|q~n?{y^T~glC29|=F(sYK;$Vd(3x^T+l;wa58*uWdL`9TGs(^% zzHcCJm)m1O6s0IO9U5*{U@#7dkICGh<3>_`& zcUB7rfg^Oqt5lDz0yy^Zy7IXt^irKxZWyV4BFo3WTOSd%C;^s!?P2+eicb{!v^`%V zum9p41N-XoED3#(Nm09#J(k&#XWJHH8uVBRG5uTOr>16H@e9j-wBN#DMtl4Mt3?ph z8+`>UmvE%0C;#y2*m)`;wKo9P73<2|9Nl|E;(^>eQmyU!ejbC3z4A=U8Q2sqr9#6!?vZ8|WxjpeGMsqL`?Bj-93ybc}Qj%^bBj z3orIonaQb%!ftFLh#NE?EPi+n@8KdZROnouqL@eyB9Mp6AZK^ zIkB3Q&R&0JbYA&>d;6D8lkL2=_g7?D;LDG-_?sccxOAlam0yEnD>n0&3}0Ycmi6iZ zq6WpCsszzIIPV@=_c`rH65c)MEZU0f*Z4A1wu??}nz`_dcz94CHH1|qs3>8o1~Te( zCAdH83;4JVFrnHyxJ0e@E}vfeLNxM13MYz;mxD@VEw~$ zipQ^6@8PyCkAA1-5+)Lb&Zmk~PI4{D7#@pyN4ALmfK6;R*`*B97Q02VeWhCuQX>6M z>W=~ZpfSHX!e&=iyT5sWEFI#RlvhX>+S+t^Q<`=uqnef-XtDf4i||kFTkRyYpV$D%qZF-f{r3_l~^t#+IAf zP{MqE3+C9`)G1{Ir_@Wh&<+;luq(Cg{TBrvThE$0KmjWZf<7kh3i`XC^bdTHSjV*z zk^29j;Qz;;59ro|&VN|a3tS>?q>L|Z3jLgZUU%+lQ`625IQe&MV*vL>_An$R`WzN& zr?sZ(p3nGs8~YI7nF%@8a7C}-P%|AV@!Z)enYBF{%Cut!e(U!TXnoLL0@{8%0H%aTb!k~27 zlEXeGbxhz(KnJhmf+I9V$5ao>f~)UMiOs&<+9VKdc0u#g5$fx8u8=+^(p{fb5N@fW zfJs=SgCUr4VYA;Q4rR$=2(}L|oSFMW1pZ{Sr89A0qaLVTZCyH^%ew0u6l1YNeM}~L zdvo}>jOdD^Apgx#{6I(j=DvT8!qVwp*-Hqiz+1brAsfGuy?oUqSK3^>J5eQ z^>>a>+K!DS`N}>ntRPf1l)cyJ-hEDLqqNG2T@`s_epB|ml|0e`GdN?f6tfxWd{W%B zOAmjqXeX}m{C9r=4}q0-6mEp$c#o& zMw!3M7Qf?1$oZD|d};Ha+Kvw>Qis1}B4`OMx!qlpwD^4t<8WjAL%N3I4?+78o4mWG z`b~NdV0tA8i)U}skANbcztXd8m7;phsL2}L0sA|5ujnIG$Myf3Bv*steYqzBdHf88 zxUr?dd+q*%;v}_D$|0N^WJC9UP%dJT8GPhdgQ2KFANeU(R-QStFJ4DqljG@4lk%DV zgsp5<4^!>eNsi{D^T*jm?XKU-_{f^Zy4hW){M;p(X7m}Myy5DhSRx-L7U`S{Gkz|FgfIE3r$S$g&i%IxG)7L}N z)wzFptL2<7UXkWM^2n)RI{}*he5=pc2jXw4N-RyuXx`|5<+lCKpPZR;C8xHQb&Ye_ zlmo~V#pKIWM9riR7uy3HNVRo4M;3Q&df@JRu+`zLST#_Tmz{a?Y?PY6^?JmFgRO3I zs71|Sf2rk1INS>FlPF4xC4ZoL=TxMXxlOEuMN?kPyI}B!$lSQ=-r$ol-k`^+y&vna zYzE=VoaFC$-K;gOQz1*WXQyW@!nr4;oH&6mO4f_C#nMHSl^d$nZ%|*P`R5VUhUp~^ zr<(4su0-!5A=~=5FCby@eJa0+4T8H^Vk3bP790dp4$;mwZK~CI?~w`Ml4HHaDpz>+ z@#9gyTxEc=m zElEd+)QQ1POc(5*KcP$ZP|*8k&Zz%Q?<_X_H~3-{iM_;mLs=?Zt{6$>dYhD7&&Ch&NWw-d%}!grsR@NTW^7u$9ObKD;fVZ!(!s;1v$}wn4%Cv9(~f5wq~>FIhgE{Z71zdbO*3PeaGu zu$q80Q@pp3_&7cIUqwd#eL?W=>A&9#h5wb_jP0Y=MTV1see$nN;_r;gO*UvQYSU#U z;_ptqJms$4)mjpWA?Vf)n@drC>zh&Lk?DcB`lb`3gsJ9|3#+zJNCEk<`Gl}u5hcDm zsO@yTC{FwQIQQYthijCtZ$Ks zT^uYNEavHwz3Gdqn{d`|%$#eAV=}@x_fp2eYwWSJPOR%P7T**kQ@j%L;$LR;iV;T^kTATMt$Y7YYS#86|Dmr}ZYyd`CY-5j`Siz6E+L%AAYVKC z)YbKyd(JMZIUF=Zh>o4D7~|@7umykBMxFioW$((XOvgOZTUr7F`eN!~d!>(}?v5U% zrD#7+7C)1d1V1O?(IOnV)Vnj$v^?s>29W{#uYXf!i>udPs$cr9^lW9U3Y$L5jn+2s zAe#M|vslf1aLYH3BC*NWmV-#IH&Bp3fXNv=?CxCqXzH9CN9#m2;gE)?yEuWsFGprl z6#Utup38SIG2*2ukW4{Vy)6keIjreM9FT!APEQWYR|<1?3~SxUsdkFk^0TpB zOVmcfR8h$*6GbdqTUAL4EAdSa|IO1Di##;6yqSJ<@ZQwR^;Fjn zA>&R`moK1m6ylG~?g2Byi%;-cN`Cs*q}SZIA|hc@PV$#Sk|6_!s*_K!c=wGG-Y&w%w(dcJa&z8jE(W=qhD$#bZBNwbZGlLHX3HSPj>gw6&_>56@7U&-4d zScFkD-vpY>LqVSI9fNL6u@%VeAF%eUyD4raRVXZHg57*#-?@Gib2j!$7F}&<^oV4T z9jicooVc|96ggbRysGc}Oq-q9l6Gk2b-%w4v@V^AcmD3e0*-yRf~n3SmZd7GaxOKY^F_SM}^8EFP<7#}}{k{Xoo2}=eSW`oR z{DrsA#$}T6hA_Z|NhFiZ-W$ptB3XHhe9^c7R_;y{tV6w#5oXRGcBrthny6YSPW))& zt;UXo&fDizc;Nq`SvrIhRTiurrDC)Ky&8hHj2ix`DM&R4<(96F<$+?ALX{B=%iDqdsHE9n*MkQ09| ztu=_zXi&#auo1#FL*oJA;ZF~bJo~C#fEuj>IR&QV0QYA^+apu#W%L!EG`JS4h+~;ukXU3p4*y$53jIV$6NFjIi%F3t* zc!RE1pXG{;>5qUEgNHvt-Ew#a{T})*ZA~^Je|8W5sKns^*d zpW22R=DXEOMKL*kxN>rrzi1`7XTI1l+D%-460^)bvvATVud?&ma?^%HwY^Zb?MJh( zsR{*iS*plsC=^NcL_wKfc8?^#1)>);n1G8?YWW+~`PqQJq`itpLx}=Vt5Y@FJR~Q&`E?b#dOni-fLHTs4 z(Bjqn zn-4xo?R{DZ)e|AYG(|e{#_BK++8-Ob>Mz;W*sd#{1Q|Ywg$x_!Qo~E#iE!~e+KiF9 z#;dK=8SSIwyb*WSzF!A+N$j2ChXGE#s^^MS-Ms~h;MW+I1-zw!&Wx^oL)=+!aQ;t* z_Qwkpc22g4FY(uQGm7jiT8~#9>acTuh#8yf0274^u@73Wy*mX3j;-UN_xq%}8Lqyj zK`2h;YnHU2cE(kSvMd6_{c}QDQT&5M9y2yqj=%Gl9#B{oL)NT!S8~C{Z|{_M2x(XL z%1LkUE?gAAC%t2MEv}L5AENmGrDp!0m*|%fAc=gWyJYYWR`=$B{>sT!MeIdrJrQZ&quV9vG)w zeZL(osz=2v#FOsat6+9i4SgT~j$z%{$9H$U>Sd?QNT=yxt~D)^t~^R(Ke1`|RZdJ$ zI}kSp3yljcD7yIh?O$<%w_BJ5n}V}*_i%`17pq%afEV1NbOAgt1@Ljy&Qul5r0v%M z?c1H(jH(r@c7Im?>0OMZlkr<}%B{O8By(%wb=}HFRHFU7_M?X8{jAWfSjSvrKLOhx ze#R8p5{ZAQc7O39Dec!#y3fu3x2eLiWXKtXomEW1VY=SQbv{w5pT>W`7Yr~p)q1Jm zFWFydcgnCo3%cORXjZn*8adxm-J0Fl1zyxhpN9 z&Xl$TnN8q~f~(kf$D9RwUV+o(j;Wf-T08s;Cpd!8T)9PG_1Sl|$9#9wCCZwL)|YjE zR=5$xtnvgcpa0l;4D9ZTm+IV9v{UzmB7jp&)c&{_I9<#9KrpN#OlO7ukdctj#cg~0 zSQ4-*D;Ik6%I318n~Q({55ZGY&`|>0_w+3!Eqfc&ezn1HKJ{p9m3eJ@c0u;zSkul- zIgj>_P1G^D+)XpPZ&+165tT#cZHYz3TqmEPm8RyFLNeOF72d))MZe5?T@f(aSR%<3&*>sBJ>|e%6G{y7)Uy=VDawzrtJY`OC5mv8~{*Jx5m!)k%+y zf;Q@}%iMCjPMW{DnLzIrFf(Q0)nWxoI>*#X7jmCpyPH+vqG&Jm*Al4rj#FxO6Y~nQ za*9N-4{-LkIGOKe7qu3b(XsGe0fwz;@%8smu`LSf?5-Kc^e z$Eu?$L-^&)as%4c&#h1GiiPrQqcnmQhsBKSt0YkpFdbzrCW&3O-mb+~*)w59`3_z4 zXUxXK`dtn`YgS5L<2*;0Cmj{W8(|g7|Das^HQahCJic(whxx4|HTZY^3T$&p(MI4s zVWUG!k$nJ`ND(2LBB3$X4CC6rE9D6FS9imn>^)YWOVZ)_-pecw2_Vb4PV-ToT4Z?} z=;Rp(9nNR8t8HG}mkGBPkY#X>2E*Z_;gAdGR4aK8Kb9Jf2li%F$$B}dOJzK&*zexc zzb9X>?rLa~?;?3=@@*2CerKX8uO{=)vd+CptU05VO#FtGncy}Dw`f;%J}GY8*L;HH zw>c*|hoXP6l2L=SUSfml(A^<0*himu!6nVKV;Io2TK~3P|ES z$ip6qO2?4rchz!P!`PwXonmPD{^lPNW=(Gs`(Dwea?n8)q}MunW5NsKAII^*rKQ;O zyzD&r%}7IVu`w_h$Nh(85hwCTt+mI3ZFxSoiD0?g7kxB@ljA|PQonZ#a+v`*EB&N& zB3}3rW=za6K@Y5N$p=e58xL9W6Py~kjov6g_3j4mB=yAHA64%vnRUn4KX~Y-K%-5P z50TY3xkeA?J83!`)W=p^YPs9fPvDN)Ec^-&gBPfEMVpy)K_9c1=Y5UJYK1(GnwzM9 zh#piRL@O~4^^dpLBx*M#y)aE0B8V=iPgH{#Mi@AEuwYt<7dgO3#88^LpTL(JwO$ zubP!7lp)lyP5BqHS8SL0IWGnDEV;s)-RImJc3*F6ck$PuZpmPq>!Z8|BF9i{#D5J3v6l>&apqe1)Y(HA}t9VnC!)#3MQgRg{JJz^p{GuNT6jY zK>yL0kb;HBf*wI*qTR3WZNDOsDWsX9NZH7=OsG-2F&BCr*+BF- zB~SU?d?o1@lU)SVI&%J*@SiN2smbQ4%f?ZAli;KjVNl z- zRA=cXCkz=}sl;B%Nwn>;;3a~V0*-<|6k+>7wF$d^D~H@_@Le(??HmIttgGVGhgEn( zFBq<>I8@h8svl`*aveqWof$(>H%GN4?S;+?Yz@3N`ZX-~Q)TOODLhNM{M@rkWJkl> zaaM^N`uX-XsLhb`>NinW#O{Vkq1CwX-g$Asmc`ME5@E`Ei1tKO4ly0SVb7bHI)C!w zD>ce~*BDyL?s+Rg))^OresswpiKkxDo(INx%P#&&AxSUSu#CQCUevZgSs^8Lq-c2q zWK!6i<~{Rj&zCsoeFtlXFR;W(`id^l2ru)k=ysAi{%9iW1S)N?c$T;4?#V{&FN(sJ zthjbX&19KbZL~96?0=P+mmv$-K8;U2aPLx%PMo00k|LyQen-JHE-l9~?_4A%v1siR zZlq1Cdq7jo)bbi1JWAcfB1&Cqrj64W1vKC2ip;En!^)tg@tI(3F3MiOJ0%W79CQ~RT2r7mOj8?8zr!|?EPYMW0?<>hj| z67+q+NrfHX=?Wao`GhqQ%E*>9$C5ZKN#NfLUnIinf>&Q0k{`JpZgHP;@r@A+bgzdU zT8~+0M#Z6D(>CK$SdCXU_pgF!)>n=dO*0r}Bfaaj1mjjv6%I(gtW3bX%#6pH>Z|*T= z?&tX4S1Q2Y=;SRFxuL(5Na=;u%q=aMk;#mq@YyMBOh~RbT&Ggu&CjSWjR!;@#XPQb z)|sK_Q-Kzb=G>i@iq#{$o=up%rOqteAy#?j9P)%F=%s6se`saxKNrHjSThS#Q(>3m zh3nTS;h4<_5(v={d9q>#-{OYbS1)S6kNzrDzg!qJo>A{}#zbSGfiA(a3z}2XU&*aG z8V2R%HC8lP-So~lY9tg@Rby^#yC92!J{@gHVdLAeN4o;qafwBr?Fwe=h~>*Q?mG}kT(Y=9{Vvu$e8ADW{!DH^ z2}#T=Z+iGy>JRaV0*O|Nr(ePl3R85XxCmJ0J?8ss2dXc~)pvX~Nb@-$XP9T%prO+! z({Dp3bJ*V}B;zV!o}ed79;WZpr|cY$AQ)~oo^{5{J^Bn?}WP&tr!2!pNwv(dG(iOM|d*qPl?IqQ=MX^ahK|Hu+^@k)i==&)bd6NxLo=goBuRDKR@T zo$CRbto$rLdogE($>_oJH0Gl<{fV?5IVtvqIVI*;V~`QUzeRVer1C;)%LmJ?`R`)R zz9138(N%7G?4WiBZhrBSHFc}3Eaz0`KV_j_i`22A-@bX1&tUaE#76MTneRqJTO_3F zuS>Ygc*31yLX-&?`F(Ko2svC&(ds&1VtGnOYWDIhl58`aYPoFQy~+5j{kZ*M?7a`Q zC$p;U7uDmOxrR=fjT2Rec(!#h z-;f4Z>p5}OG>|rbMx59eaPkIe10$L`>%%I~@UlF2?xQSvnvix>X#;F@i;`RJP7&OT zwBQmb^4=FbkF9U*ARM)|mRShGQJ_ChWboxbm1q;nrL>m*J+r4EMHt|DrRo1wT#sw^ zchm``TYxw(eV6q?)NK_FmPc@1zo!Q}4{%=$s7n7Sjqaa~>i_dY_b+VT@5MQA;y_5S@|J??`*({AGj^9w6-y_Sr5(#Ytv*+N^N&E1Mm!fU zhVZ!DmYcW+c<&Jo3jMW|E-(i36c-Zr&E)U#A&v)4m5JG|q-mTO?Dyj<&YgaQL)wAb z%@v}?N9{X*#JcyWNgu?6glG2m+6!UMFwl+nJ9n2C8MHiY0p{2m&fZnn*QEPjQJ7EMh!U+`TtxPc^xsPNG70 z^sO2VmUhzC{3SLQWYGQ`fQr&382VEz1537xCblIK~vYXZycSGlq^lUuA2S`PVd5MSUd9JPT& zUhWlRr!>M?UmljJ$6RWzaQPq0R`)$M6J=$uCXPa$S2~-BdJ6b|C0^GmU%m(~v4Up0 zgOos1K8SjOo@Hu&Gp)hq#~PR&XT^U2(N5O z7L>RQNu(}P*;yTMCioInFQ2*f;$0oL_iVmFqxqGbxW{mPs_zs#jQTc9-{USxUYUn8 z9)9*b%|rCcOr2TrxKa7El5NW_{X-l!AIARy6D;0K{jF2i<8oz>+K(`^2g#3QX5;m@ zG#e%*a&B0g#|$Th93y)ynKmi>S*=L8B$HyRI)v0{*mr?V4Xj6TGkkmI9&m#G|bf(_~r z08fDzT!!?ZJRXnnu18VnmQ)tC7t>^zY2YMW!9MU{T5>JGgK-0kF*|m4=!9c^$~UT! z`S7pNTlrxeGrkkaMl_|lkL04ve3q^~?wjgk{{9wA=>)G^SECK6Sb1LIUko*JFpsme zS#RLhIGXSJ@3-TM$PB)Uuh2KYQc>3rNn4e6@@G)0up|yT)}C??(x3IFGnFh4w-;AL z5_5(;Zj1OL--5I+Q!BMwl5`J^&#L&G35j$J1+VX#X8LoT1_BUK#kKYd*5CIsPcY}K zljJk%>*x|Fd{swYYe)2bE;_CKN1k_db=0Ka30Q+qu{8-!^so!#X5B9RG*E;(1VqET z4hwz&5{lsvP@<1HC66rb+Tu3NIP!_V7W>x*rg=i22j*w=oV}(!dTB{t2ZlFa%qECr zjyi1Y#KGMyf0c-z<|!xw2_-1(ZV)lTvw^+1MR9P>z4FS%4|0*fk)Fa2X^;w*Nz2g# ztXM<(Uy>=%jR7_VF7$hp`_C)R|DF>2f0z7iN$4{>Ad$d|T&#lWu+(TCS=~9k$Hto& zyFfnFW72xZQ0MN?OfiU|4Ifb>r^dv&Y+%Wdy16T~%PijJXUxd6jXUGp0nHZbOCBgo zHfD1&CWR-5ze-!WIH0}}W?)PG?g`3v?J}U_TYnk8alD=8rd2XopHXk#!1<@t7jITa zd;AcQe2XF_HQN5faipGe{!J&lVd$|E7ecVTW~8d>X6T6&Arn}Sj{5nFF93I&Yexn8 zZXF$;ZCzpH^Lnw%`!aRwqt+wMY>ilV%;gJ3pDz^Mvi1aeC`d@god;GdZeJ3H9I@-Z zx{2_pJ%wIs{lrI&!`#Tr)f!-`&}eL^{sqT7hmC8qF@;bCO^R$85 zW^M&Ybyz~{s)j3jBXZc*ntj$yeM{;YMNQA)fZ)3Op%&jS6u z#oS(65-XjTIGzx~beX@3VE11jUX7>}Y*L7+)eT9qomnW%MQk^whd?QIZFq zJ%3^PbUy!!3v8m7t{=OPXQ*zR$^Yt2rLF1_nyX0>I)1!+#r{<{{@W(~Hk*4q_P^Ss zgT*RMkIS-F?+6wU*FNOhf0{y1yj5FU~-KzAFfIzwWm<*=
    4XP%}oz*hT;#G3sXjGDkWtgPeUusK$sr@1BgyhJb3i| zve?Ezz5x&MKkCIE-#(v=Ia^zl8OD6PkmVeg-l;vNcmy&#*pJyr?}{ij?5lydGk zc(TW_dpq2Z@*u!hNUo>41ffT0X61|#KFShdyai=)MuQaRUsvBegzhG!S^r>Ueo^#+ z4TR(J4uQ)K02`1VK$J>=^a>2nZz-wD%&vpBHe`R0t2i<$D3mTWSXam&8Izt>k z$j20*IA%8Yv>nQ{omzw~V=UI9iq;&?CmzUQud3n?u~6yd6AW>#QHi`)f4vp(pOvjL zt#iS)V=W?^a}#V`I0ZDO7=7fcaZc%3*Ou}z;)5VW9v6GEPDYA%=~Q9^}_QnE_9b`Ptu7(w_pnt}Utw9k20yG>;jszkpc31xo`c zPOv=nXNbhlOy@C#>)*fU7wG#p@8SP;W&)zC_>pT-$p5zMht;E@D5MB@$ebIxj_~#8 z(NO*B^ON7LtD=v(O0|x+rl!*}ChJjIO&c!Xz)1@BKp!PQ?p*6UEkLE9`mUE)&(RF>YF&em!3?Jf_e8WU^B3%0K zQx3=$9cfPFyB@p-5~Qv9&7#x`@`>!OR%oDMqpLxZ~5+AeT^lJ>%;k00%(M zFvME~qe2V3zGb#!&zfBrd}^W)*pU)PoFoumHYKxYB?sbD=A0_dsvdw~)bU5VCzpF` z-;(FOpq|o6P^nskojN=98b7)PXAY{kDKFjT-hy@tzi?bp{?@W*-kq)bo@&mqG)S>v zte1YY%%jze)W!1SrV9vKMVpF3 z@y(Enueps-E_acsBprjQF;t@upX)uInn#uI7iiyJSq9-U95?2mE@Q7um7vR@F?jI4 zw!p{vy4!Uu>!Nkvhw2451Mc@OJlOXeK|fG`PCEZzpY z?OQ+jQeDM2ierlF8%n=)M!(qpA*11u;BeaD9JoHet89>ifLyx}L3+mwTSLwH+yO)j z%ES<=$uVLjlOZhiLDx~l6V(7fUimXO{Uh-B*@c2fCq=LSfvi|OlXg=Au4DByyZPI9 zCi3>kP8&v{t45c<&Uy0R-JMrlmmbskC&$pF_TL#0Ks8lE^{>O0Vum15@^WA@6BNY_ zX2)V9dCnfxvbVka?Ja}jZKMu>q1_dW;cy?pO_`K^E@q8ai#CIcQ*YT0g-(o=Q7>sp zGSXRDw+wgAdW^ddKTQj|mZ@tPh~z1xYpF`1ak&eE;eC z3dxITQ!fc-Q&ausUDisMHzk>h0WB;oGCFTsDhU6fz~CgtEWEWI1{(Tnz+o&bz|wVI zR%t$)ozj7P^bdh?_^X~R-E9mHt;5fH3`RALmH2B-7E-SkIN=iWIq?>IWol=3LMO&meM}~X)RE=< zPe~iLb5EWy0`czSh3QD_`NbH~IgfnXGLzrK9C%~~m4on&;T*`@w|$!@ePA(nl8X%#$HwAv)G{#sXWU zaoam-puWM5^u78Bh64aHaPOGEla>P1lFM>0mpZ&KlbdEX0dnFLZ(oXe``(ygOR8PZ zarQ=ck3pYhKCJHYALU;I5@@!s_ozzEp``luT)yaDpJ2Y7y-2l+~p$5BSkqD`;fMg32Sa2j0v zC9Faz_q?N*+^eg{988lk-rPwttk0}WB2%6whw{zxxr}YuC*0WA)tZVHag5?`qeUh= z*$becn4P0Jb-XymsgH-}yEN($CuvIr=2)`$Ofv{97LU`$V78OUqgVs=+9wg-kv!eG zZ5NnD_47~$4x|aP!2uy;*{?lX&L3-i(;yXM>GiKW8~>l6F+Uzv4K?DX=f4#EKdX*^ zIozR<{yaita;OoSsCpk!(0;;7N0Nf^)npt@`n>oJRqZ3IOdD@X6|sB$5? z6DjS+Jy6+4o+8)9vniQ=+JZ85wXl_O+q+Af#YP^C1_67;h8C{dFD`I%kn1k|USY;R zFM7#x^9k9QOb3UM(!+Q6tM-rt`R))q5jN{Y&#u2IqJV&jL0j@0nDfK{mR4+EVE+?M zk)3h3qlG9b=b$yi8`XL-XBT14UIB0Ha|N*OtEFr z4Bc8~xif{@`TJBTQ0iF^KIP;rztmmRn$D)~TC$)lZq0Mj0Q|{94c8^V-4X`}fapkF zPrXtFFLwwEcE~8;$kyBz50kBTHDDY@!y^$66W?BSU+ydjF3;`m(sFJDtZPZ&6A>Vx z7kr+pm>_JixioAH)AN&hU*)>hpPIO>skSe;@KM~?{PKG2eVdv{agFmzKg9W>Ufr3O zr1y>s6~tjMC%X=>)%L-^9vu&uemRuj9fCJZJrM@V_O&^ug>h9810&NP8u!I)0M7Fm z4?lTtdHcdO=+e9JPKx5~p^V|MiFFrOS~1k+qvsWjNOeYNq)jJhIIr^9_i-tq>ZF5n z8&xS;tr#+?%v|@1$)(}9kB?gN*BT7{g!W4pL)cVOri8Yh468!PZjWE!nHm+`7<1}3 zpa~$KL_UT!0C((9Ws&y?jINLT`oHycT2@>Zqy)&`A)$L`))-?k5hfhz2!7I8@)lk? zWZ0(*DMKs^CL-GzkG}37qUDGD)jp-8!WpY8@%?2n4L$6)ZOwtOBlUke|9#(a!DzM1 zK(r$WcVR!NRFusAjPr!ET0bb71uP_mokc=H!1||~%0S#Qo3L2k?=2W(L5a0XGdjdL z)ZYCuH18qw!90~FRidJ~N(`y9(K&q%dw0Om9~JV%!+xAwWu)W=+feOjA@N2b%jA~8 zy^giLzAfMTQ5>PpaK5-=>Ek~QFb?mBsd>^>n%>DYv-*;MF5UO!My-GHM|UeSv@@Gw zf;m0s`$`{{E`^yhVacui3ToI^$7GE-Jk`TZC#nJebY`3DE1!?;FygWN@Rr5#>hS|V|&59*} zj6~V|TK;+>X1u$!o+qB5QAqxH*wzf&N-uBl`lc(#Kh#`KB2}IhpEo7YKHyC*v8O~z zksVrj8X(I4>a}VHT<<|)9-Lb`q)1=78%4@L#hPzc7rcDeFY4Sl`S+1$1a@X(VQ8(8 zd7H}~ZVxH5DF@BW5|B?S^5MKxu!*h0>lEtUNh17Kr-tdzOYUVX$oi0*qY(9H=Mh=^l#Wq6HJEyCoeQRa)KkGKE z=cI}t1H4dM%hYLv0-$R(K{>DKpq}QNd0nFZFz#(CW(3_L5wm$vH;m1rAPe-1lhlMF zhs-$7R-x5oaL+is>RJ{3-l?qX6zE(L{@kayPj`0L(&bczR=ODtp;9$F3e>VhW%k`Z z)FZ8A$RxNO5^Z)UW5)MF!!Wy#N%JXwVce^FPWpZl=CukFb;jc&&fR=i3>CBwP20I+3=(=b{^!uzMg>5*=pS;W{4EJ7svEmpy{y%K(&KH@PzWR^sSZ#P)$N^{9tR{L9~~XEX*Q(g1Na_s^BN8q)in0ESFO5;ufBtn4_$+ zhS}EZb6;7j48M;8(yVlx6`N->LVCHU99nPb|?e+lFM|9g*MwwgLawS(VR5QK8TM)Az&>J7l=G^UQc z0$=xCGbn}r%p?Iz`Lg>E$akFSf3%+j|G88q(*IfGnNIzz@y_?V#$PhL=^gkMzn_EG zFUre7*y%}`o1L^0da;hTv(kB)DPK+G(d#eeyU2>)^lsPki%L*^%3A-T)gTGx`hI@aHD$sjML!O9sZ zJ%6%5vv&pH-P{f{4HR_Jyy+k$rN33uhRA)^_V>Mq9I|7~sz(BGwfxyN8Na(MV;7BN z#SG|ZkGR}j1sL~n3YD8Lo5lWqODgAKC6l7Pim4b+WjR{HTEofru2e3S`^kI zjU#!tO=OFm;GSv#p26A7`GnI4NCUN9gUND#E-F6Y;=N+M<`i)lbX=jp20~lpN6}&? z%HcP!jC*p~Lsj%OA;6WbYt9uA-J*7JP({3441N39ZLqQY@bwtv#z$AYbm3;>0Z5e(>3R_h$cFa0^%gIUTF`(x-8dGdx5(+s}2yin$lKTM!(^`v_0%)`Vd` z)qb!OjmPaPeeZhv>3J2y_2fgvp4F|*L7Ai7DG})n6HZs(nkTH9FDSI4)V3D73uay< zQ0Zs|nz?Sa@Z&T{Z1fM_@HB{NoVNR=xfU?}m% z`P+V*Ne@DdS*?J1pyhay4=rzWmJIA1rM zC+3liv&*;d`fw`HrF>|-8&PtMxcm2WHcMhR{%-sOE@;B<-%m9iv&G-ls!(R*wMWm* zF2i)+YY1_nF2af~^~_Cv<>TqQE1)})T0&*95`K`qcXKaej~x)*NHr#-i~9U~u6eMl z1y*M7K7Ot3F?p{uC#gEl)rVunub#S1zdC%@h3?nW`Azj)jP})1*tSiQeWdIps=!^xxFW||gug)rs7ilr z!j5+#0~b6;1*hB|fs=;EppvPxH;yd=iDoI{<8oiF8F|?}s8<(DNe5R&?w8{soI?)n z#HvY|(L&%gvWlaMIqe>;tF;uJfuhQ*qT5X?Z^@igFOZT|UZY#sd$<^NQ72ctAqsmN z<@lE3_d109RA7A3Gj(MWU7w}8t|>!$1p7Kwagp6f%&Y@h!HQd}?Nn4Xa!yX0WdL`4^&>Cace$2p7HFoC=t080ij`6-Y0fkETOjZc04Q#Ff>l_l03BWN%&CBa^66C@&f9!7 z<|Q@x@6V4wnr(4S2sQr%EBI(KjS0n>&F|oMnJOyvo*TP#tZF~PTaGg1y9JGUrBEvS zhYB&e#T56)J|yMTmR!M=Ume3w*qROr#j}6$t^dG$Fd_6vs_!p-fqVT0LGpiaMC2(~ zBGy0E{VD2bX}C>=1g4KV`g~;BF|uDfJ)E#jJKa_UE|(pQLR8C|ET#U2%m%LLJw*|N z;8CpK&cW8GQODlr#PK&OI;K2Y-L{sa-ZKkho?%A!#-F0rK31zo zT&tk_8+fhAuOH%e5VX@*U0%Q6VYC(FIJTFz^PLI8Ys|2J6*F6L7`)RYP~4t5zN28b zHnpXxM~K>u648g9`-7Uw+(^9|XufS!jIuwtd+H$5M%*(&$U)>~<%Q$ZtZdZTFn&bC zJ_Zdl)^+bgw=vW2#yT(3iWtQ66*ao8>2&fkpfKk#8J&X9Iu3fprxQ@i5ADWWt#}ow zYp_}g``CL&6Z6&p#^Yh%IXV6Gs;S4}Tk>fU@LQT89vK-QKOY8f zeXUOW0-GD4I9@Ncz^=0rr9J}ELz;3*tw!n-J8*SzqGUZPb@Sa4r-zGac#-ja9wj7> za?*c=Uyx!h|BE2BJvWl5_Aw@YkA6@P2y-G1=-TO$ao3QYI`w5PW5uJ>n6}idcf;e` zh0{NhU~I|>Jg}W<^692N*qv(l20dmE?cTFL-N?XIy*h(_FHpUnUEtOA0b_ao*noo1 z(+{>QY9HqwfUq+ll2;3%bOcxAFEZ4=1vyKRE8t2SDpdT6?o{I{*AkG!;e2f>$$ZwV z0rtGUI=VUx-nZOHOtzcG>whvjBt{?fcWvEsxYSkNg1FY#|M);->VTB%0vly^_0b{u zv`|7>XY5V`rtL285@*6u;0$%XBE>Z17XFxhnDdnC_&o^fyAlR6W}C{l^3qX_#Xxjs z6!*ttf_jdeNj-J!TnBar8-}icl_Ied{IJh#HQU$4Qbpa$ZA%>z$#LWUw3P0TF6>D^ z?QlMTQX>LKD?U)gktW{pC6@D$MC1gc9wT23j2?>d-~h$c)k|kFpT(;U;&;B&+jY8n zw8z@bSxn>QRt@cMNUFb2U^QP*6tQq$=T6{)xYf2#lUNBG=-RfMVC1Ak%-j#*>Z;r) zrk-yy32ZH2A?%bXEG%j?FS~FbF$m84X4*E!?8D;?Q=OzY94Y zX-pb^49|nA9Km^sm>f&+?hj;UFsZEDX!*I3=fB$~v=d@DjZsaSzuQ z+S}sCl!CJ@7p_9dLU!UWW=p>$DOD$pu3c`w;`YG((*vNi`+iC|h4j5YTFtQw&bG{u zJSo-9ZROubTq{(_4IYS1pU;%<_b~(AK!70I;Fi6x*ehdrB6d!z-2gUdjM~|(n(h?d z`>>O{C1j%O^n=H>06LsN;qWE3O;OvrY-f#7STBBWJ|u<#vS=h_mCbsxMz7M*HNu%t zd~Y;yBXx3^LkB%~1$F%$N%D~6#+-oyqT^FQ()|lHmNqOJ03NG()R0G9Y8RlfCKqs~b#Lbn^u5AOg4X$MHidUCDjbPh4GS zIr+nrq?Gr?=Lkpa7uYx6WhkmS>@&lU7=F4}uu^`y)hg6sw<7Xke5OKR4mzFx1%Wa8 zs!Vb=d|VFu{*4|u?1z|cV|dSOHE1w~Egrv{Te%ms195am?=Q$%W-9N!aX>~Z%&?0n zXpT8EEeY&yaHgVkf{**#m+cysr56FBghwlO@hQ0jt%Ec&QP(`rRy;zl*OO?_q9(_x z{DMgn*j(N33W`7L{1ZmgNKT#ox#}wJb12p!f&Mcie-VQos1c8qd^ZY}1&9R-w9FrhH>=Ku8+Rxg7?ybZSbgSw~!a15(AXuErurGsYs_>}W z_jMe9?mlGzT^NYpcbWO2lzVh>E5gUpRS?|6g3A?Qo!o^2pL~CZ54CZ5!D-ui9$ywly5^Z zRw4&!d@CJ|?Q*#;1N+@KO5P>7wKKP2AgJ#B^%zT@YR5hkOa(8ZG1hL8ZFd3H-wh6=OU@bI-<4(8h51l}o< z{MA?ItYRaLLPKWI?ROF>L;BiNO?5gnk1A?HxvTrsh*|>oeJqx)@P-X<5zu&oSFBMO zTf2!h3lTDL-%M0|PhENFg2@%$f3f4p>(;uTDiD7MBC_U+}?ZEVr^E%p`2e+FVAR6;eT=UyGHFjH6;~P{C3nKKgLVW@-D<_SZI0%BBbZO#$FN) zbDQLz9>0R>aGNj-8Q!mbFcWwB=NbwJ=GC7@G{Ucdblxp!CgWAwj`>5>Kc5)KcP zv$b)E^LCRkCY$!KPTL*Lg27*@sNF9_>zL@SrY790UYn+EV{o74u&b|vaVv`4-MA)x z{IjjW&1ImvwXXE^GsNY53#SD3m&ZsoQ8Av_2!Ql?g|jpEVxHk5{2%^O+twlPJ1e)@71dAw)TXj0 zVhLd)2JYBgOU`P$!Gr0zEn!pCc2jHnAihVF;BHQ}f$(~;1!mq6)uZjUgTRKIcf&$F z>QEQ|;O8p_L%w-rajeU!Z9@oH8g@M|?0>*__cPEuW(NT@9RRxp?abs>cU10Ypwj<8+*FpgeLZpvK5Dg8`5F4enTWFYJ<`^hS*4!->LBM6 z219m-C*U3I_aBZO-SiL91J^cJPd5Vhe3s(<@iz>$tv?ZOcNBjj-bSxDIKvU7iLP7A zMgQ-2kKn-&o4XHeq<|AxAo=)5|5!sE%V>}C;BJ0;ea!4Nh zNNk(yNwwGpKL4UwZ&DvVdyN3K-kJGX5IgZ3U4j_i1x9Yf+OXvv62T3D>GzOj&aKKV zbQ@pP*fZVLq0Dwgn0>@fdQI`+M$a@e48ww{;T9w zIQW@Jf!#_+{%W|$$I>aTZyWW8%Z{qcPGQv@VOc8f8_LteV`CXZtj~)W7%M{X_^?aB z@c+9f-WBhqX=Ii)967BV*=}r;Mhn+AL<90lss>_=@h104&2U}r^ z?~gXiR^DS)+-t5>?jm=}O2!QibJ4oGeJ7HWSW?-p6lp$<#mM=xUTGuu{pix-R#aQO zej^rT3A@<(a{Dnu#r*Inuu`id^(Sjn@M~ZB*}H|$;hN=vyik%kt^@(TQ$L&K&lY3r z2Fg*d)PKO?Wg&{KKRAcs3X9{~ULCXYL0vj}3^BUJ^rI8{2tN z7jas;b_AZwc+WQu_5j(EOCgPv?$hg?b0hyCGy_9`b1Zi8B9A9rsyG%_xBT1qtN8Wp zQZjORG^uky2A^#`%W%ABhkz!&4|Eq++#v{~1aSO#D_Uf4@#S>&*jBRhMCkBhv#EuL z@&H}}mx#@msp&?@wzu77*bfMt z@8rfoPO6Xf;WKzLl$p&zE^bF|kkIufQa(7bg^hAgWc(oT$re7#fYX%Y`bIMukCA!KowAQDcUqDxz4O0R@W5%h!I?cm z>qHtMqV*b_X!|9EnFHz>GwfHJ8QZh``qBkESmfz;Dhq1Gvp8>yQ*f8tuKj_>u*;(i3A&sgl09=IhthwsrXxW3H5c{DM~ z8x7kTh-zaPIV|PddYNz+Qn6@hw|9CRc|^Rhwt^Us-ChSDj@8(Q81mdhGmJs*Zo+h9 zAlh+cyFP=8k?u75V+a!|Nvdrwhr$o+m0TTT4e1uQ2Ys47IaVKq-%=e<;6ywRoMo?f zB~m_Rs!s`Q?~dd0kzkweJN4w1623y{$g73jl-4(|aHQkb_Oj2G)7{JlQ?@<0!+nZt z3nyDI0-hc#IA%k;3_TK6$I&75P5f2{RMd)B$he4s>z=E`2c&Q2WLJgk9L zDOfK~F7}9Uc@8h_>HUg6{g^@8U(HVkog!G32x51D zO)&6FT>*_5{Zp~nYPKty7%hvw50y=@f&PxQrg-JzqDVx@8#3HHvZx|r4y)cA2%9#B z?1npkS;*x*ny)2!=iyje(&kY8e4z26EO+nsa{oQZWAe+wY6Je8qc4K z^d;uTKTbE7_o$W3mWS{cfelbvYf`oAjBrlf*=6BnfQkHJ!vHeu)1kN%d!ygtZe0#} z2YEWCm!r2_=3IX3T`B+(nwIzb@6`NHwvUTr?av*Lcad$CE2Y7>)5DTxl-CVwHAflr zg|K-${ZpO1B+HAOBn)5*h1Vv$YhB?tI{b!keCM%Q&el$NxDhtZJLdLsr
    Enable-WindowsOptionalFeature -Online -FeatureName Microsoft-Hyper-V –All
    - This command works on all operating systems that support Hyper-V. + This command works on all operating systems that support Hyper-V, but on Windows Server operating systems you must type an additional command to add the Hyper-V Windows PowerShell module and the Hyper-V Manager console. This command will also install Hyper-V if it isn't already installed, so if desired you can just type the following command on Windows Server 2012 or 2016 instead of using the Enable-WindowsOptionalFeature command: + +
    Install-WindowsFeature -Name Hyper-V -IncludeManagementTools
    When you are prompted to restart the computer, choose **Yes**. The computer might restart more than once. After installation is complete, you can open Hyper-V Manager by typing **virtmgmt.msc** at an elevated command prompt. @@ -211,7 +213,7 @@ Starting with Windows 8, the host computer’s microprocessor must support secon ![hyper-v](images/svr_mgr2.png) -

    If you choose to install Hyper-V using Server Manager, accept all default selections. +

    If you choose to install Hyper-V using Server Manager, accept all default selections. Also be sure to install both items under **Role Administration Tools\Hyper-V Management Tools**. ### Download VHD and ISO files From f9caa554538744d3c102b49b78726fe8c524adef Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 23 Jan 2017 13:45:57 -0800 Subject: [PATCH 144/210] corrected vso-7992313a --- windows/deploy/windows-10-poc.md | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 36176a9d05..82b92ea4d3 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -509,7 +509,11 @@ Notes:
    **Important**: You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs, between VMs, and between RDP sessions. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy on one computer, then right-clicking and selecting paste on another computer. -As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. +To verify that enhanced session mode is enabled on your Hyper-V host, type the following command at an elevated Windows PowerShell prompt: + +

    Set-VMhost -EnableEnhancedSessionMode $TRUE
    + +If enhanced session mode was previously disabled, you must close and re-open VM connections after enabling it. As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 100GB to support installing imaging tools and storing OS images. From 92e8095da39dcc2b32599c87c9ece16c689c250b Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 23 Jan 2017 13:52:07 -0800 Subject: [PATCH 145/210] u --- windows/deploy/windows-10-poc.md | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 36176a9d05..e5c7e54cd1 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -509,7 +509,11 @@ Notes:
    **Important**: You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs, between VMs, and between RDP sessions. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy on one computer, then right-clicking and selecting paste on another computer. -As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. +To verify that enhanced session mode is enabled on the Hyper-V host, type the following command at an elevated Windows PowerShell prompt: + +
    Set-VMhost -EnableEnhancedSessionMode $TRUE
    + +If enhanced session mode was not previously enabled, you must close any existing virtual machine connections and re-open them to enable access to enhanced session mode. As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 100GB to support installing imaging tools and storing OS images. From 262df20a51537b7c38ebb1df3b6d310262c26ea1 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 23 Jan 2017 15:41:07 -0800 Subject: [PATCH 146/210] c --- windows/deploy/windows-10-poc.md | 8 +++++--- 1 file changed, 5 insertions(+), 3 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index e5c7e54cd1..1ff20a23f6 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -832,7 +832,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to Restart-Computer - >If you do not see the script pane, click **View** and then click **Show Script Pane Top**. + >If you do not see the script pane, click **View** and verify **Show Script Pane Top** is enabled. Click **File** and then click **New**. See the following example: @@ -845,7 +845,9 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to Copy-VMFile "PC1" –SourcePath "C:\VHD\pc1.ps1" –DestinationPath "C:\pc1.ps1" –CreateFullPath –FileSource Host - >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM. This can be done by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server operating systems that are running the Hyper-V role service. Otherwise, just create the file c:\pc1.ps1 on the VM by typing the commands into this file manually. Be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file. + >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM. This can be done by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server operating systems that are running the Hyper-V role service. + + If the copy-vmfile command does not work and you cannot properly upgrade integration services on PC1, then create the file c:\pc1.ps1 on the VM by typing the commands into this file manually. The copy-vmfile command is only used in this procedure as a demonstration. After typing the script file manually, be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file. 21. On PC1, type the following commands at an elevated Windows PowerShell prompt: @@ -960,7 +962,7 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 36. Lastly, because the client computer has different hardware after copying it to a VM, its Windows activation will be invalidated and you might receive a message that you must activate Windows in 3 days. To extend this period to 30 days, type the following commands at an elevated Windows PowerShell prompt on PC1:
    -    runas /noprofile /env /user:administrator@contoso.com "cmd slmgr -rearm"
    +    runas /noprofile /env /user:administrator@contoso.com "cmd /c slmgr -rearm"
         Restart-Computer
         
    From 76d4d7f8cd11f5dc57c1bb30b9053743603ffe02 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 23 Jan 2017 15:57:20 -0800 Subject: [PATCH 147/210] c --- windows/deploy/windows-10-poc.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 1ff20a23f6..c4b3f18fce 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -987,6 +987,8 @@ Set-ADUser -Identity CM_JD -PasswordNeverExpires $true Set-ADUser -Identity CM_NAA -PasswordNeverExpires $true +This completes configuration of the starting PoC environment. Additional services and tools are installed in subsequent guides. + ## Appendix A: Verify the configuration Use the following procedures to verify that the PoC environment is configured properly and working as expected. From d046dee742de0e60cc3a3c372b08ae03bda54467 Mon Sep 17 00:00:00 2001 From: Dani Halfin Date: Mon, 23 Jan 2017 18:38:08 -0800 Subject: [PATCH 148/210] manage\waas-restart - Add section Add registry key summary --- windows/manage/waas-restart.md | 19 ++++++++++++++++++- 1 file changed, 18 insertions(+), 1 deletion(-) diff --git a/windows/manage/waas-restart.md b/windows/manage/waas-restart.md index e8a8394d2d..d825aab900 100644 --- a/windows/manage/waas-restart.md +++ b/windows/manage/waas-restart.md @@ -65,11 +65,28 @@ In the Group Policy editor, you will see a number of policy settings that pertai | Reschedule Automatic Updates scheduled installations | ![no](images/crossmark.png) | | >[!NOTE] ->If you set conflicting restart policies, the actual restart behavior may not be what you expected. +>If you set conflicting restart policies, the actual restart behavior may not be what you expected. +## Summary: Registry keys used to manage restarts after updates +Below are quick-reference tables of the supported registry values, that correspond to group policy settings, used to manage restarts after updates in Windows 10. +**HKLM\Software\Policies\Microsoft\Windows\WindowsUpdate** +| Registry key | Key type | Value | +| --- | --- | --- | +| ActiveHoursEnd | REG_DWORD | 0-23: set active hours to end at a specific hour
    starts with 12 AM (0) and ends with 11 PM (23) | +| ActiveHoursStart | REG_DWORD | 0-23: set active hours to start at a specific hour
    starts with 12 AM (0) and ends with 11 PM (23) | +| SetActiveHours | REG_DWORD | 0: disable automatic restart after updates outside of active hours
    1: enable automatic restart after updates outside of active hours | +**HKLM\Software\Policies\Microsoft\Windows\WindowsUpdate\AU** + +| Registry key | Key type | Value | +| --- | --- | --- | +| AlwaysAutoRebootAtScheduledTime | REG_DWORD | TBP | +| AlwaysAutoRebootAtScheduledTimeMinutes | REG_DWORD | TBP | +| AUOptions | REG_DWORD | 2: notify for download and automatically install updates
    3: automatically download and notify for instllation of updates
    4: Automatically download and schedule installation of updates
    5: allow the local admin to configure these settings | +| NoAutoRebootWithLoggedOnUsers | REG_DWORD | 0: disable do not reboot if users are logged on
    1: do not reboot after an update installation if a user is logged on
    **Note:** If disabled : Automatic Updates will notify the user that the computer will automatically restarts in 5 minutes to complete the installation | +| ScheduledInstallTime | REG_DWORD | 0-23: schedule update installation time to a specific hour
    starts with 12 AM (0) and ends with 11 PM (23) | ## Related topics From 5fb75c1daef8a115df6ca7f754a20bbc045f3390 Mon Sep 17 00:00:00 2001 From: Justin Hall Date: Mon, 23 Jan 2017 19:36:44 -0800 Subject: [PATCH 149/210] added missing section on NDES and domain controller requirements --- ...ign-on-sso-over-vpn-and-wi-fi-connections.md | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) diff --git a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md index 827fe72de7..94e4e345e8 100644 --- a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md +++ b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md @@ -74,3 +74,20 @@ If the credentials are certificate-based, then the elements in the following tab | SubjectAlternativeName | The user’s fully qualified UPN where a domain name component of the user’s UPN matches the organizations internal domain’s DNS namespace.
    This requirement is particularly relevant in multi-forest environments as it ensures a domain controller can be located when the SubjectName does not have the DN required to find the domain controller. | | Key Storage Provider (KSP) | If the device is joined to Azure AD, a discrete SSO certificate is used. This certificate must be issued using the PassportForWork CSP. | | EnhancedKeyUsage | One or more of the following EKUs is required:
    - Client Authentication (for the VPN)
    - EAP Filtering OID (for PassportForWork)
    - SmartCardLogon (for Azure AD joined devices)
    If the domain controllers require smart card EKU either:
    - SmartCardLogon
    - id-pkinit-KPClientAuth (1.3.6.1.5.2.3.4)
    Otherwise:
    - TLS/SSL Client Authentication (1.3.6.1.5.5.7.3.2) | + +## NDES server configuration + +The NDES server is required to be configured so that incoming SCEP requests can be mapped to the correct template to be used. +For more information, see [Configure certificate infrastructure for SCEP](https://docs.microsoft.com/en-us/intune/deploy-use/Configure-certificate-infrastructure-for-scep). + +## Active Directory requirements + +You need IP connectivity to a DNS server and domain controller over the network interface so that authentication can succeed as well. + +The domain controllers will need to have appropriate KDC certificates for the client to trust them as domain controllers, and since phones are not domain-joined, the root CA of the KDC’s certificate must be in the Third-Party Root CA or Smart Card Trusted Roots store. + +The domain controllers must be using certificates based on the updated KDC certificate template Kerberos Authentication. +This is because Windows 10 Mobile requires strict KDC validation to be enabled. +This requires that all authenticating domain controllers run Windows Server 2016, or you'll need to enable strict KDC validation on domain controllers that run previous versions of Windows Server. +For more information, see [Enabling Strict KDC Validation in Windows Kerberos](https://www.microsoft.com/download/details.aspx?id=6382). + From 4f9d16f853fe972a27e18fc474c2805badc0717c Mon Sep 17 00:00:00 2001 From: Justin Hall Date: Mon, 23 Jan 2017 19:57:40 -0800 Subject: [PATCH 150/210] revised references to Windows Hello for Business --- ...use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md index 94e4e345e8..d790933a66 100644 --- a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md +++ b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md @@ -68,12 +68,12 @@ The username should also include a domain that can be reached over the connectio If the credentials are certificate-based, then the elements in the following table need to be configured for the certificate templates to ensure they can also be used for Kerberos client authentication. -| TEmplate element | Configuration | +| Template element | Configuration | |------------------|---------------| | SubjectName | The user’s distinguished name (DN) where the domain components of the distinguished name reflects the internal DNS namespace when the SubjectAlternativeName does not have the fully qualified UPN required to find the domain controller.
    This requirement is particularly relevant in multi-forest environments as it ensures a domain controller can be located. | | SubjectAlternativeName | The user’s fully qualified UPN where a domain name component of the user’s UPN matches the organizations internal domain’s DNS namespace.
    This requirement is particularly relevant in multi-forest environments as it ensures a domain controller can be located when the SubjectName does not have the DN required to find the domain controller. | -| Key Storage Provider (KSP) | If the device is joined to Azure AD, a discrete SSO certificate is used. This certificate must be issued using the PassportForWork CSP. | -| EnhancedKeyUsage | One or more of the following EKUs is required:
    - Client Authentication (for the VPN)
    - EAP Filtering OID (for PassportForWork)
    - SmartCardLogon (for Azure AD joined devices)
    If the domain controllers require smart card EKU either:
    - SmartCardLogon
    - id-pkinit-KPClientAuth (1.3.6.1.5.2.3.4)
    Otherwise:
    - TLS/SSL Client Authentication (1.3.6.1.5.5.7.3.2) | +| Key Storage Provider (KSP) | If the device is joined to Azure AD, a discrete SSO certificate is used. | +| EnhancedKeyUsage | One or more of the following EKUs is required:
    - Client Authentication (for the VPN)
    - EAP Filtering OID (for Windows Hello for Business)
    - SmartCardLogon (for Azure AD joined devices)
    If the domain controllers require smart card EKU either:
    - SmartCardLogon
    - id-pkinit-KPClientAuth (1.3.6.1.5.2.3.4)
    Otherwise:
    - TLS/SSL Client Authentication (1.3.6.1.5.5.7.3.2) | ## NDES server configuration From edd473591d97b6784a94b849383e7534edab51ca Mon Sep 17 00:00:00 2001 From: LizRoss Date: Tue, 24 Jan 2017 10:20:48 -0800 Subject: [PATCH 151/210] Added the new topic --- windows/keep-secure/change-history-for-keep-windows-10-secure.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/keep-secure/change-history-for-keep-windows-10-secure.md b/windows/keep-secure/change-history-for-keep-windows-10-secure.md index 923a810e4e..e5a7805ddf 100644 --- a/windows/keep-secure/change-history-for-keep-windows-10-secure.md +++ b/windows/keep-secure/change-history-for-keep-windows-10-secure.md @@ -15,6 +15,7 @@ This topic lists new and updated topics in the [Keep Windows 10 secure](index.md ## January 2017 |New or changed topic |Description | |---------------------|------------| +|[Determine the Enterprise Context of an app running in Windows Information Protection (WIP)](wip-app-enterprise-context.md) |New | |[Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) |Updated to include info about USB drives and Azure RMS (Windows Insider Program only) and to add more info about Work Folders and Offline files. | |[Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP)](recommended-network-definitions-for-wip.md) |New | |[Using Outlook Web Access with Windows Information Protection (WIP)](using-owa-with-wip.md) |New | From 0b7f7407b1966517b61ae28f45b2396f183e6904 Mon Sep 17 00:00:00 2001 From: Karthika Raman Date: Tue, 24 Jan 2017 10:25:29 -0800 Subject: [PATCH 152/210] adding image --- .../images/upgrade-analytics-unsubscribe.png | Bin 0 -> 33468 bytes .../deploy/troubleshoot-upgrade-analytics.md | 2 ++ 2 files changed, 2 insertions(+) create mode 100644 windows/deploy/images/upgrade-analytics-unsubscribe.png diff --git a/windows/deploy/images/upgrade-analytics-unsubscribe.png b/windows/deploy/images/upgrade-analytics-unsubscribe.png new file mode 100644 index 0000000000000000000000000000000000000000..402db94d6fb3fca99d76f90cdf8709a409694cd6 GIT binary patch literal 33468 zcmeFZRa6{Z*DV}KaCdiicXxMpXsmJ9;O>Or5}9@Vw0x@+xSyVja(uDLr}RapiJ9v}YGr%y<7vXbhbK0!Kv`UHUr3kh!Nb=c$p zZy?;%WyC+#Oc5S~cfMGQDT#ghRG*0OY6b<~hjW(IbNlp(DDs~-MB@In<)=>}YI2fd zn%>6e-B8{JGONAk#a>$*Zx3%Qp6zu85#c3t65qwMxN{;hGc);IW?XVIz#qUbs^pBm zmYzI!%>||PD)VxPm-gCr_sL8S>nXyk^;=n)h82wu?_hK)`4r;EyH@Mmulsqmz0b99 zzt-z*!;X)wO>(Xd1iZTo{lbn%dqqCh6>8rO<6EUSAngC<@oWZM4C&0y6IDuouUoif z`MBM}klqT0$(&gOpL%nOv4ywMC!95U<`wvQS{v{*>{dr#G z54y#LE?58E>DI^73XbvnJw{;9KNtIWyGT@deJbx2dHh`_5QJ3!gb^5kuC!5aO9^N2 zw#}jF{{b914ufS)Phi+;u|%&aVRv_TiLEVVT)`nqTO{~9gXUxYu&G0UYahWR+2y&pfnC>d@!+JA zz5}l2=4uBA>6W>Tjp}KCm?OTED9Hk0B0*vtsb>#~KhC^m5o1Rv>EmYbcDA-_aTjD@ z1K1Am%2h#lNvauXN$n0x?_30}OeWp4E0c4$rJi0MeGb{Jm(g(v`?vAF)9pPy#2alg zD*19%&22tkCnKsAv}-yo9Y%Jq?@oK5Jz^B(v$C?-jDSu~EVPXM)W4jT8#tKB;5gv? zg+joc#7#(oPn|xbDlH1QJ5J~JOrWAFR%3JFIArSZ9Ds*l;Ew!iY6y!SY-DXsbN6`( zK3tqReQjm5zfu%NT!M1`iz71w{?rJO9o=piQGsvMFe?Q*{VPNs zlWxcA)T|T->(Ap;4ca{@D5*R@HUT!e{nz5kvQTOC@9L;f04;#)Sb`8t%cbzQ!?0FVG-llndUAH(sea2*I-9J%VE@R3m1VxvRGoZ54h9-tM!@LU zJ)ts*1-JPH`Iokui`>RT7R!QGpV+kYv@{l@W?_DAVzoaz`*s5q1?=pN*i0rG+Q!0O z+czmqcP%Xs>F@W8;R;Kd@O6Fe10Y`ELy1NF-~X1o-6O?+BkwXc(BbiafMg;0Xldc*LAlhsO+PrmGF|hD)hV*F z09akEhIv(=6LK^*h~#oJ@Ke{c7w?brAqaK(&5$NIjwc93DJ5M$Ac?}EPoXq=fu}S; zkd++NkF>zWl{fub(bR;fMj=nil!3*@0ALSuJe;T{J;?60po$&h?zOFV-|vVj%LvN< zHmYH5vA;+Dr_sZC5eN-Z_vU1&C8edbU#szVZMWa=m^{wZo59um0wRb0!RN#VkVIgx zlVxTWMoYQ~9-u)btugF`!*5()+*&7yjh2+rhZDL!Fy@d%$f=ce0&=!fC<=jNdDylsFlu z+j+zSR&2IRLLM?Aver>pOxgU(g85X4CGwQx5|a~n+N9}d4i8eDt$#h*TR}L+%N$Y8 z6>h@b;^3``m_0NMad5EDfaR*|c^%^c8Ju6+nvOALq9&waUX6br9e zKH4TYz4l}A$BP9!onIm?wi_f4&-90{He3j4RQ;eVi99-dIA}ZR((kUkHqg}H-``hy zaXoyz*0`4rEq1#?Y0Wbb?BD3hZRm@C^N<3!8y2dWs%LcdrAuUKbvs=;J4;c*#`ay| z;bVm}x$PF7nOI2@$Bmi*4t@Z2HJ8yYDTcAJG0;hqdo|A5ngD7eIc*peS=UF`JsBng zCTzwOB2*GvSXNqE1maA3072Bu&;|!Ndq;i!?83m;hu31%%T=W{v@eA^QbR*m40$8j zz23!vrmX#{gd2D5v9_ltzF&P&TXtyG=QvOkDAXgl9*G1!*M^D3Zb#;<_V;l(Il09< zW<(w!4GIU+YYl2v+K|Y=vG||R!)sb34i&ZhXCBLrr&_-i58lPyGgN+Cig$E!;OpA~ z(G^k(wB2TxWvAcdut&DndR;?=4r*gWxQv))6mk71*cm#m@rnvYeIOGFq~?5&P{kr+ zTpgsQnKnE+J4%rqq?s~ovvtv^)&}+ePCZ@IUqg*M>16)`?Ck0ytQ{CGK@=ojS`q;s zk9ojG>C|q8WZ<5IU5CSZ3&O@`m%oaYc7h@GJp!zFJ|PxHq;MXuf51k`ITBJlY{@M= zJlWLeNR|B0GH*rm_5L!tbq{~5+NVY%f3S1_{fA@!$z|;u%QUCF?>0~ zZx{dEbeEt0uvoy}#s2-4*4BX^sq1&SVR>_x;-8;8Fz%S+;?21p@WxFP$^o%S(~N^%^C@ z|AcSiHW3h{?ic=c2~&O0h8Dm(=qMqzW5`LH4KGMgf04z{t642n`r_zmgDOI5gWg}d z^}qlRwymN9zmK+m4#~ii*`%?&yd16(enZ;IX^pB`r-p~U`>7}_0N>>4iA$D;}}%xp#Qi1zZ!?1jJ%97(}y1TVm#SY z+jp{jLf#8jZ9?5f_HX=v^`Gl1&*4dZRvs~5`7OH{)l^Em(u>c`>G&7}S_7EaHjhqD zejmc_Tn{o*3+pkb$HoOMj5Lmxb!Te(GjtErS0Bi$TQXJZ&|{zKVC;Uzjtz%U>t$v4 z{o7wB-D8P2T^$h!%JAY%{K}ghi~eQ{5G2EdH!v``t}vmF8bNJrnjnmKAyg_0eAYkN zswon*OL{1<98M<=x7Hxoe+zwH82tOGu`xH7_^tmJEr#uc-@aANZ@KcZyvSdZ>y}mt zzpJU}!M~cLW?)b`jW)O&t!FFUA}l~p?@RU3lgc(rJr2tE*AqRq(>`|a%k=Rz2VlsU zn8PL|C1GP@v$3%~@7Jo)Vz#uj$QP^kzB;ff!azfx;J{*#VaI}BU@N(^)L@&%S+6=- zSDZcwQg#1hgJ^J3wWlc#5gUPxCf z+o?p;dPRX}IZHHJs|T%2cTDZM3$Ok0O&QO|{^zyruKQ!Zixr%~1WfF;psDGKFQIvOgzkwto zv$C`6k1j70{fv!sTRZ??oZHt+^8%hjQG`tkgedUBRT0`gTV0@YSYMZx-)u$7O?DMo z)$D9g4ak(Wsgx*XM<6<)yRWUS5p3jg*=d7w4amj!_W%|amR~5XGCDdq70pdeIlL}A zf3J6!;rR!Z`q!OwW3$6t>f+;(lp!5U|Niy9Be9E|dN`Q+ak{rRxCf!n>v^`^Y`64n zdTOerxj9@R!$6-riIrpXwxY{0JpeZ-VJzZhbx z2K)>O$@<%j(C_Vj2|Tu7@JnWd=$uTW!py{E*|_rjhDPxT`{~r=1D*+->;HUXhX=LD z!H6hmbfJfilvn%>dw6FmFV7mA8?rmLyhWHU#-t{jWa6ryV4 zf3LN!yi{uxT>z$dI8HcqNw(#+E78PaX;W{W# z!2N;_d^jW?qVWVhVm=|V^+*B{ZYj6@@=yB)-+Nm`2i&f2>Ervjy{rJojSi2G_czM< z7pTTGleZHc-oxkpS=U~1EfiZs^HN{YCk%WG?`bCLSOh=LFL!x7kE0XvDNnC3{s>~V2BIvr1_lJLFx}hKeN4eGhi{Kt)8pgW0$$8+z5Wj? z*4{!cJA>IyJu9oLF~>xWWEWKHkr>p9tYP0H1hAPzM}eq)w8+WRhXYj;FFBKwlO%pu z5IOOJMInEiYim)$ub#nPx}I;x6v#zO3)^?G+z2(b%o1=Nt5vCeoE{GbHUAk$IY-mO zdb%@&y!zS+)HWxa9A5+H1ETj)FV2le-#ruzA6WEV9026&%JS+eV6ZPJ0R$i0>2)bh zWNmFdSP~_J77Cc1okhF9y}dYE1@RL8LgYb@9a?R$L>Q|z?v5cq45lk_)NN{QwZ7nSa&lsfh>Ya8 z4Ee(xVwfb>)d_y?yU1UM$m_sq@p}Dob9gw^MDQ~z)5Szt8EpwZwP#rnqGm_Ho9~yx zQso~z&b+W8Xn%Iz2Pfma@v~X)M-Zcwz)rv<%eEj$8tf5wr^+^Okh)a`hN{e3^mfHL z7VD#tI41C|v$+&`l9vJw2htFu5F>;&#&)k!UD$mF+}LOdpW_g@`^Y0WtkC*`x3h^A zxn7~z@v87Q26A>W;@%IZekdp_FR~C!zQH%E^M3oiwna-^g@wc!0~6!(c|qLY)Hm^x zbxY_^L0G#`hR(p-CsVEgm;%$IH&337ob8+=oSuUO0c=kTN0Bo-;JC!``MISwUPtiS z@4sI2Bw_$_b8r~_`Q>^z6hTIuir7nsO|4N zuBht~uo+tX-i5{#!JqFi{PV+KMDed zJumU9pz(tLs#7ECZt@FOMS;nH4wAfwlTaBn=dUswMxv2_eVsh2ms_tmRTSu-eK0M^ zibSc|kNZ!g0nf$^Xmolr#DA_JDo&;N8GIDnzy?hULN5splg9-&;C}w53O5Hn8V7EO zgODu?vjHC+1~&|U0{;*v_^3I!!8`~J9?Ofb_&V((@hbw>XDYVM8IzZ!;AcwB9T#g! zafdSui*%hstp#;_8oJ7=ideTm5s|Mbpqr;xFp@${ALIpr@fbMiyuw(g_|KK3Dd*K^ zMHTbtgC%UbipqqwD((N01b#4IkZHz!|2)XM8?Yezj}a8;w&C8S!E1T_g`CFff~~zq z0f7<({t^G5^>j$d;NE_Y_#g9ABILj(K}h_M{qh5p==9e?WZ({bLZ>e_Lx)TC{`v1f z{br30lNU7occg4GB*Ax*^?!z{m{XA)gpPvy&seeQm%Ronrc%okj-D(P!9%P6>NF=$ zQjLZ|{AciRX*7k67lJNgT5&qNtbAr^ZZLo#I4Y!~b(;oN?Ll zYj8+_lC0})QaLwI!Vqze-?(37V48F?Xr9!*yO6zjgh7ZEq^+YP@^aSr@zVQY=jd3& zLOx9OpD7{_vVw;(_f64WFf6r|^Zwdb-J#N5X^7$nGG!d|9&O(_M>zWY&cRZAG`yMDv%a0F?uc0EyON~4F8>8kQMa&1oOI8`*G7h zj`4ASxg;eH>Pf*3{C9d~k>SFcjdD|QU&`4vIvyqd86i<%yR|YBWE+3!ho5FReRE(b zE{cY^d>|y(U&@K;<~d7P{VLhwIu{=hh|4aEW7A+UU_h2C@@+!vytyvg7N-cVS$Q(e z?(F;RgYI(fBeK$drJ5P=?K=7Qm$z9W@z$=fzm6+))|bI>TzqVs1Fu88t#nSkPt(fU ztv&9%(9qBgjg6`DR5#>Fw1R?!R1+0Rq1XJBl!H@KHC0uLCX#V!+C;eRHL3exGBQZZsB5a+SE zbt~{9??d@O);Z$x=;Jent)sHE+)sixq*IZPGYJ+a5&vW7GR=x<;g>3K!196RA}8Mo z2#@LWoz4|9Xt8JG;d#8enn_15q+(<|qY-(EZfu^kTF*TVvpt^|7f41we{nrdey9RN`C|Nm_~~>jPiX%{ zYd%p4kbWuR$-!Ukt%|WY-?_avbbf&Cpv${_Hj ze=L+n2;TP3Jcjb7i@gh@g8SGIOO1l-rhr9nakrbcoOrtP+_6F>$`5#lBWa#RVu9A% zn@LU(z6W<+cf-YBAETzX$GP98`FD1r-W0jCkdZZ(~e zTOwuGS9ebXB)Q-k%Cm5P*#xw~9tFBdGZoM@mXcj-U@a7;HR+g?-U|xY-{c9UaxRcXG1U zzkPU+{t*!Y9k=xU{;sU7%=^2ntW2X+IW;}q&H!&jS63HYquZuGN{|2P4Wj?D-nyF= zh(GsuyPWHi8i2piDqL-*N;Q`UyR*$E54so!qMUszxrJ`9)K?q2FS~i>dZJfim-zwu zy=-97wtR?$RlzLik=^ZxpcpYrcufL*Ew%Q@yjj0RPrh?L-E+lMp4n-(Cc|;47a`UC zzMV4YIQwEUrC;aqi09SoC6br>d*DaA@2=F=jK|2dSg<2s@ulM1jkI@@k?X;GHZlga zKf12I3m32N@ClM~bTr9S#%YocyTfQjXzPzeKJWLp)FtvYZ&c|Lch|C+ULLoaBF9}|nOEA&avq5C@I)HmbRcksY74fPdIJGt>r%($K3RXV zCA?Y1H=1lTL`6Tbe+~_0-7)!iUIJr2w#o~uGSzE-r%gdvkDbA29;eNwh6ZsBEG(=> z>*-;ASadU5%r@_9fVK6Z|H}g&^(7e@nN#;Yc2%^WrR6>tOm5Fg#bWR8?J*j*q3%qK zjXmGZsnlbuoh?-AyuH3A5DVdxko1D{x#h?9!(0Uw6%=ITTy6(^`;FOIke!ENX!Ov> z>-5JT&XaVR*lTeuIG+!BK;}^NN0GBZmT8?@q1eyX z+n9w_b8DtTjciW+X}%&H|7M#~9T%bgmGaoM>=zlK`+fxil^>A+9LKfBou4jE+J&>G z)eh>+VUg7(wT2&kcPnetIiW;4Bz&Pm^6?KsYjkcn&`b4X^A-sY66^Nu(l{;3jj$?N zg4PiFqA+Rad`*`TM4p%nV@OUH*_@}9S0$T?hfLz8=V>}zJ{RKd1f#;$S5DKyz4xzA zdUiZ4>n)Gc7UY`l!;=CMf>(e23CGV>Fl?P;Q2Rda0t2xZrbbizFf2qqfw;N76yLq6 z*=?J%==6Hc);?bEtRaKBv$_bR%U~sv4zImcYsEpj^#CXfxW@h;;3{{ePVMmO^71k` zNhEVSUv0L|^^xwpMn(1QPq3cK3APh?J}PuOoSMuNAu(g_0#jkJ@W3y=%N-sJ5BK}& zCXUN>+u(GJ73l5#cQ~FPvV{~C)?F#Vj@3o%oA2vim$w@rTePZ)$_ZyIP9_y>&j@C% zg4ba$Lwr#}5}k5WMA$QswPRWp2F1d|kp7rX4M@#5-)(JhuKA;ps^VFaxmC7M?(BPZ z?cGD7!!O($JlhCw)`sT8VmPObDA@@O8wdOiGVhP^73P(FEqtU`_bCR81yC|Jnj9;k zpmn-FtJ56vVO0ZRxYbw=R9X_<$CGJ;wOVzcrGcN<*04spHZgC4DNia(Ct4=thZ(71 z*X_^mMlk05ov#epIqdS(;20;dPNKPS-QP>|GYQo;D}SrCiwYzYEY$P9y$61N>k5xN zi5XwEC)#-mHMY&SZmhN%N&B;3HncQ;Br6@^a*3rDe*?dhU<-^1m2mC#6cRSz`Uk8X*e8|cVEg|L@8$` zitiI>Pe08j2J~Yfe$=pp@tY4LmSOq`=Oz9@7dPthYnP=27i18y8AZSF`9Hf?HP_dh zO|;rA)jVzmihyac&Ti??_h4sE3a*O_`P^90(9m%9TQ#ahN!P&v46EX!qkV2CdC;oK z6YCcG`hv?tAHclFbW`Y*D48=8_6P?rQ}5HHlXIH%bTUQp>&c4cHk`6d<)G>X|iJ>5+W zd;SGZ571rAF5cM5p*(G(DoC>qtWN#OJLXZ4?&9~w_TmFIjDp#i!@DrHVX z0zT-i2J)I;=wy2puvWxJI_!2@KG{z887ME?ZkC)IOL;^U%_2#T*6>k9Iv5^SZQTvs za0Or~W&R#H=9t&)6HU`>c772a#MTKZkaxcvK&ig!M$k$rru(XuW9e!C(R5+#AWOfG zEn~v1&~^Peeh{aSLBoy~*LGV$vLH$+`TKWd65%RMdasLhI_y}`0GNIx`@PZQ|8g*y z&DLYm8z98Vc?S-(ikx)GHY50m&o7UcCJh#FXQ#Wn6zSt?B=u)~p)lZbW+IV*wuZ*Q z+3AMYmZh*96Ft3t6L9uoqtn5`fq;OZo)6w^F_l55zhok^Y8QL3r1$OIY0Kx3NRj1E zO4_tbm2G9!X#U<2G{G3cQ>e+`Em?qrqQ1TqT~EY*9U@YUKywg%kCnk6*YvHAe3!li z$_itTqSuixC-U{!YG_0Xy^(g4Cwt^(_F#)$@|l~$XHK4SBzy1I`U*8V`)V501o^sP zyJ}VSK$TPk8|@r}!^oFQtfi`UWDe!NPe-&y^zMqzlc_uNZDC1;Gm%cga^xY z!?-vkL$8f~7YSR^_lndgd>>R3v+^E_aIu$T*NGqN^RTCE`bIY^?0l-Ti9U{Q8QpyC z=ND@EaznMz+nx;+vAkAq7>9;hAKaXH; z2SY#I$RCTi4Sq~viR4i|*NNU(L>!s$0UCju<-5y{-PEen4kX47p;|P}aV}aj+5t~110Aaf0tw@b0kAVU-4iDYKuTfr5)DC|iyn^|CV}{3xm9@5G+;SN;fEW7XFC#K%fsd)cnAI`@a# zGNBd9j|NG|#-3b?jt$UXn~*;;*N{3bH?pDYKdRUDDcr2+W|8Rylc^okuIhAp+F`DG1}m zJsTD69mKhI+BxF-xw4+x`_^w}Uee3VH>xOfe+5A@jKJNSIc!@88Jd zjx@|zF85;tqi%G4#~;pH z3`DZ4@Qj00wwM{^Uxp)0!j7iMO!%}!{?nzN(ND=*dzyzP+?ODEe3wchwJ#XD8 z>HKs#7Y1AjFAkG0#gThYWe{Gg`m2!z3(1YJ4_I10*?`>0{%wMQH9XYfbQrxgiu1v! z7iB)%W3DLfZ^5cvCfkm#R4=YUI#+c4f=0brpZ0qu|oF)ynYYW#UjCj9=whms#z^l#}= zp+{k(zZK|)3>{N_SBarys4V*Ug-Hf@ck6(4mCErg(Sz7{H~IcYyVKPs++8jlF(lH2 zQ~Tq@|1VqM=>m!{n@ki=(BW0OLVnr!N$X>R@u|7#W^()PmNvwuU?m_ zUA(s;2al@42LOGGKP{Uy=@toG^%g zq6i3Pd`aw2_gcQ|L~P80~png#8~%($oUX>3%?W?<@QtSXxtb5Os-#_Y(|ExYW4ENBe^#uc5KJ zZArlPSJ7g1EzN}!9AZYu;JS_$r=4sM#>sL?|#%w5KXMIQQ;$H(T4nhRqZue^&~W6;GGO(4#HnPgVuvbVRl z)-yx>HU5GfbO*u>wcpF@`diC!h|&WMF(-=;3C74v<1DyT`?!{;1Z?CI^}1*0yQWKi zJ)huW{Rx@pbyW>lH~ad@HA*{6RmfAhIk~(VI_jc=wMa4PFyY(e=~EXLxfbWS5fKp= z=ebNBG~Ddu^q^LQzvWXAn*=$iwb!*F3P?c(31MTVde$xT0xdH9Jv<)sE0^mUIueeh z%{367WBgq7pt#j4G{dP@rCDu$_RI)Jjz~2AIIC%SP}coIER{YZt7(XiKWKA(1xHU; z*%dI}Q{23a)C!{cE4IC(wpAx&%k z@|Dx;tZ>CKvV6(8t_>8t8jOHcNogwzk%UN+4t=Ur@%~cP*;u7*m^d0T#32M%Jv_k< zdOjK<1^(d?a!XxN4xb1RqZAS^h(klW+@ZZN`G<*a$ZfRX^V!+<={X5{b_PBghKXAB zj}cLCs3FTXLI^T6>{g-~AwdM@&pS$}j zIwGhkEmSc|k@39pL{aj7whe0D+O=M6Yl3SD_}~Hoo2ehCaT#%snBwLf3ojGL$n50W z*dpHS=!yb1uJrczvo7(tXxuy08Z$pc*yus(tH{tw98V)HjYuSr9O9gqncDX3b&E1_ zCf`%v_AC%Xso479g5NnLiL=0rb7B7X2?-%__BYqH&4sCz&rB5Xk`sG-2fO|_-{_=4wRYh;4=tfJT;u@}s_SlxxxO}YRh*m0S|3*FUH?KhFPv(*{zf8_%O4sR z!vQVlM`Y1fHNfQ#6}Ez*(3_xtXoDMqvperV#@nAyL>qo*IfAN?dM(FRxEWMAo%Ydi zG9C_}m5DmGF;HWE;vdcokA6my9;Dpyc5&HW?Rb{9a8GA>ZV2ak2*GY}MVNskM3K1= z@x&g9#jdbDnKd(%{OkG%N?yiRvPqoXpy3yOI#Dtp=P{h66HIBvyTxJjMU*_36xxe z8?`yBA#S2e9c4Cd4B1xy-AKwI3yY>@Y{s@Dt65X+baRaoY(imGa=XyFG1967hPHR`ioM1zM=tKp93wX*14Nl!3~rxY?l8 zD5l7;(H=PuGINaFse(DXW{ox|xBhn97QbU@hnIdM-fcbMZZQK#e zysf!Q`DdcYYOlz8U#v32FCQ6FV*+J{utb<@Kb806h-0i+oh|{>8aKvLe48PS8+~J~ zeVK?8&ZHnO1998E*y_MkJGe3OHc0T~(;1r1*vbHk8ubA-FS#LP-cQwo{49gD89d3u zwmaQHuqa$UK2A=u(a{)!_X}o$*oJWy+irA%!Xo!G(SNIZecqsc^|Zx=t92y<>p^SF z)CJr@G?Rx1mnozA!TdztlKeJI{GXz6q|k6K1~9SRE{9?RhYq+tkHkWuym8T^hJvrG z>T7&o0V$EAtor1NX0`xYnXpJwTnUjD+e-_wx=>ZLI`R{7*2p9xyUYwM=HS%ruY>$R z)JV8#5c>`vBcMzAg_*eLh+{B%nC%YCeW#c*AYM#XpU(&usMv={J2S$zIAh9{XRe96X2~4sjHs*P0Z~wDAwenv14k$AmY3w{(P~P? z+7u;&SbXM=!CJ}}J#ci#QI=>8wQDVjSt#lK>mK(dgg*W+xjgEH|)=HT~inO z`JY#3pRFe%|NlOKV8Ays|2rlag$euC>CKXIH-!&Ai=W}&)Oor~5PR63 z;A6p46{t%}spdP{otI|lO73RBlP+2aXGtM=OHt4cGMJExzAR&d$U4FV$@%P|+5ujQ zuk*iGjWzWX1o_F)6~0BXCrS0|=cpq`MqZdb1d(Q}e98B>T7tctaSbqovkx9qWxvhk zmhf;8N~o#q#Bsw+m469f`KdhtCutW&QBMZ%;;RM&VnPnSW=4&r0*5SAV(z|jiRny? zC?7=QZOsV+XMN{|nUsguJ?sY;?>hD@K)>M~p}#pbM20RVW@-W59>jrAMnXQjEua?& zaftfX*WMqTqO-tyOPM1vLF~NgoG~G1uI#E{Aix=yJZ#8LNZk>M0UJ*69DNGQW49FJ zOuM>B8qnt@QYQ7^T6r?8hb~wI7&MjS70QOLhDM=3GkVd#(@nBV$ma)QHN6l?Qn~-eIPv%r7poUs`gwySp#1t>uBWCpXxgM;~c40edrfprknIGO#uaEh%Y#AIsZ*FcHb$SN!`48XWae(Cry2ffrS!oep<$AMlRWek|AVD)%2Ydc~ zIIu7mD-cy$^r=zg7VK|0vKI)^n$Jci-?|CDEKYoF@yb`Fg&{utSfHK@*pfk*B2zBe zmR0TdyRk)2p~t#4Ouf$6iQvinU?@bhH8WH5P>Ki3`mS#t-bWgzFE+ak7#H)9?dKUzV%n@K?)v~Z7JAHghnl=S1HY-j}3JL(!c_}HJ z$Dxn@>qfV3ZZFSGd3PaT&7AMoz*Fr{jMxmcw7ae< zzpHap*q!d8YcM(TdBcP?bo!z?_SNd~K~1=o3I~JM9*Fmy+kh(rGEg0Ll0Qrkv36Zgr%mTi`A^|R8q3aPcmM7PGdqCyg$xzL1 zZCxQd?DN692nu7~f?`&l#FAQi8ak?)_^9Z?H(mYcAK#)UIoI30l3BQcru zelBflsp;FGA!X2cG15|1*A7-<{Vcl6o5wp%UjM~^ICF#!aPq0i=KN@}_66QX-%45D z7n?sKIdm>WLU!~Qa$*7tV+3>aEdH1|y1L+7$gBY;WTn|9?MU--)2*uAR~daP=9@Nk zAk5de1O-43MeKN(LXcI}Sx)zBC_$D!D!j}vB{;&fVmUvElLJ&qehfBCjEjR{5Ao6| zXgMpo8cHM|o7{}W>h-JrKd+BY!dP?h3ui`Z6lF7sWo=Uv(^iKob%ewb#SEz|F;yz?rF_;^O@gl0d)h{%~;Fkx92s)Ky2&(b~Fn z8f{C2_XAvPd>>*7m|cIJ#PAvCYlOy=>fe z>eT~=7;3w2jJ$4Tf3|>?XPb3q1J}DF8|&-OFE8ik=l7>kFJu%H0}~VWb0td8mb>7@ zjXw1mjH|!Ols1PFDE>Ktq8K!;ZxVxMs|>B=fd6##Z<{0Tz|OCCK_ch!vLuhQ%@lG( zE%WQz-(iruyFLd0VjF~sknDpA5Hp*JD9lD-4A&a9(VOAxI0V~F^>e`)YphM)F&&C!I_a+%6iZI)XJ~R)T88!>f~FY8X4pt-w`a6Vt<0@pLBdo4!M;{b%n zBVcK6f4?{_CN(9c;L~2RPOULk>`+t=vq?|f6N^UX-`pU5VQ@thtkcHF5jU~;LV-j7 z(CIUtrq_5#N=d|Rw$O1;a6xP^J8e0hHu*z~n_6pPc{)%9(p{tFCD zA({o`=g%$@?1`%`?S@TO4h}@9sGso6pS@om&Ix!Ne-WQ`Iw!(LM@Ku;D`$Z<*>O1Z zL7ylAaMCKlqPSS;7M6#uqdT4fYBov^p|O!H*&Ffs7!s_uJF8}jk>6My`_pj^$TSaN z5XhwF=_<=w+#Uw6vdUuz#^`O)zyC(n6E7=^4#qVaYSCe=E(Bn>-NvFC7U-+l@F7Nu zVSOFhS;%gI1$`3>`>Ztp5f#ezY|_}!35JYpsPnNi*h=-wMyntZ(v&A+dO+u&E8xc; zXIUvyOtaFCJb&1WzHeCmLK8Kfx{ z!=?>Za>!XHqrVGAqyJfv-7*D4m6qXCCLIjn#Z3i6y#tc)q5Y_}Os{?rTMqe;%jPXq zsjZAHV^Iol46cVO=f#Qws=*NTc%NfW2_jZ&mS>E|_LaNr*b#Y?;T_hdZb)+`oID01uDL`l74-wg({0-%UX#?%^>P5PXSjXlUr?=a(H&y|c5E8~E;% z!f4WygSI(et^ozvmu?c^b2Rgh)Desq0Qg`zZ{*7)t8U>BuT7tkJ~08Wg!p*>#|OBx|p(um9YSz><#&ZRz++E}6Q1#U7UkdZL|GB_sT!wpzIw{H~*z*a5Tfh)Egln8_u!b5cUWSY92H(`1oZv#T>uL(5 z3_*|k6=j90Lxvk3MoRD{9UO|6>+0LFl%*zj8sv2``bbtIahMzk*`~+xrlf3CpKn4D`wMqwNW6;+ zlaUxCWLYDh?hRn0%t((oSQ+832?-;7K8NUg(}GiZdMTPlH-!4?ZFBt`q=S(RR1o>q z&_NmWCHWpa+)`j34M*wE4VwJ+W+FF)3GqLOKx#TJj6)?b6(%{t)7<3qd>kkTj~)Eo zj9QUy#vq4$8Fv4OU}{)P!Qc)iG7gBsElwnh27@r@Kk#iT!wa0sQxqW=#=E|dz=S{;b`~damev;mDP4XDWT*4&<~u#mdvt~JLPQp%S@j< zltB4=I$t-qxSw8}4=@E|cnqvwcRJ3i!QX=ymw=<})cB;s@j=`CRSk9nq(I834-|>Y z^RMx>&X$YpKwneSGF3KHGs^z0Y4CCx9*5N?(>_Q{@akFAT0h~f^>sqKEx+5z2GH(-jkw}iPzb{yhuRGsTP}tGo`*5~mJ)J8hppeci zH43hXONfhq+rIV&FD{UFj};({Z6jkb>Ifr1=MX&d+#gF_J?Fx=hdSQ3=gk%tnzIT$F|Z$xeW| zM%&rySLn9BI*JXA%B|N^bl!-SZ+KfsN4ZmPi!xZ`^?TWG@|F=Ffg!Hc15Kesc*+P5 zmcKYeGzBp6Dgxdx*-9|KF%&Rc&CZnQZ-_LtdgWhSk~~Z*HdRg^2V4@@MnL1uP~XB) zA%~TJ%HT*Wf?xZjQDZXW z^2h}sJ`>lNz;koG9acn0|HNc24*haMe}d-=ckveV2>#=R)z#jE-is7qx)^R01iqwOL=v*DqHG08{{lT zxW1quqBy3#tAcG`d7LsZOTdNN@b6H1n6x)x1H%($0(>vhErW1b?`XLisl*?y%)(1* zEr%ggzlc0FjEs`B7rU&GD-4_FOn%5=G%mRm+u_W#2D9m!c~bXmW-3X+nRHgT46KAP5dTDmvK zHDN--q)p#(2nISn@cDE5YegNobVZ^AN6*zxX(a}^5FR!*HZE=$@*Mb#zAB`L=Hg!B z*hgg;8X6)Qnsom*z90E$deahc>zPKh;Opyass&ENvH7w|oi#uA7MpN6+4BD68n3(nvjFdM&zKI7KQ^sD~Lwzgg&I%lrR0AAzXNSrsg zE{z9`ym(b(YZ@!n40lu2%3eobe{eCO$jlonYmRUrollSq!*LQoSseIPC|_O3GJdPx z&Z9|)xPx-{%aQ=^Y0} zIEoI7mXcE9Dz0v)#y_TVh6unca43b#`z!x%GYiO?1#0~)($t1sGJZx@nVPRp2(_=%8 z-#<{n*(Y`rk}X!F{{_YZAPWBqEdTGf1-QZZ`1zwEB6_>K!N(yjE4y;&G>L8YVGOx0 z$oN&U#x`NJ%Rh7iXe%ixT{tP_?|{24W=^{Q_~xhj`fdxfvwg2OQnURIni`gUxxtT^7@LR)i-?E_C1q}5p^Q-y zk#anw=vs5Hs_fHHNkxWdAgq2j{s1T+j}iY7NM(vBvK`f}9{1~l+Kw)*9*#FNorHv& zg6j5+K+w-fkoVe%_~Z46(_$mE(u>fZ?{;UZ6p(hP=;%{~#KTCBFdsjDRL&Ce`1AAq zFmHFqv=EtiT1)gtf8-fPh zU!$wvVVHOKuwq#^9n6(&M{9BHz`PaY=IlH=bIV5rN3WP+Zf1sygR{1~>(~D1=%$nV zx1~kozSGMM0K9XxR)~m*w^vu;5fR&O`uJ6T5*qm*XRh4!YABIssm#GxNWsr=SM~`v zG#6-R=>K9WGoRwQToSFyyH^&w?j9K#>FFtWf*E`X(@N*&=C%oC5OPNPiW{9*Vd_2H z+&;<|+~9YGVB{tSn)rvwm87T7fu-_nuvg*?qB9S z_O0YRcD;CTzP)e=XmzUf+@BYg$@}r+$8aY9;c{zpWo6RfhGC2Mad!-EG|t-kdV}MV zt&>xdP-0>t$639@0!O?l_NtSY7r%LY>z}`1Pr5thum}hcMY%j&X$R-jii!%r`g}99 zu>rQaYB^cizGOyqbFOsHRG}*N`0QD7t&YB}u8aKzQW6rCU*R+0v@%QX8&T9VFkrjh zn*d(REA@uDI_crFGxx%*KJpZKUT~ZMcMibZJ8|*G?vV2BPtqF5Tp2ybDT|Hc2Yay< zeD%5c`T`uze}Cxd>)+-)-bFPPqC~8nZBJ~8pUhOe1<^%9eiwUS9apsi3!GESF@hr% z+2mNhtP72agP)%;M1PU0D8A7j@TF-}+j>)>h0dVw=x%Odv1%v;0PG(>o@I2F!#D^C z3ifZDc&&h2*|4IdsMxdQdh}ajF&$8~ECe9xsnE-wPk*KRijtZdMyV$!=D%oP4eXN2 z5ma`u^Al$F4y$Mt0OY14ofo7U27)sH^i@DB)$c=daQu=CgM!ra;UTcs$7LpCV}?NCu6b1Fb5kO&X_<7?BDdCJ&8iGQ#irb?s}dZ6quwP=p+-C zTc^&=Z5Z4*hQgcxQL_b_4`e*^IwL z+8ktWKRY{m+x7sSUC==~NFiH`p^r>ZIrf4H=uEw_c&lTq!Y=a-aLMsuKg~|T(U&Sr zrz$tsc<>YJ(2VO-U*qP;0Dz?goV}~~ndVkj0HoDf{nP&uNdk+<+uJ*rYnqFQ2ib~} zt`~R_FxT1TKWAle3hdb0Oqc0~L7#`QpAZ#Sdl3hwu{7mwo(D!dTiLS>;yoCqx`u|n@I7!O0(B)QUZYWG%Jrk( zB)ze>vg%tDe|)%XPa+cx-Hj6@s1SC<#G?Sj6B82(v4M5h83zBlqE1Q6iiJBp87G&QGyy%yUo7aJ|LD2!^PuTPfl;}e~W#KSr7 z>E)I0r+|val!5|jb=^R@fR~gkN=QhUrO`6^2yo>*@mXQ6EqoY4wp72}Y1X}>{Crq$ zgm1v4j~qmkD}ky5f6vXD^xRo1=yqX++I)tcv;)wW$DSKt4b>po7aN!$9;xI$>jD1KlWLuLE;7p)VjhATAN?vD_29iyVzv z?>eM;$avkOGn>lF(3)Sp%=qvjbYgsJDx#RwGs>?YX&IToi@C|mmB(kC%py@$ z%0`E5_V)IlSoI^VN5;o-f&`;!s8qXiL5u@v(JJU5OK`nNg@mA^qZd^HCUEer~7Fzi+r+gye_?ka)p!p*?^8yeNJbHDIj`k`~ttBSBB6 zS;ctD!hA6D`7_xTE)^GA>>SaA*tdjYqSNi$MrwBU!>0&+z_HtAuuq&+d6i#+HVk>n-Y2sR^4m9M~Ow=8-w) z4+vP+B#mBa-tB4ib+<5m=UA5yvo7s9P?&wp>yk-GwFc8iV2KLY{>kxBZNBzC^a+qv zpwtL`mXF0GLG<+g{eL`g{{LZzX>dyP%C&IT<8SX(Tm6vnyT0g2+qBT$PrV@ihi0XQ z*65Uh{6AmQ#o)nV5DAzXWDZ<&OKKMK76CHSiZT|g1;_8knQYzcNG312>1m!W7sQHj zpkHFyel_KYIUnDYL`pD(eP-f$9)>?^OTlCU$z%;fYR2EBun zJK8G@^uO=lcpDH9BPb|paPZ^DD>qrh+WM59olR$<=H~aZK5wk(qehhb2kq>gWW@ye zQ`vD$G~d2?Bk#z@bh*8pZDZ@ySNfWI`{73Xz8??8es*>`GJu%maMc+orOjUv8JoYn z{Q504Z|dKnoQDq9wRjbK6&MuyH}Vm~nB zWh!Nvo}Xz<&NL$+atntB2ju7N-QVNZ)(-FQ+ht~|65$d4CBebLA|*|IZ?dtiYpCrt z(M3~QgtU*T@?e~gkT zLIrkh?Omn4efPn;mXvsbg!%XAntySz zthE)lrp7-%zcwze+Cj^O6EDuSFE|*rz8*;jyPZjMKI+q|SyC0pWfe!!3_TZ42OA1@ z=0Ur^V0rGdkP}U-zn*;h3IN5LqS-*$Bs8LWU?X=y^EDevPp6 zvR5YcF_)GPv$Iz^Ij~k#MAF%1WaPH;@sS?eIocGbe6>=tv4MEje{UCOVlA($oe*R| zY8$F73XZQvVNIQx>iP1OCN|+^^ahqnVC^HOw-rY`}t+3rgQvmFL4tAge)0w*+L8Dc*Zmr!!e3Ga^Knc zH}e$hzwdn1Qj|}6^Pj)vZ7vJUDVT9t_;Ekof#?8vH*MhDfH5V0Dig0PLqECqTv1AT z<^3hgX9u@h1fKrI2lsRYCeibV@~=)lg?etX0rE-G|M{<`gi3FNF#bI5D~!S1c3!eu zwfS(aH%ZDdXQ2uPw0>?AyQwQb?!QL{z&P8K`GuW-o?XR@grgJoR!>S6sCq`h^h-Cq zPhZXK+32OUPsh8%A{EuHVc}s(TIgJE-S9HV3J}tHI*haBKeEo`!g29w@V&&dl;?Tf zRnaO7xhHEXe4WoYU0|@$p!bTuO1*0>pg`k+AMyN(?sEc5Is(18=27|OPCCc}=%ojB zl!egkA>p9?!~%6!CTSZZ9Akm-KFv)#xJ43)>CDxHSR;Y6-pcg})9wE$wOk-n@6#A>g;j&@m$_ zo`8cLBku%gvK*OaqWcdas#`4s%L;eOMAo(~Tu)Y>F=`P`eZC>93ZIe=b;k#*MOatO z%dec@JVjYt_Q$w0M+^+T_V#=ZM_G#7?s-;?rBJPQBX-jWew0NjKKON_y(;Q>`8#m` z0jbb^ELh!gd;f|>L2EqRD?2=jS|eTrR5APAk{}*aGN+lIX-U~UUQ>n;>Un=--GSCO zplLXVYB0fn``6)U`0Z+nXcv`5wi}6d30QmL%F0-{xog2%dS5ffkTL+;Xle=~D3p_+ zj{O6&e&UKh3%Noq8F)ithGmz(@2sjOGtA8LqP!)E*p?qY-6OgW9p%RjPB{-OT1hG{NeM>}tM#<*L^Xe z;j&|37aJ`m6=S`{4xE;kLdLx&mlLHvlvP4dAqE{CA8U*{hjk)yZ1!DoSl0JV4SNv} z>?{fIC>*%yt!Ffr_B~{KX75K&ccIl+Zidy5M4OUc3M>?{D$UK!rKP1VxSrUUSf7t- zYPecVUt=%gY5)f~J}NxU#_zV=3kx~^|bzmH{lX2uNr=-U7D zR;%A7g@`xS#87WKS<;R%VQ?3g-Q%ppJi_=)$tErHGOdE9KcDioLlY^X4AKnLwF((yBTw+%op7^ z#}7&yL{H+VG_IUZ=a}O>DHh$9NH7LJSijSC`TbizM`^*Q2Zbb({IBC;+e7!YPQ73ZEdRN9> z=mp65wKI+nyW-iRhvd%OLJkw@gQUtv5V+55Bno?)Pay=6w7ruZ&Oeh}JFh$N1vl1E zzaF%22j7j>VM-S@-eWy8(fN^}D8k{~3HlmGCGBXJaQWd1EPDj#B7S*$YGey^t$#xb zJPcXY9Vd5gk6SrOpmh95e+6b7k*u%ATaR8tS{>A&9vbueTWGhl3eB@Zv6JOZy0qvj{dA=A=-aDwW?U&($#1`9VpNDJa`R|V%JwD*l0VS zbzP4>O~h-GLf*))q~C0WWMc4l;)-YRjL9w6XWp|00Ez7$pex!JQr z7|&yTZYj=l@6mp>CVZN2Z&I{U@<~4_SPTs+T<%&g5@E)zQB2MDLY#Z^v(pi zuDl$*R#Krk1`$C?077G_wk*yu+o8>O*01l=bz29jQ;0>}%}TRg`N50(Itq9j^fjA? zoio%GQUF{^R%!@>&^%My_0{+b@@;ahjR1amzlMT(r`NVw*vs#F2zGY^6587zPe;Tt zPg{Y=_UY3nkd+sy!pp^lL&f+pN(+c5U4NcBEE&5qm9k>=^oVg+VRInLiGZ7ni_d8} z9_>rq3^-`xGi!k^KM5gGT=&oGqb^MB4OBQ7pxO{OsX+ThW9(~tj&aLMI=}zH+9~|9 z$@B1|WAfAWa|?<6HC;nROXiPW^i^^AEAe9h)hzOS_*PK*X-~*mkb^|^cc+6N)uc#- z~?aMkU&*{uc85q;Yx@-mqD=P;>Ho zjPaC!`gKoa;&zX+=;PY=b$aMEudLF3o9}K>tFUJXN=RK6cKK()-3CK+x!~HF7s6t8 z`}{61X4thLn-pTjXkkJfj)MGse8K!Tp-GZ!R_rWI{rIZDz2eDvN#1r zIFlb$R1lalcvx6ih7RU>Q$1sj$qwdPeAp9f+yqjgVxwd7T(JpUvWT`VyR_l-k(Ps5 zcsBzD#3~v*j0H)$8Yx~Du6?xfAHlW)He1}asFv6qan_5Jld){uafEL^c~1seY6tM> z-L9A)24mZ%7CkO8PX(CnOZym0X`-|>-Xo!=&}a@{GKyj8*U~p_yFO2b z+8Vo_8Y0cRNIX3~jrG(o&DZ}1JC-*Gws$yQ7n?B*Q=`4mIT}tJXVpNE=|$cB)NlD2 zfucz9dYel>>n__NL853oG^8o8V8lS)y=3FpsZE=H(QBd_Xwl03_6RoX=XW<1kB5)< zC`t~a)_gh5zC#_SMOl3paRe%Oq3yK?A%mCXOFq|@)e4c%u*Ze$*S~xJeK0M+3E3Os z&7{`z&GtWlPhOzgcz75IlHSXtO8#>61ti6!SG$U?sqQ6WGr=qZG}ylm!BTW}i+pKr z*Jut$V=y!&K%Ug_(K*)0M^eSX3W8~M+QjU~YLES`^|D7Hr=~D?=YsuHWymCUSR}9K zjpnyrk7GxvFA5pFm1^Z+%b#_TW#40HX(BwwR-ixcA9wfjXTh=8`!XhAMR0!+`el*idkb6G-mMd!gYnsLV-pwG|$;Wne-l!m-EZBGHJogVI^hdq{PHX3d(YD zm{QnP#m!gO(IKjj@KE{KV+ztKjhTC?L6Zk0`^}1QbK`1t*{P}F*g{_G#A(}yiley0 z?ql+D4vcYPM8P&2J6KrI%BS%Wr<)M|r0EKlw#UcD1|V`sM&yNw1jureBAMmoipP7d z1r^^Sl2I*$oh3wZQ2|2iQ2h|IZv=_}3K`=?=tEy`Zyp)iKI|`Kq4dw6<8K)HOy%U{ zKxdz;D8?26x>+Bi?ahB=z7zJoTzoF4cHnDup{%~6u?`ev<6boH@LsM!_H9w)X>(7k zW%ikxVPEznK|{&1KJ6ZBjAG^*>EFmHa}V1`*tX{e^#yNIcL;eh%Jm!8NW!C{Msmc1 zfDGQ)4r1Cl8)*=vi|}x8LI;j$Pp`(oTdM^E>Ri@)fo|>L<&`7oh7bYtktf3f0@Wc% z3&nb%hAh=P=$p~VXsoq|i3fv*F?Bry1H&jGanv#7Et$q~jdY2fsMCQLQeAEkmdRFg z&d6w>6jNA(W!5Q5@y-ho+ryBwbG27^c$!P%jq4vaHiEZi>z|TGWJU#TF775O9-2(2 z?pT{G%MCF-;5B%=hI3dAJcZe~BWZo_^OMYk!jbqv@Phk%%~XRax9cChYEDR2yN~v3 zN$ob*QQn5V3HUdbl}p}R^==AZv37)#g49>`wwd6gbkPQIlpoP!sx6Byl3HBU|pj8vx-3mwR)t!@rf+f&b%*Tf$D|r{7_#m4!tF`YO>ZYNCsmSKn2w z#UR1Z;U(zjf$knKI%x#w7?ZH2HoN^*iq`{Xm);5}wLQ|5$yX3XWv{DCJTFE6)V3C> zhkOfWgIdJ9I#*FqOZ|>+1p%J$ZzI&lxNP&pPF;vdbgPV?pUh&NuZr-%gyreF`+;mt zAoL46|9*zh3y!h5^gx*ElwvY%QK6ea=jZ3= z=}b0@?xlW(u+(*c1{t=)b;5LX++scpX|I&g&6pC&Kd>#_IN z>~kqxB!vA$X}hb)JX9qt39*YP3)?QQND=i@*H5&nCm*!WB-hKDe<*Lja?w0%s_ZD} zWM&gT2rPt44QGU7;Q#ZyqE(EatnuTK@1amP`EO;6eAq}FP#=jrgHjj7xtsB~i>It4 zDSTJ?h<3W2{lNlfhoe##$6;8fKK#1V`nxk$dXcBZCk5X{Rg_q?rK^& zGW-&%I|w`-XSq#|>Ib_Q8wm$kmhxvK8+jti1u=)8dc6j}MHp#Y8ln?V##qGQ`r*%u zq9E1@?|iWJDz|(2_DitJ(rHPWp(q=pI+rsmkI7}-f?R<7=W(bN+V(1nCaH2*(Y~Y?%8H88$aKdFwP~Z0 z6wV_cv}g=N9Vu6)1*G<_Cn5ccYN44%r^ljjfuLgFuFmmSw}Limnq?FWwDh6vsPypv6`y* zFmYcTQ}@K0Y$=PitTUIpaEfs3B4%)!<%J6zn*wHA3g0}eo|6dFRcX31*U^8~eWdzr zMl-oa5u>bV^oqQ%p?)O4BvsD-*elQ{lIUZ+K@qL|a0T3_xx2<7eXYnEiwPJe?LOXD zMQ;9Ya$3@UYYb*>P8;*FI}SFykT?CH1u<%8k3}%DGPywQm6!*A+D!d`YM<|zJH9@FUKzGK^=Eg=2i1g9U#zw>yFti|7leZxCcVtChgocJ< z$<8k<c}0g&*>opIKgS}^ql2unx8LF5TMlQy|AjVK z6Wm6KLHVuGYGj4&rpqLdnJCi?>+OjP;W?N)kr{{;SGRKczm2qbL_y5cqKTp0eBtE4 zOBt^qDG3`d;I^s218+yo1ojKkoDo^~#C!}?RAG?Jc7f5nF7oWNGEd?}gqXRdWuAo2 z=WFK#AO71!q`GS5wqKRlgj`=jo5jm42FeEt49|5?4+v~gWve^ud{Xq?JU}Y1q?9xLgJ4NjFNKsh!f;Z;nR5gaL0r22@zH7* z){_onf-31BBY?R|q7W90lVUZL*3q&a+sY0yY>bVcEkKMp*d}4jpctP+P_X`hP5PbO z>({~GCvADZghG;Ec~q&&$sw=lA)Nq0Kbjq?e+I`CVGYExYUEJuv=i`=K8d`4!ixwO zvPFDw$n{&iIm2UR$jHckiz8uH(?I0Tpx?gXUq2*F04cuh5{=Tp!ydsHLXg7`6!6gS zfzduPLAx}WB5KI+RL9ddjG;-%ozd_X{wHen9`o_r+pq=oUFjk>>b#HayRvm3v9tVO z>mu-3h+!5zv&VVAV)jZa7D^y_glVHP;ni=qw*#?+f?kGA1CB>GuLCEA&WQQLgF!W& z{+EPh*X|6MbOfkvg;cZW7N&6gYBC#%9iOysBSf=UgMxwr*sp@0Nl~lH%cFF%gc}q+ zBi7N?)zr{9ySV6-DXOxYVS|gt!h|Sv7jMDxg{xu(ck&;h+!2zJ#-U>iP;*E}`WO&Y z@;ffRN{jvg9BgUG=$*qH4E3FcRl;emApa3eZWx07Rut1ll~f192$6!)l}@}xX7M`m z8XEY|V$k%0yVBNS1jyi0RY>X~SJ8^bijz{pRpje@g>;^=$Z$9DH&-9SPpFj02;q__ z)*Af-0;&mh$Tp$_T;jL*;9{!qvpVF0rCdnf_p!YT@l}1kF^h5&p2@j@gp4eKti)*f zOn@v*rS!W6ZbfQ^4H(!w4|C8TThH$JK9dzdPX}NK1b%mV>gT9aTNP5 zwKz#B54I>qXbZN)WJV_f$9<#E6#qv(Lx*8n{;O=p=S4|4lbmFPC7eEmIRXS^ z&H|PP!ab)h<`w^vy_YdrHszSyXk`5IOSlsWN4RsQB~ki zH|WPN%E`+LjkrHvV#PvuNciuq8%E8IzRDG0168gMgnH0Q`szS>yc2X#!i0~1{6KaB zno#Kj*CH-KTo2OuIckdZ{uZxn= zwn4WA%V*xUZUw5xx4TppT8kkq-<*)}-$xXAX2OK`8#{Zj|46c{~ zBydDwJS8gAVC_6BaQX1T8y0AnWL(rx3`%+WUR>Kc62iAZ*Rs8$;qy?U_#MsOOQyBD z%H-a_*nQ1H=Vb89EnxT+5ITV`YVn|3;CX6h-}*NDxFP_9;-=DPO0Yt@;B zg~ip)4ag}#_m1z-fV{>35xC>Nq@GH0_*yxGUo661`}zo(mz_t$gBiFxyMJ;h6F z-76&r-va`?rbxZQDVb6x5*w0oZsT}w=r*meewSBhRDAroC}4eN+b6--TQ(GzUdbMe z3jlVvpK(2Fpd*Wkh6a}Rr!BJdC5{|$#(+8)Y?8n`1)NyySJ&4b9v2QzeY%664y451&)}8 zzT32*^&ND-YXpcj>3(3wHyHqS&kf)fZ1w;Kzoix*+|rtw8ep~vMGKt-9=P9{3ved3 z98jN!>%So5lcrdsgq;K=ws#UK&`!cHXC+?W*=;Z8?3Z&XZ+w1pP&>GOh;%3uXeHI4 zoPN|NYa6F~QWx^p;%)4cABSnRNp&`ATVGeH`UfuGW{4j==cu*Zo~D?bM8l@4mA@w9T+a_}fCOPO#AXy0w*@ z@)3vBsY{UQeru)y+2FVJr?Xk4w|*f7aSeLAeinL>qU)ZSdz@8<&9lqAt5P}zB8+a} zmtG{P74zI3Q|k3xC89ype&Ct14jh9)ZRt3j;b4;H(2xRdw*J#aUcKRuQE7MH_TE>^ zzX-{Ht7*BwWLRw-xapcdw;5}cUBVB_ZJmi=eBg>Jg9x~Ds$r8a)CL> zv*kiui`DYB4iolqQ$f@)$g8B{pEm}VhC-e?n(9B#5wq{2&1~#0(PI}csy>N);l0mD z;W=*K1*ZLi$_ex>sr>R(N{dtJ+X(GH=_hg*^Fs4DQ5Tnv4Ws&P-S?3HN<2^pb44kr z|9eMBB=(gmS@X0R3sa;e9~Z0ETM3JLTGIbBWWX$PeKjjcSnX!)JOeTP!L{*^E1CZP z{1pm#C==d*>RoWW0$pF^O+=+?>D0QXYgJeKzJ|Hg0)p3N}6#fZ0|TfSkn1*PKRPxA_^UWhe(<5dMs!<>BIM$kq8L*ox21=Wb`- z7y7!4oy2Mn&06?H*EqWf14g7L87e*4J>ma-S!{hQ>henoxrpXMyYdE@O1kpas7-M| z=9MO|M+j848kw;*;B!&qm$mWOlYxxfs;z@;v9?!4L?kvYgKghhVwa}SW%+m;xX`Jm zTTJ%7cRK4rLP9{)l|2y|0c$FAhTi-rNeQ4|zWZJ`)O+M|CHwCUSqRf70e;>iMguEHTM{9wSs`sTKB}L|Kf=d1M{z+T_-ix$+7n z2ut`LS;)Ofu&wKJo0PS`b09(HGci3kw=^>>{EW%t6y>$tNPUf)#Bl!CVNIreNwzu< zbT*2>=Tz?j-)udx+`~;rMJphZ(R1K=deUxjh?DbqbCopwL+|EvZWROjBi0sfY=W}9 zq=h#>eLIqvjLb|&b&^Dp;IL_%h93qusWi%YYlVI4D|{o?QFebs#ei7PY_59wTneH> zMqouL1P`v)mF^LUv~1zn|(c zq|%QT=LY#*QDeKP%{E+n5*8Ap4QTRkjisVbGg2I+H66?qVDc2CzFW)FeH3oG+C@?Op07OQP)cC6`YXiofI zxWJ5GUE_vpnVRprU(&S$x;4Sn2L+84@iNC7R~3>_@&+}(nv8D3^;zpbrYyox8SC`L z1kHNl`4`FopTn6x_J>2D(M0^eT~`j*6aTpf3>rUHPtsm+)-~=wgXemDc%BYIv`D8D zxtc!fmZ}xM#A*F=1w#dqqZ`>cP8TU54&=u7nUqCLS6ajGv>Y&zU&(z+o_i~uphK;? z%_mDPW)xiLe$P1!6}=$}_odFOO(+#TD;;K$!{D(g_IvM+T|_kd@~g$UxW0GIY&6(Fl$J4 zB_%u=G=NB-5$yuY*6`}cNNl_j_Mepjza#|2PZTTMR^;m~<$V6M@q%o5mS;#jmFL5< zn39wN42?}E<>aW^LpsAJr{|Y4u3nb;NbfBgUVBh}X|31CD2F7ZuFdH*ch(h$(&``1 z!3a|z?-%X9mu#5DQf1ls(;!bdnZeeiEk@s_=S-IoK}3jg!M`$GO9`cuPw{u2SLd}SlxkdH@|`ncWztRCK9b6(s^IH(u-l{#Xu?`# zjTfOjmo0PLV5*9d;>_K7AyxQ+)oz`!I(mRC=6lxH_)6@~nprZ%h?Ha1P!X`qsQ+h~ zDNrNMVJ~vBuP7>MlAWAgSsB^cnPy*vj~XPs!K{gX&#h5}iS|D}?UJdT;CIn2oonDr zGYsq)!sO!6>)BOl2a7vccg@{Nucas{ya^Ni%FdoliV zVw%6{{h8K{K_Dz9`1U2vf{+hfq|B11vxDtepd62Y$UHwsSxF&AHKRe?SY`89LfWeA$k;H53Dr3=7<4k9Up8+}1cp!-U?%_U}HRgFia5xGH2-ueeq95ozuuH5k-qdyle zDn9WkIW9k!SRFHbpaRiyNDdK@_eLr@FQUFWr4n)KDz2S!mLYy->#jm|e^Dl8@UI*1 zpOue#VCd&Br`;_yv>0=Fmhvob|3GW0vf3yo5G2^CMJjt)%I^?Cjm;99HZ|8(`K3&a zP5X1JdzUaJ+*B0-DWrOc&qON7^2&pfgJo`nsBf$>y7QNa55G5M-}N znO;DljGvTre&8w__{EI(<|Wv-K%5>^oltw#mkMZcMO$^zH!|qHXdqS&Wh5Bv_3sFv zLL8=GLMn~>PHRRMMyEsX(WDZbB;o(s=Q*G%$ZIA59{N8=1VQuj^P6vl+v$|CE)kf@ zi;F=an#7w=SRw^w+sA?<@cbNCl5UsT^?q^1sTkJ`E&Qtin|AvvtV?8#`RQpH&%$${J`RIfC)$m83Jn7We^p;LnS4#( zzXL>wlAS%tW_V%(HxA@G0M&Dd$@C><#<$v9W>(fIc3d!bv=@xJcsMsctMrU~t5_sX zWN^HW9ug#k<-wIVZ=XKGULSRViB@*W!gM(Kz#RfLX!G|0wHkm6UId(}zJ49ub|%Jo zhxhky zDuBajgL11A$nU_fWjY0-F2Gm_V?{SNwS#4S9?e0YWO#p} zp;`yfyE0e)Vgx{U87ZTd`4vyho$b9A^XpgCBWW7A6G_7PcsnmHWkvl&*xE|^zUJOv zHg^Vn6Ku?)KOeAbPhXrJNU3lpmMH=UaR9INfOr@{4tH(1Vp9N60ZGP2gW)A9yzGypQwkw zQ2_j-{w$54T2@d{5Cx8}9(W9RvD!uf`0BVZe^wtWc)(yux|JT!kgBr=+5S043sda~R;=Lz~YO%ilHwN*3d}qqQ|K z2eR^%8Og?@&7LLjFM9(HhO>Q)5F0$Be2Zkr{Q}gw7Cw9aTQ?~rLW`VBpDtTD!<+MZ zKd!$rTWRZ05RG``(a}*=6~_}Tyu6&43kFeSfpe)2UJU3n??Zs`!TX4ki)iD$g!j(Y zRy6d5Ns-$1u=ZQ*PBy)7NUD24BCjGMCML$h`T<@P7^N$qqy|0Su1p{nfoq^M;eo)T zw|=Nno1VJ5soZnT5y3i-BR83{S51BOi{K|zEju~z&#EfoY0BQ7Jw?*P5{(2_IOC}G aLs0+F?ukrV4AwL7BPXpSRRJ*${l5Ug4qMm& literal 0 HcmV?d00001 diff --git a/windows/deploy/troubleshoot-upgrade-analytics.md b/windows/deploy/troubleshoot-upgrade-analytics.md index 7b2d58bc05..468de1e275 100644 --- a/windows/deploy/troubleshoot-upgrade-analytics.md +++ b/windows/deploy/troubleshoot-upgrade-analytics.md @@ -27,6 +27,8 @@ If you want to stop using Upgrade Analytics and stop sending telemetry data to M 1. Unsubscribe from the Upgrade Analytics solution in the OMS portal. In the OMS portal, go to **Settings** > **Connected Sources** > **Windows Telemetry** and choose the **Unsubscribe** option. + ![Upgrade Analytics unsubscribe](images/upgrade-analytics-unsubscribe.png) + 2. Disable the Commercial Data Opt-in Key on computers running Windows 7 SP1 or 8.1. On computers running Windows 10, set the telemetry level to **Security**: **Windows 7 and Windows 8.1**: Delete CommercialDataOptIn registry property from *HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection* From 85be8aebb4b01a0dc384963815068a993d30a84d Mon Sep 17 00:00:00 2001 From: Justinha Date: Tue, 24 Jan 2017 10:26:03 -0800 Subject: [PATCH 153/210] revised reference to WinInit and added resaon for the behavior --- ...-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md index d790933a66..fd0aadca6c 100644 --- a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md +++ b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md @@ -29,10 +29,11 @@ The credentials are also cleaned up when the WiFi or VPN connection is disconnec When the user tries to access a domain resource, using Edge for example, Edge has the right Enterprise Authentication capability so WinInit.exe can release the credentials that it gets from the Credential Manager to the SSP that is requesting it. For more information about the Enterprise Authentication capability, see [App capability declarations](https://msdn.microsoft.com/windows/uwp/packaging/app-capability-declarations). -WinInit.exe will look at the device application, such as a Universal Windows Platform (UWP) application, to see if it has the right capability. +The local security authority will look at the device application, such as a Universal Windows Platform (UWP) application, to see if it has the right capability. If the app is not UWP, it does not matter. But if it is a UWP app, it will look at the device capability for Enterprise Authentication. -If it does have that capability and if the resource that you are trying to access is in the Intranet zone in the Internet Options (ZoneMap), then the credential will be released. +If it does have that capability and if the resource that you are trying to access is in the Intranet zone in the Internet Options (ZoneMap), then the credential will be released. +This behavior helps prevent credentials from being misused by untrusted third parties. ## Intranet zone From bc8ffb53f70352fbe015e39b2a726180917f5544 Mon Sep 17 00:00:00 2001 From: Justinha Date: Tue, 24 Jan 2017 10:33:51 -0800 Subject: [PATCH 154/210] changed references WinInit.exe to WinInet --- ...o-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md index fd0aadca6c..a47a3fcb64 100644 --- a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md +++ b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md @@ -26,10 +26,10 @@ The credentials are put in Credential Manager as a "`*Session`" credential. A "`*Session`" credential implies that it is valid for the current user session. The credentials are also cleaned up when the WiFi or VPN connection is disconnected. -When the user tries to access a domain resource, using Edge for example, Edge has the right Enterprise Authentication capability so WinInit.exe can release the credentials that it gets from the Credential Manager to the SSP that is requesting it. +When the user tries to access a domain resource, using Edge for example, Edge has the right Enterprise Authentication capability so [WinInet](https://msdn.microsoft.com/library/windows/desktop/aa385483.aspx) can release the credentials that it gets from the Credential Manager to the SSP that is requesting it. For more information about the Enterprise Authentication capability, see [App capability declarations](https://msdn.microsoft.com/windows/uwp/packaging/app-capability-declarations). -The local security authority will look at the device application, such as a Universal Windows Platform (UWP) application, to see if it has the right capability. +WinInet will look at the device application, such as a Universal Windows Platform (UWP) application, to see if it has the right capability. If the app is not UWP, it does not matter. But if it is a UWP app, it will look at the device capability for Enterprise Authentication. If it does have that capability and if the resource that you are trying to access is in the Intranet zone in the Internet Options (ZoneMap), then the credential will be released. From 8b43a94f4b61a0d4c6e1d3b5dacd226756cd94fa Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 24 Jan 2017 10:56:59 -0800 Subject: [PATCH 155/210] new mdm image --- ...ndows-defender-advanced-threat-protection.md | 4 ++-- .../keep-secure/images/atp-mdm-onboarding.png | Bin 0 -> 75455 bytes 2 files changed, 2 insertions(+), 2 deletions(-) create mode 100644 windows/keep-secure/images/atp-mdm-onboarding.png diff --git a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md index b5b16faf54..ce8ce653b7 100644 --- a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md @@ -37,7 +37,7 @@ For more information on using Windows Defender ATP CSP see, [WindowsAdvancedThre b. Select **Mobile Device Management/Microsoft Intune** > **Download package** and save the .zip file. - ![Endpoint onboarding](images/atp-onboard-mdm.png) + ![Endpoint onboarding](images/atp-mdm-onboarding.png) 2. Extract the contents of the .zip file to a shared, read-only location that can be accessed by the network administrators who will deploy the package. You should have a file named *WindowsDefenderATP.onboarding*. @@ -56,7 +56,7 @@ For more information on using Windows Defender ATP CSP see, [WindowsAdvancedThre ![Microsoft Intune add OMC-URI](images/atp-intune-add-oma.png) e. Type the following values then select **OK**: - + ![Microsoft Intune save policy](images/atp-intune-oma-uri-setting.png) - **Setting name**: Type a name for the setting. diff --git a/windows/keep-secure/images/atp-mdm-onboarding.png b/windows/keep-secure/images/atp-mdm-onboarding.png new file mode 100644 index 0000000000000000000000000000000000000000..56d370fd927e95261f7951fe5386b26385b2968a GIT binary patch literal 75455 zcmdqJgp~I4%|$77B&JeJmlOfI?m1N1@PpFJi!v zEV2)I@V`q|5~?;R6kY@JAKE7-JaRaQY5Q1O6mt^oDj^rz!=&z`KZitBY#-X$8d+MS zGICla;1G^291_vD(X}?VvNg7}KoMQKK?}#RkmJIZR!-K&hDNriEc{kpIEwe@sI|Th za_V(kV{?5J#~%JAc;^!G&QnVRTL&F$eUygP8FD)IpNkvY=$h%ksn)2{x}rchd=WXU ztYd9qY+;D1BcJtwW0?PZ-p*QAAGLGlweGKk<}5!`CM`TklxYJ4A^gYX8HF>!yEhN`|q z_iO5>W+{w)B?}fr-U*|!QwBtLRn3H-;0|VavX&^}e?IT~DDj#6#~*>-G~cgz=v)r4<~wai{rOhp2d->FLV|BV!1tbvrvzkV?_JiaNngEsh4NhL&z)ZE z&75CeZfNu)mDkb=%&j>zsoQGsq=!$bmY0`19?XPy4i7J_WnKPrxy~~pV&XSxaqeXK z`T1pMr$?0Sh5{_KwCG|<1oX184U_dgonvEy*AH~-LjL;@&#|zv>xE9bg(f$esGBq# zMrV3?LnUv)pIG-pdX{TeDo zMg&)wRXl~x4m$R`<4)gL)*O7NUo!aDw=I+L*)zKzPgCp8wnm^AoK~*Ykl((2`?H`M z@0jB>?nv3or17QS3@ajkUwYHQ;#6N{Jr29kuOu(Vt3~|lQy>E&M0)7 z0(P7!srDvS3zgpP`;jJb5z$wm_kFVwh88MuJ__9MbUpp*cXNJyTbCw)wN2w<$Gh}IrlrOC`3H|5ziT?s4zd3mNi>h-ya=CbT1~UzIvL+w@_g+;>%&x6g zEU^ZLU4yH{x^6y3)g=h~=yC9nlaaxyCuME$!WX=V;@N ztgc$5ZM~cLOv@XC2ba&z&PI8@etqt9n?X-+?*V%)ZSciiRgWBvO7FftC1O(2BlhaZ zNHTcJiQmm3+)kS}>11P74VIFtyz0WQzpHE+vH z!DD@X`n&&9zq9??nEz;{!x4kB$hh-jMw->$Xe=%#9*T(WN!`KL+{@|jxM^F@l$55T zENi|l4;Bijox#F-`{vF0z%ZSPpnU-)j1){>Tva66O(zCNg&CHlz=;|i)FS!LBP2RqLpD51# zFr(*g{=gpUG6~6BNmj^c}2no++EAi2wo7KPCfoJ7k zc@Q;1N(e=L=_sHPad6-wBO?onj$U3flNVYUs~(g{ovqWDmEfYO8?5$ z3T(rUSUc0x*jTC&hjBNmw5|1ee3zb{STtECE%$?4s0o+xqu9{}2ozyiS$t1R^r*fD z=~alC3n)E({f7y1*Eu=+n#w856&XJ*-#6~M$*fU9?CbeYiw+U z0NL~$ExUjJesEk|pnQ^8LUQtX$i4;BPTxOVgR!OzDx&OMur)F_7nPQ7i%;bvR@KsK zNXyInHLkkFqc!HSxVUJwGQ<%WPPEs0eC!&&WigQVFfz^?Q&Zg+!)M;xxcTF){of(7 zciawb8Hlk$KYhBv%#70%KuJ!haer_+%kFJuTtXJiEzIFga`b6G^Zbl1kJQHP9LMMXst<9_2tFs%ax`q+4s zyf>o+6@Smp9_kN%wc1&HR#aSk`_$szIu-#WoBeFXFI9ZcT4K%+;DbwUgpdo zdYHhZoKt7SPQ%XLLpNXka#{>k7jfSZ<5sOhBBTmid!z`wmS%L-TOBDsZU5$*uiJ!o z{``6E@fx?|8xq@RkP~k(F#Is~sF-TnixqIeU{V(msec6PK2;{>eTq~#FOETKO3GKg zd$@zFzT3{#{c#DBMZ`lT=21P?St%(Opz{9c=m^)eI9vA-3VkgM15rP9aEp!(qxNWY zZJEl_*x0ztZYga1@CUUd5?I}`wRS8b@|j&`oWm=XPq!P5Ed>o*)b=KCpOQ|$Q(-GK z?4W|tseJWwecdVxA}xx`QcPKybhaZdu)SRd@;E$IVnPDi)?7zZXOehlPtO|;)4m^J zrBAvmFfw-7m)ylQX4Ic3Gk&^5=3n5pY%&@)qpQK!+gs4*n(rSQmM`=qlD#=|M#SUf z?%lfT9cJ#?*)0_O;lwKl$N{Xb#*$D#g^|;@$=S?#>77c6N3Jp5`xK=8w9b8^=3+VHy7k zYSQx>SJjg0Fxoi3Q%%=}?S*bs4GWP}VtK)gf77P-^QTYI3kR8Zo<&4OnL2plEUjF2 zyQxaPY)!nhwz?{2YMLn>LfA4bovkG0mdD-Vrs?)GcAJ`cXr!pm4_LBsztX9Xe7mwNI92Vy8FENs?R z&}D>0w`JvLYilTFTHltRtKYPMpx~H=7C*X^E3WuhbU(y9E-r3?n~_^gv7S>EDKYWD zb9@TB^6TwgOQ$NB zb9kmsUsMMQ@Q9yx+56cN&c^2&U#PhT!zibzxoQ=MzN&SfWv|@s!1vg9y3JZ607KY@ zYxGrF$z}O7furR@BNG#ARhzAoy>UaWSg)Ht&4{VSR>_hZ#pdON+~)y?VxU;07izPuV2Dx8g7?vpLlh)rGI$d?;h1p1f?~H&{tBp zxlMk1TQ(Q#0!eZH8E@?NNwa4fCCz7p6Kzhzb_$f6wD_3IngD7XgZsipiOz6|xkXz4 z(9rwOpRYy>x{)DBK3zTu60_x=P6j}+jg5_~945pjrl#`h>V9{1zsF}~;p~mr1hySd zp~>(E`RZGYl)V}(G@KsD*X_cm-SB*|=A!`Pj2iZJgJc0X#A>nUHp&fu1xUq3JiM^3 z3dfDajwt%~?p%$-ihw%M)UvOXT8@jEo3qHo^1p*b^kTHauFFgN*)tOO-V|(2NXqb+ zjb{2diKW|ss|NAn*Iu>DuiNMS+<+NIV2ips`L}Q1g5u)V?ntOUeLB61x_-2~BK+V1 zYRq*@x|FxJqqS8;RrMN@yi!x?diwgl>D{}*$oSL1iQsCtN%2)a`>diib93|0cXVE> zAJ{a;n3L#_4-Q_M7%s@o&VCCuPgXY2HcOp|Yl>9MwR7@Nl*P(2(%$*$cLan27JD}~ zrn&Grz}NSIyL(O1Ss=9#E8m#ESW;12Qy}#ouX$bJv}u|3UKJD?Zu{k{P-Uzj_TWYm zGcqm#vQ5v*vW*mb`SPw(uBLxL03PyAem(+u0dEvvqIkE(%E*XC7xI{~1+c^o9v%e2 z3Xa#v3Lc2`&1Fe+Z$>Uiii%z!BPUN#WL&8kfRPddd@p!7PwTVvYr(e5PW8DBFE4Mh zX@J0LH0>jO{aaJh(=WGXr58@`T8waKsh76X&8y1Ed2)@r62bR&+5LvmRVlN&;lA!g zJ<#Sy-~S{bC#OBtRm9!I#ALk=9X~!NM;rZ27dmb$% zr9Mx)L1AlhPP4iix1-BfulhzuQ)KWJL0$sxhkVv~mw}nN;eH3dm($j)&hh>RL-sCRv78*%Dj=#|6_gtW*H8-Kk39MJFKv&Gcf<*?jjo~nD0vCX zbiXsu{bt*EZ|_?u8^fcg@FBCYs%wD)yPva4Qqm6W9Y$%`#%86GXZ*~!pIyV(FD@=F zTgs_i2i(Pr;|!cjXY+US{$gfs71bS1sF*8GP%4D^wbhix@v*T(WNbUPN3E$kJq%r3 zDu>L455?$7$%>g$Z-4iLpix1MJ9<43YMdaTIXK^Qo3ums5p2S=eDbgs*5|_ribPI zZmungK83@4sOaH>OIlSG1)wST>?_HXkGpeKPFueQ2j2nsN1xAZ`y3Q>y|-($&=8-H zkT99d35eG(lVbb5EdUIF`SpoVWb@X{Y-~+sFQ@bDSJXtr#c2WSbar(PfNQd0E*_&VWB_V*oKA>-pwd-s}f0DgWABi#D=E;`5v3aZMA ziW2Bjmn!X7UMpl24bB1@^f{Sv{x%A$kL{3z0DjQJ(zh8{wqNYYfU+%fG)tm^?nt!0 zo%(^4^*KY7R*J%8YsCGF7cU0wdWed?U3NU%Y+*|=zcPI9YE!@53(Gs_U5ZHrcygJT zmR*KT>I+>#2re(RQK$y$Go1~y8;*|W-H0Lsk^z^4kT0n|d8SfN9i3&w$! z!{K3JbWB>oscFTZ8w0D9HJus_h7v{nM!sCrke7e8G2JB9Pw`3e7OsI|u2KTuoUhf) zPZA&zibJ{ZgaD|~u6v+;QOeAB-Z9zU-X0Jzggj-oIk~{`^fUL%#4Oi_3F}PdT#WUV z>OSkCsYbt}n4H`k7LniNt9Yw*Lor^$+dM3qUGG>w+`E52-?X1~q{@j1ut$9~k4^G> zLJ|^^uC0V-y>FK8TjXbYW0)U9LLeG?bmX7f-BICuJO-7EIFIlvE5Xez5y+$M5c^9~ z-7$jLD=gE}sJ4RH7=;WGW##Z9O@A@klxZ_^N@=1E;uh}r5c-CrFQ}<_tVMRoJ40M~ zqQ;}_R5wdL_!N+HSxkVUwD04wk9m`xei{;UXzZS@t}eps`2n_;Iq!UF!Mf3oV}#og zju#Q6J~-JqSK3R5svwtd%rA8$tC7FwrNJB9_tjOED91#}g4OjxW zw8Zf3l8%Cm)5D#m&hBn6(A%OGz<(9 zlH$4jwAZiKS*WVc+Vy3r%5-np9=VF<_9s5;F>b8a0+yttdO2Np;_-ky8HM4m+ivr}i6$>9o>rzL1Yo)5PhKBSo5pqgObn4;r zkq!4I7R@Va0A&TQ0RbxOr4h^RZ!yv7tTQq;{tC-GU%%zbAjesF?eQ)9m7%vl3TR-6 zx>KcvB_w=ph1yzM8(>ZS8XopDjCK01HMmAvtmYrX=KvMYSmhLBI|YFJ!rStz%_H6N z-9A_?XtYt0kq8O8J+RMqw#imN76UA%NL|VTk*q;@s4R3mMs(kM>^r^28&Yw1Tg{C(f@dVC` zE3jLVwq=h_rgNsJ-@WU!sfTjoBJEV{lYda0lq9@c`y;&Y^nPPSgK&l8Q^RZP5gevh zhK7ccwI}y#_5^Or0w&{p5b|RWpbFqqL2Z07B6^w76E>3s#!r%!#ib%4?hgD=9%0Js z04(SfQi*ds!%U)JIT9~C<~C6n>Fk{BWr%rke&gDGgZPq?E1+m`wnd8eV}!YBtGP43 zv-#0~Ql_?PubxeE<%%TQH7T3f)`x&UhEKYjhMtTM-z!;WQn}1V`n;EM*>b36Xzny# zA;V0tkAo9!uVYESB@E5V^+ToejoI>^DPV^Ou`39;|K%vXVt3tV7JuA6FuH-g8*vauSP~jo?o>eI5?EH zox1K%`k-;MV!G6#@s}H@74!=Pq$jY78I<&NcE0lT^mI>K@-xLIIFPZoFKKb_gVYZi z_&sel!^f-;A|3o&I0hZDEN)ytv7$_Eq@?_8sXcZF4PQ=vy8z_{zhzu55jz=BP-Sh@ zDm#tiZeiTXlS7%LP6-b`y7s=>6t~gdC^pyiub97#*e~MaHvuBIIz4uJUh7T?+MWj# zq+dNf=OJx)dt<0}uR?8aF)38DW|v+LJpHh_+FY@>Jm`gBd}(QEM^M@L+rw*1UUElr znv*FgDBO8DC4yYa<7jx?>Tuh5fi^O)si8r8W2%w$=+L$yMt=%S8} z+`zW@zqHL;5RniBZ6{}B&5w7DdHK;Ma{8$#v3HYlJRTYzP8qsR6Qo~$3e=sLn0O+> zFg951hMAdJ!+R1YS7%+)ulgHxw<8J3{lyk^MyVVQNr>9^M745uRfK-wiScl9a!R6I zcHkbyU%mXQV`}P!QL$PTNYz~%Y-9VXyGw@BRpkV8KJ-lqX@`~BVKOniZvmpg7hQ+B zGAUMDd|lUjH>-asI4TN}`vSYROFmHcN>Y3%ax3rfVRYzNI;EP<3CO(tG!?bKTV+G? zz%IOUcuoo!zDkWN56t|z_%;1c^ISilNfX4#_{_z5P(kK}yMYA()97sPW zVQR_*vcxaQ+%WYZgG{!t)rvfM@*ykt`o_1m5bO2dk;WOdd(xKOJB`I}eO<+ED`_i2 z^J-4hdrd;a!|V0#IdK@#ILYv@Me{o;9IgUz>{=6l2;{hf3G^l^1b#q3#0in(Vh}7- zq+e05?*vd2ugLfkf~Pf3h&qbX{9`18A6*Lw$&5(b2G9zkH9#KP{t|KYfG{byc6Z3M z>-xhmky4S}up>mH0q{2ka=!w~3VIB9Y1M~|nfonTr&FDRc{o&YLLOt;c5IqeR{_9s zJ8!2e@;%#@UNjkmC{UA&vEQF7B)7bD`HYPKEOIu4WxMnXar=CLH@8}O1H-%^)bB^g*kRN zs9t1YDp}6}ef%uo!U^agWk@SA>@lo3MRn`3DyR8{g?y)wh)y^zj6y&;vz9 zV!@N`rvTIH>ACDdJ_l@ID#>;(0(jc0gVyVqm>6J%J)YZ-2jZ;Ruj1H8+2BEiU}sh< zlGwFZ82K>{95WpMWa{Cp>%{ktf_LXqzQ)XQc zYAxDV+~294eiKx7AE|e1oL6Xc3Xh0bD2z`NLWC$mK`P!D854oYd7q*bBzj6MMjuH^ zzGvqC(!Fq~p`Hl%76=Ov!Q%2=avTiRx~J#ghlGTzU>IksUq{7i+;?l%S|ALzBq1f0 zV)NPD+RE3d$5^cK*ER9Mfd-IdPvweKC!Ga4-%T!dW zMX8CJxlKjJ-Bz2wA4k!BIFVOXeFtD|d8k&C2%2iENj3U7N*di{t1cHAjAGuI806><$Dq{+=#pa3 z6OoGg_>mCm5VQiX-MNZ$5qO-KWk-8E)n;3=9WNzxa%?T7Afjt*cCMK;ST>6KT|x8g z>Gizo?*?n;GnXZmOf>fm@@fq;7b~kfnywq70L`USc86MEpEwj3}#(+T;nvjEo(8^E)a_{-F79*0C*D=GW5m|oXJOT z>v|x4tELtaQPD~00$JckV{I2_0h|B!`K~U%`@vQtsaBZ)8+xpaFDk8!ry5Em=a%nR z!UleH9<`XOb&08|-wh(GZ5tQ#<+ z9|;TVccYG8eF2#hwVqy{B>?C&oJ}iC?5HG1b*Qh;8;O(A%6@}EXcGB6ykPnwYWYHz zNJzrzdMX7UA0K6yEwpcVqsY?9TOH$XNx}oxv2q`+tDZLiQ(|;eMiL!2@m_|>DJBb z><>0)IFG)`n?IG!iKt<}y1)yviTs%=2A}BD9iSyh0}3Ftmt+bwCcXvbel=$&%Qt8v zgS0^d{RANA3`|V*ksPKYhd7O|K5KfM*fDF>P>ha_{%C0l@&6tR0>Z$6N=9qL{0hPo zAxCN7i}0TD6k1;W-EIYH$@vQxn$J1X#4mL`pumN`n^NFxU_gMFwsyR_2Bw;+kx|{w zQa_~d^_>J#(03uJNIbkHW!j(92(oK@uSvd9C(Xjw10ZA{P0kIH-^$C*mL@A}JVdL3 zzc|Mi#zLa=i#z^JufPl94^oBz`>f#AO!!`Oy#$T)Pm#n*ii!i~&Xq43u|Pt)4vH8M z_>gmbIyyQEPemP)Q&Miw(TSP79|!RtqVCD(J7~a*imxgDcsdq3z11NU2#qv=Km4cr z(_QxxnJ$QX-FBjZ`T|0y!norDt*t|NCLrqCCx<&-RY0#1(F7W$pzz)1$i~9K0hakD z>wtb@pPN|vsBw60dD#qUjw59YG)2a2R+^luMK^@ml*fhh0V)V^!P`1R#s@cv}M%v%3vWTC`5n;UYf>{Ub#ZU z#%5WUgS%FHCJ6IPkNb=6=Oh%Y{Bk;wY>zF1x}d;W zWKTn5naYl~nGA9lnk%Y_*6iIYSJV;Z*^vVD!~xZVB<>6FwV|nr7N#XlHqL&4q8J*B zNOKs(XEA@WTNjE~%jc-zakRUVAKOROQV6=LkX`-eTygQ{P!!$k_cSpG-dZGT3o+n? z{I?5@H4MBn1DbPZKJ7if&?L74TCx*QpNM*ZhIP_5u?vn8sIez#lSU%Yv}G0?2KotmjX5Xy?YEft+dGtPnEFa+}E#P zE!xIMMn2@$+Iz^^TyXC-+r25wVfswdzbnW200*b`{klo$?i;R^{_puqGZKM)vLbr2 zK$Jm1Un`SI^NEBptUBIonO|AiaZqw?*S_;0L-A39+&&-EZ{eAl8GygvK`_D0Dq$hO zWqF}ZsCAX`tBjUK2x5Gx&_K_ZexMb>0%;t2gwTOFm!nzz9-26KNCF3Rx3NDRsJlFn ze^to6s-s&I{5E(L+!I?nhusn*bcvI{5gSv7`|kb9Pp_f%nlhQ0TLbcbO8-K6Wq^9A zh0ao6_Wto!$EeyG7|oiJq*v9;Dk7Us(|k&faH9>Z-_VMezbyi$sUi+>+7AHm_al&<3~$cXN&esSyNL} z?ict3RK+zkVuruUymE6SBv2j9*Tn=`DbI3T(8KVpuXj9@oGh){u~gL;PEI^v2Kyj3 zoo7}cA#%zE1`H2Fow^SV+G*D-`U-xhljlrIY}ZSQI3R|(3B*M<>fqA%$R*x&tBp(Z zf)ZjIdo+%E4*cvq3P8RFNB)u7-3C7gzA*i|S0A}F`Lz1@9p=Lw{5k>6~j zY?=*-P`+?5FuuDs9>`X+|806^AUVeOVjaj>h|?wGX&Tahf%ZyrZJ~&WaOl#+!FqcR>>gmh+cnX%r;&x; zHJ%FllZ74UCjijl9i)%PK>V5A7-V-s#}%MNG>JNEh^+_uq;G)B)y^Qu-Lh%}qvl|i zJU7hnUuL(Pz`+nJg0qVYroamHo{k|$ib9W}e`&o8zXR-Kn)Ip82Os)d2w~;^d38>3 zJFHS{I}5~moH_vrz?F=wuC9iQ`1L5)l&aMK&$nk5&F6r}1`b0&_TjOT0I@;G3U@BsQ>f&UE)W|HkDmE_Ko^<9TUg||KWTRV0dBZ zhOJhv2@Y2E=V~?ilXF>ZOo<}&2>P7k5Ko@7f&X&-Z4N*i%xiYmfSrr$h>z*szXw1J z2YIyryo?(DeaB)r7pM+n2gf6>(~ud>7J6*|eRSU+uOQ1G=?SQ+s{Y$OM~nHdTW5c9 zXX1axI$DhX-@KI^BlL&0TbpYBd+2`fLPUbv7#S5cisgI{o?Td`{%AOU`19hL*+0fp zg5WrijPan^gF@LlI8>5s>p_5chkEaoqM^2jB~PM>VBsLIP5Kt?vx_$~G4 zguDMc;oCn?@BE*q4`xH+P8j3ApXkv-?j(rjb!>%yhI>2GphjM};^P|*7{0z)@8bU& zUxU;BojLwLSH{0*{{OOQ{_k&9eGCpp10zOPmjYCcL$K;SKV_|88H}npqBqa-)<5bcfB?MszcbOCyxGmvond`c_34Hwc@$%)% z*VV>bcDJ+cU_U*^^t-fwxVqDwZj7_%G2t(A=uDJV#0i*hy=0kcRVnC)_ z%zKR3q3&_&PqkQIK6=2+R3aQ*NQ3`pcz$0+hKDxvt9IS%3)paL??F?(E+9ZDnL^ms z*7oD)Pix+FNic?_%Ekp$yX?{2xpNtsgmoZ;qfiG22YBd@cQ;|;x4(qyP+RtMfkB>Hzm^k(NGd3bmvo;(q;w9FlqZv|k%CS6GS zneb~gK(g=yA(vfd!P9-+DAd(or04zo{gGa8M!CVAtLt4-Y&zTXod{Z5!61IdNCJ`} zIAGsFR6F;WsT)~Xd@4VD~lk$I8me z(^_XcT9kd>ZP0bTx_tid^&qv!aen}Sp z-)KRHaYcC75ls{|p`;a>=pky@@Zes6@AYuIEl2qfOVHw3yDtwrfwek(OU!3^Y-N?F-gc-AGCxYQ_j}Ae{rBAqAQR)I zJ$v>HthF~-S=$%f3tE%7s#q}P3wwI=q0jrgW*(smG&Bep5V<0Fc5H*H18v)_Kv4PX zt#~#GJxa%F>lrLmS=Ipq3^_RdJMPbm3!9Ty-)8D$cbRHc;Gw~l(CtW-jvD!LX%AV$cxl&gFse=u zmr$O-eS8Xxr_RRDPWNO?tC8a%P@p_XH66d|yL*33DDhtn?S&kd4<^*XB4lS5Di0EF z+EVV9FOPtjBal;mZd5-eHO-(s`rVHo5}%*YrM()3DyOKdyvM|1sb^qt&eK+~EHdy9 z!jAs4_3I|&E1}bkK-fIy2L`iYTxW}+qDxSlEqXbtAS|J5n4NQmrWf`VX3u85N6yX_ zZSy@K`-#}wa{`;q*Zz90vKVt|X(?Z?nGk{(^c?)di~WgVFTmcV+=5?hZkv_`yARAw zbY_452C?u8q<@el0!AmyA?)BCXpnc)wxA## zu(v_VngTUh9B_d_TjX09oYojVQfSJN-Bt%X4#<3PQ!@RxUQ56}0C8Jeb`b3l{Sms) z5REiO7I4ug48W`SD%i?{U!j7&_zl9E`kVPqW|(vnTB2)l(e1j7gEkL<#Q z3-(8Itx)DbWCORA{qn#oKrT_!*?JP;*F+KgFa?bOIfM>v%FjFvI|LUI2>=VG%Ah99U4iM1Jm)%jhK`~|hnJi1G zPm*t;0~HURNe~yfp#Z~oKT=NK?x~$d5Z5LSYOoYwwooC>Z%CMwtk(bB91SVA5mashZllhLsd!P5Sc17H(4eG~ ziS{kGnM33*P-Vfw_6OJ22HccIF3BF`%45{&;95Y()QoMY<8~-S<6MFDv-w8X-U?+5 zw@34vZ&UbkD#u?R+>}O6Uq*6h?a7K|=g0`N8wzF#!kqy6RuaAJ0|r*qr>RBk3B;Aud# z%RevS{-CVMj95bN$kDTam%8WV3(jF@W%qAR+5R}@{%5S8=(D0tc9q(p)Eto(|L#~J^oO&<#7_4n&U zM0zX*uccJG&iP%n>ll?#*)fgMPNQWpWTOFtz*GbyF2dggFMXf zp+R8x6*K`C>VM`9epYO4^G%dn8&iA;=Zzm%VmvzS-po!PJXvE!k0bGsNm#HHV|IFx z+V7-NamXe2+S&EtyW@v)B_E~OS? zmI9*{Yb`K;s|ACu8%t68TPl`?)du^03+z?3(ww6Osb4H~zZ7XMxvI=rt|sBTlyv`h z5WUOYFYwdLQsAQ;bxtIsCUl0pmC;avB5#CA_Go)zEE*$w=*|1!QHbH|&Y>FkH?=(q zbf;UklU9e}2Ci!v=$7vz3CT&v$(VrC(jyf!($5n zEMt$|Gp8Zt%8!3<*hpo)nPEjMw)S;xERW^Z$=CWFmCc4HH`$`!&c(7l__63g<_dB(B`r4sm;=w*Jr|VkPPd1^Q<=PRLHT6 zN_P!6C@Q?J*nmRfM&KqaX{UeM(oRKXYlC1Ne4vwQx&*EGy?i&&OB5kd-8hir}|6*+| zPCRO|K$@lFy>MFcgBQK@aeMT9oOB~xV!O3=Hkc#bSp`D+q>$2R1q7pfl{H~qzQ>b)y#TY)!|PvqaFA7ucQj97lt|q^a!hzT?zX z*_%yT)wp6x=}fHEFh7dgxc%?xkwn2(Q-YneT24O0r)A5Nd(k!Lq;&kDz%85yT0t^A zJm)RLm3Fz92KN+r-`km7 zVBW4Ux%kGh>uJi$2TJ9V_)~+PBHs?UX(GpO<{3?cJd7Wmon_AXu*kRNaztSy&t|Bk}#Gx+3v;o7i#Q#Xu`7ee%To^OwjsF)m+%K0TecK5Z>Z z3yLem(BP^J&RgskG;fy?(QDH>+5D?q+mP~IMSH)G1ENkl**xD18 z#JC`zTWu|ALKX6bVEo{*4OWnMzRx8jC0~Q^=Ee`3=zM~Lg3x}%%pC`l!iF<>u}K9B(E9AR(mRcoSCNx}0RNtu0rfP#sOPArzftf@ zZtk8lWzA(m!WTCFJG*4J!aye2e93x*^LwWd^d9J1IXO8MtlhtN&ulkv-&eO`%Px!n>BPljq*BfX^pF+9pwMUThh&_?Y|}N`m&822VI_Sj0~$O zJ=d6>Y=P=VKyQLU+1e7c-qZF1gX=a+)97p8jzl=zSj$6Sm<^2x{8*Z{!#3mz>t;%1ew z-T(39OSZhDz8*%Dj3U?CKsBxFy80pf6EtDdb8^B0k`nZiHMTH@wJDO&S=iX{0m#0B zPrH|jtSyHKr(4={cAUO1};Y^9;7dybp6xM+g(eQ2W&7wBRj$&2g@+*k7xQ0Wp;5REcWnO56G5eT^BOh-mH6`)3Pv%PA z^D$>3U;W04Wplr3H~mrmhE4y9^n(}W*D%ewOKdm9WyCn#)^ioa!ad`wC{W zs}0J-hNl@~Ah?K0ND|7+Rqb0<=eiF+7v`|siab+IolZAS)V~Hs6IDSC%E~a2b?dX! zlP(9)`5nRk4$9R#WP9iyXsZS01jg@O)x+}bD*A>kBT^@r*ZTAg-6+sE-7HjR$Jp0? zHa7=v-sI*rB*D4>Oh;Z(@n&VLiq;u(|BQ@NrOkE1{ z*+3Sh#A-D z>%X7R7CkfW?4g?5J$5oaCTM3TSjI~Q8)tXQb;?=#nqn%O()o@$LUemN?}arb6^`@f zxU0h&9dr|A8bu{-NvyZZh_3wVSLj^EBZeQ7!(@I12D?(nXxkcu}| zSI$NJNGqIf9lYw zsHTvk4!MOXv%I^1+9zdCLw@pJl?MTtKGyLZtU1t?A3;vM5euy1s(?dfV)6#(-uJ5`Vo0JWZM25Bns6+1NhAmBKBtLXY0(2jG#=1L|z~z zAsKX=zud-zCb0xrCsn!00thl5wIK6}2PhSYLi(A{ffZyuRyPkAGEgV_C!HId=(@}; zEFdp|Dh3u?Df^Kc5Q_?CG-gJ5$8&~n`?Z! zqoShp`&)rr-(JhfQSSqZWqr^v?(q`zl#n#pmIS{@qUjCTh@q1q2fvI6)Qg`cynedP zoBKkp`*)E0I9Xe@yD(oFpgPvykbgZuL%IL1! zmGH}eyx849RpoTbYo(tUy}M|3=H&bVQiA(TmT_MCl zy#Iy+lCa|AA5?@NAI}Men?D6DX>;?`V|P`sEPt_`{8;(TV|r<;>(&`B$%L)0xFmZ! zCL2y&BYgcXROZFclPC9xXzrevB|ouuHhK987hm8g=&}EsP^=rD+C4RT6+4|aKd|$i zTz}iD;50(wv(SWvajuZgH2a)NzG?;LlcxBBcwNnptCx#BxaX|e-MT-ql#Z^hrAhXh zSC6AOMp(Y*ez7VP3^G?~vfYcofeouq3>8zljaL$%o>ZxX zJ9j38p{bPrl1b~nhq{7;L5c42_7PgI$usP$l+Ymwec`k|@$lfx?P#|-Wbsjgr)0{D z@))tj64*Jtf8x&brCG%S#qGLpRj(*pJmTf$HPl!TeD~_F<>!Gu_|#!%T$)80A4oS* zzb{2Rb9?93W5)R9B97Y2;Tn|N_yZ!zF7>5!xe_UxDo zX|XS)qF=Bj+i-kdc{L(Bx<||eo#~;#2301}qL@;*{n62p{*kJg|BsW zo+}mAnz>5iCZ0%Ly697{b{4;C%B8Q|aw+RMbJO(8!4Chxz!m~$X0LhUD(1UJKN zJ0EmBoa13U>mohVQ<8OR(@ z5=Q?IWp5o7<=XZQqaqfHSTraoA_^$dX%U;0kQh=*S{fu(l#tq}l$3xBF@)66p`?s} zFf-K9NHZWYATjVBqxbzj&-d52UYD}g-smuMUFUfo$MLHxs!MIg$Z=aL!;t^U_L8*M zuaDQPkxSQ6=FPUXW=xKQ=7I@08IG{#&lMHc20?hVM%K20Dofe+sc%*#s>ur#(&d6K zSh~tgcCCi?I?eKHtfwgH0tIn1XrqB-1IZX{LGpplK3b0*r7H*9TBiETR7GdP=iCO@ zYje?l8TKM5V%V22cW>Od(YB8wf#aR`_7!G_`mLdO{o6w z=IkfZBJZ6CNo)A_Ma+)F7c0Sk0?<6g)(E0C&k~Zyb6P1U{LGpJW$V8iGEmb<$cV`YH4lLr^(>pZkP%93EW_}6p58Wa?}B`kbJ;o2!WI<6R{vdiue zVWr%gJSZxxl%I#Ub*VbAa?|*Z1aVoOoJA01S{P6yo~6z@aYr&;cFjx5MJO7pdOL61 z(%D{uWFYTB4%_xC{ruTfyuG}zP<>+uC^*48veMEKFJ2sgjhCQlOY2)n)Lq;z+S~Kz z3$f^{7h0=Dy4V`%kTt;CIJv4*!Y@ ztTQtQT4Z!~^HZ*7?zy+@3<1%mxcx%#Pem$-8;rg3ttr#-FlC)#C)f&M$b(r z6(RE5*8|FAlCyK>Dh<`xuX1s5A;x|IXpPiJQtMMe>1UZPD&yApVh9Vlt_LWYdLJ<*IddU#TbO;ct(~vf;TL!}=@q>NYc0HOyT$vinW-AL`NO6qIq|m4 z(vY$znbkuR`gD$+Z&MEg;6sR#cx3vxxmBNxjvK?zGgwYt4{t;zp%`&97- zRww4lxu9DywT~87wtSJ-xT&N+_8vz$R8ORj#-p!KyC$Wih(zev!jKj`*Do52RUH5# z`=+q)>p4(tZ+9tX> zAjlLd^M#k^u<7vjWh$h9b44L>n~$s7`{7O`h&wUYwaFPn#EE>yfd%+wnu5INz1yJ73v}sGJMVlMfe> zh&w%S-u6zX?d8;D9rSgsERSioKbv8E{PDBG1Cuyzk3WUoDAiQXS4UM<)Y0|Eh5It8 zt+TV)7eb6Xgx?X|4^Bs?d-zQt3Q_1Yl<`p{;oG-=fa1VZvroH-V|_y$von%#VbADI zharbxV^5p+HN5&(x%YUtwV}v;?D}+O8tNs&D8v7LFc zw~%Po7Li4qXy~5$aEg`u2a$PMT`g{|$t3e!*iQvqC-Wm6%q7d9=su8U+;Jmu>VCS$ zvRuWl8GjfS3miF2zt3=m^qu*AX7u{JKmCqo@+9t0sqM(uyMY{TYE!KrQSmPP+-u%I z^e>r2j-G$91h%g>KdGBHFV4gn6Fut^Wx9CSqY~xczX=bt(#zNN?W=N#;uKpzI@rgG z*gguFpt&8<>E7F}Dtmb_X)t9t&*bE%HyeevLL^nxU`(`@Da^ zpNWIWL|6Il0-Vd$Gsjw=fAZ$yn-u;I=4uEWx+yK~P*tg4(x>9sckE8JMuJvqMejmx z{wt7MrmHH37i(ypY)&pnls>lUT??Ub?=czz(=TGEP>TEKqTD3-)Fb7nbdp80=$(tx z`3p6+zxDK-fjXvhs#@~Xpr3KFazTClsLK+!yK#{re^$rY_bS|$xs_h(un!&D!&uA; zIHFp))LX*cYhxR9xy%lFn;X3m`PfN(*EM6Q|MJVnnnOjclV6sGt94`U;j;Y(fN{FZ zABP=G?puiYG7eD+wuOaP?r^DH#FLj+yg-4*T%eF-O~_PN$k0fLy&hXsQIX9Sh`My} zxEX&x9&J=qAJO_o(X;$RVjdIh(UDB;_jXoR@;*_C#bINwyvrA1?SP8jf!Y|_rs?}a z1(-ImEL{_mRGX#G0|WZMePxJ#Y8iXQ19_}z6IPw-s4mfY*+jl~8vJo3wSl#>w|f^_ zXrL0GIB^0o%t**Fs<#x9ltlSGrMh|ep9NA?j=(J>(*}u@FdcigwFxn}-_!HfGVvV7 z9#>yMHg>(9pknLby16vmHnSGVwbcB&1iD4P;L$SnL(i+p)7n;|AEWJ0sx#7adklBKK_?>qA}h_Yrl&C|Lo)vouG?$5VX z`^t>s#KS5sMPvs&fG^m>kTOR6rr9;G^Rfem)b4nU} z91QQVt)D82V!R3~qGMO2q1jXmOpmP|u;VUYpw{ufs1rwYi!7n6p09y)evW?J=3JbE z59V7rhGsc`&|E)v+@+w@^&jqcU;6vwr>K8DVR0V!D(H}X;8rl8MDDeU`)2WP*G%6o z7wrK2T}EbRGauv3lA;Kjg9n<-ih^X9QXCGx0P*9t2;R5G!>iM4Ljocam1A!U2{qAE zC_RG#cwrIVCHwP7sqM9#Laprvc;R&+8V*hfH14FgNQT~xmW>*vC*~}wm(N75(P6hI z#kr3C;ba}|!V$n8bp$$`C(QyY^0vn#6`f@g&L%ay|4$lgdPmr`|4F8OaN&Ok{__3r zz~4c^|Cev2tMZ%)ZJ1nv-}Y`A=vNSv;w8mSeei(pvcS3HeEB;n+z`XI5zDu1*fZ~U z_Ybvd!11R}tAOIRNbfyZ%w10U7iTi&V?+2XGM>TWKK_G$@I~`|q zh_C7=%dlXHxBStH7f&B;)BgQ{^Ks?wor@p&8vpU}krYe_N6XxLqb`M84J~yb-PW-g znx8ov`f4})qGo*aeZP)3RWc}v>leachOKgo}>ocu%O1TJhJo zFsb-YQ9!ddPB2W{&pn|<#5512tsnUeN-s^qt5M%eJ56=*+;M$0OV%diLa#02Ky}sU z9{Zg?YO8eDKMZ?f+s~hudw`%c7Jv)Eef8>rJnCadjvTT4;3JVN&vUNlr5Pv%pzqG^ zTY&BrX~}T>@H&a~&GJ>_c#tassd?@D_wOH#3%M9+&0yeLUG}bxG%LzJoCKEwiA0vV z`3nE)9T|a+?1l*h-$1r3ww*Do`KN@Hl@+CUjV1BIC5ln{Hichshn|&b9U!86Vyv+X z05HXp&V)6?#+VY+%z3|&qImgbbFJ0<<5R7eU3y z%G$KPE=1Kv1#v&y0aS`vSorP2_Qmw{xD#XWDYoJpCj4>Gn)Ibef=1;{bNZwQQy)`Q zD}97~*~}}=oL6v#JN6SgtRUf}^f?j{37wk3(jROfolk&~mXkdSW0_5&p_-hW{Ix?y z40A|%J=~LJJ=M5CYJXnP9}Dv!RRf$DIle6$XHNxB%{=(w?&~{*>>Xl)#$e+r6(EL; zaNjdEzdbU_ZraEuHu8p0#1Ic2%!vGHj4EHhrmTa6lx46je*OA#moT#?Y#96D6f0cO z?iih_sw$PPoVnI!GmYzk&P&}8JHeza4LNb3h*HI9$!g{6M8oZWZ&^K-$(Wo?!;7yU z9+ApISwxpdV1OgczSr4IXic+*Hu=E!k8fr{DTeNNX*V^h;B)KqAx zm3f2mZaz{&vIvp24c7wVnh}lk8D^KWP0IryYegmFdb0#x2S^Fp3iOOXE)q256GkjOY#I62y-=SJYHRLbmGKPoN!?~|HaQ7pD&>hHhg zTL^|C@{ta$5Vcjd*<^O>r;9i&bj8c|fe|ZSL+|IMg@j&tNi9_wnkAdDLAWH0ly&^_ z21_Hg20KaKqFzPDUu^b6O6^H4(q_r?GEnuvDF#Iy+_I?)#3Df$$FzAf@fk(CY7c(( zGvXZ9Q=o~)dPC_CgKc7ZbGC~A)x9*+s)T4pIl{=u2u|d$)}yzX^7i%bsE(7oq*fgV zJH!BqL5Evu4K_!3!C?nSFB~}^*q@2rzHL5us<7|+%y&3NU~dijzJn5u&Jc#^QD_iE zM5llT(|R!mAJt2WzuXRfG_oooIr(+h47L|LI$Bu!#LG*Mz@H@<5|+3gvKf5u($BSL zT5o*CSmnzQ4)GGBA=y`pB6M8;6*&Xj$KQE}y+{^M@^Evr&UiK4`}$+&N>xQg#WJ@{)>ANN`SmSvLTRVEDl913`B{$x&BV;!>dc zr@EwDL8e#L6$}$I^Vcmtec*k&d7;$(ChwJq^jD@Ff4!?R_2Iu-fP;BeQ}3Dzb7xV9Ji;wosk>PTVh( zrR}Tv0{@kv6qoQH=(;Uk9!!T_3w|T`KBF22utfMphWi%rz8X%p!)o|;?>gt;gMgr5A_9?zF*DaV2&vajZT^{S*bcI|7PZa zDd}}d7avTkiB%7?#I z%k}z!uGGCnhJL(X!sLz?m&Wca$3DBL@797~rti!ZW4?z+smgcp>|5K9QklN6ZT>uP zM@DqzS2!*0o0-+gsDXlV;#Z>Bie^WV{fRK;imKMi-Q1m4$40jDrqcD_>b^ohaE3_7 zg~04bNiS1qJqiGif?c*sANs)1uizmM^o)6~b0W*zqDmJ}-{FkzpEavMq6H8E6BU3i z^O>Og5089-Oa5K>v>@5F8JaE<^99~_UFv)s8s+*pA&wuw;ez

    T+UGy}4xH*lUIwhQi%>QV_C$zI!C2T|$$9!H71cbc%GaJ+lwmQyE<39XdX|%c#{mv)HgmpD=&j^tj({i| zt^}2WXZq0IzrJ^OPg-2O^2+Aqj~}Od=G-vz4$_t4OTD?qh2}tycVNWNS_;#o9x(Or zxS*`8yijFKS!npJe8YIg;jK8XeN*oa#+r(NMUln%I(yYGYE%^~K~dita(;c^JrQ}J zzBAH;vXJ{z?AYR@jr`H$+X34pCKu5&2waqG2us~ADM(ajt6^uf&ndz2q#?&wIR}O| zjpE#Qn5PwxIJAAyR=8WhcVR++NMV<PH3EM|Fh6FIjbiM)hb<{3z0sn zNMc3BrmS#TxDFn?3r&jZG?Kd1fp@7Ic6Vzgcfem|S(U{|Z`&Hr{`A~Y>e9Y?QvTB~ zlPe#g8;Ma$kbi$*`BUOxt%9n8L#di*Mg-21DekJKE}kfa^nXLIFfsn#pFj3WJCFQl zD?ug)rWOh3k~+%NP&>bh^Rx3U^h$js4nyFdDdU4fHLUGHADp*lpB-y*jN;|fN2x8? zSQgZA5gOo`-Z0K0TMHxfl6mhybSWT{Sf6Bcv*Z4osazYJEtzFAr^&NG#!qBIsqS?QbI&&N-~TR6W3Z;WUK%^ewp0R-tk6_zy2{(wq)fl zO`Z3eiJt$`&sCQGXWx$WmO5rE)cqE&G_I}`;P~A=S&>aVNO1F65ic_y3CS}v5Td`K{o2*<--I49w0{bd-(_zi_0@DNn;g*??+~#=)b@ef(~R zUQhue^K$`)XY^eIdREOihNxCmhRtR(3P}M|6BPNoMSAZUx}a4`dw6uq*O;Fx4kM17 zUF6+BTfQ>b zy7NO<^;+fb(FHAq9&UYgP7z0%jMl4{oK$Z_HLVQeu=jBp%geC$hL zEV-5qMtErI`ffv?X)h9%kPx$`DHi@YZsyO?$%_^8JU&t=OWue!e<=3-mynd6!>>~9a#?> z(~wo0FC@y6UM(i7s# z0=5~hKSSAo{RKGi;CP4MF-mei(g`XE8jTN`$e*odx3p2$UD;qZ*G4_!({qQpmx5ZK zAd`1CxmZuxx&F2+(TA0kZ@lYY@2h^3@zv-u-90k?_7+0#HWd+eBq^DCgpU#eGvKj^r3@ttEkcCH45r2o`fmjD8r-vuv z2mZ;_L=ZHi6uOP4r>B|uk9f_*%R;{3hOb0&3uP_MgtuB(8lsH~5(Nhws{8Bb7dq6s zyT5zr7xCT)`bUhl1wsZ-)6!5t0GT>L&z;#>o{1GP-k3MOzy!B6G~Cgef}y;)BV>bH zepwWo)n7yiZn3$Z-fi7@(MpWfgKd^NFG@IT?=IdtAbW8T4|%9?D}LJLZ!bY1OwZ4- zJkWK2bN_lz#^J5sKQd*A({lNzJl@b}zLOY%=@BUT;;UTP7P%on&2_U&Rse2Ke-#e=#6q!R!>OgApzo}C<4 zgYgN#Fd!3BZwM2R-Fq+-VT}@d>%D!+XBZT}W1zji5m%L!mE}=jP&9JJ>Zbj_L)%@g-LbrBfHWw~as#oBq%?%BRj}XvSz2cycumWowY3#6rYRSwG(az?jDEKe1p3B6 ztFr68wa}Ziv`c)yf7m~_z6~5UY`BwI(N5RjeT$dZ3!6I)v#xJlH*4*J!|hlb=|w`h zx*8o&K!77r2-wijW8XVE@-b2OJJzptAP|VRJNz+9`3qGdN&u1qT6*KcJ1uR>1bd9H z)+YK_%xu=r*-p|?564Gl>yx(b9v%p!vAVjtsPw#@ zlhbJc!M?)zBr=+oNSvY@Q)bo2(RFtT2dU1?p@%)pfkbla1tBgGShH<#}tVHlm177y;H;bRMjX-s%sH>aX z+P1sAT15z9v+`ow&H+>g{@nnrR0lVyf=mAPq-q?3%pi9#Pbl zBA^z|(dJE%j|3nvp%YL*3KF*ob37q21E8Trz(RbCeRaa`2#q)(sL$u|dqoV@D4hQT zP^xk@Ey`mk+8#Go#-e;j1^YMJc9VwL9iQ%=I(5ocl+~HHB#}hg+%)(0W{y#6E@k69 zs>vI}j2vO9{6|&fOio&hq$Y5~eXgs=fXU~H!+<9(Bo?`BB@66|4IxqSa%Vp}gbYl= zVQfu>ZG-9!*Rn;;fdkf9Dfv7u91)wBBMNf6{txETe96S zKdMe`aT0vRZ8J~_T3T8xoNmJ~p_%j1kUtSA^)P?B!Val!6Z>eN`{14IysMU=Q60!X2|7rXjA3r2`c+5O9u6cN?qG=YF@57sy;M6yC$ zZZlgtUi>D0?5!Md|nD8J|^H%1!H!k!nmPTKGi^@dgu$&zlub7_FR%B0f4&t^$jw34+d(TBU3?@#s*z*_2cpe;)D zUo}47N^p~i0OD_k@4Tos{Z0TV3GmlCIrVI%IuE^gUi0Ox7F)=jgx1L-)>@deD9_Ju z7_dv|`J$S@tnu_K_r^aZTxxw)MlE&x7s3*HYT(eMGh(8J!mqsem#^Bx6NbPhkZ0;G|;KSa5W5a_Ydw!k+BzouFV!#mAm%a%l`XE7R_G zX?2au8j>G_+TI$Q%@N>~5q8H-jS@=y>(?)R4qwH~XY};+thXa4{s5k(5|D4^_{}9K zCPdzk8vGaxw-=n0!wLj&0lc`n9b5~lnA1j3}3+*dx7f~qtZr%b)WP04Rx z#H>%1sB%W%?1-y6zij&lA9gFSwxRe-t(yOb2tvhNBl6YTP@1m4zq;ig|F29W^#3P( z2=l+ghyH)RB?7qQ!Kl^@>4PsCstQF z3qW;&ClF=4Cl7N`B*7CM`hXK=DL#Xg#ElH}6H(IKiWdUWBHz2_#bx(rYEGNNI4E~~ zarKdt;jdjAK*l-ahg+TC55gFY?++>Vax5I{o2C%Z-(l2$9^z)6o49}^(&k$ z43EOEht3!GqV}zoJH}fYul8CF#Eop-7}RtfbWN8n^`ZQLVxv4#bp=y8QG%GYx07PB z>GJRGKgfI@EQxnffr~m#a(cf4m+zAK>wOK^ zM?Ce78?XttNuqHX{&5_lCay&bU8NGURZPQPzh7O8zw@M1-gmQf!q=?U|Hi@RM>dwI zskEpZrkkFY2H-^Q&(Sua^0(Dy-!Ypek-=VtWnBgpmmoSteZB)^)aP(K7 zB~|ZM_&BvzgGAg!yPTbZ(M#BsM)wQe$4Nb z2b_?VMoo3}^}Rs}zzwE$A~G16BThfWnD6E>+FWA?+6IlGx75~3X|BRsW?SCkmyK5J zcg)g5$9uzq){EpWQL5G{@19&4GZ@{z081N&IH1UG#Nidiqhpb=-Fp6$BDq{z5rsKi zN)bbg3e{EA>o!b7Dn_RESWw>)9OL9?a4Gn0TIz#}nVKL4L~P}0e#d*??9J+*nMX7C z*(IfsAj+t*uHj{Ng*0&-=lQe7PnT^l1#7L@sCxfgg;+LYZyi0J+f0pdjk~@XvaMkHtUV2 z84MU*TNRET;Rz{yzAUQIk)_ElL^-rnu#-w!ymc|An;(qG zdcChZDr2=|Y2tT^6)*STJfoZuTrr8u?5N_SW`6UY;lt~^6V*&qFtyM5sF0V?^J~eS zj~;Ps)UgO8?dER`g-(_KN?6+bMjtT0mX^GH;A2)sm`HE7QPtdXIQD&r<@)GmO^&Rc za)(W8s>GYY{@{Eo>MdB7rKX>Ui$>v7R?HOXQZdkAt(RsKuttt%VRza3p9 zMwIGzPkNXxL>>em4JH}Yn~Q!hCZ|k??2srf>u&wae~4C_ zxuq$W0XNQ^y4E*h-4~YU78f66rkgwjR`nCs#z7h;Iv6zJA&*qg6B3vzBY`8LNSypr zyJjRZg-##+2tA!Yy1ZOBwn&@z5-6W7fiiS8v8iVOR(ED{MGWf6PrJWB2kLe;ks1Wc zFM*rGEx1D!?IRqm(V78CF@zOnX%zOss5Z4Bm!W}u!WDfK@*mQPn=k}dDFWm1wlKKy zF@z~IG$^sP05Zj9R-IQd5T)kM6#4+9m^R15# zqR9>UXY|T-i288e$w?#!^)0w3@qe9MF@;f+V3PJwvAQ4Vb;|hQj<|8bl1jBkJwFQ` zQ!3dTcsle!>EvT4ryuwkoJ-Ea28ik!Kq}StNI9d39wKX zfjduuCjbLU1i;j_E3h4k)Ie#GsaY%o9}GaHvhC6nxo!acL%NdF7@yd zL(Ykk4sIS%=bJ3(+J0D%i4rgz4uWNx=O=GC7V1`mc9==vM+kT?SF2o$GGi-ef5rss z%b>2#u2lqkm`s;~=*{mZq@qgIfBN;idOZJe6G@T? zFJ5caooa9aN>9bo8{#VIYKrKQO|={KnS7LEZ1DB?BTtU|b8+?EJq#S;d&sHg3PipC zs7S(vt?!sDr-kS^O9Us?kPGpM#jqi4*g?0$Y8mY*sN~q?ov(NY!CybDha1}E)_%~L z^vtiPZS^I490>CN{q_cmNAhzI&C;{Q^OaF_djnT~f6>BJklHX_E6W8<3YH^YJSEqRBU=-6%7l_YlM<8NizFL7=6HjWH zbk_QTovUt*Fyz15brw)JP$5szxqP$G+`yXoJh1i6*J*@-p*IdSbKGO*Ume(Ajdoch zu`e=M=u#Wt-M*V!vgJ6^aO?GNAN3U6c7$ZWYNuy(;$EkiYN)mDrp!uiP7-|Or5t-A z$ICROUymIb4K#?V3FnX^b>4EplyQ9KD>+;LG?A7jtnQvPJG=NEH>EAm3UIA74EFXd z&zvqL(vvO<%@-0hT`LyTW&bVg8`))}yrA!JP8WU3v#oOlmA+HIFYMqHcSF3OLJj$L zG*>tgp4p{bE$t5JOXH}+{i@Dpf|evoA+r8j+-6La@hgSM1x(F)=aaJK6%7COq0W`c z&Oh>%S50k~Cl#~cf&?D_3i+(62Qu9x9I6-pN(z$gp{EA)Xv>o``i>ZD@AMEWJ39rD zv5!ks;V#<*_~`~ezes;i%qqZ74yRBsI6$rsWcEG=NeHqS9t!Yz+$91h0XZ-5?27w2 z+HbFJLEzUaN&c=%Vc&wpk7Ig$&jb_PgtK%2?l017f~{6IgPkk23CJcDL(D4EdSYto z5vs~Muv18;=E6*<9oJI)*8w4>v2cYs;wvZ{1X&2ae{i7KfNGnr4yDUyV4@q8xj>*u zLQ>au$i)ROzg&cYh9X5CwN1Q0`q?rukzP}Afqm=frpNq?xGK6Y%_Nm~;*aO~@YOM%~WRVz(ivLI2{bD1g&7vYHM@B*cPoHhCbGOeZ z9#>UZZB||LOVGIO&~=;S`H=4V9gAv}*0T)$>Z5~KOzM4{j(8CJxwZC}*oV^m{5NA5 zO!X^o3dfF*Ts3aKEs**ZT8VFc(8^$M{Y!v4&|hYr=+V6mwIpp_*)K)9EQzueXsEZB zeMVd)Blw3rQqbX)o(9%wOTL0J`i3Z#@A$lkmbkVgp)+oZ(k&I05Ph+`&vU1=o;GgQ zdCq@z6cV7~^Wy1Ei`;fbY*O}Fj#~X{cbI+Ol~^BOz0OgTi_Kl)??NDKiTXseeqDT7FGt^NM&eK$g|LGp6Q@@@B~YOE*d5JvgxTv;qT z^)%`yA%<G9()=iHz&oW$fKMFG*)M&W}}6TpCR&3NLH=C>CyW9lGN+F%kkorpzT<;)h8l@&O2 zJ?&u|DMY)hU?@I5{>MwVj`-Bn;JyXn!wT@+AM@iMb4Z-~g#&E=)dK8+{)wW7+T3B& z>eG(c$S^V*jDbf%WsFPU*XIFQ2T+h8Qb==XxOB#f@5YUfg@s+~zM!86CgA623lSc! z{=--o%PyDb@vb*TDf3^<6suNlG9xB)iR(+h0!UT9kqz^8Zr!|TiU3h&>(G#7#v+b9 z7KAO*0flktsfkPeZS+$fN^5SI9HK~d(e}hH zOT&-MXXw$*5g$9Z>40rdLtYqx_J2^3)to7XOlE!7(k-C&VrVe2z7aM?PY+cD*CTwG zZ;=|kSAOl5Bv$bsRJW)D;d>lUdfj3>`C9=INpv492pieq$BmSZ27^g}!~Ykqc;Wqh z^KEiTd$vH9d+IJ}c?^D-aedEYp`4>UwB%n`v}}LFy<7>*iY+V7Q?Si;<~VeHM}_)U zes)e%SB zyt$*7P~yQglp{Zfz-fJys?V^_h-NHl@Xbed$%%bRaY5~M<^~+p(Oi=Ad4$mGef+@BEqwJo%TW@ zeYR77#j7SK+7c#daH%OfdnS4>ZSIJ!tF4>8e|fYj6FYa?Lt*Q-9ImiJ3^TJ9o3Ykg z%%OY#(|(RSj2*rr^f|wwy##5T;K`l{Krq1sGBa+EU+JC=epyBxI_x6RyEtg^M;cY8 z`tE6rRqwdZ=vE}d2S-hT;i{e;$JXeOuh6Ve*27zyP)_`3e4ZoD4QaT&ciVHW_{``2 zYlqycJ?w8sI3CoIze^s=v81#uKljidTuWmfh&K&+Q<@_hJ)BFDP0Po+i}PK)nI3#N zH-A)L(=Dei^TM{xH_vX#3q?~nVc73H|x53)8Ob7~|HtBmA)X+}H zG@%f47V~ucol)n3E)sgD{lu@@tLg{!j%^G}R~(|8A_-^fzl7C$E3O63nOWo;sQG=h`dmWX6;{1^uVeBksL@Ma zF-BOZ6rKyH{wIn?M_x?7<7u``AFz60;YGIVf|yI&syyTHVmlW&ZB1=$m3$n9b95bV z@bN(<6J;9%{h3gvA1Z^ds;UZlXWd6gc$P$hU;#4+hsmQsbo}TK$H74Sl0sH7RDDKr zuCdgcXq1P8u|uNcpliwE;Qso0>4HWCXs8fx&=OTWe7Be!BQ%#57y=9I6~Ubj=`~Vl!SZ}}-*vuC!W8qu!F~-#TbXk=Ksn(2iwfTm8KGd(?NBhpFX< z<_72W&bvy<{93b2R4+X3`t*%PlFrQKTs$&ZlCRp3KLcgw7pRjDM!7b?IGUgU%a6}s z5FaWPx$5Va%wxHPhF!3u1Ei;2cr{G4wzlOCYQqT~< zE&2yMWR}R~)7wFme({O1%#U0_r25_8yO=Hmh(`6K z&=tG!>FPG#6Ak<&jRoqOea>?`U82LU!g~J*pP$fAs){_1VZj3|+J`y4CY*CEvt_*} zI+`91BrMzeW>!s)yR6P{p=PLv#@cAJn-9kGV8ITma(1=)pF&Rvl?1f1Sy8n7OD^E% zOz#is%qu19KB8X3d3Ra}3RXFcB6Ao;xZ zQ3y;ky?L~-FAQi*N&a%p9P1rIZq&o5OWnqFV4*j`Ot}o+VhDWzoDbW~V(Ia=+@#1d zy&G1DC(x)umq~2*q7@@PL2+D4%Clmd2%>Je(+)6z-G?kp1ngRyoTyQs)lW$QD&eyl z3N1_mK?kfEQd+cKxo*XM^45w1Sj|)A1cOabOZCfY)q!)VqK;YJaPxY5ooCczKf?q@ zX}Se7cQ!Z{v>bNfobg5O_!YE2Zf2Yrk|DTK!AKR-AN#q+$Y>Uaq|$N>GQ+Rb3HNWkCp+{|TL4p0?Xj0#Ih zZ7t(Mxa3`DSM%#*xTW#5Y1xSg_j@`TXd_RKtY#gc)10OpGKmfmFs zj@y#A&c9qKSOB!GN4{*?UXp{Zqnv?w>Q)5kVQjY97bU zdOk2oLqA55j&g?Nv7>az!E7tf%uVuaaWfSwFh-WTdE6bkY%AGL>m-6;S*0ghVsPEyMPZ81etVbnSt`5px2Z?6@+tT=E-h`AXW zF+&C_eYDQEDHrIRZSq@)rDy)oVV6c{Hg|xTE~7uy;;`;ryLynD!hOD5L25TBF*{v8 z(>t1YN%*0V!Ch6d%!f=x}{t)khif%c}sV$UcG9mbm?=kY~Fltjx-BE z8?+}+iX+1Sf4~med+dz1gOrK>_-l)V)vX#Zu}g-9g(1!FQjbQlOAk6#jyvg%5RG>o z7P)%nN{JE=9%@NX4}HRieSFMwu2_|>T(TEue%C0A2fMhK*L$i-q#s7AXwpw~l)VSr z1oyf5nh2P|yKFUkVY~>sni8PJZ$}yKQtHZ-?G8E48@a)|lk{baNO zkbtk0KNM(81X-RFBXY@@fxsnmy`8Jw#{SU!NhMsDp=Yy))MwAE8dtPll$Li+e4yrO za{Zv}8=2l*0j(~L2eLi0)e6#^#fS}gCRWz>Gl!uGIXSvK&Dzr*T)W%?tNQ0|^2?)A zObY5E7}WsXdd$;#Yy_D=`6gHEC~iA3+2OjYNv`ah?AEj*SVten(+H5pgW2cunPXHCo&RId;Nt0j3mxPVRHnnr^Yg#=`-g+0=MV3r(zu!D zo*IHS;*DW7k;M`THap;l0jOOx&))I!nNZcfD9W|S`3ru){|B#J2!%A6bNg^NfzK4U zN1#s%MgzEC_5w3V@@5;b_b}=!(ZBNU9{@5RWOPUHwp&nppIz9SoDhWtkg`v|M< z%nsTFy5L4MA>d~lJqWf^yNl&G>A@W2ZbAn?uRDSAn1XKZvrw{t)V^B;`g5QZ;VEP% zd70=n?0|Em$aXlKfVl#g!nSOX=KbP#(9LszhQ;Qm4N&p`p9m%leSAxK`wk~5_ALiN zkecOax38A{5$p3eMu=8C(p;-y{=kR}SLMsqK| zj}(xZT=BZ0a4R>}Qz_tl_<}ZO03M{QpghP|qLI)nh;uQ(mt(c5TcWkolXRv|{g)~L zNv+^(+;4wW6}?SS%PML|hfSIn?I1is&F^uF zu<7D7(&Z~L+Ah$mTZsqnH9{QcaJz2QwwHnI! z9(-)OR@S?`X>MkAZ_nt)h3?VODA3OV9uEJ6Zww~(f7P-qZGENK6?o3QEmYv7hfwwh z%BfvbE{Km7-rfl1d{G*%H_e=8MT~$9zx{R@ZYT&hp;%c|hTk0m{V?cmDu;j}CYlXR zu3QATsV}+5}W&MS=fxK&7T)Y7+Cr}YOYS%#(0F;i)j&kN1iVX`~**+l2x+x|$t0y7~w~1<1 zS|+vYoL6YGnae16o&Yqrxyv&tlBIcVpmTG1RKVoyP7`C&x0$u#Q^R21KqOp`d1Kk2 zKwSW$uqjs%GJ-eg$SGE;&pol=6)Tef(J^{WX%Luz`|wu4*GcqY#+$>nalaHPX$}*| zA8{UtA-%TevZji%3J9vnq7-0nK!mzTJ%Wq%b^>isaB!K(CmMY@AI$|lVIiT*CLk2) z2b;C|0M5LBc{A~4-~1l+MUyB98K|Fj^CfL;eAq5?skCQWJnwGq$r?hRG4Jyt#@rC{ ze9(sI>~~ILd6_>@#LKB&a5Zfl&=A=IlM$+~L-2_ZW&8X!1(vM!Zjt?&SYaMTKIft0 zYkSvW1*}B$H;aehA-i$G86Gf5Bm-jsQiY;jN?yx23i4WxeFwG#)W7-#pfxlB>mf)I z;**lzcY&_s4$_PJk3Y;|sj4xUPO`TVR_z6;5cv#>8S5f1+- zjfkW598mgEC(7!G*@I^q zrg0gf2x$@MDGNax+eF7d@GRV~j3Tm{nwo7!OEX&JLl+M25ND(YsWk?+kUq_^ci%qs zcA6J40+(?hkF^nWDY#Sk)f{)oAgl|TTebCp#RO6mDxHIcprRn8=4dO?IKl&f;fY+= zOk6(%VB>p7c#?x!|D!1>em-ax&CmNXdpLh$3AWu@~?sOw1ud?Ze#HDo6;~3vhH)L)w5{ zbKdQ*plxs_!V)5JY(tvO1_kkBDMhpmO2Z(Ps^l#hcBMS=x&W>M912gjRUp~K{ATta zyPAC#qMn!jvWx5HG;D09Pl+ihpgE+1gZ%jGm#ixTxhy0htV|wSBma`<~2? zQD_Ddqb&IFprZ6%z-zqA(LP>j*!jr2{8m00;Ot03_pI2%fJNRoOffs0AMn;KO-4gL zRGENO#luWWo~l-z5|TZrxFGm-4OH<39B1havL-5TIr$x>2o~|HvXXVn;1romI<^=p zQFNkB#5*}eB(~zTC-Wt(9BqUkZx?U;6FF)o+2D1-SsT?o1FwQxGb*&OB{@O9d1}AR09rCmfMMs?uGpW;<#A9JJ2&+BkNpSc=A?}EF$wf<|0xe z=JoJU;n%UTkE|~YZd@pWW2tphlI;laivW0l5c=1aFPsjbJZ%2`TMW2^4o3SkK| zwJ-0q65=f}Wz7+Xbd5twAT5eby%vXw<&y0K*9X^`(0+6rKyaYy1)djHEmZ@oSg->F z4vf&`79}={32H7XmlZ^0e5Htb+a9KNQSJc7;T%^V4mSu=U~F~|=|UL9TPU5}(=W3$ zwQR~~+_GVfIhp6rqN5d+F6)HCyUTzU8yX#mu9DP!nyJ}6jd~Q-2$oQXZa<~Nz?QOdtQiBgWfCl9%#QVI4A4y0Y*Qd|0!Z*~eR6hv+ ze7-5$S(Gc9avORHvGI+rkDZT+j{LfX>01IT+KI4@cRNqzWXS^pKL)xTnH1})W?ZC% zH+N~?zX=)okd#D`hegl=S=2V=g4_}re)zNk3_}1ZfJ)NxIo|6~)PGYxm_H9xdp>O> zodlI0Lm${_lxxrBB(*r4n>u&x>wHbzguF~dZw}4She}ts48arNi>#)H+V?J15>l(? zrujIDzGYl{I5&g_|D^9nwHMs~iOm=am(PGI3#X@Q#|&)cozH`DEn6D-^TtE#S1*KJ zqEzSQ2b`BS10`l`xZgR`A`9a{8G6WLo~ITR?jZhEmAweY5suBxO_1uNEm)G~H9i@j zNZA`lJn}Rf3?S9a>#6ps=xx48$-Aru^DF$*JdS_cMP$D6cS-vjfn(>W&bbmn-Mf|X zDp|hugElR@Ue5>rpyS)FuOjG3dV4`;j4!!o*Y#Zx#M`=tAUevozD|z1Cq2>jBZKAa`u}0=yQ7*+yKjSv zIwD|06c7}`F;6-#|nUD!pR$7aY4 zKCb9L{y`^)5yB!{L7)znovjCLJLruI9l&kvtmH8&HHU@rhhW488)A`&{*l=~h8;yZ z$FBh)aV5KYyzt?xVe>m2i}!NcFVBQU-`fAtsqZu)Fg=mu4ft``<)KDm7Se~_AEwKg z$(>z+)2%Sr@gao)&HNQ&clF^y+io%7ze8&8u0Zj;N`D2QK$~ww2d`f&quJY7SDkR4Qq7qF9=n|8I!GE0F%oyLg4QcF zYXTm!e~Z{UX27-wgXARN)^VG_tcbEZN3wGMJpa|XYGa$CaD<<1D-g*Is1{CJAO;P+ z1L>GeZFp565Up>vEWwPaUoo>9Pw)8fljz?;4~nty-R+QDB_^w@5{brT)@3)vzn}Q9 z4NQDej7?-hOoD6zYh08YE5>8lY=B%Z$$8u5{zH{4YB;Qb za2}NonxF{yaF*p``Wwri9fU%d4xb|EJQUkKj`)};iY9)OrqQ^!4m|&UG&VQ`@tyFA-Z+f}-+%WY14Y}ET(Azh z$zqoI8}64kuTM6zbz5Fqn@IbVi2)I6qYsw{uHld{_wqR9W8A;OsRKJ)px0)V=eQa@ zq%)dwkT51a&#kDvONn=n#|q+YyAxh6yxYC%)f460)}2UAd0)`WGFvk3(t$$u1uWl^ z+1u-ktPRJJ$LAz>q}9q-q2*t|S_F~R!barGN`5lVQD^1V2pM0Wz0h(~ z`YT1yC$PA~xHmr_5-`1ZV;)AKWGZKUl(L{@K>`71BS?csH%kAvRFD%Hzdh42^#~1L z%c)p4Q|HpX{B{@AUK-UPp*QB>2z_$+t%|3XeMqJ39^!z{NupA)nK*y^l-Wa$eesly zebTr#XLy^@dG#?~Fl~>7?;CVbc4i`7)pKn#s-^p8@CmC%yLz1AfD6cUXj7=1O&46$ z*(isE$Zhh2+FN(26=5(aEZVf-YwT>~!@E26Hz>z+)0DtRCf{***3J^(ulK9>79*~- zxh=+X);-K9T9>E9q`6AHdCz8~piATQ(kX%GD!E}|*c zClv~u3%@>nWd}Bf?B-pNPU*R2OPOA}F~afC&M!Dcp{>FjPKK$KSD~Z_R-_Ek?A|{H zEtJ$dPUFPVQLTPoT%6ZmRn80b$0~eua%y7&ZiXY?i(_ zK_tT2`Qbs*`}Z34v+s2G<|ACY;D2QLrfr8i#CL7YDBF!I{3Cd6O z-1yT8W$#0}!fF5#`uAmV_W#e9Iug|v|K$Sw``*X@f4%wt>l%0y6iI@Tj?xR8b3%s!}7e))m4Su%r%>Q_xcfUKk zQ@7(%aYRc!>hha9e77%~i0pSilOuL=W};km>1~%y%%7j+_Ww4WL~CdpC%!$`CMJ!0 zByAOFQ5j!Ya6$$*mroSiVtFh+&q!fK|MN2L|8I7A814VdmyC~_T3EcT9qSa;(A1mPeY=~d@lOzMth$J9D;55W1_a@oI zS|}C(3Z12LkSyF~p)1kKrWU`W95&>g*fRCHb_{A1+SP-9hL~Y-Fh7=xoqZFKhzCNk z2N4umiI}*suv<~yzf z>ju^(;vQr5^TMJc_DIp`@NzO4ts81@vJM^{2n zsK9zX#FrMUyDWFwtk{D;I)D}1R}&_9MgY`laj6aq4M4j^ckQ11Yi1xIxpX4f1+aiy zy2dFirct01L3}rCISp_90#tF90=I5`QbvL$SaJqy<026&l)|odqy6oGyr9vam94zj z&ei_|(+9tLJ@pD2DV_z8sv^88o;aUxtv`@WdVZ_(%Ii?}rx8sCOBIVA3YA>HPQK!* z8i^Okfq>Ssm>FU4#mpGkAe~^P1o;|_GTb+K!omnu0uVNk@tGXoJ;O(9zwhHKv0^M| zaetLp)yy5ZR4~~^cw1nLs1T4qIbi+H>r`(0-P7SY^V#7_b5xT74=--)O-!mm@Wlz9yw6R9INp z1`u+@J$?N|%lNRc(}-)%7m~rMzXbznCISJy##RLNBkS&frGZ&r6@kF1}4p`i%w;H(9qe04@>NJRcPcJC4!eMzfK!bp5q&EK@IWF&b0cs-j^30?+_8^6` z&6ecXonCg9RV`M*^$nKTB)Shz*@E{#HJE#1>iwqm92USzfawF@#c7{YSYOrvJP4k)t|MZEQDI zm>}2pR{o5hcWhZvM?d2|a@~i4|6}$+rvS-&sz(ir?c}9I(?~6JP9sT7S*BX2#ucn|{QXOxX5nob;z3f7`flA6q!hL38rBN6-87 zpM?Yx)q=H;Dziep?!H2wQ94R5Dx44*63RYp@sM8%OGK=Z&@e{{C8^G;uM$wF@# zug$7JAM=o(rd7-$?JYN3I>h&t*9w$x->B!vnP?UtQ8$J5TCyh6@nTqYwROqro2)@t zjWG}2CrQtZO-+AMN3@s-_WU^{o?R{{?`|1BPJwnIxUi^4*h0CIDtz=tn{V;bRpgei zEXz)SJLlj`;|RGp2hy^Inx7fcosJeK=@ewg@#J|o)V$>RRUA1l`aVqR%a6`EcHD~- z?EUlRT|ch5JlYZ;UgK=7Ah7Ok3{>?}^HQDv6Xx@*ur{`|$uw2YQx1dW^I|RYLMT@oy>+D; zs*WPF=r89yG>Fb)xo$_E=;sOwZXRZxFCALt=Uu#hyi2bWji#3Cp43kxxK?!XWo6!P zno{}all-+GQ*}g>w`CCC3qD&89aT$xqNzx?-0d=AmsdW&(oVq4(RA(jJdbVb6t)f# z_p1viak|C<{Fs`XXm;6}rTeC0d_n9(-r4Nk)9_10D#)g&9NuHD?LU=K85MOE6Y^XV zV-vY*(_El(m0CfiQ_&FZPbg<#@70Pgwl6xe^oe(azX5r5rM^-KM!&_5?Tgq0$n zPc410zd8z^crcEQiid4Z3yHi+zC+_GHee^rT0+c`^D)mU{pqXPc$KDE0^Lj?Sl%X$ zzd>DCObOXe4tnYws8Z6{=NyT5>xS#U#mhb zM-04#kZooCAH6uPO0(63SB~Dd2%v$VH+0Erevx@`Z|8&G67sVqS>q_+sb4vlq+Hz#lV}^!R4Ns)${IJms5D{h`8NJ( z^Xi!d)r`CE^yk-B3K?0;4te#CqiIX&%?G@#ja*cIGt_oSZ7%QkS!%6yYQ~VqirP>Y z$UaxEaQb8-`!;B|SEqPo&JgQ|QzP4>yjM#~*TUW#G2{&@URc3GJw zs*d?CpQV46?t8Yoml&@^-Q8r??j%I|EK2HjA1r;oRmny>im___*;v;#GCJ0H$Z+v# zndGrW_=eUa?v#f#>`8RG#fGqMlN+f?Pp7e`lAid!q1q5M=CA50zk6X{SsNqtD^K*4e2kJKV3C`OmE>|0+$o za(-VlWiC{@qo-if^Ii$uy@D@<)nrfA6_~AqAP`)7m5}eH$x|t|RS$gc4Z_|%0eAJe zu{7bU{5pbvbI^!8nCyiwUi_`IwNQC=8HPLorr1#tadzAh{_f5CjtRJ?w*0IqMA#7v->-ObWL4P z7rXDYoN@L%09{wDF*`Ob^I5N7{ctEA*3SJhnpW!MAkh&3i=ySiY_jWg_VbYDsi^Du}sQsb*Mtm#D5MkrI%8$5bH(|)|mouvuAuC2yK#E?Ge>7v={BlD5 z%;N6CqIJ9A<&L`#V8Pq>LeGr}+!qG#u^BS=Mt_HwVX5{v;aBrsxqrcW z?piB2H6;$qv8?EjJykbl?d)CUF?4ox@sN+W+49TK#to;EZtft4zJd!zQKZ+Yl1eVP z7&|)X`fgK{Ps!7j3ZV7tKck}7Uv}&)BgYAj0-C9X{_CeXP6U+}k91RSv6$sFZf*(< z-6`D{kzRW;BsI%sstxxxV5AzmxGV4Up(cLkMD;e$7JLbX5wm;j&{QM8*2lrU@i*5F zvWj=VuGpEa?(jxy%(}NbC#KVVv{otzo|IA6OG<%$?^VzzxD=UV68fmbbH1Lk^CRx9 zuV(h}II<_Wx1J_yd;lAtg^~%nb;!QpM4N|J(tU+yj5x|avBO^EoxE?|U0u(1S>s;k zrr;m|`QH|1$B!#3NvYO9eG_Maxx?G{pPgKiL3!EGTdFgpM*iQ8kUhP??~uqV(wD0g zMf*Q5B@>zxl#lu6rE&Pb)A_vr&h$B%|F17~o%sADY1I1e=(6*QW%s~O~g zNJT-r4f$J9w}5S_7W@U}(=v5KNc3WGl`)@25g&C><9+&Y3?_?v7cH}AVlSg66kBxk@43O!lkzF~ znT>nrB`qM^hBCKL_}=U0BN>~Uw=$RHwJZ`LF#`cW=!KMNO0S4`Fun)JptL@l@Hbji zvbRCk1NAZpO2e>V%b~$)1_3p3u&?h7nC#9QIYUSI>)?6>9f#meK~q#vRCIcE|GRTt z#`ez+dF&xecK`gbyIA$6mU+jEprfzs z#bV1Y;k|hAi;IoDS(=Qo6~#KY~1ua4Axw4v$o7?9DV!XR*s%H zOaq_+L1EvOH8Y~{dayL;ae)^pdnK_2{KF)L8P}4F1oG2(G6#f?b8R0(^YG<3>vDQdkl)O_(STqg0Uq6Tkua0F41NtYeUL=-yxon0n{oycc4e?ClW|Y`@r`cxW#) zWi$6Ar5lB!{8lt)eb;{8!QQ^d@nhKg(_z2UOs@WhX1%_Wuf+}Ej7ezNoAAXJ*gJd5 zs4UkXzB=)yU%q8zaAZiwbkFqADpIEYm5?Ukl;q#&)Pr(h1#UjC`2+>6-O+2d;OGqi zPcp%A0oE_DFNjg8K~T~Ki}+?-85r@tX`&RVz^@B+OM|uovZ)^0XCP~(*oIg}1Gl<` zd}trlPyIarY;LzYlr-ycEW0Mxa}N(^2KumUVrR2(1z^i;=;ee>oCizi2m7iMO< zsNKLJL&a@{B^0`GhWQV4tMz;}rmw$M5lq!U0}apEP+Llyhpyw!#di%%Z1t^c;MP9HOGpAET`sq9b!z^39^rSf48u-~ z!<=rBKwmb;7PZ+6AJG1+^kcUUZm3;w@y@80@??~ zR0mOQ#^nmaHwhJP~NFIxtTvaE_!FJv(=aJt65m1tBr~lAnJPW`bss zdG65!bZ@Vov-4d%3FPG3+~q)~8^Xg*2`T_gS(_}(PxW`r`v}N_K}!L^X|n94NCZxE zMQv?P9JR8qj#WKf1!HZCC~J_R)ej(4@@sqlK5o?bYX70UclR@J&E}~kLd7P69SYg{ zVbQVmeyz~1z`Q@Ne*NhNG)JFFroZO61w6~l`X3-D1eW*IkrkM0`SqF7#Y4mG-fI=_ z-iICJ|7TQ{|BNd8C}>e~-H4Xm7Lqvv4r3pU`J&Jl`9hk07ahOf<6i44#d^nbFx9QH zllu`kg#g9GmP<-_#_GlO^oWOUpefV$F>SsM3 z7kcKw7m@2QdU!aS`A*EEOZIlrVfgLTI$rd7(+e~GXLT%`a@iBJG>h3|<*}?sxL@~} z?gA2H=-p@T_6#@9#Fs$>Mp;`Le9wIX!u|UT{(|X*a(P8#aS;}f`V<(PxZr9b+LSmT z3O0v(Pv)}k-jjjqbM3q%?&yMX)H~2eN2_*}2o=HB4Z3H`Kw`p)3Kv#_xI4aUjm5IGlSnDD2zs1x~0 zIb3K>82txQNh&@C#I?1V71$dA=e4)vJZrqW(#FPy@ z1lIpNUxf}g92fReGzaz-CHtIDsMiNGDLBX|#x`A_CaaAq!?wElk9XYy*kIG#s3r_N z<%JhY_H(FYLQL`15bW|_fGLz?wQDY%Bfz*rg?9VCH#WKJvB~E+KTt2#^8WqLBI1Zw z)lEuMLkjqQyvr6~G&rIBbgE5wf6vS`MZNUi!$z;g+jTe|gukZR!_f}s5HUum-1Yi+ z`tV-lrF3*JLe)43oB0=$sD<3m|3;GadjDmQ^FOarjNX8T3;wNIIsLZH}>KlO-8^3LL37{7<{aH{W3cJ?vrjlJ)pT)FY%2^Ihu|9KUd|2L(( z<^N!N|Bt`aP)g(SeY22p!pl8pKLz+R#oRzt;~R(TTB^3iOI)xXG?5Jd#?9;+?@nj> z;CiFUr=XI$E0$e89<!xv_r`3)OY;hn0^<#if3H)rK$i0neFx=3 zcC)SY7GjD20${X=QM6GR6#|<`{}s@kS_8xSC_WgM)1`$M6$P; zmKd`*@y(>SwCWT|1I=TF1uO({=PU>J}tlShYfZI zg)wODzZLBkPoG*cFDrU{@Df@YaJkF4Qb>^x+_9+ECN@%VB=#ZSPu>4X7ZRE^K6>K- zC0ME=kNkxo*tuk9lpU@TTn>XP5#2ndBffqG5UCq?ci`HY0VJsfB%_X=vz=)x7EGjyDPZ)K0C!okOHUyCNkcD z&*r)w+u^bPDR0teZ}L)pJ1t+&$mt5Vzr8?Q)OVf!<}QCgpvtL{6QzqY;;uNH^MQ?n z6k%sol_Km3=+iP@;N?;hx3jgg-U-OcPa=2#jDiHP$>N+@PKT=wjGBB~g+C2*)rD?N zK(dIX6fksY`~9E-i<^hXInT|NGufpx!U%6buPAUR;){#|%S8Z}DxIfrlQwAgbi-#s z=ftfK3s{xWBbI*X6Gvr`OFuCH&1K_b)7Q)SSVyj5id3dlp~QuB!VhiuVDC)a4p&NC zn6+y17|6ExM59DO+9(My$y~8dW8wC*z{p(GOgE2VO2BrXDl0tqi?T%`gzO%cY@U`-tg+==gZ9reX18mb$Dqb7wnOQ!15~UMPc@7kuiFyjK z55pW8-AdflnD65uJFl&wGp1%*sQOTNs1b9)f=k);|OV{rU^=mEil5mR128bML}PIqzS2 zo$O-mY1A{zFW^%)c;r^8i=zn|x=2P=t?OkvX8qvSajEz{)?&)t0t4Orb>;^JA0ZMM zXdPh1L~?!C=XWx~Gl~Z(D>Ftc@LcHV9L3BmcBj zlL>^BMNW%4&|Bc!^XtwPY&rxexduO)yg6+?GrO?x5Q#+g62KVfLr_ zLnuBF)j;wLQ6X3;tJ!Ym=T9%DP5lC5G)Y52fj&mwNGhnR#}^?f*zO<*#cmLwZtM`m z{kX&2IaQ&XD%2*EJD5$PijJw@cmm?Q*47VPL0sW9*dmMDoXFhMwQC^F>+0@STy`@{ z1D9op9SnBD2_jEle3<8lliJz2WG?>dPqC^I?h)MFin9o`2EVh@s(vlLqmih3qb%=` z2!UF-9-n^|hd@}#8d>8ORs(W`w&TQU`f z>gT*;VoFNmDpOG71jJj}KZEXsT0?16NmVs|-uxqbNYj_EU&qXi-oS4BNZqFZOY3ME zB=$Edqv|c?7YEthsHwJ(X06w1q^6lh>{+K+DwL811+MSuExGBlplP9LPNFhEI{;Rxj*Uq2kdinTSXEk3`T3-BGu-?g ztKkpt-W>%0!%HELW##0)0%8L&Nnv3jq)Hp44zIwi#VR()x?nkK->Mx4{v)VRwuMjl z>cVqGS$vR)MZc)+GUhY;`6c#iMgyM|Jv(nt+eUd`fua z{~fR2*OUg=(_2#+%*xPUX?)qamjHML%%&)Z5W^DLsQ#ugc|MA|lmkt^M_s*XW z(sz`@q25VqpT(<(;#oiXtBXc!2fcK;(;MR23e0FM@!SOeC;ULOKmjx+IuBINQ1EU$ zA1iM(R8?2{Jk8~J<4Fhh=9}xh(?hd57QJB~a?%{2eH+A&kRVT)!3Gv7dvMIUZ(WdU z+BKIDr|+oEjPJ6HUfpwdg&|j8(q()u{1ka%R%>MN`FP2vt^HK@$J~xymD)(+-AG$xc!|YAzEDF3$D+CLh+t)8I@=e zCVb<@*_sX3OiQbEm-`ise){i4Cey7lh*H9f#~XG6FrWG`&N?3q1#~drAGbBRSrNj&6GZ^ zbC0Fen%ss0F&{gwh@EJCR|EqU(vG#rhCYuzF2P zbzAs~Jpo%{ADF}NAfmuAQ+50!jj) zKD~?|^1+xF5~Yhw0a5D<<`x!GUS8sSav^}Os66in?hDLxSu2CdTDB3%9n+|HfH{Hc zXv-T$hU%Ur{O-TY1Bc2nIvkY%w+htV>XYL=1i?tTwN#gJ^#I=$R- z9Qfy-oUzxyyo414*`-Pc7W@ULr(Z@^cHmkztIyH-*gyyA$YM$hF8_y#eMJ`0gH5!%R)zSs3Qjl$G ziwXz`V7WBS%s434;z9jgU0=;Ym<22gWX*8xv3Wa?iW=NX+gkpbocyrz<>@5>fR#XW zffmJJvHk!uI3WSt1Oq77a*z@LCeojM!dJ3)ZK$vBTGf}7=V_T{5^&I?Fp|Q@F$(}V zgE}0r1bDFUcc5N%&wQS*Ug+$4p2Ns7>i|B56upcn2UEby!pFR8AG+YXpl|?LUauXNmEgoHS z1>`Y*;VQU~RR*E7xQ0ZZ6s$cEPXr(k0P+@-b1N0x`+66T>v^pW@KlD=z?M-xVPmWrYZgQb-r0l(VJ=aX%WYbf>7}JLd^_0bBZvvrtLH47pM& z*g=+6J|{XDVvuWnlp^phMp2xKXM~wB@8p#tgJf}odZo7D;s7fp#gTJEPh;;ON%eX% zP8Rg{ApD02{0GE+P)+@tQW%ckBI90V>c>a9G3IFpkfL6T@c0%cP z*T6(wyOe^Nx>+%;t*wC@7+y?^;>C>b%|gu|Nz*LM26W2g=?_^bL;x@B6+0j>ZX`W6zBxqJ)D(*i*Rj+_kf2>sbGLgaA*x0yAuw6lhgr-7HDf!Mi;9_a?E4^zHMX5 zV?KJ&P*94Q0apZSG~xtEl&Zl#+nXLIqJ*ov)gEMs+XggC{ZImJ+I>tz!$ZM}hhTH& z;82(?o1lt%(k2ZD9;hetXB+%%Qor9tzQp~)uMG$p)!&$88UP;Hwik$=YPPh9-ddnQ z-Gf?-hjhc$;{qB7%baqy$xt@2lYc{LgF$m(%Uz5DOd_B=DlD>r*DECefWgT>#0Uy) z-}d&wZi%-KE&xb8#M?t=Uc?4Jx`f}P5OhRk>qU_jcj^kS3}^J%E{;@*<9z~cuTQz= zCg@ESgEdcb^VECHU(W3?UXre2ed10PA~gwen7A>N{H%R$UEiv7{$*%AEOj~RPCcXusI z%^AY8pWsYob#YCHb5lQ&z%4PS(AZn*CEk*A3goWc8Egm#Ojuf46~dZse*k#Tt{2}(0Ws!q#DG`%Xj zw!RBZ8g_Hjb!fz~MdbGFi$2zV(%JMF(tA`#c=kXGKg2R%F5gab7p%WXhSs2UrbC~g z7Zx@2CY=wCf&(Os!TNO1R|UOCIZtR!sX9HD53JVag5c(81nWO|ccbDPGspIz%_*sZ z{e_~b7Guze+*U0?;|c(WD-5@|6A%Ap_Q3~$PIcbV$YP|oS0&elji&Tnj|JEmOyX6D z-tJHbcxQcAYw2SR)Em^+9Z&ZVICkSXKBmwKGbm;w*yL69`0F}9{0_Zb`P7d)mNcEj z%F23Y=a~f0a4}RHI(vJ=3S$B8+}J2Nx)Mpt25^2~!DDf~#|Pf_ur)S+?ZMakxoYnx ztX-`9ZFK9b;Hsv`hl**t>(d@?#>PMM1k@_+3{zxDAm&L-N|GYREPHft6%Imfp#F+w z?a;;BDn$GH=h7|&@`LIw=h=i?MXpY3s!6tHF;~V=nnUR^T;j(qmuxo)O4;HVK(id! zNVJ;)7@OC`&)60+2rv3K*rqNXcN}hM`-Sk1ieiGeTfK;Oxfs1u(b-W}KS-c<;Pd;< ztMRCEzO^I6GwuX7!{N#-O+=Mr+e3Li0RepPQyw>~>o}aw4LRUBQ7|!a?PYZl@?s8G zWE>Q%Wop3S$KZQ@RaMn*-6RaY9$IG@blMT7+YH-HTtH0}<(aDah<)Q5-Sv#s^Z_`v zY=8ROc%EOYjo-Y$!`3BpBw{hvB<5rx3%H=0Tcpsroea`b8E0W)`gQKMDoRgH@S|{Q zWROsutjJs@dxm^B#g5LgOm6>NR#q13>)&tJB_X1GH_2e7#f& zdVi8$Vc#U`klJyH1!iVui#8gy>$9DzymcDKBz!@KHMMR05+>9f6=nnoviFp(>s>=_ z>?1#8`jkqCVGOd(tlNI}O+NoTtBOQ?i;con=o0D!zD0<2SAW$T^r4=}0==uF+FbR+ zgz#uvuk3{J&{Iq0q>icsx}Kr-7r{OKz29xHZ^v52#}kV_>!v(aRrLYA@>n^cy;e~{ zv~aTWI~s$*zcc#_B=8?!Jz5L5zCUlMD0TI;?+NUnA7!shbtbyc_^tSpShHMJVW!9n49Y3P zj9OKquHLpzi;H80kU(u+g!$Y#G_{~zq2_If`2_x!n-|qrDS{-%ENDtdyfje#`nZ2+ z_l)GVQx7C0-k5L~z@4|C^V(cl7=F2Be>A(sHX&M_4HRC;#RZQJW*+*Y@i4>n#=GB~ zIiA6{@jKmnb<*I>v^$ya*$&l(8wyKo(?H{x0Z$-b&R)N?uatem;0~XvmS+9>k(=QU zM(Ep4-CFIF<;6$=KX>Zs&VzR4+}44hTspr}vM7)ihRfWft+ zIIokWqOM&=5+jFg*)fDBfAdaJ`}WdGiG2Ar&@vLnhg|Vlw(afiHSKVF0Pd96p2yG5 zT90@T6pd~c4)4=jV4g@g3o`q4jZ?^X=odbvt_LEMuB#vqe%aDhH?0;#4%a=9yRm$~ z8Ok-(%}1IPpi3OkBDCge<%f>UCLHcE?y;w0%@Bd8J2MnV6N!_*dF(_G1PIY9|?YqK$EVI`Pj%Vo2Qu_;yZ<%vfKQ1xTGZFDj{0w7vh@AU%g{0@G3&imaQ!F;m z(BE>zHij+qZn6d_=F`7WH>}V`-fkIzdpF3@D3tb1J(=NZVQJZmR=;)%3a=(H5AG@d z#H=rGqpjxJZ zEFFkF<7%Q6tiIYHf9Zs}1NZCmdO}o%=Pdj4sKw&Bag0k3-mMN8mg^kx5a;V29*$G4 z)LIm6IB&*_c^i@bpsjertI|%HZrn46wN}l_ae?unUcoCH{tc~oZ05p@BZMg3M7(W! z9f@c6sbcHSpx@6BwK{1YH?qKP$v|&!GR=T5hUVGqRsx*B`MCP^gqRv#9{g=X=!c#~ zJ(ig&QB8$+tBgqg8qsk&^k?z8m&8lL@m?)ErG8HopI6&KWVt;aim|~5WI0cd3Fiu+ z7%23^H?c||0j;OwGT(0KZ$H?TzyoWS5$S#$7wZ(4RXPZ?lVJH23y)W*`6BG7V;TG- zeDJ#;Oc6nIMG?qyxZYnFF^V8D)f>ZMon_eA(lauo@y-7#7fJ1fx?7)#e z@FQ@K+NCsSqb{8mZ02`wkspGBO(>DU%MJw5K|kux~diQ26m?&prb z7?6B~tP`Nf_6N?<&~mvBH^h%x!8#sUAGz&e0C3CoM^KK~tYEdmp)qUSiG~1mabuvz z{Qd<-GJu5SG0OAeuCmE>+uQX5HHCri@24>W`K2eR9W1fXgfNr3u}2>orMK7t5A!O{ zX7*1tFO-`x_k4iR--QwQ2eD%J2K^;B0i{Tzq)!!3E0PgzM4F3T zTxeVBeN-*3Kb_{MDQ&ud`0tVl)!Dp5?{3(LNj_DGjZ5s@a^V_3bV|R1d4ybFp%h~W zAm4t=1X@PL_@qj1jf!yQG~6W!?33k>VG3R4z>z$hPx9~veAlp5+_1onb(A>Zu5%S3^y)s<_awD9EyASJ>>mqhWX#!M#3~j zpv(cZ%Y6rrYz$Eli*(w8d>SlUAoautRCTWU8k3GACrM*&Hc()N))9uZv&Vux03D^M z>j@UWeqDH-Dl>n`tE`Ur>TML`=hRRCA)URlYYF~nlVr)xej_kKd^S1SGX2pe)CM7Q z;jY@YmHKrxp}uWmxldy`s=X3+?rsJ>U*i|=**=??$Ut%bN(eR4{z^hp&bJFt=~L3l zskkE!jIil%w}2oe0jh|ali4S`etn~(I$3MkuWxPg8;_qz?~|kf>vw}8Zg3*csktnF zG%HY&ongydPSRgh-4)au&s-q9VBnM1=M^J0DeQ}2>s6e6Eh1S^V&lww{F$d`RXkO$ z;qSy1)}QM#27#g!4bR!*A2a#dA4~nIy|wIlsra`FFM|74{y$2$0)xF)+3z71rH)31 zNFe_dSd0ZJ#ZBYm>Sd0c-Xs$Le93Hj25@)4C&Xmy4EU@7|15QTuQYl5IH%*E;w1AO za|B|QNW>0QW@poRRM4?lPE~jntx=j_(&}M$3%$@ z*`@^(V8}7W60PkvC03O{XY6v9Xl?|>>s80a;eh1iE89yx;&q(GgP-h5P$P@Qg&Um! zmF=!ukxy4|hZoe>;nyB?7rb8o>+J);t{dj&%-`B7$ADb|{3vW;KMByh$1%*Va5Vxw zq1Q7oa0J*kZtdFXF`#^+cnDYR)er8~5X0O-+Af#E@;IffiUq{_u>3$zue}?Fau&&U zTRcux{vf+Q$#VyS7RcR!S2#QSfHUauZe%F$nWG6gIrP=rTehGs`d+|z>gIHXyR)A;mBoFS`y2&*0&pXbc*P?d^5HPsU7+4#%zI~l6 zU|cCzoXXu(;Z3Z$9zS|;d258sirkr1g$63>wo%2yt{lMVvz`i7139@i zIIBGBZU#*~}}S_}JMsK0~MUgZDDBve3{{PDP2SG4LFR zj8N#by-?w!O9>`X$@LR9wBFmQB0UypT)ihacA#*vfS{bQEY_qs_{NqD&kFiel8$ZF zL!;dSrQk<(s~a`CPl@Gy(39TOvRIgdd)9H;Su4CUl|Cac;<`~(!ghllFgp^k?P}A2 z@D)~}vX&znENsz<$tLO~-rkI}YlBQdM&>f6q&gQxLLzHNgmj_k*_PDapn=}DB7q{t zt_EA}L!{XnwL_+YQfJZY7uyqcd#CLR+4A`SNwvpyn3JEk`xx87)v8Y^2N~YCz?6D{+J^~HR0-34pn&f3K7O}26_;&JSmV$J?Fj`=9I zT@6jUj=z&lqGUACpa86IQ_U2>hv_mlE!hOPj1PeSsg9$hzS*r@;WFV)&s1(F zi0EnN>o^0qi1i|C5b&X!b`rX-!M9`*f$jQt?O3^sO7|+souV4k?)I+S33U}y0>1Bx zmRZ!5luBS#qEJ12v`}bJcQDGdx(H_=G!!H`L74;k0d@`!exNje*nyZosL!H8utCb>G=Y*mdlAcQ85gUnN2&@7f7a@tgfqM zv*tjj7N;r(jL#F0tFY2~`X_zuFfVD!Pc@1|AbLeB}AVNLSUC+o_6+y+!}tu1hho?nX|k-$!c z1u+IzhVwU$N`SR^P7bnSA92@US8Q!I(4l0^??$GU4ILaN-EoPW^eiC~!-d+G?gW~Q zr5{~Hb9CtJl5cm(>@ULCdE1F)PBZI?-3jOMP{GKBb=vrb9iQR6n2zO7Zphknh3(+M zN=tO3byG!7|BaMBHgESKmtD58jlo0ejWZj|(I^qo<>nX>Hh~54z%BZUw-v~WN0y1n z7Sr?HMjzt@v#>fbY{4CC8LIcNQw^O+ZNIQXfnz<3yAqaOZ3BdP6`Qd1rMs3T2~SjC za&WVF&p1lOeS!hx=ZJ+~p%pztpuwEWTi9&=TMb>;0rYE;oP=w|6ncI1RnZG>T zTeeq^&1xkJZz_z!^-h|lw-8xs;Pm`G@Z~83s}FIUVDC_?lkERT$l6Eo-5MV5>Y@Us zI+T>`BDMgT0u2Q4XeW8rlTOba@cx&g{2?$|ghvnNPd{rhxP|%>4>hhMvQTFd zEY>kHx{9FGoLAPM`UTirOBI^C27*QT6zD~JvZ(n|r9m2@l(gg7{q@7_9ViW>?mbEB zKDE9u#6hldz^k0i{1aru;rhjL3&i3$0i`$Mz)=O-185p!s;|}fW3tk#Zd^u z!86j^v$CzvH1E%z6NN(19;^B+=nvOqRR*cGInf|M`fTfZI9Neg@qt?52mt;s zr_?z^V(+9h3$(hA$XvDAs56<{%r_k(2xvVEWzgN6W>je+Tb0l4>%JEs3ac}P1~q4b z41mesH;hzMbjaqaCd}0dtIuS^Wc5Y9JoL+PHNJXq<~GWE&Vo#Oz!JZ8kMVrr4ID(w zlwfdpW8H9N?Q0dPry#Jc`Ns5DcgOK_gVs`^mT~P?Uj3n=^cVR@hW$Hg@sUK%;Kw*3oLE<1E{gKize=mXYmaQH41Cz9qPJ zLk{}!m<$@)3i~-xEe8|F^BBvWsHytCX)rvpK8jb(=`5_x>GAs2TbcANqv(RJr;cL2 z+0VJC;qFQ%*p?<5b{Z+c*^prQGC}#S`?&pMmz0&g)F~K>b(CWDA<+3VR+p^)l6j`8 zdR6t{X#fmf!46rRgGr9^s5`Q}$3S@K^g#>Sap^Hlnwgk%Q7fal-Bnyt4Wb@E@u8OtOmI-u zfXX5N^ws_XlMoRF(tNk!lC1qs%k3OY^UgfOM9idiZK2Y$O81wtt%hT4UYgqEB zl^_(Bb^FdQAkcE21)-#huPOi@$LuU0V+KJ_gx)cAei_OE6sZCl`q5uishb_9^O0CT zqWI=^13m$T0vpa&;!~asC;socQgVs~=L$vl0CkDam@^{By)xFm_7G- zbv+26@($%U-=(*alMA@HxVmcJ3*QkRyOK(R0-kl*kg=Irh`1!>bax#ovS0=(nYs#} zm9cR(Sp8AL@mMCeOH6S7!#Oh~)-W28J1-b3??P_FsLW4aA4!k_xf4qF>tPj5>ZVLe zH+T9jx9$&jF%+FlIrGR#v?E6|I4r#AS7{xl53oRb#DAxpQEOs)4-W)`1pPkEO^w14 zkk4p~g3Ly{Lq*s^ehsFXAYoZ!+5^rT`CfLx1YG3oEnH*%u9cCYd2T>%ib;0dYn7h! ztUSm{I3AKTcLr`8+iI{9ug0cy{4Sb@6GR=W9!dxp@$}|b?#Ew^Zo80{Ow}5`MmZy< z`};VSi!!+Cni+7T{Ql>Yc~doZn(TPPCkBVtbu_}E)!e^dnJ2D0 zodKsi9ZMqcI&B_}>WxWp)2974JyEeCQf_Z9=6vII$IA-l`ChBFt80ywlZv?M3LS5f zZeFV9@^`Evy4gZiJ3?S6AYA(kjV!B}4HGkW*?Eqvcor9Wv-Ea;?G4lESbA&sh5bXk z3*xIPl!-n;p)$+d1Fit?OQ>gwux1%M6AdGjF@1JrPB)hvZ#byPA`xW7G6DLO5oUO(Hf_x>t_!Z}pd zLE2ZOxQv8Dh8IL5IPM=9ht1LZqIBT-V}~i$2?!E&5QkKlcC=P`0cb{`HS*IC)doO2 zC#Ml6$e^WDO@MP8HxFym+h5rplA~g)VRwUq%h)(ijD_|Rpi%FSKd|i5kZTv z;sWj*b1C@4cMJf|9UX4yo>(AP^VNLt8P6k0dt2MWr7T@zV}~or7)aZ5%u!8B;e2f- zEzrszX02j1qb?f{o+k0)gPPy@8gs{waH~4ET}x)w4x0XAyy}zod->+3H|$b#s3s&( z@*p<`lKKzP9?4`wo=&#ShT@QzmWPKFpqUpH6-E73s)^3S{yhfHl1#fx38KECn{i^s z&~h8lat~9CUe}0G79+>YKqD3D7!KRqdHlX4>2X~ev8DJ5A!EhGyPMnJKAS3ZWJCE# z7um3Dy&8D@Q3m&D!LZlI^B=p35M3j-$NAWu51q*ZgznR4xeiEX{L*;KYwved_32@2 zCDlAXh3v1V`{^cYSsq7tf?a$tCFBS+MrplnY1cN6j6e#oU9C2biVaK~4o_Ht-xd%JKt4xuxQwd~)1*H!Ss& zz3Ec!)`}uC+WoG`y-*R;geLt(6+4B8)E4q2h{zOt{pr7o&K#YwCl6p1Ib%NU-80I} zn);^#5+V{Oyjxi^cqE|2h@90xx>gcbiV2ZCj+ex}-$;D^ZGXmM5QJsOl)TdO_s{fo zwNW;##VihXVGn!l>9Xx;`~L{6Vfv>}BINY5)*EMoMYDhBl5Vj04Mu-){>FAa62={a zGc#LYSbp{KbVg#F5n4vX@gWw?R8 zXGM7&F(MzJ6>5K##7!5Y>Du<$sdajBkJo8Bl+0B-n3^ ztXrb_Esl9e=`HJ~fFP9D$+U1Iu}v z(id{(t7vbxwXA39}*wOW$1s}?&DPh?g#{8V-alYSm?kScEVf_oIV@39oa^vXH^&M&5?YZ~J1;osS84#PwG`%N26Wd8D-c@{frc z!XDyt`>hBcZt3$yrML_&Ll4sAQN3TtH~LF+>0=#AR-RT?NDb;57vv`c++Hjj3)9CM z8lH%LGAO%3vd|Hvwyrx_!_-0d6_wW^0UklwNL(*1eTD{A!4L!*UI>oQ9wT2r_#U7F za9|{%&+zk4_Bi${xdy*nZ;DiU+v4i8%CvwW0g50gD|YEhKY4cut=S!Y1~W(>vVH{; z$9Vbnz4b%ySb1e?Bxa4gjAurDBS#;9%Hv2Bd28@vx4m}G)l;w7W5qd37*403ZUb#Z z#C;*JCyYA?zP_bL4D~j7NgDW{zRauabfHiTamm{-@-|m|GW<>|Z1}@Ms{zJ)ednO&K>5!z1)S3xHpyX)cOfyr z|80A1O}1=ZV8V)@Zhx?`;rp6|@{Q71 zw_C`x4DCZ)`flRZvkrpk(bewVd9^0U13|!J|NNn}-qOoNFww{^rHw(1FK(aVmOdMC z{lDg9%;!$M^8SaKK>k0DkQx8_*ZY6#2Jr6#{|}7<*iyXW#~3^y7)7wF(G_VeHn9Hn z)cO(_Y6Dk!Uvw8HAV4qx&FRXK9Q~8W)C~JZdNI(CH+0<_E;&Xx+k2D9e)^>E2hML#CK)1g7qH?1TqiTCRcq6E!&QL)XBQTmlzrv_qkbutbru~ ziQ(}HFY4+X$FH#O-JKuoI1ZFtodh@!oW1kjU9dN76Mv{DnR)U+F+i_vX++ibmwzIy zZ8qF8>M>p7WpCYbP!$Jb(81(n}QeR@T)K0RkM~!oFn40{G{Sc zi?&lxL^qqYv=4tna9@1q3ka~F6MP!9kA-^Zn~MBxkXj6hEvp{{c9H7+p<1+*u!u-! z${|41pAFtm35S@~W_zTOFn)93=VNzHo!3M3^F|k=n%pP#sR)+)4nUM#GDR=Y@pOrg z9s=CM1%RU+u{<7|9>4UsCtClK1A7dB_Jakc`~GFnaNd(lZvu z+=a{0>()q;bLCpc1tjYi>bZ#&dwdA=jH3q8YPfiKuEA(5V4mblpznx!mraU58^p>8 z7xd626}c_o{=32M^_^l5WR>;`Wh7>MthQE2#4tQTp&++$3^OlQ)jeKd`p0N~^)C$p zRN;*>hr!fn2&wP?W5}joPKS?cpp?~X3zgY5(D zB0`g#TL`|8ZS@clz^&Z%XDOOTI|vh;Bc59fmgF+e?9bYbe1kH~{c*EaOVbT}Tw|z;i9`ExPS{ z1bx7QoPn-_F=eXjOv3o?VZ%TI?E}VX|L`9Zcg9!_wm(bz+2d+tZlX+(B^PH_s|0;8 ziN`R8J8kf`(|n|`Q`^?=^T$;lISG`@iFdaKyY!Dp$#%%J4&FY$$=i53QTijPl~j1s1l!49F62LEfyjCj=5@ zrR#Rr8x3glX*={cO8kZcY$Uj}9){GE4W72V;Cf6D#(``oM2Qbyt90YT@E@~_a116cC5S3KMpG#a@e zW{Q5oOvR94UtqYpV_#t=_n|63QV5qh9z@O$4ds$^7u-C?FR;qQ)^OPIy>STzE z`Y}>!EGGVX89*P1*UaJ_NqBL|u=4fpB$jXeWuTgRTi3O}rd&rY@L3_)D<=u{C1q=+SWNu!`Cr$B`&Qa-qxMWEnNSipL2yL zHPntXIjJD##nTGq%7Xk9Ha7pm(eZw1&Z7(q(d6Ef6n>@qv_yG6zLFk%Q_)n&nHI9& z=I;NiJ|XsS;P57!NJwnOUHOU=KSY1c>^jbfYJKaG z86mf$P($_+PhyibLu(_8?9Vng^33Kh5F;vBOh(Mr5)ZRtL&A-Q3XiqQ1N4R$e?Rp9LS->6_`{Nn@{czm)NukMJxUa=|XNhy#l+vH!eT^vsS09 zw75DG^>uVx#KVF*v8pqKNN&-0Cr%lYilH3G-XwhV^AN4rLHac9ZfCvOcKH$Y)7J+5 z&sx~pQgY*NujVkhjDkq`AEp;OGh;W+mTtywToGHbq+q*1!VJfRDYJ1K9Uc2arX*E1 zqv8}l*U~$}kqhW6?0+GZxGwY9i@W6gqNnr~LYqrU5?0+i-)#Ha_dag{e>HVvZxQ!+ z4xMV+SOM%A)0N_1Y(v=Ipa@yaGg+YQKZB_|=H4l`I`N!UwfWwUl@={wIv3wL`Jca_ zpC1AJ1C1~niv!wO_otu-rv07)m;$>LK%a*om)3)W>P&&0kz;xluNH^(8VF zCC)1s#KV3`RoQkAA_)X70=|EvtaEPwUr;pU2Sp7)JnPkvn03< ziTHDT>!T_H5t*Z%xVK^ZZc<`BLWp~aP=ua6)DXG95cZ`Gq2#>9*(V0H=`?;jN>G4p z^OI>veR&Cuk18qoHFxT3HkXEvL;H;^Mj=oG(t^Q$W*pBOieRdPR+fm}T-b&DP?)|m zqoRd1J?0C_X1b`2pLfH}x+mF?=HbTt@ZhAR6lQNHU~4=7VGZz{7!9c^n=@>J!PlBD zkdGd^sZR1XA6GBIFnfcqe+du6Q<4g5&*}xzsCB=0tVD_Hx#?va@;Qc*V7S;acU7cWIcG5% zD%;;DYvUf}#jWu5u3<~W)sk}=GCae-^yWw;y`kmuP+qm^r;D37i8T|lMQ0or#@RG0 zXspJ%uCNu0z_=L{Tiw1aE&W!x(4@$s#cmfnv0;@f@XfpHiVE||sUs{x!TUQ36xWgv zgEOS`O{a-}pdeE;G@L72WP2;mV|v@4rpnw)`}G%)`PqFBi+U`b^4fYw%4sb+4RV85 z-nVQwmI>Qm!uDrr8jVJgqwA6hRI$a~;fZ(q@gv&}Hc78n4x_$pORk(=hSnCCfEgiy zm!KP?9aJ0$`H`Rj|KR-FNGb9E%-gm$5OdS=}cvLBDSWt{ABWdto1 zwWZ^5yQQ0G;jR<~*>afKlj&4^>BsQ;P0xn~M4*%`KzGba^J}TOT`NqVI?UGp>27us zyRyY+5t~8vA_KEaM+8+a`q*-9mE$B@sh2-CH^bld zdXWX*!8NzpS1yM~N0wRxhr9!7v73G!Su2dz3^KU!;*nDqX<^CA9#{O*_1Uht=a8(d%?2t*`W+eX?yimMX2dnTegqZ zt(AzhFW`tLm^SGWpMwK}*hl5s;@-f+!h>LKo5vfcGe#UEPl!A^*Au7A)1nf_iCJFg z6PVQRNqD36;|aG*C)%yjmX=8*vk@CN!8b)6QHDpuIp7${7uhX|?>{^wZ~K&g<)bb8 ztc1bySZmkh=&{XLAh<9C3eBmbUeWy7NnM{Gzk5{Ldr%>qLo5s*v{?c}wajRYv;G)- z@SmI*H7iO_lB|Sa`Xse6G|dQG#xMo3gFHZNFMkF!BaD7nqsrVd#QAw4Gt4|$0AgGW zDi};ua&kxfv+A_g`hGuCP$2V#*DKT<5EJ{GDwvy!??#=<4QK20iV0xad@emnfp_ez z_i(PcN*&Qx6b-f)l{<^n}|pR&$2%~ zT^4J0K0~`^FKeaEb^T`)YJppSfJoK6CN}%U{K0XUA z!!x+=Lg#GDg}w~>nyM5Iyc+3(*AD=bVq;bMe$TFTa7uvZ2#07WRI!pfOAH@tvA^>2 z@lk_;VRpiVrRZuXmT3-SzW}y9LT=jniWlnNxd4vVz@|V3reUJ*X$5?!t%1$Puno3* zv<4c74;7kUCu$T!Sdua97>=>s+}LP=9y9B+VC`~^fw4hR2Qv68y&7+6nD#qN^>qwmv^|dRh5uU8YWKC%C15T>;TMksKNRqrCUBQ?~ z950-`)ge^>GINx%{?ezln2Csuc_G`ZpD&FlcL8w&av>P$_4LP#?d|TaR^^P}U+mq= zVeXaN+9`{W)WC3{^BVizNRcH|mQ>qzeAdF|-qviRr6tdm#25PzrOO*TnC}60nJzj! z>~=UR`Rqn&;Lc!`r2oiFUscrQ=FQ1Z$H_c>ILC@yJ{5Eq~}WOmb31f^XZ!pcmh56Ee($aEvrA|No$jIBa?91qvXVrbf{>{oCYpRiXw#2xDM8@5G=pE= z@JVAT9Ua-T6!>u~$n%QR`HuZcFS8UrzJ$ z^UG$_23Y-E9!#KD4cq}?c_5U&;s819P5iQ>)^O7X?8}Vu?w=n353@Rub2Ki+rkph5 zaW+3@*{8HEJaiGH@y@8Hw|CqicemF$ej9iz^a&fR4zwos&zppue|u*I39LK-P@BQt3qD)~heztWY{X4t*&pK_-2C%N6+hlZAhOQv6|@k0a3ocwD0 zq105w@_`=(aoM>IImMJ=b)jHkv1|^%2OJ_x?be=oWgg_7P_D!Uuhpp*uTEYk{iSvu zHn-(6f@<>@y30uEIaoV!=JqgNXn?2FFXMy~V+n?{W6pQROGJYMO;$Pq+RCCcPK?Fh z$2zR(FW!yfJSAG_Sr%LlU$N=Z=^9`>gQcc8Y#NBAcDjguD~)zkX_@{ysP6!o-o8xl zr6D%9>(awvIJ08@i)Ghrh2`2eaQ%h5YZS?40~CS{)6? zCh0y@1;84#WsFu~l&J7(#kA&v=PKhga^D^UhOvn!Rl#RPbYmi5;_2aZ_zQ=a(FuZy zho<9DVVZMNF3n+(_xnIGI8}%T45`5q;Fw=@bSiG+_ZNj;w%S*i5XQ)w_{fb`xI{xa zYG2to(|ULyNbgWeIW!T)`v>);C{#>J3lu;nt;MXLB8Kl3o*O&J6}=d5x*K&Ag<_jt zn&f6%4Z&=MtU^>!kS}5bjbwf5)?wO!c~ehl+LM)?b$oP^OC7palP3mZ@&V00-Q=&I zZ3nU+&}rb%AfOIB`tZ;+^O?7IGMu0Nk)a;13ObQ^k5=>!F3?VM&a+djqB&A_oC|_F zp?unqW%Miw;?}j&XKfbm4HYQPpk?fSeINQc>9Q^Ok-bn6PuudfxxrkEuQ!q9r7kR0 z;BZQaXOv$KiXQc?gV$#QP06c>+Y{@!hRgF%gQ=)kQEj0CXjQj=B zq-9GOJB)mI>%#nUomDz_5=|re#4kdh-S4r%#wt*UEg87|UB?&!GLmFnl=Id*tjs42 z@J`4=NF)KXy|ws|hvaq;|0s zFAN%0;$gjNnMzxFuSWgwYMaIG_69n#cQv>WS$nN}Vs=xc7yonU<=2w^ASamRGW0Lx zqYw%NyoVp?KYWY9$Sf`|M?ys%;2xuuelP(Yd?dKVygre4ku#W%LQ=ELX@+5${lJ#J zueEa>eXf$Z$5=P@C~KU9-LH030op>CwLNE5mSfYLlorg1@#~f*Brm`?3KZ(qD+mtp zkaHlPU$as@zp@gANGsh+sR`;BoVu_oD#rwrPqHd+J$gt~>nnm*an(GD>ha>p$iqxe zo`YYf^C_l}P8=IG^xfz|NE`;Q+#!YLkcA-_@(NZ9E%l|46@@}dAGay*Aw z`6EDv#aE#4@EwF{H)Nidbd?cIp#qRE!*B^a0cZhr0y($6<}DVyDhMzq;=VhQ>Ts7S zJ{dYMSp(;{v@CpG0z_-hQyCej?uvKDt4wHrEUA9e*LY{LDj0(1LWN%@W_B zp5Zkjo_vDPg*^#hJP;A`VCY(mLs(c-GTVMF6i>DF-q)>~XnX{>u1HJ6>*GasZQ#jI zboo6I2h^OzxbN>cvU)9GhS%S8R`0;SKJ9&vX1#(~o%`|`x5k;wtzO-b>BaiM?by-W z?Kbk76Jc+!#jSfMYjw-XV|p2bqr7z%hYy_5FgkekHix(Bja>9Rp(!|pDBu|GFsGI0 zzmtkR+C0FVUhuUb^%}^1kms*=TDdS{3U505tMC3-Nd#}x+}+*q>1XYlt5t_n!&3!L za(NS_)g_`N0^XNR7N;DJY8hqv>F=yf6d~`g^J>b~&jwl!bx-iy!BaF96`A`b9{o|A zQ}9U<{ulvzYbwGN?LBJbwJ;q;AOG^F)Cb0MCvDt^zCtz14ga0;Dw|q;$Bn44S3D?` zZ?{g<@h72Ni$r>=xSuo@M=_IKqD+X0v*Zr^j>n9023 z7Pc@wj(zU$J%W3nbQ^Bk#Tb#Ym_&`m4O$PSG#c; z>ke2M^w2CDTgYHnCtlX#^PIhRWO#AlV+I!<&F;TCxMEW|4PqAYfsW9bYgDfOu^P6p5br^4j zBknNHu9T1uAHKu*ya5yS7K&^pGIR=BVPAy`D0#{4btcD@-Lb)}lGdmWqZ{9B=9)n_ zWCR9GB|)?Q2K7(1KY*~rZl*Z->?#$T^*a9iqqy8rgHp5CWUakFUq2zIhWIX`O8vhD1s!jCNOE&C0dNd zd3btuU$B<8;;{-mzyOlXXB5QkqHxdK)JK^Z1|=k>-mas{EBfXQVEImvNc7R_Hrg@% zXt;+N-wl=vY0y~h#13vYz1_(hRlbq&H*4F8BfsZJvjzG?643)M1_p4 z$2<+S9s96)oHWMETfy2IkrflnHy)H-C`HMjcb&Udu8K&lzmWAl;|~+-@K9n0JA>8g zf!v&@H$ELIoqn-X1RKdX(Zn_v$aNRFef_XJ`j_Pjlgsi!-@i`wxdF4kMp&8XjaOH? z6wZ))I~8=vrOMWQywe@1xoUG}OZ&@U2TX6hV&KPonfV(j1O(aLgy*jD8#w!HY(>-; z(~>mJNC&T|6Mj*dHe}|WnRr;J-0a20^cB|fo3Mir3MPwxCOY*>GJYf#4JsO~AO+93 zErk5gV6lA*wqq-NE4MN{&s@W9B0SqFNN(&119o*Y0dwV*ir&#Z{=Keboxgm582teI zwoe%`HJ_g~AeT3?GKufXO8O&<%hsCk$#-dF6NB7N2OddJr4q_RUcV@EZLwcUnbLI! z%nvA(9A9wh0Z{IUPDZTj-!^+A8b2Ubz&Fm%CP|%IpW2Pre=3`x+LDI=^WGf?D z2hqM6GMpi=@OxAB$StYcQPbiR*Bp!4cx3|b3rLx?zEkja8P+~kRy}Eqj~yv@V?4?V zd5jnwOMg?*JSpI^nnphBGne}j^K9AO7d{OLxyBIsVX3vvNh7HO&tstWzJ2Zy0P*=v zb2TnH3iqC;!9imq3nSOB$@O+pI20}2<)9$3x8dP2-QW@(Z#|j+c4NLP`TWw--Xr5& zLqE5j`K+dl)Wqae#2$)ulOueidsJ)czYQWg%FcSTMEk?bSg>&V<3*N2T5lALAQHXw zk?+ZA#HKQ7`fBO$Y|L$FQF8LNN>g9W$+hL{Qy%)bb6^J}wJ?lfXpvPbQ>vAunE3{t z1nQIe#7|dO`bj}Dn>bfR#I!kY6YZMv<6oo-0m8(F_%X;<-CBvkM_2MM%)>e#c7Gw7 z`BDn6&q44hoY-*u$ym>UHj54Bwii4p9=H^C)oHi+30+FS|%aa&c$Bey^vz|YmD zYJNekrwZDPayJZ(En%ZgytU{PMBQ1Tw|^0xM&61%MuWA%BW?Hn*E2~e91a-f)H_Kp z9fSrjG%Hyxn=5lw!drR5EKR+2ML#J}9Mi&>vV+<>Pf{^&Lu zA79bovv61~&%snwL`OCzU`0a~3Dxhmi!Q?p>gpx3pIkW- z0QOCAhDZxln+fI=UjO^?+Kfqvn2?SYlCzF42 z0yKyAS}lOR?S&Fhfc@Fr)^>_1rH~{CIRow7cE)*!j&RJ-oR>$+kRxz7oK3kl+$J0O zry^IM0Yj5+ls9JvIH^j%=K0}Tvb#D1X0q2$cHuFEig?@J$f0sJI?i__y-#SoY!#UxbObjD66Kj zlGC%Wey^sA@awfniHTEB5A)krM!&tFKS!}@Y6>q-n;zD8JG%)Vtv+gXy&@d`tI~&j zHvlwYj7D#-b@$vCKNlsw9ue1iU@IuasiV79zX{gD4*f_<9r%M}|eg$@s zRa=6;qO#kScE;G}GOc*i&#Eo?uQdc+D8LmZnd18?Gk|05s!u7XH*X4tUOM3$ z6ha%|%YuRyaK5HvFU$b^g+pg4R+PuferxR_2yPC^Rmfd$T7-(R_4S9Pw!MEOn*q=N zcdp+WFkyY0Y;2Iyi8kgGGm4eKm%|{eXn@Jh3-kwjUavgX*C(8#o&gna4=Vnr4nI+u z#Xy6s`xbz$gSQ4bDxdG4M`l%phHiz|Z-vh2 zp!>NGYh(n27d@@xB+U4MNpQm}(TO1(eWVqtK*<7ZMFuXJWMGItc}40+8wb$&u{)U#rbdDg7+h z+YS7%I;AIBUJA)SVq?QAGaN-tYb#3wfM$k864f}ymdC23048UTHw!`&Wx_cnqHM5% z-a|6b$s|4~RXNaa3B+V*!+}rH_hLS7bEMiES}n8!GoyyXhQ5@qpK@ITv>y=*yIl+7 z7iimaBSR-^)W!+dt6R42x$^HDsPXRWfwJCI(wj5t={Y$$muL9EyOIOaLOfECH_!1P z&tr)A+@)-KB4Ex=9KXZm+}iR_)-qN>z3De4eOAVX>H__VGSH|skMdgXH4n>ED#!uk z0!7J(@=@uKv57n3z5>~)&C}gjm3nhrkM6*?lkK+1EphdRY$E!*YxpzjabI__*we@- z$r3$v?WU4K)BN6-!9;F#>~Hx-W#@sJVq<$vh!E}J8i$(F+-dTbJ%;)02!gV(#Oj(up92MX*@{ z=(fS70&=dW${mN_xRm&=P6c}@sX2V~mrrHD{;a*E%Io*Df>z$S@wMK?1m}Yd7xK2h zsw6K6|JEcyAmoD*FetNsa8k~7LPPct3dPkr*PUbuA_?4yvFzG~*?MSB^DjE*E#MX3 z{D7=t2f9b0zZ*`kdeKA+AKTRPQuy1!CkJ6ZdRzw&WZB%*($ccCRYo36HjC1W6idrn z3g4<9LG%m$m^6q)6ljPR#yG8Rrs?kW5yag(<)$7d`tqs#KC0x<)MHp; z-I5V+YE*&y_s2o^S;C7{1@EQLM-<3i3H`4A5b3}_SG_D2rEt~%?d+em=h1+K{QJW* z!qUjLe*&y_yWm<4@($Epbq@~@M09yJw*7n&KM>Xa%m2{p7IWYBp%SC|(;oqrMxk!s Myn7@6+M{Rx3tw+0n*aa+ literal 0 HcmV?d00001 From d233055a613907cd9859c0823ac1251c81ff6c50 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 24 Jan 2017 11:03:45 -0800 Subject: [PATCH 156/210] update image --- .../images/atp-intune-add-policy.png | Bin 118996 -> 59508 bytes 1 file changed, 0 insertions(+), 0 deletions(-) diff --git a/windows/keep-secure/images/atp-intune-add-policy.png b/windows/keep-secure/images/atp-intune-add-policy.png index 570ab0a6889ead424e9909c6e85a0c56c559dcd4..dec973f8b50e40edd795c2601333242308a34d27 100644 GIT binary patch literal 59508 zcmcHhbx<8m7e0z^Jh+A6o&nf_re61b3GN_uvphfZ)O1-CZ{B1Pywc_kF+f zJOA8Ub*k>&Rb=mU_sn!pFL~Cp)=bzt#W(0EL?{pl1pTdyqzVKAp9z7$!9GI-Ewor@ zI^YZ0Ugo_M1cK4|^aqo`fI$ozk(}QuNFlAk5a7bSa8Dk&`=?1t%UR6D`Jc&q z5DLg!Nij9|^n)c29kq+!A}1rMYxJ~k&m~V@gcgOS`qwi4sU*i*^@u#cQ2qDGi9V@qxkrz{X9*^R{CHnkP`NE3`QK+L zk`Q7&Ou9ICM)AMVw(C>EVGziBnvsCe|31Iz5HtVxyZ0r5`~S{N6=$#-_P-8!e?OZ4 zb+9AC!zA52iTf|kBq&QvOlwI@l;~ph!mJ}LOcFb4nxOe%wKYoweQrFk$I4a8~>hb-Ffp7 zKPnDNN~xE&ogrOScQ8x@cMLUaMr7tT`}#3oJB>>4rhE`KIRG4;j0C zHU5l%D7a+wh8=d+Vc z_l^C8k1*Ul<7paoK1;BA6aKRaIkx+q!JlO2uZ_%=a^LQ6DfkjplW@H8aJf|bosbvB zvJQGPgrd09_~ucKCLMpI@nlyP`VW?tiAH{i)@3kro=rYvu5QrQMI~n7kSCbOJi_4a zrE9i2soTvJ99!roN#JsM7lyuRo)Wa#%gAVV%*mgi^SZUa9c{`*_W4R_V$Fh9YRAtc z1e4d%i0|L`8d_OkIPqz_Vn2Px0!rMs^~-mYB4*34(uZByEcpUsnKC#_YOr$?<$Q+e z=|i@Em6aPF*GpebE4!8^`yt>qxztpjrwoxC1|27j_;%#@q!?Kun%a6H@Sygyxh&~f zEQFz-u{!$34GT^WrTHc(MKzZ>?LSMsGQLXT6m0oxpLS#R6bv3)BgyA6m10N(#eRB0AVHhzybhZ$qF@-XV<%3l)hvUXo7ItC!cXcDy9#5fpM|y%Cs)K>o-cuU!qyh1Pqb`a=du zgs@l?NQ1v*Dze7)m0vvyAwaO;VZg>c9cI<$?LNMO3+~qGTp4m*s`mH>N5TO7wMV@{ zm+Awr4>kFx`~>&TS`nSYA21M+^oHQ9;lhsPZX5=)=nd~+*4Q>$Z?gpw?cCW4mIUfjTAX=evc;5VZZn9F`I<<&%jc(s= zFe6+Jv@~Y_(>2@C@8R@Ypd7dlnaO(#@TwJ<3bZW(=zNgJ;5V{S6EGY(71ZOY?A ziXrjU?!wDp>%z$Pi6Np!;$7NK;Vf&(Wdb|I@44uTlnH*s#wv$q-yfXhwcva6XGP^6zkZ<I}E1JhVMohyH0YmRy(qEyyZNHF^^RB2n_GCKs z>j5Y=*2ZD*;(9~q+vcED{#VkU_>E6|6V2ly# z4bDaJb@~}452hCCbRCtp=Lo2A;p_O$+p_{1pUleeN^ehJJV~!9Z07k@dw8LAhdgt~ z>4r8C$HYk*2D*}GY)O?4`-%uZm+cz{n?ui z9)^`C&d|&k-*Qh)rkA#}kD=E7&=px4)446~L9hJSG_1_%>z71re;CCkZ1z)1_!t66 z*AQ&F!a$Idot2=lBjo9ZT^?1|Y1`B#;r+Aw${tVpuD_g0-NgM|i?70vjKqcs2I5V& z$8z1xt|ZSU0^v_lNR7n4KOjBypsUx8>ij{qdkw7EsE)zI2w+IhDu))Q7E|x>J*r!J{lib6U2ORhso>6Of%@~e! zB$vhLTf}E`wHEU*o8zx-zVXbza^8T@Sl?_?K`zcF2Ju)k$MTUoVfMDae_Bq_)^CFp zE=LW|2uA$sC)z!u3bY>M)4TmJ54HL=ht@|=|Hh6171&y_?K69$4#AgZcyEnA3M0+W zj1DI+c)doas|~OCQ#>~QDYez?bht$(3-i!pid@2}@qt4S_?hDUODYR!#CTJL^1v5$ zHRh!TZ;I;bdEK;pwXnK)&K98 zgeMhX1SHgx=y$z@4&)|P0PVFFNerY;Vt0u?w3rd1|Eok6^#yxBof;FUXC8Z7dGRXv8Rb5}467=+;#{+gY_uG$6La{AJLhDjS`yC_1hvNfv$xfZN#{&_} zH^dB$oTdbWo9s^(w@}6D-RCkyhZ$RFS{xm(GaFp(5drfj>u@=8tMryHG33L#Jv=lj z<$seRdTD8Ufc0^Am(f43scAK)7CcdF6@6*;!ti$Nr6*ooB)FTr4zG|#l>W2<^T%r3 zNB)mYru4Gd4Yl0}ZBqnVw;gd2Z3KDas5o`eXeq#bbhtia>-($n)K^IZVDP?xT2VtTq$T15 zn|Wg|0?zt`NPr4(5^1XbqzSb41Ct8bXDIo~-5d&p(&84Vd&bpAUsb!^Ge;olz`h>v zCNefnpJOgm8wC$vr&H(|epMiYC^<6B#B4Mv> z_J7j0I$&hSIrMU)!ejg?r{eb33>!`0tltyAq5r ztc`?aiN$KcA~h72vRdrxSI!y-tqqjdks0Y}+T*8H zr&4hWKaE&_EqgS*3S1ZO{D(H+)2MtuJd0Py0|TGV6*UWDks}eCEBn>y;$B$ zZH_mQ{7&|ZqvPZ6IS`I}ZTgU|IMgMY)Ge0x5M5KJYFPKHfFW_#qT&5JW`vX{p$XC_ zZ=o_>ZoCU+`4v7Xl)dtK%kXJijx6?mHz5XC&J(JLc9?gLbiAc0D(DlR@N}&bVF^o- z;y+dZVt1pZ4SAO|Y!TA})%w+TC3SlP1b^J+384Wo2yJj(SUpW0337GKyv(ZJURvlE zFMJ#iRbSZ^j05xGH{KVK5WOdyXhbR)r~HDNFWY(1r~- ztV0?2Zr`xMjQIP~FCgmGdfE09T4Br(h6TWxlBpIR*aeAVoVD>DqU9rux-XjH?SJ~E zjW?&Rs{c42p<~i4@%*AzpP>V$b!?}8Gf6|78P{3%g@8D)PVwr~JDff&4VnRa{I3Q# z*z5Ra4P^8M>MnPK%)2q$&Xv&_2BopVIty4>fJQlHNtys4v3*hHlU=IqMjwfY@%v`)6Zz4tM8DSlu|Wh+3*ReK z@zOLN7;2#mdwwo_$m&O{xtuG#ILdsRt&c3ZHg?^Zhcn;#u4;a@-u(T&X_>m3%toW? zcyg8W`UxHlo?MM1>+D+XIc0lcKH1w(32WZ+AP#7An$x6R{)-=~Jdp3m|3+Kxr5X2d z^aT8re13d zvTmWZOBO|v@bu2a04$z*brh`B{ExxSCrz9Ql;^#uX^$M!b7yjg5ASEF5P3kv(35#1 zB0xO*AvIUAcpSNXXW!HU5!i7xwTsA1Y3{_W^4f~PpcJ&|8jYx5O|B1_k#Z?P3c^1B z#x*s+T?*SjV&>FleyZzpy4BJqxEr^zO!Zc1&=?f$FEz^WN)=X{FN-o|Aw0V{W#AVo zt7^I!>`)=hq)U~qO?rK125b{;+4nDcD~z;nPI_TfSW(_-&VPiZRR92@bRu2HiBusa zwYko!mhFdkTSX!m%U1WtNVVYS0xAepo`Q=%--(J3hGGj~!*0&>{!V@jxaGY1xqGG7 zc*ZhYZG?EFrbdj`oO)9^W;o=2q&`E*R)Y2Ry_Eap2;76-uomkWv5PF;WtVP{Q?c(y{^9RQ^X;E{61cyQ7nGCWNCtzU_6iwe|OdFPSO|~E!@O- zvNEF7>4Y1c0|uDdkZ!QUu(w?sOjXO~Vs{@EeXqfAE3y3YRWt8S!s`N-CuqJoQzc>=6329DvAp1Z?|0yls`HR@z$GEm{y=*4^xhMn-P^!_8k@fV&*ydMsqmszmTpg|+4} zbO%L0sYeZ)GXbE3c zK`aOGf+&FKzryKP=j1E7IqD(VVGxZsUj|H6eDZ;Lptp)I-?hOYmUAjKh6nO*IdP3( zngF8Y9tqn^0M59QI73y72AoF&UBhR;AmHep1&gpLE zYY$PWY{7eF`P;fB^YOf2rC%GSqCN{&PXe=Q2t=8GW|9+iCi%B*nc8QBqJb99rZCP; zn=2=EfhZyKGQ;~jWd5NVo&%wfi!+)Xcx7(z%kZAm`DkoZhl`=gB6=deElTTx6u5IL zn;CtWpZVuKNFQp9*3(wf+ph-9t7ujCK&VwhJTjAXR=Q$*O>*eSFM8!B=20zhn5lfz zB9b~%KnW}sTuUQY;Zn)G%g5E?Yg;bG{0#%|)pvJ%JCyOuCEd}+N!p$dhhIIw-jKb< zbm{;xL0zmK1wz=t=lAVDlceHGsxunD24KUbv-b6n^86WyRac9i=f}I5ziNNJ@?d{t z6LhSUpYy8#15Wqmn_|B0ho3l7i@gj|b4^5QYE$C*I1Ze2sB&cFes6_sdzqRUxE5XA z%DX_g{}lZ0PLjkgmU0ug<4~?EO5s^1(7W?p`PCz9es0jz4FMYX)9Z)f%m5Bhy;yBe z{FyV^HK=WjuNbq;5L2-1E2CH|@{DEqQip~OGG_Afnco01S-mrtgh0C;sdx z`9N$zW=I8JT583WY75N^gFCW|0HtnN^X?;MpTRA?+Lx?_KEpsv_(z_Az%E(!qxDX8 zaQ3#zfe=^C((D-`(IW<7+8ZmEgI^yZj&esvN(Wp|^g?(Vf(mtcVt9i$af@z$=Y%oR z+T%UlQ*4izKx+iN*X)9p5wI+|+hn{xaC*#5Y-0=P8ZR8v!A69C{{a8_s>9fuj5jep z%1*JMwYZk+f#e(u?APixDi38G@-xpOaNwl?zn}@e_*!VNLc@%N7pY<=gq#U!S-`I zq1ERbDu~v^0XTf34(6(KKu{c9*n`oY5l*i*MbBpVQ9tsJv+aZnNZ;5 z&b0wP|B5IzD`By;8|eO>D;=CjX2VZ6jM!9d{{sQMqGJ81BiCJ_yp89%MU5zsSmk%o zq&;69_J?%^caOs!(KAr;WrM)L>n%wXNoC2tCCitlc$6&%nTp6d%AfFrh3(0FPzVC? zUwasD?f5}_2iqMzefaT^)+Zbab5H>F(aX>j0;1?{ut5@mq1tXo>&GIxt+h0&_GP~@ zHWT)qSDDkGwfToFyPMr%L0YR9Ud=ijuw&4e$dGQ9SnkJW>LU`%E%m(Ddmj*mgy(*? z%cjL+2RnWycd9r!CyjpieLudpSrrD%(qqa6D_c+DsJ~R8m&qc1&84IcmX5Eh=zA#~ z1mLhvaLv;{lZIM<)ga7y+t2~yB!~5WCP-_}n-FLK0`=8L~l<{_J-GY$Y85 zmj7D;$K)@)MZh@A|yFm)AEp;><~ImujKCl3%}m%@eu3zII-h{|5pVRWfPU zpg}nP4}UKC{~!MR|I^x7_YaV<{$*1})YNsO#v9zSRf_pN=q2;syzU+CnMRyWOgtnC z`5$@z`xqr$E>>GB^ubHl(8h3VZi13Zh^yMAE-?WeAIam~$pquKklHJAdYsi~Pk zju`phpw!pT#M8Xx{Xp-yzrTNMRu;>BUS6KTdS}=n5eF9+-tE=#@i#&oWu+JO&M#pT zrFWV$Nuw*7_-`4P(@H&rpH`vl*3pV9^lrLLKgMe2CnYoU&&on^Nz9_&eCjn3%lKiX z*53TkgM+XXl}?rG7^0vV>hqc`^q$2pm8Y40GAV1@lh<1JP@wA=b7~5Y-19^%&iG)ydSF${ z!NCD>geC_m!g^KEy1^M4`9g$&CZoFmj(JiogIos4+`vX8^gm!OQ+%W zCUPa?(MF%Ov+|pn%KZQ-pSg(0*Ta)Ois7Ab?wb2sR7ugD1?hj$d+w~r9C@ODUO7fpFewthHM=8G9CyTTn}L(g0}~ib@2sMVf8w03o>wABsQ-sPsWrqVU&X&)3<^iFs6CGXaug{{8_cOh}I+{ zMB}KpaEwbnmBfs!tKwN5T83o&gPuQM3uSJ1@qv*lh)_uaKcIV2IojaPJ zTBfOKEZMw+&22*lIy1SjqLX4^a$w;;geg^2C6!@;XY&=Z@ZMw#qIV>WuBm;?2s;5i zwVPf5qO2|D6PX|a8L^oUR7m4CoG7rcZy}#i@1%y)BQPJQQ1Y@LsKU=CQ+zI!t~e~E z;YzoKbl#E9cF$&5gu3i$Nf6v{-riLu{yafF^+!D~M`n?nfX5}Hj;?P041>mx*k4iW z>+4w0C$A&o3P|i`e(F9gEsf-HJYSB0+d8?;3)&OYGny??;k2z7NiISL1iH@k@I$UB zKDG-|aqnBC#mv%2flX`PE#^76!ADqRq^eq`HXYBg@NWw6dgS%k6>%DrYof`V!yd)m z82TuWN+SmA-z6nOEQV*A&EWO)e<9h9dsF=C`?LP6Gm|W^LO+?RS1oI(%7J_NOgU*a z1O0JS)K#4Tmd2*Dnc5r%&c_^}Y%T@A!&B1}4_huGaSo@7&(+fpZd4BS!g&4DEYFWy zUW|Tha1B;F?_v0|wHoqkAW1oUj_jUIqkH2cMt7A$$y$E&Gs=gIgwP)li1u|*bIc4; zS7^@ZX+NjC5}XmI@$3!d`Ta~D-y5Gsobi(j=mH|ufz&BDc&xKIqmGg`Wm;P)9Qa3mnHmn0`vAm*A_m;OHdyJdb~{~>{U z4l@%iZSMxdXnlP>;nG#1$UX9t2tf?Chcgi2bS2Nf2}E3(*-0LJ`#Vciu#7`kk3<-- zWnALwOZSl}M{|?H!1yKA45Ec879oCpmAB5Ju%eii%gxK(L1@oJtb&gEN(3^{o4?;@ zgRP`Hsb0jDt60^I+AO5jRm*R*lls}*mB_g`u_Q*%qe5cC;7$+le+y;$Pm}q!JJH=e zvZHupA0bzBRXDuOsJ*2y*~o)stf8jL;Vy37q#hIX^+rzRXAQ7OE4N^tY)ia$r^SL; zi@*xjBB#Ob)%N6361D0`QZpg-(!q)I*!X|GlI=7g;+H<3mD1F5n;=8%gW4e{~{B4j^vk+RywAzOJg)VhToiSn=2nUVZz=MiNQGumK?p<;ZQ-$9RnF_$P7X6?w0jauwYXOvVi7p(*FE1DD zjL)`)LL(wNfaiNk&zBzJzRqEm5cmcQ`4v`DmFijIf&XbJYnfMm9g4wnAZ87ZMO4tD zs_!*7#|sA~5WIUfTnOhkvWI>Ex;v@Q7=6n{;cXW~6)HQ{mcG8;D&|w*#-pTK2W$?J~p21+2hUp@T3taLgGbB@0iwFvX*<3&jLgBGdtIFZTGV!f}C0Q+jl zs6whdB@6HDytq*4&z&lgj8BxU2wqfEkBA!9k1&LKsf>(VEJ)hl2u6=7@iG$O+>WOp zIoZuz3R}3o^-lW%h8H~yHP8?=mVgxbF$=zOmt@b6XWX|`-i_u(M7ic@irY5DPqL7o5 z=X!lh|yi^MX-p^t-_eY!}S>6vRJH!)8?YAEi!;s}T*CTQCUd zx+b1=Y=;@XOM1rKR`8|r%U>zn?YwOYbkZ*t&*7Cy6@Qw?bn-C2iI;^l#ttigkwA@u zja@yvxO)=u2qWrc(97~XjYvxU$tugZ{9Upf+IQ!TR5eF7RjV^jf1Q&X`bJuc9B!y1 z*I|Qw6>q*gSD8Y#(#u28aj{2C;OM#62K!CqLf{yWh;(2nT)}>(?=`!KAde=gpuc9( zZ);{@IJ_fh9!`reVrtZz!p+ucD}Gq4C~Cf=--OEZdzwwE);>sIM65%oeD5;hC& zmUvy4hoRG-?%|lNO4&8PU}FY7yuHYGp5JumJA$5k@O@neEye%QS9}}+FIqvmkh|Yg zKBYG_JlpSt(rK;+F+~^`ODFoTOQT-`eho_0|Z}~-; zlf|PBaIIh$bLxAM61-kkMp#mHKQ?s|^Vs_e=8reL?uT=^ zni}|iGd!8WGj}Y`naUp&Kc~TJNJ>stnm*T;9_&vDE%ve5#}8LHo(WObBMzZvFs_mv z+T-wTBrzby4M_NK;dV5!C600wIe{X8&=|bEz9MEK?^T~!N-n;Flp`{2@?wfZ!>ka< zYLLL)9eduVSxa-nA>Ako3kGc5dK?C7E+@|x?__EJjpmxLVmR2_EoiQ?eC2ZZA{U#vi0~) zoeMCyE%w>`3i~=1*NzM(456FPD{EDiPN6X(M!-L12%%H`&hnq8;vd5;i_w97Y})go zE75e3vo1jUnGYr46SgMCDS!U(!7FpJrz`=3Z{nlAYW^o-`xz7Ew<<2jce>}#Z z!^q71kfphZ{NpFUy~k}p&a3a%#lO4E-R`3%p-R7$spR|n{Vhf0z5id337h11(zIjO zku6w`m`X!)#p}66RQ24umE_{TyO$;ugSnaEVlOBVJgS~aP0p|INNyk+KfmbVac+W? zLZb$WpRqa~PvRm2I-P?f@`8MMPIZ^hk0xjO&*`Zc0O=Y(wAu>RC6_`UEN!|iKGRiu zGIkgf6Vp69CX?Z`pRskRoR*sq2!)b~h z9d{I>qS^~HxzLYPr^hp4XRcA4R1eDuZAeHcXSMRU4)vpf15CT2mzTzbJ?5M1x&^s1 z-CHfUt;v7GaWZ$H$74S+f10oOmjrm3D}{tc($X`$Atxs8-TcEH)7BaXv*pP5gK09R zdt4r)UjB7c&97Bz>VFbDmMmr7_wU~6_%F6o6{&q6&cwjp#WsPxnVoIz=&IL+vW6Rp z$~$sD>^Dq6d}9F@=I|@#{BwK~hhEC`-vMmk55PxgM~CEKtv!+^$2O{~>R*aUQqlxR zh#9*3)`#W#(v7puF1aD#d<2{U;tR^G+Lzj-KOgQc-ag33|GNsXCo@o3CGr;D;yGip z7~;q|DB`~LLX%N&al!x2ILTBo`A?+(bclRTkBOkJ%*Y$FY?qKIO)b4SL*svD1O9P& zvm|_CV)$A@Ap=F}aYX4gk-qI$hyT?~k~xE3&aPUKUnmUUaJn$awO>C2bygE=(0`W$ zjzB(`>vN_BpV;ob{PM#XYZp zz)GzZ4Gj%+XDs*X@biB&*OjVesisE3z>pRfhm|Z9)=w3U|LDK0|6g}rcO=c;G=M^} zv9Z4G?cy1SU=8jE6+KuaB$4Ii<y1UoK ziVs&3!^H~A&ILH8WnLl7e-b6F*}dC4U*wh`Mk z`Y8$jg*Wbw{8Gd490k%kUu}g=LW0J_!}F4c2JRh_ui0=qvYnkBr1ccqLm5u>93^Os z&GmSh$%cn}8Q?klol(lbz(5LmdK4)sDPHe8UWm)d;LJ>IE*bI|T<&#BA-@NTu75|f zKKTA;sW$&C^w+OntnMcUAbr=C>+1^vJf19}bQ+IcqQ81iH0i|d$a5m1aETC%w`C%K zH{#5CM$N1nQ#j12n3*wr`L$kv&cHzU-3xyN)cH%uf6~K`4W~3&icY`^;jvw0tz%(g zQn)z-Bl6I41CTI{y29~ProXzX{^{+N$zX$pg-s=q&{l;81qQD6Con*K0kN>F6C~~j zz6I~kCu}?*|7}f1Xuj)Y=}Ra-9)J(m$SwyS%puFyS;@LW_gQydwb_rgnmxV)UfSlmv~aWJ?7tPs}`&J zE#lH*_2=_b!$g(cXzkJYG5aL7`_4pqvyKEHH{ftqshM|JsNz^owGIyofZnMV2I{h) zHj?863gAs?)zZ8m-a;}0)wbiO;=L~h2@ZoK?1n6y4~v`c9X#)y#`o1%(x3R{Sp5&k z5CV=~ytIx2qd%-}8TE55zt9u7WJ$cP2rcxlmwA6I;4+XJ&kVqhC=i5`%8}bujkL>0 zgUrxLmQqaHSzP17IZ3gYjLb7`>sg4oxp@X6)X>n7*YzM-5vzA*2A`$*I!Ez+T3H!O zdwV;OyRn>oLLv#DmWordPaD|Qv*j?*o)VGVR5G=PhX>((AtT6PZ z;2y;6Ocwh&``3fr%)3s1JK5$9&f4ZUF(Ja{tjq6g9ZRWBWStR)HhuHR_TayM&;Gb} zWQ6Z&=-)mLp|plE)Rwz1w7?VvC}xqVwRTk0R*Bpy@@3who2Scy0vP>^p|=p<>Y%3@ zEFK~s?^TKM#-}Xz2nG%3{M8I$Zmd@!iJ^APPNafOQhIvi`%1Ij_`0sHF0OvT59J0h zKXvN;tF31C(mhUA#WI}GO$E5Pf**7uqpr>;l%PP0lKGroLtI9G6cs&-5&R?LK@RiZ z5({@!2$diPHiiXp37lsg_q?8La9~IC&~gGJVHv##F;_C>+nVe4Rm|QgOTD^l(kVa9 zr{gycK8~`ws1^ZLsGtx6(h72UY-X_x!#fDTWxf{xE@hQV3)? zZxswh2`KX8f3G?DR0}+0##E}?Fm2E(BcLjq zmi?7a!uX>`xs`3BudlDPF%iSSzs`Z`GnR9GYg}_u;m!I<7aECNfA@yr(e;5nEXcLa zUXMRF!P8j1PO#q9T6u_mS`~-LVoYt;r#fXq9l4<6sDPjp5*DS4F7puFr}{9b?%kh} z+@F#KK*cmQTM1=oEJ#U3u_z!y?hZk^yp4V6;iSo7mfQ#Kg_)xucRO6q*I(IoKv*LQ zRs$p3e{m0G{ip5nxw$y-@M1f$4ykcpzxp>e3g+H=TpdLz=SpYS)e!(=DIH_A@7dtF zy8HL-vb*7c;qFD|tQ7%UD>CF{@S1WK*8>mKd9Q&^-t%b^I*C0k748Rq<9Nl(iQhsM z{P*$arqAOgp3T9EEXD%xV?X)$jnkov}^aeRLd z{yf)K}u5|7fB6`q!?>ZYlYaL_u_gV z%_s0U>ZzQJ&KC}H3$@#cUx3+TEZ(O11a7K-rKS`1c`PwxNmy1C+8XB?QwUm~N+$1I zf<-jEoKT*QNcW(Bg#wL!^C@?5}{-S8`R2d7NQQ)@3YIa?AKZt4ZBkf^^ri6qL zG;Zq_PS{hIp`jLDS6w>%t9saDUf(hhHa0fkH8p3XdnP9*S8p!%AWcT5HK^^RAZCNz5 zvIF`0y#sEC5Q(9=O<3L!Du{1GfI`Xk$=n(|D6Q>^ZN7x~2B~`HOm;3?mH=dYNE2f5pxFg^j*icg6?m3Q(Jk94`^ zXisTlo)Ep+it|&A5dcsB`N%5?P;j^%={!AFGR8Jjrr#4u$N_Pd$LdiV92#0XI*M*^ zJ2tw#Jaj*9x}r!LXfW?q^|r{5599pN0{3v*Ppz_&2WAa)Ok&$zL3$kM##05@2!_5m zC?9ogVtmT&x-xn-c9qOqT)7kd>o;H_po!#?JMsF`1O-EX&=;sTH6riZ+mXD@_JMr2 z+*8D>!vLt}FJgpDP`n?dtD0?8i9Zw%|WCtc_|reYolUZy`Iv6T=^F zjv9{3?N)?$U37Ix`}>Jl2&VA@lw|X9qNAgE-Hu2gE}{y|NpL&Cgi1Uj9{GLuQ!7nl z-w%nbwxeeHzK(;k^xErrV*S*di6Wha1SNe-*M^6S5uYm2o3kXjfV4*7YFwf@kOnKr zWbe4Or`*lI6K3)v{Lt443A^&KEXa4U<28u3K%g@E4fW!d3$7N}==CmoAyDXgsk76} zXNVY4vXhQ{hrWYfU&)=cA(6|J#gL0c10O*sSXPoSNB111uDp)(VS;_p2xEFf$;*Ck!H}K zVv3~jjUcTb)kHEPjD9BM^`1}w2ht==zeNUH@$~AgtfXXyyZ}Y68hy4}&4G`lYxTFd zs3`PI&p&TH|Mbz6*VF`4JOii{GAf}_4IIUujKD7h#`B`Cm&wp`WP^%Je6>SH6gljy zhL2hAvtFr`dRLoC&fH)IU$S}InPVgye+WY1G7bthcbX(2&+zf(=q{MfMl>t0vkcZO z{0@izG$hsRi%xEe!S4}^wa^a->E9FHCYnUsm09{z{w6fD`fXq)`z<0g=GW#d@}Wlp zbif+hN)TSg>T%B$pJ@`_bx&?w*bV#SbIr0aM4*|cXaCg&%`SWxkC7$vosGXUO8*dRqt(}4G0MV*9r=D z8f6_8&sa@f8wuZXJ9g^L+pc?E_hOB8U$_MncwzD?KR?xfywG>QznDoA(r8h3(?k&l z5pjZS(Ao9~bjfW+%Eg5%ky$q!kk9S?{o#a4z|u0&^z7nb$LT>{WMQ5D2KTPFVyDQr zb@jvDR=^F*0%UKdYWB2=q=H#?a!^C;tcwp(cUy#DK3D2$OEqN0^SAP+5jAYoI1}D< z6!}38)vJmR1rLk|*UKbIBv_{l)=R3+S#cy0HL1onD<2MYUbjmWPAUQsH)#$1Fexu} zZ{CL{;Q3ptCM5>NO0lnkTb-^c%N(Qkq_hcz?c+1SjJHx9$6d%AS}#)!$0u(*ieF$M zys}IzKELd9AflgSR24r<`QRfOykb_8`p}r4x)%0w^~|(dEAnP_;Ob8zl19~vCIPXW zSE*ebyl3-|7Xnqk~UdV1)kP(ysxVpN&PB+~L3Q0jh0Rh>x*6->iCw(+o5Qv`Fh5GFLe2ta$ zQxdl@s<`Qq}VK!9vl0Q|LaPzpp!oK&dj~Qw2$~O zWp-R4TaSHAB+3yPUJV0H)rrqAvD&8^NA|+ByTd{lZ`4moG6?YEfJD1_2a^5ynK^r0NwE2)FNpkE7MPy#Ms`9bg z8!sEnA1ijnD>FgVM6iCi<|XC!C9e&pL^-4-?B9fG3YlnS(ZiXQWOXIn)E8IM?L&$* zVLotZ6rT+WI_u4d6beGK@bn?&nr~B-alItv2ZEiSI0`}FQ98<69>V|p`J<7=@C+6t zAp(L>@m)WxT7WdH``Hjr{)}Ti$>rsxy_;JP$A};t5PmMJX#>D&L3}}sJiD+^`}gxx z9fLAv_Jc~(3FXjZ!uSpBZteq);80B%+UtQE7Jp1mxJ}98o!3{>A7Fo#NDVq7GQ(bT z_mQl;wm7T_eEw}z_>F))5@f>Kl(pzXYgOqMf7%No6crbCm)88|l{w^;-@DB*`~$^) z-o~G?1F;O8evY zJ~A^i7Znw?KHiNya?aC)Q_0H7DXXgo{rThQc{yhe@f{s~$IH)Ov-`Ak!nK2gNS}wZ ztY^r`Z6|9TYg=2vxo=`zFRN1Xikt2qZjVpfQCUQvOVK_@0d5@;xN>P385x?9*dpBg zek^VD&K)EIiVlpTRaA-s@hiEd1QbZ>;JRg#e1PCiY0(8_fB4EQF#et!zK+272T~kb zi&YEfyj`#8NihNgqAR*=)E?%uJRK+)Po@cJcZ0)kv6b6I%#O7#{!K@G{tPoKO}GKz)^ zteL2@5;&0N*$J?*moVuQZdTx)hz5WV$JWo{Wnbxeo=Qzl?LOXKJ`4chb=>l}eBki@ z{d*ZDr8f!+3Y9%X#v48pAXkAB1nW<+a~BvAQu{d_pf?P3{-BVM{Xsfj-nu1YL?k3? zPR{2!v_`Y#hU1qY$PUe!wI1yQ)CWpX&e9ph-gnMd99#pI)!y-1#&oOaVK?lFIE2%d z>_RF-Sos!_2f5+I~RpIrQVm0yAJtoeR? zA$FttlIruj`i6#Fr7U3rF3aci3=F3om?E6FXZvL>>qkYpUU|5m`+-w{AVN*^eh5XIBAPSc;F)>PorjPL8MpIIXnd1cj z%>}{;4-a4UX>oB;NAOQCH7T1^j;&1e#4FKNt%T*v8#0~?g>Ih#j({#@Cr{_+d+LXR zzC}0Cc6?N=s_JZO^Py+h6F-+%8a|3NsZ`vcWhSnq{T6gcHG9Q`DbeFBc9SoEiJrm> zVRdk25`J9P*-q|GVUH4lL(h+(4-|Q+$`kujf6CUp+?OUgwL?5kcP4de?uaLgKQNsK zWQ_g(PF?Y*75rVCjnJC)r^Ijh)^1U1Uj5Dzb!_l>e3HL2{-Z8tD<|e*0h z?tVLnx%H-WYn(ojEdm`rnv-GE;z7^X+g0a&g%Uu)c{S-`&YSlZM}iqET@^O<07F(! z$+0vAhLC#`823bX&FK3?={C4>c|?P1ni}gl|DiOVj=8z|AyX^Twe#HxeugO^+J>E> z*w+A~MV_BK-`$;!6qS^8fX-9$$5ZlWC@B633F>KOG>tcVCF>xz5->WFlz#Q5ir5iO%ux#&DTV8KE|pFyJJ4ndC37Z4M&#v}r+ zXpq(YeN@2UK}P$+$A$H&0XGMTD?}7j)TrV29@daL`!&FR!R9$7vFJy;>`(6w&H%ju z^c@5OSW6NZ@RtF2|(?J z3I&azAc?TB@Z$hBczeKq?*)KH@#Goj%p~i@vS%!4uDFY=smR9v*Ig zckK|GLyIs3XgaX?B3u%y?sV1|$Qo^Grzr~Ew^3b&oBUw zPb&As87qJF4Wj06nUPxPJvFTfjWtE%2lO##>alEFTU&WWg~cTZpwOyk4(2M^>{mr| zZ$Z?+1_)6AM%qV4FqfB?lLbGqzgEgzq6`BHoRCY|*3w!KnDmGG$z1-+7kZ;Q#^rJ1Q&e>BJKEKa4HH%Z4y$QK5`O1rl$4ZFurl*1s!?u4%=Gl^ysnm( zmLc)X`2_{-D=RH?P;hh0J+5q@ydcE+S38Jo<`siZy6CICQ(~gCBs`eB{a`@tcTVC{ zMwc3F**$om1P&3cHHw&rh_qyP#zaO`)OV8j?MgTvgFUzbl2TG_Q&Uq0-^|+l5oVh_ zYR679($mor`&=YP-*PCb`f=HSNnuGT(?I@vslX)B(+*S{b)f)t*n|HJq%!1{Tq5VE zW#bs3;MG-wT^B7a0*K4Ieo$8U#11QVINE@UMk#M^;b2VipOr#D7J)+pqSGG1(oAcE ziHZ3Ju)!gvt@t=N{&#ntfgwD1EoMV^FceHoL#urMu`f1lt+*Fj^P49A6rx!0fIiKh z6CD6B_e)wDLq=Re!mC4VKuUtGpEg;^1381I@N*m0AD9WmC!`Db5B^&)*O|4FKD-w% zjFx`8jB_DklA(#}($^WZ!Gc5uunn^2-o)J2JEMI6<_VNXDE@C#?^7ROVwj;mE5WJD6idgw*den1As1D zjebEeI4B6=;NT#CM(8Nxu7$&*m)=r;6d59kOmqC2+8PO7=+W>0_u5VY6~wvvtu$ z8vZBKRm662#p;bqopTiBGvmUXAd3Kr9oRf1E2*i`xN(X>6|@lUP^{4aZ`QE5vNsao zC@k{&W3F%v(pJhsnvlQb_jXU2sv_-i6PS~I0&ExayM~`0>)&1fkupq(H#T)nrY|_N z$iEZEc5#56y$THdE%Kl{BLp53YOhKBV^T{u2Xa~>ty=E?8vY@+hGH``B@n^31ISmxZF0M{7 z{64|KSDpY#)%6{O2Xk~xxnEvWQN+d)wdT?;IjmA(7-vKs#trwdM_Hy-5q%L zcF93qAMCeLvivz{Bs^Dk|1Z|w0;;O0c^|$Yq6mnjfP@0l-Hi%T(%m3PNQ!i$A|28S z0us_8-5^p@(k&n$A|P?;<{QNK{r}c~eYw_mm%6TS?>YPIv-iw1&oeW}yKL%Y-s=pO z$04`O%N9-q73uH&{FUej9=cs6q2xl&A4*C%jlGy(70xZ4=^7($n*3eE6iS|Ue`K=eC>G4tYtV{zw2nX&&TZeP^cyr5D9WWe$G?B%02vY;UjyYvztLxN{TbRWPES!v@2$ic*#6k(j4D{W ziKy4b*flMKWkEsvs;%)GcH02dIP5cv4W;RA2?_2uNbOOVj*?IuvEv)(uz^*-#&0l7ah}cR08=u8B1|Tlw%p^- z2U%e+=NgpPLX61i7xPt)1-L>?ifPpkC3iK~zU;T)@_TNQU2{?U;M%J^#H07Z`8z#X zQKKIRwg2PYG7RMPl$yuIckWUxq1{s_$)L$3kbT%|EPid;?bPagrqY%dmEEop$2AuXntJNxpu` zLjITVk%S=am`^}Y@3;1so@ll58k!v0IS2@hjihfBE^E$m3W<8(C_SY{j4op zIsF;XvBsM}J1m|)Z7MctXLsMWprNI06Lwa*n>;P1b;-~T`-%?&lO6I6<6$R3WesO|D0jXi zIM!hEsZ9z#-|xaq5|rXzC}M7^>ThnTPTz47Je`Q^Bu-?`+()Kfp1jsNMc>%Ya~2-cU8MgezMJat z$z}>)g!4Pd+{ob~Z$i~fxu$*OJje5&(pa~6u@KJ=Hce@h2?8u%R=KCkl&@{oVDft` z3I42Dr+XQ%Hn~Dt_#>L_+iez8;nTCqQ#=l{FK=F)8cLk;+IK%A6ZRJUwR^dg?(a=6 z$*Uq0z?pin&QgQfIDr&E1h#zJy~kqtQd6Q_ky%!JweM$$3UY`9wviHf9?b{Dj~~b_ zE%w?IPRSo;Us$-mZ4i%~>>7Qo!cGddgL#UC$A z81)D?Aivt6@A=8@t@OtH9;pi}?{Z1CY-`5#xnZZXM~3RKAA*Ow<6_fWP49GR>5;** zcyCo@v9lW@TJ!Ac+3`Kia4UK1RS7|Fg55`x?P4CdMYD-x`zJ^4{2EltiPLQp3sR5A z-iDY~a(16SVD7d1oUYs+6f3u$>QFg9pHd%q^OZlvBZ{futYr7x$@c5HErV6c&5`U9 zCsd6sxXtX(T~TQ;h!fb+FvMxNd1t zu%X{}&UQ^CAHX{j%VwvBvGtqRPyiF$A z7+T%FPA3sWepougOMOUaa5Ro0{FMg3-?zWqoP3IvoCjz9D;O!30mbH#lVOXh=j1&s zoOn`L&6?}Up-cGfMu9Z<`E01nKFWP=n%|jwtF}tqt@x-3Yn5Mk%Qe%o4p$uilaX`h zY6I5t%Q=yDoy+t$P%)jOE!l}0jza&5O0NHEM z5^`E$-Wht?YtAk|FxzLjW2Tii$eic{kIp2c-vr~EP?O@pnZx5phMRaJ^S`!~)Z`e3 zQ63>8HuFPwLMIIa7Y@|3?P_0c-(`DzqR%&~z91HnG&j~~S@6c(j^J=zICSv9ZZ_*^ zJ)}6IX7iDrx$YnL`GtEAiv0+RT)dtYUgp}cLOUe>nejb* z$44@9SHIS8nmc1&AKl*}zKB}jDM7OP28E}*82Of&{QYm@r5oh}gY51tO5D7aM&3Ht zm~nc(oVZwW=yRd(_4LgZHM;XPM7mx1m7&nm8^@;NHR7}P*mEV%rTu6io4j!DxgOj; zhu6y`pOe<4X1hB+uQi*i1u>W_po4dqQfXfPSmf=e)?=Z*p4Rv42N>Fy9_!M0T}<7p zXF>!zD1^z5q(YqTYx@f<0ULp~ctp2sX(bCV&A`VYzv)ZRIqs1KSdxM(>dE?{u$P{@ zDvQUiv!117IHbR3`BlOaXAD_}q!M144zF<=yz{vRdDnV!AJ6*%G&p%t7(VWWFsRGQ3}_>hNQQ;kWBQvU=B0!h6 z?Lo2w<|HFc^I78bZZ7%Remz~WjT33vTdb9~c-zOhwtvj$GMy5Y?e_*MY-Z4$HSfpN z{@I%^8>>JpwL3qy;rL`d)wLgK?`TD3X<{|Nu)8Jn=b#!%fi^AR)a6o~g|#0{r;Wbr z<$SFcXLN2*b@6eP10M61ISL|Ek?a*Ri2B*=GPYjBNZ^Wm&)3sVed$C&l$0dF2(?wM z?}@qhn`2ijB26 zsY`v{L?s*y*a9|3Y>8Z#lec7+7pBaWH0%j{zI$C;!hGI36Z-cT;yeg`769v#sJC~d zCzfmoj$XXZi*0<}h=aNAjaihWf+rcI^>(;|WsxGI(E&GFy$j_%K}RCPr@~r+Z(?lw zi1FGJ`aD-Hr?xANK3f7~f^Gf3Qwe?gCMspzD8!8XM3)Liwpy1_VxuuvQWw({tGhZ{ z-4~87N&b#j@UwpZQfhM7X9I?Nc#A470+nA!5$Hp9`yKz4Awk&Dagq zpQQFiprE%<@A}3fUGnF{yHb%}*#T_DiRhklOODNi$6rgY0PLKTROQMHRctZY`)DjX zU=cHl7HL|C$-?saTPGWGd$UV&{RZj=Gg0Sd`6v*>K+}jyA`k7 z`=;%S*Y10mI4+RQE`~Ut%gq$6M+&oE{ew$3`Cf|z1B-rl!*)~d-!S1&=Ux^K&edvO_)hJf z=%}s0nm?cS19upkhkxo#V22BX{k}4;Ky9OV*DpDY6|095^*LF|PExPpQ-?DuSjazr z>rLAZ@G`>Vt|I32;;%4u$ow#UcK>VX4}|xjB;m74j*L$FHZCLz^|nmvBzTHi-6OWJ zeE#6*MUZyubw4y)J!Z7ZGA}ZQJ#cocJJVys^ptmV6GQ{;9Aq zg58AEwqaxe<0tVYSB{?r&c@feg_NfyhG(5bLO*ZnU#$qM_wG=B!lbGaMN2K>{-|en z;pd!G)`K~zecg<}Y&xfP?a{-un;ds|8L-bv{;YpEh?pr8Ns*-XlAO%{NN+c8?X^3O z{2jVz+&IkIS&HDIXyYCBE=~^Gn@uq+Xqs3^d?<_=pCMjbyTitKb|AELr?V2ny-vO89`IFtH z#?t_jSi|JzBC&i4eew2=EM&Tr(Kz+e{=tk-!Qv(IADvxYse?<9L)@1>KVm8}l0J{y zUyyTzJVQY|dGe%10FNr|#lmtJEjLf4(a()k;<&ymv@C%P9pv)Lcc_-@MECMn@=-SB ztSv3S0Jj_Y*41kDbwXld|JYdIO#@dH5YLJC2^GZyXm6W7p!!K4l*KTQKYMnJRX80e zO33ydY{pRXiqOKp9s?2*UgN%s!s;g}>lL+LiH)Sq0oU&j{GKHbk7a*ymDQlOf7bgi z3nh}XIBg*%G30{OzUh;tkn{ygwfhDJ@SJLyyOc3Ko{$iOuEEL0#bG_hK3sv4;=26R zib>wp<|D)OVD`Ep z4X~f_+RJSt-wygqV5T)FUa&?R`}rYR!111Ajg;vM$t2e(Q=_pBObaLpa&X{ENKDW@ z8~+}fnQ5k1>y3Sr%^;AtlG14f7)&ZE()Wipga};an;Y7E>>S9yGceR1)IfJ^6B>xl zF1mtFOMB6^;1K1MLQ>)t3h-Pw9v7AWJNC`~vM&FF7N zrY+ooSjntt8gn_ZOowH2YwK~b)`!uRNJz&V7#MI37&c8EO&zw3jE#K_`M__F9z~(W zcU=x>wm*7F^LHZBMAK*Jk{dR~ap17*rgH7#rO?P)cTaPEaAM0i<-J?!o5Jhlj|O0B6q_@G<;C(JhfgI9rwLzJRX}^B91{;t`)VNO>dgN<;?+)xxGf$K{!yG zLe@O~XtdaE5BE?0F`mzvQ++O~rRUt$Iu*Rny)!H;j%1ztnW0OrEeEuo3v@T?90}iX z(az2^9!cZqvpB_1*-9xZM>1l}IoHnaxYxe7CZXph4U;Bg2+A%i<0i)P=a>4|b@`G^ z;~KKe$%n^Gjx?j3ab{4d#^L_~^>cgS_F~ zU7o}qWs`xGooBUEb5$0L&b3p0D?7Ok4DEhxM63L!Ng8>pLn0+w%zaCaV-+^KLvQ~$ zdkoE&=@js@A>Q_w*@qewUFj1XX1#GWJ3Po)q5-;-my2jAZj|XI znl5x^Z?`-x!@50HScG#e<016NS?wDee{!l^S0!srT*^ce`dUVI7n57&_j*6WY`;2~ zsrcb@df3bwAyvuB#)iY2$nwj%axyF`3h!$PmUi4M($%P3N4+BoSlxSZrd4{Z91rES z4eH&?$JmImg1t<&B|)7HkcoNu61CW8-!(QiHrK%ha@6lx4Rly=f0;+ZxAsrG5d|33 zS%VC1UESTG?~a3MMMTJ7+(T&O5qdWohC&+b(5w?&>(IzZu*sLKO_TzRO3=G-O9z)E zZr|`7w8Q`}xLKG`3?7@gII&x5)0 zTpTE&|2sw~z6*TlzNe`5M41e809^#?3&isBa?1`e7W%MPVNT8xyTZlZS@waw^Ay7M z@TBU%o?7Vi4!fA^SD8?I<>D7tO-}DwAwMuK#;Juo0%ddMd+J9Fu`)9W9xg3{2#czT ziQAqUovy{K=F`l_)(2F2Gi8Ev1x}A{W~6S$uA?G$J#{7vRx)%|A#c<{7ybduQ{yPd zOd3XOtZ!q}F6Lkw{I1{P&yXAFil3ktME2ry!K5TeFvSW!0S46ck3~?;ZXxxJtM}6T z%O)w8zeZB$I><($rSx9;z;mFXt2?>2E%EP4QVyLQkYGCLWsg(lDbKnB_HZcLfifb? zYrNrbRz5CyJmv3#Y^*#cnN0D(yLF}(#3!1Mim?B4i&Eopsx4_8tA)H|-DU-)ou{i- zD6%aefWu@!i&_6orlkQz@-v;|O^x4KiV_3axb#I&3yj|h-YJ$UN)fEE9A+HeE`Qe1 z(E)O^w8TJ0J!8(d+`>XhSy|cc)y^1!#u=PfO}FEOq7o8Fc{t*tqEPdOCvtKuQ+ry4 zgq)etU)@RDWYW{o(dl+T<(t{g+AddNOux|GvVB%Y2^A3=wUojyYUv`{VW>^obvMDV zUY^(QaQ*VkyrltVy9w?T*sXI^d%V!D0rqv?g_81hsVkfJ9#R?pYtmkm)xyE1L-8eh zRvalSgD8qYW4G^?u0wVkIx$wHGDej4i$<;X< z+teTiu*)gEqXnYkuwI8TbD)eOPorRYga7VQY<&D^&eqRgztXa^rMFWz-Rn2p>$S=( zB7a{R)}J-G6&K)MNG+vAG71C$atpj zW9bjlTBE~&=#I-K0f(okxCU{zIF`Oft9tgEY$YWn&G z6PesAYm8x%ufVDV7VELb^Gk8drcj&uM0X73Kvx}fS78currnox|A8aian|2XBG50C83B%Gx z*U?3-^tP*dh7uMQW?^e9>7eScA_gdKXeji@xcfcZHb|D}`(Kdm_nGSI#SkC|($0A9 zKSgqZ?w9cuB}6_O7e7n**ZfJD_#ZNX&u440UtpJW>{0*n0wA65lx0G>e_e_|3NAAG z-;Q?yRV0R(-v0M#25AOOE&nPcAWP!f|II1VD8NBJ=1oLFn3a;a*NZND8x-A)qPcV9 z>b5KyywxeF&}^gqw_V{t*)wiGtIvLKa>$lQ9kj?^+ld(%P*GD;Lm*IJ_%h-?Db~8( z#fgP3Uewk{Q8_u4*THu2T`J!ox@Gf*lW4=#L$yzj+Q(L%wF)%8mN1Kg;WsF%j8FS> zBus(hC`dk1sDEo+>0$ILVtlj9iNH=moA*Xmw6js?ybHb8oRpbsI_Hs}Ez5H=KUC|ng3kmilG008@w8m0 zSU%2_fRONEs9mwvkG-SRehZi;(7&m7IY`4cT!oF_gG>r@QarWfI9IlB4rs@)I+&FGlS5vIcYTG@NVooy11+wJ&|(SyI#0&C4amY`oH0ue#gY z*@<@~M0VY^-e7pFQ|+InC9QhvnkKp~HZ%3=%+p1&GQ1!sr>XlLmx=A3tMJ#}-kV)S zA(v^RF(xZ)@K<8cf}*m=D{K<8|Jd`B8H<5uTG)p<17ncgfa(kB6@Mlx6?qB=a5^o^ zgKeO4(zyP)r@1?CY)p*NaIU(sa726h1d+Q~%*xh*=UCa(Xv=!ona`h>jI|pV!}x1s2&qyp{vWVf8crdvEPC!AyrddJ+-7ng=e_1 zqy+DtmBY@&gwF8L{g75vxSo%$|MRr@5!ZcQz#{8n2`dKI5EB#A@;w>K)gbXkBHyk^ z_8MYfa8Ma$S!YzagfRi?CM657WEB+FHne1-&O3Ew7CK4ZzyIPlA7KIlBF0My3+{x# zT!vRoH_BBQ0N(&E7%tO~GmWgu&Cd2^?#eDGARN3ze*MZ5ZU3$Xm7R!-O_KH^2zE*7 z>BryX-S5+a4wsliT3)u6G`P2{|TT|1Ixne416pF!G zs@-JQuXu{4Y5u-mo%^L8mSxR;zDn+SAaGd??OLk4MxSkdH}%|XB@y1zeCN8E$Aw$xip_TB zEjE3;ulm2-f-$jUP}a-6F64yA75n|40_PN4pWhwnlmx#cGr2Ei7(v7W*7SwEys4R| zRFEc-R#S)qj8k)AGoAgC4z)sZZK%o4O{J=IRQVnjWCPhho1Z3X1tPp`m(>R5%pEmv zx9fZf3HCGOI?NtVczSa{KI5X9M)}Tack+?c=QRKN zC}|>x>9NJ}D}hT9Gd@?Mq9vu|1ySyOxq+eD7U4fzDD$?E#37OTpGTxxo#iiv?f?7cxXUM+ooy4Yd=Acw_gQi7nYwS@QFq>7^KT+@$lVAxjPQpmzDVQv?S zsfwh*@NT3;e}$q`Km_p`Ju`Etl^l5bJk26WFE0`Bu%VLF;EI`v9_h_r+{oa{`~8qh z#?)=bMI)o))otcb*NlqbCkv;L7hKwLA9ixDpUz$>hcLAb0^KN@vDMvd69{jlqx|mO zzOhxOQ=q})onI`dVrV#%ejX!JAWPR7Uo|1LO^g3Tbw{f#LJbbVVHLH6{>6N`Gf zwjAD%bUidobe=uBaxcMczwP-INE4)y_Zn=oK~VsN{p#EF0Elv<+E$$}SrptJ090U^c<=Uy+&Y!q zfbX`Ij3@-6nJUEuHv04cQ~*OLv#9ClknS967U+D`8L{A&R!|@s{QyJ(_`Og!N|U5Y zFp8onI0i+UdeJJ{!v?MIp3jIkO63ip4yo%U6?|f3W|m+lCfF0JBW2Z5kH_=L-bnG- z?|pdS;`?`D&>KjG62A~ytGeW~-&{LZve0-AagR^;bU!(*5Lr(hderSee*CrE!-So4JTxUIA66pHC1Eb?Fs`|jw zgr`$LVAC1jySOqyP!5bkcao51`L`uUpc%49+=MCeb;@P+6srJML5w3gWybmLlh=`R zalYOw2qk(Ktz4FqzW{n!LBEY>0??O%fx%c8Zs?Go9z=I2;H}Eb%Z;&sUQ6#En=Ou_ z$?>M>FD(D?0Rby3DLmlslxFimJR!U@r24g^V`-BP+$(eqj39RCqfLelO(L*mHhX<_ z?E0Qf)$>c|imD=^;e#mOAQQ>k=F|C;H}3B6z)7eg(`i^M>}CpONr6&t-;tGp3zjK>BY^e` z^pE&t(taJzUD0RBn%I*md)#8on+V)DqD+D1J7Bo6U(fhI3@%N`8-Y)T>qeHUh3l4E z##-hYdteCs-Nk9A)^O>|q=n}q#8rbD|2X2FbK>?{&FnSUG%wCP&u&A?oWF8&z+96D ztqJmk%hsV~=q8kyAuQxA>4QR`=d1!9HekDzLWsQ2FT&Uh1`A>NM3M?o9u-53%14vZ zaVo|{0!YJt(Y1hgq+2lJ+&*N%&A}88jD%olj!?|jYXui3M#kXk#@U>+2bEKWN2_$-8@w9# zbi8=wxIgwSiK28U?*L5c$nf;G3?8t$>Z*md4`Hm`otcM+?)_y#bvV%~_X!$A;~?jF zXn6SH)XeO&z}&2w8bNhaMecX+-a$=uNKMb;){g9O#AYdmjTvj#^X?pfU?XBP@NWn` zjZ03Z*!q6XTfI~2>g;>~VFT1t3CfLKc$^*0SF|3SqV{MFM_;Ya1;<}gQcCu7%%TT# zSl7w&fd7)IvhzoGv1l_M+DHX!htd8`@AC_jo&CA)%U==xIOJ4O3YboVb6x_Di4e^| zAd;I|ewU8UMd0b1xHxn~lEPsb9UtFK$#h&O5nw0AQqHPrwcK8H6nywSwSx-mvup+Z zIiFpwlTI54YYm9RhYPA6(5aT~km@z9H_+X3wD=G=X1NPE#SU2IF?khyF*P-PJYHft zcUm=N3)9kMT-@^BcJUd%1hqZj;(ND!Z6+(4fNg^l1FRL-*VpgPJa1+MuahY-Qeh+l zSTl#qBKxCuJ+Ga=OLxEJzJ9C1=jE&RSLXt(lwwkQzv^N-g%IRlIsasT^6jnP_q%)Z zIak&jdiqs`AzsVLG;tG#7F!R&f+=K`4$55m_>{j-N8KS03;mKXMMQ2>Iam|;rRvg` zBTNQnB24%LE|Nz;lQc$ZvJuP$;Mj7pzJz-Kp_e~R$OLJ}nQ|;B%|5RdbnevYnenv+gGN3A#_dB4`le`2I%weRrfO_(&gxy38#} zt+)Ppia+O!eWL$Au(NDL@#HGBF@9Wr%_&hM5Ay82Yq7_VqJc3%icnKihe!S;eUvr9 zjGq_cNXyC9eYF4IbSyGLMK+eC2){eaX5UD1NRQiti{`-&Y{ZTlt!HH^dDWl*;=N=4 zlfC=B@b#@hm5m*N9O*|vp5(W|?kaa@PD+p~XX;*$$@oWVa|7NXNOn|_#`}=Si&FCx z|I=X+w69WD_A#xTR8~_%OYCXOKyeD;Bcx_%Y<=T;<=(}6NOi^sCg$Jk|0Q#>-Bmfk;_b%7*eD#r=G~xIzBZ*8ejntW8N$*m zd0$vJ#g6w$*F4RrftaPQxJwuIAP&iT40Eo&sD+$3+FyW<=0Meroqmr-AodcEelSnp z;-S_2Ru^c~SsY?G9V{Yc+5c<-9nt_lyHLnP@LxQp3EIBg8)U;*Oj_uCcLnkF%!DL) zvhEg8h$t5Fyak{pA&h#n%FmAuhN(oF9pzronFFkKB9HK)U?-4B5IXISMC-4Sg-?VJ zKFbXYIQ;5)AeoDfU}rKF)~MSRoj&PDbQh)A8;peUt!Je=mZP)LuCBXk*3({Sz_=q5c_QZ5dFw&|#QB?3^tLpY zX3YUVh*CzI3_v=_{`)_9N6qBS()=#`sQAl&s4;Z%U02kN`qzR8-=bqQgb@h->>d+n zK;`<657K^cUGKMzIO)qLfaK@bYgZcEz=FBc7+hdSs%1cvfze$oN?iuqEmqT%Nm8`qm~2PWz< z@BBOFvN^iroJ@)JXX#?x91cUtv6*OYNx_M(Hj=j zj;rPNZ!!Yr?_$>sZ5^7<7G5VNOa3htTTN-k@sQ7inA;6f^|v_aL($ zAU`&rxh1(?nog!Jcco`}=w$6Ce*=E%!dS7H@PXI^!+t@M+PlIN_gsTLU#R{}d>gQ^hEFk_RPEDq zNY1uKDV_P9k<*H;V~rEqL6G*gQ5zBQ1vq>$pFIS4_^+jGe@2{CJ!PUY5(ID7{Bf?m zBNMgn2N)lBB{s*XQ;LMnG5Bpsk2SAU3$DA~Z|Bl+vaPBxV#d{^hi_fI2+!?vG#@M9f%fhXvQ38sy(vg z$cY$V-wQE~?w|?R9PtpQu&bf2)V4qiSF#|Jh!nasC&L3>(-kr^1Lx0DuQgFRuWfT z2q;LvI_!x(^o)#ngyNtb!`R7Ip7FQ1#CP3w7uPP(096pxqF_#W1Y|jck~%z|NDX1J zs-7{p^vPzDS2+n^v>`1c11*u)2CoYMViVMIQ5CWfW3~O!j7><$)d?q(k~+VhWGMDB z-Z=2ged@`Zhz&)P>(7KC4ogzFa(j~$csWNw{aX2!DO)}WPL>-4$gV>;aSbS5V|{IH z5-7YA3cZK`0tF+2=+fw|d2a!e$J~`W{Qwr}`EmUe0g{)LmezWPTc~bKs6yd-clQ|f z8mLO4lIg^QOOBFLis}6lNy+F4aH>hcAM^ggR!qCw6rGD(K_`}0Ru55`H3sr?a~XeW zL4Dm@A-<9sU5hWhe{rkZXP!6zqFFxRacb`6G>m_G{7UP*%NEdqrN zoSSFITR&>Sy>WD6ETx5yIaD*z+edJC2Cltc0!Ml)Hn7-JAC}}6a*Ds;DrA# zVI^R<+Gqc%buIB(v)V@NR3Ezrm}sMq;3I-WWH^yyQ?2TQGKih$-9 zot?77r>W}VaF?}eooxc<^9>s*&hNdwWx3806hLQ7L#o#+=rDtGJUad9j zNysKt5%~xfaPEC^=5ebElC1Uj3}QBj7}8N_Kyfl=#L(z^s1pCY zo(6(bZ(zFo4nn?F3VLoO(KusrIj* z*G}ci=4`lnZ$_s`91GzKsz>}CShg6*CfU(&pU*o8e&FFSDjomvj2|Xz7Gf{;PzaFQ zfljI0oAv<03rsx?KJ*y@1?o;0Cw%F>Le{dLY;4$HN(5g9w?HE=_cMmbH`~f|sD-p< zVqyxJFv-o&$ATTFT-5)B^D%TQA#cMC8MY)`tQ@z_^$URrdk^D+GK{D)j}Y0_8uE&c zjs}ld6#@FXa@J*0XxwNl{85(W##Iox9o0T4C@wMgvm2SaAd-)xH_ z?NW3h=Rbi}6-H1<-2tNiUr&*5S+L;>RsPD_+6-|{f=N{xm6O=uKH)~Gtlj@zQSGq! z1&rlec!EJlLPA0|5+tXbxUJ1ixCt%AvmCG2XCjC5G);i8yo!bjZ3WJ@kS2}ktBA*>|IpOjg3ij>;>q?h}Vea+tXi#y&{z zZ^_pSj_t!RWhYjvPkn&@cxh<~a?%!MWn^$yfDie5pnN0tvDxZLRYOA@5Ey0shlhr; zqXJX+1Sd}W>5u5WieVz`e}2VPJ|I|ePtPeRXoUs?)FV&`AI#wC=H>=v%*#VOZ~-3A z&9eTJ3jo$+$4O2YWxs9>)!_8R`}i2gbbtRh!|}}C^|_mrWM9hLez^undWDW#`vXC( zy5>8QqX|z_SsLI64I0vKhRbTWVuBf<$y51$AwU!Y)&*6dNjW6V%xGaDr-iR?9T+P# zuQ1+4!7r$>gvaUtNXgamNDK1#O#s#;1lrRDN+MJDggnnI9%S({5-Na0f?E+%< z1{OehXQvVSZCH$ez+kzF>~dX*EWmjKA8ayiPbT6-0jdV>Fr=!`!gAIlzRDog16wB3`s;}GoF$Ul2J5Q@HNi$q|Y}nw5+SR3P&aD(;=TE_R~Hx z!Y7pSbRz)7ZG=uVA235ePx&>^-h*5Dwhbg&L9!XM(k2UT)O!IP!Ah|4HS*MH*dPJq z_dGD+x$ai)OMG05Zky)5=Nwi9zC>;CSIzlWGL}nHpmUda%|(m_$DX5bEb}qu*e^|W1^6|R1^!zAc%vfke$A8Z#ymn&|7o?+Kq@z+i&OQ zD4wBa^%^!oksb$-Wd7LXFCkU`W}%)`bL=gPP!){Jh$ysBGF}3pT8tp}CFYcPV4{i% zWp?41ns!D5Rm%M8pEh|7<G0BpL_cA)5w$d1E$e*g`|*&aWC@t5}xfysIay6wa1VSI6ZVB{HL8-Dm_u4r3t?$zk#Qd;87T5^z{Y?T*vO1t3(nm^kB45UCQ=R zW=w+Q$Yt!{i`ec`6R>9=<)kItdJ5`uMfA?qFS_uxevTl)f%vS)98U*CWP4fuI^r~_ zBCi`>EBt9soX}SqpTI8hB`LaX=l9$HkSmuu;8;spPucSW5_NDMNq>I7gzw=f_xH=t zm*B+{AZ!{q9q{~jp0y5sLc_rME>bPk{&$_iXGo<%UwaBA&Tn}+irX_MvE_+hKE-c` z!U;bLk_#6ImDab<1uy$_Nu&FRYN4dlT=hdz*pz>xUbv+mPlW$_G7C5v;zuG*_n%^k ze)t`-r|A1I^?zGjW2?QQMRJR=Ts~aF=P({C;31*pC@as|e>tw|LC^W$qde`SNp1@# zMPE7QwrCIcqmh{+6_4`$nW4O28!#BjZ>)tQCH?R6xj$hgwBRGoc^6O9Uq5a4+(|_| ziGNLVT?T2cG=TaaoS`ChMOUAb;c}+Y@YIj+$fR*Pz;X9J zDQ$;BOq9=f%}M(sn(LBK0f4piGo}_+0!+=1Nt|zA()TiVpZg8P1Ev81Zk;_XiUu@5 zq3Oq;Z7Z9tc|+E93V6TamP01$-0ANfcU)VbDxEz?$ukT!NPIq*1jK2S#trSoRzEYqO0y&qENeWUcy!k%DNC)=d+v@XbBW_Z= z$?6v)Eir>j1RV7C+aE32?y^D-PSzks(de!9Hy0Yfr^d}1x0X~^#)Z_S7SYrT zC20G%nm`fnZrP+(9+C({J4cI^5MGqcM)r$;`vJxb10@yFWD-jRucxkq*h%LbYCJuzVi&47f?Qby;zi6<`M#^AvIhS-+l|f z_Icc4iE~(2%K@gf3DT7rBL#DJF(L+6cGAkq2;dUnPYH9gadCDyBn{m<_fSX(k^iEm zkl531uwcm|NRkzRX{aZ2;%J>#u}cBB|Z{Y@zBZyk)7 z3YqyS8XlV|02h5{`p$rjhK>$nX57P-_3deo^`Lba3=xSJN0)o)r{9^D- z9R5+yCK|kiAVd}X53ewU?lmWqnj(tpw)^_(@e>Ava+a1qIrwwrc&(8j0S>bzt=bR> z_CQ0n+=`DG8G-9?QRln^!(*V2tc&vV305A-%1St_LDo}7R+iNJ%FN8n+IW)30FgM_ zS9(qrfORlFG&Ikgcs*_YH{JCH*HfYdL?|sWmSn*bh^_HDY5*UBdg?s;FF?EssfXG6 zkZ%Q(2#{}eZE?r_F*j+eBTGa(zQYXUMFAepNpR^ZVb1k>kQfrsfXjOK?q$&3aOYcd zm6pT*{ITBmY{;Gj=mw~*Ry`*t2gdN5F3w_)MPqP%*RUm;UqWmdfMPzFa$o|#crnM;D|g>U~2 znkUj#bd_8Or>D}3D{`FGm;7m>7w2o9JN@$5I%p6RKSMgzi>0hjl(#`6T>skZe$_xj z0sr<;;*++JBu?#AAw;#lVe|c!@bfJP9i0hw4O9dIVU!Ia98eX6`1lU$^N@q+mI zs5G?{g0fh#V7kM#V;E*}lm}MP;>HiaYx!8&qeHR*7~DnwTaD6pU8C zY>(?i{>H2K*v}ZbSznNQXy)Wvmmtg_D|TFpwO}`Mv+NW;!sv4(TA=qnU%ywB+ekmE z+wCBE$)wokI`NgyJ0_Kr>Uw(l(2(zgUEQVgF=BlSyq4^FjY5}EW@6L*W3rcN5k({4 z!>AZ`0Ubq=G4ipxjmc|Xc2@6l4P8}={uK0cvDN3b zb~-(zwom*0eGh5g@t9`zsGRPyEpjO7H*9q9#rbTY8SS6Tl-b!9RbA(!^;Nc$Kv!%) z{PMJ_HK0G)>@n=27+($EQSD{GuZ1Xac9&ycZs%WcVb;4ykhI7zNCJHXUr}vc8 zRz}HfIEcx8Br9yu(M2|mL{MhH3)2kElk%(4N^p4a(DN1M)%{Nz>lC5_8RmbFi3nAj z_pkMBsDnB3-ud?Uu3`jFM0IcF`TeX{S{@KLd}p=hGc=3b6;SY5Jl3{O>=Ba@oEfku z9L72Rle~C7z^AfuF|ahehI=nxj1xohNqaQgvCLbt0z;7#r!CjbZLO2#rJ@z+UsRTL z*cG0d{WVaueR=)8*qKOjVQlKi&d{rnm`1M@xG3Q_t*p_i^ z9hU4**PpCjR$I0XiW${>Q`vh~r0)8<$alI=W$a(MoAr7n5Ou%Lg`XB$E=?*y6OS4R zA<=vuK9(yN1M7h!a`#P6oiDcD^?dd{3HRlu*Y3YQx|p8KK5{=!K8VUVUt13GLfdBx zW?0MbPW2_F}0C)ceWHV^4!{op3=kP$JDj7 zEWE!#3-n*XH3w&B-NwaldCnKo%VJY&w&g6jb=FP4pM}yMhqAbYD z;o;_f>%f5}4va4~6>|(t-mv9}x{}g|(9qCX*7J!%6f(V}`w;N!ml^o0iQ~0r{4vSN z(<_38S@Ieh8bz$PX7CDu!34@2di^Envz^|F7+k{o9f;8e(5$*z8^s0*00V$(KKi2v&hm^7JBHcbo<{#ZZso z<91D(QBB=AXYno7CKV%!6YN5PHE>hJMQ2|Hxp#B}^*-tVgU1$f+}2xAKGhP)2wv^j zp>c@=IF9XZX@GfkbaflWSQX%6S;)PSYJ;G809dh2$)F;_A*#AYOj}d)U0mEzYB~H5 z#7cYHdA(@W!LV0d`Wc;LH1K|Na(p z;1sK{$n(^a*|U&R1D7vztdhA^I}?|0|75yD>RLC1_B49~4Y$3HyV0o@oB}fO>dto1 z=eu{4*4Nj!$+i7}D^ug+?MJ2IR)L3BR<_{pB1(d5O4HJkm^g!M6~8;DJbv>!BP67C z`SRt25pi&lX+L@L0mwu?WgzK38su6=K@IL!Kju96YcBZn#J2Ef_Xq+(2l)zTrKS5= z9|N%Y?YA7#l?O1*x1-M6tk0(lG+G?3L%kUVNnU*yChK!EiIBWElo{Y5N9sa z3t`mFGZ4hH{YoBg^-CsHU$q}8*8y&cSO&kt!q`ASC2EwiFLnLuMc4{(Cr5T=<*T%U1=R|AMtvP2CA{A zuP?i_)Zc_%hfU=QD!i!A(LSkxV-bd%(Z}G_MMopkA6*ao&r3K6#Dk!y z=<#m!>YCK=8Y(K94h{~V>iYdXuNrA;YPPc{ef|3NWNTh5^J5|KLcaM+Jr|=M-e(Y7 zf+8-`YB(eRh@ z$lu?f;H7^rxea~w=jVHn>&ex;ByjI$+fPE1zX`ZzC)_H$U9SNgZ-7Z{qU9Aq9nZyS z5AG~5f?#1{@erd6$GHfww;}~xZ{Wz-He!im7l#c3?m*WjoOmvOKA{O$W;0?LwWAMD+84V5%<$sFnN zrzH#h3b))3;7%CJ+kQVUD@z3^Ot2Vgj8(pYK^WtRr8YD+!Y0scFZsBwPt(RG%gM>< zO7E29VbF*~66Chr&qh@7r*;Tfm6Vba*yE5}%_aef@?BaEH_idjZ zLBt%LHI6KP&dv#)Dd>_Nb-63db4=~!%kJ6Ld#U*I#vCGXxw{z_ z#SYl>)}>9qfR|1k07Q?x>qCu79r>d&IrOxkpDtWK-CQ%9#4HYX))uqtpr723WFsxk zpz6a89M2XY$L3e&To}2=vekmv8FLX2ul%&j-0_r|WP=isBG<;Dhl}NPVto1czYP&| z0#nS>Tc_$%4+`eXCNY=4#W$*`mNTCJ!anECZ9>vbnPXAD^HjVoWo%cx^lHsxeiTVjgP4rag%uuT>fcw3fI`ZX~k}&UeZU;wY11t-sYIy?=iP?AIFO8@C|u z66(RSyK^Da;wN_A@@e|dto?Kfv&?jNh;;VIINQa(o`;WmzUT{jT)esy{Wb{=e+zN8 zYPMNs0K`_zR7z$p4DJ@p&Z-XX8CL-XrhhKNuR13uXG}zh4?s-df#BNu`X+)?G=2+e z{2*~2I<#xO_1V46cZ&ZhFNwA7P-1vhXH{R!R(I6Prv{|F80S53T<)$!+U?H8{ueP9 z6;}nnsyjv^PoRBVtBBxpO@RMgWb@ak`}XZC@}v^| z@MXot%jJEWJLa%{-L?6`-1YrsitgD}T|*>E`*@Rr{aGX9b1Q=|820Y?-r}Dcd7inY zil9zG39hY=>XCv+95}q>B_(_0$#~Z=@UQ_p0z--=ZNRH{z9OMVr(AY*cO)Q+O-{~m zU|;|Qnr%Ln(YDf(1n31h-Ic-!){6uy+@fS?JGtcEIm<+XQUpaBeD^&dvVS9=g^I_d zQRh}jkAwdpRC`-mZ)PN3;nd3WURzzEyae$5pXTF>`mFp*F}nty10iEc3f2HmMhcmn2`~ag zlIk>B%HX5L3(u;dIrcrNpeL8=xE%qpfYmI~4dInGj~v3q#<=pRQQ#}^UnL=vGXGS(SVCd3k^l$a1>tw>@= zX5(<#7ex<2xqJEJ>7qMO-tpDN>>;wv!Rc_67DpEN;0_<(^~IgxJQn%s9VhPX?rIXP z&VlSdSTMjIdYUU3@$8->@B7|T3VLjGAcpgkcw|#5U;%0=pD=`On?>tGQXHhtomNKl zQ#HCeh5Y^-r-}0K_kJt2?&1f?5VHabI{LGo22SK81f9coVY-}yan6h-w!)Cm7R!C5 z?lZl)jSUUrkyKipiiUg-&=^>b0%)HMIcj~|zXi-th&fncRfta*c~;s*8o7b+f2*!0b+rU16YlXEhP~M(f4CT zzaF^-+DJFoKyspd^NjJT_V3onYtv{N>hZq1fE|<{6_vxvR{8&qtu!{yT5U%4NIvj@ zYyq$!cAqPYm2=OVo(b%&jR+4J9!qnd1=6$MV8hLw^&Ax1S_CgsE4Ig!%X z)}{v=7mg9JEg?T3AmC)n&1tftps;Xw*VF|PfUkF@rKKj4J7*HTpsIWGokq(7(Cvum zIoW#&z_IJZx3?$z*f#f%KJ1??M_fjpBEx^g)V97|4qMK8RiM?VeENvE{4aYdN|l^K ze)tF=Ao09JWYfX-b~&O@>zYXV>?Z%v(sKHR09LHpvH$(&^-4&-gduTU3~;nIYZLoc zQrW^uUmQL$0#zCKCrfb;?cwA>e&xQ4hh|s6!?5l1Kx@1le8b8YN;C8VBHzW+2=Cc> z?&`U7=PaC`Y{5o5T8L&86M3zo)?BUve$?uVhZu9;kCMUZL;0BYLi9ZWF%trRxtLko)? zF2*!R1M-m1Fy{ld6w*4CN*x&A)U`KGHo^U&uK{4Nx$~TqSgK&AQHAHW2WXfU@lQwV zSeLIA@2GO`&gFE|n_B7F5WV~HUP?nK|Kw~NbNYzxQ7jnR;BtmYQt{!`SN9;84$2Kp zE=80*{_Y|RSt}aP3B&WL|6>AAZPi`AB{-y~)K|)KxvYIKX}l$JX<#ZycGO3iWGK6< z(kia@T}o-c?Opyv0a*K&QopUnHJ1J>7T`D=VxLG|+T=H0vE4r||8N+S_|KE=8q}}R zhvqUex~e01dL0FWXMzeMcUKBL7`~X=7VRtC`1NoYnBMO#gvG`0ZmOwXNzhI$1P`3_ z?oGC-F8JG+$cgS_Mi&j43ns63O`F=_y3_oZtaR```c|SP*)+{HKXXXTNe>SS%~wl0 z?EFR8;`chsf}OK}ZeoeUhOk8d9drU<;Zbl^AI-x_dzDL`)Xna)viH*565+HX!6p;hVBNnHN=JNgg3s8Es(*#kiE^3F5ufMiA6y##= z683=qRU}{S?SHyocZ~P+VJG(2-8=)2{UY1*;<_E0f<%iyJ*l0BA^qu4V)>ygl=XjW`ZOqY-b9cW?DEB3KZMNapadtLx zkmj?rtUtKQ={|Kcf38np$*Q||YVXDB?2jg{>7q8Ri}!l4xQrTswxuKHUsm_%TdDWp zm3-21UTZlsI(-T}v2+JxyBRU*qbqJ)vK~Kj*s&Lf zW^e$pYH!>;3nSSmslNBF`N9=}t&aTtD)YNCCZe@MUzGWMhCW~zxR~wEo=sl7?&?)B zF*mIldH>eOZ|}&cgj02|yH@{sqJlk^?I>!PC~2zt(35AY7bjkqeOI0yrA`efF<D|g$z^(C2_kPbZ6h(mRj0T>{xHKkeNK0YTS zn5Mv4NpgAfJuWk{oZQ@(Cp^9!HY*tl2U%1j)?5wOh6w%ccEkVa)2DuA5fKr=8Hp`6 zMZ3BI;0ILjA^p7c&mZz9a{xYqOkA1nhwS~219q5l|FcZ?qoyYahG~SEPB8wp!4d(p z0XpqyLUAf4USsAXX)%rB||!Bb~0xdcO~AGGNFXWM4p(-w5&>&&Cd&46=95pAjx@*@nig zt%s<2JP3+l*5q%m+v|p}2-KJkt`_QeCQ$tC!BEawG)=3jwBr0?=#2!#00#12u?^61 zR$*cHEDqc&ch%L^Fa7hustxPc8VC5LYN3w%JnL1^B?ccJJWnAfLU;!LX!g5zSHL^B z?fwmAu4H3%f3mchTnES>^N&P2#nG^wezmHn`LVq&eSn_DsP4yRpr-^1md z!TWS|bv-OH*#0GRV{Ii?k_M4?$Q*X_%({oUTvuK9aRm}91JtltFrzwt#6b_VKCKe) zBWMBEX)YYP4Z)HV6Spw54X7lD>E_X-wMiff{I-yYh!isyE`l$DD@s7?Ktpi(fqKAw zuyF0ZQ4yi)_jteC=PnKW#f*um4_R`kyWoxB>Q>+?;mi2`Ayv@BE>p_FYEhQ4*!bM5 zg1!$0>jO-+UGLp~Xa$7D!E4qiR4!K#izRRL=; zM52LP(0<@!?Ycw3078bq%||iySVTd31DXxTVnviK4-=fq3SDP(K|4nEfq^arfU&}D z?tBPsw+xVL#EUp`w%L6QaJEBp5EAfK#-Z)V?qnR!1hN+)OxAJ)yso<0J*;6qmob!R zT)9uN!^jaa^d?4JG^sZC^~Ehy@W%^-p+=ITTsRbjw`lEv!_eHpED;hG?g6N3=j(p) zC{cdbkA2T{^G$@6iIj2(zJh(HNM%7(hPAvp4BT$;3H0fVD6~T8XD|@HLUKx=pB>33l}cHbr<=4 zPk>McYP7)r*7Ru8*~73ucimR>pBnwioCCP&y-{(i6Y%I$1~;n?EFK^yaBlhZm?IeT z)4fBwJR0Ct)3y!NQ}T6+jxe;c)>wLxeWVSA(|Mjx?n9h9!z4r3mCCQa`6aD!X(id! z?O7zZ$&ng?{ON&GDe&S#q}Cvb283`=_agb#OulMXI?!+6kUj&-8VTfcRfGdLi2^R& zu-I|Dk?9_d}dUn32?t#FWej}iA+PRH+R5&Hwuzi2xc{~t$px`_v@~{qx=8* zt2y;Ct{OYmS#*Gtlk-AO`5|DxHXI{jV~1wkHvs^v+P$3`Ln}O52AXkvQ)8z~8c{gc zJ56(lTXDt4U}>10>QQUu03N_}p5wh)a2hUGyj!31T0V*R0l_8+TMEgaijEvDE8jbo z1*Z!PzD2LvDv1A&jHE3uy)9o61G9`G-91oAYpVJJ;tz~3Fl@lU;(UL!x#WZAdzSk8 zzS{kE1&>WXjnB+-H3s}(fbcJ~Yql)NEH5u_J8g{s#>kcRL0DJ`u3kB$lzyB*2!-vrrpnD@V9VJ~L?kSIA<+(Pdqj$l&ymeI1` zQ4DW+6p0}kxf>Y<+O$Lye0#tlP^_MbB7@slD-VzH?t1N&)Sdc8&!6J#KZAHK8bNyX z>t(=MgEPh+$ooCc@#+*~)zs9$z{YJEA{US|O9JW`DAvC&e1gI6ZT$A_P3?mYtb+G% ztstMyfV?#NtFOD;!k0peD8hP~=-s`0pKQ*j4AvZxn+l}^E}a3b)GR%{v&%Ucq$gsy z!6^sxVa+Ewp&IKgZ`{B?p^y-nkdP073E-)S#8QvW8czFoYc1%?A*XQC^8aJk#5Y=-Fyzr4qxV@8~h6Kad~g*XLl`wBRgJbhX;@ZD{A*_4EJ zf|Ej()7^a1QqSI=zJ7DKL@*qd55la$mL$V^ToOU#>~LNiJ7YLeIPbe^Ytu;W&VG#fxwS%wsPs#AODtI{B-6J zz@*3~$s9>2;?p?g60-!AA`<%$K0#7)Nmh3k^7X?GJ2dv#LfqzLg6NsO?g)oN6#<9E z6csQCb*S6Ma`|Aq9>sG-1tuKBYFcA3!o(VfK1`iw)5KPT8K6uo6KJ~eh z0?qvt%@nyE3hGweiDYWZ!rzP03gBl0lH(S1ep~%Ub$xyP?%dA~B@i+%lz4;5F3zMa z8OZ{TBMNW_NN50L;LGT*#7mc$IWM3CDDDt4cV%kzFv{ zf}Y97Ep=;}-3M`MtO41Ba6vA!kP(46+E9vefJ4C!CEg1elHC!iFHd}vNUNdV;m zC;t{EPTlI$IuO;`#>OMI>rg-ecp5jPhTlCn zKg2A93oY-WP^e2hxI}(YQ4N>`ObYbd&*~63Z$L{-uEJ$*AVE01S|Ozk{0!dWwCM$o zH&DN}<&!-^aFyj6mOvN#DqF`Mf3qoCmg_S^JQz^lf?CmHskKEJSs$Z5SK0Ea5zBC2 zq>yR<^zG{WGw}vaR+=c{{a`Om%m1FH1P=)UY`k&fM*c%5#(HG-l8=KaL^%SCP?$8J zd%1xEhnhnHE+HDfc$>*1bf}{ij=^-!c-Y(9SFdal15wqRR>{`lPV5U`mmZa3N(K!Z!CaN4YXV8QOHEsaBV`tcCRQfQej4j<80>(GXVG-~SpU2MLJ;H=cl77c&7jGSvtyztee=!dr&9N)(+~GmCjs>%FfEd00nvN+SkXC zzn!@DKMybfNr*JZa_P~(7g?Jhvg~;wzNRbZs28cIIGO{@J|cm~)i`@P$2!>d*9m!g z<&Z0v_)&Aq`kOZR`e@~ri^A_Sm-FY)`?m->OY|x3-AjSy=`Og`t011irNF9uNO>(J zzB8D^MshCTg+Z}d04_2-ZS7F=AG9r>%ct+JGrwmR)g&LMFlWimceqwLdn9J7BTeO?y&_`S>=Q z)oxB%+RUQcltleZ4((K3j5JyfORe1WR>g!W=`eBMz z<>$LFg^%4T5p^`sG$%Vxvkuqk$n6z^Hatj z%b!E*hf)(}v$_|ELEGZhKkTm;a`()NNE=4pL9h9s1+3l~%O4&sYEe1IEv+V365`sI zQ8!&PbG0fu9SI*hz$MOqq;6|g@@@fHbG)YS?IU|lAg+{gP19XMwj?Kw=sQ_NrtP|c_ zBPqPutlyuaKriD_K1Pv)^4r$Vk33O*N;VX`3QO;0&rG)|@3+KO^bej~p&g2sb=N;MEjSME%EsMYF#_imb0FWQjO5IKF*fj28qZe^4Km3 zmvYZWK7_lNlD?seQIEInkOO;omLMgp5&!37v|(U9>$|Oy{$T_oO-R5c<{fkVpj!Q~ z92`H%S|kxw%wOqslP}hY*?^|##1U%PeEobTd2uI?V|hwp%BtU*f^h(FCB_NAJbte< zfvq!kpv=13HKyz>@9)hlZUq)5t^S6s=k#rb@e3ClORSgTv*TzWa)DrM*ZvJ3Bl^@zLUzs5` z8XSFLThn#p`Fm5Fl8NFS*YBO%R`09lX;kpTp9m<^z1(8s|EtE?Z$h+Pz z0}C|F~^&lgqct;YG@;fbs~&*)!V zylbDl+!NP%eunimw^fJtP4%oXqo6@qd1SjaTT4HRb`2maD{Ftf7=&90FThfG&b=V)d?L8R+Yi&j|0uwc-+!Jic>RUb>_eCTLBtI6WnbXL;h zuL;R{&w+h+ig&Twf1m5bgnmyvF#Sr!3dWD-+9U8f)4^qXy~qpRMNUsXs$VcYPg(my zp?=UJ@hJm6S|lc8BBw;ZUF}8shi{5k@%w^9SP<@OG=E2L_=p<7d z>Yf^>LCbu@(8EW}4>urIvEBB#PZp=U9=lg_#IpK^Q``NPs3XbiHz~jCOl|cpxfiI< zI{kC>wLpqCwN`4ww2uVGjNegD?~|lNntJD#iB;eFsYRCtRMPbp&Y=sf4}kW3bb9#W z*|5~Dz4Xe!{FDbK<*fMr#V_s=XBDLk@=^1dFc!^AwrdqW{=hoITP&g=WH(rVEfeHhQ@b z=}(}q7m5_Rok6c1U&P0)0Z@g`zdS6hKF(Wj?c@@so7&b9(8Fajv-pSX7G7ul9Q8XE zTqo`W?!)hPg9r#rC|@Fe9;Z(hbdB)bi8oQh9!S-HBE3lp-@9nI&#FF~9wb2rBbOoW z^76FH792nPOq^4mcJ2C&Ni6L}xs~sO>OPdyJAGsTQ{h#TF$dlK8RVq=|9I<{C^qb_ znPvSaUbNk&eN9TMbWp0B;}Xky#ZBJ&mE{lY|Iku+&|KN$@GoNw2>7CzfxzZ*XDs9S zw7O{+-}UP^9!*uoE+xlRxZhabzO%6r% zk53hCB-ngz&h%OzJs=E0&cIYuWG#@fk!MzDy87r<43MABud}v-D)xxNo*dLdU0F%t zQ^6pD;Ni$rVjmEknoxoc<4P;zpI4)%EPhcOt>2U=H8BHS;Tk z^z|3t%y`G>kxeVO+Vz_}xq3Jc*mP&!g;$1u{U&uBk4kKnUm3|yjcFqLu1}m-@FC^W zJ8X|5vJ+|P6KZRU&5c2kRQps64$BW)HO+)W2t*W@JgwC#tz|Q4cbGC{G|YLCR^bTu zy#evi;z{S+wsvJ}7n`x}(4h2Pm?VdN_4}TYh0{mET&vd{MMguJ#2<>bzVtLcM4rQP z>D3Gzf&k>_iU0CU2<7;vgAkbZQ4NIYI{bLucZL;Ny|&85)`PF*PFp_p)n&Z+wKG6( z3|dq(4Z>JAd;N#h7g-N4FTyEj8DrCW^!mg{MT&IX%+q7ch0rE?)n+gnxNhJIldVCP zGX94f`d>QwKL^76?@ZsVS0DkaTfhBp;%fe{HFpgnf|8b3PE%|R2QDjkR_j=a6i?07 z2rTs*mw*dV0C78kTAyj>v=RI5t$KqJIK!HsyKG#*o)Z0!zs*&-mVC6dRGWnGY0jd=5kXsl7IeEH1P2gYA zzn7n(<`>)b9C}3Yia9~{@x%}Na(R69JWeaekBU(Lsi!yx*4z35XkqwFg^-d#jlIrq zX1hMHwE)Q`u%!d=q<2iK=a#o$mraXnV5`opRpXxYjQ?7q0?>Y=`PO1`QRMi945pUv zt@>CIlLZe%yGcptV8A2QiHp(dOHtqa0?_ZvpSwWABEu=K9I4W%VE4%jnTg5ssC?eA zU^#z4+#&7|cr?|ff1Pw`KvhM>-gJ3)P{tQLHM{-H<0^*pfPG()bvPU_D7$uS(?P;w zc5dI=_o;j1GOk=V+MPK>%XGL(ScgAoFAP|NV^MM1wX#X<>8@Y$@J$^XtZ}j3=iAp` z6)bv=LP#u={ueCJN=w3@FF$S_${SVhDIPCh9u){W?J<8KC&)UZ?q&eWZA)-Gz7FnC z!Q9o`@z^}Ywl;A27IO1vh1jWBi5AUJyEva>sU8*D1`B13DZ>?$AkD2Nzo@{BqL)5h zv3J3x7pptAQ)hIAdlT?7dgHw1a*?Na>#TpQ?zw&gqW$OA-|M0`(4(4$>3TfaPvUhq zUx5_1VWS=0n)(~bF!hQ#_F*O26jY2<+E;&5m5NA0dwXRn`s^z!Aa_Hvz|s|vqtz`JK>O&f?l)i14uLW(SxMW=u2Eir)5>VA_237|$xlrH1IHH9gAKt2 z{I;a2z1dnEvCf7$4NkjKs4itK$t8+1NqWn@w=kzpor_U2Z(NGrj5lTZbOw$TdQ-Jx&Mk+k3H0MEf? zrITB)Ik=5kNw5$7kA&5-~Zwv8CQ{0wl`GL ze41}W{`3uer8kz?7L^5LfTX15(?e}9^fZlfrej2=M`;p^^Ozxvw-W&S$gv3*hqbm& z{o%K8xC~JB!pNV?t<8JAP&H*u^c2RcRuczAe1us^eSD0V>#@JbA zUeYZw+4B1c?vlbnzlVIB4 z@PQAaQ`8szt&(5(tU6%TDEvOt5m99%W+EXR{VtGF*;Cn@ zWB5{_C}LY&joMo0Pm_m=KX=h0g16;2KyJ~YAxk7XEBLfBlA~mM-mwo>t?J7=$jD1U zEQGa7@gErrlE~C-1W$Rmyzq^R&l{}Uhxoq0n-^>=ae1?Yet(MCMGmqBFnw=B=99LG z>lgWzae>IGKJ>*jE7Jj?nP%&4D+nM(VEprHhQG-fS8J!mXNvWUub1ZIOQvt;qY`0W z3#ZF?h`T1YmU2wcP7eDkH;Zn}P8tenSeV3^c*`hvI)~u1%ey#r7NRTq${<4I?$SOD z6%4Ge*!L)yoFt_Gi0_^8qq*nyrt^-)O#5&Tj|QV@+-KyvqJ~209e}QRNQNJhp+)4L zd?0WmnnxKtKE%V+ztR_vFc-YFpwMJCG6$Y^VEP~tJN!2_?&zQj_^j)?4^w^G#PRYT zMwl?zUacj?*<*G=G@q^Mcr2CWpN_bRaKdaCSHORSNr9ZL98MKuOvZCvPze77|wuX{%4e9zX-^~CjWwY|8Ft#pS0wF zHbSe3_^_*4*sU`t^HSBVU6H(l=U3PMQ-`jlFe76h=yK@s9R7Snlya23IYLl_*XsYf zsQLe1kp0KNUjVWG-3vncD8r6DbS2}QAuBa4ZHupO>K`XK_Gq{rZ?CS>PwnC~xO!(x zU|;e$to6AotJb;jzAIdblK#l&Yx~u7Vvzmd!WhCprj0O{PJ+D+lDn(fXIh zO?;i%%_k+R^5^(DB;D085rVNeJlY@zk6KWYtqMi`?~)_>PAdnTEb^{QI(ulduV!J~ zFvjB&0?Lpsn{yKHc(^lK)!yr&V~b?Y@0(AYkO$Vh!E^y@gCgR@zPp0N^>UfA?@Kzh z`LW;pc}xFvFclz1P%2|)YXZbv%%waKOt>NdJlD1QE;TKF>#^C@ znLB@OK7PrA3qCCVC^)Cod-1y~he%BBb37z+ZGLz-OPpJNW6?YMzci%<+Im#P{L>83 z;ur4we09y(LQE$rUk!Yp67^j-++ei7*p~0TnCB_zYg7AQKj%bOU9peHZp)9oaKD*x zZL80E51Z2jA?Pr$VoSsOy_bT4RiixfjS>>buImjC_bpCr>z4!HtBY9K35H?bUa%|H$V6YafnjNoca@m^nw6{_LcHUHZ;wLilu ziK*@9Dm;Y>E)-Rbc!#?!YF7*neKZIU$S#goA84?D=-J&`{1GD(WVF^$FQPcHd_p3%u zb@_{HbK-oGJvu`!&GFPoBBun=>Q;4t&#JKZL3srDU3!?cI=@)UQ7MBw*rStbuSguL z73%67jOgMIY0F63kS&gEBAmK`%yGu8A-BEl>UPcTj7&j$ZxwGz_h zqT(Veh|b76hA<0>4|IGy%B{&ia`dZD<`W*ICT(zQibPVsb+x6Z!nfuK@)cP!D~e?~ zrI!&EDR{d!Fulzfb<-hs#l^s2sF)Td9l{eax>Q6PW8<(K?Gm-n*K+oCZwoE6pvV0t zfS{v{a|fBP(xHH+cs-iBlE1cUYuQZsVhx|Lcm=<#hH4<-iY1@ibj9D@g%#3s~pk^NTxuE>9ULbF9R#p$sc+@KEg+F(1G)$Sq$QkeF%#)Yn z5H^V}F%~QOX37m+`OcR4BhLfELmPeO1}mKV#@mSf+iwt_hH|L>bh>v$F~c!!q~e5W z#WGpG(Bq-v0(Qfx#VUA!SX57u5-U-Yk-18jbjd0Bnd&NIw%9&gVdh!K&fWfjveM?` zJ#Cxq-1|`4jYdI^)q9DI3?VFLf)?3p)!1DT%GbtN&8eiS@k-oZO`JWS=pJ10$RH1G zb{As-A3Ia7rxU(Phl~)5(A2VVEmN)d8r*tQvuU}YvQx{e`tyXEK+;pwmgenv`mH=# zv$)KLcNcYZ<0fHrXOrAAf=(x`1<5bd^_;(z8h`X4Ob1UEb{r=gMg^3|tcSR(4W_vU za7@Pr9?G9R5K0s^4)3a#R-i`aH9jS%MOUsk$SnKa`?IpD3PP`r`-FUtu8b1ggF*JpfKcr>P@%oQGH@rrrr zUAL*m9a+C@{{8%q%@p)A&o=YlE}eX~N#_0j?@!p3O?{B~$AA6mwH6`fd%Kq7<+ht{ zPQh1jg&zF;N0TcNzp0<>wSL zG%yoooPBQPJ!B^8Cm6P?BgNLQV@VUPnAyhEK zk)>Kq#Fb6ZWy)MfyA0(SRcj%QZ}+?5|4c@Dt{wK0Lqmza+M$fu=PM~8nrGjDA(>9E z&WZ||H2Vi(hkh*V59APWQG{pxRCE@`rsk{M)G*D)l^<0{Z6f(apR=2(}EIDG$Mr;bxMfP-f*6z9>_$BG4qmFUmr0872y7#=0fS{2Y1W_ zefOb}cP-`(kvHL%pbm(7ExfFv@=r&m=Nf;>Ad23<;oO-t zUhJ_Rm9$adH4^ZJh)i9EHY^E)kYyOkmw;wo&dkhelujRsOiw_cjbyC&b9MB)XV}@Kslk8puaC#lsI!OR|)W-2%!13C`Ce zt9l$B<4tITX9H97>I~J22q;X{1QTI=7`N&qj^8)t4M*YnY zmCmA)&Cs*=uFzLsPtrPHL&eGv?~GI-p_+8AF-vl$!c!2w;n%1KYh~pwAHhcpsUT)TZx_UZ}hJk!Zy#n+gjB*gGbZx*dBykcD0Lbc{gBbA zGgL&xgo_e{O=&u?eoa}~ty3?>H`TQ|tf36(gTEX%14#NiU~u-Y)UMK{`IL1lOQpC6 zLB;VQJvo*H^Qp*mbHz+x(MrNKyDnJ#q-jy-e}oSeS?XklZL6B;tWLrS{X!TpB~pt1 znL>_5+!akMZEi^a1Wn3}M$uiw&yCy$9_kl9y1R?xSe&?doyFp0 z2bZ*i(T(7vWwqwdH)Wbs_J)tMk1GV!V7sstgdCX^3feP12p z61Os`%L#pRm?UdF2RR&1`4 zJPB2uLM8aMiJ#5hbefTbxi1176_3(;!1iF#W$VQn9JucWj^oA4>+Gybk zQ4F2pIM+xO&86Ihq7Cc*WP*IHa%ZhX>BhOCoAO4ncw^~ zt;n;S#1FOC>Gd{LnhTGEu}NdS7~LW1%;v%W!bX>EwXr zrqr(E&2XBf^${<|_t%L~sunhku&}Tp-gDpJ&`=kYo(oo@bdOmte<4IyJ@%Zo$wH<^ z&RDJRQSEfFmFVjugQDoN#pL+lDr6vrGbWy?-PxW5QeUf&Jn{#b9RYwC_0%LOQhI`y zqatHG)(M&B@_~KS9*$!%8axG4!hS5_7I1f>A?n-r2&m*P2yt*zUtX}V^dExC7X#)Y z3Yu^&@ksJ}f7qiBzr8uBU+uf$hKkIG(&PCiXm9pzbslW6jF~oL%6>mpiAiZG18A>4 zHWl9Hab&mzXTB!n-+kFUfPm~t4)h9L7@KaIUmlzwt(ZOa)Ygg!NYRNtv0x~_47=HC zwAO0kOJ>2(4Q}GZa5m-Jw&Xwu$$Q&on;~Xj+H=oXv5mELgPQb67}VoSgIKm8f$c12 zs#s5A^f^V_UPn4N{+Fm-g)sfkJifBI`xv8c<-e-WlShLPh@>$-gLh&qan}|ZozP> zZQ&rLT&=U$x;A*RX=h(+bBlB29*s-av-9)ubamwB+b~5G-2#sia2>nG!eSRhBoc>x z*X%R1vxn%d+F{Gf%fJa0H}#E7)oA_vSrCnYK-#ivf!vp_!H8a?i>|u$irh7A**h~~ zh0vg5Dq(|1;x9_u++qfo3|86yn2%HR^hqzmOgK~I&KxhZ@TxalkRp8-Wtwt zpqm&z?>VW*a%giu?Dr+p(S0nRW(abJjk8aE(ZcvlzE?mFoXd`P1T|ad&qWe)iul2y z3Gy1z8o?{Hr4fyk%(Bzlz4{1n1f{sc)f40u@r;_;VR?6Dvd3a{i^=Ei;g3n?!S}Zx z`ROQdw6tf4%5tlCyx56_#Y6!AdD14epj9^8hen8WUpcB>3iY5Ze|&wBnU_Z<-}QS6 zxt}HDq(6COs~4PAIRw_%tS&>jnNurxG8v znBe4Du+UIlyp3hn1Lv=UY*9qtRIiOtoI0*^5{8}ITHc(z>h`S+w29k4MYesGV_%-@ zS9!VaVmlJ1nOQh63HLZ)Nv0n6cWdln`Bd&Y^ELf`;xS5t(bDSY| zoVi+G&?HiEz}I1HuOH7lz#ooyT(sEzD{%Gp&-oe-$FY~`PJ@GkZmX|YSQL!C4Go7K z^rGp@bFq;3LX5V;HbBAy+#OhPwN*%d+xx4KID_cBsjhSl2cGZE?CEA zH*Mh%k^ek%3Dju5NflgHn84xleY@vM1wI~!S|h*NoDVU$vW-jDn|y=tzJ`71$3cx;97I;lKDM8O$KS!@ zm;HA=Y>pDo%*q;U97?T-nBQ?}jKNT{gG(}Ge*D8*{P-FzzYXGD&2HMbXB%IKB1x@S zZ*p0~GS8ohu%x4p8wn{r5@12NT|{;xs9eW0ppO9xwEd_>Pm%9}6%$un-23W?WL8Ce z;!`mGE0chaB|O_7+y)hpE4&W?KuO2p6d_-YLKdIozdr0GAiu4h5EI+SKY)|AfV-a3 zZ3DKke3!I#a3GWaoZJQ5;jGTXsh@Mq-QV>Tg>HNNme|C0L_VY9CJ1?x{>{lDJ(8_TRFqBcmhi0 zSlipH0U)BcvQ&z|kVo>g1y6g@z_$q0PmQz>%cvOC!fzkpWoh?^ZRWPJhvi@!GD%=& zT?>Kk6;;LITfNTToRg48kn#F@aQ%7TlD}ovj2#<66sG|$v}PI}Gr@>%_}n1-KF~k1 zw%n*xje3A{u6sLj0l}A_T2pTtFDwReg%DKxn!mL;bCP)0ULlN09&WB9&Y9Li8=rk{ zZR4LrO=;Zvs2V_wFdWFqbd=lij5D2g~cR=wYj&( zyO$fb2VtA?$zJl#oJx3WCZlSmVCIveG6w7ru7Um%xjMuT*nf5@WBx*h1}ZCCrHn9E z>$w5DNWqtaB{`jWqNc`xI6Z&Kt=F@5QV&Xd>*3ms~Cm`ZAQkM=`akS%pR#x)+Y z?(Reyn?A{o-(17l90RFBl0RwW&3=ZfR~{q3UJlh;nI~C~cJm5en_VhfuG?ws)_QE| z@xu0-94$N3k46My4K|^|?DM7qGg^?fwY^4yNou#YJNa?dbe2S-J9sPd(qvzwyj|-z zD=!V@<`oMD&dFUsmwPL>(&@R%7>VGaY+l(B+V_Gfe7cBt$dUGkq}jV;)<`c$X2@+h z0+A0FoJAilm9z1195^mvcggK|H;qeOCsngPmYk&$8*mmT!Y{r-uTA!%^3Nq9N}IlE zwWO$|*guG6XxDEC>9Un8QK;}f$*wxp)I<-?u%<7}JJM&YyB zRy=X}KC_?rYOklK1R5`d@p+SF#VUX&5_0t919oV--$ZMvWM~>1XAvAhx>+@C`*XDB z=7GQBF~<&LF_HK?dRjfnBFl)0(EpXx)?eMeO)vB2Uiis_{PWugm?ecdi~#1Dr)W=?eRy}mQ?Zwr*jOtI!BU`cWcKT zRQ%>B^VKyt9q3ZZx&z z0zK<0sRLF9d6AZ=SoLx3J8qyqStV7|tFOm$v7I63r43*3i`NWc)3CysC#)060#2PJ z%&5PsW}N%66)tq}z_GT;P-4P9qr6Tld-dp&gvZ@mA~j@F--*8Ux@wZZ+ z?{A*OZupd3M*Spk9K(pB?>s_Q(?h{)_80G?`tQdKOdYVj8dKe>=jmE{u7kd_*Sj=j zmoULhw)M$}2)rp9@36w~ajM7nEDY4ybK9@mjmL2Jc@?!W7@K5^0>bt+F&6LKV4I7) zE~HC};i5{@d>YRNTEQRE)xf!Egq=|`q2ps`oqH0FPc4$HS48@!Jvnpl#XINYHkLS$ zZF1+npon~ne&MO(vUY8VjRmsRDYUIkiPj#6{+U$vBhH=BB*61gS?q{Z;>o@ilm4lw zvLHRnFY}iT}jg%D_N9t(og^%Kh`2dJGlCR8}(Frg6s@tZJn51ZRtjaM>>HVW@ z66h|L$-RPtnFZ6vRw3BG*cfm&W+JaXl1MC5b!y(0jF<;JL!pROjWmr|U5M3a(seXl<5&W- z(%u9axEz`nn)i!0tTkG=;J(m!`>0}RS1|(A!9;VOYZic(!RkgV?`D%y`2<iGi~&wwZepY&Qx*g4bVU(OFWyb$-SwZf>uG(Eqe2y0~GX&zWC$;RNw<3 zl6V429nGzJQmR&bTk89Ido61M*ouE_a z`d|A9ilGD2-NZB~s4#{K8P%Y|Krl%ox1+X_G1LwV;jCTNz#?}A@SIC<6Lr^w4=e|y zfxEBI0gnsXRo#?wz>WTgT_3tB4CFASnikiU+n#r@?e79 xU0W81{!75#2C!`zVsjpA$qcg<)xjPA`JIDLvA=hj2O8L9@O1TaS?83{1OPB{3zGl< literal 118996 zcmbrmWl$Vn^d=0!og`QW3&BEgcL?qt+%>qn1`kefCj<}f?(WXu?gR#B@VEK>Yq#DH zTl;0Fs+p?Ox0~DdoO|RsPfwVlyaWa+2o(kf2180xR2c^5O)GGCBO?M5B4x*0;0wiG zQqu_r2DA6|fK8;uBm{&=&Qfw>NE;}`a8%T94QG-56Nza!3%NL(+d0A%myb#UB6Md! zBx>qp>}X-{Y++{$^B#qa9FU{F%0=w#Jsd5*n>)jlVvX_uQq2FPj;4mMLq9rO*qFkw z-(sNvXHZ_xsMwh~yBRu~!syz+ybeeE@8%Xx#@2?wP)C@C&e|A2jQlEAH*~bMu>B6x zNw^mZ$dLZ$dKX7yQ<&?Qz~lclOvKK{#?;ms=4Ldh1CSxU4*O=|Y;6itbUIB91M?9^ zN>u2Zd&a+25ASbtPcP@-Hn&r{)FF8_WPkW>OvCr^;Q@dCG=lSo)yvduO6rFj)Sl+& zwU(Q~b#?WE+GQH0Mq*aFUn7t|hYx-UB7UR!@quSVcN`KUCA^^X8M%Mr^86=@Q-c!( zevkjVz`o9jm%4r#o8Kp4WU?S^VP~9DMXw|DPd3 zBrwFm5yEdOuwTy}SYG9>!n|IKOcqUn()!;Oe`Ml2Y5x;7v;A+;B~fB-Git&cT{t=3 zFLGQI&N(uw<%oAPf6JAu=6tu}l4XTQoQNPF-$@t+cQ+`vcy6$x*y<~S6{_6e~puBwe zDVM0`J><6|+=I=iF&42|AW_(BxwqE&jhnTG-d0~3usYfU+|;aNkT#7|l_?N?GB^uj zN2oBr(xlWC1$8j$#Y`~$Twr)RBCt_VFz}Ii3hk>gSI83rTzi3#Z~&Gr*gQ&$t6cU2 z_3QIGd~WyNaM3~a%5#KJZVy3{21P0=4Cc2mdjHHncd_r;Z%t-B-fva?E4A4yUzE{Q z)e1go)QFC_=LzDJe zQw?o?Y`@VxP(YsXv@b<~yRta$_qu3PIQ3rHUh$n3 z%0MX;{Alyg=i244b=xt?c6PAA-08Tb4xbKe>v#;fylw0PDV5>J}PLEl3X|t(!UR6Z5@UAycyg z9`9e!Hh=v|TP$kb;^LRu^1k6J43}Co3(4i6#ss z^7EjHi6Nd)M<~jZ5|NdH$QPYM=iFi&^^L_xUX0ZQ_#W1b=XB)o3%w|1c zs;x@SJc5AXt%vpGY5E%{Az|(fQ=S_GeHGLN@{8mX%|?DXrL>d>ab47=`vcBFh&+UZ z=4x2>lYwWEU0AiJ1O|qjAxhipjy-sXNpp6TCT}&mIYV4$4$5GurG}Kz=l-pyBw?ptwQ;MMrfQwx3lpNk+&Y)fWvtjBBiNI>*JJJ zH*-45lhcQcWbr@iBRgFlS0`E00RzANZodTx#8-(e?&KkQIGNIE9l0SwC&iVzuu>Mwk*^CwnkTa*pk^fDq|LV2t{vA zSG&Jd?08XgHE814aO;Q8IN?la?+^SD2b4QmfyMgtm)o1dZ*%MeUO~aHj;_5QP(puA zhLMUXTnk9+^J!w&&$SP&s_P)gbggwbY7Mv5H(0x}6?y5&ffRwoS~o9OG=xD29-z<8 zNp1^!lJ#`9pP6-Ie9U&ZEyq1qqsWGy=;*rSln17w5ZNzBS{{Ilv1TagIc9Cz+v&O* zm)#rNUDm8Fe)nT0{F2+s#4f-$o_ep`%zE9roXY{Gf_`~;22xIm!^B;#z+n!O5+YTX z1r3J5wXoW$(xA;JPJ!w^tP3Vb^xptm#$Q5DfBbbg|J1}`kJsf@Kpma7el+KX@qLi* zPC{UKBn%Zh3qT?oV#c>^1X+$idmiV6M zzdS#VgFI^y)&|yex(cd!?p+nOGo}zIpnUE;M?Y{2%4hiLMMqtkmI7RX-FcV;W92%_ z1gd*XI;h8^1^m}qT?-qQQvecLM(M4t|*S5DK0l^SDcJ1rh@22}5{RhHPR zb9>D0lJQ@x5y12y(bEMNTSPOx%w*#1=GhNddgGN<{LbeNH%!amq07D!6|^f~8BZnm zg4C6rG>h8cFS{K6`qk@UjEVx~<7+VIml0S+N$bBK=6NK6%RRBWE;>1T4nf_kSo2>d z+FYi_GW1qrc+qJN!%w!(tE$4)DY8MG;U)j|9?A8)gA_s=;H&U1YCI*_wd+*_bE>NT zz;YTfSNk#SM>1>#UgM5xwPxwgjs3-D-EW%kD-aAE`^DiTB&>hy9Dm zj^r8-bvTSN<^<(e$LFZd|Dl+SZlKQx7|K$`= zE#93^au|x`MkD3oYRU5~%}fzp{L@_y2Z{0BskxptCdQO9oTuHB*G~n%RHY3;h;S{1 zQ`EG#rl0JY)Xj#;KF9(bksKzh^#RQ2MtY znYKaw{gu~Ya=NgG4Xdi$+i{R)=izq5!5n#}y-bk#tdXJ~j}$B^ZM}L`2^kTos2PZ@ zK~%G?4J6ToJ_ZrjiX$bSWW%T!fT{2|0|A~-Zib1Ur$3qCVE0Skcp4Q)0(bx^-h-b_ zg3fiG<2@69N{Bx=*Z2SwQod!J9ZZJx7)Il4$og=tb{eT{AT8zT&jji~uw@_I6FP zCJ=CTT&5ZdYSyb`z0XZol4$1-4Qht$!Q1O+kodW+%pA}MDOhikz@q}mM=G3?9Qm1> z@a_6sp1n#8D)%8-`A%0|qxzY8xmE#<8Fsp58`|Kr%L;}1^U;914F11AvNN~?^w|7$LEa-aG^|yuLcjJuC=b?=>UyUVQ>vh|m14XCC!B9v+fJW!jE> z3;2z*iG1yawibs8zLp0P4e-w;Ou{cmMHbPMysTlhv5W%WZ69=6kYrOqYE}stxYtlV z#MK$$gOD``G~)`3Nq+vIU9M8b3b8(GqqpfEBMpw=e^?&>q7u;$7o*-II)67dNB5QV4&3z(Yt2Dzb_usm%Ba8&bZ_%%+onBcBs0)cQ`SXVTf8jHt#U ziW}aCMA)~+*mo81WMqEcH{p!+`cX#(Ov@$dlBn)dQpl5&lhQuAXxA8JwYB15{nk1( z-(P*BD89Xh|FHkR1naB~1Sx z`1%3KfFs<8wlC5xEB6)hS{}}@X8saebbq4aVvyS;h$>@FBWG4iRI913O|!!o-0cl z^D`3a3JF7|K;{hgYyp!OA}Pf!u3~liIXm z8ISOOZQ$Puo(Onh4tp?$?|$Kawe>k9JAbpfvRzi2XLFG-2< zcl*W0Z<_7Pu{IQ3T^0$+?s;VAEiST*#G-J@glbtrPPW@}L7Vmo$pTBVo<=`dCGZqu zQ)O+Of@XgwU*ld|S7@yt;`I_ERFp2L^^xwE?fuz~Xnd~Cv0h&dn*Qx3{wbZ7(EZ|s z{o8DV{duEr26HQZx*I!ol?~#Ju2Te zzc#|UmnvTUz5@Hmrfln639VR_&^@R9VB^JanhKp(lf2|%h4`hpCSJG)FRF79|1F-< zcXVRrqhu?iRYjz-+SSm4oFC0epGO*0t31^C>r3p3#8g#+8EZO#H7#pYWkBE7w+k-OU~UDvE7YC_{H5-2}OJOSP>*jhg4A7r&^u~z{p z&oz<2FbCnP%9SoC1s)442jKVotY8Ha5P?OlIoDwj^Rg+B$&uPE%Bl1s_WY(a0wxYu zp9_?RyDnqai>pC17N=SWY_;N=HMt=!yDp;iq4uL@E*2Qs*2RC==UwAbG5*vOR)nr8 ziLe<}<(4O|Mj1Nm_EZx~m!xSlwS~Bt*8LVT>Kr)jXJTYr?G8=vlrgirdLD)=r zN_9d-`_HQpn>Z33o`KNyF(L8e)FTJ_Gf8ngM(AvGnyXoxmk@ygZJ+F&Wk&i zNYk^TtC5KCOQB`H{`?O&1n1W$^(VK)qNcp(Cre)bQP5c<;^RdIjhn39%-iL03+;i$ z@5DU|Gib|qL`#Tnu;(X6Hf<#Zuxmb^qPn>HNJ~i;*fm=d52I~xrnBJ?@P3#eq=DR6fuUU-=4L z{AAdeY_FJSKTAh)*F$=N9S*p~@P7~pasSD;5DBA)<&HIt7jwSIDGrpx+zb7gF;Cpb z&bChb69@&=&rVFucv$tBClAoC6SSDVnR4XMH4vvv1WbDYq$Pc?2X7?Xxc{sboH@!( z`3f75{r_N+{{wRJe-*`);Mf`yw2wwn_j1M;^zCc8W=!a-BRlMvYd!XJVRvlC9Fwfx z0FVgtcs$P8#j+JuAXR4DR!yG~vsPNVl$;FjlHA)Z!m)ZfOG``p#7{V=Z&8C4-+2aO zZ~f*A^JQ$v^jev+4TWk|7O$&HNvp-=u40q5Z{qNBRtz{0IXXI?Q4NPG0yzgAi8>9@ zKo^t1_D!oW%-GmlOKqb(qLUEha}0b;i6W~ydmW#RUo7n|6D-dPwT>k%8P&}c)@!4E5Ku1qY8l#~ZE zJ8-unPleIx>SZ1sop#Te`y_j(OC{0mSym|a`qy{veQ#%$mZYt$Xa!&HCb%z0Sz)24 zZXF|u>Uu-86|KSzwyOe8UUD;M4^Qq(YhNe$Z*|7`Z&%3IY{`0)3oSt9#JSFwAXji` zn5YrgXJ`6fr#(nBv{Mn))&jK67HQFj2d(#KQGD9W3HUEpXtfs#jn~r=#oQ+hzAqy( zLk)DLPxWkP?sOasUI`<9P^#}w{~T;PoY9l&UeZE+0}#!67&xq#rJcHA5O1XWAyJIs z33dif#&5Xq7AaCu^S{pUxof#rd(Pom(&GnrXRn3&`&>$1Xll5&QuAunCDt9wSXAna z?hxJIoG7S$7Is+_uTNUsLI3iRw+m_9KcF3ZDeeD2vsK|z6y3=h+I^tU91 z*%*;ly?iGxUcTFbXm31I#@Lu#n#S|`sBfXl8208kbFs=8iP!Da3=*l=A2{5sck zVS<%GUA4Zl87tE3r!=8WZt5bpT;JO7uvtkoBs;9KwxeZotu@<|GI7(P27CG*+PvBN z0xW^?j`Y^cU)2-6ul_ypwdSFUT;^~lE2+N!0}Wq4@4(-Q-va;qX1&+6zSdp(B~xcL zr>-`7)b1sW*KacZuN}?Rt1uDE>o#&)<@e#Cp`jrN5xPBH z4HM6OJW}u2x(4fi2NtKXd}O{%yXjx`NaI#GEsv+`@>nWss067`LbASZYF8jqjs2#u zZR@!>prQz6R9!HzT?}vjE%Mzg7-#t0EW&tSO-bmu%&D&UKAfPF@M%bY3gS{u=yrhH z$#zG%UGu|0_}Vwz;c(3Ec4;6@5~If%l_h{dh(%(&9%WdDT3!+R}O(ulA zsCY+dpli>-z&Ukj!D8`;%J2IR6vAOg^lkZpd55uiKw+jpQOL=BYZGd0-1I;pvl^&W zmr|(zfbFsu_4qH`o6m*yZnv(XdP*?p6KlY)b+v#=Uk+E|{5|Ay-z_651Rv~@-KU3& z{iBYRp^a{d#vN@A$m1PHmaf{MOU2q)@T#*b-!*Id<%-QH=-$hh?+#@9IL_nCe~f{r zKr;9t7{z>k-%kTum?#Ba&q358P29-n6E;@6g5VPyu*6rVtLdq%-!EeP9s_}I*Q+Ce zi$U^N_ad9l5w)|k({{6a?TLaI2z~MemVH2ubG7%dFne6rZ55$21cR`stjzRyzKl-4 zy_NiIJXZfSQ!(KisNh=v8^P&=)9_se9~;I9?95W%FnIrL z??QK>S%|6b=Qc3&pRuH4tM3_H;D+(&48%0?zOTA|lG2Mxabvueda!M;IZ^F`EsqTp;`Yc!Y#Sx?1{xw*8{(ha-hfS=tHu@ z<3AbARs#}z`SyhEg3O87JHL&S+X+J*h|x3~zV^Ec>`>8=>TvRYCiL!2CM*HyN3gCN zF}|+zTS`jG6_5Q)HV%%9ZZt;wHIIFlAl)A|69Va@qq2DPTA~#1guu7YxN~e6*%Jd9 z+)kBr5rlTFRmPf1N^gw^qD{AY!{{_Bf1E5gyblwFZUkbz?v1lMZ~et4v~#&amq(-o zir1epwWd=048J>V#Lr-LNyM4Qu)e#wp zO(zq&Y)xd0-V;6N`Z;=wHW@)slIo?qn@8l|vWm;l(C5LeIt(D{e4jz$a|4g@ohj3M z3S*Z%o02p>>FxRIgj&p2-3wx!ZHSO6&VxP?TwHYh!}n-u#~e7|BM;JI&c_KcR8&;#oXioK za>-;i?q@Qe{5U)^5+?d7udonO7X?1pu-W z?{hH@+m*p2dTr#;9@$hD(~fs2WWB#~K9ID+h$qA$u%=$Ckq7#^6LGJi?>+B1WIe^i zkP2LTl@rAxf3^%+9lP#uPa04l87BUY-eS zlhyH=6&+pUwJ4Dv;v`1msM6p_ly%_X6j3AL1@C;Ok?CUImLN?xE5#-&91pA3&T-?|JJ_c_Cko88;=#<};2 zs1&kV!PQ?sesy)_SZ=UeKfe3>_e)xOI`?MKd*onYB=lNonv07IjY#ryM29q zkp#>ESb~qSNlAFoyr+#%!{kBO58TFbs+&LsdiPH4UWS4Jr#jD1 z&kPs+E4@u{?;MB;2hL&zTv@2EGRM~S*T3FDbKJ+^PFCP*6)(=;x!(0(l&~s%gjq<6 znlIyQL#eSf)|S0?&+)~*T-O)d+Q??LC=z^bJsN1-uJQ0Z2T2==3=yY@&$aHm?`E_= zPQ>c%pc4tpFS8jC`>P{K6Bf}%7=C|Of%ME`iVzZ33|e4%&?E8VOsuhOj-KKMB_;{0 zqc-?_%=$zU8L0OLM7-W{GjSkpX^linK88-tF7ULN>>(F~{S_azb#BZsE3F05I|JEKvm#A{7&d0L%_{S6V6&R;9raE*QY>!Qhp&A3B|BGnzlj@(2Er=)_`dND zYb{Al@uXc=f6UTYY8Y zr4AAj*T#2Pvflk87XJq0jKCZ>&og}%HYVp4ABlhAjJ=TC_{79HW=hTP&E>2f7bd4| zw|c&JBl;H?BaFtHcw%B=eCNIIfh=1|S65C=4G&1MV1k6ns%vUs2PY=J16hP@wm_!S zI5*OO0|A>k_Dq2soI!UG3g6S!4AfiT{_5~@F0&SU-5gcj0=~wR+33oAsRbqBc%u<9 zEh(U!cNT0X%IWD}(zhOb^eJdWD~$4kJ0DRV8tXHp($U!(L2IBTImGPW%+ThWkg#bH zoQx}7-{-c?yd%7%-0gEDDRjyWED!~>@GKW8#7SwFn(v_n$^GW&xVU|n#x^T08sBR| zjzShr!76A;BN90lD#j3OX5^{0ShdIed@CKX7xurn01_4P-ow``*H7D0OxD(XIIc1j zHFdwrFwQ?7+wk^@YyV0~6xUlO>L}kfumZu#Jv>eWE>FlMwUe;$>`rbv?#&4nRumqo z)fA|v*e+~%@L7b-c7;pN=UTN@4V^X?e@-J-M@1}>wk>$JPX693Jvq1-!?U9SZD=24f2cJy zbdV`B8s=V8Sy>qq+FD@YWn-5{RnT;c?}>tfg2dPVcz0=GZoU!8Iv$HfC+sbj;E2M> zIlThvTl}6{qJvJ}+lQY$GAyCDk@VsfN$Ool0OF{EW-}_guGBqxZ#g*6;EZjWrD=7a zw;uA;vT<(3X#E)f`CeiFB2mWUs0&GneSea?E%9%@Ofkq6EgtT*)(_KCn)Gx$ot4q7 zyRx-yYQq<7&ijE=7VZKWFKk`EgbX0=5x}e?Rm09gq_EW3WD$6BXLWJm)o9Mi_?u~^!D1&cWfC8`Wi(Bgy;lI?>rP83 z=3`??4TiMI(1Cg`D3oU_1QFT_9gp0SY98I(oF@K#PR{cJLLF~wd&7>BFG0{h&1xGiy2^pR;&>(`Nvmb6nrKJ_Y?RTurlzK&nY_tOPWvnl zTcY9N;nA+~K~QnU@`z1218AN_p2;ow;%XtL8VylCa&%ir%fs&3!Asll`g8p|PQ*oH z-|mVEzF=Q6B=Fp40_HFkuYF@n1}&zjbLvc?B7KhX<1MqO-Egl{>ch=K51;Y%N;x>c zBgOIdK?-iZ$e}{2X-;s=@t4^HJEwt@-!D%X&)imIB zpnEueFEsLkhA=Pf*K~hDJ=SHGqD_BuLnl;GD_;|o9iQ3=&--b$~H03wB<)g6C`W_FUiWlGdH2l znOgAKIH4G8ZFpCNb&^iP%p7|Q+ogxbaDw%pK-B^CbdRxu27lzf zRkFaI810tzqRG_dXvmqk)JI(nZyuJH_jbLax-@XMZOPkKWtp47c2krglPNu&v?D$A zdfo9!^8?hGaNpp8>mZ;_tKqikje&vtAM2+bg_VoKhC%Lg=5d-)VK;gjVBQ^*rf_z0 zDk)Lvctc#)I4fn&G2q&@jihN&!}Z?QUkPNm9#(K2UK!?5bJe=pqLE?BC1bRPlm{Lz z@}B+K(pZ+QFbIRUxAVYUBl&1dyZRt&`5{OxmsD_N{xsW`tI z)e%!^gu)%S_*>)L0N#T$m$^spX2I6=i15#zf)PZ$e4Iub!4nZ|o#5>+&LX)v?EN)p z;2MKNvv8#APGbT-W;gcZhSR+~C4>ytzt~Uqt5yGX5`~G_bvXbIONiOQIj>}GGFu~R zOpc*Bs6MyI0#ik0S=hxm#eTHlFSD$iE*ksTuiPcqSEL)+0qVTi$(#3`)0fRf!&|Gm zK1*vriGtGoF!7hY#c-D#ds0_KphMujbmM3I2ZYX?)q^?hHWF;wf>P{gE?bjq%zH#@091r8@KE zN0d4Y`?s(r2mmzldjwu@ zihT|Yb{ZgdtF&HZfzbi))-T&`kFrkieHxIFlr#X+FZjSN@@l{TR^yuDEZkVl$A@2C z#{r?Ntc>q!QUs>;<@sU7z6V1isjs*&E8LI($lBQCdR%mY!UQE)*gQ?##)dw6J2oXn z@*{Sq1JR$U&uIlyD=U%f5NaSn>0yEaYCr&i0x-K6&X8zw|&0?DuXGPl$$il(`CX$3dZEw%)wByBh zZ!BFxMdiI8w1-quTH0vpkJyUqvJKzePCT7XV{9m?Z;Ik)QA0zr82%dqLQdPA0l{Zx z07o_&OJfJ>t@4&rp7y5`J2?Bh-Q@V}Yy~MPl>JOMl4M=i4;8H!sDclR6OxjWAIZrB zkx0E`kx1NsDCLSfth#`!oDY@D+wUz;oAycMc~98PMpL?C$wZ*fw;g_LjG5T_(dD^y zK4%Y9O49x|q$g$oJLnC7@iNokMO2v#y_4tK42rH?KHZ97+?!L^H{Iy;AI;#7w^^=d z28wI|x#->K3Z$W@-(CEky<6e;M7!M|wGHGa8^G!t0bpLKZcCEIOo7A8)2-9fHTZIz z7h(?-kChJF;={wk&@L?B&T7+tMW=+Ucu0)N?u^N?phI>MJ8g}T{8O5?PE?iR^w^MGNT;CXn=)k0` zXn-U)%17Z-;;KRrMi=-Am4fwC1qRzyNEcZ2cuHil^{b^@^kHkyyi zjTfs;DX6JytiTLFw8WNOhH$-dDA$E>1c0`(LS}#@yzdnd&jhT|3p1g$xO<|@hXu00T_;5Pk#MG1- z&_>0*BZ|WyTMUxdr8wxjPR!o51GJ!tyS_LC@eTMfHi))dSaW{LHX3^i8R%C;OBGm5 z*L+u)FV}5Zua1j*cXWI#B`?1>EyK8*6G~zPED~Ut{ZWJiEs*w+*9mevQ6-sfUf!j! zS-jJ$z|WqLu(f4?*&c}52cFyjcv|a)N`F8_zY-IJZI(5Xf|bKpTih-mFDC$`iAgSA zMV>pDMy22k5Y!mg($bv{<<*uVRaHI!Duv8eMFVm}fp4KHgF5p;3Fw;#a%378CE!otE<+_$6nULG&eNd+?U@+g3= z4N#JAk%;*5q@OA$JmI-tNvH%qO z2{GpyvYriC&aceOF%;^I&Q_00_scQPrrjj%_G&ANUc>z3&$J<$d~Xz9{6B-am*{!^ zv8{HN6@RKX5IATK(j#jZiniQXRh}EXR%n;|*d?)^@y(U9{$2Fq<5lUe(G(7%j>DXK z?qOX5JuV~&{C_PB;5>)(~?Q~+CG))l(C%j`PW za4}Q3PR>v1Ke_|&${8|+yTb3or!Gh0%*OZx?rvzmrZ4Y!_B?Ie#svB;Xs>8B;99qm zv~9__xj&3lzgG0)8QgSwtpq=6#(5%w(ePPJhjCC*w@9;W8#fV&26BpvEh>y7iMZo{ z-IC4=X^jVT16Vi)2FC2{tUb`rQ_;~G?G1ZR!@z*Jb=?zBC1(WmXkIY{zOzoatAC5} zkB{DF;~7#)N>l3Y!9iTD-?$>({&Bs**O65(wVZ>o8ln30lIk_skcBVo%}+enX=M&- zhi81HH`0HP`qNA^npq>b6OAvp1N~!7g)y94&)r=xjEES+V9;0pMa{Ov%=?9CubfV- zDLmQN5m9pp<=bo>Ol4zUKy56kT_MTr?C+Qzcv2ov&X1v>XKp^V1f` zJTAjSDmdn8SaC!n7mqZ!yV!+62eJJ;oGFaY%EIiGAw6xqln1=gyb^@hpc96~^MFjx z>x8|ueyKGm2p+%!xn6;)lR0BS0JO>Sd-kA`P5EJw_Bp@t;k4y&v4)zPn|lSQL4ep( zW87Q?1O*s*{_Ahg7s(w=hTZTm<&9gYfcod(Mg~K*rfc1$;GD;r)n-KNYR{rRq)-PP z*w0$I+o=Egh4WF6{MTcosIRvta|BrZY(8AMA9wcxva3BLhvs;hO5S)8=BCl!7JmNZ zG$=3in~Z2XF{Z)3$D$`?QZTvSzSS89!`Wv-&^)uF&N1N=E4SqBEcS9q+6S;;vMxqh zYg21NeCUqD9f}vC)YCz&VTS81k-%DYL>Qc-Cg7LO9%Vyz3R$hrJq1=ZMSML!g_Ij| zW2S#OUQ|?)(3MFb<8OI;;o*?*iG8P#i8i&n)TBI{CqstBBYrM_?wxzbZ@?2XnGPoe zGB7eQtTCG3oGd4&+csNtxOiP1RDri=XTLEtAN+|P(5px;Rw;DllUGpK2U3Z1-v=of znQfr=@XuXGLqpQgaC1L9@|8r;?sz|C`vY+ydiflx{p3V5DqT>|Ev>@UpOLS9@C(n# zyF(}3Q6;6tkr$&($=7jDa-6?B7D-RDU#i11RWkzozDD<*H;FXuQ4{nRCxOrMWn}xc z$GmL?*#Ya6Ge*b2Mj{p`^A`04^UDlz2KOIMmoX(*_S(335QX(gu{IjQXmo9Bd1+EG zrKyg+H)%PqDUgpbdku*bcb1?vCmPOF#(7oY!ZRN(coG_ z0{Fb)RvJ1E{WLA?tM!MYpsJAmM2H>mmH-bZ{R?5E&-}y6$!&F8wSNo;q}vrY>0}zf zzg|+ge)!QX4wi?g$;L!a&5x|yJzA!9vq{iDvY7u@Pi)aT%)(U^0K~(eT9^Qx<~v>~ zxzS>VlMWdxemN4GZ3YLC?#zPTYH#T+XJvD3TKggmR4!14>MHj$b#T1j6APNmusv>G z$m0r=3qfBS3ryb@2CgU_Ax0`clP@z2|ujy23quZZ8JLq{PH{dO9p`zjSm%WGaFmyV$KR!4o~`f zm!knL2Wim*la;#30E@^?B<1^>u0+f%_ESqC$u2G9f7$Su{WrLZ5*)SBy=+n&z@Ubk zt9by6@4+a{Zb+dPyETPqDW-M`!-jFoR7~?^M4sHcl2!cgQ?~9;w1$8TX?YOe9p_cRYZpO{kEX&aXDnMplt-$FUzwRt*b+a;qNaF1Km~q(WaR$^yaOVX9SZyvOw$?# z-lI6o!ZTU=smE3?T5N5e56q^c-JR%rj7HVac6?k_YM^Q*&;1dc89lXog)v41CcnWxkUQ9bv&~ z_JMkeu>-eji|c=BgPj9WZ61-v+TSJWLv`xvUwms-x8psL8}gg~$oAFpi9KkTh=d+! z1&#>JbG@L4c4}od3G|f>v?vxUO{0r6)3V6g#{{!Y$;0vgRZ=cK*CVbif`-1eQ*>DS zC`N*W`8Nb}^XK?jjq^Y6bV1p0{gUy0ypC_6l6sMaLV`>T!~yY?0C#is^8NvB_WBRu zDyX?S z=9=eDD^{h=XeaT)#0P|M18=}EHJ2`@D=o!=Z>OLWNQk%MxVfI6-(dE-TDB^qHQYFG zlee7I@pL+1Igj2v-OKXqolVOwSgAIgIBvQJljQE^es&aR0CWPaIOGvcH$3;WJ#5p^%pszfK zyYs2s9fErWKi~@6+mHT2FqqIWg23hb(78Fap~UPjk5!m!nU=8{ zg-lja-N^!zd~px`DS13SOYp}C1yy>RsipxKJSNnsI)XTO<%-Zs%}J1QlWW+}iA3sW zc2qxYss$AE6JtkBKdD+oPfln|+Sk8GAsju&#|ZeQl0gH#@Wul;2w0`YXSeA7bNT#BY^5o3>2!(38PYAhxyFVw}YGZWi85 z{POdrb3r3)FF+~~UHJ${PqX4oll8Mw+;I%cklPOnXAN5nTzO*43#jCbC-}?z6+wyZ zB+Ehm35p3MTJT>!O}GNY4kA-~%TJ^9il6ZnJ7g;PkbUk`beMZ70;Am&a1GKoZj6Gb zKQ?B>$wV^|P~hk-(-EXwv6SKy2s3##2`9#iBErLpu{7w#CKxz6eWEK@c5nC){m+Jp zAAiO6>;WfBlTHISC{m9~oz(E1cEN=+_tme;Jh92GBw2{vbc2-P9#2;i_DaLo&H1Ug zZDn7m&&-K~yNxyQ@qI3OqlF$^5&O8#6`z6Eb*zm*AKsgTYKCv#S`X)FOzD#b??i}z zNzFEo{LG=A(~H&P)%Dj>V*$1K6V@Tpw@RA~&QiYN5gaq`Vnt)gklTQKRn(Ekk8&Ed zTDwi3{He9#K3JeMuekqok;LpnA9!ZM-8u1tWGaUf#YPW*VG$;4-4o~XH)KT!BSSp8jw4}IGmH><)pqR;Nc^Ip`XvdWNpZ7^J>d5@_f5j!fd~ZhPX=E8{fr%o8i%28 z1-b;=mG5HoCoPem`4u)xc!mzRiu4N4O{%)@wYq8|zCAaiO!LRxkA2~!S1$^WGZB;d zqdFKJC<=~gv9m_2hyp%i3c|=%aT9+`zZ?@GDxil{fHr#G16RA(n#jn3L`85bWxCB=KOWKxiW@85#+9ga&WS?xM;Jq{uqBW)f+q zZ9phLY~tV~cHYFh9a;9>RdcY3_{Lk+KnC1*Ye-B^I#XU^0q=MkkFuEdzyXLthf5ts}whmpx z8K#%pKVu5Xg$yxj8^}fNY#CCC82PUF7^CT>lLWuAmct4x0LrRx4))u(Z$A&`n9^F> z*oe)reNz=vRh69qSQp!lO_OX7^|f~%ImpQHxOY*3GA)e& z*pCOlc03Kd6eoX+STagAzh@$&2iQLs@dW!>m4|M{o!4}@gT;%{oN|g{$ z##=afTtw-VnJ6@aE?Y4shCqFroutA%YQ^BgZg2x4KeJ}H(hBoei5?uX}L;@ zzCnI}7Wj=4g(QVEKvjlqO$+5ORye$M8C(afEnFVi!XkQucb|Z|6x4KF1|P7$#aCnUJZi~2(x3U-W-^C7z5U(Hj-<&{nSJC`<0jz5QRD!N;F zM$~!7$s4!%6Fm@X>rvl1(dnzh4NBFIdwkT2gW!GE`+3#%f@k&Ef`HBl&4?q&{;lM1 z*hYrTB}V{4(uZY-{XB;-;hldz%@XTd1XE8#Tu$yK^4S0po<1$lkE(Q;E~P_k_kabr z=f}~NFd>+5$urd#w_(U&N<>8Wk6N%gleFE{&obF2>H79yYS3-k|Hsr>KvlU#Ya0-d zkd#j8PHB+_>F#dn?v`#8kVd4tyBh=q1f;uLy6die?tjPl8ACmK_Wsy>YkhOhwdV7_ zYt0s0%%i7p5mB_q5{cZI%5!@SPFp1D#YyFzE-p4}x6Q-HuSwfF|28|Sv&y)_7+Wf) z{`?6T-+k4!c?NnYP2=pfpU2H-%CsI24PG{4xL4MmZdP|AXnwq7U^t|i&TnYIshmX? zGBu?H0E3{FV76ko|KlcU+wDe_uFqNj?{w}s(5rw_Q-fek&BqOkJokIKH`)!w#fXiI zF;n|XhhBu~cEXz3QQDDkgfM~SX7ryrp?d0Egy4*MNGSE|rVis$EuxH9~QeZ@oOsOO*ei*WAYKriReDMeqNgxrhmq%ze z^a$>D9+cJ%D3D%4>TBhr7Il5yLXQ89|Wwx|uWrjJ?kA2W3TblR(E^KMbn(lTjQ&nwl0V?x#E2IxmrMc28BH?bbp59O_f zDg+*|dEzOugtq5VE?r-FRKwl01lo#-m6$o;$h(x6^gTXz7^($t!J{Qw$E&<1cwEK! ziMOUoRgK#H+o=deNHGXJzbG&t$0+N$_e#s%`e+rGOBCO7ggfi7q<(nywM^(`CH`m> z=>u-pW~+`@pofy;hH7BKli@F@S0=9haDdP$(A=06foCF5tKVq=4f0COmOd%_8$ z!4kwWHgjiKGImt!`h%FJSie}YLS`%+hrd?Z$f($Gg5Y~4AuJP#)U{zmi^_UA6%yPu zl0qU596wiihXgz6}f%YY^BO`F> zqVdmn@rKzwA4cH71>%zFj!wgBBSO0f{ldMmP9MrN3*{J83)-{KoHEz^ojJyyC#?>* zD~sCnAD=#VoM_~6CUg|3pI$Kw3#YD~DR2m=Qcls}y@^iFle%rwRs0-)kNJ*l7%}@D zhjn}%bbOzAH+MR$Fmy+NP!r=>GD0F3!c6GTaR%gOrFJj2Is8sd9~f_S=`wj{Gb^jOIXSKp2iPB%F!L5`^`0zIo!r|6?rl2Au=e zOhDL^;n$m?y*HZd21b6xhDsqlW!hgjjKnfbzm}W|2mPFc5^YQxtZsGHAgIdKuQE;k z`BVAyahG76Q<@pP1{dXRj*(GJk5_MG0LEXkVdyk;#^wBT^?Ji@>h2&JxCqO5UFa*a z(hiy%_(qNOneD(ptL`KA?{dsTw=0-b6OkKirDEvmMoz(>jQ7@%wJ7kQTA)`H!`4uO ze~JrDO5*L}wpGt#_I3QM63MargSi*3z|^}fDijRkB~;Y{f6&Ole_Jq+#Q=Nqdy2<3 zR{D(j`{8rpSx-U53E^UowezpZxj9J}7Y<|`Mj?dmO!t+cW%t$5t}m~Ke*fM|x9`aA z=pYeS!sD{R1K@p8N#w}3h?<&}we{J)7qR`ENV`L(wua!Wsg}3BaaFe@~g1ywXH75Ty?` zUJqtW5SUnhT>~?ipXyVmXJisTRDK4ZT&~*WN!Hg&xw|FxS5oT5W~lrV!=qJ? z0WBv>*h`gcYKi#cZ#=|*xS@@S4aKDI4`%*Yy35`wWAA0b+OueARY3D??WXW^&8#K; z>#t3pYUD=eMBMi;0=g*0BFI3yFCJroa%@>f$Twluf=tisMB z3wA&Fi)H+H6t>+0VhTF0HS2>%0xX;)TeBtkqi1nX{r4nR;^oD)86(!F#y(s)-}kb1 zsYMR6qb)cu*O_4<_T56Cq`vzZ4GGvb_gBDWywIl0=&mn zHu!v?%%iXVSG+z%jYevVd0Z!!txEPmZBmuG$)o~_8X;~-W=hs6M_76&5fMHer}Xja zEjFBF1jpUs1p4;ZXcws+W@S$SgeQ3XCB7xG#NsyxOxiSHSKqi>#%e;$g*dEF;2<3x;^44-=T zb?e`KNA+8UIUjpew~dH6f%|ZPeFuSF|GVHdpnli{T!ZmIH2%?CbrAl0bM&`wgT{9$ zczIJH^fF-d&Tl$jGI^bMPJdCvK?r})`=@1L*{vC2rr_gCGh_`fumlP`$L;SL?7sId zX=!PIR(RX=cs`OU;L9h1Ku=HKw3B9y_tA@^aoKIL@qpX^*$0AB0NC2n&Te4aiOqV3 z5tOxsS$=$g*ANpEt8zQmhQRI2tw-!Ywx;X$4~TNQgPQjX(jf{j@DtF28fJvKHQM!X zX5#PPK2YzB18tI+xjD6?qazT}Br$4s;Gnzma+7!osmjL}oVO|!l zB0YbmHeCWlhof%-RwuORX?Yvzy<#B1g-WSB3Yd&wu;gdNf5_cejX?{T|ZhYO@yqF;MvU*G=QkD`{9F zJwG-`XAiECs!%GeC;l`}p|y$&U7t5}r(XKy3^V+C!9f{NVmW z28Bsy0EiQNBC#2ow&G<{xa~=x21)&WyziKF8vcM`q$|ugFK^-G_z?EG-t2m#Xd2n60q*7u44%{K^T1BE5t zz3oJnzqOrg09wPmZ6K<@!D9^w41}qvscBjZL~a7bZYrx03?TMNr>CbugZdUK3yv`T zB+TfX32uSfViEJLHP&&wQE482Uyo_a9k5wDX@F!qoVB*rIAJ*>PiI zV?ziET>z4|fyS?{-`zGAF78yTyZt~cF*4A<%BHY>kxSfuX6(&;1!XeU{Q*%*q@j6KJ z>tN8$TD^P2F(|^LqI!2PCKeWuy7HtF!lR?NN=hp>02?F#)oyQc(QDytcx>&NPE~bG zw(R+^oD?>Dtkod*+THzVVeFW-Gnd$Qail%*q|MIW_L%wFW_4w^h&^3gk0~f2Y1@lXGqyvVKVWRX~eWQu2@5yc;tH(Eq5F zozHwBAt8@I``f#DR#&MYCnqi~B`gdr8v16wyo}-qd({(fo&zXgXd?p?YxFYUgSy?$ zmet4Gr!}M_5;2oULPoY14)3{QKVEB+c&tI|`#-rt{=^cm)+6|DW0G1^-FPTbDgL8> zGn%Q5xeS&xHCpWt8ZV0z@@9rNui{mx8ZR4u_)hMvgcAtD{#T)G+&n;Vs4uTc)>gbv z%ntq*2W-13Dl7Noh(|$Tbr@LoOK3p8bn0?!|Q;~MQ^t#H+EwyL170}sLP{~R(SAf1!o|O zo|YOsMS5QBOw7&w0!ynDpdxxpBfkY!TkBxv-m53RN*?J~)6f$KD0PL_E zK=W-t?r9`Lh2hyoKY$_G!B1MzazKA@aNt(^*nqgu?z^gj#Sq!ky!!*9--YOt01yR{ zpF-kewrH3WxOwdE|8ya=2SjrR!sNPxLqE30(aT#ylc~4WaFsEmMiIpM-8fk2c`AU@NiB+0X(4EBqZQVN|XWH zU}i>@R`4x7T}D|M(|PCjI!FyW;OE_#NB}<#p!N*4 z)ZLHfxk z!8NSa^D@%Wv+VBZ*ylDkM|3`4RklVb5~lYe(SgN^MYAVD*hLlodGhFJcyQkj%b|wq z>N_0ByMCr{w*DCzLH9;Hp3c1d7XPyH_=!VJToiMms-m^j^gzYtGAa|c@zmz2|1(`o+{a){+|^~Zc@${clI;sCap}F4 z`?*Jx&Cld&cbDD1Mxz1I(goNoNF-#zsF-8VDG@~=)*5u!PtuByk z;r7iRjr$}f_D+{sridt(+!k%YSkT@7*K-zG4%10uOpKhuAWj?C>!j0H;s<;fg;^14 z@iWVuHFv3RHLIil9Kgt2lI(!xSJdn$aWy98g-Qo-pFX~(vib8>`Cszv9SMWS$bq(p z`#cv{;*3$s4q79u6ncs&WxvBp6aRhTLPDA!X7@YDb#wjo-DmrDKF0#E*spdDr%e+L zMor1lBF(m_uDW`kSJL7-3;{phqA^tEVc&?`yKF79GdnunKtH%Kr+Rtya)kfuP2@EUKFyg>#D6>T!ImbKcC>#)le0_7t#_Z#nHy4=ZQUpEDa14d?wQoy$yno zU}MfWPN)*q&F^*HDQEzwv^)2)#mEM!CZX<_A@ zrYJlv%Qzkd-7bd*1_pM}3zfzFWFd>_w|qX1vwp&iqUyM&&;%8IdPa=IGacmr4Y6#KqN~{DGNd%Bzi41WP7zLJ;7XWV?ol}CR+7d5cSdn`?e$gRILtBw^fKm*d`z$= z?qKwgp|j`PbQywjw?|D=O@6{mJ`oj0$AxLMU}pS`gm5~l{^@ceZvL2o8FU$B>rTCa zL|KCA^q*u}HTm$pw-^)hkkknx3T)2QXa7GYaQ05JuoM^X@iM;sAsHFn`5a0|X2EK# z$i4|r35|}B=F?P@FdK=_fynVOcS z6)*g`^b=2^-E8Dg40hQHKR@2x=+V5Umhbr?oa(6!-r~}%RE4Ce!cl^K=Q-NZRYr4Q z@WJp0P{0}srg?zLPn?`QjPf~}dTi4e_>kgDP4Ij`OgoSu{a~HWmQP8+7FpNy%dV_^ zw2_rcvS}-kzalMuBxzEDmFjN(Z0jasdz_`RprL!#Xc;S*sgwRzMBTG$h5?3%Ub-$p zP>%4o{|>J6W-l^X4>TF^21VC)KvF<`dl!8!eNz8l+?wm-zwe4fyQ+raU0G#iXd7$^ z|9oH^#~>&mZ!%TJ31TG(@ zk~MQJ|4m10bUdaFUr6Jyok&LX{vC>(+FVCzgw_T3`O3L%O2Jm%x^J`bIeLwXvD;$U zh|$B4D`A1DsXqBlmSCdys^-W=W#ucnp}gm2VyAgLHU? zBYmii5cyFkvx0P{s&4%6EAe9NBpWp9ovxKq`F++M*b^vt zy=~xG^gkxGtxVLxyZn3JMvomj5jP7W?X>%Igr=l1-7`et<$NX83@b`K<z!K?Yrvg$8p^Y=6J#K5)H$ruH`yNsk@*ZGF`1*LA@AF* zB<>)J{LZ&1(A`&`*Vi5VRR*iyX2sb4-uM&_MV8L-gW9vlfZ+g&Bsm3D5@!|a%xPcy%@Uk%rxTx-o<_)EMX3AD zq_2JuZk=3d5lnfj!Lz-4YdF*ZlPrO0&K@7JAtG6ew`?E6~%F4Uk+PA!$zg+C@Pv}7j z+Pfjg>BCi-;z;4Gvb?vs2QBq@R_62kIOFxh-y1|No82c0`Wj$rA?_=~9yCtwUJ6kfyuf5`~zq;(b5wzZU zYatFBh{7Hg)Ato6NSMM!qbJH30b<5llJ-)0u| zRD;d$hTKpo3ex*N@uhY;;(`P{IaE+XEfP8uaEZsER@IXCBQ#At+-+hFWs+e=&baQa z8b(vEUyZVeA~!zwJ47{%->aG^sNeD8g5vecz13e=_2uWujY~;eY15Tjgwk?kjv@aa z3qS)iB#QfnLhyZTods#j#+Yj-2`4ZpB8FF<0!S;cEO@AgKE!fvWSyXGIwahb8}Kx3IA^ z*V}s?>)|LQt%;1Gznk8#Feyw8k-n4^uV)W9^to96B*e_NN*ZY?&P|7rQ*rl>V|QJ4 znwTv+2Gx-l>M;gE$HfXx)6x^~bDwFOD-iM@nk1RVt;eej#$$aKF{TWl%p?4$a%z4P zX(TI;WbOWU?Iz5jnJ9WMS=LL0@*8sunQ#0pzd(FiC=S$y2|v-i;CEsCh(|jo0Zusq z8KU&~tvLj0w4tLN9Aa|>gah~}E_LUgKdK<0)N$Q1y(UVQP_2vlN;Y(W9Z`Z1{Zm*s z?^Qsg7pc?)^AhT`m!%SH2|2>Pd2-Ud&@Uks?D$+gn+Z8t(fCw6DJ3;z;bk#ySq3Io zp-(E-HE}VtVVw>1;k# zZ6CgNyk5Q9%@SgOz+KdTqf!WFT!U-7BM@PP+btNeVw2m>`3Q5nglH?MB&lUaM* z2LnA(nXZyjLDQ<*nh*sIwXX>{qouQPyZa-tTN^aVh7Ij`b3|?_1?flKPv~^mZLNC@ zlgSBEg8 zsnXA1RV`u*9G^uRu8w<~jDjLySzUJ?cd-Q+%8oq++FFbzH_#j}yEw)O7PB_b-}Bh} zkf?-SlTGHY|G_GV-5d1WbjJUhDyA<%{yBPoJk_KIKlS@>gE7)UmCp3Ogk;&Zq5Zeb zCri0_lQhMx>8>8x2*1A$MWcbO%eBn(I5I(o*vA#NB|kR-G(EmZ+ikh%Q90A$DvtBl zR~r=uB*I4G@89p*kdX~Xl&WN`AQYOJsReg!PL>UYD{uV8iZ@<*yoe%Kx2^oVbEy{4Ud>GKftC%Isarc3Z zn2>)nl{ZwH@NLgXQ66R=5u+)S9!!iCeO(b&Q-`|<-YqoAji&CQJQ}f6Phnn?Wa&Ja zT9E^(kzs=UNw>G9k?3Ndc#3RJtBvKTtdXsSG}RZiE*ja$8GabZ{U+};AS#TN%q`&k zRZ?Ex=b6z&OfMpoC(~O@S4LMsLqiogSV1J?7aun0_aQ#_A_4l4=^-J|>5(kR(uDoA zAsAtwx|QG+Wnc4<w~z1hWuSZE-gRC9Ee7k`8f4y(HzTR|O6Gy-U9 zce5LC&^$Tv-N*@s{3e#UHQc8TR4%NrAYLRgY2ItZbxf?uG6y?byWXI)BjSUn$8+vQw&oO8mhjv<>wHV7^K@wzWoK{kue}np+m{Wh|#HJ6I zBbE0v@=fN4;6i3XP!cFA>V_?5SG&qEHMX^-ErO!F=>xTr{>kR18ul#=eELXwk=2`k zMd9vHD?49LPVPtJcL`y6lYa>bVT_tEXh$?U!3H+hC-AXIyd(6Fs6%vt$- zHyXN$DI78toqJ4MYJN;Y+N~awT{e&`A#j6_KqshdS-1E5 zIMe3DYV6wH7pY*`p(q18lhJE*}}_;dp5;x!p(k9a|^ruC6GUi9O-HNc=&G75iWG ztbcRz?fmhu54Ix%1%sz5J@H!GTvevlWD=JVf4MoYiMko680QoRh%12{q=FhNdEifn z)a41bjBZ}S)TdoV_0{1c?Eb$Ex4b3(NE9{RWDe)kJ5D?0EWMys;-wCA9^78Yxl!!O zSJqx0)Z(4JxWi_ry0-r(t@kDsFT0V~uDc&wek}-$ zjb3EoXpg9MC$AoD&52VPO5g8Lo!u=D*5*~=;Afv*ZxFXVU7?nu7StX5q+PmRoj%^q z9~@%1XuKE>JZ`lwq&Jj~Z9cAz#cMJ5XcC+meOOIAf1Xr6^j>VC#kFUdA6krZ*B+tB zeB3U-TKDMeiM)y0?r@xVYoK!+;o^3gPLB{GOX6ky5v{#;#Y-G@kdu05bo7PJ;v~-C znB@sqFjxxM8} z4n2Y;COgruKW;dFN`shhWZ!@J^7OVC`|BTHCa_aEzZ#Cpa1uumP6zv3z}faZcK?II zL+2HlfS#U+xb6EQqynQFD{JghuJ6v1DbFDMcz9c4oG>pVwG6en=9^MVWYY%LwBQh= z`@G98>j=sAjmKLVcQfIkR227~sdQTy;GrajX{vQ^wRkCD9&fbeK6|_TTqq_!e!>-ySTuJ#(n}u`yWVbk zPg8Xyc%h{}EjGLt!Qp#G@}3)s`Thc%NaiEy$8)TUOVpRkh7qaI7fS;>>F8gQIS%OG z6MNyfe+)P*+RlPWeLnS8fpU|bLh7RxKUyYx-Y&ulwZT`{{CZ;JoMY%pVRK~;wHW;d zHBRl$f;8zUmR|+L^}!dNfdzqNbd}a-+t*e)rzFxY+kI2tyB3`1?P}|;v3g)+6Uq{4 zLvLbU8EMJCoL_q(aUCB>8a%egPW8L}xq_`|;5(8N@|UUekK^;nx_6l-^)B6YFMp}v znL}!{Ef-$H`xw0ybCL40KoseN!l*ebCR+h5fnXnn zTWDu?oB&Nas&8~W$brDgsdDVXZn}hrH2V~{`@_mqOq(2aT5cy`GsP$PBmHNSse~#L zBf+&hV**&6c3_02snS`S!s>|*$I?EMFirLG)2Y`hvdGeOzA_c|M>eW65}I=8Oo^;c zQT}75kT58Fp~AX`?KSQ-R%&$iY~DY@|GUUY2POpv5s0YM!P>1-G)p& zQ_TG#fC*e5HxlW}n>geXqj}92u0T9~S6H&uz~VgR{~J-a@-myA{@WIYZ}Ttgwe$@M zQ(bly7XI|hj5l?`=rmb^*i;{9hOq?P$Z>Zqx1hvm*p8y7BIM+A-L>tR+b(T(%I9Ru z?Q%@CtBU~W?}a52UWIbu{k$Mf!{)MJDMoWe!PiFXep#(cVRCD3Ejo_TMz)-n%^8qW z+}iA&hPjcu#Nipl;UP*K=wUAz!Hu3%(=k03-O~9DbKU90b$V#CHuY+j)?uzAi);0Z zB0fi9a41W%u~!B^uP@f;M@Y9bUp}E;ZiDg=SeVg=3m8JXhfdBG?9N+Ez&Zp60y2RNjq77pP2IEfj#mU zKL`5NDGadjul?iUH96moPU(9hdR%b}LCVt~qefAA^<^pMqcP;`Wf59mGgg+rAHciJ zlr3AVvO{+Gld`ysju$WSx(WB4SdA2C(K-(0iN`=*ztyiMFyS8~-QhN#;w*@G6Y^CV zQ?vSw%cf5HZELnRm!LuLNJx(5FGYlQs(_@WWlp}^TOYCqSIB<+Ckj5_>(?J8PW^E4 z5tU3S#a!JvQ9lGP#-yc$hew3m-u|nIl~d^EC?^%3{!wIVVq!A&9wYpTC)RZiK|lRp zx9>2E1F?UOEn6e+JA}Bx)>1?85))^rDyB9rL5AR|2nW7SZ&AqBAoxlLEUe;n7HK7D zi~P4Y41PnUQ-uq*MArZB|J&t|L8+CipSN>yT(yRg+-%3(`2Mh5)q188z%$c%y!Iv9 zDkKtVc&R-xc?_N=9=uax==@9!8Z|HlszOL3!;Ae~8?8C1ZY@dvZh?(;4I%DH*h-5> zpVFwMsxgSNR>MjL)RS=3F%b48$$rU47%l7(8GoE{xW~12ukq2r*7rwniq>^iUg$nGJ2Z30Q$`UzOVc|NB)|uyYeTEN7zZ2Ok4;Q7kM4 zMI{)r2}gB2^7t!pTPfjo|H#s_q(wzvopd}f7yj^~2Mzzn6aN>8FNxt?mC>?Zz3+MV zYf^MV!jW&ENQR~q1m)!AQGwUr;$Z_|ODLI`Vu0t&+vy*-W*5XMmCmcmB~jdMr0^MjjAdgL`CLr(!)xM5X6t_(=a1StcpsktU(hH>MV0= zCQyK-z|xIPK{D__C|K=mT>2D8ox@=p*?`^sN#4n;e`7{L~-wC$K@z&3bt7_ReJ#)qG4#+$lOtNRfuUM=Gn& zf_mq(i#zufPsi;BvcA_o6;y^i4aBkvbj^Q3f6#Yz<%B>_06@&k&tG@pQ%Vd<#_Bz} zxd07$Hv1KR9|6*m5~prBTnFHDc~ZLsI4~IiIO4Mz!=i@0k~_S=ey+IU;>u*pr*c3+ zL`wQ27uUd%KwfsGrWSMS+s%A}oz15dEUgjvhvSBc8t$iCwnqrmGV9shHSw0BPgrDB zWQ@2gPYe1A%tyQ~R@WBg#De*Hi)7^uCq73piGR+7qG-pidW-i$@2bXeUx_=r;9HYW z^5_+nG|c)+(m6Ki@?;#`Agx=POf7r(j^eef$~wMz<*wIDmp5%960{#@$bTwGQaP94Q`ONz@NqMsWI-(L7WY|#NmceMl#&#Vz{1W ziiR$2nyU47`MtsEY3s<{sAJF`F=@oegwb}S(+A0Dw@pVYuvTi;YWKLW*<_O)5`Vc( zd|_VddyFxAbCUeK%(?*V&mCEvPY6;q5PBEw8sWjm@t-4*`d(rH3wl&2fF*3_#t8r} zH0bsf){d;2+Q#N4a6a1F*>O57ZzTD;=@PPfvJ2Rxf`*19h|^9_kBD8zojHmBqa#2u z=9owN`})@0S|h^4*8qO^BoGJT>;9csEnYgP_G3od#$i)1hEoQ=SD~kkjI8-Qd<}Fn zJxNLJ40LeK3g67MJX&$uB4M{bNHBEBoNBusIh|r<)6&u&QRwXo^dEKHkO~Y73|i!y zeOXCfTi#`(6bbj8?T#%nxp*%^J1p?8bh+{-D`st3Q+?cfq|tG7NVM7K9OHQ8fl>=U z!2mt*t6fcf&5uxZ!F<>93<16<@pJ~-GMlYqLItx8Lk2c+w@N&&@6+!$dtu-|Q*Nxx zqQCt~hose>vrkMa2U=nEqkhW9AFuqXA%*CxmooWyt})5d^+(jEGj|>m@d_D1_Xnmj?M_^ z%1eP)KwO`F?=RQS21yI^^Fs;>s3ES}KZS!J_~4j>YD7v39zXEj@>SRzr)vW6Kw47g1fez9D#ia1PXz1n3SS9gBUOURr+)WKG(&Z zNgOm#Z~Q86Tp8Y*$b}wpTAZBh0gm7OTAwrff!zs&NN!y9`v7=24}KB|K>z%(`oa#p zIe;G&EU;E?zMPbSP|ctJBjFMf5_*As(k}qVA$48uPc@(RAft^%G*&~t=EsTJ92c@A zgII)AO0&vL890x9?R|Tz2=$F`M=KqUJ9l&G191$#4z3ssxxS=*@-v5N%=DxbUhX2D z#83HFwfJ1))el-RlUv9+2wz%oOT~23jF&kq&kp(ThOD^$m6@G?mHpA`!_He={b)G@ zBj5HyETGf6Y3R~x6jX8823R{ljTv#578F>5&s%HQ4MXC0YsB1kDgt5rFflQKCD*eM zh*}WaEr@LuaCni;IxK9^bUq+U2LOiH6=z`#&AqH4A^{H$=CZ#c~JX}@()iKO=;UJunhedJDe=>AKrid z@t)iL-{&#@-HWa5Gw|?kT-<54d9W?FxNZXHEh_M|fBxYKA2-;0FkR{i2Hj%11iLpB zWfK@Fnt;Sc#OoB?`MAxZ>$RT`p^aRQ7rq1X@f5hiLx3Mh2)40dd`m66wl$QXcF!V( z*=@*r=?&&HAW(dOaTh;0=K*jgku+I8@qlw2h$B@1W@T=z#8UB!SRnxDRa8~&`||4b z?TEp%2tec^%w*;VchvIn@p15^gtz`{iIRvRI0I4+Wo_+Y0P?1ATI0whF&h0&VS`-U z?=*e;c15?}+P^j98YN+T=&pHAQSJNF!_8E_ zOmfxX?s%3$9LYyKUMETj&h-d%Bb$Jwmq;>`h{o&w^^IZ(m<<6P)ROD0-v6@&0-i)s zj3Y%Q!@%GPA0Wu_lx!}0ijZR;%#!ugc`bWct27y#mhE7^K=p>94W8VX;K8?hU2TBz z6#s8B0nlk3z*0gR6;bi|w-1#x#PDx!rPEzuK#4Dp*o<3EK$A>=aM`t=P0 zK<4C-gJ~`Dlwg(${u7m$uMePHL%@L!|AQMNGA?r-V3)yQA_ah01S}EyfGDAA-bN^2 z)2($G(6azZ69&hds1(QoAEi{g<(BM2KJ!}q+WFtWVu#1)mQ|%to{Ej_n|vl8WGX7F zt4jdMGO(@!ZZuI5wvZ8Q`q^v|Zn*89gB{uC=A5fjducQ-zG zc<$rynN3sASnmFcU?<{2j+Dxa8XpD;nY1AIADROH87#P!T1ir}vXu1nCBtV&ZXYgo z$3KGy8Ng-`O%tEn(J$b*y0_HqY@q`n$$6WCyu7?&Q!=e25OD$MH!8fF%#8s z8$Qm8(JAB(@g&MnS6h)NzWRV+tgz}AEvX0^q3GV>(5DcNieyRi_>{V99iw{f=6@}R z9!J%Ka{#m$P1o45eee-LLP7#uohgW7*~b?b7l^Ph9QG?2#2?&#me4y4?+mhvbiP#j z4po~BiU`^-)J635iGiEi^1Nx|m;i7UaX4Ty`9A11+Rky~s`*NrCvf=BpCm^RInELY zWgLN|1gmL!@DPGv1}yw$5A%U@B8dO>k%ljHp+;+0Uibn&JP9-ksQDV;W&`QXe3g-? z#UgmJu*AuLw>8$tJ|6gnR|nIZU=jfw8T0L1QJ}!7VKiY+WlbObTcMW@+_7;OH5JW* z@z=nLV;%Bq!MbuAB;#Fh>Ip7Idti9R4~{tCO9xxL$Lv@RnC{Ag(8E~D^sjO|$RqjCYb7!VXB))rDV=tt+bd8w2@#!Fmfhe9 zoFqG5*=9kZC_cnDCqG8PkV7>c*A(Dk z+I;kY>1Dmu$--IUu0nB(O6_1eR8(E3nK47|H;SiR;FL7)zs^;?4RWza{QZkWZhwLD ziYPNRDgpWxe3iunIYjOUsv{^(AaS}noZUSrtu#O18Umbd#O3AXpWJ8tb}u$Saw-zG zQ~*CVBFsF$PC?3h8!key=1)*f0jK0x8U9 zx#fG~idPhv3J}LOC{V(bMsFk~C2fG=1q+WX-)sCh!Dk+Pe0(B4mvCScIRysUeEbJ7 zL3;)G1|XFU7*|7mH?RT*(zKD7(kf6Q*QO=|(f`$XAVdN&D=u(IPmy71PyC$ai&Hus zS#g+{n5YPB9}DF(i}YH#Aa0((KGO#{ctX+#1>PG>1XxI(20**nQj;S%?g=d*miR-C zB>^~aMKqqWP2XP3kr_QhLJcd?5K4uooAS#JnyS}ti9g1n&|aKgY6VU(jy#lz9Lw+U zqHXr!4B1iuukI&8hHie+3bRCr3K2QBifcts6p z%CO06==utr3@B|i_~bkv_gW-mZTQ*F9Pv8GCNsx4V_6`TK%FvbzT&Zo0`iaqC|Xj1u{@N9o+~zU zGBPC5L0sN~N%kA9rXxY<#(V?MmOcu3Y~4@vV@U%EO99AQK=T;{E(q~M1(>av9SX8lNAn|xvzlkt^zVrC_a}xp@-{Z(ZE^rTE|h&*{_L-E(5%lVDP|Iw*j|p zx;vH$LAb$+i8x`X4_iZ57!*(Pg$V!(SFF_kI5{=t3B(}~6HZ`d2Lifcqn%zTDzP;1 zOO1$$*@kFEKqZvzA)i$WPVT`90H1{&98SX4!cdeHFdH;}h|J(YC6$wNO9|cC=oEbU z<_$*z@vRiC91VJ%aZ18@6yT*y4&aG|8T6ciCdUu2~*v1#JoUV71&j{xUBLvXZ^ zoKGsERbEa`AXr`kqJG?!wlfVpm+V%5XV_u&kD0`I$ul@bK>8g)fCBZ zE*)55zY;XFeArjd2!R^Zib~R5D%T@$l_knbL2EHF5ycH?!f~(lVi-NzOK`MK;e$AS zSxNL#$0!9FaiJrOy^q}`5h<2G#mN*p^HlJ(K!){K2GSpp?05OzK=LI5Z0CDiRp}t1 zQymO!?0%s1@N2aCug(GQCJkQ0ex$3`F30%j_h0pjuB#iK2>-wDgXtEJ!CS{hfQ1o` z!ILn3(CCGdo1NhJSQb}CDOHpfT4E)s+$8aagTsY`TuwXT%`3Hdzv(uOV zZ?W&Bep>Qb1#?jbkv`Cd?FShJe>Zg)yAN~m-v{Y#?lvx2$tPPd8)TF*LdKQE)QqOZ z3ggVtoRY66*zlbr@??Dr*3VU3{UyHB3;ywLhZ2|TXs z3S;JII6y0@aGqt6!&X8@(T{U_`xbn&?vw8E<{gCO|8I=Y+x{zz5MTqN2*AYl*SMk zNg!9Cg%;mVMN3xMxyYKn29}0kYXQuA0&So~yG{=u2a;TYmq%w%F@FMarTJ<`Cn74! z1eiTTPUeCFMR-N~wKgdEHOjI7u<%|3^$L&IrN!LUr#KQbAZr5;*fIBq0-;lHa;Z+g z?6mDhiD0LEO2z5Xt31*VG($pO3b=~ya}=@6wuC@YEk380qaeNW?i1lF~wF8 zXo0qQaFdLS3r8!d*q~DYByFHOuK||H>XrJVXPbkL&AN5qg3`JmTY@W4N|A%tMgcDz zS|C^{uvAr5HLTYLVXyqCu|h>vHP{G`hX@tuzo-);fC7RMM`o_W9=H-y$s|<)n`f_^ ze|l7*z_IziqH5EH&yg<^oE!)Io6`!^cyVbIet;ts>36{hgKP`*Fknpub|irVCJ^*M zfgh-P@%Z!A52R=Qzb>tX*4p&~P1B>yY(d@QqF_ZO2DX!jhQ2>11JO!uP7Vyn2w+3G7aZTg&?#n`I+Q>I*)=)^N}yW% zRROS8gOomJXJ>6s*Nfl)z#34Hg2l49tn3@GfwI>k4;IucZKp7h4GN&ZS$lcvd>I5a z3O+cY2C_&50-K*8i$bQ3&0<3gH~|ZCBXVe6{w<{f0ppMDk>m?dRBbplLv$@P@);19 zjzX|*0m{P^AYR2v7z$oIHU~o7yaI`9)V~}tU_sAnGsg-_Z_QeB6x)S5;dn~$mnJY% z<~n>od=Ux&+g+&;;U)0=j(U0A71S(Ox0){L2NQJ;h?{^VHWetuK-mj1bDf-=1UoP= z2L4Z+=C!Ggn*+eV8x7(C>vy~U8j8gCQVA&U(pGn3aCNbMVT#R{tnPGG*m|_DAcW9R z@^5d$21#oQ7lUPfHJez!SnlC{>R_^2n?9)-Rld>UAnVuP=8S^P)lXSatQ;u*Qfz{L zPnlAg(Jn_^gkE@}MhT3Lbw!EFS%ODbBT!|9Ne*7>YMhwXG*dsNaMDUbmkp9AiFSVV zbAlMHhDyp8xPcbTghwHTX@;#I7>Sf~8oU+>AVES3JWY+eM(R|CX9M1li#L$zDrK3p@ZFkLNNgeh;>gJywYI^ZE9O zHQDWJUPuHR=|`I|cZrbXnDd{Sn|YK?WA5UB=a5Cyk{FoOcK|&4GlO5Y(r@ z&>pgH)#83K200}I$d@2Hf)GD$AXsA5stE?q-vzL1hn#OxAe#!_-_`~0H{?LcVn`MG zDGnk^eg@C~ z?Otx2$9{gY2Pk0o=c*~P{GWMs8f=Wf@knjpV?vZ(kS#M%;X(EmfdzRgP}zddL>t+Y zNT&j<1x!J$0|MkKhpVW=nd1Mj_1@uF_x=Ak8IesyR1_k6N6ILbl@X%sO_HoAQ7XHP zXc&pg&MIYj4C$E8Th zy_&l@FK*VDX-T-GM_rqr^EEG2d(G~;3VH3}=tuO_p>(c0!m>iyMl1QXUGqZoOsr4u zV=fvxJ=Viib@SPf?mAtuVvCONn{|8SF`*3IC1X`E64^;)F?KKEg$Oh|Ff~db9;5Zx zi`cG~8t(2pB#u6^MXyeRYaTt44`bN^yM;KOPnOSE2R`UFXF0BDnyL?nOib2uMPCNK zf|Cdh|C0e6?Z>4Vw>=8Mv^4BlyVmOx=q6F@k&cIEN>?1e7(t4WtwG>q)^l;$mmLl1 z=apDEyiMDCKH9Q=YjZ|o=uB(>x#j;owAUdNS5q$so!$GAR*{ji4!l+T@nQn9HtGCtZ9x7^PcSY5;T# z9o?SKW$o&gvhQ0>UrSeKSWQFI;$ zVvI=D5z4?s-tmXG!R6=I4lX5bxw>h4i`#+gI}ThJc^Kg6Sz^wO))F7I!^-kvMjx;X z0^p60kCSGRjDQ8ucA@EW#@XNBMWT$IyrT;z@Hr6t2N%Dx_Xr)uT9(aZ)40UA!aQqO zmA(BE%|#8#iV^m83=Dg>-7giN1E!IXmUg9Zg8N16HFwyR-OCbEQd$v}O{PeiKXPRQ zq*ymGzkl*K4uSr%;~U5d#P{Zw9inc0Q-mMO#2b=q8 zyn1=JSC;_!?pgY}4JTe3F0l#>*`VZB@fC^YlE_3v2{GBfENvr!D4bB!j%#XUzaL_$>nSl=rzFW0$kV`0IA+Y*p*8g3ZU&Alr-egJ2tg|!CC+c?8Q8dZ@JAPxY&Rh zV9&xsJ_?FhP*U#M<#S-fa*h;PAMDk=kv*I#*(#aYZX^m=v&!M@00Y|mlz+;KsXMYJ|j1ln+-w|1dwWgII zNNz&_>zxStH?Q;sesp(21-HP${K;qknvgLzSh7`icV`=<&u~yuho-YK(#{5`ni|vR z-8Fj@?aw6VYW+k};#*c%rsq0|iTiPB@xEq~ObLSBc*+};>$L;Mfu5T6$$&nNJ-7Z+ zA+*OhA&-{1Yo#cjAV>&&ySHz5075@d6a1I-@A}E|8GuKSWJ8q{*oyfJ0W(8}lZMLg zKI9l}Ls{{4uqMQ{)B<4}Uwg7y@Rj#b)lf9Nc=4*pM(y2`lLj{=t*{6i8X8D+#6#!y z;-e3M%8-94vVKaIFsh;FV{>d9HZ;NY+<2ans-dB5j?dI|ui0rMBct*U-+eZ*2L=X; z=mcz_)lQ(JUE`X}<^R{Mbx+EN&2P@=B?zw9qVJ~++neB|7yqMEh@O$^_4Gw|%Z;Dx z9ZGJt+d0GuMH&}vsma_Qq~mm5aBHAAD&So^qAuOLSIjYYXiNRpXVEmF53}x-bL%sO zSj7uQsvBzb{A@94qUR9i2Id*P^TK}qo%(<=VYUataC^d#I#f;J|JyaY?7WrApcwRf z6DQ~G2uUVRG{X6(+#(DjwyP)#mrC4f(miE#3N742p5ubUAuac7kNIXEy%E;7H1G9p z%FY24$y$R%!^v4Y*~_Qhigk@0kI8BYDJxtq;A-D%5V~?YEY)ac7FOH3>1HCK_((~pj!ZnKlLCv8>EEu3c= zxjN>nvf2qbIWt;(lrM5pb9SVBp(_($wEz4`JO9}BJHwG?e z@Pu5|Iey^K^|@N5v*ycxHT=goeKOk)bQMw9mL84pJKCJXsTDgZA9lJkQ~&Qs*Zi5O z+d)5cs~J7F@0UmOen-Vpay$3%me)tP!b|RmxHlwHTlIBsn>@))%au=)vMs1(@0a~5 zO9tMb>Zvch{+^{`!82oO`}JtUiBz*=_l-OStxj+sWcwrsX2&CGVBb0!d&e~w`1zcp z7flw2X3{t3_s95tqy3f1Ssg}cGri|Uv~r3?0c+B6{dKLrD_tJ_L%E_PBce%iC0SNYZWWPC8Vv{^C&{O+ECQ}3Z2d? z>6kbtTffl0h&bM}JLu%~nRsoIxbsBSEXQB42ZrRT)E?*Nb{>8t#=3mHclp-eS-HUO zbstaqkI9VJ`vq0(-k^|^aFbOlT4h$g=y3E1_jYIP%(oLR2G;b0TU0x0LuJjTUfzG7 zJyTy|AN*3xc|7cI??m4>%hOuqHpC}ABUUa#GoA6-sru)lvzf=PsKRmI72cPQ$jwl%_aEhwIX%x3R6Wd}!m??sD^hkjidKWkqBrorCYmrvU#W{S z$HkXD)wZ168NqHi{xOf4g{3m_yMB+CdFQ03W@1{*B@x+AA95;d&)Q69mA4&H-m7ta zpD~8}kk?a7)1l>}Tl~jd=45bLbX1+Jy*=Oi_xELPC>XGa`5SE0zQaSSVfts5W_a(8 z|6aeBkyrPX8CsLHrO0kUU)SeCOviijEok4k2QiuIkNvsWw0NY$dC$ssib^SS<-Fq* zlwS_8iIYOWJyQM`%Q8^wJB zTNw+47fnnz8**O$#pJ%K5zl}(cR4!G-PPT3Kqk8BWhhUWQ z_P$*Oy;uF>`6dKKN1N{Z$6OORFu$!KbnYTbMk1FXmrK*tO{5V5N$djHdQ9*(q#kp~ z4~mP6n~5HfX1s{n=<-r;g^vqq7161oI`aEEk4v=#Dg?%QTaZblZNi+Z$(UaR{YKbD z;QZ?&^_! zK&hXj+O5BScJ~!KZjX=Ex1dj0ALXQ1Uhb@l@9n=X z@#HeNB(->5Pn8rE*N(rDeAVc1kjujm{g(+QQ^r=yY&}}Iam2!E#|y%u-4|qw-qtVA z|2eI5uHr#Y74rQ(V#*1|O;FohoD2Q!=Ge7poG`qe0#z7LV+wnF`-rPonWxsGq6-_C z5=JeChi_skgh6fiO4R8n0yDZdTlF=!w(jloL)nIuQ3zI|qN8OPFQQa5^vM34f+(<) zPv^NhRp%J5Y*eU&s0N5WCak_i!wcfw<@tHapr!F_GCqzFz#xcG*$}c8!6@Kp*X1lT zl0OfED944)*s5<48iw+T!YZU{@ImQAY5VG)HksOpyt0IwHzNk8o9s)xJ~hw-LBq>I zO$1=eET7ZjI-v`Ie;~FjQv~=G=3An@Bdv){baXU;MYQ|i6)r8S`E{X$iWbza{?Q_a z{39O>Pn(;mXOZ*!W+JbD_s$&({T@gMz$@}fF9joQr`p zz+jV@=eKX)9uD=%B?5dwBz4&uoUkbP@fTD6KKQn->OdbXlr6yv0stoo5tDsr6TY7S zCcM# zFt{H5nGb%d8QW7Vi^RnBM<2OfXmYj4nD(St>X8s;roXwa5%M}XJ;12(g}b1t*@vP;i}wV=km=SWI|yF z?)@@4b!-jj6rIq9x+cFs4qJ>JH&H0Hwdw6y9N_>S8h{NK_$@d4=I*nKq=CkmI&36# zaYm*|WPm)zO3S)*@L@7w$Kc8@C4wblcK2SikQ04Hgg`EQ6^j<`6=n377)XHz9=f2WM>jwQCm#ZImgUF=G(bNWq*aR&cPz--$1--5C*^d8Unr}w#Gcw*$nwv4Qt>7_gQ_nzySCpmlfKge;vHm|Enxu-uMB59YmMvt4(_6v}CtO%T9 z2v);pzyZ8@_Zikro7#a?DhJH)<7T$SIf;}ca%rPex?DeeNB4##=HP|nQzIkTh(-z6 z06G}VP{Z>flsBdfZbugh%@cCB7zl}qO%4Dm>(Qh25Bp=IK9 z^Qi{J0s55284clAD+HhB0DI8p-@_{atV8hpGiOwwc+0g9bW%(KMN(i{!475sH}&=>AscvS5 z_E(=fXGTmFF5cDp67 z+@lEeL`6E5!1<8_&n0R361%wVu)%IE++2H4G&VMpUua^w+rhaqFAx3rkDomT;rqT| z#9lqX7oL`MDDFo|G8d2^e4?07`Ss(|UC^c#B#1FWeLQ>SDH)y#w#>}pHy%1Ur6>K* zCTTk)X9=`=Us3*^{kz+56EsnaK@d)v6_{Vha>EgULy<#guksb~R>Vb;I9wo^fj_$s z5UNDXtbp!|P<`y0s)7Q>dg;6dfc#&+d=V59GCk!keM^t%_DG?ElM#!lM^{zk1-I91tq0Z`^z+`aYuBEUt^piB5J(IeoYtWH!}u zf5uU{yZeym_vFSaX&cifzS9NMW;b>iG``2N7l32#76=Fe<&*KISt*{Gz`GLjb5|Xm z7u>L_dBc;q{Qgf1py*+X0~Fd9y7N##gbU}V?XlL!2R$&A1+icdq{Qz7$I>W>j)sxs z7aM%B}Ecii57Gf6KQz>$e^a9UgHvc>rMWV*n$FaGRhRIX7ACXP9K*-X&A^2 zio%RhzvWLw>K=paRpbtm6CCodSHR)jJFW1!5vn4u`XjC&cn)@BUuy&3M5yw1BzWRr zgQVlrj!ac<##b48*OGCb_$A{5Po%JH$u)%fd=@v@+|Wf9B3HmYJp1sEa86X;*j{?t z_z~&Qj`QBr@o|UiR<~-iU$Bk4!_Fu+%E;*GxYaD{xjHmo11AKoEqWbvFMhWtRrM76 z-;hbskSLF@tQjnZ<2KQ+?<&VQPxwUvpbEDm*Z-cZ^kU+_(|Ww+^>y@xT;; zcCjYCA)|gWdD%39r~+e#+tC%f}x530Mq} zZSBpaC+XL?d-PIw#*h9$tY~U6frb88}M}D+%vgXJ`{q@4b9gU z1D^? zdM`1jwJ?Nfzi@xpRcS4;f8MoaeiLs(0M{F*ko{;az!eJ0$<0}Yd(&bKfy)A=!OQNO zz1u0IvfXBN>4=G`)A#ok6qE1DqH%8n{15LLCkiY+wcu1pDjwqTgW1%<5rYa1A4K?m z&Ru}8!Epn5hC=fd0CC*@$KMoWpex0V|M=wKp}s;Z+{2TDHR-9Td=%*KV+$t`47>S! zObjE=y!DT5jy>^o!iSvEvV>8+-bPTw zcckswJI;;YgGAu8_)3Z-#p95Z1iP*;$HkiwKZ7-2jAm)+*A&C^XXpOx^!>`3rsDSr z(`dKh{>3lG#ioJR+%12F2sF^+;}9o}>sn^MJ75ja`i*v`cjEA)$N|3rB%&yR0sMh8 zcHr0E+#a6T$XJjLD8gqJgP?`IEIe@HV>M4vpDrOSP@rIc$RB^hcpj0UMuvv!U_y^r z2MVEYtwwc8bi>uK2!R0_5npNP*n($vj(u6jv35dU*L-B=k8Z-g=VRN3<__=; zYbkEK_2ANmYFg)Lnj;=T3qykRdwb~k)GlPW#nYVBlo!rdo;)mK)t76UuPAxi*St30 zZKHN1eQ(r;@t{zKi+Il*5xyVdoeqs`u0LXQYL?#GK)rE;Ne6e@ZnH@{a#enBbDFFD z%qLb@@R(!l@wGHA-5Uial`h#mB0{u2Z+H1nrVfVw_SlI!m%MpgU4m$!l>3J1It0+H zks%M-8hRVsz_n)*nAnOi5aP;__2fU#CRsa10G7KD^M5quk$o3M$A!HGt zZXfe8qW_reH6T$wbv;>Wy`}H_pt*L-z%NNi=684!z5GZ`4o4?0s6G4;;x8=F-E|{K zdwI^nVS4M@^cz4G=024a4ZSC023lHF`t1HuaV-1jtcfsf+1=ObK+mJ%in|Gpz~1sQ z`BUn~W_CmwyXkU?hAZXVrOj_1ZhU@Egv}?wPg~Qp{ia}~+`}VcM(Z!zDo8SM?G1JJ z4oI?4J7S8+D}3PcRp0naYgJyotmJXMpH+qch)J zoGL_EQ>9GKevn}_x&KPxYi8^JNzyiPUT$}e9tsz=lie%Lx-X%AVP-2EFC)8QVnk@4 zA(OmTtVn>1`wBi7pDS4(&7jq@)zcxV)-r8~iCS#8#x{EE=1Y#U9M&_T z%^r25-su&`zp$zI8CfzjTE&V7Sou3X5j-^kt ztS@!^tg$99ERVOL(!=*eg3j;BM}`9xTAXdis@BGp-#^AxmdRJ}HaM|UaSJWuq?w$C z=>aB@M=$mE8!7x6yS(w%%2zXXT!XM3p<>{G`^FF_@L zVaOmlFYom_>wZBkkr<=MOCq}BOYMhknO;_K&b#Hi>)6|Y;T!$u#T^H-yh{~ zE7Sb8O}06AR{YG2`wtyeOSR7&X45MBFOG0W_{~mASdCv#Yq=0AyZ_m;vO(Li1F>1- z4Lb`)JXH2IIgclvy(qrqsrFz(*!x5{t>wq97f=4?^!n?Q?tNtNdd&CNF%sbh#rA*L zmdbLQ9@bZ~PdqaI#N;)lrk0`qSMcM;feof|A|kVKx5Qf#$?n7kN|mylxjKQNpbzyv zG>9C1^FYhn*GYT0N34hA{k^6t@?xf*Ci@h;tpC0Cs?VL`7=^PxDxRM9DV%s4M>F_+ zdrhzIqk5e)p($syyT9&tQh5B6T4~mESDv%2TuM#~x0X(7^qI(R`Obs31H&AcfxA|Q zS!~nB*If4_$+84y)3FT}4&Dx7+8uLO7#Y{;R98QA-*Aj2{m!8WB99I$>uH!WoY-~e z#O^j>o>-gV@anBPs=>1C?|XG)glpdJ)reGjbV5D%y}|3BU90}lk@tC7yvG0fRE(@t zwAnm~&Gww!H?gD*%^=h6+skoMk2h;)V?_vw*4u$b=P0l(6(1w|B=W{?( z#2*FtV!`4B86d9u_h*kt)Q??Si*xX;L635I3Dbg%KktD=)3uBL+2Sbg)y=zGV8XO` znRWHqmx|NuoFi6%JYA=PTBXHSWqUX2?T$uvV{!(B#>H>W{X+ooc@gBDnjC9`s zPGO|FbGR&7-@M)V&18p5Q};FGD4qJbkH*=e&i%TP{HE~swoT`bb_t1HF4Q-cNpTF# z-tXL6t+8WyUARHw+>5BRN9}rBcS+oiJXw@wQ>C}`I4|7pYxVE;&3it2o&Q7oxOSBJ ze;`8PN8f4pt{l(@T=N89*{O}gmPi{aHuLmTSINbEo_oPiuPP+eYZ*RYk zGPlsGsuXRL%?ZIGk#(dT-V(AbgP9qC+X?nZ^fA%V3{|L^P=xVKh#GVPLcioMC_eveL!=}>gpx7SDY(`l{+>C9@q)!Sase$vS! z;ZmX7*E1s;92N;Ox4uM7Q7P;ZNIYK5c{nuK*NWwA79%w4TU(uDW<2Xmu7Al{xsvnd zmtI1#dEW0IN%a9T4AeE$rbau|uCcA$J7i-vw1&01EOS%LvjWlIPv<%JI*Vs$7&GPv z@7%wt`|VmhtCn3ZOa1vjg`OANmp@I1Z$iU>@ z^rOCH>!HLyIbZx|K3vdz)x&=9N~|NFz<(+*?BGI6{MC~+f3HI?0TIQT z=PgNML|Oq1F$gUL>CAyCqqhYm^1|~83=|hLMdV$(2#&d?7?32|_ltmIwW7It9~`>@ z)Y<#zS0jkO7FYgELtl0u^&>7h${C^XALa*OsNa(V{VrfE&~I>$qRZY0P&WV7 z4J-)sdqk5%v`_%KsE5$!kHM*L%#@!58V+vBo|LSKWMJ81EQI#8kkUCz7v4p`465fjnKK^CBPA#O5hh@W`wR< znO_U}RCom2rcOQAXL3z^LDN-*xAzR0%DfI_(cQZwI* zSbnMN#h7|F3s;`73xh=_VwDab@TQa}71@Wn1w+pS^h-3$-cGQu7HYIRQR8ccGC#pw zjCr?Sk{o>(BUOlWsqJ+^`jl3y2gSdyb7tfYcix4z*{a*T;MYv1X+l>oe=>W_&fa|9 zOUAUF=GhZ(r~JP;_C~*7``r34CF_MDab;`62=-iCCe~g?le<5rzoWKrw)phsc0cv{ zq@vSf8Tl$oz8(#C`^vUUeAFK+SkIn0=`ynLxbR5ygw*lloPOI)+aBbqOQnpswQ3|k}G6l!DDlXs8pFi3($rE;5ntd?_M!^aEr}(kQF_3?g zc_?x|qk6>a4%9Wa^@}~IOwvD;TS~$fTaT^`j&?$kV1e4n-XiP~gxmM-+&K@bgP=6z zTZvOvH9#6gw+D=T2Q~*@f|j`$-Q3DjUk&EFgaT!NJ)KCaz?sIt@*H-VVS_QSLFUb> z|6G$$0sY98YDO^p8u#=k)>mtbfEE0;bt4;lOd)m-mk0~y=r6j%9_>#%(Spyn!H z`j#IrNDnp(Z5XDB@DfE=>kX+fh%GZfN<7s6eBuX8vra6i zjOpo5CtZ*0(o(0^XnD13&G$-?JJI=tTXio&$rm(`rAPyMlHOi%f@>R90PSQxJ-oyXc0k3Z-; zxM4spdirZ4IJ7Lh9l#~zAo%28WdWW7j-&$Xr^)1b

    o_h2)Wwr$})T@p`Xoj8L> zG@JLP`klXjDSWp1x<0zNqBB}LWShq?dCR3gO{b{!XRT8gg))9^eaFrq=_DCg%fNc# ziL}E4XB%Cq$G5m&8n-VGA90jhjv6}W^L=yg_kuCWlL>9nPku8k@7k_#T`7y1dAUl< zSyk8bJCAS3X{Jh5y`P~r(9B=;i1(aKMFTZ*8@E&{A%Vy&9*{}2ESuZN z8H&4D*=vXb9j)r>@?7GL8*@0ZV8JBHFfz;oXUlG)2qd<2$E~NQ-d!H|eVhw)9*-vs z&!hyOFZ%ojU@+Wr&WxD&(=_bW1w0;yDEKD^60t$NARv)H;Y=OFOomf@?zmb2*$?yF0kD4Jqv}FyM}2Rf|lg1I!Od zS5!jc3k37Fke?ILGK|rE-o{W^k2D%xcaqnyANPHQ&kkyP7Ik1W0N{Z8(8@L{I9#;3 z2jOizSZ4}6h`rE~;$R@h3fTit-4TDH&$nJt_#ND*V8g`a^BnaavHk;%f&&rgI#*%M z%9488Ea+jpBRhO5Wz9QZIfWB^S1 z+f8pLgidsQ(bjq~)>H;lQ`pR7wy51s@vO{!Qwn!b>LC{i0oNx3kufm^Ww&cybV{lE zS+VrqTNzVZwQEigvh?qFYG`bP7$)9Hx%d#Y-7F9L^_=e4h-dAe$<5P&I|gJd1@2@l zO-NCo^^H$U+mv&HCgkJ{7OemD$4xndG$CAnK;I8zvEBPuzaO4h;MB_Xi*W(8y(e9& z_)6y(L!u}oMG#xA@oRQPJ^Kj=6tL)PiUPW6_b;k8_I;Q_3Axe0G9;FmyozPd8yQX=J!3?B7C#g@#df3 z)3JGZ)ffPGUahJU``OoOyRtG5H1&9qft2|*wx*ijinn?*;CR7kE?JhgLF}pE?gf z*^qz&E*54{YMmX0)jxDrW@AIVCf~|Xd<>e?rvN8~v39$}vW^!$y^cLfGFYf)5c5z1 za}%LLFdi2>!oD}h2#HC5FCDQaqDi97T4xW!utr-5_Wwh-SPd&3*eCEI7)rEum7e1FH>V08`b6tM$XrogWVS zR~>f}JzknmVk4kxC&WDd(e}x}`1=Yud?3UsiyKVZwd>CLoGP3~h_LXr{e!9vVkH?u zxFh(2?d6IhN>DQV48AR2t0INRnIae7>I)yf!qaj+-E3(1Lt_ z_Q#V{co7k{P}4)Q{0bFjfteUe(*n-?p(hQ>LCpm7aM`M#rt%uMx7`DVr|PURd4Tex zqF#0|@8Kzygn9t40#k)}${TOT#bF?(5MWjah19o&!_I-9PdYttf>`hnpXB7_X(k9F zYXRyE6x6h-TTn4*0?LOo4wGO|EW?lvw+={ciV!6kgg(F_0-DgF=_<6t8qk!3+m_#? z;%f_NAFedA&R%xmiSd7>mO$(Z7B$ta{(^#n^9vG)`x*D8-RF*PLIpiC;`m?e0b?&? zc6K&AZ@GDSTOmK!G7^ErV#g~B_(b9e?jg)G#h|!LRd*@1B}|>3TbF){vF+ojaEauGJ`SH zn*h@PMA^aGdNaFz{XMcL^1$!zY?O;^XoEd`@5OJenutWp1{; zDSqr&xv}HA9{Xd*P~EUlho;W@>un2uZxiUL$1XNI<_W!mS2yLjGK)N5*f&4qcH1~v z2=Cs#duBTM*n*nyj&Ex_zr1~Gj;oq7WNxi~58l@(kRsBD$QtV9wc7Cs%ah_18shwtRVzT|{_On&BZDT7MtvQV-2_c4wTpX)C!b z8Fdma!S0xNgvQF#_Rh<7vymk)OV=C!OnzXN$RGODnK8QQ;yv08UlJVo`ybql&|3G( zyjGfVy+z%`EHx(r#HUBcee+!;cFECN&`*ciD%^@s9J=98?{(HRb+g32%~qPSLAC+( zNp5}dT`{b!zMHhnH08^n^4gOC{&}S9yVU0Gug15$A{N_K8p6^;YeG>I7YsTV$`Rd7 z2mIVhaR!myOvYjc!!6(Ew=+})t3G60SES?~O(%1o2g99-jK)&&%l>M)W$A{kLLtsd zmxgbw25M^>-@6lB0S^4~Ec>suXEp~njG0?=9LRARdmnDcpVn%i1aGv;5if1;rN839 z_hxL!@URQfQRRLch&HPm1wtkBUN8Eg)wboJ*S^|8y_$&vf2L?dW?caUy5YO&R&?ny z#0a8Pd;bEFq5p@!^&TgG_W$?K`8o1l3@v>|EF~S^-klu^U!>m8t`>(L5;-P&u}da(VgZ;=yTPK~ zx?1uI5I8C%#AKxu+A7$5l85Vi-AMWfk7s5!+tGGy1&QMNNUe_kS_7q@#ZfZYVfQ#M zHLyrj?PcHJwRBpH?Gq!dVd9LEbEkso8#3LSyBop_?h`DCK#pN2+bcX|iZ zrrcxr@0Ue~_j}|{uu5|4_taUdO6_l*nBjRpv#0jPy8Ss0arbi8r#cYKK>qq=9)psVb~TUd0-XO#-sjp=U0D zOGEnys~GL2e|C<+XMY2y9dOlw{`}FvVPIR*`**4ziUZ;s0&heC{DEK)etf2`_*ZB# z__uBiMbE#SIrStjFA9HTbo6KxPGq=DAO`|8rRn()bSNQf5ttU*Ip%;hOOi7fs;&?S z^qUmc^*3URc<(=O0xntHp%kkRo}_O@P(q!ftQEVxlA2mNOsZrmoU^kq1z~nb*bZt) zKRzoj@VancHfRk_Be;q*NHA*>^7ia+PvS{}KI`wbh){lQBuIURKIL`(26(9|zn=Ps zt@mAIC66J?4ObD7G(ZzP`g{&`{B~Gu?CQfZ+%}TX35adrguV_xZ87Z8kXD5(^`u8Y zestZ5=$j$KKt1k=o1cOZZIHas;G9P5Jl_9sJIYdf&_j++P9(hz($EGJ9d2)n1t_GR z{$xk31BquC5KgKt*l9@;1`5-hf`WVC^4|OQ=$C!_MJ&7UYC$7YU{!S;!8jD;5I}?T z5(OI);%0_4kPf&AI-2}gSVM(TpB4C!WQ`wlb08g&iNcMZ7~g>d)fvP)%rkK}ZXAHd zkhD`{;&Pc*jaFIgPRzCZJmy#sjf&YZMm!!l%c*Yrlih}slNcRLl zi3l-?xfnEHHuza`fAQ@J;?^=EpBG**72>ntKf=>;!LK7?WV{AIM*$FWLaRoMUBJEY zgI>0`YxViPDYA)0BwsR$l$$4w2-MyykQsKwP>N2WY7tcm>|5cG1dv&kD^Tx!@>N-! zuvu+^^EzBmo0zY0_XFMtKpG7J-bCSgg_@n{hlx}U+5wthN*GlPvlO}gd2n%)5+Omb zgrF4x!!#7un0@+u4jqI&Bp75(q^kHup|YImKCnfgRhAgc$fuu|M{EBPzE40Us(&UQ zQkF1yVH_=yrU5rZv1mYASfXi75d1gx5k(fwZY8uK_Hbcc@aqF4gBPUi_ia7om7lS^ z$oz5`%>>%ICD+g3GJR1-&5`SO;-_(wuSWCk6>WAqH{(SCxBh8qXmq$_l zDM}2hl0MN89%cxRkr+9IJINkWT#RL=7N$5c_$-YW2p}ne8l(qz_L8KrL3~QPT=vK&cu}ZSya#4AQooXUnPk7AtzUq0nFRR3;q@6fjk>8R z@rVQBTEJ(w6WL^t*9qe!!JaiMv~0$xS;!`7@1TclYioNRpa97&6fF99()bGuehmEo z-4Fm1U6+#QJ(PLG+Yg}>D;rxa?AHV}mS!YIW`#b>dNjL45QnuYghLp@8VG5x+Ho&q zMLR_382e6}wdz@%Hk)%b zFu-LfotY8?iNYu3?}QBi6v^TTuib@2Md`!qYoRmJ$FxsKDJhrdYyGRz(6|u6y@_e# z7w=gN=lx>;R3Suea-e4IjaDAx_1`L~1%!X|p0|jX5i{<}qDv4Qo?Y_V`BdYC7s79x z%i@w#SpgP6*jRbU;(kw!>ZQ3G-{!)e2wh8(&OD-d_}te$HeN;6_3FlY+|IfY9W1m_ znXGOMhmD=ikIr6Fc;&~dlFatLy^o?z_U65zDFw#8O`Cc29UVOkmFTsupE5BuHVk02 zSSQ@Uq)ywvQFae~MDgX{3}$}xyBp9z#3v@|_?j?Q7SdQ0VrHklho0|EHtP8`_57<< z(=%sOH8`yCg1yfeDy;q)QQ965n`BnvJs=RZ$#cJ-yUw42kxFK5FSaf}#10W0o&XON zuuTf!gT++aP}~naP{jfUe*qmA^q&rh523iAVpuN?fe452H9S!bT#jfu(9h4{oS4m4 z`%90O85buyPb@Te3#gt9LYCd-m)4%51kdI{9Ho@2mnw0NZf%uCw@5;>0L^X2Q3~!z zJ?@Py^wwvd=Hwj}<28PG4h=25Uz?Qvl$Q&|rVgR){H_r*m!4X9PQTo4q`}X;% zW8z%srEUT&fD#7cT@vy6+Fi>i@#q&8IC6)!tS+ntqEuGuR4R^cvKe}M^iRe^i)di? z$8K&1QrQV;f>4j>PgN(H!iL_17E6q3@m_y;M*RNhwPmL2P+M->CnDzhI))M=t?XCb zm9ks%;=eqU@~AB2*u;6kV?lGBwQ0{z|58SMCC&M(&&PbiIY9av`fBMIuFjsKa-=YvK<(H~b6zNGvf z_C3xgF5>WgdRI@LhNe}xaJf1lIS<9Ts=>ckVRYy_`WVJ@9HKa=Xz1R5_ut8Pp&+kj zK4-mG0G6_;DG_V}dLJe<1CR}*iy&7D1Hf0Jzw+FtgS$&4YW2wdR?c!7pfhlH2rDRX z)=R(a=orPlRqOf0;U86zZ(7*}5$K`Ys?ESVsWSQQ0IDR0YzU@Gfy^FNJchQqRTh}B zi@tmQ_=<@S+n&H5g2Wk;m4!gZH8$&UzTglpEdR6)6$rgLmNM*Y(1q=Zo0UOclPT4A zHifZF=T%^X_&T!6h^L&xK(!V+EKCF^(>#Wu8@^k1}~o}S(V#v~iPn~_mb02Lp- zsUU%6_$|cUfum45@W%+lGrzyb8ax#77&Jd#@4Gh>+UH>=oiY*^+GpQga`ZL%dx@>= zEi5rX>~%h~86D$=LvCa2)d?Bf(q}FH%xdU3GbHr$nG|mfyU>5{lF}eHapYv(X?5JEl+q=4(%dz59Z0D+jT0+WqT-#pXYYLpSK}R|+kB~Q@b?Scf>g3ApyN%4fa!0o;nWRZw zU0-7R#ozj4;(?0#D}586KS*7jnfcb)KRcyeoyWDn+|6{+J3CzBkHJi1{9!*|`Ox$z zlx^UTfCFDk|5t*bY$R6@xlbTHmOJ~)0|yyFYvDz}SIv?19cb?`hI(Rt%}R7E90byg z0G3hq;+%jgK-11{c>GuLJB!SR=!dYMaq_(+Nd*YpJo{^M823=)*c?#RDpp={xxbd0!PU2$+ zz}h(F5A=ls(k>dti;JA(NPx1q>$VZN>KG>9XW>~v zEMUEm@-HOg#`^gk^=C&+gr4lKx$r_;=I8N&xYS4H^7Z`F<~$QM$}esVat{0c8Tu)8 z!Tm|B=>UsQd2#4qS<5}si~F_~2p=-7TyPAbO!>{{VA;v#%j(2(Lp44=p0sHQNg})< z1uZk*LEH-ei&q4riql$q`s33;5OlW?x{W`m0~vsH4*-!!HK$m<6$4EusY#&cuz;Q% z#;i=}Kmjc!qKJWk1W(}tH+*W?Si)#W;p_0~vpOvUF*pDw!ce|`{hCB5L#LUtI5+kX z+nEAzEW)%L*3=kEa513E%*Ibdx3Jyznj)x10vm%I2Lp)wkhL!k;WGkd^7Rs{evj+> zav8!ckq3&akoeZHPU2Ei^)y3QnZuhM?f-*zl?=IFp^$`?l<%e>Z7^jT$P0KNDR89V zXM$BCKM1dU^5fGKIP0ipZZMIQA4|X2ro=>uJ_(_i2qA_;1&}5|!zn}D_Uj8j4U34N z1KQc4q6jw%K(kf^Ff`>D-9`Q}E=zAnM@pe6#a94)sX>j#!^RgsLr5v?`;K&rvb}r=K+;m2A&u&BY-+u=8^)a$%dhC0r z$E}{!s(ZgRx{%k!KvQgPk~p?`{MVA6VH=i3TppULDgrh2-`&uz28L3+a1nr;3B9MxO9YlFfc zmM;xPbMI1>OQzaRxUZZWt@x38djvo};(^hu$UxkHw96~$BOfe}fF1`C1&|QJ&TGlZ zNBaay#y`)SsO-?ZA)hm>yV1j$=J?HoupQaqpS)dOCWPf2+@);6RQG1)_D<8_s~fF5 zX_Dj@R6ToHIb7EWG5va3EW}hYmN)#sKTN_cM5UA(galfDDDO&0tN3usp-)vx+xX=<>Rnl0YUTBt zj^dk;>K=ES4+n+gdKA??lVCOhx&A%vR5lU)C{_p)Z%X7b&7Z0 z_|K4z_YD*ewFD$fzgKzE2cIJ*U%+7uGga#FNF{>kd7~|k63!7@TR@^Fn8bNwgB~JQ zPC_v>UkptT>l|yGn7`CMLwl-n&GRk|MZK5%U2o79^+h**roT0;kg|OGL=3;1qjrLk z!t3c^cEx($kJsDc^hE@O_h~1n?N1-LvK}P+*MpT8?%mv5DgU)Hw3B_b)Y4~6P%mb) zDO1XD5+~JO`uO49=br2{Rq*{gIVl?ETj@M_Ig?tK_O)X`{onI6(R_RACwiQIvPv@L zWqq2@(IcG_h#1&N&d$#;T{P4-j4bSAL>?fTQ z9O~X%v(srxyL6;hG7G4qyr<%F3w>uUeqH@<@lc&>@(0G)zD+-_*A#|#yV1U6KPce7 zSx~z!-(CJE^^=FPj8xH$dOG%&bX#n?d@sIjkpIbQ&sv8vb&XYz%+Ibp&!PkcD2+ub zM8ys|>l$vcqN38eUUHeU`p#mI9Zk`ZzP9RI4KcvevHtV!1v=2CGE z4qk0bOJ6#piQmIX_hwG-e=sV&zwUffcBWhH2T6IWZOWpTb8@(2`0LD+d^0mO2Qulu zZMen6ORMuPba-~5%jCfd{YTfT%fihv9%=!vRxi&SF0FR4r>NA>yq88BS=VYnw3J$A z*BELp4$q&7zZi6qmo?|<>NJN=jCR0#$?ELwmbc52>{xl&7I}*sbVyk3>T9;;{(-JB zWs}?+LrP(S@xhfP-HV1r)F(9)lelk?U5?@l91MYU|PU48gMV z-?DQoj9foRU!WVfd`MnSJ-%5dGUJqSn^vSgVG4218Y=aQ)iQK#-FAWN*6jK9k2^%g zX$2ehc{%m0Pvqwi{0}HcjOpfYX+!Ngk@pX@>V;_6cXn6N+H%Y5U%BtnO1nW><)5+? zNV}B&Q;zCxf4QeemH6dkzKzjaGkTbDSf$+W&WbMo=^; zf~!AEX{nN3gr)O*4t4d{kuNDzy5*X zWiGM2yt_-Goo(Sgubl;cd!mkwyb`(YoI|Iyp{dQ=T_M)#N{&+V70c5{w>u>j_B^;;?{SCsX1nm2M{Tw!MmBhy+*a;uUgpjT7by|d_-$H8 zGV#)bmqZCT3i`d~>)XL|zc;~qau2=<;F32x)mBr1v@LF!em*)IK=3evo`d`+fXL5p zucJ|Vu4bO1lay@K%EsL!&=?^&e$bA(D692rrJl6b4sF>zufqp8f>v>=b8;dg(!{Go zbn&ur*VPJMnt$G-2>J}n_AuzPiC@jODG$gG*293`SdG5pjXO; zN>D5FoY^`K+DG>-jxI~_77S$?f^38s3h@9?auDa$yT>P5fh^tvkf?>28#{tqmO#M; zUKj2GfJbsc3p2$7%4vt7t2KPhe`1#b>Q<6?Hr|y%g`<|SvV*kGm^^dxc{)=C333Kj z{I*05ajC@gYaKMJ1p)zHJ=b^r50pdJK_Y@&fpq-RweYndcu(nLfWymjN}!52cb%3b zv0QLlAUTZtMysF3DY|dBlS?mlh2AI*?NblyIoHzh(M-ka6>HFHLPKDZe5$U9PQv<# zt#A1+6gcEKsGeiiq_-ArTg>HIwQQwXQ_FJD?%8Sg@3g(*`F%78^o{LrDn8mxHK0^y zFGDkB(=o0Xe?v)o^!D(PuA&onZT1+}()d7&OoAAJLuem5Bn(OdJOpxuv=1Hx1@bBL zYPQ=(5>NqvaT~-6rlzDcquMIJo}d!Qs|Nvo$&&bw0gYb=%$;7=Ce29P){rwF@b;EP z{Re4_H>`8T2v;d~0C@4~)AAJ)a543y1-)`*ckErJEA_)eu)}5n(gnFpF@MhZBm0dN}6^&&Q4L6c2q`Iljw5?pDC*F}6I*k3HJd^uAR6 zf<9XQ>*T_1Y9quRHtZ|25heY=u_sr_B8PVg&_Bs$B@tNyc-LxBMF2}7-7(}eh_e+T zd<+0=1VkdM?kjW$1X?B=2Ac&_HzaZCUc|tahyGJX9W9*U_#%O(C{{`KB^=n4WY`GF zw^UExb8ca2qR0Z8y`-ch;KkB#g_HRhfW6+LwIaz8M12B46?>HkW62*P^9y?t=C7X+I1-kBYiEuG(=~(BhkAUs zPB|Bj-)!e_sFM59k|kmvHdS;TFBtj?l23}+7A5AcV2ECgNB#@+!E3#5QxmMZJX25N z?7>t}X&Dg(0orRKLP3p9R8ydsNj?r4hlG6de~|`c))9Kqwq%892#cAc8;$ejGmuQN zZ~uPpuU!H}S%aj_+D)h5YoL`SIUxip#3Birsa;D!5DwA9SzS;8ql0V0&sT;(f$VOG z=NP%A&x4|%rOy24+aqB-Ya1jNw8n5U4uljb$3#x1y0Y*YCmM2THxd!4;>nLO(6nMp!C8gzm`?y8F=L{G*PDtPf|1ay zQGiT@`VA80IUG`C^?1V@eF~crk{|%vh^&XE1biGZfWc-+s3HKYub|^0;R#Tlh)7C~ zLhVR(2jVC6{6+u*c5WxPC~GRq{GR$_d#{bSuDF=ER4TR(P4oUfRhpSRXp>a$XO)Zz zZx(&S^pbIC8%g{unG4ko?HiFcc~*SkLf@Gncnai%9EtR0V6b==q)aXxAwqP(McqjJ1UQg^SWp1LBghspW7=^OmTvNW#Wi3m4>3Uridt=uookwM z+&1C}A$G%p&jtntL@oqG8IT)MFu}EelLDVA5n}=xW-d4hCFLo6N+ePjS-8<3JYB$- zdVnZuY0*I&PYBIjyHe0-{}Yp=jqlxfEI|-4BFMNVp(^)*ll(8E7#`*qkm*u}2rrST z91tXm5cLs0wEtp=Mlq)&8`Ym4CPU!}!hO|rd-vIL1b6q>gs5R~U3O11LLa14q#m6s zCue7{?y@uLqf4(Fip5I5zOJN9F621zkRS7>=htW%l_T26;;{!0ri=}Rtc-;$VAYrx z+fqWg37Gu3np?sCp}f2nVs<6s_r8h7VJ~E6V;Nz}1owFmJ6<@&n78a{%QMYK6iYD+ z2F&2OP|-3zM*s_%S@r+udhc+q`}TialCl!nWh5&kL`EXYNN5LH@Re8npOB-WC+6fIx?3=62t+C+OKJmIuO@CP<6 z4F=|DYm=bVGv8iKZ zaPqp(W+ows$vpDzhtx~EBHNn;aBAN0(sLOlt67e6K(;m{!dc9K-R0>`;k z=_z!b{vPjacLN6|upRPC$bKi`=D4U(m6gtJ!C4Fa7p`NwpC7ZYuBH#pTq21eC{+f4 zTO%$Tj|2TamQ@i%42Xc*bB7_JiTJ?rm7vEe`n1x#Rj*^_YQZ0GB|94_8{pisgVRwECyJSp*jD0buj>d#`5)nw;zy03bQ^Q8FC3~dyty2|KjUNV1fA^1WMLu zzPAsH1aF6k9x#G}gl+=?qwIxt0DsrA`1AXudM6HQRHrx>g(pl9Qv_6s1XzLcjX>Fk zB(a7XMw;3O*T{4swo@gIibpr7NYIS@iENRKw?Jb_{e<^}EVtoIn&UPl7ePsP?v!Ts zPw{U@XW&OVx*g;)ti7e_(d|h5F&R_QEPq#a*&gpmZjLnPVQ|jM!ota^Pyyqo zA3t#d`fv*priaUDKPXnxju1v4EbI`OG6aZ=1b48HaBqLw`P9UzTf%69*NFP|Bfi89 zKUKxRJJGTmZuENn%!!)%QcHLCYWhP*WzifHj#r;Y(V}K%$Fe6_4xf5`PX9p$ts%qC zFAT;nHe@IW9#Eq##FE4#z9rDG{`o-vuE|1B%{n3(W`5MCZhz4FBq$uI2NgV`=?=B+XiF=6xKLc!3CO#a*0oY>zW-)>j zG3vu`e`C%8#ERsW1aC<)Fz|`5suX_#uTIcx0R0Oc)hqSnu0zTcuFq1ggE&i}4J98# zR<`uhMY7<47DG|;PY;Ywjqx%({QUeP;^O!5WW^LMv4!jWZr zbct{WE34bBY3FL`TuVNUp&|72^^){Bpm)(UghX3bSG$W8iri5FfUWj)L2y5_`kN1i*BgnhrY4@mc~N3e5{1`R)-xt?^-G^;%e~r4auI9_gk> zBD8xh4|g1;WQh^a;f4O}cx+tiwfS$*-Z&<#A0OEm@d4FzIBY!WBI(7q`INvWuaOem zv~-lT%ZNvo1aSjS)wH9}g!%tPOH*d7G9=`0dG)@Kt{h~K?+Xu$NOLHT@7rA|O!rf{ z?hXL4E$k_Wp3>*nJCZRW^13U1YtP`HhKf;gepB4(AmaJdc=Cs}vMfw`T4Ahs zK+!twHS?}3B?)!HVjQhfcf>9%vEM(xp6=pY==Sc98G_{_u0P}tP}VxL1B)l=KgffF zpowH@dvHhpD@PuD%8AW_`SyStKiKXkpc- zZfUf_wR!G_8lRKBA z*?8Xsv8(i-bfkA~<_M`j_agoEITfGi>?XN3LAmhtt1Z{=bL>6q$#bT|>!EiqWAbOu zf?F!$mr_nImJH>oj@>9pnzwJ3%Gsxk|MHwFb}(Xrd%?* z!rK}(j)o=Mj<}xG6_WXC{z`vvcIq2@Pn1_WOKAG77@mfR?ZT?j^Hv?UGR+fu_qe`E z-Ffu=X^w0|32mDlKBl7Nv7PW@oHp8qn^%o-vP6}w6OP+0QAZ;R1P+{J|=mTsvaj{G>TGkM>A-lAd@megR}b?=)QqwLPH zt+JIBJREXCVu^mk`jgAU9BR854NbRfkp50h9Tdc-wpYn{^ACKaLEpBrPcB z^{vyl=1geNEUc@a9<5fDb7#&tr^UeOWN$Z!Fa|%ATQLo7hXUHpBLuHvjElRow#{)D4zm-m8T{ zS$MUDK~%#1L(&^-wfMNyMLGHdPX%eHRG8Ea^kaK__7;6#HA98%q2j>6r~ILD%jt~; z4&zcj6}8wsEoH9E8xtb$zV#MjbZS_3KKEnMay?s2n6ZJr;p0z-&2rxa8MWUmGFFSg z*eK83#8%TgR>RarPhR&nZGSkC!{wC1<@U^iV}8tzh0`bJ#O2Q;yDq3to_;i1p}P3U zI&bV_EW7fT15TI3nb=zAF`nV$uA(H{Ywz^$H7S<~H7#C%zj9%#(*YVOgO5Ie>m&P= ziXQbvY`@F(%Gqm(y)^CBty^jrpCmU-;1~-J(=ZNNRI;%h@sIRLrZanJ^x$IM!QWio z3SUp#w#dk`QRHXhpzQ7}7JOjHW4n4*EbxnLrbiuBx6`gWvpmAvm1&Flrw6^%eT+=B z$3HO~h{$kM1fuP=(LS`jKfiCes?(oRyeC%kh~w5)PrAW&o?EG|N8N{au|W`KU?0o! z?%{e``J>0R-NKR&JxmC{92v#6MODK`0AX8(9+qQlw&72s$Mh(CaBOjHZO*_U z`%$o(_H2{+fiSR5l?okm?-QFwk54#O)J}d7&2x&XP4Vq0`cy>wFkwoRaZmBhEfunM zt&8T9y?446dM5Xk7aDD`U7kMnt<&?CeeSjM!L;^mk~dZ6oYq~<8I3i%T#&@_r>*+a zzMNM#U(h=Jt!9j32>eyz?dxZF%xSbI{>RF+?B1%K_s^)&2ZxFdf0mB1a~=)1rPwGZ zG0w=@dnh5{Xz(48JBgfic@~XLcSd%v?))NmXlNpvwrZbo?dnq1ZUqNd7DL4y`Ln&V z**JM@)mF>8XJ1}sX_8i!_1>98ZV{ZNz5PcYCV!Ion%X#)f!(ZV{ov!N6Te(qrFZ*( zJI{qXQBYQbGPp^nx{1rxG+}G{BipSKyM$=|mYjbXc81%&B@UnKa%wayDRE!~N9e4H66z_4tQ4 zM|Nz_4EkT<$A+J>|4k|*kKx~6|J;W%%LY_q_3M*R&k+Zh@|C|X6TP+O)^9DKn^H3zrUr?~nAG}Ul2;#HAxVAckhZ8# zZu$7czBK^)AWU+w?|RN_wdW3*XnN$~v|atg1tI~)_ZS2^Mu9L^$T>()-Z@4PVl=NL zpNy#FAmx4i`ZZk$@qClvHxTxN|8sg$4CO6^sN8N_(0>x#9vF(lr$?M{&pt$(#Lm*- zeC_$OYGe?n1^pDt&f;6=^)O1%MbV>MBH3b333KX*sPemDmY0%8+m2gW4%oMqaaZuX zj5$Vmpkq@0kQ9BgzEjyc;n0ao?Wy-_p@W>NFp!nCr>{uc%+9KL&YC_cFS)c^vgVwW zRp<@AlPU_v(UaaLEXhmC-rm>!Ev4H8=G<6f2LHI;)isG_h#4NDTqhVts2sIu%dvN>DaTgu_OBgJsuq(SrToECUWiWA9S>| z7%>d9=AlC&)v~2+HwCmIYdFI}4T!^^@fUtIobpx>Dakl~ya8x*5_ZSk&fk>&!w@h< z4UQrsBcK$RIS4I8uZuiz2Drc=(6}W)QzuC|P;Mdt^b3;vHL4CA)DUT)1u-!(>AeW4 zC%zE{P}Dgt;I+UBq&S)NLqu0c}RfCxO+I| zYDV=hR6$6y%w0$y2;dW|pwETMOy}9xjq}O0=z1udS39#)q2vb&1ikbDXwFX-S<`rR zyRKh_z8JyPSo24Xjq$bp2jXoKA$g;Kss^^h3%woyUf?i5vkdLTmON6fhFuS-&2B88}hfR{C6oN#U0!S)_1`NtY1msx0 z+yD@^j!YCoYYI?>1iKREx*0XD}7l5<^ktQkfHm>(z)2yjq;wZ-<~Tk$^?x7* z=%`sF-Jbr!5a&I^2`0L1&DW$nXPZy1=Aw0+BQ^w_bBpeFq4 zz5b4~qu!&xo*JPNZJBjqf{UJ+I*{e~MEZz5$68vm?DU{4>@KkiZRX?06{cxk)C4>! zQgV~5JuAu4A|{$?T4XwX-iSreV!9%4yO^6gFD2c##`V8b13FYRb_{bM?Vq{mQL4zH z{k5kT5@k7Ltc{r!Dg%;KVSgeb!OcR4Eildu4`gAxb4a?&?`{PixGtbHJPAY_R%tSe z8LfIzQ4yJ+Ne0;=i{(rm^*!%?nySA)#YiqV(CJ!8=ZHWLlksR406>eeOlj>n*b!rBvfs| zfOyG}M)>955wx+tK9qa_c!VplR>(TSIR}8a9-I;ZjmQ*fJOXn4g2E*Hj$g_?9!9JK z5=Cvu-%kN91Mn~&4)7scSlWot2sis3ToO|-<<4i6MGGu!&!@oXJYt`~#XSi$4^2HA zF~Wziijmw#Y%?36SGciZJz}4DZm^&%e|c6M!{-8PYfuxw+G>qMfrOnCt?N|NE)X`q z*fCO>BxbUx6E+33T_8~}f}O`wK7bGdW8CBv_^5V(;0<}MlFoTzQFVivYB(Qu6EGS# zShJ@gT1ZA1{sr)L6f(L4_{=ZIJg1?>Bm>;Bu@$cTl>t-_5^E=*%MTD>(^IcScsB88 z1zo!a*QW}xgoB$0VhT`f3K9WC%g7_VBj@kH#|N$UFOj1n!v*aNL-x$&buK!Ch$Dss2gxg zLsg1E^;8ve&I!$4S>5e893T{JEpa#om>FZ(_(52KAZ6m@B$9P9wGr1macDMPgi~h3 zy$F*-NXjko>=GR#5)SYuU^qNe{2AdqB;A`tkz)tYQ}?_~5N`^)ew~of_!h6QlIFvy5^?8qBqFM>4!93iH%;Vl#UA)XGgQxQ%STF9I~ zs%Y&98zcHW0o(DcnL>Y881#H*@a1vqb{!>Q?qLgGAvgg}0pn+Tsxr zTOT|pAkzgg z6abgM>bm?)2ka}vwH$%bGEv1(8TswsApsx4o1wOVsTI-{kd_x=5<}TXQhCUHQk(?S zh_IONim^!~YKdm$#W1XmMROG#V5DzAI|2%r>R}tF``g;5-hK!v!}Je$n$GmSxP~7& z0fKfK_;_ifZ%z)j`YWhh(43Hv1qu-GFdl*knHqlv(K2oZ4H)_3vYs~$rW2Wgrlt|+ zI2J1n1A`6L&fB{RG0}GZi!Y zLXmVq6y}&vM;aq+icGuad;el`ow{#hORTNZG6yq`wFV462x4j6QtybQn&7ffF_0;& z6nKF@aI@$0i#9bip$tQ&E<%8tu-G}JtvBH0Bd-Os@Q7OvZQQ7r{Zn{a=kZ54F;lXy zuaD5@IH$-UK0^QS_|BgJDRuzHTnf;Jc%H@QK1)}3{{B)b_OCSAiuw`in^gsr=wL8O zh!CM_QBk#zD^4Ow*6r^f2Smky&OjCBR5_{fFT?~6Vf+Ddv0=*WfjHkeNYqeC-GVKg z`~nI>(7+IYyJNe6KoE2vejAH29Zi6=*GAukF+`#Y@B9uPH=I#_9jM%L+)76% zup_sBlFHNJR@8(&Ps#zcO$pZMr`Y-Gc+$2x&IIm1cU zGffqbAi`F(Y~5&Jrh|82N&YC87Hv{q#^{T1RX&OqnbO9$eb-)tCmE<6nB{9?{(uU0 zhTY72+i>G4|I}#2`Mgh2(K~dgG46MxAl?EF)WHsK>iLGAkz1f}CBnd}20Kh$B*@8R^{!b%;FcLCg-0!`;AfEgHZ1`BKRECDxsAO^SO!#S# z85%JO30{|Oz572cfF>AGGU^+YIh0Su2#%m2dmr~OVX07AkbE1msGyHHRd$XBky|8Q z8kIUWNfCeoKkH(>6lLtJLTpV6u07{ogXw)qsx(v#A?dg7-TUpQ_4GCwUW;`{fvgV9 zJigPjOy-r6P($q7V`gUWp|`^Nz|(=BryS{0%b|aXy%9XHCd4L$wHtIR1nG`zNEdBv zCxTL-v7A0#+C|Yp#kqZxpB`QfreT?kv<^q(vb!nW3qu5_qw6w%k)(`v|+5NQJ z>HF0^G^rf-ukt+WU9@yleE!trUTVYHVefXGv8ozjmh)wsm}8j5N`BXy`!XkG9=&~; z$Fyz3xj_o2{6iMnzo!qjxW9WSvv%PRWd(JG&^md)2RjoJZ?)XIYW^OO$jl`O$~K;> z3ylyLJ6QiwHJV{f^O{YTvg=uXQL5^GUn&<@;*oQ!xf2>;WYi+6Tm%@)SGwA+cCnhc zJ*B*Un~+pHR39xe;bbBcBtWpY&xn29S3AB{w~d60p`===!>PZ^_2Ini!aiEF;5sB9 ztjUPkf9Cw`$6aj6*-nv28sn{x6FB?4ndON5#l`5)&^@HAjQ&eYN&aF_p9oo$|n~+ zkSbj8V{)v|s*R4f%axu??xbbA_(xstxwq0cN2*=zwBMT2R)b=RQvbMV)z!Q->XDR3 ze_y4ZIB4Fu9Sm#6w^T%Q45;ts*iS~luO}@vnYT@b zzTLfRQh(hM$uL^c0x$DYPoZaqgzbO<3wCv$yVpM&iW9LVOMMs=gue< zEJUKTM>OfvXX)>`n1it?x0cX&v0upHK~k}b1L*jyP$=Xgyga6d&A zRz+IC*}4O^OKr zX;S-*&X>5_2PV<42E@xePeOnC!d?al1bd6aHLs|m;nwGIJ!a0aKiS2hjy1JtS(+meFT+YOGrNlZ{gpOfV{cLgpsDBg&b zj)K7E6svKahK6yZ=kC7H>^k(8lY)ebpgBZV?lQ0DzYy!%cJ*-P%B0L<@3TVVd0m=` z8EU`Gu5Ro+Ox^$D(aFQKKWLi_1hRA1g^LGfPQR-vuKYX5D3fzxEz>qjsjfJJf#T~E zpD$Xm)3T`T5qQ`NL;x3CLnQAHgjSMBHq#E0!Rhqm4sw)x-4$u*=(g|P9Rr9TEik;C z+hITi+K$W%HMDA|{M>(jq=8WnXc}w-kRek*B8h8`=yQ8Rqn!{TgTH}M$G8=yH6wQK z-n{@(Hy|_g(VN-WJl}YuI6xJh&HnSp5ONascpZ16$Q zgls}Tia=+~U|@qVT{O1^vogl&k zs0c#S@Es5i1IK=t#&&#X)cf0;q{*B-A`%5eb{($-j%*_ALA_r6^YVU|ncmY|na`;v zM5K#|gfLI6Ij*L*_P8l+g}rXPN30{y>~Y=Pi5iAaDx86}R|Vcs70b1?1U{3|VvV=B zWN}*3INtH#&)EGgvaaRoXN%JLw$RHqKj`yzl5+MdjjZI?tZ6S()E}DdpUM#lIhfcK zYQ)f+Eux)e7RS0*ujRSAkk?nfs*m|BnBW*%-@m#K%{I#JNgVhj-G;HVy_TADpcLmSc`=ynF;0ysEo`fC%g;EH~|oYh8HcrHWZKO z&e61@&LbT!sZ$`N#Rer(PgHgUBq7yqMINDyFaz`*oaU;a0pbb?Rtovk1Oh~g5Ss`( zsgJ!99T|ztC8AL<4)~}rE~mi+4{Re8X&|l$jd6jLjl|EOTzW^4&72%un+%|HpdBOO zHX(1U)3KCE@+uNysnAv8bHMNc-h+r{0Z4HmON7i)0jfaqZAmk}#p$U(RyzjikkDHI zP2>rXU`?o22@D8C+EtNIRgi)%ev%p zTH3Uu<+$F&MlI>r?S2o+lOr5=o(qq^6|%B^(_r*rV*@6qgkm)rBXz^)9AUQSwry*l zRRx0K=3Qx4srqYERE@#O;Z>Oqj@sN2#Vw4sg$w#89yGiYTpUh{XdA1~aJ0`kQr;D+ zNwH$j*-$Une4z5!H` zQ{4c?7s1y6Vo}p`knnG04g%32gQ#Ne-hB&@L;k`LJy7aOBo$+kNuq8e-4t8^gsve) zdnDP?i@*0`It~oDzq+18k~17CWj7peh)<{?-d^;vL?MP3idE(UYYKAlY-$qH4agiP zSTm5`tOuPLj2ooaMT9Iofm=!BF+yZsH#h$PDPW6lMWp{EGZL?rIE&rLOn5lke|~!0 zgmIWC&uM`G3IbF@%o`bYOC;Km_Pu^_jgHK9Ba0}lhCA#2eB!|oI9}fu>Elpi|wY` zYDUjvf262)tTj?wdm~Kmm3`6iU&j#0|E8%iv$90SLZD;N&8qC=&70vgontAA5aCGcq@j43)H;YW(2mtrze)DaOcTnZCFL2yGMrshmbs_IIX z6S4Lqm_4%voW>|15r@Qw z_i@^({2KJI6eMN>p=d7MMiIw1Kn+(MTjbMI z0ISxr+jKmwBKCTtJB6-64pZf!YbQ5~dy5_851=tqH@Ic9Ln}^(#&qt1%yD6FR^vPo zCZCZ##_`KnHVAk#T(8NeqY5yO{CSiMRqqKFmcTXI@n`Y=L_7**r+r$6CFXgSxXoDe zGc!iGHYS7^J+@Vi;lH5tBUtX5!0IhA=tox2&FZL9r30~T?%Cc$H) zNttO5Nj-yPdT!|{1=oHmtXF>A;ph#c5)*I2OZ#NZMV_K3V3(ocvf5t4`dstGeggA~ zX$R7Y0C6UNd_00Zf+0{wBRaTSaYpumF(8APK}HZn7SeNlmUVaDU1zf>>+9d8j{*x# zHi?+Qltf~vz;6R>e*i;|(P^MSz-l9AA#5%R=z`^t0QDWk z1?E!Fk@`TlZK)%5>Wy)<0GuG(EGtfss?=zk?2v0o_rTymC+*V3VMY0FQ76L#x$~bl ziv&Mm=DaJo@jYwY>J&HIl7K{n3nd{t2pfTQO$3>ct&-LkYr79l2@1ra+yksQB{=*v@bw)5M2~7D?;!sC&z6o^*)b=T+gD&7kaX`8SFpTZnx39g5n5shXOo-Wo z$lg~fFGtiYpB?ueh<6gYMcQ)+^y}X1^~pHoSU; zf7ox{2_U!u1|dxx+NAQq55v3eINad@E*{tw-T;X`TUdMwAh%kQ?Vmhm?r=C$WloO4 z&p%YBedw-6MASX*H~{qnY6!?2z44A|QnefY>6Ofy8#VB=2Ez@tx=@ zAxc5RE`_#}O9TL`6qmZwGa|$BUHy1FmKwStPU~)ewzM_#jadVKE*Z$C%!Jit^c&1L zo*4U?`kEs*yIEp>26~ybJ-&-O1qG{KKTj6{wE1T7!B9-&a3ohN zE@H&OfwgDGz6N4+5gsgz44|yBmR@MvLV+kaI2O;uW$mi@A3Ut3rG+8jWPCDkt_TF4 z$;x7KBVnJwp^&ZNhlEzx8!2ufi3SZ2ew}izKq~4kQhK6HhjIeLqYDZo0hN(-lPh$W z>8XLmjXb$1CLtk&`xuL8eo+SbE|!))bk1C|js$-rfs}X*@EW3axtT74yqv`@z!6Y; zVL3096>+fkZ$BV^&y>ZTmpi$enSFgTtHJT#L+CqsoLzb}WNw|eO&|MYp4Jf11QHOA zL!2o{Cud^+A+{0q6WW;EqJ1(lA6JV}Od=MC0vZAA=L_1G*+Y&7*7iPO5Ce(;ljyBm zn?Na|rXq%F-`a#*xAg0e&8gww!XT7{N+(H2NDt_5QZq?^=WugsWW57I*uP(nB-MPu+#x8D=g0q@~7$`qO zUGis2p_i-0fTqm;vGfB1|7!2S46wio8T+gp_UB2)`wZJ|$?isiDhHr#nr zgZ4JId>`L>nn_2l$wE)Am!_uz=hRMwQN7iP5x}J*6r<3aWNo@Wu=Pee&(ZK+L#fTi zQ7Jt0_na9E(>UI#o_|x>cjk8Z^{ZxeJdx`|+uh!bl2D8~Yw2xo{Fk2z8uPz&YOw#q zdN*4tKu-GQ;e<>N;|kf$Jq*+7eMU>C`rTrV{d#FDt*`%kwp@nF)nk9V!zsCtlE0%+v-gksT1o^O)3 z7hICxe9DR{-ymw_i<19!4}Jx=J*!8Vaz{j{6M1w8I4@mUo31AAQ~raV*XMH3^ny)7 z>^6))xmJnOIGw6YfbLzJQ%$l zPP;Fu;eyWS!3w$Dx|*}m+F`W*p`-buio-5fG8DUgzw+`q{_FMuvIS-v1a#O+OIBX6 zx>R~(YVf3k;e~PtsGq&mHp>o8ca!@O(s(7_ie00^o!dP*c7B7#oc$5U=`c^{J?VsmnZ@_1*-6d@N#X-jS#NvX!us9hqPE%Y*{ak~I4x+A z)w0Y=sUWo{%=JmhgPu}`yk4z;zz%*^H5CvOO80Ze?b_l}G7|4wp9#Y%VXNO1f^TZ_mtI-+B6rq|9?Bwt@C?N^|mo2!+307HI}0IyVRF zpE>n@p?39|pHbat!wOe_t1S1Ey71HMtvTtXsf~s9bRQZod(+)k$~m^>(<{CZ-G6@` z!qyFrk9yZ>-PkzTr+l8%`~2EZ<0^F(R~~-$5>1(|9~{;?7<>wP%?sxPSzHfL` z#xr;1kk@H^fIP+HvM#MR54rzw)TuUqFMF_KhL-VbZ$s0XCD&aC+eB%PQ7IVqrgIoB z>T^eb-~Ej7Qe|~`@8Xj5(2iQJ)+ife`H~He^eVoYYpWk#nPcb~0t{DcXB2-*IN+lq z6TOaeSXXY^33+*uqA=B{0uBa|+7P{e2UpQnMYl~4+nDs-4>8MgI~_Nq6WQS5{>XN_ zZOo3;tmD>+0H2F4gc?wmtzJg9~ zZtz&|tH{azsFR~}@b>d0Ho%R+Z4Zz1AtZ(^5bl@$4{jz-_{r@)wU@V@h*`r_!}?JG z2Di@;dZKei)+L_c4`x&vz=}xH@5F=)M46BX(6WVQX&JVG#q(DBebvTG@XeeV5lBAp zXDEu`*I84aDbWOi2NNXpYtKsW$jae5K9Q5dp3pQXwwp_U>-(g)kKyNl4Q5Zeu641R zOk6rlYnCsS)jQ)|`P8I+gPE~fw$NYEHLv&#ABavKVm>8Vo12pmew2>NXmd`-sF(uJ zL8MahbUS&y%K=eZPDE)?-cV1(G5x}YjXegN*k5C~Y@m~+)QW2OY4zDXL z#vfM)@5IMzfH7Pho&GU2MCu(7Q*$bGX22Yf#7vR_aDY<)$_qxFxAD%qS(Q>_0*w$< zAFMLrF4wH31_iGQEYR=7v-U#2RbSlZxFV{*C{QKz=kDk5t}u!Ad2rFjm{HU_ko)xK zvT<((3o7G|Nxk;Ja$bJ60DV86f>QU><&f?~O(^i1^qFQtSsRrR6sP zasUK~yBpyE!1|z^Ll1rL%B(TKwi)we74%K8_D%SWRHT3!yyyGZp=x>dG$G_DK*K;{ z^{$z%azCqosz`O!^c%2h8s6UWpviyb`$~{w#)O*;AN?AgnD_<-F-DB6Ku^4x!u+KR z^ic3fLnBDM#DLe}#YWH-LEmt6xoju z?5rJ)wAWPggD27*xc28J&4CTgqU6u3=GMU0HSEoTuMO~2lpU+((Hg0N$4pG%gwB;gX58T zqa5_q1kymuwVa<2A3ufqz6~rZZ2$f_Iq(eL0b)tqxkplzb-^z~*?~VyG%AG%rz9=w zd*nWNXdgUmz=Gd_M@_;lz@x$>dk}>?rjH5YMH72Do$_gR-&xC$>iFkb-kMfVv6Q^ep~s?H-IL?B zrMlamE3BTXPT@}cd^?QV+W5ubEdLv3FHa{m&%!|2XL^0Emv7!In0z?O^+8c#sL?ct zDpdUMM`{V%;!kC0*fDT3hO=Os) zLMM|2g<`TBW8dIhAT#W->khQZki2xFd;+ZTgEvrs2#p|3SPGcKB$Yu(&+Whx11tdy zu^)XCAQ9|90`5;D83bx+GFu*VAbTM_xevaV2=p%hE)NEpLTY7z-I(iSiAIt{*@6Wo zh$v~6@HQJ!;uAe5vIDa|JPdspgqUORUxf|OgAkhD5-cAHrXVxN&d&S?(MsSeIAWectl~t5sud+%76NBAMqYa6h zd={(i=72dPBKIWyATT|bMZ6h3(DJwbgKdwHqlOPyql2V}$q^DV0Pu25gxV zGqnI){eahEN|VzW!4t&YPeFoXfLD`D{9NvQj6lRmOr#6|D1o|>5Jn1O9E4f`#0-Jq zN#q5lw&=l8h(_ENI09+!u!IWEckO{%21fu9P~&YC0&*vr*Z}QFC_*sl#D`2XaiNT`&rbEWE0a1WI<}!(2-fiMzUttDFCOk?Bgt1Xg}m9NC@C& zVq${dKV5_{K7if-vgdyu^F-^4WT9T9Ne6_P%``Wy3ml9GN#-tB;b1_$4os^H)rexsB6agB2Z zl9LP7PS0FYQi_)wruR!8=ry;bS5;rQwn(MOGcQQb;xo2>JY)ZaX8()k0YfowIUf0@ z)?fT)oUL)Ir;CHbgWsQcR-HF0!u+!HF$ZkV&x3-7+UI92*e)L#j5_`6evj;qm+GAu zR};qC{>ky0@lD#&7V&LKde!^hiivqi^?j20^5Em&_J#$``g42Q$}iZFK_6XXdHhMh zwQzz%nzv|vL4K=!k_N`o!tEe={K{FQq3i(XoNo|-p*Mz4A?H3Dj0T&Tm|Wk4On|K} zfKr-JOzx)t6n0aCLQT@1&$y9j&LG!ald|$h*xFbKVzv4Cd7W3nO>S{gs5VKw_`OR% zcVJ%LA=Dd0aEVEMrKd2|K)r$L;S79y5|tU22?H|?OvMtHw>gfJxc}* z!?XjpCaf0^us#g)!ZRJ9#=Z`~|F5|UwCGR=K?+y>`|7HqnTRMx_2EiNg^B;_F1at~ z_MmVve4r9{Jk#Si;v*yynpQ6i%7#O23u)5IhVpvLH0)&*pzH`MR(UlrIlq|UkhH1N z=<4lZdnKOB7MJR7IXn{l%?DKd=(&Mf2%Wk2VA7F_t(ZAlyzRb2 zF|QZnRq-u8jDf00m{>V)<~gik>~QBU{v5R9MnZvrcIQ_!wI=S`W9QwuDSgZ&Uiu_P z&qaOGw^pZ-r`GK#pwZc{%D^x4Hlo9kW-2inXt!zyZk=bA9W+}d7@4-&o)WH~Xlyk7 zC4Vn)Tg|%@@dDPy{kh!2_R_QFw-3{^J8^X$cP-(od?1mkovrYM(p? zfMg~p*eaK2yGZyuF^+(P0esJiP<*`ATz-^JcCgCf#)Rsp2_6Jhhy|ZQj%$nv5TcTu zpXehnHx$@JJFteR7xQ^MKw4rO6QC8CB^2v8oHR0`z{(Sz9A_%d(?PJFL?n+~2W#Uz zW(Vq&R54VlsCix&k?5%ZhP$<*MgnU`wC`{@{U=t%se$#4WDhd=4p1+OMEn&GR7_ZB zn5!I&#Y2n%zdUwr!1&(??BQ_uurIbDfCqQI$jm^@X z0M@RUj3iJTaU<@3Bgb)I64DL+HjEu!UG7;W6C;R_@IOuHaK&#wNdv>u#!0NaAO5FY z@1eB)Pj*kl#xiGzHjBnFvi)O92HDxzXCdBp!`uZ(o(_Puur0oQZDA)EtM*RE5svV9 z+SV;6=@ltTddqBtiaAefY3WOiOnQq*h%tQFYyNCoTH5P&7S5?l?T)#%Z`@>M--`ZT zAF|E6kJdUee?q+=M?Wdz=M2?2g@xpa)zb5O?&#A~Z|Gh3C}aH}DYgxHCq%191FvLS zt50_QF^vo87&Q2NSu}F`N9f4v5_31tu5}yb&d%K(8v3N28rT*d2zTmC6@3ipl>FLKy+pWY5(%3Y5 zI{W1~W_TmfOp)snga;>vSoAI)y+TYrP@3XB5xbCS2Mr_R57cLMj-^L&VTsZeLF53- zCz(2f;_t{jmi~TAa=?*6eDKKhvp+*oBm{J|Cj}w%ST`tX=6*C2>Iw4?keyVH4M7N2 z&@GwW}?s6XV#Vez2fL&nnQaR)_EI#9tj zBigM`#TRfP#PuLH$?!uY|6+6yb{LfBhUsrX0|7f;X!wYyfzA_M2AR%DMjBDTJ|cDY zlQ@@*eGQ88CBGE3fD6YI&?hwDUm^S#7WkBA^15n?_J@M=woC#$T&T+2;?pbK{TtUm zu&|VFIsBsDJ}D&6=-6MQ{HmqG%#n6lGejzR?0hXR;I2De$|O^>*mU31K8Z(?nMXWX zjqmBH@@_kgHjn!uWB;e??aN7`T=F?9l=1CkUBRDMC5J=OUiS4pF1>8e!dtuj%7ZT=}2{`68=)spqy^3CNmyUj)5Qrr^DW!DoWllEmyqoStZ6$|5ZV`7-wrK z=dR^J>O)(de)|mSl=1FuZeX0rJQkyPcc%!ZA0g!-xR|zl<>o^7=La;-;lEuU?0Vy@ zhG3Z=%_#`w8kE}yHU3KWS#^V)`;@RyVcdef%-?#w!8_GcH=QAM|Cncb2h9vu@#nD5 z=klgxhI2O!LWbifGx6g1wa~fUpp#4}V8|HrgdpctNYVYcR!!|_3567*B>Wk938|O` zQ@7hj{y5L6H(RgHJS{LkrT#K&YHQq&6D;-B7H@GK9orykUj0<>TS$oPRX_1K6?31w zMk|T#6ADf>Jw1)1CqGv=R+;-;*~L>=Z{;q(b*0+j!R}Yr8qB-zH4La4wu^Q=7V7(d zRkW*hFX9B`#+A(Sh3$hnEF_J#^m)W540tLAYIuhWZ9Z{lCt#~f&tnxE184Q318fULj{F(AwX*EzdNyCL*q|Gmj(m?}X0lAzoDLGZxMOA0@u5O${ucL{dgmpm z@X;Y*-<1nIVfQ)4&tA>*`h#eTZ``6;XQTz??2ED5FBP{e&YOt$O04W_kp&;P<}0(r zueQP2@_7?>^OXGqRr87`czA!!SX8h7yJ+scR6n*HTlfzgjjS`=;obEq^32j>hmSXx z3O{^md9N#=lo1=$y@V?Y?mKbbp3V z+dHevrI}`7$;U1V%0xt3TP$8LdCac!Rix+Qhb;{kgsSNuwjEFlOO|-|(@pcQpZUfU z6I~w=@10_@?!U}p)pr9qhaEPVaONF96o|Nw5G{wNf4rkU^d2DkUagPwvD5_WTB>^5 zonD&KskLbf)pF7K;}TqS8a5ltkB937`hIR(8dt7V`F%`xROL+TmqE54G`Xh!y_!CB z2KjEMrT_hLU&%W=Ip|-dMzQI(w-_?|vpkkCj7{E?xWuMrST?E{Qfv2w^-)$}y#?QQ zO1W5_TRwDq)|Q&z>>8lS;qc(5rxwh5oDk8>^!ka&?wS!nNfDXgl)r@w@ zJ>ssrZpT%Nk5>YW;@3V@N*%2#!vtTxb`N@u?PYwSr~O3Ze)Iabcr4pJ^MyvKmCtCq zw~ckc2FI_$S?9}cUF{NcjZGLZG~9M>o!^H0bSvxB_9TgY2>Wj!V(qRPy~GH{mD2Cd zgLcWQKc+4;@vfH4=6*inVdF2hx-R0|O6T?cd=tke6Wcrjln(u0x&f6e6+H0&BQa#T z{{Q~E&|a5sK8`4xV57nqcJ60iSMJ=KgM=v!sj&pdLyIY&)@pVb< zZ=(pms==VhH>y~~)0we9IyGzmK+xWT;Kz9mn04aV9zrwh# zb5kb5h1|}QGn9P^mu(t43pY0$@p&$A)#%_kEBa3ALJt2;pQ=)A?zg_RFZ-Q0cz02= zIZPlo=M-PsgPAM)BKIfd{8WBe@o=%N{fAGpg-XPcOQ)qo9n@@0p zi}LG1b=fp|7uk}|lV6hD-rjCGc$bCkaeW1ktw|$u_93R=ZFhW&qebXjccgs?a{cRe z_EY*Yb?m6{?~GU>amG#Yiv~2jCNB=vgnfP}eeo~-i`aENvC(1<{jWK<@?;(r6*Ma` zh^Tw7dxw*UWB=Km%{s2<+)NWNQhf8(w6txCii-2S>s92-mUGRQMSK2!dQ$Mo4U&TC z_g+;oKt2BX)w;XiPE1IiKYyM~ohJY+dK1^N(hj%Ub?g(Zk-o7e5-?zP*8&iFue0m< zOCs$63~ul2Y=_=v(e$P%wglo?8JCxrSwhuGKWt|wOw5z7ILLs)if7Ntfmh8>tE^t2 z@com)OOgQQYf_w1!c`U^eAfEl>g&38E&EJ-WO1}9CRdrZO6KvcQpBQ*|669Z#R%98cFd{gyh*RAXwGcN8Q)*lW1 zu{dH!Vr%MiPtUNVZxQ)TVzhhd-MEIiMo(DN%QWx(TnV#P{xG=KFbV_)=W#|hp zex(P;*6vbV->An>dGALW_xjwUl=%bqH!kQOI#bHCcYU_lm+UN!-kIHN^UD-U-U(Bi zJ(jumBm9qC;?hv)b_aK@1D3spIg0nsSl4na@EqIP_V@2!k%T6CM#jkHUweBNHo^fu z_-c#ucfHj=dL+@3$c2f_hIgfpmt*VJ@4C*HHWMKj5f~$)ogib#lpOH+WyNa+SGBvl z`@|bP-)M-lrf=%`1eBHS`L_6NZff>Pb+U=X6Z0)#Nuwy0oAB}spn zf32zf0=PKI1i}2~%2CsCO90^{{ek>&94)SpKukT@b>(IQ&*dF{w~K?R|>G9%D#rh(HsI$7k%UxfP&RvUvKTEBn#B@~fHTRG9Y&2W?W@Fv<0r z)y&nT@RQr>^4x`XL!(JND(=U!!1@y|!kDds{FBOS*n;GV5gJKPj}Zdaw=k#(Ow{qtS>&K9S%c6BwuO-NL4 z7n?7CJK*Q1qJkWii`WU!<1;2FCs$&2Q|3wW4`04CnlHDTGc`>5K6wUI8GPcGm&#T-Ude(MkwYxhy|kIX(XbUWe4bthu8VR&}glQaI!ul@i2ON1{B)van)k zSz9u})zkBItww1~q3_W6CU;y32bap2Z zy>G|Ivtd2}<$mRqhexx?f>!?98aXBBH!VkGc;H95;|0yGZBn~Yr%j2+<9$yvO}`g3 zYaa=CB~yyLe0|Lo@ zn~d<9SnoHn{CEXwm50>4zRAfb0jj%Xy9&JZ$W-<>k?b9kHV43thklf)t=|^8RM@UIB0tNH7qc zfO~Yqh5-z!3v~H4yxq}$U@d_UPtML9M+CRW#>YDt#15Z5ytsz}0LS1CT8Llk0$pST zf%n||w+dKZA|emH8Xj6z!_`6^8x$-o3KVpNC8Sl~kp}5x@Om%jR10&{uy{|T#&cWY zAVNE1USg;*ATC>zF0x5vm?^utj7g&s{>U-?CVKi#^(v2V?`e!Kyn{i-cqgxBOuJh( z!2td^C^UYE=FfaE2$O&z@o~3AvZxgfo|)#F7}%=w{-`Xe_Pwt29RjTT@|UdmATWV|`?p924g}7+ z9JT;FrO=8O1lU;naP|Su2q@rRGzKh(k|GCoce(u&KyH9Bj{qXY=XKD6Ll@3NG3vun zyb8&jegZAO6(1fR2-9M>zm<=FEBmH$_+AbH5a*AD_z*x711M?@a0+BiqX07oRIS!= z^73|{x1P6D4!~$`R?zX1PZ*T2_x3V)`S=PZKh-jB7JT8wavNOB*R)azgP3A9*laE65(pmWJtMp!Skrj;HOX{`9idIc z;!yd-$RO318v+mKs< ztT6ZF$kID|vWQ|P<~C$PU;F+Skz`1KW|2k(GDa(83LM`^{X_%0#|&4qUeMzBm^_I} z^cEVl4R3?%Hn|41S1S}&E0u~1Ge_h^kk=Cq>iTY&n!$eODW}4hCn%#wH@z8C zB)D+eD3}vPryza&Pw;3@r%(Mw)dD0AR6mU9K1ykei|d_YDwprQ!Z1|{%kcbixy7OF zbT+WJQ2m}*2Z&h#*$Hwj{_dR1-&rQgeW(|vPioF*=X*={f+xPj-g4XJBKIbjGQID$ zm?~=Kn6Xg8g}9D{6VDoXuC8@lfme$o+;Cr1)2#}jDtq2HoD7PZFH7!AIE)l&GG(`0P$m6<=QjA!h&B1W40+3fwA){A%Y^hzSt#UoB$c}aK3`kOLuX4o z?B)F~b;dUBW$LMkp7 z)+1f{%9wQoNxGz`dgi^`jetl?S-79tquwMHu~D%UZS6Vk(Js!SY@PZ)<6euIQe2@bepk9b zSLJG{Mp<=`=kkT+#i-592g=^+X!{Lch)D4Hq66`E7Wa$2CY!&1w;Ljxl4r*ypyywut;L4x|Y_2PT|SaQBB%54`#Iy^Y8k| zT*XW-RoXK3(R?JqD+>yCGY!51VZcPlytSqkSEj(LP1ogd{E$$_trCe^l3!%3RbIF3 z9>GtL&U>^NQjUVrx&&z{v$LJ^9Ac4F1YAG(1lxZSd z#bAoMvpl{G{@=D)volQS`#fpFO>zNBC8(u@QR^$9ff^Uty4`BwF?0c@(lht5Z#;u> zRNZ^RatwdBE!haByAL;C7W4k{D4B?HqRNlp_}*esafKp#Jb|RP`vnRWj0exwddA@B zdtNL^u~-f_HGlVvsUYOGbz~t)7fR{Z5z%&Xw7@zpP+VDSP(QFPwR{bD;$m9EcBk}& z_K#N9C#rLFOmR%`5N5NSZ*io=L@Smg%clhU^WgBLq1CINjgkbp?Db?XACMC)0`^0( z-p+%~sMH)XbkQ9|Ra&zlLbB|H&(Y2d#|Xge>gp=WUUt?8lZS`eQV{hu4DSVWJyuPC zKxe@6l{1`b`xotdz1_Tom??D}-Id*=+hcZD=zM*!irAv^AckHdr*vmEVde6r$6&t_ z-PW>jtSyDLuuFA!xJ69Oyyt9lZuB_G0z@jxNy%<|GIaeHho+lbk9p>NML5N%SSX$L zsKr?~?B7C!r59?t48tfBT;5|f!y@Ahrdap}v^o2%FQ~hTmSS6Yu48Hu9zoNJ&q}An zgsikfYF-JkYP6rCs_Oziytb88R2@tUJduv!XW5H+h_syMjf$9O(mLku z(WTJe>%;Ir)QmKHcF$Cd>{Kqs;S8Y8tYkGl|BG-p&@p6yv(bN!Q^f*U>PLX2y9t(#j3z*%E|4n^}i-B&DJIn`4w$P6QQ^)RBP&~aR^xoDb zj~%%7%p6a9i|;40D1Q?EziaMT;%+YM{f#@;f8uTF!pLwXnI*dGsPA!*I%0R8+dNfO zo0cw$|GY@Ej5Cp2jau_+DOu?pf0pmfYWZwS0k6=!-(Nq>c~5kAk6WeIvwr#40f}dV zGZByztzsdxneo8Q&zrkVz+D;rv>&ds2GZ2_Bl(tm?6&WW1sn4^Ea3QVHT@_V!xUSt z!?R4cT`}A|3VWw8s%}C~{eViO&scB&<^9>Q=FQ2aqCysTrtq>GF;>1ZXs`wUpED}g zTtqeaj5LXAYhG2@Qlc15^8FrXShm#rR&c}j-V*iaJkS?8QYO2m*NLz|*>+vIOeiB1 zA$|9Im8iM7Ch2#^`o(oTR!}Yb8*WA#cm(egl)jeF59G2Kt`0csm+tNKkxD^LGs*T8 z(}hdoOSY8F3h@tD?Qi4mk8`)JtojdK?M0L3*|UNf!j%CSqxgf3jWk|uT}xMi)YK#% zEHuo*Z-O}hU_jzg=Yh?e1Wv1QFtEWTkA%I7mjn;d`={H>uQbl6X3(Ptra*_GW-kF% zWKV)X-82v?b5;{50-s$z?W~dOgs)T1p;ANHB%XiVC+JC;Uz8Ms!J<`bFsnidWNEYd zx($wY!)of;){D(93fJ3(ttaYV31m2NPqQcYIy`^TlRpPT9O^4_?Y{`*GW6M?yF1o~ zrf>r!#?mL;IzuizZDIh2g#^Ua8lgPGd_|zKEtfYnG>I!j2i1ihdPPfS$9T}l#gfH6 zS|B%Ok6Mon9sXeZXj)NE2XKpJ;g0Di?Ina|o;Pi5)0msEbSk%u*dsfuH-ExZqmWbE zQWN{|O1IW%&zz@As_x5l`wXrE+k(yOM-4X}(gkY`xIO7f;5G<=WBjbWseDxod#3Ac zO%-HTG%0uZ!gg#e@IHVN+J)zWC-p!QOKu-wSg?8xD5OC9*HRt-*)sySDn>ZtmPnZ3 zzNLWlf05GsD5K?{0Tn{=-GIy&m>d20c9w@IMY{uDj9gu;v`8+$`9$X__jte2`Z14i zS|#$R&G$qEYVbRok|NAKx`bF^JztvV@~(pE0o3feXs4IW6YMgQy?0w3=Vm4fQCWyfiK9d_<3`-9Y9@iul6 z@V)l+eGHFrvT)Wy;W&V2m3`d&k^%9$;x+h9w&AzAn}S64k80bR{YFuCI@4v~(h04< zFFLhE=$sDP-5q9crwBJBf@(!7&Cy9R_;sHE*6~KC&6sV|kqOS5+(RB*tz!LH+fUvR zj)owFzs&P3j3dR2CpM^ca;tj8irJ zYO4f7(oFe5(*c1%Tl?arMP(ol!F`W+tHS?fX0DqZ+&;ZhxN&TQ$X2n*&xTd!AKg_W z6XXL<&i~4>J+@%g==>8#*@zFfuU@H%l)9$=u*sdnXnq#)yE>90$(?4cy8_tP=r4D) z>#r8(S3`jj@Cg3N8+FN%^!V07z;THw-l1lzV{^CuZ^Un2VlVPzb}Vz314Gxv_9_b3 zBc!KKxB70QCHsbD`of_2l8>NzpMYam0riT!xO*&>cNc5s)WG!pjZn23;E$7e*&7%e zfi&iqhldLnCufW!d^+b7H5?MxnTqN-7$^VCBno+Qf_EsV&7mYY#@#zMqtdRaYQ2K9 zo~-S1hTlh=$eqlAJvi$}lBlaT{PZzB#`|Uz=vae@fvJ;8OcgOi_NPuiMl%v07ngxr z-1=oy2=^2FrOFGTOA!i!pA$%lAvY--+|tBd%ixYX>c-kKsojkWqtYCFi|DT>gQ_0p zb;RY9Q6tw=CpUV`#{GF`&+y$)A4vrSBm@VKKPwjovozNJ{b=d%9FcK_**x!o=Kg6@ z%dX9l9jCQVw)OVSuIpKqL+{fF)a5AvfrE-#Qqs4d_f9ESM5!s*LqA>x(qjseAc!8o zaMNh%w(nwFy0AScyg|K}W^?HoZFl7m3<8-}#A_aWyct96MrAh6N{JE- ztzLg4#!#(QpBcV=J#`x;d2Jv-;c|LB`1diG+>v)v^eULeW^M}av)1#TuZiV&UlA+cqwg5bISge93nDoQ z{>7!f;>LzfJ(UTUxNsZ4Ea^A+5`T2r?2y{Bln zsAiIFD*1Q2HO<1b_9oAYVb?7EQ6h_x6+HIL0LjBF<+9a24m)FQ-)E!apQ`zeD(f;w zi3*fgH=>9ib-1mrid0sXE{@A`?H_)rQZ_d|f8=|dm^EHg@F~HQ z>7NTUKr~`B_kyYQY7+U*){-Vg!Osby7hV(&F5eNt@aP~n|;9rpPuI1C@R(< z4QAT9Oo6n+NcTq`!Gkwb(=-klC zn|S^-lhjfQvLt zfO;^1g9Nsu{`&JrWKPj!x0dax1f1Lk&q!7-&I&lqQzxJ|Z+aE+4jWq=e|H58Jrqr< zMQ(M=wF1oU7r$(7dbo_}TT(4Gl=3GEHe6)J6RMc9k$=5cs0U%=29C2_&=UKx*0fUt z8!n0DN~$NOY9t4b91^7qPL{z^Wh!ryIP!fQF#PemP`sI_N7Yhov6C!G z{FlYQOL%{;kjFOCVZW9%#UG*|Gi4;i3^s15TkkM-D-8l+&(SONFDxxpp6~yQ!j#VR zQC!c$sUp5J#+4(qnBWK8p)kte^sE}S)aPrKMI}NH3>C0q zZ}^}6_tXD_m{NQQW5E9wLbpPf;BX#__8uK+J(`FvpxiuXoiTE}{ zCWCxUR@vk!i7Zf>lW^H+{Aa14_^AOfj$oVVk&LH_n9OFH0W%-b4PTv5mkp=X+-sE`}_ek{gA_jN7$!*R@B)Wp0j>w z&q_Q&!Psp)`EyaUw&Gpf%i6&Ft80!2P~T1a6P!!MAX;7gr@bVxn9MDnq#K_4l#0Qr zM+LP;n{Y~q=fJujyBYAm$RfXK7$s!-2S&4<3ysF9%l9Ytr*7BeDE2jxQ`hfxD((K< zY3{fWdSC~E7G!+4)w1@HYlX42A7pE-{+m)t-TyZ*Oa1qj02W~S;{=fZgqTY1JyV{g ztC_I=MZLt|yrqXGL%&Q{{Sz$jvRE6dr^@U!LC#cnZ=E+HoN#HmR-gBX<=;56)n988 ztD&sxJeQv-YbTA@0n#FeVm`i~{NQ%ypU@d*n;$~Wv0OT7&CNlmlu-3H;u;O95-$3t zo77#nmep8P8a2P{ojO}bg3t9F%%MgSj$Dl_Mkul+*@T+Llcq*;nQjioH70|lr9!5| z=eCt6WS~YH&e9JnGDK>tp1q7O)K8lUL;kUGdNUO~B!HW~Fb^VA{Y})t@r^Valr3`? z*smBz-B8*S2=88(#lg|USl{@rPb|N5d{~`E{>O$ed;KJF4qL_2P7!Ys(~)U^5R(%* zF+ZIKL!F*j5__?HPH?U&_afmsG{8=f_`eXhO_~jHR|Q2 zWx@w0`Fz4+hz#nKPz(2$f4Q6FB;Ws^JvsAO*?uFe_%w@Idxq^WGOVO!vy-0-_haP8 z{)z$w*gw>)JT-{Wzjyee0cPgTwPT_xueP0i?#$p!x8&KfW*F@N}zN~M-v~gyrN5Oi%Bs(ZZHZPMJ1O9GPZKg~2LuOyRNU~Fhk=a1SI4zq>2USb=d6>s@k)*mi#n=I>(#J3F4AB8=)N~Sc<_=GYQ_AAYD)E>WIioi z@JgOmmFc6J1s2a-T9iTGLprtzf>xU5e5UO|L2g074%Sq<2b-?9W-?u zqxN+err)mUoz6;b>TIpcJq_dDWoz@na>ams+u2p}Xpri2?$7}|G=W>E<5!UC~q17}KFT5`9*1Xhf<+5YGrv|B_S^|o=9m4|wLNUJjXXAAx72KjyVirq zR#`(il*?v24&J)&&(LFK<{nU9;(z!@e7I@;TQ6J|YAmB-ZSFQ>El`fpm#a&_9_Gt9m|C_A zJ;ex7!sDfxTI&`mEXGbodREkxU$-dbS~jzy?Wud7^&0>}Eamub><2|@?ehu8g3f9z z9EiEbdrb(68}5Fi`D1$nUV_na9q2fCRVX!myTU_{BkQ7kvvhW%>OPWOUe?L4Xnhm& zU)bzEEVg@MZ^O39i8j+#dftC9576GR1=G%cm2PEQr72VpuepzNX;{1@UP~^kMXa7a z1j>ltbHXFq5`=o4AhFJt7m^|CLxUulxxBoAF1YFP*@-z8-xLHR2%z=krk1u=`S8kE zka1=ZDg-rC$>2zWDa1so2;aPR{MVm45ku)bt(+QShUw2oHgR2NJ%z3BYyTQU?!Jy z93Dt0{&KR3sR}X&@robaz=#y5S&)J5z&b>-%ZRBYC+d|;^RU>4Mhtm(1#yAVn2%%3 zld+kI_L2(Kph69xa!T%n46Wzc$L3|mpy`i5I#l#o(ZEB8sb}SF(98FD%{~6IlPe6! zGHuMx_goM;yyl>ES#_?YCG?jrLx2#e?AvZM8>3+|1r9k1Yfd6|V^eK?OUb|?NYTgD zke)Rw2D@QQluH=e?DlAuW4by&;o&7*`6YzejOd{Zw@}>ZP;BzsDY&i2*A$PkF1Sj| zCbUTBexQ!{!_8fe7A=rY_v*VLk(-eg8Qppu$v>zBSU2EoEmMXrrYYPFDL)IM#0Ogl zfN-wo{9%6QsI^UzMN|K)0R5$01lQ}n-ER53+@Zfa)$Jv3g_#dq&u6i?>jHAq|FrLd zrUa0aEX{mR%FEcV(}>+7`ReU@=fA5J^+it%K2B@>Q@-0s8sE&EF>4WOo`~-jsR>Zt zD^$X=WYx%&e*i@mj%LuO3R3a_bb{O(CG2J-SeL0RDnbki)S*29m?B(LQOrG0{Xa~o zr8AQ_jMZvD2wMYMzJ=tHR->7YM{VUhS$sDFLc_s=OzYWk5+GV!lywRC)}Vb}ZaN?| zujZ>PX~SmZ->3elKTTaGSPYEx!A$^k=F=trZEiRs7Kg&M(s-KM&MLjfu+8j6Ws%Ps z|LZKwZ6!Op{U%n!dFg=tqc)#=N%A9V*PGo@_Y*h*NW4T+kHp#_EhwdCUZ$C6Tb<*7 z|4F3}lra5)HEQPi=lz3qB0Zhysc4?7sh|B59j&_#yO&iBE~}pa`l?^25q*d^@Pz~+ zPd3viz@f^H+OAbCd!rTNrcQr&z5S0A>xO09J=u47URhRxx97Rxm6Vv)cqpPzwPMFw zruD9J^~A~+!skn#G@3TZ(u985M{`Rq%M>P# zqcuw+=hj+7e1pf`1FQ8BtoM4~yGye1dg#+B&QKm70Q702Ugt0>q%-Cv0_8BBoDFhP zAF)*lU-WTR3RZM}uAGv?mZ2lTQ7;D1v5v6P7KIFCDiD=`0E`HWn1Y$lmQQ-BU_!C! zqtqD?0NY9^O{T9>n6NHOMj+8CNZAt27#5Oq!i=Mu7xFq045tkvRNcr^0*7a8447Qk zaovirXd?2S_n>8{xv)kN!3Gy3pth&(glUt^IP{x0A?wjx^rwfVV#}tToSm>8%ZWK4 z4}YKoG&+;>{rgk|JI~W&8QOZB2_-)EU*qBkMt3;A_muY&$aKaBK+vNZ9>{9m8U2#y zq9mqZ(#wcvCSBcMzvM0m(*}ZSe+ZdT8F25grLTHb5M8)WR6C z3loCR%d5m{saV6#$o;e|G~Yg|{!!Q!-gAh_$N;A%Hd2gGWO{~%34OK3`F^Qb~_R}v=TN) zG`B;vH1mcd%J?yYw=8Sa&U9x_`!X}hCn_OF?U`EnfeBmL{_3TbpSE#MNFhW?R|Lhx zl&thkUFDptw5j@T{}Z|oNtP1AbU7e+4p&;RH$ zJ$zR~To6!BMRky!M}TsF-eSENZ~iC>f)2 zhCdtUfSj7vL6&J=L0U|rXLw;cYX7GeK=YGzasas$`O9Ke->KB((snGa!Qx48g{|pL zOz7G$KiG`6xDpJBEMKotOYswcz7MD&u9mb)q;ktmFecN`7FG02-|MF_HA#5o+{PFc znsf3zH~j?MhyCfE7=JJux&l;R-=qT{2##^g$jIij$e9FFw^fON84w zN#3A|ORV9jGts_sz?uCaYKk~~8+1{G#ZhRjGJ=td)RBWbno~egmkRM?hy_c`2AESc z$sI36D%swgNia!MN(Uy&U9FMGtqRW?QlI1D<|HWD6rd84kDkZl)vkE3D-C+@QLes!)@&+vaE7BWCF{+Ys`P$ns{{Q&3?lTpccCA!V6$i zH&%~C>b8$oO~bK|n_Yno>@Efm%P zOnls6#^UC#hX=Dv7A#5>Z*`Hg`ke_`(2S~)!gVQU4V{@Ju&}P-kk-aw7HhXFyrO*Iq zMvLS%fw^*Y&WBiVLJ4>}wOeF|PPp?zcga+)*$@Ahm$2&3xqLr@PQabSq@m8KoM)RLB&$GUgkLP zIS!pF{XN%}rSFNR=ZaUc5iY(76gB8@dOvA8!#?g#-D@@*x4GLJ*9(=fR5@>Jyp$r^YBje4Jx-E9p1)V&%z_PQS6OBc+|Xa!W%EBORw zF2jp`5>m=Chphps4bdbV;p@x(x~z={-Qn^l1K?pT1e~2Nf2+Saz@$}T)HP&7UNN_% zqLvssF`zH)?9t=UT_A)9mmsG7Qfy!rN(2E)xls2iv8gB3TFjT7#2+W7Ji)vb=P(7m zyZSTj{-SW6=tWs)o%eHRJH$}iK}kC9j}m`0wWY|b)vEcotl0nDpUOA|j0SFr0D<=P zvQHeJ@YThRXW44bPx>mSQO^6TU(6;@OX~yBeZp_AGdzy`@pDo}^o7&YJ{Uvf`s``b z#h|kGQD~k1dwHp-{H-SvgvZ@Gwh(?-Ohfl`zIT;og_H+JwFV-xPMe)%H~X#-87Nm@ z*&V+9#bf|$>ePVmP0uL^JkFz%FZK1+Kd%BZr<~R#=M4k2oIik`1t|7*V)pzQY&fjR zVt&yJ9@HdRLMhpf?7CNvJL><(bnYuCz%)kDqlv5DkueeEBzERoxmc7neAhBt>; z3)ca_KMuy_#vuonH+$L#!C9Wko-|&m_V?CoS)SXQfC_<`Ii&2<5{h-Vm3GlOgl=yz z+~;%dC1>2-cIQTi$G-fa-!lPFDs-QEI*aZKV%HYoewPDYN%kpUMk}5#a>F%9aQd>c%sSova-=Gt_ zU9_m*g+@Egn>igqe%!>*UjkKk@Z@71-jaYK+eoi}72C4u2G;^QyigSWVAwB?b-+jc66wI2LtE9y^E~qH zq^eT`DoSh3T=0|rvxEV->?YN*l89(JXGyi#tT{f zctHAeBgqMqz!+7 z3Y8F7JijjFvr-hsopbJ>MmHOXsC=qA9PQf@y4-Run;`dCAYC~AR3GTa8`8XeplvS{ z?CSmd#nR#BJ}s%bxvA7NHMt}Ec9u|Vw%q%Dl^_5B0+!@z zSoc|0t5vedBBsN!f7$0a$!3=-Z>6zxVXo^G%YxH&(Cu!$a=8K~OJl$98REas-yLDxXh=Q=(u!luFI;5-qBI^cwEdD2&M0UI(z)U0lKCHHEbL_f~QQI0j$5?XHzCZ zB#~fAftQ#$CvrH%rI9@II=R>!ncs_Q2&>gj5}C23UkDjUX}aOFYfO-^;}SJ%+7 z9VL)C@P*1-!vrNZ8>qpXFHa6ehUNQ@CLR|Ya_qOJnvL4$l(=H-S&wAQ4x|qts(CML zcBzZHc7Z;U_FD;|>wq*L3Z!mNR_1uj5Ag1n;ia?VeR)W27wG7paO`VaD~N zTvw>XdnQtL-A+)8V{(9WNy1g-XHCpBB1b}yP%b1fi19u36+iL|qn!S&Jc=l6m@`I0 zV<@LzH^82azbLvlM+9$kJH9-VIVkdV&V+*u7E#o8yyn{Q&~~x*V0@|(YkY6r7-ZOZ zEl{k``kTv*mkE_YA1w3>+RSVXQQrsLCCs3tLy+#bjY}XEmXZ>S{$Lrv^~GzX>%1zU z4a5ax?vssUax5No`*|X~ffH9Vc+G4$f=jMlx_swN7u5rhbWS_|-xh5MfC=0`wTQUA zt{vKj&2Jv#&g@IorKh>w+}D3p`f&}A7asiJWj?k8YuoW&b8NDg&L0+bYzrqf2hVD0 zg%6OF>_)ccE6y@!AFKi5oDi33TDwMCFjw16{Rszg+N=!UMDR(waHEa=_i^$%CX$K1 zyEyJV;|&Y2aM93P7DA=ovDon*CO|7dq>iBL{nVLkOFeC)Lho}{1=B2>4g7O~frbBg z^as%S|53X!$0hzx?Wr6km7?r>qZq7)xi*8}_d6b`LR`X4pTVT*R2KK6kSg3P&zo!w z1jv1;IUxGM^lI}721H8ifDSBO6;2Cu)QUi39-ECvYRJ$;RFaxj^cuy<`H%(FxO^M| zt9{_)L`J3eC3ti)u0@bH5{GC4Wq~}%D3o(x9?%W>p1{({=mBh~W>3KhQ=ol)aHS&xY-vN?6k;4z zUXoD7X}*L!tccxMA~&jKX?Qw=DH{%s^i6XTrDbH#u{XqmS7%=tD!p`WWknXe{-zHd zwVqiRe8JQw$#+0}F-9o1iJQ(n!Nx50bYGbBmIA+U4T4*^IKl@--j5m=AUv* zpE_4QJ$wZyp7ERK(b>8J)a#FDyRmGi#wzceo9SzxKv;J$vZgh<@~AZ1-AL1vGqdNHp}RX7=!qIw@o9a)q|*;hQQ)SlsX2RA-f!h zTk_kKds_b@5T$CF8m9iRag^JNa|*TKLLnOC>Wax>RFH}r>C@LvkAoe4F?!f&x_^`D zIDXxsfEE8=v#tZX-|VMg|)ydXjba7Z1JBK84~sP3sO@c z+1f_s8Z^W!L~?n}Rt&MZiX8l`UF}*#56T7W^=z2i_qB>Ftdw=Rw{hN#n0#F#B^b{W zU2|6L)GKp!;yIY=A{)#^TKev(>QyHJvUoVj7r|#Yi0)#_8k9cT9d$NYVSzAns81k6 zlZVr;C1|ES;^kuA>x`&joJOCP$JUc$@|SB@xqo}KS7I&hzba>atv_mZW>v7-XlEjx zp!Vm_oCN8YBJYsMjyy!SIa_29oZtv2{i%Uwyb@F&1n!(jlPD|>dQBP3jF@hu$ zxOA7|SX|cX1xrN_AS`e|AXX*JW99!=gpH$4P5O?m^qolrJX_}*qDs`=7z+v$jUEYA zpCAuW8`EITfg(P=GH@*iPS{Z?dc$6ulaS-kXnO&a|v~oOQP4;A$r}vtlW* zJ;oS4nv}Jszv_WzUCIwsww}HUdzHiaKK&_z@M%Xjx`F8gO8Ktk8fXN&S(VTXZHW`0 zV=xjOok!^aLbF$`g+JA+NQ+7OIoeYRM-?f*P@F_LkCn(D{oF-za5SJAePTag&QIWo z642#wnw9<-DIB>YHIk@s{a^ANG%C5QI6J-|7T`OO$&FT*Tfy=FM(&SKEo+MX*OEs4 zN%;i$D~Fg;H%x)DhcV;sn)3=GXpXOY>QuFL!GTk{`_bqN06m&_v=@ao<>dJ)ti3J$ z1a6_`o+?u0xaLhrA!qR*rTZLx?fDp_1e_53`(&Pm3?74&h3?H%7VS~Yew{+sYpL82 zn`znRvYqMaSn}0c(F9wdEw!A-Rx8xZ?JG~5jc?1%p(h0hMz39{>^4;FXPMF;XcZtL z?*ud95u^VVNy_#d`UqJe zzhXON`saoKSit#xP$Dv6V^D~9ckUhXu*UA%Xv)SESr*;i-5_$?Nw@uoa`zFN@!4B z&}IY5;>7GQ$W8J+qEfi=79%6WT3C%9F@-S|T!cEShj(bl8a$)*tc4+AT(;@%i9IDx zE8Nf3u<5gS+noaW@luJ<0{IZiXsN~cFz(&S4(cbouNMp7N!)*dh6;PEGlK(>_ zh%rhnKq&?(a=1-J-(xubGUcjVnnB;I*UR1I(adF$E5VuJPY2zH^}N zHwlBqwQpa1d0{Nq!1{THJf}YoH$|NoznCR*Nm!1BoIDMGcPPqn(b~QCWb-wk^R}Xo z4d!TIpS63JB9N=LHa2qX^7%v!kk?Mz=IIuwQE4sD<97ves^zU6_+KEqLt9h;f}Tqv zp;a_Waxf8JNpALg`u6yYj>5jbr1b&yYx12W1TFQlD+ z1&1O!rILesUS!4W?fXN5s=aR8EbWPKDfh9qUWi71NxE9at}$^jV8$XxvGa~^Y7 z(i5tlM1Vi_5Y_4X9#YI|jtS*SA8Nh^Z3DaD8N*P-+8?E6Z>iM#f99X^pYDEEhylMz z8LJL|d9kKyunmeiQD%~!v--JL%YrD)Y1bhfVaq9;G?NGywEen3hRpP@ibAX_vS(7F ztb7fo-o7<#jBc(V9i`Cys#i86Ho`}uz&Te4%ggxgX`N{fG@NJ+P>UfU4mBZoDuH2& z=mAsQ!2j6eJzM&03vKuz_{lgRl#UP+TB5%5RbHqBwY+B4NhBMGI)QoDh~+Dv&Ng$G z9HENFl&T;1RPbk#lk#P(&B_-uahdfdn@A zD8uQy(goEF0$*fIMuouX8;MGLVX(YjZwT_CN@|X6E_1m?7iJ z7$i;hd?Y~$$6>NY;`!5uKRV8(?j6^gp69Ti8BP6&F1LKQs!qr8Ue&wvB=MjhyMww0 z2#+TM_^~YiE?+UHd+dLnO0`Q?EDcu-mpuUQlG?tB=#NAFcfCNqfmD)ay}q;v96BOT z&?`jIIr0V*crNA4j!-%@^dwf6=Zwkc#ttS}O%dV1fC>nh|{Wlmbg`!YBfDS z)Q^Pws>kYf3If*C_o%8IkYmGwob#Nfn+uey2hy9~1Gw|D~Z* z{&+I(sjWggzd~$2lY2WL^!NWvZ~pnr>jfL<;Bz|X^7+6gpPts#8|cbrEzVSanxKT< zI)4ILp9-mNWaX(P*pYS&eQU?X~5|?dWojar6f+>c)^MC zZ&7rh11w%eiE8q-CJf<1TjC5Wl!s%Sz3)J-)EG+?Wpll7O?DjI)S8gf*HZ$8z_dT7 z=VrN=BTjX8N)T)D_^iW=va7;Y-MA?DofS*$Tgg*lIb%OtZv!ibz@o zLR3`yuiGkwkK@4($T;+?c4E{r09P?j#h~Xh87gSKO=bJ){kz0;6bodqDo7qV#$%|u zAsC!*?%&6ZaOnCm#o>m&@wry%MQS)ld;<2}oC=*A`f_=IYTwP}7)+9|Z##Hpk#o+d z`h~&7SexYl<}x?1<^tolC*d^+k)d|cNv7xUf_MpMijDZD1*gC`?r(*EWVFo+y~1>U z>o6thUl4gN7t}GQEjEaVDeI;ryC!UknLEbP~#P3hW(zT*TF7a;V-(r*>SyWe6-YZWvKB!PwT@J%fSUmH&6cAAsTQz7(R5JHO6!c`-U8*iap_B>4Un8}UcL0=A#S)X+#g^~uv;M=AG^ zG*~AEGlsEb5JD2QE7Xi^txh#oH&(*w+&kI*cuv~X$V~^=ykUBn2}nkGi!dX63~U;K zI}^tg!IjL2iH4Adz03Rj(^5a{%`@=siq8AE#7I;);b7pVa(c2HNr;blnajy%quW3S zuN>2{MUAMbHy@a72eiWe>SNjKBJq2;yal>y=-h0{!s>R%C=Kg9IaIE?saQT==eSOH zG{BehR>8wW^Yo;}2*h7tcp!BJMXFarH^lGcB4H77Nv^nC$%P$ z>=WweZVQcbGKw%i&X2T21mGP?Mej2x{xk|~bz)|Hl%6|Y_|tMyUY>1V33HqIqyH1c zjqR@{^kM3hE+LAO!o^0bI568GQi7%D&y7h%RwDA#w)yYjksJ~K5#6EHF4-AhH};i= zQk6mc*x-4LU-dGacZL!cKAEqKBDd0W#Y7|_$Jb)QFS)}&6Mjigq%+~wddEvbjHp4H ztS(*CA6R;#5CqBnPg@GAnlYkK;Dn1xO_WfB@$Gi2^b(&E2TdjX&#m+H0(D{Z2=`I3CbxYd(Iv^n*sbll|Gs%0oHh<}vG7c#&%}vyt@` zhID3bf`OF(wBQ%=XGxHXOb^OKKaOSX7U8IrOZIDXVz;@T_?tQb5xuA7FEKhlJe=4J zMtpVMl4t5!TflbTQMUY6W8zWP^T(u57-i@4dlu_h!%}8c-M>0E*NA+Z)xs&0Oqa!) zcaNjNpIbbs;fr?Y@lu3J=#dxUIYy4hZzu$883`=YRX$V%<-G5blw%6#GHxo(VFWoG zJa;#E+Oy(T73G3cDysU26p@^kW?`NkaClM`hP@}HUX4rj&Rs-}C`v>6)A0HQyiGFJ z6e2t$qtYEYKB#+OV@I51_Bi`vQDo`sV!TygP6P|5U#Ie|PaA`OT5)iTI)4)&@R5A> z?UiFyho0#6pbu|#sHv|%-e(tq*F#ud1)Ou7Jfc0Fog%$YcU0cZyb|f#N$8ZG@)vlf zQ+}GFv;2menb8eTfn)6N)?JdycHtDX`@^4o6nKTZ(u?QK(#B*|R5H+As*>AsAyd=! zL|Yx3y5F_)cgs|!po?F2;NxS<7Oe*qQn|`EZP-0;a7f5s4xRWhh_y$BiwRy#S6-?N zFRc)9+NSRfraKG-UjKjz(C;DV+e+j*>E=x+UA5Mm4@z;Dd#|tk1ws{64y@N1pWwMc zhh`Z~vFT%ium|aIVCm@M+Pjz?dhA4;#>=XjBiLFagG`agRoxDs-iAAInrJ6Gs}BKn zn0>5P2bfC+6#qPIsVO8~1H*vF$XxXW-3R!J<_CXuV65?PXyxL*ttguOB*@KNtI6*t zu&x2C900@fe)OqG!zx*8__7xJh2fNO)fT4wYyHS}=P`o7c~bzwB&jqzyWiRiVcCrPVTyt`5XOCUkS|P=owy}(ABONcZSA|* z9bHyT-K;=kmHp3E2iClD^Tf)ucQ+EZzX+hnI)P=~ZsjW9xT1LB0}m6(phk%5p6Qu8 zk~p#9E<;_BIsuL~V_M`rMN=1Sw+{Ng`mLtfA1;{hw`x> z81r&C9*Gn%hJBL{U?G%#VZc+6fKsea{+(6Ny6+IQT_NpPbJy=0^oj%XyU01(DAP93 zq_%qg^lFlswE>o=r2P~@M4E&)kAVrj!NqR*5(j5ux3n-DKgA~51lfNQf7csJL4pk) z`X0f%r}Y$}%bnp~GK~iwI;KSEJFsrLD;dlfje&K8t6y3EQ0q<4@ES|SjDY7l56hLb zyd49ln&(*&V}sRY&Pxrt*l}p}zUNeY)b+1Hm0oqVIuO>OG*ohLyWIJf{(67;=UnNF zj`;$6#<~T*`r>oLK7(*|qd-;+e}`5sF)^j8S!{Y%Qfg}>r?#LAv{ zg9Rg}#G1iCzAlP_O*_M4+7Qma)9gvE$Y_}CI?1z~pD@An7Xh1RUvwTjjrwKqjk)SfYm5^7UhqbO?ER(mwmh`l#K%-DO+s2zKI?tc3H zJy`hKT)FPt*Zn@{ywCfb1Mf1W&k5j`gnM4BEZgMiBu87u+Sd>r`*eLujcByn z;s3^}1WtupXiwhnn&9Uax!xKf{}Z!;A+iJqbWV(GT3N)!%%z^oyAN%sPrM?Ahh1;4 zFcQ{BUJD4w3Gl6vtTP8XMOLCjo2nmi#kKgT>Q{tzlK`gw3DCbzd{+BlM(afV+^#s% zqHjYvuU;`Pb$3?R?Yg@oKOZsOA*_@Dg+vEDq|SO+ZRU9E(_zO^&00giAB zy`GSqYhMr_wVfA0ay4IyaOz2hOFJQoWyZ|mr+Dz|J%j^za*t(YS;Y6irDVwu0ruEe zUSyZ8WDowI$Ar>L^B3&9XagIyV{g*LM9~VV|a35sKjsBH7UF{k5iPMgJBaR3$|+qTfT{}21x zr!8HvjiGuwmOE+bsJz?jMe=;a+_7(Sq>1MZ?@#h#r;lZQly?V=G&7=bHI5Yr$a4Jk z99!{vhP`)E{)IpV?08e-yD@0D(y-%BRPw?n9fE!-c^oY0gm`!rvdt}dRc<51H@PuB zY1ARwa_6--&pWW4Q5RbxQJN98aQQB)Z^Nre}ww9PWqM9ym-g^!twfZBjq&}n+Z z^?F#@-MLTDO^RXJ(fA-_wz;pQWf|0X`bRV*yvr-$MCb)iGI(#U!>A$ed~A1-WAfzr zz`oD5n{8p=+SJpQg94k2VU!7S0?pWhJ~QE(yy9et`9H5&v}h(@0oBSpfTwG}>HyiZ zSfVni2XmFFSB^Fss#41Tcw6ap-AaSKcIleWu77>m z!JcyVO^3pJ+qMo3h&(dpOU&c@c`Q&8x!^CVc3jr}i3{j~tgPOP5c^~^7~W-t^b~4d zilyk`LeY9oN4&yoX*(@etLhRh;bG17xA&jQsymv=-w$M%3RYw}sNu?@7bZ602SeQ6H*eHhA-xk^?rMVFgTDzQ&|Y;+;tsRp1foc z|9rz(Jw;CtdA9Hs*H-lOElCQom7V_;$VQ5iwDbPt^X z5nP_GWv+E7&Yb4@z9N_Kcl}QPNvnZqokWwn?#c7MK?tQj%WSpkL4;B8Iq<0Uwm@72 z&vqsHI~>yl#m{(hH)iHM5S$B_F@;tWKzDXydBZ4S9}mc%U^*^#_Z^XrGb498$!q_< zi>;=p=$C{BT`6Kd9};f7^FTXmADeDUNwc+Q1A!Bp7oIPJ6`(*Fr}0^IH#0tNBALO( zr5`!y4NgmS8MARsmXVRlvY`IV+w#r{Nk{>YgvE*v?{KX~&o@}t%(ngH(v6<#)<<-A zKOI=^(y**CXW`W)VXuAwXe$^Z873m|y!-aS`rg-Q1pMd3*8xg_A1})!|2!y70*$nD zF)9-~S)JMAi(fuwlo+-jwWMI66f8R_FDwmQJXBo%jZq%QF+QrL=gHdHK4x0ZcTzK~ zpS-#{mOSt#mtS5yB!BX{M=(y~qjhlS1%qE1HfYbowqUoU!G#=FXN$sLnaY@Z0JY+x zq8pS^cu%D=`6f_S7@7T`c?2o^o;Vs8FL2Q~6}qW)b-?*6f&SnYBQvz99N!715O;0@ zIRu>Z)km|{>BbJ*52JRO@WM%;AIf5**Dbml#`7mq&5d~JLU3tYc1<@ehu%%OJ4U)+ z?`o3dJY$0eDQ0yx0WQB$g2 z+OsN_S7ld^1{Y^hAGh4EB}86tle~L8E_yoUqLm?;s_pK0r8}bf$+}@t)+K*uA?7Pl zHEoSn<`z}FmYr^apbNPWq6{VZQ-WNGG|ITokpwFoYGIhSBr8-e^ON1;4K-^Nts`}u zMiX&|_N;0#e!#Z-CvqQ-s0A0m95NF6-duQ3RoZ{I*NL-nt$F~xICI!v9=IFK^Mt#! z1V`)llkN4?owOk?rgUjvestU(E>pImy6E>IH1gzI$**Um|40XpZlDL_A#vSwAix}_b+H{sGga74Td-H)6}Py2Xs9Ax4;iYM z;4F+}vsmI6;s?_SJx_E>>uo7jXlKb^&Xf>R(5*0c&!4e_6>06&sQ-;g{Y%Xfh<1Ll zRa2V3W;_&mDFm=&aTe#Q&1>cc+AUJiXbb9oh3OcUbuYy8gYzL);;uJTSA|Qd459t4 zzt13&=WE~LfZwRTR@0~PwG3lsI#Wr8SaxiSKU`RyW~%!s!U-DImhWi&x@##Mkm&oS zVnmfloD7dXN@dpiBS(nAE`L@1vCAr49n$7qVEA0xNxG?Qui$;W)5DU0J-d>_8JJmB zEgv~lr-tC~ZXNg33I$)QQ+af=taLBgM((2vh~FwiY;@OWV!p0FTRMy{R*af)YuKJ& zAnR9X3YlOOa;dgixsi^)1IaWRCNKxn#}KilUnIk>1z5lNS8*u3`Z(9vg`+2tG!zAj6F++ z%S^RSe$|K3PizrKkJ4oh)D~ zNE3Y4cTyh4fe1ePSWVqxvRODlVcPosa(Mg2zx^@&HimC4ReG1=>&qKdZJ;;HmVv2e zavl_}MKje}So>qEORnuouE!4I3^pEpTe_(z-0%6kBgj~&N!1eN($9kKEosB&|BDLw z2ZXudg^rcnnF-6$-o-i3>JMrDk>QTWr}rO9!c%GHM#vI9Nsf}uBn?Da)S`=gv@<;u z(sH4_CzAF(ck5K=V$Pht*@XWsD5U%r>8IqY{TQBTcHe``lri=CvLZ{w%XFb@#yO`J7Bx9fW=~XpCAe1Ba!A0|@-X;1K4HEhf5?DcK-d{}q?Q)mH zZ=!jVniY?5LWCmAn!n-6vpt*p71vHGO!sq4GKca7TyZj$*L)Dnf_c(*XoEh27-LCOVFmufB`Fx`l-h&bRZTW zW~-`Bty4~oi4z@v3Jtu^+sMWWInXPuelJ^{eRzYX_7Lf7OHp{UecURb^JVv|alwJ6 zVSen3E$_P;%`SuQp={j%O7@m7?oX?hopT0q6aZ zuSkZkeysc1z4?ecTjKz?+6~#_yiq&b^^CL63&20`(ARoRGY3L+PrYWyVG!q9Tt#M5 zO?(P9#A28w!H3C!gh?j!@oCdp`Uu39xaP{@v%CfjuweXHk^Q`jdmdLH3T3cm&}qM^ zFApo2yNWKm44wHZu>Dy+-%yY<0g+(4TphMZMa9~ERZB2O#4vYEm)fB0Qtj>=ju5Lc z`h7ih#o^u0NhxXQgc3($m5QWGj+RsxtDI@iHo0f!rGAm`D*W4LmOM-hQ}bs3WPZ-1 zE$W*7?kLY@xH;v_TXmo7m6I7fTcgd8azt#WWYer%2~UT z=|+vv&N_<2%GEC(6fj{v(ZS_9jFRXkm&li)OA{=~L*^Nti4YNVPdGEdhOTchno4 ze7<$B6Vq^8Rc>@gGf)9M9PppYpoXMoun01JAg#!i7|hddvkwXSSK^E$tnkOlsTCVT-c?RilA?sq&mkp=4lEvcN1fkmypSMz zb8=dpu@#}DonPY$Jz-y$#*-O%gF$+!1m{mgOSw6to;)!wB<5Vo!?idQP_Dv!{;9s8 zueA*%&-Sn-P9v!?f~EcuMoFZT`uuEAb~gp3fjsYlzurPcz?UF0GO|C9AnuhqR6aW| z!f?W@V3Uzc97X1qW$;}B+O@mODOhELa2UvyG@8iqtE<>uf!+1AuMhWp(Tfnio_jeC zz@v0TZT|kEPV9w84)X&_EDQ%gi>9zba_>tUCBn4L23JV?m4|uwFnLbEUyAlnDF11r z2(w4k1i87Iq9^!!JS)sRg5sse&0q?oMYd@jlMb-Ma@M;r=+-!QXt>D^g(l4?2N4glB)l0&ow77>2 z1QouP==XxM|CvQ8p}-=Fw%Gw3d*AbW6=6ojGa|_Jd<>doyQ7Ij!vV_lFD$%aX$xM- zOe#$VC_O=~zr6Ke%YN9-v>@Iw{cCfX$`PuN|6wD@V&L&YejUEA&!}J>Kw7sP)`Jhq z3}{xe#5LdZ+4yXwL>)A9&B-uv3?X3FEam=rCiNj1kl}IM$*5xf9&DU2qnSUkhFAcz z`WI|dHG!>pw*?VOpxH{6GwiQ8B@eFdq>ba+wb?rR&4R@>k7|pAoK9Sg56*)KMK09Y z$hWCPndC3flVTBMMpZZO1!SH+GS&W%#l{MlC}(FFypBH8u^FjU%A0NT@UKpFsm*R> z23X_@(vf}>K~(Q*Xtv%ZYL)ddGCJ3&etu5@14bgNUR~DBa!3U0j0+MAX4mz5kqH?} z_Kkslw(kCuYdyFyKsE0-x(`$N`mUvHCPsGMlp2cEhLW{wgd`f=nQzm zxP!z7L$o|4Xg$+o*D)l5MRV}1lYzCH>?xKqnM(t6faThuQf!!*b6}7M_ zJk0SVFHZ+ zcDG9lGnSXxWXpiQl1r^Zh4435nlc5J-Y{tl#mzLSG>@HOOQDI9#c!^V>D{jpMCLD@ zsE#w|r^zjpGBeae&1Olg{Y($@e@(u6kSyjG0UXbEX=t zi9iX@Xz-rf3i*B4Ea2e{aEWX*I9a*RkW=OO01t!6#i-u;4Y8;^hrmn5&#FSHJed(S zcoV{(6e7?ePAvpn_&Lf@EUwnvfs}ys0Y#RsF2-)J*~##w-Cr1IJ88Mm? zIJ@20N(mcJla_ZaWq0)@U`K)7RyKbxvnye+rb%q;N}x%$s1G#G=(J2p)XX| z(3?)CDv7;<$;Y@f&;qsLYHK|CVq3Y8Ei-MMN?2?#TIYl^=5M%oS~d}ryNqk1$g-6y z;n?*~=uBZWPHd2^7}{Rf%HHJikz(wVwsBh_tqq5#tk>GDgtk9_AJ0ht;viCgg%4_6 zQc_zC4h4`bk4&WTuJ3GQ0DIvyG|v&B8PBh4Xx3d8r)7+Vi?$lXIWq$V`iEkARRC0Me{E!*>>peC{hp1ALgH>${QBx9$~2D4*Gn=$Q4N+mo={Jt!g zW7d03pXmgr1#}nqXs)k1bs_ZsP&l4HR@?MbGd$yV+sFqzXu5Ebyj{1vWt{o*K{(B| z`0;(}VQyU|YD{#!szNLl%$=L~?nPt+QaOM zVT=79jxUHMM76fAhaCu5wVnY6Y*Yy^Gp#<5xxZOth3P?@EA2I9Z}#u-T&83sHaXVIwJemymbDN=oo znY6E{Jhs>;V>Sv0f*=;7=kwl`6+EefH^9;#4TW9;V&$>8l>`9?iR6gw*zDATV=~oWy--jzpow~Cv9m;+Z^fG9=+}CH)UW<`dZ~d5Wx>8RFs&{vfcd3|x4C-0V{zTOk14H| zy!o7lSs8#K@>@?Nk9U;n(2+)S=Vwtve|%>|LP(x?n$}q&yl$6ZTr0gW8_A={e?g?a zHSW#&%J_Db$Abe{Ph* zL_cncMrhA49eobyolAY^*LSlPalykDT>}3DrSWnAl+NCB9Ke0g71EuDF>f!yCcVM- z%~37&Xe1MAWQj@$VJ2t}Ffhoz8b|cn<{wxsa1T9YB!6C6GlTL&UszP_oUa$m2)_yZ zGMs*{ThhpxyMf(D4p$3vOOWUToRvu^X{oKnH8gwL@qc4MO}uz9hYP<90?IME(}yfJvRN zvyLmdK251z2k7jRD4&SNQn90CYSrQ&3tUM4*~z0A8@GejjK=kkc0Pcb0V&D~9C{&x zN9obnV7os}&%b}FnOL!H?bBtkjgFlyB`6twK3SBbHN~XM7C1~|*7GM*+7X!*A(g_+ z{46||&*_9lb-gYN^&*qMeqYwxhvE%!XNMD&oAo;!t>t|%lvp9=wHS|oq!=fztQ5=` zK26X5*y$tagiJ@U`(5JJTRJFnjTCV4Ys7Vn_wPfQ4^!C*Jb2jTm#LgqYJ%ayl{!m? zfi;!w`bz4;={Sbby5T5)ddIZOlU8jDf9={ID3_>qeJv~6bv1q6`h;WSvUdK>Cb4tz zjK1w{X<03@FYl!QnV^7(k|a(~GGU`W%X5W}u;K+|;_WP@igFgc8}J__1n!1tw0u`1 z289mrmV6jfjD`Yoj@?(^J?No&)mGQMDvB)S?BI>=)WzaH;cOvGpBpc&Rsq}>3VikL z_5G%fe(_(C!hrr#A%})}F)N;Kfkkj)N+!W_>l^ZBtjq^ISg=YW4>4A3-Jzc*xYhTeR(zA%Egn`8JbsBdDCR?| z**4Kvd-rrdP8DsdZevP?rJM z^?2rQ-Gxb`f78=ESLy!>57q7Zmq`RWnOzH1+{LOFLgh3lzPYMtFv(tP^Iu+k}R@C%?kXuOcn4`ab7 zwf6a*;XAH5E!fnZaW}f#!QdLM^9!UxEZc~lPSjAs6@;u3;?saSmd@+;y`OV6TV74? z@%%%BEJQ)l^1L`dB3SasZqIk;u_BAa;W(DZ)uKCUsZ#szcgN)byNy$_gjzh4z1=OI@8@)*pjNCs zT~WBbr7ocl#SIzuIp{l+uIS=w+4C~K3s1Z5H}Q!CFgBdv%eutv@;1TYsjdlvt7*e} z%nZ)7@A0kXW}M7pKd+_pG{khGgmOjR#8LR}B7XAF;O@Zn7Nxs~A~QbGx*hFHZ!dvt zviTfrcwYq6%(YgDP8_w~GF*=Y+i$eA{1LuhIWs~Svb_q??G*j1mSeGSEY%DY1XAX% zNJ@Y6D0BkMnVH#$zJ0cLwXo3qre<)QQNzk=z42$+~(}#rmNBQqUFP6#Wwb6 z4GzwgiuQ!**Tph}nOAe8H|WeJnj4FzgvqF7q1N?dbZBt^$Lv#Vea%mv>3sp!1Y3x$ ztH9W1lZ0*e>yHq3o#3T$?4nh+Gx4r5!!V#>Rrg=P$7Qq#$dm=U&rtML2%k(Yk>^}=!LiPB zDEHS~78m+lIOqE{xn{bp#BopApzw2Lie2|V26-O z;oR}nA2~xyYcn}O#E6%Hcr!7b>Tih=kgD-8os#iSz`MDL;=IQ`;n|NL&%O}GrSn@h z^lW@GlMcKim$vCJYx7q1cOY#avMv*0@7o~2xM^A#*G>*3%mCblQR!dADjkmobqD|* zwuK{H>9+abu&gj|T@Ye%zNK1~29c%8baJzX`uhuxJf)zn9CdyZ^U`m7M~!tWBJcwd zkhe1jcs}OP(h13gRF`$Vkn8k;b#$Z<{>1@nsyed~1G|T|1!bnKOneXUi%?(J-#!MJ ztb1gI#MSKyMU5tvXApM8;nI_iLwCf*faK+uB|Y)#kNPZHrWe;W?nhiT5*;Ur_8acL z*Pgaic1u)ZrQl@nEiLVRn~Qi_A4akwV04-v!cyq-uTJ1x#({kY8EI0Cf03rVDw_pY zM!#NEVJX7EGN}V|Wn66J7?!(Ix1fW-6{f%NzwZ7t1dIE^IaXz^msRIleeX75jk{bD zh~Q=)u6@W6PVHWH1h~{4a50b)M60HY8suUrl|A~{21~vVL@P(uA9`V+4#FC9iYTdz z=bEW5{d*hiC=exM_%dP~;^0tDKs!^KZgRIw6+JXHNZV5%HPp8$F z>fn)bh~Q;WGDaTYNPf6^?BILiYD?{Km~waSYDp?GMh}0-upF=2^dr&4oo;rLAa-ND zJ|P40XWZvl*BE|x-Kkq{(b!{?0pX6KN=7A09+S{Wyza}{e3w6go*(k;V+2!|W5{g=&qFh11D;9SpI5aHgm=)ke`S-%_L z$+oki&iTJIOD@l$vYZzK#99>)0kGSF3zh>hy=Pv^QdbIItoj~x$ zjA6NTIIZ`B#r4Kjb2s2&X21a>bGs*XTeEmY7OK*v+O)#*zL?T~nsm{7+OoLG5w0Qp zpJ#ou9B{pkYKC(VNT}HI5lBG3O-h(EN!|iFn&1-gj{ay;%_C|?dCJCJlF7r2yG_Q0 ztDg<$t2J|P3R6bYZDP+PG{qplI=6lA}z9shP$S>SpV6+WubnT zjH|gtuZunt$c!Wj>`@M1&Z@F8WETUdezA16{mzjxS!Q7rTj*YdvKD2UE`xki5)5}7 z=%lRMYmW$5#r^Abz7}@lOZ@zikIQ!p<9#GQFaZR$0?6>L0CO`*>qAN@_goK)%#LPN zR@dS08$dA?6exhuo<(?W1yU-Q!7TvWkzH8LYZw(0&KSwJox)!{Q&F*y?qO8YU&q&MNkgRiL5XpkrFBa1V&=VLjchIH(9T;hZbC#Tsm=Tn{b^P z;+ojr%MvhA5CFxj!%7XwtderoV*w@L18Q3mDI3LQS9am*a8{|^)SOryECNm@E4!iR z3-Oq+GzFc`7); zf}T+>KRO6yPDJSZK2Wa(`YM0?=|OLX3MBI&k~wa2p{>88nSsexo^qv?;$PP-DKgv) zmzf612R+Ovr$)-^kzvhd#xZEzs-hL8OgXO3Xfv5ZiN49TDC-(QgyC@I{llj@{EPEV ziSSYR*XkZOR@!F3NGWSv{>Cd{Aj6^mY4r3Gx{I8%e$6a9^cPOU*>2waR_23@KJCse z4I65>40n#qlL^gc%=$nxPW}au);86N&`Nd>VM#`rMrd}aSmoJkYvZMoYP)%eV>LE$$MpGZR~}K$lZ=;bg^kfgsGcbLOwh=BzwqfbL(@BQ_N6*5ZqsIz*<=q zD@w4d)amHsYx7i%(4Rj+q-11pKZ|0Z6w;hpwkC*kOQ|P2QkKmM75c|b??B)aVM>r| z;1WktdU{sMx}R%xXtMDOjXL*6A#gq_=-09;+)yt}{k2wD-#0x(O&hsBjFgv`ci~Fb zS~=O0N<=7v>!Q>p@}12LjI_*Is!dc-aPZhHrQ2QgL4E~aDqg5p{L9T>8zhwzBIREF zYBJskKbHiLR(;2>6DwwpMOM(H6r-2BmjA^Q-!x@@x+-8{ln5}A+y1KRO0r^!|AS_S zn(^O)q?mcf>)(tuxI}g*K`;O2o#I`EKy8#if7567E~iSd$iy%4i&Vncc|+; zmUg4!e=NBcH{u84U?i~6Q=7)!g?)9Yey?nci@eZu;yQ`WJHD+}qor0>rozA|`4gX2 z*)^)nJg+2U2b6<6&wKrd2S+5BC$}-Naq?nQ?*J(5e8oK6#7(`01yqQzYVw64!v3R6 z{7ZBHe11u#3gmhWp-azQ3PKaj^)9#u>X%4YTg`t^o8)+k1!gsqd!>^9N+ z?)Z8l@+IK~+o`$M2j|^!_|LSZY}Q@7F>CqGx2<3deSDt90i1ZA#of+8Rw<0X*7z<> zP1=Df-nIYX&n{y9yeaI&Am+hgPd^tXu!|@Kk$27_L6sp!x@K zPCRVc1k^83(9zT}=!FvoHwh=+=Ew@y(#Q`KHs$$1Dbh^L{M;in`^BJ3i-GK5I!9jz z^sfmMlHHkd^3(l(!g5%2oOgl&&6)aX@yjz3`>`TSdyu--7h;1mvuj@pG#eDKoqBrg zhCxp0sje3{N+#)NCmuB;6!|#U*b!Uz!gM_A3*8YSb@h;~xZpkOYXK4c3Az`I!3d^J zx6w8Qya#t~EUu;d=L=!7#EyNNlUc%ZxFS!PKlD}aiW^j^Q5%&;-isdYAd!H3n*RB9 zTeiWRl7Rcp{H7fy%64R8g&lX;qwMvB_I-XcaIyIEAI(;n@vEJ0I^?Py7MGjwLp5sM zMXcY1Cj{Fikr#fR^FRjKeUv5K$$Kn6<F0!JEtR-!nqOD<4mM%PkA1E>O)%j2_k!U7=JdYO0njGaV$DCV z4Cy|RB)!4PH>Sp?5es(_V7`uLEs!JBmuFr-qjy6_cRZ=mA4n0)8M${ZW^M|R_^}BM z=BZuafA*hPrzpw3#=!cXi3;d~_PxIK1}PcHstSnXRLq`NWhu6Spf&LtR_nii$F3bvW^aIkF{Ew5}9Cq#;Au%a^P5Lr2qZ#=G^LMX=}>+d!(YC zulva3cnTD8ZD1kqWvOA%*(Xf*)D_F@Ka<0*b){K4v;HtNt&ukuc_&!9eD`W1rNJqF zqdf)8NO8J>*p&>i;g=Pr$-^IrSzkue{3IrMN57KFP#pCXf#;wjYQw<*SKd0& z&%`BTzw!aD55f|gOps@8=s*?nKhI<&#xGMJ+qYR;5g6JBM3}q&l)*`aLVE7i3RupI5xe1og7}%*5qUSi-F| zS+?Z?a|Mdux&Xm_>voNxNXnSxR}J42755 z5RA$#`|vsUe_OcJi&c8wmBP_l#ZPZ=Gd6GeM?sVurjX2-ntCX&L zzhwyxn3BgyAfphTwS8gh`f ze?Ic`*UUYYVD>iVRS#)9HH%l6k$Di&0RG>Nx?20`2N`X`Pd*uND%$AvN!gIulP}wq zcwl3pIG1CTx6hA_qDr@y*cIChMJ>?eC2~0=u{knh^vdD_wkcNWoykB_vq%NdMx+OG zG=;LmXWH2wRBEtS&ak_Q+;78i`q*7>J!CSWFQ2^Lc4-Zpt~LDvYWcd+KVo0i8I9AY z4W{lI^CFlWGJdX&Hq~Yc#`{R6##~hO(R!ky{IFq+m0yndm2m?bjN~ZnsB&gLmH??U z?l+GV4z-^m0I?}I?UU^MVS*9^rZ^Hhu|l8bHtP$aD%0suUlL*K=J*x3C<3c|rTLp4 zZLb^Gb^uD(oB}v|4viN}e|D%yWlYh{NqRQiaydEVD8jwJ8Tt2ASFlkeQ&H8_5RhLh zs;XUEC}+d~x`^4DNcJ~f1QJDc%yA_e>Ws!jyBCH-Yj&|}0?&Rfq+!uc< zAe9QM-X-TQU`1(!PF#z5ZY&nZn>Ei{l%-r^a6R1~$(eAlfcBK9PIpF{V2a37A;OC( z5lPHKSJT!t??&BTN5V}X!yZ*mJbOjRKY9=v_bkFm`~EPgjpjZnRIzQ=x+Z|&oJUIj zEo|Z-8BJ-vSxLadD^6XB?}GFMt0Y#lC4^r;#K_ca!Lpb1duRSRj``FC3rY-1j>Z6p zk>rbM*^$a^YPLX^>$}}FP`CxcbJ17ZHNm?9<#xtCKU(3K@`{1=rLy{SP+U?+jCE(U zsqE92Q}`=lLelh)BO_k)$)vuB3ZlM}Ehl0KGHsdq{^3o6wM|a8p327%9);)?398uS z2>7(OSJPQKl$8LrkWS&IJnJ>60M6f?JCf9Py)^+Bb*?2O)KKY5)qFNI zWI_LN!+NQ&UUlS1;n)5u+Don048u_2-N9CY98=(=*o?3eX#5zP1pUWubejI*=c=kU zECMJoTOx}2>PwtPisr!sG2c&-cNZ-g>r+23+5{tCD%IXCv0u5V7*@dQH%xvq0%p;p zsUtT_w@LRQN8H!30~(5DE>Y(i-NghQ@Ey;#ZHhfJ99hEDM8oUxcPS$@ zs%hFN51!C)%Gaj9!gK80o=j=>!f#nE*LWzoA|)}gqvE3g-*VddeyRg+ezwO|1`zh(6>}FSwW7nXb++rP7nWF5%g}`01Iw+)Rl@44Vku1xDHADF19JCKgGOt z`sx-cvc|_h*HYlm1!IBgnrvX#@r}7E8%;_{nz)bqn)D6PSf4-1GPF(Y!K9`Ma@Cu3 z9fQ*8$f4%8xTPB@IPo|geFRH`%O}jz3~ufU)t_(8;Lo%zCKgwY&V1gU%Z&WwD@;6A zMY*%z!;qQUF1PhKvzm3~cTuv4qp1Op?xc`WKpuY3WK7kqTjd1i)xkhe7|@$xymGa) zWNyq~a5(e`N4)vsSYd-qrq)Yd(Rpi&kX zAazWm=g(m8l)Dq&t7|8`bijJV^-@7P!Gheb@wVh%8uF1v{Hkw@uay$%;ihXPVz$x% zroE`Ds-oUu*OPj(m=J6XCyFKEr1z*`XHa-nvN_T98YuL&vjZ-g5lR)Y8DW?Cu;Lez zA0KDejm?T6FD`qOB9Hy%i!4j`QFwiUw0?|RI?qJ!wM5HTYvJy8pnj~XtNFO<NRceiBc&|`Y?g)nqeegJOR;PsdyRh*0>W4uxajGNEr$?{7GD+pN7|UH zxEbj{pqW5xtNDb8Qa4J+Z_&nOo;f^3^^=bF_@n&CzoMSw4C`lUT~iISYD^ZF9_>=% ze7gT39RKpM4DYJ7xkdP+jjw)r&aH6wB!qfJzKG7dzYhi*#pL;us4bkbW7B()%w;^x zf!t_lRF1z4Gjzqmk<$sJo$r2?1OIH1O5_`&8FRw}fE|8w}ZRGMcO{6fJ=4 zgL|&phD^VZUs`(D$9*jj^{1E}%b{G`B0%but=)9JInYd2)0i9jwLYl)pzu4RP>`7q zJF!Q0$ZNODf4wrTew6}zYADrklTcfu0}a0GtGSL zGN6QI9wGU7)R^``I+j)u!bC8Z;@RE3?H(Sd|7=g!V zrAFgjtIC4!hgJE<&mKwDM&ssL$KqOyL}4ls$SQl)IrqE(4#0><9=J2 z;b_s*;dR;myFL`!+56q4_TA?CNvf|Fh0ZozjC|D$3O@U-B(HFW&Jh>J&-prIm%O^_ z$i&I(i-pxz>!fb5E4eYGJlzT5dg3mA9`HTk5^4yLQINTW-Sc?tNv*L!Ixo`1n^OCj55#Xx*OXU5)0tU2YJ1 zE!s)@`NY?A&iUujWev3`iIF+&|*Z<)n|v;hae9a@+U*hTIpq@#V|Nvdf^kstm!3^oMyK z;IYx!QKVo!SCi2?)%0ZXYBHp-?$VIb?c1a#2<`L~Nt6372H(rLj??S61!K%g|ZM|?B za=WD3I`ri7;bDVua#$mNxwV z33m*L^IBZvbE{P(zJ}5$WxVQJp|I9cmi@rKO}1xe_XdvMuyyMsNs{<8pu}cpfZ!PF=0G6_!3L^GKTs%Ic^Z8Hx%Kwjo4yjPrwZq4zrTQU=p@CYxwoB_ zYAopX@82KE0T8giYbpU+t#+_00L<>5rLL{Fo*iJ6H}}_WOgDKJPTegdL5#8dUlqos=V7N zVAr1A&B(6Wz)Kn){^1FZonPR8{pvsAzd!sG-#dDSdf<=f9E@ej>gV76?0fjrM_%NS zqi48vM~B&|aVEzyzWLNie&wg{<*%MQ#q*~xacIvr(nPPhM*3yVkL{bGwwB+0_-TIP zuDxVwJj#k72*S-omSxfO%9x|6;7Hmsn%*g&46ueg* zBc{dDERQZxan?rrno-A+n{ zLr^#A@j7roaAEy$o6rG<{v==c z%!hf;?bH0tkykl$d6_IRoLlH}dTyB~j-BV<{NZ1-+%Ncr4;>;khHk&&J-1KuPY>_s zp}&2JSLc@a_~AR)I-XP2!S_b#l{KGz@NRCOp5(=2=P4_Hct=4H1VIo4;hn>V9O3=e zGpCqa>hY-`Kfs-PwgJtk@8|yDuh`N`F-G(I4?oTKj=ajrON%Hp|Mk-!;K951^2h)0 z1qrrk82!bF8!aIr$DR_VOy?1cWt=k(%g#n+s{{VB#eRfWb@!;LJ@XCcnirO*O zO8D^uv;5ROw*v6b9yr9|12fz)GeM`F@`cZRln3v=g{kqJPv3u#2i~=tnaMW4_Q}I^ zS{a>o#;<+yFaXmNt>zdXIz(-o<=!&DD+q!h2!im=WUdeg(%T;B*zv>h1Tl5a-f z2x~1m;Lh2?gI$Xy~YwJ0F=;g!J{yr)=#^{zBksf|&Z9Ui8+ecH5 z4Jmj9K@fy@7RH$9{ad$8^afv)C1qI#Z{SIiM69F~u9eeng)O_3Qe=q^d&mOIy^6Z7 z!#C=(3?3h)uvLYvs<2v83LWqg9(vf0db7TYaLzG4-obPxg9fik>#(QSaI=sn^uPh3+g)WipdD3(RTUS!Wm#eaqv=X1%Bl*!a6Npm2;pej zVRSuTAFHG60TGj>8Oe3#p$t4Y3`a(*D&nWC6k6+%g7U3I8%Wa;-q#VoWMIVgG#aZc zb?Kij&@&xv!cd3f>l6>D*5oH85NmP`-?LD+1(Gs3jL;gF|S zhf9qK-cd^q){(za>7$lSyj@{k-zwgWB@v^D)z3z#yU|OCt}K0cVpSw?0We-;tE zf*=UOb#wCMNs4~od*e|`QS^IQTX}C{N@*6BmRam}(H^nraHPi2O2fA-i=uRXG1&+; z!>zk^HbUjKVsK!Cb?Vefdi`Ed%=CK&Rb6|%OY6F3$IN!N?bwE`*NR1@peQZfl`7=6 zMVcC>Cda)20ThbbTF#w0HwdudD=18FpCnHctWWTwST1Y&wcq1b8^iHqCzzj`_tt@P zmR7sX)YeI_AO?lCHQkl2C+*5MV`Djb5C~*#DqOxi7xW6Y)-f?TMQf~$v%VuZk|ZO` zaQ>jxdI&3TEDvYafzW!`$vi2l- zXBuaH7HtS;o;9U*hQVN4y@d)>=9fMwD-1d~5>e z)(S0?BwW69i66c6cWATr0m(T>Y7(Y8C2wB>&_;9Qxo23Izf9seM{O-L zGc!y~O#16lYr0GGtSnqW>9zaYx}>vhhFkBs&l{*jDMi&UICJa-ggk0-bT7P$t4eQ> z4uxgKj8Ul+g{Pi@mT_dtdaud4F4?~GHg?@+0^ZRIWed{c5!ZpYyUKL)0W{pIA_VTj4VrWo)Ldz40)c@ZnuMiH!+4R_ebp;3f?SB!-98E2US^k zuZNNKs5P!?VaqZ9(vvzRZ?#C11RI!9QPz>?c~tPab{kiv-gJe-nKqS5@LhEd$hD0K zUPHF}d*C01R@RWXl#t+EPhgDLk_M#|X_k? Date: Tue, 24 Jan 2017 11:17:27 -0800 Subject: [PATCH 157/210] update --- .gitignore | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/.gitignore b/.gitignore index b674ff367c..60755bf9e7 100644 --- a/.gitignore +++ b/.gitignore @@ -13,4 +13,5 @@ packages.config windows/keep-secure/index.md # User-specific files -.vs/ \ No newline at end of file +.vs/ +*.png \ No newline at end of file From 15bf40d4e8a7e5bfd4d56d49f3d19e3cf10672be Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Tue, 24 Jan 2017 11:36:04 -0800 Subject: [PATCH 158/210] fix link --- devices/hololens/hololens-provisioning.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/hololens-provisioning.md b/devices/hololens/hololens-provisioning.md index 30385b6f81..cc45daadb2 100644 --- a/devices/hololens/hololens-provisioning.md +++ b/devices/hololens/hololens-provisioning.md @@ -101,7 +101,7 @@ When you run ADKsetup.exe for Windows 10, version 1607, select **Configuration D Provisioning packages make use of configuration service providers (CSPs). If you're not familiar with CSPs, see [Introduction to configuration service providers (CSPs) for IT pros](https://technet.microsoft.com/itpro/windows/manage/how-it-pros-can-use-configuration-service-providers). -In Windows ICD, when you create a provisioning package for Windows Holographic, the settings in **Available customizations** are based on [CSPs that are supported in Windows Holographic](https://msdn.microsoft.co/library/windows/hardware/dn920025.aspx#HoloLens). The following table describes settings that you might want to configure for HoloLens. +In Windows ICD, when you create a provisioning package for Windows Holographic, the settings in **Available customizations** are based on [CSPs that are supported in Windows Holographic](https://msdn.microsoft.com/library/windows/hardware/dn920025.aspx#HoloLens). The following table describes settings that you might want to configure for HoloLens. ![Common runtime settings for HoloLens](images/icd-settings.png) From 3cb2cc660320260ef4ee578e3787fe8437ddbd31 Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Tue, 24 Jan 2017 11:36:58 -0800 Subject: [PATCH 159/210] fix link --- devices/hololens/hololens-provisioning.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/hololens/hololens-provisioning.md b/devices/hololens/hololens-provisioning.md index cc45daadb2..9debfeb7b8 100644 --- a/devices/hololens/hololens-provisioning.md +++ b/devices/hololens/hololens-provisioning.md @@ -101,7 +101,7 @@ When you run ADKsetup.exe for Windows 10, version 1607, select **Configuration D Provisioning packages make use of configuration service providers (CSPs). If you're not familiar with CSPs, see [Introduction to configuration service providers (CSPs) for IT pros](https://technet.microsoft.com/itpro/windows/manage/how-it-pros-can-use-configuration-service-providers). -In Windows ICD, when you create a provisioning package for Windows Holographic, the settings in **Available customizations** are based on [CSPs that are supported in Windows Holographic](https://msdn.microsoft.com/library/windows/hardware/dn920025.aspx#HoloLens). The following table describes settings that you might want to configure for HoloLens. +In Windows ICD, when you create a provisioning package for Windows Holographic, the settings in **Available customizations** are based on [CSPs that are supported in Windows Holographic](https://msdn.microsoft.com/windows/hardware/commercialize/customize/mdm/configuration-service-provider-reference#hololens). The following table describes settings that you might want to configure for HoloLens. ![Common runtime settings for HoloLens](images/icd-settings.png) From 44a6668499adc779abb6757c1dee846c12aa3771 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 24 Jan 2017 11:56:56 -0800 Subject: [PATCH 160/210] delete image files --- .../images/atp-intune-add-policy.png | Bin 59508 -> 0 bytes .../keep-secure/images/atp-mdm-onboarding.png | Bin 75455 -> 0 bytes 2 files changed, 0 insertions(+), 0 deletions(-) delete mode 100644 windows/keep-secure/images/atp-intune-add-policy.png delete mode 100644 windows/keep-secure/images/atp-mdm-onboarding.png diff --git a/windows/keep-secure/images/atp-intune-add-policy.png b/windows/keep-secure/images/atp-intune-add-policy.png deleted file mode 100644 index dec973f8b50e40edd795c2601333242308a34d27..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 59508 zcmcHhbx<8m7e0z^Jh+A6o&nf_re61b3GN_uvphfZ)O1-CZ{B1Pywc_kF+f zJOA8Ub*k>&Rb=mU_sn!pFL~Cp)=bzt#W(0EL?{pl1pTdyqzVKAp9z7$!9GI-Ewor@ zI^YZ0Ugo_M1cK4|^aqo`fI$ozk(}QuNFlAk5a7bSa8Dk&`=?1t%UR6D`Jc&q z5DLg!Nij9|^n)c29kq+!A}1rMYxJ~k&m~V@gcgOS`qwi4sU*i*^@u#cQ2qDGi9V@qxkrz{X9*^R{CHnkP`NE3`QK+L zk`Q7&Ou9ICM)AMVw(C>EVGziBnvsCe|31Iz5HtVxyZ0r5`~S{N6=$#-_P-8!e?OZ4 zb+9AC!zA52iTf|kBq&QvOlwI@l;~ph!mJ}LOcFb4nxOe%wKYoweQrFk$I4a8~>hb-Ffp7 zKPnDNN~xE&ogrOScQ8x@cMLUaMr7tT`}#3oJB>>4rhE`KIRG4;j0C zHU5l%D7a+wh8=d+Vc z_l^C8k1*Ul<7paoK1;BA6aKRaIkx+q!JlO2uZ_%=a^LQ6DfkjplW@H8aJf|bosbvB zvJQGPgrd09_~ucKCLMpI@nlyP`VW?tiAH{i)@3kro=rYvu5QrQMI~n7kSCbOJi_4a zrE9i2soTvJ99!roN#JsM7lyuRo)Wa#%gAVV%*mgi^SZUa9c{`*_W4R_V$Fh9YRAtc z1e4d%i0|L`8d_OkIPqz_Vn2Px0!rMs^~-mYB4*34(uZByEcpUsnKC#_YOr$?<$Q+e z=|i@Em6aPF*GpebE4!8^`yt>qxztpjrwoxC1|27j_;%#@q!?Kun%a6H@Sygyxh&~f zEQFz-u{!$34GT^WrTHc(MKzZ>?LSMsGQLXT6m0oxpLS#R6bv3)BgyA6m10N(#eRB0AVHhzybhZ$qF@-XV<%3l)hvUXo7ItC!cXcDy9#5fpM|y%Cs)K>o-cuU!qyh1Pqb`a=du zgs@l?NQ1v*Dze7)m0vvyAwaO;VZg>c9cI<$?LNMO3+~qGTp4m*s`mH>N5TO7wMV@{ zm+Awr4>kFx`~>&TS`nSYA21M+^oHQ9;lhsPZX5=)=nd~+*4Q>$Z?gpw?cCW4mIUfjTAX=evc;5VZZn9F`I<<&%jc(s= zFe6+Jv@~Y_(>2@C@8R@Ypd7dlnaO(#@TwJ<3bZW(=zNgJ;5V{S6EGY(71ZOY?A ziXrjU?!wDp>%z$Pi6Np!;$7NK;Vf&(Wdb|I@44uTlnH*s#wv$q-yfXhwcva6XGP^6zkZ<I}E1JhVMohyH0YmRy(qEyyZNHF^^RB2n_GCKs z>j5Y=*2ZD*;(9~q+vcED{#VkU_>E6|6V2ly# z4bDaJb@~}452hCCbRCtp=Lo2A;p_O$+p_{1pUleeN^ehJJV~!9Z07k@dw8LAhdgt~ z>4r8C$HYk*2D*}GY)O?4`-%uZm+cz{n?ui z9)^`C&d|&k-*Qh)rkA#}kD=E7&=px4)446~L9hJSG_1_%>z71re;CCkZ1z)1_!t66 z*AQ&F!a$Idot2=lBjo9ZT^?1|Y1`B#;r+Aw${tVpuD_g0-NgM|i?70vjKqcs2I5V& z$8z1xt|ZSU0^v_lNR7n4KOjBypsUx8>ij{qdkw7EsE)zI2w+IhDu))Q7E|x>J*r!J{lib6U2ORhso>6Of%@~e! zB$vhLTf}E`wHEU*o8zx-zVXbza^8T@Sl?_?K`zcF2Ju)k$MTUoVfMDae_Bq_)^CFp zE=LW|2uA$sC)z!u3bY>M)4TmJ54HL=ht@|=|Hh6171&y_?K69$4#AgZcyEnA3M0+W zj1DI+c)doas|~OCQ#>~QDYez?bht$(3-i!pid@2}@qt4S_?hDUODYR!#CTJL^1v5$ zHRh!TZ;I;bdEK;pwXnK)&K98 zgeMhX1SHgx=y$z@4&)|P0PVFFNerY;Vt0u?w3rd1|Eok6^#yxBof;FUXC8Z7dGRXv8Rb5}467=+;#{+gY_uG$6La{AJLhDjS`yC_1hvNfv$xfZN#{&_} zH^dB$oTdbWo9s^(w@}6D-RCkyhZ$RFS{xm(GaFp(5drfj>u@=8tMryHG33L#Jv=lj z<$seRdTD8Ufc0^Am(f43scAK)7CcdF6@6*;!ti$Nr6*ooB)FTr4zG|#l>W2<^T%r3 zNB)mYru4Gd4Yl0}ZBqnVw;gd2Z3KDas5o`eXeq#bbhtia>-($n)K^IZVDP?xT2VtTq$T15 zn|Wg|0?zt`NPr4(5^1XbqzSb41Ct8bXDIo~-5d&p(&84Vd&bpAUsb!^Ge;olz`h>v zCNefnpJOgm8wC$vr&H(|epMiYC^<6B#B4Mv> z_J7j0I$&hSIrMU)!ejg?r{eb33>!`0tltyAq5r ztc`?aiN$KcA~h72vRdrxSI!y-tqqjdks0Y}+T*8H zr&4hWKaE&_EqgS*3S1ZO{D(H+)2MtuJd0Py0|TGV6*UWDks}eCEBn>y;$B$ zZH_mQ{7&|ZqvPZ6IS`I}ZTgU|IMgMY)Ge0x5M5KJYFPKHfFW_#qT&5JW`vX{p$XC_ zZ=o_>ZoCU+`4v7Xl)dtK%kXJijx6?mHz5XC&J(JLc9?gLbiAc0D(DlR@N}&bVF^o- z;y+dZVt1pZ4SAO|Y!TA})%w+TC3SlP1b^J+384Wo2yJj(SUpW0337GKyv(ZJURvlE zFMJ#iRbSZ^j05xGH{KVK5WOdyXhbR)r~HDNFWY(1r~- ztV0?2Zr`xMjQIP~FCgmGdfE09T4Br(h6TWxlBpIR*aeAVoVD>DqU9rux-XjH?SJ~E zjW?&Rs{c42p<~i4@%*AzpP>V$b!?}8Gf6|78P{3%g@8D)PVwr~JDff&4VnRa{I3Q# z*z5Ra4P^8M>MnPK%)2q$&Xv&_2BopVIty4>fJQlHNtys4v3*hHlU=IqMjwfY@%v`)6Zz4tM8DSlu|Wh+3*ReK z@zOLN7;2#mdwwo_$m&O{xtuG#ILdsRt&c3ZHg?^Zhcn;#u4;a@-u(T&X_>m3%toW? zcyg8W`UxHlo?MM1>+D+XIc0lcKH1w(32WZ+AP#7An$x6R{)-=~Jdp3m|3+Kxr5X2d z^aT8re13d zvTmWZOBO|v@bu2a04$z*brh`B{ExxSCrz9Ql;^#uX^$M!b7yjg5ASEF5P3kv(35#1 zB0xO*AvIUAcpSNXXW!HU5!i7xwTsA1Y3{_W^4f~PpcJ&|8jYx5O|B1_k#Z?P3c^1B z#x*s+T?*SjV&>FleyZzpy4BJqxEr^zO!Zc1&=?f$FEz^WN)=X{FN-o|Aw0V{W#AVo zt7^I!>`)=hq)U~qO?rK125b{;+4nDcD~z;nPI_TfSW(_-&VPiZRR92@bRu2HiBusa zwYko!mhFdkTSX!m%U1WtNVVYS0xAepo`Q=%--(J3hGGj~!*0&>{!V@jxaGY1xqGG7 zc*ZhYZG?EFrbdj`oO)9^W;o=2q&`E*R)Y2Ry_Eap2;76-uomkWv5PF;WtVP{Q?c(y{^9RQ^X;E{61cyQ7nGCWNCtzU_6iwe|OdFPSO|~E!@O- zvNEF7>4Y1c0|uDdkZ!QUu(w?sOjXO~Vs{@EeXqfAE3y3YRWt8S!s`N-CuqJoQzc>=6329DvAp1Z?|0yls`HR@z$GEm{y=*4^xhMn-P^!_8k@fV&*ydMsqmszmTpg|+4} zbO%L0sYeZ)GXbE3c zK`aOGf+&FKzryKP=j1E7IqD(VVGxZsUj|H6eDZ;Lptp)I-?hOYmUAjKh6nO*IdP3( zngF8Y9tqn^0M59QI73y72AoF&UBhR;AmHep1&gpLE zYY$PWY{7eF`P;fB^YOf2rC%GSqCN{&PXe=Q2t=8GW|9+iCi%B*nc8QBqJb99rZCP; zn=2=EfhZyKGQ;~jWd5NVo&%wfi!+)Xcx7(z%kZAm`DkoZhl`=gB6=deElTTx6u5IL zn;CtWpZVuKNFQp9*3(wf+ph-9t7ujCK&VwhJTjAXR=Q$*O>*eSFM8!B=20zhn5lfz zB9b~%KnW}sTuUQY;Zn)G%g5E?Yg;bG{0#%|)pvJ%JCyOuCEd}+N!p$dhhIIw-jKb< zbm{;xL0zmK1wz=t=lAVDlceHGsxunD24KUbv-b6n^86WyRac9i=f}I5ziNNJ@?d{t z6LhSUpYy8#15Wqmn_|B0ho3l7i@gj|b4^5QYE$C*I1Ze2sB&cFes6_sdzqRUxE5XA z%DX_g{}lZ0PLjkgmU0ug<4~?EO5s^1(7W?p`PCz9es0jz4FMYX)9Z)f%m5Bhy;yBe z{FyV^HK=WjuNbq;5L2-1E2CH|@{DEqQip~OGG_Afnco01S-mrtgh0C;sdx z`9N$zW=I8JT583WY75N^gFCW|0HtnN^X?;MpTRA?+Lx?_KEpsv_(z_Az%E(!qxDX8 zaQ3#zfe=^C((D-`(IW<7+8ZmEgI^yZj&esvN(Wp|^g?(Vf(mtcVt9i$af@z$=Y%oR z+T%UlQ*4izKx+iN*X)9p5wI+|+hn{xaC*#5Y-0=P8ZR8v!A69C{{a8_s>9fuj5jep z%1*JMwYZk+f#e(u?APixDi38G@-xpOaNwl?zn}@e_*!VNLc@%N7pY<=gq#U!S-`I zq1ERbDu~v^0XTf34(6(KKu{c9*n`oY5l*i*MbBpVQ9tsJv+aZnNZ;5 z&b0wP|B5IzD`By;8|eO>D;=CjX2VZ6jM!9d{{sQMqGJ81BiCJ_yp89%MU5zsSmk%o zq&;69_J?%^caOs!(KAr;WrM)L>n%wXNoC2tCCitlc$6&%nTp6d%AfFrh3(0FPzVC? zUwasD?f5}_2iqMzefaT^)+Zbab5H>F(aX>j0;1?{ut5@mq1tXo>&GIxt+h0&_GP~@ zHWT)qSDDkGwfToFyPMr%L0YR9Ud=ijuw&4e$dGQ9SnkJW>LU`%E%m(Ddmj*mgy(*? z%cjL+2RnWycd9r!CyjpieLudpSrrD%(qqa6D_c+DsJ~R8m&qc1&84IcmX5Eh=zA#~ z1mLhvaLv;{lZIM<)ga7y+t2~yB!~5WCP-_}n-FLK0`=8L~l<{_J-GY$Y85 zmj7D;$K)@)MZh@A|yFm)AEp;><~ImujKCl3%}m%@eu3zII-h{|5pVRWfPU zpg}nP4}UKC{~!MR|I^x7_YaV<{$*1})YNsO#v9zSRf_pN=q2;syzU+CnMRyWOgtnC z`5$@z`xqr$E>>GB^ubHl(8h3VZi13Zh^yMAE-?WeAIam~$pquKklHJAdYsi~Pk zju`phpw!pT#M8Xx{Xp-yzrTNMRu;>BUS6KTdS}=n5eF9+-tE=#@i#&oWu+JO&M#pT zrFWV$Nuw*7_-`4P(@H&rpH`vl*3pV9^lrLLKgMe2CnYoU&&on^Nz9_&eCjn3%lKiX z*53TkgM+XXl}?rG7^0vV>hqc`^q$2pm8Y40GAV1@lh<1JP@wA=b7~5Y-19^%&iG)ydSF${ z!NCD>geC_m!g^KEy1^M4`9g$&CZoFmj(JiogIos4+`vX8^gm!OQ+%W zCUPa?(MF%Ov+|pn%KZQ-pSg(0*Ta)Ois7Ab?wb2sR7ugD1?hj$d+w~r9C@ODUO7fpFewthHM=8G9CyTTn}L(g0}~ib@2sMVf8w03o>wABsQ-sPsWrqVU&X&)3<^iFs6CGXaug{{8_cOh}I+{ zMB}KpaEwbnmBfs!tKwN5T83o&gPuQM3uSJ1@qv*lh)_uaKcIV2IojaPJ zTBfOKEZMw+&22*lIy1SjqLX4^a$w;;geg^2C6!@;XY&=Z@ZMw#qIV>WuBm;?2s;5i zwVPf5qO2|D6PX|a8L^oUR7m4CoG7rcZy}#i@1%y)BQPJQQ1Y@LsKU=CQ+zI!t~e~E z;YzoKbl#E9cF$&5gu3i$Nf6v{-riLu{yafF^+!D~M`n?nfX5}Hj;?P041>mx*k4iW z>+4w0C$A&o3P|i`e(F9gEsf-HJYSB0+d8?;3)&OYGny??;k2z7NiISL1iH@k@I$UB zKDG-|aqnBC#mv%2flX`PE#^76!ADqRq^eq`HXYBg@NWw6dgS%k6>%DrYof`V!yd)m z82TuWN+SmA-z6nOEQV*A&EWO)e<9h9dsF=C`?LP6Gm|W^LO+?RS1oI(%7J_NOgU*a z1O0JS)K#4Tmd2*Dnc5r%&c_^}Y%T@A!&B1}4_huGaSo@7&(+fpZd4BS!g&4DEYFWy zUW|Tha1B;F?_v0|wHoqkAW1oUj_jUIqkH2cMt7A$$y$E&Gs=gIgwP)li1u|*bIc4; zS7^@ZX+NjC5}XmI@$3!d`Ta~D-y5Gsobi(j=mH|ufz&BDc&xKIqmGg`Wm;P)9Qa3mnHmn0`vAm*A_m;OHdyJdb~{~>{U z4l@%iZSMxdXnlP>;nG#1$UX9t2tf?Chcgi2bS2Nf2}E3(*-0LJ`#Vciu#7`kk3<-- zWnALwOZSl}M{|?H!1yKA45Ec879oCpmAB5Ju%eii%gxK(L1@oJtb&gEN(3^{o4?;@ zgRP`Hsb0jDt60^I+AO5jRm*R*lls}*mB_g`u_Q*%qe5cC;7$+le+y;$Pm}q!JJH=e zvZHupA0bzBRXDuOsJ*2y*~o)stf8jL;Vy37q#hIX^+rzRXAQ7OE4N^tY)ia$r^SL; zi@*xjBB#Ob)%N6361D0`QZpg-(!q)I*!X|GlI=7g;+H<3mD1F5n;=8%gW4e{~{B4j^vk+RywAzOJg)VhToiSn=2nUVZz=MiNQGumK?p<;ZQ-$9RnF_$P7X6?w0jauwYXOvVi7p(*FE1DD zjL)`)LL(wNfaiNk&zBzJzRqEm5cmcQ`4v`DmFijIf&XbJYnfMm9g4wnAZ87ZMO4tD zs_!*7#|sA~5WIUfTnOhkvWI>Ex;v@Q7=6n{;cXW~6)HQ{mcG8;D&|w*#-pTK2W$?J~p21+2hUp@T3taLgGbB@0iwFvX*<3&jLgBGdtIFZTGV!f}C0Q+jl zs6whdB@6HDytq*4&z&lgj8BxU2wqfEkBA!9k1&LKsf>(VEJ)hl2u6=7@iG$O+>WOp zIoZuz3R}3o^-lW%h8H~yHP8?=mVgxbF$=zOmt@b6XWX|`-i_u(M7ic@irY5DPqL7o5 z=X!lh|yi^MX-p^t-_eY!}S>6vRJH!)8?YAEi!;s}T*CTQCUd zx+b1=Y=;@XOM1rKR`8|r%U>zn?YwOYbkZ*t&*7Cy6@Qw?bn-C2iI;^l#ttigkwA@u zja@yvxO)=u2qWrc(97~XjYvxU$tugZ{9Upf+IQ!TR5eF7RjV^jf1Q&X`bJuc9B!y1 z*I|Qw6>q*gSD8Y#(#u28aj{2C;OM#62K!CqLf{yWh;(2nT)}>(?=`!KAde=gpuc9( zZ);{@IJ_fh9!`reVrtZz!p+ucD}Gq4C~Cf=--OEZdzwwE);>sIM65%oeD5;hC& zmUvy4hoRG-?%|lNO4&8PU}FY7yuHYGp5JumJA$5k@O@neEye%QS9}}+FIqvmkh|Yg zKBYG_JlpSt(rK;+F+~^`ODFoTOQT-`eho_0|Z}~-; zlf|PBaIIh$bLxAM61-kkMp#mHKQ?s|^Vs_e=8reL?uT=^ zni}|iGd!8WGj}Y`naUp&Kc~TJNJ>stnm*T;9_&vDE%ve5#}8LHo(WObBMzZvFs_mv z+T-wTBrzby4M_NK;dV5!C600wIe{X8&=|bEz9MEK?^T~!N-n;Flp`{2@?wfZ!>ka< zYLLL)9eduVSxa-nA>Ako3kGc5dK?C7E+@|x?__EJjpmxLVmR2_EoiQ?eC2ZZA{U#vi0~) zoeMCyE%w>`3i~=1*NzM(456FPD{EDiPN6X(M!-L12%%H`&hnq8;vd5;i_w97Y})go zE75e3vo1jUnGYr46SgMCDS!U(!7FpJrz`=3Z{nlAYW^o-`xz7Ew<<2jce>}#Z z!^q71kfphZ{NpFUy~k}p&a3a%#lO4E-R`3%p-R7$spR|n{Vhf0z5id337h11(zIjO zku6w`m`X!)#p}66RQ24umE_{TyO$;ugSnaEVlOBVJgS~aP0p|INNyk+KfmbVac+W? zLZb$WpRqa~PvRm2I-P?f@`8MMPIZ^hk0xjO&*`Zc0O=Y(wAu>RC6_`UEN!|iKGRiu zGIkgf6Vp69CX?Z`pRskRoR*sq2!)b~h z9d{I>qS^~HxzLYPr^hp4XRcA4R1eDuZAeHcXSMRU4)vpf15CT2mzTzbJ?5M1x&^s1 z-CHfUt;v7GaWZ$H$74S+f10oOmjrm3D}{tc($X`$Atxs8-TcEH)7BaXv*pP5gK09R zdt4r)UjB7c&97Bz>VFbDmMmr7_wU~6_%F6o6{&q6&cwjp#WsPxnVoIz=&IL+vW6Rp z$~$sD>^Dq6d}9F@=I|@#{BwK~hhEC`-vMmk55PxgM~CEKtv!+^$2O{~>R*aUQqlxR zh#9*3)`#W#(v7puF1aD#d<2{U;tR^G+Lzj-KOgQc-ag33|GNsXCo@o3CGr;D;yGip z7~;q|DB`~LLX%N&al!x2ILTBo`A?+(bclRTkBOkJ%*Y$FY?qKIO)b4SL*svD1O9P& zvm|_CV)$A@Ap=F}aYX4gk-qI$hyT?~k~xE3&aPUKUnmUUaJn$awO>C2bygE=(0`W$ zjzB(`>vN_BpV;ob{PM#XYZp zz)GzZ4Gj%+XDs*X@biB&*OjVesisE3z>pRfhm|Z9)=w3U|LDK0|6g}rcO=c;G=M^} zv9Z4G?cy1SU=8jE6+KuaB$4Ii<y1UoK ziVs&3!^H~A&ILH8WnLl7e-b6F*}dC4U*wh`Mk z`Y8$jg*Wbw{8Gd490k%kUu}g=LW0J_!}F4c2JRh_ui0=qvYnkBr1ccqLm5u>93^Os z&GmSh$%cn}8Q?klol(lbz(5LmdK4)sDPHe8UWm)d;LJ>IE*bI|T<&#BA-@NTu75|f zKKTA;sW$&C^w+OntnMcUAbr=C>+1^vJf19}bQ+IcqQ81iH0i|d$a5m1aETC%w`C%K zH{#5CM$N1nQ#j12n3*wr`L$kv&cHzU-3xyN)cH%uf6~K`4W~3&icY`^;jvw0tz%(g zQn)z-Bl6I41CTI{y29~ProXzX{^{+N$zX$pg-s=q&{l;81qQD6Con*K0kN>F6C~~j zz6I~kCu}?*|7}f1Xuj)Y=}Ra-9)J(m$SwyS%puFyS;@LW_gQydwb_rgnmxV)UfSlmv~aWJ?7tPs}`&J zE#lH*_2=_b!$g(cXzkJYG5aL7`_4pqvyKEHH{ftqshM|JsNz^owGIyofZnMV2I{h) zHj?863gAs?)zZ8m-a;}0)wbiO;=L~h2@ZoK?1n6y4~v`c9X#)y#`o1%(x3R{Sp5&k z5CV=~ytIx2qd%-}8TE55zt9u7WJ$cP2rcxlmwA6I;4+XJ&kVqhC=i5`%8}bujkL>0 zgUrxLmQqaHSzP17IZ3gYjLb7`>sg4oxp@X6)X>n7*YzM-5vzA*2A`$*I!Ez+T3H!O zdwV;OyRn>oLLv#DmWordPaD|Qv*j?*o)VGVR5G=PhX>((AtT6PZ z;2y;6Ocwh&``3fr%)3s1JK5$9&f4ZUF(Ja{tjq6g9ZRWBWStR)HhuHR_TayM&;Gb} zWQ6Z&=-)mLp|plE)Rwz1w7?VvC}xqVwRTk0R*Bpy@@3who2Scy0vP>^p|=p<>Y%3@ zEFK~s?^TKM#-}Xz2nG%3{M8I$Zmd@!iJ^APPNafOQhIvi`%1Ij_`0sHF0OvT59J0h zKXvN;tF31C(mhUA#WI}GO$E5Pf**7uqpr>;l%PP0lKGroLtI9G6cs&-5&R?LK@RiZ z5({@!2$diPHiiXp37lsg_q?8La9~IC&~gGJVHv##F;_C>+nVe4Rm|QgOTD^l(kVa9 zr{gycK8~`ws1^ZLsGtx6(h72UY-X_x!#fDTWxf{xE@hQV3)? zZxswh2`KX8f3G?DR0}+0##E}?Fm2E(BcLjq zmi?7a!uX>`xs`3BudlDPF%iSSzs`Z`GnR9GYg}_u;m!I<7aECNfA@yr(e;5nEXcLa zUXMRF!P8j1PO#q9T6u_mS`~-LVoYt;r#fXq9l4<6sDPjp5*DS4F7puFr}{9b?%kh} z+@F#KK*cmQTM1=oEJ#U3u_z!y?hZk^yp4V6;iSo7mfQ#Kg_)xucRO6q*I(IoKv*LQ zRs$p3e{m0G{ip5nxw$y-@M1f$4ykcpzxp>e3g+H=TpdLz=SpYS)e!(=DIH_A@7dtF zy8HL-vb*7c;qFD|tQ7%UD>CF{@S1WK*8>mKd9Q&^-t%b^I*C0k748Rq<9Nl(iQhsM z{P*$arqAOgp3T9EEXD%xV?X)$jnkov}^aeRLd z{yf)K}u5|7fB6`q!?>ZYlYaL_u_gV z%_s0U>ZzQJ&KC}H3$@#cUx3+TEZ(O11a7K-rKS`1c`PwxNmy1C+8XB?QwUm~N+$1I zf<-jEoKT*QNcW(Bg#wL!^C@?5}{-S8`R2d7NQQ)@3YIa?AKZt4ZBkf^^ri6qL zG;Zq_PS{hIp`jLDS6w>%t9saDUf(hhHa0fkH8p3XdnP9*S8p!%AWcT5HK^^RAZCNz5 zvIF`0y#sEC5Q(9=O<3L!Du{1GfI`Xk$=n(|D6Q>^ZN7x~2B~`HOm;3?mH=dYNE2f5pxFg^j*icg6?m3Q(Jk94`^ zXisTlo)Ep+it|&A5dcsB`N%5?P;j^%={!AFGR8Jjrr#4u$N_Pd$LdiV92#0XI*M*^ zJ2tw#Jaj*9x}r!LXfW?q^|r{5599pN0{3v*Ppz_&2WAa)Ok&$zL3$kM##05@2!_5m zC?9ogVtmT&x-xn-c9qOqT)7kd>o;H_po!#?JMsF`1O-EX&=;sTH6riZ+mXD@_JMr2 z+*8D>!vLt}FJgpDP`n?dtD0?8i9Zw%|WCtc_|reYolUZy`Iv6T=^F zjv9{3?N)?$U37Ix`}>Jl2&VA@lw|X9qNAgE-Hu2gE}{y|NpL&Cgi1Uj9{GLuQ!7nl z-w%nbwxeeHzK(;k^xErrV*S*di6Wha1SNe-*M^6S5uYm2o3kXjfV4*7YFwf@kOnKr zWbe4Or`*lI6K3)v{Lt443A^&KEXa4U<28u3K%g@E4fW!d3$7N}==CmoAyDXgsk76} zXNVY4vXhQ{hrWYfU&)=cA(6|J#gL0c10O*sSXPoSNB111uDp)(VS;_p2xEFf$;*Ck!H}K zVv3~jjUcTb)kHEPjD9BM^`1}w2ht==zeNUH@$~AgtfXXyyZ}Y68hy4}&4G`lYxTFd zs3`PI&p&TH|Mbz6*VF`4JOii{GAf}_4IIUujKD7h#`B`Cm&wp`WP^%Je6>SH6gljy zhL2hAvtFr`dRLoC&fH)IU$S}InPVgye+WY1G7bthcbX(2&+zf(=q{MfMl>t0vkcZO z{0@izG$hsRi%xEe!S4}^wa^a->E9FHCYnUsm09{z{w6fD`fXq)`z<0g=GW#d@}Wlp zbif+hN)TSg>T%B$pJ@`_bx&?w*bV#SbIr0aM4*|cXaCg&%`SWxkC7$vosGXUO8*dRqt(}4G0MV*9r=D z8f6_8&sa@f8wuZXJ9g^L+pc?E_hOB8U$_MncwzD?KR?xfywG>QznDoA(r8h3(?k&l z5pjZS(Ao9~bjfW+%Eg5%ky$q!kk9S?{o#a4z|u0&^z7nb$LT>{WMQ5D2KTPFVyDQr zb@jvDR=^F*0%UKdYWB2=q=H#?a!^C;tcwp(cUy#DK3D2$OEqN0^SAP+5jAYoI1}D< z6!}38)vJmR1rLk|*UKbIBv_{l)=R3+S#cy0HL1onD<2MYUbjmWPAUQsH)#$1Fexu} zZ{CL{;Q3ptCM5>NO0lnkTb-^c%N(Qkq_hcz?c+1SjJHx9$6d%AS}#)!$0u(*ieF$M zys}IzKELd9AflgSR24r<`QRfOykb_8`p}r4x)%0w^~|(dEAnP_;Ob8zl19~vCIPXW zSE*ebyl3-|7Xnqk~UdV1)kP(ysxVpN&PB+~L3Q0jh0Rh>x*6->iCw(+o5Qv`Fh5GFLe2ta$ zQxdl@s<`Qq}VK!9vl0Q|LaPzpp!oK&dj~Qw2$~O zWp-R4TaSHAB+3yPUJV0H)rrqAvD&8^NA|+ByTd{lZ`4moG6?YEfJD1_2a^5ynK^r0NwE2)FNpkE7MPy#Ms`9bg z8!sEnA1ijnD>FgVM6iCi<|XC!C9e&pL^-4-?B9fG3YlnS(ZiXQWOXIn)E8IM?L&$* zVLotZ6rT+WI_u4d6beGK@bn?&nr~B-alItv2ZEiSI0`}FQ98<69>V|p`J<7=@C+6t zAp(L>@m)WxT7WdH``Hjr{)}Ti$>rsxy_;JP$A};t5PmMJX#>D&L3}}sJiD+^`}gxx z9fLAv_Jc~(3FXjZ!uSpBZteq);80B%+UtQE7Jp1mxJ}98o!3{>A7Fo#NDVq7GQ(bT z_mQl;wm7T_eEw}z_>F))5@f>Kl(pzXYgOqMf7%No6crbCm)88|l{w^;-@DB*`~$^) z-o~G?1F;O8evY zJ~A^i7Znw?KHiNya?aC)Q_0H7DXXgo{rThQc{yhe@f{s~$IH)Ov-`Ak!nK2gNS}wZ ztY^r`Z6|9TYg=2vxo=`zFRN1Xikt2qZjVpfQCUQvOVK_@0d5@;xN>P385x?9*dpBg zek^VD&K)EIiVlpTRaA-s@hiEd1QbZ>;JRg#e1PCiY0(8_fB4EQF#et!zK+272T~kb zi&YEfyj`#8NihNgqAR*=)E?%uJRK+)Po@cJcZ0)kv6b6I%#O7#{!K@G{tPoKO}GKz)^ zteL2@5;&0N*$J?*moVuQZdTx)hz5WV$JWo{Wnbxeo=Qzl?LOXKJ`4chb=>l}eBki@ z{d*ZDr8f!+3Y9%X#v48pAXkAB1nW<+a~BvAQu{d_pf?P3{-BVM{Xsfj-nu1YL?k3? zPR{2!v_`Y#hU1qY$PUe!wI1yQ)CWpX&e9ph-gnMd99#pI)!y-1#&oOaVK?lFIE2%d z>_RF-Sos!_2f5+I~RpIrQVm0yAJtoeR? zA$FttlIruj`i6#Fr7U3rF3aci3=F3om?E6FXZvL>>qkYpUU|5m`+-w{AVN*^eh5XIBAPSc;F)>PorjPL8MpIIXnd1cj z%>}{;4-a4UX>oB;NAOQCH7T1^j;&1e#4FKNt%T*v8#0~?g>Ih#j({#@Cr{_+d+LXR zzC}0Cc6?N=s_JZO^Py+h6F-+%8a|3NsZ`vcWhSnq{T6gcHG9Q`DbeFBc9SoEiJrm> zVRdk25`J9P*-q|GVUH4lL(h+(4-|Q+$`kujf6CUp+?OUgwL?5kcP4de?uaLgKQNsK zWQ_g(PF?Y*75rVCjnJC)r^Ijh)^1U1Uj5Dzb!_l>e3HL2{-Z8tD<|e*0h z?tVLnx%H-WYn(ojEdm`rnv-GE;z7^X+g0a&g%Uu)c{S-`&YSlZM}iqET@^O<07F(! z$+0vAhLC#`823bX&FK3?={C4>c|?P1ni}gl|DiOVj=8z|AyX^Twe#HxeugO^+J>E> z*w+A~MV_BK-`$;!6qS^8fX-9$$5ZlWC@B633F>KOG>tcVCF>xz5->WFlz#Q5ir5iO%ux#&DTV8KE|pFyJJ4ndC37Z4M&#v}r+ zXpq(YeN@2UK}P$+$A$H&0XGMTD?}7j)TrV29@daL`!&FR!R9$7vFJy;>`(6w&H%ju z^c@5OSW6NZ@RtF2|(?J z3I&azAc?TB@Z$hBczeKq?*)KH@#Goj%p~i@vS%!4uDFY=smR9v*Ig zckK|GLyIs3XgaX?B3u%y?sV1|$Qo^Grzr~Ew^3b&oBUw zPb&As87qJF4Wj06nUPxPJvFTfjWtE%2lO##>alEFTU&WWg~cTZpwOyk4(2M^>{mr| zZ$Z?+1_)6AM%qV4FqfB?lLbGqzgEgzq6`BHoRCY|*3w!KnDmGG$z1-+7kZ;Q#^rJ1Q&e>BJKEKa4HH%Z4y$QK5`O1rl$4ZFurl*1s!?u4%=Gl^ysnm( zmLc)X`2_{-D=RH?P;hh0J+5q@ydcE+S38Jo<`siZy6CICQ(~gCBs`eB{a`@tcTVC{ zMwc3F**$om1P&3cHHw&rh_qyP#zaO`)OV8j?MgTvgFUzbl2TG_Q&Uq0-^|+l5oVh_ zYR679($mor`&=YP-*PCb`f=HSNnuGT(?I@vslX)B(+*S{b)f)t*n|HJq%!1{Tq5VE zW#bs3;MG-wT^B7a0*K4Ieo$8U#11QVINE@UMk#M^;b2VipOr#D7J)+pqSGG1(oAcE ziHZ3Ju)!gvt@t=N{&#ntfgwD1EoMV^FceHoL#urMu`f1lt+*Fj^P49A6rx!0fIiKh z6CD6B_e)wDLq=Re!mC4VKuUtGpEg;^1381I@N*m0AD9WmC!`Db5B^&)*O|4FKD-w% zjFx`8jB_DklA(#}($^WZ!Gc5uunn^2-o)J2JEMI6<_VNXDE@C#?^7ROVwj;mE5WJD6idgw*den1As1D zjebEeI4B6=;NT#CM(8Nxu7$&*m)=r;6d59kOmqC2+8PO7=+W>0_u5VY6~wvvtu$ z8vZBKRm662#p;bqopTiBGvmUXAd3Kr9oRf1E2*i`xN(X>6|@lUP^{4aZ`QE5vNsao zC@k{&W3F%v(pJhsnvlQb_jXU2sv_-i6PS~I0&ExayM~`0>)&1fkupq(H#T)nrY|_N z$iEZEc5#56y$THdE%Kl{BLp53YOhKBV^T{u2Xa~>ty=E?8vY@+hGH``B@n^31ISmxZF0M{7 z{64|KSDpY#)%6{O2Xk~xxnEvWQN+d)wdT?;IjmA(7-vKs#trwdM_Hy-5q%L zcF93qAMCeLvivz{Bs^Dk|1Z|w0;;O0c^|$Yq6mnjfP@0l-Hi%T(%m3PNQ!i$A|28S z0us_8-5^p@(k&n$A|P?;<{QNK{r}c~eYw_mm%6TS?>YPIv-iw1&oeW}yKL%Y-s=pO z$04`O%N9-q73uH&{FUej9=cs6q2xl&A4*C%jlGy(70xZ4=^7($n*3eE6iS|Ue`K=eC>G4tYtV{zw2nX&&TZeP^cyr5D9WWe$G?B%02vY;UjyYvztLxN{TbRWPES!v@2$ic*#6k(j4D{W ziKy4b*flMKWkEsvs;%)GcH02dIP5cv4W;RA2?_2uNbOOVj*?IuvEv)(uz^*-#&0l7ah}cR08=u8B1|Tlw%p^- z2U%e+=NgpPLX61i7xPt)1-L>?ifPpkC3iK~zU;T)@_TNQU2{?U;M%J^#H07Z`8z#X zQKKIRwg2PYG7RMPl$yuIckWUxq1{s_$)L$3kbT%|EPid;?bPagrqY%dmEEop$2AuXntJNxpu` zLjITVk%S=am`^}Y@3;1so@ll58k!v0IS2@hjihfBE^E$m3W<8(C_SY{j4op zIsF;XvBsM}J1m|)Z7MctXLsMWprNI06Lwa*n>;P1b;-~T`-%?&lO6I6<6$R3WesO|D0jXi zIM!hEsZ9z#-|xaq5|rXzC}M7^>ThnTPTz47Je`Q^Bu-?`+()Kfp1jsNMc>%Ya~2-cU8MgezMJat z$z}>)g!4Pd+{ob~Z$i~fxu$*OJje5&(pa~6u@KJ=Hce@h2?8u%R=KCkl&@{oVDft` z3I42Dr+XQ%Hn~Dt_#>L_+iez8;nTCqQ#=l{FK=F)8cLk;+IK%A6ZRJUwR^dg?(a=6 z$*Uq0z?pin&QgQfIDr&E1h#zJy~kqtQd6Q_ky%!JweM$$3UY`9wviHf9?b{Dj~~b_ zE%w?IPRSo;Us$-mZ4i%~>>7Qo!cGddgL#UC$A z81)D?Aivt6@A=8@t@OtH9;pi}?{Z1CY-`5#xnZZXM~3RKAA*Ow<6_fWP49GR>5;** zcyCo@v9lW@TJ!Ac+3`Kia4UK1RS7|Fg55`x?P4CdMYD-x`zJ^4{2EltiPLQp3sR5A z-iDY~a(16SVD7d1oUYs+6f3u$>QFg9pHd%q^OZlvBZ{futYr7x$@c5HErV6c&5`U9 zCsd6sxXtX(T~TQ;h!fb+FvMxNd1t zu%X{}&UQ^CAHX{j%VwvBvGtqRPyiF$A z7+T%FPA3sWepougOMOUaa5Ro0{FMg3-?zWqoP3IvoCjz9D;O!30mbH#lVOXh=j1&s zoOn`L&6?}Up-cGfMu9Z<`E01nKFWP=n%|jwtF}tqt@x-3Yn5Mk%Qe%o4p$uilaX`h zY6I5t%Q=yDoy+t$P%)jOE!l}0jza&5O0NHEM z5^`E$-Wht?YtAk|FxzLjW2Tii$eic{kIp2c-vr~EP?O@pnZx5phMRaJ^S`!~)Z`e3 zQ63>8HuFPwLMIIa7Y@|3?P_0c-(`DzqR%&~z91HnG&j~~S@6c(j^J=zICSv9ZZ_*^ zJ)}6IX7iDrx$YnL`GtEAiv0+RT)dtYUgp}cLOUe>nejb* z$44@9SHIS8nmc1&AKl*}zKB}jDM7OP28E}*82Of&{QYm@r5oh}gY51tO5D7aM&3Ht zm~nc(oVZwW=yRd(_4LgZHM;XPM7mx1m7&nm8^@;NHR7}P*mEV%rTu6io4j!DxgOj; zhu6y`pOe<4X1hB+uQi*i1u>W_po4dqQfXfPSmf=e)?=Z*p4Rv42N>Fy9_!M0T}<7p zXF>!zD1^z5q(YqTYx@f<0ULp~ctp2sX(bCV&A`VYzv)ZRIqs1KSdxM(>dE?{u$P{@ zDvQUiv!117IHbR3`BlOaXAD_}q!M144zF<=yz{vRdDnV!AJ6*%G&p%t7(VWWFsRGQ3}_>hNQQ;kWBQvU=B0!h6 z?Lo2w<|HFc^I78bZZ7%Remz~WjT33vTdb9~c-zOhwtvj$GMy5Y?e_*MY-Z4$HSfpN z{@I%^8>>JpwL3qy;rL`d)wLgK?`TD3X<{|Nu)8Jn=b#!%fi^AR)a6o~g|#0{r;Wbr z<$SFcXLN2*b@6eP10M61ISL|Ek?a*Ri2B*=GPYjBNZ^Wm&)3sVed$C&l$0dF2(?wM z?}@qhn`2ijB26 zsY`v{L?s*y*a9|3Y>8Z#lec7+7pBaWH0%j{zI$C;!hGI36Z-cT;yeg`769v#sJC~d zCzfmoj$XXZi*0<}h=aNAjaihWf+rcI^>(;|WsxGI(E&GFy$j_%K}RCPr@~r+Z(?lw zi1FGJ`aD-Hr?xANK3f7~f^Gf3Qwe?gCMspzD8!8XM3)Liwpy1_VxuuvQWw({tGhZ{ z-4~87N&b#j@UwpZQfhM7X9I?Nc#A470+nA!5$Hp9`yKz4Awk&Dagq zpQQFiprE%<@A}3fUGnF{yHb%}*#T_DiRhklOODNi$6rgY0PLKTROQMHRctZY`)DjX zU=cHl7HL|C$-?saTPGWGd$UV&{RZj=Gg0Sd`6v*>K+}jyA`k7 z`=;%S*Y10mI4+RQE`~Ut%gq$6M+&oE{ew$3`Cf|z1B-rl!*)~d-!S1&=Ux^K&edvO_)hJf z=%}s0nm?cS19upkhkxo#V22BX{k}4;Ky9OV*DpDY6|095^*LF|PExPpQ-?DuSjazr z>rLAZ@G`>Vt|I32;;%4u$ow#UcK>VX4}|xjB;m74j*L$FHZCLz^|nmvBzTHi-6OWJ zeE#6*MUZyubw4y)J!Z7ZGA}ZQJ#cocJJVys^ptmV6GQ{;9Aq zg58AEwqaxe<0tVYSB{?r&c@feg_NfyhG(5bLO*ZnU#$qM_wG=B!lbGaMN2K>{-|en z;pd!G)`K~zecg<}Y&xfP?a{-un;ds|8L-bv{;YpEh?pr8Ns*-XlAO%{NN+c8?X^3O z{2jVz+&IkIS&HDIXyYCBE=~^Gn@uq+Xqs3^d?<_=pCMjbyTitKb|AELr?V2ny-vO89`IFtH z#?t_jSi|JzBC&i4eew2=EM&Tr(Kz+e{=tk-!Qv(IADvxYse?<9L)@1>KVm8}l0J{y zUyyTzJVQY|dGe%10FNr|#lmtJEjLf4(a()k;<&ymv@C%P9pv)Lcc_-@MECMn@=-SB ztSv3S0Jj_Y*41kDbwXld|JYdIO#@dH5YLJC2^GZyXm6W7p!!K4l*KTQKYMnJRX80e zO33ydY{pRXiqOKp9s?2*UgN%s!s;g}>lL+LiH)Sq0oU&j{GKHbk7a*ymDQlOf7bgi z3nh}XIBg*%G30{OzUh;tkn{ygwfhDJ@SJLyyOc3Ko{$iOuEEL0#bG_hK3sv4;=26R zib>wp<|D)OVD`Ep z4X~f_+RJSt-wygqV5T)FUa&?R`}rYR!111Ajg;vM$t2e(Q=_pBObaLpa&X{ENKDW@ z8~+}fnQ5k1>y3Sr%^;AtlG14f7)&ZE()Wipga};an;Y7E>>S9yGceR1)IfJ^6B>xl zF1mtFOMB6^;1K1MLQ>)t3h-Pw9v7AWJNC`~vM&FF7N zrY+ooSjntt8gn_ZOowH2YwK~b)`!uRNJz&V7#MI37&c8EO&zw3jE#K_`M__F9z~(W zcU=x>wm*7F^LHZBMAK*Jk{dR~ap17*rgH7#rO?P)cTaPEaAM0i<-J?!o5Jhlj|O0B6q_@G<;C(JhfgI9rwLzJRX}^B91{;t`)VNO>dgN<;?+)xxGf$K{!yG zLe@O~XtdaE5BE?0F`mzvQ++O~rRUt$Iu*Rny)!H;j%1ztnW0OrEeEuo3v@T?90}iX z(az2^9!cZqvpB_1*-9xZM>1l}IoHnaxYxe7CZXph4U;Bg2+A%i<0i)P=a>4|b@`G^ z;~KKe$%n^Gjx?j3ab{4d#^L_~^>cgS_F~ zU7o}qWs`xGooBUEb5$0L&b3p0D?7Ok4DEhxM63L!Ng8>pLn0+w%zaCaV-+^KLvQ~$ zdkoE&=@js@A>Q_w*@qewUFj1XX1#GWJ3Po)q5-;-my2jAZj|XI znl5x^Z?`-x!@50HScG#e<016NS?wDee{!l^S0!srT*^ce`dUVI7n57&_j*6WY`;2~ zsrcb@df3bwAyvuB#)iY2$nwj%axyF`3h!$PmUi4M($%P3N4+BoSlxSZrd4{Z91rES z4eH&?$JmImg1t<&B|)7HkcoNu61CW8-!(QiHrK%ha@6lx4Rly=f0;+ZxAsrG5d|33 zS%VC1UESTG?~a3MMMTJ7+(T&O5qdWohC&+b(5w?&>(IzZu*sLKO_TzRO3=G-O9z)E zZr|`7w8Q`}xLKG`3?7@gII&x5)0 zTpTE&|2sw~z6*TlzNe`5M41e809^#?3&isBa?1`e7W%MPVNT8xyTZlZS@waw^Ay7M z@TBU%o?7Vi4!fA^SD8?I<>D7tO-}DwAwMuK#;Juo0%ddMd+J9Fu`)9W9xg3{2#czT ziQAqUovy{K=F`l_)(2F2Gi8Ev1x}A{W~6S$uA?G$J#{7vRx)%|A#c<{7ybduQ{yPd zOd3XOtZ!q}F6Lkw{I1{P&yXAFil3ktME2ry!K5TeFvSW!0S46ck3~?;ZXxxJtM}6T z%O)w8zeZB$I><($rSx9;z;mFXt2?>2E%EP4QVyLQkYGCLWsg(lDbKnB_HZcLfifb? zYrNrbRz5CyJmv3#Y^*#cnN0D(yLF}(#3!1Mim?B4i&Eopsx4_8tA)H|-DU-)ou{i- zD6%aefWu@!i&_6orlkQz@-v;|O^x4KiV_3axb#I&3yj|h-YJ$UN)fEE9A+HeE`Qe1 z(E)O^w8TJ0J!8(d+`>XhSy|cc)y^1!#u=PfO}FEOq7o8Fc{t*tqEPdOCvtKuQ+ry4 zgq)etU)@RDWYW{o(dl+T<(t{g+AddNOux|GvVB%Y2^A3=wUojyYUv`{VW>^obvMDV zUY^(QaQ*VkyrltVy9w?T*sXI^d%V!D0rqv?g_81hsVkfJ9#R?pYtmkm)xyE1L-8eh zRvalSgD8qYW4G^?u0wVkIx$wHGDej4i$<;X< z+teTiu*)gEqXnYkuwI8TbD)eOPorRYga7VQY<&D^&eqRgztXa^rMFWz-Rn2p>$S=( zB7a{R)}J-G6&K)MNG+vAG71C$atpj zW9bjlTBE~&=#I-K0f(okxCU{zIF`Oft9tgEY$YWn&G z6PesAYm8x%ufVDV7VELb^Gk8drcj&uM0X73Kvx}fS78currnox|A8aian|2XBG50C83B%Gx z*U?3-^tP*dh7uMQW?^e9>7eScA_gdKXeji@xcfcZHb|D}`(Kdm_nGSI#SkC|($0A9 zKSgqZ?w9cuB}6_O7e7n**ZfJD_#ZNX&u440UtpJW>{0*n0wA65lx0G>e_e_|3NAAG z-;Q?yRV0R(-v0M#25AOOE&nPcAWP!f|II1VD8NBJ=1oLFn3a;a*NZND8x-A)qPcV9 z>b5KyywxeF&}^gqw_V{t*)wiGtIvLKa>$lQ9kj?^+ld(%P*GD;Lm*IJ_%h-?Db~8( z#fgP3Uewk{Q8_u4*THu2T`J!ox@Gf*lW4=#L$yzj+Q(L%wF)%8mN1Kg;WsF%j8FS> zBus(hC`dk1sDEo+>0$ILVtlj9iNH=moA*Xmw6js?ybHb8oRpbsI_Hs}Ez5H=KUC|ng3kmilG008@w8m0 zSU%2_fRONEs9mwvkG-SRehZi;(7&m7IY`4cT!oF_gG>r@QarWfI9IlB4rs@)I+&FGlS5vIcYTG@NVooy11+wJ&|(SyI#0&C4amY`oH0ue#gY z*@<@~M0VY^-e7pFQ|+InC9QhvnkKp~HZ%3=%+p1&GQ1!sr>XlLmx=A3tMJ#}-kV)S zA(v^RF(xZ)@K<8cf}*m=D{K<8|Jd`B8H<5uTG)p<17ncgfa(kB6@Mlx6?qB=a5^o^ zgKeO4(zyP)r@1?CY)p*NaIU(sa726h1d+Q~%*xh*=UCa(Xv=!ona`h>jI|pV!}x1s2&qyp{vWVf8crdvEPC!AyrddJ+-7ng=e_1 zqy+DtmBY@&gwF8L{g75vxSo%$|MRr@5!ZcQz#{8n2`dKI5EB#A@;w>K)gbXkBHyk^ z_8MYfa8Ma$S!YzagfRi?CM657WEB+FHne1-&O3Ew7CK4ZzyIPlA7KIlBF0My3+{x# zT!vRoH_BBQ0N(&E7%tO~GmWgu&Cd2^?#eDGARN3ze*MZ5ZU3$Xm7R!-O_KH^2zE*7 z>BryX-S5+a4wsliT3)u6G`P2{|TT|1Ixne416pF!G zs@-JQuXu{4Y5u-mo%^L8mSxR;zDn+SAaGd??OLk4MxSkdH}%|XB@y1zeCN8E$Aw$xip_TB zEjE3;ulm2-f-$jUP}a-6F64yA75n|40_PN4pWhwnlmx#cGr2Ei7(v7W*7SwEys4R| zRFEc-R#S)qj8k)AGoAgC4z)sZZK%o4O{J=IRQVnjWCPhho1Z3X1tPp`m(>R5%pEmv zx9fZf3HCGOI?NtVczSa{KI5X9M)}Tack+?c=QRKN zC}|>x>9NJ}D}hT9Gd@?Mq9vu|1ySyOxq+eD7U4fzDD$?E#37OTpGTxxo#iiv?f?7cxXUM+ooy4Yd=Acw_gQi7nYwS@QFq>7^KT+@$lVAxjPQpmzDVQv?S zsfwh*@NT3;e}$q`Km_p`Ju`Etl^l5bJk26WFE0`Bu%VLF;EI`v9_h_r+{oa{`~8qh z#?)=bMI)o))otcb*NlqbCkv;L7hKwLA9ixDpUz$>hcLAb0^KN@vDMvd69{jlqx|mO zzOhxOQ=q})onI`dVrV#%ejX!JAWPR7Uo|1LO^g3Tbw{f#LJbbVVHLH6{>6N`Gf zwjAD%bUidobe=uBaxcMczwP-INE4)y_Zn=oK~VsN{p#EF0Elv<+E$$}SrptJ090U^c<=Uy+&Y!q zfbX`Ij3@-6nJUEuHv04cQ~*OLv#9ClknS967U+D`8L{A&R!|@s{QyJ(_`Og!N|U5Y zFp8onI0i+UdeJJ{!v?MIp3jIkO63ip4yo%U6?|f3W|m+lCfF0JBW2Z5kH_=L-bnG- z?|pdS;`?`D&>KjG62A~ytGeW~-&{LZve0-AagR^;bU!(*5Lr(hderSee*CrE!-So4JTxUIA66pHC1Eb?Fs`|jw zgr`$LVAC1jySOqyP!5bkcao51`L`uUpc%49+=MCeb;@P+6srJML5w3gWybmLlh=`R zalYOw2qk(Ktz4FqzW{n!LBEY>0??O%fx%c8Zs?Go9z=I2;H}Eb%Z;&sUQ6#En=Ou_ z$?>M>FD(D?0Rby3DLmlslxFimJR!U@r24g^V`-BP+$(eqj39RCqfLelO(L*mHhX<_ z?E0Qf)$>c|imD=^;e#mOAQQ>k=F|C;H}3B6z)7eg(`i^M>}CpONr6&t-;tGp3zjK>BY^e` z^pE&t(taJzUD0RBn%I*md)#8on+V)DqD+D1J7Bo6U(fhI3@%N`8-Y)T>qeHUh3l4E z##-hYdteCs-Nk9A)^O>|q=n}q#8rbD|2X2FbK>?{&FnSUG%wCP&u&A?oWF8&z+96D ztqJmk%hsV~=q8kyAuQxA>4QR`=d1!9HekDzLWsQ2FT&Uh1`A>NM3M?o9u-53%14vZ zaVo|{0!YJt(Y1hgq+2lJ+&*N%&A}88jD%olj!?|jYXui3M#kXk#@U>+2bEKWN2_$-8@w9# zbi8=wxIgwSiK28U?*L5c$nf;G3?8t$>Z*md4`Hm`otcM+?)_y#bvV%~_X!$A;~?jF zXn6SH)XeO&z}&2w8bNhaMecX+-a$=uNKMb;){g9O#AYdmjTvj#^X?pfU?XBP@NWn` zjZ03Z*!q6XTfI~2>g;>~VFT1t3CfLKc$^*0SF|3SqV{MFM_;Ya1;<}gQcCu7%%TT# zSl7w&fd7)IvhzoGv1l_M+DHX!htd8`@AC_jo&CA)%U==xIOJ4O3YboVb6x_Di4e^| zAd;I|ewU8UMd0b1xHxn~lEPsb9UtFK$#h&O5nw0AQqHPrwcK8H6nywSwSx-mvup+Z zIiFpwlTI54YYm9RhYPA6(5aT~km@z9H_+X3wD=G=X1NPE#SU2IF?khyF*P-PJYHft zcUm=N3)9kMT-@^BcJUd%1hqZj;(ND!Z6+(4fNg^l1FRL-*VpgPJa1+MuahY-Qeh+l zSTl#qBKxCuJ+Ga=OLxEJzJ9C1=jE&RSLXt(lwwkQzv^N-g%IRlIsasT^6jnP_q%)Z zIak&jdiqs`AzsVLG;tG#7F!R&f+=K`4$55m_>{j-N8KS03;mKXMMQ2>Iam|;rRvg` zBTNQnB24%LE|Nz;lQc$ZvJuP$;Mj7pzJz-Kp_e~R$OLJ}nQ|;B%|5RdbnevYnenv+gGN3A#_dB4`le`2I%weRrfO_(&gxy38#} zt+)Ppia+O!eWL$Au(NDL@#HGBF@9Wr%_&hM5Ay82Yq7_VqJc3%icnKihe!S;eUvr9 zjGq_cNXyC9eYF4IbSyGLMK+eC2){eaX5UD1NRQiti{`-&Y{ZTlt!HH^dDWl*;=N=4 zlfC=B@b#@hm5m*N9O*|vp5(W|?kaa@PD+p~XX;*$$@oWVa|7NXNOn|_#`}=Si&FCx z|I=X+w69WD_A#xTR8~_%OYCXOKyeD;Bcx_%Y<=T;<=(}6NOi^sCg$Jk|0Q#>-Bmfk;_b%7*eD#r=G~xIzBZ*8ejntW8N$*m zd0$vJ#g6w$*F4RrftaPQxJwuIAP&iT40Eo&sD+$3+FyW<=0Meroqmr-AodcEelSnp z;-S_2Ru^c~SsY?G9V{Yc+5c<-9nt_lyHLnP@LxQp3EIBg8)U;*Oj_uCcLnkF%!DL) zvhEg8h$t5Fyak{pA&h#n%FmAuhN(oF9pzronFFkKB9HK)U?-4B5IXISMC-4Sg-?VJ zKFbXYIQ;5)AeoDfU}rKF)~MSRoj&PDbQh)A8;peUt!Je=mZP)LuCBXk*3({Sz_=q5c_QZ5dFw&|#QB?3^tLpY zX3YUVh*CzI3_v=_{`)_9N6qBS()=#`sQAl&s4;Z%U02kN`qzR8-=bqQgb@h->>d+n zK;`<657K^cUGKMzIO)qLfaK@bYgZcEz=FBc7+hdSs%1cvfze$oN?iuqEmqT%Nm8`qm~2PWz< z@BBOFvN^iroJ@)JXX#?x91cUtv6*OYNx_M(Hj=j zj;rPNZ!!Yr?_$>sZ5^7<7G5VNOa3htTTN-k@sQ7inA;6f^|v_aL($ zAU`&rxh1(?nog!Jcco`}=w$6Ce*=E%!dS7H@PXI^!+t@M+PlIN_gsTLU#R{}d>gQ^hEFk_RPEDq zNY1uKDV_P9k<*H;V~rEqL6G*gQ5zBQ1vq>$pFIS4_^+jGe@2{CJ!PUY5(ID7{Bf?m zBNMgn2N)lBB{s*XQ;LMnG5Bpsk2SAU3$DA~Z|Bl+vaPBxV#d{^hi_fI2+!?vG#@M9f%fhXvQ38sy(vg z$cY$V-wQE~?w|?R9PtpQu&bf2)V4qiSF#|Jh!nasC&L3>(-kr^1Lx0DuQgFRuWfT z2q;LvI_!x(^o)#ngyNtb!`R7Ip7FQ1#CP3w7uPP(096pxqF_#W1Y|jck~%z|NDX1J zs-7{p^vPzDS2+n^v>`1c11*u)2CoYMViVMIQ5CWfW3~O!j7><$)d?q(k~+VhWGMDB z-Z=2ged@`Zhz&)P>(7KC4ogzFa(j~$csWNw{aX2!DO)}WPL>-4$gV>;aSbS5V|{IH z5-7YA3cZK`0tF+2=+fw|d2a!e$J~`W{Qwr}`EmUe0g{)LmezWPTc~bKs6yd-clQ|f z8mLO4lIg^QOOBFLis}6lNy+F4aH>hcAM^ggR!qCw6rGD(K_`}0Ru55`H3sr?a~XeW zL4Dm@A-<9sU5hWhe{rkZXP!6zqFFxRacb`6G>m_G{7UP*%NEdqrN zoSSFITR&>Sy>WD6ETx5yIaD*z+edJC2Cltc0!Ml)Hn7-JAC}}6a*Ds;DrA# zVI^R<+Gqc%buIB(v)V@NR3Ezrm}sMq;3I-WWH^yyQ?2TQGKih$-9 zot?77r>W}VaF?}eooxc<^9>s*&hNdwWx3806hLQ7L#o#+=rDtGJUad9j zNysKt5%~xfaPEC^=5ebElC1Uj3}QBj7}8N_Kyfl=#L(z^s1pCY zo(6(bZ(zFo4nn?F3VLoO(KusrIj* z*G}ci=4`lnZ$_s`91GzKsz>}CShg6*CfU(&pU*o8e&FFSDjomvj2|Xz7Gf{;PzaFQ zfljI0oAv<03rsx?KJ*y@1?o;0Cw%F>Le{dLY;4$HN(5g9w?HE=_cMmbH`~f|sD-p< zVqyxJFv-o&$ATTFT-5)B^D%TQA#cMC8MY)`tQ@z_^$URrdk^D+GK{D)j}Y0_8uE&c zjs}ld6#@FXa@J*0XxwNl{85(W##Iox9o0T4C@wMgvm2SaAd-)xH_ z?NW3h=Rbi}6-H1<-2tNiUr&*5S+L;>RsPD_+6-|{f=N{xm6O=uKH)~Gtlj@zQSGq! z1&rlec!EJlLPA0|5+tXbxUJ1ixCt%AvmCG2XCjC5G);i8yo!bjZ3WJ@kS2}ktBA*>|IpOjg3ij>;>q?h}Vea+tXi#y&{z zZ^_pSj_t!RWhYjvPkn&@cxh<~a?%!MWn^$yfDie5pnN0tvDxZLRYOA@5Ey0shlhr; zqXJX+1Sd}W>5u5WieVz`e}2VPJ|I|ePtPeRXoUs?)FV&`AI#wC=H>=v%*#VOZ~-3A z&9eTJ3jo$+$4O2YWxs9>)!_8R`}i2gbbtRh!|}}C^|_mrWM9hLez^undWDW#`vXC( zy5>8QqX|z_SsLI64I0vKhRbTWVuBf<$y51$AwU!Y)&*6dNjW6V%xGaDr-iR?9T+P# zuQ1+4!7r$>gvaUtNXgamNDK1#O#s#;1lrRDN+MJDggnnI9%S({5-Na0f?E+%< z1{OehXQvVSZCH$ez+kzF>~dX*EWmjKA8ayiPbT6-0jdV>Fr=!`!gAIlzRDog16wB3`s;}GoF$Ul2J5Q@HNi$q|Y}nw5+SR3P&aD(;=TE_R~Hx z!Y7pSbRz)7ZG=uVA235ePx&>^-h*5Dwhbg&L9!XM(k2UT)O!IP!Ah|4HS*MH*dPJq z_dGD+x$ai)OMG05Zky)5=Nwi9zC>;CSIzlWGL}nHpmUda%|(m_$DX5bEb}qu*e^|W1^6|R1^!zAc%vfke$A8Z#ymn&|7o?+Kq@z+i&OQ zD4wBa^%^!oksb$-Wd7LXFCkU`W}%)`bL=gPP!){Jh$ysBGF}3pT8tp}CFYcPV4{i% zWp?41ns!D5Rm%M8pEh|7<G0BpL_cA)5w$d1E$e*g`|*&aWC@t5}xfysIay6wa1VSI6ZVB{HL8-Dm_u4r3t?$zk#Qd;87T5^z{Y?T*vO1t3(nm^kB45UCQ=R zW=w+Q$Yt!{i`ec`6R>9=<)kItdJ5`uMfA?qFS_uxevTl)f%vS)98U*CWP4fuI^r~_ zBCi`>EBt9soX}SqpTI8hB`LaX=l9$HkSmuu;8;spPucSW5_NDMNq>I7gzw=f_xH=t zm*B+{AZ!{q9q{~jp0y5sLc_rME>bPk{&$_iXGo<%UwaBA&Tn}+irX_MvE_+hKE-c` z!U;bLk_#6ImDab<1uy$_Nu&FRYN4dlT=hdz*pz>xUbv+mPlW$_G7C5v;zuG*_n%^k ze)t`-r|A1I^?zGjW2?QQMRJR=Ts~aF=P({C;31*pC@as|e>tw|LC^W$qde`SNp1@# zMPE7QwrCIcqmh{+6_4`$nW4O28!#BjZ>)tQCH?R6xj$hgwBRGoc^6O9Uq5a4+(|_| ziGNLVT?T2cG=TaaoS`ChMOUAb;c}+Y@YIj+$fR*Pz;X9J zDQ$;BOq9=f%}M(sn(LBK0f4piGo}_+0!+=1Nt|zA()TiVpZg8P1Ev81Zk;_XiUu@5 zq3Oq;Z7Z9tc|+E93V6TamP01$-0ANfcU)VbDxEz?$ukT!NPIq*1jK2S#trSoRzEYqO0y&qENeWUcy!k%DNC)=d+v@XbBW_Z= z$?6v)Eir>j1RV7C+aE32?y^D-PSzks(de!9Hy0Yfr^d}1x0X~^#)Z_S7SYrT zC20G%nm`fnZrP+(9+C({J4cI^5MGqcM)r$;`vJxb10@yFWD-jRucxkq*h%LbYCJuzVi&47f?Qby;zi6<`M#^AvIhS-+l|f z_Icc4iE~(2%K@gf3DT7rBL#DJF(L+6cGAkq2;dUnPYH9gadCDyBn{m<_fSX(k^iEm zkl531uwcm|NRkzRX{aZ2;%J>#u}cBB|Z{Y@zBZyk)7 z3YqyS8XlV|02h5{`p$rjhK>$nX57P-_3deo^`Lba3=xSJN0)o)r{9^D- z9R5+yCK|kiAVd}X53ewU?lmWqnj(tpw)^_(@e>Ava+a1qIrwwrc&(8j0S>bzt=bR> z_CQ0n+=`DG8G-9?QRln^!(*V2tc&vV305A-%1St_LDo}7R+iNJ%FN8n+IW)30FgM_ zS9(qrfORlFG&Ikgcs*_YH{JCH*HfYdL?|sWmSn*bh^_HDY5*UBdg?s;FF?EssfXG6 zkZ%Q(2#{}eZE?r_F*j+eBTGa(zQYXUMFAepNpR^ZVb1k>kQfrsfXjOK?q$&3aOYcd zm6pT*{ITBmY{;Gj=mw~*Ry`*t2gdN5F3w_)MPqP%*RUm;UqWmdfMPzFa$o|#crnM;D|g>U~2 znkUj#bd_8Or>D}3D{`FGm;7m>7w2o9JN@$5I%p6RKSMgzi>0hjl(#`6T>skZe$_xj z0sr<;;*++JBu?#AAw;#lVe|c!@bfJP9i0hw4O9dIVU!Ia98eX6`1lU$^N@q+mI zs5G?{g0fh#V7kM#V;E*}lm}MP;>HiaYx!8&qeHR*7~DnwTaD6pU8C zY>(?i{>H2K*v}ZbSznNQXy)Wvmmtg_D|TFpwO}`Mv+NW;!sv4(TA=qnU%ywB+ekmE z+wCBE$)wokI`NgyJ0_Kr>Uw(l(2(zgUEQVgF=BlSyq4^FjY5}EW@6L*W3rcN5k({4 z!>AZ`0Ubq=G4ipxjmc|Xc2@6l4P8}={uK0cvDN3b zb~-(zwom*0eGh5g@t9`zsGRPyEpjO7H*9q9#rbTY8SS6Tl-b!9RbA(!^;Nc$Kv!%) z{PMJ_HK0G)>@n=27+($EQSD{GuZ1Xac9&ycZs%WcVb;4ykhI7zNCJHXUr}vc8 zRz}HfIEcx8Br9yu(M2|mL{MhH3)2kElk%(4N^p4a(DN1M)%{Nz>lC5_8RmbFi3nAj z_pkMBsDnB3-ud?Uu3`jFM0IcF`TeX{S{@KLd}p=hGc=3b6;SY5Jl3{O>=Ba@oEfku z9L72Rle~C7z^AfuF|ahehI=nxj1xohNqaQgvCLbt0z;7#r!CjbZLO2#rJ@z+UsRTL z*cG0d{WVaueR=)8*qKOjVQlKi&d{rnm`1M@xG3Q_t*p_i^ z9hU4**PpCjR$I0XiW${>Q`vh~r0)8<$alI=W$a(MoAr7n5Ou%Lg`XB$E=?*y6OS4R zA<=vuK9(yN1M7h!a`#P6oiDcD^?dd{3HRlu*Y3YQx|p8KK5{=!K8VUVUt13GLfdBx zW?0MbPW2_F}0C)ceWHV^4!{op3=kP$JDj7 zEWE!#3-n*XH3w&B-NwaldCnKo%VJY&w&g6jb=FP4pM}yMhqAbYD z;o;_f>%f5}4va4~6>|(t-mv9}x{}g|(9qCX*7J!%6f(V}`w;N!ml^o0iQ~0r{4vSN z(<_38S@Ieh8bz$PX7CDu!34@2di^Envz^|F7+k{o9f;8e(5$*z8^s0*00V$(KKi2v&hm^7JBHcbo<{#ZZso z<91D(QBB=AXYno7CKV%!6YN5PHE>hJMQ2|Hxp#B}^*-tVgU1$f+}2xAKGhP)2wv^j zp>c@=IF9XZX@GfkbaflWSQX%6S;)PSYJ;G809dh2$)F;_A*#AYOj}d)U0mEzYB~H5 z#7cYHdA(@W!LV0d`Wc;LH1K|Na(p z;1sK{$n(^a*|U&R1D7vztdhA^I}?|0|75yD>RLC1_B49~4Y$3HyV0o@oB}fO>dto1 z=eu{4*4Nj!$+i7}D^ug+?MJ2IR)L3BR<_{pB1(d5O4HJkm^g!M6~8;DJbv>!BP67C z`SRt25pi&lX+L@L0mwu?WgzK38su6=K@IL!Kju96YcBZn#J2Ef_Xq+(2l)zTrKS5= z9|N%Y?YA7#l?O1*x1-M6tk0(lG+G?3L%kUVNnU*yChK!EiIBWElo{Y5N9sa z3t`mFGZ4hH{YoBg^-CsHU$q}8*8y&cSO&kt!q`ASC2EwiFLnLuMc4{(Cr5T=<*T%U1=R|AMtvP2CA{A zuP?i_)Zc_%hfU=QD!i!A(LSkxV-bd%(Z}G_MMopkA6*ao&r3K6#Dk!y z=<#m!>YCK=8Y(K94h{~V>iYdXuNrA;YPPc{ef|3NWNTh5^J5|KLcaM+Jr|=M-e(Y7 zf+8-`YB(eRh@ z$lu?f;H7^rxea~w=jVHn>&ex;ByjI$+fPE1zX`ZzC)_H$U9SNgZ-7Z{qU9Aq9nZyS z5AG~5f?#1{@erd6$GHfww;}~xZ{Wz-He!im7l#c3?m*WjoOmvOKA{O$W;0?LwWAMD+84V5%<$sFnN zrzH#h3b))3;7%CJ+kQVUD@z3^Ot2Vgj8(pYK^WtRr8YD+!Y0scFZsBwPt(RG%gM>< zO7E29VbF*~66Chr&qh@7r*;Tfm6Vba*yE5}%_aef@?BaEH_idjZ zLBt%LHI6KP&dv#)Dd>_Nb-63db4=~!%kJ6Ld#U*I#vCGXxw{z_ z#SYl>)}>9qfR|1k07Q?x>qCu79r>d&IrOxkpDtWK-CQ%9#4HYX))uqtpr723WFsxk zpz6a89M2XY$L3e&To}2=vekmv8FLX2ul%&j-0_r|WP=isBG<;Dhl}NPVto1czYP&| z0#nS>Tc_$%4+`eXCNY=4#W$*`mNTCJ!anECZ9>vbnPXAD^HjVoWo%cx^lHsxeiTVjgP4rag%uuT>fcw3fI`ZX~k}&UeZU;wY11t-sYIy?=iP?AIFO8@C|u z66(RSyK^Da;wN_A@@e|dto?Kfv&?jNh;;VIINQa(o`;WmzUT{jT)esy{Wb{=e+zN8 zYPMNs0K`_zR7z$p4DJ@p&Z-XX8CL-XrhhKNuR13uXG}zh4?s-df#BNu`X+)?G=2+e z{2*~2I<#xO_1V46cZ&ZhFNwA7P-1vhXH{R!R(I6Prv{|F80S53T<)$!+U?H8{ueP9 z6;}nnsyjv^PoRBVtBBxpO@RMgWb@ak`}XZC@}v^| z@MXot%jJEWJLa%{-L?6`-1YrsitgD}T|*>E`*@Rr{aGX9b1Q=|820Y?-r}Dcd7inY zil9zG39hY=>XCv+95}q>B_(_0$#~Z=@UQ_p0z--=ZNRH{z9OMVr(AY*cO)Q+O-{~m zU|;|Qnr%Ln(YDf(1n31h-Ic-!){6uy+@fS?JGtcEIm<+XQUpaBeD^&dvVS9=g^I_d zQRh}jkAwdpRC`-mZ)PN3;nd3WURzzEyae$5pXTF>`mFp*F}nty10iEc3f2HmMhcmn2`~ag zlIk>B%HX5L3(u;dIrcrNpeL8=xE%qpfYmI~4dInGj~v3q#<=pRQQ#}^UnL=vGXGS(SVCd3k^l$a1>tw>@= zX5(<#7ex<2xqJEJ>7qMO-tpDN>>;wv!Rc_67DpEN;0_<(^~IgxJQn%s9VhPX?rIXP z&VlSdSTMjIdYUU3@$8->@B7|T3VLjGAcpgkcw|#5U;%0=pD=`On?>tGQXHhtomNKl zQ#HCeh5Y^-r-}0K_kJt2?&1f?5VHabI{LGo22SK81f9coVY-}yan6h-w!)Cm7R!C5 z?lZl)jSUUrkyKipiiUg-&=^>b0%)HMIcj~|zXi-th&fncRfta*c~;s*8o7b+f2*!0b+rU16YlXEhP~M(f4CT zzaF^-+DJFoKyspd^NjJT_V3onYtv{N>hZq1fE|<{6_vxvR{8&qtu!{yT5U%4NIvj@ zYyq$!cAqPYm2=OVo(b%&jR+4J9!qnd1=6$MV8hLw^&Ax1S_CgsE4Ig!%X z)}{v=7mg9JEg?T3AmC)n&1tftps;Xw*VF|PfUkF@rKKj4J7*HTpsIWGokq(7(Cvum zIoW#&z_IJZx3?$z*f#f%KJ1??M_fjpBEx^g)V97|4qMK8RiM?VeENvE{4aYdN|l^K ze)tF=Ao09JWYfX-b~&O@>zYXV>?Z%v(sKHR09LHpvH$(&^-4&-gduTU3~;nIYZLoc zQrW^uUmQL$0#zCKCrfb;?cwA>e&xQ4hh|s6!?5l1Kx@1le8b8YN;C8VBHzW+2=Cc> z?&`U7=PaC`Y{5o5T8L&86M3zo)?BUve$?uVhZu9;kCMUZL;0BYLi9ZWF%trRxtLko)? zF2*!R1M-m1Fy{ld6w*4CN*x&A)U`KGHo^U&uK{4Nx$~TqSgK&AQHAHW2WXfU@lQwV zSeLIA@2GO`&gFE|n_B7F5WV~HUP?nK|Kw~NbNYzxQ7jnR;BtmYQt{!`SN9;84$2Kp zE=80*{_Y|RSt}aP3B&WL|6>AAZPi`AB{-y~)K|)KxvYIKX}l$JX<#ZycGO3iWGK6< z(kia@T}o-c?Opyv0a*K&QopUnHJ1J>7T`D=VxLG|+T=H0vE4r||8N+S_|KE=8q}}R zhvqUex~e01dL0FWXMzeMcUKBL7`~X=7VRtC`1NoYnBMO#gvG`0ZmOwXNzhI$1P`3_ z?oGC-F8JG+$cgS_Mi&j43ns63O`F=_y3_oZtaR```c|SP*)+{HKXXXTNe>SS%~wl0 z?EFR8;`chsf}OK}ZeoeUhOk8d9drU<;Zbl^AI-x_dzDL`)Xna)viH*565+HX!6p;hVBNnHN=JNgg3s8Es(*#kiE^3F5ufMiA6y##= z683=qRU}{S?SHyocZ~P+VJG(2-8=)2{UY1*;<_E0f<%iyJ*l0BA^qu4V)>ygl=XjW`ZOqY-b9cW?DEB3KZMNapadtLx zkmj?rtUtKQ={|Kcf38np$*Q||YVXDB?2jg{>7q8Ri}!l4xQrTswxuKHUsm_%TdDWp zm3-21UTZlsI(-T}v2+JxyBRU*qbqJ)vK~Kj*s&Lf zW^e$pYH!>;3nSSmslNBF`N9=}t&aTtD)YNCCZe@MUzGWMhCW~zxR~wEo=sl7?&?)B zF*mIldH>eOZ|}&cgj02|yH@{sqJlk^?I>!PC~2zt(35AY7bjkqeOI0yrA`efF<D|g$z^(C2_kPbZ6h(mRj0T>{xHKkeNK0YTS zn5Mv4NpgAfJuWk{oZQ@(Cp^9!HY*tl2U%1j)?5wOh6w%ccEkVa)2DuA5fKr=8Hp`6 zMZ3BI;0ILjA^p7c&mZz9a{xYqOkA1nhwS~219q5l|FcZ?qoyYahG~SEPB8wp!4d(p z0XpqyLUAf4USsAXX)%rB||!Bb~0xdcO~AGGNFXWM4p(-w5&>&&Cd&46=95pAjx@*@nig zt%s<2JP3+l*5q%m+v|p}2-KJkt`_QeCQ$tC!BEawG)=3jwBr0?=#2!#00#12u?^61 zR$*cHEDqc&ch%L^Fa7hustxPc8VC5LYN3w%JnL1^B?ccJJWnAfLU;!LX!g5zSHL^B z?fwmAu4H3%f3mchTnES>^N&P2#nG^wezmHn`LVq&eSn_DsP4yRpr-^1md z!TWS|bv-OH*#0GRV{Ii?k_M4?$Q*X_%({oUTvuK9aRm}91JtltFrzwt#6b_VKCKe) zBWMBEX)YYP4Z)HV6Spw54X7lD>E_X-wMiff{I-yYh!isyE`l$DD@s7?Ktpi(fqKAw zuyF0ZQ4yi)_jteC=PnKW#f*um4_R`kyWoxB>Q>+?;mi2`Ayv@BE>p_FYEhQ4*!bM5 zg1!$0>jO-+UGLp~Xa$7D!E4qiR4!K#izRRL=; zM52LP(0<@!?Ycw3078bq%||iySVTd31DXxTVnviK4-=fq3SDP(K|4nEfq^arfU&}D z?tBPsw+xVL#EUp`w%L6QaJEBp5EAfK#-Z)V?qnR!1hN+)OxAJ)yso<0J*;6qmob!R zT)9uN!^jaa^d?4JG^sZC^~Ehy@W%^-p+=ITTsRbjw`lEv!_eHpED;hG?g6N3=j(p) zC{cdbkA2T{^G$@6iIj2(zJh(HNM%7(hPAvp4BT$;3H0fVD6~T8XD|@HLUKx=pB>33l}cHbr<=4 zPk>McYP7)r*7Ru8*~73ucimR>pBnwioCCP&y-{(i6Y%I$1~;n?EFK^yaBlhZm?IeT z)4fBwJR0Ct)3y!NQ}T6+jxe;c)>wLxeWVSA(|Mjx?n9h9!z4r3mCCQa`6aD!X(id! z?O7zZ$&ng?{ON&GDe&S#q}Cvb283`=_agb#OulMXI?!+6kUj&-8VTfcRfGdLi2^R& zu-I|Dk?9_d}dUn32?t#FWej}iA+PRH+R5&Hwuzi2xc{~t$px`_v@~{qx=8* zt2y;Ct{OYmS#*Gtlk-AO`5|DxHXI{jV~1wkHvs^v+P$3`Ln}O52AXkvQ)8z~8c{gc zJ56(lTXDt4U}>10>QQUu03N_}p5wh)a2hUGyj!31T0V*R0l_8+TMEgaijEvDE8jbo z1*Z!PzD2LvDv1A&jHE3uy)9o61G9`G-91oAYpVJJ;tz~3Fl@lU;(UL!x#WZAdzSk8 zzS{kE1&>WXjnB+-H3s}(fbcJ~Yql)NEH5u_J8g{s#>kcRL0DJ`u3kB$lzyB*2!-vrrpnD@V9VJ~L?kSIA<+(Pdqj$l&ymeI1` zQ4DW+6p0}kxf>Y<+O$Lye0#tlP^_MbB7@slD-VzH?t1N&)Sdc8&!6J#KZAHK8bNyX z>t(=MgEPh+$ooCc@#+*~)zs9$z{YJEA{US|O9JW`DAvC&e1gI6ZT$A_P3?mYtb+G% ztstMyfV?#NtFOD;!k0peD8hP~=-s`0pKQ*j4AvZxn+l}^E}a3b)GR%{v&%Ucq$gsy z!6^sxVa+Ewp&IKgZ`{B?p^y-nkdP073E-)S#8QvW8czFoYc1%?A*XQC^8aJk#5Y=-Fyzr4qxV@8~h6Kad~g*XLl`wBRgJbhX;@ZD{A*_4EJ zf|Ej()7^a1QqSI=zJ7DKL@*qd55la$mL$V^ToOU#>~LNiJ7YLeIPbe^Ytu;W&VG#fxwS%wsPs#AODtI{B-6J zz@*3~$s9>2;?p?g60-!AA`<%$K0#7)Nmh3k^7X?GJ2dv#LfqzLg6NsO?g)oN6#<9E z6csQCb*S6Ma`|Aq9>sG-1tuKBYFcA3!o(VfK1`iw)5KPT8K6uo6KJ~eh z0?qvt%@nyE3hGweiDYWZ!rzP03gBl0lH(S1ep~%Ub$xyP?%dA~B@i+%lz4;5F3zMa z8OZ{TBMNW_NN50L;LGT*#7mc$IWM3CDDDt4cV%kzFv{ zf}Y97Ep=;}-3M`MtO41Ba6vA!kP(46+E9vefJ4C!CEg1elHC!iFHd}vNUNdV;m zC;t{EPTlI$IuO;`#>OMI>rg-ecp5jPhTlCn zKg2A93oY-WP^e2hxI}(YQ4N>`ObYbd&*~63Z$L{-uEJ$*AVE01S|Ozk{0!dWwCM$o zH&DN}<&!-^aFyj6mOvN#DqF`Mf3qoCmg_S^JQz^lf?CmHskKEJSs$Z5SK0Ea5zBC2 zq>yR<^zG{WGw}vaR+=c{{a`Om%m1FH1P=)UY`k&fM*c%5#(HG-l8=KaL^%SCP?$8J zd%1xEhnhnHE+HDfc$>*1bf}{ij=^-!c-Y(9SFdal15wqRR>{`lPV5U`mmZa3N(K!Z!CaN4YXV8QOHEsaBV`tcCRQfQej4j<80>(GXVG-~SpU2MLJ;H=cl77c&7jGSvtyztee=!dr&9N)(+~GmCjs>%FfEd00nvN+SkXC zzn!@DKMybfNr*JZa_P~(7g?Jhvg~;wzNRbZs28cIIGO{@J|cm~)i`@P$2!>d*9m!g z<&Z0v_)&Aq`kOZR`e@~ri^A_Sm-FY)`?m->OY|x3-AjSy=`Og`t011irNF9uNO>(J zzB8D^MshCTg+Z}d04_2-ZS7F=AG9r>%ct+JGrwmR)g&LMFlWimceqwLdn9J7BTeO?y&_`S>=Q z)oxB%+RUQcltleZ4((K3j5JyfORe1WR>g!W=`eBMz z<>$LFg^%4T5p^`sG$%Vxvkuqk$n6z^Hatj z%b!E*hf)(}v$_|ELEGZhKkTm;a`()NNE=4pL9h9s1+3l~%O4&sYEe1IEv+V365`sI zQ8!&PbG0fu9SI*hz$MOqq;6|g@@@fHbG)YS?IU|lAg+{gP19XMwj?Kw=sQ_NrtP|c_ zBPqPutlyuaKriD_K1Pv)^4r$Vk33O*N;VX`3QO;0&rG)|@3+KO^bej~p&g2sb=N;MEjSME%EsMYF#_imb0FWQjO5IKF*fj28qZe^4Km3 zmvYZWK7_lNlD?seQIEInkOO;omLMgp5&!37v|(U9>$|Oy{$T_oO-R5c<{fkVpj!Q~ z92`H%S|kxw%wOqslP}hY*?^|##1U%PeEobTd2uI?V|hwp%BtU*f^h(FCB_NAJbte< zfvq!kpv=13HKyz>@9)hlZUq)5t^S6s=k#rb@e3ClORSgTv*TzWa)DrM*ZvJ3Bl^@zLUzs5` z8XSFLThn#p`Fm5Fl8NFS*YBO%R`09lX;kpTp9m<^z1(8s|EtE?Z$h+Pz z0}C|F~^&lgqct;YG@;fbs~&*)!V zylbDl+!NP%eunimw^fJtP4%oXqo6@qd1SjaTT4HRb`2maD{Ftf7=&90FThfG&b=V)d?L8R+Yi&j|0uwc-+!Jic>RUb>_eCTLBtI6WnbXL;h zuL;R{&w+h+ig&Twf1m5bgnmyvF#Sr!3dWD-+9U8f)4^qXy~qpRMNUsXs$VcYPg(my zp?=UJ@hJm6S|lc8BBw;ZUF}8shi{5k@%w^9SP<@OG=E2L_=p<7d z>Yf^>LCbu@(8EW}4>urIvEBB#PZp=U9=lg_#IpK^Q``NPs3XbiHz~jCOl|cpxfiI< zI{kC>wLpqCwN`4ww2uVGjNegD?~|lNntJD#iB;eFsYRCtRMPbp&Y=sf4}kW3bb9#W z*|5~Dz4Xe!{FDbK<*fMr#V_s=XBDLk@=^1dFc!^AwrdqW{=hoITP&g=WH(rVEfeHhQ@b z=}(}q7m5_Rok6c1U&P0)0Z@g`zdS6hKF(Wj?c@@so7&b9(8Fajv-pSX7G7ul9Q8XE zTqo`W?!)hPg9r#rC|@Fe9;Z(hbdB)bi8oQh9!S-HBE3lp-@9nI&#FF~9wb2rBbOoW z^76FH792nPOq^4mcJ2C&Ni6L}xs~sO>OPdyJAGsTQ{h#TF$dlK8RVq=|9I<{C^qb_ znPvSaUbNk&eN9TMbWp0B;}Xky#ZBJ&mE{lY|Iku+&|KN$@GoNw2>7CzfxzZ*XDs9S zw7O{+-}UP^9!*uoE+xlRxZhabzO%6r% zk53hCB-ngz&h%OzJs=E0&cIYuWG#@fk!MzDy87r<43MABud}v-D)xxNo*dLdU0F%t zQ^6pD;Ni$rVjmEknoxoc<4P;zpI4)%EPhcOt>2U=H8BHS;Tk z^z|3t%y`G>kxeVO+Vz_}xq3Jc*mP&!g;$1u{U&uBk4kKnUm3|yjcFqLu1}m-@FC^W zJ8X|5vJ+|P6KZRU&5c2kRQps64$BW)HO+)W2t*W@JgwC#tz|Q4cbGC{G|YLCR^bTu zy#evi;z{S+wsvJ}7n`x}(4h2Pm?VdN_4}TYh0{mET&vd{MMguJ#2<>bzVtLcM4rQP z>D3Gzf&k>_iU0CU2<7;vgAkbZQ4NIYI{bLucZL;Ny|&85)`PF*PFp_p)n&Z+wKG6( z3|dq(4Z>JAd;N#h7g-N4FTyEj8DrCW^!mg{MT&IX%+q7ch0rE?)n+gnxNhJIldVCP zGX94f`d>QwKL^76?@ZsVS0DkaTfhBp;%fe{HFpgnf|8b3PE%|R2QDjkR_j=a6i?07 z2rTs*mw*dV0C78kTAyj>v=RI5t$KqJIK!HsyKG#*o)Z0!zs*&-mVC6dRGWnGY0jd=5kXsl7IeEH1P2gYA zzn7n(<`>)b9C}3Yia9~{@x%}Na(R69JWeaekBU(Lsi!yx*4z35XkqwFg^-d#jlIrq zX1hMHwE)Q`u%!d=q<2iK=a#o$mraXnV5`opRpXxYjQ?7q0?>Y=`PO1`QRMi945pUv zt@>CIlLZe%yGcptV8A2QiHp(dOHtqa0?_ZvpSwWABEu=K9I4W%VE4%jnTg5ssC?eA zU^#z4+#&7|cr?|ff1Pw`KvhM>-gJ3)P{tQLHM{-H<0^*pfPG()bvPU_D7$uS(?P;w zc5dI=_o;j1GOk=V+MPK>%XGL(ScgAoFAP|NV^MM1wX#X<>8@Y$@J$^XtZ}j3=iAp` z6)bv=LP#u={ueCJN=w3@FF$S_${SVhDIPCh9u){W?J<8KC&)UZ?q&eWZA)-Gz7FnC z!Q9o`@z^}Ywl;A27IO1vh1jWBi5AUJyEva>sU8*D1`B13DZ>?$AkD2Nzo@{BqL)5h zv3J3x7pptAQ)hIAdlT?7dgHw1a*?Na>#TpQ?zw&gqW$OA-|M0`(4(4$>3TfaPvUhq zUx5_1VWS=0n)(~bF!hQ#_F*O26jY2<+E;&5m5NA0dwXRn`s^z!Aa_Hvz|s|vqtz`JK>O&f?l)i14uLW(SxMW=u2Eir)5>VA_237|$xlrH1IHH9gAKt2 z{I;a2z1dnEvCf7$4NkjKs4itK$t8+1NqWn@w=kzpor_U2Z(NGrj5lTZbOw$TdQ-Jx&Mk+k3H0MEf? zrITB)Ik=5kNw5$7kA&5-~Zwv8CQ{0wl`GL ze41}W{`3uer8kz?7L^5LfTX15(?e}9^fZlfrej2=M`;p^^Ozxvw-W&S$gv3*hqbm& z{o%K8xC~JB!pNV?t<8JAP&H*u^c2RcRuczAe1us^eSD0V>#@JbA zUeYZw+4B1c?vlbnzlVIB4 z@PQAaQ`8szt&(5(tU6%TDEvOt5m99%W+EXR{VtGF*;Cn@ zWB5{_C}LY&joMo0Pm_m=KX=h0g16;2KyJ~YAxk7XEBLfBlA~mM-mwo>t?J7=$jD1U zEQGa7@gErrlE~C-1W$Rmyzq^R&l{}Uhxoq0n-^>=ae1?Yet(MCMGmqBFnw=B=99LG z>lgWzae>IGKJ>*jE7Jj?nP%&4D+nM(VEprHhQG-fS8J!mXNvWUub1ZIOQvt;qY`0W z3#ZF?h`T1YmU2wcP7eDkH;Zn}P8tenSeV3^c*`hvI)~u1%ey#r7NRTq${<4I?$SOD z6%4Ge*!L)yoFt_Gi0_^8qq*nyrt^-)O#5&Tj|QV@+-KyvqJ~209e}QRNQNJhp+)4L zd?0WmnnxKtKE%V+ztR_vFc-YFpwMJCG6$Y^VEP~tJN!2_?&zQj_^j)?4^w^G#PRYT zMwl?zUacj?*<*G=G@q^Mcr2CWpN_bRaKdaCSHORSNr9ZL98MKuOvZCvPze77|wuX{%4e9zX-^~CjWwY|8Ft#pS0wF zHbSe3_^_*4*sU`t^HSBVU6H(l=U3PMQ-`jlFe76h=yK@s9R7Snlya23IYLl_*XsYf zsQLe1kp0KNUjVWG-3vncD8r6DbS2}QAuBa4ZHupO>K`XK_Gq{rZ?CS>PwnC~xO!(x zU|;e$to6AotJb;jzAIdblK#l&Yx~u7Vvzmd!WhCprj0O{PJ+D+lDn(fXIh zO?;i%%_k+R^5^(DB;D085rVNeJlY@zk6KWYtqMi`?~)_>PAdnTEb^{QI(ulduV!J~ zFvjB&0?Lpsn{yKHc(^lK)!yr&V~b?Y@0(AYkO$Vh!E^y@gCgR@zPp0N^>UfA?@Kzh z`LW;pc}xFvFclz1P%2|)YXZbv%%waKOt>NdJlD1QE;TKF>#^C@ znLB@OK7PrA3qCCVC^)Cod-1y~he%BBb37z+ZGLz-OPpJNW6?YMzci%<+Im#P{L>83 z;ur4we09y(LQE$rUk!Yp67^j-++ei7*p~0TnCB_zYg7AQKj%bOU9peHZp)9oaKD*x zZL80E51Z2jA?Pr$VoSsOy_bT4RiixfjS>>buImjC_bpCr>z4!HtBY9K35H?bUa%|H$V6YafnjNoca@m^nw6{_LcHUHZ;wLilu ziK*@9Dm;Y>E)-Rbc!#?!YF7*neKZIU$S#goA84?D=-J&`{1GD(WVF^$FQPcHd_p3%u zb@_{HbK-oGJvu`!&GFPoBBun=>Q;4t&#JKZL3srDU3!?cI=@)UQ7MBw*rStbuSguL z73%67jOgMIY0F63kS&gEBAmK`%yGu8A-BEl>UPcTj7&j$ZxwGz_h zqT(Veh|b76hA<0>4|IGy%B{&ia`dZD<`W*ICT(zQibPVsb+x6Z!nfuK@)cP!D~e?~ zrI!&EDR{d!Fulzfb<-hs#l^s2sF)Td9l{eax>Q6PW8<(K?Gm-n*K+oCZwoE6pvV0t zfS{v{a|fBP(xHH+cs-iBlE1cUYuQZsVhx|Lcm=<#hH4<-iY1@ibj9D@g%#3s~pk^NTxuE>9ULbF9R#p$sc+@KEg+F(1G)$Sq$QkeF%#)Yn z5H^V}F%~QOX37m+`OcR4BhLfELmPeO1}mKV#@mSf+iwt_hH|L>bh>v$F~c!!q~e5W z#WGpG(Bq-v0(Qfx#VUA!SX57u5-U-Yk-18jbjd0Bnd&NIw%9&gVdh!K&fWfjveM?` zJ#Cxq-1|`4jYdI^)q9DI3?VFLf)?3p)!1DT%GbtN&8eiS@k-oZO`JWS=pJ10$RH1G zb{As-A3Ia7rxU(Phl~)5(A2VVEmN)d8r*tQvuU}YvQx{e`tyXEK+;pwmgenv`mH=# zv$)KLcNcYZ<0fHrXOrAAf=(x`1<5bd^_;(z8h`X4Ob1UEb{r=gMg^3|tcSR(4W_vU za7@Pr9?G9R5K0s^4)3a#R-i`aH9jS%MOUsk$SnKa`?IpD3PP`r`-FUtu8b1ggF*JpfKcr>P@%oQGH@rrrr zUAL*m9a+C@{{8%q%@p)A&o=YlE}eX~N#_0j?@!p3O?{B~$AA6mwH6`fd%Kq7<+ht{ zPQh1jg&zF;N0TcNzp0<>wSL zG%yoooPBQPJ!B^8Cm6P?BgNLQV@VUPnAyhEK zk)>Kq#Fb6ZWy)MfyA0(SRcj%QZ}+?5|4c@Dt{wK0Lqmza+M$fu=PM~8nrGjDA(>9E z&WZ||H2Vi(hkh*V59APWQG{pxRCE@`rsk{M)G*D)l^<0{Z6f(apR=2(}EIDG$Mr;bxMfP-f*6z9>_$BG4qmFUmr0872y7#=0fS{2Y1W_ zefOb}cP-`(kvHL%pbm(7ExfFv@=r&m=Nf;>Ad23<;oO-t zUhJ_Rm9$adH4^ZJh)i9EHY^E)kYyOkmw;wo&dkhelujRsOiw_cjbyC&b9MB)XV}@Kslk8puaC#lsI!OR|)W-2%!13C`Ce zt9l$B<4tITX9H97>I~J22q;X{1QTI=7`N&qj^8)t4M*YnY zmCmA)&Cs*=uFzLsPtrPHL&eGv?~GI-p_+8AF-vl$!c!2w;n%1KYh~pwAHhcpsUT)TZx_UZ}hJk!Zy#n+gjB*gGbZx*dBykcD0Lbc{gBbA zGgL&xgo_e{O=&u?eoa}~ty3?>H`TQ|tf36(gTEX%14#NiU~u-Y)UMK{`IL1lOQpC6 zLB;VQJvo*H^Qp*mbHz+x(MrNKyDnJ#q-jy-e}oSeS?XklZL6B;tWLrS{X!TpB~pt1 znL>_5+!akMZEi^a1Wn3}M$uiw&yCy$9_kl9y1R?xSe&?doyFp0 z2bZ*i(T(7vWwqwdH)Wbs_J)tMk1GV!V7sstgdCX^3feP12p z61Os`%L#pRm?UdF2RR&1`4 zJPB2uLM8aMiJ#5hbefTbxi1176_3(;!1iF#W$VQn9JucWj^oA4>+Gybk zQ4F2pIM+xO&86Ihq7Cc*WP*IHa%ZhX>BhOCoAO4ncw^~ zt;n;S#1FOC>Gd{LnhTGEu}NdS7~LW1%;v%W!bX>EwXr zrqr(E&2XBf^${<|_t%L~sunhku&}Tp-gDpJ&`=kYo(oo@bdOmte<4IyJ@%Zo$wH<^ z&RDJRQSEfFmFVjugQDoN#pL+lDr6vrGbWy?-PxW5QeUf&Jn{#b9RYwC_0%LOQhI`y zqatHG)(M&B@_~KS9*$!%8axG4!hS5_7I1f>A?n-r2&m*P2yt*zUtX}V^dExC7X#)Y z3Yu^&@ksJ}f7qiBzr8uBU+uf$hKkIG(&PCiXm9pzbslW6jF~oL%6>mpiAiZG18A>4 zHWl9Hab&mzXTB!n-+kFUfPm~t4)h9L7@KaIUmlzwt(ZOa)Ygg!NYRNtv0x~_47=HC zwAO0kOJ>2(4Q}GZa5m-Jw&Xwu$$Q&on;~Xj+H=oXv5mELgPQb67}VoSgIKm8f$c12 zs#s5A^f^V_UPn4N{+Fm-g)sfkJifBI`xv8c<-e-WlShLPh@>$-gLh&qan}|ZozP> zZQ&rLT&=U$x;A*RX=h(+bBlB29*s-av-9)ubamwB+b~5G-2#sia2>nG!eSRhBoc>x z*X%R1vxn%d+F{Gf%fJa0H}#E7)oA_vSrCnYK-#ivf!vp_!H8a?i>|u$irh7A**h~~ zh0vg5Dq(|1;x9_u++qfo3|86yn2%HR^hqzmOgK~I&KxhZ@TxalkRp8-Wtwt zpqm&z?>VW*a%giu?Dr+p(S0nRW(abJjk8aE(ZcvlzE?mFoXd`P1T|ad&qWe)iul2y z3Gy1z8o?{Hr4fyk%(Bzlz4{1n1f{sc)f40u@r;_;VR?6Dvd3a{i^=Ei;g3n?!S}Zx z`ROQdw6tf4%5tlCyx56_#Y6!AdD14epj9^8hen8WUpcB>3iY5Ze|&wBnU_Z<-}QS6 zxt}HDq(6COs~4PAIRw_%tS&>jnNurxG8v znBe4Du+UIlyp3hn1Lv=UY*9qtRIiOtoI0*^5{8}ITHc(z>h`S+w29k4MYesGV_%-@ zS9!VaVmlJ1nOQh63HLZ)Nv0n6cWdln`Bd&Y^ELf`;xS5t(bDSY| zoVi+G&?HiEz}I1HuOH7lz#ooyT(sEzD{%Gp&-oe-$FY~`PJ@GkZmX|YSQL!C4Go7K z^rGp@bFq;3LX5V;HbBAy+#OhPwN*%d+xx4KID_cBsjhSl2cGZE?CEA zH*Mh%k^ek%3Dju5NflgHn84xleY@vM1wI~!S|h*NoDVU$vW-jDn|y=tzJ`71$3cx;97I;lKDM8O$KS!@ zm;HA=Y>pDo%*q;U97?T-nBQ?}jKNT{gG(}Ge*D8*{P-FzzYXGD&2HMbXB%IKB1x@S zZ*p0~GS8ohu%x4p8wn{r5@12NT|{;xs9eW0ppO9xwEd_>Pm%9}6%$un-23W?WL8Ce z;!`mGE0chaB|O_7+y)hpE4&W?KuO2p6d_-YLKdIozdr0GAiu4h5EI+SKY)|AfV-a3 zZ3DKke3!I#a3GWaoZJQ5;jGTXsh@Mq-QV>Tg>HNNme|C0L_VY9CJ1?x{>{lDJ(8_TRFqBcmhi0 zSlipH0U)BcvQ&z|kVo>g1y6g@z_$q0PmQz>%cvOC!fzkpWoh?^ZRWPJhvi@!GD%=& zT?>Kk6;;LITfNTToRg48kn#F@aQ%7TlD}ovj2#<66sG|$v}PI}Gr@>%_}n1-KF~k1 zw%n*xje3A{u6sLj0l}A_T2pTtFDwReg%DKxn!mL;bCP)0ULlN09&WB9&Y9Li8=rk{ zZR4LrO=;Zvs2V_wFdWFqbd=lij5D2g~cR=wYj&( zyO$fb2VtA?$zJl#oJx3WCZlSmVCIveG6w7ru7Um%xjMuT*nf5@WBx*h1}ZCCrHn9E z>$w5DNWqtaB{`jWqNc`xI6Z&Kt=F@5QV&Xd>*3ms~Cm`ZAQkM=`akS%pR#x)+Y z?(Reyn?A{o-(17l90RFBl0RwW&3=ZfR~{q3UJlh;nI~C~cJm5en_VhfuG?ws)_QE| z@xu0-94$N3k46My4K|^|?DM7qGg^?fwY^4yNou#YJNa?dbe2S-J9sPd(qvzwyj|-z zD=!V@<`oMD&dFUsmwPL>(&@R%7>VGaY+l(B+V_Gfe7cBt$dUGkq}jV;)<`c$X2@+h z0+A0FoJAilm9z1195^mvcggK|H;qeOCsngPmYk&$8*mmT!Y{r-uTA!%^3Nq9N}IlE zwWO$|*guG6XxDEC>9Un8QK;}f$*wxp)I<-?u%<7}JJM&YyB zRy=X}KC_?rYOklK1R5`d@p+SF#VUX&5_0t919oV--$ZMvWM~>1XAvAhx>+@C`*XDB z=7GQBF~<&LF_HK?dRjfnBFl)0(EpXx)?eMeO)vB2Uiis_{PWugm?ecdi~#1Dr)W=?eRy}mQ?Zwr*jOtI!BU`cWcKT zRQ%>B^VKyt9q3ZZx&z z0zK<0sRLF9d6AZ=SoLx3J8qyqStV7|tFOm$v7I63r43*3i`NWc)3CysC#)060#2PJ z%&5PsW}N%66)tq}z_GT;P-4P9qr6Tld-dp&gvZ@mA~j@F--*8Ux@wZZ+ z?{A*OZupd3M*Spk9K(pB?>s_Q(?h{)_80G?`tQdKOdYVj8dKe>=jmE{u7kd_*Sj=j zmoULhw)M$}2)rp9@36w~ajM7nEDY4ybK9@mjmL2Jc@?!W7@K5^0>bt+F&6LKV4I7) zE~HC};i5{@d>YRNTEQRE)xf!Egq=|`q2ps`oqH0FPc4$HS48@!Jvnpl#XINYHkLS$ zZF1+npon~ne&MO(vUY8VjRmsRDYUIkiPj#6{+U$vBhH=BB*61gS?q{Z;>o@ilm4lw zvLHRnFY}iT}jg%D_N9t(og^%Kh`2dJGlCR8}(Frg6s@tZJn51ZRtjaM>>HVW@ z66h|L$-RPtnFZ6vRw3BG*cfm&W+JaXl1MC5b!y(0jF<;JL!pROjWmr|U5M3a(seXl<5&W- z(%u9axEz`nn)i!0tTkG=;J(m!`>0}RS1|(A!9;VOYZic(!RkgV?`D%y`2<iGi~&wwZepY&Qx*g4bVU(OFWyb$-SwZf>uG(Eqe2y0~GX&zWC$;RNw<3 zl6V429nGzJQmR&bTk89Ido61M*ouE_a z`d|A9ilGD2-NZB~s4#{K8P%Y|Krl%ox1+X_G1LwV;jCTNz#?}A@SIC<6Lr^w4=e|y zfxEBI0gnsXRo#?wz>WTgT_3tB4CFASnikiU+n#r@?e79 xU0W81{!75#2C!`zVsjpA$qcg<)xjPA`JIDLvA=hj2O8L9@O1TaS?83{1OPB{3zGl< diff --git a/windows/keep-secure/images/atp-mdm-onboarding.png b/windows/keep-secure/images/atp-mdm-onboarding.png deleted file mode 100644 index 56d370fd927e95261f7951fe5386b26385b2968a..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 75455 zcmdqJgp~I4%|$77B&JeJmlOfI?m1N1@PpFJi!v zEV2)I@V`q|5~?;R6kY@JAKE7-JaRaQY5Q1O6mt^oDj^rz!=&z`KZitBY#-X$8d+MS zGICla;1G^291_vD(X}?VvNg7}KoMQKK?}#RkmJIZR!-K&hDNriEc{kpIEwe@sI|Th za_V(kV{?5J#~%JAc;^!G&QnVRTL&F$eUygP8FD)IpNkvY=$h%ksn)2{x}rchd=WXU ztYd9qY+;D1BcJtwW0?PZ-p*QAAGLGlweGKk<}5!`CM`TklxYJ4A^gYX8HF>!yEhN`|q z_iO5>W+{w)B?}fr-U*|!QwBtLRn3H-;0|VavX&^}e?IT~DDj#6#~*>-G~cgz=v)r4<~wai{rOhp2d->FLV|BV!1tbvrvzkV?_JiaNngEsh4NhL&z)ZE z&75CeZfNu)mDkb=%&j>zsoQGsq=!$bmY0`19?XPy4i7J_WnKPrxy~~pV&XSxaqeXK z`T1pMr$?0Sh5{_KwCG|<1oX184U_dgonvEy*AH~-LjL;@&#|zv>xE9bg(f$esGBq# zMrV3?LnUv)pIG-pdX{TeDo zMg&)wRXl~x4m$R`<4)gL)*O7NUo!aDw=I+L*)zKzPgCp8wnm^AoK~*Ykl((2`?H`M z@0jB>?nv3or17QS3@ajkUwYHQ;#6N{Jr29kuOu(Vt3~|lQy>E&M0)7 z0(P7!srDvS3zgpP`;jJb5z$wm_kFVwh88MuJ__9MbUpp*cXNJyTbCw)wN2w<$Gh}IrlrOC`3H|5ziT?s4zd3mNi>h-ya=CbT1~UzIvL+w@_g+;>%&x6g zEU^ZLU4yH{x^6y3)g=h~=yC9nlaaxyCuME$!WX=V;@N ztgc$5ZM~cLOv@XC2ba&z&PI8@etqt9n?X-+?*V%)ZSciiRgWBvO7FftC1O(2BlhaZ zNHTcJiQmm3+)kS}>11P74VIFtyz0WQzpHE+vH z!DD@X`n&&9zq9??nEz;{!x4kB$hh-jMw->$Xe=%#9*T(WN!`KL+{@|jxM^F@l$55T zENi|l4;Bijox#F-`{vF0z%ZSPpnU-)j1){>Tva66O(zCNg&CHlz=;|i)FS!LBP2RqLpD51# zFr(*g{=gpUG6~6BNmj^c}2no++EAi2wo7KPCfoJ7k zc@Q;1N(e=L=_sHPad6-wBO?onj$U3flNVYUs~(g{ovqWDmEfYO8?5$ z3T(rUSUc0x*jTC&hjBNmw5|1ee3zb{STtECE%$?4s0o+xqu9{}2ozyiS$t1R^r*fD z=~alC3n)E({f7y1*Eu=+n#w856&XJ*-#6~M$*fU9?CbeYiw+U z0NL~$ExUjJesEk|pnQ^8LUQtX$i4;BPTxOVgR!OzDx&OMur)F_7nPQ7i%;bvR@KsK zNXyInHLkkFqc!HSxVUJwGQ<%WPPEs0eC!&&WigQVFfz^?Q&Zg+!)M;xxcTF){of(7 zciawb8Hlk$KYhBv%#70%KuJ!haer_+%kFJuTtXJiEzIFga`b6G^Zbl1kJQHP9LMMXst<9_2tFs%ax`q+4s zyf>o+6@Smp9_kN%wc1&HR#aSk`_$szIu-#WoBeFXFI9ZcT4K%+;DbwUgpdo zdYHhZoKt7SPQ%XLLpNXka#{>k7jfSZ<5sOhBBTmid!z`wmS%L-TOBDsZU5$*uiJ!o z{``6E@fx?|8xq@RkP~k(F#Is~sF-TnixqIeU{V(msec6PK2;{>eTq~#FOETKO3GKg zd$@zFzT3{#{c#DBMZ`lT=21P?St%(Opz{9c=m^)eI9vA-3VkgM15rP9aEp!(qxNWY zZJEl_*x0ztZYga1@CUUd5?I}`wRS8b@|j&`oWm=XPq!P5Ed>o*)b=KCpOQ|$Q(-GK z?4W|tseJWwecdVxA}xx`QcPKybhaZdu)SRd@;E$IVnPDi)?7zZXOehlPtO|;)4m^J zrBAvmFfw-7m)ylQX4Ic3Gk&^5=3n5pY%&@)qpQK!+gs4*n(rSQmM`=qlD#=|M#SUf z?%lfT9cJ#?*)0_O;lwKl$N{Xb#*$D#g^|;@$=S?#>77c6N3Jp5`xK=8w9b8^=3+VHy7k zYSQx>SJjg0Fxoi3Q%%=}?S*bs4GWP}VtK)gf77P-^QTYI3kR8Zo<&4OnL2plEUjF2 zyQxaPY)!nhwz?{2YMLn>LfA4bovkG0mdD-Vrs?)GcAJ`cXr!pm4_LBsztX9Xe7mwNI92Vy8FENs?R z&}D>0w`JvLYilTFTHltRtKYPMpx~H=7C*X^E3WuhbU(y9E-r3?n~_^gv7S>EDKYWD zb9@TB^6TwgOQ$NB zb9kmsUsMMQ@Q9yx+56cN&c^2&U#PhT!zibzxoQ=MzN&SfWv|@s!1vg9y3JZ607KY@ zYxGrF$z}O7furR@BNG#ARhzAoy>UaWSg)Ht&4{VSR>_hZ#pdON+~)y?VxU;07izPuV2Dx8g7?vpLlh)rGI$d?;h1p1f?~H&{tBp zxlMk1TQ(Q#0!eZH8E@?NNwa4fCCz7p6Kzhzb_$f6wD_3IngD7XgZsipiOz6|xkXz4 z(9rwOpRYy>x{)DBK3zTu60_x=P6j}+jg5_~945pjrl#`h>V9{1zsF}~;p~mr1hySd zp~>(E`RZGYl)V}(G@KsD*X_cm-SB*|=A!`Pj2iZJgJc0X#A>nUHp&fu1xUq3JiM^3 z3dfDajwt%~?p%$-ihw%M)UvOXT8@jEo3qHo^1p*b^kTHauFFgN*)tOO-V|(2NXqb+ zjb{2diKW|ss|NAn*Iu>DuiNMS+<+NIV2ips`L}Q1g5u)V?ntOUeLB61x_-2~BK+V1 zYRq*@x|FxJqqS8;RrMN@yi!x?diwgl>D{}*$oSL1iQsCtN%2)a`>diib93|0cXVE> zAJ{a;n3L#_4-Q_M7%s@o&VCCuPgXY2HcOp|Yl>9MwR7@Nl*P(2(%$*$cLan27JD}~ zrn&Grz}NSIyL(O1Ss=9#E8m#ESW;12Qy}#ouX$bJv}u|3UKJD?Zu{k{P-Uzj_TWYm zGcqm#vQ5v*vW*mb`SPw(uBLxL03PyAem(+u0dEvvqIkE(%E*XC7xI{~1+c^o9v%e2 z3Xa#v3Lc2`&1Fe+Z$>Uiii%z!BPUN#WL&8kfRPddd@p!7PwTVvYr(e5PW8DBFE4Mh zX@J0LH0>jO{aaJh(=WGXr58@`T8waKsh76X&8y1Ed2)@r62bR&+5LvmRVlN&;lA!g zJ<#Sy-~S{bC#OBtRm9!I#ALk=9X~!NM;rZ27dmb$% zr9Mx)L1AlhPP4iix1-BfulhzuQ)KWJL0$sxhkVv~mw}nN;eH3dm($j)&hh>RL-sCRv78*%Dj=#|6_gtW*H8-Kk39MJFKv&Gcf<*?jjo~nD0vCX zbiXsu{bt*EZ|_?u8^fcg@FBCYs%wD)yPva4Qqm6W9Y$%`#%86GXZ*~!pIyV(FD@=F zTgs_i2i(Pr;|!cjXY+US{$gfs71bS1sF*8GP%4D^wbhix@v*T(WNbUPN3E$kJq%r3 zDu>L455?$7$%>g$Z-4iLpix1MJ9<43YMdaTIXK^Qo3ums5p2S=eDbgs*5|_ribPI zZmungK83@4sOaH>OIlSG1)wST>?_HXkGpeKPFueQ2j2nsN1xAZ`y3Q>y|-($&=8-H zkT99d35eG(lVbb5EdUIF`SpoVWb@X{Y-~+sFQ@bDSJXtr#c2WSbar(PfNQd0E*_&VWB_V*oKA>-pwd-s}f0DgWABi#D=E;`5v3aZMA ziW2Bjmn!X7UMpl24bB1@^f{Sv{x%A$kL{3z0DjQJ(zh8{wqNYYfU+%fG)tm^?nt!0 zo%(^4^*KY7R*J%8YsCGF7cU0wdWed?U3NU%Y+*|=zcPI9YE!@53(Gs_U5ZHrcygJT zmR*KT>I+>#2re(RQK$y$Go1~y8;*|W-H0Lsk^z^4kT0n|d8SfN9i3&w$! z!{K3JbWB>oscFTZ8w0D9HJus_h7v{nM!sCrke7e8G2JB9Pw`3e7OsI|u2KTuoUhf) zPZA&zibJ{ZgaD|~u6v+;QOeAB-Z9zU-X0Jzggj-oIk~{`^fUL%#4Oi_3F}PdT#WUV z>OSkCsYbt}n4H`k7LniNt9Yw*Lor^$+dM3qUGG>w+`E52-?X1~q{@j1ut$9~k4^G> zLJ|^^uC0V-y>FK8TjXbYW0)U9LLeG?bmX7f-BICuJO-7EIFIlvE5Xez5y+$M5c^9~ z-7$jLD=gE}sJ4RH7=;WGW##Z9O@A@klxZ_^N@=1E;uh}r5c-CrFQ}<_tVMRoJ40M~ zqQ;}_R5wdL_!N+HSxkVUwD04wk9m`xei{;UXzZS@t}eps`2n_;Iq!UF!Mf3oV}#og zju#Q6J~-JqSK3R5svwtd%rA8$tC7FwrNJB9_tjOED91#}g4OjxW zw8Zf3l8%Cm)5D#m&hBn6(A%OGz<(9 zlH$4jwAZiKS*WVc+Vy3r%5-np9=VF<_9s5;F>b8a0+yttdO2Np;_-ky8HM4m+ivr}i6$>9o>rzL1Yo)5PhKBSo5pqgObn4;r zkq!4I7R@Va0A&TQ0RbxOr4h^RZ!yv7tTQq;{tC-GU%%zbAjesF?eQ)9m7%vl3TR-6 zx>KcvB_w=ph1yzM8(>ZS8XopDjCK01HMmAvtmYrX=KvMYSmhLBI|YFJ!rStz%_H6N z-9A_?XtYt0kq8O8J+RMqw#imN76UA%NL|VTk*q;@s4R3mMs(kM>^r^28&Yw1Tg{C(f@dVC` zE3jLVwq=h_rgNsJ-@WU!sfTjoBJEV{lYda0lq9@c`y;&Y^nPPSgK&l8Q^RZP5gevh zhK7ccwI}y#_5^Or0w&{p5b|RWpbFqqL2Z07B6^w76E>3s#!r%!#ib%4?hgD=9%0Js z04(SfQi*ds!%U)JIT9~C<~C6n>Fk{BWr%rke&gDGgZPq?E1+m`wnd8eV}!YBtGP43 zv-#0~Ql_?PubxeE<%%TQH7T3f)`x&UhEKYjhMtTM-z!;WQn}1V`n;EM*>b36Xzny# zA;V0tkAo9!uVYESB@E5V^+ToejoI>^DPV^Ou`39;|K%vXVt3tV7JuA6FuH-g8*vauSP~jo?o>eI5?EH zox1K%`k-;MV!G6#@s}H@74!=Pq$jY78I<&NcE0lT^mI>K@-xLIIFPZoFKKb_gVYZi z_&sel!^f-;A|3o&I0hZDEN)ytv7$_Eq@?_8sXcZF4PQ=vy8z_{zhzu55jz=BP-Sh@ zDm#tiZeiTXlS7%LP6-b`y7s=>6t~gdC^pyiub97#*e~MaHvuBIIz4uJUh7T?+MWj# zq+dNf=OJx)dt<0}uR?8aF)38DW|v+LJpHh_+FY@>Jm`gBd}(QEM^M@L+rw*1UUElr znv*FgDBO8DC4yYa<7jx?>Tuh5fi^O)si8r8W2%w$=+L$yMt=%S8} z+`zW@zqHL;5RniBZ6{}B&5w7DdHK;Ma{8$#v3HYlJRTYzP8qsR6Qo~$3e=sLn0O+> zFg951hMAdJ!+R1YS7%+)ulgHxw<8J3{lyk^MyVVQNr>9^M745uRfK-wiScl9a!R6I zcHkbyU%mXQV`}P!QL$PTNYz~%Y-9VXyGw@BRpkV8KJ-lqX@`~BVKOniZvmpg7hQ+B zGAUMDd|lUjH>-asI4TN}`vSYROFmHcN>Y3%ax3rfVRYzNI;EP<3CO(tG!?bKTV+G? zz%IOUcuoo!zDkWN56t|z_%;1c^ISilNfX4#_{_z5P(kK}yMYA()97sPW zVQR_*vcxaQ+%WYZgG{!t)rvfM@*ykt`o_1m5bO2dk;WOdd(xKOJB`I}eO<+ED`_i2 z^J-4hdrd;a!|V0#IdK@#ILYv@Me{o;9IgUz>{=6l2;{hf3G^l^1b#q3#0in(Vh}7- zq+e05?*vd2ugLfkf~Pf3h&qbX{9`18A6*Lw$&5(b2G9zkH9#KP{t|KYfG{byc6Z3M z>-xhmky4S}up>mH0q{2ka=!w~3VIB9Y1M~|nfonTr&FDRc{o&YLLOt;c5IqeR{_9s zJ8!2e@;%#@UNjkmC{UA&vEQF7B)7bD`HYPKEOIu4WxMnXar=CLH@8}O1H-%^)bB^g*kRN zs9t1YDp}6}ef%uo!U^agWk@SA>@lo3MRn`3DyR8{g?y)wh)y^zj6y&;vz9 zV!@N`rvTIH>ACDdJ_l@ID#>;(0(jc0gVyVqm>6J%J)YZ-2jZ;Ruj1H8+2BEiU}sh< zlGwFZ82K>{95WpMWa{Cp>%{ktf_LXqzQ)XQc zYAxDV+~294eiKx7AE|e1oL6Xc3Xh0bD2z`NLWC$mK`P!D854oYd7q*bBzj6MMjuH^ zzGvqC(!Fq~p`Hl%76=Ov!Q%2=avTiRx~J#ghlGTzU>IksUq{7i+;?l%S|ALzBq1f0 zV)NPD+RE3d$5^cK*ER9Mfd-IdPvweKC!Ga4-%T!dW zMX8CJxlKjJ-Bz2wA4k!BIFVOXeFtD|d8k&C2%2iENj3U7N*di{t1cHAjAGuI806><$Dq{+=#pa3 z6OoGg_>mCm5VQiX-MNZ$5qO-KWk-8E)n;3=9WNzxa%?T7Afjt*cCMK;ST>6KT|x8g z>Gizo?*?n;GnXZmOf>fm@@fq;7b~kfnywq70L`USc86MEpEwj3}#(+T;nvjEo(8^E)a_{-F79*0C*D=GW5m|oXJOT z>v|x4tELtaQPD~00$JckV{I2_0h|B!`K~U%`@vQtsaBZ)8+xpaFDk8!ry5Em=a%nR z!UleH9<`XOb&08|-wh(GZ5tQ#<+ z9|;TVccYG8eF2#hwVqy{B>?C&oJ}iC?5HG1b*Qh;8;O(A%6@}EXcGB6ykPnwYWYHz zNJzrzdMX7UA0K6yEwpcVqsY?9TOH$XNx}oxv2q`+tDZLiQ(|;eMiL!2@m_|>DJBb z><>0)IFG)`n?IG!iKt<}y1)yviTs%=2A}BD9iSyh0}3Ftmt+bwCcXvbel=$&%Qt8v zgS0^d{RANA3`|V*ksPKYhd7O|K5KfM*fDF>P>ha_{%C0l@&6tR0>Z$6N=9qL{0hPo zAxCN7i}0TD6k1;W-EIYH$@vQxn$J1X#4mL`pumN`n^NFxU_gMFwsyR_2Bw;+kx|{w zQa_~d^_>J#(03uJNIbkHW!j(92(oK@uSvd9C(Xjw10ZA{P0kIH-^$C*mL@A}JVdL3 zzc|Mi#zLa=i#z^JufPl94^oBz`>f#AO!!`Oy#$T)Pm#n*ii!i~&Xq43u|Pt)4vH8M z_>gmbIyyQEPemP)Q&Miw(TSP79|!RtqVCD(J7~a*imxgDcsdq3z11NU2#qv=Km4cr z(_QxxnJ$QX-FBjZ`T|0y!norDt*t|NCLrqCCx<&-RY0#1(F7W$pzz)1$i~9K0hakD z>wtb@pPN|vsBw60dD#qUjw59YG)2a2R+^luMK^@ml*fhh0V)V^!P`1R#s@cv}M%v%3vWTC`5n;UYf>{Ub#ZU z#%5WUgS%FHCJ6IPkNb=6=Oh%Y{Bk;wY>zF1x}d;W zWKTn5naYl~nGA9lnk%Y_*6iIYSJV;Z*^vVD!~xZVB<>6FwV|nr7N#XlHqL&4q8J*B zNOKs(XEA@WTNjE~%jc-zakRUVAKOROQV6=LkX`-eTygQ{P!!$k_cSpG-dZGT3o+n? z{I?5@H4MBn1DbPZKJ7if&?L74TCx*QpNM*ZhIP_5u?vn8sIez#lSU%Yv}G0?2KotmjX5Xy?YEft+dGtPnEFa+}E#P zE!xIMMn2@$+Iz^^TyXC-+r25wVfswdzbnW200*b`{klo$?i;R^{_puqGZKM)vLbr2 zK$Jm1Un`SI^NEBptUBIonO|AiaZqw?*S_;0L-A39+&&-EZ{eAl8GygvK`_D0Dq$hO zWqF}ZsCAX`tBjUK2x5Gx&_K_ZexMb>0%;t2gwTOFm!nzz9-26KNCF3Rx3NDRsJlFn ze^to6s-s&I{5E(L+!I?nhusn*bcvI{5gSv7`|kb9Pp_f%nlhQ0TLbcbO8-K6Wq^9A zh0ao6_Wto!$EeyG7|oiJq*v9;Dk7Us(|k&faH9>Z-_VMezbyi$sUi+>+7AHm_al&<3~$cXN&esSyNL} z?ict3RK+zkVuruUymE6SBv2j9*Tn=`DbI3T(8KVpuXj9@oGh){u~gL;PEI^v2Kyj3 zoo7}cA#%zE1`H2Fow^SV+G*D-`U-xhljlrIY}ZSQI3R|(3B*M<>fqA%$R*x&tBp(Z zf)ZjIdo+%E4*cvq3P8RFNB)u7-3C7gzA*i|S0A}F`Lz1@9p=Lw{5k>6~j zY?=*-P`+?5FuuDs9>`X+|806^AUVeOVjaj>h|?wGX&Tahf%ZyrZJ~&WaOl#+!FqcR>>gmh+cnX%r;&x; zHJ%FllZ74UCjijl9i)%PK>V5A7-V-s#}%MNG>JNEh^+_uq;G)B)y^Qu-Lh%}qvl|i zJU7hnUuL(Pz`+nJg0qVYroamHo{k|$ib9W}e`&o8zXR-Kn)Ip82Os)d2w~;^d38>3 zJFHS{I}5~moH_vrz?F=wuC9iQ`1L5)l&aMK&$nk5&F6r}1`b0&_TjOT0I@;G3U@BsQ>f&UE)W|HkDmE_Ko^<9TUg||KWTRV0dBZ zhOJhv2@Y2E=V~?ilXF>ZOo<}&2>P7k5Ko@7f&X&-Z4N*i%xiYmfSrr$h>z*szXw1J z2YIyryo?(DeaB)r7pM+n2gf6>(~ud>7J6*|eRSU+uOQ1G=?SQ+s{Y$OM~nHdTW5c9 zXX1axI$DhX-@KI^BlL&0TbpYBd+2`fLPUbv7#S5cisgI{o?Td`{%AOU`19hL*+0fp zg5WrijPan^gF@LlI8>5s>p_5chkEaoqM^2jB~PM>VBsLIP5Kt?vx_$~G4 zguDMc;oCn?@BE*q4`xH+P8j3ApXkv-?j(rjb!>%yhI>2GphjM};^P|*7{0z)@8bU& zUxU;BojLwLSH{0*{{OOQ{_k&9eGCpp10zOPmjYCcL$K;SKV_|88H}npqBqa-)<5bcfB?MszcbOCyxGmvond`c_34Hwc@$%)% z*VV>bcDJ+cU_U*^^t-fwxVqDwZj7_%G2t(A=uDJV#0i*hy=0kcRVnC)_ z%zKR3q3&_&PqkQIK6=2+R3aQ*NQ3`pcz$0+hKDxvt9IS%3)paL??F?(E+9ZDnL^ms z*7oD)Pix+FNic?_%Ekp$yX?{2xpNtsgmoZ;qfiG22YBd@cQ;|;x4(qyP+RtMfkB>Hzm^k(NGd3bmvo;(q;w9FlqZv|k%CS6GS zneb~gK(g=yA(vfd!P9-+DAd(or04zo{gGa8M!CVAtLt4-Y&zTXod{Z5!61IdNCJ`} zIAGsFR6F;WsT)~Xd@4VD~lk$I8me z(^_XcT9kd>ZP0bTx_tid^&qv!aen}Sp z-)KRHaYcC75ls{|p`;a>=pky@@Zes6@AYuIEl2qfOVHw3yDtwrfwek(OU!3^Y-N?F-gc-AGCxYQ_j}Ae{rBAqAQR)I zJ$v>HthF~-S=$%f3tE%7s#q}P3wwI=q0jrgW*(smG&Bep5V<0Fc5H*H18v)_Kv4PX zt#~#GJxa%F>lrLmS=Ipq3^_RdJMPbm3!9Ty-)8D$cbRHc;Gw~l(CtW-jvD!LX%AV$cxl&gFse=u zmr$O-eS8Xxr_RRDPWNO?tC8a%P@p_XH66d|yL*33DDhtn?S&kd4<^*XB4lS5Di0EF z+EVV9FOPtjBal;mZd5-eHO-(s`rVHo5}%*YrM()3DyOKdyvM|1sb^qt&eK+~EHdy9 z!jAs4_3I|&E1}bkK-fIy2L`iYTxW}+qDxSlEqXbtAS|J5n4NQmrWf`VX3u85N6yX_ zZSy@K`-#}wa{`;q*Zz90vKVt|X(?Z?nGk{(^c?)di~WgVFTmcV+=5?hZkv_`yARAw zbY_452C?u8q<@el0!AmyA?)BCXpnc)wxA## zu(v_VngTUh9B_d_TjX09oYojVQfSJN-Bt%X4#<3PQ!@RxUQ56}0C8Jeb`b3l{Sms) z5REiO7I4ug48W`SD%i?{U!j7&_zl9E`kVPqW|(vnTB2)l(e1j7gEkL<#Q z3-(8Itx)DbWCORA{qn#oKrT_!*?JP;*F+KgFa?bOIfM>v%FjFvI|LUI2>=VG%Ah99U4iM1Jm)%jhK`~|hnJi1G zPm*t;0~HURNe~yfp#Z~oKT=NK?x~$d5Z5LSYOoYwwooC>Z%CMwtk(bB91SVA5mashZllhLsd!P5Sc17H(4eG~ ziS{kGnM33*P-Vfw_6OJ22HccIF3BF`%45{&;95Y()QoMY<8~-S<6MFDv-w8X-U?+5 zw@34vZ&UbkD#u?R+>}O6Uq*6h?a7K|=g0`N8wzF#!kqy6RuaAJ0|r*qr>RBk3B;Aud# z%RevS{-CVMj95bN$kDTam%8WV3(jF@W%qAR+5R}@{%5S8=(D0tc9q(p)Eto(|L#~J^oO&<#7_4n&U zM0zX*uccJG&iP%n>ll?#*)fgMPNQWpWTOFtz*GbyF2dggFMXf zp+R8x6*K`C>VM`9epYO4^G%dn8&iA;=Zzm%VmvzS-po!PJXvE!k0bGsNm#HHV|IFx z+V7-NamXe2+S&EtyW@v)B_E~OS? zmI9*{Yb`K;s|ACu8%t68TPl`?)du^03+z?3(ww6Osb4H~zZ7XMxvI=rt|sBTlyv`h z5WUOYFYwdLQsAQ;bxtIsCUl0pmC;avB5#CA_Go)zEE*$w=*|1!QHbH|&Y>FkH?=(q zbf;UklU9e}2Ci!v=$7vz3CT&v$(VrC(jyf!($5n zEMt$|Gp8Zt%8!3<*hpo)nPEjMw)S;xERW^Z$=CWFmCc4HH`$`!&c(7l__63g<_dB(B`r4sm;=w*Jr|VkPPd1^Q<=PRLHT6 zN_P!6C@Q?J*nmRfM&KqaX{UeM(oRKXYlC1Ne4vwQx&*EGy?i&&OB5kd-8hir}|6*+| zPCRO|K$@lFy>MFcgBQK@aeMT9oOB~xV!O3=Hkc#bSp`D+q>$2R1q7pfl{H~qzQ>b)y#TY)!|PvqaFA7ucQj97lt|q^a!hzT?zX z*_%yT)wp6x=}fHEFh7dgxc%?xkwn2(Q-YneT24O0r)A5Nd(k!Lq;&kDz%85yT0t^A zJm)RLm3Fz92KN+r-`km7 zVBW4Ux%kGh>uJi$2TJ9V_)~+PBHs?UX(GpO<{3?cJd7Wmon_AXu*kRNaztSy&t|Bk}#Gx+3v;o7i#Q#Xu`7ee%To^OwjsF)m+%K0TecK5Z>Z z3yLem(BP^J&RgskG;fy?(QDH>+5D?q+mP~IMSH)G1ENkl**xD18 z#JC`zTWu|ALKX6bVEo{*4OWnMzRx8jC0~Q^=Ee`3=zM~Lg3x}%%pC`l!iF<>u}K9B(E9AR(mRcoSCNx}0RNtu0rfP#sOPArzftf@ zZtk8lWzA(m!WTCFJG*4J!aye2e93x*^LwWd^d9J1IXO8MtlhtN&ulkv-&eO`%Px!n>BPljq*BfX^pF+9pwMUThh&_?Y|}N`m&822VI_Sj0~$O zJ=d6>Y=P=VKyQLU+1e7c-qZF1gX=a+)97p8jzl=zSj$6Sm<^2x{8*Z{!#3mz>t;%1ew z-T(39OSZhDz8*%Dj3U?CKsBxFy80pf6EtDdb8^B0k`nZiHMTH@wJDO&S=iX{0m#0B zPrH|jtSyHKr(4={cAUO1};Y^9;7dybp6xM+g(eQ2W&7wBRj$&2g@+*k7xQ0Wp;5REcWnO56G5eT^BOh-mH6`)3Pv%PA z^D$>3U;W04Wplr3H~mrmhE4y9^n(}W*D%ewOKdm9WyCn#)^ioa!ad`wC{W zs}0J-hNl@~Ah?K0ND|7+Rqb0<=eiF+7v`|siab+IolZAS)V~Hs6IDSC%E~a2b?dX! zlP(9)`5nRk4$9R#WP9iyXsZS01jg@O)x+}bD*A>kBT^@r*ZTAg-6+sE-7HjR$Jp0? zHa7=v-sI*rB*D4>Oh;Z(@n&VLiq;u(|BQ@NrOkE1{ z*+3Sh#A-D z>%X7R7CkfW?4g?5J$5oaCTM3TSjI~Q8)tXQb;?=#nqn%O()o@$LUemN?}arb6^`@f zxU0h&9dr|A8bu{-NvyZZh_3wVSLj^EBZeQ7!(@I12D?(nXxkcu}| zSI$NJNGqIf9lYw zsHTvk4!MOXv%I^1+9zdCLw@pJl?MTtKGyLZtU1t?A3;vM5euy1s(?dfV)6#(-uJ5`Vo0JWZM25Bns6+1NhAmBKBtLXY0(2jG#=1L|z~z zAsKX=zud-zCb0xrCsn!00thl5wIK6}2PhSYLi(A{ffZyuRyPkAGEgV_C!HId=(@}; zEFdp|Dh3u?Df^Kc5Q_?CG-gJ5$8&~n`?Z! zqoShp`&)rr-(JhfQSSqZWqr^v?(q`zl#n#pmIS{@qUjCTh@q1q2fvI6)Qg`cynedP zoBKkp`*)E0I9Xe@yD(oFpgPvykbgZuL%IL1! zmGH}eyx849RpoTbYo(tUy}M|3=H&bVQiA(TmT_MCl zy#Iy+lCa|AA5?@NAI}Men?D6DX>;?`V|P`sEPt_`{8;(TV|r<;>(&`B$%L)0xFmZ! zCL2y&BYgcXROZFclPC9xXzrevB|ouuHhK987hm8g=&}EsP^=rD+C4RT6+4|aKd|$i zTz}iD;50(wv(SWvajuZgH2a)NzG?;LlcxBBcwNnptCx#BxaX|e-MT-ql#Z^hrAhXh zSC6AOMp(Y*ez7VP3^G?~vfYcofeouq3>8zljaL$%o>ZxX zJ9j38p{bPrl1b~nhq{7;L5c42_7PgI$usP$l+Ymwec`k|@$lfx?P#|-Wbsjgr)0{D z@))tj64*Jtf8x&brCG%S#qGLpRj(*pJmTf$HPl!TeD~_F<>!Gu_|#!%T$)80A4oS* zzb{2Rb9?93W5)R9B97Y2;Tn|N_yZ!zF7>5!xe_UxDo zX|XS)qF=Bj+i-kdc{L(Bx<||eo#~;#2301}qL@;*{n62p{*kJg|BsW zo+}mAnz>5iCZ0%Ly697{b{4;C%B8Q|aw+RMbJO(8!4Chxz!m~$X0LhUD(1UJKN zJ0EmBoa13U>mohVQ<8OR(@ z5=Q?IWp5o7<=XZQqaqfHSTraoA_^$dX%U;0kQh=*S{fu(l#tq}l$3xBF@)66p`?s} zFf-K9NHZWYATjVBqxbzj&-d52UYD}g-smuMUFUfo$MLHxs!MIg$Z=aL!;t^U_L8*M zuaDQPkxSQ6=FPUXW=xKQ=7I@08IG{#&lMHc20?hVM%K20Dofe+sc%*#s>ur#(&d6K zSh~tgcCCi?I?eKHtfwgH0tIn1XrqB-1IZX{LGpplK3b0*r7H*9TBiETR7GdP=iCO@ zYje?l8TKM5V%V22cW>Od(YB8wf#aR`_7!G_`mLdO{o6w z=IkfZBJZ6CNo)A_Ma+)F7c0Sk0?<6g)(E0C&k~Zyb6P1U{LGpJW$V8iGEmb<$cV`YH4lLr^(>pZkP%93EW_}6p58Wa?}B`kbJ;o2!WI<6R{vdiue zVWr%gJSZxxl%I#Ub*VbAa?|*Z1aVoOoJA01S{P6yo~6z@aYr&;cFjx5MJO7pdOL61 z(%D{uWFYTB4%_xC{ruTfyuG}zP<>+uC^*48veMEKFJ2sgjhCQlOY2)n)Lq;z+S~Kz z3$f^{7h0=Dy4V`%kTt;CIJv4*!Y@ ztTQtQT4Z!~^HZ*7?zy+@3<1%mxcx%#Pem$-8;rg3ttr#-FlC)#C)f&M$b(r z6(RE5*8|FAlCyK>Dh<`xuX1s5A;x|IXpPiJQtMMe>1UZPD&yApVh9Vlt_LWYdLJ<*IddU#TbO;ct(~vf;TL!}=@q>NYc0HOyT$vinW-AL`NO6qIq|m4 z(vY$znbkuR`gD$+Z&MEg;6sR#cx3vxxmBNxjvK?zGgwYt4{t;zp%`&97- zRww4lxu9DywT~87wtSJ-xT&N+_8vz$R8ORj#-p!KyC$Wih(zev!jKj`*Do52RUH5# z`=+q)>p4(tZ+9tX> zAjlLd^M#k^u<7vjWh$h9b44L>n~$s7`{7O`h&wUYwaFPn#EE>yfd%+wnu5INz1yJ73v}sGJMVlMfe> zh&w%S-u6zX?d8;D9rSgsERSioKbv8E{PDBG1Cuyzk3WUoDAiQXS4UM<)Y0|Eh5It8 zt+TV)7eb6Xgx?X|4^Bs?d-zQt3Q_1Yl<`p{;oG-=fa1VZvroH-V|_y$von%#VbADI zharbxV^5p+HN5&(x%YUtwV}v;?D}+O8tNs&D8v7LFc zw~%Po7Li4qXy~5$aEg`u2a$PMT`g{|$t3e!*iQvqC-Wm6%q7d9=su8U+;Jmu>VCS$ zvRuWl8GjfS3miF2zt3=m^qu*AX7u{JKmCqo@+9t0sqM(uyMY{TYE!KrQSmPP+-u%I z^e>r2j-G$91h%g>KdGBHFV4gn6Fut^Wx9CSqY~xczX=bt(#zNN?W=N#;uKpzI@rgG z*gguFpt&8<>E7F}Dtmb_X)t9t&*bE%HyeevLL^nxU`(`@Da^ zpNWIWL|6Il0-Vd$Gsjw=fAZ$yn-u;I=4uEWx+yK~P*tg4(x>9sckE8JMuJvqMejmx z{wt7MrmHH37i(ypY)&pnls>lUT??Ub?=czz(=TGEP>TEKqTD3-)Fb7nbdp80=$(tx z`3p6+zxDK-fjXvhs#@~Xpr3KFazTClsLK+!yK#{re^$rY_bS|$xs_h(un!&D!&uA; zIHFp))LX*cYhxR9xy%lFn;X3m`PfN(*EM6Q|MJVnnnOjclV6sGt94`U;j;Y(fN{FZ zABP=G?puiYG7eD+wuOaP?r^DH#FLj+yg-4*T%eF-O~_PN$k0fLy&hXsQIX9Sh`My} zxEX&x9&J=qAJO_o(X;$RVjdIh(UDB;_jXoR@;*_C#bINwyvrA1?SP8jf!Y|_rs?}a z1(-ImEL{_mRGX#G0|WZMePxJ#Y8iXQ19_}z6IPw-s4mfY*+jl~8vJo3wSl#>w|f^_ zXrL0GIB^0o%t**Fs<#x9ltlSGrMh|ep9NA?j=(J>(*}u@FdcigwFxn}-_!HfGVvV7 z9#>yMHg>(9pknLby16vmHnSGVwbcB&1iD4P;L$SnL(i+p)7n;|AEWJ0sx#7adklBKK_?>qA}h_Yrl&C|Lo)vouG?$5VX z`^t>s#KS5sMPvs&fG^m>kTOR6rr9;G^Rfem)b4nU} z91QQVt)D82V!R3~qGMO2q1jXmOpmP|u;VUYpw{ufs1rwYi!7n6p09y)evW?J=3JbE z59V7rhGsc`&|E)v+@+w@^&jqcU;6vwr>K8DVR0V!D(H}X;8rl8MDDeU`)2WP*G%6o z7wrK2T}EbRGauv3lA;Kjg9n<-ih^X9QXCGx0P*9t2;R5G!>iM4Ljocam1A!U2{qAE zC_RG#cwrIVCHwP7sqM9#Laprvc;R&+8V*hfH14FgNQT~xmW>*vC*~}wm(N75(P6hI z#kr3C;ba}|!V$n8bp$$`C(QyY^0vn#6`f@g&L%ay|4$lgdPmr`|4F8OaN&Ok{__3r zz~4c^|Cev2tMZ%)ZJ1nv-}Y`A=vNSv;w8mSeei(pvcS3HeEB;n+z`XI5zDu1*fZ~U z_Ybvd!11R}tAOIRNbfyZ%w10U7iTi&V?+2XGM>TWKK_G$@I~`|q zh_C7=%dlXHxBStH7f&B;)BgQ{^Ks?wor@p&8vpU}krYe_N6XxLqb`M84J~yb-PW-g znx8ov`f4})qGo*aeZP)3RWc}v>leachOKgo}>ocu%O1TJhJo zFsb-YQ9!ddPB2W{&pn|<#5512tsnUeN-s^qt5M%eJ56=*+;M$0OV%diLa#02Ky}sU z9{Zg?YO8eDKMZ?f+s~hudw`%c7Jv)Eef8>rJnCadjvTT4;3JVN&vUNlr5Pv%pzqG^ zTY&BrX~}T>@H&a~&GJ>_c#tassd?@D_wOH#3%M9+&0yeLUG}bxG%LzJoCKEwiA0vV z`3nE)9T|a+?1l*h-$1r3ww*Do`KN@Hl@+CUjV1BIC5ln{Hichshn|&b9U!86Vyv+X z05HXp&V)6?#+VY+%z3|&qImgbbFJ0<<5R7eU3y z%G$KPE=1Kv1#v&y0aS`vSorP2_Qmw{xD#XWDYoJpCj4>Gn)Ibef=1;{bNZwQQy)`Q zD}97~*~}}=oL6v#JN6SgtRUf}^f?j{37wk3(jROfolk&~mXkdSW0_5&p_-hW{Ix?y z40A|%J=~LJJ=M5CYJXnP9}Dv!RRf$DIle6$XHNxB%{=(w?&~{*>>Xl)#$e+r6(EL; zaNjdEzdbU_ZraEuHu8p0#1Ic2%!vGHj4EHhrmTa6lx46je*OA#moT#?Y#96D6f0cO z?iih_sw$PPoVnI!GmYzk&P&}8JHeza4LNb3h*HI9$!g{6M8oZWZ&^K-$(Wo?!;7yU z9+ApISwxpdV1OgczSr4IXic+*Hu=E!k8fr{DTeNNX*V^h;B)KqAx zm3f2mZaz{&vIvp24c7wVnh}lk8D^KWP0IryYegmFdb0#x2S^Fp3iOOXE)q256GkjOY#I62y-=SJYHRLbmGKPoN!?~|HaQ7pD&>hHhg zTL^|C@{ta$5Vcjd*<^O>r;9i&bj8c|fe|ZSL+|IMg@j&tNi9_wnkAdDLAWH0ly&^_ z21_Hg20KaKqFzPDUu^b6O6^H4(q_r?GEnuvDF#Iy+_I?)#3Df$$FzAf@fk(CY7c(( zGvXZ9Q=o~)dPC_CgKc7ZbGC~A)x9*+s)T4pIl{=u2u|d$)}yzX^7i%bsE(7oq*fgV zJH!BqL5Evu4K_!3!C?nSFB~}^*q@2rzHL5us<7|+%y&3NU~dijzJn5u&Jc#^QD_iE zM5llT(|R!mAJt2WzuXRfG_oooIr(+h47L|LI$Bu!#LG*Mz@H@<5|+3gvKf5u($BSL zT5o*CSmnzQ4)GGBA=y`pB6M8;6*&Xj$KQE}y+{^M@^Evr&UiK4`}$+&N>xQg#WJ@{)>ANN`SmSvLTRVEDl913`B{$x&BV;!>dc zr@EwDL8e#L6$}$I^Vcmtec*k&d7;$(ChwJq^jD@Ff4!?R_2Iu-fP;BeQ}3Dzb7xV9Ji;wosk>PTVh( zrR}Tv0{@kv6qoQH=(;Uk9!!T_3w|T`KBF22utfMphWi%rz8X%p!)o|;?>gt;gMgr5A_9?zF*DaV2&vajZT^{S*bcI|7PZa zDd}}d7avTkiB%7?#I z%k}z!uGGCnhJL(X!sLz?m&Wca$3DBL@797~rti!ZW4?z+smgcp>|5K9QklN6ZT>uP zM@DqzS2!*0o0-+gsDXlV;#Z>Bie^WV{fRK;imKMi-Q1m4$40jDrqcD_>b^ohaE3_7 zg~04bNiS1qJqiGif?c*sANs)1uizmM^o)6~b0W*zqDmJ}-{FkzpEavMq6H8E6BU3i z^O>Og5089-Oa5K>v>@5F8JaE<^99~_UFv)s8s+*pA&wuw;ez

    T+UGy}4xH*lUIwhQi%>QV_C$zI!C2T|$$9!H71cbc%GaJ+lwmQyE<39XdX|%c#{mv)HgmpD=&j^tj({i| zt^}2WXZq0IzrJ^OPg-2O^2+Aqj~}Od=G-vz4$_t4OTD?qh2}tycVNWNS_;#o9x(Or zxS*`8yijFKS!npJe8YIg;jK8XeN*oa#+r(NMUln%I(yYGYE%^~K~dita(;c^JrQ}J zzBAH;vXJ{z?AYR@jr`H$+X34pCKu5&2waqG2us~ADM(ajt6^uf&ndz2q#?&wIR}O| zjpE#Qn5PwxIJAAyR=8WhcVR++NMV<PH3EM|Fh6FIjbiM)hb<{3z0sn zNMc3BrmS#TxDFn?3r&jZG?Kd1fp@7Ic6Vzgcfem|S(U{|Z`&Hr{`A~Y>e9Y?QvTB~ zlPe#g8;Ma$kbi$*`BUOxt%9n8L#di*Mg-21DekJKE}kfa^nXLIFfsn#pFj3WJCFQl zD?ug)rWOh3k~+%NP&>bh^Rx3U^h$js4nyFdDdU4fHLUGHADp*lpB-y*jN;|fN2x8? zSQgZA5gOo`-Z0K0TMHxfl6mhybSWT{Sf6Bcv*Z4osazYJEtzFAr^&NG#!qBIsqS?QbI&&N-~TR6W3Z;WUK%^ewp0R-tk6_zy2{(wq)fl zO`Z3eiJt$`&sCQGXWx$WmO5rE)cqE&G_I}`;P~A=S&>aVNO1F65ic_y3CS}v5Td`K{o2*<--I49w0{bd-(_zi_0@DNn;g*??+~#=)b@ef(~R zUQhue^K$`)XY^eIdREOihNxCmhRtR(3P}M|6BPNoMSAZUx}a4`dw6uq*O;Fx4kM17 zUF6+BTfQ>b zy7NO<^;+fb(FHAq9&UYgP7z0%jMl4{oK$Z_HLVQeu=jBp%geC$hL zEV-5qMtErI`ffv?X)h9%kPx$`DHi@YZsyO?$%_^8JU&t=OWue!e<=3-mynd6!>>~9a#?> z(~wo0FC@y6UM(i7s# z0=5~hKSSAo{RKGi;CP4MF-mei(g`XE8jTN`$e*odx3p2$UD;qZ*G4_!({qQpmx5ZK zAd`1CxmZuxx&F2+(TA0kZ@lYY@2h^3@zv-u-90k?_7+0#HWd+eBq^DCgpU#eGvKj^r3@ttEkcCH45r2o`fmjD8r-vuv z2mZ;_L=ZHi6uOP4r>B|uk9f_*%R;{3hOb0&3uP_MgtuB(8lsH~5(Nhws{8Bb7dq6s zyT5zr7xCT)`bUhl1wsZ-)6!5t0GT>L&z;#>o{1GP-k3MOzy!B6G~Cgef}y;)BV>bH zepwWo)n7yiZn3$Z-fi7@(MpWfgKd^NFG@IT?=IdtAbW8T4|%9?D}LJLZ!bY1OwZ4- zJkWK2bN_lz#^J5sKQd*A({lNzJl@b}zLOY%=@BUT;;UTP7P%on&2_U&Rse2Ke-#e=#6q!R!>OgApzo}C<4 zgYgN#Fd!3BZwM2R-Fq+-VT}@d>%D!+XBZT}W1zji5m%L!mE}=jP&9JJ>Zbj_L)%@g-LbrBfHWw~as#oBq%?%BRj}XvSz2cycumWowY3#6rYRSwG(az?jDEKe1p3B6 ztFr68wa}Ziv`c)yf7m~_z6~5UY`BwI(N5RjeT$dZ3!6I)v#xJlH*4*J!|hlb=|w`h zx*8o&K!77r2-wijW8XVE@-b2OJJzptAP|VRJNz+9`3qGdN&u1qT6*KcJ1uR>1bd9H z)+YK_%xu=r*-p|?564Gl>yx(b9v%p!vAVjtsPw#@ zlhbJc!M?)zBr=+oNSvY@Q)bo2(RFtT2dU1?p@%)pfkbla1tBgGShH<#}tVHlm177y;H;bRMjX-s%sH>aX z+P1sAT15z9v+`ow&H+>g{@nnrR0lVyf=mAPq-q?3%pi9#Pbl zBA^z|(dJE%j|3nvp%YL*3KF*ob37q21E8Trz(RbCeRaa`2#q)(sL$u|dqoV@D4hQT zP^xk@Ey`mk+8#Go#-e;j1^YMJc9VwL9iQ%=I(5ocl+~HHB#}hg+%)(0W{y#6E@k69 zs>vI}j2vO9{6|&fOio&hq$Y5~eXgs=fXU~H!+<9(Bo?`BB@66|4IxqSa%Vp}gbYl= zVQfu>ZG-9!*Rn;;fdkf9Dfv7u91)wBBMNf6{txETe96S zKdMe`aT0vRZ8J~_T3T8xoNmJ~p_%j1kUtSA^)P?B!Val!6Z>eN`{14IysMU=Q60!X2|7rXjA3r2`c+5O9u6cN?qG=YF@57sy;M6yC$ zZZlgtUi>D0?5!Md|nD8J|^H%1!H!k!nmPTKGi^@dgu$&zlub7_FR%B0f4&t^$jw34+d(TBU3?@#s*z*_2cpe;)D zUo}47N^p~i0OD_k@4Tos{Z0TV3GmlCIrVI%IuE^gUi0Ox7F)=jgx1L-)>@deD9_Ju z7_dv|`J$S@tnu_K_r^aZTxxw)MlE&x7s3*HYT(eMGh(8J!mqsem#^Bx6NbPhkZ0;G|;KSa5W5a_Ydw!k+BzouFV!#mAm%a%l`XE7R_G zX?2au8j>G_+TI$Q%@N>~5q8H-jS@=y>(?)R4qwH~XY};+thXa4{s5k(5|D4^_{}9K zCPdzk8vGaxw-=n0!wLj&0lc`n9b5~lnA1j3}3+*dx7f~qtZr%b)WP04Rx z#H>%1sB%W%?1-y6zij&lA9gFSwxRe-t(yOb2tvhNBl6YTP@1m4zq;ig|F29W^#3P( z2=l+ghyH)RB?7qQ!Kl^@>4PsCstQF z3qW;&ClF=4Cl7N`B*7CM`hXK=DL#Xg#ElH}6H(IKiWdUWBHz2_#bx(rYEGNNI4E~~ zarKdt;jdjAK*l-ahg+TC55gFY?++>Vax5I{o2C%Z-(l2$9^z)6o49}^(&k$ z43EOEht3!GqV}zoJH}fYul8CF#Eop-7}RtfbWN8n^`ZQLVxv4#bp=y8QG%GYx07PB z>GJRGKgfI@EQxnffr~m#a(cf4m+zAK>wOK^ zM?Ce78?XttNuqHX{&5_lCay&bU8NGURZPQPzh7O8zw@M1-gmQf!q=?U|Hi@RM>dwI zskEpZrkkFY2H-^Q&(Sua^0(Dy-!Ypek-=VtWnBgpmmoSteZB)^)aP(K7 zB~|ZM_&BvzgGAg!yPTbZ(M#BsM)wQe$4Nb z2b_?VMoo3}^}Rs}zzwE$A~G16BThfWnD6E>+FWA?+6IlGx75~3X|BRsW?SCkmyK5J zcg)g5$9uzq){EpWQL5G{@19&4GZ@{z081N&IH1UG#Nidiqhpb=-Fp6$BDq{z5rsKi zN)bbg3e{EA>o!b7Dn_RESWw>)9OL9?a4Gn0TIz#}nVKL4L~P}0e#d*??9J+*nMX7C z*(IfsAj+t*uHj{Ng*0&-=lQe7PnT^l1#7L@sCxfgg;+LYZyi0J+f0pdjk~@XvaMkHtUV2 z84MU*TNRET;Rz{yzAUQIk)_ElL^-rnu#-w!ymc|An;(qG zdcChZDr2=|Y2tT^6)*STJfoZuTrr8u?5N_SW`6UY;lt~^6V*&qFtyM5sF0V?^J~eS zj~;Ps)UgO8?dER`g-(_KN?6+bMjtT0mX^GH;A2)sm`HE7QPtdXIQD&r<@)GmO^&Rc za)(W8s>GYY{@{Eo>MdB7rKX>Ui$>v7R?HOXQZdkAt(RsKuttt%VRza3p9 zMwIGzPkNXxL>>em4JH}Yn~Q!hCZ|k??2srf>u&wae~4C_ zxuq$W0XNQ^y4E*h-4~YU78f66rkgwjR`nCs#z7h;Iv6zJA&*qg6B3vzBY`8LNSypr zyJjRZg-##+2tA!Yy1ZOBwn&@z5-6W7fiiS8v8iVOR(ED{MGWf6PrJWB2kLe;ks1Wc zFM*rGEx1D!?IRqm(V78CF@zOnX%zOss5Z4Bm!W}u!WDfK@*mQPn=k}dDFWm1wlKKy zF@z~IG$^sP05Zj9R-IQd5T)kM6#4+9m^R15# zqR9>UXY|T-i288e$w?#!^)0w3@qe9MF@;f+V3PJwvAQ4Vb;|hQj<|8bl1jBkJwFQ` zQ!3dTcsle!>EvT4ryuwkoJ-Ea28ik!Kq}StNI9d39wKX zfjduuCjbLU1i;j_E3h4k)Ie#GsaY%o9}GaHvhC6nxo!acL%NdF7@yd zL(Ykk4sIS%=bJ3(+J0D%i4rgz4uWNx=O=GC7V1`mc9==vM+kT?SF2o$GGi-ef5rss z%b>2#u2lqkm`s;~=*{mZq@qgIfBN;idOZJe6G@T? zFJ5caooa9aN>9bo8{#VIYKrKQO|={KnS7LEZ1DB?BTtU|b8+?EJq#S;d&sHg3PipC zs7S(vt?!sDr-kS^O9Us?kPGpM#jqi4*g?0$Y8mY*sN~q?ov(NY!CybDha1}E)_%~L z^vtiPZS^I490>CN{q_cmNAhzI&C;{Q^OaF_djnT~f6>BJklHX_E6W8<3YH^YJSEqRBU=-6%7l_YlM<8NizFL7=6HjWH zbk_QTovUt*Fyz15brw)JP$5szxqP$G+`yXoJh1i6*J*@-p*IdSbKGO*Ume(Ajdoch zu`e=M=u#Wt-M*V!vgJ6^aO?GNAN3U6c7$ZWYNuy(;$EkiYN)mDrp!uiP7-|Or5t-A z$ICROUymIb4K#?V3FnX^b>4EplyQ9KD>+;LG?A7jtnQvPJG=NEH>EAm3UIA74EFXd z&zvqL(vvO<%@-0hT`LyTW&bVg8`))}yrA!JP8WU3v#oOlmA+HIFYMqHcSF3OLJj$L zG*>tgp4p{bE$t5JOXH}+{i@Dpf|evoA+r8j+-6La@hgSM1x(F)=aaJK6%7COq0W`c z&Oh>%S50k~Cl#~cf&?D_3i+(62Qu9x9I6-pN(z$gp{EA)Xv>o``i>ZD@AMEWJ39rD zv5!ks;V#<*_~`~ezes;i%qqZ74yRBsI6$rsWcEG=NeHqS9t!Yz+$91h0XZ-5?27w2 z+HbFJLEzUaN&c=%Vc&wpk7Ig$&jb_PgtK%2?l017f~{6IgPkk23CJcDL(D4EdSYto z5vs~Muv18;=E6*<9oJI)*8w4>v2cYs;wvZ{1X&2ae{i7KfNGnr4yDUyV4@q8xj>*u zLQ>au$i)ROzg&cYh9X5CwN1Q0`q?rukzP}Afqm=frpNq?xGK6Y%_Nm~;*aO~@YOM%~WRVz(ivLI2{bD1g&7vYHM@B*cPoHhCbGOeZ z9#>UZZB||LOVGIO&~=;S`H=4V9gAv}*0T)$>Z5~KOzM4{j(8CJxwZC}*oV^m{5NA5 zO!X^o3dfF*Ts3aKEs**ZT8VFc(8^$M{Y!v4&|hYr=+V6mwIpp_*)K)9EQzueXsEZB zeMVd)Blw3rQqbX)o(9%wOTL0J`i3Z#@A$lkmbkVgp)+oZ(k&I05Ph+`&vU1=o;GgQ zdCq@z6cV7~^Wy1Ei`;fbY*O}Fj#~X{cbI+Ol~^BOz0OgTi_Kl)??NDKiTXseeqDT7FGt^NM&eK$g|LGp6Q@@@B~YOE*d5JvgxTv;qT z^)%`yA%<G9()=iHz&oW$fKMFG*)M&W}}6TpCR&3NLH=C>CyW9lGN+F%kkorpzT<;)h8l@&O2 zJ?&u|DMY)hU?@I5{>MwVj`-Bn;JyXn!wT@+AM@iMb4Z-~g#&E=)dK8+{)wW7+T3B& z>eG(c$S^V*jDbf%WsFPU*XIFQ2T+h8Qb==XxOB#f@5YUfg@s+~zM!86CgA623lSc! z{=--o%PyDb@vb*TDf3^<6suNlG9xB)iR(+h0!UT9kqz^8Zr!|TiU3h&>(G#7#v+b9 z7KAO*0flktsfkPeZS+$fN^5SI9HK~d(e}hH zOT&-MXXw$*5g$9Z>40rdLtYqx_J2^3)to7XOlE!7(k-C&VrVe2z7aM?PY+cD*CTwG zZ;=|kSAOl5Bv$bsRJW)D;d>lUdfj3>`C9=INpv492pieq$BmSZ27^g}!~Ykqc;Wqh z^KEiTd$vH9d+IJ}c?^D-aedEYp`4>UwB%n`v}}LFy<7>*iY+V7Q?Si;<~VeHM}_)U zes)e%SB zyt$*7P~yQglp{Zfz-fJys?V^_h-NHl@Xbed$%%bRaY5~M<^~+p(Oi=Ad4$mGef+@BEqwJo%TW@ zeYR77#j7SK+7c#daH%OfdnS4>ZSIJ!tF4>8e|fYj6FYa?Lt*Q-9ImiJ3^TJ9o3Ykg z%%OY#(|(RSj2*rr^f|wwy##5T;K`l{Krq1sGBa+EU+JC=epyBxI_x6RyEtg^M;cY8 z`tE6rRqwdZ=vE}d2S-hT;i{e;$JXeOuh6Ve*27zyP)_`3e4ZoD4QaT&ciVHW_{``2 zYlqycJ?w8sI3CoIze^s=v81#uKljidTuWmfh&K&+Q<@_hJ)BFDP0Po+i}PK)nI3#N zH-A)L(=Dei^TM{xH_vX#3q?~nVc73H|x53)8Ob7~|HtBmA)X+}H zG@%f47V~ucol)n3E)sgD{lu@@tLg{!j%^G}R~(|8A_-^fzl7C$E3O63nOWo;sQG=h`dmWX6;{1^uVeBksL@Ma zF-BOZ6rKyH{wIn?M_x?7<7u``AFz60;YGIVf|yI&syyTHVmlW&ZB1=$m3$n9b95bV z@bN(<6J;9%{h3gvA1Z^ds;UZlXWd6gc$P$hU;#4+hsmQsbo}TK$H74Sl0sH7RDDKr zuCdgcXq1P8u|uNcpliwE;Qso0>4HWCXs8fx&=OTWe7Be!BQ%#57y=9I6~Ubj=`~Vl!SZ}}-*vuC!W8qu!F~-#TbXk=Ksn(2iwfTm8KGd(?NBhpFX< z<_72W&bvy<{93b2R4+X3`t*%PlFrQKTs$&ZlCRp3KLcgw7pRjDM!7b?IGUgU%a6}s z5FaWPx$5Va%wxHPhF!3u1Ei;2cr{G4wzlOCYQqT~< zE&2yMWR}R~)7wFme({O1%#U0_r25_8yO=Hmh(`6K z&=tG!>FPG#6Ak<&jRoqOea>?`U82LU!g~J*pP$fAs){_1VZj3|+J`y4CY*CEvt_*} zI+`91BrMzeW>!s)yR6P{p=PLv#@cAJn-9kGV8ITma(1=)pF&Rvl?1f1Sy8n7OD^E% zOz#is%qu19KB8X3d3Ra}3RXFcB6Ao;xZ zQ3y;ky?L~-FAQi*N&a%p9P1rIZq&o5OWnqFV4*j`Ot}o+VhDWzoDbW~V(Ia=+@#1d zy&G1DC(x)umq~2*q7@@PL2+D4%Clmd2%>Je(+)6z-G?kp1ngRyoTyQs)lW$QD&eyl z3N1_mK?kfEQd+cKxo*XM^45w1Sj|)A1cOabOZCfY)q!)VqK;YJaPxY5ooCczKf?q@ zX}Se7cQ!Z{v>bNfobg5O_!YE2Zf2Yrk|DTK!AKR-AN#q+$Y>Uaq|$N>GQ+Rb3HNWkCp+{|TL4p0?Xj0#Ih zZ7t(Mxa3`DSM%#*xTW#5Y1xSg_j@`TXd_RKtY#gc)10OpGKmfmFs zj@y#A&c9qKSOB!GN4{*?UXp{Zqnv?w>Q)5kVQjY97bU zdOk2oLqA55j&g?Nv7>az!E7tf%uVuaaWfSwFh-WTdE6bkY%AGL>m-6;S*0ghVsPEyMPZ81etVbnSt`5px2Z?6@+tT=E-h`AXW zF+&C_eYDQEDHrIRZSq@)rDy)oVV6c{Hg|xTE~7uy;;`;ryLynD!hOD5L25TBF*{v8 z(>t1YN%*0V!Ch6d%!f=x}{t)khif%c}sV$UcG9mbm?=kY~Fltjx-BE z8?+}+iX+1Sf4~med+dz1gOrK>_-l)V)vX#Zu}g-9g(1!FQjbQlOAk6#jyvg%5RG>o z7P)%nN{JE=9%@NX4}HRieSFMwu2_|>T(TEue%C0A2fMhK*L$i-q#s7AXwpw~l)VSr z1oyf5nh2P|yKFUkVY~>sni8PJZ$}yKQtHZ-?G8E48@a)|lk{baNO zkbtk0KNM(81X-RFBXY@@fxsnmy`8Jw#{SU!NhMsDp=Yy))MwAE8dtPll$Li+e4yrO za{Zv}8=2l*0j(~L2eLi0)e6#^#fS}gCRWz>Gl!uGIXSvK&Dzr*T)W%?tNQ0|^2?)A zObY5E7}WsXdd$;#Yy_D=`6gHEC~iA3+2OjYNv`ah?AEj*SVten(+H5pgW2cunPXHCo&RId;Nt0j3mxPVRHnnr^Yg#=`-g+0=MV3r(zu!D zo*IHS;*DW7k;M`THap;l0jOOx&))I!nNZcfD9W|S`3ru){|B#J2!%A6bNg^NfzK4U zN1#s%MgzEC_5w3V@@5;b_b}=!(ZBNU9{@5RWOPUHwp&nppIz9SoDhWtkg`v|M< z%nsTFy5L4MA>d~lJqWf^yNl&G>A@W2ZbAn?uRDSAn1XKZvrw{t)V^B;`g5QZ;VEP% zd70=n?0|Em$aXlKfVl#g!nSOX=KbP#(9LszhQ;Qm4N&p`p9m%leSAxK`wk~5_ALiN zkecOax38A{5$p3eMu=8C(p;-y{=kR}SLMsqK| zj}(xZT=BZ0a4R>}Qz_tl_<}ZO03M{QpghP|qLI)nh;uQ(mt(c5TcWkolXRv|{g)~L zNv+^(+;4wW6}?SS%PML|hfSIn?I1is&F^uF zu<7D7(&Z~L+Ah$mTZsqnH9{QcaJz2QwwHnI! z9(-)OR@S?`X>MkAZ_nt)h3?VODA3OV9uEJ6Zww~(f7P-qZGENK6?o3QEmYv7hfwwh z%BfvbE{Km7-rfl1d{G*%H_e=8MT~$9zx{R@ZYT&hp;%c|hTk0m{V?cmDu;j}CYlXR zu3QATsV}+5}W&MS=fxK&7T)Y7+Cr}YOYS%#(0F;i)j&kN1iVX`~**+l2x+x|$t0y7~w~1<1 zS|+vYoL6YGnae16o&Yqrxyv&tlBIcVpmTG1RKVoyP7`C&x0$u#Q^R21KqOp`d1Kk2 zKwSW$uqjs%GJ-eg$SGE;&pol=6)Tef(J^{WX%Luz`|wu4*GcqY#+$>nalaHPX$}*| zA8{UtA-%TevZji%3J9vnq7-0nK!mzTJ%Wq%b^>isaB!K(CmMY@AI$|lVIiT*CLk2) z2b;C|0M5LBc{A~4-~1l+MUyB98K|Fj^CfL;eAq5?skCQWJnwGq$r?hRG4Jyt#@rC{ ze9(sI>~~ILd6_>@#LKB&a5Zfl&=A=IlM$+~L-2_ZW&8X!1(vM!Zjt?&SYaMTKIft0 zYkSvW1*}B$H;aehA-i$G86Gf5Bm-jsQiY;jN?yx23i4WxeFwG#)W7-#pfxlB>mf)I z;**lzcY&_s4$_PJk3Y;|sj4xUPO`TVR_z6;5cv#>8S5f1+- zjfkW598mgEC(7!G*@I^q zrg0gf2x$@MDGNax+eF7d@GRV~j3Tm{nwo7!OEX&JLl+M25ND(YsWk?+kUq_^ci%qs zcA6J40+(?hkF^nWDY#Sk)f{)oAgl|TTebCp#RO6mDxHIcprRn8=4dO?IKl&f;fY+= zOk6(%VB>p7c#?x!|D!1>em-ax&CmNXdpLh$3AWu@~?sOw1ud?Ze#HDo6;~3vhH)L)w5{ zbKdQ*plxs_!V)5JY(tvO1_kkBDMhpmO2Z(Ps^l#hcBMS=x&W>M912gjRUp~K{ATta zyPAC#qMn!jvWx5HG;D09Pl+ihpgE+1gZ%jGm#ixTxhy0htV|wSBma`<~2? zQD_Ddqb&IFprZ6%z-zqA(LP>j*!jr2{8m00;Ot03_pI2%fJNRoOffs0AMn;KO-4gL zRGENO#luWWo~l-z5|TZrxFGm-4OH<39B1havL-5TIr$x>2o~|HvXXVn;1romI<^=p zQFNkB#5*}eB(~zTC-Wt(9BqUkZx?U;6FF)o+2D1-SsT?o1FwQxGb*&OB{@O9d1}AR09rCmfMMs?uGpW;<#A9JJ2&+BkNpSc=A?}EF$wf<|0xe z=JoJU;n%UTkE|~YZd@pWW2tphlI;laivW0l5c=1aFPsjbJZ%2`TMW2^4o3SkK| zwJ-0q65=f}Wz7+Xbd5twAT5eby%vXw<&y0K*9X^`(0+6rKyaYy1)djHEmZ@oSg->F z4vf&`79}={32H7XmlZ^0e5Htb+a9KNQSJc7;T%^V4mSu=U~F~|=|UL9TPU5}(=W3$ zwQR~~+_GVfIhp6rqN5d+F6)HCyUTzU8yX#mu9DP!nyJ}6jd~Q-2$oQXZa<~Nz?QOdtQiBgWfCl9%#QVI4A4y0Y*Qd|0!Z*~eR6hv+ ze7-5$S(Gc9avORHvGI+rkDZT+j{LfX>01IT+KI4@cRNqzWXS^pKL)xTnH1})W?ZC% zH+N~?zX=)okd#D`hegl=S=2V=g4_}re)zNk3_}1ZfJ)NxIo|6~)PGYxm_H9xdp>O> zodlI0Lm${_lxxrBB(*r4n>u&x>wHbzguF~dZw}4She}ts48arNi>#)H+V?J15>l(? zrujIDzGYl{I5&g_|D^9nwHMs~iOm=am(PGI3#X@Q#|&)cozH`DEn6D-^TtE#S1*KJ zqEzSQ2b`BS10`l`xZgR`A`9a{8G6WLo~ITR?jZhEmAweY5suBxO_1uNEm)G~H9i@j zNZA`lJn}Rf3?S9a>#6ps=xx48$-Aru^DF$*JdS_cMP$D6cS-vjfn(>W&bbmn-Mf|X zDp|hugElR@Ue5>rpyS)FuOjG3dV4`;j4!!o*Y#Zx#M`=tAUevozD|z1Cq2>jBZKAa`u}0=yQ7*+yKjSv zIwD|06c7}`F;6-#|nUD!pR$7aY4 zKCb9L{y`^)5yB!{L7)znovjCLJLruI9l&kvtmH8&HHU@rhhW488)A`&{*l=~h8;yZ z$FBh)aV5KYyzt?xVe>m2i}!NcFVBQU-`fAtsqZu)Fg=mu4ft``<)KDm7Se~_AEwKg z$(>z+)2%Sr@gao)&HNQ&clF^y+io%7ze8&8u0Zj;N`D2QK$~ww2d`f&quJY7SDkR4Qq7qF9=n|8I!GE0F%oyLg4QcF zYXTm!e~Z{UX27-wgXARN)^VG_tcbEZN3wGMJpa|XYGa$CaD<<1D-g*Is1{CJAO;P+ z1L>GeZFp565Up>vEWwPaUoo>9Pw)8fljz?;4~nty-R+QDB_^w@5{brT)@3)vzn}Q9 z4NQDej7?-hOoD6zYh08YE5>8lY=B%Z$$8u5{zH{4YB;Qb za2}NonxF{yaF*p``Wwri9fU%d4xb|EJQUkKj`)};iY9)OrqQ^!4m|&UG&VQ`@tyFA-Z+f}-+%WY14Y}ET(Azh z$zqoI8}64kuTM6zbz5Fqn@IbVi2)I6qYsw{uHld{_wqR9W8A;OsRKJ)px0)V=eQa@ zq%)dwkT51a&#kDvONn=n#|q+YyAxh6yxYC%)f460)}2UAd0)`WGFvk3(t$$u1uWl^ z+1u-ktPRJJ$LAz>q}9q-q2*t|S_F~R!barGN`5lVQD^1V2pM0Wz0h(~ z`YT1yC$PA~xHmr_5-`1ZV;)AKWGZKUl(L{@K>`71BS?csH%kAvRFD%Hzdh42^#~1L z%c)p4Q|HpX{B{@AUK-UPp*QB>2z_$+t%|3XeMqJ39^!z{NupA)nK*y^l-Wa$eesly zebTr#XLy^@dG#?~Fl~>7?;CVbc4i`7)pKn#s-^p8@CmC%yLz1AfD6cUXj7=1O&46$ z*(isE$Zhh2+FN(26=5(aEZVf-YwT>~!@E26Hz>z+)0DtRCf{***3J^(ulK9>79*~- zxh=+X);-K9T9>E9q`6AHdCz8~piATQ(kX%GD!E}|*c zClv~u3%@>nWd}Bf?B-pNPU*R2OPOA}F~afC&M!Dcp{>FjPKK$KSD~Z_R-_Ek?A|{H zEtJ$dPUFPVQLTPoT%6ZmRn80b$0~eua%y7&ZiXY?i(_ zK_tT2`Qbs*`}Z34v+s2G<|ACY;D2QLrfr8i#CL7YDBF!I{3Cd6O z-1yT8W$#0}!fF5#`uAmV_W#e9Iug|v|K$Sw``*X@f4%wt>l%0y6iI@Tj?xR8b3%s!}7e))m4Su%r%>Q_xcfUKk zQ@7(%aYRc!>hha9e77%~i0pSilOuL=W};km>1~%y%%7j+_Ww4WL~CdpC%!$`CMJ!0 zByAOFQ5j!Ya6$$*mroSiVtFh+&q!fK|MN2L|8I7A814VdmyC~_T3EcT9qSa;(A1mPeY=~d@lOzMth$J9D;55W1_a@oI zS|}C(3Z12LkSyF~p)1kKrWU`W95&>g*fRCHb_{A1+SP-9hL~Y-Fh7=xoqZFKhzCNk z2N4umiI}*suv<~yzf z>ju^(;vQr5^TMJc_DIp`@NzO4ts81@vJM^{2n zsK9zX#FrMUyDWFwtk{D;I)D}1R}&_9MgY`laj6aq4M4j^ckQ11Yi1xIxpX4f1+aiy zy2dFirct01L3}rCISp_90#tF90=I5`QbvL$SaJqy<026&l)|odqy6oGyr9vam94zj z&ei_|(+9tLJ@pD2DV_z8sv^88o;aUxtv`@WdVZ_(%Ii?}rx8sCOBIVA3YA>HPQK!* z8i^Okfq>Ssm>FU4#mpGkAe~^P1o;|_GTb+K!omnu0uVNk@tGXoJ;O(9zwhHKv0^M| zaetLp)yy5ZR4~~^cw1nLs1T4qIbi+H>r`(0-P7SY^V#7_b5xT74=--)O-!mm@Wlz9yw6R9INp z1`u+@J$?N|%lNRc(}-)%7m~rMzXbznCISJy##RLNBkS&frGZ&r6@kF1}4p`i%w;H(9qe04@>NJRcPcJC4!eMzfK!bp5q&EK@IWF&b0cs-j^30?+_8^6` z&6ecXonCg9RV`M*^$nKTB)Shz*@E{#HJE#1>iwqm92USzfawF@#c7{YSYOrvJP4k)t|MZEQDI zm>}2pR{o5hcWhZvM?d2|a@~i4|6}$+rvS-&sz(ir?c}9I(?~6JP9sT7S*BX2#ucn|{QXOxX5nob;z3f7`flA6q!hL38rBN6-87 zpM?Yx)q=H;Dziep?!H2wQ94R5Dx44*63RYp@sM8%OGK=Z&@e{{C8^G;uM$wF@# zug$7JAM=o(rd7-$?JYN3I>h&t*9w$x->B!vnP?UtQ8$J5TCyh6@nTqYwROqro2)@t zjWG}2CrQtZO-+AMN3@s-_WU^{o?R{{?`|1BPJwnIxUi^4*h0CIDtz=tn{V;bRpgei zEXz)SJLlj`;|RGp2hy^Inx7fcosJeK=@ewg@#J|o)V$>RRUA1l`aVqR%a6`EcHD~- z?EUlRT|ch5JlYZ;UgK=7Ah7Ok3{>?}^HQDv6Xx@*ur{`|$uw2YQx1dW^I|RYLMT@oy>+D; zs*WPF=r89yG>Fb)xo$_E=;sOwZXRZxFCALt=Uu#hyi2bWji#3Cp43kxxK?!XWo6!P zno{}all-+GQ*}g>w`CCC3qD&89aT$xqNzx?-0d=AmsdW&(oVq4(RA(jJdbVb6t)f# z_p1viak|C<{Fs`XXm;6}rTeC0d_n9(-r4Nk)9_10D#)g&9NuHD?LU=K85MOE6Y^XV zV-vY*(_El(m0CfiQ_&FZPbg<#@70Pgwl6xe^oe(azX5r5rM^-KM!&_5?Tgq0$n zPc410zd8z^crcEQiid4Z3yHi+zC+_GHee^rT0+c`^D)mU{pqXPc$KDE0^Lj?Sl%X$ zzd>DCObOXe4tnYws8Z6{=NyT5>xS#U#mhb zM-04#kZooCAH6uPO0(63SB~Dd2%v$VH+0Erevx@`Z|8&G67sVqS>q_+sb4vlq+Hz#lV}^!R4Ns)${IJms5D{h`8NJ( z^Xi!d)r`CE^yk-B3K?0;4te#CqiIX&%?G@#ja*cIGt_oSZ7%QkS!%6yYQ~VqirP>Y z$UaxEaQb8-`!;B|SEqPo&JgQ|QzP4>yjM#~*TUW#G2{&@URc3GJw zs*d?CpQV46?t8Yoml&@^-Q8r??j%I|EK2HjA1r;oRmny>im___*;v;#GCJ0H$Z+v# zndGrW_=eUa?v#f#>`8RG#fGqMlN+f?Pp7e`lAid!q1q5M=CA50zk6X{SsNqtD^K*4e2kJKV3C`OmE>|0+$o za(-VlWiC{@qo-if^Ii$uy@D@<)nrfA6_~AqAP`)7m5}eH$x|t|RS$gc4Z_|%0eAJe zu{7bU{5pbvbI^!8nCyiwUi_`IwNQC=8HPLorr1#tadzAh{_f5CjtRJ?w*0IqMA#7v->-ObWL4P z7rXDYoN@L%09{wDF*`Ob^I5N7{ctEA*3SJhnpW!MAkh&3i=ySiY_jWg_VbYDsi^Du}sQsb*Mtm#D5MkrI%8$5bH(|)|mouvuAuC2yK#E?Ge>7v={BlD5 z%;N6CqIJ9A<&L`#V8Pq>LeGr}+!qG#u^BS=Mt_HwVX5{v;aBrsxqrcW z?piB2H6;$qv8?EjJykbl?d)CUF?4ox@sN+W+49TK#to;EZtft4zJd!zQKZ+Yl1eVP z7&|)X`fgK{Ps!7j3ZV7tKck}7Uv}&)BgYAj0-C9X{_CeXP6U+}k91RSv6$sFZf*(< z-6`D{kzRW;BsI%sstxxxV5AzmxGV4Up(cLkMD;e$7JLbX5wm;j&{QM8*2lrU@i*5F zvWj=VuGpEa?(jxy%(}NbC#KVVv{otzo|IA6OG<%$?^VzzxD=UV68fmbbH1Lk^CRx9 zuV(h}II<_Wx1J_yd;lAtg^~%nb;!QpM4N|J(tU+yj5x|avBO^EoxE?|U0u(1S>s;k zrr;m|`QH|1$B!#3NvYO9eG_Maxx?G{pPgKiL3!EGTdFgpM*iQ8kUhP??~uqV(wD0g zMf*Q5B@>zxl#lu6rE&Pb)A_vr&h$B%|F17~o%sADY1I1e=(6*QW%s~O~g zNJT-r4f$J9w}5S_7W@U}(=v5KNc3WGl`)@25g&C><9+&Y3?_?v7cH}AVlSg66kBxk@43O!lkzF~ znT>nrB`qM^hBCKL_}=U0BN>~Uw=$RHwJZ`LF#`cW=!KMNO0S4`Fun)JptL@l@Hbji zvbRCk1NAZpO2e>V%b~$)1_3p3u&?h7nC#9QIYUSI>)?6>9f#meK~q#vRCIcE|GRTt z#`ez+dF&xecK`gbyIA$6mU+jEprfzs z#bV1Y;k|hAi;IoDS(=Qo6~#KY~1ua4Axw4v$o7?9DV!XR*s%H zOaq_+L1EvOH8Y~{dayL;ae)^pdnK_2{KF)L8P}4F1oG2(G6#f?b8R0(^YG<3>vDQdkl)O_(STqg0Uq6Tkua0F41NtYeUL=-yxon0n{oycc4e?ClW|Y`@r`cxW#) zWi$6Ar5lB!{8lt)eb;{8!QQ^d@nhKg(_z2UOs@WhX1%_Wuf+}Ej7ezNoAAXJ*gJd5 zs4UkXzB=)yU%q8zaAZiwbkFqADpIEYm5?Ukl;q#&)Pr(h1#UjC`2+>6-O+2d;OGqi zPcp%A0oE_DFNjg8K~T~Ki}+?-85r@tX`&RVz^@B+OM|uovZ)^0XCP~(*oIg}1Gl<` zd}trlPyIarY;LzYlr-ycEW0Mxa}N(^2KumUVrR2(1z^i;=;ee>oCizi2m7iMO< zsNKLJL&a@{B^0`GhWQV4tMz;}rmw$M5lq!U0}apEP+Llyhpyw!#di%%Z1t^c;MP9HOGpAET`sq9b!z^39^rSf48u-~ z!<=rBKwmb;7PZ+6AJG1+^kcUUZm3;w@y@80@??~ zR0mOQ#^nmaHwhJP~NFIxtTvaE_!FJv(=aJt65m1tBr~lAnJPW`bss zdG65!bZ@Vov-4d%3FPG3+~q)~8^Xg*2`T_gS(_}(PxW`r`v}N_K}!L^X|n94NCZxE zMQv?P9JR8qj#WKf1!HZCC~J_R)ej(4@@sqlK5o?bYX70UclR@J&E}~kLd7P69SYg{ zVbQVmeyz~1z`Q@Ne*NhNG)JFFroZO61w6~l`X3-D1eW*IkrkM0`SqF7#Y4mG-fI=_ z-iICJ|7TQ{|BNd8C}>e~-H4Xm7Lqvv4r3pU`J&Jl`9hk07ahOf<6i44#d^nbFx9QH zllu`kg#g9GmP<-_#_GlO^oWOUpefV$F>SsM3 z7kcKw7m@2QdU!aS`A*EEOZIlrVfgLTI$rd7(+e~GXLT%`a@iBJG>h3|<*}?sxL@~} z?gA2H=-p@T_6#@9#Fs$>Mp;`Le9wIX!u|UT{(|X*a(P8#aS;}f`V<(PxZr9b+LSmT z3O0v(Pv)}k-jjjqbM3q%?&yMX)H~2eN2_*}2o=HB4Z3H`Kw`p)3Kv#_xI4aUjm5IGlSnDD2zs1x~0 zIb3K>82txQNh&@C#I?1V71$dA=e4)vJZrqW(#FPy@ z1lIpNUxf}g92fReGzaz-CHtIDsMiNGDLBX|#x`A_CaaAq!?wElk9XYy*kIG#s3r_N z<%JhY_H(FYLQL`15bW|_fGLz?wQDY%Bfz*rg?9VCH#WKJvB~E+KTt2#^8WqLBI1Zw z)lEuMLkjqQyvr6~G&rIBbgE5wf6vS`MZNUi!$z;g+jTe|gukZR!_f}s5HUum-1Yi+ z`tV-lrF3*JLe)43oB0=$sD<3m|3;GadjDmQ^FOarjNX8T3;wNIIsLZH}>KlO-8^3LL37{7<{aH{W3cJ?vrjlJ)pT)FY%2^Ihu|9KUd|2L(( z<^N!N|Bt`aP)g(SeY22p!pl8pKLz+R#oRzt;~R(TTB^3iOI)xXG?5Jd#?9;+?@nj> z;CiFUr=XI$E0$e89<!xv_r`3)OY;hn0^<#if3H)rK$i0neFx=3 zcC)SY7GjD20${X=QM6GR6#|<`{}s@kS_8xSC_WgM)1`$M6$P; zmKd`*@y(>SwCWT|1I=TF1uO({=PU>J}tlShYfZI zg)wODzZLBkPoG*cFDrU{@Df@YaJkF4Qb>^x+_9+ECN@%VB=#ZSPu>4X7ZRE^K6>K- zC0ME=kNkxo*tuk9lpU@TTn>XP5#2ndBffqG5UCq?ci`HY0VJsfB%_X=vz=)x7EGjyDPZ)K0C!okOHUyCNkcD z&*r)w+u^bPDR0teZ}L)pJ1t+&$mt5Vzr8?Q)OVf!<}QCgpvtL{6QzqY;;uNH^MQ?n z6k%sol_Km3=+iP@;N?;hx3jgg-U-OcPa=2#jDiHP$>N+@PKT=wjGBB~g+C2*)rD?N zK(dIX6fksY`~9E-i<^hXInT|NGufpx!U%6buPAUR;){#|%S8Z}DxIfrlQwAgbi-#s z=ftfK3s{xWBbI*X6Gvr`OFuCH&1K_b)7Q)SSVyj5id3dlp~QuB!VhiuVDC)a4p&NC zn6+y17|6ExM59DO+9(My$y~8dW8wC*z{p(GOgE2VO2BrXDl0tqi?T%`gzO%cY@U`-tg+==gZ9reX18mb$Dqb7wnOQ!15~UMPc@7kuiFyjK z55pW8-AdflnD65uJFl&wGp1%*sQOTNs1b9)f=k);|OV{rU^=mEil5mR128bML}PIqzS2 zo$O-mY1A{zFW^%)c;r^8i=zn|x=2P=t?OkvX8qvSajEz{)?&)t0t4Orb>;^JA0ZMM zXdPh1L~?!C=XWx~Gl~Z(D>Ftc@LcHV9L3BmcBj zlL>^BMNW%4&|Bc!^XtwPY&rxexduO)yg6+?GrO?x5Q#+g62KVfLr_ zLnuBF)j;wLQ6X3;tJ!Ym=T9%DP5lC5G)Y52fj&mwNGhnR#}^?f*zO<*#cmLwZtM`m z{kX&2IaQ&XD%2*EJD5$PijJw@cmm?Q*47VPL0sW9*dmMDoXFhMwQC^F>+0@STy`@{ z1D9op9SnBD2_jEle3<8lliJz2WG?>dPqC^I?h)MFin9o`2EVh@s(vlLqmih3qb%=` z2!UF-9-n^|hd@}#8d>8ORs(W`w&TQU`f z>gT*;VoFNmDpOG71jJj}KZEXsT0?16NmVs|-uxqbNYj_EU&qXi-oS4BNZqFZOY3ME zB=$Edqv|c?7YEthsHwJ(X06w1q^6lh>{+K+DwL811+MSuExGBlplP9LPNFhEI{;Rxj*Uq2kdinTSXEk3`T3-BGu-?g ztKkpt-W>%0!%HELW##0)0%8L&Nnv3jq)Hp44zIwi#VR()x?nkK->Mx4{v)VRwuMjl z>cVqGS$vR)MZc)+GUhY;`6c#iMgyM|Jv(nt+eUd`fua z{~fR2*OUg=(_2#+%*xPUX?)qamjHML%%&)Z5W^DLsQ#ugc|MA|lmkt^M_s*XW z(sz`@q25VqpT(<(;#oiXtBXc!2fcK;(;MR23e0FM@!SOeC;ULOKmjx+IuBINQ1EU$ zA1iM(R8?2{Jk8~J<4Fhh=9}xh(?hd57QJB~a?%{2eH+A&kRVT)!3Gv7dvMIUZ(WdU z+BKIDr|+oEjPJ6HUfpwdg&|j8(q()u{1ka%R%>MN`FP2vt^HK@$J~xymD)(+-AG$xc!|YAzEDF3$D+CLh+t)8I@=e zCVb<@*_sX3OiQbEm-`ise){i4Cey7lh*H9f#~XG6FrWG`&N?3q1#~drAGbBRSrNj&6GZ^ zbC0Fen%ss0F&{gwh@EJCR|EqU(vG#rhCYuzF2P zbzAs~Jpo%{ADF}NAfmuAQ+50!jj) zKD~?|^1+xF5~Yhw0a5D<<`x!GUS8sSav^}Os66in?hDLxSu2CdTDB3%9n+|HfH{Hc zXv-T$hU%Ur{O-TY1Bc2nIvkY%w+htV>XYL=1i?tTwN#gJ^#I=$R- z9Qfy-oUzxyyo414*`-Pc7W@ULr(Z@^cHmkztIyH-*gyyA$YM$hF8_y#eMJ`0gH5!%R)zSs3Qjl$G ziwXz`V7WBS%s434;z9jgU0=;Ym<22gWX*8xv3Wa?iW=NX+gkpbocyrz<>@5>fR#XW zffmJJvHk!uI3WSt1Oq77a*z@LCeojM!dJ3)ZK$vBTGf}7=V_T{5^&I?Fp|Q@F$(}V zgE}0r1bDFUcc5N%&wQS*Ug+$4p2Ns7>i|B56upcn2UEby!pFR8AG+YXpl|?LUauXNmEgoHS z1>`Y*;VQU~RR*E7xQ0ZZ6s$cEPXr(k0P+@-b1N0x`+66T>v^pW@KlD=z?M-xVPmWrYZgQb-r0l(VJ=aX%WYbf>7}JLd^_0bBZvvrtLH47pM& z*g=+6J|{XDVvuWnlp^phMp2xKXM~wB@8p#tgJf}odZo7D;s7fp#gTJEPh;;ON%eX% zP8Rg{ApD02{0GE+P)+@tQW%ckBI90V>c>a9G3IFpkfL6T@c0%cP z*T6(wyOe^Nx>+%;t*wC@7+y?^;>C>b%|gu|Nz*LM26W2g=?_^bL;x@B6+0j>ZX`W6zBxqJ)D(*i*Rj+_kf2>sbGLgaA*x0yAuw6lhgr-7HDf!Mi;9_a?E4^zHMX5 zV?KJ&P*94Q0apZSG~xtEl&Zl#+nXLIqJ*ov)gEMs+XggC{ZImJ+I>tz!$ZM}hhTH& z;82(?o1lt%(k2ZD9;hetXB+%%Qor9tzQp~)uMG$p)!&$88UP;Hwik$=YPPh9-ddnQ z-Gf?-hjhc$;{qB7%baqy$xt@2lYc{LgF$m(%Uz5DOd_B=DlD>r*DECefWgT>#0Uy) z-}d&wZi%-KE&xb8#M?t=Uc?4Jx`f}P5OhRk>qU_jcj^kS3}^J%E{;@*<9z~cuTQz= zCg@ESgEdcb^VECHU(W3?UXre2ed10PA~gwen7A>N{H%R$UEiv7{$*%AEOj~RPCcXusI z%^AY8pWsYob#YCHb5lQ&z%4PS(AZn*CEk*A3goWc8Egm#Ojuf46~dZse*k#Tt{2}(0Ws!q#DG`%Xj zw!RBZ8g_Hjb!fz~MdbGFi$2zV(%JMF(tA`#c=kXGKg2R%F5gab7p%WXhSs2UrbC~g z7Zx@2CY=wCf&(Os!TNO1R|UOCIZtR!sX9HD53JVag5c(81nWO|ccbDPGspIz%_*sZ z{e_~b7Guze+*U0?;|c(WD-5@|6A%Ap_Q3~$PIcbV$YP|oS0&elji&Tnj|JEmOyX6D z-tJHbcxQcAYw2SR)Em^+9Z&ZVICkSXKBmwKGbm;w*yL69`0F}9{0_Zb`P7d)mNcEj z%F23Y=a~f0a4}RHI(vJ=3S$B8+}J2Nx)Mpt25^2~!DDf~#|Pf_ur)S+?ZMakxoYnx ztX-`9ZFK9b;Hsv`hl**t>(d@?#>PMM1k@_+3{zxDAm&L-N|GYREPHft6%Imfp#F+w z?a;;BDn$GH=h7|&@`LIw=h=i?MXpY3s!6tHF;~V=nnUR^T;j(qmuxo)O4;HVK(id! zNVJ;)7@OC`&)60+2rv3K*rqNXcN}hM`-Sk1ieiGeTfK;Oxfs1u(b-W}KS-c<;Pd;< ztMRCEzO^I6GwuX7!{N#-O+=Mr+e3Li0RepPQyw>~>o}aw4LRUBQ7|!a?PYZl@?s8G zWE>Q%Wop3S$KZQ@RaMn*-6RaY9$IG@blMT7+YH-HTtH0}<(aDah<)Q5-Sv#s^Z_`v zY=8ROc%EOYjo-Y$!`3BpBw{hvB<5rx3%H=0Tcpsroea`b8E0W)`gQKMDoRgH@S|{Q zWROsutjJs@dxm^B#g5LgOm6>NR#q13>)&tJB_X1GH_2e7#f& zdVi8$Vc#U`klJyH1!iVui#8gy>$9DzymcDKBz!@KHMMR05+>9f6=nnoviFp(>s>=_ z>?1#8`jkqCVGOd(tlNI}O+NoTtBOQ?i;con=o0D!zD0<2SAW$T^r4=}0==uF+FbR+ zgz#uvuk3{J&{Iq0q>icsx}Kr-7r{OKz29xHZ^v52#}kV_>!v(aRrLYA@>n^cy;e~{ zv~aTWI~s$*zcc#_B=8?!Jz5L5zCUlMD0TI;?+NUnA7!shbtbyc_^tSpShHMJVW!9n49Y3P zj9OKquHLpzi;H80kU(u+g!$Y#G_{~zq2_If`2_x!n-|qrDS{-%ENDtdyfje#`nZ2+ z_l)GVQx7C0-k5L~z@4|C^V(cl7=F2Be>A(sHX&M_4HRC;#RZQJW*+*Y@i4>n#=GB~ zIiA6{@jKmnb<*I>v^$ya*$&l(8wyKo(?H{x0Z$-b&R)N?uatem;0~XvmS+9>k(=QU zM(Ep4-CFIF<;6$=KX>Zs&VzR4+}44hTspr}vM7)ihRfWft+ zIIokWqOM&=5+jFg*)fDBfAdaJ`}WdGiG2Ar&@vLnhg|Vlw(afiHSKVF0Pd96p2yG5 zT90@T6pd~c4)4=jV4g@g3o`q4jZ?^X=odbvt_LEMuB#vqe%aDhH?0;#4%a=9yRm$~ z8Ok-(%}1IPpi3OkBDCge<%f>UCLHcE?y;w0%@Bd8J2MnV6N!_*dF(_G1PIY9|?YqK$EVI`Pj%Vo2Qu_;yZ<%vfKQ1xTGZFDj{0w7vh@AU%g{0@G3&imaQ!F;m z(BE>zHij+qZn6d_=F`7WH>}V`-fkIzdpF3@D3tb1J(=NZVQJZmR=;)%3a=(H5AG@d z#H=rGqpjxJZ zEFFkF<7%Q6tiIYHf9Zs}1NZCmdO}o%=Pdj4sKw&Bag0k3-mMN8mg^kx5a;V29*$G4 z)LIm6IB&*_c^i@bpsjertI|%HZrn46wN}l_ae?unUcoCH{tc~oZ05p@BZMg3M7(W! z9f@c6sbcHSpx@6BwK{1YH?qKP$v|&!GR=T5hUVGqRsx*B`MCP^gqRv#9{g=X=!c#~ zJ(ig&QB8$+tBgqg8qsk&^k?z8m&8lL@m?)ErG8HopI6&KWVt;aim|~5WI0cd3Fiu+ z7%23^H?c||0j;OwGT(0KZ$H?TzyoWS5$S#$7wZ(4RXPZ?lVJH23y)W*`6BG7V;TG- zeDJ#;Oc6nIMG?qyxZYnFF^V8D)f>ZMon_eA(lauo@y-7#7fJ1fx?7)#e z@FQ@K+NCsSqb{8mZ02`wkspGBO(>DU%MJw5K|kux~diQ26m?&prb z7?6B~tP`Nf_6N?<&~mvBH^h%x!8#sUAGz&e0C3CoM^KK~tYEdmp)qUSiG~1mabuvz z{Qd<-GJu5SG0OAeuCmE>+uQX5HHCri@24>W`K2eR9W1fXgfNr3u}2>orMK7t5A!O{ zX7*1tFO-`x_k4iR--QwQ2eD%J2K^;B0i{Tzq)!!3E0PgzM4F3T zTxeVBeN-*3Kb_{MDQ&ud`0tVl)!Dp5?{3(LNj_DGjZ5s@a^V_3bV|R1d4ybFp%h~W zAm4t=1X@PL_@qj1jf!yQG~6W!?33k>VG3R4z>z$hPx9~veAlp5+_1onb(A>Zu5%S3^y)s<_awD9EyASJ>>mqhWX#!M#3~j zpv(cZ%Y6rrYz$Eli*(w8d>SlUAoautRCTWU8k3GACrM*&Hc()N))9uZv&Vux03D^M z>j@UWeqDH-Dl>n`tE`Ur>TML`=hRRCA)URlYYF~nlVr)xej_kKd^S1SGX2pe)CM7Q z;jY@YmHKrxp}uWmxldy`s=X3+?rsJ>U*i|=**=??$Ut%bN(eR4{z^hp&bJFt=~L3l zskkE!jIil%w}2oe0jh|ali4S`etn~(I$3MkuWxPg8;_qz?~|kf>vw}8Zg3*csktnF zG%HY&ongydPSRgh-4)au&s-q9VBnM1=M^J0DeQ}2>s6e6Eh1S^V&lww{F$d`RXkO$ z;qSy1)}QM#27#g!4bR!*A2a#dA4~nIy|wIlsra`FFM|74{y$2$0)xF)+3z71rH)31 zNFe_dSd0ZJ#ZBYm>Sd0c-Xs$Le93Hj25@)4C&Xmy4EU@7|15QTuQYl5IH%*E;w1AO za|B|QNW>0QW@poRRM4?lPE~jntx=j_(&}M$3%$@ z*`@^(V8}7W60PkvC03O{XY6v9Xl?|>>s80a;eh1iE89yx;&q(GgP-h5P$P@Qg&Um! zmF=!ukxy4|hZoe>;nyB?7rb8o>+J);t{dj&%-`B7$ADb|{3vW;KMByh$1%*Va5Vxw zq1Q7oa0J*kZtdFXF`#^+cnDYR)er8~5X0O-+Af#E@;IffiUq{_u>3$zue}?Fau&&U zTRcux{vf+Q$#VyS7RcR!S2#QSfHUauZe%F$nWG6gIrP=rTehGs`d+|z>gIHXyR)A;mBoFS`y2&*0&pXbc*P?d^5HPsU7+4#%zI~l6 zU|cCzoXXu(;Z3Z$9zS|;d258sirkr1g$63>wo%2yt{lMVvz`i7139@i zIIBGBZU#*~}}S_}JMsK0~MUgZDDBve3{{PDP2SG4LFR zj8N#by-?w!O9>`X$@LR9wBFmQB0UypT)ihacA#*vfS{bQEY_qs_{NqD&kFiel8$ZF zL!;dSrQk<(s~a`CPl@Gy(39TOvRIgdd)9H;Su4CUl|Cac;<`~(!ghllFgp^k?P}A2 z@D)~}vX&znENsz<$tLO~-rkI}YlBQdM&>f6q&gQxLLzHNgmj_k*_PDapn=}DB7q{t zt_EA}L!{XnwL_+YQfJZY7uyqcd#CLR+4A`SNwvpyn3JEk`xx87)v8Y^2N~YCz?6D{+J^~HR0-34pn&f3K7O}26_;&JSmV$J?Fj`=9I zT@6jUj=z&lqGUACpa86IQ_U2>hv_mlE!hOPj1PeSsg9$hzS*r@;WFV)&s1(F zi0EnN>o^0qi1i|C5b&X!b`rX-!M9`*f$jQt?O3^sO7|+souV4k?)I+S33U}y0>1Bx zmRZ!5luBS#qEJ12v`}bJcQDGdx(H_=G!!H`L74;k0d@`!exNje*nyZosL!H8utCb>G=Y*mdlAcQ85gUnN2&@7f7a@tgfqM zv*tjj7N;r(jL#F0tFY2~`X_zuFfVD!Pc@1|AbLeB}AVNLSUC+o_6+y+!}tu1hho?nX|k-$!c z1u+IzhVwU$N`SR^P7bnSA92@US8Q!I(4l0^??$GU4ILaN-EoPW^eiC~!-d+G?gW~Q zr5{~Hb9CtJl5cm(>@ULCdE1F)PBZI?-3jOMP{GKBb=vrb9iQR6n2zO7Zphknh3(+M zN=tO3byG!7|BaMBHgESKmtD58jlo0ejWZj|(I^qo<>nX>Hh~54z%BZUw-v~WN0y1n z7Sr?HMjzt@v#>fbY{4CC8LIcNQw^O+ZNIQXfnz<3yAqaOZ3BdP6`Qd1rMs3T2~SjC za&WVF&p1lOeS!hx=ZJ+~p%pztpuwEWTi9&=TMb>;0rYE;oP=w|6ncI1RnZG>T zTeeq^&1xkJZz_z!^-h|lw-8xs;Pm`G@Z~83s}FIUVDC_?lkERT$l6Eo-5MV5>Y@Us zI+T>`BDMgT0u2Q4XeW8rlTOba@cx&g{2?$|ghvnNPd{rhxP|%>4>hhMvQTFd zEY>kHx{9FGoLAPM`UTirOBI^C27*QT6zD~JvZ(n|r9m2@l(gg7{q@7_9ViW>?mbEB zKDE9u#6hldz^k0i{1aru;rhjL3&i3$0i`$Mz)=O-185p!s;|}fW3tk#Zd^u z!86j^v$CzvH1E%z6NN(19;^B+=nvOqRR*cGInf|M`fTfZI9Neg@qt?52mt;s zr_?z^V(+9h3$(hA$XvDAs56<{%r_k(2xvVEWzgN6W>je+Tb0l4>%JEs3ac}P1~q4b z41mesH;hzMbjaqaCd}0dtIuS^Wc5Y9JoL+PHNJXq<~GWE&Vo#Oz!JZ8kMVrr4ID(w zlwfdpW8H9N?Q0dPry#Jc`Ns5DcgOK_gVs`^mT~P?Uj3n=^cVR@hW$Hg@sUK%;Kw*3oLE<1E{gKize=mXYmaQH41Cz9qPJ zLk{}!m<$@)3i~-xEe8|F^BBvWsHytCX)rvpK8jb(=`5_x>GAs2TbcANqv(RJr;cL2 z+0VJC;qFQ%*p?<5b{Z+c*^prQGC}#S`?&pMmz0&g)F~K>b(CWDA<+3VR+p^)l6j`8 zdR6t{X#fmf!46rRgGr9^s5`Q}$3S@K^g#>Sap^Hlnwgk%Q7fal-Bnyt4Wb@E@u8OtOmI-u zfXX5N^ws_XlMoRF(tNk!lC1qs%k3OY^UgfOM9idiZK2Y$O81wtt%hT4UYgqEB zl^_(Bb^FdQAkcE21)-#huPOi@$LuU0V+KJ_gx)cAei_OE6sZCl`q5uishb_9^O0CT zqWI=^13m$T0vpa&;!~asC;socQgVs~=L$vl0CkDam@^{By)xFm_7G- zbv+26@($%U-=(*alMA@HxVmcJ3*QkRyOK(R0-kl*kg=Irh`1!>bax#ovS0=(nYs#} zm9cR(Sp8AL@mMCeOH6S7!#Oh~)-W28J1-b3??P_FsLW4aA4!k_xf4qF>tPj5>ZVLe zH+T9jx9$&jF%+FlIrGR#v?E6|I4r#AS7{xl53oRb#DAxpQEOs)4-W)`1pPkEO^w14 zkk4p~g3Ly{Lq*s^ehsFXAYoZ!+5^rT`CfLx1YG3oEnH*%u9cCYd2T>%ib;0dYn7h! ztUSm{I3AKTcLr`8+iI{9ug0cy{4Sb@6GR=W9!dxp@$}|b?#Ew^Zo80{Ow}5`MmZy< z`};VSi!!+Cni+7T{Ql>Yc~doZn(TPPCkBVtbu_}E)!e^dnJ2D0 zodKsi9ZMqcI&B_}>WxWp)2974JyEeCQf_Z9=6vII$IA-l`ChBFt80ywlZv?M3LS5f zZeFV9@^`Evy4gZiJ3?S6AYA(kjV!B}4HGkW*?Eqvcor9Wv-Ea;?G4lESbA&sh5bXk z3*xIPl!-n;p)$+d1Fit?OQ>gwux1%M6AdGjF@1JrPB)hvZ#byPA`xW7G6DLO5oUO(Hf_x>t_!Z}pd zLE2ZOxQv8Dh8IL5IPM=9ht1LZqIBT-V}~i$2?!E&5QkKlcC=P`0cb{`HS*IC)doO2 zC#Ml6$e^WDO@MP8HxFym+h5rplA~g)VRwUq%h)(ijD_|Rpi%FSKd|i5kZTv z;sWj*b1C@4cMJf|9UX4yo>(AP^VNLt8P6k0dt2MWr7T@zV}~or7)aZ5%u!8B;e2f- zEzrszX02j1qb?f{o+k0)gPPy@8gs{waH~4ET}x)w4x0XAyy}zod->+3H|$b#s3s&( z@*p<`lKKzP9?4`wo=&#ShT@QzmWPKFpqUpH6-E73s)^3S{yhfHl1#fx38KECn{i^s z&~h8lat~9CUe}0G79+>YKqD3D7!KRqdHlX4>2X~ev8DJ5A!EhGyPMnJKAS3ZWJCE# z7um3Dy&8D@Q3m&D!LZlI^B=p35M3j-$NAWu51q*ZgznR4xeiEX{L*;KYwved_32@2 zCDlAXh3v1V`{^cYSsq7tf?a$tCFBS+MrplnY1cN6j6e#oU9C2biVaK~4o_Ht-xd%JKt4xuxQwd~)1*H!Ss& zz3Ec!)`}uC+WoG`y-*R;geLt(6+4B8)E4q2h{zOt{pr7o&K#YwCl6p1Ib%NU-80I} zn);^#5+V{Oyjxi^cqE|2h@90xx>gcbiV2ZCj+ex}-$;D^ZGXmM5QJsOl)TdO_s{fo zwNW;##VihXVGn!l>9Xx;`~L{6Vfv>}BINY5)*EMoMYDhBl5Vj04Mu-){>FAa62={a zGc#LYSbp{KbVg#F5n4vX@gWw?R8 zXGM7&F(MzJ6>5K##7!5Y>Du<$sdajBkJo8Bl+0B-n3^ ztXrb_Esl9e=`HJ~fFP9D$+U1Iu}v z(id{(t7vbxwXA39}*wOW$1s}?&DPh?g#{8V-alYSm?kScEVf_oIV@39oa^vXH^&M&5?YZ~J1;osS84#PwG`%N26Wd8D-c@{frc z!XDyt`>hBcZt3$yrML_&Ll4sAQN3TtH~LF+>0=#AR-RT?NDb;57vv`c++Hjj3)9CM z8lH%LGAO%3vd|Hvwyrx_!_-0d6_wW^0UklwNL(*1eTD{A!4L!*UI>oQ9wT2r_#U7F za9|{%&+zk4_Bi${xdy*nZ;DiU+v4i8%CvwW0g50gD|YEhKY4cut=S!Y1~W(>vVH{; z$9Vbnz4b%ySb1e?Bxa4gjAurDBS#;9%Hv2Bd28@vx4m}G)l;w7W5qd37*403ZUb#Z z#C;*JCyYA?zP_bL4D~j7NgDW{zRauabfHiTamm{-@-|m|GW<>|Z1}@Ms{zJ)ednO&K>5!z1)S3xHpyX)cOfyr z|80A1O}1=ZV8V)@Zhx?`;rp6|@{Q71 zw_C`x4DCZ)`flRZvkrpk(bewVd9^0U13|!J|NNn}-qOoNFww{^rHw(1FK(aVmOdMC z{lDg9%;!$M^8SaKK>k0DkQx8_*ZY6#2Jr6#{|}7<*iyXW#~3^y7)7wF(G_VeHn9Hn z)cO(_Y6Dk!Uvw8HAV4qx&FRXK9Q~8W)C~JZdNI(CH+0<_E;&Xx+k2D9e)^>E2hML#CK)1g7qH?1TqiTCRcq6E!&QL)XBQTmlzrv_qkbutbru~ ziQ(}HFY4+X$FH#O-JKuoI1ZFtodh@!oW1kjU9dN76Mv{DnR)U+F+i_vX++ibmwzIy zZ8qF8>M>p7WpCYbP!$Jb(81(n}QeR@T)K0RkM~!oFn40{G{Sc zi?&lxL^qqYv=4tna9@1q3ka~F6MP!9kA-^Zn~MBxkXj6hEvp{{c9H7+p<1+*u!u-! z${|41pAFtm35S@~W_zTOFn)93=VNzHo!3M3^F|k=n%pP#sR)+)4nUM#GDR=Y@pOrg z9s=CM1%RU+u{<7|9>4UsCtClK1A7dB_Jakc`~GFnaNd(lZvu z+=a{0>()q;bLCpc1tjYi>bZ#&dwdA=jH3q8YPfiKuEA(5V4mblpznx!mraU58^p>8 z7xd626}c_o{=32M^_^l5WR>;`Wh7>MthQE2#4tQTp&++$3^OlQ)jeKd`p0N~^)C$p zRN;*>hr!fn2&wP?W5}joPKS?cpp?~X3zgY5(D zB0`g#TL`|8ZS@clz^&Z%XDOOTI|vh;Bc59fmgF+e?9bYbe1kH~{c*EaOVbT}Tw|z;i9`ExPS{ z1bx7QoPn-_F=eXjOv3o?VZ%TI?E}VX|L`9Zcg9!_wm(bz+2d+tZlX+(B^PH_s|0;8 ziN`R8J8kf`(|n|`Q`^?=^T$;lISG`@iFdaKyY!Dp$#%%J4&FY$$=i53QTijPl~j1s1l!49F62LEfyjCj=5@ zrR#Rr8x3glX*={cO8kZcY$Uj}9){GE4W72V;Cf6D#(``oM2Qbyt90YT@E@~_a116cC5S3KMpG#a@e zW{Q5oOvR94UtqYpV_#t=_n|63QV5qh9z@O$4ds$^7u-C?FR;qQ)^OPIy>STzE z`Y}>!EGGVX89*P1*UaJ_NqBL|u=4fpB$jXeWuTgRTi3O}rd&rY@L3_)D<=u{C1q=+SWNu!`Cr$B`&Qa-qxMWEnNSipL2yL zHPntXIjJD##nTGq%7Xk9Ha7pm(eZw1&Z7(q(d6Ef6n>@qv_yG6zLFk%Q_)n&nHI9& z=I;NiJ|XsS;P57!NJwnOUHOU=KSY1c>^jbfYJKaG z86mf$P($_+PhyibLu(_8?9Vng^33Kh5F;vBOh(Mr5)ZRtL&A-Q3XiqQ1N4R$e?Rp9LS->6_`{Nn@{czm)NukMJxUa=|XNhy#l+vH!eT^vsS09 zw75DG^>uVx#KVF*v8pqKNN&-0Cr%lYilH3G-XwhV^AN4rLHac9ZfCvOcKH$Y)7J+5 z&sx~pQgY*NujVkhjDkq`AEp;OGh;W+mTtywToGHbq+q*1!VJfRDYJ1K9Uc2arX*E1 zqv8}l*U~$}kqhW6?0+GZxGwY9i@W6gqNnr~LYqrU5?0+i-)#Ha_dag{e>HVvZxQ!+ z4xMV+SOM%A)0N_1Y(v=Ipa@yaGg+YQKZB_|=H4l`I`N!UwfWwUl@={wIv3wL`Jca_ zpC1AJ1C1~niv!wO_otu-rv07)m;$>LK%a*om)3)W>P&&0kz;xluNH^(8VF zCC)1s#KV3`RoQkAA_)X70=|EvtaEPwUr;pU2Sp7)JnPkvn03< ziTHDT>!T_H5t*Z%xVK^ZZc<`BLWp~aP=ua6)DXG95cZ`Gq2#>9*(V0H=`?;jN>G4p z^OI>veR&Cuk18qoHFxT3HkXEvL;H;^Mj=oG(t^Q$W*pBOieRdPR+fm}T-b&DP?)|m zqoRd1J?0C_X1b`2pLfH}x+mF?=HbTt@ZhAR6lQNHU~4=7VGZz{7!9c^n=@>J!PlBD zkdGd^sZR1XA6GBIFnfcqe+du6Q<4g5&*}xzsCB=0tVD_Hx#?va@;Qc*V7S;acU7cWIcG5% zD%;;DYvUf}#jWu5u3<~W)sk}=GCae-^yWw;y`kmuP+qm^r;D37i8T|lMQ0or#@RG0 zXspJ%uCNu0z_=L{Tiw1aE&W!x(4@$s#cmfnv0;@f@XfpHiVE||sUs{x!TUQ36xWgv zgEOS`O{a-}pdeE;G@L72WP2;mV|v@4rpnw)`}G%)`PqFBi+U`b^4fYw%4sb+4RV85 z-nVQwmI>Qm!uDrr8jVJgqwA6hRI$a~;fZ(q@gv&}Hc78n4x_$pORk(=hSnCCfEgiy zm!KP?9aJ0$`H`Rj|KR-FNGb9E%-gm$5OdS=}cvLBDSWt{ABWdto1 zwWZ^5yQQ0G;jR<~*>afKlj&4^>BsQ;P0xn~M4*%`KzGba^J}TOT`NqVI?UGp>27us zyRyY+5t~8vA_KEaM+8+a`q*-9mE$B@sh2-CH^bld zdXWX*!8NzpS1yM~N0wRxhr9!7v73G!Su2dz3^KU!;*nDqX<^CA9#{O*_1Uht=a8(d%?2t*`W+eX?yimMX2dnTegqZ zt(AzhFW`tLm^SGWpMwK}*hl5s;@-f+!h>LKo5vfcGe#UEPl!A^*Au7A)1nf_iCJFg z6PVQRNqD36;|aG*C)%yjmX=8*vk@CN!8b)6QHDpuIp7${7uhX|?>{^wZ~K&g<)bb8 ztc1bySZmkh=&{XLAh<9C3eBmbUeWy7NnM{Gzk5{Ldr%>qLo5s*v{?c}wajRYv;G)- z@SmI*H7iO_lB|Sa`Xse6G|dQG#xMo3gFHZNFMkF!BaD7nqsrVd#QAw4Gt4|$0AgGW zDi};ua&kxfv+A_g`hGuCP$2V#*DKT<5EJ{GDwvy!??#=<4QK20iV0xad@emnfp_ez z_i(PcN*&Qx6b-f)l{<^n}|pR&$2%~ zT^4J0K0~`^FKeaEb^T`)YJppSfJoK6CN}%U{K0XUA z!!x+=Lg#GDg}w~>nyM5Iyc+3(*AD=bVq;bMe$TFTa7uvZ2#07WRI!pfOAH@tvA^>2 z@lk_;VRpiVrRZuXmT3-SzW}y9LT=jniWlnNxd4vVz@|V3reUJ*X$5?!t%1$Puno3* zv<4c74;7kUCu$T!Sdua97>=>s+}LP=9y9B+VC`~^fw4hR2Qv68y&7+6nD#qN^>qwmv^|dRh5uU8YWKC%C15T>;TMksKNRqrCUBQ?~ z950-`)ge^>GINx%{?ezln2Csuc_G`ZpD&FlcL8w&av>P$_4LP#?d|TaR^^P}U+mq= zVeXaN+9`{W)WC3{^BVizNRcH|mQ>qzeAdF|-qviRr6tdm#25PzrOO*TnC}60nJzj! z>~=UR`Rqn&;Lc!`r2oiFUscrQ=FQ1Z$H_c>ILC@yJ{5Eq~}WOmb31f^XZ!pcmh56Ee($aEvrA|No$jIBa?91qvXVrbf{>{oCYpRiXw#2xDM8@5G=pE= z@JVAT9Ua-T6!>u~$n%QR`HuZcFS8UrzJ$ z^UG$_23Y-E9!#KD4cq}?c_5U&;s819P5iQ>)^O7X?8}Vu?w=n353@Rub2Ki+rkph5 zaW+3@*{8HEJaiGH@y@8Hw|CqicemF$ej9iz^a&fR4zwos&zppue|u*I39LK-P@BQt3qD)~heztWY{X4t*&pK_-2C%N6+hlZAhOQv6|@k0a3ocwD0 zq105w@_`=(aoM>IImMJ=b)jHkv1|^%2OJ_x?be=oWgg_7P_D!Uuhpp*uTEYk{iSvu zHn-(6f@<>@y30uEIaoV!=JqgNXn?2FFXMy~V+n?{W6pQROGJYMO;$Pq+RCCcPK?Fh z$2zR(FW!yfJSAG_Sr%LlU$N=Z=^9`>gQcc8Y#NBAcDjguD~)zkX_@{ysP6!o-o8xl zr6D%9>(awvIJ08@i)Ghrh2`2eaQ%h5YZS?40~CS{)6? zCh0y@1;84#WsFu~l&J7(#kA&v=PKhga^D^UhOvn!Rl#RPbYmi5;_2aZ_zQ=a(FuZy zho<9DVVZMNF3n+(_xnIGI8}%T45`5q;Fw=@bSiG+_ZNj;w%S*i5XQ)w_{fb`xI{xa zYG2to(|ULyNbgWeIW!T)`v>);C{#>J3lu;nt;MXLB8Kl3o*O&J6}=d5x*K&Ag<_jt zn&f6%4Z&=MtU^>!kS}5bjbwf5)?wO!c~ehl+LM)?b$oP^OC7palP3mZ@&V00-Q=&I zZ3nU+&}rb%AfOIB`tZ;+^O?7IGMu0Nk)a;13ObQ^k5=>!F3?VM&a+djqB&A_oC|_F zp?unqW%Miw;?}j&XKfbm4HYQPpk?fSeINQc>9Q^Ok-bn6PuudfxxrkEuQ!q9r7kR0 z;BZQaXOv$KiXQc?gV$#QP06c>+Y{@!hRgF%gQ=)kQEj0CXjQj=B zq-9GOJB)mI>%#nUomDz_5=|re#4kdh-S4r%#wt*UEg87|UB?&!GLmFnl=Id*tjs42 z@J`4=NF)KXy|ws|hvaq;|0s zFAN%0;$gjNnMzxFuSWgwYMaIG_69n#cQv>WS$nN}Vs=xc7yonU<=2w^ASamRGW0Lx zqYw%NyoVp?KYWY9$Sf`|M?ys%;2xuuelP(Yd?dKVygre4ku#W%LQ=ELX@+5${lJ#J zueEa>eXf$Z$5=P@C~KU9-LH030op>CwLNE5mSfYLlorg1@#~f*Brm`?3KZ(qD+mtp zkaHlPU$as@zp@gANGsh+sR`;BoVu_oD#rwrPqHd+J$gt~>nnm*an(GD>ha>p$iqxe zo`YYf^C_l}P8=IG^xfz|NE`;Q+#!YLkcA-_@(NZ9E%l|46@@}dAGay*Aw z`6EDv#aE#4@EwF{H)Nidbd?cIp#qRE!*B^a0cZhr0y($6<}DVyDhMzq;=VhQ>Ts7S zJ{dYMSp(;{v@CpG0z_-hQyCej?uvKDt4wHrEUA9e*LY{LDj0(1LWN%@W_B zp5Zkjo_vDPg*^#hJP;A`VCY(mLs(c-GTVMF6i>DF-q)>~XnX{>u1HJ6>*GasZQ#jI zboo6I2h^OzxbN>cvU)9GhS%S8R`0;SKJ9&vX1#(~o%`|`x5k;wtzO-b>BaiM?by-W z?Kbk76Jc+!#jSfMYjw-XV|p2bqr7z%hYy_5FgkekHix(Bja>9Rp(!|pDBu|GFsGI0 zzmtkR+C0FVUhuUb^%}^1kms*=TDdS{3U505tMC3-Nd#}x+}+*q>1XYlt5t_n!&3!L za(NS_)g_`N0^XNR7N;DJY8hqv>F=yf6d~`g^J>b~&jwl!bx-iy!BaF96`A`b9{o|A zQ}9U<{ulvzYbwGN?LBJbwJ;q;AOG^F)Cb0MCvDt^zCtz14ga0;Dw|q;$Bn44S3D?` zZ?{g<@h72Ni$r>=xSuo@M=_IKqD+X0v*Zr^j>n9023 z7Pc@wj(zU$J%W3nbQ^Bk#Tb#Ym_&`m4O$PSG#c; z>ke2M^w2CDTgYHnCtlX#^PIhRWO#AlV+I!<&F;TCxMEW|4PqAYfsW9bYgDfOu^P6p5br^4j zBknNHu9T1uAHKu*ya5yS7K&^pGIR=BVPAy`D0#{4btcD@-Lb)}lGdmWqZ{9B=9)n_ zWCR9GB|)?Q2K7(1KY*~rZl*Z->?#$T^*a9iqqy8rgHp5CWUakFUq2zIhWIX`O8vhD1s!jCNOE&C0dNd zd3btuU$B<8;;{-mzyOlXXB5QkqHxdK)JK^Z1|=k>-mas{EBfXQVEImvNc7R_Hrg@% zXt;+N-wl=vY0y~h#13vYz1_(hRlbq&H*4F8BfsZJvjzG?643)M1_p4 z$2<+S9s96)oHWMETfy2IkrflnHy)H-C`HMjcb&Udu8K&lzmWAl;|~+-@K9n0JA>8g zf!v&@H$ELIoqn-X1RKdX(Zn_v$aNRFef_XJ`j_Pjlgsi!-@i`wxdF4kMp&8XjaOH? z6wZ))I~8=vrOMWQywe@1xoUG}OZ&@U2TX6hV&KPonfV(j1O(aLgy*jD8#w!HY(>-; z(~>mJNC&T|6Mj*dHe}|WnRr;J-0a20^cB|fo3Mir3MPwxCOY*>GJYf#4JsO~AO+93 zErk5gV6lA*wqq-NE4MN{&s@W9B0SqFNN(&119o*Y0dwV*ir&#Z{=Keboxgm582teI zwoe%`HJ_g~AeT3?GKufXO8O&<%hsCk$#-dF6NB7N2OddJr4q_RUcV@EZLwcUnbLI! z%nvA(9A9wh0Z{IUPDZTj-!^+A8b2Ubz&Fm%CP|%IpW2Pre=3`x+LDI=^WGf?D z2hqM6GMpi=@OxAB$StYcQPbiR*Bp!4cx3|b3rLx?zEkja8P+~kRy}Eqj~yv@V?4?V zd5jnwOMg?*JSpI^nnphBGne}j^K9AO7d{OLxyBIsVX3vvNh7HO&tstWzJ2Zy0P*=v zb2TnH3iqC;!9imq3nSOB$@O+pI20}2<)9$3x8dP2-QW@(Z#|j+c4NLP`TWw--Xr5& zLqE5j`K+dl)Wqae#2$)ulOueidsJ)czYQWg%FcSTMEk?bSg>&V<3*N2T5lALAQHXw zk?+ZA#HKQ7`fBO$Y|L$FQF8LNN>g9W$+hL{Qy%)bb6^J}wJ?lfXpvPbQ>vAunE3{t z1nQIe#7|dO`bj}Dn>bfR#I!kY6YZMv<6oo-0m8(F_%X;<-CBvkM_2MM%)>e#c7Gw7 z`BDn6&q44hoY-*u$ym>UHj54Bwii4p9=H^C)oHi+30+FS|%aa&c$Bey^vz|YmD zYJNekrwZDPayJZ(En%ZgytU{PMBQ1Tw|^0xM&61%MuWA%BW?Hn*E2~e91a-f)H_Kp z9fSrjG%Hyxn=5lw!drR5EKR+2ML#J}9Mi&>vV+<>Pf{^&Lu zA79bovv61~&%snwL`OCzU`0a~3Dxhmi!Q?p>gpx3pIkW- z0QOCAhDZxln+fI=UjO^?+Kfqvn2?SYlCzF42 z0yKyAS}lOR?S&Fhfc@Fr)^>_1rH~{CIRow7cE)*!j&RJ-oR>$+kRxz7oK3kl+$J0O zry^IM0Yj5+ls9JvIH^j%=K0}Tvb#D1X0q2$cHuFEig?@J$f0sJI?i__y-#SoY!#UxbObjD66Kj zlGC%Wey^sA@awfniHTEB5A)krM!&tFKS!}@Y6>q-n;zD8JG%)Vtv+gXy&@d`tI~&j zHvlwYj7D#-b@$vCKNlsw9ue1iU@IuasiV79zX{gD4*f_<9r%M}|eg$@s zRa=6;qO#kScE;G}GOc*i&#Eo?uQdc+D8LmZnd18?Gk|05s!u7XH*X4tUOM3$ z6ha%|%YuRyaK5HvFU$b^g+pg4R+PuferxR_2yPC^Rmfd$T7-(R_4S9Pw!MEOn*q=N zcdp+WFkyY0Y;2Iyi8kgGGm4eKm%|{eXn@Jh3-kwjUavgX*C(8#o&gna4=Vnr4nI+u z#Xy6s`xbz$gSQ4bDxdG4M`l%phHiz|Z-vh2 zp!>NGYh(n27d@@xB+U4MNpQm}(TO1(eWVqtK*<7ZMFuXJWMGItc}40+8wb$&u{)U#rbdDg7+h z+YS7%I;AIBUJA)SVq?QAGaN-tYb#3wfM$k864f}ymdC23048UTHw!`&Wx_cnqHM5% z-a|6b$s|4~RXNaa3B+V*!+}rH_hLS7bEMiES}n8!GoyyXhQ5@qpK@ITv>y=*yIl+7 z7iimaBSR-^)W!+dt6R42x$^HDsPXRWfwJCI(wj5t={Y$$muL9EyOIOaLOfECH_!1P z&tr)A+@)-KB4Ex=9KXZm+}iR_)-qN>z3De4eOAVX>H__VGSH|skMdgXH4n>ED#!uk z0!7J(@=@uKv57n3z5>~)&C}gjm3nhrkM6*?lkK+1EphdRY$E!*YxpzjabI__*we@- z$r3$v?WU4K)BN6-!9;F#>~Hx-W#@sJVq<$vh!E}J8i$(F+-dTbJ%;)02!gV(#Oj(up92MX*@{ z=(fS70&=dW${mN_xRm&=P6c}@sX2V~mrrHD{;a*E%Io*Df>z$S@wMK?1m}Yd7xK2h zsw6K6|JEcyAmoD*FetNsa8k~7LPPct3dPkr*PUbuA_?4yvFzG~*?MSB^DjE*E#MX3 z{D7=t2f9b0zZ*`kdeKA+AKTRPQuy1!CkJ6ZdRzw&WZB%*($ccCRYo36HjC1W6idrn z3g4<9LG%m$m^6q)6ljPR#yG8Rrs?kW5yag(<)$7d`tqs#KC0x<)MHp; z-I5V+YE*&y_s2o^S;C7{1@EQLM-<3i3H`4A5b3}_SG_D2rEt~%?d+em=h1+K{QJW* z!qUjLe*&y_yWm<4@($Epbq@~@M09yJw*7n&KM>Xa%m2{p7IWYBp%SC|(;oqrMxk!s Myn7@6+M{Rx3tw+0n*aa+ From 81399873a5f4c7b8f09aef56de994ad9952daf61 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 24 Jan 2017 12:45:39 -0800 Subject: [PATCH 161/210] image sizes --- ...points-mdm-windows-defender-advanced-threat-protection.md | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md index ce8ce653b7..190210339f 100644 --- a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md @@ -37,7 +37,10 @@ For more information on using Windows Defender ATP CSP see, [WindowsAdvancedThre b. Select **Mobile Device Management/Microsoft Intune** > **Download package** and save the .zip file. - ![Endpoint onboarding](images/atp-mdm-onboarding.png) + ![Endpoint onboarding](images/onboarding-small-browser.png) + ![Endpoint onboarding](images/big-browser.png) + ![Endpoint onboarding](images/size-change.png) + ![Endpoint onboarding](images/full-browser.png) 2. Extract the contents of the .zip file to a shared, read-only location that can be accessed by the network administrators who will deploy the package. You should have a file named *WindowsDefenderATP.onboarding*. From 1864872fd50a5fc924a725a3fa75cbe3534a9087 Mon Sep 17 00:00:00 2001 From: jcaparas Date: Tue, 24 Jan 2017 12:50:03 -0800 Subject: [PATCH 162/210] Add files via upload --- windows/keep-secure/images/big-browser.png | Bin 0 -> 87552 bytes windows/keep-secure/images/full-browser.png | Bin 0 -> 73835 bytes .../images/onboarding-small-browser.png | Bin 0 -> 52922 bytes windows/keep-secure/images/size-change.png | Bin 0 -> 101384 bytes 4 files changed, 0 insertions(+), 0 deletions(-) create mode 100644 windows/keep-secure/images/big-browser.png create mode 100644 windows/keep-secure/images/full-browser.png create mode 100644 windows/keep-secure/images/onboarding-small-browser.png create mode 100644 windows/keep-secure/images/size-change.png diff --git a/windows/keep-secure/images/big-browser.png b/windows/keep-secure/images/big-browser.png new file mode 100644 index 0000000000000000000000000000000000000000..e2341dbb87823f0c3eeaa00dfe02682c33f80844 GIT binary patch literal 87552 zcmeFZbyQSs_XdoKinM^VqDV;RATd&+fP{1lNas*Pqar0Rpc0}W(hbthC^f*)-RaQX z1H;UBMxXcbeV_OJt@Zu&{q?z)%f;b7=j?s$xcA=Yx(!oPQ6RoXca4C6fcVK{xn~3f zmo^9pE(~2c4_tAp)YhAwfs~L)PHYSjk=u&sV|!=J}2@!uVdNMFJV(+)F)0-52h^ zZwL`T6fosMz5$UCbUtfj$)m(C)|Hqnj=$=vcdr>j@H~!!S}zHI_51uBtX}yeQs6f1 z0zqlax3<-b_{-F!&~=MO!?>#u27-?nZ{)Sv@K?WiR+;lsE|w^VE)aa@V&y7%a1OZo zvZaa9CxI{CLWY5mz>>rC-OyG1VlJl5QREvyQ0O`V3_SYE#sB@@g%4fv?KCr5A1nc^>%kP9YQWB^(ew>V=@OF*zW zsucA5xk?MXXBqJQ*+5eNgFKV7CNQQ6*W)O0FsK1Pw1Xe&U^`4~IAKqI`toKZya8tqyhD>{lT~}9==V3ZH#Z&&zK4bvW2D}4kTmU=ofeY0y&Nlz?S`w z0jnNihi6Ur-zCV z(piLEEy6adV&qDnlm5#Zfq-A#_~QwN{K+`XlEDj92YQ|cJ{mC^NI^~8E)G7%oh3_p z&Ern7w;7Mf00;c10-Wd|ljER(qb;lvQJ$d~ZUuan)f0f->xwY~yyzWZErOTz|1g10 zs|hANU}wxK*?~XSPUbRZUlr#jXw3%5b{D{h;5qLhlE<93m}m8+8Ie!x&GssS})Wl4bec)uqYB?4SmZT9c@a2Cci@?si+ z;2e?R5Z_zPEAroMXM;WW#q1!!<7DTOwgPac1yf%ps~~9!<^T6%E@1{$&jtZyab=g( zJr>1h&@fq%nbYZ`2JAsmWk0b~-A*flIUqlm`D|ICz?!+?WT*&R4L(}>1TkR$KY{sv zfmEWGgt2X$zACABdQcxf&kv2Gk9cz+v`2HGXz# z7~4fGhOvG57O&5gS-sV8YV3uIHK=rKH)8hN?@No48s{v$pvNLO?X{E?7b4lWYePQc zvn9!GcmH)u=_;t(U9$A#xVP$r-Nx%>EzzG)(fJMs;x#i!)nicseDZF3c-nIzGA{W! z!ctNde72t@b&z8@!@$ZV@V-_6wl^Qn>)o92IVFvtsQyqN30>wkA)Ysy(VJWE)AM0q z!)T~gJM#8O>?zwpue&Wdjf=Lq7tBAXY6Zb6Dl2M&vCC;u>(^2u{q`2ShRujaU(MGH zs~_2VbrQaQ2SyDgG@XM{A#9kEzY0GP89C_mex?Ip3)n-hub$vy9< zeAPk~+L7eOo@o3)u2+Qt>y+pJL1F870j95JU(2wx)<$2q5 z!Ia5bY$moUPCUh&nNH`_km-=8yy=XXQPe=#KkdPk@H79~`a7Z{1P*M~-LLL4UQx80 zJev0D;VvR5_!K-)#SQm_(Icwo!%UEZK3ru=>JdTXZ9_A9 z!*e>$yh9;LGn<%|=NRp;clJXoH_f}`D;OVZxDjOO(ri6UqLBGQDjusgjIy0o9lGOE zBe@8wT|dg)-OJF+7rJ-p8J=JOo7+n|G+2k_hN%mrkgd)y2B~Ve|&$ z_po_TN!L1%Kqfx#YhI$He3M&$Edyz`X|qCbr|DJUeVI%{@3w zkEkpgKFLlNKo}(DnaXf#M~JBHa|Ou-EOSYc`47mEzT6XxjG+R?$&=hOw<{;|cK8Ft zL{uIefx7z>ov&4FW-Fy3Uov{ek{(M`SjjV|0z!o=`95p*WyB@T9Fjmz7IT`X{Mz#4 zEgJX|_l-CNM^<$VPf3GGP=KGRgvQJq4O{mVh3?%gyFzJaho#^ zw?Ft*ecD->OQ>kZ<6~ZCQEeD>q!k z!)qlyN7pamLXcz9=XO>L_CIOu10L_{v>5`I@(=Lo^cyO>ZMpcU;JRe z?f2n^H}5;ik{65R%9hJtucBnK-tWiv$W!Gi?%AS=20QCdt`v8*8NCQze|NUYk|h4c zag0iEv~B(or6}R;3+r*(@x}&3^0759PPHcB{T4b%vFdsTfjy#B>=A3_K1E)wKc{$N zA5ZI*kq%CJ$}w%pM$2U@rLU|!q9fx_zuD1fRYP7hOtl?N8Tgb<+ix-#0~X= zjS;!Ys#!KD_ET<-LyXa)(F~H&QN7XUtCq>^)$t2^h}R{BoY_itkRO-<)BG+!;X=Qm zya(5Gm=W#V!UJ{J&f2Nhv7O`fxzF^|V(xe^>h|_$7k{cg8(a;QkefBG?LhLZIj`yYs*nmLt^yR|C^gyxa7# zqJ`k+9ZC+qYUP;APEf`pZuk!;&D?&gSc;(j(dz~sj}7kY*AneF+$?%|>7c`@X;`h3 zS}H{jC&o$4Ny^$+GCS_oNW~3)HKpse`sP69#_q+1jk@S035x(PG?CUbN75S|DfcqD zG*h5T@L_SfJBEev2NH5lviD-_Cg&oHzt!@~M20wqi3MLs;;!P{dczSCKmLA0ePdA8 z!MBu7h4YF|XF%bR@&RgJr^r2g`YL^AQb=AU4Ow- zsnU*IHSbI&>e$Lm8tW@Zbp4f4xApx4>9+)ma*9u?X$Bv5Ntl48Pn02AKg5TVZ^+uY zk1P8z#l~r<`l(U-LAxxEoo&7*sP;1^o5YjqG)IPrr;pspJbV`Ls2Y<#F?$WPQm^S6 z6QFNNhn6Oq5+HoYU=`|nKd-E~JmgfT<27A&0#my=_glQp^n`Fs?x{=RpzfR<${S9K zu-rU3YuDUi=5QIOD8zW`{YETDa?7DAV7ek-)P2BoY}ldP%4zRBl!EWsn#oaswtKZn zE(QE-0zP#;DgBN7BNrM3WPjOv(sv?E#wvt&-~Syav--{GGhZc{}12@CM%V^?OBhA9`*fEu1A2Ah4?wEtNjoJRLZKjtY=#=%PK0>{k9?4YDKs2O;DyD3F)lF?E>{jLW zwgjA2MhuNPse#~Rc<&fdS(3h!DSww|;4dmvIF$kOYVtIX8LC9(K8rVkU7FjSTlKk; z^H!hsmS_!MQEgUcpH`t;;e!VwRET$?`<|9MqhOZdmNzpcmGv7zxxsmh$zwjn9jn5E za%E9Np&FBjxI6c!f2X`N!(VsCgyVgJM!i?@uG@5xfj`JkxC658M`y zo1-huM>tY6T7poaS?>^}zJA+XsP9J+` zcH1wb)2WPRTUqD@%~KR78;%{I=FN|OIP9*jzxGJdtS+M1eF9f)-fYdTr8a{d$h2A8PhFynGKyY6&HN7&BIMUEz2Ol%a7Y9-f0a* zdke;|5Q&C&iIr)m+0Ao*ScaO9Rxj|^)-G-<&q!%2mZcK=NWyvEed!0iR`46@&8SEZ zxM{vrh6$eVR;~NB859eTVdXYv6!@YPDMShyIOWz zA3J~W08YVie}1{IP)qx?b?l*mB1$h-O*_cz^s-}--{daMssE^M+ufnJaWfL_Jnaax z)=a>{H(8i8=M;=kg&jTVk)$Y*Tg;R`rVgLnk*c%iN@bW9xDBcJc>4U_)2;F8fx%qj zNS$iig^O3|gJJGk9x>c87Ywi}b!jEttt!%6963csnO$R!LKw>C35d%X20 z7cA@`y0H<$d{tvS(<8>}Zbw9&a?@=AZ3B@Z2|8=RS;jnS&kHZaC7WT0*VP4n=>bJq zO&u*6;60BeU?*!r^pfa*HWrKE*Z9Wh$$_W9zFg9EDO87y4XOX@F z<(K-@SS2u}Tw_17shcrsjKjNYH&!vYCw^NoEN%vec3<$H=TDoqkFCl@@t$%x_d7UW zO5BGPSh=o3kk-=XdCcb_iA+W$D1!}SNs9vOQZRB+Q-t>wU0%4NqVtlAA%p=Db;!du z#0qj`U`rN}>Umlvc`b>``|EDjOEBH;INIFN_Qaref;0A~d9Q-ow4mbBRIdEBYdxj?(6@L~G9nOq9Mkt<&gSs0|H){)~EN;U}ldv62_WsW?bTnIp z)5|;A7pIkXqUphpz3yE0my$>Jh*0~THl)u6K53S{xdrRK)}_Si{l+kM$-UNUHzJBY zc6mxhHt&C@JLyuzm67wmguZv3odh2QB|j7y$s_3qfGP2sdr69h+P?9?S`bU^zg%s(z8 z+}k&Mwla^N%ggL3Yavatr;aqfj&OMs$%E%9Kr4&}{-fTFr-8H4qys=ZRk`5lI^~2&vqXdP=R)VdO-c@7-6?>Q5L3KB;u-pdi^}RH!kvlv<*L_vg;g;w=&P z1+dmvoe=p;5c7ri0?`V|Y&H9Z-7#UEqSUrI<8{hFW-xqDv*Tjj=hqRgTU8&ivx*QC zZ>du?jAaAO_~%w|$+b%L)Q%*R)zg?hjLwN-E>7QGp2VWTJ9zGQMl2tyv(F~$i zf-NYEiQRl)YdIv>SM7eK?>+-bv3lu1T_=w$jkl!sdy@*c*}S_ZFGGfN>wC5%_K%m_ zB9}JSW48*&STzuu;KD4hss~Kzgz9RSpcZ!k{|~R-bi;l->I$#{`w4mc_a|GUlzaX@%p;dF%N3E9uI1Rh&eK3F@*7ODGku9)~g3S z@NsWEwx%lFwHs3IRp@l1QAAAmw<64aPp;7NN_y8U{EVRNncyg)tzTX(xhJl*7R5(i z`k~Qfr0ou8!TWWgF=ph(p~Zm_dpS2eBB2bN8B2Ft!um~Ecc=MrP@dd z-Z|C&xyG@2ZozR<8P@8jKm0#G2w@DT9i~>`nA#$yIwX?hntX>JxZ3~)O4v-|$?-x| zEKflDair+>U-Oi>+%9BUJbxpr7ddZaTn`gWeg=8ds#0HIi&6)5wYxGo zmz(Ha*piS`eVzG|2`ECUVhRck@d;a65&hn~o6}zN?c+gVa^r}+SH_ld1SbVdJ)7@){+i8MidQC(`a8c^ zA)bt3?NgQ&49{mZn4i|mI|-nsS@u(A?+@@KpRaw$kfqQtBo*^vFE358L#e#Pt2Vc| zCi^G5lB+O;0c>(czx&Gr5}9gmoIINy>dVa;P9`eUGEEQZgwiN3C6Vct9t9>FS`6u+ zyjvY!xb5p__l`ZxOLM7=VYPi;&M&?O8CTpTajUvZcUmB@Dc&Rv<=Fq4qP_C*agUm5 zUo?l-$=9-`APjR>>e;MYiY76lrohpADnx`(uslO?Wm>S7X0y!+cj#0Z-7ZykFl<1# zj{swLpbdLT+CuYdCb$z|{_a=V8Su~wdK`d&Hb&JP*7Q&Bh+%CF3kgR_E9hzJrjVAq zclb*IOV6OECn-meam=wd_Iqoj14PDDCK&e0@7ovjbV(UfwfXm`uumywB|zlK5RMV_ z8Xt?(XAdoI!KY*6!#GYd+GE0wooO_RZZVCMhyu|rvI=$Cid@(p;EYa=!vZyWxBS zm0;ez4jTp~LG$Y5Oy613kkRZh8{VFB(^1dXI~lby>}els=cxJZIdW-K1YwmSK1sI=DJpI&`hEj(2M2CG)3uN8&adFp zTn=4xLlIj6QFr--0GMFaLk zfkM!Vp&1Q?GaUadBUO)OxzzkLqSNlLaopMhXxg<>VP^fdy40IDqV@g{QkJTZmmc=&F;kjcphH^kCNI#-BFZI*VD=rPjqT! zfhOV(Zb_%(VOCYN7 z&pGoNt6s7jk%*pxulWsA2?m$$DahV9`584rz_EW%^Fn#d<*{2aymQIgXUgjoQiE4SKTo= zZluv~dm)Oi^oft!*^<|(Vj%2GAz+Lta;vil(@`Y!*HHNY__)yH16FC8nhhu#SoA<* z_y~b4E5IL1^;t00Lu$`XMC^rsGFj`Gm9aERN&L|+qT|OgXu3~&Z4y$-z}2&K|36?i_NX8LVz;XYFGC0BnQiR@rChx>}xfp150V>c@gHYIq; z4Xlrd!R7pB*G|T^Hm3C}M;z_ZM2#8MkkPSS=(Cuu486SB#)Mdk0_!H@o}${L4)cG- zy7O{#diz0V%hhUAI;`gs$5qtHN{Vo5Wnsio(&IaEl|^%3Yj0SR5{)PZDDw$wvSZM? zDiW%EOf@$fJq>$g%pHauFgPt#0#MN_Fw@yj=5g8a<;Sv?umv>dJw>Zg;*)&O*<{aI zAM=@d_^0)kIB2fuv}YO$x(K+&9P0z@0USH>IpqWJ;rns-ZP-G+-3j3%Yk0*fanr_H zfu6{R%2TzhWYxZ1dS3|}(WNB~o2{*e`pSlDNRB%w$D-u=a;e$LuM8I<+=D&4Z}KwQ zaArB`65i?p>Chm}CxH<=(j39Vxi3HpvG>J&)8)5Zd86}oxrCm^{#@{{68hoHVw!SN zqqgWJCtf;QUCZCdExX5)U9a44n;UP$*`XTP-Ma~K4|(WIOYcd|XDDh-N1o)om#_dkdQ~yflGG@rP_$f*AHALtl(~3WHb|zlG_BFeBfkXe zd!u@ovZws4@!$&$r;cfbw(jRgngz@TMWJpruf9ndbBPWt7Zm1|%Zz;h`%20o4Zr!! zZAt(g1GjAnaRBWSA^2Dtxz&W^h37Z;_^~b>1>lZw`^ngWu8t>ohQJb#L?Pz8A|2L5 zH9rPDc072?fx)vDck=cg2QY5#xe;%bZZ&GG>`snO>H1l@*MH0Kc2dFedDU-O5{DY2 zR2tS*De;}14DxnvuZTj%eRZ$5Z)6!d1lz6Zv@;1)D#k?K_7Hkh^(`@dud_-?!3y3E z6@8>E-0d1c+9w0z%u9kEcXmU)dO3O8PJMZ|XeH_PK5Lg{(q|sNWX}Un%2?W#G?ZM{ zo7+@H3~EbU0va{tcYe$7=VVCP8ny)K^QeqkvIf zk~i&%VVVo^(-kiB@B}Rz6*x(h4?Ugnhjy8*rl>9CK%fEsMx#ZKt-s^|AAUT*o<^f~ zKK2#5Ke z7^z2#aP$orGtGXPV>tME#8zY%B1Pkp_9)^5@^Xw`XO+Hkfla`@lXVRxiy>r}K<&*t zhIS6(EYSA6{#CUHvZOLn8X;6bfd4+sBT9#PWE=bYrKIa^?wqd7J zn?@ETZY$!?zANBGEx53GjH#(GdDknUF|>PCYr|!`reXw0r&{fUz^HWw*tHmrU*vzcH-siteT9~JxnjGcF z_;Eb0gDzm6>xT@8G5KuW3U4ds0L;$sFP+KI89yB#dn~-FqwSmJ{4aipE1qm-6bAmh zR5a#%4Ipypk!b9k*QIGt{W5?4s)5*i{l0e~X#NHy(eCPes75o9&^r)cEY^B2$u8y1 zQg#^~gI_~4MEi}%cbC+=50qUV8?{x8hy)~kEq_`2F8L%U`J_Xqq2G+H)LIF%tN^x6 zIP+SF6iuJ=nK?B^_UrjMa&jSW1ZpVDdoMh^c|z4q*CdtLw33?8m7M(15l@`&I1%1Rmrpc0q)l&1Yi6P z$C5Ga$@Z-d06FZpCPBubGn1GxiTcfWIQa#g3lN5?N7ECSzSOD**OD$Y_=SB=179c9 z`99^wYXOi6tMjiUwE`kt^_?R!v6haxw2kfwX!yf((j|gu38J=^nqmPWTp>9aE9(f* zRw7M&L9Tys#WqhsB;RF@!;+7~6qxZ8Kw=s5Poxgxmzp@Wi+O zO)jI_%fb#OpA4Ct4N>b=%lMy-1f2C?62Jq$NN{+D<$rMqM;gH=3b^bRox(S~0cd3M z$zay_=qZqy@GQ;$qR7=8<0*BiTx^Ta;3`!AH*>Ic=9nJ01I8k#9mUS!4uE>=4EGK4 zfAIhhc6IRB6#(c1Ohe9RwMzl~Qowi0|7Lj_isJ=r*bd^AzG~2Fht51x z`-=|w{{eV|*VY;^fqGX0Az>mxLi93N~i!%4G{H4Tya7{Y{F|*G@7j9iCxn~o? z{Oi*9Yc@YV0w0h9Z?%0&XY~Jdjo^OzC3ApaK=S&Q-FuH?JlB?hAU~QqLJS~!U3s1V zWPI-T^S;UG^DPqm{}25C48wcJ3t;R5Te5G7#l8PwvqzX6=3mi>JAS9YgkIHwkH39H zhL9$E@wA@={L73lsrp~@GmA$$QI zI4d52zMq_dp#O-PF^rW~?L|l@Gmu`&Zs4&bi6Lb6dJE)!{GabUfV==50C>6D+)?hY zYXlxC|B66`==(&d|IqFCT9AuyO5(p;;dgK{JT1HxGw|=m1}G_naFiqp{jcQ<$Q7CYwLC15{eLajX!j$PIP9+70-qe0W?;zv1EBxPE4zxkuLN`d!{0iP{qo27Kf3^d4ZXA3r8b=jK9~9ldlf9hU5IpK33H?$a83uVkn?siji=xD;+we&3Q4*0c!Z(3dFL zf4!~X9KgI?a7{i4_%mI;n#%I+y(tinEd6@x$?zEEHYvd||W4+g$%a3bn zzlXj&^I)0y;=B7~YI}s9P%O!6xJ8p;DgD>Yv+RFkX7^pE1Djh-7Uw(V{wB`?*74q| zp2)5er>oooX zE1wA9!k0J%-@X5a`rq%wpF|)a7$*9oLFfWkba{{W#vwDF(+-^EF#eYb;KI%;pzg(7 zEF1KI#@KTXKx4B0XnJk8$9GYXRC2#}!U?`HPCK~M8cE-`0~}!}+n3nu6fAT%WhVbN z1~g3AC^mO!HSy>UeC*kbec3NroWW^aSf0hl0*+cf zjm&$4I)OD6)kZ$3)%sC&D%xNa%Q`iV^NQ!2AHQ*}$6 za>{tlQ1#@E^CRPXz(JMxq>aAZE~lsvChu%v#+0CNPZMdsti$xaR=cNLcU9}GolPw* z+l7S3qRTA+39rSATnD7P^~bI+i+tm&`WzgCDz{b}HWdSThDf}YJ?NmbssSehJY3m) zuX$@U6-MHLDfVjQJ35$z3jI@0r*S~fsRjM6JN z)f;sbjTDFSsaV~NqSmsPg-7jgOFk2*8(7qRICE>W-&XKCYv@NA+(G2>wB6z0I&D{~ z4lw3%TF`KW7aY9=!5)?QpGA;8x@{kwR3AjBB8@8S?=gjvH!#{doA6IE$viNJoQm11 zm%Shf*w5}@%(_>Y{Hd19DTA^2EK}xf1&JD;aaf-e{a`mJnS;BVmUxd>67^g*&46wS+Y z7^sINE{Zhi2IigUZG~>)R;4JL`E!%#mcMgU8FngMGb0aABA-u~VbTZj&Nu8_p_Rx0 z-{a}hpuZzBr2JLkO@Q~FN|_gl=s)m#ND`{dU$<3W(-%+o`pWAVk%oN7`bSbg#BEL! z(lxH5@8^ZajRp5knxy;8Bgwhprtx`Ik8I=_$z^FPAX?xxqh2BC)@GkEOwK4zJ_auGp_B~MV~qP-u4T-U?-?sxld0kx~TQ`qK|jw9mS~NHz`II z;%4{~KkaDMm2E+e{B6xLZSVU8iI`Dagpnq`MnbPrdfs+H>J}MQgg7rGd_$6{eyf~B znYH?m2s#kox@Na_=A7E)T4f4|L2&L*{&J(Ln~dB%lyou3H}y1$Y(zT|->h6$C=<>s!gJ(zWjS#N#OCf>mzC{LH7miw6GmOnDcdk|Z{2dPR*_L6BKR ziW?=8Z=NQR8e2!EYn$gJj04tSz164MJHFV&zA3)vm+*c3L>;h?p=annMe%*t&>ZRL zYBlMi!#u5Xns<8LaV*N^>-&Zm!E;=}L5tCORS7xc9Su7BbGn2ornz+r4wF@=BSSrY z^VJV4U`G1>qfdR7mc#W{iW3|nJ?j6J$L#j-c}#pEuJ&Zxv3f*)iu+WZM6*A>lP|I5 zTd&~>CsU`UgT>7K6X*O3S$ta4X(Eo3y9#d?>h}AUutcCo<)V(0(ThNF`fTmsaKcIT zsdKKxN4=vj91dBd5(@nPaJZL6UHHVb8DX%w+Ej}&rf~;w6;pd+BGBYa-6Z3>lIO{% zQ6B48wA@tu2SVmMu)V{UWK}G%FA5$gJ<^~|~xwEjFT z@vpbe=Yh>`NwdWK+nxFIKqy&K z$2Yts6x1?EIDt=xNVx7O1clS%-F69g_-*BaEqT-^YU{uj=9q|6+2aXl9yb|XVXHzm zJ4IData^IXS5P{9F`bL%Xu^B%`G1vBPQ=T@&}#ar#qKIpKgiwWfZKaba;758KPDmf zwbKC#rw}!(67X(w#hiFvP6r|gpq((Q(=!+k1@bnsykoC8J(MLDci?-(-o*EK>3zZq zqUwySR(VqTA??^MWi!c2d6M;B)zQSbeDo!}W6cqthuZWhgncMjrqBV%)N!ek5QEi-Lt){VU^TkBaG(C^`$W_U?j zI&b{+2pK(5HyiS966l|m=Q<}%)9uTQSa|EdY;=!l(Z;DPm0U0_(Rz=;@g{)4!@n!G zf^$Zfc%f-~TFz3#eC{TZHzNyUSf$J~vvV02KpKid*}~VYXiPfPj&jsg3?qClsJKyy z!sKGM$Tn1}bii3MVw}m4?pGSl)d!^J*IYcCcfASUh6>~Ptk=`kJ9g!7=FL#?Zw^jE z6Fsj>3i+?GXH7^Z(>qWJ2|0|OR5Svu<@mC|q0W$>>K!eG zDc$YUp(*cujg^9KF(B`ba4~E}f8qPy;9e!ozQJ=z*ux}c)0SE~p-y(c6sp7(X`5!w zq%)Ou52R(xz8NX`)rEU(SY4&k%Y$FJ-h%;uNV%K#-yG;!W%a&8mV4Frpe8;!K35Z} z8XZJZ=~tI2%uwr?e+-|2%?hMOL3GG8k)@YiL*$Cq)2G{RI*{9+ee!~(5~X#Ht^{50 zlMLt(BUHKF;R?$9dewGLKZJaB4K61b)H%RluqK``MnUS}KVxhAT3p4@dO7sb!6=)? zxJr!|$$zDcP4|Xbhm2p+e0~8)BV3cGB-^mM=16NIL(a3VaJ4ka@9bd2X|jrZM2B@Z zo_w)Sx8^Wl(=|D~H;kes;>!o)mLRJaANDmCTWFpgHqJD()A-OH_R5lW*#Wy&hT&$p zOxk{(lOS*X{`>qcak&*EYG@U!*)TrflT($SR#?oa*oYr2lE(}FXF8jG5d*Yy>#zk- zJobVzfTA@9!oj z@B>gz&$=|1mM$c-1Lvz>?)~Fe6!^sJ@9Y?X74-w|{8L^0y7TK2_H-)>7n8dbL}MI^ zJLixIoM0w+`FCYF`vMr&F7L=faEk#RQMf_Fu-%#H`)i!|MI6*OfU|`=Rwh0Ri{e`i zGs>r6+)`Q;SpBdi9*&;9qZ-?K<@K%j4;~HQ+ktbky&nRFWjBH1J>J+mr~ESTgpZcw zkVLjG{!)#iu&JMK)KBok1x8>Lbr|cB`Rg9OpBcdF<&+S`hYDl#qK@0lnm`HgebdmD zVX1+T$!Bk318kwj!Xn(!u(x@t0^XYpC-3z_4LMbl0gbZDeABPv;snnl4Xu9Puytl2 zFrNgS;f0GGbmYx=W9??zSXCv?Fa@MinhT=vGY=jGvWsI%A_{*EzBsG9L9jqjEy99j zQG&S*t zwF(;95f7YizE5+icRmv!(11xp>^O){N6=NK?L~Co~K| zI9Qc|p}@Dx)I8(czg|jkA4NA0BKff&@V?cg9WQ3X?rJ5=Cyntp5`eXA>$XI#EnjnC zjS3iy)t_L7V<}j7Ste4oZOtDr%>yPL5E8zW;pDe%ip}dJN2sR=XODfJ@vn_CK;4d6 zuID#5m9x4lawm5Xi3_Ynl(YGuuDDdb75NoF1m6{_gF&!6jDUT8aSopV>sAC9tm6H~ z;>73v>hd>aLtjV&20!aLUI+tm%4IQ`^!$#DE?bKN^9THp zi`8rL^nanBVQ9dh08GU&v58B(4Hjva{pg=qkBXkm!ZP^o-uDHNS>*cwFH4oNifup- zL({Y=iYZ9nUEo0x@xtJffO!~<-!10PI5d(rHF^=$ecWMD7zd3<%Sj>(MGJQc#s-CNv z>XMZqH|D>|?1y>M9Gs4+-%l zeInZhJb7vylNt4izjKZ%whl13{mWdri{e0p$m1#oySjK) z3%G%S_bD?jK2>PO;o@(jmX+26Iy=gWkasRg$<^2S_2+NpC zfo0#tj5N$y!*I&V%mB9f_aX~l-9p$FQb~`R&iuA36Dz z;Q}amB>T0mu|`Q@^UH#skU0G0J&l>s@0kClDa1sQ^8VxN7YER zX%mI?(c(A~4Ov!XHLtip{{u4E&-$)P`wr%J2^0#hUmlx0heVsjKURBZ8ZAFAHIA`T z-ASTb>q(&|G+`Mf=jN`qMSxUZaDNKFW)5@Izy`yJrY!S<9Le;;Z{&WH3#g;cV0}H= z@*k;X;iU|kH+hj2H>2zm^r{5Zw%f5t^X@L*lKwvT?e;{2H4o+&ahC%2CY<7NgDd!? zZK7qvQuvmv69!?3%%*TBB^KkNnxmqsiM$}W0}Zd#2SqGAmMQSgDH3|4s;G3a+Th8m`3F7!zX8l3E<^**lxo6+kXrHkYtu?AF$F`}3}Wl9T_bL#&hABS7CZH@jwBBT1*7y~MMogUnIH9qa=Lwdl3lCZLA=PF_;w*%@8%X?ujW7AXTY%Z zL*a{ykZF+`j4lrejGJqm=Haz6WET_SyZZk6>Y!N24ZE{rLK8=h=B-c;gFjAfy@(&} z%Kc|<{|Rh52Sp_HN7w?4k1S`HiQIdMWGubQYy8NVrBYSucU-xJR3T zGe7O{PnI8V|MkD25PXw~qd;7(-g<@j;(3COeijZ)v;o@cmVFgup;hu|azJ1tq_YY* zwQjJuKM7B}PsE2|RZ8=*uhxb6J)@|I|AS*89@( z)6G!c(9_@xJbs@K@?xp$QFDBUMpYaqQ}^*QNfJ8FP89u|S`a}I$7UOrhd9BNwlL=E zB+9N~wC(8n3sIpP_6cb$$PBSUt4H@scA8&~T5>1%+ScSE4ts<^(F15JCNL4V>-pU$ z^YUUVO)O_#d#C5X^P#6TdG_?x^U)fP*TClikzozj;+rg+r6H#m7Ou_o&g%YMUxgz? zSpW_fX1r{K{(FvzGW0GSZhX%BgLn(kJdEq7JTWZju%8OPU|S_Cvc3JOfH+5{Z+ORF0j)7<+BX6>P{yRXhB=n|6?Jx8Cggkc`soKlh#7SL- zMu{`@vB_qxOOWLZah?jMQn@SpvFvMn89S^9fCg+L!!V_>fWeJXOV4rE%x8g5T>B#Q zEeSg+#I|D$IEcI?ztN&g35Ne3gIC%w&X^snQaXWmRAzbZ1&AQRbBdfZaoZlHUt^8c zZ1>h`x!zfRzAfXr$ubd>6cBKrWYw!E%AU8$|E6s#^O0p)O{Ay@(Ysik~_)*5k9rSlz=z*v0zR^FsNeGy7`-AMhx`1<;r>~dDl7$(+;yw_&$OD+0bp}cYGUfpl!hqgbL z4nOZ8d*$GmAg=B;t;s@9eGO@eJOqx_eX_Y<&nI4+di}2bM|B6MEH=9mgM94`2i+ZA zX<~_YkN0&|k#{8&k@g=UnRzcJB1lWa<=kx0;*bK`6Si8NZ0WpZZ4rs#U7O_sRkN)` zfc2fzWqI?y&}yE2{`0YE{xUlIPo%>&_7qm7XVS(rrds@FU;N>!!FKv>baEoXP+kpZ zUa>B{q1@tu%+}D0#0sUp=#zi zChY$FfIefINC|edn-#4wMy#JX@Kw$~OI^R5+jVCrxi-AvDQ)U3ZA)z^v9mrqcVlqB z?u`pE-5VP$REiEfVfpM*kU;00wv7eUy>X{j9OZ>cNrPpcx&ChjUoYEg#|c0+y>pA` z6_iW`?bC&q8Wi)=EkvgFZpdx&NFZ|hx_BI8-fyR?n`-Cfhl-T=w%S{zH4k*2D2cFF z9h4BZSV-5_0p@AiJ4`+oi(-{W}S&kQqr@3r^Z>sr_EJl7I#67c}H;TW!rKDJRW zaDIHN5RzVzX8T>LvM-Rp-D)B^N#B}slUU}xtj@z+8D}k}3d+P_O#`rsp|8+)M5a!y zA4$iv%_s)k;cPkH{?0;uN~_+A0nubu-V;`{x-oVTM$tk&enx+>s7&&mn@&)mz@Ra< z=xxXjVG0zT*tkSR7S90F?wt)Sf*F;{$K~kA4M#yF6osaemgayYzPj6wblrj-uIxm z^a?s8nI_Y8AvL(Z_No0(Qgh>3dR1{y@)I(B{s-dW=Kd9oUOm%8n~TyBHgL2gv?5%f zfBj|D59xmsW3Oyl$OUi14^@5NTO!8uFI+r)Z*{HLs9$X?;i%ldl;#$`6Ge$TuA~pL z_!ah9F+kxkNlu~)+FU1XyI6@$Sm@K_9bXf~Z_$!Q-eBGjulJ%Q2}qG|q|G++BcPnx$?k@)Tg0S2yotVFX#QzSoGh1Pv%!GCQ+8HwR`j(5#U@0s#~- zMcoCL&QhMe3!(NEx-$Cq*@2_XQ9?$6FkdXC)kfMY?T(&~*4b}Uie?o%4|Vs^s>pZK zwTe`?Oa2Bhl7T%^r|;)7=^w(Z54(Q-WD;*NK1r)>O*>ZM81}s!XyiklCHy*Yx+F+EyA^78EQ)o^cvaJp6biX!#e%$x%g!3_ zy9g&FW_Di&5=6@1V^3C(vA3wDY729^l9+pArBNp_Om4Yg#bVQJSCpnsQgB>BXCLw> zIrogJXHc#&n4|0btP9cxsHv#JO~@53c@IDM&(i1m|LjA8@UTbBR|341a!7T)Ofz1K zq&8#bt1><{fm!XTVR0yDdh1R`Lc_>4v&Y$DPJbk(6ZWKr#RGNcimgzBl-$C_bQ$MT zf8=}Fvob@z@c6V;pPl&;le}_VI7`A#y^m1ry0+1m;DOC=neb10pjEql1C$MN!$dUS zjnWpW?U6fPNavwvgCYGSiuo1Nrd@Vsl-H@yAe!J(+B3h+)#r#0lO-*&cC}FXBo}7!;f1Zy z=X`ZjPhiQG-sd<$>`76CZX|%L4{KjI_^%3E2hLGi9W&MYCAfTI^E%|~A2U)C=;LxV z5Em@I379ppAe&L(9)HwCy0b02cyT(qS@T($pjC#tJi)lSWJD%zT^qOGVLVhvxV*;# z-BiWMoh`>X+DGlBP<%{rr>`;Q*-Yn3cI9`^J0Y+N)+$E9vNYG?w|54|Dk3HPiv$LH z0}I}THU#_h%jget^yzu_&dO_HyBVG*kEG`ORD!pbBs}pL^10y-#&vHy9cC=#VBiqI`AY^C%-+V->3v zOE7TBpGQ6O2K8FojXPCKID)UvkL0=*&5qBJ=T!72rw?k?E}E~T$HVWXZZ9U`7EJ;@ zimA(jLb`8Aw`h;34JaR1&cLt6zxGl8pQj7k=gYYDnD1roy1289kKY5ywlO&u+SbkU z2oKczlODR?RyK_a3Keh8W1`g^fWXBe9$IR@f3v|z{KR!xX`;w&>W%*{jphd){tPj; zptjHq7S&NDTY2NvJgNNp&lRzk-lq{oUWSM83fCcgET z=oBoX)v8u8BB{q+g{!2z%B+uc-SusI8^nkh2p1q6z&gX9g0NlNwweaF- z)Zi5m&8}d~>+O1$NSBZn-`mV+x@=hY!rW$ehtrDP>3eZe{G9z|H z^*VKi?vNr4dz4mdp2tqXKHSo^Lg)iN?5Ys&$PC8`i}I}~FKG@u?!QgN9eD6^SQDQJ zd$Twrb^2{crcP}RK7;91s807)Wq(N(Nm+aKwpm6sH79YBQ=qv;>|nO258VBDKjlYx z>%h(k!&Uuo-qSVEidD9vbF>n>za1z4g9^p7^dn=|ey#=2W;!rjD)jYzEL?@+_uy5< z*mP^Wd|ug^3DLj;H~J>jd8CpQ(?!>c zWOw=>xF1K2QjrCHKmFJl!(OU|+^{a1d&^dVI;F1Z(_Psc!44XLpJV@y)tzfji-!~i z`oKGBofbl3m|JR)xOfc7bE@Pnc{E0!VEzJ@G&G8q^9Ux>k;TZgy4$*JB*{4$NSS{y$Z1Q0S)=IE|1mepa4^%Z4)OH;uw z^UpwZ{m4g5f%ch}1@MFvZERD=E%gY}kwnF@?1-2qby>c;-XUInsi*=M2P|dh@)~%1 zm=&ExXAB-GO~dZ+gw4gApl}o@tmDi1qz{t1sRO2Kb@eh}Y;3dc{Q=v5N2w-`Rsb(7 z8l!?>z0B?_0XY)JJ;-emJA9kCbi_d2bXHMD1+}@VhLRY{_2?Z#X|wggbJ+SWS5r>h&o!;5_#%A z$hMZnPfFqU_D3t7MvZoG39u=6sXlVhfs@%4b*tQk-u#4mdwDdyaQ)HQ&Ik!#Pccg5go#j2VAh<+Se#d;RJbIj?| z>(h~4AjB)kDsb#WBqQ}*pt28VhDc#2>}MP49vFSlibF9;mU3MbOwjriy1Qs@>8wRH z)=a`B&K|w?Hs@U@(Y>TG9#Bzn?X&_KY)5`XQqZr@5sG+lF}el#)`#YGe#jLV#E%28PyKH+AKn}jTzZ5Tr`1jnIk7Ol zEatUaD3Hsn3{ze>oXF^u3S@VqU|_nQAKH>V*JkeKz6<6M&5y^HZH|2oM6+8FLo`A` z56J2TSaFb(^liVih**1JTn%7v?m0p zfwBgWzi5eCXeXxMpu=%y5GMeuU>K)c+{NWu%r_Mbx`&t&bzFdFZa8Iwc6!iuhS&Kx zI%F>^Q|Z@){2NFq9vT`>WSmbp9OA~~Fml)AEaO}&&An18_JMfFyQ>`R_O&Z2j&2DX zoZKsR^GADr$q*7x60D*^Z;yR@68LKwr`S=dTvT@7+vKN7%3)|%fBZ3grY}mPtg4#J z=G{Y)V$ppGHN>75Uh92P_9BR})48KHT~q#$;Brb{ez$4? z!rW6wH6={@ZOFhP%aX0hgGF_&R#ky0Ok`=W4oXm1os;KfFhHKt?$acSD-hXzjW)p_Wa%d(iq^fiz6rB=$Ou82x6TCJg@`0c zP#;xy?fw3VyMM)E5zuSbMQgXHcsA80-zrM^74_?_n`7V2U$(V0H~8T5T8a;LrWF5l z5$KW$tO4E2T*u}j0hepJUSXuvUmt(g$kY8Nc~`OR46=~Oeo#J=X=sALDL+; zOPDs@`+t8>X-UYdcal%{taQQ0Y2fX_9Xxu9D^0o%t5Hr}&Jx{6hkCuhrf1#1hn4btm83b~ zt9%_fNtZr-Z^ZKZ!oO99gjcSiwLs_>bKm&vZ&G0=YYhK}Q2$NPA{HN`?)T`!2+or8$F^a0!x z^2ZwbR;}zmm#u~Whlt&0ChmHUlFn?wK5QrqG6c4K&oX%V&bVi?`eqGA z;G9}F99IJUcI-oOA7{sd&vA3NpT^K z*N1n5SIW_ay)J{W0-j_v)OhE9tYGKcW>3hecA_LLq*T3!n%~_lf^5!sPeu?c5S#Lu zg)C?_U%t-1A~2(dozU*ED3_TsuT0xx+Z=9S<)4&@R=suWhvWYcU{Rl8r^Nn-hEk$t z+LfyygEfll+FL@~if??yL-9gEE87V4ga7FQh zF8|I|VdnG6d^-l3(lNthH4ki-*4qDzAH*ZLpK`gfcr6c>o@X>-uCf;>K$?}CGN#yC zytq9>ZrUb?38J&$`H!hZYRDa(Sm{%L<*?IM0afgqz|~eJ2cTyY6(~TEQcQrx(wcWZ z^wg-Xp2}3ukT@vYP_*i9X1}uTROc;JE5L1PKx$K1EAK(zW1Y5V{fMiW2xMM0v_4&V ze=9$bmS>DguWq{X*8@O&oa^w`Jw+L_$G%plh@U<^@|F9c7Hu;DT1=9_rTTM|HSBF- z^e8jx_=s%FQ0IfyrDuib#*RZ=Fnd&-eKtD>g?>wL>NHHndT=UcXaO`j3U~VN1xQ7Y z0!WC?zX`5acK_hwhDd3S=CIJ$m!KOJ`_j;nxGmk)%-5B5GHFpP>nqL$Pv)NIkhw-a zzd&0>x2>iU`|Bh-!?jO7CKB!qqZd|`0oVy~*yH2V2GQ=oHk`IN>KNUpQ5;!jR^?+n zLES3hiNc1g4V6Vz>hh%Q!~!cWye-HMUVZH$?gb>^E@g~1%;~0Oy`k{@)YjwZ@NAa0 z6>$Y+7wB!&Tcxeqv3Er^H;Cn=DV!aVp~Z1i+?UyO*P;Cbq?pdTSLGNb8J%o59WWYR zVdke`Udv|B+wrmZ@hr5*Wm*U9clXFBVltjC z(BuTgOA;(rax1DNjT8!gJAd?e1%yPWo9>uvq#~6y6m>(3(peffSRIKS$)|#RF8%KF zH+`2)wdE3cFI2|}Z(H#T153CYFo2lMWsGRo*o+%3#qU0scK;HGjFj?tNH903f@pg> zE?a-jl5l9P|LEPmcTDlz>YhVRj%K%GkJ7F?Xy=_ER#ZfM5?8S7FBykU1h3Gvin=L0gwnB0{^z>TqdTXZ{i~e)wOSDZMDmj#8?>dsP6>Y%(0+gfp|0LO(H^=A_)ZyaEn>A`8RO|=!=c|$$$oE2Xj~V9(Q%W70 zf&QpM>HIB0qUU+k?fp7=?8o88N|=g`eJ6b>)w&0XCT4mG+_3B8JA_;I+NqJwo(V_? zow&E2pYLO~8}PPR%{#J1J)#y5k%75v$z%#$(&*7JxI@9aupNl{#PkYPzQBmWaY+&b zTpqt+#$ZMh2I3J$ z4C-38iLNF?5P_W|Au86fTB$WU;yNwD4NlcCy{|DFOZvwHJ*0Q4Ri43_V^KwENVU+- zxI4i416KC`5nt56j)h+~QY$yDZo812CI099_eh#4I^MRWYg5*sK4d-vp7q4}kImB9 zXL^>`<`l7LDwTCSrC~KnlYoq}eft{tCr!cU#82j!2fM+Zi|Bqk{a;Mz={Xu8(y=$=ak#dY!+oBew@!^iwk;x489Yi+L%~l#3|J6W zY`r8emm}*U=9=J zZYGq0a0_DgF(saB>^L*aBVR4_t%0@zU`$Cr6ZU(&hWp^F=NBlMs11@ey=c@k$8Zi@ zH9V~6%J-S0RrHLjB;ot6p;c=vmI1nvT0F{TS(7jW_x7qWOq!gtw8qUoVt+tLjAH|N zo>FWx+w4rMk|#m+eAK=yHZ#1xmluQI#1gnjWFHRh)y^>`_V{~YeOByXpGe>->?mG^ z4KtGkKR=i+qa_^X0adG%dDN=;>!E!#{4U8?frMA{Z(+kl+mydvojz<6>AhzmALacBFc|U?5||5FyM`)bUaBXt9TkZR>IlOPSwV%f%ZnL)71`lH7-7@W z4pXI)DAM2Ehen1$kEuCkoE+^ND-wU|VQYY8q5yJ}Bc*|r*n+H0iK@~P?gchvseRXT zn8mlMwih}7kXELueCyGP$(buJ(7X7LPhnZm{(v8 zy%LUMM+?1X@sRmj(d!wfc3)$3YSPCYg0_`O^rbcn2?s4t2k`g*-lvz@!wAT_knY2&*P*iesq{nWJ&%nSK$W^{wJNB zD#Tp}HSqVsKq;53Z%(rwnw#b{flza>jRGXH4V9U9nTK{+O+VAL*Y%btDTXg^m>58| zFePVOkAmO+UK6Y{SYv#I9^qboFylKbr1HB#9eDArcakg%?KfUEbB+#j*1S9)3e0}~ ziN4ze{o?Ws$!|jst0s?bHu7`tJ%EAind6Nez64N$f9&XR z{sm3`LoKrTT0fp$?EOQQuqI{x2Nir1#|ijyzwh^t5{<)q^54Hg{?A`IBHK`Zh?pu^ zm{rD#;4W9Ev=9GTIc-}?I42kW;u!$G5u5_hVt;rT zor0$Y2Cr%4D&nPn38n^;0FY5ddmWJ_V#&J9cYa-FcYOPs+?%6k|6NPP-0N^IIqVhU zZvNE|05RbHLEl|awt@?in7r{9- zot6tyf-rP>_UxO*pYsKdkmhC@wJTn4NVH;LiBcON_7@__{}0Kd#}*#4+~-SW9cFw( z;LEy2Y1($Nv8-wWU$)ZH&uWyGw@mlVmCtj!@%ij~wFzKR$J&}t#8M)rr7eEHM5*=W ziytj=FZazFI4HU43I~-<6~J<-dnNmIS8s$hwB+4~-!9yV0-Vvb9a{+6lpdf<`+{A5 zSw7(iVTu;`Px#`{AwrSM{NTLwA`HBIPE)tJc&W5rnzSt)kyrJ)1t+YCJCR*o(j3J2 zZSlQaWQ5Iwabc6pfObtdz?uTSC2>OZBnn|dO1zK3Y!c+z+9XvmBi~vOP$s4oWCLuR z-hz)Q*hwodO~IO*p__q+4D-T^NRBbkLlDq()UKz(4c6>DftfS>$9UY0Lxপne zkoijhV(cXI7WQkl>E?2q%l9d*&$(H?@h~sg9_rc~QI;8y`c;Qd*%MRgx8HPTl3PlN zfERUj4K6pL;zO%zI45zd0iM%{Zj!Fc(|oB{Na`Tlv8z++;N5d`*_(0p>j)f@IO%{^ z=QM!B60`#YPt&vJ;pO*oPBCp_b<)@jYj%y%GcNO7nH6v@7Z{f*5dDJCT2;13hhSh$ z9AlwMKFQFXolUs<9z`n%T+4x~uStOO)4)BEW-&UB$V|oFUrinR#}_=ZH0xW@1V+MqOG2pwdnWZILXkQZ_?6#;R9XxpBdt=zJ^rX5IfJ*OmW8a; zfvyLs>DFaPk4eTN<6Vo*Ha=>Z{^Zj+^e=U@`}{8Tgx1I935IkZSh3I??*+!l<#xf3 z$kfnQoA%i$a{^*uUx7Y)wL>wcnF7GlULajF=p&`=P^!N(N@JcZquQ?yxQl}I*|Zfn^?wiIT-+MQ_zC}TjC8}XDOG} zky-c!ZlSp=IPQm^pYXpH=)aFN0pK+uq^tdrb%F|Udo;{_Z=}w9vTi5EPiSDgETD&^ ztFE^eFZJsMLEV0j4owE&ee#K8ifcp_XgIt{1hDR|zrumEkS*N}{End{rQE}%*EDFV z7=IBA20xc6d05f*2P}jyuaVTwgu2^9i$5W3OmAJONDiXmzfl4ljAh}mrY*w0qGBgc zBBSzG+LeL(g%|Os9q^;oWL6-$hpU+)Z4))t#_Y#24#$!U3UbagO&bk~8%`3D_wLsF zhsM`^jk^6>wQ%MKNM)7-=D%4=RcziiaW0u^_57t3btf#vnBz%$Gj*>fk(u79tO@dl zgrBB&07YW04B>1#By!C0LlZnVKaJQ}hZxM=D_1Rg5#o|bl1S`dJ%VRMYn8Bspt>$$ zpM!o-64mn5uaLs!g}2EDIqlk+tun`pOk9rGGnh+fj}H^@q!*8MZgBbf%>)b1cGmj! z$l@wvN^HhwZdgYcGz9>2p{l?dUhGkh_UuJS=-Uw1(J1Ua0UkAA4356KR;WqR#;zL$ z06FZG%$IvILXCMk6!)?v*=F6E5QVo9^Xw4e>b`rl5Usjr2Az7ch~D<2#(?QUs+*ESg+ViD)rqkpk(0vL(zwZ?uQ~jww8YqiZM)Tv1huL(Sn3pQA3u5 zxE*h{^A6$K`eVifd?<~V5z7I34v%P|2WLT;ec!n3>Wwd2$~%_C++AKu6v-wwwT4 z_=iz~RL3J%LK~iq33Fs1U?B!G`h5f7RIB5vYEdJ4-hffNXBO^Qtqi0PNZo(p^3^dU2PX)DPp3whD$5`z9l6Fj_`J2ZhjJ z`$Wg!DM?~XIBHDr)ZZ(v9B}RkvcGw$5)EXLbAW1HamuH89&*&TrbM%-$9{$~i5SISgA3fE#OuxWyE@cHr~ z&%)Q*Ue`f{V(3T*uZ+Jnl7H%BJhszBa{z%TM&O8T#gIKpi64*OTrc2pjwQpWV@2bf zaGWw5;O<(?gqBExe&+3(l)7r5g_BqCGsa;+rMJ3&gKdDgiG3Jl+3TR>Z1J@Kz2Fi` zf)Rf5+EoZkZbjf(djSTDFHb=Ja=@**GSmsw05OLRuk~q)Lj91DLXqtZWO3)Zu}JOS zbFXmwE1}31=S+#TKkR$Zm|W8DN<-WJvCiWr^!v-L>;T#5T9kreLGGUBQZ7nKj+11) zq?(!!^L)k&<&VTdHT_}QskQ4%X%O|Kr936t?&BNtB-BvA4+lzkN%C>CjnSZ0-tHSh z`AAX;*W9x1`psVS=04Xw(`Sb=(5>RRwhn3Bwi#p`g*Kxp$su64*uw?SVICjU1s4yd z==rAZOq3%-D*N_wXN8S^w2G$C&usSpP#h+$9;JPZjft3kpQzv!HYSgl#EtEfh z=<^d1%RGsdrsz@GOLz^%I%S-t(T0TeL4&YCw~t|eM&`%S~SZMh_)WSz~Bc}}o8+HrEh&h|Up z!Ma9O3TLGIR3P%lgI-Fu^de5%Ta{$%AtrHZ@_9TL`n9|5(ICVnIk!wGVuvN6c#Dfv zKbL^KLlT%qh|yRQ8eF)5(#X9!=B1`5|7{YN>{@XZ$8lG}J$i;^0e9HGW}z{6KJ`w^ zv7GSyBz$e*$GCHj&dPRtqOZM&L!E_^*{V$3Pk0N^pI}Zx8tzGoo5rV?jH5MPwO4xrX5hTw{3NQrEic z5tSX0Ct3195*Pje={gOX{5k}}W-My1XTFc+ZLRXOt9z>YEY`b3I?<|>*L9Pvp<1`F zH9=*tb3`0V+t#V?`rO3Z!d*uD^Sc7Svp6qLMu3ii+EMXyI7WotH+fWAYgg<}fyuBI z%i()QEg8tzsGiK^r7a1TiBm#gZ8e}KR3}_VVI&~z)sPN0XkK!78~GPIDK7`GUI+wy zW)4x#50?7E8&|mRZ?gE7;Q+d~{^6RJhj{fQydF5(`F^8qlb5f!dX2%O3x>E}BHT{% zM^3xmS5!HWhuAey&DdZ{YF;UEQ>gW?*pq#pcxsy$vphOkre8(#)4R|qry6xxWSEdP z8SZ(VX+;5lhf!5TDw*Rr-4kQz7+ALQd$vT59%v;U-c|nxbn3r^Xiyr%+^MwMIt-9| z0%#8lHaFgrchzZdh_kSv4f^a-d1f2`Q6id)y9z2Swza*-Y)HFeOTIiVXq6iY&B@RM zD~@#r>THmx_JgGkU&&%&b=~vZGlOs7t%~|lYy>>)guG#{(xnQ=1?cS{NBprGPBq9T zKidQCchrf`Er1mrDLHXhk7*}E2w;;V4|P4}N~sOLd$Fpwe-OPl%;7S2SwGTZ z2bw&!phA#P1Ti$jR`v`RrsGm46V-cfs!XWOg@OBLuzQVw8()e~r@a3q_vphzOAji= zs*(M);*9|)KM#{a5T4eKmVf>Ue>HE3yHrXCezwO!66b*%`Y*$i8C`D_<#Q2tTms=1 zK~eKQ1Em+dU!Y9=Cid#GTAssJS_$iWJ+h&4J+9pIYW1ATn$(I2P+lxZoJ3fHHR}GZ zcIdoIRicN*S1V{szVqK*I*C1=S-8GbXJ-vidciCJspL7&BZ)sAOI$Cn$RkYxWqOSo z?Yiun77ktSG(qGXJZszqT5{GSOAu!;aLzHly8kcP=9A(%0vC#G#j9_leS$>U@MS|Q z|0iUzCmr-wPqWgETyEP!YM!J^+J-L(s4M_X~$G3ZA+KO4jPJz1K9|B%GOy715a9OV7jypo5+6W zkUkA$jAy?ly&!%welQ?N^z-M`p&|jzd0=htdj0Q}D|sa#w}AVzn4YzCEkoOANTET{ zcJb_-zC{?X#qRz^iU@2&PS9=#$7em&*IsbA1Lmzi=+o^bEw0HiIGM`Rkin4Y7u1{Ry)rWJNDY3Vl6 zE{=#Io)ZM_s;f~_|J`vPqlU>mW#<6~dt#=rnQM{O*7ya^L{MRAp>*xQF5HRqy5lKU z(_ONZ!L=J1I71m#D4nVz;qB@XO97pKfAU1&!Ai1@vtQi03rgw5(;+=jTro7UHiXRS zLd2sgfjWcJtCU5M^)Y8Jan(Fm6Z^7DCd5v3zZ2%kQ9nhd@VKjkp%|77I^~osvk6F{BZ!M3@OSqSj zd9l89S$}`e1Yqj;kMk0W@dnws<&%jqrN=$L12ng8m1+F5!TkSyU;h7pG(e&YP%^`p zI}!0O*a?B1en6>p)QZO~ROq+Y^4lku+wW54-6Rq9Yrrwy>(A~#^dj_^Z`}K0!?ian zM7#0vRMEjRTWy7I=q`h09V3eSw9G6^iN9}J_AfBMuLFPo)af;SYWr*;eV01a1}{f-B)nF>3bmVbF*+W81L6`&)a=NYZ5zuD7U&nr|R>>3uwa_ z-Utu*)7vI0e$V9lpIsE}*I!0LC)ci}LIWlUU5c*q)Mw|UNPQz{$YK^Jd!(lOrnWHF zVh$M5pt|l=dN*T%5I8m|n!p~k6Du&9SA9w_GV?ShzD`HQ`2yK`r?kC{;@bY>0A1Y1 zGuTC@%XydPMSJ6Spv!JNcXG+Viufze|Z3^!lOC;~V0k44pPT@nEkftM=!&c`X z`^00n~BkP`)|aX;?9xpZLXg7fgz9xdu$=C^*P`9#yTe;~CI?<>$@``g9-@K-$ zphm%G>04BhXX!Uvt24Em-1Dg+2aO76UmG!c#kdtXy7#aT_W%ZODmCHLOoLjesB*ds zzfB^60Gk?on1><{VZg4wR#F5?(5YwG>2WAx>DJZ+D#aHWagIL~R@q4LWKtvTQXJkr z=>RoV!z#4c41c{4PsWSu21+<0B(RKcgQz%WgV3>Jnu(K#PjqN&%g$0y^2#f!r9&H? zmU~DhzM6RIXTm?vu^wibPn3@z>6zPc=PTNmGi>*@k^K(8FwmR@i*EabpRTPoYj)z@ zH^sEPxDS54*bvsBcL-%#654}q?h8a#1R&ED9hy1yi>c3P$)wgH1ui<`#v;->GAP(b zw*u*hgbeDf+7gK=6}*s`TK316;0_rxf6973d>v0xgVqS61QxySel*q5GL9#?2`aJI z`as^~tEfUkG#*zQ|L*-NLjx;bIsTs|WqFE)N%RH^n5__=XrJ&POaJgvgH0R)Vr@@| z=4#*vH57|6R_D1ep{rbaOnm*fb&cebB$b*TmMArUo$_??l$-&+16quw`!pW3TG9W9cMVmY7j+B zKG6nnEhK?MN!1El5#U?)4_ADCXNn?@)_1S7H^7PQ;IEzLOZv2n*W`9gVt|lpBF2;_ z>$}sPR&K_NC)s@DBLdKvisw)A`=#K*T%)!FRu8hr={*KXMV3#%geg_|?424(8+!QU z5cLJ4yqKNG3=aA&1P{bl7{-eF7(q;;MnDZU}AQ^geu;Dn7k*Nt|1 znUfl_Cbb~|K^K3XgqyRxWuP5!o)iR<{ssn8$OqgyIvQ_FffbxFt;*)ln1oWUJZBT` z#X9Nq-9GA_v}dwhZ8P^w?-&4R6EG*NSGF!gx|o}{0I}_-cWS z?z2{OylyyDhIm@TmM5Tu{%cqa^1@8Yk#na+Z4c(ieY69%mg(_ouhn_zVVkHq$=%#@SO+Ml+{*@{}DC5oUI= zakW`cVXIljB4A7!IlHq#P60bJi7ThVm@YP{gemru0r9)&3;DHyDoKlT#Zjv`>26^d}aV_jj!NLUZ~=k3-4 zT_zm+LbB96ug}qCuD3j*cG)}IuHolIIgF%j_jc;||%N>44M_6Mmwk!e@ z4h&}qW&?kjF0=St%+qlPkWBsD!Msdn9CXXEm}j}CoL=-Ec|0npxq2_@b4Kr*BjnoC>ZwMK31I$ybPt_vKcvc2zE#zttL-tJIg zoe^;|sNn?BZ}))!=lmVJ{dIKJA<+eK$fBgL=p)_+k9Ysu(eI@DcF))6Opt2v)F-rO zlWmONgyMESqBU7S#~#$KCdE91ZJBLv2qcLXxCrE|!M}t^c*Y$hsriIsFk+d%<{y*# z%a}4=?p^SAXNt^?swyMevR^z|*@RWeZL)Fqze$@C&k*EMRUnrYPDp#lU_bO~v7Y|Q z6}5;Q@Zr#pR=hMQN5$gRm3mBTDJlb8a4hR6v1eCUu}ZhV-P91gD}FN1oHl(FV%VY$ zQ!8l^w|E$_W)B~$g~jA^*(q9Tx8!Sy7*RAGphRRPPysfdN0}iHGiE(MvFl3k)1p|Hbj+O0K4Urwg@K`O9A>mn06*pNv=Y_u z>9G_H43zb?1&Bfmdc{jgi`DClJZ~k@ZYlfrW{DiSF^j6cn;deqVc43IyGmy&P`7#+ z%^30k{$cC&H1~3R=e^r6LK1`tq=99M`J?$zVV4DymJ#+uVUTgsI*({& zg?x5Xcj{)3h#CjUX5%YpxeIC$m;tcxHr@43_Eqs}*DN8@p!4mt!5@iP28^~)x9Wc& zBk&~taEar&q>NO(r1uSQYI0U?BCzbYd-haG!wVBZ@2KYUBBc33S<+SzG9?Pez=PBl zHcVJcc@$WaOcfOFC`;(8H>%^4dxxsYKUc-InBa8}+qui+;J!I_8w$$V36*j7H{y{x z|K2{-6phVJx)^_0FVU-1Mzx~)HobET@UU+b?|rLa4F+>$tgxyGpw$BXQZ(HSzE?3? zS$pl1iSWDG(!+AQ`te9@aM_QgksHM>ccOTb-#I=Dq)v!mP)mNSH~zsPO5oK&0vf7o zNtlPh#cO-lqZ`R^BpCLg_heNQT!JgqPd0t?*AJK@Rm|s zQbHzQFGgAVz9AHErMHJ+5-Jlv#a z0!69`v>=fMuz!pr84%sf5)`&M(51*_XAT z2n1{7!SLrmiN;=VuerN(U!lS~TSHDq$vWE4P4X<~)1X4x6)`bn>Mo=#y|mD_8tjV+ zI&G;U)Aq)H;*0Lb27T+@3S}KOj053Y@8Xzsk~%V*j|cTq1Btd=e)zH7DF#>md&=QQehnb~v$dAd4|*7XO!YD;$K^8SRE zX?A#tWRr%PuKla#v46aAx|`E@UoE>XD&5e^YZa21IG1qnHD+l%|L~LQ>qX6y3qju7 zwd>5!AiV59mD!lsybI<^O(!+!B#%AH+zQ4~$^&nDm@hhZ%Kg?mbVIvmIzdI{?6~4{ zbpotZ|Glt^Dt5F%(dO$$0`_uk5@ZY78CkrmEkvWZ(#$M4@d}WT#(4V112vRkGDhWk3JQSTGYwPFyf>=40-XzD8b=@OZo@B4~(J|f|LXGun5nh?}#JZQy_N7 zyK!7I%&P7iC2T>H5w8Gk7SUuB{ep{kIID-hQQno5k<)DeF>HQQJG%mkMuZlIv#upJ z>&t3i7r)#f=)O6yG^VvA44Ic<#4RqaQLY;1n0e-Adm2g^X*26Bv@oye$!OTMYu_=Z zcTeQ|96Xo;V+q$X#5s{Ruxc$}(_Ej+fM|9eTP38k0#7WW< zmlkZu?*>l|QBTUSv||`6-v>cM^^BPZihEG0Z0`8&JdXvjMqhoIOWB!*m3<%s3;5KI;yT)*n@lG) zMmD8&>^8k0{#qkp$>bq{5c43^t-Nr z<*V=PPSEqZ5d zHCh-KEA?*YYfRV@TLobENOonMzcfhuFBS#jR%`=XwG%|RVn&v6z|d2Bybi7Oy=-q= zi{C4o0r23BccuUaVzs?3S62hXyT=3nT1)s09rGbtEl$Dwt4mLLbzYUWbI(Bslby19 zUeWYf|7{SJaNt-_;KW)bV5OB+`-^pZF{2$@WQyJ45`5(0_!<6E#}tG|L)WE9$POFdMGvYG72V5_~#yylER_pKzXQ8v*npBm0+8vyi@l7|9R0DK$W~o4{;VlNZK|aMCvf3hy zOirzTXCWgC5Z6C&%9{t`$#iuBxp=);8w zToefy0u^4@*<+Mwi)SazHZ!J%k>n_ z*>Bw>AdB^>a(3rlfbmHDYD1R9zCHY^1l@I55VvRMZ?9aas29aX9aKR+56XDoV<`wI zOC<8SFu)BmJk@Xcp`4}kQ%@|}VjtTF-);>E3!|yHQnUK`+E7N}USrIW; zn5+*>E?u?pcb$`B@)}r11be07iX6M1pC96(wcNu`leYGCMYkQhRG=suru-}m14@BW{&&RXZe|C|ShC%V?me7~QL>v~_W zD`JEHF|+EHV>yk8;-cz1wUkCS-qP;;74Fn$Mbou=G<#9rsm_N)kVdM$m{e*{fGqqQjTmykV%ZUvdP@tVo1j3R5=0 z<;LIfMmKNhkYhgwhrmDJJfM7WWl7{D^NtWz? zZy4wwgM>b8An1s!4SHi6@G*fw`Zt#U|N19r^R&+Yn-O6DZE2pL+}*!E@}Jv}zt%_L zT&?+6Wi9O?%bFQ_&n8i;!L#Q*{@3$t^KZk^CI4CbAJ@plYZ~!=?|G|Hk$qqfP7v;s zCdFQMk-*e1%>bGpLoNbkbt7hE{@s_iLF=G@9QJphTSD(H>U#Kk(ZApej$O|#PxEn_ zg0#QeD)_acR>FowH$ZMbkyXzt#;`s@m#+FE-dUI!t#Z^h&p)2~UZzfKW|Nzx|>%LBBKO3!Gr5)HKO0DT^fAJQC^yb+>NL@=qOwc1huzxl4j~ zzTHJv<|WHNdmL#H&WqAttrWRAxA;&3iZ9rq6bz=gS(fU;i^LsrH(ez))qTjbeq>91df znQ~aVS=i>tEd`SVAmTleqxMIm6ys6IP9QY(0j$zoT!}H3Cr^p`IDK9kAWvkdD?H5i z%@RWFVHkzXT(K0Np>02q^eJ2qJeM(qD4$uhNy8Y&u$iEd#gCU3O!Fj?%9mK%3ttw9 z5@R#Ov-LnzTMd5`QNP3k_w#|XJ6fMQlDjr3Gcx`v9>t30^Hrhosqv`pF7{SK1q%2u z5aL=W)FD^&=QX#0+&7OGO0mrTaBB<6)3BRjkbB-d)c9aY5PR=|*^{VOcGx<#qMaRr zVS@^{m|zoR@GeY6V^ael1@oAR(c+?!d;LxU4#jrILpSz!Eugq%3fy-JWhZhcKtnn| zm!oNU_Kv{hzYz!Yx2n~RM;*Ot>}WckhU!hc>Pam}2p}&LYmv`P=gb68l zoaQ@0qoR3FYT^N0K8Wis@l@Z8N63p=GLzUK4i|r{e1R7)u(b0;`@ejZXD5aW&B&mu zdqZCcF4zZ;hBwHXbDnuUT8P#{i^C*u)!9f-`=Q^LCCy7Ay_Rwt zqLk^fZS*mENwnfrSovPLjtR*p7pl@Pd{G}>(U7L72K7~&@wQzsCizJ#^DGKp7K?3j zMhy!PdDs1GM6Z$nnUeBhY%;O&)rv+*;hgt%0wNIqvdl~j5KpB8K&45H%~iDm;y zisE@68W(UsUKd8Sv-ci#f6c{uXYh4qt~MP0<6Z5=efV8EHvb>W^QRe4nPOXSK?+PD zcsaP&Kcla-+bCC-1Y59Ln9anzUDxqUUivN5X9g~49;A`?d%JEG1kJMl4&x;Ook{_jo4IgZz*npV9?U4O0!1KeJ@~|q zR+ytz;jXadfzT!5Uqu*k<8!s2%}doz(Sj>;!Y6wN`&XDRuI%!-i7gJ*r_dl@K(!dg z%3Ow9(l8FtuO+aBu!cUID=k)41OJj%xKnrlK=0j}}57|}E3{thU`Pex<& zd!qK$IW@fx@kUG${jKBGET@J!L{ zRN0sfd^^cEq}!yvy}!Hm<>OQb3I_i_;9uiU#v+CwQP~*Gs_r(OSg=0h45lnS*DeUy zJ7{dWA_C!~e1oHJWk}uJn7F-d{$q&vsYu5h5wLT~VmP6`UKyV)Y?sD^WmNt^$!? zc8Gm8LchowCm`S-E$ddOqUJaFnU_6F4+qc5gF-Ih+4ES6a?jn^e53jko-Q6P`fyqf zpi>u;DDA9@6aChsRsFyYdK0Sz13f5%9g4MPFXO4#=dE$xrRr7k{PFGr4y9A~|MaiA zqczcwFMc=Cz3Cl@BFnztla?{q*f4wERf5o)6A zU#o+ZT9Vpv5=6hf;<|KqE1wV_A}ZQnTj}3EVUZksAW^DNN&Z*thZdr$9qKdPY=8^L z9}HG|LhB1#uIe>@&m^yb4<(XgM^jb9Q?9%8*&Lb@ZswP+SunWG_#7DmdCaLMB?e|ufw{IAC70*%4@d&^fk7Kk{; zhu>ehHURwCX9@pg(naw@kzy#wPbA;SIx~Kdr=gS|I3x9zn z$nnTNtA~vJt?vZ)I9!WI!@EuHM2B^tFqqo!WAL8sv!}oe{LD;OH+-yx)ciigH8gEhyXw5)+^1Qc>KDp~4!;@SNS08&`dN8U3 zd1apP3FK+G@iO=C$A-g?S;YucyVs~QP|h3|K8d#|=x7E~r)D?iV8~Zyy?-@4W#w*6A?IPu_TeL{V|~I#8lAR^ z<)1ize!m*~q^N1Gpz!-r2CXyg%L*O_9zM<7mu$1W;NB(ixtHUzTsqk<=x%RaxUG7% z!5jq#Cs*1_o8xz7ArdUJpNhW)2TEcB$|v`yQM**n>E;Tm1j%s>-DXDOSMk!s8?iq; zRkTBa%B-hz8=t-BeHxp1Sm(2pSrYzQgFv%SGet3Mtl?R4i@%1x-|S^gup%T!nX^#t zGq)XVjebzN`eue$8uJbHdq5`ve;R!yks8ybYYx@p!h{n0eevEq?;88w6>Hv}4v z@9I()Gs$d~gsqI2)mH_o$wiuTV*-wQq%*(xCq8o0Dw_;9WTHMs@fBoyCvB2`&_ptY zZ#pws<+|h3o0(c#RA|!I3-i`<>QAurZ`~B=u5CC`(M=2|Vd>`*05WQ`e=Z#4joZgN zYj2GamkHE0pK7m9G@oqW=#w{@ff&SbFxwAsr(rZNim+XLo98CZd^=-!V7C&iGI{}2 zZ9lL9doEst4MvpN%u7^LqKt?KWKxsA$fUa=3u*$L0z)%T?Cl5rc&;)?er`{;IF)rb zAqo^7G`U(QvsAJHZ_e)aC{f@fiCMRS0q}V9Xqt2zd(@i=j{~<$HfM3Ai`G>6Jf=*_ zkg55r*G>wwuXt03$0&UH-j{o_!LZa7x0~ws>J&*e3bX)tZ19sual~Q^w>=4cLpTb5 z`7tI4PBdQGki>#9urH6QlunsOSnsb5t*=i+7=Rf0A{SjW;0D| z(q2p{<-#SHX4XeM{)561u9RhrShn}+kET`J0xPU>TkCROfYW>e#y=OM12RKY-^Hl|f8H_*<*TL`AGGi0Zj-3J)7XZz(R=19sJT;$svRK8LgSg_c^@m0}NJ{7& z7hbelPj|Q2!8O4pZ{To8UqqedBeU#A)#o1B8S6bWX3jn172&!MCat&ZEEFwcuyVf! zRZphBdhvrm;0Oz4x@CV6fiJ+=6yJBMYM|rhkk?asEJeTB6+~+Fu@F(f%vy=l9TCyn zX`a~8NaYIE@=zNzWXt{GAw-ntna;*+xtZ{(_76k7C78OVZ_SDV$ZlIR0EiDgq8Oa<6%FJ0QUB0D&8MU8P^} zuU$erB6W$$%O4g?Q>LZm^J;yo)qCbi(B~~;>sHqluGyLHJ`Xt1+#7RKNngYKELy+n z+Ql5Ql$a}}h>k%b1df{T2RHTJ=cO=9%p840p9N&}$89-YRfwsZo{M71k|XvEBEu{ZLJo+PfA> zaHPX@>&6=yU|;zwk0BdLbMMCCH>8NqtG%k6W{%K{4rS-;vvIYiKf#NSMj_1 zyec#75#^U`G{yjZW>xoaV`i#R<-z@yoAShgh{6FYh?jPegA28njx>Bm@B_Tpik!7y zgrxz~L{>bDJcNniV?*-L3SPFftkUG8Dy~4kb?*@!yLXnwE)Vc#j`{*oqAH)*(-VWY znJVmaiEACLleo>s!>=J*s-vO*6Z;a{0%`myHrR=W4Sr=W!mFuPiXCOBG2Y zB?PVKWIWZ9y>sjuh8ycmy;BM_zh$6X=V5G|W7DcB$8F}loEd0{{*(uo*^8f{(iOG= zT@ZPFyC3RbdX4N|Rma@E(IsQ4mgFZe4L{%!txxj3ed9*=-!LJ4ey{c&7p?>)u9c=5rpO2R8-!;Ft)_hgr- zc3d<0PtK#hx`8lX7O~`mV4gzMQ>R2e>E~m*wkk^l>#BLBj&6oMxx9UvZ+U}%w~LX1 zO?Ns|K@wRTt8K)vx>7exm&LHS7t?!Yc3o6!!dS&*P5WHO_=C4$i^o#bk-zx+POPBp zgFtpXHvjzW6~hr_gcLE>q+wy0x#TphwdP!Z=Ycsa^x5-GUc!~f5%RWb)y^1J>O5S{ zFHHQu!e1A`urnS&-KnvS+!J;7dtPNt6;F~mCE9k3{dcomvO%)7cRlXUd+C!DA_C

    T*pCv5Q z-Br_JUkYslI_yfyseOhXlfO{#YKy-mL)uKf3vmt{pD0J~#6) z1(`9eg9l6%TEax_9>Q!qlGXS4x+%97be=4Q;)vO5kT*@uo($0!u~qPpd+P@*F!Dbk zmbXYx^OiwJGR36Xlfnt3@l#?2-gLVC`9B+HzWVUVEc%Sr zRd$6uGDYdv)`!$$f0hR|DEE8>gLe=tZGLlnH#@QHk1Cs`(d84wE%nKV@!TA`UG~$+WCAB~s!Pn+$9Tzl>Yr74 zLIVN&2VrMxGD1`n;wNiAlcEa3AHJ4pe3av24t-wdFc(bLS*Vd)c|UMOwv5R(g^@PQ zHhy>0^ewEjYEDL1*_c~eKBvx%eKS;5)bhbH1UIvyl0z5Rt?&MAe3TDidE4c1D$6m? z%;8?)qaRYU8~JW}S^MHCz`R?+w7#y}XhLgLmog>ii6SCkq`A6Ddg6gvT!W22i}V2K z-Lz)oEKgnP;Yd!)y#Q2(9i`@5~uW2}($#G)C6z&>m+?!HB&6Dnn5 zv_crogO%USoeWeY?g22LR^l!Jh#9bkeGxS%i2|sOUlxC@)UxKQgao;Y{5lB*(7_n; z5QDW!riu@7B-(+6YBwz+<#Te()I!?cV=Yi*uh;ruxHDC7PBLc~^QD;POc9GA0CDui zE4!9S(J*snhzVGgkWG6dz=SCIH!A9eTlNf&35F2!e55z(wo|TURK3AUw9-tCJ|M2# z=p*^JKojSsK*-W&pCQn>cf16Le(>SnXT|1rM|Zg) zPtO19zp+llq99(I=j!Znyf3hhGhMa~_pkDU29qYLWM&kjuU3jERZzYF=DS=WmK4icB&TWmN%2{>2G%3zjAh@l@JW$z)ofLyDt!~HMC`BG+-~avCFG@s| za8HoxjIwR7Mvo?>VyAf__*np9-+OHexGMQ2#Z^T!Ogez^Ao5^n5OPaM89c(d7~l)M z{?&8{rzOFrpXii8#=75Jz&}MlFLs21J#&g&Aiu-QY(FDSUy~_<_1z;81bZfhxILN* zkOQJsz~9SUR^F)LJ5Zn4l;+Le@M|hKu&}ctWhmfiKZX@6siX06MsksgCd3hK9@R(y zAt{}Z*H2(e7S}ow6rq*>;*!819Z)o}KxeDRK|>ed7iy#N>&E0?>-+`(KqFeV&IfSb zJ=*^Vdm#oQKz2ajhx7I2am|Hp);jgzJ&=R@TV*IPhSU=N=$om9w$9n0^Ml_IM8jHq z(!7CF2NL28T3R-x`#HG4KW~G={J_9k+M(8m9nOnySIq*}$W?C{8dGA4{ce-RmvNN< z6x5~kcJM3iZ#XsIbfZY%UkfSWh6HU;Ozb>M34Omdb~|>Ej~2Y=4J|;pLx zQBx-}PN5sJD5wPI8=6FWRMwg7td}hNz+6bZmJ+@Dj-V?u^&z03sMY%bbmi@NZ(8f0 zaYfNfwxENY1=^sSF{dQG|M~P!f=blo>#f4UAysyfCCh?QbWLw)yNvsj!j^P$q}kj_ zu_aVL`oaXFw(BEM_6I6Qt z_?;G1Vx}^nNxE{3_(9nva%c`GP3rMjjAEqc=j?Lp;!6MI&(Fd%NpsUi`?bV2ZcP_w zZhiZSwqpgDP%t#{6Fv(lN@Zgq*;tH{f6bup+-=+0L9WakvQVsYR+0UFi$lM?ZKTI1 z#gC^}^rJDd9I_c)ZinvBmvSIZvF_cYDCF23YV7O#g{%;eZpvQ;(&byz0i^?MA3vW& zaNn9mf>c$^5IF*|x^9N;#wfD`7zW-WN4u^L!rAdFr_V%v9gR~z{>(SbW$z=BbjHT4 zZ5uzi%i^(CyA>=MO_&!pu>KkOy$vQHeGf~J#mzJ#Kq%R1Gm(GZFFsv)UcqYTE zLNnBI1Y8WGM^X6fdl8ZW^%jBcZyb{iDcQ-mZ7Wpw83G$uN{S2`77iL9=+bkxAHty& zZG-*zZRl_>IM(7bbaFN;KQKOdYTBMeEyYA$dqJ5Zig}A(y@p&}MXki&$GcVMHW*Nc zdG<^iH_;6e1lcC1G$j1vZmfb2JpG$Sy_rELh;)GkL%#LEeV^b^?h&N?`Yw_FidV(m zj8--#o**l-K7_=JgW;|m&5P=i9!Or&v;_|$OuFQfqH1Ac&E_(z?a7%L0+Pw;Jp{=d z7*5i&9Ijz9C*f1+8sNz*MydP;{uo37V>Oz{BQSqf8qxU!`wsMp{Pp??wEZkF$PdhV zU09U3&oCVNI=_B-O*wQ)@Ein$7Y`WE#ikzE+y((@lKjg1!Xe#XI*<3SDUlZ>}{%Bfj z^MSz{;12%wwIgf$z+`HJK0vxiP;`S;JXhi}Sfdv>rNYEtgYwf^XKcY>f_-SWEB^ZA zTK%ONO%(%(i@i@Ep2I>@y3wL-W?UV7lD>1lftCQ;yR8~fdo6eJ>F1PFWIq9xl1TE; zX>V%5&J|B~r4)*E6*uM=G0>a+Vx7sWX`e7!pGs9r3vQ`;RYXot7;+U1EkOEd%JJMn zznVTqwY@rcT)0ITwrOFKa*phT@pIX0v6NTU7o!Fm(c{Na2yH|M3+l+OkRTe*bSA>e zfQ612Tv@Dea6Qr5oG#~>hKlcWX|GWzu7#fazsJEWb$w}yiIe|!(Q5~FO5WsplcD&7yBi{*#oUB0{165&`Z>BaQiXXSS&N%9Y6%U`i zP7%g`7KGvV9`6f)QKuX~aoa$SGV2^lKO5TlUo~@K`?s5La9>wr+%?#kJ|U=93=qb| zjchfyxJfKLvB1thx=ix69MCuhK1gBw*jB=oN?d7ig!Q_`2TkzW9`rp3hM|0y1QEi9 zD7Ud;0zcz^zc`#L%sWdaX_2M_qx=QQ&aSk7YmHb7mg!<2Hb~}c@Jf#1eGsQn zZJQy&APD-QL6)B0MsGcLQE-81oG9pM+3pcYloZJCo3i_&+o7{Q%cG;s#rERwDFKGL zb@uz~;)qQZ{uW_yw#a{&;d>u`yj-gUXA>($K#QVnnuiAGW|#h?#(O(7>%LhVEayGG z;$oTJ(tDP`Rk?KkGEF>h<Hoe;r2;s3e)%wg%>9@n1k2@&je)BBa|j( zKem%0*He{Si!SoUeH`>ik}!|=u4eiU`{11=bJ+^#N9J-22Ym!W0|Rh+>9Q{Z+`Oy0 z$0ms?guOuz-Jf?L8zl!FZl1Tj_U3NouTy!QM*rY$`IY0l3MGqUwC4+Cl9i%hxUzs= zHh@)dk1zF{{~GHQl(0FmK;a^m@|HwQ2{_{Y?35-kwW%~q5*%<0>ug!)MIYL}dpco3 zQ-LS>6jTJb^S`1fDa=w-&v!xPcELW1X2Vt7jFP_|jdq1*S$6O0i-KRF2MiY4U>jot zb36I5H*u+*LDU@zfZMKgO%cBjgK~cxp#omv`X5Ud11eP%6?~5v7FF~R{e-9gU%Fr1 zUol3vqyhC-5xcn(4Ra?#g7Dl@d*7SP=$8he!!m!)fP!RN3NsLfA!@i z5UYsEYfmQ3!zjRi+iT5AF>&LAK}5;{%v> zs1xmXSX9aG+qsf=J9zK+-QkQ*w>yG)J6HrM(6{Is=tYjQq*_5}Fc6V}y`AjLwQs+@Hvz%9avA{*@2o%MH;`6* z6O%9Ibk{bHFPPCyvbY~StU6|u-PA7r7EwXkg1Kdam05WQzxsz&X64z+b7T_@MpgQk zfr^y9AmPHdj$>CnTlrsBI47P>zc8-q_ama}leewwUI>fbcYlD~Bxyriz_h^C@?VhV zmu?YDcbnm>0_UHaJ=#QSjK+cu-xne_YV{Hl&keF%?5T+>5;AHzZ#AOQ4IhM%$Es-Z zKb=(QVPs(?xRgSO^)3_cRWYQ*a>&R|`alu0!A4a`rQ@mhym#}xZ+dBvW6E@emC&1s zPvk5L1G2A*xA!Cbx57%Ax2d?S?fk0;l)iY1kThuqE?IAjBh1VD zAm{$v{)4J!Z8w`;yx&oy{Z7z*5oft)Wsy>r(FGj{viVo*;Nno<_oD$hsF8_I^G=7l|w2aLqktri+8TRt}*2VORyX1mOn z+wqyZN?GK2ElGqbe>`;e^4LK%24RpyW);3fe2|=4QN;hX_#De!a%|w?mV&YCJ-I{S zZhX1!xvK`6j+?hlQijY3V)G4BiF8gQYHof;NHLbMgHga=Z`u6>Ie*E!K~6_li+BHPxk?OKB54fV z7_BoKYHuwYK_ce@^9W}>pW}M%tMfOf5$7~FoE7;tRrWOZ7CEdN)xQ4&dhB?#OG;SW zY(}pV;D=}uK`Q9!;>EunCxnzUZ`;;1j*%u|RZMq>dvEjcKCSXpVM#^hsGNI#kY=oW z?kP)Sv(~l6_f4Ou+nL;3N00@Eop^Lq@9VMd)}JFZod@y(P4v_%>ay)m5eCh%Khva= zv~mS*o3E2H`uyL0yXmz9zKlI!AUu#qU=r;dzTmqHX=Pi0wvK?vE17C%b3!Mc;ppwS z#fk3;wbjSf!%`X|m56%Dwg}V{s4%&0j(oOANmMMqZtH_|1&`4JI&Y~q*jCcelX@0? z!XDN;sdr0M?;#CnLTLZ%d|)6PrEavi#Ae{IdZ|ziP4Vy@x2XZN@A1BdKjrQGg?e_j zFU^>iSXBJA@3EUa9rQejz|`jpS-9O%^r|&Afmxe0e%T0N-i#DUNtO}r_Q6kIlx%tr&G*=J9=>s}4=4ZfT5;L{uxu)dJAL zL>K>aal^IvFxzPB^WKLOobLUF2u6wYY<%u6tBO&QSI7m;rO7G~B_?IO@pY5EzXd5V zf4lTXiNbp)cH;lD)%bwJ;Un4dz5CZcevcTYty!JG$;}xsMG+t$ScA1vifx5;IHWKv?sLE_%mP)sI0DfLGcj}~7OIM^ROm-j; zIW(cw6_G%li9w^!sIl1AgyDh6+}b6@`nsQ6h!iN`+)%xl->y|8{Z$?`6I1_jLDu}F z0gWbt$lKJq@eh!W8IaUWJ6259NCz=nWm?lzcnRdaSy;E6$*t7Kz^;2YaY{5_v3g)1 zYpH~}qkIoU{yB$!32rr%m)-&iuBZQ5O;?A*rp%1;Bo zj(9&AFtokpNzP*A^1N4`ky{P$GzxC^tQv8K`L;(X#mw>=PWp!!Ob2cHvq83RI@G)u z3N!y;=N&Q+=@fT+LNootAjh&vRxEfCq8P66mNKf!}>~(bL+9=Ccu1O3L zl?Qwvk`7ULuD0wbqI2&pf&E;LcrM5s88!Rk#qA^8R@H+=u6F zy)U?wJC?Ui3o`RP_&(Te94=33!8+49)Psr`uH#dEL1LvZn5E*sO;2J#KTedZVAq)) zExy4o4`T+m``KJdzx(FLf_+*(+N4cot%gDDN=UUk3^H?1w#_uB3cP*lDdS2dp*bQxVI#NoX%%-`Qc$pJwBdPTD==7^V#573WWE9G+rSn zZ3l`rq3uLyL^ELvk9Ygp}dR6P$ zPIt?n*7=sRro8f{MmuI-a-g@5cQzqQCjx~lOMhY`du~DLj>UFAPR)RZReQn#qE0RV zX__2L1052ta{eaR_rjxH6CPIB^MC*d6Ln)P%h)Nv+yFKV5Qqj&Gvm1My<^MjApX3j zk`L{LZr3bAAb>=DYu@{MjD^@gb`=E57_Mi$XzCD*64h$4C=^=^x$C4hXk-X7XMrHC z>-o9M_j+;Z?&)P__FkIZ^d?&Gq^AvVYTc^HrELuLNH`i0iv0sd5yH1C_DsEoClB%j zIzF|$MHj6!!aoy|1QqRv>JQ3aDQ9_Y;qqCgY;r0HC`AvGaQ1vf5=&DH1|60o<2 zJrQ(pTUs2<*QV(c8E&FQ3APPnj{oY2MH_I4C8+L@wA@AsHXl1&N%{SB$6pQ4Xxy7G zURM_~K2Mt;SJh-ehG~mmgeoxwDrEX;p8h({}_O)*bVYdOP))AllrQp}92pQ8wI(v4vjyeAsv%u|P!G7nkh z_@)F4|5*07Nf1G~tvHoMM4e?ASm`fiP?Ad+h~{Z;=l#!8Vv6mG(1h++&7WSL%xfSu zqCN-?tIS_D7cEM+hl`&{2MXahai$gy^yfDBE$yx4lex=FN`<`+s~{BWUEqSve3;Uv zbVwA9T3w?E&ij;6_){wVGq&$pfVOZ>##B_cZ$Xq^dT;zmjGt_%x`MSLIc797b8QnQ z9|z^(I}sd0x!G8Z&xYCqK`kun@q=xyorbkh{4;kYY#9y^Gyl;6wJ)gPp0|c?`qRnF zGc&{qW?c8$Sm=1oH(fQx1uTfWvRZ$6?VS3h(^y9JcKjN_j<9~_!|Zoiul0T8bF@W= z1 z1>VWv$R+P$k-{av*T^jpB?`QFwRcg1-*MSLz)yGe=b=sX;-?}s@%vrI7n*cXpJ$Ny z=CkV;LJ3Y38<}%yglcj^{+W{TZKX?c;#azKv?JMl%xS`01Wb>yxOY}ya4(~kUJgG^ zH8#vq?fl$Kj)xlnbyob5TQyG*T&MmpeGlhFW@zz#5Y&(i=AEA@qivc}mkf51S1OYRBf?7{Xf~MT{$0ZKa3a{9OCn&So|Z{ zC;>eB24}(jRVV?==TwS(2Iz?Dx};rG($(%4_p~V8)4YB)D!HwKi{bTaPEC9k&}jZ| zb9D>+G(rX%TwEa2YFWyl3Mvu9m!))}F1%L>6)pK?%g_skwE;B*R9KTW6)Sz;2 zcQCJ9)u(~)BURQb*}fjah3W{xCouSWtPN+zMZ0mGF_s{=7FqQ9=;KR`{IGb@sOF#9 z@q>bmUiRY01&^YoYBF8Qq$3aZQ$ zjmpY#dbWsr3wrd?-uJKX+99C?v53=Uj;k;_YzbV8==HJR(LhpD22^r*pD7-PO5wJ7 zwjL9qzfLkpv@eL6|F36Q3jC&Jk_^c13x=V@cj@oG6I7^7`K|JKU|H`;@$OMbeTdsW z+SBmnk68HQyQap2_I|(L`v@g?OJb8{s`q!5NliSw}tge8N?Vok-z^BLCa<*Ox zT-4K^QJ!vA^jBtzNQqScK~8}mwW^&s7cg~|dOYv%-#tFwOlD_6eWBpK=blSGSY&CF zxE=vAreUmyt$nM!R1mpLG+k;w#KHM@)dcd!%Z$ank6!G+yz0f))`#=YDrfs<=om!I zPg`$!rm9oy-#gjTW7xnkzhn4|$KYC0c$~BH&7JYxu_>JoZa-i9y$mm^3(R@$X*Y8i zLlZfAw0a`@Z7*e+e~UBP*|EvJ*S$_X{q$17ebPNQMR>)~Hq^*ZxN$4BpVWB59R?rV zHBTAsJipzQp;-xCJf9^cz5@rN`LBk?$Pt*5i>6wSaP_A+$4Q_3rAe+wqscPWCzE`I3hH7%6E)AVJBF`Cx8`hlA7sh^HfM}D#6 zPDFUXtC)X}@+FT`RPMYla&HMP;PuPnXj9iG&|=An@V)eUQM6t3^e_<9iv$LWGHy7lr|@Tfp3bA6n`LZvC~P6onqF{)AHr`my~egpLef`pXA@}kc($%z`H4bwQZ>iHXln?G-$2qP2{2k&W%uY9NBJxy3#f8a_R4MbO%|$69?$Zm{Y<;IQV&0md zyPjI%@Ks?2x3a#gCdc)MEn-|5U7CY8A@&FDNG4|TG8F*?s2U(w)o3L~kA zf7qyBY87iiSNEdoibf?PP28R zf$^4Q&B4aHetL3np;^B|;G1Eh4)UV?#oZr^pAVUtcH`u{EC_ zIxH+IjaBOde8;!{J)_`G6O z+JOXT@{rqh!CyUgyC)-Ts?RlDgSC8l43(@vm4n!i$>GgKa6PMG`Z^_?V|W>1V&iUw z=i`-Hzx?r!wvXqbMNXvOe_&MAa~B%;hm!SY-qae74Yxs7nQ0qVTRR`_uzl@CA zm;My;nij39Wv6Z_BHGm2aef^0s!SG$nB%(r3Zt znd?;FD85W6{9!mNO-X6`d{`8YNrG5KryMdZp=%0u@&Tja>6o zAMvx95Ps3XfbMwZ{>H>%F$o6+dxl}%)0jK+Zl!M7ZHBNt3$hoLE4LH5bAU;_N$uA% zhMAj(+3m`d=@CR3>t}4_c3Wf{h41O&;pTIh04{iKlNb*7w}CqQUdoc5K8457(rRbl ztq#Fa^9aN%qol*L!WDDxLW=wLM(=&Xm|?;)q|t8Ldb^VCE|r;vl#zVy&nF{g^o_AN zoHU4(;o}94>ZdVonrl@0s@jTDk=rx1Z60TTSRVgeEXdh1=pCP}yVSviB1s}xJOprF z-0U>mr1*Q`eg_ur^GHQh{VdxFmJa{<)hb?f8jBxoKQ)0g1Q`%m(|rd9xm+c$qBgYr z(T$J9H;%dx$}4lA@-*PnWT{Z0EmWb8D=UX5og=XM*JckBBblFxUk$-LIOo`d%ZK#D zgA5k8MDHKR>F@Gs_Eu*s<9I4Wk-pIy3NAJnDDSJW{KB}^&zu&f|Kw^^%}u6$uuS>5 z+LH^+quJ?%e5T7AUUd>o^>GR_pK7Fx?({R(s03-Wb<^@sy)AlZfn$cO%D3CAwz5TX z-*(3vR~SVUwG4L=S88-Zj8YFrwai9C2lYq;-1c9K1#w^cJVsT^1em?^RV*t(G!`Z2 zO0st;QuZ6Rl^;CZ6zN43bt}dfCCO>7usngdCn}haYeArjvoGt`0^!u-m78H01|6vi zs9U{ktc@|ED>Hs7B9|(fLZxNKH|mfxQ}W$)c>CP4>YhZtA}nkQ;+uYoE~R>%+WaDW zfm>TcwSAGQb&?U{HMX972tJfPV5^BVDue{M2y1^6b>v{8%0Ais$XgW&I0r|B+6M(+>zPn_TO? z^&iykK4Y8k+oL_yA_zE{ad!2G<=Fl{Nf-Od8D)PrPPZ2Uo<=Mes?SX&SOp+ck(kW= zpsSR8u)AGKH()r)L;VWV%t?l~sF^eH!c(xH@~T^j%n~-s1hoIagc}&RY6mS;m}Z`} z584|flQ<^aKezI-<|_2N(OB-{c_TsLEPK(!gQ%kHRy-@4xls%^zUy*4Yq%DSs>)E7 zWUB{pST!5XLwrPtBGeF>ayyOVmQ#ODV4WRN&4E`I%HcAXAW8?$yeHj@A!N}l4R)S; zt{Mh@4ctL~!k*v7G^5&?c=$9!xDuPdp_5B4Z8E#=i^G@IJ?~KI_$u;Y=zX)E((K4d z(%y9ZO0utyCWln`D33L(*^G@Hj@e-Mf_$t{N4(!{Xhj9HeF)9RrRA$$9P(9FJIlmp zb2{j!d(^#N(XHpyu3fhdaXZ(<@-!lQZCjK`;yjlybG7O8xn-y>fn|A2GCj|_qktDr zbF80nurvjwxqbfb@69u1)m=o_GovXMJ-4WJ#JmokO_#Xv9MG41tx982$e>$nl@L-u zPQ_ofs%SkClfM6TMMk5~Fh$&CSvWy%+q^qis4HM6UtGjpBu@gz_UIs;_;DYh`+}K^ z`qvz)kFZ=^LhA>1tJb1ou0i+DR)Tu0?dD5E{+G(l%$U0d|#|G@m#MY-_nP%Vs%yQj`mMyI`DYVUDnl=88BG( zFh785Oy`#Q;mxQzUQQZG2l_!go>jO!BRq@px-5C_V%qSr`@TMk5QpkTgS0bc6|Uj3 zwdeB+pHk)?RJlhe-IVbHu|-JcuNm$iljAQ`kZXN68Pz)p5#=G+jayAi!k*iYjiZ`= zsOUxQc`phN)_=7Wqdc6+E@v}j8qS>DtIhT!-S^<-v#Xy$#C?-w$Ez7|i}PXH*Bq!O zXG$=KO~+31#ro}5R~lIJuy0RquX@xWAQcVibuC;)u^aVie!`EnweC;3dNyEp^Wn$C zt&im(%mtHI1qG5uscXE;=7;LjRGG=6_URh-^UkqNKhkLbeORpC0*A1x3c+YQ{4fMom8J$1NV&vr&`%Y8x4JuaAmrcv4w?+n^O^pSLc)()t&EjIZzW$?EaL z(6iRMEc`K{Md>iTIkWWsaKMv{#jJ5Vbo4`c3Ve9~?*2w~M!Cf= z7EKDCA7G+Y{&`AZx5`&16A-A^jdc`NS33nBqp$m|32*Bcs~u}e3Yq)uz4pWE_=>YX zYTrrco2|PrPSr5#lBuPGm6`?JhZ0$SJ?zm9BYT;aUk*Ov=+0|whE*FjAK+`OB_f6n zq_!=e>)H*6?j;WnPE_lBD1Jb1bT4`BPO9>OTyNKv}T z#|VpdNGI^pOU=JB+7g_tCnB`}KL~sCa5lI1UEKb3x4Lz(t3|6s2euLfrKX^!8d7sm zV_Ir1ttrG1-BnsuQYxaxnuj8-ITBQBjH%`lLyMSWh?qh+uf5OSpYQK?opT+3xm@qN zto1%?c-HgW_x;oHzJ;R5DNQX#%AF2R+l=Z&q#)L zTAQ@Ix9hUJ%p3{hyP3fySXEKN^*EY0C*;B@&;u_*Mp>14U(di0 zR-;4RamCpwP)KFqxDRAB29`}jzaczhU+~-*$YP<{_-yRuMPWEfwQUv+t&6%?j(=X? zWt=FTXs4E)ZQDwbRu@%qCo-_SnPH-LSY>_|clzYhsj-QSV{dG~Bd%bZdfyCdIjrqk z0|)B&vtqCHy3RgM6#1}4LC0TCkU3F__(NeY`8Sj4dlKBBV(OXxAY>G}wT3Rhn2F{LIMHt>N%3&*0Te`|TI0n)4IK>dO-S?no| zDoCzKTY@(r9&mS`#ajY~`9ccqbk}`tfyGHWtr1poxpOTIWx45o&iMPKKkkqO;7Pn9 zm@%^KVDe&tG1fQAIyPQ|3VVV4_ZmyNRR>!rDJ3;auBTK~u*}h?aDcrkvpl~k2dG7a zX9zj>$P8Lp-44^AR|6MRV#|GoRq!P`Hg_g6lE5&vxDmpO@H2_y_F=k?Z6D4Z`({)* zq>uL%U@=M!Ew4}T2-4IR-{~Y_w#<;Lz35L9^+(n*?}~muPCD`|^0$0>RRp@y^a;uA z2nm*Xzn3kaoc)O(Op{Cm(mhOw)N1QIH5}(1Qj}DAH(B$|MmL~~srQ9OsEPjCZ zM~N|dEC%WZaC{guXvF?A+o=aQ6RQ=IvF1kU&RfDo#bzYCA+pc$ceJ`xF1VS_Mo685 z^p~=yeMV!^Ji;r|)rCV@jp<@@us^)kcBEgRJ+-lp`(7hQ&F7JOlNS@z6a9_5YB)d- z?6dp{*E>qyL7MuK8RxfwLos-&Jo*pN6E{+ZNou-HRTsfB&fLtr=OY4_l zSJb1GAg8s_dx%sS!@U@d0%x$x+0{Fz1a;fp1f-m>p zT|RT0d?6%=@@}l6(W>Z=qRA~0vGtY(JP!osr6zxGblXev9Ib_vrBN}-`B}I(yL-?J zdU63Wsr>^s1 zxVF>t@k-vZ0ToTB(rv!2FqzRW1S~y~apvkR#tkh%}$^jC#iqup?k*jewQ zkAnGy(6cBuF2{Kh1?9B&|8QRvoA|SzVFA{$A5b9+z-;BVD7vy#zM_EUknrV0lEsreLC*c&7f5@ zVp@r#Z91p$x8Xb(_gq%iz;>x&yF|g?9SLH~(!kBXK|1O>J!iN43Rke1*mx?8Z)o~V zpVGBIlVM}H3~rJl+3@HP#U3g9T53_m;_hYDYh6Ye=<_P;{Bz^;yhm!TVrhC=PiAoE zkRlL?6G?lbJ8v7wB2gh0#o^5_o(j8b4KlT#j1oyyre3dg)eP(UGzDwg?u%N z22i;t;RNf!{7!!^_7D3$tX0C`8|0Nri&EI@{_CAzSMrNJvHYZjU9o!ysR8?JS~tnV zCRyu&g<}Pc!nx;wi*<>s=_qu^eZ98%sWuU103CSGWpLB-4f0XY10ou*@9q6lPDS`~ za!0lRQOV?TZtIwaV!#&meSDwB+OrvEx`zE*(^g`hGYliisKRQ$9FB6eRP$wx)wmaF zU8a^XU0rieeXt9xRB;Ap51MS-Bn&?Q*BMf&wh(7f1MHc;pZ=wA{n4L#w$W8;qQiBr z*gg-LmTyK+w&c#k6`AzGC|os_gX?@}-A>>0`UvEGzDTiF0_#8e=(qwOwS$^_-VRn< z&|B?z_O51Z$CYTAYzw9Keo@OIm&!Cf`#$JtQNZiDp)=@)(sQjgPn+3X(5BjU30p|2 z<4+q2^O?Rw+h6JxmE7K3v^i;#NfWd_v*C_6g4U#sMeHmlSVqqbc3Vm%bo3gPAowvu zOpta&t}U@>3|V?;-_{7L0{;^`oQ&MvlcAP(aD-iWQx&F5+Vt88yB$kggMFa=Q16eJ z-B_<%HwfIiN<%VceD`fmNNVuD^r!%bCeMni-aF{#+lu`6IF&k_Y{Z1+)w+Rn_SL>l zeLAzmxF&k&d4@CoFnn$#L;mB;F5^r@mG9XZ?|81pC zZ*o4A$%En#ooX=Q{eCq}pqBRImtF|^U_5~91+j6w7jKGw3S_xR7{-kEE$s#~s?Yo@ z-#@qR$eY`3Z_Ii##DMa}C;vOZg&0I^STWt@xZ9r26VTk{$(=hCcCH4f7vt5J+xrN= zn<~gE$C_i*Rpqvk1||@d^YGIiZBBn9GM)*vw*Tr{RQP|p_i@2YaPlba#wHd1-#&{t zt;k}0`_&qc0>1aJ{}aS*IJ1Fsiap#bt8SaFIVgAO89k~1{#5;6Z~yXa17r_~!d8W~ zwF-vq_vX+9=|HMw&U+{OBJkwrC;y|R!!E7vgK8<-NV$tw1MTP^U1b07j*CY$Ak(RB z`0pWGBQAnQqX$M^pTk0(~_(I_`0`x4u^|?$f&?RSh4kxShUlj5OV1#N`3Ld zznwy@hhdct!fY!g`9kP3df=dYQ?R=Mvg(x~`-c~n)%(7*$P@O5YcP5zC&sxId3&g_ z2gN%Q3NI+gmAK)bNw3!gdWFBSsqXv;uL|?^`uSj{koBT-M$-P>0gnr%k+2)4G=l72 z`~fM%FC$l+72?#skIk3AcpP3f^4LBD{o%!bufH$xJ*fv?+jMFN(B;BH$NC?>J zO+!2sxvhzhl{8mKw^5jNLg_Fk^$E?P*AGj_k7LSdsaQlE)qIARQk>*WG4hiOb@gCy z*)=Gk^{Ug##Ts(#zmrDm%UrCKDt)tYD+WuGu@?3M+_dkSGq8~UQ{H4dhU9$J70(yY z?%jXqN%&f;I*Q3ySQ^ILES%Bi(y=E6_Ug-PW{YK*K$rGQ!@j9NUu{oAPZ?O;v=b!7 zZe;|@Uc^?Xec-$kz+BGvo^ad4`EWwg&2}_0LIXpG@*srD5ouzm+nyyOOKEtC+;Duc zfHp~_+lYeV$6OznA4;y=$`qWl3M{KNDTZcB)TMVMuq2-}!U$78(!Pa1R(3H*>+MaB zn#pM2SD@pCxknh1xmtbSnl?A2Onk;Xy3M zd7}Rq`po1EJ1`F1ZK}4UvfWGaN9%hUflHbYP3zyGq&a^MzJ+P7QCYOfSzsoLjM>ErH zuMOiGbbb3UO&_EZRMGf&Dk)Na?#gEP8*ySrULVlhe@T^qk*r%cBOkrIafyV!t@tSF2% z2($QMeZTM3seHZ4EO4&DhP9if0U>$ExQzw_r_D6N?0Gmpr!igEt~jDLn2Zl;sES!j zLn}(nyc5$q%4MmilyJ7$;gya@Z%1vPhKWTbDa)@klCOLo*POpp43)C%CrqRXL$7Z~b01N3SBdMF+A?BD z66lnkeuhn8!p_@Q)zimx7&c-=5AIpJ_UQpHH>t?QA^KWkK`h0Ow^t)mQ#$F#aW`O= z#IwIc>7wA0!0#S4vO4V^_IcvDl?o;igmbhzay?2xj9Qcp-AcRS3Uw4Ek8@R)r}{_p z#s>&5^7g(DsMAOB^J*}S=@a>j@_kyv(CRfV%>DN#g@qVf7k;)}Q!b+RAl zM|th0*S*v}7I%J`D=HgJuoyM(uhJ*cwuDb8mN1EW*!4h5hyA5f<}IsaZ@6tEW%T8r zh1v5JZTT0JR5+*nqy6PK}#dRg}ah6$UgDryk6ma4hgLAi~Vf zg0R&c4{vUBhyNxfZdcsL@i@gB9=^SSs{{|?9VmA~_rX82RA zu{JlLIrqSvfJa3r>x(mrOM1EJVX2mFMVsXb`HkKLJML*TZXeuOU_3b5?MLp*A%6+# z)uKxFB3DWgTQ=g+BEnv+`314)TEup|OG&?@t}39N+E-to0Sc!8E4W|$jDCd`&&T|1 z@R=Y3As&6KFU#bS66P;piy&*q1vJmA7MxA{9=Z{YSa2;g0#eUXA)J?bfh~Mm0tyA< zdaEuxll8v^*^nRSQgXa!jgDFI(_3Fcai&w%yMb?4)W|bjk3E`0+TdJYzh%;6SGKaB zNop0ofrY#~TN-j{#_tUNjA%jf=p$vzef1m~Q02$<-L%>4KHT%Z`XW@PlTvO3lx?_^w*z16YBtvb>j=?5 z9T=KPUiK?R{MK8K)V`b!tN#@SeOl#fr+VSTIsGX2*{D`s4awd+psJaAlB=|V8Nwv9 zI2;(`cE|S)O)*Qcjql86_=EJaf_~R0X%J(-eA<2%7j2fqo$yyk9{R<{U$%%u@eM%f zseExYqd1j?>KP+Gops7{vLulRq5=~B8ui~II3>=s!>{s`;MFLP?dQU2J!FZ8<;NtK zvVAKrTV~GPp?~O>m;nuHd*$$R8$m71OWfq~;grs=^RQKdK{|pp9i-+26fDa~=&Fdx-tz zn8=;oNzwrT*b$8g5eBmRlxDxB%ijURXQ%`Zw8h*TEv3r9i-n%g~g>IU}iK?*(-V$*-nGBn}Z_nQE zmG1cH1&LG+D~Z4NxzF)Z`7Iyno1Vqiv85NEWTh(e&S1B7{9UQ>&4es>g1{ya{Lbh@ zi1&mp*tP?Kwt|b;`J%!y^c}s0508uHq^r}G=zh$h0TX_#?NuYOnOG+8LobOQ`I-I= zj2`yi`K?t#n^^l(oZ$vBiX;y)z1Ui7Uha4%3vyUW?@V@8ek@m>Nf z`Vp*rEux$>%VOHB+(4+B>G8{Lrv(4zqzi+TT+|$?8!zMEs9n^FFKmP^)kj00k_3D( zKeDa(nwwo68?*Q;1FY=9PsQb`Yi+p52)2%XVr-mxplmRw)xt;fN~cDUpxkfqU@ zpqb)%LrQvHpisGOW|;actT20u{-*Vk893xBbo63pJbEfLiU4)ygC}h|u3+Q#`Z~8# z5U1@^?Ta&S>90CietL@Son>M&YunGJkZH{L3zYS>biE~*LKJm8NfT;8VcVxjONXhrj zwHahb{G4lg;femOxjR#tkz*Z#`?pepWOLGDo2vuejc)ES&bC!JlvTzN;a z{d(L8#&v2Xhla?oZrDK;D2?Jj;$UcP+-8k&uT(tKR>#+PN z=!+L@VSXO6bhCI3#TX2{=QWPzS#s`8ONffDGSBky?1^pV_S2=biYF}1i>FOp)s8CK zgm7c$3m9G2@7#Fac7@w!air&o8weGQ$iN}7Mp5W;Xm<^N`Clfx_bw|Vk7!ZudH9Nh zbBk+Cx3dGNuS6fvu-Akbsy%&ANZzMiUisJ8M@puqtduQuvRk(<`3@FkFf_SN%`Om?~<4VO(-v8R*^UU^g(V1}SN#sum+#!adiCW zgaj-#_m@`gb`J%j!_}~-9h4C3nilK62A2BrFJp=Hx#O_jviOR zxEEPnF{%WWmKM>X=%*y1jcuysq+ z_K`abfPt~M(5sXC?8DHD>n`yIbs-1x_`&;y$Y|pZpr$f7=FKYmxu%wE)`8U5pw94aE!rzr~li9)AKUx2I|UsCJ8P<~7bi!0TRV9jxJ7Sj0D zu^V$@>tfB9T&tpHCO$~vg9Cgp z=83)bSw&`T!jPY=Sb~#0R@|U*(>L6`==5#4hRnNJVva;E7=V2=nU#JBo{x~8dqk3i@}fW#@pODd+WQA3o^6naW;xSX88y#yo}!NIW!dp zyqB&QlT1S)Z}p%4@a|Ps%Ha=Zn4*aW&d8%%;~ee` ztIENQxoucCUi6XVvKOPMTC97JV62LJsVbXrC##+VW|oz`uK2a2xu9YR*vSBzFx%Ap zvdha(Zo2E&<*V4HIn4W&p zBZJ+VfPdqAeb+~jKMCAa>Pj4dKm$ZOKK%0Gqj+|K)F@=>4 z@(qs(--!L9ljSc+T1o?3_~LET0-xeYULA-1bi=!oL_*WjTlPE}$(9;~m4+Bxt!V|K z8&@2kdtL3ZRH;=LeAQTBOY~MGV>dbGkjzh;{?E=*wT%&d$XfrkoGhn?=N606$PLla z#Q9IMAYX>n#7dzx$aj{|dTsmss?I$|e!?jcDp#O+30P(2JT!^V%;BdV^g)F)RQv zm^UAGJyjdP(USzt-S_8-7OLc$*xml8x5%GEWGngz81Z*%lH#GRz75oVJ;XKpm@402 z<>QAx-qnFt87JyG#&X_)dCZ>|{^K5xg^yg+hoLPI*pegRIBn6T*r;KLWo*}4aZ)KK zhCcOMXgErsIKy!z3yuunGY3#t51lx?2kF8c(ZA1GPks@{2pOs=NUb|WZgvQjA}nr0 zvt=H&N0h$BM}_<{DTy?(1f0Q>2KO9VkDZ0hYHr(yOv!zjj$vUV zo$G!PP+i>f5JF`V%91JF8q{q#<^e!LStmndG|yQ73rdOea8NzbN8#r*7cIwJW=dQfgJde4f9BYmE}>UT*LwhjFy({W6G&50_49H9^DyLMnhX z9zZO)li(qx#5iI@{KPdJEcOeMUi~Z-iZ)Z-9|{xIGNr^kw7kOBT zbG@%9e*vLtYNiTP+e_75v7{evc!cU&+nC2@gGUlKlP6gl4Sr|?xItR&Sab%#_Hu4S zlH16j55dX5Br284dHJ03>AL4n1+HO^-Oun_0w1b_*zQ!9Kx4~AV0x+iML%?y(}!)J zz7#&UJ;L&5$L|D~8(vD_f3e5((VzUweN?Ly*yR(k@JmFyQ>J^32ECQzxXB|N+gZ-n zyE4~!V+YD^T>yFNxfB??5T04yrs)j^(uU73Nn!Ykg=#C zP^fIaH8{XVGFB@3)J&pF@u$1JtLc8#xWrYU<#+|FId+XP^~+J}`>9GGAal1D#`Xp0 z%?6daOrBOa{-pCOA$@IA7f+rvIBZ!=dg3gEMBJTR-JuU7v}J@%Pnd{sq`mhpKw!20 zqdnd0H6w6gQTKZ1`Ss;2ElT`b1*M$08GO%;ftPpYJvpx*?_7jjuFyJjv6P}x$hy%K0sE5A+H^A1}(G?8s z6E0{LX46vROcdl3*t6FH>Bx7L&J19ep(EQRsR{~08JBNbM`4p|??@+|jFFNtSoxGn z!3E}hvY3!KZ^>|jJX83C;d3N|^Hd#R82Cy>O@B&GpDUtQ~INCwI}V)m8CYX>yhStCj^j9fYZ~lCpOM6F~R_bK!pv(oO;6`;cp{iDA%0qbu-z zW;RTE2VLv#bFCyER4)(OHxAZ}fezn&e0 zpi(*W)gF|`ODQF_dY^(V5ma+bSL%KAn)D42W!Oh?-R2QH<*l(YQl74sgZiL+aU4Y7 z>dgOaTO8wi_;=fUnRl{w0M^IRj=+~v$P_&r(OgBVNfNQ?pT-Cn(Zv72Cf5yEzM{2wAA5T zC0H>M^QRH~rdXhGU8H1hq+xHA7~J(U2e!$o^!=BD>|5i};NP2KG$2PRwQLs$oahSc z578NV{1N4+bERIeCvKdL&ZX7^fva@XcXg>#^zpm#gbq6yq4!&*rgl|IWFQk z!-qS?@(nv!r5Nob0UNdKF}zKZ3Oq7LlYrQi3wFD(Bv)C&g(W_7M+1B`!ZX8d6V_{u zw5dw-OrEMvS){L=XY0bR-r3(^e^vN7;r}Nz7SuMl&Jyu{sh*wVe{!lRFnI1S&WN-f zKq1^^K#EjT_tb3OHeF=`l!R3IiHY5#0o=dK+cquEn*JkRq3IEjB8KFb5DhkOz0L7t6t0b5rJbP|XuMLTD716HfTWaM|AstHICZi8CGvT{QN zUkIK3bYaH(W{}|9@utYg*#|!@J{%P_H~2dz{xB!LXYe)Y zGIxdDAElp~?>e&Ce!SS-*;FKbO~{gG^? zYRwn0I{I=qkt6-tEix7Gqpf>$I(sFWk~XYnHJKw@cztLUK&)t5BZC|3iXr~#&tikB z1yW}EwYhyz%liA>Rjj3kNNFqI2S$!7?4qi5hX%iuFqmbq*CL#saXk*-QKC#-^@*Wa z1D!qZpt3|9=b_;y8WU}RO$sgvOZQu(!N&&jmDU# z+4Z4?2%#n{qs7fJM!CNDKhq`J*vniJUxxQwNmoAp0?-LeRyk-6C01Kdb-%WVMJ3EaKYon{umj zn=AI0-h_Etq9=hg}AW$r%k3$|s!NB`o@m zee)`v{xUz{*sV#1r@zS0%ku86qHLFn;no8~0h))GSLQd9C{Q-KqL3C+JD26|*|20{ zQ0KYMd_`rtdpcQ?2XXZg2gMrsGfo3li@|H_?s2vTD(>=;C6W~%GA3xa(VH<$Y46on zm&GC7^QCtivC{A23$p zp%=Fcd{(z0-L{h+H%!77569U;fRoZ-?G2#E^+T6K;_xeZQV1T!>I9}I1fd_t5L~AS<q+N?AY4a(<(2il0t4nYG1y3TZ)^7cA=W!|u( z7;Gp63CtpDcOt|ZzMz|fY(iwkmazOW3Aow>Ts6|yj4I#UV8#`LLnMB=9@Re{c=~gR zwwcOy`sIMAgj;nIOW>Q5|8gfOKjfF`Zuf+#{ZFek51z+?mkg|52sPMv3{xUhf1UBo z4XOILxxLq?q3}H+7~%9sHJkz8AITLYxf*0WV{p^mJI~&hX!>G}D9gEPB{A2i zyAp~FWv)M@x*n26Jr|89lf|0i-8G3y9mFXfhfXDxY6Mca+8JbCQE289UQSjppR|++ zm~(b?-^E@Dg`f&M-gM>zBX=i~;B<#tWn45n4{gt{8vmv23e3WNR+IJFM~`6dgcZUC z5*wcNCMyk=R(It$-6t#QO0FX-s)Qi8g7tgt*8&8{3C-cJPeh}230jmX&wgeT7wQfH z!l^3ODd`6Kx%^$fd{h#g%D&9QxVbue0u$CAkt?^o>@!Wsd9B5azY7$igXzEEPF zkCXRF8w~SH638qGNmcp|pCppf^q4|9JhC`|`7~5+hx<|=TFH~W$o?Z<#w=hIX@QL} z)j>(dr}Sl_L+NWlO7i$SY6syRVE3ynZ>qZ_=7D?71#+pSve*mTl2jRR^;`CjGI0Du z+xdDNX@DgwYANpN;QGhq3ViDX z;Ej-D7_0o6F}jprg`jEaH;f|wYo81ciYi=f+!>pHcLbM>cV_4PsAft06gm1b`D%tL zF$WZXYB0IV4rJTNt4+VilY~ypkPV-2O&!j(O%UGg)AhCHBCWb?~=O=#pcIC$bCC1Y>&5b^*~zN&Wmtd)a(Y)tB5AF zdo9t-nHn|klA4k)MX7YT8VVsiJB!VZXK$!jCX8InFQcu)q%jB*2fg;`MR5oI>0y_KS4&j};h~d?x%iPujdVBHRE@u&LKQC1$ zw|&s(K3nLC#~&)cS8a+WjE}(q+m|4oTbUSKM#Z`#>H_nm#oEE5fcd^qdi@-4EWPI; zrBNGQzsAhxcXtUF&Bp&2&SbD6W%}QUq_8V?2sA4d5V4?+=E{4u=r{?C88`XvP0Xzm zH#;1Y2Hl0kmT?7lQR9urmx z`E<;3ozcWmD0R7n;+Ky!P&vb9%tNMN*!TR4`s6EyoP;lrl5Y!(ZC7cYQ6Oy1Gs z7(Sb)?ltg^ZsIYVn`i4u9VWDvQ}$ggtM}I+*~D~KbEm|GgNRK+-|+I|<5po6koM}c zg8sY5H2*WtaU271&Q7*fh~gM`!wOxEFJN z*6CQ%r*pX4_>(-BfHhW>M@~1)bC>S+A;;f)C*us!oiwr6TL^CFrYC5o6T!jCW)H;i ztv@sxo;t!!Olw9)G~+ErJHowz${)H`?+%_hQ>U!$l>}mTPjG`!aw_zYcR}UD4#@lQ z#IsK1rL&UvC$;Urj(8;SK0wY8o*?VdT}@U%HkYr~#}=1cDU(qzGnszbZ*R#`3f~!b z?fCl)MeG_RKa6WotrnM{E_7X^R4Qfs37|K~98=Q~3tzujk(qJ8)O#(a&w+Wc^=4*Y zceb2FlT5UJQzqjs)lE};!F98Y!C}ZGf zn5#s@glB#>4;k-%V31MAU88(h-+ACL%kxTRpnjGKaRh7wAO_&2v`y?KzJH*uFFX}? zw$%0(2q6GKK`lZ{IcP&txO~cU!g+Feux8Xvd6>${(cGBl+_RZPF_bqj9}+#tDXZ`@ zX(Uq1<6=uWZ|h`#QOZbX|M62hYE-mtZhg+vHym8I`UO*{1r5UgiONEadkYPeA z_V_X;D3(=)I^)eo@01$zF0W8;G`ioD07n!?*o5 zBqMT7Gq{^@Pwx_AH^Mfv2jXfY+&lXS)CfS^KbYzBWkK3Q^fS_>(gsCD$+}r)t6Tb} z0J>2H)H%&qT0Y^(Hrh7M&Ay?K9$Qq&(qe6OBppo|`7BHPDrl);m1SuIHoXw4WN=`Y6GMq}2-eH7P;4|iyXu1Di1I^M9+;oxCb(cN>V5zZ}O~gQi z%!fn9`|%Kq-3ox?_2OcK;p-lbC4)j+;sJon(N8a|+7Q9e^>Qm#$8AkpW;uEfmf1*N zMI&4JcgTak5uC*X;VZ*cuMref*+kb-zISlGbya%CBXb;j!gFp5XRix0n_v2nr%%5K zuqdsp?`0+{Rl~O~iAp(TLIwzci=y;u%zDj?ak6mq#Ko24l%X3jQV02Cg0oH+|~ z#N!xd_SN-ILwQHdGpo%FD4$dTe*4|5P)-P>?DFfv-2_{8BG_ZzaAU_eG^+8X(Q5Un zG>}~&R2qu8#R;)j%c}QrYS(dDkhbrc6Bd{jIXw8;kaOBc=8OJu&pFvY1AL=yUg#;U z-<3(B8}o{FzKa-%uNriE#<6K1f5EH7Z}ASDVJvSY<+g`;;bb?IvtgaDEKsxvy`sE7^SI{GKleqo8m2B@)vL$+x{o}xk#`)(!`GQ5A zz4Bvk?wz->`f6)-9fC6zNd)&{5dL}PlYI-QK$XGv551VMg-S-%rk<)DDag~s=Ltuz zb!V2i!R_*mTbfLMraGrXthVrfTG0g>&5Piu2y>y>qj4Kh_ z-7Z&RoA!RoCPuGxRuh#xg*`1z^6@Saw<9ErnMBBZl%dbpAvQF0a6?V3#OQ)}w1IOz z$;;`Nj?%!*(e8&zg(eMr4`1I*gbSBmVS)2czdvm+EFFnHQzs+#cyA$M@xe?-9L`c_ zZ}4W1bi#Vz>8k+})G@lx;zE>N&z$0e2Zs*i)dZ3Kc$v2LlS{rFUadcu0Xoa4sPn&` z3(b4qBUdBja>oaf%epq~$51>4KGrel{FcwY{pH2I#erfwv{cIz}Z9knUUxA;TR2s5$ zHvWgXA-MKqC;Kktm#0M8y|t=yDFPSSQcwM}ve0SbZ;OpyCn`e8<{x7@X*a^!6(_=jnY%BeVhj!d-(7=EH=}~<3 z^uHv;|C4~v`IjB5ZT^StDIomy;|oB0IHr;k0ch$p2-INbdNMx5^{DO@(_6+?8c;l zDEnCyKilW#`E_$6g6Eu)+EilxWPIp1q;Y0?52c%1Ws{J%<2^cH2u?c?eQ}oR8=9DL zQDPVp;&5qB{4nKQ$7bb8vEDncrG{n_E}=@uneRDTXU@tR$~zE5F$UA^{tou2&8C~L z-bIF#M$+smm$OH^H?aH9)_?VX#cQEvmyQz_gOof}%P}oKeOp*bc*sIO;>%L;r{*;o z!A*cY4q zr;f3pbl|q06uTuc<6$xj)MC{9`-`AmJB^CooyE2`2QD+FGeC>Br94^Z)D{Y#1vF!) zADGHjerQ!&WfEl5*+OfP*&b>(vnR?A+IbTkY5^CFUyOHE&dB0e0xK%#$h1O_ z(*QW~P|h6plghFml5k!pti!XZbq4H$a8c^ghctzm&GrvJPmLmLE$aj2976qWI4=&t z%Vexf(nvo>u}Oao5x`o5o>u3+ZY2^ltOWhj@{j#9Mm<)!)eTPntQWFsxGm1-jW4D~ zj2M2n3<+VJYxcl!X+_!x9fNI3hk-<|7J1r9a$R;~+8g>acpG{1)eFi5dGR90=~%|V+IJbG`V2cgDIrh^{F0-oiT-n ze4g+dbNWEdjL+d(N7MEJnptKcE6V9JVeaJlK}wKJE@v)h+o97tdusE>>7*hu%xJWT zOlf(K^#!Cn3{Pv%Y8EU<6|`pi3D{f zH0ELxpg9Kxg;LIO)e@YAykKL#9$ZbaX=e7P9M;LolK5P0<8mcF3QNKF=cD6kE3hY> z?mdP=yg~aDRWj(o&SR2T;p%VIf0R1{x_5tG1s3f0U)6f`&=vz`R?w!!b@92A6*T60 zf)~|lxF@6BR-Km6Iy_cbNbmdlvvIB^$+9PWIm5E!=ElNJv4QEJ zzBQdu$I-91TJv#L8_s2B0iiu#8rvber|9%qwy}#bjIb%^O9OiK;j5NFTo!7qOOhD?u};R!+=cW9=I3k{2&x-lAasu!b%h&XTsQ79cF zcE(t(fTi;b!&SW3+u;|>H%``hg2H4|THn*kE&ySJjpJ%rHQ@f){U2{>bis}NR&CcChpH59^ZTP-9?F!{!E=VGqg$Y(^Aa3Rh zBU+;LJR^`Njmka?)iBA-w*Vz+*R^iApplg_5&bT*9jwIG``oig_|?)_a^+=TMhc zWlP5ceQu@2XK1^)&3HjOFk>b2`e0hRT{GrAO4Km5H@@#>*Oo_#U;NFJnSLcSk{9dl z#-ODckfw4)u_+ZXd(jR0T!p`wILRj=K)vsECOAc_uk6~IL>am%zpalbE`I77Mb5%1 z6-jOGCnjnDOJTloZd26qsN?#ea6%r2!J?i8~f8|Xg$KWtCzkNhBt`N7CZ5SQIZl^jZj zbt<_k+;NSLV1Poz&nnuwF%>g;>AjW*0 zul#7B&yftB&@1YXAYYll)udJ z`TNZYTXD?B5!>`_u244_=a)+E?Wqbg31Bn~`o%9bNAr6AT@ZG8qM5E>ly@jP_`llw z?x?1+u5TP?WJU*36j4eTDIy>ug3@6GB}nhR=pbD{K&n721BeQtB%%-m2?#`r8j93d zkY1!quOYP1LJcY3Nqj_o=2_o**SFTY=KbC^{AaxP+^Aeb7u){BP1hhTJS zF^res-Fel&K`24jQVVhBebm>#LkQSb zl@9d6Tbw6aVYWU_u)n@;Tn;{d@Dqv9YVDe?0SpSIBFz3YwYu2N6cD|pdNQ^)Xl?E> zB$Pc2uHm=$7!;x!Mwx0ugX}+LujjqR9ZPM1@d!4~Gi-qEGuxudQCkzQoA@zMFzl9a z1h;DnqslInY|@_|O>32Z9)n91>N}p$mESNv9FhlbPI1aC+SjaL*`Zb7601N4y~Za7 z?K0Pa65RIp-I8(i2-L89yc{Z?5>MbUmImKno+R~|yGwPNIbhK5EJ7qM%&UcSV*#OX zep-VVoMRg5r<2TZ?_B1}&)CzS1EOX2hag_qk@KxJ9%pU zjqI=)ODgEw)+fpxcPb~ImO)JeRSX@oSpLY?bIZQnaK@N86Wbp}fU$i#!d5itk2>}- zU;M7`k8xZU{2+5#wFlI8apH9hvga<=!!PqSCG*Dmh;Mom3~R9mR&+#91y4kuo~g1YlCnNasW?NiKf*ZZ+4H9E%<%K=sgowxUrk=$uj@XK)YN=xM+OTaa!zJE0+y5%REDc;?1! zv3l)^44r=YvSy`ISw87pZJu__SYw%Q!Gklyd)?@wiCR~~6v~e$`E`cF>vLFDBMFf+ ze)Cq&j>J!0ZOgickmujM+j)Gr^x7f8z9mmcMowJaZxwXf))JsSpU^~Q?<(RkR+Kv{ zx<^r5c9!VUQT`+)i6gPKeFOb&4l!s|`s{6jDc?fNNlgeQTklCOUZc>KyX|MwM+J%f zR~2iEaufhR4U39%z0+S=Il}^s@Fs>40VWL;FR#wQZ~$B*zfEO6X7L9ezeNq z2tNZXdj=q0m1d#~EZ`fdI+OdRsiGij#@jXyLeV*t$cC{D31>eVkU_&kXD7`Zj{)0rVf z8T$B%EPSs}%ozO3~eA z#a(y(?;pmBO-SAMHwCPao><}lMwid@GQ`84xeLCj=mXMZjCXB%#Q-AU>W){&EM)nv zvdJYr3LVqe!ilUlCU;Ehj|M6t5PznUw!9KuvX>;U%S_U4DATeuq?+SD$jP0xOie*L z6?OK7(kP`hW=Rd@7-Jf>EqYllKb9^LFT#`Mq8Q-Z67s>I$c2i#)d0xKo-@)`vin-{ z`sPIXdzb+~!bpE1^{%uAIgw7wBgeDwNTC)jMQt+c*44FatufI-du`FpyR{wsE77bs zR0;08H?7rFq-Nxj)6^D{_6T|y`m@LA#%%ff> zsPlY?jGp)HrcFhX_))8UI1Zl_H7M!P1qOx6f%SfW&n_ob%Sx6EB4hlqTuTH4a6duC zNqTSC&2{Mt*hxn>RPhw92m6kFE%@hFfz)=@wfkDj2^G-%qdCLQ9dw9d-}RqV3D1-E z=G?{vp~Rv#HP!%Gbbza8^+Ak9vt{|%e!gZQ~sU|&Y z?>nN%Id8R1ri^*w6@6+X4xLZ%8#|_F7(SiUL#GE6{$^E}jn*i1QLuf#XlRI6a`FZV zVPl3x%uqW!nciV;q{cKIHGevYS9xis&78f}gI>0AGU9}=H)X>96+7$Z+p4>)tF)K) zK0mc3;36hQ<)sWEa}MiZKE$MXfcZAAT8fB?5x-kzK=r?xjuwNTsF89wK)7>WeBfTb zcym&O;mq^ifmiu=v7G5_5@Gotv(9E*&*)WtVq~tD8BpWDnWPu;jrM z{huqv3=}qpy|QED#O!BK=Y!>6(eJTR%to86YNoRueriWKF`!!?mqwH4FBwNQI`_~a zXPGZ@!yoX9OP>+9zihGTb_eJ8Djr`7c$o>y8xgQ-Ze~lY3x5RhF5&X6F5;VfIH2sC zczZDqKu3&SbazP3QD8Q65+4t)87Id@!NKZ8_R76_HcD{9+w)xG>dLe+wJxjgpa{)XUdZ5Uq=pbHteeMq-wy{(I%CycW3@=&Z0L%^AZ zmC27ZCZw45G3n`yPn(LLO;Vv+5 zzC^uiaK+8>Z6=d)Aoc)$VPNym zJmI)OIfrfs!CwwCyYrLums5E!*_OoBItkm;cK}^KxZ^8ZFL4+6E(bm|9Np$}@gIL+ z36B;sVBme0ORZm<4h*zp|4X~ft6127`SK;UgopXP^Je7sfpR|^^QJfIYF|z-i8V&u zf{Fd3sJhe;tf_Lk&oJ#aPu3svP8vC$NkGekl3=D%(COJ-t`dBdgo@#>RZEsmoLJml zDGj^8{$M6g`UFG6bm*(a4##GtQiEK&A=z+k)h5*i$+C-LmwjZVeYCL-_AZx-IwtQL zn-gGp@Gcu@ey^$0wTpXgZ@-sT_HmK5zXF=N{`Dn~Tf*PNC&b~M(-WCcx}Id+ z94}uDRcx$}u^|O#&Uzqr4e_D8O7s87@f%r022>7QiUV=-;;Vb3OLJ@I)Jd!Nu%NM%j#a>(2+spv5C={HTZzeLac`iQ|iZH0xY{I#!g_14WcsDh926DxxK} zR8>I;Rtz_s_!@iYV>=I}*1`il?e%w0)UIX{R`7qmUjko;6OhGom+sdGM~sj7bOlwN z86IE8JQHNiGRw0kUMam%z9axHm}RY@aFTc-mGi=#462Ry40Eq4{oSdN2IYmDpFq?>HJU_KKjTM zSoTKj>yYq#7+eP*aL)-(esYrh`?#-2oYipXA-c|5XJ(%B% z@64Qg7N2)YcR?uRUECn!EsuPCOWDTY+#WmFYt_j%81)vN(Uf3~FZRi>!nK;^_)5jG z%b7`zs77d#QtdUD4Xg-XCjWWQ*+qu405|!+Bmlf*=a0`y^_Ya&r7p~z&|hIRvJ26# z;IqN1U}4o3plr*TmDJN`DTX`7PALobeW)*&?X~1|A8dnf?)>T`i&h7d*`mZ(d(9g< z=&R0a6dB19SQ-v}gik8nT1aT`iQacpL!3Bq9f`~;_ClC$snWuVuVrrV$ELD@KYD?~ zUwkFFie6RHD6-qS)IRd5mi~SxNDY=&5cqJ7@nV5BA>oJ3R0x9>!^meHaGsCWrLE$A z%dC>CYy(#rF?x;VTmLBMs`~H;zHSvMkXtpR#W-EBe(l*!vX1Oebtes4ZlX*`m@%EU zr3QSNN=33nQ<-luL+YF9niGA^Ub3Eu8*&En%CYOvjXi~y?Pg;J(d<|M)Ui)QKB+6{N(ma%W1q0qUT9HX zeMyg1OlmU}jj*9FD)}xn7Ww9Z!tN4#D8jAEBY$p4gSeG~7nIdt%$_5;-?Y^_?vMuqv^n)mNlhcM!1hIZ``nznm#?xd&(@rQC$|aF8Mfh=JNS^$Cn|??u=ZPtDSK4e6+?`y|0CDr%_oBPNkaS8$$RP z>+NfRNdG1CLGY8172GrZSnxUH28(UYhS34Hdy}VV7daWtIBXw4&cA7=KMvj{&s?O< zzPM0z;3=|TG8V^ZLT`IrW&G>EUo+%yflB{8^uJXH<{$U|<6f5kqM%U!i*?#M9i*%R zWdU7)Uk)GGUgj_3A1C~Fm!$Fk@$bHZOGT<7tAlj%{Z`yYGkl2Rz%zBeT&(k`>G7<6 z)o0O_{$QG|*2MvQ$xO z=|PLB#(dHyXT}QFvU`1wM<(x9z(c)gO9?m{{tzw8oSQue70Kmg?+jMO_uJJ4XLFT& zhn(ezK27{Z@;=!#V@0=O1i>I&)}Gd}PG95aO{Kx@-FuvEDX`$o%ix$I@Tn*W@(1_7 zGu~?y)tD?v&q1`-EUEh$ISI>VphF>V={>$59O)G;bDvru>m7|oHpT1r|9l4E`Kj$v z6|eUV(uB$n&v9E?m9XU=+zC9^n_|$F=7w1^f;>fIgZ>=e>fkR(4P<{QQ%tI%uDm*! zNTdqR!VC_Smp9T&PM_i2*&WdrrM{a@aB}vi z2RjG~Vk-iz`Sr@R{f|Kh{QABBRG(&f`sIlbjj9gHa%1>M8cDD}_ewZQQEZ>cNzw2< zjGi#bPPMnAmzdjAmP>Yf0bNQ0&O9_K_ZARv>0q0&%F1>O$AU`phTZ0O2k-1OI3KQ= zJJA_$Z2(P55(}Yy@T!nwBpXg+JJWcgf?Q8|p67HDF(R8L$K@#+rh zG|L6O+s9Gw7K_Cb>%>F%QjtAN9uEA1G*T*I#gpS_a$dn5r_eh%4=x(cHtkLt8>I zYPJ(6kY=aXXJ6v~j4L}C#M@IJ{Tdz8tsEH)K;~hfefL=&u7oju!``v?r`pk>7lVgr zKBJOsl5D0(KdpA!tt>9oq?8*j^u-Jfhin3-V8-+?aDHeF(P(fc zUbFnT$PPmT)Rs4!!1u7{t=%mr^2c9%}@9WNU*;aa_Wym4SS9?IV9m zhHYABT{;N4%zN*+>%rCh%P#6E3PGd0`Dt1Fo3p3lG(@L&MH+Lyd`>*vFST<~;JD1M zT>)w$Emm$v*V}97T-{2{gThbx)kXQ$zZ&A{%O({qjS=6`Sz?N;SkjOtdY_=UH6w(|kZB<7NicrU|G;l5K7pLrN*`jWDOz zsQI`lXQ2Q)>YzE8PqKtOlWOIiSO7D>j|_KbV4-b1H^l9++Fm%;WYJP8&;yoKrHy}n zBuh@P__|;EvjVh0{;U3aQ6ctY%W^II@SXY|%{QBucxs`Js-Tui$M6b1S%WcM{prRm!d)-pugRMJIjo6JzE$=S2GET9u5W(6& zqg^Np%JwN+>}&w7U$XhKLmZAkI=9@|qnb|e%0*l|`8)eWa3ARVHSI%vT^cQ-2!lJA zv>NT8>dtmWuV<+NecA7zyp2<^V9)%12nTfnodLFMGQ}T&6P%Z(DOtxlowufhnPH@N1 zx(J>u^!IJ%>QL3WZxZ7lY6kI`R}M(YLUEamM>+2ID_K5W9=Ui5biuztlagy>w2-3K zl&g*3*sTE`u@hZBa?Vd{wB^08thmNSN3v2z-*J@}@8bsh^1mR0md0Fy4XWXn*^9h{ zh|a5`A~EpMWjT8t`s{O~*EyfHK+*rc{yU~cE>gV0$#+d!f;phka#9&ijYr2e4vWLb zn+C~y#>bY{iuQnY`^1-hJ9FJuj-(%MXh?PUo;pVz!Ip6w8oRwf9FV;yLGYF-HixYv z!xT^>9h~;9JMENYH2)g?@__p2!@WD~GhrF#;8tD%&x6)2<1Quzw0UvdrHT9YG&A&I zAP01`4S>F1zsF1TQ5d&iYAba(ZEu90HwScsR8zg{y`&y^%DL|*0Z9%ZV+v;R$~G=H zlV191Z6I{o|0_=AuZYlu0b8SClB7*8ocsnZ&MbU`J4TNezp%`q`0Iaykl(=9d>XmF z1h?L?5fO71oU?B1jhR9a>EQ?eXl=900X^*SoyYBzs;HHzHC!IuIo$T|j~4S2S3xGo zDKI`ie-&YRS7Xc_wlPyqU*!Twl7~KAeaGK4TRns|5}XRTbAg!G`8MYD00{sOQI_q0 z!tbAzUjMIY;@~{-Z`67HXMg|C{{FwZzX!XW|6wY{|3vRU(fhw9dObc3Ge+2_;8LGIob=EL1W}%Tnj47yC=0N#Q}}(#!d* z=xBD8jW>}eHQ#Rlz4(f}C71OF;$UXJ$(r_UU_lB?>Z4|#CciDUm%`Ex&DYr#oVJ!1MT)o+02^UI-t~0#psQm=?GbzBaSl>-xqQhh zL8+ip-I=eWQ?##6Lfr08vl0i;8>em7d;4Nnr?wT z7jL2VUYq}|DtpYfzV}DNsDR8l121V^jc*1Prj=N$6lxC}Znvx@N%@v`^9>x0j zM%%nhllzf}6*pdR@!dNK^eD{p@Ey*xnw@PC{-*P`fT8Jdd{!*a$_Ecc^YS1@UUeYL z_f8duuRl&D`qJLj|KO#FG-z2B6;9q){;<_395oo*o*Sd#^EOf||6I8+n+f-cPPKf= z7H>pu17PSXOt~np-9KA-5W~yXq9D_uE|3g3yqu=DZUDqi}!)|Q~$pIJ>$ojo^JZ6u$qc7+#kEp!}ljKwNPpc?DQcAjyyhJy3tM|L{pm?ISj zsWMwTEb=Gy9Hh2@S`Of8q0jvUQVrgG{5S83-pOrM9I%FnShYAz9pE+ECExFG?IfBg zq#)elBN>3G_5R80xn9$UtUyt+Ydj;jP7ckGq|8GPjv=C5zKhkoj9*`gJP+a}{A2^! z>vTY9cVhbi1#V|o!J3aEazf^@y^!}tlbX(e1EF$20Dd5x^+tW8OVA+Mbxl3qh&a+f z*sai65U;hY1>#IelaXaj+3==YdWMV59!&YP7TNyolE7|t@yHdB@~ii|T)AQV9*q5~ zUl?rASn_rCddmqZL{m8OoSS)H3vZFZP_c4G9R{&OGv~KHpl%67SYy=xc0|u!oe&wWmPv1! z{mvS>545^()Vrtq4kB3R4s7jG{*{C%+TZ1~XAHSsjNHw!N7&6qT1*_+uy~VC2S4?3 z>LRb}H{Gi`V3w-;#%Ws1`z0_lKR3e%qQL?EHk#N=E$ylEK*!TX6 z>=%Gzbs43%r6(6`>E(>1%`HPCd3MqNaGhnDOb36BD_OM`AcPnEaScJ2m=>kdDXqsm z2(d8w0^nw3Zon=61rZ=JSw0X8rd0%0`nW1>e3&{otb7bfVudZTf*J*PMdpew{uyMv zQD5(MPE~#(6jOMm2~oS*T~g(D>hrZ2X2ygedXNH4WV!S^hyrA-r9NJck?RUz%9(Fq ziYQzVn}gCE`Ri_na|SN|3%c literal 0 HcmV?d00001 diff --git a/windows/keep-secure/images/full-browser.png b/windows/keep-secure/images/full-browser.png new file mode 100644 index 0000000000000000000000000000000000000000..8ee8c97595a0ab7fc4d657344fcac4348a5b0117 GIT binary patch literal 73835 zcmd?RcUV(t*FK8lhyo%bNRg`2r3n&x8H&;jy|+jcB=p|nNE2z&F*Ip`(0hj{(yR2| z3B7kh$!{|{GtT>azwgg;u5+DS&Uo$2&a+p!*Zr(#t+gjeSy6@%pAsJj2ZvBjR$3JY z=cYXl&aV$|{Q`Vbw=_Qs{B_MyRYnr0poe-DxcJpv0xW@pQyflkZgc~<#

    vam2y7 z^Y!YVYpu4~rZ_m*OgU)@bvMI}3rM!LR_ruhPCuV>v7AZOJ)b9yE%CCPAD?N&qWPm- zCT~up<>-TziF6n$e#zls`PGF$YBr1kxkEU4dA&vAE$Ptde8tmTU5_xF`m*0Yz47@i zf}DhIg zoApQEhO2wMuax}pDWV#TzV_Dz&P%Oq*6V*?eJ)T|!~Of}je+|X_SWB*I7L*wqQ@`{ zY%2Dzd$M|AhmZ@cbk|_Pm8=+`3Ek zLyJT)bqb;zAoO)f@crbwm**+iee4AcJA)mzy%@$?-}E`Fgq@+|APuVa)ub-rqc}J= zB-jU&L)^wi9x>mrVwVEc7|dMV)t|L~d_N zvu)58U&EPX`r#RU!hg)?8lQqaO+h(;s`onB3fl&s)JXnscgH|5nGj41e*SChy;^p7c{lGy1E@_LD1o-rgvRZ&}doWjn!22(O3$CzZS8U773Dwsx&%e8DmQMnF z|4NNn%b&FH)R&PEJRdK-7`H2Z@xRFuf?YzL+WH*3!d&mYDGbD7P?v>)r8oY!wH40y zxUhTKXNJtEvs%hv7fOip-vxYn?vL6b zZ#XJ146WG)?e|`eiJvLJR=EgU$yqcEEIV*;{($pbsr7m2Q==P8HY?q4mK}EdC)Fuu z)z~@M3ElH%*PGKG>-luplUAh^G3TTsX7ST@BG}1S?nxFrA z4kySA=gsf`#oAPLfZx-<)dmoBh-3P~TTT)y0nrAO#4lErU^zX%pf;ku=QTo19ZG-SMuR$5q>a2|4stA zCI$ted%d?Dm6!~@cAFoLhgZ({=$#F%Q;1(@3EXZt+hR`fN()8pwoplVbiarj>TQ|T zLEjWV`J?}GEw?a?TmO1x1;T5}76iFi({gsM$6lV9+`h87om}=4T71inn|^Sf$!iVg zXs&SLZOW^731a#+c$qo>nUs>&l ztZ5B>ubcad{@$p~3cYv5VA8kgeFO%Nb-Xpk_G`~eHPtk04xEyfz0hhGQr<|Bmpq5w z3^(&_({G;R%7gDKCW#+rT@H?*E)P}a4WwMZA?R2GQ!Wp(U?+hv0bFR?VanwI%)`&& zIdUyo6FlZ0uFDdZVN)=Y~jO!P)lVHE1kLX(Wl;*1mdTQQMvUp zwJwEL;k)3uqSjeTWrvN%AY$4zUu%m=`FqJ?HbkTuTQpNl(^Z_L%MY8;sZPoVUg^sL zdd_DXI)KcHm3G;IsT1d#>HNPYEl^ms=-I^vSl}51o+=4T{TleP)#Pedtm3)JHNAT6 zxl#b;d10YQOQd&l@iAV1Z+4s+d&BL(9M<)-r2b4TZ|+^&&Vy%4;b_X7{Y)J)Pq!CikT5!_&dGWz6mnRUJ-5LUrP0P?Q#7)3%d#vTC0V6t?SM74>z1mZHMjR z`s_ueocGaP^igblhV4Sm$?2n?%4-~#S#}(fw-VN?;CJ_6eG{-IBdM2C`U`yI9{1uY zd>zjrtfJ2TO7kY0BiF*er0yaPdQ`E#ewfJheX9^##<24T5|$`Vy7j2q`-7nL#gH!& z5%lhLr=70}JcpwTx8LsS%;f0bfbf|V-M9T>B^Qll`!v%Vc2}ug3t2-;@BG{8(pvtVby?uxrz~+YMLIf-D&WOs2Z>6sne6qe}wVjiA2)B-J zm&L3LNkatVz|Gd5TZ^%^bvs;>G}Zru|#?lpWd0miWlhf!?w3C>H#hP zxPtx!%y(mkr|{A{1lZE*c)qJzfXG{jyEwY87x(zw{QkIbI#+})>YH+i1afeNC(^#& z{51=GFbW#`E#}Vdmz#7J@n|U%N!x+Q6Ri}3pHrlKdf zymLdp+&1sW_VJW408us5o>k>KuIwSY&H)Yb(-jNv#;mPuMBYDrfAJt_k=u-Boha0C z(I8BOF~OQkjCFM--YTEt z3eXYbm5&4^FzAiplionw8$*8BJ>py=iSP>P46Ad|bwwz{BwiY2>ROl*REVJD{nPrR zIo;N8ulnsT2#<7c=4;Sjj%|BokgEbMxflnR{Mr-vQeo|i-?xcV;%~-U|Huaem9>;PEU@@zO zuPQ&zoP^F$G*8i-?1sb64^{`Rb{7+o1sQQngv-USo^9yvo%1Ez%cWcB5Y-{kYIsS5 zLubSE{Z=>0ZC{U8_12k!^&4}!D4%xm;KE5F%^lBz4GWfq;n$FDXSCeP{M*6vrFAXB zz<%|hw&MpKf58 z+;`AQxotMS_MPVIiUI>uPoEdT5EiP&(nx}1-|z<7CPW*@aq7r|orq*>s+OFthQf*R zT9A75@7)~>6t?IGt((e8?h|*bleN@1Qa3&2+umgzE!IFgvw#^Y_t=(frNcVN4sueR4=lMj23_z3 zMY2Yo^XAEko&1D=52ffn-IHRw+nirZmDPsRKhc5?Z|kEd2M6!^srvSt^44$yTiB0T!M6?nf*;3uR^GV)GPF9u6;32)EQFCl=A&2%U z;8g!jhsY(%9MNbAYs)hOJDq}B1pA#sO%pkVXbjma_uIqLuQiF=9mDpe4#K3%xB1gB ze2ff80)7=D6>}|L-mot%n^O+-BhCcV$c>O)GamNtwQ-@tvBqhlz30){IiPix>z9i> zchcqSDsY)(bT!n>)#jC3e+5F;&g_nM-2lBNZ8lk-Zzvr*S7%Zo>w0mim@2+_2R> z%K-U@(p~NZIvmhleuY_xKaV{J@Ufbe;!}gx>I$~XV?`Zpi+P-3FQSH+K&+?}m^Z4O zAM{$2i)tcfrxKm`FzjFPVMU|U-=$BK%^vV%#vDRf#+~qijdgTyK?{>%C z(?;Do>Acmq@P)kNn8{PloCph+NmraW5Am1=3SY*YxBIiang>kD6n;Z%-Af!J^%Qh! zHiC!G@|p2drYw)nlUZ6$M5wrJbT#u!-N+oHwQp`P?)y$NigV%(E%Gw$Uq~<2PT#9W zgZN~I(#mzgiuE#NeR&kV`2yp<)Rjf$vBd_e)=9o1M!did+IxRsnVW7c|G5RrQV^!6 z8EabJ{>e7CX`%E(Nnj&^oTGU|P?Xmw2L(?i4@Q zIh}0Qb#7IqRQJKb^w+fHho7=_L`yufZ^g)&omoQi3JMW|OvYwPr?qd$hN(=WN|YJK-Wm-0 zXqp8X4)sO{I>d#x!5Ov)z|9RNxl(k+45}otRIi5@E%;vPS#httv{D;2cuH(Gr{1La z)i9EUFn?^3k2uRA%c#zc1vTs{t1=zYIUL=*jlJB)0_+h}n3A}Eu&PD~J71uKRD5FR z8;%a2Ebv3AEQ_khWEye)LK8FnXzKX*=*Ucu7@!ZWujkUDFc6(a0oFNzGYsbtIVJgB2a|N3&gVhP1|x&oUiDZ1@+|8b0f>J^1f)KHu{E9OmYj z)Qoj6#vBgG!=?7L9TyL+ok*J(G$fG)V?|z`K9e&Jzni;^L_V-Gr>#cIAuZ(id}MN! zUUCj~`x3!PO^RZ!(^eKqLtEV%Cnl3EYjf#v1C4v(C3J0%O)w%$6*>=T+M#PM?zwj< z-@B*jY7RkoSr|t0&h`gh|8WDanc{_oHn~ljjf7FJJR+=t@y~m1=onoYRoEUi}Up{STy(LL;1)9Ag zozXCN5l9eA>hG>s@t`jsX$Y1vyaPw{qQ$}x$oO?|YO2$k-Y9i_vAp^1ig^mY2w4#) z@h(?Ox%$MWGAH`skC4E?dECp;25zw|&dG}_I%xT%yf4!0-du1&?_Z5DUlxv34*B92 zkf5(VPA1Y7Xz#sFcC^*-&1~cN=G@J@_4SqOF3FDu_|h)cwgjH?PA$L>8?EMwY^8%$ z+^wA&%bZ4!8^KL4Ck%?l0sIIYUsdt!e!rt_G`NsLdo(T;-4~raPnPBK2fSp_d97k7 z+Ph%__1W+}aEPh7)A~~KzQU0oX8%B**z1c`O?>x!WV1sSFI0px>;|)S@d_(hjQ?%j zYJ-AdI^U0QUtSIc4jk~%=e5Qsy`=&BA*(q@{FLT-tX3ru5J`y6i;~yKJBB>C%Y%sw zvI8X#ml6!nY>?9qmaVNf*w4)aSxQ5%#pQf}q(C3qu#tkQ5{4;_RXzH2Oqrs8!5G(B z61$Q(SScc_>K{Ck_U+k&>OwqEWZW~0&h?yt&89)*<(cUrM_GtL-nx1t?Zza2Mlrb~^vZ>E$OXsw;CAa6mTJdD=IoVU@ z<25p9?d*Byr$FSrR*W>26{ zW*5SY$Yeumnm6n`psqxSD5=DAjR1#~FVDT8w%jZm7;TUltjZ&Gx&waKlg@V^`+GJR zO-TYaPkv-lZq-Cb=dqo?of6sPIZ!CeIqBM>IrDBX4sIyQyKj~7bba}#URlU|=@mmA zxKA;*z~KepL>#T9B9NJQ#cHm+_b-Dcy~#IPf#@CfU182TujF!?H@-3B>7I9!m8#23hexRWL$pwrL%pV2ni=xOZ;*X| zBT(;i%hTrz=kM4jO(FQ)F)u?x%NP>eWf944JF%O(cbR0l#lyg{l{L>SBde zf}>g*hpR|%x!{Oh`s)ObLMLVz@^?co_f_WsVPwTp?}+;-DeF7#colvYt8W(^Wf$*H z@3KFl0jS*~#!qg8Obu|JSEs%DI4+k$t&dB4xbwYfie5We6FWtPx1;w?^|uz{p%~-+ zXPMcWGezf$HJ!}I*TVI*`#Bd3R7FvDh??!89kr;TTZGLN_q^c4WfGZ#YN7D8(^aeS z2tVW7OuYIb)!Z|0#lVaa1WH3hx_}Q?VZZzatY53XbOfGy2g94@Jd8b(MjJhIn7a(S ziofns>z=%n30u1R3E8!|FaGhHGU;oFVi5;ZSm_XI+##5kRrgG1 zCCAQ6*LZ=c!A~;h;@8(X2#ae?BVI-pWPU(6vZ@0HYeOiv`YazYh9G}6A&atFdU&7f zzOUoju+@-Kx(wo5yE5R@WDd&sKCUq@^murP# z$~`O^QzZGUXP=#jJ@gXEDV==ahjh`h`Fx4ZS_L>W2EpXHi`CT5iuQUwmZ9o0Tk_w`A!*>-V|pT< z1pdLb&T~vl_m$NnSDMP9+!-WCVz^NR)~2_as9{56j9;f;)xPo8FemUK5&N;fevi;E z73+e|t}*TX8ew=qc+PfEXEesYbx1Bb(9g)C5e?~1aWD9s3^KccFnot8Zw`L2UY>oKqML$dGmZb9wP#spr=gwwrr^$F-3%zFXxWN+D&;G7j zTD>&2oAvi^%nzRnW-J2^pB{ETqFi$h>D|4E zB51Qb^aZb|3Y0qAS6@`{n;HC0JWQZ4its!1Q2k77spgTdhJ3Bt zv=j~$vN4jY4RMt_JQotVCsW9(XB}5bsQ^bPN;JYvwInk&!!;BbB1C+avr1pf09+OS zO?erFo1oM6rv9DFGaWJ90drJ9HO@U4neHR9&ET55j1t~D3jGYPk3S*UUjrv>iQ9cP zf3pDj+2w<_Df4@F<(jTqAK4Ai@mCC9&~*tgf&A)RjwpmC*8A_9fr z6P+sm;uD^$nymVJFi}*R7#vqr)sh^pnsXTKhPI-sL*zMi(?uRHwpe!f@VL$pou~N_ zBK7vAE`h}S6?54zzQ$PTY2$q1U;o(Q40T)9|iz^xc5wyDxKd|i6c2G zt7Y~a)A@|V>u~Y$u6Y7O$!a(u;UVAVlQjoe884V{IVCu#w7%2)ltPJxR&G%d_wX^z zLjn^IJgSs}Y(bRx?V?by9B)@^@~*CmEgNCXa%!=Y5J!>StCjh=jy#6`%H4-asXE9Z zj$3CMBAYbr)2*{!`K~!-EP{%M`dMS-*7USO^@{#Nk+L>7>_79THD@o4@d41&uA!jz zGO%dB7XF=AHgt>*zJ^;U1q7O5d9rD<&j+>WvWPm9LFiAn_Gh!U?L91#OQRlOdD6wpF&89X4;e1Dq{xXnfv+|Rb>@oQV%fEs4ZmCo2l`t=xV3ZQ4Rsi;7@%Xf3!|2}4OH)) zpdEsZ9&TT>3~Mz*w18tfqbe6=dhqXi9w{r`T9y?X_;2;OI1AyDbnhuSeK>WqJnlA# zjtj3++15Q2j;b$J7@KaL#Ld(1Lzrr&FiM#OJhGpXun1qP6t=TRNq%8rAXoFFW}U4u z>ukM(#i0)g2-kY-nwy3HCuD3Cy!{l}W6-t6*uL9;7NZP+qfbvkklJTi9)1gc>Z z0Ec8csQ2~0Y46hBI4H|t#5Z#zbaN%#U2MXiS3Jr6<*O3=IXg6WOQpy!J(VxZ2CBbJ z16j5Zh}mJ>iEqr7s;^PM-ag-Fsy6%n0OML`uN2#_;8RL69+m~r>pxQpCMwZN-SyDm z(~D6T@;q@|5@A{rfJ;8djAglHnUjjH-Et0C@eq&&>kz5OVUnG7?q~qjJLJOP^$glK zF@|y?nao{B9NYNRbqFt-MClKXPIfh2N8;%;#kHsW(Z2f3MdGL(0@M@vI;s<(`B%~j zQ7x!D9M%&$7)s$o?KBen*$GUx0eX@Z>8>zQe*NR8V>AmLAap{jZG{OA|65`)Sl3mL z2*(jUKNU(E-7I0*F`}zX26TmB<`{Yk4~?$N`yUz@8bmK-5j&gSoco zG<<lA35 zlfdScLLT7$*>#;&oJXZ4VDSlsf%ZJ#T$Yf}904FpQ4kyX_Bjka-BoCGRQRL^OJ3~j z2sCHh>@g79{jayYmDEueo|0Niv*>ZkwbW0D+pfOkhHi5+=LxW2esqS1;A(3Ur zlV!SdU)U31p+@n`R;-&q!|%v7RW;lyg*wkmuJ~2HMXYM|FN4t%0+n2-ZX0tMI;HWbNF^FW)uioP+tUw?{EwH3xtD zVg~3ipF1G_ZJCaVU`ly=Yo|Bu$}J)bKQ-+Y&N~XvJ8ZE>w&69~&U^gWr5S2Y;UDem zMCBiiXH5zJU1eo8u?K_Eb78xHqrz&o%XeKbduHzUko_;c^W&3wa+E+0YUK0q+Y$@^ zDSAGfHxs`CE$u5K<^Htj)~=)YvE!dDuk{mp3hWf@c;@1YDMTjO2k>iUtZ;BD@vb`b zz(>m$e*y51*YDY^Uk%V&K4`7WQ*rEaIz=5n_G(%Kby#^hOov^7d1=qc{%>;#@qb!U z{NyI~rMmy|Y%b80hV7-CGk;yd&oA<9`g^p6=%=ZOUI+#l8Q_QQ^UJuOME<$aVb>rR zxv-7!i((^alIEzW@sBB*Hv@tH2>P^<>m2xlDFiz07%i-&dT`|)(BDH{?8TwZQ!dQ0 zW7=ML|IGoa$YJ<2 zXt>H#Lti*gsLQzZwrbpR0|E!Utbr|rN64f1({K9mQ7SG{5=hI zWHJ~s@(J-GJ;{a2RphUmKl_BhcPan>Ds&4ff#Uj=we2UUY%ivvGv_WOhB^P?kCR8( zt(lA3N+wlJ1Ykaz{Q9GATiDKARIm3XnhB-;FKbqr>dQ%tRpq_7a+ad7tc1?LoIWSy zU~$8Y{^6B(Zfz>xFf0GJml>4?-?LY3|e%!hYLTf7X5vu~gv&lA)`Oh0VTGYVq#hpqvAlD&Uv^#hkvPQq3??*A=B!oJjaRK#-vI1?@aKS>1X1Z`9;5fs?m95DNIkz2OXnT2lnTdc8zErU#EF# z4*^a}Q9IgN_kR4c`{_?ic1boHxdl9s)@rsdT}JBAL%;@nT7Nw4IpIQc$XrZe!S(->38xjsp6|y_qF~s}IK%Nht|?K# z;#Zc{hjG7QIzZL%tT6!^(x=&KOhzyBEIni!DXDp9iKf-nmVsu zrWu7i3MbQbkC=ic?OjbknubeWfKThx-JT1#h@ zo}y7rv5fgW79t>Al3h+{*no@i>D<>qDd)Wv9VnAxF~uCU*@L@bG0UgXUWV`M)!mp# zH8_e38O(LOyU+z)i4h>A9)jN z3XyU)uKgBgZ0z_;Goq6ffB4w2OkXXQNaKf63qNn7mt=P3@V&3AGU-64cEDELz$RgY zaC07je<3hf_#0SOjP$r?&6neiG^1&S5OGPmPT%7DFT+4Wd;=TFn~^A_@I{78Q&#Vfwv8>Sx>6v^tlaEH1R# z@m?f7gnvNz;VYGX%rO$!b1BAyT(4kFdYH5m`79M?J>?Teqh=jG<}(nd|M57Q0vO1? z`n>rM4R$awmL2=QBo?uPLwB35yaVy*2`-xN-cRYSz_F6Iux4|jjJq}Qn4D!9)ekyi z)Lo290c3W&JY5dV{;;-4ky5JNF&S2|v}ucZR=T+Vq~Nz?e@Ay&Yu6Cwg4o_>U$U@N zol=7PV@~dFE?}8D3~`Lk<|AeC_eS&A6^P5P%smPoYI({}W!d3OKexNk znoP6cNET|_iuy1WNj>La9=eD>C&*W<{fXRAqtq4cWz%R>>3g)r=dSXKw-!0eSyy+X zh$6=S_!X*|uR$JaweQF4fd75A66p7c{0CoA*1BFUn^Eo4y{-wXIH^^cOK}<2&0^G( z{~DaxA`NO$sG5zRiRIKJrYeZ4NI8~&)bg@%x^j?&R9o+n3*M(x1E?H$gnA@tT|)n% zNNdHaOviKF%&4e(2eHa0S}wR`Faq|v2(YtVF~uU;9AdAYUzMxTeSBF~BIHMg^?CQ- z6rs(&YGdR{(;ZWb`P$#S2Q}kL}^$2z|51z+OT?}fQ#&Um87VB+@nt)!YF)$s!fN^(h5(fwFDjOG@}!5I{NRp1m)-J zPA*Ub%CcbHk_^#`o$I}s2_>WR&m_UtV+ifZk*&t}ubL?~DlRIn=0bqatoFZ&e?zr8 z*QzkRo6U9Nu-O==c7$aAINFu<7kpsR_;>})dM=D^zHZOY5ADvK7Qylpksk}l0M&S( zqtYu9qO`%3HiLDnc1vo&#Z`q<{-oVNKgasa`l>_)d_EWd+rgum4q9V|G6`B+Dtk%(>_2;O_?AFM`}7n#KFrf&k@*64}Y9wQ^$}$H~Zc#mTg~0WN8+ zKtmFNAV1EqD?Cqsr`4Gi?zsyYavU`dVJ3U}+Ns;ZvQzvS3$AVCxJ{!<)x4Y!} zeHe9n+OB1d_`6tdO#V%RMY^A?zMG?<+Zu`1Nxks_vw$!@sGD8EEO9cnX)=pCI%dF2 z)|(T2hM-H%%WQtjqZJIxz;?|MnTu8fW|PQ^9TE(>Og|iRls4jXEC=5#X34YA4Ef?N zS-~)d@BBa5Lz_dHuVSQcDMok#<+?p>>^xeUcB4p+RzKKk$cO+{G&fSk8TmN!h;95S zKe=leoJ2TsoI)v2lVh2M7^~+}*nnC4&7kSoGFdxmqob8Ecb#8fPn!#8Oz$&c$&O@V zDc<7v_Squ-3w`ea1pCZ0?T_r@mRW8X&IV0>ey$gpIV+rdgi*3yvP)p$bQl4&t9Jbt03 zxk%P$YkX}%cir^yhGts5q#GYPMI;w;JqnKAAKxY2TP=D6 z+Ht@GIln^lfXq^Hh%*TBiDD`@pcYCSoOy{li3X#Fj9v)iGnenU!wGBr=}>y2_l6*P z0!S7d<;)b&TL74lxYG$f;wjQwyqK*h^zP&%2wuKqe*mK8v%>W_*dXF?acqyZrg#13vpPFZqJ{ z4B~vS8GUS(?NVw_ghaK1gQtcG&}{6JpAsZmKHvof8$nw|tn|Y;mhTHp;{Lqle8mN7H5{$5#f*!6?;jTV zmm@{2-T;IDue`jcYh8O`!#}D7vsM3=0(dPYeSc@}E09T+!`^?xzWl_gSbQ<_{s-4p zasOY>?CV1>kMCZkYz@k-#1axe7PcV*w&|9FtCtxr(frex`eWF^9CM0Txi2%F_xaZG zjOU^2v;~}(a+4`xTV@nExCsaW%rgy4C8q`NTtx&u0U_g}lHqqDk5A*o zPj=b?A-vC$wvo1Tzz=uIZG9##$WbRCLiD!q%*7v!e@gTpXG;(;v|*s^v)9)O!F2GC zt3wOD_a_`q0WF|=307P_yU_P@xe!=>`_weHFOZ)ud7$5qcid=VZ1c`vVifUT*`oqp zg7w%7hMen0aq*2PaUIG$p|)TYhc!s1BVKs&O*pOpbwAF=)d{t@7;(O~UH6cUwXfh( zU1#&A`1zIn62&8m$4yaW5eE0jBJ^`q)DWTx)-|vH{_T+&V60JXH6N@DU5?qwk?_ob zom%s7x5m^I3|f~xdA>CboT!t#5zxQ(X`GiZz_X!ffQL&DiFCXGE5r6y)$l5{VqrU9 z#g(CrVDRt~$n1Wc2xqd_L2B&plk9|AkAu)PIn~1(@l{pI9JtRo zUO-vslfhPa+BCJnVxcZH-6Ma!-G%cx`3iNNAT#V-@R1h#w9m39o!5zUVTu>#;DXM( z>SW}}wA=b|SrHyEg;>#8FabE$B}lUrIW(+W3N7bK#-=Xos)dCG>TGq`zHhD|+m7r+ zo>{J$vvdzeSU=4L<~pXTUsI6ZQ8kTyUK_U5`Hz}P-__ik*!EIlI)K;Y!-0<4P$3G@ zQ#%9WY91&XX*jjUj#pmIKO)5RCZhJ?4$wV|)3jqvY0W5I`LFqwd9ga=uyw^DzGj4m z<(2}oH;9=-3e?Sq7wWR}e_7NTWTpc1gH{JuBe_O&!0sAnf9xZex`B70xY_i-I+Iqd zWmhBgr6MKsSw}F1@X&1fYJLs90axcyX`Ks7EEzfP_+j~K&X4#5%6D-<`OZWST#YxR zFYg1xM0Eh`E{VhY{1V{2FXx}heH-h2_$y&);zM{v0zt)t#2=Zws$BYCtYa9MAwE-ZFUj-Ua+JH8esmJPpj@o7DDr?qa5iC$J zpX7+$GRT;4xkatgAfL6;*j4^>#W(zwNP!BcNmElbu+H!jXNDRh@A#L50`9+H{pJEF z^MHUsM1zM@mvIpWI+y)g4RfimsY##ex=gw1Vbl6L%}~@x57-UvXS;Py~y5v(H| z5D}8FrSP{SyssSLlEYf-eZ|IrS*{qlVSkElMI-;x*A1Xh7NE>n=^IEyC#FTw526+I zaKc_*a98=<8(l9%iQ(QfQ|i=ZBj{+Mpu2@Wx~dJ~0I%sOaMfps06Vi=Na6bukEoGN zYJYjDaS z5Zv){OkmCE9R(Y&n_i#w++;S6Yiy4?Rkv5vB+TRDvnE{8ESYty@JXI>ym|$Tq0lKv zB?+X<`0P-Bh8h?-=~RkSt7E%1t9xY_PJoa5EGmmag)hlIEl**JYR_CnUQfT6>e!$d zBCQhZj4?klI$qIVA2=G?`lVS-L6*~Sa9ek6d!O{6WvhFsjr^1|g6>?|bn}60@rH%W zp;P0z@;GOio&9#LI=71qX9bL7CPj)-O@C%;gnb*udEr=3N!H zya%?kThmeNwduA29#|Vms>uV~Dl^N7gt}6jr^1G#p3|`Umef#y=(9g3 z0^)og70Kc&8z*Ql?DkIFd`b9Tt)q7=TO}ZPk7K^lgjOwq)4)(+Ic0}zJ;~5aR*9X- z@lqPSoTjh1o8QgqVA2?#?U9F%yHI2m3eW*jF;ZY)hA#eml_{^PtYGtd@qKdD1Vvf-eHBIn(g zwYKmgk3)6O#Bycz&|)0#tV&?onWsC+=0-@;nl8XKD`PV#h6@2zHn`>ZZF*SxDC z3&@7SLWLX|r7@GK*F~VG(#v>d(ERcza%x#M+3sP=R^xfDsfq>`B_g@=25Pal2+9lL zejdCas-EB97OFigeZ*Jqt#+&tQ7+Arq0_67ol=&yefwlc`-?hCaW;O`?iz1+B(v^% zZHlO-Z>k_q&jf|O$lGcLMRFRXEqSsk?8OUhmO66tc2l`fX({OYhc)k_Hzo0Fy4Y`9 zL(-V!PdXC025J3cQv^Awtm6LoW;Ky6=U^)1%|T5<9`&)jKVs5bCT20wp9fq`U#CgK z_AZAj?`43+Bj~fK@&V(-oyV@QJ+GFGq3vkultpV46M?@Yi_F@nf#1V+^8M>M*9Ztq zKd%w|6k>lx&Dk%5}@4m=fkhK(vn*X%bct%6=G@!rfH){}QXNTj|UVMDELIz(3 z31wJNNfYZ{^!|bfg(vdVeumpLJb@Z%a%M9B2sF5&z72ZaW8{*AgqsJ>eHIa(2~L!^ z85zFo3{5U6AsiO4u7;DU#(tYan($H&pm~lOEuW~7vZ-@LhExaZ73}3e=#TSUqeYnO zO#3ZT(Q7Ycj>pC{P{BsQ?BuZ)8jh)~f%R2)o9|yxzBxAb!hbFWHWS`wJ%&2uD89Q9 z;YhuJr{D(`OtFT(QWgK2^+e{HKz+acldXisVPp|~pO;zCBA)=0i!c)YLAyYb8=^-_ zt?jg?&SPbyH-uRG#z0$ZH{({iB_MA2NRD`@zac)flmOc3;LIK_aW@s|()7WmO12A_ z=ICp#Rdv(kb;a4)_&KM)%r49N@IE=^JOpiCA`-fKjWJx)XSCy6@AIt*hvd5Q$7Bp; zW-9sa?g(ib`FzSei^t*Mp-*%R=Vc?bkN95AOI4Mt*=_(~~VDb9G0(FD{}6UKaRn3onwDCR zUaYK5cvuI9Bk~{@Y_z=veH;`cvX$s(`B*^&eMz?MtY(dhu>`v%;K}W>2bhD7sXzfW zYAX52sD?$kumh5;dJD)Jlq({auG)(+r|Jk%;_W=2JMPp{Qa6v3*5EH`t{UP|&ob-s z@z-pAd;1ksm$(`O3LuMQZ~c@t>3W-6JFaU%E}PW$+sAu+Lw1I(GA~*EnluG z&@NcZO~JDw=^`42hz*???x{vTD1Ra7Kvn5)B|m`-duw9hS$QLZF}BvW6YukMX*XZ4 zBBmrZ&ql85b_MG(n?sy|In*U-ww%v}j9-=1l;N867_KA!8o`9^g!+u-K4TwJ-L*UV zC^PjeS^fjz>y`+o$Pe%H&E#IcVUuZxpW*a7vDd$}rRgm4tCRTE1;We(MEVQ&G zrF=ZnJ%EEeRtuH9x5u$7OB=4~i1HYj9#TqMiv*8-a2V9x(Tz0av+TOB2`NUIdhwijzWXL1_&CLFdtQl&Ja+eoF z>4<(?br1lh(H5yQ#au$)7Fp_=hz!lWUWO@5xZ3Pzr_(+vpUNv;^7GvQx zQ+I`kxF&}r`6rSz+t7#_J9|hsGP?x;@v+{hZZfjt-qc=%HMdx0><2g`#ko5x!hxOT4Lp=g zl`vfw%56F{nI59$`%tj3%YO`hl-b}fX^A%>QNv}Nv39HV71Uaeu-3*s>^9R^j&TOm zDQRCG_dBxZ@vYyy{Ik)w9v2smG@~WCg>_qp6I)&-SZa+^SND*r`a-7ObqxnQHn2XV z-!1S55#K*{@k1n9-bX6tDrVN?dPi{xt5np{2wFZ5SsXL@+AT98x!k9Eyr` z0Kdz|C69Z@%9vs;gV|+t2gNHdSHHij0zkI?ef+np~3VJS_^i59Y%LgL|-(W zx8DUW!32F=a^fEEs|-PyVkDRfDNrY3^%0|8(e5yjC#$|z7AUBr@VR(4Ux#I_=)UVB z#~(4JfvtNPwN-J?_hyW9g^6{yEYfXrTKP2k)b|TCG;KVi<0`(aNoI3-lbj;DD<<)u zspjLo9*4hMuTV}E65QXRMxAk7Pau92&aE1EQ%?7?TjvpCwtTYnq1v4ng`n#tFa0Yb zgscoL)%S7cxsl2Yy7O9urA?fEm|%4oiCp%sz4rzq{%hgYZ?As{lj6Dmc+iDf7YH!P z%vJUh*3E~j_}0G8?&ysSF2iiq2VE*cseeQ2V3k^M+6Hsb~| zb%;2NmvJ{Y090u|#itR7_u0aF%68PjR4+s!HB(d%>f?`~&M%61nJVHDj__YR7=N`{ zNx>5xTru!Uyh%OtIh0tb(}-qx@fL^u9rQ@j1JH!6!rJh7bOaa=Y}FE>B67!hOG}D5 zRR~V>RV1L4A(l6}**?sbS1GB823+puCwb^F_d;Hf6=c6AKs9akmDbl^Fz?hS{}nY% zbnMrcWJ(ejHM=z;YR;(X)F9?Rz^yVYXboyPUAQG3 zpm#KpJ?uyJYWtB?>#I4J4B#9RCp%Bbq+X1E>vTEgs>nN-8zNA&_NZV2vG(Lze8o%= zx~+mDPEw)PL^JD@^kXDiJA0Ucd@GnNasZl8K4aXb96O* zhZTJ*G;z3yWAbfu`m2#GfzUn%lhppT^khKs*7&3akh9Ye~IIHTYOFSLg4f(H3WbHY@z6&;dvLuE=E zC-_0K;2{I0)+&do=dFWt2sILG;eCV7cd@ypW;xH;GT4L6ug%^!{h85<`$*c)C1jKy zx_4QI3p-~ACLH~io|@7BuXv^vWvn|*5KUV1|~DexXyYms(HlZ;0GLt9W9VLeAieD%F1H?X^s)s6&o$RtbAIP%9`j0lz#9eD z5!XO7ZJl#qsW$KPYy`28ng^uWb#Ls*r(&wgGl?T;Bb$@P0zAf?L#9gW0mih1 zI=Uv+HiTnu*1<79Ins-C4V13*n1Q97=86&tVv@e@whW*SAi7tsZAiH5M{(dxjk3zUs|< z4w+1!Nrdi z+O6%cWMQ<3sH>+ffGq?1hG0}d{jHsddC4^v`P2LyVpaMTwp7*Y3t?)EgX0zHa)=yP zhwM+{tjJ696xj{!fv)se5nuvnC$!slmB&zH}NmWfv}*RkOR6P6gE?i$Kr%WL!j^(jutnMA#^s|mhQ zx`GVggyUT)8QcXaZyG(X$$`Md3~H96Y*F%seCAm!CK+hed}9L(NLC_!E=Z!wTVY2m zDczdX~^WS8)*Gmau4R$si{-YLq&X|U0&k$RM^?ylt&r>|Mcm5R2J3!X!w z2T04-WA8yHh70BNb{cqjIPXS@TBIa>AtGtYy>lVwFQ~xmp`r;%q$`k*ojPR-!NtJ_ zR|kn7^?Cn{?YR>hTyCDDryEtfepz9hl1gfvlADm6sXyy7(mP?$oBg|m&-{VVbNVE1 zVWv#~)rR`i$-6>2^Wp|>@{l@fRAyGL`(ctF!@wALY4&r_mvB$oq{R*%7851aXM`n7RM1^JEEN)24hMN7l zyL#UnnK7f>^3+Bk1`e61f%{5Z_%j~y&-zttTJ`%4m!-d2D;6&*wauI7ojRz`d4+MY zviYEK0sefRSbvj&a>C94vTB+v>3_DS67wYfQQ$VKZ*^DMe%M#385ev!JvFlOP7g;k zl$tv;-mO*EW%Tr-#;e>pbc6KDVDqEe+%aixb$78*^AD<1&)=zX9lxGePHJ~3kP_aP zBsDIiOkNk8tr!<5cYpPzJ8DV?d8e@j>|%=f8kB|)vtXzcP<5g}q4`cIyJ1%Q-XOCX zWfm3Ht6bOIp2i6$SB7FCUFGXW@vi}kk%EBbb33?*j@N}4X_}QI{A_x;Q4%N1RjJuk z9wBqIKfp5MnR^y~gGCnEuJdLQeWX(n_UFTUJL6%QYS$HxW{37huuHHp8vD_GjfW@w z3P6$!DM|DNF&s-PvbzSd)k&NR)I93Vq}hbSZ<7=TBZukN>t};ljHCs5H3T!ct$Dhu zS)yV7`8ed!awdaxs{TSw2ejg9q;pG6G)|t|#D;5xEeiTtJR>EjIt`{#*<6*2?lblbwU(Xh+HI5 z0Cn_$Suea7lh~}a?5Ysc!TVL5bIgvJi@^d-DQ`b#Z)f+UuXTj95TzljsiTOp(L;zS zyvLYr-4JA2U6KBrir>)x9bXg|xvGt2>n|y@7A#!XRMLTFJ`{i$K<(%Q;=0ow`L*Zz zo)UmxVhrwBzrDOAFT@D5=9Saq@z5BK)OuovZsxAp%VO0s$`#5x4wBe_FmMtG?tx~n zOMEAY@|5b3ENQLEV@s5^m~yyfPlsi}DYB*DE#>~84^~fu7Wt2MdlJ{4StvDsL_9x8zc30IV>Vf{9f{iVnHys0^ z_psj;2JQt`&lNK$y{o?Y#T7l_L0fzx-UlbF%tm6Q`i~T}9HPv`=myj2LhsRgSRVC$rl#p9{+ML_C`LGxGDZS6kJdInUvy@3uqY zzwq&W(C=s?F9OBUhqrv=M!YxX{Ltj9tkd+yv)iS>1@;eP*8f+lw(m0qeEBrzy@*%J z;|W;GPrs-baE)O!l0WcZYxLEdV+P!&*8{IB27T_l8a%XHZ{lOv-G6?i`Cxy?7Eq3})Ka-D?e=dTG^knhC?eo2CHla>*~qN+-o5Sq z;@i*6a7pK{pPRe!W&Pcv`0l%#0I{sZethk+t6Y+3hQvx=)JUo?u27?8Rc5Sv5#5B9R6XarnyZmOM2NQ5pxG|ODxjZmXD{ce zTSxjtKD?mKnI7z1Q(fo?b5R&6b&%A7Ywea}ydHMV2oe}ibsccm2(~apEYQuw!_iOv zfW2i~w}>$Q{`zz4W4~!S3YK$Fgh)}g;xF$iD5!TR9a{wfaq-=CW%KfD!T$624En3G zawB6jB+6$DG9l(SJKF2K9mO&X1Nido_w0^l{&mczKqRK_lOUo1d5Sbu!+q{}KgQus z>{YR|mG2vmc6LNWns7wH7{|lje)iOU-4O%VoL!@HMAB7h3FF<06UWT26mL70pNasJ z&iQli)#GS)#{m9DJ#$6O1=1(<dE_@I*-?M zvbcL&3FyTzS`};uP=~DSX@d7&-_vqr?u)TplR?qzK3}00lO7i4$J;mgMtL@M)aNd^ zY~8KHb0E?4H+~aVTOz%S)skas&kMul9&xzdf zne|d+C~9i$ty<=16uR*JiZP;s{;F5-SVG|7iCy zusk5*N8bKa8Q)3z)wrsTn98V%7FNHsH8j(TYbD{j{)#L*lMg4TJ(t@o(~I<*zXJ%W z&6q^VA@&veBOP~g(7xNHVsx*h1);hp8mqMo@EgPwFV z)@1h6h)&^a9;G9CtxDZ_+6fj}9B&yaBSRG8MVMc*NI5Rk$e|0;Ev<+j}L zJZN!z5y>P<2sZ<`wfN(icMc?OCFY2FSL+*A6x0pmEE#O_c(!fkzj8uOBxp(NpWQa8u0 z5H=^xD9^k{o~zr}*uuejnLx`36^p3_zIP>C^1~HbgCU=^?t`&Z<-L@KejqqSjx@ga zCO4*KL*wW&M>SF`QXI{^QA*42V5s27WBM$y7i{5dd%|Qs~)@$m0TS6oqlqUc})k_ zlmAZ9Ick5Cg&UmuaQ|@Y?_0J2GdfU3P3UXF+k6!s$_q{u>dGn26h@@I*ONC%N#cmC z7kJjI!$T~_=lqn6{M$cUba*c=U`@J;59U-@{kFh)>L;n>vVG9ZEKNeA0y}W)K6Fp74Ft8y2Tc^*QOGpIN)E z?VZkC#S%>%w=#ii!=?S)|>p9W3qgiP9Cp3v?;zq_KI0m3^upAX6Xx;j zT{968Kx{OKF%9i)9)HUq)EJ;q^aZI~6w*LD*99p8HFM6_NrL0)w_kSvv0u zjnYTUdrE{#)>>pmQ1Y=ErZGtExj(v=yqXYaz`wgWLsxTnoq2BVx5jO?UWM{0 z3|$EK{z$px*na6s*~%X@f`xnhg(%PW@9;Qfho=<&J;={W#Rvb&-;F7n;`7g}dy3GW zrCy_InXBTJq{Y!_`UG2e;Z*&3GQ}%eh*AhlGu`OBVi+k5x3=Js?75q0h;e#MyO@^n z6er|q?bJoo43c@xVuragdyCXo?QUFE{0CVKX-?$Ic=tOI*CvGG=Zu`E-!&oN_uXXg zz!P5J_|0IQFD%>7LKobK@FIO%yAx zb3QQ<83l)OUU#zVT}j@oM7a&`=EnQ^#_jfq*vt|-dj5GpQxWBbrT!SmrOS1uf$`zg(SVPC2p|Ho64zYP++_40_G$WWJ?0OsAPTm-7nb++Tf)uH9bt3s&mq0u#r zJ`6|2B&ydLP39LCj+59^X}Epff3APW=5Xk(fZMg{Pe`@-`gW9!WNlSm1mDDLR1{xF zW}3>2Yw3Jzz5o5O$u)EF1HQfS{)ysj+65JGdV!pXL{gFohbxJg{s*sh6W?eBogq*8Rvsq5nDSeivxFEMh zL%3COe7umhZ-{+-H9J+jz(ho$$ry#cC;`q>W;7DA_*0iBYM zaCn(FuU2Bqk5_LtfSNb6o-O$f&aRoN z`MEvAiY3FpJR^8K`y{^gd_SnU|K+ivDRn=0$Lt1QY;)S!;;PZ;Q1MrrFjbq|VkM)oopNuf^0j&{3>P7oC@6W$g?YVt#Iat56;Yc^LaD8COg zAMLm$;@p2UxRL!*#`gP?{>jv$zx>LV?M!&Wqi%f6#n!N>dFP2*CR@3`Zk=HQFbF-G z!KY8he3aXAyEQp}?_)4PDgYdf`JuIM0WPEb5~#|L0vKuC@TFVsd9M*V4fbpN3L~lD z_2l-;6iYblDGoIG92?g>RvbXv#*{%s-6R0JvoslrxR-cn+&=LvkOdMSs!WdI@f#!U zXOWnV!J01F(-!b=?e}+^`kUw<&BSoH5D>?*!l*X*qSdq3k-;^ne>JX`$iu5t2R7c@vFK;HXjSoXweFZ0)&kibbCD)(+&cM9 z!ExgHkk5%jm7gbY`=``&sV&a3w`FAkJmjpdXA)O z23wE42U0MBZ+ehT+}Bmb7htol%iH-&)6Wo%sg6vJ1*al12 z+gYG16*!9)CFWTE-m+(}kC&9KUz*r;%`X0J=SG^5QIiEub&H?E*AVd60i|hswD1lx z8KwYYS`KsURW8-K$Ts)%=4q`Y*^5k*#1B__;$XfRomOd{&7EL&#?e&Hf=8USz@g_k zHthTdsOqBHW55Y~T%yY62-yT#F&nqt@tq%vvbMJcWLC~K*7oBEg-9BjJCH?4rJ?o` zM6^>+;A}?^4yp5*^l+~)tpM=|;&u0qE*mny0Ke#nHO_&`2-?DweHRHZ7iO9osd!i0 zGbY_QThOkNw-j$~UT@>&P1!jyjY2a`PlTyl8~GgP;%Kn794f+#>MIa2@wP#3#W{Yf zgwJX{nhj)2lOMOAiEpDTBr8*{4TEUfvUsjOjFvxml7{xy-ghqQnD)xn-Mwg z6KgP2s@tD7+E!PIUwW(?zb)-&MXv2zI3A23#&ZaSkQ?X){CK+cbzMc@s69#JrVrYD zpS79tJCj9@CMq8K_~*dnR#6}Zo=J+4r`b(P zs@sqk)Qf@ip)J!^RS(Yw z_Hx9YdHyIe+sOiqKhHenOG;v@FVq#a3IQV z!eSyVsIX=lzJV7MHI0^A-B4`!BYChiRSjxz=k}o}Tq3L%f zU(Otsa1QY-J@5I3I-7zDsMqp*@>s=x?QOVeaB+nA@?tGMC}Jdrz*A6foNR8=4(yQj)ig3H_ypN%O_<$;C>^pwHI7Q#A zIqv~wVZUI&s8NuSt7~VnQiS1P+G`Ndb`{&CZIX>S_}SuNyj_zr)?KSb2L3>5&S+Jq z%td^{e+7ztsk&vRrQGKC5#yDdf2o`wMC|duMS6>1@;{kdGoy;GvKl1`+wv%EF`$m{ zdl?h}-Ye2BCL-v}t>mB=I5#49dPpNkqs~#pmgjC)D3`}?VjUnl@p1t~?WAu?{op)( zH0~;Eg9)Ww^Rsc2$q5mVaRpJEbh*Oo&+cit!z#Dunjzhr9TjyVGh1s4}InDo+(; z;Qd6(hu3kBYgIeFc%7IO8aL;U>P#$C=3m#%7Cmq8p;)n2x-i{i^YZi6-jjNZQungJ z7H7g$SWfEtO-XK*MaA#ao|p(G&#O9MH&KQgX72EN0>>q0Rjp)aN2dt*y2MbH>Ee|z zpnpL3fjsRYfyaf9c8GOYyLc#q7esd7?)y%Whoo!E(C(T})~jcr`CUa>g0(cwP2|bA zLML7c|5?}5W`2>@+24|DMX1k>>df7dn%WbIS;g9)kZA0#x^o2$T9jp5>L~Dk~ zgVCOQ88$5DY8-2maZo%p&HG#XIDozuTnsTq%R@=r4BAl}ajmXIXX;n_y_*S%* z#tiFNB7CX3-89)%DnnyT>P&?y12#$4YjVDbpMoLLi(rCr-fZ3(^4~CHCBi;I7Uecr z^2vMOXkN!yrdw(?CW2EvGNNaWedaKrJ)Ac@AMQo!+get5jkBmWSU@cMUmK3heungb zb7{jkM3T)4l9{TrBI1otnvxbtOisgFDcSKjD^odzuI1*a0A1#x)VAVeQ&hC7JmT$K zhAc7Q%9>_&<*{7CQ#X0!sXrMZ>|EUeX-v;3jvhpaLUbSh(E4_-rQ8ztyQtdc+IoHk ztX_eezA~)lIcT3U(22OwJW~H(pMrvo=Ua1{P0w0CZ{S%y*u1ZvfRtDrf!gF~+_j!# z-SZpmHXd5%Y~N<7l#+;ciE0uSAL)rL_)O16JD3&NY2)AB`7D3h`t`yp)=hTuYYi^M zZMSdbC2M#g&0__kIOv2L60rFyVtu8M=lOC^5(JwLL~^?IUNcPkpHkZZ3E1c=GpU5a zfFnX9G2-*NasrRhw|CPH#>S*Wr-9}N_YdASZT_H>9f>F%{zCp~6k`?I0or&VpzdH? z_p%Kw8#fZ&{`E0zLw&O->_!>$)S_p*Qx;2 z`2~}@FsVXy-J)ksFzT?WhRV_xGm3UGW8sW><0y4v)#w z3?m~GW^fG_V^8|{wIetxq3?z0jmp#QLi0YuOBF2I=L?=;K5CAHJhXrUSPsvtKk8J- zphb=De!W`&0VnD`&$ka5v??dZ7d6*xj!(*rsqbeIKE|~iz-(?EsEtNkH)ujmjMn3D z@l6zM?{$=4%4GXnnX%eojyc6Ulcgm!__>oB0Ibw2@?>KYa}3}GzTwVK3^=b^3ioo8 z+1~PZz#_rSTjjaY$y^jn5$5jPqk!tQ zgHl8JnmC$L5=6RAD|x_Y`eRk4ZydWoZy zSwR!UCVYilbb+4<0{>Ss;-U-|S&RQw{7Aka&{(378S4L#j$VL)velP0OsWjhDX_$W<&3;mcoYtWTNsN4Fy2Bh=zVth{Vowu3_ z+LdaNkkgwlA0>2zg7B9P=sFG`1W$F%MQJS@g(&*wy<2eO9Hujkc*)=NK?QXqv!W51 z$PRz4r1XHADm1*v`k_Fn#5+CHt>v(<-I&PIE7-12XwdVB{Tx_(wbpqSHP&|YupVU!oZyP;W@5hA0?TkkZR?=~5F zU&B6%x;6IDRp@k05nX(~r$@BLJmhL^aWHviWzgViRkpkMY~@y_K2;`~C_&F`T;M3G zu&8U4tFTRkOEQ#K4Ko9K%d^@T!vbi>A}0}XV|LyWpHhB?E67&-sUMGf&8Rfh^_0~J z(W}7+yR6T95`4R&CEbqAfv+h4*#p611KJT*EM6rr>WW0ah%X>nF$&ycF~{5TfK0Pf zGA_daPf&jiiO8|_$_Zm70r&4)9xV{sm7nrbI!%zDhkD#x0tmf5sA~p7ho$htKp^e~ z0IzB}bPE+851MC}gE^{R%DRT;IoNK1|D@~k66TDciquph1L>h%s1} zM=QO2qHNT!6lh}5rkCk8yHRPL-zPuuP?`M9a;i|ge)}vCqxL*;sIVA8b&Csr2f`yS zOc?}fYx7!FzVU1sX&jN4yL3ipX`mTNnh;L^e z!q_|)#|&j>q>lFsv8kLs>T*oh>TBzK#qOnX;J+X6{wuf+{N~5&|0bl~eT5(5j0irf zcL0R}fL>e*U)K1m;oIJ_eF+ca?OXB9x5kGz-n~koWTsmOxx{)fUh>&%Iat=ALe>G5 z1-5?M9lUi$l-0e~MloO1GghKi2wR(6?CQ;Ko@JA<@qy{(Wa%d%gNyP1WUbHrs{8i% z4Y=a{Pj8yf>!!VhrR7FSdz2Mb*&C%Ti>6sWU+7@>Yq)Z^y)%Ujnho@;uc7mq2vF0m zKM(r)rSvtDUIJM_sny{<^xq?j$E;%EKlyPFCOdvjirSZ(6_1x@QF14;0lLic9^>s% z#1PTahW)mN#8gx1>dW|*0B@Q~p(cJm$XX!`(5G-LD0qdMzT>cLApd6Lf5Sh0a;_GT z`W(Kh#eTi}gkBuK!F)nN)6kov(OUOjITp8r<|1&$uPkX&Dn8b$L9z#pQuoY-`5%N>BgY-gS&y6C1<^$o*IL4PPxL#lU&bSd*6%W=L_NU4S`$=#JU1%;1j!3b`It ziV-0a{i%2rf^j&#;F>^>0o(>UZCXGy#>}>vGz2h#8r(_?!=y8dbi3|cpn$l1?(0NG z;E>!A`w)W;Kjit+T;q}SS9IYKR^2N=1)QrTm2hl{Ks2wiJS{y_6`)nYGTtS!g$GzHZnNBZuX)zF&cby=Uku9Ntx9@;E@9a)J8JRGh zE>l2XH3G*jw22*`Ykag6j9s&^P8aavid6u~R±=UNh&A~@8^Yxf4j;(8BObh=~K zh@oe(tWfy9Re}Tij}dwE{#WmC-^luT*ll?R&OpynoEWSJ^%u^>OcyEnGmxOk(&_xv zFdlE~EMm;Zmtg%=Z-Dg`yp$mM^oe6&A-X(s6^%_-wf1(TpS4_B2Uv#1ipn4jK~KXb1B^*nR=_TN ziFQmeT?CHU$oP;(VwO>^lT-&!(kKfuZO=D>MHFA&RmahRpyYPasw@?VsB=+UU}b>g>=Z17`JDI{;6B|jUwxv*NJ&%REaW-=mpz=tmz{C9o^4^2aGFeE8 z5!Y4M<}Msxl3g(E4x`)>6@Z>~G^iRLNX?9He-N>el8F@gEhZqf&*9zCk+XFH1fvA- z7g%so<8633Wa7PY5AXfn1pGyNWFLCI6Je2`ZS~qz(Bl^C(o62_Wl2dD3yvHB;aK9`}W@b?TAZ zMCM%>)6Z<`o5+7Za!V_(s65~R_$O_yer4-Ty{A~`uyD*tU`KuEB+XaMwX4LrBjRCFi8-|Nqp1sHpw=h))gvdb z+`h(co|4-sb6jj*5Qlh)c&ks+bM%*BH`if6e2NJ^8>L!o@U(8g>y=XeV)+A-2CyG% zDixFqawADWZ1VqL2PzXTUN3~--8LFGP318xdW_9JJ*W)U%~6dU zA}C<4Fae#4{4jcDrR|Lg)>z8%RXtWNHWTO0c(y6if*@U+V!DMhRPbk$>o-onN+R#O zUbOzIlK(z`qv`P|qY+Q-gk6nRvl`SQP!L|0aTG?me88>6Q~U5;gquhw0xTj&rA8`G z8stZ0&iVE9#u$oF@4e>0a0k*&z*$fur6oq703%{v3VUQ;@8D5^9#kqqt~>rDF2_0d zva5M!%?_pt|15w|Bs$q3a5}DC7t`Kwo`<@8zCV>TOjj1}WL^&AsVsS#;iT_C+=GCv zd`)x!e9=z%N`#21M!a42UUE8j@@scSS_Rn=546y6MO`lplbO?h^@iViW{97E+)fGA zpy0cLU(4qY2aFhFE$CX{UQ2e+Ba5Z( zP)ExZxm zTrq$}ZnL{h>*2ky-6eZON#Sc-=d4#vv(MQ{6%K04MIFlL`8iK%p&B4Mtcw@OY3aBZ zl+qgKSxxZ^Np+1ns z{LQA6Nsik0c7}mxjn^6%$ZUc{+=2F6(CP4qobLR>M8hH^6|AArLQPf$cEe&(fYkWp zkdcP32#2eAF}lijNVH1`&c2+`Jl~KNqv-U-69^haB~Pu@moOAI7O3X1bB_=>78CUx zXdDtWuY7AT_zSd9`24slAI&-COv?Pe_7jcM(;lw3F%mzWB=%Q;mtw}v{$9GJKeqj-b9L{y^VX~7JHbCCZa{mC zs9z<1o_qT6qN(?;Qxf<67cc72UsQiD?sAE zbdvucH~qgeve%qoy8tf=Xm@eQGWL>zHS8bkU_J>=0>tM^JN-nMUanR4|IV-)O`Qcu zNv-pz>c8inp4OhUd9FaXM+kR7+vRI($2N86!EA2M2yW)4K)qij;NA?d1SStwl z$TBh*(5IN$NvT{mDq#_!z zW&?{UP7fA_EmvT?G7Xg|?<%!Ji_7W*U14F%2udx?Lh~=PjTOC-!uO%(c%cZSJ~CY! zvU*C!>K{!KKtw+rwF^x+MTw@MF~(vFC{GrNnnuW(kvm3^-4tO<8BvP7AS#PUn*);_ zbLGhvq>IzisS*W(X{arB-M2}U-6EHMr(w!}?zu$iFsreS>ZVg|rg3%(#UKS%`%G#e zkTfBSBLhv56j`2davq5TyGHfev?~X_8hA@kQKRV!DgxLJIDMH`=jU3g9^8Qy|A(9p z2#5|h1nz3Enh`Sqd!W2yZ^=ji)eR#^b3`jLPO+fl3P(eMR&zYjpTeCrpOViMkY?SW z-9z)&44SS$O_Yy^^#130ul&gP0y?4tf^~gEC;$L!s9dnXyvAjbA`YKD zlrJB5;a~!2dx6f>1w)ryK_5E^)VBt1JtN3+jJ(%bM>XLCWZZVFjFrHDKK#dc0vxs` zfZ`ppu{3;jSc$(%C*>U?XL^QMwp>t_coYS$9}y|RP%XQB7yQ>si+t-`Vdi8xD_3s~ zO5g|pPp}f?oawPk!SE+MOudmB@nIlq9T)Q-Hr7uC5J24GOg#j>E#Ca@g`J>UDrIs8 za#{?B0H&Xuw~b&bCKrhWMq-F0Y3g!4Rdm-8)xA~_B#MF-QA+C@_zT~|+9?)Hw?i%b zNZrXj%1#aXs(-0(3jX&o{!M7w0H|b*Mz_YvX?9i81WJ%QxS+Cy6jT0odPzcws$E2S z-N7+|fRJllVREf^!f944_NC@Ewffk{GF&_YP{;}W6oM^De>iI$YV|i385penLohPX zlJyXD*AvZDo$iLfk2)m+2qq2en*Tqe`5^T0u~#1G?f%Vo;@uW+J#pzKL8&Ew5FmVY zSpCNX{|FXzbTc6OoO3f;A6Mi3Q3!RQ zp}azMXxfY>K5kaV!Ya!p3TnTdWtAhhA|i@^`(yMW@1Iuu{Kai`&bUVly?tNv9!i6Y zxjtZ!*k9MtS3<_^2nriWxbE0eBPvEbw)P{kkSV4}p!O)1F*h9*|=n;-(#nEEFo!ZSQdVB=vdvIOsF&(oNSevam zKIqt--WSs(E>zq1^k{z16AO5CeoPwuk6lcKI8_{Fq>O_2C>rPx zDu!A!_(WXiq{^zd)~Q-8Oq)KkIuXyJ!X@ptQRSfIAC|gV&B}V z?QNAS1r=l(ym0Ou+L;*mw}W_q{a4wxTMn9YF=8RG=^#;Pof(`1v_&@# z)v6qoEH1`bGQF||Xmm+NOq*01rYzj3iRg&!JG@-uQmwWQBCQ-$lejF$(Q7nEQ$tGNtdRB&A(n{0U*Eb$Tu;$_2iUzdOE$>pHW#v3kvbfO5(foZv7|{bY!dYab-MbOk zKuO-ieNr}HYHYbEXr#2~l^zyzA3-I|Ic9$<+&?u`?zi|xZMv?2Sa-ex(MycVoafV_ z4i4yWpt{YMK}%w5RV?|qMwLu^*rlS9vWBbI`sJ@lg4|y}2rsnwd!2fKI#jUz)9vGH z={??SRQWr^M?!F5QnWp@)pU{awXi=xUgr>@yx=nImZm@v4OBxX@I7%uw@O38r)$+z zY>>OAL3ND|XoOlAEqv9qZZuVmsde1>w+h={!;DDe0PAyQybf~aQ9}&9^x{8@!qkyp zebO91IV_0eN$~kTW;vHX|BrU`@vqEiMYav^3CTvs3q;&XZQ#$=Mu!iyINem$09{zDn@z>!`U_88L0LR}e$G_{0H6ji_PmxLgN4)ld!Xe`FpKdi@ za(^m8kK;jyXU3PA|02m50IjBu9O(zTL>*40H+}zVC4oQuya#uG``IMPbMfDin8VL| zS$^d2q1gQQQ2c-VnjL(o?&teodp>^upt3tc+H*UEL~3lZ+_(HcT;&Am$6n!YK;#~v zR!`YK1n%Pg%pEMs-HlWd2Yl!y#eh#!azMY0p~M*>Hrf*pJI#ddLz!~UGhk`Ai~I;;g1b*z&})C9BW+Jlx!g2C74rJw3!& z>lD6Npx2t)Rnqm>R2zbpEr!ozreF~(yWfr|{21uJA6$nmvip#odvo_Qp*{?du@{FO zKzx6+bs5I(A9NOuq<)-jvWby0#f#K3%QK8Vh#lqc%Z-w(7I@4^GyWp^6loD`VxM5> zYxp`ivf=ou^F4U&m`_)xD$KlDVuT|h;^DZ@g2%I3A;2rWt(^r@O*U1V-szrMwps%I zHdTgJ3(FzQZ*afb%RAsG_e5-aX23^WK;zKshJ8}Br zg_5`feo$rcM22AV@bRcZ)C1^+yR`(p+#5!Fp~X|RJi^(pk84c=*H}N zYrF|nR1fetwbqn+zfQ}ZtGGIkkbO9xyuZ=3d6sNME>f^YQpWN1ezIqnC%3#vU5WW6J74Y|dqrE@ zO;H>Bpsu8a7QIF1Zb>Rd%eA4FUZXlLA4I9A2Ye->|-858g%XM|^R@8U62wZ50 za%Qw}7oV4259nSORvWL59Mr1t_2=#zwh*+-^7ar2j%AXZwf{=A=ap;^i!7jWojaGr z6uiUmuJnC#Qf#x_j54eYoadnc5fGI{C{W@x17>gLuSqgG0DKD1Kx3*OoPSaV^8 za7a`pOyF*WnZQk&0K7SH$Obx4Rb}rsj^!7MW%hjAIWIHI^vW?9X8r;7)w}#VxsLsT zrJ`X$*y`;Yo!x6p&$>${N~e0@v+Jp%8h4q*S({>v-US)kux^pA@bzGorw5hu&7H?I zlR-@e+bymdnPWR5kNKq29D}o-y9)-Ly`;gsW4_ItrAC2 zTSVeQz+md<6r@CdAwJ!anmQc?uPyUm32 z&>PM5^7a*;I#GNE&j=Up;ifKhJ&~UFi1(||Pdcu4li|7@pFo`7Dl#?knxExnw^6Uz zrXa)urSm9KFW8%kw{Rcq@aTQom8!{XcTwF_@l*$^DCv5YN6zIu_zr-4V3jYScRB~+ zhy-qLpZCrQv|Q=(W&L4(-1%3mFxmpbqII~$=>5wL?>?>0XqxMdIGCGmXHpkiBifo>4m zW6Qo!axrKu|ApAEi&C{6Y!{%DTimo1szcm5Wck84D!*dB0D&0c{UWidL$h6x2ZGBJ zS{18~3!#kN$l-%92R{M`s{tPurJVM)RKKUzp`30YB~7lhi->ls)P{-N%;88DiLyOw zUViY#PSxA!F__8=HhLeC7o9_!kbIhW%cC4z*jjnupk7R_&%wLi&yr+uglD$@;Rshw zsptuyTxwzkz(|@7&GEWCk)7u@=T~1pDWutNSwEDa`Aq2hMf%B=5ighV!dPez8w4ul zk|)bNAFY|bZOL%^7@~zurUa?EblVy!<^#j$9#si*(PHj1bqRRy!EZo&qZVoC9tCj= zcN6Z}dMmAG-xIwh!y;aRyvi{V^7bcIK{;=FLUTixQ_^A81=XJ$7Xx zwU8#N4Igyv9Q)$_L>p+y#2cOJmiQ$#IHx@Cul@ z3ZP^$-JHw7aAZ3OA?yph6=pIOAWxmnm^>?Lya!pc*5~+jw_{n03pp$h;czcLT8As_ z17aNUbt0zci$J8BLd)NQ5P}6ZJ&iV7{-W@`==W+%V3RD;bv`3q^D`pGvIB#z!srkc z<4nv5j_HBELYgz$YT4}W%75FLbcJ?ovl8Vm-h4&dkRgDnPnOE@{Bx6M`u&GCuGoyO+Fo z1(D%0Q!=npY#wvMhe-)d7*yKk%Mn|_gGgd6X&gmzxMqr>vZ_z&L}JTEp=OU8xu-pZ zSy3IMLi;&2e@G<@j%P}jJEkneU#)ZhVOvje#o4DF;qJ=}?TSz{$J!&8tcm|)a$3Ry zt@TGf(Pjg$FxJVC$?cRtoz*ctaG{cg$yJD>461KIdIIc1DJ&d4019;)-zW5JV>W;t zmo*8xcghBJN&EN@a2h9_S$z4 z61j=NmJ4KJ)R2hB@HS-%NE7pVv;oL1FcHJmHJo10J*uBq4D!g6+qgKLPC)8snw_Cb z?2$Ph?R7nMZq;AV*5fs4qR%rL6y?2FtQeE}yjJ+`C4J-bs-(q$5yd23;5o~s?(-Q1 z?##GsYu=Z3*St7CDwo%=>KdaXgmoH04ZTkJxW1&j#*?`?#R^1@;k78hWWO@*IF6t# zuKCK&x|YB}R~7jd#yDvnzGnj|Hva#Mz4wl4DsA6|XI@89QBY7iL_kE4D$)atfK=(y zON1aL^xk1cN~DD%Mf%W7=si@W1Ox#ELN7uHNQVFkB$Tt6`OUj#&Ue1QzqP(~_?Kkw zo#(lqd*9bxu8Vt6^xEzDCOvLj*-Vi*hz+NX+&6=hr0Nlx$MmArEs&|ZxC21tp_TsM z2R5~Yr`3uK#IOf@^QC_T;x;N$c8{gsG)R;o#rzDz(r56g>Gt)UVyVeFfrtCg0iV}0 z6E_UZXAM5dHSmrJYbfWu>JVkZRnwMYUe2j&YoDBMB4kp5x67@FWGZ-~{0P5lw_`Yv zuw`X=ciVw4gJCq9r$Q-7Ko$LZE#1ALi0i4*nCzn>o=!C*er6Zr{;fPW^^K&xB*wfO zw@q((F_f7hV7x35WT#MnFSas7Nw>8HD->02_T!hrs!5>tiAL=;jX{=D-5(5SlGXDC zez%8R?iCfE&D!$XzWPqmO$1Kl#=LByzZWCEY^>Am91xR^i!8e)IHNtg&wE#O{xxf3 zX@t#MX}qRgI@vx`U>afk+9>>7sa3_s2B{nJNmy}G=^CB~3ybHA)8msW{2NyYhlWZ|lE=oC%q6A>%KVPH3*qk6;(gAle_2?EyLC+j)K;T!~k|F?) zjE#Yo4skXe{+m@&|<^s-=z^*$7v-&F=Edj5B0d8yF> zXz&sMHvfb7)|bs=+m0Peag>+up??EZC{*KQez%hdeDYF^1XFz3dpHC19yb3UkR_mV zun35WT$1qvPDX(>E&uYDCYl}c z{UrbhTTf(V1pc3J6j1)aUrLSwDddw&RRvh>?ChA_bQ5Q7d^j*hO`2)OA)-27ha4}# zNku>z-WC48L3-v3!qr%y!CGwRI6qHt3V=5w*RkEympJFUz(2MA{;#&||Hs{Xiw0}} zyAh!0*aj#+UUtXrupDtEnAIu#xmlMRhWKX!>v*;gcx#<^Q3}TJ;%$Hl=m$eJt12ki=7ugzHuV;AI1z10jfa?exOi?RX}($9lt+!D)*DM+7A}^p;+z}rhN^TGc{T@ z>^mE){SBZ}sO|0fON&`w&uxxk3UE-`s5jk(!~0_N_p~0LIV*S1pILB+p@NPtB+%T^ zjjpo`LrGH^A-gjNQBvbqOWT{oRnsus-x*%2EK_P_J;|JpEi^>%w!%#o*Wh;4N$n{g zkxL~omF+S9V}A8w5j1V|F4V9)*h$+|ZxR2Z(mR1AMPZ&b)oQS>FL!EfNYBAkGpUfS znrq#R(AZu>^oE2b&yQ7JFARwv%wM1nc-rZ(8gMTdx}Qw<>@aaQBG2n%KrPn@1^8`7 zLDu)7PUBC1Y7_l8x#_eF$QY5k=sUj0pC9QM?u zq{kJIv~1BvF!g%>2IuPi>@SsM%fYx+s1T}EK7Lg@m-jat+YuKDWt42yQFNM?(>a%- zc#)VX^*ta%qPdK^&~6$PFx!@IpBN;=9z#>hvVR1v4(xhajy&1WrY{iFjq9G&YG}K- z?=^jBk+#~u>(#1QdB(OEbp9X}9)I_0qi-D_o7#N1106Zjff9zHMUB;d7QU2e}Dh_pZVX4C18mH0FB6_8-OyKOc0+_ z)jbCTsY*Tv44^P5`3Mo#Riag&7fk7YZ5m(wbOiHedd}ASTyuh?A)*Q816+b{ezU}LJ19#=K;ug>lmBnkh<>c${b7(G z9cZVaKt>u?fhiNkRZxW|XX(Ee%8XwbXw?R@4MT;}-7D#gJ*_QSZshFlc{-KTgEpN?Y>PG>3kk)N|c{J?*Wx zJ29Zq-`V!%Ofg;NHym0KlD;omqu{yUrSjSYmxYJ~7`XLq-#v=3TT>UViL^Ev*F$z| ztlxw>bKIQ%!^rH-#+&?(F^7#;Z)-H?^Sh9GJJBs|Y|0w>O$Oou>Dub|I{5})KeSqC zLRfI;*v{6>89in(@=E98nAMS^YwHP0c+Ds7L~kQN1UR(n0RBbCI<+ti9V-vNnhjNp zdAFMSil};?1#@JNRL28WRR#Ih_?gov82RbZcvwDbs7D(_P@EqcU930%Ioy+vUewTg zt-{a1H!iO-9i*6_9{bi1(~y$USkOW_^cMRvj6bnIJmuE<>XStqOewbj_zBtFEsxFOs7b$H#nZV#I&&HIz;@eNE^0dakGYKJ`WT ziOrgyg_#l7p03v6v*E#`^7lNOhGdR4hN6!n)o-PsRvg0P?c?=LEE^d6TZz79m5Dt_ zCMQUwnsxCFoU7Dter(T!4U1=A2=E^)rejFk?U|r&G*1g?73!DF zOWxe7{8vj*({HEp##OT+*=_ISn2x4h!yDl8KmW*gxb^6Ce|-cTl8vgGJS==4w+6QU zMFT_K7PvqbsRdNP24@w1CCO*O#&X7XC_g(vO7eO749uSu7;q+;c(b3u+Lj%AQtd5h zY;PN#wKxz(zL*@bqM)ww<(%cK48!$;wOo!hKqfO%&vcN-SFOsc8J0WB_vM@8=uXfJ zvi=|UpH`1+bx((oxzGvKXI#FB`+ z&7XRQNm~q73tyN&L=34Bwi}4V?Cx zEgf&m=k)<&2CYggtV9_GSh)(y{S9~Q^`a1zWUi#IGut1&W&q-3UW(kTnX7AD{eR6Ox*;qh=y?JYC z_2kde1uCM(qJa6QwEFyVd=eQk1WTDLSJKdnW~7_87v(Bw{NQ(kw)(IEHnS-IGy{xw zIF&zRNOGG!tk(1ca({yx){(S@2;$SBoFkdp{xY@Y$yamJj!6!kJB0#ni4J)%6L&g` z>~@vTKS#d1GFhTLt=J`kDd=kT#v;(tF!o*q>GCjOd}rLNFcY;w+Z;h&fhYP7{#g_} zE*gFKoL9ILnVM*lrB$5Dk_6BGFfpzY^M9AOG2*OWJCCL}pj&XwA! z8eHA&5Aw?ULo=2)NQbDK`nc>Dp74~Eo=2#N;l$#4POTS1c%u)T4POi>mmHDw;KNSe8DKF)7>6bs1q89av)&#QEV`nX?)}QrM|JdRy zGQl^$g8&#kcZ$a1c4?`;p8N!h$8Fsz;RY20QET?4&+@l!0)i{I`M)L6`|Cfu4^y}Q z&jBy7y^l$E=vUGIOkNHs{kLRg`rAbW9&>X5&9zQ%;cFS=!s0iQ|63_F9mmZhtY1f& z&i&Cz<=1E0asf9#$UYEd9+a0lP>$zyTxg#=BRoe2&qtRs3uAm68sFKx5H)Ro{1fp= z>Z0GJGT*VbfJ?FKLpp^^z4bn7$kE-}LDgnHz@t7tJgOM|T8ZzM+gN!@kJ5UTvQ|1J z&#;xK>9ZEa$2!6mtfJOnI+OaufHIpeuQY%TSw%`tYpnir2MqmCaQqy(L6cx1xT@Az zmyVPI`m=Iv{>arAjTOD&q^58cm_ej98sR$AxG8T@tLIfVT~NlHBXD;L)}oDP#D zCGr&^bte6>Hx#}Er71dFgJB!vzv0F$RUl~oXTrMe^=DEdJBGziO|M*^E~1;UiD{b0 z#H#16@(R}%Om{6Ol}K02CJ4C;mfp;Gmmg)|H(85Clm?Vi7D8el0wLB24?hSR%8Fv3uZ85_t`&(BV|HYJ17w>hbYvpx+Fs74Rxv5WNJOyD|ID~g zFx@ldu!rAIzv?7ps_DC7IQS@oCf(g6#sIU&S3aR=?o8uKS*qg{)mZhRLHaVURR&C6 z?EFNdS{}*NX=8dz)#M-#mr=B#^pxwYh4b@vO+}W-3xD<;j^FK_hIHrEZ(ESnAobU? zXmwJ>J1r7<7@N#`5>j2JHO(c`cFF0Kn*uD|bYvyEtwQIq$A)P$N#ZD^@JjmKbhXpl z{H2VD)s!!W1yDgz8Xe;7Xlw5{xL;!+Pibm=m@2=NYt3J#; zT1r75DzE+&!$B{pOp$ZTp?O{Hx6OY=cs2Xd=j{Q+#2l`F%z>C-dDHrbU6HcpBY_t0shl2l(L z@I_-02ixPT6Yq7h8q{9R3ZUkgZs1Eczy}5+c%tsq>3ub?0l&H z;Lvc9e2Diq0(e3G2tMLaZOyY5yGf!B|t+Yd^8J$?O?i@+p(e2XF=pO_`K zT#~0x=kLcApd&{qqwn^Ue?@7(HszaXdCt1VEe+8`u1&sLuI)#EPtoVuiArCi6|S5t zn6dj&x}jO)*GZSXZf;%c)2Nnin`_pibT6AUWS;Nbr|R%&GFM8J`9|$GzK5^!d3Z|R z$HM(NYPWn}Mqqr0K75@4C?h(W7Uf~}#{8w+8Mzpy1$6}y;mK8a>JW_6SQqQ^`O8-+ zy7V5A92(&d4A#mtodaHNb_N4p#j$nJR^MMan03NT7OFQDf1H1K;;WXG-hQj0F+0C0 zO(Uy9a7qVbTrfNk9kByHu`yjSjd57gmI`UrJLRuo8u&xX6i>$r*hJaWtLMfmjE%>! zUSYSWzMYsV4gx9~^c#T;nMT5B+5^YQTPrX}*mSr~*v+XReUsF_W%<-`FTM@)dkyXH1`DWx-Yv~)W zH9hG{e~(O0k!rAm&_LwU^h@^jn`kvS1*ZX>i2n3@bXdsC1noXJFvP#|k~Pq(q+5(j z&tg>DcPQLI(rf7LSD{%Q?z5KgljqE)025bBSsw1lXb2qa=d*HDt;l?{BDrV4Ut`K< zzc#Ja)Oz5P?c~eZ+TSbTfO5jw_eKM^zZ&0SdT z9z|NaHH80I>Q%7~=X0_2@G#gj-0RwXZQ>}tjltq?bFQ2J%ban9OiAe^0|VZN-%NygsGcFYH0*{EPTpjd#eqf_ONEZbE!?0$5_gC|kCIxg{LDdr5*G0!>Q=u`n@y!!Gsbw2r)flf8k zFM|95jsbJ-Tpzvu)eu;648;Rk_}Pn%a9QSp3EB6n$HfE6Cw-)qrl7|Y z)N%<+%kO_LddLzQZI>%|uTC-NU395kPS$b^zNJd2PaQM6vv58Y0fuHC2{0x z*7DB?^|%ZIQnsZ$;*@FSh6vY>!wPi|EX4%sd9NW88p~(~mDFp?IF;onQ@TlMpt9i*S90C!9VxQ zXAUbo)qST4b=Fq-AMS(RzHfQvV2OkneV-%khnc$qrgegp;_O4Kulh^*85rHdhJboO zyMy1`@@JH`zgu{&Y>&&NmrV!0F^X-vQZ_iWTqfz{O^kM>oyfE`>V~119H&bZ)+L~T zMoEFj(0fklj+XHnVwuacWc}niM~g4E7)Mp)_%9Q&&+6N*y|+AYC?3|$xGDPH<6g}B zJJt{HrlW8z(Hf7xw@9zg_Jbvvq$2qJ9NZ=>Gs^1wMdp(HK5upuK>ur|!!>VHo6aV} z@fp`M(u-j6Gdis4FDwfgg*|d3hJRC;@|cl-QTeh35}Gp_vLqj6GYe(z^7?nf)p1|% zcK2(9tYJZl)*l+jyHBgi%qj4*viCOOIsMhLjMmunfxbWmDbmXd5K^~trygSJ07}t~ zMx;pdV-o5%fCEx0O%Am1e+^SH>P`{e)p0yo$=-c)t4Ke+B5_OeAzWT+IxFan8mm?V z;A+dlffmyEn;$8~CChB3KnBXvCLi+KCtpP?mV`@6Fphr>(lL*|j4R?qy+(=m6AMb; zGmKBZ64R~l6J*=a2hdXRe0a=tB61P-+)kAxQtXz=0zN*s+ZDowRmq|&!vU&Nm;TbP zvaEquD+G~Zog9Qq)Ls;3Xk`wK7O&EV{Em5LE1g%_08Y=28e?jd#%NAu=P?;EM`V_2 zaQ!A0LvN{!q8Z;$N>vmXG{%%qzlC?auGP5hKrnggV8Q{Y4z^h-Bc4lK;n%zY9U$#Q zOPR%JXLoO%bD654`OHKp`

    3Z7GyRI1Nv`E<$AP}OJc zqZ1!~a`nN(N!MUHfXC-j{=_0%e*^GQCHO<;p@anY`%<58jM{aok{{J;@Rxskv?Q;W z*bLDsZh7C9t>YOsIZ@HTS#2i#aJY;G_9{J@a#PxO@CECH3SSlZ=8*hBB@a(?6)p{5 zW^Jk`I>IQ1#iY}I(Dw>;($BZCu(KSpWi8WdG9zN*O>QgMRXnT}LuY82jpw!%2%=IR zX8UuO)85CW3+L*mjp7v_`weSa|L7h_B6S7J zB$t;#MTeA%Yb4%C>q~4Ob=fzX^XYCM+gT}oR)w%?yuoJRA6a?=+ML|5Sb*AElFvwx*;mXF8&7U(7zbrEfaxvtJgkD6cch^k+-3IpwruT`lur@`v;RnH zf1^{!zU--4XK;YMK2KD7TBtt_)fdUA{H2-d-`$XaR=Oc1$SX$tyH-`;1E;*;n+rn! zJqy86NZLmgSKCTqYIZ;LImk{qS^C^L=`^c#1`;(zMLzzH$6KL|x1S`&9nptohQw1` zeH|oHux8gtnxV-JXPe3Te9iQhZNTFcQLb>|4|mBnD&i6_EgL5WJ+>Vy%Y^isI>~T5 zt9Or{l?Rk}&!plAbKW*~YRzw}>_?IW3o@G@Vszw_r)}okL17m2!nz0LB@<A_7K--oGGwvYb=$b!5JoY}`$JS-@!@QZYPU3B|J9u1~y z5BDnE$tO}HU|$DF@!8PA8hPldM$2J5_^(0VBG_#=`muSpX&d1SNu{PGcv!A6t#Ao~ zk(OTYRc=53-6MRoS-KZCmPz;Nci%7IbKz!*OizlG4;mB&xhbs>Xvq%m4W8#PNXolj z^01-?;}kBcRWr!?yAzS)`wF5hCf`avL?Gz-l4EW~EEISG!%6OFR zU@M}S$UeuLg8RNdSkjqHO+}SwKPP%)8gfN7Vyl-vZXg2RdF`5Nw%x|QvRPa5Qv)P0 zXmu-<#;Yj%(j(bhRNNglW*%ffTO2E1JdQvs0<sEL*=>a{QU0|lC3IU9iLN$k&=4+7DPyoX@%knD&T zgpvF77oYaUV}*Y+RUq30h>8UbMcBso&iwonxb6pM1O@MJoc}B~o|pWP{wM&sBA~Cg z(EDIc)3b+6&-7jUxP$r1)WCChF3P~GQhfe$rE(A6nsz;h4M-ClTh_&hG4z)5^79k9bzhFf;ZGi1(&I_Qf^)%mt5mJq&3=S(9&*BO z;*YNb<<@Ms!$_f^t(;FG&c8@V{i~BXN{-z3TI8?#`epUaSp@huPz}Fq{vreYam1|M z^Ixkjn`dXrAEpHz`7GGg0VUa%*=B59)CCf6d68Yq@Ynn+@a^WimlU^7qBy}I95YZn zHfp@2#0Ds`zn+0k_o!uoy0a+K@QCYVWvn<2v)Q(DSro2X?~s-f1nPkvBQnGdWEEon znnlRj(Ip?p(Zx;T#cBV={@)GtuHBcd&CCvexAU$8C1XEej4^r-cwTAw_A)_L8&0sl z@m~XuB{lPn1fcgX0B8dgvz+0l&h`excRN98h8BJ})LORmcxUcmxM1M(3GWk0k;|Wd z`NtA}$*clY%R{MiN8?be+reAsymS}&H2ZtZ@3+uDM>t>UosS+8 z1vXrwn#3#SJB!Mv?Ky2jtU0@gA&0qLuD%9#4Td)gg#>>Ih*T9ebb2Rn(_yxz$Wc^} zws0@PlLJ4VgkkicT|h{ul_BivCjt}Zt^t}I$8*58Uz{F51N}~+Yky`K|DJXGe(kbx z7HBTGY$YhoYx(2!{16`J&@ir%Xn?sSSx;F-b{;6*AI^xb&frC1Qa$sEE?dSlKecF< z;wU;R?rbePjyq0E2_Id!?4CdO8XP76YG@Rhck@NJqSMVn#MQELx2N}p2NSMv89WPp zf7i)1?;};Ym}cg61^Nh8n_nYx|H!4dcir?^ku_hdf}n4&w(42OU0` z00PlAXsz61bIxn`U=LeMJSSL?M~D@s#ldGsrF{7ws5PN+mEEL+HmoE|#89|O=ZwUp z5nE~&GQsF}(8s#TM>L5~V^ysXo&#h&q&E9JZ!NwvofC`| zFLmjhsZuuk9I)GN_{63DRAX_s^CI}1F7?S`bBK)0p!Cto2ygbqlFJ7pnK?tp&x<+l zLy#-zS)8falPcZwDm(Lb*U-6(y~k{8H{=+KQw|5UhBgb84cOlf=EEni=HO!p8Ytr5>9gjw@D7jOt5XBglPb%ErH&8C7pe-I^_hVuIGYB$!a`HgaJmEsV_E^x%jb2!#V(xQ@ z@piXBu*q_4$Dxac)~0LTsn0jl%F|HkhT5%CSq91BrFllp#iU^RX_ksMhg9(A;vG6a z$_9L3?N8hD4vi@xWXNf%N#|^>u6A%%mb;wJ+;}VoHn;V@{_}dN6pn>kV9QY?m{i2F zvy2W136rJGnYZi`&_sd*W9UMJff8*1KS)zxVkjI^)IoegG zTm2TL&DGpI1(g8=?md$;QzAA{W_SF)*3(e;`28vY)QlY4rmbJ$ZFwL6ywlW^^blaUR>^SF?U&5JE92b{C$=w`ps_Wc6| z8N=dCsuKAi(jlR#()I7T6a6hOK?#3dFEYHD{_F~ z#cpuT#pJ~k!ItKTw*F(0)ZNO>@HzHi-SVT>|2z>#$0awcuSm19ht$SgQ6TUHjkxWe zEyV=M^Yx_!bFurdQSw048rJc#nFBd(W6ce&*z54tP0p}jWh{gjzqI21E){R1a9)r- zSPJ>|9cE6J?R7K0>b6_uOet%?dTg}b+Eo^djkPHCA@zY&c@Te&l5@yDd$V>LPTeoB zjToGPwP!h`jScvGg}j84>D6vHI&biT-^Hi*DM*-onPNkWhM5g*Tec-JLvta4{e}t^ zi=`TZaRbpHYNvOt3@#d5w9+dFET(8D0&b3bE^FiXLXeGke-`Q&146S~f@8t<0wDk2 zr?Lf)(l8V(RNQKApRjzn2p4*@O&@%Ltya>A(8WvO&OETq&lLHfrPOmS62)Ta?PhUKZ&K@`!l|K~pSpuO{7tpZLNP0@sIq@M~?emEEq z(Xx^p`2dYD8V*`ka#v?y?z2nXagb=W1=Weoqw0f>8$u3ql=9Pq>|D456lPLAa*jnB z75y_9gU@hPx$m~&Xm1u8#tOTwG3EYzcNF9$-^%Z{Pri3Yj^+l$vbu)}uTIf0a?1qd z84cx$jdjXqYCU={{y~c;HWi(`a*kSSP7Ix5EAE#848FPQE9h18I8RPib*@;}%c*@! z${G`OAG}N4@f|{ED(M`m8)md!jKKNlqTcLyo``?BV~W3briiiyen}m@E5RkXt*j#i zoHxf0QFC*I+{W&shf#%#FBax~&1&A5Ev$}sph@Z1fQhYgBf?pl`Efd-Rge6{dI>Uy3W*aqq8FWmePN!ajS2VDQO#jE)CdK$ z4S;6QTD~SXN7F?(O60_g#^4K*t=tvs#67rp`ci?fjU>V>9aIT@v*x)_Jq%5jpt=Hh~w%_*4TNoM_H6jxwj2TfD#w48sCmTANLj-a zni;eO-^P0SZMf|V_cI6ya-M&|oa=Uemv!eODp&;|=Cp(@wyjpiw$Dg?>+-i|t6+Sf zoi{A*z7aJ-5kr*2;vCcwc^l6xds8F$@0(`rt=rS)6YHE=lY0xXq2%UNS6?3GVFmQ{Vp0Z8YwX>K z<}x?S(nWiT@}l#l7`eVaSup~SkgQ=1ShoGFTTCqC{P!3)w0q7y_7nvH2t+$0$I&o9%7imx|UnqV@8V z3Hove=|`B7aOSOa$}EYSkmL80LCG{`wr7DS8N^b^?C?}PpI?7-LulKWnd}xL_qGq~ zY~Pi2!CrP~z!ojCc=FD2d<}DT)<%r&qstTK(cmulE2ptPLXGIg7_?tVC*eNBqug=2 z4_Un$W7R}#I~iSi%V`Uj(g2ke6MIwD_PS$xWU*=_b-$?K@R}Kr??TuAoU*O=TC$O# zN6W>rr&s9}&SUVT)7t3ff>X=KA@xjh|3PcLz$&+#qWB>jgQdHSa(5A+VfnUu(vt)8 z)J9lkG}v4K)Z>g@t21Jg%L$iw2#In-Yuj)6;gnj=yRDc)7bUuucJSN7IN?_VKYRGK z-J1l#V-m=Wt>?dxct+RF!^Vh@Go81H_pyg-(^~$-f{`|dpq#I}g&-Qzn?6D?Wz8Ig zB#ZAvbMzCJv1Er$D$btX7>CU`WLzf63+;?GJ1aRaClS6$eOS4+h>w1 z8HufhH3z=V-ObTpUS$a|Jor^-qpN>sYUWOwZF#b^-*jr@q}svopv(OEhTJK&F$BR@ z=aV`eW@E}!g%}k%H1Uo}S>96@%yQC%mZ&Ud!(&(l)+dE}*o`aD4^Z)>_QNaC3t5%U zE+Yo|uheqmt$zIssLp2skEln;Qb>?5p@WM1Hgqo@8;4}2%4xX=8kD`dJeEuw$j1_6 z9FOL{7$~^zwy=-d_9)n#g{}pc7KavhYx{*l8y4mH4yi*r8$+90844ByK-|{=pI!== z#ZO5dDOi!G_+7kjd9BYZ#|Kl+C)4)Yot;I^qnX{Xg=|VcmJ5Yvo`cwr`WUXDYfvnt zh$r3+Itq2`zC0C_K1jYN2YSIvpFMpO8(T! zB^o2_!m{M*18tCtXK!2?Lcs4x_obYQXnuolSdp8@+~T^Il&9{Ii6FnRbsmxzq3O{f zhJN?Qpx&Xf@Xq6-;&0S9gvXn+yVc!PV#baPTm4To&6FG^+XTfeOnn%ZT%E9r#ndRd zr5aNvWYAvVI5u&4YCpS(K@N1hl&Fb2ww%*JOe_w$;&RZ}|^nv#>EI zwsH?O?+%_7P}sIkO7M!WF2Pqy$-mbGPH`s+_R72b-Unl04qZdXPlBC!l^NExc!-jl zqfihU%S0tUCD<_7`7^1QI0|7c2I23`Dpb^WT4)kM?>Ty^&+2@PG{lFqDnT@Ok(|NY zDsdweCfnXOObnp%a|+4{1;416 zTlevAZk%GPTE+YFI9ofu6n<@C*|~U687KSEyG$e-ReEXrxdy{6B2UICxH{`+j|}TR zv!eY*ya$XY2~?!|>xe76O8%BxlKuk%v}~gXnFcIjWl8l7l!(sKAa3G z+Z<%~9z@0h&h*aO(5I?76?)D!?QVtx^j)j9;Qv}Z+Sx772q6a*6_9T1Nsi<8_?q*v zxsTm|d_~JI%EXUnClBKEW0H|fOd!Kzrn&Mp#~;_;1@c9TVh9C3A%b5AJVF zNycEh+1V-L!pBmVyU@S+p{EkDJ=v(h=F%y-9bC0=EUi}!FgT%*)sapDjLdtlTVxA) zW`5o6xVhBmos0)+lbjh99Vtvrg^eLIEnicpFpH-~8SF^kk}#mAE(qD6%K0dSj+3L- z3TPXTlLEs#{C&UkD7}kKbtN%%-w+SHgH}SHa7(dZ49WOyPR~>U(H;%f zh1$S6_Y>FGknO>Gj_%jPId{~-PK7*=*~_a4pk0!C6sT?)USZZjM(ra(eq{CB zi@=G#$k?-zDcRsM>C-TJ!C25diQV$g_#;@@{#NjxkQxas8CULSj>|gOs<|UhLqA5` zCDFc9K#z2+9}09$Q+AxAS<&mrGabMd!^5X+W4xP(eeKH^ZWA!fJ_HiA)kTfg!V6hs zx6^{J)4XL^t9mO@@(b+|MKUS-FGGaG7yl;$;q{J&)1hy#vJ1ZsNjyuZE@nm+uSH>4 zRt^i#v(ZRlU&qf5@51kxl8T?;2qyMcCBCHwJBKn*zs$`)KoZU?-(B~EL^Xx8O##fH zswK#C#O=2s^!l9}m7!P5$b5JX3coYpM|}l>>8`F3b_Opd$-0d;FOC(rJm;i5^tFoWRy7o(sQLSA~{s4~V^segIFc1y>}u8bUMM zB7AueQ8{kCc0XSK|UyE7R8*1f^SG@Y?18p(KmOu6sj36?nVN7z}M<6%-m zC2MdBYisXP(8q2q-+f&RCpKB{O-?gZfsv%uL&oxNo{0`|`vwO-}nzLXU)e z7q{15_)>&or?m3#w7UvHpfbBtY2G}V86tNAmL!x4#@kR`x zo;7Y;wD|D`Jl+!uXSmp+5Y52=z!rbgBf$AqkSKz65EW$R&BBJ1lz%64utRzemdJdJ zlW1_~rUKEYS+xDU&5C-6W^6qw_6LH6)uR~Gcer?;gt$Z3IuwhQ->n76K>n~Syko|P z5}QswSeL$KON?o1&avC_uqT&7P-MZuqyG>MFP1{y@pmqCu+3(CRS2Cn4A};q71v~5 z-Ta{stv4FN-Dy4Ahc-<;tz;*}V079LH;;6s10TB{jJID!d?QgoKX(7_Htx$aEL*uJ zG-EWh$tc+C{!malXNrNH@VRwx8#_Tovg0A{GGlM{y(l`TGo#5#JDq|b3$3iN%SD}4 zy{pk$T%adGw9l$iJ3=mDXCEIW95c?{n~d`K3Xcj89_?VF7rRDnyC(0rB_coo#c}jp z?HNMw*Q`z3x)aShnZR*n$=(Z7vJp~d1j{giMq=xA=$<-vR4i6X0n#o#a;i%Wz)f{G z)wB7SD+f2B?C3ACxpE`)+|I>2$RJ5HBayieftzF7A(T;kn2aC9Dv|8i8{;rQj37dB z3mO(5y5cV9@`Lk`D8q7T|5a_fV#68SL$o+mav?&Q9u4dK5G*}rE2AuDevxF{2LDk8=vuu5t; zqL9sG8?EBE7@#d=SaNQoCz-v&bj%vHd&;2vvBkvlsZJ2hG8?t>k*Vz5q~*~LjYYrD z-kxyD2AnV1=-4H!(P4-sSEEIHugSAkagM) zmu}RIOjSg8V@pg>0i7h6@BX#SIlQr-uzlbL)fEE9sHAr5no zoMD7X=*6iBWB`-U;kGr#%GPzqa7uke*=OKLr}=^!ar%|2;Yia7Mh0GqF3D317yh49 zb)8yhk!}PNNn;I3_u#Usku2xa?R$gp&Som4Tb7S>hbuwweTRa?m(;)pgB>6aaKf_3 zb(1q$eOQ_MsNkDzWaQ5Bq8IdZToAt%N#&vqY2OD7J5wq!m^AFh2_&Bj+5QZd&l9en z(1kS*H@6*&G{G;uS)@Y@WFzvH5~Lkv2e-!i+ztenzs?)quyim>@of#xqdCrG(0 z7N#dv%a3^4aQK`_rY~#B`m28|b}oO;!BA}bd}7fPwZ{Mb_hqI2|JTb>H_j8XMhw2VEW-MA2!@=dUXT`p2^F0O)Kuhm{ZBMB zf4y7-qgQ~5VWn|e7b^!6L(~^r%8M7>atLb_khthLU3EEKwbZ)n=Y`7Hz5H}_8IZ15 z_8!PN|GXx529hHW@16x$p3iq)XhB6Oas5*Q992^PFfzdML&%^IaZT4!ZAAFxLqON6 zxcx@tfP?~TV|3g8XKK02>++Qi`>qOS;fq7?C-icpr>R<$IHTCHK0?h!;Yv7_@RlW< z`Jh{l{4GCjUU-oteer-T6=KexmMQz^Q<8ghg~4UTC7&EmRT`h+Og2(_dm7(DN?pEo{;@~LFG5#j$-gl z+!RA`h$7I}QFbUa%nZt^J?w%1*%>jRZwo&7t|_U$a^CvLeeiKo=LvHsV{vEUip&3v4O{$qJh5D?Nu zx>&yesR&+o{aeYWpq;f$f|Z{48>XD7BX zmJcKs1 zVYft$6zqotY`jlW-o>#lX9yQeFq3V2#qAdL z;IBz<@?$tSya(4rL5x;hOKSs`=PwC&fAjha??HHzprTEIn>&<^Zp&l-hq`!q_%}-B z4)BS*Th#~7cKCK58&ynuH_by#Mb{K7zp2a=ryFK_N<%>~?PsYJd#btr zRr5q>czyo!M5GVxr7>J?u!ml8V4*f5)~gG0{*)kjST;!uXNek5POcQ0{?7W`jk)r@yTz50Ivl=X5V`iDj)#Q2d(sN++VEO%@mNN(}RGQDg zBqh#wUAmJbo)$_Q??uebXU`I@cc3X4q2Z;S&A^@efhFy~Is1qN5M z*+RNjh`yZ8R-msvU!Qua+DhATO}e2pI`RoP;C8Lc^6jgCZzRyb0P(uK#a6G~h<$M; z^TC3=peeK=?)}k@ki~}Awu(WeeNvqZ4uwim-++>*4{YMVnfxAPQI^W;#)Wn2 zhsY(N9RWjym^)PjP07YXN`uFpmj5^%9vyn;mu?Ixkc8X(oO?S}T<{+bYE2qjA)OKtFTMBiZbBzk$@uhOV=#dvV zx-6>lEZDC~BdX{Q(IGp#y~;ZMm9D9xu^WL#7S=l>e?y;28UB_IS)_(Y=DWF3j1?5l zI`zPFH~!Os7hjOik_S!3?T0fcDHHt`(xw&>w%aH+a&pK6=Ii_;;x-~hPrd;{?{;_` z%(z8Y^^dm%UOXM{eVp5yPP|hPjyHOlzrxERQr=(jAaTBM|KJEzpolE7R;FojxI2}W z(LMU}i|k-Z?@%P_fz|M%JBP@MLbIh`H0!I;gvqLf`&>ORs1I<;&cvDsPAzaeV zMV2gVD#=dc56u67C@?U`c0v*7(*n3Va$SrXC_giODrZes`egP_(eXb#!UO zWcWZ^kgrm>;FWYMh2zerjZC4bR%ZWi)$Y5s$XR~v7XDQuK^c0QA`{h=u^EjI zx^R%)C+|a)4HqM^FTCtuHUN-ibH#gdEHC4&o6^&O$YHyE#e=_Kkas`P~6#oFUuQE|ZR9^^o29rsXyRn)7%L5W zs6w8OSM+_}V6UhntF*T7jfXGB*oJPXh zKP|8S{P+`i6Wq>_t?)|SSa7u0XL$TpDA8WNdYwG8{WDG5*$M7H{$b*_aq+Y?CA+)5 zhpbZW6J;v)?U?`iL!o}AQNlb5yJEEC=p;4Xj~F{|KGhZz>Dt}Ll(U{A<*0N_Z(aPg zg07w=0V0UL13UckTTNNM=Je`?)u7|mX)Aa2^1e90YevjHfp)Vu+TW}vGn-vBjXX1p zlU|%E)GD^Z3xB;KSQkgFTAQ-_cex22Z!6y_SVS!C?i?c{%~6hSf@b6-7_(2D1o~|? z7ydzM;xVh+9u}I(5tq|oGo7Vmhhknea&)u_pPVqWL_#ZOCm=kGUugaSM4UFtd)atp z<}Kr%nXZV;*2oJF#+pV!UVhuhHrH@Sn!k&h>pht&I&XEVi3#4H?th8(2{R|2s-sbd z>SSMMyaaz<7e`$2Tl_VZrj1#P16aWs`t0minn`L=_I&fKf0AS2!;ykGD92u(J%4!A zENH_g_8 z7Kb7h&Ob}?PG+XNJvF66A3_yN7ih>}MVPdXRRoEx`2=$T^Yf$2^l}+cHX{1JqVPX93+8D@;b^tO?100aJp*nMX(iy`C;GXJJDHD#Wg^~wv?GEjupDH_;WF;BfEb(i#G zW07tGxJueismSa?}*_a(Ks8d-}&MM>SArDNz`9l{7X z#Yo&Xs8L(OrXq76u}_lY#Ei_OONza2klq#arbPl@O{Ci&MCRm%lfP;z*OrZE(69T| zHJa2_yBh5h%coCGxenFhEe&Vkr1O!`?b1S&)E!yOij?zuJP8QaJ*nR)rk92i=I1B# zK1KsA_n@e?Too6^hsB?^dboBSNsfMy#j575sHf%8(7*ZEag9^y;R)Rw*`;S37}?cM z^f7k_+n?(<>6Fy1=vQ(c)Oc@BAuW<6H%VQw0#ieWj9`v@pM$=eq5^C>@0Ng=DTdly zIJu8nZ6`Wf)lekN#@*x2If(A~j`xfW>(;Kuh<9scEsk+gEvmW6bz2=^v6FLMI7=Je zuh8cN*t2Rbfu4A!6mIuQs%e5!V8;^x{R~7B&B*O`7te;i=Dy@B;aLoy5m-M@0f)gTDPt5SSLZF^~SCM;YX^nBz4wx&NmH^t6B)Ue8L z^M-XOsui&p7n?w@u4>+q#04zh1$&4E`1sLBk(U9H6|q#hLRd>roGunu^&^+W41Az; zW*{HR#_pR-p1;zNTmn`h z0T@}d5ZzH=%lus0;U0aW94XlJ2`eXtTAQX{6h|$nFhL|``;60k5Jx;uz zSacx9z=!1p+czSvkEME>mB_!0_YHok?(_c<>FVo=01lS}SaQTnjz68tWYTsv)yV>XZx>(?cgQ*!ki8c&ON z_TDI%h)KM~$hPqNA@h=^jljha+Si{$M;Mj~ejhWI1e4>G&BJ`2FXJLJi0=U*B+p$M zk$%$g+4ipWnw770K#fA5v^b76JV?` z80d-oCconVGd8n|Ps@yMkJyfZlymc;=c0$ee^EuYc)h@ORAVpFkam@;Tbl84;LG{v zFK20Clk zj7969r|uHt2e=ywMWclF)3{SiLST`BC2e8wl&}AzGAc|H55w!Fw(^G3)GymXm;sF& zEz`q|e}@4LumLga(zd1!`v~U7 z9SO14VGo|WH^uYl4_L9Yp@~-pv{zO7K;3#m4s}G}n7uedTv4CMAbvnoSAX$Fd!8tV zKnO6%YbZuMnHe**Wgc;OWc4bl0;BtKev+HnU_$!Fd3}La40s{N8=c|g5nEoyBhQ}D zuQHH5h^3|gpiP8qOec7x-OP|VQyUb?&FzS2`Cz&yI}zU;(PZ$|bHzT8S5B+viaxC2 zWwFs0%WLsZE(Y5zU?){R1I?U?5>l!P&IQUO3p9A*iCZv^{bOt?_n?a|^xP<6ydj6S z@can8ax+eEplHNnt_T(ivQ~4n(0_gzpltahCZ+pxhJl4?&7?U*n9huTe#D_Dz+kub z!So{Z)b5T{D%-eXXU(LXVA<93(iey3x+(a#&$o~bY?;=vlpj@eyb!1olM=X1qmzqFsJw9V{9#O^AW0OdGh zs3Ekdh7vIVC?1D1>!z_p)}8=_9GGe2$+)@Rq`;#w*QHIka1dZw7>IWEq{qtA!3-wG zKjl)T!J7Dil4J|K2?UJ!RKqcbit|$0&(i~{07i%P4DYb?3LK0uR1T5-wSF~D>#`8y zOOqB8_GCOypW^R#v02&kxyi~>*UlAA~elJpgnOtx_9ggXe-$O=!y0!98Q~eU8`fNz2!3;+VP*+ zWlof=o(6{$%91+w*~|iwuXdT zjoPQ8-HsV`-OfSE$|lVz1y4;i<*X6a#g9CIZh@3fi$*-fB|vujtQl`$zkTF&sbxHs z{4GX^Qojsl5DtdOf!iGSmH{^-LUxU`2@?eEvy!}|LOW*is!u5b_1mWsE&+=>Rg79+ zzVMzSn#SsI_A}IPmTYE`0M&)IOg`{gs?M@1W#%+}CIzP)v`?x9v6-U^dHzLw{rf_Y zcm@HBnp9g5Yk*G#(86?8=U(u6bH%Dm6|t)CIQ{y{>B4tT^pCMR)d8Q{b^iLsz5b~7 z-RhsI(+sLvk9fR|x|c7%&b}i;fbxq`OJ{7&?0pBcUAum=YKQHU~vn3Z8*SIbDlTXD(F5VTHG$UOmZ} zE-UVKkWXOyXRs0)6uac*DC13EK2lLmkp<0_dgq7EGE`xwLi=Y~}b z&?Tu9>&BQXgC-->*0b~3j~TklS3&I}^9N1r_+%TFRid1~o3h#aA;i)l5z&^1m0$D$Q+@Q^ zhwSpol9lUtVQ@SF+~&)U_B92V70#J-`8=%zB20{ZX6hJ;XrzPNPQ$$?&G&VxrGj9u zV)4XQ)zjeEupYQgHsxc+oL8PB;JOhg>0}gB2*`q~9+>e~by#rqZFW=5i5wHwGnRm3 zUd+pjh67M8N4Z<;hAngYz^H0nK7W_M?4Eu46qe{9T`Xzyu26n6>0`^3HJwV28#J;R zQ62S|K?;xsSx5vt5WTfEBCurZsgAt#{@rd_Wiv4)z8OU@_Zv0iHhf03ZXHa!B8Cbi zC&QmBOu1T8AL(eHgIVxDp^KXinm(MObX1B!O!TVTZSr;HfpF)TOImJm)Ss_^8i`cO4u>xx#2I!Fk}vP)`=lR(-

    ^@l9);IF=er>r60>yKpWc z^!{&^+o4~JbiHDeevUp_hmE5Sxb5-`ROXJj;i<&l+VobT;)e~maN1ASOg2)_oMbO@ zOxJx}dVUa91A*v37?U&3aL91kUWBU91)weOSvAh%wM1*JG;dFU=b?4FdlJlZH*W6& zNY`G!O!h)>WbDq;*^H{=x_V{a_^GzZ!^|!saeYBS11OJCF9uwSK19bP9dh`sDd-yh zlI}ph*N%#v?N6k7RtbAKbj`=dg0?p!d)f?lS88GbpprY*Gmpx>r(ZX__J|w zBS5?44$M2IF6BkcA7#3OX-Wk*O z7l{i)_YpSkgv}k?k-(Syo9+z4k45pveMkI@*4vlJu0LxJ#5+pQ1U5ghmhrVWFs?CT zkf$cH!ThH$M^P>FJD*N&!a`|JZj{nXOY#)DfrTq|MDc7O`orBHL} zaLHiX+SJLri4{FAwic#3?Um8T9QR;%q}1-sEV6?{%!j)cX#sjZ`_Qid3qodPx~=Nm z+r)2k!z>g#iqno;Aj05s4SP z76aD!g>6OJx^KmQXGz-Th2E)uF{4rsCAgFvYLBz_((cGw@4t2WEBW;!?AooF z;XqEu6rnEV&XjBPv5G0bbTh8b+Ka^<1d>I(mui0l>TTnhz3H#Hl|zR*NbSrvczY}O z(^#0o;N*<4w^a#-Zj*g3G(PSUWIRP;6_jY3%?@*%rIjcSlUx{DR&n6$Ye81EpR=~mjJgg)(Ack-ZzulKajZ~G?x2NKI;^-<)r*oSR- zjpEP$a6_B^a6^y##c2)74fL1SpU~xw%DKCn*GiF+&9q2=g2+92sZBYz8s+^SzblwsU0=MG&xw(7rQ{Dxs|YXSdV`x+7L)IsRf-_vcir-Dv@) z7Ued#7TvB`8B~}3Z~QK3B=e$UNDB+xbSrNrK0na)L^sK#gU~H5_8r;~UlIUD{}*v9 zFYelF-;Q)@lGv3nb@F?393^d<6j|bwYSm7XrAa(CWwX=xaBqjIj{oQVPgBjLD9aJ} zAEs9}Sl0Y1I&$$RWi_zDZu`Ff_K>zs;nFK`TeA;{|K1c(D%0+Zip4V3v&`5JHhHs^TNhccbcuHEPJuL_2MwCrggZL>}?bB9A z-UiedD;9ay@476ux0IYi9s{Xh`{BuXb|h8`-j73L2G6PA#a(gpEe?r0mBGzLUo;3f z3ljLTs**@E>m3q^Qs_z!iz6)rH|jZS7CIzIMm7bYxw)qj4f<%Ks$uPFanXB07Z;l~ zkF~AiL9?S@bZjQuQ=^}6yFIeL#&WE9dqs^WN2n_z`26la*@RW*eI<8pH@1N{?TScF zzZ4A7=`UdP$#%rnqka=tA;9z>jfcG3sE?&1s{4`DpKC;fQhWJ}R88mLD|@Cx&Q`Us zJ3}8a4Yn0Hr9Z{%(T2XB78o4u9d9veeaXoFj&gqeHHy|q2WW?7<5e|im={6$y~Q=~ z>?pyjuvBo0{6HeDb*%WN2G1NcLfKemezC@c-Jse)M%KJl99e`j$#znRh&bQSFWU3) ziZnRw$~Z-O8)eb)dx*Oe-A3CPrgv{!C$piFGMno%q_^Y_K(cV?Ezu(YU`6&l$Zm1> zZ;bi8f%zHk+0yD8m~b5223|muBi4xYr3Rm>LbUNi?>#F2%PQ7b`1&$cRXXn;sI#oM zU-P&MlttSUrS99sTaGv(VKH}FW;P3Y42NH0kVKIKBI6urC}Ax>)A~#F396YrNJ}{K zSzKClZ^&;gM>0J4>`DV@p9)kw@BA)*z@579b%2as9Vocp%+82H!fg@=*DcArx<>Fn zKXkbW4ytnf8+u%4iD@m;GI&nsd5$+_1P9pYwogr$$x zPA7(|H?R8{^bV4A5?(&{z7X{wb_+PW)BAel^af>Nmeig6DF`%Yp>6JgXWgIOXc|Tj za`@R3m#pVwZ1_^@3hCht4};8=j17Uf=xSrG|uekzb zYMMuWl(8i1RE@P{u4K6P_m+D*#bZU<_hw306{9Ykt1Q|xEgrGg4v4+qykI2`*`t{k zf}P<&G#24?+_=v{&zPg3u*eJN6bC6;jiQCHxx@#*N7rw?uxQ%$8R(zlU&P|?6Mli} zj;2Mg1`WYV*tv^IsAdEEQMNjLM-qF@Es#ctPTPV;DfpG-FV-+D zov@)Nx*sma*bMuh9W`%tAiHqDVd^2cO}dG8FgR@M43_mpd0*jKPKIf&(_0ImV8_jH zWBP;4{LEDA9%onn)%dmd$)iUQu~!#2wR_zTH&n@B68T(0%Sz^ZiHimSrPG_w7P{Je zrGL6ERUlPk_B^Aig_F{{Lx>L|k7YpHpgljQ_3p?|Y|XR8C>v N9{Bea-yQque*q2JPSpSa literal 0 HcmV?d00001 diff --git a/windows/keep-secure/images/onboarding-small-browser.png b/windows/keep-secure/images/onboarding-small-browser.png new file mode 100644 index 0000000000000000000000000000000000000000..70d44bbc2a07d8d9ce864a7f337823ea87e67a00 GIT binary patch literal 52922 zcmd?QbySq=zc)-uhja{*(%s!4ASo>^5|TrAx3r*0cenJ=AT2{kcXxLT@CL z>-6r8BuoVuunYZwU?HI-0RvMViv}@4gnmW=%IP}6z+iSi|G@Uy7kz|*0jtPMOK7+o z9y}Nn)o;5jN1{r8wj@QyfAF`7$H&2w&Q=|jSFk!EMMj>(S#V(`=eFaZ!55e*r>tX4 z5P$z!hR|b}(HUtE^i>&z`C(L|p<_iHD~kDZb@P5!T|G^pO-?HlY2UckH{IEGkEhC8 zzrL2E*zM#I?~Lt?^Nc6*pfHD6Fa33rX%|0X(-x<;Bz%_0jj1f0@i5VY>4+ptWdAg{4+^ei_TfOt%eQR`w^t3__ zIT(4gL2HoyTL50Nb5T{W|D1i(lzHE@{IIxeOV*8X)9`e){0JF&@ zo9{t;8o7>hWyi_}t+YZ#OZ%~6`yG|f~IwgM!dpaSnuU|oc+*Ll^{StGYpS;t4 zZ7Yks>il1?QW3qXj;#wdj<57Nv|heny7s-uC0A=WkBG@npYLIVbg|VARE++wuS)r@ z(fO{`WIovJzu5BFFK?iq{>1Wlg7tJlx_t8@b4RC&FIMLJ8r#!m`$B;?RMJLYYl$g? zf5-Du+xY)&fk3R=5Tl!rDb!z5>JsJ3ZeuZQoq_2!hwkz1*Vm7Rsb?<@%KbF!r_EcQ z9`BbQj@;%uv#ZkFmOKi{Yyy*ve3R2n3@Y31thmTXU88OejU%hVm`_%_!w&fmI&Cev z4Bb~lA_*t7+vj3pCG0}IWEiJ~q*=8Z!@Q52GOc|&gvos_#+r}Y<}oXtZ#9nhJ7s&6 z`R7(Ui`4AO69)-Mv5F7seX4!iYz&(k@#)=uWv+d}@MsPrb97yez_6)3o`R{0Hc@)c zu=`$dVG(9iR`(12lTIY^S|^Kb=dZ8h>%7dl431ppqfTwv=5~V`nQTL+W5yM!GkmUe zZ)?|q|JZbw&w8QnUZLwFb^Y>9FW<8s>Vg>fg&rmPzO(tBMv9$tiT$RvgW8K`Q@ZVo zp4YH_hX~O~R}R_oumL`+&9@-z!*8|3d7XPd`Py%lreflMq*~?P9>NL@6uAO9W0uUT zWT()W^@YUgJkDR8>BPMveXDhNL$Q-KDSbMySF6}H{*E`6v|HWjr{(l!6>sj+RZhAn za!-p%Txz$iuy3JeV&S)CMQUWKOjkew|6q--fL6Yo+nyLVWp_|}O}$2wV|C-Zw(ZLU zqkXiB^{rGXxVu%cOuqI=s5h$DjMytaK&|o=%kQS!l^xOI^b=AfWSs5cU25YP)Vwxb z>xr}69E2JXa`$XL*O-&=dj`C%4Y9vFXV)ezp8mjO*_-l-uxt~3$mH|7A)=P^g_fn-%o;Sn|1EOt>=kS=GY{SWW)1a+ z6;j`d@F((L!*7$%FVx<&vrbdlhEj%Y-s^ho;q%=p{lannJn|oAe#BHV7+E=!e4LND z-ty-)9dX-z%;*awi|a~iZ11xb_D|Jk7EC)m8`!I|Q(f5Rm74T$+uj#(?XYd9TEO?s zv{XZC=qy~}g9hIBNbDoiZC58_pyub@5S(2QG^A+x*0^D9tBl%~V9n=e?|<<@`e2R!?f=t5bB za?`+)gckoVA9Y`-Yw$<~#(jDGp5Wa=>Y2ghTR%Gj+Dmys@VdV0(jFV>O z-TQbhj(kN{b<<`KA%X%JR@nGiY$40!If7dv=B0OQz;MzVtXLieb^624cBu}pB|N1q zkq|jM+m}|IRs=j8IvGqRIB$Oz)x4MKDcl2NCv$r@D_1-i$IP1>ZyzjpMvr_E(<{^t zUi8lWpo`pvI9aC-xbS2W#3f^-_3Br)3V(%~{?(}mp2@J8)y*dWndQw`$|wIz&PD7- zKh(7Cu9)~jaw_oJtg?P!doN>votR0c9-a*5!B^LDf>8I$U!814r!@@sN{uG@{rMmB z*U?btAg)z>q?TMd{8(t2`VV#%{1YscVdjgeP%SMk9j@S9ZTMS%JaS6y{M~m{7X;Uv zEBxIeh;+QXpsjhI^pnfut=Q9cIlRtBZmej^eI5OQ*CRe~MlKarU%SnGuJZ(9DzQ4* z?d;33JDLP&ZF?<1gIwvp&{(sn-(BL>*`-Z=OgKD_*hwGh4UiUazRdz6`|1tk*qaG3 z5i|edxy265kcuYBJ=Wg!ZvP=J>4Ea9zaBeG0~Rr{(EH|Rrdm|_a$s7QpUH1-YW7IL zXr2A=x})hVH=g(^wnh46_Kz=S=rt=+A4BPa3iF2qXjfuV1_x)%73%C=yN)^Y%J-Jf>z16`mk zt4~@;O2^3PVzZ9?7sFgs(i_+l&XGM_75f$xpEOI^~j9? zM^)Oi@$3(0^7M-~XVank96tkW)QlZXH>Ex<@+#}lzs4Dz81_s?8CV}3-mjtIZ7@y2 zL+Xtg=>k72oD)offi({O%=8NK0;bO3EDCQcE|i#9KBbpcH!r@)SkPq-lR9=Q!~o|r9WLY0a`B$mpzkN|&Xa=UQu?P%|xK`Y{> zYX3=uAxBi=hTGbsMgZAdCLVlfa-K32B&W z1O8_E;sEP&ah+xIkBNo78Ity`0~WYLi_2g^21|_|CPbN?C1_6HixUd0a6ess<;96%qCG(-Ca= z%=9guRp$&smDzW{fF()*Umu!ZM9J-5D1aT?YY?pxj2_SC zt=D6azY_{V=J)!&MN#(3OH^n(UELBF(yCe9Y*FQ&R4XI>JA0JgzUu~VcUbRQ>H5p@ z>flFAQ@IH4E!K*_3HuKRI(wT_S`9(4(IrCaT$%d!oq#EGXZHlR3O8>x|I|E^I?Ba# zYVyMfI~McedDh$pndBRDRYft0tim?)E|XSPQ>!y~*Cc-_jOhtZxNDu(#FS~3hO{KN zGErT@{b4l)7X$XCk@N;jgGS~{#PQ8CdHb`#5+M(~adQBnc`+7+8(af@1BUYmnH_&a z&_m;D4@q~lbAs1y6>m^;;G($2?M~M5OU~0&*hufJIi8>Q1sf5&bm?yo0(SWC@g(*b z7(8L{RYBW<@_Zd{1g3WnI-*|n>u!tJ^Z1et6$|E7XmbeY;Zjh94Z`y8uTCo6!xNRe znI;eE<(b`S)F$a? z0zZ`TB$5eLy@OU0?cLE>!MTW4x*Il#HTB|-r9YdE3%FBC@BDByb+m4#_So-_+FWF0j>Smo8YI6ku(>>q|&C%S2h61gC6 zXdNR^*!CTK|CMdJ-J^*uLKsTCe>wTA)gL9xr*P!uW{!tQPCBU)U>eg}9dRQ=w$xZD zHzNjGQ`gIv1OT)R zF=}&2QlSd(99j~HN-ad{aE0}ds?gp?Vu?ZGR=&oH-dT=3rK;F$7ZP{ec?@L%tH&OS zoNir28iQx{-H5_24RUt9a`Ie*wm8eVi#VgHeVPaAE@}z!qRNIQ`PNRf@lq~JxNW{Of?DPKb;3RRUvdnE zf_h3T_IXG)4bm@GCGUlbuX;`K%B>RwxqE07a^K23dkHP=MV_i#vLx&ae#d=SjB*uL zB@7p3odbPe$9Q=)#>}aO_ol`zS+VzLU@MuTh!&Ya#=_p!n^RKrv{&#PYw&3$5+LD_ z1!(fJ4I{OuIq($9-oYC@^Hs={PKd!R>Q<_A$0q}q?BzrX2=pj5dTc6mB~-%I`yAm{ zcR-beVE?v2YS(;%vJleh!4flLeuB~E)ByRmG+<&In(1aN<;~^BQ-K+Mpe3lmhSFEr znH@QzdmFSMh{Um5z|a`u!on}tIXq36Z)ol9Y%0Ep8oIO8L7$(ihvonhM#=A2?3)#2 z@FYXyk$Q0_kiGz0^k{D5d}aU;-p|>K67qPw-PVJaO-b#L&10WqFR{C^*vFgLryC}t zTZNj(zNhdQ#Ct5?lc1({ilyrG_EgxGz}q>g)zS*zc{K-4>ZGv!u<mi6+RdyK`xgS=1Y<>DO=We|;EBDqK;w2y+m* zoFis7tP6EZJtlVH-&NN`V~smnlIPa9PVN?^Cj&JaDCEq~pK3YD*?m?YyT?Qfvok<) zdgO)AOJy~`(2YWc+jW!)S;j&Q zPdY5eyj0hntW^}!zyiP-^vKcS<5Ah22FZ+xENGx{Eo~t3h(aB(Qoo6{1;hJgz{BcX zbb}lDk!Nb>+^r+hB2B}2A@PE}Fk#z1=9aVV3)%fiyL?IPzOqwmpele#)T}`;9;?qT zi~rrm2*W-PG8UX1lClH2LS->$+6|||?#|S^LhNA2k1N>ZB424#`{2UBs47hX-xg#- z_w0LR>6UvsYgkLbjS0|+g^?{;hp-rA73y^--E+nomhAj!&^}bDj=04kT=)?@dd+Il zgwqn5;sWEo=OvW3t&t9+%IoSXdy7RE(&1x9eovGoV@C|bqY$4P( z=sp?R{7oGs)QT_2gJNBrDz1gL$%b8ZC#59I6@zOkRrPjyoWOAOXTy2j$;6O4y}XY> zG$oux^E3iMrKjUL&!F4T0^$eq852BS4_4UDhoF(Jq#bbNd_E1RmCT+efw5bDYs!Vl z!j4NvyFq7%(f-zLo|U|H%Efw8j09U>=>TL4QtVAd*Qsgx@!xEafmsWo} z9p@RgW3WMCkdb2^IlhQ)kZPi$etqt*=iH)L^o_JFt2c~qJM=44^UrQ@TRbmnW(P@A zF2SoO#AgjLUsjmnHtsu@=1z!oVr;usk@s0~efNA4v=8`QM?90BedIAqECgP#2(XM% z!LBzDbhk?Mq%+pQnS9Qy2>8X zU#Yyow6m%uvEsy>&={WC>2Y-cA%HfLZlN=#o+;R0S$=X>w_*5u+*^+fC4+2FXKW1- zq|fsLJCD@tp{%<)Ci)Cn2JIMFaB|enk zfUZCNegUHRdWzQp%-23tL`5^w9xNx*7d=P&3Tsg+<~$H(p`kdsy3wl@Zoe(iKdO?| z(M5lF0%qusdpNcur8>bxF1}@0)%ZoNcgfuD~NZA^r8$jdF%F=Yu zr`{n*Ss?xnEmqQ+hKY=H2`UIfOb6SQDan)0ymL&8Q)zRL<5&~yMi2?^;bF7M6gdo= z%}ti7)j**WF>)4%mE9p^QpML*aDujrzlQET7XQ}Nsm#HO&7#iEhcD=1>lWw6cJG=> z`cBq+yOrzN8%*zk;;Grq+H5MKV|1%)XT@rCArX!CO&=9dW~h#FWR+K|ApMGtWxPRp zMW6WA^K3(za3Qu9jV_})%yU*UK<_|cKUt1cGedZkw77O!3e2x2SdP+dxUw!ZSXlw` zH6cx^`z`6}m>Nj6yQ`|5vVTnqV&tOLuM}?s!Z`SEu0WpdNMTm$m93DK%Hq;^HRXtr z6vJTz5OLD2wclZ-&nlXcrBVm-9TM%_Hu;xvF&Um~T&&Z4HlN*X-=pohf7 zp{{eIac1b!V3@s&Cqa+wr6Z!bRwWQq4`b@^f(>_+m=(#4)6IdyvAzIdafwsuaJ>57DhiT!gLvR?BLc9hRW5fNUIvd*u5NKq%D5DSX(QDU(traiiSt2z(w!I z_!+9JghgYO#sUD?;lhS)^~c^r_hX!44JI&r409O7cU?Ff$Jz+=zLSwan1yY9AFjX7 z#2+T8mq{oR$|)F@;{V+lH>LJHOlE;WS31g}@r=he>ehmioAJ)`K$b;)Lmv0fAbXe0 zY+a<3PvWUlm^taBjjPoMG9cWV9i|_M(d8MBC zuASK^S$DCka8^}Yw0{Wu5cXEi*?A4OtcMn|vL{bUr|u>qHhF7Xy6)Qsz|@Xr5Y@dw zZ2md9J;`Y+rQ#bcbP4-Hq`d+TLhEb7nHdjs4&rwSGyz9wpG;6y5o{aldz!;i9bsnG zTJ}yo1EiuZzhpCsh^Bt>m*+UTjoJBzQWl;#x7!mbq>R$*RqEZrFqsY;s!Fyuu`!3W zRmE!>HPtxc*(BA%?fTWlh3QNCf~r3Txi(kSS^fT0$+cn9fcpq6+LbH&LDNFN?T;_} zXL!HR4vodt8-mVgaHcBRkao}Tc=R|=In@$rc9;(qREoSpw$E4un|^`2@&I?)#sSkl z5+-9n(bU}+0IjAU4ZlP^%I*72ZmYx&XeNX_T>9UjHekp#oWjIRnop!&(E^w0 zJ?c##)(`$m=j()!<T!Sp;}m51`;u=;g)9hgu#z!J}EYN{&er~1fu z;nihZif8Y!31V&1SzY41hL6rYA#Fb;wN1(RLl(g@;PKimBLqUVH8U5Co$M4c)VOQ2AE){LcBFdY5lVS$3HJ295q3zySLfJQ14SYyU81 z|1vK`59)~jH`GBHE_S{BxX>r|c)AQ3UbgY+UV>cNKV8*~h~5)Etr^(_xI!uY??_Yj znW@;7X**=7y=7a4*LT0ccR$H@H|Y_Q`E+i3V)!@B{{@EnzQOj8-+pl#>j(Lr`FLUf zxMkmVG5+?>dhO}X=*jxR=)TS_LGBM>-D*PqtZP=y}88(lN}3FVUX`F+)`zO+RW32@06| z^gn*lC@s=Uhh$X*rAC&Vm^CPL_(c%)nyBlq*YgI{Jkj(1Xi)kvcrL1<4}0&gR|y@b^d8S0$(0zCF861P&bw4^6Zt%=KD@{8${$Cb@ zRUZARg3(vVq0bcA#81f{Kn;%OOfF{p)4wvP<^4eTiHj!637Ka~H5&woy<$p!i0SpD2`76#9nx7@5n{*qCfk2z-6v*OBdUqfLY z5qt6$f@0)A`)3a;qdt5oEL3t&F6{0PuX#?`3DwMaJ6+l>SO++cSY*5>cd zIExGqS-V)V$D1G|tR>(3!&B$UahWM+)9`c1`ABIn;)Bz>gtsfqc8A6t-%^%vRfNZe zUwifGi{f|vc=sS>Pl=3pkIGicLt5c)B9*Ngk!nZ$hiN=)*5$KZ`0GkwklRt=>-zT8X6rPlUqimIv zj5Qo=K2n<8j$mkioXzhB8&Kgr8X^`YbdKX6rFB(kat-~cLA8uZ>q^!InxkS?JIz2? zOalg$9OioTsm+047G2YwZFXdQG zmvDS><-#a>qLdSQrAqQ~MnLEgl&MI!ZO4)T?$BRU5x~nHlHibUL_>3T{I=P!4*S7M z(6S)l^r2w#Ws`M)vqW>%bP5wRKs@J-zue~JAZn;h9@r869ter#yQB7gla$ zuWWK$pbj@-BF?49ne8dpm1tUE(cE15%S`NKt~fU+s{s3`k(NCc4>!*v;eg03ptu_tmDhD69^#jrbG&Y zN2v|sswWl_X*Og1>jL*nBV;E25O}*o_ZySMd(_YFTWe+JWe)s5XE0HnTsgpy_oe&F z25uGqJz~|=u;Z_vO*j{RD{Vb>9zvN|K@%VXSiPPj>zet{Tlj7I-R$lxi<8OZy82LO z>64^RCj$WZJKMMM^w&-%{HwlIpyTq^!H2ZlI<4t+(2@SLrQ`o==@u3yjG(jH@$~l< zSG~Vk=v4g%-uMl>ZL=v&(g+-&{;uwcQaLng+GCSDfaDjuRyFRO7H@LzRhsTr{(yeN zfRuSpy1L#@-nF{XHay$Ie{Nk~A>^{y1Wh^%jQ@#Wj$iG89pzdl1w#4$PG2jm)&v(t zA0PFo(4JCoi$b?*$W-tPOe2Xi=h_`LeT)i^8gI~6a@*lVn-1626-+C_isL6Esy_(= z)UVaSZ9sg_SXLxVx@%htyEI!Qc&AcpB<{y91*RV~6bfk;H4~S+sTQ-ZWA-3e1??_x4)hsks z)NE@|?0zxM`Bgd`6-t4!RGn6!Vx2HLosB_z&r`b|&@@>WRO(#FJ-s2S_S%PE6qn8B`mbSZCEsxpf4@gsVMorGV3GS7ly($hJ76s{K1_=7O)TWvrri@CQI zq*)5hk}_}X!9nOYf!(_J>Y1W(Uz|L>bgJLl6aDBvlXpSNQuh&liz=Aem~OxR5=wM6 z>UepG)GYCg;{Q`J>uW@2QExRF1s1AysyIdSKNC=AN`2oBSHUmRt(xXkBk;rl6xkIY z9LD-UtmR6Atbw6L%(C{-$b9g5{n;cweNrrpAn>JAh^vRRX5I;r=Dm;fTEV*lVVQd? zOxF7XS2dY9om}E2GW=uH>M}hyt@B> zT5LW1KSIgysv~xYRGN!Uvan2HfXt+rD%?Bd57W+dgS8>wWGC6fymQ?AUfJX6r=zo@ zfq4p6nV}7CKy{B|29<4jVB(gqZmA>*UfcT+xN(VippegiJNd60Jc+6-`Wu-AlS%g& zYBbw|>&(`i`0ooU1e@v7$<2xY@FA)5bPNs8RB~#_WOTBy=5}Dnf4Amiax_FY`D<3^#{ zI&9y*I4hLhXM6`yq;|CbufIRN<6D9pc^$tk+^q6pHhP$Au#^*A&s&)~Bb%A+Rz%JH zUd=`2bhWPFtHL}k-<&G-Tp-u?$InMuh}{YVf-(v=vjUAQdFk7(Zzqevhv{z1rUc|i z3{b%~D1;*YO?4`uY1sXe$>=(k6WfK1-1}xszea*wa%7aakMl^D$Yn9}xp`P%9K-#) z-;$46FjxKYTfmtBWw`eSiBMySW(@kM9T!o!nxIl30X*yGseQrQ+&Pp78U%o}n47-=DBY!@qy=Iy>ckX4Vb7v2K3?T0<)bs_%hH?Ko>Mz;l z?oWT~mE2UK1Si(H`aO`^x7|*;dGph)^L7)6Mlj@l_HuzE@H(0`&oYfS`1~_H2t+c% zN!$k}XqKVEv5WXiWaUtitry4o-31l5@7ZQQ7SxSmac@9QA}h7RE|w+SV~mbdhJy$aeNzGF`f}>?GVjS75AY*kS?luDJO7k&lS6Kg{)S ze@qSNN18~68jHp!zBhjfpWs>esv&;Yt=CCH7@yCuL?JusnYWS_vC>Bo|MoRdx5?_v z8ZPqlja|#c5r+EBSXf?P_=3~FEuVmVD&_6obejyDL{0Y79x37ww8aY3y`5MN370-9 z-$D7i-=(3m;fgC1ecaVnD(2-id+pcRo1SPcDTk%3C##D5UGegI14q>zF9b5cPy8Qf9ezh zqBdUJHI_1O^XlV`yPx(D&UZ?rt&Q&#*dm2>VHD((Js3Eg6vU(Kzjq%II>Ttk)M0x$ z*SSl%ox2Q=AGmMQq+R*2|EFbhcXekui~itBu*nB8oJFzUh9?OUh#@WSGUQiz}Y;oQwr>arjbYcxXQ2r^&TP8pXCsbE%QF}z9o%R+! zmHr2p*1u$dI)Iej@uFk%S)R1--M5kCzuhjw;^A*ZSPgpbHaUnf$b{?!HQUio;>Xam zL&rHh2?Tb^Mq3PXsfqkB)`M!Ces?iN)m783q)B}9Bmjh8vQ z@cfJ%cU3Z!uo%+yPN`d{<;`K@+f9Ls{8pS8yoivogen0yIUZ`zTh>g8L^oTm)=Pql zM2rH5ifj{du;guvX}S;0t@fU3#krYA)XF?nkieYz>fg)R%moV;)Lf_JYvF#+0PfD( z8lb!D@rNDBrwj}*rS7!-DPc|5_AQs}M6*K_9n^th$(M48lMa`@$Ezf|GMk;udYZRV zHs|0Gj;CwkgJPw#Sr#%;GfrHpmZqtQNjz@LW*G*n0>G;esy>6o()dW64u8&xDDkm! z%myJJAqIvw$2y5yUl5ykqqmsUa1i6)&RW(T{;a?n3DMBoQ#beKGVF-3Xenyv4l|C+ z_04ZRO;CIAL6%zmbW&O1eQDQ@QnVyyOcbZGJ!?wa=MD9sI2^n2(_-R5x!MvYjH+tE zSjtAN5|J@|9(mJ|l5^c?lF4B?@SuV^e>bXYIT`XAcZpwmbjkzu*jOx8+5|v zQVDglrhqwrCKbasTW~9nJAKOM6m$Z9aoH!T14zg-z7CB|>cxwhS{3>E8y@539z6gL z`@7viY!B}005B0mr^y#3IF&!9P=~+6=^3rMy;ipUg>FV7x0V1d$J!7)sM}kT3qwF0 zV7Yz?Cu`3vnt^O!x_|I%M_6f59;c>45l}wV6pH99z)!xwjw1~knR_<^hdNVqvt**4 zB(CV4hugH5qKt{TwlYJPw98!rZy}PKme14(=c%`$dWkk&YE6?8w2btpJ{m!;lxg2( zY&pC5vYEb9i6MOHT2blJp$x!_#ktuDvF4u`(l8=&?Nxs%O^8IKW8u6paIuxM3d0!~ z2vlGo_Q5c|zJ|p#3~v|iz;tw_C3_{Q<$}LX=`s$I)eZipF4FmSt41%T!*KfO;Q(T- zK)Kf6Lu!o{p|O&Oe&}rb|M^%-h9zN?%O zm;$g93!T++VQbu1(@Ic~0VQMItq5S(Tp<5ie*8upNl2$@3w9U$FVRj8oJAJ2Wc;tLoZg5~-cXvdU zO2V`%YWUnlbXXA{{*?tz40ZQh)dT(CFZw!*hy}{H1WSEbH?{tqKT)?F@4a2P!O$@Z z@y)zLWVE@~)4|rYw`$D_F)a9jZb)c+!8}R^=fJ%XwLGD0%9=tJJWhJ-{{gyXC_U<| zI&Fv45g;|HkB?;n5}eNC!VK;L=Kt3 z!h$h5SmVT!ClIRKWCPM`oD#IYcgemp3wPde#O1e?aiwKOnc#mFo=;m)2D0%9=Ylsw zpfj@AP?z0>LyJn1-Poh$23SOM@|(JC0qSv+=tW^SQQR3#4*jE6x_QrV1iU_T@Z8Kq z*USMsnOTk|GIiiFT~q)7i(5BXSR@0q)$VRqB?GwZkJmGHtQ{5Jdy}UHlXW+7H;zE> zfS8`$h@(;Ci568p3>jihnV~Hlf$xG|(J!JVY59LRT`>k1O0D8a@K3PHCy}0VEEB_o>zlYKf;1rE7SE2)SZFoz0+?Psj7uu*?R;$|99k-bk~b_DWgAf zH@r_+R8)CMqQItqGEZ#4roLbke553z98sfO%$dBTUwbzUn^5Vc`hiEvL!r{TA*j>V z<|6Kh6da*>qLxANmT)vx|1fy+^-cjh>OAJ4uhtXjW5*jIbwV@K?E{28+If0@K&B(@ z%6EDpHdN^B6ZAG>eSnwM8v zJT8~Y*i@$Rw4%0i)n`dAGsPgfe*&U1icIHYAzT2&z|R`uei< zjz}nI8jc>2V<}5aS6pL_n>QU0bC6bt-&U~0gE7jGW*s_JJz`r4$eZsorfj@Ou}$xh zUmHc#&`KCe42qJjI#SE>*VG1%^k-8C)lgXo$W{Iq;UDajTcx=8OSP*!@MICvSIXSZ z!&VI;4|BIjnT^piUtY2tNCCaA6tgM2>_1*Oc(M~KVg3jb4w>!}*R={wn$NR_pS4g(IJ!fu~(!fx-qFpMF@%t)-s@@QsYbb)VGGkx0PVE*}gm72O~K<64M z4F(gT(h228EK`hXM#wDNVYmoOxgebz7LrQ2rU|tF*O$XA+ zmXqZI07h9t7}0Q{&i52}x`lfc&?QbLWd7H`hmSNmlYYggbFo+58u;L@t^23E7j*xG z(5cj$;;-Hl805nk^%aZz_peqZZcZeDdDxTqmo18KzEM$sCd<0R*5wc}H9(sv<3{Z- zxwFamGZFxjxbLd?$}IBU&P_4?HnR(89OPiKG z-1v|Rl)9RYZk{*)^$<3Ap@DRL0^Jrs7WzYKi#l^s&6^G3nuCGE$|{vb^Rz=yWxwdK z_*@jUm%#2){=@JH=GWJ+sT*6WdSnU*6+Sc07OSz}VH4>^(%r(p3^*#)yIouvKL53%6au)Bu~6GtJ~ zM_hl@xET`XH3B5&rl@woww$TIVkc@9I!-8lL{t%F_wNI*_p?&J#40^w+#(E}aAForVc znZTZ(QAH_QUm*3ZswaytaumKl$D#~|s{HR+9&xrbu!(}6P%sje5FhZve<<9lFNdo4 zGjO%5P=UM%-r<|no6E|YglxtdD})0^w*wfS@Llr@@%8lGDXQ;;UVP1+Mycw*VeY2` z^3=F?DV)+b)k`T>_%l7VKDkZ5b+%~z*jEdGJFV0`bEpy>TR6qUI^~pn&OeFCR@LRq zlU2=?sXUU*@3H#&Kp#z>vz{z*^F#pL&I)L8NvP>hRv|7u-zchvcNhF1I3mB844?4f zP4WU$5f~q0QWjM6nr{RXGh|VL4C=JBfAVTnqa8b|bJSkm`z-(c2q-(%1}1g$^6vMrrJvbrJn#Niw(lFN)G#&un1UfW>XKnDs2nk| z`RUEV`#qeI+hq25rEz+TOQ$(|x+nBZJg}W{oegT#Rmn@X#${isIn7%-Pz9V}Q}@?m zduE~q)3Nq}W91>cB_V1lA;_RiCK|11(X=!~)eV#-!#C!MTR5&T7-f+q^PI)FPT!ld zRezEn;~Ud7UMMIPpF7M+(~5t2*&E4$RhI zt6C>kte`TP8dQFj{|@HLnWzGz(((;rW+;0Y@++m|e=JpX{jTqlFWXULM?2u3I6y&U z`zGEg1kf*im**6HpxA|L+BaJo7SkMTrYGi}i>0X%cGq-T=_{wP0q;2v< zx`&x#rSUlNNmw-|xZWHQGo&?A-Y%gA`j@*b|2kX#6f7e{5x%~js(4Y=4l3<5?qm#N zb2OuL9uvj4_nSJElPDP}FZ+iD!NFe)_ZfxQRcnICvR-hzuTd|;6MvwVDx0pOS9zVg zNzcS4vHw*WyD&J$Kv34UpT_-;S*nalr7}cnKaX+ott!bR+|5KyOq3dmTX$WpJb=6w zYka>W#RM_8u;LSuBSpc5{5DCGdEgo;ih(FkzC6(yONn*o(U5lMEJOB?g(CrRY0Y?P zyu-UQpTSNQR7SQ8O|0GWZX zMCZXFX}2$w!S{-PV#-$5U@_vLZO7&4Y!+Vb6?7Z!LKR6$NGIa`6giA(^D7Fd{sk?p zxRyMwTX|PsANxJ2WZc~p3N^@WJj!|D)Q3EBU({>9-L~iYKIT^hP>$ZapM1K3(AvHb z`QnEMO@yhd0NY+Pw$@*Y&^bTj=Z$Bi;P(0{%PCU&=<5#30!&H8FBS;y?0GHm1->m> zsL{=*DIn*ZA=W~u(U?Hv@F>ol1ay@o+^LrMxaEF{ul=DO>l6FZ(_`ihJ5E#Pzq=Za zXS`BkgYH)enKdD=sKo}ur7sZv-a`43&_MhKqV~dc;Cov>Nrc~cLC6bvq1T{U>T3zn z%Vf5e$7nvGb)A#W8ZK73=KSY*Ep*`jX+CQGkv=FU$NK%p7Ojp--$OlvV8qU3$m08= z%?``3evy|)$(!@$h21)=8SQ@!kfR;vc-O8G7hkmDVpYTbId;7sU<>)Ryxqr#8#X@BxB=h6)x$BQYCld@_** zyUHTu`eu!}FsI1feWcaw%La$DZo`*M_RoI&k^Y_gh#Iu^S1FUa5p4Tn)19ULSv{YG znbSUaPHzf@NT#XLqZdz#fdYZw{7crYU&g*eyPG4Okd;iA`r33hcGbjd%8E-WbwWC;18cZequetSR%Uav8eufw|=L@b*V3B(+{q z#G^G4r*{42$I^ha#M5y8$GTCn#v|Oj1*ehC_Ih*^E-2bllz*jDlqb;aC!)knxcRdz ze$hN@LJQXK);YxM5Ti=yKxd0lZhjm3caw@%a~bbRU*{eqBtX|oZeCP5eg`g&#Fmol zJhqbo8@1{r0yuSPaq1?^Scu{BQ!Sz8^{aw5n2}f7F8}$&Qy14cid+~{< zq3pTjR()bTF5^LzU1zS)s)4@Hii^JPrIn@p1EG6SUa}7UZH6RAp>y>9&766yQxZFy zYl#QLmkPcWRj?h*9>a%c;hP^zPV!1|MB|7jTXQi!Q}z|O*yPQ(%Ms_=IuedbqJ29e za-EhaKW<(dWLl$2z8o>!^m^fp7oM89K8RuA1vYe03$5Df2j%CY9Ci;RpZs6J7r(@w z-a(dWio74F8nO+QMsbsUA82PtI?2LZOPrAGPOLu|ep`3$QD4Ez$dpM}C-!#gD zv1B@Kgoq;Bx-?IVT&r{JFVNaMi`ZP4V{#QFHA9&30~>*`R1<=-rnj|Y0~#e`>P+(` zOeVtVC?-5IJ-Om8Q5PoJ<)00ZBUO}SPkFEpc$1bEWCMIk+7D7fR(2{%6_dU=kk|9%f-w-T@!g=0f=g!&Fp)+oP9yK}DWD4x`eJaefU{ z)G7?)UkxY2&SL>tto4Cv9&qsGrqi6&mc~jMmP-f)s$I-)e!G+sjaaJ?(N(@StyWP| z7^8LLtL|>*G&97?@aZL80L8PxI)LnM`@FsO~qPLIHU$*xf)F8S=oBV zL(fdIwyxVRu4bc?Opk5Xgu;WsEx5J`*d7ZEqjOejMgxdoToYb&0OJQ^Kw%_|0*cpg zwAvuRLM5Pwi6`pJ*^tehiuwPr_LXr_eQnqDATe}eQkDpcFhjemM=n(K6xhT+9$ZhV#!i}fX>EBZq47^ z5QFhEiQ005H%*JLQX=t9NG=ay2eaMg$CN0k3^IF^3qMh_iR$M=%hc%w~sCOs%4AXuK_7GnSWsYhAfQ|ZmtswA&APa#Ts zX=b)uoXX z`M_U*1TVeqEB(U4^GuTSeU>-HqG~hd`FZ>7vK^4lBX9R*p~J>}-VaQ=2gW4sjHpp^ zcE~%&Jc))Guq0WTbE)vL?BOEL_s5-VgNm758 zp}+mZ%mya%^N-Y>K1DZbO2iu1Ryi-q&>fe#bl}!J!4)T~wDKJxE?TRY7h>N`nHy z8P~&B1U&z(%V+O7D!VWo_L&PR7fq!*s* zGm>vFejBBDy@KfUSG`N1|3oKRl%e&WnxaX*EK3MNsRNF!7C zLr%#+{}1@Q{n^Od^2SkmwKP9;ZpgIZ!#7iG90ocBRK|mKA4j}C+2^A_`iX7+V7Aw& zp7**xIduS=RjVNzB45TgBJhN;@Y@y)%+G+p!)yde+$$U)r%uOw9U>)nG0}gkIlb}6 zrO~>c(GJbg3i;d6W8h@YC1c%>f??k7eVw8Jq;u`klXOXA2TimOLwgh6X9*f2>~Dv} z6^yF}p}ujLYT!Vra6xW`?zhA`mDAEIyPsI=*G-0e#WovluNAy3!29+RF{A1^wbxFy z*w(lp*zexd?70#{CdxIYX0QS`rh_q?ihPgHXzrRB{GapQ-e!GC9Q=o%_diKC z{fjI8C(HIbl;rzU$Np~_uCEX+ptP=W&0uh~+{}5s?0*)dbL|p1nT~)Z$hKO2_%|yb9ox8`i?n}S;ZXOl#nf)i@3S)ZsuZ;kyQ?2Xy z>$Pqav;(Tgp`jf7Y)t#R?oVqnNp*4#ih9C#Gmvr8Kexj**6%5H5Lba?udi4-T8uDepE(b9uZR{uY*pXcyvV z+aFG?djW#kONP_(9|wQJ%nc)MaS|pR6;bL^?(%p;-yfv?5iNXu1RSQ& zEriAD(Pz)|VOptA!=56#%v^2%@x`x(4JKAZbSsReR)<0W%bFR(D*YjY?%Kq8H(1r! z8_&&l;yk!tPMI(J0Mo9Kq2ob8S_pj;9LhBxde1~p<({VQd-oaac%;cH1ib?Lx!a~A z23Q4a)&2tTAiIX9W7~1=%t*u+s@dn4C>N5{@Rvc~rWD+3q8&PqQ=0THj2JcHzRep! zU#MSckz8eX|CmFFh2NfBd$oaHuERiud1h19`b~UXBU93o+nlVBdtvo8Psrm*(u?(G zBIT?JI6<*TavtEYIeV?4b z?#g=7iWRGc2d9E8jcZ5SQF@u4sQUh*MJa=WP+)4lp*4-8kZxcDdF6pJL#V2KC+5AD3qE2P;T9OkC9a|>UoQ&f7i`6Pc z_($Yn9nRte$4?q(8JhSBb5Ek25cE-t?kib?o_#gY`P=w*(lhf-P=9C=hh_2~|q$nf(5iRj?I6|tC(Ex!%2X0ua|C}7i#buCy zD3lco(M5}q!ClDWl65`1Qi`OXd1Ts{22c|(+UPeVdr~-!$$D$*-N)Q$p!p&1oW4-u z5m#=A{bXPqf1x2CLz;2d`-%Pb@oE)jnx6Qsx|p-a{irb@bE(@#I5@Nb#z75 zz>^>hFGleLKobI(^gn-`?$)n*NoTlO@N#8)D2!CeJ`a(6VMDJ+Z1^gh_pY2hRzSbN4RsC<$~4m$<%b1E&Qw4<#NBnpYI@m&9Ztg z@+m}ZXKZJ#Sy@IpKH*+%WnsNaUgc|ya$$#kj2Qz~H$$ap*y~6~tvDSZ9{o9A$Zzst`+vG;C^?y1sWnQN4)50P%`imue%i z2?73k9|DrvZK6(}r{?G@lo0i}Q1A-j;)xa|v_SADuDrc{|MQ9Xq{+c|2l9n|- z4~XQ?=r7QVNMKtTZ1froBI};0a5eXzqk=riuMYL74*~*8}n$+6Vy5nN! z?y9}$_^uw5)&BURbzhuW>){2yZ1OO7=LR ztgm5tZz_K=0&d?X(V$#mldP9U$A@n(Dyo(aJSLX2+ZUus&=c)A7@2_hOML7UAIQc8 znX_&N7L;dgiK$MgWj%BKPTC2vd~?M4>f^^|_6|#pj&r$@>?LoC=!MO-f{?~Vt@6wR z2dtcJxlb4`(s*9vBdWL7iX3GU;;U-*1d2>agTD4$$>U_9_W1F`fP@XU& zmwZ}HlE;L1R$0b2!ho;->bDl{My`~Rd^AwwSN&aR(r@ASGzl28#4T5PuL`8!bDKOV zx5J~MQR7UM==4w~s))9VJeaI_W!*O9ShUQNWsT*$lz@QiNH;exI(u6z{yO4@?C}l` z5bv5&kvzldDShuDlhgfR)VEQ|$DR6s&3^oYpM*>j(F}TC>hx*KZOqy{YH3M??J>Dk z6Emlo8sR~2``t3MwjQ}wp7w)0xlJ+UlEcIP4^IEX);re*gw&+$=v@U89wYwH&f7!)o7{sAR;=J&i4c>*vsewFsS@TH+C}-6JMXB zCLTA~dQZ+VE>6<9%pc)TS6CfhG6<^L;Za!D>gtcOFIsrWY^^oWFW(In78&GMgR)v( z@nM{AC7vouWO|D0I`|{G-H{UE68&K9dx|LWPY`hAF`@+ZF6{(%yu-Rf`|y!O=BeVD z8*IvBtV-?7Lo~+sf_lS*8kcht{c!ZHuLQUZV5vatb?NCV^Npx9Y0WUe{a6lRGtyL; zNd}AXEpQLaP|iU__-QFBD^vk0`H0wrxXoRzDeqdU-Noyr+Gy$HGIk z-C2DXy##G}lfRO{uVd#n@Z6v}<&)*pm(Lwd`hLZS*R)6b+;pSt&7@OaloGs}=fwHV^q52!g!J`V8#69FoH2k`IFlq- z92D@s_1J46obhpD&49n=XY}}K)1zC^isYTzw>_-uDEd=Ll@dr0&|AuA;t5@TcS1Pd z#w9NNI?yv>4`l*FX$#n=W0=kQP77n_Y9F_>P{WGwn}>n|heXJ)Xw8n!!maRr-ZHlO zF^{2TGD71h=`A52RENPhn@)|n5oT6r1ZT$A2XRPkKdlK0OtobO^joxg8M5t@4<QCjgXvg z7@$a^9cq9NQRqV7lUE!=%OXj#qj+kGx8R`OL42W(QoF}P9m33EPQN5lhlna`73mrb-bqv;i(p09-Sp-XhK^!FLmMP4jG zN*WN=Ck?`yIM4Zo5dK+yPpP5FaM;DW^Av|)dG0#?w>(PJ&X#hBi+}XSPNZUGN=#J` zUt}i!#X;>yg`p~;EUmRF^^FsAJo*zrewEmn@J}&{`Q;j*dY}I=^zKIDkpAa`3?q&O zlnYLP&@r}#W(EHLz)}BuOab5PABVr9x zr}s81oaRcLZ#x8?4*Z&))VUrgp!-B~=OK74He#@(D!=%x!Vgzq%>%WIJs`{cPr29! z;H+oS*C~Bw+*k@(k_|tt>dF(#pcYSDyssb|k6q-1GArW~p7GahjE*c-cB>~2vX^~}Q>@~hBK=QFe2cJZP#gEO2uBu?l^c5P5egF>bD z`?TVitFlp8hCCc}6m6V#+j1WTEsnpL8z$g3O^0IxiUFI8XO!!WUz_8!?!k0#%05i# zB-v`r7FcO%*0LFrm1wl7xsG*P1fLjjYL|fX0xO|LEyoo zYxiuQdA@F*I#4upjmx7vmg#IzmKF4!pjPH0q;3><4?3t!KyTD+4F~Qstw!%l;QtJr zaccXHsQ1mS4%AbBt5;5Nb|@oY1M>tDkG6R)zcUB*fGNQLcuU^Hv0 zz8{Ay66Y~1<1S+&AH=ko?RtM;7jzbOxGxx1J-Pfy2be?kf=t_q&WU&Q9<}uW|`Mh zN)=l@<4_r@`~=e0OUD8Y^FwK-Jn!au(yN#$S5&!cV}0+YbCEiovGV`42CVm$+wRG8 z(WZ%wY)rxU&Y5M{5~_T=7y3Oc&@SoG5e70jSLc_WFN-UlOytQq9i7{88FY8q+nbgdnzp4e;_e$K>iE(C}CpjTl zgUbt6JhLjX zXKIH$XUnYlTb2qvVob=|aZ9Tku> znlww-fh5M}*r(Jz2?(C(&|H9e>|=#H3x|2fX{)+fFy)@>`^$_{FuQr>LANV$7*l@~ z6y8iPOcD5UwCU?;;Mv!fCY+@k`I=eRt}-P0?pCfzU%OjXlYoswNE6T1VVyfAbQodA z>n!}iBPS6O1?xRbv0m52KhuS9oSfB;S>5bF1z+ws;ZS@BF}^r18urhwjtfmmy#og{ zMN_BQ6Sfh*Aj=X72;B#5{OMJnN{sIVr3DyVBr1$mF=H3qqu=!ofxd{SU`7>Q?&~>K zA4G3DW%=(_{#!vLC*5op$J~}FwIHUBS1al~rsI%p-UH@AWPPHE*zwc$l6x64Pmr!F zqHU;X-xGzu@@zT>xPeGi6%iPzDx=BkR-go=tbwPrOrQryV?d>>U?}U`l6kMyuTOVK zXT$zVSbAK9Z>pl(A}ta>J%gn;R;bMPgB4j)lmF`e^{yxmft=94T^{~y*}$Cr2Tkm7 z>N`-`l=eQ%Vn_?*$nbvh>zCMNRnKk5xfn~`d}q+~3SbZ*-Vtz8_DeghVWdy5A4s2F z0rGk9rVG`=op7fw48a9~HlISsP$iF7+!&8C%(IqUI6^60>FPp=+o%49Et17=hLCRJ zPTij3zSdM(fJO5R+QQ}lv=a~nxqf3_RfX2Q%XlUni|-R#%{IIdYL5T5vgr`8XIS9* zOJj(-hD~^enZ|CchLPTJ>aKp~lHA7o_k9qlL`JM@9Idaz<#ht68|6c8a ze}=u8cS;@X@_f3}LHrym8H1c{LYKQB>urNra7S?hiBNH3JhbDLcv?U-?%+WcID!R# zrch_d6o$0Gw@iOnR$`nSV^+^CH7lpA{iU6Y3$P8!qIaM-X#xW4_Jem@GEwn^6ptzM z!h_?)DpzfS;UCooeQFVAUH!6zNTUL&17lU!JR@C9Fl$Nw;seqgM zhZ%Sntxa5iTy$ttVT#o?iH5+#rNAl{(~s(nNhHu1%ZMDgo1oXF=p(bQ0-l@2a)UfRNnI=OaW5&q2qA$SlD5iFtaWzr!?bqvV)58Z9 zJh~1T7;9xU5=DFLVSXz4OrIz7YtOGuplMuEs~3zs8i#@z4*)QC|h^Ie&j6M z8n%N2&Hm$}TN8_7)D(F4Dj1|jCOm!27Si};%#7sxH8kct@r3JkqAqjS_YAB`dG;3w zWaivCwBxJFY4NYML+~q_f21OeI`!Ygu2r?0OqO-z=umsYNd-RSubgv=-s1yxy|)_u zFb1l4U_mcHzZ2=;zo*LnvJ$A@|I7EH_c1nVbr7$fa;2J*?9+4(=dHX`jJ`(a_RPjwdYhRYRT?ebtuFFb;;siq?4tGK z-^pY{esi-7bIB2&<2;_JGMumIK)Z&7Otg zUB#?f9YIx+$(SI6={M=JUCN|WoD9Bjn>+)Ef_Sd}jv0w!gQsg)0u`jhc~^p3XenUi zv1jR8E|B?d_pr{h9(hRgT*?!ga+T-BLz>V?D?dZM>MwWm@=$`2Vi zm?E+?I)*L+Lp&@v$bEJy*=7A7v=$mnP^<_dDZd!j_Q5}g%;XZ_9g+SSxm~z`cgvgxV3t={;h)7mQrF^uU5xdITAzsj(Vm==f=q(v zhFecR4u|=y7a3&r8plHm6N_rWS(2vT>2hX4q3YIN%-H>p>v7x;ouLFCuKA&_)rW?} z^$+!tfvdBQuuby?4V_*OyLnO|*CNC5K;diS`P4C`5y7xi2ef zYKcj=x+5D5FvWXuk;~%v!=cqz@2Az^7)cJDL+Flgs3|leqnTJaUo7%$eu134K(k|m zy2=6?(2X@gfgb_&D2@-VkuR8T{Bjn={_GGP zd`wQ=vm-78X;13L0i@RM^e3bJFPo=-gHa$Rdlvr}(%wX9|F6>C{~9FypVSlozi(PP zYb$kfr1cq)TdS<5F287$q@W3ha*n_^`fJM>&>H1e0+pHXd#Uq1dX{*nsEk%1 zt^#E0A2m}~Zif)G08Rq;&ku6}jeP@>gLL-O-`I_(hGyq3F}W|n8}A$1;P+RGVgkMx zzn@#IuVJ3xgc|VJVjxH03(b7)@dnUhqR5Riz#9^V#^<~a7XF0|ir3sK>!#m;_;uyP zrD>L?CzuFu2$GxI|5t4lIcKZ=^7-M)gW_)|Mnb21cQdZmH(_wcpn8MW^3SLhJ>2Ub zF}w^y_~9~u?!XPYl3~)~1eb^oy%hc(e3qnD3>8X;9bW~+$|VSH4$^j0+$MbW;y7CY zIYr4vDlXey_ugh@BA9^aAD03#alO>L2Y1b``lm}ef^Sgni5*FLCC-(+{*~G~{Z0X! z#D^Z^2;x_JTnYP~meM%wS2Q>8s?q>CY8&kr?U-aEatr^uG$Uebrkkjy-t@Voi$%DH5ON|rx=bK z(5TWjU^IjS^bO;X#wFV=3~4~{y3nLp1n(C4fd) zIkff9LTa<2asBcFYejEIdEyxiGHuH=vunN{p$L9`^~-HE4aS&3lY~lORo)bki^I8@IDBd$mK_oB}uf ztRN%+r=a^Er!tAhY7Qc=Bq{d}WRE3v#vD_10;qGeWug_QNDn%`j~lGWD^*69%h~AX zIp(SvM{~!E;z1*a4Ik@1;>f}`pIjZ2#s+tch>0p|67rLs+|{!(lI9Dr3oZ8%PzJl! z@H1%+S-LfYW1qWG=mxHce)P!89;{_4*a?ayfN-*jd)f0Mx7-`+#$&6>`EQ<#0r36k zmJYif{<`B1)tR?gFx9^*F~5BKi^bbXSP&dSE2PY_tJ=sg4E8MJ)-)K*LgbWYfTUdX_dq2mC43R90c=)0}iVxxj-)IoNE^ zu7UrMq?ytXT=Oh;Ha1Tpkj1KW+;ak=DO-Rj5&PuTNDeIKw4k**nj1rkh)cjBhrJURbk}o#BUW5<3ik4RIXJy$Z_7)cu`6i*YZDg5H?zl+y zI$)=Cx3A(#76khPYZPQq77qesB}??r-3>|`iZk1i5J zqAtsk@Hge}Z0@B8cq*XJ#!TlaNQqldEciP9JmOw2t#(J`w+1^GV{)>0JBugL+BpLY z0}uaWIB-WhRIgLmi^R4~fCQa(8?dY*mJZrf%;U@BKh~n4 z5X|aLco#B2q0iOk9jwjm7z=J%tVA9DinC=KPRV#{5@z>M`~3i*N2V^pbf| zWWY{+!~ZGl6d}+0*yu|+<2bv|Vo(n$&s{HC!bB9)PH@Odw(!=*;G6pe@4C?RSZ3!J zB<@X>QEAoDC{y@A1-23^Ne~A1x8`1pGc@r9Go^=o>x?*nmVK9Bqy$s6!3>=fPJf#Q zB8LG7m3zxSkN|=Ew8Z=Z@vF<2*Qr=(ON$<`dm$QgzVcHr>Zu4FgVgu7u$2JY9kKKM zo?neL@haAgfR9ac&<_1E=#=LH_ET*b(Sx+0_+-j->{O`Z* z@c!3`INr+FKERbPRWI3bSEB#iIwRhH2-rHW*1dqGDg)TE!-?A){sz*lH>$3c7eE%b zRQ^v^mgaYw_ACLg-=X*uPYeT+HDExQfd5{}>p!k$$~QUS_A3B~8i)P~AcTQS0Xah8 zYi{TM_aofAVAy@&x`ux(A%F+Gc~~G9T#5HL-~%oNL@`>xb#J!Sf7}B9Cy(g<4b>KM zF)s*`$4*(d%Xq)gB znxuLX0ltT?9523Nc4??>WR1PA)jq8a+3lDSJF|*oFtmyno*x5i;#AYu)v#^$)y#q% z7T_>RrcB|zLu%)fKA&j^;R97V*>4LbUb<&bHP+5%ch^Mc?Ov-ruC$WjAm zp_4KP;Xr?c8oXqri^WG~H@6e+c`r$7ql4=!ho5A_=2^^UX26S!+SAi{m;2ubg@Ghy z$^U)#(MEyFA4x>zIr{v8;JlDsw7rk@VJPwrr(;HAxKdcw>y#RWd!oIw!rYG-gViV* z;Fu2wpW?gi@+#A@Jl^m7Tn^4Hzyx6G-m7?PeFnqu6g1~=(CmWv4pw!c_6ka8 z&;WNPFRB%yN;~I{(2$)*;J_SQrh#?#UVeQ0yqx!8lj1RmW`qM?$@UJczW0k8d~q|DGGEcLqzl(8Dp?8RVg-O7pR~BD=~Xv9nJJhyQixNTah+X?)O9} zLVFM{2mvZMyc0IuJPQ!(@|B;V@d`Mq=$n|g`9X1STuG4*eXXzpYeeWwChE5Luw{V1 zxWpF!%ot#qS;i0tEWH0%r2yHzSopC-gsG)UPn*sABBfR(5)Ttj2osn#Z|A{A=&|cb zAW+xW;bKk4<$m>U0H{Ifq+PVP9_@KrgmYkEaDyrLQjC7US}4-T#2=;Gbhe@IqZz01 zfx*FxuY8y?;Uh0p&x8Pi;jG>F_olbb$rDJkZ6lnOBorbHPgZ`iY6W}iaC$PI%1!6& zm1<|ywR5lYHfwek7&7B`I6m>Dp!a=`RCN~0fjD_|Sx3ZBgiW8H_B>%o<38Qk4G!VZ zb;h$RVmTHp^>Mx}XpHrv#|p%MiYA={Z16SAXb-0zoswCyTGGx!f_;_T zQWT#TAiQ}r-hrP|10VZ;>GGzj{o-LX_WB)BF7U2DRjJ!-G!8+1ifS&)>TiMs`{pdj*u;=cM|eug}lB zn{UXMGz}~wr&g!97{h17n{TmxhW{F;oSUwvzRUHKk(!evM`lD{z^S4hA^{mnniP7;5{allODZV z5|hcnB+Hv|o4WY$M;E7+&d2OT>ZHr)qq8( z^Fhm5K0UT-N=Hh-cPK_{R*C9UdsDw2f{Mq+*tIc8T8WA<_W`;y*xo_)v|_iok`q)k zV40XuByN$ogl#Q8$B5$qa1qC|cQ}vxV#d1Mh+$zA1*Vq#8vU@1jsiR82)jB=d*yAb z9mRh0aP<#5>7!8_rEiMB=rcLeegyw@uiN{{gUaC{FXTIBAetOH!Lt+hxE0I-(v}PC zLc04tpu3MM4*oh}i{Le=g4~lA2YEC+-TT&hcXHX8+qHB31BznOw*jBR5FM@SD-^tk5|Id}?Sup{DM(JRK|a0>v~eced2%sfB7hY!TvYX3 z=vkU2@b&-@smzT5axc&kHELO>H^Loq)czp9+R%nqUpXfQ<7`+z12w{#IuIq`~ZvY5HD@QUau@asAR- z3Ak`W!(*v{&6~!$|BC(~ZmDvP**PZCIJFS>2{)gg^LpGBR4=BO!~0}jLa3ssN1AXE zd-^-a9G?6PaBS)4qh06d*zqBS9ek4W1bp-kAumIsEm$SSxh%6G4#L#@YdiN_U(rK7 zY=(h|^FN;`^8F9$qv5;yvT8?%MC6o3NI20Eyd;4cis-3SVzM?&lIT(&r{TtU)swUU@D8TQr#Q! z`Hx^4uux>G2w2ltMSM`^oUOX4u#Q_XiQL#ra)aN7GTP|3B|!K`xH_xOc|+?X-TZel zuiQB$F*nTdeKTuOYhmb?iKemKwOX$yUgWdO9=e8)i1P%cQ0N*>r$;_hsL!_ph{u25 z;Ee}gZ~%}rI&twV8P|@pWUcky2c43y79JE3Grm25E>gQ@nZ4b5N z9+xwn1G8DE!DM9G5~kMk{?*_YAN@JJr{$xu!;uA!!rgr6*YH+xC*_xpwEv`ufC?}Z z`ILK1XM0hVw$n5`_=9IJ2V$Qx8mgqJald>n&#Gebet`%4qK9|DNqL`>*Z8L%$#H|2 z0>U5h@;UcM!j+VNa)?P}pJ;lmC0)yIW9q~^J@#iknST9vHrIsmlth;S>ye9 z{`$*vxCj&1QEuO5AyMTWo_W(QCY9+GjN&w>r#+wFsFOIJI6x$RU= zTL2gtHas$V-RS%CjTGJHY+;8pnzHoSg8M#7q!JFd_;qD|_9PtujsN(#8>~FncsejZ z0<CI+HBd`_cZ5B8F3UQhg0ZlyeVmLiDEK32J%H0PPyv-gR5B9=f3I`Xa^$#<` z7tx|6>W7#N-cA9u@CR`l^smPdRJ(x3nQ&nwH#DsnxW=#eFtl|8VsCm@)Zp`Br-=c{Spr$`|>){M| z@S3BI;Thn5OBWO;pDAlo8G%H#8$wx?*2VDt& zct3@>5jOpg&%86|Vc_i8gEKl7KsEpmyI}2Za-*FgUGQWA$Y7df;j2s=5^3daE7O#glR}hih-xm@+B{pPSW=!)r`W z7|XvZf=jZu(8S+R4^4R^nkArd(e!UF1MJeV`-#w5?Ud2Y{ayJ}%%)N&xoNfKit``3 z2dJ`rDrv+|8hchsrSYgo%kG|ug_H}&HfWkS`0zaD=a7KVz95tj&mEI1>|6(+QvW0$ zd4RnWrA?M?&qE#C@>=YA?L4>=4pniNc_ii#pa2Ew&1tf*r22#)d>U;KUdu`i5NfvrfV0KI7~WxMmdi`%<- zCy$_M>LhQq&grV0cC9LUtbO;4KC;`*(9&j)v^D2UhGY-twlheFjM5!b&YW+Ihg#fV z*mvJpguxX?ttrz^*?6nl0pu_!4xNyajCf{O5v%q5tNdaDV$&Tn&toD8;B9o8k)1|1 zc?O1@wnf68OdbTL(SD7y$a>Q`TkU;;)F5tybG6HHr^LToGT`-xzsIi_6_4s0C@zxJ zVzFo8kxvj(?Wf+;Y~io`VO9E6up-QxFJr>Q)wn_kAypPw(19z&k9xN_M+LvNV-m)r zr9}vtwl{^wpbZul(LgdZf#$8`k{w+w(fr}##3@w_1ol8jw}*C?5_u~=L6s>fT3oiy z^~rh+VWo^VoDLbc`McF%>=@5ia9SJ8f_F+qb~x)*4#xOHXC1L}Cw*8h{l+01q4T&v z-YR zQY0}?8u8f87kGOvEZ(aT1vD@3PNN}43lAJ+{jeph;mxxQ8i0;>;$_!@ti{^~Cy?e! z*4Nv|uC&l%i*yr@eok49MLw$u!fzSDM#xdmBm-z-l2KP}CUR-_;TO1!Q|X{# zmc|@UL2V=x@K>eZt(-6B!$OZ6Uv_~-TPz^mDbYmDO8Mm~b#e?*V@POlJo7j5MP`^W z6|SgdTeh+Zy5VL~(!22tx>zDR%iaT$xkA+;G7wj=UMYfsK+vW3T-$`k#$X)BV|h?_ zXTl;NI!)g7CwMmd$MoVzd!E*T^}SjmSKHF)z-srYXnMSDH-)2O7x6zS&CSrdv9-AS zGG}LZy?2kke2aQE2%N_u3eSx)z@I;Mtw*I!m$%Rnz|)Jj1_D=PCYz72?Rp&T@S6LN zl7oQ`#Zd7Xxqqgi>Lk@x9a{8;tXNo+nCO020Jr|M&h3LDA z`2gk*TbW502dmnu6fZmR0oaercm>*aTxx9KmFbVYYadud>WYP+p5+ftM&bWv0}_G27gq*{_H$y!hq4Wddv z_mSU{g)#u2{UeHtKK!^w@uhBux_RwbA|vG9BCx`jz?u)A&trVoY^gtaGdb3Y8tZs{ zzyJ;3D#3`FF0Vk(_POxDdY+3*R0P&06HCAh>NxT&68BhUGfota*26AC=6V>;tkP^A zs}9kpc%GL#l_3$Z7dST6cG*a#!SBjw%*;yoi7he z(X?yhS$)>LAmsLmpV1mrFe*O5gcDHEsR%Dr(>7-M7(DERq3q}DAb^D*6^aDo&9gmj z3lEy4>Ap^TLnJaD_{9Na^xeytmta%h4z#g1sli^PCrjL_Ylp7sQ=&BVIm4#j>tO98e-v(3VCb7i*zuCZeLCmPNm*$Mm+e%I>ssW2oe?iV$C8e_`? zqHAtK{K}F6qTVl~bf`*aW`WM$-anCI9kyTcP83>P}a-QN8Zn zkJx%ac~;#sqG1Derf?R5&)ZumEv0d6REjB>`=9-cqt*oE4*&YU*$Z|+B7Fk_t^RF7 zc2j8qM)i?Fy(%E}2>5<$Z>ZMHFS-6k4H4JVQ4PODFyH?2lQ}v*bcqIZ7B|13`Hx>P ze+~^$wzW&mHebt!KE2@!$m0tCd&CIbl$W8OWt+Yy=O5GQgrv7vx6)?O0+T;~gAn=RF9&S;NIZ=Ta@{HpM?$nfCdo|T1mci-X{zmX=-5T_D z-!-y8IY7SZFc+CFc*@@KmGkj2-Sz0;y0rWEO1aABf%}=$emHYSCa6{CFP4AMqm<TH=!(uLX3<9p6&*mMNLZ5KBXd}<7gqgfM_ zAP61DySFS+k<*e3##MWrt^kAd$CB91T;n^}|D0SYmmHRS+w3s+=}*}481p&V_|rq^ zr26;6vfNCow1S?%gIZ*rKA%80eI8D+`3flOPLF}Uk?ExV=~90qV0Ht#$QaDgrbWQ3ptwu4q)LkE5a5R zPW*NFr`wp_dBOs|k9uGFr@i66#mwk7m0d!}3-PnKLcYdcXJy5AnHmuAeqO}$?VJY` zRqWuOvP~K$D@jcOT1)D0i*i%VnhkY_VIeiY#1()&@ggepGUmo(zE@=L#nD;Xlq%4N zm$p7kL5PsTUn7(f2CSdXyy9x)kDT7%!KYm{X?@CrD?X97i}5Nhw0fYVL^)Sy>{Z9( zEQO({;E-+y-Qg!%hu`k5mL>&HgFksc-Acib!c)423yVGqdNgE?Nioh9#fHYqch%C@J_0HlTerAtyP1HdW-LuTC>sHDNO~ zi>~EQPPP-hD5J1QSrDV??{5vt;d?1+Mxq*1DqV`cu?*&?%Cp%aN77=8mhxKd80*;` zn~2GkY@KQdJ4B_$dAgH0wszDCr>Ir)azsPVQiVo&QPuKCyP@zJXXU-E$XuO}%Ova^ zqqXyEOYg-T_`#0TtB~leA>X9Fpsm}54Vps@^U*gdnU5A9G?x&+zb&wDy(LI-&+l2}pA?aWXsOX|~KClM(H_w0SPPp-K z88^799tBlSy;{?OXGCY+NqXbKH#8a%qBGjfX-W7jU+rBjI@U2S zb&ojNICu%2dJ|_b6iUYemE-?E?R{lflx^282nZ5GcZ+lhNOub;ox*@f41#o*bhm(X zcSwjxOP92CcMqk~G5a2UeBSr{_P6WUaqNBUk6**UeP6Y%T5Fx>d1moR=`&7z-#1a@ zJj$((R2ymp)L!HescOSI46q(z8cmk{jKZF-nvNzu16d=K(7daH=6iK(1sYCl)wgO^ zX_PwbaQuq9!U0nUqRMV&M3+k^o_E3PD*+r$kZnz@!vyGq%%5v>28NV!#z|tN4cz>( zYFg(G%DtC!k#MyQ*Cp>GKn|xLNR<#;?C#|J^7ZE@iW%V%z%w11**3Y#-Z}78{Ns+> zRtlttvy!Kc^-Ee(UH(#XGxh1!eJ@kf2XAe;r;eTzc(=O=JWemjnNVA?&<+F=Nb?w0 z6F!#WKVSn~?aE(e){_@ylnW~`9y_3Sdv2C|AmJn};LwwF(!S(0;rACHRq2I*Unf-+ zBQc&fm`$w+SP&W#+f9L}=)KT|`)1V6y=wCi7ou1!2*uopJwjIS9%OZ$yanB6`d{`I?964RTTT5<8#K zk{e&_V;6$yk7NPPj;n1@km*r(#&yRe(m> zdjST9cH+98pWMC1jO`(xg6?z64vnUTwdgk;M>-0PrSrKt&!lL|6|-0tIFAFxYU&v%KVcv1s@d3aGNQFeb4i``A7GI`V*pufsp_lj)iIHVq?x1-;ZF3 z>Y{XU*MKr+Gw<=R>L(#rj+8R3~_D>9m&yV2its|tzsDj`k0<%pMVlzyMLYnaKq=IEFL8(e8OfDqIc>mY2U<6 z1tjXjUZWzQG7}yJkIpoB2fK*8#JFP`JZxa-1UM2x`*oX~`SI>L9}&AL0TAnNlr
    hIm(Tdubt{_?=hPEyAi<}ixgcDUMBO3eg2S+>jtLq%w_F>!!m9c7 z=v=QhIVa|9g(ju@%01{fIr;#dxA{p>F>^*VPc11tiRsxH5EVjf+2^Wi1$0zPhU5CY zV^RI{>;lx2mcT9%F zm=QK0FoT#@fYU_Kbk{M2K#|xH?^1w3QdgN$AVu)vq07K|unvSK6q?^FA*X=aU1>+; zDO{glfomzYXwXsP3#puFIproTSj0bTcwr;Qq6Kvd&f4RLV0X*KUlD~5%{KV(=mjDF>7g^1p`a3HoCh78lJ6I#Yg@q8EezQ zYT}eH7#1kO|G=;^X?*@IyTSs`)^;d=9^Wjw+QuJ$$Gj`#5wR1&PNb^s1CWjwIvW zC&w?!ZTC*DKYiIeDPI=N{SxHfd377H7B;#`huRt{doKIR@`+k&mTyT8CuU6%k>koJp`~@yZnn*)lB{=)zxCp>33AT~T4;ran@bJG zO%A1jf6;WYX#xU{F?2*vzM`LmjcSrz179Ht`+cLAT2XQ2fiuU-Xn&^x#d<9()-G}h zhLeZD^h)j_RmuuyhFYT`p-3%xhe=AsJj6QANm($Tr8Jhg4^Nfpm@?x$&5sS=vr z4P?|(OmzhWAztUjCVM}l6ev>Ri1(c-SPv6d1SdJEQV``z+ij5LOQ-C=82M1az(-sp zEGtpK!T?|TcRMkO?d{G$Glod_h+;MqfZG)@iL>^TefraKyqDiG15(5PJ zpyr`3K|{_3ABnP|X+4g1Y;t-|Q$#`)WP4Q5DuHeQv3by57b>Jhx{c(>JUIXnS@#FA zFKp&!&y$Xpb_=jZDi#8y!J@!mXxRHcGliNz!p};bu!aa6ZS(61{Yv3ZzbL7S2s@qj6luKs?mUjo0FF?jZ8=UyN)Flp z4@pP0fc!5E?`?YswR0=crdZBhwu$oA93}z4H)&U0h}hv!T;u~K< z5UfU)0e(nlK_nwy;WuZLGcbdd6gg5Vk9Xx4)9F7Ix;FGkR3#)geG}R(XA`#57^n(d zRyrC*Zk?`0KjCx?0jb-7e6#M^Wdtc&t%LOggCL&IQ~UKL-=~-X?#BtU1aQuTZLtL7 z(^FbVh^*SPZhPXfZhH@ht?^AU=_g;qDe`rDAcXGC=v$>_Jz~@57YV_vnj7!YbRGo) zFnZc_>f0~jPh)U9Z~^$L=AT>{>|`H`vD`zl^;2%#ekkjIS| zSnXrSjvqU-2zmSr7>4iq|f~hNiU!iHKBL->~-=%N@;OW^k7_ z_xGMmnrmv-Oy5S}G*Vm;t% zk5jWuQ=2Af!0HJ4&Em@fZ`0!%DTtp`Ko@Huz z((FMMRgCvbt7otZK-6`tan1$ctybaG1 zGt4ypk!a70cR+qE5Q*&!Wh}fyoozzHaDQ{*1F`+l+U1i8i-b0;!amucG6rKo=5NIp z4+Fc-T*Y{=lC*5U8~xx0ZrD2VBTB;cpz^CX=QCrMGq9^E6|b|_x&W}q4JXXRXPf6( zqxCi<<~AO7ChoHvGk0=&3Fo1+<-XA#yXE|j+P44Hh~mJ_mc#*r+7HOnfX_YnDGYnu zq@3wBk4*!ha2L5E>)u8VD580t8WD$Q3ZGyfXTe}1V)fDMCk_bxW~wPn)Aeqa5YxRy3p<~TeWEE9gH)vrps;_rdI6Nvl91c8JK zu+k`8A};|>tLP7etxeq2s8rbw178)thWP2gUKoi?uK`zQRn`|;jZ3D`5b#>sM$I!< z#`qksT;|N*a@q5=jM9LN14fS1b}ixAyPN4qKoU5@r^) z0%GX4?y;2Ak%PI?qd9o@Z_MP4EoJ4#Bm{S?kT6^>_sb!1(jjyKY~d^3osuqg!HRi$ zoFy7a3Lbke;#>y^b}*C1nw~RlvI)C=YoJkV+QM{Ze1NvjoX{L8L&At;NG5G}mMf4z zY1*|$F)ArE7Rn}j2QHN`y(C$9Lz{4)1(1`zoLL(@>DnR9;0tH-Md~}O4PgKB5p2`8 z#Ep{WTp0*GSlP=190m8pQs1tuVe;I8WNd23kK6wtU3#hYeIzqTHoE}RM>fK!&6>l+ zmrs8=1^N(&Z*XuAK z#|h4D2v?%V^$5_Pwo&Xvb# z#8RU)?v%#M1f;AA56`tveN>ix8?QFRz*dT%0 zen=yr1K#gwA5K5z<3K)pnnh?)F|XdkV5O+Ll!mCSivP=B^U6+ zjnO_nZY0%ryCYN_y|X1eBC08UPHwTl;r$Xj7Qb+0yL^gUwlPNr9^eX?1Y7|MuBC$! zYWC@PZhjI>vx%^oq6!R4iJ{z*vbU@J8*Fql?tV5=j~kd4dUQ(H(39Wk1XW^K=rmUN zYI*70cG#k=;iar5Y)yd;*8$9-h)GmojaOsg5lJ0sn}H22fwm2JOEtdBk5rAsY`Y&# zQJuMjRuWP8$F7A5K}ZdiMX0L$q^6(W^QOT4K6*f5T-V8UQYmIkXZGB%_TsZ~D3S*O z2uL~F;%e+H$eYQLVeD1YS41di#qE91-Rr(yi#jRzK+4}0e{N3U9_FDEd-2F(*8 z(@!{^1bM!StrPPfdn9(G)j1wBOEY!zXR2LnMysJuRECiGJxWX_lq9<%OE&oUh0zpQ zH~^9rSaX$0Cj~Bn(3VR_xgzbg3AW5Xfrje^c;fGI%;FRIGfjeqEzuyga<(Pg2k$5t zYwQT2nDxx4BTtbppY}eLDByZ99R4z0I%7a*oERh`oZWZ0%8iFy5Pgqg!$j7NP`xKM zMrAS#`F-PSXLXT8g@P-5J&>Da0k>tN5T{%9#~-t^oZ4CrCPdv%c1MvCz5cIM+8S); z9$mQZry3C06Hup{27OEMAP(ZzasE-y?Sit9IIzQ#z$+t1aH-41l0m8tNx%+QbWb`m zK@;Hkk|@njJj;^G6C$Lok@q-5B*#Yf!v$qj%?r*6t*4~xzS$xL5oB0<`AqA{2C7Cz zI~9c-Pn=v)FzZa47{jvFPTwNQ*8~*vHx#SLh$=l9d9}v|w%O5D-TR@XA^JCCj&Yz- zbQ^}+k!s7D8S;FH>y~5snkuKku0z>{R)nl_Np4!tGJ7WWPi))vEu8tnV}SnpF}_RDzQoNY>H6RON(BPROda`Srnz7lN2bh zXZY@V%;E0D#^mPVBEk4J!vm8mL*yApIG`f+m{j$&uFOztlB27g@G+=1HH+=UyRW1| z+l7CPbaSxiXZ!v`Hc;l`imE6I{f;QvNOCs$~?x>a$o2A{&^7g&I>i*n&?bf0gm*%vpQJ4k_en8!laqG~# zQ`c;`^NnjR3zP5z2S71{h7MY%Hz{$?9dO561H|ZzOxDp-3o7b<;7$q@xuyk!ciq)i zo)rYVC9F#-gaO($I3|nsWkx8ip)G&X zaZmtvRq{iIa|e8cl}VCq-2j{*oy^Mlb|V%#W9kgKD0B*lgwlxS+j*1nu7%iVr!0J zlEs_HU-}uNI@xCr6_$$^Z?^zNsKLn=^t}wD5xk+AWFZWVXG@o-fIN^X{!xp507Ktt_Q~+VXVQxz*gnu3HQb4v-T=zl$j;2B@{77t*1j6Zv3e z3$MgVVfd>Fog83JLZ033NyRP6O6UxyJ2SzF5>$)7pwMGVWt?xghVV zf|QY*c9MDf8%&|THd(0%*RQFEU!9jk^nZoszMUmsNGFs`ep-i!xqo=OFI(PE5^Mq3 zI?G3fcN{=Y5^+UPqhMln1`V&Y6C*b7q=FrZilzyR)~=fecqiOo`e74ZY=+A0Sgi}{ z(Ud<&NPjxll$mme9ag&j#CL536b{}-D}zL6ErSaRlt?POOttXUnVr*hc9UUmyBN!k zvm%%G*O&H4G(h;IhT_!(t)!4oajoa`o|iwF%z~s8quIb>m`TzF%4($Z`vz?}E-HiF zq@5^}qU%j%Yx=lOK37Wt9%+-SR9ckTOM|&$WT$Kz7xs^N$sC_AT?#~^W=8#qZa?ne zl;1I2Zg!OQK3!iqXS+KU)o+jTJL`I$vq#>lUKAgsFmGQ%Y!!UEpYxXfanS7;p=8OF zrGmiA^9)2P3}@6poeiwrhuNM9B7R+sdfA}#@%Bqix{&pw?nb2@=e}VYlVhhR61}aI z2G2kC*mFO2B_vSndw5)8B6^+P`chMvf3!SF0Cg0|{&_i}SKRIlo1mXCbI`W=IxhA( zz~QhW+t@G$5BeZ)ZDpgr5ZhGP`%RciDSz)Gh z3RgH_5aD&BE*)c@v~W&}{CfTZQRCyZ#~fkRi+iMqi$UDDkGgifOe+z2O(^$g8E=E+ z^m;(24S#|utpx4FWPBi9LAT46CRMM zw9*s~&br0=ATJ~x;R~A*P#g0ySSl}ny2f;qCNW}1ngPRAtZ^Yb?Qr5x6foEm)Apt? z2&Y0l;scNBehp4X^`E#F=6NEj1}xSFO)|Y^$j$76_3nTs&`#t}1hUgR_pV3QBNB&5 z;D-tTsw)Bz`M;v&|32W}dp>fD>eqcr3atq!;`c`ZZa5zASLjmyS1vC+h`HML3o6H+ z=R=|i<73K-hbf)d_xn8H?%lX^^!x798HB?JPipS?U{V~;322ZgBFg*CgQB}wE1SQm z3-0(d*1Mzh=UZR(QqiTDw}4~>q^;W7LJIi9K6~GY7gpmyp_al+$ncW&;VIawE^7O` zR=3m5^0qubTX$;%Xz!d^cgeM5!6n`^drwzFvDzq#EO>hKLr{JJ05jm+1FJ-m{aUP^ zlI~#EH308bOU{*BsKB#;s*jS zAQ>?GF80fQ3CTCTXW;Vnog$(oeA0pdb*U4@{lncib*3mX#zOB_RUwHVRG)<016gfN z>WxW&(9zb1AZlGs_wHr*%^Xy&uIxU^pGQ76U>eeN7~gA-r`o(<;fS) zd@LngkN&_S``*{kwMS!Gbnhg<0}BAU>tzV&p+Mo9MGA}l2VwX0M9e`!CPd{)1uhSt zD&bH7w08fVqO^bY>-w6;FnHUpNqy$_4j*muYuYBp(j{Nhm2yXJDL-bXd93& zh0vE*B{tApc*?PL#U0Xg=FXR<41?l#gK#=1e+|l%WSCskrX@C0s{u->Z&^@kwpdNK zjTE6i`^A=%G!vm0rNDI8Xks$!)0gGuz3Pw@a;5@xR2R2wyG$T=HGKPF^ljoJ3+X`o zeJH5!1;vLB3C6Gh$jSF6(dPO`NiNK)0VL!ZB3WN^4r{8@9D^Gl6mD%%v|ZwVJqhzA zN6%6hdaQiE#D&c;JHE0^A}(N>iGm%#c>)(+DYQBQbY7j7ozi(r!l#tM0sG>_LB1U& z=shovhjt6gXs~KNg(ejf$=JW5+DFGbBeke{X^W~;B8-q3vG@|5RL!7jtujo)(O!2z zkJ=?(h~}iFnudRMauup)smSNQK7(in5GX_$hQ=GKb5iGhLwIh=U!2zFG<5X6S1-M^ z;j&5)%&lC{O>Ao8hy2LBSm})Rft9*OKnPAp20(g&wt6PDSXio7K%zxVl)mlGsccx_ zDI%&V`;u};LL^dA=Tl^P2~s0a z%w95vL-lY8iqK`_h>L_;2SAa41)noExCF+vnR#Ryi}y8OYI@d|;&bd8Xy41Tq-V5j z=P%L;)jk-^HMP|4A$(NN(ycx|BUt6nShVL+E5yd@*t=bxv9Aq?EQk^VYS=A8tWPs2 zRg!jRM1|${on1Iv3yVICLS1~xMm6a&hmrU2?4-xozA^IWD2Eg|4Fks)Fs|MG+2>KJ zDH#5Su028^MXEf=E(JmRgg4+ZY62(?a5@hBOCuT;RV#S+C*OgfTX^NYIsZvdMOX#ql$p#x#yXIqDSTmT3LJ{&%r{b(KMH3=o)^!iP z&&g2uWfHbrWk*w#VUn$|K-AvjhRck&>gTLVcBbD?fZQ_*0hyAB4;p#%p+)0A?n(9t zm6||s?t8FPTzTxW#THRomU4exQv+ZqA@H@bo?Nv;t-m(FPK3#^rh4KhKj&r)9zbxw z2PA0VbS$n^j~&Ga=C$=)F(RDDUm=AA2r9<@CYAw=l@eV*(O7KWzMhMq>rF|0mgs$e zlBe~`({*}{NfKacD+4$o+<^3sET6l}B7lhEq?dX+;-Vi&P&rApouVd!~KYYsqZ z;LpDa0(gc()edVTO~gFxIOkn zFQK(JtdaDcE_Tn86EqoN-&l-iqu^SeaDU_$a6!*$jT{4^$6NQz+qSkGH)#bY3wv(? zzL#q3aw~3r1~W^cC>O5>!)b4LbYI_neEzFY9Kg5sGY>O0#Kj=_4Ucc8={EM0Lz^@% zu?X2u>mLC8=dTJU1D>v*m;jRC8L%D(otielfIOWjSYNBj$03^Rx7=-Z#qEOhbeHu* zs*58<%6{oVA-)5fsMu6Hj6Awko^19T+0tW#vkuz9Lry73J#*$30y7qM!yw)fb25uU zV>z)jXI+1&a-Kd0MgoduXaaPBN;L^k=Hs81`1zEa8-}@Od z$OS*Gv=AalZxKS#tmeRI99b(-CEHIJHDkmY8PF4Ux)kt?SUqb|lm|X#*va1{*os?gyZ53qcjhEDrD3qjV$XdH(R__0UnVN2-I-@T& zTBzy$1Sn#RzCJ^kf(YWJN`Q>wqbDQ+PI`Ahh}u5ueb0?ZVzt}}>QDw!J)hd&!)udt zNf6Qj3*RjPTNF^9-3Z*t93YvtsvMxf;?DexSpl3W^&yzCq@b#Vw?YvjR?x>pQnunX zg-80t^o^^YZ2?Av8ok)W6PCbJoaY-4seG_eohSm!Zc_2&X8mY}PQMr7fIp>{F0f=E z;dEUJOVb;T5v&i^iu+>66~MV5;PjiXVK#CHPnZ;#4NEji*vWmBPAi7{b_^co=06%zlB^)$l#RrS!yIMRcMS-=gu zIkWoPhk`@)6pLIA#POk^!wtsm-xJ|H9ZA{PL!luqVi0r ? z6@Sw+<8Yb$noY`_I;Q2*#8zR`Rj2%HA>SmyM<><9sTQnspvZpCyC7{@9Sz=9&>;gS z#;5^u(T(0DJ0IG1+(|dXp4Gi?tV5ob@%3)5NEMv$+LQV{T|~D5Y+U4khBH}0&Puqp zo#hCOU%E5sro>*f>N6<~f16)5i;q@Qe44WJscS}V%9#}pTA5lV7%l_$1{@Th7?Nit zVDJP#!aDdHjxKba;-yF>^l<}`zZ*Fqn5Y=;WBx4M_zRllCb(Ow03 zE{lUmU>8#G>@;8|4hni=&e)}K-Mr8MRDyn4r)~zIo^uT3u#G=eoz=KdU&A277Q!iA z1=g{~>%U5&4YaoF;6qw^du^SHC4_#3b*tBO*TQ@iwe{B_bcO0voTCc^F5h z_y=?Kzd$tk|0wU&-&YEFlm9yzwmK;{2U^cyx2?D78=hIPPV;i8(~LscaR4Vje21{p z`TH{BnlN5RDt>iS!w;Yt0ZOpHd*}DTHV}vCPp%-QE8sAJ575Iuclp)mUnCt;x_=lX zA1|o=9?^)uD=iF{aRzq7znQ`8_Oe?MR-(20KbFz0HS|GhAF0vvHFs@-rL2Zcp&1 zx%#gf#cG};?_{$RGu>}^r%R3u*a`3h%N{+IH92T8l}7lU1SBn;j{VJ5482~*7J9Yb?*eg zHsyz|adqY+0WU>qac+yGtiavtw&p?NLVCX+pGcJ!rway&c63-)8lGp)RC_bDB$QxP zCcWO<<8Lf$IF`Sgta04;fA-Z2v@3)4LSrs;ybsL<= zhd{(HyqKA+R_l#wJqnztuA#*FjTr!l-GTlEZ2O!?_BhWp^L8ok`}rP2jP~3)NgkPZ zQRk!;zkYU1YRc@3W)H)I5>P8r&hnm(TWdehF6Ae9tBn7QXHvZ~3obQh`es=#{pgxbb ztWW7UR~!=3r#O0br!vGjt2ce9cEK@zG-w*e=0f!K_VA$jna*c>`8yr|81#J)m+xz5 z;;i+tyQF2?ldAj;NCUNoRKm*}p;opIzzj_P<52;a6xa5(&ve3fgA}j!Y`fVAzVNOX zpNc|3A8R6JcB>*-g=^MFx?Op7bXZpwr;CYxDiO=FjTmw+bg@ve|7fqgZL=?A_(1+` z=%bw_>W>ct$&@t)uJD%Z|J{-RR+OpJw`%$CZ6Y?^K9~{1((4&&%Iwn3An|sNAz)|= z53%NUnAWuD>>{6mt)*_J_ocja%wzHm^Mghp(GXCY5u;ZB^8*msD7Z6uV8%ruOX&|@m`CcgqwpBS>vaDH8D*wvh z3ZbSiq?Q~!$1{5{&MpJaGn=N=B`@9og`uALLqoXozPNTvOYb6Yvlfum+8?-HG>2Yd zJgwDFBjG-m4v@EM9&B(k4C8^ccGMoVHGZ@DwYL1@@v~(1)55Y&-nqy{@%CZ|*jyx~ zXeYrB@k)|py@5Qdt3F+I_LlbO3!VBNN;kJOuCY1;TX=V0|J~h5FZ2w*$_#m&@tJ7q zDQgD`rv;`7LtnMs306p$7oG>`{q1C;gH%zOp-=lzaU8_o zh?QtlAKc{WRTOH9IOi~u#q6sk`J959rx=b_{&l2|4ON8$0i?gQ|1*d)U_KKWvs#AJ z&XntwSemfK#M`$`FMMqG9)`&0T?IB7#R={37gnhAG<%?)=`H&1+rX=o@uy0j?Ot)N zO7oF>E*8HQJ{M0IeCGF{=jzkF}`bY6z{LS4n-l+R6bIfhf_11pA1CBvI8VMJ^;qIt|5}MOwBc3IA!nnM=J$;FLu}~G(<9;5dVE;`mLSd z;;_(#Lqst;)-trxIzwI~< zC13E{`Z~h8Wp;LC`)^(rzWdJUGaLT(`*q%nR|;U(;Q~urmU;QRnBj^^^8_^KmUZz4 zqXjIrvyCcKbH!uP!o!^_zaR|FvNP{-u^kXJd0*GX1;oDu?@^LJJ^JgcssH!h9|+&( z|FQA^51dy1r>QyrblU&*=d%B3>Hk*Jf)RiZ{~SgXmaaVKO$3}~{~;n3SHTo16U}-c z22Wj&>IJd42vF}u_&_VQ0lpn`!^JiyD zFP(rYRElf*E|u z{vq)FRYTlO4cP7?_T5jIl;OpQ&qBr?yvhvTX#K~t8Q}}gW7hC~4E^UW=*1HXIl5bc z<@b`n_$J_uJ8Fg%W#Fn6wa*SyHH_!ZvjL^x{Bvi<&{x97LXfj=$cc?^#or3>SKfW@ zS*X;JJ}CeFp*mk;^CSj1#5~ zAX01en4ClBKkE$w_uCk;eEn?54)h%$crrG7qFcK6LU+J=d-+O07cG--ov8x^U$TJk z$X{SYV8GNiZn58fQbp#hBV`%t^^pb`VR6>d4R8rU`>ehBG{I4IMk90$?pJyE&($50)oSv| z2&>3@Kh{@2bTQ%MQOCO6t94|WCfQvcCa_7XDDm8%(o_>UaZy_Y2U4_$rfZNiV1zh! zVBlCL8Co7D6t`$UTI)4crLK3H~4R3D^Ji`u=0 zPQj)A3~1R@=2hgwaUShdd>CUfD_-7eC^$yw67CEDYDjZGt=t z#1CLCaxnKu3-_kmgD%412-94XXmYcnObtl}7xQrn>K`=Pxs$^nVbJ%hBzzOda_;nc z_OjB(!uT%689TT8?cFEG-QBDfbI!Bwk&UwIyPsWyN=3b%{fy1c=ej-~NllLq?;#8& z({jhNw4*jY2@)3{tLiZunG(5L)ZGmh5L)?SJ3_K;AR#X3B zMWcAnmK$^G(Zx@PSLu`IQKxU(uW1}z4ld=?4PoEL#l5SZLHkkrevZqn(QuM{SKltn z_;PA?n^$Di6RAFv+z19WEo1Hv3<*w8?k8a25|Fy}k3Qs;ltkS{~>%n}z_Q&5M z;|`8ygCJ{NKT^k}jf9|w-8Bs(w6u7T?&0Q_cXc;Qm#JKIDkI$sSsL=t$lC_0-j;2z z3tf@Q<*?h9w_?`f5UTCYjpv@CwsW1Gmu}PoqFI7?y)EK==|3!^`6nF20Sj%bxXxB<0qHGHPDD z-qQ}pyhX6O4yrHtKbJg9B%Xo%aPgzKut}E_?*5{L?el2Tr0(8Fhx6;bChuVNh%}@; zGUn>^7ZOQ@#{fd&+$SnRobu5_E?E&_6PYj9>##1R+j%s79$xc}i}MxzrX&CVwOVgi)-NOF;+ad$PSob=}J zfaC#K{e-yj_jyc&cU;n@3|ju!POs6A(tIu_kM53dm)AJB#G8NSskVN(B`mAnUcS4% z9#Hy7Q+LFTz|?~om!kPVY_x#+hTw9@=jM{Lt`*E87j63%Hhu9V-Up9v%IDk&b`2fT z?)P8#Hx)jLRH-FHzFXA{~mz< z`077;;{RcrxR8K7KsfFKK;OD89pL|eOuBv;APT-as9T<5tRyP(I-7+Ud7o-|zs0t% ztv44@q1Zl^rrHQrSv9g7>ioS<)$Pr4(UJYU z(aSzQTx@#Layr#O0y#~N(+Rb{REPCQg^D(ipf)(Tzy$Hq$-hrJE%9em_B_w3m>4@) z@Yh^!@|}!Z9rCPu-PF zdJ3GQ11#!2xvsa~B-ONzh|ZcWf4<3+KVt38tkD?huAg&H7l#sfoa7$iz49>N-S2WJVU_B|?W982JJXFss?;_T5S<->;>faFPEs2*a8U4XKwk%I8mCo7x7i zby3j{7adq_MR~NG_eOm`$R9A%FnXlCJ5*hBL~`#qHwLpwga$g`<9y>e_#$h~jvlFv6`q8YmWB<^`3HZpT3=PZWbO1JP)E!q!;p>b{m2c$3 zb)>_h2*-#6YsIH-_w zpR?s^9{#{2vJ>5-TYDR9gzdX8=1axY+2`9HM@Lp?VJFqZBftU3%i}~h%+Xf=&en(@ z;i7oJXQMGR>1w(}^3TYe*cMxO>3<%xKmG&;jk#=pev{#-V$*jTE35(S@4m?hjK%Vx z0-T|1=(m+)Uio4Ln++w@%w0vdpS*__7O-6oW3U=Xu9k=GV_EH&zw`;32QJ~0ulc(V z&5&ko1-q4GZR7zZyG3107WssUbgx}TOwjy3-<%6wzZPQ&juN`(JMAv?x;cZC?swzs zlepGT*Q`!|y1qtO$s1N!e?COg{(GXdM3Pby8KvKZmAvdhSYaGcSpV?nZ;}YUS=$4g ztzK3fXmGg?^lHM3D!9zxvDeeiyz8=rI1HmLeStI^)GErSbx0&K{J5!O z8#(^(n1Hbi{%^aBvY{J^wDS}3@1`ieoy>TV!d>Nz0!81Zy>v%*PiML3|9eTnz+Lu= zyPdNuDgAYwGG5x@j+ahbyIH#0ySUpsJCSI&A7sbtl*H@u&MscA_O^EJq*pX`C-Lge zf3Lb)Um)Ikz}^0mHR;46&363FcH(bzoo(DbF1T8gOk6gIw^RMQxV@XD;|09cm6ZQ6 zHw-UtBVImt!PUv$$(Hnyc_SRPw5*=zld&!jPd$Z|sp-juvFGRZY`ZSAZ9nVnZQMt1-{QZ0 zfcMaW7YEMrNO7M%t+z#1CY^WN=DW(13U|MeHf`P>e>i3FUB~)*xJRSF!R;sL*oNIq zT&x$L#K%hdG)zSL3{@{JJqxW;>EF_}aceM3^1I_!*ssI9~&25rH-hXGnmcP zOW(r~67=cQr>e(Ufq`V3Hf=Kg;69Q)M74{BMcvo;R6#*O*aT7AKZfL5&!e_JxwO_-;cZ26(Ti1kZv4^qzRI{UT;(3kS8_rY}<_k+iqy> z6lS8v_4U$qw%Xd-4!DZr+9_#iZsR{rG&eW1a+@@fcHP|A9m;g#Vab12TN-|8kbNlA zDDRnl%X3d3pX4SxE#9bVE1^1@<2E_5V`Gl|CLcbnudRrC%?$XZ3NVpwOi9aS>L=^n zRWl+kv7T-vwC}=&3q^nbWGpQ$nF}*z8ywL|E&c89JDh z@1NvJlxSl(;$d(=d0}HCr|SY+!Pv$m*S7Lxn>?fJt`ToK;(7bhQ(GNITGD97JM*h- za=I>`<@Kq~>Tpy{()#*LfogSaZF#ziP2BJAoXIS2&ZYwq*CRBvZPvORw}#Z;Qq*2J zWl`L5tHzNwl=Q##;||nGAL#Pv84O}HJs>Sz`pH*ng_}gTu+A5yI^bH6dsI}EF(4p7 zF_futZlvYT-Mb&${8ObazU%9MZZS*>;QjDIwaa>A-gjqL^>B+;mJlslw)ma1O2n`*ka2%3Cwzfkj# z!+OZjX7xU`VE2Wc*J>;(T%%jbCxwH0opOzimX(!NTUGW4ZzdyavJ-B$EHKuX|I<1> zH^<1|OPg zX+4n%=q}pRmS{fP}hql*e0?DaU0wyLV7ULV*%mV7w1d8XhtS@_bq-n&Te9`(R zSXC*lMLWml49ougYF!hfqiVQgHQzMs!0P#$L04ZtKkanYum$cfjg2(6w!>9gF9QHK=#!w^Co3pqKt+qZ9Vt<5<&qUc5%(NJ8-v5cEicbzNPI6# z_`!UAd1=W7!F$sE_W?;pI=W9CIkx+bS=^j69{-Vt6LA=U@4GhNrXGKCzGT+b)%BUj zWVe{Oc$8YlBu8nn&*IyF4Sx~m?z(rEI>qqz#DI12lkpR;vjWzahYjDDZ$iNI&kWWM z>c76fUqUC#v^ZFmotyji(ev-#_$)fTbL#q16TyXppeY{p#_?>1zV+fnSJBe15Sa@{ z;sXOK{L=cz$Ln#sVxCh6;zXSvNhJr{v+&YU<{FKYm9A@hZmccd!L!yrI_lWHNu?|J?DbFe-34Sp~w5p;RI#S4J>1SZ|}AIe2?tb>rY+2 zeXOhu!gD-|ozz`Xi+S)s#@Lu8t7wMue7@6GO1=^e4UL;YLDQ}0%rCpI zMMWDMPTU%Ao2#|0t*(~Vl$O1Etk70bQPBjy1;aUS$@)0afFq0!?(V{}va-!vg)e?T zf?_~Mv9oAc7(ZP6{;I62E50FK!fkfw%#$Zie*efDm7mwpd@OtiDXS?}Et*0jxyZ}Y zlZcwX3*&tAw{5MhyF5;Ibad?9aVwa&_D^euVZKwBWa{kNVvpOzPw|qqh0Z;lW0T3w zJtcKd#3Pu#JNIyz(DfZlH!VIH!f^E0 zKuyFev(kjC<3Eo1EI2;bi2u@E>{ELpE5FA-PBxG{{Lv%*KOV)E7D;kJlz7mfGjSqO z7rV9EN9M4Y;W07QU!wSUxVb-;m2E0EZA3(Vk(8DwFmCvChj#n+?R}ljrKvcyb#bC$ z{%e1C)6&jX&-iH>Win*68jbnrCpYzC7wc{KM1)?pj8r!^3QR8|rb5o@a|#Qtu2dIcSwJy-sG zD{~Za8)@bsGNr8SrjzmapFTZ+qAGs**UiY1;9!cQM!7Pa5#f&?-)*uxa&=R#UDIYw zO-+Gn#akT|*!z8=rlo+@Bq8v=nAS^-{>xr)6YR z^7Qn)vuK-bpscQb_{0hNYxI2j<|1*1?;Q8xom?kRGF?MX`!zPEZeek#>i+&@1jDy1 zGd2neiobIs6|YSSl~q*_A(dfwEwT;7+<)(ijg8eY&;#H>IHW#(dJWIQWG4H-m$9({(tUe!iF0(%L0ZvUCVL0KD@cI$B9p_3m6jdaJ`@QRjyF z(Y6pj?b5|=pKmX;18oz$6d#L4JbwJ;XMtO)-_NctFXSw3Zo1QoimroS=%2*Lr<;{Z z;f|4FX*2a}({y}CN}k<}c&@h8ipS*0lgG|DI-u4?L`qenyKgLiIH&c2tXnW&i2s)KAsJafzQGucL& zET=plV4V{J*1d?;%g+}*mt|_bvA$NxyNslnn=1@Z38dAxGFck^j+#mMwq@1*q*jO2 z(ISh=yTBoPgXGF8Ll_I(NA{?uKE&$Wx_NU8wry&9y01A^t=WOnwcrWj8s*`PsVOVP zPL>D$yW->H?K|Fb@J8K5DZPPF3_;sm8W3>O zW8xl;d&ape{)M=6rbR_XcHdv^b1qrtw70h(>&T%%atmhjudWVfuaztfo*v6-ocWWH z_3QWV>b{C#!#oH2tdhUH@h7hw5*Odc#>VFA=0?B_I!;3^Eg2jzRDKRrWH$e$>nO%K z02K&guhGo>ls5nAO2*TtPYYi8qj&P^*zJ0o{=sOoAtYD?_i^)&B!nk%Xi+0^UWr^I zwK^pa#PB)xxUB&`7^g4=QHwM$7rCC5yJ%NKwwpNcE({HT#=X*@9n*=nktv1HHDja7!$LNZk^nBriSbH zy!ZDkGfmW2cEx)i9r7%MnU)FU(EjG&+R7pq2S*Sfrpr*>zL$FGH{_Dcf8^Syq@&| zsG&M9Ee|JdG5{vSmd*Wc3dF{=6#ICTS5%~HC2huo_s4s5UqE8k%g_&%USA?Z1pujX zxq9_;Q&aej8=Jv{+=lA<=G)AMaTb@Bmv^(VX(BZe*Z_bo1u+I*g2zb<&ejT09z0}EY?%cUsG;A8DPj5k@vRz+Y#@Z3b!qru1|4H|!$jpvCCGptk-oZfy zAnc|7Flo>JP|>e;!oIWhqDAX}M^7s$C2MiNFewx%UH{8R0-Cq|d~Y9do#A06Jv}-} zpM?|z;Sr)fYIy%GUNcaEb+&N$}47O9<}jhKA>; z|38boBF>rlMIpsJ;y3vcB2ZEdw1aHvKK>(0C4w_NHns+tg+>PGWC`bDYH@KmGr!y7 z_tzwR{DJ7&ebWA?s2KSNiWj?+v0{2J^|mKBRlm7VK?Et#hOlG%uH+`=id)njZ>_1o zn{~)!_@i5ZYuE9hLbmniUK_^(c<%$;Qs<;KH8m}o{>%(koMTzF6Obyn!;uqN7)e%6 zUY^KFs1((Mu0)E6IcE6+r2~-X5EmB(eqZSL@saLg3B-{(lIPF&mjgkSj`^=HDSaos zi7o|N0g^zuZE9-5Z9O1L+ORtAYQ0$EkyVLT_;9*Wq zi#(&t?(Qi7bf6PaK-{z}EOl9>>vxe^P#KWibF6CiNG%W05^#axsL^Qz<>kwlFHCk9 zuL9M*|L{QvbZaMzm<(tIai3AVXUm(Kc5`uYH6%)#z1s9tC;h$u+DU+clz@$OFgrRd zT<5z>=|*|H1SMtjo7;_~i{vqjO7pDM;aFU~-YbJ}l*-F}iw9zrQ~LFo{b0fpcYkw92`3O%XQ=-9^O9 z%gfW-`yn_RVCsu=SqXGbX?ncrfUV)-;qHIF-PyVSq_XJ4eUje7$x2}i)YmpHBl&sH z{{dDVvuFg|jYo;^?d#KiJ$$Xw;-HjN$!S|TZ4?kJ;G^>iS_bw^C*8RVJtl3iFQ-<< za)j-^l2GIDU^NIiuh}7Nvj5+aG}n6O1EQkQ2jy=)c=U)<(sokJ>jw@}jzuLUlZc}- zj=uPnKXgQ9Cl*%Az~fJy5C(}d)7>eQ**ckez!X34$Sb{|GqvFhXQG&dco!{w7gEV6qC22SVL)GKRfaGp4k_idNNit}Z|q`_2Cl9iAvwf^^n`p-RQ z&RV?9(%D&MNhKC%XFgkL{OaAWkhN-S^SrX4!}5Kuax`{01vuuq$%@p#*8KeZuMDzp zVC%m=l_dj6xCN@Jbf0C@M{_~C(GJkYxyhbHuP|20Y8cdkk4m0`{;P$7`=Gmv0-qbL~}8NuHKil#Or zIFZl3=GbZ?Hma9rho=`8mH4AAvkfNx`k&#X#br@L2!uhDjIT*#+1c4U_MeQz8F~Wp zM(})m2=IBOO-}aJaU=irW!sXCbsyAs!2d0PCH(+IcEU^u)2i>8=SNyI7;B>is@mG3 z|IUvRNC3A>)Ci&o;uy;GO??Mnt9>HwwgfG0dUm$IJ=^lsY~67JQ~?7a0me%CdEZG$ z0lj?IHX18rO-aDO7ENjEk>*rrg~vT6jEUPAYD^3Z3!_P_mRDkLphC7WCwumaysg;Hv5FEwy_1Q9=m`4KJkmY z*%h?_A`h{%6UQJ{!h`?Pk6Z$1V`aeqKY|Lj7r1dDfmeVS;xK*%WyeQcN1o-20#}&^=|w42@%Jwg zegfLD3;<=2ZLt-SjWq&7*uMEDKuk-D3hjLs@$xFR0OMbh0J4DQ(yLQsxIn6P?IR$~ zV89k=HLUhGWud-lX?o19%n7o}QkLGq@F{6tPHvBVun6VUFEJ zv7bJj{*mw8_}031uZZJbtPr6HB6n;MgjBT0Hv+{X=+&zu&{$$bE;03g4z6 z;%?|(>7xYuG4<@*YGG-as@(vHSdmhHcg+N3A2L@Ke&1-S1zOJ^h& zCL~q2sb1NJC*ou>5YuqlK<@4t=GZ`MQpEmV8T~#;1Qs42i1-mQ9-(nzy+2NL6?Wv> z)AH%RGG7?$Skzk%F5k5|Q(q0I8_7m4qjd&o_?b?+i;K$vNl6n2_5XSwfQfp*jZodE zeq7Ajq}->DyLkUz%zkGj^vasrS^|p_?F}6M-Me>h`Z!n{UEtEU8J!-W7IG-0-To_= zh<~9#d=tFv>Iw)63b>S1x4bz+Khpw-W(S+p6N1tKdZH|yHa9;&U~mJk{f^X=tz+{hkRhL$JOQzm=)^`KT`z z&fkcWo`j+YGEJNb1SoU>;CDL8t*C}URE$zur`Fd{_AF6h!GbkUrrlFyhg^yt*Bif; zt0dq>1u%VNxD;$WfmxtUZ+?Tc)Q}*_m-&G`q9$cG>$TF2b!HSuqkN|`#oqIKPdG$= zyS4%@P~f{P1QEHi{5Dphrlw{U%#1{^^l#tv{flvT-m;)#_=h+;z|Tyv>WVTlB&Zq+Nm>YNl(}HN?>zw<@tkKKlY*rG641Bx z<=G0zk%48`6qEbVBA~H*@8dcY;{mb*LxTp9Sl7NfqohnfgzSLBUfp+^?26L1@=sKOSBM3ypTeRM z*8)R_tf>fcjdJzAuuvDW7f#N(*UOIxW{UlKi%mfnVzqj@89^C`u{eZCM^9ggQ#U<7Pn=Oaskz|Z_gEeDa`r%xdIs#ecL%xsfHKiV z$Vqu?0V6-+kVSOM-g2B z1Z4Fpd?*t9Cx^T}%*<*KA?#XT(gPG8=2dGCLQ^t}Kj;10`i2 z6q6vt>!-X?st6j@RGr6y7Q+)0_X7h1h3^b32=Im~214XGemsJfOXF*rCL20g`$U~s z2z3UVBkb_)HmDI$*mf$aWS_+e^@LNgK%p(EYK+K3XP@26KljwkZ~iPYu9!Gyi8`Xh@aug)x6L(`H&u^2NK6Hy70J_zD-4i|G?p!@h-Gf@M=DWMiX zw?#bQg$A6?@ER-ZFjPDcLG#$l?h4WKxdF@V9eni*h>_KrZ|sP>FhN3WNE4mQfPf$~IDG;TV|^h1n$_uj6t;uW#4aTHNo=A)w= zaZYZ!ZOlKMkyY{wM;%Azf-n=LzpMo}hV{uGeBO%{o#!Op7q4n9 zc?p=6JVDU7{rSd&^;bgv%v2dcx-r=TxP08>5tDmzU-BV;gB zC;e`G6^iKq0DH4n1n?nf5w!8j1wQZfF8`z3HadU){Q3K5!Eshr)+2^*x5R4%t8=m+ zJa`>qbJWUW2(pcsSPTf6MNY>Hw9B%`0k;vU5#iz5ua`j+qD3zKn8MA2LQ)$W8!rKN zq7o7U983y#fY2f7m7y>Vdo=Z#+4(_aZ)mpc|r`vHYp3$_=^#37JUDXW9ten#xcE4)a+S5~S_N{EQO z`^g|yP+a0*D-xHga27&KBQkD^cVeppA=!cjsImW9Sl)CMA~^O+X!v8K6@Qvao^p)4WkM zhAI*$_`Gwm0$MI&et(5eT>KvSD{wrD8XQScksJ-LqUE7Du$?`z>YoW31m%r~dV?cBKRL*or?XVtG^_~#gDlT zC_`VkbN~M5j*eI?YmRj-gN22~`zxaiScz!PkUXFs6Y;v^Gx`BjqOPy05z&tWiZ%CYI*4?G&ixG8Z zReN;gAT}Lmc=z7D+$XG#GEhZup817if>cXr`bbArIE3x_&TNR>K}aqssi|lUGy3}a z5+V`Q9GyW!&WNsQx1-$LPmyNe@xYSny?Sfx-b27x+#$lkb1>>0Ddi$LCD&A1N{Y+E znBmKFSsI`%ME6N`%r@XiL=AdROMm~mjMudpOtsXXdz`E3NtUwI#C!JTgM~TBD8U)oc8%w8@&=~lp!_l$hZ4k74Iv>0=&+(-Q40B}indpPJ8zyt&KEY#UffQhO z2T0JdB6(|pmIpg@OhSSXkBMf|(4sjhaqZ=VsdsJhi<4MJM2mp5UHA7z9FI1Lsm&GU;qgx04_)oSSWGq z8y<3~z0gi3=R5bB=#WR$oJJmqIc~cXa?=Ie1|)spQT9xJJ?Jp64p{~`FC^SRI*cU{ zIk*@hv7li?a-vLUJOcw)q@Z~YZ6ETQ+@E8Gm;1?yWaB6j5fyc%@t`FQI}gtt zR7cg~8gyQP)M$6_*8cSbOc2hxDQp}1wT$blvzpBYVEl!=&UaAF%m^cb(wnMN2EaHj}P-u(;#2txQ!(9_5xOfQ< zArcd9lSCW$sk}=ZEc>$sNknl zqW*v(1S9q6@rwpCp2B4bQ3ruifNesq`-NB^eC%wG^uT`f)OJgG`NpEVDkZ~mz+ zp03V($@|(%&wwyAjf@`We!LxTlu2~hh~5u3-Q7LOTPTAzL(jt_rV4(4cCc#Uueo7c z!o4toM?&Pz6^$m9(=;!8Cyo9N#G9O(Y4JI9+b^OJTVb9N3-djIyk zShO&=^vdf=sq@2`NA`o z9+3mLKuV3kLaV(~fWX2q-gvE?o^dR@1|nk0^XI^>DT4P9P3f*i(8!>Fz#F5ZnO3|R z{*!yqH-KqTw|Nx5c61mrkr&0Qrk2;%s!^KU4hi9V*M)n52?i<#3U_7s)3M1`b3r&B zj$}HI4i5*{SRrD_&>|yxxp>&JGTD<{h$;Z;$_Z;weo(Z)+~!8;;g!|Bf}hqP}T`68y~)>&RNmZ z!v;T{y7~_24mgSUTSk6kb2t~CNOUdpBauXliQeBcROQz12|YK+rS3`3!*8W@PXIn&S~cb{iTRnw42y z+NvNuI!~5Q{)~*I12u%G2(5xq!ugb>WYg%pPVntDBV~1U-@_3yK}yNs7%)(eCzQ|- z*{96>DRLT3yfa*iDXA|f6;R>rdrH>i1p-ETdu3!~KKgZKC8JWS!w?5xLx|~3=x ztan!INs*#J!ANhA(PO^#uRAvb3J_@@Z$Z2u)saE}g7&;D(O|girbIy^xeP?f+xPGD zNALc$a*6cY{ex?4>D&Qo68G5lO!PW)pP87NBHdO?tCKxNxd+6HD!4fpf1CUoY1gh@ zA8ix;IJ-X9HL%`sNxM_Na5nmGgS?xos|A+fh-uOLZ*4GJb&GFN<`9sOPc{C$Uxe)E zmBIt3c0x+}g$8>+)VGbq%vEV>2$FL$(g_<>I2N8GsnNfiQ>lQ`QR@h{c;`#$RC_y@ zh1B*1(^{@di)^~{O%s=W9#)wy_3Wahtw1Il=_w7kLr*gauLdLYegH<}0@on0i}Cwe zh5d(n9RulYgPYHVRUbDxX5csw_r=tt+%sCG{Kk|RQ2`)?{<&W6aMQ;!r^60AU3xVy z76q7g&z?h>yR^UWDfnl1e~hL51%m<_Bv531p7!VhMk3Cs7>*n`eth=+%A;g!T_NIL53IW3yrOCU37X5uw{%*lSWy$l-B+kJt%dd>aieho z0fcDfudhs|c6+=O_An*a^P-7b+KV%9z4}kCJ@1x!}`z5?KE#^I{ z?N=K4g5^s=wMUXG$$CUBg!11KbBl^D-Z^6WAR=P+^w8W-|G=s$9xkroJFhGjQtszX zHC_;jL&KukPaw>Pi!)+7$F%m~qh3kviwBRgvYcXbE-BxTirBjGMM`ge(W{wbHzpbE zFrdKU z8@S$qT}GI6GcBx=(rfEIw$5Ot>-6H6kL=O=!ezqy@6tEZ9vky>;o9H^<~be2afG~s zHVQoz1-O3S$jpY%y7cnW(bcu0y(gVm4ZXaz?&|&vxGhOXTnkv>(*<3?XveqLCUHoy zDxuc~1_m}d7q>ss-E}vo)8{&k@4LJZY zOAut3Ye+x^xC`dMvIFCMig@f`Bb9+lX41DyyS8{j@bx0<9kMwv+MV81C}q+#?Z zYi*^6kK*Z@qyxmN%4b?MF0lKa2-t6ShE+N6^NE9enn%cZ|82TU*em^u>5UzZ8;m*! zi8oi)$65v-idm@VwekIt_&4;ToJNV=mj41Il9t#?DJKmUak?_wp4Bgm{VPpRF9_1b zB)F&lcPr~$w^crtw^Wh8KY4jzGRN0KguUg34F4_Ce}DZY(2lfCQ-D$FkcLvA`p%ty z%B|&yK_b~*H-irmA75)jMp3`9cJ#jwJSBXL;{TfkBIbf7BH&|zI=i&w35g1*rymd& z6^`+|#i(qialu2djsg}{BOREA(H99jJU){PGKNWwSuT@%I+ayb$3gA@;5I>9gk>VS z)>eS{tT5un%Kh%bTZv2qY5yyFct-CWRZvd6Hr5u8F@@5^uR}F!&$ZVTkIYTkPRseV z$ZIyOu=XV%71< z$L*UBqg}FPwWn+Go5Q?(+T_5%P1RKI-|ng{kPo0l_?u-R*IPo2nj7zohWI7@(6vh= zt)*{hXu)9SgBcnX9v&W%U&^x@(cYQr*;r>}V@u>R79tk(y(n>(X=GA$v_bJ!UaR*| z#f~){_4@Jd(s}&rW0nPD8ZjvW=)JZ(>QACVst!G~EMdn*sqw$Tv4^RO$R zTWlw+0K^PRI!sHbPh4nqf?f$(Rqq;@`4tYRzqlVZ<6YG4JfOFi!{F~h1#NUJgzme5{K zf`Wd;;LWvr_jcR}3|yY7plKR$M<*%~uR{VSgszS^7sy~LBJ?NglEp;-zjx40Ai)?| z1M}RrZQDqcN~$&uPgLLt#H>@uYCM0AWPr||hR^Ge-UqS!K$Q>Ap2?HHO2q>8(Vw#45 z-}rW`LuF4-B0>jMC{^(z$}8kKLi|xRJK>ZHle8f&PJ!AGG6J9irY{`uRQ_s`xRi zJ|Jg0e0_<&Gut6MMlRIU*QbI*ug^`M4hr;=Mnes|^zfRa91AcP>?Ya}aSIYV=rj_oWLS|@?Zw5!cCoQFN=z2XLkWXAdstF39@zlSjCG4a8ft0| zh=|CgM8^&DI|MMD^Fsdujwd;Q3V0v!jD#Z(u;)nXEX-g+-g9;(D-#lMXkb!;L|B}_ z^`S)*lOj-dEI-}ejZ&a|!3f<`T21P(F6-6}$!!B+{#4JGM~HYZp7|hD#!(Lojk;)6gqI8Gy+G=V%rH zi46X|GF+|$8U$LmWKUsG@r4uGcdCp6+kfY@MFCbo#k0)|2tC+h1Id zh@eFl^R#I<8iM=(-`a(t5OA@6_pH#DG}31AUxPd%wY)- zc4819ZOl#(y&KPk4qN0+YgS7l$8ytHY#~Y#PPk3ZG5F4qBKg*+sHh?qpfe3&d@GW7 zgVZRw$O0j+`Oh)1A1)&8;6>OzVfJASsXQbZjW!N~nEmYfCNR~$TJ{^)(gDMJID$DPWlWDF_Q>+8A@(McL*kgzH{@`qd`=T+!AtjJ;`M-3Gxo= z++fJ;cNNb-XYhnU9-4g zq%bn?4U=)|7ik&H527;xBZhL71GGq;K{iTeZ?tWTEbU?ms2E9cZ1aI_i#4n(T}57Q zuweuVEndEQm4D$0avARelw}BDur`M7$!c}TtK{v327*q(qxP)dFOOsN1Z|&aBL+ki z5_PSwv_eJbQ^8XToDuXH2YNz*7I=8l4YvMhXlbFv&{Pl~W+#Q2&fIA`e}n;)U2CuD z;Naj{3%Ohnc}y9>mM8 z*};>=@veh!QK8nwCt<--H@Do(r~pLbe?w*%4G{9F)z#5)xpHMIW&aXH@iTC(5>8}7 z#5`_O$9=i+R_CmnyZez7ek&^l5rzA8qg2m2kkw-N_{1e5tUV3>L5JT9rei+VU=Hbe z#8D?YPwfkfJpqh98kzdh?KG6<=FobkCSia3p%z2EV(8@J=f97N05QJ64E^<-4&!I% z3b`?Ei<6b|Chi$VBf=sgbkmdfS|h_6m-xmKz}&|l*C22%tkX;<98SZ{kMSLT?QZCM zY6lJBwoHRgO85#PeDqCBXjoYtM%TsTh&&z*Z8A;{j@0&9!py+WKan)COq>mvK#YGa zKcju}Z%$o%H#JtBgscjqDDD3JXJGV4ON&Z$ef=X(NZtz7M_2qK)+xLV0!Rl_8mW4bo$}c%&(r0^kKU z@DLRE*)M!qQ!x4y?VzV`u50HGcRGqh?-hR&-O?R0jv2h*U)-`KjXlc(PWGF{qc%R^74wAc^SiE*^6B)+p zY*ESZG_W@k(<7*@DOw2-)AyX>18!{k`c(#~gn*VXERl-ln$;jHh9Y))abO@D!6NW{ zR|e^Ek;t0h%$xZ5{eW{rnBcJmu!SPJ2f`-0KS0uff+YANK6ZAV7c_Ide7T^}SCum& zkGlo3CoxAtID!HEA1EKb$13@lNB22K2tCX??qUyb-(G#Byp3tT_VedMhXS@Z=+*fS zi%UHgpY|w5B9_h6hs-*eGrur5cbYe<`Rmtfdc2pi%f35`wBTo*^dikNq;tsuwTy|9tO?8#lbD3u5i zThL(Bi;N6;P$djz=e*{HDTM7yJ-BY*=$D~REF zd3m7HIBVyP-2~7%x^;^j3PnOfg7o9(&z^10={VxJa5h~}PFz@67@=YGigL9*5Bjq5 z;XQvwN4FZzdrRV;FnfP^Pfge(d$+EQH|keT?!R*73Q#=II1mUwAQke)n$`0E7Hx0+ zPA>nQ7@R{QsH7+D4yRDyjaq*e`?>gw*>MpO5ovEsz{`hRzhTVpe8G%ATzLy^M569$ z9KJ1JqsHy()vHJALj2YH*3ySp`pkc&VQUcKs{_ky-by!~pN;aF^vb#?eede3CFF<= zt7~sz~{>3TY6&sKsS zW7c4?a{sP>r*t`UdETh7dz%n*g6FS;e;4m6s2b(OnHZ47arsHE>Tr;wiNJW706 zMOW7v*BRZ@>oM;O3NC|3!5niNSQPsKRD%rJVi9)hU%*vQmI=_14$CC7Y6^&o@CT6D za``kQG?-8IioNdPf2tdNK*Q0jx|7YZxA%I^)78t&Cf99RQp_YY9w>jbx}_+|J-N@^ zAoFR{^}uKL^uO}kYYv28Yxo+OU%Z-MqkDQ_18#U7s=~|R(ozQx9weq}zkDHVZInUJ z6i(ayFZo26v6A+xi+vD#I~cLgxG<`*GvIt!>a#}*W|L{p6}K|&?@#c*88ypwEM2>* zWT>P0XL`DN*Y4GSp+x*Q z;IRK?l6n7c8Q->TQbswnyraKq87tGBdu)fy600iOidC*(^{`p{E)Tkf8UJs&X1x^4 z2d+zXb-JD4OAKSUWYHKN;%L0UTS2jSLs4?m^^z@H^FJ%{lV$E?F1YvZpugwe_m=Mr zv_$Quod;#jT`mg79g92qf+_cX0r&Rp7X#(&+fqJVoPYmbVmH%w^3(`2yDQ2mUw`z( zJ=hg6aFtRpHrpe&s;id1l*IP+&(zFiF5yGl?wr1%Z@V--^ItF%TfZDQJIg8K&90q& zX?k}0z@blJAzYUXOQga}OeDUh%L`s)&=}Hm&OCiS<9VhT-+=4+zaC)&)!oOXAIB?Z zqGWz~_VC>>z{WrVZ zy5-uvlxi=x%`MtY{HlMo=0Zt%e&6=aFs)rbAM?=Oa$#Q+p^^R>Kj7B(sUzTDJmWv% z8>;@7x5{wl$c~r?oAJ?T{fO{85nNmoZI9J(ar-qA?kAgB+10hrOdx;dka@R^;&8^w=(=#v3EPUh8YfF#)JKR?^-^?xI=W(O7sn6slg zw9=X%#G2gpu{u9S=XyWBhU7yrK^JM6XQ1Hm{Qn-}&_>kiD(T~A@=JMlbD2G2gf1vY z6qjzvJxLZ|Ruua_{CNA+_+=K8$Q^90(Y+$wPd>Qpcf2&wSnE)!Vz2q8l%_26RE*S$ z__J~{gAaesD^iDWvGaw^ygZ3>yKVcNLfebsd9P7Vn>u;-(4DgOSu(siW#7M(GjdTJ zvEe(oN$MVRQ}FNZ_}^WbWM%m#w%;7F-%c*uXLiU12MZ^}+stZODj zk@WduMQ3A{qq#0GxDVFFW}IodHa=j-H!9|{wArLzVy5z0dYxfW?3|kD<3nT{+ZJ|S z-I6!`+_Fl`aqwMHwhP(IyGAp74kO=>-Fr%6YcMOQY<=acNFBNcNr;&z zjoi5@94U0&wj~u)}D)^;8Mgz&4_}L zleLRg)QS(3IN5gwb*Lc&Nl#%@Al93OJYtlCYPxw$Y?|V$=jo*mr zCQ*uWJIdNRGJR`r7w$5%X`yR1__=Mh>X~9?okv1{axCpe*TetYpH($NnGKNjh^ifY zWm34ns84#Fos;_V{lon$jTf?V`pm}iL!&ql#MH{4|T zCBBP)yIAZpmILr79Vg3{xqRdA?h`9#Dn2d-bc%FUX{?8hI+pf$n9uqdEiYDaJbb?T zIIN>4uDSZs#xdnxufx~mrNX6IH=faxLMqE)@>Wq-w}Sac48k8B-CVLgbgNLE^ws*! zQt%<~%;~t7nAjtI#Sd<8U|UXb!E>paXU+^_)C=y?%)xj{+i~o(~~FFQdJYRiPxt8dqDa?MH85z;Dp9hx=fRj&DhPb(Z3t(JiH?Y$)*09U#t6uk6B~|_W zB%=k)o};;3s!~#V8h<3d9t>l02k~t!F)=Y_YbC2JKsB-{V^>JMifng-RiwH0=&O1}313h~FA8`R`v7+b?P z>X3jDF^Bl@;hv}I@{Ns+!|GED7S7pzo3kS`JXde*Lm=xOj1sva)h7W>9xGGcYjd z7#i{nVAKeMMRd@$ftoNa3C;27gtbttoueb&x-)l&Qr z<;#~ZUcYt{f~P=L$s(J&z3_~@$;-1QzCq&o^S55JHhq8R=G@^aM5yfg zlVbRNsI*>sn|~};%f`lr$}p~z`s=fwk83}f3w~{H#}|A&fB)V<*$4JMXm~-kb+xs$ z1J|C*HiZ?B5&{&OKg75@bYQgbZ+a|sd*DlLCf&zLyw-9sSG)C3N+S;3h^HPUII({x- zFa=u1DSV3rNGkqdZEanCqMitGSl7x|HY!~0o!DTh3aOM+QMvOqxU0l34n06!0|V~J z4b3PYSUE$A@O#)sxe_cbVK;{N3G%ZS)E&eb22>c7OH1X@2H9*VJh6SN)4EI|_`+8L0GI z7S(nvP-;*AKSZ4eT+e&^{}Yj{GLjVy$tvp@N0cPVNvM=um)albr_y|Xj9jh*~ zYuIu5a(}qgMKt#~YWDK8#0>yJB`y|p+i%{!t$^wMPLj=_ z=MH+X1Mp{!&^snW=m<2Onwpw?!uSM-&Z_E)Mf{I`JOBg&Bjl>S?YbGh#M*r~OHNe1 zQ;r)w#$1Stmz}(As&U;vV&34@<5frK=l}=6*RZfs?7Mf5Vs=`|Z2+n0 zljx9xIjil=G2)OSDz49^_E0Fq0G29DwiGYz(q+qZIp*A$jgHp;=mNS5o%fS$r83y0G{ax#hsU*j|9=5;2;o1iPS+j$;Jb6;`tKq^OSp@ zrO0*T_w}nYc++~a8pPtm19#wt{%8OG5bN`T5LH(XLP}P?i1iqNL^;G+3AzM* zP)|WipTBg;5sr=Um&Q;W2(txuyc!V^g72A9BXU{VAP!b&#|NlDp&GApOIuo6p1XWG z(fNjUpoLt?TwnhjI8ad#>~hT|YcwJTiJB4PMU%ti^3BaTPU)Zr>ojuYND$AmU%&9Y zbb>J8^PsrwF=WW~M86NIsr&zmb_4iCpT7XZ)}{F|N608>2_(-qt>#mKo|=YP4@8Pz zTv8%65a$^-4T&d2K>(85alZRzNT)IkznwPWH4a80P{!iryT`M&lv}jOg(EKclVo}4u|=_S48h)nL>`Ey(A zZkEUwG)B7hlfy)eZ$VQ>$D_CgYi|pYzr9^AeFFnM1n+>#svSEfQG8ZqZ)ro#d$;CW zwA_QpYhjLXol;HxUML6dhsQ)v}R!A=AJl zF(ll^Iw2Vv*o;E1URA}8%FXsqwOAe5$Z`yjrzmG08d@RiVT{17SFT>IgZP72hSPzy zfE-m4A;peFt;gFDdYwHy-@9(@h995BtSi(y??6Eo0y6nPgr-(AW{iVLSYL4X-;#+> zPiGTd8v7K_fSAF+nZ*c4{MVDGPsP-S)ALUXDA8L}sDr4ob?^RsJ6E0tH>{{;Ao8n8 zAR$o6?7U3{7JjXRPf0Tp=KB79Q|@pLBliJB(b>cI(komgvxf|=XUGeB<@Nw zDmXobTpKq|38jAHBYGm4*`Bt{iDT#e`}f)SUkIu7MaTW?*Dv|$;!!UuT8~g?>+iaC z--{+~^0J6b*%(}0q=>=$|3Ipq@Aj+ z6A?)gAcq|%AKr%|YzH*s2|kWE-cfM$Om6)bITTbMvuAgL>z6~F7b%`6$%n%IFTPMX z#K!jYIQN^CVDET{+k!wp`jdxnN0N)ss#PnSnKQ4smpd$5z8v$$DOwS7YOb!x_>(xf zN2m@=moM+nc_qr2%37*!~vDrd7wUI{iWN$aE;CxI?2i{wdC8C|BzIZ<#R@u|A4f4{kS`jgSL_ zv>4URkFTi#^k57A{`)CZnXHa5>zD7}KjMsdk9&qL_NcMCQTnR#)bMoS}9 zaw1jbuTaq-J0C?!&8HTr8iqF?tT8m!tcnpvbw6HnO+$c)n-!|Fkhs%DgfJu0P=!%} zXW{3ez$Q@DF4MbVV{Fx@7UmFcoF?#1jUh}-UfYMPPYvUxQ_pZwai11SfD=axE=F8S zjpVSwS|WCHN-jix-zl8ha+=WwEJ?qKh-MkrbE}r*G@{AMK_36tU)^MF@)9WXR0ik6 zA{T`28Ld5f^!!7Az4@{RpAyCvdrA&=aMwTA__IK-MMid#4bn!FU%QRe9nFnDrm>~v zrxW${Kg^%Y&%G+g58+X3oNArWAfr!`5Ci-i5;nqvl1m8@(9s<`R4A}9fXW`F&YHf& zo34$+@jE?8dq0m%7uO~(|5(`f9@z{Zzj$teEbtOuVt+;T2 zhQ;K`i!h_0$ll7)-A+|i-afr6yIPIAjPn7#PcxpY-hT#SG10>BNputB7FI551CuFJ zTL1CKAFLqdP258JC>>dB|K>>@=r6}Tkq%cmgQzLczQp5=xOQz2RaOA?7weR(e+vhN zXw!%h)6yEFzYZ(0rKJk}5K9fXMI9Le78QFcWKe-VefyUG`gP{grIy4`aGpzwA6*&s z<|+aq#eNRp@IJ<47)M#VNn0hX8UR4KzOYD2$mf&o|ERx=?oB6KuyN=@+x+thuDF^ zf@rB8ppe>bcAx*_5SI`lp+cBqGQ3s;=HQ1z2qWc+5ZDygLLIX)L_$f+q=ji}z>Izd z22QLF&!4HYM7Je3Fip%6-v3D}eF@Q^1jqZji;Y`OyTjrVeH)Z~PE_IXg&YyAb+V5o zYi8Pc8}`2Vza@T|y$@)|)BVI%#e$ael~RuW1L$lA93i~0IE0Wka5*hS=m}u(VA;^Y z^g+CS6d;_zZ80SC1W7mTiDr=UPuj7028+4(#Hf$imss~jY{dtB=pAt7VPRp^GuJ41 zIh3|eIhz~o61xCeIxcL^E1#^)CKmXe5w)FAfBOA}<2KIkT_kLgIuHef#S4 z=&^~WU3Ms?12vAsg4|CoAUt<#SQYCJ?I1AB)vO=ovm}$rY@HPn5D<*~v)Z=FOWh*z|M^1TfVORJL64y&BXb=+GexDw#H; zeyHjNO{h}1iDr$036*dsGC}DXRZm z_edcaLkXfEay|apC?lhJOAK*_5W#A{aN%o*-gC*TzA@+g<;y*L^f0;VL7dp~7OOAU z*VP0OS?E~{og&V44r=nAmAk~Vj9KXI>tj7C4R}+g86NA`Qz7K{W@CO1*$65W4P6H3v+1>a!zk;aK@fH^TR;w>T7n`UQc_)pxfU9EUf{T*-KxFOPAa5So$r>G2* zIERp=sOGsG5OoN`smG3|?%ti}Udfi4YcvrU=Ebe`9v->5xnqHVAYClNtSPgsE~ZMm z#>u9z;KYpCvk$v2U;UfbcGZv1(-3u7pKnj3^!1oir?f*Rp&_QT9n)vOcF<#L?EbN8 zELGsqkc|NDx0b8}o9N&afPo3QgZsmRp-lhSTEp+;CYn==DhHTG`)*cB>D@#JwI>$% zgG!f^_Rw~_FU3(L$!{UX(=Vo)dTcu5b?V$XizPuo8ZZym^XD79IU5(}9T1zcY$%>D zA5Jia2hdfm{QN>o^7DY50o`dg)H-+WQ+$j%^xvlZ z+78e}&c_z|V1hZ{JNS7+lmIL&0_y`5(;_4!JUj`j&5+Lg7m*!u2}sumgrncLZ^C~@ zUP=4ndXtWn6zk&5m|%XN1g#uejc|*uPANUBpr<2u#f6I(qbSO0Qff9$x^{uT7II%=ew%xFpJ#Sb4c%7 zNU>mvW}XXX1zZ31*JK(Db{8kDWQ%ZTVuKwUX1$Wl&Fw#i0){4qy&3=ZR(0sR_wOxW zNu)EP6Xow*nHOd1h^6pAEdPUXIu_HL+$6v|TPR%!E7^OCZ^l(AuoxM3 zsG@NhZlS#bAHlR5%G%(1ZSj1Ap2`KgQH*;3 zetqIwx_$V&BEc;|PbJ~v+&O*X&K>|Y==bm6!6~^B$09Uip8PSm1#;k~t-C&=8`?TK zO2Q5>Th+gL+;g%sEx&9>!c+`d;_fXeUFOv#rCIyw z_t}`@p|ogx$WqfqIGkxQRJKHUHFR;{OEC z<1}FzaB!f^mFYG-Aqin*6HkEe1#a+}>=o%r&N18vRIwSC0*5`t1ZU8aB}-1m#vYfi zMvn4QdRFp`2n0MDbkf%Y>$p1mBEvOE;lmuRbfJ-VCSU?IH zL!aMX?tb`#cDo80$ec8v`)6Ut^6wAs^bXb6=fuI0Ja3~L%{GR8s zOHy3t&Yie^y-a!H_{QWqk$MuX>ltE%DSGG|a3F!)Dc9(+<$7N-0LE>;(T${5M9k9H zW4QuI+3xSJ+I1`Sw$&l4nyJ|*1~+P}Ry{S(E>B6H4%jLgjPeO58WWB~iOj13K_j<(oJ>P^N7sj!&p4Qgp!O{E*V}93?iHU9!5iY9$ox zIC3YDsCIN3FP#MpJjH(~bO(O~bH(@v3cc3AwJ4h@4)5>VNGU7V8fRs}7`$Ox{}~Su zSi?ABplJb4L~+SCxf%WpW1yip*f)ivf$t0^abecsr{L%nm`U;^ZBx z5gSNWhQ#EP)y9Xjo;7PcIin!-(s%N5LtcM5cj;2zRPWzJ-R=M$`yKs+`;)J0*19pj8{}*%Ud>mM7`keuM7~njqVT- zLh?FE$@?dUK4Z|JwzS(2K$3_H9z*BejBE(-h(w^PNf?%RIC9Pd3Db+{Cg1r5qV({g zdDE5}n_^-{2@Jv|j*NWr`}7yf8aCpIgZE^ZLlatX`4WJ>T)yLJa`4=vZN_b8n8(|j zFYATd2_FZ4E=3#HqP$E#1+oGR&=Mdopcw_R1mcOTg8fc+(p*KQ?aX(~CqkQQ&shsH z*O{h)J&I$WJ|d(WbVl>#ch>)^oX@`n#)fMU2Vx47F?QPY$tO;TBjI{k1%dNBiNB;& zM(rWbo_HI|K5T{EIVQkac@g76UzQ1e-k}5Sy%WEU+Y?PW*$;iqL)BzM-&`I5qcqj1 zya`vS&NNs>2HAThs6^<*Mbz=9+LApg~V7 zi4HuSeSv`tmLRdr(l-8TWF#~1RzVhpjK(5`NEvu;Ft8^ZLZ({yjy_ABK9)U9D=Tjs ztp=B=XpE_!I62TvK)*>w88r^8N#D?LG1xrcnO!NMDIbpuxB^pUZhrpOv}F>3$k8lI z=H(JIgM;5emZt++bM5mm%gS8i6Rf_gEa&6_jFIUAe4x;GMe}scahYjrfwB;q7r$UEftm8&>BVS<+qG}+OSA_= zZ(`=};Ta22O1J-sM@Qu*F>ecQ#?n08cVZNhyxmFkPv|uGtAn8jDSuf^;E(vu2omq0 z=R!~k^qV7xucYR(LfLkt%jF`W5L|}`Cx8M5IEWg$07(a;Pn$4h3IzQjP*MRhg<1m6 z;)v!wzvL_YV;Od}*_HJTND4x^XOS=fd~WS<13d`v4u$F2OP6-Ce_rA;WJ^m@EQpeP zh&9FU15vNcEVIu8SLaaf-M4Qj*BaXuTWr5ck9Kt%d4MB~Jel#7g=`=P(59{<-F5riRTufxKvuf$Yw}V14g-mECauHro zu`*3*>x>_~DZ$WLUFXi9Um(@>wrv%FJ*zoZFmN?2HS~(xmNm5XCjUp>l?JxH7p@0r zz&S^}_XqEbT|4hGe?RXI5PJN#-<8ssaN)C}%>ntuMCRRbosV`y47VqXuL?ii?5I^? z_OHsvpN8?~bI`_8YDhqNyGei6FR`HxJ$`&Qmn3z3ZS`|+xd0nhM0f>K{JB^N(ZPqNU_}OZLx#FTL+Dz8#38zDcCP_{KPvRam zMwvr(fPkc|&E?w0KGAbG0i76GP1@ElgskrDZIDM_`p?v@590Ds{R(e2`Xo3_T=l3U ze~o_k_U#}rSZe(8;H=ztssN>sLLeu`oxA6q2#biA<{DWGYg{+pGreBfzpsLJ!zlUx z|NEyQ)aa4QrrXVJsU!dUC(m1Xr2^I3|Nf~k_8qREst%h(jd$Qm_3HvErb-nG zFM+@&dt)J60`0-+kdT~N`8SyHr8TK0&c`XMqViR7-@11)bqI4-!`uM9e}8C&-rwfQAl^qda`_I4?S{9KTzy)@G*Ubln48}{kb)-w_>pG}|rR+_X$ zl3_`!aZ7oMxIig$eHQ}W*x1-ycfW}qA%56e8Wyte6^;ze?$EL0t-Uk;eWZDD-Cinf z^MBM>g5&|+m0PzqCy$KA9l9SO6omDBVioq&IZ2o%M3@;+3J(Vq4kt9t!y*WIY!?cy z^zGu~5}Psg1N{-k7fG*$r;|BG(gM(liFu4;xcqlfIA`4hpcr>d;4&>l%t-W&C~<^K zj8F24jDBA5=qmWM-l$RCV5j@^>Er9J$Z`1zgqunQuf^8TP#w0Ds0(PL$gAf)JXcD6H;q~8T|;?NUYwuzm>vVDqonla1cVEh zQ4WGAQfZaLQt*=!fTW?zwx|}5?Xw?0)>euY-U8>E%I5i0tmEk=0Y7Ds5=f#}=S7q{ zRCq$}1555ZetZgt2gh_CMrnEC!VECiP3|TV0nVVQ!8wn6>0Va-uVLy2^B%REY7`I8 zD6KQMu5^Hi!x|~qmw}s4WzZ!#$-*^CvRbd>?mm=IlyO`4{^F*~K2^ zqDP2?kVHIWaSe5)fMC#qHPJV^{3mJ73U1cCiQW-~?fynRxcHe)!TegbzT%PEE>H7U z(ftrlj)Gx|1>s@OgF0=I}HsB&U%&~ zMa?UwD98@d>Z3hmoDtSxAQS@C=3Jh+w=YBepf^}y5+MyogxGT+s2L{cMg)l7r&woc zfR?k=x#~rN#W||MtQpC&yiLR}-Vd($Ni^eTKDVShhGqH z<~IvcWdDG83?!ofQ5B`&eRBQw%(>juo>t4~_vcXA(!5B@TKk&tmrJN-rO2R0nub0Q zvd)iK9IydkY`%Aso*nNoI2Iipx3!RMY$H(~{Qmu0eUSX5|BTS0Y-8_e;geNvZj1ng zz&b`n(ku9Jm{O@s;u}HG01CqONel<~0#Kf+x3~9(%5O460zpbIf|*&XIkQpOfoD)A zu|A04A9wb3IXU8OJ9pjzh6oV{^uztYFKwNqPfU$3NR^5S~=5Ly?|0ruo`(2Da{t`xX<*96;}zcQNMS|+bj zXtJx2Iy3al@X%F0^U-6+sK<1Wj!SpRlBJ0n$MwKskyQX@0XQclIkGz840#r;wDpAV zL!@azEx;NA$ilU9E%GMumuCKyRLnJ zQkTO!za6{px{~d7_~n;fAN%(~D52<;Q1%S?`9Xt;ZZ^*x_dh{?iOS5fS@%9PSO zcXgj1Ej(KDPvQD+tDkNB<^hi=@=4Ss4V!!$DK=47?QyRm4s-0ixQrHi)6BEtM^!tQ z>$dJ1vq{_b*$c0~s$K_tKd0ZXS=gr&S*1UH(i>}QDR0eQwfV7%mP%GuL+j2@6;zcy z7b#UO%>7mMyQF)GcHPCS2IF{2C0kqncSVaRKD|5|8k*3HngvC+YG`@(_4bSvL~vv_ z*KhdWC+NO2YiOe~_c48(KKM@ayz0<5Aaj1=>ggwRZO+>l9-n7btCDZh!$kXF&YC;- zzUU4$*iqBH^vRiwUN4GvHq4tnY_^t#O52F3ooctI-d z+F>*PxaX~U%kT4N*WxK1o9@bdm$WORuR`&ZJgs=&txD6UPj4s<*01j<96PDz4RO|P zxs5XIw$PSv_QstU@ZX0t+0-yFZgS9|*&2W927G>``qs0&@uxi7hr2Z&`1QS+{kGG+ z{Q5V+MKF&8O>)dRS38KRe$z}0X9ridDoU(KGb}qeFu{M%G_?*LAHS%n*_#@zV;cCP*NKG3c^$_O zEY38TKMv-rxFvT7as+J(=C6dRq5e{^882+ffr=p4r&qv~~00^M2ep zJ2*k}k=~yMih*Wk(Nn%CLr9wj|LU*0-7Nd(AbX3c+gcXwGP3;^ys1f5Wsjh%>#~+k z`Agp+Cpp4*{MOBhjof+-I`7*i)9d(#nC&h@yZ(e0%HW0hwOAwbG8wF3)Tcn>{&jLB9=!Bdqs1 zxEH0q{Fpj)*RRV#)m0fQEfP=7jc(qkzEoAYY=>_@yNInp#vQI!Wt98+Hfubf@>t=^ zue*|uMr(THrUf=E0&17BKcevBKkI5&;O$2a0ovOz$S^ts7yOb{Dfz2H-W4@^k1DbI z!$0!rKnQRyiR+K>{DrP&BayvOp*qnqH{4uRe@pbC#0!WtMRA*h2$XTMoo{LeiDxktuA)$WLzziH{;G!=y;ez1x40m?vy-EY{I@vXt$nlcQs(WBb8j>~Xmj7r zxXLFlNu{P#33 zOf&wORPsxEzyIT}|BSJ5)EL&M=+G_aE=6za?)|(r=dIVeO?}68aJ)I`e$mfCC3R~* z581HSpL45+YL#0%T?Z2d(?)K70rpWXqZ8Ks`Jw2iL&SUk?J9-m12;C`H(}aVrPsX& z?|+kLJIU$9o;9qYv}HP420jDZR3?=C>JjMw_)g!(vn^ch70XJ^belx&%)fYZRqc-s z>d(D4clbWve0tWsOHp?93qB@upU5m8(WoI;q9AX4uf&a0u5r~z*E-;|_a&pJU!%i{ zYw#%RUB$gh)kA|V{dld4UsA3NEMVfcOa+JbyzN%fnSW<;9uNa@>~{Z5yF9a|m+G$E z7+|dJ*W9A--pchD+K-UbkxyXY9r?>%BmQ=FF53{}ZggDlN>b;>VX1H5{!YJF^z(O7 ztJv+&{|=9N2)(;2)mh22nV&Jv8VV{%nX+3MB|m?-8&S5zRk(W?HNJP^V7xtJV}=Eu zkLcgIA>+`&M2DsO#*ZC4HpqkEXrSi$=EN_rcy(aPStdbuK04*Boq2Fd!E+thBB%@W zJRnCQv9X#I_UR=Lop1cEiC=MRFk^RUJhq^!K}APhbFZ-OOW{IB5LVTEar2s>>6frF zsg6>QQVu97-(}&g^b~|Jl6VJKTR(cqC72$j)A;caQ9^wwwcBN$dm?+tf%NxoyBb{X zep?kKF)hGh4;d%)UvT(0{}a=2zl_h4;RL|-zmtN^LznI|Cz%Jm1VAWC2MDkRjiq-p z-CY)5jY)s{y6C6qkdPb`aC?uqIHJ~@EqOJo;oM&_^Ggk%bn9WVNx^%FSB92-@Ui$d zj)PB^{&ncG+lIA|?d!jm6gO-b_I%QYeGjUZY#a5*mepqs#vZD8R+F*9S7k(-)?atO zT$Y<3XXNv8Sy)y^$%s{b+8lhk%SJo?%bL}n&i?(z=0f$Vv8}sBJK7JJ?P*x-Z5gEN}HURJ+Z&K{oY?Y@WUMKz-+hZ z-iC(40HcqeK5JGI;JEa5Ij#dFMNC_J?_)=id4Vj-VutsJ^>iYBi#iUV%M`V&~g2=D0c$;qC zWR{E`qZ<-92}#Nw1$Z^@i9Q-2ukys(1 zVsxOIV4^tDU=!}=maD3(Bdd`yp4nsqpG7ZD(G5@qR$j=b6RuValcYYG^vK@c>v%TZ z5A7WAwG5vX2m*mIXbnBhdq#OP$cZ5A?`Mtcw$oZwBoBTrGhSC{mz`yr^&ZT@g~MDK`fiIHsR(O!z_c+u@KQPpr9PU=rQjHB{DGqvRn9m*1=TtCb#jCNPZz? z0AgX~2-`_KAvvJw(N+K^^yu9#zy^0zRu{t}&3AiA>r+Qo*Ph z83iL_W_h=03?AgTmWeH9$xCfk8&-v$FsdX=M({0)-9{p1<*Kjw-cpql$hdRdw-Q}- zo%Z*dO^h9<*Wq>CtnoW6FLoNXwxvtVpd*F741XsP{hBc0#Qbhwjvjt^JI*Wl$Ltdo zg}ot{hZ7V zrNQGi5uy+ik0Z^psJ9_YXw)A-R>@j`?w9R?@OK~XvD)hIhlea}+s3F&0dev7zU4@g zlQcbc($WtGLh0JN8L4^>=yLJeuEwrRf~zGQwwx=_(dFUyX`+Mapd;}MNZb^{b(!o2 zw*~I$O4?}zX3v>SqnI(HgM1`TEf(7gyEuRo@uwW$@U^!Lu14J;BW@-BH1wq^L5(<~hT{Rm6FGHTxKc?K{nb8% zGofdvbfoybR`0TwU|UTI@q0RdpA?gJT-imL-VxJIwkqu(vHiU=T}-c`JCL zs<&j26u7&)@iX8RTbyw+UW;|dBNBH9kDa*0%JKJCFh)JQ#m-8OpFv2J zVHE_STtJAT8N;R{RvO{*WR0S@JT4hHXQuUwSHA|7sHPx3zq(on>BCB zxXGh>r{oUb?|m$E@s$A^GiSZ;+FCW>P|UJ+9k2ZJsmy)gq085o2S0gmYv!tgkALia z+QZ^uPJ;2uhSjADZhn|xIoZA;qJ{pJEr!vB3efNJ}>wNsgujV(7G~E~EFv6`s#VuIJRpV!+ zX%B_-8mIReZ0;>WD zbL~;6@WVm+V64T@$n?V3b~CYlBKRGCY>Jt-8Y3~l?GU{0uo%sbm{9x65gv6uu}_)^W& zF~A8SK1YJg92Fi5_Dk6$kmmz286jIt#x=p`9i!V8X^m@iMtwO$lB58Ii2*aT(kJDY ziNq68r4xCGslvNq%X6cpbiAnkck_5VckT>@Uw&)jvSt0)Lqbk*Pw>#e|iT6Ox$jea$Ahpf;xq+bMe2konY0DV}_bs+&g?A^n=nT85 z6kXI$h}xNsfv${enpY`UH#J3Z+*IARXj3^#DPmquu6y!}f|c zJ@&g6{8)4%c$ZxMRzyxGSg^(I%3?&$JIKf7PY3|+P#dURUDaZv9W9h_&*yYp@CB6VfY z>J3JoH=UzPPez)xTo6C+ao3s>Q8o`3jRRf zE3-C`89`A>=DEmq;ReUy^2?44my^{rWG}IUnDmhV3O#`?`TPAAhNynkwwu|YydR*! zZdCHzF(Y);wM2*V^k{-zsL8f7iJx&64;w=`OcazRO=nxKW*;?+uIYxG3n-I zbo!ALa3nU<&@5srBQown5>1NJ_wGxUUk^KI83y;v9D>?L5C0P+ky%iI#R^yPR46Sj zO?HI1fR9dD+%Bw=aEwC!RJsx7+B81+G?AWI3J6ja?*9IIQ8o*=8ojE?%9RmWR~p>- zwloUGAESc!HyKuyEOti>ew;Dfr*d7wyzvi(u7LGi!`10o^$$6s3SAZkBrd-5e#z=@ zYyOl}6?$nWig?r-xcy9*EYaugT1<^lAK9Gqk^h;!B{ezYS37V)k0s`h-$#gZ?a-Rm zexciAs$s75fhV}XxN}=vOx=*A;f(7;e0ZQur~#0Yss*@gRH6O?S&(_>nAY}^h>~7% z1}>Pu0o?2>ZUsY;h>(z8k-uxM+jiRY=?Q!>5r0VYNJ%HwT(s*5xrz&$h{+^HX20FzXZb({AB|%#*=SZdl|^zqe@L+$Se(^J@Om{uQ>g zrHb45%PYXCZ)UM=Bg=f-h^n{N5Y8mpLF0nF@;$hfte9LErjBYQW=SS6jeCH?kB3UT;y_a z8Uvi)=u6T!HITH^5N;?Ywc4xHUA)e@4)L$VY#JIFm$BmU4LtHYuA`e@*XOuZ)5HUASbb^R2 zS2BNH8evj^rM^NAOp7a#5`1M;{HRPd%hFCJJ$N8Gskm2biD!}7YEXKJC@)>Qq<1rw zuFtc+y6|q*rvM6v7wDzqDo;~hze4JTgGYS3s3W7l-3j0jqL=-g853952{NRkXAiHy0*yjGti3|?wdt}GGB%WuVC7YcdDktQ{1iqqI0sxOeI zDDXgp2&O88+Z4qbs!CoVzngnK1uwFQt@-^l7OZR$Hdyu9*kS}75x1^fkiuNT07Gs& zVvVDj0dx~yl#>WAci@pDPsr$aNGBm4DpTBtY*nf-N-Fwr5!licc+c&nrzhrLHZT{1 zSZLYJ5Z)T7R9RgzR29JE1>8OxP$8=cB4QMiV;C&Z?awvnxOs}ivZ$dKlY#8A#ktsV zTZr!j905LdJ0c1kl&q^U1_xiGv)A;lUD?oR9rzX-Q%yEt@8S_c|u7LrYCqd;Mw|(}%H*#j}$5Yt{p-k{>H*M5gr~c=l zn+X$a=IM4hILW-9dij&&sZo19zMKfIqwYRo{&)7SVJC973_D(*bwKx?w?9ZL-Q}+N z;f1JimtEUeSNibFnpGG@P}HCjm6!x9;y>5*HRL#fTdC?lH725LSNcR;sIH#4HmOOf7tsCN>{4Vn&VN7dfB)7nuVWog@-ezpwQ+BxDB&PN|B4{=%bMSfyVj}8HHeg(qIg}c z(*TXy*e5P$Ifuk21Ue>hArz){0be>x@)_3$V&O(IwH4p$MBtkGFi-f75UZ+Sox^uB zR!q_hGFG{k>fCeS!17`F<=$IpvcVF)39{;9;!*L^f1yCYqD*>6>UB83gx=Hw1*g*_FQj{j(Nr@ z>E9}@m5uLT9^zoLO08x`vZvS0&7;q&^qXQBu-iGxYWZ24($mX}jlG>_op`nIYSe^X zd+T4XiQBfn*ILhwH#h4fI^DDz_}XBmx$TQ%&yOdyDDD30YWSl`epNl%@3U(-_TDvi z^R=cOFQ4*?x$A8>Br@mj=3*PAVLzs*cTK%E>iMH9f9p+|VLNc-T~9aj=kb5*xpnyM zs1jIr)8*YwPn}**m#=YlD~gU7@!Y~|SDoFj`0m@YJ}K#6ZOqDZ5x7UZ2sn80U^J?l z*UNdx5xpX$Pc&5G)oomBS0Ly^{1H}0$T%K9k^QNzbChFQs(TZQGL2B^f-SzZnAQC@wxmt$6Ss^#hi@1Q@&y2_-C7w&UmfbExn}0DtiJ|Xom(j%P-)lW)Vw2UIq~*? z&vA-Lo4onqv$vi)yAnTNT5;*wneOv;JF7oK?P%Jo%d;-}uSW#ezP0~;GVZbge>M2& z!K~<-KkmldY8_NJGYa}%b=a+j^jxJ~X>|cPE|ZLl+9<>%?#j98c|(2J!(eZZnAm#f z5YjtYv zpi+OsxMQ;>C4UHgm{W0TXjFCa&g1p{w?y@tk>e7&VdCqR_N&*wobz#6+_Jp0mRTMj zzx+BiFyq&}+IEWv%n3+0{?)nq+o{0!1DY@NFyGtNz^V8^XG@pey+Si`yRS>H*tINn ziT#qldj_hgoe8eXH>~WKxAu0-o4FtJ+8-J*yTBvMcBySQ>;KaN9M$|`9338C5dU>q zpQ=-#b28IrC53hFvQo?8cxmU|nFS#>rFm&ra@_B_e!jCcVz!#^6SJLJ)*F)|Pv7|1 zxpKZ?{kn0v8m0SB+1uYSoVmTGz}DExvA`-K@x+z-#iiRD+`Q~=b)ri(#%ra_@h)}Q zCPd_ANGwJDWu-6iV}dh^uN6v_E>Ot?loT*b7lQyetYlcQQUymnZzGpH0w<|vNZgXC z_e=r4U%JN=3dECPH8LuKrk{RZLhg~av9u*=1r$K+lmG`}kY*A=l3^wA2G0>3;@`fP_gOb>_Va4bMtE2^^E*nl(22}|qiYOK3_?~lF<`a_?(qq46MA|Y5 z6`>d6R+Q$9wnu&_mm$*p!@yROql3!xeaWwpid#!iB2YCL)?MPeP|q6%cn-TRr8- zkmd)UZnf>F$4qlfbTTEH0l6R}5*H!ChDM|j@(BVF@zGUEwLrj459}$V)5G1NP@t5N ziA|JAB_}?{&>V|l82K9=966;HsQYqrU(*LZI&=OU zci44%lYZ-a>^?SYvgg_>jl!%$LoeL6xx@v7@u@6&iPPzdlyE zzjoNNXM<1fRqlOZovQkpzcVgoesU@p-Kx)B`|6cous7`5G|EMh= zd-zVYdU!^{(i>aU1KZv#>~eVZ)#I7HSMB(E?5?rykv!Mt;U$;G^;EZ7@UzU>utU-c z+X>SqDDQ8+e&MYnQ&N0h%+1(Ya>b!=M!V_`LszLJxBt7F&ASn0k9?D344Xbq=}@g? z>^zWkhGnkTzU4Ued!8Ec{lfM&`!&o=)m!aZl+;0|i=l?a%n3`bdMF>rypVPF?9aRd zb5tk#PAWeC$tvQokMqc;w+@DMvYc{Y?!e9&#VZU7rutr3i`w@w*F2Dm>-(q}-gq@tRtAg`rKW8Ylflgo1d{O0%BB&V7Ct zE}?J9!NX9$j>BguCjxY+If{$M-SMy%)o1U(3H^zmv4F}$;;1-FWLy?eC`4oIGEV>( zih}W=<`|Djz^!Bso~kXDVV{uOEucT;a8V@J>qJBCVo)O=D}}$>ZFzsh#mwcq{VMk* zCvw)1risOdg9fkO>(g%0%mamA zmDNqsn~aFD&NGUOI`a0V_59==CugnBGDr{WJn~5ot?(Z^?5A#aSsNE+Y3guDBg)3) zyKD2XIlZ_}thIGN2A%0~_Fmp<+ur4)nzg%?+QW6jxf>qJE!qw`y?Eqr4nVVk5Y>z8F&7m zeFMfOJdLErHvAA>+)TyA%gFQK%x;4H|0E0>*;35`G(adZL6ba(&0;pPd1#b2Sm}g+ zgdQBgz&g6d@eU5Byp_6pUQB?!ySHrU^!f9jL5P{07`;(2CGl(ErQ-e>ju$x?{B{AP}pGjaEK&QkX%5-0d5@z&?*j~Oer~q-V+zZ*R!!<^27y`^VOh)CP z)xf?gT({t;{8gC-N63pfZ~3d@RzN0j8~BC+X$}a0xF{g8;;q1)j?nZdRhT4n3sVW{@rVJ4nDXSf z;97Zwl>oQQw>B4MfMkNyNL7!KTW}7B`|TzB7f#b1xad7uO~jhA6r`k!`zY%H*h}n2 zT(ORW4tpnW#HxxvY%hQ=Rvt}ZU%?d>_HXE@HAw4JdRNPq&uvy+`CvZ(a<~2S9_>?G zdHdu1n|al4&*c^vuakRz$ZhvU=g?`u2PveO=QlZ_^IHpPrcUMdjO5Wv4GIyS2&e@X%vR zs9L7FQeDLEkRK^FpVqji9d$W~XMbGZ85rSd*0pm$a9GlsAIm%Jv{A4-{_FI6~KV`{8wYZ&lWrU*Gw%+t{UDdM%uOJh0TDQ+55d?LFHheUIO( z;dR^jlx>k?c|!T!!98|_8*1FPSsFIAOV5MO%kJKe**3Vt%;V2@XB)=Ycy5e0nRNBg z);14c_R4?zUBLNQ*A`7=t!ztmUPN6gVVI-=38hMPgSpO$eJ08yWFjYkpugX1+y?mB z0$!=RSCtmUs<7r{WPgY4ojzyISMONvo~bit?2k)+Sh)yxoL%Ht{wYzw1FQ{-qk~T2 zkl9BoDL?AuyCT6{XWw?!0{i|qMT^3TOzTnpX4(vzDt%rPpRAhP+R)?5;j6<(8NJf_ zXY#?F#dn=gdk5I}o6@G|pS^CF593WMB{*1FC@p(DxZ+n!x$}?%E+{g?V*jfBvvgIW_tEKZ|-@|9Grl;kUPz+ip!8v~q5%QEj(a?Ace5 zxp~8t3ndSl1lSHYQoq$Pw)XsHPHdyhfjh?~sNL)z@$drULgr+ZO# z#2cTK`~{EeR`S~IlV<1~%iSW2h5Dy1TK!x4%<^%j=LSc=_eg!f-SF+H)$d;C?Cb_u zomqFy-NvZ$#!PG5(v#0V6+BEi)@oPcOlNgz3Ao2UA&yLpRS&~?pMRy=93hF&vx-}k9$^35S$mR7^Ts#bmK}K?-Ug{WtWmN z-=K*i7m{iG@s#A`AHhyI%B<(ic|t_tIN(4`j@$A>DAfsi6o$3LO<1tFt{j#!zYAp~(-4&~^kn^bkXuf^ ziaCIFYrh1SS%wFns;O*+Hmh0J2?<{9Dn*P@VVz9a#TB1Cm zQCQCrRsAWzP<6Yf+gbEcl=9nXxqMBv+@iZt4#D0+xe-Bvk@iCfl!-||GIw~{9*#bMeqe4TPB zN>VmPKfW$dE4bo+{O!B^Rn?OZP(@%oRS^Fa`xCo04;w*sIi41J9R;i2W<%ZwuShBF zJLI*NfxrG%{~!9D;;pqJEY*}cH?usy*I;|>z;!N9?RRHgRn`8UR@Q8y@AcgWrd?QD zQ8KP^^$j;&)2x{>^R!Pdyxa0d+Af=ZC#UXE+-hdw?AxSrd7@qTy0+o%r=MF{mYJ>b zA@Pa-v>i*-`dj>&~P!#Psi=tTZ|?bfT%Mb>ODA)2x3CZL_%V@|}01 z<{Z=PJOG^{oS>5 zMowRM{^jhC=kiQjy0wW3?(3d=++tGesqG?rD+F3?`cV+oB+SO&qKAo=+VB0>cBlC0 zU#RTg&wVpT?$G%IPDZ-#o!Eq%?4_Q$x&I`8O9KF-ea9}CXtzJPFW}t3-^FnOLs~y{ zn;!8ae)#;a9pZzsYy#&xz*WloMj- zmvk6T<;Jn=0+Vu=Ru~M@Xo-5z`%N+Bfs6!@gdc(|hY!~{Jjs0Q*ex8&iwBa52nGms z&ve(x$$2Z<+|@n!l!#-Ke(EScA5lo+&SFC{vHMM4ryVNlYN72T%6&Fpa#Tt?uQEiv z_R3b4zITTW@4Q*{LsCuNE-U{Rwp^128^ZKem3xeuvm^CO zV#&|8x=kY!p5D)ic;M$hq4h!44xUBHn=|tBZO`xj*tSIr?@MP-XU4}DseA3V>T&Pu z59^aR2UCXM`nId0!EM~~UW4asv(@i0az>7Ecb$V(eLDB+psl8&+_ptTw9&^GBkH23 zlzeg={&D`5)DafSYST}z9N=NqzVRHt46Oujoz2Z51LD+R!)^NkY9L@`PJ;tn6{5FD z4EvIR$n(#-(%G~7N%B2}bS5uQ;1nQuUWXb!d7xa$F#sf?A_M>uB_$DUE$^Fk0_CkYm^bI9y6U{0(ZH zk}|X#2B7Boz}p!sfS1l+xKNSqS@d&*Xk#GOu>n#~wz-u)8LXM~kD$k9969unVjHfH zYy%yLz&~zsY^rlU&O{1o3Dv&poZ2UD)Cvj%Jf;QDz3T@%MRo$UO?Cd6{`%|B4N^wa zlIr*A6~hiB<$yp@zA@qzGL$6m8)+KTLV)@k z94C=}I6#A%n6)l?GKe_Ncl2|9;$=jCu=ZMdiQGa^AA=FR&NCo@wo`OQrsF)x_C|aI zI40C7GMQq;1e|-TD)J^YG%1C47mXy^0hqepFob0Iz#B1huO*Xy$a{Ao4N5*Pm4?toF4Ze-)oPpBYZTmR^N=r45h9Y}almJFT@X@7s zMI|~6q!r^(E_RE~YMpLBKvd*heDqfmP)vM>df2Ou!>_r_8PGh$Vg85tV`I`vhBd6e zK2~4-px?IOn_oxIUD?PvC}4TDd7myvm)&u+|CPODnSr740ozC65z`mBe){2_X6IP2 z^?09R<*Ro*hd$^W8T{E^P0_w?YOB1|_ajziDBkKlJY`1PkER;$`X8mi^;JA!-FS5H zqR@=7Mf$x*h99yDp4V@5L3%5WvaT@;LTm~h*I(J)x_nIS`HlJ$_Y|EQ7CmA^f{#tV zdpQ*j>(;Nl6XP|~Gc+N0)*brl3#|;SZQANp?#|9__ouVVhfa1ES6?llHuGCKct!Z0Y=M z!i>F|y+TjLPYBlNeYVe~dDBM@w_6S@y?6SOQ>LYP4mXaq-`^zW_0uZN9LKOn1K%5+ zzMy+|mBnC_JsKq07S>IWOl5APWC_)T8dDY-RF1+B>%p%--i zaqCbk{nK~ud^mAt;4u;d=xKpVCA5v{tVfK-DztIxljdbT{(_~c+XWw;p6Ukgez!jM zb@_^Z!;&m>*S9~GI@#vxA&oHqKhFLH46AibG}~!CDcZJEk@u_V8QGscx9Zz?Zl9>| z8~gU`cK#BqKIx)#jOEb{(PQv^(o|m{o8$&95md_7Y>!5BSt>xRhHx`h{)+YGsVXr$4Bh>RJv z=ND=eJsX;>RJ-~e&dgfZ3-?}O$=*HroZ#4em%I^L4 z&!~BSFLv47DfnsSvI%C2e?E9>>o#xvu9t}g6PuQqK6f0kV)Lf*jD#=2A*Ob-AAFcP ztKq4CwD%gt`I{7L;}X0dwXouih{^yB1o}Q|K(x-HMV2mzUf6otv@uRjXR)XiD7aW#nSGi2Q*)v#Ev5Dy>1;ysN7AiB&H)^8P`<2-d?e_*7I^^{6QC8gH zZ`tnd4*!2%n10?7qT<`OC8|pk3!NAj!_w{()wO@kO1${J&eL>wr5+oa7vk!+V|mRrGETO0GcaLcli}wgsd?aenIc7qRS*9z7a% zzz2=2YS*sfS5E`u;H1HcwGAL|WTXPAql8XL9v+-NiGXONFyj-7+_q!K@f`E?`X+t$ zUn9ASJBB|I*%DD{(>Vcw3<$4W^ZCX9bXSi=;HEkXdx4q(n(Y zQ)#C`Dnddf2`wQh(vp^Tw9urby(4Wct?&Kt`n-RC!q4q>d)-{uRnPHwoR9N7j{9*R z*TDS%Ke7PyE)0zR^fv}WZy^)+6$+B8yZ@9QEVYS;S#2AvyeMZv@@sF2AW9OD-6 z4N@=QT|rR>7-|#U8gbm8U@CtU#&?iTL_nT^{(@5Baav$QCLbiwl6NDyV{|kEMllTV z^?rz46;_;15@ow-N`qrn5F8=&)0Bfvo&lf(;rbJS3l|$?nJrtkw16H)Zwt_?4U%?{ zi;77U2v%j!OMCnxf~bQZ+zZaL_5b&c~HANj9+^EEn7X_>agJo5>@_x%7{v(fsViU#j< z77Z7)6pQcpNAMYOu&?URjX&;KdG{FK%Tw(G0+Eh(J71oNY8QyK*t2HUa*elhu_0e> z3T$xxP@Z!0(T9|G42PvPMn(h7Rzzy387HuD^_bpw$d+RKXqqshBgpf>b~$JEtMJ(L zrG1uXCsm8e)!rt)*jeu!ox;N+U3Fhue{-wt8YVgAfv$rA#VQ7(g(r{QR6gLTV8$H% zR&wy+x7e&Z{(($yN~Fj1UU!*Y^V?+6__O-E*s6r5=^;Y?p)(gwrbb8DTeRKrRZw8F zT39l(+VGK9Ph&%X!)VpTUFr&6xk|y8g=809h_W+}`gX_PDCEP5W8+f|PU4kIBXm9& zBzAHZf3JA;^bYs2vy(!Z%+XvXuU@Ql<3F0lq+-%LbiDZXg;u5EW4tv=Uky7rE}T@& z|5o86Cwsz+k;gk^!RwPcTgBM4PvzTjWhT`3eG)un8}a??%Ppcp%cQfiG>#ev+>8v* zOg&+EzHCzI#GPYKZ;al`s4MJG3rJY?)bQbxTDz?48}<0h9ETO`%-@cpG@_UTm?D^9 zJP6MYa)+^lCmVRlr3YE|kOwN+>Z8L2?qUbV5d-|bz-J@%Atn2P!VG@YQE=vo*o{gL zF4qs>gMdl|@zk5tU=Q^_#@dC-mrL;AP@EM=y2t}yu)cJOOeoQn0IfZUkth5Dv73m) z83F&|BN7-uWY_|?9eJ3+mS*!iJo|LsmHCHsA0 zKU;3zRlc60U2y-n<0CH7_TQJd&U&0(|D&KWaN(P0pATqfd8r4=YA9_T`8!dO^HHqH zwK0uZMJMJ}R^)Ysry{k#9k?(4Qqnjm#ly9&(@8;UL&Uv(qU)x0I&U=o4YWL?nx9i` ziHn~baGvcNx5y_+$96wWZE3z!*1Iz|cf1D2_?uOIDc~VT3};!n-&v#FlbeiwEZF<7Cx-J# zw8Ccp@@=&Nx1Neb>F_Dv8*I~f^wgkcG;&WR6Zr51J z-t&LQqA&UN#kJHJ&U>&@a?mY(Deqz_C7~zM?Mu2;Iqc$iSKVla(;Zoh5$!OkGGzru zjsWuI5`~wz#ZE4|yUX8z&p{(6b490Wg;D+`UFRIndE1l5WmoT?IQizD^a*C~9&c$) zzDGm)>ZhLG`IAv|ZsuG+=Yuf=44lEfTB+sExPRsB8zA|T7 zPqQ>e^1sLxJ+riBK>zYiJ?*N==Hi2NuORJc0#6P*XjM>J-G^*!Q^-3;={VQ)| zZvoFABZGdSxWG@s4IIxe1?0#_?r(^@S)aLL|4LW?585*RR?D^6%-H%yrTUuodF@ezD4*XsILo*1EsNO#hI5aF*c~LO%e_Q|#X+&sE`%huT z4r6*c-DQ9ck(5sR_vecK$Oab^`@EW_=9q^syw7J|?E;FEkKLWTOfVt9SYr?n>g=lz zt}HlC=b*>KS=Nxq?z$vXSI>OLQx4=RAG8;;DWW>5IUvY(DW^00{CNh{?M>3gN?$-X z-DokAd|-NK21@vBaJ%Y%{~3U~RoVxC8xm>(Zo}+t?${+)`I%p#q)mhq??~{kHH`Zw z^!Q~Nt`Bb8uJ!H)&ahz&Nyu!Fz<7*fMuzYT-NMrVU;zarY2W?g&Ko&8&hZtHn`6Y_ zo8majByFe-P>${?J-OwWfd9ylTyHA4(P)bt^UtEGG&gDqdMAhMK@->MpnS`V()DK( ze%Z@*C!9TdmXd7XL{yq;Hr#4rWF!WGtVwvCp?H<7amo1;@-NZ25{n%pj1gGu!Byo8 zTFZeSaTyuYv9hjF62mj%9=XS(?M@_i<&KZPzOW0HFXYU3D(bm1TAe*K^yPF~%AaO|^ai%Ys z84D9GklZ|1aJ69>l%7UU4TmlpmE*~E7ac>xF(6Bl-GTxNWbN)`sJDTtKyS%FX1Qcx z2)q);m1kpW{;K!uEVIO%2$R&ZNv)>IpcUM^kDNc>#`0A0`o_g>r?M?s<8vA10}M0- z7Dlwqt*;cly?@i9pD|f?J2V58nMA}D&o?&vH?B}%OD)+bAE1Y5@}+e*T;A%la1-DXM!921#Hez*Q$fKX*RRC9nl< zN%%_b+OQ8bOgB1Q5NyRT{Xy|bXA25TKoB$*K-EG-W^lQ1abW>TuoT?yP#wW3iX8b! zGYjLe!yuf(s+Wm{`z!E^LL!ID4P>CC1grW6jv<4@x?P}}k^>w#Drm#mU`7h>+8z)z zaZ8lL_J(4gqEH4r0W{}C6wk!eltIF2@~exkLS|cqnYoEIc}P&g5#odvE?o;zI};5c z`~{Ao($dG^0oSxKElL~HDHN&vD9$h^<3zMLIK{}nGXzf?>KvH(kTonWnk3dVrl$9F zGcN-nLx_PYySU+EEVxY&0l~8eXWkQpiQyg7|CK72w{gv`LOzu!@ArKCV zG$y>`KNELozoF#VVf1|L*!ftpr8g3gYzd0s;p6%X1U?hU{fM1OYlb6QPPLr^{(r4Kr)IF z%0#?0gLOxTY0uZn<6itt-Y0f!TkB4S_)zzVEO^avZXnA7~<>uP_N@~9nepy*MhDR zdn~@{3ekOmRlf%(_t>dOUUgMg*`d1VZH*}@MAc%$YPe# zBN5xy3WSY9y6{fbA1d9z&ZmGN=r(N}9lK*vnl{5y3pbPGw-AtkM(#3JXF{`iOlR<{ zz!{CSVrbpS3KX8jTHxc;2%VND-j}k_XnDbix9%d=n-@uT;M16hz7xiTa3o|TUK)(L zVS5M8DFtOQaC7_cS2@CJ8Z!)HbzzSTN4i{+cHhO*vrhnXm4j)HL=Ezu$H9wYlHNQ> z%De!}tN82JPv5@z<5`8dRskZ2oH21WMbknWW!!M=#n>~H;jIe?IEt*n^!};atTV8d z&fQIT(xTqHX~QR>i{76;U<)=Wl%n(YfiM6&i*CFFCxr00Bt&_@l_%XO&SuQ*Wlyb$ zk%^c0$-T@OS^Mca1AFx2f)txgROW!jxH|7AsNy{=$MLtqI}f z8@{Jq^~^O+Z}f_<=c+eeY8&`aRNl$2x@5s~?SURfcIB^boi=|jnJ+q-^4aWHl$!e3 zjI8;X*csE6Erq>t-i2T4xs;7}1UlQ7dt?lL-?-PsU_MuU5`#yAgNu}&RH5~(p8e|C zSQi%;GpVMWgpPFBY{JJMlm&=MaDZV-jkcPyf*44O39Dx8=b*(e+=s>XKlO(lAO!5c z*fD8@mz0KXmlJIz6n4KfgS|{`J8o20HnMFWI zg2jYTQa04u_=6q`M0^}FxiE{wQ4T4YUT;z;2v}h0C@U``$4&qjn2v4=n4O4=!ZerC zNq`9e$3esg8-|{kNQ4ep;4nmD3d*zf?l?D2z*a3+A3+jo;DwOAG_0GkiEZAt4XQRu zU_+jpARph$YOw$%en@0tr4CAFs3X7GE!GQ?8_2~Gr5%yPAoPC;>j$9l4CPr@uK+_2 zjb80xPz#A5lAT&&+tctJ4XiM+z(vH>!mxE7oDEv=^r35&Dcg#vg^q}0sTL_yq=T1- zsyNn6T}Z4$lSvOOZEeJR1THq;=bQqE^hN7fTWx?G*!i%tD!{;{yW0~ct^Z6m4?rh_ zw?Wy0dxYi_6w0>N)@wkA{^z4il@R&V{(2qhgtCR$K-h`6F=JVO3KNQo-hUHgP@+IG z#Wsp_4Dbp3AIXFRry?of0Z@_gERksNqyn6gbL-C$Gb}=+9L!%(w*WLe9B~5I^yA8x@C=N*EnQ40eDJ8(CmOdLeyO7h-E~y{>4>=eq_Pf zPAO9qDTyi&%+(iD#?@> z+bgg(oOP&C$w36=Yp573RRNx}Bi<0KDkQ(5#`|^gz2?c26gUMG4pS>+at1*GC@aSc z;~Mz?dtxiZ2?5K9HYAr2!3vS5SlXywa*Y!akOgBG+v>RETVTHm)-axvB6#h<4HcM4 z^?E%#awvR0!ciSZUOYYr&N|P3as(36_Kud0zbe3aMaoI2*=?nJETlOQy+~o2;AyQ~ zwdxvP{?S#$$kNh;({&;?;wL_tYvoBrX4LUgN_J^4AM{G# zTBv{^2-4q1G&69Pf>}+7_cT7bnuf+92-hK7sh&DM(uBU6pyu9DRNHtXNR#)+XpYnx z_=+KR17kE;mVk$jW~U5=OQ?-A0L%Du2b)|*jv<4AVOLiqXzc*4kSS;k?l}&BHdq-U zssj@{;t0aHlh?l(k;)F$g8s#@GZMr}hd~^b$snwaxHQ6N6w`C^zk;$AKrEagrbVYB zHZHzCD1YQu_tivK2hrf=5!%J~v$*QsjqeKB`5%`->vqk;$E8IxYB3kqH@GLAVL6|8 z+RC?Lkz)Ai&Ck^jZEI-!&c0pKM=&He+j(Qz-loS&q1Qy)eah1gE;jJ|qkp8?C-uTv z8Moh@Y=X-TE2H)<>sf!T$&^q0?fP*~>CS6D&kr@a@kEO17`6TpEXvaQnrOgt{`6d_ z{XNrSb>7Q~13fa+@6C*-&3CP`2(E}x=ZFm{YiSnUtq?gjE;ig6%NL;&nelSI`UUykA52-kMktd0}1C^>u=Kl{HRF9Oz&A!p?Bp=DZ-A zVSDD_y-$5|4WGY#5wvDRAaS5b=IdpHzVZDN20y*+`&kvrN-f-6o98@H-q@mwMJGt& z0V2BN#KZH@h6fAJAqsWA9XqH^MSeQvgHm=7WWth`4Nr)Z2sObFs9xliiW^UPi0}~r z#|+&|h$FN1d(&Jr?Gq^F7B5@&5_Ei;Cty%)i)2Em$U%490)7gRa28m!;6y!!!jZ$m;{|5ME`5n5J;JwP1q+%;=8t z3me70&3@&e7@}`>uVfg z~#&-?!e)rwZu{5cxSKksB zB@p#oUUm1Rw7cO4$?>=h0hkqookyD$CzD`jU3{&nM`=Qbeq|{pfkGeVMFQ?GybRm zjguTlj+VW8pYh<15coTcnYlMgEW_U^m3bvzsEr=gDHC~S^GyEQsEf>%At8%?^G`2M z)*qda4!rwVLTk2~Z;V^HZAR6>y^+a`-$W(CIx+sCpYP~1i!U1sGT*H}6)-=v={7#& zV^0pVfa`1LU3xMz%j6UK;ZWkUzh9j%@R=ub9}3qLzhJm5%xcf=V)68hiT(h^^gq^`U!cSyevli%!tEW6=(Gzy| z`zR=yaJ5G4rPAXc>#zKF5WdWNaM7NecQUF&dG|UsHdsY;Wq1TD+|&^<==^Z?lZe~R zV{*QJfg#r-tJm;|IzDw9UUk_g=xE{88SzxBMb#INwxlJntm3TZys5D8#1f&1rDg&1 z)0A(eYhs(WtL}ZH`9f{m{>`}uqxYNac;K(6taVt5C#FFqaj+}(!<#hQ?VdxTZbcO( zR*7>(GAdyi3>(&*7KZ<0h_k4#@tmLCYTc6Dl(S25_&zCF`#IYFrCyoA$6IlxJY0FB zUxQBzYbxw+xOrcy3~BQz&?58 zl(btwQOVcfXV$Mzp8UulUm4eJGxlj=Mz2%ifHiBHbH1cSwfl@>sh?k9nLGEY_mdbzQY%-xNl7UH-*txnWIYX=J#@mLtVQ z0=&Gz?gjGwnz=U1FlcV$eyS~-WaSmD;H4un*SdR-b;+YM zr;2?;m7af48aU1VTZPHrz|vj$SJC{A&5ri0e-sqc>int-{pJ-h2}SUZzRJs&@ncV1 z_)x?rVN}*5{JDj=+}cGFXSgnH)8Q<9z;J}qd|A|LpKc{SpAQ}4JA$lgE}5TtD_ss3 zd>x@4{ONjZsS&(&rglpUSO^pat~9)R0+a3;%+p~Lp` zmp8SUGv%Uk9}dm8G`s)bfUeZ3ONBzYQr?E?GY)AwUA3`V$4=XtX9un0_1kr8O_h$; zsc6o*xb>Fm5*RTHbtURJ*Ta#Zwq4{jgq4NQaZ_ zdXRX+iFkTnRFCV%Mu0>%+MH}`Kc!+i6SKUPM;n=o@8o!9BMx5VD|K_7W|v>%(ILn^ z6(feukA5p}&qiAf+P&!S^0#{!{=L-yU;aL=yJ+L$Idg0YWX2vuNK+*M$%^!ewLEl`&y-YkB{& zP3HktE}fwP7npo#2;IXs&0Ll8%>=XxlMW2wZZ%pKTBgkP4D~rou~d&9T*mbA>?JMC z>teL?fg=vwX`hN?L%Fd7UX{?%w7R_Q8l8P8=X<4l>I9<2W_xCdya(e213+A*Gmt7n zW7>Xmoo>{c0hWAMlRA`GIq*IkN*wz4S>?S_7i?UdeO*Hcc%VB%?BL2t?s!lELHKn4 z!2^iL4S=0}k3Qv#q6;2g6QDhMs6_I@oDT)lxs-Zm*rw3Toa#yp6A>c{p!O5^9|%Pz zKhjMHZ|#5}id;+3zj1SOla&zaTpFFDCUnBDPvW#h$)p^z%MTL2`1AS9sAhWVQ$)-5 zjB^6s!fTTM;)b1;UokHsJrJfbkm{@l1WHIChgC){@Rg&08PPsNGD-%r_~NKY1$ORy zOpdE~d!nLa5J_-94K6VIBW)^}XVxesfrx?RkKENmo8iJA4}lgSe&_K!D4I)P&xvl=?yX(9ztFEVjUVAOmJcnyHe?=ffAVJHDfZe5BM4-K{e ze_;qfQ%_WX2varzjs`3eEarjHt$g&1jECS^$%}(eS{-a4DO?x52u(MvtgOho685Ds zz>c6+GJ0`fuRnGc=6!@>Qka`>A8I{A46+y zJvTF+XkH@%B=K~LB^P>eG&uLsGgDv^**=MiDhdVILRm~IGGy4}sW3n}4TuOGHv3+e zT|`+b+1cEIk`$kRb~Mh-52F*{sYKF(-yPXnp(sYJqlk8f&|aYcW_VU&;sOUQ3|D-C z5sFzg?Z)&HIB+D^4uFec43UUt3ohX&LXH7r<3{eDXz_4?-LLSOHFg(9({x28`3_ZG0T=C|Nq31CHFK=`XV=09-7NX!AJNQkE4PmL~#B`#x_ znX(G0p@VxU5KSOy_#9ciu^zN_O{>p**tE|~F%3SV|q+ZY8G0vW@j50smDNEBg(WsO=6drn@vue=Jr4)V$5;5Y~7u#RiG{47{a z!MIxVOjE2~`LlWG9xkb1h4@? z+&^p+NQXIMYx{0QX%6cIpatjPx{DM4#|6N621>)@kt$q(fM`l#nS#J;!1D%Rk`eg} zL42P-e`c33UIxb@?*!5N4t&10@0o;q@iNVAJ>L4s?)l7@J;J{lUNiIP zS-jZI9Gw#;AVAs<;znbMVMa+A&FHBx{ULn-b_+~wF5pvQ4o$(uFy#1_V4z47J^+~* zg%|+h1bBl>fC-GP&rRRkx1V8tOwLqf7KG=B05TBpNP9{i0SKn5?Q^u(5@pSz!|P{WKD~fmO@v6$j9oW<)P&y>mH;$ z0|v)NOzjuYU2=;8PDCc6$XkI_rVV_I0$faZS+Fld+YaKQmu_4nY(@XqqS^pT1~nWT zKud4$fA}3Hk9n~0!e8(NX6mW}LyL(X!&*Q?h_}Iu5M%_PkepCq_zeam&CD=np+IO{ z7O@T9=yz!Vk4fF!pOM4FM47!~=+v~cS8zPOKG*ccneoMs%G_?56zn}@ZGF%uOlAN4 zjNxg6jH$njw@|4n`3HVqTC-1Jp;w2mSFI`2>ki-OxhcL~vT_dT?U$+^YQ5D@XcS@V z-;?QAdN!}8F0GHpVR3q6Dc}QgFvC+$kO}rxm`3Jefl)vf{J&lS1psJ9>Jh?S@I2%4 zyud0Ye*)SUFu+FOn=_QBX^7N;=M%-`1}NPGc^Tj=o*ME4HZgEU!VAq1$?^>+5E8X0 zND9JTOykL^3+U@ls1~+szh?kyxDsSGDQ zAp|Z%Dp-GjNQk2Ydg~y-j$!aXZD4bRRYv6rU}acJ-2#K=9UXjk@8Y>M#JVE%30aVE zID@&gA^Q4%Kqx$~0p$RNBJ3022Xp*oxVH$w!v-CWB>=T5@TUEkG%_f5Zv#R|L`}>p zNhX8oUG5^D4#?WcKlEZlsvoJrUc7K>_ufg7L&t(7H$lRTm4NZ&v}Y&>Rd3d!Gsi2v z2mFf-fh})XvVVcw=FY{>Bz9c3UpD7zyO9Tt`-8j_Oe`)8R;t@sbM(bWI$te_O4^_s zBzZp~Y@q9-(V3i+R~@e!-)&d9eyGj#koj4+(Ys6E4k+4a@mHO^tf<)1eS}Xx?ULhx z=y|WdS2)F0%O$(T@}5g<@9w>ZX8rB^`PTM(ckk9w+oA&lwJ9T;#cml7m|vARU7!3` z(9nCtl?^*7)M z{?TO6t)F|ndCx03-%)iV`oe>%Cep!f;{F?Vi7>~WPG~dfXQ;iHdO7u-ZPV&kqSM!x z^W@uZ>Xc2WXJKnhSiUycTQTg(vEkRNO9ga04r#9iC{dhc<-c|NmW64*eWHZFFCA>p zH@O8*Huk=}f%ZR>_7^pyF%(MSXqU>ZAJ~$py?^s2%Tasr#HGbY(pHEJ|0qkUABg>O z5e8ABA3g26+X61Wy}Tf6R(JQ_jGbH8*FEv>O832Fvgf4i-Vphlue^WR{tlMd(r`B6 zk;Y)dOGW3l3d@W2)5}v+r=1=7Zt#o?Hq4vgt&%h=F_r+9AC7|sbNd$6Gdww#DM*Pu z445tCRHK^^B{q`v7EWtGK+^|hx5|GnU+3*cytCB$xU>a>-`oUJ72Y0oxY4~oPn|1e7Ei24FdGmWShfYVxtn~WKibMJyvOdxMQeW5Z&S=m|>{)2J z_ECae^U;g7YN@I2O}Fp1Rd*=**NHu^H7v+K+@Jc+GI`gA8tFpDj$HqBw!4Nl7e(kN zhHGr&^yN6_V-e6cHhtsFN5@|^LtS-ZGslH=a!m8e3O!!4{S8;!_FUUnS>)hm|0db2 z<-Z+P3#~KR!@N#LAv|ye%lr0kj$ws|h4zd1Zw^qhRBez9JS@0x;w+#|s0Pa*nj9P+ z{`<`*`uG+KZ3J#Vd3frIv$NQxUmChsM^AR&F!;y4oBiu5yFBW|e%sGdnlX(f?z5rJ zz0JH89ADp_6%W{?T2hF@as2Mi;_X|`O%~SM#I@hl5#UdGwmPe3<8dYaiOUy?0e`0* zG?8(f-n~V~>7t?4i@c!r*Oxlwm)5WzFY}y?^Jz_g*!z8S)bQZ6T3bz@(eRgW>u*tm zW97rm$MnKStPT3N`KmwEJMg-x=!3-~=gamyUyZkkh}d>rjrRjgbA<2oTTP|UZ^}9D z=}U%xuL|0#%95uqxoUm&y_D|Vhrd0$oG~@zkhN!+%k-gJM>qff>*3}^<*zQ`dnZ6@Z@A&6-<2^S~i>#S^iFIqc_K236p-4 zkll|9;%7sxha61yjW2#6q8qM0^@wp%l|k`uL6|{{$Cc_H`(4dAJM#PZcOe{*+(yTh zSBHDrdkS$e2qfNASU&wkzR#vBQ_Ab7`Ym_HAITTLa;SUSwUlf5gdT16&|({k>pj@e zZ&hd4A}MzE`znIv*b7w|j8A^PCRQ z_(#aZNvP!Nx@kw!1F7Dzif6Gbp}g8{92&mPR&NgsjTvtEK5EpaK4LvG(&axsm;Wy5 zN^R;nc~gxf&yPnK0v>emcK3|+L@Ni&hD40Kx^K(B)P1dYue!EwNmt2|sLY04ZZgQ= zRg&)i`>3C*e#c;iC9t0r-122#RG0HbUE{ellQAJV#;`U$^!?lU2ec*IG;C!<s3t{!{>2?1dmda}C2P(<8E$+7G6@_@a zsZBwWR!7bql?jwtC>%7kz9jv9MC$uWv7@!73L^fkn;-iH>s{X)w=yPs=hOb!mxhMw z$8`!GT@@@U+xE)!ERU|ME4xy}b;stJ>lGg9&#nE!PY7YlK?Cn(Dupre7M%|KW#i-L znp-(XmfXnBgykrX95jP#w|!y0KIqHucLb*u*eD0V-EDO%$JNLYd#V?qUwtM_{7RS8 zdHG2e7Vp5D`G%YN@7C#L`jvfJ*YuI;nSEO5{>WQZx0GJDq>0TqrPj}2BCVBR$=kWiJB54ljkzhC-kBk&juzrWlA`@86`daG!VP%yxP_s>?M49S*10KrMNId zO}`_HM1^@LhcC@?TyYO9TW-*r*S!nNK<((ltv|I^Ki07B|FkeG-O2m0F85(g-Bqlw z86PrRcC57>%R8w!bDn#!IS9il%oBhc4Cs1pMirs@y2=dXf`LoyXsVdxGgst{YsKjA z5VQNsX5Y(xM_Gt})J(+xRhI9uJeHla=Cxc}E;<^_n2sfzc^Eu(&%N=zDq+wsNxoa-G{+bU|Sh1b~_H5)PoE?bvW>G%1YAyeA2b>6IrO^mf%Q}tF{^%rfv z7jxB%*zS0;F9s3l=fs+{f1Vb~KOB*x6XCeK&@3~cS8u-NHrrEDYr*C5&CB;2Dl&8Y zw537LEl-vKF%(X~E!NesVvR=%LE3^A8!V(g`dag|ExFwFYR+d~5^O1PHn$Fxx#oU( z@9xP;R>gxeksIb(Ol$wkz4$>&E!nu}p0-zsS^8Od_y3OVb>(!NuaR=%>JJ;qAN;J{ z6RwHHF6KVDF&5oQxs^Z6=chIdoiI=4XI12MkXxIWFJ^yK;L>-4!hm1 zTD%H5k|C$Ys) z_Ga(m^@D9E2w*^U^xnIb*nu6|uYEoPe7a2Cxx2lS(P%KhT#`$59n>Wl6m13<|G4loDf?m%P{5IGaLIMn?F_DVV zOEiEt2R;zGZwyp{djd$gapH9c)H06TWeBQ3?+*~kOGC&Ayxa`9?Fb_u7zx{U{S7kx z*>kSo%^d>Z0QX%=xIqty4iTIKCVez9;G$GOEB31PWb;TZm6d<}g+G4trZ=I5VFIPC<`3iHcW z3`aqmp-%}er2?vUq63p;5dh65u({FvU=dPA0eD9gG6DsEIXW~X>;P_qH#^PX!G%L4 z_(o);fWJ#*MnXNos5+f$eJ)0sA9O~L)g+MAVG^hrZG=fRx$wbe$q!*Ch&4j*l=to1 zx4_kM++Zdl*}1CW(B2e%gEf6^gf_6vvwG`BKjkW(NO(WcRwLwbZk z{(kUI0R7;K+(+UP*wjBkcZ_i&Z5(ulbI-ySx4Inz`~%ZnQeewZOyH_H4dyPo@I9&` zj583tea3%a^dc-18UX`lIu7m(h(-V_Ucvwi-7~ZlAIT8m2p^f?fF1--^fa)OftwT8 z3FjIX%u!e#YR9Y%RVl<14etbEh`~NX&a?H1wj z5OtuzjJskb2cYw#)ERVW06#yYmG=f=ADco-)8(b>)~zF)5-~TSA5{Qa!yW*z3gC$4 zIiO?{u^7xAU~6bs^6|1-K&UaXSBB{z1d@2(N%;kKBOo$h{*;L_fzPG|RxIN7grOV( zMTxc$Vy1(VNX~)8X(Q}jQ>pCciSf~q-YV> z+{I=0@(q%dwH%{)rg!8o-UrAv_=qxJ03icY23oUVC3L0$B1{`n#Rw#V=MbL$K^O=y zAdy4?bak-l7&gkt1VTVUiNClQCE${s&cqChg$K@c>Oh%r%;2p*m6ViB22TC`3-&E2 zg86u3VCOF#g=#rn!x_X=afbdKJw26v|A-Tk@TTIZO64Hch>HFE$5P2%;4)&^wsK;*Yoz=(iG zlKTU||My8rVsP090cbDHL14=R?{jQc<+ZgGaE=;-Kw{v3NG6cvv5jsG7*e6MB63#^vMP;10YI&N`HrP25@RX80-afdAlr zs$bzkn6;Qef&Jf@m>3F3qy!CQkdPP~^w4Sc~{JB&}nX5)67&dw+i^$#(Epzb~Dk4|a`S-lM6hiMzX0ED6^L_%ZVo@tgBle|LOV_C#ROSwgZ4k3DtE1)QE$q69r*YA2t0F399l$}toWsE-az+|dz15+QA=;1pxYwBjMoH_BXBZMP?6qE$_jv> zWYeLfbf>&aAzbbL8sS@do^8t)GbgD;9t^J-#1<=VTE3CSSjZfAaB#>I!}#pA#vRRQ z)NKpB6+Cp~1|+BE8ncimdcy*jRZ?1-xf>kg1M?GAB9YSr^3shRBKVEEi)(+pMQp-u z2$67sH*K!Gc4+fC6en+W(jE}v`!BA@2r{Sa6jQpF>=g_vSEVh)6b(BrgbVpiO;0h^ zpql_Q7tkM`CnWe~&&>>gZ;cT7&nPKqkf(*+6^G_Qk;iP95&;zj<5hC!PPR2`ZsN8; zn?QRjMr;K>TuV={?)@LLeBYTf!7Ewm@xpdIG&;KGd@-WXN^nj%fzvwA)Y7ux<3|tJ zWRUYV2Bc&_if0u>Uv5W7N1QdOsIcbUo&Te<@;bO;7(L;sC*GYx`2Ogs^U}d&uWWtq3{-Pjim%_3#Uu;@n!GOM-XDAL| z-O^4U?CL|{-z;OY^G-XU)w6MVJ8&5u-tjn3YQ5z6-dn-Jg z7q3A|5Xx??tt~=*JBg>@XH8sKIg`HFj?mChtjc95gxh1&`!V~nL0Ndt$Y?Y=bKPb) zWzx@J{B<)aNeUl&GBY37dUDPEl{<8md)H0cm6v~dU=lg<`N4(kAN(Nv+1T6j2@Ajd zHUL*0NlD3al(ld`gIm-t85uu}kRVpX5Dxas<&bn^(uZP~=+T%bsjIW05c`;$dkx15 z7zLEHgL(yO2ZX3xhZzc-Hc&9;h<^+PDH$sgrHfpD>cJgUZT0%rc>tD#Qkg7s0d+J20ws$Q2Q&fqT&Y>(?D@?KlgtFC(j{45O^YppQaH zdHpx!fW)cB;1F_x?c29wq(uC4988!Oq1xC#ivjAUTQYEY`SF9adt}WfC}?0|QG%)( zVIMS^c&nXsXK-*(rECyiCN(v+rN3VVTvE)M(2d~I4*mJ_^8NdVG=4P=iI*ga6AHxGZG%_-knGY&GE$II?Kbp5@ z)#Q4Y6jsb8Zx`vU4^(zg57@qHm7hG*i$(hmb(o;Efk-U!{d z_4e=2@ZHIQWegJKO)CT>jxeMxLsIg;Pe%XeH>c&AHcwyNL(|j$@ivte$?xC)jEXts zQNbu)vG{*qfPQRJujBE024e~KAAyra?6Z5@Ero=7z4}*u3LbFF?X|kN=u8z0$2{X! zy+QT1NPgD4p3l>kueOa(m_6JE=jQ+Wb9%x^ebhp>f4$u8!-@Up#?;Lx+f0QztCpKy zVp=QW!tk2$uHWF*KbP-%GCVuER3V(-zNfjO$>+0X{sI=?w&Yf^M|QKGYf4>D@wqoK z+!_lrZu!4g#x*OL7H8R)?zgC5MO)IbFawjw^J5;4!<8S(oXo2C*s~0E?rU=%7F}~q z=|WxeMW%4C$nIkTwarUoo`?Pl;>bw6z_We3#abh+%?V$JIeu)P`eIoA#-RWAl{5=| zRbAJ1^&NrF8cpkJl!p468Ej?rXGl{G^LZ#o)$+BXx0RX1y*h(Vc=6jaXQj=ugy`Yk{qIl5 zsgCX|49WsK0@bw6sHt6DaOTRHmkU03+5aCG;KbIluUU^{!UXMJKU-$y*llIxVaVgX-cwn{X3zAnT1jVj$j`N1zN0$}6r2ui?AMJgf03^p@u|4VFMg0=_tggB z#1V_jZ!J#R`!4<@U(WG|>FwK?o+jSKETX5r?3LYfE%$5>e*M6vIR)1xrk7GvWmYxq zVNev5GqudmE%xbOb*;9xPTxp6(YQ|XQAz0SxVsBhl&;wFwnJaspxg9rrM6d$$95sP zHP6q@PAqgfv&>`8C=QW<|NB!E#=Ksob(`C8lK`8kw$|)#`^&ec5-;?gt7QGQ#nN;$ z|BR5S6t2gs* zhI1{Qm3}0`Ez+Cyj$e@k*C6*I`$!H8wL>274Cp-u7Dd{M{JSn*0EL@l|!aPo%!QYVYm4;~C6G z%P`)4gNlRDE7c7JNpCK5bM9m}QIz}jtLp9PKMZT6map#CX-_(th*p00Zr8>Cb*t)uZcTUWQ6m#4ZgMIdUgr^!DA80=FpqUW`B~s^SrGrb{?gZSC`*nA2 zH8y7iu@`m9mju=|G$`BIN!X@ksMpW1Js>1BgvYX^nvggz;n3)}b;N9=Yto^u|l}#-7IF$8Iv78X?8Y%N-Ve1$u$#h(?Q8fMj@GmA!`I(iuvrl!lztJCRkF!y9 z5iM9Tpg0?0zNJIFYi?$5gAP}!rgnZ?THJ%D>O~K2JeU^$Pwo7zM(7*80 zx9vHe=8t3N#rISUH8?tQ1{rVn71dHy(7eX~@byW>hMcF2lUIhj{${#l^eqMtY>U#i zg*CQ!7qg5Reeb(k7k0m(iPxkqvv0AAkHeNVkB;-7;V^&uw!{lMbWFb*fJ#8*~(JKtppavygxo z0Uil;okCZeiY#&Rmw@(uuA(;+!cgjh8}!{X!|%n?%lgy4h>3hg zj0O1Y!nwLciBv}oVK$yA`8(pVEgM=s#$GBLtX}Fn-0`PE*tyf7IxD4HF?zJf@WkhB zW`T+Jd)BPE#J;TW;mK-)&d%#`k=sti1sL2{3Y_|V<)x8Mev``0fPfI!%mY!er^2mv z4pw9yHpbt0qPyu){KiEb$^8>Sj>*5f zXHwP<)_&w&vV5@1Hun-=HS_FHfuKvW;1boHf-jppSc{CrwSU+jXmYQ+SYRsde<^}- zhnl9^T}_jH0*{W(d_-F#18x|Uz~`Z8&68icR=9=c0Kbx~()*+V{=*CbRvio7L8SZj z>lZ>~S|E03fT8?}Gv>}L;1>cm>9Hs4nfp*A{ZrUoL)SwfzPb4}K$$4>P{V^6WEk20 z1BpGV`+rO!U;f%vIW38{0v$mA$4hKkIM6a zVu06oJy#!K`M&!};4tDXNH&`@Jfs4nPjrn8!~?p2f8%?rMdaWKmS{)_Cj&}!gmTXV zdIE+VK1joBZ+vfh(xBUn1S6M2l<5qEr0DB>6wBCzqm{j=c}48V?6@av$@O|Qgf#7p8f ze8iRk3>0t;9^-`vd(qC~BdDQO0u~N(NgMP>PqNot#uxE~twH~}m+cZva)c}^Fltv4IWkaMp@C)%H_*6H>7JK3qAbBhz#6J_A7Mw45 z3tSu2r9@RQfuEPr*E)W@{OD7Rg&f6CBW#8urLh`U?=}DvEpKAvDp}{8IPswT6x^#R z8b?3yH4=JSfyPoiAlzgzDQ+5+WMxy|=g&&$Q($WUDj{JNRO}RY0dg2oTxo=qmIhR4ADolQAK@;b zTcLo-*3dUmQ7a2JBx!H|lMC`!D;Lw3)8IhiredB~`QwKY^swXzia+0GTv9@R_4dLz z7P(7)pbVYM#`K6xys-pvcYggc!!m#^M$h-XTvs*2D_UAwa(W@8`dtrhHf?OxMDTbA?jYDq%T~Q1u7W@IXzSM498iYlV zhZ`mU|3D=b6%_#)87SKLJeIG{H+>xh?+2e`sQw(hZo!oCvry>^?2FjG)y=fd`*Bae z&_U>Fkc>}He*`3A zVzlSacj;-|bKgSF=X`hnAs1yvp5L;!stxm=Sw)^Xa_WGGOKsAOd4HgjT(#1+6(ycwAgr>BbwSPpOYw`rSLcwZ^)swt0B zTun=dY2p3UBPy>9+dF^e`KbC<^5+C^TWG|%$f4C|f2NGHwCC-oxqte(_u2F<*A#Yf z=Pi^N9I@#ft36UF`gr(LbHVcq)$hi0w*Hql7*@+Q5j@D@$$)Lih6v)WGnXmf10XKR zNwJMU%SkG55#5X;g!KTr$n301Nlq>>mBd|D#!e09*df4|f4-?gsZP>P%qWQ7h`|#H zpSQ(j9KdWBgm(AN_7osRe5_v2CSFBEKuY}yg3~3;%;&NDxEsa4jf#5aHaD9$69=kHzZV4VyQJfVQa>a#6o^J`eSIQUCQK<%2}P)e z?aljKLNUpJGyeRlT8ak?MF&adJ30_5atwe4=`P@`NzS)GF%w`0L$X;C;#NhkBSCRr zUtiv$F{FQfs;++IHq)yIVQYI&&*IY$Re&GBNgEVwA{t}p4a>~`fZU^0diDCX7s+>F zniC3dAseI{VzP4pXbHHhCip5aQvxp+%o9#>nIbQS7|lfcpC@pXea1YTT!!#$(I6ei z9}F><=Jdv8s{q5o=j4Yr0-ig=xJ%&0)g>4#0?tjoALJVX!%zG^Vs7Q|qWM6(z`G9# z3Bib=1&OnSP(rlt?Y$hAZ8rwKz+o`~zH$5(U`f)qfMZ$=1doIYaDT?Ulq@tLq#YU_ z-V6~jd}DZUOCS#T2|NqjS8OI~_eph(F~)f#qr-47#Ucqkumm!UI!x$6?tb-30JWPU ztlR(voyXL&0Z=9ZhEOvj%gy(|^NnI+tK5Ov9f!*dkg0k9J*fen2E?DV0}~SyWVlV6 z2RyEE`PLoCftAU^PLcoR;84;4E;>w9gwK9>2o7-qWEJ>n%&ZY3eI0kQ{pU|FWGUjS z%@a-x{@+~I8Y*KP+}8L+VCqtwH(h|fABXWVNnenh{3s+HlM*=1B6az|^W)`}mE=?a zAjtq<0S+tVi3GvL;K)cjRC*i1;>XsGJ)CSFut7&4ry71~uqC_g;jw^f21?Yydto>P z8)mY%!n^@n1T8m=q38nd+Vy13Hcdh_beirj|3jKj{!2mN2Dh=Q&LqlP3n_=icRz;8n z*uh^G8#vwaq@<)j{T7n~5ShorW*0@?1fblszU2DU?x$BwEi5`wy`!FIV`neQa2|<& z_pS}g5=jnZvDcb~$5s(b6wOKps&+-}Cl!i3t02k-$Ab9u$kL>UAgoVu=tm%r-lWV8 z{S;*$0g#n}IU68Na{K|yxdKo!wvXa3U&zG*1HwgVI>gDw?IW)hB8g)N^q2(WU_j6m z8tz|FadF*PK%}j~vxF(sK0t*eMgq`FX&=a7MV%-jA_5?hWWH4Fpi;pjj!`{vyaAf! zV7DTjOnr(~H(C24m6~hU;p@)*t;uE=JI_e;5tObpV#9!* z9FwrY(ei+A4T*H<)P`aJFnxStVmSUOG|LXv9t{>aIhXCjf*`&Do=H$}DuHVgtDii7 z@rh|R2~`iiD7laUhbOBnfSCB*csTeg++)ura~$+QB-6(*6t3Qwhx}(?0RQN{2v1!T zUQqzi-uDV`PqP}EQ+wd&X>w%Un9Cq%WSL%9;F@4ltDRbJ z>T2Hz2Uup6?L6taSMK3~b4U48Wv`vMR%dv=eJpNEmafN9k#?^&!D?GNzPkR_&Aa|V zUov>oT6J^2k(ACZzufvWVS@eR$E8Yo{G6cO;b zcX%6$5Z9Y~Jj>iYwkxU{4Uc-=y*Sgea!F)js$1ob=>;xM?U|V_4!dsFNfg@Dl$#2f zbJ$qNceYO5vYT*X8gO+gKmVQm*!!PxxzQ+c!_M<+Fd*3mw_) z#*PMoo@FR^XqpVN4rva!5mF7iERu~7c>#4jxHK=m3HQfzU_RfC6Bo>k%j5keXgo3N zBW;qfZpIT-HGeK=KHGIPqEf{s65$CO@vK9KmjJQ}82-R}_eGpQG`A9pAl$LHx|uUtWUCsZXW}m38Nwi5*2V- z<8Kj3NdX8M7emK|$f7b-^pkKBXji69%z+T zVGD&LM-jFenr_VdBHWId4DrvY3&Rw1lZ?#zGiT0FivovX(BeS3xrN4;>Kas3mY+H3 zWP)koB5o&l>}#G~UB;Mu!@LR=Gj{f(($X$O77EeS#eMh@t>efky_ z+u3=!m{cL<0$Y#9$%aNotvx+O2usbUk4oQr;4p|xl*5IEkO89w0v%9#(tk#|f`phB ze0H30H{sLdMZ!@saDoJE)%x|td&V2!A`a%pHEhxM$jE_y0CiF8hGwoSKkDlf5)<2# zYIHxs4GkwO-uiak#V!cH4ouOM4l5q@B)VD58}+TM%CILFqaMz~b*qE@DE8*_SSB<} z3(ZTzXtcVzn&Ri6l7undKVib+#VyzvIA!f`uhVt9hTr=Jqj*e)eFFm4xJ}hJ6Ndof zcd}PQ3yPW$d?cccppOR;hRzj|I}&XKl^C8mI*72GR^(v7X=-jxWlmlm_r9gD(#LAwO4kp*QV zKPXN(gx=Y9Dj_8n$3Dbv6t_oWUN9S+yF(qR7NdAz&(smKY`OU0u>pt*vPpTxs5nu4e+Gkiy}7E97PWdV6o{n z^3{Z0<0*@+;231-`+RV`so>*C^UEF`5sV^!&$P&>MCch8-zm}OpL)gE?K|jwJ$=SM zPS|K?fF{Ny;=wp#Bl!!Oa+$)La_)3Dr#vhXxSU8rfFFsV9%-gK_U2W^u?HQ$Y>I&8lE#=Qw-`)8!|Jrhn|Bt=*4(Gb>|HkE1 zk%o$dq_RRNA~Pc+JF=2c$|%`MDx;FfimdFFtdw0=5*b-Z$X-bZm5_BmUgvdvkKZ4^ z`?&wVkK?|Mz~N+qBon3`pq zeh327+FC$l7bqS&eoQRx>h7kcIn8=^XuirGu!dx#4RM$OkRbIFfHc6WXuN3OyC2&> zy;OHYLqkJ7R)PVUN<@GNl@ADEa~PU&S~zx`yG}F6W)^h~4-#W39c!KqCXRt&N1hS| zO6?t`8=w_66cA>ITS~6m!O2GUTbw7c7xN1X?_ngo62ziRIDDZ{L4kPQ z((*mXM+|3Qdz)*2;kh#z(D5Dp*|&0IJ}A`Iqx9_2oK){q*G#U zCrE5ExD9pMp?hJ@QY;%cZoDXTChbgG;97)gDn!~)LQ!#M3?GAIXi0#z!SM0~E9 zTbG2GNDU9C;PNor8u2KWV$5=E+$g>b#4V!`36t=_&M#k*bka{9q=&=?%sr$M^nZOI zK7!sUUDxe&h%Epmv}_j8H9{H>O%-vFqYfQK<-#b%Xhu^+nmQb+M1%ttpXk7#zP&er zi9(RC@yD1Zo*Eb#p)!=;2|9kAy|XjsD|th=9D(!E3963STK1rU@o}EgJk;^Pc!2Cd zY4fzKjJ3?fqpf7~uJ!FrOMx2YBmHYu}igW^?s4O_N37Q%NE~QzTz^jI=WVb zaN!n2i8&-4-hllHmk=-@WIwdc4fsu*l!M~OL`7YgC)Bw@?bj&qp>gto`loo9^kuLP z+=2X&yHL=i=%nw9M_0r7__LKl;wkE}AH{Z%7ebE#(Q+bi3dlZbbMIC^Xhyg7bEJ-B zc|pnp%u6So9`Aw&48Q&MP<~jL9(PVCaP#(dBDaGEtnUUI5;Zki)l{7s%Gbrkh+;%t zzw?Vc!lgfd=2|YowZSLAUA;Fim#Tvd3N*CxOD+Sj?xCb#TON~faB^aok}3`LGPkn} zLd>O&D6M%)tJUOD7ncP6Oz0YSeW`0~3_zX|C;&#h z7fQOsY#bE)Cn85kc<+*PPab4Xz~Q#nM4>UR6z*yL3KmbE4VwYy!GkAv^GU`v z#s{#?Q$&7v_Bg!qQ>CV&p$*5)wYhDYanq+(N7v3Qt_isCs;#U}*O*9j8qwQ?cJ0_O zY(?uL8h(4-DB%0fu{2cL@a&n3&bfIu z*Yp1g3(52z?KySq?!&60j-87qNSTe}(N<>_pzy+bnblUFKgKAmP`Z*W6ZNVG!wnPy z-eP|t`MFCvXzC#9&6_WxnA{`ocn_5{P2ZiZq|XBILQ=$$d_cmM@hlNpJ0D-wMIo9a zp>Aa+52DvYpo9NQ23;UmVlN`gfT~jLgWCbw6F5GJ$`2qe4)?+2ExS17(shN*-cX<$ zu7oI*OhyN0f^aWHqpM-}{WpmD<~)!(lGF=SrH0?&?Eh#1NYDhfb;hA!$;ZhkLmgL_ zZ=ia{WU|=Dr9i0(_Kepchcqg!5t64^Q$sL4=O=n4cqal5V-a9|Ct_MXLI()Thf;-1 zQ-i#n+SdjkRIEj1baXU!!wblJ-6QGZ4~&H-k(mgvL_`Rs!OJTTWv)I+P{dL-I(s%f zCkIpr6QW-Mut7P3qv0pIZ5mZ|B%1@e+Xtu|oeY*b)X4J7x6r1->JES#O#;c^M8S-Q z4(4qH)IEj1HCEH7?xK9QK6^w1Fq7@_ng7$I7RB*qY-=xETOhXM@FhV9aOw>wha(Xtb|qNv|p z63hln1QnsVWL!yQ%g4(FWKtTGd_LP`mV>Q608e9mN&H6T$@i02L;A9aJvbXV3C+ z=x<{Zx`*(F;K;~Y9N(mH1~XC9*ti8Jhn$KL5CEe1#bMalX-Kqx3^*5;RGW#>*oEuD?dXb3F}4pYJ$5W_omc5JCQ!3O(8n73fxK&1t4$J)wjpP-=D zVI>reXe&t3ioF=TNj1WHNel-LxI1Ya5)#a4a{6wJv66`Z0AJI=<08AJ6!Gbh;*mfK zz-vHS@dhA}CFV?_2FT9lhjOX(&zCFm>g7lK@9Q}@P9SK&Bx*uZ{<;CY+pa$9duK&0n`+4a9&|G19Jq*N>`)( z;$S5Nd*q?7VX>R3$Zrb}<*^|Z-KZxxi?$&I2Qu4O^k*bW8RH3{{*-6?@y6^h z^?a6orguys_8Wj%_wkIvkb|ObJ4ATsmXr|yj=dj=2W`-?qx}M{C=(eyV>$5NiQ=Nr zci!*8hCB-uoNbXuUFbIMX!_OjecK_w%%NtzxCsMA%7Y_&ByT**;;Y_eEWpiv(XaXZ>aQqw^m?CbAOfHkCOLvKez zO-*N93)cXoibO(>GZuD@H($OyfinQ`;`#_%clYD4hr#qg(?3oDhdn$zd;;GT7Y#MK@T~=V zG>l+@0Csv|fjdG!O=kYdCnf-J!1X_3(|H&S2=Pzw^7;WK#Dj$j5?6&dm%!j+zRG?9 zfk1p+>;*@5Z-%mylzzq?$o0mB{col&RH|?NJE0xHSF}JIK>TE=LSW)SY`7)jh7fEC zr6e@KY=MD+xSiya?N>Sb?`RA%odsWu%v!)9fHh6Vg_1$ReSIduSbrxDbD`WL+4z89 zkxZ=`dF|@u%RByl!2_ZM@#BBeX#hc}1NO&xfa3yOXFYf=n$4RzkQbAxe{e2ivoYcEwqKO0qqCoy1ji>R$5BtX<+FZLvxDVZNt_* zCxJNQ{*Vj(?Hju5t>|sdfRq3rhb}<{donW5_ajyc);O%)NMXyZWD{v^ee~b~HFiZ5 zQ;bqN7zl@&5zjU-2%t_xM~+7g+!fj|lqF;uNNw2@knsq%#m@QmCJU7QAa9F$U08rS4FZrs2SCOdoPTPFq5_6Gz)3h3NC+`N z8z7Q6Mu*bV;@+Z&{ZCRl0AWO>?8JkJPlt|MOhV!#CZqf)n>WGfjDnJ&COGepz;lVq z3Dp@&$2gL|0|Wyhu%rh-0f9b18|q-hrcqT9TPN--=E0C51Gt(%<7tJk8w%kWK;J<2 zG3-{bl{^i--i-1Vw*l4}7_e*l`$_aQwttd;MBr^bJrc-CP^7`*_!%NS1_}bVIx+Pi z^9M<_+<02alMZYgh7>$CUNe0#?OkJ@9(5E4&^i!h8CQw*iX~1`MxcV$lA5K$J;fG8 z)-2&k;krSLeszC;McXUbsz{rNi;1deJMz8Z)x?E?0gF5Vz#o{v4ZyP|CMI?mP07%5+#EcU*wS!_HvsR$4pD{20g{=-{_f6BQvHKs0$+;9juIz1!A9|r zp$I|A6onrd7P z0%C-98zX&lSD8sO#{J!ePX~=Qn&086DGhw0vF3QNF+$i+E0_LOG&R?)gTQ|Ey+NW- zw4B|W-uFW$>Dd`Y9E*NoSKOJn8j`Fod|1noJ+V_QF1CqJ?di(p2r|kBwEq_1ddE2b zJWWYC3>zkrbnV*`Ze#EVN+BX;#{yh#AKAJ1D+KxybsiAn?mIdtVufG z^IX}D_Q$64#h}axg{Pu+fzGM3XY90%FXggn{$^OTesFc(2a*Sn$wBew+DWb#C`*_m z6#tPOVH_MDhANT$=uzEgCcg~OF9}_$f82j|^P~QCkjw*j!rq2WZzYlO(UKhqOEM~Q zsq$i1e+c|!%htm~YpTonyZ8FO+u#6nVFnEu!N7njvgWgCipfC=0heH~WV351Jzndy5qI z*4*Tjl>gDaPJ3HXK-jz)Bmt^wZfWV2r&pn{k(4Z9^KZa9JO)%(emwsyMx=m^Pd%*{ zKi&4_%ip`Bly>WZXnQ=nH0i+yQH{4_fQKkX*q_QC)kky~s?im_rWJE%*B|b+&(@At zd|mo&o}Zsjt*4HN`vDao)njd0$67Ov&9YoC zTHBPz^kj}}bB(F8RWj3)Yh3Z zf^o$yT@Bs&s0gF6(X5a`DcBdGt;n-(<0>sHy8%-Xq_0?TWCZ5<6+gBilqb;47(?rAsQ2;>gr89Lw$ah?iqgZA_oG?ycTmyq-R(IpE zJia`00(B}8@8H-5X+xsNu$95|L8f(*!ix9ik`v)z&<Blz632W;inAvCc`Qw-M^ppzxBAU z_IBAGYWvk2&2~eD6V6TrLt)zCUzRq6Mk&wh4kd-mevORgE)N_nvY$~EwhLHs=^iYF zPp{!+6oZk;-f@RE2iDRUU1i%>;R2eQo?rPA)zjcLD?PcE9K%>&V0@+J*Qv+D9zFBT zfl^XBABJ`w0Be9W1nAY| z$E!e9q00M)A`t^_h@lq`gcCemLNH^!(a98-mOf{wtCrcWV_<-iJM4vF*L6s<2viPa z2}K0rIFq3>0F8s94cO(|a@I(PD;(xH8d|m+ zuC7qfcq5EZ^)$})2t1}j*pOiu!v+l<3r>#Pr?eH;qkpz4+aA7h$RrPvJ8uqPYOi4>00DXdTK!jB5}2@Zp1I-WT+6xacscqv!x$O8QV3 z?e6WkiLw~-aB@LV4I}p)LZZ9q|H)tACg6cigYFY_C^>TW-kOp7V3Bv~EqL$pw|=it z>pD;Ov7$vnsZ@`I)Jn)aiF$@`tir-OQRe9A=opsYdiBCpA14yNJkU`zK^qM>PlBeW z$^3mMReuqu3&ADeL_*7n$`vj+xH*S#wn7VueudnXni?fI1-;A46t%(Xy#rYUoBiBc zm*n(JMn=|}hwU`au`)Soo)iiiI=4r>ihh3HqUJ0PkF_0SsaRzdyQVaCACkbYlEYI&Er8_E*A@+=T`(l-2hw^IuSuMZ$Y73A`s)5@)G?W~&mY8OJGGh3wo2$LUWklg&fNC!Y(n1lt3`$-|Eaz)|q=R3?bm{PKRi1WzHm)?b&_=BY z-7SrpUbB2T!q3gcwEi5{vHYdoJ;^SpqF5{uDR$L~HnNve<-FsQSa;)cirEd~K727$ zo;_j=!?bUG+Z&$cE<7t*vcE~0uc4c$ebU-_LEKRZ<8MhY6%H`hY zeHe7q{DmOPr27F8p$$(rzSqfXYaZuibj$W%rV`oWB4e3pe39$fJBOKm|K-W1itLNb z2NWJua6rli<(LpcD9~@9eQM&r9C}RLV^xYs@37tBkXJk^v3h3V*73L-Uzvzo)a2Hz zB8;loO0gDv+*ke%I=({eC(%|Bi2!go!dHK7isjox1XBU1{G71YU?38imGnveAq~>FQ1>iv;NS$y5xc;o; zCY>w=o`3jTA=P+?O@y#akXj8RuJIxoHV6txL4dPm163Fo7FYw|W5RV2hQ+!yX*~(H zfhzkJpb~PBgLD$@rDge@AN=e0l@4|9}&Kn+UzS7md6KH%%dL^Mp zk!H>NXNqlgW+RL~=(#X~1feDmz5VNAA5fF6L%or8T9 zWeNalGW>F~w=nZ+ruo^bP0%Avz!t9N4;kkx^HmrGf5wbx(bTgdTdR834_Q z?`(p03@<@T;AAwY{;ZPWp!{IlC4yL@eZvtz>N|isj%46S!4>6wbZ||QQBw8C4xHgFk?3-h$=lj{R_wfi1>rVOt`p+R;NeK*YmD6)#y&nbp}K>N{_6Wfhe@Fo2On z=i-P9!*l%;#W^_{NDgjOyo?rr52%iWurd;$Bq)Ut=D#u-A|`~&-|&?qC#o1rfK()$ z2H^YfoEtD6OMD%??53diCvYwh>=PI#pfD(ap}AY&pU#1D1p_saM?h@B;1wV4+>Uo4 zF%m@40n{CGBtizGK^pL@Yp7#B79T|O-0k~g9SN??#gUuBrm=+|CC@Z2Cvkn<>^~Tg z#C18##Erw+&_3bOjl1R!H>fUObuX8=n))px)WGMR(2djlD>@=sVwX}+Bs~d#v}r^q zvh~=L^-Ij!^(pUIMn3eOYyNdRS=@Mh$gfTWT$hJl2J;C@HN}FpLCwuK2QDpBiSP(JpJtV z8cJp9J5f)72t7;MCJiO@JU=O5+|f)-u#13aL8GLBd-Vh8$lRf+2#16q!uWC%(IS7Lmp|CS@R+2$6)M9{mS-NBn*Q zLXUCu6QwJWli^HWyRcq1TOT#R9$2;lx~D8~`9P21AR`(tl9N=emyH7fRAZFX4Iv!r ziAW{@)_ChU8!)>B5ISU550Z>1!Q{ctL`FW7>AuiMVb>6L`l{}54OIN2|2WD}#9u^` z4LUq1$rQj1fP_kNbO6Fk)K-KlSKL^LEH#`YMBIRp%UuZeCPEAd1*GOaou2G@6$<^L zcKaDRDs1E4@`;%6KvEL$)^-klt1)14aU7FW4|pbl=zY#HB`PIqkTMd4k^si5~;+uf%{F_SznF$Hp!N@Y4)fnjE+7XbsTzR9 zp|U|CKvFI^IXQ<67iYDKx*Kse{F|YTC@5eATj-42iR1&VCN3)(`ilFHa2_(Xj$jpV zjo|QkPrP!ZlF-)ZnwWD04>R*YxH%X$4(|9{Z}D^yWS-bX1S0bANJ0N{XWu?*N)#Cc zIU&y$bnrM&-|y6t+V8gwE#_ZAe-CP2fu$996ZgeS%kDBn4G$${ML)@qCq%4f+D`Zu za269A2!+9u(r2SPE;!44Xc6tatMrFIUGbJ=LSoaegS^C){PJx*z>@k{f9 z#RrFL#dUv-xa!S_FFk)-9UmwfO2?(l?p?i6!&u~obwq-NQT)MNbG_1=weNmTHd$zGc65Krj2i&-LHJGR#%`tt2=z7Z=@!^Cs9d+xi{+Ni9@gKD^uT<%RVavGz0}fx=sUzrO5Gx3Zx{ z{#_4u^Aer~Gj4}x=~!8}P$??A8<%w3h+;^b|J0|6IiyHS?F};Q`|&h)T;ta9_(&;M z{CvYG_Ib=tp`;QaE+T9xmk`?sjEFF2|FyAHn=h`o8w)TVkKY#2!1+f7I|grLibJC?`cOPt`cH_!& zbcdM(@Isq6+>MNf`UqMIjKOf=Y_K|dA+HM}6a+pEIKBc_h0BRSlaaUFocvc7OrR>W z5$!hRXXu3Rfs8N1S0Nmder6bvrs6Mw_#pg7cHh1~QFzk>kIV{;s-+kMluqoUdo%9r zw<#NJ13C;$za*nn!7!1j^iYEmH8)mt4ZvHpL?8HHNqWf+gd5I5(g1C{AHE2736NO1 z7!(4O_JvV4MsH$2zyS@yga~Fp)*bx%2d^!)x0$~qr~R_mz$SH^u3)H%vH22z z-y`Z8;3BChF-a)gvTb-4gY&A}8>08ypisXx-Lpp+0v)jDJ+{Zt-hp!!vi`_HN^8Po zFix3b2PA_>5U56a6r6M+5fSfm+~@c}>IZdCaiOSy1aoF_EdF7lS$4pt4F2-7{&F7s ztX>pRZ|hS_R#HNG*5NPlXpDYcsa$SDc!>8 z(~fy|vm{jh7{*q5Wzy)RyVVb)LC@ubYzdV8sz4o#=@x}Q7RFIFF1 z{NBN{xqkVQk<1zkjX1@A`Q?8gK>4?3Lr)C^iVQ!&0ZDWixUH)VVMcb$3%ee!4|;#M zfBOC9f*sUU3g%>>Hpt6(7*ok931Lz7?R~q=?TWhB0j796_G{3k#6cn!G_e;FmH=Ep z4ehskhm-KSm*DWgH0HuQMR*5DZ`Djp;&!ubu2kiedA{o?I9YhL2rlmmj13kq4&?r! zEOJTc&W+SshyzfD1Rp{l9BBao0SIMoxQ+aQf`t#_v6@78fXc{EDLL`!Q>D_r z=%%AoRU3l#h`$AjK|CtJrMNIR_3fymZ}XDIo~;`pD@X-MQuN!w$cPy-BxEKGJ4@hd zW3zPVhxiqd$k>TVSSXQi=peGtO7WW!R2giX+fd{ zHa+FZF*N-T19bs6hTde3%6%1>)Ufq)d|__M2f6dP_nEry#Iqi{9>S2FRQcomSDL^| ziwGI9P>-sG>r0f8=P22oHs8|y_+eGeWmWg1zaRzvzs1f^3+UZu=^yinTUyk^K#uzod5RKrp^~HHbNl8J8V##LN zMtxeb1CGpuGNxVVwdPx@pZw6(E*qrF&;NGxmQ!EN>(jfA^B!pvIR5RBSlK$jz!nkl zap^{Z`X#|jgWa3BHJaFXwO*C33)C+@_(JcqX3BuL^r5jYJ*t!&wTj{`P=@es^NJgjIif!|@qGD#l>u@;k!HN^=>GP?e)==O-}0hke@4bXjHyFk9nF7qUY zP3y6zrKF|7_<*<)Gbje3ktAUQ(9NJ&kWJS`P`PT*Ug>vJOTWk2Yc$k2c3>gFp=FK; z2sA~GAX=dob^SY@Rvl%A5(oxo;02MoVdG)k z5|1{|0q`9vG6F*a&PGH>>r)LDbd5)j9D%Zj*%Nn)c$5$>E!d=>mZ}4(05mpAIUNsa z20_nVxDL1Puv04VhV5WvBE zB!R?chsK>7h8j}u{hNh>d;Jg|GY0_3s1za6;gXSw$DIawi+K}JIKj;?(E_Cuna2gP z3%cRMsASQq;~L|6#KBGr)iVS-h;0X38H%-oNKhgWCpQ;LE1;poRO37R3KS?9yf)zY zWS|&y%>>v0dki#R80tV0?ZMBFSXsaQniNwzKfUv*6W1S1sT{PF4Uc=dcwYC+E#vI@ z!&1#}Uf4(*dEdLkAp$~4DZqcL3bTU`|Ulvmde17dKR9ok}rQAG!6OZ&+Yo79< zgwifG+fu(QD~78V^iq_0jy${Qtf?)WctVVmK|qRfbMuiFVZDYXA<4_$^yxBhY75W* zzMPt>tj3Rm?o(u`RF6nVpvq-uRi3Gxx)&As>K<-el~LkO+o!Felpn&Ixy@VsZS{t2 zVDZw6m|A=7PlZ%5aCq~Gott|4!u$UAt_?lzVh)XUw^^&0LQ=Wa*;B8^_=(+(`9pIV z+}k5&rum|6>@wPo1xkYLE;2^mx-pL;=+q-Yh_&ul(MY4;a_+2^HeX79ppMXi_p<() zHBl1+ABT0N+N&Pu^Kgpjs036iM;mfhOl-HY)b|hhbdr;wo!;M;<-Rf3pn7VkeQb;^ zzeugER7tCZxJ$&FYk5Hnhu1gH2XV=>CtLFIk4;D$+x`BSeyL@DL!e%3S!(!m{-d?2 zJB*kZHh*Z@o*L@#{Yhx?$@LXKc6({=AFb8fs2cXzmOuaCXwh@WWxD}8nn$age_p_ZE~%vN4h$ZbGLpEi+gAA60ui zc!246w;qoTBKmCI0-cXs*B73g z9oY^lhK8M{S-i`~+9v76bjGPXJSP=IRL-wO{S1nTF1?qYqA+n$rfk-OB2R7L+coYx zg0ea(cP1h1Zr?s6qg=a=dOLaj{qp~QVY-TU>!>-``TT!>IqUJ@zaPP4J?dINz7@$o zOO}9ZGNYGEW*7evlah(OwV_gU)7n?A4HRhxZzi_Ibq+Gj^ha_!xp`NVNbmJ{aY2Q= z!Lr@(bOxpK%zzwhes2M6TG`le?B72a?$(BPUzoR_u2*gPeDhoAuB@!Vos?29o<5N% z3DT^4vSvTAYN@GPg1$^aMA`GB#5Ufjk?_AwYdf!Komm*L|0Tn3odc0O(oKm40VIi+ ztZbIdniFA+Y>Up)zxjIwf%S0V5%jpP^oG^ZC-G82TGTU3jn_VPgGN4;m-wmvapSd~ zs4H(KeEP3ujovEraVrUmDP9vle*I6NTSoTrFEyDStpzJ07E{kG7Y8i@bzi$KCHNkU zjrpwYaZb+ZV-544b1p5SCK{37$C_oz3M(Fkiu^D=`cy{D=E7>6lG4a-YAUnJa<1dj z7rw4kaW!?^JX}I$F>NzYtH;f@_bL~syqxNSpjt~GN~t1)Sm%?v59b;p!jI-n=f(o) zulQz2?$K<}Pqhq+l_Z-8aD6ji#n1{^wP!Fumw-+IeO9EH!vPpL{+6(?;=Y$MBNF5V!t66@0vh;( zS##ubLWX9jW6~Xxbx!&os|7c1zeu?!$9@On^Mo*MuWHUycJr-PzuNXIR*foc)69`w z!i3*5)_)v(M>wVR6(8#>g;gt~@-w9lX2}^cj`exT#~0Nn^Q7eGW-A6A0Z~`iiy90k z^5&MyuhZ|KiFxLnq}O1@!gkcEQNZitWkxrRnLOsqAYl=?>KdoHy&tx+opInj@JUAf zB!Qxfx;20;<6y)Aj_~YvIuDPDY{lJQKt4D*lL$?QTH``>9Of2(Y-y3jVT=P0u=ItO zhD4}+?3e+)DkX^`fJx(FwLBnRC?N7}dyVL~I+gU2*{bLk?h_v#ig5>=kif$MsU$u7 zG+5<>fiR7RQi+`WD}*4Gz)>a1^It@;*Rs^3IO?^9plMt|>jC-7DKaLe8i9h&auGrmV^#~)|OWj=O%)>9X* z!*||@$zg+dv-@e~yx!*5IxNT6LE_>5>k`8bnOhDueqEdidaCJ#f2mJ$l%DIkSH)xI zNITLSxo!=yN}Z)Qgb}cmf-w@r+JudOKmL@@NruyO!_t{Jo^W*j0DBzj614~TtVKU2?{ax*WJWW%JhO6!Y>5Y{sN`|1ZO zzy2|Ipe?@r;_p50-&UL_!u6ovIdaqTACx%arzb3$nl>2k^%870Wa<^&9L@da1M3|1 zUN4zl(bOjg8ttNsrBA$PbNRHH1ikGOM(=lb7Z>B@0Al-ami!?X#+yb!_yOR8fKUn_~J?Lyn;l zvzeLXDLH481kDassYjQ5f?lpazlZnwk;ClInzcU<464UQ-|Y6*wwuqJyA$hsj{T9!Kxnc>&4`cr zDHR9T_3lM4!+&nrW*YM{cloBUWBR=!zv$webGzACZNENj+l9)D(7t@hA^p#DD#w5R zYOEeuQP~{vYpBWXVmZb1UhAi7e)kVwvr3gBm4SqN-KICqPeKUGLo^r&)w&3G42o=G zCC310_%Mhqgv2zE^eo_6%Ztr!W0Ue5~U7H0_aZFMF3urRGCw@fD*hI8boUzefKOJtQDw*B|?aJ(j)Y zAP0z<(Ir*xnv?69X-f5M-cIiL)~?#%?{y@`?zfPg{pN}(i;D(PvCV;J?ZsE#F@@oP z%1izbD93rJGT6|BmARqm;Z~(l=2}(VUnj??UrzSE5Ow?V)GD%5B!o|6Z!nds!^uMr zm1}0ts|bf4Yi|)SX?(oex?FgL!!({&V#CP+ytii28@roKuOz2^x)y+~Z>OemoohFM zz>>%@z~w^E&LV0A*ALCO+x7t#+jhG=MNXa!5(AZLu&MG2yKXCFGX zZA5X2)yg9%$k;soYY|ihrYw`e7iit>OL~V&-of~U{)7l z4ql;q+2cN9b{C!`LhyjYA0$h)>zK*S9! z+uLVh+E?ecCr9L2x$a>NU3K|(D$7JkF)u=fRU~w8x&n8^3q0f9ADu6zJ;Mffezi|Y zr)qTfHKFjmwoezH2tOP7BKYKk73V~=;f>^HzSc#GzkF6(dmdd)s2m)Ny~}mslg`^M zj)gHr4jErGQ2EbKt0wH5^%0#qWIMg=H9~tBRbxV->YOvvmj)I;p#eNF+byVvBL9wW2({p6FT3hX5&)w1~O=-7F zWd8!?J!M`o*Y>&^o$mhG$E41ES8+dnl%f>ryreZmP@vRSM5Hyd)%n0k5hB` zn9Kmu_Li6I;jbo?65jNgXU&?PZwU9WNPv_9L`zll zTf5s;q(o5sq%bd2+j0L*p%EXAj(PK3mRhAacA7USzjCQlz@)m}LJ;5h152VTno~fW zZF~=|H4p!G+@^<7x=M$s-m1Enu zX!~uVwb`rKsi>*;9Wzn9oN_0}JxtxgUv+cQ_US}roJkumU9;_zv`T9IYOWj=E2B*9 zY0R}>p3hv>jy>pl0R7r$v-$oVn^J;Rs6BU&Rnou|GqP(P=}e3m#E>qy#LzI7W^&xFt*liuJEuNs8%({*vo-N5e<*+l&9KTJULAW*?fdDGazP5+|>Sbff!k ztVgB)v&45}O2`P7pWoy#jeYsE+JSasee6+*ThJ9WN2FyRq-+`4LEW(-z$LRGNQNT7 zWi5c0Z=JfPOl*jVjntJaE}6zF+L&WtYWAYKdK(_5&HAkEy+_-n}ZN zyxB0BuciB|?>bjue33&+z2bWg27JgvJ^czs_hJIZrZ{%r*>EMasyR2r;)?Up|pWUaaE)W`yFxubqEjCuL+z<@k55 zG}#m-C5wE&F3AZd1G=U$?n8%mGdBbulKwR>DwKG8w`qKV&?`%Nes+fC9}jtJwA2+j zLthL=@rL>ar1NBuUpjfp>_!u7t@<~ zYDv2V=i#%F9q3(hlk}WbTkZ4ft7p`ufv8a&mAG@;%JHwtrqeAI1%U?hB0{gTy|jX& zqCQE7h`vY3KtzUa1+=7f$fJdb)gRW(andB#K5 zn1|_cc3O2j=UQJ>=GY^_%r3X4n)^PjVow-&T1ypQR)>Fxca1}&s zdH76YE_-87*cG#j&*QeF>fgWkz4+_nR{Keg?$3wJSKoFhavves&g$vqi(6&k9{`*8 z70tjUA_GR}fMt}2ym^R?pe48j^6eHJR|MMyCkV5SeFNiXjq=5>EN~=}-=@GmKU_B7 zHw<|IS?JJ_lHpM>b&^SE(7c|9Zt7ooE27|Gjg7+;DE%x$uc|>as8x{jbr>VW5kveA zJqO_LOI^8_Nd1J^xyOk0YAw8a7H7(PBFTfCm{v#y-oEe6nVwf5P%4CEXVaa?I z}PmvoNxe-^9Y+@CG}{!VxmJM8w!!upd(GtNjJpn65%k6WN?vf#m4eqS4<~j zP2pRzcB!(E|kG1+qi8m?T@@#89^W>C0MQ%7;S(WnL%-- zB))>k6fSxG_r$_M#Uze_E>Zrw8GRHvV+O9ggb=cl*bE;y7WO`emsFT(WN=Cu0B z;n!X76VzE(+OCn}^zCG7R!!qnm)nmI!uueI+n##SiiH(}OJhStfG9hZeyM)N%gEk+ z|Hy%kH;qMV_mu9pkEfNks+DkvKpTcWZ~RHppld-i^joZFt*o!=(pd(#r7F(2ZfsyR z&iEBfpO|p&jvty}RAkKFk7EoOu770$(Q4m2nQVH6|E`d8Pn&2A;F|i&Jt@^0--1*2 zA5j$7}28guy@?X}qgaK+Np=!G(WL84V`_LjOnT_vWTg=JQly zE{!U(0-Ta>gBmX+op`UAc-@KYA)L!0dpzTHDFwjdLE4BExeyr7+tT3ga~-B?{5LtfJ*NJNP@6-g#AQOH8e4`mkddlDZ$kpja^6-$P? zLTHcqzq^r{PlWKOg$O@Mrcc>);71zq%z*}#CMQ35u~Y=#z}*ckKFOK|=%GkQg(9T} zwo-&*Tqy>n$b^QDaHaU@*l%8n5atSN#1xnyAsifK)>awZ~(eA z0-B&HxO#kT*$MRI4Y))|1bFA`YkbhCRv~%_A+xAvd^;vmvH!xZO~^U21)jAlQ-s$H z0ukb1w}ezKQ81FugV81E&1YJdWfQM!siG1^Ei+3dHEYg!z|MHA)G^li!u%3IJzv}-(z*KXN`Ab4NW?0l(fGtLCxS}UOgsI10HTkrK6gR4Ln>GN%Fz6!Au-`s zmph5=fuse{r+%i$#buv`l1C>w6fUO}Upkx`^yuwca{(2uv%$VcvXMsjXSdj1%X=&u9?s;PQ!Y8=VvxiVgW3p`4L&rk_a^_n6|0x}FTE!3b=m#*X4T;Hf!+ zDX9>B;?x7=1CI7^y*L$fUSli5&Es4 zSg^$NgMSP98i%Lf-0R_?A*-%jPH+iBP{UVG%%SWfiLhb_aw6*if>J0fVOarFPGV-! zI&8o|WH?V$)YMLJg(8{_5wknG8Mbe)#DD^fC6WSYgqdnHsP99AgFV|XufOAq$(Rw4 zAYiMHfiJSFBRL6Xidk3kXu57geEjYPfLiiU%V(rc}wFV;s{k8O4DT8wz! zMXow^(cC+e_Y@1M_0qq@t7Y?lSIpNb5GX6W-0S|uEoc71baSfF)YY5qyndf~8F)uk ztKWzDC7t@D|6*T*;K7IW2QG5b2uIZ&8e3kCq`TX~n@hD^ZrVJIlrr%#$-&C8rQ=TJ zV;D^A%zx;4PL6@to*%E>Y7`mIrNl3fa5GD}zNoLSe_a@*nTB#W1;^QX%5~y_>>bxG zbr%Xnsduz{zLv4IwtmzMZ$HQ}JH_nR|HXr}7DuK_MP$Kx7M)tbL z>aX}YET4lI2B`6cI1aAhyxKVRqXgFkr$|Yxi&Ki>Yv*)C%g}H2DbWbtZB~wbz(0A+b&v)s_-+0PVlRw_>I2mAFPv>-hm&l3ZGw+S-7DUv`*}>k z*E}B}LSF5E{}$BbGf?clNB);$v;4n*Y}o(rAOELM_WyqE|97+gZ@MJ!y4(Jt2;>m_ zq%=2Sz?`z@OV>#n<*@+1mI713$?-=N6f>#YDc&4kDCSI6(v6rSuX>nMI7HPETATV3pW zmC9FlMMX4JlY+wDjE+K9OSMF&Mz7H`__=ubsS|1|Kiv+AKmW9++3Js zy;(1w%T5m}ik8zlfj{L|G0EpH{5bUvZ6aBm90RH$KcYXb?pVIsho|ko#c{# zL>XpO7`GZ&9xqpUcqRGfbD3}Dwga+pJdd3@g2JTNTbmk&=sX`O4)KtYDR{wgO{`01 zB~H5IBv#Yy8u9gS62GcC8uv=38|y6=mLHj7=kMJeTDrGxy49a2>~CM^i;F7PvUyep zww?Vw5G{FheyA_w;H;$<%NNeklh319A|{Kwa<;YXt`I$JaJQbaYwE|t{7kt^>jGHl zzRbt>HWVt&Z?SgOv!9>eLP1e}l#)X1)5pL-*2qj1_Mg{UW3)aMv&Twj^xsI3Zl2aQ z>(IV#D!S=uxnbH|fXd46e$`y%uafLT25Z^IK`{o2rty7h!UE4eI{f35>N>Xlmw$Ib zjqLYjw~jq-9Zt4m=I>X2&y7!ZtT`C@HnB#njkhkJ>z^nO!1g(3d?*|5C^GjrWU|?1 z&1C+z^UCq#y<>Zu3oM;iIv)PMJG-4HYSDRZ&89!TH#{$*V;zN=82PjzfvZakl>CN_ zZMoN`LYhNfvleSf{)pSyw3A8t=lrhNo6hC+*Kcn!J0tPZ<0S3pYUc^3?zx4JyQGC) z$&0Mq)j5>>Rw_s7caygDJMPpyVM@oPhXq5fs6D^ft&{V@;D&hNreCGZ`ccVuq|U0A zT-K6MwJ_!xubr5)a@7kA<&S?`-;esDM+b zq|DpCR$ng8fIY+U6Wy+3xZACek{`EKFf0P(>W)A9!^ZL4mMVqVfC|An5^i(gJ9GAmUvGWRr=ZU(oTXJXH z%a+|1SDrm~(9`?c@%i)bz95~nJ$hjadi@sT)dkwU4sL=0&o*1#JgxKdiys$j0q36T zJ!%gP3dhG+_usy5qY(1DLAW9R;%#-2+b3R+1t^_6UM@=(?%(?^Ww$j;UfR1yCH&}E67P*e<5Lo^Q(}bTn?Qd--RlD1J45UU6hC4bB7pY#G)RyaA zQ3@@W5zXS~x4vy|cCw?f`}rMD<@uO1PZ{DloGT+ASn%7m+L>Pc)XW`jefxyY`+3^$ z9?fx5nO(56Lx{{AN|8p1`-M1FjWd33&jo3%RR z`STSE-zVL|f4fefy*73w;Pu}HdCqfc+seDLwy{Wl;_JwCQW}|Hv=)G~=-xck(*)_v~7eYk5~9yurHeCM0L-`>By zqjtMk?#kX9uKMufIhQ>VQt@hT>gmX$Fl-98Xeyx!Q&t>4UAjIqzGK|l)2TXGM74i< z$$vO_rQLpv8NT+mk3Ao*%$$qJz9$k`d6#RS?hWcH%KEWVv3N(aUkSInLY#DT(%JsD z!|OBhsJ5K0^3mN^b}J_tO*^!^Cysq=zTw(F`)x^H=p-%0d!XHLp@*yd@oMVx;?nJM zy-vQc=lPR$E-x(QHw-+zU7XF@whPZ4JQf(1@32d1M>o2Eql5GFo%=MYnYL5gn*_1X zcGiIyu4Ys7Mjh&x>2~K`<^5{cj64qRH4FH*ad}{)*&xlJ+sn$zuC}7BH7!Bszz;Fg zUIXWnyr}Xizj?y3(&fS0O_c4m%UWW(TAb}A>jb=J6OW0l_p~Sj8g}O`#J(MG?uIga zYk9ey*p6L%yMWYrq}Xtui`cm%$?mptVHdyjG|Pc&DWrB3UhT^q(Mz%x2$^U1Mpoq5 z*t_v0qD2~A_gphtEVCY7+-N2kKYgYsUNi1;l8RBmHi}6k*Fh;RoAL)!Tx__oJu=|t zW!gOdX~`n~x$uLVr#Ljq%8%?l)i-=@x)u5^eMLL^thsiXl$JS6i|D=nRBPv&?jVcW zMW<(7KI}f&vG&X6oOQv%!Jn?ola3`I=iPV@rR?pzUCe|1m(^m}Z2wH2 zY1xr=w|g7-OJem4Ys4NhEe(v<5lZ&}pMNxC%a*LTv_!9gXG~_U+uHK1$EGJ-FuDS(}P)Yd0LDmg}>L2GxyKFw-cSxrMws*H*y~p)>G!KJU|xu@8-DH z(B34cu&B(*dzZ+rp7Necj=qO$u^M!bU)nKb{d_#M^xoIGhYWRDOdI)=WR~h&b8^H9 zYo30)-~km1v`(~^{Ir>MqK?;hzmV)7o5d9TQ{J7+4n0hkRWyVCg+0q^+qXVFxP^kw*T^2ZFl%+MooF&^|p-GO*gXk_J)%T^h3R_)z#XbTU|b) z;+&%G^tUuYG%%KM-n_NOu~$~HzSS`xav^u5O1akOg=F$pQhRDgV!IDzgQA!BWkfK! ze7J}_eCUKndAnf2hxP%5Jn~`Vou~sY#eqgkgNmJ$ZOm@_oRJLJXSk097gL7rzbayz zw!UXG=22HUsRkL1=iEv0J!D;9I>YvG6Nz+r3ODbmQ3Gugg>X7;>Hszik(Q#=cV?Am zXUpc09x0{RWOoT?L!5^v6vhZW@Ra9jo?mm|eFew6hb6gS*~htjY=8N~Bbx={zpoEz z%sz^4TQ&6X(zn0X%Q=tJF8Hmr_%I$j*j26IF53xG)Pgvjc@yVrIv+72nx}u4Jz|sz z%BRBu6m|ipW?RDpoJFGbm5h@ToK9_f!f#KmiqrNj?;Z3>9H&bs{6oWQ>x(GeeKj>- ze%Zf;hR`9mX}aNThq~Nf$Fe`-@rMmXS6UZ5T2&rJB)bnbjfUTWv15rklxL zu`t-^p*h9r@TSIAO0V}v7c=%qiBzZ1zw3~fSxuXFeq9`y3W+qn`zb9z$?GGDmoe-*C={*B9U5!*acBy@ zuzAwpYq#JE>q;B5DLRQ1dv-4A!LmJ!15qc3Gq2H4s!02VZa4!|^pr_0^X>OX`}b_& zDft#_Ztlg&;?v#Ai~~xWDYH0@#9yl`CXTWHe_;JrXZS1S-1#I;D&jN)!eWDbZZs-9 z_C#fmn#ES`SH$_wG?q*z6LE%fezo=fx|5eV5c~`byRIPmEf#5zzAn&&j#yR1_G^kZ_;v9)M|X9+0Kv zl$3~fWzftw29~!3@%)JD$hhG`XTA-HHpK=5Za!xag$#k@5{*v34;!d&kS){z6si#r zAF>R?-sa;-{7@EWQ>hMB+3&8 z=pldoGJgy~#{ncrG$1|882PzP&CPlcz=!Y=|E#nbu*ukKt7V?hv?dyi?g9O zW=MCk6B`hVUc7Z5AOyQD>JECzV&u(t33-I_OGZe4E>TD$M9W3+d2ud2eHDgpS;#!? zhv|_7`W$)SuMn0=2(34v*kgE3Ki6_P7YZTmV^x4iveBFtVDORORme&K^%%NUxo*s0 zC#(q{J&Gi9!*faJJ~NHwKnfuL?%mzM2{Og< zQlyUMxcCV6!8}U<+=ol(0V12}fmZw#!e|oThvv`c32nHy&d2x&x<8-(^NZ>u;o%~P z$>>o3iR}XZ)>U5|5Z)O0(pbWT#$%e1X95q~w$&GY-zr4f>dM6`I#d8#P2ir5;cKV~ zZ17xa%UIV}n>m7blZ%%Tp9T#!FN_}{ASz?fId;Z!+-Ckx^*VdD5dz`&j%>%fLGArmO+rSbCr4PUGr~9+neW4wS z%!m(<*Y_m!C z%}cLq7~90ka$qQ)kd&Cnf$`70A9lkzi`R?k1=>FjuC4}D)#%62hNyk{a;VM6RMU|{ zi9Rb$k(uJ(m=n=Cidim5Y_!>sh`Z>PiPqXeTb%?Vw4L}+Qo&C0(NitI? zUCb(gQ;y+aF`8eS8!J0)72Hs8WMt3M3>n!{0OF3We{Bqs><>f(u-*r*Z(C zdV;NBqrDtq`h?1bAf>7y;~ah?FKLcs4}1B=ZsC^(4erJQ&-c#U3g6-DxB#`nM6 zLG>kDYp;l_X?pX9m`Rl8sPv&5is4vV=)?%#wZzg@pAJYK#S;p0tNj~~S{Mm8U(P4J z&6jNvsvbdm8)-BF>cgCA1Z-@{YO(_e8G4&Gz1~`*$${M+4cY!T>UtXp=mq6s;)C>b zb&r~_k$9xi?;+LD6I$iY00iJP;txF}ZxG>Q_G)SDI14wdS|do5bocb+Wo7L}E+W)U z1-oWG5Dcbgy(4f9@`PLkF)UVGd%~7oHz96AWozsTs{j>(cKmoQ06mcMY#_hg_At2Q zmE~+0e#<1@$oEPH1i{8E;f;ZdZY7592fNLaOOyvbA7Z#qIN%A1wqz=hQHKqQ_0T|q zX?+8K8j3-AnD8OGfRd(dIr;r7Q`ur-l1+TR>GNwtMM103@2+|r*VuVJ3v#+fpd7D` zoO+Mp;Eb9C73Qwgr}7XOJeFOuw$yym@qQC|r|X9=O&ims?2*O;{&g=?M@OxzN-wJR zlw`d-HQVlXsO8$~jzZ9SN*1V_-Xdfo(E@V$NliP-3ts_>$7`XRCCv z(K)A1PS`NJ{GUyadK9ts`8Ru?KxLJ2XtNyg_8$08;NxX@T#%n81^HxX)c@IB+1kb$ zyy%zTMRa2QPXofgLqfmRL-=9ZMM#)Tt34 z_{iy^%oMXr=-!K1i8mzD-9G*MKd;JIPfl%RwLI7zD|;q;|E$;mcp;R=pkHijw?l>4 zxsp2dPl2Z4Tpc0Otck}M1vQKhQoF~tn>GG;dEy6VdpQ9SJ2dhP;=<+`os`dmJlE#5y8qTzT>Qq&y{@Iy_ lPOnK-!XENpbh2lWN`@R~`p*jsUl7lx?z7#?+jHXk{{m-@PXzz~ literal 0 HcmV?d00001 From e1eb10a555f1e02b1ed6f9e5821bd571c378856f Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 24 Jan 2017 12:58:25 -0800 Subject: [PATCH 163/210] delete images --- windows/keep-secure/images/big-browser.png | Bin 87552 -> 0 bytes windows/keep-secure/images/full-browser.png | Bin 73835 -> 0 bytes .../images/onboarding-small-browser.png | Bin 52922 -> 0 bytes windows/keep-secure/images/size-change.png | Bin 101384 -> 0 bytes 4 files changed, 0 insertions(+), 0 deletions(-) delete mode 100644 windows/keep-secure/images/big-browser.png delete mode 100644 windows/keep-secure/images/full-browser.png delete mode 100644 windows/keep-secure/images/onboarding-small-browser.png delete mode 100644 windows/keep-secure/images/size-change.png diff --git a/windows/keep-secure/images/big-browser.png b/windows/keep-secure/images/big-browser.png deleted file mode 100644 index e2341dbb87823f0c3eeaa00dfe02682c33f80844..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 87552 zcmeFZbyQSs_XdoKinM^VqDV;RATd&+fP{1lNas*Pqar0Rpc0}W(hbthC^f*)-RaQX z1H;UBMxXcbeV_OJt@Zu&{q?z)%f;b7=j?s$xcA=Yx(!oPQ6RoXca4C6fcVK{xn~3f zmo^9pE(~2c4_tAp)YhAwfs~L)PHYSjk=u&sV|!=J}2@!uVdNMFJV(+)F)0-52h^ zZwL`T6fosMz5$UCbUtfj$)m(C)|Hqnj=$=vcdr>j@H~!!S}zHI_51uBtX}yeQs6f1 z0zqlax3<-b_{-F!&~=MO!?>#u27-?nZ{)Sv@K?WiR+;lsE|w^VE)aa@V&y7%a1OZo zvZaa9CxI{CLWY5mz>>rC-OyG1VlJl5QREvyQ0O`V3_SYE#sB@@g%4fv?KCr5A1nc^>%kP9YQWB^(ew>V=@OF*zW zsucA5xk?MXXBqJQ*+5eNgFKV7CNQQ6*W)O0FsK1Pw1Xe&U^`4~IAKqI`toKZya8tqyhD>{lT~}9==V3ZH#Z&&zK4bvW2D}4kTmU=ofeY0y&Nlz?S`w z0jnNihi6Ur-zCV z(piLEEy6adV&qDnlm5#Zfq-A#_~QwN{K+`XlEDj92YQ|cJ{mC^NI^~8E)G7%oh3_p z&Ern7w;7Mf00;c10-Wd|ljER(qb;lvQJ$d~ZUuan)f0f->xwY~yyzWZErOTz|1g10 zs|hANU}wxK*?~XSPUbRZUlr#jXw3%5b{D{h;5qLhlE<93m}m8+8Ie!x&GssS})Wl4bec)uqYB?4SmZT9c@a2Cci@?si+ z;2e?R5Z_zPEAroMXM;WW#q1!!<7DTOwgPac1yf%ps~~9!<^T6%E@1{$&jtZyab=g( zJr>1h&@fq%nbYZ`2JAsmWk0b~-A*flIUqlm`D|ICz?!+?WT*&R4L(}>1TkR$KY{sv zfmEWGgt2X$zACABdQcxf&kv2Gk9cz+v`2HGXz# z7~4fGhOvG57O&5gS-sV8YV3uIHK=rKH)8hN?@No48s{v$pvNLO?X{E?7b4lWYePQc zvn9!GcmH)u=_;t(U9$A#xVP$r-Nx%>EzzG)(fJMs;x#i!)nicseDZF3c-nIzGA{W! z!ctNde72t@b&z8@!@$ZV@V-_6wl^Qn>)o92IVFvtsQyqN30>wkA)Ysy(VJWE)AM0q z!)T~gJM#8O>?zwpue&Wdjf=Lq7tBAXY6Zb6Dl2M&vCC;u>(^2u{q`2ShRujaU(MGH zs~_2VbrQaQ2SyDgG@XM{A#9kEzY0GP89C_mex?Ip3)n-hub$vy9< zeAPk~+L7eOo@o3)u2+Qt>y+pJL1F870j95JU(2wx)<$2q5 z!Ia5bY$moUPCUh&nNH`_km-=8yy=XXQPe=#KkdPk@H79~`a7Z{1P*M~-LLL4UQx80 zJev0D;VvR5_!K-)#SQm_(Icwo!%UEZK3ru=>JdTXZ9_A9 z!*e>$yh9;LGn<%|=NRp;clJXoH_f}`D;OVZxDjOO(ri6UqLBGQDjusgjIy0o9lGOE zBe@8wT|dg)-OJF+7rJ-p8J=JOo7+n|G+2k_hN%mrkgd)y2B~Ve|&$ z_po_TN!L1%Kqfx#YhI$He3M&$Edyz`X|qCbr|DJUeVI%{@3w zkEkpgKFLlNKo}(DnaXf#M~JBHa|Ou-EOSYc`47mEzT6XxjG+R?$&=hOw<{;|cK8Ft zL{uIefx7z>ov&4FW-Fy3Uov{ek{(M`SjjV|0z!o=`95p*WyB@T9Fjmz7IT`X{Mz#4 zEgJX|_l-CNM^<$VPf3GGP=KGRgvQJq4O{mVh3?%gyFzJaho#^ zw?Ft*ecD->OQ>kZ<6~ZCQEeD>q!k z!)qlyN7pamLXcz9=XO>L_CIOu10L_{v>5`I@(=Lo^cyO>ZMpcU;JRe z?f2n^H}5;ik{65R%9hJtucBnK-tWiv$W!Gi?%AS=20QCdt`v8*8NCQze|NUYk|h4c zag0iEv~B(or6}R;3+r*(@x}&3^0759PPHcB{T4b%vFdsTfjy#B>=A3_K1E)wKc{$N zA5ZI*kq%CJ$}w%pM$2U@rLU|!q9fx_zuD1fRYP7hOtl?N8Tgb<+ix-#0~X= zjS;!Ys#!KD_ET<-LyXa)(F~H&QN7XUtCq>^)$t2^h}R{BoY_itkRO-<)BG+!;X=Qm zya(5Gm=W#V!UJ{J&f2Nhv7O`fxzF^|V(xe^>h|_$7k{cg8(a;QkefBG?LhLZIj`yYs*nmLt^yR|C^gyxa7# zqJ`k+9ZC+qYUP;APEf`pZuk!;&D?&gSc;(j(dz~sj}7kY*AneF+$?%|>7c`@X;`h3 zS}H{jC&o$4Ny^$+GCS_oNW~3)HKpse`sP69#_q+1jk@S035x(PG?CUbN75S|DfcqD zG*h5T@L_SfJBEev2NH5lviD-_Cg&oHzt!@~M20wqi3MLs;;!P{dczSCKmLA0ePdA8 z!MBu7h4YF|XF%bR@&RgJr^r2g`YL^AQb=AU4Ow- zsnU*IHSbI&>e$Lm8tW@Zbp4f4xApx4>9+)ma*9u?X$Bv5Ntl48Pn02AKg5TVZ^+uY zk1P8z#l~r<`l(U-LAxxEoo&7*sP;1^o5YjqG)IPrr;pspJbV`Ls2Y<#F?$WPQm^S6 z6QFNNhn6Oq5+HoYU=`|nKd-E~JmgfT<27A&0#my=_glQp^n`Fs?x{=RpzfR<${S9K zu-rU3YuDUi=5QIOD8zW`{YETDa?7DAV7ek-)P2BoY}ldP%4zRBl!EWsn#oaswtKZn zE(QE-0zP#;DgBN7BNrM3WPjOv(sv?E#wvt&-~Syav--{GGhZc{}12@CM%V^?OBhA9`*fEu1A2Ah4?wEtNjoJRLZKjtY=#=%PK0>{k9?4YDKs2O;DyD3F)lF?E>{jLW zwgjA2MhuNPse#~Rc<&fdS(3h!DSww|;4dmvIF$kOYVtIX8LC9(K8rVkU7FjSTlKk; z^H!hsmS_!MQEgUcpH`t;;e!VwRET$?`<|9MqhOZdmNzpcmGv7zxxsmh$zwjn9jn5E za%E9Np&FBjxI6c!f2X`N!(VsCgyVgJM!i?@uG@5xfj`JkxC658M`y zo1-huM>tY6T7poaS?>^}zJA+XsP9J+` zcH1wb)2WPRTUqD@%~KR78;%{I=FN|OIP9*jzxGJdtS+M1eF9f)-fYdTr8a{d$h2A8PhFynGKyY6&HN7&BIMUEz2Ol%a7Y9-f0a* zdke;|5Q&C&iIr)m+0Ao*ScaO9Rxj|^)-G-<&q!%2mZcK=NWyvEed!0iR`46@&8SEZ zxM{vrh6$eVR;~NB859eTVdXYv6!@YPDMShyIOWz zA3J~W08YVie}1{IP)qx?b?l*mB1$h-O*_cz^s-}--{daMssE^M+ufnJaWfL_Jnaax z)=a>{H(8i8=M;=kg&jTVk)$Y*Tg;R`rVgLnk*c%iN@bW9xDBcJc>4U_)2;F8fx%qj zNS$iig^O3|gJJGk9x>c87Ywi}b!jEttt!%6963csnO$R!LKw>C35d%X20 z7cA@`y0H<$d{tvS(<8>}Zbw9&a?@=AZ3B@Z2|8=RS;jnS&kHZaC7WT0*VP4n=>bJq zO&u*6;60BeU?*!r^pfa*HWrKE*Z9Wh$$_W9zFg9EDO87y4XOX@F z<(K-@SS2u}Tw_17shcrsjKjNYH&!vYCw^NoEN%vec3<$H=TDoqkFCl@@t$%x_d7UW zO5BGPSh=o3kk-=XdCcb_iA+W$D1!}SNs9vOQZRB+Q-t>wU0%4NqVtlAA%p=Db;!du z#0qj`U`rN}>Umlvc`b>``|EDjOEBH;INIFN_Qaref;0A~d9Q-ow4mbBRIdEBYdxj?(6@L~G9nOq9Mkt<&gSs0|H){)~EN;U}ldv62_WsW?bTnIp z)5|;A7pIkXqUphpz3yE0my$>Jh*0~THl)u6K53S{xdrRK)}_Si{l+kM$-UNUHzJBY zc6mxhHt&C@JLyuzm67wmguZv3odh2QB|j7y$s_3qfGP2sdr69h+P?9?S`bU^zg%s(z8 z+}k&Mwla^N%ggL3Yavatr;aqfj&OMs$%E%9Kr4&}{-fTFr-8H4qys=ZRk`5lI^~2&vqXdP=R)VdO-c@7-6?>Q5L3KB;u-pdi^}RH!kvlv<*L_vg;g;w=&P z1+dmvoe=p;5c7ri0?`V|Y&H9Z-7#UEqSUrI<8{hFW-xqDv*Tjj=hqRgTU8&ivx*QC zZ>du?jAaAO_~%w|$+b%L)Q%*R)zg?hjLwN-E>7QGp2VWTJ9zGQMl2tyv(F~$i zf-NYEiQRl)YdIv>SM7eK?>+-bv3lu1T_=w$jkl!sdy@*c*}S_ZFGGfN>wC5%_K%m_ zB9}JSW48*&STzuu;KD4hss~Kzgz9RSpcZ!k{|~R-bi;l->I$#{`w4mc_a|GUlzaX@%p;dF%N3E9uI1Rh&eK3F@*7ODGku9)~g3S z@NsWEwx%lFwHs3IRp@l1QAAAmw<64aPp;7NN_y8U{EVRNncyg)tzTX(xhJl*7R5(i z`k~Qfr0ou8!TWWgF=ph(p~Zm_dpS2eBB2bN8B2Ft!um~Ecc=MrP@dd z-Z|C&xyG@2ZozR<8P@8jKm0#G2w@DT9i~>`nA#$yIwX?hntX>JxZ3~)O4v-|$?-x| zEKflDair+>U-Oi>+%9BUJbxpr7ddZaTn`gWeg=8ds#0HIi&6)5wYxGo zmz(Ha*piS`eVzG|2`ECUVhRck@d;a65&hn~o6}zN?c+gVa^r}+SH_ld1SbVdJ)7@){+i8MidQC(`a8c^ zA)bt3?NgQ&49{mZn4i|mI|-nsS@u(A?+@@KpRaw$kfqQtBo*^vFE358L#e#Pt2Vc| zCi^G5lB+O;0c>(czx&Gr5}9gmoIINy>dVa;P9`eUGEEQZgwiN3C6Vct9t9>FS`6u+ zyjvY!xb5p__l`ZxOLM7=VYPi;&M&?O8CTpTajUvZcUmB@Dc&Rv<=Fq4qP_C*agUm5 zUo?l-$=9-`APjR>>e;MYiY76lrohpADnx`(uslO?Wm>S7X0y!+cj#0Z-7ZykFl<1# zj{swLpbdLT+CuYdCb$z|{_a=V8Su~wdK`d&Hb&JP*7Q&Bh+%CF3kgR_E9hzJrjVAq zclb*IOV6OECn-meam=wd_Iqoj14PDDCK&e0@7ovjbV(UfwfXm`uumywB|zlK5RMV_ z8Xt?(XAdoI!KY*6!#GYd+GE0wooO_RZZVCMhyu|rvI=$Cid@(p;EYa=!vZyWxBS zm0;ez4jTp~LG$Y5Oy613kkRZh8{VFB(^1dXI~lby>}els=cxJZIdW-K1YwmSK1sI=DJpI&`hEj(2M2CG)3uN8&adFp zTn=4xLlIj6QFr--0GMFaLk zfkM!Vp&1Q?GaUadBUO)OxzzkLqSNlLaopMhXxg<>VP^fdy40IDqV@g{QkJTZmmc=&F;kjcphH^kCNI#-BFZI*VD=rPjqT! zfhOV(Zb_%(VOCYN7 z&pGoNt6s7jk%*pxulWsA2?m$$DahV9`584rz_EW%^Fn#d<*{2aymQIgXUgjoQiE4SKTo= zZluv~dm)Oi^oft!*^<|(Vj%2GAz+Lta;vil(@`Y!*HHNY__)yH16FC8nhhu#SoA<* z_y~b4E5IL1^;t00Lu$`XMC^rsGFj`Gm9aERN&L|+qT|OgXu3~&Z4y$-z}2&K|36?i_NX8LVz;XYFGC0BnQiR@rChx>}xfp150V>c@gHYIq; z4Xlrd!R7pB*G|T^Hm3C}M;z_ZM2#8MkkPSS=(Cuu486SB#)Mdk0_!H@o}${L4)cG- zy7O{#diz0V%hhUAI;`gs$5qtHN{Vo5Wnsio(&IaEl|^%3Yj0SR5{)PZDDw$wvSZM? zDiW%EOf@$fJq>$g%pHauFgPt#0#MN_Fw@yj=5g8a<;Sv?umv>dJw>Zg;*)&O*<{aI zAM=@d_^0)kIB2fuv}YO$x(K+&9P0z@0USH>IpqWJ;rns-ZP-G+-3j3%Yk0*fanr_H zfu6{R%2TzhWYxZ1dS3|}(WNB~o2{*e`pSlDNRB%w$D-u=a;e$LuM8I<+=D&4Z}KwQ zaArB`65i?p>Chm}CxH<=(j39Vxi3HpvG>J&)8)5Zd86}oxrCm^{#@{{68hoHVw!SN zqqgWJCtf;QUCZCdExX5)U9a44n;UP$*`XTP-Ma~K4|(WIOYcd|XDDh-N1o)om#_dkdQ~yflGG@rP_$f*AHALtl(~3WHb|zlG_BFeBfkXe zd!u@ovZws4@!$&$r;cfbw(jRgngz@TMWJpruf9ndbBPWt7Zm1|%Zz;h`%20o4Zr!! zZAt(g1GjAnaRBWSA^2Dtxz&W^h37Z;_^~b>1>lZw`^ngWu8t>ohQJb#L?Pz8A|2L5 zH9rPDc072?fx)vDck=cg2QY5#xe;%bZZ&GG>`snO>H1l@*MH0Kc2dFedDU-O5{DY2 zR2tS*De;}14DxnvuZTj%eRZ$5Z)6!d1lz6Zv@;1)D#k?K_7Hkh^(`@dud_-?!3y3E z6@8>E-0d1c+9w0z%u9kEcXmU)dO3O8PJMZ|XeH_PK5Lg{(q|sNWX}Un%2?W#G?ZM{ zo7+@H3~EbU0va{tcYe$7=VVCP8ny)K^QeqkvIf zk~i&%VVVo^(-kiB@B}Rz6*x(h4?Ugnhjy8*rl>9CK%fEsMx#ZKt-s^|AAUT*o<^f~ zKK2#5Ke z7^z2#aP$orGtGXPV>tME#8zY%B1Pkp_9)^5@^Xw`XO+Hkfla`@lXVRxiy>r}K<&*t zhIS6(EYSA6{#CUHvZOLn8X;6bfd4+sBT9#PWE=bYrKIa^?wqd7J zn?@ETZY$!?zANBGEx53GjH#(GdDknUF|>PCYr|!`reXw0r&{fUz^HWw*tHmrU*vzcH-siteT9~JxnjGcF z_;Eb0gDzm6>xT@8G5KuW3U4ds0L;$sFP+KI89yB#dn~-FqwSmJ{4aipE1qm-6bAmh zR5a#%4Ipypk!b9k*QIGt{W5?4s)5*i{l0e~X#NHy(eCPes75o9&^r)cEY^B2$u8y1 zQg#^~gI_~4MEi}%cbC+=50qUV8?{x8hy)~kEq_`2F8L%U`J_Xqq2G+H)LIF%tN^x6 zIP+SF6iuJ=nK?B^_UrjMa&jSW1ZpVDdoMh^c|z4q*CdtLw33?8m7M(15l@`&I1%1Rmrpc0q)l&1Yi6P z$C5Ga$@Z-d06FZpCPBubGn1GxiTcfWIQa#g3lN5?N7ECSzSOD**OD$Y_=SB=179c9 z`99^wYXOi6tMjiUwE`kt^_?R!v6haxw2kfwX!yf((j|gu38J=^nqmPWTp>9aE9(f* zRw7M&L9Tys#WqhsB;RF@!;+7~6qxZ8Kw=s5Poxgxmzp@Wi+O zO)jI_%fb#OpA4Ct4N>b=%lMy-1f2C?62Jq$NN{+D<$rMqM;gH=3b^bRox(S~0cd3M z$zay_=qZqy@GQ;$qR7=8<0*BiTx^Ta;3`!AH*>Ic=9nJ01I8k#9mUS!4uE>=4EGK4 zfAIhhc6IRB6#(c1Ohe9RwMzl~Qowi0|7Lj_isJ=r*bd^AzG~2Fht51x z`-=|w{{eV|*VY;^fqGX0Az>mxLi93N~i!%4G{H4Tya7{Y{F|*G@7j9iCxn~o? z{Oi*9Yc@YV0w0h9Z?%0&XY~Jdjo^OzC3ApaK=S&Q-FuH?JlB?hAU~QqLJS~!U3s1V zWPI-T^S;UG^DPqm{}25C48wcJ3t;R5Te5G7#l8PwvqzX6=3mi>JAS9YgkIHwkH39H zhL9$E@wA@={L73lsrp~@GmA$$QI zI4d52zMq_dp#O-PF^rW~?L|l@Gmu`&Zs4&bi6Lb6dJE)!{GabUfV==50C>6D+)?hY zYXlxC|B66`==(&d|IqFCT9AuyO5(p;;dgK{JT1HxGw|=m1}G_naFiqp{jcQ<$Q7CYwLC15{eLajX!j$PIP9+70-qe0W?;zv1EBxPE4zxkuLN`d!{0iP{qo27Kf3^d4ZXA3r8b=jK9~9ldlf9hU5IpK33H?$a83uVkn?siji=xD;+we&3Q4*0c!Z(3dFL zf4!~X9KgI?a7{i4_%mI;n#%I+y(tinEd6@x$?zEEHYvd||W4+g$%a3bn zzlXj&^I)0y;=B7~YI}s9P%O!6xJ8p;DgD>Yv+RFkX7^pE1Djh-7Uw(V{wB`?*74q| zp2)5er>oooX zE1wA9!k0J%-@X5a`rq%wpF|)a7$*9oLFfWkba{{W#vwDF(+-^EF#eYb;KI%;pzg(7 zEF1KI#@KTXKx4B0XnJk8$9GYXRC2#}!U?`HPCK~M8cE-`0~}!}+n3nu6fAT%WhVbN z1~g3AC^mO!HSy>UeC*kbec3NroWW^aSf0hl0*+cf zjm&$4I)OD6)kZ$3)%sC&D%xNa%Q`iV^NQ!2AHQ*}$6 za>{tlQ1#@E^CRPXz(JMxq>aAZE~lsvChu%v#+0CNPZMdsti$xaR=cNLcU9}GolPw* z+l7S3qRTA+39rSATnD7P^~bI+i+tm&`WzgCDz{b}HWdSThDf}YJ?NmbssSehJY3m) zuX$@U6-MHLDfVjQJ35$z3jI@0r*S~fsRjM6JN z)f;sbjTDFSsaV~NqSmsPg-7jgOFk2*8(7qRICE>W-&XKCYv@NA+(G2>wB6z0I&D{~ z4lw3%TF`KW7aY9=!5)?QpGA;8x@{kwR3AjBB8@8S?=gjvH!#{doA6IE$viNJoQm11 zm%Shf*w5}@%(_>Y{Hd19DTA^2EK}xf1&JD;aaf-e{a`mJnS;BVmUxd>67^g*&46wS+Y z7^sINE{Zhi2IigUZG~>)R;4JL`E!%#mcMgU8FngMGb0aABA-u~VbTZj&Nu8_p_Rx0 z-{a}hpuZzBr2JLkO@Q~FN|_gl=s)m#ND`{dU$<3W(-%+o`pWAVk%oN7`bSbg#BEL! z(lxH5@8^ZajRp5knxy;8Bgwhprtx`Ik8I=_$z^FPAX?xxqh2BC)@GkEOwK4zJ_auGp_B~MV~qP-u4T-U?-?sxld0kx~TQ`qK|jw9mS~NHz`II z;%4{~KkaDMm2E+e{B6xLZSVU8iI`Dagpnq`MnbPrdfs+H>J}MQgg7rGd_$6{eyf~B znYH?m2s#kox@Na_=A7E)T4f4|L2&L*{&J(Ln~dB%lyou3H}y1$Y(zT|->h6$C=<>s!gJ(zWjS#N#OCf>mzC{LH7miw6GmOnDcdk|Z{2dPR*_L6BKR ziW?=8Z=NQR8e2!EYn$gJj04tSz164MJHFV&zA3)vm+*c3L>;h?p=annMe%*t&>ZRL zYBlMi!#u5Xns<8LaV*N^>-&Zm!E;=}L5tCORS7xc9Su7BbGn2ornz+r4wF@=BSSrY z^VJV4U`G1>qfdR7mc#W{iW3|nJ?j6J$L#j-c}#pEuJ&Zxv3f*)iu+WZM6*A>lP|I5 zTd&~>CsU`UgT>7K6X*O3S$ta4X(Eo3y9#d?>h}AUutcCo<)V(0(ThNF`fTmsaKcIT zsdKKxN4=vj91dBd5(@nPaJZL6UHHVb8DX%w+Ej}&rf~;w6;pd+BGBYa-6Z3>lIO{% zQ6B48wA@tu2SVmMu)V{UWK}G%FA5$gJ<^~|~xwEjFT z@vpbe=Yh>`NwdWK+nxFIKqy&K z$2Yts6x1?EIDt=xNVx7O1clS%-F69g_-*BaEqT-^YU{uj=9q|6+2aXl9yb|XVXHzm zJ4IData^IXS5P{9F`bL%Xu^B%`G1vBPQ=T@&}#ar#qKIpKgiwWfZKaba;758KPDmf zwbKC#rw}!(67X(w#hiFvP6r|gpq((Q(=!+k1@bnsykoC8J(MLDci?-(-o*EK>3zZq zqUwySR(VqTA??^MWi!c2d6M;B)zQSbeDo!}W6cqthuZWhgncMjrqBV%)N!ek5QEi-Lt){VU^TkBaG(C^`$W_U?j zI&b{+2pK(5HyiS966l|m=Q<}%)9uTQSa|EdY;=!l(Z;DPm0U0_(Rz=;@g{)4!@n!G zf^$Zfc%f-~TFz3#eC{TZHzNyUSf$J~vvV02KpKid*}~VYXiPfPj&jsg3?qClsJKyy z!sKGM$Tn1}bii3MVw}m4?pGSl)d!^J*IYcCcfASUh6>~Ptk=`kJ9g!7=FL#?Zw^jE z6Fsj>3i+?GXH7^Z(>qWJ2|0|OR5Svu<@mC|q0W$>>K!eG zDc$YUp(*cujg^9KF(B`ba4~E}f8qPy;9e!ozQJ=z*ux}c)0SE~p-y(c6sp7(X`5!w zq%)Ou52R(xz8NX`)rEU(SY4&k%Y$FJ-h%;uNV%K#-yG;!W%a&8mV4Frpe8;!K35Z} z8XZJZ=~tI2%uwr?e+-|2%?hMOL3GG8k)@YiL*$Cq)2G{RI*{9+ee!~(5~X#Ht^{50 zlMLt(BUHKF;R?$9dewGLKZJaB4K61b)H%RluqK``MnUS}KVxhAT3p4@dO7sb!6=)? zxJr!|$$zDcP4|Xbhm2p+e0~8)BV3cGB-^mM=16NIL(a3VaJ4ka@9bd2X|jrZM2B@Z zo_w)Sx8^Wl(=|D~H;kes;>!o)mLRJaANDmCTWFpgHqJD()A-OH_R5lW*#Wy&hT&$p zOxk{(lOS*X{`>qcak&*EYG@U!*)TrflT($SR#?oa*oYr2lE(}FXF8jG5d*Yy>#zk- zJobVzfTA@9!oj z@B>gz&$=|1mM$c-1Lvz>?)~Fe6!^sJ@9Y?X74-w|{8L^0y7TK2_H-)>7n8dbL}MI^ zJLixIoM0w+`FCYF`vMr&F7L=faEk#RQMf_Fu-%#H`)i!|MI6*OfU|`=Rwh0Ri{e`i zGs>r6+)`Q;SpBdi9*&;9qZ-?K<@K%j4;~HQ+ktbky&nRFWjBH1J>J+mr~ESTgpZcw zkVLjG{!)#iu&JMK)KBok1x8>Lbr|cB`Rg9OpBcdF<&+S`hYDl#qK@0lnm`HgebdmD zVX1+T$!Bk318kwj!Xn(!u(x@t0^XYpC-3z_4LMbl0gbZDeABPv;snnl4Xu9Puytl2 zFrNgS;f0GGbmYx=W9??zSXCv?Fa@MinhT=vGY=jGvWsI%A_{*EzBsG9L9jqjEy99j zQG&S*t zwF(;95f7YizE5+icRmv!(11xp>^O){N6=NK?L~Co~K| zI9Qc|p}@Dx)I8(czg|jkA4NA0BKff&@V?cg9WQ3X?rJ5=Cyntp5`eXA>$XI#EnjnC zjS3iy)t_L7V<}j7Ste4oZOtDr%>yPL5E8zW;pDe%ip}dJN2sR=XODfJ@vn_CK;4d6 zuID#5m9x4lawm5Xi3_Ynl(YGuuDDdb75NoF1m6{_gF&!6jDUT8aSopV>sAC9tm6H~ z;>73v>hd>aLtjV&20!aLUI+tm%4IQ`^!$#DE?bKN^9THp zi`8rL^nanBVQ9dh08GU&v58B(4Hjva{pg=qkBXkm!ZP^o-uDHNS>*cwFH4oNifup- zL({Y=iYZ9nUEo0x@xtJffO!~<-!10PI5d(rHF^=$ecWMD7zd3<%Sj>(MGJQc#s-CNv z>XMZqH|D>|?1y>M9Gs4+-%l zeInZhJb7vylNt4izjKZ%whl13{mWdri{e0p$m1#oySjK) z3%G%S_bD?jK2>PO;o@(jmX+26Iy=gWkasRg$<^2S_2+NpC zfo0#tj5N$y!*I&V%mB9f_aX~l-9p$FQb~`R&iuA36Dz z;Q}amB>T0mu|`Q@^UH#skU0G0J&l>s@0kClDa1sQ^8VxN7YER zX%mI?(c(A~4Ov!XHLtip{{u4E&-$)P`wr%J2^0#hUmlx0heVsjKURBZ8ZAFAHIA`T z-ASTb>q(&|G+`Mf=jN`qMSxUZaDNKFW)5@Izy`yJrY!S<9Le;;Z{&WH3#g;cV0}H= z@*k;X;iU|kH+hj2H>2zm^r{5Zw%f5t^X@L*lKwvT?e;{2H4o+&ahC%2CY<7NgDd!? zZK7qvQuvmv69!?3%%*TBB^KkNnxmqsiM$}W0}Zd#2SqGAmMQSgDH3|4s;G3a+Th8m`3F7!zX8l3E<^**lxo6+kXrHkYtu?AF$F`}3}Wl9T_bL#&hABS7CZH@jwBBT1*7y~MMogUnIH9qa=Lwdl3lCZLA=PF_;w*%@8%X?ujW7AXTY%Z zL*a{ykZF+`j4lrejGJqm=Haz6WET_SyZZk6>Y!N24ZE{rLK8=h=B-c;gFjAfy@(&} z%Kc|<{|Rh52Sp_HN7w?4k1S`HiQIdMWGubQYy8NVrBYSucU-xJR3T zGe7O{PnI8V|MkD25PXw~qd;7(-g<@j;(3COeijZ)v;o@cmVFgup;hu|azJ1tq_YY* zwQjJuKM7B}PsE2|RZ8=*uhxb6J)@|I|AS*89@( z)6G!c(9_@xJbs@K@?xp$QFDBUMpYaqQ}^*QNfJ8FP89u|S`a}I$7UOrhd9BNwlL=E zB+9N~wC(8n3sIpP_6cb$$PBSUt4H@scA8&~T5>1%+ScSE4ts<^(F15JCNL4V>-pU$ z^YUUVO)O_#d#C5X^P#6TdG_?x^U)fP*TClikzozj;+rg+r6H#m7Ou_o&g%YMUxgz? zSpW_fX1r{K{(FvzGW0GSZhX%BgLn(kJdEq7JTWZju%8OPU|S_Cvc3JOfH+5{Z+ORF0j)7<+BX6>P{yRXhB=n|6?Jx8Cggkc`soKlh#7SL- zMu{`@vB_qxOOWLZah?jMQn@SpvFvMn89S^9fCg+L!!V_>fWeJXOV4rE%x8g5T>B#Q zEeSg+#I|D$IEcI?ztN&g35Ne3gIC%w&X^snQaXWmRAzbZ1&AQRbBdfZaoZlHUt^8c zZ1>h`x!zfRzAfXr$ubd>6cBKrWYw!E%AU8$|E6s#^O0p)O{Ay@(Ysik~_)*5k9rSlz=z*v0zR^FsNeGy7`-AMhx`1<;r>~dDl7$(+;yw_&$OD+0bp}cYGUfpl!hqgbL z4nOZ8d*$GmAg=B;t;s@9eGO@eJOqx_eX_Y<&nI4+di}2bM|B6MEH=9mgM94`2i+ZA zX<~_YkN0&|k#{8&k@g=UnRzcJB1lWa<=kx0;*bK`6Si8NZ0WpZZ4rs#U7O_sRkN)` zfc2fzWqI?y&}yE2{`0YE{xUlIPo%>&_7qm7XVS(rrds@FU;N>!!FKv>baEoXP+kpZ zUa>B{q1@tu%+}D0#0sUp=#zi zChY$FfIefINC|edn-#4wMy#JX@Kw$~OI^R5+jVCrxi-AvDQ)U3ZA)z^v9mrqcVlqB z?u`pE-5VP$REiEfVfpM*kU;00wv7eUy>X{j9OZ>cNrPpcx&ChjUoYEg#|c0+y>pA` z6_iW`?bC&q8Wi)=EkvgFZpdx&NFZ|hx_BI8-fyR?n`-Cfhl-T=w%S{zH4k*2D2cFF z9h4BZSV-5_0p@AiJ4`+oi(-{W}S&kQqr@3r^Z>sr_EJl7I#67c}H;TW!rKDJRW zaDIHN5RzVzX8T>LvM-Rp-D)B^N#B}slUU}xtj@z+8D}k}3d+P_O#`rsp|8+)M5a!y zA4$iv%_s)k;cPkH{?0;uN~_+A0nubu-V;`{x-oVTM$tk&enx+>s7&&mn@&)mz@Ra< z=xxXjVG0zT*tkSR7S90F?wt)Sf*F;{$K~kA4M#yF6osaemgayYzPj6wblrj-uIxm z^a?s8nI_Y8AvL(Z_No0(Qgh>3dR1{y@)I(B{s-dW=Kd9oUOm%8n~TyBHgL2gv?5%f zfBj|D59xmsW3Oyl$OUi14^@5NTO!8uFI+r)Z*{HLs9$X?;i%ldl;#$`6Ge$TuA~pL z_!ah9F+kxkNlu~)+FU1XyI6@$Sm@K_9bXf~Z_$!Q-eBGjulJ%Q2}qG|q|G++BcPnx$?k@)Tg0S2yotVFX#QzSoGh1Pv%!GCQ+8HwR`j(5#U@0s#~- zMcoCL&QhMe3!(NEx-$Cq*@2_XQ9?$6FkdXC)kfMY?T(&~*4b}Uie?o%4|Vs^s>pZK zwTe`?Oa2Bhl7T%^r|;)7=^w(Z54(Q-WD;*NK1r)>O*>ZM81}s!XyiklCHy*Yx+F+EyA^78EQ)o^cvaJp6biX!#e%$x%g!3_ zy9g&FW_Di&5=6@1V^3C(vA3wDY729^l9+pArBNp_Om4Yg#bVQJSCpnsQgB>BXCLw> zIrogJXHc#&n4|0btP9cxsHv#JO~@53c@IDM&(i1m|LjA8@UTbBR|341a!7T)Ofz1K zq&8#bt1><{fm!XTVR0yDdh1R`Lc_>4v&Y$DPJbk(6ZWKr#RGNcimgzBl-$C_bQ$MT zf8=}Fvob@z@c6V;pPl&;le}_VI7`A#y^m1ry0+1m;DOC=neb10pjEql1C$MN!$dUS zjnWpW?U6fPNavwvgCYGSiuo1Nrd@Vsl-H@yAe!J(+B3h+)#r#0lO-*&cC}FXBo}7!;f1Zy z=X`ZjPhiQG-sd<$>`76CZX|%L4{KjI_^%3E2hLGi9W&MYCAfTI^E%|~A2U)C=;LxV z5Em@I379ppAe&L(9)HwCy0b02cyT(qS@T($pjC#tJi)lSWJD%zT^qOGVLVhvxV*;# z-BiWMoh`>X+DGlBP<%{rr>`;Q*-Yn3cI9`^J0Y+N)+$E9vNYG?w|54|Dk3HPiv$LH z0}I}THU#_h%jget^yzu_&dO_HyBVG*kEG`ORD!pbBs}pL^10y-#&vHy9cC=#VBiqI`AY^C%-+V->3v zOE7TBpGQ6O2K8FojXPCKID)UvkL0=*&5qBJ=T!72rw?k?E}E~T$HVWXZZ9U`7EJ;@ zimA(jLb`8Aw`h;34JaR1&cLt6zxGl8pQj7k=gYYDnD1roy1289kKY5ywlO&u+SbkU z2oKczlODR?RyK_a3Keh8W1`g^fWXBe9$IR@f3v|z{KR!xX`;w&>W%*{jphd){tPj; zptjHq7S&NDTY2NvJgNNp&lRzk-lq{oUWSM83fCcgET z=oBoX)v8u8BB{q+g{!2z%B+uc-SusI8^nkh2p1q6z&gX9g0NlNwweaF- z)Zi5m&8}d~>+O1$NSBZn-`mV+x@=hY!rW$ehtrDP>3eZe{G9z|H z^*VKi?vNr4dz4mdp2tqXKHSo^Lg)iN?5Ys&$PC8`i}I}~FKG@u?!QgN9eD6^SQDQJ zd$Twrb^2{crcP}RK7;91s807)Wq(N(Nm+aKwpm6sH79YBQ=qv;>|nO258VBDKjlYx z>%h(k!&Uuo-qSVEidD9vbF>n>za1z4g9^p7^dn=|ey#=2W;!rjD)jYzEL?@+_uy5< z*mP^Wd|ug^3DLj;H~J>jd8CpQ(?!>c zWOw=>xF1K2QjrCHKmFJl!(OU|+^{a1d&^dVI;F1Z(_Psc!44XLpJV@y)tzfji-!~i z`oKGBofbl3m|JR)xOfc7bE@Pnc{E0!VEzJ@G&G8q^9Ux>k;TZgy4$*JB*{4$NSS{y$Z1Q0S)=IE|1mepa4^%Z4)OH;uw z^UpwZ{m4g5f%ch}1@MFvZERD=E%gY}kwnF@?1-2qby>c;-XUInsi*=M2P|dh@)~%1 zm=&ExXAB-GO~dZ+gw4gApl}o@tmDi1qz{t1sRO2Kb@eh}Y;3dc{Q=v5N2w-`Rsb(7 z8l!?>z0B?_0XY)JJ;-emJA9kCbi_d2bXHMD1+}@VhLRY{_2?Z#X|wggbJ+SWS5r>h&o!;5_#%A z$hMZnPfFqU_D3t7MvZoG39u=6sXlVhfs@%4b*tQk-u#4mdwDdyaQ)HQ&Ik!#Pccg5go#j2VAh<+Se#d;RJbIj?| z>(h~4AjB)kDsb#WBqQ}*pt28VhDc#2>}MP49vFSlibF9;mU3MbOwjriy1Qs@>8wRH z)=a`B&K|w?Hs@U@(Y>TG9#Bzn?X&_KY)5`XQqZr@5sG+lF}el#)`#YGe#jLV#E%28PyKH+AKn}jTzZ5Tr`1jnIk7Ol zEatUaD3Hsn3{ze>oXF^u3S@VqU|_nQAKH>V*JkeKz6<6M&5y^HZH|2oM6+8FLo`A` z56J2TSaFb(^liVih**1JTn%7v?m0p zfwBgWzi5eCXeXxMpu=%y5GMeuU>K)c+{NWu%r_Mbx`&t&bzFdFZa8Iwc6!iuhS&Kx zI%F>^Q|Z@){2NFq9vT`>WSmbp9OA~~Fml)AEaO}&&An18_JMfFyQ>`R_O&Z2j&2DX zoZKsR^GADr$q*7x60D*^Z;yR@68LKwr`S=dTvT@7+vKN7%3)|%fBZ3grY}mPtg4#J z=G{Y)V$ppGHN>75Uh92P_9BR})48KHT~q#$;Brb{ez$4? z!rW6wH6={@ZOFhP%aX0hgGF_&R#ky0Ok`=W4oXm1os;KfFhHKt?$acSD-hXzjW)p_Wa%d(iq^fiz6rB=$Ou82x6TCJg@`0c zP#;xy?fw3VyMM)E5zuSbMQgXHcsA80-zrM^74_?_n`7V2U$(V0H~8T5T8a;LrWF5l z5$KW$tO4E2T*u}j0hepJUSXuvUmt(g$kY8Nc~`OR46=~Oeo#J=X=sALDL+; zOPDs@`+t8>X-UYdcal%{taQQ0Y2fX_9Xxu9D^0o%t5Hr}&Jx{6hkCuhrf1#1hn4btm83b~ zt9%_fNtZr-Z^ZKZ!oO99gjcSiwLs_>bKm&vZ&G0=YYhK}Q2$NPA{HN`?)T`!2+or8$F^a0!x z^2ZwbR;}zmm#u~Whlt&0ChmHUlFn?wK5QrqG6c4K&oX%V&bVi?`eqGA z;G9}F99IJUcI-oOA7{sd&vA3NpT^K z*N1n5SIW_ay)J{W0-j_v)OhE9tYGKcW>3hecA_LLq*T3!n%~_lf^5!sPeu?c5S#Lu zg)C?_U%t-1A~2(dozU*ED3_TsuT0xx+Z=9S<)4&@R=suWhvWYcU{Rl8r^Nn-hEk$t z+LfyygEfll+FL@~if??yL-9gEE87V4ga7FQh zF8|I|VdnG6d^-l3(lNthH4ki-*4qDzAH*ZLpK`gfcr6c>o@X>-uCf;>K$?}CGN#yC zytq9>ZrUb?38J&$`H!hZYRDa(Sm{%L<*?IM0afgqz|~eJ2cTyY6(~TEQcQrx(wcWZ z^wg-Xp2}3ukT@vYP_*i9X1}uTROc;JE5L1PKx$K1EAK(zW1Y5V{fMiW2xMM0v_4&V ze=9$bmS>DguWq{X*8@O&oa^w`Jw+L_$G%plh@U<^@|F9c7Hu;DT1=9_rTTM|HSBF- z^e8jx_=s%FQ0IfyrDuib#*RZ=Fnd&-eKtD>g?>wL>NHHndT=UcXaO`j3U~VN1xQ7Y z0!WC?zX`5acK_hwhDd3S=CIJ$m!KOJ`_j;nxGmk)%-5B5GHFpP>nqL$Pv)NIkhw-a zzd&0>x2>iU`|Bh-!?jO7CKB!qqZd|`0oVy~*yH2V2GQ=oHk`IN>KNUpQ5;!jR^?+n zLES3hiNc1g4V6Vz>hh%Q!~!cWye-HMUVZH$?gb>^E@g~1%;~0Oy`k{@)YjwZ@NAa0 z6>$Y+7wB!&Tcxeqv3Er^H;Cn=DV!aVp~Z1i+?UyO*P;Cbq?pdTSLGNb8J%o59WWYR zVdke`Udv|B+wrmZ@hr5*Wm*U9clXFBVltjC z(BuTgOA;(rax1DNjT8!gJAd?e1%yPWo9>uvq#~6y6m>(3(peffSRIKS$)|#RF8%KF zH+`2)wdE3cFI2|}Z(H#T153CYFo2lMWsGRo*o+%3#qU0scK;HGjFj?tNH903f@pg> zE?a-jl5l9P|LEPmcTDlz>YhVRj%K%GkJ7F?Xy=_ER#ZfM5?8S7FBykU1h3Gvin=L0gwnB0{^z>TqdTXZ{i~e)wOSDZMDmj#8?>dsP6>Y%(0+gfp|0LO(H^=A_)ZyaEn>A`8RO|=!=c|$$$oE2Xj~V9(Q%W70 zf&QpM>HIB0qUU+k?fp7=?8o88N|=g`eJ6b>)w&0XCT4mG+_3B8JA_;I+NqJwo(V_? zow&E2pYLO~8}PPR%{#J1J)#y5k%75v$z%#$(&*7JxI@9aupNl{#PkYPzQBmWaY+&b zTpqt+#$ZMh2I3J$ z4C-38iLNF?5P_W|Au86fTB$WU;yNwD4NlcCy{|DFOZvwHJ*0Q4Ri43_V^KwENVU+- zxI4i416KC`5nt56j)h+~QY$yDZo812CI099_eh#4I^MRWYg5*sK4d-vp7q4}kImB9 zXL^>`<`l7LDwTCSrC~KnlYoq}eft{tCr!cU#82j!2fM+Zi|Bqk{a;Mz={Xu8(y=$=ak#dY!+oBew@!^iwk;x489Yi+L%~l#3|J6W zY`r8emm}*U=9=J zZYGq0a0_DgF(saB>^L*aBVR4_t%0@zU`$Cr6ZU(&hWp^F=NBlMs11@ey=c@k$8Zi@ zH9V~6%J-S0RrHLjB;ot6p;c=vmI1nvT0F{TS(7jW_x7qWOq!gtw8qUoVt+tLjAH|N zo>FWx+w4rMk|#m+eAK=yHZ#1xmluQI#1gnjWFHRh)y^>`_V{~YeOByXpGe>->?mG^ z4KtGkKR=i+qa_^X0adG%dDN=;>!E!#{4U8?frMA{Z(+kl+mydvojz<6>AhzmALacBFc|U?5||5FyM`)bUaBXt9TkZR>IlOPSwV%f%ZnL)71`lH7-7@W z4pXI)DAM2Ehen1$kEuCkoE+^ND-wU|VQYY8q5yJ}Bc*|r*n+H0iK@~P?gchvseRXT zn8mlMwih}7kXELueCyGP$(buJ(7X7LPhnZm{(v8 zy%LUMM+?1X@sRmj(d!wfc3)$3YSPCYg0_`O^rbcn2?s4t2k`g*-lvz@!wAT_knY2&*P*iesq{nWJ&%nSK$W^{wJNB zD#Tp}HSqVsKq;53Z%(rwnw#b{flza>jRGXH4V9U9nTK{+O+VAL*Y%btDTXg^m>58| zFePVOkAmO+UK6Y{SYv#I9^qboFylKbr1HB#9eDArcakg%?KfUEbB+#j*1S9)3e0}~ ziN4ze{o?Ws$!|jst0s?bHu7`tJ%EAind6Nez64N$f9&XR z{sm3`LoKrTT0fp$?EOQQuqI{x2Nir1#|ijyzwh^t5{<)q^54Hg{?A`IBHK`Zh?pu^ zm{rD#;4W9Ev=9GTIc-}?I42kW;u!$G5u5_hVt;rT zor0$Y2Cr%4D&nPn38n^;0FY5ddmWJ_V#&J9cYa-FcYOPs+?%6k|6NPP-0N^IIqVhU zZvNE|05RbHLEl|awt@?in7r{9- zot6tyf-rP>_UxO*pYsKdkmhC@wJTn4NVH;LiBcON_7@__{}0Kd#}*#4+~-SW9cFw( z;LEy2Y1($Nv8-wWU$)ZH&uWyGw@mlVmCtj!@%ij~wFzKR$J&}t#8M)rr7eEHM5*=W ziytj=FZazFI4HU43I~-<6~J<-dnNmIS8s$hwB+4~-!9yV0-Vvb9a{+6lpdf<`+{A5 zSw7(iVTu;`Px#`{AwrSM{NTLwA`HBIPE)tJc&W5rnzSt)kyrJ)1t+YCJCR*o(j3J2 zZSlQaWQ5Iwabc6pfObtdz?uTSC2>OZBnn|dO1zK3Y!c+z+9XvmBi~vOP$s4oWCLuR z-hz)Q*hwodO~IO*p__q+4D-T^NRBbkLlDq()UKz(4c6>DftfS>$9UY0Lxপne zkoijhV(cXI7WQkl>E?2q%l9d*&$(H?@h~sg9_rc~QI;8y`c;Qd*%MRgx8HPTl3PlN zfERUj4K6pL;zO%zI45zd0iM%{Zj!Fc(|oB{Na`Tlv8z++;N5d`*_(0p>j)f@IO%{^ z=QM!B60`#YPt&vJ;pO*oPBCp_b<)@jYj%y%GcNO7nH6v@7Z{f*5dDJCT2;13hhSh$ z9AlwMKFQFXolUs<9z`n%T+4x~uStOO)4)BEW-&UB$V|oFUrinR#}_=ZH0xW@1V+MqOG2pwdnWZILXkQZ_?6#;R9XxpBdt=zJ^rX5IfJ*OmW8a; zfvyLs>DFaPk4eTN<6Vo*Ha=>Z{^Zj+^e=U@`}{8Tgx1I935IkZSh3I??*+!l<#xf3 z$kfnQoA%i$a{^*uUx7Y)wL>wcnF7GlULajF=p&`=P^!N(N@JcZquQ?yxQl}I*|Zfn^?wiIT-+MQ_zC}TjC8}XDOG} zky-c!ZlSp=IPQm^pYXpH=)aFN0pK+uq^tdrb%F|Udo;{_Z=}w9vTi5EPiSDgETD&^ ztFE^eFZJsMLEV0j4owE&ee#K8ifcp_XgIt{1hDR|zrumEkS*N}{End{rQE}%*EDFV z7=IBA20xc6d05f*2P}jyuaVTwgu2^9i$5W3OmAJONDiXmzfl4ljAh}mrY*w0qGBgc zBBSzG+LeL(g%|Os9q^;oWL6-$hpU+)Z4))t#_Y#24#$!U3UbagO&bk~8%`3D_wLsF zhsM`^jk^6>wQ%MKNM)7-=D%4=RcziiaW0u^_57t3btf#vnBz%$Gj*>fk(u79tO@dl zgrBB&07YW04B>1#By!C0LlZnVKaJQ}hZxM=D_1Rg5#o|bl1S`dJ%VRMYn8Bspt>$$ zpM!o-64mn5uaLs!g}2EDIqlk+tun`pOk9rGGnh+fj}H^@q!*8MZgBbf%>)b1cGmj! z$l@wvN^HhwZdgYcGz9>2p{l?dUhGkh_UuJS=-Uw1(J1Ua0UkAA4356KR;WqR#;zL$ z06FZG%$IvILXCMk6!)?v*=F6E5QVo9^Xw4e>b`rl5Usjr2Az7ch~D<2#(?QUs+*ESg+ViD)rqkpk(0vL(zwZ?uQ~jww8YqiZM)Tv1huL(Sn3pQA3u5 zxE*h{^A6$K`eVifd?<~V5z7I34v%P|2WLT;ec!n3>Wwd2$~%_C++AKu6v-wwwT4 z_=iz~RL3J%LK~iq33Fs1U?B!G`h5f7RIB5vYEdJ4-hffNXBO^Qtqi0PNZo(p^3^dU2PX)DPp3whD$5`z9l6Fj_`J2ZhjJ z`$Wg!DM?~XIBHDr)ZZ(v9B}RkvcGw$5)EXLbAW1HamuH89&*&TrbM%-$9{$~i5SISgA3fE#OuxWyE@cHr~ z&%)Q*Ue`f{V(3T*uZ+Jnl7H%BJhszBa{z%TM&O8T#gIKpi64*OTrc2pjwQpWV@2bf zaGWw5;O<(?gqBExe&+3(l)7r5g_BqCGsa;+rMJ3&gKdDgiG3Jl+3TR>Z1J@Kz2Fi` zf)Rf5+EoZkZbjf(djSTDFHb=Ja=@**GSmsw05OLRuk~q)Lj91DLXqtZWO3)Zu}JOS zbFXmwE1}31=S+#TKkR$Zm|W8DN<-WJvCiWr^!v-L>;T#5T9kreLGGUBQZ7nKj+11) zq?(!!^L)k&<&VTdHT_}QskQ4%X%O|Kr936t?&BNtB-BvA4+lzkN%C>CjnSZ0-tHSh z`AAX;*W9x1`psVS=04Xw(`Sb=(5>RRwhn3Bwi#p`g*Kxp$su64*uw?SVICjU1s4yd z==rAZOq3%-D*N_wXN8S^w2G$C&usSpP#h+$9;JPZjft3kpQzv!HYSgl#EtEfh z=<^d1%RGsdrsz@GOLz^%I%S-t(T0TeL4&YCw~t|eM&`%S~SZMh_)WSz~Bc}}o8+HrEh&h|Up z!Ma9O3TLGIR3P%lgI-Fu^de5%Ta{$%AtrHZ@_9TL`n9|5(ICVnIk!wGVuvN6c#Dfv zKbL^KLlT%qh|yRQ8eF)5(#X9!=B1`5|7{YN>{@XZ$8lG}J$i;^0e9HGW}z{6KJ`w^ zv7GSyBz$e*$GCHj&dPRtqOZM&L!E_^*{V$3Pk0N^pI}Zx8tzGoo5rV?jH5MPwO4xrX5hTw{3NQrEic z5tSX0Ct3195*Pje={gOX{5k}}W-My1XTFc+ZLRXOt9z>YEY`b3I?<|>*L9Pvp<1`F zH9=*tb3`0V+t#V?`rO3Z!d*uD^Sc7Svp6qLMu3ii+EMXyI7WotH+fWAYgg<}fyuBI z%i()QEg8tzsGiK^r7a1TiBm#gZ8e}KR3}_VVI&~z)sPN0XkK!78~GPIDK7`GUI+wy zW)4x#50?7E8&|mRZ?gE7;Q+d~{^6RJhj{fQydF5(`F^8qlb5f!dX2%O3x>E}BHT{% zM^3xmS5!HWhuAey&DdZ{YF;UEQ>gW?*pq#pcxsy$vphOkre8(#)4R|qry6xxWSEdP z8SZ(VX+;5lhf!5TDw*Rr-4kQz7+ALQd$vT59%v;U-c|nxbn3r^Xiyr%+^MwMIt-9| z0%#8lHaFgrchzZdh_kSv4f^a-d1f2`Q6id)y9z2Swza*-Y)HFeOTIiVXq6iY&B@RM zD~@#r>THmx_JgGkU&&%&b=~vZGlOs7t%~|lYy>>)guG#{(xnQ=1?cS{NBprGPBq9T zKidQCchrf`Er1mrDLHXhk7*}E2w;;V4|P4}N~sOLd$Fpwe-OPl%;7S2SwGTZ z2bw&!phA#P1Ti$jR`v`RrsGm46V-cfs!XWOg@OBLuzQVw8()e~r@a3q_vphzOAji= zs*(M);*9|)KM#{a5T4eKmVf>Ue>HE3yHrXCezwO!66b*%`Y*$i8C`D_<#Q2tTms=1 zK~eKQ1Em+dU!Y9=Cid#GTAssJS_$iWJ+h&4J+9pIYW1ATn$(I2P+lxZoJ3fHHR}GZ zcIdoIRicN*S1V{szVqK*I*C1=S-8GbXJ-vidciCJspL7&BZ)sAOI$Cn$RkYxWqOSo z?Yiun77ktSG(qGXJZszqT5{GSOAu!;aLzHly8kcP=9A(%0vC#G#j9_leS$>U@MS|Q z|0iUzCmr-wPqWgETyEP!YM!J^+J-L(s4M_X~$G3ZA+KO4jPJz1K9|B%GOy715a9OV7jypo5+6W zkUkA$jAy?ly&!%welQ?N^z-M`p&|jzd0=htdj0Q}D|sa#w}AVzn4YzCEkoOANTET{ zcJb_-zC{?X#qRz^iU@2&PS9=#$7em&*IsbA1Lmzi=+o^bEw0HiIGM`Rkin4Y7u1{Ry)rWJNDY3Vl6 zE{=#Io)ZM_s;f~_|J`vPqlU>mW#<6~dt#=rnQM{O*7ya^L{MRAp>*xQF5HRqy5lKU z(_ONZ!L=J1I71m#D4nVz;qB@XO97pKfAU1&!Ai1@vtQi03rgw5(;+=jTro7UHiXRS zLd2sgfjWcJtCU5M^)Y8Jan(Fm6Z^7DCd5v3zZ2%kQ9nhd@VKjkp%|77I^~osvk6F{BZ!M3@OSqSj zd9l89S$}`e1Yqj;kMk0W@dnws<&%jqrN=$L12ng8m1+F5!TkSyU;h7pG(e&YP%^`p zI}!0O*a?B1en6>p)QZO~ROq+Y^4lku+wW54-6Rq9Yrrwy>(A~#^dj_^Z`}K0!?ian zM7#0vRMEjRTWy7I=q`h09V3eSw9G6^iN9}J_AfBMuLFPo)af;SYWr*;eV01a1}{f-B)nF>3bmVbF*+W81L6`&)a=NYZ5zuD7U&nr|R>>3uwa_ z-Utu*)7vI0e$V9lpIsE}*I!0LC)ci}LIWlUU5c*q)Mw|UNPQz{$YK^Jd!(lOrnWHF zVh$M5pt|l=dN*T%5I8m|n!p~k6Du&9SA9w_GV?ShzD`HQ`2yK`r?kC{;@bY>0A1Y1 zGuTC@%XydPMSJ6Spv!JNcXG+Viufze|Z3^!lOC;~V0k44pPT@nEkftM=!&c`X z`^00n~BkP`)|aX;?9xpZLXg7fgz9xdu$=C^*P`9#yTe;~CI?<>$@``g9-@K-$ zphm%G>04BhXX!Uvt24Em-1Dg+2aO76UmG!c#kdtXy7#aT_W%ZODmCHLOoLjesB*ds zzfB^60Gk?on1><{VZg4wR#F5?(5YwG>2WAx>DJZ+D#aHWagIL~R@q4LWKtvTQXJkr z=>RoV!z#4c41c{4PsWSu21+<0B(RKcgQz%WgV3>Jnu(K#PjqN&%g$0y^2#f!r9&H? zmU~DhzM6RIXTm?vu^wibPn3@z>6zPc=PTNmGi>*@k^K(8FwmR@i*EabpRTPoYj)z@ zH^sEPxDS54*bvsBcL-%#654}q?h8a#1R&ED9hy1yi>c3P$)wgH1ui<`#v;->GAP(b zw*u*hgbeDf+7gK=6}*s`TK316;0_rxf6973d>v0xgVqS61QxySel*q5GL9#?2`aJI z`as^~tEfUkG#*zQ|L*-NLjx;bIsTs|WqFE)N%RH^n5__=XrJ&POaJgvgH0R)Vr@@| z=4#*vH57|6R_D1ep{rbaOnm*fb&cebB$b*TmMArUo$_??l$-&+16quw`!pW3TG9W9cMVmY7j+B zKG6nnEhK?MN!1El5#U?)4_ADCXNn?@)_1S7H^7PQ;IEzLOZv2n*W`9gVt|lpBF2;_ z>$}sPR&K_NC)s@DBLdKvisw)A`=#K*T%)!FRu8hr={*KXMV3#%geg_|?424(8+!QU z5cLJ4yqKNG3=aA&1P{bl7{-eF7(q;;MnDZU}AQ^geu;Dn7k*Nt|1 znUfl_Cbb~|K^K3XgqyRxWuP5!o)iR<{ssn8$OqgyIvQ_FffbxFt;*)ln1oWUJZBT` z#X9Nq-9GA_v}dwhZ8P^w?-&4R6EG*NSGF!gx|o}{0I}_-cWS z?z2{OylyyDhIm@TmM5Tu{%cqa^1@8Yk#na+Z4c(ieY69%mg(_ouhn_zVVkHq$=%#@SO+Ml+{*@{}DC5oUI= zakW`cVXIljB4A7!IlHq#P60bJi7ThVm@YP{gemru0r9)&3;DHyDoKlT#Zjv`>26^d}aV_jj!NLUZ~=k3-4 zT_zm+LbB96ug}qCuD3j*cG)}IuHolIIgF%j_jc;||%N>44M_6Mmwk!e@ z4h&}qW&?kjF0=St%+qlPkWBsD!Msdn9CXXEm}j}CoL=-Ec|0npxq2_@b4Kr*BjnoC>ZwMK31I$ybPt_vKcvc2zE#zttL-tJIg zoe^;|sNn?BZ}))!=lmVJ{dIKJA<+eK$fBgL=p)_+k9Ysu(eI@DcF))6Opt2v)F-rO zlWmONgyMESqBU7S#~#$KCdE91ZJBLv2qcLXxCrE|!M}t^c*Y$hsriIsFk+d%<{y*# z%a}4=?p^SAXNt^?swyMevR^z|*@RWeZL)Fqze$@C&k*EMRUnrYPDp#lU_bO~v7Y|Q z6}5;Q@Zr#pR=hMQN5$gRm3mBTDJlb8a4hR6v1eCUu}ZhV-P91gD}FN1oHl(FV%VY$ zQ!8l^w|E$_W)B~$g~jA^*(q9Tx8!Sy7*RAGphRRPPysfdN0}iHGiE(MvFl3k)1p|Hbj+O0K4Urwg@K`O9A>mn06*pNv=Y_u z>9G_H43zb?1&Bfmdc{jgi`DClJZ~k@ZYlfrW{DiSF^j6cn;deqVc43IyGmy&P`7#+ z%^30k{$cC&H1~3R=e^r6LK1`tq=99M`J?$zVV4DymJ#+uVUTgsI*({& zg?x5Xcj{)3h#CjUX5%YpxeIC$m;tcxHr@43_Eqs}*DN8@p!4mt!5@iP28^~)x9Wc& zBk&~taEar&q>NO(r1uSQYI0U?BCzbYd-haG!wVBZ@2KYUBBc33S<+SzG9?Pez=PBl zHcVJcc@$WaOcfOFC`;(8H>%^4dxxsYKUc-InBa8}+qui+;J!I_8w$$V36*j7H{y{x z|K2{-6phVJx)^_0FVU-1Mzx~)HobET@UU+b?|rLa4F+>$tgxyGpw$BXQZ(HSzE?3? zS$pl1iSWDG(!+AQ`te9@aM_QgksHM>ccOTb-#I=Dq)v!mP)mNSH~zsPO5oK&0vf7o zNtlPh#cO-lqZ`R^BpCLg_heNQT!JgqPd0t?*AJK@Rm|s zQbHzQFGgAVz9AHErMHJ+5-Jlv#a z0!69`v>=fMuz!pr84%sf5)`&M(51*_XAT z2n1{7!SLrmiN;=VuerN(U!lS~TSHDq$vWE4P4X<~)1X4x6)`bn>Mo=#y|mD_8tjV+ zI&G;U)Aq)H;*0Lb27T+@3S}KOj053Y@8Xzsk~%V*j|cTq1Btd=e)zH7DF#>md&=QQehnb~v$dAd4|*7XO!YD;$K^8SRE zX?A#tWRr%PuKla#v46aAx|`E@UoE>XD&5e^YZa21IG1qnHD+l%|L~LQ>qX6y3qju7 zwd>5!AiV59mD!lsybI<^O(!+!B#%AH+zQ4~$^&nDm@hhZ%Kg?mbVIvmIzdI{?6~4{ zbpotZ|Glt^Dt5F%(dO$$0`_uk5@ZY78CkrmEkvWZ(#$M4@d}WT#(4V112vRkGDhWk3JQSTGYwPFyf>=40-XzD8b=@OZo@B4~(J|f|LXGun5nh?}#JZQy_N7 zyK!7I%&P7iC2T>H5w8Gk7SUuB{ep{kIID-hQQno5k<)DeF>HQQJG%mkMuZlIv#upJ z>&t3i7r)#f=)O6yG^VvA44Ic<#4RqaQLY;1n0e-Adm2g^X*26Bv@oye$!OTMYu_=Z zcTeQ|96Xo;V+q$X#5s{Ruxc$}(_Ej+fM|9eTP38k0#7WW< zmlkZu?*>l|QBTUSv||`6-v>cM^^BPZihEG0Z0`8&JdXvjMqhoIOWB!*m3<%s3;5KI;yT)*n@lG) zMmD8&>^8k0{#qkp$>bq{5c43^t-Nr z<*V=PPSEqZ5d zHCh-KEA?*YYfRV@TLobENOonMzcfhuFBS#jR%`=XwG%|RVn&v6z|d2Bybi7Oy=-q= zi{C4o0r23BccuUaVzs?3S62hXyT=3nT1)s09rGbtEl$Dwt4mLLbzYUWbI(Bslby19 zUeWYf|7{SJaNt-_;KW)bV5OB+`-^pZF{2$@WQyJ45`5(0_!<6E#}tG|L)WE9$POFdMGvYG72V5_~#yylER_pKzXQ8v*npBm0+8vyi@l7|9R0DK$W~o4{;VlNZK|aMCvf3hy zOirzTXCWgC5Z6C&%9{t`$#iuBxp=);8w zToefy0u^4@*<+Mwi)SazHZ!J%k>n_ z*>Bw>AdB^>a(3rlfbmHDYD1R9zCHY^1l@I55VvRMZ?9aas29aX9aKR+56XDoV<`wI zOC<8SFu)BmJk@Xcp`4}kQ%@|}VjtTF-);>E3!|yHQnUK`+E7N}USrIW; zn5+*>E?u?pcb$`B@)}r11be07iX6M1pC96(wcNu`leYGCMYkQhRG=suru-}m14@BW{&&RXZe|C|ShC%V?me7~QL>v~_W zD`JEHF|+EHV>yk8;-cz1wUkCS-qP;;74Fn$Mbou=G<#9rsm_N)kVdM$m{e*{fGqqQjTmykV%ZUvdP@tVo1j3R5=0 z<;LIfMmKNhkYhgwhrmDJJfM7WWl7{D^NtWz? zZy4wwgM>b8An1s!4SHi6@G*fw`Zt#U|N19r^R&+Yn-O6DZE2pL+}*!E@}Jv}zt%_L zT&?+6Wi9O?%bFQ_&n8i;!L#Q*{@3$t^KZk^CI4CbAJ@plYZ~!=?|G|Hk$qqfP7v;s zCdFQMk-*e1%>bGpLoNbkbt7hE{@s_iLF=G@9QJphTSD(H>U#Kk(ZApej$O|#PxEn_ zg0#QeD)_acR>FowH$ZMbkyXzt#;`s@m#+FE-dUI!t#Z^h&p)2~UZzfKW|Nzx|>%LBBKO3!Gr5)HKO0DT^fAJQC^yb+>NL@=qOwc1huzxl4j~ zzTHJv<|WHNdmL#H&WqAttrWRAxA;&3iZ9rq6bz=gS(fU;i^LsrH(ez))qTjbeq>91df znQ~aVS=i>tEd`SVAmTleqxMIm6ys6IP9QY(0j$zoT!}H3Cr^p`IDK9kAWvkdD?H5i z%@RWFVHkzXT(K0Np>02q^eJ2qJeM(qD4$uhNy8Y&u$iEd#gCU3O!Fj?%9mK%3ttw9 z5@R#Ov-LnzTMd5`QNP3k_w#|XJ6fMQlDjr3Gcx`v9>t30^Hrhosqv`pF7{SK1q%2u z5aL=W)FD^&=QX#0+&7OGO0mrTaBB<6)3BRjkbB-d)c9aY5PR=|*^{VOcGx<#qMaRr zVS@^{m|zoR@GeY6V^ael1@oAR(c+?!d;LxU4#jrILpSz!Eugq%3fy-JWhZhcKtnn| zm!oNU_Kv{hzYz!Yx2n~RM;*Ot>}WckhU!hc>Pam}2p}&LYmv`P=gb68l zoaQ@0qoR3FYT^N0K8Wis@l@Z8N63p=GLzUK4i|r{e1R7)u(b0;`@ejZXD5aW&B&mu zdqZCcF4zZ;hBwHXbDnuUT8P#{i^C*u)!9f-`=Q^LCCy7Ay_Rwt zqLk^fZS*mENwnfrSovPLjtR*p7pl@Pd{G}>(U7L72K7~&@wQzsCizJ#^DGKp7K?3j zMhy!PdDs1GM6Z$nnUeBhY%;O&)rv+*;hgt%0wNIqvdl~j5KpB8K&45H%~iDm;y zisE@68W(UsUKd8Sv-ci#f6c{uXYh4qt~MP0<6Z5=efV8EHvb>W^QRe4nPOXSK?+PD zcsaP&Kcla-+bCC-1Y59Ln9anzUDxqUUivN5X9g~49;A`?d%JEG1kJMl4&x;Ook{_jo4IgZz*npV9?U4O0!1KeJ@~|q zR+ytz;jXadfzT!5Uqu*k<8!s2%}doz(Sj>;!Y6wN`&XDRuI%!-i7gJ*r_dl@K(!dg z%3Ow9(l8FtuO+aBu!cUID=k)41OJj%xKnrlK=0j}}57|}E3{thU`Pex<& zd!qK$IW@fx@kUG${jKBGET@J!L{ zRN0sfd^^cEq}!yvy}!Hm<>OQb3I_i_;9uiU#v+CwQP~*Gs_r(OSg=0h45lnS*DeUy zJ7{dWA_C!~e1oHJWk}uJn7F-d{$q&vsYu5h5wLT~VmP6`UKyV)Y?sD^WmNt^$!? zc8Gm8LchowCm`S-E$ddOqUJaFnU_6F4+qc5gF-Ih+4ES6a?jn^e53jko-Q6P`fyqf zpi>u;DDA9@6aChsRsFyYdK0Sz13f5%9g4MPFXO4#=dE$xrRr7k{PFGr4y9A~|MaiA zqczcwFMc=Cz3Cl@BFnztla?{q*f4wERf5o)6A zU#o+ZT9Vpv5=6hf;<|KqE1wV_A}ZQnTj}3EVUZksAW^DNN&Z*thZdr$9qKdPY=8^L z9}HG|LhB1#uIe>@&m^yb4<(XgM^jb9Q?9%8*&Lb@ZswP+SunWG_#7DmdCaLMB?e|ufw{IAC70*%4@d&^fk7Kk{; zhu>ehHURwCX9@pg(naw@kzy#wPbA;SIx~Kdr=gS|I3x9zn z$nnTNtA~vJt?vZ)I9!WI!@EuHM2B^tFqqo!WAL8sv!}oe{LD;OH+-yx)ciigH8gEhyXw5)+^1Qc>KDp~4!;@SNS08&`dN8U3 zd1apP3FK+G@iO=C$A-g?S;YucyVs~QP|h3|K8d#|=x7E~r)D?iV8~Zyy?-@4W#w*6A?IPu_TeL{V|~I#8lAR^ z<)1ize!m*~q^N1Gpz!-r2CXyg%L*O_9zM<7mu$1W;NB(ixtHUzTsqk<=x%RaxUG7% z!5jq#Cs*1_o8xz7ArdUJpNhW)2TEcB$|v`yQM**n>E;Tm1j%s>-DXDOSMk!s8?iq; zRkTBa%B-hz8=t-BeHxp1Sm(2pSrYzQgFv%SGet3Mtl?R4i@%1x-|S^gup%T!nX^#t zGq)XVjebzN`eue$8uJbHdq5`ve;R!yks8ybYYx@p!h{n0eevEq?;88w6>Hv}4v z@9I()Gs$d~gsqI2)mH_o$wiuTV*-wQq%*(xCq8o0Dw_;9WTHMs@fBoyCvB2`&_ptY zZ#pws<+|h3o0(c#RA|!I3-i`<>QAurZ`~B=u5CC`(M=2|Vd>`*05WQ`e=Z#4joZgN zYj2GamkHE0pK7m9G@oqW=#w{@ff&SbFxwAsr(rZNim+XLo98CZd^=-!V7C&iGI{}2 zZ9lL9doEst4MvpN%u7^LqKt?KWKxsA$fUa=3u*$L0z)%T?Cl5rc&;)?er`{;IF)rb zAqo^7G`U(QvsAJHZ_e)aC{f@fiCMRS0q}V9Xqt2zd(@i=j{~<$HfM3Ai`G>6Jf=*_ zkg55r*G>wwuXt03$0&UH-j{o_!LZa7x0~ws>J&*e3bX)tZ19sual~Q^w>=4cLpTb5 z`7tI4PBdQGki>#9urH6QlunsOSnsb5t*=i+7=Rf0A{SjW;0D| z(q2p{<-#SHX4XeM{)561u9RhrShn}+kET`J0xPU>TkCROfYW>e#y=OM12RKY-^Hl|f8H_*<*TL`AGGi0Zj-3J)7XZz(R=19sJT;$svRK8LgSg_c^@m0}NJ{7& z7hbelPj|Q2!8O4pZ{To8UqqedBeU#A)#o1B8S6bWX3jn172&!MCat&ZEEFwcuyVf! zRZphBdhvrm;0Oz4x@CV6fiJ+=6yJBMYM|rhkk?asEJeTB6+~+Fu@F(f%vy=l9TCyn zX`a~8NaYIE@=zNzWXt{GAw-ntna;*+xtZ{(_76k7C78OVZ_SDV$ZlIR0EiDgq8Oa<6%FJ0QUB0D&8MU8P^} zuU$erB6W$$%O4g?Q>LZm^J;yo)qCbi(B~~;>sHqluGyLHJ`Xt1+#7RKNngYKELy+n z+Ql5Ql$a}}h>k%b1df{T2RHTJ=cO=9%p840p9N&}$89-YRfwsZo{M71k|XvEBEu{ZLJo+PfA> zaHPX@>&6=yU|;zwk0BdLbMMCCH>8NqtG%k6W{%K{4rS-;vvIYiKf#NSMj_1 zyec#75#^U`G{yjZW>xoaV`i#R<-z@yoAShgh{6FYh?jPegA28njx>Bm@B_Tpik!7y zgrxz~L{>bDJcNniV?*-L3SPFftkUG8Dy~4kb?*@!yLXnwE)Vc#j`{*oqAH)*(-VWY znJVmaiEACLleo>s!>=J*s-vO*6Z;a{0%`myHrR=W4Sr=W!mFuPiXCOBG2Y zB?PVKWIWZ9y>sjuh8ycmy;BM_zh$6X=V5G|W7DcB$8F}loEd0{{*(uo*^8f{(iOG= zT@ZPFyC3RbdX4N|Rma@E(IsQ4mgFZe4L{%!txxj3ed9*=-!LJ4ey{c&7p?>)u9c=5rpO2R8-!;Ft)_hgr- zc3d<0PtK#hx`8lX7O~`mV4gzMQ>R2e>E~m*wkk^l>#BLBj&6oMxx9UvZ+U}%w~LX1 zO?Ns|K@wRTt8K)vx>7exm&LHS7t?!Yc3o6!!dS&*P5WHO_=C4$i^o#bk-zx+POPBp zgFtpXHvjzW6~hr_gcLE>q+wy0x#TphwdP!Z=Ycsa^x5-GUc!~f5%RWb)y^1J>O5S{ zFHHQu!e1A`urnS&-KnvS+!J;7dtPNt6;F~mCE9k3{dcomvO%)7cRlXUd+C!DA_C

    T*pCv5Q z-Br_JUkYslI_yfyseOhXlfO{#YKy-mL)uKf3vmt{pD0J~#6) z1(`9eg9l6%TEax_9>Q!qlGXS4x+%97be=4Q;)vO5kT*@uo($0!u~qPpd+P@*F!Dbk zmbXYx^OiwJGR36Xlfnt3@l#?2-gLVC`9B+HzWVUVEc%Sr zRd$6uGDYdv)`!$$f0hR|DEE8>gLe=tZGLlnH#@QHk1Cs`(d84wE%nKV@!TA`UG~$+WCAB~s!Pn+$9Tzl>Yr74 zLIVN&2VrMxGD1`n;wNiAlcEa3AHJ4pe3av24t-wdFc(bLS*Vd)c|UMOwv5R(g^@PQ zHhy>0^ewEjYEDL1*_c~eKBvx%eKS;5)bhbH1UIvyl0z5Rt?&MAe3TDidE4c1D$6m? z%;8?)qaRYU8~JW}S^MHCz`R?+w7#y}XhLgLmog>ii6SCkq`A6Ddg6gvT!W22i}V2K z-Lz)oEKgnP;Yd!)y#Q2(9i`@5~uW2}($#G)C6z&>m+?!HB&6Dnn5 zv_crogO%USoeWeY?g22LR^l!Jh#9bkeGxS%i2|sOUlxC@)UxKQgao;Y{5lB*(7_n; z5QDW!riu@7B-(+6YBwz+<#Te()I!?cV=Yi*uh;ruxHDC7PBLc~^QD;POc9GA0CDui zE4!9S(J*snhzVGgkWG6dz=SCIH!A9eTlNf&35F2!e55z(wo|TURK3AUw9-tCJ|M2# z=p*^JKojSsK*-W&pCQn>cf16Le(>SnXT|1rM|Zg) zPtO19zp+llq99(I=j!Znyf3hhGhMa~_pkDU29qYLWM&kjuU3jERZzYF=DS=WmK4icB&TWmN%2{>2G%3zjAh@l@JW$z)ofLyDt!~HMC`BG+-~avCFG@s| za8HoxjIwR7Mvo?>VyAf__*np9-+OHexGMQ2#Z^T!Ogez^Ao5^n5OPaM89c(d7~l)M z{?&8{rzOFrpXii8#=75Jz&}MlFLs21J#&g&Aiu-QY(FDSUy~_<_1z;81bZfhxILN* zkOQJsz~9SUR^F)LJ5Zn4l;+Le@M|hKu&}ctWhmfiKZX@6siX06MsksgCd3hK9@R(y zAt{}Z*H2(e7S}ow6rq*>;*!819Z)o}KxeDRK|>ed7iy#N>&E0?>-+`(KqFeV&IfSb zJ=*^Vdm#oQKz2ajhx7I2am|Hp);jgzJ&=R@TV*IPhSU=N=$om9w$9n0^Ml_IM8jHq z(!7CF2NL28T3R-x`#HG4KW~G={J_9k+M(8m9nOnySIq*}$W?C{8dGA4{ce-RmvNN< z6x5~kcJM3iZ#XsIbfZY%UkfSWh6HU;Ozb>M34Omdb~|>Ej~2Y=4J|;pLx zQBx-}PN5sJD5wPI8=6FWRMwg7td}hNz+6bZmJ+@Dj-V?u^&z03sMY%bbmi@NZ(8f0 zaYfNfwxENY1=^sSF{dQG|M~P!f=blo>#f4UAysyfCCh?QbWLw)yNvsj!j^P$q}kj_ zu_aVL`oaXFw(BEM_6I6Qt z_?;G1Vx}^nNxE{3_(9nva%c`GP3rMjjAEqc=j?Lp;!6MI&(Fd%NpsUi`?bV2ZcP_w zZhiZSwqpgDP%t#{6Fv(lN@Zgq*;tH{f6bup+-=+0L9WakvQVsYR+0UFi$lM?ZKTI1 z#gC^}^rJDd9I_c)ZinvBmvSIZvF_cYDCF23YV7O#g{%;eZpvQ;(&byz0i^?MA3vW& zaNn9mf>c$^5IF*|x^9N;#wfD`7zW-WN4u^L!rAdFr_V%v9gR~z{>(SbW$z=BbjHT4 zZ5uzi%i^(CyA>=MO_&!pu>KkOy$vQHeGf~J#mzJ#Kq%R1Gm(GZFFsv)UcqYTE zLNnBI1Y8WGM^X6fdl8ZW^%jBcZyb{iDcQ-mZ7Wpw83G$uN{S2`77iL9=+bkxAHty& zZG-*zZRl_>IM(7bbaFN;KQKOdYTBMeEyYA$dqJ5Zig}A(y@p&}MXki&$GcVMHW*Nc zdG<^iH_;6e1lcC1G$j1vZmfb2JpG$Sy_rELh;)GkL%#LEeV^b^?h&N?`Yw_FidV(m zj8--#o**l-K7_=JgW;|m&5P=i9!Or&v;_|$OuFQfqH1Ac&E_(z?a7%L0+Pw;Jp{=d z7*5i&9Ijz9C*f1+8sNz*MydP;{uo37V>Oz{BQSqf8qxU!`wsMp{Pp??wEZkF$PdhV zU09U3&oCVNI=_B-O*wQ)@Ein$7Y`WE#ikzE+y((@lKjg1!Xe#XI*<3SDUlZ>}{%Bfj z^MSz{;12%wwIgf$z+`HJK0vxiP;`S;JXhi}Sfdv>rNYEtgYwf^XKcY>f_-SWEB^ZA zTK%ONO%(%(i@i@Ep2I>@y3wL-W?UV7lD>1lftCQ;yR8~fdo6eJ>F1PFWIq9xl1TE; zX>V%5&J|B~r4)*E6*uM=G0>a+Vx7sWX`e7!pGs9r3vQ`;RYXot7;+U1EkOEd%JJMn zznVTqwY@rcT)0ITwrOFKa*phT@pIX0v6NTU7o!Fm(c{Na2yH|M3+l+OkRTe*bSA>e zfQ612Tv@Dea6Qr5oG#~>hKlcWX|GWzu7#fazsJEWb$w}yiIe|!(Q5~FO5WsplcD&7yBi{*#oUB0{165&`Z>BaQiXXSS&N%9Y6%U`i zP7%g`7KGvV9`6f)QKuX~aoa$SGV2^lKO5TlUo~@K`?s5La9>wr+%?#kJ|U=93=qb| zjchfyxJfKLvB1thx=ix69MCuhK1gBw*jB=oN?d7ig!Q_`2TkzW9`rp3hM|0y1QEi9 zD7Ud;0zcz^zc`#L%sWdaX_2M_qx=QQ&aSk7YmHb7mg!<2Hb~}c@Jf#1eGsQn zZJQy&APD-QL6)B0MsGcLQE-81oG9pM+3pcYloZJCo3i_&+o7{Q%cG;s#rERwDFKGL zb@uz~;)qQZ{uW_yw#a{&;d>u`yj-gUXA>($K#QVnnuiAGW|#h?#(O(7>%LhVEayGG z;$oTJ(tDP`Rk?KkGEF>h<Hoe;r2;s3e)%wg%>9@n1k2@&je)BBa|j( zKem%0*He{Si!SoUeH`>ik}!|=u4eiU`{11=bJ+^#N9J-22Ym!W0|Rh+>9Q{Z+`Oy0 z$0ms?guOuz-Jf?L8zl!FZl1Tj_U3NouTy!QM*rY$`IY0l3MGqUwC4+Cl9i%hxUzs= zHh@)dk1zF{{~GHQl(0FmK;a^m@|HwQ2{_{Y?35-kwW%~q5*%<0>ug!)MIYL}dpco3 zQ-LS>6jTJb^S`1fDa=w-&v!xPcELW1X2Vt7jFP_|jdq1*S$6O0i-KRF2MiY4U>jot zb36I5H*u+*LDU@zfZMKgO%cBjgK~cxp#omv`X5Ud11eP%6?~5v7FF~R{e-9gU%Fr1 zUol3vqyhC-5xcn(4Ra?#g7Dl@d*7SP=$8he!!m!)fP!RN3NsLfA!@i z5UYsEYfmQ3!zjRi+iT5AF>&LAK}5;{%v> zs1xmXSX9aG+qsf=J9zK+-QkQ*w>yG)J6HrM(6{Is=tYjQq*_5}Fc6V}y`AjLwQs+@Hvz%9avA{*@2o%MH;`6* z6O%9Ibk{bHFPPCyvbY~StU6|u-PA7r7EwXkg1Kdam05WQzxsz&X64z+b7T_@MpgQk zfr^y9AmPHdj$>CnTlrsBI47P>zc8-q_ama}leewwUI>fbcYlD~Bxyriz_h^C@?VhV zmu?YDcbnm>0_UHaJ=#QSjK+cu-xne_YV{Hl&keF%?5T+>5;AHzZ#AOQ4IhM%$Es-Z zKb=(QVPs(?xRgSO^)3_cRWYQ*a>&R|`alu0!A4a`rQ@mhym#}xZ+dBvW6E@emC&1s zPvk5L1G2A*xA!Cbx57%Ax2d?S?fk0;l)iY1kThuqE?IAjBh1VD zAm{$v{)4J!Z8w`;yx&oy{Z7z*5oft)Wsy>r(FGj{viVo*;Nno<_oD$hsF8_I^G=7l|w2aLqktri+8TRt}*2VORyX1mOn z+wqyZN?GK2ElGqbe>`;e^4LK%24RpyW);3fe2|=4QN;hX_#De!a%|w?mV&YCJ-I{S zZhX1!xvK`6j+?hlQijY3V)G4BiF8gQYHof;NHLbMgHga=Z`u6>Ie*E!K~6_li+BHPxk?OKB54fV z7_BoKYHuwYK_ce@^9W}>pW}M%tMfOf5$7~FoE7;tRrWOZ7CEdN)xQ4&dhB?#OG;SW zY(}pV;D=}uK`Q9!;>EunCxnzUZ`;;1j*%u|RZMq>dvEjcKCSXpVM#^hsGNI#kY=oW z?kP)Sv(~l6_f4Ou+nL;3N00@Eop^Lq@9VMd)}JFZod@y(P4v_%>ay)m5eCh%Khva= zv~mS*o3E2H`uyL0yXmz9zKlI!AUu#qU=r;dzTmqHX=Pi0wvK?vE17C%b3!Mc;ppwS z#fk3;wbjSf!%`X|m56%Dwg}V{s4%&0j(oOANmMMqZtH_|1&`4JI&Y~q*jCcelX@0? z!XDN;sdr0M?;#CnLTLZ%d|)6PrEavi#Ae{IdZ|ziP4Vy@x2XZN@A1BdKjrQGg?e_j zFU^>iSXBJA@3EUa9rQejz|`jpS-9O%^r|&Afmxe0e%T0N-i#DUNtO}r_Q6kIlx%tr&G*=J9=>s}4=4ZfT5;L{uxu)dJAL zL>K>aal^IvFxzPB^WKLOobLUF2u6wYY<%u6tBO&QSI7m;rO7G~B_?IO@pY5EzXd5V zf4lTXiNbp)cH;lD)%bwJ;Un4dz5CZcevcTYty!JG$;}xsMG+t$ScA1vifx5;IHWKv?sLE_%mP)sI0DfLGcj}~7OIM^ROm-j; zIW(cw6_G%li9w^!sIl1AgyDh6+}b6@`nsQ6h!iN`+)%xl->y|8{Z$?`6I1_jLDu}F z0gWbt$lKJq@eh!W8IaUWJ6259NCz=nWm?lzcnRdaSy;E6$*t7Kz^;2YaY{5_v3g)1 zYpH~}qkIoU{yB$!32rr%m)-&iuBZQ5O;?A*rp%1;Bo zj(9&AFtokpNzP*A^1N4`ky{P$GzxC^tQv8K`L;(X#mw>=PWp!!Ob2cHvq83RI@G)u z3N!y;=N&Q+=@fT+LNootAjh&vRxEfCq8P66mNKf!}>~(bL+9=Ccu1O3L zl?Qwvk`7ULuD0wbqI2&pf&E;LcrM5s88!Rk#qA^8R@H+=u6F zy)U?wJC?Ui3o`RP_&(Te94=33!8+49)Psr`uH#dEL1LvZn5E*sO;2J#KTedZVAq)) zExy4o4`T+m``KJdzx(FLf_+*(+N4cot%gDDN=UUk3^H?1w#_uB3cP*lDdS2dp*bQxVI#NoX%%-`Qc$pJwBdPTD==7^V#573WWE9G+rSn zZ3l`rq3uLyL^ELvk9Ygp}dR6P$ zPIt?n*7=sRro8f{MmuI-a-g@5cQzqQCjx~lOMhY`du~DLj>UFAPR)RZReQn#qE0RV zX__2L1052ta{eaR_rjxH6CPIB^MC*d6Ln)P%h)Nv+yFKV5Qqj&Gvm1My<^MjApX3j zk`L{LZr3bAAb>=DYu@{MjD^@gb`=E57_Mi$XzCD*64h$4C=^=^x$C4hXk-X7XMrHC z>-o9M_j+;Z?&)P__FkIZ^d?&Gq^AvVYTc^HrELuLNH`i0iv0sd5yH1C_DsEoClB%j zIzF|$MHj6!!aoy|1QqRv>JQ3aDQ9_Y;qqCgY;r0HC`AvGaQ1vf5=&DH1|60o<2 zJrQ(pTUs2<*QV(c8E&FQ3APPnj{oY2MH_I4C8+L@wA@AsHXl1&N%{SB$6pQ4Xxy7G zURM_~K2Mt;SJh-ehG~mmgeoxwDrEX;p8h({}_O)*bVYdOP))AllrQp}92pQ8wI(v4vjyeAsv%u|P!G7nkh z_@)F4|5*07Nf1G~tvHoMM4e?ASm`fiP?Ad+h~{Z;=l#!8Vv6mG(1h++&7WSL%xfSu zqCN-?tIS_D7cEM+hl`&{2MXahai$gy^yfDBE$yx4lex=FN`<`+s~{BWUEqSve3;Uv zbVwA9T3w?E&ij;6_){wVGq&$pfVOZ>##B_cZ$Xq^dT;zmjGt_%x`MSLIc797b8QnQ z9|z^(I}sd0x!G8Z&xYCqK`kun@q=xyorbkh{4;kYY#9y^Gyl;6wJ)gPp0|c?`qRnF zGc&{qW?c8$Sm=1oH(fQx1uTfWvRZ$6?VS3h(^y9JcKjN_j<9~_!|Zoiul0T8bF@W= z1 z1>VWv$R+P$k-{av*T^jpB?`QFwRcg1-*MSLz)yGe=b=sX;-?}s@%vrI7n*cXpJ$Ny z=CkV;LJ3Y38<}%yglcj^{+W{TZKX?c;#azKv?JMl%xS`01Wb>yxOY}ya4(~kUJgG^ zH8#vq?fl$Kj)xlnbyob5TQyG*T&MmpeGlhFW@zz#5Y&(i=AEA@qivc}mkf51S1OYRBf?7{Xf~MT{$0ZKa3a{9OCn&So|Z{ zC;>eB24}(jRVV?==TwS(2Iz?Dx};rG($(%4_p~V8)4YB)D!HwKi{bTaPEC9k&}jZ| zb9D>+G(rX%TwEa2YFWyl3Mvu9m!))}F1%L>6)pK?%g_skwE;B*R9KTW6)Sz;2 zcQCJ9)u(~)BURQb*}fjah3W{xCouSWtPN+zMZ0mGF_s{=7FqQ9=;KR`{IGb@sOF#9 z@q>bmUiRY01&^YoYBF8Qq$3aZQ$ zjmpY#dbWsr3wrd?-uJKX+99C?v53=Uj;k;_YzbV8==HJR(LhpD22^r*pD7-PO5wJ7 zwjL9qzfLkpv@eL6|F36Q3jC&Jk_^c13x=V@cj@oG6I7^7`K|JKU|H`;@$OMbeTdsW z+SBmnk68HQyQap2_I|(L`v@g?OJb8{s`q!5NliSw}tge8N?Vok-z^BLCa<*Ox zT-4K^QJ!vA^jBtzNQqScK~8}mwW^&s7cg~|dOYv%-#tFwOlD_6eWBpK=blSGSY&CF zxE=vAreUmyt$nM!R1mpLG+k;w#KHM@)dcd!%Z$ank6!G+yz0f))`#=YDrfs<=om!I zPg`$!rm9oy-#gjTW7xnkzhn4|$KYC0c$~BH&7JYxu_>JoZa-i9y$mm^3(R@$X*Y8i zLlZfAw0a`@Z7*e+e~UBP*|EvJ*S$_X{q$17ebPNQMR>)~Hq^*ZxN$4BpVWB59R?rV zHBTAsJipzQp;-xCJf9^cz5@rN`LBk?$Pt*5i>6wSaP_A+$4Q_3rAe+wqscPWCzE`I3hH7%6E)AVJBF`Cx8`hlA7sh^HfM}D#6 zPDFUXtC)X}@+FT`RPMYla&HMP;PuPnXj9iG&|=An@V)eUQM6t3^e_<9iv$LWGHy7lr|@Tfp3bA6n`LZvC~P6onqF{)AHr`my~egpLef`pXA@}kc($%z`H4bwQZ>iHXln?G-$2qP2{2k&W%uY9NBJxy3#f8a_R4MbO%|$69?$Zm{Y<;IQV&0md zyPjI%@Ks?2x3a#gCdc)MEn-|5U7CY8A@&FDNG4|TG8F*?s2U(w)o3L~kA zf7qyBY87iiSNEdoibf?PP28R zf$^4Q&B4aHetL3np;^B|;G1Eh4)UV?#oZr^pAVUtcH`u{EC_ zIxH+IjaBOde8;!{J)_`G6O z+JOXT@{rqh!CyUgyC)-Ts?RlDgSC8l43(@vm4n!i$>GgKa6PMG`Z^_?V|W>1V&iUw z=i`-Hzx?r!wvXqbMNXvOe_&MAa~B%;hm!SY-qae74Yxs7nQ0qVTRR`_uzl@CA zm;My;nij39Wv6Z_BHGm2aef^0s!SG$nB%(r3Zt znd?;FD85W6{9!mNO-X6`d{`8YNrG5KryMdZp=%0u@&Tja>6o zAMvx95Ps3XfbMwZ{>H>%F$o6+dxl}%)0jK+Zl!M7ZHBNt3$hoLE4LH5bAU;_N$uA% zhMAj(+3m`d=@CR3>t}4_c3Wf{h41O&;pTIh04{iKlNb*7w}CqQUdoc5K8457(rRbl ztq#Fa^9aN%qol*L!WDDxLW=wLM(=&Xm|?;)q|t8Ldb^VCE|r;vl#zVy&nF{g^o_AN zoHU4(;o}94>ZdVonrl@0s@jTDk=rx1Z60TTSRVgeEXdh1=pCP}yVSviB1s}xJOprF z-0U>mr1*Q`eg_ur^GHQh{VdxFmJa{<)hb?f8jBxoKQ)0g1Q`%m(|rd9xm+c$qBgYr z(T$J9H;%dx$}4lA@-*PnWT{Z0EmWb8D=UX5og=XM*JckBBblFxUk$-LIOo`d%ZK#D zgA5k8MDHKR>F@Gs_Eu*s<9I4Wk-pIy3NAJnDDSJW{KB}^&zu&f|Kw^^%}u6$uuS>5 z+LH^+quJ?%e5T7AUUd>o^>GR_pK7Fx?({R(s03-Wb<^@sy)AlZfn$cO%D3CAwz5TX z-*(3vR~SVUwG4L=S88-Zj8YFrwai9C2lYq;-1c9K1#w^cJVsT^1em?^RV*t(G!`Z2 zO0st;QuZ6Rl^;CZ6zN43bt}dfCCO>7usngdCn}haYeArjvoGt`0^!u-m78H01|6vi zs9U{ktc@|ED>Hs7B9|(fLZxNKH|mfxQ}W$)c>CP4>YhZtA}nkQ;+uYoE~R>%+WaDW zfm>TcwSAGQb&?U{HMX972tJfPV5^BVDue{M2y1^6b>v{8%0Ais$XgW&I0r|B+6M(+>zPn_TO? z^&iykK4Y8k+oL_yA_zE{ad!2G<=Fl{Nf-Od8D)PrPPZ2Uo<=Mes?SX&SOp+ck(kW= zpsSR8u)AGKH()r)L;VWV%t?l~sF^eH!c(xH@~T^j%n~-s1hoIagc}&RY6mS;m}Z`} z584|flQ<^aKezI-<|_2N(OB-{c_TsLEPK(!gQ%kHRy-@4xls%^zUy*4Yq%DSs>)E7 zWUB{pST!5XLwrPtBGeF>ayyOVmQ#ODV4WRN&4E`I%HcAXAW8?$yeHj@A!N}l4R)S; zt{Mh@4ctL~!k*v7G^5&?c=$9!xDuPdp_5B4Z8E#=i^G@IJ?~KI_$u;Y=zX)E((K4d z(%y9ZO0utyCWln`D33L(*^G@Hj@e-Mf_$t{N4(!{Xhj9HeF)9RrRA$$9P(9FJIlmp zb2{j!d(^#N(XHpyu3fhdaXZ(<@-!lQZCjK`;yjlybG7O8xn-y>fn|A2GCj|_qktDr zbF80nurvjwxqbfb@69u1)m=o_GovXMJ-4WJ#JmokO_#Xv9MG41tx982$e>$nl@L-u zPQ_ofs%SkClfM6TMMk5~Fh$&CSvWy%+q^qis4HM6UtGjpBu@gz_UIs;_;DYh`+}K^ z`qvz)kFZ=^LhA>1tJb1ou0i+DR)Tu0?dD5E{+G(l%$U0d|#|G@m#MY-_nP%Vs%yQj`mMyI`DYVUDnl=88BG( zFh785Oy`#Q;mxQzUQQZG2l_!go>jO!BRq@px-5C_V%qSr`@TMk5QpkTgS0bc6|Uj3 zwdeB+pHk)?RJlhe-IVbHu|-JcuNm$iljAQ`kZXN68Pz)p5#=G+jayAi!k*iYjiZ`= zsOUxQc`phN)_=7Wqdc6+E@v}j8qS>DtIhT!-S^<-v#Xy$#C?-w$Ez7|i}PXH*Bq!O zXG$=KO~+31#ro}5R~lIJuy0RquX@xWAQcVibuC;)u^aVie!`EnweC;3dNyEp^Wn$C zt&im(%mtHI1qG5uscXE;=7;LjRGG=6_URh-^UkqNKhkLbeORpC0*A1x3c+YQ{4fMom8J$1NV&vr&`%Y8x4JuaAmrcv4w?+n^O^pSLc)()t&EjIZzW$?EaL z(6iRMEc`K{Md>iTIkWWsaKMv{#jJ5Vbo4`c3Ve9~?*2w~M!Cf= z7EKDCA7G+Y{&`AZx5`&16A-A^jdc`NS33nBqp$m|32*Bcs~u}e3Yq)uz4pWE_=>YX zYTrrco2|PrPSr5#lBuPGm6`?JhZ0$SJ?zm9BYT;aUk*Ov=+0|whE*FjAK+`OB_f6n zq_!=e>)H*6?j;WnPE_lBD1Jb1bT4`BPO9>OTyNKv}T z#|VpdNGI^pOU=JB+7g_tCnB`}KL~sCa5lI1UEKb3x4Lz(t3|6s2euLfrKX^!8d7sm zV_Ir1ttrG1-BnsuQYxaxnuj8-ITBQBjH%`lLyMSWh?qh+uf5OSpYQK?opT+3xm@qN zto1%?c-HgW_x;oHzJ;R5DNQX#%AF2R+l=Z&q#)L zTAQ@Ix9hUJ%p3{hyP3fySXEKN^*EY0C*;B@&;u_*Mp>14U(di0 zR-;4RamCpwP)KFqxDRAB29`}jzaczhU+~-*$YP<{_-yRuMPWEfwQUv+t&6%?j(=X? zWt=FTXs4E)ZQDwbRu@%qCo-_SnPH-LSY>_|clzYhsj-QSV{dG~Bd%bZdfyCdIjrqk z0|)B&vtqCHy3RgM6#1}4LC0TCkU3F__(NeY`8Sj4dlKBBV(OXxAY>G}wT3Rhn2F{LIMHt>N%3&*0Te`|TI0n)4IK>dO-S?no| zDoCzKTY@(r9&mS`#ajY~`9ccqbk}`tfyGHWtr1poxpOTIWx45o&iMPKKkkqO;7Pn9 zm@%^KVDe&tG1fQAIyPQ|3VVV4_ZmyNRR>!rDJ3;auBTK~u*}h?aDcrkvpl~k2dG7a zX9zj>$P8Lp-44^AR|6MRV#|GoRq!P`Hg_g6lE5&vxDmpO@H2_y_F=k?Z6D4Z`({)* zq>uL%U@=M!Ew4}T2-4IR-{~Y_w#<;Lz35L9^+(n*?}~muPCD`|^0$0>RRp@y^a;uA z2nm*Xzn3kaoc)O(Op{Cm(mhOw)N1QIH5}(1Qj}DAH(B$|MmL~~srQ9OsEPjCZ zM~N|dEC%WZaC{guXvF?A+o=aQ6RQ=IvF1kU&RfDo#bzYCA+pc$ceJ`xF1VS_Mo685 z^p~=yeMV!^Ji;r|)rCV@jp<@@us^)kcBEgRJ+-lp`(7hQ&F7JOlNS@z6a9_5YB)d- z?6dp{*E>qyL7MuK8RxfwLos-&Jo*pN6E{+ZNou-HRTsfB&fLtr=OY4_l zSJb1GAg8s_dx%sS!@U@d0%x$x+0{Fz1a;fp1f-m>p zT|RT0d?6%=@@}l6(W>Z=qRA~0vGtY(JP!osr6zxGblXev9Ib_vrBN}-`B}I(yL-?J zdU63Wsr>^s1 zxVF>t@k-vZ0ToTB(rv!2FqzRW1S~y~apvkR#tkh%}$^jC#iqup?k*jewQ zkAnGy(6cBuF2{Kh1?9B&|8QRvoA|SzVFA{$A5b9+z-;BVD7vy#zM_EUknrV0lEsreLC*c&7f5@ zVp@r#Z91p$x8Xb(_gq%iz;>x&yF|g?9SLH~(!kBXK|1O>J!iN43Rke1*mx?8Z)o~V zpVGBIlVM}H3~rJl+3@HP#U3g9T53_m;_hYDYh6Ye=<_P;{Bz^;yhm!TVrhC=PiAoE zkRlL?6G?lbJ8v7wB2gh0#o^5_o(j8b4KlT#j1oyyre3dg)eP(UGzDwg?u%N z22i;t;RNf!{7!!^_7D3$tX0C`8|0Nri&EI@{_CAzSMrNJvHYZjU9o!ysR8?JS~tnV zCRyu&g<}Pc!nx;wi*<>s=_qu^eZ98%sWuU103CSGWpLB-4f0XY10ou*@9q6lPDS`~ za!0lRQOV?TZtIwaV!#&meSDwB+OrvEx`zE*(^g`hGYliisKRQ$9FB6eRP$wx)wmaF zU8a^XU0rieeXt9xRB;Ap51MS-Bn&?Q*BMf&wh(7f1MHc;pZ=wA{n4L#w$W8;qQiBr z*gg-LmTyK+w&c#k6`AzGC|os_gX?@}-A>>0`UvEGzDTiF0_#8e=(qwOwS$^_-VRn< z&|B?z_O51Z$CYTAYzw9Keo@OIm&!Cf`#$JtQNZiDp)=@)(sQjgPn+3X(5BjU30p|2 z<4+q2^O?Rw+h6JxmE7K3v^i;#NfWd_v*C_6g4U#sMeHmlSVqqbc3Vm%bo3gPAowvu zOpta&t}U@>3|V?;-_{7L0{;^`oQ&MvlcAP(aD-iWQx&F5+Vt88yB$kggMFa=Q16eJ z-B_<%HwfIiN<%VceD`fmNNVuD^r!%bCeMni-aF{#+lu`6IF&k_Y{Z1+)w+Rn_SL>l zeLAzmxF&k&d4@CoFnn$#L;mB;F5^r@mG9XZ?|81pC zZ*o4A$%En#ooX=Q{eCq}pqBRImtF|^U_5~91+j6w7jKGw3S_xR7{-kEE$s#~s?Yo@ z-#@qR$eY`3Z_Ii##DMa}C;vOZg&0I^STWt@xZ9r26VTk{$(=hCcCH4f7vt5J+xrN= zn<~gE$C_i*Rpqvk1||@d^YGIiZBBn9GM)*vw*Tr{RQP|p_i@2YaPlba#wHd1-#&{t zt;k}0`_&qc0>1aJ{}aS*IJ1Fsiap#bt8SaFIVgAO89k~1{#5;6Z~yXa17r_~!d8W~ zwF-vq_vX+9=|HMw&U+{OBJkwrC;y|R!!E7vgK8<-NV$tw1MTP^U1b07j*CY$Ak(RB z`0pWGBQAnQqX$M^pTk0(~_(I_`0`x4u^|?$f&?RSh4kxShUlj5OV1#N`3Ld zznwy@hhdct!fY!g`9kP3df=dYQ?R=Mvg(x~`-c~n)%(7*$P@O5YcP5zC&sxId3&g_ z2gN%Q3NI+gmAK)bNw3!gdWFBSsqXv;uL|?^`uSj{koBT-M$-P>0gnr%k+2)4G=l72 z`~fM%FC$l+72?#skIk3AcpP3f^4LBD{o%!bufH$xJ*fv?+jMFN(B;BH$NC?>J zO+!2sxvhzhl{8mKw^5jNLg_Fk^$E?P*AGj_k7LSdsaQlE)qIARQk>*WG4hiOb@gCy z*)=Gk^{Ug##Ts(#zmrDm%UrCKDt)tYD+WuGu@?3M+_dkSGq8~UQ{H4dhU9$J70(yY z?%jXqN%&f;I*Q3ySQ^ILES%Bi(y=E6_Ug-PW{YK*K$rGQ!@j9NUu{oAPZ?O;v=b!7 zZe;|@Uc^?Xec-$kz+BGvo^ad4`EWwg&2}_0LIXpG@*srD5ouzm+nyyOOKEtC+;Duc zfHp~_+lYeV$6OznA4;y=$`qWl3M{KNDTZcB)TMVMuq2-}!U$78(!Pa1R(3H*>+MaB zn#pM2SD@pCxknh1xmtbSnl?A2Onk;Xy3M zd7}Rq`po1EJ1`F1ZK}4UvfWGaN9%hUflHbYP3zyGq&a^MzJ+P7QCYOfSzsoLjM>ErH zuMOiGbbb3UO&_EZRMGf&Dk)Na?#gEP8*ySrULVlhe@T^qk*r%cBOkrIafyV!t@tSF2% z2($QMeZTM3seHZ4EO4&DhP9if0U>$ExQzw_r_D6N?0Gmpr!igEt~jDLn2Zl;sES!j zLn}(nyc5$q%4MmilyJ7$;gya@Z%1vPhKWTbDa)@klCOLo*POpp43)C%CrqRXL$7Z~b01N3SBdMF+A?BD z66lnkeuhn8!p_@Q)zimx7&c-=5AIpJ_UQpHH>t?QA^KWkK`h0Ow^t)mQ#$F#aW`O= z#IwIc>7wA0!0#S4vO4V^_IcvDl?o;igmbhzay?2xj9Qcp-AcRS3Uw4Ek8@R)r}{_p z#s>&5^7g(DsMAOB^J*}S=@a>j@_kyv(CRfV%>DN#g@qVf7k;)}Q!b+RAl zM|th0*S*v}7I%J`D=HgJuoyM(uhJ*cwuDb8mN1EW*!4h5hyA5f<}IsaZ@6tEW%T8r zh1v5JZTT0JR5+*nqy6PK}#dRg}ah6$UgDryk6ma4hgLAi~Vf zg0R&c4{vUBhyNxfZdcsL@i@gB9=^SSs{{|?9VmA~_rX82RA zu{JlLIrqSvfJa3r>x(mrOM1EJVX2mFMVsXb`HkKLJML*TZXeuOU_3b5?MLp*A%6+# z)uKxFB3DWgTQ=g+BEnv+`314)TEup|OG&?@t}39N+E-to0Sc!8E4W|$jDCd`&&T|1 z@R=Y3As&6KFU#bS66P;piy&*q1vJmA7MxA{9=Z{YSa2;g0#eUXA)J?bfh~Mm0tyA< zdaEuxll8v^*^nRSQgXa!jgDFI(_3Fcai&w%yMb?4)W|bjk3E`0+TdJYzh%;6SGKaB zNop0ofrY#~TN-j{#_tUNjA%jf=p$vzef1m~Q02$<-L%>4KHT%Z`XW@PlTvO3lx?_^w*z16YBtvb>j=?5 z9T=KPUiK?R{MK8K)V`b!tN#@SeOl#fr+VSTIsGX2*{D`s4awd+psJaAlB=|V8Nwv9 zI2;(`cE|S)O)*Qcjql86_=EJaf_~R0X%J(-eA<2%7j2fqo$yyk9{R<{U$%%u@eM%f zseExYqd1j?>KP+Gops7{vLulRq5=~B8ui~II3>=s!>{s`;MFLP?dQU2J!FZ8<;NtK zvVAKrTV~GPp?~O>m;nuHd*$$R8$m71OWfq~;grs=^RQKdK{|pp9i-+26fDa~=&Fdx-tz zn8=;oNzwrT*b$8g5eBmRlxDxB%ijURXQ%`Zw8h*TEv3r9i-n%g~g>IU}iK?*(-V$*-nGBn}Z_nQE zmG1cH1&LG+D~Z4NxzF)Z`7Iyno1Vqiv85NEWTh(e&S1B7{9UQ>&4es>g1{ya{Lbh@ zi1&mp*tP?Kwt|b;`J%!y^c}s0508uHq^r}G=zh$h0TX_#?NuYOnOG+8LobOQ`I-I= zj2`yi`K?t#n^^l(oZ$vBiX;y)z1Ui7Uha4%3vyUW?@V@8ek@m>Nf z`Vp*rEux$>%VOHB+(4+B>G8{Lrv(4zqzi+TT+|$?8!zMEs9n^FFKmP^)kj00k_3D( zKeDa(nwwo68?*Q;1FY=9PsQb`Yi+p52)2%XVr-mxplmRw)xt;fN~cDUpxkfqU@ zpqb)%LrQvHpisGOW|;actT20u{-*Vk893xBbo63pJbEfLiU4)ygC}h|u3+Q#`Z~8# z5U1@^?Ta&S>90CietL@Son>M&YunGJkZH{L3zYS>biE~*LKJm8NfT;8VcVxjONXhrj zwHahb{G4lg;femOxjR#tkz*Z#`?pepWOLGDo2vuejc)ES&bC!JlvTzN;a z{d(L8#&v2Xhla?oZrDK;D2?Jj;$UcP+-8k&uT(tKR>#+PN z=!+L@VSXO6bhCI3#TX2{=QWPzS#s`8ONffDGSBky?1^pV_S2=biYF}1i>FOp)s8CK zgm7c$3m9G2@7#Fac7@w!air&o8weGQ$iN}7Mp5W;Xm<^N`Clfx_bw|Vk7!ZudH9Nh zbBk+Cx3dGNuS6fvu-Akbsy%&ANZzMiUisJ8M@puqtduQuvRk(<`3@FkFf_SN%`Om?~<4VO(-v8R*^UU^g(V1}SN#sum+#!adiCW zgaj-#_m@`gb`J%j!_}~-9h4C3nilK62A2BrFJp=Hx#O_jviOR zxEEPnF{%WWmKM>X=%*y1jcuysq+ z_K`abfPt~M(5sXC?8DHD>n`yIbs-1x_`&;y$Y|pZpr$f7=FKYmxu%wE)`8U5pw94aE!rzr~li9)AKUx2I|UsCJ8P<~7bi!0TRV9jxJ7Sj0D zu^V$@>tfB9T&tpHCO$~vg9Cgp z=83)bSw&`T!jPY=Sb~#0R@|U*(>L6`==5#4hRnNJVva;E7=V2=nU#JBo{x~8dqk3i@}fW#@pODd+WQA3o^6naW;xSX88y#yo}!NIW!dp zyqB&QlT1S)Z}p%4@a|Ps%Ha=Zn4*aW&d8%%;~ee` ztIENQxoucCUi6XVvKOPMTC97JV62LJsVbXrC##+VW|oz`uK2a2xu9YR*vSBzFx%Ap zvdha(Zo2E&<*V4HIn4W&p zBZJ+VfPdqAeb+~jKMCAa>Pj4dKm$ZOKK%0Gqj+|K)F@=>4 z@(qs(--!L9ljSc+T1o?3_~LET0-xeYULA-1bi=!oL_*WjTlPE}$(9;~m4+Bxt!V|K z8&@2kdtL3ZRH;=LeAQTBOY~MGV>dbGkjzh;{?E=*wT%&d$XfrkoGhn?=N606$PLla z#Q9IMAYX>n#7dzx$aj{|dTsmss?I$|e!?jcDp#O+30P(2JT!^V%;BdV^g)F)RQv zm^UAGJyjdP(USzt-S_8-7OLc$*xml8x5%GEWGngz81Z*%lH#GRz75oVJ;XKpm@402 z<>QAx-qnFt87JyG#&X_)dCZ>|{^K5xg^yg+hoLPI*pegRIBn6T*r;KLWo*}4aZ)KK zhCcOMXgErsIKy!z3yuunGY3#t51lx?2kF8c(ZA1GPks@{2pOs=NUb|WZgvQjA}nr0 zvt=H&N0h$BM}_<{DTy?(1f0Q>2KO9VkDZ0hYHr(yOv!zjj$vUV zo$G!PP+i>f5JF`V%91JF8q{q#<^e!LStmndG|yQ73rdOea8NzbN8#r*7cIwJW=dQfgJde4f9BYmE}>UT*LwhjFy({W6G&50_49H9^DyLMnhX z9zZO)li(qx#5iI@{KPdJEcOeMUi~Z-iZ)Z-9|{xIGNr^kw7kOBT zbG@%9e*vLtYNiTP+e_75v7{evc!cU&+nC2@gGUlKlP6gl4Sr|?xItR&Sab%#_Hu4S zlH16j55dX5Br284dHJ03>AL4n1+HO^-Oun_0w1b_*zQ!9Kx4~AV0x+iML%?y(}!)J zz7#&UJ;L&5$L|D~8(vD_f3e5((VzUweN?Ly*yR(k@JmFyQ>J^32ECQzxXB|N+gZ-n zyE4~!V+YD^T>yFNxfB??5T04yrs)j^(uU73Nn!Ykg=#C zP^fIaH8{XVGFB@3)J&pF@u$1JtLc8#xWrYU<#+|FId+XP^~+J}`>9GGAal1D#`Xp0 z%?6daOrBOa{-pCOA$@IA7f+rvIBZ!=dg3gEMBJTR-JuU7v}J@%Pnd{sq`mhpKw!20 zqdnd0H6w6gQTKZ1`Ss;2ElT`b1*M$08GO%;ftPpYJvpx*?_7jjuFyJjv6P}x$hy%K0sE5A+H^A1}(G?8s z6E0{LX46vROcdl3*t6FH>Bx7L&J19ep(EQRsR{~08JBNbM`4p|??@+|jFFNtSoxGn z!3E}hvY3!KZ^>|jJX83C;d3N|^Hd#R82Cy>O@B&GpDUtQ~INCwI}V)m8CYX>yhStCj^j9fYZ~lCpOM6F~R_bK!pv(oO;6`;cp{iDA%0qbu-z zW;RTE2VLv#bFCyER4)(OHxAZ}fezn&e0 zpi(*W)gF|`ODQF_dY^(V5ma+bSL%KAn)D42W!Oh?-R2QH<*l(YQl74sgZiL+aU4Y7 z>dgOaTO8wi_;=fUnRl{w0M^IRj=+~v$P_&r(OgBVNfNQ?pT-Cn(Zv72Cf5yEzM{2wAA5T zC0H>M^QRH~rdXhGU8H1hq+xHA7~J(U2e!$o^!=BD>|5i};NP2KG$2PRwQLs$oahSc z578NV{1N4+bERIeCvKdL&ZX7^fva@XcXg>#^zpm#gbq6yq4!&*rgl|IWFQk z!-qS?@(nv!r5Nob0UNdKF}zKZ3Oq7LlYrQi3wFD(Bv)C&g(W_7M+1B`!ZX8d6V_{u zw5dw-OrEMvS){L=XY0bR-r3(^e^vN7;r}Nz7SuMl&Jyu{sh*wVe{!lRFnI1S&WN-f zKq1^^K#EjT_tb3OHeF=`l!R3IiHY5#0o=dK+cquEn*JkRq3IEjB8KFb5DhkOz0L7t6t0b5rJbP|XuMLTD716HfTWaM|AstHICZi8CGvT{QN zUkIK3bYaH(W{}|9@utYg*#|!@J{%P_H~2dz{xB!LXYe)Y zGIxdDAElp~?>e&Ce!SS-*;FKbO~{gG^? zYRwn0I{I=qkt6-tEix7Gqpf>$I(sFWk~XYnHJKw@cztLUK&)t5BZC|3iXr~#&tikB z1yW}EwYhyz%liA>Rjj3kNNFqI2S$!7?4qi5hX%iuFqmbq*CL#saXk*-QKC#-^@*Wa z1D!qZpt3|9=b_;y8WU}RO$sgvOZQu(!N&&jmDU# z+4Z4?2%#n{qs7fJM!CNDKhq`J*vniJUxxQwNmoAp0?-LeRyk-6C01Kdb-%WVMJ3EaKYon{umj zn=AI0-h_Etq9=hg}AW$r%k3$|s!NB`o@m zee)`v{xUz{*sV#1r@zS0%ku86qHLFn;no8~0h))GSLQd9C{Q-KqL3C+JD26|*|20{ zQ0KYMd_`rtdpcQ?2XXZg2gMrsGfo3li@|H_?s2vTD(>=;C6W~%GA3xa(VH<$Y46on zm&GC7^QCtivC{A23$p zp%=Fcd{(z0-L{h+H%!77569U;fRoZ-?G2#E^+T6K;_xeZQV1T!>I9}I1fd_t5L~AS<q+N?AY4a(<(2il0t4nYG1y3TZ)^7cA=W!|u( z7;Gp63CtpDcOt|ZzMz|fY(iwkmazOW3Aow>Ts6|yj4I#UV8#`LLnMB=9@Re{c=~gR zwwcOy`sIMAgj;nIOW>Q5|8gfOKjfF`Zuf+#{ZFek51z+?mkg|52sPMv3{xUhf1UBo z4XOILxxLq?q3}H+7~%9sHJkz8AITLYxf*0WV{p^mJI~&hX!>G}D9gEPB{A2i zyAp~FWv)M@x*n26Jr|89lf|0i-8G3y9mFXfhfXDxY6Mca+8JbCQE289UQSjppR|++ zm~(b?-^E@Dg`f&M-gM>zBX=i~;B<#tWn45n4{gt{8vmv23e3WNR+IJFM~`6dgcZUC z5*wcNCMyk=R(It$-6t#QO0FX-s)Qi8g7tgt*8&8{3C-cJPeh}230jmX&wgeT7wQfH z!l^3ODd`6Kx%^$fd{h#g%D&9QxVbue0u$CAkt?^o>@!Wsd9B5azY7$igXzEEPF zkCXRF8w~SH638qGNmcp|pCppf^q4|9JhC`|`7~5+hx<|=TFH~W$o?Z<#w=hIX@QL} z)j>(dr}Sl_L+NWlO7i$SY6syRVE3ynZ>qZ_=7D?71#+pSve*mTl2jRR^;`CjGI0Du z+xdDNX@DgwYANpN;QGhq3ViDX z;Ej-D7_0o6F}jprg`jEaH;f|wYo81ciYi=f+!>pHcLbM>cV_4PsAft06gm1b`D%tL zF$WZXYB0IV4rJTNt4+VilY~ypkPV-2O&!j(O%UGg)AhCHBCWb?~=O=#pcIC$bCC1Y>&5b^*~zN&Wmtd)a(Y)tB5AF zdo9t-nHn|klA4k)MX7YT8VVsiJB!VZXK$!jCX8InFQcu)q%jB*2fg;`MR5oI>0y_KS4&j};h~d?x%iPujdVBHRE@u&LKQC1$ zw|&s(K3nLC#~&)cS8a+WjE}(q+m|4oTbUSKM#Z`#>H_nm#oEE5fcd^qdi@-4EWPI; zrBNGQzsAhxcXtUF&Bp&2&SbD6W%}QUq_8V?2sA4d5V4?+=E{4u=r{?C88`XvP0Xzm zH#;1Y2Hl0kmT?7lQR9urmx z`E<;3ozcWmD0R7n;+Ky!P&vb9%tNMN*!TR4`s6EyoP;lrl5Y!(ZC7cYQ6Oy1Gs z7(Sb)?ltg^ZsIYVn`i4u9VWDvQ}$ggtM}I+*~D~KbEm|GgNRK+-|+I|<5po6koM}c zg8sY5H2*WtaU271&Q7*fh~gM`!wOxEFJN z*6CQ%r*pX4_>(-BfHhW>M@~1)bC>S+A;;f)C*us!oiwr6TL^CFrYC5o6T!jCW)H;i ztv@sxo;t!!Olw9)G~+ErJHowz${)H`?+%_hQ>U!$l>}mTPjG`!aw_zYcR}UD4#@lQ z#IsK1rL&UvC$;Urj(8;SK0wY8o*?VdT}@U%HkYr~#}=1cDU(qzGnszbZ*R#`3f~!b z?fCl)MeG_RKa6WotrnM{E_7X^R4Qfs37|K~98=Q~3tzujk(qJ8)O#(a&w+Wc^=4*Y zceb2FlT5UJQzqjs)lE};!F98Y!C}ZGf zn5#s@glB#>4;k-%V31MAU88(h-+ACL%kxTRpnjGKaRh7wAO_&2v`y?KzJH*uFFX}? zw$%0(2q6GKK`lZ{IcP&txO~cU!g+Feux8Xvd6>${(cGBl+_RZPF_bqj9}+#tDXZ`@ zX(Uq1<6=uWZ|h`#QOZbX|M62hYE-mtZhg+vHym8I`UO*{1r5UgiONEadkYPeA z_V_X;D3(=)I^)eo@01$zF0W8;G`ioD07n!?*o5 zBqMT7Gq{^@Pwx_AH^Mfv2jXfY+&lXS)CfS^KbYzBWkK3Q^fS_>(gsCD$+}r)t6Tb} z0J>2H)H%&qT0Y^(Hrh7M&Ay?K9$Qq&(qe6OBppo|`7BHPDrl);m1SuIHoXw4WN=`Y6GMq}2-eH7P;4|iyXu1Di1I^M9+;oxCb(cN>V5zZ}O~gQi z%!fn9`|%Kq-3ox?_2OcK;p-lbC4)j+;sJon(N8a|+7Q9e^>Qm#$8AkpW;uEfmf1*N zMI&4JcgTak5uC*X;VZ*cuMref*+kb-zISlGbya%CBXb;j!gFp5XRix0n_v2nr%%5K zuqdsp?`0+{Rl~O~iAp(TLIwzci=y;u%zDj?ak6mq#Ko24l%X3jQV02Cg0oH+|~ z#N!xd_SN-ILwQHdGpo%FD4$dTe*4|5P)-P>?DFfv-2_{8BG_ZzaAU_eG^+8X(Q5Un zG>}~&R2qu8#R;)j%c}QrYS(dDkhbrc6Bd{jIXw8;kaOBc=8OJu&pFvY1AL=yUg#;U z-<3(B8}o{FzKa-%uNriE#<6K1f5EH7Z}ASDVJvSY<+g`;;bb?IvtgaDEKsxvy`sE7^SI{GKleqo8m2B@)vL$+x{o}xk#`)(!`GQ5A zz4Bvk?wz->`f6)-9fC6zNd)&{5dL}PlYI-QK$XGv551VMg-S-%rk<)DDag~s=Ltuz zb!V2i!R_*mTbfLMraGrXthVrfTG0g>&5Piu2y>y>qj4Kh_ z-7Z&RoA!RoCPuGxRuh#xg*`1z^6@Saw<9ErnMBBZl%dbpAvQF0a6?V3#OQ)}w1IOz z$;;`Nj?%!*(e8&zg(eMr4`1I*gbSBmVS)2czdvm+EFFnHQzs+#cyA$M@xe?-9L`c_ zZ}4W1bi#Vz>8k+})G@lx;zE>N&z$0e2Zs*i)dZ3Kc$v2LlS{rFUadcu0Xoa4sPn&` z3(b4qBUdBja>oaf%epq~$51>4KGrel{FcwY{pH2I#erfwv{cIz}Z9knUUxA;TR2s5$ zHvWgXA-MKqC;Kktm#0M8y|t=yDFPSSQcwM}ve0SbZ;OpyCn`e8<{x7@X*a^!6(_=jnY%BeVhj!d-(7=EH=}~<3 z^uHv;|C4~v`IjB5ZT^StDIomy;|oB0IHr;k0ch$p2-INbdNMx5^{DO@(_6+?8c;l zDEnCyKilW#`E_$6g6Eu)+EilxWPIp1q;Y0?52c%1Ws{J%<2^cH2u?c?eQ}oR8=9DL zQDPVp;&5qB{4nKQ$7bb8vEDncrG{n_E}=@uneRDTXU@tR$~zE5F$UA^{tou2&8C~L z-bIF#M$+smm$OH^H?aH9)_?VX#cQEvmyQz_gOof}%P}oKeOp*bc*sIO;>%L;r{*;o z!A*cY4q zr;f3pbl|q06uTuc<6$xj)MC{9`-`AmJB^CooyE2`2QD+FGeC>Br94^Z)D{Y#1vF!) zADGHjerQ!&WfEl5*+OfP*&b>(vnR?A+IbTkY5^CFUyOHE&dB0e0xK%#$h1O_ z(*QW~P|h6plghFml5k!pti!XZbq4H$a8c^ghctzm&GrvJPmLmLE$aj2976qWI4=&t z%Vexf(nvo>u}Oao5x`o5o>u3+ZY2^ltOWhj@{j#9Mm<)!)eTPntQWFsxGm1-jW4D~ zj2M2n3<+VJYxcl!X+_!x9fNI3hk-<|7J1r9a$R;~+8g>acpG{1)eFi5dGR90=~%|V+IJbG`V2cgDIrh^{F0-oiT-n ze4g+dbNWEdjL+d(N7MEJnptKcE6V9JVeaJlK}wKJE@v)h+o97tdusE>>7*hu%xJWT zOlf(K^#!Cn3{Pv%Y8EU<6|`pi3D{f zH0ELxpg9Kxg;LIO)e@YAykKL#9$ZbaX=e7P9M;LolK5P0<8mcF3QNKF=cD6kE3hY> z?mdP=yg~aDRWj(o&SR2T;p%VIf0R1{x_5tG1s3f0U)6f`&=vz`R?w!!b@92A6*T60 zf)~|lxF@6BR-Km6Iy_cbNbmdlvvIB^$+9PWIm5E!=ElNJv4QEJ zzBQdu$I-91TJv#L8_s2B0iiu#8rvber|9%qwy}#bjIb%^O9OiK;j5NFTo!7qOOhD?u};R!+=cW9=I3k{2&x-lAasu!b%h&XTsQ79cF zcE(t(fTi;b!&SW3+u;|>H%``hg2H4|THn*kE&ySJjpJ%rHQ@f){U2{>bis}NR&CcChpH59^ZTP-9?F!{!E=VGqg$Y(^Aa3Rh zBU+;LJR^`Njmka?)iBA-w*Vz+*R^iApplg_5&bT*9jwIG``oig_|?)_a^+=TMhc zWlP5ceQu@2XK1^)&3HjOFk>b2`e0hRT{GrAO4Km5H@@#>*Oo_#U;NFJnSLcSk{9dl z#-ODckfw4)u_+ZXd(jR0T!p`wILRj=K)vsECOAc_uk6~IL>am%zpalbE`I77Mb5%1 z6-jOGCnjnDOJTloZd26qsN?#ea6%r2!J?i8~f8|Xg$KWtCzkNhBt`N7CZ5SQIZl^jZj zbt<_k+;NSLV1Poz&nnuwF%>g;>AjW*0 zul#7B&yftB&@1YXAYYll)udJ z`TNZYTXD?B5!>`_u244_=a)+E?Wqbg31Bn~`o%9bNAr6AT@ZG8qM5E>ly@jP_`llw z?x?1+u5TP?WJU*36j4eTDIy>ug3@6GB}nhR=pbD{K&n721BeQtB%%-m2?#`r8j93d zkY1!quOYP1LJcY3Nqj_o=2_o**SFTY=KbC^{AaxP+^Aeb7u){BP1hhTJS zF^res-Fel&K`24jQVVhBebm>#LkQSb zl@9d6Tbw6aVYWU_u)n@;Tn;{d@Dqv9YVDe?0SpSIBFz3YwYu2N6cD|pdNQ^)Xl?E> zB$Pc2uHm=$7!;x!Mwx0ugX}+LujjqR9ZPM1@d!4~Gi-qEGuxudQCkzQoA@zMFzl9a z1h;DnqslInY|@_|O>32Z9)n91>N}p$mESNv9FhlbPI1aC+SjaL*`Zb7601N4y~Za7 z?K0Pa65RIp-I8(i2-L89yc{Z?5>MbUmImKno+R~|yGwPNIbhK5EJ7qM%&UcSV*#OX zep-VVoMRg5r<2TZ?_B1}&)CzS1EOX2hag_qk@KxJ9%pU zjqI=)ODgEw)+fpxcPb~ImO)JeRSX@oSpLY?bIZQnaK@N86Wbp}fU$i#!d5itk2>}- zU;M7`k8xZU{2+5#wFlI8apH9hvga<=!!PqSCG*Dmh;Mom3~R9mR&+#91y4kuo~g1YlCnNasW?NiKf*ZZ+4H9E%<%K=sgowxUrk=$uj@XK)YN=xM+OTaa!zJE0+y5%REDc;?1! zv3l)^44r=YvSy`ISw87pZJu__SYw%Q!Gklyd)?@wiCR~~6v~e$`E`cF>vLFDBMFf+ ze)Cq&j>J!0ZOgickmujM+j)Gr^x7f8z9mmcMowJaZxwXf))JsSpU^~Q?<(RkR+Kv{ zx<^r5c9!VUQT`+)i6gPKeFOb&4l!s|`s{6jDc?fNNlgeQTklCOUZc>KyX|MwM+J%f zR~2iEaufhR4U39%z0+S=Il}^s@Fs>40VWL;FR#wQZ~$B*zfEO6X7L9ezeNq z2tNZXdj=q0m1d#~EZ`fdI+OdRsiGij#@jXyLeV*t$cC{D31>eVkU_&kXD7`Zj{)0rVf z8T$B%EPSs}%ozO3~eA z#a(y(?;pmBO-SAMHwCPao><}lMwid@GQ`84xeLCj=mXMZjCXB%#Q-AU>W){&EM)nv zvdJYr3LVqe!ilUlCU;Ehj|M6t5PznUw!9KuvX>;U%S_U4DATeuq?+SD$jP0xOie*L z6?OK7(kP`hW=Rd@7-Jf>EqYllKb9^LFT#`Mq8Q-Z67s>I$c2i#)d0xKo-@)`vin-{ z`sPIXdzb+~!bpE1^{%uAIgw7wBgeDwNTC)jMQt+c*44FatufI-du`FpyR{wsE77bs zR0;08H?7rFq-Nxj)6^D{_6T|y`m@LA#%%ff> zsPlY?jGp)HrcFhX_))8UI1Zl_H7M!P1qOx6f%SfW&n_ob%Sx6EB4hlqTuTH4a6duC zNqTSC&2{Mt*hxn>RPhw92m6kFE%@hFfz)=@wfkDj2^G-%qdCLQ9dw9d-}RqV3D1-E z=G?{vp~Rv#HP!%Gbbza8^+Ak9vt{|%e!gZQ~sU|&Y z?>nN%Id8R1ri^*w6@6+X4xLZ%8#|_F7(SiUL#GE6{$^E}jn*i1QLuf#XlRI6a`FZV zVPl3x%uqW!nciV;q{cKIHGevYS9xis&78f}gI>0AGU9}=H)X>96+7$Z+p4>)tF)K) zK0mc3;36hQ<)sWEa}MiZKE$MXfcZAAT8fB?5x-kzK=r?xjuwNTsF89wK)7>WeBfTb zcym&O;mq^ifmiu=v7G5_5@Gotv(9E*&*)WtVq~tD8BpWDnWPu;jrM z{huqv3=}qpy|QED#O!BK=Y!>6(eJTR%to86YNoRueriWKF`!!?mqwH4FBwNQI`_~a zXPGZ@!yoX9OP>+9zihGTb_eJ8Djr`7c$o>y8xgQ-Ze~lY3x5RhF5&X6F5;VfIH2sC zczZDqKu3&SbazP3QD8Q65+4t)87Id@!NKZ8_R76_HcD{9+w)xG>dLe+wJxjgpa{)XUdZ5Uq=pbHteeMq-wy{(I%CycW3@=&Z0L%^AZ zmC27ZCZw45G3n`yPn(LLO;Vv+5 zzC^uiaK+8>Z6=d)Aoc)$VPNym zJmI)OIfrfs!CwwCyYrLums5E!*_OoBItkm;cK}^KxZ^8ZFL4+6E(bm|9Np$}@gIL+ z36B;sVBme0ORZm<4h*zp|4X~ft6127`SK;UgopXP^Je7sfpR|^^QJfIYF|z-i8V&u zf{Fd3sJhe;tf_Lk&oJ#aPu3svP8vC$NkGekl3=D%(COJ-t`dBdgo@#>RZEsmoLJml zDGj^8{$M6g`UFG6bm*(a4##GtQiEK&A=z+k)h5*i$+C-LmwjZVeYCL-_AZx-IwtQL zn-gGp@Gcu@ey^$0wTpXgZ@-sT_HmK5zXF=N{`Dn~Tf*PNC&b~M(-WCcx}Id+ z94}uDRcx$}u^|O#&Uzqr4e_D8O7s87@f%r022>7QiUV=-;;Vb3OLJ@I)Jd!Nu%NM%j#a>(2+spv5C={HTZzeLac`iQ|iZH0xY{I#!g_14WcsDh926DxxK} zR8>I;Rtz_s_!@iYV>=I}*1`il?e%w0)UIX{R`7qmUjko;6OhGom+sdGM~sj7bOlwN z86IE8JQHNiGRw0kUMam%z9axHm}RY@aFTc-mGi=#462Ry40Eq4{oSdN2IYmDpFq?>HJU_KKjTM zSoTKj>yYq#7+eP*aL)-(esYrh`?#-2oYipXA-c|5XJ(%B% z@64Qg7N2)YcR?uRUECn!EsuPCOWDTY+#WmFYt_j%81)vN(Uf3~FZRi>!nK;^_)5jG z%b7`zs77d#QtdUD4Xg-XCjWWQ*+qu405|!+Bmlf*=a0`y^_Ya&r7p~z&|hIRvJ26# z;IqN1U}4o3plr*TmDJN`DTX`7PALobeW)*&?X~1|A8dnf?)>T`i&h7d*`mZ(d(9g< z=&R0a6dB19SQ-v}gik8nT1aT`iQacpL!3Bq9f`~;_ClC$snWuVuVrrV$ELD@KYD?~ zUwkFFie6RHD6-qS)IRd5mi~SxNDY=&5cqJ7@nV5BA>oJ3R0x9>!^meHaGsCWrLE$A z%dC>CYy(#rF?x;VTmLBMs`~H;zHSvMkXtpR#W-EBe(l*!vX1Oebtes4ZlX*`m@%EU zr3QSNN=33nQ<-luL+YF9niGA^Ub3Eu8*&En%CYOvjXi~y?Pg;J(d<|M)Ui)QKB+6{N(ma%W1q0qUT9HX zeMyg1OlmU}jj*9FD)}xn7Ww9Z!tN4#D8jAEBY$p4gSeG~7nIdt%$_5;-?Y^_?vMuqv^n)mNlhcM!1hIZ``nznm#?xd&(@rQC$|aF8Mfh=JNS^$Cn|??u=ZPtDSK4e6+?`y|0CDr%_oBPNkaS8$$RP z>+NfRNdG1CLGY8172GrZSnxUH28(UYhS34Hdy}VV7daWtIBXw4&cA7=KMvj{&s?O< zzPM0z;3=|TG8V^ZLT`IrW&G>EUo+%yflB{8^uJXH<{$U|<6f5kqM%U!i*?#M9i*%R zWdU7)Uk)GGUgj_3A1C~Fm!$Fk@$bHZOGT<7tAlj%{Z`yYGkl2Rz%zBeT&(k`>G7<6 z)o0O_{$QG|*2MvQ$xO z=|PLB#(dHyXT}QFvU`1wM<(x9z(c)gO9?m{{tzw8oSQue70Kmg?+jMO_uJJ4XLFT& zhn(ezK27{Z@;=!#V@0=O1i>I&)}Gd}PG95aO{Kx@-FuvEDX`$o%ix$I@Tn*W@(1_7 zGu~?y)tD?v&q1`-EUEh$ISI>VphF>V={>$59O)G;bDvru>m7|oHpT1r|9l4E`Kj$v z6|eUV(uB$n&v9E?m9XU=+zC9^n_|$F=7w1^f;>fIgZ>=e>fkR(4P<{QQ%tI%uDm*! zNTdqR!VC_Smp9T&PM_i2*&WdrrM{a@aB}vi z2RjG~Vk-iz`Sr@R{f|Kh{QABBRG(&f`sIlbjj9gHa%1>M8cDD}_ewZQQEZ>cNzw2< zjGi#bPPMnAmzdjAmP>Yf0bNQ0&O9_K_ZARv>0q0&%F1>O$AU`phTZ0O2k-1OI3KQ= zJJA_$Z2(P55(}Yy@T!nwBpXg+JJWcgf?Q8|p67HDF(R8L$K@#+rh zG|L6O+s9Gw7K_Cb>%>F%QjtAN9uEA1G*T*I#gpS_a$dn5r_eh%4=x(cHtkLt8>I zYPJ(6kY=aXXJ6v~j4L}C#M@IJ{Tdz8tsEH)K;~hfefL=&u7oju!``v?r`pk>7lVgr zKBJOsl5D0(KdpA!tt>9oq?8*j^u-Jfhin3-V8-+?aDHeF(P(fc zUbFnT$PPmT)Rs4!!1u7{t=%mr^2c9%}@9WNU*;aa_Wym4SS9?IV9m zhHYABT{;N4%zN*+>%rCh%P#6E3PGd0`Dt1Fo3p3lG(@L&MH+Lyd`>*vFST<~;JD1M zT>)w$Emm$v*V}97T-{2{gThbx)kXQ$zZ&A{%O({qjS=6`Sz?N;SkjOtdY_=UH6w(|kZB<7NicrU|G;l5K7pLrN*`jWDOz zsQI`lXQ2Q)>YzE8PqKtOlWOIiSO7D>j|_KbV4-b1H^l9++Fm%;WYJP8&;yoKrHy}n zBuh@P__|;EvjVh0{;U3aQ6ctY%W^II@SXY|%{QBucxs`Js-Tui$M6b1S%WcM{prRm!d)-pugRMJIjo6JzE$=S2GET9u5W(6& zqg^Np%JwN+>}&w7U$XhKLmZAkI=9@|qnb|e%0*l|`8)eWa3ARVHSI%vT^cQ-2!lJA zv>NT8>dtmWuV<+NecA7zyp2<^V9)%12nTfnodLFMGQ}T&6P%Z(DOtxlowufhnPH@N1 zx(J>u^!IJ%>QL3WZxZ7lY6kI`R}M(YLUEamM>+2ID_K5W9=Ui5biuztlagy>w2-3K zl&g*3*sTE`u@hZBa?Vd{wB^08thmNSN3v2z-*J@}@8bsh^1mR0md0Fy4XWXn*^9h{ zh|a5`A~EpMWjT8t`s{O~*EyfHK+*rc{yU~cE>gV0$#+d!f;phka#9&ijYr2e4vWLb zn+C~y#>bY{iuQnY`^1-hJ9FJuj-(%MXh?PUo;pVz!Ip6w8oRwf9FV;yLGYF-HixYv z!xT^>9h~;9JMENYH2)g?@__p2!@WD~GhrF#;8tD%&x6)2<1Quzw0UvdrHT9YG&A&I zAP01`4S>F1zsF1TQ5d&iYAba(ZEu90HwScsR8zg{y`&y^%DL|*0Z9%ZV+v;R$~G=H zlV191Z6I{o|0_=AuZYlu0b8SClB7*8ocsnZ&MbU`J4TNezp%`q`0Iaykl(=9d>XmF z1h?L?5fO71oU?B1jhR9a>EQ?eXl=900X^*SoyYBzs;HHzHC!IuIo$T|j~4S2S3xGo zDKI`ie-&YRS7Xc_wlPyqU*!Twl7~KAeaGK4TRns|5}XRTbAg!G`8MYD00{sOQI_q0 z!tbAzUjMIY;@~{-Z`67HXMg|C{{FwZzX!XW|6wY{|3vRU(fhw9dObc3Ge+2_;8LGIob=EL1W}%Tnj47yC=0N#Q}}(#!d* z=xBD8jW>}eHQ#Rlz4(f}C71OF;$UXJ$(r_UU_lB?>Z4|#CciDUm%`Ex&DYr#oVJ!1MT)o+02^UI-t~0#psQm=?GbzBaSl>-xqQhh zL8+ip-I=eWQ?##6Lfr08vl0i;8>em7d;4Nnr?wT z7jL2VUYq}|DtpYfzV}DNsDR8l121V^jc*1Prj=N$6lxC}Znvx@N%@v`^9>x0j zM%%nhllzf}6*pdR@!dNK^eD{p@Ey*xnw@PC{-*P`fT8Jdd{!*a$_Ecc^YS1@UUeYL z_f8duuRl&D`qJLj|KO#FG-z2B6;9q){;<_395oo*o*Sd#^EOf||6I8+n+f-cPPKf= z7H>pu17PSXOt~np-9KA-5W~yXq9D_uE|3g3yqu=DZUDqi}!)|Q~$pIJ>$ojo^JZ6u$qc7+#kEp!}ljKwNPpc?DQcAjyyhJy3tM|L{pm?ISj zsWMwTEb=Gy9Hh2@S`Of8q0jvUQVrgG{5S83-pOrM9I%FnShYAz9pE+ECExFG?IfBg zq#)elBN>3G_5R80xn9$UtUyt+Ydj;jP7ckGq|8GPjv=C5zKhkoj9*`gJP+a}{A2^! z>vTY9cVhbi1#V|o!J3aEazf^@y^!}tlbX(e1EF$20Dd5x^+tW8OVA+Mbxl3qh&a+f z*sai65U;hY1>#IelaXaj+3==YdWMV59!&YP7TNyolE7|t@yHdB@~ii|T)AQV9*q5~ zUl?rASn_rCddmqZL{m8OoSS)H3vZFZP_c4G9R{&OGv~KHpl%67SYy=xc0|u!oe&wWmPv1! z{mvS>545^()Vrtq4kB3R4s7jG{*{C%+TZ1~XAHSsjNHw!N7&6qT1*_+uy~VC2S4?3 z>LRb}H{Gi`V3w-;#%Ws1`z0_lKR3e%qQL?EHk#N=E$ylEK*!TX6 z>=%Gzbs43%r6(6`>E(>1%`HPCd3MqNaGhnDOb36BD_OM`AcPnEaScJ2m=>kdDXqsm z2(d8w0^nw3Zon=61rZ=JSw0X8rd0%0`nW1>e3&{otb7bfVudZTf*J*PMdpew{uyMv zQD5(MPE~#(6jOMm2~oS*T~g(D>hrZ2X2ygedXNH4WV!S^hyrA-r9NJck?RUz%9(Fq ziYQzVn}gCE`Ri_na|SN|3%c diff --git a/windows/keep-secure/images/full-browser.png b/windows/keep-secure/images/full-browser.png deleted file mode 100644 index 8ee8c97595a0ab7fc4d657344fcac4348a5b0117..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 73835 zcmd?RcUV(t*FK8lhyo%bNRg`2r3n&x8H&;jy|+jcB=p|nNE2z&F*Ip`(0hj{(yR2| z3B7kh$!{|{GtT>azwgg;u5+DS&Uo$2&a+p!*Zr(#t+gjeSy6@%pAsJj2ZvBjR$3JY z=cYXl&aV$|{Q`Vbw=_Qs{B_MyRYnr0poe-DxcJpv0xW@pQyflkZgc~<#

    vam2y7 z^Y!YVYpu4~rZ_m*OgU)@bvMI}3rM!LR_ruhPCuV>v7AZOJ)b9yE%CCPAD?N&qWPm- zCT~up<>-TziF6n$e#zls`PGF$YBr1kxkEU4dA&vAE$Ptde8tmTU5_xF`m*0Yz47@i zf}DhIg zoApQEhO2wMuax}pDWV#TzV_Dz&P%Oq*6V*?eJ)T|!~Of}je+|X_SWB*I7L*wqQ@`{ zY%2Dzd$M|AhmZ@cbk|_Pm8=+`3Ek zLyJT)bqb;zAoO)f@crbwm**+iee4AcJA)mzy%@$?-}E`Fgq@+|APuVa)ub-rqc}J= zB-jU&L)^wi9x>mrVwVEc7|dMV)t|L~d_N zvu)58U&EPX`r#RU!hg)?8lQqaO+h(;s`onB3fl&s)JXnscgH|5nGj41e*SChy;^p7c{lGy1E@_LD1o-rgvRZ&}doWjn!22(O3$CzZS8U773Dwsx&%e8DmQMnF z|4NNn%b&FH)R&PEJRdK-7`H2Z@xRFuf?YzL+WH*3!d&mYDGbD7P?v>)r8oY!wH40y zxUhTKXNJtEvs%hv7fOip-vxYn?vL6b zZ#XJ146WG)?e|`eiJvLJR=EgU$yqcEEIV*;{($pbsr7m2Q==P8HY?q4mK}EdC)Fuu z)z~@M3ElH%*PGKG>-luplUAh^G3TTsX7ST@BG}1S?nxFrA z4kySA=gsf`#oAPLfZx-<)dmoBh-3P~TTT)y0nrAO#4lErU^zX%pf;ku=QTo19ZG-SMuR$5q>a2|4stA zCI$ted%d?Dm6!~@cAFoLhgZ({=$#F%Q;1(@3EXZt+hR`fN()8pwoplVbiarj>TQ|T zLEjWV`J?}GEw?a?TmO1x1;T5}76iFi({gsM$6lV9+`h87om}=4T71inn|^Sf$!iVg zXs&SLZOW^731a#+c$qo>nUs>&l ztZ5B>ubcad{@$p~3cYv5VA8kgeFO%Nb-Xpk_G`~eHPtk04xEyfz0hhGQr<|Bmpq5w z3^(&_({G;R%7gDKCW#+rT@H?*E)P}a4WwMZA?R2GQ!Wp(U?+hv0bFR?VanwI%)`&& zIdUyo6FlZ0uFDdZVN)=Y~jO!P)lVHE1kLX(Wl;*1mdTQQMvUp zwJwEL;k)3uqSjeTWrvN%AY$4zUu%m=`FqJ?HbkTuTQpNl(^Z_L%MY8;sZPoVUg^sL zdd_DXI)KcHm3G;IsT1d#>HNPYEl^ms=-I^vSl}51o+=4T{TleP)#Pedtm3)JHNAT6 zxl#b;d10YQOQd&l@iAV1Z+4s+d&BL(9M<)-r2b4TZ|+^&&Vy%4;b_X7{Y)J)Pq!CikT5!_&dGWz6mnRUJ-5LUrP0P?Q#7)3%d#vTC0V6t?SM74>z1mZHMjR z`s_ueocGaP^igblhV4Sm$?2n?%4-~#S#}(fw-VN?;CJ_6eG{-IBdM2C`U`yI9{1uY zd>zjrtfJ2TO7kY0BiF*er0yaPdQ`E#ewfJheX9^##<24T5|$`Vy7j2q`-7nL#gH!& z5%lhLr=70}JcpwTx8LsS%;f0bfbf|V-M9T>B^Qll`!v%Vc2}ug3t2-;@BG{8(pvtVby?uxrz~+YMLIf-D&WOs2Z>6sne6qe}wVjiA2)B-J zm&L3LNkatVz|Gd5TZ^%^bvs;>G}Zru|#?lpWd0miWlhf!?w3C>H#hP zxPtx!%y(mkr|{A{1lZE*c)qJzfXG{jyEwY87x(zw{QkIbI#+})>YH+i1afeNC(^#& z{51=GFbW#`E#}Vdmz#7J@n|U%N!x+Q6Ri}3pHrlKdf zymLdp+&1sW_VJW408us5o>k>KuIwSY&H)Yb(-jNv#;mPuMBYDrfAJt_k=u-Boha0C z(I8BOF~OQkjCFM--YTEt z3eXYbm5&4^FzAiplionw8$*8BJ>py=iSP>P46Ad|bwwz{BwiY2>ROl*REVJD{nPrR zIo;N8ulnsT2#<7c=4;Sjj%|BokgEbMxflnR{Mr-vQeo|i-?xcV;%~-U|Huaem9>;PEU@@zO zuPQ&zoP^F$G*8i-?1sb64^{`Rb{7+o1sQQngv-USo^9yvo%1Ez%cWcB5Y-{kYIsS5 zLubSE{Z=>0ZC{U8_12k!^&4}!D4%xm;KE5F%^lBz4GWfq;n$FDXSCeP{M*6vrFAXB zz<%|hw&MpKf58 z+;`AQxotMS_MPVIiUI>uPoEdT5EiP&(nx}1-|z<7CPW*@aq7r|orq*>s+OFthQf*R zT9A75@7)~>6t?IGt((e8?h|*bleN@1Qa3&2+umgzE!IFgvw#^Y_t=(frNcVN4sueR4=lMj23_z3 zMY2Yo^XAEko&1D=52ffn-IHRw+nirZmDPsRKhc5?Z|kEd2M6!^srvSt^44$yTiB0T!M6?nf*;3uR^GV)GPF9u6;32)EQFCl=A&2%U z;8g!jhsY(%9MNbAYs)hOJDq}B1pA#sO%pkVXbjma_uIqLuQiF=9mDpe4#K3%xB1gB ze2ff80)7=D6>}|L-mot%n^O+-BhCcV$c>O)GamNtwQ-@tvBqhlz30){IiPix>z9i> zchcqSDsY)(bT!n>)#jC3e+5F;&g_nM-2lBNZ8lk-Zzvr*S7%Zo>w0mim@2+_2R> z%K-U@(p~NZIvmhleuY_xKaV{J@Ufbe;!}gx>I$~XV?`Zpi+P-3FQSH+K&+?}m^Z4O zAM{$2i)tcfrxKm`FzjFPVMU|U-=$BK%^vV%#vDRf#+~qijdgTyK?{>%C z(?;Do>Acmq@P)kNn8{PloCph+NmraW5Am1=3SY*YxBIiang>kD6n;Z%-Af!J^%Qh! zHiC!G@|p2drYw)nlUZ6$M5wrJbT#u!-N+oHwQp`P?)y$NigV%(E%Gw$Uq~<2PT#9W zgZN~I(#mzgiuE#NeR&kV`2yp<)Rjf$vBd_e)=9o1M!did+IxRsnVW7c|G5RrQV^!6 z8EabJ{>e7CX`%E(Nnj&^oTGU|P?Xmw2L(?i4@Q zIh}0Qb#7IqRQJKb^w+fHho7=_L`yufZ^g)&omoQi3JMW|OvYwPr?qd$hN(=WN|YJK-Wm-0 zXqp8X4)sO{I>d#x!5Ov)z|9RNxl(k+45}otRIi5@E%;vPS#httv{D;2cuH(Gr{1La z)i9EUFn?^3k2uRA%c#zc1vTs{t1=zYIUL=*jlJB)0_+h}n3A}Eu&PD~J71uKRD5FR z8;%a2Ebv3AEQ_khWEye)LK8FnXzKX*=*Ucu7@!ZWujkUDFc6(a0oFNzGYsbtIVJgB2a|N3&gVhP1|x&oUiDZ1@+|8b0f>J^1f)KHu{E9OmYj z)Qoj6#vBgG!=?7L9TyL+ok*J(G$fG)V?|z`K9e&Jzni;^L_V-Gr>#cIAuZ(id}MN! zUUCj~`x3!PO^RZ!(^eKqLtEV%Cnl3EYjf#v1C4v(C3J0%O)w%$6*>=T+M#PM?zwj< z-@B*jY7RkoSr|t0&h`gh|8WDanc{_oHn~ljjf7FJJR+=t@y~m1=onoYRoEUi}Up{STy(LL;1)9Ag zozXCN5l9eA>hG>s@t`jsX$Y1vyaPw{qQ$}x$oO?|YO2$k-Y9i_vAp^1ig^mY2w4#) z@h(?Ox%$MWGAH`skC4E?dECp;25zw|&dG}_I%xT%yf4!0-du1&?_Z5DUlxv34*B92 zkf5(VPA1Y7Xz#sFcC^*-&1~cN=G@J@_4SqOF3FDu_|h)cwgjH?PA$L>8?EMwY^8%$ z+^wA&%bZ4!8^KL4Ck%?l0sIIYUsdt!e!rt_G`NsLdo(T;-4~raPnPBK2fSp_d97k7 z+Ph%__1W+}aEPh7)A~~KzQU0oX8%B**z1c`O?>x!WV1sSFI0px>;|)S@d_(hjQ?%j zYJ-AdI^U0QUtSIc4jk~%=e5Qsy`=&BA*(q@{FLT-tX3ru5J`y6i;~yKJBB>C%Y%sw zvI8X#ml6!nY>?9qmaVNf*w4)aSxQ5%#pQf}q(C3qu#tkQ5{4;_RXzH2Oqrs8!5G(B z61$Q(SScc_>K{Ck_U+k&>OwqEWZW~0&h?yt&89)*<(cUrM_GtL-nx1t?Zza2Mlrb~^vZ>E$OXsw;CAa6mTJdD=IoVU@ z<25p9?d*Byr$FSrR*W>26{ zW*5SY$Yeumnm6n`psqxSD5=DAjR1#~FVDT8w%jZm7;TUltjZ&Gx&waKlg@V^`+GJR zO-TYaPkv-lZq-Cb=dqo?of6sPIZ!CeIqBM>IrDBX4sIyQyKj~7bba}#URlU|=@mmA zxKA;*z~KepL>#T9B9NJQ#cHm+_b-Dcy~#IPf#@CfU182TujF!?H@-3B>7I9!m8#23hexRWL$pwrL%pV2ni=xOZ;*X| zBT(;i%hTrz=kM4jO(FQ)F)u?x%NP>eWf944JF%O(cbR0l#lyg{l{L>SBde zf}>g*hpR|%x!{Oh`s)ObLMLVz@^?co_f_WsVPwTp?}+;-DeF7#colvYt8W(^Wf$*H z@3KFl0jS*~#!qg8Obu|JSEs%DI4+k$t&dB4xbwYfie5We6FWtPx1;w?^|uz{p%~-+ zXPMcWGezf$HJ!}I*TVI*`#Bd3R7FvDh??!89kr;TTZGLN_q^c4WfGZ#YN7D8(^aeS z2tVW7OuYIb)!Z|0#lVaa1WH3hx_}Q?VZZzatY53XbOfGy2g94@Jd8b(MjJhIn7a(S ziofns>z=%n30u1R3E8!|FaGhHGU;oFVi5;ZSm_XI+##5kRrgG1 zCCAQ6*LZ=c!A~;h;@8(X2#ae?BVI-pWPU(6vZ@0HYeOiv`YazYh9G}6A&atFdU&7f zzOUoju+@-Kx(wo5yE5R@WDd&sKCUq@^murP# z$~`O^QzZGUXP=#jJ@gXEDV==ahjh`h`Fx4ZS_L>W2EpXHi`CT5iuQUwmZ9o0Tk_w`A!*>-V|pT< z1pdLb&T~vl_m$NnSDMP9+!-WCVz^NR)~2_as9{56j9;f;)xPo8FemUK5&N;fevi;E z73+e|t}*TX8ew=qc+PfEXEesYbx1Bb(9g)C5e?~1aWD9s3^KccFnot8Zw`L2UY>oKqML$dGmZb9wP#spr=gwwrr^$F-3%zFXxWN+D&;G7j zTD>&2oAvi^%nzRnW-J2^pB{ETqFi$h>D|4E zB51Qb^aZb|3Y0qAS6@`{n;HC0JWQZ4its!1Q2k77spgTdhJ3Bt zv=j~$vN4jY4RMt_JQotVCsW9(XB}5bsQ^bPN;JYvwInk&!!;BbB1C+avr1pf09+OS zO?erFo1oM6rv9DFGaWJ90drJ9HO@U4neHR9&ET55j1t~D3jGYPk3S*UUjrv>iQ9cP zf3pDj+2w<_Df4@F<(jTqAK4Ai@mCC9&~*tgf&A)RjwpmC*8A_9fr z6P+sm;uD^$nymVJFi}*R7#vqr)sh^pnsXTKhPI-sL*zMi(?uRHwpe!f@VL$pou~N_ zBK7vAE`h}S6?54zzQ$PTY2$q1U;o(Q40T)9|iz^xc5wyDxKd|i6c2G zt7Y~a)A@|V>u~Y$u6Y7O$!a(u;UVAVlQjoe884V{IVCu#w7%2)ltPJxR&G%d_wX^z zLjn^IJgSs}Y(bRx?V?by9B)@^@~*CmEgNCXa%!=Y5J!>StCjh=jy#6`%H4-asXE9Z zj$3CMBAYbr)2*{!`K~!-EP{%M`dMS-*7USO^@{#Nk+L>7>_79THD@o4@d41&uA!jz zGO%dB7XF=AHgt>*zJ^;U1q7O5d9rD<&j+>WvWPm9LFiAn_Gh!U?L91#OQRlOdD6wpF&89X4;e1Dq{xXnfv+|Rb>@oQV%fEs4ZmCo2l`t=xV3ZQ4Rsi;7@%Xf3!|2}4OH)) zpdEsZ9&TT>3~Mz*w18tfqbe6=dhqXi9w{r`T9y?X_;2;OI1AyDbnhuSeK>WqJnlA# zjtj3++15Q2j;b$J7@KaL#Ld(1Lzrr&FiM#OJhGpXun1qP6t=TRNq%8rAXoFFW}U4u z>ukM(#i0)g2-kY-nwy3HCuD3Cy!{l}W6-t6*uL9;7NZP+qfbvkklJTi9)1gc>Z z0Ec8csQ2~0Y46hBI4H|t#5Z#zbaN%#U2MXiS3Jr6<*O3=IXg6WOQpy!J(VxZ2CBbJ z16j5Zh}mJ>iEqr7s;^PM-ag-Fsy6%n0OML`uN2#_;8RL69+m~r>pxQpCMwZN-SyDm z(~D6T@;q@|5@A{rfJ;8djAglHnUjjH-Et0C@eq&&>kz5OVUnG7?q~qjJLJOP^$glK zF@|y?nao{B9NYNRbqFt-MClKXPIfh2N8;%;#kHsW(Z2f3MdGL(0@M@vI;s<(`B%~j zQ7x!D9M%&$7)s$o?KBen*$GUx0eX@Z>8>zQe*NR8V>AmLAap{jZG{OA|65`)Sl3mL z2*(jUKNU(E-7I0*F`}zX26TmB<`{Yk4~?$N`yUz@8bmK-5j&gSoco zG<<lA35 zlfdScLLT7$*>#;&oJXZ4VDSlsf%ZJ#T$Yf}904FpQ4kyX_Bjka-BoCGRQRL^OJ3~j z2sCHh>@g79{jayYmDEueo|0Niv*>ZkwbW0D+pfOkhHi5+=LxW2esqS1;A(3Ur zlV!SdU)U31p+@n`R;-&q!|%v7RW;lyg*wkmuJ~2HMXYM|FN4t%0+n2-ZX0tMI;HWbNF^FW)uioP+tUw?{EwH3xtD zVg~3ipF1G_ZJCaVU`ly=Yo|Bu$}J)bKQ-+Y&N~XvJ8ZE>w&69~&U^gWr5S2Y;UDem zMCBiiXH5zJU1eo8u?K_Eb78xHqrz&o%XeKbduHzUko_;c^W&3wa+E+0YUK0q+Y$@^ zDSAGfHxs`CE$u5K<^Htj)~=)YvE!dDuk{mp3hWf@c;@1YDMTjO2k>iUtZ;BD@vb`b zz(>m$e*y51*YDY^Uk%V&K4`7WQ*rEaIz=5n_G(%Kby#^hOov^7d1=qc{%>;#@qb!U z{NyI~rMmy|Y%b80hV7-CGk;yd&oA<9`g^p6=%=ZOUI+#l8Q_QQ^UJuOME<$aVb>rR zxv-7!i((^alIEzW@sBB*Hv@tH2>P^<>m2xlDFiz07%i-&dT`|)(BDH{?8TwZQ!dQ0 zW7=ML|IGoa$YJ<2 zXt>H#Lti*gsLQzZwrbpR0|E!Utbr|rN64f1({K9mQ7SG{5=hI zWHJ~s@(J-GJ;{a2RphUmKl_BhcPan>Ds&4ff#Uj=we2UUY%ivvGv_WOhB^P?kCR8( zt(lA3N+wlJ1Ykaz{Q9GATiDKARIm3XnhB-;FKbqr>dQ%tRpq_7a+ad7tc1?LoIWSy zU~$8Y{^6B(Zfz>xFf0GJml>4?-?LY3|e%!hYLTf7X5vu~gv&lA)`Oh0VTGYVq#hpqvAlD&Uv^#hkvPQq3??*A=B!oJjaRK#-vI1?@aKS>1X1Z`9;5fs?m95DNIkz2OXnT2lnTdc8zErU#EF# z4*^a}Q9IgN_kR4c`{_?ic1boHxdl9s)@rsdT}JBAL%;@nT7Nw4IpIQc$XrZe!S(->38xjsp6|y_qF~s}IK%Nht|?K# z;#Zc{hjG7QIzZL%tT6!^(x=&KOhzyBEIni!DXDp9iKf-nmVsu zrWu7i3MbQbkC=ic?OjbknubeWfKThx-JT1#h@ zo}y7rv5fgW79t>Al3h+{*no@i>D<>qDd)Wv9VnAxF~uCU*@L@bG0UgXUWV`M)!mp# zH8_e38O(LOyU+z)i4h>A9)jN z3XyU)uKgBgZ0z_;Goq6ffB4w2OkXXQNaKf63qNn7mt=P3@V&3AGU-64cEDELz$RgY zaC07je<3hf_#0SOjP$r?&6neiG^1&S5OGPmPT%7DFT+4Wd;=TFn~^A_@I{78Q&#Vfwv8>Sx>6v^tlaEH1R# z@m?f7gnvNz;VYGX%rO$!b1BAyT(4kFdYH5m`79M?J>?Teqh=jG<}(nd|M57Q0vO1? z`n>rM4R$awmL2=QBo?uPLwB35yaVy*2`-xN-cRYSz_F6Iux4|jjJq}Qn4D!9)ekyi z)Lo290c3W&JY5dV{;;-4ky5JNF&S2|v}ucZR=T+Vq~Nz?e@Ay&Yu6Cwg4o_>U$U@N zol=7PV@~dFE?}8D3~`Lk<|AeC_eS&A6^P5P%smPoYI({}W!d3OKexNk znoP6cNET|_iuy1WNj>La9=eD>C&*W<{fXRAqtq4cWz%R>>3g)r=dSXKw-!0eSyy+X zh$6=S_!X*|uR$JaweQF4fd75A66p7c{0CoA*1BFUn^Eo4y{-wXIH^^cOK}<2&0^G( z{~DaxA`NO$sG5zRiRIKJrYeZ4NI8~&)bg@%x^j?&R9o+n3*M(x1E?H$gnA@tT|)n% zNNdHaOviKF%&4e(2eHa0S}wR`Faq|v2(YtVF~uU;9AdAYUzMxTeSBF~BIHMg^?CQ- z6rs(&YGdR{(;ZWb`P$#S2Q}kL}^$2z|51z+OT?}fQ#&Um87VB+@nt)!YF)$s!fN^(h5(fwFDjOG@}!5I{NRp1m)-J zPA*Ub%CcbHk_^#`o$I}s2_>WR&m_UtV+ifZk*&t}ubL?~DlRIn=0bqatoFZ&e?zr8 z*QzkRo6U9Nu-O==c7$aAINFu<7kpsR_;>})dM=D^zHZOY5ADvK7Qylpksk}l0M&S( zqtYu9qO`%3HiLDnc1vo&#Z`q<{-oVNKgasa`l>_)d_EWd+rgum4q9V|G6`B+Dtk%(>_2;O_?AFM`}7n#KFrf&k@*64}Y9wQ^$}$H~Zc#mTg~0WN8+ zKtmFNAV1EqD?Cqsr`4Gi?zsyYavU`dVJ3U}+Ns;ZvQzvS3$AVCxJ{!<)x4Y!} zeHe9n+OB1d_`6tdO#V%RMY^A?zMG?<+Zu`1Nxks_vw$!@sGD8EEO9cnX)=pCI%dF2 z)|(T2hM-H%%WQtjqZJIxz;?|MnTu8fW|PQ^9TE(>Og|iRls4jXEC=5#X34YA4Ef?N zS-~)d@BBa5Lz_dHuVSQcDMok#<+?p>>^xeUcB4p+RzKKk$cO+{G&fSk8TmN!h;95S zKe=leoJ2TsoI)v2lVh2M7^~+}*nnC4&7kSoGFdxmqob8Ecb#8fPn!#8Oz$&c$&O@V zDc<7v_Squ-3w`ea1pCZ0?T_r@mRW8X&IV0>ey$gpIV+rdgi*3yvP)p$bQl4&t9Jbt03 zxk%P$YkX}%cir^yhGts5q#GYPMI;w;JqnKAAKxY2TP=D6 z+Ht@GIln^lfXq^Hh%*TBiDD`@pcYCSoOy{li3X#Fj9v)iGnenU!wGBr=}>y2_l6*P z0!S7d<;)b&TL74lxYG$f;wjQwyqK*h^zP&%2wuKqe*mK8v%>W_*dXF?acqyZrg#13vpPFZqJ{ z4B~vS8GUS(?NVw_ghaK1gQtcG&}{6JpAsZmKHvof8$nw|tn|Y;mhTHp;{Lqle8mN7H5{$5#f*!6?;jTV zmm@{2-T;IDue`jcYh8O`!#}D7vsM3=0(dPYeSc@}E09T+!`^?xzWl_gSbQ<_{s-4p zasOY>?CV1>kMCZkYz@k-#1axe7PcV*w&|9FtCtxr(frex`eWF^9CM0Txi2%F_xaZG zjOU^2v;~}(a+4`xTV@nExCsaW%rgy4C8q`NTtx&u0U_g}lHqqDk5A*o zPj=b?A-vC$wvo1Tzz=uIZG9##$WbRCLiD!q%*7v!e@gTpXG;(;v|*s^v)9)O!F2GC zt3wOD_a_`q0WF|=307P_yU_P@xe!=>`_weHFOZ)ud7$5qcid=VZ1c`vVifUT*`oqp zg7w%7hMen0aq*2PaUIG$p|)TYhc!s1BVKs&O*pOpbwAF=)d{t@7;(O~UH6cUwXfh( zU1#&A`1zIn62&8m$4yaW5eE0jBJ^`q)DWTx)-|vH{_T+&V60JXH6N@DU5?qwk?_ob zom%s7x5m^I3|f~xdA>CboT!t#5zxQ(X`GiZz_X!ffQL&DiFCXGE5r6y)$l5{VqrU9 z#g(CrVDRt~$n1Wc2xqd_L2B&plk9|AkAu)PIn~1(@l{pI9JtRo zUO-vslfhPa+BCJnVxcZH-6Ma!-G%cx`3iNNAT#V-@R1h#w9m39o!5zUVTu>#;DXM( z>SW}}wA=b|SrHyEg;>#8FabE$B}lUrIW(+W3N7bK#-=Xos)dCG>TGq`zHhD|+m7r+ zo>{J$vvdzeSU=4L<~pXTUsI6ZQ8kTyUK_U5`Hz}P-__ik*!EIlI)K;Y!-0<4P$3G@ zQ#%9WY91&XX*jjUj#pmIKO)5RCZhJ?4$wV|)3jqvY0W5I`LFqwd9ga=uyw^DzGj4m z<(2}oH;9=-3e?Sq7wWR}e_7NTWTpc1gH{JuBe_O&!0sAnf9xZex`B70xY_i-I+Iqd zWmhBgr6MKsSw}F1@X&1fYJLs90axcyX`Ks7EEzfP_+j~K&X4#5%6D-<`OZWST#YxR zFYg1xM0Eh`E{VhY{1V{2FXx}heH-h2_$y&);zM{v0zt)t#2=Zws$BYCtYa9MAwE-ZFUj-Ua+JH8esmJPpj@o7DDr?qa5iC$J zpX7+$GRT;4xkatgAfL6;*j4^>#W(zwNP!BcNmElbu+H!jXNDRh@A#L50`9+H{pJEF z^MHUsM1zM@mvIpWI+y)g4RfimsY##ex=gw1Vbl6L%}~@x57-UvXS;Py~y5v(H| z5D}8FrSP{SyssSLlEYf-eZ|IrS*{qlVSkElMI-;x*A1Xh7NE>n=^IEyC#FTw526+I zaKc_*a98=<8(l9%iQ(QfQ|i=ZBj{+Mpu2@Wx~dJ~0I%sOaMfps06Vi=Na6bukEoGN zYJYjDaS z5Zv){OkmCE9R(Y&n_i#w++;S6Yiy4?Rkv5vB+TRDvnE{8ESYty@JXI>ym|$Tq0lKv zB?+X<`0P-Bh8h?-=~RkSt7E%1t9xY_PJoa5EGmmag)hlIEl**JYR_CnUQfT6>e!$d zBCQhZj4?klI$qIVA2=G?`lVS-L6*~Sa9ek6d!O{6WvhFsjr^1|g6>?|bn}60@rH%W zp;P0z@;GOio&9#LI=71qX9bL7CPj)-O@C%;gnb*udEr=3N!H zya%?kThmeNwduA29#|Vms>uV~Dl^N7gt}6jr^1G#p3|`Umef#y=(9g3 z0^)og70Kc&8z*Ql?DkIFd`b9Tt)q7=TO}ZPk7K^lgjOwq)4)(+Ic0}zJ;~5aR*9X- z@lqPSoTjh1o8QgqVA2?#?U9F%yHI2m3eW*jF;ZY)hA#eml_{^PtYGtd@qKdD1Vvf-eHBIn(g zwYKmgk3)6O#Bycz&|)0#tV&?onWsC+=0-@;nl8XKD`PV#h6@2zHn`>ZZF*SxDC z3&@7SLWLX|r7@GK*F~VG(#v>d(ERcza%x#M+3sP=R^xfDsfq>`B_g@=25Pal2+9lL zejdCas-EB97OFigeZ*Jqt#+&tQ7+Arq0_67ol=&yefwlc`-?hCaW;O`?iz1+B(v^% zZHlO-Z>k_q&jf|O$lGcLMRFRXEqSsk?8OUhmO66tc2l`fX({OYhc)k_Hzo0Fy4Y`9 zL(-V!PdXC025J3cQv^Awtm6LoW;Ky6=U^)1%|T5<9`&)jKVs5bCT20wp9fq`U#CgK z_AZAj?`43+Bj~fK@&V(-oyV@QJ+GFGq3vkultpV46M?@Yi_F@nf#1V+^8M>M*9Ztq zKd%w|6k>lx&Dk%5}@4m=fkhK(vn*X%bct%6=G@!rfH){}QXNTj|UVMDELIz(3 z31wJNNfYZ{^!|bfg(vdVeumpLJb@Z%a%M9B2sF5&z72ZaW8{*AgqsJ>eHIa(2~L!^ z85zFo3{5U6AsiO4u7;DU#(tYan($H&pm~lOEuW~7vZ-@LhExaZ73}3e=#TSUqeYnO zO#3ZT(Q7Ycj>pC{P{BsQ?BuZ)8jh)~f%R2)o9|yxzBxAb!hbFWHWS`wJ%&2uD89Q9 z;YhuJr{D(`OtFT(QWgK2^+e{HKz+acldXisVPp|~pO;zCBA)=0i!c)YLAyYb8=^-_ zt?jg?&SPbyH-uRG#z0$ZH{({iB_MA2NRD`@zac)flmOc3;LIK_aW@s|()7WmO12A_ z=ICp#Rdv(kb;a4)_&KM)%r49N@IE=^JOpiCA`-fKjWJx)XSCy6@AIt*hvd5Q$7Bp; zW-9sa?g(ib`FzSei^t*Mp-*%R=Vc?bkN95AOI4Mt*=_(~~VDb9G0(FD{}6UKaRn3onwDCR zUaYK5cvuI9Bk~{@Y_z=veH;`cvX$s(`B*^&eMz?MtY(dhu>`v%;K}W>2bhD7sXzfW zYAX52sD?$kumh5;dJD)Jlq({auG)(+r|Jk%;_W=2JMPp{Qa6v3*5EH`t{UP|&ob-s z@z-pAd;1ksm$(`O3LuMQZ~c@t>3W-6JFaU%E}PW$+sAu+Lw1I(GA~*EnluG z&@NcZO~JDw=^`42hz*???x{vTD1Ra7Kvn5)B|m`-duw9hS$QLZF}BvW6YukMX*XZ4 zBBmrZ&ql85b_MG(n?sy|In*U-ww%v}j9-=1l;N867_KA!8o`9^g!+u-K4TwJ-L*UV zC^PjeS^fjz>y`+o$Pe%H&E#IcVUuZxpW*a7vDd$}rRgm4tCRTE1;We(MEVQ&G zrF=ZnJ%EEeRtuH9x5u$7OB=4~i1HYj9#TqMiv*8-a2V9x(Tz0av+TOB2`NUIdhwijzWXL1_&CLFdtQl&Ja+eoF z>4<(?br1lh(H5yQ#au$)7Fp_=hz!lWUWO@5xZ3Pzr_(+vpUNv;^7GvQx zQ+I`kxF&}r`6rSz+t7#_J9|hsGP?x;@v+{hZZfjt-qc=%HMdx0><2g`#ko5x!hxOT4Lp=g zl`vfw%56F{nI59$`%tj3%YO`hl-b}fX^A%>QNv}Nv39HV71Uaeu-3*s>^9R^j&TOm zDQRCG_dBxZ@vYyy{Ik)w9v2smG@~WCg>_qp6I)&-SZa+^SND*r`a-7ObqxnQHn2XV z-!1S55#K*{@k1n9-bX6tDrVN?dPi{xt5np{2wFZ5SsXL@+AT98x!k9Eyr` z0Kdz|C69Z@%9vs;gV|+t2gNHdSHHij0zkI?ef+np~3VJS_^i59Y%LgL|-(W zx8DUW!32F=a^fEEs|-PyVkDRfDNrY3^%0|8(e5yjC#$|z7AUBr@VR(4Ux#I_=)UVB z#~(4JfvtNPwN-J?_hyW9g^6{yEYfXrTKP2k)b|TCG;KVi<0`(aNoI3-lbj;DD<<)u zspjLo9*4hMuTV}E65QXRMxAk7Pau92&aE1EQ%?7?TjvpCwtTYnq1v4ng`n#tFa0Yb zgscoL)%S7cxsl2Yy7O9urA?fEm|%4oiCp%sz4rzq{%hgYZ?As{lj6Dmc+iDf7YH!P z%vJUh*3E~j_}0G8?&ysSF2iiq2VE*cseeQ2V3k^M+6Hsb~| zb%;2NmvJ{Y090u|#itR7_u0aF%68PjR4+s!HB(d%>f?`~&M%61nJVHDj__YR7=N`{ zNx>5xTru!Uyh%OtIh0tb(}-qx@fL^u9rQ@j1JH!6!rJh7bOaa=Y}FE>B67!hOG}D5 zRR~V>RV1L4A(l6}**?sbS1GB823+puCwb^F_d;Hf6=c6AKs9akmDbl^Fz?hS{}nY% zbnMrcWJ(ejHM=z;YR;(X)F9?Rz^yVYXboyPUAQG3 zpm#KpJ?uyJYWtB?>#I4J4B#9RCp%Bbq+X1E>vTEgs>nN-8zNA&_NZV2vG(Lze8o%= zx~+mDPEw)PL^JD@^kXDiJA0Ucd@GnNasZl8K4aXb96O* zhZTJ*G;z3yWAbfu`m2#GfzUn%lhppT^khKs*7&3akh9Ye~IIHTYOFSLg4f(H3WbHY@z6&;dvLuE=E zC-_0K;2{I0)+&do=dFWt2sILG;eCV7cd@ypW;xH;GT4L6ug%^!{h85<`$*c)C1jKy zx_4QI3p-~ACLH~io|@7BuXv^vWvn|*5KUV1|~DexXyYms(HlZ;0GLt9W9VLeAieD%F1H?X^s)s6&o$RtbAIP%9`j0lz#9eD z5!XO7ZJl#qsW$KPYy`28ng^uWb#Ls*r(&wgGl?T;Bb$@P0zAf?L#9gW0mih1 zI=Uv+HiTnu*1<79Ins-C4V13*n1Q97=86&tVv@e@whW*SAi7tsZAiH5M{(dxjk3zUs|< z4w+1!Nrdi z+O6%cWMQ<3sH>+ffGq?1hG0}d{jHsddC4^v`P2LyVpaMTwp7*Y3t?)EgX0zHa)=yP zhwM+{tjJ696xj{!fv)se5nuvnC$!slmB&zH}NmWfv}*RkOR6P6gE?i$Kr%WL!j^(jutnMA#^s|mhQ zx`GVggyUT)8QcXaZyG(X$$`Md3~H96Y*F%seCAm!CK+hed}9L(NLC_!E=Z!wTVY2m zDczdX~^WS8)*Gmau4R$si{-YLq&X|U0&k$RM^?ylt&r>|Mcm5R2J3!X!w z2T04-WA8yHh70BNb{cqjIPXS@TBIa>AtGtYy>lVwFQ~xmp`r;%q$`k*ojPR-!NtJ_ zR|kn7^?Cn{?YR>hTyCDDryEtfepz9hl1gfvlADm6sXyy7(mP?$oBg|m&-{VVbNVE1 zVWv#~)rR`i$-6>2^Wp|>@{l@fRAyGL`(ctF!@wALY4&r_mvB$oq{R*%7851aXM`n7RM1^JEEN)24hMN7l zyL#UnnK7f>^3+Bk1`e61f%{5Z_%j~y&-zttTJ`%4m!-d2D;6&*wauI7ojRz`d4+MY zviYEK0sefRSbvj&a>C94vTB+v>3_DS67wYfQQ$VKZ*^DMe%M#385ev!JvFlOP7g;k zl$tv;-mO*EW%Tr-#;e>pbc6KDVDqEe+%aixb$78*^AD<1&)=zX9lxGePHJ~3kP_aP zBsDIiOkNk8tr!<5cYpPzJ8DV?d8e@j>|%=f8kB|)vtXzcP<5g}q4`cIyJ1%Q-XOCX zWfm3Ht6bOIp2i6$SB7FCUFGXW@vi}kk%EBbb33?*j@N}4X_}QI{A_x;Q4%N1RjJuk z9wBqIKfp5MnR^y~gGCnEuJdLQeWX(n_UFTUJL6%QYS$HxW{37huuHHp8vD_GjfW@w z3P6$!DM|DNF&s-PvbzSd)k&NR)I93Vq}hbSZ<7=TBZukN>t};ljHCs5H3T!ct$Dhu zS)yV7`8ed!awdaxs{TSw2ejg9q;pG6G)|t|#D;5xEeiTtJR>EjIt`{#*<6*2?lblbwU(Xh+HI5 z0Cn_$Suea7lh~}a?5Ysc!TVL5bIgvJi@^d-DQ`b#Z)f+UuXTj95TzljsiTOp(L;zS zyvLYr-4JA2U6KBrir>)x9bXg|xvGt2>n|y@7A#!XRMLTFJ`{i$K<(%Q;=0ow`L*Zz zo)UmxVhrwBzrDOAFT@D5=9Saq@z5BK)OuovZsxAp%VO0s$`#5x4wBe_FmMtG?tx~n zOMEAY@|5b3ENQLEV@s5^m~yyfPlsi}DYB*DE#>~84^~fu7Wt2MdlJ{4StvDsL_9x8zc30IV>Vf{9f{iVnHys0^ z_psj;2JQt`&lNK$y{o?Y#T7l_L0fzx-UlbF%tm6Q`i~T}9HPv`=myj2LhsRgSRVC$rl#p9{+ML_C`LGxGDZS6kJdInUvy@3uqY zzwq&W(C=s?F9OBUhqrv=M!YxX{Ltj9tkd+yv)iS>1@;eP*8f+lw(m0qeEBrzy@*%J z;|W;GPrs-baE)O!l0WcZYxLEdV+P!&*8{IB27T_l8a%XHZ{lOv-G6?i`Cxy?7Eq3})Ka-D?e=dTG^knhC?eo2CHla>*~qN+-o5Sq z;@i*6a7pK{pPRe!W&Pcv`0l%#0I{sZethk+t6Y+3hQvx=)JUo?u27?8Rc5Sv5#5B9R6XarnyZmOM2NQ5pxG|ODxjZmXD{ce zTSxjtKD?mKnI7z1Q(fo?b5R&6b&%A7Ywea}ydHMV2oe}ibsccm2(~apEYQuw!_iOv zfW2i~w}>$Q{`zz4W4~!S3YK$Fgh)}g;xF$iD5!TR9a{wfaq-=CW%KfD!T$624En3G zawB6jB+6$DG9l(SJKF2K9mO&X1Nido_w0^l{&mczKqRK_lOUo1d5Sbu!+q{}KgQus z>{YR|mG2vmc6LNWns7wH7{|lje)iOU-4O%VoL!@HMAB7h3FF<06UWT26mL70pNasJ z&iQli)#GS)#{m9DJ#$6O1=1(<dE_@I*-?M zvbcL&3FyTzS`};uP=~DSX@d7&-_vqr?u)TplR?qzK3}00lO7i4$J;mgMtL@M)aNd^ zY~8KHb0E?4H+~aVTOz%S)skas&kMul9&xzdf zne|d+C~9i$ty<=16uR*JiZP;s{;F5-SVG|7iCy zusk5*N8bKa8Q)3z)wrsTn98V%7FNHsH8j(TYbD{j{)#L*lMg4TJ(t@o(~I<*zXJ%W z&6q^VA@&veBOP~g(7xNHVsx*h1);hp8mqMo@EgPwFV z)@1h6h)&^a9;G9CtxDZ_+6fj}9B&yaBSRG8MVMc*NI5Rk$e|0;Ev<+j}L zJZN!z5y>P<2sZ<`wfN(icMc?OCFY2FSL+*A6x0pmEE#O_c(!fkzj8uOBxp(NpWQa8u0 z5H=^xD9^k{o~zr}*uuejnLx`36^p3_zIP>C^1~HbgCU=^?t`&Z<-L@KejqqSjx@ga zCO4*KL*wW&M>SF`QXI{^QA*42V5s27WBM$y7i{5dd%|Qs~)@$m0TS6oqlqUc})k_ zlmAZ9Ick5Cg&UmuaQ|@Y?_0J2GdfU3P3UXF+k6!s$_q{u>dGn26h@@I*ONC%N#cmC z7kJjI!$T~_=lqn6{M$cUba*c=U`@J;59U-@{kFh)>L;n>vVG9ZEKNeA0y}W)K6Fp74Ft8y2Tc^*QOGpIN)E z?VZkC#S%>%w=#ii!=?S)|>p9W3qgiP9Cp3v?;zq_KI0m3^upAX6Xx;j zT{968Kx{OKF%9i)9)HUq)EJ;q^aZI~6w*LD*99p8HFM6_NrL0)w_kSvv0u zjnYTUdrE{#)>>pmQ1Y=ErZGtExj(v=yqXYaz`wgWLsxTnoq2BVx5jO?UWM{0 z3|$EK{z$px*na6s*~%X@f`xnhg(%PW@9;Qfho=<&J;={W#Rvb&-;F7n;`7g}dy3GW zrCy_InXBTJq{Y!_`UG2e;Z*&3GQ}%eh*AhlGu`OBVi+k5x3=Js?75q0h;e#MyO@^n z6er|q?bJoo43c@xVuragdyCXo?QUFE{0CVKX-?$Ic=tOI*CvGG=Zu`E-!&oN_uXXg zz!P5J_|0IQFD%>7LKobK@FIO%yAx zb3QQ<83l)OUU#zVT}j@oM7a&`=EnQ^#_jfq*vt|-dj5GpQxWBbrT!SmrOS1uf$`zg(SVPC2p|Ho64zYP++_40_G$WWJ?0OsAPTm-7nb++Tf)uH9bt3s&mq0u#r zJ`6|2B&ydLP39LCj+59^X}Epff3APW=5Xk(fZMg{Pe`@-`gW9!WNlSm1mDDLR1{xF zW}3>2Yw3Jzz5o5O$u)EF1HQfS{)ysj+65JGdV!pXL{gFohbxJg{s*sh6W?eBogq*8Rvsq5nDSeivxFEMh zL%3COe7umhZ-{+-H9J+jz(ho$$ry#cC;`q>W;7DA_*0iBYM zaCn(FuU2Bqk5_LtfSNb6o-O$f&aRoN z`MEvAiY3FpJR^8K`y{^gd_SnU|K+ivDRn=0$Lt1QY;)S!;;PZ;Q1MrrFjbq|VkM)oopNuf^0j&{3>P7oC@6W$g?YVt#Iat56;Yc^LaD8COg zAMLm$;@p2UxRL!*#`gP?{>jv$zx>LV?M!&Wqi%f6#n!N>dFP2*CR@3`Zk=HQFbF-G z!KY8he3aXAyEQp}?_)4PDgYdf`JuIM0WPEb5~#|L0vKuC@TFVsd9M*V4fbpN3L~lD z_2l-;6iYblDGoIG92?g>RvbXv#*{%s-6R0JvoslrxR-cn+&=LvkOdMSs!WdI@f#!U zXOWnV!J01F(-!b=?e}+^`kUw<&BSoH5D>?*!l*X*qSdq3k-;^ne>JX`$iu5t2R7c@vFK;HXjSoXweFZ0)&kibbCD)(+&cM9 z!ExgHkk5%jm7gbY`=``&sV&a3w`FAkJmjpdXA)O z23wE42U0MBZ+ehT+}Bmb7htol%iH-&)6Wo%sg6vJ1*al12 z+gYG16*!9)CFWTE-m+(}kC&9KUz*r;%`X0J=SG^5QIiEub&H?E*AVd60i|hswD1lx z8KwYYS`KsURW8-K$Ts)%=4q`Y*^5k*#1B__;$XfRomOd{&7EL&#?e&Hf=8USz@g_k zHthTdsOqBHW55Y~T%yY62-yT#F&nqt@tq%vvbMJcWLC~K*7oBEg-9BjJCH?4rJ?o` zM6^>+;A}?^4yp5*^l+~)tpM=|;&u0qE*mny0Ke#nHO_&`2-?DweHRHZ7iO9osd!i0 zGbY_QThOkNw-j$~UT@>&P1!jyjY2a`PlTyl8~GgP;%Kn794f+#>MIa2@wP#3#W{Yf zgwJX{nhj)2lOMOAiEpDTBr8*{4TEUfvUsjOjFvxml7{xy-ghqQnD)xn-Mwg z6KgP2s@tD7+E!PIUwW(?zb)-&MXv2zI3A23#&ZaSkQ?X){CK+cbzMc@s69#JrVrYD zpS79tJCj9@CMq8K_~*dnR#6}Zo=J+4r`b(P zs@sqk)Qf@ip)J!^RS(Yw z_Hx9YdHyIe+sOiqKhHenOG;v@FVq#a3IQV z!eSyVsIX=lzJV7MHI0^A-B4`!BYChiRSjxz=k}o}Tq3L%f zU(Otsa1QY-J@5I3I-7zDsMqp*@>s=x?QOVeaB+nA@?tGMC}Jdrz*A6foNR8=4(yQj)ig3H_ypN%O_<$;C>^pwHI7Q#A zIqv~wVZUI&s8NuSt7~VnQiS1P+G`Ndb`{&CZIX>S_}SuNyj_zr)?KSb2L3>5&S+Jq z%td^{e+7ztsk&vRrQGKC5#yDdf2o`wMC|duMS6>1@;{kdGoy;GvKl1`+wv%EF`$m{ zdl?h}-Ye2BCL-v}t>mB=I5#49dPpNkqs~#pmgjC)D3`}?VjUnl@p1t~?WAu?{op)( zH0~;Eg9)Ww^Rsc2$q5mVaRpJEbh*Oo&+cit!z#Dunjzhr9TjyVGh1s4}InDo+(; z;Qd6(hu3kBYgIeFc%7IO8aL;U>P#$C=3m#%7Cmq8p;)n2x-i{i^YZi6-jjNZQungJ z7H7g$SWfEtO-XK*MaA#ao|p(G&#O9MH&KQgX72EN0>>q0Rjp)aN2dt*y2MbH>Ee|z zpnpL3fjsRYfyaf9c8GOYyLc#q7esd7?)y%Whoo!E(C(T})~jcr`CUa>g0(cwP2|bA zLML7c|5?}5W`2>@+24|DMX1k>>df7dn%WbIS;g9)kZA0#x^o2$T9jp5>L~Dk~ zgVCOQ88$5DY8-2maZo%p&HG#XIDozuTnsTq%R@=r4BAl}ajmXIXX;n_y_*S%* z#tiFNB7CX3-89)%DnnyT>P&?y12#$4YjVDbpMoLLi(rCr-fZ3(^4~CHCBi;I7Uecr z^2vMOXkN!yrdw(?CW2EvGNNaWedaKrJ)Ac@AMQo!+get5jkBmWSU@cMUmK3heungb zb7{jkM3T)4l9{TrBI1otnvxbtOisgFDcSKjD^odzuI1*a0A1#x)VAVeQ&hC7JmT$K zhAc7Q%9>_&<*{7CQ#X0!sXrMZ>|EUeX-v;3jvhpaLUbSh(E4_-rQ8ztyQtdc+IoHk ztX_eezA~)lIcT3U(22OwJW~H(pMrvo=Ua1{P0w0CZ{S%y*u1ZvfRtDrf!gF~+_j!# z-SZpmHXd5%Y~N<7l#+;ciE0uSAL)rL_)O16JD3&NY2)AB`7D3h`t`yp)=hTuYYi^M zZMSdbC2M#g&0__kIOv2L60rFyVtu8M=lOC^5(JwLL~^?IUNcPkpHkZZ3E1c=GpU5a zfFnX9G2-*NasrRhw|CPH#>S*Wr-9}N_YdASZT_H>9f>F%{zCp~6k`?I0or&VpzdH? z_p%Kw8#fZ&{`E0zLw&O->_!>$)S_p*Qx;2 z`2~}@FsVXy-J)ksFzT?WhRV_xGm3UGW8sW><0y4v)#w z3?m~GW^fG_V^8|{wIetxq3?z0jmp#QLi0YuOBF2I=L?=;K5CAHJhXrUSPsvtKk8J- zphb=De!W`&0VnD`&$ka5v??dZ7d6*xj!(*rsqbeIKE|~iz-(?EsEtNkH)ujmjMn3D z@l6zM?{$=4%4GXnnX%eojyc6Ulcgm!__>oB0Ibw2@?>KYa}3}GzTwVK3^=b^3ioo8 z+1~PZz#_rSTjjaY$y^jn5$5jPqk!tQ zgHl8JnmC$L5=6RAD|x_Y`eRk4ZydWoZy zSwR!UCVYilbb+4<0{>Ss;-U-|S&RQw{7Aka&{(378S4L#j$VL)velP0OsWjhDX_$W<&3;mcoYtWTNsN4Fy2Bh=zVth{Vowu3_ z+LdaNkkgwlA0>2zg7B9P=sFG`1W$F%MQJS@g(&*wy<2eO9Hujkc*)=NK?QXqv!W51 z$PRz4r1XHADm1*v`k_Fn#5+CHt>v(<-I&PIE7-12XwdVB{Tx_(wbpqSHP&|YupVU!oZyP;W@5hA0?TkkZR?=~5F zU&B6%x;6IDRp@k05nX(~r$@BLJmhL^aWHviWzgViRkpkMY~@y_K2;`~C_&F`T;M3G zu&8U4tFTRkOEQ#K4Ko9K%d^@T!vbi>A}0}XV|LyWpHhB?E67&-sUMGf&8Rfh^_0~J z(W}7+yR6T95`4R&CEbqAfv+h4*#p611KJT*EM6rr>WW0ah%X>nF$&ycF~{5TfK0Pf zGA_daPf&jiiO8|_$_Zm70r&4)9xV{sm7nrbI!%zDhkD#x0tmf5sA~p7ho$htKp^e~ z0IzB}bPE+851MC}gE^{R%DRT;IoNK1|D@~k66TDciquph1L>h%s1} zM=QO2qHNT!6lh}5rkCk8yHRPL-zPuuP?`M9a;i|ge)}vCqxL*;sIVA8b&Csr2f`yS zOc?}fYx7!FzVU1sX&jN4yL3ipX`mTNnh;L^e z!q_|)#|&j>q>lFsv8kLs>T*oh>TBzK#qOnX;J+X6{wuf+{N~5&|0bl~eT5(5j0irf zcL0R}fL>e*U)K1m;oIJ_eF+ca?OXB9x5kGz-n~koWTsmOxx{)fUh>&%Iat=ALe>G5 z1-5?M9lUi$l-0e~MloO1GghKi2wR(6?CQ;Ko@JA<@qy{(Wa%d%gNyP1WUbHrs{8i% z4Y=a{Pj8yf>!!VhrR7FSdz2Mb*&C%Ti>6sWU+7@>Yq)Z^y)%Ujnho@;uc7mq2vF0m zKM(r)rSvtDUIJM_sny{<^xq?j$E;%EKlyPFCOdvjirSZ(6_1x@QF14;0lLic9^>s% z#1PTahW)mN#8gx1>dW|*0B@Q~p(cJm$XX!`(5G-LD0qdMzT>cLApd6Lf5Sh0a;_GT z`W(Kh#eTi}gkBuK!F)nN)6kov(OUOjITp8r<|1&$uPkX&Dn8b$L9z#pQuoY-`5%N>BgY-gS&y6C1<^$o*IL4PPxL#lU&bSd*6%W=L_NU4S`$=#JU1%;1j!3b`It ziV-0a{i%2rf^j&#;F>^>0o(>UZCXGy#>}>vGz2h#8r(_?!=y8dbi3|cpn$l1?(0NG z;E>!A`w)W;Kjit+T;q}SS9IYKR^2N=1)QrTm2hl{Ks2wiJS{y_6`)nYGTtS!g$GzHZnNBZuX)zF&cby=Uku9Ntx9@;E@9a)J8JRGh zE>l2XH3G*jw22*`Ykag6j9s&^P8aavid6u~R±=UNh&A~@8^Yxf4j;(8BObh=~K zh@oe(tWfy9Re}Tij}dwE{#WmC-^luT*ll?R&OpynoEWSJ^%u^>OcyEnGmxOk(&_xv zFdlE~EMm;Zmtg%=Z-Dg`yp$mM^oe6&A-X(s6^%_-wf1(TpS4_B2Uv#1ipn4jK~KXb1B^*nR=_TN ziFQmeT?CHU$oP;(VwO>^lT-&!(kKfuZO=D>MHFA&RmahRpyYPasw@?VsB=+UU}b>g>=Z17`JDI{;6B|jUwxv*NJ&%REaW-=mpz=tmz{C9o^4^2aGFeE8 z5!Y4M<}Msxl3g(E4x`)>6@Z>~G^iRLNX?9He-N>el8F@gEhZqf&*9zCk+XFH1fvA- z7g%so<8633Wa7PY5AXfn1pGyNWFLCI6Je2`ZS~qz(Bl^C(o62_Wl2dD3yvHB;aK9`}W@b?TAZ zMCM%>)6Z<`o5+7Za!V_(s65~R_$O_yer4-Ty{A~`uyD*tU`KuEB+XaMwX4LrBjRCFi8-|Nqp1sHpw=h))gvdb z+`h(co|4-sb6jj*5Qlh)c&ks+bM%*BH`if6e2NJ^8>L!o@U(8g>y=XeV)+A-2CyG% zDixFqawADWZ1VqL2PzXTUN3~--8LFGP318xdW_9JJ*W)U%~6dU zA}C<4Fae#4{4jcDrR|Lg)>z8%RXtWNHWTO0c(y6if*@U+V!DMhRPbk$>o-onN+R#O zUbOzIlK(z`qv`P|qY+Q-gk6nRvl`SQP!L|0aTG?me88>6Q~U5;gquhw0xTj&rA8`G z8stZ0&iVE9#u$oF@4e>0a0k*&z*$fur6oq703%{v3VUQ;@8D5^9#kqqt~>rDF2_0d zva5M!%?_pt|15w|Bs$q3a5}DC7t`Kwo`<@8zCV>TOjj1}WL^&AsVsS#;iT_C+=GCv zd`)x!e9=z%N`#21M!a42UUE8j@@scSS_Rn=546y6MO`lplbO?h^@iViW{97E+)fGA zpy0cLU(4qY2aFhFE$CX{UQ2e+Ba5Z( zP)ExZxm zTrq$}ZnL{h>*2ky-6eZON#Sc-=d4#vv(MQ{6%K04MIFlL`8iK%p&B4Mtcw@OY3aBZ zl+qgKSxxZ^Np+1ns z{LQA6Nsik0c7}mxjn^6%$ZUc{+=2F6(CP4qobLR>M8hH^6|AArLQPf$cEe&(fYkWp zkdcP32#2eAF}lijNVH1`&c2+`Jl~KNqv-U-69^haB~Pu@moOAI7O3X1bB_=>78CUx zXdDtWuY7AT_zSd9`24slAI&-COv?Pe_7jcM(;lw3F%mzWB=%Q;mtw}v{$9GJKeqj-b9L{y^VX~7JHbCCZa{mC zs9z<1o_qT6qN(?;Qxf<67cc72UsQiD?sAE zbdvucH~qgeve%qoy8tf=Xm@eQGWL>zHS8bkU_J>=0>tM^JN-nMUanR4|IV-)O`Qcu zNv-pz>c8inp4OhUd9FaXM+kR7+vRI($2N86!EA2M2yW)4K)qij;NA?d1SStwl z$TBh*(5IN$NvT{mDq#_!z zW&?{UP7fA_EmvT?G7Xg|?<%!Ji_7W*U14F%2udx?Lh~=PjTOC-!uO%(c%cZSJ~CY! zvU*C!>K{!KKtw+rwF^x+MTw@MF~(vFC{GrNnnuW(kvm3^-4tO<8BvP7AS#PUn*);_ zbLGhvq>IzisS*W(X{arB-M2}U-6EHMr(w!}?zu$iFsreS>ZVg|rg3%(#UKS%`%G#e zkTfBSBLhv56j`2davq5TyGHfev?~X_8hA@kQKRV!DgxLJIDMH`=jU3g9^8Qy|A(9p z2#5|h1nz3Enh`Sqd!W2yZ^=ji)eR#^b3`jLPO+fl3P(eMR&zYjpTeCrpOViMkY?SW z-9z)&44SS$O_Yy^^#130ul&gP0y?4tf^~gEC;$L!s9dnXyvAjbA`YKD zlrJB5;a~!2dx6f>1w)ryK_5E^)VBt1JtN3+jJ(%bM>XLCWZZVFjFrHDKK#dc0vxs` zfZ`ppu{3;jSc$(%C*>U?XL^QMwp>t_coYS$9}y|RP%XQB7yQ>si+t-`Vdi8xD_3s~ zO5g|pPp}f?oawPk!SE+MOudmB@nIlq9T)Q-Hr7uC5J24GOg#j>E#Ca@g`J>UDrIs8 za#{?B0H&Xuw~b&bCKrhWMq-F0Y3g!4Rdm-8)xA~_B#MF-QA+C@_zT~|+9?)Hw?i%b zNZrXj%1#aXs(-0(3jX&o{!M7w0H|b*Mz_YvX?9i81WJ%QxS+Cy6jT0odPzcws$E2S z-N7+|fRJllVREf^!f944_NC@Ewffk{GF&_YP{;}W6oM^De>iI$YV|i385penLohPX zlJyXD*AvZDo$iLfk2)m+2qq2en*Tqe`5^T0u~#1G?f%Vo;@uW+J#pzKL8&Ew5FmVY zSpCNX{|FXzbTc6OoO3f;A6Mi3Q3!RQ zp}azMXxfY>K5kaV!Ya!p3TnTdWtAhhA|i@^`(yMW@1Iuu{Kai`&bUVly?tNv9!i6Y zxjtZ!*k9MtS3<_^2nriWxbE0eBPvEbw)P{kkSV4}p!O)1F*h9*|=n;-(#nEEFo!ZSQdVB=vdvIOsF&(oNSevam zKIqt--WSs(E>zq1^k{z16AO5CeoPwuk6lcKI8_{Fq>O_2C>rPx zDu!A!_(WXiq{^zd)~Q-8Oq)KkIuXyJ!X@ptQRSfIAC|gV&B}V z?QNAS1r=l(ym0Ou+L;*mw}W_q{a4wxTMn9YF=8RG=^#;Pof(`1v_&@# z)v6qoEH1`bGQF||Xmm+NOq*01rYzj3iRg&!JG@-uQmwWQBCQ-$lejF$(Q7nEQ$tGNtdRB&A(n{0U*Eb$Tu;$_2iUzdOE$>pHW#v3kvbfO5(foZv7|{bY!dYab-MbOk zKuO-ieNr}HYHYbEXr#2~l^zyzA3-I|Ic9$<+&?u`?zi|xZMv?2Sa-ex(MycVoafV_ z4i4yWpt{YMK}%w5RV?|qMwLu^*rlS9vWBbI`sJ@lg4|y}2rsnwd!2fKI#jUz)9vGH z={??SRQWr^M?!F5QnWp@)pU{awXi=xUgr>@yx=nImZm@v4OBxX@I7%uw@O38r)$+z zY>>OAL3ND|XoOlAEqv9qZZuVmsde1>w+h={!;DDe0PAyQybf~aQ9}&9^x{8@!qkyp zebO91IV_0eN$~kTW;vHX|BrU`@vqEiMYav^3CTvs3q;&XZQ#$=Mu!iyINem$09{zDn@z>!`U_88L0LR}e$G_{0H6ji_PmxLgN4)ld!Xe`FpKdi@ za(^m8kK;jyXU3PA|02m50IjBu9O(zTL>*40H+}zVC4oQuya#uG``IMPbMfDin8VL| zS$^d2q1gQQQ2c-VnjL(o?&teodp>^upt3tc+H*UEL~3lZ+_(HcT;&Am$6n!YK;#~v zR!`YK1n%Pg%pEMs-HlWd2Yl!y#eh#!azMY0p~M*>Hrf*pJI#ddLz!~UGhk`Ai~I;;g1b*z&})C9BW+Jlx!g2C74rJw3!& z>lD6Npx2t)Rnqm>R2zbpEr!ozreF~(yWfr|{21uJA6$nmvip#odvo_Qp*{?du@{FO zKzx6+bs5I(A9NOuq<)-jvWby0#f#K3%QK8Vh#lqc%Z-w(7I@4^GyWp^6loD`VxM5> zYxp`ivf=ou^F4U&m`_)xD$KlDVuT|h;^DZ@g2%I3A;2rWt(^r@O*U1V-szrMwps%I zHdTgJ3(FzQZ*afb%RAsG_e5-aX23^WK;zKshJ8}Br zg_5`feo$rcM22AV@bRcZ)C1^+yR`(p+#5!Fp~X|RJi^(pk84c=*H}N zYrF|nR1fetwbqn+zfQ}ZtGGIkkbO9xyuZ=3d6sNME>f^YQpWN1ezIqnC%3#vU5WW6J74Y|dqrE@ zO;H>Bpsu8a7QIF1Zb>Rd%eA4FUZXlLA4I9A2Ye->|-858g%XM|^R@8U62wZ50 za%Qw}7oV4259nSORvWL59Mr1t_2=#zwh*+-^7ar2j%AXZwf{=A=ap;^i!7jWojaGr z6uiUmuJnC#Qf#x_j54eYoadnc5fGI{C{W@x17>gLuSqgG0DKD1Kx3*OoPSaV^8 za7a`pOyF*WnZQk&0K7SH$Obx4Rb}rsj^!7MW%hjAIWIHI^vW?9X8r;7)w}#VxsLsT zrJ`X$*y`;Yo!x6p&$>${N~e0@v+Jp%8h4q*S({>v-US)kux^pA@bzGorw5hu&7H?I zlR-@e+bymdnPWR5kNKq29D}o-y9)-Ly`;gsW4_ItrAC2 zTSVeQz+md<6r@CdAwJ!anmQc?uPyUm32 z&>PM5^7a*;I#GNE&j=Up;ifKhJ&~UFi1(||Pdcu4li|7@pFo`7Dl#?knxExnw^6Uz zrXa)urSm9KFW8%kw{Rcq@aTQom8!{XcTwF_@l*$^DCv5YN6zIu_zr-4V3jYScRB~+ zhy-qLpZCrQv|Q=(W&L4(-1%3mFxmpbqII~$=>5wL?>?>0XqxMdIGCGmXHpkiBifo>4m zW6Qo!axrKu|ApAEi&C{6Y!{%DTimo1szcm5Wck84D!*dB0D&0c{UWidL$h6x2ZGBJ zS{18~3!#kN$l-%92R{M`s{tPurJVM)RKKUzp`30YB~7lhi->ls)P{-N%;88DiLyOw zUViY#PSxA!F__8=HhLeC7o9_!kbIhW%cC4z*jjnupk7R_&%wLi&yr+uglD$@;Rshw zsptuyTxwzkz(|@7&GEWCk)7u@=T~1pDWutNSwEDa`Aq2hMf%B=5ighV!dPez8w4ul zk|)bNAFY|bZOL%^7@~zurUa?EblVy!<^#j$9#si*(PHj1bqRRy!EZo&qZVoC9tCj= zcN6Z}dMmAG-xIwh!y;aRyvi{V^7bcIK{;=FLUTixQ_^A81=XJ$7Xx zwU8#N4Igyv9Q)$_L>p+y#2cOJmiQ$#IHx@Cul@ z3ZP^$-JHw7aAZ3OA?yph6=pIOAWxmnm^>?Lya!pc*5~+jw_{n03pp$h;czcLT8As_ z17aNUbt0zci$J8BLd)NQ5P}6ZJ&iV7{-W@`==W+%V3RD;bv`3q^D`pGvIB#z!srkc z<4nv5j_HBELYgz$YT4}W%75FLbcJ?ovl8Vm-h4&dkRgDnPnOE@{Bx6M`u&GCuGoyO+Fo z1(D%0Q!=npY#wvMhe-)d7*yKk%Mn|_gGgd6X&gmzxMqr>vZ_z&L}JTEp=OU8xu-pZ zSy3IMLi;&2e@G<@j%P}jJEkneU#)ZhVOvje#o4DF;qJ=}?TSz{$J!&8tcm|)a$3Ry zt@TGf(Pjg$FxJVC$?cRtoz*ctaG{cg$yJD>461KIdIIc1DJ&d4019;)-zW5JV>W;t zmo*8xcghBJN&EN@a2h9_S$z4 z61j=NmJ4KJ)R2hB@HS-%NE7pVv;oL1FcHJmHJo10J*uBq4D!g6+qgKLPC)8snw_Cb z?2$Ph?R7nMZq;AV*5fs4qR%rL6y?2FtQeE}yjJ+`C4J-bs-(q$5yd23;5o~s?(-Q1 z?##GsYu=Z3*St7CDwo%=>KdaXgmoH04ZTkJxW1&j#*?`?#R^1@;k78hWWO@*IF6t# zuKCK&x|YB}R~7jd#yDvnzGnj|Hva#Mz4wl4DsA6|XI@89QBY7iL_kE4D$)atfK=(y zON1aL^xk1cN~DD%Mf%W7=si@W1Ox#ELN7uHNQVFkB$Tt6`OUj#&Ue1QzqP(~_?Kkw zo#(lqd*9bxu8Vt6^xEzDCOvLj*-Vi*hz+NX+&6=hr0Nlx$MmArEs&|ZxC21tp_TsM z2R5~Yr`3uK#IOf@^QC_T;x;N$c8{gsG)R;o#rzDz(r56g>Gt)UVyVeFfrtCg0iV}0 z6E_UZXAM5dHSmrJYbfWu>JVkZRnwMYUe2j&YoDBMB4kp5x67@FWGZ-~{0P5lw_`Yv zuw`X=ciVw4gJCq9r$Q-7Ko$LZE#1ALi0i4*nCzn>o=!C*er6Zr{;fPW^^K&xB*wfO zw@q((F_f7hV7x35WT#MnFSas7Nw>8HD->02_T!hrs!5>tiAL=;jX{=D-5(5SlGXDC zez%8R?iCfE&D!$XzWPqmO$1Kl#=LByzZWCEY^>Am91xR^i!8e)IHNtg&wE#O{xxf3 zX@t#MX}qRgI@vx`U>afk+9>>7sa3_s2B{nJNmy}G=^CB~3ybHA)8msW{2NyYhlWZ|lE=oC%q6A>%KVPH3*qk6;(gAle_2?EyLC+j)K;T!~k|F?) zjE#Yo4skXe{+m@&|<^s-=z^*$7v-&F=Edj5B0d8yF> zXz&sMHvfb7)|bs=+m0Peag>+up??EZC{*KQez%hdeDYF^1XFz3dpHC19yb3UkR_mV zun35WT$1qvPDX(>E&uYDCYl}c z{UrbhTTf(V1pc3J6j1)aUrLSwDddw&RRvh>?ChA_bQ5Q7d^j*hO`2)OA)-27ha4}# zNku>z-WC48L3-v3!qr%y!CGwRI6qHt3V=5w*RkEympJFUz(2MA{;#&||Hs{Xiw0}} zyAh!0*aj#+UUtXrupDtEnAIu#xmlMRhWKX!>v*;gcx#<^Q3}TJ;%$Hl=m$eJt12ki=7ugzHuV;AI1z10jfa?exOi?RX}($9lt+!D)*DM+7A}^p;+z}rhN^TGc{T@ z>^mE){SBZ}sO|0fON&`w&uxxk3UE-`s5jk(!~0_N_p~0LIV*S1pILB+p@NPtB+%T^ zjjpo`LrGH^A-gjNQBvbqOWT{oRnsus-x*%2EK_P_J;|JpEi^>%w!%#o*Wh;4N$n{g zkxL~omF+S9V}A8w5j1V|F4V9)*h$+|ZxR2Z(mR1AMPZ&b)oQS>FL!EfNYBAkGpUfS znrq#R(AZu>^oE2b&yQ7JFARwv%wM1nc-rZ(8gMTdx}Qw<>@aaQBG2n%KrPn@1^8`7 zLDu)7PUBC1Y7_l8x#_eF$QY5k=sUj0pC9QM?u zq{kJIv~1BvF!g%>2IuPi>@SsM%fYx+s1T}EK7Lg@m-jat+YuKDWt42yQFNM?(>a%- zc#)VX^*ta%qPdK^&~6$PFx!@IpBN;=9z#>hvVR1v4(xhajy&1WrY{iFjq9G&YG}K- z?=^jBk+#~u>(#1QdB(OEbp9X}9)I_0qi-D_o7#N1106Zjff9zHMUB;d7QU2e}Dh_pZVX4C18mH0FB6_8-OyKOc0+_ z)jbCTsY*Tv44^P5`3Mo#Riag&7fk7YZ5m(wbOiHedd}ASTyuh?A)*Q816+b{ezU}LJ19#=K;ug>lmBnkh<>c${b7(G z9cZVaKt>u?fhiNkRZxW|XX(Ee%8XwbXw?R@4MT;}-7D#gJ*_QSZshFlc{-KTgEpN?Y>PG>3kk)N|c{J?*Wx zJ29Zq-`V!%Ofg;NHym0KlD;omqu{yUrSjSYmxYJ~7`XLq-#v=3TT>UViL^Ev*F$z| ztlxw>bKIQ%!^rH-#+&?(F^7#;Z)-H?^Sh9GJJBs|Y|0w>O$Oou>Dub|I{5})KeSqC zLRfI;*v{6>89in(@=E98nAMS^YwHP0c+Ds7L~kQN1UR(n0RBbCI<+ti9V-vNnhjNp zdAFMSil};?1#@JNRL28WRR#Ih_?gov82RbZcvwDbs7D(_P@EqcU930%Ioy+vUewTg zt-{a1H!iO-9i*6_9{bi1(~y$USkOW_^cMRvj6bnIJmuE<>XStqOewbj_zBtFEsxFOs7b$H#nZV#I&&HIz;@eNE^0dakGYKJ`WT ziOrgyg_#l7p03v6v*E#`^7lNOhGdR4hN6!n)o-PsRvg0P?c?=LEE^d6TZz79m5Dt_ zCMQUwnsxCFoU7Dter(T!4U1=A2=E^)rejFk?U|r&G*1g?73!DF zOWxe7{8vj*({HEp##OT+*=_ISn2x4h!yDl8KmW*gxb^6Ce|-cTl8vgGJS==4w+6QU zMFT_K7PvqbsRdNP24@w1CCO*O#&X7XC_g(vO7eO749uSu7;q+;c(b3u+Lj%AQtd5h zY;PN#wKxz(zL*@bqM)ww<(%cK48!$;wOo!hKqfO%&vcN-SFOsc8J0WB_vM@8=uXfJ zvi=|UpH`1+bx((oxzGvKXI#FB`+ z&7XRQNm~q73tyN&L=34Bwi}4V?Cx zEgf&m=k)<&2CYggtV9_GSh)(y{S9~Q^`a1zWUi#IGut1&W&q-3UW(kTnX7AD{eR6Ox*;qh=y?JYC z_2kde1uCM(qJa6QwEFyVd=eQk1WTDLSJKdnW~7_87v(Bw{NQ(kw)(IEHnS-IGy{xw zIF&zRNOGG!tk(1ca({yx){(S@2;$SBoFkdp{xY@Y$yamJj!6!kJB0#ni4J)%6L&g` z>~@vTKS#d1GFhTLt=J`kDd=kT#v;(tF!o*q>GCjOd}rLNFcY;w+Z;h&fhYP7{#g_} zE*gFKoL9ILnVM*lrB$5Dk_6BGFfpzY^M9AOG2*OWJCCL}pj&XwA! z8eHA&5Aw?ULo=2)NQbDK`nc>Dp74~Eo=2#N;l$#4POTS1c%u)T4POi>mmHDw;KNSe8DKF)7>6bs1q89av)&#QEV`nX?)}QrM|JdRy zGQl^$g8&#kcZ$a1c4?`;p8N!h$8Fsz;RY20QET?4&+@l!0)i{I`M)L6`|Cfu4^y}Q z&jBy7y^l$E=vUGIOkNHs{kLRg`rAbW9&>X5&9zQ%;cFS=!s0iQ|63_F9mmZhtY1f& z&i&Cz<=1E0asf9#$UYEd9+a0lP>$zyTxg#=BRoe2&qtRs3uAm68sFKx5H)Ro{1fp= z>Z0GJGT*VbfJ?FKLpp^^z4bn7$kE-}LDgnHz@t7tJgOM|T8ZzM+gN!@kJ5UTvQ|1J z&#;xK>9ZEa$2!6mtfJOnI+OaufHIpeuQY%TSw%`tYpnir2MqmCaQqy(L6cx1xT@Az zmyVPI`m=Iv{>arAjTOD&q^58cm_ej98sR$AxG8T@tLIfVT~NlHBXD;L)}oDP#D zCGr&^bte6>Hx#}Er71dFgJB!vzv0F$RUl~oXTrMe^=DEdJBGziO|M*^E~1;UiD{b0 z#H#16@(R}%Om{6Ol}K02CJ4C;mfp;Gmmg)|H(85Clm?Vi7D8el0wLB24?hSR%8Fv3uZ85_t`&(BV|HYJ17w>hbYvpx+Fs74Rxv5WNJOyD|ID~g zFx@ldu!rAIzv?7ps_DC7IQS@oCf(g6#sIU&S3aR=?o8uKS*qg{)mZhRLHaVURR&C6 z?EFNdS{}*NX=8dz)#M-#mr=B#^pxwYh4b@vO+}W-3xD<;j^FK_hIHrEZ(ESnAobU? zXmwJ>J1r7<7@N#`5>j2JHO(c`cFF0Kn*uD|bYvyEtwQIq$A)P$N#ZD^@JjmKbhXpl z{H2VD)s!!W1yDgz8Xe;7Xlw5{xL;!+Pibm=m@2=NYt3J#; zT1r75DzE+&!$B{pOp$ZTp?O{Hx6OY=cs2Xd=j{Q+#2l`F%z>C-dDHrbU6HcpBY_t0shl2l(L z@I_-02ixPT6Yq7h8q{9R3ZUkgZs1Eczy}5+c%tsq>3ub?0l&H z;Lvc9e2Diq0(e3G2tMLaZOyY5yGf!B|t+Yd^8J$?O?i@+p(e2XF=pO_`K zT#~0x=kLcApd&{qqwn^Ue?@7(HszaXdCt1VEe+8`u1&sLuI)#EPtoVuiArCi6|S5t zn6dj&x}jO)*GZSXZf;%c)2Nnin`_pibT6AUWS;Nbr|R%&GFM8J`9|$GzK5^!d3Z|R z$HM(NYPWn}Mqqr0K75@4C?h(W7Uf~}#{8w+8Mzpy1$6}y;mK8a>JW_6SQqQ^`O8-+ zy7V5A92(&d4A#mtodaHNb_N4p#j$nJR^MMan03NT7OFQDf1H1K;;WXG-hQj0F+0C0 zO(Uy9a7qVbTrfNk9kByHu`yjSjd57gmI`UrJLRuo8u&xX6i>$r*hJaWtLMfmjE%>! zUSYSWzMYsV4gx9~^c#T;nMT5B+5^YQTPrX}*mSr~*v+XReUsF_W%<-`FTM@)dkyXH1`DWx-Yv~)W zH9hG{e~(O0k!rAm&_LwU^h@^jn`kvS1*ZX>i2n3@bXdsC1noXJFvP#|k~Pq(q+5(j z&tg>DcPQLI(rf7LSD{%Q?z5KgljqE)025bBSsw1lXb2qa=d*HDt;l?{BDrV4Ut`K< zzc#Ja)Oz5P?c~eZ+TSbTfO5jw_eKM^zZ&0SdT z9z|NaHH80I>Q%7~=X0_2@G#gj-0RwXZQ>}tjltq?bFQ2J%ban9OiAe^0|VZN-%NygsGcFYH0*{EPTpjd#eqf_ONEZbE!?0$5_gC|kCIxg{LDdr5*G0!>Q=u`n@y!!Gsbw2r)flf8k zFM|95jsbJ-Tpzvu)eu;648;Rk_}Pn%a9QSp3EB6n$HfE6Cw-)qrl7|Y z)N%<+%kO_LddLzQZI>%|uTC-NU395kPS$b^zNJd2PaQM6vv58Y0fuHC2{0x z*7DB?^|%ZIQnsZ$;*@FSh6vY>!wPi|EX4%sd9NW88p~(~mDFp?IF;onQ@TlMpt9i*S90C!9VxQ zXAUbo)qST4b=Fq-AMS(RzHfQvV2OkneV-%khnc$qrgegp;_O4Kulh^*85rHdhJboO zyMy1`@@JH`zgu{&Y>&&NmrV!0F^X-vQZ_iWTqfz{O^kM>oyfE`>V~119H&bZ)+L~T zMoEFj(0fklj+XHnVwuacWc}niM~g4E7)Mp)_%9Q&&+6N*y|+AYC?3|$xGDPH<6g}B zJJt{HrlW8z(Hf7xw@9zg_Jbvvq$2qJ9NZ=>Gs^1wMdp(HK5upuK>ur|!!>VHo6aV} z@fp`M(u-j6Gdis4FDwfgg*|d3hJRC;@|cl-QTeh35}Gp_vLqj6GYe(z^7?nf)p1|% zcK2(9tYJZl)*l+jyHBgi%qj4*viCOOIsMhLjMmunfxbWmDbmXd5K^~trygSJ07}t~ zMx;pdV-o5%fCEx0O%Am1e+^SH>P`{e)p0yo$=-c)t4Ke+B5_OeAzWT+IxFan8mm?V z;A+dlffmyEn;$8~CChB3KnBXvCLi+KCtpP?mV`@6Fphr>(lL*|j4R?qy+(=m6AMb; zGmKBZ64R~l6J*=a2hdXRe0a=tB61P-+)kAxQtXz=0zN*s+ZDowRmq|&!vU&Nm;TbP zvaEquD+G~Zog9Qq)Ls;3Xk`wK7O&EV{Em5LE1g%_08Y=28e?jd#%NAu=P?;EM`V_2 zaQ!A0LvN{!q8Z;$N>vmXG{%%qzlC?auGP5hKrnggV8Q{Y4z^h-Bc4lK;n%zY9U$#Q zOPR%JXLoO%bD654`OHKp`

    3Z7GyRI1Nv`E<$AP}OJc zqZ1!~a`nN(N!MUHfXC-j{=_0%e*^GQCHO<;p@anY`%<58jM{aok{{J;@Rxskv?Q;W z*bLDsZh7C9t>YOsIZ@HTS#2i#aJY;G_9{J@a#PxO@CECH3SSlZ=8*hBB@a(?6)p{5 zW^Jk`I>IQ1#iY}I(Dw>;($BZCu(KSpWi8WdG9zN*O>QgMRXnT}LuY82jpw!%2%=IR zX8UuO)85CW3+L*mjp7v_`weSa|L7h_B6S7J zB$t;#MTeA%Yb4%C>q~4Ob=fzX^XYCM+gT}oR)w%?yuoJRA6a?=+ML|5Sb*AElFvwx*;mXF8&7U(7zbrEfaxvtJgkD6cch^k+-3IpwruT`lur@`v;RnH zf1^{!zU--4XK;YMK2KD7TBtt_)fdUA{H2-d-`$XaR=Oc1$SX$tyH-`;1E;*;n+rn! zJqy86NZLmgSKCTqYIZ;LImk{qS^C^L=`^c#1`;(zMLzzH$6KL|x1S`&9nptohQw1` zeH|oHux8gtnxV-JXPe3Te9iQhZNTFcQLb>|4|mBnD&i6_EgL5WJ+>Vy%Y^isI>~T5 zt9Or{l?Rk}&!plAbKW*~YRzw}>_?IW3o@G@Vszw_r)}okL17m2!nz0LB@<A_7K--oGGwvYb=$b!5JoY}`$JS-@!@QZYPU3B|J9u1~y z5BDnE$tO}HU|$DF@!8PA8hPldM$2J5_^(0VBG_#=`muSpX&d1SNu{PGcv!A6t#Ao~ zk(OTYRc=53-6MRoS-KZCmPz;Nci%7IbKz!*OizlG4;mB&xhbs>Xvq%m4W8#PNXolj z^01-?;}kBcRWr!?yAzS)`wF5hCf`avL?Gz-l4EW~EEISG!%6OFR zU@M}S$UeuLg8RNdSkjqHO+}SwKPP%)8gfN7Vyl-vZXg2RdF`5Nw%x|QvRPa5Qv)P0 zXmu-<#;Yj%(j(bhRNNglW*%ffTO2E1JdQvs0<sEL*=>a{QU0|lC3IU9iLN$k&=4+7DPyoX@%knD&T zgpvF77oYaUV}*Y+RUq30h>8UbMcBso&iwonxb6pM1O@MJoc}B~o|pWP{wM&sBA~Cg z(EDIc)3b+6&-7jUxP$r1)WCChF3P~GQhfe$rE(A6nsz;h4M-ClTh_&hG4z)5^79k9bzhFf;ZGi1(&I_Qf^)%mt5mJq&3=S(9&*BO z;*YNb<<@Ms!$_f^t(;FG&c8@V{i~BXN{-z3TI8?#`epUaSp@huPz}Fq{vreYam1|M z^Ixkjn`dXrAEpHz`7GGg0VUa%*=B59)CCf6d68Yq@Ynn+@a^WimlU^7qBy}I95YZn zHfp@2#0Ds`zn+0k_o!uoy0a+K@QCYVWvn<2v)Q(DSro2X?~s-f1nPkvBQnGdWEEon znnlRj(Ip?p(Zx;T#cBV={@)GtuHBcd&CCvexAU$8C1XEej4^r-cwTAw_A)_L8&0sl z@m~XuB{lPn1fcgX0B8dgvz+0l&h`excRN98h8BJ})LORmcxUcmxM1M(3GWk0k;|Wd z`NtA}$*clY%R{MiN8?be+reAsymS}&H2ZtZ@3+uDM>t>UosS+8 z1vXrwn#3#SJB!Mv?Ky2jtU0@gA&0qLuD%9#4Td)gg#>>Ih*T9ebb2Rn(_yxz$Wc^} zws0@PlLJ4VgkkicT|h{ul_BivCjt}Zt^t}I$8*58Uz{F51N}~+Yky`K|DJXGe(kbx z7HBTGY$YhoYx(2!{16`J&@ir%Xn?sSSx;F-b{;6*AI^xb&frC1Qa$sEE?dSlKecF< z;wU;R?rbePjyq0E2_Id!?4CdO8XP76YG@Rhck@NJqSMVn#MQELx2N}p2NSMv89WPp zf7i)1?;};Ym}cg61^Nh8n_nYx|H!4dcir?^ku_hdf}n4&w(42OU0` z00PlAXsz61bIxn`U=LeMJSSL?M~D@s#ldGsrF{7ws5PN+mEEL+HmoE|#89|O=ZwUp z5nE~&GQsF}(8s#TM>L5~V^ysXo&#h&q&E9JZ!NwvofC`| zFLmjhsZuuk9I)GN_{63DRAX_s^CI}1F7?S`bBK)0p!Cto2ygbqlFJ7pnK?tp&x<+l zLy#-zS)8falPcZwDm(Lb*U-6(y~k{8H{=+KQw|5UhBgb84cOlf=EEni=HO!p8Ytr5>9gjw@D7jOt5XBglPb%ErH&8C7pe-I^_hVuIGYB$!a`HgaJmEsV_E^x%jb2!#V(xQ@ z@piXBu*q_4$Dxac)~0LTsn0jl%F|HkhT5%CSq91BrFllp#iU^RX_ksMhg9(A;vG6a z$_9L3?N8hD4vi@xWXNf%N#|^>u6A%%mb;wJ+;}VoHn;V@{_}dN6pn>kV9QY?m{i2F zvy2W136rJGnYZi`&_sd*W9UMJff8*1KS)zxVkjI^)IoegG zTm2TL&DGpI1(g8=?md$;QzAA{W_SF)*3(e;`28vY)QlY4rmbJ$ZFwL6ywlW^^blaUR>^SF?U&5JE92b{C$=w`ps_Wc6| z8N=dCsuKAi(jlR#()I7T6a6hOK?#3dFEYHD{_F~ z#cpuT#pJ~k!ItKTw*F(0)ZNO>@HzHi-SVT>|2z>#$0awcuSm19ht$SgQ6TUHjkxWe zEyV=M^Yx_!bFurdQSw048rJc#nFBd(W6ce&*z54tP0p}jWh{gjzqI21E){R1a9)r- zSPJ>|9cE6J?R7K0>b6_uOet%?dTg}b+Eo^djkPHCA@zY&c@Te&l5@yDd$V>LPTeoB zjToGPwP!h`jScvGg}j84>D6vHI&biT-^Hi*DM*-onPNkWhM5g*Tec-JLvta4{e}t^ zi=`TZaRbpHYNvOt3@#d5w9+dFET(8D0&b3bE^FiXLXeGke-`Q&146S~f@8t<0wDk2 zr?Lf)(l8V(RNQKApRjzn2p4*@O&@%Ltya>A(8WvO&OETq&lLHfrPOmS62)Ta?PhUKZ&K@`!l|K~pSpuO{7tpZLNP0@sIq@M~?emEEq z(Xx^p`2dYD8V*`ka#v?y?z2nXagb=W1=Weoqw0f>8$u3ql=9Pq>|D456lPLAa*jnB z75y_9gU@hPx$m~&Xm1u8#tOTwG3EYzcNF9$-^%Z{Pri3Yj^+l$vbu)}uTIf0a?1qd z84cx$jdjXqYCU={{y~c;HWi(`a*kSSP7Ix5EAE#848FPQE9h18I8RPib*@;}%c*@! z${G`OAG}N4@f|{ED(M`m8)md!jKKNlqTcLyo``?BV~W3briiiyen}m@E5RkXt*j#i zoHxf0QFC*I+{W&shf#%#FBax~&1&A5Ev$}sph@Z1fQhYgBf?pl`Efd-Rge6{dI>Uy3W*aqq8FWmePN!ajS2VDQO#jE)CdK$ z4S;6QTD~SXN7F?(O60_g#^4K*t=tvs#67rp`ci?fjU>V>9aIT@v*x)_Jq%5jpt=Hh~w%_*4TNoM_H6jxwj2TfD#w48sCmTANLj-a zni;eO-^P0SZMf|V_cI6ya-M&|oa=Uemv!eODp&;|=Cp(@wyjpiw$Dg?>+-i|t6+Sf zoi{A*z7aJ-5kr*2;vCcwc^l6xds8F$@0(`rt=rS)6YHE=lY0xXq2%UNS6?3GVFmQ{Vp0Z8YwX>K z<}x?S(nWiT@}l#l7`eVaSup~SkgQ=1ShoGFTTCqC{P!3)w0q7y_7nvH2t+$0$I&o9%7imx|UnqV@8V z3Hove=|`B7aOSOa$}EYSkmL80LCG{`wr7DS8N^b^?C?}PpI?7-LulKWnd}xL_qGq~ zY~Pi2!CrP~z!ojCc=FD2d<}DT)<%r&qstTK(cmulE2ptPLXGIg7_?tVC*eNBqug=2 z4_Un$W7R}#I~iSi%V`Uj(g2ke6MIwD_PS$xWU*=_b-$?K@R}Kr??TuAoU*O=TC$O# zN6W>rr&s9}&SUVT)7t3ff>X=KA@xjh|3PcLz$&+#qWB>jgQdHSa(5A+VfnUu(vt)8 z)J9lkG}v4K)Z>g@t21Jg%L$iw2#In-Yuj)6;gnj=yRDc)7bUuucJSN7IN?_VKYRGK z-J1l#V-m=Wt>?dxct+RF!^Vh@Go81H_pyg-(^~$-f{`|dpq#I}g&-Qzn?6D?Wz8Ig zB#ZAvbMzCJv1Er$D$btX7>CU`WLzf63+;?GJ1aRaClS6$eOS4+h>w1 z8HufhH3z=V-ObTpUS$a|Jor^-qpN>sYUWOwZF#b^-*jr@q}svopv(OEhTJK&F$BR@ z=aV`eW@E}!g%}k%H1Uo}S>96@%yQC%mZ&Ud!(&(l)+dE}*o`aD4^Z)>_QNaC3t5%U zE+Yo|uheqmt$zIssLp2skEln;Qb>?5p@WM1Hgqo@8;4}2%4xX=8kD`dJeEuw$j1_6 z9FOL{7$~^zwy=-d_9)n#g{}pc7KavhYx{*l8y4mH4yi*r8$+90844ByK-|{=pI!== z#ZO5dDOi!G_+7kjd9BYZ#|Kl+C)4)Yot;I^qnX{Xg=|VcmJ5Yvo`cwr`WUXDYfvnt zh$r3+Itq2`zC0C_K1jYN2YSIvpFMpO8(T! zB^o2_!m{M*18tCtXK!2?Lcs4x_obYQXnuolSdp8@+~T^Il&9{Ii6FnRbsmxzq3O{f zhJN?Qpx&Xf@Xq6-;&0S9gvXn+yVc!PV#baPTm4To&6FG^+XTfeOnn%ZT%E9r#ndRd zr5aNvWYAvVI5u&4YCpS(K@N1hl&Fb2ww%*JOe_w$;&RZ}|^nv#>EI zwsH?O?+%_7P}sIkO7M!WF2Pqy$-mbGPH`s+_R72b-Unl04qZdXPlBC!l^NExc!-jl zqfihU%S0tUCD<_7`7^1QI0|7c2I23`Dpb^WT4)kM?>Ty^&+2@PG{lFqDnT@Ok(|NY zDsdweCfnXOObnp%a|+4{1;416 zTlevAZk%GPTE+YFI9ofu6n<@C*|~U687KSEyG$e-ReEXrxdy{6B2UICxH{`+j|}TR zv!eY*ya$XY2~?!|>xe76O8%BxlKuk%v}~gXnFcIjWl8l7l!(sKAa3G z+Z<%~9z@0h&h*aO(5I?76?)D!?QVtx^j)j9;Qv}Z+Sx772q6a*6_9T1Nsi<8_?q*v zxsTm|d_~JI%EXUnClBKEW0H|fOd!Kzrn&Mp#~;_;1@c9TVh9C3A%b5AJVF zNycEh+1V-L!pBmVyU@S+p{EkDJ=v(h=F%y-9bC0=EUi}!FgT%*)sapDjLdtlTVxA) zW`5o6xVhBmos0)+lbjh99Vtvrg^eLIEnicpFpH-~8SF^kk}#mAE(qD6%K0dSj+3L- z3TPXTlLEs#{C&UkD7}kKbtN%%-w+SHgH}SHa7(dZ49WOyPR~>U(H;%f zh1$S6_Y>FGknO>Gj_%jPId{~-PK7*=*~_a4pk0!C6sT?)USZZjM(ra(eq{CB zi@=G#$k?-zDcRsM>C-TJ!C25diQV$g_#;@@{#NjxkQxas8CULSj>|gOs<|UhLqA5` zCDFc9K#z2+9}09$Q+AxAS<&mrGabMd!^5X+W4xP(eeKH^ZWA!fJ_HiA)kTfg!V6hs zx6^{J)4XL^t9mO@@(b+|MKUS-FGGaG7yl;$;q{J&)1hy#vJ1ZsNjyuZE@nm+uSH>4 zRt^i#v(ZRlU&qf5@51kxl8T?;2qyMcCBCHwJBKn*zs$`)KoZU?-(B~EL^Xx8O##fH zswK#C#O=2s^!l9}m7!P5$b5JX3coYpM|}l>>8`F3b_Opd$-0d;FOC(rJm;i5^tFoWRy7o(sQLSA~{s4~V^segIFc1y>}u8bUMM zB7AueQ8{kCc0XSK|UyE7R8*1f^SG@Y?18p(KmOu6sj36?nVN7z}M<6%-m zC2MdBYisXP(8q2q-+f&RCpKB{O-?gZfsv%uL&oxNo{0`|`vwO-}nzLXU)e z7q{15_)>&or?m3#w7UvHpfbBtY2G}V86tNAmL!x4#@kR`x zo;7Y;wD|D`Jl+!uXSmp+5Y52=z!rbgBf$AqkSKz65EW$R&BBJ1lz%64utRzemdJdJ zlW1_~rUKEYS+xDU&5C-6W^6qw_6LH6)uR~Gcer?;gt$Z3IuwhQ->n76K>n~Syko|P z5}QswSeL$KON?o1&avC_uqT&7P-MZuqyG>MFP1{y@pmqCu+3(CRS2Cn4A};q71v~5 z-Ta{stv4FN-Dy4Ahc-<;tz;*}V079LH;;6s10TB{jJID!d?QgoKX(7_Htx$aEL*uJ zG-EWh$tc+C{!malXNrNH@VRwx8#_Tovg0A{GGlM{y(l`TGo#5#JDq|b3$3iN%SD}4 zy{pk$T%adGw9l$iJ3=mDXCEIW95c?{n~d`K3Xcj89_?VF7rRDnyC(0rB_coo#c}jp z?HNMw*Q`z3x)aShnZR*n$=(Z7vJp~d1j{giMq=xA=$<-vR4i6X0n#o#a;i%Wz)f{G z)wB7SD+f2B?C3ACxpE`)+|I>2$RJ5HBayieftzF7A(T;kn2aC9Dv|8i8{;rQj37dB z3mO(5y5cV9@`Lk`D8q7T|5a_fV#68SL$o+mav?&Q9u4dK5G*}rE2AuDevxF{2LDk8=vuu5t; zqL9sG8?EBE7@#d=SaNQoCz-v&bj%vHd&;2vvBkvlsZJ2hG8?t>k*Vz5q~*~LjYYrD z-kxyD2AnV1=-4H!(P4-sSEEIHugSAkagM) zmu}RIOjSg8V@pg>0i7h6@BX#SIlQr-uzlbL)fEE9sHAr5no zoMD7X=*6iBWB`-U;kGr#%GPzqa7uke*=OKLr}=^!ar%|2;Yia7Mh0GqF3D317yh49 zb)8yhk!}PNNn;I3_u#Usku2xa?R$gp&Som4Tb7S>hbuwweTRa?m(;)pgB>6aaKf_3 zb(1q$eOQ_MsNkDzWaQ5Bq8IdZToAt%N#&vqY2OD7J5wq!m^AFh2_&Bj+5QZd&l9en z(1kS*H@6*&G{G;uS)@Y@WFzvH5~Lkv2e-!i+ztenzs?)quyim>@of#xqdCrG(0 z7N#dv%a3^4aQK`_rY~#B`m28|b}oO;!BA}bd}7fPwZ{Mb_hqI2|JTb>H_j8XMhw2VEW-MA2!@=dUXT`p2^F0O)Kuhm{ZBMB zf4y7-qgQ~5VWn|e7b^!6L(~^r%8M7>atLb_khthLU3EEKwbZ)n=Y`7Hz5H}_8IZ15 z_8!PN|GXx529hHW@16x$p3iq)XhB6Oas5*Q992^PFfzdML&%^IaZT4!ZAAFxLqON6 zxcx@tfP?~TV|3g8XKK02>++Qi`>qOS;fq7?C-icpr>R<$IHTCHK0?h!;Yv7_@RlW< z`Jh{l{4GCjUU-oteer-T6=KexmMQz^Q<8ghg~4UTC7&EmRT`h+Og2(_dm7(DN?pEo{;@~LFG5#j$-gl z+!RA`h$7I}QFbUa%nZt^J?w%1*%>jRZwo&7t|_U$a^CvLeeiKo=LvHsV{vEUip&3v4O{$qJh5D?Nu zx>&yesR&+o{aeYWpq;f$f|Z{48>XD7BX zmJcKs1 zVYft$6zqotY`jlW-o>#lX9yQeFq3V2#qAdL z;IBz<@?$tSya(4rL5x;hOKSs`=PwC&fAjha??HHzprTEIn>&<^Zp&l-hq`!q_%}-B z4)BS*Th#~7cKCK58&ynuH_by#Mb{K7zp2a=ryFK_N<%>~?PsYJd#btr zRr5q>czyo!M5GVxr7>J?u!ml8V4*f5)~gG0{*)kjST;!uXNek5POcQ0{?7W`jk)r@yTz50Ivl=X5V`iDj)#Q2d(sN++VEO%@mNN(}RGQDg zBqh#wUAmJbo)$_Q??uebXU`I@cc3X4q2Z;S&A^@efhFy~Is1qN5M z*+RNjh`yZ8R-msvU!Qua+DhATO}e2pI`RoP;C8Lc^6jgCZzRyb0P(uK#a6G~h<$M; z^TC3=peeK=?)}k@ki~}Awu(WeeNvqZ4uwim-++>*4{YMVnfxAPQI^W;#)Wn2 zhsY(N9RWjym^)PjP07YXN`uFpmj5^%9vyn;mu?Ixkc8X(oO?S}T<{+bYE2qjA)OKtFTMBiZbBzk$@uhOV=#dvV zx-6>lEZDC~BdX{Q(IGp#y~;ZMm9D9xu^WL#7S=l>e?y;28UB_IS)_(Y=DWF3j1?5l zI`zPFH~!Os7hjOik_S!3?T0fcDHHt`(xw&>w%aH+a&pK6=Ii_;;x-~hPrd;{?{;_` z%(z8Y^^dm%UOXM{eVp5yPP|hPjyHOlzrxERQr=(jAaTBM|KJEzpolE7R;FojxI2}W z(LMU}i|k-Z?@%P_fz|M%JBP@MLbIh`H0!I;gvqLf`&>ORs1I<;&cvDsPAzaeV zMV2gVD#=dc56u67C@?U`c0v*7(*n3Va$SrXC_giODrZes`egP_(eXb#!UO zWcWZ^kgrm>;FWYMh2zerjZC4bR%ZWi)$Y5s$XR~v7XDQuK^c0QA`{h=u^EjI zx^R%)C+|a)4HqM^FTCtuHUN-ibH#gdEHC4&o6^&O$YHyE#e=_Kkas`P~6#oFUuQE|ZR9^^o29rsXyRn)7%L5W zs6w8OSM+_}V6UhntF*T7jfXGB*oJPXh zKP|8S{P+`i6Wq>_t?)|SSa7u0XL$TpDA8WNdYwG8{WDG5*$M7H{$b*_aq+Y?CA+)5 zhpbZW6J;v)?U?`iL!o}AQNlb5yJEEC=p;4Xj~F{|KGhZz>Dt}Ll(U{A<*0N_Z(aPg zg07w=0V0UL13UckTTNNM=Je`?)u7|mX)Aa2^1e90YevjHfp)Vu+TW}vGn-vBjXX1p zlU|%E)GD^Z3xB;KSQkgFTAQ-_cex22Z!6y_SVS!C?i?c{%~6hSf@b6-7_(2D1o~|? z7ydzM;xVh+9u}I(5tq|oGo7Vmhhknea&)u_pPVqWL_#ZOCm=kGUugaSM4UFtd)atp z<}Kr%nXZV;*2oJF#+pV!UVhuhHrH@Sn!k&h>pht&I&XEVi3#4H?th8(2{R|2s-sbd z>SSMMyaaz<7e`$2Tl_VZrj1#P16aWs`t0minn`L=_I&fKf0AS2!;ykGD92u(J%4!A zENH_g_8 z7Kb7h&Ob}?PG+XNJvF66A3_yN7ih>}MVPdXRRoEx`2=$T^Yf$2^l}+cHX{1JqVPX93+8D@;b^tO?100aJp*nMX(iy`C;GXJJDHD#Wg^~wv?GEjupDH_;WF;BfEb(i#G zW07tGxJueismSa?}*_a(Ks8d-}&MM>SArDNz`9l{7X z#Yo&Xs8L(OrXq76u}_lY#Ei_OONza2klq#arbPl@O{Ci&MCRm%lfP;z*OrZE(69T| zHJa2_yBh5h%coCGxenFhEe&Vkr1O!`?b1S&)E!yOij?zuJP8QaJ*nR)rk92i=I1B# zK1KsA_n@e?Too6^hsB?^dboBSNsfMy#j575sHf%8(7*ZEag9^y;R)Rw*`;S37}?cM z^f7k_+n?(<>6Fy1=vQ(c)Oc@BAuW<6H%VQw0#ieWj9`v@pM$=eq5^C>@0Ng=DTdly zIJu8nZ6`Wf)lekN#@*x2If(A~j`xfW>(;Kuh<9scEsk+gEvmW6bz2=^v6FLMI7=Je zuh8cN*t2Rbfu4A!6mIuQs%e5!V8;^x{R~7B&B*O`7te;i=Dy@B;aLoy5m-M@0f)gTDPt5SSLZF^~SCM;YX^nBz4wx&NmH^t6B)Ue8L z^M-XOsui&p7n?w@u4>+q#04zh1$&4E`1sLBk(U9H6|q#hLRd>roGunu^&^+W41Az; zW*{HR#_pR-p1;zNTmn`h z0T@}d5ZzH=%lus0;U0aW94XlJ2`eXtTAQX{6h|$nFhL|``;60k5Jx;uz zSacx9z=!1p+czSvkEME>mB_!0_YHok?(_c<>FVo=01lS}SaQTnjz68tWYTsv)yV>XZx>(?cgQ*!ki8c&ON z_TDI%h)KM~$hPqNA@h=^jljha+Si{$M;Mj~ejhWI1e4>G&BJ`2FXJLJi0=U*B+p$M zk$%$g+4ipWnw770K#fA5v^b76JV?` z80d-oCconVGd8n|Ps@yMkJyfZlymc;=c0$ee^EuYc)h@ORAVpFkam@;Tbl84;LG{v zFK20Clk zj7969r|uHt2e=ywMWclF)3{SiLST`BC2e8wl&}AzGAc|H55w!Fw(^G3)GymXm;sF& zEz`q|e}@4LumLga(zd1!`v~U7 z9SO14VGo|WH^uYl4_L9Yp@~-pv{zO7K;3#m4s}G}n7uedTv4CMAbvnoSAX$Fd!8tV zKnO6%YbZuMnHe**Wgc;OWc4bl0;BtKev+HnU_$!Fd3}La40s{N8=c|g5nEoyBhQ}D zuQHH5h^3|gpiP8qOec7x-OP|VQyUb?&FzS2`Cz&yI}zU;(PZ$|bHzT8S5B+viaxC2 zWwFs0%WLsZE(Y5zU?){R1I?U?5>l!P&IQUO3p9A*iCZv^{bOt?_n?a|^xP<6ydj6S z@can8ax+eEplHNnt_T(ivQ~4n(0_gzpltahCZ+pxhJl4?&7?U*n9huTe#D_Dz+kub z!So{Z)b5T{D%-eXXU(LXVA<93(iey3x+(a#&$o~bY?;=vlpj@eyb!1olM=X1qmzqFsJw9V{9#O^AW0OdGh zs3Ekdh7vIVC?1D1>!z_p)}8=_9GGe2$+)@Rq`;#w*QHIka1dZw7>IWEq{qtA!3-wG zKjl)T!J7Dil4J|K2?UJ!RKqcbit|$0&(i~{07i%P4DYb?3LK0uR1T5-wSF~D>#`8y zOOqB8_GCOypW^R#v02&kxyi~>*UlAA~elJpgnOtx_9ggXe-$O=!y0!98Q~eU8`fNz2!3;+VP*+ zWlof=o(6{$%91+w*~|iwuXdT zjoPQ8-HsV`-OfSE$|lVz1y4;i<*X6a#g9CIZh@3fi$*-fB|vujtQl`$zkTF&sbxHs z{4GX^Qojsl5DtdOf!iGSmH{^-LUxU`2@?eEvy!}|LOW*is!u5b_1mWsE&+=>Rg79+ zzVMzSn#SsI_A}IPmTYE`0M&)IOg`{gs?M@1W#%+}CIzP)v`?x9v6-U^dHzLw{rf_Y zcm@HBnp9g5Yk*G#(86?8=U(u6bH%Dm6|t)CIQ{y{>B4tT^pCMR)d8Q{b^iLsz5b~7 z-RhsI(+sLvk9fR|x|c7%&b}i;fbxq`OJ{7&?0pBcUAum=YKQHU~vn3Z8*SIbDlTXD(F5VTHG$UOmZ} zE-UVKkWXOyXRs0)6uac*DC13EK2lLmkp<0_dgq7EGE`xwLi=Y~}b z&?Tu9>&BQXgC-->*0b~3j~TklS3&I}^9N1r_+%TFRid1~o3h#aA;i)l5z&^1m0$D$Q+@Q^ zhwSpol9lUtVQ@SF+~&)U_B92V70#J-`8=%zB20{ZX6hJ;XrzPNPQ$$?&G&VxrGj9u zV)4XQ)zjeEupYQgHsxc+oL8PB;JOhg>0}gB2*`q~9+>e~by#rqZFW=5i5wHwGnRm3 zUd+pjh67M8N4Z<;hAngYz^H0nK7W_M?4Eu46qe{9T`Xzyu26n6>0`^3HJwV28#J;R zQ62S|K?;xsSx5vt5WTfEBCurZsgAt#{@rd_Wiv4)z8OU@_Zv0iHhf03ZXHa!B8Cbi zC&QmBOu1T8AL(eHgIVxDp^KXinm(MObX1B!O!TVTZSr;HfpF)TOImJm)Ss_^8i`cO4u>xx#2I!Fk}vP)`=lR(-

    ^@l9);IF=er>r60>yKpWc z^!{&^+o4~JbiHDeevUp_hmE5Sxb5-`ROXJj;i<&l+VobT;)e~maN1ASOg2)_oMbO@ zOxJx}dVUa91A*v37?U&3aL91kUWBU91)weOSvAh%wM1*JG;dFU=b?4FdlJlZH*W6& zNY`G!O!h)>WbDq;*^H{=x_V{a_^GzZ!^|!saeYBS11OJCF9uwSK19bP9dh`sDd-yh zlI}ph*N%#v?N6k7RtbAKbj`=dg0?p!d)f?lS88GbpprY*Gmpx>r(ZX__J|w zBS5?44$M2IF6BkcA7#3OX-Wk*O z7l{i)_YpSkgv}k?k-(Syo9+z4k45pveMkI@*4vlJu0LxJ#5+pQ1U5ghmhrVWFs?CT zkf$cH!ThH$M^P>FJD*N&!a`|JZj{nXOY#)DfrTq|MDc7O`orBHL} zaLHiX+SJLri4{FAwic#3?Um8T9QR;%q}1-sEV6?{%!j)cX#sjZ`_Qid3qodPx~=Nm z+r)2k!z>g#iqno;Aj05s4SP z76aD!g>6OJx^KmQXGz-Th2E)uF{4rsCAgFvYLBz_((cGw@4t2WEBW;!?AooF z;XqEu6rnEV&XjBPv5G0bbTh8b+Ka^<1d>I(mui0l>TTnhz3H#Hl|zR*NbSrvczY}O z(^#0o;N*<4w^a#-Zj*g3G(PSUWIRP;6_jY3%?@*%rIjcSlUx{DR&n6$Ye81EpR=~mjJgg)(Ack-ZzulKajZ~G?x2NKI;^-<)r*oSR- zjpEP$a6_B^a6^y##c2)74fL1SpU~xw%DKCn*GiF+&9q2=g2+92sZBYz8s+^SzblwsU0=MG&xw(7rQ{Dxs|YXSdV`x+7L)IsRf-_vcir-Dv@) z7Ued#7TvB`8B~}3Z~QK3B=e$UNDB+xbSrNrK0na)L^sK#gU~H5_8r;~UlIUD{}*v9 zFYelF-;Q)@lGv3nb@F?393^d<6j|bwYSm7XrAa(CWwX=xaBqjIj{oQVPgBjLD9aJ} zAEs9}Sl0Y1I&$$RWi_zDZu`Ff_K>zs;nFK`TeA;{|K1c(D%0+Zip4V3v&`5JHhHs^TNhccbcuHEPJuL_2MwCrggZL>}?bB9A z-UiedD;9ay@476ux0IYi9s{Xh`{BuXb|h8`-j73L2G6PA#a(gpEe?r0mBGzLUo;3f z3ljLTs**@E>m3q^Qs_z!iz6)rH|jZS7CIzIMm7bYxw)qj4f<%Ks$uPFanXB07Z;l~ zkF~AiL9?S@bZjQuQ=^}6yFIeL#&WE9dqs^WN2n_z`26la*@RW*eI<8pH@1N{?TScF zzZ4A7=`UdP$#%rnqka=tA;9z>jfcG3sE?&1s{4`DpKC;fQhWJ}R88mLD|@Cx&Q`Us zJ3}8a4Yn0Hr9Z{%(T2XB78o4u9d9veeaXoFj&gqeHHy|q2WW?7<5e|im={6$y~Q=~ z>?pyjuvBo0{6HeDb*%WN2G1NcLfKemezC@c-Jse)M%KJl99e`j$#znRh&bQSFWU3) ziZnRw$~Z-O8)eb)dx*Oe-A3CPrgv{!C$piFGMno%q_^Y_K(cV?Ezu(YU`6&l$Zm1> zZ;bi8f%zHk+0yD8m~b5223|muBi4xYr3Rm>LbUNi?>#F2%PQ7b`1&$cRXXn;sI#oM zU-P&MlttSUrS99sTaGv(VKH}FW;P3Y42NH0kVKIKBI6urC}Ax>)A~#F396YrNJ}{K zSzKClZ^&;gM>0J4>`DV@p9)kw@BA)*z@579b%2as9Vocp%+82H!fg@=*DcArx<>Fn zKXkbW4ytnf8+u%4iD@m;GI&nsd5$+_1P9pYwogr$$x zPA7(|H?R8{^bV4A5?(&{z7X{wb_+PW)BAel^af>Nmeig6DF`%Yp>6JgXWgIOXc|Tj za`@R3m#pVwZ1_^@3hCht4};8=j17Uf=xSrG|uekzb zYMMuWl(8i1RE@P{u4K6P_m+D*#bZU<_hw306{9Ykt1Q|xEgrGg4v4+qykI2`*`t{k zf}P<&G#24?+_=v{&zPg3u*eJN6bC6;jiQCHxx@#*N7rw?uxQ%$8R(zlU&P|?6Mli} zj;2Mg1`WYV*tv^IsAdEEQMNjLM-qF@Es#ctPTPV;DfpG-FV-+D zov@)Nx*sma*bMuh9W`%tAiHqDVd^2cO}dG8FgR@M43_mpd0*jKPKIf&(_0ImV8_jH zWBP;4{LEDA9%onn)%dmd$)iUQu~!#2wR_zTH&n@B68T(0%Sz^ZiHimSrPG_w7P{Je zrGL6ERUlPk_B^Aig_F{{Lx>L|k7YpHpgljQ_3p?|Y|XR8C>v N9{Bea-yQque*q2JPSpSa diff --git a/windows/keep-secure/images/onboarding-small-browser.png b/windows/keep-secure/images/onboarding-small-browser.png deleted file mode 100644 index 70d44bbc2a07d8d9ce864a7f337823ea87e67a00..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 52922 zcmd?QbySq=zc)-uhja{*(%s!4ASo>^5|TrAx3r*0cenJ=AT2{kcXxLT@CL z>-6r8BuoVuunYZwU?HI-0RvMViv}@4gnmW=%IP}6z+iSi|G@Uy7kz|*0jtPMOK7+o z9y}Nn)o;5jN1{r8wj@QyfAF`7$H&2w&Q=|jSFk!EMMj>(S#V(`=eFaZ!55e*r>tX4 z5P$z!hR|b}(HUtE^i>&z`C(L|p<_iHD~kDZb@P5!T|G^pO-?HlY2UckH{IEGkEhC8 zzrL2E*zM#I?~Lt?^Nc6*pfHD6Fa33rX%|0X(-x<;Bz%_0jj1f0@i5VY>4+ptWdAg{4+^ei_TfOt%eQR`w^t3__ zIT(4gL2HoyTL50Nb5T{W|D1i(lzHE@{IIxeOV*8X)9`e){0JF&@ zo9{t;8o7>hWyi_}t+YZ#OZ%~6`yG|f~IwgM!dpaSnuU|oc+*Ll^{StGYpS;t4 zZ7Yks>il1?QW3qXj;#wdj<57Nv|heny7s-uC0A=WkBG@npYLIVbg|VARE++wuS)r@ z(fO{`WIovJzu5BFFK?iq{>1Wlg7tJlx_t8@b4RC&FIMLJ8r#!m`$B;?RMJLYYl$g? zf5-Du+xY)&fk3R=5Tl!rDb!z5>JsJ3ZeuZQoq_2!hwkz1*Vm7Rsb?<@%KbF!r_EcQ z9`BbQj@;%uv#ZkFmOKi{Yyy*ve3R2n3@Y31thmTXU88OejU%hVm`_%_!w&fmI&Cev z4Bb~lA_*t7+vj3pCG0}IWEiJ~q*=8Z!@Q52GOc|&gvos_#+r}Y<}oXtZ#9nhJ7s&6 z`R7(Ui`4AO69)-Mv5F7seX4!iYz&(k@#)=uWv+d}@MsPrb97yez_6)3o`R{0Hc@)c zu=`$dVG(9iR`(12lTIY^S|^Kb=dZ8h>%7dl431ppqfTwv=5~V`nQTL+W5yM!GkmUe zZ)?|q|JZbw&w8QnUZLwFb^Y>9FW<8s>Vg>fg&rmPzO(tBMv9$tiT$RvgW8K`Q@ZVo zp4YH_hX~O~R}R_oumL`+&9@-z!*8|3d7XPd`Py%lreflMq*~?P9>NL@6uAO9W0uUT zWT()W^@YUgJkDR8>BPMveXDhNL$Q-KDSbMySF6}H{*E`6v|HWjr{(l!6>sj+RZhAn za!-p%Txz$iuy3JeV&S)CMQUWKOjkew|6q--fL6Yo+nyLVWp_|}O}$2wV|C-Zw(ZLU zqkXiB^{rGXxVu%cOuqI=s5h$DjMytaK&|o=%kQS!l^xOI^b=AfWSs5cU25YP)Vwxb z>xr}69E2JXa`$XL*O-&=dj`C%4Y9vFXV)ezp8mjO*_-l-uxt~3$mH|7A)=P^g_fn-%o;Sn|1EOt>=kS=GY{SWW)1a+ z6;j`d@F((L!*7$%FVx<&vrbdlhEj%Y-s^ho;q%=p{lannJn|oAe#BHV7+E=!e4LND z-ty-)9dX-z%;*awi|a~iZ11xb_D|Jk7EC)m8`!I|Q(f5Rm74T$+uj#(?XYd9TEO?s zv{XZC=qy~}g9hIBNbDoiZC58_pyub@5S(2QG^A+x*0^D9tBl%~V9n=e?|<<@`e2R!?f=t5bB za?`+)gckoVA9Y`-Yw$<~#(jDGp5Wa=>Y2ghTR%Gj+Dmys@VdV0(jFV>O z-TQbhj(kN{b<<`KA%X%JR@nGiY$40!If7dv=B0OQz;MzVtXLieb^624cBu}pB|N1q zkq|jM+m}|IRs=j8IvGqRIB$Oz)x4MKDcl2NCv$r@D_1-i$IP1>ZyzjpMvr_E(<{^t zUi8lWpo`pvI9aC-xbS2W#3f^-_3Br)3V(%~{?(}mp2@J8)y*dWndQw`$|wIz&PD7- zKh(7Cu9)~jaw_oJtg?P!doN>votR0c9-a*5!B^LDf>8I$U!814r!@@sN{uG@{rMmB z*U?btAg)z>q?TMd{8(t2`VV#%{1YscVdjgeP%SMk9j@S9ZTMS%JaS6y{M~m{7X;Uv zEBxIeh;+QXpsjhI^pnfut=Q9cIlRtBZmej^eI5OQ*CRe~MlKarU%SnGuJZ(9DzQ4* z?d;33JDLP&ZF?<1gIwvp&{(sn-(BL>*`-Z=OgKD_*hwGh4UiUazRdz6`|1tk*qaG3 z5i|edxy265kcuYBJ=Wg!ZvP=J>4Ea9zaBeG0~Rr{(EH|Rrdm|_a$s7QpUH1-YW7IL zXr2A=x})hVH=g(^wnh46_Kz=S=rt=+A4BPa3iF2qXjfuV1_x)%73%C=yN)^Y%J-Jf>z16`mk zt4~@;O2^3PVzZ9?7sFgs(i_+l&XGM_75f$xpEOI^~j9? zM^)Oi@$3(0^7M-~XVank96tkW)QlZXH>Ex<@+#}lzs4Dz81_s?8CV}3-mjtIZ7@y2 zL+Xtg=>k72oD)offi({O%=8NK0;bO3EDCQcE|i#9KBbpcH!r@)SkPq-lR9=Q!~o|r9WLY0a`B$mpzkN|&Xa=UQu?P%|xK`Y{> zYX3=uAxBi=hTGbsMgZAdCLVlfa-K32B&W z1O8_E;sEP&ah+xIkBNo78Ity`0~WYLi_2g^21|_|CPbN?C1_6HixUd0a6ess<;96%qCG(-Ca= z%=9guRp$&smDzW{fF()*Umu!ZM9J-5D1aT?YY?pxj2_SC zt=D6azY_{V=J)!&MN#(3OH^n(UELBF(yCe9Y*FQ&R4XI>JA0JgzUu~VcUbRQ>H5p@ z>flFAQ@IH4E!K*_3HuKRI(wT_S`9(4(IrCaT$%d!oq#EGXZHlR3O8>x|I|E^I?Ba# zYVyMfI~McedDh$pndBRDRYft0tim?)E|XSPQ>!y~*Cc-_jOhtZxNDu(#FS~3hO{KN zGErT@{b4l)7X$XCk@N;jgGS~{#PQ8CdHb`#5+M(~adQBnc`+7+8(af@1BUYmnH_&a z&_m;D4@q~lbAs1y6>m^;;G($2?M~M5OU~0&*hufJIi8>Q1sf5&bm?yo0(SWC@g(*b z7(8L{RYBW<@_Zd{1g3WnI-*|n>u!tJ^Z1et6$|E7XmbeY;Zjh94Z`y8uTCo6!xNRe znI;eE<(b`S)F$a? z0zZ`TB$5eLy@OU0?cLE>!MTW4x*Il#HTB|-r9YdE3%FBC@BDByb+m4#_So-_+FWF0j>Smo8YI6ku(>>q|&C%S2h61gC6 zXdNR^*!CTK|CMdJ-J^*uLKsTCe>wTA)gL9xr*P!uW{!tQPCBU)U>eg}9dRQ=w$xZD zHzNjGQ`gIv1OT)R zF=}&2QlSd(99j~HN-ad{aE0}ds?gp?Vu?ZGR=&oH-dT=3rK;F$7ZP{ec?@L%tH&OS zoNir28iQx{-H5_24RUt9a`Ie*wm8eVi#VgHeVPaAE@}z!qRNIQ`PNRf@lq~JxNW{Of?DPKb;3RRUvdnE zf_h3T_IXG)4bm@GCGUlbuX;`K%B>RwxqE07a^K23dkHP=MV_i#vLx&ae#d=SjB*uL zB@7p3odbPe$9Q=)#>}aO_ol`zS+VzLU@MuTh!&Ya#=_p!n^RKrv{&#PYw&3$5+LD_ z1!(fJ4I{OuIq($9-oYC@^Hs={PKd!R>Q<_A$0q}q?BzrX2=pj5dTc6mB~-%I`yAm{ zcR-beVE?v2YS(;%vJleh!4flLeuB~E)ByRmG+<&In(1aN<;~^BQ-K+Mpe3lmhSFEr znH@QzdmFSMh{Um5z|a`u!on}tIXq36Z)ol9Y%0Ep8oIO8L7$(ihvonhM#=A2?3)#2 z@FYXyk$Q0_kiGz0^k{D5d}aU;-p|>K67qPw-PVJaO-b#L&10WqFR{C^*vFgLryC}t zTZNj(zNhdQ#Ct5?lc1({ilyrG_EgxGz}q>g)zS*zc{K-4>ZGv!u<mi6+RdyK`xgS=1Y<>DO=We|;EBDqK;w2y+m* zoFis7tP6EZJtlVH-&NN`V~smnlIPa9PVN?^Cj&JaDCEq~pK3YD*?m?YyT?Qfvok<) zdgO)AOJy~`(2YWc+jW!)S;j&Q zPdY5eyj0hntW^}!zyiP-^vKcS<5Ah22FZ+xENGx{Eo~t3h(aB(Qoo6{1;hJgz{BcX zbb}lDk!Nb>+^r+hB2B}2A@PE}Fk#z1=9aVV3)%fiyL?IPzOqwmpele#)T}`;9;?qT zi~rrm2*W-PG8UX1lClH2LS->$+6|||?#|S^LhNA2k1N>ZB424#`{2UBs47hX-xg#- z_w0LR>6UvsYgkLbjS0|+g^?{;hp-rA73y^--E+nomhAj!&^}bDj=04kT=)?@dd+Il zgwqn5;sWEo=OvW3t&t9+%IoSXdy7RE(&1x9eovGoV@C|bqY$4P( z=sp?R{7oGs)QT_2gJNBrDz1gL$%b8ZC#59I6@zOkRrPjyoWOAOXTy2j$;6O4y}XY> zG$oux^E3iMrKjUL&!F4T0^$eq852BS4_4UDhoF(Jq#bbNd_E1RmCT+efw5bDYs!Vl z!j4NvyFq7%(f-zLo|U|H%Efw8j09U>=>TL4QtVAd*Qsgx@!xEafmsWo} z9p@RgW3WMCkdb2^IlhQ)kZPi$etqt*=iH)L^o_JFt2c~qJM=44^UrQ@TRbmnW(P@A zF2SoO#AgjLUsjmnHtsu@=1z!oVr;usk@s0~efNA4v=8`QM?90BedIAqECgP#2(XM% z!LBzDbhk?Mq%+pQnS9Qy2>8X zU#Yyow6m%uvEsy>&={WC>2Y-cA%HfLZlN=#o+;R0S$=X>w_*5u+*^+fC4+2FXKW1- zq|fsLJCD@tp{%<)Ci)Cn2JIMFaB|enk zfUZCNegUHRdWzQp%-23tL`5^w9xNx*7d=P&3Tsg+<~$H(p`kdsy3wl@Zoe(iKdO?| z(M5lF0%qusdpNcur8>bxF1}@0)%ZoNcgfuD~NZA^r8$jdF%F=Yu zr`{n*Ss?xnEmqQ+hKY=H2`UIfOb6SQDan)0ymL&8Q)zRL<5&~yMi2?^;bF7M6gdo= z%}ti7)j**WF>)4%mE9p^QpML*aDujrzlQET7XQ}Nsm#HO&7#iEhcD=1>lWw6cJG=> z`cBq+yOrzN8%*zk;;Grq+H5MKV|1%)XT@rCArX!CO&=9dW~h#FWR+K|ApMGtWxPRp zMW6WA^K3(za3Qu9jV_})%yU*UK<_|cKUt1cGedZkw77O!3e2x2SdP+dxUw!ZSXlw` zH6cx^`z`6}m>Nj6yQ`|5vVTnqV&tOLuM}?s!Z`SEu0WpdNMTm$m93DK%Hq;^HRXtr z6vJTz5OLD2wclZ-&nlXcrBVm-9TM%_Hu;xvF&Um~T&&Z4HlN*X-=pohf7 zp{{eIac1b!V3@s&Cqa+wr6Z!bRwWQq4`b@^f(>_+m=(#4)6IdyvAzIdafwsuaJ>57DhiT!gLvR?BLc9hRW5fNUIvd*u5NKq%D5DSX(QDU(traiiSt2z(w!I z_!+9JghgYO#sUD?;lhS)^~c^r_hX!44JI&r409O7cU?Ff$Jz+=zLSwan1yY9AFjX7 z#2+T8mq{oR$|)F@;{V+lH>LJHOlE;WS31g}@r=he>ehmioAJ)`K$b;)Lmv0fAbXe0 zY+a<3PvWUlm^taBjjPoMG9cWV9i|_M(d8MBC zuASK^S$DCka8^}Yw0{Wu5cXEi*?A4OtcMn|vL{bUr|u>qHhF7Xy6)Qsz|@Xr5Y@dw zZ2md9J;`Y+rQ#bcbP4-Hq`d+TLhEb7nHdjs4&rwSGyz9wpG;6y5o{aldz!;i9bsnG zTJ}yo1EiuZzhpCsh^Bt>m*+UTjoJBzQWl;#x7!mbq>R$*RqEZrFqsY;s!Fyuu`!3W zRmE!>HPtxc*(BA%?fTWlh3QNCf~r3Txi(kSS^fT0$+cn9fcpq6+LbH&LDNFN?T;_} zXL!HR4vodt8-mVgaHcBRkao}Tc=R|=In@$rc9;(qREoSpw$E4un|^`2@&I?)#sSkl z5+-9n(bU}+0IjAU4ZlP^%I*72ZmYx&XeNX_T>9UjHekp#oWjIRnop!&(E^w0 zJ?c##)(`$m=j()!<T!Sp;}m51`;u=;g)9hgu#z!J}EYN{&er~1fu z;nihZif8Y!31V&1SzY41hL6rYA#Fb;wN1(RLl(g@;PKimBLqUVH8U5Co$M4c)VOQ2AE){LcBFdY5lVS$3HJ295q3zySLfJQ14SYyU81 z|1vK`59)~jH`GBHE_S{BxX>r|c)AQ3UbgY+UV>cNKV8*~h~5)Etr^(_xI!uY??_Yj znW@;7X**=7y=7a4*LT0ccR$H@H|Y_Q`E+i3V)!@B{{@EnzQOj8-+pl#>j(Lr`FLUf zxMkmVG5+?>dhO}X=*jxR=)TS_LGBM>-D*PqtZP=y}88(lN}3FVUX`F+)`zO+RW32@06| z^gn*lC@s=Uhh$X*rAC&Vm^CPL_(c%)nyBlq*YgI{Jkj(1Xi)kvcrL1<4}0&gR|y@b^d8S0$(0zCF861P&bw4^6Zt%=KD@{8${$Cb@ zRUZARg3(vVq0bcA#81f{Kn;%OOfF{p)4wvP<^4eTiHj!637Ka~H5&woy<$p!i0SpD2`76#9nx7@5n{*qCfk2z-6v*OBdUqfLY z5qt6$f@0)A`)3a;qdt5oEL3t&F6{0PuX#?`3DwMaJ6+l>SO++cSY*5>cd zIExGqS-V)V$D1G|tR>(3!&B$UahWM+)9`c1`ABIn;)Bz>gtsfqc8A6t-%^%vRfNZe zUwifGi{f|vc=sS>Pl=3pkIGicLt5c)B9*Ngk!nZ$hiN=)*5$KZ`0GkwklRt=>-zT8X6rPlUqimIv zj5Qo=K2n<8j$mkioXzhB8&Kgr8X^`YbdKX6rFB(kat-~cLA8uZ>q^!InxkS?JIz2? zOalg$9OioTsm+047G2YwZFXdQG zmvDS><-#a>qLdSQrAqQ~MnLEgl&MI!ZO4)T?$BRU5x~nHlHibUL_>3T{I=P!4*S7M z(6S)l^r2w#Ws`M)vqW>%bP5wRKs@J-zue~JAZn;h9@r869ter#yQB7gla$ zuWWK$pbj@-BF?49ne8dpm1tUE(cE15%S`NKt~fU+s{s3`k(NCc4>!*v;eg03ptu_tmDhD69^#jrbG&Y zN2v|sswWl_X*Og1>jL*nBV;E25O}*o_ZySMd(_YFTWe+JWe)s5XE0HnTsgpy_oe&F z25uGqJz~|=u;Z_vO*j{RD{Vb>9zvN|K@%VXSiPPj>zet{Tlj7I-R$lxi<8OZy82LO z>64^RCj$WZJKMMM^w&-%{HwlIpyTq^!H2ZlI<4t+(2@SLrQ`o==@u3yjG(jH@$~l< zSG~Vk=v4g%-uMl>ZL=v&(g+-&{;uwcQaLng+GCSDfaDjuRyFRO7H@LzRhsTr{(yeN zfRuSpy1L#@-nF{XHay$Ie{Nk~A>^{y1Wh^%jQ@#Wj$iG89pzdl1w#4$PG2jm)&v(t zA0PFo(4JCoi$b?*$W-tPOe2Xi=h_`LeT)i^8gI~6a@*lVn-1626-+C_isL6Esy_(= z)UVaSZ9sg_SXLxVx@%htyEI!Qc&AcpB<{y91*RV~6bfk;H4~S+sTQ-ZWA-3e1??_x4)hsks z)NE@|?0zxM`Bgd`6-t4!RGn6!Vx2HLosB_z&r`b|&@@>WRO(#FJ-s2S_S%PE6qn8B`mbSZCEsxpf4@gsVMorGV3GS7ly($hJ76s{K1_=7O)TWvrri@CQI zq*)5hk}_}X!9nOYf!(_J>Y1W(Uz|L>bgJLl6aDBvlXpSNQuh&liz=Aem~OxR5=wM6 z>UepG)GYCg;{Q`J>uW@2QExRF1s1AysyIdSKNC=AN`2oBSHUmRt(xXkBk;rl6xkIY z9LD-UtmR6Atbw6L%(C{-$b9g5{n;cweNrrpAn>JAh^vRRX5I;r=Dm;fTEV*lVVQd? zOxF7XS2dY9om}E2GW=uH>M}hyt@B> zT5LW1KSIgysv~xYRGN!Uvan2HfXt+rD%?Bd57W+dgS8>wWGC6fymQ?AUfJX6r=zo@ zfq4p6nV}7CKy{B|29<4jVB(gqZmA>*UfcT+xN(VippegiJNd60Jc+6-`Wu-AlS%g& zYBbw|>&(`i`0ooU1e@v7$<2xY@FA)5bPNs8RB~#_WOTBy=5}Dnf4Amiax_FY`D<3^#{ zI&9y*I4hLhXM6`yq;|CbufIRN<6D9pc^$tk+^q6pHhP$Au#^*A&s&)~Bb%A+Rz%JH zUd=`2bhWPFtHL}k-<&G-Tp-u?$InMuh}{YVf-(v=vjUAQdFk7(Zzqevhv{z1rUc|i z3{b%~D1;*YO?4`uY1sXe$>=(k6WfK1-1}xszea*wa%7aakMl^D$Yn9}xp`P%9K-#) z-;$46FjxKYTfmtBWw`eSiBMySW(@kM9T!o!nxIl30X*yGseQrQ+&Pp78U%o}n47-=DBY!@qy=Iy>ckX4Vb7v2K3?T0<)bs_%hH?Ko>Mz;l z?oWT~mE2UK1Si(H`aO`^x7|*;dGph)^L7)6Mlj@l_HuzE@H(0`&oYfS`1~_H2t+c% zN!$k}XqKVEv5WXiWaUtitry4o-31l5@7ZQQ7SxSmac@9QA}h7RE|w+SV~mbdhJy$aeNzGF`f}>?GVjS75AY*kS?luDJO7k&lS6Kg{)S ze@qSNN18~68jHp!zBhjfpWs>esv&;Yt=CCH7@yCuL?JusnYWS_vC>Bo|MoRdx5?_v z8ZPqlja|#c5r+EBSXf?P_=3~FEuVmVD&_6obejyDL{0Y79x37ww8aY3y`5MN370-9 z-$D7i-=(3m;fgC1ecaVnD(2-id+pcRo1SPcDTk%3C##D5UGegI14q>zF9b5cPy8Qf9ezh zqBdUJHI_1O^XlV`yPx(D&UZ?rt&Q&#*dm2>VHD((Js3Eg6vU(Kzjq%II>Ttk)M0x$ z*SSl%ox2Q=AGmMQq+R*2|EFbhcXekui~itBu*nB8oJFzUh9?OUh#@WSGUQiz}Y;oQwr>arjbYcxXQ2r^&TP8pXCsbE%QF}z9o%R+! zmHr2p*1u$dI)Iej@uFk%S)R1--M5kCzuhjw;^A*ZSPgpbHaUnf$b{?!HQUio;>Xam zL&rHh2?Tb^Mq3PXsfqkB)`M!Ces?iN)m783q)B}9Bmjh8vQ z@cfJ%cU3Z!uo%+yPN`d{<;`K@+f9Ls{8pS8yoivogen0yIUZ`zTh>g8L^oTm)=Pql zM2rH5ifj{du;guvX}S;0t@fU3#krYA)XF?nkieYz>fg)R%moV;)Lf_JYvF#+0PfD( z8lb!D@rNDBrwj}*rS7!-DPc|5_AQs}M6*K_9n^th$(M48lMa`@$Ezf|GMk;udYZRV zHs|0Gj;CwkgJPw#Sr#%;GfrHpmZqtQNjz@LW*G*n0>G;esy>6o()dW64u8&xDDkm! z%myJJAqIvw$2y5yUl5ykqqmsUa1i6)&RW(T{;a?n3DMBoQ#beKGVF-3Xenyv4l|C+ z_04ZRO;CIAL6%zmbW&O1eQDQ@QnVyyOcbZGJ!?wa=MD9sI2^n2(_-R5x!MvYjH+tE zSjtAN5|J@|9(mJ|l5^c?lF4B?@SuV^e>bXYIT`XAcZpwmbjkzu*jOx8+5|v zQVDglrhqwrCKbasTW~9nJAKOM6m$Z9aoH!T14zg-z7CB|>cxwhS{3>E8y@539z6gL z`@7viY!B}005B0mr^y#3IF&!9P=~+6=^3rMy;ipUg>FV7x0V1d$J!7)sM}kT3qwF0 zV7Yz?Cu`3vnt^O!x_|I%M_6f59;c>45l}wV6pH99z)!xwjw1~knR_<^hdNVqvt**4 zB(CV4hugH5qKt{TwlYJPw98!rZy}PKme14(=c%`$dWkk&YE6?8w2btpJ{m!;lxg2( zY&pC5vYEb9i6MOHT2blJp$x!_#ktuDvF4u`(l8=&?Nxs%O^8IKW8u6paIuxM3d0!~ z2vlGo_Q5c|zJ|p#3~v|iz;tw_C3_{Q<$}LX=`s$I)eZipF4FmSt41%T!*KfO;Q(T- zK)Kf6Lu!o{p|O&Oe&}rb|M^%-h9zN?%O zm;$g93!T++VQbu1(@Ic~0VQMItq5S(Tp<5ie*8upNl2$@3w9U$FVRj8oJAJ2Wc;tLoZg5~-cXvdU zO2V`%YWUnlbXXA{{*?tz40ZQh)dT(CFZw!*hy}{H1WSEbH?{tqKT)?F@4a2P!O$@Z z@y)zLWVE@~)4|rYw`$D_F)a9jZb)c+!8}R^=fJ%XwLGD0%9=tJJWhJ-{{gyXC_U<| zI&Fv45g;|HkB?;n5}eNC!VK;L=Kt3 z!h$h5SmVT!ClIRKWCPM`oD#IYcgemp3wPde#O1e?aiwKOnc#mFo=;m)2D0%9=Ylsw zpfj@AP?z0>LyJn1-Poh$23SOM@|(JC0qSv+=tW^SQQR3#4*jE6x_QrV1iU_T@Z8Kq z*USMsnOTk|GIiiFT~q)7i(5BXSR@0q)$VRqB?GwZkJmGHtQ{5Jdy}UHlXW+7H;zE> zfS8`$h@(;Ci568p3>jihnV~Hlf$xG|(J!JVY59LRT`>k1O0D8a@K3PHCy}0VEEB_o>zlYKf;1rE7SE2)SZFoz0+?Psj7uu*?R;$|99k-bk~b_DWgAf zH@r_+R8)CMqQItqGEZ#4roLbke553z98sfO%$dBTUwbzUn^5Vc`hiEvL!r{TA*j>V z<|6Kh6da*>qLxANmT)vx|1fy+^-cjh>OAJ4uhtXjW5*jIbwV@K?E{28+If0@K&B(@ z%6EDpHdN^B6ZAG>eSnwM8v zJT8~Y*i@$Rw4%0i)n`dAGsPgfe*&U1icIHYAzT2&z|R`uei< zjz}nI8jc>2V<}5aS6pL_n>QU0bC6bt-&U~0gE7jGW*s_JJz`r4$eZsorfj@Ou}$xh zUmHc#&`KCe42qJjI#SE>*VG1%^k-8C)lgXo$W{Iq;UDajTcx=8OSP*!@MICvSIXSZ z!&VI;4|BIjnT^piUtY2tNCCaA6tgM2>_1*Oc(M~KVg3jb4w>!}*R={wn$NR_pS4g(IJ!fu~(!fx-qFpMF@%t)-s@@QsYbb)VGGkx0PVE*}gm72O~K<64M z4F(gT(h228EK`hXM#wDNVYmoOxgebz7LrQ2rU|tF*O$XA+ zmXqZI07h9t7}0Q{&i52}x`lfc&?QbLWd7H`hmSNmlYYggbFo+58u;L@t^23E7j*xG z(5cj$;;-Hl805nk^%aZz_peqZZcZeDdDxTqmo18KzEM$sCd<0R*5wc}H9(sv<3{Z- zxwFamGZFxjxbLd?$}IBU&P_4?HnR(89OPiKG z-1v|Rl)9RYZk{*)^$<3Ap@DRL0^Jrs7WzYKi#l^s&6^G3nuCGE$|{vb^Rz=yWxwdK z_*@jUm%#2){=@JH=GWJ+sT*6WdSnU*6+Sc07OSz}VH4>^(%r(p3^*#)yIouvKL53%6au)Bu~6GtJ~ zM_hl@xET`XH3B5&rl@woww$TIVkc@9I!-8lL{t%F_wNI*_p?&J#40^w+#(E}aAForVc znZTZ(QAH_QUm*3ZswaytaumKl$D#~|s{HR+9&xrbu!(}6P%sje5FhZve<<9lFNdo4 zGjO%5P=UM%-r<|no6E|YglxtdD})0^w*wfS@Llr@@%8lGDXQ;;UVP1+Mycw*VeY2` z^3=F?DV)+b)k`T>_%l7VKDkZ5b+%~z*jEdGJFV0`bEpy>TR6qUI^~pn&OeFCR@LRq zlU2=?sXUU*@3H#&Kp#z>vz{z*^F#pL&I)L8NvP>hRv|7u-zchvcNhF1I3mB844?4f zP4WU$5f~q0QWjM6nr{RXGh|VL4C=JBfAVTnqa8b|bJSkm`z-(c2q-(%1}1g$^6vMrrJvbrJn#Niw(lFN)G#&un1UfW>XKnDs2nk| z`RUEV`#qeI+hq25rEz+TOQ$(|x+nBZJg}W{oegT#Rmn@X#${isIn7%-Pz9V}Q}@?m zduE~q)3Nq}W91>cB_V1lA;_RiCK|11(X=!~)eV#-!#C!MTR5&T7-f+q^PI)FPT!ld zRezEn;~Ud7UMMIPpF7M+(~5t2*&E4$RhI zt6C>kte`TP8dQFj{|@HLnWzGz(((;rW+;0Y@++m|e=JpX{jTqlFWXULM?2u3I6y&U z`zGEg1kf*im**6HpxA|L+BaJo7SkMTrYGi}i>0X%cGq-T=_{wP0q;2v< zx`&x#rSUlNNmw-|xZWHQGo&?A-Y%gA`j@*b|2kX#6f7e{5x%~js(4Y=4l3<5?qm#N zb2OuL9uvj4_nSJElPDP}FZ+iD!NFe)_ZfxQRcnICvR-hzuTd|;6MvwVDx0pOS9zVg zNzcS4vHw*WyD&J$Kv34UpT_-;S*nalr7}cnKaX+ott!bR+|5KyOq3dmTX$WpJb=6w zYka>W#RM_8u;LSuBSpc5{5DCGdEgo;ih(FkzC6(yONn*o(U5lMEJOB?g(CrRY0Y?P zyu-UQpTSNQR7SQ8O|0GWZX zMCZXFX}2$w!S{-PV#-$5U@_vLZO7&4Y!+Vb6?7Z!LKR6$NGIa`6giA(^D7Fd{sk?p zxRyMwTX|PsANxJ2WZc~p3N^@WJj!|D)Q3EBU({>9-L~iYKIT^hP>$ZapM1K3(AvHb z`QnEMO@yhd0NY+Pw$@*Y&^bTj=Z$Bi;P(0{%PCU&=<5#30!&H8FBS;y?0GHm1->m> zsL{=*DIn*ZA=W~u(U?Hv@F>ol1ay@o+^LrMxaEF{ul=DO>l6FZ(_`ihJ5E#Pzq=Za zXS`BkgYH)enKdD=sKo}ur7sZv-a`43&_MhKqV~dc;Cov>Nrc~cLC6bvq1T{U>T3zn z%Vf5e$7nvGb)A#W8ZK73=KSY*Ep*`jX+CQGkv=FU$NK%p7Ojp--$OlvV8qU3$m08= z%?``3evy|)$(!@$h21)=8SQ@!kfR;vc-O8G7hkmDVpYTbId;7sU<>)Ryxqr#8#X@BxB=h6)x$BQYCld@_** zyUHTu`eu!}FsI1feWcaw%La$DZo`*M_RoI&k^Y_gh#Iu^S1FUa5p4Tn)19ULSv{YG znbSUaPHzf@NT#XLqZdz#fdYZw{7crYU&g*eyPG4Okd;iA`r33hcGbjd%8E-WbwWC;18cZequetSR%Uav8eufw|=L@b*V3B(+{q z#G^G4r*{42$I^ha#M5y8$GTCn#v|Oj1*ehC_Ih*^E-2bllz*jDlqb;aC!)knxcRdz ze$hN@LJQXK);YxM5Ti=yKxd0lZhjm3caw@%a~bbRU*{eqBtX|oZeCP5eg`g&#Fmol zJhqbo8@1{r0yuSPaq1?^Scu{BQ!Sz8^{aw5n2}f7F8}$&Qy14cid+~{< zq3pTjR()bTF5^LzU1zS)s)4@Hii^JPrIn@p1EG6SUa}7UZH6RAp>y>9&766yQxZFy zYl#QLmkPcWRj?h*9>a%c;hP^zPV!1|MB|7jTXQi!Q}z|O*yPQ(%Ms_=IuedbqJ29e za-EhaKW<(dWLl$2z8o>!^m^fp7oM89K8RuA1vYe03$5Df2j%CY9Ci;RpZs6J7r(@w z-a(dWio74F8nO+QMsbsUA82PtI?2LZOPrAGPOLu|ep`3$QD4Ez$dpM}C-!#gD zv1B@Kgoq;Bx-?IVT&r{JFVNaMi`ZP4V{#QFHA9&30~>*`R1<=-rnj|Y0~#e`>P+(` zOeVtVC?-5IJ-Om8Q5PoJ<)00ZBUO}SPkFEpc$1bEWCMIk+7D7fR(2{%6_dU=kk|9%f-w-T@!g=0f=g!&Fp)+oP9yK}DWD4x`eJaefU{ z)G7?)UkxY2&SL>tto4Cv9&qsGrqi6&mc~jMmP-f)s$I-)e!G+sjaaJ?(N(@StyWP| z7^8LLtL|>*G&97?@aZL80L8PxI)LnM`@FsO~qPLIHU$*xf)F8S=oBV zL(fdIwyxVRu4bc?Opk5Xgu;WsEx5J`*d7ZEqjOejMgxdoToYb&0OJQ^Kw%_|0*cpg zwAvuRLM5Pwi6`pJ*^tehiuwPr_LXr_eQnqDATe}eQkDpcFhjemM=n(K6xhT+9$ZhV#!i}fX>EBZq47^ z5QFhEiQ005H%*JLQX=t9NG=ay2eaMg$CN0k3^IF^3qMh_iR$M=%hc%w~sCOs%4AXuK_7GnSWsYhAfQ|ZmtswA&APa#Ts zX=b)uoXX z`M_U*1TVeqEB(U4^GuTSeU>-HqG~hd`FZ>7vK^4lBX9R*p~J>}-VaQ=2gW4sjHpp^ zcE~%&Jc))Guq0WTbE)vL?BOEL_s5-VgNm758 zp}+mZ%mya%^N-Y>K1DZbO2iu1Ryi-q&>fe#bl}!J!4)T~wDKJxE?TRY7h>N`nHy z8P~&B1U&z(%V+O7D!VWo_L&PR7fq!*s* zGm>vFejBBDy@KfUSG`N1|3oKRl%e&WnxaX*EK3MNsRNF!7C zLr%#+{}1@Q{n^Od^2SkmwKP9;ZpgIZ!#7iG90ocBRK|mKA4j}C+2^A_`iX7+V7Aw& zp7**xIduS=RjVNzB45TgBJhN;@Y@y)%+G+p!)yde+$$U)r%uOw9U>)nG0}gkIlb}6 zrO~>c(GJbg3i;d6W8h@YC1c%>f??k7eVw8Jq;u`klXOXA2TimOLwgh6X9*f2>~Dv} z6^yF}p}ujLYT!Vra6xW`?zhA`mDAEIyPsI=*G-0e#WovluNAy3!29+RF{A1^wbxFy z*w(lp*zexd?70#{CdxIYX0QS`rh_q?ihPgHXzrRB{GapQ-e!GC9Q=o%_diKC z{fjI8C(HIbl;rzU$Np~_uCEX+ptP=W&0uh~+{}5s?0*)dbL|p1nT~)Z$hKO2_%|yb9ox8`i?n}S;ZXOl#nf)i@3S)ZsuZ;kyQ?2Xy z>$Pqav;(Tgp`jf7Y)t#R?oVqnNp*4#ih9C#Gmvr8Kexj**6%5H5Lba?udi4-T8uDepE(b9uZR{uY*pXcyvV z+aFG?djW#kONP_(9|wQJ%nc)MaS|pR6;bL^?(%p;-yfv?5iNXu1RSQ& zEriAD(Pz)|VOptA!=56#%v^2%@x`x(4JKAZbSsReR)<0W%bFR(D*YjY?%Kq8H(1r! z8_&&l;yk!tPMI(J0Mo9Kq2ob8S_pj;9LhBxde1~p<({VQd-oaac%;cH1ib?Lx!a~A z23Q4a)&2tTAiIX9W7~1=%t*u+s@dn4C>N5{@Rvc~rWD+3q8&PqQ=0THj2JcHzRep! zU#MSckz8eX|CmFFh2NfBd$oaHuERiud1h19`b~UXBU93o+nlVBdtvo8Psrm*(u?(G zBIT?JI6<*TavtEYIeV?4b z?#g=7iWRGc2d9E8jcZ5SQF@u4sQUh*MJa=WP+)4lp*4-8kZxcDdF6pJL#V2KC+5AD3qE2P;T9OkC9a|>UoQ&f7i`6Pc z_($Yn9nRte$4?q(8JhSBb5Ek25cE-t?kib?o_#gY`P=w*(lhf-P=9C=hh_2~|q$nf(5iRj?I6|tC(Ex!%2X0ua|C}7i#buCy zD3lco(M5}q!ClDWl65`1Qi`OXd1Ts{22c|(+UPeVdr~-!$$D$*-N)Q$p!p&1oW4-u z5m#=A{bXPqf1x2CLz;2d`-%Pb@oE)jnx6Qsx|p-a{irb@bE(@#I5@Nb#z75 zz>^>hFGleLKobI(^gn-`?$)n*NoTlO@N#8)D2!CeJ`a(6VMDJ+Z1^gh_pY2hRzSbN4RsC<$~4m$<%b1E&Qw4<#NBnpYI@m&9Ztg z@+m}ZXKZJ#Sy@IpKH*+%WnsNaUgc|ya$$#kj2Qz~H$$ap*y~6~tvDSZ9{o9A$Zzst`+vG;C^?y1sWnQN4)50P%`imue%i z2?73k9|DrvZK6(}r{?G@lo0i}Q1A-j;)xa|v_SADuDrc{|MQ9Xq{+c|2l9n|- z4~XQ?=r7QVNMKtTZ1froBI};0a5eXzqk=riuMYL74*~*8}n$+6Vy5nN! z?y9}$_^uw5)&BURbzhuW>){2yZ1OO7=LR ztgm5tZz_K=0&d?X(V$#mldP9U$A@n(Dyo(aJSLX2+ZUus&=c)A7@2_hOML7UAIQc8 znX_&N7L;dgiK$MgWj%BKPTC2vd~?M4>f^^|_6|#pj&r$@>?LoC=!MO-f{?~Vt@6wR z2dtcJxlb4`(s*9vBdWL7iX3GU;;U-*1d2>agTD4$$>U_9_W1F`fP@XU& zmwZ}HlE;L1R$0b2!ho;->bDl{My`~Rd^AwwSN&aR(r@ASGzl28#4T5PuL`8!bDKOV zx5J~MQR7UM==4w~s))9VJeaI_W!*O9ShUQNWsT*$lz@QiNH;exI(u6z{yO4@?C}l` z5bv5&kvzldDShuDlhgfR)VEQ|$DR6s&3^oYpM*>j(F}TC>hx*KZOqy{YH3M??J>Dk z6Emlo8sR~2``t3MwjQ}wp7w)0xlJ+UlEcIP4^IEX);re*gw&+$=v@U89wYwH&f7!)o7{sAR;=J&i4c>*vsewFsS@TH+C}-6JMXB zCLTA~dQZ+VE>6<9%pc)TS6CfhG6<^L;Za!D>gtcOFIsrWY^^oWFW(In78&GMgR)v( z@nM{AC7vouWO|D0I`|{G-H{UE68&K9dx|LWPY`hAF`@+ZF6{(%yu-Rf`|y!O=BeVD z8*IvBtV-?7Lo~+sf_lS*8kcht{c!ZHuLQUZV5vatb?NCV^Npx9Y0WUe{a6lRGtyL; zNd}AXEpQLaP|iU__-QFBD^vk0`H0wrxXoRzDeqdU-Noyr+Gy$HGIk z-C2DXy##G}lfRO{uVd#n@Z6v}<&)*pm(Lwd`hLZS*R)6b+;pSt&7@OaloGs}=fwHV^q52!g!J`V8#69FoH2k`IFlq- z92D@s_1J46obhpD&49n=XY}}K)1zC^isYTzw>_-uDEd=Ll@dr0&|AuA;t5@TcS1Pd z#w9NNI?yv>4`l*FX$#n=W0=kQP77n_Y9F_>P{WGwn}>n|heXJ)Xw8n!!maRr-ZHlO zF^{2TGD71h=`A52RENPhn@)|n5oT6r1ZT$A2XRPkKdlK0OtobO^joxg8M5t@4<QCjgXvg z7@$a^9cq9NQRqV7lUE!=%OXj#qj+kGx8R`OL42W(QoF}P9m33EPQN5lhlna`73mrb-bqv;i(p09-Sp-XhK^!FLmMP4jG zN*WN=Ck?`yIM4Zo5dK+yPpP5FaM;DW^Av|)dG0#?w>(PJ&X#hBi+}XSPNZUGN=#J` zUt}i!#X;>yg`p~;EUmRF^^FsAJo*zrewEmn@J}&{`Q;j*dY}I=^zKIDkpAa`3?q&O zlnYLP&@r}#W(EHLz)}BuOab5PABVr9x zr}s81oaRcLZ#x8?4*Z&))VUrgp!-B~=OK74He#@(D!=%x!Vgzq%>%WIJs`{cPr29! z;H+oS*C~Bw+*k@(k_|tt>dF(#pcYSDyssb|k6q-1GArW~p7GahjE*c-cB>~2vX^~}Q>@~hBK=QFe2cJZP#gEO2uBu?l^c5P5egF>bD z`?TVitFlp8hCCc}6m6V#+j1WTEsnpL8z$g3O^0IxiUFI8XO!!WUz_8!?!k0#%05i# zB-v`r7FcO%*0LFrm1wl7xsG*P1fLjjYL|fX0xO|LEyoo zYxiuQdA@F*I#4upjmx7vmg#IzmKF4!pjPH0q;3><4?3t!KyTD+4F~Qstw!%l;QtJr zaccXHsQ1mS4%AbBt5;5Nb|@oY1M>tDkG6R)zcUB*fGNQLcuU^Hv0 zz8{Ay66Y~1<1S+&AH=ko?RtM;7jzbOxGxx1J-Pfy2be?kf=t_q&WU&Q9<}uW|`Mh zN)=l@<4_r@`~=e0OUD8Y^FwK-Jn!au(yN#$S5&!cV}0+YbCEiovGV`42CVm$+wRG8 z(WZ%wY)rxU&Y5M{5~_T=7y3Oc&@SoG5e70jSLc_WFN-UlOytQq9i7{88FY8q+nbgdnzp4e;_e$K>iE(C}CpjTl zgUbt6JhLjX zXKIH$XUnYlTb2qvVob=|aZ9Tku> znlww-fh5M}*r(Jz2?(C(&|H9e>|=#H3x|2fX{)+fFy)@>`^$_{FuQr>LANV$7*l@~ z6y8iPOcD5UwCU?;;Mv!fCY+@k`I=eRt}-P0?pCfzU%OjXlYoswNE6T1VVyfAbQodA z>n!}iBPS6O1?xRbv0m52KhuS9oSfB;S>5bF1z+ws;ZS@BF}^r18urhwjtfmmy#og{ zMN_BQ6Sfh*Aj=X72;B#5{OMJnN{sIVr3DyVBr1$mF=H3qqu=!ofxd{SU`7>Q?&~>K zA4G3DW%=(_{#!vLC*5op$J~}FwIHUBS1al~rsI%p-UH@AWPPHE*zwc$l6x64Pmr!F zqHU;X-xGzu@@zT>xPeGi6%iPzDx=BkR-go=tbwPrOrQryV?d>>U?}U`l6kMyuTOVK zXT$zVSbAK9Z>pl(A}ta>J%gn;R;bMPgB4j)lmF`e^{yxmft=94T^{~y*}$Cr2Tkm7 z>N`-`l=eQ%Vn_?*$nbvh>zCMNRnKk5xfn~`d}q+~3SbZ*-Vtz8_DeghVWdy5A4s2F z0rGk9rVG`=op7fw48a9~HlISsP$iF7+!&8C%(IqUI6^60>FPp=+o%49Et17=hLCRJ zPTij3zSdM(fJO5R+QQ}lv=a~nxqf3_RfX2Q%XlUni|-R#%{IIdYL5T5vgr`8XIS9* zOJj(-hD~^enZ|CchLPTJ>aKp~lHA7o_k9qlL`JM@9Idaz<#ht68|6c8a ze}=u8cS;@X@_f3}LHrym8H1c{LYKQB>urNra7S?hiBNH3JhbDLcv?U-?%+WcID!R# zrch_d6o$0Gw@iOnR$`nSV^+^CH7lpA{iU6Y3$P8!qIaM-X#xW4_Jem@GEwn^6ptzM z!h_?)DpzfS;UCooeQFVAUH!6zNTUL&17lU!JR@C9Fl$Nw;seqgM zhZ%Sntxa5iTy$ttVT#o?iH5+#rNAl{(~s(nNhHu1%ZMDgo1oXF=p(bQ0-l@2a)UfRNnI=OaW5&q2qA$SlD5iFtaWzr!?bqvV)58Z9 zJh~1T7;9xU5=DFLVSXz4OrIz7YtOGuplMuEs~3zs8i#@z4*)QC|h^Ie&j6M z8n%N2&Hm$}TN8_7)D(F4Dj1|jCOm!27Si};%#7sxH8kct@r3JkqAqjS_YAB`dG;3w zWaivCwBxJFY4NYML+~q_f21OeI`!Ygu2r?0OqO-z=umsYNd-RSubgv=-s1yxy|)_u zFb1l4U_mcHzZ2=;zo*LnvJ$A@|I7EH_c1nVbr7$fa;2J*?9+4(=dHX`jJ`(a_RPjwdYhRYRT?ebtuFFb;;siq?4tGK z-^pY{esi-7bIB2&<2;_JGMumIK)Z&7Otg zUB#?f9YIx+$(SI6={M=JUCN|WoD9Bjn>+)Ef_Sd}jv0w!gQsg)0u`jhc~^p3XenUi zv1jR8E|B?d_pr{h9(hRgT*?!ga+T-BLz>V?D?dZM>MwWm@=$`2Vi zm?E+?I)*L+Lp&@v$bEJy*=7A7v=$mnP^<_dDZd!j_Q5}g%;XZ_9g+SSxm~z`cgvgxV3t={;h)7mQrF^uU5xdITAzsj(Vm==f=q(v zhFecR4u|=y7a3&r8plHm6N_rWS(2vT>2hX4q3YIN%-H>p>v7x;ouLFCuKA&_)rW?} z^$+!tfvdBQuuby?4V_*OyLnO|*CNC5K;diS`P4C`5y7xi2ef zYKcj=x+5D5FvWXuk;~%v!=cqz@2Az^7)cJDL+Flgs3|leqnTJaUo7%$eu134K(k|m zy2=6?(2X@gfgb_&D2@-VkuR8T{Bjn={_GGP zd`wQ=vm-78X;13L0i@RM^e3bJFPo=-gHa$Rdlvr}(%wX9|F6>C{~9FypVSlozi(PP zYb$kfr1cq)TdS<5F287$q@W3ha*n_^`fJM>&>H1e0+pHXd#Uq1dX{*nsEk%1 zt^#E0A2m}~Zif)G08Rq;&ku6}jeP@>gLL-O-`I_(hGyq3F}W|n8}A$1;P+RGVgkMx zzn@#IuVJ3xgc|VJVjxH03(b7)@dnUhqR5Riz#9^V#^<~a7XF0|ir3sK>!#m;_;uyP zrD>L?CzuFu2$GxI|5t4lIcKZ=^7-M)gW_)|Mnb21cQdZmH(_wcpn8MW^3SLhJ>2Ub zF}w^y_~9~u?!XPYl3~)~1eb^oy%hc(e3qnD3>8X;9bW~+$|VSH4$^j0+$MbW;y7CY zIYr4vDlXey_ugh@BA9^aAD03#alO>L2Y1b``lm}ef^Sgni5*FLCC-(+{*~G~{Z0X! z#D^Z^2;x_JTnYP~meM%wS2Q>8s?q>CY8&kr?U-aEatr^uG$Uebrkkjy-t@Voi$%DH5ON|rx=bK z(5TWjU^IjS^bO;X#wFV=3~4~{y3nLp1n(C4fd) zIkff9LTa<2asBcFYejEIdEyxiGHuH=vunN{p$L9`^~-HE4aS&3lY~lORo)bki^I8@IDBd$mK_oB}uf ztRN%+r=a^Er!tAhY7Qc=Bq{d}WRE3v#vD_10;qGeWug_QNDn%`j~lGWD^*69%h~AX zIp(SvM{~!E;z1*a4Ik@1;>f}`pIjZ2#s+tch>0p|67rLs+|{!(lI9Dr3oZ8%PzJl! z@H1%+S-LfYW1qWG=mxHce)P!89;{_4*a?ayfN-*jd)f0Mx7-`+#$&6>`EQ<#0r36k zmJYif{<`B1)tR?gFx9^*F~5BKi^bbXSP&dSE2PY_tJ=sg4E8MJ)-)K*LgbWYfTUdX_dq2mC43R90c=)0}iVxxj-)IoNE^ zu7UrMq?ytXT=Oh;Ha1Tpkj1KW+;ak=DO-Rj5&PuTNDeIKw4k**nj1rkh)cjBhrJURbk}o#BUW5<3ik4RIXJy$Z_7)cu`6i*YZDg5H?zl+y zI$)=Cx3A(#76khPYZPQq77qesB}??r-3>|`iZk1i5J zqAtsk@Hge}Z0@B8cq*XJ#!TlaNQqldEciP9JmOw2t#(J`w+1^GV{)>0JBugL+BpLY z0}uaWIB-WhRIgLmi^R4~fCQa(8?dY*mJZrf%;U@BKh~n4 z5X|aLco#B2q0iOk9jwjm7z=J%tVA9DinC=KPRV#{5@z>M`~3i*N2V^pbf| zWWY{+!~ZGl6d}+0*yu|+<2bv|Vo(n$&s{HC!bB9)PH@Odw(!=*;G6pe@4C?RSZ3!J zB<@X>QEAoDC{y@A1-23^Ne~A1x8`1pGc@r9Go^=o>x?*nmVK9Bqy$s6!3>=fPJf#Q zB8LG7m3zxSkN|=Ew8Z=Z@vF<2*Qr=(ON$<`dm$QgzVcHr>Zu4FgVgu7u$2JY9kKKM zo?neL@haAgfR9ac&<_1E=#=LH_ET*b(Sx+0_+-j->{O`Z* z@c!3`INr+FKERbPRWI3bSEB#iIwRhH2-rHW*1dqGDg)TE!-?A){sz*lH>$3c7eE%b zRQ^v^mgaYw_ACLg-=X*uPYeT+HDExQfd5{}>p!k$$~QUS_A3B~8i)P~AcTQS0Xah8 zYi{TM_aofAVAy@&x`ux(A%F+Gc~~G9T#5HL-~%oNL@`>xb#J!Sf7}B9Cy(g<4b>KM zF)s*`$4*(d%Xq)gB znxuLX0ltT?9523Nc4??>WR1PA)jq8a+3lDSJF|*oFtmyno*x5i;#AYu)v#^$)y#q% z7T_>RrcB|zLu%)fKA&j^;R97V*>4LbUb<&bHP+5%ch^Mc?Ov-ruC$WjAm zp_4KP;Xr?c8oXqri^WG~H@6e+c`r$7ql4=!ho5A_=2^^UX26S!+SAi{m;2ubg@Ghy z$^U)#(MEyFA4x>zIr{v8;JlDsw7rk@VJPwrr(;HAxKdcw>y#RWd!oIw!rYG-gViV* z;Fu2wpW?gi@+#A@Jl^m7Tn^4Hzyx6G-m7?PeFnqu6g1~=(CmWv4pw!c_6ka8 z&;WNPFRB%yN;~I{(2$)*;J_SQrh#?#UVeQ0yqx!8lj1RmW`qM?$@UJczW0k8d~q|DGGEcLqzl(8Dp?8RVg-O7pR~BD=~Xv9nJJhyQixNTah+X?)O9} zLVFM{2mvZMyc0IuJPQ!(@|B;V@d`Mq=$n|g`9X1STuG4*eXXzpYeeWwChE5Luw{V1 zxWpF!%ot#qS;i0tEWH0%r2yHzSopC-gsG)UPn*sABBfR(5)Ttj2osn#Z|A{A=&|cb zAW+xW;bKk4<$m>U0H{Ifq+PVP9_@KrgmYkEaDyrLQjC7US}4-T#2=;Gbhe@IqZz01 zfx*FxuY8y?;Uh0p&x8Pi;jG>F_olbb$rDJkZ6lnOBorbHPgZ`iY6W}iaC$PI%1!6& zm1<|ywR5lYHfwek7&7B`I6m>Dp!a=`RCN~0fjD_|Sx3ZBgiW8H_B>%o<38Qk4G!VZ zb;h$RVmTHp^>Mx}XpHrv#|p%MiYA={Z16SAXb-0zoswCyTGGx!f_;_T zQWT#TAiQ}r-hrP|10VZ;>GGzj{o-LX_WB)BF7U2DRjJ!-G!8+1ifS&)>TiMs`{pdj*u;=cM|eug}lB zn{UXMGz}~wr&g!97{h17n{TmxhW{F;oSUwvzRUHKk(!evM`lD{z^S4hA^{mnniP7;5{allODZV z5|hcnB+Hv|o4WY$M;E7+&d2OT>ZHr)qq8( z^Fhm5K0UT-N=Hh-cPK_{R*C9UdsDw2f{Mq+*tIc8T8WA<_W`;y*xo_)v|_iok`q)k zV40XuByN$ogl#Q8$B5$qa1qC|cQ}vxV#d1Mh+$zA1*Vq#8vU@1jsiR82)jB=d*yAb z9mRh0aP<#5>7!8_rEiMB=rcLeegyw@uiN{{gUaC{FXTIBAetOH!Lt+hxE0I-(v}PC zLc04tpu3MM4*oh}i{Le=g4~lA2YEC+-TT&hcXHX8+qHB31BznOw*jBR5FM@SD-^tk5|Id}?Sup{DM(JRK|a0>v~eced2%sfB7hY!TvYX3 z=vkU2@b&-@smzT5axc&kHELO>H^Loq)czp9+R%nqUpXfQ<7`+z12w{#IuIq`~ZvY5HD@QUau@asAR- z3Ak`W!(*v{&6~!$|BC(~ZmDvP**PZCIJFS>2{)gg^LpGBR4=BO!~0}jLa3ssN1AXE zd-^-a9G?6PaBS)4qh06d*zqBS9ek4W1bp-kAumIsEm$SSxh%6G4#L#@YdiN_U(rK7 zY=(h|^FN;`^8F9$qv5;yvT8?%MC6o3NI20Eyd;4cis-3SVzM?&lIT(&r{TtU)swUU@D8TQr#Q! z`Hx^4uux>G2w2ltMSM`^oUOX4u#Q_XiQL#ra)aN7GTP|3B|!K`xH_xOc|+?X-TZel zuiQB$F*nTdeKTuOYhmb?iKemKwOX$yUgWdO9=e8)i1P%cQ0N*>r$;_hsL!_ph{u25 z;Ee}gZ~%}rI&twV8P|@pWUcky2c43y79JE3Grm25E>gQ@nZ4b5N z9+xwn1G8DE!DM9G5~kMk{?*_YAN@JJr{$xu!;uA!!rgr6*YH+xC*_xpwEv`ufC?}Z z`ILK1XM0hVw$n5`_=9IJ2V$Qx8mgqJald>n&#Gebet`%4qK9|DNqL`>*Z8L%$#H|2 z0>U5h@;UcM!j+VNa)?P}pJ;lmC0)yIW9q~^J@#iknST9vHrIsmlth;S>ye9 z{`$*vxCj&1QEuO5AyMTWo_W(QCY9+GjN&w>r#+wFsFOIJI6x$RU= zTL2gtHas$V-RS%CjTGJHY+;8pnzHoSg8M#7q!JFd_;qD|_9PtujsN(#8>~FncsejZ z0<CI+HBd`_cZ5B8F3UQhg0ZlyeVmLiDEK32J%H0PPyv-gR5B9=f3I`Xa^$#<` z7tx|6>W7#N-cA9u@CR`l^smPdRJ(x3nQ&nwH#DsnxW=#eFtl|8VsCm@)Zp`Br-=c{Spr$`|>){M| z@S3BI;Thn5OBWO;pDAlo8G%H#8$wx?*2VDt& zct3@>5jOpg&%86|Vc_i8gEKl7KsEpmyI}2Za-*FgUGQWA$Y7df;j2s=5^3daE7O#glR}hih-xm@+B{pPSW=!)r`W z7|XvZf=jZu(8S+R4^4R^nkArd(e!UF1MJeV`-#w5?Ud2Y{ayJ}%%)N&xoNfKit``3 z2dJ`rDrv+|8hchsrSYgo%kG|ug_H}&HfWkS`0zaD=a7KVz95tj&mEI1>|6(+QvW0$ zd4RnWrA?M?&qE#C@>=YA?L4>=4pniNc_ii#pa2Ew&1tf*r22#)d>U;KUdu`i5NfvrfV0KI7~WxMmdi`%<- zCy$_M>LhQq&grV0cC9LUtbO;4KC;`*(9&j)v^D2UhGY-twlheFjM5!b&YW+Ihg#fV z*mvJpguxX?ttrz^*?6nl0pu_!4xNyajCf{O5v%q5tNdaDV$&Tn&toD8;B9o8k)1|1 zc?O1@wnf68OdbTL(SD7y$a>Q`TkU;;)F5tybG6HHr^LToGT`-xzsIi_6_4s0C@zxJ zVzFo8kxvj(?Wf+;Y~io`VO9E6up-QxFJr>Q)wn_kAypPw(19z&k9xN_M+LvNV-m)r zr9}vtwl{^wpbZul(LgdZf#$8`k{w+w(fr}##3@w_1ol8jw}*C?5_u~=L6s>fT3oiy z^~rh+VWo^VoDLbc`McF%>=@5ia9SJ8f_F+qb~x)*4#xOHXC1L}Cw*8h{l+01q4T&v z-YR zQY0}?8u8f87kGOvEZ(aT1vD@3PNN}43lAJ+{jeph;mxxQ8i0;>;$_!@ti{^~Cy?e! z*4Nv|uC&l%i*yr@eok49MLw$u!fzSDM#xdmBm-z-l2KP}CUR-_;TO1!Q|X{# zmc|@UL2V=x@K>eZt(-6B!$OZ6Uv_~-TPz^mDbYmDO8Mm~b#e?*V@POlJo7j5MP`^W z6|SgdTeh+Zy5VL~(!22tx>zDR%iaT$xkA+;G7wj=UMYfsK+vW3T-$`k#$X)BV|h?_ zXTl;NI!)g7CwMmd$MoVzd!E*T^}SjmSKHF)z-srYXnMSDH-)2O7x6zS&CSrdv9-AS zGG}LZy?2kke2aQE2%N_u3eSx)z@I;Mtw*I!m$%Rnz|)Jj1_D=PCYz72?Rp&T@S6LN zl7oQ`#Zd7Xxqqgi>Lk@x9a{8;tXNo+nCO020Jr|M&h3LDA z`2gk*TbW502dmnu6fZmR0oaercm>*aTxx9KmFbVYYadud>WYP+p5+ftM&bWv0}_G27gq*{_H$y!hq4Wddv z_mSU{g)#u2{UeHtKK!^w@uhBux_RwbA|vG9BCx`jz?u)A&trVoY^gtaGdb3Y8tZs{ zzyJ;3D#3`FF0Vk(_POxDdY+3*R0P&06HCAh>NxT&68BhUGfota*26AC=6V>;tkP^A zs}9kpc%GL#l_3$Z7dST6cG*a#!SBjw%*;yoi7he z(X?yhS$)>LAmsLmpV1mrFe*O5gcDHEsR%Dr(>7-M7(DERq3q}DAb^D*6^aDo&9gmj z3lEy4>Ap^TLnJaD_{9Na^xeytmta%h4z#g1sli^PCrjL_Ylp7sQ=&BVIm4#j>tO98e-v(3VCb7i*zuCZeLCmPNm*$Mm+e%I>ssW2oe?iV$C8e_`? zqHAtK{K}F6qTVl~bf`*aW`WM$-anCI9kyTcP83>P}a-QN8Zn zkJx%ac~;#sqG1Derf?R5&)ZumEv0d6REjB>`=9-cqt*oE4*&YU*$Z|+B7Fk_t^RF7 zc2j8qM)i?Fy(%E}2>5<$Z>ZMHFS-6k4H4JVQ4PODFyH?2lQ}v*bcqIZ7B|13`Hx>P ze+~^$wzW&mHebt!KE2@!$m0tCd&CIbl$W8OWt+Yy=O5GQgrv7vx6)?O0+T;~gAn=RF9&S;NIZ=Ta@{HpM?$nfCdo|T1mci-X{zmX=-5T_D z-!-y8IY7SZFc+CFc*@@KmGkj2-Sz0;y0rWEO1aABf%}=$emHYSCa6{CFP4AMqm<TH=!(uLX3<9p6&*mMNLZ5KBXd}<7gqgfM_ zAP61DySFS+k<*e3##MWrt^kAd$CB91T;n^}|D0SYmmHRS+w3s+=}*}481p&V_|rq^ zr26;6vfNCow1S?%gIZ*rKA%80eI8D+`3flOPLF}Uk?ExV=~90qV0Ht#$QaDgrbWQ3ptwu4q)LkE5a5R zPW*NFr`wp_dBOs|k9uGFr@i66#mwk7m0d!}3-PnKLcYdcXJy5AnHmuAeqO}$?VJY` zRqWuOvP~K$D@jcOT1)D0i*i%VnhkY_VIeiY#1()&@ggepGUmo(zE@=L#nD;Xlq%4N zm$p7kL5PsTUn7(f2CSdXyy9x)kDT7%!KYm{X?@CrD?X97i}5Nhw0fYVL^)Sy>{Z9( zEQO({;E-+y-Qg!%hu`k5mL>&HgFksc-Acib!c)423yVGqdNgE?Nioh9#fHYqch%C@J_0HlTerAtyP1HdW-LuTC>sHDNO~ zi>~EQPPP-hD5J1QSrDV??{5vt;d?1+Mxq*1DqV`cu?*&?%Cp%aN77=8mhxKd80*;` zn~2GkY@KQdJ4B_$dAgH0wszDCr>Ir)azsPVQiVo&QPuKCyP@zJXXU-E$XuO}%Ova^ zqqXyEOYg-T_`#0TtB~leA>X9Fpsm}54Vps@^U*gdnU5A9G?x&+zb&wDy(LI-&+l2}pA?aWXsOX|~KClM(H_w0SPPp-K z88^799tBlSy;{?OXGCY+NqXbKH#8a%qBGjfX-W7jU+rBjI@U2S zb&ojNICu%2dJ|_b6iUYemE-?E?R{lflx^282nZ5GcZ+lhNOub;ox*@f41#o*bhm(X zcSwjxOP92CcMqk~G5a2UeBSr{_P6WUaqNBUk6**UeP6Y%T5Fx>d1moR=`&7z-#1a@ zJj$((R2ymp)L!HescOSI46q(z8cmk{jKZF-nvNzu16d=K(7daH=6iK(1sYCl)wgO^ zX_PwbaQuq9!U0nUqRMV&M3+k^o_E3PD*+r$kZnz@!vyGq%%5v>28NV!#z|tN4cz>( zYFg(G%DtC!k#MyQ*Cp>GKn|xLNR<#;?C#|J^7ZE@iW%V%z%w11**3Y#-Z}78{Ns+> zRtlttvy!Kc^-Ee(UH(#XGxh1!eJ@kf2XAe;r;eTzc(=O=JWemjnNVA?&<+F=Nb?w0 z6F!#WKVSn~?aE(e){_@ylnW~`9y_3Sdv2C|AmJn};LwwF(!S(0;rACHRq2I*Unf-+ zBQc&fm`$w+SP&W#+f9L}=)KT|`)1V6y=wCi7ou1!2*uopJwjIS9%OZ$yanB6`d{`I?964RTTT5<8#K zk{e&_V;6$yk7NPPj;n1@km*r(#&yRe(m> zdjST9cH+98pWMC1jO`(xg6?z64vnUTwdgk;M>-0PrSrKt&!lL|6|-0tIFAFxYU&v%KVcv1s@d3aGNQFeb4i``A7GI`V*pufsp_lj)iIHVq?x1-;ZF3 z>Y{XU*MKr+Gw<=R>L(#rj+8R3~_D>9m&yV2its|tzsDj`k0<%pMVlzyMLYnaKq=IEFL8(e8OfDqIc>mY2U<6 z1tjXjUZWzQG7}yJkIpoB2fK*8#JFP`JZxa-1UM2x`*oX~`SI>L9}&AL0TAnNlr
    hIm(Tdubt{_?=hPEyAi<}ixgcDUMBO3eg2S+>jtLq%w_F>!!m9c7 z=v=QhIVa|9g(ju@%01{fIr;#dxA{p>F>^*VPc11tiRsxH5EVjf+2^Wi1$0zPhU5CY zV^RI{>;lx2mcT9%F zm=QK0FoT#@fYU_Kbk{M2K#|xH?^1w3QdgN$AVu)vq07K|unvSK6q?^FA*X=aU1>+; zDO{glfomzYXwXsP3#puFIproTSj0bTcwr;Qq6Kvd&f4RLV0X*KUlD~5%{KV(=mjDF>7g^1p`a3HoCh78lJ6I#Yg@q8EezQ zYT}eH7#1kO|G=;^X?*@IyTSs`)^;d=9^Wjw+QuJ$$Gj`#5wR1&PNb^s1CWjwIvW zC&w?!ZTC*DKYiIeDPI=N{SxHfd377H7B;#`huRt{doKIR@`+k&mTyT8CuU6%k>koJp`~@yZnn*)lB{=)zxCp>33AT~T4;ran@bJG zO%A1jf6;WYX#xU{F?2*vzM`LmjcSrz179Ht`+cLAT2XQ2fiuU-Xn&^x#d<9()-G}h zhLeZD^h)j_RmuuyhFYT`p-3%xhe=AsJj6QANm($Tr8Jhg4^Nfpm@?x$&5sS=vr z4P?|(OmzhWAztUjCVM}l6ev>Ri1(c-SPv6d1SdJEQV``z+ij5LOQ-C=82M1az(-sp zEGtpK!T?|TcRMkO?d{G$Glod_h+;MqfZG)@iL>^TefraKyqDiG15(5PJ zpyr`3K|{_3ABnP|X+4g1Y;t-|Q$#`)WP4Q5DuHeQv3by57b>Jhx{c(>JUIXnS@#FA zFKp&!&y$Xpb_=jZDi#8y!J@!mXxRHcGliNz!p};bu!aa6ZS(61{Yv3ZzbL7S2s@qj6luKs?mUjo0FF?jZ8=UyN)Flp z4@pP0fc!5E?`?YswR0=crdZBhwu$oA93}z4H)&U0h}hv!T;u~K< z5UfU)0e(nlK_nwy;WuZLGcbdd6gg5Vk9Xx4)9F7Ix;FGkR3#)geG}R(XA`#57^n(d zRyrC*Zk?`0KjCx?0jb-7e6#M^Wdtc&t%LOggCL&IQ~UKL-=~-X?#BtU1aQuTZLtL7 z(^FbVh^*SPZhPXfZhH@ht?^AU=_g;qDe`rDAcXGC=v$>_Jz~@57YV_vnj7!YbRGo) zFnZc_>f0~jPh)U9Z~^$L=AT>{>|`H`vD`zl^;2%#ekkjIS| zSnXrSjvqU-2zmSr7>4iq|f~hNiU!iHKBL->~-=%N@;OW^k7_ z_xGMmnrmv-Oy5S}G*Vm;t% zk5jWuQ=2Af!0HJ4&Em@fZ`0!%DTtp`Ko@Huz z((FMMRgCvbt7otZK-6`tan1$ctybaG1 zGt4ypk!a70cR+qE5Q*&!Wh}fyoozzHaDQ{*1F`+l+U1i8i-b0;!amucG6rKo=5NIp z4+Fc-T*Y{=lC*5U8~xx0ZrD2VBTB;cpz^CX=QCrMGq9^E6|b|_x&W}q4JXXRXPf6( zqxCi<<~AO7ChoHvGk0=&3Fo1+<-XA#yXE|j+P44Hh~mJ_mc#*r+7HOnfX_YnDGYnu zq@3wBk4*!ha2L5E>)u8VD580t8WD$Q3ZGyfXTe}1V)fDMCk_bxW~wPn)Aeqa5YxRy3p<~TeWEE9gH)vrps;_rdI6Nvl91c8JK zu+k`8A};|>tLP7etxeq2s8rbw178)thWP2gUKoi?uK`zQRn`|;jZ3D`5b#>sM$I!< z#`qksT;|N*a@q5=jM9LN14fS1b}ixAyPN4qKoU5@r^) z0%GX4?y;2Ak%PI?qd9o@Z_MP4EoJ4#Bm{S?kT6^>_sb!1(jjyKY~d^3osuqg!HRi$ zoFy7a3Lbke;#>y^b}*C1nw~RlvI)C=YoJkV+QM{Ze1NvjoX{L8L&At;NG5G}mMf4z zY1*|$F)ArE7Rn}j2QHN`y(C$9Lz{4)1(1`zoLL(@>DnR9;0tH-Md~}O4PgKB5p2`8 z#Ep{WTp0*GSlP=190m8pQs1tuVe;I8WNd23kK6wtU3#hYeIzqTHoE}RM>fK!&6>l+ zmrs8=1^N(&Z*XuAK z#|h4D2v?%V^$5_Pwo&Xvb# z#8RU)?v%#M1f;AA56`tveN>ix8?QFRz*dT%0 zen=yr1K#gwA5K5z<3K)pnnh?)F|XdkV5O+Ll!mCSivP=B^U6+ zjnO_nZY0%ryCYN_y|X1eBC08UPHwTl;r$Xj7Qb+0yL^gUwlPNr9^eX?1Y7|MuBC$! zYWC@PZhjI>vx%^oq6!R4iJ{z*vbU@J8*Fql?tV5=j~kd4dUQ(H(39Wk1XW^K=rmUN zYI*70cG#k=;iar5Y)yd;*8$9-h)GmojaOsg5lJ0sn}H22fwm2JOEtdBk5rAsY`Y&# zQJuMjRuWP8$F7A5K}ZdiMX0L$q^6(W^QOT4K6*f5T-V8UQYmIkXZGB%_TsZ~D3S*O z2uL~F;%e+H$eYQLVeD1YS41di#qE91-Rr(yi#jRzK+4}0e{N3U9_FDEd-2F(*8 z(@!{^1bM!StrPPfdn9(G)j1wBOEY!zXR2LnMysJuRECiGJxWX_lq9<%OE&oUh0zpQ zH~^9rSaX$0Cj~Bn(3VR_xgzbg3AW5Xfrje^c;fGI%;FRIGfjeqEzuyga<(Pg2k$5t zYwQT2nDxx4BTtbppY}eLDByZ99R4z0I%7a*oERh`oZWZ0%8iFy5Pgqg!$j7NP`xKM zMrAS#`F-PSXLXT8g@P-5J&>Da0k>tN5T{%9#~-t^oZ4CrCPdv%c1MvCz5cIM+8S); z9$mQZry3C06Hup{27OEMAP(ZzasE-y?Sit9IIzQ#z$+t1aH-41l0m8tNx%+QbWb`m zK@;Hkk|@njJj;^G6C$Lok@q-5B*#Yf!v$qj%?r*6t*4~xzS$xL5oB0<`AqA{2C7Cz zI~9c-Pn=v)FzZa47{jvFPTwNQ*8~*vHx#SLh$=l9d9}v|w%O5D-TR@XA^JCCj&Yz- zbQ^}+k!s7D8S;FH>y~5snkuKku0z>{R)nl_Np4!tGJ7WWPi))vEu8tnV}SnpF}_RDzQoNY>H6RON(BPROda`Srnz7lN2bh zXZY@V%;E0D#^mPVBEk4J!vm8mL*yApIG`f+m{j$&uFOztlB27g@G+=1HH+=UyRW1| z+l7CPbaSxiXZ!v`Hc;l`imE6I{f;QvNOCs$~?x>a$o2A{&^7g&I>i*n&?bf0gm*%vpQJ4k_en8!laqG~# zQ`c;`^NnjR3zP5z2S71{h7MY%Hz{$?9dO561H|ZzOxDp-3o7b<;7$q@xuyk!ciq)i zo)rYVC9F#-gaO($I3|nsWkx8ip)G&X zaZmtvRq{iIa|e8cl}VCq-2j{*oy^Mlb|V%#W9kgKD0B*lgwlxS+j*1nu7%iVr!0J zlEs_HU-}uNI@xCr6_$$^Z?^zNsKLn=^t}wD5xk+AWFZWVXG@o-fIN^X{!xp507Ktt_Q~+VXVQxz*gnu3HQb4v-T=zl$j;2B@{77t*1j6Zv3e z3$MgVVfd>Fog83JLZ033NyRP6O6UxyJ2SzF5>$)7pwMGVWt?xghVV zf|QY*c9MDf8%&|THd(0%*RQFEU!9jk^nZoszMUmsNGFs`ep-i!xqo=OFI(PE5^Mq3 zI?G3fcN{=Y5^+UPqhMln1`V&Y6C*b7q=FrZilzyR)~=fecqiOo`e74ZY=+A0Sgi}{ z(Ud<&NPjxll$mme9ag&j#CL536b{}-D}zL6ErSaRlt?POOttXUnVr*hc9UUmyBN!k zvm%%G*O&H4G(h;IhT_!(t)!4oajoa`o|iwF%z~s8quIb>m`TzF%4($Z`vz?}E-HiF zq@5^}qU%j%Yx=lOK37Wt9%+-SR9ckTOM|&$WT$Kz7xs^N$sC_AT?#~^W=8#qZa?ne zl;1I2Zg!OQK3!iqXS+KU)o+jTJL`I$vq#>lUKAgsFmGQ%Y!!UEpYxXfanS7;p=8OF zrGmiA^9)2P3}@6poeiwrhuNM9B7R+sdfA}#@%Bqix{&pw?nb2@=e}VYlVhhR61}aI z2G2kC*mFO2B_vSndw5)8B6^+P`chMvf3!SF0Cg0|{&_i}SKRIlo1mXCbI`W=IxhA( zz~QhW+t@G$5BeZ)ZDpgr5ZhGP`%RciDSz)Gh z3RgH_5aD&BE*)c@v~W&}{CfTZQRCyZ#~fkRi+iMqi$UDDkGgifOe+z2O(^$g8E=E+ z^m;(24S#|utpx4FWPBi9LAT46CRMM zw9*s~&br0=ATJ~x;R~A*P#g0ySSl}ny2f;qCNW}1ngPRAtZ^Yb?Qr5x6foEm)Apt? z2&Y0l;scNBehp4X^`E#F=6NEj1}xSFO)|Y^$j$76_3nTs&`#t}1hUgR_pV3QBNB&5 z;D-tTsw)Bz`M;v&|32W}dp>fD>eqcr3atq!;`c`ZZa5zASLjmyS1vC+h`HML3o6H+ z=R=|i<73K-hbf)d_xn8H?%lX^^!x798HB?JPipS?U{V~;322ZgBFg*CgQB}wE1SQm z3-0(d*1Mzh=UZR(QqiTDw}4~>q^;W7LJIi9K6~GY7gpmyp_al+$ncW&;VIawE^7O` zR=3m5^0qubTX$;%Xz!d^cgeM5!6n`^drwzFvDzq#EO>hKLr{JJ05jm+1FJ-m{aUP^ zlI~#EH308bOU{*BsKB#;s*jS zAQ>?GF80fQ3CTCTXW;Vnog$(oeA0pdb*U4@{lncib*3mX#zOB_RUwHVRG)<016gfN z>WxW&(9zb1AZlGs_wHr*%^Xy&uIxU^pGQ76U>eeN7~gA-r`o(<;fS) zd@LngkN&_S``*{kwMS!Gbnhg<0}BAU>tzV&p+Mo9MGA}l2VwX0M9e`!CPd{)1uhSt zD&bH7w08fVqO^bY>-w6;FnHUpNqy$_4j*muYuYBp(j{Nhm2yXJDL-bXd93& zh0vE*B{tApc*?PL#U0Xg=FXR<41?l#gK#=1e+|l%WSCskrX@C0s{u->Z&^@kwpdNK zjTE6i`^A=%G!vm0rNDI8Xks$!)0gGuz3Pw@a;5@xR2R2wyG$T=HGKPF^ljoJ3+X`o zeJH5!1;vLB3C6Gh$jSF6(dPO`NiNK)0VL!ZB3WN^4r{8@9D^Gl6mD%%v|ZwVJqhzA zN6%6hdaQiE#D&c;JHE0^A}(N>iGm%#c>)(+DYQBQbY7j7ozi(r!l#tM0sG>_LB1U& z=shovhjt6gXs~KNg(ejf$=JW5+DFGbBeke{X^W~;B8-q3vG@|5RL!7jtujo)(O!2z zkJ=?(h~}iFnudRMauup)smSNQK7(in5GX_$hQ=GKb5iGhLwIh=U!2zFG<5X6S1-M^ z;j&5)%&lC{O>Ao8hy2LBSm})Rft9*OKnPAp20(g&wt6PDSXio7K%zxVl)mlGsccx_ zDI%&V`;u};LL^dA=Tl^P2~s0a z%w95vL-lY8iqK`_h>L_;2SAa41)noExCF+vnR#Ryi}y8OYI@d|;&bd8Xy41Tq-V5j z=P%L;)jk-^HMP|4A$(NN(ycx|BUt6nShVL+E5yd@*t=bxv9Aq?EQk^VYS=A8tWPs2 zRg!jRM1|${on1Iv3yVICLS1~xMm6a&hmrU2?4-xozA^IWD2Eg|4Fks)Fs|MG+2>KJ zDH#5Su028^MXEf=E(JmRgg4+ZY62(?a5@hBOCuT;RV#S+C*OgfTX^NYIsZvdMOX#ql$p#x#yXIqDSTmT3LJ{&%r{b(KMH3=o)^!iP z&&g2uWfHbrWk*w#VUn$|K-AvjhRck&>gTLVcBbD?fZQ_*0hyAB4;p#%p+)0A?n(9t zm6||s?t8FPTzTxW#THRomU4exQv+ZqA@H@bo?Nv;t-m(FPK3#^rh4KhKj&r)9zbxw z2PA0VbS$n^j~&Ga=C$=)F(RDDUm=AA2r9<@CYAw=l@eV*(O7KWzMhMq>rF|0mgs$e zlBe~`({*}{NfKacD+4$o+<^3sET6l}B7lhEq?dX+;-Vi&P&rApouVd!~KYYsqZ z;LpDa0(gc()edVTO~gFxIOkn zFQK(JtdaDcE_Tn86EqoN-&l-iqu^SeaDU_$a6!*$jT{4^$6NQz+qSkGH)#bY3wv(? zzL#q3aw~3r1~W^cC>O5>!)b4LbYI_neEzFY9Kg5sGY>O0#Kj=_4Ucc8={EM0Lz^@% zu?X2u>mLC8=dTJU1D>v*m;jRC8L%D(otielfIOWjSYNBj$03^Rx7=-Z#qEOhbeHu* zs*58<%6{oVA-)5fsMu6Hj6Awko^19T+0tW#vkuz9Lry73J#*$30y7qM!yw)fb25uU zV>z)jXI+1&a-Kd0MgoduXaaPBN;L^k=Hs81`1zEa8-}@Od z$OS*Gv=AalZxKS#tmeRI99b(-CEHIJHDkmY8PF4Ux)kt?SUqb|lm|X#*va1{*os?gyZ53qcjhEDrD3qjV$XdH(R__0UnVN2-I-@T& zTBzy$1Sn#RzCJ^kf(YWJN`Q>wqbDQ+PI`Ahh}u5ueb0?ZVzt}}>QDw!J)hd&!)udt zNf6Qj3*RjPTNF^9-3Z*t93YvtsvMxf;?DexSpl3W^&yzCq@b#Vw?YvjR?x>pQnunX zg-80t^o^^YZ2?Av8ok)W6PCbJoaY-4seG_eohSm!Zc_2&X8mY}PQMr7fIp>{F0f=E z;dEUJOVb;T5v&i^iu+>66~MV5;PjiXVK#CHPnZ;#4NEji*vWmBPAi7{b_^co=06%zlB^)$l#RrS!yIMRcMS-=gu zIkWoPhk`@)6pLIA#POk^!wtsm-xJ|H9ZA{PL!luqVi0r ? z6@Sw+<8Yb$noY`_I;Q2*#8zR`Rj2%HA>SmyM<><9sTQnspvZpCyC7{@9Sz=9&>;gS z#;5^u(T(0DJ0IG1+(|dXp4Gi?tV5ob@%3)5NEMv$+LQV{T|~D5Y+U4khBH}0&Puqp zo#hCOU%E5sro>*f>N6<~f16)5i;q@Qe44WJscS}V%9#}pTA5lV7%l_$1{@Th7?Nit zVDJP#!aDdHjxKba;-yF>^l<}`zZ*Fqn5Y=;WBx4M_zRllCb(Ow03 zE{lUmU>8#G>@;8|4hni=&e)}K-Mr8MRDyn4r)~zIo^uT3u#G=eoz=KdU&A277Q!iA z1=g{~>%U5&4YaoF;6qw^du^SHC4_#3b*tBO*TQ@iwe{B_bcO0voTCc^F5h z_y=?Kzd$tk|0wU&-&YEFlm9yzwmK;{2U^cyx2?D78=hIPPV;i8(~LscaR4Vje21{p z`TH{BnlN5RDt>iS!w;Yt0ZOpHd*}DTHV}vCPp%-QE8sAJ575Iuclp)mUnCt;x_=lX zA1|o=9?^)uD=iF{aRzq7znQ`8_Oe?MR-(20KbFz0HS|GhAF0vvHFs@-rL2Zcp&1 zx%#gf#cG};?_{$RGu>}^r%R3u*a`3h%N{+IH92T8l}7lU1SBn;j{VJ5482~*7J9Yb?*eg zHsyz|adqY+0WU>qac+yGtiavtw&p?NLVCX+pGcJ!rway&c63-)8lGp)RC_bDB$QxP zCcWO<<8Lf$IF`Sgta04;fA-Z2v@3)4LSrs;ybsL<= zhd{(HyqKA+R_l#wJqnztuA#*FjTr!l-GTlEZ2O!?_BhWp^L8ok`}rP2jP~3)NgkPZ zQRk!;zkYU1YRc@3W)H)I5>P8r&hnm(TWdehF6Ae9tBn7QXHvZ~3obQh`es=#{pgxbb ztWW7UR~!=3r#O0br!vGjt2ce9cEK@zG-w*e=0f!K_VA$jna*c>`8yr|81#J)m+xz5 z;;i+tyQF2?ldAj;NCUNoRKm*}p;opIzzj_P<52;a6xa5(&ve3fgA}j!Y`fVAzVNOX zpNc|3A8R6JcB>*-g=^MFx?Op7bXZpwr;CYxDiO=FjTmw+bg@ve|7fqgZL=?A_(1+` z=%bw_>W>ct$&@t)uJD%Z|J{-RR+OpJw`%$CZ6Y?^K9~{1((4&&%Iwn3An|sNAz)|= z53%NUnAWuD>>{6mt)*_J_ocja%wzHm^Mghp(GXCY5u;ZB^8*msD7Z6uV8%ruOX&|@m`CcgqwpBS>vaDH8D*wvh z3ZbSiq?Q~!$1{5{&MpJaGn=N=B`@9og`uALLqoXozPNTvOYb6Yvlfum+8?-HG>2Yd zJgwDFBjG-m4v@EM9&B(k4C8^ccGMoVHGZ@DwYL1@@v~(1)55Y&-nqy{@%CZ|*jyx~ zXeYrB@k)|py@5Qdt3F+I_LlbO3!VBNN;kJOuCY1;TX=V0|J~h5FZ2w*$_#m&@tJ7q zDQgD`rv;`7LtnMs306p$7oG>`{q1C;gH%zOp-=lzaU8_o zh?QtlAKc{WRTOH9IOi~u#q6sk`J959rx=b_{&l2|4ON8$0i?gQ|1*d)U_KKWvs#AJ z&XntwSemfK#M`$`FMMqG9)`&0T?IB7#R={37gnhAG<%?)=`H&1+rX=o@uy0j?Ot)N zO7oF>E*8HQJ{M0IeCGF{=jzkF}`bY6z{LS4n-l+R6bIfhf_11pA1CBvI8VMJ^;qIt|5}MOwBc3IA!nnM=J$;FLu}~G(<9;5dVE;`mLSd z;;_(#Lqst;)-trxIzwI~< zC13E{`Z~h8Wp;LC`)^(rzWdJUGaLT(`*q%nR|;U(;Q~urmU;QRnBj^^^8_^KmUZz4 zqXjIrvyCcKbH!uP!o!^_zaR|FvNP{-u^kXJd0*GX1;oDu?@^LJJ^JgcssH!h9|+&( z|FQA^51dy1r>QyrblU&*=d%B3>Hk*Jf)RiZ{~SgXmaaVKO$3}~{~;n3SHTo16U}-c z22Wj&>IJd42vF}u_&_VQ0lpn`!^JiyD zFP(rYRElf*E|u z{vq)FRYTlO4cP7?_T5jIl;OpQ&qBr?yvhvTX#K~t8Q}}gW7hC~4E^UW=*1HXIl5bc z<@b`n_$J_uJ8Fg%W#Fn6wa*SyHH_!ZvjL^x{Bvi<&{x97LXfj=$cc?^#or3>SKfW@ zS*X;JJ}CeFp*mk;^CSj1#5~ zAX01en4ClBKkE$w_uCk;eEn?54)h%$crrG7qFcK6LU+J=d-+O07cG--ov8x^U$TJk z$X{SYV8GNiZn58fQbp#hBV`%t^^pb`VR6>d4R8rU`>ehBG{I4IMk90$?pJyE&($50)oSv| z2&>3@Kh{@2bTQ%MQOCO6t94|WCfQvcCa_7XDDm8%(o_>UaZy_Y2U4_$rfZNiV1zh! zVBlCL8Co7D6t`$UTI)4crLK3H~4R3D^Ji`u=0 zPQj)A3~1R@=2hgwaUShdd>CUfD_-7eC^$yw67CEDYDjZGt=t z#1CLCaxnKu3-_kmgD%412-94XXmYcnObtl}7xQrn>K`=Pxs$^nVbJ%hBzzOda_;nc z_OjB(!uT%689TT8?cFEG-QBDfbI!Bwk&UwIyPsWyN=3b%{fy1c=ej-~NllLq?;#8& z({jhNw4*jY2@)3{tLiZunG(5L)ZGmh5L)?SJ3_K;AR#X3B zMWcAnmK$^G(Zx@PSLu`IQKxU(uW1}z4ld=?4PoEL#l5SZLHkkrevZqn(QuM{SKltn z_;PA?n^$Di6RAFv+z19WEo1Hv3<*w8?k8a25|Fy}k3Qs;ltkS{~>%n}z_Q&5M z;|`8ygCJ{NKT^k}jf9|w-8Bs(w6u7T?&0Q_cXc;Qm#JKIDkI$sSsL=t$lC_0-j;2z z3tf@Q<*?h9w_?`f5UTCYjpv@CwsW1Gmu}PoqFI7?y)EK==|3!^`6nF20Sj%bxXxB<0qHGHPDD z-qQ}pyhX6O4yrHtKbJg9B%Xo%aPgzKut}E_?*5{L?el2Tr0(8Fhx6;bChuVNh%}@; zGUn>^7ZOQ@#{fd&+$SnRobu5_E?E&_6PYj9>##1R+j%s79$xc}i}MxzrX&CVwOVgi)-NOF;+ad$PSob=}J zfaC#K{e-yj_jyc&cU;n@3|ju!POs6A(tIu_kM53dm)AJB#G8NSskVN(B`mAnUcS4% z9#Hy7Q+LFTz|?~om!kPVY_x#+hTw9@=jM{Lt`*E87j63%Hhu9V-Up9v%IDk&b`2fT z?)P8#Hx)jLRH-FHzFXA{~mz< z`077;;{RcrxR8K7KsfFKK;OD89pL|eOuBv;APT-as9T<5tRyP(I-7+Ud7o-|zs0t% ztv44@q1Zl^rrHQrSv9g7>ioS<)$Pr4(UJYU z(aSzQTx@#Layr#O0y#~N(+Rb{REPCQg^D(ipf)(Tzy$Hq$-hrJE%9em_B_w3m>4@) z@Yh^!@|}!Z9rCPu-PF zdJ3GQ11#!2xvsa~B-ONzh|ZcWf4<3+KVt38tkD?huAg&H7l#sfoa7$iz49>N-S2WJVU_B|?W982JJXFss?;_T5S<->;>faFPEs2*a8U4XKwk%I8mCo7x7i zby3j{7adq_MR~NG_eOm`$R9A%FnXlCJ5*hBL~`#qHwLpwga$g`<9y>e_#$h~jvlFv6`q8YmWB<^`3HZpT3=PZWbO1JP)E!q!;p>b{m2c$3 zb)>_h2*-#6YsIH-_w zpR?s^9{#{2vJ>5-TYDR9gzdX8=1axY+2`9HM@Lp?VJFqZBftU3%i}~h%+Xf=&en(@ z;i7oJXQMGR>1w(}^3TYe*cMxO>3<%xKmG&;jk#=pev{#-V$*jTE35(S@4m?hjK%Vx z0-T|1=(m+)Uio4Ln++w@%w0vdpS*__7O-6oW3U=Xu9k=GV_EH&zw`;32QJ~0ulc(V z&5&ko1-q4GZR7zZyG3107WssUbgx}TOwjy3-<%6wzZPQ&juN`(JMAv?x;cZC?swzs zlepGT*Q`!|y1qtO$s1N!e?COg{(GXdM3Pby8KvKZmAvdhSYaGcSpV?nZ;}YUS=$4g ztzK3fXmGg?^lHM3D!9zxvDeeiyz8=rI1HmLeStI^)GErSbx0&K{J5!O z8#(^(n1Hbi{%^aBvY{J^wDS}3@1`ieoy>TV!d>Nz0!81Zy>v%*PiML3|9eTnz+Lu= zyPdNuDgAYwGG5x@j+ahbyIH#0ySUpsJCSI&A7sbtl*H@u&MscA_O^EJq*pX`C-Lge zf3Lb)Um)Ikz}^0mHR;46&363FcH(bzoo(DbF1T8gOk6gIw^RMQxV@XD;|09cm6ZQ6 zHw-UtBVImt!PUv$$(Hnyc_SRPw5*=zld&!jPd$Z|sp-juvFGRZY`ZSAZ9nVnZQMt1-{QZ0 zfcMaW7YEMrNO7M%t+z#1CY^WN=DW(13U|MeHf`P>e>i3FUB~)*xJRSF!R;sL*oNIq zT&x$L#K%hdG)zSL3{@{JJqxW;>EF_}aceM3^1I_!*ssI9~&25rH-hXGnmcP zOW(r~67=cQr>e(Ufq`V3Hf=Kg;69Q)M74{BMcvo;R6#*O*aT7AKZfL5&!e_JxwO_-;cZ26(Ti1kZv4^qzRI{UT;(3kS8_rY}<_k+iqy> z6lS8v_4U$qw%Xd-4!DZr+9_#iZsR{rG&eW1a+@@fcHP|A9m;g#Vab12TN-|8kbNlA zDDRnl%X3d3pX4SxE#9bVE1^1@<2E_5V`Gl|CLcbnudRrC%?$XZ3NVpwOi9aS>L=^n zRWl+kv7T-vwC}=&3q^nbWGpQ$nF}*z8ywL|E&c89JDh z@1NvJlxSl(;$d(=d0}HCr|SY+!Pv$m*S7Lxn>?fJt`ToK;(7bhQ(GNITGD97JM*h- za=I>`<@Kq~>Tpy{()#*LfogSaZF#ziP2BJAoXIS2&ZYwq*CRBvZPvORw}#Z;Qq*2J zWl`L5tHzNwl=Q##;||nGAL#Pv84O}HJs>Sz`pH*ng_}gTu+A5yI^bH6dsI}EF(4p7 zF_futZlvYT-Mb&${8ObazU%9MZZS*>;QjDIwaa>A-gjqL^>B+;mJlslw)ma1O2n`*ka2%3Cwzfkj# z!+OZjX7xU`VE2Wc*J>;(T%%jbCxwH0opOzimX(!NTUGW4ZzdyavJ-B$EHKuX|I<1> zH^<1|OPg zX+4n%=q}pRmS{fP}hql*e0?DaU0wyLV7ULV*%mV7w1d8XhtS@_bq-n&Te9`(R zSXC*lMLWml49ougYF!hfqiVQgHQzMs!0P#$L04ZtKkanYum$cfjg2(6w!>9gF9QHK=#!w^Co3pqKt+qZ9Vt<5<&qUc5%(NJ8-v5cEicbzNPI6# z_`!UAd1=W7!F$sE_W?;pI=W9CIkx+bS=^j69{-Vt6LA=U@4GhNrXGKCzGT+b)%BUj zWVe{Oc$8YlBu8nn&*IyF4Sx~m?z(rEI>qqz#DI12lkpR;vjWzahYjDDZ$iNI&kWWM z>c76fUqUC#v^ZFmotyji(ev-#_$)fTbL#q16TyXppeY{p#_?>1zV+fnSJBe15Sa@{ z;sXOK{L=cz$Ln#sVxCh6;zXSvNhJr{v+&YU<{FKYm9A@hZmccd!L!yrI_lWHNu?|J?DbFe-34Sp~w5p;RI#S4J>1SZ|}AIe2?tb>rY+2 zeXOhu!gD-|ozz`Xi+S)s#@Lu8t7wMue7@6GO1=^e4UL;YLDQ}0%rCpI zMMWDMPTU%Ao2#|0t*(~Vl$O1Etk70bQPBjy1;aUS$@)0afFq0!?(V{}va-!vg)e?T zf?_~Mv9oAc7(ZP6{;I62E50FK!fkfw%#$Zie*efDm7mwpd@OtiDXS?}Et*0jxyZ}Y zlZcwX3*&tAw{5MhyF5;Ibad?9aVwa&_D^euVZKwBWa{kNVvpOzPw|qqh0Z;lW0T3w zJtcKd#3Pu#JNIyz(DfZlH!VIH!f^E0 zKuyFev(kjC<3Eo1EI2;bi2u@E>{ELpE5FA-PBxG{{Lv%*KOV)E7D;kJlz7mfGjSqO z7rV9EN9M4Y;W07QU!wSUxVb-;m2E0EZA3(Vk(8DwFmCvChj#n+?R}ljrKvcyb#bC$ z{%e1C)6&jX&-iH>Win*68jbnrCpYzC7wc{KM1)?pj8r!^3QR8|rb5o@a|#Qtu2dIcSwJy-sG zD{~Za8)@bsGNr8SrjzmapFTZ+qAGs**UiY1;9!cQM!7Pa5#f&?-)*uxa&=R#UDIYw zO-+Gn#akT|*!z8=rlo+@Bq8v=nAS^-{>xr)6YR z^7Qn)vuK-bpscQb_{0hNYxI2j<|1*1?;Q8xom?kRGF?MX`!zPEZeek#>i+&@1jDy1 zGd2neiobIs6|YSSl~q*_A(dfwEwT;7+<)(ijg8eY&;#H>IHW#(dJWIQWG4H-m$9({(tUe!iF0(%L0ZvUCVL0KD@cI$B9p_3m6jdaJ`@QRjyF z(Y6pj?b5|=pKmX;18oz$6d#L4JbwJ;XMtO)-_NctFXSw3Zo1QoimroS=%2*Lr<;{Z z;f|4FX*2a}({y}CN}k<}c&@h8ipS*0lgG|DI-u4?L`qenyKgLiIH&c2tXnW&i2s)KAsJafzQGucL& zET=plV4V{J*1d?;%g+}*mt|_bvA$NxyNslnn=1@Z38dAxGFck^j+#mMwq@1*q*jO2 z(ISh=yTBoPgXGF8Ll_I(NA{?uKE&$Wx_NU8wry&9y01A^t=WOnwcrWj8s*`PsVOVP zPL>D$yW->H?K|Fb@J8K5DZPPF3_;sm8W3>O zW8xl;d&ape{)M=6rbR_XcHdv^b1qrtw70h(>&T%%atmhjudWVfuaztfo*v6-ocWWH z_3QWV>b{C#!#oH2tdhUH@h7hw5*Odc#>VFA=0?B_I!;3^Eg2jzRDKRrWH$e$>nO%K z02K&guhGo>ls5nAO2*TtPYYi8qj&P^*zJ0o{=sOoAtYD?_i^)&B!nk%Xi+0^UWr^I zwK^pa#PB)xxUB&`7^g4=QHwM$7rCC5yJ%NKwwpNcE({HT#=X*@9n*=nktv1HHDja7!$LNZk^nBriSbH zy!ZDkGfmW2cEx)i9r7%MnU)FU(EjG&+R7pq2S*Sfrpr*>zL$FGH{_Dcf8^Syq@&| zsG&M9Ee|JdG5{vSmd*Wc3dF{=6#ICTS5%~HC2huo_s4s5UqE8k%g_&%USA?Z1pujX zxq9_;Q&aej8=Jv{+=lA<=G)AMaTb@Bmv^(VX(BZe*Z_bo1u+I*g2zb<&ejT09z0}EY?%cUsG;A8DPj5k@vRz+Y#@Z3b!qru1|4H|!$jpvCCGptk-oZfy zAnc|7Flo>JP|>e;!oIWhqDAX}M^7s$C2MiNFewx%UH{8R0-Cq|d~Y9do#A06Jv}-} zpM?|z;Sr)fYIy%GUNcaEb+&N$}47O9<}jhKA>; z|38boBF>rlMIpsJ;y3vcB2ZEdw1aHvKK>(0C4w_NHns+tg+>PGWC`bDYH@KmGr!y7 z_tzwR{DJ7&ebWA?s2KSNiWj?+v0{2J^|mKBRlm7VK?Et#hOlG%uH+`=id)njZ>_1o zn{~)!_@i5ZYuE9hLbmniUK_^(c<%$;Qs<;KH8m}o{>%(koMTzF6Obyn!;uqN7)e%6 zUY^KFs1((Mu0)E6IcE6+r2~-X5EmB(eqZSL@saLg3B-{(lIPF&mjgkSj`^=HDSaos zi7o|N0g^zuZE9-5Z9O1L+ORtAYQ0$EkyVLT_;9*Wq zi#(&t?(Qi7bf6PaK-{z}EOl9>>vxe^P#KWibF6CiNG%W05^#axsL^Qz<>kwlFHCk9 zuL9M*|L{QvbZaMzm<(tIai3AVXUm(Kc5`uYH6%)#z1s9tC;h$u+DU+clz@$OFgrRd zT<5z>=|*|H1SMtjo7;_~i{vqjO7pDM;aFU~-YbJ}l*-F}iw9zrQ~LFo{b0fpcYkw92`3O%XQ=-9^O9 z%gfW-`yn_RVCsu=SqXGbX?ncrfUV)-;qHIF-PyVSq_XJ4eUje7$x2}i)YmpHBl&sH z{{dDVvuFg|jYo;^?d#KiJ$$Xw;-HjN$!S|TZ4?kJ;G^>iS_bw^C*8RVJtl3iFQ-<< za)j-^l2GIDU^NIiuh}7Nvj5+aG}n6O1EQkQ2jy=)c=U)<(sokJ>jw@}jzuLUlZc}- zj=uPnKXgQ9Cl*%Az~fJy5C(}d)7>eQ**ckez!X34$Sb{|GqvFhXQG&dco!{w7gEV6qC22SVL)GKRfaGp4k_idNNit}Z|q`_2Cl9iAvwf^^n`p-RQ z&RV?9(%D&MNhKC%XFgkL{OaAWkhN-S^SrX4!}5Kuax`{01vuuq$%@p#*8KeZuMDzp zVC%m=l_dj6xCN@Jbf0C@M{_~C(GJkYxyhbHuP|20Y8cdkk4m0`{;P$7`=Gmv0-qbL~}8NuHKil#Or zIFZl3=GbZ?Hma9rho=`8mH4AAvkfNx`k&#X#br@L2!uhDjIT*#+1c4U_MeQz8F~Wp zM(})m2=IBOO-}aJaU=irW!sXCbsyAs!2d0PCH(+IcEU^u)2i>8=SNyI7;B>is@mG3 z|IUvRNC3A>)Ci&o;uy;GO??Mnt9>HwwgfG0dUm$IJ=^lsY~67JQ~?7a0me%CdEZG$ z0lj?IHX18rO-aDO7ENjEk>*rrg~vT6jEUPAYD^3Z3!_P_mRDkLphC7WCwumaysg;Hv5FEwy_1Q9=m`4KJkmY z*%h?_A`h{%6UQJ{!h`?Pk6Z$1V`aeqKY|Lj7r1dDfmeVS;xK*%WyeQcN1o-20#}&^=|w42@%Jwg zegfLD3;<=2ZLt-SjWq&7*uMEDKuk-D3hjLs@$xFR0OMbh0J4DQ(yLQsxIn6P?IR$~ zV89k=HLUhGWud-lX?o19%n7o}QkLGq@F{6tPHvBVun6VUFEJ zv7bJj{*mw8_}031uZZJbtPr6HB6n;MgjBT0Hv+{X=+&zu&{$$bE;03g4z6 z;%?|(>7xYuG4<@*YGG-as@(vHSdmhHcg+N3A2L@Ke&1-S1zOJ^h& zCL~q2sb1NJC*ou>5YuqlK<@4t=GZ`MQpEmV8T~#;1Qs42i1-mQ9-(nzy+2NL6?Wv> z)AH%RGG7?$Skzk%F5k5|Q(q0I8_7m4qjd&o_?b?+i;K$vNl6n2_5XSwfQfp*jZodE zeq7Ajq}->DyLkUz%zkGj^vasrS^|p_?F}6M-Me>h`Z!n{UEtEU8J!-W7IG-0-To_= zh<~9#d=tFv>Iw)63b>S1x4bz+Khpw-W(S+p6N1tKdZH|yHa9;&U~mJk{f^X=tz+{hkRhL$JOQzm=)^`KT`z z&fkcWo`j+YGEJNb1SoU>;CDL8t*C}URE$zur`Fd{_AF6h!GbkUrrlFyhg^yt*Bif; zt0dq>1u%VNxD;$WfmxtUZ+?Tc)Q}*_m-&G`q9$cG>$TF2b!HSuqkN|`#oqIKPdG$= zyS4%@P~f{P1QEHi{5Dphrlw{U%#1{^^l#tv{flvT-m;)#_=h+;z|Tyv>WVTlB&Zq+Nm>YNl(}HN?>zw<@tkKKlY*rG641Bx z<=G0zk%48`6qEbVBA~H*@8dcY;{mb*LxTp9Sl7NfqohnfgzSLBUfp+^?26L1@=sKOSBM3ypTeRM z*8)R_tf>fcjdJzAuuvDW7f#N(*UOIxW{UlKi%mfnVzqj@89^C`u{eZCM^9ggQ#U<7Pn=Oaskz|Z_gEeDa`r%xdIs#ecL%xsfHKiV z$Vqu?0V6-+kVSOM-g2B z1Z4Fpd?*t9Cx^T}%*<*KA?#XT(gPG8=2dGCLQ^t}Kj;10`i2 z6q6vt>!-X?st6j@RGr6y7Q+)0_X7h1h3^b32=Im~214XGemsJfOXF*rCL20g`$U~s z2z3UVBkb_)HmDI$*mf$aWS_+e^@LNgK%p(EYK+K3XP@26KljwkZ~iPYu9!Gyi8`Xh@aug)x6L(`H&u^2NK6Hy70J_zD-4i|G?p!@h-Gf@M=DWMiX zw?#bQg$A6?@ER-ZFjPDcLG#$l?h4WKxdF@V9eni*h>_KrZ|sP>FhN3WNE4mQfPf$~IDG;TV|^h1n$_uj6t;uW#4aTHNo=A)w= zaZYZ!ZOlKMkyY{wM;%Azf-n=LzpMo}hV{uGeBO%{o#!Op7q4n9 zc?p=6JVDU7{rSd&^;bgv%v2dcx-r=TxP08>5tDmzU-BV;gB zC;e`G6^iKq0DH4n1n?nf5w!8j1wQZfF8`z3HadU){Q3K5!Eshr)+2^*x5R4%t8=m+ zJa`>qbJWUW2(pcsSPTf6MNY>Hw9B%`0k;vU5#iz5ua`j+qD3zKn8MA2LQ)$W8!rKN zq7o7U983y#fY2f7m7y>Vdo=Z#+4(_aZ)mpc|r`vHYp3$_=^#37JUDXW9ten#xcE4)a+S5~S_N{EQO z`^g|yP+a0*D-xHga27&KBQkD^cVeppA=!cjsImW9Sl)CMA~^O+X!v8K6@Qvao^p)4WkM zhAI*$_`Gwm0$MI&et(5eT>KvSD{wrD8XQScksJ-LqUE7Du$?`z>YoW31m%r~dV?cBKRL*or?XVtG^_~#gDlT zC_`VkbN~M5j*eI?YmRj-gN22~`zxaiScz!PkUXFs6Y;v^Gx`BjqOPy05z&tWiZ%CYI*4?G&ixG8Z zReN;gAT}Lmc=z7D+$XG#GEhZup817if>cXr`bbArIE3x_&TNR>K}aqssi|lUGy3}a z5+V`Q9GyW!&WNsQx1-$LPmyNe@xYSny?Sfx-b27x+#$lkb1>>0Ddi$LCD&A1N{Y+E znBmKFSsI`%ME6N`%r@XiL=AdROMm~mjMudpOtsXXdz`E3NtUwI#C!JTgM~TBD8U)oc8%w8@&=~lp!_l$hZ4k74Iv>0=&+(-Q40B}indpPJ8zyt&KEY#UffQhO z2T0JdB6(|pmIpg@OhSSXkBMf|(4sjhaqZ=VsdsJhi<4MJM2mp5UHA7z9FI1Lsm&GU;qgx04_)oSSWGq z8y<3~z0gi3=R5bB=#WR$oJJmqIc~cXa?=Ie1|)spQT9xJJ?Jp64p{~`FC^SRI*cU{ zIk*@hv7li?a-vLUJOcw)q@Z~YZ6ETQ+@E8Gm;1?yWaB6j5fyc%@t`FQI}gtt zR7cg~8gyQP)M$6_*8cSbOc2hxDQp}1wT$blvzpBYVEl!=&UaAF%m^cb(wnMN2EaHj}P-u(;#2txQ!(9_5xOfQ< zArcd9lSCW$sk}=ZEc>$sNknl zqW*v(1S9q6@rwpCp2B4bQ3ruifNesq`-NB^eC%wG^uT`f)OJgG`NpEVDkZ~mz+ zp03V($@|(%&wwyAjf@`We!LxTlu2~hh~5u3-Q7LOTPTAzL(jt_rV4(4cCc#Uueo7c z!o4toM?&Pz6^$m9(=;!8Cyo9N#G9O(Y4JI9+b^OJTVb9N3-djIyk zShO&=^vdf=sq@2`NA`o z9+3mLKuV3kLaV(~fWX2q-gvE?o^dR@1|nk0^XI^>DT4P9P3f*i(8!>Fz#F5ZnO3|R z{*!yqH-KqTw|Nx5c61mrkr&0Qrk2;%s!^KU4hi9V*M)n52?i<#3U_7s)3M1`b3r&B zj$}HI4i5*{SRrD_&>|yxxp>&JGTD<{h$;Z;$_Z;weo(Z)+~!8;;g!|Bf}hqP}T`68y~)>&RNmZ z!v;T{y7~_24mgSUTSk6kb2t~CNOUdpBauXliQeBcROQz12|YK+rS3`3!*8W@PXIn&S~cb{iTRnw42y z+NvNuI!~5Q{)~*I12u%G2(5xq!ugb>WYg%pPVntDBV~1U-@_3yK}yNs7%)(eCzQ|- z*{96>DRLT3yfa*iDXA|f6;R>rdrH>i1p-ETdu3!~KKgZKC8JWS!w?5xLx|~3=x ztan!INs*#J!ANhA(PO^#uRAvb3J_@@Z$Z2u)saE}g7&;D(O|girbIy^xeP?f+xPGD zNALc$a*6cY{ex?4>D&Qo68G5lO!PW)pP87NBHdO?tCKxNxd+6HD!4fpf1CUoY1gh@ zA8ix;IJ-X9HL%`sNxM_Na5nmGgS?xos|A+fh-uOLZ*4GJb&GFN<`9sOPc{C$Uxe)E zmBIt3c0x+}g$8>+)VGbq%vEV>2$FL$(g_<>I2N8GsnNfiQ>lQ`QR@h{c;`#$RC_y@ zh1B*1(^{@di)^~{O%s=W9#)wy_3Wahtw1Il=_w7kLr*gauLdLYegH<}0@on0i}Cwe zh5d(n9RulYgPYHVRUbDxX5csw_r=tt+%sCG{Kk|RQ2`)?{<&W6aMQ;!r^60AU3xVy z76q7g&z?h>yR^UWDfnl1e~hL51%m<_Bv531p7!VhMk3Cs7>*n`eth=+%A;g!T_NIL53IW3yrOCU37X5uw{%*lSWy$l-B+kJt%dd>aieho z0fcDfudhs|c6+=O_An*a^P-7b+KV%9z4}kCJ@1x!}`z5?KE#^I{ z?N=K4g5^s=wMUXG$$CUBg!11KbBl^D-Z^6WAR=P+^w8W-|G=s$9xkroJFhGjQtszX zHC_;jL&KukPaw>Pi!)+7$F%m~qh3kviwBRgvYcXbE-BxTirBjGMM`ge(W{wbHzpbE zFrdKU z8@S$qT}GI6GcBx=(rfEIw$5Ot>-6H6kL=O=!ezqy@6tEZ9vky>;o9H^<~be2afG~s zHVQoz1-O3S$jpY%y7cnW(bcu0y(gVm4ZXaz?&|&vxGhOXTnkv>(*<3?XveqLCUHoy zDxuc~1_m}d7q>ss-E}vo)8{&k@4LJZY zOAut3Ye+x^xC`dMvIFCMig@f`Bb9+lX41DyyS8{j@bx0<9kMwv+MV81C}q+#?Z zYi*^6kK*Z@qyxmN%4b?MF0lKa2-t6ShE+N6^NE9enn%cZ|82TU*em^u>5UzZ8;m*! zi8oi)$65v-idm@VwekIt_&4;ToJNV=mj41Il9t#?DJKmUak?_wp4Bgm{VPpRF9_1b zB)F&lcPr~$w^crtw^Wh8KY4jzGRN0KguUg34F4_Ce}DZY(2lfCQ-D$FkcLvA`p%ty z%B|&yK_b~*H-irmA75)jMp3`9cJ#jwJSBXL;{TfkBIbf7BH&|zI=i&w35g1*rymd& z6^`+|#i(qialu2djsg}{BOREA(H99jJU){PGKNWwSuT@%I+ayb$3gA@;5I>9gk>VS z)>eS{tT5un%Kh%bTZv2qY5yyFct-CWRZvd6Hr5u8F@@5^uR}F!&$ZVTkIYTkPRseV z$ZIyOu=XV%71< z$L*UBqg}FPwWn+Go5Q?(+T_5%P1RKI-|ng{kPo0l_?u-R*IPo2nj7zohWI7@(6vh= zt)*{hXu)9SgBcnX9v&W%U&^x@(cYQr*;r>}V@u>R79tk(y(n>(X=GA$v_bJ!UaR*| z#f~){_4@Jd(s}&rW0nPD8ZjvW=)JZ(>QACVst!G~EMdn*sqw$Tv4^RO$R zTWlw+0K^PRI!sHbPh4nqf?f$(Rqq;@`4tYRzqlVZ<6YG4JfOFi!{F~h1#NUJgzme5{K zf`Wd;;LWvr_jcR}3|yY7plKR$M<*%~uR{VSgszS^7sy~LBJ?NglEp;-zjx40Ai)?| z1M}RrZQDqcN~$&uPgLLt#H>@uYCM0AWPr||hR^Ge-UqS!K$Q>Ap2?HHO2q>8(Vw#45 z-}rW`LuF4-B0>jMC{^(z$}8kKLi|xRJK>ZHle8f&PJ!AGG6J9irY{`uRQ_s`xRi zJ|Jg0e0_<&Gut6MMlRIU*QbI*ug^`M4hr;=Mnes|^zfRa91AcP>?Ya}aSIYV=rj_oWLS|@?Zw5!cCoQFN=z2XLkWXAdstF39@zlSjCG4a8ft0| zh=|CgM8^&DI|MMD^Fsdujwd;Q3V0v!jD#Z(u;)nXEX-g+-g9;(D-#lMXkb!;L|B}_ z^`S)*lOj-dEI-}ejZ&a|!3f<`T21P(F6-6}$!!B+{#4JGM~HYZp7|hD#!(Lojk;)6gqI8Gy+G=V%rH zi46X|GF+|$8U$LmWKUsG@r4uGcdCp6+kfY@MFCbo#k0)|2tC+h1Id zh@eFl^R#I<8iM=(-`a(t5OA@6_pH#DG}31AUxPd%wY)- zc4819ZOl#(y&KPk4qN0+YgS7l$8ytHY#~Y#PPk3ZG5F4qBKg*+sHh?qpfe3&d@GW7 zgVZRw$O0j+`Oh)1A1)&8;6>OzVfJASsXQbZjW!N~nEmYfCNR~$TJ{^)(gDMJID$DPWlWDF_Q>+8A@(McL*kgzH{@`qd`=T+!AtjJ;`M-3Gxo= z++fJ;cNNb-XYhnU9-4g zq%bn?4U=)|7ik&H527;xBZhL71GGq;K{iTeZ?tWTEbU?ms2E9cZ1aI_i#4n(T}57Q zuweuVEndEQm4D$0avARelw}BDur`M7$!c}TtK{v327*q(qxP)dFOOsN1Z|&aBL+ki z5_PSwv_eJbQ^8XToDuXH2YNz*7I=8l4YvMhXlbFv&{Pl~W+#Q2&fIA`e}n;)U2CuD z;Naj{3%Ohnc}y9>mM8 z*};>=@veh!QK8nwCt<--H@Do(r~pLbe?w*%4G{9F)z#5)xpHMIW&aXH@iTC(5>8}7 z#5`_O$9=i+R_CmnyZez7ek&^l5rzA8qg2m2kkw-N_{1e5tUV3>L5JT9rei+VU=Hbe z#8D?YPwfkfJpqh98kzdh?KG6<=FobkCSia3p%z2EV(8@J=f97N05QJ64E^<-4&!I% z3b`?Ei<6b|Chi$VBf=sgbkmdfS|h_6m-xmKz}&|l*C22%tkX;<98SZ{kMSLT?QZCM zY6lJBwoHRgO85#PeDqCBXjoYtM%TsTh&&z*Z8A;{j@0&9!py+WKan)COq>mvK#YGa zKcju}Z%$o%H#JtBgscjqDDD3JXJGV4ON&Z$ef=X(NZtz7M_2qK)+xLV0!Rl_8mW4bo$}c%&(r0^kKU z@DLRE*)M!qQ!x4y?VzV`u50HGcRGqh?-hR&-O?R0jv2h*U)-`KjXlc(PWGF{qc%R^74wAc^SiE*^6B)+p zY*ESZG_W@k(<7*@DOw2-)AyX>18!{k`c(#~gn*VXERl-ln$;jHh9Y))abO@D!6NW{ zR|e^Ek;t0h%$xZ5{eW{rnBcJmu!SPJ2f`-0KS0uff+YANK6ZAV7c_Ide7T^}SCum& zkGlo3CoxAtID!HEA1EKb$13@lNB22K2tCX??qUyb-(G#Byp3tT_VedMhXS@Z=+*fS zi%UHgpY|w5B9_h6hs-*eGrur5cbYe<`Rmtfdc2pi%f35`wBTo*^dikNq;tsuwTy|9tO?8#lbD3u5i zThL(Bi;N6;P$djz=e*{HDTM7yJ-BY*=$D~REF zd3m7HIBVyP-2~7%x^;^j3PnOfg7o9(&z^10={VxJa5h~}PFz@67@=YGigL9*5Bjq5 z;XQvwN4FZzdrRV;FnfP^Pfge(d$+EQH|keT?!R*73Q#=II1mUwAQke)n$`0E7Hx0+ zPA>nQ7@R{QsH7+D4yRDyjaq*e`?>gw*>MpO5ovEsz{`hRzhTVpe8G%ATzLy^M569$ z9KJ1JqsHy()vHJALj2YH*3ySp`pkc&VQUcKs{_ky-by!~pN;aF^vb#?eede3CFF<= zt7~sz~{>3TY6&sKsS zW7c4?a{sP>r*t`UdETh7dz%n*g6FS;e;4m6s2b(OnHZ47arsHE>Tr;wiNJW706 zMOW7v*BRZ@>oM;O3NC|3!5niNSQPsKRD%rJVi9)hU%*vQmI=_14$CC7Y6^&o@CT6D za``kQG?-8IioNdPf2tdNK*Q0jx|7YZxA%I^)78t&Cf99RQp_YY9w>jbx}_+|J-N@^ zAoFR{^}uKL^uO}kYYv28Yxo+OU%Z-MqkDQ_18#U7s=~|R(ozQx9weq}zkDHVZInUJ z6i(ayFZo26v6A+xi+vD#I~cLgxG<`*GvIt!>a#}*W|L{p6}K|&?@#c*88ypwEM2>* zWT>P0XL`DN*Y4GSp+x*Q z;IRK?l6n7c8Q->TQbswnyraKq87tGBdu)fy600iOidC*(^{`p{E)Tkf8UJs&X1x^4 z2d+zXb-JD4OAKSUWYHKN;%L0UTS2jSLs4?m^^z@H^FJ%{lV$E?F1YvZpugwe_m=Mr zv_$Quod;#jT`mg79g92qf+_cX0r&Rp7X#(&+fqJVoPYmbVmH%w^3(`2yDQ2mUw`z( zJ=hg6aFtRpHrpe&s;id1l*IP+&(zFiF5yGl?wr1%Z@V--^ItF%TfZDQJIg8K&90q& zX?k}0z@blJAzYUXOQga}OeDUh%L`s)&=}Hm&OCiS<9VhT-+=4+zaC)&)!oOXAIB?Z zqGWz~_VC>>z{WrVZ zy5-uvlxi=x%`MtY{HlMo=0Zt%e&6=aFs)rbAM?=Oa$#Q+p^^R>Kj7B(sUzTDJmWv% z8>;@7x5{wl$c~r?oAJ?T{fO{85nNmoZI9J(ar-qA?kAgB+10hrOdx;dka@R^;&8^w=(=#v3EPUh8YfF#)JKR?^-^?xI=W(O7sn6slg zw9=X%#G2gpu{u9S=XyWBhU7yrK^JM6XQ1Hm{Qn-}&_>kiD(T~A@=JMlbD2G2gf1vY z6qjzvJxLZ|Ruua_{CNA+_+=K8$Q^90(Y+$wPd>Qpcf2&wSnE)!Vz2q8l%_26RE*S$ z__J~{gAaesD^iDWvGaw^ygZ3>yKVcNLfebsd9P7Vn>u;-(4DgOSu(siW#7M(GjdTJ zvEe(oN$MVRQ}FNZ_}^WbWM%m#w%;7F-%c*uXLiU12MZ^}+stZODj zk@WduMQ3A{qq#0GxDVFFW}IodHa=j-H!9|{wArLzVy5z0dYxfW?3|kD<3nT{+ZJ|S z-I6!`+_Fl`aqwMHwhP(IyGAp74kO=>-Fr%6YcMOQY<=acNFBNcNr;&z zjoi5@94U0&wj~u)}D)^;8Mgz&4_}L zleLRg)QS(3IN5gwb*Lc&Nl#%@Al93OJYtlCYPxw$Y?|V$=jo*mr zCQ*uWJIdNRGJR`r7w$5%X`yR1__=Mh>X~9?okv1{axCpe*TetYpH($NnGKNjh^ifY zWm34ns84#Fos;_V{lon$jTf?V`pm}iL!&ql#MH{4|T zCBBP)yIAZpmILr79Vg3{xqRdA?h`9#Dn2d-bc%FUX{?8hI+pf$n9uqdEiYDaJbb?T zIIN>4uDSZs#xdnxufx~mrNX6IH=faxLMqE)@>Wq-w}Sac48k8B-CVLgbgNLE^ws*! zQt%<~%;~t7nAjtI#Sd<8U|UXb!E>paXU+^_)C=y?%)xj{+i~o(~~FFQdJYRiPxt8dqDa?MH85z;Dp9hx=fRj&DhPb(Z3t(JiH?Y$)*09U#t6uk6B~|_W zB%=k)o};;3s!~#V8h<3d9t>l02k~t!F)=Y_YbC2JKsB-{V^>JMifng-RiwH0=&O1}313h~FA8`R`v7+b?P z>X3jDF^Bl@;hv}I@{Ns+!|GED7S7pzo3kS`JXde*Lm=xOj1sva)h7W>9xGGcYjd z7#i{nVAKeMMRd@$ftoNa3C;27gtbttoueb&x-)l&Qr z<;#~ZUcYt{f~P=L$s(J&z3_~@$;-1QzCq&o^S55JHhq8R=G@^aM5yfg zlVbRNsI*>sn|~};%f`lr$}p~z`s=fwk83}f3w~{H#}|A&fB)V<*$4JMXm~-kb+xs$ z1J|C*HiZ?B5&{&OKg75@bYQgbZ+a|sd*DlLCf&zLyw-9sSG)C3N+S;3h^HPUII({x- zFa=u1DSV3rNGkqdZEanCqMitGSl7x|HY!~0o!DTh3aOM+QMvOqxU0l34n06!0|V~J z4b3PYSUE$A@O#)sxe_cbVK;{N3G%ZS)E&eb22>c7OH1X@2H9*VJh6SN)4EI|_`+8L0GI z7S(nvP-;*AKSZ4eT+e&^{}Yj{GLjVy$tvp@N0cPVNvM=um)albr_y|Xj9jh*~ zYuIu5a(}qgMKt#~YWDK8#0>yJB`y|p+i%{!t$^wMPLj=_ z=MH+X1Mp{!&^snW=m<2Onwpw?!uSM-&Z_E)Mf{I`JOBg&Bjl>S?YbGh#M*r~OHNe1 zQ;r)w#$1Stmz}(As&U;vV&34@<5frK=l}=6*RZfs?7Mf5Vs=`|Z2+n0 zljx9xIjil=G2)OSDz49^_E0Fq0G29DwiGYz(q+qZIp*A$jgHp;=mNS5o%fS$r83y0G{ax#hsU*j|9=5;2;o1iPS+j$;Jb6;`tKq^OSp@ zrO0*T_w}nYc++~a8pPtm19#wt{%8OG5bN`T5LH(XLP}P?i1iqNL^;G+3AzM* zP)|WipTBg;5sr=Um&Q;W2(txuyc!V^g72A9BXU{VAP!b&#|NlDp&GApOIuo6p1XWG z(fNjUpoLt?TwnhjI8ad#>~hT|YcwJTiJB4PMU%ti^3BaTPU)Zr>ojuYND$AmU%&9Y zbb>J8^PsrwF=WW~M86NIsr&zmb_4iCpT7XZ)}{F|N608>2_(-qt>#mKo|=YP4@8Pz zTv8%65a$^-4T&d2K>(85alZRzNT)IkznwPWH4a80P{!iryT`M&lv}jOg(EKclVo}4u|=_S48h)nL>`Ey(A zZkEUwG)B7hlfy)eZ$VQ>$D_CgYi|pYzr9^AeFFnM1n+>#svSEfQG8ZqZ)ro#d$;CW zwA_QpYhjLXol;HxUML6dhsQ)v}R!A=AJl zF(ll^Iw2Vv*o;E1URA}8%FXsqwOAe5$Z`yjrzmG08d@RiVT{17SFT>IgZP72hSPzy zfE-m4A;peFt;gFDdYwHy-@9(@h995BtSi(y??6Eo0y6nPgr-(AW{iVLSYL4X-;#+> zPiGTd8v7K_fSAF+nZ*c4{MVDGPsP-S)ALUXDA8L}sDr4ob?^RsJ6E0tH>{{;Ao8n8 zAR$o6?7U3{7JjXRPf0Tp=KB79Q|@pLBliJB(b>cI(komgvxf|=XUGeB<@Nw zDmXobTpKq|38jAHBYGm4*`Bt{iDT#e`}f)SUkIu7MaTW?*Dv|$;!!UuT8~g?>+iaC z--{+~^0J6b*%(}0q=>=$|3Ipq@Aj+ z6A?)gAcq|%AKr%|YzH*s2|kWE-cfM$Om6)bITTbMvuAgL>z6~F7b%`6$%n%IFTPMX z#K!jYIQN^CVDET{+k!wp`jdxnN0N)ss#PnSnKQ4smpd$5z8v$$DOwS7YOb!x_>(xf zN2m@=moM+nc_qr2%37*!~vDrd7wUI{iWN$aE;CxI?2i{wdC8C|BzIZ<#R@u|A4f4{kS`jgSL_ zv>4URkFTi#^k57A{`)CZnXHa5>zD7}KjMsdk9&qL_NcMCQTnR#)bMoS}9 zaw1jbuTaq-J0C?!&8HTr8iqF?tT8m!tcnpvbw6HnO+$c)n-!|Fkhs%DgfJu0P=!%} zXW{3ez$Q@DF4MbVV{Fx@7UmFcoF?#1jUh}-UfYMPPYvUxQ_pZwai11SfD=axE=F8S zjpVSwS|WCHN-jix-zl8ha+=WwEJ?qKh-MkrbE}r*G@{AMK_36tU)^MF@)9WXR0ik6 zA{T`28Ld5f^!!7Az4@{RpAyCvdrA&=aMwTA__IK-MMid#4bn!FU%QRe9nFnDrm>~v zrxW${Kg^%Y&%G+g58+X3oNArWAfr!`5Ci-i5;nqvl1m8@(9s<`R4A}9fXW`F&YHf& zo34$+@jE?8dq0m%7uO~(|5(`f9@z{Zzj$teEbtOuVt+;T2 zhQ;K`i!h_0$ll7)-A+|i-afr6yIPIAjPn7#PcxpY-hT#SG10>BNputB7FI551CuFJ zTL1CKAFLqdP258JC>>dB|K>>@=r6}Tkq%cmgQzLczQp5=xOQz2RaOA?7weR(e+vhN zXw!%h)6yEFzYZ(0rKJk}5K9fXMI9Le78QFcWKe-VefyUG`gP{grIy4`aGpzwA6*&s z<|+aq#eNRp@IJ<47)M#VNn0hX8UR4KzOYD2$mf&o|ERx=?oB6KuyN=@+x+thuDF^ zf@rB8ppe>bcAx*_5SI`lp+cBqGQ3s;=HQ1z2qWc+5ZDygLLIX)L_$f+q=ji}z>Izd z22QLF&!4HYM7Je3Fip%6-v3D}eF@Q^1jqZji;Y`OyTjrVeH)Z~PE_IXg&YyAb+V5o zYi8Pc8}`2Vza@T|y$@)|)BVI%#e$ael~RuW1L$lA93i~0IE0Wka5*hS=m}u(VA;^Y z^g+CS6d;_zZ80SC1W7mTiDr=UPuj7028+4(#Hf$imss~jY{dtB=pAt7VPRp^GuJ41 zIh3|eIhz~o61xCeIxcL^E1#^)CKmXe5w)FAfBOA}<2KIkT_kLgIuHef#S4 z=&^~WU3Ms?12vAsg4|CoAUt<#SQYCJ?I1AB)vO=ovm}$rY@HPn5D<*~v)Z=FOWh*z|M^1TfVORJL64y&BXb=+GexDw#H; zeyHjNO{h}1iDr$036*dsGC}DXRZm z_edcaLkXfEay|apC?lhJOAK*_5W#A{aN%o*-gC*TzA@+g<;y*L^f0;VL7dp~7OOAU z*VP0OS?E~{og&V44r=nAmAk~Vj9KXI>tj7C4R}+g86NA`Qz7K{W@CO1*$65W4P6H3v+1>a!zk;aK@fH^TR;w>T7n`UQc_)pxfU9EUf{T*-KxFOPAa5So$r>G2* zIERp=sOGsG5OoN`smG3|?%ti}Udfi4YcvrU=Ebe`9v->5xnqHVAYClNtSPgsE~ZMm z#>u9z;KYpCvk$v2U;UfbcGZv1(-3u7pKnj3^!1oir?f*Rp&_QT9n)vOcF<#L?EbN8 zELGsqkc|NDx0b8}o9N&afPo3QgZsmRp-lhSTEp+;CYn==DhHTG`)*cB>D@#JwI>$% zgG!f^_Rw~_FU3(L$!{UX(=Vo)dTcu5b?V$XizPuo8ZZym^XD79IU5(}9T1zcY$%>D zA5Jia2hdfm{QN>o^7DY50o`dg)H-+WQ+$j%^xvlZ z+78e}&c_z|V1hZ{JNS7+lmIL&0_y`5(;_4!JUj`j&5+Lg7m*!u2}sumgrncLZ^C~@ zUP=4ndXtWn6zk&5m|%XN1g#uejc|*uPANUBpr<2u#f6I(qbSO0Qff9$x^{uT7II%=ew%xFpJ#Sb4c%7 zNU>mvW}XXX1zZ31*JK(Db{8kDWQ%ZTVuKwUX1$Wl&Fw#i0){4qy&3=ZR(0sR_wOxW zNu)EP6Xow*nHOd1h^6pAEdPUXIu_HL+$6v|TPR%!E7^OCZ^l(AuoxM3 zsG@NhZlS#bAHlR5%G%(1ZSj1Ap2`KgQH*;3 zetqIwx_$V&BEc;|PbJ~v+&O*X&K>|Y==bm6!6~^B$09Uip8PSm1#;k~t-C&=8`?TK zO2Q5>Th+gL+;g%sEx&9>!c+`d;_fXeUFOv#rCIyw z_t}`@p|ogx$WqfqIGkxQRJKHUHFR;{OEC z<1}FzaB!f^mFYG-Aqin*6HkEe1#a+}>=o%r&N18vRIwSC0*5`t1ZU8aB}-1m#vYfi zMvn4QdRFp`2n0MDbkf%Y>$p1mBEvOE;lmuRbfJ-VCSU?IH zL!aMX?tb`#cDo80$ec8v`)6Ut^6wAs^bXb6=fuI0Ja3~L%{GR8s zOHy3t&Yie^y-a!H_{QWqk$MuX>ltE%DSGG|a3F!)Dc9(+<$7N-0LE>;(T${5M9k9H zW4QuI+3xSJ+I1`Sw$&l4nyJ|*1~+P}Ry{S(E>B6H4%jLgjPeO58WWB~iOj13K_j<(oJ>P^N7sj!&p4Qgp!O{E*V}93?iHU9!5iY9$ox zIC3YDsCIN3FP#MpJjH(~bO(O~bH(@v3cc3AwJ4h@4)5>VNGU7V8fRs}7`$Ox{}~Su zSi?ABplJb4L~+SCxf%WpW1yip*f)ivf$t0^abecsr{L%nm`U;^ZBx z5gSNWhQ#EP)y9Xjo;7PcIin!-(s%N5LtcM5cj;2zRPWzJ-R=M$`yKs+`;)J0*19pj8{}*%Ud>mM7`keuM7~njqVT- zLh?FE$@?dUK4Z|JwzS(2K$3_H9z*BejBE(-h(w^PNf?%RIC9Pd3Db+{Cg1r5qV({g zdDE5}n_^-{2@Jv|j*NWr`}7yf8aCpIgZE^ZLlatX`4WJ>T)yLJa`4=vZN_b8n8(|j zFYATd2_FZ4E=3#HqP$E#1+oGR&=Mdopcw_R1mcOTg8fc+(p*KQ?aX(~CqkQQ&shsH z*O{h)J&I$WJ|d(WbVl>#ch>)^oX@`n#)fMU2Vx47F?QPY$tO;TBjI{k1%dNBiNB;& zM(rWbo_HI|K5T{EIVQkac@g76UzQ1e-k}5Sy%WEU+Y?PW*$;iqL)BzM-&`I5qcqj1 zya`vS&NNs>2HAThs6^<*Mbz=9+LApg~V7 zi4HuSeSv`tmLRdr(l-8TWF#~1RzVhpjK(5`NEvu;Ft8^ZLZ({yjy_ABK9)U9D=Tjs ztp=B=XpE_!I62TvK)*>w88r^8N#D?LG1xrcnO!NMDIbpuxB^pUZhrpOv}F>3$k8lI z=H(JIgM;5emZt++bM5mm%gS8i6Rf_gEa&6_jFIUAe4x;GMe}scahYjrfwB;q7r$UEftm8&>BVS<+qG}+OSA_= zZ(`=};Ta22O1J-sM@Qu*F>ecQ#?n08cVZNhyxmFkPv|uGtAn8jDSuf^;E(vu2omq0 z=R!~k^qV7xucYR(LfLkt%jF`W5L|}`Cx8M5IEWg$07(a;Pn$4h3IzQjP*MRhg<1m6 z;)v!wzvL_YV;Od}*_HJTND4x^XOS=fd~WS<13d`v4u$F2OP6-Ce_rA;WJ^m@EQpeP zh&9FU15vNcEVIu8SLaaf-M4Qj*BaXuTWr5ck9Kt%d4MB~Jel#7g=`=P(59{<-F5riRTufxKvuf$Yw}V14g-mECauHro zu`*3*>x>_~DZ$WLUFXi9Um(@>wrv%FJ*zoZFmN?2HS~(xmNm5XCjUp>l?JxH7p@0r zz&S^}_XqEbT|4hGe?RXI5PJN#-<8ssaN)C}%>ntuMCRRbosV`y47VqXuL?ii?5I^? z_OHsvpN8?~bI`_8YDhqNyGei6FR`HxJ$`&Qmn3z3ZS`|+xd0nhM0f>K{JB^N(ZPqNU_}OZLx#FTL+Dz8#38zDcCP_{KPvRam zMwvr(fPkc|&E?w0KGAbG0i76GP1@ElgskrDZIDM_`p?v@590Ds{R(e2`Xo3_T=l3U ze~o_k_U#}rSZe(8;H=ztssN>sLLeu`oxA6q2#biA<{DWGYg{+pGreBfzpsLJ!zlUx z|NEyQ)aa4QrrXVJsU!dUC(m1Xr2^I3|Nf~k_8qREst%h(jd$Qm_3HvErb-nG zFM+@&dt)J60`0-+kdT~N`8SyHr8TK0&c`XMqViR7-@11)bqI4-!`uM9e}8C&-rwfQAl^qda`_I4?S{9KTzy)@G*Ubln48}{kb)-w_>pG}|rR+_X$ zl3_`!aZ7oMxIig$eHQ}W*x1-ycfW}qA%56e8Wyte6^;ze?$EL0t-Uk;eWZDD-Cinf z^MBM>g5&|+m0PzqCy$KA9l9SO6omDBVioq&IZ2o%M3@;+3J(Vq4kt9t!y*WIY!?cy z^zGu~5}Psg1N{-k7fG*$r;|BG(gM(liFu4;xcqlfIA`4hpcr>d;4&>l%t-W&C~<^K zj8F24jDBA5=qmWM-l$RCV5j@^>Er9J$Z`1zgqunQuf^8TP#w0Ds0(PL$gAf)JXcD6H;q~8T|;?NUYwuzm>vVDqonla1cVEh zQ4WGAQfZaLQt*=!fTW?zwx|}5?Xw?0)>euY-U8>E%I5i0tmEk=0Y7Ds5=f#}=S7q{ zRCq$}1555ZetZgt2gh_CMrnEC!VECiP3|TV0nVVQ!8wn6>0Va-uVLy2^B%REY7`I8 zD6KQMu5^Hi!x|~qmw}s4WzZ!#$-*^CvRbd>?mm=IlyO`4{^F*~K2^ zqDP2?kVHIWaSe5)fMC#qHPJV^{3mJ73U1cCiQW-~?fynRxcHe)!TegbzT%PEE>H7U z(ftrlj)Gx|1>s@OgF0=I}HsB&U%&~ zMa?UwD98@d>Z3hmoDtSxAQS@C=3Jh+w=YBepf^}y5+MyogxGT+s2L{cMg)l7r&woc zfR?k=x#~rN#W||MtQpC&yiLR}-Vd($Ni^eTKDVShhGqH z<~IvcWdDG83?!ofQ5B`&eRBQw%(>juo>t4~_vcXA(!5B@TKk&tmrJN-rO2R0nub0Q zvd)iK9IydkY`%Aso*nNoI2Iipx3!RMY$H(~{Qmu0eUSX5|BTS0Y-8_e;geNvZj1ng zz&b`n(ku9Jm{O@s;u}HG01CqONel<~0#Kf+x3~9(%5O460zpbIf|*&XIkQpOfoD)A zu|A04A9wb3IXU8OJ9pjzh6oV{^uztYFKwNqPfU$3NR^5S~=5Ly?|0ruo`(2Da{t`xX<*96;}zcQNMS|+bj zXtJx2Iy3al@X%F0^U-6+sK<1Wj!SpRlBJ0n$MwKskyQX@0XQclIkGz840#r;wDpAV zL!@azEx;NA$ilU9E%GMumuCKyRLnJ zQkTO!za6{px{~d7_~n;fAN%(~D52<;Q1%S?`9Xt;ZZ^*x_dh{?iOS5fS@%9PSO zcXgj1Ej(KDPvQD+tDkNB<^hi=@=4Ss4V!!$DK=47?QyRm4s-0ixQrHi)6BEtM^!tQ z>$dJ1vq{_b*$c0~s$K_tKd0ZXS=gr&S*1UH(i>}QDR0eQwfV7%mP%GuL+j2@6;zcy z7b#UO%>7mMyQF)GcHPCS2IF{2C0kqncSVaRKD|5|8k*3HngvC+YG`@(_4bSvL~vv_ z*KhdWC+NO2YiOe~_c48(KKM@ayz0<5Aaj1=>ggwRZO+>l9-n7btCDZh!$kXF&YC;- zzUU4$*iqBH^vRiwUN4GvHq4tnY_^t#O52F3ooctI-d z+F>*PxaX~U%kT4N*WxK1o9@bdm$WORuR`&ZJgs=&txD6UPj4s<*01j<96PDz4RO|P zxs5XIw$PSv_QstU@ZX0t+0-yFZgS9|*&2W927G>``qs0&@uxi7hr2Z&`1QS+{kGG+ z{Q5V+MKF&8O>)dRS38KRe$z}0X9ridDoU(KGb}qeFu{M%G_?*LAHS%n*_#@zV;cCP*NKG3c^$_O zEY38TKMv-rxFvT7as+J(=C6dRq5e{^882+ffr=p4r&qv~~00^M2ep zJ2*k}k=~yMih*Wk(Nn%CLr9wj|LU*0-7Nd(AbX3c+gcXwGP3;^ys1f5Wsjh%>#~+k z`Agp+Cpp4*{MOBhjof+-I`7*i)9d(#nC&h@yZ(e0%HW0hwOAwbG8wF3)Tcn>{&jLB9=!Bdqs1 zxEH0q{Fpj)*RRV#)m0fQEfP=7jc(qkzEoAYY=>_@yNInp#vQI!Wt98+Hfubf@>t=^ zue*|uMr(THrUf=E0&17BKcevBKkI5&;O$2a0ovOz$S^ts7yOb{Dfz2H-W4@^k1DbI z!$0!rKnQRyiR+K>{DrP&BayvOp*qnqH{4uRe@pbC#0!WtMRA*h2$XTMoo{LeiDxktuA)$WLzziH{;G!=y;ez1x40m?vy-EY{I@vXt$nlcQs(WBb8j>~Xmj7r zxXLFlNu{P#33 zOf&wORPsxEzyIT}|BSJ5)EL&M=+G_aE=6za?)|(r=dIVeO?}68aJ)I`e$mfCC3R~* z581HSpL45+YL#0%T?Z2d(?)K70rpWXqZ8Ks`Jw2iL&SUk?J9-m12;C`H(}aVrPsX& z?|+kLJIU$9o;9qYv}HP420jDZR3?=C>JjMw_)g!(vn^ch70XJ^belx&%)fYZRqc-s z>d(D4clbWve0tWsOHp?93qB@upU5m8(WoI;q9AX4uf&a0u5r~z*E-;|_a&pJU!%i{ zYw#%RUB$gh)kA|V{dld4UsA3NEMVfcOa+JbyzN%fnSW<;9uNa@>~{Z5yF9a|m+G$E z7+|dJ*W9A--pchD+K-UbkxyXY9r?>%BmQ=FF53{}ZggDlN>b;>VX1H5{!YJF^z(O7 ztJv+&{|=9N2)(;2)mh22nV&Jv8VV{%nX+3MB|m?-8&S5zRk(W?HNJP^V7xtJV}=Eu zkLcgIA>+`&M2DsO#*ZC4HpqkEXrSi$=EN_rcy(aPStdbuK04*Boq2Fd!E+thBB%@W zJRnCQv9X#I_UR=Lop1cEiC=MRFk^RUJhq^!K}APhbFZ-OOW{IB5LVTEar2s>>6frF zsg6>QQVu97-(}&g^b~|Jl6VJKTR(cqC72$j)A;caQ9^wwwcBN$dm?+tf%NxoyBb{X zep?kKF)hGh4;d%)UvT(0{}a=2zl_h4;RL|-zmtN^LznI|Cz%Jm1VAWC2MDkRjiq-p z-CY)5jY)s{y6C6qkdPb`aC?uqIHJ~@EqOJo;oM&_^Ggk%bn9WVNx^%FSB92-@Ui$d zj)PB^{&ncG+lIA|?d!jm6gO-b_I%QYeGjUZY#a5*mepqs#vZD8R+F*9S7k(-)?atO zT$Y<3XXNv8Sy)y^$%s{b+8lhk%SJo?%bL}n&i?(z=0f$Vv8}sBJK7JJ?P*x-Z5gEN}HURJ+Z&K{oY?Y@WUMKz-+hZ z-iC(40HcqeK5JGI;JEa5Ij#dFMNC_J?_)=id4Vj-VutsJ^>iYBi#iUV%M`V&~g2=D0c$;qC zWR{E`qZ<-92}#Nw1$Z^@i9Q-2ukys(1 zVsxOIV4^tDU=!}=maD3(Bdd`yp4nsqpG7ZD(G5@qR$j=b6RuValcYYG^vK@c>v%TZ z5A7WAwG5vX2m*mIXbnBhdq#OP$cZ5A?`Mtcw$oZwBoBTrGhSC{mz`yr^&ZT@g~MDK`fiIHsR(O!z_c+u@KQPpr9PU=rQjHB{DGqvRn9m*1=TtCb#jCNPZz? z0AgX~2-`_KAvvJw(N+K^^yu9#zy^0zRu{t}&3AiA>r+Qo*Ph z83iL_W_h=03?AgTmWeH9$xCfk8&-v$FsdX=M({0)-9{p1<*Kjw-cpql$hdRdw-Q}- zo%Z*dO^h9<*Wq>CtnoW6FLoNXwxvtVpd*F741XsP{hBc0#Qbhwjvjt^JI*Wl$Ltdo zg}ot{hZ7V zrNQGi5uy+ik0Z^psJ9_YXw)A-R>@j`?w9R?@OK~XvD)hIhlea}+s3F&0dev7zU4@g zlQcbc($WtGLh0JN8L4^>=yLJeuEwrRf~zGQwwx=_(dFUyX`+Mapd;}MNZb^{b(!o2 zw*~I$O4?}zX3v>SqnI(HgM1`TEf(7gyEuRo@uwW$@U^!Lu14J;BW@-BH1wq^L5(<~hT{Rm6FGHTxKc?K{nb8% zGofdvbfoybR`0TwU|UTI@q0RdpA?gJT-imL-VxJIwkqu(vHiU=T}-c`JCL zs<&j26u7&)@iX8RTbyw+UW;|dBNBH9kDa*0%JKJCFh)JQ#m-8OpFv2J zVHE_STtJAT8N;R{RvO{*WR0S@JT4hHXQuUwSHA|7sHPx3zq(on>BCB zxXGh>r{oUb?|m$E@s$A^GiSZ;+FCW>P|UJ+9k2ZJsmy)gq085o2S0gmYv!tgkALia z+QZ^uPJ;2uhSjADZhn|xIoZA;qJ{pJEr!vB3efNJ}>wNsgujV(7G~E~EFv6`s#VuIJRpV!+ zX%B_-8mIReZ0;>WD zbL~;6@WVm+V64T@$n?V3b~CYlBKRGCY>Jt-8Y3~l?GU{0uo%sbm{9x65gv6uu}_)^W& zF~A8SK1YJg92Fi5_Dk6$kmmz286jIt#x=p`9i!V8X^m@iMtwO$lB58Ii2*aT(kJDY ziNq68r4xCGslvNq%X6cpbiAnkck_5VckT>@Uw&)jvSt0)Lqbk*Pw>#e|iT6Ox$jea$Ahpf;xq+bMe2konY0DV}_bs+&g?A^n=nT85 z6kXI$h}xNsfv${enpY`UH#J3Z+*IARXj3^#DPmquu6y!}f|c zJ@&g6{8)4%c$ZxMRzyxGSg^(I%3?&$JIKf7PY3|+P#dURUDaZv9W9h_&*yYp@CB6VfY z>J3JoH=UzPPez)xTo6C+ao3s>Q8o`3jRRf zE3-C`89`A>=DEmq;ReUy^2?44my^{rWG}IUnDmhV3O#`?`TPAAhNynkwwu|YydR*! zZdCHzF(Y);wM2*V^k{-zsL8f7iJx&64;w=`OcazRO=nxKW*;?+uIYxG3n-I zbo!ALa3nU<&@5srBQown5>1NJ_wGxUUk^KI83y;v9D>?L5C0P+ky%iI#R^yPR46Sj zO?HI1fR9dD+%Bw=aEwC!RJsx7+B81+G?AWI3J6ja?*9IIQ8o*=8ojE?%9RmWR~p>- zwloUGAESc!HyKuyEOti>ew;Dfr*d7wyzvi(u7LGi!`10o^$$6s3SAZkBrd-5e#z=@ zYyOl}6?$nWig?r-xcy9*EYaugT1<^lAK9Gqk^h;!B{ezYS37V)k0s`h-$#gZ?a-Rm zexciAs$s75fhV}XxN}=vOx=*A;f(7;e0ZQur~#0Yss*@gRH6O?S&(_>nAY}^h>~7% z1}>Pu0o?2>ZUsY;h>(z8k-uxM+jiRY=?Q!>5r0VYNJ%HwT(s*5xrz&$h{+^HX20FzXZb({AB|%#*=SZdl|^zqe@L+$Se(^J@Om{uQ>g zrHb45%PYXCZ)UM=Bg=f-h^n{N5Y8mpLF0nF@;$hfte9LErjBYQW=SS6jeCH?kB3UT;y_a z8Uvi)=u6T!HITH^5N;?Ywc4xHUA)e@4)L$VY#JIFm$BmU4LtHYuA`e@*XOuZ)5HUASbb^R2 zS2BNH8evj^rM^NAOp7a#5`1M;{HRPd%hFCJJ$N8Gskm2biD!}7YEXKJC@)>Qq<1rw zuFtc+y6|q*rvM6v7wDzqDo;~hze4JTgGYS3s3W7l-3j0jqL=-g853952{NRkXAiHy0*yjGti3|?wdt}GGB%WuVC7YcdDktQ{1iqqI0sxOeI zDDXgp2&O88+Z4qbs!CoVzngnK1uwFQt@-^l7OZR$Hdyu9*kS}75x1^fkiuNT07Gs& zVvVDj0dx~yl#>WAci@pDPsr$aNGBm4DpTBtY*nf-N-Fwr5!licc+c&nrzhrLHZT{1 zSZLYJ5Z)T7R9RgzR29JE1>8OxP$8=cB4QMiV;C&Z?awvnxOs}ivZ$dKlY#8A#ktsV zTZr!j905LdJ0c1kl&q^U1_xiGv)A;lUD?oR9rzX-Q%yEt@8S_c|u7LrYCqd;Mw|(}%H*#j}$5Yt{p-k{>H*M5gr~c=l zn+X$a=IM4hILW-9dij&&sZo19zMKfIqwYRo{&)7SVJC973_D(*bwKx?w?9ZL-Q}+N z;f1JimtEUeSNibFnpGG@P}HCjm6!x9;y>5*HRL#fTdC?lH725LSNcR;sIH#4HmOOf7tsCN>{4Vn&VN7dfB)7nuVWog@-ezpwQ+BxDB&PN|B4{=%bMSfyVj}8HHeg(qIg}c z(*TXy*e5P$Ifuk21Ue>hArz){0be>x@)_3$V&O(IwH4p$MBtkGFi-f75UZ+Sox^uB zR!q_hGFG{k>fCeS!17`F<=$IpvcVF)39{;9;!*L^f1yCYqD*>6>UB83gx=Hw1*g*_FQj{j(Nr@ z>E9}@m5uLT9^zoLO08x`vZvS0&7;q&^qXQBu-iGxYWZ24($mX}jlG>_op`nIYSe^X zd+T4XiQBfn*ILhwH#h4fI^DDz_}XBmx$TQ%&yOdyDDD30YWSl`epNl%@3U(-_TDvi z^R=cOFQ4*?x$A8>Br@mj=3*PAVLzs*cTK%E>iMH9f9p+|VLNc-T~9aj=kb5*xpnyM zs1jIr)8*YwPn}**m#=YlD~gU7@!Y~|SDoFj`0m@YJ}K#6ZOqDZ5x7UZ2sn80U^J?l z*UNdx5xpX$Pc&5G)oomBS0Ly^{1H}0$T%K9k^QNzbChFQs(TZQGL2B^f-SzZnAQC@wxmt$6Ss^#hi@1Q@&y2_-C7w&UmfbExn}0DtiJ|Xom(j%P-)lW)Vw2UIq~*? z&vA-Lo4onqv$vi)yAnTNT5;*wneOv;JF7oK?P%Jo%d;-}uSW#ezP0~;GVZbge>M2& z!K~<-KkmldY8_NJGYa}%b=a+j^jxJ~X>|cPE|ZLl+9<>%?#j98c|(2J!(eZZnAm#f z5YjtYv zpi+OsxMQ;>C4UHgm{W0TXjFCa&g1p{w?y@tk>e7&VdCqR_N&*wobz#6+_Jp0mRTMj zzx+BiFyq&}+IEWv%n3+0{?)nq+o{0!1DY@NFyGtNz^V8^XG@pey+Si`yRS>H*tINn ziT#qldj_hgoe8eXH>~WKxAu0-o4FtJ+8-J*yTBvMcBySQ>;KaN9M$|`9338C5dU>q zpQ=-#b28IrC53hFvQo?8cxmU|nFS#>rFm&ra@_B_e!jCcVz!#^6SJLJ)*F)|Pv7|1 zxpKZ?{kn0v8m0SB+1uYSoVmTGz}DExvA`-K@x+z-#iiRD+`Q~=b)ri(#%ra_@h)}Q zCPd_ANGwJDWu-6iV}dh^uN6v_E>Ot?loT*b7lQyetYlcQQUymnZzGpH0w<|vNZgXC z_e=r4U%JN=3dECPH8LuKrk{RZLhg~av9u*=1r$K+lmG`}kY*A=l3^wA2G0>3;@`fP_gOb>_Va4bMtE2^^E*nl(22}|qiYOK3_?~lF<`a_?(qq46MA|Y5 z6`>d6R+Q$9wnu&_mm$*p!@yROql3!xeaWwpid#!iB2YCL)?MPeP|q6%cn-TRr8- zkmd)UZnf>F$4qlfbTTEH0l6R}5*H!ChDM|j@(BVF@zGUEwLrj459}$V)5G1NP@t5N ziA|JAB_}?{&>V|l82K9=966;HsQYqrU(*LZI&=OU zci44%lYZ-a>^?SYvgg_>jl!%$LoeL6xx@v7@u@6&iPPzdlyE zzjoNNXM<1fRqlOZovQkpzcVgoesU@p-Kx)B`|6cous7`5G|EMh= zd-zVYdU!^{(i>aU1KZv#>~eVZ)#I7HSMB(E?5?rykv!Mt;U$;G^;EZ7@UzU>utU-c z+X>SqDDQ8+e&MYnQ&N0h%+1(Ya>b!=M!V_`LszLJxBt7F&ASn0k9?D344Xbq=}@g? z>^zWkhGnkTzU4Ued!8Ec{lfM&`!&o=)m!aZl+;0|i=l?a%n3`bdMF>rypVPF?9aRd zb5tk#PAWeC$tvQokMqc;w+@DMvYc{Y?!e9&#VZU7rutr3i`w@w*F2Dm>-(q}-gq@tRtAg`rKW8Ylflgo1d{O0%BB&V7Ct zE}?J9!NX9$j>BguCjxY+If{$M-SMy%)o1U(3H^zmv4F}$;;1-FWLy?eC`4oIGEV>( zih}W=<`|Djz^!Bso~kXDVV{uOEucT;a8V@J>qJBCVo)O=D}}$>ZFzsh#mwcq{VMk* zCvw)1risOdg9fkO>(g%0%mamA zmDNqsn~aFD&NGUOI`a0V_59==CugnBGDr{WJn~5ot?(Z^?5A#aSsNE+Y3guDBg)3) zyKD2XIlZ_}thIGN2A%0~_Fmp<+ur4)nzg%?+QW6jxf>qJE!qw`y?Eqr4nVVk5Y>z8F&7m zeFMfOJdLErHvAA>+)TyA%gFQK%x;4H|0E0>*;35`G(adZL6ba(&0;pPd1#b2Sm}g+ zgdQBgz&g6d@eU5Byp_6pUQB?!ySHrU^!f9jL5P{07`;(2CGl(ErQ-e>ju$x?{B{AP}pGjaEK&QkX%5-0d5@z&?*j~Oer~q-V+zZ*R!!<^27y`^VOh)CP z)xf?gT({t;{8gC-N63pfZ~3d@RzN0j8~BC+X$}a0xF{g8;;q1)j?nZdRhT4n3sVW{@rVJ4nDXSf z;97Zwl>oQQw>B4MfMkNyNL7!KTW}7B`|TzB7f#b1xad7uO~jhA6r`k!`zY%H*h}n2 zT(ORW4tpnW#HxxvY%hQ=Rvt}ZU%?d>_HXE@HAw4JdRNPq&uvy+`CvZ(a<~2S9_>?G zdHdu1n|al4&*c^vuakRz$ZhvU=g?`u2PveO=QlZ_^IHpPrcUMdjO5Wv4GIyS2&e@X%vR zs9L7FQeDLEkRK^FpVqji9d$W~XMbGZ85rSd*0pm$a9GlsAIm%Jv{A4-{_FI6~KV`{8wYZ&lWrU*Gw%+t{UDdM%uOJh0TDQ+55d?LFHheUIO( z;dR^jlx>k?c|!T!!98|_8*1FPSsFIAOV5MO%kJKe**3Vt%;V2@XB)=Ycy5e0nRNBg z);14c_R4?zUBLNQ*A`7=t!ztmUPN6gVVI-=38hMPgSpO$eJ08yWFjYkpugX1+y?mB z0$!=RSCtmUs<7r{WPgY4ojzyISMONvo~bit?2k)+Sh)yxoL%Ht{wYzw1FQ{-qk~T2 zkl9BoDL?AuyCT6{XWw?!0{i|qMT^3TOzTnpX4(vzDt%rPpRAhP+R)?5;j6<(8NJf_ zXY#?F#dn=gdk5I}o6@G|pS^CF593WMB{*1FC@p(DxZ+n!x$}?%E+{g?V*jfBvvgIW_tEKZ|-@|9Grl;kUPz+ip!8v~q5%QEj(a?Ace5 zxp~8t3ndSl1lSHYQoq$Pw)XsHPHdyhfjh?~sNL)z@$drULgr+ZO# z#2cTK`~{EeR`S~IlV<1~%iSW2h5Dy1TK!x4%<^%j=LSc=_eg!f-SF+H)$d;C?Cb_u zomqFy-NvZ$#!PG5(v#0V6+BEi)@oPcOlNgz3Ao2UA&yLpRS&~?pMRy=93hF&vx-}k9$^35S$mR7^Ts#bmK}K?-Ug{WtWmN z-=K*i7m{iG@s#A`AHhyI%B<(ic|t_tIN(4`j@$A>DAfsi6o$3LO<1tFt{j#!zYAp~(-4&~^kn^bkXuf^ ziaCIFYrh1SS%wFns;O*+Hmh0J2?<{9Dn*P@VVz9a#TB1Cm zQCQCrRsAWzP<6Yf+gbEcl=9nXxqMBv+@iZt4#D0+xe-Bvk@iCfl!-||GIw~{9*#bMeqe4TPB zN>VmPKfW$dE4bo+{O!B^Rn?OZP(@%oRS^Fa`xCo04;w*sIi41J9R;i2W<%ZwuShBF zJLI*NfxrG%{~!9D;;pqJEY*}cH?usy*I;|>z;!N9?RRHgRn`8UR@Q8y@AcgWrd?QD zQ8KP^^$j;&)2x{>^R!Pdyxa0d+Af=ZC#UXE+-hdw?AxSrd7@qTy0+o%r=MF{mYJ>b zA@Pa-v>i*-`dj>&~P!#Psi=tTZ|?bfT%Mb>ODA)2x3CZL_%V@|}01 z<{Z=PJOG^{oS>5 zMowRM{^jhC=kiQjy0wW3?(3d=++tGesqG?rD+F3?`cV+oB+SO&qKAo=+VB0>cBlC0 zU#RTg&wVpT?$G%IPDZ-#o!Eq%?4_Q$x&I`8O9KF-ea9}CXtzJPFW}t3-^FnOLs~y{ zn;!8ae)#;a9pZzsYy#&xz*WloMj- zmvk6T<;Jn=0+Vu=Ru~M@Xo-5z`%N+Bfs6!@gdc(|hY!~{Jjs0Q*ex8&iwBa52nGms z&ve(x$$2Z<+|@n!l!#-Ke(EScA5lo+&SFC{vHMM4ryVNlYN72T%6&Fpa#Tt?uQEiv z_R3b4zITTW@4Q*{LsCuNE-U{Rwp^128^ZKem3xeuvm^CO zV#&|8x=kY!p5D)ic;M$hq4h!44xUBHn=|tBZO`xj*tSIr?@MP-XU4}DseA3V>T&Pu z59^aR2UCXM`nId0!EM~~UW4asv(@i0az>7Ecb$V(eLDB+psl8&+_ptTw9&^GBkH23 zlzeg={&D`5)DafSYST}z9N=NqzVRHt46Oujoz2Z51LD+R!)^NkY9L@`PJ;tn6{5FD z4EvIR$n(#-(%G~7N%B2}bS5uQ;1nQuUWXb!d7xa$F#sf?A_M>uB_$DUE$^Fk0_CkYm^bI9y6U{0(ZH zk}|X#2B7Boz}p!sfS1l+xKNSqS@d&*Xk#GOu>n#~wz-u)8LXM~kD$k9969unVjHfH zYy%yLz&~zsY^rlU&O{1o3Dv&poZ2UD)Cvj%Jf;QDz3T@%MRo$UO?Cd6{`%|B4N^wa zlIr*A6~hiB<$yp@zA@qzGL$6m8)+KTLV)@k z94C=}I6#A%n6)l?GKe_Ncl2|9;$=jCu=ZMdiQGa^AA=FR&NCo@wo`OQrsF)x_C|aI zI40C7GMQq;1e|-TD)J^YG%1C47mXy^0hqepFob0Iz#B1huO*Xy$a{Ao4N5*Pm4?toF4Ze-)oPpBYZTmR^N=r45h9Y}almJFT@X@7s zMI|~6q!r^(E_RE~YMpLBKvd*heDqfmP)vM>df2Ou!>_r_8PGh$Vg85tV`I`vhBd6e zK2~4-px?IOn_oxIUD?PvC}4TDd7myvm)&u+|CPODnSr740ozC65z`mBe){2_X6IP2 z^?09R<*Ro*hd$^W8T{E^P0_w?YOB1|_ajziDBkKlJY`1PkER;$`X8mi^;JA!-FS5H zqR@=7Mf$x*h99yDp4V@5L3%5WvaT@;LTm~h*I(J)x_nIS`HlJ$_Y|EQ7CmA^f{#tV zdpQ*j>(;Nl6XP|~Gc+N0)*brl3#|;SZQANp?#|9__ouVVhfa1ES6?llHuGCKct!Z0Y=M z!i>F|y+TjLPYBlNeYVe~dDBM@w_6S@y?6SOQ>LYP4mXaq-`^zW_0uZN9LKOn1K%5+ zzMy+|mBnC_JsKq07S>IWOl5APWC_)T8dDY-RF1+B>%p%--i zaqCbk{nK~ud^mAt;4u;d=xKpVCA5v{tVfK-DztIxljdbT{(_~c+XWw;p6Ukgez!jM zb@_^Z!;&m>*S9~GI@#vxA&oHqKhFLH46AibG}~!CDcZJEk@u_V8QGscx9Zz?Zl9>| z8~gU`cK#BqKIx)#jOEb{(PQv^(o|m{o8$&95md_7Y>!5BSt>xRhHx`h{)+YGsVXr$4Bh>RJv z=ND=eJsX;>RJ-~e&dgfZ3-?}O$=*HroZ#4em%I^L4 z&!~BSFLv47DfnsSvI%C2e?E9>>o#xvu9t}g6PuQqK6f0kV)Lf*jD#=2A*Ob-AAFcP ztKq4CwD%gt`I{7L;}X0dwXouih{^yB1o}Q|K(x-HMV2mzUf6otv@uRjXR)XiD7aW#nSGi2Q*)v#Ev5Dy>1;ysN7AiB&H)^8P`<2-d?e_*7I^^{6QC8gH zZ`tnd4*!2%n10?7qT<`OC8|pk3!NAj!_w{()wO@kO1${J&eL>wr5+oa7vk!+V|mRrGETO0GcaLcli}wgsd?aenIc7qRS*9z7a% zzz2=2YS*sfS5E`u;H1HcwGAL|WTXPAql8XL9v+-NiGXONFyj-7+_q!K@f`E?`X+t$ zUn9ASJBB|I*%DD{(>Vcw3<$4W^ZCX9bXSi=;HEkXdx4q(n(Y zQ)#C`Dnddf2`wQh(vp^Tw9urby(4Wct?&Kt`n-RC!q4q>d)-{uRnPHwoR9N7j{9*R z*TDS%Ke7PyE)0zR^fv}WZy^)+6$+B8yZ@9QEVYS;S#2AvyeMZv@@sF2AW9OD-6 z4N@=QT|rR>7-|#U8gbm8U@CtU#&?iTL_nT^{(@5Baav$QCLbiwl6NDyV{|kEMllTV z^?rz46;_;15@ow-N`qrn5F8=&)0Bfvo&lf(;rbJS3l|$?nJrtkw16H)Zwt_?4U%?{ zi;77U2v%j!OMCnxf~bQZ+zZaL_5b&c~HANj9+^EEn7X_>agJo5>@_x%7{v(fsViU#j< z77Z7)6pQcpNAMYOu&?URjX&;KdG{FK%Tw(G0+Eh(J71oNY8QyK*t2HUa*elhu_0e> z3T$xxP@Z!0(T9|G42PvPMn(h7Rzzy387HuD^_bpw$d+RKXqqshBgpf>b~$JEtMJ(L zrG1uXCsm8e)!rt)*jeu!ox;N+U3Fhue{-wt8YVgAfv$rA#VQ7(g(r{QR6gLTV8$H% zR&wy+x7e&Z{(($yN~Fj1UU!*Y^V?+6__O-E*s6r5=^;Y?p)(gwrbb8DTeRKrRZw8F zT39l(+VGK9Ph&%X!)VpTUFr&6xk|y8g=809h_W+}`gX_PDCEP5W8+f|PU4kIBXm9& zBzAHZf3JA;^bYs2vy(!Z%+XvXuU@Ql<3F0lq+-%LbiDZXg;u5EW4tv=Uky7rE}T@& z|5o86Cwsz+k;gk^!RwPcTgBM4PvzTjWhT`3eG)un8}a??%Ppcp%cQfiG>#ev+>8v* zOg&+EzHCzI#GPYKZ;al`s4MJG3rJY?)bQbxTDz?48}<0h9ETO`%-@cpG@_UTm?D^9 zJP6MYa)+^lCmVRlr3YE|kOwN+>Z8L2?qUbV5d-|bz-J@%Atn2P!VG@YQE=vo*o{gL zF4qs>gMdl|@zk5tU=Q^_#@dC-mrL;AP@EM=y2t}yu)cJOOeoQn0IfZUkth5Dv73m) z83F&|BN7-uWY_|?9eJ3+mS*!iJo|LsmHCHsA0 zKU;3zRlc60U2y-n<0CH7_TQJd&U&0(|D&KWaN(P0pATqfd8r4=YA9_T`8!dO^HHqH zwK0uZMJMJ}R^)Ysry{k#9k?(4Qqnjm#ly9&(@8;UL&Uv(qU)x0I&U=o4YWL?nx9i` ziHn~baGvcNx5y_+$96wWZE3z!*1Iz|cf1D2_?uOIDc~VT3};!n-&v#FlbeiwEZF<7Cx-J# zw8Ccp@@=&Nx1Neb>F_Dv8*I~f^wgkcG;&WR6Zr51J z-t&LQqA&UN#kJHJ&U>&@a?mY(Deqz_C7~zM?Mu2;Iqc$iSKVla(;Zoh5$!OkGGzru zjsWuI5`~wz#ZE4|yUX8z&p{(6b490Wg;D+`UFRIndE1l5WmoT?IQizD^a*C~9&c$) zzDGm)>ZhLG`IAv|ZsuG+=Yuf=44lEfTB+sExPRsB8zA|T7 zPqQ>e^1sLxJ+riBK>zYiJ?*N==Hi2NuORJc0#6P*XjM>J-G^*!Q^-3;={VQ)| zZvoFABZGdSxWG@s4IIxe1?0#_?r(^@S)aLL|4LW?585*RR?D^6%-H%yrTUuodF@ezD4*XsILo*1EsNO#hI5aF*c~LO%e_Q|#X+&sE`%huT z4r6*c-DQ9ck(5sR_vecK$Oab^`@EW_=9q^syw7J|?E;FEkKLWTOfVt9SYr?n>g=lz zt}HlC=b*>KS=Nxq?z$vXSI>OLQx4=RAG8;;DWW>5IUvY(DW^00{CNh{?M>3gN?$-X z-DokAd|-NK21@vBaJ%Y%{~3U~RoVxC8xm>(Zo}+t?${+)`I%p#q)mhq??~{kHH`Zw z^!Q~Nt`Bb8uJ!H)&ahz&Nyu!Fz<7*fMuzYT-NMrVU;zarY2W?g&Ko&8&hZtHn`6Y_ zo8majByFe-P>${?J-OwWfd9ylTyHA4(P)bt^UtEGG&gDqdMAhMK@->MpnS`V()DK( ze%Z@*C!9TdmXd7XL{yq;Hr#4rWF!WGtVwvCp?H<7amo1;@-NZ25{n%pj1gGu!Byo8 zTFZeSaTyuYv9hjF62mj%9=XS(?M@_i<&KZPzOW0HFXYU3D(bm1TAe*K^yPF~%AaO|^ai%Ys z84D9GklZ|1aJ69>l%7UU4TmlpmE*~E7ac>xF(6Bl-GTxNWbN)`sJDTtKyS%FX1Qcx z2)q);m1kpW{;K!uEVIO%2$R&ZNv)>IpcUM^kDNc>#`0A0`o_g>r?M?s<8vA10}M0- z7Dlwqt*;cly?@i9pD|f?J2V58nMA}D&o?&vH?B}%OD)+bAE1Y5@}+e*T;A%la1-DXM!921#Hez*Q$fKX*RRC9nl< zN%%_b+OQ8bOgB1Q5NyRT{Xy|bXA25TKoB$*K-EG-W^lQ1abW>TuoT?yP#wW3iX8b! zGYjLe!yuf(s+Wm{`z!E^LL!ID4P>CC1grW6jv<4@x?P}}k^>w#Drm#mU`7h>+8z)z zaZ8lL_J(4gqEH4r0W{}C6wk!eltIF2@~exkLS|cqnYoEIc}P&g5#odvE?o;zI};5c z`~{Ao($dG^0oSxKElL~HDHN&vD9$h^<3zMLIK{}nGXzf?>KvH(kTonWnk3dVrl$9F zGcN-nLx_PYySU+EEVxY&0l~8eXWkQpiQyg7|CK72w{gv`LOzu!@ArKCV zG$y>`KNELozoF#VVf1|L*!ftpr8g3gYzd0s;p6%X1U?hU{fM1OYlb6QPPLr^{(r4Kr)IF z%0#?0gLOxTY0uZn<6itt-Y0f!TkB4S_)zzVEO^avZXnA7~<>uP_N@~9nepy*MhDR zdn~@{3ekOmRlf%(_t>dOUUgMg*`d1VZH*}@MAc%$YPe# zBN5xy3WSY9y6{fbA1d9z&ZmGN=r(N}9lK*vnl{5y3pbPGw-AtkM(#3JXF{`iOlR<{ zz!{CSVrbpS3KX8jTHxc;2%VND-j}k_XnDbix9%d=n-@uT;M16hz7xiTa3o|TUK)(L zVS5M8DFtOQaC7_cS2@CJ8Z!)HbzzSTN4i{+cHhO*vrhnXm4j)HL=Ezu$H9wYlHNQ> z%De!}tN82JPv5@z<5`8dRskZ2oH21WMbknWW!!M=#n>~H;jIe?IEt*n^!};atTV8d z&fQIT(xTqHX~QR>i{76;U<)=Wl%n(YfiM6&i*CFFCxr00Bt&_@l_%XO&SuQ*Wlyb$ zk%^c0$-T@OS^Mca1AFx2f)txgROW!jxH|7AsNy{=$MLtqI}f z8@{Jq^~^O+Z}f_<=c+eeY8&`aRNl$2x@5s~?SURfcIB^boi=|jnJ+q-^4aWHl$!e3 zjI8;X*csE6Erq>t-i2T4xs;7}1UlQ7dt?lL-?-PsU_MuU5`#yAgNu}&RH5~(p8e|C zSQi%;GpVMWgpPFBY{JJMlm&=MaDZV-jkcPyf*44O39Dx8=b*(e+=s>XKlO(lAO!5c z*fD8@mz0KXmlJIz6n4KfgS|{`J8o20HnMFWI zg2jYTQa04u_=6q`M0^}FxiE{wQ4T4YUT;z;2v}h0C@U``$4&qjn2v4=n4O4=!ZerC zNq`9e$3esg8-|{kNQ4ep;4nmD3d*zf?l?D2z*a3+A3+jo;DwOAG_0GkiEZAt4XQRu zU_+jpARph$YOw$%en@0tr4CAFs3X7GE!GQ?8_2~Gr5%yPAoPC;>j$9l4CPr@uK+_2 zjb80xPz#A5lAT&&+tctJ4XiM+z(vH>!mxE7oDEv=^r35&Dcg#vg^q}0sTL_yq=T1- zsyNn6T}Z4$lSvOOZEeJR1THq;=bQqE^hN7fTWx?G*!i%tD!{;{yW0~ct^Z6m4?rh_ zw?Wy0dxYi_6w0>N)@wkA{^z4il@R&V{(2qhgtCR$K-h`6F=JVO3KNQo-hUHgP@+IG z#Wsp_4Dbp3AIXFRry?of0Z@_gERksNqyn6gbL-C$Gb}=+9L!%(w*WLe9B~5I^yA8x@C=N*EnQ40eDJ8(CmOdLeyO7h-E~y{>4>=eq_Pf zPAO9qDTyi&%+(iD#?@> z+bgg(oOP&C$w36=Yp573RRNx}Bi<0KDkQ(5#`|^gz2?c26gUMG4pS>+at1*GC@aSc z;~Mz?dtxiZ2?5K9HYAr2!3vS5SlXywa*Y!akOgBG+v>RETVTHm)-axvB6#h<4HcM4 z^?E%#awvR0!ciSZUOYYr&N|P3as(36_Kud0zbe3aMaoI2*=?nJETlOQy+~o2;AyQ~ zwdxvP{?S#$$kNh;({&;?;wL_tYvoBrX4LUgN_J^4AM{G# zTBv{^2-4q1G&69Pf>}+7_cT7bnuf+92-hK7sh&DM(uBU6pyu9DRNHtXNR#)+XpYnx z_=+KR17kE;mVk$jW~U5=OQ?-A0L%Du2b)|*jv<4AVOLiqXzc*4kSS;k?l}&BHdq-U zssj@{;t0aHlh?l(k;)F$g8s#@GZMr}hd~^b$snwaxHQ6N6w`C^zk;$AKrEagrbVYB zHZHzCD1YQu_tivK2hrf=5!%J~v$*QsjqeKB`5%`->vqk;$E8IxYB3kqH@GLAVL6|8 z+RC?Lkz)Ai&Ck^jZEI-!&c0pKM=&He+j(Qz-loS&q1Qy)eah1gE;jJ|qkp8?C-uTv z8Moh@Y=X-TE2H)<>sf!T$&^q0?fP*~>CS6D&kr@a@kEO17`6TpEXvaQnrOgt{`6d_ z{XNrSb>7Q~13fa+@6C*-&3CP`2(E}x=ZFm{YiSnUtq?gjE;ig6%NL;&nelSI`UUykA52-kMktd0}1C^>u=Kl{HRF9Oz&A!p?Bp=DZ-A zVSDD_y-$5|4WGY#5wvDRAaS5b=IdpHzVZDN20y*+`&kvrN-f-6o98@H-q@mwMJGt& z0V2BN#KZH@h6fAJAqsWA9XqH^MSeQvgHm=7WWth`4Nr)Z2sObFs9xliiW^UPi0}~r z#|+&|h$FN1d(&Jr?Gq^F7B5@&5_Ei;Cty%)i)2Em$U%490)7gRa28m!;6y!!!jZ$m;{|5ME`5n5J;JwP1q+%;=8t z3me70&3@&e7@}`>uVfg z~#&-?!e)rwZu{5cxSKksB zB@p#oUUm1Rw7cO4$?>=h0hkqookyD$CzD`jU3{&nM`=Qbeq|{pfkGeVMFQ?GybRm zjguTlj+VW8pYh<15coTcnYlMgEW_U^m3bvzsEr=gDHC~S^GyEQsEf>%At8%?^G`2M z)*qda4!rwVLTk2~Z;V^HZAR6>y^+a`-$W(CIx+sCpYP~1i!U1sGT*H}6)-=v={7#& zV^0pVfa`1LU3xMz%j6UK;ZWkUzh9j%@R=ub9}3qLzhJm5%xcf=V)68hiT(h^^gq^`U!cSyevli%!tEW6=(Gzy| z`zR=yaJ5G4rPAXc>#zKF5WdWNaM7NecQUF&dG|UsHdsY;Wq1TD+|&^<==^Z?lZe~R zV{*QJfg#r-tJm;|IzDw9UUk_g=xE{88SzxBMb#INwxlJntm3TZys5D8#1f&1rDg&1 z)0A(eYhs(WtL}ZH`9f{m{>`}uqxYNac;K(6taVt5C#FFqaj+}(!<#hQ?VdxTZbcO( zR*7>(GAdyi3>(&*7KZ<0h_k4#@tmLCYTc6Dl(S25_&zCF`#IYFrCyoA$6IlxJY0FB zUxQBzYbxw+xOrcy3~BQz&?58 zl(btwQOVcfXV$Mzp8UulUm4eJGxlj=Mz2%ifHiBHbH1cSwfl@>sh?k9nLGEY_mdbzQY%-xNl7UH-*txnWIYX=J#@mLtVQ z0=&Gz?gjGwnz=U1FlcV$eyS~-WaSmD;H4un*SdR-b;+YM zr;2?;m7af48aU1VTZPHrz|vj$SJC{A&5ri0e-sqc>int-{pJ-h2}SUZzRJs&@ncV1 z_)x?rVN}*5{JDj=+}cGFXSgnH)8Q<9z;J}qd|A|LpKc{SpAQ}4JA$lgE}5TtD_ss3 zd>x@4{ONjZsS&(&rglpUSO^pat~9)R0+a3;%+p~Lp` zmp8SUGv%Uk9}dm8G`s)bfUeZ3ONBzYQr?E?GY)AwUA3`V$4=XtX9un0_1kr8O_h$; zsc6o*xb>Fm5*RTHbtURJ*Ta#Zwq4{jgq4NQaZ_ zdXRX+iFkTnRFCV%Mu0>%+MH}`Kc!+i6SKUPM;n=o@8o!9BMx5VD|K_7W|v>%(ILn^ z6(feukA5p}&qiAf+P&!S^0#{!{=L-yU;aL=yJ+L$Idg0YWX2vuNK+*M$%^!ewLEl`&y-YkB{& zP3HktE}fwP7npo#2;IXs&0Ll8%>=XxlMW2wZZ%pKTBgkP4D~rou~d&9T*mbA>?JMC z>teL?fg=vwX`hN?L%Fd7UX{?%w7R_Q8l8P8=X<4l>I9<2W_xCdya(e213+A*Gmt7n zW7>Xmoo>{c0hWAMlRA`GIq*IkN*wz4S>?S_7i?UdeO*Hcc%VB%?BL2t?s!lELHKn4 z!2^iL4S=0}k3Qv#q6;2g6QDhMs6_I@oDT)lxs-Zm*rw3Toa#yp6A>c{p!O5^9|%Pz zKhjMHZ|#5}id;+3zj1SOla&zaTpFFDCUnBDPvW#h$)p^z%MTL2`1AS9sAhWVQ$)-5 zjB^6s!fTTM;)b1;UokHsJrJfbkm{@l1WHIChgC){@Rg&08PPsNGD-%r_~NKY1$ORy zOpdE~d!nLa5J_-94K6VIBW)^}XVxesfrx?RkKENmo8iJA4}lgSe&_K!D4I)P&xvl=?yX(9ztFEVjUVAOmJcnyHe?=ffAVJHDfZe5BM4-K{e ze_;qfQ%_WX2varzjs`3eEarjHt$g&1jECS^$%}(eS{-a4DO?x52u(MvtgOho685Ds zz>c6+GJ0`fuRnGc=6!@>Qka`>A8I{A46+y zJvTF+XkH@%B=K~LB^P>eG&uLsGgDv^**=MiDhdVILRm~IGGy4}sW3n}4TuOGHv3+e zT|`+b+1cEIk`$kRb~Mh-52F*{sYKF(-yPXnp(sYJqlk8f&|aYcW_VU&;sOUQ3|D-C z5sFzg?Z)&HIB+D^4uFec43UUt3ohX&LXH7r<3{eDXz_4?-LLSOHFg(9({x28`3_ZG0T=C|Nq31CHFK=`XV=09-7NX!AJNQkE4PmL~#B`#x_ znX(G0p@VxU5KSOy_#9ciu^zN_O{>p**tE|~F%3SV|q+ZY8G0vW@j50smDNEBg(WsO=6drn@vue=Jr4)V$5;5Y~7u#RiG{47{a z!MIxVOjE2~`LlWG9xkb1h4@? z+&^p+NQXIMYx{0QX%6cIpatjPx{DM4#|6N621>)@kt$q(fM`l#nS#J;!1D%Rk`eg} zL42P-e`c33UIxb@?*!5N4t&10@0o;q@iNVAJ>L4s?)l7@J;J{lUNiIP zS-jZI9Gw#;AVAs<;znbMVMa+A&FHBx{ULn-b_+~wF5pvQ4o$(uFy#1_V4z47J^+~* zg%|+h1bBl>fC-GP&rRRkx1V8tOwLqf7KG=B05TBpNP9{i0SKn5?Q^u(5@pSz!|P{WKD~fmO@v6$j9oW<)P&y>mH;$ z0|v)NOzjuYU2=;8PDCc6$XkI_rVV_I0$faZS+Fld+YaKQmu_4nY(@XqqS^pT1~nWT zKud4$fA}3Hk9n~0!e8(NX6mW}LyL(X!&*Q?h_}Iu5M%_PkepCq_zeam&CD=np+IO{ z7O@T9=yz!Vk4fF!pOM4FM47!~=+v~cS8zPOKG*ccneoMs%G_?56zn}@ZGF%uOlAN4 zjNxg6jH$njw@|4n`3HVqTC-1Jp;w2mSFI`2>ki-OxhcL~vT_dT?U$+^YQ5D@XcS@V z-;?QAdN!}8F0GHpVR3q6Dc}QgFvC+$kO}rxm`3Jefl)vf{J&lS1psJ9>Jh?S@I2%4 zyud0Ye*)SUFu+FOn=_QBX^7N;=M%-`1}NPGc^Tj=o*ME4HZgEU!VAq1$?^>+5E8X0 zND9JTOykL^3+U@ls1~+szh?kyxDsSGDQ zAp|Z%Dp-GjNQk2Ydg~y-j$!aXZD4bRRYv6rU}acJ-2#K=9UXjk@8Y>M#JVE%30aVE zID@&gA^Q4%Kqx$~0p$RNBJ3022Xp*oxVH$w!v-CWB>=T5@TUEkG%_f5Zv#R|L`}>p zNhX8oUG5^D4#?WcKlEZlsvoJrUc7K>_ufg7L&t(7H$lRTm4NZ&v}Y&>Rd3d!Gsi2v z2mFf-fh})XvVVcw=FY{>Bz9c3UpD7zyO9Tt`-8j_Oe`)8R;t@sbM(bWI$te_O4^_s zBzZp~Y@q9-(V3i+R~@e!-)&d9eyGj#koj4+(Ys6E4k+4a@mHO^tf<)1eS}Xx?ULhx z=y|WdS2)F0%O$(T@}5g<@9w>ZX8rB^`PTM(ckk9w+oA&lwJ9T;#cml7m|vARU7!3` z(9nCtl?^*7)M z{?TO6t)F|ndCx03-%)iV`oe>%Cep!f;{F?Vi7>~WPG~dfXQ;iHdO7u-ZPV&kqSM!x z^W@uZ>Xc2WXJKnhSiUycTQTg(vEkRNO9ga04r#9iC{dhc<-c|NmW64*eWHZFFCA>p zH@O8*Huk=}f%ZR>_7^pyF%(MSXqU>ZAJ~$py?^s2%Tasr#HGbY(pHEJ|0qkUABg>O z5e8ABA3g26+X61Wy}Tf6R(JQ_jGbH8*FEv>O832Fvgf4i-Vphlue^WR{tlMd(r`B6 zk;Y)dOGW3l3d@W2)5}v+r=1=7Zt#o?Hq4vgt&%h=F_r+9AC7|sbNd$6Gdww#DM*Pu z445tCRHK^^B{q`v7EWtGK+^|hx5|GnU+3*cytCB$xU>a>-`oUJ72Y0oxY4~oPn|1e7Ei24FdGmWShfYVxtn~WKibMJyvOdxMQeW5Z&S=m|>{)2J z_ECae^U;g7YN@I2O}Fp1Rd*=**NHu^H7v+K+@Jc+GI`gA8tFpDj$HqBw!4Nl7e(kN zhHGr&^yN6_V-e6cHhtsFN5@|^LtS-ZGslH=a!m8e3O!!4{S8;!_FUUnS>)hm|0db2 z<-Z+P3#~KR!@N#LAv|ye%lr0kj$ws|h4zd1Zw^qhRBez9JS@0x;w+#|s0Pa*nj9P+ z{`<`*`uG+KZ3J#Vd3frIv$NQxUmChsM^AR&F!;y4oBiu5yFBW|e%sGdnlX(f?z5rJ zz0JH89ADp_6%W{?T2hF@as2Mi;_X|`O%~SM#I@hl5#UdGwmPe3<8dYaiOUy?0e`0* zG?8(f-n~V~>7t?4i@c!r*Oxlwm)5WzFY}y?^Jz_g*!z8S)bQZ6T3bz@(eRgW>u*tm zW97rm$MnKStPT3N`KmwEJMg-x=!3-~=gamyUyZkkh}d>rjrRjgbA<2oTTP|UZ^}9D z=}U%xuL|0#%95uqxoUm&y_D|Vhrd0$oG~@zkhN!+%k-gJM>qff>*3}^<*zQ`dnZ6@Z@A&6-<2^S~i>#S^iFIqc_K236p-4 zkll|9;%7sxha61yjW2#6q8qM0^@wp%l|k`uL6|{{$Cc_H`(4dAJM#PZcOe{*+(yTh zSBHDrdkS$e2qfNASU&wkzR#vBQ_Ab7`Ym_HAITTLa;SUSwUlf5gdT16&|({k>pj@e zZ&hd4A}MzE`znIv*b7w|j8A^PCRQ z_(#aZNvP!Nx@kw!1F7Dzif6Gbp}g8{92&mPR&NgsjTvtEK5EpaK4LvG(&axsm;Wy5 zN^R;nc~gxf&yPnK0v>emcK3|+L@Ni&hD40Kx^K(B)P1dYue!EwNmt2|sLY04ZZgQ= zRg&)i`>3C*e#c;iC9t0r-122#RG0HbUE{ellQAJV#;`U$^!?lU2ec*IG;C!<s3t{!{>2?1dmda}C2P(<8E$+7G6@_@a zsZBwWR!7bql?jwtC>%7kz9jv9MC$uWv7@!73L^fkn;-iH>s{X)w=yPs=hOb!mxhMw z$8`!GT@@@U+xE)!ERU|ME4xy}b;stJ>lGg9&#nE!PY7YlK?Cn(Dupre7M%|KW#i-L znp-(XmfXnBgykrX95jP#w|!y0KIqHucLb*u*eD0V-EDO%$JNLYd#V?qUwtM_{7RS8 zdHG2e7Vp5D`G%YN@7C#L`jvfJ*YuI;nSEO5{>WQZx0GJDq>0TqrPj}2BCVBR$=kWiJB54ljkzhC-kBk&juzrWlA`@86`daG!VP%yxP_s>?M49S*10KrMNId zO}`_HM1^@LhcC@?TyYO9TW-*r*S!nNK<((ltv|I^Ki07B|FkeG-O2m0F85(g-Bqlw z86PrRcC57>%R8w!bDn#!IS9il%oBhc4Cs1pMirs@y2=dXf`LoyXsVdxGgst{YsKjA z5VQNsX5Y(xM_Gt})J(+xRhI9uJeHla=Cxc}E;<^_n2sfzc^Eu(&%N=zDq+wsNxoa-G{+bU|Sh1b~_H5)PoE?bvW>G%1YAyeA2b>6IrO^mf%Q}tF{^%rfv z7jxB%*zS0;F9s3l=fs+{f1Vb~KOB*x6XCeK&@3~cS8u-NHrrEDYr*C5&CB;2Dl&8Y zw537LEl-vKF%(X~E!NesVvR=%LE3^A8!V(g`dag|ExFwFYR+d~5^O1PHn$Fxx#oU( z@9xP;R>gxeksIb(Ol$wkz4$>&E!nu}p0-zsS^8Od_y3OVb>(!NuaR=%>JJ;qAN;J{ z6RwHHF6KVDF&5oQxs^Z6=chIdoiI=4XI12MkXxIWFJ^yK;L>-4!hm1 zTD%H5k|C$Ys) z_Ga(m^@D9E2w*^U^xnIb*nu6|uYEoPe7a2Cxx2lS(P%KhT#`$59n>Wl6m13<|G4loDf?m%P{5IGaLIMn?F_DVV zOEiEt2R;zGZwyp{djd$gapH9c)H06TWeBQ3?+*~kOGC&Ayxa`9?Fb_u7zx{U{S7kx z*>kSo%^d>Z0QX%=xIqty4iTIKCVez9;G$GOEB31PWb;TZm6d<}g+G4trZ=I5VFIPC<`3iHcW z3`aqmp-%}er2?vUq63p;5dh65u({FvU=dPA0eD9gG6DsEIXW~X>;P_qH#^PX!G%L4 z_(o);fWJ#*MnXNos5+f$eJ)0sA9O~L)g+MAVG^hrZG=fRx$wbe$q!*Ch&4j*l=to1 zx4_kM++Zdl*}1CW(B2e%gEf6^gf_6vvwG`BKjkW(NO(WcRwLwbZk z{(kUI0R7;K+(+UP*wjBkcZ_i&Z5(ulbI-ySx4Inz`~%ZnQeewZOyH_H4dyPo@I9&` zj583tea3%a^dc-18UX`lIu7m(h(-V_Ucvwi-7~ZlAIT8m2p^f?fF1--^fa)OftwT8 z3FjIX%u!e#YR9Y%RVl<14etbEh`~NX&a?H1wj z5OtuzjJskb2cYw#)ERVW06#yYmG=f=ADco-)8(b>)~zF)5-~TSA5{Qa!yW*z3gC$4 zIiO?{u^7xAU~6bs^6|1-K&UaXSBB{z1d@2(N%;kKBOo$h{*;L_fzPG|RxIN7grOV( zMTxc$Vy1(VNX~)8X(Q}jQ>pCciSf~q-YV> z+{I=0@(q%dwH%{)rg!8o-UrAv_=qxJ03icY23oUVC3L0$B1{`n#Rw#V=MbL$K^O=y zAdy4?bak-l7&gkt1VTVUiNClQCE${s&cqChg$K@c>Oh%r%;2p*m6ViB22TC`3-&E2 zg86u3VCOF#g=#rn!x_X=afbdKJw26v|A-Tk@TTIZO64Hch>HFE$5P2%;4)&^wsK;*Yoz=(iG zlKTU||My8rVsP090cbDHL14=R?{jQc<+ZgGaE=;-Kw{v3NG6cvv5jsG7*e6MB63#^vMP;10YI&N`HrP25@RX80-afdAlr zs$bzkn6;Qef&Jf@m>3F3qy!CQkdPP~^w4Sc~{JB&}nX5)67&dw+i^$#(Epzb~Dk4|a`S-lM6hiMzX0ED6^L_%ZVo@tgBle|LOV_C#ROSwgZ4k3DtE1)QE$q69r*YA2t0F399l$}toWsE-az+|dz15+QA=;1pxYwBjMoH_BXBZMP?6qE$_jv> zWYeLfbf>&aAzbbL8sS@do^8t)GbgD;9t^J-#1<=VTE3CSSjZfAaB#>I!}#pA#vRRQ z)NKpB6+Cp~1|+BE8ncimdcy*jRZ?1-xf>kg1M?GAB9YSr^3shRBKVEEi)(+pMQp-u z2$67sH*K!Gc4+fC6en+W(jE}v`!BA@2r{Sa6jQpF>=g_vSEVh)6b(BrgbVpiO;0h^ zpql_Q7tkM`CnWe~&&>>gZ;cT7&nPKqkf(*+6^G_Qk;iP95&;zj<5hC!PPR2`ZsN8; zn?QRjMr;K>TuV={?)@LLeBYTf!7Ewm@xpdIG&;KGd@-WXN^nj%fzvwA)Y7ux<3|tJ zWRUYV2Bc&_if0u>Uv5W7N1QdOsIcbUo&Te<@;bO;7(L;sC*GYx`2Ogs^U}d&uWWtq3{-Pjim%_3#Uu;@n!GOM-XDAL| z-O^4U?CL|{-z;OY^G-XU)w6MVJ8&5u-tjn3YQ5z6-dn-Jg z7q3A|5Xx??tt~=*JBg>@XH8sKIg`HFj?mChtjc95gxh1&`!V~nL0Ndt$Y?Y=bKPb) zWzx@J{B<)aNeUl&GBY37dUDPEl{<8md)H0cm6v~dU=lg<`N4(kAN(Nv+1T6j2@Ajd zHUL*0NlD3al(ld`gIm-t85uu}kRVpX5Dxas<&bn^(uZP~=+T%bsjIW05c`;$dkx15 z7zLEHgL(yO2ZX3xhZzc-Hc&9;h<^+PDH$sgrHfpD>cJgUZT0%rc>tD#Qkg7s0d+J20ws$Q2Q&fqT&Y>(?D@?KlgtFC(j{45O^YppQaH zdHpx!fW)cB;1F_x?c29wq(uC4988!Oq1xC#ivjAUTQYEY`SF9adt}WfC}?0|QG%)( zVIMS^c&nXsXK-*(rECyiCN(v+rN3VVTvE)M(2d~I4*mJ_^8NdVG=4P=iI*ga6AHxGZG%_-knGY&GE$II?Kbp5@ z)#Q4Y6jsb8Zx`vU4^(zg57@qHm7hG*i$(hmb(o;Efk-U!{d z_4e=2@ZHIQWegJKO)CT>jxeMxLsIg;Pe%XeH>c&AHcwyNL(|j$@ivte$?xC)jEXts zQNbu)vG{*qfPQRJujBE024e~KAAyra?6Z5@Ero=7z4}*u3LbFF?X|kN=u8z0$2{X! zy+QT1NPgD4p3l>kueOa(m_6JE=jQ+Wb9%x^ebhp>f4$u8!-@Up#?;Lx+f0QztCpKy zVp=QW!tk2$uHWF*KbP-%GCVuER3V(-zNfjO$>+0X{sI=?w&Yf^M|QKGYf4>D@wqoK z+!_lrZu!4g#x*OL7H8R)?zgC5MO)IbFawjw^J5;4!<8S(oXo2C*s~0E?rU=%7F}~q z=|WxeMW%4C$nIkTwarUoo`?Pl;>bw6z_We3#abh+%?V$JIeu)P`eIoA#-RWAl{5=| zRbAJ1^&NrF8cpkJl!p468Ej?rXGl{G^LZ#o)$+BXx0RX1y*h(Vc=6jaXQj=ugy`Yk{qIl5 zsgCX|49WsK0@bw6sHt6DaOTRHmkU03+5aCG;KbIluUU^{!UXMJKU-$y*llIxVaVgX-cwn{X3zAnT1jVj$j`N1zN0$}6r2ui?AMJgf03^p@u|4VFMg0=_tggB z#1V_jZ!J#R`!4<@U(WG|>FwK?o+jSKETX5r?3LYfE%$5>e*M6vIR)1xrk7GvWmYxq zVNev5GqudmE%xbOb*;9xPTxp6(YQ|XQAz0SxVsBhl&;wFwnJaspxg9rrM6d$$95sP zHP6q@PAqgfv&>`8C=QW<|NB!E#=Ksob(`C8lK`8kw$|)#`^&ec5-;?gt7QGQ#nN;$ z|BR5S6t2gs* zhI1{Qm3}0`Ez+Cyj$e@k*C6*I`$!H8wL>274Cp-u7Dd{M{JSn*0EL@l|!aPo%!QYVYm4;~C6G z%P`)4gNlRDE7c7JNpCK5bM9m}QIz}jtLp9PKMZT6map#CX-_(th*p00Zr8>Cb*t)uZcTUWQ6m#4ZgMIdUgr^!DA80=FpqUW`B~s^SrGrb{?gZSC`*nA2 zH8y7iu@`m9mju=|G$`BIN!X@ksMpW1Js>1BgvYX^nvggz;n3)}b;N9=Yto^u|l}#-7IF$8Iv78X?8Y%N-Ve1$u$#h(?Q8fMj@GmA!`I(iuvrl!lztJCRkF!y9 z5iM9Tpg0?0zNJIFYi?$5gAP}!rgnZ?THJ%D>O~K2JeU^$Pwo7zM(7*80 zx9vHe=8t3N#rISUH8?tQ1{rVn71dHy(7eX~@byW>hMcF2lUIhj{${#l^eqMtY>U#i zg*CQ!7qg5Reeb(k7k0m(iPxkqvv0AAkHeNVkB;-7;V^&uw!{lMbWFb*fJ#8*~(JKtppavygxo z0Uil;okCZeiY#&Rmw@(uuA(;+!cgjh8}!{X!|%n?%lgy4h>3hg zj0O1Y!nwLciBv}oVK$yA`8(pVEgM=s#$GBLtX}Fn-0`PE*tyf7IxD4HF?zJf@WkhB zW`T+Jd)BPE#J;TW;mK-)&d%#`k=sti1sL2{3Y_|V<)x8Mev``0fPfI!%mY!er^2mv z4pw9yHpbt0qPyu){KiEb$^8>Sj>*5f zXHwP<)_&w&vV5@1Hun-=HS_FHfuKvW;1boHf-jppSc{CrwSU+jXmYQ+SYRsde<^}- zhnl9^T}_jH0*{W(d_-F#18x|Uz~`Z8&68icR=9=c0Kbx~()*+V{=*CbRvio7L8SZj z>lZ>~S|E03fT8?}Gv>}L;1>cm>9Hs4nfp*A{ZrUoL)SwfzPb4}K$$4>P{V^6WEk20 z1BpGV`+rO!U;f%vIW38{0v$mA$4hKkIM6a zVu06oJy#!K`M&!};4tDXNH&`@Jfs4nPjrn8!~?p2f8%?rMdaWKmS{)_Cj&}!gmTXV zdIE+VK1joBZ+vfh(xBUn1S6M2l<5qEr0DB>6wBCzqm{j=c}48V?6@av$@O|Qgf#7p8f ze8iRk3>0t;9^-`vd(qC~BdDQO0u~N(NgMP>PqNot#uxE~twH~}m+cZva)c}^Fltv4IWkaMp@C)%H_*6H>7JK3qAbBhz#6J_A7Mw45 z3tSu2r9@RQfuEPr*E)W@{OD7Rg&f6CBW#8urLh`U?=}DvEpKAvDp}{8IPswT6x^#R z8b?3yH4=JSfyPoiAlzgzDQ+5+WMxy|=g&&$Q($WUDj{JNRO}RY0dg2oTxo=qmIhR4ADolQAK@;b zTcLo-*3dUmQ7a2JBx!H|lMC`!D;Lw3)8IhiredB~`QwKY^swXzia+0GTv9@R_4dLz z7P(7)pbVYM#`K6xys-pvcYggc!!m#^M$h-XTvs*2D_UAwa(W@8`dtrhHf?OxMDTbA?jYDq%T~Q1u7W@IXzSM498iYlV zhZ`mU|3D=b6%_#)87SKLJeIG{H+>xh?+2e`sQw(hZo!oCvry>^?2FjG)y=fd`*Bae z&_U>Fkc>}He*`3A zVzlSacj;-|bKgSF=X`hnAs1yvp5L;!stxm=Sw)^Xa_WGGOKsAOd4HgjT(#1+6(ycwAgr>BbwSPpOYw`rSLcwZ^)swt0B zTun=dY2p3UBPy>9+dF^e`KbC<^5+C^TWG|%$f4C|f2NGHwCC-oxqte(_u2F<*A#Yf z=Pi^N9I@#ft36UF`gr(LbHVcq)$hi0w*Hql7*@+Q5j@D@$$)Lih6v)WGnXmf10XKR zNwJMU%SkG55#5X;g!KTr$n301Nlq>>mBd|D#!e09*df4|f4-?gsZP>P%qWQ7h`|#H zpSQ(j9KdWBgm(AN_7osRe5_v2CSFBEKuY}yg3~3;%;&NDxEsa4jf#5aHaD9$69=kHzZV4VyQJfVQa>a#6o^J`eSIQUCQK<%2}P)e z?aljKLNUpJGyeRlT8ak?MF&adJ30_5atwe4=`P@`NzS)GF%w`0L$X;C;#NhkBSCRr zUtiv$F{FQfs;++IHq)yIVQYI&&*IY$Re&GBNgEVwA{t}p4a>~`fZU^0diDCX7s+>F zniC3dAseI{VzP4pXbHHhCip5aQvxp+%o9#>nIbQS7|lfcpC@pXea1YTT!!#$(I6ei z9}F><=Jdv8s{q5o=j4Yr0-ig=xJ%&0)g>4#0?tjoALJVX!%zG^Vs7Q|qWM6(z`G9# z3Bib=1&OnSP(rlt?Y$hAZ8rwKz+o`~zH$5(U`f)qfMZ$=1doIYaDT?Ulq@tLq#YU_ z-V6~jd}DZUOCS#T2|NqjS8OI~_eph(F~)f#qr-47#Ucqkumm!UI!x$6?tb-30JWPU ztlR(voyXL&0Z=9ZhEOvj%gy(|^NnI+tK5Ov9f!*dkg0k9J*fen2E?DV0}~SyWVlV6 z2RyEE`PLoCftAU^PLcoR;84;4E;>w9gwK9>2o7-qWEJ>n%&ZY3eI0kQ{pU|FWGUjS z%@a-x{@+~I8Y*KP+}8L+VCqtwH(h|fABXWVNnenh{3s+HlM*=1B6az|^W)`}mE=?a zAjtq<0S+tVi3GvL;K)cjRC*i1;>XsGJ)CSFut7&4ry71~uqC_g;jw^f21?Yydto>P z8)mY%!n^@n1T8m=q38nd+Vy13Hcdh_beirj|3jKj{!2mN2Dh=Q&LqlP3n_=icRz;8n z*uh^G8#vwaq@<)j{T7n~5ShorW*0@?1fblszU2DU?x$BwEi5`wy`!FIV`neQa2|<& z_pS}g5=jnZvDcb~$5s(b6wOKps&+-}Cl!i3t02k-$Ab9u$kL>UAgoVu=tm%r-lWV8 z{S;*$0g#n}IU68Na{K|yxdKo!wvXa3U&zG*1HwgVI>gDw?IW)hB8g)N^q2(WU_j6m z8tz|FadF*PK%}j~vxF(sK0t*eMgq`FX&=a7MV%-jA_5?hWWH4Fpi;pjj!`{vyaAf! zV7DTjOnr(~H(C24m6~hU;p@)*t;uE=JI_e;5tObpV#9!* z9FwrY(ei+A4T*H<)P`aJFnxStVmSUOG|LXv9t{>aIhXCjf*`&Do=H$}DuHVgtDii7 z@rh|R2~`iiD7laUhbOBnfSCB*csTeg++)ura~$+QB-6(*6t3Qwhx}(?0RQN{2v1!T zUQqzi-uDV`PqP}EQ+wd&X>w%Un9Cq%WSL%9;F@4ltDRbJ z>T2Hz2Uup6?L6taSMK3~b4U48Wv`vMR%dv=eJpNEmafN9k#?^&!D?GNzPkR_&Aa|V zUov>oT6J^2k(ACZzufvWVS@eR$E8Yo{G6cO;b zcX%6$5Z9Y~Jj>iYwkxU{4Uc-=y*Sgea!F)js$1ob=>;xM?U|V_4!dsFNfg@Dl$#2f zbJ$qNceYO5vYT*X8gO+gKmVQm*!!PxxzQ+c!_M<+Fd*3mw_) z#*PMoo@FR^XqpVN4rva!5mF7iERu~7c>#4jxHK=m3HQfzU_RfC6Bo>k%j5keXgo3N zBW;qfZpIT-HGeK=KHGIPqEf{s65$CO@vK9KmjJQ}82-R}_eGpQG`A9pAl$LHx|uUtWUCsZXW}m38Nwi5*2V- z<8Kj3NdX8M7emK|$f7b-^pkKBXji69%z+T zVGD&LM-jFenr_VdBHWId4DrvY3&Rw1lZ?#zGiT0FivovX(BeS3xrN4;>Kas3mY+H3 zWP)koB5o&l>}#G~UB;Mu!@LR=Gj{f(($X$O77EeS#eMh@t>efky_ z+u3=!m{cL<0$Y#9$%aNotvx+O2usbUk4oQr;4p|xl*5IEkO89w0v%9#(tk#|f`phB ze0H30H{sLdMZ!@saDoJE)%x|td&V2!A`a%pHEhxM$jE_y0CiF8hGwoSKkDlf5)<2# zYIHxs4GkwO-uiak#V!cH4ouOM4l5q@B)VD58}+TM%CILFqaMz~b*qE@DE8*_SSB<} z3(ZTzXtcVzn&Ri6l7undKVib+#VyzvIA!f`uhVt9hTr=Jqj*e)eFFm4xJ}hJ6Ndof zcd}PQ3yPW$d?cccppOR;hRzj|I}&XKl^C8mI*72GR^(v7X=-jxWlmlm_r9gD(#LAwO4kp*QV zKPXN(gx=Y9Dj_8n$3Dbv6t_oWUN9S+yF(qR7NdAz&(smKY`OU0u>pt*vPpTxs5nu4e+Gkiy}7E97PWdV6o{n z^3{Z0<0*@+;231-`+RV`so>*C^UEF`5sV^!&$P&>MCch8-zm}OpL)gE?K|jwJ$=SM zPS|K?fF{Ny;=wp#Bl!!Oa+$)La_)3Dr#vhXxSU8rfFFsV9%-gK_U2W^u?HQ$Y>I&8lE#=Qw-`)8!|Jrhn|Bt=*4(Gb>|HkE1 zk%o$dq_RRNA~Pc+JF=2c$|%`MDx;FfimdFFtdw0=5*b-Z$X-bZm5_BmUgvdvkKZ4^ z`?&wVkK?|Mz~N+qBon3`pq zeh327+FC$l7bqS&eoQRx>h7kcIn8=^XuirGu!dx#4RM$OkRbIFfHc6WXuN3OyC2&> zy;OHYLqkJ7R)PVUN<@GNl@ADEa~PU&S~zx`yG}F6W)^h~4-#W39c!KqCXRt&N1hS| zO6?t`8=w_66cA>ITS~6m!O2GUTbw7c7xN1X?_ngo62ziRIDDZ{L4kPQ z((*mXM+|3Qdz)*2;kh#z(D5Dp*|&0IJ}A`Iqx9_2oK){q*G#U zCrE5ExD9pMp?hJ@QY;%cZoDXTChbgG;97)gDn!~)LQ!#M3?GAIXi0#z!SM0~E9 zTbG2GNDU9C;PNor8u2KWV$5=E+$g>b#4V!`36t=_&M#k*bka{9q=&=?%sr$M^nZOI zK7!sUUDxe&h%Epmv}_j8H9{H>O%-vFqYfQK<-#b%Xhu^+nmQb+M1%ttpXk7#zP&er zi9(RC@yD1Zo*Eb#p)!=;2|9kAy|XjsD|th=9D(!E3963STK1rU@o}EgJk;^Pc!2Cd zY4fzKjJ3?fqpf7~uJ!FrOMx2YBmHYu}igW^?s4O_N37Q%NE~QzTz^jI=WVb zaN!n2i8&-4-hllHmk=-@WIwdc4fsu*l!M~OL`7YgC)Bw@?bj&qp>gto`loo9^kuLP z+=2X&yHL=i=%nw9M_0r7__LKl;wkE}AH{Z%7ebE#(Q+bi3dlZbbMIC^Xhyg7bEJ-B zc|pnp%u6So9`Aw&48Q&MP<~jL9(PVCaP#(dBDaGEtnUUI5;Zki)l{7s%Gbrkh+;%t zzw?Vc!lgfd=2|YowZSLAUA;Fim#Tvd3N*CxOD+Sj?xCb#TON~faB^aok}3`LGPkn} zLd>O&D6M%)tJUOD7ncP6Oz0YSeW`0~3_zX|C;&#h z7fQOsY#bE)Cn85kc<+*PPab4Xz~Q#nM4>UR6z*yL3KmbE4VwYy!GkAv^GU`v z#s{#?Q$&7v_Bg!qQ>CV&p$*5)wYhDYanq+(N7v3Qt_isCs;#U}*O*9j8qwQ?cJ0_O zY(?uL8h(4-DB%0fu{2cL@a&n3&bfIu z*Yp1g3(52z?KySq?!&60j-87qNSTe}(N<>_pzy+bnblUFKgKAmP`Z*W6ZNVG!wnPy z-eP|t`MFCvXzC#9&6_WxnA{`ocn_5{P2ZiZq|XBILQ=$$d_cmM@hlNpJ0D-wMIo9a zp>Aa+52DvYpo9NQ23;UmVlN`gfT~jLgWCbw6F5GJ$`2qe4)?+2ExS17(shN*-cX<$ zu7oI*OhyN0f^aWHqpM-}{WpmD<~)!(lGF=SrH0?&?Eh#1NYDhfb;hA!$;ZhkLmgL_ zZ=ia{WU|=Dr9i0(_Kepchcqg!5t64^Q$sL4=O=n4cqal5V-a9|Ct_MXLI()Thf;-1 zQ-i#n+SdjkRIEj1baXU!!wblJ-6QGZ4~&H-k(mgvL_`Rs!OJTTWv)I+P{dL-I(s%f zCkIpr6QW-Mut7P3qv0pIZ5mZ|B%1@e+Xtu|oeY*b)X4J7x6r1->JES#O#;c^M8S-Q z4(4qH)IEj1HCEH7?xK9QK6^w1Fq7@_ng7$I7RB*qY-=xETOhXM@FhV9aOw>wha(Xtb|qNv|p z63hln1QnsVWL!yQ%g4(FWKtTGd_LP`mV>Q608e9mN&H6T$@i02L;A9aJvbXV3C+ z=x<{Zx`*(F;K;~Y9N(mH1~XC9*ti8Jhn$KL5CEe1#bMalX-Kqx3^*5;RGW#>*oEuD?dXb3F}4pYJ$5W_omc5JCQ!3O(8n73fxK&1t4$J)wjpP-=D zVI>reXe&t3ioF=TNj1WHNel-LxI1Ya5)#a4a{6wJv66`Z0AJI=<08AJ6!Gbh;*mfK zz-vHS@dhA}CFV?_2FT9lhjOX(&zCFm>g7lK@9Q}@P9SK&Bx*uZ{<;CY+pa$9duK&0n`+4a9&|G19Jq*N>`)( z;$S5Nd*q?7VX>R3$Zrb}<*^|Z-KZxxi?$&I2Qu4O^k*bW8RH3{{*-6?@y6^h z^?a6orguys_8Wj%_wkIvkb|ObJ4ATsmXr|yj=dj=2W`-?qx}M{C=(eyV>$5NiQ=Nr zci!*8hCB-uoNbXuUFbIMX!_OjecK_w%%NtzxCsMA%7Y_&ByT**;;Y_eEWpiv(XaXZ>aQqw^m?CbAOfHkCOLvKez zO-*N93)cXoibO(>GZuD@H($OyfinQ`;`#_%clYD4hr#qg(?3oDhdn$zd;;GT7Y#MK@T~=V zG>l+@0Csv|fjdG!O=kYdCnf-J!1X_3(|H&S2=Pzw^7;WK#Dj$j5?6&dm%!j+zRG?9 zfk1p+>;*@5Z-%mylzzq?$o0mB{col&RH|?NJE0xHSF}JIK>TE=LSW)SY`7)jh7fEC zr6e@KY=MD+xSiya?N>Sb?`RA%odsWu%v!)9fHh6Vg_1$ReSIduSbrxDbD`WL+4z89 zkxZ=`dF|@u%RByl!2_ZM@#BBeX#hc}1NO&xfa3yOXFYf=n$4RzkQbAxe{e2ivoYcEwqKO0qqCoy1ji>R$5BtX<+FZLvxDVZNt_* zCxJNQ{*Vj(?Hju5t>|sdfRq3rhb}<{donW5_ajyc);O%)NMXyZWD{v^ee~b~HFiZ5 zQ;bqN7zl@&5zjU-2%t_xM~+7g+!fj|lqF;uNNw2@knsq%#m@QmCJU7QAa9F$U08rS4FZrs2SCOdoPTPFq5_6Gz)3h3NC+`N z8z7Q6Mu*bV;@+Z&{ZCRl0AWO>?8JkJPlt|MOhV!#CZqf)n>WGfjDnJ&COGepz;lVq z3Dp@&$2gL|0|Wyhu%rh-0f9b18|q-hrcqT9TPN--=E0C51Gt(%<7tJk8w%kWK;J<2 zG3-{bl{^i--i-1Vw*l4}7_e*l`$_aQwttd;MBr^bJrc-CP^7`*_!%NS1_}bVIx+Pi z^9M<_+<02alMZYgh7>$CUNe0#?OkJ@9(5E4&^i!h8CQw*iX~1`MxcV$lA5K$J;fG8 z)-2&k;krSLeszC;McXUbsz{rNi;1deJMz8Z)x?E?0gF5Vz#o{v4ZyP|CMI?mP07%5+#EcU*wS!_HvsR$4pD{20g{=-{_f6BQvHKs0$+;9juIz1!A9|r zp$I|A6onrd7P z0%C-98zX&lSD8sO#{J!ePX~=Qn&086DGhw0vF3QNF+$i+E0_LOG&R?)gTQ|Ey+NW- zw4B|W-uFW$>Dd`Y9E*NoSKOJn8j`Fod|1noJ+V_QF1CqJ?di(p2r|kBwEq_1ddE2b zJWWYC3>zkrbnV*`Ze#EVN+BX;#{yh#AKAJ1D+KxybsiAn?mIdtVufG z^IX}D_Q$64#h}axg{Pu+fzGM3XY90%FXggn{$^OTesFc(2a*Sn$wBew+DWb#C`*_m z6#tPOVH_MDhANT$=uzEgCcg~OF9}_$f82j|^P~QCkjw*j!rq2WZzYlO(UKhqOEM~Q zsq$i1e+c|!%htm~YpTonyZ8FO+u#6nVFnEu!N7njvgWgCipfC=0heH~WV351Jzndy5qI z*4*Tjl>gDaPJ3HXK-jz)Bmt^wZfWV2r&pn{k(4Z9^KZa9JO)%(emwsyMx=m^Pd%*{ zKi&4_%ip`Bly>WZXnQ=nH0i+yQH{4_fQKkX*q_QC)kky~s?im_rWJE%*B|b+&(@At zd|mo&o}Zsjt*4HN`vDao)njd0$67Ov&9YoC zTHBPz^kj}}bB(F8RWj3)Yh3Z zf^o$yT@Bs&s0gF6(X5a`DcBdGt;n-(<0>sHy8%-Xq_0?TWCZ5<6+gBilqb;47(?rAsQ2;>gr89Lw$ah?iqgZA_oG?ycTmyq-R(IpE zJia`00(B}8@8H-5X+xsNu$95|L8f(*!ix9ik`v)z&<Blz632W;inAvCc`Qw-M^ppzxBAU z_IBAGYWvk2&2~eD6V6TrLt)zCUzRq6Mk&wh4kd-mevORgE)N_nvY$~EwhLHs=^iYF zPp{!+6oZk;-f@RE2iDRUU1i%>;R2eQo?rPA)zjcLD?PcE9K%>&V0@+J*Qv+D9zFBT zfl^XBABJ`w0Be9W1nAY| z$E!e9q00M)A`t^_h@lq`gcCemLNH^!(a98-mOf{wtCrcWV_<-iJM4vF*L6s<2viPa z2}K0rIFq3>0F8s94cO(|a@I(PD;(xH8d|m+ zuC7qfcq5EZ^)$})2t1}j*pOiu!v+l<3r>#Pr?eH;qkpz4+aA7h$RrPvJ8uqPYOi4>00DXdTK!jB5}2@Zp1I-WT+6xacscqv!x$O8QV3 z?e6WkiLw~-aB@LV4I}p)LZZ9q|H)tACg6cigYFY_C^>TW-kOp7V3Bv~EqL$pw|=it z>pD;Ov7$vnsZ@`I)Jn)aiF$@`tir-OQRe9A=opsYdiBCpA14yNJkU`zK^qM>PlBeW z$^3mMReuqu3&ADeL_*7n$`vj+xH*S#wn7VueudnXni?fI1-;A46t%(Xy#rYUoBiBc zm*n(JMn=|}hwU`au`)Soo)iiiI=4r>ihh3HqUJ0PkF_0SsaRzdyQVaCACkbYlEYI&Er8_E*A@+=T`(l-2hw^IuSuMZ$Y73A`s)5@)G?W~&mY8OJGGh3wo2$LUWklg&fNC!Y(n1lt3`$-|Eaz)|q=R3?bm{PKRi1WzHm)?b&_=BY z-7SrpUbB2T!q3gcwEi5{vHYdoJ;^SpqF5{uDR$L~HnNve<-FsQSa;)cirEd~K727$ zo;_j=!?bUG+Z&$cE<7t*vcE~0uc4c$ebU-_LEKRZ<8MhY6%H`hY zeHe7q{DmOPr27F8p$$(rzSqfXYaZuibj$W%rV`oWB4e3pe39$fJBOKm|K-W1itLNb z2NWJua6rli<(LpcD9~@9eQM&r9C}RLV^xYs@37tBkXJk^v3h3V*73L-Uzvzo)a2Hz zB8;loO0gDv+*ke%I=({eC(%|Bi2!go!dHK7isjox1XBU1{G71YU?38imGnveAq~>FQ1>iv;NS$y5xc;o; zCY>w=o`3jTA=P+?O@y#akXj8RuJIxoHV6txL4dPm163Fo7FYw|W5RV2hQ+!yX*~(H zfhzkJpb~PBgLD$@rDge@AN=e0l@4|9}&Kn+UzS7md6KH%%dL^Mp zk!H>NXNqlgW+RL~=(#X~1feDmz5VNAA5fF6L%or8T9 zWeNalGW>F~w=nZ+ruo^bP0%Avz!t9N4;kkx^HmrGf5wbx(bTgdTdR834_Q z?`(p03@<@T;AAwY{;ZPWp!{IlC4yL@eZvtz>N|isj%46S!4>6wbZ||QQBw8C4xHgFk?3-h$=lj{R_wfi1>rVOt`p+R;NeK*YmD6)#y&nbp}K>N{_6Wfhe@Fo2On z=i-P9!*l%;#W^_{NDgjOyo?rr52%iWurd;$Bq)Ut=D#u-A|`~&-|&?qC#o1rfK()$ z2H^YfoEtD6OMD%??53diCvYwh>=PI#pfD(ap}AY&pU#1D1p_saM?h@B;1wV4+>Uo4 zF%m@40n{CGBtizGK^pL@Yp7#B79T|O-0k~g9SN??#gUuBrm=+|CC@Z2Cvkn<>^~Tg z#C18##Erw+&_3bOjl1R!H>fUObuX8=n))px)WGMR(2djlD>@=sVwX}+Bs~d#v}r^q zvh~=L^-Ij!^(pUIMn3eOYyNdRS=@Mh$gfTWT$hJl2J;C@HN}FpLCwuK2QDpBiSP(JpJtV z8cJp9J5f)72t7;MCJiO@JU=O5+|f)-u#13aL8GLBd-Vh8$lRf+2#16q!uWC%(IS7Lmp|CS@R+2$6)M9{mS-NBn*Q zLXUCu6QwJWli^HWyRcq1TOT#R9$2;lx~D8~`9P21AR`(tl9N=emyH7fRAZFX4Iv!r ziAW{@)_ChU8!)>B5ISU550Z>1!Q{ctL`FW7>AuiMVb>6L`l{}54OIN2|2WD}#9u^` z4LUq1$rQj1fP_kNbO6Fk)K-KlSKL^LEH#`YMBIRp%UuZeCPEAd1*GOaou2G@6$<^L zcKaDRDs1E4@`;%6KvEL$)^-klt1)14aU7FW4|pbl=zY#HB`PIqkTMd4k^si5~;+uf%{F_SznF$Hp!N@Y4)fnjE+7XbsTzR9 zp|U|CKvFI^IXQ<67iYDKx*Kse{F|YTC@5eATj-42iR1&VCN3)(`ilFHa2_(Xj$jpV zjo|QkPrP!ZlF-)ZnwWD04>R*YxH%X$4(|9{Z}D^yWS-bX1S0bANJ0N{XWu?*N)#Cc zIU&y$bnrM&-|y6t+V8gwE#_ZAe-CP2fu$996ZgeS%kDBn4G$${ML)@qCq%4f+D`Zu za269A2!+9u(r2SPE;!44Xc6tatMrFIUGbJ=LSoaegS^C){PJx*z>@k{f9 z#RrFL#dUv-xa!S_FFk)-9UmwfO2?(l?p?i6!&u~obwq-NQT)MNbG_1=weNmTHd$zGc65Krj2i&-LHJGR#%`tt2=z7Z=@!^Cs9d+xi{+Ni9@gKD^uT<%RVavGz0}fx=sUzrO5Gx3Zx{ z{#_4u^Aer~Gj4}x=~!8}P$??A8<%w3h+;^b|J0|6IiyHS?F};Q`|&h)T;ta9_(&;M z{CvYG_Ib=tp`;QaE+T9xmk`?sjEFF2|FyAHn=h`o8w)TVkKY#2!1+f7I|grLibJC?`cOPt`cH_!& zbcdM(@Isq6+>MNf`UqMIjKOf=Y_K|dA+HM}6a+pEIKBc_h0BRSlaaUFocvc7OrR>W z5$!hRXXu3Rfs8N1S0Nmder6bvrs6Mw_#pg7cHh1~QFzk>kIV{;s-+kMluqoUdo%9r zw<#NJ13C;$za*nn!7!1j^iYEmH8)mt4ZvHpL?8HHNqWf+gd5I5(g1C{AHE2736NO1 z7!(4O_JvV4MsH$2zyS@yga~Fp)*bx%2d^!)x0$~qr~R_mz$SH^u3)H%vH22z z-y`Z8;3BChF-a)gvTb-4gY&A}8>08ypisXx-Lpp+0v)jDJ+{Zt-hp!!vi`_HN^8Po zFix3b2PA_>5U56a6r6M+5fSfm+~@c}>IZdCaiOSy1aoF_EdF7lS$4pt4F2-7{&F7s ztX>pRZ|hS_R#HNG*5NPlXpDYcsa$SDc!>8 z(~fy|vm{jh7{*q5Wzy)RyVVb)LC@ubYzdV8sz4o#=@x}Q7RFIFF1 z{NBN{xqkVQk<1zkjX1@A`Q?8gK>4?3Lr)C^iVQ!&0ZDWixUH)VVMcb$3%ee!4|;#M zfBOC9f*sUU3g%>>Hpt6(7*ok931Lz7?R~q=?TWhB0j796_G{3k#6cn!G_e;FmH=Ep z4ehskhm-KSm*DWgH0HuQMR*5DZ`Djp;&!ubu2kiedA{o?I9YhL2rlmmj13kq4&?r! zEOJTc&W+SshyzfD1Rp{l9BBao0SIMoxQ+aQf`t#_v6@78fXc{EDLL`!Q>D_r z=%%AoRU3l#h`$AjK|CtJrMNIR_3fymZ}XDIo~;`pD@X-MQuN!w$cPy-BxEKGJ4@hd zW3zPVhxiqd$k>TVSSXQi=peGtO7WW!R2giX+fd{ zHa+FZF*N-T19bs6hTde3%6%1>)Ufq)d|__M2f6dP_nEry#Iqi{9>S2FRQcomSDL^| ziwGI9P>-sG>r0f8=P22oHs8|y_+eGeWmWg1zaRzvzs1f^3+UZu=^yinTUyk^K#uzod5RKrp^~HHbNl8J8V##LN zMtxeb1CGpuGNxVVwdPx@pZw6(E*qrF&;NGxmQ!EN>(jfA^B!pvIR5RBSlK$jz!nkl zap^{Z`X#|jgWa3BHJaFXwO*C33)C+@_(JcqX3BuL^r5jYJ*t!&wTj{`P=@es^NJgjIif!|@qGD#l>u@;k!HN^=>GP?e)==O-}0hke@4bXjHyFk9nF7qUY zP3y6zrKF|7_<*<)Gbje3ktAUQ(9NJ&kWJS`P`PT*Ug>vJOTWk2Yc$k2c3>gFp=FK; z2sA~GAX=dob^SY@Rvl%A5(oxo;02MoVdG)k z5|1{|0q`9vG6F*a&PGH>>r)LDbd5)j9D%Zj*%Nn)c$5$>E!d=>mZ}4(05mpAIUNsa z20_nVxDL1Puv04VhV5WvBE zB!R?chsK>7h8j}u{hNh>d;Jg|GY0_3s1za6;gXSw$DIawi+K}JIKj;?(E_Cuna2gP z3%cRMsASQq;~L|6#KBGr)iVS-h;0X38H%-oNKhgWCpQ;LE1;poRO37R3KS?9yf)zY zWS|&y%>>v0dki#R80tV0?ZMBFSXsaQniNwzKfUv*6W1S1sT{PF4Uc=dcwYC+E#vI@ z!&1#}Uf4(*dEdLkAp$~4DZqcL3bTU`|Ulvmde17dKR9ok}rQAG!6OZ&+Yo79< zgwifG+fu(QD~78V^iq_0jy${Qtf?)WctVVmK|qRfbMuiFVZDYXA<4_$^yxBhY75W* zzMPt>tj3Rm?o(u`RF6nVpvq-uRi3Gxx)&As>K<-el~LkO+o!Felpn&Ixy@VsZS{t2 zVDZw6m|A=7PlZ%5aCq~Gott|4!u$UAt_?lzVh)XUw^^&0LQ=Wa*;B8^_=(+(`9pIV z+}k5&rum|6>@wPo1xkYLE;2^mx-pL;=+q-Yh_&ul(MY4;a_+2^HeX79ppMXi_p<() zHBl1+ABT0N+N&Pu^Kgpjs036iM;mfhOl-HY)b|hhbdr;wo!;M;<-Rf3pn7VkeQb;^ zzeugER7tCZxJ$&FYk5Hnhu1gH2XV=>CtLFIk4;D$+x`BSeyL@DL!e%3S!(!m{-d?2 zJB*kZHh*Z@o*L@#{Yhx?$@LXKc6({=AFb8fs2cXzmOuaCXwh@WWxD}8nn$age_p_ZE~%vN4h$ZbGLpEi+gAA60ui zc!246w;qoTBKmCI0-cXs*B73g z9oY^lhK8M{S-i`~+9v76bjGPXJSP=IRL-wO{S1nTF1?qYqA+n$rfk-OB2R7L+coYx zg0ea(cP1h1Zr?s6qg=a=dOLaj{qp~QVY-TU>!>-``TT!>IqUJ@zaPP4J?dINz7@$o zOO}9ZGNYGEW*7evlah(OwV_gU)7n?A4HRhxZzi_Ibq+Gj^ha_!xp`NVNbmJ{aY2Q= z!Lr@(bOxpK%zzwhes2M6TG`le?B72a?$(BPUzoR_u2*gPeDhoAuB@!Vos?29o<5N% z3DT^4vSvTAYN@GPg1$^aMA`GB#5Ufjk?_AwYdf!Komm*L|0Tn3odc0O(oKm40VIi+ ztZbIdniFA+Y>Up)zxjIwf%S0V5%jpP^oG^ZC-G82TGTU3jn_VPgGN4;m-wmvapSd~ zs4H(KeEP3ujovEraVrUmDP9vle*I6NTSoTrFEyDStpzJ07E{kG7Y8i@bzi$KCHNkU zjrpwYaZb+ZV-544b1p5SCK{37$C_oz3M(Fkiu^D=`cy{D=E7>6lG4a-YAUnJa<1dj z7rw4kaW!?^JX}I$F>NzYtH;f@_bL~syqxNSpjt~GN~t1)Sm%?v59b;p!jI-n=f(o) zulQz2?$K<}Pqhq+l_Z-8aD6ji#n1{^wP!Fumw-+IeO9EH!vPpL{+6(?;=Y$MBNF5V!t66@0vh;( zS##ubLWX9jW6~Xxbx!&os|7c1zeu?!$9@On^Mo*MuWHUycJr-PzuNXIR*foc)69`w z!i3*5)_)v(M>wVR6(8#>g;gt~@-w9lX2}^cj`exT#~0Nn^Q7eGW-A6A0Z~`iiy90k z^5&MyuhZ|KiFxLnq}O1@!gkcEQNZitWkxrRnLOsqAYl=?>KdoHy&tx+opInj@JUAf zB!Qxfx;20;<6y)Aj_~YvIuDPDY{lJQKt4D*lL$?QTH``>9Of2(Y-y3jVT=P0u=ItO zhD4}+?3e+)DkX^`fJx(FwLBnRC?N7}dyVL~I+gU2*{bLk?h_v#ig5>=kif$MsU$u7 zG+5<>fiR7RQi+`WD}*4Gz)>a1^It@;*Rs^3IO?^9plMt|>jC-7DKaLe8i9h&auGrmV^#~)|OWj=O%)>9X* z!*||@$zg+dv-@e~yx!*5IxNT6LE_>5>k`8bnOhDueqEdidaCJ#f2mJ$l%DIkSH)xI zNITLSxo!=yN}Z)Qgb}cmf-w@r+JudOKmL@@NruyO!_t{Jo^W*j0DBzj614~TtVKU2?{ax*WJWW%JhO6!Y>5Y{sN`|1ZO zzy2|Ipe?@r;_p50-&UL_!u6ovIdaqTACx%arzb3$nl>2k^%870Wa<^&9L@da1M3|1 zUN4zl(bOjg8ttNsrBA$PbNRHH1ikGOM(=lb7Z>B@0Al-ami!?X#+yb!_yOR8fKUn_~J?Lyn;l zvzeLXDLH481kDassYjQ5f?lpazlZnwk;ClInzcU<464UQ-|Y6*wwuqJyA$hsj{T9!Kxnc>&4`cr zDHR9T_3lM4!+&nrW*YM{cloBUWBR=!zv$webGzACZNENj+l9)D(7t@hA^p#DD#w5R zYOEeuQP~{vYpBWXVmZb1UhAi7e)kVwvr3gBm4SqN-KICqPeKUGLo^r&)w&3G42o=G zCC310_%Mhqgv2zE^eo_6%Ztr!W0Ue5~U7H0_aZFMF3urRGCw@fD*hI8boUzefKOJtQDw*B|?aJ(j)Y zAP0z<(Ir*xnv?69X-f5M-cIiL)~?#%?{y@`?zfPg{pN}(i;D(PvCV;J?ZsE#F@@oP z%1izbD93rJGT6|BmARqm;Z~(l=2}(VUnj??UrzSE5Ow?V)GD%5B!o|6Z!nds!^uMr zm1}0ts|bf4Yi|)SX?(oex?FgL!!({&V#CP+ytii28@roKuOz2^x)y+~Z>OemoohFM zz>>%@z~w^E&LV0A*ALCO+x7t#+jhG=MNXa!5(AZLu&MG2yKXCFGX zZA5X2)yg9%$k;soYY|ihrYw`e7iit>OL~V&-of~U{)7l z4ql;q+2cN9b{C!`LhyjYA0$h)>zK*S9! z+uLVh+E?ecCr9L2x$a>NU3K|(D$7JkF)u=fRU~w8x&n8^3q0f9ADu6zJ;Mffezi|Y zr)qTfHKFjmwoezH2tOP7BKYKk73V~=;f>^HzSc#GzkF6(dmdd)s2m)Ny~}mslg`^M zj)gHr4jErGQ2EbKt0wH5^%0#qWIMg=H9~tBRbxV->YOvvmj)I;p#eNF+byVvBL9wW2({p6FT3hX5&)w1~O=-7F zWd8!?J!M`o*Y>&^o$mhG$E41ES8+dnl%f>ryreZmP@vRSM5Hyd)%n0k5hB` zn9Kmu_Li6I;jbo?65jNgXU&?PZwU9WNPv_9L`zll zTf5s;q(o5sq%bd2+j0L*p%EXAj(PK3mRhAacA7USzjCQlz@)m}LJ;5h152VTno~fW zZF~=|H4p!G+@^<7x=M$s-m1Enu zX!~uVwb`rKsi>*;9Wzn9oN_0}JxtxgUv+cQ_US}roJkumU9;_zv`T9IYOWj=E2B*9 zY0R}>p3hv>jy>pl0R7r$v-$oVn^J;Rs6BU&Rnou|GqP(P=}e3m#E>qy#LzI7W^&xFt*liuJEuNs8%({*vo-N5e<*+l&9KTJULAW*?fdDGazP5+|>Sbff!k ztVgB)v&45}O2`P7pWoy#jeYsE+JSasee6+*ThJ9WN2FyRq-+`4LEW(-z$LRGNQNT7 zWi5c0Z=JfPOl*jVjntJaE}6zF+L&WtYWAYKdK(_5&HAkEy+_-n}ZN zyxB0BuciB|?>bjue33&+z2bWg27JgvJ^czs_hJIZrZ{%r*>EMasyR2r;)?Up|pWUaaE)W`yFxubqEjCuL+z<@k55 zG}#m-C5wE&F3AZd1G=U$?n8%mGdBbulKwR>DwKG8w`qKV&?`%Nes+fC9}jtJwA2+j zLthL=@rL>ar1NBuUpjfp>_!u7t@<~ zYDv2V=i#%F9q3(hlk}WbTkZ4ft7p`ufv8a&mAG@;%JHwtrqeAI1%U?hB0{gTy|jX& zqCQE7h`vY3KtzUa1+=7f$fJdb)gRW(andB#K5 zn1|_cc3O2j=UQJ>=GY^_%r3X4n)^PjVow-&T1ypQR)>Fxca1}&s zdH76YE_-87*cG#j&*QeF>fgWkz4+_nR{Keg?$3wJSKoFhavves&g$vqi(6&k9{`*8 z70tjUA_GR}fMt}2ym^R?pe48j^6eHJR|MMyCkV5SeFNiXjq=5>EN~=}-=@GmKU_B7 zHw<|IS?JJ_lHpM>b&^SE(7c|9Zt7ooE27|Gjg7+;DE%x$uc|>as8x{jbr>VW5kveA zJqO_LOI^8_Nd1J^xyOk0YAw8a7H7(PBFTfCm{v#y-oEe6nVwf5P%4CEXVaa?I z}PmvoNxe-^9Y+@CG}{!VxmJM8w!!upd(GtNjJpn65%k6WN?vf#m4eqS4<~j zP2pRzcB!(E|kG1+qi8m?T@@#89^W>C0MQ%7;S(WnL%-- zB))>k6fSxG_r$_M#Uze_E>Zrw8GRHvV+O9ggb=cl*bE;y7WO`emsFT(WN=Cu0B z;n!X76VzE(+OCn}^zCG7R!!qnm)nmI!uueI+n##SiiH(}OJhStfG9hZeyM)N%gEk+ z|Hy%kH;qMV_mu9pkEfNks+DkvKpTcWZ~RHppld-i^joZFt*o!=(pd(#r7F(2ZfsyR z&iEBfpO|p&jvty}RAkKFk7EoOu770$(Q4m2nQVH6|E`d8Pn&2A;F|i&Jt@^0--1*2 zA5j$7}28guy@?X}qgaK+Np=!G(WL84V`_LjOnT_vWTg=JQly zE{!U(0-Ta>gBmX+op`UAc-@KYA)L!0dpzTHDFwjdLE4BExeyr7+tT3ga~-B?{5LtfJ*NJNP@6-g#AQOH8e4`mkddlDZ$kpja^6-$P? zLTHcqzq^r{PlWKOg$O@Mrcc>);71zq%z*}#CMQ35u~Y=#z}*ckKFOK|=%GkQg(9T} zwo-&*Tqy>n$b^QDaHaU@*l%8n5atSN#1xnyAsifK)>awZ~(eA z0-B&HxO#kT*$MRI4Y))|1bFA`YkbhCRv~%_A+xAvd^;vmvH!xZO~^U21)jAlQ-s$H z0ukb1w}ezKQ81FugV81E&1YJdWfQM!siG1^Ei+3dHEYg!z|MHA)G^li!u%3IJzv}-(z*KXN`Ab4NW?0l(fGtLCxS}UOgsI10HTkrK6gR4Ln>GN%Fz6!Au-`s zmph5=fuse{r+%i$#buv`l1C>w6fUO}Upkx`^yuwca{(2uv%$VcvXMsjXSdj1%X=&u9?s;PQ!Y8=VvxiVgW3p`4L&rk_a^_n6|0x}FTE!3b=m#*X4T;Hf!+ zDX9>B;?x7=1CI7^y*L$fUSli5&Es4 zSg^$NgMSP98i%Lf-0R_?A*-%jPH+iBP{UVG%%SWfiLhb_aw6*if>J0fVOarFPGV-! zI&8o|WH?V$)YMLJg(8{_5wknG8Mbe)#DD^fC6WSYgqdnHsP99AgFV|XufOAq$(Rw4 zAYiMHfiJSFBRL6Xidk3kXu57geEjYPfLiiU%V(rc}wFV;s{k8O4DT8wz! zMXow^(cC+e_Y@1M_0qq@t7Y?lSIpNb5GX6W-0S|uEoc71baSfF)YY5qyndf~8F)uk ztKWzDC7t@D|6*T*;K7IW2QG5b2uIZ&8e3kCq`TX~n@hD^ZrVJIlrr%#$-&C8rQ=TJ zV;D^A%zx;4PL6@to*%E>Y7`mIrNl3fa5GD}zNoLSe_a@*nTB#W1;^QX%5~y_>>bxG zbr%Xnsduz{zLv4IwtmzMZ$HQ}JH_nR|HXr}7DuK_MP$Kx7M)tbL z>aX}YET4lI2B`6cI1aAhyxKVRqXgFkr$|Yxi&Ki>Yv*)C%g}H2DbWbtZB~wbz(0A+b&v)s_-+0PVlRw_>I2mAFPv>-hm&l3ZGw+S-7DUv`*}>k z*E}B}LSF5E{}$BbGf?clNB);$v;4n*Y}o(rAOELM_WyqE|97+gZ@MJ!y4(Jt2;>m_ zq%=2Sz?`z@OV>#n<*@+1mI713$?-=N6f>#YDc&4kDCSI6(v6rSuX>nMI7HPETATV3pW zmC9FlMMX4JlY+wDjE+K9OSMF&Mz7H`__=ubsS|1|Kiv+AKmW9++3Js zy;(1w%T5m}ik8zlfj{L|G0EpH{5bUvZ6aBm90RH$KcYXb?pVIsho|ko#c{# zL>XpO7`GZ&9xqpUcqRGfbD3}Dwga+pJdd3@g2JTNTbmk&=sX`O4)KtYDR{wgO{`01 zB~H5IBv#Yy8u9gS62GcC8uv=38|y6=mLHj7=kMJeTDrGxy49a2>~CM^i;F7PvUyep zww?Vw5G{FheyA_w;H;$<%NNeklh319A|{Kwa<;YXt`I$JaJQbaYwE|t{7kt^>jGHl zzRbt>HWVt&Z?SgOv!9>eLP1e}l#)X1)5pL-*2qj1_Mg{UW3)aMv&Twj^xsI3Zl2aQ z>(IV#D!S=uxnbH|fXd46e$`y%uafLT25Z^IK`{o2rty7h!UE4eI{f35>N>Xlmw$Ib zjqLYjw~jq-9Zt4m=I>X2&y7!ZtT`C@HnB#njkhkJ>z^nO!1g(3d?*|5C^GjrWU|?1 z&1C+z^UCq#y<>Zu3oM;iIv)PMJG-4HYSDRZ&89!TH#{$*V;zN=82PjzfvZakl>CN_ zZMoN`LYhNfvleSf{)pSyw3A8t=lrhNo6hC+*Kcn!J0tPZ<0S3pYUc^3?zx4JyQGC) z$&0Mq)j5>>Rw_s7caygDJMPpyVM@oPhXq5fs6D^ft&{V@;D&hNreCGZ`ccVuq|U0A zT-K6MwJ_!xubr5)a@7kA<&S?`-;esDM+b zq|DpCR$ng8fIY+U6Wy+3xZACek{`EKFf0P(>W)A9!^ZL4mMVqVfC|An5^i(gJ9GAmUvGWRr=ZU(oTXJXH z%a+|1SDrm~(9`?c@%i)bz95~nJ$hjadi@sT)dkwU4sL=0&o*1#JgxKdiys$j0q36T zJ!%gP3dhG+_usy5qY(1DLAW9R;%#-2+b3R+1t^_6UM@=(?%(?^Ww$j;UfR1yCH&}E67P*e<5Lo^Q(}bTn?Qd--RlD1J45UU6hC4bB7pY#G)RyaA zQ3@@W5zXS~x4vy|cCw?f`}rMD<@uO1PZ{DloGT+ASn%7m+L>Pc)XW`jefxyY`+3^$ z9?fx5nO(56Lx{{AN|8p1`-M1FjWd33&jo3%RR z`STSE-zVL|f4fefy*73w;Pu}HdCqfc+seDLwy{Wl;_JwCQW}|Hv=)G~=-xck(*)_v~7eYk5~9yurHeCM0L-`>By zqjtMk?#kX9uKMufIhQ>VQt@hT>gmX$Fl-98Xeyx!Q&t>4UAjIqzGK|l)2TXGM74i< z$$vO_rQLpv8NT+mk3Ao*%$$qJz9$k`d6#RS?hWcH%KEWVv3N(aUkSInLY#DT(%JsD z!|OBhsJ5K0^3mN^b}J_tO*^!^Cysq=zTw(F`)x^H=p-%0d!XHLp@*yd@oMVx;?nJM zy-vQc=lPR$E-x(QHw-+zU7XF@whPZ4JQf(1@32d1M>o2Eql5GFo%=MYnYL5gn*_1X zcGiIyu4Ys7Mjh&x>2~K`<^5{cj64qRH4FH*ad}{)*&xlJ+sn$zuC}7BH7!Bszz;Fg zUIXWnyr}Xizj?y3(&fS0O_c4m%UWW(TAb}A>jb=J6OW0l_p~Sj8g}O`#J(MG?uIga zYk9ey*p6L%yMWYrq}Xtui`cm%$?mptVHdyjG|Pc&DWrB3UhT^q(Mz%x2$^U1Mpoq5 z*t_v0qD2~A_gphtEVCY7+-N2kKYgYsUNi1;l8RBmHi}6k*Fh;RoAL)!Tx__oJu=|t zW!gOdX~`n~x$uLVr#Ljq%8%?l)i-=@x)u5^eMLL^thsiXl$JS6i|D=nRBPv&?jVcW zMW<(7KI}f&vG&X6oOQv%!Jn?ola3`I=iPV@rR?pzUCe|1m(^m}Z2wH2 zY1xr=w|g7-OJem4Ys4NhEe(v<5lZ&}pMNxC%a*LTv_!9gXG~_U+uHK1$EGJ-FuDS(}P)Yd0LDmg}>L2GxyKFw-cSxrMws*H*y~p)>G!KJU|xu@8-DH z(B34cu&B(*dzZ+rp7Necj=qO$u^M!bU)nKb{d_#M^xoIGhYWRDOdI)=WR~h&b8^H9 zYo30)-~km1v`(~^{Ir>MqK?;hzmV)7o5d9TQ{J7+4n0hkRWyVCg+0q^+qXVFxP^kw*T^2ZFl%+MooF&^|p-GO*gXk_J)%T^h3R_)z#XbTU|b) z;+&%G^tUuYG%%KM-n_NOu~$~HzSS`xav^u5O1akOg=F$pQhRDgV!IDzgQA!BWkfK! ze7J}_eCUKndAnf2hxP%5Jn~`Vou~sY#eqgkgNmJ$ZOm@_oRJLJXSk097gL7rzbayz zw!UXG=22HUsRkL1=iEv0J!D;9I>YvG6Nz+r3ODbmQ3Gugg>X7;>Hszik(Q#=cV?Am zXUpc09x0{RWOoT?L!5^v6vhZW@Ra9jo?mm|eFew6hb6gS*~htjY=8N~Bbx={zpoEz z%sz^4TQ&6X(zn0X%Q=tJF8Hmr_%I$j*j26IF53xG)Pgvjc@yVrIv+72nx}u4Jz|sz z%BRBu6m|ipW?RDpoJFGbm5h@ToK9_f!f#KmiqrNj?;Z3>9H&bs{6oWQ>x(GeeKj>- ze%Zf;hR`9mX}aNThq~Nf$Fe`-@rMmXS6UZ5T2&rJB)bnbjfUTWv15rklxL zu`t-^p*h9r@TSIAO0V}v7c=%qiBzZ1zw3~fSxuXFeq9`y3W+qn`zb9z$?GGDmoe-*C={*B9U5!*acBy@ zuzAwpYq#JE>q;B5DLRQ1dv-4A!LmJ!15qc3Gq2H4s!02VZa4!|^pr_0^X>OX`}b_& zDft#_Ztlg&;?v#Ai~~xWDYH0@#9yl`CXTWHe_;JrXZS1S-1#I;D&jN)!eWDbZZs-9 z_C#fmn#ES`SH$_wG?q*z6LE%fezo=fx|5eV5c~`byRIPmEf#5zzAn&&j#yR1_G^kZ_;v9)M|X9+0Kv zl$3~fWzftw29~!3@%)JD$hhG`XTA-HHpK=5Za!xag$#k@5{*v34;!d&kS){z6si#r zAF>R?-sa;-{7@EWQ>hMB+3&8 z=pldoGJgy~#{ncrG$1|882PzP&CPlcz=!Y=|E#nbu*ukKt7V?hv?dyi?g9O zW=MCk6B`hVUc7Z5AOyQD>JECzV&u(t33-I_OGZe4E>TD$M9W3+d2ud2eHDgpS;#!? zhv|_7`W$)SuMn0=2(34v*kgE3Ki6_P7YZTmV^x4iveBFtVDORORme&K^%%NUxo*s0 zC#(q{J&Gi9!*faJJ~NHwKnfuL?%mzM2{Og< zQlyUMxcCV6!8}U<+=ol(0V12}fmZw#!e|oThvv`c32nHy&d2x&x<8-(^NZ>u;o%~P z$>>o3iR}XZ)>U5|5Z)O0(pbWT#$%e1X95q~w$&GY-zr4f>dM6`I#d8#P2ir5;cKV~ zZ17xa%UIV}n>m7blZ%%Tp9T#!FN_}{ASz?fId;Z!+-Ckx^*VdD5dz`&j%>%fLGArmO+rSbCr4PUGr~9+neW4wS z%!m(<*Y_m!C z%}cLq7~90ka$qQ)kd&Cnf$`70A9lkzi`R?k1=>FjuC4}D)#%62hNyk{a;VM6RMU|{ zi9Rb$k(uJ(m=n=Cidim5Y_!>sh`Z>PiPqXeTb%?Vw4L}+Qo&C0(NitI? zUCb(gQ;y+aF`8eS8!J0)72Hs8WMt3M3>n!{0OF3We{Bqs><>f(u-*r*Z(C zdV;NBqrDtq`h?1bAf>7y;~ah?FKLcs4}1B=ZsC^(4erJQ&-c#U3g6-DxB#`nM6 zLG>kDYp;l_X?pX9m`Rl8sPv&5is4vV=)?%#wZzg@pAJYK#S;p0tNj~~S{Mm8U(P4J z&6jNvsvbdm8)-BF>cgCA1Z-@{YO(_e8G4&Gz1~`*$${M+4cY!T>UtXp=mq6s;)C>b zb&r~_k$9xi?;+LD6I$iY00iJP;txF}ZxG>Q_G)SDI14wdS|do5bocb+Wo7L}E+W)U z1-oWG5Dcbgy(4f9@`PLkF)UVGd%~7oHz96AWozsTs{j>(cKmoQ06mcMY#_hg_At2Q zmE~+0e#<1@$oEPH1i{8E;f;ZdZY7592fNLaOOyvbA7Z#qIN%A1wqz=hQHKqQ_0T|q zX?+8K8j3-AnD8OGfRd(dIr;r7Q`ur-l1+TR>GNwtMM103@2+|r*VuVJ3v#+fpd7D` zoO+Mp;Eb9C73Qwgr}7XOJeFOuw$yym@qQC|r|X9=O&ims?2*O;{&g=?M@OxzN-wJR zlw`d-HQVlXsO8$~jzZ9SN*1V_-Xdfo(E@V$NliP-3ts_>$7`XRCCv z(K)A1PS`NJ{GUyadK9ts`8Ru?KxLJ2XtNyg_8$08;NxX@T#%n81^HxX)c@IB+1kb$ zyy%zTMRa2QPXofgLqfmRL-=9ZMM#)Tt34 z_{iy^%oMXr=-!K1i8mzD-9G*MKd;JIPfl%RwLI7zD|;q;|E$;mcp;R=pkHijw?l>4 zxsp2dPl2Z4Tpc0Otck}M1vQKhQoF~tn>GG;dEy6VdpQ9SJ2dhP;=<+`os`dmJlE#5y8qTzT>Qq&y{@Iy_ lPOnK-!XENpbh2lWN`@R~`p*jsUl7lx?z7#?+jHXk{{m-@PXzz~ From 997c53644f0ce6f92f7085d2ff5ba3c788cbc2e4 Mon Sep 17 00:00:00 2001 From: jcaparas Date: Tue, 24 Jan 2017 13:10:55 -0800 Subject: [PATCH 164/210] Add files via upload --- atp-mdm-onboarding-package.png | Bin 0 -> 77018 bytes 1 file changed, 0 insertions(+), 0 deletions(-) create mode 100644 atp-mdm-onboarding-package.png diff --git a/atp-mdm-onboarding-package.png b/atp-mdm-onboarding-package.png new file mode 100644 index 0000000000000000000000000000000000000000..23b9c49490f4d3c112c1fa9cc6927b9920c0960a GIT binary patch literal 77018 zcmc$`WmHyM7Y6zQ0!oN9k_w7+2uhdIsDwzDba%I+A|N1wfV3bY(k%_rB`FI#-H9 zVR4?vftD9FLHU4Tz6AfG&RFn9HM>}-b8cl?9gj{o=NRxT#CkKtBlR7FE+ zBs8B#nl&Fg+gsUNpc-g?216U}KhL{4o0y??{{*4`bK6}9J3BLbSJYm2Y(2E$Ah)So zx!RhcKCKVjK%uUn6r`opJ(E_a0`$~Jk|oY46=)h+(l1%XNMVbxrrlQ`GHSjyH~i}R z_>$an{%|eAF?o_jo7|oZ8jDujdGl(GH@OPex85^npR`*?x8AvjWz&$RI#l|!nf22< zRWkgWff)RDKaX*J?0BSCWn+?ILrCK5W|%iV&eK2gcuqzhV?FZVGrrei2&4PKRyU@$Kc8kM<<^k`-O%q!i==Pq&yd@S3^-{jFf)@3`?u>$%(q>aR8G+KXY9=P z6Ba5&9V!jlH33`JcO{p7B!?`X3FZ?sZhPzPcRL#t=YTR8+*m#t77{x3~6;_>^4D=`vxLC@3gmcK;l- zNwmVhd^>~wyE5sC&AHkoo10BU^TWChgw{e7oI1~hTz-1i)^u?Nw;Eo%bE~@~oBIBm zA=8-z_4}TePwXGOYI{E5H;L)z71q}EpWa6m7n!sf!)g-;pZ;oiN$#>?|rUC57JA-F>d4SNyJp zMOK?vYg?O=R35ZO#{O>=ECZ|er+s*R_G}AclX*>W=H}*5sI|2YAE9N&DUJ_*6ADgO$Y(n==-vz#{&+sDFSFtbBLQ&d#RdGbb3Im{5K6$ZUkf zW~uMJys~mzJgm}%+i{0R=$?o zAydp4{M0XE#JUVxp7vW3bRNO7`w~-9;%4-p&(lCxh?ePacAN7J3=EvSF?4pm`6fF0 z^bKWH9xlBn>ha^p^xOhwon({V=sZEs&9tskTq64Byo%{i)`uTGRqy<$J6`|IB8H{& z=hyaPSD_Zi0|v_qy9u1Imbo2s@f$aAq04r5c28J--j_M&Xln?6x3sjBgi#M!m(2`k z!7#M7Lt3*R^QyLSD0%P-MVojlj@ z&-wYSg^!!`xE`vh&F!R^cD%VR9v6laJK<1ImmwRzZ9Vq5>Ba1LnT_OCSr(~ zZ3@oF&FxN=sk4f|$2^9QA|WMx-*35j_$&2zO)8)#;nvIWa2b7ly4FaB$e|&1Q!}%} z>l;rREcqGv_((%SLM*MUqW0u$Z8-)82k%zpBeyjM;W7ybXztZ%k6T93uKx2M3<@3z}eZFJ9mj#07v?no@+-i%LjX+4cVPXLC1xE9>jmJGL`*bYfy+ zp39kWX@kp~14`WQv$HSI+_v4cUVUA+z$Uq|&QA8!0~YS!c^M>FMc? z2b+%zV!^okmLb?Xv<>I!>VKrn>xP}qV>`<8?D_MtTJ!GsCj!%+Sl6##H+ajcg4us3 zVlwXa>%h@bt%BIv#aP|Gsi`&hqxE(BN#`(+_aBi!k#U(yh~?yu*RN!c*C{Cx&CSxm zRD4QO0_Br+5>6}=6O+d`-xZp) zU0mAr)}{`Z4Kn<5G=jky{02hMRbF1=`}gnr)vcecLh!4YkXxvPeX}fw=g{2RdMD?5 z)gTnzpk9BD?v+L$P3FIHt zsx-jmdCd5YpcmbQlmFn68o`&u^E}2xrRC)j%4QJX4Zhg2IopJhHgirgLSgkIz0y*2;it4~jq3r3Viimofg{;-fZe%DkQ6&1z8%GwykBv>s>eR7#lM_ND`dY&?)ablEB8s=1J^% z85*i~a-9kM2m}x?4vfv-VV!bm$$PA$GG`ApG+tcmRj`EXPX)M`qmhW#lC&3ATTGr)2q=Zak{Lm|M9+(QqY)fZ2pXN z9XJTBFOF9YyqB+68^x-?yTfS&7{$bD4J#rly>~zF@T~Q)tJmxf>%NSLh&}UPh>}BA zN_4xOX~3tyzuyy`SMgL;H1*}F5luG<5+38@sTLL%cFc+}zg1Nymkf(5#d0{kdyw;8 zkuycwdxEzpxBA?;`(lZK!LpbW;kH~@YfX(PssVu0hy7f%aaSzoC-6aUt}7uSDp$AS zBD-dO%-j1fU%ircb1NI<3Qd=JTf)C?Z=;}a;T|)oIvcsGa5Dd^NVl;`Z3fhs_vf6P zwW_Sj#Kbct(w)Fg7u zZ*M6h5)&nU@B<6gu+*QiHt>==|4TnbOzT=9{iJ60Om$9CO>Vt(9JisnP<)vswz1f4 zWnEnwYa1Ig0bMZK&W9l^8ER(~VKRI8ack}&y{BF-ac|!~uc{J;pm;?>VrJbXvnnq; zI|{qLxeg*IF6u*87Q4ZTG+lXFSx0N9$~ZmRkE_-8(#H4UVPS&05UJ(7ky(z~wC~pa zeSKF%m}78CDci!qxj}&YuzSvW)5l|FCLv>fsH!Wm#L2Pwd82!hh~|XdsgO~?y_fg} z@=UQFt{h=odwOm{;O*mYn&EYumuO<-NYX{8)3+3C49{GcSPx!bH$l4?Ja`bH{_Fiw z&KGt+uZW82iivW&=rvu@5koVLHDO5XqzWFE@>hom=hZryElh_ zUFu&Ootp31o1FV(qrek!IiMfCyR@|Ac)5?2g+&tFeu~d}r8wJV?GpO^z2}q$4ZG-( z%-+t<&a@G<+1)34_5O6+HJeXeZC`X=vP(KYeAHAH&V=f`0Dz?XM%6dEiI21 zJKv60xv>ii3xBXHUHAT^mi;;@=@mE>RG{lx30+~`hY#lfO%?A~*p4w`$4O5!qReWO zGPaM4^HOq^Yibou42zh3u=GJrvIdfR+h>U~)mIY2mjH*8u7f6=c^P5tBJ zE4xQHgwzY}Iyj}dzS|u)P-%jXKIr7hdUyypySRW)B-3>^Gc`p8>f=*bAknDSXP=Ro z8RyomTb8!A((3AD8U+SJL9AQ; znfv)OUQbVtO164?Z*QDFcT3SZlzEBv(ea?N#IB_uV{OU$7bMB5s;(|_U(*S;QdClk zdh>?SFERqwu)SSA`1t&$ZGGsLsx4ZGm$yIP9(7ojmXX1fHu991NftZ|13-{ZpFckx zvz3LQvbQ?MHly%B=WOx{XP6!C1QxZ=8HajZq=huDE1io&nuD2Ro{m|EU zN5hkqE~@J4&*((l({gf@hIb!k^h@S^?~EuyLQYN&zKHv(q_*}uSGtW2jXa(21=VFo ziRZ6rMN(!0?g?Tzk)(Lm-qm#%05t%Rt4cl#?ZholK0jh32XvU}+Vq03383E=q+)Yl zpX0l4^d^gpm^n7zR#qKeSTHTXd83)F4vygUQ+1bL-(>XkXk)qb*`~6>jN*`JKr7@d zecJ|5T?>QwjaK9V=r6f-&j_bK%Cb*}k53-{3 z2B&sgT3TkOeKy|4QgZjZjSo8OqQktm+ME{g9dNC116Nk8cXoD+=9)tuV3{D{ACOG{ z;9wB67mWN`8B<@U+@-MK&NzJ0@=*3SA-=z=L;u;b13kA*krv0e#A%P!J2Jz-UhXm- zJ7|c79HnKShMJlK#gUnr3Gm#Qm6P*rX0`8Oaf@-07C&|Ps$b(#ZD*(AvfqTS^ce(} z*xCZvjr-rN%T`MORI=8?hhrA98LCcV!(C-%WeOYLhlU{W2?K2B~8t^%$%Gq$aFHa_RDt{ zmi*AdrFo=9%CBTIjK?O%$4!qF^E8y)zSvFNt{8r=k&|iCRW6=HN6ILH_Pa7|V`EbS zsArsWezp2)r{CeWS@r4XnCa-Fif=RS$6`WUv};6~6M5>I!)A|!Bi`0!80*sd{apIu z>>;tU%geg0cJ#orDze1~lA+kHIPPjc`psRi8V*%eRsW8zey8-El`fZ>v{G(>z#n>Z zf0r7>t<@EZ|I%VG%&#+q8MHs0(=qbtxwKf`(>3Ky?$!sRudpj$Bu7&$mfj!f>od~C zO`py!2(McmfvKy$8M*^=61sc2-R8-z`)I!0hmDn$H|svOUAD({?Y-{0xxJ*ri+Dr4 zd;w>^kr6i>48XI7{*sn!%gJiM2I6@+ zX=x34b~pRS zc&zRw6@i)!EqYgXQc8 zng=xoE)QlY)%T%Yg|kXxJazscIY($HM7&3m7D_v=)pV@v?9t|)rBfSozFYNwj_bL8 z6X(TKb|k~z3Ry%|a^wy1lg+y@PL{J3w$>5vv%_D>KY9I6JgbG_4X<@f z*tbmUAtmijxYcE!8oHPl5Z=?#u{>xa<>FE@<=xze2jAd6!J<>89VvIsJW72<*p7$F zar1{%^}O==R^Is>@K+VOghceBTEjX|k6tKdeg(|6R`r9Df`akpO%jB`^Ys<|sGN#~ zBJB#j{+_*~U34**%zNvZIzLEKE@boe>J`z=x0hGHwu+3J?|_U@jlY6;28u0do1pA@Avm5P!fM_XE7j}0gN z*l&4>oc#I2tOp8Ggv5QMsoDAC?hsT!q>p+ zmZ_dV`y-6I?)BS#Z@P%R=#1b1r+X}ZT=XO{3HjcG_nVA(j7|==Ah9o&qJ!|UT6M=u z=g-_#%ilkH=;OLb&sI|yw~N=@S*kd2iy3_XwJs5#z1&`m79$&b`xhOi#XkR7SBBqv z{=JMGH*F6IkGO$DrKCj6U87Imt;vJ3ARh)6YPMU9#+HGcTyuR#n$!D#hIab{kd%5WD*mPQ%VA z26Rg*kePlu{y=0>iMVsrovt}xq3kOcQ{P|P`Xd#D15T$uYpV*?+j+#Pc>#}4?(q&! zT!$%F`5!uMnfrZ{ZXzi@SH^cSZ{KFHCDc(t1C8@sHY2J`Qc+&Muv)dobBhrH$=NDd z%BdHBqzc%dF}F5VI?cb3>k0{e;1u*(+Si;e4VH`pZUZV7l5S?PQkyazAXsn!RW~Nw zvU#1D$WEBB4&$?nH$HIG&m& zS0Gz}^uA$H`!VfOBS+@&`}b_Hu3lbVuvhH$gRs8iv1v66K1k1mu$asrH2WN%@^x%1 zb6ImZFb8sSxcI6M` z!_e6+l#!0!xq-HedzRWLmPj<7j%1g+itAQahTYI^w6eGqxIGFEEmW-m_Y?u{O6%e` zkqrX*x`-rUH$2FJJdc*MR5dhkfSx|pfyoJjMV&u8-oV}LjnyBXfE@P{14E?UMET>! zr`YoM?mc^u)db7RYw?Y?-at=AQz4UetmR7a8RRd&b{^{yT-hKr#A&^q*z>^R3vr3Z zQR0_)fDnwphl1PuIMwiBeYoDuqhAF|5v!Q>b2wd7h6}p7x|!>B(@7$jUiYfHQfG=1 zwGETzaji$PdJ+Yg#Kh?Kr#u(}r>{JMq156PdKQ{&^aW@+~ zdlL}FW+M_4C>0h1{BzMA&wl^v6*-yoz7wJ{0?-G0%J(z1il+h zohpENAe2;TdHGz(jg;5Ze;{Eia$Zz~oa?I*k7S;P38d-83ZyBXa~J+Hs5Ul`ThJWY z@yxsfU-pV#j2a>q15YD|O?j_rImQb}jFZIus3EH;qq!!=$(c7(e&(79i%Q9**FfaI ziA5{!OQl<3-vSAcS+tJWPTyV6-#r3m8$I#7cRyoUxS7<_%UMC_;`Lb9(`M%hu#Kxg zle)bIOUTo$@J?0^$c>ZSyq$InVlwQZ%Z34`w-6=@Q~N78A;;x`>qrr&#G*IWe`lZh z)8a_raL*E?KtOXpHz;WHs6W<6?e)wV`X8F*8q`udIXS7tRZGg6wyeseRDr)$XL~zX z#L{e$o=DPn9Ohtd&J2}=p_S$%*%{ND3RAeUk@RbYIa2oaTtFQFlV0fZ>%k{=ww8uq zZs~m$wBekL$^ZkJ*zEvp8YlPpJFVaw&AhN5FApXDgk{SpEma@Z?-@L*xX4&tby%Ft zCJ--eqMNmlS^3>FnyNLwG*}Ervz-mI_4j@@6O{AjLu%d(g zvmifCLAMn$pz@v0P7V|2d{w~pLv3iuRhUDo5CuGX0~iwYHe|xSnh>6bz|~aa^&7{O z=PDW04}cVCxA#8G&E8$ssIKT*@z|#Ny`}YD}9YKVf0odT!Ko`Iq zeE}E)NLHJkVBz-l_dfytc2r+PL|EAIM*{|Yb3RoQzlp&%H@cljcX5Y+WrjA)KJXiTyo^$g$F!GRc^z;6y&Y$%${p$ki%KZBn9Qzv}`5ln~~lZz#Wjut~2s z1@?knGKPe>;K6bB0@&Ny~_G6ctTXH6rA+bs-er=2Y(E4 zxYNmAfLam@1`eIryksoz0yESv$sEL6_Kp=xYxoj-+*4VxGs0z=0{f~cR%hxN0@3p> zS1vW?mf4KlDHvh8b&DKo{Y2Zpe{VJ7GW>uVLz}+G)M8wR+|gHH03P#GLkS5h&4b}K zKR@83s@;_W;34~lhMqx+ZnY}xr_mlot%`Z~1+L=c3)*5rfQ9L9>Vt*oq0 zxm2w5TOnyApt*gIdS}}9HWMf3eZ^zg!N%y}Jm4|iJ(C?5r#xm_fZ_&{lH+?ui*eLq zR?NrRT7A56@MxnsZea~kqrp(n0FOeS*IQKwPHC%OjzMAMp~r9HphewC1&VI(W%iVN zF;|dEeZ{mldjze}oRiAu^z=KOO%GEDNSgv4JXp;XiioYw8z8pF;V3FnPMe!3d( zHAxcdUvOWawDOqO($&rJ{GALT3k=DMgIyQOU1}o)6Na;Z@L*92jT$kl$7ov0L$yET z2I&WG2fd|A8;|2P&iySw9WJk+pqgZ-C_0H`V_Q%1N=t`kgOUcSpho-g-n(=vS4f)a zv6*P|GODX-AWph_L1k1hX-qLmFwbH59E8iM4@aFqREx_4*I|`QjSkGu+O79L^@d$A z{{)x5P{h6Y{>Lk=v4@Af0bELP(a}s(@kfazq($-9W`Scy{qUB(r3=0Wg)%iaPyhH) zmNy<8sp;+nW!r~anU`x%4(T!srjzFL#10pt-Mh#sC=^S6YNyWcuTSBpRfr_5@j_*= z2>dRp0ji~IQ>|YVUZwtG=VgBkVG_2`hj$|S#3dv;3^~?iI=5e!a!XgtfX$CV{?8A@ z=zIMmFiGKB3Z%9YieApKc|yYbQQg)ycaF#h3JmTS_utk>Tvpb`Ey=A{g1j5bT9uWR zedyh*#O;{gx;&vS-`b;?%tpo`$X4$Hg}D-)zcwxC_ycv5j}Hl+1d!ah6NFyH%-yhI zXJ_a2+%(G7t0aM30QVy8dD$XAiuMauM?p{)ql60hfDPy@MvF{vpA*WS z7#FqgRmNis+`eS46w_4hpWBra)2iw&);aEHF z_-fn0Kq%DDCG`9Z^yq>OMh;knn1&{-SNxa&=n6y=ppzH-k(k`9yxeJCcH!5ryBYmZ z`MY1P2PNf%#6)rn$$zV$7vCyApKpuo5@(0XgulNy6sp&r>Pv2r%|YqAr6r6q6HDmo zRSXDl2fcqzlq1V0_B0y+SX*^x0_Nb*DQ#cJDTdq!p>~mV@H=)t0TGVe!-u4@uc)4Y zjD`uOY7OHAHpy+<(LivOV19Gpi=H(aH9*A?a^+xPQBvE8fw%DdbGje(?p;WC_q}_` z!jIS-?%ctIT6;Li5=J=%fLyU6$U(?-i{6wLWP+@RSiq%sI+#E*%VvdgMjMt(k4Qv! zT*GJc*7;**W;U<~l!ho6G!GTQz@Bbo2sl>p_t>Dj|gh)`KbXfc)gnNzvckd;_EMBL#;0O8Y;Hi*K?r6e%|~HPNMv93Pi8L_t5^Lya2TN%8S3D55H2 zJPO#{=bh)0Ys^()*4cb{#S%)!P_a1rAb$LmY8!Kj@bmguiQLh>jD8~!M+tiGd~)rf z2W}@N;Oy|V-P`MWRj%1HWs;14NTuEbnHTf+ZAX=UsD`w3xwp6XCYbV z5umu1rQAAWSmp2Emr+u}r{FeNEiAB-lEPT8{6#EpZwy41(p=rlPs30J`JW{^XKgNfi6AN(=mX| zL+Jb!KvmSxk===SQD_427gJRR@D$=n8svD;6iT#}G8~|xL4hE8ZMqxRuBCy30;&zK z2QC9cr(dmMO?+i#xopJ1MJVH479Jj+3Y00(BLyZf5maK{rBmEw#*CoxIbYGb>Qsu< z59PcMV6VSjIRu_c(EsF%K6`VWAoG)H3MMGS3!Th>g?@c;Vq#MniImsD2LqG=+StD0 z4e>5#z9v*3zIbk>8@4@7;Ip{6va-Ts*>`1GRPEuz`OTW?)B@}X7P{)?HK1B4)uITz?yT!75relAJ6Qr( z7f}c5{Npd!N6yEW(Md;<*CI#mN-q!rmrVus3#OCudfDE&1V#$=DNWiY%d|^;ix9%G zE3XYva!}wyt(`%KygOCGkb1C-;pibx*USX7x`xJ{wvvDaW|^O)!w4F3Zbgaa7s0_M zz+r*n>Gjj}3l}aRP78~qooJyPIIzN zHysh<5zlj({rY@qdD$t4eINMG&6z)^Gl+g~veW1L=SQ~hWuzCvAO*h4#)b!0WyTZs z5>xS2&h=K34-K#Y%L0wLl5E`EMBY5?eZ|Gaj=f_0KR}Q6G9)C5*~J?YY@}2QwB0P2 z$>mE}*NP!xJoV+!7SRD|@iVyTL@mXVrAwB#1s(71#?D1sW$6X>jQ&r8LeDgE-r~I3ciq0Qtp}SC3bvwYLE3@awux9#jYg7S+jYN_ zH{|sT0Z4BqZ}{SBYincu#AW5ZBupFyIP?}Ex{L0-tABBuf~_EnC~;J9Gin)J=f6~Q zJJB^I>C+&^%s0%zmrCeDI_LwZc?rGh5Y?tbEr|Z&#r=e#wj2Zs!&nrh$R;_ANX2GO*F6k~ zPzBEr2`F`;tFV4ym?ZM9bMm-?0yf3zkjx{{3*n?UL3& zivK7+-+%mw)aeoQ1+@S3>Ww-YCfQe;ERnz^%`J393%V{{0zD{c+MApIQ|@X&3lnz6 zdKH@M!^e-tAXcE_H9nV~k--b9E|jE?kBE-0t`lG&*4O0iS7LAdPxmSx<>r_pQF(n7 z`wFbW-)s9E7A*Wf7n$1sgq`WHzy7bA&trIAofcgmeSU>;g`4A-KeD8Mhd?L@jH!PY zddwo#?7wTrh{yTA8B~>j{9obk%R6}gZ@!G|e;xjR&_e(J_Z3f9l0Bvy>rW@@XA1&O zb99$MAf5hNz3R6YSzR&LXv@EI%TNm(;HT{DM!@TZKKu3+Pj#Trs_m@4W^~NT@`3I) zj|;=@{4?|7z*RO*rBT52kg4GrY6s&EG8+vK7=CrkXB}<%E4OB3#tKs7u{qpcM9?jmWafS{b{Q;kx_@LN z$KUl&f06-JlcW0c=6?ItGuSB6qooXYsXRW5Z=;KiU;(=}1m^!(E8)Fz=;ZBBnTXY| zR8V#QV?fmLwAdx*G^O$!us<6~OV_n`9AVs~>~5|h=jMt3N5{?|NWdUY3#ADcs%{c` zza7=!)aQ>^BRS8wsEDH^&SgB0U7XxFHWmA)%L37Rd+zm%yPzH{?z&36YpC68+xUk* zU&gGXAdOyt?LYI8?*A0&$OzTYKOJGzMW(mDE$!dkrET)hO#Ex!*AP|x)gY;VJq#u? z3zwSyb2B20zj_1xj#E(8hvKLv*NF1@KaS<;58XyC6mgWm&pgkoqcZ=lEfK``qa-=d zPoT>GtA&Qw{hzkX{|8n)lm(?QVhV~Epp-MBY{>>L1cr*q%gZb1wQX7$MoLm#Qi6OA zA{rygOhac4i7-lT^C@J#yaHiz(lI2@g-m*FJsA^osNJOiY}q$Hju+H;X?3m-rKzKX zhXQD7`C19FLNe+)@>R@B#8H1hRB8ff?ZF_ZYj#wv?&yMU;v${!GpL??$jrnxrCVHF z^xSHp1fN+5*-c<>(48hk+?k%vD7riJu#pR?BC5(8!Sq|AE(_SxLh3;W%Iot;UI;o> z$&szS2?xL>m{8v*S^|OW#1|)~+xC-GtHy|1c~0OibnV|Y{lB`Q|NEQ{5WM{Q@qQwZ z-Q2Yd5Uy8OZK=X#X4RmPT%f zi@TA-t@=Q7ccbgJ5WBLwd-+sRq34!yMa1=nic{Pj`pAft1q6(KNs>3z(<49?R{^?E z)%*D63)SVzmkqva!y`?84##8g#ZbY&niCBYHAOQwSz4y@lFH52e4;ypYdpouW+ibX_f3JMBTLeAG9^y5T#oXgV)gM$Im6ux1AoxUsC*svqf z$az7YHC%vCwQg_RMytY}4myOA)WPkm{sX;M)zf>$satLY(kTBaW;riFjEFGFy=|b* z?^s1gClt=kFflPT&2HDN*Tbr^T3Y&v8dSRz?(Xik_w>kkc?s>UPoZ6PZ{EC#3<2_Q zfPm?Bb<g91f9asSZF9Iq?8Bgt?r(2ejqz`?Na?K+qs z|C3*a14l%tc!_|zooP@Zh^4HpgXP@?svqXP(D%^U_i!<;_@wS+TZzN4juz%x?NVFn zglP_dHt0YbWHqZRXK+lY84^B3(RBFx7kl~8_Q;tCNZsDNc~b~_pRp~=T23gjxr`TQ z=jIXsU0%G=9B1gysuT^I1yprcg@wmww{%ohXEpHIEFiHd^!jZMfRPA}5=HsdH+vXE z7zpJYkxnizFE{Q_mnk-Bw&aJ3Jt=a0>4V7|nEX%mi06KJ4c>k*n0odMOs-=(mEVfQ z{}gSAg#y9bS}Y%RI9LHT$`(jasK=BkmDrBmtk4Y@8X1{~Iv3!k*ZSHhBOpMv>U@Pz zk_96ZerM6CC+A??@nSx=frWjc5Y0T6IR>r=);$vD@?@`~-Yw@ifwSLx2};NAXsvSF zcj|k|A|BpJ71f}ABD)6k)@YecoIZXPNd8yH%alInkh5zDcK0$&l!C?Gi|3IlTA!bv zSB0JO;lnjhim~8qoRs}Z@m^sC)6prCN!TriJY8^-qW^Qxkzi^54D33@t$^w?bcQZ% z-}5_qR}C%X02(f%=^8IYia8}dUFDXeo&_#EcB)uNNC;A%MmT~*7Kcm<;+YXue%4JA z@MOE>2zbJI4K89#P^z38U6dWep<8~B*Yk>aSVV*@um<`{(fZZy$R>t5llyowClk}% zttW;dRBc^R@ByqKHSDos3OR7|p9%`(TwP1M?48m@Vdgx+gr?ZyIEj}Y7Mu4_qiUbL zlpKS;k)1ewFSeO)4VPC`1SOsGxK2C6#KLEq84ys5pbGJwk6iv#uIOan)!2esURx)tgNq*lfI$|<5DP%ehbtjH8MIOzxb zVlYb800f-&qZnH+IPW>jo@1vaHrX3J`VmBg+KFIV2tCgzNJ>w?ev=9V1vI4q%1dQo ztzrfTRZ;!mbSFy!8wK0u%iC!k7}_9e>VrZwILdXWx|B~IAMOqBz_M9Jk#wyeb<=)Q5X@m5y_j6agAoX{6;hD`2}AKd z$mcM=*b@V{^n_2>`1Kl`a9XYf?J}k#w+&~>!? zf+}rtO0pTUJ9gb~vCwHatCLs!idKjOC>bE_)Wn~R2f%_Nl2#`W&O+gSHm9KO%}T>q zaRg2trPtoh&J|YH4l`6QgB~Fpcc(W*jj`k4i*%SM4*e>A9&9Fv$at8Db+wy7HvRT= z4LvF;fQ3%$k?fzT=&rN4)0hSqPZ;EI5a2c~AuDBh6bpV@b#C<&>%MynG zy5*As6%mMIu#?NX8W)ku zlbv_ZiTEZz;nHgUqPUJ@CtZ6WELq8yoSe)x2(SU12a~9%-t7l(>-T1Er21l_Mk`&i zn#_`Wc9t%d=@2&fceBY&X2(f>0c4NSV81GIT{eTa?=L>z#{WAt7RKd`;19>l#zBQ$ zbPG$dX(hBhk!fsPjQ&`>$U<_)7ZBdBNnW!KFp96(W zmmIy*`vCD^?*T7=726{z^VYk2u#=sIeNqb`l>{8Lw&{}5{}RgjSg12Nx2d%Eu71zZ z(^C-DmWR{T)dkXx73+t3BzaiCp>FW&1FF%@BgMKZB7*oea3XDh(P%%GOmqK5GjvE6 zxKILq{V~Xo5pPz1(pAq=uF(OSVB}f-W55qi>ytu&&%SeAaoS!`K#&@kJLsZ8cAqn~ zT~K$#20cdNJdBOSJp*{wXtGzM#b#lHv7%4X5m$4(zY+JgKib|990%fMP$;N`ggz01 zp#Y))Iv-Y>w*Gi(!di=Cbc&_TSY*G)LfGcwYG?4fNu z1j|uNeoGb!1~GHoGN9wNeYcItN>TuJ+`Km>9NZG{{lYyq z3++*!E7@6v_EW-$2#4Z4%r0&p4ZjdXyt!=vm810m60w}RFG54{px!4N8_c2%3k8Qk znB82^HgImH35ZVM<9Q&3K>WiU0n;-Ik4@y&!3D zgTepceXrYJ3#S~tgJcsxiAwqT)pluKftu1hl%1fi^-s*XeHw8jIp0^ zxFH-IGvZZX5Ye3}F)`<$ewxw0RQl+VtSk;7sV9Kh7+F~r%1^;}HNkO8pnBe=VV67u z`Uo*i7=;YH7lds!)P;U<4{|C5#_ZTe=OI7g4F;;6j9r}bz6=SdaMB9N!8^Ar>Q4#b zJS-eKb{2|FC^+VZv4bQ1iadC{R-x2&kzRB(Z@!HbRtq6`Vz~{Wd~`hz4fBRz69nR6 z(*-H4M#GUt-`($;YC>`mw9EU#2oHc)`hTNhCWjzRM9MvIQX;UFk%@5xYH=tO1-=6@ zc*gbs(6RN8jxM=~14ZZwX9UM!D&g`D(THiJ-a!7|uK(8`6BDC;fGawO>P{9BXupnp zopS`Fk#OB{a^i(#0pest8@&(5KRLK_=-&_1F}RqRuo7?E!3o;Z<8C;7DI%hq;I{)@ zG5*25cx21h9cdKe|7FOYxPi#UvP=j51D6jreh!74`2}lYO*Salpyc}tV=Cw30%N@= zSr#1hLN0i;FqwN^WBdyGyLgehuPt492MZ;_3-%nFZJ&{WwBH3oxms>N6^ey>@dqe# zimzzAGBkx>Nbt|^1yEBX`3bBs^!pWO3EaoG@Le37haa=j_^Q=jU1?#sas#jx-kQbgKk`s zn0F%cb3Ff$nK^y0p{p*ghRBjWo}jC8=5Dq5yFu616@jC*+vIh{5u6YH>FP^M$*s@N zhui80nVj2=IQ+M-$Iyw+?m08IzpXT4F1PF4sycq3fx6$18*KW7A6aqaqV^QEe_v+z z@S?g$>yONt_2{SCLfR6JK8Lv$??vcHk6TL7{SI$1lVZt`D|XsvXZHAUu78u+i0G`<6wS-f8oHwz4rR>^m9a+B z^ECTB_u_Pn;B$vV1koaw>Yq7PNu}Qnrk~bdLCKRLy0+fB>2@!^!w!eXj zOV&>q$Kvi9U|9rNb>{ZV8W~~qTG8|{JUU-f{O{zwyz^QPBk!=}AqI+jW0Kov#xeiG ztt{%kN#oW-e9gjHL&`?2(-(vJFJHLam#6(r#~r$wbhc;=)_SMaZwB16sj%BmrEHsY zuKM#}Y?*=WAyI6@|#Y6n`Lf{9h?&3`jyz&)6MAU zc0Ha!334T5_rW!!>`B&_a8S#O3KTHxeE#!EM{%!)-RO(j+or5nyhf3UXMff zkHiQix9TkNXK{Py}|ZS)nXSD9wH{#e=)igB2FmOUZ8BP_9AE<8Np{vb`J^mj{!=aAE z)Je~LW9M1ejw-tG zPH*!tTi;ws>@r(;q1V!x!Y5((@%)Jl5$PPhf3`DY`jhUAz*w+M*Zs+c!LEQMo^Y5( zbI#N2>+j-ln<|;1UBx!@)>b}m=+urc;u^q*;cWIcOi+eXnp&xQutm;1a^E}`DlWLN z>0%)paASPE_E@d{Mp-_IKF!;wPdf*IlhHexk=42*G0ZDJdp*Y`j1QDqKmnc*rofI-D}Ctl4g zvGaT6^TTXx#yFQt1G8?K~n|Rc{kAmYsn7VeEk5=$KdRbX;&E(Y~#URIXhwQ zO{G4;23MMQ6e{umZ69p*A2&-aU$?l7i5A$9UH!(uXgX*mdjD^=RjaHm83imAV zjjD#y1uw=`1DP%T^Xa?d{jaTJwsGrV$x`q{rc*Xdg6W90f-lYvPE4)^o@<PZ<37GX{({hP$*qxL<+e=BE8rUonS0Rz7_B70c0&*ZN3K z`}cZYj70aA!RLw|;zT`I(W*O*SF_Ecs;Mv5MW_}r6&`fNky)HDG2$_!1Nr`WP(C%`6}Z2kubRUOQ+RGRd|Q(%Ehuj+?OOo{+^c?mSU6LA zcDYlfSlG`Q4zqUt`WN`0>)@6r0jEt#>=_BfxA{j?^8@i3J)GvK+7c@F@03i8C%3`8 zBzv-Pa>ok^!BhIP3jRB6;;Ez>`}aslda^|%8d7ckD}5>GE>Dup*R6-)g5WxblB@&4 zcLqhrK89#`6Y2_Nl7ODhsJ-M)l+H4Q>$74-tch~BpxRT z1$@An%RhLqUa~vY{V!(@WIE2ZKftW}@1MGw0%scf>*^L=;i-KHLOLv0Y$yZ>r-mFA z`gv7{5C1xm#M?R4v<>Fm(pU2i`Tb7tL5#RddEKj5uL5nu$^gfkT3F!vihbK@DSNnz zb+zx8qy^@#UxoO$$f5cW;BDi}cH-nu`%93Y$RF_@Q>a?519WQyg|JbP)`vKQf?wE`3_9hum!aMcwE5EB z&2j?j`Vd{Hn2KAj9|pd=_YCwuBrsPqvI$BAh0Ib3x}a zRzJLP4o06L3gSO-{%WQ2>Poe1=!qqFl!db#nY#kdiW za#T#rwNpDE@sj*OIC;O56TFxhF46ns8%r_+79!pBuC1F%iN;wuyr~6UJRjEb6w*EH zYL*3@dTihjSOkH$)fiTX~$T=8;vqX+}O#{z{W@?OId0oyX0I?TJ{q?Bj5|N@;3UE{i<; zWVZtHWBHi=BhSKVfw_YcuAsHEvbBVT&+ECmgrh$*W3t@DhZnn{YGH2vu{3XvFEgLI zT)*TjU~gKY9CC*J)0d@O;=|z&kgFc18nxcii>On_Bvq zq!C?m0i0Z_?=>BzESH^M^9P|TBhImSDmXZ_NWFTaVDa?Mov8+>&>YBo5A0_V=cbPp-)*#1@OAFqV`2_6&}1^cv{d*p($~SBJU@JWTPd zHMmA{A*RdhzTszk7ma*fL=Ny?<#j%Jm<+9;BdWz%)ulEgBj}G|k0|dOWulUz&%c;E zT0@R%JZEg_O7F6e4X_-j3pj68jY_Q0>U6uQbaz?ihq?52K4p&XxIz+gg+7wIl0-2{ zz*x8FmVAqKGTFqmrNJjZwx3xMd|SslzA2fH1H!zS*eJCu^qnomFCcWy?0VSrF?NyQ>pNjr z&KqMl85neTr;E`?ww77^IXj&cW4d(S2#&uEoH|!__n_ZZ<39Xc=nN-mUw4>#Qm6Lb zs6B61qK(kWY;t}WEEHju*4CgNYHVmg1s+mnTJm?Mmi*4C9YM>Om}FcF)6rmzY5*D9 z7m<&j&z0)h>*^-PFh|MDb0>4fDZP1aH=3&_(XzMaDSC3<(#Qw}zc>XISX9KjZm_WH zO^o;afbY9bxmH=QJPX;^zP{J4oG`J};h6COtl`p(dg7|B)(TmJOB)*k{QDN%2`dLf zK9|?g=)0L}vs~VdMwc?xLL?|dq+fR}ez1Vb!UyjKXQ3YEVfzVQG)+Gt6$)fM7~K^U zpq4-ItC;9H_WM70d+V?$-{5@|0|T&;4n;tLrBhO*yStZeK{{1LKtPlZ0i_$3ZltA^ zZUh8`B?YA6%nDKBjN;71sQPBTs|>iK%+M|iw1>k_!)qmAl?8OQSektuVH4f|jAa{h^I` z!X$WR#{cO#Jv}{T0m!!9eX4YOH*4B@$2%6Y-F!Eu>yCZ662#!W^+!GRe5;+yyB@PH zHF6UQEjHeWm@cRVvXa3km(^yE=t$e~dC;VLfVIh6!k?put44M`fFmrH?7)k{r@>%* zor{;3K0kfThCn`Zz^SKHn|WZlblD?Yxo59XYwXK$HT@rzdpF-t-(RcM7r4d;SE%H(PKr2`VB^Pkl~Zp#yw9 zIQ3T(4-3n^RvszZh(Phw{@_7aztXE$0-ANDT07~Yq)EnFIZ&E-6k!t8F3`U}P;FA8 z6)8dufU0WxMV2$ik*TR`hWZYXvb5>fegbi8Ra|-H;`t2bUr>aAZ~EJm z$&>LMJ}zy$gZ06zxe$Zk_W4aW{(g3lZ7K_#e~ATh`!tTB(nLwB5AWL)_$gvmZUu?5 zu(KP-g=rAmB|UrV|BlK@rXa(LoniH9mn z{=7G3pIO-Rvvj~`h-&ygK8_UHiZ^lC>&7o{-&mzC?MErxBcpq_R94o(y{sH5XTN@O z?;ahmw_vj6V_ZFEwVZ>~GLK9L-b7`g?2Y#>!&ZD7adV^WIez;EhOZCnNv>S1O;(GBGj1c=s;S9VqJP6A$RE zp}rjyulKQgTttCuODv(a&WJ6h%hb;FzTiB#gR<9pq6;r5KtHA%cW-X{faC2$R3Yud zhqF$+oG0U>qgfp?PN5wOj%63JFQbMu$v{}p~t-98UvrP+N9*WkdRMxb>xD{ zVfNHwxhbMlFP(U8m$l6=m#?!u&eLrcjkY5H7$5%>r5V}z9nH$Op(Z^uJiOh4aDiozkdCAuCIm}4TOh>w@LXi_WZXz z3XrD8@4hv1UBjP3jS?ZZbv9~dMu$6ozKa1VGhyBVcxDZhoM0t;wk=bktjX+8qO2U9-eB#G5GY|x;=@5Z0p_s>GS=V3(TjkK6&+!k%R?B`bOB+MI9>QC=+vafZ<`aAS z!gQ*RthH8aaZ6P(Gw4O5H1B?E0<{7V3_Zf}Z+aD3?=svA{;#7)=A?e$Xr0^9p)@%0 zPcET2T2tV6Q3(Ot&LYXZ1_i9`Xob9u=2@1$1UfCkSBYSP!y5(ys@5jXWsrYpVj>Yh3ecyWkN)en=iQB*m?rTbSe`GI%WWo?_Z861dd;dpVJ zV*T(Lq9o*|F)MUy&Fm2WVaU)vvqD7Y&}r26BJ5*5aaDe2Jxp1E@WAWzwVa>cBLTPW zkg**59N&{CW!lK~u(>WWnRXK^d;6G3yS%lW1<=pLKUqUyRgV=8b=xZQW8EhRwv4Q> z!rJz?%L&oFM!YH(Psb^`Gx<_1_NfluI9_*O84%70Njm|;4;CCbW1|~zCv59DEcT}1 z@|m2S_mcYpbeYVFaoetcR+Q8>ADz7O_px|;d+X}Ezz7z}Vz;4$0GCM(QDUtZNG|bF zO|_#T8#$dE=l66EhX(e$<$DH=;cXgHEsM`Mw?eFh3zJrO)?s+%uV0TGt3ED|H;wC` z^r{ZH@l#~`s*2IdXfVaFa&WXnX^@kXPo6m3x2~NkQ<+@NJ)sN|O}jv|Gn{XQ8u0PZ z%nuWXXxuZJJKW@c-}*k*x-@++>8|(r*t2Oe5|Z%9q?K`12A5%(DD4K{-A6H9$|pn4 zqwCswYo2BR4i**9^Yz6U?VY^RB>U$pa17TeQqY(9S~H^w4KoLVV6;(^2H^hltVE7X z+v+L;$Nv@nfRT-jO=BnRpWD5Yjys*2HlydxTTQghJNP`k6OoNVDHS`tZJ!5Bz~2M< zG`V#zpN8b*HtKiIsVZ1vF!(gx;e2-m!;#oW>`jBL5WI3>*ooB=VI?YyWY;f)f+!bN zYQo$B^7c2Vet@o36WK%}7M}|q*+kHF^0Bad(L;|u#K#%KdELupkaNUd@)Y$J+c@Cm z%X6@P+2n&^TPrRuh&s%XP> zvS_)LcCIDJrMzI`YeOnV2<~t#O!x!-xHEH}2%1nSuiz(f5sxmwr>cEsjptS}peXI?DkIl2uTU znQ33)^BdCE>+&??Arohdi<~w6nm+2Ofq{V>bD;)^SZtVBtKFeRtN&vOtYu3qsJ8JD0W(t5mx+okwx9f3j%2EAx9z~806TI>uO1g3O z*}X*hLVD}LT;iB6n*1Js4TFDzWf24el|o^mp&xFe#DAS25AMZ?yt;Sgoa19^a6*5- zvV?X)i-^nk-;aM^M2ZRH{Qvht69KH}^?(aZF}M&^;hQlVm#WtO1*@1oCP3f%g|1bt znrymEF{%b!!>jM5(|(8buBLzUe3AW`1f#s&{w^J(y{64Sm5lz_|v1KlR9 zXJFKozyAG-450HLE;TVac&{{Fq|8J603yj!0{ zn*1o4eB@rLi&K>@3GtvHmo@J2nRwQ`ZeO~p?Hz^+PELi?9UIxGE>oa6=<tRNR6>x=yP< z5Ynj-9gXcUE2*__6*TJ$UdviSS`YW;8MFwRyBGZqZl&s9F10)j5)oz)0sFyN7fKg(rQ#FKN?v6ag zsB=pSIsjWgExiPj z({Fd$Fp>}vJ)w;_$09Tms;e-xThP!z3FL%y^CG@XM287HH)_-Lq1t@)Q$A1sy~ zGCi#ij$S9H0|m=jRUrzUl78EjQg91?t<4-Q6MCHaSfqszh&>TjYe$6+uB)v3{uE z$g!dNm#ES+e~`3j3;6ow%ZtIj&x%(D1_rPekHl>TyadCLs6ddV>ew3jYZ^p{jr$_w zAqMg!%8TH>2NN`Ie<$T0pFYyOKI+Ju7|mMIeK-&ZUDi>ynV~(4HHi)pJ!VSuQE6z< zLG&jo;MG`vxN9Xi`-}+8M|xmnBvWdB%kA65L|36!&xF;&jlX$0CR^Th+365?A!ygN5sxXW|1xp%a{%oe-UE`4tAE+zt~;{F4XEPqK774H4g zD}=}YqXl?8A)B=~dNya43eZ7%V083r6ut|<4@~=EL0NhExQ{-gju^kzJFRb{0_U#9 zR!kZth`oU)F|hoT6k+HS!O%ZB8KRtR5?`Tj!wSnxMQ}O~sS|xEe99=zmcc>%7YCK*g2@URTy5}!D~&0o^M!(dU%#W|Gpm|j+xExJz0k@E zOwda$FA83vG8^{&;&oQUb<1cz6G)rR5^dA$DU>Pqr9>rPlFx*FT{-{O6p9*+Qv-wU z*%F-AABe>dU`n{u8RW?8uMp+wfr;)q`Ny9X0~zXK*)$R-=5)dIBM)Cq8PB)b@#PwS z$)XrSn%hi}pW$Wbmd-27V60O8ug`r|nG@8Cge|7yz(g_uL$R1*D_nNiZ-(C*UOV$5nBo{7bP_`UBVBxv=8S6=>`&6cJ@> z_zqjwYBlPp#Ie;so7|Ep= zHu(z!?kHQ_x+t7y2uealrWj{Nve7pZQ;4E7bk%*wnkf?h;KPQbvWTeNt1N~1xAe4k ze0D3II%A(N(3B{HaV3e#f!Yr_XD}&LS&%c=%7a@#O3u>-5nS{0!{ikGw0e>0RaM0P zPlYwON;u4lmc&MQhQgUC!XUO#CG=P!RJ+HU-hTLSt0P~{z8kHj0aUggjelZ!g-Bgn zw3_d@>3v(gQBrQ;El7eNvagg85HF-wW21M2-VW84sT9x)l_<)lE5qDTF@Vl$QL@?P ziRjQoRNecnK4c7Ibbl0tJI#~-sN?y)qgz)ly1jQY^kHwD`yraD6pA}`dUC|6&WTF{ z^mn4X3@T#qNe@UC!P@$->RORJ5EmEUp8>7g$Yg~h>M^vE0mqScaje3g^8Cv$ukLz6 z1X1Q#Ug+ZT@^BtTKNz~(zOnZJNME?tR$@z!9fBYt@;W#P4X#_!;&>!UeM^jbFGs}% z6M9zKp8R&>m!yrTCZIQit)Eq?h;C9;NK)~03=WSjXs=Ct;U&AS*OlnT z->Xn$d;r=Vt5

    ufWaj?3Chq*g87#GTwN`vu}h&|3UI1upY*rm1WM@G4R{Xz$4RwH&Gro z<`xG~+MA{P(dNL;j_ZfEn}~t+B%YQwKOK)XGN0`3?M(p^&DI=-?iH3->hD>=1_TTDY{iFwQ53Dg-pYjEjq_ z&TIa+b1vJR%3MI0enXr!K(Hs&k2yYxP*j;DmnS}%WZ9K>P~nR z$Ym|Lc{A1}TfyWd)-!bx9oTs{MFpy0SQ&^|tA2Qu+t0j%gCvT-Q2|CFxQFfpx7t)yVcvI9NoZx=(QVP6(x~|mz17)bx$MzZ zp74D$+j(E8-s@&W=5&_%2Y92ipYC-GH2V9sqEM%IePmFWRv!LyhBzUcU*9b0<>Z<&+xxr1fqI+*BkDhGUYABnX`*OCQc`zS!)-_|TkfAO6 zPH6XLFJY2yKikz;S&7lM+{|4im>c~2)zX<_hr?)=xZ8E>pmGO(InT~_X7fF-1oIcS z(}!~V{>%-Td!oZf6pre1gBaBdYp)_{wuMeDeS4nI&YaFPWD$TeI3{G{YwhOrn1t)?-uc2p0UAW(! zddOD0`fb>=2(SmUGap;Tr9B8-F#kPBI=a2Pp^-j_?93A|I1_CB_27S&Y(Mtzr8Ui+ zCx_m^GW+b0Hq0#>)V?5R)Ug#}s6NcbN!#{+=y04JunBjT_0i)}gYWuPRe1qFc(+Tb zjo88${U-b88iC$Pd9yAce)XOyiSge$5YRq-{jLSPnj>^@>yGRoncqwXVnxS zn&H{(d*eLrH4s|KvR7c5M7TKJ8k&3>Y0BHSl}XXm_GWkVu*!bhy22MlN=iCxomUx6 zMfoa=&`g?9*~}6swP!qJ$9M29*$R;cxBl4mAXMV@gjCC(xAV4s>QTwm!-=@sGL1`TT*oJ?bJ07stju_YaPsk!y`;DWjkM?7uxANX1&z^5 z^`Wq<0=taVDqzPkZcmOD=@;{tTnJt(Q(TF!A$pF)Y^Ld6lI0a`b6!j1BK*63jEBDHW3NJabs*brtv96U5?@W7T{4Oeo4;n<|2fkB=`hMnbWi z`kVy9Q^odV z-uk?@EDN>tjDaqdS|&{46>bb*WV)xvdeI8W=W=#y4b-}N^kcKNFN>ez#n+g3Pg`1E zTgCy?(u%wV>EJ+t*@^9C=lbAXrKKWGp*J5$*+`ACAUWh%`&9n&`?ia&f2b})Yjt+C zqSZmRYNylMhz|2wx1Ng}`3-UO2r|?-cS8nt19B@%>+@Z37+}j$ku-9lOx<2v+ZH-Rv&!~$&&jN{(N4_ZoZZbZH=|h? zUrhL@Ofr=Id#^Bt!*Zw6Iauc~89Td>i}IBw6RkqsOQ9NcLpYmEfCa}}Nor)42>^N` z5|X*~KsbhhfokWyYygo7cHw$VgrGokKa{2QlcY`=`;xt| zKGWbUyl{TIz%2#WqU;2`3(XkR*JgOcsczxpVAGvoj$L_j56jR;qzc4Jr#AO)ezW0y zUPXo}pHnV6KAvU*UKn5=K=e0unpAtG~R&?Yi z<&}&3Zb-aq*Jhz>OfAYd04j4ph=`2PXV@4T!w}xO9tP5f-DMr<-KI5{?Ik#FKoLQZ zZr%^pKX*s^57K z9BL3Pfztfxo!qwsm)`e6TE89|FD!_0QJh+XDNR_OXhKh)&+|M`u&8GS&lH%RYUV$j zROoAPhY}a-bUnZ_DPy`5qT;dnDcJyf2@e=mk3a^;A^fbnH%4iGMh@}C3SWP<^eOvv z_5M5Y+0;upc2-WaQCDrr=r7?`7Ay_B0s@IA(Nk9Zlj*zliuTdb$(d{B&LsR7N=$Sy zxrN?2w)YLl5RXa2Q<-8~`zdm>WvBx*EHlT;CmtW=GaXh(Sxc0bHi@kze9QBtqS7~I{Kbql;5`#RWA8j1|ZpG82xHa;v+ zKk?Y7Vg2LHiKw!~IL`NpEXHx4VIrs5DFk->V=+bf@a z1Ng6$?~eeXyHhMUR%KK=%@Ku&QuR-6pwSVBbY$0?=eIspXq<@}35a6Tu@rhy5EGw! z)~X%5TQjv0V09#APX<+z2~_2i~qd1;mOF#1&k4zm@JHBrlsZ`!=Ih z(TtT_g0rY5FzNT3534 z*_)$WRwLvyowv`u$j+vNvUbldG+#hj387u(;jTV$15{pC)=WyQG1BQACsfrS z1idAvHAfqAVi1ZHxuLG$>;)V#c8GSpG!I!c{*}7Ay2w z>g8+f)`wcN8#r4-;zvm1v77-0MlGRdM&xoe3Zf8z6>FFdZeDb7zH>d`dw>5cO#kUZ zH3|3i%z{7DhJOTeEtMC*0yyxu9p)WgA?NU!#T2NdImfC>Txyy2yjRf?tyTfK#9Z|yV+f62 zU|6Ai0m@p$_(yV5(%gw`e~+S5W1In5+7c^;C#FKQsMuF#Gsyt>MNhJW{i7`s%QQRl z!Y&}b@M9w%UP0auB)$8mLQhN;is{)55kn`fX(-eO25!t_&I@A4?q=}K%kv{pE}$6t zBVuixn?7`L;vUEkz#XlpTo9Y&-H5d3cQ`-dp`*Ti{k*_V_#rt@&fnLvDv*$-#e3^(}25W9vJgV|!{}f&@m25DchP%P`Y?xe<}mQq8u| z_gN%>AYb=E&hq6&yG-q@tYwJXpw8o`2ou+$w)>fX-WdHIPBx1`id|d0(S7-M0gWab zX&6-RA`stJqcPIs4gn5=VB%``_{Pb%Ev#P+N#xw#W2-$o7Lij zdnwgf*(@<^4mNDq+KltECZE>;SV25KIBfoz6Rmxe@VP?%{Py;Hax1Lv3ezgxwr}5V zYUn#VIc@UjsN)#&F@2;5o*H7XcB=Jb$;Ln%u3V*GfkO92^^Wov3#Jc~q|@E%@`ejN zLXGRnjn^ZFs`W6m!cd8!KS4?F;o?aBlTHN0OPV&QNAHubvU6}ySMft~0E$gXOF#*D z+hmlK0ib2-58g5XPG@%eAZ=9MhP@5{COEDBjzD^wc}r)LT1g(VMb;+GF{tfl6d*7q zZG0SMM7GtGtreX{nAMSyiwh<=Nf#!$wY@^-zD)$79o>428kVPk<`4I+QBOXM=;zKX zrr110hIo8C=#wTwn!v)PizI4eiOp z9DfM=XYia8P1f@1Tlgt%Oxkf9M8t;6FrOylsK~3`X$a~eWlb`uyES2JW+u)%*|a`x zZ@!*`_B1d^#;={SI>{N~Q9p7ktJZ);)eYr&hSpfSyrXDHp!HCpA!w~)QWUee>iiy= z?{8m3c@+^Um~FMFlRzo+;1npNFB1i&IPuV@4t#a z+GsIDk_?evUicqnk#&KS0V6MgFM{BqlpQU`-M@eJs&ZTtn#ceC;@_`ipAIFcE96AT5~ zS3qZSCFt2Htw?hv_&3jHSto%!6f%|ruW63N(Il5~*Q&!WRv~wS6$FOqAJ_@;W4B)r zTUNo{qj((rrbRR{U5Du1<+nUMPIhXMp3i=fk=?*|*!WQ5+~fM#LQ*#Gt;fx>&-KBK z1aQel!=m+re%JpIN9DeFau0@|Gzr0wi!R1+CYPv7RPb$VVxpdCb}6u!!}-@#vIoO! zFP~d57KqQ<>L1H|gVsbIrQ25j|5QSA7Z>tTZ>j;B(yXZyFwgdG65^ ze+vs+ zC^5cj`D40q#}`(zaX4D0Dww>fUa?zwEk;U2!^SuS0|i78-T$%?pXbA`WGA0p(L2Hb{a>;l!>JOb-0I*$4_> z01tf>`dS$idf<$e&^>2Jzd;pL`zyN36d;kLEq(oHwtMXTPF}bxC*FK_VovJ`8?InU zYO1IhNovG|m6MYyNx&-hR2KQs;UR}R5PDEVN`meQqUd&A+?Nc`J2v*L`-gIGfOvnO zKSz}ws`TZ0n*h0?Y?SXo3{VG4H?9J7%OztdX`te%AOBMnh~KB~jWU2USIgTxfcK}q zJ!{)COyQ!i=I6xQGtswF-w8AtWGny_+Vp4><+pjw*ob@fE3_L#N5v1GSwyURV~tK0 zT{1R5yQg=wB|}(gJ@-z|dTX=Lq~dc0v+wIngQR)OKQ=n;QS^C}Cqlk=_BQH2WR6vD z-3g~!{_*XxjjN9`y@XoY$HXJ7UgwdN-+`AO%v522sXdSED|bGwB2+M7%Of@JYA!UI z-yM-I&N4k&je5-gn}*x9{dkPwdB1nfg5cq#4uA4#;pFT2OeQIu$Tuyosk=^U>|0X% z>P(jp>B{#O-*D;%vHece`F0kSfQ5BpP<1s*g1@%+G@)?54{o8KW#dn~f{Zt(>%oIi z<)!^>naaI)mzcJ}j;U$PM3CooxP4wNDb?@XpRPatU=$Zt=SC4GxJM8ZH}rB!rTvC= z`_X#s%ZhX8Fsn)S-J%ut(A6`Cq%J-87WP68g8musTINi(%)6*5&lKy;BwKXaiQ2+U@Xf?`}!E!GrDkJzJ2)X?5xpgBFx6Xo5J&J{IpZwJ}jknHLc>3 z`W=_^EWQ#qp-Kha_5c=+YxpR_wvRwp0tYqBZ(s+BzUoq5t5(nz_-~IuUxyRpEwGK7 zS1zV8@BAzB_r&agyg;@KXrlf$ZnEoujx72yvimd2uy*IJ+i>~*OGPy`6Xi|N7ywvT z2In()I_~~FUDh*gV|Gw~godn&SwMybQ*w{%$+4qA3zGj8Nwk}(2b(PgXecc3d901j%rFZ8 zy9jwmTD4ZsExy6j8>0eBMg&(bvT&xCA-)+Sk>?@LI-|TEko#^c{qBVXc&Pv80*r7$ zJ~y7FnXWW~Z&*(`dTct#rU4rAb1y1BKze#IH87C6><8U9rl@LzYcHR?Sc04gcJTqm zrguh*$`3X6?7dwcoOy28q8(h;FUXO6_jmZoS7F#ZZoQvzx*W4qWIn+w_2JJ-qge;Z zDugx-Wt8J0KK9o)Wh0W75XwS(u34v9&m6sSuWj@bSz-a3s`V&}GpN~Mw)-+xb%WZ! z8!X`2Od@x8*V#kts}W`KjvHfRU$(0@dPy-CFE~c7J?M1gDZR?amEVdQndZz7(40=J z$ZL+n-AKqtt~tInnXKJ>Mrf)*e9+6NY;a&-e|v0@lr4?Agh@7cdKftrrpjiV@}uvuJwc~DMQ$1Ws6;km^x|FI@SqW%EE8#2!UJH=t-3y~I!J&5Yn+B{h~IR|da zKereiFp@LaFnvJ@?lo{=%?|`fu8;(v_J0VL|rT+|vl0DZ` zW6NF}_^bE0Xjs1v?L~n3%cmwqUHy=#EMm|9Y!S~vH_&~h2Ukh>G8P1a{=%sg8{E$n z-d}F&IRm2!YDe3SFT1rF=!c1U|20pawK;`6DjTE=93kJ^7=w<>K%iDbl-i^5MTWoEZnI* zU`!z62Rm=jPCcLf7jXKhvn6{gU9yd%VA5xElcqYCFJQU@A&)bjRC0 zA#Bgh`S|u;7W~d8P)&bNTtS)C1i>U7?V)DR#hv#--pz!P!Bn$O@$Pe(#(^WQ=X=tr zJPILiS}w{*pILO7<|oyj)=gCMeI}7vNlLsHf2w?gOH;P{FoZ5%)OF0G$Y_nTdOlJs zr_Q5@7y=Q`^I2~?7oz9QwSZ>-oE^)l(9k}2-aGJ$-}mmu);<}W4~QG;RL(yV^}heN zt&2VbMyCTc6ORUo%eG7u@hY~YbI@(QPa*x9th~H$P1v*s3hiLlIb^JA7r(~MxGNb7Qzif;V&50Ph07GL>pL< z40Fwybs$2&dwh=RduoIuv{;TTWn#-)AHmJtmGRed=0ExUas33st}%F4S!0{!&*tP# z;Bf7h`-}dN$mue1_JF&Skw$!X?7Fg4ZSC+|AsT^~JF221SSLPWT1*060r?Urr??uw zDxos*5j90w6?=Vw(U2q8nZP?sOla*5{y%f>wcZC0q_oniNwq&~Fh>`X$0`Sg4up;v z1S6Ln)!2UB*B)ctF=0cqM}e!xJeP2pbc-G{uIcXesl{VzOt???zl+sPqk{s^%+Gi5 z&MA?Obp~EuFuICZhoYDW;3gQ3`BrS+@HZnPBWKN8oPZDyk7fk+@z58{Gdub3nJr?P z5e&a~pS0QKT?B#n`|}Ql(qjcN3BQJkoTW=sf|@q8|A8NZr7NeCQb zy(o?QmJny?ec6N4{UaHM=K(AJO><8C z$r5A`I&vzw-TkYa!pj*NLhQjDTdJ*hmU2{RQ3GsZBf`7)&ei=^O~+NCTC20Iqy2VR zC($cCZwUZWn|`|7?)Y`u4(rPE62SoxRsJbBvpg*gSr9qr#>eAy{c=EW+;j~l5LX#p zqu5WcrDchu^xUd#&29>^-;g;%^^PF7zQWSKWO~b{* zZbR9vofTQEj&>ya#~ay{18<~#$&#FcA{u!oyE6xx6%+(vFo=c*@Qbpv4|>Qsu?i?Y zD}EgeErdOP-Neuq8vT{ax;|_A7#lyRNWq0d%=Z>~$srXM5QsqvmJ|R{{GwfjG&^)# zOgWAH?Y6+O=NvvK>CFwiKjXM2W#As}RyTBVBT9o+y*{WzWCo-;4( z-db9H^m8#hKUQVV0`u_K4%JoG1^7tQDh(m?P_mk@GGTBfHnu!$a2$9wMd=EFX@c~H z9kBfqCAQ?g(bzkM1TMVy7`CVRNDw!uZ%%AuqG0YrE}xd8KKc3wbRu#6GEQ|Wkm>UC zua{M`Y3;^c!JTV>*w?i6`~s^_Q%5U3Ulmx zt2Qj9)h2dlh|{Ef0WLniVC8J;{6ZvNFW~+4oUg-4P$%H7;t<{}`mL_)#UcS^3jXJUaP2iamj)= zEz$w4^bgdp!xgu-{1E@KZvV)&z`Gy|`5&GQL&W@l^g?U=0>KNoepVvmjfOWEH?DDm zOJ>Agh~J-`aJpT$Snc@q`uN z(wo4<8NSh0cy3rl#sk`Nq$9zeVINydA~psQsdq6+9)|dU>@{=wLERtZWJ$?6g^h_2 z%)c&qPAR#!KI8r1dH@&W+u9I_WAlKeew}s7Rf6|$8bG*A{3SVsZ)z~7VU%^6jg#(O zyvLBe_UvNrbs|Qn2}rP*$a9byhB23W;b0NS371T=h~doxT>>0gp7zz}N3+>tY9@?# z#~|;3==8N=>vE5P(yhVwv0n&v1Zm31MO5E_3qw$NuQOt4s-_PQeY*FTgMD?cK>zCk zP^d`kZU04QtQQd9_RHG!`NJ@2Ifg?k%wV!CC@~jgg6xDC%<_jcQH`$Kh6vAyUX7$O zBl!XM=?hFMgysHmuoFOzaeGD?&!6!c+}{6DL0S3#wE}gPy(#w#6#J%Ejm--+XO68_ zZUabaY(p1{p`5g;>*2m9kuuIB)hCQR0@D=I2Q`H;F?vbU6~yl@FFt$r>!XQUi!RPkbuorydY@Mldqg2p zs*7}-Za5N`(jQ9So_=6XlUohEqs33PfxuzYyqRNeg8*O!;Od_ZW4tg=Mj$yc1Oo>BcI21?XK^l8qhFO`>r2(TwwzZw z#%^#oyuS|Y_%6_53}F&tPeH9L@k4Exw0wj$%SW;~8oX3h9K4{$kU%;t`Bn%hUa-2C zUG9rbM;5-v9ECGLWsJhD!@r_79R`x)XCH*oppoFMov!D{r|{eGl=pNdEr(f5sfcS` zeso_kshz?$kb;W!95ZcZOds0yJ!AIVCl=AvH1ki3iuJ7}Wewrc)?!jflD3uN;KcGf zQK`sy56z7Kv0%cqZ#l0-U5TJz{0RhW15TLAF^C^yBy;??2I@CbK*>j4-Q2~9BYcyy zzx;q#D!V08*uX-+ecs~S_ErhMop&&O8{FJv`~qYP?<1c;oSj{ryzF-3S+TW)VSGr3 z^$+O3%RC2PZV1ee+tv<^o;x_rbDrh-^TQ_aeg~Q2k<+w&WV8;Ln}}YXEhg6{PZ*YV z_eL$KR6Ar4VG`Wcv2yw1&D-eK{b@qo;|)H0t%r1XlM}rzgN46eDKSr2J%70RldsZu zFZB5AU#@d$EXH&pG;vfPvk~hm@|O;5G(AJb&uK8Og(bH^#*SyKi#irNSh*F@Ek7Xu zxRv%=mBe2ut8kt?!B0mwj2bc~d3Shc74&`OAjIMn(0ROzhxG$f9LESVnw>!Mcng#k z(aY+j7=f9O!i5;IPyoREGp_F-uJ2ZvkeElq33(Aw=3w)?M{RL9Ef0*+3@;gebqw3 zjD59qYH}fLvqWR@huahNQ{t+&e~WaJA*QZsN*QZxE{R) zd0;FdU=Vz4xV5g3|Gm<#_zo9wH=BZLUY*%@N*Evq9$EP#$G_qja<>?1Y$0$qF>@}~ z)l+r3GWQzjhJJHUVaybSAo~&uRc%PqAj&Av{T>K#>JJ|@MTF~OJOJntqB;c)+>|x! zP_mo`YE0~{KQL-gc&71g2IQ_~M#jw^{3pSLY5YT&4e-J4q_1}Kfm{`c#w8;z2lt5G zZ0X;G=)}XfcdobB`(BkPt7%)%^O*1D2i4e7jYyUt;ojB;t$5%Y+&0||^(`Ha2WdK1 z-gbC`KhzZmmz$L6B~eTb$X))S`x5wuYZOOe49>?ucgt><4Y;^Y7h^U=_+c6(JGG2(x^wOH_*0ty0G0+J zgZgLe?i${eD&|u#=g{Rit>g8d=>A>U`rnF-$jK(w7n3mxE3ZS#8P_ck)$s3IyvbC` zkMr4zp!^}^dgcn^@X*VYJ%$op>KIvSMzJ`r>wHuYJAWVOPHFtrKoW0o{PQv>aN7q~ zEyg-cWt;*y9ee6*$u2J#oUUnLy|DLL!;LSmV%cK~uhVKak1LkT6RK&$H>IkubFl6l zAFIAQ!2bKvn|pz+esot__OJ@_$Q(iE|XBoq(?}jwG9J76R}j#A>=T z^M^CpIeHTH&v7x7WwN<&_Yem-`sUN*hK>QXEjyB z?^=3b;3#9f4DjC~J~Of0(__XAgUm2|yn<`-al2TF_1VU<1{pryEPWh~B$ zo9utlA2hQ8z6TWs4m9tHF29{Ro9YI#RKKp$1h z<`7?lR0oMWh@PGu5!R$TwwCjOrq_H1A!CVgR-(MF%^<)bgWkkdn>uXn{nIuVzU8tK zdeYoG)(=tz)h3QXf2B*;wsQGJmoI4Ud>)5q?(4R^^+VuZMLJ-xo{SC4fBVtY@&Ad| z877{he-*YrL;eoIXIR-+xiQ-`S(EV=f00T9qRi><5`7y@UjeLVaK;x6UWpGfR!f>y zKkj{gZOZ_*8uyb+B`j#z)y;hkd8n1*r_Ow`P5~&CkpM>9Pa^mnO;BOym5=*;1Gz27 z{d-@xv2W&_VSNv1QlU44*rvXNZb-uRA>7>Dd`EPEK{JH$|828aX?v?~aqi1NgPXAO zIOd}l%6=S{>zWgrs&4I>S{}SZ!rWa~^NWoXv&3|ELw~C zf@|hy%ghN&4`W6BK^e25Ia*yLoeHob>M$Ep47*$ZWkPE5Jp|f%Gy4kr-MvD&9VwQ7 zj>#~A|K;G?ZxG%Y!yfiJW%n&WGqsNvoqE(dZ;>yPsQkgw(7lSLiP3|e4Ltae3wB;E zZkylnDgxR3w2Dx?aaE+}w}&;loxfelP&Hl;>%NVKd{@A_TeKfc%Z>w1lx4(FWb z^Re!?+wFe4aR_cOf`T2NBzgC5-vqQ|EW*~y@Ks{lOy}CUB^Y3LIM#9_^g~()-zTL+ z6>AhMH-$(d;|vaYJGu=9Hsy0;DpHqzQiJrla9~Rt2NMA2C^`W9H2%lzgUm(cd#w%4 z*S5_f4H>-mOkqiS1@~5or{%v(M4FpQy#D(u)uR0Ct(WIO7|riC8x(cYY$+D$i7ES# z&8JO*ysq?qq>QLW@4#NYZ495}PZfR%ez&7=T+)BwI0%m+lWu2}L*@?_Ml9{6XeMnB zNmn1aSFx)|Tg_e(XBTvd*u=YTK%>#lgn5PQUQtzE=nza-W{KB{rCgN)4o6|b8|~N^ zZ_K{zk>|R&*Z4l4_P;JBiy=~PhgvaP^f?Q%JMN0{yWJYA)H>y}sl(?@>?}4O;6~)R za_Zy%9(UmQusQ;PHIU;l{+!rX=_LW&TUt?jl;rBsJuElJNJZueiLCAM=SRdvJ!%B9 zsQ&B4pgqpYQGBO)zgx{t{J$^P@$WRk@s79uyKFzxMDn*S_5={qr~PHOe%}Nk324=n zi(ecxeVmeztebFT4ZYiaCuxF5G`_7CToXViBRuS0^CM})=PKR!KA)E1m1F4a^|WY} z^b<~xX9kOOWwfI_r44B#Gk(3UH*w<0rU$>WkpcL#XGR)k!|Gym3%Yw5sSOkl|9yQD zkpCdDf9hO2AMUZ^la8}xN$+^e0LKif*)(_C)E~8gb8&^HwZ`ZafYHE1=P>2{f?5-< zu6Pjq4&p)S^75v!>MtP^@V5JFGjONr2qH^?mRk>SRXGkZ#i*PW%*NQ~adx;Wv;Q%b zfe&t5!~klQ&Q%bmJQ4^5o}TXm(q!6%SO)QicNGN8&d&BM;)s3Y2|FsE<(dPx3d7=l>Dyq+mNoSl)`!OKgt6=xZ{I856>>N59+kQlV=5-Bz z)e%e6;ic^PV_M6DKPavVSoYEN`O?W$+h{9;h-R|`HN`MjEZ6J)(@FBa8dU)IqT_+p zAEd%Re8hCIlr3=Lwd3m^;Zp_q#>=zavE3R>K33bkHs(u}SbV1L>98Le^L3s&Re=*x zI$u-ful%aNzip7|AEy_`MawXJk5@`jy3D3+Ttru9rN0%t6GCn$=<{07UYOKqDz5{6z^}03n!3k}{t6Fju(xlB;4h{4t{&NRBD8HB( zr-9FCAP11I8~g5<-jp4qt0^H`p*NW9(gr3R&jX)h#hoja@#C`&oX3xwtp3~dPUhhT z9o~MHAUOjuE0+PT%16dUiH!76Z;@U6lPZ1Qi;?%1g}_+?=(YzX@E_>vlnjFQPm$}O z@dn=J{V!EfA!yG4GWq>>45*>N->+?^qyYxvXaIV(p?e*&%n-2$Xwdt2+$zv_!u|^V6~h@nc?UI& z4R{5tMh+7cK-vl@rVl&y$(c#q;2`|&W_;9vR2-<3UtOTkpp!P_87=XTmuqC(p;D(Ny}kxt_RFnt=_0YfL4u`$XV zb{LU0(5Qdm|Gd5fX%E7dVHZWtBRiesUqQi3aBEBV{#sQPzn^J)i!SNZ7<2@{&kY;F zrv_z;WtW7c%(Pn%AtL$IRk~nf)hP zgMAE~2rosShn1j2Us=sOSGwAB=e(wQcV}XhBM5wgFN`Pdm?LwVXC zda{Ka-Z%G)|5Z0QDPKAZvKft^tc4{8z*L974tjX8>8wWN@n&urU`j}uxnI_~A0lFI zwPiM+bnuKe?pbrkh%pD_b#M1smbpsuwyeUqgC4G?sg-3I5`hAdZxYWc#QMN(0wMbY z=FuI^DP@7kai6?O0X&5h4@?ey)<*@>x%~gUbrQth=$>!?HQ1i!DPq=3=M7U3noPd* zJ_3S9%fZ4=oB4y1O)cWdVEN|C5-foM-6#GozG9kT3hw#&`4)RLq9@(&3KZdjKuwRj zo~qudfewh4zV7TBD91*x)7>i!Og0jA^+bt02BM#W^m#c-A_Hi6K^ece=}F($Ozrbn zmUA+7>gFXbpNO3drL=z#;rdopNl7I4Hak1}B`gb!3;$cJDJI?7Tp&1^dD7owX^dFs z<$$R}M@I)p>wO=u?VA%8d~w$Z9yLA=qM~MF+69Nn9vsCvqdk|IW(EB4wvHygiXlla?l3=`9nh=}I_`UI#leg#T?{jpoynome5-4n{ zHJHd`;$TC3VZ~#h>M-LNpdH4ByJNmS$5P(5gh4x;KK_n$bGO;ZkMwjLF=ooGRlJ&_ zP4NaHcj7YLXsBdN`h!%u{&Pl>nnne-&CgC3IZ9(D$<#H3e-|0p*V;*!BjG?J`$ktS z?r5ERj?iZk$1X|@-`F+%hOnZ$z0PeY?i#nRgx>2tQF?Y z&zcG_7pbYK5uP{9?*R7<;GALY11W|vXm?<|Rr+6iec`L*9F{x#nGPG9l{XSrBAg2o z$UOV}EF3Niw*WWlX%z&=bdXYw>JqQ+)dL z$^F8Qf%Hb(=XMJKcAid9<$3tfJ-2VETs{ ze{jssvBD;}6ER+p4ybWzhn#`}Pkf?Lrr_EKoo3sKX~N*Ro6c8~ZLzA94`8v!yKI30P-y25&Lzs&P`UtOtZLO<-F-3`GYT8+fcQ2ul*omn~(s zLz|NBbAm{H^iPd1YKTSp64o465suG>r-+~sAFaJ(-bd5?bC)a4CY>p`Y` z0se#ME>+rU1Xb+=wbYOE_u(CfcQLTAV12c~Dnp?}-!Cmq!$&>D-|m!Sd;5$omki(R zby82@8GG{kxhN@Z4n~;`iHVq>+{LGai(m`Yd9Mo6xQ3|QCixWjq&n*L)L^?@K$@YDfB*uCX6ZxM7r+pad=-QhK)wzrTiNX&QkDnYx{y-(u)b>H+(%B_-KZx6$aGMc{!hVA^ zRW@CUIf#h=_e<#|$-l|KFk`s>jYEQX0#&vD%CC<4ul(xY>i-p%{q?`XvV{*K7?Jk? zQI@Gl>hS-?mzX%r5KF?AH2>Jmh;YmN8S)-_5}cOn;LjF%x@y<)GfQ@(V_0ue7ORp& zgz|N3NjJ}<3UPa>re!q}GQnkb`0gT)iK!`jqm@QoXQltVb)34A?CE2K9mydsnZS*` z=-lnn;6&jSTyY}t!^TLwH`D&g4n+<;NP==UT<72EBFa=#?62U9m;8K^?OcXg*2XfI zKhTvEiB3{<|AvvU^>29|%ZGSO$4te~6$(Hl>f*UFFgQM-!TG3o7q4aNWNO&-+1p8n<8wFa@I--xe`WHq@;LFWGraocZ*Wz6 z2KS_7%zJHTH^ueKrkKk&J5?W5Iwa3ut+%34k$SdP_->@cpJF0}nR`RoT5ty57yRtI zvD_HRHBQ^-y)JDR!%8nE{TO8=L#|>p!_@W5{fwTg?euUJHY}#CcK-aV z!VF9{cFEN5MzV}RuGI#g&)P%m(?*K89SKjNCj|twZhzlcvFi*IX;zt%Px)eJdA5)h zyzmA4L7QUCvOA=nCr91Zx=Rj(VBO=+(|j( z?f_S^*nUYsn)uSVmRK~jWYo3Z`k(ueG~1K^i*<1?MpyRde#_ZM{T6ni@pau2S)?fa zV%NT__w1H_Qz7qWXL;UmBuvT}9zCx`C_cLxNXsLYgA5JPp^QIz!4r@D562-_qmQa* zU#2Sm`P=Bqulw1tQVScpQUR>bzgs8Mk~=M}Y=}}0`{a#CJ;U4PDdD@#8|-%%PNUkp zgu(;MgG%&~SV!cGzD0{7vw?a41he!<>^^NxMraZ5=++>U>uMiAZoOh_E@J-CsEKf$ zmbZ7S7IW5+gK77j=7PM2r61Afyl#(vX(H$j5tpoeQJTII*e8QQL`Ck6xuAHF#~uCS(Ds^uNb&_KK_X;Oj zc^=9C8W&%?zbr%e@$+Hu=ye8!;AxcRybs?d*~fc9f>f;=@DG-?{5J zhMS#)nKpx}vco?6%WXEq5t_L}Phnb4ROC(gklyziU4`jMUXeD(UPXY}2?OHt-d3cV z-}>Ips^N6@DY#0^)E*mq#S>21aF>L3_J2fIt;8PvcM5grZp6vrdnA~DAJ&-s<9Gac z{rYf5o8jfQDs@6P34w8oc>(@K)}p0d(XpxQ{hRT)S!D1GXrL>c-BnqfIo&ZO6MAHP zPtL;dHr-2eM_!Ei^S6t?ZZt>3B2{9m^6$c$AGx`ZcqHR=s>l2a+vv7kVRO)BcPnwF zoIRKvxvsM(aN-44PIxAY(VfndmE{EXU2(S|u1!^*lr?NyOsD^tm)o$C>-m44yJfOM!DUMs<+UjJKySK98xlYTou5A7ETU%Qo=qC#XOVu_4#mk#u!3dxVd9x`I zWY6wyBC@48rlwGsY!=%o|0Enyr?8qYo1(-SX?pIrz?6?IUGI5cv1E26eoM|;iJ%mG z&VFRnR8neBNx!PBRv<=Y?br7t(^j6o%`fK$+WU$(zaYc>+f@6wI)wgfYH#gmq zi~bHA;R4|!`Ka}Tu>09YVQ1jZ8&6chJSMN*sJk0r!pyT|A2l#ImmM$uGTlYr5`Jkb zEX-q_6E5W2n-jRILpl98{D`cZqPLH_Yu1{tD5b3Aga&0i>`Rra+R8q=1zoRQC#PlG zVP!%lB`k*7Q47c#wV5@wc%LmT8>~0>y&$8!VSYT0e^fPd{o}OhW#+_p4o>QBuHmlG zS$W~i@#!0d;7N_M<^Th@GsiD5iX82g=VJ*G&5iB452%&p9ffj*ajkJRX=b8#?Aw20 zm2tKl%a-ABbbJ3SPpW%6H#cxm#8Pcvp&r^#l;>qpZI~QM9_j91&oVJ(a6SJr;C*++P~+OP{qfC&@16^;bX`})2#5- zf$b<^-c!}gc`u`gJ&TVXtiSher=GJ~A1W%Xc^%NQ#0G8QjrS z0GgO@gG&UAziO+TpO&uLVvJA}Y+d~UrYU#7BptIou%<6&Z2=p&^sLg8QD1MUQcKxI zeKmgaP_fPKFq(H92EO;u`(C^MW#%R+>lkuuH6 zm(ZTG@=%TX2$Vg`ADbq~aE%k@?9WwE(C(aQ8HLUs-GpWvR5di(tgKHE(`D`l*pNVd z1-0$$YDO9tpmbmfTj>Qbb(7RVAvZ&yydf#RajEm%1jlR0nWa7Hs;%t5z&UC4iTO z-|g!K2m!@eQ-Skj6xl-xKuGLKQ`%EypGb<4(>dyU1FT@_pWjPTi07Q5;!s9ulZ*V? z4hKXsQeo(N*+-tOviZmfAWxIuLb=EM=Hfz3Zp09xXt7IlqBV zndEdfP%gnTYR^;#u0(}q-S{F~@44foD}SEGzI=HE1+GsWMWX9H4ktfv0JeSn&n~JS z3ctN_#+4A?tINX$_qcc|I)wDl=%c8W^>ut3By`XhiUTP0w0n%!^x|^~Go(LcyMTe7 zYc>UvWEMTa@v(9k=H>bd7c8?mcT}mH9OfbI9R<$3r%@I*UOtJ`lo`6(+E+g&(jDTY zU=gC)rkohfk7Y@!2t*q`Pw|J$Zoh(K$l_;(b|SYRAsj1!ZMwz?;?J)E%i?aA33~jE z_k4cOe^L|$j@2*n5o>uk$3?TDR!vKrttE$kFw>NNvrE~W|Hzb|srjlK@Tc$h?~lyK zpPWqDGW?#Kn?YKDs;%wucbyOS-!qy1v}uRh+AAk3psL71 zSy#5i%-)_;nA0MSfCj78Egi-7pQ$m}4{9D%ro;XHvn5hzU=i(D>v;E+1~peU6>{q` z)E@i3<=*y5k&18#m4&;Ml$mafRFYPblow!s^V`gYE@5d(=PNXV&6zORz)wxz ze?2oJW4e|^zO;Iqhz^1gu31Y($-*1)l9dR{R1*fN>VO8XdPaj?Q|&Kr z=T**tZ^HWq=`%By70q(u>1k=}VZ^(qk6$~YNb(S+l%EcJm{-B=l6%C>@}XN5`3Hlo zU;3bQk6!T&uwZ~K#}K>ALop}3Gknd>#9+PZJa84ztO`B(JpATrhK4M!>P>3j!k#is zawls@K~64zZ(}nkMFa_RM*Hlp3MV7J5I~RQ_|pKk5(79IMLh0gO~&d~Y3b9bN{{;o zd#KH2mfmTyGcXVUc_PEG297w7Utv6rr%Em(H@t*Qg8tJ;)t%%-`?{WSieTjo&=&a} z7jN%M)|rE_SmBGO#Sfl{+=~B$Rr#-DBG(Sf$*Gq;xmMAkgJeir-Az@u`jmHF&bs<3 z4W;S_2{2yGDjt0m)QTJ=Rn<0DvwebU{VD98hy+*!{RQH*^c{|5mCmO9eGUxx(h)CZ~RP7GCGu>?NiW6(B40-bM=Xt3y$3102ccrXFR zL7LY$x`beL?-3p>DG|4b`YQ8l!qLE2Cg@jD->u(2H7`FGvL)dpuBD}c3va3IRPx)N z^udg7NEm-9$3~*m^{&OtD?FBk>^X9^EBFCs$q(Xu^&Ad2+x@VI0tj5%DxQ`d8hQ>` zrWds%L9MUM^(vG_%7EK~N3b@9R!ls6d=DWToFSH+jZLqBv<7^V_@$%dzzQpO=AOrMxKDd~VS)=`~_dMX3{PupB`)#*pvvb4r6Eajg7HjSbo4M|x zmp>nM=1`QF2lt|fZt<#>tp|*S8HVFj3mz)6e*m29C}M}@F`FqWE*@A@a|3H*m3k3V z#?KPYsp#gKv?FPhakz~2O?T^g;yZl|8mKwQmKf694U4_dN?W27=}+6V4LeX_?b{Zq zy7EHPBInz3E!JjcKd|bDUjkQUt-hYy`nz7tTd~Q*wNv&|uKC1{N!@v2Ep4 zf)6+(LT@fJ1~)h$DUnfraO=P}r>!ardcC0$s7cyt(}YX9`PB|^6VRFDe_I?+KB`=Xu{$Wmh0pNmPEW`^#_$*d_}SKqj7CgNO_5|A z4G9kmTbY+H3q349iMcftU&6zF_JkB2HF9#Gho!u-1)PGjzX>XSd9by~H%ss81C2j? zRfb}N{olfot9oZ8fBEe1vo#rzd$_(S6lg&-xen3w(a`@2ApDs+huJS|m6A<^>ko73 zfI0+wN0VNWSmldn15w($-@#b!3JHn>L<)X3@C0gkhnS+qV7NX%qhoxCxs2kDbq>dM z1tMQ0ar$kB)eXZH=&<;G<~RdA{dY(q?Uvk1r9!#4AJ*nchf`};vI;|?+iYs`O4Zns z7})La?N3jqu*NUBG6J5vwGT0M4_GDzAQDB)Ve|#75{B<9F!S21Q~t^W__6O1X_H3S2#5G}Y#?5_4`;ITMD+jhx~xbO_!CgUqB# z#5rqZ-z0aM?lbt1I5CE~?d`aMUw^H)9N#&<@}9s86a?@&(1uf1Iq&mR)mDSBb=BgR z?F-bozFnalvZLe}kw_vqh`)dp<#w0tLYh^>eQ+G)b-z#z+M`y!e;SEl-j}4@&wQ_Ve2kVP9x2cf*M4< zQ$&6J8l(13cIyfCVKk1FQdqPofyP%y4yRXpSl3_BcO!Yq2Q@$EU|}AN0Hv;*Rm^hx zQ@utsEz(@4eCl}m$L z%cQv2cw)e4?zeBFGZkpOTrCvJY-f76S;2VTV%MY|-6oiwQ&UQ?i(Ec{L`Z|D~zTF+5wt;p3-HkuTWS-KZqY!ND z({j&c1j`wjj^8(*t6X>(Gyo-?IGoh(Qy&3q|FpDg-kUh!NayXdfawOGi}P`U>pyaE zKki(ms{@nGhJiBJG@lx4>p@Q>v}fxNLkrkbu=-bLdfwC1;|D*4!vb{&Q8;>fUq>pG z;W<}of9|Z^R@LafdQWko;NqcYlOra}x#Bi?nzj>qc4+@ozsh?;BEv;E@pE(e^NC`@ z!lozAzTV8Cmal1SJdT=jgt*0MGY#1e-v_6^NBXyDcBR0ijs8GQs0;p&7J%{KQ$Ia= zG#?5FG6{*S`Y|8zmw;jV0kn2Tg*m>aL3)dFr|H*`0rv(#6+P@>C*OhqLS%mL@KYJ~ zPEfptT@wT<$0(SE9&=MY|l;GR}%N>0F0aFPK_7p>1vY(&$;zr>u?I_+xIA*RO=$4KwxvkqnS^ z?fcN&7lu*d7+-6ib*!S4Z2f6Lr_&23I~r(w9NfKo?WkYCOb0Aq&Ob8Ja|XFhP0 z9kGAfZL9=t^zrexGUzxdW)5rmzxs)Tk=-Ps468Hvj~MeZ@-<_o;GtU5wNWu($c*1+ zLEwz+ketz{f`V@0wvgL(SL?XX9RIVkN%X^xizfi_oSmqGo|PlT*Gap3cz98Wf7D_e z0M9ei#t{e^f%M;1FYpPx5OSN&eLzV??%*hm*sWfqHg^Nt~8M7x4BLT{k#Pn*qeEc!3% z@vzjf?Ea*%AD@YLS2jd2*8zaWmm>LG_w8rQ{-W)%rC*8$SA4P<+8Di#BZLRQq&82S z13YufDup_itI@UlnIAY93-iO3lb3?*JP&IbIB7`b$v;9gMr&(pQIo>B$8cz~xgQ2( zn7?8;?+D-CD4!?K5St!;N;GMHcD`sB`md@gC!aXa_rDAY3Hh=+eK3G+{b^)&bGqODvW*oo~EcJ@v znoR1H#>X-4Q?LCVhT;Lmp>L9;IFA%g9cF4+X5D3d9mB0L0zFz{c}2y+XHvm0PG`RX z(p>ZIc;nV}+eTiMirmT5*u@+jP1;wud!0L zy_0~2fA$-W-&h6i0=aw$*-$yiV5dn&aA}HnUK2yRT0&7+(A6r-C4W`%aTy^_fh@a9 z!~21Za!8o#f}kPYk6Qm_RKirZ-Gx~odJwjzr^{#KJ~M*21B1DB*B?d@@>Te?^hka) zRaFzl;siotGB+diS}~9deC0xRWtl9y@%USSVY|X7lO@C}h7Svqs>Lzyv%|IC2(I-> zlyO1Obs*ow;I22U7{ZDVNU_Mhv-=7@%ZFhAlHK44iMycbK~2JpLO3_%Hp}e4bpU5| z5qRbg;8s4f48#3*-MBww@97vUShN!;DZRF#a)nSpOjXIJKZJ%Ud!C(G1!RzWwen}D z)wkSu8v9cFrEjdeE7~O4vFJKlk7%EiQ^>u9uS^5L=DMHjlx1&6NSEjAV+N5ox3j2H z^%kqlr|Z}4b`CBp+?vE#ski2DrC-1-49nl!<_ja=A8zk^22@X2=sK@~H}FC9gsm5QF#``zqPC>B%U}?HlPs=E%HE_R zY^Uei^|B=V^x3Z$K-eLM1c75^FHX_&jRA*Tr?%A{(L{+tm@a>{gYp}O;#%RPcz!u) z-T_%lZjdRn4%Ag{?8RTfx>M>_cBgbE-yeF4JZ~CWs(J>V?S_YeXS=k;x<0Due!*Yt?=Ni7c)w4N2f#ezk#&IPfOuTyH zrDV~;Jc4WAq5GS$eVMBHJ;(Fm+moTha`&;8lhUh!n!|+Xz3qKJy|ot|zzsB1hr~Yt zP7r65Fudb5up*3{++coHq;1{}KGzPcM?HCLJZa7~M%A79Iv!Wkp=5)~`thxAZ9^ND z*uc5K!aT%Eiy`*N0Z>uXrYxr?t3;A%MrKBm{vp#RSM)hh*L3cdKyT6k{@==9Oaxv7 z`2fgRkmcjVTr-==Jyc1*O|bzt37!cw2(BT9Vm|-fwdDakRT)Bs_g-vY>SJ?J*cdwtcsFPpQ6jT(ko8FUC-p|K1!g`%D!K z5aWGdcst+i0b7|=!Slk)$3)*IBtVl%+SB!5b%)!Lp9MUAlyJml{Vpd_SRySW4$lHv zktG$1thJRM%r$}vECS`QOqg`9locs61N*JY;{szwQeK}CLmxs|rj>+1y1AYt( zFc`yj8*8|Up8D0Z?-cqFl4F~i7#kR8JnDta7I;9<-7|3PeV0oUUx#zp-7g~7PW>Gi zc;2TfyU!+_#s;xoWczJ`!*=~fG&bI^ljExE6$u-0pI)b+dpv4R!Gvu(wJOi1;5h2gB&_M&AY^ zr9fSgt)hdy{_j`P>L_=@>aVso675(8MWchg?qI3v`H;=(f9zK9pS8XHbN;ugULDZ% z1MQo4^p|RUnv7_=U*gh2{vF0bGQjC&2n_5#6LuRBo$TOi1@;fA;z|;e zo>;w4voGkm8BgQT$vbCkitls&=1`0N7><{{2qy*&9`oEFu{IzP$0{uHD6y3X>}RUN z_GQBNksR+#+9}xzf<|=TEyKeDkHhiyd5F}<;xzyzy?N#ofUY`Bx3iY-EH^>3f}ah5 zDroObQ;3s2J~%iC^re#1CkSB&9dOtb2M344#^MNhV@D5wXN)*mfk?TlbdMXo!O>Vq zN%qp&RJ|ww)Ws> zyk*SwLJ$mnUWPbul?0j!q92(YHOt^r0DuMH3n03v>zve9w{so|9;p#gL#O?GB%qB( z|7AgLfb8z8CHSZfPG?ZgW!I9~+ejk1(87rNdieqG?Rl_Acio%_?*Nx)KuiFt92+RX z`0=d*B328hSx`{JUmeoW0MH9LOV-!d2T6ZS192G`*^{$00+tSE>&^P?)70`euEiF5 z**H3$1$i4j=F=9X;mz>y@aV~=(>VqB7Z!q05!Rb@6edsf_G)*E8VYe^kW2Rc&yzKyu(ACuyLg_-8zBYhq6BcW* zhU0Dl01f*rWJe1icBI$L)>ip&g3S25uu>NYWod$Lk+)qwdqPQ-8tVl)@v^0k^skcW z(0PgyA-AWqwQyQj>3##DHXHETieeJme(95?>vA1wb6)Ptm=2~CGYaBp)_%A$B_+Oq` z7X4P+9}Pu|l#~SHs3y10%4E@%)ue_k#!ifA?zykXe-X_MYmny+4j zjZb;i+~ss*vlFXbRoK=OiK+R{a}C_#nFd4Y2I=z)vdbcl63(TXO_t&n?46XBVqVgH zX}tQy3A=OVGJ3?Z?=MgFSF8`EBkNBGO>S{<0N{%;GCs_psuXjYrG_H#+O=zv6;+=; zLCz^nvU2QA4-bjfc$r`*K)o!!n_Vs)r9F8BH>3mQHB3T4Dc#%hv$C>;DFk8G!hrUB zQlC8xe+hc)Eh5|=fqW$mr~`^rHJp@WWq{BHTr>_X9bYu=WNX`cbs$SubQ9hK0LK6e z*Ak(n0K}DH^Y!`yfGM^i;a0H}55esn!5Ha5=SUn-1B+*EP<_sQ>e-qj5U}_|+DwH2 z%UU+-f$I*+$lks^hbO21A%K@SW54eHM)&R$C|RBP!7^-)QbD1ZfI!leT9*)lPvHS2 zLG+*xg~HW9zX-h|BaA}vRM4%#p&aw{t0l}DK;EHi;q4|+^I;-(whFclA~G_72WC|E4m|L`n{v$x8}r+eN1 zCM$wiEMNM7PX`j9OFiVaW_y9bwsx?MPPHDA?X@O{%QRcgq_fOSdM|1@Cxq`o&Q z9`CGJwN5y0@k2!qPzStn#Z)@LrL_~M8O4l>U51>n23ywNS<$v`Ctlw4!-o_*7aRCM z4+prCkLZURe!#1D2|@Q&lfEgSDS)bNZNCP@uMH?Gcqve;ioMVnn3`|~R?Ras8^~%{ zJXXB|i4T+|!kbFaP2)r>TieqJ%;|@o%?ld~>C(_R2UR+dIoF0q zDnF*P0J0)@s@}TKTxL)2k!{MPeV@b`wyueb=VZYUPA)YiiJdNa6Vv&T$h+R|c#WnA z3bnoYW$T8_$IaW{ngG_tNcA#B5AsK5YQ;uGHf4tu(godO!rwhpQC}xA=@sGexDf|3 zU)-r5`f=T@E_@A>JtE_~y{m^Dt~q0vHf9npN8s{G%FFe!bMDs~-7vp=gq167%9-Q! zw!f80yQW?&+c{y2Jt`<}H|b70l`*)~gwt%|(|7l39Dg$KYhWhEWme}h#tPTn$&ZaU z(CJ(4S?ZTn%qjc2Rbkt|`lv9SB^zs)o!wX9fsu+NnrVeQ_B%UiTT}3qS$`6rw_2wX zEb%VyF)tY7&r=ko57K?BF!Tdo(C^72ko*w)w#9A9QM#Y0*7-Yfba=E>eVAfeDi7_s zB#&HJ$ejLEQNaXld_}|F9!!pXVnA#HjOM(MF)?8ZB)i_wC(e^JG&EL2$!Tfe5bEq{ zknx-9I4Ss;^H42EPyK{_q@lC(LCYp(l_V}RAiuo)jXIa9_DHt&75BTMU_(Fo58%`{ z02v!}{uh{?0#`Hp$>#I5m`OAT5F5~#;n}?tBke_xy24G9^)lkN!H#=B5UaQKvdUm` zRjlhJ-Uo4j!`!n!J-2$&mFpY=y#j{Jmig+@{Ylz=O52ZCHYN$Z zTW_Di#)7mO%=)-Eg9mFN6^0>Io$FwQYLTj)b%-M;Cx>QB9d{XVCJ%uA!otJ7=4<(~ zvBE?)5}?z66KMcJkF)ol41vubWKuu^trh6TL3R;n6SSRJZbGNR#Fph`&kw3VQUJjS zM=mr^m8PY|xibJ~Zv@RHP7EED&$_L3Ax%*qymW`NS&H-`<7Iq?I%~;M&}AxVpk{5n zFwq0;5+y&dR!A>ImApaLMCm^<;+Ufll@d1P;o-rQO%CfRpx1@8(T&lY!b?@2nKlr= z`*>`%lA||v-BEA3*3(8`SNA4wxZuak!6XSY6OCIAyTV1jR;xPrrN)`Uq9VPw93W%C z-ju;wZAw2LBN~&0}(~nn!~KAskvgivixlsMP{&7UyHZzM93mKP|JWu ztM}cGM{G`Sxk;ky?{886$Lnh?ISY@oHFa_K z9tjGd4??I>c81vk!C6>ca$9`Ew8~jDcue1Sszkk*O zYyGJ|`zstMp;@Fb8`7v{&sg(F)sU7MR?oXXYb5#s(>_fo;69u!M^S7qHYa9CowH?4 zgaF`)P3Roj?CxT`Ux543x-eJc3v0=gpcCp4J2l#?_K*c zg4m#F-M%$>f79IC;hn01Q)-Ky9<4Kb^N*m52u^<9*B5bu-AzlsWqGi(y27=a#odTD z|92g5+Q_*cy5fZ9u>Ay|{cQ_N%V%k6N}JpkfS2D>@BiB=!z^WDVxOy&ct7RZn;T@Z z?`8h{s@iE{`DGQGuh9c-8XIh3_t?n|83iNXOdKxQSfqvpgsJA`D>Zv<^lTzthvRjHO<2hzH*P|sBO|RY81japl}8m5!^iTP%Hmmrod^1h zOZMiT%PH60JOjrkjM2@Nx%a_8=Qrx?ZxV%hKsR+tsyMV{aIelyH?zn@%KzlAIloTW z5|2mxT1RDDmDolR*%kyH%K$D;j>~d(Qs)X?Au5nrhk|4%VWDEHZt3;dIV?jYT^iT2 zSy50dkl9VUxCPA1=JJHQ1=f~44Qdnx`soz{hUr*G=?69k!U+?Zy(MTZ5FLD?W-!^} z_|0xu8dYt$H(@C9m?h{etdr;7)Jal6RpDp50-*l>buP`B^tBt{NU3gEa_cji#f?0A}%s&89NXTTF4?jb} z46xB!3?aU6n()kA7KF1GLPP7bIAdIXHe0Y>8&HLTVHU z_vF}&ISs4ia-cjGYt6mn=NjmIk;0M+OX;@v)l-_F%VBbaw+QchyeHECbkk;*vjOp@ zv=+i!v+y7^8m=g2AA*Kzz0;ZE4Ti8ux(wllKv!3036H+c87}0a7^9vlj7CzDV2`7awYm1_WMh{B|yB1d{oF1>#G6fb=9c)Jt5!neLwdAG*s8mYl`~#vC zIH?853ZT<#Svcdh2+Qd|7y3N`hZxc2_G@vA^m%WQzEyq8{3!ysMA7uzh)hgc0RBZ$Z^=mZCtJKW722pfKQd)!I(Z5X-^iL0d?^g#;10H4nv{#7Af}Iec1p0!0elYAD}r{`G-6RQf=JB$SEK# zZ4@Z%xI*9;0R(}91ganFpS*wHlEJ}S8V7mD({8sc=x6Vq_xJY?X`AAgl+<^^0n8w| z*89+J7t!`XbuaXHw}(^>A^Lg`LWTeE{_b#gsn?~m097CuN$EUo)rNfe`jAKQ(hml& zmJ<0@(1C$&eKyV(0F?`87O6>XUce2%e!F7(* z0jP<#;euVA@GX7wsMLy{CNmq+BX zp=M@i%AEdqEOF<>Q~w!g#q^MPLCL~sm|z(h85`~@AfN*&2&iFJR-X7eYD$#x1%p3NM11^k0;3K2s`NfRoE@Ry zG6syJs`YWtS}9ZD7To$R%!qw4D@hhKr-It!pn`=H0ct4zlbSa;{LadhM-ofUMG(9| z1q?~tm2Gxq#0(us9D~|S(MZKpvqOj+2HUHo>HTQJKaP>Se0-uUtM7ZvT1YZMsROko z7-awrKi8Lc49pySkpDwD3a40rzsMd#7w&Zhg=661@G2~f1}a)ua9!gr4Lx>npoE(P z6&siwN5sU)LBDq_=AK*ufH+XlZ{ITaZS0uoN+wB2tuj*EMLK<*oqHAsnw!Z$Yz#7$ ziA|{KSDT0YsGgO<%4m3_KGQJ{c0DN5;dD1n+${a<2Ku9vv{K`WcFWz2e-c9PvBS1W zf`S4buH42?74PTZL@eXI{2|^5n$&!3?bLhv8ansJ$_wUa~oI19@=w6#FkML-Y@E3UXkY;eNrPlXmB80UuLjQRA zq;s=1SZI)2MmHJ!uEN>NccjZR7hdRpqqiCO(7FE>Gw(xQ!xFM|@=rqRrIc==!3Mlt zkd>*S0j?oeOh-jL)qWQ>X7`#ytUB)Fj&zCsy!V9jwPcvxFcrB%UyTS8#Z9%8Coz4z zc4)r|Aua==1J2-B%xtx7uLfi{CCY7@OoFA$(N~U`vq2HtY=~FxBH$(S$3bndd%B9A5%RILWm2i zo{nWn-6b>+NM?VK=uiqtJIVqEVSjk#%4MGTHk>U) zXcq8!%_u@u^m`aH79?r~n4{iQ%rH+Ue`FY2o$7#27VYEaiNGRv!8 zS^s7sWL2#4&#NR7`zx|aUHJg|HHn~B$^)J z-O^eSO}__v>KvkRIWeLkw5l%44yV|d%82sHhI59z9%cCx?vURa_U#)tEm8dPRQ&>7 zvm2GupRcMjQMflHo)y2JdD^@uvck@;xZ60_Dnpc(E47W!n{U0W>f@coH0f;ZQu(WS zz9&Y7DBQ?PuG*Tk5Yt~EF5^5^oS_@N)@jy^CF5HU(ruODTNfrewed1xJo3wEdmN?3 zbIY}bbraRaTY^9vfWna$Ywr+79e;o9tPu70XkF%W!B@ZI*P)yvk5~ zmzybVyFgKam7!$Igvq*e86S@cLs50?;NINZ8$&(?Ps6%s$uT++#IKeMrhO?->hX?D z5xC0mYgfac9j6J{?KhAecw76=aCc>6Nq2I*wg14aW+yaH!o-ueSo-$&L=ZsoSZ-Hn zM&h0nh&m$NqkBZp`00@+mC}pjd+S_R^9A7KGQsP%xs;%igyKxK^Q8OIv}g z?Zrt<3VkwWV4;8VWlT6UrFb=_y8>9NrSwTR+Syvr8B3NOzrGvigCAaD#8TpEVUMPxqf3bj!+HJA@@(EDcD7FJv^F;Xi|U-04Hr>p$kaaTv=UZjczdk%L78?cGg70 zQ#kEB%Ii~-(h7@4(EQNPP@{lm+EyDq=lxixEp)KlGc~0M$`U}39ZTk{d6P1K*-qS2 z>WbpJuMfNJcc{>eC;mxO_EhB#y$edudhiL`+TI3vAf7HJslSms(QR`n+NN{~9$aLEr_HU2y(|^iH^a6;kyk{1t;@EgqBgfDW;q(Sb{0 zhszGtw#4o%LJrIg4GoYrE4D8HmQzW*H08_hH(%>=J^enX(Qu`gHF_xxs0s*Nux?EA zH|dlnzIf_frCy?xG94B+c+7b-oT=>2Ml%)Jul;C_`j14g_#juc7X{1_PSUWwtgXUS z!Wl}ZO&HwMw~Bkwq3<(!!gIdzLNtfyM-Eyi#U@@E$BF<+t!U1(SCvgHM0Jw%wnOkr z`cI>U&s@(x2SJsew6FAgvy#CS%1*tRs(urCn0)?Md+!+*<<_)`wmE@_sJMxW5(J5j zlEE#8O%PBdCy}I*bEb7G!2l@HR+1n&=iDF?B~nx;=Z?)N+A%zMq8Z+^@* zbIrM?e+bgu&$FJjYE|7;byuzK`~}bP84ZhXurqS@iVPsf;ATzzV^8J@UiPt?8o5`c z)S+pxYp|i=BveFo>sRS74i$Iite?-?HJ+hLyc0FGLIa173`Mxywv<&oVpXy&LGv- zEm}GDzT@u2A6;8Vl{N!6D+;eM;MC$ z=JxExz$Cy)8{DA>RR)o@ECk&rF&syR1Ilx$E1~Pxx%V|U5|syEXTIzK#~tx?hMe)9 zj{Q5H#9?3XJ(O9Wswe|?g-x{k_8Zqp!t$_rAIF*F7h@Y?4;TEDh1lZyP8m)Q4)cKc zP#Owi15}(waFA?bM&heml{N=w?8L}b-=4!6MoDAFnH-_={TXK-a-D-RI4D}+HShsP zkGI{?{^LC;AY6e1re4glX+z_wo}PpXX%P`$DCoMD2>uqvIu?br9kPvo z1etWCyBF0;ZYmM_)5%IAOTti@%_2A zno+uZ8>;PO6o~`^!@;Lm#e@W!H*j`Kn7KYj@Y>e5n=FBF7So(7EvwDauijbkf4JVo zVrb9&WS#W>5d30*6F~#+6GPLe_eT=3jB!TsJ*pngP zLEfpt%T%$vUsfdi_uD6+J4{#s=lV#JLGsAYK+*nF zS(yg1FVsJHV7Y;$EMff6RGNYU&ZegHeWchd-}lq7y}Fv_vJi` z7v&+SAUQ7N$Ns&>I~95`@1;?9H&TH#(LH*U3=f=jyE`ZH2Tq08wXac8_n;Y-Zr>ys^58&uXOi~N#8^Roa&^H+uUuxUOEt{kQA$25 z+kh_Q50=UV!1BWhZ}7Z5EA*hFd^U8N7PtzqSgdWCdI#tsxI-XPw!LyL0Allj_sc zQGTtLtz@n5NPL=ct)JO2KmA3Rd-w%N59Ck4?J<1j0LFZ&Ovcn{#^C1HZeOvtbwIi{ zAMIW);d1+QV}8KU43fTf0RZu3m9wCn6v}Jo2Y*Gc4S^f}#MQN5g-_{cdwJg63uxXm zwTl54)8M(w)D%wr)LPsJ$+PhzGr>g{zGS{-6E*H#sLzB@9cKg}heTmqVZ z33?RF&d=v;Ue(do&I$Q6Sl%GnswT-&$jqSurbQXlQ9dtZ^F&1er!db<=LXjs>t?zG zMkQ>}eDY3Ao~0bi7LT%79uiA0FCWhN`&B2mFQlR&DlT&UNFamyrCXtDbc^cN0+}tN zd2GJJ+!vivdw!)V7N>vU%4C>wjOVUUpdKu5jVN$Ef3Z|3PscVzn`NuS>M5 z7)SjCPQ9AO$ zK6~|LVZlsm^nq^a+|TsA(|Rro-pNBU!Gl%{&>x5iXgCvQYCtWLU|r2!yV0v_s`+D@+1f(^jgdq z9x4x06=tyPD|_6%4s|$J&Ygs&j-Wwo?lMA(<>~&P*`K1xP!(*x-Yu)3SYVFp_sbq~ zlFA?YTMN7^H6lYgU_+-PS4wxv7N>(6fLgF}MUeIH;XU~&JJ;rkAH(X8?XGZODnPTI zp*qT32f&|KOWi-kBpyOvPv^Ec!iPaiT52p@WMo9|;X6B3!$Z-F5ZvhRap(P=KE50~ z0Q>h=XP)Kx?<~yBmcNGng02~Io740(NX6|he(2o-ninz=qic1ng=HMa@~huW0};q} z3A?pD5f~RAA3v5#>7(U2&_Gu}+}i3tZH~?yhaAJVloaV}C7MU7C5P@RzA5S9*M<~g zn(K)kDAHC_6BHJnEb`aXx&tjAAcmj9_3j(}=VHm4H^lW9%-*+u`-C3RE z1=S{Pk5=*%h6e_;RYwE=p^^FZ)DoGrK~=R%ZhTmp_hCz7|NAl!dIUe`1Bb&b$~9qH zO{giAse#ANMJfQ;IG>f1L3*9k=-TNNEW#mb!Nc3!+Nz_DJ&=}qtmpROzh7Wij7G> zEYe0)H$2{^UhA8RCUL6opV+70GjbW3Fz7g|na$7zIL@x_mR@b@aajqqMZ277yj)Y~9=#pq#5%_cS1Rh}LCn7(!VU zc=3Rw?yzO2tACFrA_W@L2PRaIN@L`;{u9>4)GmhmB2_G4d!YV@?(fDcgbSe2ujS(p z-hG&I6!)*8f#CPAisdyyPeGVy2-3Dg&&zOqw-eAq6H~U?p)d>jOFFu4Z%-1T7IkVl=-Ze^adHd-9&7?v}&1unbe<#+v{TN`=p)ZUec@{ z7E3KW5YTnI+phnU_NpFdAmyjdaSxrE3Ce2N#7zUQdFsQs^zm2qn0AVR!my0M4u9B2 z9_>tu7=EiKN&K6C_ph6({NGfLLuB(C2@+J$sU$#kKkaV0%m(tsM&)utSFigoeh_xc zuH?rUSUY{cu=-YpTz6v$-{=@p;Pb_o=?j4Rqp9%Rx?Oge=Xic(WXo>(%#z2%A|y$t zmn(LzZ0}dz-u%*jV|6`gz7$@iuPEw0QPr@B2^H?Wzl zF;JJvM8@Vl%v!)pOb7lV93aSq7(n}Vyg%UX`E{*J=S~_vdzSQVL(72D&a+B0Ga@KS z+?FZxR;bvgWVwtPSVjjTEs>H2w|okGZxEsMnT<`z9l62!qJ-!ksh8nzEfmAq$)eR| z%KK5@{lt<)g~{m&3F((+%9I8|K1P&y+DW&4h&4Z7Mm1~V9VVAgYGmFdwfDqBw2F3S zB?Ui1KBlFHCr)5^ucu{X9dI62)3|fX@IszPj9fxX@91H99UXB~aq%Zj4wfBnlbbF! zZ}0RNPfwKW8P?~~DVk;72;Mw|eKu;8kWMEfc;fv1dFRDm;nhEDcrUJc~FY z5J=wtvt=yGePwxse4z11ol)(l@|hv~5r_?}jChU^7aYaim5i<2y@>6fbK!qq8isX_}OJUa?up*m5D8_N4K zZB8eN!9$5IGWB`;#=5EM>GHk&Wekf!>l0ok1yf3y-DxXd|UKpEl~;@9YS%W7qU1$u%&Z zG<(lZy5`V*#oD+bBgipm=_+f(DeKhlk{s83xikhsuk-L7;^B+r8ZpbByhv3LIi7uv zwQ$@B8{%+*rM0RuF2mBy!gb-910mwqb;eo2a7N`d(f5H1YJp`BotkP|wTg|j_V&*4 zD+eq+nc@~v%JipkQw|;0H*0-cWb0G; zD}lH6@=)%#!x=}~P4G$cpEL*#jY8K3u9avmZr@1V6^<-;rDvRqC zPwMmBUi{bf)%QwxBooNxG$9g&Jf0T4nf=UxxNZI2?FOl3V-o9T)H~Ml0rcoXUInpM zzGu#w{G;LiDU2DfR?gL2i!6LxO~uAdtD%d)*YqzaKp;@Vkac|!JNqC%4zp(FBQFyj zQmR~yZRL=Yc)c&}d^KpRq@)BI7^hoc4c8`kohkCQyZzWi12gYdle!-xnl@8+1&d8} zB`ZkJrU|Kuihp7FyeuEDv*_=Ma}9ZY+aGa1g<0WfD33m0f%mUEIV9~O8$;7bpJUP})Hvcg6X~F3Zf-7DbhB;!DI!0H8+Ts^%%$8P@mn_HjI(xB*i5&2 zn_sBUBIA~ycvW+^Jyj}uH;@5&XUIubZ*R6c%0UZ1ANDLGHQ+A#1@ia$4_SVltdh=5 zvk!+*dDkVO{qR^RJmrL%d7gkG&DESXY&whZv1zVADU-|s+8+c^mX$k|& z9Yoco%Vm~J=Q=i}bwknWIG(K0^1-tG z!+_?_=Dx!Yxs{3QkH&6Q4yxVz;{k`t+dDLam)+}Ljcm$#DU%{Jh2w61Sx7;~sGXx( z7X7Kn3p(D|t!+E#oXTL@)>V*C2r^nNH*iR7WO1Lfk=z}3w;iN*oD(NEuU<3LSAAgN zHX(u?yji~X6)xrRS#9gd{p&^Ru?_}>!z%PV(IWHavG$x7}N8KYs&|Nc=%^870 zb=)Ux&mzJc@VXppUnrnk3RlD05;mh6u2;aoXXm6s`6^(WEsC~%?XTN1cQP9}Mc&koqw|t>F37JxUmc6+jo6^mW-PlW)uF+rjisq6GJnCkVIV^)lrr1xEEUlAq&Z0Rd zVOD4OY_NH4e5=vAZg2ilQ<+k*eY_1NG)>hbg4=Tm)Yu)MSnax-59B?^njG?U(#$cI zgLC)FC+&YgNgl$BeF(`xNLj7zE@Xxe6CtmGu0R)B4Ksj)#(uf&NwhL|w%t^NgUow+ z{s4)UvfM?t#&CY<^My;w%v26kFl2o5z5LI03F)2NyyJ?b*XcTirYy=B&%)(m+ZV#U zYIQv=G@XM^Otb#p&Ga>}%y;U3pl2u}%M-BB=uso4MX9oF&+kL-+qYKAr)o*2z4x)i zTvD{yM_l;u{vES=_v=QoF-LA$rEBMNLyW~}xWsV|#%7uAx-s441{*y4$&bJN{PN81 ztY2P)Fa)Fu!l9oEdcf3yUKy9wCruHq37HSaq>rt)NURu3w{a2&3oLakM#{uCet5vm+q=8ZGm2O- zIk;jnNK32?gWFzzV(-?~Pexe!t(S^5rmRdD&U>up2dH39n>s5ffde z`&*ruuk}0G>p5C@#0x)p=jXC0bGk0}k9@4mYNOONzvm12-Ie%Wy`XDQ`;l?ww;+oK zO{go4t$B_u&mjtn;pA2H+{wE20W!L=#pYUEf)1a*KCW-Fin<9NFjeRDh?Q1-B=Ne#p#K zHWGte?IR|E3xpsYP^@dnA_~$6*#8KnzuVg$Jm&=K&+97vWuYZcNU7(VSNesD)29ra z>y37P_6K)N<<4{7BW4Gi5jNzN>q&QtH=f1R-PElwRxer_-zW-ld`CT%kB4cupN=>& z7KC?w?dkNF*No*r-Zeex5SGud8qnt>plPM)$f*l=Kr`0Un;!C%PVO4WH}Aw?b{Y-f z-7&ptV1i1Ki5eBV-F|+Xr-~t+2s&H2t_0+#$t=dsv|CxRHNHw9DL$JcatpiJDsSqr zW%hk#EVPVxA%K`2e)_)hO7iF4$H6Uxfq@-E@!-YLPjuMzDVQ{MA+dXhwNaBjz<7fw z#})Ju+$v+u9m8!pT4aAoI7jVIyF);i9UT!wV^L$;8Wp+Y3VU)5WNfoE($7yBv)h?% zjmLSh%ED%>*94wW-^wm6EyN40p|YJ?R5m37jEH81m#19uDEJW2P~?S5QOlD?(njqi z%(-&%{@W&2$G5P_?!qXWEd7IX79M2$L2q3Vz0}$sJt=FwM)hfoFvQK$i0I&UdVFID z%Q@odYh9j;#@Z~{Jq@b@O~Y+_J!pSv99@G!oeSg{-?Zgc*Ff`~W)YLZMUAMMn04If zRikn7NYs_YP0mcxY}*CNeAkdJ$2{H@9Nw33oD)o|R*M$3w+NCE58B8j_0oM)UYqx!59$%vEygwquuQa>=ArO4i;p z1WL`!`)33;5RP$sP_vV`nPiLYOIM}q2`5{Z#%;IGg&g3ZoNuK{oy?}L`*DR+$i(<< zSnZe1zQ;LA+26_t!CLofrrv;rZLbAlm>{)F_PTJf2^?>5jvX${^A-+0S|@qNv~q@W z?^y)xxyN9~$k(VSL3L4k`-u9`PWZg1u{ULy4J#49LhWtXrs{k%@m1GGY2fMIfe#mV z++EmL%DpE%0gM*8HK>SYdi@6%;LWq=X>w-4<^5X^OQPwQqoTsPqgOOW%i8=0)J`9G za{an~nJD__oNnp(JD!#uX;!z{Z!WXnd^`4;LRnr^3E5(#p5iFMCS3gLyP^yOCu#*4rP}RP~qJ=MR$?)3kcdfvSqXeA`}c z>$C1dL0i&FS3JAGpci@Uqp1t^UE7bMAKOa?j5@N4+iuN}kcT20bCZqoWv+>+K??(hZxL<^WA*oLT+Bj+(qq$j&m=QuSD&AGW2SkHt&8c%zh0r0p2cv<4dC27ov8H}geo$CX7kRB zfZxqPiG?oBJ)TWbejFZIpO?S!^I`c}t@S#GwZfztjLn4>UHQjCs^5x!EImokm6Yz3 zF&1rD${o7d*xWF;DE7%~P)`G$VUhe~OgxTvF1yx7b_*e$_#J6oKy{p|J?iy4 z(wWH|H*phpzpDL7KHN;O7OywDU2l~XWVY#W)PMX0WWU{|!YThws zSRxj-{6+2H(OOU|*Ue5(=O^k}7W||j$Z;1P((Bbhd_msbq7~dW^F=z(m0DQGkYq@U zx$RI{HO(?pQCnNR6ythAc{IZG3Rekgsp@xu=Cf)Z70bOJ$2xa-dNHQ z88j>NsSDTrz{YEqI6Uv)I;NxFa>`jbaJpnZ2hDtvQfZNq%2%AyA66JpyF?D*qV5HZ zsz}!l!1nryPOt$@A;QCZ+fnZt@`6?~Rs-8#HOwPw2TY}oU4Hhr!)Iz1nQtdcM&((*t_HL6`AtJ^3%}?O*?lSvhflG$ z-X9aZc>Mz}$W>ya+R2~MPvx-kW7&VT)Qs!jnri8lCj~T{r(An(A>H+;buz`^y=j-J zDf?qPT%mAJ^;bRC(57cx>dSiy0nN|Km5#bAvE__8tre>$8|&6&)_mW~wkfSy;jI^^ z*%#IcxY@Bj#F*F{CWVtd(ekb_lBBxleQUjpUL+Y0_J4V&Jo$X4ss&djc^v;x?k(j> zG&2I1KKlXpr^f zPm8{+%j#*GpS;?J;BVJ;i?WP|f!*O;Nxo_%hdZKV#rXEBBI0{#6AC>^gq(@KBHM|V zo-&B{)I`2%(f2Wf1c*1$3%Q7qcR)fW|Me*=K?MW zGYoPin9Tw1A#PWFT4Mc;iCCPIM~VKL*U7q|!CnwgOOlSqj93rX6r31 ziT{58QSqZtnFy(Cxh(@a{FyG-5s$&%>&~4DdTOr6d)mAj+M4w{QIeF`dM@9FcEUf{ z=jn64mg0nu*;m?I3J`}xZ-71tmiC!^m+F1Fe-K~9$D99vWdgQHQ`1Mg74IwMb_1aL z>z0&5a5!H(ePB3sfrBTTy*@`?8&#$uxbIm<=zk?F$dCMVADA&_alSJrrdBWR?Xy0B zFLSk@c2*x-nfM_s5kiU#AHwXcPa)1lPzU+;)Ur%hPMg4EtDr4?XY*$;0Rn^d> z0^CUO#9{5qI-TyK&!QRpZqDS)Y?c!<-z*0UYM@5YXrU+lr`1_^zN>h?K;wITb@kwg z-3KT_t7p05;Y6Z~T+7wF-y&}ib!r&4y59;pb})M)t$6;E$awAC{_&&I`Xd+$*=3_y z>LKAKHsZ0Cp0Q~&ObC4H)pzQ9(9DyIVGLGjV|NRv@ zpUr|oeYm4H*s>i%d^}x%$Zn!%OICpfc+hw5G?}No?Ol!*8(#~x|JQ{1NY(z3By@}+ zem&y0>leAZnQ9eJgcdFNl(@{dOc%if#^%o4G41yh(PIF(5gEG1VFeMT-<}4blcJg0 zWRqU8!Mf9^mmX)pj=Rg92}T_LB)2T1UzeL;nWDQdE$H@d%PT7axCL}#Sf5jMDG6d; zdt-}oSfg+*s-ISvSTu|0TDhNJF2jrSzSbyI8!Njn%#401#uV9!3{{U)0GlRdGGoH- zIWAj}wtUx+n1`Pq_?-gdOHz(z_Q>-+u--GR9z2M8+5W`m0*d}S0R4cJWA5YoW~Yr! z&$F|8)Ar|7O%ht7=&=2Iay$C5Hq#x5ydXY2;;1XS^Z+hFhy6#;WZwgz7yAUSexi+& z)+5ux(T4YkraTsLH|($`;wXZtY<+%Q&BX#j0{)g2`vQ>%!kFsD?W(GbBAHsNCN%1^ z6_z!Ml!~>?V5LQy+76EX-3>NIN1`=k7*QigOv5u(Cl;b5V2N2kwm8|8d{rQnfP^3+ zEL8tSi#Y7?+%1~dni&b^G%d~~Yq)hx!6$6VUxw#$u71>VUzlo#aU;ltBj%beXaBvk zAEjVj9U?)SBmNw`Yf>5X3#Nx7BTDEp8{37O2InMBZ=R;0E?l%AXoJikZj!W5MjR(; zsaq{sK0xoR>G@1F1G*E162+XzLv3poL1aV_01VoGhQ>^pd(ez~4RKQ;9)(7iA(4=9 z0#kDu(ZBWPcM9Y#Ea7>g_V-|4ju$Y_cWB8W$_hT#JVY@o4X6fz`m$dJC=m%c)N166 zJzy^{CpfVNBHpx>nO$>H5XveEku}7dD6CV+zd&JlRS$WtxB9c z^YWDT#P`mM`I3MrWVfPCY-tlS{raMpjiy#Qb;HS9TAH_=yE#+P=wJvW!*SkNYQrGG z^BEhn?^i-M_r9pfWXIZaoNT0~JC#wEboFIwH9(DoKzC#aLJhZ%1xEa3=6ycJxam;x zWZ%|5aZfrm8q=Q$pt>?3fa~~p3>`p-GMd48J8WX4S8R8zwXDU zt(Y$m0gu8*MqXAcYqndUs)LXl*2|zC17W1l5dMG!0EJkgM!(Jj+GC3OR~6mkM#Z=m zY1Nh3>oPJ-brX~sP$*U!&>4K98dB@`5Gk|9Oq6UEOjW4TLol*~W0f{hVe{xbfBt5P z!c&OjHHjC>w2OWBnSlA=>io3_yC+2Wg>ug|DwmUtjT++wPH`icoE&uM1zp$nm*rLW z=94A9PP`sb#Tt=*ZTQOfAkIMI$-ndM7S5$i_6>`c-z+F|6yAs!0-Uy~3BH-gH2jly z>@cd*Rk{8$s#s%4Hd(h=S4j35*hw_I>!B?l`KoWowjAD{{9@bQDV;c;T@IEU(Jcyc8Vt0U-$gf?r06B_M+Jdu)pG*;Cp=r!pO1iTZDkrHS(OOmAjqj$ zKZDrG6qdzbX{tjaX)5e>%gFc%oNS%1(~2|Ps;9o9P!aePzDSH2-d(DWZTFtjbIX^y zsSNb0oCZuQmXsfwfrt4nf+7DPZ!LgAt*?-Y_&^c7hkf-R_J+B-n+2cGsE&o!(_u>wqMsIVr9Yo!;h|xDjp#%m%6hM*xxAgmYkTG}_ zv%y!u0o8!$1-vHT{dXCM|4qLfYP(WS`I^mgsM2-JCXgr#R!}l2z|YT??#ixGz?urG zR;7E}FPJr8iwou=>6YW;yVc2oY`aSSTbig^rS5vaB!-2D@RrJ}`Puh=XG{;U+TZqs zs|>ZB17rE0+SLC|r|tg?`~NT7BbjC40LmkRS+~F;%@;L!X9E4T*6lc09BTAGsPEsG zdb91IXyELpLsvKZ4xwhF|M(xMBz})Yz(Wl)EZ8H9;%*~0hh?)IL{%QCq57`^(tjV? zzZ91ImL?7A<*D99pSSJ%$HHq8GfKEPx<9;6kTdgIViL7u3jh;qP)0V)Bkv9OInKrj zGF=0$$O#tg-Y|S=trg>?24GLldO_Mrh~UVojEMpZ`DLE7Hf{H9_ERrC@cbDu1ajdK z9TciE25$Qyh1CluW)&$R#uue>{#ZbS-wa-IV1+8p_-L=0S$8dXOWQKU<`0PmluOGl zIrdcdPJ?FkhET`Dje%ZM zK3y-yoLGEO2u3UWrRtCXcaXqBr`IO~EtgDWB-dN{aW_AD#m`?nq%8NA0$Uuqa% z2#k*wJ1iiGJXiqp3Zp<%%Hy*ym?cK&3tJ+Yav3=SI{vCtKRZ1vWY!_pkB4tEdEza^ zI7tk@ioJ$VC=bcmZ$~Qq_BNso&eJO=y{pp~mwchYH3W0M9Zl(HMgZIXPHQGZRq3GhQ&_#td3U;%eYi1(3Q!ru5CN-2@ym1438>%lEgJlyJK#!}eW zc5(f&7PKf7-z``_pL8+}AGD%^*>_Vfh_(>vZ&lGHi&VU$9&~?NvnM`fg+kf9dT4jN zGRt#5mTJE{ho9X{tmE*h2 z3M5CuZr}*{SU9ejS(SApl#ent^VO(kuf)Zrv$TER+E*!XiO4uU79U>2O6kOH56V3M zQ1Zog4YHASKNVWvSbHxJ&0?~zzH>LU>>HtTmh8tCFRlK}HEO7txWX0-F39#=2A--2 zZ(Pb)K&++??=^0?N!gAjm;`9pYMB+=wM@F4lQ(TRufSrzE?VGW;^tv`&$6TpzSy+J zUr5Ga7M|&%9dB>)V>T^R^)fVWYg`64EaxQ4n{qF?aw~$a4Xl)UAd%eC@uFVO=|$S2=NPh4!zc}0wwPPTHozB zu8lwn$df`&k6R1oS5hd%G)BlhgtP*>7UsD+EK^ara1DeNri}l+uSoe<*S)DSm~}x* z2og`>FGeoiFN{s zdd?zBhBB=Dz47ZpiV*-zb(P0ltRX^Lejp_SA*T?t)J#*pu13R zHtcY8NnoU6oraYJtZ=_|%wr4qGV*RmG(CADY8Ld$K0%oQ=C?oczI^THrhwmD9G2YJ z^meHEWW^Lurx9eTCClc9o2atJ`!!{Tx4tSKcf~&luSMYbgo>4qX3kPIv$9hyY=$`_ zz|ECw1<;uXZk@Ql?C**Lc>hiP}62yy2)+>$2q8;X0)RbQa{` z9+;W1|L6dJ$Jq4ngRerDqe$J@9GvHHokD>agOMDQmy6S;XD&PJva_muEYU}$$(D(t z77NP7TR@<>qt~8R#A|?!TBe}UFO1f$!#Q8+*`6@Y&cqZ*OQYiou5Qckt!^~W5j2`I z6&g9MvFK|^Ks?GVK5SiwQvxa;9CPIB~J)yJ<1l z+^zO=N2>{ieaEPcWy{H*_sxkMlW!mg@yOkaI9(W2$v^JUn)(CTIg1O@`s;fmLS~Ql zCf|1=`_F+S*P3&ie}!bz=BZfh;vrX&?bne-3&W#B)Dh_Rzs%;(r3iPWTy6TIsfQ^0 zi-e280$jGwm$v_0*&rL>q6x_*rt@#MNBB#wjBhrjS83^9xzVR-1y9c#$H*m_Iw?rq z8!mk#-Xd=IcD+T)D`c5nT;@#HK%7krwhA#Fng#V9*~-eL&)T%Cr@qu5LfIG!9bb#M1gaH+KJun7&l6gA_xbUGe*5m;?D``_L*x+<5C1ur0qkS9cTxB% zLH5h)wkM`}?Kw>3Z$*>3t>wP}tK4SnEHaN3E+mJx4g-AZxJv3;Ve>E}hP3g-#HZdV zm`qhO=4)05cWn9)`F+QAOzrR$Hm~)X=h+jttW7UGwsWkmvddqgtdl?AoZ9T(3c6%g z#QleYP!u9`di#^i8m2vz6$)tI;gQg9ylDBVw} zsBjdfv(uxb4`+i?ncy^t2pj1!z^6z=Eq;JJ1@f%O2qxw$cGRXXBKtvzaFW0YLgV zP`1K>N~dWKcF(ei|Dk-U)i^x0s}bFO)h6Q zoZLy$&E5U+VUrB{%wv6@v{Lug8Yecs)b!;B4~xs_0SMZCXo~ivEFo}de>_;VfzTm; zb;_6awXYT+g<1qGF#$e7(Aj;@rbz=^JQP+->mwNL7Z|;o&P>c1fFj(3d*yA&4jQKH zwZs_qAnFD|C;-r67Q1P8TwIsT(F(gy$elZUZV4y{^b-qA7bRup#LXWeOJ8cJ$ZV z?b&MVsRbp7k|L^nzYO-%UOy4vgGRoMfW3!>00V8wg-&(1ogJL_lEz^WYzV-}~Qmj{vq#YQn<*b}~>i5&t9nhkpP+`ZS-8 zIQR_^PF%r$`!6Eb|KTXa`d+BK_`<`qQV0?CTBlo+Qi0 z|J489{)|xKpwcsRuh4d)me$f4n7G--^+69Arv8AwbArHteu%e<54)}v#1dBxoWeL@ zRs(moW1<*RaDt3R*~RuVwQ$r@=)SI+nxlFYBkW@h-KjIsN%IvU_suBs?-X?|USSVqiks89I- zhmtl~!qMXaKw1!F0EOit38{yRZODzo(%9pjrsVfeDy;45;9%@cPB1|E9^{G%o7qLe z8AT!4P~NDXu6-UJY0eY*h1RU$ngnn}fFXf3AxrgCdD4f?Ar$3-fdPcUz}ySZY6S1L zLs4^%*B#>mHLD7_h1i-KW4I|PUoKmi@? zZf~cB@Od|k9N{?7Wn71g7g*z?_>g2MkPwTFCF(8f-TeLiv8zxhwEPZ8VGgba1_nUt z^lbA|Mu?HmI}>1X-Xr`rb8`T32rCXg0cAf3IS%TkYh-Dp9y>82#A2we;mBRtTIfyu z(Fz1)`u`Up6#C%SARJMkSVE_nvp`G32Gv3rg@nQWEJIl!rJ3B0_3`n6BguG#7Sc4c z*>YQe$Rl6yP`6{7h@lV>l62TpjyiNPKJR&F$BgwQ9`&@pRyqd;7%CF%`z8TpoQY!`u+8@awf_>1MkSjh8!o?vXYi z`)kM=_)F|2K~qq`oJiT9*Qj8CqR+XFj*$^$nviSeEF3~r7IOeuoJ~o@n?EA*aZ=I! zE|`GvNaqnih5Q^-#2hdVJuo%7-FmZ9mg@SJYKVxt!p7LcRE z$QcG{6?LnLnB7Dmo~o@mootShlGv~x6NIv9=cZ_xib-iCQ&6H5n-!9inwmOkdw$sr zzG(8gTHehAp>L3#$2QK=+OCfND4Gh>+0_FZ({ckQ+bBbHuUIAY)Xr}3W?l&p4Ld(( z2VvDg6r-UenK4j`(D!kL*k=@2Gg9u}TIIL?0FaGe6Wm@kDy$FZ>0Vz_lN%V6Qwj3* zJ@@Z-3P(=$is|gSQz6aNe3{wKhabg3Z)-u|X~GJ|r46mQj(O8}v@P_TMf=yhr#Ex+ zqQ0qP(GnqMLNZb7kTt&qQoXjA+iGgXv;PO`<&Sjza<|I&=guQrGEKjH_j&+V#cyc$ z_mNWw$!)o8qh+%ISSP6#+mD76y`~yM+Xn`|><=Llrk?f-Dm5a<5b=BpdxOk}&_)oE z3ggrJQe2*%&btf^xD1zavyykA)C1XWORQmU9(y-0i$I~lR}t%g3Q}o>f;A6S`BC!^ zthNcQ>SHCLL)HRtZ9inkyuue)4kEhX$_O8-vaY^c!+@C|xBb+ESc*^Q>e7Z`Bft97 z8+Zt2;CAQj1*$wC>3)Vb{=ryqDoJg8tJfe9iknRt8u<0gij2!)QtDs}b!<(yMn^wC zTLJnGDhZlD7(vMa*3oC8(O};WAtD3GZS&$|3>R|>N|7kUXkq=koWVnCO2x*jQt(jbdI|$hjl0aMR!Uc zXoKl@?@*}6rqIaPw)25V4bnO<%;S~YHy^E)3d(+x_nS{gCT;KXd;}?CiEofhRWyj5YU0YJfYg8e?fi0^zJ`A3{l^V za>BqSzUG^{?dKcMJHCHLn<>@bOljR0K-e3jdHfz@aID93o6tAfy}I@f$_NAIb8f*L z58lBES4B|7E?-~>+y!{ebkXBhy|*VhWw84mlfOQ_` Date: Tue, 24 Jan 2017 13:11:19 -0800 Subject: [PATCH 165/210] update image --- ...points-mdm-windows-defender-advanced-threat-protection.md | 5 +---- 1 file changed, 1 insertion(+), 4 deletions(-) diff --git a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md index 190210339f..570b3cfea7 100644 --- a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md @@ -37,10 +37,7 @@ For more information on using Windows Defender ATP CSP see, [WindowsAdvancedThre b. Select **Mobile Device Management/Microsoft Intune** > **Download package** and save the .zip file. - ![Endpoint onboarding](images/onboarding-small-browser.png) - ![Endpoint onboarding](images/big-browser.png) - ![Endpoint onboarding](images/size-change.png) - ![Endpoint onboarding](images/full-browser.png) + ![Endpoint onboarding](images/atp-mdm-onboarding-package.png) 2. Extract the contents of the .zip file to a shared, read-only location that can be accessed by the network administrators who will deploy the package. You should have a file named *WindowsDefenderATP.onboarding*. From 96d8a78a43f3f030d37d387570e1c2a5bd45e13d Mon Sep 17 00:00:00 2001 From: jcaparas Date: Tue, 24 Jan 2017 13:14:39 -0800 Subject: [PATCH 166/210] Add files via upload --- .../images/atp-mdm-onboarding-package.png | Bin 0 -> 77018 bytes 1 file changed, 0 insertions(+), 0 deletions(-) create mode 100644 windows/keep-secure/images/atp-mdm-onboarding-package.png diff --git a/windows/keep-secure/images/atp-mdm-onboarding-package.png b/windows/keep-secure/images/atp-mdm-onboarding-package.png new file mode 100644 index 0000000000000000000000000000000000000000..23b9c49490f4d3c112c1fa9cc6927b9920c0960a GIT binary patch literal 77018 zcmc$`WmHyM7Y6zQ0!oN9k_w7+2uhdIsDwzDba%I+A|N1wfV3bY(k%_rB`FI#-H9 zVR4?vftD9FLHU4Tz6AfG&RFn9HM>}-b8cl?9gj{o=NRxT#CkKtBlR7FE+ zBs8B#nl&Fg+gsUNpc-g?216U}KhL{4o0y??{{*4`bK6}9J3BLbSJYm2Y(2E$Ah)So zx!RhcKCKVjK%uUn6r`opJ(E_a0`$~Jk|oY46=)h+(l1%XNMVbxrrlQ`GHSjyH~i}R z_>$an{%|eAF?o_jo7|oZ8jDujdGl(GH@OPex85^npR`*?x8AvjWz&$RI#l|!nf22< zRWkgWff)RDKaX*J?0BSCWn+?ILrCK5W|%iV&eK2gcuqzhV?FZVGrrei2&4PKRyU@$Kc8kM<<^k`-O%q!i==Pq&yd@S3^-{jFf)@3`?u>$%(q>aR8G+KXY9=P z6Ba5&9V!jlH33`JcO{p7B!?`X3FZ?sZhPzPcRL#t=YTR8+*m#t77{x3~6;_>^4D=`vxLC@3gmcK;l- zNwmVhd^>~wyE5sC&AHkoo10BU^TWChgw{e7oI1~hTz-1i)^u?Nw;Eo%bE~@~oBIBm zA=8-z_4}TePwXGOYI{E5H;L)z71q}EpWa6m7n!sf!)g-;pZ;oiN$#>?|rUC57JA-F>d4SNyJp zMOK?vYg?O=R35ZO#{O>=ECZ|er+s*R_G}AclX*>W=H}*5sI|2YAE9N&DUJ_*6ADgO$Y(n==-vz#{&+sDFSFtbBLQ&d#RdGbb3Im{5K6$ZUkf zW~uMJys~mzJgm}%+i{0R=$?o zAydp4{M0XE#JUVxp7vW3bRNO7`w~-9;%4-p&(lCxh?ePacAN7J3=EvSF?4pm`6fF0 z^bKWH9xlBn>ha^p^xOhwon({V=sZEs&9tskTq64Byo%{i)`uTGRqy<$J6`|IB8H{& z=hyaPSD_Zi0|v_qy9u1Imbo2s@f$aAq04r5c28J--j_M&Xln?6x3sjBgi#M!m(2`k z!7#M7Lt3*R^QyLSD0%P-MVojlj@ z&-wYSg^!!`xE`vh&F!R^cD%VR9v6laJK<1ImmwRzZ9Vq5>Ba1LnT_OCSr(~ zZ3@oF&FxN=sk4f|$2^9QA|WMx-*35j_$&2zO)8)#;nvIWa2b7ly4FaB$e|&1Q!}%} z>l;rREcqGv_((%SLM*MUqW0u$Z8-)82k%zpBeyjM;W7ybXztZ%k6T93uKx2M3<@3z}eZFJ9mj#07v?no@+-i%LjX+4cVPXLC1xE9>jmJGL`*bYfy+ zp39kWX@kp~14`WQv$HSI+_v4cUVUA+z$Uq|&QA8!0~YS!c^M>FMc? z2b+%zV!^okmLb?Xv<>I!>VKrn>xP}qV>`<8?D_MtTJ!GsCj!%+Sl6##H+ajcg4us3 zVlwXa>%h@bt%BIv#aP|Gsi`&hqxE(BN#`(+_aBi!k#U(yh~?yu*RN!c*C{Cx&CSxm zRD4QO0_Br+5>6}=6O+d`-xZp) zU0mAr)}{`Z4Kn<5G=jky{02hMRbF1=`}gnr)vcecLh!4YkXxvPeX}fw=g{2RdMD?5 z)gTnzpk9BD?v+L$P3FIHt zsx-jmdCd5YpcmbQlmFn68o`&u^E}2xrRC)j%4QJX4Zhg2IopJhHgirgLSgkIz0y*2;it4~jq3r3Viimofg{;-fZe%DkQ6&1z8%GwykBv>s>eR7#lM_ND`dY&?)ablEB8s=1J^% z85*i~a-9kM2m}x?4vfv-VV!bm$$PA$GG`ApG+tcmRj`EXPX)M`qmhW#lC&3ATTGr)2q=Zak{Lm|M9+(QqY)fZ2pXN z9XJTBFOF9YyqB+68^x-?yTfS&7{$bD4J#rly>~zF@T~Q)tJmxf>%NSLh&}UPh>}BA zN_4xOX~3tyzuyy`SMgL;H1*}F5luG<5+38@sTLL%cFc+}zg1Nymkf(5#d0{kdyw;8 zkuycwdxEzpxBA?;`(lZK!LpbW;kH~@YfX(PssVu0hy7f%aaSzoC-6aUt}7uSDp$AS zBD-dO%-j1fU%ircb1NI<3Qd=JTf)C?Z=;}a;T|)oIvcsGa5Dd^NVl;`Z3fhs_vf6P zwW_Sj#Kbct(w)Fg7u zZ*M6h5)&nU@B<6gu+*QiHt>==|4TnbOzT=9{iJ60Om$9CO>Vt(9JisnP<)vswz1f4 zWnEnwYa1Ig0bMZK&W9l^8ER(~VKRI8ack}&y{BF-ac|!~uc{J;pm;?>VrJbXvnnq; zI|{qLxeg*IF6u*87Q4ZTG+lXFSx0N9$~ZmRkE_-8(#H4UVPS&05UJ(7ky(z~wC~pa zeSKF%m}78CDci!qxj}&YuzSvW)5l|FCLv>fsH!Wm#L2Pwd82!hh~|XdsgO~?y_fg} z@=UQFt{h=odwOm{;O*mYn&EYumuO<-NYX{8)3+3C49{GcSPx!bH$l4?Ja`bH{_Fiw z&KGt+uZW82iivW&=rvu@5koVLHDO5XqzWFE@>hom=hZryElh_ zUFu&Ootp31o1FV(qrek!IiMfCyR@|Ac)5?2g+&tFeu~d}r8wJV?GpO^z2}q$4ZG-( z%-+t<&a@G<+1)34_5O6+HJeXeZC`X=vP(KYeAHAH&V=f`0Dz?XM%6dEiI21 zJKv60xv>ii3xBXHUHAT^mi;;@=@mE>RG{lx30+~`hY#lfO%?A~*p4w`$4O5!qReWO zGPaM4^HOq^Yibou42zh3u=GJrvIdfR+h>U~)mIY2mjH*8u7f6=c^P5tBJ zE4xQHgwzY}Iyj}dzS|u)P-%jXKIr7hdUyypySRW)B-3>^Gc`p8>f=*bAknDSXP=Ro z8RyomTb8!A((3AD8U+SJL9AQ; znfv)OUQbVtO164?Z*QDFcT3SZlzEBv(ea?N#IB_uV{OU$7bMB5s;(|_U(*S;QdClk zdh>?SFERqwu)SSA`1t&$ZGGsLsx4ZGm$yIP9(7ojmXX1fHu991NftZ|13-{ZpFckx zvz3LQvbQ?MHly%B=WOx{XP6!C1QxZ=8HajZq=huDE1io&nuD2Ro{m|EU zN5hkqE~@J4&*((l({gf@hIb!k^h@S^?~EuyLQYN&zKHv(q_*}uSGtW2jXa(21=VFo ziRZ6rMN(!0?g?Tzk)(Lm-qm#%05t%Rt4cl#?ZholK0jh32XvU}+Vq03383E=q+)Yl zpX0l4^d^gpm^n7zR#qKeSTHTXd83)F4vygUQ+1bL-(>XkXk)qb*`~6>jN*`JKr7@d zecJ|5T?>QwjaK9V=r6f-&j_bK%Cb*}k53-{3 z2B&sgT3TkOeKy|4QgZjZjSo8OqQktm+ME{g9dNC116Nk8cXoD+=9)tuV3{D{ACOG{ z;9wB67mWN`8B<@U+@-MK&NzJ0@=*3SA-=z=L;u;b13kA*krv0e#A%P!J2Jz-UhXm- zJ7|c79HnKShMJlK#gUnr3Gm#Qm6P*rX0`8Oaf@-07C&|Ps$b(#ZD*(AvfqTS^ce(} z*xCZvjr-rN%T`MORI=8?hhrA98LCcV!(C-%WeOYLhlU{W2?K2B~8t^%$%Gq$aFHa_RDt{ zmi*AdrFo=9%CBTIjK?O%$4!qF^E8y)zSvFNt{8r=k&|iCRW6=HN6ILH_Pa7|V`EbS zsArsWezp2)r{CeWS@r4XnCa-Fif=RS$6`WUv};6~6M5>I!)A|!Bi`0!80*sd{apIu z>>;tU%geg0cJ#orDze1~lA+kHIPPjc`psRi8V*%eRsW8zey8-El`fZ>v{G(>z#n>Z zf0r7>t<@EZ|I%VG%&#+q8MHs0(=qbtxwKf`(>3Ky?$!sRudpj$Bu7&$mfj!f>od~C zO`py!2(McmfvKy$8M*^=61sc2-R8-z`)I!0hmDn$H|svOUAD({?Y-{0xxJ*ri+Dr4 zd;w>^kr6i>48XI7{*sn!%gJiM2I6@+ zX=x34b~pRS zc&zRw6@i)!EqYgXQc8 zng=xoE)QlY)%T%Yg|kXxJazscIY($HM7&3m7D_v=)pV@v?9t|)rBfSozFYNwj_bL8 z6X(TKb|k~z3Ry%|a^wy1lg+y@PL{J3w$>5vv%_D>KY9I6JgbG_4X<@f z*tbmUAtmijxYcE!8oHPl5Z=?#u{>xa<>FE@<=xze2jAd6!J<>89VvIsJW72<*p7$F zar1{%^}O==R^Is>@K+VOghceBTEjX|k6tKdeg(|6R`r9Df`akpO%jB`^Ys<|sGN#~ zBJB#j{+_*~U34**%zNvZIzLEKE@boe>J`z=x0hGHwu+3J?|_U@jlY6;28u0do1pA@Avm5P!fM_XE7j}0gN z*l&4>oc#I2tOp8Ggv5QMsoDAC?hsT!q>p+ zmZ_dV`y-6I?)BS#Z@P%R=#1b1r+X}ZT=XO{3HjcG_nVA(j7|==Ah9o&qJ!|UT6M=u z=g-_#%ilkH=;OLb&sI|yw~N=@S*kd2iy3_XwJs5#z1&`m79$&b`xhOi#XkR7SBBqv z{=JMGH*F6IkGO$DrKCj6U87Imt;vJ3ARh)6YPMU9#+HGcTyuR#n$!D#hIab{kd%5WD*mPQ%VA z26Rg*kePlu{y=0>iMVsrovt}xq3kOcQ{P|P`Xd#D15T$uYpV*?+j+#Pc>#}4?(q&! zT!$%F`5!uMnfrZ{ZXzi@SH^cSZ{KFHCDc(t1C8@sHY2J`Qc+&Muv)dobBhrH$=NDd z%BdHBqzc%dF}F5VI?cb3>k0{e;1u*(+Si;e4VH`pZUZV7l5S?PQkyazAXsn!RW~Nw zvU#1D$WEBB4&$?nH$HIG&m& zS0Gz}^uA$H`!VfOBS+@&`}b_Hu3lbVuvhH$gRs8iv1v66K1k1mu$asrH2WN%@^x%1 zb6ImZFb8sSxcI6M` z!_e6+l#!0!xq-HedzRWLmPj<7j%1g+itAQahTYI^w6eGqxIGFEEmW-m_Y?u{O6%e` zkqrX*x`-rUH$2FJJdc*MR5dhkfSx|pfyoJjMV&u8-oV}LjnyBXfE@P{14E?UMET>! zr`YoM?mc^u)db7RYw?Y?-at=AQz4UetmR7a8RRd&b{^{yT-hKr#A&^q*z>^R3vr3Z zQR0_)fDnwphl1PuIMwiBeYoDuqhAF|5v!Q>b2wd7h6}p7x|!>B(@7$jUiYfHQfG=1 zwGETzaji$PdJ+Yg#Kh?Kr#u(}r>{JMq156PdKQ{&^aW@+~ zdlL}FW+M_4C>0h1{BzMA&wl^v6*-yoz7wJ{0?-G0%J(z1il+h zohpENAe2;TdHGz(jg;5Ze;{Eia$Zz~oa?I*k7S;P38d-83ZyBXa~J+Hs5Ul`ThJWY z@yxsfU-pV#j2a>q15YD|O?j_rImQb}jFZIus3EH;qq!!=$(c7(e&(79i%Q9**FfaI ziA5{!OQl<3-vSAcS+tJWPTyV6-#r3m8$I#7cRyoUxS7<_%UMC_;`Lb9(`M%hu#Kxg zle)bIOUTo$@J?0^$c>ZSyq$InVlwQZ%Z34`w-6=@Q~N78A;;x`>qrr&#G*IWe`lZh z)8a_raL*E?KtOXpHz;WHs6W<6?e)wV`X8F*8q`udIXS7tRZGg6wyeseRDr)$XL~zX z#L{e$o=DPn9Ohtd&J2}=p_S$%*%{ND3RAeUk@RbYIa2oaTtFQFlV0fZ>%k{=ww8uq zZs~m$wBekL$^ZkJ*zEvp8YlPpJFVaw&AhN5FApXDgk{SpEma@Z?-@L*xX4&tby%Ft zCJ--eqMNmlS^3>FnyNLwG*}Ervz-mI_4j@@6O{AjLu%d(g zvmifCLAMn$pz@v0P7V|2d{w~pLv3iuRhUDo5CuGX0~iwYHe|xSnh>6bz|~aa^&7{O z=PDW04}cVCxA#8G&E8$ssIKT*@z|#Ny`}YD}9YKVf0odT!Ko`Iq zeE}E)NLHJkVBz-l_dfytc2r+PL|EAIM*{|Yb3RoQzlp&%H@cljcX5Y+WrjA)KJXiTyo^$g$F!GRc^z;6y&Y$%${p$ki%KZBn9Qzv}`5ln~~lZz#Wjut~2s z1@?knGKPe>;K6bB0@&Ny~_G6ctTXH6rA+bs-er=2Y(E4 zxYNmAfLam@1`eIryksoz0yESv$sEL6_Kp=xYxoj-+*4VxGs0z=0{f~cR%hxN0@3p> zS1vW?mf4KlDHvh8b&DKo{Y2Zpe{VJ7GW>uVLz}+G)M8wR+|gHH03P#GLkS5h&4b}K zKR@83s@;_W;34~lhMqx+ZnY}xr_mlot%`Z~1+L=c3)*5rfQ9L9>Vt*oq0 zxm2w5TOnyApt*gIdS}}9HWMf3eZ^zg!N%y}Jm4|iJ(C?5r#xm_fZ_&{lH+?ui*eLq zR?NrRT7A56@MxnsZea~kqrp(n0FOeS*IQKwPHC%OjzMAMp~r9HphewC1&VI(W%iVN zF;|dEeZ{mldjze}oRiAu^z=KOO%GEDNSgv4JXp;XiioYw8z8pF;V3FnPMe!3d( zHAxcdUvOWawDOqO($&rJ{GALT3k=DMgIyQOU1}o)6Na;Z@L*92jT$kl$7ov0L$yET z2I&WG2fd|A8;|2P&iySw9WJk+pqgZ-C_0H`V_Q%1N=t`kgOUcSpho-g-n(=vS4f)a zv6*P|GODX-AWph_L1k1hX-qLmFwbH59E8iM4@aFqREx_4*I|`QjSkGu+O79L^@d$A z{{)x5P{h6Y{>Lk=v4@Af0bELP(a}s(@kfazq($-9W`Scy{qUB(r3=0Wg)%iaPyhH) zmNy<8sp;+nW!r~anU`x%4(T!srjzFL#10pt-Mh#sC=^S6YNyWcuTSBpRfr_5@j_*= z2>dRp0ji~IQ>|YVUZwtG=VgBkVG_2`hj$|S#3dv;3^~?iI=5e!a!XgtfX$CV{?8A@ z=zIMmFiGKB3Z%9YieApKc|yYbQQg)ycaF#h3JmTS_utk>Tvpb`Ey=A{g1j5bT9uWR zedyh*#O;{gx;&vS-`b;?%tpo`$X4$Hg}D-)zcwxC_ycv5j}Hl+1d!ah6NFyH%-yhI zXJ_a2+%(G7t0aM30QVy8dD$XAiuMauM?p{)ql60hfDPy@MvF{vpA*WS z7#FqgRmNis+`eS46w_4hpWBra)2iw&);aEHF z_-fn0Kq%DDCG`9Z^yq>OMh;knn1&{-SNxa&=n6y=ppzH-k(k`9yxeJCcH!5ryBYmZ z`MY1P2PNf%#6)rn$$zV$7vCyApKpuo5@(0XgulNy6sp&r>Pv2r%|YqAr6r6q6HDmo zRSXDl2fcqzlq1V0_B0y+SX*^x0_Nb*DQ#cJDTdq!p>~mV@H=)t0TGVe!-u4@uc)4Y zjD`uOY7OHAHpy+<(LivOV19Gpi=H(aH9*A?a^+xPQBvE8fw%DdbGje(?p;WC_q}_` z!jIS-?%ctIT6;Li5=J=%fLyU6$U(?-i{6wLWP+@RSiq%sI+#E*%VvdgMjMt(k4Qv! zT*GJc*7;**W;U<~l!ho6G!GTQz@Bbo2sl>p_t>Dj|gh)`KbXfc)gnNzvckd;_EMBL#;0O8Y;Hi*K?r6e%|~HPNMv93Pi8L_t5^Lya2TN%8S3D55H2 zJPO#{=bh)0Ys^()*4cb{#S%)!P_a1rAb$LmY8!Kj@bmguiQLh>jD8~!M+tiGd~)rf z2W}@N;Oy|V-P`MWRj%1HWs;14NTuEbnHTf+ZAX=UsD`w3xwp6XCYbV z5umu1rQAAWSmp2Emr+u}r{FeNEiAB-lEPT8{6#EpZwy41(p=rlPs30J`JW{^XKgNfi6AN(=mX| zL+Jb!KvmSxk===SQD_427gJRR@D$=n8svD;6iT#}G8~|xL4hE8ZMqxRuBCy30;&zK z2QC9cr(dmMO?+i#xopJ1MJVH479Jj+3Y00(BLyZf5maK{rBmEw#*CoxIbYGb>Qsu< z59PcMV6VSjIRu_c(EsF%K6`VWAoG)H3MMGS3!Th>g?@c;Vq#MniImsD2LqG=+StD0 z4e>5#z9v*3zIbk>8@4@7;Ip{6va-Ts*>`1GRPEuz`OTW?)B@}X7P{)?HK1B4)uITz?yT!75relAJ6Qr( z7f}c5{Npd!N6yEW(Md;<*CI#mN-q!rmrVus3#OCudfDE&1V#$=DNWiY%d|^;ix9%G zE3XYva!}wyt(`%KygOCGkb1C-;pibx*USX7x`xJ{wvvDaW|^O)!w4F3Zbgaa7s0_M zz+r*n>Gjj}3l}aRP78~qooJyPIIzN zHysh<5zlj({rY@qdD$t4eINMG&6z)^Gl+g~veW1L=SQ~hWuzCvAO*h4#)b!0WyTZs z5>xS2&h=K34-K#Y%L0wLl5E`EMBY5?eZ|Gaj=f_0KR}Q6G9)C5*~J?YY@}2QwB0P2 z$>mE}*NP!xJoV+!7SRD|@iVyTL@mXVrAwB#1s(71#?D1sW$6X>jQ&r8LeDgE-r~I3ciq0Qtp}SC3bvwYLE3@awux9#jYg7S+jYN_ zH{|sT0Z4BqZ}{SBYincu#AW5ZBupFyIP?}Ex{L0-tABBuf~_EnC~;J9Gin)J=f6~Q zJJB^I>C+&^%s0%zmrCeDI_LwZc?rGh5Y?tbEr|Z&#r=e#wj2Zs!&nrh$R;_ANX2GO*F6k~ zPzBEr2`F`;tFV4ym?ZM9bMm-?0yf3zkjx{{3*n?UL3& zivK7+-+%mw)aeoQ1+@S3>Ww-YCfQe;ERnz^%`J393%V{{0zD{c+MApIQ|@X&3lnz6 zdKH@M!^e-tAXcE_H9nV~k--b9E|jE?kBE-0t`lG&*4O0iS7LAdPxmSx<>r_pQF(n7 z`wFbW-)s9E7A*Wf7n$1sgq`WHzy7bA&trIAofcgmeSU>;g`4A-KeD8Mhd?L@jH!PY zddwo#?7wTrh{yTA8B~>j{9obk%R6}gZ@!G|e;xjR&_e(J_Z3f9l0Bvy>rW@@XA1&O zb99$MAf5hNz3R6YSzR&LXv@EI%TNm(;HT{DM!@TZKKu3+Pj#Trs_m@4W^~NT@`3I) zj|;=@{4?|7z*RO*rBT52kg4GrY6s&EG8+vK7=CrkXB}<%E4OB3#tKs7u{qpcM9?jmWafS{b{Q;kx_@LN z$KUl&f06-JlcW0c=6?ItGuSB6qooXYsXRW5Z=;KiU;(=}1m^!(E8)Fz=;ZBBnTXY| zR8V#QV?fmLwAdx*G^O$!us<6~OV_n`9AVs~>~5|h=jMt3N5{?|NWdUY3#ADcs%{c` zza7=!)aQ>^BRS8wsEDH^&SgB0U7XxFHWmA)%L37Rd+zm%yPzH{?z&36YpC68+xUk* zU&gGXAdOyt?LYI8?*A0&$OzTYKOJGzMW(mDE$!dkrET)hO#Ex!*AP|x)gY;VJq#u? z3zwSyb2B20zj_1xj#E(8hvKLv*NF1@KaS<;58XyC6mgWm&pgkoqcZ=lEfK``qa-=d zPoT>GtA&Qw{hzkX{|8n)lm(?QVhV~Epp-MBY{>>L1cr*q%gZb1wQX7$MoLm#Qi6OA zA{rygOhac4i7-lT^C@J#yaHiz(lI2@g-m*FJsA^osNJOiY}q$Hju+H;X?3m-rKzKX zhXQD7`C19FLNe+)@>R@B#8H1hRB8ff?ZF_ZYj#wv?&yMU;v${!GpL??$jrnxrCVHF z^xSHp1fN+5*-c<>(48hk+?k%vD7riJu#pR?BC5(8!Sq|AE(_SxLh3;W%Iot;UI;o> z$&szS2?xL>m{8v*S^|OW#1|)~+xC-GtHy|1c~0OibnV|Y{lB`Q|NEQ{5WM{Q@qQwZ z-Q2Yd5Uy8OZK=X#X4RmPT%f zi@TA-t@=Q7ccbgJ5WBLwd-+sRq34!yMa1=nic{Pj`pAft1q6(KNs>3z(<49?R{^?E z)%*D63)SVzmkqva!y`?84##8g#ZbY&niCBYHAOQwSz4y@lFH52e4;ypYdpouW+ibX_f3JMBTLeAG9^y5T#oXgV)gM$Im6ux1AoxUsC*svqf z$az7YHC%vCwQg_RMytY}4myOA)WPkm{sX;M)zf>$satLY(kTBaW;riFjEFGFy=|b* z?^s1gClt=kFflPT&2HDN*Tbr^T3Y&v8dSRz?(Xik_w>kkc?s>UPoZ6PZ{EC#3<2_Q zfPm?Bb<g91f9asSZF9Iq?8Bgt?r(2ejqz`?Na?K+qs z|C3*a14l%tc!_|zooP@Zh^4HpgXP@?svqXP(D%^U_i!<;_@wS+TZzN4juz%x?NVFn zglP_dHt0YbWHqZRXK+lY84^B3(RBFx7kl~8_Q;tCNZsDNc~b~_pRp~=T23gjxr`TQ z=jIXsU0%G=9B1gysuT^I1yprcg@wmww{%ohXEpHIEFiHd^!jZMfRPA}5=HsdH+vXE z7zpJYkxnizFE{Q_mnk-Bw&aJ3Jt=a0>4V7|nEX%mi06KJ4c>k*n0odMOs-=(mEVfQ z{}gSAg#y9bS}Y%RI9LHT$`(jasK=BkmDrBmtk4Y@8X1{~Iv3!k*ZSHhBOpMv>U@Pz zk_96ZerM6CC+A??@nSx=frWjc5Y0T6IR>r=);$vD@?@`~-Yw@ifwSLx2};NAXsvSF zcj|k|A|BpJ71f}ABD)6k)@YecoIZXPNd8yH%alInkh5zDcK0$&l!C?Gi|3IlTA!bv zSB0JO;lnjhim~8qoRs}Z@m^sC)6prCN!TriJY8^-qW^Qxkzi^54D33@t$^w?bcQZ% z-}5_qR}C%X02(f%=^8IYia8}dUFDXeo&_#EcB)uNNC;A%MmT~*7Kcm<;+YXue%4JA z@MOE>2zbJI4K89#P^z38U6dWep<8~B*Yk>aSVV*@um<`{(fZZy$R>t5llyowClk}% zttW;dRBc^R@ByqKHSDos3OR7|p9%`(TwP1M?48m@Vdgx+gr?ZyIEj}Y7Mu4_qiUbL zlpKS;k)1ewFSeO)4VPC`1SOsGxK2C6#KLEq84ys5pbGJwk6iv#uIOan)!2esURx)tgNq*lfI$|<5DP%ehbtjH8MIOzxb zVlYb800f-&qZnH+IPW>jo@1vaHrX3J`VmBg+KFIV2tCgzNJ>w?ev=9V1vI4q%1dQo ztzrfTRZ;!mbSFy!8wK0u%iC!k7}_9e>VrZwILdXWx|B~IAMOqBz_M9Jk#wyeb<=)Q5X@m5y_j6agAoX{6;hD`2}AKd z$mcM=*b@V{^n_2>`1Kl`a9XYf?J}k#w+&~>!? zf+}rtO0pTUJ9gb~vCwHatCLs!idKjOC>bE_)Wn~R2f%_Nl2#`W&O+gSHm9KO%}T>q zaRg2trPtoh&J|YH4l`6QgB~Fpcc(W*jj`k4i*%SM4*e>A9&9Fv$at8Db+wy7HvRT= z4LvF;fQ3%$k?fzT=&rN4)0hSqPZ;EI5a2c~AuDBh6bpV@b#C<&>%MynG zy5*As6%mMIu#?NX8W)ku zlbv_ZiTEZz;nHgUqPUJ@CtZ6WELq8yoSe)x2(SU12a~9%-t7l(>-T1Er21l_Mk`&i zn#_`Wc9t%d=@2&fceBY&X2(f>0c4NSV81GIT{eTa?=L>z#{WAt7RKd`;19>l#zBQ$ zbPG$dX(hBhk!fsPjQ&`>$U<_)7ZBdBNnW!KFp96(W zmmIy*`vCD^?*T7=726{z^VYk2u#=sIeNqb`l>{8Lw&{}5{}RgjSg12Nx2d%Eu71zZ z(^C-DmWR{T)dkXx73+t3BzaiCp>FW&1FF%@BgMKZB7*oea3XDh(P%%GOmqK5GjvE6 zxKILq{V~Xo5pPz1(pAq=uF(OSVB}f-W55qi>ytu&&%SeAaoS!`K#&@kJLsZ8cAqn~ zT~K$#20cdNJdBOSJp*{wXtGzM#b#lHv7%4X5m$4(zY+JgKib|990%fMP$;N`ggz01 zp#Y))Iv-Y>w*Gi(!di=Cbc&_TSY*G)LfGcwYG?4fNu z1j|uNeoGb!1~GHoGN9wNeYcItN>TuJ+`Km>9NZG{{lYyq z3++*!E7@6v_EW-$2#4Z4%r0&p4ZjdXyt!=vm810m60w}RFG54{px!4N8_c2%3k8Qk znB82^HgImH35ZVM<9Q&3K>WiU0n;-Ik4@y&!3D zgTepceXrYJ3#S~tgJcsxiAwqT)pluKftu1hl%1fi^-s*XeHw8jIp0^ zxFH-IGvZZX5Ye3}F)`<$ewxw0RQl+VtSk;7sV9Kh7+F~r%1^;}HNkO8pnBe=VV67u z`Uo*i7=;YH7lds!)P;U<4{|C5#_ZTe=OI7g4F;;6j9r}bz6=SdaMB9N!8^Ar>Q4#b zJS-eKb{2|FC^+VZv4bQ1iadC{R-x2&kzRB(Z@!HbRtq6`Vz~{Wd~`hz4fBRz69nR6 z(*-H4M#GUt-`($;YC>`mw9EU#2oHc)`hTNhCWjzRM9MvIQX;UFk%@5xYH=tO1-=6@ zc*gbs(6RN8jxM=~14ZZwX9UM!D&g`D(THiJ-a!7|uK(8`6BDC;fGawO>P{9BXupnp zopS`Fk#OB{a^i(#0pest8@&(5KRLK_=-&_1F}RqRuo7?E!3o;Z<8C;7DI%hq;I{)@ zG5*25cx21h9cdKe|7FOYxPi#UvP=j51D6jreh!74`2}lYO*Salpyc}tV=Cw30%N@= zSr#1hLN0i;FqwN^WBdyGyLgehuPt492MZ;_3-%nFZJ&{WwBH3oxms>N6^ey>@dqe# zimzzAGBkx>Nbt|^1yEBX`3bBs^!pWO3EaoG@Le37haa=j_^Q=jU1?#sas#jx-kQbgKk`s zn0F%cb3Ff$nK^y0p{p*ghRBjWo}jC8=5Dq5yFu616@jC*+vIh{5u6YH>FP^M$*s@N zhui80nVj2=IQ+M-$Iyw+?m08IzpXT4F1PF4sycq3fx6$18*KW7A6aqaqV^QEe_v+z z@S?g$>yONt_2{SCLfR6JK8Lv$??vcHk6TL7{SI$1lVZt`D|XsvXZHAUu78u+i0G`<6wS-f8oHwz4rR>^m9a+B z^ECTB_u_Pn;B$vV1koaw>Yq7PNu}Qnrk~bdLCKRLy0+fB>2@!^!w!eXj zOV&>q$Kvi9U|9rNb>{ZV8W~~qTG8|{JUU-f{O{zwyz^QPBk!=}AqI+jW0Kov#xeiG ztt{%kN#oW-e9gjHL&`?2(-(vJFJHLam#6(r#~r$wbhc;=)_SMaZwB16sj%BmrEHsY zuKM#}Y?*=WAyI6@|#Y6n`Lf{9h?&3`jyz&)6MAU zc0Ha!334T5_rW!!>`B&_a8S#O3KTHxeE#!EM{%!)-RO(j+or5nyhf3UXMff zkHiQix9TkNXK{Py}|ZS)nXSD9wH{#e=)igB2FmOUZ8BP_9AE<8Np{vb`J^mj{!=aAE z)Je~LW9M1ejw-tG zPH*!tTi;ws>@r(;q1V!x!Y5((@%)Jl5$PPhf3`DY`jhUAz*w+M*Zs+c!LEQMo^Y5( zbI#N2>+j-ln<|;1UBx!@)>b}m=+urc;u^q*;cWIcOi+eXnp&xQutm;1a^E}`DlWLN z>0%)paASPE_E@d{Mp-_IKF!;wPdf*IlhHexk=42*G0ZDJdp*Y`j1QDqKmnc*rofI-D}Ctl4g zvGaT6^TTXx#yFQt1G8?K~n|Rc{kAmYsn7VeEk5=$KdRbX;&E(Y~#URIXhwQ zO{G4;23MMQ6e{umZ69p*A2&-aU$?l7i5A$9UH!(uXgX*mdjD^=RjaHm83imAV zjjD#y1uw=`1DP%T^Xa?d{jaTJwsGrV$x`q{rc*Xdg6W90f-lYvPE4)^o@<PZ<37GX{({hP$*qxL<+e=BE8rUonS0Rz7_B70c0&*ZN3K z`}cZYj70aA!RLw|;zT`I(W*O*SF_Ecs;Mv5MW_}r6&`fNky)HDG2$_!1Nr`WP(C%`6}Z2kubRUOQ+RGRd|Q(%Ehuj+?OOo{+^c?mSU6LA zcDYlfSlG`Q4zqUt`WN`0>)@6r0jEt#>=_BfxA{j?^8@i3J)GvK+7c@F@03i8C%3`8 zBzv-Pa>ok^!BhIP3jRB6;;Ez>`}aslda^|%8d7ckD}5>GE>Dup*R6-)g5WxblB@&4 zcLqhrK89#`6Y2_Nl7ODhsJ-M)l+H4Q>$74-tch~BpxRT z1$@An%RhLqUa~vY{V!(@WIE2ZKftW}@1MGw0%scf>*^L=;i-KHLOLv0Y$yZ>r-mFA z`gv7{5C1xm#M?R4v<>Fm(pU2i`Tb7tL5#RddEKj5uL5nu$^gfkT3F!vihbK@DSNnz zb+zx8qy^@#UxoO$$f5cW;BDi}cH-nu`%93Y$RF_@Q>a?519WQyg|JbP)`vKQf?wE`3_9hum!aMcwE5EB z&2j?j`Vd{Hn2KAj9|pd=_YCwuBrsPqvI$BAh0Ib3x}a zRzJLP4o06L3gSO-{%WQ2>Poe1=!qqFl!db#nY#kdiW za#T#rwNpDE@sj*OIC;O56TFxhF46ns8%r_+79!pBuC1F%iN;wuyr~6UJRjEb6w*EH zYL*3@dTihjSOkH$)fiTX~$T=8;vqX+}O#{z{W@?OId0oyX0I?TJ{q?Bj5|N@;3UE{i<; zWVZtHWBHi=BhSKVfw_YcuAsHEvbBVT&+ECmgrh$*W3t@DhZnn{YGH2vu{3XvFEgLI zT)*TjU~gKY9CC*J)0d@O;=|z&kgFc18nxcii>On_Bvq zq!C?m0i0Z_?=>BzESH^M^9P|TBhImSDmXZ_NWFTaVDa?Mov8+>&>YBo5A0_V=cbPp-)*#1@OAFqV`2_6&}1^cv{d*p($~SBJU@JWTPd zHMmA{A*RdhzTszk7ma*fL=Ny?<#j%Jm<+9;BdWz%)ulEgBj}G|k0|dOWulUz&%c;E zT0@R%JZEg_O7F6e4X_-j3pj68jY_Q0>U6uQbaz?ihq?52K4p&XxIz+gg+7wIl0-2{ zz*x8FmVAqKGTFqmrNJjZwx3xMd|SslzA2fH1H!zS*eJCu^qnomFCcWy?0VSrF?NyQ>pNjr z&KqMl85neTr;E`?ww77^IXj&cW4d(S2#&uEoH|!__n_ZZ<39Xc=nN-mUw4>#Qm6Lb zs6B61qK(kWY;t}WEEHju*4CgNYHVmg1s+mnTJm?Mmi*4C9YM>Om}FcF)6rmzY5*D9 z7m<&j&z0)h>*^-PFh|MDb0>4fDZP1aH=3&_(XzMaDSC3<(#Qw}zc>XISX9KjZm_WH zO^o;afbY9bxmH=QJPX;^zP{J4oG`J};h6COtl`p(dg7|B)(TmJOB)*k{QDN%2`dLf zK9|?g=)0L}vs~VdMwc?xLL?|dq+fR}ez1Vb!UyjKXQ3YEVfzVQG)+Gt6$)fM7~K^U zpq4-ItC;9H_WM70d+V?$-{5@|0|T&;4n;tLrBhO*yStZeK{{1LKtPlZ0i_$3ZltA^ zZUh8`B?YA6%nDKBjN;71sQPBTs|>iK%+M|iw1>k_!)qmAl?8OQSektuVH4f|jAa{h^I` z!X$WR#{cO#Jv}{T0m!!9eX4YOH*4B@$2%6Y-F!Eu>yCZ662#!W^+!GRe5;+yyB@PH zHF6UQEjHeWm@cRVvXa3km(^yE=t$e~dC;VLfVIh6!k?put44M`fFmrH?7)k{r@>%* zor{;3K0kfThCn`Zz^SKHn|WZlblD?Yxo59XYwXK$HT@rzdpF-t-(RcM7r4d;SE%H(PKr2`VB^Pkl~Zp#yw9 zIQ3T(4-3n^RvszZh(Phw{@_7aztXE$0-ANDT07~Yq)EnFIZ&E-6k!t8F3`U}P;FA8 z6)8dufU0WxMV2$ik*TR`hWZYXvb5>fegbi8Ra|-H;`t2bUr>aAZ~EJm z$&>LMJ}zy$gZ06zxe$Zk_W4aW{(g3lZ7K_#e~ATh`!tTB(nLwB5AWL)_$gvmZUu?5 zu(KP-g=rAmB|UrV|BlK@rXa(LoniH9mn z{=7G3pIO-Rvvj~`h-&ygK8_UHiZ^lC>&7o{-&mzC?MErxBcpq_R94o(y{sH5XTN@O z?;ahmw_vj6V_ZFEwVZ>~GLK9L-b7`g?2Y#>!&ZD7adV^WIez;EhOZCnNv>S1O;(GBGj1c=s;S9VqJP6A$RE zp}rjyulKQgTttCuODv(a&WJ6h%hb;FzTiB#gR<9pq6;r5KtHA%cW-X{faC2$R3Yud zhqF$+oG0U>qgfp?PN5wOj%63JFQbMu$v{}p~t-98UvrP+N9*WkdRMxb>xD{ zVfNHwxhbMlFP(U8m$l6=m#?!u&eLrcjkY5H7$5%>r5V}z9nH$Op(Z^uJiOh4aDiozkdCAuCIm}4TOh>w@LXi_WZXz z3XrD8@4hv1UBjP3jS?ZZbv9~dMu$6ozKa1VGhyBVcxDZhoM0t;wk=bktjX+8qO2U9-eB#G5GY|x;=@5Z0p_s>GS=V3(TjkK6&+!k%R?B`bOB+MI9>QC=+vafZ<`aAS z!gQ*RthH8aaZ6P(Gw4O5H1B?E0<{7V3_Zf}Z+aD3?=svA{;#7)=A?e$Xr0^9p)@%0 zPcET2T2tV6Q3(Ot&LYXZ1_i9`Xob9u=2@1$1UfCkSBYSP!y5(ys@5jXWsrYpVj>Yh3ecyWkN)en=iQB*m?rTbSe`GI%WWo?_Z861dd;dpVJ zV*T(Lq9o*|F)MUy&Fm2WVaU)vvqD7Y&}r26BJ5*5aaDe2Jxp1E@WAWzwVa>cBLTPW zkg**59N&{CW!lK~u(>WWnRXK^d;6G3yS%lW1<=pLKUqUyRgV=8b=xZQW8EhRwv4Q> z!rJz?%L&oFM!YH(Psb^`Gx<_1_NfluI9_*O84%70Njm|;4;CCbW1|~zCv59DEcT}1 z@|m2S_mcYpbeYVFaoetcR+Q8>ADz7O_px|;d+X}Ezz7z}Vz;4$0GCM(QDUtZNG|bF zO|_#T8#$dE=l66EhX(e$<$DH=;cXgHEsM`Mw?eFh3zJrO)?s+%uV0TGt3ED|H;wC` z^r{ZH@l#~`s*2IdXfVaFa&WXnX^@kXPo6m3x2~NkQ<+@NJ)sN|O}jv|Gn{XQ8u0PZ z%nuWXXxuZJJKW@c-}*k*x-@++>8|(r*t2Oe5|Z%9q?K`12A5%(DD4K{-A6H9$|pn4 zqwCswYo2BR4i**9^Yz6U?VY^RB>U$pa17TeQqY(9S~H^w4KoLVV6;(^2H^hltVE7X z+v+L;$Nv@nfRT-jO=BnRpWD5Yjys*2HlydxTTQghJNP`k6OoNVDHS`tZJ!5Bz~2M< zG`V#zpN8b*HtKiIsVZ1vF!(gx;e2-m!;#oW>`jBL5WI3>*ooB=VI?YyWY;f)f+!bN zYQo$B^7c2Vet@o36WK%}7M}|q*+kHF^0Bad(L;|u#K#%KdELupkaNUd@)Y$J+c@Cm z%X6@P+2n&^TPrRuh&s%XP> zvS_)LcCIDJrMzI`YeOnV2<~t#O!x!-xHEH}2%1nSuiz(f5sxmwr>cEsjptS}peXI?DkIl2uTU znQ33)^BdCE>+&??Arohdi<~w6nm+2Ofq{V>bD;)^SZtVBtKFeRtN&vOtYu3qsJ8JD0W(t5mx+okwx9f3j%2EAx9z~806TI>uO1g3O z*}X*hLVD}LT;iB6n*1Js4TFDzWf24el|o^mp&xFe#DAS25AMZ?yt;Sgoa19^a6*5- zvV?X)i-^nk-;aM^M2ZRH{Qvht69KH}^?(aZF}M&^;hQlVm#WtO1*@1oCP3f%g|1bt znrymEF{%b!!>jM5(|(8buBLzUe3AW`1f#s&{w^J(y{64Sm5lz_|v1KlR9 zXJFKozyAG-450HLE;TVac&{{Fq|8J603yj!0{ zn*1o4eB@rLi&K>@3GtvHmo@J2nRwQ`ZeO~p?Hz^+PELi?9UIxGE>oa6=<tRNR6>x=yP< z5Ynj-9gXcUE2*__6*TJ$UdviSS`YW;8MFwRyBGZqZl&s9F10)j5)oz)0sFyN7fKg(rQ#FKN?v6ag zsB=pSIsjWgExiPj z({Fd$Fp>}vJ)w;_$09Tms;e-xThP!z3FL%y^CG@XM287HH)_-Lq1t@)Q$A1sy~ zGCi#ij$S9H0|m=jRUrzUl78EjQg91?t<4-Q6MCHaSfqszh&>TjYe$6+uB)v3{uE z$g!dNm#ES+e~`3j3;6ow%ZtIj&x%(D1_rPekHl>TyadCLs6ddV>ew3jYZ^p{jr$_w zAqMg!%8TH>2NN`Ie<$T0pFYyOKI+Ju7|mMIeK-&ZUDi>ynV~(4HHi)pJ!VSuQE6z< zLG&jo;MG`vxN9Xi`-}+8M|xmnBvWdB%kA65L|36!&xF;&jlX$0CR^Th+365?A!ygN5sxXW|1xp%a{%oe-UE`4tAE+zt~;{F4XEPqK774H4g zD}=}YqXl?8A)B=~dNya43eZ7%V083r6ut|<4@~=EL0NhExQ{-gju^kzJFRb{0_U#9 zR!kZth`oU)F|hoT6k+HS!O%ZB8KRtR5?`Tj!wSnxMQ}O~sS|xEe99=zmcc>%7YCK*g2@URTy5}!D~&0o^M!(dU%#W|Gpm|j+xExJz0k@E zOwda$FA83vG8^{&;&oQUb<1cz6G)rR5^dA$DU>Pqr9>rPlFx*FT{-{O6p9*+Qv-wU z*%F-AABe>dU`n{u8RW?8uMp+wfr;)q`Ny9X0~zXK*)$R-=5)dIBM)Cq8PB)b@#PwS z$)XrSn%hi}pW$Wbmd-27V60O8ug`r|nG@8Cge|7yz(g_uL$R1*D_nNiZ-(C*UOV$5nBo{7bP_`UBVBxv=8S6=>`&6cJ@> z_zqjwYBlPp#Ie;so7|Ep= zHu(z!?kHQ_x+t7y2uealrWj{Nve7pZQ;4E7bk%*wnkf?h;KPQbvWTeNt1N~1xAe4k ze0D3II%A(N(3B{HaV3e#f!Yr_XD}&LS&%c=%7a@#O3u>-5nS{0!{ikGw0e>0RaM0P zPlYwON;u4lmc&MQhQgUC!XUO#CG=P!RJ+HU-hTLSt0P~{z8kHj0aUggjelZ!g-Bgn zw3_d@>3v(gQBrQ;El7eNvagg85HF-wW21M2-VW84sT9x)l_<)lE5qDTF@Vl$QL@?P ziRjQoRNecnK4c7Ibbl0tJI#~-sN?y)qgz)ly1jQY^kHwD`yraD6pA}`dUC|6&WTF{ z^mn4X3@T#qNe@UC!P@$->RORJ5EmEUp8>7g$Yg~h>M^vE0mqScaje3g^8Cv$ukLz6 z1X1Q#Ug+ZT@^BtTKNz~(zOnZJNME?tR$@z!9fBYt@;W#P4X#_!;&>!UeM^jbFGs}% z6M9zKp8R&>m!yrTCZIQit)Eq?h;C9;NK)~03=WSjXs=Ct;U&AS*OlnT z->Xn$d;r=Vt5


    +**Enhanced session mode** + +**Important**: Before proceeding, verify that you can take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs, between VMs, and between RDP sessions. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy on one computer, then right-clicking and selecting paste on another computer. To verify that enhanced session mode is enabled on the Hyper-V host, type the following command at an elevated Windows PowerShell prompt:
    Set-VMhost -EnableEnhancedSessionMode $TRUE
    -If enhanced session mode was not previously enabled, you must close any existing virtual machine connections and re-open them to enable access to enhanced session mode. As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. +>If enhanced session mode was not previously enabled, close any existing virtual machine connections and re-open them to enable access to enhanced session mode. As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. +
    The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 100GB to support installing imaging tools and storing OS images. From b944130ed838b7eb41304f4ad9199e2f0af76b66 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 24 Jan 2017 15:14:29 -0800 Subject: [PATCH 173/210] minor update on arcsight url --- ...ure-arcsight-windows-defender-advanced-threat-protection.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md index 89b4b13d30..a682992574 100644 --- a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md @@ -79,7 +79,8 @@ The following steps assume that you have completed all the required steps in [Be

    ufWaj?3Chq*g87#GTwN`vu}h&|3UI1upY*rm1WM@G4R{Xz$4RwH&Gro z<`xG~+MA{P(dNL;j_ZfEn}~t+B%YQwKOK)XGN0`3?M(p^&DI=-?iH3->hD>=1_TTDY{iFwQ53Dg-pYjEjq_ z&TIa+b1vJR%3MI0enXr!K(Hs&k2yYxP*j;DmnS}%WZ9K>P~nR z$Ym|Lc{A1}TfyWd)-!bx9oTs{MFpy0SQ&^|tA2Qu+t0j%gCvT-Q2|CFxQFfpx7t)yVcvI9NoZx=(QVP6(x~|mz17)bx$MzZ zp74D$+j(E8-s@&W=5&_%2Y92ipYC-GH2V9sqEM%IePmFWRv!LyhBzUcU*9b0<>Z<&+xxr1fqI+*BkDhGUYABnX`*OCQc`zS!)-_|TkfAO6 zPH6XLFJY2yKikz;S&7lM+{|4im>c~2)zX<_hr?)=xZ8E>pmGO(InT~_X7fF-1oIcS z(}!~V{>%-Td!oZf6pre1gBaBdYp)_{wuMeDeS4nI&YaFPWD$TeI3{G{YwhOrn1t)?-uc2p0UAW(! zddOD0`fb>=2(SmUGap;Tr9B8-F#kPBI=a2Pp^-j_?93A|I1_CB_27S&Y(Mtzr8Ui+ zCx_m^GW+b0Hq0#>)V?5R)Ug#}s6NcbN!#{+=y04JunBjT_0i)}gYWuPRe1qFc(+Tb zjo88${U-b88iC$Pd9yAce)XOyiSge$5YRq-{jLSPnj>^@>yGRoncqwXVnxS zn&H{(d*eLrH4s|KvR7c5M7TKJ8k&3>Y0BHSl}XXm_GWkVu*!bhy22MlN=iCxomUx6 zMfoa=&`g?9*~}6swP!qJ$9M29*$R;cxBl4mAXMV@gjCC(xAV4s>QTwm!-=@sGL1`TT*oJ?bJ07stju_YaPsk!y`;DWjkM?7uxANX1&z^5 z^`Wq<0=taVDqzPkZcmOD=@;{tTnJt(Q(TF!A$pF)Y^Ld6lI0a`b6!j1BK*63jEBDHW3NJabs*brtv96U5?@W7T{4Oeo4;n<|2fkB=`hMnbWi z`kVy9Q^odV z-uk?@EDN>tjDaqdS|&{46>bb*WV)xvdeI8W=W=#y4b-}N^kcKNFN>ez#n+g3Pg`1E zTgCy?(u%wV>EJ+t*@^9C=lbAXrKKWGp*J5$*+`ACAUWh%`&9n&`?ia&f2b})Yjt+C zqSZmRYNylMhz|2wx1Ng}`3-UO2r|?-cS8nt19B@%>+@Z37+}j$ku-9lOx<2v+ZH-Rv&!~$&&jN{(N4_ZoZZbZH=|h? zUrhL@Ofr=Id#^Bt!*Zw6Iauc~89Td>i}IBw6RkqsOQ9NcLpYmEfCa}}Nor)42>^N` z5|X*~KsbhhfokWyYygo7cHw$VgrGokKa{2QlcY`=`;xt| zKGWbUyl{TIz%2#WqU;2`3(XkR*JgOcsczxpVAGvoj$L_j56jR;qzc4Jr#AO)ezW0y zUPXo}pHnV6KAvU*UKn5=K=e0unpAtG~R&?Yi z<&}&3Zb-aq*Jhz>OfAYd04j4ph=`2PXV@4T!w}xO9tP5f-DMr<-KI5{?Ik#FKoLQZ zZr%^pKX*s^57K z9BL3Pfztfxo!qwsm)`e6TE89|FD!_0QJh+XDNR_OXhKh)&+|M`u&8GS&lH%RYUV$j zROoAPhY}a-bUnZ_DPy`5qT;dnDcJyf2@e=mk3a^;A^fbnH%4iGMh@}C3SWP<^eOvv z_5M5Y+0;upc2-WaQCDrr=r7?`7Ay_B0s@IA(Nk9Zlj*zliuTdb$(d{B&LsR7N=$Sy zxrN?2w)YLl5RXa2Q<-8~`zdm>WvBx*EHlT;CmtW=GaXh(Sxc0bHi@kze9QBtqS7~I{Kbql;5`#RWA8j1|ZpG82xHa;v+ zKk?Y7Vg2LHiKw!~IL`NpEXHx4VIrs5DFk->V=+bf@a z1Ng6$?~eeXyHhMUR%KK=%@Ku&QuR-6pwSVBbY$0?=eIspXq<@}35a6Tu@rhy5EGw! z)~X%5TQjv0V09#APX<+z2~_2i~qd1;mOF#1&k4zm@JHBrlsZ`!=Ih z(TtT_g0rY5FzNT3534 z*_)$WRwLvyowv`u$j+vNvUbldG+#hj387u(;jTV$15{pC)=WyQG1BQACsfrS z1idAvHAfqAVi1ZHxuLG$>;)V#c8GSpG!I!c{*}7Ay2w z>g8+f)`wcN8#r4-;zvm1v77-0MlGRdM&xoe3Zf8z6>FFdZeDb7zH>d`dw>5cO#kUZ zH3|3i%z{7DhJOTeEtMC*0yyxu9p)WgA?NU!#T2NdImfC>Txyy2yjRf?tyTfK#9Z|yV+f62 zU|6Ai0m@p$_(yV5(%gw`e~+S5W1In5+7c^;C#FKQsMuF#Gsyt>MNhJW{i7`s%QQRl z!Y&}b@M9w%UP0auB)$8mLQhN;is{)55kn`fX(-eO25!t_&I@A4?q=}K%kv{pE}$6t zBVuixn?7`L;vUEkz#XlpTo9Y&-H5d3cQ`-dp`*Ti{k*_V_#rt@&fnLvDv*$-#e3^(}25W9vJgV|!{}f&@m25DchP%P`Y?xe<}mQq8u| z_gN%>AYb=E&hq6&yG-q@tYwJXpw8o`2ou+$w)>fX-WdHIPBx1`id|d0(S7-M0gWab zX&6-RA`stJqcPIs4gn5=VB%``_{Pb%Ev#P+N#xw#W2-$o7Lij zdnwgf*(@<^4mNDq+KltECZE>;SV25KIBfoz6Rmxe@VP?%{Py;Hax1Lv3ezgxwr}5V zYUn#VIc@UjsN)#&F@2;5o*H7XcB=Jb$;Ln%u3V*GfkO92^^Wov3#Jc~q|@E%@`ejN zLXGRnjn^ZFs`W6m!cd8!KS4?F;o?aBlTHN0OPV&QNAHubvU6}ySMft~0E$gXOF#*D z+hmlK0ib2-58g5XPG@%eAZ=9MhP@5{COEDBjzD^wc}r)LT1g(VMb;+GF{tfl6d*7q zZG0SMM7GtGtreX{nAMSyiwh<=Nf#!$wY@^-zD)$79o>428kVPk<`4I+QBOXM=;zKX zrr110hIo8C=#wTwn!v)PizI4eiOp z9DfM=XYia8P1f@1Tlgt%Oxkf9M8t;6FrOylsK~3`X$a~eWlb`uyES2JW+u)%*|a`x zZ@!*`_B1d^#;={SI>{N~Q9p7ktJZ);)eYr&hSpfSyrXDHp!HCpA!w~)QWUee>iiy= z?{8m3c@+^Um~FMFlRzo+;1npNFB1i&IPuV@4t#a z+GsIDk_?evUicqnk#&KS0V6MgFM{BqlpQU`-M@eJs&ZTtn#ceC;@_`ipAIFcE96AT5~ zS3qZSCFt2Htw?hv_&3jHSto%!6f%|ruW63N(Il5~*Q&!WRv~wS6$FOqAJ_@;W4B)r zTUNo{qj((rrbRR{U5Du1<+nUMPIhXMp3i=fk=?*|*!WQ5+~fM#LQ*#Gt;fx>&-KBK z1aQel!=m+re%JpIN9DeFau0@|Gzr0wi!R1+CYPv7RPb$VVxpdCb}6u!!}-@#vIoO! zFP~d57KqQ<>L1H|gVsbIrQ25j|5QSA7Z>tTZ>j;B(yXZyFwgdG65^ ze+vs+ zC^5cj`D40q#}`(zaX4D0Dww>fUa?zwEk;U2!^SuS0|i78-T$%?pXbA`WGA0p(L2Hb{a>;l!>JOb-0I*$4_> z01tf>`dS$idf<$e&^>2Jzd;pL`zyN36d;kLEq(oHwtMXTPF}bxC*FK_VovJ`8?InU zYO1IhNovG|m6MYyNx&-hR2KQs;UR}R5PDEVN`meQqUd&A+?Nc`J2v*L`-gIGfOvnO zKSz}ws`TZ0n*h0?Y?SXo3{VG4H?9J7%OztdX`te%AOBMnh~KB~jWU2USIgTxfcK}q zJ!{)COyQ!i=I6xQGtswF-w8AtWGny_+Vp4><+pjw*ob@fE3_L#N5v1GSwyURV~tK0 zT{1R5yQg=wB|}(gJ@-z|dTX=Lq~dc0v+wIngQR)OKQ=n;QS^C}Cqlk=_BQH2WR6vD z-3g~!{_*XxjjN9`y@XoY$HXJ7UgwdN-+`AO%v522sXdSED|bGwB2+M7%Of@JYA!UI z-yM-I&N4k&je5-gn}*x9{dkPwdB1nfg5cq#4uA4#;pFT2OeQIu$Tuyosk=^U>|0X% z>P(jp>B{#O-*D;%vHece`F0kSfQ5BpP<1s*g1@%+G@)?54{o8KW#dn~f{Zt(>%oIi z<)!^>naaI)mzcJ}j;U$PM3CooxP4wNDb?@XpRPatU=$Zt=SC4GxJM8ZH}rB!rTvC= z`_X#s%ZhX8Fsn)S-J%ut(A6`Cq%J-87WP68g8musTINi(%)6*5&lKy;BwKXaiQ2+U@Xf?`}!E!GrDkJzJ2)X?5xpgBFx6Xo5J&J{IpZwJ}jknHLc>3 z`W=_^EWQ#qp-Kha_5c=+YxpR_wvRwp0tYqBZ(s+BzUoq5t5(nz_-~IuUxyRpEwGK7 zS1zV8@BAzB_r&agyg;@KXrlf$ZnEoujx72yvimd2uy*IJ+i>~*OGPy`6Xi|N7ywvT z2In()I_~~FUDh*gV|Gw~godn&SwMybQ*w{%$+4qA3zGj8Nwk}(2b(PgXecc3d901j%rFZ8 zy9jwmTD4ZsExy6j8>0eBMg&(bvT&xCA-)+Sk>?@LI-|TEko#^c{qBVXc&Pv80*r7$ zJ~y7FnXWW~Z&*(`dTct#rU4rAb1y1BKze#IH87C6><8U9rl@LzYcHR?Sc04gcJTqm zrguh*$`3X6?7dwcoOy28q8(h;FUXO6_jmZoS7F#ZZoQvzx*W4qWIn+w_2JJ-qge;Z zDugx-Wt8J0KK9o)Wh0W75XwS(u34v9&m6sSuWj@bSz-a3s`V&}GpN~Mw)-+xb%WZ! z8!X`2Od@x8*V#kts}W`KjvHfRU$(0@dPy-CFE~c7J?M1gDZR?amEVdQndZz7(40=J z$ZL+n-AKqtt~tInnXKJ>Mrf)*e9+6NY;a&-e|v0@lr4?Agh@7cdKftrrpjiV@}uvuJwc~DMQ$1Ws6;km^x|FI@SqW%EE8#2!UJH=t-3y~I!J&5Yn+B{h~IR|da zKereiFp@LaFnvJ@?lo{=%?|`fu8;(v_J0VL|rT+|vl0DZ` zW6NF}_^bE0Xjs1v?L~n3%cmwqUHy=#EMm|9Y!S~vH_&~h2Ukh>G8P1a{=%sg8{E$n z-d}F&IRm2!YDe3SFT1rF=!c1U|20pawK;`6DjTE=93kJ^7=w<>K%iDbl-i^5MTWoEZnI* zU`!z62Rm=jPCcLf7jXKhvn6{gU9yd%VA5xElcqYCFJQU@A&)bjRC0 zA#Bgh`S|u;7W~d8P)&bNTtS)C1i>U7?V)DR#hv#--pz!P!Bn$O@$Pe(#(^WQ=X=tr zJPILiS}w{*pILO7<|oyj)=gCMeI}7vNlLsHf2w?gOH;P{FoZ5%)OF0G$Y_nTdOlJs zr_Q5@7y=Q`^I2~?7oz9QwSZ>-oE^)l(9k}2-aGJ$-}mmu);<}W4~QG;RL(yV^}heN zt&2VbMyCTc6ORUo%eG7u@hY~YbI@(QPa*x9th~H$P1v*s3hiLlIb^JA7r(~MxGNb7Qzif;V&50Ph07GL>pL< z40Fwybs$2&dwh=RduoIuv{;TTWn#-)AHmJtmGRed=0ExUas33st}%F4S!0{!&*tP# z;Bf7h`-}dN$mue1_JF&Skw$!X?7Fg4ZSC+|AsT^~JF221SSLPWT1*060r?Urr??uw zDxos*5j90w6?=Vw(U2q8nZP?sOla*5{y%f>wcZC0q_oniNwq&~Fh>`X$0`Sg4up;v z1S6Ln)!2UB*B)ctF=0cqM}e!xJeP2pbc-G{uIcXesl{VzOt???zl+sPqk{s^%+Gi5 z&MA?Obp~EuFuICZhoYDW;3gQ3`BrS+@HZnPBWKN8oPZDyk7fk+@z58{Gdub3nJr?P z5e&a~pS0QKT?B#n`|}Ql(qjcN3BQJkoTW=sf|@q8|A8NZr7NeCQb zy(o?QmJny?ec6N4{UaHM=K(AJO><8C z$r5A`I&vzw-TkYa!pj*NLhQjDTdJ*hmU2{RQ3GsZBf`7)&ei=^O~+NCTC20Iqy2VR zC($cCZwUZWn|`|7?)Y`u4(rPE62SoxRsJbBvpg*gSr9qr#>eAy{c=EW+;j~l5LX#p zqu5WcrDchu^xUd#&29>^-;g;%^^PF7zQWSKWO~b{* zZbR9vofTQEj&>ya#~ay{18<~#$&#FcA{u!oyE6xx6%+(vFo=c*@Qbpv4|>Qsu?i?Y zD}EgeErdOP-Neuq8vT{ax;|_A7#lyRNWq0d%=Z>~$srXM5QsqvmJ|R{{GwfjG&^)# zOgWAH?Y6+O=NvvK>CFwiKjXM2W#As}RyTBVBT9o+y*{WzWCo-;4( z-db9H^m8#hKUQVV0`u_K4%JoG1^7tQDh(m?P_mk@GGTBfHnu!$a2$9wMd=EFX@c~H z9kBfqCAQ?g(bzkM1TMVy7`CVRNDw!uZ%%AuqG0YrE}xd8KKc3wbRu#6GEQ|Wkm>UC zua{M`Y3;^c!JTV>*w?i6`~s^_Q%5U3Ulmx zt2Qj9)h2dlh|{Ef0WLniVC8J;{6ZvNFW~+4oUg-4P$%H7;t<{}`mL_)#UcS^3jXJUaP2iamj)= zEz$w4^bgdp!xgu-{1E@KZvV)&z`Gy|`5&GQL&W@l^g?U=0>KNoepVvmjfOWEH?DDm zOJ>Agh~J-`aJpT$Snc@q`uN z(wo4<8NSh0cy3rl#sk`Nq$9zeVINydA~psQsdq6+9)|dU>@{=wLERtZWJ$?6g^h_2 z%)c&qPAR#!KI8r1dH@&W+u9I_WAlKeew}s7Rf6|$8bG*A{3SVsZ)z~7VU%^6jg#(O zyvLBe_UvNrbs|Qn2}rP*$a9byhB23W;b0NS371T=h~doxT>>0gp7zz}N3+>tY9@?# z#~|;3==8N=>vE5P(yhVwv0n&v1Zm31MO5E_3qw$NuQOt4s-_PQeY*FTgMD?cK>zCk zP^d`kZU04QtQQd9_RHG!`NJ@2Ifg?k%wV!CC@~jgg6xDC%<_jcQH`$Kh6vAyUX7$O zBl!XM=?hFMgysHmuoFOzaeGD?&!6!c+}{6DL0S3#wE}gPy(#w#6#J%Ejm--+XO68_ zZUabaY(p1{p`5g;>*2m9kuuIB)hCQR0@D=I2Q`H;F?vbU6~yl@FFt$r>!XQUi!RPkbuorydY@Mldqg2p zs*7}-Za5N`(jQ9So_=6XlUohEqs33PfxuzYyqRNeg8*O!;Od_ZW4tg=Mj$yc1Oo>BcI21?XK^l8qhFO`>r2(TwwzZw z#%^#oyuS|Y_%6_53}F&tPeH9L@k4Exw0wj$%SW;~8oX3h9K4{$kU%;t`Bn%hUa-2C zUG9rbM;5-v9ECGLWsJhD!@r_79R`x)XCH*oppoFMov!D{r|{eGl=pNdEr(f5sfcS` zeso_kshz?$kb;W!95ZcZOds0yJ!AIVCl=AvH1ki3iuJ7}Wewrc)?!jflD3uN;KcGf zQK`sy56z7Kv0%cqZ#l0-U5TJz{0RhW15TLAF^C^yBy;??2I@CbK*>j4-Q2~9BYcyy zzx;q#D!V08*uX-+ecs~S_ErhMop&&O8{FJv`~qYP?<1c;oSj{ryzF-3S+TW)VSGr3 z^$+O3%RC2PZV1ee+tv<^o;x_rbDrh-^TQ_aeg~Q2k<+w&WV8;Ln}}YXEhg6{PZ*YV z_eL$KR6Ar4VG`Wcv2yw1&D-eK{b@qo;|)H0t%r1XlM}rzgN46eDKSr2J%70RldsZu zFZB5AU#@d$EXH&pG;vfPvk~hm@|O;5G(AJb&uK8Og(bH^#*SyKi#irNSh*F@Ek7Xu zxRv%=mBe2ut8kt?!B0mwj2bc~d3Shc74&`OAjIMn(0ROzhxG$f9LESVnw>!Mcng#k z(aY+j7=f9O!i5;IPyoREGp_F-uJ2ZvkeElq33(Aw=3w)?M{RL9Ef0*+3@;gebqw3 zjD59qYH}fLvqWR@huahNQ{t+&e~WaJA*QZsN*QZxE{R) zd0;FdU=Vz4xV5g3|Gm<#_zo9wH=BZLUY*%@N*Evq9$EP#$G_qja<>?1Y$0$qF>@}~ z)l+r3GWQzjhJJHUVaybSAo~&uRc%PqAj&Av{T>K#>JJ|@MTF~OJOJntqB;c)+>|x! zP_mo`YE0~{KQL-gc&71g2IQ_~M#jw^{3pSLY5YT&4e-J4q_1}Kfm{`c#w8;z2lt5G zZ0X;G=)}XfcdobB`(BkPt7%)%^O*1D2i4e7jYyUt;ojB;t$5%Y+&0||^(`Ha2WdK1 z-gbC`KhzZmmz$L6B~eTb$X))S`x5wuYZOOe49>?ucgt><4Y;^Y7h^U=_+c6(JGG2(x^wOH_*0ty0G0+J zgZgLe?i${eD&|u#=g{Rit>g8d=>A>U`rnF-$jK(w7n3mxE3ZS#8P_ck)$s3IyvbC` zkMr4zp!^}^dgcn^@X*VYJ%$op>KIvSMzJ`r>wHuYJAWVOPHFtrKoW0o{PQv>aN7q~ zEyg-cWt;*y9ee6*$u2J#oUUnLy|DLL!;LSmV%cK~uhVKak1LkT6RK&$H>IkubFl6l zAFIAQ!2bKvn|pz+esot__OJ@_$Q(iE|XBoq(?}jwG9J76R}j#A>=T z^M^CpIeHTH&v7x7WwN<&_Yem-`sUN*hK>QXEjyB z?^=3b;3#9f4DjC~J~Of0(__XAgUm2|yn<`-al2TF_1VU<1{pryEPWh~B$ zo9utlA2hQ8z6TWs4m9tHF29{Ro9YI#RKKp$1h z<`7?lR0oMWh@PGu5!R$TwwCjOrq_H1A!CVgR-(MF%^<)bgWkkdn>uXn{nIuVzU8tK zdeYoG)(=tz)h3QXf2B*;wsQGJmoI4Ud>)5q?(4R^^+VuZMLJ-xo{SC4fBVtY@&Ad| z877{he-*YrL;eoIXIR-+xiQ-`S(EV=f00T9qRi><5`7y@UjeLVaK;x6UWpGfR!f>y zKkj{gZOZ_*8uyb+B`j#z)y;hkd8n1*r_Ow`P5~&CkpM>9Pa^mnO;BOym5=*;1Gz27 z{d-@xv2W&_VSNv1QlU44*rvXNZb-uRA>7>Dd`EPEK{JH$|828aX?v?~aqi1NgPXAO zIOd}l%6=S{>zWgrs&4I>S{}SZ!rWa~^NWoXv&3|ELw~C zf@|hy%ghN&4`W6BK^e25Ia*yLoeHob>M$Ep47*$ZWkPE5Jp|f%Gy4kr-MvD&9VwQ7 zj>#~A|K;G?ZxG%Y!yfiJW%n&WGqsNvoqE(dZ;>yPsQkgw(7lSLiP3|e4Ltae3wB;E zZkylnDgxR3w2Dx?aaE+}w}&;loxfelP&Hl;>%NVKd{@A_TeKfc%Z>w1lx4(FWb z^Re!?+wFe4aR_cOf`T2NBzgC5-vqQ|EW*~y@Ks{lOy}CUB^Y3LIM#9_^g~()-zTL+ z6>AhMH-$(d;|vaYJGu=9Hsy0;DpHqzQiJrla9~Rt2NMA2C^`W9H2%lzgUm(cd#w%4 z*S5_f4H>-mOkqiS1@~5or{%v(M4FpQy#D(u)uR0Ct(WIO7|riC8x(cYY$+D$i7ES# z&8JO*ysq?qq>QLW@4#NYZ495}PZfR%ez&7=T+)BwI0%m+lWu2}L*@?_Ml9{6XeMnB zNmn1aSFx)|Tg_e(XBTvd*u=YTK%>#lgn5PQUQtzE=nza-W{KB{rCgN)4o6|b8|~N^ zZ_K{zk>|R&*Z4l4_P;JBiy=~PhgvaP^f?Q%JMN0{yWJYA)H>y}sl(?@>?}4O;6~)R za_Zy%9(UmQusQ;PHIU;l{+!rX=_LW&TUt?jl;rBsJuElJNJZueiLCAM=SRdvJ!%B9 zsQ&B4pgqpYQGBO)zgx{t{J$^P@$WRk@s79uyKFzxMDn*S_5={qr~PHOe%}Nk324=n zi(ecxeVmeztebFT4ZYiaCuxF5G`_7CToXViBRuS0^CM})=PKR!KA)E1m1F4a^|WY} z^b<~xX9kOOWwfI_r44B#Gk(3UH*w<0rU$>WkpcL#XGR)k!|Gym3%Yw5sSOkl|9yQD zkpCdDf9hO2AMUZ^la8}xN$+^e0LKif*)(_C)E~8gb8&^HwZ`ZafYHE1=P>2{f?5-< zu6Pjq4&p)S^75v!>MtP^@V5JFGjONr2qH^?mRk>SRXGkZ#i*PW%*NQ~adx;Wv;Q%b zfe&t5!~klQ&Q%bmJQ4^5o}TXm(q!6%SO)QicNGN8&d&BM;)s3Y2|FsE<(dPx3d7=l>Dyq+mNoSl)`!OKgt6=xZ{I856>>N59+kQlV=5-Bz z)e%e6;ic^PV_M6DKPavVSoYEN`O?W$+h{9;h-R|`HN`MjEZ6J)(@FBa8dU)IqT_+p zAEd%Re8hCIlr3=Lwd3m^;Zp_q#>=zavE3R>K33bkHs(u}SbV1L>98Le^L3s&Re=*x zI$u-ful%aNzip7|AEy_`MawXJk5@`jy3D3+Ttru9rN0%t6GCn$=<{07UYOKqDz5{6z^}03n!3k}{t6Fju(xlB;4h{4t{&NRBD8HB( zr-9FCAP11I8~g5<-jp4qt0^H`p*NW9(gr3R&jX)h#hoja@#C`&oX3xwtp3~dPUhhT z9o~MHAUOjuE0+PT%16dUiH!76Z;@U6lPZ1Qi;?%1g}_+?=(YzX@E_>vlnjFQPm$}O z@dn=J{V!EfA!yG4GWq>>45*>N->+?^qyYxvXaIV(p?e*&%n-2$Xwdt2+$zv_!u|^V6~h@nc?UI& z4R{5tMh+7cK-vl@rVl&y$(c#q;2`|&W_;9vR2-<3UtOTkpp!P_87=XTmuqC(p;D(Ny}kxt_RFnt=_0YfL4u`$XV zb{LU0(5Qdm|Gd5fX%E7dVHZWtBRiesUqQi3aBEBV{#sQPzn^J)i!SNZ7<2@{&kY;F zrv_z;WtW7c%(Pn%AtL$IRk~nf)hP zgMAE~2rosShn1j2Us=sOSGwAB=e(wQcV}XhBM5wgFN`Pdm?LwVXC zda{Ka-Z%G)|5Z0QDPKAZvKft^tc4{8z*L974tjX8>8wWN@n&urU`j}uxnI_~A0lFI zwPiM+bnuKe?pbrkh%pD_b#M1smbpsuwyeUqgC4G?sg-3I5`hAdZxYWc#QMN(0wMbY z=FuI^DP@7kai6?O0X&5h4@?ey)<*@>x%~gUbrQth=$>!?HQ1i!DPq=3=M7U3noPd* zJ_3S9%fZ4=oB4y1O)cWdVEN|C5-foM-6#GozG9kT3hw#&`4)RLq9@(&3KZdjKuwRj zo~qudfewh4zV7TBD91*x)7>i!Og0jA^+bt02BM#W^m#c-A_Hi6K^ece=}F($Ozrbn zmUA+7>gFXbpNO3drL=z#;rdopNl7I4Hak1}B`gb!3;$cJDJI?7Tp&1^dD7owX^dFs z<$$R}M@I)p>wO=u?VA%8d~w$Z9yLA=qM~MF+69Nn9vsCvqdk|IW(EB4wvHygiXlla?l3=`9nh=}I_`UI#leg#T?{jpoynome5-4n{ zHJHd`;$TC3VZ~#h>M-LNpdH4ByJNmS$5P(5gh4x;KK_n$bGO;ZkMwjLF=ooGRlJ&_ zP4NaHcj7YLXsBdN`h!%u{&Pl>nnne-&CgC3IZ9(D$<#H3e-|0p*V;*!BjG?J`$ktS z?r5ERj?iZk$1X|@-`F+%hOnZ$z0PeY?i#nRgx>2tQF?Y z&zcG_7pbYK5uP{9?*R7<;GALY11W|vXm?<|Rr+6iec`L*9F{x#nGPG9l{XSrBAg2o z$UOV}EF3Niw*WWlX%z&=bdXYw>JqQ+)dL z$^F8Qf%Hb(=XMJKcAid9<$3tfJ-2VETs{ ze{jssvBD;}6ER+p4ybWzhn#`}Pkf?Lrr_EKoo3sKX~N*Ro6c8~ZLzA94`8v!yKI30P-y25&Lzs&P`UtOtZLO<-F-3`GYT8+fcQ2ul*omn~(s zLz|NBbAm{H^iPd1YKTSp64o465suG>r-+~sAFaJ(-bd5?bC)a4CY>p`Y` z0se#ME>+rU1Xb+=wbYOE_u(CfcQLTAV12c~Dnp?}-!Cmq!$&>D-|m!Sd;5$omki(R zby82@8GG{kxhN@Z4n~;`iHVq>+{LGai(m`Yd9Mo6xQ3|QCixWjq&n*L)L^?@K$@YDfB*uCX6ZxM7r+pad=-QhK)wzrTiNX&QkDnYx{y-(u)b>H+(%B_-KZx6$aGMc{!hVA^ zRW@CUIf#h=_e<#|$-l|KFk`s>jYEQX0#&vD%CC<4ul(xY>i-p%{q?`XvV{*K7?Jk? zQI@Gl>hS-?mzX%r5KF?AH2>Jmh;YmN8S)-_5}cOn;LjF%x@y<)GfQ@(V_0ue7ORp& zgz|N3NjJ}<3UPa>re!q}GQnkb`0gT)iK!`jqm@QoXQltVb)34A?CE2K9mydsnZS*` z=-lnn;6&jSTyY}t!^TLwH`D&g4n+<;NP==UT<72EBFa=#?62U9m;8K^?OcXg*2XfI zKhTvEiB3{<|AvvU^>29|%ZGSO$4te~6$(Hl>f*UFFgQM-!TG3o7q4aNWNO&-+1p8n<8wFa@I--xe`WHq@;LFWGraocZ*Wz6 z2KS_7%zJHTH^ueKrkKk&J5?W5Iwa3ut+%34k$SdP_->@cpJF0}nR`RoT5ty57yRtI zvD_HRHBQ^-y)JDR!%8nE{TO8=L#|>p!_@W5{fwTg?euUJHY}#CcK-aV z!VF9{cFEN5MzV}RuGI#g&)P%m(?*K89SKjNCj|twZhzlcvFi*IX;zt%Px)eJdA5)h zyzmA4L7QUCvOA=nCr91Zx=Rj(VBO=+(|j( z?f_S^*nUYsn)uSVmRK~jWYo3Z`k(ueG~1K^i*<1?MpyRde#_ZM{T6ni@pau2S)?fa zV%NT__w1H_Qz7qWXL;UmBuvT}9zCx`C_cLxNXsLYgA5JPp^QIz!4r@D562-_qmQa* zU#2Sm`P=Bqulw1tQVScpQUR>bzgs8Mk~=M}Y=}}0`{a#CJ;U4PDdD@#8|-%%PNUkp zgu(;MgG%&~SV!cGzD0{7vw?a41he!<>^^NxMraZ5=++>U>uMiAZoOh_E@J-CsEKf$ zmbZ7S7IW5+gK77j=7PM2r61Afyl#(vX(H$j5tpoeQJTII*e8QQL`Ck6xuAHF#~uCS(Ds^uNb&_KK_X;Oj zc^=9C8W&%?zbr%e@$+Hu=ye8!;AxcRybs?d*~fc9f>f;=@DG-?{5J zhMS#)nKpx}vco?6%WXEq5t_L}Phnb4ROC(gklyziU4`jMUXeD(UPXY}2?OHt-d3cV z-}>Ips^N6@DY#0^)E*mq#S>21aF>L3_J2fIt;8PvcM5grZp6vrdnA~DAJ&-s<9Gac z{rYf5o8jfQDs@6P34w8oc>(@K)}p0d(XpxQ{hRT)S!D1GXrL>c-BnqfIo&ZO6MAHP zPtL;dHr-2eM_!Ei^S6t?ZZt>3B2{9m^6$c$AGx`ZcqHR=s>l2a+vv7kVRO)BcPnwF zoIRKvxvsM(aN-44PIxAY(VfndmE{EXU2(S|u1!^*lr?NyOsD^tm)o$C>-m44yJfOM!DUMs<+UjJKySK98xlYTou5A7ETU%Qo=qC#XOVu_4#mk#u!3dxVd9x`I zWY6wyBC@48rlwGsY!=%o|0Enyr?8qYo1(-SX?pIrz?6?IUGI5cv1E26eoM|;iJ%mG z&VFRnR8neBNx!PBRv<=Y?br7t(^j6o%`fK$+WU$(zaYc>+f@6wI)wgfYH#gmq zi~bHA;R4|!`Ka}Tu>09YVQ1jZ8&6chJSMN*sJk0r!pyT|A2l#ImmM$uGTlYr5`Jkb zEX-q_6E5W2n-jRILpl98{D`cZqPLH_Yu1{tD5b3Aga&0i>`Rra+R8q=1zoRQC#PlG zVP!%lB`k*7Q47c#wV5@wc%LmT8>~0>y&$8!VSYT0e^fPd{o}OhW#+_p4o>QBuHmlG zS$W~i@#!0d;7N_M<^Th@GsiD5iX82g=VJ*G&5iB452%&p9ffj*ajkJRX=b8#?Aw20 zm2tKl%a-ABbbJ3SPpW%6H#cxm#8Pcvp&r^#l;>qpZI~QM9_j91&oVJ(a6SJr;C*++P~+OP{qfC&@16^;bX`})2#5- zf$b<^-c!}gc`u`gJ&TVXtiSher=GJ~A1W%Xc^%NQ#0G8QjrS z0GgO@gG&UAziO+TpO&uLVvJA}Y+d~UrYU#7BptIou%<6&Z2=p&^sLg8QD1MUQcKxI zeKmgaP_fPKFq(H92EO;u`(C^MW#%R+>lkuuH6 zm(ZTG@=%TX2$Vg`ADbq~aE%k@?9WwE(C(aQ8HLUs-GpWvR5di(tgKHE(`D`l*pNVd z1-0$$YDO9tpmbmfTj>Qbb(7RVAvZ&yydf#RajEm%1jlR0nWa7Hs;%t5z&UC4iTO z-|g!K2m!@eQ-Skj6xl-xKuGLKQ`%EypGb<4(>dyU1FT@_pWjPTi07Q5;!s9ulZ*V? z4hKXsQeo(N*+-tOviZmfAWxIuLb=EM=Hfz3Zp09xXt7IlqBV zndEdfP%gnTYR^;#u0(}q-S{F~@44foD}SEGzI=HE1+GsWMWX9H4ktfv0JeSn&n~JS z3ctN_#+4A?tINX$_qcc|I)wDl=%c8W^>ut3By`XhiUTP0w0n%!^x|^~Go(LcyMTe7 zYc>UvWEMTa@v(9k=H>bd7c8?mcT}mH9OfbI9R<$3r%@I*UOtJ`lo`6(+E+g&(jDTY zU=gC)rkohfk7Y@!2t*q`Pw|J$Zoh(K$l_;(b|SYRAsj1!ZMwz?;?J)E%i?aA33~jE z_k4cOe^L|$j@2*n5o>uk$3?TDR!vKrttE$kFw>NNvrE~W|Hzb|srjlK@Tc$h?~lyK zpPWqDGW?#Kn?YKDs;%wucbyOS-!qy1v}uRh+AAk3psL71 zSy#5i%-)_;nA0MSfCj78Egi-7pQ$m}4{9D%ro;XHvn5hzU=i(D>v;E+1~peU6>{q` z)E@i3<=*y5k&18#m4&;Ml$mafRFYPblow!s^V`gYE@5d(=PNXV&6zORz)wxz ze?2oJW4e|^zO;Iqhz^1gu31Y($-*1)l9dR{R1*fN>VO8XdPaj?Q|&Kr z=T**tZ^HWq=`%By70q(u>1k=}VZ^(qk6$~YNb(S+l%EcJm{-B=l6%C>@}XN5`3Hlo zU;3bQk6!T&uwZ~K#}K>ALop}3Gknd>#9+PZJa84ztO`B(JpATrhK4M!>P>3j!k#is zawls@K~64zZ(}nkMFa_RM*Hlp3MV7J5I~RQ_|pKk5(79IMLh0gO~&d~Y3b9bN{{;o zd#KH2mfmTyGcXVUc_PEG297w7Utv6rr%Em(H@t*Qg8tJ;)t%%-`?{WSieTjo&=&a} z7jN%M)|rE_SmBGO#Sfl{+=~B$Rr#-DBG(Sf$*Gq;xmMAkgJeir-Az@u`jmHF&bs<3 z4W;S_2{2yGDjt0m)QTJ=Rn<0DvwebU{VD98hy+*!{RQH*^c{|5mCmO9eGUxx(h)CZ~RP7GCGu>?NiW6(B40-bM=Xt3y$3102ccrXFR zL7LY$x`beL?-3p>DG|4b`YQ8l!qLE2Cg@jD->u(2H7`FGvL)dpuBD}c3va3IRPx)N z^udg7NEm-9$3~*m^{&OtD?FBk>^X9^EBFCs$q(Xu^&Ad2+x@VI0tj5%DxQ`d8hQ>` zrWds%L9MUM^(vG_%7EK~N3b@9R!ls6d=DWToFSH+jZLqBv<7^V_@$%dzzQpO=AOrMxKDd~VS)=`~_dMX3{PupB`)#*pvvb4r6Eajg7HjSbo4M|x zmp>nM=1`QF2lt|fZt<#>tp|*S8HVFj3mz)6e*m29C}M}@F`FqWE*@A@a|3H*m3k3V z#?KPYsp#gKv?FPhakz~2O?T^g;yZl|8mKwQmKf694U4_dN?W27=}+6V4LeX_?b{Zq zy7EHPBInz3E!JjcKd|bDUjkQUt-hYy`nz7tTd~Q*wNv&|uKC1{N!@v2Ep4 zf)6+(LT@fJ1~)h$DUnfraO=P}r>!ardcC0$s7cyt(}YX9`PB|^6VRFDe_I?+KB`=Xu{$Wmh0pNmPEW`^#_$*d_}SKqj7CgNO_5|A z4G9kmTbY+H3q349iMcftU&6zF_JkB2HF9#Gho!u-1)PGjzX>XSd9by~H%ss81C2j? zRfb}N{olfot9oZ8fBEe1vo#rzd$_(S6lg&-xen3w(a`@2ApDs+huJS|m6A<^>ko73 zfI0+wN0VNWSmldn15w($-@#b!3JHn>L<)X3@C0gkhnS+qV7NX%qhoxCxs2kDbq>dM z1tMQ0ar$kB)eXZH=&<;G<~RdA{dY(q?Uvk1r9!#4AJ*nchf`};vI;|?+iYs`O4Zns z7})La?N3jqu*NUBG6J5vwGT0M4_GDzAQDB)Ve|#75{B<9F!S21Q~t^W__6O1X_H3S2#5G}Y#?5_4`;ITMD+jhx~xbO_!CgUqB# z#5rqZ-z0aM?lbt1I5CE~?d`aMUw^H)9N#&<@}9s86a?@&(1uf1Iq&mR)mDSBb=BgR z?F-bozFnalvZLe}kw_vqh`)dp<#w0tLYh^>eQ+G)b-z#z+M`y!e;SEl-j}4@&wQ_Ve2kVP9x2cf*M4< zQ$&6J8l(13cIyfCVKk1FQdqPofyP%y4yRXpSl3_BcO!Yq2Q@$EU|}AN0Hv;*Rm^hx zQ@utsEz(@4eCl}m$L z%cQv2cw)e4?zeBFGZkpOTrCvJY-f76S;2VTV%MY|-6oiwQ&UQ?i(Ec{L`Z|D~zTF+5wt;p3-HkuTWS-KZqY!ND z({j&c1j`wjj^8(*t6X>(Gyo-?IGoh(Qy&3q|FpDg-kUh!NayXdfawOGi}P`U>pyaE zKki(ms{@nGhJiBJG@lx4>p@Q>v}fxNLkrkbu=-bLdfwC1;|D*4!vb{&Q8;>fUq>pG z;W<}of9|Z^R@LafdQWko;NqcYlOra}x#Bi?nzj>qc4+@ozsh?;BEv;E@pE(e^NC`@ z!lozAzTV8Cmal1SJdT=jgt*0MGY#1e-v_6^NBXyDcBR0ijs8GQs0;p&7J%{KQ$Ia= zG#?5FG6{*S`Y|8zmw;jV0kn2Tg*m>aL3)dFr|H*`0rv(#6+P@>C*OhqLS%mL@KYJ~ zPEfptT@wT<$0(SE9&=MY|l;GR}%N>0F0aFPK_7p>1vY(&$;zr>u?I_+xIA*RO=$4KwxvkqnS^ z?fcN&7lu*d7+-6ib*!S4Z2f6Lr_&23I~r(w9NfKo?WkYCOb0Aq&Ob8Ja|XFhP0 z9kGAfZL9=t^zrexGUzxdW)5rmzxs)Tk=-Ps468Hvj~MeZ@-<_o;GtU5wNWu($c*1+ zLEwz+ketz{f`V@0wvgL(SL?XX9RIVkN%X^xizfi_oSmqGo|PlT*Gap3cz98Wf7D_e z0M9ei#t{e^f%M;1FYpPx5OSN&eLzV??%*hm*sWfqHg^Nt~8M7x4BLT{k#Pn*qeEc!3% z@vzjf?Ea*%AD@YLS2jd2*8zaWmm>LG_w8rQ{-W)%rC*8$SA4P<+8Di#BZLRQq&82S z13YufDup_itI@UlnIAY93-iO3lb3?*JP&IbIB7`b$v;9gMr&(pQIo>B$8cz~xgQ2( zn7?8;?+D-CD4!?K5St!;N;GMHcD`sB`md@gC!aXa_rDAY3Hh=+eK3G+{b^)&bGqODvW*oo~EcJ@v znoR1H#>X-4Q?LCVhT;Lmp>L9;IFA%g9cF4+X5D3d9mB0L0zFz{c}2y+XHvm0PG`RX z(p>ZIc;nV}+eTiMirmT5*u@+jP1;wud!0L zy_0~2fA$-W-&h6i0=aw$*-$yiV5dn&aA}HnUK2yRT0&7+(A6r-C4W`%aTy^_fh@a9 z!~21Za!8o#f}kPYk6Qm_RKirZ-Gx~odJwjzr^{#KJ~M*21B1DB*B?d@@>Te?^hka) zRaFzl;siotGB+diS}~9deC0xRWtl9y@%USSVY|X7lO@C}h7Svqs>Lzyv%|IC2(I-> zlyO1Obs*ow;I22U7{ZDVNU_Mhv-=7@%ZFhAlHK44iMycbK~2JpLO3_%Hp}e4bpU5| z5qRbg;8s4f48#3*-MBww@97vUShN!;DZRF#a)nSpOjXIJKZJ%Ud!C(G1!RzWwen}D z)wkSu8v9cFrEjdeE7~O4vFJKlk7%EiQ^>u9uS^5L=DMHjlx1&6NSEjAV+N5ox3j2H z^%kqlr|Z}4b`CBp+?vE#ski2DrC-1-49nl!<_ja=A8zk^22@X2=sK@~H}FC9gsm5QF#``zqPC>B%U}?HlPs=E%HE_R zY^Uei^|B=V^x3Z$K-eLM1c75^FHX_&jRA*Tr?%A{(L{+tm@a>{gYp}O;#%RPcz!u) z-T_%lZjdRn4%Ag{?8RTfx>M>_cBgbE-yeF4JZ~CWs(J>V?S_YeXS=k;x<0Due!*Yt?=Ni7c)w4N2f#ezk#&IPfOuTyH zrDV~;Jc4WAq5GS$eVMBHJ;(Fm+moTha`&;8lhUh!n!|+Xz3qKJy|ot|zzsB1hr~Yt zP7r65Fudb5up*3{++coHq;1{}KGzPcM?HCLJZa7~M%A79Iv!Wkp=5)~`thxAZ9^ND z*uc5K!aT%Eiy`*N0Z>uXrYxr?t3;A%MrKBm{vp#RSM)hh*L3cdKyT6k{@==9Oaxv7 z`2fgRkmcjVTr-==Jyc1*O|bzt37!cw2(BT9Vm|-fwdDakRT)Bs_g-vY>SJ?J*cdwtcsFPpQ6jT(ko8FUC-p|K1!g`%D!K z5aWGdcst+i0b7|=!Slk)$3)*IBtVl%+SB!5b%)!Lp9MUAlyJml{Vpd_SRySW4$lHv zktG$1thJRM%r$}vECS`QOqg`9locs61N*JY;{szwQeK}CLmxs|rj>+1y1AYt( zFc`yj8*8|Up8D0Z?-cqFl4F~i7#kR8JnDta7I;9<-7|3PeV0oUUx#zp-7g~7PW>Gi zc;2TfyU!+_#s;xoWczJ`!*=~fG&bI^ljExE6$u-0pI)b+dpv4R!Gvu(wJOi1;5h2gB&_M&AY^ zr9fSgt)hdy{_j`P>L_=@>aVso675(8MWchg?qI3v`H;=(f9zK9pS8XHbN;ugULDZ% z1MQo4^p|RUnv7_=U*gh2{vF0bGQjC&2n_5#6LuRBo$TOi1@;fA;z|;e zo>;w4voGkm8BgQT$vbCkitls&=1`0N7><{{2qy*&9`oEFu{IzP$0{uHD6y3X>}RUN z_GQBNksR+#+9}xzf<|=TEyKeDkHhiyd5F}<;xzyzy?N#ofUY`Bx3iY-EH^>3f}ah5 zDroObQ;3s2J~%iC^re#1CkSB&9dOtb2M344#^MNhV@D5wXN)*mfk?TlbdMXo!O>Vq zN%qp&RJ|ww)Ws> zyk*SwLJ$mnUWPbul?0j!q92(YHOt^r0DuMH3n03v>zve9w{so|9;p#gL#O?GB%qB( z|7AgLfb8z8CHSZfPG?ZgW!I9~+ejk1(87rNdieqG?Rl_Acio%_?*Nx)KuiFt92+RX z`0=d*B328hSx`{JUmeoW0MH9LOV-!d2T6ZS192G`*^{$00+tSE>&^P?)70`euEiF5 z**H3$1$i4j=F=9X;mz>y@aV~=(>VqB7Z!q05!Rb@6edsf_G)*E8VYe^kW2Rc&yzKyu(ACuyLg_-8zBYhq6BcW* zhU0Dl01f*rWJe1icBI$L)>ip&g3S25uu>NYWod$Lk+)qwdqPQ-8tVl)@v^0k^skcW z(0PgyA-AWqwQyQj>3##DHXHETieeJme(95?>vA1wb6)Ptm=2~CGYaBp)_%A$B_+Oq` z7X4P+9}Pu|l#~SHs3y10%4E@%)ue_k#!ifA?zykXe-X_MYmny+4j zjZb;i+~ss*vlFXbRoK=OiK+R{a}C_#nFd4Y2I=z)vdbcl63(TXO_t&n?46XBVqVgH zX}tQy3A=OVGJ3?Z?=MgFSF8`EBkNBGO>S{<0N{%;GCs_psuXjYrG_H#+O=zv6;+=; zLCz^nvU2QA4-bjfc$r`*K)o!!n_Vs)r9F8BH>3mQHB3T4Dc#%hv$C>;DFk8G!hrUB zQlC8xe+hc)Eh5|=fqW$mr~`^rHJp@WWq{BHTr>_X9bYu=WNX`cbs$SubQ9hK0LK6e z*Ak(n0K}DH^Y!`yfGM^i;a0H}55esn!5Ha5=SUn-1B+*EP<_sQ>e-qj5U}_|+DwH2 z%UU+-f$I*+$lks^hbO21A%K@SW54eHM)&R$C|RBP!7^-)QbD1ZfI!leT9*)lPvHS2 zLG+*xg~HW9zX-h|BaA}vRM4%#p&aw{t0l}DK;EHi;q4|+^I;-(whFclA~G_72WC|E4m|L`n{v$x8}r+eN1 zCM$wiEMNM7PX`j9OFiVaW_y9bwsx?MPPHDA?X@O{%QRcgq_fOSdM|1@Cxq`o&Q z9`CGJwN5y0@k2!qPzStn#Z)@LrL_~M8O4l>U51>n23ywNS<$v`Ctlw4!-o_*7aRCM z4+prCkLZURe!#1D2|@Q&lfEgSDS)bNZNCP@uMH?Gcqve;ioMVnn3`|~R?Ras8^~%{ zJXXB|i4T+|!kbFaP2)r>TieqJ%;|@o%?ld~>C(_R2UR+dIoF0q zDnF*P0J0)@s@}TKTxL)2k!{MPeV@b`wyueb=VZYUPA)YiiJdNa6Vv&T$h+R|c#WnA z3bnoYW$T8_$IaW{ngG_tNcA#B5AsK5YQ;uGHf4tu(godO!rwhpQC}xA=@sGexDf|3 zU)-r5`f=T@E_@A>JtE_~y{m^Dt~q0vHf9npN8s{G%FFe!bMDs~-7vp=gq167%9-Q! zw!f80yQW?&+c{y2Jt`<}H|b70l`*)~gwt%|(|7l39Dg$KYhWhEWme}h#tPTn$&ZaU z(CJ(4S?ZTn%qjc2Rbkt|`lv9SB^zs)o!wX9fsu+NnrVeQ_B%UiTT}3qS$`6rw_2wX zEb%VyF)tY7&r=ko57K?BF!Tdo(C^72ko*w)w#9A9QM#Y0*7-Yfba=E>eVAfeDi7_s zB#&HJ$ejLEQNaXld_}|F9!!pXVnA#HjOM(MF)?8ZB)i_wC(e^JG&EL2$!Tfe5bEq{ zknx-9I4Ss;^H42EPyK{_q@lC(LCYp(l_V}RAiuo)jXIa9_DHt&75BTMU_(Fo58%`{ z02v!}{uh{?0#`Hp$>#I5m`OAT5F5~#;n}?tBke_xy24G9^)lkN!H#=B5UaQKvdUm` zRjlhJ-Uo4j!`!n!J-2$&mFpY=y#j{Jmig+@{Ylz=O52ZCHYN$Z zTW_Di#)7mO%=)-Eg9mFN6^0>Io$FwQYLTj)b%-M;Cx>QB9d{XVCJ%uA!otJ7=4<(~ zvBE?)5}?z66KMcJkF)ol41vubWKuu^trh6TL3R;n6SSRJZbGNR#Fph`&kw3VQUJjS zM=mr^m8PY|xibJ~Zv@RHP7EED&$_L3Ax%*qymW`NS&H-`<7Iq?I%~;M&}AxVpk{5n zFwq0;5+y&dR!A>ImApaLMCm^<;+Ufll@d1P;o-rQO%CfRpx1@8(T&lY!b?@2nKlr= z`*>`%lA||v-BEA3*3(8`SNA4wxZuak!6XSY6OCIAyTV1jR;xPrrN)`Uq9VPw93W%C z-ju;wZAw2LBN~&0}(~nn!~KAskvgivixlsMP{&7UyHZzM93mKP|JWu ztM}cGM{G`Sxk;ky?{886$Lnh?ISY@oHFa_K z9tjGd4??I>c81vk!C6>ca$9`Ew8~jDcue1Sszkk*O zYyGJ|`zstMp;@Fb8`7v{&sg(F)sU7MR?oXXYb5#s(>_fo;69u!M^S7qHYa9CowH?4 zgaF`)P3Roj?CxT`Ux543x-eJc3v0=gpcCp4J2l#?_K*c zg4m#F-M%$>f79IC;hn01Q)-Ky9<4Kb^N*m52u^<9*B5bu-AzlsWqGi(y27=a#odTD z|92g5+Q_*cy5fZ9u>Ay|{cQ_N%V%k6N}JpkfS2D>@BiB=!z^WDVxOy&ct7RZn;T@Z z?`8h{s@iE{`DGQGuh9c-8XIh3_t?n|83iNXOdKxQSfqvpgsJA`D>Zv<^lTzthvRjHO<2hzH*P|sBO|RY81japl}8m5!^iTP%Hmmrod^1h zOZMiT%PH60JOjrkjM2@Nx%a_8=Qrx?ZxV%hKsR+tsyMV{aIelyH?zn@%KzlAIloTW z5|2mxT1RDDmDolR*%kyH%K$D;j>~d(Qs)X?Au5nrhk|4%VWDEHZt3;dIV?jYT^iT2 zSy50dkl9VUxCPA1=JJHQ1=f~44Qdnx`soz{hUr*G=?69k!U+?Zy(MTZ5FLD?W-!^} z_|0xu8dYt$H(@C9m?h{etdr;7)Jal6RpDp50-*l>buP`B^tBt{NU3gEa_cji#f?0A}%s&89NXTTF4?jb} z46xB!3?aU6n()kA7KF1GLPP7bIAdIXHe0Y>8&HLTVHU z_vF}&ISs4ia-cjGYt6mn=NjmIk;0M+OX;@v)l-_F%VBbaw+QchyeHECbkk;*vjOp@ zv=+i!v+y7^8m=g2AA*Kzz0;ZE4Ti8ux(wllKv!3036H+c87}0a7^9vlj7CzDV2`7awYm1_WMh{B|yB1d{oF1>#G6fb=9c)Jt5!neLwdAG*s8mYl`~#vC zIH?853ZT<#Svcdh2+Qd|7y3N`hZxc2_G@vA^m%WQzEyq8{3!ysMA7uzh)hgc0RBZ$Z^=mZCtJKW722pfKQd)!I(Z5X-^iL0d?^g#;10H4nv{#7Af}Iec1p0!0elYAD}r{`G-6RQf=JB$SEK# zZ4@Z%xI*9;0R(}91ganFpS*wHlEJ}S8V7mD({8sc=x6Vq_xJY?X`AAgl+<^^0n8w| z*89+J7t!`XbuaXHw}(^>A^Lg`LWTeE{_b#gsn?~m097CuN$EUo)rNfe`jAKQ(hml& zmJ<0@(1C$&eKyV(0F?`87O6>XUce2%e!F7(* z0jP<#;euVA@GX7wsMLy{CNmq+BX zp=M@i%AEdqEOF<>Q~w!g#q^MPLCL~sm|z(h85`~@AfN*&2&iFJR-X7eYD$#x1%p3NM11^k0;3K2s`NfRoE@Ry zG6syJs`YWtS}9ZD7To$R%!qw4D@hhKr-It!pn`=H0ct4zlbSa;{LadhM-ofUMG(9| z1q?~tm2Gxq#0(us9D~|S(MZKpvqOj+2HUHo>HTQJKaP>Se0-uUtM7ZvT1YZMsROko z7-awrKi8Lc49pySkpDwD3a40rzsMd#7w&Zhg=661@G2~f1}a)ua9!gr4Lx>npoE(P z6&siwN5sU)LBDq_=AK*ufH+XlZ{ITaZS0uoN+wB2tuj*EMLK<*oqHAsnw!Z$Yz#7$ ziA|{KSDT0YsGgO<%4m3_KGQJ{c0DN5;dD1n+${a<2Ku9vv{K`WcFWz2e-c9PvBS1W zf`S4buH42?74PTZL@eXI{2|^5n$&!3?bLhv8ansJ$_wUa~oI19@=w6#FkML-Y@E3UXkY;eNrPlXmB80UuLjQRA zq;s=1SZI)2MmHJ!uEN>NccjZR7hdRpqqiCO(7FE>Gw(xQ!xFM|@=rqRrIc==!3Mlt zkd>*S0j?oeOh-jL)qWQ>X7`#ytUB)Fj&zCsy!V9jwPcvxFcrB%UyTS8#Z9%8Coz4z zc4)r|Aua==1J2-B%xtx7uLfi{CCY7@OoFA$(N~U`vq2HtY=~FxBH$(S$3bndd%B9A5%RILWm2i zo{nWn-6b>+NM?VK=uiqtJIVqEVSjk#%4MGTHk>U) zXcq8!%_u@u^m`aH79?r~n4{iQ%rH+Ue`FY2o$7#27VYEaiNGRv!8 zS^s7sWL2#4&#NR7`zx|aUHJg|HHn~B$^)J z-O^eSO}__v>KvkRIWeLkw5l%44yV|d%82sHhI59z9%cCx?vURa_U#)tEm8dPRQ&>7 zvm2GupRcMjQMflHo)y2JdD^@uvck@;xZ60_Dnpc(E47W!n{U0W>f@coH0f;ZQu(WS zz9&Y7DBQ?PuG*Tk5Yt~EF5^5^oS_@N)@jy^CF5HU(ruODTNfrewed1xJo3wEdmN?3 zbIY}bbraRaTY^9vfWna$Ywr+79e;o9tPu70XkF%W!B@ZI*P)yvk5~ zmzybVyFgKam7!$Igvq*e86S@cLs50?;NINZ8$&(?Ps6%s$uT++#IKeMrhO?->hX?D z5xC0mYgfac9j6J{?KhAecw76=aCc>6Nq2I*wg14aW+yaH!o-ueSo-$&L=ZsoSZ-Hn zM&h0nh&m$NqkBZp`00@+mC}pjd+S_R^9A7KGQsP%xs;%igyKxK^Q8OIv}g z?Zrt<3VkwWV4;8VWlT6UrFb=_y8>9NrSwTR+Syvr8B3NOzrGvigCAaD#8TpEVUMPxqf3bj!+HJA@@(EDcD7FJv^F;Xi|U-04Hr>p$kaaTv=UZjczdk%L78?cGg70 zQ#kEB%Ii~-(h7@4(EQNPP@{lm+EyDq=lxixEp)KlGc~0M$`U}39ZTk{d6P1K*-qS2 z>WbpJuMfNJcc{>eC;mxO_EhB#y$edudhiL`+TI3vAf7HJslSms(QR`n+NN{~9$aLEr_HU2y(|^iH^a6;kyk{1t;@EgqBgfDW;q(Sb{0 zhszGtw#4o%LJrIg4GoYrE4D8HmQzW*H08_hH(%>=J^enX(Qu`gHF_xxs0s*Nux?EA zH|dlnzIf_frCy?xG94B+c+7b-oT=>2Ml%)Jul;C_`j14g_#juc7X{1_PSUWwtgXUS z!Wl}ZO&HwMw~Bkwq3<(!!gIdzLNtfyM-Eyi#U@@E$BF<+t!U1(SCvgHM0Jw%wnOkr z`cI>U&s@(x2SJsew6FAgvy#CS%1*tRs(urCn0)?Md+!+*<<_)`wmE@_sJMxW5(J5j zlEE#8O%PBdCy}I*bEb7G!2l@HR+1n&=iDF?B~nx;=Z?)N+A%zMq8Z+^@* zbIrM?e+bgu&$FJjYE|7;byuzK`~}bP84ZhXurqS@iVPsf;ATzzV^8J@UiPt?8o5`c z)S+pxYp|i=BveFo>sRS74i$Iite?-?HJ+hLyc0FGLIa173`Mxywv<&oVpXy&LGv- zEm}GDzT@u2A6;8Vl{N!6D+;eM;MC$ z=JxExz$Cy)8{DA>RR)o@ECk&rF&syR1Ilx$E1~Pxx%V|U5|syEXTIzK#~tx?hMe)9 zj{Q5H#9?3XJ(O9Wswe|?g-x{k_8Zqp!t$_rAIF*F7h@Y?4;TEDh1lZyP8m)Q4)cKc zP#Owi15}(waFA?bM&heml{N=w?8L}b-=4!6MoDAFnH-_={TXK-a-D-RI4D}+HShsP zkGI{?{^LC;AY6e1re4glX+z_wo}PpXX%P`$DCoMD2>uqvIu?br9kPvo z1etWCyBF0;ZYmM_)5%IAOTti@%_2A zno+uZ8>;PO6o~`^!@;Lm#e@W!H*j`Kn7KYj@Y>e5n=FBF7So(7EvwDauijbkf4JVo zVrb9&WS#W>5d30*6F~#+6GPLe_eT=3jB!TsJ*pngP zLEfpt%T%$vUsfdi_uD6+J4{#s=lV#JLGsAYK+*nF zS(yg1FVsJHV7Y;$EMff6RGNYU&ZegHeWchd-}lq7y}Fv_vJi` z7v&+SAUQ7N$Ns&>I~95`@1;?9H&TH#(LH*U3=f=jyE`ZH2Tq08wXac8_n;Y-Zr>ys^58&uXOi~N#8^Roa&^H+uUuxUOEt{kQA$25 z+kh_Q50=UV!1BWhZ}7Z5EA*hFd^U8N7PtzqSgdWCdI#tsxI-XPw!LyL0Allj_sc zQGTtLtz@n5NPL=ct)JO2KmA3Rd-w%N59Ck4?J<1j0LFZ&Ovcn{#^C1HZeOvtbwIi{ zAMIW);d1+QV}8KU43fTf0RZu3m9wCn6v}Jo2Y*Gc4S^f}#MQN5g-_{cdwJg63uxXm zwTl54)8M(w)D%wr)LPsJ$+PhzGr>g{zGS{-6E*H#sLzB@9cKg}heTmqVZ z33?RF&d=v;Ue(do&I$Q6Sl%GnswT-&$jqSurbQXlQ9dtZ^F&1er!db<=LXjs>t?zG zMkQ>}eDY3Ao~0bi7LT%79uiA0FCWhN`&B2mFQlR&DlT&UNFamyrCXtDbc^cN0+}tN zd2GJJ+!vivdw!)V7N>vU%4C>wjOVUUpdKu5jVN$Ef3Z|3PscVzn`NuS>M5 z7)SjCPQ9AO$ zK6~|LVZlsm^nq^a+|TsA(|Rro-pNBU!Gl%{&>x5iXgCvQYCtWLU|r2!yV0v_s`+D@+1f(^jgdq z9x4x06=tyPD|_6%4s|$J&Ygs&j-Wwo?lMA(<>~&P*`K1xP!(*x-Yu)3SYVFp_sbq~ zlFA?YTMN7^H6lYgU_+-PS4wxv7N>(6fLgF}MUeIH;XU~&JJ;rkAH(X8?XGZODnPTI zp*qT32f&|KOWi-kBpyOvPv^Ec!iPaiT52p@WMo9|;X6B3!$Z-F5ZvhRap(P=KE50~ z0Q>h=XP)Kx?<~yBmcNGng02~Io740(NX6|he(2o-ninz=qic1ng=HMa@~huW0};q} z3A?pD5f~RAA3v5#>7(U2&_Gu}+}i3tZH~?yhaAJVloaV}C7MU7C5P@RzA5S9*M<~g zn(K)kDAHC_6BHJnEb`aXx&tjAAcmj9_3j(}=VHm4H^lW9%-*+u`-C3RE z1=S{Pk5=*%h6e_;RYwE=p^^FZ)DoGrK~=R%ZhTmp_hCz7|NAl!dIUe`1Bb&b$~9qH zO{giAse#ANMJfQ;IG>f1L3*9k=-TNNEW#mb!Nc3!+Nz_DJ&=}qtmpROzh7Wij7G> zEYe0)H$2{^UhA8RCUL6opV+70GjbW3Fz7g|na$7zIL@x_mR@b@aajqqMZ277yj)Y~9=#pq#5%_cS1Rh}LCn7(!VU zc=3Rw?yzO2tACFrA_W@L2PRaIN@L`;{u9>4)GmhmB2_G4d!YV@?(fDcgbSe2ujS(p z-hG&I6!)*8f#CPAisdyyPeGVy2-3Dg&&zOqw-eAq6H~U?p)d>jOFFu4Z%-1T7IkVl=-Ze^adHd-9&7?v}&1unbe<#+v{TN`=p)ZUec@{ z7E3KW5YTnI+phnU_NpFdAmyjdaSxrE3Ce2N#7zUQdFsQs^zm2qn0AVR!my0M4u9B2 z9_>tu7=EiKN&K6C_ph6({NGfLLuB(C2@+J$sU$#kKkaV0%m(tsM&)utSFigoeh_xc zuH?rUSUY{cu=-YpTz6v$-{=@p;Pb_o=?j4Rqp9%Rx?Oge=Xic(WXo>(%#z2%A|y$t zmn(LzZ0}dz-u%*jV|6`gz7$@iuPEw0QPr@B2^H?Wzl zF;JJvM8@Vl%v!)pOb7lV93aSq7(n}Vyg%UX`E{*J=S~_vdzSQVL(72D&a+B0Ga@KS z+?FZxR;bvgWVwtPSVjjTEs>H2w|okGZxEsMnT<`z9l62!qJ-!ksh8nzEfmAq$)eR| z%KK5@{lt<)g~{m&3F((+%9I8|K1P&y+DW&4h&4Z7Mm1~V9VVAgYGmFdwfDqBw2F3S zB?Ui1KBlFHCr)5^ucu{X9dI62)3|fX@IszPj9fxX@91H99UXB~aq%Zj4wfBnlbbF! zZ}0RNPfwKW8P?~~DVk;72;Mw|eKu;8kWMEfc;fv1dFRDm;nhEDcrUJc~FY z5J=wtvt=yGePwxse4z11ol)(l@|hv~5r_?}jChU^7aYaim5i<2y@>6fbK!qq8isX_}OJUa?up*m5D8_N4K zZB8eN!9$5IGWB`;#=5EM>GHk&Wekf!>l0ok1yf3y-DxXd|UKpEl~;@9YS%W7qU1$u%&Z zG<(lZy5`V*#oD+bBgipm=_+f(DeKhlk{s83xikhsuk-L7;^B+r8ZpbByhv3LIi7uv zwQ$@B8{%+*rM0RuF2mBy!gb-910mwqb;eo2a7N`d(f5H1YJp`BotkP|wTg|j_V&*4 zD+eq+nc@~v%JipkQw|;0H*0-cWb0G; zD}lH6@=)%#!x=}~P4G$cpEL*#jY8K3u9avmZr@1V6^<-;rDvRqC zPwMmBUi{bf)%QwxBooNxG$9g&Jf0T4nf=UxxNZI2?FOl3V-o9T)H~Ml0rcoXUInpM zzGu#w{G;LiDU2DfR?gL2i!6LxO~uAdtD%d)*YqzaKp;@Vkac|!JNqC%4zp(FBQFyj zQmR~yZRL=Yc)c&}d^KpRq@)BI7^hoc4c8`kohkCQyZzWi12gYdle!-xnl@8+1&d8} zB`ZkJrU|Kuihp7FyeuEDv*_=Ma}9ZY+aGa1g<0WfD33m0f%mUEIV9~O8$;7bpJUP})Hvcg6X~F3Zf-7DbhB;!DI!0H8+Ts^%%$8P@mn_HjI(xB*i5&2 zn_sBUBIA~ycvW+^Jyj}uH;@5&XUIubZ*R6c%0UZ1ANDLGHQ+A#1@ia$4_SVltdh=5 zvk!+*dDkVO{qR^RJmrL%d7gkG&DESXY&whZv1zVADU-|s+8+c^mX$k|& z9Yoco%Vm~J=Q=i}bwknWIG(K0^1-tG z!+_?_=Dx!Yxs{3QkH&6Q4yxVz;{k`t+dDLam)+}Ljcm$#DU%{Jh2w61Sx7;~sGXx( z7X7Kn3p(D|t!+E#oXTL@)>V*C2r^nNH*iR7WO1Lfk=z}3w;iN*oD(NEuU<3LSAAgN zHX(u?yji~X6)xrRS#9gd{p&^Ru?_}>!z%PV(IWHavG$x7}N8KYs&|Nc=%^870 zb=)Ux&mzJc@VXppUnrnk3RlD05;mh6u2;aoXXm6s`6^(WEsC~%?XTN1cQP9}Mc&koqw|t>F37JxUmc6+jo6^mW-PlW)uF+rjisq6GJnCkVIV^)lrr1xEEUlAq&Z0Rd zVOD4OY_NH4e5=vAZg2ilQ<+k*eY_1NG)>hbg4=Tm)Yu)MSnax-59B?^njG?U(#$cI zgLC)FC+&YgNgl$BeF(`xNLj7zE@Xxe6CtmGu0R)B4Ksj)#(uf&NwhL|w%t^NgUow+ z{s4)UvfM?t#&CY<^My;w%v26kFl2o5z5LI03F)2NyyJ?b*XcTirYy=B&%)(m+ZV#U zYIQv=G@XM^Otb#p&Ga>}%y;U3pl2u}%M-BB=uso4MX9oF&+kL-+qYKAr)o*2z4x)i zTvD{yM_l;u{vES=_v=QoF-LA$rEBMNLyW~}xWsV|#%7uAx-s441{*y4$&bJN{PN81 ztY2P)Fa)Fu!l9oEdcf3yUKy9wCruHq37HSaq>rt)NURu3w{a2&3oLakM#{uCet5vm+q=8ZGm2O- zIk;jnNK32?gWFzzV(-?~Pexe!t(S^5rmRdD&U>up2dH39n>s5ffde z`&*ruuk}0G>p5C@#0x)p=jXC0bGk0}k9@4mYNOONzvm12-Ie%Wy`XDQ`;l?ww;+oK zO{go4t$B_u&mjtn;pA2H+{wE20W!L=#pYUEf)1a*KCW-Fin<9NFjeRDh?Q1-B=Ne#p#K zHWGte?IR|E3xpsYP^@dnA_~$6*#8KnzuVg$Jm&=K&+97vWuYZcNU7(VSNesD)29ra z>y37P_6K)N<<4{7BW4Gi5jNzN>q&QtH=f1R-PElwRxer_-zW-ld`CT%kB4cupN=>& z7KC?w?dkNF*No*r-Zeex5SGud8qnt>plPM)$f*l=Kr`0Un;!C%PVO4WH}Aw?b{Y-f z-7&ptV1i1Ki5eBV-F|+Xr-~t+2s&H2t_0+#$t=dsv|CxRHNHw9DL$JcatpiJDsSqr zW%hk#EVPVxA%K`2e)_)hO7iF4$H6Uxfq@-E@!-YLPjuMzDVQ{MA+dXhwNaBjz<7fw z#})Ju+$v+u9m8!pT4aAoI7jVIyF);i9UT!wV^L$;8Wp+Y3VU)5WNfoE($7yBv)h?% zjmLSh%ED%>*94wW-^wm6EyN40p|YJ?R5m37jEH81m#19uDEJW2P~?S5QOlD?(njqi z%(-&%{@W&2$G5P_?!qXWEd7IX79M2$L2q3Vz0}$sJt=FwM)hfoFvQK$i0I&UdVFID z%Q@odYh9j;#@Z~{Jq@b@O~Y+_J!pSv99@G!oeSg{-?Zgc*Ff`~W)YLZMUAMMn04If zRikn7NYs_YP0mcxY}*CNeAkdJ$2{H@9Nw33oD)o|R*M$3w+NCE58B8j_0oM)UYqx!59$%vEygwquuQa>=ArO4i;p z1WL`!`)33;5RP$sP_vV`nPiLYOIM}q2`5{Z#%;IGg&g3ZoNuK{oy?}L`*DR+$i(<< zSnZe1zQ;LA+26_t!CLofrrv;rZLbAlm>{)F_PTJf2^?>5jvX${^A-+0S|@qNv~q@W z?^y)xxyN9~$k(VSL3L4k`-u9`PWZg1u{ULy4J#49LhWtXrs{k%@m1GGY2fMIfe#mV z++EmL%DpE%0gM*8HK>SYdi@6%;LWq=X>w-4<^5X^OQPwQqoTsPqgOOW%i8=0)J`9G za{an~nJD__oNnp(JD!#uX;!z{Z!WXnd^`4;LRnr^3E5(#p5iFMCS3gLyP^yOCu#*4rP}RP~qJ=MR$?)3kcdfvSqXeA`}c z>$C1dL0i&FS3JAGpci@Uqp1t^UE7bMAKOa?j5@N4+iuN}kcT20bCZqoWv+>+K??(hZxL<^WA*oLT+Bj+(qq$j&m=QuSD&AGW2SkHt&8c%zh0r0p2cv<4dC27ov8H}geo$CX7kRB zfZxqPiG?oBJ)TWbejFZIpO?S!^I`c}t@S#GwZfztjLn4>UHQjCs^5x!EImokm6Yz3 zF&1rD${o7d*xWF;DE7%~P)`G$VUhe~OgxTvF1yx7b_*e$_#J6oKy{p|J?iy4 z(wWH|H*phpzpDL7KHN;O7OywDU2l~XWVY#W)PMX0WWU{|!YThws zSRxj-{6+2H(OOU|*Ue5(=O^k}7W||j$Z;1P((Bbhd_msbq7~dW^F=z(m0DQGkYq@U zx$RI{HO(?pQCnNR6ythAc{IZG3Rekgsp@xu=Cf)Z70bOJ$2xa-dNHQ z88j>NsSDTrz{YEqI6Uv)I;NxFa>`jbaJpnZ2hDtvQfZNq%2%AyA66JpyF?D*qV5HZ zsz}!l!1nryPOt$@A;QCZ+fnZt@`6?~Rs-8#HOwPw2TY}oU4Hhr!)Iz1nQtdcM&((*t_HL6`AtJ^3%}?O*?lSvhflG$ z-X9aZc>Mz}$W>ya+R2~MPvx-kW7&VT)Qs!jnri8lCj~T{r(An(A>H+;buz`^y=j-J zDf?qPT%mAJ^;bRC(57cx>dSiy0nN|Km5#bAvE__8tre>$8|&6&)_mW~wkfSy;jI^^ z*%#IcxY@Bj#F*F{CWVtd(ekb_lBBxleQUjpUL+Y0_J4V&Jo$X4ss&djc^v;x?k(j> zG&2I1KKlXpr^f zPm8{+%j#*GpS;?J;BVJ;i?WP|f!*O;Nxo_%hdZKV#rXEBBI0{#6AC>^gq(@KBHM|V zo-&B{)I`2%(f2Wf1c*1$3%Q7qcR)fW|Me*=K?MW zGYoPin9Tw1A#PWFT4Mc;iCCPIM~VKL*U7q|!CnwgOOlSqj93rX6r31 ziT{58QSqZtnFy(Cxh(@a{FyG-5s$&%>&~4DdTOr6d)mAj+M4w{QIeF`dM@9FcEUf{ z=jn64mg0nu*;m?I3J`}xZ-71tmiC!^m+F1Fe-K~9$D99vWdgQHQ`1Mg74IwMb_1aL z>z0&5a5!H(ePB3sfrBTTy*@`?8&#$uxbIm<=zk?F$dCMVADA&_alSJrrdBWR?Xy0B zFLSk@c2*x-nfM_s5kiU#AHwXcPa)1lPzU+;)Ur%hPMg4EtDr4?XY*$;0Rn^d> z0^CUO#9{5qI-TyK&!QRpZqDS)Y?c!<-z*0UYM@5YXrU+lr`1_^zN>h?K;wITb@kwg z-3KT_t7p05;Y6Z~T+7wF-y&}ib!r&4y59;pb})M)t$6;E$awAC{_&&I`Xd+$*=3_y z>LKAKHsZ0Cp0Q~&ObC4H)pzQ9(9DyIVGLGjV|NRv@ zpUr|oeYm4H*s>i%d^}x%$Zn!%OICpfc+hw5G?}No?Ol!*8(#~x|JQ{1NY(z3By@}+ zem&y0>leAZnQ9eJgcdFNl(@{dOc%if#^%o4G41yh(PIF(5gEG1VFeMT-<}4blcJg0 zWRqU8!Mf9^mmX)pj=Rg92}T_LB)2T1UzeL;nWDQdE$H@d%PT7axCL}#Sf5jMDG6d; zdt-}oSfg+*s-ISvSTu|0TDhNJF2jrSzSbyI8!Njn%#401#uV9!3{{U)0GlRdGGoH- zIWAj}wtUx+n1`Pq_?-gdOHz(z_Q>-+u--GR9z2M8+5W`m0*d}S0R4cJWA5YoW~Yr! z&$F|8)Ar|7O%ht7=&=2Iay$C5Hq#x5ydXY2;;1XS^Z+hFhy6#;WZwgz7yAUSexi+& z)+5ux(T4YkraTsLH|($`;wXZtY<+%Q&BX#j0{)g2`vQ>%!kFsD?W(GbBAHsNCN%1^ z6_z!Ml!~>?V5LQy+76EX-3>NIN1`=k7*QigOv5u(Cl;b5V2N2kwm8|8d{rQnfP^3+ zEL8tSi#Y7?+%1~dni&b^G%d~~Yq)hx!6$6VUxw#$u71>VUzlo#aU;ltBj%beXaBvk zAEjVj9U?)SBmNw`Yf>5X3#Nx7BTDEp8{37O2InMBZ=R;0E?l%AXoJikZj!W5MjR(; zsaq{sK0xoR>G@1F1G*E162+XzLv3poL1aV_01VoGhQ>^pd(ez~4RKQ;9)(7iA(4=9 z0#kDu(ZBWPcM9Y#Ea7>g_V-|4ju$Y_cWB8W$_hT#JVY@o4X6fz`m$dJC=m%c)N166 zJzy^{CpfVNBHpx>nO$>H5XveEku}7dD6CV+zd&JlRS$WtxB9c z^YWDT#P`mM`I3MrWVfPCY-tlS{raMpjiy#Qb;HS9TAH_=yE#+P=wJvW!*SkNYQrGG z^BEhn?^i-M_r9pfWXIZaoNT0~JC#wEboFIwH9(DoKzC#aLJhZ%1xEa3=6ycJxam;x zWZ%|5aZfrm8q=Q$pt>?3fa~~p3>`p-GMd48J8WX4S8R8zwXDU zt(Y$m0gu8*MqXAcYqndUs)LXl*2|zC17W1l5dMG!0EJkgM!(Jj+GC3OR~6mkM#Z=m zY1Nh3>oPJ-brX~sP$*U!&>4K98dB@`5Gk|9Oq6UEOjW4TLol*~W0f{hVe{xbfBt5P z!c&OjHHjC>w2OWBnSlA=>io3_yC+2Wg>ug|DwmUtjT++wPH`icoE&uM1zp$nm*rLW z=94A9PP`sb#Tt=*ZTQOfAkIMI$-ndM7S5$i_6>`c-z+F|6yAs!0-Uy~3BH-gH2jly z>@cd*Rk{8$s#s%4Hd(h=S4j35*hw_I>!B?l`KoWowjAD{{9@bQDV;c;T@IEU(Jcyc8Vt0U-$gf?r06B_M+Jdu)pG*;Cp=r!pO1iTZDkrHS(OOmAjqj$ zKZDrG6qdzbX{tjaX)5e>%gFc%oNS%1(~2|Ps;9o9P!aePzDSH2-d(DWZTFtjbIX^y zsSNb0oCZuQmXsfwfrt4nf+7DPZ!LgAt*?-Y_&^c7hkf-R_J+B-n+2cGsE&o!(_u>wqMsIVr9Yo!;h|xDjp#%m%6hM*xxAgmYkTG}_ zv%y!u0o8!$1-vHT{dXCM|4qLfYP(WS`I^mgsM2-JCXgr#R!}l2z|YT??#ixGz?urG zR;7E}FPJr8iwou=>6YW;yVc2oY`aSSTbig^rS5vaB!-2D@RrJ}`Puh=XG{;U+TZqs zs|>ZB17rE0+SLC|r|tg?`~NT7BbjC40LmkRS+~F;%@;L!X9E4T*6lc09BTAGsPEsG zdb91IXyELpLsvKZ4xwhF|M(xMBz})Yz(Wl)EZ8H9;%*~0hh?)IL{%QCq57`^(tjV? zzZ91ImL?7A<*D99pSSJ%$HHq8GfKEPx<9;6kTdgIViL7u3jh;qP)0V)Bkv9OInKrj zGF=0$$O#tg-Y|S=trg>?24GLldO_Mrh~UVojEMpZ`DLE7Hf{H9_ERrC@cbDu1ajdK z9TciE25$Qyh1CluW)&$R#uue>{#ZbS-wa-IV1+8p_-L=0S$8dXOWQKU<`0PmluOGl zIrdcdPJ?FkhET`Dje%ZM zK3y-yoLGEO2u3UWrRtCXcaXqBr`IO~EtgDWB-dN{aW_AD#m`?nq%8NA0$Uuqa% z2#k*wJ1iiGJXiqp3Zp<%%Hy*ym?cK&3tJ+Yav3=SI{vCtKRZ1vWY!_pkB4tEdEza^ zI7tk@ioJ$VC=bcmZ$~Qq_BNso&eJO=y{pp~mwchYH3W0M9Zl(HMgZIXPHQGZRq3GhQ&_#td3U;%eYi1(3Q!ru5CN-2@ym1438>%lEgJlyJK#!}eW zc5(f&7PKf7-z``_pL8+}AGD%^*>_Vfh_(>vZ&lGHi&VU$9&~?NvnM`fg+kf9dT4jN zGRt#5mTJE{ho9X{tmE*h2 z3M5CuZr}*{SU9ejS(SApl#ent^VO(kuf)Zrv$TER+E*!XiO4uU79U>2O6kOH56V3M zQ1Zog4YHASKNVWvSbHxJ&0?~zzH>LU>>HtTmh8tCFRlK}HEO7txWX0-F39#=2A--2 zZ(Pb)K&++??=^0?N!gAjm;`9pYMB+=wM@F4lQ(TRufSrzE?VGW;^tv`&$6TpzSy+J zUr5Ga7M|&%9dB>)V>T^R^)fVWYg`64EaxQ4n{qF?aw~$a4Xl)UAd%eC@uFVO=|$S2=NPh4!zc}0wwPPTHozB zu8lwn$df`&k6R1oS5hd%G)BlhgtP*>7UsD+EK^ara1DeNri}l+uSoe<*S)DSm~}x* z2og`>FGeoiFN{s zdd?zBhBB=Dz47ZpiV*-zb(P0ltRX^Lejp_SA*T?t)J#*pu13R zHtcY8NnoU6oraYJtZ=_|%wr4qGV*RmG(CADY8Ld$K0%oQ=C?oczI^THrhwmD9G2YJ z^meHEWW^Lurx9eTCClc9o2atJ`!!{Tx4tSKcf~&luSMYbgo>4qX3kPIv$9hyY=$`_ zz|ECw1<;uXZk@Ql?C**Lc>hiP}62yy2)+>$2q8;X0)RbQa{` z9+;W1|L6dJ$Jq4ngRerDqe$J@9GvHHokD>agOMDQmy6S;XD&PJva_muEYU}$$(D(t z77NP7TR@<>qt~8R#A|?!TBe}UFO1f$!#Q8+*`6@Y&cqZ*OQYiou5Qckt!^~W5j2`I z6&g9MvFK|^Ks?GVK5SiwQvxa;9CPIB~J)yJ<1l z+^zO=N2>{ieaEPcWy{H*_sxkMlW!mg@yOkaI9(W2$v^JUn)(CTIg1O@`s;fmLS~Ql zCf|1=`_F+S*P3&ie}!bz=BZfh;vrX&?bne-3&W#B)Dh_Rzs%;(r3iPWTy6TIsfQ^0 zi-e280$jGwm$v_0*&rL>q6x_*rt@#MNBB#wjBhrjS83^9xzVR-1y9c#$H*m_Iw?rq z8!mk#-Xd=IcD+T)D`c5nT;@#HK%7krwhA#Fng#V9*~-eL&)T%Cr@qu5LfIG!9bb#M1gaH+KJun7&l6gA_xbUGe*5m;?D``_L*x+<5C1ur0qkS9cTxB% zLH5h)wkM`}?Kw>3Z$*>3t>wP}tK4SnEHaN3E+mJx4g-AZxJv3;Ve>E}hP3g-#HZdV zm`qhO=4)05cWn9)`F+QAOzrR$Hm~)X=h+jttW7UGwsWkmvddqgtdl?AoZ9T(3c6%g z#QleYP!u9`di#^i8m2vz6$)tI;gQg9ylDBVw} zsBjdfv(uxb4`+i?ncy^t2pj1!z^6z=Eq;JJ1@f%O2qxw$cGRXXBKtvzaFW0YLgV zP`1K>N~dWKcF(ei|Dk-U)i^x0s}bFO)h6Q zoZLy$&E5U+VUrB{%wv6@v{Lug8Yecs)b!;B4~xs_0SMZCXo~ivEFo}de>_;VfzTm; zb;_6awXYT+g<1qGF#$e7(Aj;@rbz=^JQP+->mwNL7Z|;o&P>c1fFj(3d*yA&4jQKH zwZs_qAnFD|C;-r67Q1P8TwIsT(F(gy$elZUZV4y{^b-qA7bRup#LXWeOJ8cJ$ZV z?b&MVsRbp7k|L^nzYO-%UOy4vgGRoMfW3!>00V8wg-&(1ogJL_lEz^WYzV-}~Qmj{vq#YQn<*b}~>i5&t9nhkpP+`ZS-8 zIQR_^PF%r$`!6Eb|KTXa`d+BK_`<`qQV0?CTBlo+Qi0 z|J489{)|xKpwcsRuh4d)me$f4n7G--^+69Arv8AwbArHteu%e<54)}v#1dBxoWeL@ zRs(moW1<*RaDt3R*~RuVwQ$r@=)SI+nxlFYBkW@h-KjIsN%IvU_suBs?-X?|USSVqiks89I- zhmtl~!qMXaKw1!F0EOit38{yRZODzo(%9pjrsVfeDy;45;9%@cPB1|E9^{G%o7qLe z8AT!4P~NDXu6-UJY0eY*h1RU$ngnn}fFXf3AxrgCdD4f?Ar$3-fdPcUz}ySZY6S1L zLs4^%*B#>mHLD7_h1i-KW4I|PUoKmi@? zZf~cB@Od|k9N{?7Wn71g7g*z?_>g2MkPwTFCF(8f-TeLiv8zxhwEPZ8VGgba1_nUt z^lbA|Mu?HmI}>1X-Xr`rb8`T32rCXg0cAf3IS%TkYh-Dp9y>82#A2we;mBRtTIfyu z(Fz1)`u`Up6#C%SARJMkSVE_nvp`G32Gv3rg@nQWEJIl!rJ3B0_3`n6BguG#7Sc4c z*>YQe$Rl6yP`6{7h@lV>l62TpjyiNPKJR&F$BgwQ9`&@pRyqd;7%CF%`z8TpoQY!`u+8@awf_>1MkSjh8!o?vXYi z`)kM=_)F|2K~qq`oJiT9*Qj8CqR+XFj*$^$nviSeEF3~r7IOeuoJ~o@n?EA*aZ=I! zE|`GvNaqnih5Q^-#2hdVJuo%7-FmZ9mg@SJYKVxt!p7LcRE z$QcG{6?LnLnB7Dmo~o@mootShlGv~x6NIv9=cZ_xib-iCQ&6H5n-!9inwmOkdw$sr zzG(8gTHehAp>L3#$2QK=+OCfND4Gh>+0_FZ({ckQ+bBbHuUIAY)Xr}3W?l&p4Ld(( z2VvDg6r-UenK4j`(D!kL*k=@2Gg9u}TIIL?0FaGe6Wm@kDy$FZ>0Vz_lN%V6Qwj3* zJ@@Z-3P(=$is|gSQz6aNe3{wKhabg3Z)-u|X~GJ|r46mQj(O8}v@P_TMf=yhr#Ex+ zqQ0qP(GnqMLNZb7kTt&qQoXjA+iGgXv;PO`<&Sjza<|I&=guQrGEKjH_j&+V#cyc$ z_mNWw$!)o8qh+%ISSP6#+mD76y`~yM+Xn`|><=Llrk?f-Dm5a<5b=BpdxOk}&_)oE z3ggrJQe2*%&btf^xD1zavyykA)C1XWORQmU9(y-0i$I~lR}t%g3Q}o>f;A6S`BC!^ zthNcQ>SHCLL)HRtZ9inkyuue)4kEhX$_O8-vaY^c!+@C|xBb+ESc*^Q>e7Z`Bft97 z8+Zt2;CAQj1*$wC>3)Vb{=ryqDoJg8tJfe9iknRt8u<0gij2!)QtDs}b!<(yMn^wC zTLJnGDhZlD7(vMa*3oC8(O};WAtD3GZS&$|3>R|>N|7kUXkq=koWVnCO2x*jQt(jbdI|$hjl0aMR!Uc zXoKl@?@*}6rqIaPw)25V4bnO<%;S~YHy^E)3d(+x_nS{gCT;KXd;}?CiEofhRWyj5YU0YJfYg8e?fi0^zJ`A3{l^V za>BqSzUG^{?dKcMJHCHLn<>@bOljR0K-e3jdHfz@aID93o6tAfy}I@f$_NAIb8f*L z58lBES4B|7E?-~>+y!{ebkXBhy|*VhWw84mlfOQ_` Date: Tue, 24 Jan 2017 13:23:15 -0800 Subject: [PATCH 167/210] Add files via upload --- .../images/atp-add-intune-policy.png | Bin 0 -> 67440 bytes 1 file changed, 0 insertions(+), 0 deletions(-) create mode 100644 windows/keep-secure/images/atp-add-intune-policy.png diff --git a/windows/keep-secure/images/atp-add-intune-policy.png b/windows/keep-secure/images/atp-add-intune-policy.png new file mode 100644 index 0000000000000000000000000000000000000000..61a47e9f37f7acdfca3f3ef052c3796a3b18c09b GIT binary patch literal 67440 zcmb@ubyQbf&^G*|yHh$8lm_W;6hT6|ySt?uloFNh?(XhTx{+?AK~nPFc;C0rv%WvS z^_;Z~_St8jvu9?{TyxFn2l=;BXvjp!5C{bA^(%2j2n5a^0)Y`gga;#YnkW&ZydiUcms2F;5Vlar{^jcN|VHJuH4EJ6cgz5x_ z#El&d9n9^V%x!HTI7pP#U>x~zT+G()y@R=_nG>WKV~`h&qW>9nFxG#ZO5tQ~Z4BYK z#6SXfkRI>6vo&#Y)psz4XxlwJPDlB(xVfXDl|Gp20I6%QjsnAokHf0^4mRdCrjT~x ztq?GV@Xzzk4u-~%^M`=F|E7uAT3Z|2I6*E3W81(O{Npqwb0;ffNdDnCEd)XVc`YuY zpIG2=QP8q45ykyfIgQ^9E({%_ZaZ9rcj;=Un1!Yw5PMy59hk_koLW@wxtP6%D*?LaBv~zOt$iJ zWdWgouW$w@ehhUvX8*qX_IHU&JyiP-fA296ifR45MTOG)fAQE0 zcXucVCfO{;n>@kLwU0#2*FQ!CT1cu8e>wEpQj@ipNy4UQ=91~A)`!bsipGAoR+z*N*Yzp3_Bo?Nw=g%Wnv@6L{bgLu~xuHK;u)drn2l!zd3Z~;5H-jlco zkAvot09NlT-CK?2{qu{ok;74Ej;&3DsFMzzW4mgJ&JHJ~8IJh%$-iRCPg->5gM)&$ zD#mrYUKNQKxPWTrW`%_jAe~?6o9`hT5yB4N?nPLS*0Xivo`Z&r+v2a=HoZ0I@)=${ zaA5ep;{BEoXO>*K2JLFbkA0u_J>Cvi7}o6alT$LZ4m%&$S@pWqG!)F01B0mLK(uyw zp&8D;+TMX5WNl+X4kC;R3wGBzqYP(B z|30p)V^{-9PD-p4p9g>51l^$ z@ylbU;-ONGWq-=Yb>`PxHCWYCO9?Y`+OYFGsfkBhd=Bm5re@ButE;e^p3tqsCMVMd zF0mB>Y`Zj5U$_E{f|3G^sfT5#`@ENyG9t!)$Td9LMRF^RfURjsJJ5|=dfUt7q|W}z zLf-66+|}YHI2) zWl`qm7f4+X8B9)dQFZshJx+9J!sU>i5ia;-=ozP{lzDGAw@Z#5nbv((-5a7#=V<+Y!)a$B)}1Z~ReG7C${dNpmo{?|A! z+hU>(%PlSl5f%1wwg=T~W)r*YqutoM=U3_*-=^ihprE|2njkW542M$}VFUgw?Z#rq-bHIt3l z%*t9Q476Y3vk(le@AMq?esQ8SU3NZPGKlBBrC(H63oHFZr?p`D2S?CsB_vkfI;Y^S z&8dAmnU&X-d9oFvXG`!L&jAryUj1EEi)rPjcS?St>GxOLYu{#n58x?HPIk!}2mDIp z1&$!SwiWA3$Z!2$^14?|eCf@(Iu`VwlA}YkY0K6`-(tavwCDS!hLRA6LXkzvvq#vw zmiuYZ=#A`HJ})VjD6d1w75w?=S$=LCg%r-go9|<6+vsgGtLm9r2O(t$65a^=)E8Lk z0WojPB0wO}zTU$w)Mbez>wDY5N+o2e&yV ztr>#`49@OelJee}0&V8k5e0v_5DnUSP+b@@a)WOI28O7zHcTtevw*M`j#xQzzsrk! z`&gh(MUE=<5A2%|Spp4?iV`QxVnqvxgh9RyNr$0^smw)>L*Si@vc zZLdsMvb_kz7bvy9`D_H=P(?Db<0Gx4!SW9Vb1RLv3Uw-M!B_PZP5BEe4M_B^kkMeL z<+~m8fOO?H4Hr!Zn&6uz{n?_2*xu4PZ|EWu%OXxqzBu3{G+^r?EUt@!SM`O*BRyYM z+xBsGu7Bz_eP(Ryn>!k&=M!DAIGd4#Fcu5HV)6?kaw#ORQQy$dLo zTM~#bW=(64hVv23qK02=TEZm92+(j+HQC~g^g|+ad*J~sX5D&V$0_*cY!d=~wF%y% z^E-oB7i8s{^Q((9j^{>f;Y2?_+z(&C&mR=ysqs2JI)JqC04G(A@J|lhSXOH zCr6No+k~RjEn9o`FI&4jmJ2l(Hug?dz3bJr{Di#S3CGCqeZLOWVexQc`dpm{)GKQQ zEnDAW$u(D@R84z^ZG`iS%c1tXi9+j0_kMfq_>R)SiUPP3UoX?j<8HpD$6w_pQAGX_ zHTsQX7X|&*jg0u0Oo-c+$R}$d%j;Z6hrKA|w+K%fo?Qva2?aK+2PmlNLhxvdZgmHQG`QH|^ z;3ytDI<|M9@VK1>9G!F`EU$x=k2|v{)%cAGt-dVf7VE#D>I_oB{C5pU6Qw~a47nWs-_SQ2y zK}24xod&Az7#YeC^OAW}drLO|`DIScZipi<3Jr!Ihvkt01TB?#caJ6|?L{L*wQkA!TLR4tvRT*i=?@9` zv?tno0VS*xD`rJsYj>cv)-4NfU^>sDq2kLO5Ne;9N*_h7KHS+>wdfAU<{v1Vt`43< zgV5NM??;9im-qR|)b1j>_o)A7O}galsIuk|2h^!GD%#HKM(a5N!;V4uCr&{3O} zfOu@zo@|fNo=bcUg@g6yT8tt?JFyuXP!@7aCdD$tRC^NQ(R)^;e3>%DmcO-+4%Egy zM>pRL^|h3?u(T7~w}WT*XW^U6)Ni6L3OqW=gmVVrQANl-cr`Rp6Pg+r`$B1qExF8Z zQG13yBL{FIPe{SH|5(x}oFpaR52{&CiN09&T!Dsnt41v{m4aQ{4r>_K0vJs1D1qT0 z?IR@8XE=kcXRm8BKbO*Y8_j<2F2bXwJV!SJRFB%bt20sSe%X3@&J2%N7P3xta@w=N zSvGd1#~g4OdhbEol&{6x$^<)up%T(^Z5uH1H6UVqE5J zxdYGW58_6z;3&C^v~`(^s}wPVo7MB={jXQM-Nv}8lhr&?F zC7SvKKP3jNecyV2w@8|<)E}LkU|NZ>2V$r&^+%9VJccX~RRJzFFvySk_B)^jpakux zi5X;h<@r&A8`T$as|L0a9e2s;Y$t1p69<)a`DFy@&2!~-k|s7U*fXEkgtO$GB|SnS zncXxLh_W*p(52s(6m00~n2F(wX>P9)i0bJ;w*BUmbA7yK_--RSKjF%-^uKviX44rs zNd?z(ms!i7+s9Ns@T~i1`_9z+6t<3kkJZo3vYs&^%DrN~fd#5XJ+@IWyq%0FWFlY)+@4B z`pZ;FDV^m4d-TxakVj9SauA3;@IHZ~HLPYsOE1+y4F4>8FD2G|GCb2(-4GQJft^Ms z&DC%asgsINHrqC}R09k|@37H}J53vw)x4oYc9O*E>#GLOfsNnJ&#KP4r+(k>qlKgV z>IBY~g=rQ=D7gtrH3rRupB-~Kxe@;S9D0(2y_P3LhNgXa5ei_8=5c8y=U;mdf~9n@ z^?bsVaW(V2?E^hzz(TKhHvL zS=lB2xr4|RBbztv(S~^8;P<^3`J|0BOlZWDkf@?zPJ@y_&(?Y>py=NuvGHNCptP%Y zLnh#RSL82yTbSZ=133F4&+uEFq4)Va6g2;av{P=MEW`;( zr{c`XA4_xTWjk4vOS9hl4#XbuGa#5L7Qv=BSo_WHavM!gN04;=cd2A=jl31j&n_m*@L5c|wshY$Lg zh|h?Yh+d)r>w9&8de(IgPRZeJ%dee`GnE^>I%D9DK(x{yuBX`HuoxH%=MS)}tx+Lu ze1Be-_n1&F8{N?vum4sB=uuv`j`P9IAo4Oyo!)+rh{*oJ9SY=5A|UhIh*dJ!we!(x z&TMRUhkvfJTI76@%PwoHCGbI#BpYRpUc%?%lj1z$X5DQ_qVE z#lCN9_P;3gjS3UUjX-T*>kC=k)D;T#@$`U)b1hue%L;VnyVE+AruR52QxVva)aNPO zBa)w)4K42E10ZT@;?2LZ-F>%JIv)bk9(c;l5dufqC7FWiO8iH(SphJ?e91KXrA9>C z(gOfeGLch@+|mSWM3+Vf;reCw#F~b=PqeZCTHcXVkW>m(rHoR-SkBiCHau)g*$;>@uUCLK*KjT9$TO3dq%!*5Qo zFr1teAIN^A@BOI}p_MpQk4d8|a0V*?vwq=PrD{w|Xu&3cj8}#Me4+ISB2NZ20oyXS!&6H(6qxsg zQ4-xQB*KBPlwiS6`Q0avmX*kF_qew_6DgPY4mqF;w4KU)6VW zHY)L$YymJ;&o{f`-a*=L%vN7$wUS%e0XU2yx8Q$il}Q4^%X00S7Q?Az@k^ZF`3hMo zDWwN9zXjk9B0AvRxmV-p>+G3|Fk@=YA-+K2AVz04)?z*IBn1JzXDJ9h?PKeJRMpy;l+$u`GDN+}f2ZcLH?5biw(U&(hZoXlQ97Xg*V_l?Jnd zz~sqEu1;m+0N`{KnU*E5hp+>*uX*M(8cU(RCAPNK53c{8 z`}pCMO#fsT;P+@a!_YT>?-_Lvu3`VZr_SS0JAJ-&Y|1f7Ux53m5-MZc+wUVgnyP zqq!1$s-^~%FQ^(391>7nYB`Tjj(tmN&b3Fn{uWF6{TCRX`yxVhK;2^+-C}bn*s7{) z2fX2`#NxGs6yv%Q^s)V|z*JI5e+ zLG;bbqh0d8v4#jsOC$3O2vit-`%I>T_m3XWB>?{xj#n>!iRYn7JjunraDIRL1^rxO zy*Hw3b07{a)zRKwL{d@`qvUV>!kte6_vk&k2OB}i$+W2Y`O6n5 zVT%Z1@kwp$IMlvS1akH(B;tGAd-p;9Q}Qq$Wc{u?b)hU#Rj z!I69ZtV*A=eEkxG?bSc^tj4Hh`sY%jz1B}nw$^3tQ*3x>#IzdAva_?(v$J8ny}cp6 zC7N{xz2Q$nKYWPRVCwGfrl6t8eFwGo`PrLtn?>IJA5~I`v`?SHGPj&z`^Lt!Y1Uf# zg@vIkxvis}rjTHr^I}!_h;Bfz`l4v#^-CA!(;g7VNSC4bM$-Cve_wi<{W;c|f^xVL zxN$RjU2<{9LYgD%RV{JHJFW>=N6f>k>s_ky+B15wI*lcdTaO{oaf9;n^HX$dw3wm; z)+tnfqET&_%8;1JUK~Jr-sdIlZ}Dsw+dX zyDl@enI8C3mplr%Ak=q^4T|1Mc@byb6dlj(V62oZ!%}w6AT8g14m%p&$P~%isiaUH zdsc<*{Kc>@@=5heuy%W?b`ykMb#pl3WnPar4(;1+Rb8*3uU~Nk^rmsOl@Asg9A#}D zhHSk9ocE?*M>+RRDequoJ>kQDz>VFnXA+40uwI^-LN{-CBB%eui*9=7gcgWlErOKLO89o*k zWewNkVS(223P8YU-CnP6XsBtFRoyJIEGRb~z=ws0uO&vuQP8zR6-sS}ce|m^+&R%r zBZ@ShZ#ns>bF_fB9%W#iXX~GvVtFuj;_i5dQ`I~_OMU+$u;iP>hLH2RZpUnvC1&l@ z4D&$F_MxP^it5^`vhbz>M_OQDnWcFpuZB=H!fGsQgvP{3n~siUJ1ksbbNF65u99}Y ziggcu{xQF7COxwm{cgW_#mbg3sCwGrN%KKWenFv>bqhRXkZc9IxI0I1<$DbMB}qO$ z9$rm@02LK9Fet`HTfaSk9RIC5##Sz@2Sudq9V%3q-GP#j%N%{ zPY4!-$>7&A3fvtB9}tQ8TpAxe?Bt@$y)S#;Yqg>{>tIHAG{uNQcbp{|88JA>Its5!JXencu}HPp*M-hjM&l;& zo4o7xE?z%sA}k62Ec((_o!+X1sGc`^kN8N7&MTm=`8yXVgt6dm% zEQwUp;YTwk{KjT;<+XyCd(+~U(C5=g0T@SUIL4yT|0j!AjY2Mf71zugiRaF27yd!BLKFRg^&P>)uAeguT zGH2#GYX79a1s*mW{qUHq&t^lETC2|kLooC*oC_Jc83H-2IPqk;zn(NOC%IXDgjVY1 z31#|>Duxnk$i-Kc4T<=(AEpq-+?96*XY^)!r?JTN&5&P(P`Q`bka2K&B?Lk4KK>|A znB#FZp;B$ja4^IYM=h z&x$pSEI2PCM0L+|nWOR2OGr3#1rvgh`^Hf13S={%XJ#k_z|dBeAM_0z+bL!iHxs2D zG{K5suI%YY#rMne<1Szb&%o9TlOx+(?h-ZL5>ojlUiUHyp*t@S+cx_Zyvuuxl<*k` zsRACnQwEegJWoJGatcez-|^V5=sTWL)lF!QCc?tPgz~8Z!BR^ps)5yakw1nAT zy=F9$Ys^g}>&#}2Q1c!b23rw626^^ykDeM!Js8O7K*qYpd~G)c(ZiZ%GU+W90baj$ z1vEmAA02AS9PW^fJI;s3B}B-Iz-!Ht8!;kG%taE5!&@lx$gCQ?ddahZsa)DK8~*8G zwR{CTsUY8ixx$s$zJAfyL0r|0cIQPFuA)ui))EKb_{2`E!oF%m$kIBl3S8IZp5WyR zQ>hfcva)YgVqCy zoy1u=AGPj~^$cI0%*`dpme8sgZp&PBJrnb%5cXQ-U79N=7J<1o{82^C%BFTB(ECZ` zuF;v%i>cd7UlbAk(vj_^InFj_6{N$7UOKx1-q$;{{1>x^0xhUim3javbrydKt8lr( z7A~Wz?LiymrMS*gwfDRtV(>tAXC#SSEqmkLzD}NCwu6ZkX4-4pH^(8jTGr8YZetVc zoAbsuf_w-80Dv8gcNGeSjk4`0S;Fo6k#*LOol%*GHrZr8w#GVW0_Wgs_p60bsunpuLhBY&ot*g{Wem8YnHO?I~*JgqSGt9fVYBtnxCA< z_jRA3F=EsRgsj)>M3_f3uAuAL35siEJ{L8A)>Thg>UNkQg(c`I995Dt5>)@#4Wt`| z$a2#R67U|(It-7SgE|F8MgJ(l>-@YpQE`0P`NDReZ*~Do)xBK8d+}TMHP>A4hzWno z-R8syWD4;{rC;ThZ(L%C)`iHB_^Oj1#rAGk>xN_TCALAc+g^v9s(}HSz1+@gV(3n}@Tt+QBLJ+u*Zqz5|4trLeqGGlzG-pc zn>URM)rd<>v^eJGj*m(I107uRU$U{fzXJ7e(DSyrl+U#~)Quf(a{zBCj$cUMIXBF16y=A#n>Zj8h^tQJMwsqWe;^yc>nL50Q5 z2bDV8>pNVAWPV(a5hMLEp-Y&@-nIUvD{Oo(Pl)*s35c(9RiB>mM!b#s%YT-^QaI9^ z9f{57+9?3?*{S-U?A+#6WK@}OIcGCUo_Jr%!9rEwa5<5#eyxN{71cl%ScBB8Ln6@=#9AS zEQ;^H+XEZ)KmQ@L!_P;9DWWr6VuOLPj{$MB%4cp>ySIe+#%Q4f60#_bJgTx#1JceS zR9C9Y@bA}v{7Bu4vzv5ldpZN+Vkbn4dbn+Lynv$*(`csr&pRJ~51xJdCw2PsM)0-< z=>KwM0d}tG)HY0R6uhLH;!m2KBBBY*Dkyl zjeRnnAmMLgWwX&xFeOL^9)otCDJkvmmabC;an@)UlIAAf{7>8GF8k7K_}?jix;85@ zPq#-xnwmW1nEy6>GN6iSWzrlT9%90ZTqg+mc-N5$QBpz$1qCg-%l!8dm7aj>h9LU; zK6z;(j4QEYI+7|7&t@zw#~ktB8?L#7>nFEm6WHL!#>QT~dd1?_T3(KcfKDQ;sEEC` zzRqgYj~Q?v7K|EQ=)AtZo`bA&7mL_=X*(w`nzAq_Uw8gba0*ADwe-5V%5;Q^hNgF;_S+X)!=t5^(1-{LclSoz zSZHB)cV294>`!062FB21VP!{8#_B0RR`!4Ftl^#l;nXtm*aR$B%IzW}Rlj7cX8we68ne^-tD% zAimAb{KZ-giWVL$7L(5dcmNZGMm7@9Du%3&LBdS|*WBADDNLppD&UDw24Rt&2T~fApLCpwV zrF7Kp9PM{j4Dx?fo)Q6_flFB(v&|d!s8?OI5Iq*}YtZ*|B!dsyIU&AKK3A~naGT>7 zpn;9MdRKkt1mR|Qt?OuHb!`Y6A`E&8?>%~--|EkWqL(mxOChV+2r&t`RK8pL!Rq(8 z=9j)pr^+7CnVEB7qyseF4#*CTvu?O*%DtV5JSejwGhOfB#=w*|wzuCX*XZcz05wN` zW10RMA5SQg!i)F%^=n0rGFBlWp)X$U=QGj3Y=EV|%CPqI+r9O7VM|pEcK`;=E@V*-Ejmhl%h9kcVee81Dj~DJ9A`5#T z1)tU2*!u4ATOXfvGnOPo&s*;HkMf31M>EmA+eZWyz~k@XEMPVYa6)C?F0kbLe3mRy zmU|Nkphx&|l~4+1tKU2R9rumvec(q07=g!{S^WKQ>Dv?-=fOwAdP+l6TfZ9L)Wk<4 zmue;dgV&%Nk^kZLG@jKk_-vv315Sl^%PKk9TxJq86VuzmEs#cBJ3T(c+ZT#OjY&Wd z0)z%Ls&ZMX+eQXhnf+tl{|-oISzTz~gGComu0_kmF0+w_PeP z`pz-DLpYfE=}Ja^=zPFv6Pn35-+3%+Ss8IJxozn~gzY7)!`AyGgAI?;QhTeTp=Moa zP^6f)Tz2{Mz4Z0u&|f$?;cFd!6wCl->7~#+nG>MQVOI^^ZdnB2K}GT)#<{}>?34B znbI}*W&~BfczC1wAWxFLqLg0 zRQ!`_m_2B`UE4k2Bh^TIYvF>m=9*1Gv&sTy(O{ffJCio9lfSa&!AOwO*QXR$`06cF zBNh7bqyO`djMu|7PoEO*7g+{i5)+4^5HMB8)BfY28B-@PA`A@;(YDxYN?M%%`&@-1 z(`W&EStL7GcDLrcD`Ox=7zjU(AmMzJZs&AXLOh=!B2d8dqS794%vKxDZ;p3Xo%Zi0 zCdOOADP+7pB$^<9NjZrCY7`J*Z85{5o1eCpmR>`KO!_w`Z;pZac2*X+J?(CqYS@m% z=mclJrorStH%Rp+NB5IU*_kc$@|4YDW6=B4ts0)KXeqLek9hQU_qXr)fAv$BL^jPk zUnXL5f&M1xAT4)K&LW7hvNOE?{>%&2>`zWZC{b$(AqeXSWj-CPFV%s0Grj0P2WNbs z&7u`*5)`xSuQggbPR{x~ukO^lpOW+zxNZ{`cc__8BebV4AAKvTL#ur{`5E>fgU-j82#R-hcE0Kpy7y~rY;?J-sI2THf4Gu*9wUwD zuQ$z7Pi9ib!h-XRC&Va6FrK_v&!`S-%z zY)sry_=;Xe6f&ff-X$S{h)3TBs-ZdC&UYrxk=oxa?fLIm`O9Uc#M1!$J^E_&axJ+?D-Rb$cA{pabi&f!6B-r7p$b2Gmzub?n? z=*Gv#*L?eHK%OpUk!;09^7U&ZmxH;W$JhlTMQv>@Wbhq_RRyJuw|WgHYDsAisGMb0 zSEB2-vO)QBVxoa2B18kwB6(FNhrSx%Wt!2d0}-D0&nRxhfB#Hbv3*V*c%d-Eg!hCC zBTpd5zsktEi_%C%e$uDuAJ*$Z+NU>Azp6~@Tc72lmyFE%2=O3~lq`qTwcSe;;+K|M z3g1TJnzv5O{6Z7e|IbJ=m-@LUlUekkwY0T0!|9orY!sm8aboI8bH>c%<>h@Zmwm`7 zDJg-Ld~0er#1)#iDP|1B7QiAv?}Fga1pjVWJr%muC{&akVzRKuDHoC<_EQz&^FQcg zHaydlvl9Fi4BGF_ADmBVop!IT1?;8J&c0sED0g~a-SHGJc#}Xd*Vg@k$DyhbGqd%2 z7ySE)RT4NDJ`Y>$=-FE<{XJTcIZRET`%53LXyw1vvB|wBA?3hz5OP|nh1r{%n=^`P zy+N~sYVYWP!VtP;!9|9PB;oPLqLyr*o10^ZsqgFzLg|rB;!My_5O-zf;J_0R5dn%4 zXu+kbgcKAMz()lH1T@{o_X^k_#Vu7_?!EtWj1`WubfY!Y)sa9*Qc_ZCpPwfNUTnOc z&-F09yj)S@^Hb3@D=UflzhAW~up!VQ+Xena{6pv~K59s(jUDIadIOU=a~n94~~I|-Ka2uI>Va`QZL(P-#V+PKqcXQM(ebQ>>pvBs#c{ipRD zG&Vgofm)~1o3XoX@Wh+;4mdQznF-4bvfMkZtG5MGo-;mA9zk-x<`dPd;Y1D;wgegX zh0)Q`t=3qgjoM9}nW4vWSU*Fx-#EkOdQUcKK}9E>nsW@sjXb} zb0Jr=4L~zSNa0-OEt4nuebuUd`z1B`eG(G;0QrK*{WWkXU@y zHKQCE$EhZgF!AOAQ3SknQWjRkHzES<5kU6#UijF49@s3es`_$K(@mjD^F<^>ex)~p zSgp>66u2H1%V`F235kx0iPO{otv@QblnM5NYoC>3Z^z=fFovw7cJf*~uWmyiSi}*w zjfJ`$7K{d2QgsZCNl#Q5TLonv;!3v)$9>MTZW$+qT*z-Y=^$vzR+AIsR#MK++zwgo)gaQVaa;ZIv6;Le zNh@`Dy#UmTClTWwst+WIMH4k;s>3iu6v{`-2zSmzEQPmInyLeIYF#5rpQQtBBhv+f ztKgkSGJY>V%@X3Rc0Vl9v2AgV`JS;rVYyE7Xgg&C0|Q-4EgmQ9Q9>@yn>lFW23TG8 z)%Z^bUn<5FJyW2IK}1As4@AN_j`F#M`ThI1nVDI;tYzL*SU6qnPRlFPnT@+hJU`8gLo zW@9?kGD4kIo}ODo4PHjY9RoWo#`MZLwL?JqOJHSbe3o{Y*Oa9sQW+wPm0O?Or)<<6 z)zpj7boXM-6Fa5gdgaX8q5I3rM7ukThbXtlnK#sqwW#Or2A!|Y&1I>3`363HrG)Y4 zcm<9|j^y_7xPAmKr%x)K-g>3G)fj2f4hJWC1eXtGUsEm7B%_&Cqt4Kt#tOZ`&a)O< zC=&eR1|ai}_N{mA9VG0eVmGY{HkfE+ZBF$HO{o{dEirqfZNdSN+IJw$%tWtuKd0lg zSqPn+R5D{vd1w)#`9cXi9JN&B{t2clplJwM4Fb<*dwbzw5YW3k*?7vg{+jL9*K5~7Eo1UX`U6z zJ9ot3R>N`WDchpkS;EQ8>A@LK$XUVrqQZTamJolv8VP?A722{(e|pKF_LZ%3C=a$> zm0FoD5(S^NKts54jEQlH7)N}t2yR?j}T95)$ks^K--!^o{iII*PqyHQeb{XcKH?l)ahZGu!W0r8!>)+p5NuO zli=KC(23!q`<%d~N*Nb$`wD%y1O(KKj0dIAT98pQ_Ijrs?C;;d4>ng0C-FMd-QM1Q zN=u8nz4ctEw}$~4VCU{s(aAU3w3V%)q({^42_rZG5?vi&ZWC8gnbszcig^rNm*SCG zIqkC{iQY&^Ho}uH=t%@n8AjpiY7LTfds4G2o4wz<4o#|#yo9L1WC&D04f{k%k+(yX z4Z|Hz9pVt6W$PR2l)ibBtu(J9nq~_R`7%`l9cxqGsn}vlQ(y#PsA6+ictl!?cL)laAb{2JF)=ctg9*cwa-n8=f(W?(4Ji<>TeyvfRn^@Ub0I4w=LOaLR3%(cE? zB-{SgyOQ=!Bw2lvch8cTU|%zFpxU9U5OUVbl|j-w?{W&H<&phuvI<5lm(xq8ZMwP5 z%EY8@rZ_L<4t#Z7-!(`woYiy|E;<r>D=7LX4S1*m&T{^_5KEM5zr12tj)*)`7 zZbRq$V^Fzy5hKmb!_zS|gl0KY+5?>8*y!l5OJPIgAZW0?zWciyP?!EHZOm0%>je&I z_h7(cLX>{wS$8^Sth4?{Z~2Ku(E8OzbhTN4eW#6x#AM9#Np$i{=tUCz{as zIJ&MjbeQ!-_qBU^1m7x`>{`{rCD~7GxUcAfaG!H5mm|t@i4^w5A~D`%XjJQ=^^!$X zo7bVDI0@J@*Qk7$RjkyB(wdmbdZX$y!s(+Qlru$zE|`aANO1L0jqcpWdJ(vbS!OA# z;M}{Jh8-f}v#h0%UP1989iQIi>$ajV6)&p=(E4@D7a-j8!qM=8Ic!rMZE(9G( zy}V>B8ub&8%H3OB;I8l7G_P+JPsu$weKM@iN2z?R-M!AY$7+IR4Ok?D;~Zd{@8xeE zsExi0q%=iujg-uKJRCeC+N#r&la4QPf**EwEheX@sQ~K6!^1l`H2nvpg_H1L0~CJg z`Gv)?e{irH1SA%xpYnh?h{4m+(!#{V^!@eAVSlNGc&1D@q@_i`8z6fFz=9znAvNr+ zgYF|}7C;~EFPAZ9BnkNlE-Wr8sHuSp|G09u&3vsavhtJ#$JR(%RA6ABMy zHYRG%6v*Q!yG}H)6c|Ot4l!}H3{>PICU$es!d3ny-TK!bvId12FOT-$BWN<~o-eJZHsHvisA z;&#|T)bY7oFkuT)e3@jX zK14>wiYl$UATzh!R*GB|=}Hg-Mg?$i$cS{||Mdb;^7AiH1WpOX3c9+wdS0!DSgZ7) zKVgI2*%_*q?o z;QrLcoC{8hS;rqhIt2KJ%7E|RrLTVfb}qzL%~2G=gbjG#*mb@)gN2Jbxkad|s>*+V zwI0uDO%%(l8~O1g@?*YvwNCzk2#S|YI(2{g@Cv?}XoQ$>7;ijo3RD-6Q*;ssJ_YN~Z`I`AcaadC0%K2AuG{sM1Vr}1y0J!iUG7fzypReG;`L54;Bb+5O9~g!|5UccB`FmGJtAL6ap^? z6f-NgEDMGdF)h zLPC;#*YvU-&KJar>ZV@JI-Awg5uv{3_ovyX*MK2_^6~MhDo#4U4Got8EO$o695YlY zAcO(k4NqyQrA2~H$~(D5(rBk5L@{-D30h+^REn_h@q@)e&=Z=84J9Svo12^G_KevB)7^HGT7fi(I3Y-~7P5L-U;ho=ry+clJR;LPLw`90BQ}Ofq*x z&lPwp=XMjoYMotOvNlQl?<;Y0$++#>(<8*BqQEz59+)R3B>b@X;3H*hWTe*}ibYD~ z0VE124l!T|u{a>W;6JN}TGs5Atzi$<)k`h>0XM?h{MaM$)D8!E zWKgGa4wS#46R{%#8k(k#5zx@Uj>Q0z`bbAQ$N)u-PfVZ{TAYI#!)pPHhy?m}xN5Ig z^C-pV;J*YB#gzbUba`Tow2!-byz;$@yPsKz$;hBeMi2!7#h14y?5oGH%Bu!xAB z2h*d&u0-C`+mkko=YmugRMPZ0iYPS7=9Q6NQw#ead{k+m|ELACyN_VBt7;7&&Dzep{`s1URDLh3M^rf)# z_F3WC3WV)6^ljE{aj+h4IC4z8A?a@!4v`ZCr@vl{DPD%gjh}3Pv5A0(hleFWX13ZK z2bfre{d(^wLnC8jk+K|Pf)UC6tY=x;_?xAQ_$b$;kdVu`BU^`(4%Z;XoE5a zOVSV~EEE{r*{N%7N=QifFg`v`)@RR6vN+sgK0(9ds{y#p#zx+T5OObv{LezF#H3 z_uIq`4NmG?_nSWeT-EFByuZE4S&)Ew@veR|_Ra&BE|aQn&Nd&+jP!!({@Htk66zW@ z8ubpP5irPquGO`Gq5nQGG*prW{(p4>|9^j)?#^K?6Ld7r&JzZWQH15%H$L|-sZReb zn0O-y#1W6NMbJ{5-N&-7$<;dg4Xb$lD+wQP%MB&jEd^>(`9_Z z>1R}#uPj=|KIBfjghyeq82-9?B^MHE*1gL6n%z@!ZM&qT1Z`-hG^5Hw*`ccgk4>;UEVRm#bpvVvI4Y`N6LXYnl2Wv= zl);wlSPGb0v{D2LxLt?zh@wX+W@-`DBT3Ic){nX&t@lOsfqVd^MaR}0ATjNuEY8sR z@#)B|TJ!~dX<~Kb2Hk@4OxOfHpWubly zp5kLby|Aj0=Ug`T&#fV%W3}_RB-==yl?=1cq13akM+0!TZ{4hmP6d?uxiEwRQJWcf zw8*`UpA+Nb{-7T;qqzA0@%GkHRj%!~@B#!BkPwg#K?&)WmJ~!lRJuXByIbjy?v_xx zyGu%>K^i0%-M!Ae+`8ZQ`;G6fbH+JqxcAt&7i&GwUDv$koY(bW!0)5dWYij%8}#QJ zU250U+|{^LkLiGYNDawnk5iVOn3e7N6%rT??i#2H#tV|}nJF_6rI z1q4p`k^LzxEgY;(p;*m~CH(v8JpWl3bYJiJdWVK$boTVDfT*4z=*A6>BQ~#FcVOpb z^_IaQz}>v}Tc97N!$sCseN07+T^yYqMR`|BR`z4>`*whwBf-iCs@+}RR@9`h_X>wD z`q=Ttfkh)vL>N`j%XEsa=j#o1Kj(dv3D2|sc5D1OFZ1r> znAc7IP^H!9zVE)0F;VWK$R2Ll0A{^Uzf#`=qi9_8t~NbV8x!0 z0SDXKP-3_hi*%RAkJ#H*dOB+LHv4$SZ_9 zeXD})hDxt(q`toeS0SY&8&?C!{Mwc2nk#|thbc~OJNgWCenlCDL;8SZ9&VNBKoSoO zMDYb9jAL0ECo&glR_Q+fdEt=)-qMNd!5-{(&-xi@@IujRk=gvgPR+Qq4_@w~0jMKU z`!)t--?bWp6K4hM8&(yzQ#sd(YZRIh)T5lSX( zLn@cjBtWMh_V9bh_@T$0dca8J(~l4u42^cI`EW;j2V%BXTWoijsN)jy$>Np_GdwRZ818 zg=j5~6ank@g6|HZ_s2Yr4o1hlK7y@H&21QSZTPwbbDE-SI)q8(JlZ4p=61$S%Ncvk zfc~)B%g|zwM1FZc2;F&m{_(5y2dIlm)kP|$4c{}-t3^ij$FlyIjaq4!`sj>RY%uq5|YnL>{ zX^67ooZvVK@*gt3Xbj2r2uh)O~QdYnSQn{alM|2 zdp@e&+?iuml>fCQRQW7!v2|U0>7@(_WYH^pd{KGN(@?#*jimbaHYDQ-vgy3@1MM-+UVULls|C{rp~A$Ec}GG~ehD0T z-M#u`B^IL7Llixp@~Nbp4=1+o@kM~$#%6Koe4(pWik;|GlnsxPQoq;TLIP~rqs1JXvD_3 z&tDuZ-eH92F@Jj)-?F&B)FCA&*G(NEfY_vk6(;FtGMby2n~O3yIQS?ctdDZnNbzJp ztto$Ma(+0dJ!-Vpxe7luD^Ol8t)t8|JxgBQ4fQaj30TF6pq@4m`eeu6l9st!;SQI3 zoPoLWLD3v?eyT^UWY*-xaW!XdTl+p|h@l~C->y;u3Rc-L(`&u?ar2H{=N0Q8KQ5qQ zFl}kRm6J$c^K7h^W^;lq{vzNCOW<~KS6N}Kr$+FC6;L0Z{+tvREh_L+C%1j z4L^;-Qw|-VURMLXbEg-{yj+-IwVh5Gwe5_4DoiS*%cE4ix_t5My%(Nd+fSibU&^iM zY|O$1Erg9py~zlID=yNG0+wqc=QX4A&8Wb^@Ibn9%i_rUbGJR??->_35hr`#Z=e70 z!pT5iQ#*p`TgR5idgSeS|2NH*g?&u!5@BRbukOcL8`fh!Csv3<&6aH*NTge%+KnIL z-TAiXF2z4h=sTZ$6nxgQ9ecOv?Viq&E0$qI=SjNpT@coQ)~Y+-n1(wo8Uz-ehN6HW z?JLQy$@pI$Wo(GMi3RPQ2P>@1+$a^fvfan@xIdhW6nAl{@7B6~w|_-QF=O!x!JE(X z!R;E!mkt}S{K6->m%!}fvIn}=T}b}WG1P%n2_sgB-3;L}PEAJ(vIqqB?8?50;a92F zQDS-FVA448kn_{r0&4liB*v-Jsw;oocV!3uq3IAo)MOSd3nHZ{#km)~G!q{%XGU21 zB-k)}6*?!bFT&|Qp9QW9Hdk>_y2c$derbKMB_5WDlpgJK`ey9!cv2iq&M&YQBRaV+;@ zMGnAgVg$^ehwo#5$k-@iNv!4 zRO49bB$Sz1%SUwn15pF^haIKp&q4ZD+-VgBZdP5!UzBJSBF zWu3UaycXwsEU}ztu1(^cjVN}h81-5RpKkBFW$`ng2!@VB1#fP3o7%-mauy4MJu+%4 zIBjo6kg8q3W|I_ykkj6gq=92;5Kq^J?B*yDz}Q=XJI z!lCZMKkLTX0{7Iy8>l0a03)WOV5Ip zikJowg?A;VhO6ijV}F2Qs-Zu0HNRB`3M-saDy~~!6cB1LOPw?5KJ3OS6WU0+#uRYg zP!cvt;hLUmpucZA;O{co@9AZH^~35WE#z>=WooYD$=unBmA=bLz?24dks! zU1N_?wq82SdD8kD&q9d>x)Mb?MWdAnxz?pEv!~Zcy@= zg{o6S^+^in2@4No;ZgbB%k1yPKCz6(bO*Bpf_yoz0@9U+ViP<-Qt3fjyTZ$Bun?v?6no^ zab+$7SXm;X$^SH)SqS*8JK6hN%owmCpAg+mWwD81l^=Flt zvE}Yn#V0*|eEP5?Uf7xO({zQ2T}+2aDfH+cemIblP4SNn z*=tRvNNdeJtbk)Jr@=)3CtoVqj4t1E)>LQjSByIEofCC--u)(}u#y-+ut?%GXh<24 z66T_c1~3)1;C(9M(qvez`>4;V%rSyRUr8fEbXjA%kqMoR-id48LfZ5*WROl8Z`_xt zmdWR`xP6YA77saDT9gfDzXKWbk*RLUec4#)8KS3rIVfECv9igB2pRojK zz`r;k)Adc66}r+DOi<{NkJlJ=aA}(styq!r+0D5TtCa^%!6XH_zwOfyo0((5XDk+S z>EkPW9CT*pgzJxpgH&sKA}C(S%F4Dxq_Z2KDHUscnIhm4nbq4PdN;*CW1JdoIcAfO zf}fk5AU_^V@Wpcwh%$T?v_C#<>;Q0Z)_041R9~E7x=L{7tgtMHX%F}+&AULQTiqt5 zX1sRK=<9_qQUZ<7F&ua5UYq^Qn{zrD+@#@rmA=3Pp%m7!n8ZCiB@ql89a{Y6A$-dn z*HVg_j81+y!yuS=ga3;;vReKlVJ6SpOU=EgK>rDyqUfd~WoUJ?ufxVyk%n7>-aaF` zJLCAFOu|kW!5H(|1dB3K8%q&JJ^KzTcmrvui=5t)t2M1cf=*Aid7W@g!6)cf#KnDoZQ@*P1$6rWT_h)8=tgycF6L-@P+{e z2RLlMtw_qs&Sq;*Wam@~8mnuVV}MZM-GT3rZ`SBfLY4~gHY?hB=1`22p2in3)Kc#q zqFmC?bN#aazPrMTm;(|4)>aEqoUkZ7(Pi_N;jAv4xx{|=gkt%1bYN24gyGc zTt*{(XIoR4$54v*WstadhZ$>y7K)QBe}L0!QYnCT&2~~Pd2Tw3F?+;gUwUN>on#n_kgyo1k zoIz6Pz&`tX8xp%$>4w$qrtuonxeQs&3HmE96hd}K7;ZOK7uH9$uZaR!3HswR%rwov zKKE&4ZuawyQa>WDSQ#y?z7cSgVDea-3+MjDl8Q{M}tj>YTCWak*YS3Fl3&w7> z#nyPZ0wv3G(F|05VhpBcI$W#Vpdr>uS0yrmEeZv23qeob)UMEXBktO zPnC**l0c)+>ukSvXDiXQwd-RIpe#%#e5bc1Rx8t~mhQHPq-sBXjkZzhjf&A=*F0Vy z0cXKFH5$eT7*r`488ILY?xkMk3%ykpdw=?w0`rnL(AYZF>Y_-GzieOUgCSr|+h#X5 z#KB(I)4%g7kyU79v~D#Y30lLmG^{yC@mNxvGevTnZyL3sra90_(Jb-tbLx4it41zv z?yQUq$imI8la*(7%ib#9_q3w6*}58FJ-816707WLy`8BA!2zy6AKTB@>zBJ!DU(;*z3FmX5=ArFW2G=Ve8^tjzC z6<+Ejn5b+48EYiF*8OqJZ(uTD&7JKY@;;;AQ>$ash!y z^M_y@9IUs~zwrVkA15S}(pgKmPyU-cgmcVsaPteec%h)MAQ5xYBay&B(chGB*6I=W zY00O5`DkN2lDCPq1zIj76v`8sU+V5dJ|(c;D*-)%e;Sz79@S~)H(N{WHY}bJP1Owt z20WZaft>GmPJVMF6;&<5ve+S$N+1oOAlhv+6LwY+l4P~;vlzVjb}|2^s~MzSZMOvJ zonMvbyM2ZV@Ylb&YzY-=#yzyZj(>%6xzy?(v6ord^e;E5mGv{gZ*Jx zGj3+pR-{O&e+CppTh^R8hbk3(95yE1`tlE@59Xd&p9**KHh`LrS95_$W&$P%c@<1T zyT<_dcZUuGNNdErGXY?b&P&!QI>5Nu!tm8$fjq+btyXCsmGVcC--pLWg3}3HA&}+* zrf*V-Ip4N(BD;P|2>mnM$@hU2gOe;TCnqO9#9~vY0Ys8u51^gUM1L9556YS{OFuk3 z6pHxU;)F9UEa=s2O@z`T110yG42z7oYR4&<^&Qx81J-_TuicMXAzaA5f&tkZ!!8EI zT8NHDLTL3V=Jnz8P4D&mIu9C5mm$4z1}hLa$L|DLDT zMq9MZn=)7zEl5Y4+(y#NQ7O{SiLE@X5$P+I5g=FE?hhj7k^%3c+;QHr&@Ozl>n9W; zE!F|FC2DFU2?+@}r}@SNX>(Qk!SjOgr$56asRhU*^k%$Bia?fjk`8M+NVlUD!NzOT zE>fD=5t2R|g&&35-DSPYZ|gi1ZI&@Iz_ z^!5@z^`Iv4I*6vPQ72R{=|U+W5G$dx$-~n+>o?`i&Ef^}dWkwRfIV%eaq zsIIQ=(TpZDL7`GXN|4%{H;4t}U+>0T)-=pn!Yf?Lb`~a~Cy2GNC&{36g=vF0*#4EC zUKSN0)UlyVuL}*hhYAZBr_8zQWQ&xjIXK=5aRV{`xpL{dpDdbhwGlHnH#ZN@xszqd zDW0ovSyZVpMMXvZT2U%g87_*LvjiUfOg;0>dgWq`dwHYuHJkSJrR#EF8sRU_q|hMB zT|X0Pu)C4nFqIJ@X>N?v?@c~}4ep7FhOOqE0RYs>gne80=GrUQD?{+_*U z)%Fn(D-{}?&UWYMn0D&!1OX{;5~`^2w)CK$AXZ|J&g?`KAP^{lq72Hyto6P>{@Kbl^Wix@6r$}A%9L|qg z2wxO@r`8?0)tZ6g)iyR3I*3 z|B3NC(LA7$eGU%N=Vyy765%~7_lUj~6%<5Q$lY9^DqK;qv6X4-PwzOY6e+pP=&&BU zz5+HVc6Rpqosz=B4@2vIly`$~+RAki?4b+>T}toXQ3AJxF)Zz!l9Fil@G&3k^3pY7 z(6GyI{PPOXQ7P{t7Al!_Qi#6zd%H1U-4j4=&!cHS?L7McPORsE>Rs;c5*22_k>A+G z_~~_IDwsC!2!UNrXqSSGy}IJ%vPk&zCqFz)2=|UHRZ$2qQbZf6hMV_1x;|~Pg*?}5 zf82QL7f^37<4+Zq%F2rg-|`CrR~z0X$td4-SSeXpA@su$}li6Kpru= zX>Y5kZNhxJ_XO1DejGG}ay=uFQ~KQ}09@&?F&B*~kc~gc<@wPC(=jrBpuBr1^HfuZ zJyEA(`qvG(HZT?oSR*6GoQKX!;j7lq79AT_c|YK`#)6S)HLdFFd5Oi1K1-pZmf5mG z`{c>T0n<}uEv@3(^){g4gMvl+HRGBYgy&^o)IoCgclr(Qk#L)1JMGRAZMwXUVPIeo zQ&S^eUS6gWjD2KKGqYsRr=X=pzWD_^%or}2?*Oa4q%qB(-(E5^Hy0NXL1@03+si6I z`+QfSbMQ=ahKwxL*xX#y?FBy{KOgX&JZkwl!*6|Ret+$I6PbyLrsADy^Xc|i|LN?N z6&Wh>Uq9i1pR#mgqN6+Bp#AwK@iAJs?)>)^rt^ROCv5OY0UAl7YBGY%x_==GP8dC0 zc8Z~YyFc%?=YZb%QXB{5W!`sjup4}WpBAb|Bs1@ ziM^FPxzu3kXqqKppFb4(|GY;Ucuqh^B(8k@avJ7gRu1AY08bzgfK#f}$jVFp!6b(l zDvWWD1X2GE#R-KUfR4^zzb|i2I-XrT1HeWE`&T@kG1*JZ0Hpi(?;lpH75Vq9MAiTs zI;a}s{B^Vu27)H#-N-bQKOds-P7gc2I|eIUdC6;aPs~E>ZF+cgxvqpljCNO7ml#`@ z!WR(Dh{ODe8vf1)PAesI7?DH{ZRAy+*fTA=V)-6b#)t3UzqjvqK3S-q*?Cl94+7G* zBmbCb)$H!js%`HTk_@d1!GVYO@S&sGnX^DJZ=FW5(9T&43OKL#;t{(APv9Mb;ICj5jOCGpec`m1*Irk` z-NSFIJcO$MN94^^{~dXsqCPDUqqk!4#4&N|%5pg{qm0$!QNm1FJPZpJ!} z1P<^M0GCSe1M~+WUB1AE;zADKnQN2QaF026{|@9Aq_lsv9ayedYU<`JyRO~J^?NWG zHS6(cqNT}YmJggWCZS;0th$YkdP0J4!0$3B7sr%HE-LV9Lz$5=IOE8r^pQg&u z-_Eqe41}FI3MKi+j~%ZU5RwOJtf2OMz?-8ByS+IS0zXIS zawpsT`i28}4z?!-ir=guI4M{OFS&-=+eNqMJqjkQH>241d9uz@E^sQ&O}e2(78Ee#oFyNcdy+ zai;I!63Vk188+vp`O@&RnH}I4KXj?6sK8I`%q(UZyZ!q0Y3-b)gv*`uA=C`$BP-yv z0q!8RA|;_*;J{ZZaF`Qum;Lx$K`D?-k$A+Tq=sTrMKyT``7w*3U7YqGXi>* zX!QULEvcv&tEZiBK02TO?rTQdnhwI+bG4#}y}iA*(uiS_xD&joa*+Qqqm?u063kxkbYguJjTPv7r~Q&ADUaIFK-b0RsNm;5=baECS$HAMQ6h!j!0kZ z-py(CZha{2=^Y%D@bqlf=ux6F@Uxt)#Zf9yoZmZe22OaEc*2d|uZjim|3uZ+WL7Rw zEsc$h6*)69G}N1`cQ~vDP|d@mNh2wP2UJ=eUU&3%#$F<$XjpJ3Yg9kt=Wm!f0qg(M zm2!#J{hFCMXh*N80ZRah`@d^Prdz@lQT*ma8&+9-Ca3#j(;k$WnpP15*VR?d^PJxI zq5xOdR9lmm8n7qAOKEaE*Kl3^X}ZtzbS9vCBv3qZM^!={movxDZ5%A)?faxu0xg`EHXAR zdyz+{2e>qvaEbt!x>}g(D9zG*jH(kT%EvFbJxCC7oM#?OX!F9JD8kpd-0jML zPepNYed#e28ws3e4$U}T*T3-Qh15R6$;?$(62x@e@rn7MwFyU!MprUz&Dzku5|SlB zHyktaT9Sp^f_I+>f_s8WSg2ag?+D~UiT>@KNR=gmUnMfD&voDV$Pf2?PhLLr>n%IT z>C7?S;O0G2#g8C*ORM82|_5s1j?>eAevetY=D)I*uo;tgrD&7^rDEcao-ZWAt$CXqd!slLby1RSOQ0a?W& z9rKIcP1ko5T!;=~IJIcM=l=JJ|4@OTlL^>pt^~9*uLmSL!$R5wd!N1+_GD3ljW?1< zgoNR+n*DsNLO#5>ox^ax)o!5CAhB-R33ME9B!T!;z%f?N8S3&7+( z3^k!guiakIe%ELWo^5(!?P>oYzF3pOpXlFuScS@vuauVNq2808`_?Vt7N(YdN7*k) zud^N=M0Znrj+|S1MCHnpZ{Yps%kZ+E2J&NnJr6oxr;T4sPuF+=aM<68Q@{)Qnp7)3 z+zFTq@PsOXG+=NP|6yA7UyxymXb!|9%JWzU@VK6|zXv!DFfZOvB1<7@QwR0F2c_F! z8~btRf(@)uf@fSgvop8*v41rxqC$mn?i4wEM*TI{6z^sKk~Jua%3SC{rAF5Cn@ev7 zO{4&4;m0TZXJ&|-vc9IYC&8uyScZ6zEl4Ox{PN;+R#5v1bk@d#Is^ck0ki@YHXSk% zIDB8xyuD+@%{gYu1#%h6;H<_WW6r)kF5>%r{r!MBs2eoo0IpCxkzZu|j`j^aAkWLm z$q`JO0W^WIu(plmre}Oi42EfjYsP0@fY3KiTtDaKMf5J9{=FI@h1ejdpxeE)QG)uW zuiv%(*G?0i?G@N_<+g8I%XKi7#~#ht++Dbw6kf8@V(K*e_(V*=jd;`6))wIHQeZ=c zXo|?gUcG{q49IBjC>M;2RJ^QGD{9m(81K6Zlg!pYYi(gt(T?vQXKEOSxjzg+_Ga(k zddFSZr3bo@q67yA<6R-uJfVpO{=}DMLprRjJC05ad!;T%hVKmxQOHm?>aBbbG%}!` zMj)z#FkmZ8Kciev4x_YNJdv^(@i=V38fl6=U#PLJFmvD|!$3g-xiW=)N*a3vQoqi* z(Q~sZHGrnNhKOIsh5T`cW|ckp>Ra13ki>m&p=poVT&t+ZcgBd)Qp3EYr_#wj3#dxx zd(?T>`zrSvjaWomzg<2Rl#m2C!Ci;~LJ5KaKzp|8{{V_cz$e)3FN%Q9bbx|E#S|pR zieuJ9Q^0!^Otl4t;tIng^&^f`%vNuHL% zh&#DKv*vfMZ*ULgpXHFn_7t4=Z)rloa2V?7mZO!iH7#I*hM*wB-(9JCwlEc1Yg49T zA3(g&SF2BGD3krMXGO%(k$cv%rg86EB=uCSO?IONNW>`frp>z}sb4_sk%h=G17=wO zX{D&Bc<8946z8r1CceD9T=X(#$eK) zBe#FmcV?#>)YLVEA=w+Sp`v8?*)+^eHM!L^rbb6oYbWEC?$Q7Fd)j4dkD=O-fKcFb zW_G>FqP+|}hW04#2I?cj^jXbckc%Vam*Y{x+uYWuEbZ;}+IBcfZEe^`tdiLVIPxN2 z<&F0GaKm(TYO54-P<`(CX577Vru+{B;rkurw4x=GPFHAN8S{uu#9@-(l}=onM6P5+ zUeiOLfi47qtPu=PPD%;}MdqG^CK*o|7?zGM@UR%5JL`{5IFbi#o90152WaYnva>KF zsQl%fh~Kzjh3fZXN50fxVeCJL-SE@{MJ(>}^u3>2He^Q=>< zk?36g@5jA?>39JuBG29O0{aJx;1U=>2J;8*A91y{MWJDs@bJ3ePL1!C8tHpbra*y3 zYmcmb!$Ad(8prJ^AAlXnq0N`krd2Pwbi~FTc0!Ji?VqK7&#(Y{82n+5M|W*%R^L(0 zC`hx=(n_O>=EMUB+2q&Qa=n|?wKcufzF2VfvJzt0e&UE3FHr6%1!e zLP2fLyZTgaKqdv{$j{__-s8w-z0f4GnUNR)a4d&MNBCG*eZ9RRprQm2E+b~$UxZSS^MafEAny3`XLnpz0@b(NG=l=NK+=Ljx&zoU{D1Mofs2zVI*YE~`Vq$H@GVK!1 z&d!vvMj-GvqzFs~nnW+Z-tU!um)a7#R_*w1LQ~XWE+?Z09T8iY4f9LTD0~nWycR8I zx%hPxN_-{JHqA~S__bkkqH};v2>N3*O~k~4!v-wL{wjS`hS5rpKmZ7=S_E=1FneHK z?dpRaNM10yNf}H9($eK5F@rP2*3+FCkW7`io@`lK0NAd8TgwCRGMLL?y8@6toVk@E z&+||^S6f(t;DmoBpFMnM@Es;-cW?)!qZI3~t5Ta4$vShSKlc}=`CkQ`!gIc^MMe(I|w!_dTcK3&mO-D7n2MoCc!|r zS-9p6Oy?BJn&gO!iH&^(I4>I;o5-}jj8W4nxI};&gmWLIVGc8Ilt_uyxsslN;jKA~ zMlGu-$DgOCqG`Li@dNxF0Qy{FIv0}gSVACxe0iXmSes0)j)C9}t0~8&k#Ak8=RYXw zqK9MZ0EXu7vLqCDk4<7Vt4jShv(IL^?Vj#7y$v(itbrrpz%U%qG{0}@;2@fW8bIRx zJ3+U5E4ULt7ZU0Zn9boK_|^+^6*l0X02@ipIFl+hkP4E^U}B#H%vlD2 z6r)XNk>c(ju$cAy9kNZ3|ES7!Fn<^Zz!w6-`;G+X>q?*Wmq^wg#s7V4!33 ze6S+obp7GKU~ZU@=c`}s(#ViZCy-ARl%Qg5w6wY~zn7R}FD)RY>)B{3=t2k(3CgoD zKW*@Z0$*7)+R{2=RREI-Ddl||5u&Vq07&VWl;Qxu!$Z6qqH|Y-v0M`8d+8ZpDIq|bD~_4LuO8E%KLvBelEJ`n zMw`e7KS1(o$Xdaq?)Jp~JH!f=fx(o!U<@7s`KD$sb|qk8%#p!nv7~S!00jR-M_?*} z51-CYfAHH7NTb8A{?Z`}b-R}9C^(s|aLlsM2Idyn$;UB%N%H;{5Fc!sV9-bOAOXhB zLIfL-ztqpDpTN@LqLf-u`1U^?5)z!=}Srz=|&5vDD%C0#c|G`4TCht&f zV2*VtV4-&dCAIx0>Zrn;HBows0BT2jU9jgZ77O~jg|QL*LJN~F3Sq&Iz{!8UA|Hpe zfi{&p5UfnfZ?|>l+F6;+(ZODKY-L(FEeQSBSA9$ z7UkXxY7y*uWD8LJ8!AZ+fH4(M8RXUuP*WgV0n|an_UFGF8O8Wr{9E{%2C_ot?g$rH z^lix$@8AYW9axCGzn~;Y3E_Xqf<@|Qy7d_Err+sT;e5Fo1!v9ByJN52G7OLoO0?1D zwG%I>?FU`k0wEbVi1&Ns<$KpP5(-7r3|!6$WT}(pER|#K-<_>iVFYZGFQxreUo$|L zGeBuqhFHV;m;G!9wy|3R)g4LSwq4cFSBb@ zrXs2pAPnOM`eeggaYBJ`e1A@YQLU|=9l*4!7Mn&mTUyc}>V`^YH| zE_Q9Q%0$ThLV)&P?{T+ZYO0z8hpQW7rG!ud_qghP>ocQ4b-I#8y|D-WOvMp z=}_ty^?jdyt*$;|V34u21LZ^8Khxmt6p4s5pU4B42&ZC!kouR36%2obY?Na*vS|-Q zp>N;6D~&A(f~ssF9uZD7{$16V!9dRNeDmcUpq)K0jO>4!bHgc5$i({5Nx}(Huosax z=$TO({sjnnlG*pBwGie3p<4x|GHPW54%aE1V$shL@1dOC$8FEXqdq)3N1 zB?SdyuCA^>4&3-*pcJcq2cSy8uL6k*+8p+@Fh}BZU_wA{30Hg-Id-6@3p% zPe>dLj;Ybj7^E(cmg!PJ(+ANZaQ*e_A0|`+TMe%(gQ$jxhzR6t=&qPGGhy4?+okJc z%794y*4MYiJ@oqe>Js%wbW{}HnE@Fi7+tyDb&ACuY0ygZ8Z_f%E!6*9_!?#hR=BKZ3n(lG#C)l5 zAJEdl(+KvswX4+b1JqYO)~*9jA*ZH$1gC3lsNo6c&TqbT!3@I3&#!*KVPB_VI~@x6 z?wGi^Wst;)5r6xaGCjfKrVhsYLQ~uc)JV|s8?Xzu4~>B!ee5bIuJEB_$$Qv1CSvo; ztWW2XHC^A`$z+=4bLY*qVzp>sQt)KqiXp8gzK%x6T(Eue9hK)aT=>;8gW(9*Y>vuVEWZKKu zAWs0L?(?7znPY>XFUOyynFht^e-!ZIS00QQwZczA#5ht-9xqi(| z=C~=oK8ok+ys(?n7Rv$9${2@Vw@G9V1LsJgrO1}QKMFW&cpKh5MaS9V^HnGqpJP`- zTBn^8+x&T5G6{42d?Yi;ScMEFQ7LYPkzb+ails8lx~&hrXBWvH)&b3G4~1ZC*F9Kx z&X_Q_ZLftJ0N~?v{_su2)ZqSz#leXSPkX=kfKvBN@Ccgc%Fjzd>Gt;lci`z*T>;sq zZj~CKjR1!Q4@-o~d^B)tMt3Xpq;CgoCV2mdnM$=HDz}N2`w*}Lfx_Uv4N9*3wBCY9 z1jr%3Y9b62&@NN>mxK9yV_iHy3IISZ;o#hw^Noa)R=fxx^wtJI@Xp}vVBtFz{&0{I zP$zD?aCv!|AtKu_7Y?r}*9ILa8imK|fFGHDp`kg>KuTU7^#^`y^|X2LK}WCoglQG% zp&J#UUZ#f(zIb&3IfLQb_KB;i@1OE;<4_%Jp1=}jjqaA)GwuB`vpq_XgEMPb1|7#3 z-#NT+7lEdNCyju1`4p1bINm7;k9)4PJQ9 z&n`=Et8~GMb3G4^D&I)Rr{rXY7AHWUKugt%K$DQb$yYH-?%+f$|+85)NwQs2}+p zHO7rfP>OM?DT@8=%|-fu7KakRB)1c*}j^A zFdZ(3lkPR{tqi*+f@?SMd5(qhyjFF(R~+%QtYYICvt~nhG8^GXC=cIjk0thSMIMX} z#UI9?K|$uQF`o9x-amm=!QEm(xT2EBXFBILF&pT5V21>^n&y{7{wto6m5+&fNuANY zTeAYbuVqhQ_yRURg!IWJYtX(L@Wg$qq^|t&l|!agPuW9mkWnt50Lxc?K>_;D7Fy8N zQKZ7(r&tG2_CVhk@$m3yxz&08C!A2f1(`J2p4)+ym6!iQZA6ErBTA1cF{t4|5)wGz zIt=MQ*qR^O50IBzf`&}~aN$@S0pb*{5z7+1LUs~O@OKq$q8dt$E-EEJo!Mgt`*c+sF&3pJDtiCMQ}N5|^nitnH0qm^rGh=xCfB5=2oUh1bOh_# z)WTvMRO1%A6wS|TNsj>YMY_rg9{b4Kn3VUS9*cJ#(-QSb$)`qD`SdQHxK?@ITy8QW zy)_0#!|20u9{9&Vu(cmN?MxN6^B;K=mG^#U?APPL^hBX2W=Oa=x6xPolkdZXpI;wb z-LPYbAtNJShyMQZ+IvsNUd?Xv61|j{p2(qBag#JHw@i%ZMP@+49i5*SntKwuDVcvD z`C3a$&KVv4HLbFYnS3^OWEHWALR@tYl4`+mj0wEpYvBJA0+G_Vhrc{uXIyMJn2=Og zRlzY56VKuG5->}@U!Q8hMQX+-=kOAlye&UX3FR#6(`5Z0zujydZd+l?ZRzME?r%LG>*UB8=Emss!iMZZsy>+d_@SMhSBo}Xaz z^rPK-!tT$7Muh&B+Rt8`F%2cgocwtk<(u}8wPx`PRO?0PF^O^P^iYG`96Hzpa=p_9 zQ*=4`pSOv>ti^VclT6yxj?BJRr(J*YzQC$~8v^mx6!otSpC)?R%%F_L8?Q0SCsANEPVKaii(D~6 z`-T0_$CW0hw3YHC{CX^Qwz|5}!9g%SW-CX_#~k4nW-x7cvN|-IS>-gJ_3QJ8f%ZS2 ztbuwjS%^7-S1e-IA^CRMCpIZMlDpZ?Xz&LvR?)iy&AOy`-exvzM-M?U3N)D z&?!loOH!!fHQnP5Ry+)pyt=RQAnz_nb9Qt5eIbi$@uiQ7b*1_r4k~UM#TOh`xb(e} zkJKg9PvhX>koCIw@lvpPSB}YHfc%Jbwh>SZ7#*d}#ZDV48XD#e%>WHv%z`=|E>6x) z`$FK)>RBN=s{N*h(eY_vFQP6@3UCX#CSNNn?M2rkKoT;w1=`@H{oq@1`RD5)(T{Y+ zG^Ah3%8m4O9i7xf%;uELy5&6_c&R*cH`ClUD)XZq`$^SR9JGW&wWzV{sN|x{xYhGYJH^U7tfZ32^?aykB_C>bY5cybnvkp4xQ<5lFwCJ zBomX66b-fM{BTVD)>>X$J9SA)Zh&1h4`R2XlG4}ma@$VJ70{`;cm3!~W8-XfQ+2fx zu+vQ3e0=dBbexwI^J7Q*Bxt3=nIB&0Ch+KVR9?6UJiqQ|nsjA)|Le#hx!~I)QrFus zR=t1rWG73M)P2Wa^JT{2w_mnJ1XUYfIxVdIxK7+micBiJ;22%4_sG1x1W%|s?L<b3$-Yg{^W8iAxw)pve2fDFQ`kjG^DYj=t zK}IH|$j!cz4H+QTC=|cfAie+jQw=(MFxCJvWof@`B+#g+Fnqz78WY@p0CMffqRO4T z(Jw#?RGR^yNHOAb!V6~57Oso0q^xWhE&9f@1$2iqHw({e0C=&7kM@xF%3TQbr3!ax zUf7GDgjS^z>@*|!c+Xlo4LJO>3&g3yt`l?#lM>Uu?g>>(^0(aZdaTa#SK0O=3VLd% zX`N539}f^{_DPYrSu#Hm1M!cGol-5}>*!`BpIrxnQ7uPBef>{9OJL~%R76E8$@H+g zqGFDq+o?)A{P|)#0H2$JnXz~yBI5Jd1S~J0_eJ-wmY-g^H{%SEsad^v(G!@OA1Rvo z37_-@E~az`qL259hqQEW;0eabRzZo{0s%h0YBmG-YscMLlO5o5(hfk+vk^-{@@cT&sL7&T5Dy+SpD@& z1;NJ7t^%aa+}l5apL3w^QO$yvgo!=dr7hoY_yNLjYwSl{4=NJ?4z6j z>#{B%MD|EdfW?nrb>!R?jIXcN^5qNtRx_~nUEFwr-D@%5$lJ}2_d13#n%SfZDt(_u}(=Kx<1 zxemX-93lz7`Bt!RiiG=lFvNiFo$cuD9~&3<6x7326gcyfwKnWkAGZ_&tNg5PsW z9g?oaqYD~58ql3z5fn#KYq@Q>FYYT-VwVn{rJ{ku1n8G#nmiNnIbqe|z}WBRc9pOm z8y{cr`E%!~8@7^~+EyP`rNmm1l*Zc8W3l58}M{S z2>mmGN}Ye?$W{;XvYB;tHpNM0VQBExD8a7Q*K`jfzsH-Wd7gzUM$D>L%FKx+bIBnm zt$kflpOFIOP0YHWU#)gu%WJo+8Rl-zNE94L$O}9(-;rwWncOVOW^!GfTj{8d_i`wD zY|?S2J)thkRR3c-yE5jzV6|Z)v*r$wWB6kx&1dQq&HJ)MIsC^Pf-+TmZV}Q^TFyCg z{9Z>d$b?+J^X=9}i3*+=`#kQ2jfl8--BvqzPWkV(6e`aPGIN|CKTCV;y@^d8tDCgO z32H&$FG~~~qUD!wmh#F^rjiW6HU1b{5PAxeQB_Jv666t6Z)PQQy*c+%0(4A1S>6ktqHG| zigI}6-0;}rvH@Y7$7!RCtG|+uN5+cGVz}*0{p6-(q2wxVUByAD*|JV)-O!}1@L2ck zcyxhlbD98)&d4)2jo!w@QnKFjat%lDY8gSg+*d=I&vPv*&Ew!cgFA}#3S}em@0*FH zw-lS*t|L-1ZZJN&$DkAYIkXbbOxwYuBD_XB=CQ|BK#StcN9LRU(TFYR*}7^^39JRC zDD1Kl=y}Y8rM`Z1WESwa_mb3PquL6#U-R`QLl!o~GdbfsQF1dX1m(Mp$J|=Cq8Q(r zEzCE2Ia1wJ)h8uW?JyMw=Ix=yd{Ju4MYhFG4!RNa1y{f^fGD~SM1L`%0MD;iv&Csb z7utOJM%wOTRumSocD;zwBgwK%AmCIpwZ?v49Z zhz(E?kghU{5djqesS%OhYovtepr9fkAfQy0-jxoasHpS~2_zJiP6&|_0)d3PcEIyH zf1KaF=RWt`=U$)5GYUK3{`Obade^(&wZ91pkvp$TbKINe*OLoPkuT_>2#*7AAtP5+ z5obo`R*lRtPm>}QBW7I;wfeJB^;v--=lM5mkc%j#e%{87Ar6$RMEoqEUWl$x#TkXq zFP4w!y(D#a%1s(tNnvW;o9oKTEPvW~7*F#%^8URc;*P^X&6j5B%X5VePC2H2V=s9H zR8rF9c3ZNrr{@#n)j~gDZy?q&H}rvpf~VwVV0#S(L)) z_`T(emCI&$HVaO2HpMjZO%n>Fgr3j6;-k}BbDxW{=9@(na4G7mmD$dpeO83?6@64cN6uJsLBejdS*8lx29#Cx}U8hid` zv7%LzN@5J%-xOFG6W1rec}P0JcNXOaB~zUyTz?sZDjE0)pwDIdQ#L%_1obw>ty%hc z38_~&J$-C~Mkg8?8G%{MwlmEtDbWv~2N^&u?W*zmvz!yC?&10M_s5(F3I63046f*| zUo{$3U7d#hX8R!MdUMU%kn;HJ&`jNT=c}0g#B7LEfdcFJ)(S^cPDmWNaAbFW_mK11 zY{NB68ypC291N{Bf0Pnnc4Qxq76ui*x#mlL{^?h#N241(nkg3tlFataF0+V*rWY?h z0%37pS+3n4p3Q;%|%2I`hkvktNXP>?H~QQ zEMijWMNWfN6OtO?T^${7q3&37G6vF3r!{quq?320OYe6@A$S_c5^}jz=b1f!{(ci` zg5=D6ZS$G{Zash}=OH zi9bD*g+g_4i;F+c{%g&Mhg6XVdRRV;C@`^j8N4`jwpeSVqvOVsuL`*7iyh+e@4^J} zBFc=qo%}>s?Ig$y96NR_pJnv`ViP7$z}D4-M;FUc&-XxFuuJ} z)@dLcK`-MaNo%oiwRw_i2^ zV0WE{Pffi9P$;-elJmePJ^plgu;mCqd7BuRZxPRTd-?dXUcdgZ^{<-WY!-X4%L^F* zIuulnA8*{N5Cs91Ni=ktRA3caM1!}75g>(Hn=LI+9u*yJL|&NcHRp~<3By0G*~-mr zu`d7-8Jf~w61Q=4eNL)xXt?3wQI!1A3Ia0=<)oMxe!IlGxWnOZH)jG8O)^E~h=6?d z7bRT&{<9a#Y9`!mfu=X_YcJ~WM8*xy<0u3{(xVH9;DLMn906JpaKArGO-=o}fZxsT zhvaGpNS<=+f_J-f_WgZI=nlTp&0+n|!f@ULJw0bnWJe?ewlg|;pm*YBe7v$fYjo5S zIqUfLzE=-C)0ajNq6aixTV#&h=`Z6eiO-|;;}FS^m9 z`CYK@Ap_WZAgT=r4t`vC=gZUU{sXuE9ecu0O}O-zilkBval{q4(W8?zjbWKfq-cP$ zGI9N|ig<;Tj-cShD$x+XWS6Y@@YH>WBu{RE*Z=@@b}J;HflIF$eTLve_;V^)%-YdW z50G>6$Ja8aFUx4U-8v`GeEEUJiH}sE^si(~esji(0IL=av$*7&)M6iec*Xv2n!M{j z7fKH(2#f~k>gzY2(FFMaPrR8Cz{js&zowg|4Z_heyj}07kH*vueHt4Z8Og}Wap+fqNnsRdpJzt0?}0= z-n`1#E?K_nJAV?Q_A)bjBT=_)vp+1$A%4D7JKy(p-uhIn9!7y98nV*Ut()9}o<6m& zt`4(N z2f1L1k9X0RS;gnh?D+E;C8pz>66xn0cUDf0u8vNG#P8b!Yr*az<5nD)xO5EwJ?Wj9 zKeg(TqTlIYckLl6Td+K&b3$Nd#3d|%EqQTsF>Fa)Gqdjx{q#87^7iCDZIz|uGB|K> zB6ri4Tu=jed3jyY(1@MBks1e4H-vB!pP>g^f8TiOk@JU}TQ>WX@+~yFR-cy+fC|$g z5h`kwH6uBV?Z8)6sT36#+Y+)3h!uKHPI;meOJj*?yZA~6AdH=G|Hl{>4e^Zanyb9J z&GN@aB9s&Z-vhr6vf^BFPO0Lw5dH1L+&i z34mK!yW;-YOaIHop0FtAe$1teWifv?iLvr9Arl|I>)0xJ=}C+!c6WEC0sI|lYJ34W zQ~90i`ztD}qY{k?5LFCMNUnv_8_sRKJieo(0I%&)OV)i~eLhc6;SG1Z^5oRCE(TrA zWNN+&&o!oY2U7Q5i!tt4 z^&Z>AYJ30(mdWRZH0oQ#jJ_MXic-d=dNVh>PuS*>Bt0jlMzS(j)73%;ON>Kv3{tf% zTFcmLEH3cDheYo_COiMg_G2$xXHjT_`ZZ5@>Dzt(8aTW^Ku8_)1^h6ov#bvoCw1bkFBkpkRlX6=Fth%uyXlC@g?XW@c_~ z!t{-`5p}fP!njkgz18^U&z!?ldFOxV%?lgkrZjTN^IbJs%Jg?SMnayM!wKX7!A{lN znKQ%kta*(3ZeL2eiZ%Y8azpKI5MrF>saXKnk%rGcI>J~6dw=20wWcwk63H{*GKm7; z0w{mtmRM{%I3pPO^UdmEm4E;@dT|Wm9Sf-i>ekyROE(6{bH^ zT~DIDzl?jg7$s7)lIVS2s*;s};8q3va_S=QNnH?H-392PYiOv@FQ%CRdjNoF5OmW2*?d?~-ovqLNWq8MMOHnCnxqO})2EGp zx7TTuXH7LHWh!o$ZAkv51sG7VDZ0Z1T2WpgWT)!b*qD)EGJIdm;>w%Wp`Q2V$BrC%7q5T)`XN+J`5TeE@6KoK?RYB} z+9<(kO`uZtrn*zyOW%AEQmuoKcCA6#cv47K1H)_qggY)+ga`Z(A zg_f3L_UG#S{2NrN|9R{^A^TE)cNUXQ@B;XhSH;Y{+W7*=uuo0bjwAzdVmMX^4)!Y- z2%8!plYK@Ln&>UR3&}5lfH3x^Sh_AymWIpVlsyt`VxY78_8wCwfsP3f$FOS|5C;x2 z4=)@d7s0cOZEN|r1)RTwLk^wi(ijWB$bnt@o=ih**EEO7Jo zX70Bjoej?13OfM45^-{^2nt1`2+ClL$n=d5K0Iz+o8NDj!cHEVhTS?@q$b|wvNZX! z){{P;RYDuuQQ~yYM44rt(CM<2X{zXcK{&w--k_A8ntIr_WE`dhuockZ*>G!=|9LBO z^CSl$`{AG_0By#S(a9g*y-!KG7!J>qt)+uPW+Zq!B%TU3wl~MhW##5-b=*D&im4o| zWOQTZMSh;MSd~P&7v%g2W$ib0b#1@_>0!gpkHKRAU3M3*cOpp)o}|!@C<(W-_4F); zyFj)IaVQiokX@$(18PVxve1K~M{&E`48k}BCely*ou_YT zXp3FjSk6gTUhcrq6otp{=sR`Em#TRL7wppKpSoGm)16gG^L1`6`oTP)uuJZQz)M1R zx501r;HToW#vbPGTKcQVI*I44yyw(QLavG84>llKuS!$9{!gDi?F`+9X$ln`0aq21E-^!2=%caSd+njp${NVr;%oO#KywPN z!*!(;E>2G$TW#6(LpDJvD`DSQx95Ui#}jg=>T6C{Gw^xnVDVP1(o3Hc*VuXk^F7Jh z8yo8ka@$ACFGa-0+F^z5#2xQ>+Ls2&?%vwlVp8o_2@<=VorXa75h{8(T;C-=d%$wGvkv!VoAoOAF?6*a3LOqL%-dl{|=++j==lE(zU0n zb4Nlf25aZt``^E}{{g`vWOE*zI|njGxY)782!KlXW<~RU#}YbE0J2h$tcMr=JCv^{ z<`n;QgMzRu55by~u=N}S;Z^-2YTw`UR3?Dl{_q+~DE+?we}NzKhUUefcp!-Mc|=_3 z!OPQaXq?|8y?zBWUA)DHSS{FIT|sBR9NQo8A|@_-TG{CEn;)NVpwW4t!vy7??GDo`Rt=A7xy3hr_YGU zczu%D`2Nq${s8pa;gttz_!md_B%Hr`e~k?I%cQ}b&$+Viw3Lo;LRtE)uRlzurgX_E zS+@AIiym*X$jv779&cfaF)bO9mF9RNdCX4L);KGXx)`{H8Ha*Z`3_tFy< zWNx{PhQwHII=%$gWUe|{nmwr|;k`O9hVAh~340iaOz_*(qg*8ooO4n(%EG)@o^U(o z_;*;rI=cGHz^|ClOg zvAdLMTq1ET+|2s+!?NUhR6x|=X>BA;nQ~bCs@vN3*l?e6@XcSfc&El2kkhpL@?%Lv z$h_eu`Ab%LU%xmCz@N@?O4e!6kEH0GNXYAGl_d6;SZI1TuaCoDMxWe)G`9546f$xP zY%!fCR12Ja%g{nUmruqM&ZK0vsZUab+d8rh6b4)js+T%Z!EFz-6rEmW$s^#1SR&WCbE<)crum8c|2)lTgvxqW*aW7v|# zx)I&&KvumySy`;%ok#6>=eEuKrm6}9u*FCcq*3$WrH;eQm|EFL&Y z1akZbB~aI7HB8cdA+rFl-;ZU%13tI8fHQQSrUJ}vq5Z0H&>+~&+6}aPqJlh`uO01Fv|6cKN(nKmemf#9f>sa73ez2wcYr6{{`c7`4`T2 zp2^8$Ei<&;bcyQ2%3K?NgFNL|i~E9q{+_KsCX>_f0-T%Prv&Wa+tNBTlm7bkIbbb{ zsbPsMztzVkWIhAj-S{xF`04V4O0x%Da2#$ zFhqHTz=%zY?fA2f>ZuXF4zws02#1xOZQtV!q$|KFJ(jjAt1$WF23c31VQKzQIK_}+ z03{~Wp7%AyI1ttV`w3G7#0U64B-%> zH0OcuFJ4|)X1SIb6UN?DYjEcL;QRiIPRfkZJFd>AZgOquWuG}p44b6+7&3Jg{ zCby9il;vtj1Fq9g*|x;n(U$j&7W#O|rx0lf;VF^Mo|yBVY{!rI_{L8+Hn#UR_DA?6 zm0AK*2saX$9t2zrK$Q+m89d)rz%d2I7rCVvK*C{ZbZ?KJ-#)%10z;GEy}Nf$g&)hi zsIc GTr)0aG={s8cu)AQ^B)$UU5hjjipCllyK0B!x;qv2B|xfP@035#c2?HG@5T z;k6^hj{OSu@u0Az_LX%q1x%0c__L>2T_wpHSibH`e%|+DK-d{FpvXEmB!t(X)z6OWiHNn9DCP79Jk_9XYt0{o(3mJVRVUGIrYCTn6vDgq003XY_C`U@f1?Qsp}UwoiV6xh zAqKVgF*1q;GVdw_#x1d(uwP@i0M7plVV=0O^^5r50tdHaE!+R~TQdZ=`U>Mq>CJ-P zzWwpYN5OZt?_Jo|As{ZqA?HG$3UV5!Cgp$+KRGJjBE~)MJ%mCw9nlwiH6HeW0}yYY zS?gf+9aYVr&@KQpACx2SGHj(W?0~W)Bo3;3&hSF)p9Um4xv>GV@8xLo?~LV~bDoe( z2d1rtz#W(YSPkz)Lt3fR}cVI*u0-`5hFE9#cK<&B$)9u7|1o-w*nX zOLJqWYo6j6QFH$fmE|7?kaevSx_3N7o%@WOw8UuG*1QUzz8Jd$@^U5XSvVxIhU7jW zZ5v!hsG=#Ss?!XheoZ;|$Lg$x-RDg|8Uc0Q1j&iLklo^!8?kau#g*g7VUa>qF*$z! zau@~Km|Nw=^G(lgh?>GZ6()3biB3dpa8Z(y4jN`Gj{rS>eFtDYTYGzfg^t{Jpn(OZ zLkqUL$mTCdyi{ltL6=`KM#3B0gUWkg9cKbu$GnU$hG8vzG|EUK!ms6oPAICjej^2))P3s3xLpV^CXFC$UL>j#J_o(3lmUaqB zu-Zaij(J}9GCTTG!qSt8oqlh?;zi21b)V!pZVeoFBxsO|`S$KT2DG7qy4(q0EyRT7 zPTeCM2T3F>BafA~+;$+Sfx7{{59$W^Aux|r(>ocEQpu8*&5r_c4H?)*k58?VPznNq zK9O7ye!qcQ5X#EWKJpv#wwir1z9HFW**^SF8b@v%+;I(<)S{5qvDmhk0qyWcHJ)Yc zQ<;|%$Bx~AU(gf(T-$B`NkH)O44Cj6Gq|M`A)|t;S#AZQ+d}jfm&oe$09uy!?U6g{ zx%fbj&X7VDLpYAg&`t;S0~Yl`IZ09LzkA51Lo@CUSvqFdZ_TX>p zl_z)?-tMBBp{rH3$qR(Zku_qF;N5Ny`=_DW;{hZ&v#Pv)Hq(Q~TI1pltaFRccQ}^s zU;rusrGZb+f<@41&)0)per>6cT7?I{@@HU?h(qZ7e@a@KHRY1{OqY_pnM@gw!-WnM z+*D=828#PStqtXdzgjirw0@IIjkSr}c;Bw}Eay%@NN0XM+V?_Ac0DC|KlYFRQC{@f ze}iy6_b*f$>7U#eH+@4@%XX48Q{W zH6iI>$b;o2s;%K7j>xz87Zu2&~xD3{a%(RJ^D zc)j5|f9qD8acKd5oK_$wEL4oW)?ik1cX#`;k)y5Du?SU z0tbomZ#{Y1msd4$W@}(GEC50=$mh~?b6c2kknYQY_d{eNIbFuwt=4r#n-Ea_N$`$A z#6Z!-7u6KaqCuASy~xhaZp0HG7;LcbnCr9i*@lLOh48X17eUo<;O#7|tknDY_8$pN z2EONp=~dYqJxXWx38S)qwK@Q6DG6%$@>yG|Y+`mziwZWtf*9fg58ZXH>m(1L7q>o< z4UoBWhnLKeLEu%KUJL0bt@i2-qQmDug^Etd;Vj*I8O#6 zst1}&nU>r6?A@wBE)n3U(kG;DeqQ};HSd~#2x`KrDAwiR#rEGU>T1GWjWA&p(ZDJYWDI6!hUU}&<*X7j3M?n z(zW+0YqstFy}L?F!x5v?{rEIIuPE}49GL2(5)ux;Q|#dSZ<=#RJ*`{HAN&9Bn7|as z>vcAt(KMNy?Ec8mrXZnYyh2)WkO`t7YMQ?(k)W!RQcFwUp_MEA72HP`xfb&^jAU};Q7&`^(S9Mg(ssQsdQB|xsQxAb?(|O zPp<<3b;K*#{*iT~eR%@}$qNhHt#LId)^Ko*_t4Ly@k%}h{gtfiq0~tvRvw>U(!zH6 zp)@7N=%ZmeOwaaXIk%J&TYm8(I>)|W=o?`F#`?jaWx3*#22@CI-So@N6`Vet@kqhz z1GhNY7YQ^`Pf9iGlZl~E?cXV)(uQlK|Ar4;mrHjrKvqMk&6632xU9URU-6BMVJpU# zRxPXpQso;F5%aGU_iDPXrT;c;IC~@zr@zHjXsK zX3TfpHK`(Hg_5L@Opl<0eBN)Jg)L)V+G+}-5KOUJ7o?Tfa+++GL0kUbPPD&XF=7gt6 z8zQW)yS~qV9sbOsCdPP7_U)lBY`;aeY`xrB+33`cD`oH^GefCeCA^-l(%wh{row%( z%ZtSxw?SH;$DrLOerC8KX}*NeP|DR?}!{Mp;`xFaUCmsv) zy~X|St#gq&f>fQcLP`lPe`8Rga{I`QlM%s)nplZ+ zjHgWzW{pNOfWAg`&<5?gaa$`=;+9?^0@9i%1>wmc`Jcxr7hiId?!3uLthTQ_NQF3w z`Gqz}oZ4?wle=ZTb>cCz3w@D6W0al=?sERHA3{#m>A;`OBf}D0BW@9M1LIV^AQyMd z_DX)a&vN(NOk;~>YMM1QK4|{Ofk1lapkRC1@qR;^@mtl^CPAiFz4BzKyGOa>Iwc8Z zFlJwmDh(UIZE|1ct{$Oz8Vv?|4<;p%GY--yUK?mi$mT48J_Q}ONxsAVB5px9zE?h{6FKOzO zQ%%f!F)YfO%1O%1WSs+E5!v*cj&E^Y16>=g=04ow;sm8JIK6i_fo=4d99k-Yx(xct z9@gx38s!QmZ@OGU!)P_sr>nO=EuqS<`Kq?ABjH4Ug0gx5Pm#$~S6|bae&DwUnZ8ws z)hQ?mwH?IQc0+1ar^EmEvh^uBd>wW(P@H{<&7E&{S?THwW;g2lh@n`UQVm;7+O=`S zWaj7z))Y;49HVYHe|=dDbz`W$KqS{IoBGy!d9(ZIooGK3Mi`7m*P!a_)|_&BdEc(J z#_z|Xq498cq605>h^++i8i5vCOfq#PbQ1G$s)STfpCak)>Rd&Y+@e;~s!SrkmaVSi z-d}#_J}TlGQtNU+wel*Y3QylnU+|ZOHND@nkGb;2@TA?>mlVXn2WrP7GTP>tuuQz8 zo3%%-`LQc&OxcF#uc5XnG8y)Bq@QOQl&KK42hP6rrzH|H3Zjw0KzUQFvj``Ql4TnA z_O?j#*j%!GsyAY3<7gS9l}JM}@VXU*oZM-Z{^*ihM(im`tW9(NM5)C3_{n8FXgB$|of4;w)-8c^1gdTaqztnwfn~*x1xaG(+_K!i z{Y0^*>y8RKRK70eHklOO*9Mha$dn@l@@uyzDzTU#NTwIg5j{wBvYG<+jZP@|t~4Qu zHYjeA?JxO#?HRrue(~;*<1HZQKW4ilPj^cFkUL|6vdU@}rVp-S;=vZ!4yCE4(0tp! z1U0Qc_|;brx4YDeD9acOV(o*gmV06*B-f+1bN^nBnO@&C8#aji*GiH9IwE@iVnXt^ zLeui-b|78yCRbN15S>U7638M#c2qdj(G@u^NibJ*eu)0k0&p>~;9h=QXH@>Y67R_# z4F%#RPV}gcV}KTonMJ{wuXou|VGHpINM@Zbho9~Ur$fvdKy6KkJv2B(neR%%P!O91 zx>vI%?CR0QsB&-SFtB?-33mQ#Af4O#E7wpuA!aN-Z5ODOd3)jlM=f2m0M$w9D_M48 zC|bo}>emRX+CI#i0`);jLklYR>M#8%@z{3-7fP%mXrC1kg5P5i-1%AG$rz$B(CVi5 zMnahj+i{9p_N))x2XR=s*o7~0FT$d-ky!&e$J)`-uq$k9`245i9^T8=S#cVBpOw+X zwOOyCBw~_q?2^qAqzWUciW_n%jCE6T&_%TC>?2_6x&Q|NJCN<5rhZI7)vca{Ud*tk zE)STSPy2v(mSKO}f@s0xt1~)5IozgPB2`#6F znze=I==eRQm#Ql4)58`JK|WGmAUXjA0V+IdtSPo>cKtC#)4?JR+S|5wJSqruKo?tw zEXXC4rWPssc#p7_$l;su9*IX?CO}1R(iyWp;RnU8Jti;ui+}B7f9D<)m|1CG2riUe z|D|zO^29Ic(}t6$|DS80{_7R}KOn05|FGesohBdXvy2BNQ2rp;uGS(3v|>A6IH4U( z&B$Q+IjL&5t4I0EY13wokm!>L-l=DGJW*WJq? ztiNbd$x^_wU-Hyk13{Q4Ye5@P3OTLb2Qzh4Ode&TjAbs7Y4tBM5~_Y`;e|Sy z)J5Mx)(k(lWpi6J;Y4iTuli2WLRgcUsPIE51ca$`M`@8rd0m3U?U@%MihmWVK7=&s zvYrl@Vs9}Nu*M*LSFb+1$d<`lj`X2DM@lYkSYh%89BnH{Wq$416R_KS9MS0!R#HYu z+j-;1+q7|*;TWRH`+Esc+AD@a06bi9ui0+hTAaHDPXfbwx_Ny0bjOVsILf~-i3(kP zX3ZVJcdwL_$Z{XIuD5=>6xm9OSW{)}rt1ug=7cw6vU|T)5LTBWHYv2bc=ap*o~Xnz zKRvWtcMZFbX?@oIx(R96)D+SBlW%E? z?Jfp`Ju?)$s(?dk8ArE71g$%>QeJ?eIe>bi%e~e6665Y#kNo)Kisq@i&z?i<_7b}M zhW%i?zce~`Aw6?JjYV|oQ#~s43lqab;#fcXNyUso59S4{E|&BSo%vSW^1J*o%Oev* zJLF&mOdPGh0<&Va4?;+FyK26hwIf+bfzXHN?OW%pQYl7>Zdyx~>wUf~04uEu$}Dmh z7D7u`5n#nyeodFJKj~g8;YM$3_+p5St>ORjvoCt9$G4wHK?rjLvgN&mQW80@d`M8| z#+rO)!~M@MKWyElevnG%zdp7BMfmd1_dGdoG^4wlRIng+1mu!G;@Ub?xlU z9rzEJ+l|{ae~NJnw{|r=uGt|JLpW>`KJrAKz^@(p@}_2R$G2@2B9Axz{paKRbu8JY zk(Kk7R+}wvUvn;Q8Y>{2=%I};RA>p9)@&9wafvGElWA1RI_mE|y1n&4MC0M$%d3v@ zu}x{qu|ryQB|^TZ7|NAz>s1sz^~b(P51cg=;|ytG;ttH$i@Rn+RgGS5len7J))S~T z9?`nO%vf4{C2r9_8ec}OvYH$2D7is;Bgz+|dWdLxQZ{k9d3#F!+Y{pR6NWEEN-)HR zrqX+#-mC0E2KBYzL>u9c3iPy}s}0mqk~1B|<9fucf(4%MIZ!+*EM)w0^`4)_6~z~K z(GCuNCow2X)t`6ZpTlwO{?Zj_#wR}`47FKVTS8GUjWbDwYSh$SB{)WlL6M8kg5_#O zslMj^c=Q38cfAgQ^V8vnD$9qt+@gn^M(hw(Kfi9-zYFT(043LVBcgqwR;Jwt@LralMj6d?kPzq7e zqc6@Y59H}^HYVu-G_F!`2kWU%6h-YlflmCRkyujdU~$prYhsUh%`&DH#VQ}GPocOr zhK^ZbJTwUv1tL0^wqI$@)bbjl0^O=%x7D1Qn_J%*xQ|24e7jr}yQ2g~KfXc3t>JaT zQ7P(kx)CPD+{=dPnbVX-k+r&-AUL=bim$h#;5ZRoJE@_yjwaX{Iyytpp z+te!yCkIp@Z++=5=5W`c${YI8acyaKDyL?K=hG)&3i>QqbbqBTLCYlOO=L#y4_(G@ zaY>8!x{(T>0t#}aWpo}nUpgIz{(T&U(L zXGTfaANwRPOl39WBz;A2tDSuLcWMZ}_I+FA9WK-Q7L#fVEXD@<7M88X%!jlu>(G<(YJoJ@_X#TtoD^>J3{)(*Ln)pKe# z@0-`TZLB;#kh@=H!T-b!@O$-eBN>7e5Cu}5iUvV3LXbA+_T{OcEyGZ?)isIs zfANC`Qu%$xj~_;~Mt`a7E3AHLUi?aca7$zSoN0YP4n9KEDy~bamEA1PO_ud+9Ek`Q zMVF0b@KDGy$E)cRduvsk``l`IT5$coHbFyvOZiVE*7ytO*W2A6lMNG>#scS9>gbj- z^UY)0s%$A7V`!>yK62uj)2j<(e0)((gOz#pp6Dw3I}x?p z4o$zSGMTGX-#fNTSYCeYnNZi=SPM$AD2hE95wYEn*injR&HP)l*3-6crHQ*3U=uHg zAO6kJE!4<$!ayWk6i26N3l~nWyjO!aqsC}}Xz0ROpR+VeVWbzYSqjh#IXRkrx2KqX zlccW?m47MFu}DiuH2pu@0;t&H}yGU&i^Yv zu)q~LTFCmY$dSu=RlYGZ(R4yHOQ33c2^SN@9|TX0E^qh)d=Ccka6WVI}>f5V#3 zeXaUp_o+30dhG_PEHUMn^=Xp_<*5~u$_?kiF0)bF(xrd#p@5~qXsh(5H-t%>BZ`3;BC4oFbN@oQX3YF#@ z@H{T6N)@==<(|OVCr`xF@_+QJ{?VF!D{<9$@sig5E)kpx9h09|EV&&HyhDsm(k%|_ z^7Fi$*{6q)PP6#-;X&^^Gqr&2!U;P?F5LxD&Hgji*C3&76zBQIB%stP@$|`vOT37M z&mJs49$HpA%@dmfv|5lpdFJ)L5O4moCIazlij_>|nz3nVec1B{T>i_AA|UmMs1DZ?<94 zF-T0=&7QYZa5*s1_a3}EBa!*juYWd0L%i6wdbWdi;+Co5y$U-g&1vtIZp7=N!poV- z<*5tfd>p&)`&x$A8e}6e@E%N|!U{3Y#2rPceNcX9rJJkd(}m|xgK{IO%J)a%GjT+Z z!;uMS^JBct!Q}%rs-e!(G~wZ=KiTd>8;c-ibn28!^dEYP!CIADcRmm zz*8HFB{$tyJ3{?7isYN9*Ou5g685o?k$z%j_0_`dY007!H%+6G&Z?e5zWm`3JOZQr zi=Auz;J{#}1Ku;UE`OEIHDPGr@+^xp8a;Xafu-P8UWg4=Wa^SVj~qqmrp=lg@8olomdk& zPiq>Zj2~(1ekycSac%Z)8bx!!Ojzh=t!9VwJ$iL3r4UzDFsc;0)HtYc zshcy8Q$)wn&n9IqM!8Hv>pS;hz>a{o5nx;il=Z+0#^$x~^~C4AUvD=<939*T|_ ze))UplZiF??LZ{bf-n2&dsK+Y{n+s}$8(QZ#kPv*!28s$urG>)qVC5Eq#c@;ax6Om z(Z?|*KL-}Um%Z#Z_klYrTr{!rw!Nj6sWuZl;pTcKc3F0eDy9jmPT*z_kU`v>xT9G7NRvIh#4 zh2_g|X5>7RQ}S7I4t#6cYW3mLsm~5=J6RiZ!d2xdItlB02P+&R%cMjFU*!dMt z^~J`j%!KvPt@tcxRfZ;zTIJ1N8ayJaLCap@kkOErNp z9w&}VtZ*Rhx61;=L(|QSCOG-t8@<_g0iEyOA0=8J8;coLQ}Yonq^3VmMgl3lP%QX} z@D*F$z9{=aop`EGX6S2MWd81>ZTN)k2|d~Jt)sL&6}d($bi6S84sM4}cUe+rPX6DC z?6g(;e5!#67iZOo8oXP{IZUaV`}r3517FF6lP9W6NAg!zQo1LIm8UyflrriAQ#m%R zg0I%&F*%N=RB;4_%tqPLEbBL_9i?Qnx_>4}>F0$`FFPstKA-l!DA8AphFGp(nS}u1 z5xx@RC}d!cCUIF{JeqfU%&qw|t$Jn#UzeO|TeYpBQTHdVI%YgW&a00mzS{dKDyQH- zu;m__jlj3Xcku7Sq1y5zFJv1c6egx!qt9p)IoX$b% z_bu1A>VJh1SFzuoEKOso$pjB%=r^?S#IN<_|0LG?zm5j~w^w9m=WySvHkl_fM&9u0 z3l_~F8`*axzaWHkk8}UvqFAlI_vppzU;VzTFZsKvTeTB$s>p6scbM`SlWOgeS~*h9 zDp8fUHRnu$C^dZ-Q=w`t=l`^#}JusKPx3#0Kq1^4KwNwORY^_)L2D5huq zZiNri{FoOaCU$EbAStd=OAZUP-$E~yq|J_w#;X@`LXZ2Sh2TP>gj==4uL{W=j8NZJ z*Z0LvnlU1?zavW{HPP#a<7#U(ui~YP27v%?q-PncGwTV8duaG7ra4s*72fXe170U& zf>8GMo#Rk(KVoSD1(S>{F0$u8&D3UJLLT`3Cd6CeiR??^!*8pr^6K5Us@FU>HF5pE zXttkFLb)!;ah0#Z6>k$(BH-=P;$#akviALvKwt<*zHjB1KR8%A8Hf1oV?&%ZerBA* zoB2^S7{kOWcPO;7OPc*mlx&q5OZ4peS_Ki}GuEfjSu%Qc;`#wjlJ%gCdVFb?(`u4v zeH#1w8{bJ`p@xANl58$VIr{AnhhPU1FC7d3y3N|OUm`Xqp5})H?&o2!*ttzF#Zr5n#ce(kM6KGuqGHCf5pA^c~K2?X)p|g50 zDtHHsM|kqvY_)P-y}M4D4q)#chB7(7=gmkYEimx40V zN<2`UYXZ9+60l72CP%bB8mE95yp!0s%n&OqkjFJ6a zSsE=W7H!w}|C(^OAG{O&Vrt%)`i1`G{DpYI-r_7~dN6CUym=`aC=UqRLrE_=-9#x) zer7dTSc#z|nUv+(wxBFh=^C&k*ubo)IV)y65shJQMO7Dx<>d^LzOExkL;NeP?*YOp zQ3w1MZ>cC)IwM3znf0f4NwS`;nIZBH*0g8igRJymjVUkuKvZzFBEfpTY;D>Q0 zp!Po|fc)*FlxYV+jMJ$?q;bxY`{sZ7f6Gh#vP2xilXoTerO6@=n1jPWBd?Y(b%@p@ zlmc)c-FKIbBokjqp=ICK`vDa(Y(5k)GRR)}@hLyZsZvT?(j+g13cK)RaM;7bN>aSLT>;zwgy$qp@F4Yi(PZ=v9xBL#({<<^T4~n zMjOxk?sF>eNQM18WsiG*q_ruK$_dYW$e$;5YWRn$p={v?m1ewk@KLNh@ zQUqKhpFI{SkK~;W*eR(yAXFl0ReE*B`OrhGYj3%lP?k$H?RyA0PBE|gByJ@>acnuX zDlSop;axSaxQjb}EhEFFAgSOY6?5{$s@2zv8QDjgTlsQStXUG#+Q)ol7QS(3-EjRf z<-6J*J*QsnXItgl``P`kh0pNagBwu)oWDuE=~8DdV~Q&sk{yG5LjG{9{vO-1?}4Es z@AU_inoN-{pY!oBeprff9qCO%sJ_`CF}t}OF0_6AbYryU311n{uPBx)Oz{mI8^VM}d|N;$ zH|rqOqa7t;2x03slfxJRV^H9s?@^A)t%C(Q{2*4+rrTw^jNEkYB=(UvLj9wCSLQAK z%{aXmJz6#zV>ek12dfu*2o|~p?UiUqzn*mCy34rylLrfC?Qbt?3MINW9Cf&fZ2ZD_ zQhB*An@I^xlwT`j4N?D}fIF{dn(t4?cY-I4!0I`X5?WWkRnH2y<}_82%6*52*-NB75eOo1aNmmz@HwA0Nkx}2 zDWBtm-s4|Z#^3Af80klI*CsyKb#iJ|W!amtS3=OkDcw$K@LrjE71&PlZ!p9cE2qhV zJq5=grYF7jMjCppY!e+{npagOFI73?2~1oq+9Y~TOECPX`Q{NTsj9F<315-4Z4>d1 zk%DeFsvRF;8#EN}-b&1!_}RD{b33$UVx9L4dGFc#1Wqas4}URC-$p)-nTc^fL3ysa zGXBy%_edkbq}%Im`(#CxnOy|-Si=>!JJr*VZ1%!H{I$kC)*9odJ`0|D?W3id;Z%;9 zekrXr89kfdF+Y9dm1N{dZy5$1RaqqFr9 zurF%dQIe_SwV9sT@N}DzTP;qaUdq%oR#VZh+l!p%Gv+?gRoGaphC;B8cDK!7+@ThO2nf^$lIkF0KW(qvTJIVEiTg}9jb`H}9oLoM4*? zWK3zmd&$G^YI`_%PW47lB1n%Hx$JDhtHq){dJcV2t8%=bf8KuQ?FsbtOpok?Vksc0AtIMX(?a#P~E4==sZ}%RsF~2qN9D!3SPOAf0wEVDNvhyO`AYo zgx*tLj`1rs00hyXU~S0>jzi)-6VG{`IIfu|84oZj9`d+W-Wci&AU8FOC-e-$-iyy` zc}?Uc-^mH{~p;Nk|LDI9-GR|ZEmfee-Z~ND6^#}#MOg<+ohDIA*dEs9ZKdv zg{Vm5Q;MirJ~(P^u+;X7*^+r)#jC+ZQZ?eyfHOE^@6-O!%W;WzbOjB>f5Rjjeq(~)H(vnb>vKa}jZ#7>eLgZ!eR zHNGr}DC@Q2UnT{&Sa?^9yW1YqM_=r~7$_qn^1-jx;jtoS=KpB#%;TZn;)k!>qMJ~+ z8`*CqZq~A7Cn=IpC_9PlYqsoKP)S0OoftyKz71mvSz@RxgE7X~8H{~jexGmMf1iJz z=lSzDuU9l<<~!eW&SyL4e9rsR|B9zaY9wq0e?o)6Ray%h-N>#U;&0_$JI^6OsQh|e zE@Fd2oDc`*Uf^O|Jo5rY74voNsOJv4*U`Q)ja`at|D`~5vpsGc!y-o5^KshjQLX$D z&4Lb6Qh(l0T%wCee|=m(T#Oj5qbrebi=}m z^0XE9Mi&cp1z=Zi(Sv3ZMHOWyTWzecMrgwTZEWszz7@vfQoJY3?uYw~46uyag%PTd%s5NU=Wu01z`*qJds-+2MKHl2jmfakDck%wvM z%B=7AMaoX~7%p~uTBQ}H$jJo*OM0~rJ9LqC+r9az$Z-hF9KG7uSZTEOon;@(!8@Af z>+5VZ`(L>?!T+a?!IMs=M{XTp5jN@?T{xee^i%a6eDP&sPJUkNL;-Gho%(wvR66B9 z#M#UDzgKkAp8xqfocZ4uelKGDZ-4yu-2WHyVPI$seHd0^w^UyK3s5oW-MwWWy)D)N zTqLJNmi=%NuMG$_M9k5&>#)UG0-)jmzy6Pixv`Z);kF6?Z5aGNt?PYzZA;zUe2ex| zSn({w7l_i{C!kG>%N*UOr&l>kF`1bvvhP-JJTN4`ZI1laR3_^4D+AH}2_Cy!9obfd zRciu)QT{wtL|&AcakIjay!ca@s-Yn}-esmg(N-&!S)@=<)Onz^>2n5(` zto?8Q>$SMrrQ|>GKpb*_6Xmg5$+9S5+d7&4id|ee?Uo=6NJtPetC0qx(e;#|-3>V4 zp3$-iUGxCXj{1y7sV&wqh-RYEBJLCI_>4%!gbH$Cbwuu90c>ajBh8*WaGfH*IhkQt z?q~?RFgp7B*@A1P3F0wzLs!S}ircieb?cjx za(7rnOx|C#Y_w`mlF1*8-LY;@ijNn!sdZ@*ET>kzFI}!_OOjc7Uo+U>5AWYWo6+*e zWMMr@TK4rISn!IxdBVBww4%vo3{5CLkdD~4c$W5 zZcg)UNd#t)k1a}8h^Sk4qy*f$*IPLAxgfT#2)Xg;t{gntK{~MB=Vq#+f<~-ROQqWg zlb;za%-97hSwZqL2FP*??^f#GS;iZD+A02e=Gy>zXhps-U~_p*z9&h>-DrF8drgno zn)-rCM}&Ea8v7gW^`#6+CHKK_!xHP0W-hci=oRke04KaANNDhgvODcX{|9v|z{}DE zlRpRQ!-n2o$i(Ukj zgEqiw+SQ0&vD7I8Esl!3};}0 z&?SkmW~g1b!PR90DK?1%VFTdZ|4kdDkme$WUk9cQQSU z$>%Xr=^9QNi#jSf^_LEKbZUmI=$p7*bFQ8(7cwm7C761fqOq&}br=|x(eyCx8!wq~B zJ`&E+po#vsBm%WPNS=hTmx5?pYP69PP)0QubD-$7($17N@l#f4)@Qeo#s?re@nR2d zKqI58X|-~oT7HN+u!&n+0iYqD2^}fjAY72A=@TGs?pby|uRtR#I=TzRTZZ@VM)9uL z^(zA&Hw9?FV!O^PA?U`X ziH;5pQ7l4yLulSDS(=GrLA%??F;<`Pc$;DzsYM+o%>A%QF#5?3; zK*!)}U&C2#KnMED9Q2V?m74Y8@Q|SmEM}$0n8CC*f+jHFOU<7m#eLWs*<}+|9Y>lBXBisDOtwdn!?H4tr<9k zv9y3;4!O7VnRaJ{TD7pu7U2N*Oi}jaUiWq0mY3W%YtviBF}n%;1E6d-I;IiIFvZ0A4AJ%>?ZVe$;% z$}MlC8g2UgsBEor+o6B$H?-tCwDSFDr86h^9h$0&VwZu2q4LPu7shy%k+s|OwcbwW ztK;EjopC#>pbu#+iz--}eZC5|$$q=GysDiP>TZ{W;+(^psi=^br#eeqDRm$;AKu{M zG(B2fbvZ{nK!AZo$hO;u^Y(LN{hy~@k|h;-i6|CC$TdfIeleH=O zfaD%0`$Jx`!dy)2@?~JtfyHMv+8h;fuNJtn9KS9Fj>2QQ>pb!&00xwR#}hIx7eXAx<_b0LgqHMaM8{f1aY=|30}N13Zte|8 zQtHgsPF5Lq|`&LGGcnboqM9ur(f$4U&iMcw2l-^&BQoy~04{I~rn%nENoJ(u4Q2VCnJ=}q5y5Bk_--HdOxvBkJ-_M}c7ZGToJQ;@x_VC5 zHZhb5tYEDijAS!dM=>y`171WYHbwtO6d!oO8q%_KPvtEz2JZ*i)5* zGjlkzmwNC|e_p^XCDW|d=P8<3(4hIOm_`u)!AB&LH#vEWhTA)wy3vCuJ7rHepg^Q% zzD|DmyGlqC5^*%VI3eylP&ojj79tmdI8#I%>%3z4wVfAtxWufki(r?33YlU`3pMLK z2X)paJqf0SQC2f|+#6;Im%$pO1BKD43VvQtjYj_?wVdeO8X+}ku+9y<)^1HS3M``J z7K1Z%p&`b@uB1~7v5$x@Q>vh_lMy9u8i`XzeeCcuSPo%R^RV36&z>-zoytmkEJ6lv zz$TXTQTGP@Xig95w|k6Tgl7l?E8lz5Q?$WP_t@HQI=BvPRYN;*>c{$}nGFi>DI;!* zFOs8NLC;GZOq+=}$us2j5SV?=#Q;K-?UVu%5+u|VIElDd4Zjq8h`5s1a&ygfAqgg(e~GJ$fAOSiwxq#T?u8}uOX)fZQZE{O9*>@%eCiF-_b=i_04nmP$k zm&h7;^M<&<0D!-V!B`{(ZcfR}mUfEW`yAW_*dcW-#f{M9piL_0~kNPQMjTozF?|6X^yh|o=Vo4#~ob+U~+*loOs()??! zXzPNgP@bzuKsQgRXZ96gcbKI=#67)%ql9uKJbMMhEAw#<^mign?skOBKN8$HH@f~p z8rUG_P3}u`d`g9#HIxMD1jO-!kSI+gxocS%YBWJmtQuo?jh(#x9yFXXaa#q;z$zkS zA{v3iiCecxPx|`K6g7!G`1Y2?p=M{5$nZE|tN=Y*!tM6C0ViI-;6 zveN5!x<`h;hBGiqF`k}%>|Q)n!qV{9HBG${Lzu|vYv<)Y{$ojY;q zrczdmDfBwE4nLHQyW%|B+M{3h^^DbY#Yr$q0V)NEc=3q81d%o@wY?2VlATcE7NR87 zv2QG|@9IPY;SDMz@PS0aYZ?|lz*vJfF>L9B(*fHLMGDljwUUpxPuk z_w9!rnCwx!6uAxB9|NhcnUJXpjs+2AS%3xeA`Su4c`3b&Jf%IyE=aXKCid`PdXhkp z{~jNaetR~4|0-fB7Ki2EayVC>MgooWk)_YKMlRz$k5uSQK!izhBr%@ufYMdJ#2@6j z158>R5)nTwUG+ZfcYcA3m+5N8d}C)pDyY{*G!O z%9W~$O+J|sF-oD_Q;y4H`k^G{)n*Q@ub zAs#9@n{uL}*4aGVJck(9MR>4RTCozgE_<(SbMwk|Img~YD866?P&tGt2(zjqOXHUY zYa#g-fZ>RZggB-I*gY`QK8wUCfQ^9^I~@+$M|ruqIzY>Tw0YJnyIwHGt8=78GpsKP zA`&(!XA{M33Nw;OEU1regHJ8(5vx<*T*62m9qM?cZZCn#(R`JEK7!@jyWr)!g@=!z zr>`VMFr5DzbNpqZ)Y>dk2ZVgGLhM z4>j%`H?8?%a=W$yI$S2&tmNZm)TL=P6ADq+4?yv8IXSsr66qRB=L?W@+{WA3fID8I z@BxK7SZ2g%jtjh2W>i+XrGG9){qOK=M~@z@wEl7F+w~Yav_h{{hpZ<54*x zVKLr{y_}%uWS2_5S#2ORzTS0(@#hUpb>?(+viUbn&QPmnmLmt3)bHl#Et*bbvaP0- zq-IN*WqMo{Vp%dZkz)xryusI-eNsMXmy=4R8Ws+@_s zP~vc|`c9|B42_n7#d5v4`Ueaq7|KUGo08wg#L6owjvom*cKARW!Nc1-11e4%8yi1b z7(Uq3(=$Jg=K%6O1?oEY4h}Yg9i87;vH_k~X?gjFl9CfGR)3k-`u8wXQ|Rap5|Lbh zFC{h|^Q*JQ@;-|P9$%)zVzGzA>c4xEKKXGRJ#_rV)j}LD5+dDn6OoaoNS?4-#rT_t zmX?;9t;8yU?oK)**XP(HN!6JBw0bY*CM|YfkYcJg;~|-a7)=K$8JQPX(!aZ&mat1T zlDn4G?3b+HEaCmN#scLF!MHtMq^gHF%oSg~jCzJRKNB0AG z%mCn>)Wp9A^a@^Boa*iCD{_qSBaz9G0Q7WUkmq+M7^dv{bmMCM))!5Cq3DHIEHZIejBk^a0OpEAwW7V68d_epPgR%(jP z1D>BIs555ztr6Y>;GBPqeiB{!V zx=#}IujoU?Y>k=Y54pMt)ert9O5V|;NSBtD4nfE$?YAm)CH6SvuCQt_iDA<0bX^#}Mt517Q&l!umG`eNjg5ycNl6`#P<7kgMkcdI6ciL}U0lM@ z)aO^vRC>*_Yo#hi;PIONo6CO|85|`Pn5)TitCbmj1$Jm|x4`g%^v@{?Om+1F%!xow z9335pVBO}qY6e);L$F#=SWyx7NZ$ESz}cw7BIdQPl9Rdo*XQ>^WgWHh!kZ#-;!lgF zF9-Sia~2u2t^C;x4cb>fxk(fZF& zI-)-0d&BVX8Sw0Fdb=<&tV+?>d>m&vwwXulW{+E4lIxbe9r5bbJufd7khc_1ehpN# zrEybZ<2+dWv!>7NEG+gx9{D&cv90aZgMGrHp%(W70|$jX|It19jLdJMlX3;yt|O~F zt7gx2tE?d;b&vnt$(a@R8EstV(W^m0O4ioaLOWX@9fo&be)*!TCvdXWyS|~}*#`Fv zv+4{%Jz&q$((>QGkEEauB%w=gZWP9yy4^AysB=W+I?f9-F}?QKXpZhOX)PQC4~_y! zhJPil^(hg=zS{Wv4;+1kN!}{_Wly@+cngZi1o#Tzwl!@#HkZY)!BozAbN{U%g-C}l zQom$p(>-RP)Z$dE*o(Tnx50_3MI3Bvt!LKaZ#H@kjKvX738r=!H-6J{OG2T}Ew8Lt z*xDYhGHKVbuggy&&CeI2Mk(Nl@CM;n4^-Res(7n@VoC}ckH<^OAER4klGxr!wIC!^ z2018QMsJx{R!Kb_nj>P)+V`KI@fv6hlBIpfs@QX>)_Hw7UsNzCuj%7fH>SkC?~fHp z`$Gkey42p>EoLSr&Wcutt|hs$)~W4i3xB;CPx0Ave?4E^kT-+L`Xqb0$Krz$L;vmd zsI`P&X7c&ufv7Z>jQ7c8x1E830a{1H!D-fg?nZy#B#oDn&l^m8ahC}_?UYICA1S{T zPbg|Cs$|pW%2utc{9ztu+$eSY_hUyfx-9Vq%0xVNX+!=7Dw<~aUGtEe!{KT6Ka6&U zt%5^?(aQU8|5^sWMrWAKI`4cm+PVL04`2P7)>ZVCdr$rc5Y>jW literal 0 HcmV?d00001 From 425f6b7d68a33a428d24cfb0d76dfb4a5948db3e Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 24 Jan 2017 13:24:08 -0800 Subject: [PATCH 168/210] update image file --- ...endpoints-mdm-windows-defender-advanced-threat-protection.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md index 570b3cfea7..c842ea1668 100644 --- a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md @@ -44,7 +44,7 @@ For more information on using Windows Defender ATP CSP see, [WindowsAdvancedThre 3. Use the Microsoft Intune custom configuration policy to deploy the following supported OMA-URI settings. For more information on Microsoft Intune policy settings see, [Windows 10 policy settings in Microsoft Intune](https://docs.microsoft.com/en-us/intune/deploy-use/windows-10-policy-settings-in-microsoft-intune). a. Select **Policy** > **Configuration Policies** > **Add**. - ![Microsoft Intune Configuration Policies](images/atp-intune-add-policy.png) + ![Microsoft Intune Configuration Policies](images/atp-add-intune-policy.png) b. Under **Windows**, select **Custom Configuration (Windows 10 Desktop and Mobile and later)** > **Create and Deploy a Custom Policy** > **Create Policy**. ![Microsoft Intune Configuration Policies](images/atp-intune-new-policy.png) From bd5fee450507cd0ed920a34a70da7da123be6e29 Mon Sep 17 00:00:00 2001 From: JanKeller1 Date: Tue, 24 Jan 2017 13:40:13 -0800 Subject: [PATCH 169/210] Updated a link that had gotten stale --- windows/keep-secure/windows-defender-in-windows-10.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/windows-defender-in-windows-10.md b/windows/keep-secure/windows-defender-in-windows-10.md index 7ad3e53061..58ecb02cde 100644 --- a/windows/keep-secure/windows-defender-in-windows-10.md +++ b/windows/keep-secure/windows-defender-in-windows-10.md @@ -18,7 +18,7 @@ author: jasesso Windows Defender in Windows 10 is a built-in antimalware solution that provides security and antimalware management for desktops, portable computers, and servers. This topic provides an overview of Windows Defender, including a list of system requirements and new features. -For more important information about running Windows Defender on a server platform, see [Windows Defender Overview for Windows Server Technical Preview](https://technet.microsoft.com/library/dn765478.aspx). +For more important information about running Windows Defender on a server platform, see [Windows Defender Overview for Windows Server](https://technet.microsoft.com/windows-server-docs/security/windows-defender/windows-defender-overview-windows-server). Take advantage of Windows Defender by configuring settings and definitions using the following tools: - Microsoft Active Directory *Group Policy* for settings From f2cb79ccb3bf7e4efe45de3a22e52b070172e843 Mon Sep 17 00:00:00 2001 From: Justinha Date: Tue, 24 Jan 2017 14:06:49 -0800 Subject: [PATCH 170/210] changed back to local security authority --- ...-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md index a47a3fcb64..032e04c1ad 100644 --- a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md +++ b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md @@ -29,7 +29,7 @@ The credentials are also cleaned up when the WiFi or VPN connection is disconnec When the user tries to access a domain resource, using Edge for example, Edge has the right Enterprise Authentication capability so [WinInet](https://msdn.microsoft.com/library/windows/desktop/aa385483.aspx) can release the credentials that it gets from the Credential Manager to the SSP that is requesting it. For more information about the Enterprise Authentication capability, see [App capability declarations](https://msdn.microsoft.com/windows/uwp/packaging/app-capability-declarations). -WinInet will look at the device application, such as a Universal Windows Platform (UWP) application, to see if it has the right capability. +The local security authority will look at the device application, such as a Universal Windows Platform (UWP) application, to see if it has the right capability. If the app is not UWP, it does not matter. But if it is a UWP app, it will look at the device capability for Enterprise Authentication. If it does have that capability and if the resource that you are trying to access is in the Intranet zone in the Internet Options (ZoneMap), then the credential will be released. From 8f295e850dcb06a45318839658810800454f949d Mon Sep 17 00:00:00 2001 From: Brian Lich Date: Tue, 24 Jan 2017 14:19:43 -0800 Subject: [PATCH 171/210] adding MSIT case study video --- windows/keep-secure/credential-guard.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/keep-secure/credential-guard.md b/windows/keep-secure/credential-guard.md index eaabf72651..27813be3bc 100644 --- a/windows/keep-secure/credential-guard.md +++ b/windows/keep-secure/credential-guard.md @@ -917,6 +917,7 @@ write-host $tmp -Foreground Red - [Isolated User Mode Processes and Features in Windows 10 with Logan Gabriel (Channel 9)](http://channel9.msdn.com/Blogs/Seth-Juarez/Isolated-User-Mode-Processes-and-Features-in-Windows-10-with-Logan-Gabriel) - [More on Processes and Features in Windows 10 Isolated User Mode with Dave Probert (Channel 9)](https://channel9.msdn.com/Blogs/Seth-Juarez/More-on-Processes-and-Features-in-Windows-10-Isolated-User-Mode-with-Dave-Probert) - [Mitigating Credential Theft using the Windows 10 Isolated User Mode (Channel 9)](https://channel9.msdn.com/Blogs/Seth-Juarez/Mitigating-Credential-Theft-using-the-Windows-10-Isolated-User-Mode) +- [Protecting network passwords with Windows 10 Credential Guard](https://www.microsoft.com/itshowcase/Article/Content/831/Protecting-network-passwords-with-Windows-10-Credential-Guard) - [Enabling Strict KDC Validation in Windows Kerberos](http://www.microsoft.com/download/details.aspx?id=6382) - [What's New in Kerberos Authentication for Windows Server 2012](http://technet.microsoft.com/library/hh831747.aspx) - [Authentication Mechanism Assurance for AD DS in Windows Server 2008 R2 Step-by-Step Guide](http://technet.microsoft.com/library/dd378897.aspx) From 0ccc81b12cfc8ff8ea4d4f21df06c642a5dae4bb Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 24 Jan 2017 15:06:32 -0800 Subject: [PATCH 172/210] c --- windows/deploy/windows-10-poc.md | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index c4b3f18fce..8eb0b551c8 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -507,13 +507,17 @@ Notes:
    ### Resize VHD -**Important**: You should take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs, between VMs, and between RDP sessions. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy on one computer, then right-clicking and selecting paste on another computer. +

    YD5rEQ zb9&DBm9F7zCFqBLb%$m<2xzQj_-Yd4+3z%#zPJ$}bH=U{JoZpA&lMbbgwZ-y>2K!_jD zY+QD!+dte}=9)o#Gnj7C>fnYQjEHa<=Nw+eEVUj*?ktZ&?kc)Xw@+7WRey;+{5GB` z8#)Sx&5@vKB1tph-$y8*5)0HQ_lEs>*r>kyOx3T&WKHd_#blr3Asr^P#OnX)?%Knl zT-&|0Dv<~gD#;S@ISsMLX-W-QVsvn5idj;bD6x9W#lkIj#D&a%zV$V_qz7A+xz?DyS~5n{5jWqz0cvjpZmF=-*ex;AK8P!&Ekx- z&QT)H3{%ntu>|d7|Am?6>_*jzJiW%!pAU+Z5>2{AYE2^hCXt!9a*-m58I|_;Zlf$) zUmT4sg63Ns00J{f;=Paljj-67Q|PZ-!Z0-bD#{uay%+${nwZiOq`MLIMH+>IJ1skQ zU7Ar%bXKDBRX&4uJA9*Xv<%S`t8GWy@U!@fTmX%(_Ik;Y*~GbzoKY0LGt*{Oj%k`R zucdMm*5+h^QBESa{|fiYv<{N31^LMO&Qrn-#QFv`E`WwO1ef z&$?bhAq@5|=XwH2t%+v$vsc(ZF92{J^l2E71beQQy$($S5u};mO{sniF3xO=3;gaZ zr=*oKodUyuA#PW_E@jo}6A4^!Skggy4Oq8mBK%MYD_x#M79Ujk9e979CHz4x0n z^`kFXbD7R~<^=n@VE@vc*Md#sb>u)uam^x`)97LCPn4MIEwt(-~inUc-ddbx?TKs|VSL!4n z{C$G{-@(TxTOyjRxs5iQ>}6pFbOM|sRce;}xt%IrmtIQahjP4qh>Hl@OWxo4M<9O3E|v}edj;}3n|`n6G{SLSqbAflNd zw&?_Wl>`k1r<2DOY%i&SR*G6=u-SNUbe_3Pd=PQcH9876VtfYiu=r-LJDt?oGvjmt zC$BN(>p`eiH~5tw=YBQ3_v^2{@^=%HARn7zWfj%U7d5>&K{^f+JbC*XiehEkIpT?_ zj`_HnBE#i{E9eFtZBXLXcX74Ni+68bM{D?-<+_em)?obs!xhN(qp|L9tTd7Xt<-X z#_{sG&z;Sg{F_i@9XJp4CYRooe5HE9H{^FE^#i1*E4xl%9!sd}Ow~Io{&#eB^i0f( zlrqUY{1nis@g-7Lz1AeGK%KK9N}Nuw!75}(MtYET%n9mi`(6v~6G_$&dfL+?_2;Id zlIoHM%fG5@4R_+lY!6^b?~7dFJHc3LxFSn~svpCzTqm0UEw#9y`$|-BOQ6LaGr%*g z*!*fv8aBryW>!$d>q#GUf3l=GgFcki4rD@K)Nt+pCs-QX8@mRU?(bSXB5m%?%d#fi zAUUg&^-l!;0f}GyL*3`vP3}wkA_q5?2Zq}UU%S-3Ed`J+yupZ$XXQO4QKZ2xhcTipOr%GPt zqY3=_95Xq_iUTtubXk_;Vatbew^YEuPAU{F|RF~evG6X4kvI&^_EcK}n% z61<^^3V5R0sY>3$$hSQf#L~h|$D8XyK95ShX?V6S?$sR7qpExlqTw3SO`AUVM^b+D zI>svNnyuhS1EAya(#Z>D!38HYS#e?I5@Lk)^v@Nas_2vd3~+qo;!@C}3y8<6yCeQ| z^K;pA&r@y0YAH2s22YAV+Ji+tadqD6?s@7*AXQ44K)Ng;c3*%`oKrl0p z-dUEH=@ncpPx?h=##a~f(ec!yH3r1Pkt1e~iVD>2*bFs(n8egZP$p42-Je?Ep+vnd z&eM15dUkr!;Ro2!c-eSM`X)@T`8E1>E#!h{S5;=25F4!(K%`LBQdM{|1O3pweWzPq zcE148vm`VkHciXZ$C1VFEg<&Ni8G}-ZSTFm9_0SsgTe^AV(1rzA7$AP(PW|yvlU_O zgF=P1`f@xHZGI(w0)Q)sFH<-}4s_pE1Gzo^+t)K03#fst5RDLjR$R)-bccxLcEb5P zvV(-dhYHlUqqh8fbQ?faEqoLI*928p({R3FFo+v`(ijo*hhJAPRgoLLviG41 z*dM#K*ZMa0k#RY@a^lbuf0~VB)_gaz1t_H`yrpLTeGxz?JE@#anA!os;JI02#{B(r zOe6Y&KNqtdK^F_AGhQ{HA%_2pb9?k=!UYD zVN)HFJj4uK{s;f1bA9{v*iI#!!ot3|$m1 zGjhz6$4gStHbI>DSF1|{Z4S1JJGhD1nugt=LY%%oJ~UrZLBWLf@e=5j!@ie$Lx(r? z-!m@+-e|I*Ex}?4JtW{*kjWT&pS57Vq5N>8{_9u=vC>*!E$P^{YgkoH5_3mfx6f5G z7Jn=Sks(K%kK$BK7ny&Xgx z26dRs2{M!&cT%1DZW1JP%ca4u#aj~8&(lV_rD(6=J2Hg_L&g|g}N z&g;-sWd0mrKLGY{08)eYa^KxF<@t1WYh1UXt>BX!*$PYv)Rz#iIV(nx4L|caEP#WRPOZ zG$_@++?oA;ck%e7zNTn+8l0HEOLuw^gTdVSk6XH+1irIqfFc+2>Ng*^>d!fe+?9jH zh>R@ifruc~+GMFwc2L~}yonF|;pTQmp(A4|oa-AR;N7xxrL&ar?XNyGp~76OW^ZjN zf=q}!6;VW+BTJM*N;@oG))2WsIJ4R#LY7!wSnH9RwoqEXk*tK33QT8*72>|jX#)h_q%R%MqmC~6@yTcw?Ux++!4r7L&^ETVDC* zVy+)mcT~`wc<>PFb`%bsp3Af5{qizZCIY{y9D?Mjq!w}r^aGVrDMU-7h9Q>lEz^AMGW#25AS^6*XmhZI1)_i7{H_cMkHA6YU*;f1T zv>+Fdc~ON8`go+CaCoY@-DILN#eGhH<08JSsJ$=~TUA{H%%mQ8g~|^`7jmt|tNQKk zUGB75Z*@3rq*w&|UN3i9a5z$KF)vd%xAF8-Tmj2mJfLJvc))Q?ogHrCGJv4wfulff z2y2kF2qwBoOumf~=sJLhPLearn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). - -Check the context of your apps while running in Windows Information Protection (WIP) to make sure that your organization's policies are applied and running correctly. Using Task Manager you can now see a specific app's context, including Work, Personal, or Exempt. - ->[!IMPORTANT] ->Enlightened apps can change between Work and Personal, depending on the data being touched. For example, Microsoft Word 2016 shows as **Personal** when an employee opens a personal letter, but changes to **Work** when that same employee opens the company financials. - -Viewing the Enterprise Context column in Task Manager - -Steps to enable: -Go to task manager > Details tab, right click to select columns - -Add “Enterprise Context” column to see which mode your app is running in. - -Work – Corp.microsoft.com can freely touch and open work data and resources -Personal – Personal, not allowed to touch work data -Exempt – WIP policies does not apply to these apps, most likely system components - - - - - - diff --git a/windows/keep-secure/wip-app-enterprise-context.md b/windows/keep-secure/wip-app-enterprise-context.md new file mode 100644 index 0000000000..131f9594ca --- /dev/null +++ b/windows/keep-secure/wip-app-enterprise-context.md @@ -0,0 +1,52 @@ +--- +title: Determine the Windows Information Protection (WIP) Enterprise Context for an app (Windows 10) +description: Use the Task Manager to determine whether an app is considered work, personal or exempt by Windows Information Protection (WIP). +keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and Task Manager, app context +ms.prod: w10 +ms.mktglfcycl: explore +ms.sitesec: library +ms.pagetype: security +localizationpriority: high +--- + +# Determine the Windows Information Protection (WIP) Enterprise Context for an app +**Applies to:** + +- Windows 10, version 1607 +- Windows 10 Mobile + +>Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). + +Check the context of your apps while running in Windows Information Protection (WIP) to make sure that your organization's policies are applied and running correctly. + +Using Task Manager you can now see a specific app's context, including: + +- **Work.** Shows the employee's work domain (such as, corp.contoso.com). This app can freely touch and open work data and resources. + +- **Personal.** Shows the text, *Personal*. This app can't touch any work data or resources. + +- **Exempt.** Shows the text, *Exempt*. WIP policies don't apply to these apps (such as, system components). + + >[!IMPORTANT] + >Enlightened apps can change between Work and Personal, depending on the data being touched. For example, Microsoft Word 2016 shows as **Personal** when an employee opens a personal letter, but changes to **Work** when that same employee opens the company financials. + +## Viewing the Enterprise Context column in Task Manager + +1. Verify that you have an active WIP policy deployed and turned on in your organization. + +2. Open the Task Manager (taskmgr.exe), click the **Details** tab, right-click in the column heading area, and click **Select columns**. + + The **Select columns** box appears. + + ![Task Manager, Select column box with Enterprise Context option selected](images/wip-select-column.png) + +3. Scroll down and check the **Enterprise Context** option, and then click **OK** to close the box. + + The **Enterprise Context** column should now be available in Task Manager. + + ![Task Manager, Enterprise Context column highlighted](images/wip-taskmgr.png) + + + + + From a53afc2fe04093d233083c6c267c04df35a61943 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Mon, 23 Jan 2017 11:39:55 -0800 Subject: [PATCH 139/210] Adding text --- windows/keep-secure/wip-app-enterprise-context.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/windows/keep-secure/wip-app-enterprise-context.md b/windows/keep-secure/wip-app-enterprise-context.md index 131f9594ca..d01fd28285 100644 --- a/windows/keep-secure/wip-app-enterprise-context.md +++ b/windows/keep-secure/wip-app-enterprise-context.md @@ -1,7 +1,7 @@ --- -title: Determine the Windows Information Protection (WIP) Enterprise Context for an app (Windows 10) +title: Determine the Enterprise Context of an app running in Windows Information Protection (WIP) (Windows 10) description: Use the Task Manager to determine whether an app is considered work, personal or exempt by Windows Information Protection (WIP). -keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and Task Manager, app context +keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and Task Manager, app context, enterprise context ms.prod: w10 ms.mktglfcycl: explore ms.sitesec: library @@ -9,7 +9,7 @@ ms.pagetype: security localizationpriority: high --- -# Determine the Windows Information Protection (WIP) Enterprise Context for an app +# Determine the Enterprise Context of an app running in Windows Information Protection (WIP) **Applies to:** - Windows 10, version 1607 @@ -32,7 +32,7 @@ Using Task Manager you can now see a specific app's context, including: ## Viewing the Enterprise Context column in Task Manager -1. Verify that you have an active WIP policy deployed and turned on in your organization. +1. Make sure that you have an active WIP policy deployed and turned on in your organization. 2. Open the Task Manager (taskmgr.exe), click the **Details** tab, right-click in the column heading area, and click **Select columns**. From ab9e0ed4590d04aefcb6ab81c63d5f5c3bb31c02 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Mon, 23 Jan 2017 11:51:27 -0800 Subject: [PATCH 140/210] Adding content --- windows/keep-secure/TOC.md | 1 + windows/keep-secure/overview-create-wip-policy.md | 1 + 2 files changed, 2 insertions(+) diff --git a/windows/keep-secure/TOC.md b/windows/keep-secure/TOC.md index fb18c0081b..7662302c08 100644 --- a/windows/keep-secure/TOC.md +++ b/windows/keep-secure/TOC.md @@ -31,6 +31,7 @@ ##### [Create and deploy a VPN policy for Windows Information Protection (WIP) using Microsoft Intune](create-vpn-and-wip-policy-using-intune.md) #### [Create and deploy a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) #### [Create and verify an Encrypting File System (EFS) Data Recovery Agent (DRA) certificate](create-and-verify-an-efs-dra-certificate.md) +#### [Determine the Enterprise Context of an app running in Windows Information Protection (WIP)](wip-app-enterprise-context.md) ### [Mandatory tasks and settings required to turn on Windows Information Protection (WIP)](mandatory-settings-for-wip.md) ### [Testing scenarios for Windows Information Protection (WIP)](testing-scenarios-for-wip.md) ### [Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) diff --git a/windows/keep-secure/overview-create-wip-policy.md b/windows/keep-secure/overview-create-wip-policy.md index 1cb74baed7..c3ad6bf5a3 100644 --- a/windows/keep-secure/overview-create-wip-policy.md +++ b/windows/keep-secure/overview-create-wip-policy.md @@ -24,6 +24,7 @@ Microsoft Intune and System Center Configuration Manager helps you create and de |[Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) |Intune helps you create and deploy your WIP policy, including letting you choose your protected apps, your WIP-protection level, and how to find enterprise data on the network. | |[Create and deploy a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) |System Center Configuration Manager helps you create and deploy your WIP policy, including letting you choose your protected apps, your WIP-protection level, and how to find enterprise data on the network. | |[Create and verify an Encrypting File System (EFS) Data Recovery Agent (DRA) certificate](create-and-verify-an-efs-dra-certificate.md) |Steps to create, verify, and perform a quick recovery using a Encrypting File System (EFS) Data Recovery Agent (DRA) certificate. | +|[Determine the Enterprise Context of an app running in Windows Information Protection (WIP)](wip-app-enterprise-context.md) |Use the Task Manager to determine whether an app is considered work, personal or exempt by Windows Information Protection (WIP). | >[!NOTE] >Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). \ No newline at end of file From 40dfb8f552fa7abf3db256f149c1141446338bcd Mon Sep 17 00:00:00 2001 From: LizRoss Date: Mon, 23 Jan 2017 12:10:00 -0800 Subject: [PATCH 141/210] Adding content --- .../keep-secure/wip-app-enterprise-context.md | 27 ++++++++++--------- 1 file changed, 15 insertions(+), 12 deletions(-) diff --git a/windows/keep-secure/wip-app-enterprise-context.md b/windows/keep-secure/wip-app-enterprise-context.md index d01fd28285..b4ebd4ced4 100644 --- a/windows/keep-secure/wip-app-enterprise-context.md +++ b/windows/keep-secure/wip-app-enterprise-context.md @@ -17,20 +17,10 @@ localizationpriority: high >Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). -Check the context of your apps while running in Windows Information Protection (WIP) to make sure that your organization's policies are applied and running correctly. - -Using Task Manager you can now see a specific app's context, including: - -- **Work.** Shows the employee's work domain (such as, corp.contoso.com). This app can freely touch and open work data and resources. - -- **Personal.** Shows the text, *Personal*. This app can't touch any work data or resources. - -- **Exempt.** Shows the text, *Exempt*. WIP policies don't apply to these apps (such as, system components). - - >[!IMPORTANT] - >Enlightened apps can change between Work and Personal, depending on the data being touched. For example, Microsoft Word 2016 shows as **Personal** when an employee opens a personal letter, but changes to **Work** when that same employee opens the company financials. +Use Task Manager to check the context of your apps while running in Windows Information Protection (WIP) to make sure that your organization's policies are applied and running correctly. ## Viewing the Enterprise Context column in Task Manager +You need to add the Enterprise Context column to the **Details** tab of the Task Manager. 1. Make sure that you have an active WIP policy deployed and turned on in your organization. @@ -46,6 +36,19 @@ Using Task Manager you can now see a specific app's context, including: ![Task Manager, Enterprise Context column highlighted](images/wip-taskmgr.png) +## Review the Enterprise Context +The **Enterprise Context** column shows you what each app can do with your enterprise data: + +- **Domain.** Shows the employee's work domain (such as, corp.contoso.com). This app is considered work-related and can freely touch and open work data and resources. + +- **Personal.** Shows the text, *Personal*. This app is considered non-work-related and can't touch any work data or resources. + +- **Exempt.** Shows the text, *Exempt*. WIP policies don't apply to these apps (such as, system components). + + >[!IMPORTANT] + >Enlightened apps can change between Work and Personal, depending on the data being touched. For example, Microsoft Word 2016 shows as **Personal** when an employee opens a personal letter, but changes to **Work** when that same employee opens the company financials. + + From e56a34d558ae0f7ebe6fddeef6e7f39cfec82242 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Mon, 23 Jan 2017 12:47:18 -0800 Subject: [PATCH 142/210] Changed note style --- .../ie11-deploy-guide/user-interface-problems-with-ie11.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/browsers/internet-explorer/ie11-deploy-guide/user-interface-problems-with-ie11.md b/browsers/internet-explorer/ie11-deploy-guide/user-interface-problems-with-ie11.md index 5178b33d1f..a4a2db0dae 100644 --- a/browsers/internet-explorer/ie11-deploy-guide/user-interface-problems-with-ie11.md +++ b/browsers/internet-explorer/ie11-deploy-guide/user-interface-problems-with-ie11.md @@ -41,8 +41,8 @@ In IE, press **ALT+V** to show the **View** menu, press **T** to enter the **Too ## Where did the search box go? IE11 uses the **One Box** feature, which lets users type search terms directly into the **Address bar**. Any text entered into the **Address bar** that doesn't appear to be a URL is automatically sent to the currently selected search provider. -**Note**
    -Depending on how you've set up your intranet search, the text entry might resolve to an intranet site. For more information about this, see [Intranet problems with Internet Explorer 11](intranet-problems-and-ie11.md). +>[!NOTE] +>Depending on how you've set up your intranet search, the text entry might resolve to an intranet site. For more information about this, see [Intranet problems with Internet Explorer 11](intranet-problems-and-ie11.md).   From a0a3a3405713d06d6e925a2368ffb8dcfeb8a92d Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Mon, 23 Jan 2017 13:03:44 -0800 Subject: [PATCH 143/210] updated Hyper-V install instructions --- windows/deploy/windows-10-poc.md | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 27d9c03e3c..36176a9d05 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -201,7 +201,9 @@ Starting with Windows 8, the host computer’s microprocessor must support secon

    Type in the name of the client property file. It must match the client property file.
    Events URLDepending on the location of your datacenter, select either the EU or the US URL:

    **For EU**: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts
    **For US:** https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts
    Depending on the location of your datacenter, select either the EU or the US URL:

    **For EU**: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts/?sinceTimeUtc=$START_AT_TIME +
    **For US:** https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts/?sinceTimeUtc=$START_AT_TIME
    Authentication Type OAuth 2
    +++++ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
    +

    Windows 8.1
    without TPM

    +

    Windows 8.1 Certified
    (with TPM)

    +

    Bootkits and
    Rootkits

    Without TPM, boot integrity checking is not available

    Secure by default when UEFI-based Secure Boot is enabled and a firmware password is required to change settings

    +

    Brute Force
    Sign-in

    Secure by default, and can be improved with account lockout Group Policy

    Secure by default, and can be improved with account lockout and device lockout Group Policy settings

    +

    DMA
    Attacks

    If policy is deployed, secure by default for all lost or stolen devices because new DMA devices are granted access only when an authorized user is signed in

    If policy is deployed, secure by default for all lost or stolen devices because new DMA devices are granted access only when an authorized user is signed in

    +

    Hyberfil.sys
    Attacks

    Secure by default; hyberfil.sys secured on encrypted volume

    Secure by default; hyberfil.sys secured on encrypted volume

    +

    Memory
    Remanence
    Attacks

    Password protect the firmware and disable booting from external media. If an attack is viable, consider pre-boot authentication

    Password protect the firmware and ensure Secure Boot is enabled. If an attack is viable, consider pre-boot authentication

    -**Figure 2.** How to choose the best countermeasures for Windows 7 +**Table 1.**  How to choose the best countermeasures for Windows 8.1 -![how to choose countermeasures for windows 8](images/bitlockerprebootprotection-counterwin8.jpg) + +++++ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
    +

    Windows 10
    without TPM

    +

    Windows 10 Certified
    (with TPM)

    +

    Bootkits and
    Rootkits

    Without TPM, boot integrity checking is not available

    Secure by default when UEFI-based Secure Boot is enabled and a firmware password is required to change settings

    +

    Brute Force
    Sign-in

    Secure by default, and can be improved with account lockout Group Policy

    Secure by default, and can be improved with account lockout and device lockout Group Policy settings

    +

    DMA
    Attacks

    If policy is deployed, secure by default for all lost or stolen devices because new DMA devices are granted access only when an authorized user is signed in

    Secure by default; certified devices do not expose vulnerable DMA busses.
    Can be additionally secured by deploying policy to restrict DMA devices:

    + +
    +

    Hyberfil.sys
    Attacks

    Secure by default; hyberfil.sys secured on encrypted volume

    Secure by default; hyberfil.sys secured on encrypted volume

    +

    Memory
    Remanence
    Attacks

    Password protect the firmware and disable booting from external media. If an attack is viable, consider pre-boot authentication

    Password protect the firmware and ensure Secure Boot is enabled.
    The most effective mitigation, which we advise for high-security devices, is to configure a TPM+PIN protector, disable Standby power management, and shut down or hibernate the device before it leaves the control of an authorized user.

    -**Figure 3.** How to choose the best countermeasures for Windows 8 - -![how to choose countermeasures for windows 8.1](images/bitlockerprebootprotection-counterwin81.jpg) - -**Figure 4.** How to choose the best countermeasures for Windows 8.1 +**Table 2.**  How to choose the best countermeasures for Windows 10 The latest InstantGo devices, primarily tablets, are designed to be secure by default against all attacks that might compromise the BitLocker encryption key. Other Windows devices can be, too. DMA port–based attacks, which represent the attack vector of choice, are not possible on InstantGo devices, because these port types are prohibited. The inclusion of DMA ports on even non-InstantGo devices is extremely rare on recent devices, particularly on mobile ones. This could change if Thunderbolt is broadly adopted, so IT should consider this when purchasing new devices. In any case DMA ports can be disabled entirely, which is an increasingly popular option because the use of DMA ports is infrequent in the non-developer space. From 301b0528f454dc7001e59e6f1ee4553815766a60 Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Tue, 24 Jan 2017 16:32:23 -0800 Subject: [PATCH 177/210] add link to showcase --- .../keep-secure/windows-defender-advanced-threat-protection.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/windows/keep-secure/windows-defender-advanced-threat-protection.md b/windows/keep-secure/windows-defender-advanced-threat-protection.md index 3dc835c6a2..0a9feddff7 100644 --- a/windows/keep-secure/windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/windows-defender-advanced-threat-protection.md @@ -93,3 +93,6 @@ Topic | Description [Troubleshoot Windows Defender Advanced Threat Protection](troubleshoot-windows-defender-advanced-threat-protection.md) | This topic contains information to help IT Pros find workarounds for the known issues and troubleshoot issues in Windows Defender ATP. [Review events and errors on endpoints with Event Viewer](event-error-codes-windows-defender-advanced-threat-protection.md)| Review events and errors associated with event IDs to determine if further troubleshooting steps are required. [Windows Defender compatibility](defender-compatibility-windows-defender-advanced-threat-protection.md) | Learn about how Windows Defender works in conjunction with Windows Defender ATP. + +## Related topic +[Windows Defender ATP helps detect sophisticated threats](https://www.microsoft.com/itshowcase/Article/Content/854/Windows-Defender-ATP-helps-detect-sophisticated-threats) From d4527a428f4c66b6047246329bdf89749fb39e76 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 24 Jan 2017 17:00:44 -0800 Subject: [PATCH 178/210] c --- windows/deploy/windows-10-poc.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index 5d70b65ecb..fceb199fec 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -153,7 +153,7 @@ The lab architecture is summarized in the following diagram: [Verify support and install Hyper-V](#verify-support-and-install-hyper-v)
    [Download VHD and ISO files](#download-vhd-and-iso-files)
    -[Convert PC to VHD](#convert-pc-to-vhd)
    +[Convert PC to VM](#convert-pc-to-vm)
    [Resize VHD](#resize-vhd)
    [Configure Hyper-V](#configure-hyper-v)
    [Configure VMs](#configure-vms)
    From 23e01327d3fadecc38bc772d42e293d13dcb229e Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Tue, 24 Jan 2017 17:13:59 -0800 Subject: [PATCH 179/210] c --- windows/deploy/windows-10-poc.md | 16 ---------------- 1 file changed, 16 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index e6f72ef213..fceb199fec 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -512,29 +512,13 @@ Notes:
    **Important**: Before proceeding, verify that you can take advantage of [enhanced session mode](https://technet.microsoft.com/windows-server-docs/compute/hyper-v/learn-more/Use-local-resources-on-Hyper-V-virtual-machine-with-VMConnect) when completing instructions in this guide. Enhanced session mode enables you to copy and paste the commands from the Hyper-V host to VMs, between VMs, and between RDP sessions. After copying some text, you can paste into a Windows PowerShell window by simply right-clicking. Before right-clicking, do not left click other locations as this can empty the clipboard. You can also copy and paste files directly from one computer to another by right-clicking and selecting copy on one computer, then right-clicking and selecting paste on another computer. -<<<<<<< HEAD -To verify that enhanced session mode is enabled on your Hyper-V host, type the following command at an elevated Windows PowerShell prompt: - -
    Set-VMhost -EnableEnhancedSessionMode $TRUE
    - -If enhanced session mode was previously disabled, you must close and re-open VM connections after enabling it. As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. -======= To verify that enhanced session mode is enabled on the Hyper-V host, type the following command at an elevated Windows PowerShell prompt:
    Set-VMhost -EnableEnhancedSessionMode $TRUE
    -<<<<<<< HEAD -If enhanced session mode was not previously enabled, you must close any existing virtual machine connections and re-open them to enable access to enhanced session mode. As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. ->>>>>>> vso-7992313a -======= >If enhanced session mode was not previously enabled, close any existing virtual machine connections and re-open them to enable access to enhanced session mode. As mentioned previously: instructions to "type" commands provided in this guide can be typed, but the preferred method is to copy and paste these commands. Most of the commands to this point in the guide have been brief, but many commands in sections below are longer and more complex. -<<<<<<< HEAD -
    ->>>>>>> vso-7992313a -=======
    ->>>>>>> vso-7992313a The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to 100GB to support installing imaging tools and storing OS images. From f110240346249def5c6e204c3d98d5ef5f8b809f Mon Sep 17 00:00:00 2001 From: jdeckerMS Date: Wed, 25 Jan 2017 08:05:25 -0800 Subject: [PATCH 180/210] IT showcase links --- devices/surface/index.md | 2 ++ windows/manage/waas-quick-start.md | 6 +++++- 2 files changed, 7 insertions(+), 1 deletion(-) diff --git a/devices/surface/index.md b/devices/surface/index.md index 3bd0c700bd..7a352fb536 100644 --- a/devices/surface/index.md +++ b/devices/surface/index.md @@ -33,7 +33,9 @@ For more information on planning for, deploying, and managing Surface devices in | [Change history for Surface documentation](change-history-for-surface.md) | This topic lists new and updated topics in the Surface documentation library. | +## Learn more +[Certifying Surface Pro 4 and Surface Book as standard devices at Microsoft](https://www.microsoft.com/itshowcase/Article/Content/849/Certifying-Surface-Pro-4-and-Surface-Book-as-standard-devices-at-Microsoft) diff --git a/windows/manage/waas-quick-start.md b/windows/manage/waas-quick-start.md index 440689866a..1be2915c34 100644 --- a/windows/manage/waas-quick-start.md +++ b/windows/manage/waas-quick-start.md @@ -54,7 +54,11 @@ See [Build deployment rings for Windows 10 updates](waas-deployment-rings-window ## Video: An overview of Windows as a service - + + +## Learn more + +[Adopting Windows as a service at Microsoft](https://www.microsoft.com/itshowcase/Article/Content/851/Adopting-Windows-as-a-service-at-Microsoft) ## Related topics From 815e2f66dd2ba8c477f81932f7d54c7752a008fb Mon Sep 17 00:00:00 2001 From: Jan Backstrom Date: Wed, 25 Jan 2017 09:21:33 -0800 Subject: [PATCH 181/210] update change document --- devices/surface/change-history-for-surface.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/surface/change-history-for-surface.md b/devices/surface/change-history-for-surface.md index a91317837d..22c48934fe 100644 --- a/devices/surface/change-history-for-surface.md +++ b/devices/surface/change-history-for-surface.md @@ -11,7 +11,7 @@ author: jdeckerMS This topic lists new and updated topics in the Surface documentation library. -## December 2016 +## January 2017 |New or changed topic | Description | | --- | --- | From df4d063ad6c640d1dda6d2d35a613b4ad665f2bc Mon Sep 17 00:00:00 2001 From: Jan Backstrom Date: Wed, 25 Jan 2017 10:58:34 -0800 Subject: [PATCH 182/210] fix formatting --- devices/surface/wake-on-lan-for-surface-devices.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/devices/surface/wake-on-lan-for-surface-devices.md b/devices/surface/wake-on-lan-for-surface-devices.md index 5dce70e3f7..be64599ce4 100644 --- a/devices/surface/wake-on-lan-for-surface-devices.md +++ b/devices/surface/wake-on-lan-for-surface-devices.md @@ -39,7 +39,7 @@ You can run this Microsoft Windows Installer (.msi) file on a Surface device to >**HKLM\SYSTEM\CurrentControlSet\Control\Power AllowSystemRequiredPowerRequests** -To extract the contents of SurfaceWOL.msi, use the MSIExec administrative installation option (**/a**), as shown in the following example, to extract the contents to the **C:\WOL\** folder: +To extract the contents of SurfaceWOL.msi, use the MSIExec administrative installation option (**/a**), as shown in the following example, to extract the contents to the C:\WOL\ folder: `msiexec /a surfacewol.msi targetdir=C:\WOL /qn` From 68ae2a0ea26dd40813e8d0e4bc104eb6d74f19b3 Mon Sep 17 00:00:00 2001 From: Justinha Date: Wed, 25 Jan 2017 11:18:36 -0800 Subject: [PATCH 183/210] just removing blank line --- windows/keep-secure/credential-guard.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/windows/keep-secure/credential-guard.md b/windows/keep-secure/credential-guard.md index 27813be3bc..c038a4d588 100644 --- a/windows/keep-secure/credential-guard.md +++ b/windows/keep-secure/credential-guard.md @@ -48,7 +48,7 @@ The following tables provide more information about the hardware, firmware, and > [!NOTE] > For new computers running Windows 10, Trusted Platform Module (TPM 2.0) must be enabled by default. This requirement is not restated in the tables that follow.
    -> If you are an OEM, see the requirements information at [PC OEM requirements for Device Guard and Credential Guard](https://msdn.microsoft.com/library/windows/hardware/mt767514(v=vs.85).aspx).
    +> If you are an OEM, see the requirements information at [PC OEM requirements for Device Guard and Credential Guard](https://msdn.microsoft.com/library/windows/hardware/mt767514.aspx).
    > Starting in Widows 10, 1607, TPM 2.0 is required. @@ -61,7 +61,7 @@ The following tables provide more information about the hardware, firmware, and | Hardware: **Trusted Platform Module (TPM)** | **Requirement**: TPM 1.2 or TPM 2.0, either discrete or firmware.

    **Security benefits**: A TPM provides protection for VBS encryption keys that are stored in the firmware. This helps protect against attacks involving a physically present user with BIOS access. | | Firmware: **UEFI firmware version 2.3.1.c or higher with UEFI Secure Boot** | **Requirements**: See the following Windows Hardware Compatibility Program requirement: [System.Fundamentals.Firmware.UEFISecureBoot](http://msdn.microsoft.com/library/windows/hardware/dn932805.aspx#system-fundamentals-firmware-uefisecureboot)

    **Security benefits**: UEFI Secure Boot helps ensure that the device boots only authorized code. This can prevent boot kits and root kits from installing and persisting across reboots. | | Firmware: **Secure firmware update process** | **Requirements**: UEFI firmware must support secure firmware update found under the following Windows Hardware Compatibility Program requirement: [System.Fundamentals.Firmware.UEFISecureBoot](http://msdn.microsoft.com/library/windows/hardware/dn932805.aspx#system-fundamentals-firmware-uefisecureboot).

    **Security benefits**: UEFI firmware just like software can have security vulnerabilities that, when found, need to be patched through firmware updates. Patching helps prevent root kits from getting installed. | -| Software: Qualified **Windows operating system** | **Requirement**: Windows 10 Enterprise, Windows 10 Education, Windows 2016 Server, or Windows Enterprise IoT

    Important:
    Windows Server 2016 running as a domain controller does not support Credential Guard. Only Device Guard is supported in this configuration.


    **Security benefits**: Support for VBS and for management features that simplify configuration of Credential Guard. | +| Software: Qualified **Windows operating system** | **Requirement**: Windows 10 Enterprise, Windows 10 Education, Windows 2016 Server, or Windows Enterprise IoT

    Important:
    Windows Server 2016 running as a domain controller does not support Credential Guard. Only Device Guard is supported in this configuration.


    **Security benefits**: Support for VBS and for management features that simplify configuration of Credential Guard. | > [!IMPORTANT] > The preceding table lists requirements for baseline protections. The following tables list requirements for improved security. You can use Credential Guard with hardware, firmware, and software that support baseline protections, even if they do not support protections for improved security. However, we strongly recommend meeting the requirements for improved security, to significantly strengthen the level of security that Credential Guard can provide. From a36764c5cc76ec446b48b216906c6cdcc924744e Mon Sep 17 00:00:00 2001 From: Justinha Date: Wed, 25 Jan 2017 11:28:43 -0800 Subject: [PATCH 184/210] just removing blank line --- ...ments-and-deployment-planning-guidelines-for-device-guard.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md b/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md index 5de3da4f21..fad266b5ee 100644 --- a/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md +++ b/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md @@ -54,7 +54,7 @@ The following tables provide more information about the hardware, firmware, and | Firmware: **UEFI firmware version 2.3.1.c or higher with UEFI Secure Boot** | **Requirements**: See the following Windows Hardware Compatibility Program requirement: [System.Fundamentals.Firmware.UEFISecureBoot](http://msdn.microsoft.com/library/windows/hardware/dn932805.aspx#system-fundamentals-firmware-uefisecureboot)

    **Security benefits**: UEFI Secure Boot helps ensure that the device boots only authorized code. This can prevent boot kits and root kits from installing and persisting across reboots. | | Firmware: **Secure firmware update process** | **Requirements**: UEFI firmware must support secure firmware update found under the following Windows Hardware Compatibility Program requirement: [System.Fundamentals.Firmware.UEFISecureBoot](http://msdn.microsoft.com/library/windows/hardware/dn932805.aspx#system-fundamentals-firmware-uefisecureboot).

    **Security benefits**: UEFI firmware just like software can have security vulnerabilities that, when found, need to be patched through firmware updates. Patching helps prevent root kits from getting installed. | | Software: **HVCI compatible drivers** | **Requirements**: See the Windows Hardware Compatibility Program requirements under [Filter.Driver.DeviceGuard.DriverCompatibility](https://msdn.microsoft.com/library/windows/hardware/mt589732(v=vs.85).aspx).

    **Security benefits**: [HVCI Compatible](https://blogs.msdn.microsoft.com/windows_hardware_certification/2015/05/22/driver-compatibility-with-device-guard-in-windows-10/) drivers help ensure that VBS can maintain appropriate memory permissions. This increases resistance to bypassing vulnerable kernel drivers and helps ensure that malware cannot run in kernel. Only code verified through code integrity can run in kernel mode. | -| Software: Qualified **Windows operating system** | **Requirement**: Windows 10 Enterprise, Windows 10 Education, Windows 2016 Server, or Windows Enterprise IoT

    Important:
    Windows Server 2016 running as a domain controller does not support Credential Guard. Only Device Guard is supported in this configuration.


    **Security benefits**: Support for VBS and for management features that simplify configuration of Device Guard. | +| Software: Qualified **Windows operating system** | **Requirement**: Windows 10 Enterprise, Windows 10 Education, Windows 2016 Server, or Windows Enterprise IoT

    Important:
    Windows Server 2016 running as a domain controller does not support Credential Guard. Only Device Guard is supported in this configuration.


    **Security benefits**: Support for VBS and for management features that simplify configuration of Device Guard. | > **Important**  The preceding table lists requirements for baseline protections. The following tables list requirements for improved security. You can use Device Guard with hardware, firmware, and software that support baseline protections, even if they do not support protections for improved security. However, we strongly recommend meeting the requirements for improved security, to significantly strengthen the level of security that Device Guard can provide. From b401b85a72f9ede6d7c6e988154aaa804ab33d68 Mon Sep 17 00:00:00 2001 From: Greg Lindsay Date: Wed, 25 Jan 2017 11:34:45 -0800 Subject: [PATCH 185/210] c --- windows/deploy/windows-10-poc.md | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/windows/deploy/windows-10-poc.md b/windows/deploy/windows-10-poc.md index fceb199fec..d2d418cbda 100644 --- a/windows/deploy/windows-10-poc.md +++ b/windows/deploy/windows-10-poc.md @@ -850,9 +850,11 @@ The second Windows Server 2012 R2 VHD needs to be expanded in size from 40GB to Copy-VMFile "PC1" –SourcePath "C:\VHD\pc1.ps1" –DestinationPath "C:\pc1.ps1" –CreateFullPath –FileSource Host

    }9Ol~fmRB~weDiR=@8@Q__j{{j7(*%RF%{&?lVz#99yMqI~f6b84 zCVE+e(3h~?*u2P+{1(P&+<&5jIOz_JD2R;Kypi~+!u#DPn=nM0*)8DM5uBp-dJY#o zN^FLw(E76IE#Tl@G!kZ@26>>}6~if@)ZA4ZoOuInxfHH%LztYqOpSQnNNBspJv|Ulh zOQ~5b{W~>-^ubSEoirW^y9M2e@Bkzs=XfBP^pSq9;}FX(J^`kI4wS~x1!JLWEsh3^ z$OroYEqgpTW~+j}qJRVICzg*H|0ZCi+%AG2H0SD zpU4gG^wzR;_f`CM>|QNosdO30B=kT7BXG=zFsP*8mn{jYZJ#iY z6Xu@Xh0<1xzc1%dU@;Q#=7FY(!ikY^D}MQkZ%9*9*r}1 zO&I#jHTF<%=S3PNd8daPfS1393u}qqN<>SFb*$OS;gz=ZZ9Q1&W(OFR9-NIR`Y~OZ zTn<{Ylx1rV2teeJK)MuE0y<5iAodhS3`htDSh9*7>9%lODL`C#WyfeN9z7S`OYjwh zjx5YZo&!#-Zn6bSU0aO!=pVyAotY!Q!8&ygGT~!ba+HR3l+damMVR?yEIEP+mhSz{2sLR5xn?MEvyIKN5lyr*0Xzxlvp$|hXv*hakXcf{q7{#wUE;)dEpAc_z)p4STF zY+ZM+oPpLO>c3=%+~7o!bm?}8lFY!g+iFe!*gz_oAc!^&HUA%5ZypYH`^No$W{iE! zz8fMWMpUwottNz&BxNX)2wAe5Axo%?EtCvJ+Lg-Ah{_tJvc^y&$v)O$%;$Hxzsv9W zKF9M<$Nf+DecUeB^*PV;{eHhrIUP4Qnqd~5Kd8+_ENHNH4Znlo&no?CUr{K)s*7CT zTKXq-@<9mA1u4%2w#cO_Vzr<)8ku>G*&yt}g+>6|`;2c(j8rW?aGaPa5}TfCdTeU# znJt*~Vk@u86Th`=nVUtiFRbHNvERvIhe1F|x{VSrzD9>_R9RB4MGKv3@b>KW;qGpg ze-~2wop!@f>DZOn2O09%IOFT*rfH_7ObJU?dZYBzUL`o&(`CpWwSn?k0m`Q6^r{`p z9vGW`+S?TuB%dQIHUm@XqrGw+ffWlcf9-ICJz6bpaYo=rZOl34&IMvJ(8QjSmL2QS z(S6JBhcoCkUWM^*G&7(FGYN71gD)+T4bEJiG+cPfLAyq@@XSjPM3kt4&xXiZE^UE! zHxm@85YmwyYxYwk`h1mm7#fgwFS2=NK<+~F3+>^sqzpG`xPWtK3*@On)Kq~E-m8X+ zKC~Zz2JXvcemV=01Q7>J1TOqKuMR7{7ae(ax4xyl{6iYyIxl2dJ2HJJUTaflZy2rH z#n`&sX*UZ=o(8UU#cX&FN{z)K4XJ5C3k_nsIUwNgWC*IuAcd&B*!QN>JA}ZD_@X}% zNXBA>%oKPuTC;b4$0CTp69Rvh&)AKFA70plb>7~c#7Vkzg(G(VnhOI~0iSCVMh-|M zoM1j@2E-5H4{g6teR{{X+m?U66%VcJw&r!EKds8#YDQ$Al$$5Kx*8?HD8J8?C}5WL z{v{Zx)XZvT`}izUc#muvw%x zxopqEro59aC+C{Focu1q3{DR_tJeDYF;sqQjW6OE|owAV=x-% zHp|z1MmVSJ8c3CY<4!~({HW{~>g=Q;W!J$7DD!!@<+is&6UybS;^x zyV;mSnwLLEsk*1^kaVOP!hV()0P!w8?xGB6OyMa}OXiOS5o*+9xP#0NA5_2083#Tb zg!}7Jz%rXn5F@lI0PyKa*4k&Nh@?19jK0;s&X&Fv8>Rs#zMP@f>Bw=`{{PoK57th!0{I`al z*xQwo$h$M=7j()i>@!SfUwtgty>MzL^Hr-@OTU$TXtg$RO}ngG8yf-nByYCI;OrYE z9w#9hy|D~MWcy-OrYlJ{OgHmLFp|%udCo zQ~ZbV0~T?~oW9tr2L(#AZ%t8qB*Cl20k4PEn9B7q(QwIogWkw&K+7NNtu>0;Xv z3CVv3FtruuMk+O7z4_d`cMU}~r8Ui*YxkXXrD&ZU3~uoSf>ErNA^wt`E6Y^B>S4@a z&+GUt%_M=F|2;M!`RklKdwMH02DVYF$UT0^D+%^>+Hi_ZFGHmXrAclMZiU`3EyeHp z-T5AWdL@O&)QY(;wT>jg_^P(pJY`P{-0W=rCD0OVLy9qK?L8=pV;D_62A3$KcAU#V zBF@fSEsKX9^(QDHtWJev-ZH3Jj&?QHTLJaMlfXN*1FhKfr5|`ho%w)lib;HtS)|zH zCxKkh;|JxIqI-esuFvH{+O|<_C3SAsPb8t*3LwK3vx@T=<>9cy75AR;pgWP)T!EGR zh&S7l&cG#vpJEoW@W%Uco|lh-LcdEDJ(vK;4xI`#!|HS2?w5*N_ZH#G6y{#rwEEbx z71uP$P7xmWj*ohjpjX>iAGYQuwkX)n2_bZh%yAJ%WsvI&W`)Nh)!MX)E$trJQR5Ds z9LLMaLwu$_Is(SIl1MVTGVJSp<)lY1HgzhzxV1K0z+p%`r zct7;AHR7J>+|B0swF)|Z<>{>Td#Weheo9cS1HSOjRHl6Qj?f)`0ev+mucp?@i+Eu6 zhCk++{9T^EIa5$+!gq0FiM2C0c}Pgn5c5xa{~^`MacCAMxo9VM-+%AuZgr_N(Y2IZ zp`l3yGr%PE52}tNuXD!t2Jy-pW~ru$_|`u*)3L9-sM$FYm<@X+{a=rv2!)^B8iUS8 zR5km$%eTHJs^(<(;~272Qt26otL@FXxm9T{6Zs6L4me4zQ;K|_-4HrHMSOy!VgzVn z$ZFd9^h*-RGjX(+oqqEv7Ft&oA%g2au8Y(*qF>$JMR(aqri;QCmWYj4i)M&?1oZ7KouS zT zu#{WJmGSDL&jZs+UQ5*iN5bd_Q8T^LcpZ4!^J5hy>5B)YFI-qgv zAdBNf6-6%bYSlC?{D^B%y`R-a>Hag8rxNnc&EzfzXU(g~sWIbkbcSheRyq|n&*^_M z+gpW%_hssmxk+pC@)*T~eHoLxdz!OQJ-=GhvIj*fWh?*g#rC%U{kZdxyy#6ZQ$sh&9+dk{ ze5}1`A2%3~$&Xx>PYx;Ht6gE<5!x5WLu40Z9{m}j&eze$y@Dv zyNx0wFGwyHX3T#>?S}8lrk_~!z<%b%Qtt91vUj$PYyXfQ$>dKAG9$LEi7)&SLMlo? z>kLFt7Ps`_c5Q@M>=eIyMh=^G5+`kvmn$B*qR+H(kHXe2Y33{5R&2$qM4cy$v+akkjb7)?ORmi0dNWalK=|>_Q8|}z6V`S#ea;qRqpL8hr z53o9&;R{~y%e!_#SOE#94386_sGC+5t!m13{D&(#g@$>7va@`s_X%gFT&Vn5a`^KUYsLz#{d{s)U92#{rtLHI&o(;+%>>%`vN86V;W4TTE+KMeW zWr3BjMNse*j1JPa{ivut_!2>N#a1TF-<;{RR~op^=5A!v8i?Ph+9I(+@g=>k*cOD_ zFU;nHg|e;aDxd)YhXXkmCZ{n2ZVcgRG>VztcAXB_($8tm2Wv8GcJoA+26wjA^2E5l zQL!2f_`8%-yOmpW^bkzq#S#yVaAqJ{+MC+ z@5LJuq=H`&$M$yE+{)GT?mRiV6h;5BEIXP^*7N4<{}i9>?T(VO#)kZXG8ibk7}+WH zbfwt^t_ZHFc0ncMsaVlw?Xd*Ik-v!8i%myyo{Xkv&Q0I751--QnWZj&RsF`ZCxLC? zRMQl(yA_)nMcztaD<&^0*V$l*#ki|-H#{d1xS?gUisKj=B=Gj;3u0B-jTA0S2YXZ+ z$bh!k<8&5+*nag?5A;agLU%BG2-o8h_Myv5y>;{Bv{E zdAp3+%&}XS__q<}Lq~27Jbi40b>Rd#Na9I%IG2;0Lg|cY%HLqJ*$M+w)N$+}Y^5Tm zRdf-LeLSb^+F_V}cd4yL>6g-^QlHXyVdTM@la`ecXIyC!_g=d>(%zysbuAYx3TPUW zJQ()+XL-SR#bCK|1KQh}++X#%ld`RY$a&14;2jc&N}}E53<5vu;_L}LQ$F^Ys-#-& zB6LW&WMYgcuQgu0myL~G97onyd-)0qrSnSITWA4@{c=*k~D$u$rxnrWP* zI5=yrTqj^z5ljHnzS?5Q7-Z}evEF%?F`p+8pZ+uD`08yQy}6M|=rqbArTTH>1U=m#7CU zb{X#Zkc4n4=Zw+p!8Bu93)XpAg&RgJLlE}{p277kdFpXA^9E?BfpOUKZ;ids7d#xO z!K@g;9z?2VJa-|JC0OH?sm2)Bd^E4>8zVmF%5m!4zn7I;oBzzm97uml+djU5C}F z_Kqa=Mv3|xZ@y}%h2*E1_d6f^J{x)>l)(1gm}(wcUUh6ZdAKkjkm`$zxK%SIraYN) zBkg4!gmoRTT7SN*x_c;_^%{R@9I$T1N^(Y1!++|lqO+Mx$Zm;n0JO+-77J$i(n4Eh z{53XF`gYwKD#l^{8NusDJd`?g&u%lTRtZueqdp0ds9R_@zFc-prC?S0iCqlRsmv(p zi9mW$Al*Xk4MhPw&KZScQK*4p#MBi%MdQ9?$a$weohNUn);0YZ;gV#x8_T3YoM2(x za+A*xFFGd$;pN!WaA@aX@If%*s&<3eMjVJH2f)9;uxs_Kd*w9h^=yRpZ~_18m3-jH z5O_WDSi5#l5ie8$0+wAD%ne&pXsFbE6E4NJX{QXoXkDI=SX4FY;SCW-{fQW_QT#!^ z>sP*GV-WjZcP9AJGH-Ncd{F)U9@`Xq^^MyiHeA<;y`usLMAe$37NshhKu5207S??X zmo=SFomMBsbjO?oWpI33)Q;Dz4ABUiC$e6H3m4}!GCdb+WrilWL(iGV9x8v_ua$%t zy5@e(B0{rbTu~~KU*M3()-};OgLlQaK10bVyxEX}$aC?~3>( zOIFk{x~NulO0hoi$(+&XEdPnnn0w?XIUn!Tu(Ezq$o(R`yNa=Xdb8c&s;KMCgmIz? zt=?H}%8J&I8~fnk;~r&d3e5gbP1m4SA)iKRK|+IR@hyL+*|C#lupCwpOCMpJ)8xY78Pts8z@`|Fv$5Qxd{ zX2Ay&Ty1LOvcMNThd>wXpsWgSo5Zu=WeL{_8o6Toqr7dI`aed=r(XR7%k$|Qsk|tj$;NZ~ha)ldI5+J09-xoq5xZpE zCwXw5Kd~+wFIz0M7guiW%uF@ms^)0Va8}g+$)lV+tcYlT z2g=|OWlq~e6;zZA5@$~|J_L+Y7joZeU*mM6`r7;|(S4HrB`^^n*S*I(F5&q2W~*E7p;$v#@hgfsM{$S#@Wh{nbZ5 zwUm0I{Mw=}zuy#IvQK8&wJyGGP23@~s2d+Unw3SEaw(z*B#X911BFZ)N*G}^tSj8u zov+c<2~&{_JyU9L2SFS<2<(zu>a73PzT0Ze#_H`#=5bcmFSWv1|JQWFkOi(gT=e0u zENvabMqbFaEZ4oZ9{Dxr{>Z&^M;VyqSQ!wLe$uE=R7*YlXb$GS#KA?re*rDEEcK-3 z`On5?VtU4^YK*D*&?Z|+!|36mU&bXP)WoSnwT&&)6#lOa&C%(jscSNze16(RvCCh( zPLfbhrHp~FN>%?C-z)e-s*S1-b<;KIwcO$ULn-|sqTx5=2^>@#Y$R7(JyK_}i0=xC z!S5Mwadx7~?$*T+7c&>@1%$F{duB@5VpwjeC}Y@0DDcNk+^q)1X?~Kdx(551B$|WE z?!aA{Y-Ngr1RY^ueB0Ai_`vCVkNf)>qSJ< z?Xq`o-jrzCIr#~V0k?=BmqUR9b{CKG-5|13`E!Rd7aaPOem_)njBD(QWBK(!*D0-g zH|)D#_3LCWJH9J>(`n2&BW@U7jEZqH@lK+u;vfe_RAA4Aj7cFtf^R;n1e>cdG{(t? zkNs$14yT|#9a371$C=JE>|?0}x}pCJsgP$wW`K&b;D&8IAky1I0=sW@+Ke57)OmwS1w6+F*S{6{wnx6WP+ws_p zDu*WZ4Ikol3O}c1A3LKUXAO9s=y#gS8w6|XKg@sKw+lVHQRyhOegh;W{xtYu(G5Z~ zBo5X|1HwDrtD|i978ZO4O4+^C&0Kb8P*&R46hU-3tY#Eq26H8|Pfv-o51IYvOfL?wY#D&O1QXGLCy_)ui zha3+cef5;BAl@@g00@O&!2R{qoukf(@`Q5+>F9H-dl`yx3z`!>U!$Rc?20=LyYd&J zEQ2n0Mpe9W?|B7i>P!9IX^ln_Ul_dc-h0vvRTYqJ`!%+M1%`v&G-}#a^jfM6M^W!= zar9E&IDm{#eNeJqPuZu?uT8$Jd z#uwUqYAi?}8rv`P<++dJgxrVNk7u9q&TE9+p3IQvDF0i4GBAy^i*KWzRyEH)BILzw z>7ui^SGjDlYPA8tNU9Ab#hXmCetDKcE?NuHbtj6R34!4uU!BodtjMu}C|RDUTZg{S z2_pyGpu_`P8FSw_L7X{Hu2yM~g#>e_G|#)iKN5)EHBN}`Z`x>|2!l-VGJ|Gtp3xM> zIsb8Ef!E>-=Np1tL5ONsMx zZtJ?V;L@J~QHX&kub#YZiq;x}c>OAR_~~~xY4#O@y=Ix zwj+3PZHK{9)nDdr+p-$cccCr@#w^#$Xj0$snR%ph0Rz<~mHw_^m82dB6%BMqMYaQ|m+?nm3A9=E-F%0+^+C|;N9+O2R^%*6963QAu0Rlz$(m+l4KyFL zFM8qMDm##s4Y?3ZTC9sCsnwNRy#Lnjf608c7#-?{bH^P{A|6mi^a)-AYR_8>SRl0D#VA3Ts!H+x(o^Z&x;)3 zz5g~Gr49?C^^fk_isC!cie;%kJITTqe`~aEFCE|+QLodzg#d$qKDZrqRPBY z;+DZ)lfqT5-s1{~hQ?z{X6MZ!@4Mh?@A8nS>*bqe+N#DSiEfq!=2{3WIXz=} z^L-M;#s!S!ZK@KPik^QYv|D~F%I#H1%;0s{e@XF4>mKt@11gW?s!sTP?Em!f;2}-( z+3SfP+_B9GapZT)lQFcy1`}e25canq2{^sKID5vwgLvxig?wh`$X~D9%8q#FIY2bK z#$g|jylm$XAJafR?s?I2Xh}{qK|Y{ZXiws)57dfOiccKn@_4<(v4fKlqTR9LiMQ+@ z1pdwft&}8BnbD2rcEO_0EH_c$GMrk}t8;^#eKEx4mmu#)yT1p8TO;2Hp>pHaq6&M3p_ z2>`4BCxYmI87k6U0L=-Jhu}}1o2-$~A!Mv&IlQ&v6g_~+t4XS;o3sVbr|6vCB&D}x9#Qd1#ph->GFRYqZQajYyy_nfK{oy z!PagpvU(28`;2*4O9{55;p-ZYhd6eZV7+)rsdrEa(n28%EjN0*XEInv~51jnXJ%P_Cde>;Dv(9+7Lj79U&-Yjq$_AJb zBr&K3GE!;A%*#c-fS;YQncI1eAk1UOa@t^HU@Do03~;QIQ5r1O7bPoXS{)pKt)Y$y znSY^*j zrk(AkRwr7Yc2OZ&C;6{li>=ZYagTN6yE}?DV z2ayEGzn#Cy9eS~Q?bAohVa@b@ zdi^DSRQNq!$~Q&Mc8FVX-BxKrX|`8~n$|PpI_vap_a`I{pmbk!rJS|09CAFixl+5#u7D8Fw<%?^DY0LGw8HK;%iMr%? z{jI$${dQ}_TJswU@9+1+9z&zg%!vBG4e}nmNXm#n2;{aSycP8WcV}*$;d)udi?}M4 zP;%5%*>J_Y;sFY}=LhOzeVSk1c3RN?-P9UAIHW8kAG=q8Q)Cp_w~8WVoA>3NUk$Iez$IchVf z5!c$jdsFAieXA1u0stZs?$gW5tv2Lz5&#ftEqX8*2&{Q**pui1QhYg1C{XQ2kffuF zxPt|r*+*rr0eXJR| zS7sg>dO6j0u7#5wNb2xIiHSUVK;-f0M3Zc)NiR=;1*DkazoA4EM)I+Yc%iP(5#p(J zQd)bk))|-^XA+R5jhB{%PaI$H{itOzTW#>oVcl1a^H>O+ukC%pS3w zy-21S+sQiuJjqp!IuwbN)n>my<<^c$Ps(6GSLOJ=J~RbW zD))U*HL*bO^=u7IR!I>{T;)@9&xPy31n`E>5J`Of(s@M6ESSTMxh z>7Z+8o?!Jz+J_CHdtz?-8WD~9gK;%^eZ4ko^9|)gkC(giexV;79JRG()m`JcsobCE z)%bQ@3lE4rIsSIJcI!G{{#d|6idT=|x+_J{ocKo`qLR(-ioWCWOqt!mUZhh4jC}h0SrkK5m~UXVBtDO#!Dm z5`nAAf|`nrk+K!m(5rFcH1J_y#UY`5w8KfRwu`&@)RK+$Tw?>%WbfuG5^nvBhpbmA za!^8$rp@Y9MO6H7xh{h@=*63l!zo)K7q2DAy3(WG(v}uBr-D zo>(miHxX&a%(}@QRqpsBIN@D_fIUf(`>-LP5-3h3iHpJf;kLD`+%`)0DzLPIc(2UT zJk9g~kbwSsT~}`QKj|R!(J{Y1-(%Wz64YRDcNLV1Up}ce092s{=mhKS_cQNL)5u8U z>vY>=c19*#pCR`~ekci(AoZ$ECunciBNgoj?E|ISziulQe=8HoeSm#ee&rSW*~!FVBT4@IcDt7{p2HVKAs(S*gBo9ru=TUgL&M$>?_H z4>(D7M~!y(j9nvwa<_LJp*%bPn>>42yLE&sc=@e%GXB;wDUBq5kbkOCBx7#B^o6zJ zS|y^-h|GmDc|h;0L60FNPzC9pbxWjwuxrVUVJ)Z-999wnX-Fz>(+Y}r*BG}noZ$v#N(~y##kM;UigUL~i`px>Fc9peZYoCLY1nfu&vD($4Yj4o4Ey}q z+?=R`AU=ymXO<&~XAaXS4Io*`V)*Tb3xDbkcmQY@EMz&QuC zojAfZ_DCEozUYH}_%E8soeJLd@*`h!|0gf%H?c?e&LrPSu{pLsc5m;i`qqo73@(!v zZEmC*OCoi7X^?X#O!wUv=T&J5&)9ICKTRUQVDWU1k#I3hm; ze9+Gggem8mrUb0(%?B?hnC>d@w_y8_8dObl_YuPS_*;e>p?RS_g^9gBb7d1ixLCJA{W5@jBugV{v&1*S|B&mSWxB4eH6`P0oS-g&sOs(5JR1UmWC z`afB}|JwBfe7By`F(O|kCa5o>Fm(Hp(9=bKl0AVF#y*Z8kg)1}t0JgdBiqPNDRK4N zx0l9w)h7WR;EQM1xjf(-W4Fqj=+|?oHZjZed|uI-*Crqt@14Etr3S;n|Ipt3Vrz zXP1@&N##qk&S>%+o>@JmRLuW%a1Gk+%v-0TzU{AstZQ%KxR{dWn{M= zESfAUdc?~WfSWBK)e#rxsN{Nab-@Ix(&VwvdZo+9X`$SvZj`1?QME1hSd8N3Bc}@< zi?Tr`bqXM3gnuzbqnf1U5`L0Z9-M*37P2I3-S}cDw&H3U>?JZ)Rvy28rO0&`wMZPu zj6mK3)bT^EaAzms^8XsjL*E+E@dm@NufZ@#q0L_gzOduDpR%Nu?=h!^!+SU8Bcbpq z=K{d3InGSEbvNu!b(p;*@}dy-@v0dSJ@OkMgL%(zVGoI2gJ$`)3z5cgO2$6=T{MF{ z^%d>o?Qg`iMOi2EJk-0+#65B0e^fX^ypu*e?eFVdj-7obcJaV#`L|!E9Sko^U3%CS zs{Zp=_&gv`lC9z)ezrC)rC{#10%UYy$g;5LN3G+%dppG*d|TWvH7(gXDQ&-NVQ`o5 zAU&q}Ja>M2**trSFyC_H*%o6P(1<1A}Fj)~g zQkLn1oFEuX5I80XyYkt;bzOS75c8=^>`^FA$iX;9|4EtV@h1(zPgOm3UdSfp-T&v?cW-bC(DoGRUA*K@2vO`Pj}MIt|Y@1n5Kp2Hq{ z=JzM9Nxzj$+>z!W*$A<-1Popk-BraBCfyY1J%7&DMZ1?ddvr%24&CN8TG^48rHrb+ zN#OMVT#CrDxUdsk#mpELlw^u$6>r9j0o2|dlksLQ#k1@M?sVwunF0QXPR?MiJ8%S9 zRR>)dUUCOXjTWdx%Mw*#<^=Oq(X|%L1GqJC?H+s~D8l z?p*3VTY_wm&K+TSK6dS2R<-xS>%@?~?b(++tc`h&I~Qp`M>u^|hjrca)d#Re7Y=-$ zIakC`nRwiAk-g{f;qSIQ8zG|s(q4eNMCesg7GW4w+}pExTPeS`z*Q%|NB2lP_u$Z^ zx~n8sr1}@Ez$*{7U>tl=kWXc_C=^g6ROE=E;zHFL*-olsk>9vh&hfb>hMeNXK zOo{Now!os_9WDL)Te8Pcrvvfs>=P&%&l9}Bm$#+bJY&q$E^mNcgACC9K=gO60zGbw8T8zTbOGxdZ)&VgbvLB0+yVN)_N`vXr$(m6l1wptyc zt6Wp%8_Z$rl#^=T*?0Jf&2yYM%J$@8mXznNd@D8hyF^ABw->(V+t;yEaZha2|K#=+ z2XfcstyN!NyVJnezNgi;HALs8tzs7A%<=HK6DG+VLUSz3(P@+WOJbzc9#77;7hTA- zJy9+DUBt7ZSq0asdC1`Ej^1Mcqx79)J*u?ggd*(c=?{IK;vW_nyP@iCu+Xz*nJ@Gi zBzBU!;s*)BUE5Jz=_JoJ5ILMm^qh3lzKol8Q+qRY(|o#6?akj?%>pA11C6|nA23pC zOUMEMDm<9$Fq7!_9h$?u6I2+}A0F^Rz3s>L88&eO=Mnau76+n68_k7C{TYxuEMmz# zYSYm;Mx$~ZAiw64+&L4} z>?{~>`9B9Xd^aQYS>CMD4`)m6UXSiUXM-D0c4YA%(fYlb$sx%@h?J@+ zAlGEZ$BMCUNf-S-&57^a{QFd$?o8jv?cZ4wqHk(HPHqrwx79ftiClP3+??4BN84$@cFfW;BB))G1g? z%zw+jEKcO1EK4plaDd8Y0uNAc!tqlV{PW_@q|Ni*CI6Wq_*xS>g&9>p!NCoOvbHH8 z|9^Y<$$1ytdWxZE$I7y0k)M2~!@D!J;=nb;_K^VwzS{)z99A)g?(jf3aj04d%SI#~ zG6Ne?0QL6J9^#d!2+1h~2$*jZpw-}{b2F{OcLVDiv~wyA!pK4X$PypHAU=fX!i2-?8z45Qx)Y?aep=1#j>wDM(J1O_C5HWY4GjL z8`yYTJdJd=LGf5$E zK5n&;?{$B8p7Eh~GbVhA#vBh`4r4{HN)ewN*m4-D#qb!e94dCglo)n6#*L(aN#2aP z!OkzGY+m=9v~JI?pB|{x^#c2!J;2Wa2)0JKTyJvz+-FWAiKz|HnQ2M_ zP6Tp~mn-Xd28>T*R=s)7$_FK;E`w@R`9FuL`P_PYd=suhhwo&;dg`pw=Wy+hf;Ivs zgV4W4X@{B;As4_&K(%oqt|e-t77$Q7k{F@gqE@A10g2b7KoZ-QgzPcTJyKPCDY*m* zDDQ}dyBd6fC*S&E#*`;V{*epEn2CcLq%)RUzZtot&hQyJM~Ubn2xK`dTdm)vLeC;Z zYIdBm$ZLtQtgHyotPn^q4~=2FgKv<1o2z+f#cJu*Z?Ck4294Zeh8SbBhFzuA5g+Uuns+W|R#{a##_F(lYrq!v`kt|BBuJyL;@bs*!FdBs*mhc8YwAULUUUg zH16o zJ<@dUqVWf~HnODOakad7y_0n9Y1;%%Sm*A7VaeCqEp4a-k@d|RzXA?2&*#O>@0?u` z=edWsn3d`|e^Z2v{j^uGN%pF0m!ck8e?3T<)9!EuEGZ`pWKHEKYqD`e#z_w%|1lep z?o-o$Qt$q>zxtQ|>z(QvWI{+;Aih@933wq>IUW)JSz*SAh5gOc(CjX zL9{mbqB%jes1eNN2;1v9Nb?)u+A(uT z8s0(CTIp}sT9N3W*r8Ps*q+`#II|SaMni3p2q6XNBG(w`^&lizSEj`WvQq2CkVWGg z-4ReTg~FH)Qz^i<%^^@XK!K3S4teV2o4+Fe1-}zI_sUhkMF!a+Kpw6+$KI9mVn6HB z4tk{Mi>DT1>B>9}BCGqs}IM(ALwmi0tGk(L2rzK=SB0 zu1=Ds+uvFuxw&^~adwsJ5D?_x%IF?1?eh{l0si_4+$Tc zVnJ|=(If2wI{^1&kIX)-DUv<(#x~Be$yz`Om`7_PmI9{B1l80nZ@M* zK6ynW#c$U4b;{jY`~=(&R(M?L`X4aE?Mwn$HIAw3#Il?|G*a<-swtmZt@Kgh{Fg2Pmbmn+^d;-+pf2P>ref6RG zjlofJvEhe}W3Tq}FsDr1cY@$tI_AUep4eOB_L?o?>1;A45Oby5YyH#BrNx$~rXRyz ztP6d@#0dJH-BNGV^+xpNzn1hJsTTDesh9N~sX+RUyg~Z*_>8eQqQe9hwq)WINb_d} zp9LRf>!ZEiPpOyxbOB>A`%UH1y_b@2A4n84#_V5R=m|SEJS7Ia!qQXff=vbCcef0K z|M=Y#)&93b<$G)vxW`7l#;r{=2ZYuGF>;aZhqlU>7E zK_Zsrl|#(z1Im_tM>~8wVtZ$i4VbtjfXztg26oHO4JA)s@_Kvz1S@fO#3W}CHceFF z*dO4nbO*qV9bogxv=J0^gI)-DC#>d6;MPg!<-$6eV80Rm1BH8gzmdo{mX7Mb^sm1D zv%%}8f0VDhVTbGfBb{t0ybxxXE{f;C%2{yhb0+y-E?g7G9PT50eSU+f;l=`SWSTb7 zi5nq10Sq+IpW0Oko(}*Mhw!w3!2CTJ)Ku;#gpdhK&<)p7OOU~bs=g|tNDwg-)1~}c zZOcHh=*=S=i0G#U{fb1C2qVuN7YzOsRFSH&G8#tB76H&40Nxq_n91Vf45X3pfrG_yBPTY|F4kpE|?} zef$o~dVSuG=JZ=kV-r|9+bIRPS%kAZfuS_KD)Yg*-fe;ml-)s?0XkTp-pSzP`&Meq zXw#6lvjl;mU7FeradouD{#)R6L*L>gmwX8mc+I*QwDm`_++wqyj6_{llx;|*UvQCLQ zIo7k*cYbSg`X%F<#>&bIR7fY3q#hhMafG3)Az64SqLa-EVkIj)zh z`QE-PI)46ExQy>ALF(;UvUy~mg<3%*rZ;O2yW6bkie6FR@>^VbweVDNZnJF2jxLrK z-vEIp-*Ojv(3=lHNWd*dO?7X-)PB>HHp(7e(2Yc?ZUcz2VDz^A0}Wlw2bPUQ=xIFs zEH`Wi0|?;yclRlRU2QaSKd7Lda$aY8$77o9;(FQ%m4JQ0u>EsyCO4PBunm0CMtLR< z7G#C4U~*u;W=arUA(f)C?d_vxW}bw_fv+GU>OUjgY06{ic352r76dr-N~S4zd>vU| zmnM}O#`c%o14fb;#Y{bau+_{tXdBTE0P`kb^%=?x`#`Aa3w|ASfrw=Qq|BM^G$xlS z+Z(f{XbIH1ko%6VwhtdBpu-r=r0s|KiOcXnxs^gMn>3o8Ac`F3+(aXb5KSYq+Es zyMIE28Ms_`%J;Lc+Hy3)X}PYMVPE`t(c=X9s=_7vM&9qLqp45MPyP{(`~6viBpaj- z6sC8&DJX(7i3V9?LocIHTOq2`1YjDVUThP_4yC1=y=Hlcrl;6*22u-Qrhy-p6E zCmSXoUuW+J)fOXnFZ@p-)u-pGG{=29J8$z0-{p*=%L8m^UhbK_rnW`1vYQOQ0U}IV zRa@AM=|M^ecd5%~eVr5lK+YeVy_5f9?tu`Eh|@`yJueM@rZd9oAtZwKcLEMoK0EsD z3NR(9JcsRAQ4Sl4z`@9ipql}xB&o3wtPA_2x-LWnm@0@ouzjgzI6Os=2Tn_C^C849 za=C9Sr;3VDhLC%90(2`=5z+ahg6P48RYrm2&>3KD7bJo?atAz-4Qu?k13PCtozA)A z`!{3MA({5jprmB=JRhg!(#@8ctrN=+MNiBvaDR*vJh62w zZ-%FZMq(eI;O>nQJ+To_Jh9R4@27gwz)(inh|D``xT89X+EzUa-C^sEY8ISF)v${h zj9~{lZ_cJBWM3rd&->C38nuB=-aYu2j6 zVX#b)p_7Ps;7rJipixfHTt9^0%QseG0H*7_#F}HpD_mTkFE5cWb%#&nCb=(Q-4nhY z6#IUQ5YC(*tfqz=kG_hFT1n9}{TxmO1sc0rwP3&}t7itA3jI(g1cTI!`}{1f_7gMH zmNkA4It<@z#e-VYk;8m3hZyqoSZ3dqrDWpvSa%I$equw%Wzo}qGU`C*C)24R%FW)` z|G8u>JuiR7KrhY0UTScFfujq{Nf~}^<Jpe6KVIVGp3S1Jilxgy|m6%`PVmksFtH z8H0c}CtKKA1TcHl9?j!sL)XiC=kl}9wF$U;OEm8RQDUQAYd$TPUxjiU`6DK7lq!|!Wa^z7?;1irJjYwe!g4MIbYDDbN=lH2>x#P z05$$pNWY<`@_0h&z918Ixcs+d*xpjX7mr#e3RY&J27A_+Ju4iTOgn-K)!Ok%nK1ZG zr9*t-$7wj_U2LW!K=tL;u88Oo;!SDjqXqUbBhUpRMdn_vo3SxcPKNWu&b<{h( zY6@6?o0|fh)Z%zILJ_Zx(5h0U7T(xvujFCtCxvm0dE=f)vX;&Cry&f;zK zkthxFxce#S!d;n(YEFE;FE1-%=pth#w`h2C!hd*yh3V+u!ZN!w4mp@O#1 ztrJV_qJNLpuoM<(mGt>z^A@7wc zY11kl8H+OwV-B~!IIBp8>;+ErQ-{g;hHng%aW-t@=EQQ>qq%}x&JYud>c)R#RrJ81 zlMrE?=a(R7{Gq++T>ZfWMC6oMVt;Uj0_6rJR82^H0~x7tExXA4sx6V4fs0v^`*@3NO_4$r+}QNkcRtBANqRqn-g5x}Rm$ zWqSQ%KZdK)O=Vef2iQ3`H9*Qv8R(abfQ#Isy#J-_nhsg-TMIJ7{Du!!f}!*+9xdN= zL%LtiucTcdQ~)QWbJ3_jjXx1Uk&&Rx#%e$N5lihif?a+lEJdk6X znUp7K;H7QJMoQmpxre5F82(bjqDzB&Uj_y^%b~*+2e}ZA8aa*s}Re#0J+tRbvi|I>O-p68HYn6mqoye;5G)E(xt4)G>Tt9 zMxQcDNZW(868Gj{)Bej}7{|rSc0_nrXDQpMR;-V?88$xXgz-WuLg%;)ck06)pF_O; zYI%YSB8l{KK3seQ_kg4(rb5>cum{^+q&%h_+k>68?uLJFS(Ot%m3t;{*88h?;6tpU&lXf*nzUzg!AeZ%w9Xd^Hl%Xy2Q1#EjmNHSbFV3=-`il2TSqQFZDI%4%9FsXVIcMiOxr%h1{7mavr?wVF1YL;R7G^#; z@@g>VBYQ+skd~KQ^R7M(_Xm~^2~m;PzD41Dhg6Z%LQT@Gqw_|0N7I3R^91S>1OgG; zKT4bvzsk!k$0d}pNMzADUCq!dSiBB#cp1COsOn?&=}>iAN+~+ z8>vpS-;dAB6Jz+s(1;n*SP3Pztp`8tk18AnB)SUsG&mZu=N24(ejT-YAqyOwePcSZ zmzlx8$fS1MgU#SW7fG{T_1jBdFn6;d!Xgp}8gS-1+`<0fMQepG-TyAiWFm@&ypM23 z!2z=WXD+F$eC0K2h(E7Ai1))CEDlz!UR{cun%@9lJ@kL?EN}vu96UOKEo5FV9|H@= zd7#g^s=^gcpdx8J1mYuv?^6V2^x*|B^l91Pu>w$m{c#XKBd?Og&WeTM7MTcYlTzm((kM2o?Z&||v!tcaW|0c2l zVc;wce^Kwr+r`w*M#ShrY=_nFt=%O`fq&k!2YP`OlIOZoGxS@GI&us*gAASXt#aS* z+cB2yO=`%RN^QuVtc?B6ON~{ML(v~4!!Z{UEX6cB zl6tbHKGkzK+T=&Q6^yt}3o*dIlTJZ$dMQ!7)?xau)8Y>>f@;?h(!tPBkaaX;i7PvDj07Vk+@Q+2H8xxU60wZ zveBKUh(ydGz$E7YN&w-qylEPo#{;er%hm{araWA{@JdqN=Iw#Luz212qsY{5dw<}-Tyup(jk4J{kb zWZjMICnzdrcCkYuch+~BB4qNxe(~Qv4M-DY-u%BdyJX#CU|!)7>k~gn`wE#T3$ViY zACUj%E)@@zP>vHoROr+EoWRbXntcAjty%fPg8liLceMC?v+}MkJDz*&p18Q)V}Hy? zuk;Y#?UHBbg5$7VYN==CoDQaTm$K=oZ0U3zd6mxPxQ%?hiLMmrDw@>}p*dD^E@U>Y zI)g>Xv!e4G_5SDSKxDy z{@7v~B~j+{OB>h8&LppvLv6XA`*<3YZ}-j!Q{18y2ClC3w01&i(nLgfWej^wBxE8_0czs_=16t7?*Uy?t}s9;~=^-H40IeZbz%s>*zV@P2*~ z3I2BWBEYWQzi0;ljGIHtzog=&lp@wBp=30O)FE2B@E(0Vm|R;{eDo3|j_B0Jnirys zIoN=X_k{8MQP`I*eAtpQ<|4{-Fa_kP5XMFYJ-i_eZ=SED@R0Rib}+0%bZ5OC9p?<~mpapl$1MkIL_Q|Nhw>xBW7H>aCpOEL z!C*g1_;d~!{PErR^eBrs08l*GnYH_fB}M+UP}0KsaUvRY+jAq{7}M;cph@bF^}V!V zlh33x>+^$aO{tqZRy9{-`YHQFb}sZ|aQhcvJw6V+@$Wq33IidHIx6d%E5E@da{s%f z50(Agsk= zLMlZr4GN2BxIMbH&0bhV^$>#|KI@q)pk?yEpF76CJ`OYsOWkiBGOOhsC>-K=l<@GA z`^`$|;H~pg)sYbr)zA&qF!=_f_aadt4Ft2E8!a3*H`bU*H`h3NZgj?})n0Eg5kk-j zt_d+DuX|0a4B@DW>OE289}x6EhC&^G=n}n+u-TszXzr&P9k*pT8XiZBLo4vnXW=ni z#{y8XrU_B@C)W3iBsU4hD`=QaP3Bk$J>>&U!cUw0#9OSMdM30k8;HN&`WIR%)Zfl$ zP+n6h@`gUuq_e!FQwyusiE>y6U>Q`k6Xj!sWk4YIu~1!k3ZD+eS5%d=EY@{J;9Ji( z9GZMxj|L9#bLAu%CrE?QV3myzf2{@#EN2;?blHlUf4*Q(t}KJ^^0SHTg>^D+z16Xo zJ&w3x$nJL@`;iqqk#Ekjm>dx3hF>c$MqsKI)-7n1Y0&z-*7)7dbd)So*!X&6cJ?(u zA~UkPp(@-zPtVfW1&imblY-Csl1$`e9Z~C zs<(V63SDDO7hF|Xh6Ky}c^>O$#X||2#J|^1)1%F4@Gh<=+w}8Vxh$Mt8+&384|tNG zfiEJG?av=X;#uLp;#xuvHT$&^A9*2k!uEcP;A7k?%3%4c*m@=3O8mxe>}Q1F!;^N9 z`w%W@_Fo=+M;jzBpB=1y1@z5aD7S_k)$sU_AcJvsQY@SeRh!dM;dys%NaNJXr=+8M zsJ+Md!A?AD5)OLPMhbGfPuSSPm7^cwJ!-_ET1F^?@J?ubEJtRNqBEf^GcBZpn%?$h z1nnqOS3U}@J%2-*9CDgy39e%@H)|pp*RLJ*)u?{SlDv;^7N@AA@9#yjAKb#rpq9wH zo+R7J>g7N+$qjqEw1(si7Z0D4x~Y0q@cHA?xZ;BMuwo(o(SS7K5(TW$cbnArc#8m7 z@5eJxArQ64-yr{?Q{1==*{VsWmj5*cv^XAM7f+1DoWMQ-08Kyj?J<#m3gp|czjvPv z8op!n2;b}9sbE8-^mrh~8t9;RdEOO#SB_^{af9&19y|yjWx?;3pdVzsDiJ-nCd7{L z><8;v;cloP3(BGPJ*E(*6*0Nj`hni!#ehI&FxxkhMmYMvW7n@7X(*PP8Z4y(7f&S2 z-s*-d`Nl?oM3#FhWI`u{HLt=%re>$!%1tWl3Dng73i>PY`t9I@&S!*YGc#b}50qCV z%02=U*B_M49*v7`8IrM|<|rI8){PAz{N`a3=Cdb9+NKRjWUy9Sc}f;p`9UjDu^pbq z-mWrxCW@*0(ZR7sS*8S`G+~9!^h^#bsODath7^?-gqA zh-l8fgR4{X_Zvi4pH z#F8ATz_vs3;(6B=v*hvJ*HzcM?5&IU_qU4BIKN_VWo9L%H2UxvDnr2Q%W&2a*lQdKk@6Bh1k#BTUG8 zG$ZJ%C6%6``;$hz<571*wYM=F!k;9>jp~q0`je-jZ)dCoo7lU2fEa@TB#K(j?4pX^wxD%m`wBQM+Ce8k8Lgtk`R zJHbgV&yM*9tsVb)ZWV6!3)wN_iHshtoaKsrrK+qqM^Gh{_iu$BP>T(+y0a)ha=Akc zGoe>ayL#^)Id7C`;1zE}fHF3IO=Tv#jSkTBxJdf%j$GHcs_7vZO- z1{l5yun1HDWY@cr3jZ%lB^zE$4+47x=l~HGP=@CpFi;lj#SFA888&!w)&Sqrle!;L zctwaK|K~GJFq;5d>{* zKCu>CFRP#EM~e#}_2jE}_0sQxu;XK!M>0LP)$WnIBb1T9VaBhz}y zE|G2NfUs)swnhw z3zVBbdfx**WQ>6lN_^2v(H&cszq{AJwio>FU4HB>ptZyWe7zesIhz$97)$q{|9yf6 zGm~k-Q7Mllu%6;eoMr!(5+BWjPbVHf?=d}#FHXmd z2+#b`G>+ovOhqh6?CAz8#_R_u3%9T1lzel_p(aW2k6a~f%N5~-C*tp({ajNC%lWeu z5{(wfa{ayR?YML6w~xJ9Anz@0h&G-ubIuNrm~dyjXbBjQZROtoTA8wS=lL`&IAyrA zOPIaUa(!NBJEq18)l8xo5n+y}CjaVmKyXJ6Eh}+Iomp*zm(Y=kUk5SuD{@y~A33$M z3DouvoX2$Pic)p)h0=kJe}DiYIexVNsN{;~uy zM)ljHcB^{}e$N7UpS)@97cle5mgZVe93fX}zcbD{_`<`^MJ2v#xAjR0tK#$D&NZm3 z>@JyJfA%Ii>q_*hM0EKA`eK_9`kAK+-V;>Lt>_B>raw0RZPe!QiK2OK zMNcH&uu!)}R!Y$R@_*P+Y1NAscTO%ZB0!V5hiJ=(vX+?2+jPbrHsBQJLg*cpos4|L zi72bjfA8zMo5N4O5{Cvd|@w1P3Qg20z&%NmI?u`;YRfKk9 zs4_g!uT}7-a!{r{HOk>dltW(B!!@TlkYwquJX@{oe#HUm>5sd3W`v@?I=WcCrn8gV z(a>}z2kJ335qnpXux9XT9KLO8lC;ft1Jpy5_j63foa?F{iyECqPi{FqyE5vTo6s3b znG5Z4X-;Td?FkUxc{rQS@|&b<#-S8tWb4*A3e8Zben04QP?*`G<1I&Ekz+G+1zAtf z`aW{c&bZyXc&nB(o3 zLB4Z+rIuUYPKtmRTHkA(tUS&1{#8w#BfJ%FY(pRXbs{Gnsj}bRU4*t$u19!3*^T&? zaWd&XV!w{XA&Fc2b~}PvS6MF0-ygYu+0JkDmds}nqE6zGxS8xKv1#2I!WXWJo>#rb z&mRUC&=z!G-2ml|f_MPvF{w(EJTXwdfrn>>*X=;xJqFmZrQ&Z9(o~k6MBr905vUtF zY{nKQ^NtN*iZ~paY@l;1e^NFr^3TZhAH1^U1)3L(`%CqoNHtuzm5Hc)c}+=tk6$h# ze;?WgF?nd+>8>2R!D~-u(Qn*P2EzCbn+TYc*olN{M!4zWGB^Vo+mYb}<^;vREHv2X zPLpN{rayz_DoK0R3D(u3vxHBqrSmbd(-pofQT!jAnId6tH(s_smWY9|F6SSQ`E?KzFi}0NYp4SPGX?gL$~*7&Rb_gR~Cxb0{Ll68Gillc?`<_$k&oR zqdWa~2peX(z5xRji)vL1J>nR?aJ$6tK8pSCjhJ&327)W+kzL1nQmxZ$Lu2g6jkhYd z?nwL=Ys4;Y#Lp+)y0h2$CECPUEO+4XyfumKf=epS$!|5bJbHh3({5n{64^+bR~BtU z!ARX-<1T{Fh$l9$KOrRGmcB1-5|8bK60q1{+Y2Suy?2H8zkM{+9SY z+digyi$TBr$#azSBT1Fj{2MxK0SP~eQHAM_3`!A|q<{a>{gD8_A1kA%?%Uclaeu=dePxmnB$`Bq%F3qcVg~c zYEtPl^cOagXtP_-66L73@AmA$IP3O3x4uo$wg1h$-4U22T~Y93W4DOPI+u0y=-8)e z%D1)vk?5Z0?Q^m*RJUBHr9m@pqIhyck9)1@<6;Vx^S3YFxauMQ`@y4pMnx>1?BkQl zuI#9KN$QmUZmJOhB29C5H#c%Ox2?EUxp+U8Q2TLhhwqo|TeB^ZoDXQXF)^oli&>6C zyX3bGj$h%uS+#pC;v8&H{Vg7c}F;vdCP-UkdTo{+1ePU@# zIlPV4t@KAVY}jp1dm5#QWA>Tgct=30x6k1UoySAC34{)ZrjB}8-DgpiZ_{<@a|L(8 z3U@E^v22jhJI1^x2_E;D@a7x{q<-1=T#{6PK9O&dON* zdQpzB3?Ft(F1FX49bs~ZgPPCgxvZyMXdK6>|Irwgj=pqb>>@&T9A4Q2`lgbmWi%G% ziC+GM>->T-$PNpJ%`72>BDPMkXGn2b*4K5yrw#1bvHg4U8W}RcbalQPzUjhxi&;2C z+n5H@Y4dLoJNbWRr>tx!wEMbdF@a-X-2{~CY&I%8{M|faJD=@vLucJamt~3%cQ}@6 zio%+X&#Q~oEK2n#iyo%IlPOX~=zZX+|=O#$ zxXCoH`Q2pn`Ug~K$m4exUwE*nQH`YLxzo^?{E;75uu)aAxXIbyYj+c_GDrv+VJaDQ z1X}SpOwf~t@ri|`rRX!C#qwp$KV%O^MH)UGI@lc`z9muG(Py@y3hq+xPDYc26Pcps zoHz#d3Eb49vh@eQZK3vla9Q+xsEgsC?Dv4d{IH#nb9SP2=(`!F8YN$xewdvbRzC4n z|Lgj2gf)dq%(zjLi>g_Ou--Y*y?sL3No6TSP%Gro{8Qeo{g|(|pfo!DbjI34KXx?# zjMPl$`6P*+jrg05DV363Ualq6RfYQ^P`n2Zfh=})zYdnpr%I41c<}q?$>;#GGIgQW_2%cXmRY+jAEuYx=NA!5{nf7di?wf4rB(Ma9T-Bd zs4|)l$tbooAXG^H)i#GSBNa~uF&E8uGCv=Nd5NeI=YOrf zoFeR{VN%#qPXle+7D3UH{iB;^`JcWWlr=F9=ff{?8Rvi?LU+S`L^%;nggT`E3_b3M zC{Ks|?+@$YV|+aW03 zIY5~JjFV4{4lS^~{BN<-#Ta*MBA)r!%C8cyvl^#IcX%3#yQc?B6u$JrF6?L*F%8cN zQAM1YD0835hRa5qp6|369KXD%Mz%0zd6W{WMXF~;nW#?_|JDF zdP&xWO@AY7E@?C$(KKP<94znd2nsUm@kKM_GrD~EA1^NwVl*Oooej|dpq%aSdtOvz zrzx>CHu%-m2c1lJs~rbwLSxD^EnLCKF!D$AAA@&V7^A@#@AnW2p0YCJ;eF&88{T$S zhX_N)i3-_{h|$oYmtwvi&{_QP=q_6S%%x^@;-adJ{h6N?@?6%@BEbyFs z_{nyZL`{b9*>m-(lkzP2ZF$;Zc)uE4iE8OVoj$~u5tY)7qCBp7dNbLUp}OeBid4^+ z{i~DV^GZqSk~ZljpqK9Ue%-~gP_cDSES1LxEjM}u+QVzcNBJresOb>#G zWDU0uD_VM)(r_j;9KgD)v-Z7Yr1Z?9#zO(>G1=57WpBx-@6$y55n8t6P8q{#$C*_| zRnCao3#VpOqS=e^#tX>UX(W}#UOKvYbMsXGZ9DOo$d+FIyio317x?3CnejshL~3U) zoS*#HiPsnJKm!j)wFh`_mCZ=Uk!~#$BD#0Wla)lS@MP)Gkcr@)7r@qXI{NxNo95^i zdKP_&QcR`0z>kyruP?f@oLS@7U~syKK)m;29lW*g|M)illXD7wKTDXOn|-dz3YXJc zVtcwF9k;M~v|pposTpnB@2gSdHH&szSKZ<8vRp~k{c&yhxr%*rI$QAPP542_Tz)+v z`q#F*ap4%8aBmtldF&_&J~X&W(YQ))-*<-VHqil#^3l*-2*W$f5EG%b zrjQohVQ0Qw$J|SSpyO*VCDh)(KH{%?MU@!7_leeqY6rhcTT-W~b>(|3``KEQgg&8l zBe9cZVGyikk<(AgpLEZRDkAeSy zeKxrwBMm+?x=6(okfEbQ*lPUsb4g&ic(}>FXI-eC!SC!pi*J@21+xABeVh<(0Z3K) zK#)cMy0qfF(Y?ZrebqKG;2OWB?ROD1K$kkVn`&ItFtQf@zLy%l-o#7tS@}tlUx0(cp2vRTR{!!W&ZzA`9H21ARuqIy_E1-`u4@CBipd5M>YO3Y%z3Cd&0~%8 zYLsCDN#G7w;8v7i;N~6SKuQ!lL5jhNIkBwA@cZS#xcOCi`0ukj*9>@uXI;G8#$vZt z&)>t7w{XGim{4^hD+H6EhQ)buNhRRFe)R8tCgS9OSSiaCCqNfaZEp&jcKl^~-g>I2 z&}rhaRbwJUUUbJ#pilJcoj)vuP8Mz^VBn^Wecoh%{bKx4zjy8TsO3P5JiB8<#D(BY z-V~PrSM+qpHV?hhi=FYVn(Q=JwI6;#E#Bwi2TGDnu-BB`9CPA~-Iz>1LFK!hr^ ztT=$i5KJU|+R=Riv+Yl8E`k&k5t<^*kjt{Npjq;Owz=^g?#r4#?sxc?BZ98m%g%Rd zjSTUh4y<{G?G>{ZKr9b~7MW8-_?qHK1gt%6_gPH)XYp|M4@aO}g7))ivhBtsuF;dAag|CCvok2|2%ba?Z>j{bjO09~)caKOabb-d8& zV#~B!1y3o_(x+t-A%d&V4nB4$b z$GA0GDEBp5!|z8YenLj`1ok7I3*8Y!Nv|Ej5J*=TjTB$17lmi7DzV_E|;E^4oa2H^`4ee+q56w2GZ+%}xIEha2M%f+APS{Z{Mgb@!?kyDXLk&iko z9jN~Lr_9lcfG61Gmz<8*&`rK>%lH7L}h!NQAB|HH$I%{K$PnAl3Si6^+Q7CaEgGK)RY%gs$Jd z23fD$=^C9XLXG^r5tK5^DtHI@&`fixCqnk!x&I$>A2jIUqI7NN6Vk#U;VY#1G{L7y zw|*>HA*1=@<+Ph&1*sYQ*AiU^!)2~t$RhaWBn*tfg zA2jOczkMI(T3pwfVv+eeOt?x*;Fy*^JSt?|+5TlBv78-luqv8$o*>M zTy~28qy4ogzl`>^Pg6Jf(Kh0;_hPXM4l0|i;x*s5({F}RvD!uvXKq=s_3d>uY2}Hz z&JjCp&u-1+jCHKo;QpnM^GjU8)+_eh72}g!nobAudJx@DVTs0}M<-v>pvPVOYjHPa zrY94y<;Y(%x-Vsn`*WwE7w(Is_uw@Wa#I#|Qh~Ks@xxn$iG6fkU%M@bC7Zwj{H~ z;A8XL^>?}p7Z^UvHdHRs7IP~26>TltUY~4sE@kJDX_K+P%h#W-kI|2w@g~`W)m~|b zy0Oo4v`Fol4)s^V)~?ZNi@fn(4rvr^WIyQ(#5onHuoiJZmZS#IZOi8!bJIk{eQFN* zeu&38R2m!S)i&76PA%P|TZ_+3Q8pg!p41w6Fnz2F3wWCga-hG>d)WA9j!*PLtqLvjKsKRkS)DeA2<2ziPepn1|i>AP3 zpEm5Zew0ZRe*{fzU5JRU{e?bt2)O^iGvo^#k;uBK^4AvR0CZn5;DOt8a34alPW~BmVT!ZfJ^ACA z9~X)OJ2F0negA&^(n)P=iqM<(< z)b)()^(Bc4-+?96=iVA9c}AKkEM|a`ahgCsXb?kwjT50icSvwTKT83PP;x}r@Ykc9 z6w+fFd*D`#D1Mcqav%7!#^%-ACj$tkOAA8NHEp>q6{n0I;!+}oQP0=-Fvqt%88@cs z)ZSX54_}8<91OpfSD_7q zLN#B?V-G(G6Pnn4C)UHgr;g;k*f1(=2^HaMzBZ5+hJWFEt0$&=8j(hyWUk3yI?*2W z)QrHhc2c4-yOr)1VN~<5g(<;kR`R(oYbaqod6RjD(@RZJ02H4|gG6xHFxyQztf!m( zS{tVdJQI8P$yvlVbL0DbRw;-a1~N@l__fB@aOK`M4GO!|e0dA?&Z8kT0YAJw1MR z7lalGOWV`Z0|l>!f86hP(O7;T=jyM0Z}NPwoNS)nVShQRm^7=S|9WcumO@qFyErl9 zRA)9tPFeL{ds`cu!(+y*q$Rr8zu~w7tb7!)pzrrC_<_KO@!tsCmMzyJLYKDqJjBu3Iv2-G;gL;fL{wiTIjb zXZ8(+S31g{{G)q|DAc^@On%qg9TVJ8VKFkF=_`MZHEiAN8vg{2(N&*uT=f!V>DwuM79Or4|h} zxh#bCUTLT#l)fQVmwq}-C~gHE_qyvx2*dw5vrri(d|Ka3rX{5V6%Ri@CI;2*oVgaU zp?^7&M8CY%X*oRq(C)_a0B)vH4F4rnY|gj0fq$Kk2*-58Iz3qzztFdasr9<=w})Nr zb*}6klw?UXk5OV6A4r~0*GxEa=VM;ud9FdU0V?xT@Qj#i^aB!_Au;&un9#8SvHUxu z^5@RvW9?quu=BvSeo-oUrs(@iwV&>=uv^msFfo7R))O7##*g1;D}zf7ht=m1gt z;zQWdo5ow`*Nzb(0{{VGv)ZM3JH8uQ`B+3<&1fIqPQLSE`{Y_xxo)eZ(l`@&D&)tJ z_FX)^_B36PP|kn>6rjnJCgX96<@pu_^@?9m6EgNfMIiFBNvZCv#K>=-9Kd^Pfh> zj5=cTi8 zF@!L-8aP({jkY5-T0TuFJr}~vgmXGKs->*c)YRb2^1aJ_hORUczLH=B)9;ZsItsg2 zs+=3~{A?zbS8cb?{Wr`ac>VLLm2dTTyaIkP6IPI zyAvk8HhMrnZz{4PXdBd?PoW=Hw}LN@>yai&HH|4}NYq`=zta$9!FR+gC${(ZHbrS% zLebfBJ>QFy99ZZe#8;@9(|ux73!}Mk{iP4|(g8h9=a}fg@%)K9EyK}Qem+*sh)b|( zX7@7roT1wUUSMgwQ5>qjDS-)%F~r>buFaS&ZKr+~1#Y*V`GOIFoEDOq$RSLuTeshL z#Y7sX_0BNT`&5jz9_vx`SreAz!j08~EF~gFI-k?2@Y8KboWO5}mo+e&wJ9vj8;i6` za06gsV+(vspUdO(g=6gP22$2jNPd6A^vKBTrz5_}S8yfPv`L50U-G%DiRL6 zcvlk}&BHXh8?D>1ONgR-7uRKqnCROb43JYR4w|D?Uv?|($&!~)J5tr8eplAmg;(W~ zXYAobXzQsl>k|*wR^)tw->5dTYDW-$SKU+~Sd5n=qj=tY+>tqXkT)Lv{@)x{EI$%l z8Ai9;mazNk$g)%z2?X75mZ?5g+v2at=*nt5j)>kBu!FRTT%bJIjIwrTaICx1YHXON z`SGH6M%=93SyH25PAG#<3bfR)(0PD^-UX_O0b~%AgWWj(Evxl{b-ll3k*xb}HV+D{ z?jeM*J1q{n<}w~_g{#BQUtj^z(VpR-1zo4P(op*!cH^(pklk>~ae*%Yi}e6%Nr4w; zVVP*De`I>N{NI6%4n`+E@>BO4t@nl5)H7JV71WfaC%#I!b@=a*@YT|2qsD+$+N{jD zsGFK^%(xPCoYgnVe0iW7B|{0gOf=aRgFSS74$~>^o@Ve3BI$GyzKVRDLNP9PT_wd& zbfEF3Ws3yE5$El?jlM-S$~QL*?poVCd8jkybwA~B)b;&P_SgO_wYt~QUDiY8w;p># z3VIo+lxd*=8|dw844o0ai;zvnh&ETT!nTd3Lc8Ac(yiKOMBo0|pda3da%QmJGGE4s zQhGiy2^K~Dp~sv-Gb{SD9*s2cmwr0N9T@#09x{dmYWY8zNgHqM74ms})6V-lubpq% z={}#ASCG@nI_R%xjTkQViU5x38Lk?+UaWKI}r_SX#~c z{8Uyg7xm{P<-;nFscAZsIYgVA1E!O;4PG5yDah9H6!ng?DaXCX5@OY*5yu+?KzcQl zmvw_~%Geo2f{aHX* ziZ5gNvaidWU6-+*l9~P|B6@}{%L{xnSx3q#vtl>Zlz=>qE<~rDW-bSgm7zHa`0CHb z>jpWDzKijM4{^9%@2jf8C4Q(2aoZGdeg#49=z6b3{ihp(d=dff)hBzn5$>b8h>@#o z2iRv5*fYwPz)wP5*^!Y%##sfTPOGxwA3w{0`0$o)bTe8p)tyFY>4FdaQ;>ElO8cRV z1yoBVwAu6F#-rjG9P_y?{COUw20zfyl|D*IF=7=s_Nh{YepJFL*B5i^=F|JKGxI^n zrVIBtn~gr7!5rzvIdy%QBw4bWfI?e|YOKy^Xf9qR;dTEpYl`lZwh*|%tBBCN`K$=`>_%DE#W?;U z8R-^ZU)V~7q)F=;AmIU!n2(+CUNc_)~0!L+% zJm&BlgthP_e=uFs>=WUVjt^fW(pd8!4i!OVSCGChFH}r*h~e+!JvWY5*G*lQ4C~N8 zL29nKvEGB5DzZpgmm@-}iK0)*M91YD9R@G+p_MCJ)YZSpwK$XDnZCHy&tL3f0}i@O zcK2b;f+D%fq}?8@NV_GLNtbrKrc|`-P!P`z*gr;d4^Ln4b_&WYj)jcau2EIivZD^H zJ$K(flO4K$vUmvdP{xzS)f~Pse?DNl_`L5|<;zAZPQT9XHM0CZi?lb44MA<|oO{d? zaaKST*+Zt0tYPhQ)Qsp;&F{(Th6t6VEaPpYhzj-3ArVNFE)dx_b9jrK>u5B~Pp%uc z4(1rC=!h)O(+>VHjhu>8D*Bf27t?g#BT0b&1{+prw?TU@yQvo9y$_-tFDcA@SvD2a zxJ@7~eG4h{HD|f5>59^V-;+@jWx|>_CHT_!7lchmzdJU?e=U^m_+tI!+So*myxzHb zdeWMm!y_>mbga=G7?j=aOv{t&GIL+x*022)l_ZJfU6f3I0MA3qGwZ$ZMIRd=*-iP4 zv&**~QFehzFBb?VKkdSnll^!)w#OwsA3ngZtm3**;HwN1J6~;xR=pOL>qs1#^XSk^ zyoXqDG5J@3!+lGQ3EX^N=Z~m8H@BR%(E~;ey3EyBOZ@0nN!^Za&0{`2Bo%x_;>9 zEK& zX}EQa)OI6_>tkcM(eZ|0t>ev*9t&e9#fk`!8f*&Z8jM0v>1HiEDTspxquAXt?y--h zmF<4PsO?_%v!x--nSBjMxd+cwjNg?yKg_=Wkdj=YwbfJEi@yDGs{Q%i14q6)+Jx&K z`Ch5FMTc`KhNK*wDxIFi-+_$2P!u6*ZuZ5)cA8P&!P-lwIfpbjWJ2LryEI-LY`HM7 zu~ySHa$=!a;lz4_f(pFllOYqsscdBvD`#mRHYt}Ob>n>3<*UKnmO1D@JEjspj2`NEFw4Ia@msiMKOA>&D6?oGXmSth>0u+K ziKUj}6YQvVuPm?Aw!>YV{q3*b%AQ7yUp1+b{qfg@i)`TG#>)nzFWtN5il;eGJV8u& zajk9fwGwQ4@TAagC^!*9?}a2pG=)@|l@66i0>y~u=F+Uk#|ci4&4pWu_;U>sEMl`&)1Gm3|g!xWoA+7r09K^3x_ALIJ%=% zY0H*y>&o@Iv!x&9PV(mML-Z?6`gh}xnPI;P+$hLI)J|DgL!s*MkWwlfNF{wzhqXIp zh&XEbozW~Pr4!CP#j-0ir)4iTpG7EU!a9d9kfAf@SPECC?jH!c&bLv}PxD1ya(C#HfS@2otf|q#jkw?Ebo z-4fM#bD8miKD9nC0*{h&6=Pl=o|P=V=KjSwbf0IzkL?p9 zNJgZUkqeWzFbdf zU?Cq)?+UB*6%K}H8mr;H{AbMYGnNm%Z0uhV4rfq9q^t!d?){Q;w-5Ou_~Pgt9t~;S z!?8molb1PBKQC>c?S|QuU`HC-JvE*!XYU`QD>7%7YR0o*KHT-M@wo5CuvyEr{jNC5 zy|os*z?(DgBt3K*5U$^NXI|yVy*Q@+2!H0=*M}(S7S;5W>0ljDGIqf)OoL^@(o+@- z=>6VtVS&vfgU#cEWQqAj)=jr8?QhL}AWOd7 zTJPPDsQ1S{ayS0$YL2t?QQ~-2#y(w$e;ap?7kgRQ_>9T08UkIhhheCY0c!%MHNo-{ z_bwG0g`$7|2{_w0nU)o&s`Z`ZJsPB^Z0K>5wZSK)_$&-*hFKsADY0%k!#wXwVP-oB z;$ae~p;01(B&W!c4zv2s;@;k+aA>|AO_`^Zg%^W%Xc0G6{7T+7PI~f9r1QQzm zCD|@t*NTXCW|BUZ!j)$~4`ssDR#Uzvg(!=`l`KR>n;k7%gRR*e9Y3UqSXN~}qlUP` z=B>oG?1D(1gAcKJJF}G7z~3Ob8!xaU2As)<-N?|fcC?cRO~}H79^UpC1u4=U4(-L; z4N9RH7cn=MWHx~1ZYh*6IOUYQ-UH_67t4Axt9FW!xm`^6xf9{=6qK#K2t49-f&7Cb6G~t_L@1l~tbb_G%AyH_> zk792wQXf_ss5tC3OP_r((@g0iUEusht0^D!)ezY|QaoXH8!f-ks5|ewRQpt1xA((% zB=YoX4-F%_z5}$q*)s7b{~uFt9u4K=hK-LcTiHV;yO8V&Sw`7HjHMEZHVI{|kY$u) zZ^9tL$daX`l8|NWYbcRq8OAVKXN+ZL%*^w=PoMAmJHPjwIgUT)Jaa$ya$VPb-7QPB zn;FxgPEPp~ncI@qVw-_$q}@N$AIvWT@K@$+9-Je@!TBQ}#8u-?DR`?aBF8lHPu`Z$ zps9-LBmTre#!C}Rj=+Re+se(xKJ;zy@!f6Qk@o6^-MO*WDaR%LLu3>M7tF7*Vl2vm zVh`O4(N650h6ixGe^r2byTlnx_n2#T6K00GbNZYYeBF@>vn}`TG|JUEALXLbq3Asz zjLr)YTYMwk$(valG}?6{-=UE?@y#P2t{FQhkwQxd@;xn6o)BdDh|_hL`@ILuqkwJv z#@wi3n_DJj6Ghqz9{3xTZ!FKRyx$~NbRWr@u1S48-4?B)drihUl2i-}ED;JUH_IG0 zQrYT|Znb9cb~9WCC_ZT4EZBGX8feqR$T=H6M2yjZs)BtAo3ET%xjWS{OgJ&7vVDDExODnA) zlhCI*<|8v4nJuWD_?%HvGgYoGIAKN%Zn8+YlnKf6& zjI;!*Ib(^bY9;yaH(Avp&S3B%s);d&HtTDRMHn4#pvM%h8jMh@(8#Z1iV0j(%tXXf-^^cMO_z(_QDS**-LhNd6DX| z{FIh+^3RUrF(dS&$2YH5vQ-9eBPnV?t!B9=&$h z=8F-Ko$_ck6HDE!kuxQ<*xdIle&K(xAohe>i14z7=z-VhPAvvI^2(1mC%}E&qJX_p{UB`lCb&1~ET!%n%KDlsfdAuMncp z`5CCu(r*M~bOAbrG97lqU3$R&bh7h;z+7p+8*M5ziWzFfHk^NG?m?VELcV4-|ENO6 z9VPbn{XCgB8y=nEaowbA=8CsBic-j^K!F9qd}Q!I1&0CaZD)lRUdTZz#7v3HmO5fl z*~)OLLVXr8cseGXkS<@l|9)1oNq2$W_${wnR}^RN3u>uzo_20++wfTh%r3*pyTi0O zG8W1%2cqg2?Tpfso5Tz}sbrg>!ty+0zp9MK#o+@lva)DlZ?^sER2%kKil#k1i-s#t zN{(r!@nbrCws@ncP5>z-2fWjblWrSH#AYC^yK$56a6GN?Hn4C~^2~c7x~o_=G86Wq z3M)-Rq+q|XNOj*cFjArU)KhA_*WB69iOh+s@fL}&sn0i6az$l%De4Fnr2?8)VWoQr zx~midK-3bz&yZu~8@!Af@PtY_IM0~yR&nx#PMwoS4(Lw@b*AC8@!o2_%qLaUnxoyV z6VT>*?8J_8%GnTlsHl8E!zQ<&Iv6^?-pbiJ`&NpAn&n=KSPnPZ;ZV( z$n8dmhApDsl3p2Mkd%K~Pr~N~GNbkdI6~g z*3s3XFe{4vxK|SP^ZvPAhw1ks0_Ye|C{>-$XcIaJ%8Niw46(oCxS+bV#cSzB!1_2I zVE?;*H8ul{#Abj{$NY-qG{Vua%vk>$)Btmh{vuM?3r`?ARgzb2v7~g*yu&8*B{XR1 zWR|;0R2X@6X9AD2Ny0)Kx!KH=u_+2tWP9>0kr&1#SQ;iSTi$m<&vX6i5XXBeW z+7`B|M)0PHMAd(O1}rDhNcKH9?5Z16sGVuN)G>cU}iLjo-8mQEJaf8jD^zw& z;)QIy7eNO7$bN;u!z&lha6Y!oX?9$-zgKBo2SZ#IXZKbG7tcl5f=RxO6=n_!;5oIn z+@DWqBlibb+s662x-!I(<879qXB+No1ntNdQFMmv2|Y?}J37NK($0<93A*T3@bFWQ z{GFQ`!%Phc@bIe?EXwqmD0VtQ#H7A+;(^*?q^R@P4U6SMhU2Fz$DEsP$(Ier6o|cW z+o!Up6NK5nQocuj8vwf`isXy2CEm2i?r}*MFk~k3$mWefQS@JBt-nMAz zi|zVGbv>8D2@OF+YI4g5I-H=D+3Yp~wv!Rzhjdj6Lnsb|6=L+&r zV#{Z>(mHJW5jKPKdY_zbIE&jl7(CG_ou(-mTxVX-w-|nTe?K^HNG#(D+WahZ+-5a4 z-kn)?v2Cc7Fa0SLV+ZC%KAo$VZn$xYP2*Kw0>3f=zZO_a9&u`(eZi_AcT4Ag_ff{B zRI5zhRCazeu%Dx}_Jk^EQmZoB`@**0;dM~?{h`-?iN~2@AxMZTc*GfFcxh*=d@QB! z$VcTjp91Y-e4z2BZm35D91f<`JjGBpN?!@t!=M`+U$tB<5kHKybyc{!RP(1%8x9U*>ymb<(rVeJ+F;`4NpB{(VzaGfI`mlaCPt`m?z5i z>CyE{dbRixZp~;HIvG4MA_IRV^( zj{|?7Doy>9_NnCI{I@_V{u!@47`ci6R`9p!E+zw9M}y<-vS072w{>^AE~K78PXlf$ zGxwAoXyFGm)(j5DJzuE=_5z2j$4S5D{~TiTIBgPJtMUhF$3NfYD~z_|FS&m>KE}^X zZ-I(9An)z>QUtN7tlCwR*w(vln#IYZU|Gkh#W^qWhO+@1OHgZeQK`uEUW+wG=b;mH zMEgrU^d6c`+8C->JLKob@wtQqA2&457DeF+!Q5o3Z*S0WGfcxq5I@21ox~jFB%iz$9ZQvVm!p8O{PuvNI6vv1h|qUoKMfjs5$pL>jf2MqR9Hg%X!Z zVu%T~c(iXP+y^Ns(Sl(^s3(Ir<-r*neUoC)Tr5TjxH^|*3XC7cd+mt6dMUg&J{Bbw zcBp8iqx^4C_U$>-$gidx)ZTY4dk1az)HgyBv3Vu9lbfiwyLPqFxt|bvxCt7`uLkPA zOV(0oQ7i8&1T7iv?yeq?}ZpP86r#a=%iD}m)#&kvU{z2^VF z;t921#5A5X)AJ>Q5<;e5d^9tZ<{!Q6YwOXeO*hU4m%U7XY4Zj{J)GuUI?2juwMA-H z^OrNA?*!Dh!9%!hQGY54U{4Y^nyHWZ$RC}3`-bWw^2j36QugV{7s3MbwOa5>&Xg)> z?N~MS5Dnf@(qP`@d*%pu_mMQi&({S`;J+?&H7Kgf_&E0<%GWUGHZ^tAD5mNVmmBeh zC~8`0)sOf|sp*#Sn|USvxL51I;Rs{B{Uc~0Sw#aVFdri#7-_u?C$%$o)`{Z0+%=Ev3k z3<=&%jq*6D7Moma-f%mB({*T|`@q(dh6mbslZTh3^ljBhnpgznskY>g~d;RRt!ivd;3_ z@b&G7MW54*_~yT(#DOZdz{aWI{53VCK8ui~VZ#9!0YpI|+4y=FW)yUkNQP_wq)*~C zOK2{8q@VT-ld1vD(ZH%bc^WB`DrU-$JwaML#gEu878!T=+ek-tOo~y&T0u7LRm2__ z@f^#qFh*g;eYWfd=0-mjCxVP~fRV$mFu4?1Pi8Nj`&VPH^<$N-0QDdBuh;nNA#nv! zoDT{|VPr1V%ZgFI1WYJEXDal=`apj2aXQpNU~&OO9^mzp2k^(F4Pc444t0Ye6~3T@ z(kFXIisny7`cDmfYiPQ&6#K=V_bMp67xB@c_n`qt57Ee+S1XOuwu@^!PCGR6l*Wr-`Q zUZ;7K1imiR{_oOaoq?rN8g)NxaWHD|IP zPR63_mNn*x+Nx2l7o6qQ&!0sjb?RaXuL)?Wkp14HA&xPRq#a%srik|AR9HUt{Uyw; z2g53DbOIjA!wwp+3gc3a$+XiKpvK|z&4z#gn0_gD@XuzgfMfOFQsxTF+B*Fob6;W~ zr#Bp~wB2yqKdlreFq~X8TI%6(+VqG7@G^d@b);hwC)ItZQ=ljcXJQcCCYNvgf;t92 zQpS)n@1M0!-=kljIbK9$i+RXUUF%@eW5m`E%JH?1JGX6blFm<(^6gdDMn}B*;q_BL z!QfYZl)x&$!_^)@wOf~_oaLKv@s@(9=!^7`pQy4)uSCzUV{BV7Pily(^?8&l;TvD{&0GC1jEGA>{Lh=BXfiwI!vi_S}7e>Tw0n5F(yQF z{{Mv@lnHa$5ZFa>j4B1|)Q=4#oI*=|JOCcfO!DuQ>ELkLU1;<*`Vk#`Oh*NLr3!{p z_{hUc?99mDk1j}lIH2@s-7?qVN>B&)+d3u@b||V4af(<(q522)Pe(ERFPS>zrzeE` zj1xm9H=Lu72|;Kf=)yNwATnmpP=@4(CzROcUO~swAEp_L&xL;k(M7y&AozXtQ z5xd*4;YAAbbCidc9tuiopFKQInF!{bA8PN0kjV&lf%kKbI<4&oLOUCjOj3=O5`wAC zu&Uuf>m9B$#vfEt6I4Ldxf|CE$=_|~fP-ci<<<99m0Aahl6D@o?hYb3hgqjnk2UeoWB89s%Cxp39o#zQxxu{3Mn4g{8{o)sV(Q1pCv` z_ad;-5VNmhQpc=SnY~i@k=~iwx#eK7S!uVZ=O<{9Qs#V{+fbz*E@y6St#p^A?!w8E zw%h5ZU{mmL?7{G8eR9pI+PR2~Pauya$Yu+$oW`U8ziaRtt}Im+)p_^es0Z%kWI1hc zJ5ruTb^M-04d^uTt0c~rf1V1O`BNjx{t09EAU}Sl26K6oRJQFuTRMH@e!M3yHtqb- zMD}Qn^;%dlHzlPQn#^}q>G4Hm*N-2%aT&-sCGgox#n_o%uZ2dNJ-W3htZEX1V3M(i z*AQ>^{Mk`@GZ^ZhI~edzEoebOQp(5|gf?qDB zA>Y(bP=me%+jteiIr8nBMUHpw%g_@NM^wPA5c4~Y+T7rw)4=u($6?( z`YjOdIz*6(I#J7+Z#lfQ5c-BINV-v0J(j=x;9N1p3Uw@Kq%T6TdF&@&2rD^P&cj44 zb@g^a@It;;K%Qtvbtrpy`Z%BnaB|}d3E$puoJ%H*n+b7UXvNh#xce5%si`WMV6WGn@lXs5;|JBlknsRD(C)_qRlN&B7u zuJ*Gq(5Ct!4(am30Gyv&((Ju6Cq%c@PCr`4~VUd7vdrg72D51yYGj}TZ^ zHhugL5%gEtMaQJ&-WYk}OtKi7L`;Si6F`B4wJAqR{PBGWWEli7o)2U*aVH#sK#|YP z$SfNFn|^FMcnrdBSX*eME!M0b^?Wz*0L_}7v+fQcuu{O!DD9g*(GOs_U`*Vcx7Os8OF^`GpmqVVs8je`7; z(zpj|4z#^C zm#l57U{TjoS!ZQOKskhAv5~{sR+?zblgJ!&E}_0ve4Hiw!i|maNXMW^e#khR_yhVu zb+XNPO~d+q&6bzV+(J6`&nY@zx8f{Mhfv&asdHYs9W?5;7GOSHC|=A=2-?^d8djDF z0WEbOr}QfkoI?)PU+oFiBu1Q73gK!Dxh?6M=?{(Ztaq{j`3KwVYx#nv@?jf!M=Zu8 zt{Z=d9mT3V>6Nf16K)iVdt--1iln=-^R{!j;~p7%Z)3lfo~k$bAk(|??-4xnPlii4&_eVFqCZNM?X8`$9Wgn#UYE1xqANs;>|5htsDK%q1_U8w zI?(xa>QV6IDo=CE^A3g~)h-mAJ;M(96nn)|FrBOG)|Jn%1aE%7cjptE!TPup*;syv zr3%VZlM&m0Sz<9>JBWE#7y5EL>q0kfe_weiXp-DICj>UBP&*35t!QO#t!MLo*@ZG5 zR^eJuy{Eb7Qv|vsQnF)aF5ph$s9UF(4(XJ`{X$02*W%@k~<$>%>tYz;2FI#|{9i>3fTp z(2}1x$`VLc^!Z$an_V#;21`O4h2fk#$9(W5jZIpi*o`f?zOu~DXzgZAyHT($sX%2W zSa|^XnO7NGzmFJAQ?Pm#OGktHu2StYq7UajRT|R5AVvZ)QXZag|6t)K&nG%werI{S zd$^n)MJ4t<;#5+lDqY}*Rjxsg{>AubOvTe!u5PdE1Y9mmOOmc!>7kk4vpN_XN8k+6 zF}&v|iCkz!hTw7uCqlkx*>`z`Zft7}D@Zv0tz%k433C7m-Im!@&T#?MLa;?$7!S)c z*q%P{TLlw0u()2!(U3B2q#WxP$`Kyq2@@O<#HZ8cjK9dHDvQTEg$DD~W$&}$(aQ;m z_T@xqaQRgaSkD}=c8a_wr02?ks)qTU;E*P?uB0eb=qL+LI2b;$T@akd%LvTDOLpfz zYu3N+keCX-0goAO`BKtRq+l?gqM$NE;<4Q^e3F65EVOp|WG$Z4d$Q$|)5_Le^jbl} zSS#1L<=zo|=x8~tHKx&cNo(N2Y)VSPn$^wOUe%f?u8|U*@0irT5POkS@BW!0qX3R# zanf113y>HaqHRHSD5V~ZZg9xR70VdlJoq05*##mw@mV=U-#O8-Xe zQSI2xy1X)A!?!_gURZGxyM@zFPRi*@mz`LoccZbdEl;^U-@J^dIgMJXH7rl0e3i)9 ziWrV?Q83U~e-etOg&tY-gw~EIninBaf`u!qv*9@f$+3vlY4p7ftN(VQty-7jf~6CfC5lMIuDbQAVFA2=VCMds+HI)9=}O@qE(nL zb7noB&A3iQVkc**cs|*~xb~P}nm%EEd52zMUFeY&myqrK+TBWEV@a>7ukC4VY^}8q z{t2melT`B@|M_)-3{fF#YG8Yy$7bd^9^cMQ-VT`~^PJFyR9c>36(tjLkFUN|R*Q9>(8a2op#LGcZGzNgFBiq!vDa z?Z}+W=Yy)|VX_ap0?~s-S4-^ZE84ZU$wD zV-9Q0g5J>HS!2C^3G;|u&~mvb`6BG)uqKjmus5jpsY$~%KNzT}48bM$^RkiHi!4N0 zP)<>lof<4XS`Q1S+N{D%>M&+>V#M)(A`$UynnZ^p*M+xiYQC}y{O5U{fjE`+NLBNJ zP}Z%G6@o0#!vYDxJ``qcgdow8IU>AC+``yx!UOjOwV$7pPp-{|R5I{XI~7_^#$ci_ zsCL`p?q*IEHWA#3C%|K;O84MuiAMc1wQ&tO7Yam6nVF4j7Z93eI}vA1rC)l*CP2G& zHzDC;3=b+(c`4p0bIQ+UW%a~BuS?37W1x-n;S+=AEC_-3<_ga{{wqAL`_Y`?^`nlF zyyUUtbMuyM1-c=@t7wmDEmQ7;y;AKF=DYK74(fsoOK|RFOph`ZLRC$|v70kKZAG?tA z3#NmCFX9X}k)Kw;tKx4+tq}9dE^7r$Nr)izS_;kgcJ46lsctzG578Im;e7G4lP7UW z>dfrzx9hye>GC^Yep@?n(A->T%jrzZJylxAka~&ZuAcfybPQrqV*d4ZWWZekRO%XH znOeaHSTL)ru=}^m_ZSlDAn;b5PAzcyk%7!5;SQ5Wpe@G#JJ0?bYH2^8_8}()7M%8K zmsNh;lXiZjY3_%uJ9o4}SZQCNdH?(srx3znNc^RA+^*KaGKsR_}Ob9sR@a9_1Yez=8 z%SO535-De(mB&(T_^|SS+jQ-(eeY_?I z6EdFngDXK(LdrkhLv7`)cXB$Cw47tz4Z(U4aqB^cWGD#A$U<4*At@dkbC-%{sc~UeH z{~6#9T9HU`njiG8&dmG!35fgc>j`Tc&$PG;Cfz_Y^9>FdHRW&h6-D#iLZt z<)oA5*k^ZMK=vXb>bTO3BHR8d3gVsO<0|~yD(riv+9qb@<=%)YP_-h1kI>n}dU)MF z%tMagcg!37RBB9`w{X7h&QreC2<`0-5m|zUuk!7dq2zXwj*ay=*X}xs&`@&TtnbE* zBFjWTo^JRJJ*os=5>-H-KZw4_AQ zm@_*QsA`J;JnGcU#1NIYo}Nfu$}Z)qPa?Ri9mpzh+)X+>1X}Sy1vO`xxg7=M5yfWx zEtx4VK(#cce)1^>)d_+a>u60B(z7EV_N?M^&HysFY&yatcqF(-(~yV|k+0G2SP3sk z>T)}ZlT1_V#mekW55#}5>oXO;RvXCiRnd53Vt<5ysn5+>|4$?dFMec+`+U?o<#)a) zwa~yk3Axr99M$@iSa}nJ`E2(TJ_v3p$X}c zVANaPIRt;-_5l8^*95NKCAuK7kX4zo`E%F&@)=utPa#gl= zPopDmN*|Bj6Kxe_%M|Kr8Wg~{+Drw}zj^T87XS=Rj+76ek-FYwxK7sj;Z9yrisQo@ zrnU%yqAs+o^XOT!9TkSpS^~t7diO9FXC_==B5o3!`UWDfH;q_V5x(X^ROxyCs>yw} z_JUQa+=J<&eKrL2vRuBlNh@)fFs>`h=>E1qoEYxaf$FrB*%(b zwt^fwKljH?*u(lgMhP#|lUCbVaXz4U8+SIK4ElA;2`Nn6y?!t{o9Rm2_005LZQuflOUCVZO4A z9{wl-hS&-&u`~>S_(R(mOIFGAma=@SOQSt z11o@$t2kq`IL~FkwD8a%vKz%3Er)myJKD{L9ldzhGe1!6eNn}HF(M*TC9gKG^leAU zgSLBDoaf3WTdj7cT$|73i6%#T+qTF)A(^G&0~^{e?A?sVg;uxW663pYa^QqwCUT%f z9Vq9K2mUpDJs>71`PWFAeAkI%`Mn3JQa;R#P(VuVApMTF5%54fW@d@@drNWqW7?74 zK%a9WXKWf4-2JA&v+;|q$y=-tMMeBZHQ7Jwdw)DZbDl;j`%jtRrD_38A?$jaLUW2b zi!ajd)A!x?Y&m%K63L91)zsL^E%WXVO8=KPetoft40PO+{19a{N|o+BJpjI(iKsYv zP1p9pfJHxIx2TJ|$te#@AFQ+MJ&0k&%FsKJhcUzjrKZilw6q2#b^eL-Cdqc?Qtez2 zi~H;TAr_n)%+E-{A_lq-ErbRiUj$2SxK#92W1TZOR16Ih$5eHEkiRzuYxZr`5^$PZ zOoW^~%NMF_|1?92f~9(FHRjH$G^NDP#wz9m>7orWB8FM05m_+*488n2#&Y;|AI4fk zR$@4DPClf6J24|h9Y{ZmN7jiT9hqk~QFG5Gg_DsMDR6J_b_joCnzL8D1=L$c_C=Q- zZ^RgPt)pJ_5{2ACrWS0OonoL?p`xBm_5E~Y3jOJ*=GdEU{s-btfbLV-LU*Y)7iYRM zLX)@H$%^f;`nTR%ehPW|iO0#SFH(BR`Fg6<53(+IPGfB`=!yg%_gHUcSED& zS1^G>^ZJ9Am#K%|3GbO?se)BCF=8fnFz=Tl1Mi+KRMvDP^DoqDvG(f7&=^B`Cx3~V zq5zhAu-EWlA(hNb&;saWu=q`+RD)^V?RWfWmd4u*fBo0lH%nHne&r7}l&}-UY7BT? z4!VUtHy1fNr53g<68Ze-ueu&fR95+z{q#`d^Gp%b31sMj@~D;7#3;M?mXPL`$>0AR zj1k>DNNb?J`EK}pVbS!)Zf>aeGWuSq!*pE%QMtL^OASv_cC$dKDKe5o4z7f%tb7fw z(f^_MUv~8sO3BQ4|q*qw(u25+%v;myrO+)T_AP3;Yi7s+c(HdEJ?_|O-81N zdL>lL2O<4S`b67OGyDE2;SRm%OKmt`875}UY9L|CX=Uc13Ux`!V{#d~F>;u5M&hdY zy)!JCiMjTEh`A_@Yl!GL<1y0fTIT&4kG|Ou?tE$(^D++7@6CBZiqZNct_rgOdlj?X zBsO%Om_?F}T&d%3iP;EA(}f0E7+o`~ISe;bh8d%gsO>FRJOYwr4zyrOo!9J~SL{ak zN>1cJ$oBL@9m5B=d5{Zx&;{?2cS6HU+Qbl66kp4JvU2F2SC7O+r@2S+%aGJv0VtxG zr@+f-$3k?u0PzsDc-ATB_~|nnrDMH=*b6NG#O)C_zpc}HjZq;QDy(U%TXaQXdX2r` zkiwRpofa(e&v_+Vz=Puc$yA^lmeBmpZHvZE7W>}s^ zpLuP(;homMlAhlTo`|Q^{_yjacGnavqF2G(-ybO6*%NXPoD1PVc}bcnEPvg+g(x-t z!=bNRCMcx0fOgcl>C>93o=6$h3oPX@JAN3X8C8NcpMA|~ zmJfAG%Jp?hXi#z!+L64GCu{X zVoqft2e5rHsmv>*Bm&w_ic&+Qhb`g`=mUK7Xx)hOm3kS99k+Is(B%g0$-Kl?ym9t; zPxf~IZiTVGFk;(y&)|y3IP3JSnFtVCAjErh%I(;iL3isnjC&bMHtA;rF{gV~Km2Nu z#3K@g0YXyTOX8=Iq>YLB@PNh%oExxMI27r6mmW49deTjl5%HVkt-aCyKc+^C!e9cL zZ{|1Wmn*0{H;k#BexLIjgzuH#>*Zc<`Vs7O?9quS6fhN{72+cu^INp7blv*H+BJbw z1mgVQz3U#6kz7#)x^+zChofaU_axD&Z|!xMn1ud$tzVRgo`C5zjlqWtGZ!1fqb;S~ zPYhYd(cQvtEwMpob75ijhOt+aH#&C~cJTu;VGEMCONVONf zABjQ7{ZuB*p*JTDe5bXcDNb@AZRAX2QiO_8CCvK`r(+)8?UC&{^G!`lTRz`gk2uTD zK}dP-p?_d`YGO99JUR_egluw#ifEa&jVzB4Q>SQVQossyDb1u9qPtoJZ2|9F$e9r^ z&rNuo0C(T1&tvrVA)n%9+SdsJArh7l%d7;LI%iEIr17nX2_NqZX%Ky-3uM|CJWS6N zD%vs+Tw*WEwuL=)icB}#Bz`iDIIWQCqbnc&40WV`uS2NN)2!jHBKfzEIM)w@5}4*K zLW$e6&+L6xgWZj2kiGfy$wYCr{uLqjcl`6+JGX8Mjd*kZ&{Bta4SAB`e+~eLug)VI zQbeNFA+44In2e}nx-$AQK!H34Pq&xo73d^*Y*-SsaFf8i!W&z`H2SB6jZ_7{MqmT* zmtLhxa#@u~Qb)$Lv4)xYN1s@Hx7FTl2JjE3jj>tw+lSYyhIo~~I zqPOj2fVbYhuSM9LexS;Pqux-EmL?iU#FRkZE_g1psrC;ffAEsc56M0!RQ*8dYw$(# z*udQ1D$E^IH{(IM1#}pNM;t6Ny=U6?c?Rk8HLcL;Dl8MJ(a2 z&0=cvb!7${9;@^WoL3ZOu0EMIAt@6g^AY#<#vtS?c=)2kPIK~2w^|Jn!=#N05y zj{FQ7lvr+v{C#5@9%AU1>KU)x`_4R0=F2>NbLvM(hgI__f3?%!aLI)!_1CWTxSue1 z5no4d{EJn3VhizJq)T`KuUu>H1i|=X-S+-bOZ~o3df5C3*xzRC_#bQ!Z@cPr}ij(uQ z8hgI*Vfu9$U}xPk|I|Z$2Sxzgfw8RRa1;~IC;G|hy0eBup+{_H`M%%~cg}wbO8%%Q z$P={Lve7p$v#;`J2W{%JEMQU%^KsyxJ7H?-1GTyKf(z^+KemN5j^zyVxN$K0je)3j zc~IQdnP~|;V3$2l7jyw2D0JFv85{gC5jsX=4`k6sxB^PPxys1{Vad$QCRGOYGy!|s z5{RM5T7q(v50+_MXC+b2WEtXDMVO!a*ry8hAg_DUu94RzAE?lG&UMBM8`~8U^$v&9 z_ebQNoNL`XWPCeV5}__P7``_8;;`h0emwi<%lXhskJ+lyndWb->TDOLYy9^pdmj6V zgw2i~twJ{`3)V6hd2EG?R5COF_D328cfiwkFR%-DR*zm|MXxz_5lW0M%mo6pBSuYP zs#yR9ys?+*)I+6Qutl6T1b7bt>pz$aBCylEj%WxUkFsroZUC^GDZ+WP?7d?A1!C~E zTA`a$qsW5qU61$wR%St`e=&70dgbYlR67Do^0uzvky#vBJa?QD74PfA$qjo(bh z;(e7^wm?m4CUX26E)mJ4!2C30d@P$;Za{!5W=?;F^t4Dy(12UBY)_59wrH?}3R?T@ z655U!{JfW!>-qc(*Q4M)RX>Xr0P2u2{ zZ$s2vl!sB2>Twt5+f>hlrrx_2JEZ!BAHhbBq0D2(y3yQ)ubQPbQ?De4m237ASd*8t zF$rv|kGB}_&1{J#=je$PaM%GIb5qHol<7tNK|NQ(3>0AB+LdZcHD^0N%+^D+Cg0RL zf{PE)I+dSNW8Nrv^jl}5@wLmRv{d*dgT($u^Zadv?ZNUi2VW;H6?WzYzXez{1H!(Lg*Dklcm-q61qdvGFd^J~f(-8>_HY^Y z@M7!X#g_j*&8Kq&UvT$#S}4I(Hlekt732lr@t@{^qo(gWqaTEyzbXxm74zV*JW4Wm zK1fz*l7mes=sNVh1KF?x{knGY;f2MxyV{nR8@S}b9PxxrK9q0E$x;!Ry6e+T{D4qi zjlcq(i|r&na=Ch^F>h()N(pzAV3_MqhG93(ZdoE~yc9ZM=L$i7dtHdl`qxZG8WX2R zsS$;l4q%H2UeLD!jv`|Zl`t820`7moQpw2km}qWDldiO#P4=?Mm3TiI-e@nJ$@v`>J*`=B40JUv z%dT|Qhk{&*W&ybvsy$;ST>S@=!I1`wCp=$@@MgR8;CGE)q12ol6mM*z7Ose%`@3#6 zMxbZtGr|Hi{aPxBdl3^KxO9#k5<*IwD`|_QeG8QLj7bR(AV&HpxZGJ7u5-WEbxcr- zG2Y@fVHdvcrACM-pvX}3L?&sQv#x5}RQdk8g^?7x>A!a>fVp!v27~$YfDf4U5dgNl z_i0FdVb4Liqu%!3?McI}cdf(M&(r*%w3_1}2o|ENX=mnrfdBbk?}atBWm;u^w7 z`>JW#BhdA6eyF+biDG+y(!4sY|_$yf`uZ;WqOA5)A0va}> zwx1$IU^*kno#)zkQnl@7&2c7tl|TuX4Rtzk^lcu?W!rN1 z-lp=wh8UeiY}5rH?t1+Mq|#*4J5_x)ix)4~-_rT==ftb(d$#z`sZ~3Y%O-_rH{$P! z>js6S1`c3y3RPQ3ZUkQWi#;e5*Z~wpJkZ}_mQ9Cei9rYL&T z?Li`yqzJmt4nKh~1yB zeMf}Sptgos2fOLW?=%K^x%pmr^swjWf+mUeQ7XREJK@JY zbB#v<1Jd7j&s}^S+Ue z(JKMdMiH7D`3-{gX}E+}J?ow7nF1xY?g9aF`u0QJX}*mOa_WK;Ws3{$Ay?hm-ebhu zc6`~UwW?wI4uW%517MnNCz`<%fHnncOLO5eBiahgD?to(kJ+B}deK8OIKvLGCDi<3 zC{h^dOYw@1k)&pF_r-Ov51FHZ1Qm*&%C<8dnQAOIj=WI?R;?gbLZ)1d%cVyuM;2DM zn)iv(o{7<)d6?R#2P&T6ES#sfjlP_Umk2-aq67+mzFfSB)r-hwlpc&d2in;w_^Gbi zkMe)NJvNDW`dv z&)3ffX8XT0WhPrWSi#^KxkQ#_@?BNLf9e@}5&nh+Is zwk%cjt{FNU{=(*yI{8=^i%Z)=e(M^CZ}c9`6s+VltL|^w+fxQ&vyM9S4G54|TD21YBXvDpMTEr*3i%K=jM+tLNwC{LHvZyeVhwMk|*-16r zvzKjNm;FBFCS=iR*ccwNCv2>kxU(VW zuo`7vU073JSq^$I{RGv-+Ve8(WUi*gcl61Ht^Ngx@EM{+{HBN1OXzH0sUZ#{ZWo)~ zr3iCBAy70vs^#e^(A?$yw);%;i$c`1pP_S=lN^N!UppB>-JskdGNKC5DU*rEWyGXO zkHg;tVvF*q{>izmgv})>J6$_S(??qE~Auu66x?y zy0-}_m?kJ*=xzORgEDaM7+F{t8DB}6>Il?|qw>1b^w5#<+2JPFFiKz*snr}PD@NQ{ z#B_`-3&G*L_yaD=YU3rj}^ybUsS9w;RKZ)?LUxcKD_ znd(_E5FcJG{6Bh^wiVxp#WJKyxBJcdAFDY&>N|}-{FTi+A+X)%X4nD_?v1}O06u^p z?Yb%|IA7_O@I7S3D)moh$|M>@xjqYaD)&~|{GovkN8xcX%C^m|`^(%Bomnzz-CaSF z%Ta}eY61&oxsl&PRJn9ZU?U?VRzFicnj21H&gP=BQ?|Y*uU1Pe;=N5{;-@^Xh_|h( zJqf>QY5J$8&$6jI;rl~Cy16k(X13oTQ7~J&r&sNH(bS&D_LO*+gb|!%k30Oi7_^fknuY|&=n_2ef_746&~a+ zE}ff+O1Mp20Nf%fPU#9>^jX52Y8N)Uye?(7X%5-X$RonKCBa))$GUXq+3zWrOk8#}xgZBAs(Oyikd>SLsa5;=@CK zNsX2k7GA=?9QQC@VjWwD@{XmL-}z$jZV{;(k4uN$`O*NZ&WwkI2`^cbr^Fw&)4#NKAy4CsNR8Uk@iwqXkd#7VvDR(aGfNCizF~EoS1QHA|K;w%v;aC^!>$etj52L zJY6=3Nrob$@p{8Y-xUaWL)9=@gHI0 zByuo@cW_qBPMrY;Y*g5^+`?4mN`4p$?_shL>|6>|AnR`pf zo*e$&?spnNXn(%t!OkSrDVP0O(oOr84p6mob5o|Igch5c`1ezDuW4&EblCt8N0(;AVH@w3kWn z8xgk7){J94I2xxziq$o_m=mJ z5j*hfhCj^_oQ8?@QMRd9rNjVZRyToQo^gz^r`5=MLqg2)0hVFFE~T*IMJ7=N6QQch z#Zv^zPc2CJ&|o23CPzpWci%|-H?2e1`m`8Zurq1NaWOFdNLexav>m{ zX}f39Hjgb5dYwxLQ(PbvAVk2ln;pn#tE zH;Sd?wxZ`Y)`EdatRm4h0)Ov25J3rJo^1NkveTj#4AO=iQ7*&rPABR>Lb+)$*}T!o z5$)1Iw7Z-%S3bM+hsPXl-40t>#eJHycZHqf04L0u$Rh{jysR`==@*e_!vYwHUtSBQrnc zHddelsz=`~fiF5*r{%Y7$w%W%ggnc(02Y}DLdqT zL#5cLhn1;Rv4UJ`a-48`vu*MPxPeETv;YN#`(KKrT5RLgof)jKly z>v5d%=NhRQz6FtdDcbYFVDhH7?E3zRgXg}D1-TdheQw%OZh8;eeV_jFQ=@H;YQj5Y z5B~nu8qYnJ{h@$AnYECrTBt!AcfW9uAkh>@Let>dO)u5a&*_r6Z`)Dpkw8VShNoTP}r#Y_Tk{MriMNca}#b?wg-o)91fwJMYbMTEn$lY zgZ!MQa1hvFNmVV&9fREljglc}_z9C(NU&5`PJ_D)L52vhRU`v_m2n)j2W-0ADTD(Y zu%1Xr2Lcu#G;T+q>9Q!dp2-W0eC-BlbKQXP=Tznu?dU-frhSljx}>#A3F+&5$#3sT110L^w)XDie74AnlqIyHuzk;l z++9?U$_fk>oL}o0{N+6nUBz)5zj)dkW#K+q*l0WBy4y4*`v%gba(^)~!{^0YoV%Ee zZ)2XdkCG#+m3LJz6b7lZ#A<15gF%<*SY3bABEnT-`FQbr{8XyekVR%p&jw}`4WR`J#$9Pc&W9<|7NIEPG*qcX7`;(n-5!j*~^pJ zo)qYvm=_xO@Wx?#=n~)dPa^pUtT4NHMPCvR?33W(!2MD z)}#(;HIT%4P$*8TzG~&lykH*IOJ$|5W+xRFW;S?zuJJVC5H&)$9M0Q(c6HUYn*Cwv z>5+?r8%GW-1bN-gV3HHtfb7la%g*}s9~x0RCr2J@7!|JVGX8D0Hc(Xqo7aAhh)!XCj z5dT|ORI|Fj$0lcz&|3b=Cqa@|L-t}-hKC-4Sg2$sS4ss{qZkV4g&0b`5pTI*M70p{ z8_#?;)N@%llEg%nRd~YIQ(NOq{S}p3R>W?cVtClQJ5FXXareLVUoZ}seEpX{`G>-+ z_J$D+?IPJA)0yUa^%vX<5$aR-dD1y;vRaDFwa%%)WNJ?=b2qQY+2IbMQ@x=}mgDbc zFMp{k*TO`0(Ox%F&4jz-5dyc5_}xKp540CQx=lDcs({}m%9Cv?I^_0C?c zl=~W^p2sJ2#+mnYbcY*4FOMwj1pp4?^3MU&RXXdjFAXE~q~{ywMDC7G1{m}NE}X1< zTqlC-{#kV1p?0sA^mf}{G1Be}rf+JZdiL`+WOWUJQ$c0fe;v4Pn}nE6DVVHNza!m)e?G3YJkO|2Ta$BA-p0?`Udm^Cg!?~YqFmkF z&l0a?tP!j|6X(6kia;9|NRaHZ?R!kHxl!a4VmtEeWNFBYtr*Agtst++LjXi38${P4h2|xJYz~bJWb*DSBnIbO%S^%~@mi5E8y) zA0fw>+HCc|M%I+nYZ75?0Glqf5l}0>4KRu3-14&qmk`{2dc5YykphWUN`4x2ee-1@ zKA-=3^uD-sLFJqLxn)N?(}9-w^-iEA&Yg((%QJC%wEqpdxf~A5F8RH16m`cNkGum;CY@NiUz; zEWWUs3HG$-lUF&QPEOpjaij+bzfV4c!kH-OY;FU@+!a>Fk&KHO5sVgCA!p*X)PM&r zK6gR!>17cc6+(0bbGXCVPOKshI46*!EtAXb0#bKtaKjEX)*}H<|vi74>kJ`S3fD8C# zhZ(vOAXBL$+I(>G%0%&w;1Bz-TUqOL=Ee4^iDcMxkb?v>sBI#Ne6j(UopN1DVc&ao zwK-{*FI^J!er=kOwymY5fG^l@FSdX+dHH*p=cd8Cn*}iuh2e?Vjn>V+6jt_lu6vGxGto=ikc@knjDB@7cm$_!uUTIb{6=&N zNs4?99g4lNm6f{~u_EJp$hiaU+V^*yM*ma<6U}x{;v<=ag-0rfRwgsw&8HIgk||(w zN6VoItf&&rc6OqvaYrQst?`kRkNFDeCS@Ko&=vVsNZyPvK^`kJe>26@dE33Dj@sVh zC{Gg33w|ab{BLR?)x_*H(c|6gK4Jwv z{t>y{{>_zr$3aTS^H6N}bJ4LUML~-vKN{7(xr`sA4neos6G(~OGt)>t@FOmzX5I={t z5hR>lY{8#Ii2clR_54{}AH1!U>--2TYuv3V{%hobSbR(@rHuQ$hdbVa&%%6ZlD~hN zzD-p;*J?K`w7R{g6uQGfhuj!;j0B)Q#Pd!mj*%^q@>~CP;u-G(NV}XeKnS}5=%p(- zo#6C~9DKm1OOJWK#82<=!}vXI}SC12(lKfS~k^CK8TeC-$h@&=t=vrEAjO7o0_ZqYF%;Y$) zzt>k`J^jV!kL%}{jKv2EM(40iSLc+bYY#@0J?Edc;-=vI;iUc=nOCZEgqNS2GJGxe z-fi9$T+I;+9lX0CmGzJ7$41QW9h+T4x9laSP!w?S@y0SXiY|K+j#ZH8OQ-6o;mRUX zlE;#AwXP^-rvQqr9HD=v&t{05_&67+u)Wqz1!A=ROS_T|{qL9UOeAAE9?3wi=3_f*s#LQLxk730e;euaC)fKsqk!w$naX z*07F{o^tuD9qA2|s~4)xVW(dhb@-$@a>>kv!_rs;4`4L#yS^)>h@%-CUTQSD`PC9f z+7|Kcr!CBZR^ss{ooLaGQv7wK+??mvPO*K< zUjbluzzZ>zckJAM<{GE%#R50BfL|q#mO-ezpsu7zj znmID*gfREiyCZly^*)8CT3GcfLV|?8e!1_~sihA8r%v0azh`tz1%z~O*`HCL{#yRb zqag8s123Pb{8d~9c9*`DQ{UWzHZPR#vXLh!J(((8zo?#`cspA^)W}Do;iwv)4}XI) z-|Q)_3ZEU(US`G0R8}nvNDY*5cGt2`akI5zMp{+u3I;{A(jr!j{R+XLzV@ha=%ZTm zL9xu66Ak295seH>stlMu@gYO(>N?P4hdg(j85F3ih%tID`#* zFnfqzM%?nQX6d;*I@e6)A9!{)=lY(LdB;?E@WLow+#_)$`(=#`MK2;|^=L-0LWIWp z`<4dEzcz+vgdU0xsA)J=Pwx#eelM|SY8CfF;ko*iE@8q(sgC{e|J*df7wot^21o}x zIqbk7BlDYGZ4H~xO}}Mg0<{goaRK8e?7LE$~<%VZQNJ^Im$ zg+G_HPq}sCwRty&oEgLYm%K~Bbr^K@3Ww#`1K2$5)tf-N+5d;o1zlN7u|9HgCQ%$6 zYX^YT4ty&*s91`mF+64so|Z5=F(I$_x5V)r4Zj8M={nYKgr%O?gW3XY^n1&?7DpZojef}A9_4kg(t&*&^j)ECd zD08nHD$YEs|4#Jjv$WSB?dEr_6Jtl~&s=N%c8;nGL$HYOMT;+@;v~k7-S6YauR>YK zPs+KJv|m}*a^#K3egB7vpvsSit0Tb|+9;qvtw5E6z({Qyr@Do9 zV;1Olyp{5%4PvAr!Y{{tSR+RS^oBwZ zo)T+_iB@Ap$6@-Gk*dY@_INLW2RlAFGHKJR35TYdBN>%Lxf7HLk8HcL$>7J!O}0<< z{Eegp-EIcwuDp18ZU2;5E8g-|`o_=e6 zuM6`L5aX1R3k|~J*8>*2zOdNQog!A4uc?9Ru#MPR&B#Ed>qSAs! zp)NpD4bpFZ9LxPKazcakInC_LV@p=pQ9x=VHivknTQGzsDZgUHhA-HM={fz*<8^x0 zzTGWNEbnYHAfc=?kql&33_NP)>zSijdyOt_Z7eAqKcBmA2GEUri5CS4FE+c542lVl zb@`fXx`b^>+RV3U$PPSfOFB0kg%4s+Iw57jXt?AguF&FWQ-MGCL!BfnI$C3qwdgQww*0vv)IApOFkc-(DCJc#Xj)CS3xSEX zBD5!xhyhJiGRUm*Jy}Kz&M|m-0~|a~@JryQhkpGeKP`n)Iw{YPw$sSUPeh+DDR-9s zl)Wn92!F;viac{TrY#!M1(E{H#t#m#rhW?zEK$W8{mR-D+Kkr8_R}n2WwUP@yqws# zo*eSfTq z<;Mb&K_E<9e2fG=L-5v%>4IUFJf#VjSoFRm2fWoeC2g2omF^G`Z*t{*7V0x#l}%YRbn#m1=2g zj2%o+^HN8>(gnPn1bfoPXm{PDhR^zLm_Oq-`q@#p=rZUeH;(UQY6m3N+Umb}IHJT9 z?w{G$o9W}c)r8vbvRv%TI=A&G?d`5*XX&P}m0iKFjH2(!@w4xk@(B^!+maFjWZvtn zZ`N~jZ7FtDw$ZuMXW#ntgau<8C$P^Y{+G`N8nLU1eerNcrJAUN?vkU&y&tP@bcm?V zKRXV^7DYXDnM}U$qGNZ%1J_-i?ZU3Emt>sz8xG$1C8Q}^QHUw+G9iPWc4GAj!!blO zXE)uh!L21!wk7fOqh#2?j(egnG@*>)+)ESzv_jfW;?|9TN68yn*I9R@i6Y-fyV*-` zFdcQWV;A&sGoSJH4-bt^(w0~KPNR-}(A5<(v%G@4n*AHqVd8pifnOQYY9#=52{K?P zlGv28wr6)+S;3{j0|`b4?MAkC)Gutm{MVv~Nl5>nk6uFdz{_VqAN36w`oG4FKD%|# z8sl$UBUA5S1{W0Yf=;TGw4cSKH>|Sau1wOjz;pDGp!D&;Z@iFv+(((KUUz}r@ZiS- z2WihcrxhoKEdF&Ec3wQaP4RZT>A2w3v+rNlJxZOok<_8x7Tqnq+Cn%Sx)36*hA2W5 z$`8Luy%=<5sb=)!qEaRt^kCs0vBgLQQK{E2oIqa?MaO?@tl9<50@ci1!nrs!xFU>6 z5l5=zlDV@&kH6f|M!qcv?U%`V7?3BXx)g98JX76Aj2lHyE&KL`B(tLc)VUNs&&EDk z|CY28rM|3)idsuFJeazzvHFBrKJr&>j}N~>L{?#%f-nZa67#pjtSxfL#jxJ_Snf`s@k%G)ymG!PwlcPiP z0c;lwqtL<3DB%xxbOM|X7B3h*kPUjRbJcdsZ~Euf{7;5^hSL*O)-zxI0Y@EnvrEUT z4Z3$Q^*#s6j8R{XzxyXC_CgVxwrEuA7xR722-XcD59D%}=8Smndr^5<62ceJpf-bu zUTD?1@JO(uI_x-j&hF1PQlQGxmiP&S+wJw6iwM*?dW#17&2Ww2-VbFC+p1u0eq$1C zm;4I8>;PBh{uQtyi>BCGfz@VmC{hhLj`=M#4fLU4m;+KYi(^8M1;apCR<+#MXhf>_ z)4zvXl_L;qUa~}Rky8^(K(`&#X~uY>*bgpWH=0Ix8ieAt&7a+I`oY9*`cSv#m9fQI zo9}39SkcB0$%oEin-)ap@vhOIRMI^;$29^ev0rvh9a3rQ=E;32VuINTLk{u-XECKM z5&h*iIS@-jk9apHu^?N{sZ*x|p5s9X}WGw|`(8(Wb6 zKhFCL;gYDPjFzc@+kf5n=fe0D`CRsTUo^z}{pl4mq(B(+bh6nRR`PF9jbHEoLK!ph zc>B-d5{x8AEoH;V-TTL7*@cnHn9~xMP3-KmzpAM6*+KSVn{|&~v*ZwujV9icz%g-J zn4I)t^u~^`iYzt4N4{$(7s0~#*ysDU;IU4@bk&?TUepb6R1qvR3-b~Fa;#10OH7!b z21+mIH%b!3a3X@uIrQW2U-bA~lryRJ755=XtL|DpD}5~SE#LA5>4vGf`_py1qU+`E zPruO!AI`ov>>Ng|<_oFf58=E+e~Z!Dpw zOSymB`L)hU>kBqlCLW1yKC6SD@%|4fc#a7H;lzgQm zeEp!WFuAbBvaVVHzA;kor}Ynp!Xhy=7xEb*em7=V4qTq&U^6t7&G_~0VXcV<@j2tC zd7hK9g#UWS9m<2`B&P#a@Kzfj4vk(L`rA&R?i(qFRa-F~U_N9!Q{9TsTW*V^sGyNt zo?0qoQaF513q83w@VY#)+*RoW9MXcD+vZ`9kSD6nTh`=*`Bj%XDs6|n>;!A6Sdd?E zk(2I@4pTBa@sziloOs~5!ig!Gn;}oNPr~2u5x=m5Q2of&Gc7FZ-8Bgx>@GmwoPm7W zp-a)@MI6028v6rSg{>aB1mh^0lr!)!JyY(c5P?^XPyk!4K@Y_l)aY*a8T;DshCbwL_j$i}CUya|F56MF)a zF-zIcbNY<#>__zr7n+i!z@?4LXFE)gr8tD6qk7=H+eIza#)$W$v@|Gx0@6q?RJq>j z>YSP(7}k#Hj=U|BL{yCBdeahz?hMKObUKRwXH_R^os34OK-c*gIvmm%E!iiZ?U%;K zXXVrhfe$@1OEtc4QD3}GH;_|@<$zd0lkZE^^5i&@-7Hg~5sm8@Il;F{rMY86S>n$f zP3jBSI+gJ9j_+D7!8Y|YiKcfi`Huh0Nz^d7qjTFi?S{%;7b4$B`c(aW@!^v7G_#40`5d6aU$7qSRq-z-^n>RH>x(+~7Qnr6H+ z$;-+zG1cOkxa~(;$^8@LCVCzt=+jR`@31o95odeLnNf5jQFHA`xji$KoL-y*#~u#Z zvZ&X`;W;tOZz*G9o7(YMxkVN@pPVEcr2*5}92ldpZ<@HXgBYAo;-EO ztxB%rb?Dy2xP{ba$J9$6b+=Y<2=`*_yXvNa#F|U_L0rd)j)bGT=pN%Ad#K$U`L3y4 zJbO&|ViUD*uzDA=ItpLen_^uboS0C{3#TXeo*e(k{MA2{|M^?Y`@~}`_XUH%1nrCL zOXu2@gN8dvwCRBEFI4eWza>9eMSA3q$J1~3#qt7_ zKZw>*IZt9j%HC1`T>VAJca8I|UpnkcrzYSD00~|A0}^MFk9IdWIAhtJR;I0Np zS$~Dx4gwO&8}lnv0K6*hs`{$X0jaPQbi*VqODYMtfN?!cT6iz5HwC@MkMVDnK&uQX z7lkH6?FHuphO>XFzTvBMzCJ-7GDFeP`5DthKRr}{bSv0qo_a*40;)n2!Yf)~Fz zTZOH-_^2H@7}4WxDp+^WoWW654-_FGMuj*mYe+H=j#^yDN!c_k*<@!X*!&LIs^xBe z=Z_bw;wN|s)c@E5zf+2Sm7RFy&o@_@4@ab3?@C?%w4gBj( z`L7y?t~7d)cpIBHEmDf3Y@jqoL))}?SqH7*6W9sN0c@ScZRLK6s!s$2$?XoZ>8Bma^V6l4CXE)wM8(RB0HEN)EH9osd z|LitaK}ezhijca%5bpd&+@d(e^8;+8ZxPuV#k?Us?hd>P&~q0x0o(#gl>CAF(|8fb5;khd=Id zOMNUIQcplXjBRT3(CiKpXAOQH?Z7AIFPPHfLa$yamkoM>90xU-bs95pngCJc)a7Z54-cdPs}1`1rC}nuLy$ z&=2diTAmTR!ziE6vk4c4X*M?YRjtP#4=!8OGFEi=n`m%3Jgoe|KN8c0Mf8| zw{U}3F&C%Bf5VRLI!V4o@#caqE|+bgjsVLv(1!JRBdOd%zT^P3h>G@+mdqz)J8Kv( zDg>{6DmuPynuPvtNrQUB@8Fo&mx!tO3CuBu{`KbZ!8_NTkkk%vU~%Zi#{hO3cOT?s zEu!&0g@B7zK6CtiQdyxKy5mEtyxhHOXqOqI=sLwNHHFZ(3w_@~nR?y!E||aG z`hXS(|5BoMoBHap34-MwR9Ca1#!}0nV-3W^e*S>F>sqKxr>IF(bPJr3fZmf~-T$g@ z-qK)xasR@*@v>}7p9|qZHn-}vj#$w<0M~P@wfVgC_16>wW@bxB`SR6qwr6Tcj?U^v z?A56EWi>hbc3e64bxCsd!>6QyYuNNZgJ!>~U4L{_|GK7khj4t9NUto-4&qxW3x#7Z$4)s1;eQ z63{KkTKGuTj7@=_!I~WGhxN~B3(Xp|okxon0rZCFP*kos~6S| z-D@Y}VG*2G;@OCP8BDqTf+HDB z#2$EUbZPmx*Zij9Py7wdAD`PkD9O}_$kZ!^?;28M`F(sK9g>;dh?MHyj`~4)(YBY4Lv$LGqA+)_oI-lfw$H=@I$ZxMbuh+;;1c@u=Q+;V^%Wnv?LF z(134`L~fvdpA?noN;p$@+3rCr-%l-q6S>ufZ7JD}EgYh<-reKmW0 zNB^%v*2G7mgm7ecPvwwR{OQ95(bRqJgxBphabw1>Vm zmtOs|@8DNj(aM#rXu>r3kLz&oCEeK7ti%sF%6r7C@u@WKhm_?vJ>pAik7p}l82c`f z9U`3b+@DFF27kO-Gka)w&U+Fq-+B_%Kup|cBmoYhq=BTM!r;`HjWqdVt>iW40#wnC zhSeN;=9QHK(KNeuFj0X?NDIIrh@z1iXf_GP>y{fkA$?}cMWPgC%-DI%EgCfi5=Y0| zAuj;fEoEYRz^n`s0D8qo5GdtC?3rr>ks@($xkY#4!ED48Q+s?y`X8}|0Sy>%ZUn;| zIeH=B+i`vb?PF5fQMH%}T9Y#7y+l8M*eTlmu1k^#)e74QVYOBGzN8PWTcbdz3Aoi{ z0<1Y?*@e2#Y!Ul-s}tRzZQ)rAV(IB)chb{P7l6+-A0c8MvMV%MlzD$O7nB}*=^+51JrCsdu)%Lh8?{_GfSz(HM4EyT&7d;vdx=N zYl?*wz23l>QctC%263`_8iGI6W1NswPL9-M7UZSS-rL!S=j=Y}$v7XCjI-L~34 zi$;6Y=N9|TVveh8@&muWzoYg({D&o-Fzpdz4$s-Zj~7`} zAIVx1teTRp3;u!HXPESzGDA}|z<129J9Pa|=mo@8^#)uiCGhYDhf)LDzw(#iiD`10 zs7Hn2j#Et9l|lFY8E?tDWQ#@7Qw)tI61@KRx&q;_<%&VowdthcM`b=wkV36S{9A6p z8#sY%ZAXtLgDy!r4SgUPs)aV}BdyASUWxNRhnWgR_WDinHE+uZ2@(N5UUL*gpbSOB zHmP9z4`yavB&gd6-Kh>TNdQd!I-oC+m2V*B?=cMeDGAIGb#5<;ddEUU6;z)uHx+1( zddV4r4bs_bHb?~~wiu4m0atEBFW%Etuz4*`NmRUy9)D~Sde#mqvif$^nS@lUqp$Y^ z+Nd-qox|GMw-T_qYFSzeI`K0%xO80uaCtr~#kbN-M_C!}yy8ycyF3lUG6p zo8IP}Xr4E>Z{x3Q-+K89Yb^GSLC=vICOQBN7S#VIEP!D8<6kZ{;POxsK_C>PU2bK(0;Q5k^OpcW;gPSNpfu*xQs zm2kFlpypkuE)5FmtpCIT&r)xBF?S!+HUWU&95~ezAX4nun*BYzOzM|a;)=_%V%+c+no-_SN!FU1tadPeKx{0mXXSpbFWWciT%4MD!@ow|DMKhtb%MR0E23=h7U3&eI ze)91}wfj7?NrFj@UzyFF20yc%?6Oi3+9MzX&YZPP7_)8E6As(>T5?g33Dq=tTk~^7 z|7C|kD`Fbah(FKOY&6Ils(rs`GiJ-Evv2w>_U_6@`U-2+0`VKK-pryY=!H^1R?AG@ zByFiRPz4=!G1%Av1sK&Yuhs=NQ1&RHZ*GsxIgCJ#6VUZ|xEi^AAkBjRJknQHP@jVC zQ9(t!#W_)0sOYUBftg)kYu7zXkwWt)L9|Qj;smV>X=`6Ag_Je|F*8_IjDV4_p$f9D z_aBW(@_sdQ*mZ&&4O2V;zw|(U3)wOi_2)owU@*LkE(;EvIM|>S{|Xc`F+Npx`!Hh3 zP$r-81VxSWm`R+j(|$4CJkPU4H-s0`*? zL#XZ@%JG4z9qrUKWDZp0F%(m_S5I{$p`!TDn$ywUlOxEMUbGI#t9KmcR(zbsAq6xH@Le4vS^*A5axu1rv_7nIX4qi(0gq@Z%~iG4xh2-KrN5zS$~h8!#dit&tLINYJii@Jq0@1FB_9tDtvRAaN4#I)rU<;92w*qq@In zOB3rPULtdykmm|M{F@XmIX%7eF*u?Xn8e*^l;v-KSncPqP;O|xF4I4a}ilS7{Y{1b3cf}}`*l=C7h zc&|J+Le4lq)XgpJQ2g3UaW6v@Cn#dVg_ITcBC`7xYc7O`*m?!UeJpi5Q1G1%2pUz{D%m!0BLd)U!ATx~=cG4WV)BgQ+4n zM&+gB9KzEH%F#ahBJLr{G4_)I2pCO!XZBgsz=No4j6EsQe59u`tr@a!sjgc&i?V%Y~*PZuLPAVw9q*Z<-E z^#CDh@G-=VYm}XRzQKuO)(Lt0YphAn=k{=Lr(n?5Y9YOkL3BEM9^pN-Ulp-IZy%$K z-M%HSnL^Ns-NY<;)k4_JP%BvN3JdL}fsjX1NMz-vFaBi;PO~j08|k)PU?xnyiYy1rS?q5AT+-C24zao@n9EIM{{&BpEK74l=3Z#}Hsw9eVfE zK1_V*zD)g*@SdQ5sxZTSOibzD-+r?x2#U)j(-f5cdem-NKB%;^ zJsCb~*$+7P@Mco5<2*>1`MtoB+rt5wts&M(b_3AkmU1;`23nTs07qTI1~1_J-_7RS zj%}Ow%xdQMVsQ**bB1eV{n-mAW1Q?}pDb|+s!J@qiwZ_rTtSOZSx13ksDj=R<-YnE zM`mqTLf?S?L^X4|H)w3v+A=E3{4=(< z2>+rGT_=vV>N3DBp}ZUEg$Zdcl_QH<{x>y^La$%{zI`4vFLCG`iFdG23tO#3yh8|L zN?|F@^K@;|(YkFW!4YQRMC4QLdyDt{1JcoB911!n!aih1V z=cEkH9cU&;zALe8`kz>?T-^1Dt*Ji!=y+eq^D9(etje#Fw7`pbe?5F!X<1Y-BdA-x z{RH#wc$L)(7#u3D>K@2FX?&|raguW7$eus`+3l!`By{8{fi&KM-dIVD*F^uNF#PA! z;;O~%3EIBj#_=%T$fZsTb@F)<@fv4qJUjP%6bb-Ya7NY#o`i3egYJVJ;`65S2$@_f zYio~S&m|>9nf*3H*68tF7QUU3FTl!ysk;#3Fov@^IwO5$g4{x-gO0m|q2}?oycG03 zU_E!5CwF!Y;CYfmd?A4WsmebfPax!DgLl3VoV7(>YJccz@m3M@#%Lbp$}znV#Nfscamai zu3gF^SaTrqDVq7`Q99)bkiWA54rlim{RP)%GRLO#{YYKRDdMQNVHIF^B!!;PT(C9P zU98UL8i0fK_th`n%R`^x&+WX2Ch(_V-Xf3F{}?{GCcM}jIYHC$A_Pn1+EGHz#ZDMR z;7@YB7M;$1<~;(Pe|9nY8n+uMRSB=O6l24^T8)sIfDK~%$evd;NdGVKyllZcCVkZ% z+vy!JJTTB7KrDum(B2cOCpNr*g~QUU){9>6f@u~lw6~bJVH0kED~z?OpqLzg>H3&7GMt2dF*ikk=)ht7RA zL_5}$Y>|_+@NirK&xQzlOSp0h-*z`A+me8caCB zp~Ut=+stT9gjFqpcHh}2&a0VeH5=?r6OBijgHjv?Mt1uak-_efht^D>NHT3@K zbxz_Lbj9^K5aSVYOk?nLboZSDbaeIsV`=3a6Oyehu}9V!2#@^N`*04J7>0Cq4wu;^ zYNC_%!-?MJ#MXlGZ&$v&@>D?|=_goZej88X&RQ4NR?5^%E!jO_Lb{V^NGCd&l!jg{ z@igC=j0TXP>)rS$Cf;d+CV?(rK8=tQK41$-7(tR0vY*teQH{n z{BzbPqh175QpA5c(1MvCPfa>Nd>o{0_jxU;q)!7Sg{q*W02Oq}Es1h=F|iZM08NR-Pwf9K7=RLtBpd6fb?4X;4 zFKA!*FO9vq{>;d3~ zo}lE#NxT%lK5&BNCaZ~7u?>>b_+y)x*qza~r7PVxC@L(gFMV8)N4x!PSqnwGhjmp# zYSuS;nbyD>)2|l=bJ9*=E^_3p!Lt6>7YP<)AWYt^0+>G_e^~Xy4|I~8U@>#%%p_&y z3fuXU>5t-6yV06*M&qX^;8Oj#BYI>;!`UwAqmiMm-g;3hT4*ff`wV1llurU_>Cw`) zJL0YgCN4^2^+5F6TqFYvlo@KC9JQ02L|aVD<=;Hf0;4sPlRD4Vfhm`K6@1mzKJ>d_ zm}?7UO_5y$n(jz+TmA(34)B%GP78woW({88d&&l*T=rZie#d8I>uCgVNDl$)C;}2@ zHYu3HZj~rb1KrrkGX`3`t~|-01D$wQVx=Z39-s6K0areo#?WdIyEMmZJ@;-k?l9vB zKydSZKU#PL?@GNjfs_1S@C0q0}DJxTy#J!{6HwGbHS{eNBbQ88of6u)Kr z!iPrJx+rg`s2lmjv1ez-lbN%-!Fd+J#ADsEP8^Gzve4iVh0uL#^CC&~>Dq+76U^h$Z$K}yVG4_w1946wn5M=6FVWmHEyGHJv%744r%ui;tTrm1UNlp=^E z^28*5Q2wKn^U5B~eLV+c-@~ySks7cj|As02zsm1Wik$!w zq7TwrdAzFTeV1{DrmP0ND_FyVhff8KXY7L(%k$&hDFbO@t zpj2)`(nRb_e+ZJGP?`7Cj+R(EnF0-TbBU+v{EQ-)f^hkNn!1!**Q7t=l~T7=!cP0N zFsBubB{1T@Hil*JVNyE)@!IeepeB=GhiNk;4h;Dem0wfHCXN)*TYL6srFUhkX3QIN!bNNsSCjw52yO2M$X#aBn zI%vqMyjR}o%y0_Ww;Npq+ZZtA-i59Oa6oQRaCRwBa&4rT+fdT~O@Pd5v{`g&4@NpB z@a~0R_t=orOaqb5v(#PS-(qQo1nwkZ*XxVfO@yeX6JK4EZ{@j@V$Y<)he(wM$~4Uj zQc*u{Mt^t^vh(>Yu4DZ(?y3d~Ug_qQ%7|It&N+`V9TTcAVE%W- zH*CL$gAF+J3??vtNRm7c2qR7dr;zk!+70nj*@>plr0ZL9mz&!+MD9I00Wt4>%?ibU zoRNaB(j(pLOn$1}!OMZ3D?bI(|651{<*Pg0fq5chSAYT-`GgDTwT>-HUjbHK6?A*a zT7-l6*Gmc*UrF(}ilbmH#sRg%uz}m~Y19kU1yda&X|UetxT>tneieYxXVPxSlHlt9 z!_}KWL;3!H;|L*TPbHLnNunf$q3p6J6`3L_ija`ywr0yt3K>L-m`|mUWn{^grj(|# zj5WJ4W0@K5x$pnw^Zh-)=lOrnnKP&3bmq*N>%Ok*{eHb)i|Z~`c3`hxGy~R3o*)^L zbz%yYOhQ8|1-CYe;VkK{+*75EXdwVyYR4c?o}*M6DxXoo5|nwiAyC$yysApgRl#&b z9LwNCZzQ2FK%n_k-3aX|$aD|+0{E}=a04cOB#j0QTAJ0bNR|#!ADux`7@ggisbQZI z{1F*-;HGOwrBg3RcaS?*!a?jdwf64{u*nt^h57=PU1g8`v_-f=?-PQlx%CM1!rCT5 z#u^bx#BgDk?Sajym}oe*Oi_8VRmAQv$xrV5D##WElj6=c->~51}FP+gB8>&>o z2lj8zHa3|b;5jV^1fRW|eWzXPzb*Bd&J)MhgBfX2#hM?MF)C0&`lf1_&BVS_6dj8x zEbFfbh9J?oV?J~sxZs`7cy1#OYNX6aQ#KVlwf>^$uGhsoR8Tx7>+$rVFQMmtXmo_9 zNorKTMn0B-f?k)}(p^lNhdu6ON=Fj2~j)I*2(aBrq76H{s-V!w1yPHj2-# z^(NXeed`6~^Ha|Jp59(eENQ#2kKcU~U}N4)ydg8!5HUh1VoaPn_~~3@u_|cN31-?8 zB(41%stiX19t1EO1n>_!r10ZBZ{#EmJ?96~`7%)PY=&YkC}s@XF)!gP5K#xU~!qoO&C_9)6+~0Qit8X;dz`cxZel#ct zbUnr~54pawy$pN$A293TFX;e@59g2^=qpm|*C?G&SWB~`cP^>#U^P2dFBrZ;(M#s{Lm zY0z+%^+XcQ#t#f~j?n?&Ygsahr5vTT{*C}OXu zZQ#y-VzF!Uq<&xeqWF(6#CkS}rW>~VH7{Ea7+;*2!ihSAlDI_~?H_W@+Z4&-w~e;; zt6knBY(}s;O%>li4(v4o9iVWV`?285;Y;9^cRbCNg$iNev^*7a?FSoX^>3p7Q;oFy zu5DW-B~1(yeZvV$X~WpvKR1t8?@;MX*ia9_Oc0r};R=McCQs zyOCtZJba$y@xlwmQ(266OW#t+G7;4<>e;UF<4Fy-d+L-blfalTSNi4_Est6%qdP#x z^M?hVDe3b#R1zqxK6DY}8U3AvKe`r#18Ip4$PO*Ec9Osyhh{K^{!M69qM0D>+=wjN z1jhrqRcF%`FqB7aUv0SWXNEp-vlh}4py(K`v zNx}+EQ$)|?!0~HWAmDDJgqk4ni7@5is59Unpa)*Up4W=K$QPG~hPj&u$q&%=bq$(y z**jyGHGpDlH5M`(CLjtY)aOp>IA#A=;v7l6>jjd%X~fG$UfT^~0ecAP|2{rmyM6Ou z5HIj{1E2r9^7;BMCMhlDv4kDooSL>i4;V5JjJ8@Az~Gycs$tCU8hw4rMvdF6vh1nz9t>+86QeVENtqM?%ExQ?dIiKfmk?p7zr z6BCy!>*&B;pL+2Fb+8j0q;E}pOoqF?-GM7Z587Kf=36#JxSNHmfz`|4?P^S%1rz5d zsP)$tnYKg3Pfp=Le3=XwTE1hbX2YHGY;}4k8Q54Fum|x~WK*JP3_v^d7O@=6>Gvg5 z(y8od2@U0_#SoMpipSz)w`~8SNQnv1*(n@ggqR>6Uom>a*aA2UbocFGX^}qO_pk$F z0stqd<{!e|W#1Q9Cb56l#limHdYA57v_NXRk3rdJ(<9hnBLyZ9W|Wo|^+b?4-?jkf zP{y?u0^rIKk_xA>iD(tK8mj5EMRI#Sn|yvNWVK@TR6Ba#djv6R_2pg-xS|a-vXBc$ zi<1)j^263g(8n$aHbX%?Umm#P@uq9FQkKRe)nD@2nGq(!27szXdO9wxidN9@*AIUE z&c9J=0~EGIQt@kUjaTiY03Ga^j`Goo2|2*ug2I^Mi~keQAhhXz_`P}HP?{N%@Eyb9 z(ZGCNUaOcZEAqu#EUfhVfx{VlemyK6x;E6 zIpmdOrxaZ;l~8RY%(Mxvs@qheopO_5YKcIPeBj+w%SrU5^8AtG4F~=#5IQ&+u9wOt zF~*aG*%Jl7f{%PSeCm=J0*Dw+fjxvg3ON(Hh*Rff+u;+?1D2wQ0r*2t=(tu;4I4Y6 z&#cgizbs&*AtaBkf$8$EO!OZ$6l8l^spTaD=f43n6j%Uf1)cA50hU`LFA>P--`-Zc z4|zHOeV-5zZkVEtml^wpbNS%wtI~rJJ92E`W@|wAmG$AHU;f&kgkUSOZJ4 zUkVu{f6YOi)tENtnLz7)b^tK)xhg>_64H?l9kk7#Nd{}Z79#rOi1~(Z^aS!0<=#&xr`Lt5{v_!5Ux+3>UEQ2~Sm(_er`W>H zB|jz8(l(_O?^|b}fM7 zndr(22{MN1s zbqTI$jQ-KECBEjO+`g@h;BNxAK@6C$5K+G^=;WFaG(bc>d!Sd0Q$?^TDXSMuPvQMr zypxg>B5YpH#%ElFN5z4kQ9s!5jUd``1eY0RRkPK`E3yGGpU*n(0@76O1r&wOV;ujk zvbtCtH1j)S)U+y<5s>L3`xlnO=sTYHIkn#jK{lMYa zB;nNGpiQLvUO_yGd+5 zI8hFNYIb@QtfTyi@?df?Biy)3yxF>+e&Soer=baIwHSeLg5s#5Z>b%zVoO82_XmGC z6ji=mnm%HG0Wp<2-|LU1IBi4p^xWS9Ho*36b(5edp!@IBReSW2Vy~iLs>h=c?lW{^uL@M?IaBl`C{t`NcT{Tg- zS4u5SO=U#LnL!B?A5rnOr(xr#e>#mdtck_Lid!tkzS|Gs%9}7J5WpQngQ-p|rZW2N zCA|Mc89^|63-}j3h-Oc<)1K7fZP3xFfA9O5s(~=CVo}WI3xv`ek&q;bO z`|aI+Ou`P9LEwUeqiR6)2>q>V<;q&UkT{hhaVC5>RjlwGvry?A1~pD_M{}%$4z#25)|hB zGCCDQhp8lsRh<)UA&s&6)6-DA@MXo{_rbCLXx@nAH$?Wsm!)BrLLFZb-z=}xQ3pXg z1wEM~Dx>1}9!K)sR=VG}yN&L~ZSmeE*1u0-baMJZ$#l>DujbT_^)TI2M@8OwN~iXq zB}QOIGOEIBP~qpSwWJCh!bWvKDLg7fo8bU<#D$X|Y_Dw%8B1tb43KjO_drLvrf_Bh z1P~DpDnSfLsD=q=k+xu9c`eBsX~Y72(jZrfgIB@w%Yn)tQny4lK~dd*n5NDF%u5mp zt5ehdqIN5A0D2=H78r4i%osegr+2aK`0RZ5%E)i`ePILS^L>b3?Yn2A;DIqgusjBTi(D=bg>BBc2-iucQ_AI`6|_vP|~TU?~yf zAu_`=%&Xx(^mMGTc_J)rdT%)9i`lwwv^)0mTJnl-!V1+d)rRrm>9nQXhQ5w05}f!r zV7%j0J)7kY_P|ul6^8rMdB6VK!}*<${5?U9Nf1Qg&W1-L`0dI+HiZ>;-F;&wnPsp# z;GJAJ^9emLK7}cxbC<4?qlB>wNjKMlz3PMS+P`Vg$4$)GB*_yXIX9TTuX#N3ZCcE& z9$X#mclm0gam87GpA|X&(%aP0;`;hJUtl1;$d1af3yMMJ+&8F-LzL_-`X4+v0A;?S zpc9k4z;y2JTky97UWK4F7@B?slK{i7D=0Nw+otH37CjiE_5NHSw+Jmu>b`DxHiD{n06aXd?0A%L@ z^G_boB7hRbzY9WBu394BM=RHNH#&|)PoM7rg@`hGy#=F1gkDc!W&3@-?L`O;RCh*$`!Ftz;V#VpD1K4R3Z>(ZxwF7d<-kzhgR>DU(t6 zVa(+02`)6(v}Qg=0adw=6#Z zAY6?AkAZJA=}$-EVavCmpC-lnc?R`B1MABpCO+XYt>g!`h;PJ`R`9fxOad2bAoK^W zZf|^rKoTA5Hx4~@99B>G)F`A)7|nBcEsa z7EL@+Hhbrxi%9D}eN%!}$O{aUt?+S3c1dA!=u;XdzaJBCyIhv3u8A*a1tej{G#sam zw$d`RUOS-OL#U9hn=sp?pRg=i`ZKHtlPCrpr9h7bIuov02Yzu zGiST8mHwo4Z;QU4+GzeKt2O}`zcpx<0$(c|eOpfI!CYzlE>)(}0QjIvcGL(V#Q=Xz zq@$Oh^@kvjo{JLy9L@|5TnYDd#OQ3b^Mj9@5%VcrX2FYY!sU+If2LfIv|`ma7<}94&Wvj} zGXdB8XbJ#-a`miBc-efzI1IWWwGn9?YH^vR4aR*qI%wtfh)~T2rRs(Xx+OaUB3{sE z{4bB|6IKP>*b{YB07T64Et6~a-1Bxax@^$&B=x8!{>S*}mHiOId$aQSiPSeli> z`08~0)yaETE+^0k`r>N}Qoz?bbsS-4qj6mCVKOGUf9uDzn3U%QLam1kCr3b!fKIUs zmca4BVO`d2x@W&s=K_R!rFkYd=@b3p%+SgT@X8{_kqcYc}} zR3vWqj3sh(fGq9@q_$n?oeb6LoTG-!Cf{_S^orEyp{0md(XA%XZm#Lw!qiGjDT43Ax8nl=(3eay13rJdt47 z3(!0;(JyIC-B@0E4RGvLZ|c7d^8Zb4M|AC6n7L(Ls7@Q{&o%@&C=NvMTSv(6Y`&g6 zrl{PfY5RUw?%WN{{bXAOC)3k2R_s+rZ%Rw$`*8|<$H-XTf*iIytdf6KGT|IX z@>d`Q(d)wf@l1rqBGB{SA^W-wpzGdG;EJ530FR=#G@BYYUS#X!UK9cbS@l*bsCp7C z;*8|p1P+fjR7HFSNqObAnKO;st`FG(KBfl^)m;zIfcm56rK|Wlftd(LBqbCML+{}r z??QCz01;*rg#h&e0C7qsd8_~(|Ij^c%B;2^FQ#;_yT?B*?D;Yl2xaEv-jU5eA44nO z(!e)yWYSfbwZd#2TSJ($i{i2@nT=i4pf4nR99em7*SQrWm}+Cc2mp(-1K3jXB?U2P zwgG2^sLcYu^>$qq^qx1HDMyQx;Id{6-GO{BLka(TUTs-b)=@nZ_An{UAJXCSUHUv|7i&4?S3J#q zSNqvD5`>jPRurbtDdlDD%VtdC0ZZEtzpoX1y~X+IHrpdvX+7oQch46-xgQl6D_+$- zm+utWFzwAGmr;G8@C;^%;WiTOZ^j^ZpLxoIB(H*wujQ3 zwu~} z0bv}17O!m1t#JuHFK4#*lKL9rUw!Hl!BH}C_vR46BTM=G*Wm3|7k zGuZd`vnlj>uGmPv>zgf3<#})@5wvgwc|^((e6+94tY-zhi%QCYJO{`LENVh7aFuZe ztVYx#T@7f85WRqLABRPa~RL;{nB)TzQG3%e|6J04;Nm{G^*aTA20UyaW3LI22=5 ztBPK)z-Wz<(}yeSp`Iep+gnD2??Lx8?+omJ@Amn1*j=&}(^s2Y%r)=f4~3PC{$tyk z|MuEefccy6abb)dl6x@L$3_2mh`N^@ES>i>W-egI9b%*4QVC2pq!Lsm>r5}PgDBS> zTZBiI&pT(YBfxp16l?ezu&w|KoW-`%7W`N)p9{pfE5Trh@d!OKm%%LxWdOMl`fHBx z2zs()Bgph^U3#tUQVD86ftIoqwY zE64U4&q_DRM&j$>`|&;pm*t6zZ;n4yxvZeVqz@mIMF_>Fo8@q*Z$z9eBBuV)vzL&= z_M*TD4B;Hs2Uf!>ZW2Bz1DPi!{l0PIvV?E~p<)#je3eQ_wuduA?a6t!+mmD+FASGn zF}xD2hKTxR+&R<85ZT=LGMx}2)#OvHY8hDY$M@>{i=@{$8@+M|gsBh2Q2u8o(Yf*z z7%Q9;z9Wb89~A(RTWt{+eBZ;J#IcF39s2J!{nu6&e`b-#=B55{%EjSLC%?jK+ zo683H93zzSA&f1jfbdh!J7>Afxj5hz1aPcC zeyxq`#flD8%Yx7a4SI+|{i%)hx(VyqXl>VEdm))DgQ^_xdjo&Z^5IfN%-8NnHPW0?SvzpuPlH@If%+JBuWb z)&X~v+zcAHBIF0+N()+X21vLrV3-7Eg<9P`pl`Xcb53W!nWMf`&j%-Y;ovmdh4+r4 z!QfJF-X@Rk?yoW^#Nq7#>7tV9+T}fcJY*R01{;6+20+6A&iTK!$-gW5Ng6=p4*G@3 zKT=f}xA^xjx7{n5Y#CNslb?cSq_X!kTXus}3y2kuZBpvX*wBb@erq2+A^E&7QH0-N z!TBCVKa#WjPA6yVskH+o(8s>|;0q?3HpI?tM+0nc-_u_z`%Ko+cI$>XgX|Y5&tbA9 zlc0W?XH-7})j2o-Of}g)i$Zw`g}c*V+~g4Z_LJ?oapX-dFwJhSVFS#elD}IfFGkv% zX`?s$6Wmb#kVnT9`lrd~SY`EuuebazXl?oe$3*in-=;(F=g_>0jrea5YA){v1xm=aT9ScnZMNym8OGc3sVMF z#$9HXFLZVj&Y^@6*P=;O74&%I5G$VAyZg4=3}_z$3a>3W>kHU&3ahoLer`>CR-45F zv)QG2aLfXc;3j>CaSy?)YE(2L6eon9n9cpmvVO(cLY)HCb7!lSrhYlhVfF(9A$oP# z=<8@Jz(Yz($*m(k$%I$Vmi5h1B&PsC2_@3c0^~=LEP!gIfGU4r3(8U-r(}2mn%5dV zXq}0fi42P|-sL+^xz2=>0%`YcDOKmwldX zq_D%fef`Slgr9$9#vX!sFGNxcd7-f;C{<7xH}`hs4tarNNKY~0loCw_byT7S*&>vZ zW%5zrm;wIvZW4QmM~R68yJ5_!>lT})!4=Md;0P^qj`kvvZ710UUjuZ`dw*m?9-r+_ z4l^p`roSwg(Y$pRJldGBE33I1ExXod<{YvN(e- z{A!|;y({b56_z;K{}H4M1_jBspK&?RenvQ2E!lZ!cvvrL=0fi#VLEGWuCUPj%FbUW z8*F+iD;pHA76$15-eYnKIMe?9A6o`PZN7-0{+Ly{CNqlKf1DbM8Kz%x{J*#@FiNZk zi$x$Wn*~suqclwWk#kxs(pHJzPw7IJ1V1en!<3zsFOgTU4MwmS%pSQ+k+y6|@68t4 zxPUvP%h3bC=Z7%vD-Dy?X|lv$@^v|FRF(XcMh2nGp1H867$gnqTdL_SsYb548DR!u z(F;scz$(BD6xmka1IrzjMqLHGJLnxYugQ5#JY)B78#yrgN-c2ie#B|;3ih;O6U<>t ze+dIa+L!IBHIFMd6*8fZJxvlzz!-eQw}X78ny7;A6dauf+`@3FFq{k;B5{$Kwhp+7 zXv`#eeuWYz?ixJyKX2%qZ8#GD>h2`w=D1Y(Z)mjYsP$WD?;?g2y;29Q8~%V7ME{mw z{@4}%gkcqLT-P*QZszqCG>oyJXViYrW6kbT*=dUldegMJEuzsK@QG!5A3p zfh*VwRN*Bw0_HR`4Ro>~_73c-?k%zS!5+-TyIoxvAtrX_5$c`|ElJeNig3k8@L=n! zO^}8Lpx0)FgS8*VHZqb|MNW0$sx~@%QHSV;g>H?|CiF*1A5$L0MCEx>?=?LwR1t!oFcLHV;;ONqmS) z4%=;`Wn|y{>Ed?yEe)!=4irwfSVi>zE}?5M6)%thk!?wlkchy6BU4Ahd<%Yn9-?;W zI9(TU->`FJ;-2O`7z^#E&fiPEBQb^f>cb0H5u)%N;&m?B4wK z?Co%!#9E<>{gl(!xdoL_mAwYt;=t}<^;~3_UIywl83LG|byEaD65Wsi5IjNS=4r6= zub1lFd>7U4Tfw@0d7S($BjVH>=$8<>l)WicsyJ&r-a!B!oRb*S*;-rt10~S1CZg4X z4;@gJ8F;R_zL_As-#w&Gzj&dbOr#6)=#?2*B%l*4O6TR&6B0 z_MAp=>?Oz|*`B}?9i#NMY z1q+3FoNNF`HsA-S*G*w80ZWu(z!WdgN4fJk@8lu#QRqT8bRJ=84&b~#NvR|6x6p+g zIQgrD9Qy%FRfO-Y+G(}k$In3>Bnl0zk^w;>FCLVSRvduJ`BN_PgK4Xr!MSk}09_PD zS<>qdzeym-qC18Dq2cvqU%~;WaF$5cwL(Z04Z@PoLBfS_=>Iuw!KUpX==)c|o{H!@ zj84fU^keT7+i7N6E?Urz{U--X77kl-V2w`g z(;+TtE7k8d)TS+U5w=Ek1Ij43Jj$KJ_SGDu*CVmKk*_rIBBCxQ$9?~qwsboUEV;^Z zB61lRS76>cO;5{!m@b9m%>{rc4xeJNL{^#fN%H@0Vz8YfP8M�^c22^{QLvbpllV zWIDrhovy-ur+4)kgV^nCM_HNhY9UBfe!qjwr~7%&tEUg$m#5WSh{|`p_`rEiy%jp1 z4{Qk@lGfRc3A%B@$#~nDsAzKOGo@T*IkJCIi)PW+H#|v)cRXXfDVp15TQH6VCv-uk zYi6b|h$#7>ZYdOD5ypHM+v@70)d2-`}SRy^wI;v`PHr#~)8oURHy_~YQ360%c?b+3o;JR7|(itZLg&gW-n zv0s@aBm+y02%G+7e{e`z$|Hlng)2>ALej3C&A+4%$Wk$)j@~+8@%E*b6}!EK(}rV8;=`%n)=B-C5-qZrhl23 z-5By%}uF0#}fO!Qc%iZh6NG666kkAc@-rcE(ip1|;i zIWFb!C=Mnsi|0^x5tA2FY&T8USss`P=Gt@}ZoB zWd4CbjKHP8uYKeUA979<=K|< zLiZ6uvuG$)AD;43;lBO31%E2y;ou*26Z?k1u7T@2X*Di!27R?uG_Mb^6cY_ycEfXf zlGK`_-()itF@z-H>_r*TWsafqw##CwZAxaZ)!Wxvhp^exW*kMLwY>?;&eZZ{RVr4| zG6|z>$y9%P^2MVmrDcC>u4d~H`&7D6kMQqmaH8MWTVCL9^^o^*8fU54F;ufuM3IWh zqjo8}1O*ZGs-5FgfrdXyVUnx#X*~;Qn+4%(usf%fGQg4%wOY2Sgj4KaqsGbI;11Z5 zco68jEC8d_<~OB54Ip-r`kyCv7Il|tVDJHyt^}KQ z^rQG?UN%~nrEYxZ8%s8qw;M!KY6if@0;z*o&;Yl$Uq4hjCl4toH>dze1oFn8-Kn{B(V^a>^ z{UvBro?>`+MAXQs|8{_&o*7=v5E$CMPhxEUW}|{SpV?EV7Hc@Dj0{>$;rI_~Sh2eA z7;4c4++!t<_7KiewUZi~6(7F729G2ZPC(K}0tw!!XiUpl&CPTZB31hQXI;^8jilx| zKEc+;Z3hnxsmHKC(4g1IarSEjIjKCS^tJzp5o(U$Nm~Qg4JDy8vuRBIIybB;Gp>F& zn((4>1KaM%%H?FUYqjBclzpBLGR%d=frmtb={xSP0}#$@gW`jzyX7nKg36&iFVc9D zVNMgpha`~{_A8|eS6>@SsI_8icS5C)C9;|G@Mr)G7WwPSr@HAgskL*7Gg2=?ZMJrK zWm$rnYe9%e3&V!gFCN<@D1tgs7^FS@|I7RU-VC(#peQ|~QfSZHz4f1b&lDz}N>9Ew zBgb)lp)KX;y_X7T$Msuh=IOPgm7q-gpdtp)g5y57*V)6Wnh!{43ET($QqZy~>TXJ7b-BaS?r081|zjnIQ8UIx)e6OA{Q8Lh0Y&5?tmaIX+hiSQ&v+~+jb z*LiRn(u>MYvo0Qu_q1Jp_STF!uTvTpCZ&vvh?l`(4PL9O-)ydn9ml#FQt|e7OnjULueIXEe3KXsjPk6#qR5j}MpoPX zFA;{RO&%Y(&z27nN2EUvZpsWve}pM9!Km(X_ueZbLRVS=Oh9e6;SbKGk@t4XZ`f|B zXtE*96xnx*pfp8zQH^Y#1A)NoaGWwj&NiVH`?yOpZjfUNW1BvBI_gnr9O#F-eLrk_ z!Oq@S6nUIoFpE<#ikRfUTWiKu;P$F$e`T4AIxl;mRWxU0RqLP~>d}q@&-5$8?9mH0 zN-Q6$whU!d7zw_`(NX}0IbolazR_=VU`MjHI^V`H-^`gV5|268ekS@>7}Dy){Z}XX zc1H#}6w}eV^ z%!eFm$V-Zn#^c?-ky)x=;_B+diHCtEp?JWF$_E1>B?q6*r#^~vN3X+5*KgIqd z8`roW;CRO0O&sLc-Dim9b59GOovB&jIJwA>lB|W&)}7T$`u?iks6V)~kK|FrTUP%u z@7NFL{G>mVWgg?)Pdolw^6K*i`oZv8BVhEos<^GIMXlw4 z=HtfqIk%p{S;d)b2iiD&R2SYG4Da*#{c^9lNyfKp{Ch1wW$`vdnqPZ!mG6nlLh6;C zr6bQ5giZr~11>bv-#7gxYvdGnV>n;%gcV&z5cj`z^I}TLx$3BFESBf!lbLlr~g&uK@Fuk6UK=JM3XDMcyk79FN)A zx$@cWD6*g13NCUJd`)_BeVKzO{)3-m_wV=Sk+HmNLViJ@x;gaNDAG&lN*tE)x*wEC z|B#6+8CJiC;U#ssY(#Mt&@`|kvK?3xy7(-8YAUpc%+t-4|6vMCT*R0Dcb#)Ft_y97 zY5wH9BlD&ITp47S@H*_0|e5TKJj zxJ@9PWq>vr5cCYBlf2a}s=j8e7TxC=Hgihy^X%`AyA=fT=}L`)gq8k0H5c#C85|x@ z->mcdyD!_?2JFRYLsa{ht#04nCB5);*te;FFT(&b>*b zTAo>5Z82GG*N!f$JPnCzxABe2J$-9-gWol7I`bS2MyV1ms(j z#i>XljLW>ZdRc7g^f&R7B0Z3Xp(5KYRkpp`57?GUmJzBf*yMQQ_(dTr?=z}0ylgQE z1mi7DsIVOSo4Z^G-uQfVBgdXTtF)mR5&7w}LebAPjT|LgnMDiW{ZiYvEDatqL!kE6 zOJ43YC&&p4%b0VEgPEXZSS?pdWj{Whjwj>qV?@zX*aTUjHgcq7RN5B6-edpW5&0Bz z!j=v+G&*yd6AVaUmJ)X#q#$yZK$K(ey#TgnIAUxmVefTypyt4UHZ&UFzI z#J7_#_4hZcY|Gf}D6T8}c_Tvq%ozTpAbaLHt4G@eUz}EXUMttak;mqeX zC2ggX2W_}gUXfjzMSN6A=90vfWAt2~cwOU5vO(SVx*XrjE>&spchg*ZRzFJG2z2f& z+unjLJvCdAhj_2DMcT7S;bikDEELtq0=l&Nfbf?Au z`r^Q;0m$Nw5BmXg_QM1Eg{JlAC%BYmpFegUOMA)4_aaC*0!jE3*)5ZUFUY>7Xz8gW z?axWS^gH^Hez{CDS7f6Az|AKoJZ1Zk6`G!28C`-|{;RVK7-s+1y%fL;JRTl6=$n3Y z3fvzy@Tm*yWJ6effCV8P9a^%km5wMik4=ua8thc#uZ#(H7e=OzZRkm5*8P9(P|6VY* zkJ{`Nxp+SP_HW|EuD`k$ok&8Vu3Vw1ad_{sw+x)*=au@y^yz+dp^~R=Oo#n9ab=ra zclx2hMgq24bx^!nv&meYaSeg{^~O{OVl1QPPw&+p!amBLwf;aoG1YLa!&yoGZZwWz z5qK_Ug=ul`z+zwjfzE`2^3iwZjmLu$zwmVFS=5;N9QK`W; zWpXS{Mq0_Z2voO6p&Ew5?A$p#36|W;O%-$yo&^frGBHj}t|GHpYGO0AG|CydJnmbc zziDnzH=i~sz%#@Q9q%UmKNAX9IQum4|4Z^@+L=`x*;ijE6;tY|JeN~G`oPOqhQ9Ll z&V*$^#^zK|dgY(9AX2*G#WBO%1TfOUj38cc| zPH3ODpTnAV`h46=QB>JvL7Aa`_Dj#oq)y>V!9~bbn7wr06qyeyBX!@{PPmj>3LuMX z0v#E*-X4T+$drSdu%Jr!;%6_E_^0K2tgJRFI{;=6^%nh0GQ4rI%~nC7=073VQli*!8-zNIrsl@*ckkX z1%ZUmOc}LZW&q~|lI$%aBIs^~!ne!9Hi=*N%{o0>ZOEIMPVl*o-yk}~YGp?pUON`4 zi~N%lP80OdGg-yjf8SKTrdJrRc6}0!U3TT8zu&AIHgyx`$>d2;*mhT@B}ecMk#m`o zjFV%(#&%|HFSQ9%+#uN%3Ivy#pqI8Jpxe8l3u^x_1m2nqT~2_f?_W>IM23hD9mjDl zH{WDJ2ZM56W-n=Hz~j0@_AJSvOPhK_Kdv0~c}16!56@_|`DRn0C1S2s|B6}oXI)P_ zhV;2zP3!tWqUBM+;4!tNM#G=j>^1EWDGE9yv79BBnJgE8?GJDed~uu$@yZ&*Yeo@| zq(<9Nq5Gm-kQ_|(;>a;M(BdIXm)ASWXRcf5Vz(!8l210H66Tq#I8wkb8-^2IRC;3t z+{XRuN$GOgV%MDaSUh-AmQ0Ht@_l?#J8@dU4-%#;`Vpe>FZX_291~?+6{QzvFCNUM z6z^j94Cj%DwYEdE9}l}ugnXOM^vu4k^H+6EB^NJaklAx1Q<8fxw?E3(FA()6++12e z`IFOeLrab)`8e8=YKMDSu=UGkBgK7i*+zi5#jdZSv%FBEe%Iya7!LX1om`m2UWvM= zl}6Z}2=)G$yU&(`{MyO*Qe5ecR}95&O_1rEPQylSz3_k6wZ|!ES3I9@$Xa)hFOO-r zs`veT26p_$`6c5K<<{ThUe**STLw-rn4Q*KHj`|17qG7r%f7?q;mTM^ejt8K;KNwN zSTRAd+Nf1F+MK%`(D$7ZBX4LPIAEE>nV`USuK&!Jkdov6dKXD*X!S=#mq~9;#+fg4 z%!o>(!V>l-0cqlB0b`F6k@a-5oZdw4iPkh5vh&fsGIk(%RtH9&qLa z{TE7eNkTb>TIzIS8Xsrf$H6+b6d(4BxjovyW3=SK3eco$*-b12`e zdV@Pti4`@i@UnV)^K_@54maY3Z^H)G%oT#WdKRw&M8GN!dNTR7M(d;a2_MqZ~PKlUD5aje5kc$xAv zhw(7ws|0(zeyohoC+`+kp^%Aka~M{rty6OS=SirXfyg}4o; zpL?@?iXcwo@rp&ibY0FP zpy=G|0a|NBO-;h;RpMcxQJFu7TuUz`zuu<>B3J?kFtguI#?sLAD#i}=HqUsp`=9-mtWYnah0JO9|t%_sVBp1PG9CM=pnQa;|H5NLw0pwNDl95 zkbp6^n_$J}5)adG-+v_sg#glpzxlTia3N5nM{Z`@D+Cbl~J3 zE}UGwS;W0N{N^?S(b!KrZCUVUi<5OxV{Uo6Q@Z?AbC@rq*RG~FubI_|K4NUWa0BQm8*RNX`<6*nc2G z_TAP=F7n2!4YqK@*x&NdiBy%arR?Koe^)py%(U6;vxx_u0h?@8#sqoF$wmj{>k1@) zH=A-l9V4VE6)7cR5VZXUFBaJi;?4gu6uquR#7REI+IWgvahe^aU*O<16D~ZWd)O9H z?lYJ9mS+1xy7&U-kZp~*0oDIB9L@9L;4%;1u6-#@QP5PF3u_kfu(#9e&Seq7I?191 z)0f8G;$9MCwf#W5XFzqL4Dc^chuRCv0YTa9!*-#IuA#t)=cYlP%>&0^E7rOiEak$9R=}wydvqW8S zJw_U2WF8nWFbH?s0WA>Atp1zLopzABVaDgK&?XQ+1aM zv$Fzw?*9H#Dnd*gS0CnOKfKLDX$D+n?|00a++S{(G2TdT7Tt{CjyNvQyuW0~Na`Be zEWHrQNUD{+T|bgnBO|&{5^D*4``hJEA?cs%mF6O68$B(SyD}N(s%o|7u|INL2EA8= z$%QS&+2qkM*Qia=}-7>EO;)+Xv^5zx>Z(0IGZT2bkc4tq>Wz3i=|KRIcljZQpm*Y+QX{7nutP~MN?ToVYvzbbp=5NmZ(ERaJ_v5r=zB8F<=vLgoO9Yz>`^NLHi6;dEAxBdi3ojY=6j(=%#cm3X+I}_5ZU^V`J zs+ALu#t_nO6?Se7m1+TA=RDXP6B>F5_~b?;ZRZANh62thn5Jf4ft10dPK5=7s6+|d zuzr8U*^jO5eYra=Vsv1tJOkh9S@-OxbC-kn16dTAzCQ6Y_xe~=-ceh$ukQx+r`xeG zcMUIV*N6K=9u<9h?D66_&H3E^b$JVZM3ifLL~Ixf)0!2IX_eK(wBtTBr=jzWJcPwM zHi8dEfd1}j%I2TXpYWH6AH&r=$40Iny%Y3S+t2B3cilvexz`+FFweTZ%F1jav99B) zu#eAV$(WHQySDa$HFLeF&AH5zdCqfZTh!huj{f}9C|>I;TT2@Ae)0d2_2$t~|MB1V zShFPAqGTsqD3P*_WRL7rVk%TxC@RVFv6Sq)gzQ@pDrL_gJ2gd;b*$O44Kias^ZDHG z`TnkRU)O!z=gc3S&dG6__wstbUeD*_DKk~)%hveK+kc!rYIG@Xo-*S%e(Lji&-vS9 z--hZxH@%IQaux9XDOONhg)G-rwJg_0k6EmGoMPQMw0is00sJks13Srk4#l@uc6(*S zv_on#799zoz=v7`{y4ERj&Bz%(zaiZ_RwOrX;(PgI%M3M@SE|V`1k%xmSjUO%_jb zKCAy~FtvKZ>M8%qaglbDXAEn(cTiueQlh@yh>Yd1s875|qkNUi(%HR9H zhpHKSBiF+nBcvHK5;~&X4Edg4rZ}&^l=PC~nmd*5{pzSH?WNHr1{00oLSy++>2w>F zS=DnA@~l#`@tc<}_EfhXhU}79H4k1HN|yfzB70=3X zG^V@<0z54O$MajFu*5X8i1p7v5tm)c4K;;#+2_7bg*ed9@qfh8+4H6t*u`RV{zNK7 z7r9L1_$3)m|63dC=TVgLY{`}Wy^Q^pKV=d=QZ0Gd*YgGS_e1ubN9Q};sv`Y#0@1e6 zqWII(f}59DBcO3H(gd%L?W4T4yJE(@{(qN|m7E%_F@hjINGIpqqx+wC`a5~?IL9va zie+0Hn^!wWh8DJe`^)SG`6)HgR%$<#Xi@)r745pGLzq0w$_Xo+CMq?d)>ELm!>V<8PTBudftzQKx+65O>y6 zWrD$%Z7{hC618ojii)`vPY;w4r`q3?$-noKvJ7KcSHHlF8#gp5{lw<`GdtS&5sBscbP^!2R{xoew^6*k@uv>rTPR{;1$Up%AT)D zlc^EVo@n`Q{hRH<^oJ9R`t?bkjD!{C^%2oVW0j^LuckMmW2@aO*<;nzT{f-YCasX5 z2DUUB7t>y*I*8u3oZxCS3jfOxekeR~3f_6be6WsN$k2tz9djBJqaMRo>&2Ls+?5j6 zEZizFX`#Au>@;JeVX>G@C)rO-RyH`@?ZrLbmp)O%_JdzX-H?k{7%o2Ecfnvnhr7{u z0*xbzP&g?I{*#q%Je64lYTqB)9Gu>W{?0lxyQ0ab;ka5pi+iYJ1=Q7o8;)PmXWvo+ z5}_=*FhdEs$TKYXIQEj!9N<q%JICUjK>!qpGL~Rd%x~#n=bFyLvxof4TLZ^FGFmCIUvpyk zy#y)eE22PuT*?`oU)*6&<35#&KKT)aCfjWI_Cl`4NMH&&3+ya=!5VLY2vP>T82UiB z-BL3pWmY_ZJ}we0?Xp z1F~!V;e|CR|FeMI!2(tbkWUH^e0I4~ z#dtMR_};+J^4jh4tlGOBo@2VV#e#Hh?+L>CfGC|$9F+lnnB*Oo_Csd=1E*#087J=~ zmMj{tejRGzVw&mT64kR=C%5CxwI$TIXvI~ z6hS_yiZaaMAKysDte<1llVOm9B~e2+*5KE0*?r81)c<7Z%g32Cg(zN}V*l9-tl@`@ zxkY&_Mb)R@&tOaj(3_hO-o&f#L!wbEm$);NnrT#c{Uv3KKZd~bPW5JCL-uTAV_0V_@e9p$bv~)@RfTopxK4%CEPQxwd2QVfH$<)fMdNLYr_i^`@vCc{ zGjUs+pT>sJNy2l)Q*P|a)E zoo)3Gm$kLEgZ{t?`ze;9ADEktD<-G~iFjL#g^te!ZS{civ=-v6!n>&OTZ z`s%5@vvIPKJf~|%zNgg#edKe;PK5P~t)1<*{8s=wc3OKZ`ss(@o-h!U>mqI(z_kq! zT@2d2x@sKPx2DySLZYI>Ue`)9S=x38q->PPZwjPcHhk9ZXq_D@W>{TGx}cCf<(K-R zB#*=W^OCm&7ZCH!`jHs@5~*dI-jx=-A|_T~3ZPx*dA+!$||T zg9ZZ+B^vcJk`F9@xoO(%Wijkkbv(4XP{bXtvuL7um!sf>J03h1>TUn|CuH*@6Hd>> zckg^P$WcmPXpmu|)wo}q{Aa$mc!7KPV5^nt9l`dTnBM|zU{4HnCfs*xeCKrHswEqr zJj%Co{Yrn+1M`Wr@NVkBv1jHwxqdTO4uPG}<>a=Tr`9Kag1f}^KziUyZ|GF=v{)-F zb@iw?XS~t7h(<^u!uPy4+Wqd9`Y{ipeV;bF_D@eI71U%D}W+vDb$3|r64L`M@_$rB7+lTc{( zfn(vaEa?aJ3Z&Ctn^E{u{&dO{REO|gTQk;_9r^o13&%0}(`){}S#~IHrFwN8`TyFx z@dr(;uJf+zxE1pTm^|hQn!0L{?}6qQphMqHS^SLr9CWL)SM+xOMK5IT^bx)Y0)c1( ze=2G`iC?=<21Gze`aN8>^xu?YBbnW{JC=u!BUE$+*Vg>-sFAt%{=EXLcLT*r@`ZeI zP93))%rq$@*^vs#8}oHiKXm%48y#XU{Mo7>zT3OY{pQ8e<_dK@Gk2Img#Y*c*ll#v zY1k1K_CDHF2PGd__2hrQ(@(g!LNI=+)8Ow$gJ;$f$CsU#=TA1|?6l=gG-zU1FUj)i zI6WF2(tNbCCbj$jmO^{NRgACn0qpk?X^V;QS&c_hLr&C0{|<@S?1#*CMBO-TAMUAa z3Uz~8^DB40l#i^YE}(+<-RJue7o)x6*fMlg3Ksb#>G)ir_C4kK!sv^*B?%b7~)UI=ciEfdn@ygJ=1!YWe>i9|$w;l!@F+6ey{sh&V7v%mr_3AJhDh;Zm* zcUQKrrkqhhiv1ZMixz66MC5iwOmFl*doa#x;2U%SNR{sDA9>={tG8CZxKO3eMXN4y zos8StSbu`=?4v!$Q})VA$^9$ny4gb$QjMb?kyDkYWkmX`C;wxWN6wfJ3)+~Ei?s>2 zhKT>KP0%8KJt5raQKc5m2PgUOQN?9wd{!{qv_u0yx?Afk62<+<{rPlXEK@J`5>FR z@uY0hD@imSI3*@_)aOuLGc?e$HUp#tU>S*@xfS42;b1jXV-VGX*60Htm|wp;vMl|5 zgQ}3vQLVg$+86hJhy2|7eApw&YTC`^EZ6k|pW`DkC)R$O{jDmcZB(wry~;kv`KsQM z1Gn=;VOU|hnolR$DP`u%c94(g`r01tvwi=z8!Hc25dIBAv-7C~)Q8WXtW~&fjPhca zHjfkT5^bvqd=R%$b!F$haoKu@ z8hM=^1LO!2j;2DK`gZ=@y|a6IpoVR>k513VR$fdW=t23In%e*EfA^yDhx_>b9@NzC z!lQ%jO*B!%7nk#Y;tYE}Jeb90N5cFt}#qc^2o0Q8uKi}^4c4Es@OJqKC+9uoXfo Jj0VMomua)UZy4RjVsOIIvC+;o6M5fJ1hXMgaBVQsYlO` zM>T%ie&6Q2G4z!NNR5T?bN=L=aA)@5{S)F|NgjLjQ_%gzwi7oJE>O6EK=cw4nFL*% zL&y1=^9SmQDF4Lme%;9(r6X2|`=ihaD_foy3r3VRR_J|23dGb-Or$p_<*5f`kmF%Y zBhtYZyb%E6W-EuVjJ_Ubv75tUpJ8)k&cmCRHUujq(DRJV&&Fjz-U#HOucDfj1(#ii z9mqwYmTvN+A8=W>hm`&u4g-mAHkGpzv21{}%ICqd{>}ok4%YOD1>BId;3WP?(9hJ$^mnBsWTFCs2l= zdvZSz|L9f1!aPlkME8G0=lGu@VIP4AP2o96Fu-f&xmSk-^L0_f{#VH`zbEYQCV;*t`{{;L1qt| z1yOXOY~kpmb)hLTZ@NIK>?cp7ya=xqHDWM>fQjaevMpdq_d-{dqix`5YdE?RWA^rE z%4L?6O9E3iyo^^@lV|lztZjH1#*_`sG94J*P5sV3vzM@wwyflsK4=qZS4?(v7HRdF zrKn3Znz%@U&;ucLE>NG_Kxdym{c+{ER#0}v+!Of zBD-+t1%3Ts*UYzw2ilrfBpU0bVul`tAAh=cRG?#hoF_)Qpc@>aF+>pu^WO#OCR2h( z4$^@wZ)Rg@S9>5KdI_O97uXT9A5_wNfcHvVk z4LN$cSp39`t01xs7TC2${J%JYe8=%AVE5+)h$tY@%OOiMOqy%lY$JZ#mz#t+$soSW zkG8G=Oey%e^ugJ53Sw^dM#`l&Ro^RkePg-l^zs#qg^*9^EzoOYf#4oVdzH881-t*?R z`s$qx2AlAsot_gASL;IKF0WZoz=656;=JF}y(y?&;nA;pK~XeYep;inSP>R0f90Mm zhQsHgn;)~GJkl;lYgbA^c@4ab)fA=K_gkBAGK`w#_Lb6M^WKHpZ*tiRrhAToG}#-b zbM_LzpJ9M>b2@-MuCQGT)#{i#S7~(AX3a|oG~}u0+aBo zFm{P`zmb1`$b*r?MuPo!&k2p!m@w*fV8Cg0eUU0=fG?NW`};sg?g|fBZJ|Jkp4I%$ znI4iIBQe7qw66M{NY(*9mh1UfdD9y;Lgia^uPFHW;F$j_SCM1jrry&Ef)eJiARgj2 zMV8Yv1{MP-{K@fwW=7SkzM4jN&VNChR7Fh%o=93<6^Grat&XLFuuQGj;?7P`|zy$w8eYubuATbsAiZ|_am`Up2NjU+)^f-$;g5yf`>|~R%!2i6={NV<0En~;; zJ#;2NSNB5Y(MI&d1YMc2;lmAd$aw(YBAlS6?11R z@(`^M;UFI#-yP>jC(Q~y@2a`3aoB0>_cZ6&0EvlTxXDIFcu1TnOKufJ3WW9C4$dcn z`I*dOsVNl1fh6~al*m#2A}ufr(!n1Yzk~a(vFR8=5x6|ee$<#q<_gW>l$5lMFYN&v z<(;}KW46GE}2Z3GnW7uec<|(Lz}k(|Kk^n{m-vL zM;X%%ZSp8Mw@kWGsMJq& z=pOc5^CZY^o+BoSGhEq&v8xhz{RaIA%g)VEQxU`g+580{Wnj>|_^%sqYDggugTCg*6aMgKnk8d8cF82F{7gaPg|uNL*w4e;(McxnFV?u8kFm8 z7sMInDWH;MptQecXz-Bz`#7VT%;O3v zq;RkNIfLC^pEvDdk2AEZR71^-kTTvxbUqapUUW1_0clv6xtyQkpXAYphv}HAhl0UI zg&V-dkl+{*fxn9YwM-ehLI+SAA`LdAqFrKG*8=((#HE*C-QuGVIrfgRHr@jNHM^EZ zNk5E`&O;QjP8IPCOhh&2rNJUF4o%~6(WsgXnh4T8jJxSeqa`#<61{pRlcOgYz6%6pGRqxd$7C|+t~Y?Z z8OLPk4SbGKyht6EFP}_Xg3KAkWhsINkDVjdJH2isGbj8&Kfw*9sExhjPaE66Zw#6X zicRsh+e1k?_PYh(r~V!L7HY~U1afy!ANG4Pn8M}Yk0-5cF(itph7XFpC}wJ@u9vhM zKz7M~{l(qcbLd1MBKG)j)1K_mwV)m_AwD;VErT2Oz&`(f$2kcw&o8mU1+Zl?j5np^ z1hF-x8&72hGB(wLv?GF~-<13qg51|`yeT_z>K;q49Qsur-Pv}E%&f0`Rw-4vR?FJ7 zPw}2DHQsu1TOjv2U>ek`#(3vswQ?@Y&qNPc1$Y!MeaX?M5RBgp34p*7oNaKwS39m3 zx>E%_zJd~$kd>DhNrWdwx+ua4_!|^~?{tp>kMnj3IeETovrOu7qTFJQ9L4x8?1K}r zajeHA>=sV#g3C#NBR*H&@0l7=2tWfqs8IzeHD8f(*w+{M^d?de-9i<54S}VzwU{h6 z(H6IbZ)`>{mrx;q8v$p8)h@{Vt)`&Tqq8~FXa@s`L>uUOV1~v7_WuQ;viR~@Z0NJg zO+L~whQ?nWJHAK(Mtod1`pd4-jDlL&rom~8mK$k7sE$1zlA#@6Xu%8y2e->GT)D(} zsvM(fz3U8Q8;hGNOvoE%Jts2fCvfZlHOC-~%K%#)7*bVVX0dr{8*NodMZ?R143Y&X z=pXKWUtYqS(`0RztlzqO2AX0_Z2djFD;3rbjW^~<=3o?Qnirb`51g*}#TN-IQe|}! z78tTUY06z)^i03&r^L2-^C$VDN#=}t+dEJwf#xP6jkO<=LGcGDY5#$B7@7eNi9NVM z%sYcdT}%3b)cBMBKM(?JB3KeVN@&BB|FU>M)jlabiscik8Y3q`atG$Cg{ID=?9O8T zWY>nuq@ZzS{eCo#v3?(&0O#r@X1#`owdJ&VIo0bj)z4ZlJQsgbk>>^lvf4Y|$RGP4 zZr0sJX6lDl$M9W%MV2fYXE?DTjfSNYu; zx!oCotLEajCh>qMz=7EDpke%wGI1Js+6Rcx5gF)!4D|1+BHBEv?W=pSdHb2M9IQHo z@=S{Kpslu78~w8@Kg)21{VJJ8if2B-X^^@CD)S*3iUpE>R+b0#j4$6~V9%(9GiZS7 zLXP>i<7<(2+|B43 zpe2ddw@U?rV_0%ok>o#UF=ucxCL;e|<}U`%kMDYg7(R%mqQ9FEqh0jQn?voX%vPpM zbwdT}a_A@U0mrC3x-EwmccU`_E~XsXs~{lYh)MwWP2kkS2T_L5-;e(fm-I71wBCvY zLbLfOCC$;WC9!f2`gUIi?OuCjm`#!0z;XVYNsr&TI$;XJ7x?B-h90#1^GV6?cLkF) zJ&nCbzt%R;9OaICs-G+_zA7bG!9P`cj*#C^Dk~jvIiE4h_hv+pzmT(8Rf)#(g4z0e zg8sERZ2m4u&`Eyz63m(Dfr&QN4@nW1@x%9PyM&*bwp2)nnmyR`D2B|Zh!7$Hpu!=H zKB8Kz0WHW;NfcP#JclHYBk+H8Z)tXs@YLWgP!T`_a$grgif_ur>zW|k<~zjkLQmn?io zU$35tf2H(Y7$d9O^Hy$P#86ej)^wGhPc(2OIGj>}D@DKlEbp?1rW zX3W}fl4pmPF{MTT6oJpQqa(>xJ<iKA1S@LJgw-;OINg-SU zxqqmb912wrLYbJ?anc_23}6#Q%wo0p07FmJ`a`kOtFwSO-vgL$|8?#D_ojv4>dz9f ztumvNGb#$Eir`uRP z`iR*88TD$>$!a>Y7`dEJvXrm*K;E0}Y(^<*OOud^U<*7G-9>*U^MDlz5}CD4`ClV6 z{)ZQPf&thF*oVhr%!5*9@4>st>Mf@8Cp#1UE zrAW=#l}y?)bFlwA`~^Ds1=5m3lnszNJm9^E0kzN+h>6@)@j>v)znPmwd$9L4XgPN> zkTP9hQ}?($vP{dP6r;|m$9N5VF}UQS zVF07p0P%U<5O^-kQ-WNCCv~>oG7Z|F!6(9AMW<2j=5 zPT2bRHkc^ZmJl8Of1A&fvST^EkGS=D{i`N3`l?`Ek%E0DEcmLUQVz8YdT{s?UMGrM z9#xb_$A1;h;Ge(k5TO|$H4@*`NyMv)t1FE{?j?7ci+`Gb5B%XjE?|fJ(ayf;Eg&E_ z&pwy4;72or<#!x*-BTd-e(*KF{prdQ0rx%t-|c$~)R{!^sicP_At}2;8-l!D&_jAP z)v$|;e;oucLb9O3ey~l)GXkh=>8{ub5Wk7C)ziro^x7PNe*^vA5+6yS=ke&x0o0lw z^u+;_1%R86(-0X3y$NXrhIf_#Qze6*DBM*6S&wv@)du7=i%Y^hmwE|E6!+x#HsiyO zqo>|296k1AQ(*7N%P3q;hB;-eV3z2pkO(*MVq^dmMkk9oST|?6{p$scbn`N!OueMl zD-sTTVn`~l(=iVio6oZ>NMl|h=+`L%$^lbMT=L}GKg&NO@@DSsazUH}kr^Pt$MS&Z z0nV`(l{(!8-s{ElY_-uDpAc{DYAzqAn|NH$_!V6$04#*8FYaWQUwa)g&Wz^2$ zjA%6rr)jZUl?g|XLl+$dAe#tpT$dfq_QfrFT0Gd8=CNCr8;%9A?UK6-%26okm!W+& zTPD@S9e{!Q!Qq*|252>*PO$veH_amaZU$(r9JZxZS{|y12I=I0i{1+ss>^sv6ngUnOH)(|syamHWb#vmC>km6 z7F-#!OOCS#^E#W{aO7=H#mK#KX3S-QDVb6U@w0c0?hCr){pEZgiOC6bLdMyH!yDtl zC~^+xK-s}&=z+h%q%(d$&-C&xW3vnz1-K!F<5?IJX*3*r2(gPzLJu?Y)1>R-rS~9m zLv}Mw^B-ZVA-NoG$V32$LUoSlOz+A3FJu?JlV^EkdJZd|3M^X2`(Hwb>jYo5jnBrf zo8>~3op=^%1@KEvdkKBN=h@mE-isIms7$W_h#e!TkaFIUR0JT~;j~5c z@YGr=*S}h6dSrVyqX+x<*at=Mr~{^0IQSOJcOHg8u3-LOVHj4M5pk<`0*ow|T66H= zD>a$;Q<&Z%%@B|R#X2EX^wlTsCFSC(fLfjmwzQz!;KdX#;xib)FH}gttCeY3?YcM7 zZZe81vtMb$IsmLx0V(HR1}M`y+402BcV}_`C?NCeuOdZbzDrjIW#9q7fBGun2nO(@ zm>PBezaD>Ec16_GwMN{p-$mLMNxm*}hV-|f>%$5b02)cQH11KJIA0yo&cbhD`@#f%8F-c${b85e1-9lvV+`z%E^8Jx)1crlWo zt)aJ((_NGVt@=An?ly+0(r`kYDe#`-JMUhg$DJyt2V>tn&YhDU{ENK~q7e842cH9e z8!NhOxKR^Ibh1@oU{Atuq#7hpA4)yBr3a4tkZW1{|qvA{yB*Petk}(Kl`4mX^ zYzk1C>>VBZ9uooX_2%s^Y}&0~0REebJ{AS5=rRo{!hLS3d@)Ra!UJbQC#bW!@Hxx+ z!PLQe-XKYmC8M%kX!B)Zkb<6^vK|f3KSPHs4`x68$hMA}U1HGI7Y#?VpMQjjls*6F z%^GC%-ecg%gQcJBb3LiHUAs+z)IMvKAojdjXx3XgezbHJyI8KXPB>M_i>aFz?Yzqw zH-i_<0uak@xjllNKW?vhylwPmxh;o&`3Ig38r`KMBAu7IBI!jH&Kt8_C;q2a9tMo8Kll(!rD zdl|i&BCEQpXGl`>yY9!9S_>{n`$+$KtomF|`w>hG8J~NMWO-*B4~kUlL8w0>0@jfE z8exYzRqVNR7c(aYPHL}0*sGsJd^TOli@Chk#Ihi9$~2hmiOsG*pEGDcgY!AL<<*OIar*9YKm?AH*32+Mi90^dZP=&-)aIO0kUkIXS6D7= z4jVN0&W&2!Tm#V7L1GUy8B}45&`Mc?&mn8OQmdl5^AzqU|3@QaBRMu%*76#8eaeiy z>EOq*Gng4NXB%B$JJWwF=Ww!5Bbo9%3H_mHH%Hv*I4^_NUH^MF`{JH^y`#qW(NWor z_53Qi?QRb`vC(Dx0c)m;b4PgZqEMjtQ*7LLuokPAUiO4mLc?g#?CM96nri2$`px*O zxKp8AS21ZF)Cj?a7H5(Tu7@l9CiTKOO(RKduX@iH)%e@m-5O$I6%m^!qMxwT8n3% zBu!*WEqr3hD9@NEB>XzIdzUK@{Uy%o$$4%4krF_gKeZpk*(1Iz0#e)dlW zF+|~3=JZWmEDRFEpQmo&W&ZAI#}z1`pbve_ahJ+jx>R}b!BM8oc;@3&D>hC!wBRJJ zb(tF6kkPmgSC`F}QUa%mu;Jb`J(W}u2#_HK?zh^qU%rI++b&q>>&2z6M(Z7HEy91C zkR?C<{7SZ*mA_OV1Qgd5nDL*r7}KJ93CBfGlRrPRS(< znN$N3ClUx*K%9XVUMWK>q?`FZ^cj)IwMB_r#8k{^T{-9CAnz z9ES-Ob11<+gLkiU(a8fxPgxL(FLRs2f|;AxGi)`u z4}sF|2}Td#V8{Q@5(55tR)P98L)|tMx0Sv`wixeT|8$uN7d;pe;PjHe^@eLy-nVG? zpQpVmF3+?RGz<`?%1XObwD677{+HFlbvIT!Equ7kO3_M>2bP~9)>K{1XjWWy+p_St ztG#oIzn{!0bcmRA=5*Y(Bjx<`kC#GgJ~{pALXB!*!0G4qpx`P>HuxwtH#Y= zi7mnX!dGggRRO$w1O*hr{5BkqwKIpA4N@S57|-FS6%rwje;^Abp%lh8gp%;8hn*;v z(rAi551Ll{(*zGf*>dt#rYm>h%4A*idOcQB3h8|SDScbL@fUp{RbZHsX-^EPlTvvG8V-a)iYIr>g^cZ7Jio$(Mzo<;j9=x!o*`bMS^p zhT3r44}2RdldPrq+>PCd6gb|Q9i6o>LpB>fG1c@%YPoNWj0RQ_x}f?*Xy+zi zo!3>_0PEe z&WmEibE9Ozc9(kR)6K;pTN(qcrq>SQQ3w3QCChC9l#c%o^)fgMrLAs)2$yJj5~1-t z%ngY1V*ZqWVKUQ1DSOP zw$KWs;Xi*c&gQR3EPsz#a{Sk7=AGC_UTE*MtJ+4<>%Uck*eWZm<9p(Gr$xrPu>I}# z#N|%Oj^V>To!oULd>^p?UZtee=Iq?5{KVrQ0GwQ88zW(!YqMnEn<_?|+W`UJ7JR@H z3JWUL!1AH%JP@wR{`j;Qr8M|YFZ`ZVDg9U^!^->BWYdpZ)cK?61_9|cb(5or)wCv} z!o_QC&L_BMG&bWVp$VN>;|ZPTbgs>Ie0%}z1K(qxPL{t7_XI{Oimxp#+G(r$39kxu z`0pJl=f!9|7>?A^e5*%$CTl0@lMF_U2XIC*JrGOOqk~{Ru=4=AC5|@CybcEMe&fq_R5e2wP<7ww03Fw_?6~hk>+L* zo<_4_D0Z*Jty1h4lOFuuehcycmXq!nrqZfW>B0#b{8%dWQ>l#uTIWTm@CsWJrhy0=v76kPCnr!2*)V^+nM= z;<}(yO|+-g$Zf-i6QD0i6opS?E9L)kZYC(vkO)TeeZRP16OjUu%C6?BSiIiEpb~Xx`38 z3F-_lvzYC#aZ>imr<2q14Kjo2Vb8 zP_Jx@&H~%&nF^kU#H}UK*`)@{ZZu28F`uEbhD6kjhK+yb2B?NYAwrZAkSwFvGSrF# zjX#cT*$*l=DWJW2aU-ozUp}9HLhY7$AaBXGv*0Cn5g7W1d+~h~uOeJDWYH6(WRv;R zLL8}--jAN-M;{qPV%_n*F91P1W|be#HX^$gVfCkmBDRd%LHN~`V}||!j~4FZ)aG9Z zf`McZGX(U(!S0-gLGAtrb_6pp)XSv=CSVhK9`>NtqBF$jdAIRj*mOHrxB#Z5qX!Qn zHQ06Lbd4z*uYH`s5XFq`v;0nBZATV{?UdD);Xl`fyDxMeH)<`0>%CXL{s@yU`c4Oa zHrkxl&(RdBG^waZA*hgu{78TiGPo5a35FtEpn)ohRurQgJgC9XaN-d#!J0JZyvd8X zwT>s3;?G3lGjH-XN8!auYlrE5QMuf$HT3KpNF_2U3&wV6Q0HwxC#{bnCPgn2=+Cif zLH^Qfeq0jA?JY)MomM!loailLYj0hZHT~P>mrvER%6i8ItPP`kJB;D`L;uusdc*(Mf|4Zps=vxHgaa)cj_{)v12*|2;K`@@kT0sY zHd@#0OHgKz7b{73g-xM>LHo(CYke+0UpuK;uB*52oMZZo8oW(th@Gv!iJxS2#Tw#P6{VgsURx$(>;0WD6VG z4MO`5n*Z>1M4k)Z8GwL*t`xo1gH7MenZ|lrGSA2(d?J)R6ZhyCfv#Mr3S3jHaB?xS zxzGK|#MJ%?-9s&-@adqtD?0)ECac2>VqxwOeBU;Gydc;2$Rk$AI8mH^GCmn9*%ga_ zgY1cFXv04qx_{yN5N%-3! z7|WUn`7%xd>i?tPKA(Us2c!a&H6i#k225G=POc}gec( z5=wM3HZP)oBLXFngHu|OPs!orAgMp6-CLXw!tH{xvf^ItZ+!m816Le_`50m7h8sz#3z{K65+d~?dv5xkJ-v7M$f)3Ze>Ie8w{3qD zHt2okycBMO;g-Tt7kTJ)!kXrZlyC9I|2EF&5q|U!?dN<&J;FxWs|3Ckji(WC;KLhk zpjdG2fnJe0du92fQlSzE%0I??moO~n{mP_g#xP^(x0_y{`tHlr+0SBL^Y2eFI4~RRhzh zL=q{C*W0K8EvJSq=;gFndpeQ0wIgQk76)dB-%W!TCZY3;R~&z)v1vtr>{}O3ijxRG%{kpCCey*n{i&gGjZ2;PS{EqpqcA z!2yAhi<|Bq-t0}rxrx4g;_Sg#Q$7gLrGa%#r5sb(jZfbJIT4c@EONA2Bw!s?Pzg}2 z!I%Dv-omn?I;#Ds6hG91I^R!)C|^71K7GH=Po*!|0}MCvV9!U$;cqIdF;0D-SBr$IiBf27`B@#J^UFrgQ)wO0 zhK*z1uNBLyJ^PZ6nK%c3Yr6KBHYs!Y)F7WsfW~x9liPf{=PmMSf|=nVrM0mg*_-~C z^Q4_Bs|*~a$Bf5dHOYS-wb%JD$6IzDFKWNLdsu<^<4}&vJIBlIbyYc2b(z`Ce?=DA zilN|)rsqGe7|1>{H%OiRcftF**0c1TK5`5R$HB?H$!GrgHHp(v)so4$Gv6fp8veiNl?^kEt8dllqOp~c_v%HA%n)^vhg{XPL^FDQ{Tl-C+|8Zyb8F9%7WI~@D<1zI z;=*ORCGiC;r!Prykf@gPOo8DCLc%Y|i8*hD#c&Phj2{R8=?p(=yl{KhE-3U)21(MI z!WAdW@Q0h86t1e0myUipo2pfI+wOJLBgyod`&=OoNp}>9o{8W7WE|}duXX+QdGE%x zyWhGi6vX_;)w6Z3Ydv=z+UUEO#E(t_wbG;XBvhC<_LO=ZFu>8@TCzX&pz3aDS%q+= zEyI@lC*cJemNsyF?b?y3ufM~oouW_CPiMOZsLY;A)xy4yXsi}kEl^_@2o{Vd(H`G7 z)KsWsv+0tOJ8KHI|I%mCSwdG6FPaM;@X{=ofmYBmigV0iFvvwr0IKt4+#pDzAS7Ya z52PAst4x7VCj=DhX83j0XZYRvW4A~azrXzBnq7o1{q{rB*Cm- zgnjEnj`wDBK3H};-r@A9X8noC+B z#t}tYF7%+MkYne?ffRc?2aOHX01?dvnE5ch5ar zn)SNQ2~5+6uqj1XD%{xvp4D3G*9Goy<@7Np;AI#oAUhU_N{ShOmSZln2OpjTeY1PK z42Q5o&w`K2@Z@%|?57BVZtIF}`?>oseIkGipN=#_eT|6Kj~pg4&>0=GnFOik#c09(=F|+*E>@@yjWCL{(3j91 zc(pZ9{G@!QN5E;%i%g#|ClaAJOqz+znR-b<*u2g1G_Q`-w$2KNz6W&XEY99sTaKOE zi3`^gD0A%IU7^K1-yf=u9(x^AA54ysjn~Pw(FvAX20UI_4M#Pt5x*llzlX>#rx9kO zb-@=tr((AHs>XI?M#u`+CPYsoT$iK;jB~P@QRG7$fxD-J9A1);KYQ>urYsX>_9?Z%0t1!CIW%2OUe0S+9&mRzYY!gLu0{^9# z&aP$Rq|b?gG<5v-obS&%@7Or8k$J33z};!RRaXMl$w0Hjz(DQ6_PDlh_0Zh6jvw}4r?OBJe1BN;`^_I!X!O-?SzJ~rK`h;x%sFTqltlJ@il)qT%;f9YPc zM_q{!&!aaZ=LP^l29&Y~F!eGZCQzTBA_+!Xr&vBSr^(dfrRCd~&+#Q9A3Qf?C25uo z-$`CZyMmPYsxA{WweBZrEn_KOI*Fdb8HF`Oi?*)<39+fOF#;ab(d1=6niTMB+;TzB zX9ibDYvy3T-{AZnPa?*XDl^HpyPyLuw{r;z(|+;h&p)x|hv`Hp0f?~Odayu;!-qL5 zk9+~q8{q(h4@@lgd$H+vW}#BL&ktOwcT_FAu|pL9uYIn~F*9Sj2U=PS(qDGw%rGn~ zZ} z-J;{yOBRHSlu5^z=H#OisjVg!C0%>)dMm>6`C~>S*CtegC2ham1ZJixbAsN8#utiM z%D4T7MG_=#o~tXqSCNCo>(9TWxbsG`{d=96DrJpJMfQD-7`yO}HrdKZWUGWESq53Mjv32r*Id`{ocDd-zx(t3eviW+9UYQm zuJbz2^YwZ?pO5Fdn)K*X+0#FtwM*^))YFWek_n5KN1b}BZVKI&Z>{-jNAppQsiE07 z^`DutSiotmKXKA>8`6FD6%g`5dC0oZ^#*D4_Q*F;gPvJ73A0GntBA#?G`G`f}mUJlW{+4|&go;j< zUMgcafK#*PJEf)+2)_-Df5r0_RH0{P@Qd=R3)3dsv)BO=envYqvFQwhX2nZ-dSZY*zGRbCmXi64jfjJ?yaPBN4-#M$~XZV`JL#h=}_9NL(J+a{*hkN}(W9t<`?G8G?2j8fqgWdQI#69{<(eS4(3W?dmL@UXYsz?UVO8Y)$5OndnImIy!{*cjDx>#{5F_m=7=n%2^?>o}TuinBYj*X_oas&4tUvVN1RLehWNp_3*uhaEzT!@I> z0Sj%cs6KwxFSb|y!J}YmdfTrtCvs>snsHK#-}pfT7^*d2TzOp6ccLW(=G8@Suln;@ z;2|Ve4ZSJgjC|sYe3XtRTOvwfztQ^N)Cm*bp%V4*{y&1z&;HD<5B*HPFY7ZqcXuE! zOk&Sf3zn0<(ejAp6?ny}#I^ak*p|hP?Z)}7;tI<&^vB^G|spaD7)1I#;jzKFOQuIA)qis|)$htu=oBiKJ3>=ipzm@^TRJ3Hp%lQ`0=S6zuY8I6 zXRFR_{d6MzUK@@y)tw;fVElNwQ&|va&hIkyJt12 z4TNaUU!ADj^zzF)wAZcm7S)f{>Gf?T2>B>S!JqVrOhuc@md{bpa${b{8N!dI^1;i{ zeZujme9JR#491)Dp;OvtTpONGqhsn)s;qGz_-d;t_a(i@yO{a*6wR;5#n3yyuWu5s z&WD|K%}ewGHYA2;v{}=a9^V=4KIEwc0_4h^qqy)6B@Wx@*QCR&IeR5c;1@7v>%^+r z?6X}^kA-{sJ0YG_kc#ayL!4ie)da1d%jL|0V&EMoygwS@yjZdzYZ4j@DS%)I0fNku zO&np*UmFIqZcM^|>t^}f#*j6lhRUkP!DdzRXIjeI301dQ*|$}>jtY=VS&L81(J8FPsV4Q`<;-}OhB)~f)h9w`-a5-$ zWiOI+Ir z-(2)ez?l+A*xl-A&s$jXFktMCoC@2c-sxv=<|goA56z}dTJ=ozQ;diz zO+cV|uQ^5?jj06X+pgDOKta)rmyQ*=Q6pG5-uTi7Xi=TON`?VkTV@h>O`Sp*?nHO! zbrV7^freqZfj2$rGNv@F;Bo{`m?CNSD+PJ6-VsgsmeK-2;VxD0oSo4=#<&IqZa zu+8kV$3Ar7D@WTQL~aGUZT+I(CB5=gbnc1WL{zeq8i}j6?IIl{Tt#;iY+?v0=v^R= z2hv+W1Oh)a1(EOnhj@6|$#zpCk!A@&BXh(}kWqbtAJYvXvqt|aWCXrDvH}=LM+~7o z4+9EJCgw0X;CCuHI(^A0o_Yk3HMIb)G2ut>l+inL_r{%JC$`Q0t>t{A&AwHQxPsHhZJE zgJeE}JzmsJ9CQED{>Rq7WfRp4Z|vSqSz@ipUe7HaSV0VY7%Y*0p$pAcvOq}rwNixA zF}?TKYEmJoB@#W!rWlb_Nr!t!1NZE*acyf5bjpCyBN{Rp`X^%1XZM73g!E%_8F`;I z^fvd=eUTZe1>#g1)%SqB=i~?Ftsvv6sI_0Ddw(e`t`6wvh~R-@ShJ^Oofl-S@zDeG z-(pnFrd^JV$z~0AgEX-#(;&(CwgwoJgJe9n`$pvc1uc;LXmexVqvvmqMljN$v1!@B zNYGT&^kb@%iB@DMBX%i~(oZx7(qHhGRQV5Jnb+dt!OmP$z7aAgKzJ!G5ta~Nt$BVv zX*-BnuChaA=sIhxG=8HlEC^8%1Srqm0@&t6&d2-RgnNR=wye8`eoH}JdWDPM3r7-0 zFUP`rmDVh#WKuw_k(>bcG%jVWiNyk=Y8_27K^&ErXB{AG?%y7EaYm=rH%1haB4c9- zmv_-TR|%XNK=TRIVuQf0#{lOKqT-qz3aSv@sACjO=B*9lHpKK*FF*RHR`lh`*(tj{ zfRW%2%u`nlfVP8%Os7IV-gNZ-C7NvDK3)*_nPQ8KfuJUO)Ca+ zdWzUSkMj8OUa!W2mQ{*%K>axE*Phg|-A1|AyWO@}32?umHnAD^;X8wweg z`Z5lO?x5Ge^n);=tK-fe?{W}M0Afo~%{8NH`^xK=~;)ZaQ zGHR{H`Wl@>#DhyZFjip=+0pGlS#hKt|5C%h1R5O0M}w)gPFpwRKLuLPaRd_+rjs8l zjhr4@0o%ws7{OF~aIZ+?YD+=+t~$VT%E^!;J!?8V1?9MSy3^GwyAtN@7A|cem|QAt z6Fw_n!-EsUJW2^uLhi=zWEZ~2tEaJs?Sx;#AYSw>Q3K(hCMK?H4zScb@}}_pnPy@J z?9H^u8Pj$aU49FZDa7v+7MSSio;#00)N=}yhDn}BRVgtgIERZ}1eAPywWo2$PHrC> zJkgR>3-{D>R5EZxfgHDY`H z_1{uG!8Gf=7MJpLL!?hPJ4+ zT5kTCADoxCt$~)tq@tz6JRhsIhOqMcWhF!BH5aR420V%pI_nl5-AqT%7;UAQ z0#QM@MsPlq$IYkC@DWt=D8P;Z1A%5VO&uV*IaIH_p03PFr?=t;*M zQ8jtQhwYP5LeoKEqrHIsb9yvD@ljpkRg)R?c_xZnd}LOA1pE(@s+xnSoQIZF33C;| zB9+cDjyS_C3BX@Z)3OBv5~Mm7y&nfXgT2f#ipl6H6U4IuAk=S|D)N7qe)ve^2#?EG z)NupMGB1*KvRU8moNn1YV2xUH8swnrz#@B}>*Y1F6Q%c$Gon%L$L;kK9RGa_ghTEI z&)}X-;M+`61+XSk5FgTn3Zbsh-7bPt&3^<01Deczkd7c-H=2T?AtAzhLYU#H5SYv~ z(snn7`nhxwntIU?r$cr(KOP;NLo?mH?)agH>MMraMhD#ZouQBmJy6+MM7W>`T#1@p z{3)dPRm~~98B*+k3^yR2-B=~Ws117w8N3I9*@qsHV8x{F7X>vjm`kzKFC9_7N^#(Q zVhmjrEN_6^D;PZnkVM#Zith|z&_u5tpEp~R(217)>O+>JfyeJ}tx`N&x|v)=I;U5I zw%lqYpd#Ib9Z*6lbikPLf~Jy++BI>zZa{ghntpJS4j0Q>-oXk&b+`j&!0$o5W8R0a z0Izyt3~UNcG+pIl78JF|yT%rYvS+{jAclGu9UN~Q7OUG6*PAxGbhn*Dm^Z*-q?uv> z$6c~vOOI~c#%Q#FM@PSj5mTSFJli|W>Ca7L=4YA@npuNR1y3d*rkw|HR&-!ZfM z0_38Cc>pHa13WEPW-d(=`OrW28{WonQgsioy8|j@3fgguZUai=|10+OsM`$sSx0BG zxnTrc=YTVuzMy*b7Gql#0E41&W|Kj=8Sva5MqVX6r-;rNBa*x_?BLR@Syze*K--d_W{VK5Z0Yz61Ejo) z15hA(^|lGQ1aQb?N1m zRuC|D3cFZ*8Wof>d-}%CdIO}o*10?o>8ezUOm(~cdk$|J+!5awZ4LtJt(UW(22=SZX z<=c8E8KJ8J{Zp8)-oFY3#!z4+1l43e4C6Ahh z2LV(Yw-zvr1kDFcSLjM~+0)Bm-hF0kkOC^dX0l|w9_snE-}vo-^vlGE?N+6!wEJ(`CFo@`v;+UlxV+!)>)&WbX635`U3BlNocwO85H+hrn7|@ zbBY+D*FI(Nn%YyFvvi&9EYlKm&}qu<2G9wo?6sQ%sHy89_(+~B8r-MJ$_ra?PLw`} zdqzP3Z?*wwu;HhmnjQa-u}u~PD3hHL62AGg^#*m~J#g&Cv1aOX<_NQ1<=>GW@$C0X z=a9Jv_{7$Mqko*l&+HvaUh5nro%C6(1t6UvJ7i?Penh4EA@UNXKzf<5znviANjNss ztlAEU$i}M7NHta}dz7tJigRLlssY_Ef$i$L_njctrp$434Y))}htWCjdU1C6xjbsH zJ+}E@&;z_(A`B?}&P9?>2D#louL3*;{Y!ua&>txC78ZX>Bn&^{%TaH=mj8misZsYj z!-ixX7Fcj~v2fIPuiO-L83^RTYz>5L|60^XwSQx^TngJkIL5#z(AdQv4EeNEg<|s& zZ}t>#RF+)PmIB2#XQ0pFlXr!f(O9jngN6f`e4= zI?8Op&Je+f-*6hzlHw+asK7q2f$ER%nmSsxfIA6*kuGVF(;J9jdsv+#Dp5dV^Nu-& zm+b{xRzn*ZBuyi_&2=7t4+FJb9ITVjjXFq#q=YIV(zP#AIpvX8s`E}i1{@!hr)sup z)_YuP1HX7nXg>+PleOLi7JR!R$GQ-vO%e0p-8?o6iMkZqO(2C;Fm{paC=lsWPLpi^ z=$gs_l#l32=x}AR1)*Sw{@=%79Nr=tR!MNJHenK&FZ5`=x*>VpP?vG}>N;=vDn$j< zJvOdXng5;u{q07(gi2N$nV)5yDELw8ZlC1_U?!Q<)KsJ6Z0NpJ033TMFP@PVW&3an z2lBC>oWk8zn#pT*jqfQ^{}d|^;9nBxDaH0~?93(bs&3uufJEA5OUN0U9|V`=lEXEk zuZ3XKu7Do&5GaB(=!{2cm;#zp>2w?n0+c`|xdAjOp) zDiZt;6vDoIoHEUN@e4hV0nD|=EJ#!H?wLtV>yHNvhuL4>Hm;(j^u~eJWrq5{MZMIR z8SwxRWMC9Sc+?7>qx35ZdgVRr2d*iHT~!9rXt{VNRn{p#@V*DT^W9QI!4NwSc%!Wb z!S+1=f#)w6D5#-~n}Xh|NT?c%F4X68n@=}Z%9sp| ziJ~t>Q9flmh6-ROrd7B=kKZ@QngFe^NOfRNTAp8eqy&kD%a_DEO?`B!hWLaLlK% zcB;Z{nwIM878L8jOE14tm;K*QV|}8DHn30N3sjVHdn@;z;HMy1icLwJ1ceIF2LIR# z4XL03)RD#iC`~|>3>&p}L+qa1V*D-kpm#T2lk)At*+5c+G&t6wsmepNrSNL_A{}}F zERAW5XO0vofZ3i1*A&8atWA+iE`XK`PPBrNZb(fakl!MJ|3F;Ym2~9F$#T^s5UDUv z1e$6=jiG-fqABR960pU`K|7VA|GlEDGn1a%p?Kw9k&$WQ*b**=aF+R}5-6T}b*F#{ zMeD|MI&0$^noxh!DhGH^uCx=Lo{A%!MS%JKESL;Az$YBwP!%7*_WzETwX9w}|0E6^vS8H3Sn^n>12}j5j20Xz`blBq?B63x>VATQf zl9}C1iLPYy9=B3OxrWT%prqT2J)csV_O%lpiM)WB>hCMnd{tH2Q~*pOD}#=B?rZS| zE#WEBshAHfeyYqz7m*Ep-2=dN%aw;&wcFgD4#nN#-#Z9B}9$ zT~YM%OAXA~0Vs{n_ABDrg>fVUq2;X&JSCqeZ})d#_$5Go)rwoEzR$H4i(?*|c78fC zk+wh(f>j=4kjr#%X99huzW*!uor4yeO=Y$+Sb))&?)cUxJRt z!B}0tGzC;=UH7Rm;$#nI2q7Z9n!N_4GluEqC0V6yaV3_K&D=8=8HiweJT;n_Z7Lz-wLCh@j<))zS-nFuEE@+GbkP7(wlI5ns^TR13nUtcx4ROoXb%0 ze_*PA7on;P5{$vP|Admpo2Jz~%m9H#E5^aN8}z?jUcP)^~F* zo#SfB$sIQoR#EB?gzuNd6d;}e|_Fys`mhe-FJ7lf0KMZM2V<~m5` z>7x!d@Pn-fTkO3LANzPr@pi6=r<>?uU|JJSA7Fbv%sC{(~P3)gQY%>lV+%gCUK zJ8qP(_v}Vx)Iej2;cBMS9VXl#w|;I)cwJl-VMQ)yK4&|yx>0YSP@K|?*QV6WtqZ%q z7e&8;?(5`Pr1Dcw4?=_32D2LMv z|H&$Qn^p8O4)&hcSv^ly0+R{brH4flj3SA98JLM6fJ+sF%y+1gRXl^L&oafgE~rf5 zjE(RoJJu@sUFuG%tiGRfvZom{y5d@IocJKyj*q4hth#F2J@aY}yP;$XKIRG72=>lk z|8_!xVgMEQTTB$)CV?iVBWL8%bhvsXe5FKXh`EzY>b>RG;(vLs)I=&8cH&eb+h}P5 z*Z?d;a@5lSYVR@mazHpvf0D=^;dIB8tRNQzcWL$w*5}`Uc?QV^j z0_q6_x;ZfTte)B;EaRfrBsOay?jr17il@fdfYK=(DBdR?YI_@)#_9uFZ7C64XxrF~ zujHvSm}FSPT+o7`$T52OF}5bIJjWi%1%OV6pGq7BDM5(L(gQTfexgB$Zxr9QmipuM z!{6`PTox5Yqw~zex%Ve^D6{YCgm{kCYcJ}rqW<|%q&f%as;?0-+#k-dh3kURNquc| zf3REZ>`h2VI$jGlDDyB5QyV2OwY87;ncYDjl*T_n?7A3!L(}f}!&3$hnj})K*59Zy zb60JezIk8qQB4^GP8+;hUqi^j}#c=6m&_N10V6H>4k=sGX1&P`? zAf7qcivUW(P$~tbhmz{5eY;b(hrvOM#xHXKQde}+=04B)>L#9FYRL2+&%pc_40STD zw4Er`hkriHI@zJY8dPPr`n7$V^PO7<2*zvVtY*aRM+rQneBV4&0C<@l7`q%cbHz@y z;2k!I&#RFBQ3C5K=oN#@`nQsvpL~sWl#tuQaqF40ND2OB!fP9k2ml(h0 zzDk6@n};rdr3Lz^-2^Lg`82`l9fdS;n5AR8>3N&*OdYgM>wa;EPo%QTL0(hDl|TFu z2)PIBE|3e!|6MH1STM?1$7J%%8z@_M_REaNv9r7`U)@ioL}I zp30O5fR-#nZZOw}N2Uqrng4R%h!3Ua8%;LPcDSH5@%WK7B>uE{@RAqnj(A-}Q(}Ac zoo&Rv|MB%nSOour&aLL`yOKnb$rDqjD$9xDOLo3^XKf$eD;1gu-E&!Fu~!S>?f0*U zQ)M@Bc4#UfXz+>~?9*ol&p%EBl}83@g2R7q*)vv5dJhs>2D@%=SX$d(D9eFOBw5W_YGsZ$;JoumsN@OL% ztN}+K5q-a30j^1~g+DzvUa*B1Q?``IT{oHsc4TWcruGN?p*mC<5UmIrS<9-dWu2(L zJC@l1uOiuh-+Sknxp2Q_*``8h-4h9*K>rSfe0K|fsQ~mDj$!pRc1SJF^z0z<9BjIa zENl9Cjkw0|G1VL`HEqLSECOpz1+e-BXgyMk3VbGpC7YQYG(RTY=Ak`vjn5$|a`p2o zt?`q4K3??rOxC)}Z~Cxd6pNl$zM9Y7So0zJXOHGyTQ3QC5X51b>jHZ=1Dj4krL+2B zocj!JgQ@8~O^EM=uryHKZcqcJ@oigabDxzlMHHfAit)N7P)Q1sJTG$8R{>NSEUtvE z?7&nj8W=tmNS3%3iOJ%)u;W@qm(3Iq0jum%=ZrOZ#gCCBvvVNN(KcutjdX&t|8C5Y z9pTbCEr*$4I^>|kn$w;?sE!iC1oVORj9fCwPg|)wd1lXJl2cNu=|mGrZgc?J^$0fo z{IBI%sVymmn|cJR)3sXi7ccG{_(tMaUNpL=dd_PhYJA|yQj(>}1FH*36<@ppUL?@| ztSo!$Wo@PU!Nq@^N&lwrl}27f{5~{n)%iM_z&pFU)mJjVMV5#ytVETNV6j@lvBxXK z{FbPYnyJpx9?+~xVQP~n(#Puk*5#(91NWOCA(}mBDTHG}hncg7E32(aVXuOd?KqRk ztUj9O*|3xVb51i$%%Ds-5OZ;-Pal*Lv6WjqX_Neuv$VeEu-a)O*bxT_g!xls^LmK! z3!31iRRkr38eQ{6AuVm;Nmh&)Wbf_DT{{$Im-Rzss~QLjN@y65=tl)23G~l=&bG9R zspm?zg0)o&yrW!^xM{*0F;t{61)O{HwMWe8!bQUK>Nk7Nu8Y6(vPTYq@Bj&P@0OI0 z@a?FbbSFPXRSF1{NP8uZc*vuA`1+(J6<*-;c<^-GcVAH26uRT7|K3N}c_X#>Q}&L_ z4+wi++43~#*mILjypjUbVRJ5p$5bJ3?%Ga4VJ^~LIzkqi%}><_So2ciCtO@V?!JU) ze)=wRde%eKV}T$C*cp3RC{RP8VQgn9$%YI-4MlKPsvY7P1}a&+2=+HY=>W$>YM62S zuef!vsCH2ANCL0cHLut(mDpxQ%>FwX99P6JeTv~kk(UxT6BOeVIl&V1-ya^{s*Jg3 z8NMWjA@}>Pq9sde)(NKJ=%=MGXtdTxtNSLW$WqMKapSAuEDB}`zzIAvO2G* z^51d~4Y>@3xGM%LS0r}mD4`Wkf{|xNLt!fZ1FZ3>#9>+?_1>w?j<6cw8?+flzqI{_ zZ&0i~31+6w%-L?5_S(RHE6u&ap<^_fDWb=2mQ@30LugqqMA>!m&Zl({`n3`^xQ+sR zOe-FHGV&Cpo8XMco6Kn@O?+_8dWl}C1Q5y1h}ClQ6L*-MTxNT2OX#d0i#`#&)K=rH znUsMl@q$Mm=x=Oh-K4U%l66ta@PYykiQgS@#f(TjVNW&#>8QWY6E+CY9 zLzTJJOhEuDzVD`lTI(2nkDnqwYXv6I*nVQp+u>96@})YRDdKfYKG*0@D8K^T%Kf~R zXRv7$yg6M``@7f0Ei*VX5JX{%98yK4(orjb&IM2~RLg>}1C8D@kyPIfX+QO7gQnyz zw~DS5zqFZQO~NHSXOB5UoiMM7Q_!kY9w&C&`JH75lgYS)0iP|zU?WIO;9l`%$0PkR@1 z9W)^{P$U%~?@d6*EA0xnIs&fw#!j+|z9IhyOPVp_E{5T^9cmQA95fH7afhGa|Gq8k zbW3u{wYU{3v zKj4~NC&Ti6*oX6mw~2ARmz8Xf@C1x0SPtACYPhiSCrtUjq8ZKO4U{rPLcgR`X3yO< zg%^=zYUae#>1X&fxGDe0KL0!TD5V=u;_KZv{Tix68ufKlJfNc9qfHw|q9HCH-Z8yM zjm?r&zqStIDphH+*9~TNP3qru1y?T+%+>fumPH)}ZNU2R?-YW|1|2km*Z$F~5BVty zU!9a1TnD=oV{Wc*bIm=Q@JC?NwLbQRQ}xuK>r)z$zv<56YN*))1eP7sS>rV7tI#-% zg#bsK%yHH=#Sm;{Q?Xk6Y$tleD}Dj!an5p9>5_V8ZlhGQN__>@bHMEy9j~Ne(hM6tR9d%v(VM;k#i=$ynNTBklO8Q`Qs?KSc~btmsVR z&#HM|hMZ#*mg4pyz+GLUH*awK*4AQn{$k3?$f>{P!71YN2?I)$2cI zUKM>>hnpp3rNG3p^z3>*<-2Xsx>*Jb!zHaoIBYg-EE5O+eCPzvbFtYU7B&mQ}&Vu=>pn zY&B2#GH1bOjL2J>y2}(P>rYG@;tXWf)VpGs9T|Lo%}VHm!rQ#G?f%CNtXq;5e<^}+ zMQ~)LKm-t8itvEoMoLW+XB(TR(PoL(wqYNF@y8;L0b7>hN&pn;Ed^EhZ$vnuBszh8G1RP zcX#_PH%7QR9k}vo=AO`KN+P=D9PQf1G8 zJA0sMHFGJmUpl;1(}82*4#&MAOvY~8&PEgGt!9)K3&Nf;>>~hQD-o-Bzwgn$%Iny( zYhlLE0CKAhJ1z9r$suRM0hs4&SGhLKLRTaweM^A6MR}LJ1QNYMv~jkDOJfLT(1?cZ zTLpR6sg4)mf*A{OyS_92o^ek_@15!Qv~~H=cTs&=zjRriM(9KBO01OClVmp!5cHYW zYGXp`&p-}JKpL#4I|(|Er|^d4-Zn)GSVDmHgUj%}nl)XR=iuor%O@mS_iN7;SPen0aQpj_PuZW}LIR0%CUT|rwcRG${p*L@&`2c{g&q)T=^HD_Et z)_K{J$EBK+235W@7SmSsY#Jc{W1OC*a<)F)O2nhgqzp)QhUgTg1vq@{Kltx`a1ODg z4)9~HGkkMVbr*9?24A!+Z+P^QI9ptk8ThI$1L7T5*b`E1!48dBu;1${80&wxPZW{& zIj+k2L@^Ew7=L2aZe_qdffzRRtr$>7!$BksUB?yk4_q~m*}nB~;wpIWcaVE8AV8bY zb4MKogS&0CIrM%QO;&``&?$(rS{ia z-d2momZ>L0!fO3&1KIR#G@IFV2xNZ_g(l&>+Xz^GYV)r@_U1|5UPazYVZZc><(SKJ zQcxnRp=-r?m#$0zx-|3e8YM7^S@rI^9MKkfga7OZbB#MQyU|s zrFuc(x9}FO9jCicCnXcstPrQVBtNDt>Dy%9gyS)s6a8CXVjI*DTHA<+JJCcp}`Drs*KGAWGt_GK= z_4Ugd3ihYI{jI9NF#Qh9Lq2c#u-`v^KUhfP8hghzW}YNtpxK|hF2^#1w8Mo)`QKY? zNh|a?Moo}+=k^hF4@ennsUMU37etbq7!%@f@H%dvGRellN;mlo*`{Otu~fG4to`4) zlsYwP>x0+H`;SYsHSs=nW^~~Kzjc^CqAi{0!^>KCNSfA6ExKo|E|Ue%-=&CU0u=Ff z3B=Rufcs29#d$wnEwaXiK_l|v{u+zD$Z$KY<8;UL*Ci9 z#h(?yB4Y}^yVC{vIdSg&jpC+>0L$m`492E_R5rSeB64Adhz8!`HWM??G{nfz0}?j> zr7Xiurv8L$9sCKES4Y-Hho&E}HjePVOBI1?p1s=$ea7qVPcP@ma-Uyo-`jNsq zRAGyCzjOBsbD|~kiGE-ZI~A;u0;}}uS5Bje z0cWPLl6fHQCSZ#amJr^Em-z%RU?6WX>_Sc@OgwonXu~ql6tXPx3>h`cYpNkVehXT`r_Eq;)t8WQ@h>ty&jT{-INq>6}R9KQ8 zm$9N~t=oIE;kqeQyFzVk(*ZGN?6Up43-t64rZj^buUv6;)(i7p{XdT+;ByF&cltMh zr~Nj)bD9GTH8Oz7)2JmaRCzFI?Z*r4WzXE0L(yL*v5!WIyUuGr9I{R>ZE+U|`KM86 z$p@)yD>D8yNxKY`HPxzRd)~*^b^i0XB0E59E9qFt39~drSdG!xEeqz`Dp7~Xy6xzq zxZ8sec^ONv!F4-GzS{f}a2`VBk3N95=N>3^XO;H+dY1X*R^eV+hC4h?>SL^(?sRY$ zy6Y%qOqcZm9sx~2)zF~WyiP;!njk&Wbf*E<1;##)9T;obgk`aU&s+s>n^rq+Rqf!E zXZb(1g+q>AqbG??+yVPuMPSxW5C4a%eQgG*au+gfB->6V zjme_FS32h#-U?MPOIGhgRx>#HzC)}p)3``x$X+}1cnGCr-ogg!&IXeX4jsJv-m7TQ z1I(=|POEHxy^>@ywRlAyInhILZNQ(FNAh3Gd_a6z%+$5shQ-G0-hqt=*uVFegCG)N zj!nefcybX*8~oPjovJ>B}lT{Pw~F z9)ipp8J(@imku+Nve24Q3gH=rAnzfDVc*bAXVB{c?}78u)snD2uLJIcYhi=n)jF$v zR#~290mpn9tC?Gh%6Wq`p=33)H0=?byru){h=`hjn3>c1{bl=(H1gWwI&|{~+-2R!A>1(I&C{&mjSpq>A?HVAo##6Tv)?USMJ? zl)pGfUVf^6{{F$}BUzu$X9?UaZt23l06sNIX6K&Qxl4*TFU;ekc_xAtu#;@0!Awdz zngRqb+q(wdF-T`HAk`5-QJ*OqKzf4VRvgdEIDR;A?7NwTDd!3I;h6|1^du$#CBeZC zP-$OC!}QCyC}T>1uA1dv#$gR=^C-m&JLZk(Bt9U{#(jL3j{bB;N*VYX-Ros9zoMlK z*))u;21d*g8Ji+yhGo$@CaU2fJGPn=Xz>t29GFJ|z#Lcv1jUnv|1*`^C69(V&48OG z@6|o$2GL#P`Y{*Bb*mW29Q*zTJ=p!&3E$orS7CwVYBKkry20u`y94=<=BVVVMSW8Q zjBn*pYarFuVj~nS{#p;>N-jCBt06WH<1dy*L}4DOFC?kQ19e0&ng6d`kRS!be?edB zdrhMugF3Xg_Gg40sA{toH`LJna)NpMI@b%c+=PNv)9;BzL^nUPzLb0NuBt58h9BI0 zw=9(#eN#kXPlmo!n+v@}VxURO!xRxou7B7|4*#Vq?-@>Xnp`ilJl4^_$Ajs}TRcY$+ zC96pVY)KyIV0p8fDl=PJH9JR9Pu}{!Nd{7J=A7xV?=Y)PeCdC?l)8Yfw3Rqmy8`F{ z(>dUqkMr-fMvET{G?w5JcrTajJ_}ro;BhLUGC!;^H=GRuHn5Oj|L!p3L$o!JO*yU% zatk zFaHTBYD52bkacuD915<)qPa~IxnbV{Hgj~K{tluxS~qcWPbleRB{IX!*pH2?m8=H7 z3HpXH-0@ta-mS%u#@Kz90+~kTy<$(4)lf$ny6^%wh6m?}e!U#pR|dP)zU=@cv~p6& zRUkFLQe(0Omi6vXzU1xf!S3(zydPa zI>i^}7yI)8Pv61Fk=kUtBm=Mw?v~lN8+6k=lJBkmPAx23O0#3~-Yj1g*VDs^oDSeo zV?G5y?d8t4#S_|E{-(!2lS(Gix=uJ8yg%glzJV!Fw%iau&phC!{InL;p56WaQBaiq zK`$cDm(idtegS!(U_GMSWIlXaJ4!Yx{m|R>cf*W#>r$Lp@Q~(z=Xb zH_71`^0(K5%V zaO~9pEfs6d0=Q~ba3;bq)}Y~`UH7)zlVHA;3Kk9b{(YjrQI(6i9Y;_CIHpd5I){kO zS=e*0LD5y|@BJiz9$N*|pX;2SHw@HKo{OMa^DuK&-FdGqV7hnCSztgn`T(8UG=npL zFPOD@alQ^H&<#;edlq!64zv2N+L!h;irqwE&!hs~PCFtvfNrFZ{{qs5v~m5okWSD5 zerQ3GHSSd^e>qLr{?C~Y@w2$FBx3w%{3vVl(~vhdwQ1@8G$?Vh$|kG{cYp)<1Y3gp z$mg@{&+J>Gpq8;v&;1Rn_iF06e1*9bJ{Q+V;juc;-E32^ZOV# z%}=8*=6AOJX>6^Dgr=*l;>YtI9&FOq@==L|cq5?@X&%PD@n43+MDu^YLPg)Gt@}~K zqUxylj#e(>9XMKu|edJ8d^LFU6pvy8~=kJi0t{rFkz<+$d!hvm>4mRvhCsX0wSuO z^N$t9tTDDf)i(MJnX1d}YBLwaKpe{-ag5%iy1B=7am)=ZLv>b6v<*fCK-=ZPj^MO` zGeI#Frw;WRj|m{;*2jW;`BOI8@ln$JRPDQJFcM@ z?>Xm?0qY=BVtaNri#9M;8~|E3$Yuu}Jt}i;b3^~6DZS?Pey-lT=pmrYn{-OGDV(#< zS#@%jD*G-Nd~tRWdh$F7qzb65XQ(YYMt>PbcT?3TC5Kf8&9~+|IZQO%$Pcp!m9bCi zOb^{^1{$!3FYPi(tCf5IS~+6Y<(-S-RlPvd&^Y^Cr?bzKI8^l|4 z<##pdVA$IA_~CmyijO|)$bKPtFl@+ChzRR#`A0wD1Ydt%|_=3d36uUkKi_wYd-;lIFtI9yHUQk`*CC z!Re_GAp_lAiGrlqXCl@ZvjETqgQN=C;hOkk>`R0^+PEv+^0zf1RObv1s$1=$aV#7k z2sQY6fc@>-a>ok_6ggcw(;o}u@vRD0S{iuKV(-NQGZO=UrIMXm+zrLutOR&$R?-L^ zQCmtHEdG*9ax4u;NH*SgWPBnH&a>t*q#_fS2cB11KTq3BM$)4?jNmtPP zx0?=|i!aJ(X;ky#L8WVr+GjWt?E~Zb9^8K=-9((pJ=SQq8B%?~NHZ29*0%3lwHA6z zNO1oZ&`!G+DyPqUCE~8Lm=tcgr<)VK`#c$_2vCPvl!Nq@$D zrg6^bX^O8h<}AhcGok`aFR4)+v^C7%1`H>Ch(COh#lFC07h-OlYB3l!p6)S7R2N&@ zqN>VzWT6-#hUrQZxY1fA7?H~PdZ|EKes3Pe0wJ2GfUvvg4 zVUjM{I`p7^5>&74KFJuqB$my@lT}VJ3Q2_@K8QYqLsTwpBXLh^e=UuD+=Zr`LvHGtW#)?G(${-P!Er$9A5yNw!aA_f8ya@KogC}|d$5@(xBkW*%=umJbTz_ry7F{t5Ipm+;j*U?L-cHVF#aCG``-`_X1Tt?Q?xd@OP_ zH0=kMf2NPTs}lU4Vvnyq5L>N%kf>w)*P4OY#_JPji-s2Tc5b>KFuA4n`R|K%+TDv1 zxaDYf?e?&92VRDYy;WUFDxd3UJ2maDPtnTyVzTXO=2FK!3xZYhv6L%VIo_Rh!aFS+ z(1_mMujPb8n}?&S)%^89`|eYMcfHaTnVaZf(I1D88mjy zlYboN_(-{AcwYg}^`--fJF5O%doQ2(F_6%nseMBqpX504>v6o$GqMiL(u0@+AQUt-Nq-!&oM7xrpO1E z7+$I6kV_G<{j?Pr>AKJmXQbyj0#a4@!(YO=U8wyGLHVQ-8phc&$d55COvA`29!%bk zbn#=N`bp22**VMDD?jOI)HI<~6K(%Lmsees^cw!iP!<~IJ$M(I{QtOm^LQx#uYY`O z*~(rN*>@pSD2zn5vX@Avg}lo%nYpgt ztNZi4@9+2i{onFxQ*(ak~Lv$-9L-5;+D`Q{` zHva?NaMbZE`;9+2i#xTXmHb?~Vbg*pzPEU`BjSjgNA$jd#NmvN>3d;pKeYxdo6Ev} z_ukrv*}ibH2~#J-@qO{i?}j*uok+HaeyVK=*u=wkgT*k;)N)#4l zdQ*AzZ2q5^d;Q5F(6y+#%CSQ@9j%X5L`_!K{2 z8^IERa&!B9nP;aixW_i+W_7AnRYYI`BSa6W6}`g@`GPq}Kxh4QOWn-PM@H2k1qp zNE^|eoqi_6sz-$JZS>oE1w-{6jEEDu=;_CzmPl;;^_8}gS|+UaDeP zA`bfm6I(8xHM8GyU236T*#f3pScJy3SOtO-WAn}wX=xPlPty-u(d>^Xw4jIjSW8b` z%t^X85IlU@Lf}BnWa`K2ZD;rGl2LtK!%K3LC?Hq!MeqTISW3-mY@DhoF}fLdrbS2_DsEyw$`CVlJKcpiLkA17obBX zU95{`3(KEF)XR`PiLKFW}kIZ${l8RjR-%pDwOwc)>%$ zsht*G8?f1ROBL4q&Yt|pXjut1G(K{jUp{p!It0>h47sc17O?hBl$Bov-CRK5=)(hU z@he)c91=B(R)n)|V_;EU6lSMs582zqaY4L&TM1q4h_j$tEM>1S&LPpysMrdaTXavq z5XzY@Xunhb*WX+faaF8B1{ZKnFlzyk>c@-rBK%np`fp$-c&O>npg82lJA>jyp?TAc zc7r0XVltMQ+*FdoR^dEgl13*W{;A-G?*D(@P*8Rs@#x3Q^34ki_CQLlpADpbgB6#0 zX}9%L;0V37{CaR}*%5_591pCnVwU$q3;I4>RCL_8BG_2^$y0ki@^Fip(HZG{%mYic z*Qt)~*gVYR^2KiQN`b`9L9OR2A1NXje2Z+NtG9=VH~9Ioo{BLV_ASn?#ulwU;z=_H9dj!?dxQn#pj-C9#!D|1<@O|E&ELch@)M8SDM6fAB^B{&?tzU$L03 ziIb?;cxWFSt<%)j6>)hNdN~4C=C4raSKYClhp8b+-Xb5a@|g_T6X6Sj;6-7pUQ_q>)gHZxUaao^nQCW}xnKOLwi0f1R|1&`B%q@$ zq4D3bHjWCjX8(5aT=AlDMf35*_gRqJ!ZV$8x_~=wYXRS3bG4(g+ z@FScWyEy0J&5Y`&5Wdoy|E_bx(Ww0G{ znl`egja|W^I?WnsWT`AnW0r>c@p~kr?(p}cP{@Y0`AL`mX=4a1M7Lj_bA|Q7Yb;Jr z%cPkQ7^OPMg2|8S>rC`!=dH$&4!_6a>BI(>{nUNYi(17r?Nit9%iOO=s{GGdz6}dJ zIy?Q+Y-aPuGUZ2shtVIun|>!YV90pFF*v>$BSJ8@xSVLvIQV zag<)tRx`a{M*pYrkW6yUKAPx&rnY(Yxj3;kvv){6&+6FXGh+*UPY6RNz*%k=l9BrS zX)vYzyHP}of=tO)&*560yz{1&LnSlB9vyA8_&Oien(g|C!wYhQM7-JK$7`JlOjVO- zliSnov3`<#!xTouJ2(YkF1=Jf5pnsvNuPqDqPXCv!Om;^#i7^pdn2U;KdW_h%CpuJDP*Rq zw7lRttux7n%;R|KVDCKPQFow7XJ%4Ksf2wX<4D+DYq23-+iQv`PuRykyl16*FA7S-F6-(NAIT3sHjaZk_FKUSuE7$wmzagADXh#b{-=fZ9)6L#uK2)iph1$SbC+uiwJ-e@6Yk zuVXTj1*&RH6!!MQoxF!7IYzbFR~!yd=-)FH%Xg~b`3U)7#nzX*1@ISKXh6r^Gm{zB z1mtt&i9o07?ignI=y<6z5K{D?dG}-?l`cLW<>maV|g3Ff`?x zN25%g_-glZ($-9J*aUg;<=IgGwS7lCUU7WRS+S6GyXj}4^|Q9$B0ihz_nG#UdaaZd zlI?Ja!r=hD!$E?F!MvSae8rvYliPJzT&XGp-K?1M=k-;-s7E(HBgMVANx?~8uXR{p zn&Yf%uVN@Y)Ynn^=FoJK4{@#S+S~g1)*BN6M8d&F`tqg5+3Lu~>t@omtS4vsyZ3yh z2Cfn!JoL+i#?B_q?fg+{yrLY?xf}bm5#mRG(tK0sW>(zjeOlP>>AA-zu3H9jH#7`U zT}{)@39MmdoJFP8RbfFb5gYQ%)tPoBFE#S8?#vY`&$i4Z_t+j)T56_BZZ}yh?1@oH zSdNpnk>$+{VjsW8Tt)Y)?Z7p#ILlRuM$aL;!jd|WW4tPCQ*Lf%bD=)xvc#TChe6(Q zPbfnrdr3E5AA7jCoD_EUbp{gO<7c_}HBvZCRdVpsuiHSQj}*!y-jC2t3o_Y|4Z?Pv zp?!25BTz;DzBYEx-=0z0^~cz-P5_q4)3=IQBil$k23)NnH3cWA}Ep4 zC8%)|oyD29g$$e;MQm?^$E{)ss^Bo4=VYG#n|}157a!98m8^B|`!pO(#rOYhQ~$R$ z$pJ;upA~x$kE8vT^|T-V4)%$lX{blF2wO(J7cNiz8O`~@dVGLiEsLw7;kXP5H(>ddME&Bm zDSgDPo@@2{s#z*FXqZTp+D%j9K6Q*ZdtWmy0?lX4g~@5WI52cZhU=xIi3 z^^3hTKlgVxrZ_kc0*kvWw5RBNt=eIv4 z&3g7Dto4%TiaD!rMus)(%`%eExZrwLhkBT;nm zG+pH=hzOCTYF|R#lt6{u3FGxt@qdY$lK0O%ZvK$1MdP9-a_4-vgU=nErCKes&U119 zv{a!qLu<$1OF+b{-vFZKlnt6eh{}r{e*)+nKzU!vX?jycRt|x6q0{iG0YGiGuiUY< zg(|BMhWD_8@IF{EpV(Ud$U|d9n{lNb7w%9{?OcYSsF?HYGdAM~=+IF`M4Ric==r2b zn?0u@0iA_vlr`E7BssqYqDu`?s;srRAsWyfSkqG}(98e57jDOEBaiy=CuStQcC+OE zVc^KKr=?(uzCje>K!M@CJ<>(6=Ev3k?yKoY{>4D2iLeTqG^qx;U&VC2cWrMIA-I^A2B$xc&xTNzQwmLcO@&KMlq|B}vm<+MC9^!0$ap+9( zu)XG^tH+D;ER-|8B#J}`b3G)oe+cRR5*V!W1ip~)P>dOZPb&Ui6=C!y6m4-&+b_RP za_r1_(g6Nvd=ma=+`7uYolO{0+qh^*hOw8-VBs4XqWw^};n$#meO$=P8%+kjr={WJ zB`7H0?E!j7wL_*{eE#tb3xn{R!h=|+1X~qRKkcXP2?OPO=bkjRZ3fRbK4OQK3$9M; zlnXTsYR)W2Odi%392*>HzcY!C@{_}euZK$MXI|{BA=HNjPM)OTlP2}F6B$R;*$!i= zc<{64jgAuou05f7MrK~B(ffCizs=?Ov9#@Of(SVw`q(#l?J7f*4WL~J%c>%6l8R~2 z8vfK&cFh3+p`MBAYoWf$?_lu~c**QYF;oB2x!4!eUBkfDpgtYZwtyLO)Bu3d3F3Dk zS1WKHn%S}oh?_W`;lOVC6UlrClDzDD5wQYc!nAl4m-lp!|5y9k83sEk z5F}?mPfZ$b7Gq4CSwlDLFv7>rgIwv_Z=9phuN|mwz#Ycy1|`X9WxVJiVF#Yvy+b<% z_I+ca2ez5zVJTJ&G-Uy~&~Fl$*(kB5(_!(1e^xq@%}{2|@qZVTJzqNVSnI7rZI7Qcq5b7Aei@BpZo24k}0wKU)}o= z-9tKwyS3HK@XW~Hb?C&k=IFtRn5~P^@6nc&j_t6}pam17!~QC31s^!{&rUzAF8{aP zTU39(KnFdWimmODK_k57DZd_P_Wb*iw*=~z`AF)xkx8}I8c+QSx{bYa5QW%BH;A-h zgKc8aNmn7|1|K_3E7MAJ<_I$O$C2rMZ?{i+a3f^Wl;&|nAu*{>sr2Kdh=)!&r|aOO zd4Hyv>*o~ur$=-C!HE=oK4dhwq%kK5GRAN0S+@Vml1v|FAX5Qr$3TR!)iPuTdpDu&mB2j`fTXtc?HlFaY5G*`1>!U? zOGL7&@Sbn94*~6ub2r*Z4r>J+)dONHNXfIx^lk+`SJqlRUY0WP`u^N@|LP0w zm5hkD;s8$FT<4Zvc2aOdJOpHHPW8Ma*@yZ;*@4q!fP2>}+j~DQcVzbwT1;`1vK^b| z$94WhGNHh1QeT0);mmllMh~ei4C~*G{kYckT6AmXN1&m>)&RTIrngBIlpn9~abcDm z*i=D1$5v&RGDo&{bSZLq-1)-X(cArTZ@t85@0Uq*N9=5b{p z)7xe@ROsVj|s) zB}(UA%*a5gws#VQsS;taL;N^Shu|ye?jnwwNsR_e3V)xPENE^3?GVmO)&;V6Wk>2z z&C79ZMFO7F-)Up|f@IHxZ%L?s@)>4s>h@UH49ovoC>H#=1%%G!XrxL-&OrT;Oh05_ zd=aD~kf;mOAKvPO$krkiUq-F@SV+RV=+3Oa+yjRn!>m<1rM=ikFgZ< z@$U6<>A8{eJvPpkvpmq(gqdoV7|5RX`VNgBfR!(%Bl>1FfH@;r2g```S);Z)o;)GW z+>lp1yJt_@bCm8pbOBD)t6^nDtT7z6Qja?9q?T>S1cSB0Bd9(bk~|jW|Gf0;$r{Q| z9cQX{90r+~L(IM*sS8NjJbEGczu>K8WJ`#SZeU1wjFU7bnX`u`8QmgACV>Y%^F9dQ z$?-dxS$AUi<}ZQU6R#v$4J+NfpBb-p^u?zg;pL(6nE8oMC!3U))4m6Y7VO}QBR=>$ ztgi0=N2lDhj-{>5{!@FRhsb6>q}8Pmyfs(5zd5iotFZCv+}#3X^jLwOpT?k6Gndcf z@mO^7cw#30N9;AU%C(UBM&7WBojWG#XS7Va9}%j}Tx1v2m z`+J(+@+cu5iFhE5U&-Y6>1j-MX4+;kF{X5U!h~%?FR}pMGd^S!ILQg1phn=Hv1$XC zG+tCf6*q=>?%t;Sb(rHW<%k}uHbnKF;s+8LN0a41D(5!VU7|;?-6`79NTtFqTH>Zw z&Jtc5=A~=5+X5jY$fNJpNSarCI2O7pNznAXXnEmuP7k^MRqPyIH*u%B_@8&j6F+Kr zCnF+9V6BHCuH^kpKl{hOlKSoUn9;cza`P#kR?Q{c@*(|C5VtJEd>L|D0E`tixIw9F z8pmwlJqHU8Q=!9@@(pfZO7$Zq^EC^v33I1G7FOSrzm;DtMS~Vc;2O{Mv5IYjQf2dn z5}@C$&vs;h_t;06yCu)`J$uG5FN$jc{Y)8X&Ve-s7ctf+YePdT;>9~=^=p4ooa!S&=AYGzjgK(DV=XHBOr0s>*W4P?}~=od!M|d3)Fl^9@L}#%;J-u zepwh>?fu!v@e7(t_QbDsKO=2lGhTo+7x3+qzYOX}4|yH)tX4-nS;g<$#N=^3n;D12!oKd(ULTw1Lj<$N2nGMEIwPvcpUmRkJgHNQSrYyB$t5H2 z3Z}-MPvGoJ5s%(*ts*xw@Qd~)1Qj(0+40ssxftua=m>LA#;Cv&Aa2qmm1@7Hth<8!YxITNkFUl z7ULBGuT*8sfr+!;2SI1>`^PZ3?0!6T^js16usdwAXe*qt$icAG>h$!Nq(UDVj=Bokb@w8(#gVd|XEH z`;KnNK0m?nDJ|N(*mPi-))i*hU{ZZL;8t?mzqXi*OCGZAi*^5sl9u!I?RJb7-!itp zRVk4!eca~#<*cBgL1*YuuB} z(U8!q9lB>GbCS56=$I$**Csw$G`(NWqMf*-U%^_sbG^8)K=u3S7#v?rb$LXR=tt7W z!1zXG zH2Fehr}^k1xRv=7cv~{P!_a`25r)5R?aMeJk2r1W&p}7KF<@soZoyPzdaC_F=g}Ce z%ttp{bAsZmBJ-sC-`9T&HUmP4oy$amca37couXLBELLy2-QG@WhQ1g^9T%;y=@dss zNa;IMvpzdS_%(?oiElRC4;Ok*{|EbE4#o8%Tn8=ZR$l5D)C`OnDEX?}Egh5Wxmy@t z()_7ixN!0L&u8ZQ?(n;??>O%>iq(O>yd{4Hb0t2ru|D5B2XTD`yIk_l$J%_g4d7frtP&Zo-^OIB zRzuHvu{PG|Ti12$u#O2|eKOoE46fbP8O(EjjQ{jV9quRHRyMSKkGh^c<6$yC>E>8q zsg<|Cgw_*5A#OPZ?Z<{04qehY@eu#{kt00cm@=X*iev*jA66m3?+Q5QA4-__wBTKv zKYtzBc10zCr7GbKLN>y{GW<%Yq6{sRU!2NfwrbHFYshL77--6~2{~7cBe}UVWqXxE z!??(N4Y&i-EKh52>~_fCOqdTqK`nZ@&|A7+AoP8W@Z@``87RnJ;5nmPRE_&LrW3Kj7bC z-hfvUS4_j4!@kk}<~%}j+~~~GWbVQ+MXCN?MY^>-N^I=!Xw@|)Tl$_QYuVS_*Y=#` zHvKJu&c(2DiR4yUHlYLTLgYmIn`W|=3T-5I&{g*>V6DWXKXC-G#Q`iweC$C;zTz$~ zyJ)b+R9~bwT$$e%wNW3a$a<50jYz5f#kM3@hLw3R znW@?hs%jc@)BT?50Pj+D4Zc0=VuUBa5g=T1Fw z2F1&|QeW03rKXlGUH*Jvix=G4Yq|U9gZcQEJzV$q&Aq+U1dMZ_TaIj1^-q!kZ-bpa z6dID8fh?}ux=bLA?1|LJwO=iql!x;JLt4a~5ri4i zvMo9Dx~}b%QOLCJOsz$m=DJNl=cfn{@MyqWqgs<6Nzn2bS3r?8JMndUfV2b;5pE4w z`}{Cie*u%ja6Sj59&)pSwvZYa9&laQ(nJVgu>k@ubi55&11Xze?U84C%XQRxPx6FS zt#J3=dG33*qpe_mU0`<^26tGN6yC-e{fGTc)minkZK=@zN`G# zO%Xfce7%d(^GAny!(GfL?X6cm6x1$e!*anUh2jEcHw?7$9Anq}#S{>S{ygi39*>lpSYJv=&~=$3%yVi_OAd z_j`3XCEjZl@{`G`jSlN>gzSW+3naTwtzU&pqs5S(eH^LI-(?h1ofc)vSI|vHDdo8U z&UZAj&4=#pC5tuKJJ4k2x6(%=v{HW!u%6N$AJ9t*SnKjAICfpo?m!(!Ps)$PrB2AA zsdaibK@L4fOVyvH&7x-#_s2EfxW0QZI15;?0>6wug2WgAbgb4c0Nc~fIZV!mM!yge zFp6o|0ltM}JG?03lWpr${qKg`h*dkKMIY_iX%o|SD8A&R~=78K~7Hr$Z{+WEZyqE0aF%<7UQUw=DE-|%6GzusMFn=vw-F--PF3{NT< z|1nhK<=G7D*e)|!H?7&8UGA8jzE*^JzlwiJR5GjG9+G*vir&IeM-RaxHk?z-Q^Ml;LxUYJ@>wZBdFUY#n-Vt_{lJ_b)u9AOku@t6O1gD|ZHi6XWJd z0yYD8{@~#e=&Ui;fxV3cE()m8Te7G2DDnoRnVVK}n%+u;ZiVLFRAdWyt%zb$kd$8h zA*AQlE)0X}{{WGQc>^w@B^Cf%LF!il-Zt&1+O)f_HJ(fN&t#0(xw*?YRwU#E!q%<( zb`?fDe5=adkg5!2^l*gR!!MV>{!niIo6e0T+oQFaVHxUVs>vf?R_aD7L?V!Ks09!q zxUX`A@F~#QdTfi%#MbvUPeV6Ow3n^bFSiH!R z)dKnuLW+z}B-NbBKy(-}!7o?|B|Vmo^ksQ-WpN=tmF}6dr7!JE+xRn8H?19H!={ds z>x2|}IBh;$76BWUy$GTf=<_J~v4AN_cx`Rb{qX+&TqSJ7B*4M?H-zNp` z-NqH}?c9u5Ob(8IO6;&_|E(20LEM{ZHfcw}M@9*(d8EaMgQn3?$|HCvX|CNHLeYse$9~qzV|Dp3EC7S_R~B0V(~P+9`B- znRw_)>Zep{I^`tWNW6H*K@XIVsYyXp7bUnNmp@oU(!ou(Fk= zY~L}HE#OR3jNNZ@c~Q#2IyyjJHVeh`nPWyI)m$sH#v0Wth0+G!7b0$y#M6*3{^1$W zpP&uhpKWNoqsb^)HKPreJk025>Y)>}STJD0F;;uOBfvVBHT55m1o2_!Fi(8guIPt8 z#-DJw^IM-bQLdqL-BN4O8J_mcOTFf<&GQrXu17ff5Jzh&hABz4uM{75CDt+HMNrn4 z*x&z!Y!uJIYU}yt>d0QzjlF%dUu_+--#}tuvO-dcTjs4MkEjT@r;2qnn!0(zXxk_8 zr9Cfv=C$}Ybrj)czD|L4dhT~5nD)~J86qyP`|Q;ieCqaKy)TX+AEeXtz~lH^iCj@@ zP7lKqiPejz16NxlYB55cdk7!nbO6LJe1o|4Jt(X>$2?VIxqjx-dg30vu0otIcob$3Y$iP@ksJT@G;vN4yD&o&W&~_-hdbWt zm6kddpsyQF0di4Xf)~mB`ZPa4#NIVo@5U^R+~weWiw5;$L{iSSk$vNl;@4^ z&w}zda0kkefB0H&qogdy(M3dig0YINI4Tu;OwyoGo<%f#z<{3YRdFmZ(M#0p#rT+K zGqK&Qw~zA0$OZemOL=^TRNLIXt_K`5^top;s6;$F(8Hz2cTRprWGZ}r*@urUsOe!b^LXMLySJ5jsoUjc9EL~F;8_vwccBZ!e! z1I6T!0gLP3O}uW8-~Xf)?pQkzl|{-p6~5^)2RDa_puy+Vo2K#6A0)lm2tdfCbn0t zB5D8<^RxnH3+D3Z^6}^;V$n4c z#4~Ci^D}8t7)y!@oB~O?K6d`NZ=UeQ!r+RFa0=^)jAc|o5+6rM+n-k98y^~qTU<66 zBs2Hv!i0^fJq;?}ct(`LrQpan5gv1QKA&=Li0F@$mXFXZP2YHF1hkWP{zcNY?Hm>D(uY5^u0kbAfxHn35*B>@iOgJ`MF75j zkm<#@eE+)%#aaJ-99-m0RZwE!dlC;Q1SxOpS41*oq}9^^iK^Yoq>ObyX8XzZk%%I{ zKOmt*6FIPH7-b6!0_^J+qH=|vtA)zvFxBJ;6sH;%vPe(;(eK*()&_OvojSQgbR zOxw|X{vSpsWTV&z{oQ;uhNp^sZ{is3LFMHA^R2YB5vBSm|`J z!Sx`Wlzf*5^W|c5U6paP&Ua=7$4i8u0?&l635WPqsoDoo5B16i4o6E2mT_WF08x`; zfxdR)dK2^|R>b2yPowz-9*}@+}_t2q*+o_G=+{IWaj?P^9MSingr5;hrFbTc1)v^3eJUu0R_Aa6B zpc>;K|IBUmIjm0E2mZdfx9>CjjHZ%tdoJ;_=DP;^Rl)+^2KAbZYCa?2n{$wV`=L}1 zB?LHe`Y&#`0&sEk0AdYvGtA8I5V-Ynww+bujn-WN)Do+`;DT%B+^EhbWW)YI6lHCV zvPRLYQTU&pfUxxJTW$`bD}rjN&thtf+wX%&?k3=bO!#09e`ehLgHB^|SMwz>WdMSs z$Y!>RSpV%J&zRf;s6-}aM}Bg^`>H9Pey5?@vhwro+-s(bX_^Mt$@-0}Nq6$zXp1M6QSpZbRc?Do z^g@7_3B(OJJv}#A#R10eqi<^rrY4fdj^L zwpwnEe`8NyQ(9$+!O|zx=1wI18{#;(O`Ds}?y#qaoXE6`_;mx_C)cDX=;<>OXEvRE zdp)q-Ar_blOlle?tL5Mt+~dSr-92Y5^LB_bmo&R#FEkZ;i4-{ z(xpx}y<>9oMgt?zwB2cdI)!&(;L{^Cncj*h4~zYmP_uogy~o)CYW}9w{KKoAWV+M& z4{#utS@HcFYxRoB;EgWr#~byuSjr-c5&Hp9g9i7vjK5l{ZqLv?MRI?ca1c>9xfeP- z0WIZ0db891z4%c4e-8xz)fQmZa{`_sb&kI69?6gUb-LfvW&w}v%aUy2>e<8E6%s{1 zcztE4eWbwbTVdw?YZHT~x)-OjGmwX3o=OP4k4nmxL#}_q-xzlVbgdY2d@1G;OgJph za&$VQTAJBZ_UVLJWNs`eXxZ`o2Q}T<%W@-DyVQDyoML*^?bOYc`a`|@X;(0N$#3^P z`&r5^)#sa%Z$mGqVa+LMi#iq~6J~k)@eUSXVuMvTiHA4`U;M@zr+(tByM?e-IXtA-eF&(Kaj4V;LTke>0MF#>#6@m~B( z3aF0f%#dPch*b{a66+NW)aGA#!9tYc8mvT#j21w~JtbKC? zPu*;FyoK!9$DpFCcp6ud&Q{pS;bi}2?aBKQ5MKpEEWC0C7;XTc6eepgs`R~#2(0#` zGO+RMJo$Q-Z1UW}+3!#7{$Q1PfepPF^?t3P`?@+{?Xc7RPqNv3Av!qFj(jwK$ z>BX<wb-eYOGk`Vf(dwraJM% znQvpa1Si*8YMcKJI~yWQcli`JrSK?Pk&=5YNGq2*H2qEmnx3LFO_~f^woRl)Lpavl zrFuHo)e!C7F^mh4`P$kZ(ppgfAa9HSVI}Z4&#i+8KJEdvahtpCtTJ1gI_tQa>16bq z3{W`tfq{zr-&X$%mT{S>ON&>{2BidsFKxdpj5sp;`~|3`E0u0S!W? z+;q<6IoyQ``BRtvG3RDI|hj`MJ#fbvmbtx#hO>6_t>$gJVCk0 zT#UV0a;@UHdZL1fX2%t**fXkSScQQR_uhvqr|N<*XwBhzW+hAq0#mCYzdFI$Ec*uPbcr; zB70ZfN~#FJd$&I)%?82`(~0r&@>IxP8v~Qpgm1D)?8JJz0RL6g_TrXF1J7!I7m4#3 zZTie?ZW+_Bcv6E+ zw-Sj^BFe??hwEl?PY%QOP4>!1+taAhP$p-z9lMbJqvPZw!ky=yR8Kojyu*J;-q4sb zyO*q=e%BCKP$Ib>VtdPUw=my#ph03WF@heV#!6I(3+5Qsiew{uV+G2Lq<-^97_oWag4JT`+Vaz5~}t)x^(X=JzPU=>wi| zA%8T;T9jO-GZk|DEDORV{@%x07C zAc$>Hj${lj>sl#SwuM`4q~@J`jy-$biR`0jj`a3DAYEkn>avNk45}g=A9tE)m@C;t zb*Bb7MA1yV1g4TV*iNK>Pc8lx-|>06W7S%9+fRSwjs~Ow+Z9@uW7IbAZ8x+7@T`6P ztn=oobm_S1TSJV5k_NwU6P&Skt8rQDeN$_a=@nArSo|F64)6t=&d!PAYqkBN9~!aR z$xvmOv{aN;W(lJhr0s`52*g+69hJF(6R+;Q*cFdU23GLuPo zAJgH<7pZj!S&ZZ$kOS$r4zFR3qcSYeF}wK>j|gU!e{vOT zWmk7x(nw96e?`%e+Vb9=-IJzWT)}h`%RarYWG+G8CW=ixA}y8LNp9dQuZDkwHVo^t{@n)qE#GXH_ZJU8IuNfjW zY*ueY#Z_+j&Xx~Lemev6!ES0^m=s?+N$wgLjsVdPD4`+^UJhxwEPvRSTFX`BDNqVT z*XVKk0VvfJ1|Nkl0rPoB+ZRT5>FP(@px$l$)z78zbz_v+oEETe{H?MPG7ZwBV@5t9 z@CbBs6*>th_)atqx_#M8MN^S0e;}22xFMB3$cEiaju#cCy>3FHycPNiTt{7bQ3~); zRo2m|2f1|KE(?Jnyi8zlWR!b_*BZ zf^fYX3?z7H6ac%=;RYLcSzFzaiiDlq-IMzB@lDZn$CTdE@F;fEkBbALkvG=GDccK} z?~B`@EFNV=+O)dR&Ss{VrDtFq$L`!Vc$@iVXO=T#9$v3waZ`D_1}jBpd> zZ?&12?>N2+cdmV_Hf*f=^^J??*uku&)qvvzisAB`rN43>4D;9QF|wOH*7D*gR6g_L zd}GanTV(fJmZb{EHw~#riq9}&ejM{W0eiOEO-dhFIoSkoOEaIt@^3Wu7#`H zko?qS3P+w4eD*B9XPNPUfT<-0M|>Fz7JLwZJFCbhHM{iQ9bA`92?(FleJTdf2Iv=C zX_(U>3l-tx!j3?~fQf8_#JTTihZcR?sD^VBnZZcJe?xiyxrb}XA42Ss?pXQ0HL-?& zt=y_w#Sp-$d->20Q83?)f^&2AdQp((F-|H(3wLIx%bY_o0|_A&y03W_RQ5R$_=TR+ zES0;{j_ptE71LxoZDI$G`xwZqDCh_EnHF9x;uqA3#y03Nt& zYvB{Iy^wf1{E8+?7Y7W#4Dc5YA4D1Db}xTB&SJ-Cghq}{a-NirzN)CP&&`e{J)%RbGWz7b`uzy`R)udK(utc+zXX-VO9_(9*T^jKw~xo4p)JyrW6&i^NH%TxCQ>Gb*qV(- zDZqT-mwOs6V__M8sjdG5&wL~SziXoBykWpoElc;Lb7IqVS^YAzcP0|vNk2`SS{KhE zz1=&y!+Pw@9d-Zb+q>MikYpmM2XpU`GZjsY#O?ez)q&|BQ{^VEs-dZX!w z4vQ8`k)e=ABEAFYXu1LX3C4%5Z(-bPZ`PMwGlpLxkGzo$8gz8GX_{BGT*2<)Q3MP%i>P5>(JQlm z*UXgH@S|u+kmPmoAG!*VNGl*?kN&>4vPc=YyJ*0pu~<%?haA6ag0s`CP^$T^zxPGj zgrmAIk-0p#7Jf97Lob;tFu+jJ?7pTm_SBo@br6Cyp*SA=fiY6*s(k`7z)R7eXPm7D zCMF6Iiy6d{dquj$L#1Vj-V}u==EZ2{__5s6Dbu72F%oxu?O6i zH=7W_*CzZ&3l7i_dd`0oiyujvE(`cCUIv;($J65SBUhAkj|27V7%6?6Wf}Kr1LW3R zi+{=g{qKuiVqszMcAZaZ?B@T+)tQGw`TuQyY}v||BC4@wDJEJd%gDZ@v8E{Vtw>Uq zHe?x!?E98dqY!DCZz5zF`AMS;p9AyXLx{kNbX}=RSV-ari_1(IMA0pXGd? z=j&7+`1{tX_M^x5he)gZr)H1$D_k9FD%yH-&*%n z8IP}j$9Y4i>khA?b@_^wqK6d&ZzK;=$Rorx1wnZtB zQXoDQBx@rMNEuS zqi{SoTm%}sShk5hAXMDDY_qW?7u_p6Xf z)J-#Wa1}>}_4{4JQaXn+oS3~E z-O1bvPcnubAR!X@uvdfA=IX%4gsB411DwvRld%aSOJpK;o>9Qv;kjw8YkdGRU;l>B zdzom#*jk{@>SVAP-~Veth%tjBJWCc&y3FazGF)$H2U!@ymY2) z`1-L^vh`AFeLwHngsr;FAbp@frE2Vki*JqCTtH-+?Y3Zr_swZ#8{@q7Ms=w9i%mZx zn&?D~X%0PBA0TvH9!s}h*nY8W*?a38zKt4rnwRlSzg}{BN?!@xA+gK$W$|=aggVnm z{quPnnSqS1lPu|w>OJ0di@9wN!(TR5Prut)T!Q&szW8+VO<@QpK19BG$W)v2;yC8v z>4@0mp}aRP^qG8*24;(W3axTXAkEwyvMJUo!C$eO6Q3sP zzRiVJgVdQKi4FHSZ>`A}iMf%#uBxv-Fo8?L3bVEC8G?s(`Ss!1&9AR^7k75UkCV=5l2|l&{%rOEP`6jZ-UlmY&^J$ z!}O3cZFwK^n}mp=o=c&oe;>TA&Q`1o+YzbbADpS7U%(Q?ao{Faj!EZqjr2e-QIL>{iL{C!; zoSeBQ`|wm(j%a;(>3^9pgLima=ahF0P3{6ie&?3|cJ%H(05%N5o`d2(V(!t0wvb%k za68wzTRJz+#%*U4;;>s`$x?Cm`|smkx2O`s(|mjaPOo4MFzBk%nW^m5`9QB;yu-WZ zJ1)NO<3?x>4WCce8@xHwjg)#^(!aEzTcB$!XqEaaX@$6G`dh6o9oCs)+&>@qUwZ2ZOjJ?pQjxZ(k#W!LBpJ%C*NwK4ot&)&2X@a5z;hRAEFz7Ut zZCZR{-I)&dgQ#3W-T=mxAP|cOa<0QVHXR9^p(JxK$~=WXU`8I#+FP~oH^3-#kRQAf zE?oN(tjnTa7G1-9WB$(!6S~dd>aZj08cRdI;ghhSc5NK6kd8Z3#cjy(kx~E%jW_mU zxw#TtS+jmG0d@}u3gHK(CjUFRSE6oL{zLiIgZqU{QYKHr1)hW#s0iBs#1%q>nwjni zJ}SpWTWBQ4dnUU4JEwE?Ov-^sU3tWaiWuni2!YJ3E(lY0zoHKS+c-M7}$>`!FC@F?!`(>ZG-?+>_OXAr3oHw6z?A2dN zD6|T-Oj1r2rG;hkUr}3*@ajW0>Zo@lHXL998&rIyA8&%5Fv_+z7qE8(Z=a%>QBxPDkoSqrEBkNSr&n?-57% zt4v1TJ65?pqDwwcajs7l>bD57k7=P@0zwaDr-}-vV^k5DB&KNh3c3=)GYcq7z+~{> zy9)XO>!@Td0bidfpnhOJTV8oa>Cc6)j-=kd3PNPS5hnVK9|$MsAV|eBB9@aoZpP%e z{2-E#%fMlG(`UOPnuWIuhEW2c?L-a@rbKTVx1o7cIO6GPAH#x=&eTDoSSi)eTn^)s zg}5#;jZ)_tdGfXmC(mPl#aX@hO&#>+dop!u{?y?&s7simA-tqr0*$bU zDzbhVz=Z6TQ;se+-?aNM5pd}=_2>9EhlZhZF5RAqB1UeC15@%Mv(?$$0F94Wg#nvP z)MKF;a#4N(u4tOr>21$7fvZ`d=txe)gf(<=k8j=M6^t(KSFUZueownlH!#tNF1@9u zigLz8zT zwE=qB-+@${`qv?c;T_aV(QA+W!ta%!b~r7{%=MQ*v(3)Eyer2ukfm@?b6yI)Qbi@H zBXxlxq?9t9t9X64hFlF!ut-BT90n?`#=PT^J>D4>^gRA1#V$f3 z6L@B?wqUi8tG@|a2oF`oWP45c;@D4VU%ew1?7qJAJC`nn=vnKb+L7b7NL6;EB;scd zQJhsSQ-`uvVq++I5t3ZD1j-|t=U-*O&oxd9HKaK%t4dC&@d&k3vN+(MHw4b^(uKG- z{Do;mN(<5CNl!;&m|3F9&?@uUNv6+#WrcIBb2Nn|6(UaBoT{j?7NF!6eh(u|Rplz7 zZyJX81sL^r5bU$*49j*b#L$=-ZGKwxxkLy$LD7>&R{FIv*u$G=7I<9|F%I_JBhKja zT^>IlwRSg2()VAdj30qJbmiWhXx}0lc!v9{?0ev|N8L#BZ|6Y&(supli@H^9_{;Ns ziOHwQkU z8~WyxXrUAe97XSh4ShKpdvr?{|3PLqid3ZnZkhL=Ul++dcV!l*`7k|lH8dgo&hy{8 zf13KgpO8WoE7P1;`Wd-F?5nREn*oSxs-z9?g}*dS271olV^tgE=t+uwF}}-<U?UU{)n&s`E^~Ta@4w$9n86lM4s;X$gH`>WJM!-ZWl8UNn=`jy z*MY3H0*4!lb5ALEpQa#>)Td}Ei3BFixu^ENai{pVJEYV-E$f=_4ADbrz3RW0j!hJH zK591QWqiF6->D~|#x(6{kAPZR-s}MOww@zrOVtth#%{*|xzupNPR*(_X*YDo8@soJ zq-a!WeJJ}2=q$vaH;mqPjmOJ}AyG2>awZy7O^O1dbIGV}ge~K2jRydq%OIexI!Z2i zIws4{@*R1>H;ap(T61LS&t#q3jZh<9=BoGXI*Tnj$GBeh^Cm`f?Po8yp=;rT;I8w* zibW&-RmAbwim`+Nj2%-W<3(U^GOYCLs((~pHjIbf)aQCdtB5Dxa;~xXkQ0~`F6hcU zU$4y{J3e9CV&cBu+cZC+>>6(M^x4z*StI<73rT-O>wgsfU@|;lZ&PFZh6eX6FXR5- z2J40w`(sBMEQWY0O%djveh+4sX25nhl<7W}Nop+Kmt-d)9|j z{ze?7cD$3%Xn4i1#heZ2pCONC-JdW#jQV_^dux94Aj=#i4D$Trj@;%TPgGP8f0JAc zQXTx@)ikztg?6?6@raVC*M1w+eRr6)uLrSrhj(P6tieR#SHPt5b>!|C!L5Tu`684d zFQ?4y=!ic@kr)R{O~ZI2*^Bt;CuxK|C>yB^DbC591(HW50skrC>^&U$=oD(q zx_ILKt}xO2VyKsJ9gVw9{*q`Jw2&^FDkp7G1%ssvzgKMjy-eJCUo(}v;;3jK zI43=2Et6PzfK&Qgr0`F0;c~Ab@8VG>HeqtZ2dVnB|4a1j%*W3o)H}Zttarv5`N;i^zUoFEw3zu=4Ns@N2$&%z|NbNMXf^U?|4rg-3M zz_ueBr?QdM;z}q?Mai1CX~D1FLq+(DT*7U{0I{sPb@{sk(pLw!mOy*wyMH$HVYez|{7*Pq&LzD6HFXeH-f-JXoS(#YOAaFQ|rU+wtQ@_#-& zxzTrh=L|M!1^qe;62r9}g~#(Q(($T7jEN^aL@ZkxzNOKE%gX8&1* z{lj0JY%CpFJ)hWk?*{rykwO#cbMMiUjcGO_WkcBnRc<4b!;op2cU+(`ro+~yS(J7y ztXY3}h*1)N=pcimpQ?SE_X9W>fEzz0@zePNubU$$a;oU&&+Jp zpDk|GB(fEqvGm0iF-u1dTNt39$|zO$9J4`HK3}MIF^_rd!L$Z&JDM*mnDlJ`_ci$K zTdTiYvKXuud|W1Sw7ypZ%5&Pllq}$Ff013<3eK4xBdZ)>k_FlgEtpS|EE)w8Ycp?W z1bgnE?Du(fgrn-KFc==Yz)3*4DGogVGQSpFvX5hzgRE|fb^kL9uM=W1YCYyfiyQPM zGxB^CrmB7gQu5KsNS-iMV2S0QB>o7@YVl=@7F;Hm-vOhV6K~#NvgWGB7r#Xw8cmg_ z-Wo-fwu*;0>^)T%K&_nlu*evlJv3tH3d__iT0bUID@UWO=ZWcGFDvW1bK}>3&rAB! zw~g-fOaJlP!)y82j*6qygFRt`kp_X&>0|odE{dNY@fR5F(D&IAxP^h+BhyO9OHXy- zL>w23lw9_B#$0W!!Kvs3{!BM2JNS=`F8i95CFM!iLbd!{#2w`~41e>xi!noff}__W z^A_Gnd-{htz;(`Wog>?I{YlqH#;*Z*$*wkSK~!n}UVPn7W|U#b*=!%FZq13)g@L65 zu0{MrM)#o^qaER6=j{jz^Gb6S(9>t}#5C(zPe)m$?5*kE9A4(hr>nG5CL@{6fu8yw zEy0G#)Gu)3y;k4*SW(wBTyl`2_j*&mYB_XY<1e@Q0@sqv9O?Pgz`d*}YhIHFsI|D& zf6z7JYq7xuy!q0%(QoqOW52SIr`hn5Eo=lRzY*Y7`Lneja5OYlaPRb1FfByw<(kP4 z8`k6oqXGXc6%%=Le_#7w0kMZI?27#WoWWQ3Eq>odooB~NuT-QG?9SGJ#9}GW77X$l zY;<-~34G(K*>I9NN5-)W^Lzns-hJAk67$>(uaf!3ap3wysPgK)yTFFk-$p9N3m?mf zIQI4}IE9_0&qg{`C|L6@v!3xs$*7>Fxt}<_vpSn|+U@^2$}t8~-%|ZyG0(-hK>U-m zu6a>vg9VjTxAheFNTA$n*XzjKdZSw}D|B6Bbz5~)C}IDoWi~e*Dy=SVs^;2U7XVhi z5ZeVkI&+`C65|cOvDuYA?$H|svk9F;d()Dj(yYTh1otEwwTijZ-!Ag=zWuDwovRJ3 zUvf9ezclr=Si1~fTUqLjf4j~%@DYg@i8xx+Q#hu-(i*-STftwNy1xTo`kVUcB}+fd z-57>kw-T7V`e$!0l&Y4&7Zl4^*viIT&D7Q#4xxV{UF0gzI|OG7TMEy)$UaP3;ahQd zOEA{uu*&jj1_8hCs3|pQv^8wB&R3<~IFLhc$PTiRSa?==6Th!JE9OMrSPY{ibtKO` zIx{TeE}C%8h!OkLP)30yAi4f;O;VSr`?3an0l26adyl1@Bkp-FL;Pm9F=IGGyhmEf zxCEu13b09DFgs4N?@eu1#tdOwF7y+&&VH4gHq%er z`fU%2k7}%sTH@oI7^9%aBc{he9(!&ZV`-sq9XK)umN1hv5nHGV)ci$x(kLZ=!knmj zI|vpYB7~8`znB41Ijnco%KU5cVT<8yO57C5j3ZFaTJIz7x;j^yaP|c*0T~Ir>HuK~ z_g9eP?Ptm%P`$1JXVV8JF%A{?`J=|glgNP%0I84K6-?Slfl3px{Ti8BDA<9gIiCEF z@qI~<%)#RS`(nR&oZdvAFm~9&eku1k1BdlVpG2pzD;u^ov~WJ!SU?7A+}*3bZj0~j zp;!D--=bRVSTg2ttaa9&s}P}>)i3fZ&)lSVai^`3Z`BU}r0ao?1LD3FFpkb1a)(Th zI!zEBj3hD~;cvs~KjbBSt9UYUu}VN@^>{mbgwlMSyQlsRwDo#K!BI-9ul+DARL$Me z2=koUf9&&hgSn&3U8hR%6L%&#!K0~_+6EcFZtH2TkH;yiuUd)iZ_z=w2envFWa~6_ zUz*hSy(O876m(kcr2ffp+|BjfZ51hHwVpOr*5Q}NJeaD9Zj+7^Pn%p8Pjm>nV%)Rs z(}~|vTx(jjxNiibX};m{Kz-JYhWiWC#wBEVM%^`KXq%Td&ynn?&bp=OM>ga*mmdtj z4aY`di;=nZA=3a*Lz&kZW4JBWXyhOBaiPYYh^MIzRwmYSQPhwmF(*^2w|pjGywfl1 zPZnP(W`;<{@1rO;xNY?$6yBh4^*{DwLPCSYUM$mG@@OJ~J$1xqJ$A}ekciFVZ?X#9 zyGx8geHMt8<7G5A2cl*98E|wUZC-G8+&B=(#`9$C9KLJ}D-0-?x1z#4!g>f{iH$^* z^`3d!m^q#NPGD625x8`a@^qzoJm1Jy%aiG3_Qd%|2+ycN1#< z;vYbQ^HA@q%C7(A@UZ|6pN83vavkIao4C=TR1=^L=AxCyUpc@}X08fFiaus#2uLIZ`;Dym_xOlS3k*@9mB2$FDa^`X{9M zZkx916VE2}gxg6*_**QDKwS~&>cK5FZ$bm)jo+`6vXMT+&)4M#He|X6qWldS0}LV` zh>fI=`x@xJzf%~_cvAKSh;SRjNoz~l^v`64hS}3D3)P~oaWmAP89}?TBKlO(zAMD- zohU2978kDmgR9CH^;h1@mZv2@A69EGJN{hA)mXcQir!JUA{bhB*pMi#G>~?Ya(%x* zn3^t|X7=$*0Cs@AU>2jaXRaa7^v&FR8GoXYNavS424hSxFLQCD&s9HyKau>!BR#QU zpDPTMd^X1c=9nj3n|Y}49LK)G7O9V$-QzjCT{%df%Y4drN1>(v{8L)S*Zrv?+^FPe zPSD8>%lf)WV>y3>Ruo6$uu+^Z2W!N|qF0*~ z^cmuX5F>VTR6)Rz0h>AC$A;bj!Rl8?b#P3uhaeVMMDl*Y+#|^P0puzmmcSpmca^Z9 z+ouKhE3cd56pJm}NMe$gk`V99d*D0`7^AFoeO=n`K4w-$h5I?SVg`5=xL(mR@j!n7 zlse3Ebg}ba?i+$}I${E8{JCn^V~cut2k51uaR-pQFR}l*Wd#HHWp?GP8n~M$bMpRz zTWB$#!qgj8bvK`U(7iD@^Nzj$-Ub06E&2o$T*Fn@vjc6m#546qX1-li8+a68=Kj7f z-eE(zemst$$IZWXuQP)53m5p-p8f&)(bK$)lDccuJ-7CQ|bbI^WqAw6(f3 zvxtl;Pvb35O)lzDv(Sg8ly+}8Dr$=LTGck!cI~c2&+)Np1s9@+2zuw*we=I9cJMQ(h$SZq~apn0=-Om#JpSv5D$D zDK&9PUz{K``|LuX3-3P)yI;bTZ}OkVKt|{`*Wkwf_&>oLorq|#+(!r4z!5gkWHHnM z5Iog=gsfUZoFo_lIWZBbl1BXGT53N=mc0Qq5kETq#8(jebd7YL8@dil6AraDc2$-p zs9$xQj+N0^SNbU@Nf065e6|xws$BDE@t1(*eK?Y0^{>y zayBGS2iEljpf@R<`L99e|J%8Ow*v<$qt?+De&X(&4TX`k9E79R^kiP~o3IUDxpK&# zcqBs8T1Yb#zqU(SKVFK|TNCbnqw%rwgptw9(!)CkB>&Bs#L-_s`@gyYefGw+?V~TG z7hhxtMh_kDQ=iIoQSiSh61EBiaeHgOM#tMSAzJ+7Lz#@~(UazIu$0K*8On7FRzQ3I z*F;A327NgF!>HP+ha2^8r;dt{n#&~qQRd8REc-(4~Aa=sguF>WxiHc|T;KXGen zcEP5CmF($}p%W;sNpOhzOKcB<@|uM47D1EK5zKE3rUg}H{Dh~%1%{IPk%k1uJDuGe z?_^F;RnCxAsUQdQUk;xi9^E8ny>*4;9z9O1yD z#J57-$V!beY~dPbuNe!BVq7wbKQM{Oa8U7j36qgpZXQ+sXSD#sbWFiMz@MN73%q19 zG!(PL^Jo8Q(hlKn6rH2-_7HZ*tqTG$cI+k2YpeIPOJ}0=?*<&`nCnw3T-jelZ8#|G z*+-f%G7!t~=}=mn`x&yqP`+KqD2~G!czSFd;;aBgVv-*J=)~5t4-1 z+zqEeV57JfK0fWE(guR>q6R$Vc)Iq<*Ut4(KeXBU#>3=);@0FLOrK(;0;9@wP2 zEHdl~n$ECMB6;W>00$h3dOn^!uvdX(0TEO^s7Ifj(feg_hjVzH{%FbMZr1g#YZbd@ z9$z!P{LS7vU|)9>ULD~j;y`F-(P5HSm6;=G4p+bAj~a3RX8A3b*#G5J4DlYtS54_W zxJAu-RtRSJ7jyh$-8XO@^T8vhLL!2V>q?Vn)qWX1Z4mXxM4tBd)-bf{V2d`exEfO# zaHzF>`u&ww#?-&K4eFnuSbcA~K=!$bh4!YiqS1$D`FuX{oO;YtuvT?T3}qGJdGD|C zR2h6$+A3AkyedPWjBR6Fo~+&kwz%gjaj|7oTrsdu>*My%!cu({gVK^9Vt_a?5*M6 zNFT38&9KcKBON5m#YXQr*5eAvKVaAHZf1 zW>dUvA@5IQXP+nKK(~KvgM5FD&Ke ztS6%L{PJ9y=xEIyK!e1VgGEF2?-sEAvoXm_AXErP}e z)V0s-Y_-^bQ6HDdcPRS356|ppo>N2-h&nHux+g2HTse5^&(~x6k>@1K3Ay)e(MxSq zG|g%dC+aYh748D-i|>e|S;Z=brGE`jtA9EILKqm$ZCWO=&tlcFuO((`h<{Wjd{pxJ zSa(r#{g=3+=|9L0syg*N9M{qlUjIn;FjAgR7IMps|M(Q>Ur{~o&$Bb9?JG?ta$M|? zLsj#wY!Z2Q{_Wq&+^SugJQGHGV&l$56Gj`7^>JHTi>j)dJ>J&?qvoY-9sJ^l*}Z-X_+7VN9r zNY2{)4AP>XeJkz;%>imHGmq*bH1!*5Ut9C-;6~ZQ5!n%O6|~BqnK4ozH|jK}X3JFN zF&TDP7;#t@XuP8$sld6eL0=4cYh=-AGy^>C`80KhKL#0}r9+X$FPp>>VrXrYspP_v7 zi|1}jUlJ_b9(l|7)DwqzEH07y$+zj)`)JXfyfPR*ZTz-#757Maxf3lVO%{e5L&t&& zbZaF#ab4{hmo_G*6IjgNWGTq^qBKF)BW63ft20RXX3#=ut^Q?m?Q%jT+ST~yecRUH z=c8X1)v>n(HO0naMa;Si&#Pmvhyx$ERY%jgVrS^v78xbo?8*NA^S%?Ob{}C17UN(F9oepwiY}&BBNG?2f?I>G!YufyklgQI{1`#cJ5u^Q(58Juj1b`2^pLU>e#nE zS8{o}6c#3utt^@Hfn^${rS?Q1C+tF_Fw+BC3ak7e z0&c<1fkZ0;itz^rFn<^>12pCCIIqe-rO#uqTSu1vrmlS}+wPo560BL2yE+?g$gwy#=m{pBG;>nNN`u`oYa_8iL z6Ito#es$&+RgOp^wuItaEt;AUDMG&2LfZoTxH4XQ;I|wND5e54zg}llvzWn0QftSa z@l3mjd9ya)M9S@$YJ7BpIQwZU`!cVQ?fXL}?u$qGisH9wTMno5dTs4fKGwDSBRV5` zBos}c@Q@XBr`^mS1e_SQ8cEl=cMqPs;{sh16yt;orat-?t%lQT!T;uydCRYTUi4h8 zapL|)E%THrR?V$YX&DSk+vChVInk+_8=hO;`m{T$0EDP@P3fG$8wodDcPFJQCu=p3 z`tu31xAgJyY#O2CCHk5QIlWK+HuGqK?lrYk`TA|Hg4ddZxOW`c!4uhyy+O7^blKV+ zXZEICYFpwxH$)JIzxe8i%|k{#M?4a&pRfWwA8nm|iGfOxy?e_$*kO#dsIa`(bCg}5 z7xzqz4(Co{-mg_h-7IopM$849vq?p3Nlg4J4<=~*B@7V<@kwMqFuGbn^dt%A*TKQo zb%rPvDLiAKGT_}yco+kzl_Ohv2qE=|VmENo6EdDdpX6W5!VD`*v-;?1C> z$A8|Uj3@sA#hfsLnZYNJU$0|GgO3o!??-N695-FUjSKST?2-~nUZfT*9j?lC`X$qi zD=~VuW|u=*G(QfU?spWkBlPxzM9-XMvzmYKz>k_%9T()0(f7>O|ReIZVQ^VRCS)8_J zbCzgS*bA8{Ht9wXOD!yr9yb!yzC2iSr_1H_sNidj#7o*2Ljoejv}M<}X)@S6`EO3Q zgj!7#p1);-3sCckz@>S6dY&*`JVsV-2TZbnt2Xq!Ajp2=?^UuLJ=lWXI*D22T%aTN zEH!uNyfSR#ia7L=GYGqA=q{{)kzpfoa`(x9OJg9DhhdeF^M(a8q9+q*{?R}zX{AX@ zAt>bGtAk2JX2F)#Wwq1=DXhgS@iIsHGQFP(6KXuvR!3TFa@mk5+KJb0eNsW*&n{HJf zFg{?(wz4QjXoW(605^1GdwCDm)32T z^EI^W_;El-`P{5?=?;~Nsh+I)Dj&2^Mq3^Nr6TR$uh(4q>}mL}Sfa`;Z=zwni9_Mj zibT0{`76ixD@UZv;+}B6P=|PLK{^kXuaUuvY{RhKnE6B?}RkKDDc1Y0anM z2=>b|p;tBBbj;hm6>_KUzm!IH1$q*<&9dl$d-KYXgZc~xLyc8uMw%hDk>7Ye$6cNe zu%!oV#o3Wf?SJ}o(44`_3VbXXN?bQvZwiG`0vgn)-Ed|HC+-z&j@y{+#d?n>7s=@8 zZGzSX)pTIv1Bi+&jiB)9P|Hd{F@^LwZaXScYLl=;*?);+*4Y{YiQU8eKZM->4?04p zzy~t`9QW!8XF*7pgPdO>DzO@&ICHGcM%6NCsoA&W9HYs7F-$5Zu3&N^oX7MkNQKKF zYXWfC24|%Sg9A9a+h9auqY@g-66S2ae%3BrbFK{AE<$!klQEKWdiStV7qNvgQ5F4f z4q6|2xRpwO<|Vu9l(7OjBaH`B$e)omWi2mh##YnuO8tEEy8tqANg>&U-s8c`2-$+ZG!8cTEs_03r4&lui&Ps@T>>apAUZ=c>AL%~l8r z7$mx_w1;expe^rdH@&xAv4{L>f-8~{+!Jw7gBVX%%s{ETa)&qxXSrE36l;P4va zSJOuD(9oe_-kIP~UOL1vmO#iJuyY&sEHn0Bus!N&!HRQk@7GJM2^V*RtD)~a#*CS> zw%wMTJQM6S(D*O&l?WLF!TOP7KX6_V;m&gmw$+aEa%}n}c*3e2>AT91ExX%6H(7QL z`65GzYoUd=L@Dd*{RkOCaRR1;wZ5o#Nec ze@``d*IxOcB)G?I(Q2bQRCdi-(ehgAr3JBnIz0ag-MegmVyk>o(mO@>Wb~zW=ChcU zezKX!5{-J)Hc|x?VA5Oe88PQOIf2(^(dn!u-eU4`fs98*RHGxjkPnQN0^j>lm5+b%fSJm9V3rQ}1=c%}bSN&5DLRe6%$B+83~~8QOoui8 z$mB)u#;PPU^R$pg5Yo|`+$%+hwf>l&k5320$kx`INV z$7f-28(7?x?IG-KgLNFhsYB&p8E4xk5iTAeoOOlG0pE`cU*i`0?DfVEgX^FzbNeOM zj;mX-u^tDtxK~FTlYe0x`F8+^$^+^&--@En0JcSj;8WbhiS3^Z6v*K8M=0SP;M%^4 zcQ=YA)%#axrq>^;50DR7dYMWNkTuQsX&|?GG*5oA8hjb6?|)eb*4KM*NG5l}G=Dn4 zajRZt-A)U7*MRKRxA9Z!p!^YMr*XPRnVMAg#fC7#t<#mF2Z|$uT`@{02a7 z{@x!HG8S3}4STt~KC)%zDO+|xuVAh;y9wVzIX8==zfEGU%mJzl9*&3x zHA(yD2<`#)ye6OXf%FS^uV5H)Gvw30tUOK?WT({hA6;4G`{@K?9VYq2aME_k(9j1` z2$1UpwU9a5>r?K(F-713x)KzX4z0;k0kPyjyH5;7Vkbchie`epkewR>(OC*!x{6M2Ciwa%L2aW{>rH9IO&zAaO)csk)*p6+ z>Kq}CBZU1a-Kn04( zb7@;Ghq(=swbg3%b#<)`%A%jIKbaUG5L>c;`*ipw zP)xy*E8d3ij$?KMBh5{&&)NStxCBeYDIwGzLOEnNgSCOTUET(64%DVWa8}uTh-%jb zwBW@`W_2mkZ;mlE%gCGGuf;Vl1|x>J5@P(?t16}iJHh=C&W?b!C4(7y?}`SsbX4?y z{M(KF)Y3ouA8^WkM1C75m2*{G*;r*IE_i_O6^hjQEL<30Lv&d|u~ zB<1-LefI0LOG51g{&vErop`odK-vY({0~NnyGD}U{o^KldO=|4H1DCLsI=gYuXCMB z-_P%9ePwqeaBTTVO(n(M>jy{9${UGV#U>TqctxXr_l!>-YCKWAaZbOgqvh4Hof$rz z3M=1zti#St6NGg4F2q%GI0`oc?xdrDQB%mR9MP*Rg!EoOdZ31?cpBlZkcJ_U%0EZP znha99kdh0VwEMRbU5H(FxD6`X-V_#A^|V0*1OY-zm>`P>-qi@5(ri0#Phqz6-ThrU z$JADkf{(`OfY9vSL%6}KponBTY_=Kve_f%2wrS!Qo1ugT{pFdVyd+z8lR22-XbZzTBXl_l02 zTh)NCW+tuG*$m*muY|ipg6YxOOVQG|P5{^sc9&`KFz9VyV3&ns@XUt}koQT@ITF5i z=I1Vp;sMM+KpWxpZ#&&n6P&c!JG{>}S$N;nk^HPnWe1NX_JF>N7Z&tRfP*wJ03JHn zZ#Hk@2dk+;G|FlxFHURAQ@luheLa7`>-eJaa{Whd6N(l;N_j#Np( z)_KR}Y6lrZa)AA`%-#EJmY=e=jyn@u!p?PY#I2^EHCu;8P2%R#M)!b|v(l_kR> zp#2p9R_}d1Q3^?4+po^Px(|`=DF;anY+DaD2s5|>%ANtAEPWv^mXdy^lOhzkYXEmI z0kzG$n`|ASK_@r`I7@-f`%Q{8{CC$~>n4l-R>0@5^AbfIW32n z^WBiwIr5`geBU^pKW_kiU`Q>CnZFBi^#i-4{e&R;$O~fGMx+*E2^QZJrrER(=si^@z#i}*$~lg8U8El`N%EVpmeD3xv-H}u4JkEG-+^A2?GZFL5l*UQjomoF~Wa+;o|&TXAA)|VaUa;ak@g5zUGlC|&m z8`_eC4NCApG#UTyp2A}IUrFq`oid@p(z}khL#>yf)&aaNq`|QvQKG}V_pE%tWkOlK z&K;28cG#CS6p|;Di7K4l4*_^nXV%wllx;-ja@>P04_8ZOKy{b3p*P4{TR_Aw9$Bd6 zlJjrvHZgeok#134#>6)a?#)d7gUtSl|NMX|h}ppMuU%JYN7zTx3BdHo!dXm{XHJ6- zl&nawNv_R5?cITMw?f(lfHqmEesJw{sZQyMijRy72a#R|L(mvp*?%-ST(f8Wua2cSIe#NVo_CBHW_oo=h^5;??io-kS|T!GIood12xB2 z9ch#GGCs~bC%!E@7?0Ht_GxW+FF0!Ov8ACwG?uJ9>T$fOp>|Kfh*o|NMAQyZ7qzn#&iYs}H13epYoHtv;M+mD|3oG6N3sqz2xQORCG`niD&guytEQ zLUaNMO}JPtBiLHk1IH#@U!R)~pG$aP!x4x9H3`MIGM{8e2n zo_!t|ai}ukb3?N9{^!i#ZAoNby53;q=0N<*;}%jIu?4eMw4B6blrGByY#(M*>&sS! z-Qk=ywQj68VzL9=p$@J9jxr!P7O&7WnP;u1=k;~>wL3=M*q!qtcVgLBwd|-?YSD}K zz}?3{n?Pw_{3Hp$4+*EX=6z10_6P)>d;c%LUcx9wz~6&^ROuCJdDQ-9V$k}hi|351 zWMxhzPrjzt6M$ULyoD`~_!pqh0<3C1M>4*83o2dLYq_p{UZIy-{~q;u{t!^fMM=L8 zhv32mX7hyupQ8IOZBJ*hht%;mr8Nz8cjt?5HD?<&P{+RZ$sitH$FMJf8tOMkekRaP zK2|XQsHNd;g4{g1b}6FR5mFxdQ3?$eK|`**=ugumO_t@7bErWK;iN0XN5|zxGNPuq zeuCCH6p6~U-pF|Kc5J>29rJ23z@e4rQ$>^vGizNV8cVD=WfQD1{h5`$w%Yp^sVt2{1sP}31h!eAKAi|cd!BLzG*5KU3 za6u6N5VLN~sSV$;?gu`NTz}HV8fgNcmTe@olrUdau?O#Rvu`AlO{>|QDNe%cL9{0c zG*w-P6CK(q+tuOmPSf3cXDCHb*e1LOqf!lthSQ4wV$&Sq9aGG6Co)l*l1+?9O+JK~ z?T&338=wbSIl@%3C*pjv?e-)`Zzt(Nwa&nW@3N-~_O`w}1bHLy@jCw5PdwW0sB`aR z^#in*eV$@{Z}6nDH3bJde^18uuLLqXL(2>gpl7x$S-GR(A4bgC?5cc%WyPb`G$`y} zxuvjdxcYK)sJBRgJNOattzm!dLee6{W)u1+439`H-6Vn`th$%sx}+|8Z*nq+qqz9= zX*TlOi=H1B~-+`fi}P{-G^cmGD4Koh|5XJTQJHTLrnCPhO58D8W|~$jkaj;ULgd zv#p-Dky8Ty0WuGxcOb%Mk}MBE4Mod!B4d9sUXE~`6L2$cdYTE&pw0=b(Zd%&+YavQ z-ZC8kbH_>$>_f(Y=WbPT# z++f4RM56SwmN)@*Y|JE9L1tIO9mUKl0e?;kw0cgw^sAgcP3!*Z@7*<3YR>G=)=>Y$ z1*KLkVfQMKKSDL)1k`K>FhlRz!k}M>H$1l0H%-ivZ3g&KcuYue@cpnbpCiwRH{VMl zJ7We2X3jm>66B+$Gy)nqjx-Z1*;Y>N*oW^ZYO>Y%ebV8v$guNun7#K%2fmF`$(Y|s zQ07`Pz4MKGLUg5X+Gj$g3Ik{WqRsUB8ti@6$k^;d_X>$fn#S*&v;*bZdo4UWWHsvCGKmFOvbqov_NV?n}G^oDG~KlWR$>&(`*PEk;&FVxKX= z{7!7M$t(DKGVG;Kk}>|`06j@lr-1z4>PrQXVVuEg@cc84Jv>6Vs?;R9s!G&JT_#=` z=SMU4qmSrC4P(A8-%YtCT-@ytEgWu?O6ug9Q_+3YFWbEc%zL|Rx9n6N&_nzF;z-O@ z*jF*b?8&ii1OagSZ;kMl8=X~aint+N(20FE?Yx2B3rwOXyif&#?5xPZC0grsbWO|s z2C6V)Ju1v?=M27sT^$>C)2~Las+g%42aa?(Ofc+mVD9k+A5c;uvre}IU(S&ZHZxsu z))_!{dgCSNdf%f zg(cuLdsC9Q9rRkj3pf zp4^kPe0THG0_i=F4BKvdX3uw_UGwbMayBFcX5w-Y!i*0GV|(NO3h9CgWGnd4UnJ_& zmV{sM{SSy)255>QZ)N4#aBWpl$3=Btfq*o4VYi{7S=uw(TLOHo;vxr+(!C~S4 zZHVPAd-A~*7v3m9-}oZS!o7je2Zc>6ojzfei}*$0*?Q1nbm)(l39qN#1IDfnr=Mh% z>|nR480xWEyYWM(CuXHO9GIPL6A_ZJdgTv^(f1IIYBW7~mpeZo_6&;M?dDGilk6Uj zw(isd&O#Ka`*_HDt{;7tk|fi3kF$2gbtV|#Nxn$f!X_aM#{Dp~1=6_LeK63+Cnbn8Oj9NiEk!^1aD`gB2vN#slNu znIsFg(fI6-^m1|~o9yHcY5Z-3@>Jn_l7#3LQpwo=A?r=Rp?drO@v&t|mTavCS(B6& zDvUK-QOOc9pB5jVQXyn_$eNNROIi#f6*VGT;bhBJMk*qVHEU*!VfJ%=x99o&p8xmx z{#~{Umy2_s^S-}1iKB#C(=Zo6FX;KhY8X1dF0*6h4Dw@eEXXd11q&g+zfH4A) z8GvJtJZgfF_7e%G2A<oC_>J;hE+?gch6-ep3Y7`glXupGgqSkMga+tL#$pvj6H zA9?V)e<7HXJs%Zp5F9j_UEwgUFqhh~W}l4y`2+ln{vaxdPSOnqT;OkwYzI~pC#Wvf z-0mT+ac70@mhqfB+^*XLFIKr;7jais6_x>9iamv-&^1IhMs6XBXS@-;0}|l!3Eubb zaKWV`(*SX3_$+H+GqK3n^bG&UdI?SUb)NJT{yksF$*E@VH2>3IV!>uNE@?0kNb{}* zptgPGx@-+T)O^!-&GMqpX)m=ij4xGTxVtD{;10_(!O=@f)KqUZJO9}yf6>G{&85y* zxGkO5m_Cr*sK0}@Bf$7&X~Fjfn&QiWM~qeC$@d=bRRar)=;1pS&)qyQi6I}WT{3}- z|6eUVBB73^*SKVBq3IiNyIzm0XJM?}W`IR_-k#}_&6x2!h#44BW6qSK86XBH`V@cu z2^K{<1HG0G{0#Qd@UPg|_+6T;ffs_98Ub^0m6t!jzPQD{Qy!RF|03H80%eXGpXSo8 z(1!6!siVqc_a_b!67zqS0FlgCXyU*zg0%6k@obPv@`@O z4TrN&g9u_;CFuIMPv_l+tmHwv_`;vJ^yevaNJHhjZNrkUT~Pc zXr4^nP7ji3bL(ul*1{+apm7BN$O9{@(o|M6Il#L)whN%}+7`g$6Q2sqX_&TE?%{${;WuYo5I7BVsfMeDL|@M}yrj-}fsb%*FK4ZKL-azjeo z$eL{k%Z-y3x+AW1J(kG6-5QpfwL;w$bDdfm;*OyEk2V1XPQHuJYeUB7@jx>;yVTN z-=!)Mn3|{2%zl@+=W^Cv@AoM14HxR@Avtydc@+t7JefbsKHd4;N~m5&#`3F1_21|GGVWN>kl-DsT`7$pKPep`OkWm!VoLYFLbb8XVEC+w^m zpP}c!%@F$cWo*yz*!8P(k|%jO(DItOxv1?^JLz90ugn=Qr&>Z*h5}V*eKfm@)r@6r z^G?R|K2jFiO&b%3B-IW!lV6rG41QKhtTjm9S`Xv_a-C)0B=d9#XmcKX;%#T)Tz`QL z5A?0d7-g2O6AwsX?J=5~XtMonRm?kXVm52zD^za@P9(F5e{=K?Al{Bhyj~9H+Y8lb zRe^&72gfDW*X@a9f$K)|JGO#U*AN4feHs`qay}6A-%1Wm!$_T$99uo}S|LWV;HY48 z$9~f#^x*)cN)71b3ba_#S-HZe*M!re;{DjaTjsuy)!d^rSUgSM&ciL&&F6fPT~9tO zjDN>l&EbV+{uKL-roH7=jx`*V%X`Pdaf%-elOnIh;g?}ZYB(GOpsxWO^fS*xi|e7u z*eSKY0=j#a@k=w4O77bxtujFwDQZK*woYQNuI41e8GzPO&;{-Lig!gUsWQxFklrPQ z0DN_DpczZOYK;U<SHi>@(qJ4mIMs_ zDpkobr))3)H!~WfMF5O%0{Hc`P0rW0GyWwChJ5~+Q`DX0r9AC=>vm3b&RIIUk1RC; zSs((PGpjN5m7z1F2kqASrdzX^MKdMpn=;4)sj(4~$8&Ac1RC0#@`8FPkyMh>+mPjp zciS$$bp^7mJOf!)Fqx(Pl8vTzgLTWi${PToP5k+p>%Qk_c#`XO?^`+K5eH1Ik(p?8 z-g-gB7zut{FlURM1~ySms{CiIOmJP5w*0MQ5~{Hi+ibaiCD$m|%jREjO;XzW(Fdob z&X<4MDQtYQ;`AN<*g#3^%`t_PGxU)QZfn8|T~Savj~}2Y`1eXh+J)NCv%TCeN0)1E z)Wky@RCwFRlIi-c8)q7_8tHJORF8H=962zgN?rL(fT0TMUIJsv8uW_dl<^BxkOax_ zOos3M$yq~w9dqO!dua;|y}qu+Y@98fZ~Q#rQ2#hmrJ~{G5ksRog7yOQaVPKgelS9p z1m2bF^9;F6=;a#T{;TA8%`!Hbnpk^K74=fboLP6u`dkryoT{}X+?*4JUu-d>bi**A z_W7cZK**aD06-Uvenn5520tgEirhRQDXQtXKHX|MG9iBRy@OoxzYI;0STn)H=bN&n z__8itxUk7?t|{&ZJdnf+Q=9i9*kxU;J6tsaJHK`VjsK6Tm+i$WzMF;S2Y*NMD6Z@y z!W>2M(Bmm?FVt*AB45Kw&w zP&C2A=>k2=KeTD`&D6k^-=y_0P$=87D9;Bt zls7V%);UvU2{lZ;XHoEemB@pU@h|K*$hI7!@8X3Zwn{E6l%c zs7e1NlEIhB?A^x)d@XG-6Wk3*P{jRfiH_{VGeCv9q!d-ncbr-LUU#QtT@=4XRH{AK zW2(kS8$MDDx9R#_4mtje!m~xgpZ8Jh;FXMbOos%Q0RCb~yf2R}p006Ri8d>oWN0Xu zE-d`<15vU*d~^3|-Bodz+(Wo!r`-jds5Yvxu5N%PMr0>GJ(op4`4N3BSOXK#rZ)7d z82V$Ce;5PLQ-EAQh2fBauCpi{vJktJ*_<|QKRMl&Vy?D?ChEps{mi*=*2#F4ffq8lli2hV+Yk zy$*;y@4a|nINM#;v-EYcKo?k6!0`1sD&~fqq*V1V%Bjssfs5Y^|KC=wDmR zE=WpBD=qCy4=H?rX=;sm*%2gWoETEE(~O1HG?z^tThoctmP4*ZS#72DrT`D9yAs^% zL$u(lZRDyWP;lFai^UT@*l!T|T!aCfMDl3(|HPbofwwL`7fUeCql0 zOs;z4l#D~|=>UOZl+DmWHjO{J3X7mlL0XK=h#1b^^l2U!u;m@DgUOgfR@7!|(07#6 z@fmx#q99-Qa`+v4z{&@P4R);HEH3s0SL=_;R0U7R>BXW(SGIFnw4#Z@IwoW<`sqV6=em4gk8Kc__Yc2ru<=tpr1yzrwd94T)FZ zUWXF?V?~bys5l|tJaf-I=YCl2Kcza*bftrLd|~`B!uQ6Fg3nIm5+7NjTb3q@{$|5bm8vkxy$W9a~#+l7IbU**;?Z}jir-q!U7PHy# z&smpfH?`;idiMIhTloHf(s4~TPjix|i44EzX-)Bp4=8OIP-+qUex7ex@b4bX1KBi- zXj}12)t;9=p@c^APLr<+?3Du|D%^(42C=I8Q{i2VY_e(8cGe~>&g<$^Y$*O)93(;U zjdp~LiqXfia|GcTHCuFJCNk5Qu<|*_FOSQ=GzsRE^j#K;TNBk`GJqzr!SU#&J2rFIh(bm-+U}#91|T z)Mw-OT8Qyw+N%p*L4u>UhfZR(9^;y>SEq9qyEUfq7ZNZ#_VJ}X66}4q@vA3DrKWF= z4j(&>7Swz# z4W;30D|NJS8>?7V1J!Y5m=99OX{L1PMd}nUT-=53x%?XegUCt3mvEnPD(OpTz`0~P zfEO$NMh$8m?$A@?I2~4gSVaj+K@(MRhshje!47SxxCNK}BFpvcd^$EfYJUedp9==0 zx3h$MxK>Z6KZnLAwO)+#WrpY;bTOe-*6Oy?k63E4 z9NzJOxtOqu8lO}W?AId$Qm2j^xp=G`RB8QR>>glK-qC#^V+y3i9t#RNIr0O^@YB0d zKVIWEikB>r_Il8FWr}=#P1`1qOLD*zsq+Q$16zYx3*dVh_W+~v{*UFlfYfSTW0;qL z8YKme-c8B?jpJ;FfUdSe`kPQy?3EEQDP={5P)@r?mD-3|pn_P$#>FPcB4ONs(BMrwSSw+dw4MyeH;109 zVK}mRw!nPT3DC$=qr@3NKKU=HHX<8ki#Dk6j5hZ{-U@iGuaCpB@1MJ9O4uFaL+-E$ zbSc@mX5b8$ctvDpeuHd;G>=UMOA%!UznXVs%Q!{uVg_k)wy7aVV@6bb5)gTK*?m5N z&I7T(BR95_d*(9EhS?df!aEM;cZn)U4E=6-qNlJP;oj9>GrX9e-BDCS-nG@T-b2sX z#5Xg%88nur`^4(4OAR@me!$Q!l6^krw1<}+))y(8O*K3_LGj-z14!^pLscE1+nA53T@?mcg zW4VnTxZK&~>BcNxF*z#z{xmaXaU~#p=i2EtMzfFIoNvQ+&+eVnN51g`i!LE2HF+tA zKVD}V4YSG3uRq8y9V-p=K{p!^_eML0OFVHqKz|4p;Tyg=^mZTm@GRTB55nVW8J9Vg z0MqmkgToc#(Vm`6U)r$ItR_qK3A3%&Mu&XdI$l0 zxAK22N~>=te2zwXY1fq5kFtHn4+37$cN*EE6<9~wJHl+rVTW|INHto@o}XF!T8n#T zL_)@%|6Pfo9pEO5Bw1^iV7zi`%@U3L_}7}}tdIVQwcBAM9w=ctCx2cn#Kgs1@qAa^ zx0H)Sb?Ktd8($qWsje$dA7ng8>tr3IiHGJH9=l5!wA?Hw8|gGM6Z}s%r9XjO`Qw%? zE}j5CYbXEksh3{j;F_DD1i?q2mj+ z^e}mk>Fneq-X2ALQih;KdxIY<^t*Q!MU|WmC%S1Bu!yqA$yZ%~_#x`qf*tEeC2n{i z=Ndk2yYW=ckL=ckBg6y#yYNibpx;$ew4;yMlNl`@=?t6joQ|`ZgBE2B^xmKaA{-K zF?ee?U|ybn&2wYQY4z#;;GLZ-8OyPGMb&PSykqPyM`R{ZwJ*;#<{Z?0wUztyt`^6v zFD~i=AdL{Dpu`E?OMg;6YQ%ZwM{fjnaYsGn&r}V>so~QY)<)_@9Z=dSrVeZ7ZP8nv z4ahPC*>G1>X!imX69f96UDYN=vP$UN|9gx_R%qlx{vtGZhy6$v2#sa>zP`aj`Rt!< zN;=5NJ>@K?$2X#G@TE@ehQWHoVce8z^k#g#JbLC%bf1BlJHg_n($=cc$YTef=yOIU z8GJ?0R0Zhsd|^U-xfZ8ht0+BKSbq4#ks4H9pMNcO!EB(UP+k2yMcJBGV3Zyg_t{73 zse~=F*zqv5%a83H(PYKEqc=y-CSF79Q6s%;#F$$zOiNw=k}q8 zp3Hn|3O#OzPG%xjxZ5k#eFl;e3E`+oEn_V<*ul5mIyr(}jeh|$9Sm{}X5n=4c(R5Qo7dH-%hswO z?gNMj*<=okTjQq&L9{q>d`Ms!r@M!I{9_C8%OO>pf91rPzLk`bhf;C{l+wDUB+(H^L%xs;g<>9Uu20is|Kln0&ctJb*81i zNDY_B-S7p{ab)t|a?ecX^n;@RD-+RIXo-yEL$7J_bV+e5z}2S8f(`fe;kNZSW+EER zeK?UGK=c~c$U;V`OY@>2{$u28Rs}h}Pxk>U*Ppk3(W_&^?X+w4ZA#%J$Pv1U+e#*a zi7;oM%j3wd#{78l>H0sUexisCq=X!2;#~>}tzOMOk6g6YZc9h$a9(C$0hah|imU($ z72~b*ev%X*wNcxSmcqS%)(W!25A}~G)r{)T@N3T7*hEuT1Xqk7rO~&a-CUT--AIeT zuXVoyT-O{mp0$Oq(YX)!ry#HsScdr*NvB86lqJ?i3XUF0RXmTh#I=!M-hB1n-At@m zCwhR;^74phRZ4hO3CM)=M>{VeE+1dk>;}P6Y#=y0#Fn<7B#Z$B-pkpozc|Pv8}X4h z^VFsnMPI%6@$&h2!k#pF=DtqRSiOCnn3P9b;VKhW&gGan`BOUu-fNo_o!_*J>gDlU zdf$X%pm2cj6Y=*-LX7RerXT_g;G#lT({L3{exv^@# zLe;oo~S?Bt2HExo|%sgv@-Nenmd&G`K+2rQtWK^7F4h+EkQxa zA!DsAQrl7pM!T^byxw&#MVoon;v?D9CZh?nue1;37( ziTcw@v1fy<}$P&xB$+ zZ#5dbZ2R6I*44Q|dErW76TCGnJtW#Il!p1%YAetlzH6)@sd0wHE7)UXnj5|r6(U0t zCA6gmv<9?|Z&v5>eEbl+(?%3_8HdJwB}XngkvV4UW=)mg!uja^BJo@5WU zp*m8izU0#+ocEgkx@zy|JZYJGZ3Ga@7oswwZY}5*ljCqU=v}#v#uI%CZ})RW6_CXA z`6E186o__$rWM}kS~p{Jv!EP5TSykwWSpzDEF>u@&Rltu@Q*-8jWtZ);g<%yilI_W zKGnw(<5@iMk>-=tqPZJmeQg=%(K$h(p^F6qMnA`IW}x1C|9_WXaFk%zz280Em+5r{ zzzcQ*s6xP*Be#wuGT{kE;ty@~uUXGcrz5`*#CZeAVDAcxmWCpmfZ+6*{VB$VTbE`I z%(B>crFt~f^}>-BXWx(gl$5u&0^{%%wU~M{rq7vpjOvpR-P?kKJInY-22e@UzkdoF zPbqz|8?$cXBl}F>rk~w6m@~eqtjuKaXr?2n4Lw4aLhhUIDvO8O8mrM zih!qy`qYf;!9K~HW^wJG)B&o0(73`I?NIBeEbrd~a(sddz;IO+?e8+y;E9U7OVj3i z7eAtU{_==FD_DssBpYGgij!(3oalyZD3k|Gfu7%lR)P#i=YKCjXJQbI)DJaHL94HD zyQg62k9Wc@PsuvDpYN~NzcD?p>l%;2Z&dFKZEM<&lrEDo7KHk@6DQM_^-VtyEFW(~ zf|HJ6ONB>ixOcZPlyfopO1MNLapqMcxyyydYd1~m-VekM_$NeJqdw@a9uj`SF!I*y z5l7fCkEF2_ONAF@%+Wq_A{|}og=d2k5Kw}6DX4riy4_rOobm?sicrUHbsmTiA&_*% zOSPdJt{%(AA}Aa~MO%A4kY{NKcH8?BSfLM%ET*r7@-o3yZ-2|piCF3N;GUF1eWQoX znb_;ika7$aZ#_O!6s6AV8zSZMSO&PKKk({|OF1auu<+je=)$S-PE*~B`lEcNOQ<-( z3W{v%LM)wA6uFmu_y$f{=J()Hb4#2HKiy*DDocO4WRH2C)f3Seb#Iewb0HIr+K9(o z{oR-%m!>&TOkM8U(FmZDgg3b_m+V%_tVc~YLz|}vlN?c1I1?@L1q}D7#6GMxMxKTL zcQyLIg-L?&k+T9G`mML#aH+j`RC&&`XQnM!pXdB_6^`Ww6I(ehrswf1R#I-x7_OEe zgS5=fEts5w@WMZfJ(zZ}Bg25#S%1U)=SfeIEX?gYYuhzP4qXc+v}3Jit?SRqmzOp+ zRtVw4x3wyYB%F24H`Khu2)q9a?JkI&4VL09`F!*-HVPyn0Z+7LqU?v-+gFxzxp-c< zo;$>tAa6AY#Y5kGhg=an_I)hOKUedHN2_g=lqfBY@+5pipAZz^d!w>NXuC2Grx!?K znp&gb2}>`@8&bt_M#(IFlL!cEe|sm z%p~1|zP3+qrH#0t$E+7%1r|9pz6)YptwzxO77RxfR6A*D{?L@}JARXLv1sBUrFJ39 zViSS;DK)my_Do!{cMOe?=*iU8`}}daV8cR(k%;V_#P4>&kxCQ~s@Ic7fv-6>>=1E- z<6wz~;POuPi8cJ46;?7XW)b~b9yW+IS;HME^JH^cl2d15sokN|yV#!50Vl?1T#;D# zUI1#B7Io{-Oh{COd>ZiWyhUmEUb*J;2l}0A#(rG|@JR(!qw&)0R4(r{cMy0zNse$V znV|A;v0i=X3*z>p$*@ripu)>=I;Wzh&Ue8>|_*8+*21SM} zaZH!>`oc`{HD2PoiK>|czwwA@#~-Z8P1J7|&(qMmFf#8%*yc=B4?(LSOC^M@fFehi?%M(C;qB5)tz!+9If(5?2>tq(wf#8Rt2~p#zCOQs7sl zX&m!(L)FFGI8>pF5S0(!hVM5kJhbHhgH?Qd^ zWVp7!lYZV_>LgLr&pe>Ka?(}VuegjMhLJ>XM6*1cSWT#jQS7Yb00daZE8Z@ zc61MnJv1=IVq0bkNx3Yq!bS&)WBHJl#v+GT0D(1Sd@yI289$=bD09+~?NETL5r`Gb zj1oajpOCjJaSR6rc>K{+{Kj$kx3@Bi6Ie#|TjrAqJDf?Z{W5YQ*)V=o5LI4# z6o>c1x33*D{+&mocpx4bO;@D+tE&lNZN298gA;pSFG(%#wPnbvPh=wLi*~xvr?gIu zuZU2OaA}&xQ*H8LeQmZPW>Y;_}AS5!Ct)iNF+GM>#~9@%@u zuN&utG|Dnvf zuI8Be!EBkMc06t5AJ>M7)EFmBdG`k=Oqu6uPKz{gy{S4GPZxV=^8TwsK^9-+L}jvz zII|*Mdo!lLq)x<>vDH*tE=`j4-XRv=!q(&vV;13U6{L2me}?hetq{Nt9BwqcPbr3V zQ>PX>?_TdS?)eV3k~y1<)8&!4rjefL zw?=&4AlYbo#9WuOICBD_L{rJ)n&l;v@^`!4NH$I;UcERG7u+k9s;x+zjlxWx$(AZBUg9OTVDx@?_*IOj_;X zQ6WfXPWQJgrb367c7yfP0otuGGuf!clM1>xp?j7FoLM7?m}vUOJuR8sg=?q{Qu2xW zuO=@dS5P5bQsrIgxJh}p134n!b<}t`nFd+6L@Bo4SQ&cF6&988A3miwkf8OFI9bwn zeOn+$!1vLRg5?ce7R9@lHYJvwdr84mf*_Rb>*>C~(h>x^*1l%I*J~THf<^I5$~LgT zoI)d2=(T{!j@S+yc4zRaL+L$F;UmRGig9JesEcw1d_fMA<|eWvR;WF}`H?o3bIJWy zaE(~>Qr5Md17gunU3l^3VO32m%wd!F-+lSphZM?hf5h84Cy}^yy^%Vq*g~>QM-)2m z(77)`l|$s3i{LKfcb6jN(_z@!AVv5{~t7dmIqms}gyOE=%xH#0%Z*LL$M8O=mT#YI4A>4e@AQ$^KJ91C3R8)x+lpdx;^QBlKZ|`534>Uyrf>F_BZ$`-W zT@HLMgN*)L)fJUO#s}n~qSz#FmTza{rRLOk{+@hawl_P>>ANQE6@yx*v7uV(sKMda zn0?C%UlS&;XiR3iIsaWhQ^^TA5x&WN$Fc6lpaotO;a5Y#uQ0Hi{&Ek^ zp-wB>E^Az8!M_%is4mDoG0k{--8Ej#61wAY)Fg3kDo~&I{JzJ`mRt9|W>jzCd7@9h zFHJ+5au~g@PhBwe{AYN!w@|W_{g!_yk+aeK1vA?H-an5L&VBhvXCn?xC9<}SccReU z5_o1y0VEWzcWMn+P=V?>`@LASOBEJF??T(#Qv;}Ggm;unQV4kqdj>tqtSW#;i4sQM zi}3g}bC=W^`1ec`rz#8GErMp@;sX#F8PE)+ArzZFU2v3RUq6ptA|DORiCF0M5TDDL zSzE~kU6S!9-JU6I5xEsoJHUco-&-D#M~??X($Ia1J_|QfeA^my{07x9P$bM#CUik| zR!Ob5ChO7(=JeOdge1cW#i6t)jV`#%d&oJg3uGKA&?J==Sc&)UMhn>1ysO4JCQT47 zJTl3E8s%mJ`~?iLVs0lP9Ej!k2RU}-5Y%w1LPegGa9<7i8}wV{~lQJ_)Q|| z(W-JZDg6|{dm>8P|QLMPdqsxYoU2dQGoC9_je zc$xPcZ`Qy$p4~FVpblG%k7j~jj(bvwQv;}AQ!Bw^^)Zb|`bANi?@2DqyPT&(&kPbX zl1i^(jNT@=(Q@;a)j2B2aO!mKZp=gDE=URzxv7kpB9^ZnFwO6qx+9|Bj5nTntzuv2 zsf+GK>by-ivw%f#A&&`y>6_yfne-|L1Co^q>5%H(&u)2m_pOX};x<106F zwLT3g6m$)Ak7Y@;^~V0`I@O_5e3EuAw3V^@!XNI%`n@?SS3=9nWco%=;1>x6o^Q&XCzMrR)c6H-WEV!>S;Q zhwR3~Di*;Z_Xv038m85Tl6GTm0y zvGk2u%)4C2Pdk(0F6hRW#E?qykK3L$5w94x3=OH&z6 zs?LIcg^ysnvO?|`G-GXOse#8rvS_D}(~6(;r}1sjIs!4?y}Pz{Lrl=1eV@(+^U&hn z!~(%*L2sS5E8n^K(|$Mh#zo={KIQ zFDpB;bIe9`#=_hq;iOsG_H^r<8-nMYmv=ZxJRH`%z$ttjrgKJdo|!vcr&n~UxJGX( zIr<^=G}vHN_7&}5Uvd5Gi1-sd#l#gw9S6Z*4x=-BS7xf`xJr3CKPpb}NzS~Ozi|Qgs=qK-{+a$J_E>T9#8%a7=RN^ACC4-#mobgc))^Ujz(qwY zRy7ir9uc;_pFwsMttlkjPesBNy^%z!t&hHY6jMlqMG4vm0X|s-%t4 zM4Pp3wAR>h(c2z`<>I2{M5L!WlZ9UX)tkE}wB$I3G<-1bp7i^N|1Y)pdp{&~*it;j zLS2Ug(cq4Y92Yu#1AiGEuwWjukLm!dB&uECQ}~0Y7cBF&Jrp>ZLtjXeyhAvBx(f`= z8YDJn8Kk<5)q{btM-Z^cg;J~NkLkGLjHuiOcy-p8(10^+)U8^pX@xVRpafhz&U6`y zyMu?|#d%y0bN?rSyz5JZ&_)(dnlkt<#)gKgF zVI-tME&)JstRNY}IaT+_+khnOV5%qUvSaWoT@@Yf|zKSHJ6295`5O*j#UjdQe{q z?lw6iajE)nM&5LUdWW%QUU(PiU0OBftUNz|Be|qQWwI}5S2Hi|cz$2E)nWQTF7$LJ z1iN6II#)io|BZG_wio!5Z*3P_);Ro|Fnd*WH!5`&)Uf5rw4a28?`EFF#NJU%Q>0=X zgLRE3>45_O>K+6R6K#9+dM=ZK+Y**e$BEJKoyOrp5685vAOEG@pr^$emh}F`*vg0} zo1aSx9t`fBF^H7o`QL3!2DVs1)vP7B)w)WBwW zpLMO#XY)6ZVmeW=AdtTp&_Q4QK%+r@0X1rh?7f;gq1y-4n3jxiEBD!F^o2{zKy^eS zW3;Xww*`=z1_c{uEAYxUv8u3*6f_q_-i&IZ>fPRkcIjUA@)Ow0SepG*9qUesmd1mU zZH?z+=~JrhZ8-kZl5%`6gE88C7cHY@v<0~#A6*gY;NNoUXvAlH8brhx?3qS=jStsr zi{Y|yw>lQr3suAsA=@k0vi{D$thZO}iY&>^Y$3?e<41Q;6+PL&Jk2AoE`pjL9HVQl zJgD`3y07;{w|uCAk5-~@$;_q5(H|8_?51%g?LB+0hGAdVKVLf%v{!#qKt?koMc%er zOrg;Ad2sIOI<0uCmSN+qhc(TmU;TOgZfv0*?PD+t&lIXxNXL zvpA7MUto@Od<7?ICk9NXX z4_b0#xw~$}UplwE1sgd1j=S*y4NBD?Jx(Jzqrs8aYJ(yo)^D;$ap zE3ck9v?uY+(uxe?q~b1e^HSZc8TlWr)M?kp{n|#+*5P~Z+Sd3|N=$o1CshlLg|qSg zJb>4%+tf%+nS3UAABJ zT2J|sXqHD(7u-2rp{1t=u1F>8#RXY1nB}CG^pyJU0BQ4c)fai5w4CeakHSJ}D;~j~ z&BkY5+~>QjoEn-n*Oi=7-Y`WT>d)3^8yXUvU#uMeSuMW#*6H;PQNL*up^q{~R-pdg zSe-n6gBb6J<7gH_Nm9ScNg978eK&r7$Qt0o8WFBCPF+!BzLphY1}_ z5IE76NPWp*g;9+iq(NazNNvzAv9U?6H|PF~Ebt%R0LgS3JMWN>WJ1k;F6k&1dn=C> znKp>+q4`cCoLH&JSZs`e`J>mX_^C&irl-FK2MI;5@`uc6$aOS4Py?l)+@A%;X}1mC zbU)XUI+=ZC9NoaL!n*qg;q-@#IIP#Mh#q7`i5t<6G~u^8>*p`7F&niWmdFfCOcRvvhGhSFm4!G`D#dQUWWJR8mdIH2-=`P;hN#Wo+_=u+ z_|LM$MT%dWR(M2169up<3^`H=qZh|XOpu#`rXL_4?KY@VXCGTK6!a-chuXWy^v8M^ z^6sO+HN*0!<)|`EH)c%WPX)n!<=L$Ej>9Gf5N2iH;7nY^g)_!;*Oe+Lg}xQ2;R9am zZqCRi&0St78?Wd*00p{wFhB#`GGEu9g1U)8nUOn69QxYda{4QX2k4x*$i1B1+>uHV zcMcTcYBZUc_~V=ZXdWUUg)k(Z+M$ly4lue^qofc!Wo|03Ux`cB?88ObLx;j)5u6|a zl;+&MNIacj<*BR+tg?Y7?(Gj$O$t>)vzWnpZ*cF}xXXJ`+GoUu6?}66;-7G^WhLf+ zU}~^}Ph%%jzfV5wq1L z?)<8zCH)M0`A=_TiCDB_Qa7k7mB5X%KDT$Mo%8!2of$U?;Q;ZDHro23ZA` zgbad-8!ZDEqw6%28<;g4j9p-jC-G$O2}U;W`zy&CN>a#zGB=I4^gflp0}0ULU_b4T zu&(>9(6l~ION**r#J6She!fD#eY5~gfQDmm)RjTWz#R0Srui#4kwJ)3{(jMDj00c_ zfjLM4xV6m@i?Pk9s|dLG$X%atBH^2FA7osF>lucO1<5we4sLyt7EC)3>$CQB$q)qg zOu$D?&T~z#t_Ckdc}bAQZOLUIi=Tkwxh0{PcdNK==ncmD!5YxOF$tngsXANo2TAcavFQFWTe}q1YU2J@R#{t7Mh$BqAk>k@7#kNmXT1CH`I##AS=EqkA*jd^Z zP+KRcQ`ETPM8ZtcjH*zB+I(%@4|u0!OObuM?O#=*E-J1q|vLCMy#2;tiN4UMFppic%A1{Y9E)wsIzRf z&@!nG9aM!=Bfvtxx8J@8FqGj2_>jWKvk@Zxn@y$JS6JSE37HIgXYfw$-uB;R&M59X z4FrTyvb=f3HwioN0;kvBpabCxIE%**rv0-c7Wm3<=Mz20vM|olN;3RN4^@tY8r2V7 zj=25C(a;Es?J$hGlm-~VakDFf>^QkiYxj6RR@X^3k*@D4#Jr828h!Ej_CLfoF|+th zUt#u)(;BhtGA?Mmec8XP@ouAGGQ}!x54(6O*a79++U~$EX%LQpo2}OF&@01X8>sRw z&Yc6FE=Dhkpq5gIl{wQYb-r?a* zrwNp%TvP7rW)oU0{jT6$kq_%@Lc=M8$|)nlKCX1#k-f`$Ko)ABLS+l(Fzkn>w@@&z zCJOd;r6{(47K{FIWk*kWF?VC|QN>f-)P@w`C{g>^gK62gec}0pqsRkR!$M>W$4v)q zE00!UT8>U8-~J!_4)_!o`;Ke30BNDY<8e?9x^D_Smbhy#l-dOc@)8f?H^wwdm__cK z8q&rvhr?fDdX+IxPU6Quvv)5?s6?L?A7=XRF{i#QbA9w~lO;NkAh%*uNUXpT-oo$i zH=}noCDpLg(n_p|p2p~#oY#!-E61MgH9bt#~yUcXF5~9M3V>!%hQ9W_GVE7GxG)5a|#qiHH zTM$JR3#@wDX6`vF674yAz%`O^b#8;e{kH(8+fa#(TvkS;#*yW>Du}a5hC0%_jy}tC zv)%|MUz9~H!8E|T1>J5bsFpLCAz7(0^E|c+DR5#sjeRBxmWHoE07@(mMmOvB5_u_0 zPo{8!on+DJS97@E&vv>YW^!GDLosEO8jdp!_K=O@Y25WQk;knt?5Eav3?Sq(X!0CY zf?VkA*Y5pX3}g==Y54jjHv$k~Ml&5CsxW;vh_iksYD94COe(Z?k|84%rPxe+!{V-i zHk6RYyTB=EMK{}9z$c;nIxxjgW2@j<(da!1^0bJ0ISg`a3LySq!$I#g_NIQ(K=23H zG?w8ni}I05CkP)U9V1=TeE%YyalZ{$!|x_ivUOmtFa^nxLJqwTiFQ)NkO2wX5%c~r z;A;=2!+qXvQ3}Wz$n~XU?M`d^59x$g%CN;0>A9O$L6fLhbC+15K6$J?GqD_3zGR6{Ydla9ik&8?zsU;w8@N zP(IBbVz}^`1lXIQtKnDXgym8(V*^r?)k?sxMw1~Vbt*FsT|wkoYZ4avDgAg_52Xas z;i^EC2a_9nv?2RLSp+s|z7+BZNw!|6K&3WfcA!dH^NQH3<5j^S#+rmU0|=nP9?b5>vX#}IeqUA4TJ2P0t&{( zYfuKkIN9F}RxgrSt${|LHW-S(B>Z#N`@=0U6{!E`u`ImYbg~(cA=%%ofP9{5y=x=C zKEsE}M5VH>|D6n;uhbMN9r0~T=t8y^3_l{|%;V&jLng{TN`uP9rJ#5E&*W7#dC2C9KS+Qhm%a)cbZ^yPfYd5ZC6-4n&@_CXS>haS~5`FVN<`Uk$>lK+Zr>HCjym)=X!(hpsem3A+-90v9Z z##kFqV@0q7nVAB-799V1zUP^!r>ka#0&26ut2TVRB-H#{R4O9DpnmBfpXzE~VgEdf z-AU*$e9_9~CJGz(J~dl~z4*sZYI7c9Slj1+;(DK==H-4)PzyFS;J5r^p^UtH!id0o zh-6)k&i2;4tQ>75GL~ab40`9#jrbm!`7egzzh(7W<5IC|FjpPv@KZucxs~G**``-W zTMh7ATXQadaSHDGaPMtGY|1@{9zfy@K>V!dUqFzF@#WGON3Gv!kAP>EOVq* zAMVC)4*H+bVPE;L$D2aU^W^0F0TTkQuvd4IJyZ-7TRULqZ6o_VN;-~%UIK5?8`gW03fdW@lZ%AVd&JKY^(Z2!cWO2M$etnc!>PnL|(Fe!$+o2ALAkN zXZXSBZo(TBsMZ1usyQ6dL4MFzmBco4=9xj3D+%8ya3y~<awHtNJ zfo91evahU8PgfH_yz8%R&6f08${AWf1bzH|Y~E zuw%XU=Qs`PgfyW6sZ_VMPB{@O?dGSkq$q;iNSw>Fu^2p zpfjL3mVEiwf_-2&VPpY&m5zmzegvL;#cyJgqe4F{{zp5wnj~fu(|4_~!ZPIf-0=PX zE((oXkJhK)QiJpggyzg6cpQQb438eN3LI4_>?Evl-q4QL;jI z^P>)s7kuJZ7B=sY1ZfF#5tb;NH~|_Bx^YI0?QF&nOva~1<yGkzBNmj{d(+7`(ou{qj9`s3`u3~ki6Ys6wXGQd#IUu zY)0EWg=CvtSSg{0^Co~t|qWF3!rWk9i;p{&Srw7B5>{Zf0;n}{3wPl2(^m^`}^X#5Gts$xKVH*-Ej1+x&snj8l4gjGp0}t7b@Mghh7Uc!3szl$!PVCx! zMMATHu?5OH=jwvU7W?DuFnkfeNdkC5rjWo)!b5!730Bqrgld$R4pisJnS2v;QSVHS z4$UUKMV*&<6uW}~vJk0)Y(hdOB578uFieTRg%#rO5k=*oQZrFw{}2w{a^@XYBFXZ3 z?7mnQ81251KaAfI`C%p^rLiR|swEC_!KzeH-QoRX2?;AXSR-aCEYYh=8MU8efrW&r zQS-etZRp4qgdR|DoR5wnsQXOmVKxd=I`u@{V_udr&6Ih>{!YkA&J0Rt-d%HqoQcpM ztB)^vgV^`#D8G-yUi|aswx4}c$w-)E?j$hsDwmxsI??3koZ3dtb_O68z-EMEAd)9T zm+MF$sNq}fdd4^Uh3X2FIO_q?I`FY_EB>9ok-~L#)WCcZB8e~IXXB2|J-#H!woivG z**=AY9R%NeRgIN~?fLj1429pKI%!!`G%W4fhwppNKZ&0l59R`{x;Rya{&7nPGstW9>0+i;K)o^bCGs$`EM9#HuR^jutIEC~LgQHob z3To04KpN8vkfyRNzlnxp04M=c3?4(RQ9qtEx#_)){9!d^72Bf%c4(Dxja?ZAnpoAj z$s#Bc#=n+PW7(2I#X{G8>OZ!XF^@u<_cQw6`*9n%ur&aRJU>2PhU;@W#F3&F^6eD{yxZoTNHf z@UJ#pEAk@N9puncfHeOAo2EKV1uhNgCQTFukp$nA4Vzq{jo4gpY*O!x66+}8ugTu& zf44gkedjvF%Y($^xbS35y^-lnNCSS zcme+L=gjlGd&!&I3Vj;o4#Hbf8R(cduFBEp1Va5$rQ28{iN<4vOevGSmgps;$pV4x zTmeREIai`?Eg~DgubXPh0z$B3=9}k$?7M;%w+h&oN~X{F<^jm}I9?R^y6YI+sYsA% ztj5@epZpf-onl^^UfzY6&A=ClQ6S0)bp0~c8jQr0 z1gMZDmI-N^a?qchkU;>fRAnJ7H#i=e6-5bG)-MERgqcoJy&432iIeV38)f)}?jx_d zTPd+Xb1Zg53i&dPBNon0H$6iY7A zR`UcI3u@@Q0EN0$&8H^cLSBL=kHv;8Q+n;kL*}b;IK|WM`MEI?zB>bs)c7U*Iu$1b_3b*U{(m&j!iivmb(Ve zK2*pHJw3IbJrxjX97eJqbQZ&=u0ThfaQP(S)Z`MB`-bSbA)>kzq#qBQqJ>L~O8DFc zTr3iqXq=BcOyyafWfnT&35Q8`gsb#|M-I6PUv~IB^l9p(=XKY&<%^<{Z^yNZeeMPx zMK>7Wdlx6r`J{BFhzd{5Jmg3|HW3+0W!LhXbloWCjdr0y-j)k&yP0|cwxfe?+hQ82 z(Evg*MMRvQ?S%MtwsNx%M(mc>fHK84dn zy@X0J(C(r`>{;Vs1|@JeeV2_RCehUq-Y8dEgPF;NwaO`)(X^1D?-x~LJ2K@v4p{Qy!0A$f zA}vVPh~Y^NRpJ|vCM*!A`dm0e&E$$3y!=(du~_os=Mt0HTn_S{>$L-*~A8bN%Y3TxV>>Wk)kO{2poLA^^m1}g}Y_w|y;uoLub$<6vd z4z4#-_c`hD>c&&ZcpZHoR)?Xyf!q4M6eaP#z$eOkw~ntNT1V{PA}_zAAek&|!J^im zFv)ncZ9K?&c4CFm=vXE`xnb47*2UDPx)}2lDIaH-*x9Cyp2|&qn0fx#5y4T{mBp;c zW)aRaXiLn81y9!rcI*(xkYEJb$Lt%t{w_p7m~2PJCQvW1ykEnET_lyIlxE4ZdU!d! zb>rtA+Dl-yQiD`@HZ1c+I868MxyfUsAB0mY9;MC8(jGRT6L#znHBl!Zg9qdc_^t{Z8OIa~SIk63+K*GTVHZv% zYmJUqgo6tS(ufxFw1belOw~lie2?ku2ibJmQLhy!A}a}FQD=rsUa}lU-DgBB$XNuO zPOrhQXKV~Lo+*dbi?-IbSf>_P-sK7^eBe5r*==gWO-+v4px8l1Clp?L>%4PR{Z|DCY(Yr_!a3f zI`C2Q>fx4z5?cHG?$-?e*y6RpQkGNoUmNO+B?FYeyG?6-?udfx9|>>Qk@@Shc?WlJ zhfn5!T4}yZjoEHA>l$x}1BCI96b$HK3iqfZv)gdc`z>9i#*wTk$!CU8#}l;raK<>$ z4^x>DEep@-ugQNHYtspadyQDCEnjeqeOo1_1A3--HAtLaS{Je!R?nU#w=7~OYR8i$ z<`dQtEV63w7L}+_(D6AwwWCjdT?K4Pk-A{Kl_o+hDMsw$BO{cXyq!caCO-wU*)%aC zHAsq5&an?KO|4yZ*ihDOid^0vHIm-wFuul`-X5iQmnKY{o4m$T;bog}mdhhGeWxWW zna;(KA|y9O=hS#(t?}ke!$drPb7}qAJIs*zhfzOksry2AN3V)WUAO+gzdgiM?vk_b zsb1Z{r|7!{&DR&*EAsi9Jodfan<$I=Wxpkz@PSonlwQnJIP|=+U0}>?i?e@`P{KzPx%M8G)E?&=NeTPGl4OiAyh1W#i%aNKVrtfSH zX9X0poCc2&uTK_B=aa`TdXRNi-JXSv+#Cs$nSSO%vAuKt%>EY|KH=mqJ|AM0mx7*m zlzKoks|j)~Jw%iaRA0Hp5W^)O0<~XU2m=XWFLiHAtaHf%eXG{z>)6T_G2|Zg2y}Cm z!)8+?TgcU{+0{4-;Sy_>0O!_!YC4BA`N^!tvJ2>6#x(B~7%ZG5NQmIu%4&C9UIs@b zyv~uo-a*;@d6}zsv`G#kpOdQV`4X855jV6Ct-{Exi##LRVtp1V6{XEo^9^o0`T87s z(`j-z{;3@~c+R{EmbD-RZ-23*2d;pJI5jWqyBWKb#t#cV-y|z^PqQ33h98&?tQLKE zWn5Palia0z|NblSJ7Iks)uNTl3IpnEKmu<9JVtT8L%sl41cAA?UeNQrWcPByf*a5cv zMXa`&LGLe=lDz8MHtN?Qm@Q9_lx|k9vI4^wl21e5Fhq=urV(Y`h_;*G>X0XGE@L&} zL&KZp^(hdcGycMj4ZGVLk14-4&JXOcl{_=rA167{yi-H;JX=A#!GV6DHLw*`9yNR? zDDTAj?JtoR6sF39cW(xskiStJb?Rx$@zv{AVdo#Y61vxx+&)FqIt_#xk2&576Etn$ zeTMp-r6kw>>YazS!c z5E=|nGYOv|Z*__DE+`S$C3yS~YnAagdc56Atm&3yO4DXPq30zH6!JXz2>#Q9f?bAZ z-qJ`+ofi?kA$!gX-F^l@k`P}x{LDi}Si(#S^ga#{-uiO*Odk051tZsP3gjWe8Gf^A z{<}Ef5}Z@#jy}bT5Po#&rZeBJ0z^}%tC7+{x+sVLFc(pXpPDu&b@WnAIo?ox@GPz8 z6Sq=fpf_&R^}E9NX0d47hKZNUK)J2E-qJ=yQtE@VK&-J%BKPXg)CiiXG}(vaAO%vog?#kk4J!?MGJA_ zyV=zz>-&Dj6N1?5QiKk8dn!N}q^|9Xwh82yb|=0as8+ocC0^Cp+~5J(r1I`x;O&zm zsAlUv?0QJ_abOP=U_j3x&S(lG28D6KQ2(`nXqjyqF8D5f3sf~;r?bu~kkoznjQ@Sd zr)jP4kBOyyQ4z*g4NJVV(ixviF9Rp`>!u8c$whT&Q&*89qW`pOgRNcCgN4l0x&8Ph)JcnKmV0XcUXoTFsR7O1-X(pc%X0 zjvy}fa34IeVjtf8cse+rOgBes)iSKYGNPA#rm2kd3RC0R@PqeSd%S`*8ikAX<4-rb zr%auYU+k*B9;x~3D)$~~+AT3tA@iNxBUfA$`E1z45iUJP`;rJ(N{tcHxKeN&NETSb zC+WykgrpZ6G`AFqs=2fKA64VcB7|;QH{Ef?{Il~$nEft|)o0}Q=Z9yqD6fM9_RxHv z(+Q5r0q3i(X8DyE)vk<1z)JqEQ+g{SUv;ds7uN#~EGEWOtBrMM*TxiX`1@*q!NLQ` z;oS9qh}&@V&-UVl&b*e@JuS%I#^q_!J`c!;goZ^HEqe)@J_$dnkbNuHq#DN@V0Exl z{Di9zIM<5cTt9|zjQcg~2;INWHd?hpI{IagEy~s~AjfBsXPB^(L=|K$M5^Y=8?DqO z5Y|KUCaa^yuWZM6riTTgQ=`HTqc^&J=#_Eggr!ZjZiyP!o~8jwLt>a+_^7eZTy}qy z?|7*zTOBgxyjqg0q=T9H!R<-fAIu$aP@?_g0)QfMy)|oZKh^cZijeJs1O|@SR_aDP z1|v_N9Lfa0+X)rhkEo~>d|O$tpBGZ(DJ5b>JU7MIs*#jH>>~iQ57zoupyS9_=bh(6 z=z8W{U3c(ZL+939`g@wrfHE_Z-A$jil*``ebEGdnkZ@`Xyi_3@bS%>aW-!lyuMouJl?YjCosvKLwFW*FCXLof9Di4@5Gy5Dt1tB_UIEnAiJao|UT7JNH&MGU^l!e3hpX~9Yo z5I?e^8*5J@%tZczXtbspE}4u`L>kdt=ISr<^92OkA~$4cQY(~7A?B0b{h+pzW~!2w)q_h(H z7a5Wd{Zq)EfL)%9Qh+f@V9GGB(Yw|UE9!J2;w{NB2*w(@TY`3K4sKaEf$GFPwfR;W zM^@&cnoFlZq!^j8^umr&+DrS~g{U9(aBro8WgNV_@_|pLsZ-Tiyh;88@`+G-7F2Lc z`wmt60M!7}Kc960zOM!gY9L1TXU{Z2Qk1Uf;kS@$nGH;xy@~M_+9UpPTcO>y2ZkZNdegFXS_VZ zZ%B^4{>BjRb$PZHAP;)EMbE1l)2XyWaV!_b6S>(((K_vs{l!ED$D(u8A*TEB)aCqb zxi62sHZ ze_%>gjcCNxAxQMWxW$l!=aHrjCVCABLuEoAdF1ZEQ@iG*eFW5qoeU47Xh z?*cFGXWLKM1N)Y`#ct_s^Zoq=KfPrCS6H#ymG2s={2H?(Cd@9hs6?8Eo8r)RO9QEMsKaZs7*~ zZJW`jFy&~+Kl1u-FWDVnCp7tmoi7pBPnqy%kZL*mv2u`g25-AspE;`QajaoU+?$bJvgyc`s#GX z$GXWi-e-LEmk$hD7~${@*Xf!Md)M(-`j=;Zt!%ix+c;E%C|^VO+uS}sAhq6d7FJ!m z7HfMv-QrZ6vx3;<6XH;2OJqoj0L;B>Xp4ykUy)q&s+0Ax zuqPkOIn)P-{q0UOBgU_r6FNh74bG(b3zp|2drpAmfBvWCd7RI2r4GF(c&3~_uc*|h z@yz5CpM{20XOEBjcfdnRcIBs&-rb`ntj?}5@|ktQA(D5?_7o;^Iy3|wH& zvQL;&EeF@B{f`O4<0Nbz*>E{94p^0udlp&n2Way_H#iQ}&=cW;{_u_)+K_f?iDt({ zDWlZ4KV6xZ+BBKgCDO<#-};XzDoWsGCpJQ&qx|5q!wsSg+<+Cnyd-hTfnD4%_ zzMu5C@JdhW+qa_vwsZOZXpc0D52Bxkz1?Di`*_y|mT@uf|CyZ>U)0mE%B21b-gB#+ z*j;y2&Ve-k9YCs4e|H3lt{=@TQZkG4%3f4+s&RC4t?avqrRjXhM+s-MQYXBSn?*6QPE-)q+oScesD z`*Ax1`nGv<SyFlNvg0`RV|C26A?WhsT>HOVZw1mi2RA@}n;Qe720$3aaZ| z*_0W6B+PC6G_vgKzTo+$cgMlepZ@wKXMVm7JSVFdi0=xnTihU$5;j|}Be$y=|6t{H zSl_AQ2j5b$6@Q_}NeK5(sPs~3tETZ0H>97uXLNm@B94O!2!F&=cw$Azk_qN;+rpP6 z&(+|pQ)vpnET_*nrzf_+jx1Mt^k+y%~}4Ob0v;nW4${CG;RWdVBtZ^zt`eO|Z# z-w*u^kmGf+3oi{Pn8fUtjF%!_jNB{cPZM-PO(pYx)a0wi@^P>1J})wU3^fya{&*g) zdb{^=`5jRo#$?_KJc?P&k(fR(pY4RdJ&C=0nst(6@7H;3yok3Ee!)i71QP5bJA#Fx z*+gca6SAA0T>{s1gBZhs-G~BgbIY?TRP>OSvj8FzuS?9yA`}s=!@CR5`^4ZiF|yK5 z+rJhGME{Z@A1=hGp)2`TYl6F_)Wxr52vW>w^_u-=(GX|t?&+J*VtTlYEk3Ks`_fp+g>4TE@ zgB9&ZD=rkjQX8t>qDOVRv8TUSLcWMGjW?obUCTId61T@~$EU#ID>?n0u4=C3g-($H zkb#G$VW82OhxewRWdE8slKP;&zvTnH_-5e}C|b*3GXez+a2+>C!bcKT$U5c$J$=bv zu$91&dODU8IdiDRJKOz8{ra?=5`C5hMzf_A%Hb1+qKcnh)J0vD^%n_NZ+;9{wtPH! z0p8tw`VLzJX|kvyJpFFpH)Wd=P8PPr|ER4Aj14Z_92-o&UW29_qG3lIOTspmOw7y2kcDGEt*qO|yJ|E6B>?-D->4UrbPK zG_j08c1U^Y#kklGPeD#kJh0q)4leNvi{Xw?*TNqw8g6#KwB{k2& zE5zybC*;}Eglss0oV_{PhODiIOk|>Tn1VqJL@=3P2P;g*y3^5~4XAo)lZzoyjFZvY z>?v325zov~4|UkeXzQZ9Oe+p}NP_yoamr*ahQhy5RgSgs%@P~LKwyIA$@bJF2L}&0 zfp}}HgY^0M`Yg#)!rQq?lUKTV_hc$R6AVGuVKB&O<9=P2W!N*i>1C*wJ2G8^U zE+0j-H@V4@JoxED3&*U-O7TXXElTy8!&q3!tDiUCQPdE9XB{N6jiHEew-0jM?os|n z4&Y$Ks%UiKvw&}_ott}itwgek62xj|PC^0Dllz4o*ucB9deaHvtl6y(W}WvVb>ryx zab#1kMG&{<+(J4th1di?yUPy?`WqKWNM>gvw*BuR&z5q?JWGAj7{;FyxhTum>rE~Z z{@NA&z{m+bFre^Yf*kZs?+Me@4|#PG(mhNkH~sz|a%mv<3tP7t;fDpu;pAk(=1oA6 zNg-Lx0;{3znU^xzJ5@gYCFLFG$teEINCX>~QwlhURdvYOX0bX|gD=oBS~R#w;PhFK za_OcBewNgho&!xaTYG?r%yH}Yychho_?IZ+mf`QkoP*{BHDY#v60{>?Ig8p|_@TF; zoqncYS)QNBJZ3?%m?wQ|MKU@no-b1;4sjw=Jg-C0lYu%Rn##=ZLx$ zlZ?-RPvm%XD(V~)JgsAy@9H|HKKxvYP#_)J>9=QL`C-Abeb-H+p1TT*y?qkT>N}9p zn2<}vk-q=Ie{SePJSxIl?Q(8BtFo~_l2YBWKlTNG^O0hB8}0%FG1$eM#qdb&2tvgo zrQ-;v4vAo`E+UgMT1d z)O=$1X8GpX?SR?_D#H@aTYk(r{*GPv{QcRHuZ&)ih)b`4I$jTeUC0>~ScP}A1jKRq z%o9hrCpnZmt52AvAV-XM>hM&fr8Hid7?z-wt^{pdH6savgeKdT>~ftZI)lNgvq&YV zowsIB!~5>wkUSA%_s&)eT_?7R8f)%hQBus8h#d*($v9e zT`(Pu)q}cc9T7yN7e*9U#Bv!38otE(h2?dxR=wj%%`LUM8{0MWQos^DsMCimaVBRygjI0f1s@~TmWZJ6%R{>Gk9-FwQdOuF zbZQ6iI7~mpJAjEhxO{6I`*_lPtnM>9U|&M}C0{R*+$Y zwgvf$796G6O&C~U*k8&LjlO3c@%We?}9jeL?|%d1o$&~LwIj$PWh^#Q=`B} zx$EmLwFx52Q(j13@>$t`P`<#khQ4F`Y>S+J1?dxIGh-dP-TGP~5l{w5ivmSuYTrZA z=mGJ4tql=}r$~o2_`;uSa}S79$pM35JMwTEs0+Uj*jGSj16aDZl(L|kkNb^a7w3~7 zy~o~OE6t~RjjH971*d9uA}>?wlY$g@t!=O<$easOlJ`{`UOJ^aALUw#!qo7a%c2mJ~+eH^+AS z+0P%DFP*o9NsgW5Pt&4XvLj-aRRZP-S5on^2z(CgUAE%Pd-9T<5H*V1k+fT`h2)o) z8_}{Tmp6P~bvp<`+}syxhP}jABsN)XlYgpVrux80xkQ&bcxFN#qTs2K|KHE-cjVhf z?`55Py_49Xhc6k#D&deY9@uA{dPP*f{ik_{3m@j?ia9D)@4R=@9&uUx?fGnPoNm3x z6d6mJ0IJ0c+?3xs=taBSaBvjyu$_KH6!fE3^5K<&ijH zKVJ&cGd{b+cUOt|h=F+IJ}<-ZVOK#QJAVXul3ZZ(MY6&g%3@H{WV8bVKT( zep)W#wV^RDGkOTSfCZ|?k7FecXMcZeu(0jEbqvkxn=btZJo*Fowv8mi0ePpR3)r+P zs7`+;0jZ*p3uj3O!m>)}>$MnIK+zb-cUm|59+8i$W@0cS{E~cB!p#1GV{I((vHM~3 zsnbY63Z(nrtrW1;ai!-brQLeW3$b^}@7tJvG^=Uc*gpnDm%*c`_`3RWdxdYQ-iaSN zHutMdrv~{y^|3pKZm~*|^H9y?JE(;M^v#wL!Kq*oa0y%AUX$!at1#_~dBi{G<>(Zk z-&)bk13JT3OrdePf1E%Lh4M97XK0AyEf`%YSv;cygW$cdXCTL^_Fm-L{!i+K7Vdl( zGl9!`$Q?aB|7xx>_eVv^z&jV{E;9)Ii|VTbnKH%Z6B6Z2mISjw+(Sn%+NM{>TtH)j zqjCxT3q3bw06zdglu9ee}-)Y+dwBdAg_Qe z7oht7R~^&7Qu?(9s#&{ z`1A3N3$UNtf*xjSSd3^NDhSL_Z0(mz*bgxQ*%A%+fQ9@&e3^EGh=~j_bO)~Lx$r9i zZvh11N6f3c_rPwh_YLff+F{b-SqZf{qEc$`?Qhv#D4J|jf22&*#~HCQC;WEAs@^Gn z`xF=`U>)9U4tT-pnEt&#X}!dQ4$P-nOYKRV6Ip(4d6m#`?SF-j|JIt;SH+RBJeQ;U z@%;2pUAr9tqT=vNFN09BzX&Ap(L_NDHVfyyr`9eAxzJ*@*io2IhunYZ98z9<&}P0A zG!SJ=@HmwzSRDCs)e2C1Sg)Fl4bjA^vzpKs-*BAy!dkSxu+niTS$#{;gtIogSDgP6V>}jDoyo|{G|{Fcj%){>g}(8&E4-mO1%**Jyjo_ z=5gj6O3iy9$~!}6`V3IzkZs6Pt+*-b1*SshNz9P4)U`zp=oVe-Q z?Iwh@|E~gXcyZRH07LV8e zDz@vjPdaiy&c?^?=!<&uH}}snb@jSf4?!F2`V0tKeA%7l9f?t8C;aXW=oxPEpUJ=M<%bt~iM_P}D)T+fSl=KYlYMFL}$o5g3N%>}Br zmCpulCOTW|^3nb>>0RRWc2QH|Ee^esLs+p2B&ot)_nyz`j4PS>x9tpiTvUJO5^=MM%UGRsk~{DBJl6rE}h*4T&&NZ zKPe*FU79U)MCF?2R2|?Ryg|*zl{6E^WOLMb#t*5rS@>kK9nzu(X^}o2VEdjmY`M_V z-YfagSmv^JX{@4s&Wzudl901T-nkgGuc@jE?V3%(V9GfwHEw8T&a(af3w&R95Z<16 zlghh9ZJh>fmhI&*%MDX|Hx8w&Q>Yx9rJ6z*vc!3fYVe(d=vQy4N+s5oOIP3TBxo;W zPKgCSZgohtvRk?@vn|a2V`(h|_ZOi)uJI%<2<2(BS}yUfAG9izs3 zU`w9azWF2{*FNbw00~KTgv$s=-tWfdd*op!7R!o(Y4(%ne`qzqCXvP+F&)TV%-0Np zsGhQ0-rmGF=7U3L2|A;sEj`l_rBcz~Bb@QRdNFh zv9qR+d@xSitOcVL-C1Xh_qC(D=POA0WYvS?&%c;99SqnRwH^7YjaXPWd`p3R=(Kbu zPDN>Vw)c&eXDF4~lQpxGn+I!`=5vT5Jf}BPT!E;OBz9EfE$Ye?PQ4A=)o^z`DQW$) zxrd7gD*5_3hFyIe^-|+;JLu_k4OH^ZsBF9}6q`4__^KSt&i@hku&OKrve&~`|I+xm zgH|b$=XPOgXiKz7KjmW~z~hA*)h2ul;CBi!K$$voG{ zYuhFHbxSk6<-kE!caI%D-6-PqtL}^4K-gt|O4cpg_o(tyr8zondw#tZSvyoMN!y2! zMFq3>YO1C>!G|!MR?rLlF=q+sX1lD5(G!*mS#`PQuwXLQLt*onG7`$zfuiqJ8@hJg zYHtLewOFK7xCyXzl>XU}X5n#VnhH+A{uAJ3GOy6X{KnNfs-y(m5(8IG6xoOE3V6C5 z-QqkYQ@bgb$V$He7igfav|`^c?NNlr;K*qJCm!&d!WnqfOa>?-d)KHV^hf`0W?Iy& zyRoq@^4o>xS1889`Wwin7q9Zr)gm;U{w<-7l=zigxk=gFHR;vf7wI>6MZ!%7C)n>$ z#(zcM^2uRxgE*GIg;u}!!DQEL6`dC{&LLR?mC*iq-8RB6jTQc72H}0fS?DC3&yPuA zit<0rL-Q9;_&4LMjbdwGrx8B(&j&4$jBll`CK~rhED96~11+e!A@PN!mTErwrT=M8 zM23q=*z|$$TvIALT9(0_{A@4KDH|6Cc~aWi{C^|E0x>T6bLdRUUDbL7mt1-)wh z%v^(aq{L8Z+NWvzR85p^XK7A0UfQc(aDb9eUw;LbNuo$Kx-`FUrEl}m9kF;Rq;-qI zB~lXMk2^T4h5m*8_ei#yFKYpV7^tturXIh*E{0ok*H$@^#i-{+c9u;iU0_Sd z5q6M7&F_1j$*%)HuqF$G^Z{u+3b@$0&E_5Jwvis>V+FW)6$`q3um6PPi|iZp<5$7m zG^06*;T2c`V_)>)*x!Ly4DAWY?I7xF-u|F}?+PWKWY)XLWuC7~?{JXK4)A|Cdp^>M zzw9M&DOi$1hs@Y!29pAJdA^j-WfP|IPqXuJbt82d*tRL;U?w4vY(mFAsLpdpRVd5w z7CwSbnH^bu?>IW;(RAB`Z)}1PDTQQEXWrzQGxYvJH64*?Gd^uc{u2ZntaJqYWu5+a zv7T3ib%bSzmeNz&^!7+`jq#93739DLzSJ81)m?%wON}l_eIt_tuwB?momPD6l|yWh zDgA$)vm<|ZBeGIAIuP^HyR6D-^kp5-)jN*-e=m}|$lJC^VR(B*G1}apUDz}N;S~1m zvmc~3Y90>ERa{4oY&IN5mwTa`M+IW`f9@lQ8r)8A zkJwHql5zWf@*a_36r1z1cx1WVeKn|2M3|rs!dV+MBNfK}%G&vIbO8W;ka!VE(GjEH zkv$c4hOpiUOlQA9t~^(IEwUfKA3ukrp4+ z{4K^7Qba;7{Hu-D|HV(Esm6$%X6L}{;Xnd7f%ppniy%O|bNDD`Buf1jYqh)M6e{PmTa1u36a%=>Ap`zSSC zKIWOe$E6f9yiI{Z`w!}!Q6|QuuW=aGHmyyZIIS|QPidTb5&|>q-scpI&e-9 zHD&nKl<`!F=lD40^{)s$-j_3-rER2_=p=C9fvMQ}R$dk&^cV`UdUjZ8<;1BSpMJ*( z{Ch4tD+KEND19yKx z>#M!*S+v|2zeBZD;L!yVP)I{jiFas}Hqyj3lUofxp78$?>fJy0U|iF3&`ZA)8)lXU z1dY*dhG*Wj_u3oTcUL9Zgj_iOGlRJNN*ytoQGa9=endEUcMUow%2pDkZKe8B{K1`T zdyeJdOzS--fWJKHo%n=1tM3HQON+(-;jQXQ-wN~?M=@eQTf90R;>H;Ihvv@Bk0SxK z5czZ$(i0%(ukkzm<6pP^&Csn63ASsyofksGd)|VX`*7!!tJss zo&JkXkUQ%R&m(*np4KF)%#87Tz5=z#EF%x6}+5iA=eb5g&2RRyE#XEdhK`S+y}@{5Jhm? z`QQH}(6=V)3Na&6*OO~(2x-jkGEGxBl_m4NZMd=_E_wq}LQc8|OMINR_0{$sUN z)uw9iRaCY1-dj<7wN+I$VsC=lYOkshHLG^*8I)RWQ=vwU5Y!f;NF`}rF-&pfs(+m|@0;AHuO{%vp&N3@LEuv z6e}uD66z(kBucaGxbd@rm!DdBD$9jJKvElacsSsv?1$#`A6;bGu+*6rjCfe+g z9QyVSLef_jAHR(ZOYb~Gw`A~f!zMaWYl2{ZpguK3$`UOVgHyZJOh>?~G90w5a1d#+ z|HWek#3339A&SAaQNOQ~e%q{pc27R9NS)^ z-k>VC--6+M^VFQ|&EjXvw9#k6Jbk8GO~!i#^^uj{bJP(fguMhK%+P z87-IfW$48FO71tx_h(km8UTexR}pUZ2mI3BY4ft#zXyK)Nj`RVm$O^NZbWRAr0*RE z94F_`taepFkYSpfF0*iC_AMXEUaabi(WwoSuUxywgimqp8AyticgpJ{^e9`tFlg~7 zY1Mi^PbX+`gKmE%RPmy?&)DlUW%{}`le1NkMeZ5J;wu)P+-%9}(BINkE182xKUYO6 zpMM6zi|O6^DX_GXyw{#?>n|yPikfkTzeNTVzDn@(JoT9n67gU|j4VwodE3L?hnG%S ze$Mi~uI2r4`+9HD=LTDwiq;!*r?-J^vevb{aJCor6xh#GM^58s4TrtPD0zQ3G4E2J zcPYFS^viBkeHRDU!TQ@bHd=km81R&5+jy>I_~p&@t}=ZJK=d?YaO3)8 z{^uhDcY0(K4j54e%z*yR2Oy}7mrRe8L+!E*w+k=_O7u5iugVtw_zqN~HwV?%HhUGt z32xJBu}`v;G<8K(TquT_c!olMsY;rwkotFVheg{&ZWa6kuGT|DWfu)75MFzAHPUDuSuHX00h_s$v=s@%yWu>+^Gpt zZpy#pkcKEA2Kl5-axVE#6!~OwU$8U>}_aeBGl=3e0wbtcGeUgBU8j;&?~`I`$36w={2JW7as_(DHm5_J%y;%yr8zU8Bs3nhL-Dgs*G=V& zX>zRb=DHKEIzmOec$0AItnDa9OboKDkJ@Jg#O?^h+6EI>6uEN&>c0Z(Z)%~aBJNVI zfOE!Ale*>5HEXOsoBDYri^^$E^C#j9<15ZE}_@OiYr)tyEu`RozQ|O2$aY z$b=|aSG$xua(g1U$erUCgoljOqf?SwT|u*?4u9>!Vw4x(#(-+k4#xR(XeC2tJ=}6G z#43+^&!U;kN4x_0q;nZ|giv9K=KEr{6!ge>lzUn5WO;O09|mnj zl7ecdIN?X9vTi=5e(pNnRw#J7OB(gibd7@e zJWs1{ZTHUKc{eBe|2&H(wOH-nQ!u%$XOP z3%fSmy^dMqUN0kA2=tNRCuGIUxDrHkZioX0Zy`jVM03B_u@xiLZ=$q~65LihX%Xo5+WTN)8L2Czr*a=35`Deo=fA z*QY+G5yGTh*m&64f5!~m*>|wV-`iK3{mCs_yDeW~wk<(hOlTx;~wd#qUMZLxiXlH1jIyE=hA!Y=?GfP8g)H(9nmLh z;i*=`5}X=IDo0kF<*k9nOsfwyznffKN8NmGy^*v? zaaT>x$?gH^Lj|J_h;+KLM*aP&{7yB-@i&24Aeh{V-O470VM(v#9ai_=Me2#0i`wPq zd_ZTE;?8$6*!`W-am~rUJ&Cq9`2a;$^<#>12B?kB4i!)2Q}86Qw>N8sfgkK$Mx~sj zZFwp@Z15Tue+h=}5^0e%&9xsJYB%}~>p@wd?2sqP(Sn46Z*DFh4{vT176f{l5MPE0 zqNk#nqE&C0aV4y15j|Y-oE1ma#C~+w^t%~~4 zYZaBTh$xH6Lni!=3e#ANnTs;3+b;RnO_F?gQd6GY1lZg9MuKD>bmstCKdd`&eeGeR z99?$*+|apJ;^I{ISKpwKP3T%T>UVE@@c3p;`XWtm|LK{0Qm)l+zsDXq4UE28Dq1Z5 zV}%FjMZH13q#ixBbnAcDPKZaJGIdt#?i-lxvx)R}FU=T#))xQ`V`5C7SZv2@Pu55s z`w}uPHN7`%I}sZSfDx*X{P?mQVVGUYhVve8aX=on-eZR?<%^;{froPcEq&&~#Qyg$ zBSQu|x3*GtL%Dd5p4~*4Mk>_M+qNRALTfDd7Nk+O-y&9NU94I}@diU-j-)?_-&)~y z{#2p^id4w7iSsQR+FobB4Q>Oq)&Tb2i_9^w+e2H`Y*3zbGAIdYoVob$u11ZCDb-1OLNQ!2y*S>C`(5ET?WXXtdOqA4cAHFAo_}tfLg!l8=khZb53| z8}EDcWi^jPS-l$t?_P+43vjubI9J8>&`ohlzg7@yl%ha|-u$KttY zB~eBg*^3~N*ZFnjK6cH!i{XPetuI%^^Sc)$E)L4k>`twBP*KfP2-}M{rT=a$#_=^f z{bE3g%1aI=vd$657=s4A<>D~DmP9VrpxU*;M32Zmj!d_e_u5tYagAq8mrlQ0w^g$i zFf`?cATC<7VW?ctpVUOR&d=bOV$=Tl2dX11SJu68Jm_0KE!6&w95%@Bjg}%OGNA{~ zIzBTYBGhz5Bj!zQFCJRcn+AMqG%L@=TQ%+CpPDySc|IPKPOGV%_V2m#LwqE%TCfn7 zWCJn_r`JlY9ofcf=USioIA#IOPK^33o5BwGUxJ2=J_*Aq=*L>K8VIF5g z+UTtUgZpaCptsvw7`@2PfM?reh$_t+;|CH)uvO=81P7bzn>VvrMbI{6jrt0tJGoou zeuT8huAzO5^#4;^sWZ%wX_r@)zVB*Dq=NIyGJ695R0|~5 zOru{C{W18e1l7qesf}^)-}aq4!R`;t3;T20&s5HWefvp@?mwA|eK`50+Gu&fS1q>U zyLK1%wA$p3l4W)F(Y`Y0F*NJC7_Bw(p9s(LJH=r0`c-N+TFF0(#zP0k46QE!eR0Nz zm3|A>*;e_4v-X7tcvtinFGPQ!Sxc+(d$w*-*GHuf5(l$eJ{Nt0x0F6P>@WB|>P)E$%JQt`UG?~m z)xL+cb{Wq+i3~OnCWWx6yo@53T#V3=LKb87Tz(Npjtj$A z_To?0*qIifB1BEOMG>7Jrps;hXY+;x&#@$7R17f10^$jK|DUi01p=Q9^Sg0o3Qwqg zY);ox4MRND0 z8!h<#@2+w5uA;tME7p6=j2;I48xv>7@fWr3{M zq1Av(e7RP6lBhNDbH?3dWC`UUGYizC3;XDm;xhf34??DCN;WA}(k+Qt-HVD6{~;9b zgX#PD`<|LkCiP!R$H)*GDReid(0$4J8Gd%C=J^va9O(BN^}f5PS~%N~px>+a84BY(yK=h}A0g9N>P z7rzR+h2o|nYzKH$sGHvqb>OqjlgO6>p07Qp z?lh{bKD%Vs*f8?1eZ5BaO{O{Fwk8i1Tu<4#D&R7ZHvIU$hngk%M=4bP@yYKivGkg+ ztvABUpz7g)rIbBoZU5}X!M9g12s8-Lk z@nOjs{wu}`Y2IP9lq!RC17+5>>S6TaJUcKhj0 z&eqv#9GJL$`O%G(I|)cbXTae4L6=+ZJp zNt*%;YYgqh9wni5&A0?+*WWX8R0rRucv+C(HsNT`L7B zsg=zJttsL$H5>7{fcjfk!fin`~i(H4QMeXU4Z`+n!LDhJA{?`IbcR!WV z_=c|h`l%gChVSwYFx)$?QNAX6%=$XDcRC8hFg8#+|9k;Ue4qRIv1-S>S?8RR#?yNZ zrW(%Vq`A+O7mTI{Awcl-&;JDk*qb% zn-BT~(BzpFcgt=ZTbL5B&Os{ZIy$%BKjq8sjo$BAY&z{FlYbSpALN9;GMxEs^W*YO z7&B()H2xg*<^Z#wPo86qFp7+hxj%{F(9_*{ia0uZGpHzeO_Xsn-$C~;QESaVFY+Tr zXyfc=VqC|1oij4wH}hONw?l@rkcp{kE~5Cz+hA*v2LwuptKsKR5ixQ57GXn7l!+6L zf;pN3bo1geTN?}t(SFHYVJz~Uv?|Q-N)Lhj0&K=P@fq+4>!YCXiTe%2HRk{zIaQh{ zAxAclKT|ltYCRdmlcQcHOh3a>s%&YzRJ&Nd?eW)je?s4jlYZsK!#)*_D*-}0W~2Ky z2<$c(%Ng+^@7uJZR%w#73&}J654bP^qB3&_<2!O%>nYIOHY%_huVSDup|y#^hMk76 z3A4EGIigGZy;l;S@*&&B0Q=sHQ`|&f8tsK2_h=d}z*gh&Ux*b6k8dd;``wdnMpsPc zs55Dsb`QZY7&-1aa0e-9W*RE|dKzSMjqdwU7Z_9>XE{CC)r2g&zsGKALoVOg?)f@; zUZx%OzA|4gt?mdHIAaZZGVuo@CxHDr9> z!&Vy4Ev>3jVG~2$V&2WVBLPIAT*Z3(Kl_lK5Q~IZ<+st)whA#edt#tWnQg0A#f3J+ z)z~+0jtD7JtC`%P?OBimMrOhpD{e9L?^W$mmC(;c<|V7 zzzdpo@v7PX>q$%`+01v4xG&>Vb7(tM@2?K}JC?Kaii}u)V&_;_|1C8R(z6=KZ59)C zu52qjn>7mX6QJJy9c8VV9NX+I!pn6AWXUaa-p20a$!n${BaqLjyBw&Y@aWzjWsm<-F;JC%NBdq5pF2lHVhrv&MBvVBl?#*QD9*rJ z>5(?)K=A~9)F&Z>nTC_#O&9sU5!M!$|7uSR@K+!q6nTG>Z^?qx0%62&7D5F&br5>N zO>RNyKY4zq!0KCDOE?8!M&7WGA%Zn|j{7pSsH9!bZrf_=^Qi&aPIYqpLU5!3hSX}) zg+bvV^p5?_1_&4WEzrHZN*zUOos6iwrhKruH#c#PO&@LQv82k%8~y5cSoY@S8L9Rl zRde%==8o=pR=^mZxKacGh2Y!O_xasenL@G|tt@cwbn0VroPLK8pybHIlNvyhr3 zYQOA7mRZR>?#f>&eaTM8o!ONk&+8(SnfME+CEW?O03idqDqfE@J6y}fF)kjK&J7Tr zOoIl>UO*^Rl^`-xAWz(15yn1jtq-AlGX1dSocrY4qe&IFXst+#!MPC#m28i*HbuF_ zPH~nHS+V-~9ka^Se>9-P!OhI0&zpR8Zfz#3Fyw=u#O}9;xL~tRoLbT?tHt_wyn&!O5pbIpi3fu2a|60l}z&?oXULu z1*He~4M9~aVMm{`ruzX*AXWb?WRyzRaQz7KUF;(a6}cFGfKqKr(Df`^j|9a>R1w0L z43yI=V3|m1zYW%tE+TzB- zpZ=jRSx}Onk01N7lMt$;xBNhgaN7Irj1(5O-ck5;0oYTsX>YV26o8h^ePEJ+R2v)n zCxlvlMwI7X(VQZYZ?9L`!){^-Ke{%!-tc3DgDBK3@%$0_poqqW&Fhc(AgF6Pt}Wua zY$yz#$TMMLzx@4|UockU^|rL0cqWVGa>}74O1!s{XQuove2^OP{W74vlPHRxK2z); z87g%8qSUz#97<&d+$h9W^31BvmpvR5?f9PL`c8|^pMs=o@~{t=bb76t;sk=WG5GoS zX=xat`8&EZJ$4S-Gh+ReE)^XZmbAc<;j&4EvAEa zX~f96B>P6gzJpNtgBx_E$@$BgmI`)w@h*Wia_0(=H zYH9qUR&s$!Ya9{S(ABxGYoR>qlhLbmMR_nkD0*nm^<3_1U}g>KQ#Wlh`=^GY4~JBK z|CQzQF(Jr#!*NQ17HmSD9odOvuRauqMU^!>n!>nYCj)7a$RscJTgu~0XI9TB01*r# zOa#!_(QG*UCnSv=zDzy{ryz>s954n~5npa~{DP@55YS49#;emVefvvJpa;>cAn*m( zSSgR{`Za1UMv^>6#tf=l3@&Re=To%?OaR}kBx1<$lEM}L>d|K@_baWBo=$RXzNxD)WR%nm6Uf zx-#2gIxqh4{96Wm4Eck~yk247Ygi_{!!f3N8VdC=ZgXqiSO2h(wR7|RM!g7{BpcK} ze{kxI%DV-4n+vy^gAO(q85W*VuI>*Pe!w-mn*O?cTi0(%bacU)`Di{^3{sd!@4WVo z@SG%uH5Yh@1*mz?p8?;oXRd!CYa&rmWyqa^LF5&1;$Z2hm_?TF6yInZ#(f zmPSM5B2A+*f1~R&N8-wI=YSH$MG>9RbCgi<3;5MrlF%@=rgV;ucFuA-SyulWMwai> zk~d!!o~=l<(xHsxYWf6M?o<3r41Cx5M6@)9{h-%P&GeH^bNzx`eDu8)VhZP7ui;PI zYC(cNvs~lgy1qSXgV*W6O1k(gp{R9CBPL1#rAGVyk2M|8a>-VwXA zIY6BXHCuP5*^sTOA25=4bB8%eQCns+C)k{7#bwoEC zZ(F?p8d&E-RV=hg@Gr2-iAn;@e)vq zKee`8?2o!?l|F3l%9ON%+vefc4H=1}$XM&LY_2$X>T=J**MyoZsK!UQ*}mW9vcHt0 zGU@67cPsPQB33sI7alsZtki)E>3)5Anf3)<)BnEk0B1LNnypH|aB{n`*+Zp|~A3lDmF(%u`%#DhylINT5^O=Q7KAzON&=5vcg*^S#}| z_ayMG9RXroE$o4uayqL~_M5y;c@I0MzT^+aotBiF2z!VxgyHo4FWG>nrV{X=d#b@c z&2wQs!+%g#?_gSMj1Q$^28qE(;imEv1{50ELPN^9vlOu4W?-C3bfRH&yGzY(lN2cw znfMl&6sbo!ANys83Z~6lh|H@D8~rGx_blw@UZjX2FOH*TMEUb`al2#wwO%z|91I3j z3CQ_JR)}95K~{j{)w);;PeOjU9LY6>2JO8=+yxn(Up|B;#I>88-YkGpHWRu}x$b4i{Q+Ycp^0>d1>Zo43Qxbud^?xxm~8LxZHcAmE?z_od69ojR%nLn>+yW@q~fK^M>mY5o}R2Zf<1~`(+>|)yX9rQ`n_FQHPudZ1TGncBk9Gv>BdI)B#f;iabzFq!DwyBt*Q`kb%+P2* z@HEkju`11-XN^a8O&iSZ-RzuQeS_i_16~2E^&Z83i^l`K+Q)uVdt8y@#jf5>ZOh_=vHM~U~$gnaCY}KL7el)dWRYF zN=-oq_1Hu<>g0y*b$iFT$%fu9Sm4N!-Olfl+J;o9BI`)YukKs+ght~ymL4lnbxHJn zV(iR;vwB<_Pt0D}{p20J?m`-LYE`>XAYniT@5m5DISF#ViD|6kzjdU@QV| zFKH$|*m7O!MU9BlHjwh>*XNvd7*Bw{TcQSjZ-M0+z>W^RzNrBjm+#PR?nN%s)qb>m-ctwW^iPT`X zJR-5YW``zsKnmDEnog}Meuu-FM_#&Y;sO>9QCOAkR-n#nMAP`bRiyPP5MQi78jsbU zGjA^8#y$A1lIx`(c6RaoIOY`5hERy#xz+k<8*a~i`F3$iO^4S`AZ?ZtW z!`4^0;*-;^Ng}>c(UNGy990Y4w6T9-cEaApf-}u{ITJ4(yG=|$SiiIy3ckm>#y^mS zU|Kc%4qub`dDv*<8HY>7WhdPl*>$b;2I@xBU9o!l6aeqDs>-#nAo=FyVzsJFC2$=FtI6hDs6nU{^=$#4*Ed=&9q49-Lp=SFZiRrQI#%+IXyY*IK7Lq8QE{B99wM^f> z?sI+gysSO3&_B`>_J3zfZcbS4r+cIP#8EGi0cyQIAO#kJ{|_bb)PVB;=c9X7kb`)`PhPO8vZiEWVs-D9Tnm* zq-yaeYk|W#@y2G^%e=^&3k}-upnCzpcE3SU_6)6-Gy0U})86+5Dl|<2 zmA3%3dH6MFJro%A($4SBf5z0Q{8PspWmOCsAw=l#JSAsvnMfoX=Xl@wm)x1>yD%?o@@c-rE#B@={y8)F z{>BH^ZgmdXU*&yj7cyFzX>FuSH|waM{fP2AQxAR1@cgJZq`pmARtL3BWAJ(@Q-6AJ zVE*4Y3WM#Q%=gQXIl0lrY}WnL;o>0ZBM}nz8gt2xVjC8&G$cub$KIv81;Rx7xJ6N@ z`;3`2Vhq$D27OrD0;AQ1(=b0N#QJ2 zyTn`dhrF6rX*6e}GGEXYmnKKuLUUzDroMO-r(7375rY5jDO;noxlj7jWA= zSrZ9%f0qWoiTU~du6(y27y4@L zyTBVIj&vG6NZz#Yd{MlX`@SjPOvmV=_O&-~r~K8*0l*`z|L%B@yh|O!5ZxZFzF>DM zWLj-=cE=u6;IFc9#)~jfVD(j7Z@(uLtZ_~LQQ_&I`iSE6(<9E~<#m;;nX@wedqKX< zQ-nomADx=&Drrs$d;zJ`KsMYQq$hNtvS*Az}g3xevkyE zc`#hI#Xaq3y()51%!5HCR^>$ZNI%-U?C!*E-l#3OxChxQO%17QUbwl`EV|9jz@2^E zi1vXf5$Q)3;BpQun zIgvB{2A8AORzC60ICz`eZ%_&%^anq1Gp=T= zC%{4{HM-_nx~c$#b=-9SFtxXEXm}-hDDXosJ_4LBf>hA%M6ycLbH_&AtL`6%`f&Ow zL7Gpm%L;ptJ>5G)*UM3U;1Dob&R@D|!h7cNB`E#3lg!su!1PUUr5;>^P!u=b01cQiO1R^+9A@BIh=7uu)>O&DLs-pGI}Q&R-Uns%Yu@G_Bkb%>>mW zA;z1K5NnA&_Wo=AsF#g6y)dA83O3mrb}x^ZMDUslRMp?@W0pz1!m+Ir%xZjS1bhbWNQM$zl)_tlcj9Q;)fBo-aS5nnd2nL@V(6xl3^V!cvU1=m854|;CG#vGH9bsi~~!60O01N8^9=#O|5cA`MJDNMI+XX zb5K)&8)UXNBGrh~K%ZXLuU`(;Me~2Nh4N}ST%9UuXmYgP7QopO5mcSO)0FJbz5Re;Hp^O-zH0c~yFgJ& zt;yhDe~s|k1Ic6Ytxb zOL2wcPBJ+*wY+{NpIeVB-6xw}o0pNq-8xoPdz^NLbC@N<^{5TKFnoF>6By#Q5ZYNT zHy_XtSs(fMV}IRB$XnktzwpL~R->+gxa>&hK~ekdG6yhX$y2@jpB9Xa6YK~2r#eIT z_o#fRkO|rYY>@KU?jg=vWLoc=98(pQJr8;m{b}hpq_wGV{DAid$Ke;X@lKB;6{!rx zM6a?)KNanX1fLJK{O~HV+B6JNsOur8F zw4x*{tX%uF@Lc$wm7qE=uOvoT>o8q}@Z-ErFibiVdx+|>8MaMz}fo=ezcvgR-D*+jkim)$QfOFzT%S{);{{+ zTlV{CBcW}zxQ7X@3$CRjo!Pk0Uw(&aho&o|Q{q3RbH9amRSO;| zK50RyzKj7MhKDCeby(3Izv9sTsKKp3zgtpU#ER`T(2 z5%->-aaE8bKPH5j9@dVRdl~KUL34oSY-H8m1vVAHZXfpQh24ioRjU4r6QF!a7aqTv zC9<&ZtH*a;^t-CWj53SKwr9SY`ti$a^i#?KNf%<3L$xN3%hv=SNwyt;h?YyA;L^ah zm2cxCreizoC|@#D#Ec5WEVp8e%d=_F-8*zT zf|Ewf+zWLpbDB>zJU)x)q#-&YA}cypVc?4rJH?ATlye800x>BS)e651`!cLmv$JGP zee~opPLA*jRW1wewpl}mHZl_8*m6|aVSt`5C^Iqq`Va0Xpe%fDa~Hb>pGn1)euD$> zLg7CXvhhN;e)BbIr;~d?znc|iFe2rZ7(Iwt-hl91XTLu|13+oEY;1l@nNQH1^hDhK zD+^Y?7o?wF?n&Bb>z#D1oyt$}iN5T(0omaDjJpm&AeCATUh>vQ=F7u<67OJ|D_6cX zX^}R081NZ5?u>dn@T5DsEyk$sI|tpwuq(i^U*57U-oR*`+8%~{1nb(0zQane zCHa*TU8{QhA^TrW!Io*OY4k$t!qMgJ%gHDtilafC@Qye_G}}KqIDagGNhbyt66a!d z4_E%6;GY5d2N?U=9O6f)W8j&$VrrfMzxMlf%@?+#RuZktifjvnXzDVF^y!}8TWU3} zfi9m>W{!A+LHheZG1!j;_!GLG*5x~s!fV~+;hnGIFSAQsx%hYan_p#3wuZh{p;vp8 z;9&M4xn6^oH`$8;iFD=o_!^B(HcC#Opvo%Lzq={*y&-Lr(3NmTK?l0Pc#rKr)j#2= zRp%*v<22rM5*vQabRJB6NN2Wp?um}+dR{X%;vCvLQ~atr2=B+|f*&t)=!p~N-PcAS znT^QLj0CR5IH?kOGn~U21X6P%{IPb+5+UV5M-C#N*FrH*4CGcp@}h=!oc;D#Pa^hC zx-8euLS!xRH9$^iq#V?0&JG4mKiz5!ISxE1N_iw3Gq{-t+Y@hu=6O zLmCcwb4B=aU^<|s3Fo;D_AjYB%gn{57tz6o6frhb!0pDC+d*swj*yJKqqaq$p(UOu za$&*1v;Oznv0Tq&q1k#PN@m}&5(_HzFP5hkaDf`Cy*u0(y`o?pNsu@&2S|Rc`=zS8 z^|W|QA}iAP#Ipj2_5Y#2?|G*ccj+}id&og+PT7!V7RKorIw*wkQ$T21Ok699VT2_N z{@f^RT7@z6c*`T^+<$)YDXt;fW8UiL`xx4WXyrXaz*Y>|JqkWr1zS{mdb3Zj&w2bs zHP{s{JjLVfenjcPE_bVNQE#I3405hNXkLKjU+j?M8&825ptn=uOSCAiY`t6t6IS6Z zBM--ar2<$nj3(1LcB4z04^nq0p~VEh`VIL&JS?H4_8DZxbwgO1mi0krFN*nn`(zOL z0rR2K044S~*8fr6%qfYk8i(CFKua3)?U=vxbJm)i9m zQLrcOkVLgs1n)n%A5{}UU&22uP?9ORrhCC2s7vo+L+K?z$lyd$Hi$1;;}s56;zM=V zWZ(F)nwvi5bCxn2Gtumk`+(psT2l3zrFfM2hP?oo@s#R`>H#RI3P#m%H>E^5FvJht zf7QJb=kbsqGcdq|xRW!nlN!@IQuQ@FcKonelOL{-QK2k{(0fn{V}6q8l+26KQxT!` zTYKed%ax2#F8g`%kjntKvgBWh%iz}XEcLD8oz9C;v(CM~x@);a52Yg5Zul+S)Ijs+ zfyTv1WQWCX$=k%tex`h_tfv+*pM1RACeE|$Nwvp|#5;5UAj1Bn$11ONnaQ%Bi26z; zFyb+uAy6_J)K>K4$VcFQGscSzJ(b}!3!T<7bZ~%gpRrz+O%k=MnQto}G1Qy2IFO!( zNsjky%OJ$iKRPg4*2^kA#FCNY3T8n}WnP~*1a`tZK(!HCrBu4odZ zWq++WOwoA!cr0631HnG(NASBFqrN9+A-6MODc&FPPnGA4Jdbz@Jqx&@{#|s(s_S^N zJ${cd@^G2F*74483E+TnLWUmU5J1b}Goc-pJ>S~7_(RrIQI9v%cTI?D$4+%TmrB(} z>l<=2z-JRKj2)~-N)Ik?^bt+99;@h}2GwU2#WPwL=huw!2&D2gOGEB8+93fhd8=On zJ4%Gji_;~jr7zqO(15<&<2EV-^oUmf0nJ`BL&i|4aFnrl;$ zIrhl~`2mX2jiV;>LFNsM&LDMsmh7b0NVCUdTlbv1?!`dfy;S8=F$gKE1p_p{(2p$j z=sJi7UGnA>sc~95v@>@08LMHZhcNS1Q$J-rT&trx{>ax~E9UG6yfJA_Ob-Q+*kqX* z;U{0JB3;%!xycI9J_;6)Zqf;d`VtbS!v&hae+K^u z89-!uB$8pscrE}HBjG+Fi0GH^q{DWv@J&gLN>Ra&-U&3lG`!;9_T&DuNt;7mvjvgb z0`;#dpQ{SLo`eu%c&>k*a@a=>3=AFdu^^Y{9?)D^O@TV18cH5u3Y}>?aJ9E$crJ@u z{3z6a1PTsS#lyeGI$|RnSi2_4_aI4UExNt3V}r#A7xPJwvyT-ZuYr_(8Zr^#*u1>u zT{}cERjtN@P_rX>;xxLY*-7Hjr`}5mrJGHgVB~04M%+Nk<$z!!mLrmb{Vf?jrU;s3 zSGjc0VH2T`Xx4S1M;2Cqt>Rb7ct;9=4@{2N20#aygfk@*qzys0N5RQ+Z3z$3B6C2u zl57CoXt`~;v_aj+ex`f?9mu_j;h6xTikHA=fz`L7f08-L!V{1^Xun1o_A^4q7S1w} z6Z}WylYQ(uGgVTm>MwhUsH-`2{Naz9J^Q&GA2MT<75WIvlllHBB1D*e%w^F1g3}ZR zh7d{tr)oqA2!@D=YTP{S68m&`IX@zm8}{=SA#Ya?g|t(+0bZATchdD89#AZRT{I21 zG8xhviIvpsVHEjcD%xh~Xx2^B=i8ocUmH1ir(#GQfLVLcPD16`{aIua?GeeVf@3 zQgL?q3B40F6`g}-%u|bvhz$hMAAb}=R=+`AGa{Sgdx@D35Ezlm@`ZUP|AeDss5d4u zTAyg;*T*a0$;-r!25aDX`^)=Wjd0@98Hj$V?hk4$4P?yjO2{t-{OT`lnj5(FaQ zY>VXuTG|ReW!u{|r){1W3N$}r!CA>&)J`S$a2f5V1cj$1A&wTfkdWz+qBuw&@ zjL%%i2rSVqQ};Sw>S3Te8WA@ZFC+;ZsXUq3fd7o-?`#0%t?<04I=~Zy+7?#QvUqrR zM7cd{ml5JW%^3DC%B(XN^g;qpL3hHrZ6CCw?{fwR|_*mvGC;LfQ94SnBFfKDeyAyEJW6dIDt=Do?m>PL;A{y~3VZp~# z7XdAvP#B?+0!G(TqSSm8-tKm75f*7qok{tTZQ)T zvyde^vw@VyAJw^RLQpJ=vW@+^JlCIjs4ww!(0tIK>%T~TlXBc09?n7G$ESU{Gf~^A z^@dkp;c=-Dv$b&uCqC-)Rxa0w)an(6YowX^t<}MxK1c$K=1iMF+T&>Av#7E>;~p_x zuVqaEaQN-#Psx`RgsvXj;Y5SYj~&BB)R`O$xf$jKyJ^mb@yIm)Zd?F7`gSN-ob_Fc zi|V=V7(rQIb?EVFa)g?{JilMWT6X?~%T1N>9(kV`e8I(^w} z`@qfCA=*(!CS28MGUVS%A$ljbE&{Y=5Rv|dVDVEFGwv=YN{CjoSTWN<47`WCEDaP8 zf9g}@wKK(z`EhBes;eC_Q!yGkLwb;oQ$az0A%BG47ZFEEZ4>U$IWum2)x{s6|90M) z*P8)K=j+MKa*1d5h!U!ZWu*fT94aIdO1~_r&a-s=JiWO@VbHIGYr_>v5HwOROTTb1 zga{1xRN`279{P0Mn0z~W6u@PU4}v_S#=!f};R_}W#AzeV2Lv*Y86ZY56h+4N$szPT zBXVG`Db$Tno~hQLT0z`nYmx^-?T1O1x$$Y~FIf5TL(@9b1z*PuBy}Hp#l*Q-`~{+< zm;r`OfaLWN%}|nn6!^V@juENOph#*TVAZV{Uq1<;tt{_W5yDsFqPRp8pR(G5rm2i6 z&h@SX)@Mui4}JMAR*pkXjuOu{G-wgudZw zHDab$b{P-OgxDlfF@XVqj|}EU7FJ(_Og*nTo-Ygd^+GI2#YIxs-}du)s4WuiyM-bA z^OhF{qjCyjx?+;eG=_m=Ks`xI-UDHiSXX1?v93?hLTi!9uyinJ({Tr>{r^Zh%YY`^ z|Lutx6C_5<>-_p0dWt!gcO3Cf993;%Yw zhtd~MR>d>HK__PhWHrZ*hG93h8eisXmSt=HpDSvwnEhm&1(Y}HTIgC^2;58hl#t24 zAO50Wl1;iM5WhXHVpF*qs#A0oJLxg3u{{H}Gngzz&1zaD4mIMTAjg##=Xq!w@e z)v%NJ-jle1`n~o|3~8n^6h7!kIV`4%54}uum30d9RsC|#?V|R(H?B^(tzEm>9nN)c z6p00=g7saqVV6nhRH_g!$jGR#IFN_w>;J&N*)i}?wE3c1Ut22h0kp7DnG{L7<{I=A z$=pIKKFN^183hnutMS$I4DYz8p%Rk9qhNe)=%TDW2;|BkrO6+gi-_bdhJr6djtzyP z@$A}Yo|mjoyGIoiLBRu(1h!NRM||lUovpFj(BxpU;0VTet6(4<_{*#BzV}b4S1tDj_tNM3O zOt!n_5^P20MsdY^9VXuI*QRlblPoL}_d&Z-NgdYTem5dy_PT1c#mpn8zO0EPtaTX| zt6WL%W3uWywUd2cFA(5~@up7MoiR{_S21iL+|AqRC7C_)Ny?Y*zF@_CIl-coUH z==3wSBd6b-cy=Rq*F#G~w3p==XM82VNH=I0LC)*!9`=6KBnWIQxEA8=`$XvSChv z_;DjV4`ZTL*g_U#)t@pDk#QW&T`b%`7iW24SrFDHVv2l6;2!^=zFc@Px7$Ly5~f5| zDU@$QTIUgNWj;&06HZoatJ$3^CZ`h|@Yp3ByMlgimNe1zarEVxCW)E`eDg7|BHM&y zs*0>9lI3s^IVx{Hv@V~T7NwrS68k4R7AU>Ag0PK9<~B=Zis$VDN?PGx^dmg{9&y=` zk_rixBnF!p5ihF`tkc4#P2+T}^;%I#{pb<3k zKT{O=IJb?!I%+xf7}D61--)aypq0>^^VTMhy;uz={^;Ii19g6A)}nuGKsl;^^& zi8{v33x6pt1vERUJuD{)`D)TS*A@2UroNf0ewt!_H|4fNy8ZG3`0MFO1Xa|L^q zLw>lCB92*bXE4o7!2Bmi%`_3%I%qG&n^l^;P5@Ripm%SxZw3(2b1AVYF0$i}40Aty zlOm!6)@}>#cjIxWLZpk+;iEHW;qMEf zG^ETd#{Aaod*uD0+M^bT`~`Ez3ZNeSH&Ld8eu)^uNYjBGTjUhepRjB z|0y#a>_L$~G^JpJ)knaoRk{+p!UYTqd&XpmV?@#GbERKF9{+Pjf-vG$4V+m11P;P? zskje6WWToC?>}-{b0ybpP(uq=|LC6NiLb0iKNb*^Z)=dBPS*D75mggoD@NL|is7J{KUROUIr{Mdv0SB2pHWB%sUl>?!TYOGhVvvGqi!6iZ=gm5S==Bv0fIoo8zTO1Ud_VHwyB5fvP& zb0WcBGj6ANn8G)Wxj^|tXfL8%QaINqZ?+F?>Qa(B2WWr!TK>M$#KF#CD$&S_nSB`g@JJ z$FD;zc>dELi#=ji@r$<96w4comX#m-`_M%SfLUN%GY!?I@G-tapdqpc5yF!(V$_Sf z&$6-h1QoL(EqMfd<=MMUF%nywE)7ZH^jq55c$l>aBjqC$o${Q#65flegleG1A? zLf{#u!vk4rQ~zS(Fm#h6U~i|I4jx#pQKWN+lpi9h@O8i)!A~W<%5&R^ucIZ6pv2;m zR?MIhD9{8i=H2qS*C>C?kTidL_1*~8^r)nRfSJXMWuvQ}Lu1Om|1SKo9UWDFcxW>M z&faq+8&N_itVC2NkRM+~p5p}x%`L@D{Kw_*aG!SKKFHAZtSo0yt?k`R;@$!;$eFqM zGeOI86fVgUUbx?|0S9UwuAU1F*=?3?mzapb=klsu6+|Otx5bD!=K3zj+3gvlW_@L9 z0}JS$ITAuhf&7(AQ8PSly$5kUuSyrrtYQMKW~6bir`84eJ1jbSx>N!Tp@n|~$Wg|Z z9q(?Jt}7V8zZ%v+NZGQKrx@p6dZ?UL(}!g+&m6sU58$eT0MypYhmF|eVrTS9B8Yx% zNq@s@@kBa*RCB5={BcdTqo$;!SfS7BUv)E!V&9)lBQ%5dfSvF_ABF6?O`q1n_3+JN z?y_dlLKV^Q7r*$yWv?=eF|DpSc&vKlt=ef>=dD59q0g2r{gR>EK|~FC-`SZ6U5Fw< z>yD>NkM639P;_j8Y$ZDXOLthwiVkXetwCQ8X!bXj#PtUB_S7(50OQ7x!B?r zbmba*YU+ww6uATffxHUU(Syq0<+;ai850!Jx@;4oob;jBUcFa0k3nGP{P&$zskZLd zWYm%8+L@WqW`66f4ftTFunmy)kxbCut!$)UIUPi5Q6f2@vN%%WGgaHHQ%fAGm$?Rm zyPorpyh(aF9PVwmEyn>vLZ(ToU217J6+vs~cZqHXt(xR1pd+O9S0Z5OPUBjagg4i& zPc2DgQ{|Vel$Ht;&wXs>PItyXF`@?!$P2BI0e9L32hieUJebSqn>jycPN;-TiS|@b z`MD0jyE)?k=Tnh=ymfTXways2`or})^66^yNSG|;vXc@JVR7|6{k>^!8u6172T*nx zgC3KwT)=B4NlFI667b;uQ2^=!7{FX-fB-BEfFZAief?!fCLOq^dcPf~-@kQg7$59G zHto$Rod+ZfvJOOM3V5|F_G02b>7MJ* z18SqGM({4uq5^>DvfJp_g~kbPA~dPKWA%5fCwqoN zFG0sy4MX#Sq53F=P=M$&Ytq#&A<9^>+rvPW8IsZ#vY3Y<5xO`u7@-h^_UPGK22Z^m(Q| z6gHXCpo(TwWA63Vl3~2kF=#yGE(}osz0=?Ok+9Xecb7pgX$!+gNf|{3b0K!F7E+~? z**g7e!qbkT_+d{?H^3tSW_QVE`LL0IT)^^|GFwIbr5>VFyx2y&Ll#LP+wFThC4p0^ zHtMIAMEG0Kg=sNCz&J?Bk=b+|i#7J|0zAyQacDf)iFsv!=8gY!LLcTM7tI=B7G9QL8i=4<0Qp9qu#tWGBi>2}-&uAU5aluftPG8QFn@6f;mq3ZE zwXQcmY;qnm%w?CbExz)PwdYe;p>X~$LZDgr*qI_0TN0J+)osQTR(H$mp_btl+nu!r z7n+K^3-392@zU{w4(SQ?#~i)36a}Bi9`oV`{^DidRIflA`|L}(Zwb2pHCtzHh9NF~ zK~_cgjmrf`diIAgYsp!*KHi?xcNGmy zTr`;*uRT5gdTjf)QAY(quq)cs?7OkWA+g35saz3%yQZp>S66AdiANg921tz^$ z9gDIsaFvH>vQwaRvgkOhQkh@0)x4Nk*4wSpPlrcoh2^F-c`E!{*?_sQIUjU)0oQ6c z-4aEte`VM!b+Qyf7Ofpl1b-&vt+|^b!=<*_5hQ_Mbwv!`&k&{Rwe*=c9)KQpf_%Bd z{I{_*q&J1If+O3;2hG*7b5*6Ot&kaWB#j5s6NhPw-Wl19?-bh(i7+V_~zUh$u(req4Apyztagft_*Gr5m4fZ_z`_~|4vB)Cn2hwt6 zSvA=DSDhQjo=+HD?*IX1U#3=^5p%}fEUQ9;q4`qq2FRFbmYnE%aU}6S&grq|aw5;v znSAB%!~_Z!t1N+zR5DmM9QJVcTEZ5jkCpnE+?KyeX3UU!IDB#7eN$mV# z0cmo}sfc+l{Iva;uqX>06SRq<6jF7Sw3KtHePJBKc865M^@-{NMwK?ZPaAMx0;NFRI~RGHhW2Jp)IKMS2T~Q!J2%A; z%+z2jS4s)+VtSqfyAYL4O&p1)bIRIt;RUt2Wy3tKQ1@6srZF^Q&qERJV($)FctISI zwqrW8mR!?j41GKW7ILn=%qkZj+MZ!@Br#$P7B4iNH_XD1>dq zvA!vqQw@a1<(+mA23rD$EcN?Uqi;F#t7fwu$#U?w2_oXf|LpKnBj^T&FCZ11O+vmt z_+l23mp|ITGdP4{20Q>2fR?g52MCq=q)1b>YvL@46t=kek0n-`3iP)z{{Rs*Nb-(9 zXU)~uH|@R|F3Ussm|86GVngUTCZLgR|Gvi}o)@sKDr1Kq(3P~6eS}wS=u0_ep=-GL zw*C9lK-Ry?-SBcsJEh3K=v>JBr`TQv_W&dHKx2-fCio52j3Y?vMPhk!ic@ zY7$z)CU5#6W^%AoAny57-GOk?kmu>Tzj7S7qsw9Bh6p2vponhr<(fk1)m$hGOy*pY zB71@h|I_POi2M2TMOd{JQePv6C_H(QIj*a|Yr71g(baP4D zNw1nt-pO$-+CAGKoJpHpsVgX$hG$mGlA&_H=i=xyKS%bgw2DNj2Ws*ADK!Xh1l+UI zK#JD~aW%mzqjBmbD{l&lUh4*x9CV)(cF(4+AG_<)gwXKM5h7CvhdmoRkvmTn*_*0e zF_Hl@dSjahTArAU3+rp)Y?#XD`KLi_#l!dq&D4KUS0OYUMdt!>WndlMjnDR!J0D=| zm6MMep6YPzE?v#tW4o{*_JSzqL|LeUtgj(ii7(&oJ&0EOGh(XziVys|QBiC>{VBGD z%vu=KqMGuTvH6vE>G+<=XEHapTX&HPHGkD+`M47hu#%^JTG&@aYR^*^?I`OS2LvGX z2CA~#eRBv#>oOrYf#Hg2#aR-R!41j&`Y$yD!)|3L@c56+C3i z*cG%r=%$xuYCEg8m$M2-qy{q;LD(W20+#hA#ZCPzAaf+wnE2+(j-ivj5}1Ksr>l9J z;i~JEkX4&t2}!8F&?>*OI6rt$1GnbL=@PqPlb9XdI~-xsX2$QZP~>`(ZP{=zeY-ZX zBqNXu>Cvy-0p|>>o>Yl3qv!*OBFGdEaR6Ez5I4=C8FizMy7Mo&ygv@kq!8{})8w{a z7DK-XrIu&yIe7g@ypITt&LoONo|ip{jpZ;4Cp9Cg>f-1>@FY(CEQAy5`N#|xAc&utF6JTLZUr5p*fUtG&V z+E8`=9+19Gn!^Y^X6wl&=`X zLQ2vxO!=7QKLcj`&5r%Q#}_t3R`VTTnE0(~@}wAqoBVsae|G$qyePQusV;a2x8vw{ z*$fDp-t_6l5D4l>D_4`J%6$C7Hy@6OX(hoahKuxU>d;i$F5=H}Zn! zi~3?DvZ4e`989&RUmffL2PoKj?+m;z$njQ@by%-lPKj2rQf1J^yZn0DpnD=_X8x(G z7+%pE#<)@N@-|2QIL0$Z1*yz5*4;|}c;yg}E)nYCI1bbQ4_I|}1@rRzaHwV`-|aD_ z>J(g#l4($>dLwq?p~m_2`%wwg^50CAw=UvpQakP~?7JwJD~O-{scIWQ1Wn*Z9{J+~ zRr~*SQ3bm}dUj{RrZqI*SQ3pH`Vhc_TcIGXUXy6)QAO`-OSBW5sJhsB(XHKWB3%U& zeXBKEQuS-mVcSkBG1kDGEeBeJcHP%aMTUrsnN8yivrX=NGTAh8X4uZ9XHqCY-vO7X zd}GaW$hJ~sc=f4)*?$<%-+|PtuD|u7_i3b>oG3rDcc~;48C-9q^u;b3c3H}DuIu&IU%CekjoCC;pbKNJm5KIy;XTrXUp>P7|h$RyHQ$HtA8&3hCA5fL*-YC2sd znGyekV>k(S6z;hMGP>)ot}kQ(xxFe8ct zC0sM)FLCjVc{H>wh`wXHlE!I(7o@$AOvg#Gyo%fMr^-@X#=*?}VW#TWRTZN}jSu>cS=!fovG*7efCbaYS~9%>_l>lgB^VRKyOT(VxF zq?`)xhu+xd1xa4^z>L-0CpR=!NHpcWje&VU$FF%|$UNsRvOLU4JOYm-8|49}= z$8?C3IzOW6@~7Fw2ecw&+&RS`IhRJEYP7gAzi(<6Iw{g#ciL!|-g`;%a@r-yVA^NH zzqNSse{aWrfMsoVy}};1P-0{YAJez96OC+Hduq&lGu8>eO|3g&pxGsG-zMYr?kx&n ztA6^o5*0-6V~mvmMkwH?n^os0_s$r|nFh2xjUS+gwwl(}UcYF`dlz3x%M1|#%h@69 zRii-|Do@%dUi<;i8g}GZHhT~*4zDHOC@VDTJFcbQymZjs%P|o<9QCFY8hXy<-=kXR z_XdgTy<8uZpiK~JGg}xsu2^iZ6&{L=)Yr6!E<+pM3}ix5;7Fa<`Uq;dxe3{f&7MdA?N443LncHsVlAnReuI+xraMymRhEUFp%kPY$GMkrvk8n+ z->w{nOg>Vl&z2&PCF~f+?~b$*qD`Q$U0{Ho55cdRcG~7(&FTgV{^rn zKvhRgnZritA}78sv+3>u25z+*w5qk+Rb4bgMnwdMUkA~2pULBFFLHqa!dqvm9pKym zLnt4*coZ=6q)lhIr}o?O**S6j3-^CGYx4GdFTBp z!a4_&e;rBBAfWfa8KSrmy}flao`1_zGaVfOW|~p z4|^tl>hD{(peWn~tsD0VWmhQghQyG9EU3Q@%4f7tIF~5@99`3ugHT*M8}c=-y^C-j zXnP(g_v@OxUiY$w?Y54kP-9`EMzZU(>uz)OVigTcE8P(Dk3C8^_uQ@?1ULGR2 zF0JW?=%~p4C!MnOS-t4x{MO@w8`b7QE^vq->iGzKFh(|8wXMt$k9Qd7$3?=GKV1wU zxP8J3A<=%LBxSUbIwQCa_`V;|bDU3@HLi@6COJMFChrPxv!oXG52L~!fyi4RY_xnt(N+bSkRITflMFKA&L=}Gz}#Jg~% zUH_jNd^yUg-TZ>bE6QTs#h&J_3 zX{P{2ybov*`)9&exz71Gg2#{_Yq=`2@Yn)YsY><{&01fZ8V0u)L(s>jyfna0MXz6O z6SA>v(-O8?_&jr{fYwTUPfE15X&&Z6Zt&OrUO5=zChtIVvd%-wRP*Q{0K`E9t6U1d zLv;tILJI$2uKjXP&LEuMAqU1aJxfaEp9*bRlF7}26tgYL8<`VPmU$!KxmDxRTcoG! zy=FVG1cTpl!C!;2H!uoqNr^l_TbgI^M*L<&;hc2lV9m9`&WCLR0b6?He}P+)NuON} zs!Hb1oEO9Iw1BzB^2dG-E77og=l{LE&~d?JSG(rfHr#~#D&LXj-VKUK>A#PrpT?N} zJ>$xD7crF@JdL}K>;Q{;?x@d+;{!051D$>O4dKcy6Gd}EuMF9DDx*0o*6Q2#k4IU^ zcG4>PxBl2ds?=|fLw?Wt5MVc`bNVp5q6YL&w+=_Ts@E0|AWg_dTgOl)abW1LeG zIvtyiURaMIv2k*i%f_(Zquh=}%3R6I&7|3!Scxi4!G%z9i>uFq4|;45mXt1F#xH>H zkX*MmVPS1ljrgm1&b6oJBc$wc7!Z_qj!>X<6~PKLE(l$-SqOK=!+gwl>E%tXcuIWb z3;(+zM(Ay$#RIzKE3zc1;6Ozp8f7K4S%B{PGiWR_Z7|KNs&*|B1yBUKtC)g-Czt(X z(~-G~hPDiPz)E2Tl-SiE=OEx%6Zb5ibDjRe>08=Zy*41Fj)Lp`>(u9vLl)o6k7(ja z>BsVNUu)EB&ynMB^wt|Sl<9k`7R!8lQ&3V@naUF!#hx20hePk6@EIMn<}ketn1uwz zHgGs3YIot(Z}a;(*K#a_7j^Z~F8^V${uPz?+iRVS?#<3Pad#1y9VzIHM1%23uOkFQ z=IDH4&p*A?FZ`H>e>>t1+kJA#IsgR`o!P^?ZXeV zu&cQyQf3PmtM?RfUNW)cE4%7P$z&5R#;BL$+=u{wv7s2fY zG;RNzM27>k={9XOy0H%*6muzF40{5^F=_va6=}CSaeS+Ey);z!KS2{$F#%Rs?aN)( zi99?!5iSn4{k&MDOi&~sR69(AJLi58-0)JGZ4jt1Ib3oT&rUuyT*2P0cq@_;Aw*I> z#F$X`c<@18@t9v4xx0ye;$J^Y+qs9YeZhT3wd}B;*sPO8o0OXD%sXyN?{+YN`Cr?T zAH??fxM-R{FSmC4;d}G#g(L_5Xv5O)Mxr;w-kr+KKfgD&J8f!au`-`Bf^+}{|1EDa zS(cnoe<}NVdy(Xm_ZHk`S^V4mQ1xqg5`p65;e^_?qS& ziwd5Ul@vg~>fRw)L|*aR0Jl?utT_HiPfygzHe%wlsSiE&0?=me_m42Jy=K*<;`oQfU>>lhyzRy+Jgx)ov8I8+3n)5Q)Ol_U5IY zk>d8m51gSfs`xB|tR#suA1m)KywckD{Ntxg;Z|#7eAA9RRj6)&CfcBHQsagMF9>gH zH1ZsXL*$~q=h8!ff#DFqdPtedfC{mJv{s04kj-oU7Ji(G#-C>M*v!R*3K7fM2cTjv zZce~!ogDcrkG}LT8+%Y-Xjua?${qX#=kdZE=|9I8vsr1-SPXKvkMs4%s8BNpwHE6n zybsc^e@#kXp|xMkx5%E^G5YDU=Z80%`+8EH?v;UM;@8fBb@lxY8)|zRA`SgsuUbnZ zRwwVtt0w*c1mcDjz!ohY0Mje#)0vDCtTeC#TTvr+Y>NTrc6TXigD!#+5`IdcTylaq z^)kw0j&?L;N-B>1o~%xQenDVjx}3T$twL!%eQ_?eI1KJ<<`;MQPG0KK4G?J?g9`&^aQ299Aa@f z%MAg?cti&Q(V9P4y}e_fnnl32n-ijm?i(<30+wmi`rd9q`3klXg;D->O&yBq!i`t= z9B8e$5!XMS0!f$qcjV83HpQ0{0g;s|h@f1GJ90_J80Bz~&Oc*piEhtFJB!@r_LKaK zzbqU1_ay9$rkwr$cyeYJ*XqyI#H8GRT&eJo(4#W)NVo7=*9j;KE{jF}$=<}ajz`D2 zvgXYTn~~{KunH7O>d4`;Hk^D>B-)*@Xu<>cG0Q^#RM6d#JzIJLo0BA4J)VtWdQqMp z0X5FwF1T)803(&7`_WT4bT%P8>k|?dP%OI+-%G|LEgAHH!}|jOpgN$e1{C3OusXvuUQwnA5M{Or=1U`H^s3!xY4Zew?2>Xj)OR=al$0k$_=_rjq$pV#$k4pnWUfZ zRNqDc5JB-GYktf+rCZ!nXN`r}UIOiT$Ns;EU}W8Gwn#0b%feE`7yp zrbrKR%qNUF^)l~$XM7O2kwMbICUDo;A;Hfq6|(L;xMQ6GNobQQnjBKHb45DOF?ZQ_ zT+x!!IMp`TeAYcn{9K<=r%+k^n0Wg1zvW!y?wvUq?d56dju={$T&|<-eNf6S9XF7x zCQtcHUVpZH|E!%Za)Gp_HHiHwjk^&9+us)X-KpYRHefG$481K8h(13&6enEd!gX!I zicZ=!^c#Py`izpZ!Qgh1PV3Sh9KTSw%coz=+PTbxlaru!nx_^ALY|}|XX-)nH4QQm z%7MZ}hc|21_cFhf+K@+A<*89xu-=|lE3(=DKWt*Jw^=|jVo0@s-6$?a5FQtJXQzXC zu=hPEWykAW6i{NcQw=C{_wIu@c+Y{NX$(ALcfiIEgIKLuXH!M;qYz30qsW062IB%y z_J276i+$?QYj{@s=XvXDnr7V}j)}Aa?`q%{DL@SU<&7ZXW{mJqZ^UXtpOIe=8O2)a zzL8QlC(PUP%_<%I{nL=;UG7ORc42w^M{|PtMf|cHav9)Q9Tj9&M0dTXC^?D)hr*c9 z!c3-OB*>>dR}(r6$P81nXkbJb~?b6{K7EXj;>$;J#UtUL1=3(wreuTA{K zH>;jIMg*c_qF)jG!!0~yA2l-=YDc*J1{SG&OMB|zlY2S+;ZylE6>82sntS2L=!Ru= z*!CgHhf6{C12g$X`FUvpSn=fI}3siUGGc@wuORW%}-_y`u24}+*Rf)4i7^lQN5uukn-ZPA+Ni`}njNefDO<;MWjx~4GkQD`FW5?*>j>jHAh<{{DUpWPylgf#-l zld?6^dkYeW=G}>q$W7PlZ5dtZXT0Anywl>=3!3f6`cF@bWmj^&LAu_bp=3OQcWbb$ ztUYkozOiZ4z@Ulfx0^^>`Z-LioMUEcSqZ}Dl5P^q$EDtjse60C=Nh5Rj*k< zm;Km`*WfexxROWLJ8T&GWY^F~%0j-As7&wv2f6RhaiLPNqN2(cA(!~AD=|0m#}<{Oa|2!P^LX<2 z=3-t|(`jDN$uGaji8rrr`91FaIJ>-XUe>(6<%QfSPwnO$Z&iF0^EO}D>bJyaGm4oj z=*iTBipc8~%rhC_La-cz&BPAj=9jlaQYx=v{wybGC!>fN^TrK5ReS%?&UjvI!UpPe zQTJvCUufLLInytE>&K($T@yl0G@C40mb&V5Wstea`gGAuEWVQKl>s@2@zV*KIn zh@V$qrQ-$V?d-z1{taZAxdRItDSxgZfNJp4yhIEY_J@Owg?Ft(49>zPcreR5y|GDq ztZT^(v9U#_-tss(bydcHVdCmcWjr1(Tc5>dPk6Wks};g$l5N`Vhl@IxB)1g_;pSuX zJDhbLsmvvH0%2}^hO4K9XFR&eAjVN->cI*_tgOH6o?p^kSTnh314pvuCRbJ*nc%u~ z#=-BdfD$qAmm4o|az?s$0|A%5)&g&_lp*%Sn;}V6{YXTb<)K0l%=ejmb9txd z;%;3A#|KRIrRy&x#3`*XqSaH_?h3hTc&zp<@UzZc%wAj;m2P48EhKnu(8)92VaR)A z0j0}_vWtaF*CoyIsN_zkJal1{TQJUtQU0{0QN@XK46()(IvbT-;0T)50l$OX=U}Ld zehcU!K7SNhxfZl&2M)iC;CO0mvAo-ZnM-45wVf)wc<@DK^x!G;rL6u+8p(2FuZVycjN|ptx-<%jr*Lx`5hd1N+bQ zSm*gy*>lDx8S{_J`c4mY7l*)6p}Sw2{c`92V>R#LowIT)ZN$P(D> z)vP)ANM(Vk#W>8cpFyvk)V!k_!uAF`b`PWI<8w?s>AtEP+<&nc@lz=4s=Fe&D|X$k z;Hp(k$j95s5~clF-=0@`2+Y!F4&tl)-PTPND62k?J?F3J{$s}V`;6TYdgrdJ-5kTV zs;*&4$Zv~35`4Lh2w+nHzl-KAZhMJ;Qq{CVh~5kdF26xkor<(13lrJ?wndcZ?xIfH zCMou5glg{bRBilcH*0wZ6UY)2E>BS zcb)tyWL35Zb|Kh^k`ahg>3sS#;U-s@2~^7S@410K5I9V z_rh}7!!%c~g?{_UY?Zpl?#0bB#14(fIx>$wvvdR(zxiRZnnhQyyC&Ek0t}V}3!6$! zwVIn0sioZ?cBRgHM(7}xl$q-88uH8kJDk75X+kTnX9WwkE!|0d7jSxyQo<06qch7_ z7~?izO!jEtn<-$YsIwso^O?p{jdgXL zC>dkbd*+Ln!H+R-iws>7?@liTn@F9Xc$s9#W`thUDmwf9k|y#!_qrF(j58Cysx}?9 zF_#Km+2zxDxEEC#AOf@7?b5Jgo)c`kQ!(euW~$TZ!+iHidn|07DaF6sM{FW!e8%Z(!UA#X$se|i17qhcU&H@=GcD{+zGdFgAwDZ^^F7az zwW6DTzxjPe^L8rE#sO+Ic;^4-CS%k1YRgGYG5Juywc}UR@3(kJ9#*oR|MYWT&5{fi zq2kic_}uA+*=56QjTAva=Wnx_2W-SnQzhV%v~|)CpekF+QePhl%VSJ|uOiQ5tM<}i z_6FFG?(=Qi0o1mMws8xHBNOX*gP0XM3;78824s4Tec?V;Z zgSjC%f=~k(^r4PPkCuK&|3Y*yOo@5HKN*1yH0%lOn5~%*)R)iAs0+>&|jHXBq0+vkC+Gv3GHeb(&}A|=zsiMU+r{q6bfc2o$VxJ7s*?eyxnc2yw^fRJ7u<`h*LXsCQhycFv@r}u(L z4EK7Tewcl}hsn~5d{r6jJxAu6m~-#p)dm77?QYjy%Fffz?DJ9!cV_r*slGqIfM>iWRn78S z=pi_(C>5-Lcgh`O`HvLj%Qy}+*q1(oVw*)ps>LP-dPiZY*42o2elDO3sPOtuvQ#wY zixNMLV!!T9m3^+3PfKCRO8g-6w#H=RgRUoA?G+eFJtRY{KmN{Q#n;qS7$jL)25HPE zC#qFq!MS^*b$v*GjLm*hFE9a-kPwp;eQzh8`vM&uKa=}KugR5LBG8q)2xi+me5f}5 zgtye;$4h_uz4N?>ED_6LvqF+6?+O0&aqxu(iNO2F1<|dBtiO`zx9h zzf+W0V4(A=sU^ zdZ#4>RXR6Nv!`P;B-yn7<<)(gPwTWGNE|<^d)Xi&Q%jNh1r&R(x$lAOH!4Peqy%Y*2b2j3+ZGZ0?R2_XaEwvH{;%b@tt5 zRayFnldv*&dvDwayWQ1>%rls#hyg^g(PmF;jAI}KZ(R?(CsA)5oy-3?u1jxzZ2_dh zgzy$sPMIFre|Of`Y2c5Qm!Pbmd2ovRT0~4hl2aPb!Z6RDCJ>1mcy+pfRyJfF<&{|g zc{h6ZnKGRT9;v7a*?Wv9!rPAY35M71Eq%em7OuxJhv!mnerJiiOB|P-L}bI7LpIE{JV!)5bFS+Vj(pPkuw6$|k})7-EkIU<7Q1 zHg;6Yi1XkxFC%^|SfM^WkCK_|hqspa^I`0&fHZ*l(UY9<*tJ=80TLH3f=PeyHB(AN zMb5KohhKatA&)eKKR*c{=TxVi2#|vHG4iZD&=vt6kSa=-wu!?wRe)t8WPKM#!sgR57)10D z{ilrmG8$Q)_8Gh)FIPHlZHt-o(q2Rzn5v%J-qSXI1z#N(Lh0x2GXL<)g~??q6V(Kj zHsPe_uOt@B;dQt9Zr|gk9>uU~H*(?K3Z*y>i-$c)QKpZ`e;g;TkpKnN(xtn~6rpeb zJ4TA|(|+ z+6R*Nl$+6c%ElL6LE^>HUIhJqyJTU$@cKf6ux|9;{G|9#;7vuN#KqWbBg-)_zDvp56@D^6xzw8m>*zf)6C`zUr@a^)?{&v?6f#x7JAp35aB^wV4Q`AAjcKOb%1hQAFhB zlV2jliCX06O0&07$@-yU&|K5kwjtk*Dr zxDNkpfK~0>A7k9#hyEzZspDkm`3$;xQTCMHS0;F3H|FBUSL&2H28Bh_y2uQ@iLSTi z(fYEK)G+6t!M|wxm{V8zKx?2%cxq^qQ?bnfisto^iF3$q@g=nsH99S(v8zwKCDC7N zq*?9y&y5AX1-cMXgUkulI=1}NSMXZ{;a5N#_@H7D!)|h&R?K`OUW^||Y*t|8OnJE^ zGZAO1J}ge9L3n)P11YXGAun-I8*LLEh;nTpy-01Xk!sqn_vKF~fhzt~n!4Jfe2IYZ z2{Od2sfQxJ13PTCmP^HC?vyAliah?yf6NN)_ zcWY;dvT5rxGbHB}q_ZJsH)6TVbg$Cb!lyx=0gixlHzV0ZFn5tln^>;1xRu|MiaTMJ z>t`~G%ba<*_=6;1faTiN(MWv5$Dn-K1!THiNfj)Z_whcjPpyvE?Z~UeSpOJisu3|c z`x^3cJxiDy*nSYA{2>A+D8Xe_MtRdF;7xdS%|P#W(^^(2n~3M)(1Xx=Ly;=tOEUKl zCRAVH6Q5~;f3`_n&*9@>R93K6{6=Sp(dn(wGH~7iD3dPv%MP6W=7#FS?WbMU`Ow^? zuf!~v+9BP-{=&$^H;|yWScpr62p5`rrJrr5{?}uV|HL!oPl)}t6sQ2vdd>POlfouu zDe=r{k!A{FB z(~#I-=x#ZCz1x2?AO9F}RmDo#wM;%a#c$1;LK+39KCig{Z$|Ie8_oa5Tyx+lKE*~35JCoW#9P9Et(ea+y-t28k7x)FY zXhG9|2bo_;9jEwR`GVx-x0-ot8WVZ(TlA|6vMG%`AIN_#_rP|FISIZ+*p$4t2$hu7GV9A?P1^Q2AG>G~(=3JV|L)Hw%7HpXpC~i_4>L z5|;LELTrEsr^pI=PRt@OLxF~}%#cOja1%bw>4j93ESILzdrZ@U3n5&g1o>wmm?)uQVb91*;8J?VLu{Rzh6aODSHB>@QHHuz3riYy5fmMDQ?6o81sYHmS8HNzqc}PT2ekzstQ%k zDtpB(YB09<_rGCZbZ2|nuB{4ie8rO%s@2)_W04E#wDzY%=Q;W_KT!Ay_`R1C_vIsbjSGd|$KL_pl) z495YQwFzdGV$f*XWXajRjV9nb0nb|RSy@r8mmJg)!TBu|Q~g4+8&&KUoVHD5^2EM? z^pD^HLdxd;7ncrhv33G1GvHcmGP)lwWE(z*cyOfIologQS}0~YFmQF~2VN~dp1Tr8 zjxI`Rr`n;+FVaphSAQ=JtHeJ{o^cgQieN(c$z!TALg;{6#S$&1wN2Sy-ZjkUVwM~M zAm6X3`-uDb6n}H7a)!sWgXd33P6C~DfWIxdWRa0CJ~YqzPlw^&j9!vBDIzZ*-}5p5 z{dLuVTSd`@q7XzYG9ZJV@a^ld$+esoPArJHyz}PxrjgkCxu97sR!t}O<-`D-1-29Z zYMd94o|bMAto90^a?PYbD)hT}=;8{58^J*kf1lB8%x7HCj160XcbEqFSPFd*@M--D z+LEg574s5ACloN?m4*@@Mr9>1eW%4XL%cvt{amj8vgVl1zCegnrb z=8BW^%pNl8*U_TYx4==Xu^TfvtlEjE7Sf~Rb?;~q4CyX)os8O?GrUxD)Un(@MJban zwU64}|M;cmspJuoWbVXc2iL?M}5MFBTgft)ED}ePsYKl;0Dgpit{*j?C;8@_ zJiZQM_4VfQb+>4Z?T7f#^9!P@T6~)rjl1c$&>=;7@wBln3p5=25vvc#9DOP{W~aM3 z5_l(0`Ed?zSVC{?vAE_^=7sb^*fScgqKH%D8TMrUevh zt1qRvZ^RnUzWR@L)6*0*AG4LQb9<6++T|6zP;SNHEb8LxUlw$UrX^0Y`*{ zD02C2gzSdGluluwqk@?=!wr%&?C7L0gm*URXluZ*hH%rb%4VcH!tP-8^NG{O3^aNA zTF{sxRCz44=KITj42oM22Ly_f4b0=c*ZpLYHT^m@a)Wb9F2vEb9@o#&m;Vp}+Fo5(x772lMIWz*tUJlf;7gMcSW3g@x-rL&IrD`;8MgZG|4m z*S;aR3kc;G4ya?{lBZX=8R$^AaSVHYAo0;H@MA!AYdEJA4I-T`_6vc#Ksvo3?xF&t zntHu?LY#JiR%JL%j@BWms^zNEy1eJpmHAEp;CLV};xVUZB1|;Vcc^5}g%2vWJt_|v z@x`r?960)ds`iJsko)gBUm|`>5b)d!(dL+5esR*uL$}^{CNF^x1zVEq>v4hqJfJ7t zCt`#r{b|sb?a6=c87F!Ntd0!GhpyGkeC-5EU#4>%Sn?zr651{QbS*#=Nw+xXck6cT zqmfT)YPj)%qZg>%lX>js`njA!Xh&nFyfML8D8X*r*Jn%3*bIB9nY3#A8^>V0m7={} z1r_s+N3RT6N=G$Vtsb>)dJec>v$Ef0-iOC-)yr#`ow2+T%k4Ujh)UIj%Md=g_VV@J zV6`oW8yw@~HVYPU=ctq5gB=+Cbo6T}hsWB{%UZ)J#)qOvzcYSb+ad22;K9B1c@bV9 z_^UgoJx97PYUrnv47OT=2+}x5ZR8DLTzn>{a~h1LVmCRZNSizq^2kE%BD}(0luSR` z-9=n<+uhXt&al1>%sh{#*77TaN|=;=b4p`+D$Z@+EjwG>eCm6#TmqLl=eRB+Cd`4j z{06?b)=Bg>HZOea5MBcOnDL%a;BZ7$7^u0YCc|;1s>NFIGs;ksH6Cq6maH zzRXffV_Mc5lH|rEUQa<7BvwTE_Wq7bgP(-CI~GR#8QlH~Dxhz9p)jPkFbG72cu%y+D&Y8yxzq38-U#il_B4N&#HY^!I6)UNHDCSqC96B;* z!?PwSERXs=0gZjtsnJV0lZ8W7yldfyN#21%ZY_1*pXe`N+YpTR;S(_*wTFALkAM#o zr=;-~hE4L4ikr7Ty)8>i)i-%p3Soz?0fq~IoS5GG({o;5&CQBdh z+0(xF;^V;}Q(*<q^UkBv#~qv)y9f$L8)JqPePrG zd3pUjDfct%;TVBIjHV2K>R@?LGr&XYPB=$XA$L-~87WKc)t{|~ zC$!RDY^BlCQZCGM%{EL;=)1=eYN^)(k4;<^_G^SX6mmP!1&^77K~+pJ8!RfMoAnv{X^b%|ehFaJO~VuVPhmUW2=Aq+xUO`#6_ z4YY{pyH|@VTwyi{!-;!N5-%-+a61=w>Rh}*M^SIPayP`}uZ?@uuWqX2(l2fA|GJG^ z>LuU#M)arBlcu@9u)_N)s}S+vk6|uU%w*;HHk79?ylH&&uyDLt!O0;U2;=qR)T-#L z%X3dj1E(SQ7k9*1fEOi&&!pdtKJtD|2PjUe7M7T8Rw8IwW(x8F`UsC7Nt4D}w?73C z`TGD0fap^Z>Z-3V-zj)1YRk;c#4gap2x-4#gvPr_m!^T2ljC3+``2U3o`zGF5oxjk z|8DU0r*+2k<8>9wpa+BOT8M`kk2i+kI_`B}XCzfbz+ZoSy*Xs;oopT}I$wBUWd5(L zwKF=dIFmzP=B(Dr)Sojq%ZF-k5~gEK$tkVpl6b5442W*8ViSi@#bRo?wziN+VPA2U zjm0#kHw^8ivDNv+Tf9D!?4eSkdd*9O{uTH^>)-B8mNZ^-a2_ZA{}~w(=WAnBjpDM ze%`??+Q$=_Iu!A%(Oh9&>NF6e%NlL5ql-W@Y|(KZFWH*k_aM?T0n0EJD13ZzHXJf~ zkW~%ybSfzgckdj|0Ch|H(xG zEuWB)48PYNa7yh=Q!zdP?AJpZN8YjZ9TnqqF~xptYmLuWq ze2wJVRl7^3#AtrB>b?3Zily9Fz!Bv=rPE(6NiMv6jTO8>l02!lJ@pBNkL*q1L=~_f_Jaj{y|1xAY^1xmhd>V6S>%JB9 zh^rFX9waeh3X?L{8U^Pw#qjAQ3&^C0>18$i9~bdB4Mmk7FWA*P**#H^=qeXY|#9SIy9NM+Wy6E&bGa&T$^5!#lu| z_-!TiXOLO#xT$06``N9c5v*(!Kd^b#xk-KFAVT?dP}0DNEWi_)KT=f~NJKk{G*Jk7 zP;$XG^hsP|m=!lk+iX~C(jS%briDUB{dH(f%2E>1|IxKpyp_Ld4h!ENc+6du<7a|1 zjC52R`FbJ3VtDJw6?cIpHtElMS#ux7zdsdh{1o%=6M>s`BVh|@2gJ7+Lx=QY>^5j? zK)ttz)Ftk@j@btvU#e|u-!IQYCpf_6pLJ?{$6bE=^loOk{m>p;zCE+eto3 zv|)%iVU;D*RNLKmh0AoBdSTAJP~4C-&9Gl z>@~PHAkKp1B6krQUT#opzwE0zb13JiZ#-ZHHq+t@PPs*DDU`o7_54$A?u%5um%}mX zO1>xYE*mQ$jzZpyL;lANXW`Lz(f(&tJzaNy{0+&va6UH040szw0hgIBt%oPI_L!^E z2A}IdE3d%gSNPkWO9$kMhvwP*>+WL8cZm-SmK^~zf&T)8PKc4yET{e>lf0LKgaIUi z`=HA^^ZVF0{w|L7cg*sc(XKuG4aLQ8AhXFzkm(g2zN0=2;lU)THCpzToYCG0%#{E4 zl;w(L#lknt`nzeb%h7jB5S5udQ+10NtsmW-r&ndsQZm9D^DiPkq>_6EYDl5gANP^n zsRUgI$AzJf#i1)YSmE3YzaGX|dq!w1bSe9`xY2FO!C(UVj0&LiNg(;kXQl57*l_aN zR#oum3BunuO6$wJRIF%twG&lu} zEY$B)!ZTp8r(q2jjr#5BZ;;i04}Qb7$}u%c>Yv1vb+Llm$trvCP54 znLxbz4wAFBbl%w-G}7^HU>s_G`J+oI3eTbp)IldU*zWuC@80KMiC}qRh<3kygOJQe zeu3uT{-?cL_CCI9DD(cmgJk+>5Ai5d)ss1^BaH*xW|QwQNiM3_SlL%wW<`HFIiNW7BWpCI+~`#mbEoo< zVjGy~WTW07!RQer&e!k-kjscT2~MroDQ!tDh}nFY3!Mn(qdXC=`F13QYPy*QLQCTM znLp|S@akh9fkA*&e-=O%fsX}{`w3A-z{3Y856QyYu)5;kAI)W5?n)j>l6(w3mu`^g ze|xY1>ap++5V5!%qbjbFp3mcD7|?GbL706#zNCzw8q&PoY zNT*sbJ`SrE?y|hgLTx%-EK*mci~--%DU>0zGppR~sT<&|#=8k!4eql))tt}3y4x99 zf<}U07K^k+=lw?oq6BmI*`Wxk8{lR)Kdxyy0gkRty(mVd&mNbOq^?=3fA;^vPNE%` zn_DDF&gWTgr?!EbOvk1;6Pw;DmO>m>mNbhnnCgfP~))7Q53@Zoi{(;roW z)|Zj!2NHvqGwuFo)UL$9D3^3IXaH+QRTjtY!MFC>Le+vlF@;qZT|Gi4H!xMS(08=d zeji?84W-GyDCb)EaTwX0MBEt>wP#aP{duCl8gYThIO+a!q9*R+QN6>62+*j3PyHY) zW2;tT8Srd{V&5%SyB>xk*%|jcI@#83`bYZ0T3b$Pd62dlIfra&6epRg4ZLzDvI0TUA4G z3UkH(PB9=)Hc3)biLLw#CnfvjYkIPkmZ+}l+|L&3p~w{%tG6MKttRaS3&MMAQM}Yj z>#EFqs!BN6_GF81UA5`>Jm0@}0r0~N+VvDCMx#AJ^UEeFzL=sInuI8WC$!^Q6pt)` zWjSl?Q7_Rcpmq3ZLy{~&Phq)u>$iLTX*#6wARk5(ae z;08g_>`SFUIB^eIv0=Gdw{lsZ?}HJ3mn0~##P@bU>9p313UJD~2)kHU>MPAODYp2x z%Li5vQLP3Es0LsQ!fSaM3d@j&)K?U*M|+Cxa7+NTm=L1LHtYF&YAZK-()Fqs}V;v zyiiU>KXXFfMR`IY`t$LMRq_d_;#N*waSpRF3CHvG(30ehx6iQbuH%i7HF|Nd1^a?r zzd#l*U>?E~WB6~NYq3a?ZAxS)YtK5$=Zbb(AYK+wcghBYx_Hu`i<3s`!1-*Kbs_cu z?zp_Kb#JJl?mhjCvv0Mu?>)z-)P?qO2}=`W&E`N`43etafgAg%WJ))BHewvX@Z{=D z*MluW@!Kn8$To%P0JwUE*?8HW*|b{nE@cT)=Gxwl>1m*tN|t>%{6x@YXW$yj1_F9G zXNOq)p_txWeIqKOv)t_QE@Ny zafUr_KfLj~zgEj`%!Lg<;tI9sl^&)E`#s;H#glj##e;M{^sk-+j=20vh?ZRsJM5UN zoL|EkS-J!|HGbc`r-(fyboGn(`i1*GSk^Hk)DjRad3I9EBB!>pH`X1aA2A60Zn%oK zC`z9#c^~`+Y8K{xrTL1Yp{YsgL5ZfMx>woRX61RQg0l6NxBFx8^L8YVoAhH8Jex^` zSloXeMEhs>QW5<4G{;?RUtT9K^J&ess@DqdSi@d#;<6FvMbn|K5z^g;$@%~3PU_#- z(d=2~^?7{N%P(OQCuNxFST1+j=`W|f-g(zQl+`8F1*R6poTwRxi<|Q~piEo` zx)Z*#{4?5GnH2CzhOF){L(#N2A2p2uX*Y1n+|GZ@F&sj%E}S4OHVVh*#QJ}uD z@A~1P^>edeo(XW8&2}ZA75+X5&4L#oXccI4>!kn3cL%5X*>F|B%$D30kZhUYu!7fq zsiCRhOtU`crdt?7mv1@7p4caN19N8seHkB+JceeW`b@})#94-s+_gG?Tf6i=jkLd{Brn^9r7)p>OL~;5iGF6e z^XDo;SqPe(!$O7a)qj9xdIoN<08OzXkqeh~I#}#5=jOBPaijuIn1Ej9{YJ{8_uq@#r7&xd2tYo;)*EF%TD z(XvJy=*epq*UWA@fI>3}OdIlx=AMO(ILlBNul6lmeX^RWX1VV0WMs_6XSIe}*LD|Q zn&`&*A_&ACu^!R=ISq11)9&jlkvKKXIyQx|6>;G4L*{1#>LN zASI3Xs*n6TIa=-0J0FKPZa(@*D6kiwnXGRz8bruJ5N7eE`ZN|QhhN|70 zr>vgYOP%C%?Fqz<#`>_x`v)*O)G7Y!3%&OV^4crI>vIBJ>?F;UZv!Pzgo+ViIC03* zAi1_d2pOx>k #$sZ^X`{+6!gm0(Sfk)t`_-BciKIL z^&O}0Oh)%y&a(eo)nd&W843Pe!NSTTlMYK;bEf{KB%Q$7dHU=*fj*>9(zrvt-5Nk6 zNltA4m6Rq+@>?JM-IydOK>|JB>p6Yp5v{*W%Xb}1OFbfBQ#k+yt*xs*0@7yBdt9le zWUceCu;0K*5+qhr)V_Ge5w4?tIfa&gN;K)dvelb+j42mnG|gXSz@fY%(FnmF%dcq7 zkM3hRO&vPD{|P2HHtlYrqR_W|R0*Bi!;kMJY;<0-)bCl^0Nv}pg}3$Bi9PZ7B61r2 zYTQtujdA(>^wGcU02;K7hXb-oTyR~ttmEG(kCi;}V;@Vk24=D!hHJk<0V#^|y)Sa7 z<+VqxlOfJ6OO_g&6uWGAN=KynF%U;I;Nu^Ws;e?bNC>eeAX?B?@gi^Uzv=#GPB_yEBHGE(xNS2;`_ zXj5H}uhCOv5|uRNY>ql43Oa_%S-<{k>${})7flXTPT^QZe!+VRK>@TXdB(~K)-((^ z*q_AAp3syL*Zy&EA51*0EFc&;P5XNZ=rGZGH4HM`eSS1&IlSBS^!O@U^AFOszO{=>}pUZr%dZR-K+ z*y`>aL4JEP0$Tw|z?q=K1uY<_V{QMakGSY-&>ZSfynQ+bqFQnY6mwsJ z8X9>AKi~9-BnYRPyo@A45Y+nR{4*)`N;nP*J$5xb2Xj!s=qRt|LT7w=)(lO=t7*CS zi9`O4gwpLuK@fxiw=!Ugxs83o-#1=M(K_K%;EAtgygH<{h|bWsF5azIEsP2GCRVcG zD{tf4_lBqt&>P+&Z*eux`jD+#Nth*S|i$Rm_2dM7leS56s4KPfbAk9%q`z&S{Q zaF%WsvH-p?#^Us@ma$wb7t{aeHId2;qx!`WMq-+78Q{fKi9fC{re2l!+SMZbR+5;^ zu~cG)WfN*h;v*9`z2Vf_l+Q|_LSjFuelKBu#*v=7J|Gy2kveC5mPXPS5--nV`C@8W zZHoi#-tV#Ilc|A!yK0JCAn*Ryw`L*@ZjUEZ6(sC~FjQUoE@;Y1Z7k8xTKkGDI#8X!!AF(ZMFFz*TGb$}N_#+Qa?}G1QMZ8pkD7F37dNYN zrSdVqP@`IS5smZRaa?q1M}atL>M5x!{1hz3R|F!DJbgx45(LmW%UW+~PNzMPbg`gw zoyBlfq+XRWUU1$2&)W8J>RnoubPv@!@l8l9BC9P62se7>Xb2(-tGpwe@Ef^wWCniV+j`4)1l!KZ}%WJE-%H zjqTr?NYM$`8&HrF0A7}mP>Q&fPUe+bM!w{_k;WmZ0)bw+|_=vW!09WyzMvi z{LAXhg_+p)SCZr^-|>#YOwnJ>8oc|x!QWx>fZ&BI{-JdjeT%)-Sng9}W703xHu4Rx z%Vt15m~()UhiLN6;)UVfgDtWcG`0Q})C!7mteb8m7Qt1Na zc0F5{A&*kWvbkO}$3Ea@Kqj&;UMYgo&`cX)z@_5&J4&LkPOpsgn)ZCtYzPJ3xjwLQ z?kz;@3wlEFF8m*3Zy$8N*DOaLUeqavn;C_DZt}?~(Y==?{wB^~RdkRBy&fGk?jyNX z8>_)l$0aY!f~$_z{d0JQ@M9bJ%<9Qy(dLBCIbxbbG4?&{}usXO~&gbFNT^L+84 zQmgQx0aWq+Ht^rfk^v@b_CEooAIONMF+ zF?L;TUjJp_uC5=ktkSOXBOf}jq1pYj^#$idR1%2HtCGm!v0?3=pezBR}Tc68~|z%J=5w9pao-0jXT%?*mOE zsIeS5Y(F1b;A0XXGt@POx=0LY;)XKA5^^>kSKb1@!Y*wgH+cbEk|b-=9a&R^^`sa@ z0@ff&B-3nHtv=kaOuk#maRU3GNwbY)%XMPCpw*T^IbX664Cyi-60~3K7?1+Ln>gPF zkuGlnuFZ9z z!3^D3*7e9;lHAZ?rfg=D!t?m!3R*cIHa6RlGYpDS9|ShW*Kz<_N`T`-t}R6)%50g# zMBbYlM)uo~G>w1DG)m;|BqIF+`N0!DQn?7oxLz;N=r#?`3iK-%`-H%RQRf`_pTYqi z$lkj7#(Av`ezmYShk!>hTiHa5`o^DFr<0dO;)5Rb9&oHL<)qlX)40>lw@zU`ag&$F zl-3#C)pI4^b#4j-UiY4Jo`}T#?s`S&ZdT`OHYg!tvf6dqB1)Rh#wkliV3X!nH88%2vM z;#^v}j>r&!SJ@Xq<1e+fiumP{E<7W0dH-_ULGPT~#Q-aDvwa}TTVe+*G3-iB&|J*q zarmf;@1|*N%ie0@i^RKE)6g5}Q^%~QORv^Ep~O_xr>Gs?FY^2zTIKZx4%d@WVl}{lS+Q<$&+z_UpdOVV$Ky$R+{E4 za~p&bLo&IiJlLu(0-hAd-FKP%WK%%q(W;WpGPxbQ0$505GlR^w>)aUEqHjD6(-jz5 zq!wmWtQNRI5~gvDr?KRZdVvG-vd7c$&^j@pQj!kfjq76diQ@5FiRy(s7vT+asdzls zX2&*|Q@pv0qBpfPJ2#ETGQ9KgJi3gmIgP}@y;)31F?si~{o|pNV9Y0hd{056rh-zw zZh%z@UI!%SRqrxssP<5Xob~Uqvv&Q!3$&CZSuMvz11b5}X~?CkP2)F{0 z(s)Ge7C!nE>bWQ1%<&tYz7%45+SbAY-Pnc-aX-nw%wK4zhW?0=>}yF=HMZIOrq|ex zybba>EEVC7xtiuk7LZ9&^u37oXG8KWo!gRbvH)Id!7JD&&@x$ZenLX&TIl#?j_bhg zpy!)?4Z;nPzpazA;7fh*dxPOZr0fuW^w|p2*kO68^UIu|qErOdc36zKsxU1x9l?&E zo0S(k^?lX4wye?>GTfEa^G3FP>X?5#!Jp$2J)YZ*X@)WaH^q;&nETiCj9mUw)Y_GE zoBhLKLQV%}g=vu3M zSF~5`CYyaQ-&5Zx9Om$RZ>@6oCV3Z|B2fnLk!5fl<``*Q8knn^-+HxV`^v+zfE-}9 zCC`5RK&^TdHk>Fi_QMx$BF`o?%uPSd-mar$^_aGi3Ci~i)FTi)$W{=WD7eMtHJJ94 za)qZNdeZk>Ct=S-#yJnfo7k|!cQz~o!P&?w7m z(-|;?Gc%O>*{x9*6gF%e)N zyCN_`xKs7!pN}cPPeB`oHikoE(Ze%$he-4y>e)nk_|t`)ybS1o{6d(H&^!X9H4_q# z@?O_q6u2GdD49`jZcH2G0sNd8OQP9B5 zK4|N1hc&);a3k)+lVXmyKi_ZmaMXFTAmRyP75anr8E}=i+k+}e=v7J;eY&T-PpQ-s zDgISz?FS?obd)|69^>zcGlWt19Y?kcD(pf9aQqB(4&}qiPX>Co zwZJc){eRU{2n{Z+&81JLrFW*;>tt|SILMvzZ@K$yAS;&~MIEa#rlZA>K*dmr9pJ4j zX!yzkD0Y6tAl#!f^GTisAkLOtTa!@vF$(_eem+To%Hk|yk9Jj8s@RPdB$akv;*SnXQ#Z&ZqRA6+2z4Oe` znac3x8)ZmNHR`+cMGiCFdyZ$&eLfmOytY^#dr{#;C>+Z?M%S8f@36)VZcEtl4UW$R{0&(82R$jM^KE_O@$h&zAYCy3kQSk0DVnnY(}C zG7q&8l3gA<+^9q2SR=8~yP8S9S?;O`zLo30(iPPytIEu$peH#{`AtXXv5=;gsF~<- z4#a<7oJ*zLA`FGOstgT1ORl*5$Y&^aG_lHBcWvX@M7VXWsxo5 zPJySop4!+BG8OrKNv%7*mHq6s1RBdU;$M;Cfb2OsD=Ez)PB7fCtC!xFc zG)AAQ8SDtZE_RW^7_bG^Ic3R}970Dsm1gmWf_N+UtcKEzaa3$S;W(zD2le2;lM~gh zE+JIasrE9up-adSD6gBP364TO;OrT9_{Q1ZP+{A4cy91fX!u2BD%8|g-OpPz)o$qL z+{xTzaq)JhaNnArowJ<>AhPg z6!`op#GZ0X4{lZN8%*()BpQgk1$*BlE6UTN63XeWn1X$I^*`XG2W6HY=8@MdNHS^0 zBpJ$dSfH${H}8H~pJH;1QjVLxvoqSb$P<#^B8%3+J}rj9l- z-qqYlM#;@mc z&$aD>0G*%Nod?R6VElb;Tdr;yr{UVpA8aYkZYhpJA{=%GR%NCH%u+zY@f|PCY>~IM z=7%CaMR`Ui9gAAsJ32DT-)RWB-dZr|L>2F^eC9MHEWgQdN1Bz&HBCdgkAD>8q^T|{D@Fu!^;a0 z_(8FLFk}6sPUeK$kj|#T@5VjzN%Z7sfb+RvU!4J{Sr#oXGa3d`iy6XXzc{UxIPj*L z&+5odBUWH33Gzvo6K{4SH$IzZXoeoSKenQze1okzI>&n=CH8{OJSQJLzF11NP!XIs z=wF2`+HDVHI3l?uG~y`QOC6GF->ej6xApy?@P5;~T18Sqt@)QjnELh1nZv+7NxVd7 z_!KrLLNA|8D6K1(O1ykZ ze3zpAtOr;4x4?i$nJfUp8cC%4-9H+W8_s8YvDi;ZnS#8WrBx1EHFGE<{Qb%T{sxst zV#RGE8(1ZYTS7V8+rW+u{r}0)I8lV1!}2{vdBs~BuXh<7a;U0u=n-SYH%IfffO1u@ ziW+%G17K%-3`Ihx3*_UaIsGOxXdfv6`tH=DHi$FdMN+Vq9^YRT(8H<%icxn3wrQ7d zqiUN7Iyq?acPcP>b5xr2C`}+)iGc+mVF zf#lpg@gIMkT#Lnr=NTMHM-ESbWOsnT>jH;3XK#)=$i$BBCmKf(+Vw3C@@11b4wkW9YAe4_P6z zmY4H);=L8q!Xqj!4rmtBpSvhhTMu!UmZK;sy5Hpps-r42m9T89URD{eMBU?mix|Yi@HK2-m zS9a9*G8Npit=7ERKLI`uLef69$$^AC+g@;QTQyi^?~sMS@>ZmNT)r6j^3di>>JFcZ zgI~YMEs^2%@L$*UQX2w`_-BkogO8s0BI3|o-}I8Jj7x)`g^yzqJS8+jN)T~MQf z`T4aEwu`d(y43T)Cyb1ksx&YJ_%WzVP3i^FEgu>mBlis!BUFHyu`hrc_3)8J>X!z* zfE4DAIKe<{DkS~*6+w6G!Gh=s4S$OqfVH|P`!QfvpW^uQvCr|mL&4?>)D6gFwemln z+zoQbkCTOa@5$^76LUE~N6?9zmrKc&@$3W3&IK{G#W9~hX5^-b9>n{8wPm51Q1-7{ zpr2Cf8J+g$G*4mc_|$2kIv_dwikls)b`ILdeT?hl+fAf~`y^<<+usom@TD*tQc9dx z_}rf#l5Eb5B?-}a3b_!@_gwV27jBPgaWCFz%Vx%ZYc3(5Q)>fHGdx&X&7u|eE=rff zh)xg&#m`JFY0}EZK5nHtPrW)A+nF`KXn zu;N~F>}zcIA1#hy`~SWEB=JsmbJJTr^q3;;O2ee=u%OiF|lJ|9=@h3GLwTw0%|O zf;2;R^LOloqRB^IIkG?7lo7l}>ny?QV;^{mH=WYz6|c)oLH=Nc;Jc^YN-J0jjq6Gx z)BVZK_Ek0e0Yc#~{)aoSS+n_KRBk9N3Wwh_JSwsZ_?&HxYxjY zYyzDedpXFKf3mZG)>i?(c#=z!vg;tO{+mhW~ceE|Jd zDg3%swe9>A_h=y8>|@XnOw$ZJjdXKL@=kvC>{Xjnj^H}lVd>@6NfA6VVu7%siFxxs za7fu%50MpV$*EdyTIpUHwD3;z(HmmJnJvW}AZ38!RSr08Xags@Lru*H*W_<~KfnG3 zJoV$qVH~X2%@8Lcc|jmRO-XpS_2+g&QfQzx=@7M#!WZ-(`pU&r%aI@QrQOLT$G}cp zYX5!k^Xj<$!3UV+c=rqcohai7AFf1j{Pf!hATRCnIsb(@`R)+wzqP!QG>7ZZWCBfB zncnT{gQpO{J6*Gu=6TJWs#>*Ys`cy8EiM$4Be^Vo?18soDo3|U%F z6AbAut_2QpGSQTYSxEOvk0KkB9wt-M1FA&~QUf*+$Y*L2KEQ`0xVd-%mb<_=)$;*?>Earzx7wqRX)!OA zHAxk9i!haA<5+D{1>j>2!_y%jt2)!%3*O;G^xVM9u?uxU+$hq-tSn@F)A8=<&n23J z(P4c-DME4yX>l#4OKiAP!j~e?ux}}1Z2pKTtI0aPJ9lrrd2Yp8eQY3KcsK)G>Tvhv z&r^`V)2N$c1<`|ZqR&<;m3+Vx?wPWXY^sSvEsMKjb!Y+i$C3m(A(k@50Ob|;7%KQ* zofCi&Rw3w}4u<0HXH*5(|7EZm4qU4Su{E7CHB4~EMrwhM-!j|Yi=DEiP z;pT!nS24)i4x2$4lDb>jLhm5IEnnNzBw3}7W{+)Xyw9~a9`>p`Rnxp0)3P(YB$ARu+#DyrDl!T+v@Wt7g?U>>Qy zwil6KD5xy!0aS;?M#(f*i40j-RpV6GLl+ex183#QJ&qz1^#-jdE|r^s{VdC;cG^-?dlkAxwn)9E+u&PE6KA@ zmTl*p)wCE@?Wj?BO%%y69cfxA?ym7?04Fcxhl}?zKRg4B4?Nw;B8X|Slx(@^BaNGx z{dvg6gfOGNjp0JOA&)R(EukqhQs-jM4~jyL!~8M|+g(B3`@N?a)Pa85kjn-i z;BVH?Nit|++Q;QjQWr1A@_EEZMU!QLbxPu}dpkJuw4nLa8{zHnE6cHzl^be<;Gnc& zSmLzCEbEr+w~w>I*=@G}QrJf%8V}g_BZS$rTx4x+yKG30J2v#_OVTS)p|l~BW*DF~WQwX5|Z>I@r1AzuGuzf+hn{(k;?Q%q&hmi(Ee7iAO!0fGlvG-K161iy`Lc=9^fMo*?* z!rJO~-v@*IU5;vrZt=Pw}c$dYdO1-i(>QN_dhkl9#-h>*`qJ! z{D*+`Fv1h44Dr$94i&$p1X$OGN|<>Ts)uGpMlwHqs*$nNniBPHdC1>XUp!E9A@}Xb zP}Wao0e>GB6$th1Z7|Cz#d6#v#}Jq{ufpBHA}JTcS<%FI*?0q$BSBm#>Rr}BC1lIx zq|V)o(?<3nO6^?jfDxjWBA8NYQSCRh7S!>W`Lpc(TO#xdGxPU6esl8eo!TwFlI#*C zDmdS7l*u(?*bv?Vt}AdbDhWfvMTQk{4YUcz`opZ;^HR6?oNd55WRslb`0W`?1jVOx`VzO(O*;9M_ zH^C)1TO$*lt(kNU@lsEs+)IdiZXMs#LNV6g&-PLrcsm(X6O!I1cipnF;hisIg12Oc z3!(oi{HOiE&Uvh+Q|{jf4@*qckc3@$Po?_U4(0WdmD2tn3t)A+M+4djjm~lRQkVGd zoroynH{9_kcSrYCA8k_SM)Snhz}VgUDuGU!>nbrqu{(6cFdy}(XHmo$`hT`K)l;GC zn#ozn+q38-s09J1l^)PNj*q@GaZHgOT0TPkr(uI=VC5p8Dgs~tg-nWX1CgS>BT)i6 z$m|%XH)RG9Y|aR{)rUdp*)FYtgznY+TjFp1SRCUUIh590gcu+C$qypcnVp=ot*{~3 z)&D#Aqt?ngGQ=LoUbvW7902fa+zHg{(1`e~p+iEeV(utE5>R<{V=&fLIl-KPv1(Rl zWSFX+#;BhU+jU%`U^WQ1wId0>)=8zYNi6V<{22dLI-v%fs&H(Pf5j{j)7P2iAs^AZn0nji3jPFGd0+$-{Dhg_eWp+R*Z! zb0$Dy;s2}HYu$x=(e*9^J+Q7d+qZ_vMNqKhp4bYgkHh^H^CJQ1aMw|rU--T|I6E$| zM+nuld7fK`^JCyHfBYgdDb?C+=_81pE||Xh-v_aZCf_*ZpZ*wpugOwHh@XN^%c}%i z&fiy;B7{$}PDPs_aR9{ME7=Iqg+fBwp$2lf1p|b?=$jd-+Gq?(ppaG0q*80)9%_ZR zr*4b37a(#<*zgt7^Swujn}5DkkNe*1ns4Q6Tm?y zhCha7E+N(erS<4-tM7|-&R33FHgCg(q-+s+&~eR^84U|pvNE3Kul44-5NfLv-iL`w z2~yAj%|+coOR*MAM?Ck>OP^NS}}H|Tq+MuIXU zuI-p{?^fY>?uWmpY0214P|R8GyWlBgAubE$B((mk{o!)ZeR-gffxgSY!UFKgU>>5K zZ9xph$9QcDmlIBIlaiSf6qz2TxyTybE{I8JH}4~q71}QMdQHMc1>^szQ#gq;dN@Pe zrx#L`V>+EB4k&0%GS|{IZ1rEb*YVS}!gZhZCgh>6>`W!a+eJ+1|42F)f2RNU|BnvH zVWdzFbIPHdD~B9L3Pnw+oJpwUOb%lsfAPLZAV!FHbfoYAR2=4t+- zWY(el7)SEJ=%0CR^5gN{rc>dn9&ufj62*^F`)jRLBNfFAv^0{${H(pQc-q@RH@I;S zrrtY05x~hV4&DzudWtJ%H*cTJ+InIZdLw%;9JMm}oDlW>Z#ncfn~;zhHK2qRv}Vup zRROQ11+rQBunY@JGPEMX!s*)415S^>D<=7dY|HIGUO?4}>qhc;)B6Q5;QITnII!Rc z*Dfj_c-hVZor3lTs;(;5|EpN~73VV;Yfeg$hLl-@p z%+3uo7L3BY7k8I;MeNg)&+_?Un;^C< z6G=ohf;Q`=IB(V8kb2mixzxM(E)(%X99kift=pxUbviLBw_gerKWV;CO{sqk;jZ&5 zz?ZP}=!VF;GtW1cMSrX^Z-yr>6^thAoF_wufU?*CKnS*N_!fH(DYmAVL4(}@)uK{s zms4l-Dn34w!A0utKXo(^AicT#j~e?2*qtL(eJQR>^Ez$01>eDaxGots z2p;ZZ6jyxx7pQg?-vGPCEX*)+j&6L_^3eYrT%FSecL28KteWKu)ikcWktc4%t62p|cl#fd#utO}rwDySiiBJgrkrR~Nj( zccP>^Mbe}^`F+!Q2g$jM^#TE$q8XuaeFt#L%SWbPoO+(@?00AE>n9xfb?R|WwOFs} z2tJB5O2axpK9MdItj4E@J z`6$(YS>i3H+b_*gc{WF?su484=uNFgc}hN5c>L(}$;^=x0LjC&l+Si`K;4pc-YPrbSq%KuhLA7T%Mhb?m6&kmiId0LP+?OiEsp12lA0| zspK*dz%|0xg>egCoP!W~o`^O-AdtZU9B(g@dlo+$O{B-rLo|#|{Rz?^jY%qit20fG zjx9Ws918<`_;yYUPWwZfz|NO;jvC^1`f6Ij|1C`O-~>z9xR3)`*7qykxu+p0oqu>bDYN7sS>8w}MdDr~hoQ4T#t&u6QDIkApVD$&Xkp*4tfy%T$ zr9QKBTnZ1B0#VSkve#o{q6!*`PKgE(6G6rOqA93kKy@EQmv>2nNgh$bTUW~T=0sXQ z!ff-67TqktmK)@{NxEw$&PD(ZKr-txo<~Zw&^Tf_!ATn6u$*}_ip+VOYA%+dOddLV zx3_!il{8Z@*wB?*CvgvIlN0QA_Cc=+J+L@z?vG0%% z4XKQut@GDUlGer~U*0>mp9;_1HyBcXe#7vE!JL=vt%1ld!7gEgsVihQEU~2J0chbBBV&I%o&n9BB`y`oY`AmH+J7p5WPc_K z|6Zbe>o3ue0vM(D!GeSU15es`a0Q){&4A8>-V=bgWbEEv2AG`CsHf+ehhXwk6N{0i zjbwRcwv?5h!|Jdrrobsd{E)&W2OIrQ6(SX>-vH6t!jHMy%z87x zo!aN>Z<$LNPdG5e7k9MYm?+O5cv4elE(X4cbTb%-==&5)43-A` zV9FeO#x%+O{a>_#6@^*}1q+4>{@L?>O^-F)KN0S*O8ZWNM$fE?wn?B^(UgQJau#O9s++(3pS0# zKOlm)aZ$myUFe6nEHu5u#*^c|QF}msnk3m8N((8=1A_w+ ztz<~nIe#ki1a_@!c@{j zdS?i1C7AHVmGz+*v8CA%BwgcaR5PNR>ooXP?RaJGbrHQ9(~gjlw&P(_r$oE-9J%aq zsBqCjf-~uC0@!N8ofW61B`r`UW$ak`kJO>N#M7|FfshAh0f!)1{{kw%()w&nHER-IAaF!HF*~n>|u$Asp4QyeCug_s5X#Qvp_AaIpaLNJLkp+5;b_ zBl|tyHqXmz?)OD=?a+xFjmmpAnS1ponnk-ICii;|FLeqjFJ0Uk7`!%eb+5Sd92BlZ zRKbS&=#yV*g|3Ye5(kIl4-Fq_&+AruM~%8EuBEyjnYWmuwo6W+J_Y(%MEOf)qrwf= zl0uGlgOoAwW2g2dMc4~0!;YX}*D0g;y}!0WS&5Jvb!yf|{e^R8R5K%MmYds2TH~yv zQPAce@&=C1uZp0&H%V}lTyXkY^Y^4+KCjZzc(=-Kl5KwQGUIn*kMjh+nFdm%{bOvB zg{alVh*?G*$k+WuaEfnOHqQ_LPhm3j&;z^^Uwe+vY{G6W^6;{{g}&On)%JP3rd|PF zRR8_vO)7A4{Z<(@@mp;&{aH6@H5&m@W9o_YF9JD`c^T$*@FkhtB5+8hXX7;sYl@|G zZVB0c)PGx+vniOp+_*5A?a-oCSUY-lqPL7dE>i~_U&XSI7{44tsy`J0bZuPt{IMl} zJY)59-zsp1_i>xa@-;rMXj06vq|;++w}b^^4EU5;vD4vgbf#|9wy=yGZ)}ixLO$Yt zRT1CIHB}AnJTfu^jT2>NIZ+H}Ck4A>@;in3jLrqN0c}T9Ouf#X&SCyXFOY^MBxnET zX4HN2C@Z58An&p;@O0Z#h+7JWv2XeE*?6dO);K zd&j(O7e??;LsFolA(AyW;ZMhT(F4PE1^DwW_r1p#)2^%jJpWzy%YkGsO@}ROAzVmo4lPvr*dIhDK z8H-aT*O=p{b&WrTbzj|LxKOd;HTjT^qbr3ahWAAx2Zle_cHA}!Sbz>5`kgB(9S8}n z^O@Qo)9OfO#;bQwnTv zg_W56wbw{INZo-+*5G*HsK+N)f5>fqNoosGA6bxTfUe$cXbAXZrCN^s3s1A!G_cAK zlLW}zIQP;7fY${-s#~ofhPa|`5llhZVVFc>p#JY?DiZSS*aOI1+#wnh@D*YL?@+6~ zhPRl)VArv-BznV?A*AoXf2eB2$VEE<-ldOm6hiR0OQD_yxdB}kZeMIr+SMLk9xo?G zk)5Gk$4JtS+LFrR8tP@!p^qu0aTjv)$Zd6?Zc}pD>_c$2M#9T}3N+HlExl2vhnbct z##@QI@Z%qqZ~|QfAnVr$HCH?Sz2q)_IJoi2#*?A)p)^&nO=D6oj&YIwfPavCE2Rf| zlb``nFG<>syy!xb9a9?U#RwBYaB^VFwv|NUF0Ieq^K{66VLzvk_otV)4<*(RQv0a} zKK;%5L#XMUj@o2`9i&qJ>itV&uf#0q@Ph%K>xshy{594-^+-KGh6f+<1b{p!@6Fi!_yG zwDwVrOIEHPA6g!`^J%{E=w-Z`(ZXw8KWAq7@n^YO;42E$tM4gQu%aYk;Rx*cWb`{; zK&Vf*R@g9DRJ|K_mRg$vezzU@Yv(^Z!7C|B4pr|qsvo72LGQW*?g*7i zdcId>nL+Qq`Su8F?HQbUqQ}}YSoO2ym`&+K{=0Rp`vZ<0ZHUY-q_{usjl=yi-_zs6BUl3OWOs$_f_i^rFj2qji)jy zH{138UmM0yo&F8B@*bTB zgsl`dT;ZK^rhv&Y>TqWlsQM4h$N-+CO*%duyUHwgc573T_EU+RWvaM9A2lw8s z1Z$_i1BSm%y91JT44u96DFT^uIQ*Ub{_@I&NKeW52u8NgLWo}IYoD2LE_-lr^$)*U zS@*I$vXmdA4R}? z${53q14EI7b@J%0^e@=`;wPwR1AkLi=)6L1WRs7s;DCcu*1vVQR6~k^1XCKid$lYF z-G)_{0bXthoGkH_qkXLREGz9c;lD*=oMZn zB<;ucYBaz3;NphfsJ?{PU6L8i_}mgQzs1lZ5^gV0XwJ+R@!UwV#kjicyFrJcKvSd4 zgKOXN+Mf;n_;hysDmil2{TB#-gk#+}2VS%)w7(8-l#=6ZgWF6j(6^>u)qDEgR5&bF z!xxEo9Q-OXYl}q$lvaY0jf)(vX=A{|u#;M)Lx>`)S>^p$CA^1qGyj!RzMKfGH1%*b z&r5{n^IOKvlW&n-himWcb(qpGQxl!eUwrfYxK!xHaA#G|XWt!A$L}4bzd7^e>Sj=3 z8uGRvEm{;Iw=uRGv)zk5vwAy{Sd|p|1G10j zf5x9}1#51f>cQ>|T)WMyRB0;AEGZ2)x;#t0>l?kO=nyJX!UP&ox_tmRJWl!#MM(aTXHVU z;X0l)lb@V`PO+T+OKHCBamPk3dj-las^sW|Q0U{GQY#QME#Sxy3lDtii<_}1A#^zbp9-&Yamqg5u5!=Bw zBKzI3MU?=vh9U5m-(d?OXqmAh-6d&8j>{!bj`$6~W)mY8W|DnWBasFqK8uAdcMtNO z4o2t7Bg)~N>$1Ut7?qgnpQ}SZQk(jAc9NN|IEWq$BLGS1*BquH{dZZsEp!GXpFeeZ z=#qM>P;Hw%lOS}M!#}Jzc#k0dFHStu9qZn!nF3(bih3+^PY%{+5&-L(O3;jB` zJ}t(6ybG^>7D@}A4^kXFBg);J)J##LR*0ijuxPBNRz1AQXHg6#w2P!Z8>IO&i%}ch zhnVkRp%$t_RxM+Q;rW6HqtZwT)iCD{Rq~eNApMj6EmH9$#=N%0#IKe4qGjO-J7}uG zwel0}GzZ&%M(82YvYmGEVMFSm?c-D(>L-Ik8POrz!p;!cvZz0`7&~ACn*5T=URR~A zTN=r*{~ThIj-mP7#e(4~tlJ#ow#(i*xcq`ymUoA`Km6L!-*~)dk1{q#U8c}`-<=o8{{t<~TM9Lqbc=%{L|6@x`D@`1Qo0q+*F1IBtbG=m6;M{T3@2SpBc zFJbe;Sd*f}n8)|b|A&QZ0dPzx>OtuolX z(hvkZj)SPbxli6Nn^m#py?D-(j#rdYU8mejb;cSq(U;UCA3pcjVOkR~wqOhGnx2r4 zyx^oN(6P64kWCg#X*sG7@ke)IByKjfb%8z39Rl~{ukybVMwkwtS|#0M+fN4=4m$Dl zby<$MhVKACJ>6fH)oc0d%SBddhn2$O$@9VQXP@;l*zm_Q@ZzHT%%K1>c)I0tUb@Eu z(=`jx?Vg^}cLF|tII})Z{+;f>{$1OpiWmI*T)u{k7RCVow=dFlNqeQa&4TRD-a{+y zWJ?K8cmWx88tgGi@O47+jAgQI)_}By7o?l*FWV8qt7KGMV8wZfc#whFzvTW|ZMPYp zPgeS0oI)4W0`)gXZB^&~YzHsEg?vqkSQh@jC?}=0TO<4!Z@T`FL62}R1ToVA&t2tA z@)uX1(mMl>R8{V2{LI6sqr6lptC2YNoX`PSy+VqmT&k?vhQh}k6_{HR7k6f-p(7*h z{)+DyX;t*tO?rb-P$G8?MGf+!uQ`hvo41cz?;YzqaD*7UxM8s#^h9@KU2BY4AjcO$L>2 z6(I(JWEK)_2%K(4rWkB2B8PcL`u7h9!9vucWz1i<#Nnk) zNY0^CSUieSZ0gxFkxKZo{T0$qdes0w0u;jbfYRlN3&?8}k135^U8?@`^+>q*z+An_ z*7kq3gMa=;b*+Y@X_EwqfAc+~13}7Aw^Si`zm@CrCJouJHH%c-SLl9KrP!9evsa++4(^_ z^@qIVePi6-|0oiwundSCDL_+X=MdYUSHOokKhe7;RLpml3J@1msj_vrP8PLAJeUh= z!reH(@-+h*hgyGgiGaj5t79@kDRHSpy!w%6A#TTtx=xC6RfF#*Hw1++N;r~tc?XR zxJuLE0*uAcTMg|^F&dCu9l1#LR+_*bbR`nR;GkkiGE(S`04eHnt&mUTySJhHxTehf zK~VyH*wJI7f_V$RcVK>-RMWN)H85=IDi^dPJYSlK15W;CHU#@1(|lp4Hzv0iAxDGkj%0LE_jXp<9_-;=dtTCxoB6SUg?cj? zfunpg7ROwo|6=ut?-62r`0t-Tl6ECW%uUs3J<-WS8tfg8J}n}rG3AjR+k;qvlLeei z7x5IkZN@b_$r*e4vnn9GRRpm2_2-GgU%=QLxLnln$KiWTVfvNvpmjSyB}4wP;zzoT zd^V{y*w{^l)k4p zbOk)X$UMZP7Z{j6MToD_k`o8b1{VXd)K@S95tv=>5*+Vz@P;-xQRwb5IWaH{9xNdC zRe&zqSVHp9s2zPW=JMU_sdG+MmXKUDY86a45jN*KQN}b6no?vr+{MN2cA8^EOD~eL zNki)-c(zI@(}a3_jxoLQxgoi%sZ7rbzAGu~4yCjT?qJE%GnQ==6a{Jq6`Qi&Q_SLt_z|F;j=Im zw8Kxz#7zgh^>HyU6MzyG36`QpfZ!Zcc00eshm1^gLhOt!7&cFYY^5>X80Ew-K_5{B zsYDE6FVr4;;_zo>?Z=8i8gY!=zdMr4PbYWw4VXSgU#vxOtw9-=2_>1UqGb`4J}!E; z5zFlljdmEIq3_@piPj%8+d4z+dnY4pzf>Br8_UWp_$L_>)A2lFa+e4uoQL-49h!n# zY_&%~vgo5)S^p@CS>bEbsCR0vArgp@EqQyL!Lr-LvrMTm^-(&dQ%bev>rjgW|4 z{nJJl)vuk!GhFtn96`x2xQPo?3p40y6uuHkP=p=5;&Ea{QOk4g<`8dAOcH~b$!%G+ z?)TW@eky`|4vKFH%l&y6E{Qp?B`3AC4dpu@=Kma{4f~_l*U7I2+*FDX*{FTRvTR;# z96lhUnI;QWABE2S`wbV>=vR57G9RY7t(mD%1e&!N)-io3-Qr9k-4 z_6Jx5pUhhYw`OJ#oAj*KO8(A7=E2ojtst*eni-S2dpec~lDu>+hwX@f_;AcO=CRDi z6W=Q^3+Xuus1!7Rb64!x9Yn=?O(4&5 zLnn8$F#gxk=cQ?XZUUMBf}$Lw{y!dx97}Knbk2iMd%}d7!kOA9-^Y9toX4@@2h!_| zURUJ{kpORbR@M7VmNc_`h^0&TZGp@nEf)0dSmL=oE^}~PID2j%r-nPtP*bYEt=8K@ z$uVo-!u`SaAWtfoL?+zmkri0byfd!MQo;VpZ6JLf|6a;9Q6`LFp6dP2xb5DKx+nlp zlNIM|8sXfxZVl#2ThHFUXN^Ii9x0O)Vm_Rq)sQ&0yS)%NsqOdP@edG!))!(6pN=HZ~5hXhb5{gM{X z=Th(?iO>Ur=AbruSPJTfG`m6vL|t|4aaT^BD52w_LDU^`0r^5pG_CP5pG!jT5W6!T z3;b6WlI+CDS{_!mYI$o1(qXkVWB;vfba$hV}g-Dhwi+7To0D4g2>8AXXE95Ec-ABl zqlrDrfbDrMW5xx-MV3b_#hP@Cq&z7ps1+&m!GuDF$8}Mm*Go18!_4W)vRF-D-dXPM zh|e%*mq0ayAIU3oS$&XH67|7KwN#c@(a5z!4wSX~36j5011Vij#NE{Pakv3K(1I?1 zFBrO6F+imsJR1gMki;p)4P#uq!3O;*bZDSMj{sl`9kafaGD zzj4eHfA7!~7tvfyRY{^EYYTK36Na8^HU7Df!Chijq~^2pjuX4BP|?xi>xMqpBbPJD2Wyaf2%fc*|TMjhprI>^$z*jy$b;vwBg+$qtihwn2*u-++l*U{he5$)bHgP znei=&LvkJTCNfur9KCU1P~V@Kg4#$c_k6(&BeL4q`lRCFO|T&XfT8hG|E9YZh=RFE zK!#-t`3*YH)qosO=o}GeK(-Ve9wtR77Mf1YU2x5RR-A$IeTsv1I0cOn$^5O#FpPXPl#Gr*KCAsBjeV3$bE%#lzj|ify zRfEh)p(VtwA{$^QMRfJF1=m8RoJ}9}TDE{rp6d90fi+l*K{x>hML2E?D!}2cIK>vl ze8{+|0;`ctc?9vZ^G>7-R9AI=y_+p1;wqps!w9)m)0|sI&xa5~Qpa9ov+KQT-X4E{ zn@f=NGhDt;#+zd;yuuzYyjcDwGUvYVC>8uv^m}-ZmKEKh#ZUDGb>}%V{l9S_ucDH~ zhm)@|KxyKCZbmoKmw5qqH@>#T$07MA>lo~~v_iYLs;m;W4>B{d+~y!wFg*^VvzQ^v zGNM<0poIEZaZVaD2V|JH6tz%!Gs-x$aN zs1{TM0N|F|HOhO1jQut7wEU9Zs*M<2YwCh%5x>_dv&GFAo8CJm-g~Ebwxu zE`e-9&c-tAYFepa;?1zW=0Lo=x&M4)iI554R4C|crrsW zW`ZxNcW^nm3;0ByCXg-3=3z0W8?a)!-V^w|o7gdJpIjR?!sT6A^){OJ9xo*CkU=>~ z9kdzA8IlYr$-&9va+(HBWvbm%+X!k{$~V{|FD~T%6kjl`k2_SOVyZyZ zu4i=X8;;wWxIE3s&2ioJq#jhUfQwyuBJ)>wxh#Rfi&D$Isn}N@9gd~n@B*WFcP4mW zp@p1)E->F&-i|rN|65At5kAoE~yq% zh3$q#E&#@7sNpPCD79q(^Mh(+~QU9t3QE#G^i?n_7Lg+VN720@2&;qrF z6if7$aYx6Yr2VoiUYX7HU!c41f3#B>9zC-RkHunewmNJJOKdM=t2aKY@>8fd_}+ql zmN)otGH8ihs1P zJmE2J9-7!7F-^ z0ZV@l>xfVyU&REZ({-SVQ3UjQ4eLJwNKv_5RBRlCLS=@M3HXKI~Y`R^P#YdHC~4OG~djyZ&5>)ejI z+(Ym2q9?}5FzMocH#eh~ya4RvwttKPt*Re8$qLUD!2@*|>l zF6$tCVr~MN)l)#yQxKW)dl)|Hx}3h9G4=E4CoPe_zaPXHVA_qipoP?;*O|@72%7#e z_n19no^ny{>qA=g_*HU8ZIp`(eU}T9k&aM8uwoIp%SI~__IAjZ+H;Ofyh2t5c;%&p z`|U>hhWXnhdPqbT7QOhBTmVMdxdb7cu)APIcQ6A+?Jq!IvR$2nU{WDB!S#H&DVWYw zAhKdu$B&tBu(+IwopNVOK#)vzr;tJe#;c0Kk@RLbf(W{jZ`_Zd#G5biYe99>h-&8umzQBrwE=gT0aw%xg=jd?zu(S&Zhn;%wQ_BU=_A~-FX*e0`8 zPAHiSBK-_{7(VUXu{XQxvGMB}W~Sq1yuogDkEa}(2QiaFT&zXhFJ+~+S#NzMbb(MV zgd&y#83M@-;XTZ*r?KMc6my-ShdQZFhkcL~6e}-iKEW2#r-OJ& zBYgtN?L8#B>Y&Wwp#p)S8@Z~7N0HROS8aKMPBR&savm>c?rDAJ3@<=zEfccE1C?^u zEy0hYK|?gwwy5Xw4?avV82ZoFdaVh3tN#FG%8*pQye_4RJsN#TZYRMl31}nfS_Z+E zs7^xUZp`g1ljlG%D=FG=b)u=qIyTA)uEL7n^UGhK3yw$8`hi2k5Tol8CEMXGD__C+ z;vGX2Ql2e>JWNIiA$*PusChtVRh=jnj_?L)`0&6H+Jah5Kn}YjP6jvf2RCe@4hIzx zdk;Shky7Xhs8!VEU)sM4{EZ++P<$Sl?8>@nKbK?_#fTy>CY@BV5!J=WITL0s$2_yJbs~B#^z3sfcRQ;ies$K#CN|lRspT@8p8<}3ZF|X8 z1k$vh!^$`Tc&VUzO<(8KqO=p`y6*7Zrm49*=R&^_ek_-RJAC3l9Lgm}nH10qcmcXD zyHrH3tH~VC`W4^d9jN~%WLXY1sdevYpYks4OTd@bVdOpc*GKza`TwgDE?bE$j;Uz= zuKoWvM5N_CeP-PisL>+SgZKOxNKBob9r072!tx??)Z)<_V&PEkew)5yEUd zJ|O2w4g#Wl;H|)rN}*SN>vJWR5zob`hQFRKkhZ#WG^V%Uj3{nnqsZUShrM6;m4ACx zQGt1p^>gfs3H=T;Fg=1gxgMhN^Qx4{nIh(isCyH*+5QJKjL?Ae0oxFaR=0~d76@Ir zu&9f%ZNfe8&+)r%_sO-Q5V_DU$0iS4bxTk#08Yloj|DYvHW@va3r2M{$3evrj?Bjv zi;|vW8J9g{T;H@bgN|=Mo{BlR`m^scJWzsEI##}9*A$kS&O0zDy98UOi0@vC42W86 zoq{X$-%qpQ4M_TE*Z^PGlJ~u<5cb$*P|M%wd`N(9Mwd8Ja6Y8CO-e~v|F9>-jLRfy z_mEMj;D6U|k)1}lPP1FRN7k#^FvDrLST1S%7Tn>+q7Gm35wYP?itCiIV9UW>gQFK| zMR+a=8Jihk!9HDf_lx<^r<-Z*Uw;611LJ(03?6+7U2wQYvG{OeVJ@KB%Eu%kRq?hz zGrYHF|4ORf)~tz^W>~S$8`IXK5+40d%?9Ys%fjn#jy?cLXL%F1|y0ql27>HvD-VV|Mi)A;Gb^b;)CX${EKm^p>YP)k0l(Y0&CjE$0GOQnLRm9z^qHDdyHG+Zm}F(~=b_$&t4T z=)$1db_DF8(>PRO7%8`Oc^EN0na|p=WF6QuqY|(2CFNY(_;gu)jGxx3-18-`m}>A6 zKOCFdrD1RTw<|q589a2*w>KL&O@_QiOeEr-Qs^hAcV6}P!M|}BDomT}cJw8?o$lCr zv7dX{im~LiG~OMVz~i3lCGK)y$#yBdad7eHc`+cBKi#V$s8CssS7?vo5k7De1z5;& zX|IA#_TFKGE3R(`H-qDTpY^4^*UBCOcS%on_eO-Drz*bI{m>WZmb4nqRxA2;PIJAp z723!}s5290%7)mRId2QtisAVkk~%AWaET0*M%}){yroRN@Ll)eYxscXX_sxu;xmfU zjN7!kQ4bFi->TBGHVk@qV}m~-=}iRC<`cn-jJ(Y(Y1UmjJ9>F{P<9Xy^~x zJ@XvF;gDg)cOAdCL@C5%!N_7HPs&B~t&#>yj(%_d9o@oyJCx8s$$Y^jzxc%Mq1R`f znwm2xH_ZKaG~!Gsg$$Vt^A#$QMBcSCOp#j;Pk{E~E}?`oY~h#MCk$C99mO)xcLAC% zPiV#^yR9GSzSjircYtr4-<{pdDHU56dIWwCu$RD-{_aN11;$w!S5{Kc zEtQGIoFO{#P`&o#VE25)KeDD)JpImd2H0e7rw2R8i|wB+fpq@(3UAhpVW5~TNp@*B%{|i+V7OJ7S*LRunq#_%DdO< z&+cag-*GMOhW@h(TzUee=}VO@)nzk~d=RbPW{u82FEqbqcrD{Kr%U-9zXcw8_#YXM}T;O-2ci!~kw%sJo*Zj@b zC>*<MN*G=ep}+Pr&z#4N=!ab0cn1Ky*Ttq|Vak%V;N#VYX?8B~4xKvwo>Dz5VO) z_M4v6h#S?rPkS;DO=I5~AqhNR&(n9>c8EMB#<8M@GMcM84sK7T4Mez)+1ag~|`JO;2gDDEB&N4cHO!Z+!-otwlH(DFP8QwlvWmt6q&_ToAL zuZ0K|XWomPVP?Nv2Cb$YAFX1`=zO)?c4oPVv)!C2vL3jx|55hQ91F8Ty_W~U(I1{J z`oF{=WWK(=z_Pfc0^pNbuF8f#@rs;<55h!Ozfv*(W^pZ)uk?@OVL6kpCV1Cu*Hwh! zr?FgRqt@Ymcsf%Z^v>2&$yQAo@lmy$76);Ryr=tF=N_@}?Yp!XZa zDW?l>iFJDEr<-oV{$`)Ki!Z;+lVQvDUZX^2+5){Ck5+Y^zB zT$=pJJo)NgIrn3MnX?3-=fd)#qGl7Z#FzQg*THOpABi=mKeWcv>~y*y)}g=Ts*io) z%IBb(i|^uuK7^P7uhVzV#x0n`A6bJ0N9Rr*ajR)qTRenifwM7g2zS@wGAr4+))IP> z&^piR{RC=X68jA{@ZRAe18rT^ur2C~p9kMdi2{2MdSuW8?5Pw=aBojS2J9e0xKon0 z+DGk}I5uiLr_ki?*L5@>rco*PmT8R?4z`F58IE|${3emqQ|ABvlZ??2pe3&T|G12|>^90av(jpaI{WkT&4`8FWLmc9=p+pX^ z+Vi4mg%+`%gXCr>k8_i739q-H$+FNtWno0^EwIakjw^*rW=oN!utu37pl#WwW<-Hi z!X_c*_&+)AT7HHZbB;A90ywySF!R4@E+2xfg(!6+f}LRJ>=lJ?DgK)uI;^Yb=Un)u z@%@;2#KKuG&sA-^fk#@;Sub`5w)*o5MPGD#MBUhnQLBs(9yo9AymajBnrtL)9)ERb z-R;(?3TkC6CL}85Z2|cWQsvQp~-p4yv1@FpSc6Ccj^FG z3nAS9kbzoMlHi_9o%)aACfiYBy@RxmyePY!qR`Y0tMk8rDkmkzp$bO{`fRQ+j4v41 z2lB<{d?=fro|gm(v*cMj4qx?|*PvH5vU;ytjqayy>aD0hVP)+rPp~MyO@iNzCcoC= z?@XAxONl=3-(IK-=l{|&4^Z-Cn_+I8*smHzP8$C$CAI_a=prNtKk=B%rHg%RFsIM^ z`&|6hj<#4KRnz(}0;3xD-*|S=JF+wH{+DQ{gW|2hYh4h(uglSOei`RjR}!`?<7_gK z*^z`2!u*bZ7 zaibRRDK_~7%C$=6$p{73DP*dFHIu3XmNFb}QCf6k2Qy8%8)~Ua#HNb)*gQI^#`(cJ zV?nH7^XWOL{6*IBC{FU-7`pzGcEVeJxsAQhgUi+Cb8hDUOdk(O4^}Vlx4}80Rvu01 zYA0;}9XYc8ytFvcLAZyT^aiu9?l8L+*bZ zNQSbDzB}8uPW{OFd-$T&$94mqO}Pw_mjDl;yAGYs7&|%Fxn0YJOJI#k`xGxv{A?*Z z8uO=-A~tZo-UQI;;vt0aKq}ge7WAZ*N1Z68esETaslYl4b7V#q(g*64qx3t7yzl=9 z)3CR_#FD>q7dJ%69!Xena~D4@E;srVf8+n3_a(dKrPU^X*X@BXc+47a1uAY2pJb_rtOmwNX;c1gxEVyNvsAoo~Nk$3Ni4MBp<8 zkE(pB`Lyk6Fp^60KNtSp$DbJHTdm~4hzK}}i9*#=Mp<3?%MfS)H1N8G?Yzjpqo*8VtMi8|Xh7>6s7UBBfdw#%{o| z{)HGj2SA;s?s&_{z}a#A<7#vakO<f|P{~CRB#uR~k+Fvvi_PMN{`Dzb-l2WbLT>f`K?r)gWYoC9 zz~f)g!Yf>G z^rpc;j+520<`tHTeowvM^^zBD->&@*di&$}a$RBr#Lu)vOf=?SkAY_dw#4&a20jZI zM-02}a|5?yUnFRSAgC zgXvdF&6THp22G!kk^QB;nwCv>nk&Uy8%dX#uS2XKg({rFWV^*$a_E2k{x)Cx+&A>~ z(7C|7qq5O?rekTyb6yg>;*VU<7Na$i27>Lr)F!yCH5q_P*#f7A+ii?HWoVMcOLon# z5`im;g?Z?T{o#(iA(rGFph28JdouaE{qgPhV1tYQ+qrr|2D){1>ei6`s~0$9y0MbY1n58))FUxh}h=r{6!`aCmZ+kSlLehOT;Lr@3}Z0 z>Hm#?`PJ2+uA$uTD0eC+uU(L7Yyghp!Hu%%lD69oq~t|Vz#`WBE)g_Y)t&rFNFmSn zm-@;Lo%4-&x61!gX*MTCpG47?6DWl^V{E6i}MSw%ly=Lc45FS{CN1Jq|VB|Jx=4%qpG%S z1!swYoFznG%Mf`o9!bh@qyDDvyuQEh#k5I4g9;x8CM?Jj8eiIZ=c84OLey>z5!idwS7b98qm0I z@a0&P6=*q{JlwhvIl~4 zxUFB>i*&=|Q^g~ejrLUEA-MP5f)yq{N)@2)#BWNhK5tLd`h?z>uxn2U z9&)e4@^5OUc2U&;JU%> z`|^c1!2j@vJav-K4I5knoiJ!MAHn{fgIq4)(oD5ucc|HG5&Vu_CGPW-`+NFsDm&o| zf9s`Wt13os&L&!!af@lfJvkVh8I{t&D9IUp^xDtEf(p40gdP%j0h)ZH?5< zY?>{z5V$l%U~|X(RjJGIQzy>XX)kg&-K16+BqR*+c2+nJoZnHswb`uq4u9&c3XiQB zGIXg)UShkoGM-D*f2w5w>IKYKljKEeTwCa*J~6-gA00P3o}teT!o|H_^dFa}vgz`y zdv!0Xtvp*^1Sa%VjNKG_ZBQSK<&KTJqdOgt$*KJsc|)RCE9f04U!G|pXZYXJ|1i$! zaCUQl{aj}G$cbn*w~IZ0{ukqw6j5SExqO?d=)!cTZ!^{8FbKy8!$QEW;VZhL+u?iH z4#=J`V$>p1?r4W6HYv&lojwG=OREt0vZ26=y*28Zf*?wGcB6lCFM_y1_jo`yCi>^& z9mExmn%Q>+J&iqVSR|IQcMEttPjf`NcHVm0==-Wy_XLsfP2^Jo&^yeK(cysBJEiRc zRA(_6+#0HPE{|}Xl|t}8)_d{TK$BtW^o>Ee0O_ShUHBT<#Ky$=r$o}B{@n7*M) z0q%_DeJs2jP`xYxnEaLk#=L)990vHd(z6qO+d!acK{t*{kc@=uaH0VL z=T{EpZ|p3GDW&bE^6eW0njDj=2#JAbc&SOMfi_4i?cIQd#(v0>}_2%4w1-M`oFgb@a@Ue6N4rgkWPEbMyeepE=G)UXFW!6g|T zJQPz*nlznGFghq(>}!4#`XhGfb0+ISO%TUhr{l)%^3Q!#zb#z3!e6?*c=gxzH52!g zlIr&}nT`J#NP^eo&Vmgp>RnKp-xK?L>KwW5kC*TGbOy$byjdJm{~XV?5>M6$+CCF)Zk?RL;_ecCpHB6C&uyBV)^ z2_LdF18&Rk-UswPi%g;`e8=}11@#D0v`3QEP|p<~BF>Is|0%l9Lyv60&cCdZ?hV}P zDk(OZ4eZ2yiwS%R67GXAI_n}S+4$rC{y7p!4y%CA=)eBHNsOC;1Z(AS1kk94gR^ML zWA|)-9MO%o^_8ZuRyqQyJ3!e5o~s^iY?cCG_BCCI(>lcwNzYb;Rk@PB5)N9fz|($j z-^7rMq`1&S90vKkmDe`3I(__1<>)v$rkb`VL%ug?A3f!gfiAq2mt0qTmBT(fGqy8U zmb@3xa(XW6u(T;F&;eRu->VvWjmMb8VkPhZ)POFP2QJSEYOwg$3Fgj)z>m~hohwzP z9b*yl=|TYmtMZj3g{CD{U1cti&8sXkej(YveZYyl4)0e)cU-KlLvo70+?CsV5AyP6 z#V2^x5U~JpA+<)t29R}mZr%1x*Z{-R4^Uoy-g<4z7(oK_I41PTwv*v&-gG1Lo+M$W z13l4SO|UFcYOU8hw;9UeKh=N%CRmIey#HOHZ?&8D5zjwBQr5Sc;T$$GRIt0f-8;YI zM?n148vj+iA}QeLw#~x3x`R!IrOz8VRle+#iv&h|Y#ZKp+n(J8-G#hJx@$WqxpfYw z>ZW&1o>@dsrap-lB{~%-h)T${ii-OV3WU(BJco^- zT&*LuTx_7E(Wg+dL7QGaXtFCt1ocjB{#fHer~Z{O{sYZnw+DbkpC67b0_jAa^CRe= z!Yq!R!^+Lv-PFWDqS=x`kbN>{#i4VOX%hH5ap_Tg`knP(lqQO1oBkQuKextM0DzO$ z-(3o?_pWqNBm4&7T`zA+RTUHFj|x&G>Ycc){c8;QI(@?p zn+>l86n2x2<$C|gk^H9SFH{;&{k^blnH+ayHl1FlzZ*$5C)3IM(Y`Y$`8ggj{RD2c zKb|_*$oTuWl2E&GF`~<(nc=0IRp39{aj~LH z{PoyeI8Xk|;s{*zt_MQfN=H}hhq8fho6oyjp*hxk*+7-<|CTIOc1ve(b3{hVyhpU7 z`OiekeibBdy|ai*KPlntq*rNZ1e=Av;3v*$eB0*$^GK4pWj2?VCl5+1#zHx9EZ4WQ z3}X7Q-Z#0Zj!XF8Z$hD^$BeItFU=HQ~BRdF4k9Es!S4d4hFyKW+VV1?#I$oNU za8s|9TVE*J&sO^*5Ftj^eX5k!{Vt2Z%Rcw4?Xlj`pVwTS{$}xzTKX=vO*S~ZVx{Ym zY=HrJ-g4m)J+(^b!ezJBDu-luQF!k>-}!-CbT;oybSd*kjpN0rrbu-T=r7mkrICE^ zv`cVfGBJ!rO8#T1#@U+?W=c1}2LdYuWruZva-Y75kDH;&l_GkK_UGcdx8-bHn^fA5 z8oLoiRn@SIyo>b=MNd7Wye1)6L*NoaJZ3C(oBYa@SObdLw#X6_JGh&M@t?VUr>Buj zQt}JG6%!MDH!5Oj%#vx~oq|uKr+4?gKGoS>L!M)oR@n zraOf`{foz`hCM5URdqQXHbgp8IM?$ws~%{1+jkM~5= zeCdQTxZaGte>7I5PWD&aa_EG=&^>ai-&Z1oUA#?xH_$Q^G6t&!$NLV5GrrQitO}F=RQ>LYF z8wDN>xeBe`NnAalz@){U(Uc`Ar$W{4h<6eQ-?kEXsl3~RC1~Z1zcV8;^w1w7Z@6Eb zzn5}G$RcYc6n1-6{>*T4_zEbg<6^?~9rTGBUHK2}a|OrBqKOyr2e=jC0`FQk`d#U% zpVM9|+PgQ50OCj;)0o*)y?gViqVPvty&tv7eu5$E^HH=)(&%)*tvKe$T5;T{2Y6=^ zIJDNwb99HK#)<0V+5~$pUE+V(Oqf5@ILSWdf+0d}D^p!P`H1*vuFOs2z*MU&(rubN zsCn;g^T`~bpC58?C@a~pDZ#bH9CmPlUz{86HmV{x4kJb*o2F;)K&NuRW5IR&4^uu_lsNGH1>S&EKbyjkJiN5f@ zt%a{D8aE!>Z8xZ9y|uquwepd2!$>OnhQVf5kyqF9#U;}N{W*FRO=Z@Nl`vN9+NO7| zOk{8Mt~UTLJU~~Wl^RlK)&9iwO!G~B`#i!db3Obw&VKC=TN!dxYP|2>ZGF)Z|Avp* z)*mH6Kb2gu32e_-mM7SC7A-YPKh2QBK4rlGZUedG@`4SX1R?C2tzIAEet2TdmS(}C3C{^lG=}lU9Df~(s+59Ps zG&`#dhqMw;dcmi4R1xK?RNq3Z∈z+86!W$gGJb>B9q%NbVY`pLbnL>)b`bdV z+B&L@gkHw&H})U_?11q9%E{-EH&c!q)+H;RdcLC|9;&3qp( z+^5kGm{0a^NM~aRKN4ZRUZb6NF93V~DVi%C)*ud~e6qd2@#6;< z9lAtMbloxg53ESLm`k=s^WWN3B_m;e(Vh(@h@A%?RsDH-oj`W!p=~PU{Fk?e6U9NG z9mZaT8~BV!{NG=erX_-MbB@MXvLOaEgsNws@x&O|e-{((dPUq#cUi@M@4kI!@J{F7 z8gi>oX{}$l*Tb&X`p|Y^rkb;#jf1D!N6PA3W9Fs$o@y)6J{XSaJ{cfc&ql-dYe{SW zqFq3=4QUG!4i>(?%>{a@a=)QhWtRm}v$1$+mGJ3IRx2u}xH*BIPaHmEq5!g9f-TCd zpN^{i_sV5Y%KZJEaM#CGAnjFTMBBb9?Z)U=v_a62!1zqHpCzGyAZWuIgu(rdg)*!b zyMq;lqt-+chy8>kh%4)uS<5E*u6lzY=KjZjZ1)#^ z&2~&#l%xXV;zgSF#M)OzKnu*GcMQa_i`(iM>E49&n15WsID{vMy5CE@01ccDH$tXa~BF2aYvXP3G?hlDG&!6v$c8=hT$LhzbM)FTgh^xkMMc_Ov%Pp65 z6&f9Cp?EK(&SX z!jwzj^=Y_?o!^OpQvAIs^~(sqoOv$i`|bPv7mv`qY-HrQNoM>&8N<|O0en4inj5b^ z0=%<6A#NkTk}ZLszV?bMmJCpjBDcHylrn5fwxy z#6&(4T@LXGwD-R)mWCNjawIa?{D^mcy~Q9Sp}azE*PHkCcfP|R*NTu{aG z?}@jN(9LTEWQu=iIU{DXlx2{v5|m317!cNE8R20@C^JCi6FPz(OLmQy-*#)_F>tQw zP(+R<@i#a}if@Vk3I`U(S7>#&d{AC-oC(vDc{2RY@aV>c2+9vfXXxOeWsFO1r~Wk- zY4=pOqQJ>{lcIcvN_x*4pf(5n-j7QC>t2yvL6wBI|2*h*j|{bf5C)3b^sOY=X76*#y{HOfuv&KJw4N7q;`^z9l_<9K_`;#Se}3<73OCHXNI&#{&- zQs@tt*sr*e)-zi=4pR*G5JOWAb6-Are3_=QCfGxdpd$ww9tB+ErizsHN0l^|WWb+* zbkrYE2YXL`n7CU@65UrBga%-Ndy9z%(zWtwbAe zTX!$!u$$-C!q<@73>f*2ps|?w#h^&9m8;IrJ}AvC7-AtmmDZg{;-DjVt3f%ua|SVS z&G}3|G|S@Y{Hr42n5=Jf7@SD2PR_9lN*B35%eHRP7Rf%Xwvvog$VP6BVuaunscv;$ zl}b$=yQ7}L_1Q8--7TV?d*E1WjpIBY4`6ypqUy~N2Yq`I*a~$coR9XFsjNxVAK1vn z_FczU;oHo)QiiwxxZr2v$+h>Q7C)S!S+UC{+ic8RC1fF}@!l^v{GDM$*;*ji{^6QD zaNDT&?G#`MC`Q#>Efzg4TYFx3)3ce%3hfcpe?a9aV8FmZ{2PN0qxypGqor=0$&@=uMsEZ6nC`%mJgybGs+ zbaWNAiv6Dme5pg*M%uy@#2prP#(;JH05SaJ+eu)P6*{-romztO~eHi>Eg{XwP-$~s-qS{c+cx<;R;^Mq+NBp$}|H-6$&WF=l1EwJ(88s!d27nU28z!sibgE;ZT{t|KbPJRr&xCd8vhd(3bXbUg$=YU zPq0=b56c2U5uIlXoig{5UazBgAQ7k1TT++2>J<3l<1Q$fXj=toj2)Sy)Yh88E0CH; zVS%)hJe$^JXTIP)#W*hZzAtc^YL@*h0c0E0a>fovE;os$eWHgqp%*o0r1X={-votg^-Jdilex|B!WjXfU z`l3DWPm21-ER&qhA|dUFG2yPSn6gq4u1%gV@zYZ}TwCtayb_z#&${_W`{eWN35C+xWc zCRWh=bE%(=V&ro+=QDz32<~3(Db7ZrY3k_u6+oqvr#OxTPd&4Hr?(vLg{K{S9Uv!|#xsm;P^}`iX5$Y-}ew9CHWBWV+<0 z9e%s_{ruU8YO2Ra@UsC6p!rO8EXQF@>N*;m+2mc93P+$}MZ%&A{PxXmm5=Wi);7&a z?*zScD;wH5y9%YCD6yKy32V;YH0HthB^r<$tKUc8TCaOwIokzs=#ng;CrNeQT68ry z6<>xqg>NwA&Qn8)8pKi?as+%@zu&XTWSy-_8~i&735tS0`m%Q@PMl0eMQN!HUabmk zC*Pn3uZ4|)M?5q9xd6;+rlC=Ky?p^ugDU(C$i-_#z}5)V?w7vl5M)A}_rQg_BN2W3+u^jod@NYtpRyMg#SbkzoMXLUDq- zn&tBmdhx&hy}TOJD`5e*6m7&Go)IWBjAwJikiJ3M@jYUEFF;bm;<;F>8gTT%OtQ8G z%zMX)n29=T2~EE3`HMzfYjolXo16I}LpLN*i`(`K%lc=;!I^IP|oob z7HvZu9zA%B|Jg`QCGRF8QeE=tnkUi2oY|1hZPA-mJ;*$PRSnhtUb_&Juj!EB^3X#K zP)hmw+nuXKY_HpcJT;SzKy3(BuQH{Pw%b^9j93r9qk$&kw zoM-EU0@d-&p6PNBnxPLNUR&J4jxeFNl&aM37qJ8VUFPM0h^S$vPy#YM-v}PpT5OCE zGssvjOLK{A)R}+Z^eM*KWpr@nlgmIP+DCFJj{NTx8CNoTUleX9dWg)!a3q6_8Wh|! zkDCI17smS@#$^v4%!`VT63-eR?xX$H005}O*8BKJZ9K!#94U)LuBRSB&HnRO8nt#M ziOBC{m(2|(Cx^JWgI**^)~a&KK7%?wv+Y#@?}gl>-g zZYFrZlR1+!a}$Q?h`9@m=hBzA0vw=QjK^<_b~wIDu5N#0n}SxfYI2NMBAC{bo#m_~ z>`q!`^-yf=vUWGq$h^FCLqwC<4O=z_9@;;8+_2^KD>U!Yi9k96(?cYK{&JmRrZd3k z>97u+TR0nfQ0n?q5aZ1Q-8t(tkW>Q$Pc?ns8P5>K#;_Nb7Ru#})|rdjx1t`s25nt` z7yJZ|p0qubiax(`jT@Ok4M)p`H`t`YF2nvvu);V<7um1Uylf8|JL428j!_d}Z^dt? zsgjXYmmlkBM~XF4;iRm*=hCO+);F4?PN}%t=zls0hMrKT*YZhEpZF)rQnf)t<&p^f zqQc7pz{^l!k*>S#YN-1##+=ccHK9M19)48&HLlw-Yng?AMi(GVm?xCjll`E7r*-Z@ z_U=Y`m!3JyIxMX=NOQ{0U;I7OPf5-iuIn9$q}r`3pkVbzKw4oN?t{f(ZhG%P360=N z_k;EJZ&xZcAi#=%7C&`w%zesP%LSFZp<`6~TT<^XV(mvs0fRp++z$ zCtl+)l<2#2R;ItBOXN&#MIKFXZ^*6REnBqul2s__`ECxm{mo^do6%;i9+WNjX?Rov z8tDcb(idw5ri%hxXg$e&7C=&MC>1=Ch8d0>`~)Orgzj;{tbW5z3nV;4vW#%iZ5}%6 zS)&=o^J6fA@oAoyHh-ZQu8A6-0=Ln~kxTZ}dMw?5(*vAdXkPyU94y~!5~1LLeQYQ( zpV^CCsWs;XnXxa~W=Qf-8kb@=EkyJz>sWvWIN>3VsxI074xoqBhz$4+UkCp>p*Zd6 z(&Qmojf0-@0I53EA?)!UuD`ouU&^j(-sIgn==sv&E<8IsKUTAoIV71<9f~PNWPT&0 z$K6{3olHpl&(!Ubl+}MeIVE;kxb2i@$0GGNyHgM)SWx4iGhOEo)3bx`)zr4FeZz|q zKWfs^&CrtrJSUkl*9uVJ)hGl4&cxGO(i6ZU;-}O|IZW(Vbar7_wb4NtVT|8rj&05B<^ED7eJ$Ds^F8scIj;2lY$a+0f!YI55r7Y-topW*2s~ zl5X^f9RtV<@ulEoXy=_slKAReM`t?V1RpV2nF-d~w(~jLMoMJUI<%Y|rVV64zw;n8 zZl#Mv$ZzN@mwyADG7ryh-p-ScM@=tit|Hu_9A}wHEV9%M&AV zBt5l_A-}Gg;T@$r$%QDW1b?COB|YSaH9*Lh2L-g4JqUUWE8Q%?%u8jp3 z|JwHfv3Cuic2S@ElBQYQQf3Aib&RQZ%=Tgp{5lj%FA`c_2!KqjSgMmRII*4Qc~4z# zdqm%Ax01e9){ELMIv3+QO4Bj|&on**+#4Sdgv5@L9-Vn7?x(IYUZqRIdSy3*|7$5l zjRRicEaW!B_XC%Jnf8hHT|d7bXNSH1y`^LPO6xDwEm{hnsjTFn1{_-SHYRI9saLb) zGHZk#^G^9p{sd()VV~veTNRpqaS%mUxgq6QC+^Qd7bUp_>N;J67{|U2f;z+L+6ox2 zwmX_C@KT63z9{e2_FIdhI`1X_mf>u|FNw?wO=)x1!9D z$2f47Ii28T+zNj&rJ!lBL>uPnpTPMyxv60?@c{fNzV6P1QZunqsllZ{lM2++Cbx2B zaFju0am4KD!Iiv|bTnm5AJfd$ZdytHE#yqwyt7Utku&i_t)D>6qZ8|SK6P!!{;2bU zS~^)}A!iE2dypJmC|{vGuIHS{njYa4yWJ|r0=++cph ztWQoLAN~Yn)&=bTIzeZjhOJ-q*{8bnZ!C#g(OPj=+Xdmn!+4SR{@~C;SPRrd6eu+?!3e0S zr-(f8ffCi#v{C6RN7E&uRT<1xd3r*+1v>?q5NaNx52S@DyX_K`)3zCFF(9|sEa5o8 zrWAf}eUu)dt(lP6f1`?4$+t~XrN)xy(XdBI!T=&uvhegG5ibXL*U+ne{Ksbu2e(^y z2X{94XpU1MRAXV(}WV=U*BNfi%Jou6|z}lup-dx_F<)<#Qg8 z)s!`A7^=VI$6t>*Kbm=JM>A{Q?xf584ke(|v4s+4I~_Rzd_P5LVjeYBm z>YX_CEAw|r7VExyvYXE^a3=nc8#Je)1pXC6rr$Drm5&rO=~SYl^stLh!L_Wh z_|i34h$4+CscUptwofisrm64B^nt7zj{>nVtaRM$lll0__nk?3lb!ttO=}l5;lG?- zPBUg9Gh?f0;n1U>KIDt*jlAqZw)m<@j)op!HA`~c^3P{gwv(MbEjCx3Uu0!7fdm3M zN1R&@+5!sZuYmizz=@0G8S~3;z19o*FM%VSyFY<;1A|aOw<>dyQc38`wAS1-Cl!#mvA}vE7OlRoJx^P^Db1}u! z*-K_hPdWe*HuR=Wc$V>9$7s(%{BS}`Usaa%L#jnIxU7^9#y}t1Nd8a5$7n-$VzSk* z=*>mO^;Z50f*9@ScPKFKXj=uJrM`P*eYnnmw*%JZdZkkaB#bXpF6W1kR<%F7 z=_{KWt6XemnS)R^o-z*8P$mPd)}b)G5k&LMdy_^>C?k-P)`k;t4`by#IqrGBR|s&8&^|tyWmQ1@+=bu z?g6)ot$DR2T9pkB+XQ1$`9saAdlrFfAMZU;S;9FG$<}t)JqcuI{D8T)h=;nRG!}6) zTc-%(gE;RzaiTvsUrCE-TXnM;9sCE97M1agG(jG~LY&vW(c@0YWXRwfxz}j2MEfwe zMe}{T;NOZ?nv~1Us~e|%ox0di>!8xzQ!(gYeiR)Ed)$o2X1AM- zSP_hy|KU{!CHGE(iQO^~Aa>QpZ7#{T`anm0^C~1$h>nw6!gKe1rdDd=`_%t+nqzD& z;Ch9DouWq~6^A8W!aMT>StwT&@pGAu(`e}DP`f2LE^Ok+=QXFd81C8kupfaZ+v}i8 z)PJI^ao8YrgE*Vy78?gDO0lX3Z%AeIs5Jm;~(7Vij) zd*9mE4TVb~+NfIi*RbRc&9jl=_soKSo0+@1K>XOGYz@03E8>O_TsJ9<*o$%HC-Wsi zi;nhA?-K{;)HcX`bejS#p^Y$s&cqf3M;VQR%$9t*GJQI<#sVKufxn?ao4K+5M^Ic^ za@f{iA7$+A*KkAYLMhw>TZo_HR^jx8foc;tjur}K8<{p7{dF)K1BMrbnovz(?wE(U zGtsAqW&M(9-yb$-MFmRDaVYtBhh9trC^pKjL{fh<8>%`PZSZc}gVGt{W(Q}6j-leo zJ(65$am;YbbsXZ$E;N*?qmI36(RY=f$}W8LI(NpWjqYZ%k{%5%2;HcIOO}bgN4m?* zV~Kdh$!%A#o;Dc%+2#iQXmgQ1o)i#%d=M!^Cr6YTjR;Ez{%)p@55k|DgdFp)BY-W; z13vXTi!n9sD-7z?V&LFi5RzVUS|-F>|2b)%iQM*Z;GAB{vd59rVT_em{&zD$t{a@0 z-7dXJy0B{ZbO2?|AP@*w6)OnGgH5M)3>fIw(T>d%H^AnK2@^ERZ3ZhhV+pS28sEy&}HSe66|7yZ$_ai+cZAUHfHnFpV}Hn?c&en$;< zquJhJtWa}9EFu1mfQgcpu&gXewA8i9@$MT-JKOe_dzZYdi|kYvqk;|utQG~3n&Gb` zqCsatA>jMLR5z*N?~&I-sp$oIxPPz;G@`2h_UT zJ^FQkR9)ZWi|}@^wq=klq+d;-IHe!x1ORR1S8104QsKg+E@3V}1{=oDaI>DSV?!zx zAITiZ7>jURr_H|)GY5TL+65S&U0oVZUhf1KA5E{rQ+ds(DukB@E+B5|3FV>5Vf5$g z_VD1X8>?$fUir@v{~1`f&VcM&QD}I+WTzW?OJSc|@steuegk(oYJ0C@t^|P)f z;gKNi|oD4h~pyPQ7D;miXqvn~U4dCqkxF;`Xwp8Jx-yT1E1HXG67gOIfr z8zq4~)9V!543>zoD6#fPIuDC5Zh>*Ef@c{0kpCpyJMf7aFI-(vjQXf$7c8_VHBm-^ z5NCSPa)1`RE&h<%Gc%grjV|ya6+pzHXrB}Nf3BlMlnqBoff3H*3fJeb#dq9PBF4v}dbRIh5XQ=}89W@0q) zcW8Ou?ZeA++ZnW=gT{YX2og4lBTW}%iu5veO}IxvmFOF^$7KU{QN6APSHcERC=w{i z@#brJ^}b#mVxvjTX6Ut9$%bLx&Mc+Bes8rExHW2($hS&6>;-B$n*knU1_aIEYxD)1 z0mvYdp7~nOpyLo$abu`U?Ck;jWF51ADo^9|8slVYnP%^9FcVdic=&9#PzvC;c)&$> zU-Yuk zQlRgl5=h>^|A?{Wty0bI|HN@P5aXEUrI$*JQLZcw1?ZL0O_{U1;}KCGP-Q&S{Av(C zP1-a3>Dl>Dik7P3c(PM5gz><$QLv%>eH;i58;wVic3?$36dNkrrfQJL%11Ulpc{e# z@sMgC?li8J;{Y$5RuMS!6>u0N5(ht4^A4Fqj1O+IT6h4z9jDvY|CS%)+sWV3Y!Ksj z;2Qtx0k{qmLx2K?Rq4LGXLOWN=+7F-ozb=KdOy*tgF@KNtmF*v4_*Z7734!1lmj}r z4d@;Ct-6tjt?Dl;_D#ZHg(g|Pc+@J7X}I=js3oVf`TE34dTK5q5_7(^ag*B$1dGbY zf5_8A;%}j1$k7pQ~{(i;=(m^&_yRUO|p>b_=oKyb< zj8*ZM#=`$l?Wm1%d;)3t#jE+SRc3BMTIE?~CA_!s!!;7Nmf^e5q3Ddp~|_S30Ek(<0=nh^2e z?)wV#RYDbh?3-ZUPQKBou&ni~KcntpO>N*nS`OMv21H!>iQk;2em8Op{oaN>8(e?G z)oqDl3md?%VYFBdOUmIAs&Twl^Tb)_K<`NT5Jkvk8*gh)TvE z2*U`^vfhec>tuZZ{Oci1WvJ;7l|vp|6q99|;cCQKZo8&`#!MP4|%S zw#_f#fjkpbosnl)R@-Sv_MqWj;=XmjV3t1Zv#6d2H7@idx+)vqMvcdlNd;o&Yy$kV z9;!fz-QEH8VB`8JE~MB9yl5qj9fPBH!5G#=!uf7Wu}#p%pIYxtssLM|geQfH#e6fjeb2uyH({%wlHi3 zfEkxV-W+YCi8y@(^v(q3lcykdiug}1MI&C6AM@h#h@)xphF-Jaf)pTy*>gsbm%Q0C z+_$Ej)Oz5RJ2Osnrxmp|8O)9DKU#RshI`Xby^p#3>HPEjf7qA5R(hqMiaZ*Bspn7-T<`HVYK`l6tipsqjPwuFsk9(P z!nH=C+OtrRhz;^A)W2JIf-C>{kO$qmFE}&3oCNZt4k*)!Wih20FFG$3vqEb`qWbN5 zt3bn2%6YQcv_*uOkV3H_vQu_)oRQeCF+y z2#b08$(eY1lvcXov0YNyB|H-++Odm0Nvm`vjUBkwjf@F+fI!!DCNy8wYWQfqG~!{=)V zbL+sDE7xk(-=DiZZLx<{d*eJtgy`M`>_a<9%Gk*^#-Tfg#Oa2SW^C32=eN96ZF`Z@ zW3Sv?jjQ;2DZ>!6#fy>KFO7t{j!~}h3Acg!m< zY_n!-ZqHT&&I+UJoV@4FY7e}QjQe^!1)_qulC&D+&Fkp44`UVJCzQy%bRD^Z+8vNk z_4x1~M3*3`EJ9&CEP=62(|BrK-JWIRPLuR}d24choOJ*}&U`k^BzB!0&n2=P}$=^3n`z(lJ{f zXhN3)6cfggU0c%JkCt9>N9X^cz5bTx7KrXQ#aZ>y=h&1-qVlCzD!RxL@4zs$>7 zgiPVipb2cPX4KocOA%DRb8dQJmFVki*0>LvxD==zsJ+DLFiT_L%rQ9~niZJlerY!q z@?VorMg`>T#$@lG+ElQ(r&X2~NgS<_I(n=|<;)+wR3B?w*1t5H_^*zK*>|YM>S#L0 z+C)Ko zT8@X1b2T50XdELulH>9jH6 zKc0Yqnu)qFh5GbEd)Fw+w+Bc)o#uoW+CL6|bpFM#XrKv!cLgoRVS)r`=JW^ z_R2Q=#<1;Mlq5&B`^~1f2PxC$x}Ph{u`R-M|3PvTSjNq@=coGzF0Pm%NF?awtJh_7 zmLCz998Q+#Ih1Rdh#}6#Zt%mdhgKl$+fL8YTO7vMvXG;JX0Scq>ZH7VuXC1ucZfzxX60;j`t)){B5@*@35!Fr|YULWs=C+p0FaGO4bFz8TU5GYBU zM6MhbUZa3~@~IfDouEME;C?$$Pp6xg7xC-tm(w?is#mi3$%~~zNsGl2R8o&=cSK`8)Y*LARJuwZhk`A|IZn*b$N>8lKq%hO&n;qZl}M`7bwnP}NvY4^r;i^eYD-V7mu+aPTU=wje%5#CC~~_&vu0qRr0=`m{2<^jE4_?*-gB3<@ z5B`k0&BBPDIO%8zDKhft(p+1rN(Dn;;rShhw@~^jtC}Wn(Q$;=yc2h10ich+PV5gK zk+quN5+NKP6_d>)7;j21aUaw(aMSkWXhELzDKVGae=BIw?w^hXzXNUS3t}GPVqtrz z=u8C1yZ!FeAp5D8%%NF86phf(m=jCs1l88H6K zQ6wP7UFLZs%$lFC;r@W5#^||jFwvXP_6Q%Hc-dk!HK5?x*U7Mey~`{4=`ZqCoI@@h zSg*W=;wM+7W;&{3#=JKR7){Pv-mfrqa&oT-bvoU7XOfe1TBk)S8i`_ zv-oDw5kmJQPe1lec!%(t)?Ms2FwPnBU6$)ut^wmcy~Ij0f)0S;`;i;ov}+lmoE1DG zZFym5ts6G-UOt%AvTaf&K@UrLhU1{xgD7#k$CfJjk+l z_-FhAW=to%H#cW~d$zdPWQ1JC-_s5M8{BiE=fjY>OaReSl`*!*m+0U0gIZmD9lX;#ZqoopRigo$Q)gC#b%-Pkf7d#|6FSH8wN{xtT zWsh&!sTn@BIVfQb#Vl|b{X713#uk6=%=LVWWw;+yQUIHGSbs@-@z-Hb{n$p?fhs>J zSQ9kV`>K0BsM4qsUafgz4Y-xEWi8h%_@X)j7gu8uydeVhi52>W@Ffrcy{(tjjBeG>!E zuXfxP!?j5U|G7}{VCd3(m|D+gGmWgWfC{BV65( zFQ&Rf{38EvIaER2QM>|!n(AqYuB8o!8t0U`ady$kAudO;2c;d=fi z?&bYxc#IB#xnaoepWSlYHwMV-xCFwJtN*@vIdG?LAR?DOGDN90DtF*`7Tm?8$RbxV zc&<=ZJb4k{96%i4f27yv#IO=NvI!(}*;uKI@EFqsmpC6T2*DR*xGwXl;NqXR!AZA_ zr0o>{;I_oR#^w;pTK}pi8(y=Dfcz`qnOaI~YRGwA{IOm|;%@I7sR z%k1$9QAFln7g@Wb_t@o4>5;u?<>-gg@^disX1bisxR$|N)HJIVor|Jrf2pSF@HGhL z)P->IDonX+VRhw-g-X8dXWk*m-PqfzBi4+%dddJ`+1Qw{<>52iXFsintWbX>D{BW^ z8g9R^=)n9|zUOV@NV>79AMUuCyqhWUHD}ktLXYjrBjBFm-~2ppzXa!a%=E&y#}d!( zBhO=J7PhwF;=BB27v@9tpwl^(-uEM(G)Va!H*1rIL`Hef_&5Jt94v`~UmsvH)7-k* zgs;N>F=UFum@nPgWA{{8#5fXhej znYC!*__-a8|MteORwxdT%xvx;7oUlJ`hMmNn6Q7TaPj*YTgzrp){{D~@@mdNZL=J{ z69>RoY?qaGTpuUpqpa*~>^HD|q4C#RQGXa;wdjYlLz~Q(e>20rSj;8&nv-6PIiZ{w z|MS;fdGYI(2=kMCAILR>WAopk-)z1cX6kp&&5aLqw0%Nb&b@-Id$^|`f1^fw=n3D^ zsO7Q<+n(^BvfGh!9Vi)hvbDW1h($ z20+hU>SeqH)w=)3SM3SOw{qmiZaIu;vdEO}#!%ks)o-9_g_E-n=XSG>CTv;42@RUx zJTRWckbs;@7m|EEnZoN?%AAgd@2TU?qxL^jgC5qU$68ax+^zv+|{?vpux#jIW zSLcZGo@?MvF_5vUat}W!ZZWaf4M=yF($^sVu_yUEb)&}C!A=W|W~0^D5=6{GvGksW zkk)kRwX3BX8&IPbTUOSl(d5aydZoB!B(qmUYONTV86nbK z9*VYfZah$Jp8*%6s$+rFbZmf%E@0!7ne&8KnreRbU1j;yVh>Z(+_zQblOoJpyHNML zC5RwUQ$6cQa7gt{%45lnpCpVF_;Tizu%Xz+-#FWfeUKrm8>duiX~?S*a|KF5rZJl) z-V2$BwyiG=&ducRg71IUSeyClHS0|J^9)=!Nc`z`lRddPD(zuYr76GPL?*n!I!^h^ zw~Gv|_xio0-#=4iby;Ku>I#<{kej^nQWd(L1J&S!&J(fkfj1@WiuPDbl#INJ0;{)O=;+wLRLz={*;3qk100u%dqc#CQ4OQ!f zWw^8i7N6K7j|uOzSb3ISRXP^=E_k$0XTGsDetz$T@JqFF$H7KC-%dGBc8t!;EM>-) z%3JG#Pt059stzE|&k6;nMj(INJHL&-gp|rrdjbqWT~7$xPZ}$|wx0xoPrP60@7Wj3 zGO{dQRjmIJ{8VV%R`6AcOs{c|1jnL6UE%Jf@o%Y&{cROcX=XbM%RO5krW*XYdz9FI=%{p$_ouM_U^lY36g zO!hfDTo{kYbjz-;IGKq;ZoEv^u3o6Hu$HgW0Q@U!GoRqAQ+%>%F{F}#?&qid=|^Rl zt~eBYOa|shcl&u1Tkjhm#p@g~n-W4w+2COgx=oaXqCgdQG~Z>uchUa0a1zf|ECNJc z{;j!YJmwYZ&Pi~@AKtI0;%qK%`sopWpevG zGp8r|o{|68W)^qLCS_$p(1rB1sTwc7LTGhIKUkkQvaY3Wko11UKs0;5kzNA~-rr-3 z@8Q6^tfB|9Za|E#sI7QLHZIh2+z#Z7GK_9wQSt`b1NKPv1=jn846(da32yS{DunkP zH(kRY1(0FdZNByKmU?jztc9L~_1c+7O!{7d?6H;b0bu1}4e#Kme^YFwQNV74kNYQj zuy;`?NiV~zl!yaIsquKzdsY`bH%HeOSK`A`pYIvj8XV~-TYa@l_XmgLCR+Bv@8J#6 z>~AMHQSGtomnlD%yHOs)SHEHXS#{N>`PF9hqe@Snx&Ok2q&a}%01bE3)^xK%rUdx^ z4~#%_zYiag499VLiP7r(RwTkF$r<1IiB`sSu_$u~L-uIj2-1y-e{*=FYjk@?RXOtah%`gl`||wiCqDwFv_Qhm4GelUyWi3 zRtY2tCfy0pX&6d$Wmj$z>uPJN8|F6<;bEEzU(Pb6oqCQLc&;kSD??R$y-1Ytd6aOr`@>tSeixJEZ>#2l&YI#471MH8j-;@ot zLzjPPH$Bo~^{cWfJ(kbfDc#hbq{&$3!ahtxZ`Id1p@pdqE24n)SZI%C5QSy?D(3Ml zqCKl;*DhIpjR{sRYjYk?Cv#0{^Ty9!ZfO<->E!j+e-j8-xs&H4CpzEHPNesqh%2x~JJl$!oHF zF@Ha9S{foqKl4J!))oPh$2VEexo~;&Vg6#Bhw|(BFLWA7d>cy}Ki#l%71pNJu@T?B zH5eyO7(a=dpx7XrArj761e2Nw%Uc{bF-|2qH^cI#p1*`)Q{CG_ERSKnZJ^fR?BIap zi+s25vlJHqay=T5Ery(5D56pq0D?t;KzK`tCvXBi6~-|V?ycF0gue*gqVxl@M1Mr` zk$_Ne`t);9n5MB<3jn@IcH)_0+l0R_s6#@*9fKl1i=5B-(}oY@$FJD?`SA(-v(hF( z-qPZTv@*x*%S69$_37$86#E%?d_sKD9}pbRnDA#CX}j>(IS>$U@2z83>jWp11riLJ z*xLE532XwM_c@Ws@k#bm3xfTONbP?XllVB`^^f{3H-CI1{+z`p87@AKFACvUADhdz zk%fxKw3744XfBc{Q*7+?_jBRwxH2gXmnOFol$_H_oOkWLKE=gQ^yt(R-Fk7}T(}Yj z^%;P?e9dn--_hLxcH1@W*|Yw#vm(ld?ZUP?44w6sdOaIHt`41Kw=fWTLD-d0I$(2# z>xWJZXM$K|;FzpC3yL*gUM>$^x{gJ2*HsutcMXg{2Z>q3lz9PSbwkBY3?;eah2p#NJ>3-WBk-}Op)zi4Hy6(2JiT)zZ zHFO-ym=5cr1M6KvH8`J!Q4n&UWy#B9JynchxoNj(NchM^n3qsLI3cOyRY-l4uevoi zoyS3VYyUPEqMO}C!SSEvD5Bj0J8nvwVT2X{N()gml*glwj#~#Fm++XXjI4`7yFfrB zWZB;ovd?hms^%H;w?_pe%6W|So&?Q1EWGN9e!5GbLtou}AsZa$bp=~jw>$Be6jP** z8ino>+Qmwnd1l!Q?HvY0wpnL|3~P6H*oz7^7PBwbOZ-?y^@nzc0K<1soPK%e-lY*$ zy(cpa`$^sYUe59k*%sw}sS7)FL5K3?(1F5ug>GvhZ%_yHC~rnh&&l@8z6t5>%qNd; zd8Zas=)3)c*dFq`(RK@umEPt*34;dE7Tb|6kmU74d2fd4HU`7`_hSAyA5hz+1}Nrv zQo?qjTk(r^r%b0>lyzGXeTGg#S#b{(kDN?5wvW65#v6-4HEa((IsWjt^(tmv7qI^? z?T>DQ$D_DI4|HFy3OzeBFGb7o-0F!QD~>~#4t>#aG|v~)v}$jRS3Uv-sp8+^IyS$P z^4%7QY=m}P{6&Tp5EK8z32qbM?1*B*pM_776#pT1hd@mDFOK*ZI+;SZi z6P~d7T{w6dZl5^O?_lTblihLagbv6p{6*mBhffk4D4p;Z3BMqGT3$lbIoM#5hHDc` z3f6BHtoJOEVUl)|`BYiFa%Ppu#q({3Y3aDzZE?b-&-ThNMwa+@$2W5<7ED_Hyga%I zLfRz3#mTbS7X0`>CdquT17o|6gnbgb?Jwab6sN6duEYt!(n&8caFO;2-UI0#X`@}?j zD`MX#iqEti3(TW#&ku#aukN30j$}W{8K&ye&VCv^dOzHxuDQq>iC!ByD(U z=r@H&LD@{X!o!$Da?bMByOzW1917&ZFCR5EvY{SPvQ}ru?_`z$v(K@``2*tsw2>)=TM3{w!hxYOHan{ehBXW-|IMWwc!*e z%bU0_?q6%q(ie3ajIu*t1b+A%b@TzSHN&@+XooF-f2weZ| z+c<672=wSV3>_(y^|*vSJ(yQc5vdoz=`IV7rfDRRw>#UHjXQsnGq+`EIduM#Q&tA-%=16+%qQAyjq8Iv6>lGGvMt(=>JMQCEKxN9X!%PVo|SJ~W}{@weftZ+-wX ziH~OO#q@eJ@2tNvmaB+#9L_cp6aUE$#<`{8Iwujj`JJIpES`snWNqDkxHWR+Lvft= z*KamP6W}_5e9_Mnw~T1(EdbWsQ~1i|4mXgXtM;7ZKTch%W%R;~PH~xe4>+ldSvb+|h5(-NLze zX|@GB7bC^b#ZN<>YnxGchrjQBr-c(Kd5ZEI;)H+N0szm2h@6vG+7$Bl2n4(@pcj_F zM$E2DFHxrC`KxEf>{i)?`$7}Tk6Qpp6aO4Y?KwN=mLL=!aed9~+F*|KNB9WRP zCT5d@cR~2VS%NwjUbslG)7_CK@Y9Im_;#2NgZURZ%Omk0E&%xXaX8VR1?}XlFNy!q zUG>|l`1jh0j&npH`rVx;!3!yU(J#Dq>tLIXLoqLSenh_wwg2!Oawv=u7yj-x{>2jh zt{+@P)ZZlgwS~p?Te;kGiF)UrBpEI?mM;)DcSsN$|J#n{uxakuxHJUw;qb@% z8b28(Ni4o^KS)#gETGseEaQIPU2qFt#EI)qu&efE6ON~-|10*>_u=hoKj$>M(#^R| zA#K^XrM5X_bDk@s(Iu}t=jFe~tv|eiGp7zi*RJX-nXg_vX1c0ezAx_k`Zb(Ip{sOt zwY9icH9FL6gwr0SFu(js-2UCo*r;Pq6fmA{>+hg3YQp~b)AzueFP(+82h^cw-ig@g z*F2Ydlp?R`e0+q*u~~UfbQyms{yy Ix-;ci9HBDfTazxFWjc?T=0O5zjp6?gQ3^Ug}oL<5pyTbh9h}49od@p`P{EE%f@vyUL|7Jmy6b z{t+x6)3td@X$eY(Y{9%Rj6`KGhF2NXPIMJq<30N?8$;DUv7gcLE@XSNIfceUyP8ko z&3Y>CsdJX`v~Z!t16_IV&3TB*YhMOno>UICJ}u%9W={CYX|?<*gVd*1s9C#=rnKTukWc~BiQp9OUr;gl!81}=CQ_szW?8+9Lm z?ki|PqZ5w#8}R6iIvz{z7Y#y5*^12D+BoEWHmIAP$6Y_%hBZ6)3XVt31~~Fbiu2z* zi(BU3ifxK|VL&J5f7JT8Uil)=}OP#PUv} z{E?WS!n$~Aw%I{MczL*Yh&$GJk5-0tm$+e)Jv;}}DEn*WW4w`}Z7a6}rB9@;}{A(aKLC(Q4 zCjQ-iAT%!exI0dCj)&LFAaa8ASV8q zhe-IdYzFH>+x{Y1F1G-{xWWX#pkFGCn~TV{_EoRMjseq8ihdEb6A>KqNccwti&2Xu z{3YVuzUUonGv`yVXy*ifn)r{f^PCfFhbGwu`y)qI-{ktfMI*KEN#OT+Y2*qQ+0bvf zCB`M^o+KGAdmhjlZv0LmHV<}aJ|NQk!V6d-Y5s9E&j?XoY+QFF#>=cSIzspCdK`?~zkL}OjPAwrg>&t`XX1W5hx68C-RfCr`*u4;Ip?uO*S8>6rY_DuXg^XX) zwaUI#-l1Im{(h9yk6;(ht&4jNL?MNBe)k$Qo%{msIPZLX_VSge;5@&e9|f?+{?Z}n z*7s1{{O#>HxYu|z%z7Me&fXDa#p?IRVB*Cu;i+@hK>l)LP}-eywbBtN>T?Eer}*Ey zH_P8gFOy^0^}T)Fes1%QpqzROe>dfMdFHDh!}OrmD4oK2J#F{-wb|H7x0F+WO7!Y# ze_mJCS?Au|uFSG=%+hV-I`7z)i#UhTXYBHNOML1|Iqi1o#QmdjC*Hz&Q-`2e=ZUOy z=0S@D%8#8JI*)lSFpnL0u6N=%Tw)6g>?1S}(xVH~6x17eofx*$7?cfS-|KXhj;(}0 zkAuBifMwKNqnP5ouq*o#iN%4VD8TiJL-ivpll2u6*E$C|hh=}E=kSZ!x0H3`yh69{ z>pS<|X@lh~VxEdLZfl;VuMOC9|ICX-|8lIaenjap{f^!GBd_BMDDHENm3!ti9fz^3 zAI_uIw}clNN_y+1chx-B?BAE8U-^;vJ3hsQlcWWEu|C*8+g%T;-!Uj=Uh?`JfIGkY zH+Io2^W}rtu8zbFFU`ah_5EEL&*qT~r(;~ky!B;xJceC#tGqO!>PGK_7^vg>ckIG? zE$A~0efN9}xaSDQV_kGv9`&a^f){6R%ycVIrg5pHp7paauKw^f%$UG>(@Pv}ZmK$D z9tRFW;jZ`M+grEf@t|A(7BtO#1OL5j8w}{iv8cQ&!ybj3e)ubP=};d$;_&M~{Funk2>o1`xJ-)wHX*_45eZpNh!&bq zNG}Y&_)nrmfHe0kn6@wemH$Zei}Z4t@NZS{3&zO_ZF>aI`}4QeYj{i|f@A6n{y0G! ziiv%;yI=tzMf3}{<#f?6JRu+Y6@=nnMCV_4K4!v)V&8}7ceeP~ggA-U9~tb676bJ& z)@QXsyx+^l^;fyv-FzoL25|lqx+h77i;Yza#Esz|(YP=CvA-2KH;i6b9TE?dwCnKZ z8!k_=xs*3X#>(isJN$SlxH*jz|8mn6>Rt!n&p$kibJyd!(xop3?EeJt+x?JN*#%wu zo{RgR{|LuSu14u{6qmjB!5#m74AZyhkFLdM;;zr1#bH}bqpbsQ8{WX2ReAh7bwH<$ zAHWA6=|=pyc;)(;xCu|NMEU%Pf6vbDOgmjO?D8~MRUCZ>`JoA{hDhk%S z5bs}eEb`W#iN8F1B_y(B_4U$J^<=5gDLDL;)nZ~YSZ<_>I|za~!o z8h~!Q{^~v4vR4CEC@y3_z&O1R#;xB!fM0cBp6z?@8fTeb_YQ$>%v<@d@c^5LB3i=*_KT-srvkGnLT?kXo1^x$o_UWhi9{deBplZ2spFY_3DBwf9hqu4_7EhhL21-VBL0Miu?DuzBU}w2xV<2?cpu;YzxG_0$Oz(u2`&+TZY`J#{jV zj(@`@9gky80AGIkD)2df{PSE2-x}Bp2-$Y^euWNpXWmh`ZT?@dQ%4>L%?r2!aILLjm`Z=p-6XS^g5Ix|IZZvgQ1u51$RcUp86cjWAY$&E!RALIK~|N zG+vss5p4#~@Gp1dqxk;jgE$5F5eSD|Y9 z^Z4-EO}S6^&Xp)W;68lt`(03MVFt17AINj#e(X|SgHrbO6*FJO|E{H|*9!*A$DqT0 z_u$K`cShy8ALFCzwxP~tyDc7$j=SBC4}Y@*3OS#Y_%G=_l6f47Vqg3RE0D}=g!Ypp zJ1R#q9OJ7o<+2wE<1~`-9P}f(#lKqs@P+>JD4=^b>0&<@>7rk-^A_sRBhl{@mM3Ka zAh`YC6Z}R-^k)nIkfit_$wAHuhm7!du%Y-QMUugWN$m42++U#h&&s1ttQ^D!t3@QO zZ8%ZAKvL`(i8An51oflxIh-HE8?+ZAXrEcwL_ukL#DuVHXX-r?-N|ERC|?1YM?u1T z87hmPzwmdgj7rbN4ee&7&ko4tBO;9F>LT_yflDI?QF&V-EnW;iJrXN-5-*=VR^JPP zX$f`o;R1ke`wQSX5QFDPE;PC2woUNd430(cJ33$K=LCPDn>6!xR$5uKA&;@eiclPc zV!}kZ6ABza12SSGCjL#tbD|;fudRu636vaIc#o_w&PEPG@t+|S@v#Mf9JsJqBo_dJ ztG7wF1rshDv_bHv5eQ9+Pmv|`Gi1I9;EUOiMHc_U7v;nk`bJtD4?k{Ov3Smg%fDb* zWBY<(LSdgD6ZuIPwpD05Cj3KOy++4EKgo`JzGh^hE#>&LJW+riZxsOf<%GymHvstnzto zMy5Og&Q1cQrM#+~60Hi$`D<~HGx2Xd*8I_@_Js6Y{0Teu9cbreewTeHtlq+z<9JSW z9)Ys%N8#=tUdGIEy--Rqd=tLFjHX^Zeuwh+JGf}IN|g0E2iH*SUVBO-ib|Kqy5~HH zPw_U+UTsBm)Z6__dCUr#eh22GT=_W`_x*4WcI!a5^3mwhe=E%V;4_@DS`QRXxEZg% zel@DPP$=~of^p}*O~p%zQ zco!Edg|!t?EL+^u7N-*GGp%eeckl>ay3h)&h$+I0?Y z!8gDYvrxZ66Y}=C89(sfzfazTcI#2J^B*yva(R!ARp>IX3T62NkhdJuA8-urn)@+M zX;Oc%FNHSn=oK3UeDDG;SZ^$~AM?29 z9eDZTDV!f22Ic6q^=eU2wj4_PSEGa8UC?<2bnG!4WqsK{_c|Fjet#Es)Hn6ncXrw5 z&rI3R>u+9f?&ZT!Y z*a85{KA;xkXFY>QXHK?v0Cds<&4GUe{&Eb{W4rIe{=3&+xS2Jwi|$M)>5p-k}!?z z#Q-)SA9dtbH$Fk0-2y<=QLA&7&=0pU!cJN%RzU~t+&oOAuw(Iv4|EzBvxx@Kn5av_ zaKv6l$o*9DFO+Up-dvtl#x~%GPm(GKU7N~*4PI&S7DSkTI|eM5u(}Xoc_V*@Hxg;* z!VRc?dQM>KIGXKDy=RMV;*MMFcspc6i$#HL+s4ul+@mrYu1sDUQQGW~S`+_%TTMNd zuDl7NGN%y5{jo^NUlPk3%Si0jwpJGb1nX;Yu=6v(KW8)IU(eJ9zk`Wy3UUwg6HLG} zc}pd^06?+eguX3a2n|+-^9#`na7=)3P)rs7^o!7bh!gz|-)}+0M8AjL0Gt&1X;64& z$9L``DdIBwap9LnC=gBfFPiudkoe3&O!zwz!q$o8g&}tJT{v;h-)Z4<5WO`&6$$+` zl6G7fQm`^IOio;wT*O6xB>esQul_a~G?CL`YW*f^v9BN}s-9>HU8t&`e+M`N2C z$J$72?4o^Ll;Pa9EyU-#t)Y2wI6qDy?d8&~F9L*f-)OPH8>6fqR3DCb`66u059`kG zY#5$>gXwDi%HIVN|GL^K`@IjqgWo@cIqS3CQH(D)-GdJ&PIRS4LT{gDK1?B3mdLyC1~g|HZjeMxa;aX?W(nOED>LJ#_2Gb8Wyr zxEHVEl0?ItGsTK02YDS> zN8QJwaL4PZa39BMQ<~9(eXfoFdP#V%BXR8)AK`*^bnE^QbX)s!{Oeud$@4eEa(yXg z^+~>Bjwd|_lA|bO@5L@1hf*)FPtg3S2kTRJQs{W7525(~?Wb>H)>_Of!*!~^kTR5i zAM4UJ|K@#+&u={d9r_$@x4+L=h4oc^BkOw}-qfXk{=KWK{0|&M8 z^}Kob2=CykNh_gzjoEnP`_FLGMZ2N2=kn;=vm5eOyT#&u`sGKG>%jM4VBTF6s1a4S$ z82h$^aP=4O;;eO9mmP+o%ZjJqiXT43=l`W3pS}gUXwf8p7&=Y7j4|c|pV=)Ez;|zB z?jH~3IdmlJ`~{q~#%Pq5v9Ii-#YdKh^&MRK*ReT?0{U+JN}uS{-Huz`j<4>bz;0wa zDVuI<-V@YbDo#i;~2Kp+ptTg6;PypSN)N`4%huyw!=SR_l|>6Ts9J;&U_rt zpR)Kyd* zuon?>n-u?@c z%I1|hBAQI(K$D0FhIhpB7-IGoL})iBJnzzQ{gFuX7heAS$*9$PVj;keO>)A_j<(I% zd6~gKUt{8*6ZmKWAQ8@>EnoaEZ~?%?zX%rqIB-cYn4svvIP%krdW^u|76MH83l4}T z;x({xl4Dz9VqGF7ffM{bPS`I9t-PC9&w(ufEP%9l5lI2JFyh|{M2db9ipPaV;GvDaf z+o&_gBwPH4qTil9jklQ?Y;ReD-;oslB2D-Uo;O0D!*b$3_zrajKaL+aDf}~^M|C9o z97@4iZrqK=u{L7kx1;UC-_RU6L1uocd2kBJxiZNX|Ab*P&~}(!^!}o> z@yU&GRu`%hhhIiV=x6m8#>*NX{q&eu&UN*>Kv%3y{F5FB4ZI*M)=~{{6o;)}8ehSrR_Y){GAH*(tAzZHm z@G#Zu{JFaM`+a;XLHGr=?8~R1Zlz%;($6-4_%2arReH$G{xaP*rW4clyv2J&N)L~57tTN0Vpo*9o&9R z@qgP7|HUa2Sk}JPC?0zOUdKPMdmq~FRl_{eog%nn?;|Ps-onhO!_a-LtMDTJf=%IuTwj5hilX?H7}F=0iNFIS0<#e32JHOv@CF}lk6c;@TB z;eejwn70Wy@6~s4%J^|8=zTcjyvZ;_(N)jFcix}!8hHM-moWdXqnNK@=+m2Zv)=Xi z&-}mQ0KM~obB)4o%d>xDKi%Wxc6|z(+eJXEPEcu@ONNmo}+rFis>!Q8QBi+!k@8c z#~~=Ai0*O1L-_92W9i3Z#&%J4#=r3VtPRm&rC;Hsmp;Jd6PORB*S&^znO4U#9@hrW z={SxkojwidwEI2y-XU_j*h|^L4y(*(Pk8Lr|=DPjo&AH_g8nI~0$hHf8(S z^*(%f$Nsd%zM@wHn$P?%-oJ2Nbl&-I`1JMzk2$*uXnEd=;i z{xcKe@I;UHc@hW-S+`|n7|ze|ZIGyAO1L{Q+zP>qP}B*!-wFKi690mtUbhB`0u%l# z+tw`xEHa+ZkHLBnY2x2u`D1?Lg!Pg&prsJ`v+?+-Q5$TG5pFs}F|Di3{Ukp3(-tG}6)&QQ3s&-o~`EAKjpzCny8x zuKG;Yf9$x%iG;s|r~Q_VnWVO=ie)Y6RY6XV@}?j@Q;MO+|zLW37p7p3lvbP#Ke9e zz#_83=du%ux0vux!-+vhC=wU@%DO(PQg4vKD1{AU&bD2Q7n5hhLSyDR@m{CFWI z>?y(>k@ydZ{KBx=Hk6+Q;L4VU?tVyxBHt$_{yAY3eOcd*u>SRpeiQu$kF9XR-(dU5 zDgMKDl+xzn;@=bg67)PbV&Y$-UE5Ib7xWIc!WaHYqWHoIe-ho^pXd*=as9^9#~1mz zh>u+%ZtP9-YmL~ry^!L+jRbS#aDE(;D)?hCu1MGl2fhs|F($7LRh7_M0L*K<3Hp_g#t=4?x4{n2aG^>`9b;GS)#vVCua885$pd-ve6 z9W(%Wo8Mp;X6H;Dit--E;KuKt$9ZEZ!nz!aKT`CbHHr3mZ-^Uy_yYghpY=3gCDiTn z35E3IxNdbF8w!*zqwRBS1-claa&$ig4}AAmY}aD|+c(d(&Rx)z;=J>aDJYtHCI0!; z@mQ@(HA;3l1)Fyph!xA&xAfit)A2bj9N!-!`;0?zw@%FaV01hDANc6`z0txkt?S8` zU|WjF!R4#5KR6b*;$@sPQMZk6gul=K8q>GloMqR-#9KILJjac^V(UAGEKdR6wH7T` zyp0#;Y=->2ZYU{Zo9%Hh#o+_kg*rjE``g?7d8`U`tjm|TuNV|{`ZaE!{|e5WIFv%4 zeeLo`;=ccWfJf)-L4nwdd91^L0p-Zc|26(F_hrnO%<>P|2!GJ!^7C|Se0S!7eVp!& z*x`4W`@-c|YhW#krd@>}-n}1ZPUF0!;}mr3w-N>y^}*`r&c}ThZ-L^KD6-#w5C56H zJ3933%f7V*olEl2js1PG)hUl(4+>1xckcsm^ZaLV$yD}}-44U;cmwB5VY|_J$>VrC zUd61{mq&5giMZqYS8>|v>_2qny4O*-A0OfL)kdMT56jy507~vRaK<*w_s-Yjhqq6| zI9;sW_-4HM?W?$K1D3zfVff=$FJtB;9uLhUx*dSu|MxkZKV=#=`OC9-`{WIo=6DqK zKM*&){tBMHXm@lTI0!`p*!J>RPb-~>zkUPUFqLsv$U|B0*|__~cW~tD!_apy>q58K z_c#pqe*b4|V|QT>N8NG<;IH@?ht`&(b2ql%xnJV$J$cMjK7Ad5;qUwYuh>Q}DAe62 zI%m3RVe3HLGyg$s*J))QN7hr#HFy^{;?S;aZ+YwBdLE(+b-XsX1>fDcEqe7EZ^yl8 zIUcXl&gd|>3MD;iQQV`_F6!hhzdG_Zyd3Y%pN(w>O+nYLGjJ7Nz=cg3516Lr6`c;l zgZMLc?Z|UOFCiS8&O= zYNo^E$};C^ai%Vjc~dyK+PVv!b>`AUk^R2bj# zkT^C@m`36>^z-wOmUi-3Ig<4i6P5lk6n@x{P-yzXGa?G7^c~Eb5$;E6Iy~EkpMKB= zBEPiq7_^fL({*(hLHC@5VWK=I+sA^Sja2+FY3E)m#PY|o+RI+TZCLN_m}FqREdg>~ zsZSwu70=<$<<_wU1H~5_7)idYf}e;-Z;qXhtp?U+Dz z#6)!{zOzKWgnt^Le@wV%#C=lqI|Bbq{vw!%I4qY(=B0ljG4UP})yIOd7x_8S@6(r) zrjUHWV`BSG_`4TJ+VPga&qdgNQrn$id&_Fe$#Wzl z{PUc({zCA4juv|b-C~QrOMqxDksDv+=OVRVcVlpxUu(E{A?ac}7n%8-D2RTigmq#* z2kydA7K|I<+xO7;W#!I6qI?TR_CliZk@IO2|4dJJx|Xeg4xImXvijQ@x{3bd`FedE z|Gs(+7uM@#WE4ac=!JXVtBddWcHUROAOAsd_#iG_YXCa+I1Rs__ac5jwh0}}kHMYa zzk{`=j*gNc=@U8us+3RS;HB4jV9kCpMMS9{Htn|YJBUuB?Y|R(DyO$ z!-Lpi;95K<#-Vil47{(fWFGzR+^34-h-K<~2+R9l{BAP)h;Dn~R=kO`C$b+Y9){Ar z?!ku)56Zr8zk3+l_ZW(mdQC&O@(L97+y{5fe+WBL@a6T^OZHYkC;Pk_=LoucvfC&W zcGwMn{O)CT5^@X+^P;PmzDcpP<%4#&Oo-o&i6 zCm?U|8aPe`(BFUV$6sH66vwZ{evoy2*9XsF)~aLBMSX3L1MoY%g`+m8L`kRhan7qO z^Xq>=mGZyVxjeSt>+|+jyl?J5lliT}k$38a6l_Yjv)(%EJrgfs`nm&=H%Kpm=kf2p zH~#kR-?6F6Mm?Cf9FNtiGkJvdHxHj)bv%!aUi8RwqfGtJet77cC$Om&SW0w0tbpR4 zgOJ~QXWT#cFW69D6jM7HG!VV^{wG`257xSF-j!ozw;GJU;1S?6mepRa2z>g*2YBc_ zwz-a__Feyy?v?1sF~Gi#&}9tD_X=L7sK4vBXPUahtUL25vES)PJcYkwukryX>Clb& z=ee=B-og<4-LM14pPs#uS2P6qJKm1D^Mge1*{c=>%Qc{|509-DcJ!r#Ql6`wM}^|Q zn@)NbIM#vCEhjtxMw(w}XMr735I$8j6BE_+m*_WW%Pjy{Ty~aO3kMYDj&$+gc6?ir zP34KAFBkR;xTImXI{$u0fCo&s}}hpctXf#6to?gR9$S;fMF# z*(f4^*=5?k_{oVEj%5jiJ?pDY_~mZ{tlMnlo**r5Dva+RAAK6op_5MMh1++>&)T1t ze#{>0BNE1}NB29m-f}@Z4tqPSpnFIp_&J!l-;pr&by009xVnL@gKVR=V=s%=c`TT zCHOf|h^~VBvB`Xh&TqH%acM*g0D|uNZn5FqLiCv<6aRu~nb?qM;Q(g%LM9h3>;lLV zN+~1-RwVpIxF7i|d@{bn4@aEfiwVEhaN<88Ti~aYxx&l=K5YTOL~8;HXNQUCl!XBQ z3b+&7tu6qFR)v2G68@q1kHmi8B=vO91CbU8{Zw*Kl?m2LRyj5&|7zp`R#lE|s zl;s!N@N8zpe=wg6%AJN^&erkgrqO)b5!x_+=0)>tSN_s&YcR|(^yu0bo%`_E}P?C}zrPFuc!Lrd?&v<`-~W)2+(-1a>g5WBR?f;&u>fdNQ6qK_|hiu{y6aMa|0S zH877NsVDoU^-xkkA*8Fl{U)GiA>BD{ckI4~m8p{+At>vD<-3okSfW^6VMFF!`R_-1 zv)$3Hdq;HZvl;Ts*$4E@Lr;n03gxvgdacBG>MQcPpnD(P#@z>{EPGy83c0T3=-zXE zYMpmaHv?1@p@y( zfUZ`bdHVcdm!24@PsA0lj4N!xbd(0`a6k)+i&=I(ilF+m^eHe$RG>6(6?E&(@uq(s zdX+V!w5bW*J1HOi(4`}7RW+bEk99n-lmd7n3UxZ6JWp+{%dXFdDaBIdVn6&}la9#e+v z+y{AMHfNpkIF~X1<;@s8h;>-N`d)qwbm-C_b!B?DKne1i2cThj5Y%H{HHv%FzWQaoM6*05{#^$`!j2*8V2!Y2Xq7N* z)ER}u?8M1*LLn4WQ3ojKCJJe%kOx5v08wYfPAM+_gZTMuoF>*K;L}J5`dsA2_Cwp2 zKf%0E>@5f@lR8rCP?=v7lKkxp5vwO2=%o0MM6BG|AlzUbiSv+D@gaDSlWrE*hhYph zGDE-VZi18fGWgpBP`LHeHk>=l>Ilo+HW)rCr?v^K<4?kTMWp$+5gs3FOLlBHAUO2R z*Y4VSZbIR#?TIk$D6h`;AqL}HThBWO29=&om+NWNZTVsP@LEstxo03c$= z#6dfbEc-qTo0g9(dm>j_ZA58A`%1&LpR_hY$0uVuTlo9wrx4Wx?WCeQ zUmSFPdN}cI$5m(m3jNe}qBa$}CB?tqj%?yz&@DEZ&w)Gtl^;FxC?dh{eutRoPeL2^ zn1IAaC}8w?z$B5l5uB(j3R%L*;RKdPB>si(=i)FQ5!_E(0Eme`M`$x90O>BGFcORs z{|hDv%fUI<0)UBCU-S!3COu3{OJGanF92H%aB-6h01Le8pF;oOTl=jFe~(CAEkNOh!Uv8W-=$_U;XhOQExW1(o(!_p}nCN%dxJ@`NEEE*63nTvh zTlbT~yfEAv&abWbcatXk3Pof;nEwVBy)tCYv18?Az8xw8JihDXUFER zs%wpfa+6^0GKh06^ zueKVm6i))K3;p!Ha~mtz?(~emp8K{rsr*?6y=7f*^6x5?N5+*{Em!%Nj@r2LuTOoe zOlE3Dq;Us#JZ9elE$$|ru*-O2kcf3 zy?{?20MsV~@5eR+mq!QAfeX|>bmnnZ{n&hi^`{TD zZevi~c{Ii9D3ocQ(3jzhm{+!wB9*Z(^EQxUPH&EfIxafy>bH7P7_(0GxyMqLy-3H} z?l_b?+e#0*(XRvRzf5zLqJiw+^^P8vs~5|p`I+iTZA)KH&~Z~+(pd=A0zf5^4UY_licGMQtmh2XPhPOE|^QEspbYgnaW0nT%x{SwA?NPVq+gyp^ z)Lzs!S#Qd#y=z6slXX#~7eMMx7S%oDt3T6uX6HHk;(V)5g{3XoP}^2LYi_9iQ2T0o zwm_xw(3YJe{4Kj>Y>zshEWGTq3_S*;gyO#g+jB?eU*GsIWM0DC{uxM>V*>$=tKfFB zFDlGjDxtsEsV<1^cr{Ylr0odpJLI2)@m$&_+8qoZ z61@1Xbu#7m%jwFV1J-?;Xp>Fn?~Xx8H~>b({2AUBo^shDHux&8`<)AgarN!$R=<6m zy9n!?*t;C;xMtjp*zrgZv$Y@+c}TOjFl5;eiNY`)k4zhB4b|O(>RHE3?JODBPdkNJ zJ`;7^D(<)}J~jww;5NJ$|LNI(^9$U9iF%m64akhkjy{`V49@|{BlE();8x)PJ!|Ig zXWS)Jg6EDEhLb;|f^g7r^ziWAJ%SemE)1M}Byn$CC;2{_Oc?r|agUzU_Q+4ezmlJW ze0>T^xZirwUr0flp~%(C0}}R0oX}4~zpTXpiud^K`x5nW{4kE}m+vJ> zN#Agb86I|fzZ3kVUx?etjLm}3myS{%R@W*K43;i^*<`f=o9+>8rA$uNaw+SbS{DXLr?b!Un$4q^PH(dW0 ztrQXj(MBf;AtH=KuOlK#)I^jRj1oleotZ?99ud(^bkRkx6J7M^eUvadqYl&Fe1Ge` zwccNF*Zq9%Is4pw&e=Qp{c_B!gTYGH@JkBx8I z$yK$8+9OH_RM3^-L5xzCK^)k8$a|yxkTuA@n*ZUD^!$7e1(p9u;C`Z^W6d2kcd+`! zng~-Fzl%Rq!)a%re1wL|A<#D|EOn{A(t{ioLun~ozv~N}H)1zg9IKzvWBPt(0~%Lp zaM@C?2KSy+dK#SzXI=e>aj8D+J{^)AZSa^M!@WUz8A0C_4cJAEFcz>y>$Gq|+{=bu zZ0p`1cB`+-ZLX;lb3@eZ7^B=&Q-^O%fSY-=M!X8ayX^cTH83s%8j@>#m zIt{4Pb{ywe0JBzfyD#>mf|J|-LWc0PSwim=&n@>FsAg{gPRoCVhbvPpJ}5LOlhki# zpu!d-)?MePLU)AF zWj?v*wtc3OUUw$pqQYimlkGd^`?K@6V5LwR#IjnoODfQDci`3n?-F$~&+rA4k@L_z z%kHcNK^R!#nER3@+#vX|nJ>M*bM`^~kyT&BWlhhu2>q<1Rv}yHX~9RUxkGt*CSq*a zz?jlq@v@`*Ka{$J&*HG$5rN@0gP@k|;N5;@SUK4*#z&JyVv}rM?CQSF-Z}8G!-t<_ z(+r^~$Ci6#S|ys?H!sF-N0#qxt!%5<-SE70W%m9pUkuQtv2p)fZOCg|v?Nhm8N4w= zvO122uN|bgKR1@8)+aoS+YysjoNfYs7DceD=&e*IZdf$L;?0yYagdS-6$}e^fpie zDvu9_hERs>d~*InQF5QNTe|8?CsXYX_wVPCp=LSeM|mluV?JcJW{-TIs~@#Ij!|yo znk}{$BiBqaXPTs+r+W%=F0IM&^JP-S_`KQcDXu$m-vNZwVyO8c4e!qr`yW2NpLKWs zfC_ibPd!Rg}WQ zP{D~6xz#-Vr<82Zf++;fY0rh-wuM_%8{f>D@(J-f#+EP!s4RZ9Kk>=>(r>`N@U&d&93_dN%^!tHD$botzI8+#Q$$`rztx1Dgj#(AvkR#vuhoO(P$oryg@No)4PM`g$iSp`Nb!6}AtB zwH-IqMje4O|2dQbm6n~nXqtp;+(2+%tuh-zBr0-2~vj5o3y-p7Yj?)<4t%`6O zm#K=W-n5Gcn?|0p85hZd@#AcNnmOXWE;H}tsoiqcrha2)tX5XUFqN`dz~!w|EG(KZ z6eyEmS*?N?0oP?H#^$ZRmi)M3N?FjhF={<&@Aim59i5n>OBF3&3(vrP3swU!;qlY` zz&j-GLgv}}kJvizv*MrSHO^VDQ*!DhUzo9*&oVj0&9iR%0LV`4q!(Ne-!IRWU~k?W zb0v}*)CIZ&?p5by&O&_q`Ay&jYV?w|-*(|&lXT706;mw%#*vK~0TNw)#rw}UN8?}R zv;~|rlU8iUGcz{!VPT#UN*aT|rwn=ar^|zYob-O(;%S-oTMr>Nu&`hr0x0vzi zs5y84qd_JHp`w0z5oS9nK7Y>E+LIU0&X%cu+T(}R2c`Zt@u=aSOK$I1ocUYbt-R?? zGfe$M@VUqZJfilOFn3ucj>%(kT{+1%@KgTmQ*auRT}T`$(hpQ>&mNuTG63iJG(VmC{=i>E*AiUk!+F&r3dQOhC$dB| zv}?IMm%TjTtP)*J38pUfgo8H)t2qA2K!UHG0RG85p~HtYQO6WXXLD`5Jj*@a6cfQy zvldB%%6OWXnQ}j`Qss&_NnFt00RzIsIDQq>YU-H|dDf_J3(`aw;K7`|zL#~af;7#P zn?+;C!hx^4nj-tZI}K=$Zc}fl^%WZX@AfwiCCqI=%PK-^smg{*sJ|yH1f@hI6!hW5 z6of+0lYIvfPUFIRfoAa4otgQJIpK#x2?KWakMHb<``_*qburf2ZAdl$RGfJE;?s+8*z20lw64|CSO4PDS|z=C;g76>t?6ojk8!s;={V>29NM*|~1h z2kLeT2hY8}d@Hh9`o-T+uIj4V?fLxWYsIEY`FC8$jiqrdxW}z~W5FoMzLiheo^4To z6pYOyoTe&b{aH%)Gd7%|bg9!rm$ditDA#1(x0JLtT7EtzyswM|XsC_Kyx!N4#c2x{ z7ndn}YYXq}a_AWWpH8Izu$Mct6~b_7b>A4rE!Y=j`9Pg;gn-1V4hxOk=jB;&iT0I* zs8ho#%5=5#79PbY9udIwpr(mA44t3#Li0cI2>M3dHJCl?dpNc|@m zxnI;(t9ggA;Nz+1=Y#vu*^l|_-Rb_-aN>=$o+%!!Y`>N%m%`bVCjf>96ZHluQs-YBs8P&V# zEZ;fd$29hXRmKxv@&v%OPJBOtMrFG&inytco5A<5A+mht z?NLR1%MjpomyftVw<+>`pbs9^bM0+p70Nkc-i!B=&p4y?qP%`=N8wi!3t=GC?547nEx5q~*2WQhUFpI=) zm?I|5ltHCl0bPj`d5$It@Ba|GET<%HO)oMbNH1NKRq(tOVSaP*CQ5*pHFo|o>az;w zdjG@aiN*1wuAa`vbocEq!TcJI$o7QgC|FXtxYkd}kv;D*1yaHOIb_Pa69QHjTM&fqGe`&v^@HP|InM#`o?eAA*@vk z$J+wnGHSWr9J0~r?qhvfXBEo@l`n;w3w1zEFi(=#^FH<>JgYp7TeP}z>XxP+xc?_tf3k|A**;(v5R7K&GG)d*#vvVlx%FdC~3Z9 zWLu=gR?}yz(r#5aA(6(4l-r_$;u#AWm*iNLGdjm9*JnGg4VJn;WLS8`JLLO#z&ds2 z_8cWli04j=<;ykdpM3WFbBO>#iaO~?5*4YvGt8a~%qMgnHB7j!GW$dw#}{P%T%C=? zqFGg;pA@3J9TfIk8f&fRU;i5dfAQfX{AAoO2(X0!)8BFewQF{dA2|=m%b-VF$?g9= z&=Pw`m!mM4mtv%5D8C_fI@oIbb+wcHwgAB_l`pZ)^buV-NdY$vW}x>)&+rWrwVw|AX$-JuGCIo^7c_?ON0=7_HBE0BgsBZP{&B!%dD_E$%aTFnRE_QlQ3xSo=t#s`on zPM@v%Ca9>xluNaA|`I)dI8}AK8ar`+s?4G~CtEQlo}NAib1O z=6;s7iDCpvZd(#ytGi$M=FXDu3*&%^wX$Llf&mVa5UmMBasD@~zu#(s(NkB&qaGvA z>iu)Xvj(NfzTJ~%kZD2+1WK+Dc#*IeFGo-bI-j#+eOmIstw#LxVOY@VKIk?ahL+fe z-neM!P|c_UKIwfG8o7#aZ3{&xp37HgozBFHb18-br7{N_Hhq-8CFJBK3a@T-RG*C3a|?-dlq z150+i=z9=HV$I@JUX#Tp^u#Hq6Q-mN0phcy^?cEkFO_9wu>dl@H4YArVcmmy2gt$j zFz3AwdAYfriy7(ZL)wkupPa_Sh`FB^O(xY46KhX)-}996r5zU~a+9!)07_i4176pW zm%d-EMNezH|AgKCfqYy(M#q!%VWYb?s50(MJQlQhSMo%wWsrHq7ZSoZih|Q`=Pn2c zHhMOpIveV$^5f() z2caix8h3Ua_k8W&*+mWAv6WL=Gk<_2Y1bl06|tPlK_|kxxZOGY$AJ=)*0b}#S?>mg zztv@o6@;Zj^c4)Le39K&ef-7J?_}Q>y(xESH8I?vqS5z^DS7L4sMQ@F8Fn7xp;*v) zkI^Q}tUe)`<@|5rk;{5A(b%kC2P1c?Ic;Y#5$?(>D9QPn+oJ=0-vD=Fyq%PFk@eIN zq2CSr=Erd)mJ#mAxjJ2$UvFVAsw0Aiti}+Pf^Gp<1_3CS@h51JMBsho__$T)G9tG! z{92PEqNHTt+)O?^xnSJ7`LFI}BDBKi-M4(e04?zF&Jn zOfFLleC>9<6G^b@f7qIdC3=plU>K}=I=axPTf~qV2&}6f4!shz9Z7dSSPD3!=`7gT z7O-=lkK*waWX$Svi9bEz)z$;P8&?Si|M&TqYf zBo!h{x&Vx`{J7WsN!wxTK7AZ0&OG=k=Y_q1L!JCL?;ZBVXkZ7|996{?(qq@z?`qr5 z%82mr>INFbf7_Az)+Y>)O!M`_cH;f|1*jU+-_6tkhoH+dQ?1O_=y2j%X(f7gU3aCV z6h>0{?2)^ioIu0-;J;evB^RuAf17QmZP_gY9udsi6|B4yKN4OC{~C?o5vNKjmg~9@ zXpg%|x`Z5Y7QYP`eK)K$3Y$i1JbNvuViqnScWsm0J)(&NjhNB2~52Af!xR{|FErUrZ5UTRl{#W&t*+m9_s`ubUVl3jDg-d-w?` z`rX@*GqRNu+xv5#$zQ=R7bbm|0OP+uo5I9^VIU3KyWQp2HKUP2dXzd>HXcjWvmRj> zbuA(x`(Lw*;NRYJyrQ09|AWzt+6wYM$%6~nhXnlj%D=PlD!onG-o_z$l4LQw+6}{A z|2-}sSU4Y*WN4>q$U%3SwqC^>-@UG@7+#6E1R#UyT93wswiaCPEhY5E01>K*$k8?D z_8vpOqYlKZUKaEmy7(P0H1 zr^IV_KyLnUW&vtE!HY{9KEb3Br@LXPpWY6^nIFCu=`u`R38zU5E^lV~b@ZIP-weDD zzJ+3$EMQ(Jf_*N?o8sM9TLWD<6B!yAaPf(}YF3?Ll(WtaOKu}FsFifbiVhm7#gEuS z1W$tE)g!`LC2VyylBYMzcR9+jvTYi0omO^B=?;(LBH&Jl+RbOa*ZQGt1>acjd zooAXZWiwk<6&L9e?RXwa&J4mo(h=?&tZe?e;4nF+{eDN{9=AZ!A)g^C>S({V=1Jm| z9Z=j7mf@uveWwBOL~mK_?j;r!+uD^qILwc_UkQ7-e)Gl}QTNd_nD^yuUq8L7(UruX zk_t!h>dNxVr>%hNVSrnbvmf-E3pRF(9?WHrcjhO?HZY+_C$?~S|F8VTo`1*2FnOeL zF_H0s$q`_r`12_p689w*R1SC`Tx7Q!6D_wEyDhdieI+q%nju?GMhwCrNgo`d=Vwt? zR0<@xOQrqGO3IOI3?`+26gU|}7E?Vw@Zv}|98Zgw|Fh`YvaTbK#l>tb!0xF&YsE<- zJ%kvseVl>vCno(>a_dbfNN1Ra{?R7*&?=^!k3gMz7=~%6&6mPM>yxk0wI$0yy~UiN zQ|EjCmX@f-XMSP-*cG;#e0kv_N?G z^HZLY1&lo8lfKadVb4!hz=Izt@{dlQ+s5n{(4m80cMb?X7O8tlCiF2ywYLIM0CQXe z1#NUoD!lKb@XwI5Nwnwnzi>Fj@J^%5u!X7n2+CueegzK*#bz^UYWXYyH)!ihl6E2*^@ zqIy__I%YwR@{voZ=&B0bXZOWoH%KsmYXnJ83G1O-vQn1z@|3RTS#0{krN}^hO4MRS zZK`WRQZZ70fzLJ)xNAhQE{RHq#`mTSipyF5xRIn?j3(j{WGh9E_F?|N`owChNa`fl zyz75|5xDig`UEbWQj7_uV_4MRdBq z5!`c(JPIvzn}}bKZeQJs=uz&p&-xcU(b)2(uwH=dt$m5K6Zp#e3!di}eYbc27Q>y2yfo$`TpEh>cL@4C16UjCR;>Yny~W{#-%B@`hm)Y($yYxndLFhhMCDrP&3g( zd$l0O4ke>tRQAFm-}LMZ-%hQRR-&wyaY{A8gpC>2XHH=X*G2ud+=5R36wNxF2=9-4 zw95{@wiIyMiAWhNn}k4+Sup zx`$BEcRf}^Btw-%&^*CAmFAst1VgCySMMI!c)mvC>A0r*lK0GNIcbpV0ts{VZ$xDW zy8V60vU=1-*AV_mY*c=tf-ssPHHrgWZSk7=ZzM|}ww??X?vX3YH|`*n5|@?kAT ztNcZdGkqrRu(uh1xn39Wmydhw)J4#hLJI*yKTMRTqKJB@QsN(;^QN9=%qFk+ zAUrMnnWKSno12tY1>4=N0NqCK5Ecv8x{C5U|gm>JKBQL&G&q#svO3n%w+lN3h%r=Gn`!JZdx5dIFVqcU=RdEya*_BKiM8$bPW6_dZY zaX7X9jJkADz*5AJSvESHBTa69fmDDRSVjGl?PHU^BMU;qyie+HS-?+RJEDvh6KY(7 zIK^E3scKwd0Mrte!dBskYUFZakbWM7ZD(ABu0!TyU%{7QFikkLbos^*-Suw@FdAnd+=x!!Kaa#7w z49q!Z^$|dpxdl1fVyPNP9JQRM*R`tSg?Cm>(W3m}dqM!M^dBSPjHu+@!;dA-@gEq2 zr}|D%REON+av*@o{pBviwcm zu+0Gkg*{56>$|buBQYy-TE@FxGhim~jGjsR($!S!gf3uS%2Flc;V?cs8Tv+Gzdjn+lY%>6~5{K zecS2RAO7clt~pBXr-2L34LvZz2@f@PBL%YNi@s=8v)#Mz0w*ggyj^h5`JQ%u zK@MO&U8a9>=0{1uop4*;p2PQ46SmQBmrA%l6G_Eor&PYV&C2vmp(vGd6}c0}&qO7+ zTOsnF78#1=>y@5!#OdH7NkX=v0$cdwj0}KmP=hE;#3^_P#Hfqduw8xPbPvZ7B}^6u zO~j;_MY%7v(a$$L8;1&$w^I_E`E|H6*xJ+4YGXPQ>>MVn74%bgz+K{`p3)-EUMfBD6g#;pHAPo{KAG5q9TQRBaGR}T;L3B2y- z+S9!gf$059yaK2xJY!K)#L>`RqI{)OHx!O?nr2b1NXtP`YxI3a$(X&Of~=U@XLToo z9Z`)w;~FGNk}2gN8W9Dh)SQU*H+C<$?}yF0s6MNg`=M6Z?zf#h<2L@MX!S=ZT@7j< zFNDk0HX;~Uxsp-VO=L_E6%w2mCZU_l9kK&1LDBz zhCe%R|A=1ivr*x*&;R0@BkfvIs>b`$Iav5s+B`s98=O&Z*f}6XtK@9se8l=O>;p}> zLYLr@t%B_D)=8ro%YvLdJsB4&!}536lD%n)A2eGr+;)gE@SPzW?5%aUxvzdxN?h{R zC65@p1jD$On7etUE_*~L+`s&1S(TeatuU;2f8nbx~LX!%Lz?gDc`@n+xyiW_G zHY&~OljS=cjX`I%M*85;ff9#UZVAp|14qmG^inIg9`(1=Z+{fLP5_I>ju$Se*4=PP zhLY~$v5@MmT*%q;28zKKw)DBAk`ORRGP^u$`DuA0q-wRj_Y?d^v&SLzrMC{$=3ReCWb@jAr8NIJNhg&82_SiWe4oGeVTW)H|Mwtn^0RToiO?>CuVZg?Y}UW6~eM~ z?rMrZD!rD_9y2U*NiBlM?n+;D%v4P=!(5a662dijh2zyovFI&l>SBbONs|}_TssKB z$!-1Y1tKoFix$tDqF@lrZV7^sP|9=W#fLMJIR%}!8|fzfI9ZQKxb?#7*u;-;vzR%{HPQW9O_Is7Osc7iPT@6 zNcA2h1SJT&2Hbif;KKd?At0kWh&%?HVml%5Zko$y@z2`BCC@}#-cFX3R|(do;yF=o zo0F4$b7mL0T-#3C3of^;b!S`1Y%>)GE4qQvn3VH7H{H0Ky${2Ek=VO(hs|o=Drzn5 z{q4$XkM-oSi!rkS8T;DOzBa}R9->x!s2i~m%_a0esVnJEsopvOzg_t25wh0R#%IF^ zF%h-Xx1-GdF8%H0pj3WjGEi9krtibB>&Wo4^_Mp-`4Vh2Z9L$Dv3;ZNL5uG0_1oY1 z2{x6f>wWMMPJxU&TNE#heyd|{Mg94by*(zyq5Vx=r{}6+mClhNXi_Z7Y1h}GUOfX;}~X}lZimsCH09I%KY*X5i zi%We2VOQiDrOML7mF(>lrD;1nzZPqPk-7ie+H&xPS*jSyR4Yq1x&Fq}veIeoT8Va> zC+U2XeR{@*6SiFrv#8UwREb@qR9ScN9kr=E4=*m&_@B>TGWWP@^X^MouZ2}JRmBxo z<{CSvg|z9&b3{6evRm(D=)IoN`m`|A`g+k&e^P&M$LxB2amVqiDow8$eT-BbmuqLx zY1MtEJp(U}!E3SC5jpc=4HdOBTfx_v#`sq_z-5cp9HDYIYVW;v?nFirR~#<4UQgAs zJn@)R*D^9RHcM-?%T)bdP#iomF=#jl`TdGCMSVf<)u-2p)d?*wEWdBBNR((4i zM>qbyX{S`^Z)ZT6LuRa5ye!A9a`30uaqF*_iZ3KTR9i8r8pSI0G&5FrL`kiDV=J=C zC;^m>%9o9sezN^u{pxZR?P}R3;Z`aq@K~tN;`H|PtrPGJC#T&~*5B@+X~ze@MM-o) zEv6|NM%2ZZE!e6j2!vEoa;bC=U&7ZR zmBBV=SC>Y})keoq6k&-OwsZho1)UY6wD&3lFpT`TBF^JfVZLwQd^ThbFX)^}93$$1 zAOUuAMd!DZSGiXaeO3XbypTVmKf0)UdYBe`w5(RS9&OYf6GmLs#edvEwuV|0E@k3_ zG1Lo^_ycDr;#iQA`})E@sb%<9tC66xH9D&4fsi;QMQk74VHkoCbTO?y|9SN$KTOTu z!&Epwo_cwE`e~~Y=V$LI!^`bpvMgEOB1CpniaKqD7sq7UFZ!O1_KA$B#?rPMtA3$Qg_p{PESr)eKY%hOuh0X$8$zq* z(?6-BPZe9$H6tGdoyyHVuHHC(QWfTTO%F=(SAw!!A$FpbqpkOY-NO(J#&LG^{iDF?b@rO>*c zilVA-mfUPtoGSvKgNQg!P0y2IsXmWEVLKzj67@Ca5wlAp`JNe97TXNx`ufHI0x{hY z8u=gjwHm@Qv0Z<*LM3%eG>W)G@iz8{g;}r~Ck$gQeTid}_CVFWR{IMn7b0pErRO$O zMEl#w4r@z%D0BQl=JI^1ajL3Mu*SVxmFX&uhN-XCprgDSp@15BrlF!=wxD_RsLV0V zCHRHdiOhHVnOu+4M=stHrbZ)z0~{rfS|0+~(^Mtch16cx_Em;y_8Yx!b-dppOg1U` z%v_k<{~@d<_LWfrRcuA>SiPLEu~h8D8|{{%qOc&FV4BD2C8_-D)tM%oAAbIfG~Y3@ z^nEheaX{SKnh0h%XwIz+zSu*U{m~8c z<~w9^EAynlcex*_tqCv_H9yzmwkycmHXy)r&(X7n^OWx+4h$v< zg=7;GxIrRs54GBsYeq*t!Fm~=wmxp-_;XVnG>1C(^Ks4ec|6+yyz)U zyOpyGMX^=HvM|KzANgVKMzpVcA8cEDxy{SE%pXtG!ns1b!2bm#(=+8JiSe~pS~21X zaSr=@e8HUN3z$7g0M%FkmoiP-jvXHg8WxUqG%9`gD|7+*a8^_HTconWn43=7pt;41 z`uA`=$G-iw-{yBm8=rHA+d=HMF{0XENtL=p+UH94h3fh?~FB_)q@7Is5X)4P`$ zA#WP6`ms`Pyefic3sP&a4ztI_F>X_<;Jm_+RY5mLlj~R-rYY~**QG488uwG(9aB>o1lC+J8$q#JZn7*5f=I}j{3 zG2Qw5^W*5CCFkF=PPYC6Z>4HlwPNafCylJ7*W=dezn<@=9&S<PNB}wOV)!6QT>>Z$}6&D32P4{No;b_%d@=-*gR8=na3)^_6g) zZ2VNQGj~+_)oU&5I}WK0^8@Z>D8OWu^M}7bavY@DYd6~CTU;(1TKN4kaqCMua+>Kr zXd>^uzocYdan;g7R>+miHJu}b(^v(1seR=L-uYt5zihAhF@de=!6ZPWCb|jlL zp=80Wr>SUl!n4ovK<0+%#UBn~V0uFk_TohJV$q}pPmB?ZT-#+d><$#`v%D&hS{pzh zn9MGTKYNHP?k(vn7vaQayC92(D_7Won%{X=lVLWUB9<0wjxJm}IHdl+*!BZ9Uk|~n z8h-a9Ria<5nkBxj5x@Ixt}jL|_oU7Nt!8C_>zj6pzguDOI9H(&v(uc&# z9V+%_!$_<7N6xWr=L*)HQ#@ATG0PnQ82%cE8PTN$<0?Qduwo*>Hj0SOt|$9q%S(e7 z4Dwh2{14uUo|lu5aYK>!yu(Xw&10T1opNogQH}|s+3-aX^5f?gJ2M;Is<7t6)2v9`1kA-V;hk zU_%YbM!Ez{-fNsPT{G*{kGUohaEWXNujP9Je`h z?UXM!;aojqlw^F^@{pQRM8~pZ*wEm>HEM(ncmg+6k#>JbLT2 zEdKG*xjS{0SFf$t*s1wkLi(aPMiiTy)<_a!tlFSp6m6SZMS+V!$%0;<{eWI%8oq)w=qjvSloaa#sXgQv`5FR$n zPum-o?k>Ic?ZgcO&9DwRc=ZFnIUhBPn^9ZE;Lp3B_L+u+j>z4e$@CR-N%IsIQ4BJ= z!y$hY3-@L|pAGWf^BmV&^c&o7^y;;rwK~?*D&~mPD2?xn$8vwVQEyHikfL-_D^dMd zM$By*Q(krQ4z(iXyBP9rBB8H0$?&(zci-85W<42yzWAj>%S`v}JDJe)=ZzMd*|X54 zQupb^0G=0D)vhEa=y?l_-2ZiXYF|k0BXP5 zO%!B7#kCi0mE&4}?6 zfc{%`u^1HRLuKk~e1enKmT%M}T&aZ-&G$7iEh*S-PgtPoxuiMq2rM+w0w3zBv;{f3 zo?f_~kw_Yk-^izyaKsPnn7ggiGN?9A{CQT4I2v@)A*GF@gP&1J;=5qg$Z}W9m|gRZ zj)t~R2_Qmu7;L}b(DD$`r9vEOXpi4Dzgk|Vth(~%v97s=vhD)af=-Y+?Aae3$wBcj z<|X2Oq()6*1Oeyw2R}UqN!RAV7xZX0ZzxOV;>CrxuyQyz3h(r;Zp0U7dxaFEh{5Q? zo{4sz-Y%BTrmCt$vjerN!-V}vOXY>XjV_YEDE9*WNi)F5dr>ej*$?nzk@7Ek5KVox z7z*0Cvo#eP#@ClBtka#hE?=2nrep=}pzNSE)wNPL=EZ`JZ^!XJenCF;`3$EQCKj5Q z(Y~D;+4+D*`EgiF3H7j0JaN=Q$y%6|U-l*sHVWJv$;qYLpjsiOe`&jdQ0}e$a^IlEKn~-I(ljvy3>=?e%NaznZ0zaC|1#z_*vc= z&}SY!Xv_0S!RQ@1Z)8GeKwxIHkO=X{NOm1Fzd_tfJVv4#wT)V*>vJ9SkosXeYmyr9 zd!zB-_{CG_(^ss9Pr18hKuo0FwJ;h-)!cv}a{jkQc|QvQdFiE94qYlvt$m8KPQ$9P z_8(ODyQkb|?NO@(_!%|ted$wc{GK#c%hc~|brx3sXULkme#uUfAiAzprY}L$HNA9$ zWq2MS{KQ&QoB1)Rhp(-BsQ_(*DyW`Fm$j_hH)1k_$MmWhO4QI8ZDYpB;nrBjlJ%-N zlXcP7+-u-HUrDG`AgpXznr2G7tGZ`d!0KEi=^fFam|KQ?VYHow#Z-a|Td7E&HwP%> z^57H!*{PN3=d2@WeH1nvOrckj#w}Kl9zX8O3&7uSAFx5K&cA4gjrW$@e?kLwUxOPP zONoB{N6?MP#_KYkP-`l)*6Tduv9~lSGQ$-S{{zSm=FhwlY|>|6!AIj7Nk{uKc~398 z4=|g5kr7R3!e(%&|0puN(yrEGxkCZnzqjvxu#|v*(hak3xaL#0Oi4T&!HHhw!?7a> z^8?>qYo74%Ya;FYBo|8(M6XqPtbj!QiIJkvgqE=aqFW8uAR&r2kyL+F2BZ7jO7qNh!lYt^8j}d71(k#dFW*FrjFSuK{V3pNWZt`YsfB4dJ6S=Z)gP}harFsqTP3$7#vmL!3Yq6}P4f}1-S8ELQTRKL@HZZg*@D=CkW&aA(P zU#6+UvRT;GOKHbL@4tFa?}SFsJjbVFtv1U-tA=Nzihq{& z+D2x^y=$qA5157-?7!a&nr4=EA;vxRKYdgt?Pc?}vRbHcbddurDV5{jxhZWseTVbc z@Z;1s`r(OrJ5_IncV^eBlH8_pz+rujBs!L4`2$qP0S_K1c_=vuT~R}C;RCC9aJ2pL z>s3`dc`v?VL2SH+x-9>T+D-n4bgCw^i+nvqDOY$xAEcQgq3skaiN4u25{zw4jq^bx z+|*Nd^4{VibPZ;K8orWAVps{p%Z@N&cII*& zj$k$fJ>^)$u*XhS;BRxtAKjQn)Z^2LKI8qjJE!$##YvJAR|RwGT|F~!?2_Ssb*&oA z9$lOKn|LwMg?=Ux0wmM{eJ=+idSWOw=O`yE5NzR=5N1jpYR0g^?j&<+{5H#$#@uZf z*l*RzuYZ^>>9j$VO>T~4JUIs&^o$^Bx_x$(LjHMKxJS!k<;~*>QmRjf%%nRL_1M*rU;CER%yO7 z@bMomDEjL1?Qy^Y0y{W5+Tg5;8*M-$VZ>mk`}g3IRQ5H+#%^~d7tF7!L;eAXgd)No z_9T;4vwzng&n9NOLYhCSKOK=?zr%QWOd70Gz-B)nh{ar&NL2^~2;)Ag5zcOlH2t#z z-yJ(S_GTDJW+LWs=t;B#m`nE}cx|(zZp;+_Y8cUVW{oYh$FAdK?5r~=U+g#GnyV+O zh*7BZ0czI{0(jc;)x_<$Qd+;a&;hGUT0@GLZ-<)qjQ0#CLK5#l%qm%~w3YI*5i>=% z9e0PEyLfHahn57a_)Zqa^db}Mc2~Dz>{dTcrHe+mNHFt0^~ihSemRG=8jc3sF+=&8 zKEqx&^&-4%Jj#s`R22Cgj)KReu|T3jB`cI{2BpQf+$rXHD%F@$&27xYrkAlQLrq8W zrX&Hw#!U1mC>U5~G!r%uU5z>WnX*4~(+QWTLT!_>RYZW`{oP=O zK}8!#ru)XvS=bw~of2@>HkxHUvu)<3nGMb3UY*W^qRjBFX`ZMOhw0&2idc>osgcID zw|mdLInxVqR46kj>vTE$C;q@yr19i*!i&Lpft9rv^F1&*%}7WY#t!LZIi(iKcL96m z(bny1S^cz1;?4Moh6zqu0}WdP5u+$!K^)eHenr|^xOH&j(O*!H6Ykp@Oaos~P*Z!< zLxkym_`R59*lTnvd4<$`qw!=UW?anO!W@qaA6;H+JDN=cTW>Duk^qYzx%5KPWK?19go)z0#!Vp?eRX)JzlLM!C0@nwWKFpEFWH7JdhI@5A`!|>^JAv z>4mHr5Yj|PbnZ|>3ax=xLgQfKQU;N64a6`zA7S5!D_Yr^Ju%q}+RD8`3f)eGyulgOJ|NU7Z2bszyIArC&tEJD zRtC4b4y8Wj-+6d^CJ76lP=4+~uLN$=&5)!a=5E2|E;tt5`}U=e`*~S);O)EyQ^n;K zYQf%&suKEN4*jX1p2G#w*hNkE9e<+*fIOZ z(YiOeXthc#zVEy)xtK?cEilucyF%K94!8L=soHxUFEF#vSBemq!+ZlsAtD_I%mGxY-pnXwOx1sy9RROmj z@AO%8_hQ$_LK}Loni+Fk9-qr>TXELW@8)s|J*#n6iQK@m~LPYAwu%^IGqN|;ARFhhHtn2yq2cwH57*f$! zKvAxp8_p$v_XN7c=sP0A%Cbm&f8|Wf*&2PgnH4DVmBif@7qc3GhvLl-1Xe3iI4Nno z^CAHwfN@z48YBktKqHolkP&|(LElcI5n&|tjhVq4S@{3hqW?w+g3usTldJpk;O{2j zbx(6D=@YgU70Hu4?ib&WklU8CgLtnD#L`Zs5P^xnL0~gJNrxY$5kDwrht^6f+Peph zuhmYdK6_9>YW1H^7>0qcm@lL@bW2~+3BAd8zJfB*YOC5~=DVDrsFc%36G7$v~* z-P|z4)4uBPn}}!bTa)AX}$1k8MJ#sOgjd@v)5;kdF-lj#Hz}qrDlVDEr^LzVm z%sBPqV?)*40Xx-G!%lzXaGx(f;fDL+vuxai0r4M1@1B8{qEPI46qi!sliRPGotcRY z=zyCRgTf8nbu;FU4SO(B6wmrBI1ig4Pg5{Fa)w4>9C`*X<(N)f=#`+&Ye3(*F{B+l z*x~T*tV5~rHc#tH<*(fF<#XhuD4=UcV0C2<(X+QynA_A2Fp!92HI$)U-|4fQG8^r= zEIN#eVrqX;I-`7Y^z;L_e!}KFdiG*G#%)m~>F;bU;9T*-iu2d{j&blzlKa6!JIlVQ znJ(kay84{xwMI%tel1nc6Jy3v4o*o90kP%J&8p&3lh%GyveKuEV%4LQ0ntQNal`-9 z*Lg-Y)pl=QX#$~1?+7Z0G!dj1K?RX6(rW-gIw(y_A}CF|JQM{)L;>m2d#FJ{dM7|g zkluR;NzR<-o%cU$)|#~@U-Kdw+p3c6Mh)zw;LekV-DEEPRQm{>lTwFc?kmgRbQyY2yF;K)cC0M&18?fh zhr?|`Rs+EoT1dDKd^3{}Oxiw1QFDdDbU*kakv~G0YQ-cwcT3G3x3g%UO_ar_!DPr= zd|H)<+BPZ5Oe~X)mp>WX%kT$S^F^rVH1WvsHuGx9O*z^ubI(BW&lUVxCgJ4K&*-(f zzp486-^_H#6g4d_E=Cr{4EOw5nAX%cCD%&MO|Ugk8}EU8*~&yGT5>sA2ljGh+VmWY z8QpvCniGuKnECOXPAkcp*ZJZiz=_0o@d}xOLJU2Du?oP+M`MBFcb

    - >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM. This can be done by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server operating systems that are running the Hyper-V role service. + >In order for this command to work properly, PC1 must be running the vmicguestinterface (Hyper-V Guest Service Interface) service. If this service is not installed, you can try updating integration services on the VM by mounting the Hyper-V Integration Services Setup (vmguest.iso), which is located in C:\Windows\System32 on Windows Server 2012 and 2012 R2 operating systems that are running the Hyper-V role service. You can also try running the following command from an elevated Windows PowerShell prompt on the Hyper-V host: + +
    Enable-VMIntegrationService -VMName PC1 -Name "Guest Service Interface"
    - If the copy-vmfile command does not work and you cannot properly upgrade integration services on PC1, then create the file c:\pc1.ps1 on the VM by typing the commands into this file manually. The copy-vmfile command is only used in this procedure as a demonstration. After typing the script file manually, be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file. + If the copy-vmfile command does not work and you cannot properly enable or upgrade integration services on PC1, then create the file c:\pc1.ps1 on the VM by typing the commands into this file manually. The copy-vmfile command is only used in this procedure as a demonstration. After typing the script file manually, be sure to save the file as a Windows PowerShell script file with the .ps1 extension and not as a text (.txt) file. 21. On PC1, type the following commands at an elevated Windows PowerShell prompt: From 3d1dcf1d259f70f6e9d66fd3cd1c6045f515437c Mon Sep 17 00:00:00 2001 From: JanKeller1 Date: Wed, 25 Jan 2017 11:41:40 -0800 Subject: [PATCH 186/210] Tbl caption ambiguity - added white space --- .../keep-secure/choose-the-right-bitlocker-countermeasure.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md b/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md index 1c6c64a34a..241eadd7f7 100644 --- a/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md +++ b/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md @@ -64,7 +64,7 @@ Tables 1 and 2 summarize the recommended mitigations for different types of atta -**Table 1.**  How to choose the best countermeasures for Windows 8.1 +**Table 1.**  How to choose the best countermeasures for Windows 8.1

    From 965d2c702ad573ed235f58a49d8ac0c3ddedc620 Mon Sep 17 00:00:00 2001 From: Jan Backstrom Date: Wed, 25 Jan 2017 12:45:26 -0800 Subject: [PATCH 187/210] add Wake On Lan acronym throughout --- .../wake-on-lan-for-surface-devices.md | 26 +++++++++---------- 1 file changed, 13 insertions(+), 13 deletions(-) diff --git a/devices/surface/wake-on-lan-for-surface-devices.md b/devices/surface/wake-on-lan-for-surface-devices.md index be64599ce4..cee0c58856 100644 --- a/devices/surface/wake-on-lan-for-surface-devices.md +++ b/devices/surface/wake-on-lan-for-surface-devices.md @@ -1,7 +1,7 @@ --- title: Wake On LAN for Surface devices (Surface) description: See how you can use Wake On LAN to remotely wake up devices to perform management or maintenance tasks, or to enable management solutions automatically – even if the devices are powered down. -keywords: update, deploy, driver, wol +keywords: update, deploy, driver, wol, wake-on-lan ms.prod: w10 ms.mktglfcycl: manage ms.pagetype: surface, devices @@ -11,14 +11,14 @@ author: jobotto # Wake On LAN for Surface devices -Surface devices that run Windows 10, version 1607 (also known as Windows 10 Anniversary Update) or later and use a Surface Ethernet adapter to connect to a wired network, are capable of Wake On LAN from Connected Standby. With Wake On LAN, you can remotely wake up devices to perform management or maintenance tasks or enable management solutions (such as System Center Configuration Manager) automatically – even if the devices are powered down. For example, you can deploy applications to Surface devices left docked with a Surface Dock or Surface Pro 3 Docking Station by using System Center Configuration Manager during a window in the middle of the night, when the office is empty. +Surface devices that run Windows 10, version 1607 (also known as Windows 10 Anniversary Update) or later and use a Surface Ethernet adapter to connect to a wired network, are capable of Wake On LAN (WOL) from Connected Standby. With WOL, you can remotely wake up devices to perform management or maintenance tasks or enable management solutions (such as System Center Configuration Manager) automatically – even if the devices are powered down. For example, you can deploy applications to Surface devices left docked with a Surface Dock or Surface Pro 3 Docking Station by using System Center Configuration Manager during a window in the middle of the night, when the office is empty. >[!NOTE] ->Surface devices must be connected to AC power to support Wake On LAN. +>Surface devices must be connected to AC power to support WOL. ## Supported devices -The following devices are supported for Wake On LAN: +The following devices are supported for WOL: * Surface Book * Surface Pro 4 @@ -28,14 +28,14 @@ The following devices are supported for Wake On LAN: * Surface Dock * Surface Docking Station for Surface Pro 3 -## Wake On LAN driver +## WOL driver -To enable Wake On LAN support on Surface devices, a specific driver for the Surface Ethernet adapter is required. This driver is not included in the standard driver and firmware pack for Surface devices – you must download and install it separately. You can download the Surface Wake On LAN driver (SurfaceWOL.msi) from the [Surface Tools for IT](https://www.microsoft.com/download/details.aspx?id=46703) page in the Microsoft Download Center. +To enable WOL support on Surface devices, a specific driver for the Surface Ethernet adapter is required. This driver is not included in the standard driver and firmware pack for Surface devices – you must download and install it separately. You can download the Surface WOL driver (SurfaceWOL.msi) from the [Surface Tools for IT](https://www.microsoft.com/download/details.aspx?id=46703) page in the Microsoft Download Center. -You can run this Microsoft Windows Installer (.msi) file on a Surface device to install the Surface Wake On LAN driver, or you can distribute it to Surface devices with an application deployment solution, such as System Center Configuration Manager. To include the Surface Wake On LAN driver during deployment, you can install the .msi file as an application during the deployment process. You can also extract the Surface Wake On LAN driver files to include them in the deployment process. For example, you can include them in your Microsoft Deployment Toolkit (MDT) deployment share. You can read more about Surface deployment with MDT in [Deploy Windows 10 to Surface devices with Microsoft Deployment Toolkit](https://technet.microsoft.com/itpro/surface/deploy-windows-10-to-surface-devices-with-mdt). +You can run this Microsoft Windows Installer (.msi) file on a Surface device to install the Surface WOL driver, or you can distribute it to Surface devices with an application deployment solution, such as System Center Configuration Manager. To include the Surface WOL driver during deployment, you can install the .msi file as an application during the deployment process. You can also extract the Surface WOL driver files to include them in the deployment process. For example, you can include them in your Microsoft Deployment Toolkit (MDT) deployment share. You can read more about Surface deployment with MDT in [Deploy Windows 10 to Surface devices with Microsoft Deployment Toolkit](https://technet.microsoft.com/itpro/surface/deploy-windows-10-to-surface-devices-with-mdt). >[!NOTE] ->During the installation of SurfaceWOL.msi, the following registry key is set to a value of 1, which allows easy identification of systems where the Wake On LAN driver has been installed. If you chose to extract and install these drivers separately during deployment, this registry key will not be configured and must be configured manually or with a script. +>During the installation of SurfaceWOL.msi, the following registry key is set to a value of 1, which allows easy identification of systems where the WOL driver has been installed. If you chose to extract and install these drivers separately during deployment, this registry key will not be configured and must be configured manually or with a script. >**HKLM\SYSTEM\CurrentControlSet\Control\Power AllowSystemRequiredPowerRequests** @@ -43,14 +43,14 @@ To extract the contents of SurfaceWOL.msi, use the MSIExec administrative instal `msiexec /a surfacewol.msi targetdir=C:\WOL /qn` -## Using Surface Wake On LAN +## Using Surface WOL -The Surface Wake On LAN driver conforms to the Wake On LAN standard, whereby the device is woken by a special network communication known as a magic packet. The magic packet consists of 6 bytes of 255 (or FF in hexadecimal) followed by 16 repetitions of the target computer’s MAC address. You can read more about the magic packet and the Wake On LAN standard at [Wake-on-LAN](https://wikipedia.org/wiki/Wake-on-LAN#Magic_packet) on Wikipedia. +The Surface WOL driver conforms to the WOL standard, whereby the device is woken by a special network communication known as a magic packet. The magic packet consists of 6 bytes of 255 (or FF in hexadecimal) followed by 16 repetitions of the target computer’s MAC address. You can read more about the magic packet and the WOL standard on [Wikipedia](https://wikipedia.org/wiki/Wake-on-LAN#Magic_packet). >[!NOTE] ->To send a magic packet and wake up a device by using Wake On LAN, you must know the MAC address of the target device and Ethernet adapter. Because the magic packet does not use the IP network protocol, it is not possible to use the IP address or DNS name of the device. +>To send a magic packet and wake up a device by using WOL, you must know the MAC address of the target device and Ethernet adapter. Because the magic packet does not use the IP network protocol, it is not possible to use the IP address or DNS name of the device. -Many management solutions, such as System Center Configuration Manager, provide built-in support for Wake On LAN. There are also many solutions, including Windows Store apps, PowerShell modules, third-party applications, and third-party management solutions that allow you to send a magic packet to wake up a device. For example, you can use the [Wake On LAN PowerShell module](https://gallery.technet.microsoft.com/scriptcenter/Wake-On-Lan-815424c4) from the TechNet Script Center. +Many management solutions, such as System Center Configuration Manager, provide built-in support for WOL. There are also many solutions, including Windows Store apps, PowerShell modules, third-party applications, and third-party management solutions that allow you to send a magic packet to wake up a device. For example, you can use the [Wake On LAN PowerShell module](https://gallery.technet.microsoft.com/scriptcenter/Wake-On-Lan-815424c4) from the TechNet Script Center. >[!NOTE] ->After a device has been woken up with a magic packet, the device will return to sleep if an application is not actively preventing sleep on the system or if the AllowSystemRequiredPowerRequests registry key is not configured to 1, which allows applications to prevent sleep. See the [Wake On LAN driver](#wake-on-lan-driver) section of this article for more information about this registry key. +>After a device has been woken up with a magic packet, the device will return to sleep if an application is not actively preventing sleep on the system or if the AllowSystemRequiredPowerRequests registry key is not configured to 1, which allows applications to prevent sleep. See the [WOL driver](#wol-driver) section of this article for more information about this registry key. From afd1d928c267f4047df4c6163a601f7f807c0d24 Mon Sep 17 00:00:00 2001 From: LizRoss Date: Wed, 25 Jan 2017 14:00:08 -0800 Subject: [PATCH 188/210] Fix broken images --- .gitignore | 4 +--- 1 file changed, 1 insertion(+), 3 deletions(-) diff --git a/.gitignore b/.gitignore index 60755bf9e7..604950802e 100644 --- a/.gitignore +++ b/.gitignore @@ -10,8 +10,6 @@ Tools/NuGet/ .openpublishing.build.mdproj .openpublishing.buildcore.ps1 packages.config -windows/keep-secure/index.md # User-specific files -.vs/ -*.png \ No newline at end of file +.vs/ \ No newline at end of file From ecd000f39a712dab62dcc117494c8be802a18637 Mon Sep 17 00:00:00 2001 From: Brian Lich Date: Wed, 25 Jan 2017 14:27:06 -0800 Subject: [PATCH 189/210] reverting changes --- README.md | 1 - .../deprecated-document-modes.md | 8 +- .../ie11-deploy-guide/images/docmodeflow2.png | Bin 0 -> 239681 bytes .../ie11-deploy-guide/img-ie11-docmode-lg.md | 11 - .../net-framework-problems-with-ie11.md | 2 +- .../user-interface-problems-with-ie11.md | 4 +- devices/hololens/TOC.md | 2 +- devices/hololens/hololens-enroll-mdm.md | 1 - devices/hololens/hololens-install-apps.md | 1 - devices/hololens/hololens-kiosk.md | 1 - devices/hololens/hololens-provisioning.md | 3 +- devices/hololens/hololens-requirements.md | 1 - devices/hololens/hololens-setup.md | 1 - .../hololens/hololens-upgrade-enterprise.md | 5 +- devices/hololens/index.md | 3 +- devices/surface-hub/TOC.md | 1 - .../surface-hub/accessibility-surface-hub.md | 2 +- .../admin-group-management-for-surface-hub.md | 2 +- ...ix-a-powershell-scripts-for-surface-hub.md | 4 +- .../surface-hub/change-history-surface-hub.md | 9 - .../connect-and-display-with-surface-hub.md | 22 +- ...-deployment-surface-hub-device-accounts.md | 2 +- devices/surface-hub/index.md | 5 +- .../manage-windows-updates-for-surface-hub.md | 2 +- ...-deployment-surface-hub-device-accounts.md | 2 +- ...-deployment-surface-hub-device-accounts.md | 55 +- .../save-bitlocker-key-surface-hub.md | 2 +- .../surface-hub/surface-hub-wifi-direct.md | 121 -- ...se-room-control-system-with-surface-hub.md | 2 +- devices/surface/change-history-for-surface.md | 6 - ...and-system-center-configuration-manager.md | 2 +- ...tomize-the-oobe-for-surface-deployments.md | 16 +- ...ace-app-with-windows-store-for-business.md | 19 +- ...irmware-and-drivers-for-surface-devices.md | 87 +- ...-windows-10-to-surface-devices-with-mdt.md | 95 +- ...and-configure-surface-devices-with-semm.md | 9 +- ...-adapters-and-surface-device-deployment.md | 3 +- devices/surface/index.md | 2 - .../manage-surface-dock-firmware-updates.md | 20 +- .../surface/manage-surface-uefi-settings.md | 2 +- .../surface/microsoft-surface-data-eraser.md | 24 +- ...icrosoft-surface-deployment-accelerator.md | 12 +- ...-by-step-surface-deployment-accelerator.md | 53 +- devices/surface/surface-diagnostic-toolkit.md | 106 +- devices/surface/surface-dock-updater.md | 6 +- .../surface-enterprise-management-mode.md | 2 +- .../unenroll-surface-devices-from-semm.md | 12 +- ...-surface-devices-to-windows-10-with-mdt.md | 10 +- education/windows/TOC.md | 1 - education/windows/change-history-edu.md | 10 - .../deploy-windows-10-in-a-school-district.md | 38 +- .../education-scenarios-store-for-business.md | 4 +- education/windows/index.md | 7 - education/windows/school-get-minecraft.md | 45 - education/windows/take-a-test-multiple-pcs.md | 4 +- education/windows/take-a-test-single-pc.md | 19 +- .../windows-10-pro-to-pro-edu-upgrade.md | 259 ---- windows/deploy/TOC.md | 16 +- ...gn-applications-using-roles-in-mdt-2013.md | 12 +- .../change-history-for-deploy-windows-10.md | 20 - .../create-a-windows-10-reference-image.md | 2 +- windows/deploy/images/PoC.png | Bin 139787 -> 97482 bytes .../enterprise-e3-set-up-work-or-school.png | Bin 27557 -> 27370 bytes windows/deploy/images/package.png | Bin 11050 -> 4523 bytes windows/deploy/index.md | 4 +- .../provision-pcs-for-initial-deployment.md | 38 +- ...rovision-pcs-with-apps-and-certificates.md | 71 +- windows/deploy/provisioning-apply-package.md | 119 -- windows/deploy/provisioning-command-line.md | 68 -- windows/deploy/provisioning-create-package.md | 148 --- windows/deploy/provisioning-how-it-works.md | 184 --- windows/deploy/provisioning-install-icd.md | 106 -- windows/deploy/provisioning-multivariant.md | 322 ----- windows/deploy/provisioning-nfc.md | 153 --- windows/deploy/provisioning-packages.md | 57 +- .../provisioning-script-to-install-app.md | 222 ---- .../deploy/provisioning-uninstall-package.md | 98 -- .../deploy/troubleshoot-upgrade-analytics.md | 15 +- .../deploy/upgrade-analytics-get-started.md | 88 +- .../deploy/upgrade-analytics-requirements.md | 4 +- windows/deploy/windows-10-poc-mdt.md | 634 ---------- .../deploy/windows-10-poc-sc-config-mgr.md | 1040 ----------------- windows/keep-secure/TOC.md | 23 +- .../access-this-computer-from-the-network.md | 4 +- .../accounts-guest-account-status.md | 4 +- .../accounts-rename-guest-account.md | 4 +- ...schema-extensions-to-support-tpm-backup.md | 288 ++++- ...apps-to-protected-list-using-custom-uri.md | 25 +- windows/keep-secure/allow-log-on-locally.md | 4 +- windows/keep-secure/app-behavior-with-wip.md | 3 - .../back-up-files-and-directories.md | 4 +- ...ackup-tpm-recovery-information-to-ad-ds.md | 553 ++++++++- .../keep-secure/basic-audit-logon-events.md | 2 - .../keep-secure/bitlocker-basic-deployment.md | 2 +- .../keep-secure/bitlocker-countermeasures.md | 8 +- .../bitlocker-frequently-asked-questions.md | 6 +- .../bitlocker-group-policy-settings.md | 1 + ...tlocker-how-to-deploy-on-windows-server.md | 2 +- .../bitlocker-how-to-enable-network-unlock.md | 2 +- windows/keep-secure/bitlocker-overview.md | 5 +- ...ange-history-for-keep-windows-10-secure.md | 14 - windows/keep-secure/change-the-system-time.md | 4 +- windows/keep-secure/change-the-time-zone.md | 4 +- .../change-the-tpm-owner-password.md | 45 +- ...oose-the-right-bitlocker-countermeasure.md | 104 +- ...ows-defender-advanced-threat-protection.md | 48 +- ...ows-defender-advanced-threat-protection.md | 40 +- ...ows-defender-advanced-threat-protection.md | 63 - ...ows-defender-advanced-threat-protection.md | 6 +- ...ows-defender-advanced-threat-protection.md | 4 - ...ows-defender-advanced-threat-protection.md | 2 +- ...ows-defender-advanced-threat-protection.md | 2 +- ...ows-defender-advanced-threat-protection.md | 2 +- ...ows-defender-advanced-threat-protection.md | 9 +- windows/keep-secure/create-a-pagefile.md | 4 +- ...reate-and-verify-an-efs-dra-certificate.md | 18 +- .../create-applocker-default-rules.md | 4 - .../create-vpn-and-wip-policy-using-intune.md | 4 - .../create-wip-policy-using-intune.md | 35 +- .../create-wip-policy-using-sccm.md | 36 +- .../create-wmi-filters-for-the-gpo.md | 10 +- windows/keep-secure/credential-guard.md | 13 +- ...ows-defender-advanced-threat-protection.md | 4 +- .../deploy-wip-policy-using-intune.md | 3 - .../enlightened-microsoft-apps-and-wip.md | 5 +- .../export-an-applocker-policy-from-a-gpo.md | 2 +- .../guidance-and-best-practices-wip.md | 12 +- ...n-on-sso-over-vpn-and-wi-fi-connections.md | 94 -- .../images/atp-intune-add-policy.png | Bin 0 -> 118996 bytes windows/keep-secure/images/status-tile.png | Bin 8592 -> 10357 bytes ...microsoft-passport-in-your-organization.md | 8 +- windows/keep-secure/index.md | 10 +- ...lize-and-configure-ownership-of-the-tpm.md | 192 +-- ...gital-certificates-on-windows-10-mobile.md | 22 +- ...-information-when-the-session-is-locked.md | 2 +- ...ive-logon-do-not-display-last-user-name.md | 2 + .../interactive-logon-require-smart-card.md | 4 +- ...ed-security-and-code-integrity-policies.md | 2 +- ...ows-defender-advanced-threat-protection.md | 10 +- windows/keep-secure/limitations-with-wip.md | 11 +- .../maintain-applocker-policies.md | 2 +- ...y-verification-using-microsoft-passport.md | 2 +- windows/keep-secure/manage-tpm-commands.md | 40 +- windows/keep-secure/manage-tpm-lockout.md | 44 +- .../keep-secure/mandatory-settings-for-wip.md | 9 +- ...ows-defender-advanced-threat-protection.md | 4 +- ...ows-defender-advanced-threat-protection.md | 1 - .../keep-secure/overview-create-wip-policy.md | 6 +- ...ion-for-bitlocker-planning-and-policies.md | 23 +- .../protect-enterprise-data-using-wip.md | 7 +- ...-the-health-of-windows-10-based-devices.md | 4 +- ...nd-storage-area-networks-with-bitlocker.md | 45 +- ...recommended-network-definitions-for-wip.md | 39 - .../remove-computer-from-docking-station.md | 4 +- ...nt-planning-guidelines-for-device-guard.md | 2 +- ...ements-for-deploying-applocker-policies.md | 2 +- .../requirements-to-use-applocker.md | 6 +- .../restore-files-and-directories.md | 4 +- windows/keep-secure/security-technologies.md | 26 +- .../select-types-of-rules-to-create.md | 2 +- ...ows-defender-advanced-threat-protection.md | 54 - windows/keep-secure/shut-down-the-system.md | 4 +- .../shutdown-clear-virtual-memory-pagefile.md | 4 +- .../keep-secure/smart-card-architecture.md | 2 +- ...rt-card-smart-cards-for-windows-service.md | 2 +- .../switch-pcr-banks-on-tpm-2-0-devices.md | 18 +- .../keep-secure/testing-scenarios-for-wip.md | 5 +- .../tools-to-use-with-applocker.md | 2 +- windows/keep-secure/tpm-fundamentals.md | 148 ++- windows/keep-secure/tpm-recommendations.md | 271 ++++- ...ows-defender-advanced-threat-protection.md | 107 +- ...ows-defender-advanced-threat-protection.md | 8 - ...bleshoot-windows-defender-in-windows-10.md | 2 +- .../trusted-platform-module-overview.md | 58 +- ...m-module-services-group-policy-settings.md | 121 +- .../trusted-platform-module-top-node.md | 33 - .../understanding-applocker-default-rules.md | 3 +- ...nderstanding-applocker-rule-collections.md | 2 - ...restriction-policies-in-the-same-domain.md | 2 +- .../using-event-viewer-with-applocker.md | 2 +- windows/keep-secure/using-owa-with-wip.md | 35 - ...dential-theft-mitigation-guide-abstract.md | 67 -- ...ows-defender-advanced-threat-protection.md | 9 +- .../windows-defender-block-at-first-sight.md | 3 - .../windows-defender-in-windows-10.md | 2 +- .../keep-secure/wip-app-enterprise-context.md | 55 - .../working-with-applocker-rules.md | 3 +- windows/manage/.vscode/settings.json | 3 - windows/manage/TOC.md | 20 +- .../administrative-tools-in-windows-10.md | 6 +- ...istory-for-manage-and-update-windows-10.md | 21 - ...changes-to-start-policies-in-windows-10.md | 2 +- .../manage/configure-devices-without-mdm.md | 9 +- .../manage/configure-windows-10-taskbar.md | 24 +- ...-windows-telemetry-in-your-organization.md | 1 - windows/manage/connect-to-remote-aadj-pc.md | 2 +- windows/manage/cortana-at-work-crm.md | 62 - windows/manage/cortana-at-work-feedback.md | 24 - windows/manage/cortana-at-work-o365.md | 72 -- windows/manage/cortana-at-work-overview.md | 64 - .../manage/cortana-at-work-policy-settings.md | 44 - windows/manage/cortana-at-work-powerbi.md | 138 --- windows/manage/cortana-at-work-scenario-1.md | 58 - windows/manage/cortana-at-work-scenario-2.md | 41 - windows/manage/cortana-at-work-scenario-3.md | 86 -- windows/manage/cortana-at-work-scenario-4.md | 51 - windows/manage/cortana-at-work-scenario-5.md | 57 - windows/manage/cortana-at-work-scenario-6.md | 37 - .../cortana-at-work-testing-scenarios.md | 32 - .../manage/cortana-at-work-voice-commands.md | 64 - .../customize-and-export-start-layout.md | 9 +- ...-10-start-screens-by-using-group-policy.md | 35 +- ...-by-using-provisioning-packages-and-icd.md | 5 +- windows/manage/images/wufb-config1a.png | Bin 61203 -> 70038 bytes windows/manage/images/wufb-config2.png | Bin 55670 -> 65192 bytes windows/manage/images/wufb-config3a.png | Bin 63108 -> 67958 bytes windows/manage/index.md | 3 - ...system-components-to-microsoft-services.md | 3 +- .../manage/manage-cortana-in-enterprise.md | 83 +- ...-in-your-organization-modern-management.md | 4 - windows/manage/start-layout-xml-desktop.md | 492 -------- windows/manage/start-layout-xml-mobile.md | 392 ------- ...troubleshoot-windows-store-for-business.md | 2 +- windows/manage/waas-configure-wufb.md | 2 +- windows/manage/waas-integrate-wufb.md | 35 +- windows/manage/waas-manage-updates-wsus.md | 2 +- windows/manage/waas-manage-updates-wufb.md | 4 +- windows/manage/waas-overview.md | 15 +- windows/manage/waas-quick-start.md | 82 -- windows/manage/waas-restart.md | 2 +- ...s-servicing-branches-windows-10-updates.md | 4 +- windows/manage/waas-update-windows-10.md | 5 +- windows/manage/windows-10-mobile-and-mdm.md | 4 +- ...ws-10-start-layout-options-and-policies.md | 4 +- .../windows-store-for-business-overview.md | 202 +--- .../working-with-line-of-business-apps.md | 1 + ...tory-for-plan-for-windows-10-deployment.md | 5 - .../windows-10-infrastructure-requirements.md | 10 +- ...ts-new-windows-10-version-1507-and-1511.md | 8 +- 239 files changed, 2464 insertions(+), 7524 deletions(-) create mode 100644 browsers/internet-explorer/ie11-deploy-guide/images/docmodeflow2.png delete mode 100644 browsers/internet-explorer/ie11-deploy-guide/img-ie11-docmode-lg.md delete mode 100644 devices/surface-hub/surface-hub-wifi-direct.md delete mode 100644 education/windows/windows-10-pro-to-pro-edu-upgrade.md delete mode 100644 windows/deploy/provisioning-apply-package.md delete mode 100644 windows/deploy/provisioning-command-line.md delete mode 100644 windows/deploy/provisioning-create-package.md delete mode 100644 windows/deploy/provisioning-how-it-works.md delete mode 100644 windows/deploy/provisioning-install-icd.md delete mode 100644 windows/deploy/provisioning-multivariant.md delete mode 100644 windows/deploy/provisioning-nfc.md delete mode 100644 windows/deploy/provisioning-script-to-install-app.md delete mode 100644 windows/deploy/provisioning-uninstall-package.md delete mode 100644 windows/deploy/windows-10-poc-mdt.md delete mode 100644 windows/deploy/windows-10-poc-sc-config-mgr.md delete mode 100644 windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md delete mode 100644 windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md create mode 100644 windows/keep-secure/images/atp-intune-add-policy.png delete mode 100644 windows/keep-secure/recommended-network-definitions-for-wip.md delete mode 100644 windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md delete mode 100644 windows/keep-secure/trusted-platform-module-top-node.md delete mode 100644 windows/keep-secure/using-owa-with-wip.md delete mode 100644 windows/keep-secure/windows-credential-theft-mitigation-guide-abstract.md delete mode 100644 windows/keep-secure/wip-app-enterprise-context.md delete mode 100644 windows/manage/.vscode/settings.json delete mode 100644 windows/manage/cortana-at-work-crm.md delete mode 100644 windows/manage/cortana-at-work-feedback.md delete mode 100644 windows/manage/cortana-at-work-o365.md delete mode 100644 windows/manage/cortana-at-work-overview.md delete mode 100644 windows/manage/cortana-at-work-policy-settings.md delete mode 100644 windows/manage/cortana-at-work-powerbi.md delete mode 100644 windows/manage/cortana-at-work-scenario-1.md delete mode 100644 windows/manage/cortana-at-work-scenario-2.md delete mode 100644 windows/manage/cortana-at-work-scenario-3.md delete mode 100644 windows/manage/cortana-at-work-scenario-4.md delete mode 100644 windows/manage/cortana-at-work-scenario-5.md delete mode 100644 windows/manage/cortana-at-work-scenario-6.md delete mode 100644 windows/manage/cortana-at-work-testing-scenarios.md delete mode 100644 windows/manage/cortana-at-work-voice-commands.md delete mode 100644 windows/manage/start-layout-xml-desktop.md delete mode 100644 windows/manage/start-layout-xml-mobile.md delete mode 100644 windows/manage/waas-quick-start.md diff --git a/README.md b/README.md index 8864d2a10e..fa13a55593 100644 --- a/README.md +++ b/README.md @@ -8,7 +8,6 @@ Welcome! This repository houses the docs that are written for IT professionals f - [Surface](https://technet.microsoft.com/itpro/surface) - [Surface Hub](https://technet.microsoft.com/itpro/surface-hub) - [Windows 10 for Education](https://technet.microsoft.com/edu/windows) -- [HoloLens](https://technet.microsoft.com/itpro/hololens) - [Microsoft Desktop Optimization Pack](https://technet.microsoft.com/itpro/mdop) ## Contributing diff --git a/browsers/internet-explorer/ie11-deploy-guide/deprecated-document-modes.md b/browsers/internet-explorer/ie11-deploy-guide/deprecated-document-modes.md index e624e6db2e..0be45f20c1 100644 --- a/browsers/internet-explorer/ie11-deploy-guide/deprecated-document-modes.md +++ b/browsers/internet-explorer/ie11-deploy-guide/deprecated-document-modes.md @@ -10,6 +10,7 @@ title: Deprecated document modes and Internet Explorer 11 (Internet Explorer 11 ms.sitesec: library --- + # Deprecated document modes and Internet Explorer 11 **Applies to:** @@ -24,8 +25,8 @@ Windows Internet Explorer 8 introduced document modes as a way to move from the This means that while Internet Explorer 11 will continue to support document modes, Microsoft Edge won’t. And because of that, it also means that if you want to use Microsoft Edge, you’re going to have to update your legacy webpages and apps to support modern features, browsers, and devices. ->**Note**
    ->For specific details about the technologies and APIs that are no longer supported in Microsoft Edge, see [A break from the past, part 2: Saying goodbye to ActiveX, VBScript, attachEvent](https://go.microsoft.com/fwlink/p/?LinkId=615953). +**Note**
    +For specific details about the technologies and APIs that are no longer supported in Microsoft Edge, see [A break from the past, part 2: Saying goodbye to ActiveX, VBScript, attachEvent](https://go.microsoft.com/fwlink/p/?LinkId=615953). ## What is document mode? Each release after Internet Explorer 8 has helped with the transition by introducing additional document modes that emulated previously supported versions, while also introducing support for features defined by industry standards. During this time, numerous websites and apps were updated to the latest and greatest industry standards, while many other sites and apps continued to simply rely on document modes to work properly. @@ -40,8 +41,7 @@ The compatibility improvements made in IE11 lets older websites just work in the ## Document mode selection flowchart This flowchart shows how IE11 works when document modes are used. -![Flowchart detailing how document modes are chosen in IE11](images/docmode-decisions-sm.png)
    -[Click this link to enlarge image](img-ie11-docmode-lg.md) +![Flowchart detailing how document modes are chosen in IE11](images/docmodeflow2.png) ## Known Issues with Internet Explorer 8 document mode in Enterprise Mode The default document mode for Enterprise Mode is Internet Explorer 8. While this mode provides a strong emulation of that browser, it isn’t an exact match. For example, Windows Internet Explorer 9 fundamentally changed how document modes work with iframes and document modes can’t undo architectural changes. It’s also a known issue that Windows 10 supports GDI font rendering while using Enterprise Mode, but uses natural metrics once outside of Enterprise Mode. diff --git a/browsers/internet-explorer/ie11-deploy-guide/images/docmodeflow2.png b/browsers/internet-explorer/ie11-deploy-guide/images/docmodeflow2.png new file mode 100644 index 0000000000000000000000000000000000000000..63df4ea8ff1de379c7249f3f87451baedcb116ca GIT binary patch literal 239681 zcmY&_cCWJE-NI=Q-2+&N?-1kRl88ZEAd@Zx)l? zsAkp=g*uvc+_X5iFY?jvRpLt&=VUka9P>_DYB(b!pm;gAa>*(6mGm;9^RXK!=c@+B`(tm??kTjrAaC_?? z=2R=^kRpl#)_O!h!uTDXX{xhd%d_4TXJx8SK}P-w==vRrHY0AAFm;qs3Igphu6L=pjEVs_Hv=aCGzkqp{(ZNpXyarYaBIk*H{P-sca z+Kx5cz{0yG%~GdD=zp45!~Hb}tMunciLY9Z+dEhW(1>>*OqjE`N8f0=(^_x6CEvKX zYN;h82iG|M8W23!hktXSN7`CynwY!w_&ex6zx9L2nC+j$=K*pO~Pe&9Pvw!g&lr_ z$fg{~o}UyODA?~;e?v|Q3~aO^;)LuohBA0qW(^e#vyu6VsQV3NJB;PPRS)|IZ8K{e zrbtM=aY1t|N=g`4J^j@d&e;Dy!Gx6(dOw`34)M=yVHb2;5y>l<$zg&I7{dmKlIyFD zlSx1*u2&V8kugZodEH7(d!9fz5$PAsrGiidhu=}JE_+s_+V?ceX=^v%0SC--Saa1Vwbi5LQdg(mEm%~ zF0T6={xW=v(jj6cDKXX^2X<{J$h1%Y98C+lcE%QuI^TXeo2=Ra;rR)ozk?x}qBVec zfn%#nK$v@jp< zP2Ji_-P*nZ>2His!Tie@*bqCmO=+JSs+!3_a(}UY!kJ=-qbs#wI57(kDfN zM_HWP*4|BVn$jDL=(np>#%y=yV;}lGOjWU0gz7G%UbR1*7y$AX<#*uyLhYK;^1xp9 zf881_W5Uu&z4bWrxBtavFi=n8F*pTuJd*({=3avE4$Ny>%VS=5Fqw?IE8dRl-4*v; z{_dsCuKJ_k(+2IImYy=%Wh<4&R-A|~96Py7Pwk~Se|FQ}*R5%|L zqGYf@!ZDaII<9_|xMK9Y(yEYvf5xBn^B#F?wC?nlcW-!ak8O)Q$LIx~1GoKy_~DUp zeSi|$NqCuG$B4l4jw*E9ShN(wZH@p?_?sH4kE+e|1=}+a>q*jYA8QO1+wFU!bASmv|U_#r;3xt zDjlBhX7k8K84VygQ_uYoj@Jz-+4F+wc5Od$J*bLO&@-GLK$^9t-#EZWeAXS=3i2|x zvAElaKlE$YJgP;E^O;(o%#XEMN9EU!$yvH!MzM!*g7FSrU##RDk;nchxBvgmdB)kc zY|5hkr@{8xVQ%BH7kZb$b*7K}wnwOG@5MxRa`Wr;=GyNpcvxU}D2@8u+VYo*Pv(&b z_49DlC13wvm)u*(6<%X(Rcypu)ppF~wg;z6?i6odLxnhidd~~}QlgJ;jJ8k(TWKX{ zJ)05Le;xz-KU)(Q7|U5dP{=vT^HR0iuPm&)sQ`ebCepmrG2OSdR15jhr*PT%a%^7%O8q6LWQ8i77FN2Rtr zO_QDg|MP74AF3qiV_U!?`hWBP=NhL=gsuq_xtuf-jfQt0KF+JV6}k;fzFfFsF)r)u z9cQZXvVF{4sUnN1@rOoxjHudXE!CmuG4J|8{z1h+3|*ubN z{V_7)tu>Ea9XMjL0^;j6T?spEbsD~Rh<7G@dJgxx$9X=dhh%vxYDUwSe2(}SomkN> zGMuYq;mzM9CO|U_r}D&-u&m#_ymj=Sbo77H_w<{W#wF@?i&A1N#rrfja%20>48I>6 zTU$9OzDDf?YuRzg;Mro$Z}P`Xwy9+)uh=`SmD>rP*d=qUTT!63ebzY>N&Y@ft?Hz+ zU|Vxk!HEb=bx`}4@<=c~hVvPF7!ae$th#ANJeT$r&&E9k2k{;W&wglIM+lrZ=QNj- zY57Js4@Y6inon|FIP-cr~*~`=PhrXvmq@kEF80F3gzqOA$cru90o1c_Lk)d& zyQ!0fELzB%8S@;D!#b4zke1wM8c?i7Xrd=cNVyYtB=2%m9VwBzVItL|CuAF;dyT4!>E%Pq#h(JyqW z(o<@v-`xzOES$k6=5{XFa_%PT83-HvHAg;b+n_!%Z2jZc+28ryb-*a0m~tlhAeIvY zdR^xCPqVU9lgw{CGpEsXrR3MQ0Lvve2sd6lLU9AW#Sl5d*h$m2z5`*22=#O9+Rk;y>PGb0vM#gl zBKlp;)c6bC?;#!9Q)WWEi`tX;JSRh*$yhaLm*U(Zop$>SbvzCBx$EXa#wC2s{tpI4 zfFm;PlkmaafkX7JTiOx;8#gsi8A?z&@V542dc+qss7Xmniyscmu(;&AU&iKT3REgM z`3PVj{c2fSZbQ7TXkQ-k_1n3HRfdvLZpUsXpR#z&o9 zw_mwa){P@B2Y}BAS@d#d{WwO*0*a; zPAuAcv2D-4#M=xOD{?8pAZo$Lv^7*Ml2(s4!k}UOO<&*)t_%-$FL;Q4figGCFuuJ? zNGP2DJ%aFWWZ=~s99#dri~RQqsUluM9!Y-dMu3gsmXiJ-vLkDE6gDe|lI`(BcLK#I&1%C#=(lpZilRXPAWnyvk z&EOhwETOnE#LU88vH+f-rqJpI#EWKRSrw{#x>(%N@e_w;y$UpKJ4~G_3?iB%KJl#p zD(^~NDZF$GA=-cV*%XZ7ugTQO&Vx_aWv5tFb&RW8dNm#Vwta(>qj6`_V)qzhamSJH z=@Qfh;nG2)5##eIX}K)Sd{gQUaip<)3GaXL3KXmS&m9zZG}pFWi30OS_rcb3ozrR; z2*9RCd7F#yz7H;|Q<}k!U6%uyjcU4t#rZpK-omlgr@1F6PpKg$>wQScm6E;Vk#AJr=0^r^r=J`fINo$8_j$Kb zQ)2U2GwfVvp<`@4pwdRh`5ka*BTuXAgxPdmvmMGcc61T`Rt&?p5aE1#`$)q`q<|%Q zrZ4eyFzXQ{Y*}g4VB^247JOEJ2J7yawcLUEPqE{VV8sHtwHV<9B`*?A)~87Sz5CNP z?ykg2=U$Tn1(tyN1zt+u&qMWH6g&8f_}zn_4LX+bwt)>OkfZA zLBIM6X)M8Z)Bg$)cK~2mDRRY+v!jmJs-rXAj3oUcaaG2*v6A(!p>&!WP`AHfNG zswizlFGKev<2!^H>`^qm|4bP+5u?;tX-XuiDr_6086BJW+IfS|boc}0Md0;T!N?z32_f6_D!5S+rZBn$%|wd)EdSnRY_0$G>Z;x2{_a0n(qLIW!SqDyi5fdO>bQx5y0+Q4-ENS| zSGvgt z*!s5V>g^Zzn}6hc`2~KxLPJDSb9Y#7Pv;NU(`<*1>R=l`u@Me<|0s$YmtYo5#<|_& zpM!@nf82mi8r!+K%JK%G|CdN*z#hjPX(}tOytwFj0aGXl`2IZRe}th|OVt>-M(vD) zkai%)=U``uWW%R%jH`^dH~#nlHl5S}6HmG)^n9tkX@;MB!oT=-`MLAfNuFd?7ojCk za81q4f8hStT(T0LlKb0yTh8-o-R$Uq`gspRQO#`ivk2oD+)Y+Ja>!XY#28G8b&|VF z{U+Rh`$(D#>{_&kB7bJue#IE|$!iosc*oQhww|_O7|~~MyN5{2mcwyKp=EdA3X_e- zf-df)@fjSb=;~KimeByGrS&hCYsDBnHAqGPkO4*fy!JxBZPBFewBv@G1a3 z-+LF~u@xdGPIy7z^(7OYx6BJ;)K`W%IkNY-Y&NNs8Pse~@xJ8sZhVGs*B1ksNRS$S zA4b3IjY6qnzQz~)PZS|oR7am}vmS%hGpM`cryhIAg}7f~`UuGrl|kpSXIp*9yLnd? zY^+7k4{X48==GM#+KZ^WUuj^o*?9~kE@y&z%Tafh#6j#coW9XtnZs=#!k?dme&q4k z;~rw^V7_QRUh8r|&Rim*9_X)nMpAL_d8f0O40N_!#7|P$*8a`w3Vam2oRB&j)XZ(FHYr`muIb77JT@DX%@xOBG>rGd3^m6Tusj%*p~ zhk=yyj=)2dv31FhY1eWb4#c0LsMafQ!Wdyv{CDw|j3w+nk^o+h3TgX+lRo!x|3C$+ zhOmP#Gq>JC6Isg~^W%hqc$WT$^(*;b+8LVtTQX}yP-!c2v<`L#$d$76e`J4o;V&EM za&%`5GsD-DmEQgkNqBzv>!grrn7P0yFW0Qf+h|$@Inh9)On*7kpB>LsMjbJGbKhat zBw^Be

    ?RqA1-7J-1T)z3bg&eGN#Ax_4xKrA8a&`@+gp>lL}El762+S0;^nhV9Wy z(x{c_#a0vKZ_4j1>|JZoHx?L1h#U$E{GG2w*db>`YX9Um{?K(|#FY&;PBN_4m$4#pYOPJyz!*X_G> z{%j?gjY33kv~FEXFNh}R;iXwN63oOP@-?e)WQvN%#pLt)((N2Jz=RRW)jWHQ`I zoL-Y{j!OM@U%HO3*}mzo0quJW@X0?s4jKMDPSKoROVu&Xh4$xLyj?rH|4cc*(HPm3 zk;SY1@H6H9o;2i$7Dh9X0>tzfD+V;wx35I`14_=`^O8AlP!syJ8KJ9tMiYTxWmUW zZz^RN4S?r)=fw(Oyja{vIwx%O&3N2MY?3@^yejO)Q-~Cn$M*;f8;xNg2D~K-8iS<|(hA=n_^DLkPd_7|D2#9he)tgUw9ufTj(S;UErxA5XG-#O z{yqlzj4UOMP?|+#tW$qTV{ON9uro!el&8OrE_a*z8KCs#rXUs@&JeNx`SOv^&IG`Tj?ReA#Muwea#HTI@{XHw03bfZDsZ4p|uSV8OfMh(@Pv*XQ%|Bd4^!hvuM-Qg{!ayMMR<}12S-vo#X zWIqbM1yV@-xYANiP^cob($9g!P)tGAW=JQuUGtgUg#JAWn=_>Ixhr)DyB@=PDa_~W z;o{h!e$&70qt$zS=Y4fW!R8m&S4TjOB;tF#&(r<*fYU{xK$>S;pi^veZtFFyTwoVkcv&6)KlS>9Ohb^~C z{hgfmaMD3mie*58{hNhKc|Cq_6=z6R`JMD&Wyj2V!E|Pq|C1v?zE&w_qV!s7@ZG+c z<#xo8QwK`HY9X_9)1k=XM%rHw&tN}nCF<~`S;rPdKF7tMM}~VIw;nlXD^bA^bt%zni7UbtKsyve{SSSNF@$D38)-& z#p8WD&=&sg1$=4aW&pAxNmXv>k1&%MX!ip-VlYXk}?Ym#)?XNMs?{Wn^!AWrF zaF_3CCfIgBe$Eal{PyVkIgC%bQdD6b(F%L+~P#O<&8{}Q!AqiI~)ejkB{v2J~ z^BlN)Ms;I)&bCiK>vomtzCTJ1)e{oTlnft`*6R$(AwTynPovx+x^6QVFSbv{E=Ntj z(fOeMLgwB8^M~Ufa)An-4A`gg49mOby25mKELO07_tAF1VHl9fwv>r;wt<-GkCDI; zHMj_7Cqfj)gpyxH5z?;+8=wN6z*BFBYcF+T?|B1pq6jG z%PjOu9U?{M97783ypq9;$xHm0C`w3hFIS}WURHooaIe8}0aG|R)xyZ2GhXudi|?}c zCcDWxWV>Rm5S?pqa=EczUR{4GMgTH5mVIEYyhIe04Bwe!X~zX^@~ zYzLDV&EA3!JDodBdSp0Rw7FR{l;`})go)vLKKc8GR-2DA8#AU)3Srz`6yv>6nZD?@ zI^Wbdir#-O({=sO{%(pWfugy*l$4olG%-_)#;9Ow8pjuaaTy0Cs8)O!vn26k-b2el zjrYLgrV8&=A)CJ^6}g@`X#zjYEW0t%KSz|MQG9|?&ZF%xj(hgDpg0g3EM#aJ&zmx| ztGa2>95K(IX4+re>gjis^yH-0!4|sp3fwaX?T>zIVOt&F(=uW{kkA=U86Rdo-mXV; zu7CN#kU?gtw`Wax=AuyivwhGI3&J-q(+)P700ya;wdhIl}iIUcgsXfNVU@viA|A#% zJsnAGnRpC+^i-EVot)WE$SdA?T{l&?)=imXYMb7BNdo#Th-lgBdmQ zB#bR23S*7hFZpMTslT1$1dH0tXMXR5w3N1lF)SuH!qmNOQHyCj|{=-0j3T>Ki zgXhIe%R%4rX{8>hzE6g#0vS6`FvV4aY~FaINN2AWBrpt5LiqTOdtmABl;wL{c{iOJ zG8a1Omqg0GMNO7!xHZL48#42Sqqtq0gE5i{>*wm0gK$=b;u?mZw z5mqhW7^(~NtJv{(9jilsXUqFgZYB&iq0&lMxh(gNqD=A@kCFrCwsL#Z=d5y-(ne8$ zW>A1=UB2mLS{q@l+w~xnwlD(c)@1D00UbcD*PmC2h1iEJLIhd5=!t#?DckBKt7x;u z^|R!pWKKq2?bbZ|FVz(zeEYb{7Cmi_;A`|931zilTcX}(u6g0eC)QT6Hk17jDv_p;_+Qp@h5srUlC6+bqvi_RWG zz4TLLn0}xuiT$xo$d&t%TyV^|U;Gw?*&=SS6|=!3C}R_k^)7{s7+(q%?&;7+=>6ok z)|ndglKvdu782~ZBdIyYE$J(YoFlv59ynxJemM>KwJJSox407HPU*+~asDVa2VYPl zpe1pdw0a7A?^EQ;X+>ksm-=`W!zXj27EK;@S1t=+o`x>Yx6Ll)qEB@8wD|{u5yd)6 zjH-mq^NsJ|~mVUe?QSEG}D)+0)S{%eSO9i~KSVIP-b$loti9^ss-6Yqsxe zB`gHn!*Ny*l!}y79Ro$Bi^P=@=&QcPDB9#eIU6iW9FK~H>Ye$zE&addE)=%AUj z@>J(xS2O>`%!Yt<(0dI6%-}$nX*yPHiRlJBQ;=SSHZy`m(I0EApkjWJ*~>rdF^dbq zvi>+=sK7RI z7=DMnzx6DJUMFoi!8&It7mQ(wPQ|8R3O0{jJ1}H25A+J#702TE7(-Yq9sHIF8jhi9 z^Dgwx%rj<&$E6wWYYq+!@HVqFk)xY%QaJ8$ zrOf-(b*2Pp{_3#fwXfz`R&DR%jXZHW8XN+Y+x&7iqN@U1g_cN;3(^SI{s0HU;$pH7 z^JFJ2b_kRTb$pipM4tYd*qLYRx0U;Rvr22Y>G$IAx>e+%>`E!C73VPaz% zF|Pw1WAOVVm?Jp{)={02TqesDGXBwjn~N~zuG#v1E~|Q-5@d4^tMnEg$-H@k3h$(z z`lLWet3mZ7J_yp76Yx#??beRrGc$>&qmN@91Bmzdl4JQ*f{r8=u2YLg%yiSEMN`r`Rw(<>pGZ{ zoDSmsw@|`eMT*NBE{&D5^FU+uvzh71Hw{@_YL|#`t+nQ7<%35<#Mge|FDMw!A=yLsmHh#WExgsbtGcH#5O>>={$b?8&U;$wi1VkK59J zb_@?n@8bP9dA8;H9_x3*w|v>H5nY$jD1fo=5>-O5TOnuOE{}1T#L37% zU(Rv0IPfXo{;S_)s8mikex|>MuZb``5&bQCNI`Yu2z?mKi9M3ikx=`vOPSXWeNz_A zIZ-^>v**}wt3~#R{QZ-N%F_4dbVrG`u}!m$Y@lA{(Pfs@sZ01X>V1%*;)SN!+wYJu zKj0$O;#JuSu2lhD{&7rcO{DKF85+=27{R~{Wpk&-P$q*bIl_7phaOar(r>VUi3Cjd z@}xa^PJF6o%vaLZG7Naulpi&ymhFZq#CSpft%a|hZI*zHLY+mc7lr34=#nTT>`Aqg zoLS61qSKa4MWO#nM5*ts`ZER06$?60#+fO`UoD%S^>)6onGmFp+H8vod<;tx=+IoO z$01coJMqNoqg&K^FpDgk4i1Qr%5z#*{)*`?WkY?ED zkCTB!B2x_1gcn&quVe;c1H1?H+h?qlEdw9YU1LP|H@U~)rFzJM`tz}Y*F7cM*b;fz zT?|96_At|2@PwZ-A};oT3U8I9xJMD43rVs>@!V&Do)azK9JpkHXREhTC{$q%5XL9x zH|RHlfvD1hcbP*B{7Ro5zD{`a|7>IS=v~o)&@ASQY14x|S^XvRn@Xn=^Vk8Fo&=Ya z1ujjBk`2*J8$RBsYnSo>>}F;Yu*<^Ats<0vVnLHD2QvqFPrq__r`~ zv)W(K4wKrksAE^o$sacuWDVo)Ctp5CUi5#1{XcB;U~HQNQU1|(e}TA^rfk9vMEEQM z-9|A}nVDHZ>orj7R9V(INJVEksRDg_O6STt%yo?ME-wGgaV1py*@+x0q1>`*GEdxV z8~Z+Vibhfu!OHSaK2e98@L0j|? zi;+I6@ouwJzwh;wqA^XtQ^=^WM0R@hC{Oq0dfYGZqEzdRi?6Ha3uj@4yy3+&hskNz z3=`OqZY^P~j45e5VBZv;YhTO!hyrp&UA+HTOvUIHdV;pTsJf02vdw=u4G)|AreR?X=gS3st;>L+E3V zuTZ~|%`&(pPr7rP-FrFB?vo)EHeoSA2t6kEr!kU^k?!)>j^PB>;g|ILa4sg0OGA&z z)ng}oQn%jFYtm*32~6P@_;%r*$gkMVkRr8_a4~MQ$uV7;Qahv1;8!UzjREp($e`_y z__n=+(LvCvO&Ih zs~U;>XJ6Tk7b}V;AE_vN=8_@ke0E?NlkLyN6-m90LI zzCJ0cb%3uChHp&5@+@@Vp7}(RODPPAVArXH|`hcHAq$7G90(oGOkB9U2Z@LFbviTY~lr_p2-GXo=r$!)aHXT3V9@DU{NUEfbu+ z#2_mx;UBiEI-8qVES^HLmM>@uJuvY-{qdN_e9d}XF@Vwzp)fL$PCbM1~v-WXq)4U^NA!bbC`u9kzZL$$pcz8qoAQ*#quV8z_YJo4xn z3!|HgFs$qraRvJFW;UnaOLe9sgCjqEVs&jyFFO)(O3 z%bL#8sxz*@?jM$T9b2BS5hLaAgPF2wBJH{Y{c9`s5lGnigyLNi5|uhAH<%(z%$4K4g@cyibUw563L*Vi0cD&+z3PJz8lQzn{_O9oZ z4z;8WmLiWcHzbNmS(1J~L~Jkka`@-EGX+k_DMSs%eSBnytacf=rNvDL-Jr&gcAWaV zubee4@zFZm+Iq)i--CO32t)4sFw{gmqizy|@d0*yU`U185@E{rDJw zwslLf&6f)m1DswECK57^ew%2G+}Dw6UQJ zoQ93v%6qA`Gta0V+J~Q*y$Xw;O&ao!>buu{bZFC^Iy z)v{egs8S&bOmjxC>?w3KfL}&*3CKFa{38xr=yAQk8{LbT6f_e(a41lx zD2shvVd~;<^LX`*Ojrz)*kiaZULT#7t&k5@n(aLVUu(32q7d>qj9m}%eUV&sL43D* zlMr;n<#U%)I_}gKXgTEc0VQa9Gh{l@lLg{FA|Fpl#^NA2t6XB`$xIWtY!xF9Y8HIf zoSuMC%~|NUdDyB*1aAs5M`puRAj2+?3ia>3eY;*sA9glsu0&_jvZ_45E$y+#V{#ye zu6c&yo6S9vbwKEZ<;N5<%K-U8_Koi86ax28p^?0w522>uaxvd%fjW#QaZD@M+}7WD zeWaaTI#;GOe`>}D!ZJTn7<9x5J5!Tj9cK8ibqxyPo+bsZ39){`s`z;$+w)xF-~C9n zc-A2;+v{S2!@=CPL^+RCDHMGDZP1<4u*Wi&{X5F#L-&t%JJzKW#qHdN;6z9nV+%c7 z@xD6enux2RN9PY6H}W*^EG=*f+Y$2zXi*wwb?P?VA2+||u#=^L$|3odf=nF_6&5bIC{e3P{zJiyA{@g1} zvRDQC2zxS1r3NbAQeV@MMZpe{2|Md(^^aK8^<(}aiGzxClNtP?^AJ#j__l9n3I=d# z)hnUn1pP)|M9(MWMozobI#~R@<*G4^%LwJMieb2A?K(Mj_EkG-%Gkv4+{4TZ$ zy+&yMlybZ7dm?iQTkb;qNDjUjIOz-$p!GX@c#I6ym`g;&7VxWoZxeCOYUN3XMsb_s zx7^cfjrQ40BIu6Jm|D8QqDgK&wKBc|UZg$0k1oCPf+m+Zs!eB01Rjt7{njD&7!mXS z7$R1>e!iGPU1IJ)F{`nn(N4v&)|bo@5)}Pwq|6#Uohv>Gnd0NFLr{7AeefpQ?QN~9 zP9cYMX3Ji`cXpVHw9C!`%F0YZQkV|PkogpsWNlp0#~)QRrxJb9V-p5y>73bi!(~{Q z9I^3L->Yk4_1MG+CTSy$#|=4of2dtUQ$=i*6r^6pcfu@mZ+PA1jv4}%BtJKpr0_ED zwq3-xvQ2UN@46owz!sr-?a1Ei4bBE*8YbbYN6Xkj_$upjH#IL@yxFFe?w~N$3!g&! z@)b>z&88Y_o-#rjX?*q5Lw^#VAVF^4l4}+#KT`DLsxPfpSb{}}N3s_1yP2ryI!&i% zNGa5&W(prLb?Euy=l;XyDBp=JrodZPe7Ky-TiJ#hmp z!?YGozrN47K{K1XLm+AC!by!LFe_2~ctTvK05S{u7`2%O)*0Kfxh80yOxg}6- z@-z^-0~ggAFFA9le)KpVA0jbF@Pew2P^LJ1N|j@iIQ0EfT0ZYvjUM{A&P~m!5a#@T zizWPD+LRego5F6bE?GLYwoUVvag6+FvJBQ=bZ4kpO+n#`8mb!$W`7TJ|O zM6m0nty$KZ--Ng?amXJSe8G3lG;lKu)&-$*V&-gjoMjL~f|!Z37T+g=Pt{gD%9*&U zyU{NahOoYT`oHKpG|D)mj%~!!_3wEiC4YpKOTOSj^uJOhoc<H zLZ`|ZWTuZD4q1NN{&mEu;pshez3P?KX}7OCmrZy4p$*W-k=)DgdTpx3-x@Qjmf7a_ zN176f%19MQb|_P8pdrecJ=TkruPrG)_VXDU=ArJ;7X_*gwXZyxk~Tz5YZEr@%jDFF z3$H9m90#8x!s*|Xm7D~9V%Gcfg7$F|M>!LR8;WPa$zCl1nUJw=rh2AmDWRaU5J zY?FG_nA^n8M5CO@W{O;11Z;Eq?#sbWJaSiFbUK9X0NzyOIeQhcS0z8#$@sI%;5bqnxZe~ze-!{=ooxVJC zz5pZ!rN#A3d~ac^NkI+6%->H1*)QAHlAyp1N3+;8pjnvQ@@`E=Rs4rK;@NbGMpY`k zH2Z3w={Wyf_7~-wj*t6=(;x_zbh-+2LT-ly z;NA~Uk;C81O$Mx;q!r@xs>>dglHwKTow|K3Dt#?ln>bEy+nMd`XD?^jiW9%nQ_Hx? zh_w_nu|wVj+sx!9Uax34^K+Y(3URli*qy^_*bSt;6)V4o@yt7>5eb(9l<0ie9Z{rVJjI&<`u!Tz0*(w92EkKE5yGa4=?7tJ=4k6Zr?u#>3X$S{^Wi5S&469`>aLa@n`>z zEPhW4q9fzozI>(1C?(8i%5r;))kXS;!;*%ahHRIV2^LKxYm}l*4H-`UWHTGE7y@gr zs+8-)FLUE=r2Uh)Vn*UwJtH5>2g$-z`h&RoTYEcc`J$uVuQS2#g2Ik8)vw|07@^M$ z*M0(Yx)$%9Q%8rBqotJb8PtRQ0oU4kj%!#6dlauj@9Qqd59aeD*`ma=WCzo|;Qm-- zqT#9On9xS+@$W8K0iG$IT**03fu4pelyvjIM$K#CF`tGb+}eS z=M!xL{u`n((Ok5Ssa9{yr=l|T+MaW%$eX56--pNk7z zKfWfbs&c+j*1g!zUhZ4{3JPna<+X~|>Xk#P#XJi-cyEa4Qt+?0|NrlS(FylTI0wqSClb+k*?L zWtgtQsy{EHukBQ!TSxSXt0JsOVG@@Bsk6aZ4=*{Q)r zM2&5L-6*CgcXrm+%hS1ovy<$P%Tf{I9&573Rh5P-61*9|%9X$Oq`*ob^%dE?lA4V~ z#!b(f(fj%arp|W@c$Hp3h}u8ut^>@t5$3m^K8vkI9Ie%>ptqQs_ifbet1V?gUgc>` zR@P-{aa^NM8f8ziVWb9U_+Edw3#d`MKx)IK{*4;ao2`y zR)}g-2=`{qi|`mKhr-aha&G&JZkNVkLg=a@)$zrJre{Y4ry*wsAqupwJntYgd>dz% zU4KQVYmuq6qh!qbbYQg}L4?D%W6@rlb16SykV7Iwh-ml82o)Uu$}f71TB5K(&no2P=0RlpW1|Rjf3&GvTqijtSd+e>jq&qQbVhFpx7NC$&-8Qsl zGD-&{aR4~N>XoV)J%%dyjI52gK!!NdC7*o5k=h;V>r67EwPm_`3JR1i9C`y*i%tvU zbh&tk&K2r%7BxdaDj|7$UjJC&fWt$*S6iR?k7a^_j*o2$hH9TA2vH)I^$Q!OlLKT` z7eC))$h%in0!87~VsTe{(vT-KVT-EP*|3}IzM6CTGgkEJFmzQUBSh~l1Uy|#qAX3c zBMYx7G#EYgr(AFnl3Ec`C5#%Xz?sk<{ubH)YOev`6z>eE^r#C80Ob3!uACkP(0}%b zQ72bQ4_2W{>M{JX8cT&-Ww@~sL<1!Gf={SwBPJ_uM;7}(_f0Dnoc^{`E1b4+qM9Bro z8xcRH;<3bFb7mxAJ$QN;lb2y1#KT zG0rhk{bg}t8}l$)Wx)0P#cZa?vL*$@uL5Klo(9- zGkgD|w_W|}&$jZY1#t0K#;KBT1L>odcgK|tzH*l0+aYBi4$hsLn6hH&0-9T3^ zS~ptB57*#^&G3`V61PX{IkMw45Ch8HDq3L7NRS!6MAeKhSNUg7SkJ@%HjfM1vJlps zFT?1^(g10*ca{bw4V9~zpr!b8WFcSRYLV{m_GCae*#Dk;RfZqSvT?yRFRwyl9=^`m zWFC%ZZ`ZS&AH|r@onUs+MS2iuQt38gB)~i+)M{dCgj3iLxI_9{%<11u7mo$c{d^j2 z?#m&^>mro)=?&oVV8q1)Zb=5bAFJ)zQQAFWS@d-QE7xD??C*WaZJuKB?$C}) zd`WGdxMl`@DeZE^kzbY7z#R4ZCNk!Fyy}^e_#|WoNtnr3vpB9-M2o&^DSTgftxi@JmPpRU%AyklpK5HdsGz$zQzMy zeM`^x8?r+t^3=<1LU{u1=ciDHM2s(pJIOr!FD@Y-OI6DM)AGOw#_sgro*mS!IkS3r z_H@jQ5HLL_^EwP=a}w5jk3lge*{&yibx>~O1;(y1)i?EZ{Ct`8+-efxj!aN7SxkS# zwwW0U>A?I1u~usQ?3aorcr2>Yl|ptBBX}Yd%N)$HG{|?CI+6)m62==HGa_EO=P#sIaN0Ur4Pe6l8WiJ<2n>8!hkDzvmhEZ0549 zI6~Zo(5e*Bx+*eQh|ILw8k{{o>=sVCBrH}bs|n8N(eE_XC>umxlQ5rfid)xXu?dw` zv3~F&e!R1GK(z20k;_AD*I6yJ6dVY7i^abab>c~?aSSksHihV8MQR?>RnXZgD8KFu z;R+nrU*j=~xmi|X1=)(O%|iob&MY8D-@h1x;LW+&$gIg z&oxI_PA5&seE&6<0&UT4LT(pYclr&*H-iq!#r&BE)2-(U(=UHcNx zxcx=rnts=dT)@r>ChFS#KcL(yWj8^q`@6!K1pM~#BdY~4h zUl~=3$ad(CJx&vEn0*n4i0GKbzU@@tfR#;;-|zY%Y$q0D8f z@xRLv8flVdSWb=`A;rrtcwa4;zGxIKxA)5^7mAGPlkO}FR%*OMK8`xQehcz+7%cg? zf}#O$=f8Y!xJm?6cDjJ5`3%7f5&NrQkzI78s2@tHDMzaH_D8dr^wRX`W#*+7IgS4z zb^?iGX&|K%LV~Dj0}6#AXl6M^VDUcoUVT;D42fw)8V7{f1nOsqCeU#IOOJWYpBv`K zRyx3uQ;hZF9ji=t7TA_FqJGf-1dK;{3PH$Gwy0*_g#{nhB~@zIva3r2iR{`TyrJuN zqIzX&P0;O+#Lu6}{j=sV-VYyQ(9dqFCI}iQiXTilsReuJ43-T1aRLU-ey)@mQ7lD* zbpGjDeCR&U{mob%Am7Ke)L*x+m*D!X0O_mp7M?cY4UPH$2=yJS^o84`Iv>vdp{RXPYdY z#0D)C4z&~(58|tuv356(aCfUFx@a8&M@`o_ON|Cpn}RDP4#*jy0`=p~6K*vVdNxYfyfdFR2X`A{^QF5MQ)YLZ zS$U_OPx|MSWyW!TuXFdF>?Y{wKp%&;6%-?SlTL+tiGuq5`C90_>u)=@hW;sJ=+U8Q z;moLC)dk9`k+7($r)d^a94k&)6btMZl(RauEJY)f8EYdi2<_UHyK&I1<7$LY^piOH zVYx)$XV0EAU%}qel|{mDuPv8V@Z13{i-t1A=7B$PrL|)9!_A4n^^vIRN(u(~(Q{Dc z|GIrCfOq-k!w%sr7T8L_z*;Y1Rkcy_yF!-sR^nS5y))W>rW)VOMN zG)ZJXvO)ramJw+jJA6vEn|3Gq2X_ebpe$w}()JO>;(D~E%-yeJ0f4~isp24hwgr< z_d_FeHqUfBTXL1o{$B1BHe@ubQLoSWcb12$D%_^L1~RRVgr-u4=NI(5Y$e11!&xKQ zlyL%z#=xJ!#ZTF%qUB>2b`9D0&f|b*KBX9#?$tib427VTI;xZ8YjBBW+jLc}T4nO~ zrUc;?YS|hy)wu_3%8+WP^1j|*iSouKxO(U*TM~Mh(C0XAWlYo0IHf3BJ45w@mWWN{ zPu>0NeL>(ys`fMsHlZVBVllg&bB?F0abi?4YSN!al`6Mp~>wr)@7pFs8uz3r!IY_SY}VLh~|*i-lFzy~3~ z>L=~vqi(^O*H^&`q?*NZ@7)qjgpE?fl%{sq3w#cf{2twVZ~gjp8h#+**Y>9Hi=weF z&ZX;(WBfDbwR!@7+$CC;I&2JeRok#C(u7f=e(yJ>>1CJuoAvd6d>5W_dq_h2fL(e@ zxeQr=t&;w93WE{-G}8X*i$5PE*8Rbj!q3wG+dAjzfH@=h=`s!|XRe5& zGnnJang=L@mSfGqSzlx`IR-SrFhihxZbw0v_uX2^>cz_O)dQvc6%Uv-ES+mHyfB*4 zY3vdlMk(`dVV!D;YMV(nIE7mNvCs-tZ?+=xTqU4B{G4erp_&1;RiH~4eYT3_KX%L2 zKdYqAjXkdz@=182e7Sl_^?daYO*xeZN)?#D9YfMYki|`#e`3R1_nBfeirCTUBP9Ko zc3bG_PUAfUey-|<*Fvsz-WE>%7PgwsXB|OtB9o~);B%5t8cMV5LGwRMQ)_0Zeqasd z<2L(96Q0ddilUNN%R;W2U6lkZ7~e?afJ(vrhy2PFjuo_KVa!QqB-3v=jq|Aqaa7S33q{ti%{Xhsqm9YfkjBm?4`bikqO;oS5!m!c!VhBEb4f1~@aB zeR!eItI3>IMXYSt3TkUaN^18gCdkpCyiH5+a^-&S)jaqO-*x54=ZWjZn?|#{ii`0s zQhqo*1Mo7>Fha{!_Wg7wJ$4y}Kg{=sBDidBl!qtB7WKVQ^bC;zpJ;7P6~2{td#eHV^@xFir4ZKIZk6u#&!lU*v_=%{RE*tsW`$bt@-W zxoel{3tY4{B%~(3uwpBl;?JaN=lXv@-TwO1K?e%!UbU0MqTh@yxqMK&pWP^CT5IH^ z6|a0XMae^wfi$A1!snc}NP(u%oO^Nh>_uS4n^t`q6TkbEpGL%K^xrJt1$?fB+-#2A zS~JSPK7?=2FLmmC+HU=Qk6z{$njR>T@I_+(*eKCMRQetuk;_U`hvUEW6?w6ZYjDJO z`>n)h9`=UFw1>)IxxZ?dk2_b;C7^28#A?%ArWtM?Or+T&P@ep4$Nxmmca=Mr)0gXm zUFDZuR8bq3{}>lt@x+N#hy;#(c^KBlt$IT+#Qbl$5`;Y=QFLi9n{maJ zh{I|Q%kK+b)kQFSE(P4H91xbsM{bQvw??H3#xW&h|1amY06G7Zz)A&Mu-%r2gr?hN zpRbWK%%Fmg#S_+LP|qzk(0R)8Z~Rjbfhn{BDeGt8%C&;!28g54ZF)s}0_g29Xa(KW zy^O=8KN=Ytc4>nji$}jV+y2lOZJ|b=5rPBKN)Rc416mjDU=rK7K)hC_yir`4s<~@@ zl5*LuwVS?y!UT$o9%3O&03o3?Hf$o^L7ZKsz54^Ad^1Ke8T7KA;(vZwB}l+8JDw*X zwaG8phKF~>#HBT$(3W@gqL|6M%g^n9h^|=kiVU|llwiUz?%qM}j~Kl>&lKnPdIkW~ z?scI|tg=!3!vMvGm-0^r?|^6F2XLP|Z1zQe^5{u8$eVB$cEch@FE~dycP+GpWH2N+0P3gFY)UGdsM5asV-Mt;o~}O==dWdYWP( z^_I%O1(}fadik5}djM%tHm5=Vah?U6KdYy#>agJELmQ2Tb~)xZA(Fu(!;1|b{7&^0rA2*W8d;q@`rh`))HtI_IUY{e^+ zvMPHzIv6+GWtEB zI)Yp?Ci)y*n=oDdReY&yugDv5p82>-nW0=Y*RjDM4zbQ444d8126B_>d!4?FX$gsn~R#)EtnaO5yK6HoL82 z{BO^Z{D<+d@acs(XHhS!;AM|EE_-Fo5I-WGwfe$88V|30kd!m4sj6$l)Y18{g>gMF zQl^}gJTg9m3GgqNJ9q&G1N1jcSllF>Qf1>BItL@t6V+qNGcA-07Yel4q2m_$WTbn} z|1IwSu@jI!;uYR3I*68jH;*ZiA;-_dZ+_*qqn5a!bI9QOjxK@k5ZV5wfg4<}s$R;( z`n8AW-uyf=)?xr*zGA@2K~c2iP+JxC+rfsL9orzRc2-wO^v( zN&^u)t8Xi=`r^t!cj74tbFEKPWlL{3v-|zpnGf)+4~bJ{Bl$Q;E(W-_2=wATb_;g@ zLg8Bh0RT~8h8J%cid}H?#hD=!DBAzWP^8L0$km zxB`t8u43ULXiJ&;zXwnQ55Vl^D1a~;c9;5q-Tw-ko?Uyxuo~??1v1(X21&HOb4H1q zFe!h{KkZ6$gi31S!bQi;-%ivyEZR)XIQgHgeeNHg#rw! zycr6wu^_B$O!6iO=2a^?L=jkrf72a4=8xD$EF8A11U4{$C4>(A6VbFnSxU~8BHWIF zpT{U{qgrQ69k@Rc)nO*T`B8l)14Gw6Cg^Xz&k47d)~CM}+cp2Ilzkiw0~Q0{R=^`T zB11@f#gHlvhL<~2B%K)w$G8vU|F&AsYU;ts@>hiq5og%lUyf9nfAp9?0RIpF|0p>) zqiVKXsg|lIBJrOSp1;DdDp#)%+BODvNf-)*6k$vBaZOR&Bb~>mkb~j6`Y{>sTz+w7 zOQqh$U;Z8MLkZ~Z!}~MVXyS;$t&aU~U}yaC=)q2)i0+x-1Vu6-c$h1`aHEl$Cir%Q zJwW^da?saQd7UM|wy|XOUo1v836ks*>;Es>NQ?rTR{BLbjtAQPEb$}6(K=#3D`tRm zwqT#FT&c4G|5oR6k`XDGI9;dyP|bE%J>KO;`%ULYAozb6o|!NpQVOPD`b(9{hhArG zwsg)YQ3>l2Q(BTo6GIa-H=Cf|vG^`-3w!7*`1lBBrpO(vzZ?O$p2n3ky0$rs0Ckyv zG!0h96c%AaWD~4%mr3OIRQKbSI1`O36Ng}D;u*(w?E0TSfJ9`xbv?f)0J*lfn( zAPt5VX+n$NHrAYIX@saVMGtUp*}hyVlKBU>$3*1*1SB_(*FP2{Q_zYeU3#zwLEj5z ziJSb;#A%SE$(sTP_?Z3Jf+1SU}U?}4D!=doA5S0fh_I!&ZjMa7QIAM+e;A^xfu{K5|Z zUr0LWiH1DW7;paOSKU38O^O}jJsB_;6HLJIs3U`+{1m7Sj+Q8lW`5(^#rWjlD<G5)3fM2d12=I^q6yyrfWaB6@=DkJ(-yxyrnesf3F+@ldosd=M|E3uGZ_yBt zBt=(sejb|pOyAlm|AMBI{sXxv1&4vE%t%F=rMvyoSXBoRYe;ypV~Fz!UoN8G^uWmj zeSrNSZ$Hq@=*6gy0WRa|=_OK9`yqRNJTiK_(BjhspYhk;&?f)C=q6pH&=zD&3te+BGv2jP`5JcT+A9XVb9&h?)X=qO_Za}T1izW0 z54m*Xz`pR?-&y596?UT!G~`ZMfTn0NUH2hVaPkjkT}5!)*%hCe5q{Qqv(8f=3n?FH z;@z^412h}`NX9*7J!316mE8` zyWb1M7&WM+KYQyF4FMFT2r7Fkj<8WzO+m$0Yvj-YFb0iA+t4fFRoD@3Pf?QWK4jC-VygR}o=VOK^)CSX7iA1A5d zr3(=r%v>vx~xMY)pnNB-0Z|HFFdG}-vB!3+d2e5->W?I@b1;`*Sy_@ zS**1F-S-q;7h?uVmBuT$(fcNfws_ zmNF4)#I@`!XWlUW;A0Uufwa<3D=(}~nO6*vP;wy~;NKn#BpnbjVoUEU|!NIN|x1GK79_0(& zL{V!mhyyI_p$!Nv0_1{tP<>bww%_^YK*FKCwy(8$2ZhovX{Kh?-F3Jt5AIy~jl8ez zAv8a&C(7h5nA8ZBT`n+0jsG|oW`5-7JM!~v^ys{8sD;X^nC`rxn>h3nPO1Wqt_+hri3I*0{3X_eUG+)h>q}x9~;o!sJI*_6+na{V2s1!9M5H z{*0&G%oX^;+SC*3Q}mo!ZJ2E}p#0DTaZ8dMn&rJINcbUUyD4=)Is!}@{bfs6*7zkXst$W ze@q#{jyGL%w3O`#m>D#L@v;wI-s6t!5~W-%VLp66$~knz;@Tqj;0hut8xLTnsH^Qf zjqtY4R`q_tWlw&pxk`KajYO^WS6RmvdqqyU!3p4ve$zq9=u(=W#r_m`kQNMy;;2O_ z$gCwudDiY@XdAQ!D@1yZ3Y0Q1Ks}$ylvxmE8;mVYLy;;rt{ulBna#hqr_!=i8Xb^m zV5rs=y!Q@D>~JJ#j46s2DrxLkGPqvKQ^0mLP23mbtRocF9~ma!5wDcqlga7YR$3h0 zai<^hL(Gty^!dzUL-d1X5eF<$ArB&&mYSwu%!DDWkRn-rF--AxxKTjH5Y zsZ5-qzwWjv%>Uaupgjvot{_DRng^e>y-PQ4h zj}cV&Yh9$Mh+?g0KLU&`9#52MzsLfzXcQg=yiJN(P^(%sGncH(6$WAVHP!DnidjH+ zIoF5F)UOrD-N>>1Ia@r|_O@Poqpi{ej6Dt%?Wt2NQTT5n&yjNG-EUz|%zfHO=fMJ7 zhlx9eZy^a@A%|_{JQBDZH25cJKbuk5EOzf8We_BLo((v3&G5OCR zpBpU=N+WxQMwd~!Oy^@Ez)zDTpHShE`<)A5+>%OfShz}GFr~aD+(+d~cwF9T!% z9kY6$V1#oXwEO)W#(?g)Nh8(8r{IuC)9D6Z7J0y!m#|3XF0>bl;&$dlg?5@KTJ$2A zE~Hu3Ck2su+>+1LP{H?J5#Vi+cMeGXQgC%~+RHW=)#ia={l~tNwfU)PE9m(hEloJe zgCzd-GFdF_q19_9$kLc>eQr&B85GzWwSF(xPo|O~`a!&u4(DrdpR%{W#OcW%xJ~UW zN%DhikGo<0dLe=}E*CsyHnjC+Z|r)#?c%qKh_ujGFoW38!QR!MAbl3Eit{K3sL5Br z79$<7-``eZ9a%rWB7@C!p+h@pcY%VQ?#uT9f+;f)4FVVL*DF@5;KvyUD3{PbBg?+2 zg**$kRv7W2_fp*q9X*)AZVP?-(CM{o{QC5X18b^984K{3zuZFH(Y$wq@}UGN3fD0= zYAVsQD_#_Br6TzTi*rFz-tSFf*$iLp(AZ0C6RzBQidE5iQ(;HGXVQH_q z*Ifs2Cckz{4wa$f0q#lrs|&5k9eDclM3-4DQR|<(P^J$am>lPbllfhHud%|;=7XN# zH6URNWSva?t5Ad&S%a`29~BjzGkf_&dy`NI1hY3Jl6TSBoIvH-iML~!yt0f=o=%uh z3KxPpzkUV%C=wlCO5ZmO;U=Awn(=LFT+RDnh4Z!VbwB#sY%LtRv!64=KKq1@H%V=W zj=KDxds#c21X&2HIwVG_xIsu3wGO4z{u!c`%FWl<%M)-l&))bFa(5>7P*c^FUYiW{ zByX9=XQ5m+Uc&IeJD2T?q9IaPx(f7inE{55*$|=zd=#f3**fyPH-W1RD>F;dN~nQA zLbfSh1Q3J3`4$nAZZ|u|Jr$humM_R_TdScoqVtrhXD zWBbG0zv0iHz{K%zHto=u^^H|%?0*wyHIsl+BdMi9=;-i@S6-MP_8yA926N%G2>kxUA3K;kLaqb%+?h8!)!_>}9 zdCeflgiI^0YQdn4vFs8wPK0sO1b58mbpct-y|I`(+A3PUzAG?c%yQeO%~v2GKe>&m z_~{`m=-+`Hkh$CRjp;=eX^RtBGpRT@%r6Z6Yz3z%cQTPkHn*S)ldcdys;xnHmR+K? zWza3fFnzm+7Jq9O#KPk>+CdhrnaWA@tmXw13`DV3oKwd-dC5nQ`H0dAF5=CxZ2;)W z)P}s)-LUj)PnZfCkRcGXdDUL$TtMl(@=FDg+VlD^ArVR48xoon>N>5|#F5Dmnws?6 z(ZR2?(Hl2d^T#48CUmsq*z~WBlHjr-Reo2Tr2O3yC5RHvvT(9xDltvvNp7a7Kxb)S5vG%`1$RBI*fL zqGN7VX^E~zh~+J}S{+;^=j}|J{?tZBek^=1SI8PQeG2u6+C6W;t@aDj-*C2Mu;Tsk z!rJj!Eb2f;$;-s+oN>$U*ka(h;<22w8>>s0r;VlySpB;6fneUpn~VrSqufX=5c>69TnG{<98 zF!558wY@DsiXXujb?J@izpP8R8MefQ-UcLUiZYMZ@1=K9BWsxQR;kf%@5b&vE&y!y{&Xvk~YqN z9=uY!K3fbYdQ)0H;7%t-6>S05w~qY4m&Cd))qIq9QPdQfu=F5{nrmpFQH|OX<^*V6 zeB9_N-6gW`lB%1O8%*m=egD23SoTR@smds~aiX)qK9QP_`5n58t)fC4 zyxCCyMEx7^c;s-f25Dd<249MIyY=a}T01+_XXFvrZwupbNBt>D7G=Vhdi{*Plkn$O zw$nu`d)^TtYNJdCE9zFF|FLksU?K9D2$hYS!1g_IM!9{css3Iq12G>NuiV}h(F#|x z8*KDY7$c4`6cX0kx#DrOIGG~(7Og_f!9$3@g;tzwdH;a_Gx!I+J$Dnz?K+-Cd5@4~ zJ|E%E+Yg`XtMJm*MCIka1Tv6oXfXpg+-s^N-|t|}{XGJHF~A$q%2dI073E-WJDi-p zah$n=h7_9%AprsEW$p!Ysx&Sv?Nd~npfL{Ky*ZHZfu4!3tJ;x$w}i2Aey5n7kK4;% zzkfoNK?|P69un~yvL_wT5;{{Hwh+l>zU@F`Hx6Syq}5a2vi5q=J~)+cvM zl}z9?(d56vA@35+8pbCdj#gjL89kU#)L1{>?`pzzAv~qZeHFPErMs&oGyb~fhQn_= z@~Mg&NvzbC#%hA{JeApQjFO;rRN#uz@R?eB!8|=n6z=g=W;A+fcJk}#$ew6VG^B@Y zwOzhPeutPgcUIkFW4IzMzVTYxi5G;EtlVN~yv2SI2kKt=*NmJEo3spP5u(z=kSB7E z)45fmbdjSHZ+o>hPXbO5bPu7XcSQXSpZ)}NqdXP*GCA#NK_h3UmTf$M?fnr)rw#kPk{?T%du1u|71 zPe`t-aK<&;Tm!0C;tH-$_nE?sk#umzTtl}72J1B=19RhjE&r0_%Gmwp7CfeqImUaGtX52WGeu4Xi`Q z{99jrNgzu_I3Iy8JP`sOWQIR>eM%jxyZ9>p{@SGI;#KA3t^DcYo##ffx&M!Tq*e1A zkxOFxKBD=p;r<)nF6N9`Eofl$5H`rlh5}Vzx#t@J2_7`vNj@BLrMhj-860LEiaz)? z(6P{L-e4hvirlYq_OM4z6`-rSspCL3MuIZ^;L#XYA4{%T)UGCz*XZB1vQLgCI(FY$ z-}3CV==n6Rlr}wQ%y(>|?|)j3#M)Gxz<-Rw-F6G*bE(@Xglff#4!jQ^?oe9NV;77e z&_fIb4Ot8^S*g1mc0JI-$6<_{QMmOcRLaoqjs~-PXbVqIve85>UTr$dXOTk9gltx( zxOH?HWPYX{8fwc$!K2i%JxZ_KxA(@@=6aU8vs z_qy_IPN~{d^_KT-d|k05v}ti;gz(V~3P7s#5?_8e&!)*Acr^=Yu|%UZ7^A6;Cb)-} z+?F9{j%zS)F3U;we&YS-xe<39Jbw+*-C*LmbvGWO>nop7qqGPrk(yhnIIbX}*OEg5 z2(!HaJ?^Fj?Xq0^^ZnCH?UA64UU|nnEL4;GUdrQ+PmyIB!D~qE z+~9?ILIpiq^x^HNm4@u=4p?BWSDQu=sBGLv3RM*M6TR=kO#yqbqLHhz@q1kZnTPTF zQ~0#8?AA9j?1LB|$gPAwNaD~DDCZGcB-@_4lk4dxKIVM@LZI?`ybDd23?l8u{rAuW zB+LR^i@^l!>15Tar@>6(@O*YT3gSC#3gYK+u z@#osb1hijRM zUX<0Ek@^w0BhhInOAgEF(>Up+LGcqh4k;=>7u@p#6=(lWrpm0{!mETAB?ODj}5-R8a_Gj<{4324QS{v(vwtM8#m z^#uD);7l!lfhokf+B? zg!$okr^`a?knx-`;(nTi8HZwU9)f*!{21P$$N;aMrb(KDrh@!gY332Qb2+MUtt{s) zTKq%vz#x;A_7n z2ejg)I~}}r0y`|#<_mCs-MdFG;rZwcKcBf2tsuK*-#|qQ+jvKJYoWe^Xv|Muk>&R_ zoOrlJ^dhqg5?Cz` z(qTI5*~nWDH|1{4H`}3ZB6$mFdgHp)6e!*wA44TpITLc6KEI#k?1_dvb<45Zsbgf_Xu@Ws@WEcewJ@#76eUfd)R&Xga3C`Be>Dgq53A{N!6^HQwqjXzWmLAX&k^ zI=1d%^0jdj>{9uV`0TL%v|#W2>ntTA;l1UBqWtsW!)~tTOkr(O}yHla5O% z*p>X)S3qYu0)JvR1jIYVjBqV%H?(FpU(^q?&M^oBVJvnvi|%ZpdHxj6dj4>5gVF)y z7~!bE_M>e_*NaR;NdD)pl((mL+*ciaP zOF-V%81iM=VT%($w4neJ%5$`T59g1#1T^Uu2q(-hLIF0u`_wZk`aRa_c&<+1H?J46 zeYwIx>53aOy*RFq_w20$A>+qFQ%h+m?IFo$l)3BeV3M5}w9rlV)$O?1&&@40an+x} z*aAG?fZC5znJi;@!3_w_!3dJ+`g`q^7eX9=(ywjEH<&kCwT;E?n`g(wq%|)6Sja4O z!qc(9hdluE&S{-ChsO%f4Pnm}`|Mk7P8=R|iCu*GlP!Z+(0u*Q^lV@5L?3F=Flja6 z0Ssgu>Z@1Aj^&U4dNQu)*xH%xCe;lJ*5q~=gWqBsti9ySY~+@w*Tb<-lRIXdJ%x}m z`ogv6)2hq3Oj)4IKKfD^=L6)Am0NfftzXtHBtQz{q!V}cg89?bTU*KqDC#W+hb0N; z63=qto*$3C6S2&*Lu|iU)JsC}!c%ot*984N;M9DAZ#mN%w9{S?FqU)nCZ+oO<6?vP zIfL2afn4ItSG8{L?YXq-R<1YApM&%fagag?@43Inf}HAS^`?L%kEX@iZ%dEI>;>B6 zisv?PiF>eoPLuND50_+W%eud>=Ljz6aS;bY-Js%FA|DFV{Q0Xvqkl=u( zN6Yo_x$n)5-m6~B79(Hl>UIg2LuAdsVo_Qkbu`eR!x((ctkJmsl)K`3yRjQgh%p{` zEfd3~@qK)*0-*Zwjo~YOh{`aPCP(B|gLaqIf1SzX>o$g;qR+8&_0R$OETaj;>W#{$ z%xe8bgOp~m(C^tq#zta8Ut>4i1ojs`Tr_H8C^no}1dMYBc!_vIZllk|(5sy<;?$N^FvR4Sl}~F4!jCD{6=rO|eU6K7(A$lNm5K0BA)}U0h+IKxXy+ahqLaxO82J#mfkfo37^3kPlnNue~Xe;6A?d zf-&svMJ_1V$-B%|OqV0+W0`Brj+}s9_xKea_w%+_EA#+*dW-ydT=0?x#jhIm(u{2| zfiAj??U$01s7915fv784BHeu?D5YX+R!;7mPpv&`LA;7ICB{q<%no}A_|Ef+be&lc z9&YY{vxYY+m1l^jYtCIp>8J4FIghZBzxBJSV%R;`K4du*$NWduD3{6WwL9Pzs;p)1 zLb02~%+mFXE_w=EXV{Owd&>_#W6Jdi*az4n*xb0**(}6T!zGcUMlfWBmEo~WG^buy z)9dd{h(LzC#|EB4F+BS1k76CI<5qcJbUNZ~F6+Z6yfwwfpkz=+@%n_oG<~pIe4>4n z4whl8O+!IVJCjeM)-3z#>-}nB;snw*uZcVw1$qQiyU@aiZsjsNafR`%woHv0e+i|EiS&AEtX}M7R}I8F^{Z_o zAMPTF`rR$by%?E!A#Kq)f=Y1O$6N6-(A%mLqLR%n2{b9r|7MpfC%#`hpo@td9g=am zl7vJZ<%Mjc`s*{Af+3jG4q;bmVrho3%_Eo5hY7jM+RhpoSqItdV&hEM&x>%qR&14$ z3OaZqjq5=cx1cpdVqP`B2^U&J=lS`SW&$fa)5=ztB!V}5OW$3D9gz#{HrFU7k%79D z(Jl0y-qF?19_O}cjUQ)|@}luBgz<^CeA01LG5yZUSN8_mz~T1CZOljH^&{%ka~n%h zPIG;@{)q&4Iy?|*Ez!(#d{f~L&JRZgLUMRCJ+$oyWtm;WOSKIw=YrxwL~l`2X!|m9k(8y=!Mn;r5Vg#rGI%V~PgvobQtxyTR>bsS)37pNo@%sgL-bUT-lCrLINz zraI+@A`XT0<{#-gK;JWd+ZemeRkxs{CZM|nQsSQ=@%<4D#A7I-s+1saC{34f^foqpKC`y{cFRcdT;Fd{Pr$KPbhjtL zoyFdrsFm5Rhk1k6mq7`Wzoq+fZTpRmi6+P3o$|D5oGO|i-z-kUnkCtCexT%PEtFS| zY{RK__nBN|eaOYeawnZ6gklU?TC8jjPrpoiO9%eZ_xGyB;ID(gj+eAIJWAe~3)o(4 ztl4U<1wKVI-je!(ok7p{_>eVZ8WbQIzI`tC)4b9a29>@o5yQieQpwI)m&Cv}*^8Q| z*n}J+M9ESqiVHK1VtR~BTR~r2NL1#< zN8!nm2foZ%j&{pXg{9Tk+jZXYjlJj|uNQ_)f^ClOXuyq#T* zvrCi>6Q2yfwh6(DO$XbN2>~QUC{6??ol*c&v&IWUAr_x815)7IT!KHmb zzkQh<(KZ;losYI~U9f@s%h{INdSTDf&br|6N{r8n{P219&(>I8vnIcrT9@-s`5>V+ zPHs^m!s24^McX93B1%P6S4I06P0mO%G+lX*f(P&;sPT-br)$+RC&j9KXU;>@b(yR> zqoQp~PE_~-bPR~3cQcH;Ebe5I+ug)^1H^TJibsz}k{o_l9?wfr7T`XdxCTDj{D8rX z`I0FZH71DgDlDn)WO^`}ERp?XSV=UZ3u>KNx9uo9veR9Wzn_L@{aL z#<%m3HnnFE9nUXwMZ2S34(_=4F|SZO$(=!;}Y z^(uKo_Z1Cgz4hZbX&A}-_=AuS=B{J=;BAc zF(pXjDLdH>Bzt_d{5c*MF?$$I8aQe<`cAH3$wgi7-mq4E9R4dQBMq8&Awoeeou4*; z><>p8cYq__`=a};&H0or7(8hGd;?7keXrnpki>f5-T?Bq+h;+0zBgjb5nNg8s_*J< zrys#%wsrn^4ean-{V+5^(Yo?fkHUzd&+%{`&(K_s$+u>*VrRYqfS7eJxouTti6Xpn zea-Y1*OWYytRBm*USY7lb0-4sUtTk+B^c!lSm(=Su@~!1Vqdye)7iWZYz6gdGkuVQ z+GZl1Dr%>dwG|Y*7>WDT%ir!E_QD*?cFyIJbxx#w11qYUb&hXdRF>vm7oo?2qto?O z41cq&c7=)a;sVRd@ZjfZ%GEg=er(mN8f!;xoa)k$RI`uHLsOGIjW@SaH4SPT1^Pi& zFls*yp=bQ#vlOmwHhT>vwbcS2vunEC_rBDd8o&PaF2E&b1w~!Np+1IlFo7edvJ1kv z2f-Xinf?un3l7QOVoJ@<_t%}6i&+srsllHf=2bCpKydIcjmm!U)urOWJfhh2)9wkI zu?dq^Fzwlnx9{z=-@V4R9KrY^wViR~ye%&^abNxC6no$cq@2p&G%}RkN~*ywS7^3D z87~`JQ5$=!G1NR8aT_=B4gig_QQ@%Jz{aILpj%d<(rY7LardbOt_JGP%?k)=G#8B* zk6Ko;arTvVT{md5DuPE^$!O$C~)qPJGH8E3cJH?>Q}Z*YIZD5;7dt5ArwEf;ve z4&)-8DNrp;SnHY@O{4~Yxv;{+is)ObxQ%q(TU8tkPug9UQgS6oY5t7IAy^ECQe`wT zh7nO_3K#bDMkZ09gsDdqfE4FjN=V}f+d_t4AMG)5UM}h5wPho!lugkw{ALj>wLa*TWOsmI_&0Sv~5JeL`zArub+GnW8mv>NE zzXG@f*as(3a6&t_#j~bl(Y5KK#qhlMiP~+He3(APvub>F^XyrNNW*gE>e8B2|q!$Ef8=-Lcj!h<%L_=$dcUsut|>+QlNoznVs z(v^?or<2EbAw=8t8X`b4!^k!Ie{Y9TWtg3G<;S&(>61aKhUBATsoUm~|aPFznY30Sk)u09ct6#-x^u@*{nYXg0G2ap(=b0sZPtaYe zqw%G4Smee3lwwl7n6K{?5y4HEA<{%SG)`hB$3eNci)<&74Y0;h zS2%czsxvC~#u0Q$_$tn%mEq7=-5G~-x>0Xux>b&IHE@&SwH;Dq2+&1J3BP)IyLL7= z{8^n(7)YDg0-e{~q6SqLH}p`~3xJe|iKec22RHh6(4FOa7zKn(caSh@N}-rph(Gc= zYvt$#&HA%C%1B6YF6>v8NYSq(2@V?tf8g2&ksnUlS$)m99@s@ZPyf7?oH(*YsZ;($ zRa={1Pn}h+cmDyr395o(EcR_BLjk=YvURld(3fv%rJ0{+ct?<*4xlJ!rzH^`=ypC|YAf&gnGW4aQ{;_phk2$^QCQ*X^p>x&K_aNsY>s-(w7Wbd}cU%Rrj$)iP#K-3Bi$O6 zIi$z`XGf$Dzp6$r8PwN?c5X$KnjSHW9OfsetI`SkG^~uSAOD$pbh)U>x%WK(&h2x% zGg3yHi{zqSeM1~$&n(*Ry$YkFJh~zW7&tkq=wC*?^!96I_%mu;mNOQsqxBwmTs^~ zbo?uF2ypi=sN4QL*eY;1M&+eH(GM&Yw|45pY+Y42Y1_w?-Cy??p$)?oqS8XixxY}H zmn)z$i5or|tiJEA<;eny`&0*!Dy!M1Q#-VyqMG{^tNxV|I>$K;{5={rgPd>V=Y%bD znO6>2B)vAd$fi@-td=)!?Jk^srHH(nEjF#uGNv(0)s||8;D?kV@cjWkcAxkl2H(dS zHCr#%El(pXKUudqyE-t9xbb}5>ddM@pdBY0cHL;*b-8|JCc!VcYV*~Wu=BMmvuZ&9=92_>7CGl2?B~wjLvDjgTz9r^?eQwVtlH44ExWF_fRe*6)UC=S1g2nD zo^9C;%DmFJCX3*j*!p;YWA->!u=6y!Tcj2$OcIq*p*I`MHpJSUC+s@$$C+etHyF(a zFQPr8OPr%ot9+7h$sH<_-C;EHLUxz@J*x7%6O?uyKcz%CrsD59UY~#;$gd)=OT(XG zThRB>&R;Fu;vRnnzw|DzPs+Pj%`Zf^_@vUh9MT&FLaulqG7Cxa;M5?3S3G({p$L3! z_A~mU&f*uIX0arLVX1^YrG4neuC?c>Lk@G<{l?_RF@ca5o72S*@{gUwugKx|@dr*- z_T9%Ldq3M_t-M$1b*AGcO=)pBdh1$zldwLCs2|fxh@^LU+w%rGcU4O9gl1PiD}qvS z;7@==GBN=g@p5FKFmjV1WR!3k@&LU0gt)lZAq1r%BZ&i3@xHEgK&wte9wT{{9<4mF z0PBMSz2ZtYrWaYQ@3@n=kv`zeWP*Oxvv?H1-TgrYK74xyfhu}@Y{sKnbq~Zs>hOt5 z1DmHhhigAt^6CLf1AkEegtE|6W$qK3!raD@S0onrfI5GzX8a;?SM&w%E&0;{Y)sQ| zXDcNzn=Mm6DemBdJ&h1n%BQlse@bpE7mF@jAo||mDNU02Q|-Au;=Ho96-lo@v5Z~fL|dbzaWhJsRF+IOS!^rcBPEXtkq{f9T_$2UWVhE1ZLo^3hs;^k2xK-wdLw zl$2aqSF5~W7yHObt)p#V?|%-~()IMyy(do^9Xe^Y*C3|TFmR{;OoDo#sPDjR#+^E2 z>mF*@is7#6;cF`xJ7-hF|29xrukMUx?O89A(nim&>N)X1qbTm*{UJ4C9xZe>?L@9c zmEUu~lZPsnmG5MPgen~keQSQpI(c5fs~Ae$EEPMnmGj9VpCg^_yS^fa&c*Niqt$@i z?CcpGU~dN~?$ZI_?q-8cCwHhMN@fjq$A2|!pGygw3*Ldq`_L`%Gcu4*8G6L$E!$>Q zZ1|jyx$GDlvX1iXnlYQ%+1>t@vDqCK8!}y0p*4?aEKI&~|7E-v@+yg-h2|V z-pQDt%r2S3!Dn@?N$G6la`)XB7#{0enoyg~GPpN(IJorW zg5T6Z_DJq%5eVW>;g{VVVhV?DlbrXYbTUv|_kAqJI~nhnh(6k`)3InvlE7aU=Xose z4({Eg9Vl&NEjW1JKLz_*ib()%3AC%HmOmCq=dpVoq_vOp%kklSM<8#3amyzfpk%KE z%*yx&Y#wL}?}iJdtxJwP0PnAtRjKp3m9y^cu z+v(o1r^Fq63VEm1#@D-2fY}=gYJ9G8`6BkxgP6m00zx%)eY*Spcdr-VYQ#4Qv-sd$ zBKhs++84BAaBF|VeE606xVY1{|65ntpo!qu5$PqYCJbNq=v?#v?eBCbu7A>fqfFVj zhraQ*$Q;(4b7&EBsgVnZP$kmbW#owcdU+0V`K=*ULRo%Zur^~ zWbb5$;@U^-8zqYR2y_P5Tp|AXJ_kY;~1SY9H1 z5ZoDY$RICdZTO()PO+jkgc7nr-d{FwXf7=)5BUl(bO|pmMn=3ud_fKSUGLpu1#ufC zI>tc1%-Z)ECGwAA)|e>c-@(Dt!#^S&J8vGl#9a3)@}A{lDv}4n;V=u2{G*_WRhP(?E#*ExXU*u*huQA4SvIBhK0hhpYHyYQZ;1#?9wU^t) zd4)Cqxu?|Qc>UT;q&N3*aSy)38{qeBPs4wo)Np}1Y5{UjnLW0Z z^Y7&&d-ptEw7hw`$ETIA|yB$2S2jp8vQGLO|^ z*DCdL^Gh1@1V_vpO_r2t-IJ9a;ECJ-UD61Ww(dBEbV&wf z5I0?J-hQU~Im2KO%Uph9|9BDv;}wWhd(*ZnYn}+rHz(lfOv3W*`-~EVFj=g_@wW z>g`t=*B`G6$gB&yT({IE>)_9kQ5$x(e%Y(IyEBNs$++O?2Mu&!C(o`^)u>A9Y@;sh zdL2*o*z>mrrBAdmqjX7h2{@xyJgFxGi2HGRuUc{>75!auO;)2AU)!y zT-=@if-95n_uo5J*bG{l`}}{#uGbnyG!|zcm0dBa)jYq=KC?Z8MIc&|*R*W^)Y;AV zP~0n;RmDM_8~=l}=~KagWAw~_bnf;M)Doq4d^=bD%MjZkzxYYl)e>dLF~-JUkt4qD zP4i@g&!I#vipr?BA!EX@y|RQe)!7QZAy>}KRVxe?kSeWu3ZgG#fY#zy`ZC@zv?N>hVZTI(+JH|vuKVaV~RW=`>{qWEI z4FYw^!bjo`YPD_0tg2n#Ak~cwJALc@i2x|>(*q>EjLl*<>TQ})+Zf-W;H%jUoc#2r z)O9UMt6CCQG$*bA|IU~IrvsuXZ9VhGQ6&Xym-SnR`>dlpt9sOC)Pt&+1Z#JJ_^sV; zwb_kkn@Vq%sZGNg>lF++D89%)`Bm~8OnL;T6a5n_HfB{+whuV_+D&6xv(9L-IFmlU zR0JnM+^rVNZ5(CE(Wh<{pN981OTx?4^ajoubl06GQ4_6q%el@rA^-3tj?^)B=4SIg z6pt||zK8DZ(OGluV7;9~Wfq;JQY50}Y{JsJeBl_cpheO^=}*ohl@4he>jVQDNygQO zx&s0jPcr7aqnMqg1I5_3faC21m624#Dq)OukeDmaGe-=ft+BZMSWzd1>YGNQ42u#^ z6PDlSbNPKSWkd7<(Opz;uikR=7B;k!TT+RPabJ}9gqs4@TXeK=??oJcczk9(J6#zm3JNx=Lv`TWLhf8n7Bt zrOr(fotIKzlN9Wt7|e#deRPp5^#TT%q8BJ30qc{D_fN+8y`pP^cH$dTc%i&q=ep#1 z9Fu6vVa#zJ^02$3=VF~;8_uTz*%FwlJQ8ZOTl?3VnIE4CF8(lo@at9H9N8pnb6{#bqY4| zbymJd5)Qny;d)ndu>Sl}e zK9Rm6sn|CW{U$zL@!qj@#|PDYZC%;beT_Ym>{~V7NtpTP`gBI#rWo`hVDl7NFTH2o zd5+31zf;aUhhtx@An(W~f;t4^9#JXb4Gtz_xq~)46I17VohKXVU3CN(+bpWBqy6;D z#Qjl#H>`I|ap)Non?LS1B~uHref_Q80VDGG`pFv9^D{{fjT$<*Dz$$6-_fL1mjC!$ zBrD6$;{Llne2=;3=FpwPyb7FNbfb66CzP;1_Z8h&(uzelAE;&Jg9koh#6^$v*2xMF z3^lZvSr@uOKA}V|=HW3T#XnN^MjLhL?ya+Xb1TWzx_is)-dv2TX%{tohl-CGIP`f>VYQ*Rn0tALxT#u+JI35Smm2!J-kTLV z!5vQYkHVf#RavT_uuj>X(zELmB=t?iC#1cZW=H4H$&G?ati0tUx3JRca7dH>m7bhD z#%-29NF0?oG-cmE5_b@+UGs{9{evlhc7v`PMB|JIBck3cFcve``bApNF&ZLG9a3 zW}Di8^t;Oqw*2~@jmIm!}4nUWFo|7Y(npyRl*c47GbYkliqcisE_7v6bcD2Wrt4$M37&P-;4W-%CI zX0~OSViq%+WLq-GY|9q28r5Qk=2o{_&}ylfndv{Ly6rf!tr#R(cKVqekGi_L>eQ}X z=REt=K6@vjgDw;AwR5X_$I4sS5!u*zsV(W%#H}eU=Q_FfsyYIa>m#cNt4TZ*s$+fv zvN$yj=bzb{QBB%?8oxA~c%i&)^|`jJrm>pdv6{x7WpQm+dpOyJZOg}JgoIqv7s;yW zmrF;Hcr{IZKV;+Qr?+3NC9O%sZN5oLFK7))Yssh~?E**6AzrFz_e*Jru5q8eeO^4) zomJ+U(XMbvj;q>!rmB@b;<<7JW&wLcMt5$H2#g9%r9HQ}2z|6$sg!}ND#kt5c+CTk zarG5OT;(v9u24TUHUo6C#x`bD_{CMeC~Hr{1DgJA1m+-$bL(L}oMk-S7>na#+XgTq zM<1^KyLjB8su2Q1P>v<8&%^~JqXRFJ%jiM^WiTp_+1@W293BdY!0f)!M>MI5Dv0Y6 zu>pywEyW!0ld5`J*m=NKQA=;L2$V52N!Y~}#9gTR;#_YTkw+kMFBG;PEoUTOuU{Bd z1Jl5dYuob$kmJRXB{8?^rD|B(3_O_b%Xe8s2eY~&E7@w7YnVKEt4-)GQ>o$%ov&it z=oSkh_4x_NW7=)EnQ;}IhJK~N@{9@kR@%t6(^WokRWIaSzzJHy(W+50dw5S;&EJj_ zZZf53uA=>bVlQ-DXc_}*$;+?*HlcRsZE|koKw+=oVNpj^<5+FaaBOa4_aPx3%xcluyzaQ7-mr7H#aD*qD&DOoKB2WQJPY^F zbNwn|TX9>7880i#OmhzxU^{g!K?E3EHcE}dR?9odt zA{Zj36`iT1U#RDj6mW7;$QaH>Gji&NVJYef0lJ{wcl%G23{{e4pcnOQeF74tE+wyN zNo3JWXOEdcQZe72?jV{=vyW)$24+k>2Dy!)k+L4$5(WmVCuL_f~&c5*Zu zav7;8Zu5Z3Z2fV&oZW+3`&&<(3?%L_B_iWOqO|^wwEmu~<`SdQIh6-SxXxGz^CMWb1D1(-hY1IaOOPnflyv?7=6ziM(Vzi zD_Ek;6WNTP`l9 zoLIrDx+!Zf*e-!{(l*h+J0S2vB!l3JY|>$Hfp)dP0Vmq^ zPH^E4`!s~MKM#QNTI~+K*)G>xhFNX^p-Ldar zyu<}0dS)mgYj^+3vkw??kyVu`aHbPE0yY?o)(IHD3G=vzB*PhHa5|XiEe+>~l%o$$ zK^6K+-SV7@*D=eKAJ-0?7 zj}fvtX%FaCL!881GEVXnDycSDx87o{$f2#vWki(^S5aiZ6g}U$Ts7^i)v4uvKU)>` zkpS+pD53U9%_v)`?dTayx>ma+5x=K=m^3Q7UOqrEx!5>@?===tDSuGd-!vvGENk(J zY%P=P>ha{P4jyB~q>*!PkR+$i;=)VDSVC@Y6={6}dckQj*`_Nm?5paNVj8*wQrZb- zJ-(QFm#P)>$Btz;Un6mE6cgi0sTFkTr3z{_OFp7B*5qTqjD3l~GjLNDMOTDhtYJSn zJ!uhyU*pi(^s7v>m@x#1JA9d8lc${PxUd#vR-wDq}t36&f? zL-FLJQQSydol@}_g_TGH9s!icm!iXY0rJ83g0%^2m1rnjS_YvU)4h7-0R@!6|&#GiP$1wChY9vdip-8IIsqQR10iRFo`lpV~`1D8;XqRK&I#6Je%TUw2=DbQh1@9{9ZbB7FkVdpvsl)A7N{*nrnqw((2>Z3{@ktVpg% zeb8t|%0akX){dT`yBOx_c9GR(&A;4&5O;HXEhD3LxM7fW7P=9gAdjtqnHVNG|>F?Y`LWVAf+89V~G zBJiu9w)v6FA%l&3z+pdx-|qf^yz}>@-JkWPCM)?AZ9mI2cyBQ3kDy79e?mL(Ibp+Z zhfvpnwjo8CdU%QZ+XP76p=H3hYnRR9uo&zHwL`D4>*RKg%%PRO8)65dmO8;j=@ky6 z8eFEsW_H1x5|DU4I~sGk0B(TI?lf6pg(ivCMjun2yk56Bq8RkxFFL?au>>Y#zddsA zN)2gHYT&EP5{*TR)K>zU1BUaW+H<-tHwZ8^xmaW7DNU0oBDJ-$gS{oA0v3vYs`2lt zz#%yq8ys7DrLv17)$vqT1-Cz@Of)niK=<(~OG$UfY{0xp9hBrQNRC+e)>N8BruHaJ zs4~+9U{vk{j0X_+RafX6t~2&OV54Yo+1!P)_R#neaNl20pTN%vIo)uTrKfaKx1Xt7 z0jLRZaxxn(kyJGm4PT!^C6LYZn%ZSG3NfkYt7BD%8l=6A-F_F?3Ilg@WcA`?{EDl6 z4F1T`I#p{i`Vf|n?_l1lA+L|E{-#jk;!?goR<)yy)7a5>3@22wDDzKNuf0vHqw#-u zKw;_}POHsebGq#22YIzVX?3eJYtQ#P2kIIZy<9n=TE9fp=JfLNHkMdp;VLaI?bzPS zLkg$43P(c|NAI^I#GOO+FM^>R^8Uf>1};f%6Fjm*VA%Ej%3XI^YkyQ}-_fFhdKUa$ z=?L=9LNe$Vk6V@1urd`Bbe+x;h$1f3tvKBn zLxzlBZnT0Qx;6Zy@Kw-;Swj8Z`~8m<4vhKWLv}S)Zm~HZ)RI>umINfdSY_XLSHR^5 zr{ewNE7zwK4+zyNt*)hmolntpHum8)y27iicyJR;%1dZgy%64-+IyHQqb{k+2<#ch zPypf%bPE&<)VuL|-?8Gs&N16?eqzJM-+2Puz49vZ8FV&|e8);(+Ml|V75P`hCHT=1 z0=jM5@_W+d!|(y|68G1^J4xJs0w*M54!aE|i?mr>b_-y)&UZ+Vi?X_4Ul0fM@`|e`UtgY+nq!IuoX9T$>H~o`e(l*lY z0crKIcwT)wX?ZNTKx{|`VMQ8taaLC;iFfs3<5wpuP7k{p^3gwFc!cJj#c3p(gm)wr zyRmSzyMOpzGxuJ3yU(f0-R;Jqmi9=JdZ>pSc(|!TtFO3)TT{rRF(`hIi2I_PVY!ok z@OVYwz5X6j|K=P0JmpAawS?W${?CY-C5c#=T?)xUGro}%3Q*~ysIrx38e*%sKt;!j zhPpX0{Kcl%7gu*Sx+idXee;We-ToAY(e)A4E3b4#5)_X$?3TF7k?pscM+yhyDmhVQ z!<%mO0aZV?VW99exqVRuv~?*ZzAz+dYWf7vlMc)t57T);%{;ZwiwRIEaK-|XamaN0 zWWO0e1Xx{gTJ6G<`J1lvT(0F}n)~k(wJxXhBx)%CYHO{<{t~@@`xa}T+r{4E5dGBm;*c^mvBkg%=w-*q=-9Mp(eM}Dfm;zr={G@F_x6NDM z>%FiK+z|&LEmJ?a=q2uNF<{h#TL7rXU#Rn?tA^$n+5LKRpOxV`-Eb@`05v@BW~{Q z7hm(mF-#Ig*Mn`C7mwdxGfEv9O}IpAG`NNd1pk{uOqKXdHmPh#R#nyN6VcINF_agy z>@MwZ7Xy=$9!Y8_=h-^zJNDMF3$c_9@u>Od7{e~r)$HyYy<$R3Z%|q{(WQHk)1Fo@ z703j~b6WF7MmoOhhkQ0sZRaq#w;wjmJ6W~h$zZ1!6Tq1kMVJ1NgHmbTF~2UCmACCe zKkV)`sR%4#hAM!S66b1*D5?7hzd%3OVg4itOfAv>=_><&O` zqK7gPdEPGA4t4;wrI2XTNzH7gHzdXeVtb99FoTb@y?r^2Ubw zgWIx*gdzU<>u|>1?y^^uwPkn8+B?ai*-W{Pd+^2}Lm|t()0sbPBsX_1O?|mQj$mL9 zF=gQws@=+Y5>~DDVMTkLd(nVho_e}5muu+gqNh|2F_|M9^BDbNgHWW%E$eA?@AFe! zZ4$5qFiPI;a2|NTUUQWJ1klRe_gGgNcyc7zoy}Jq$_8$2*{f7pnpgm9&ult;t9f}c zZrPcJushv{t~4x%xq6=3^XCLuX-Eoo{k85B_qvYXXjz%@q6-OLTtKV*6Vb~OO415i z5an50J6P8{q0gl3X#O&?r4g>|HP%+svf2bgYHmy>g^KJ4&?nSyzr_TW4Buwt0(%}P z>JfwOobt1ETi*XksLa#~;L3lbM|?{^`bWy1zcQ1)qwf0yBiff4`FHAzad%4CENaxU z{)j*R9Crt-{SUO`-!M)hQ{dyjb+h(4^q3U`XV(s-ETkR$guM4lR_eEuJutRs+|I8f zfVkIh_#ORTg3D=xQ;lBY{>u0z5O*)$Ai$#u2r&}!Zjg2Q2R_`?RKZb0&{CRfwyy}xXmZ3cziyYR}_2* z3}J_fJC-EEnXr&#cX|yZI3DbfibIl_pnVfD-z9X_kBvs1!G~O9l(&*r#bew*^htvB zF&Kur!i*n_6JUV*PtWp-5}HN;l<4qfTqA?8G&(d!o7LemD})a_+)>vCG=6}9WSn=| z%x$fdBR4y5^^adBsL)w9-e4}hME#*);7*%Rr1qrdu-KeNo3oQG3cH8~p4-c}8SkHf zTAT!Ve9)Pu)9uoJfw+z)%YR5%l!!l7CuWP)wfLTOX_$Z{RA5eDhfu@j3oaJW?$y)x zrek*3jNQ0bx9tHb?P2HYWL!W(%`TK^K&)q z4Y&3t{YD+*M#E?uN7^}}rZskc5sBS)lYtkg`+G(nu%!1N;DgVQu%n{uRkX`^#>s4g z?*$5mG+4q^4={#~X5+ujB%+A46>-=-RiiAShDGe#c;*>Z*d~yGB=pLZ%GCT;sot*8 z+YCt8;noI#&1mW%x&z!1D94W8?mSW6--0Z|(DpMU?{}YgK+a=49Ul*Ish&sT!hu+A zwC%aqzbu;;{(ya@knru$7+LU;&DF7Bu#*Ay;Ye_10$$1K%LjOJ*d!URn zpfzD@I+iD+7RAFQD*^7*JxCs&P#6l2fzj}=^cY;h0&`V?BOuFZz;27;(81S8426}- zRq%zfLR9zi^vRre2Lp#+T;;~}io#}=1hH+0)xsVWHV)~LUR-sfq`%MY&TAF-QN$l^ zc4D5$R@KYZZp`glkwZUKI#kjtQ5!vLI>zcB;x~Wro zj)RZyk@n0Y?e-TmKN!34ZTF@VM&ljY`cDRKC68SVp@Oe~fS>GqpBy%q8ji%l@A!bc z_k$m!%){pp_s$nHSfY!6BJP+?Iq)eN#<+h%+4m7?*9Y(vyJk_`@#XvHlJZdM+S%TM4yA7P$M=t_)%e_CHueb#9sS3z5PXv`-==gF(uD*n_i|BtSl-}>(aa>$)}QM> zQ`WXLvpKVVl)w-c6*tXG#BaGuzS%I4PZJObq!k%3qUNd7y_^6`n0KNe^%Ez(nLH@LTwk z;3N$AxG)ZqA-E+4yEqPhgozPllK#4)8=pf)S?RwHDYuVUupF>PEW zr=VL5bnD&%1InB(3rze9?92AOs|P(3Fyspjc}QDJlq1b3MYV* z;Q~h(tpv0Le8pt+cgZcc$-?~dw#AXv3lgy4AYh-x;2^*e1-e4kM1ntjli)H+80nFU zT^x^D0yG(qxTfG+Ks_HRA8dT7nPC6;>a}SV_v@LXO0!UHQ5mcz8|*#YI(dCOChkgu zEwXe7xSedV+pB_bIAEWkGu!1lt4M3RfuU~9sPc`in6&p`Fo#TM4!V28S#rI?G&U+M z#L~|-jN&NFU5WT(XfEh9YU{{rGI4kx77)lbVzmh7v{jeU`?UIbf81!%* zLsXCJSe#40SJ3dcqh+g#Mg<)1z6+C9W(#-@0Wl>%Tq88l1$?yy*reKEwLGx^{b$k1 zQAd>xSCXX?t;YpL*2KBgL!_#e|3*JJo^HOLd_vy#hhbE)qO(+59m78HUiYz$;`%~G zdp`gCSCqsEwNz&4y1>OzosNF-?JexItwZVGkPj^zyK-!-vrJK+J(Bj-q#fvDhdq=N@P`3YpeK(#H|3^yXUO`oofKZ`8onRh^YeOmf z=F*~f%EpwIp?iZT=TK6j!@c+xMX;#odY8oj3%YxW`zyms+`X6vAfe+9Kpad~I~edJ zIvY!%Nqo@a7hU{x1=A@ILQoPqIJW3^Esd)%3t)XED;NTS@gt%55T1t47&sm9HHFS( zm+35Gt+ldqc(`B#aCad>h+1ppWOT*KM}y))9ZHM=m^WM4}EqKt0|KVf=_J4=FCbQ zc@(G=m?(^|1C9`kuX`1hJ`<0LJ0R#|3e&hw348+an~eI1Qnp3{XNP!`v8Eqlooz|RpvP%>uGiM;G8 zB896GsI6j{2h3)&!5i`7J-FIv6+Uu7-9QEb(Az3%Hhu(4tv|&$UtPl9?@haGAGyoU z+%Imyh|y<+_#6BiVM954W!?3|XV=NtG-dVS{+lSfv3?|N^%$xOW`92vVYD!WxkrRp zoT53EQ&6nwy*hgBENHbf>sO?`;K*}Go0do{?9tu7@6SVNI*wA1Jnr)Bzf#Ur*c^1> z&EqmESyr}zcHkpG+^NS`i^vRJM;znW7MXfTk$XgdZBh~AnEPi@_J2+Z|Cn;fhf`6d z7xk&?lLk)xCnan)<=}T?o$X^$|MAmIGOs85KP_GHZ!W#eY1G0ZGhX8U%J33*FQy5| zKm^!>84UKwa@A3}@fMC25Sbr1mHa6*9Spja>(a_=dbnds3twplJjURziVDYE*k`*N zIMZMUeH)y2x5@QZk=EKdAPKvGS{PCKirfh1&#wIe55qu>oRQ;KaeuiE%kY?tR!GWZ zW8pXGBL-o3OwGb1{JN}$pbMnd(b34$*rj*548iEbW`1E=^H;~JGB~cb0`%@mUOSQO ze*}MFSc%DRe6?5(AmHuwSAWYCPJUbiT^Y-4(9D@#14fD^+CBp3{+6EX8i zGj(t@;0)QE;Bj_n5Go0{W_jnpmj`bJCS#_mXaih5i3@zLmpCQ51u6yPctctlWmG)| z(>+;~dK>UqV1YJhRFhBKCjjUZK*t5#Fwh2x#=;b6WA8Kpe<>JwZ}VCLi2KC>g_g5A zx;CzMB)@T}zMpsQTHT^Jv~OBte4|7OUw_%_^XvU`NBAQ4^4P}fB*DYtrY|#@GVREk zxVkhdd_SN^B2SE+E#Ia$=h5VKgr1;exB__m>0VO6L+T$_wcz+&OfQ!sGXmd9s_688*^C*c~PfIp<)@_Kzkr%suSA-k4l)3cG|P&Yjm4aYQRII)SfY1zOUJ zZ*1T<7Vyq~*?l0q+rU z51&Om8g0^6GPlfP-z!r!AEd1PoJ%1|FZ>rJGv6?LhQ9WHQm@_7x1}(SenQzdhqQkl zx4KwzKd2`m$Hlu$TK9jb3A<$E22Sj60WYWQ{vGXhwUKh3eJXgYu1Q|8o)-QA`M_UC zTUgTEzmfJlsz~*ELObwz>$VTu6IQxR8mCF?%_{R+@Dg_~rW2rl1;d@q=G4NFcdN`` zCs4+MBJTT5&2m-1aebr94_rj`49WQ_EAoOH)>i^!?o6fYKLSt!&`8i!qtyXlQ)sQD z3UkEuTHmPR;Fr&;>7k4%*!jsVSE+DCB5hRdViNy$vU*WGCLjs@%{hip&)*S^T9O2d zP%b=2>Kq%3K7(C)hf5cZ7Bul5lr(*Lq9T#)>MX|WuHd!xl7mjxUKmi~iyD2CUWK^B z6=n(5TQVx@Xndi@%10Io8?1KZ{4dz;Y*!d8QoXH}C0dhQ5|B_eh4aK7 z`H{7Qd-wfm0{naYKCdO!SbUHpQSxyBbeYImMBJe+ zjdHl}`@{7&xhg_wqkrzm7@rv$-*T74yIt7y?b&|0hO;`MKC4qyQPK2OBuv*6kc3&8 z(^<+;WL~cEM8LnQfGY}4!TU#->^WaU8By}p7I#JggC`FdeEIX5fJXsOhs`1-;!taU zO@+jLa=1H8u@e3XY3F;)>lk1#Myb>}c%E_iqu#B*BklQscwm{Rql|y<>z?E1Es87D zO@Hwa_d_R*$};BG-!amTOXz(%(*4n_#l36(2XF8Zao;zKcp~1cD(&0)A^U!Xs(CNz z`-LL@pe*Oll#GW4b~0`4|4Yfq)wiej9s3jzck+RSqv$e8UT{y!HP_JDo{hhv#&44L zws7JhaVPKm_n|huuHcLAb^og;A<@LR%{=i3^8WuCYa5W>_~&F1clv?PQ0spyX)kx` z8jw8fY66-+9=)`tIo9*wAUh zXa{*PB8N$_DbAk59HYJfrUT85n#a@@Db}-?3;!UfbrJw z+a-yOXX`ol(H)C2D1AcC);NrRvimC-Mc^)64$MYfNdD zYGGXhGqUV@N^RY3qCllaM5VwLCvoI^vrxeal`o-ExZD|P0BFxI85j5{NF9Ea3bzAA zA?j+n*fMgfx-&EZ3ztVDs)kj-kRt@8U^nLubaMJu#bAQqui$<0f4pweeavKV*r(3^ zECD1q0Lfc&yOtr++IdQoOlJiyAMjG_Q`3FC2yq8+D;#(Z;O6SgHqa-?4R+e7YGYbi zU|dB=>Z`uJd=x6PHl{A6kyqY6(lN-(yw>2Gh&zar3{hws9`v)V4suna|8=fd+`lZL zHIFK|U)=oNIkwiwT_1%%RwrT&kEY(}snfa|OR!6lYu8_BT9xr~NqfdgC@ji`3W_a0 zThuWqH3(Gh@E9xT58+*am;`qeJ|cj)gYHMpCufJZY@an*lkSu~zhe}%xkhjGMSeAK zJ6+jB(a5>l@*V86X*%WbNb&+fd#$W^Bk9O#iv>M!Dqs{mf**%2mw?1MyM7I3(x(1qqe;n6xoi=46g;|1I-wfo`Z^I4x4GS1PmrOwKH_n0t7c zD}|k8C2AWCl?k6q-ansj~y zXd2_`2S1`5`bON(8;kq5NePt!`fS>VIB=}n|055U(!i!0RyT`R7 z%T-l?kLqkpzUJt)+TaAhpC%z}29QV?0+CR9rlb=Lx_lMnF&cM$CHJ}C65{R#Xe$_} zLE`}xlWMJMm{qfHV@4&+Z1~i*Paq*F*wC|0SIBA>U&ZQY?@Fp!bbF8`R5O{J*xWjw zMD&*_Jq-fzt+Wi=6?&pBzM0P)VC~4J?JlYrm-pznH3XGlzK zWc^U~t$M&yU%Vw?Pr$ksMHZzzY#Elqx84#hTw&&!$eiMv1C9+&0_*_3$1qytdRxCx zd#0#8Ai6l{Wka?AYfr%cP}!f0XI(7q*>)Q9?dkR`H0v6+FFv)Q3H?{A z$%nG*p!q=`sV;-0Q;5gnatOia+tX{9*YM1=n+-mIvS&1&C}P|okPcoaAHVeT+#Q&x ze|+`&jEc&R;YaaxK&3XI(y6o07bNa(Kr?p0P&(jCC=C{g&eku|C){sZkyIX#gdTS} zFC?khCFjVfUfQYz!r@~2>2hjrE#v5=y1-=InhWF_zM4fIE2aq_lr{uq)5=$&P?xZdMbD*Y2&mrpiibga3 z*7L(QIk{ao*dn<;uV>SL4cxn?VO{MH`(DUuQJ_u?XGe}^`;ZTAlr+UNc6~^X+cH*s zn10lUhpALkFUbd7;`Dzdg~7v;cl|4?lA^xzU%mUk;O418)2$l#B-^DPGz` z)OTdCPW_n-m!E!0+4E=Cg$!kXJ}34w%IOO_E=ApSbMW}D+=oIkug@N-qv%G+`i@N2 z$v=>G{hFF|MoCI!Y@Ib3i&H-%g?~!e^|_?I)Tt6UOj?J-3McTU9$w<^g%^_yWUzO- z!;a-T+n_|3RnfC7u?&fk9p8z+l)z+RnU(h&`oucG+D&quRd0byQKx9CY#M-!(@u-s zt_Ql(TckRB9hJB55@tzs*-O2qfaxHS#2pLcz<>(VLAw9;_oRbFa&*MP+$O>4IR6Cn zqBu-Y3f2dFgg=D2IF=+qlH|_#5t5D%OvL!T9BU^8CZd)ll%6l|7HaGQI5%tt27oL@ zh2;pQ;TC~2fU^K&aOXt=exWEB!LL^jhsm`>^;vijvXD zK{XHMwG20sN5ayvVb$E80YPQQNSD&kgkqG98pZ|(cH|DIO=EkrNR4t$ORIn(klc7! z|J|iwyG>El%%k(9g*BZ^AJv)vSpoX=jj7mnrUp+Q1r+mf0vUwcOc!l`!W}X}l|t^$ zks5AdDE^U!NY=s$RSGzFT3t+oOsbTY^~%Ij8McRmV{3^WU4HTPk%VDXJLhiwKpRsS zeY*=QFml-gyDs#g_=;-6U~QiS*GgOw4|9_GC)Ve%OnRj-^=|j2PF`L2@SS=oU(Q~2 z61$^e%wV7tjq1zB|57skb0O?Z_2QnNDAdxC4Ne zfaZW3ZG=mNZ8E)$D>nd_er;+6=m5c0jJvL%7bNQr&}1Ndx;-yFLSabFCik!4&tZ=N`;!DL=psN@HwgUB4x6`wemX@5y`Tz;unhXOwC{18d6{vm1GpV+y{;-*_-ELO|B#0r0p9F80| z{9|JHQW>*jEc1`OTmJ(b9LYHO8`{Mh(?}|H&Hw7%@ngbA$ldpTK-&Hu%on-$eb|^C z;BQa!fB^1J-uWA3JNOl7Ot666%uo2lop$Cmg|h$CmffE+Z=SUBnGUVQX)!ci1ACke zu#MBWv27cT-PpEm+iZ-+wi`6bhK+5TjgyV7yI=3UKOj$b-<@~n%$aj$db3e+$L3`O_e3m1zXI1>U6W8PS3^wq}w&k3#( zQ>w0C`37KpU`)O6L)H`nQboj^!YGvoRf&rPtoN`rn@`--o$2w*9!0duz~O{~ zJT2F(sMzE}KaD!Ulgl7E#2o6=n~`c1m>^4zBa91Mdu?gdJi z177hgfRln-cuaS5@H!!k^b)-i`!TPvFSWI_3b!(?{G>SJG=AyhJS4j>o`htZ z8j_s;zMCmP^43T4?~pMLebEo*PUWC29uQl zKF#WQxob|9-<2XxwVW{gbq{U4ctAas!feN;%?n7XZI{+A?~la@F_4-D5^qifdyAB{J(l;?jkaM#-&72^&ikOu=4 z)?Ud|%Fg{0(%Kzqu9<}_%uw>h1lsJ5b5J<#fVLBwA9&6m%Y^Bu}BK5P76 zYw8x<%TS9{2R(5XnX=v2e5n5+8(OgBJwpDz9%OfmY*9o$KJK_?2}MODnL*^?txRPPyIfDT3ReFEu;kFd&z1kgV68hWQ>r8qoZ`xyTI$27lcv3oru7BxBU)~pnc8|c z%L~NJOL1JUpj58Jh4b^K;3Y~>J;asqpRWY8neS(=^~~2Uw|jY)*51}NN?<*Qv&+Nr z1WfPjd>}r((9qzv7KeQ|Rf1sap!assvtDkw^=C+@JMr6JBqAz!l~wpj*`zlKJxv8< z38BaQoZRJWz4}cWjk;1UexdyXo~Xn6SjZq4(6I{?txcd40%IpiJWe5Q@q6v>T2?$_ zn}oAo8wI1Cp`N5FTVBy?=#R|s}z=l zHy;SVtKAI{rI24887|;{J}#&u#W1G11KR0vnK}CfcgA461Ln($1V z_#*Q~z}FLO1QkG&5ixC*VqNPJT3p|@{i$Xkd{d&PnTsZZmX}J@7K@vV*Sm>Iik?X| zy?L#-oDCu88g`6cSG%AaS@LqscOOF@6WGG5a!m{>6E?*-^nW;?PLe;7|)l+B{a4fo9>M#uXeW2F}pz$MtV3l>-nv@o`F zR4AkT;td!0v5&U)>QSO7zR{~6L2sgXxLJ3BZf%#i0a}Iumotw`#11Zu9wf6%2XV#I zUxc(4mF+I5Tq;~T&7vFz7+$=_*YQm+Ny%jUXy7<6BNI%KM^Uh&$2@Ikz4(BumG?Qy z<-1SkeU|uXzrBg;8pryPsg*9nUJ(h?A4mc8vk+qBi4nDMR{j1c zl+{IFUc7KYCE^bS^dnQC9uQyG7r922H(o7LndO4joQGZwo*WAsWC9>bHV7q&LM+E} z?KDdoG=8JJeCPinmGc8pNR^D#8US)&^U$DrsDm>iI>4q(T6yJoBPI9P zMmnbLDz^nAJ3YDFKk@T@0@uwxEkVlt)7ELA-1gs8*K?J4F-DiHyL#Xp$Ai*8P^OB& zBD}`0y|t^yrf99eY=scdj3hG@f3`gghvW8+t~9LRDt z@mJzKTHU#Pd^$+rFGIh@suC4`Z@Gd7_ysB)2eSt4Lf&#$xi?%eY>4)BuE;eo^)XHD zsh=KD1F2BdLO+q<(qO9j3^>)IE^cHmdz&JVOZJzJkd{1DH3mVDIe3GXL;Kvr!hd{Q z0ac;M8!eRL!%Z`I!fHN~hXM5mm)AK21+bTPg%casEvBw0#IIeO!h=WdZv$J>>1lHn zXpt{}fh{LY0RD1#hhZ1bGc^*Jfw{2gV%q%AdyZ~ld-STLCtk%H-yrM8>19%&Lr^wK zmYqc7XpAm;)3bR_zlijVmrUc&-F{2V=YkJ_F2;hMQqOMgh1d zb3g2oNjqeqVwhHIqLLJdL97x2a~XkA4isdU>_Owu z`D+oD=v`NBK0O{B!-h+=vLq&q3dSIls@RtA_diMam)RkA9Hxsk#aL2kogy9fE4QiB z1@@gE%oYd2OH9%S$Qk%?_qA^_Li8~ZI6GOuD=>%?qmEgiL3{GrEJO%wSU0x)2}U-t zhYHdtO#IPjZhPgU#hBxviQ)JhA4)V;(GgblO^ns3cz2>PQ-n*w8_dfczOHGRpvuYG zXy6;`sI(fMv}IWLo}qh!Rk($9^gD>aYC5oZoyPXH6li%utY+dU!8-INXZ)xwr-#pa zIgq5jbY@ef|4j^)SDlR&6u$_p&m@#=)~9r$efH5n;C!^YmChf!aMfvgl;cV}O`Rl6DnW15d@-^S2=JBet^zdDv+jP-Ij#4SkqBJI)$7ggw1mKJB1CdUi{a@>6ore-iTncm7@FdA=0- z0_~6wpR|Lq0g_Or)3t+lU{=+djI0S=2EM?6k4-73@>JrR_&f4wfj+OvvJ4?r?!2Hsf=Yhazb?V8XHzvaX&&M!rK2Qf zYio;n&7)$hoGHJZ zfY{vrG90L0iy3k@Y?gev8t4Xj2$+JW(5#YdOq^uqa^qmvI?6BDF$#i}N-auuvbMI? zm?7x&F_dpYXqgRljrwr&z3!5|emmZnE-8GG6J_Lm-eD?Cpy!5D!@^}7kGYZvdsgUB zppF4R_Ben;#9vCa;A$ftBU6)slNdRhBcRTS4v&c)MKCt{*{RixQ{$G z&bfX)L2)k~_lofJN5A@8h$?gtY6y`KO{qukwXdd9327xNVmlfIHURocH1cfH{mBv0 zC=rsJ5a3q;6+Shjs*QK@<{f$YBp@_kB|}M(yW>hHbf{qZM+vsc)hn&Y$BGKjmgh08 zMp6PBF)0kJYeJ54kM?GiC4=9VijP;);z#ScdU_w5+Eu3Luhg@gCEb-wH0l%yxn%>J zX5Rt!zyy85Y><`-qx-fx?~aBf{!XWXV9|z9J55*WA}cJZ!mn7MQ_4Qji7D?!o1yMo zwsA8_3o3uJ{Oh3*6AZ5Rc3G>_D2@=W+dPKMM!a4+rqMt5Kv$Z_}VBi~Z280A5= zZ4Ier{aX0yPln*PSLLs;1sWLb?(zSGUeXjzD7qG}SHj**UdJ zA3B5`(Cjv{$dg9xfdT2JyQy!1%j^TZksTJb$Wut<%-sTU{s>?UaP>S!zCm&{cN(Rm z-h{Gn(E&I-U9rPm4lepK()6+en%WY0O)3dyJpKswgrvzMF6vi2XEi2q?<(ewMsmhV zH*VDn++_?5)n&FybV|C$H@-Lv$kmAoXJjMgETaSOs6Ct_vL2S%vpN#Ix&{LKuVH&Z zCERKDFg!iotflzLG2htG4b4%jjJ^^c12)c-EY+BUd4`=%+WRfsv*J98hpd&>+~FfN zUSI|*Q`!(4_gnc|^=;xu&)8@vnY!#Y1m~GtIuw8$6}eQk{U$Epk;BH{hf2AD#7{@(bnOQIL&!+ zxLj{wNO>Ce!s({}wDg2gJ1=fiV;M^qqvb+IRG%`!#B9P}PGx7id#eXMgm8(iv-clV z*`zczC<1s3M?jZ`eQ;2AxPzU|QMpe?is?uhcCD8(Y6^z)fc*F=u#fwQpkbSDQL7b0 zU7y9$%Yw?Eu&k3^U~eVQpOv{M-?&f{NJAu94eQvvJJp@QJdJKrIaJVCqik!wdZ-(g2t{l~wiS2M(r`=*EAyS5TYFMxZ3(kA~TJ&_? z{a5Y0AfKcSk;%<-eX?b%nzHSXjoPKIp#QQ6tzM)faeGE;bMBJZ?BXj}?CGiTNbf~F+QjtXOCsOSR^LZg zC1M+Vz7I)m0B0Svl;zbDWmM^#=WwMtJOf(+_cBSs>`CmPmycfxxX!!fj0u*RFH03i z3rU^{W*yWv-!!Gu`b4Nh4;sBBX8z&bPsLk0KnSKssnpSX4wlBS*vqyE_m~A?DjS+y z-eT#+Fw>C0xSeRAy~YLR0Ip~qG5FKS3sLU)uS041AUj&UH&9X#ZKYYhBPilHwk2w> zcTv*{ziw7jzf2+>nf5o)g5>&0TyLGcQx-Di!MdC(bP6EC{USp2kGLzAQmn$DS?k!EoOq*M&h~m z&jYw4E6G6^njUJ&)D_SZTFJFi!dtCm-xgi!F!rA&F6We+sJGJV^LS5{`z-q*=(gzO25A}htd4c*s4s9?zu5HT2lsMOrtjlFe7r?4@#ao# zqo7i|qi7?$-ON;FB$GX$wSWh@pRosn*I;=5~HgOFewm%g$>*XmTB0`xg6MlERCpHH7ddiEh1z=n@KTB z0@@f*r@&MTJp97J)w2fvhc)8@YX_qDmA5!@6dSe^5!SB~S-J!@S*k@VTYG~DM;9%J zZS)pccoIfAd(hFOq_sz5ctNXe&ap0_dXb0KZi}dUyAd)5;9>r$MY2Qob7(H+#^m44ek`JBGG@x9!nuyG3C?4Q$cOmTv(rmoz;8 zJ0WpIE^Fx0j9fJV{$!#oPxtT8w1C2wIN!8F0X-A#QZv|OX{0pl1_e2Wz;D$&MJ?(OELprUA8m!E?2 zyfm}+()0*X)qV##)WCDf>SP&5BN{XTIa&B^=u9HYKlw>H&b-llU^(8A;6_r(#3@L} z-yPhP+QueN4uYLAf3*cb(h4e}6KMLCCXXcbM|*fWQv!g{IvhdiEs7AL%-+$j;{Wbkv^i<}_A?(2|xt!%a5N>A$XZo72bls@8@%%5-ORv4_xBb(q2u9j@j zK&6S?h?#*K5}arb18We&uT!gNcd#`7^QV5laH$_9qRn!DfyblxE#e>tx+ixK7Xh;8 zO00ZgtCX8Yi&A>VawmT!840R@LIX36@Mkyc0pHXjM)Te6qDJd-m|22|2Bz24`5;A) z><0D!j!3dYgFAq4LC9}~ng#&TD62HcJs?|UoxWq-kV;An?h|U0Cw~S`B5v=|CJ^~n zDJv(=?W1>m1w@!JrznMd%?Nu)U;xM#xEghd(W@AaIyCg5KIbAPcoQWG8*AySoBkd} z;;P$tD(H5U5Uu`5UIEsT=>SERRZ4>K&&R>bWb@Hg@LuS@W{ zW&-<4o=r#_?9eFVrV%d}*xl)SUHP^H7xNqm8dF3wZ2Gh}b{Uc>^>a+fn318wAccm0 zutl0VO*&y=M{@*SvNE9M#*J$JlBKo92vTN`9+c+pe9X_h6iq&PO^)O z)w4!Q8_qrM`XloPx75a_lPwXJb%-&$@a+<5wBU)zS*y@SHqT$e6;~_CT1C0Rs*<9r zx?R+^ljuE}oq{d*3RP%k=X{(?24~p*flUw8T-g4vomYJ^h7dc|&XMRd@^Nreb)!fR zk#Q53=rRyHE{oU2Y>5RJIiRQ5*F{w(JRX_3#;60pxF=Nfy4eF;fO-*?O7o3D*=<|35S??1A(xHU8v+4`?lm$uY)#R|Vd1xAvg0ybgFQjkEzUh;82w5tL>!Ia zF~8EJ?Fo%aM3#Jd94~%fuiZhpkfARZs&%bwPd)@q1cyd zufFANBLUOv{j`y0!7Raq}3vIncX&}+;qKMO@lXC z5Mz96yomySkV2455?j7-X(IL^H>)O9I(U*J1^o|E5TQnlA<#aNdDSiRo}p0VGM zZrOaM*amn3G2E@vH$)2@F7oAd9RB;0zJ~&>*8Q**SG)jex#x!_bqPkhwpq|`T&feZ zWY?r+oHp7j|L#cn-%H;aTFADX1x3$1zochgGj3kfHT3ks=0Cj|aQRk>&5myL24hC3 zMO&|K)L>i3s-ahAxqK^N=zA>_G;pj8Z(oujG+~#Kx_nBk3Ucj%Mu6Mi-7t%MWQ%+o zgQ`Y-=$9K;t~+IP!ry?EGHp{;EIeNpSbG+NnW64*(KNAqe`N}md3-mrjpYJ3%!xU7 z;`wuJ0KXa~@}>}0sMR!^_(*b@t33~E!cdutq04|qk@wdiP8W38b^)0jP+UY%C+b?RY=5(r&rtPUWa>7si382;-0 znlQ`?@mal;yGGrF7o@Dd3)$tsTY~+$$bW8 z@uo{b)e9!<)Mqigl@kQlk{$S`9m^J)#`U`S4!`{a^*5OV0!NQ~h?g^!OU z)9Co&{Ae%+{EG0=7cpg!m5lvEiKT#hePdTrYSoi@+}j$g6nql=5pBf``#ZWJXA!pu z5y}dGy)JkE-T4caNd(&C_n=(JdduofE7v)%wG5f~CB&b<9?dSVeeN8={$*F~y^nfX zvP}+>c|qSXjhlpd{@8t1;MN zVhn0@`5-x6oXx_{^LmUlm`Mz8Oep0{sL+nx6`ye~`%l2S1X=S7oNr5&8br#GBl8x+ zzc;mM0AvZeXkRy!Nb(f~Nm?dgA_~E<=|d5C_9Lc+f}CiM&|0m z^G%-wR#!1|yBBzl+ALe>)}W|DOC(`rp(UXlxbrrBn-GGnC1u6&ngabZRN1e$4<5y2td%PEp&5lb~OM7iVUcXYUuAe6lnz-Kwb55mVchy~y>=v%V84#w;D95(4DiD#j$bhyUJ`0y?@5pYMvm2xO{p1}L(~jvT z#HyzFHXFxkx_9^&`5Xq9^EA#VM+3AEX~1haszb+e!@tEu#LU`?mvliN zzyp4NvCFqPq5O!v^|)^^K{FExZAjdGkR9ZbO<%tro^+r)FPoZR5)ESUB}G_yKq#aC zyJ+Zv*HN(Z%dtor{RtOBa% zSfbPL>KG-fx-7fV?%pt3j?U{v((BJ!x$4Q+zuv5>M$N0rgzpIP+bDAHvl@kFU;Rv~ zxy#ehS0SeBKp|pEVvb@^gHI%3K_lO{n^E0mZdz5;_%Oj#n=FbPz(b*uZIv4Awo$-+ zG!X-i_BdWElP;ScZk#K$91D(|pzeyjtjP+YpWohbJnrbK$O8J{iA$bk(ad5M!6EE8 zuA#Ae^p`?*f?}L8K0Zqr2~nIDDw>8WgqlEi@p6QJDTHv(V0B0*U1K+2sf**Cx@MCx zsN+=Z(YV$9E>wunNxK%zy1x~s!;JLAHdhY3aP*MU~j@R-(hBt`F-pKDtb)x zr9XdaEE+194;(haZXG@ju;&1(pGEm~D{rC5ze(cQSxw)QktZ8PtS$JTia3ftf0aK# za?Th07boANd_BA^h3%x3*r@KbL7$q`x*5FTV7P8C5^5`1&Y)8|Rz{8b7dpiLSm=D- z=vrY|*)oLhLjvO{o%QY81OkW%hTTn!!ZhnfB|VC0=h}+OCd<079oWTx`anjyxvm{V zqy`#H2><(MXVD$2Hu9aStt3ShJeaV6DV_&*1<`pM|NSbiQq7qN<4k6~U{bAh6t!G*0&a1tPP|%F;y76E5c%VPBM!z^I#5p4F z2=7Zz-$Esl{t=&O1oVw@d43H^@9<^yueiX~!qPoXkNVK2zHI z=Cwx5%@vfb6 z_CI#*C$Hm{0CO3ZP1lJTQ-HIY^OxjOw;ayys31dVN>hI_c%micS`SBk2WAT>HOY09 zaL7CqP(ghOe<{JMJL=~PZjA!C9+ZVuwSK!l?11>Mb8;kh=FX~3ms$VAmq(l$g8$vY zKtpuyOH2`H<((*d8`|_NC=)cY_M{MYgC_dwAA8{X)96OGw+esr=^d7jjkyFb$&i@0 zzD#ID&YHj?mq?jY z>vo)<_=={({KQ*u6K}Yle))SG4jk1U45b!kkNQiL2?7aP7a)J8#lM1NPX^q4@9fg% z{BZt>{@2eB8a$Sc1htE;?af7^{74RzYH$J3r`kVNkZWukwLr1?{yM0B!K=9`8CY&m z>3iK0)VploHK>;+4_eOD{eZXsI)1kkvv7Q4?D%!Ly4S+Gw+(Y4ZOflIk zL>r_DUB35bB4g^f;4^g;j{Ph0udn+DD`hXOP=4thCKLfWKf+G5u%}NtjL$VpVmPs` z`_FE{^oCs@VhVv(4m`ul=c$-<*lxv!LpsQM$pV!E#j8uu@+=k3@0LDih9;eutiVxD z^6EO_=8g+oo>FqQ%e_`^n16u-?%cXg=-Dvf7=H*&sR#$_g23Zq#cQmr=KT~-*QRsy ztrgp#lRp*j9cA@6Jjwi5C&s-56u~zd=*Np$*tSJ|kB-)=eC&DnhN1Qo$^2}qfWXXv zU>2K3pYnA>LZ1|Y!sMnKw!82ku)(_SzGEV9z9lz>*wzpL!XlQ@P=bD0HIkoW&?`P@ z%&!=msj$)Pqq>p%@>~utHb=$If9MS{k_aN#4kvyfQ%%o9fHD;BT_g0mq9#*xZ4U3) zM@i6;NpEFe#X3~@5TDTB!QXo>kdEHSNJ?@&JJIZUnUj7C541s4%cR{iWAu0P8OmMH z`c5O;@O#LK@kIL0xNEm**%JXty-kZT+~EH`5B4lTlXqi1XzDh5kb=J;*bwB}CblJ; zjhp8I>dj*c8{?Yknm2?REV3AvsLT9@+iaF9xW6T1&%+ASgFAnIuw5W-@ofsi)vpnt znu}E@1!Ychzh~^I z==z=6Kvp?%`Ln7>Aq}d04_iE~Y@=G!s!QaHfgDuxRL*t1v$Gj(eWtSphdo4IYLNKd zO;}?HZ&kVWcvWA?_VryitvVB##!MH0e%RdM|cIrnBZ^K@TWHV z@3{tj`9r{c%QOrAmgD*hk@w~B@2fU;)#F`PK97mMU$5?iFDO1P$oQCl3P^=+Brl3o z!-Ge0wxiyvxXLW6L9cirtF>rAoEKEN^f`fy&Kz*^hBP`v}G0iVWCcUkjeDR1(aty!mEDO8DDpd*jf)scQKx zLfvJ`#&6ivY*0pjB^+-XCxZ)YMb`=5;UhY-bw<1x`sK$K@OsgxX}x+)D<*#1(5Z^% zjZB7S*{j=YoOM6CqbY&h0M+mq_Dr|`IlTa5Lo@Qyu<~>cuT#0v5#~Q&WdY?3YnL&@ zcjXU~QbE|9Ok}kA>4c~{ZxaS)sLmG7W(#Lqj_j16BF4}liIRy()j*ORQ+8hLb$33yF{sTz21Dj^e2TON#a+P1C`uGFvEI@1DmO*mz=#F(33MDU{ z&j=&dKyzVln)OH_QGyMSPFI2L(7lkwBnT9P(+KSHYi~DrM3ey=O!)%@UdR z?cY3AW>iqkiVVS{E107PnpN%YR88gg?3g~8L4JHK#`}(7kM7fEe@aD#uB?aaRwt>` z!9M3*?JvLn$i~T5)O;OWj&0%~Aw3BjR5qt}xlSc5v~*-PK!nIV{CmF^w9>f4F@5?l zbEos?=`;>kJ^bEnTEUUg;rAD-&P=U&rCRP%Av<_!8WfpcL9YE_2tdcby+dQXdj&_Z z26EW{AeQkS(1}M;e;9gL6NHPg223ClO9((F!9i!5KW2}5RDwLXO*}*hQnzzz^@Qk8 z;(PH0;&**eb|b}8z=kl8329g@5MNzD2$|rP+OR7EbRUZq9E4=y7T2fM-0!*?!q7xr z{9QMG917&O+UGBJosp}o=(#*m|MkC23kwuo<8HNl93}+G{4SmVq-0J7hwVo%+cZ&j zA5)+;N^pzdaL3TjD@Frc5a_c#bNn6|5x25EU}w-`j#BUzv&H@!d&GuKJkFhM5acK_ zLkv+7SRE{=kAKAv&!nXAJf!)#STF?*sq2j8v8s>oEQm^KfGvMH?K>>yA0U?m^Wguu zgIxC7kHFQq*H1yc>?5~sK4={FuW9HRvEBxDI6J)HaGdya^mtv?(uO$i#dEcpnB5IO z_lf)p{uY?oN%?6@eyn#b=~Xr3FtP(n^Ti7{{XtT<7JdrMPe0!X`i(TI)XhP(3uH%& z#}g26R*dDA-l)}Be{_BpY`_$e&S)OgYs(3w!Mw~4)AnxbFqQLds>iL*-!VHcizL@~ zTg&3P3u!9Bni?5(ZFT^S$&{K97>_T@m?xiTK_^WE{5xCl;1pDmk%$F#_tPON_ysvI zi4mm`y<~c)ti7%P5hTRD#0jmTft!IHC{cFKflztEzSf^JDCM@n)I0fF=xC~PB;CQy zpZ?~n%^e>zO}An)PvwrLJiX)a7d=NiGSR*k+~-;I&P)@<;oM7mwtVDsICPF1UJt7`2s z?=KK^NgL|CjE{kfjp@!9AB#d5h-`N$J^mK$+$U5JE!Z~OHNBr722!<_sW^#ExI3>D zfQD6ii;vDI%`gZqgzN}9y-v1f!pp$bh4=jUj#tNq^Uqj}2j})Te)gR?18JA+R*+35c0zb31zb~G)HKnlE_&z- zkl`oQ?)O~C1>Ab4^JLd9PDb)Li-Tr%sQlsiD{FuRYaFH|HmvSzc`;yx%9y*<(HDk` z1{ym@xs|Ef_ySkdijIk<*~8r8;?Z(<_yD)LdYZFlY5+DQt{jejnyW@gHmF>o7rJb@ zcG^Y@bSzUF^rlGg$}-8ds}UzcMAj9ky>*(RFloAd%bh=p^32;(|MM*1^RzLHuphvB zgX{lUUaK3hoCR2_(ezzl?E(a!z5}g@0GCmNd++G1-o+K>-TWchjuMQ5?~?iv9~5qd(y6NaZ!bqT99uKm_=Ibx>w5Lui3*5 z;m?yutjzv znbiKX!)nghb;dT3n)n!6^VDGZgG-b|-Eo{omp~ORc4mH3fu?6AMAi0)a9T)n&Z60; zZOYZT;dehZnGnr|+=NBXO*rQ#f9A;CJZIi(yS{fI?x0jJma*&H z6Nx$LFlgkC+W5HME+5IRzmeVaIteLEqk|GrFLSre=yiu)12^lP+dozip9F{;SzM5Z zg{F#=aWl}@&9TvmK8bSoBMUZG)MY!3#_em)ZNz}TDro}e2-txCmNvY^fGhfA57fEH zf|Nf3W2Xwo#%c=%P+uonti)iX7b1Fzpb5HAVUG^FJI@AWy7(HwE z6KG@HxK`tmhRTNSN8cH)lGPqVq#v{ZL)px4=+Rtbdt{*lT~us-p0l5y*qq3Zn%}{~p0NvXhd)b?qE?QNa(J`0KJ?bTj^g; zy6=oAUM^AU!s6f&QTJ35=++APm?m~y;_a{7lArx&r*RcWV^~pDj2_X3m*G*buEM(gf1y(-&MG<65=-Q*-seGN3cwC}Mj*lr|32T2CeUrR$mvub}Cw$Kw zJa-5!d&4rGJt!1$*q&3ZD4@A!&X*)@6fa1hn0DGL|J3@6vuxuf^W1ODeGx>_e)M-umrN%I{Q1T4rk>p=$!3|!p# zDB^pa2fdq9aW6h;2hz`A>eA+5d$v6``(;$nd;sQ3X|8Q#KaJ1q$q9eqoTSm~UcXrz zP%g>guKIUdIJ-%V(Bn4ghNxTxD2IcRkU3q3z-SCDXyc+{tTiPN1RMuA-%MtV1qf*} zf8?fbXmC>fF&Hay_A);Ci4S~KpQVtOQ|6PFIxnt`mGt+`lEb(*nOc0I+T+@`V3lv# zH6~5tShI8<9nqIYN^S{|)`YcJ--?pp-60M}mL3izwRGmEq5*F%5Cs-_esVVY=#Dyx z@!9rcwku8Q6Groe@1yFpV}s;GAxWXj-~3o@2S-n5`26h$db>P*E>*(sk;JUhsuCu* zT=JyQZWVfQ9;qQxlX^#)yM6R+B+%Wf4n^&-R5dlUhT~C4ZMQ#Zy{8%G@)BrY1oA%fa~YK1%n65=!rA%7(PEX_y%cKRNz3PK;5Z=Oxd&YmStG z-WKFGBnvqw(=ckqNN`7$?jGHY%V`*ped@s{5A~a(P zo^5oH6ndHXwNo>1fby&6`yks9Dy!jq53N zIJNT`R@caBzsV{wGWM$53KZdwh2BlZkq?Yuyx2gbXNKLs4q9+;YZ&vAN40^c>{NRm z5g?(wqPhvMk(8z;7vJJ=6d$gI<_)Nvp1eIIE>`cQkS_SDa*SD+9owvlSb}A;Atr{qcWympVTVNhwnVxxgr zrE8kW+_wpCE7T~z=8=W_fx7PzEzNI-<~n&AF#3}+wSIM>css7;UiYtFN@683{!(hV zVDBb)>&KB6vw9-y$p#_8vn){(omAjMk~OSg_2yFtY9C}lX1VoOMOJHX6#8|o>g4fv zbYa8Kly#&_FFX%ryM6yUs!Oabq4HmvRJ{IJ9lKnV#W~4|-^Gw*lvbuBzRNBxpW20D zzNwv+gE=ds!=nBix7E^87=mlm^rpll*(B6++Kp0}tNaA%&QM7@4trtILlq9OtIV}B{iBa)d(sse~CgT>dE zOLNZ5+$fvrcJY?d2zq?VQN@KiBMg)r9-Q)=nzl&~> zB=sLI5I>2ET8lFIm$`aY$`JcQwvwPt)yFpFXnwtV0vY1dsnfQ_A1B^y^Hnzb?&_qV z?oi)(yT3N-HS-^8Fe<)SXuQ5Lywtl}%l(yHcSE6zT0XftAc9=hA8cy9tIs}ANbirB z{O)L-6^}!gGU&rg3@D)NIr1h15yc?3T(Chso1Jb(|NV-9ea_#f`X7;%73J&BXDhE# z892wz$KWRnL0TwgkAdhoKJZLwtob*Y7Zb+KTi1wSjT^OzrT@`+~ya+ANAE@(iWk4?( zR++wpzk8m&Gd!2XzA2vgW*0?1;%Q=X;NO?Tz8WH!+*mQs@{*J4iafz5gmQKB!?CAf zHXSA2^zpH6j8G!(a5yMEY`srB!(_K#;2$Fg1O+JDJ+1=KGtaT%&-{=1|HINbxVQa2 zT(~w?+wN-HtFf-Oz1nV9t@dhrwQbu@ZM*5Jy!rmFH~&F$<=Ag!rU9--1jC*aRVB4(rLzQ&PY!%A?ccp%Gtqd&S%}vYl0?AZh5z93RHLA zN+V^DcRs&ax>W%T7Fq(YwjNo#^#UZf-w-W!;JdRxA#F!Sk(;9Vp@FhO0Sn~S zmN#z+8p=Fi2p`E?2dgFI!C2q`{|j_rz6_J)h@WI^BzN0T;cwC8XMc$;5P`+)+YmFT z)9znj6c@|4=iV=#0kVMCuU_x=H{gwF(Ipt%^zUL@srP*A#c`;cOzoL!di!Z}dm0pe z`5@?Id&_$Z*{7AV)qAmp67cqQU%Bn1hzcZE=*qzIiR`>8Q*6Jh)qB4FD(Ga+3tvd` z(q(^A)e?GRpbT$*9WS8NK9i{~>{4Z|KVz`f43K`r5=Uxcyp&s*rIS{iwnK?yg#$k7 z;703VZfci!#ywWD~sok*0&0``a+-_fxbCYtQ=V0%bMF9eSU6X=vMXA|tkq zh0q2s;ze4JVTzKi`Tguxg%N%{BrZ{cdY){8cOmV+%h<9zNVzp`Pa9#`FXh>5I4Qq{ zwW&lFGHONBom6%bJnfSL{i^u_VQFRySH`4c`cu605U=MZq$vuXcju2yd1vxsB zXEqB^!RwrP@j~u9k_cbVd&JL_6RuvN;$!ZYZ)tG7+e9d>5c~KE+T90=G&T@DUfDMJ z>ZX+R@wj>NFNs>Vcth$R56=iM)JHM7d|Fp&F&~VvV|9xBJ4aEe@GL7YBbv%S)2L2Z z&`Iq5^~38WB)Q4n?B4%79Fq(QcXqkTNkN{r`@b9v;Z<5E`|$Rfo!L}b(@qIecm z{D<86rM>h^yNR^{gLX?H2ytrW3Z(Wn25kULICo9_B1cI?75)4B3qE zohJPQx|1FaD<*rD4g)VK$^cVM_y$R)0$)3z>s;`*lDf^AoexR~;a$TRX@(9BHvNyF z%%}=0B+?pwlC(ClS_{_*NwED0PXp<9$n~^Q3-tcIjbeXo0H0{-@lE>&ZQ5jMs#KXK zb5!MX@ANUgG2Wj|YJ?tH)E-%|uZ4^Jc}jYX>wdeco1`;AHz}blkX`>rP5HKLj7l?G z?Gp*;>(!W%O$0~`@h!-Ua$vXkPWe6Lb>x2G7|D|N8 z-fW>&9#6Uf3zb2Uv)t?_y34yr$y>>Z7^eG9M6th-tJC!Z!O;oyxUVSX4Jb-Y*Rka< zq>)Dwi=0VNxRNu7Xn$pg<2tq7NbqqE39M})^wCNA&!Er6!1@V2a^;; zj6DSt)$TSVGV_Ez`2AuN-^!Zc5}L#Eyzr7^pfaP56_t_m5p=@vj}^lFbYfI|yoP@9 zWc;B>4$HFn!qX$tonaJvb01rtiw7SF`>ca7MXGIsV(U!Ff{*WwGI4U}orhV+PG9XI zXWrjlsM$(d3U8Uyz;3B?bD`3D0}93D!K+`0FUSzjP+A8v#N0y>4FdE;r1j^>0%4*1 z0D^<^D!b%h1DFV0py(^kJ?|QtXV#SnEkW+lC{+@JncILAs@zMp-32EjSMriqTrr}=)Fw_P9RAhyM-R!cn z(#+0dAocCy&`}|^e7O(|(ZANK>k~$qaw^>arNfHM&Ug%5kwBv3JSM0qv+Q}0I=PxN z^2^JMqY4@D<)A1w9(4QuKChJOOa-mRvO5pHKKZ=Jt&Jq}R=7)w)jqLHrBHeS`Qd>O?PJ?J$tqeKsO?<6M)hCW&ch{BlIJZ~Psgr7DzlpA zBU?&I-+Yw8Mc*3dLxo&XU!ec&K*GT<(Zm9~HWuS$)us&msqkFu`2d8gST2sj}q>!5gUC z{EeRPuD9akp}CuGd~Z{|P}6W}bjxm~oTO_$lt#iOn(t)ux|%3~Do{v$tI9^fIOoMQ z=88k}J)~_C3w@gJ#e01LRFWJSK^-0qv;DX75r@CYy*-9oiy)|NlUO-y`y4kG@dY+6 z;MLe8S;{UocltyE%5iCF$<47H&~Q&1TjkVNbzklpDy&7syJMN6TAZ~g{{ePu46T!b zp~s&uYdk_bBCiNXkvVye_3<8Frf+S`Dhgsgl5W#|)e|#E4z?n}LLxVf;Gw(6XGLN9 z<`ZT6+wf3|O30Izfz1Zw%j1PoEA&dhZeA6((Q9yfiW-F^UJIH5fG4{#mE;4~Z?y@e zX1TFaps*Ri>Ii;&L{Au=WugAE!aYvA?{RzC1|fHW6xW$b>mVb4xyo0wei2v5VJqqy zQ@Q{JSo4oDzi03zQCbVCg(H!yKEizjZO$#4^19XY;n$(~M{?$ZaEN z9P_Xa1|;QXY;MRJGoR_Akc9}L)p6x^1jZDMm&9NDVyFE2cs>ouvMz+Ah~wlu^nWej z%)Bv<+#zlUB~Q7lk?*qfVTg8^+F9~@JJI%hcq#nv_=W`T(wGV+M(24JvK^M4@mW@d zf+-HrE1yfxX_$S<@0iX&Lg9y=B*XoBIP+`|Z9$@rmF-hu@NBoXSQNjZ4W*%zW{Zfm zHLvnu+Zt=<=1U$up{{>w54a!jMQkU{YEi=V)rHaLqA(439T3$vTBc`XHMR*t9qGP& zMYvDe>b>TFq1!kHe@<_s)@Et9@A?bdVBueYWY6Z&&z+6tI}nGXzS=&Owey|jk??Ej z4%K2*{O`9Obe$5Cj;Q<^ZcwM^#f@-s9J~n4&Fjy)$AS*_9B(f)ln}(X-+u^M>=^c_ z16DfkKzj-L4S-qxa)EV&-rQJ_f4*w%_*1B5IV1bC*b?ST37I(Owja@Cf2f*amGt#jYDHvdl zVSGB)3DH>4QwdUJ@796b@rzL%+pGaDqsk-SBX$xsv!F5W!gWTl(lw^A^FMvcajS7j za*ji_`C^XX)jd0J8W~C~Ui7&V`j%~5hqHdmA1OtFW9SvOum@u(Y6Z7QKQZpsOsXMf z`R_2At@|v@D(RmHJ#ud4zkq+|QY4Yh<X1|PXLr)I-OTURxe#|j}DY}@clYp#oz&oq3)lEm01WvQ^plymqo-yg?=@Z>n zFeqr}R#1F3=4&aH+6CuB)=3^c6zMMCW;zl$FRGDcWOgu3w{qg%krUV9G_&}T0ZLJN zg@TOZ_3}!-&m58;y36%mGAL-xtXfQK@mH*h>Rx06N%a>;j0zbceBNSN<8*bk#7Tno$}Uj()3@vHsg!Lc@5F)PnL!q!`z0j6Cvuw;w)9_g zgsAgmQgIsT_#bLxhdp6S-W4UGt!jxv@v5BaloVQg+Cnq*RRw*CXEwuqCxWIhSX3f~ zHsY`&Vh6V)99aM)mcbvTO}C;OkIv%iG!3!`|Jj-o3}E2R*8R=U)lDLBhIaTW?bwml z0e0vk&uqGTph|_@dFM^=9yUhOCmi!VaGfUgJiKUW45m>aul|T&$iRpI(EJPnCq3|p zaQPvN(-dL<;mbKGh@H!t*5A63>ORRmDKu3e9|wp6{j7e6lJAqT=;}oJ$Olf zo6+|`FP<8##q5n{fgW;S?d&T&=UG*ZrxDS*>YNK>z9EW@P;6uA*5 zi5TLsUwlo06AF4&|3ivS>|2(Oo5Byyq$qF3Hft=~XM95oyrQfKY9m`OBV;5KdB)(b zoeaHmME-O%s00PhMWXuVWxDB7F&Z<29CIo`=+3}VQdT!085}8KF2P0TEpVsty0`IR zOj?=J!YZf^(T+G^&hr-Qya(ErL^Vpm!~t^XBd(J5FA1^hGU#;u-uM2Z(Zk$Zdh%JP z_!1iJA!}-wA8mBjUU8?_C&2N5RofC239n#VZ0IiH6}JFZP#fE^Ze zBkCBQY|nzkEJf4vBbY((<8-Ai;IDQ#MEF+b=CF_x+zPw@x!w!8eV5X33_gr}ks_-!ntfC#vXIZ-z_}U;*p#G1J3el= z?$kcc8Zorg-UMZ`|I~4tm80jPqYi5A&8Zu}=U-P}*O+llYEb?9RUVVwAOp2=J`nr8t$Ko${{jVTi0 zXPo=ns#T$6q@U5@7_gnJfux~I&h3Y0u`^n% zMr0w}{L3!jP}p_%^G%fI<|D?PRf|KY_lv3ZH0kGH^K|t zlrQfiPQ)Jd??uozi^yKP_)Y^mmY~w6xoCN@pJaJ z8Muc9G&uqG)zODgR!TI3i7Bp&uqXN{+cdQYjfIKpq8OH%L~g^9*Q5k=MV!jq$AE_+ zedbJUSt?sQtC-*ku$u3K+*0%G-gR(fxl@(3lnJ(-oBh_~6>A?j7&B618~Q>Niu6&g zK4~6Ty8YJ|@j6%af=I9ZO3{MEUD2j4qe{8c3~8rzlbLp-yX}uXSsyG>{ORS_iTELZ z+#^WDnsJ<1U6{4`N7zFWko2TgyFO+2Z>zIO3mH%t@iU@32wYn5WBIH8qbsrlT8NPB z2l~|?*7LUx7nhC*g8^tV6*ikqzH z4X(*5Db4EHpuTXQ`?-;riJ;K4fJvB0WyWpM8p?Om*!!Hyx#ES41v0Kzsnk#XnA2j! zIV&-Vr`IMVCrRPhboMdI+uu|whw$kfDLf0{?CO;c%8ax&?+nAK6HhvoY^H+XP{r); zq$kFI4W81NHt1Yi*YjzfuY(V`xCnkOU~ba2ZxXlR9eb1#PK9K3 zAG=ewEBuoI)h`T6=98zxQWXjJ)qN$%L z);D$nu4?a|3NtyY1FgHe25px`@BYl$w#Y6^SIjpK|74S2l8&5d94!&Z-SM8#0pJ@w zdErjjaN08PQtGzOO5m0Sz|jrF`-zL*=cRlEmgZ%S#^?;i7y$5|P_K6Bz-ed-l~G9i zRQkV1$)ICO00PTaNF+&ybM%|?JI=e(HpnREcdy!3Kiiuq?5IihI~3dt>Awb69||Gk zY?Ylm(I2~7c|XwJ69X=hHz?X1W~YVdjc1_)3uTzhM*=4K?nth7f4aP!JSIQ%-w{NJ z2D9_*xmHAg*6})FF2#`H$@Wae34cD2G3*7JX8)oXTN*T)iwA{a!i~)t5vcBB;w}tW zK`K8SCW0y8aA{(KpUho_$$@ZHAI?NRK);yn=Saz~&blUOje;T!zEK+y=lrCFyUP20KTSZo$C;KZ1x_DvgK`qL zNKrYx@~j6mf-7q3oUevUm2})ENmB)b;Kirj^wN0|$K_ZE&~dIUohPr3V>NHCe`PPsz^Dm zExOG7w(%r*j!t9_nAt-hQ=Jrc5LV52*zB1=``688vdAwBm<6~vyPVPWSdK6m6N4rX z=>M%^3n*H?lD4v-|2kNbf zGw~UMUoIJ_Sq)+S|M3$f_9$EY>24jv6S?xYrOota34RD0I_>c!?`vPN3Q(Q1gi1C& zBxdLm;-g(W;1jK%4(&=UZi(I<-|lY*C1K)HAHc|k7@1jqJ9 zxA{yAiOo#jWoPwdr=O#lWy5P>udv?MSQL0M6Ye>CbB5Fu`iF@ z3KGiIS;!V~3ieE7i!PU>Z|9a=rGv0e_djE9q&C91k z99%y-u2Dha8&8k~ECrvTE~mA9IMfcGy(yRa{xX(3?AEe}27zRZ)5#cd^E?6EE{?)f z=h^bvgKNjE*NnTgc}bqzX}_HS>B5C84+(8~-3O*+Pe0$a7HWXwz9P>;Xvq`?omK|} zpK!~2Fk6S}6+Wiv%qxxG?7=gEh++vdd@IsLrcXIO(3sGrplU%y1`j524jBZUf8O3h z#6Y%9Tb~T#O5cug`Mn>qUB@248>5d3WRA(hXOQ|Ui=6VYJ}57U=yj_;0-XNX%f?k@ z1Xa*pyTr1SQ_k`}H_I0)7Y22HNr};O5)$p~TC~k$@Z7ul-!(Hsj5ECX#I;kVJ(?Io zF=6G(`9#I_he-Wn29A9ISleLbmKyu_j>bJu*~->n!VGaO<+wiSyyf4?I&LR5N9CRN zvhhvAp_GHl#i^_plLx~^%2lGuNw6}1vDJW97__C_pxLq?>Z=lISIA2L{;a`7i(n)69n;pe zU7t@1F*27vXq$QW>_J7UR+hf|`#RO4pf?g&=dql1g`2e~Vi6|XZ_*!Y8>zQ)HWUB& z3KllaLuaaDpS;K{L1l*c=lWY7IL+h+53zz11%=*-#s(L7<=W$vqsRx%1@xJ4Qp+{? zm?kH8Q8_0^WHLBxZTIr06f8TM?o_jkf}&~;yAxdbdknczn$Wf#*T}DMGYB(o*P2BE*3k-g2Y5P6j&Q=TWmfU+G=Ovu zI6^zA^vOE^`OI!Vyf}aB%%dwHa91dt@W`#eY)`A~u~8&(Ze73X{xCz1-+EFIQ}QuC zutU1dKhB|#>G^DP2a&u3t=$g5bb6C-ldY|MEY%%<7;J9v%!n%VYE*q;x_&F_?{Y76 z8)78VkTs?YvXSf}+;YW&pNOh8zofU_t%ecsGX&7Gm9dUXBwOe+xH)ZKd^$B9G#i`mKuFPB93YKWOp( z6?rO0IbzYlnV)HD;Bmwt?>n&fIjN^r-}+6|4(y)49~Q=?*aXw}uU5uOMEX{tJg0v) zR>ts%S;^p(+HnuRc6pius)inh*Pn01{X1KtpmAg+zh<_L_%T1n zYIBD5N2?hIup4)${q?}k6BoG3PJM-vI%3h~(ldhBma@wiS?&OFl!uBWbY<<27%i{N&W(XV}Wn4$i4Be zJE-rs`P7#cwBu{^pcjHit+QzyXkA@FXH_U%6z%BQM;@23GzZ={x_r-6dx;-+Toe=)*&(Lwtd%+%ges>y)yyw?G2wi@iyu38!^-MhZrI-f4bx zDGbUF_eE)kwrRBlc-qWa;5Z5xJ}T+z`EXm9@kCPN3x6?ctkPE7PCmSsn%^o)n|ghPcq7b3#Q^D;lVT3 zEbMQ2xe@fFvPjP@gzEhQxw_qL>jo_?h&2MK4;e1kX(SZy0e7)UrpoMgteqYaw_(;3K`sL_6Dt+45 z=R`and$9&QupvyNcw>?PsMRaf{BUXmw|pyc&AE(j!iKi+z5uBo8%*n!haN@0yLRaS zwv>^2hLUWgc}9gOuPf5MEBuA<0&f_Wh9+wz7ZJeQ6~UPTa1n()^;>xh{gY9RCQ|n-+72N-Bo%q3D(i}Mayq_NM`3Q_f8h=~az0OZJQ3F(m3kYTjMU7*89hqg^ zo*X{jiEF0$x;R=G(y0Fqc)$%WUpuU}DN2`2%&jXwtDN>#R$KP>U0<4%OpcJKMrYR~ zUgzGZ)hD!-VHDOCK{Hm$+7p)6w^*7Qmn(uj0FhtjE4dhB{W1t5Y;GqnX=8rZ0PLQ> z0I@F%zjB>_Vf|+b9g`Z^V4@-q_C);rw~_LL*e0d61!^U(>Z(x>pu-OqBQ0wQT%tvf zTP&Q1`>+d&P+foge#SyG5FKE z$qHpc{$N39htWlYiF1r#4oBj$(8LdU1D2(nbDHtr>sDO2D1^hdMPh}2B|NK@N8!r) z8Cvr>tHVqqbS(Cqy)$^7cJ%QZ)<;@IXs^dl9Z93~F<17sv4?N-;mxB>CSX;1h(4{jHF0Th5h0|t) zoSs#g-drOE9X`h`e@%K(;E-*SSM|5T4)^MBg$Gez-XGpamt5r@_aG_?IMbmc@sw%3 z3=P1_a;~R?qfrhX@|H(^=SpeOko&$F^Z)h9(Du=SZ=pH|O&Zpg;VRXwju@u#zWVg? z`_Y}AeX^jEfiLJ?YXU6bMCiL6%rwDWfqky@dh zHmXh$u67T9<%hWF*o#KO)toR^8cB>1tR(R@rwZ@Uqd(PFck!-=;DiZ#7{dc z2|RHycNX~!!siHz7LvU@;^EvV3*Lgy6hC)cZ`oFf7fd4L57{Ueuhj5tg0!o^?7RQW z7R&3hR1;)1`*_)mJ|kI_#+-fMS(m~}ceS!Bj9g23_)_aADg$&FMd)!_FBPep)~Y)G zL*gKrNO~-eG=?6PUGPFj3mf&mN-SogP&Xj2X&~_&DjuK>ar8^i?yFOCd91IOlB8wv z=2b$k5T(P-Hb348+;I7Qw;Wt?4UI%1EM5+H80?-(iZjVj&2N!!!mS>+giAZg&Sfz2 z%0iGi_Plzv2IP>?rQEg`lk`$tx#MZ%C~Ulb-Ook5^4nqBF9ly}g~vl%+%WAQ2U1;U zkUJiffoq&}4uN^^4~r*x{e=Tr0ZQQtg`!2^OGChGZ8s5!)p>N(>BDUezBq?04h(t! zA+ZBOWVv)aH$f`QIwLQGXI+M&Q5UkIpkQdDxwGyy7jk+x_MnnF9xa3hc))52nc zosPxO;3E!Ir9hGr1ocK`Ri%@1%KkYDHA9N9X0N}eq~7}9)T_EFaW`F}xcpOv#RLjb zZUn~ga^kGD{pE5?r@3dGZ$~>nV*(^^U2A+dvwi!;lTZQxjb-;oOSWX_86>3L!j+~z z&-pBAIjr^j{CL!Cl;oc`CW=o%TT~sgMy|AqAZ=P3-jZra5$P+PY3|!dfHV@D@9x%> zh~9WIC1Off`j`JD5z%c_5LDR4NY{~y88fA90`~$rjG#$zr(~^*EwzV9pu)cVdkepCr&Tg=y5t%Z6D~E~ll<$pOyxIt zQ*`}aY`Yqm5iVd5rP^saRiV{+iCgA6!B4l_%mc3&2h*iwTo2X!PhYOgQ5~Z$*je*# z%`%8W*rxTjySRd@9s?jwn~IGeD1Cb;w-41VA8+w#9dKJW=5d%FKl5~|M?dz5OjLxz zm=^@o6nHrJw}zsAhUI(4;n)v#{5e<@4GraBYJ_tnj_q39$EBAg~%E zzHJXVaigUDL2%z8{XC@$Nacb*r4~xfkO?h%{c3+xPv1CM(hW4cc}6eKNE9g3aQCM{ zr45Gsx%rXI?+^|yb70uKjeY>Xy7{-Rm2Jas?zQ?_sgdHq2fbaw)4k%4Y=`eEv215D8Ec#Yrcy z*}SA!;+Eo9^F>FooGdJA^*=CnSRCbn)_%LM6s9i~0-{|zw#o=~cIZ#cCnj65Loy^Z z*Nzu>|ESD7s%RyG@I+S}xS1w%E4%qI&v5a>ZUq}5QAJeTLSzJQ!TEik&y8oaW2iJdB-ta{@*Y*Gz->yfa<-J=uHY^6v_J z2%2|hQ_42p;kDD8A{_*@w%=uqY=t-)S9LlQSZmD(#TC|2s*11)n6s&z(A| zc;NHVTynlug^42&aWX;~K586f;Yb)`TI!gd9T8F**<K{$YNM89u5=Viy6S+bCF_ zZ>7bT;+K{!7}c?WPqNSkx|tRf`MLQVu-SsX{mr}AVpK+HFR)s$r~F2_NloBq8p`^S znMe144L83@$2`N$Qy&9FUqw)B1^Y&^K(v%qXD~&rEF-F7rn5InF7B-&EUmhuENcX$ z0b!+>g(jtfYPFa*+nBXLI4V%5NyuY*1f34e39Jf6Kfbb5igg4&gUl@)NaeTaaXV91 zKSSEy(ES;*!fP)H6<^`Txn9|yymse~wg%HAtX0`xRZDa6B>}hWg21j79ww2-m=^fC zyZAFiqFt2*+(k5S&;3n=+w$uB%JKX;q5JCarx|F)ch2)=;(8DHLZ|E#;p_c%p5*ou zsm*L){fxuu+aA?Mg|O*s`Q-5NPe?0}Z82OK`6Z=;UXkmajOVA`&E7Xal+a%DaEh?( zz@oqFX(Z8J`wu)-bU#HAzCd!$^qgieDhBe3A3*X2xI#kaVHGC+LC#=Q1~-%Y$qrIO zf5)8f)66p`4QgZUTriNuwmdTZ^vJr{pA&s6c#oF#^Xn|{j%}eq6lN_*zII977XLVt z{TBsKC7nvogw@HEHM4ZaVp#F-{mUMlOe~|VHg^2$v-xmgLS{(S4MU zpGL616x|E(SiBSeFAs6pOkJryxsWhQ_&unDKM;PovbFvs+Oy}U;S3T2b0D73f!F(E z(v7Ws=dS;&vvh!S4s!|RvT4YWFW3UaR~GW8ieM^*z;bTj}1 zxEJ(Df8N~Ne<_V%{7<)|QinP-A4 zTC7QJR=BVJf=QOwT$|-wK{aiq70ut1`%+Rd&s`&Be-RVTA5xbLxNow@ zNjxCQ!lSs$SB;%%1ws}*FurNiU?MxPq*$8XyGVdzkg5ET+D{n?dH?A*f! zcfP8cH;KM{tc~0}sdGvGhND{b(Ku#8rds4V7MklCYw=MHG;bNCQBVB7UziiKH72lX zC3kZje_r&5@)dH(|K1TyTK@Xeyh@fy(iTG0f{39FN6Xit)me>2^W$Tt+%D$Ho{5$Z zvHMdzkjnXG>|bWB!`-DsxDhoiH3^vcbC;{Gnh*l&QJgABelKM2uUKm?(`!BKV~a^J zpPKNU;z2s`LK7i}B}@Ocqro;Ob}s4@EuH`Ds4P`IO=ebS-9O6s>5>Ux#gZ;HTiH*= zrMQv5>I)Ir=tp*^m@Sj~ujtN>;r*`?^)Yj58X~}t-FRN3;rW)Fnp>ZFcp78i zFgri*-O{RDY%dugnow|+gwZXQCENmx!vgvQ-3K{me3JKc`?y2KxFg0}m`=H} zV~}l}Ni;9aruhf;Y)oJGrH}H>w%FCt5n+LJ7pOskU%V6{J?gaWojU%mP%mq5v`3kF zGuIRlY|jeWeYz92nc;<=T+7p>Eb>7$6U6D;PUjz(Kz*P)(atRTgt^R7=`T;1*V*D| zhV?O7Y*I6Iy3L_|rlLSJHAlaVqy=*l)*-zy4TvRbrC__F+AMws-jX*aE%?n<6CK(i#CaVSNZ2-i3^DN!xpCd!vwy{M=|N8l&E zvebWiMgIaU8`YkZDNZoY;qM;wwJE1i6?WSIqY51zP zVqU9xzbVcg6w)+mw(C%@>Qh8lr0aBj(X;7ku{4>jHffUul2EbZ^0=g9eN|Ag3G1@v zevmJzxPdrI>-E^0QRSxLj33IH^3yqTN30(1vpWEw5Z6rM9+K<>P#t!jwOslX&s%_z zcAAry*el_!k#Bf+m34z@xR|S-wE;;6&R6yef8wnp253@Ge5kCxxAY8lt^YK?regk7 zU@et5YzW8nSTY~-w14+Zx-qNB!R3hVve(r}Z&hUpQf)PS#!^sKzlIuG%R$TE*p=8My&7i!_vo?r1V z0{=HT_#uVSmk#PQgHuHbNZ{%d^efpAZZWqI(6ao&yWo|o|3qHxujY4V`)i7N*P!}( zvclwA=!4n`9`1F7)R{(PejV2RYG%>b)z-LVWNN1NeFRn||};dOnaY?@b|2*7g>-gS-jrt6*O#JKTq5}=H4zwmje&{bBeZNpRp zTDV!b;J~XbKVw}&>~_t5Zy@Y+NdCrLO#)dqX;7%3X@T1Gh(sjYt(wNTwa>PbQ>yNX z#CBM7n58}k`FZT6N9x^Hp^%VhAT0Q-&sD-)GDFPj*TiFB>9k_G8WE-RtQ zXRvJCLhoi7IWmQL;X>5eyXid0xfjXaXw=CpPsxNZjnr%S&2k*98LPw0h(eNKF&gFs z)=R9Bj3I@j5jEq+0t&Hp%=M$q=P1v4p*wIMsol%jV^E3asaJzjObLC*Tza<>)YXhuxPg{Y(*nt#g0BuJ^;+vl+#@ZOV~ zQ~DkCDEup1nBHg7@`ujJ)T#BKgQIGKZ1|KF0#jd+ZLIodWUoEOrs zDU|^^KX1<;2X$Mx(4$W(=nhx*z~?l&^3G1FY)sW;mSa?|(slaxUqHZ6?WD>S&q7fxmEWTevD`n`X-Q={Fe$=b=h6 zZe_IGZh~5!o$~AC2|)@G&u*ra6n44cd(Xn98To9q%v{@u}c1 z3m5Euns>81c_P3y*KMHEQd{!G+&j>IPY9bc-Bthlrtz*s(AM0QjDRf3`GbQ96581u zE;u=uX-t2KS297?5z@TRocp{QuK8P8lT9&h^H5<@9A2{aG6ymrgOe>B_hW1@GPC$O zOc@9+4+PR3NuZPZ0q4E5hfW13-9aOVj4FWvQaRv0r=9H1|mXvnr` z#F!o0HUhYjRbD^#WGid9)Advo@$v+ToGZ0aXJk+3R{LREUN5Iv_v`dIXY6O1!Am}8 zqq5|dit`&${A8K|D7@jMctm%z^KK{8Inr+wZdAROV}$1(7HEP*|pG63@YckMMw`wdZX81s_#*z=iB`o5!GYo z%#c%9=&Vve8YV=afA^HKnLSkc=araTdlzlOWv8m$35tVH{3XcbZGCXzbyB#1Ox174 zOuvdFYIY7FV#=L(MDvxQpiJ@p>lCUAEbxr`4Uf@x^O6U-YLit?sNThShyQwSozwgnOx{*l1uSzTNiF*%l6PQH4MLYdm}0N0$DCp5!} z7?ix$#|>GchTrpgwKQG(ufb5$Q|E783S z8AA80>LNNdR#nVail6pRyLmgGW@;}ze02QjgZ;?>{xzsB;hkw@^!iELGDRMa{QCPo zHhs|^-@ zaHDeg_Dcv(xvZ}_W4jDyrVvhr#!;K9o(t_~h8SYDETC6n4K@%=lJvx%9>2NiJ{$c< zAU;){Tp`X$AH1k-KWDbKMz~ITU)D0G7QW{?1^x}g0EmW1V_xP^nXK$YAEUu;{COq) zw=U0OZQCc~F6wXLqKEvx_^Wr>s|LgnFkUjfRRiznD`fwqZycRute)Z5ar^H6zMAH1 z4wOyboIlFbKF^i9l^g1y;o;`HFFAzGqiv(z72bCus(p$~updFo)DnuhLP$SLYkHP9 z-Pv}vK&v&Xg{g8>W-X}rddjy#McT>Z|9hcdAMy(sF(J97kR|Hg>UinE%1T~xUh0@Wr7c%IEF|h`v>wM?;KQHP#BBZ zc}@rM{#?Oi=m-r)EQ?}vFtjolu8kvt0_XroD#q6f_BqX8zBcwQ zhW4Xum{POk-&WGyUYg>=Gq1jkp@iy2h=Yop&Bx?oO9wtR*aCSv$4wXUr!c|iu#Gh; zfM3%b4Q34@M4Wlsuk^{c?Q%+Vd2gg5F%$Ju<6@5&%dw0LUaHY(20)FsIjDka z*F97fTBK0AjJ|?y!&8yk{)N+d%P5lQQ}H?P8)~-v_M_H*hiEc6J@nsPxjSEUKk6Fa z=*u@qo5hHP+}0kMZJyZuHw=qSF0m=6Ny|gJEK!L7j_8IX=KYS|FRP%`CfN0cE9mrr z*VeIspp6>~a{O!W8!BTUFvl4HU6#NboCnG{6hyrhX5L6M^6+Q-#BzZ^q2a&R4kk;? zmA>i|6VMRPd&r7P+%R9oXJUqq@?ZC_8Ld!-g?6bX_{rrY@MmN-hqj;K=kj{>DjY^n ziw+GXLA@3rfUNb(qkGBZiyIeOt5vpdCXU`&N+XX5wG6=TG)ITX zD+(3aLK+!7b1^2y8ss8F3|ya2*dUP;|JlK-HEUwbTL;VH1#fE!<{bnS%b|_ z++;=O?3sR$v(WX?N|+uplN^|Oj*ndh7C-uxm4Gd4$wu13+V zrr?+~!aZ_W;>N@2HIlEDFWZh7_YB#jpNurps}_cM4cO-k+2YorClyBS_D) zqP0DK4`h%jV^K%`rFKvt^^5g*k} zaYL9%hD;;jQis;j{ipseO9BJB)zb8K-rZ6rN}s=bq}Wvcj%O;rG}|mXhbk;RSdDi)*4EwG&$h>&s`Zv> zjxDzQw06TU34tZidvkVw#H_HgJ(R)Yc85qF%FcxQ2URS%XIR^uC7^ z=LRzo`F!>_;nQDKp(leu4wa+U=g6kGr_>Yy#mOqX?=V_BiB*00nxAGn%&#DGVbtW?l+?gb8_}> z*dG>`)3$hRho2WUUXEkCOmX~g*Vw!s=Sp=E4~#GyuZ1Hs%j2-u^|QDy+!?zW+AWR7 z3G<@(e&sKX!Z>F?|7EDh5cQoNJUP>BwO+g`ZKgrwukb5in+e4(&+-T;sE%O&0+YKyU@6K2~#ME+*sZssSSFc6rv1PsC2GhDL z(W}kl)>VGO^QYkn|9bPl!1QVN+-YhaV?f=um7e1l*h7l(_N648v&$Zn z01PEX+rq7^Z24P0bt1K)-#xmG^rhxACCZoz3(^fZ%faXC+{ z2mir2Yz7s>fg8VW{|5p={l59mOvcfSh9wDj=;MBcC6e=VNMaJHGw3v7c34enr;x-xF8;?6B96u@>lmu1iIPtheR-@ck18Pc3A27XIrWhSYPEMv&bh)?)$5u! z3}q5VoNe^Y?AF=s+)mcDO7<{v{f$CidToCJLp1#Q;t%~Q6x^Sz(E{#3pt%4|20#rM zGaIhZWa2AL*>zoBky)N`C9lop-8&KQ8JQD%r;fo@a^-MhpAv@SKt?W+96Ga$>JKka z8NkyW)C@fm90}Ce9)UVBz1|}-$1CwUqAdR&1NQ}ZQ%TUj=s`~bcVKWd-T$M}O6?AV1Mn1oIIjQDSI=Rfi&7Ev&zm>1qKero zE;4^P&scqlx#n{F%8N|@n_b87>>~uOVyHVNmrL&B61oMrJkpIJ0I60=6D__*4hoi- z-*AYkJzF*yl3G4LBL5FV?N0Mb!n=m&oXly|=wCkNfX4oGe$%43d`}q6WaObAZOH`p zLsf}2!)0Ynu7JFga4U|~tvG>qORNm5VUxS~8Rddu4JRZCf1pw+dx28vit7vsS)jq6XZ97HDq7Pm#VU{q3w{q&dlkm?T`o<@vY(Ydp;Asq{2l}YJ zT%E7xJ`1>)Hgzsb$a9YY&-#(sdz=AwcZ6}g{}BnxQ#wD65LCoxcF=qdB8&Cj@54Bv zJtE;X7d;RT(($cl+`XWU$jc}g4l)i8ega>HB*3{1J_(pbX&i~T`=|Xyb7HWb@P~L; zmI3n1IdL1$i z@4dmI&?u)nO^Uuj2<~vJ>cZKE!>xU%@+sGv<*#m~iN^^A_a|!#pM&KgDEw#J!F;MXr$r>yH$bw6S<_eI>nAV}k1|0cv;n8jS|QS;Yvr zKW)VQkwy)eK-x0#AxfS>@t;WXpZYuL`6)KS=_P0qbjv|jOa1)@z`Z)~?}UsSNm$NL z=NJIo0ks2Let~fyr?0L@PGW0S?C!9fVXIkjyKUg=m6qFF2<~l7)Fdhl2EuNrk0I)* zEXB5ynE7Ej&onChtVVE+Dp{B?V&iWu2{$ha>pf!Q)9o2jel}ZlsAA!P^dp%KjvUU| zV}HIgL}5@C#x!GkIma%Q&pX#Iw~G&k=P$n7N2YYHz0}E(4eTov0}AWs$OWJ@dKpXL z%z@|V%Yid>iz!)ms4%UvtG-WJ(=D%l8P?pd*pu1U#(L6R(PZY`;{!#1R7jCD|fSq{r&_Uax&jvHke*41f9Poc7i*+); zJ*QJ$*DV|I^H*n}ws@VQB2@#`qcys~{k}lUW3t+`2D40K7OBj{e#!Q8xcQ;k&*csI zoL24@kMTHovxGRnk{Gx$BNC3oYBt*}Z{FPi)usWInGmW1~Til|c*qzIXv}2h>hKnx>+~ zFaW#5HB+ZU3z|;x`?Bv!3g_->y5AIP@cr$xXwccl@o@&&4cRyYqBfj+dT;v!7gC}C*~u+TK@uKgKY&=>-0TN8snHv~3X8O`+Q zA|WW(!VC4MdZF_SU#g9|Q8oKO<}KIzj$zC6xIv=1b=@Y@GlIg;{4mW{lS#4^KE4?<&lSeF7rw*`)>QSjG7K) zA_ts)4XfHq($KK%GyjY3@wn%^c>%a5SH@QG%4%9YBe0%{xVhma^J8!ePqpR|IcM)w zeHWUa&}pyD!tBCw%4^#eB$Mev_O2w{+RUNWu7O)MtgE?=uAv1RYqW#)jk_AfU6gj; zm?n%yTX+q>B7;M3r@F^AV-awlf39C_We4mobidKrO77ZlrHdnDg_Vj1n%caMR4zXZ z@`J>gdCr$GJ}DLRLbFyME5Fq&y3xSDUjGsdq;s)`Csh7AALC(lvn8t&vKK@ag3j28 zEInkfLOvY>kUHu0eANELlwpFfJOR6VJ}Fsbcs?HMio`i}-aE)G;7EDIP4PJMN-qCl zXIjwJ=G!mtLOg6&>-c#TiB-YfeW_ats(o+gft&4l4IBvW1GMjpB;fx#9_Mrc^;oSq z?UiNYk(SvC8jwSa*rwcIVz)1 zq~j?}e5FB#Oht9N$Dq`X>S;pW6~U+=S`(aLEzwv8CEAs7S#B{!FWrX$JT^en?-HIB zbE|4ds^=<90)e6Ul-9V21s`Jn#*D`*cd+C-hzapzr&RdEhhJj<1+u z-!u38ofm?YHE6T5%D>)MxTgt@Vw&KB zzE+vmaw@OIGdvq`!wU~FLaInETXwwam!#TsxxF#7cupMQr=wNtPuHwFUhWA&1P|D5 z&FSiOC(7oYXcucZn<6kC$%LPeRjoT+z4mCCM^gEUV-+h-R1G) z5Ig{>+)Ft_Zg0peo*zH*=+9`Nzv>=a;&JeH9g{E7S|w`uis|KnyYu$x<;s4F%CksKwk!r0>v=kIFfL(acFc_` zq#RzK9FJF}&Jc8>Xu(tFX+RYI1=J$&$Mc-pGuRVT2GpKXzVbxn&xhbW^5pvq>;UeO z701c}nlC+Cx%N~wuyv=aenHS5+y%%@QN0G<6puJlkhn)&sb_fl?Ft4`Jg;8H;o$R~ zLhy%HedbKDe+f?v{x8dJ|RBKBu zCjAtbyNs`(*jFuejm?S^5c!8wX!L9#H~I0)5f6|5>SIH%1S*i>!e%8fhD z!!W%s(d8Y~e9w67lGxmnc`d^#3s+_kA!`em;7I$ZtgZ;Sm+f~aJ|!IFBMgH3@oa5( zEY;6PSk`F`0NeX(Q*tb-nNgW5*&Pxmj>y^B}fDE9L4$b|XEIwt3R? zI_;1Hr&sTuEumG~Ek?&n35Qx(%8XW_0*NZ~ECPK+jnRTkkG5VT&{rnrA(JUbR-31r zgFAD27&5bxFYYnhEAJF8JVU(OsT4}JM$z!Tvv`-p+M`6dO0QShwN=#uxr)6utaRlK zdKKTm7aQ%$!4(%-HoK-EW+an)RzR@l}3bA0KBoSt?^$|ied`U`?PpgQl^ z!cE7Dn!1FJ5f;!^!|5C^soKMrRW`f9Y|)r(?QGfhb2#s~Lhqz!9x6&ExJH-l%pd5~ z7-Tvl8CUaV1dMaL@3~dl?3U76!srP~!LLs1%5LnuS~=9l zSM@E zEfxb0iVUbbGUhmt!wDWHo`6}B##M;B7awXaW*hA$qd;j8tE5McmoAJa1QhmnNWe#n zeRyD13dRw3>ArzJ1L!NRPRcJOvV>|F^FR-p^;bP`Xp)>N973Y2TDoX`R~m$H0uAU& zG03ZqRUIhqA9&Ks5>#(SqZiyA0w4k!WzaOM^=82CN`t+yxfd=v9bNcR*d6o%eoibn zn$z4X&;ra7sbQpc&~PKr?#u%!RL?F@ZvaRb-~?;P?rf-tjAr9#SzF){a!_ea+=^!3Nh9F(srDANS|q72I$m?u|2>JNVajbFgBFTO@zvW{}_ zkjd82v+n<;oj55cUGEK_N(q=w-Tu#^mLb`#Z(CP?&Fj*rbH1P)%FuSj(N<0ECzOcq z{7eo#Y7}4Vzm%t7_d=B*R?p>0E05uwB(u>v6unS2pAumN)kd@m8Zmt>>%_!*0CEyxY)q zEU%All3%?&Fl-X;iOl;VrG+pgZ)oW~nonz0+p9|IQz^o%9GG&s#$F4+>-oVQ05s?W zN2b+~1|&R%aad^pw-~t5kQbxQ()gW19yeA{o=Rjf?{=;-IitZV3a;EaA~TOS7{+m4 zWXYV!5{IWdFc>Z~x)f}I>+d8(E_98D5eyf`Ku06*c+3y+wb#hJyLk=s4;Igc>(PQv z6p~0ZW_}a|KE%tY)CIv!IJYtpH$Mt|RWc_E3Fw)GTMz?7KzhVtz)|KzV}HfUrx|Qg zqKeiWDlBg8XUmLy1zZ>02*CYyH7DTW!Oo|_0$NL{&UO_~Uzbwo8ddmU1qSEqeWE@I z({sIuj#t=mHw)*cREHLH-KpeFLZHG#j zsg=E_Z`AEB?Y&*rzVB?ATRhhLOv~xA-rF@jG3W6M;y}s`N!ae|MGS)6j=fd%T|(9F zoQ^wn{dWr*7dqG-6l_ZM-rG%U6U(+2_1vxPyH-jKI7xsm?BMbx5jNbSAHP%U8Ud~p z-YWsK=-MEM)8TWdxr8(jaTfc@uKX_#6uTzkU5+&8cknKxmCx|SWE<^-8^3WF1L=4~ z=Iy&&QPa-nDvW%&QK2&-F$Pc&K{ZmN9o&IHwFPw-G^SdkMXEN-bk<5bXZOXj1hT8S0sj)8n_kn^C(^?;CRHZz{Bw?6IuDKt)pN^gwL5|%!QQ6Y#F6WB8oE~`<-5he zXwVPU!)G<<)E=IT# zPeF4Y=gb1q>hFbe{!r+r110&QyNgLl=dAn+PTnzo;bHcr6^zIbS$B5d?n(4aim_r< z>)QY5yi+JI-9m{xW)z*Fulz4+@*YY3t^U}5P_|8@?fzEKDdoicZ{mhObz{1f8DCKW zxOYa=R{VXiu2Pb*cHN$Vfm5m_S$Uhu38ztZ}4Je&s9Rl;p-JYr*pcx89zm0y<&@J##6aU z_PPk{#{Aw28aormYBy?fiU)^8JuAXW=A5V0_lOB?{Wq$6QwzzVndEE|@99iW(7SjL4?GJ~t&D@+2VQK?7Xi^9lG&Z2lJLOe9>db34=yfo_*YHn39Ttm}g z+=5p$UnQB~l~TFmHgV6z>cua0GUZbZ2E~uc3p|6ZX7Z4QmW|Ly6bYgB+HesLky-6V ziv_fnBDD!zT+sR4cCyqZBG1Y0$pp8=%BThowS#xNlFhT*3)4zA74)~Ugt=vWwo(v# z61VsyxnMwA+0dOkq?WWX;8=Tdbz+@lSTua6K`4+)N*nr$+U3pl%`P$3C)!2yw!z!A zl0I(tri8NadLFf%d#j4Wx7!PDmaa?h%xmqxSj?#Gm!G+UbxnZ%qIt*2O>A~#MjxNg zKU&m?m+svVj^uw&V#Ox@Kur?nY@8|>Y{pBV*uQt z5T6;x>Z+h+0k=1uEf2e1wcucu_itY|J+qa&#}qG#%BW`WhNODHKrkE!Ton~G+o0`6 zxgFJu3v~NHH3AjMgsiR#suoXStn1+a5({14U+nP@sXa7n|K$o2OUjWOhZRO-Z2^k~ zF1tCZJDLu#qFs%s+3?}-0{51D&Y6Xz)jx_9+@XViXO-j%uDcR~wd`dRb3?|Ng1;3l&CQ3f29czN#j9=~~Kx6qB9WyZ+y3r_L+L*LuPxQ39q@LcU-% z3@CCIwt9Zd?v$x=zn~l|*7J{0mwv&eF%`K>oZy~%Q(nE3zUgh^{%F1AYFA{MdiZj8 z>~azIQ2WkLX#2hsi|neqUy%G}jL7^GZ5AnDT4kuGNyxGp^`ML#W%Xi$_00wco*h0~ zB9*C=uS&R6zaT8r=b7C+7A4_5jy7Clh>DBqz6mVPGuSKdmhP+&_t0ssJMsf71f{uz zMd$i^RotNPoR1H;mJAr|CeHFmLR_1)1yemSs)eLh=N1gI#l5S;OXnVItKi6U(kng* zDmmRQJ9DG@0$o&CSod{cdAqemwUxyXYaXL(mF68)&aPLD_HBzCNr#AFTL_3 z90?x-*7X#IfuqOaTTOY$Pn0z((%!)YP(tA$Cb2@3u6{;5&f)rMO7h1%PL7+1Ai!`eeau$T=fEqZWPCnT{ z?-bPYg!H<8v6dq@2$Tku-fT1hSOdT|>IYs5 zx7zj}GwB!_9oWDX+*m~MpMvG!2RGMi~@1- z+ev~;d_`29BfPYs7%#A!dFu{hgR{ACg%*icXt&eJJcWj}HWC9+#`RXO&{07B443HA z<##%}kd#4kE!joS2<`xs-J%OU!){kHp#K0*Zjfk<;D!RX6{MP1Rr!&mZC0bj26_k* zwMnElH}?pa#bvuj6}&jRCt>GAV!TFde7fNmM!xu5-p3heQhwZh^K2n;0ESS5O^QNi zGJz)L4K*mRypi@yhpdSqQk#aPhRay$?A>V|@wlI_(aR{Ds8rndq4~+3c1%uraxGje z>6?T3`^i>n5q@nBmqMj1ioklrmi{Ze)H4b1o>HAu$-z`K&rhNCNZ8xra9i>?Br3)A z486O(&+imrK^*2vmn9$HR@62WiKLv;Z7<0#OQ{!NF-?n)R{opof%OFJk&JhVE89a5fsJBjd+-U2r(?wZP;&`oDCJtk>?jQMiBG^S zy-KU3bE41VzCT#B1Siu|+h)h$UBYu$Cg#?63fM9uSEd(3XI--qR&OVbphESq#uB&# z0icFsAr>3xl0uhvqdm8wXK74^d+ak!SB3XsBHkk+E8%WEUug!^E>s&;;6Aa~0JfvF zj_Rcg)>w;8?+A{hGRpL}Lm3V35n0a|{R8X+>h|KO^o-hWsm{hlh8s0{7^xlH2xFqg z0u%rsWDs)-S5II(FSrA|-u3}$^GDR6spKsmkhe{v22Ueze489NgW~%has9jGZBwa! z;E%r$H@rpiolFg!OxpYbjNTYDjlAivU^{8^hZO%0h~XE^ii@{1-?Hrsg+=8Zd#l@dJwA2c)f&;Ld>)NgF?a!6>)9 z3${>v-zRPO3p_N~Cur7l`M84)Ox>2rttYqH%{r@5=jhw~e%)&x;d>sL)~wLm2$aE< z@tJNhrO#B^k_q03YxR#2B|nA(ScJaRF3}}FgqQpPSUeHN!gG%;ogEIoEm;tYnGG-$ zdTe86hZp}CSu!WQcy2UiP9)YFi5lsXfSrpZH9HyyJqkvo{0v@>K1l?R=)7I2_)fkW zG}prlgFRB%CeM6d*68G>s#V!4yRC#i}L<5&AF@YQPO@~keR~0;n4KPrW!{y!D)FbpfaP!CL zveXV?T_tr@9J$MGFS&);UBxHSJN@EF^+xrr3%F&eT|}wi$XSAC7Tc~J-kpS7m|UG) z%_UT~EI33TkaL6Maa;4bG$z$Ewy97oExFsc`eb*HNpSFR)#*-AZ8>>m9J$ACFTRD{ zRVnK2>DzgzCR=6)T>>~Q0lLbNs`~~nP_%Y-r%Nnm!|nE#?%|k=W#CEycHi3|A0&}n z_Z7~L!Mev`7GGx%^EwwDYA&VoF6T6^I1b}7El7zpRas_G@s9(sNcN4&FuEKZ? zPy0DO*FEkjI0fpnYjn}tq`V3mSD>~a>nj|J{Bb1#Vs ziTObb`R&Kw8ttJi(1IqB4n`;_u`n1svSmc#0L{BHi$&LFQ?@yxxj)Ll{v)7aXpO%p}KU5JS$CxyIwXkJatJ zONz@P?>krFmVomotJge>z^bJFWRZ266kD zswL0N?w}5M#TIQmQdB|b@)VHTWg4Sno(#NCM?s^4w3b%KbXAGkC{&rLESdkYLXVSm zCB15yR?^h2xO};2!STi$OqJ4Lswt>i5QlS3AOz*JhqNY@PIUBmIh?MVQWaX*bFHw! z^$-!?-tC)!-*BfpzlOLpve^52Ct0YIsBi*Uv=%*`?Agz5ru99bD2 zt}!`^gXp0eM?&5}|JvIWs7%GpeXEiS-C_zK_vYO@iQp2M7kn1i(kJFCOv7?L^gu!bdcToN@H3%{ioPGkGPWOn6CoB{X{#@psJ$@ zd-?M6npTgP%KgMOi zuXifyvj{dANNee+z+$zfdsvl{Uhi@+^SjW(dC?fxMEG{X#Sy3{4)5q;0(zbcgZW_G z98(4EMekXZgmXskNx-_q!GiKhz|M;Tzb%C>=HO!@ZUIcHbY3*FB?<2q15`QxV|gdw=0}x&xhr#7N^x#|H|RTYWd_hc zaV*gO`l~mpF{&{M?m&4B4?tgP`w&Csu?np1lb)_KZ(Xt!{h~?#kxl3J^o? zk5R(VU@%Ilv%-$48VjEttlebQIQrMQ@nNm z(J%42`AvPukTAd+liCsN%W+n(z4F5&-a|<>((#t+tXLvz?V&=~$Y*wWM@HO57Rk=A z!gY7L%BY=d&e8|8S~87`?+^(T`s=qVx87!E5!t0=naCuJJ=t)FF?{WI<=5erMN&I9 z9e1E!u9i!&ErV2pUDa6o(_Kyvt9yN9@q%ZgcF?5EJ#hD2F^R^8Q&FMck=_D>X*vc1 zoaZ`P1abrj7WS9mls2UDMs%SRIg8*R}p!$4m?mFeDuQj5)qjfvD6-c z20UVgO2>312emts8bfjnlY;*bHx}a7e)ueI?$m7`P!C5*OAfa0nMK()of)@dxcX9W z*kjloPWswbkua(aa%MLt)tz_^3)&OdEL??8NMZV#>@3?s_ zHZACQt6|5xp;NHyLfL|_oM&Qp0Pd$c#p=OT2TQl4cj3w18`3(&EOt~TDJq?~`$El6 z=UT6K2r6*2@U*^OtL)^BmOK(S@e*Nncz%3`y)2s$Q75LfF!$Xd9=y@yf3j>{CY#nl z|0NpdJ>o!*uyU_>%$z;9ZdJCkBs#9b2z^BLX2Yuq%k#1XG6k}SJm0Mw@wzc_6%#_$fe4t(wPA0BeQVOI|bDn5NM%6Lk-^) z=}cnK+mz~3OUU2tya{K#9V&N^!z|dFRzc$qN|Ch%;9FEPvZgy|+?^?mEy3FioU_$z zl5%sr|NZIU9yFB{yjXz0HhA8Ryz$R%tNuibiINZ0v7+7~Z+?%s{?Ej9e{l9H%-s!wvXVbI}o&S-z`ZG3b*dnX$-S932?Bn+#@{|7}Zb4Q{-S!b_!=GAy zn#mQ~6_?*7ZJk2i{1!;CZNqzTN~_;{q|KmvFr6AS6S~a=&!B?89R|02)V6e$%5Jyt zuXSyBo3z25H#8u>>C%3+TF*b*vHESwsdFmA9>%U2$cuu9&g-7hLq4uv_dfkvxZS9> zyu6vIkCX#=LGuXEM~Xx?Z0Z!cAH3-jT?}yZ86Bfvk9j8%e%zlCcD)k5Wpb>qq%-NE z0|C1l(m>_S(==-;C}uTF<6aQeZ2Zoml#`A|4l%3t=*2hjoV)%9q3?s?<|OJ zH69DF2?ewfjhX$?y z_poN?1;U(tcfFrs&c>**a<`aLa20M=whu`SY^febYS%kaWURLAsNS5$Jh%hFzABvl zkBo&NP6$IX!_w%xZczn3ky%-_U3`@VG*}WfG7AR@9|MOPP@#H50*@llV8a!f3}%VS zB+^(4ntQw=vs@$de~P@@HLQUSUC3KhP-8*G9_uw0(xc66)ySLTmo;vg_(X4+SycZ? zomXN6MG4H!|IvYG!=Eerl#G)8{eNO)R5}t=6}XT$e@H&KTP}v72<>*J;KCL4&`s8n zmE=vEj;!THEW47MyC?@voNG$v$ zwFjx2))qp|KlfFgpvqw{w?|N})7`jKuppJ*0#~0ma7Fflw8F2F>r#`Xv z%)wSVZFvmt34Ss@$z|@*`GKcP+xjKLN(*0ZkR#((h~E)RX{-pk%{XFn!9|*kLbc@v zf$kQX?iv3~(d6E&fveyWU9j~?ep8P~08m7(m#7^B?Z~Y;%BnZ2F`@AQ?m!R>koTC# zbQT!pyMYS&qBg+7^E7r&S(bEj*hdV8V!OCHnOIe)@YV$O$xoWh{WA_wFyxB zuoAw@hReA-R?b7@{MpzPJOQi4Zq#zB)A4IQd{Q*`;29ME?*;6pKvrgPo$3OOUi^m+P-N1|e=TLpU$%S|0$f((@m5rq^kiC%eOb7^3J6 zS>G`IKl$z%xJ9n zFi%L<5El*@CrV+oXVrGDO(}4Th3_#&oZYXMgqs(I^-h8D@?B!#bjigD*x3=qKSY$w zhchhUT*e>6i+_kJogY!^nn3VLz|D_@u{h^MmMlzw@gH4bXil&L)(4qtx!{S^4r50~ z=EdErW^$D94Tb_n8+61i0hxE6%-9jgG03?Qahn0pcahps*wnZ7P=RMmAt2)s=RSJO zI}zs|mA5yQFd&6%hr#)E$Z(9~Dva%B9o3uDI01Kuz1dkZKt%|`5IE7gdk@vy`bB^j4MLScsk1nPX+k;AVr&VvA{Nj*+BAsYmrQT1>)?l8t#k>?ewI+DuixBa zioyMLJhz1{Gje1Gp~3{N0_Z&78;)_F7b;ZGt8oSHK%ij)%mcVbqBdQq=GONDXt(N- z25W2%G@u&SGRtq5^bf+nY{LVB7LLZb80WYXd`wwPCOMyWX>ZS}%5FVf2YPD(ze6%5FV z!v?QhQOk-u1AK(idN|^~f1{+Mf_L<*R-b>0Ep~p&*X+7FQJPDe_bi^+F1_$!S9YVO zKA5!lzcDYItLh~zQR!4I6Nkhf2#=Mj8^Fp)tT`q6x5e>uWghn}B>HYp&CTE^U ztw07rVZyoQMhlEetTvMeB%#+T7lh_4a;&fPW~|&Jw)m&m+}oAye5HjeGl*0MK)NP4 z6?JR_qa*Vm_ki7zGB-&y<}SYaWM0eceRsU!yQ9%EV|7tVnM-8B=Hn&#jlF|XxHhc> zUIo~90@d4bCeE`$h3fe=-oPE)4xo7g|I-?+SL^s~EG5`@@4XaytDqWXGICcRDA`Sh zj@q=k_Dd}yjbr=x6S(~>X1iI>uDDgPaUwN%#t5RlXS1k&)4HxF35uhcTPF6k4B2FC zgIaAIsvZb?zq7Q~EEO6gdP&X?w5?NU$#HV_fKkTN>pB#KdPVj2j&nElj8pV&?h+$o zV8c7)ZL>Nv?&?JnlhUrlyV15zWS&2)6lhGMZqPweT>LXB+)vmevZ!QsRa<|;->Kot z`;xz>Yww$oxfzDn{_fD>8sJK1uk6p_z&4jZChBD>ora?!yIWobN@)NK*~+3G21R zsy8D(NGemWKz%5y$t^t7JMpn`zF(!4FO1CJa-sx790aAxSLned)*6uYl^od}`vT_x zPR4A7<8cZY<=w=V8tztict>VEUu6APW}pweAS^536sEaXJR~*nkdUUxdn7<2Zx>XfPX^A`GhH_^O;=s=k8DUPJSKS|h3a=|9D=(;Mzi&L1E1yucT}iGrS$A=7yJ9f?9@g{ zFR}YNQLG0f!0p(0yw_s4)5|Hxs)gfb3?BBLEk?W5)RT9zX7dz;ZXd($e(zFGomMv- z?$`_Hd>Rss5imF4=6mrO9pl*mqXC-3E#O;#=>Vp|7Vz&ZxW6MQ80FpZ6L_p&KRUL+ zJ@2RR=*)~T=OG*)e@%Qk#n*#Zd4Y9w9>ss!BheoYw{M4Z1O5wVm50%5qHBhSFNd%9G?8MtOY`KvuHwf-6{s3`t z{PH3=IkVXc>JNZpvBtuZ=pwFFEDXzj+yd&a)WC)Ih%5C9yOZD4C)QdyQiI45dDA&z z37O}E3f0RH3ht;-y*cUFz8416c2i9w;|jL>E*SxLCh3<-=;9^m=r~o+lf70i=vOE> z;$*eh4LY-As4;QX69(OZ!GP;qCq6kK`Y1EN?jJp2mF0`D%jm8iQp2Ezu|Cx2TzGOwHx4&umKbV;=eP- z`4Z$G5E@{2z>!kK{kog4-g2bCHLAepRdOV_QXX-brSW-}F(jeZ3aDMAGOG0VCio(9 zW^vpJoEWG%7OPEmvdUMjTx1R4e+3o%PgJGv?&Xc4D@HFb9uf97BzGSs9j@Jw; z$5X2hqeAHICN1FCvaPe|!H;n%8GjZ$t6}R@^63B*zssT$+l)HLD4erc-kd-dKu%z! z4!D@VQLM4x$%DQpOFg2Wc`^TIGw(#4S5)4?s}=2B6;ELlD2+;;$zX(m1OR`H54Hhk z0j??%l^D8Ti`1rGktX6swRcRu*Q;@x0oTYix^UCc;_SK}vCih;MXkZ?j3497*LW5< zOCZ4RFtWZ5vb(})&#dj*e7wXZ64c?5CH5-JD*@{hlOJ`nme?=hA~7Eo&^^YAgr5d- zW)&5xmn9V3QK5Qs(y~^b=uyKzebra`NZg~_R1mCxN7#ngUn*G z8q{`;xF%|8i{F$d#dIG>MhTo&5&X5drO2)nT6GFIPj}S#9Xrs%WVQm-kZH^^ou#c; z6n3q0-oeb5#XX+!*d=kfrwZD71RAa!29kF;wFBN7XIul%=U&Ksr4CM=>=SBIOUO&( z^E~3QFL&ysPcmVCc<%P|genFPF4=Z3M!2I?|2Vh^&lSG3xfkkGZ4hg%^&P`|FO@9_ z%k_D+5q`=&;xUV&vaS*69Xu6ZVH7G&;JS~SB{)!xPNCqA3e}sF)zHJ&Ap~cYN!1*s z$w6~ExvaHE)G5{@3oDK<0je<>?0U7bqoHucyR^rKml;2X1e2LYIltX5=UN@Z?SR@x z(*qsk<^E8yTx*u7E!}+eiM-|?_uTRRz1&mo5r_RbHaoMnyHBL$!6o-i8ok+U0c7)f zL+ZRnfvXG74)ldoFzlw8Ez=jZ^e>6dbc-#0DeMk9R6faN3&XNPuT@c5au_3AX_V_s zde9eg_-6beaS=wFL8e?wwb1XYouf#++u$CN<^77HydSD?i!O9Oc&CEKWl3PXe38ni z*1@R-fZE4z?MC(Hg@QXORH$C3Y<8>JX3*I6iXq%(+^TozA&;G??G`gYD`#PhCLxhJ?8s2DNvtuk<%XN(%-MTxdB$U3VCWtEWKl}FOLVbU z*sbPX(U8o@R~RK4qtvD@|mU%;VrKx0ewz-#fX? zHT3SGtmZ+99#FeL37y)Jp?2u_J()*7QlqBcu))-uY_>ZCl+ zxZ>xHj^dL<@QBV^lawRU+PMm&Kw(s9&5pJ3fc^+%0~s1ddAI3IFzgB7NQKe9`AEK3 zRNf1}#{k_S_gKv0$h(CtePXSRC)Z0<04i7r0G^E|=r$u!8>L!HCttNZ zCc`DF@TDxU3NC?X0@gD;>v(SSpv=gT8iXpNQfoFKiz~sGX{b=WVxi!U3e}qwS7vDE zX?g_O@($VMS{{|7?i$ttQya!hG?|A40R!Tp-lmosxShnqYa6ysdfZZ@W7p^*vq;;f z5duC_(#ouoL90?=GiV{ljqXP~;2wYrGBO2qYcJ=p+vx<(bO zPRecW5e}=(fZC;MBOK+0lOX?iCHr_mc83e7TeSwWR0E3LI4Cg$oi6o`&GUNxVt>#U zrIdqC?DB-XJ5?PVnF+MsLZtz|?r`)-oySLo>eUJbcT}j}q;L%B>_a5))3n8BXg{5! z`<$k^pP+8K)&ZUe&OOGRpbr5g4U0{$wrixyj=K6#m&WnN?z4#gQ))uKsW>FzZ<&8@k7qtVk-jMxghLbzHeoqBeqF zsOgVQHlW91Fk6%`$~$ye+peK*@VX=kK~eAofc*Nazx|&a5{=zbjC# z@SZ~TfZ)(KsKd@_8}M}pM`k!x(7G%U7W;^@eMVc9T;>v0oOC01XOgy;(cASuf zX;ExP^*V)uJ1SIfSljRREWf~5bGaSZ>PyUJsf-+=(D~hX6?n>lC!Nz_MkJ$_H$^Y1 z**uj2{oO|p@YpkY$gCFM$u&E^WtXN}_?=c6$Es7>%trgz@ecvl2cQqcO_NojgSg3+ z8%`IrxrJwX#$z7qE_|rmExK@3QUQj@8j>2IQ#)Mj9a&!q(xo%;KcF0B2mLqn7OBQK ztT5rpLo1W=-JdP&rdI;aCnhH)tBJu?^5jP7o1r%wOmHeHWOkGpA0<#MRv26#c9~Rq zvsi8Bz*)k5YYr8eh{Oo;q4`((K2PAx@dDyWE0TR#DaSfbDMTP3s3k7#n zsNS#|`V`)$X#m*)xUam(Tz{nl8T1_Qf{!|@)nu?~Wj3Wi+uugJunV{PedZXCGs6g( z)v$GP<*pyZ&H0epB^;|-;&5#T?B+c8u^@DcqA-KWX__=;#ld^EYetr{UYBJB`)E)iw{+d zD9i`VGlAe8k#Vzv*)7oU6p-50db0`o9YH60=K)YXN=OBUulGQ)!$oa1W`WAo+9UEm zS?Us=18VGuqJE5(gU;&QeYY-QXuU!mT$omYIJKLQ*BxW(rbabBgn~ONRBu=+o#kL| z|FTpDV0WK0w0!b-A8vn8R3-bsU*ds5C&Qc9YEvupK0Ujz>BL3jzt5Z*i>jIVjPEUak6Z?;Y>tM~u6J z5_XFz{c+dTS|)!;V&KUQV#j)%NJj`o#%C1rwgYyV94i$FRnS{0{!aaOJJUeD9Z}{Z z3|s=2$fBQPvxV2n_Z26?)Mx!x(yPa*@ zw(Z{M`#a}dXRZF+tBw15F5Mq^QfEDu#paFRN-Fp5<5$l3}$c}%!QKs~fhBO0V%5iSFAHtXoH^F9} z>f9JYx8CmeMtF9vK`T{wBr$k%NeyYiVyno3`#=J~)*rPx+a8kA4CE`NH-|HBKH%9Q zyL{s=-5lw@AP-Y=idw(L@lYX0@2XB4@_?%ne9LWqo3cpY?!}2*Bl@$U3&hGEKbr#I zeL6T9R4cbHJYEcOpt%EC2I$%}#>8@40Jc0a;G)qYq%Y743ZiN)MYsE=dxThXXka3;8ef08zYYbGKo%9Y5m`Wg$73% z3A9N7gbJH6^x*nFI1wj3qNQ&kNo*zD7J(~#p7{ogf6QPOfe|u5I;}ng5u2>h zkQu|S{YXqsBTnfML8X}?@0jstmvUSayOy*RxHxiIu)Jf)cF+62Us^xwNR?;V@;R>q zOr#m979?jfKSUF%7iKs_uD4teU`(K}u0}$VD4q&SMkAEhp9-rOE-s)0yX6FG-XuP& z`=@4`twmCYQ?Fcxt@ro(;V%@0BOCBT9dBjK)cPS3bfm<)Mn9D3?%e~dWNKVz1)z`EsQikRgRXm1xoaISr#2U zn^G+s%j1?&8xYE}LjuT^YSt`j@Hk<@dPhRC^6|G-}7l>){MzF z3jL@zHBxRLFlXsOy1zQ+;UT=b>O;B!3rA=!s+EAOp3x1W{VL7wB6u$e&h}kg-o}4c zX`h2JN2{JLPotOx+|ZLKnY_!n-c%>`54%4~gX;Njd0>agvr{HnP*Dzm0BH5pfTiFt zHMWMa@48%sm<3bbw1I2{)&IIFT#SO?Q*7@=n#QjP4}xgrG9zD+_TDZK$)Qre2!nm9 z0V>gQh~GC#V>IUF!^Gj*O@$+t=k&wmEoVhD+N|f6$H|kO1|bNHs1+xvMH--7O@FJc zJg3f4RZe{Mow5Agz1pRgHHC9uyMKg;O~VqgK{ef#f{TtH3!%o1SK>#)3KK6p*aqH= z`ceroZwiQp0&Sj{(c9Z$@`BP-a zw3?+m<1lp_a`=+on-|@B!U(avrsVRWHgH_=^J3wo|8tn4CDVlC=E*)=7r6o?0&E_n zx=923dkc-6!K)u#{tyvJ|F(BgBRL{z{U|tMxk()+@S;r2>KH=Ukl!SvEOazzA$+jV zZU$)iNJI?&TnV$0TApFVG@H*8-W5#44)K>*X}J{SjehxHDZnoqn&xQCbH@i~r9E=i zpq^TBOC5Ui{&M>JfW*`7A-K6rE`t64oD`A-(RxCtOW4@G+nE2Mb_mf;~Wqi z#UbYPqD*X#jp6HzW1ZoLJ&j5vqrJZ)w>b^$iS$CAwq!9)D=ybiYX7TOk9cRke-s$N>n_xq+yiz6rR!pt{^c15 z$XVq7n~c|U@2*$~X`Cad+}C;t5pJac5!Xp>+mLM8UJCXXEWY~#qlVwd++r=~<0wm6 ziVR{K!D-S+9J_Q|i}5h${uj@b<0VcIPqYP!*TLbIFT@NACG92O@DJ6W#X*#p{8}{x z*7>Z?gk1$)-G-M0?pC>*Ar`(!JMwDkR7!2b2+zk zK#fzh00J#~Qzg092s_!nz+ju$R`sbULGt9udMY)LWGKt{1j8A4x+ znqdbRnoTkO7p^?`(pA^tW7m>>+|7;8aqwry1i@+v(Hg>MPKEyejn>UYmzwjw5Nqh| z_2Y+}WX`X)u+O4(_RTeRaxIX{8y>%#+9jYL`Rw-ZJwTQ7@-n^S z1U&_3RfL|vOK^0xZv5^O=)(UuzjkAwdX1RGsfKfeqmU(c=S6C~v3=l);rR6D9*!Yy zg=2E=U$@RqVUP`?B1$%9Y)5Xqcd0f}1L9zR!(48Rv33~na4?hquW(msa^qbupRAi6cTwxWap;qT&&Y9>et2-xx8Z1;}8~ey6(<3sR5}iGI9fHEgBw)-ydQ$i+DP0qo4q zyj2`KPvh8qAh!*m{1^)YQRsZj&qf@ieT1&WI2GHAK-h+yBCiF))-oHIIjoL&J zipp~N@7?nm)zLWW7EJXd;6Y!SSGU+|BrR%l>u9~3+`pw7qOEQIS91RELC`4(MP%>} z9=i1zX!rkl?S+io!BDEEqO1y|aXk2fUaC@lhmkV~UHS@L`ad_d|IUmvm<{~>UryW~GH%GAGgm`O zJx=iT;-0(seRM;hQu~vmEOEfz_#5y}lnongydan7ZwJ7@#+QX zMH?}68bxOuc<^8)bt+D6B!r28*Ix(L!TI>-{sb8LO6h<6FSS6&mfedrl^)`aJxKRN zeK}p!-@mxV$~s!(G(yXR)++xt|4W5lsqKcK8EBN(oXf&~bvBWsmL6idi8egDAIbm< zIds33wGC+{j9fGGwJQ$ODnwmf6sv^(U#M-C5k$H!KFpa1_{f2NH)gTh~SH#jq)>Dc98VR45Ba^vlr*v8J* zS@FvL3zU=k3-Q-jhr8AB-igU#@2tq} z=mE;FiQ+>)O0H(0|2(0zd!S*m`nWaq30>!`n*FmmtS+(6BKlqD;8`0gFTc;(8Qe=1Wp)$;45BP`Q{HbU;^2yY9;R|ed`J& zVgq?`Yr1`7&)FP!C9u!p6^;u1d7WP>om%vf<@Wa)3Ap6SP@XGDuMVq$UcKQQhbd9u z%nZSA(rBQ5wDyzx1n*8@P-)YLLC_?JlbD}a%fq?EDIO!zMzG+j?{I!in(ttwTJTY= zIjK;Y=J91JTWHg0cSC8`5b?aPEw>-%R7xXPvB}T|9lkC&fR38t4Bs6O-69nz;TL+b z9H$<~O{x7s%h^3ijCIBKhgadcL_~FYm>KpAm4W`RO9~zrDWUkAi#929C#->Z|KZf) zYTgaphn{NB31|IHVjzl|o~5jo?)2^>FL5GYI3_Hw`sO2Lw^g!?I3|?h+g?a_H3M@*t=-+SXRYXpP6bi|2(_w zuj5}Hk(<+mH+1MGv3}GETe`If!)HQI_}5#B$6fBNL=Y-nJVkoajO61sRmtz#C|h&M zi=Oal8EyCul$M1{yEo*QMcOp3HmJ}xHT7icx9V%2mKvaUqV>+BhvO{oTPT%9s+^ai z9La4C*U+J@4JMzUDl6M$@F66N!)A)XrU=14ySCx74XVv`9mC`DmWQgF&;88!c1`Yx zFJK=wbR*dXZoVnNfUOozwvDxTwBrj?qV;<#}r#EWLW-reG z3AIRd2tn&y8S27g(QQB&1_V9eb6hzwN!{gS}O-Wa)5f%h)Ht!4~KS#l*5D54d z<(9L>llXV@*kJj!tdy1=Z(_hob(c#xUuUU2& zA$q8^8UgvSudZ#?v=+Lsmjo2D!SEp!{?jIDU@ug9`+r5D3=w_jtVIE;f`EJCukRVE;< zLDM2P*LlMJfCtryM^aL|ga!PDU$>0?zDn;Y|7)5Nf0n$UqRTk3ZKRN(JSYeP| z#q9S_Wy(Ndka&*rYQ@<@M+T+PX=tF-dnod8o4Li2(jHRaa57&5nAXxO8K5s-lamva zTiP{gHj%VNlBMT^2Yi@P^;c_`4a(J1b?CMdgQKKoyvL!PfqX(@htg z!`MGp|9Z#5sGeCWFR1KDn?1<%*QA}Mf;|@Se`0A0xp~CY2Mp1=%$R@ZAk2rK+dYPnSpgmyuH?EtocG^wOdSq_4$j2;oeMSxwgoP&8g^37>9SqM)!ySb8_hz+ zf0@F@x?aVOuegkP*Xf_)5q;LWY21usNUu>xzLP=kB#aL~SL$%7Q@3KD56?oqS>F}M zjQUO#CwV2_SJ5#o$A1{#c>UYRYJAH9{^IXHWn0H?y_14z5 za@hmRPw6ZVW-Y)13KVpfGOZxc9nARQs;zf#4>h3+X%AhYtrs{74P)ofn+xJ*mVC(A z0fe$uQnZfk0-1-7?b%MalAr&RD4aZMd9~g~#W?C_n$%dqwLE$&a{F0eGvA z7voW8L=@E-Zoy|^cmlt<~+{ztscrtiz{L)`1=DkQ@?J+pzFZS)X!3?3BEcLom59B(q_<>(m@Y;cB zIPW##E6Y%Id@k?ZoOgT>XBPwtZ5OtBWG$1=i~!|?Ea8tR@@B7oT1!<{(kff@`9C^? z2FFIkJ*JvkO8I%*Rtd=d)>~jg?8F1A86=Zxnnr^YB)VJb$4j_pt>56@gw7MX$qUJ+ zG>>?@2`jlF&Y=k?fJr@7%$ zjsNzId)b1jK2iI`e`w}XdIrmDZTEQ(qG=T&A9->CL1|h|j8%hwRxAhemx|8mNxUeE z45m+Q-VKb#qMFj9m*>4*Zgpepez0$?WxzKV{3gnzS>c>!iu#3Wwh)t1t}1ZbOI{^< zN#dC{7tH?qRgm5O2Xk%ZNNNaj1T%w`m2tsf10P12*R-GfWbiFwQJKCsAe*Hi?377U zT0{Q)1@-dN#eK_BearC6#m#|+SIsAp_0un-PrBHTjhug-u}y74+;++o390!Ry%an@ ztlp!ssvVOjn2sIY7eXGCE@i)vU24<)ltFh!O#91Zw*VF*TV*45w#FORcKzwN&p0NW zkm=UW3hwzPbJDLL7Fl&_lc-?-`uOQHzD>_jGgOWhzo9O==3nix>QmB>P6l|EEhV-Lk&_H%J{hJY0%*nDbjM!T@k>K><2-EF_X$ z)A1n0?f7zF865}573*RZ?}&yt@E+jVvLU=Kgz%KyahP?7?~@1VDH_t5d#Iyp{i5L` zSCC6zXz(a#j?}XN7B{T1VXbjZU$j^${uy8Y&C@fg{+XNYJLY#;56J#YfhW7!*P$V9 z|MgY!XqHaI;J!xBKN~jyg&kzrX*Rb7)K=7(%?^nbj%QZN$5ka4FagQJC;tq-5un~0 zbJ2mCUZg1zpBJp1`WoyJi0W(OH7Z>$L<#Agl$<_1jdI4G!HQ{`9O;gaXHQhf4O>MH z158eOFRL(%wlD?f<4?{Zm>U2U(2JU6CoI49pD-c4t$n>w4z%>?HY84G71POqHTyLY z<>|yblk}>rhQV$oqUe$rA@!xtHL6j9Z6caNU!{-6P|Li`7`hn=9!HhT8E2r7nOR#0 zcKAb|CCSGbLza4W33+r7irPb=WH8|2&EahYg@)~;x-DBHT{%bYdZ#vP2FObAJgIaQvQz333j!Uc@aJ9Oo4eFs-y=Y$enDi z`Zo?SIr5FMh9{3wIf+GWVg}IA+@RJ?XrUG37=EEs+ey3q- zWQAx5_#Z*dhtbm;OHIc*)ck?v9LcQ?potC6y~m~v;=&MzCQkQ=dQOndGNVOnb!p}1?D=W-oWIdn@CNXZ<_v^BSa9!t!l?r}C*;)5RcJoRu~v)cn)ji4!4hv9v>n7uBtYa-*tS%F=TZyu2(!_OUrshaZ&$SU)4ddP%xPc zs)Y+iR!%V`GD%jHuixV{BcqOoYn&{+X)K`HzxA%~LF&}!rWejG#z33q0CGhYXjg_b`zhPAF9lZ02Y&QOB9>Qyw zn~@tRnS1sUD}#f@aYAc4j?Zz2Z#Qlkqo3UV$s4k&5~gl_hd#G_yghF55f;-dq^h$N z*DSW2wTycA3c`dAHJEI}V|neG_GD zTAyk`mzsJ$!AElx6|d5`PZVYy)}H1SS37OWQB^|DtF~`rezn48-IIOuu!6*(ofou& zdv%CYbDQvAX+Ig}tP3D}u3uw{u3QbQvl2dUSJ!g7TeYA4&N_rl{r(XRydm@yl9 zjB0gI#OG3Kr>p4x zG=6OnU!bc|yXwFDse_K5?J2Hgs<+txR+zOTQhs!oo~YUQyHa=M}0Cm zi0k6fD|?A*nR=u6V@o)4xy~G7$DuO*z37EDXe;x^Xq7%Z17Ax0r6}@Lr6560%Z$D7 zLUp9}QZnrVKI6(4L!gsypL1=z7J9ua5#3%5q#&_bVA1@0v2rQv!yiZE3Frspqtc$=Z(2O+@Nm5l~!ng&K`2Q zL2Q#Iyv$N?E1y~F2DR){@Hb{W^dlb6WBj+{Kb)JmVwNPY9gm&XPo6(Dqt;#%m1f)c zpSX7GpJye?BULg+2aOuf^E(4vV(a+b_gTe$vss910>*j^(#;yfcU-d_Pt;!XWCy9E z=Uu>-+`45tW`o$aFS1>Ju$Ljaxlvfl%3^UF&o}_C5eE;(X#JZza)8gd@p2+nL57fv zj1}PV9t%RZ!=zf@^+t_9uYpt%>}l!eB%$G{>t>E!+o{eJBWdK#q7m;#! z9115*gwbXYM%@3IxdYSb*X>IDW*3!l&C-KWpg6{!+`x%mw16EWr>K~xPF_*_+^lo^ zzI=jUdudFiZjF$XjuMN_u;xBc2)##yi4d1x*+%`7VpzSg$>zQJbi(Qzv&27kvXjf$ zO*OIGci(!KD0Sb{Rqhl!jJ(sxyk~%Pvcoob7!95{tO)M54G*32+jBIdc3g^RrvyeO zgwo61Sx@I_@jb$k`#7|^R(@7z&fy9I=IGfbm3vBDfi+`CMpb;xl)>Ml4mVj*g@m~a`}IkMzbELyrrbvMZ7ykwwIMkHCd8CXL;AECiqn?sr2jc7c++=s1zBWM@FdSivU}kxl*K zgMAojPdAna31<7h@;-J>i1~Ks<5vEWiXf)w{W)_RZd5XX{1^>dM~N_#&4pqiT7dtx z^_?@iK98{_mPW|^wfvy5VYwaMkR@ou0_BS$vn(Y<@C@!-RV=D)J5P;UrkxC~orp5? zO7uXR`pV6%Lp5jq!@kK1?cCiN_x;X)OA$LN?z+_GpDpAip;9N9sIO%C-p+UQ89ghakL|2Gz9OzgfN#x>O4ZC zV2pRNS9*(k>OEIyubUGYWIL z@~$F3g~(mB=uGgIzVkS_amvZ*0&EHR8qZRMBcQ)R?c{%RJaY}kt3^7XFyx@Y+Z&9) zd7@c6>?(?1=S9?313ZbqXy)Ra4u4i{VO<{BpB#wUhH|A>f7taVhB(Pd{MlYAUyys+ zDQ<|XJ6A06aGYj@hv6CrZeiU3tVG{|Rxe5fx#M@#`6DGL9S8re4#i&1Ai|ZDX@|yG zhn!T8g2c^Vf7aWzHUG=3$AamNy|`(fMO;l$uhu$hI_#X=j57(!(UE+#49D;%q4?*V zyrh@uBnnG3R3TE*+d4XsT1NgR@(_jeQTXw&;}~SHTrhJkMRAW+XxHT|72{LhrL6im zZl@;gSfR_*tjm2=nyw~8lA)h_m8bja!e7aB+daSFojQo~C#pI7bv(R3SYR@tL!!~~PJ9Kh}$%z}v9yY6B0b~)PAFm^)r3j95;4l*9k$G8WI#> zVSy-;>;i5qhNIDS37|f)SAUHC%DZS^#&9lj6M&f@E4a{P2GHUg1=wrUl z8RG>u8>5&(`;eIfva0fd6S<7wCpCE=40)R1=0;9an0vlvof~Mr>+ck?UcCMXtj{0o zg7E454-gvU9KEd&@-Alwto?p%wxf+DwxJSRiX$vj2xGp40mlEiX*}5J z^QMa~2U$X=ireMC>2j%6BOidBF~SE0cwQYnDj)=%Lym2~(?rI13pcMC+(5`bxa70L z6Fhb+{3)OJ!LeS&%(gAJEt#HH3K$LH=I!5a9!%(>q(@v2ptIBtdFr7H->S}5ED2_C$1MXn>;K91@kS}68@K_NY(p%~TFuTGpmBzoY@QcH-b?fqwbK92pNOX?blR(3zC1zCCzfsbG zn1J=t)Qd_>Uc}THmQD>T_*R_Qwch{}a9|fS=<0+u5XaOZG_2$FL|`@;3aG*Su0u$j zi63|`*#p8eo6xhT+bDhE`Ws!vy2)`%YWpZn>jFOt*RDPgdjj|qsv6Ctlwk!Q2g(f5C#?;8G|=;u z?Q5Uc-p|LVZy(KzfTujk@utK`3PWtuDY>1J6@>p@X-L zBU-`+wS3AFgTYw^PSlX)<<~Wm%w{BjL(>n=Vx!y3)ARg;Z(v_M3RknC+(rt`n3Hdc z&s@j5qg`jJiMEt0*Rnb{;$c*de32G`TlPr-Qid8mNXyD<3n8mne%GOyA<1I0S;H$w zU|MtG3`6-WRZunkZyKyX%V>89JTs~a{*SMUy-U#;dy=5hQm)GCpfAl7tj0Cz9e38L;JhnmClhVPs!$B2{x4aU0Z@aB=WN+mP7 z_GCz^3+3`pq%}bj>j)E8^D9U5t~)4^avuZRC0s|iLOJ0J2y2bKhtKhWL2S>E;Ckqx znm;Opo`N{R!4IC$18X04t&5*vfdma?2QV%jwGnfCFhwQ{0MZGW;w9Kf+HJ}o z%g$%)ei_>GEOgd}Z=t|-L*=xPMcnOe+DniUMx`X(baK6L*s?wZe!w)7YKVD09%k^O zqWt+IJ(=mtKaE{%_-H1p*SE@ESkov&m!l`1&c}QTgU#5E-AcqWh~jsHfsVk8Yu=g6 zi3`S()s8c+v;HNXxJEDS#hjM8t}0Lz?J3(;|1W))DQdLJ47ji%Lo9f1nMT=;V^Kc| z#gE+hP-NDvvfop9Zo-C!DvW$K-6;@2QjWM0&CQzZbu$I{4iR2-Rxy3NfC$(KAh$l>t#t5Rd<{%?tEF} z1T|U+>34{n*=TKC`f-K`-?EFcjl^#;lyNf#Ih{oYayn?rGzsgJ zWhT*7pS~PGq6Njnt{h8trnPJGeFjbGU(U{@{;=DlA-1z++jczOe9(11U}(&!1o0hc zj+$TDx%Lv4!VRDPn0ju|%3XCC@%}epHF9oqf>UXDWzi~le7vu%5`*m0r$oMO|Lg+z zD&^5zU$b3G%!MLs#7G!zUW~8H+sLA%9rk?~dsB(7kuhvuk`@+b3?`&K!Q@F=%%o8p zv*jTcJWSJy5GsjQltMp;)}Mm`b_?|8T^@JI5+fI`FDs8fZH<_Kq4j+~&diSx8Igbm z7nbAk*=|N<_Pt2n!o_PcsNFndIC@qnx3qQY9^3rf&S19+KA*0K_gFkRAiPI5=a~=oBI& zTpx-**Z`J|bKxU3x5#5>2trfm*9Z#R#iRr#SDo{NqwdYtFba#&OLpXNt?t44d3{FH zaeJO)N!#{I#Q{RssSE;!GPl#d!eXJ5O31YTSX|}Vw%WAKB;bhNdHtmLZJmHk6rrHy97I><1Q5RGz`tvOW#oc2|eq^i-2t9Vc(~|Az z@AnMJV;W|bxqxGEG?O&`E_580id39y$MSv6Rwj*YcnBGW*qOzYI3!mpoVx|JQ0Zr> z4sBnu2RynG>DSBHr>GcOKSi80dPB?T;U(gtbJT4dFCy$ye^bm;La1wCVKOH>2Oj^M`-nT%WlsP z$~?Jw1y)aIY@aFJ1m)@|THg&iJ_WPY^%kq~(oAx-Yw3fBCUufLW(Yy_;|bjvm$6?i z;l>q>+iY1mwPqSENdb^mkj~_Ra7F#M?i%xb8UiAn6tC?faPYD6xO?>m!kT zx6YE<^756O3I(s~_zxgAuil~GYk5pIq1ib(gSKCugUkmNJ?QB!)W>f~5)Pqaq70EGPn zZ+gErE!lT!SRu1&xae5lb*h4>u}|IFcH2SU$&DOO>qUDGLH03&u^(=ex4Kni217YJiO{@Hu^?~bVx7IE zL3=xT^Vm}vYU+G`67?WjhJve?pq1+fO4rdlcr;->YovMnKa1KdYvCjvcXk|^t;*ho zd;L{+gq`OvYqRpWr8%?VCks;I>RBtsn1A~l>%+w!dDGU-g8+2Bk`P3L-o<yZS#LVS3H*l6C+;8nYRK{xiy^-4wDmX1jTsLFNWgC_W7E<~RZh!K*Qx;iV zd|FjLVDhG`eAM?tl%vy=?a%KTsDq8RUUAZQ+mW?99dD)eVEp5jh1!S!b*GCZoGSpN+;F zURP?+)l=5+D#4e>d?sd+@Dq^e6m;H?YK!V{+$dz2Nk$b$%9&6#wdz^8k0_Eo27eb z4;ShD%j_n}-8-ah@A_NPu&F7ZqdIVF(rMCWjGZ;b48L|6)(l{_GCo#8^Jd>|dsR&6 zRhKBBGHzYZ-b~9WYS$?Mr=`<>*nxH-g8`r=ZUnbs42W?u1lY!asM}oe!(Ojy(YNJb z1V1b`j;9KhK731yCPotjSqO9&i(Ta{m+?t;c6yWhczW~YUle*xpR)Khe^cB5z!B%9 zm7{4jRnhhoc~9nZi$#$UZ~SeNrA6UhWlC(v$837Ttg!ceEse+g-rKm(ug%Np=r--8 zjXkc_>w@cV7tC62?c~-Z`@|{<4lOk}ju-L%qMABIcs#OH4idAjky?YPmMm9Hwf-it z{H6)jM=FT=UY`riPB3PxOfYaW472n^+!JHSNkM48E8Ir+>_2_x1Zip@3^8k{?K`BZ z>NTXQz}UgQs8+D#4a59a$!CCOKF~-AC#zY`yhfB#!LNY)-9yrNbhtD&K>I_+j6fO7 zP(5zpOHr;r?KUo6n&7=Zc+!};+yipiBMp%is0niR7Rzb%b*%22`HA;PB)q-+1K_KN z?z8Q1?w^O~$H|yl<3z=M^nOrrn$O=n(2?jUq*)u$`bo&#+AfDTKKriCyDlFmjJ#L2NPP0EzFXfWLJM{dk42}9MPnN*7{|U9)xUTv zHe9^>XML*I+F_LKRLb2B;H7k}=j^~Mo~5Lnzh4@iQZQM6RFC^GkeCW)>cos&61ME4 zFH5R#)w6UCN8s}IReTV64Ew}R{Qb$!Jwc3x38>;^_RoD$kDAQE2TjQ%c4<*akDXe^ zbSM6LN8!O$`}C%UY5kiVp zO7DCCx}js%;>|?qGHns5GhM^3mln77`^%RGjRx^27CgIA=fsI$sBB-6*kXq*m5#^t zBg9JUFdFZy*tK_Xw4PGERCT)AP_H-azJcVS`@raB^!7$0U<|3K9HaO)bE4$HY=a$Y z$LlTh8Z?U9eVgE%R-wl7mN~?fZJy+vB?9r%xNKQ8XxisN?+`_0W8G+Rs~UNjKYmP>_yH=pgm>FNAqVC+NFPp8TTWl<2Ue8f0COZXf_+o95hsUSM84JQSQ4ZUGl1hJ2QJDo+>x0 zuXRWIfZ1jV!KBM=f0h(i%oU<6hjT13v<;B;l`H@9TY7b{Y!uf=Ju+>SLm@oO8 z1dC%rSl&8Kb~Z1b*DG;AVBS1WMm<*csvX)=f0!05Z=>SfLUI}Q9$1$r z?!%^9eZ^2$*x+CwKHQ{7CQ}I9wMxGN8m-m8(0ga-kucOIPE0vlD)y2-&95Q6`cvQx zpAK?Hxs~D5VGUlXcN!`GDqSv|=?q!*v&+0Pi}Nh;ae&$l=b^?mvU_Q&uN8X`aj6~l zoV?BlqOLTI8LazDgVnO}2DNnf4zV(p-N zElv-wg9cUP@`P1y5)(Ea#aAO~Kcvr5z~Vta0DjFC)6{Zlh8z|OO}3i_wa+>1c`57d zDA3w+?11X4sQ^qz52-AUl6zRUA#*QJ)a{&X1h-$Q4Luk?a|ooZpN<@OrpFWjG!JZa zfatuZeO%)=KT`J=s!R_u3H*RE!>tvVQoOmCf7{7^xFVX!P^ypcDJVKanoAfFRn>ce z8PMkC8{O|Fi5xCr{OLCf6>7(zA5zXzV)2;Y2(fB}mR^3a_U8t(4}SAuUpsN0K=*6; zUc;K94h&Ws$`m$X7u|CA5<>`bU7{07Hun=<#cI;E-J;Nai9C$c&zp?HjC66t%x@ge zcVVEhUT)=vIe;DMaql#5lQ-;Hl7C**%msKu{sUbi2l>7Rh5tx2JaQ!8Pcqm`4XX64 zAf;_H^p-c`-hA)3Jzo})zdpf6U0%;Vtb56wb z9kwEe@D6+dO(IUNW{77$5Lcy%>}McWVuEU#iMMWpXyT54FzT2d3?$RrI@5H-L7(y* zQL|ahwRNPV3OKnncpNTRr+)e4?0Ngr3ptU5$5vr}?r|RzCWyb=?Pkms(VW)O3zG;J z0%ldJ2&Vrv_X`X00uH~upcE0iq#psFR zgKA^vs0v&fS$F$^TuN6!!OUENa{1tM)-39}QyyrmgUz~x1hm}7Gqt}i^_4q>0w(N9 zvXo?4x-I~dj2@*#a6o0-`_IbFhs{6iYS5+O6?(r975W+8?~t~8uj(iR61UO6uds}K z&X0jQF^%4W(CJ_gf*+8aW7&a{MNiU1HW_U`B0bB+Vs z0SQAwlxGQqco}wH2nO^5;0e*0w!PMj~e{#%2<;H4DriegK9b8 zHI~B&Nbh;)9B3jh(@^&^UeoiDZu|vE)Q|rtGn*dC{d$Z?;ka7(%2~|9F;L-N{^@d# zoEvC=Ss!O9wGwWO`?(Z{YnHv`EFMx!I9h4MCJhjo*{QU6zGuvb& zCkl2j4xz(w;1>=QpMCfrJfiBi=>Re3pvGeeaim&?$I+$~G~TJ2uNlM0t2#seMRBa1 zLYki{Y>b9|Dl$!K_1W0>-m@i12+0kdE)ACy7TI@j*2h`uDxV?E7j&dkRtVlgMw}Ud zCyU`{(kzTz0D0WPCuTWxr-2oe?p$_=AzR$WGxD8=DA=sIv*$QPBBz9jB@BQ8r}V8d zt^>3)aPO4^269z29H~}a>C1ZmObS-j;5ZFYNnqHHAS}+aj%HME>Na4HVhVzSTgyEI0n~Uewq(Csjh7N?UZ0xLdv;X;Z%(5OrEwcRCR zjrt@n6S`ED*AGU;1UKxAC!y8~#%NXX#6fTf%mds!D}42ZKFW5U3cH@ll_dkGKBS6i zY|aZA)H13+qh*kFn<&!d<-iiWvVrW-l=W-Jl3P8iAeKBRX^ee2c3g=mzR@)p)5oJ4 zrmE3ot&(eYOp4B2{Y+IH8|=}@rFGTRi|)%s*B|1IVWZpL+TEEEzID6I;k3l^sGv=@ z1n^>Rz&RdKC&J5&yW7T38_#nUl?mSwP~e*dv+j`~grgc`G8}Dh@BkFwtcYq6e?QGj z4i$EF2@hsYL@5kw@LY`d{wjTJx=eMnIXv!E=Bkd`we5<&_wsRY#G>9_v@z?R9s2)B zx(bG<+HR|K4vKUOf^_##ilTH$H%NDPgGeKtLw9#~clQk4F++FUdB6Jy=A1dtvvaMz zHmL}uVHfdg&-Sb2g)_xp0wKiV(Cw+HjPAroRFAWF8!%#(w9mKkx(K0dInp^tpAA`6 z1Vook!^ZII{6cRr`u<7&Xn>hw?R?N!C9-LDW!0zLZ|2dTrqiI6&tL@wZEE^|% zj(LXR$J6Yhvc=JOyE&bmFXqyq3;G0jks^7hj_#_qCTMZLI|nRN67bhN`$N)+#T>ST zrk=SR76>e+eq8BH$4(#(6huS!QwX?g$89ad=ctieXEo@J6t)S#*e22xl1m(A_C6H8 z0daKY?@Tups^(3qBe(*s43TeHaUXtjZ_*8648<=S&JwXG{U;sNa1-twjn{U52$!UD zi!K8HB~3UL!j}hRtR#5Uz9lxN{N5jOWQ?|Uqgp$j*I3-oD^LhLw%c7Gwti9W+IGR( zdUPaq^O>|-6GW#x%a8wCJt{zePACDcAu{m1J4*Od*c4*yAyQSbTuXwr7Pgu^Q9=`| zrjutxD%hC!OK%_h#}6a$Hpd!av9sa6^-6N|qfo<*4EeE?O>gA}=&x4dg6;ws->YTp zza6ARKT)|A;B!WyNhhKS1nmB9cWuEbGYvPdbrqmFWk2PHPtJG$ zd3PCza4XkZJI$7-2iltv^LRhsy1^#bftEVTyYv?9Gh(qZ--ZyM(Fi9P+G|ubOzX`0 z@ugE7gqiw9v?_~hq8;%B{oDq_dc7@*U5%hZSHshD8UW8#=Rs zHfqO@u|!&hQ@4{Lt*6gO9_yzMspuCUc30ltu+V^!b^k&#IdX*szjo#XkG;9}r`TK| z-d}isPEPKH1(G~ZTl%MJtew9+*N!z~Nb}(Es z4?o4RpsHLi2fiEC&YQM<`5?;$o=arJr1fGDqR*CEN%`wc7~yA@VqX_Qxbv~8`kT^x zQRG4>IKy%IbM23JQnMzHatJJe$5yzB-$xoOc6e*w0(9H9!YXDCqD}bVDvb!jJ0Uh* zrd&VBZq?J(;7m;B1txSDN#wa$2ZFYUXvxl?o!RB~S$N#JjlFuKC!E(=HTm^yl`sb$ z!k3<3C)f142JQ16*Y57UUSPqu9k(FQ2?yR#jsj-bGUNnBHkR2boj;14>#uQy##n4h ziXy>wOtQT?7S{|rm;B^dXNjqdLl@O*tg@cyLSbQHYfDQ(%cI)7yznl*UfrI)B8_LC zqhTf4EzW#`W1R)$H-9G8J7`K_HRyvvYDmZE1enftj5sXq8{~>lHxuQ9eR+=Dp|$A1 zgGNSD4a?EnIK!nehOLtqVc`=st_Qmw-s1!}d!jdS$1J^Avv##tYZ3$}TNz()9)py}>xv)7REt4X zY4|sb|K76Dku;!b%p6}918+$LoZ!l)j7b)yf#&N^aaxeDW@b9c@&X*P?`HU_mr*bE zMz@N|nIci+MU6wPS6}1WMSm=;+baH4S=J@*UdsWL_z&`)IsHl0-y1N`vT6JyQ@V6c z%uH}+%Y1C7cC*=1-)XpRQ_E*_w8S6Tac(Mn59d-bX`cO7wZKak)+(w)uR+~fD-8A- zC^yhd@Fqz6rPmUU9dC1&zNR(Ldz=+jSnW6zrduKzNjxN7bZl}3ZZ*Qg7&9E3sZVRR zSK42eDOWc>v}Iq?E~)LzIbEeX%1UX%BCQOIyHP7T={2p!Z5VEC9orHqm1dHE0n!L4 zG0X+zt|H%}+{l`cF%DemSad8ETT=*Ja9pR+Im~|l)E*Z=|*vv06 z2d==Ucs?%RxTNk7NH4O`%7>#%^AC60Mz5H$TU-SS6Bwi&Tu@6KaIZZ0{uLu1M9Je* zy@qrc?}lZH&8dF`woF#&m*)FKjGFm}v`f zv-(z%IVf%8=Eth*4?*7b{WI->9ZoY;+28d(O#Bqxc5)84?fa$~| zW&(2l6iRV+*+HF?N;a~TWaZ3#ZS7Xt=~qT)n-gp^rRCA2_}VSvEx+0p`Ep9|tWa9^ zLE)GiZ*`;aNC;w7m6jEqf(CwrSOB;`-_{+M;S=zV-zZ zG_5z4Ws8=N($<@gQ*7%ywB$QbG@di2bqZCL+ zw#kA-##q9O!AK1)3ck1I?sLjAgWwsTu66s#O2AD5rBpuae6Xu0w0^bk_h$LCga7DS zRVo2zFvZLJ#-JkRX#KJ~+p96G`}Tx(0iKqYm?%HjkQD9l>rO6!332cb4WBsF((vDn zs@UwRA1 z4a(;tVXk%KvJIUz9xr3Z*Y~2T^hMI01}5N{T9@g7q@mUkWYpI+f;-dZaay?tWMM-< zQ$9B>Td&L%gHew#-9Nh@RG<%b^*|lDvCXO__VVQd_9Zu|OBIaAOh{Z>roDL8hS| zcpmRqkN9SABxaq^_dJtU+E?WKWHd9$`%>M6Cla+;x+MwS5? z5I106E7sVOq&>dsd2cW%ML6*6$41uwx#MIud8YY1=zDQ)hldRfn^eFh<#q-%-VZO< zb42B~@r(KI%%B>1BlysD9=7&r9d?qdC9e>zZ?oXXx=so6rt72z9#L3_!*>m`VgAfr z+#N^TflHW#qdfB=_#EhQusSAwJ0{LB#uG=BC0zC7TbIG?%;8#B@#4Ne-F}fOEj+A< zVy`Pd^xNe^&fRo#<0iA-w{?=LX~s2oS+};v`r6k?ueF@o#$+I01CKD-@}-YqByQj5 zJLIWcF%i;kFEyFqWjzbnTM>YS@BxyXo3y_Q91e-qeNI*OJmVgTYOc~Au(|tUJH5Pu ztxVkAX|hHLy^9w6s6+xaLQMiMTX|)63541XK6LjyCkhf z#OoExJZltEuc%{=Nzy(D6WoJgsX7nWwsmAnE*W+>QlG%@{}T52Te_w}vKzaIQ-esD zvW@Q2=Dc7*hFK*)gxLlc5V%J6VdHD|6>ZIWjB`uh?#hbjNKH_QN%*!W-?0&%0fA(! zW6&xRa+Cxe7AN{2WHld2qw|j|RA&ELFn(Eyp|KoEb6ZF*HDgd{Ofo0N^OkQHpF54g zUdj*LK;kGLGni>PQ4K)^{5i+#AI)y6wshC*kXKs1J=%7V;xrk@>(`BPCOSbJo@oic6zk;2x$mr3nLhCu=I zwGb5_{o|46FQ?g4ihVR-ob-Vu8_L^Z@8<6-iDMx6VMezfI3+lETpa7i$ z2ejbU*LLI6^zIyl?>82E1&vvDYI>&S@NRdJf^Jm+JQgTo1U=4y$^>aV*&wD5KNqu( z_6o;7{4RY$bDXYxlumUXe;<*z4IpfH?eCn%z4^(Aa|KJ0!O84fvY$IBf$2Tkj%zJ4 z3bJCS5A|yYpL~BUeeA*Jxl~{5U_mkeB0q%ZGQ#Sv*4@QR501<^ZvPQ(UGhODQx8YM zVlG~PpaU!X0mJe%lfOUs;%S$g3XFd*+^y_cfoFEa=UM<=ocqKTP*`i|jsG?2;z-Xd zyH*UnD%T{TBF$*NC%Zya-AW$QghP1}X0gJbKzu>Em%&@QI_RAd{cDB^c*Vf-TUAfD z9n=sA%%Gd!H9IQ6ZdYN1ZAY3PO2F6D|GnCUUaB$d#TK-!I@XKneE5R1o<+e(w!#(Yeg}Hb{VBlTj%|nhL2dt3)3Mn1 zaxv}!w#I&wh)vrjkNLv#_|4z{n#DS!(<3|k!+r{xLs0JZS4PclD=L@*;NKXPyEgCI)6|8 zsOkofsTzvHx`HjLfC@)zpI5_B@q^tX-%9>|{dJ-CnHXE?`Ci&scNj0`E|A>&%;^5p zKQR_NNh*j7oy9(dn z;7ue~df=e(FnNP4k8IIu^eWkUPvHs4Y&QO8d`Pmg05QR?7Byt_PO5YxvN1nhTCDfR z6?WP~qv)p~>(g$n<=PS@c3nQJm1b_g7a%hy;R&bUE!}VMbfG9cTF~4}&AjH>^1-Y5 zv)Px~=u2w3fcpi$xtO5*V7@~-f*bBTEu*F&Mc~jiR}*zL+?I|eN(N-6j66UFQfc`Tzqg` zw0vXWx#X$PWV(6ZJDr45OH;tnQ^pE=QAq0bmsj}QKSg!EL zQw5AyakVDneY4~!jl)gnB)_))Cb>!F1M=|+LmaV934E}z#Rr#bTPu>pi&LL9X>W^d zweb#Jy$L!K=W+XrE(d$Zkcie-q_*PSW}XRe$dlaETL+ z9(?OA{$A(Y`QF`dOB&x*l}o&Ui<++5g}kvvyJf~XV=yZ1JjH7+Y5naf!L8T(Qv)tE z(lu13Ztve%>&|TmG4KR#;0<^i5-N~E2Q1)R*%3?|*;#Rjt)gdT(=RhM3n&pzY2yF5 zZ-p+KGZ#?8R-dozmVyp2piHUHB6@K>DL+VNBw0 z)nJh2(*xS_XaBkoV}Epw2>1I0N{ZiCLn_`I_B&2dS5Z#>mcK?ce4FKs=C8hJSXMCG zY7ohTl`4Z~W;XTt>OywyvuCQqU4JX+b5Z%XB@C6DA8BSvUP#h?kN>#>e6;1otdUMd z-1@8c&wkmO;~knTCAq#G*36QO(#E;TpEVU(i@W`fBddfIyYimn)_~2f6v|k1N7uC? z(;oCq$}b5{q2KG9;k_CIoq}xec{YCndN(_F}j`mIB!Fy%>5yjd~ zuivCyAG@;8dERrK$NMh4twE|G=Quon+F1QIQ4rE04&lcyXg(~D;t}obotJkgbq-WuaIUtFhr^88)d0*pz1NRup}IMY@(R+e~y^| zE|lDw4fm*YiQsd%0A9~pc2857BT+U?X)%DsS0Wh04M1as@$x?JCUZ`qZHKSR!BX#0 zOAu=uUG81{s}s>BMPBF8BDc`cq|pylhQLhoOXi1yM)R`+SZnn6+q@^PBf2WwNt}r8 z*Prms?vE7K+rYXi;tf2rV{qX;lWUWQ8}xmgplbKQ_0{0TNwIT=)>`NBqv#iVf$GP% zai7tCHqpE@LTS3<2${vwSv%#-P%&_zn6TDOReA#o&!tG5v=*!P93-p+s;4i`vGMUE zG1e;Kr~sSJ{lw+-JaM*+{g^b{5YZi%Smavq|3o069r1y!1rO5yn?Ou~3k? zT=~Zcvr~Z`30|>gN6+m!e>O!U!W~u{0eA&sF?e-nr}A$hadoNjLabWe>-@IE+SdY8 zhAERWqj8tJxIvnEVKtZ}d_*4+NAq9~fRy$b^KYi0T^asebSHAp_qN`{F1n)Tb?WZh zpP)F8!+9@-q6>(prJ~`XvQAZTpZw&_UpH~fnV}bRcBRK2q#Qlm&D_?ni*JtErt_I9 z*rkAXKvtKjptkbjJe6CwG1k4DyuF&W%{w4jb=c)RNU5`y{GR-2Zgrdkzt}_4&Mbtr{P7*+EHeJXTsLxPXto<>o8utEvqoWbu!VrZI(zSixoO z@YP1|H<;Gf@poLY^p(Ztz%LYS68Orcz<`;dEFBKP*JyPykABluDBYTM>ojxmfoiJV zKE9@$J$%xgl|&NUeiI)sp=_*^MB;8$FU!l^rZRWpoyXD`s5aQBYl{c5A`qYU=0f|h#gS!%3C{84aU`E?4CSL8Vf2V?nF1Xd9 zq=tUfcYKBOfqsaB=VniUc65CKpkQEx-aHb4`rk>h`oYOHy(X?i=gTVJNi2EN;7e~p zU9~sE&2Ig;M*_T;?H7;DdKt4<7^l^_=~|cfy8PPwamO8hq1paDNEarXSyUZ11IUKP;Nn=o-a>gM!WSInm5w4o>>sV zXUgPG9IvZRRN(s)ibP*dR$eR7qcV0fg@ z&Yv!_IKmyIC>NF^z&gzTT(O8EW_mlw^_r}5_xS_iNk<%ne{Nv@S~7wcT$@juWJluq z$3!?7;ZmL zPk2ms9+Nt$1y3XYT4FTVsKBPPy#-$fucnWM2mU6@K=@NA1XFlD(loB77_O>P)*H9C zZ{QvgZy?aj zTBpiHyB$$-TM!5%JqdDwc%PGu#F_}%9wYrn9sD^d!wJbNvHr`yIZ!aL?H--@Pm&QQ zrheB+UN^{f&^@^=_Z*~Wjg5S!ND;MpDc<=$eGAxcyb8res8=beJz{oI7(RdN(bV^a z>Kz+Oo7s7|WEMBYhz+O}h*_8TLnl<8=)@RDaE526=PK)CIai`u9rHMqC#@2$CkrcS zL2PN|dcK#(-~RcqTa%c@z0l_LimvztiwY_h%fE$+oOv!u%j!DI4;o*k+gEbxm*#}p zyK>}2b-kU3c51>Jj1`{1!n=n%?&mzNL4YJ_0s>`Dw%S7i>2$4`6H58DsVwK_ljPxF zYU0mAkvkvM8X9Lem9Uvt#iNQ7k9VFDj8N37 z5;J_xto8V~m{F$d(q#CZ0%s_FBC4YNGt&a7M8_dk;9z-&qX|QKD00nse@U!{O}KaB zIA+92waO>iE}QQ6&1K8T8`|fjj%|)MAd|+FFnOjZsb2|#xKjUdy~KQI7+=XI zZKrzgrK)&4aAt?&igZI2H)&Ef4&y_WxBRIA2yTR+*c?F-ya3>w%*7bJ4iDU+{USu+ z{I_s@%$n~rEz#J|7v1jea>NsC$JHUUZ{S0!^D_mrh>x$BEui(+BTp+{8V5S>%fa-r z*`8AA6r0nRgGQVrN}oPHx3dJ##~++$Z41r2&z}CTP;UBk-VeCYZ3OrQs(k+hMSoq* z9&Hu3t{J`JtzHAA%yZi=TEEs!<4jOCe3$H-+=d!2-d^(X`i~$`_}I~xochZ@(nM<@ zA)L2uz(zL8R!O+%7MA1^oZL>^w==&!R1+HGz2aSLAtsChR9J--D3UQUAb~SOKIXf6 zNfKkMA5z!A+XEtH% zoKQ`-5Dm-q>|XmAn0v$WmFkZrY6Bh6S%fGer7wEF-qJ74vrpgx4r-GwIgjKOJdYu* z(^h~ck6QBj*q)!!Zly_CX5X9QV1Fm@s(iQUW2Uojl4RY~;T`>?BC!vnku^xU)4*cz z94)DLuTD$vThn$lc~Vh=Li02i|MjvpfaaueY;3h4n|tACeTEY6J$>Df##I%A8+w;g z&!j7W%Yo#2^(S^=(1%O4l>%2`WTG1i8ZQ#&4+;}@U%?DlQ^nkq(LA99a8vw6J*qS6 zaVIV$Lr~&dB|Q}A0O~%&yZEhn@XJg6h+AGMdsd7BGz8y5>3Ml#_4>M9la|iAos7le zW=ypiCD!(>OBT=UZRvP6&+4v6Y0p8M)+#w((r%iJ8%ZNEzo`4y^OE@V0g+;LR5(yC z!QY7srPzjQ!CjCM;!DApaW8uyF``=O$O*IA(JNhh7vK3~V3TJAZZe8Wjh1|?+Slud zN`C<3p&eosO0t$XY60#(#qr4pobo8zuBk}7${)DRog5vHxdD$aQdJSQZ%+Ri341st zqjfyv6y5l7&*Ut%1s(GUQ@1Nv$8A(z=zEn^H#K98j^D0)qFWW0M2d43jLhjCA-_C; znk#3H@4ay!k6Nt=mUKY}jKf%rx}8qxj2mz$=HC-S4;N)=7ViXtrMBoER^FvnIh7xS|*6`;xOV#TZu(1V37N^uZo&RaP?`Fz-09RJ^Ah4_5a=AuxBDaqv#(bj3oz_tIi{ zofIJ1tL4gYscP>0A$QtQCo*>7zBP0EI<8Q=!{cYx*7vnUiqVfvZ_r))_}_wmb{kFo z5x^p7{c0O`Wc7*BR7K*St>G|EOL`(|!9T)*oe)ZzD>P^5eZrhX+VY+*1^2;w1To%KkUTWuI;=!Y=5t+i@EarZFo9euq z%$7?!UxO8WtQG2Mzm-@I^(rh6h$94&ePj1l=RG<;@o!B_q4tnB~ zK!|w>@{f?!{8D=7aMo3fRzE~1ED}s`BSi7#WE_@M>0w%QmONVKtU12%@sy!E^bIZ) ztxtN8rS4R$RqIqLP{*cf(KVDe^W)=yFU(Hm70*z?@Jr8l3q>}CV7=w$lN14|lZET& zeMu63u?U8Z83e+V@lAFOj{NQdcK(*&76>5|;mIWSlYP>yX>AsFtQs}LS$8V;g%PEF zU~Q2|^+j-b4`20F_|B8odePkLdwD%$0}cQFApd*#v@;zCuzVMY3sHapoN&G zIpcW&89_o65?;1ncM1=!+KAr^EqTY^6bc;K$s0vfxvGcMZU`0s58P=YemzltUYA&6 zT`m?#ePXII@+7202N*1n8`o4_%Nm z7vbYuCDu(ll^MD#M@87_)Awd-rQiOHeuO>P?v#|!5Hr1I*u%{XCwCxN@(BHC1-Ctx zrZ8S(cTrI7B`oDGAuo#G&ZgAIufSqdje9MQpdW|sWtSMGU&QcgNW-|a@Zcd;o34J= zBt?Cefcn3Hf?>zAQ3p&H!!C;8&3|tMD4l`wj<2U(e>)4qSpU?MG<;7eS@xEJEQ~R5 z@>eVVfR~r~q%snMJ*8bjH(DxDo94VktF|p^3=vnY7D4|WQeG@Yr)K85pT({4FtbGg zo8$2X_eD?cRY?U%C3?syYvnmsi?wm8lS2Abx0*`Ow)fx6j0X9ErF|5bam=b`}z~*Lx(V<0gWl_fWlQ{ z4Z}quozvC*_^1C2t_W8#lM8CH+ilGkPThn9lJ zk;|K=N!FJmH4>M4Wj0sM2&1WMOevyT;(KA9M=#K%77E5~?s5UtyYBjBrov)r8~W-R zJW4B*F8r-bO}Xb#?`4o`)_CN8yO-h?MCx4_mR|7n2ELK%6lW6x0oOjOooWHp>w|Gk z`Zrkhh)ZQ1_Fyb8qLiPK?BZVgSlr?Bw@=RM7QL6G zn0|$|c0)U7fb|0`;?8N@?y$>WKcgyx@HsrO@^y?>n>5UQ|DHs;{K4OO%dIUl#3)sE+= zJE6L%S4Oa(E!Sc;CAI7K7C1RJI#*gGl;$Bn-rJ)olMSZR);b0|hh$D7%#QBEM&Y%{N5 zi2pf0RAz9SX~PN5=D7|xzPxjct^&-g;*|$mJyG@lB$7sdW%e~oxilry?6Yb867Z%n zK9pPtBNpGq!#7~^>;*!0wUd<1lrEg=_cL<`ArQz~eA8V19uP~4-)IH%6{BhsS!&4! z+McBG;Q_c;>)HZuVRN`<*0gFLfv<&=Sd)L5gh29H9)ll!d*et_mpj6 z7~iJ{9)+Q>TOF3_0|AL(NPa2l-wcU$*R?%|H*D}iImRc0zKT1Xn$Pkb;%rCf8^~KvryN6FK$dN0|0&0{98Z1`>TfLmJCd{BT*D? z(!}NsozR`w@lLRt1a{zQm*;Yy*OK5t_XRlbyZCH2K@txqZhU&(=)-2#-9JVI+ygCV zN^BT6FWv+;Gj9e9LIO7we$_0ld4}>?diHsAV61s@i#=~B8tY}-*bB0!^%~j{|HfCO ztV5AE5>9g&42=2q9M$|RKUS0?c3JK66kLCb6M@FhiEp)W?}Dk`#Rov0Im0PC^)>K6 zr7@kNSvR$Q-G06ctR;G1o4nek=4)V`A&!$K5&c9iV|@%G`o~4Qxlt;*ISS+2WQFx| zcXK`g!>jLI?|v?u*U2g$e020+%}|&lKZfuU+pr7vivEVv0*u$&%5&l}EdI^rA<_n_ zwGbjeqn8c#+a+b!Zp;S@7$((w+=vmr1LS;1t=j&+AcX}Ji=+?;xaO59BzF2^V_1wb zdmu#&|0SfOCs0s;L0$!XaKh>m&I!-6gP$N^%PZW*2 zZX7KZWDRxi7FZ8mk9GlR$RgVRq95J1jC_J5p8b}b;RO9V5+Hhf zQg+Y?*1j6&>bUA%2L)=e3(^+Po7FM7LI{+5gB9k0$oq*4g_89mjK%F;&+h#R`lj5| zj(Rja|I;gZr?k5NV-ck9IH^6zW=Osl#dr*$+P;ZC zPd{aP`)9OKOPek-yR)47WRm>jti1q_l>W2dmwMFvY+x+a++Y3sO_V#SEQWK1^)s4| zw_p@K^v;0ea~A(5C*SbOD=YM*O+}$ms1Zc|!;`Zql?93OsRxgbL~@lOzcDY%NlFh} z&lMBj7~U^!NBTc-ih(&-?=-#sM@FSaaRuHZ9h6rSHgiJ7Y(E z1hLSy55wkauVD}+rH$8XX~-zftotWcU#<(O$ZtQ- z1QVwnC&LlMKQc?oWFhBx;Ax#wI!=~~$elQ*`Ppoz&Cci$KQIW0a8B~(7QG0CJ*0nc zD)~e(yf$0UJ${KVr{`K%|(*vzK$Pi3vVl8Amkta8Rz2)GOGLl6~lhb+}jpFG%P`}mkxT{5$E&MT7 zhM5BKrdeP;a3~4_#I0>sb(iqc`QbLKlAE-T<|Wn>s0F>ePdwwYxP`IvZy)A;-plni zKwJ@a!o|uLwP+t)%PoJzXWpsrbRQ^~HZ!sX&Ej6@_JWW{8gL2e9WxMk6ZM_H^>};v z1py7y5pD2qVFWlZ(mP?KH%S{mZZ+Xe6HR-)M6tb8Yd|@A+@Y0M!oAs-$C>!A>wPtf zU+)>P38CV+lD1P5Tk_i@d;JMMZgpBEnESJ92 z!G+abP9p&aZ7hX9d330&*I1Rbexa032Q(YicP0WO_EAh51tKkECdfbPlt3OT;Y`NK z6(*rC*y(h_Ruaxb>7cZ86To<}gJ+`_8DPwNm6Eh;GF*e4u3Y*vF#}Mo)6(X$z`Sff zL;4zxaVGia+nB^UoPT2q11pxd3b3DXH@`4DP`%w824Vo8;m$huRGn$v1oCqogilP!E&4= z7lIX%BWO=ZJn7yJ&=+$JncqQ5Rbh##$6JJHDAc=f(irYt_Wez#8bI*PHQ}>Lme2%d z{1CJybP-4p3eiOwg=?w9tC-$Q!aVa@{s@dIUWGaWK8Z(_3il8Sj$>@rO&Iq=q5vGc z9UAqO1-3{os$h?h1y=Icv9@9lgeUv`FY<_#1=!xiTiG=FeK+x54CW1 zzb7J91>RyhtZ5VkRH`XU0_;WU_66&eLi#sAPUybxIZV2CHl*=GdM%s|vR(K94Y%uZ zj2b-k7UQ2>(E}se-_ky1++;1Sel3jabZ>Py{sGR}CXfpe@9zGEP^h@=mmOJ!{-8vP z?uxW^ZLo)$c{E9_NX)9{D?OP25D;msD{U{^qVx<4tZ;QbKA%KGG6cT~Nd)S+jG0#n z{*q|@Wx6}Uk_NzM{X2mz<7;vXg>yHYwHV=yjxC%QgfE##x{`pOg<{^BUvGRR=Amga zSJ52_DvN_^T96WQ!FusmqT9Q{MK*OYK-RDR6S*ShT|mN{IIQFl&E=#Uyvj74i}9Tc z9_1rGIdgQ7V0O9r_FR}sT&QIML0Rfr?0IAjqKv5Xn>VjllHb1k%AKRr7swN<$1xHV zP?(?6+TP{K$#S@DTed3-PIl^=Fm=_7X3^y;JxFt9Qk6Fcvu{e@0n1&U^TM2!F*{OZ z!tQ{dDU(jNC}cRz)WXvx$bX%F5LiR}FT*|V9m52Qau>Zzw~fDczS295N$bu?TyKZo zy=(gCs>%Ua{Q1ub&K39w1<2N7&!$>AWXPI2_Ulw)L`VE;j6AE07BShYFFQeC9EBe;gA`pJ z@jq9=ejYGsf5ob0?YJLYvj%k1ZgN#hQZ?^R3WGwovA^O|OcTSadpw*zp4glrCo3JP!?1rJlAsR}NqpLeiKZrOU|yg?W%wgIF{&~KdpX#AA^O>Dj`9u6 zHKZ1(5t01mEy+(8;z0&dhar^gzo`9~VVdYQf{d>p=FS9jH~8}rlZzGsQo0k)MYM8( zE9N|J=K-l4l|@T>B>zF$l{g=4XH!0=jrQ+GoB&lFV@v7+JWt+P?#jNui=FKeRAO3? zI{{)LoYNs9y_xFc9n0oh-4$$AH)XNhuMkmaqtB+N_pU4PS>DV1iXk;7-8?(RFoiy^ zTD_3Nv&_O9LVjyTSy%%>e0f2r6&J8v0A4YMsAAx?>2Me(;TSov((Nu8i+>mu1AUqJ z^0KKxj|_(OoBJHfFL@O;jx$n5mS3)y zs=_Qq?e#C-Gqmp{i73b-O~w?_8l4G6TwM+;JAjE%As#@#ZY@_zJn`LjM$qqwvxI|+ z`*RNQ{FIE~LH64#L9%z|w^w%^4|=;k=)F`A$@n{{4gX{W<>|f{p)VCZ$@4pAA~QQ; z3js0dUBXxSP;^l$JI3??|9?n@37;D`)?DP;7d~+)Z%$9UB1}mu9<)_A;bP?O+62K9+e5Nn>%Uht5;MER zP%afDtMk2gH4o4RvVUgBLKIvJUM6=r{>Gi`m_@=dwktw@XVhkMj}{%JhN%u@CuBBQ z?PJ-5@v58ZkJ~2+2rctr!m$}NBm{pqML((@GP!U_HphQmbp=adHL1+TOM)wXVwU>B zF|ppR&lPs|Cm9sg{*?`3+ywAU3*iVk5Z5h0ih!O)I9x&ZYq`MNQypgq>X)=gf3*#V6pihLo@N0?brcCun`7V`+3?d=#yvaozRYh^)A=eA6X3qJtpEzE7T4kJWwWf!601I5F%0fNpWP zU#Oln5a4m_8Bu+%8Le%4Z3RzE>F}UX8{i(h275wx38!H>;!M*q&l-n-Q4ajsj9wq4 z67%uFrLbMbF|P!bicZnanQz2lVPaIEB)%z?f_R442d{lTLP0g%6NH878FPP(F3o;(nwT*>_Rl(=-0i_48D&uEPMdVrdODFxE zYVDg}7Ya2g9IJOUgMXVPd!Lr3Uf=`Bmvi$`do6Hgl zje$XSLd7)i{$^s?mf1BfS2d+MJ7;)Jnj#r`&Cbw7v})MaEeU15N9#*No?C_^ze8BE zt|hHW1v`&)i9*G2YAQn}v?a}_(Vw>rsRX`w+)O{uB?Rb$^`F(q$MLB&0RwOd9tL*V zM_JtV(0~C(J0UOm;CEK_It6i*@2XR{6 zYGj;0r2)Zycr)OP#>x1Z2U>~j1;%O3dN_|>U+<1`7+z`@j*!xWjV&OHp&FPUHt=SB zit~a!p?G{bZ+-usV>Z{jc7uQ&44)K?+Hs|m`qthvO?er>|4u~jVU>|w+<11tGql0R z-(;0|>*?A3i#Z-YlLhBT_LntC>e_qSh&fh1b!?NdKbtQcfF0Qov8O!u*&twZyD0lZ zg*@(g_v(P(RamqOSgJ$AdT{C)z|rx>`C_B}PjtgNQvKDJNS$~Y-MUv7bH_|m8hC*= z@U|6_!HVSwFVP~W=@yrFB$y8+>TRt+dJfA4z2EVfJHAE34?XKdmKUqYYll2gjOvYT zlwIS}$-dOevtccw(hr;&cy!Yy%Aj-(W2aW}gzp#7aXJUh%W^{vh6)axST7Aq%mO_n+cf<(Zf*kIqj*#o7Qv*3V2_7+yy5R3gU$xFOaWh`UbOqlAPTd0 z;?3+!-iOp23qQisrbHS6Z0Xp`FT!4_B$y57a?Cmz|MVouuTG-HsMhGKL?mFvQXfUG zQ!~7xHBI}~XyDfD%26Hs$YVH|lg!*14|9pWmqXM-$xHI=-?bK0-;hN1cT@QWqSqyg zL$%o8npaoo^){@TAZ+wdf@9CN0ChF#L2yI^#y@Q4bzv2)-xpr+NbpXcQ!%);`?o;s z?Aq+3uy9cY?T4YS@K+duH<#h^2Q zo2hqSMiVY?;2f)LTTnlv7w%|>+<2*hT@32St$d})Ex5SonH>GwdT6M}T^)+Wgw#D5no$D$6lsX>e4)7C;AkUI@3;e1FQmvy8J)^W$WgKSfpnB1y{bQ0R9>EjJSMs!V`GwpQaGMN+ zPs@A9jU;~B-ThT7GzkAPABgC|liXd^#lNKhK0ll@dVB#+dPT~uOGpygF0OQN7GdXwbga&0tJd&@ggnm4#g=H z_u}qQ+zIYdio3hJySqbicemgK=R5D6xj!?>WRkOG?Y$lwUiWHbCGBvMk0ACIBSrs| z9{P378BTg_95{UFI7d6zn;F}M9W=8 zj;w-Wa_8{*#YKUc_E|0jrePcyC?lB<+mje23&uF^L)eiC9^+`qwzMpylyq&0=iI>B zJp0Uf|8a0#i+!OgIFsE@)O85EVwC!9cZ7fFzaIiDp##>9AP?~_eQ;%3Sge$up9M%u zh<3!%=YGUrHDGyX1o((kaz&#f#rei_-K&yh-pRZ)tDTN-nb8|q3+2o}o)TC#fdj$Z zb7F0WFu*|Z^*msMaR^nFH}^ZuXe>CPn#Z2+fwutYaJNDggY@eynh%?aGC;sC`a2 z%Dv~J*sN%ps$SrZ3hWU8W`Df0~e_|R86 z@u1r(eub?#Ww;fOJd5cvcDs%T3LI+z6-w0}E>WPxAiQPQ`qV!-N~|)QOBi!?!=;p&oCw? zMI~ey-XsE^`rvm=uv}4HMF>PMCh0YHySwv>G++%UTI$hQO?5ECJ%X6~D=BdOWAWF#lW|Lqqw6mSkpttauv(<+*n*UFmLWY=9reqVlF-5x zIGRj{BW*LPp6pbrJPzP~%#SJq#s&F^t?D5+0UuU2WA__46Q*v=W5xaNR83tJs}1EW z(^-z*+VjEE{?X*xt`2MwML0nlY?g!_-}J(So=5c(T_r%#acP1rOnM$Xyy*Hhl4Qa6 z2+aRopc93!^u7M<%bAUyPeGd-x=tfdt9V^sdpm4@5;)Ww8#ryOefK93AmCt5XeagC zirc}t0+gmZ{y%?_s>_iv$dI-+*{Aui+6z3KAheLg%jx22JxR(Ouenyg8tHZT#&lqf z=!Tj|W8U1H^6X{tF>(}s)YDz3z z@+}oeCxaBVRy1F0tG^UDOE^7bap_TVuZCco;8Ugl$C=)TT-gxmr7ty95MbW6&#)Ii zp3vVq$ap&e7A}2#Vz#I<+Hp;rYT4 zB2w1(KGSMW%i#&fW`SyX^ISf$b&+Ov!NxU}6EtOol&ML`npSHTGyjoaK+jCwtLT(A zr%zB|k*d;Ft4?uF5-psPQHpw52tDmP3{=TpH+$`r-yqwa2o;$9BLxOD(|r>N#Mo7} zjyr%&!D@X6yPqXcx;{(O8Je%6)_U~t;qU#-NlU0gTR*$Ic5UDU>)|MTAdHEboAVfOIlx7QI5ZqkmE57#x=GLDfw~XFboS;s-DcN`SY|c?H ztTDr4Q>?mITl@Wyh}y!x2SL@RF__UZ+Hnj=BqvWijc0LvGL6dUj`?f2XR%_McGVTx z-ucUgeD>MB&p)_4dE98Hwl4miqqSZyMV&}Y?t3>YCY=7fjoD*=wI zB#v)O*wUBIpt1mhOsTg6VJhi@E{C?AyjKQiM(JsjTD8ALn7sr@r&Prb)to!?$$K7M z4#4XZw({I+*1iPSb-1<%N(_N6&R(qUynu3lYaDQgS55i4BP%eYwR{XGL20 z=sO`aoG&U8?Ncn5eB?Tq_1JVL7TRF%?2?xk|O3DV@QqzkMVu@p;`-|=#7 zX${V&8@FzZH;u3Vre&Oi<+y%K#Tx%|jp^TGMjU5^mlwiFW4`pQvW%#TrY<+d|IK#- zJ2v}Cda@CVJlp=z0Y9h*zX7B_P~R{&o4Au{x}~XAeX%j=Xv~(XgYAb`b?ZO@@36{( zEb8}@6n%5T5*@5v^WT-bH~A&|b_nhsmJ;WkP8tC3Lz~6~qyjVk=!OQmu~0}~gyVq2 zeo1y7J5!~KRURyOS6AiemdMF4r6dWdf1_p|Zt_ zLLW)LA#>35Ygsy~?jxg)wy+}ekG17x{OGkATD%RH7_uhGrt`6Po)Bp>h&A83YB!!t zha~SNz0K*FX6noa%V9y?FI0H@Ss5@1W?4Q)TM;F7jIKO-J7|6;|}LVi9mO)d~K$yAl& zV;^RjbnkXS_7RvZv@v^G%A8FK+lEcA&ORegYdI%{nF(gg-%ucBuX`QF-lATsFYE+5 z!|M()WYM>tHAUn{nrdXuq%TsZBdP|DgjFsQi?gdu_tXiL+ZX(wo}Wo3xSd);TR>HR zO<247BgZ>u!ki5**z!yxW@-gFU{*R@CRWGCo{2ce=>DDKl<`+JvM~z`;bv)V<@~_K zow*)6<4bIg{5nik|3sB&Lv>B#q-(&|l{O}rHjf^yZ~zJ&!@Bdr62JUQx4BvAQi|B5zJzZm3gyh;`)eKXb74i>0Gwf-3TJ{EvGm3xUu*ui|a1I%>f#aNkj{mlJM7 zbUkOtqEvxfQT@D~YbX^p={^+HA-P|ixcSYdUVV73VmcPn(r)lSk)a`s}!T zy}jktLXvr*Chht)gc?bS?mmX114aZt=nTswBgL&_UF@zv`+&s|(&E1`0Cbaa!tF9H zhinnPF2gk3W>$*?%2&F&uQe%rw632lpyC;51-QAx9yBkdgZDwl3eC3O^+Orcb+yqK zzwX`{a+&kB2QMzPyy8dEqki(w?7nq(S8y`dTz0R+HEiq&D1|BNsBf&^{ej_Y>wMj~ zbVN0s4{JfO4_g%}+}_xzJIaas{q+J60{>ckEj5~8@>ArJ$rTsYkw$y79@4BnPy@7; zc=E*?7mdTm^$~G+F?IM~yPS&_Y7Q3b|KW!hL-1qRjtPCdeD;}2dM@}oFJxAN^=5?} zcWM%h3|&XJ^Hkl#iMhkt4H8Z9(9UjHJ=ReuPq)to2P9$NN}|eKNPT7{Z+6S7kS%I$ zls~4Q=12t{he({-fHEkYiAK&V@nUhX(s0klb>wC=;8O%@Oh||dLCB$%DlQ}p=X{!L z&P^f;s{_0+7ECpVOBE}&mG{n)jd(ihZSa+*m) zwt2I-P}`IHMVYjaHsrwPe^>DQ;EqWsDU;tB?$wnBgBx&v*AyJ9Mj_YChgZZ9_=7m$ zw%Kt+>vzDd0xbEb=whcfMg?fhFlge=Nd|}{wN8eH^2*%q@+Y8$VW*p6C*P%Vet0bB zDkDNanf*Yi(!W4cFKjdXqZY(!erzIE)~k@bx~B9?A>^0 zCXR@L&%l$`K=<1;0N4m7R(GgOm07>2A@@+Fe5BIlpMmF}KW9u*^`h$%ppH1pQ1(WJ z*f0M58N!Gm$hTr<|4D5~!LV$g;#|2(W-$A2*X~aCOzE*=o7dW@z~8)kf6+MEqWVkY z7orrDj~RUhgc^^oxRlIxVt^w5y+1c1B+S?Xq7Ay2d+JV*>O_9u!n}Lf*na!Xex0hz zA$}0^7S&tQuGL{f`)@&^LHyNv>i|}AL9PDCI@KVi&&K(?^}!n<3@_z0=W8if(}Km| z7sfn4`|M{wm#EafKdC4M+z*7X`R`wvkp=yOj_WhFY43wFhf8!or7UUqb<63D8P|XX z)e`%`WQ%9v!hWp*PQ!#gOKhi;CCGCKzy9w1^X(XUh@Xp3w19f|EXc>H%8eZ+Gr%3^ zGM~88hkV}$0p2(k5U7S{0f*r96OIcfGm=2jn`XPkl=J0t%qe)ZC(A{`QIZs&>NMq) z?w2bN89@NegB`|$Y){_p2tgZjC8hZBPGkK81!f1PC`;?{lf)1VI?}5M~7x zIFYD?fP~F8hPjpYesAksP1Kkho^r>#EcfY@+yCH+lZpwphFRwHc|J|nbu%e zR^Yp0-7u+hOS5ys20lMrQkcu;(Cf6)2eXgxje~~+It5!rVgHeOJWDJzq#{9{Ea513 z527b&GB12A7YZ%`W&kJG&y}Nh-MG<)SBFQCN06ClBb<0G8B9n#h`LrZqwk4~H^qno zH|tBc9y~Pa%hdpn)a>>dyYnmx{>e8F=86L>^u=z%=()9TuO)A^d);rvh43X=CfOq~ zPZ_oR4@EC2n?7N-)#Xp{5aa`0560C$4>Yz5mSmsysD4XGg}0xFi;9xHiM$KdKcm$8 zI4@?Ng7xSmy=QZ$ky^{%h{%rDgR%?(O<$0l+0SvqpA*>?&+u7nFH^#cHNyYkhyO_lA5ICsgy6+AQ${8WueYp{(wu}Puf%QIkTagDLm2rz2fZr7 z-%+yWYF@QE%Hq1LQ5m4iQzkwT{*)=Icue}a`z!rL-hw%kUV?-Y$?0B39`Ul7jqmv9 z)>us4k-_W{DMmDWGFCN`HUb0%=6Q$2V3b6vfpGuV!gK}An~2h^RIQS6Ac<7D$wb;Ju?pb5Xz9JfYz-kqMvHOcLSiMkJ1em8jCu<{IE z>b4`g<{bD9FSVoh6rto0-AtWJ9<-+Z_tvQEJ&o>{qNIQ_)@${cp4;lq|2UXpN{hq( z8C;%mlAF$1ez@jB?kyl~0assl7vOdv=%(9hXXZ#jh=$GZhsN7Ue-jI?0XCka`TAZW z0^R~fFW7MZZFH#9tJ+ViVfSG9?Tr!4k(pozg)9G%3XhX4b<49pMtl-1f^fx=slDCC zw}i*Y_ZJL-QkyM`WJb;80WqT#A{{KYlue3 zH{5R$4QsEZ;ml#(pouM!pKPdOEl`X;m5HSf1Gm$qE5!nC_`qCSydSeDtwwwcks!mN!>!^(0;uM z&LyLpH=)<1>dfR;63wogeJpo8eTI0xg^a=do&UO^Zp#_gC9wJUNVA}3w!FFF!5W*I z7q;wEs%mOagSx)g{reb)zo!22CLlooS3Sd`2uW#xh}7FF|79$!oU*1OxF@A;x0T5$ z>hX%;^zEnw56yz~ZCYs=Y>Pbc%FyZO5plR1kb2+2aW4rNiB-vwqO8+ezVe0c;k&nyl~Nu!x$>)j4WtzKxybBJAQ@cFL9O#=(0U7?jx=p7{^NZ0l_K_c&m_ zfNQ3nM3`?KzH!pbwBlbRJn>X)7bVL)_6Wz=*KMux*-GEqGlYPIv5aQc?pTabMKlz= z1~|7r3Xq*yKgIkCc_N>Mn0dKTq@Gxhcd+27T_{|>&vtqvk~z@MGpzMdfpA?~WJFqj zB$mA2E1bbsmk}PlU5tRPv@=z_$sM_3WsxA{miZUk~B zYCBHjDt(+Mn`T={WKvBLZD+S-sSxwr(X+M`T-3abAJaq*XA^->`s>E%I3hl`l|sDT zX(BhR)@5*KZ_6poseP*J8QZesNkz>?x|wHlXTL{@qX$??%%ZjGM2)*UNN>h`aY=yY z8M#ajkGAwW|0Zj$tKyn5$uWG}Auv}p_fNf636}mnU;BLyKGyw<7S8||Pyx?UI__Z0 z4HbVKFPg&!E*3AVV zylO98nyj-{+y{20=AyU`EXgAsJ8?qlw*jv>-TpJ(rY4TNz8Id_ zvtvgnowGtaVVDRHy8m#5b^_kfu_f9!p!NOY&if9cbEX}_y&GqxSx&nPY=alT(sDJ4nHT(-i@$0Fi^*;gwlkv*j7Wk5 z#1}h6ky21Q426LS=b6=TpENg&=GtJrv+MZVpbkIBcDkyGCvBmj@@WbzeW()eRsQfX z>;%r^j@K>;zL($7LSDBnhq~H%V5*pKqhPl*qs5KWYxV+Q)Xrgt>S)Ylc&(zdLSLc5gc zO6Ys+5SO~U|DqL(Z|)nnlU|)UJ=03)P%DKG`)-;vD^zl};#gq-(tXdgRPi1u5PWbM zHu}M=O#|l5l)IM%YzO&GA~e%~AV^TSQTeS1SiJs5lK9H-C#1nfm+xu>s&LcH55T4$ zbRQx=X2p}(27b7^9H}gCE>jWXW1TroPs0JY2l$w@O&JCB;WVzLRJ&dgvMXw?F)XrO94YHYJ<7v7rO*`K(I;2bvB~iq^aLTGXyi- zUCcUOj9>pp^koHlx}jiPe~Hs|Y1jK;m$R!&a)NO=k01PNH-H!dR(W5zwk|F`cfB}B zsUJrB{s?=$qf%d7;coA3`=Cs{rqv|4vRm0G#m^5e5`d-|(;sCE{$#B=`V{H=-bB@< z?&OK{JH$2cIT3Q>|F%xQ>wLq3dm32A=K}YIr%sbbT)K^&DVH0VA6<~fL0xn+O>TNLd#7>QM%_*Jq ze$AKqHv=o+b*i##kw+{o0Ry21B~ER#&EgYe!E2Efe$t@k1D>*S`B|!&`^%6SO>VQ&*ZI*l=xj zHPFVmUGm&9d@+D&!hKi%Pp~|f#*w)Pd_+DfiE_<=9+W) zlz{=CWept@du(lnH|o~URxgV5J%SOK(ZUbxg|~IdGq92m^)V&+Oi>N7{VQWlCuCLZ zmHf(3E+MQ) z^x$Akl-&pRD#od!kNIOr&rRzvw^qihk<>HGj~GG7m+NMW6$4;oUjb|aK;gdPEjbr zQexQfFfOL=D-@lS5vSZ{`%JsfNgkRlb>!Oc(t~&UMMyx7TE=E`#!se9YeVbDP9^h6 zYOH;Q)42kBi7LgzgyvfJ$+!EjF|!_(352{@$z_}1Nk0KFYKXKmBv{kEaj$Sg^}JP?MutZCod9peZ;Sq zwDRB1wTN||M!s6SR$p!fS$r>Mk2u59JE#lUM)5-IeOP z?|3%*3JMN#02wMUnU~^J2423gEOMn>er9;NXy|5N(&~cnVaWQ03%#(rx%I9iX|gvZd=|BhP?N8e4&7%ssFhxA4NB$76u%4x{KFGrKOKOKr> zo$kWtR1W3Mnd+1~P>a2fgZUmwog3?qYxCB|6>sk77E?zaukofh&z~YAYi>UA>IiAT1TrxA$Xhh8P=dL-S3KE++CRyStvGo|$kAIN{H0=)qI4^K z?Nxb}LJU{jbI=TP7<-SI)}5v^CG0kHyY)H;XGvwYbsgaiiFT^+F&%qs!uXy}gWfZ= z=GTQQ0EIR+GH2a@Uk@WFnGevEi0o9U(66EC33UCj01-;`&{Y~+i|H<279TYM1$g4H z009K=2{@(m-u_1<;ct zO3EtOu3FT;uABOCz5O9;Fn*{%yL3x%VH9&?3Uy2FVOIDf&b+d(ERw?2R~~-2Vh`+( z3&<}0qB%W1)*w=1XIjQ`0QzTpj_JC*-SPmJ5EI0v{z&3^x{Sy5aNfso6_q#ZL!L2&dZpiUgZ<(mm_eoFo%~t*au14Ke^gDL z_-i_d;ImvBemn*^asP*zdnV;940DK*ZR3CLFbm!t{zT|mDBjCdKK7(*uZ#{Aj7jqr zT>dbIf9q!xbS3ww{f&QDgS-eRVoWhPIUX}kiy+Qb(w5&h85rrz@A)TK+FZ+;60Inu zJqFw>H0^fWcmM7>Q+zX9SYN5rIT4epgS=sW@53!l8Pck3r2Z)u)^pt3+>up;4$~bJ zC-rjc+SE(2*;2=RDTAg$x#HHILe7P5tM=lkmvZq+hh#i;%DPz!)@irB1;ke{i`nwR zBQt?kh$5uZt3eiY3g=>UrbBB2HURKA9$n(ZI~8+qJ_WP59>*1T$QB)G%gVyc*jB$E z)Jh9%RDrt`sB*Bi*b=k=Cs^}Lszb-1dbXwXa`z*kwCJuMTJOIi2DRE5Yq4%uJ%36I z6ED^Jtv8tXc6v}fR%}b8S|c8h!l0vgXc^!LuR&I-8>2{#k-u&UL2ru62*ARVUNXYUa19e_6Q;n0T zrh%LniM%y-F@ppDoKQ9fD_m!&Hv{_=FJonWQG1Pf; z1>Q3p?dGTy#}I&pX;9sO;Qg~?Qg@E;LDoIScIQaH5KIg)&@H;Se-Wf?h<;Fp9jN#uz7XxQbk83WX`wsRmpdyk&Z!R&gsm8}0qP7o z`hF!GV0#G4LHk4&nZyuIgGV>=)-B}!R+10vQOAf;ytM;6B#g@heWkQTfe7-|g8guA z(`Y~tAY0i4y5hLvvVg%tgeJ}q+hAA|Mbj~{@Ux4ed%f(99;4T6WP9$LdwNKZtg^W~ z;pn~ea?8@jk0}m(o&+ht!G=uzdb1Q4Eg2a&$DIQVTI)G{9@jHPa3#mUmu*kHT`nOY znW7I7ZxiQWq$b+;&NgP|kj2?S-(FzzaBe=Pl#bO>c<;fP(FrKqW3?xY(VLeDAif8; z7sPq}I+3fttV5{K&qVpIBqYPU1aGG(qX)?ISeB-mkj<&FiuJns zxkmO|Mx;q@DS%foMnxV9f0VjZ~d#f{Od8a*W4So?(zA z@;qC4pA}R)G~qLD|51bswO_SsZ-e0^pvRAywOArXDw$W{3xaPxiYW+3>WzAxqXs@> zm}W_(yM9K5G)vhNCe*O|9mQ#Obcme(GIwS5(xRIc%&Sn$J;ktehreSjJJ>=HR&I!< zT7X>6TcnkR&nb3uNRYeBR7r8m>&7q;5QBB?^_l}*dao_%8)p`%=5B9q&~(d!!DGjt zyXLMhcfL0E4`Z)1^M_X{jT)8qPn?H`)b+#I`;=28(R9XbRv-ParMB@q-p@L3X}fT6 zevTH-ZwTX1jhL?R8!X4dE8OW$SItwZI+_?QUb!UpxCwwt734M&oiJZwF5q`;NRbAe zD{COE%4!^zXYlqg#s6Yqb2?cPCD^#cj z9BNj$Qf?o)HQ%ZgY34QRPn5Xm0I>Q<+tf5G*31Q!4PP%`IURS&$#WjPm?7Xr1ceN< zq*2c*-X2cvi+S@RMQ6t5=RFK?yePg3{7E4HFQY8=)#+&>hd)P22R34=1$Rft-(;Ee z)P&3LxFxKyLeVnI0QWtmP!hfE=Dl<#r7f#+FmfBp9znJ zWn=kg6xBwX_icFCFiL&vZAqD-dBaa2oSgGc_yP6H=y-aiVTdlkw_1+O&1BB1ZKd|k zu&-3)b5{N}wi!XAw)qA?Q=3?B-Nz^I8b66fnpmx5x8hNGccy$S!$Q&O88j;em_1== z^HzK+4G(Wy!r9X>v%_>#jaFSNwU06!X8}VTvI+#;q;(FjErsWcnw($AAM+D^?zWD= ztKZOHQ?SeA<|@A{zX`$lRRPmH>%7&mKD$CI8@IILSA~jYt%k1!NEm`MWgdl4J-dFw zY>}?1c~{@k~*>371wV#kOxW34~Sb zwr&6LJR7}VLupA%V4~Q8C-cRv#$dOGw%UlfyknwAoMxj0n@)bt`-XH0LzfMgq!hJd z3HiiliRJIqD|b$}=(bNWsxB-pL8lyWJgm|NwYq3f@;wC*ocdH#?kHmqBTGzl;5LtX z#)Tre=rUOzqK?Q4N2pZRolLk8!s)SmSO;@k12Aas_b-w0getl$Et_1eUgIcV2DoaR zOvHW|9ad9e0c#&+9~%MWi-m^%DbODZBpiKW4d_lF;L|WnDSdIuv(G~V?8-~=@Q}7_ zr&>M4Wu^q=g)Nq9ev((E5q+j?>27Fsm^RF9U9fGAE)?fUA;O}o3#9lS{**t|SA@^o zDQa7ie+kxeKTAgYvm-=I^zhFpZGXl}kEF&q-akR34Jc&k$@Sw(rRMr?_XX>F97-iQ zvnh%~o$u^xrnv_|l#OadhB6kBKCY7iYoy37*v7}amIz)#^D<0R$a2;y>D0#9_y=4uYE)}bLI_X=uzUW?!6gyNGPZ=Osa#p)A1QI5 zCHYS{*#%I3Gi~SqUI{y+w3{$FOUY%0z!uvTUbM}j)Z@a_Nxm+F8tb`7&K$K^R z!?RgKPn{N*Y+mq0w!kN-M^k(TPs;CY3(?2UX@wYl?+eZxD+T+!`69`hXY8jLF1*xu z@=zV@LL&j2^QNE=DM+biQe>)=d)9o)&>>}=D@E6igw3_xci7Igl#vvL)Jo~#DpvXfG!tu?bSI#Rvi0j9=Y=h17^-swY$DYg;^JB0t<;i_SUq*7+)%{#-&y&C{%BU8-c^B4$ zMUO@30hrfl2aUJer8=bzC-ituN6=G0ZiRl34#u~)GG4rDJiJI%i8r({Fy|S9H_l#@ z=pKJXP?=$&jGN9QgKo4!$z)Al3vfLgB5(JI&qvaJCwkO3UCv2}OiL)0v^Vux_}=7^ zp)*YaJg*O=j(!f+D@2-c!0Fe1zi@S4M~`x!L5e>MG1~3QP+;{3iWw9OFnD zQn_}jG)uVTGs|PO2$iGyt=u?b8cS6*70efe1;DGg)_^uo7FA~hB?Xdt0G=Qivi(bo zLxCY6Ki;N036Aq6uuRw%QM5Mt?gZF@ZK;>vkC~ijosS@XA>sP?&*3tZNz3uFXj-$_s_YuGWS=)C)wkl zJQ$rhqpibGvP?0D91WRp*XBRf@zRTh{D?5`M;)jZnY14c_N{jwZmHxN%T^0_LQnPl zs1(*s!)s0H`gHl4SM*aCzj_e*9QexycH}J^v7 zv3Q*9l?1r&$S`6w15A8V8UTWdD^@;NuvUKcck+2svOzBi>b#S>6XX{g-M{aC3fA6qo>Ng1eGp*+Y zHTO^;N{u!k`^-U~Is5PYAN=`b)kyP!WHEp9pSGzbJ$eX*N!;NCcD0xBEWF=+4#z;& z?{b$U1ne1KgxXH&FJ&>%``u(;^(YVMrRd!{n1)C=?9N?>_9`Z+vmN508$|PK{KLkK z1AxYXG#GnP9oXgzF<76BQ#E>YTLyQ(^c}(CyPEK z%9+KFsq@<)BFfd@A>=D5=AOI6k07K<@@W&|7J{VnL0^Tpb8f$V$fi6?p8dEBUfze} z6*rY>Rk>&oAz@({F$St4|5qx;T{kjN045e$tl83EyV(kF4z)HI6)QmS5ccq{MxRGzI zgtn-z(p`UVu$)NVzgtuT{#U*q|5@96r7b2h8^?*^7b>_5gyVf(7Vgz4biNc~A8L4w zc@NwMIC%rHi6?|WsetPYV$Ke}Tc&`(vdnLQI5lXI3D~%mKFFH(teYAG@lQq_GNvE< z_jmF<0S`dk6xc#VoWVV7UQxXG)If{xZ0&HUqRt*e-F#iT*_Z(bzHs&A56HZ`2A|_Y zZ8O>Y-Pei4ocN$>VXi+N!ZaFMtnGWL8>~2Io?*wqpNto4-i{(`(*O_NcPYKDpdOGtxQo^MYKTTn{hdp@#0(4VhBn z+7AH}x94##bIo@Lexb;3VmQzA&Kn38{(+B;WP}u8criK$H-!*RXq*wDqWFIFDdp{@ z<4n=mFD>$-~mNb0QDK@%Axnl;ta~hx|mf+*|5`EYsh|U0%>q{3lamPfYi4#WQJiD`(Ak3H-n#FW@ z?nz0s0)Qi*i&cZ`=<-$0>A>6~X9CiO7d(pFA@b{&`T=H~*(+?8phISP%r^PBR@S=I zq@oz&S-_mgY~ieVx&7ehm|yNfRi|FtuIhG@^1Y~`oF$j-%NlApqN34E5(7{UB^tyh zO@|l>zkg4vxr_5-<8=k?K7g>qDq%sk8FFY@gK{sX4`O_RbOw9Zet#b_MtCWmX<}6O64Jy5k9# zf5qL;D=~1wLi)0HXle}xz-V-+ls4&oV^Pb;eI)-JRjSA|uMg6c@!q4s3?0Qj&K60U z(PwK7$?Zi9v!Dl_qO5`j7o0PK=QWZ-;yH!&B( zms%Y|H#S;|B0&kyCqb1`zlGiqO!wV2&O33fhCcKoCY0Vp1ldFWFVDD7x+4!rfTjV2 zi7+`FES{>FsvWH~)@W2koeqX5jKRdLnWsi*fizUg;CK17zGV`(6 z`L)>i0f^+#FTp>AS7=ir}7=edAIHMa(NseNy^6kCfvxi zN$>rWF80bP)A!ZhXrpK|zYRG8bCkoa&-o2O&-7?j=TMIJ#8#s8Z-i-D0ZXUj%{VSP z_}^&qiQ1>ZNDb(u)G0PH)t${Q z)uP3ff+b{4aK~`Jjug<^k5l$Y6sUcc z*nfKg^EC!i&OzpzywO7}L4etaq+43t*c-kcu?|hSZLT-55~f{V7QzgEVtVV(CvkV) z7F+U1INq*=M^V6KZh=&(@K6eN1b$@tuJon+ubX7Q+mPmkD&Xu`?j+xRmL#khs~vA& zG-+7pF?quA)j%1m^9|eb=1kGyei<1Ng3q6XR4=P_^xSy5D(4jZTE0K_zR`HXb^8bM z8$(Ybgiy4mPP6mDXJw)NMxnv>iTn9ir{ql0Y4i8bycI^Lv@9%2G8YTevmU;ln>CX2 zO5MwXY2Fpns`yJs@3s|VZ)nc5>_@a%oGGpMX17Pqv4z?;CnR_Vb(ssV2Oh}3AuA0R z|Kx08VEsSC?a<)s^{z+sZP)S=nWl*t`J?uG8Lrp(H_C(7ujD;izB&Z3(zWLzEfCRL z;74C8 zdqITc9E*g;KvRD$8nuYq34{}H{P1{bdEsz}4(X-dB6Eu0LQMz>WoiqbrgkLXM*64j zalKMy5G1~pPvVwE{8du3O#G6kia!^mmIgYwY|T&q*Ei7*wS85_fwV(NdlwuqL>pDd z4wKQbD&N3?mkz0ncP&`M1;=jxTiOvEQrJn|3ok^y*lU!^Yu&QAsk9>28b{!t(_Z2I z0t%s9v?oJjJ>9FVQ?qng7}E*p7`q6)E6hRJObo*O*|83zIHX_1J4`$5DMVnRD7-x= z60|jPz}=*VT&XaY`zDIwWg8#uW$K~ae1SUq$;qxieays^yn6Aqkj%WxTiwQSsas0K zUg7!a*e>Z0%^Xo1N+t0d*f*xuL1nh7+?I=o7D-t(Wiq#Et19^N=>*VJ z`r#o(?y*m*pfgxg8prTL2rIkcfyBj;8syyIh&7_nOp?oG z$tS?T!{VdoekI6=mJIg{^Xn6o_(`1yJA5T4wlfT%o2BM%vq7G1(~!>1L5h%PwKotJ zN!YMI*PJg=?WyoD%qG7M@J-nI?CVAq|8&+$8Q+z;tRhZ;NXI#8EZ(6G;;kM6NbScZ zYESp?F*r}eWDYoF7Mx_Bv<&XLkc0o?L+vc!2gEmWgC-1uJJ#(}k4`pLTX)`Fh&QOJ z+UC-}lqBsz0%dZc%!#?rr-?xxv%&Yyad;T|uU2s1Rr{S>&VGrKsJZUR*W-e1K!gAi zcW1e2E>Mk;h=d9LQ>34c2>JlN0{b&wn6}O6&nN2`uM7wG4TNEa4QaPM7oZEs4@*v2 zC~N6>Hi#D12^YCEd4yB(e(I0

    Sf}*2G)S{5^KUwxD>)cq&)su!;g z?3ar6bmFFVpXN=E=4=Ko)kKPWzo8q2P8x^uDRTPwOro_5!Tj|ETX#xRg-g*qvp4QB zXa&vlv(p7yXMsSNcmiHcKW_kE*8jg|8mZi zO$K5b8rpsnPH<{#@N;xVZ=Y3T9PF0*Nq08cogo> zeZa%1WI4&2Zh`BBJQJTNsr5WW$rmq~H7ZuJ&V})}nJIF$iy)GbjiB3CpQhgmIr8z?Ji6Z6*c}%vmt>r4W z(Ru_Tl*xI{Y_j@3r7b(&*0wU$S>A~ZrQvd^&W-n~%w9r^crpGVF?;zB6F`9ChBh)K zw3Z@U;33`g@?-V!0jsyP1LTh9{-p9z>Q=Qyy1A7{i@GlojA84MJ=9zhAHQZIC;+sP zniZCRmvN^Rh6;{h5CVoNIW@f!$~dI z<|`zF^xWj^rk;-JoE^XY?$`%KG)+jc$|pJD-t}iRsSFe)EIkw>NV7V>dd@kSS^A zH7%d#Fe~P79tChJ{A$_^I{Yc6)2C2gh8J;6je?VlZ+;=RyHe zp)@l_F_6;UcJ*y^BByzChHN8b#&b+F!Cc**`^PUe8aj>1rG}yWueYLn=-`~xuh3kk zsIPGI6rEh2UV?(W2_8;gEpL$BAI{#=dA#~e2M0@xsMnSi>u3ngB#*JP?f&U}xylQ- z+(!Mdvb^oI#F8`;T%td2WhG%M(XPVfbJ5|8>*5wt%3t|=ce)mlGOMZ<(GQNbCsX=+ zEgHMm^nQS=i%}ecgagQ0#q!Lded9`Gay=b$>QOL~l5(5*&g8gVE5=b6qt)tdVzndV_}! zj;Z5O`W8I($kzC5S0^`IYCCLUBN-|VZ%8@I)iEJZEuw8NuIk}P?uE+H?+65F+Nz7s z>_=$qq@S;A`G~Gxb6@EGq`Iw40qCicn#68uQM{`d*Ef*MSsXj53&<PAQI9oDIwi0BHi5~h;&ITuyl8Kckj|H&A0d7?{Aj# z{@yd^otZQ9%=6s$TRzZ<1&o~JjVPWTWL10{unTeyT%w=T5$^_&zp|k+0Q+FYiVM@I zN`p2qKhtA;w^O`!zpvg}z9d-VY7$#tS=Y^Pe^~QnA-M?=2Tq^3FT4 z1YcaVOCB-@PU%IN&ud&37zx0`I7J2yMS2lcsJ%~I3{W05_xGS!@=l^Ox>C{WKXEM^ zli^fkqTr7<(eVmqYzoxR2l8YS+~*N&m||K(IAy~7*qwR`b|oS@0cLWdL~>Zf8uW_<-ecs-$lSbKnrEV!d~*vxU~@5XVfah9c@Uz>{qOqEN@zCl7eZZl$; z?}JNPJjclfjQ_w}^qq1j{>LCn?(l{~L#xh2lYOCygH82S+k?&6dOTv2#LfG-lBfZA zx?{gJHZtfHlu`)c{MOfr^bRlu5d)WJDuuBn2+-#*9|Y%UG>PrklHWLrVL-E2ZxNn1 z2@q&nZ-x?SSP2g2O?mtqXu;$qidH!OA>`E*i|DG;L^>}D#qO%%}J zWCSHJ8skW_mkn=qd7|SPTljx9jV^RjZ9ViJzqrh1VR!X+OL-a%9<$SZ`X!17^;R?+ zaHaYwcQ~K>ul|inSp?RvUCe@oJbj_9&@|$%)py0iSRP3pky6&xgV#DP?XHHFZSdNj z5fuIV!uLe5Hn*a``sLlXs>q#=hdZ9@uK!gi2E#}Z9?IH z4q?m2jYGK-dNT&jcokL0n7)ItZ}xNj)g5Krk&z0PrzI11ELM^JE2g4^PPLqc4IczL z!PLn0ITdvXzUxxO7w&3FJn@$ed_oK4AdB`?IRtprWkQZ77MV|P|1G$G`o8v6328sD zm%!QG0=u$h;oa5!P^6(fv~7pi7CO4gBNxLLGH%l5DW5*cABw|;jQzrG^Ax!}{AtmQ z!em+jv={Ws?JNI`TiC4$eS#zEhG9B8+)?x3q7ro zzg!HH2qUPhX3~;nGY4(JO{g~?NPZF9io3nh#6Xez_Z2-z)1>35`L%J;PN4T~0dl#7 zA4^|?{)l{%9# zMb)}@tH_q%E~Fkbu}hMCJcelZiJyZsz)v>A;CVfdHLGYr&DPh5q2-b)5o~Q(^J2^M z1dm%c@~pD1|Gy8n(sV1wy4=_q=xyhBkgV5#3KY)yc8c8v2qBH-3ItiZ{FaAn+P=92ysR-IBju-^tUj*NANQ zBns*S`>f~o>6x^*BmwpG&#p2WIm9VkkwkvNPQrlZKhY5RZ0JTfq=>6CZ4o_)=0@*& ztLN2A67Xo?wa|ZfejaIS8a}=DVXxP!M=N$GjzJEm>KR7XU^}>gITBa6!!z^eL=X4W zY1@BEo+VLeegg98uLj6qsMO zXJwb$%`r)Y+QP(oIl}c{0JGQO`5trhC-yHl^3n|B^FLC4JTws|$=)a+h9aq0m8g-g zPqABf!i~^=y=e?Why%AN{ECIg^XSmq+b(a_g$6DM%yh&U7ZOqq*~K5)ZBV|UjI=LO z6A!@1etmJ!moH?jwCdLSWR6W4EYU^GxgYs4y(^{U?!NjOBXk$#+NPxZG1UK-M(utgHkl^* zecSi7DvWDb3^AD47p=Y=6VgQPPGl+5MRDG(B)kbj%02BfbvYPu4_;%QTda!HW#Nt> zqDzTsrfYh)(uEMx__Jnb1^g0LkAQ>ab9tfM{EmEm{tt-{Q-cSz$Ggm#JXp!QgupwE zoY1#7uAKU$zO%WwxXQZ|$b-tSRBPx;)8LrcXt_U$EUF2weT%Iyf9Hw&W>8i9tVt%py1(II@ReD}`Zuz*i z(x6AmN4HOR`_u{tU%bK`ief5UX~ANWpKI+~UCleNDPMX-qH+En;`!5+IP+yC;349t zv!dvqIfA=sfv3L@TQU~AR@=hN|t4GS|UHI57Wf@&%%!Tr9Yj&@c)@5xSQl}?G^G? zT{QYbD-Az+pb_!?UI%&)n)TCvGy4sGVD2`zsemeu z+UcfCXL%Sm26(HSIA?&~Ea3#+?o@>IPE=(Re<^V@kxfzUKRwd*`O}5%zMxKMF+)+h zk3-fBH#pq?_?qlSEx)V~xw{*+HYB7X;Q)V%NZ|f}`!2d=O*T1bdWJmh9-*(!Slh+Y z;0O)OFIE1ava1DkUs%Ng#+YpgqQl&{SBt4&%EWxVmh9_IKS=rglKlNBgG`Lpj)k2J zSc(Y@h4Zu;G3hQ3d^~L2z7M9;ek_x4c0et%NtUPv{q7P7=X97K%_kfSn?g8ye4#Q*D=N^5zSAj!b&z_4XE^Yq zq1JdNb*8G>hiSPzSj%Rn2Fg(>q>nv{Nhdwy(=MZz;u&Lo=~biDJn?lPqQwXV7?^J; zBBK;w2Sv_&-7ou^Iw2-tY;?st89FV0$*n&u^wDQnnq6YN9}o%&oS9 zbkRclR7U7|zQ4Pb9>R;8uM>4Mjd`mv|6BSYEJ`VB ze$ai0FveCDs{iP6m}<+Vr}3cu0^Yw7A@Cw|G0yKzTCYD6v)XJwU3nq#c{n98ap2*$ zPrs8(KNiL1O^O&Fw_VTpK5OvJ?!I5%BKh&JG2-7lO%`TSEitt)OJTm~>g=a;d%lwG zIvCsz0>vh^AwCV?=D&kk#xO{&x|2d4XD#N0Muiwyfv#n8kMHsH8<8E)-+e=*tmLEx zhNZPb(F>KA=D7!1073kEPcKD#so1x&HuHKKjd02Z;%F(E7WS_}IM{s1s5)fdxsm5Y zY4zhXP>-04YY^jZ`pU`SSK{nCboNE=WLM}e0=yy$2uMe2_=8RDQnoh+f)w27&(lRm z8l(-aS8OU8O1QhavVdL^IeiBf=^d`(40nCL!Jy#9378Lb7DPRw>GHF$oEfxvsq!l{ z3h$9&Qq4o{Jcz?b&<3=mZP9u8B9&bZV{)rPjr#SSZ!`L)_EZ`K>YGNs#U!{V-tE4l zX!98wzjS@0Jus?VUb3sIC7;uZ*zN-FF63 zglR;IHDV1;3-;@^{Z?IIB8=LYLNjNYEqtXtB=ukCE4B_=yvYgTjaFSaZ*v&DSN za_URfZ!IN1yFJy>>I?K7XC}kMCnn@SD|MC7Ok;5%+|eT|ornN-GU~!Sr*s5K-Q+Ie zs-;YdEy_cXahY^scnEA5A;ScM}{SAS4F&0xOVVYh*v;a09cC4$C+*n{O!i_%Ln+@ zqk1&%>^69)sfnAYonuGxa*WJQe|*k2UgG@IhhR1H1X#`)MzmA%ov@#(=pYxAlC zHeG1f_b(5nzDS-chC(t+>g?s#`S;M0Mpo`5L%INe+hRF(QO5*5>Q31uy|!^pdd5~? zHCz(~QyBEfK7MXYJDtEg6UlpPa}~J?u^BlX{1}44H&U61A&6mb$pO*K%}Q>=Z&gQc zWL6G1(-%x=+4AIyh?PcL(xUU{Y;>Q$^p%R27*UJu&$_T{uFf-x9u6;Dk@W@o5O#jp zlXXyYDY;#dJgV&G@3y-+(nXeevlOE)#f4_$hbrdH{4k;^(hm5;nkpFGb9a^I8dPKK zyW=8(r>_sGbvdpha!*d5#^DcYJj7;?222l9@bmbt28usYIfOZ){veA%&aIrX3cf%{ z(5>4NOoh~w;+@R%>Tr_n^=vHA{Q3F53aDdf0;a??`3+vU)v$3cWXwi(J1dn~1a?*784xt@usK~Ypv6)ktDsH~B5>N3M* z-2_Uzh{mIns2SU z%rNE3%cVu`*dJ7MOQ&f+cvyyK<4uOb4j)uDq77Yx3K>q|zt_)E9T#y=`Nvs7U8%Rk zlBDG^1lyfKEsW2_L`9ps?IEfhVP&@7?$FV6{PLDel&OcMW%kGRSN@{juX`SNbL07P zBM8X`w2u#%D5ypDcgLyvIhol;~Hp`jKHz2&)}<7|Ho2N$&2G+5>&|~T?#Bx(&HUUmkx40&_|$`w=P3{@am5l?hywcNC=Lvuv5tfH z)-^zus_)|lwVOaS8$Yohv6V;8kZ-|HXsy`rDS}J+d?41}I_U?(B{lxLLz7c&(PBrMng7Rl?$r$oQ|e!CP~}0OWBRKhuBZ9 z&2r0Bg;6F!ttS8bNJuy`R2lo3&F#sdgv|dFM)qJ>#%FB*%;sk{VRG6wi5`u!_~vIj zy#pV3w}f)x8x=F@(LbTeg`wl-(#i-WX!JHy=@z-=*9qPjD*J;;`<#;N!3uU+(y^Xu zVnD5#tY){w5;=jz*Q;0+GuC`U6LlqFMH|t$F!s=zf6cK2JV7#(fm~==3^s-m zM=oSvSx*ZO;lX|)#aEEhh%)^`Zcs9+(fC#I8nS9VXQC+jFa;}}J+1EZC!9UEFCTTu zKnQ9m=-C|Dx-;Kl1uX^Y#?x?YS$lT>g23iRhXRZ?5sIM_PUk4mN9kus2$dL}H!Sd^ zU-jZmW8V*&7wE}Eej~(VJXbe{=FoU6-?@-hxF;huoATc%@{_Y05og1d@RDNw5l|@$L9SgOw<$2J z?7x@3U$C8BoAhcVySHk3EI`qKz~5BL@>SDTY|{7deGD1)Kewt`PsbVxx>Gc)q*NTe zw1!g&ve=}bK7%Zv25n39GdkzLi_>PY9^8$O1?7v7Ye8%%Map{`=b)-yjo0n#IHK8i zeIBiHqb9N=K6xs)<@SkeAxJXmT3>VjnF7;9y3WvhFr1S*`a z%<91e1<#-5qi1QW#f&S$(b@JOWJ?5i|KJ;aPjUyt|0`QEnz>$ogOBRFXxJ@mKr;&g zBS_=60SDKxAL>-L2=@6g`l*E&qPqLO9fUf2?yMckTaT(s@}_bJCp|Ow2gg0HsnZ6c zM?019`6o&^Hhkx0e$qcMnW(;KD4dqXCxO450dw=l6PR;3(KPpG}H0ksfNPA9r0=j zAus}J!xJNnc0H>yGbEwmKu1`spS z@J}>7(td{8W=Cd0Hj)9xV1H-zGoOmi>EAK2Su&Ano+ueW3X?N@J;}8)W3hV6?UDOd zqnT|JQk22Moh5`+3j%C=nB~qwF3Bb8kKgla;~hS%-jwCNbP17-se_yQPuotaFu`>Z z%y!M}wwW)nSz$QasQ;BZQ8o6;iuaQ%i&anlx;SW3)yxhs#^S5RnvbYI@Q)FX;>p`_ zZ7wIatQJf{$?V&ro(>hDWJ1)VJ-wmN#g6TZB}a!uJ9SY>bCaob@rbztd3sg|5A`N? zr2>r@rrf0~LI_2#THshoK`vF5q2rs(Yz8Mr<>EPjJEztY+R-AI=kB3%m8KQKBx^8) zV`h9Qzo>iDyGju{#|MMkE!5^YPmh$webns48(|h0EnPlW+ZN4js3RD0Sw_8#Ew+BG zG_xItxnM!A#Nq~+#ad#Mucyh0M||VUnhdp&p*N1jKyZ`Op&AO_jh2wmaEUFufE`3H zAkaoKhda#aSNy|uyyyX@*<2PxqqT~#d8qMw2xz`k+t~h=zYL-lb-#=gcK$X_Puyvd zs|e9u!gLQtvOU5(ZP()oFdmB?sq|i_M2FY)onWmE9%};oQ`mYmAGR&%Y{!+WP~enrh5(iS+yY~0zJ4t?b?dFZwZbu*%ZScO%#XrgLj6EB63 z=fN_|N1z@PLnPFu<+qNOx0WCY&1jZe8K8(c(|6hVr=>NQI?9WAQbJ)!gO#|Z-i6(! zu2i!zp6qL^n=t2tD1M$0V-zgN7u)M7cxSm}a84Dkgyt{tC}5U*`drAocG05wtd4MJ z$BE^1m=Xuy!XyQvt2Hi2j+M7M${)I9ju1HWGd0|*Xm0X>q5M_zuRC7d-ewQ&5-Hk# z8D9$s1v?d@HQ%m@-FU%T+aXTw-@dt93N=C-R%<~Z5uR0;Jxe4Bt%Z#KKiW_K^65S@ z@h|{r>C`^%OGkVR92of+2uO1gr;2w`Zg)YCV^zmZmWg;Y3Ye3^M^AP{zn&{O&EoOi z652P$CK!$Ub4R!7zy9=v^iXO`eV$ofp?tr*7h7cyrH`OOVaV)Uwtt2{yswmZ<2?DS zxY$a+hGx9S7{BFnBLXO@m^p0YN~Wp2`b+BLo<>w-+};qX;f2Ii)dQk3GOA4S;h1~N z!Brri!h)&!W@_HhN&*+-69;o*j0S;Bdx_@ zyf!0L1GmCY(snwHLQ5EM3HcCuKx`W7@iD#)VnCGYZ%IaL`p)t(vHu#zX~ zv&nC5NZ8tMDd7|9Lr7<{(l4+g?@ zmWrgSplzfcSM2Fcv@tjrzH>1t@A0z}UBNcu_6b&Jw~CEL?x3+)iI=;E3&S6`Ts=}o zCP5xcBFd=t5NmK-cVNT1Nxv?a@|9boBQPuPq@#>$xd+kl*=-nr@kOmyCQ=T-RLo*6 z`9H4|$D>P6lu>fx9VQX0-ANZ-(SE~BUeI@&x(Ycjw@g<;9pwUSWFs}DfkOt&T}m8r1$Z*dXQ#XDHznWOc!l0`#t&oz8sxm)|soLo&;o{*D*<0MW7wFmm zzUE)^VD@h~UlRjtxN$D`P(0~Tj8R~M*mV4r8~02fN-v?qW9U*UXdye6>*N5=#P?+t zf2Ln)C~D_8$kDm?e*D1P`ta{wP2pw~3D5xn;PRZn*ujf?Gigxf#9FC8;Vo*1z<3Hp zOHuljD!Rr%u3)m*sVNpA225ph1k7&Ks#5`aJGgqnEn^zGM(4Zy4p5b;o3_2iTmGm7+}kBT_s$y0r;gp>)#fqA=CGVvrAl$u$*uF`8G6*_Zynn#68tED5hKfQ+cQtP zPh}i+H1G6$&`5mu<6f062c}2r*h#?CjSafM8Mf>Vr=L$RTM@4Z3X7D_todkwf@ne2 zh4VFx9IZ_pMCHBi`$t4>cpZ+T%qwH)EqL5vf#o30Hnq^_hAk`8t3cW|3IKf7;s*8l ziQ8j+>^1giGQ0b@S#MKbkZRe3)m4rEZ%>73LpS-hr>MhKn^UAedRh9@pL`D0pv03*(p zMU6CAyO>nA>+X;u4|3kOX@{6hBOrTt9RAyiGDTWs(j&I!?K=!l-vX%cbw z*jt1_3{{bkMm#6@5CR;Kw48v(2A5{?oUgQ6AEUoP*d5($j!hs@w{rMPZ!iASxkvXyi(t|C>qt+5FDW zY7_^RfEUyyEPzW0Vo~l2lT&MNHN)6bKETL#;%Gmgu?afo0~Hj2C0XNO@vxaoGbZ86 zFht(YE|EG$#4R}Og!DFu(jyfQ zyOp;jnO1%bj1=hd5kgi4fCyW@5g5xl*P&ohZQUxc0-79wQ& z*o5XHzN*U+6sP^VtAJ#^_wV5+IERu6X)L&xDtmJhLm!Pqm#We!-bi*?Tlb6jJCosS`|8Jh;F|fO&)?U{m7M6udX*A8wMKMUtx)vSCVO2Yy!ERsMXg>-Oi#S9 zO*Fc*Axwo?V|vT`-YFxl-^byBV?R66T7E5Cpwy0nMFD^{KXF7#n3mxowGv8OTJ_}u z*%ZC2xaxz*UN}z92-@%JAet!`W{|J#n;)r#)y*ut%rt3_OUz5a*lKfo@$Z``Humte z6|fd!C8z&iNqogtNER8Z2$f#gEoyL{V4%iP#?pK)JWD8%fSEfmwbRBUi_Ho%Vu)76 zSOr>zdl2ng%FvB>oz?yYPAq3A|7}t_BMcdLSI=45(f52fCgR@v z6^V{KE{ib#gHY=t*aC1y3#(a9>HQW;%k_77sWoscb;EOMecVfmu}-=wU@ z)P|e!hfPb>SMGU-vs4aoj3+XowF4eQqZ0-Mo|t8${#X9HUES%lLs5*CR%AbMNphbZ zGbbmGm!$`;Uj6Vu{of9ughP6d1{fV)F0sKr{P$SN*>RHtP8~70jIC1U;u#9s1gp`sZjJrt0_QwFB5io zzWd59IpF)|o|z0El%|a>hihTfyUeH}73;7ES!i&B^=(D*xaG{^Xh`}>p^8iF?eTW+ zGZzAi*K;ppE@Q-jH(1}sh64E7hrERa=$ILKi}3g93w{|0*TmVX098lj{=M;V7I-T(kQI5m2*hOXuH+IO=bwR-CD8++WHq-OWn{Kdh-^l z4NWoD^nLQ*-R$_wv%VO`Q?R!HZB}-m@7;+@NQ4G(4Pzm{X+_+hJ);is;mAa~pJL5J zM3<^#5&K*Nw!p+>N}h=v@sdM-anwFKXN;AeluG!>5|iSeqt%=>LQ7X5HZ(`R8=|g5 zi~fz^85x_SojN(F$HEK!+uh_pj+oR+dD&A_ysj;OfBA|N!?yN~b>+IbNONs_t$19Z zt}?FQ+Ms>C^-0-4!dG+_!SH%kg7)h>CoHD$;JF8q4^kiSu`)ouOoQ3JeWiI=ZTBPPHv zR^ivNEF!aZ{I2MPGLxd8SwV9ZWcJVn;&FqNE?p-~f)Dn@>DMIe%@$<|iysEs6Pwn4 z-s>`ZcyYH87^DvwhVKav$>5!{Q72PKSIC#(6Z|7X#wL8s&7_XCFqgs?Ax^eich*5t zIB5;uvTXY*gGuuX0eLa45{en}U5vp0e#D}F7N=yTW~HwE+wC{xGqcBGeEI3vgf9pg z&=DnV>%@<}EdfDPF>(g3!XADtosABfzA&y-pH3D%ZfdwYDte)-OlxQX$-6NXOxcC9 zfNCO?E~Q%<1*TnAvkS>`>O*4@tCY3Vywzr!sCNpD%ytF)TSSbjmx!Q$%i6@!hj5G$!9?Zf4>Hu`%!NUQM-=pOVjGowkec zbI#PWS0r;;PGv%|Vws*yKktPl>wY01*2Mi%eic`3np*Zi1*Ca5gt?xBS490-{VM6a;MT$A(X4TgB>G zd9+$zS)sL;*K(J4w#pbGSIzc?ex85Cwlb=XcI(naVCQQb32BhXeu&RfH@4Fl=26)N z^Utd2CXqh-rf#ztgTYFKBRXIe-^wxI((16m6g9YgNc5wh9!SNZvpsd=_erIJA}EZT zSRCs9`K8U#x25ZX?_t$*)&hbj`JKNLdkbjH@`1|LPl<{pc70 z)5D64Q&g2bMpe>H_K@vjl9p4xrkds&xx3&??0he!dcbW?{_0gt$XpCx5$I1y%{w_o z{vr>q;3s_*-udIY`SFxTrkV!F5l=Y(v{-obi48(ysMXLdbk3_%ZE034!84>Dz}7!O z)KFxFtv<6b)pqY1Dh+zvzW)7p?3pFm)Lq8qth1#$Y7^bPyWuB}zr)Ml#)uXt^-hr( zy_VI%-Ht2|Y?#X#wI2D({eWOScT*PF)v}mC^N;-;AXI+_ z=dzH?G~X?}&V`v6YJ(I{IopSD>fgRL30;r_X-1V_DND@H_ovaK zV}yg6oLkIPU9;D`{;F4PT}t8(O=nnG7_?-Okut#fUDU^{3LP1X{28G}DiA3j;ij|1 z*X+TIK%d&XHjREo4s1dC_cnat)^&NPAK?d4m$6JMu621O`a8=ah_s1>p}qMoGLnKq zX8{VH9&+wPB#NFw4*DyId{BUr4J)cZL?c&@CTj>wflbABT7%p6G5N>=AkbEO;6QZFehEc!{xgIUgg ze?FMLTHdKQK+xb~kxo>K(>qCYVs#zNL{dZ~);vm!&cMk0;A+(R1&$J6A52m*ySzrU zftjwr4gyOy!ncn`Una5|MoqlQR1*16E}MS##VwFeZI4QYzg01Py?%5^Lj2J&fg-6V z!aRo4XSUT)3dG)U&DiHo$C*N2CZsKvqpf4mKyb7jjZ#DJr(}^)Oh14^$+4 zdvtbYwf`+NvitP9;oJwD`!#Vueq}h3nc-e~dr>pUE4o#THkDOK%jLIGMxyq0>cCGL zyPUaKd)m6c8t30puuxJazHvN!z6ty19m_x#?i0jbTpTePX{`fSf$S*-ho0@C2srN0F%?eR2@C&1NDv;Gk z@~R6bMcUZcaHj!__2usY2un}-p%fu(zVg7XtvFPwCyBlH^z8iN=;7n(x_Hj)l&e18 zvi@G#a+7r@*TJ1J`EvxvibwoM=4ns(jH$-AWLI>cb<2{LR)9~KC*l2;RS2k*`lp_I zi;B5Vz(T_lQ46$v^YmWx`0vZwzs)K={zvc}!p03`K6c9u?RJY{e;?sPqwGd&g& zE7ST2mQ}k;d@obwr~=L#3HO}^eBYj2BueNJ|7QAF!M$Gj3czV6c>DM~TnC%J{!+1= z;!)GQ@RNQiV+f?49#miO^bmWo{2Rmw08pOY^gMOkCHy$>-4R!*cPDQIMyYZ?$Ss{6 z1g#|QnWg~i_m~}8(qsULe-?`dK0xd&rS$tdZW2c|yZ^aU zhkG;z6D18`UhXv-le+1J@JsVZh7`yWQZFbS>JS+c0@D7= zn=JqRRwVY^7oCMFrtMJ+UTjXi_eGbp`Q7az%EK%8DvoiB&! zN0}cUvro~mSP9{tRm93g!)9!T+io7BMqLh`#!m{|HYwTSAtKgyz)Sdhj`q9vtv$;> ziafOyN45Jq-QklcD9Y{o zqw6B}uU+wkPfvDaKC#NlGCmYX2oKrx!XuZNS`?8syKY+9LR;sGt;}6wArW$C9GZ40Pb2y^@^293`i|xI@DC;TEH-OjvSyxz3lJm<*b3&i{gbJEQ>lHE zPk6e&@wFVOc^J{=-OVb(i#Q}sw=(3nEXdDsM@h7~Pt)=Y>4n5CMq+wao{VBl0Rcl8l37fGR%w~S}p4No?^LhnRDhe=<=e}2-< zqeErje!hZ6e^~?6tP{%0z(tUpZ7o(7{mb37{AAsCyR4Sl4G(47N3dF1L%!6}HVEEY zp620T90WT%ebrkAAGX?=q0A%Gx#f{1u%Oz4pGo15VZBeWK~2HTOCfW&_;L^D4Wj|G zEt~E2{!haVtH3k<0A@;PZrB5)&+Vnc?YJr+VQ=;Hvi-^LAyBOD<*fYCYcuH=o?+kA+1QPl^!zmerirWf!83p8avEO8GoVLy%XJ5RJRCZ#M z>bQ)sYj>2WB!Ag-CS`L^>_(^ot(w#cv0@v|c|<*0pSn446sqe%1XMRo-q3B}h7BtT z(=ehDF}w)UhcjCKHop>Jw=Ndn8Z#PT)lhZnj4XWUP5re_PVlK&45ZP*h~@WQA2j89 z+hGH`?X&xZ$Qt#ujR`Z*F^li)dQA@MC6`J?1+@ZQTJm3w6 z^_%g6Eb7e|0@i)0W;aQ>qlVv&Dj4cN%MCw2$yytY3$z~%+1BtgTvI+dZ|q!P{kd(- zAfL~^Z1CgMnETU=H*+)UGtjl{{@ieU|E6GQ51)^8g!1nEg-SkrLP;lEHrD6LVBe$N zewj>IYx=OdG@CLT)|ZNKs`b$4X;q2nQC99l;mRD>-r^Mteye|v`iS8LhFtsk19I8e z5@)~V6k~V8c5@Bg?0l3UG`2gjb5oDur3bqsCvei5--f`zYU|e8`ReIEsb`?89Rgo$ z_{EId&lS$JTXy@4l638Q@)Lvd0>d zcxBZ>CGS$_e-Y56JQV(?+n`buP}INfePuzMUUQ=8P%nP#Med}1SKT9; zwO>-^sfbA0#=*(qtTB~0!RJc6yPN&FxGNpE3FCuJD=89i-kUgVfD4hFtqc56aiz98 zW?u00D-(wCyYKZYG21I@znukP#O=FuwXBE&ZE%Z(lSlK4wxXU?er=JWO#oEFs4)7#a6vQl7PQ|Ast;&bi%qn zc>Rcr$=;mL->VX)b0}{Ij#w^(xTxPKKw{ zwJZclKK9RUH7%9?jk$pJf4ka`tL^sJ5f7Ed?z7(X~vNgB}8GoV%Rv;Mr~y*Mp@@tE&Kj`KXH zd(-9cOBtVidxn#0^?p!;!?U1{L1o!O_i~%jwE*l{LyogYLK)JGBhm}kwV zU_lD}ghlSamY8$@$C^gL?1H^%amLGb=TU31v0pKBy%`D?by|OLI&W^T+Pp60mdQ0f z(Qz_rym3YqvNtw3T5y6Cwa6J#YveN$G9ICZooiM6o$AXmTZASvuZ-A6jjub`*ZQi) zd*wn}B~MB4QH-H>$;F=8r3LVepzX_C&T1GL#tuv!bMAp#!sNa;g*D8N(zZWv?DH2~ z9zmf8l*DfyO3R)d08VYEn3$;4YmzV*6_2Vs@ai)0Z1Lzedd!MFvv*lgFaW?g?G?0z zkeSPONMaXCBDtX^#Sa+){WV8RIURHmd266@2ppGoLFq|mjq0lrOrca7QBgE!4L?^l ziK7oVW0J6VL;qe^Kmqe~O7)hm`i!b1{3=wPu%C1;`9`7*zBz^DoPy{U0dn^cDVIEA22T>BhQhiH~oI*pHN;+Na4K4nW}%(iZ88){!%y;}!U+)1pv z)-znZoHe{er#YlIwrgqS@Fkt84c`Zdt?a28+*^f>3V_!WC&uJ28EN|W&fTABVRak< zGG&DRJ^@sZtp2ir_HHexcFPqo>Ne_H-4N;mr~GpL=-Af&0@x9KY7EXAjKtdN`O(Nj z0{YeR>8+gkwdV+5eQS+}O}onJN6D&`J+t&Jd_SG`lO=XS6~=_W`b#-@89 z$@DCu;;PqJh|(s2CsBY7X1{e*HIXsxd>oWtD>XR2`+lHT45XLJ_Rk&T0iNrf523OB zRtZ^D*H~3jtbk0FzGsT2PPUe34Ob~ZrR8ieznP1OGOcfND1TYrck(cY${n+7Uiake zvp27SN;&i6Y_1L5hnJ+6`V!FU$9PL8u%nKb^+Dj=9pUNK?!-?-ayvU3Zr-uos&;1I zqqT`du$oR*R*$ZUN`H>myB~=N)zEG#9)bl(1#%sR$omWx){5gR1sM!{O3W5X9#6CH z&z-Uj8Az?7UdktzgC1y|h$wgM?yC?6w;kSVw_QG`<1dtdsW_`y`I$nMFFjD5hxK zir=M*)qKGu@8u#(XY*gN&RScIq;TZ+uQH9$F}$9opeV!rgq^B5Ii(t&Oj1uY&iyk+ zJDcdh+-5t?V4j9gi>nOr+sStTA*m9QdNcHb(M|Uz$BpjS|2d2unA@Y_kp4|qGN^KJ zr++ll+ZcIlFDwu2&-s4tZpD7p@G{T7t+cInY5ein-gintcn28yRv6Tu9usx`NcZ)9 zcM53dycMiM(BG%1fj5P8wx(H9rPCG!2b@8`j?1+zqEIpzE0wjb_au z3O?rRW*X_`qKnLrAd;SzVq|SM8y)dKPcJLHtliDoj7hd8FwU)7O4DloKc?O?Dz2vK z8YTh+5+Jxka0_n1gS)#2cbCBl?(XgoJh%)J+}+(B26y`o_w}rIeScxCKGWUR)m7Dd z@A|SL3@G6>%GE)%rZV0+X=bbs32BYo@59K3%29(RI>HI*|2kpl%H&R2v(I};@cmUU zLp7iBAGodPF~yln?z?tA#lxiOerIMS_VbiAvNXIcQ`VB&>@wu!ddcfD+wL$cFjTTG zy|Sv2?~JCX#hLWQMzi7Bxi-Y5-O=<#;YsrPGUiUx@mu{{_+F&Yi86v*XmKD%cQ>z z3s4^1Ie1OVx@#2);4>O<-p}MU9%34BS*2w{Je__&6C^7aPdA#}C(|@w` zoCZnLQWS0Z)wSlhO7D!qRoQ&aYcoX8MVIN?XgE{+T1loKr2lcx-7P$Pln_W{Zdhf| zkMAk>YF;;IrCri7NSDde;%0KRyz7|nKE8s(dAVN=#1JsvXXi5qJT}POV)C#^13qSpE~@wm_;J@ zE{{mH*NRqO0z(9SEGidPQT?U(`r!R}`S4)-a)L`Y4^8CO`K&!o*x*Uaa^_Rx zgNGVr+(`+(%bO-4mS5Ll9c0d4Uq&C{C3DB3@@d0!X+ul`W3eyCu5iPQmtSq3DU zMl57itXt*k*aFZ~ht=H+-5#4lclH1{&(MfLS>K~?I$Gn=K=9Qi%W86O2@|IjTM}w5 zK2#x6aj(WW%m5=46n6qUIfO2%Ylm$qL+odQv8rp4q0{p7@5WfF*sq<%!(qMY^@{Dp6hm({^;Puv7FvI%rYIh@zl{!g z8itdVP4h-E8DWH67_vdeKbT2#d#*U~X3+C`_y*P>d$o-qeUL^H*M}A{)S|RTH?!m{ zl^xLy#+{iwnn3{{#c&&7>d2_xoKHr0iw1L9(=OI;CAHw6UV@&Rorc!xt?#oaT{OKH zZV=9A>)ZPj+g{vrNt^{7?DiPit(G2s0eRy^`#tOFk?uxdQ5(qHuW(BTv*A_y$oTaA zYh=S#LtAe#n9p=6k~cuttpNKLrRGw#rSkl}Ci^SGXz#*x<}I1clKYPg7|(7nwkZeK z8b#veuQb96i#>YRrE$+5Ai8Kbz4pSWJU=JPyMIM&e|o?~a`#7rJZq2a>ar=!Hajsj zjBNG>^%tcId-UYs*(CAOhb=`sDO)>g>wWSiW*P@QT%imhiht)(qa=4Tot}VRYOK~*4kthQHfnI zuW($E+Fo*|5z`=C$MW!!f)K@mro3nPV3Y4rZGFh$(pc#V8Om1G>hc>7TXC3Bzs+)h zD$93*^Zy<%*^{>b6bhb9!-7a7cw&K`*()KP@N35DN$zLSL&TuU~$QkD{LPjj*(lM zcu{kVIyijalZmu|yG~@Z-1Lj5+h>98pZw=NLt75jCGMneGy~SJn-KCdf{3K99cSW* zSk@_;wr7K*3M3EWm+do+YgxsX%;$Mgf)h*|JH_2so@{|3=`y#cTF^p?} zGTDc0&`Bo`Va@ETU$Xm@fn4*6*s|{RH$M30B^EV2ct89mOQ4z8pug7D2rrLoMpLkY zLxJ@-DjVBj&X=x^&h?rM>5Fs0q9aK|&c)VAKEfPmMYR{C?&mS~@oOwhhCH1#&E>z` zk-V?QSuScTCe@mCi`*JrOz>W9XadIGLov74@J}E{S%d@JFlyh5NJ=TxNBzsa9%NRa z5knNcq!qJEx^uvUwQ7{LXb}uVIS|>gB7=|3ZCi;-V{{6_Ij-?u|1%ru-se7+EzZZr z*%HPDTIZsvkVrBBP%4Gnx+Nk3clGiK>Yt)(-ezQ+QOq0Pqi!N+e94{SO0*&&uy-%6 ze^{J+BVt_W;UT{>)bLs5+LI*6$%NX3hOm^iQ6oCt(&X#F;Ly35mw% z^DlXLT4b-mjbmf6uKp3P7Ty!SrfyIb<~>eXrLycvvZgYbCeYkg;vq#1*WM@eT3@v{Po+(wik^uAz=yUQv6n5ry)k#6 z%YHF&`42AW=Ab3cdZ4J^X*bFAmw##EQw z-(VSUXcbOU7tB(6UJ~FT-JW{$_bn+2wPFg6AC7mAh>x0ebamKtwrSS09CS6mO@=H)xkExGK^gHV2*0Ls|uPdV!nu%xK&K1kiLcJz% zu0`-^U@|wu6Z?#jUrzIQbXqfrgNRU5|KYwajeAzYJ~x4fj6jW!#zCE?go^4HN3bg0 zCeYmzi3Lx?D>02W!-lp(e@?thlHOL-~{}g;fuU?$*`ads9XQn zst7Hefs!F)k#t~b3Trn)HbL8G5%cZTGiu5BCV6`E!u@!Ja6LwpaB86m#htfg@j`N= zfDms|C&~IfA%@al0xOg=&Y!w?4=>}sw9ZMr+j2M=JPOY}D63D;x8v+DHB7(rpG*av zgRVrJ1*J-73z;GY!h3p*UPLu<^S8{Bs693#cMtGn$0~rJkzg--`P+orM_O(7sr}E2 zr8GNq#e+Y{6W0dIwZ(fD)bBXPj0iN1=ZcSWecA*m4)W88>#Dt11nmHg^V%q{OgXQT zsc`GVz@0!lzj8{ygRFm7TvH0OWUbLU0q$8Ij*52cRf&l`hP$&jNc|%U<g z`otEuCjba`3jTlay-T)k{EZRpDvlL^GGbI4b!1uYH)zC&?Zeo!5j73os&_0l(#>2C zRQO>bt7-*Sdp3e+4j$IAE3-VYv;F~b_|WiA@Uo0z_x{OnXKt^wVe^kh+8}V0I~9l6 zGD=sSbBw#>wOkK0zXym*(27bf*%x|12VhI>c)6BXLNiX1T7MSX@v_UcREFmwEwH?7 zqHd}E%$g>fxOr2Ic4N{O+>asbiM@*m0b!nxNRc zXMez0At+rbX62e#DHOA4Ra~uG?_26N)kl)}PRE_jYGzcbs75qkq^tYq<-xK?Lg^pn zavjBx3d#<404S5S_&9odQre^yy3B3ppc;LjjwR%NA>{A`v!o%jSS>+{MTU$w0DiRu zweiVD$S7(UUXp6bwmP2j)ukY3pa54kDIn*PxP0@-q48~digkBJt!(3rPxm1Vx zaa#oGdn<=u-y_gmD|2KSbF0NzRSG(cJ7*)2)-Bra-$AYK{D*X0jcp`pfm@TwZ7S&n z8j+kZ`8gO!=!i)XphRYU`QQpS!6!l)5D*XDzEek7S+{=H_Bh48dS=YD9@0G|niNvx zz9(etXY77vw+8O+jM>koLP`=D{=IflakODCmwiA4S4-dD^nEp0=``B3Tq1A962ytu zP0$un@7Yg;uTsRn!$?Vrek;-Tkga#*{$#_8_RBMC1ttm<-Tv6MYjw)l@KSN|1R^M( zFTis?NLYO_JkuV*{m?LB+jJt6G;yeejSnA}m#f{9n2sAO_oTQu+|?;~j!t0n?ov9P zWsC&+3%amP+8l!}b}#c?qBxqtspA`btuxDfoDgjtHj8Zc%Im44*~0*N}Be26UYl0>P!kjc{dfV{ehu%DKg)p zivjEtktuXzH>b8xUm;?`zyfFfqIU=?8ng1A7&Eol{&46RNzvRl3rw@JH`X9g>>?2W z5;7+E4@0_y0iu^lS~|1^6xRbfcnj-SH|r~929d(^Mr=Vy1%DF>2FTY+H>1o+HF8mT zYF0M?T~{|&tTZ^-z$6X%;ohfeX{2b9I1j+|4xQF#u4u}>v^=cGmJsf#o@g?ZZuUXX zJYvp~d9KFSTO~V>k{vh>!Qx#IC8&6fHzyzDNV)XY1Al9a2 zVNn0YJ4Fi%OY_cj@KFjLKohlH^*>MD({@pZeFWv2Od+!-sVy+JX}c?Cqc;*Zg82^= z!d6P;quhp<*Rn0YD^2fE9bWF-tu1^t6_umJg_q{3t2npLKOPNv7i2yh;*59F)^#p& z5tE6?d-J29J7QVe!k#i5v1-<>Dc@=!CpI z+Bzu5X%~XN(9iM~*n55pA6?@ZIAbEYVAZA?dw<^BXS`#6snO|OH|zyn*3jVp~q1ZzIY$F-3CAVt?myG0=?caB zWP&SYqKo%q?wu8sj0ea?%ei4?*ICU@l;#G+H?EWY6YS?aXy(8%j@W!QIvVb#?=ij7 zXjIg*p@1qI8n|89r8@5w!@=jo$}H_Ois?A}5pT4y(-e1Vz6YmNAj+MpM_S%a8f=3J z1(jU&yYT}Q1M3t$TG%-;f?bkhV*N*e41+4@jV;Ipr@@49z!*u)xZW%tez7KQ7s9XZa_@kj6ASz}!$G;O88!)qt zNg(j@uOw{z`0&H%WIQ0QQ=oFQ@G0lDaZ z`D(>WB{18zZL2ap68fNX@4rek1Bj)k_3RR(G-r3e{|El~pMm=UA13_}0z+^bXj)Oi z!U=0w2n2ecZ`M4yJdJ^SHA!UWgkz}e5QmVAGg>~)7Kr;o2v|-&Wd2?fj#mStuB=BK zoglQLu4S0eMhqjkmpQhEd?KsCz-t7tfO9l+lgwM;wA)@H|1G{-&-n1)a;tAbpgF3C zcB(cfl<_6}1oNwxX-+jf&Sb<;o+EB92oklLx6htiO|W?s^2FZa6(L2Xq^St@Pf(d3 z+X@`EX0y6i3I(nI=7C2%F&F-PCjxmpD4&`RlfbKFhw1qu#+WdJRA zBW6R}dKo{+CJ$=8I2$EwFk}QG&;tXyw7Jxx-T=_;0E*70b7eyP_h^9AG`Gl5zkkPp zwE1mB<;NX#s8#jJmAfXx&3rvNtZ3?lYvH2YcgibBIcP9Hv)xy@LK(qH<1D|9Z} z;Z*f{aD=XEv4mwlLP&wj-udshbq*qlvOW>V$o%moM-^GG=XK2Z<=>5S9t|Ob-aj2* zZZVVVcu=>56u^tY?&cuhI)GX7e~!zc2j8a!yNOvw;4hek9Nf8&rIeLUS6}i$0OXb z)^**oRW4JM#7k_Kx?Ka!qoGLgESpas#$Qd#AF8l#i+uEdi>$GX+&G#B9H*56)-9b? zGL6TDTw@dnbJ|O&;7E`>2Y|4Dq_e|$+#!ze)H3NpH0-;F>G#eyBRoUN*7sXpS^B48 zRXgK?UtoB|N0V21gX%2^TudojEs6G#Omyy#13iY|0q4 znfT}1&wn&ODQj_?xSHXnlg}DIwkkZQbS6gs8I~KA1aq-7RNOg8@QWCY1rJJ)I^OrH zy4j||1zhV zv-8_-r*{%R7NFd=pmaX}!OPh+tO3_yfIEL-T9m8Lw0`z#M3ypcJB!OjtI&1qfRP|j z{YId?K-#|;!4@~NL7EOYEcFlnr5|)5U|f*&^WQZdQo%_1gzI(To5}uk2I@zSYkW{& z%+JqZ5|yV38;s<2LLfX9Vjh^Hox53Rs7gd?nf@|-8Fm?0c1|U73U4)Z3|IOenK$Vp z%JRh`M($>Y5F`_9KlmCYi$3uaav)g%Yx{1(L)CowFB;TF0ezJDWa}Pn0K|jk19a^3 z3FNYqtr7~B0CnJ83WSvRS6~yqAuF2|fwD&fm$5hBPt2SG;|syZ7VDNB_!W#)OBq(W zs>mDpkx|9k=sRDzLFQgG!JU-&ZXqMCLy?8XRkB%^KGkYXeE(Y1I~4$@Uk3F**WudN zz4G}2eH)?zmXu{tomt>fO?h&n66Uw-iJRV=_!gtSaeg0iTXIi=6Ee%o&vIPDneGpL zpZEpJ=Dkw49AnMAwip;)#H2w<$g->yEuwijrprtB$-=M=Z#nj!~1*Sg9tw?BDP4kkj+ADamx`C zCg_+sHG&fKCa@dhQ6Q0nCzD;+d^(0V1L4FGR$3-AsrV{fqp={tAW|VxC@e5J&WTpNbDtu+(18 zMMJ(2wvk4MeB=VMLpOCfM?~tX4&>X4Du44Z(fs;N9SK^*vrV%8d1QlnokBW>y3cYQ_*d)uIae@FhVVkC z06njot$0EF2?6Tg^2h&fUFFTlvrvu)Q5$ES@>mvxqx9}GcA*tAKn|m9(<#XGanW*L zmfvY_N2F}1`S}jbipmC`dfSq9t^&h=X!S2?@5^-)sgUb6$7@$ue_uYVt9^q!Fk8YX@ zR>RGvmh$_4h2mr@NBJ7${H)2Uk0u+D0BZN^|LqXQEpDB{yI?McIL0U|@DIbYd78t; zN+!1{SN}#(Z3XpI4ts*OHiZSLxtKfbZ;t;w;~T|pD#+FH=$;?k$Nb|5ie1SCx2%!y zChs?`B;LqXJTpt#QoK3-tuIi?%>S(}@Hqz0O-Hq;c@zqSHX&8!l{)2% zs`EHWE9#u)A8cTMH~s%VF|c&L9`KlAIKk{22t z1Rj%AIpxd1%RVo3$kd)Tz>nsB^SXtoO{+Hx>KlWXCx9A;w;h~r`Gn+YjXe|~NdP+R zo6|Y`IT#5@hahHi-P<*~zpUj{-;Uc>e9PkbeqoLIqd^AhbkW2k|lsz0{^zD&tGVU z!H}!K42<;6$b0g4Pz<;I)(Iz#Qx?@6o|ORY%j+#-8ircVOk74?<=*Ad>r7aT7JT;vK?T;XC;mss_8M_p4pG<3^6uspq2skfi?_ ze%(+J+@s7N1FC4yZgEpH-RUQTF#!ec83^dZFE}Fg7d!v&tTi@cVELGpNtiwvnXHj%g9!KAGo|yFz zH_bMD1I8hJ8|P*mTbf4y6t)LFK)xzTwwaBO;D6c(4Ak@wI7AmP4PXX1TgYc&m=F=eD1!V>SRH$Kjz{J-h4C**0hy3}G4@fUQ ztJd&*s_?d)C^QI|=|l$N3Md!QK3-ygknu;dr?St*NuRf$ePYx_nJpqPOe^4_91wwf z+@%Jvk?ru*==tSwOz$5rrrAfHwgTd&mdF zugAGQ+fG>F1x;J5RVzCyzF-0xER%5dP+%%NJ^>ss%yp{@VwX2#{B;hEt*g5prvB2TZds=3O%o}L3%4`@A&gVlw$>psm z=0dWq?Bw6KjMOVFPoZnA%hUNMJ-actyzjG{u>INtFpM~sbmHHB@ap3Y`#H%vLhbff zCK^)CBLO`>n;zhRnZNxQ)-C%cMW&KOyn#=iHJFyxa{2?4g15=io^9yB31a?piblH% zBB4BBCGF>79*>ezvp?7*S>Vewz{+l-h8lK$8^bAg982Fio;IT2we^5eHjDw@V#DW( zE1iui<^s{R0*aw^9xpPjj7`CDSMqB5g&J98=X=QTBS1&cEjzOUj$sY*+kC9f9?2f* zs>gSjkE@0b)4~|2-8+09DIAXCIrD4)rGR9_X&7d*R%%MlJ#=874n74_Eyt=1n-QE@ zeFet&-(K@D;JC9FV%+zkNjJy01^n~u65hja8$7{EJ+nf9g0e}PfV;lkOZJi;&CLYVm}?Ddr|<225>w~uRuHowdaC-sh6p4zZv}}KVn`l#f>+Gl z#+{NvWFM`45^l&Z$O8m{nREgV73uhN=WL*H_;kf~`XGus$K>%Wy4ngQgG zijS>z-pkM;ZSE-_yTBR7pf z&Lf7Cy`9H*P^==2qY0$G6#exb58wznu;>#p0u&Y|;@3$r>>W|gL2@WG{=+YAhArSC z18Ka=l!Z%DYWJ5m_W|q~I!qQN=-=#NLnjh4m0I?senPIZ^uO6Z*|krSHmiySbLpMX zR9=+Ub#Ick>dK|Oi?_FLjdVF#UoPiZmPl?G>NHe(WlUM4!o+t$v=ariHLkD8oS63br3X;%N=IMtdFsGuagqa$A zci0OH=7O(P21;i~iWks+atkm}m05`d6MzO1kep}TV*bO83VWOgonEw4vAfP9`HaZ6 z5I}a!nnJ7>Wb4Wjho<}F9ZRiP+HHlu#T}AU1a{wo%lvsGuo>wmWc-~w+Rks{aK(O~ z1*im=y?KKk+h#5HeOgJ9YO!t115Ewc#=NAY2dTv>dXmu2(fWkQ{ydqv#Nch!%7oD{ z>IFye7GC+5!pWzMB02YA)hOor?bhVRyq`-LSfZMuw7-#4q1LZEEswQDN07p4ynJ+_ zY+QO;?T$56u5$q>K(1*Pd3@}V;q^?!)uxO_MtWj8HARDc9YwsUSw}>Xzl_J3w6r&cImzUb45Owaq(}z1rt(q@6%`# zoE!J&_>8o-Wl1pe1rh*9Ml(9I_em*)9ajRjcXKomNXIaHs%~tBrDdeiF~7j~WAa__u8U6R<7M=iugL-*yG`O$c=CZ05LlWCBKWnHHO=kGd-0 zEfNsJ21rgI^QnVhBr14&rf|ws68ioD)za%9z3AjAgVeE+$4%XY;}N2Go_c_xi|l;t zLw~W&TwsSGVR`qD>kHsFxasqlMn+M4I?jdnQGOic-W`AI)-K1@dNJ5&*^dpFsO2L( z#k&2YkBI5%TqXM_0U}#A9DBf_Zsg6a)zY-Qex7`~YV>-c2AVtsn5&;6BVlk+bsnL8Rbe}{q)XuG31;L{5 ze|zEecrFfQr7HUh59nOLOVVkBO7x!xs*OU*cKU|qvM66S)eZ*pmTjp`uB#@;f-?)r z>F+t-gK*M*YNkZ@9HBlse*#q6-m-reIvlWY*v%Te+e`k9IKLhp_XO|u1?`A|LNq<2 zpF{9R$2iFLf^QF8xNJYI6AX8d0Jm7{VibKju~F-acIwCzwL@cWNIU0CKo34N)0f&2 zuPWjEE>NuqvknRH%+VjM^gKef7~9`s0wQ8{`UWccD@aua>qCn-!1;oU%aQp``n)aR z``RrAhTCa6z1az6aMpVnTjI;HwUxo*|-|QdzNBU@PY6YLScbJf| zbo19XH9)f@*YuJ&%uZ;^um5=bx z3N1&0*Cf>+Njeb1Y1FZ^7M4jaP5_San5f{~JdVBfS3oPO`0)lCLr-bc_rt+nSn3yJ znpGY-V4Xm32~)A$fz;k-Tuj1d!UvQCMrOLkj*zRF?WeK}#GUX=O{CTiOy4eFK?!bDOf6|@Jws|esZT(boowcY z5pnw9)hks}20ogqFUHH+%3spnO{~RSHIaQkDtfei99d%KE>!qG2g+<*jR4*%V89$K zZgU>h4==7S!s#qq@dmzw(O{NuA->gl^h8t99Q(7Vlg!qJ3{796I>(o(D2 z61O&<5fMlvs+oc$NfQeH+WthE@{rE#%7mwwt=7g3YHgy9m@DjW5X{$G^khE5C#XLyb%V@^LgVG4j=KQMhjL`q$8u3rJB{v*GDz$U89zksq#!(0L9UiXVG zuihALaZVp(0^6IAaWFkML4%15Api*3UPVFl4W%OP?LrXV`x>FIb#{DFSymjWK-u*o zY;esrw;%Bu@HJ@hoQjwwo%`(0{Tcg07VUHJ^%pJdwmRI;^D#*Wc#PC@?>5@S&-G`CO{*H>^wYR`ym$+ z(|uXs6H>;&M02dKdH;u+ximGt9{^RTWLVQCs7r)W^U3ZI*C0veZ++y}=jd*>UGcyQ zsAH+`CX~*}jre{}!KX(*Udb=VZDk~2&0+JeVF`#AEq^YX5T)|^czf(zd!_Yl>8}=p z$)N3Cu_gRyb4-)jIhDP8XMA)12_69UMxknyBl$h$y2sV4W->lS6FYu>aldL;S1(V} zz!YVQzTQw?Y9LpQym>Va1v|_@LN2?s4)ieT0!S{caM|g7_w%o)G)&|>pY6mFkrNOf zFUZleo4X((+h2^T=##uaC(wQ^`NTPS^&5*#*c98!@)J>JPEbtBi(NNt$j&#UvoMp~ z1z*&CQwgk9u|jX|54XJc^R2L{o0zICY(x%*0$WQaKyl!kf@woOhCg@BXDWDyi7K`> z0i3K}9kf2R3>Ex@iR$x@G(QSW@l}H`4JUP4I_?DFD+^VZ{pm#MGz~m;xl(!OFYkLI zbwX-Kw$B?8QaBRC7F03Zf+QW3Cd?Z!!ckh;25$ggLRpsm(c1AIt0w%FEC4yae>s|W zne&G|*mB)oM%%@4g5p4dyK*HuM)`)G%2(!~pMZ(^$`IY5TOnHaK8Yl~rmJ~VbGfL= zT?~bplIaq@9FG3u{~paAzYB3pdhbh^7+*&BZ&8hzHgZMwtW-qfgNKtbwXtG(Is3RU zCX$brtgr8i>Q0*G!md^h(mf0ua{e3uu8UYcYZX3X5Rs_nc08Y(APP+!Ng~(VsoJ#< zUB&jj!-%vVs$J_%FlQG^GS}x`T7oe6ay_Zx*rkc>o54WJ8~;VKzFUOCDs)4)yM~rLr?W65MOWKDaDpO0%0L{GWM7-U?qZ1CyeMuB-N!g3Epuig~T(%{V_E1W=A8Qi0 zf(<4FQEn{UAwKm*r41H48=HO+p_o7C62>0D132$`PAwbC@qn&_i)qL3k;e^;<}fd3#c9&s zr?ltZm$n_M)ks~n4)HPumUF4B5t6lY>6eFaqSgNOdejkGHjA4k;#aOsxa;}Z{Lu7@ z3ID4OxF`-9w+dp4~Dt5_tf(BgqpoDjYt1hH;y*<7PQ?IS$A zI3ca?nkZeviZ1Xq=CW+TkR9bQz6ldhFuQ1irPOK3K}s<9=nr1Y?NvQmE*^%BX>|Lv z_fhb$J9+Nom9tYoCqXg?48qY>r`TO`L?$4kOnj38rMNRLuhlfaYR#1V6X>QGDx!Xp z$7-M)mna(pR4 zeWV(;t;oyM%E&K(PLGG*AB_$4@SqfdnN?6HO%EUaBK0d4Wk1VU zjQhEBO>}ZrXKzYFh)>6CLtLbtjCsx^5{?tv2kx4ThotI2aO*HIdSZe|yO2Ng6^Rhmse2 zgL#9RtA2z$d%x`Ry+_6H=wmo-)uTcbbw%wXb(Pl?96J+Q`t(8gv}(eEv-oP^Am(;1 zOXJCyS|&sEX98}FOrS$*V^A^;Zx2w~ z_n%BuYXJE5TD6gHGx;l)u?rxx5edoq_k~-{d}Cm_GW#sF)~3m2KC4x=d{8+t`1}6h*`LO}Ff856 zDFzQoxv`m&xJczfka(q$(kRzz-Xub~1f{ISj8w2unKM-yyEAL6hn>Vs0Ovp}26EC& zV>|y$w615HYL=bfP7=$^3=W`z*t$RNX^%*sRMhW!9PIi*x_ynsu5u%yJLAF57(D2s z)bX7!WoF^q++;~$GwU5|&_w1SM27b3D*7L873s;9#G&*GgL~S?YBJTs0(Od!xp*JQ zHozgjHMu@*T&ZDiy$#qRc)9&`^Uvq_rI@&sj~KLWp0KU3gBwy~l*?Q&g<&$(eT&l@ zc0WkmrmvBkEiJ!LiX4u8XG41B5%X>(3vZ+ZA##9Bdgj|Tznr=xB?4Yk#kbaDq##L^ zbZg!*WQdHx)4|~1J{G(O&yK~Vl^Grq@K{4_MA(gdOk>z0I3Qn0VEGh5;w02F#d>^+ApWxvzj#|mrU0tsta0SIraxw&B~OphYoeM1 zLWsNdOiP#`!L#Xn)IwHlDPjS;jYNTW>U1ajK#CR9Vb5TklzgR(*N(L^7J#dt@*0oI z^mgo+MI|e+BH3r!u;;_Ge-GSVJ!R;isJ<00J!%X}QwOTE7kFju6YUV;#?;n|90T@( zD*_CVyLQ5vDS}MrFI{>*u4BEkoj6`DQC~VGV%Qb?yd@e4K&mc#<0m#o|%Am9s6$lKKWAwh@7xW=dyfsY?bcztH zWOVU6<-zm z36SI!K#|B)J{=_|t7coqNmO%k;u$1}X)93vyYs_BT))StN`1D-5?5(=occrLXBd`A z!GYn3rpbBr4bjDqPEWU-pCL*Gpr6hJSysztM`)W%XbYw#?}nDmB= zXRyO5hy%{ZzFec_6pwxTAY%-;CKH7WUu|Qi#<}zyTmkCWtszjNf?*2l@q`c`9dSof zb+{sNPE@FklEJ;eu}Kt&Rwk5l4!qQxYH>7FzKE4LuN`SSRCxj~EaOwYQ(DLhoTVS; z7zS#0r;i`Vf+o8%C$O2h0LNLNL{ORK5jD6~OmCr$FZy_OoIS-@&*)3w)!M3HUX`3d5ND~1!%XSZ zv@0SSHIVMzZmg#yUDGwCt+<8Bem#G@98KC=J%5~rmoxb*4Q|dnO~k#ZF`%*U$|Z1V zuOKQ?)|8X1S)NCxuu z)Sy1nOg5{o#KVud7nZgKVZN3Ygv(@3>be zSLReF6)B&#DG`WJtvKiSI#!qna5-<=D^9Nj(wZIrb{Q?Sh>*uF7p0qnH0m_arL;l> z1eM%YFqOEyNS)&I8n=g;AMr_bRTB!4@W2@yW+6C`pos2H1kebEM>OV>lBlR z##r!LG>{YfHJqAv!IH`}iUf4qCO%$xoyF+|qSc$HN_7#Yz1Pll$Scmx=`w$SR2UmR z_|dX^r+TCILwFa&nokNNl|ILqj|%xke2bvzwDe(CiF?D7E}ukq|cZcWf5*|X5s-N zO?>096JVO)gg}KRi*Yboy5i%4d`m^0==sbd`_jbZj!PrP?8TN*={TXHQJwvVO^HO& zqA88Q0*$muQ)c2Sr@YNAu5VMm>IH3@lNzU1>lS!A=-O)mZK)F-HODa(voZ<<5T33A zmCP1hRZ_2wT+3PxdR6fUa;dgCs56IUYpn&#>SiU8NB_}PwtNlI(ep4m7nKJ*f=MDQ zSnJ%w3^5iZvcl||Oc#-$Y3!`}Rl-oAhoT}kTA6`f5|&p|54x>@=#Z#rb)q}PyYIcy z+TPCakK~)WFi#eKszE!C9nHZ2*hWUFYU`$&sJnzvJ(zwRRvayHZ6kbZ0l^O*0OBiR zS;B;^K;cFYT*GQM(fC zJ22qk?T4E$BYf0I8Afq3xvB{826`+jX~?%XAD(}Iq)7CLNls9nDP;fyK;KDIK&~9| zH0t*$pl{Ex^@htQq-z+0IOa$u4gONaN@vyH(ws6C5*@9)_KkQ{H@TzuTeyF)1BfZ7 zpyMR9-{N@+nW3ANp>hHm?teMc`{zw=p>ezMUC8G(R;-Jrtg5)``d5Hc(Sr{HdkE|E zixGQH7GH%T%jj*KClJW+v)@Fuk-lF!f#qX6NB{6#crT3Z;o0)1!bE?0J>K*?bsoa= z6_E+71#p_)9*OV%IgMDePpWDy7(4!v8m-qe8ZIAPpI@HST?nighm+!VYdR(4`VkW{ zrA;vU`-5zE-34FTT`2H$N~s=`oRzo)NEU^$ssyZ>|K+qoY(PC}ITah$__^$}_c7zk zkF}Kz7PWNvRx1IUcE!b}NR8iFozlETI!w`ZLFuNPip!0YM?3rM8!lUQOskktrkvHz z3JM4*vyF$>P3~9$Cxi*$Q{o`L+(Z=G5>}uwC;%||r{}3y&NSOfPk|6u`dP(zWQ_DA0zjJmLS8Y+_;d_AYY|Q;uxn{PNPFp&0 z+^R3(tP#|+4X&$CPi=$dTO}um=PNDh--Cm9IJeWu5Q}xI!ejrIw|P@|G^XU`n!ZIS zn1-p&O<&SY@530i+>ebF!a0E8F&=YSD&zvsPFc8rnZG=Ucn}OU=~jyg`$|=Ay?nW} z+^FN%2;d_p)f+w+wd64iTUE>MpOgy@TAB3#`06pNyc3T1VUGnwO}X9~s>^_2f!R|@ zMMY&l>pd!>Uk~r{Y!!L&)pGFERu#KaLq)G3m8?#G*hlssK2_YjdoV?L-krf-vuH55 zoFvCCf7Rx+?%%p~5Wdxc-|w48&@BM8%wKkt5&OO;fA+u9hYgSt#J5+2N$mJ$H8{TK z>YRmg(R{0eh+Li(TR54m2*s%vacs#P=oEegh3;qGk^3AR_1_zjd`~$7tc8f9!DRW{ z`__wlNGk0OyMT;#CWE26AY zg|pU>b|T{_yV=X^pFyaAoynSz_n%nH`3>*1G}U>2EwG}DcFNU{A=3Q{V=BlZbBB$H}J zoN24Rgppk1kb7sx3g8*61#e%9-`T>Uc|3#L9@IMGP*as&k<>NOr+hkAQ* zSKkee0;<5M|EmIbs9G$yf0S`mO~V5~v#RFV#!3K4pjBb;5#Sm^be8s0EH@C^r1UR- z2t9L+#mC98Bq8x6n@pl)(vKJUqDZKa?P{CA^(r|7t#OEpS0dvU_w?Clg1OEn*GV~v zckr9Q0yc5jcsW;^OKBN_CLU*$k40X$c+8`2G~7lmFugA@(#3S8seWjWZypH@{$d8o znL((UU>l%X@6z}7L}2o}(ypy-BY2R_5AcEj!LMAb9}sIVjt5mX4oMlHC{O+NU88A= zo^wv4Z|*zTzBx#Jq`-kOw94>XQarlshFRGES181tKD8Yng}p&l;4|S09%C39Kfz;gvM=*WaV)e=~b} z((o#H`%c?bmORQz&uGis{uTjOwSlN#O1(ZmHw-^oGrFZHF7gAeMN{d9bkv}g&c-d~ zoz~Q)b^>-hRMb^7F3+XCWlR8&!vA*p!rs;Ma~Ve_r!R|fGZqYR7?#D8b(Pi(6Glxw z$4N`jK0ny^M0?OgAJR;^q&TP1tlO5mdr?~4Cp{Ei#}|4?ucy+$MeJKP&U|&Mu)c{k z%;dq-A6mJ8JQG7JUUghtGtY|EC25vX#{Xj96^C zspUN{pJQQ2i=L14eM}!(qX%L0Dt{rVn-X*d_r`uY+ZYBK!Xgu)YMj;~Sen;v3Nq63 zy@kU7qFZ@QUj9P%UAf=+DFCNB`}WVZB%9qUl6B2$9t#I4Y=lho?S?WaTTnfVE_o+p zC2bU1#sH~HAi;zynF7giT?p;Ve%*HP!P$Ppdq*>}=%g#}Rxg0Bq-KO_QP!AY9NH6D ziVMcuTn=Rqojht)q5ypcG99L6r*-7)p~!y1)CR`F<`bmpl>Z35ShK|iwZL!_b zf<3@KiLeg9t4?E_s$f5?cBdI_(gc0SeCL|*hVwyxXY%)}8IuYmUY58%fd0lUN@6CE zXV3bvcdb)dRYw-GaNmr(l(0`IYiiv1s?He6h|9l)T}l|zwVGz?{@nPqRGizY zxpIpbhpOJvKtUNj1OJ8=esgf z!!pU5I&?$~SpP(`p0)I9BSl|jTg~W@2vC&XLxR%AY(QVl2ArIe#`2jAEnGHnR+>Ee z>NT%nWkl=cBw>Y*FT@~ROu(@G5wPbFd<97(r}m9p2d&e|(JjjZN_)$BxG>;#5)y{^ zwoT6aa{!_*bemo?IxJK4281r9jOj6O>6&JFml*f9B~bD0v~Z@;*1R!gf4F-j2%) z_Y*QkEubStzsav{_}M?%az)fr60|g$LGj|ut0_aI3?13(83nZyd15@eXIr2!H_f`B z9K@B?XVK+IhrXCo8KhxfUb9|pCx;F0*`%V=J2`J5zdNtqV1j4;)WDf4k^<1AN3J89 zbr$Ql`vBx(#p){H|HbIg73o4d=>}wgUH6tX%ZA0taYRRg&+lr`-rf){ld2vWAqd2> za2^$+Q4+MqRm;f3L|?umJ<}2-zv#>G*<(CAjyz8z2=I^!?Fr5Zf2@Z(CnzgkQwuR# zHDqNlWe!DB8v*bPD73<+%;C3IlH~UZwegg}Nr~tH!s&q8kz>_3JHaJxa*>8vNM{#9 zWIwRIozpFw!hGn`KXoggzi5nLa>*85L8Sn9y)lOq>dh&t?rn;X-)qyQSts-y-ogi! ze`m*r+`(3adCGz5*0mV+08S}i z@dNa5dcc#c+;pFUBZif$9PC73RL^b~k_rO?pt139@aGD+)cqq|_|-kR?Y(07&BDFT zxT%eU)_JAHeiD)?zwBz+UDog-tKJ^Flr@6}fHCmJGvxzUW$LJ1NmN|w&k!-R%g6m7aN9VKFpIV3B&2CZwYh$OS9t^YH;6~H| ztJ}aqykdzJhn2ki4#vDIty(6!pLS9$R-|R}sMhV#lUS&$0kMR z^!kHa`$2YoLKZ2V+G6aby7Te#ORr7{ zXSkPd#xL7!7>d`PLsm9iL1>t2=cYC5N{-(JRytPTG640q_{RThMbr{oTLo%*7Bw77 zKY$Wta}@V@+JX61(j)7Iq&rv*DY^y>t4*JcSX8#nkvbI;v$Sar2l(S0a0#1~EbdJu z*!h9u{m8Ho`uUXj_@*KKO1BUP|Yp%*Qun=SP$TKAl);xlK?Q!e_$i5 z@XejsFl8=c!U2;E(z>!}w45>PAZ0o%Pu@*GhBLfR{FGpF(aa4F zDZ9XVB>)B31Ltdz|4w?r0G2tlZ{Ttp9LE4B#GaC+R2`Rw(C>5I{l2JQ*t;%j2Uc;_ zJ@}Mf8uk}wwYLf3WXzOPPS93lnVOIM>N|iVaA)nd6VU4j7&EP#1Wfjp1LGh8>0e=E z-ei9CubPcKb$8b431Sw=7SyIJeyF@wJ^Q>*pWb!iyis4*APy9yxt9A+hoX3j!y>-4 zwH3*>1HP^Fq`X{B*PEXKcoSUMAeU>M5`8hQqUJyyAPx|LAHiE_az%sa3fOb`CcS%M zux(1EjqC%>B;kq;LmKrPvcnNfs%Np81Reukfz09kh`;-lSc2#Fyp{r6qJCY(z0(_e z%TP97N>}||kP(J)u?TkobIcWo_)YX^)c8?2*}cq>`q!+M0vJu;;27OcIj?zxRsbi? zS?z3qxF-Cb4oE=shMi{Or)}RcST2`{BdY4YUzpSy zAOgI5E03-G$~$BL*Tn{(FF|UCk|P$d!DC;3Q+tO92M6Y>VR%tuIZUCr9E(JcKp9f&;)_F4qU z+s4#7!e^MQ3X&od_yA4M6o4hiyruKQ9>OK(dOE*F%4^q$qn3&W@>Y>W0lMeytn72m z)m4Zs=JS8PnXOH2Mf5`V+bKYO_yVNbM4o?`K=9@+kYzChdjj_Kc6^=jzKliRAwOt`E}EsNlc~)!gbdU z+u?FC_;>+ZI@7-_-rm9^A7T0&-K>obv%i$xrRhWrwcHN8aNSU@3Tj@*h@Mra2(&iV zAp^z|_HE#P7X529jIg6MgEzmfx|fL?JGz$4m$_>{{&p8L^!uJP5A*ghz|R0XI$&(Kpw@7nvr!K!htX)D$CZ{IB) zty5|HMEg@JeSq%(7o-m7|NXI9AgxkhI+CYb9&#Vx%u6-?rO&+3+K1@v3sPx=3G($8 zz<@vDzsW!H*r)6HU_d`SqSvd>O`j6^Xn76g?STU)ws2ILo*&+wEB&)N^<5|vGLXyL zRuH{KG8_16W>`N1WAw2~(@LYp1s1YlQLhRa`EBljbpV(EA-gYcu6R#TbT!#W+aR4o zyiGISSbcH+O+riaMdi@#@_?j6rYrDx$G69eM2*MTG|n;ScdOcLzyXPNlq)r@HG*zB z83ytOFOurmQ@JWB(UL)>4pz(930-mn5$D}I-uGKP=tajrsgE#4U;Ph7`YM;<4C&i| zL$+^Hkl*-OhuVTuy?pW2!WFFwI@M_5U zLaFAc$~v(ggkBZLpEK1m@zG&w^smT#>+4X!aE$g$&MkSg$iZ> zS8>1u+BJLh;r6>#xyS&|`wDLI7b|}R!P0!o|0$$@FS-|X7Tc2P?E>*_9+MTgvl>7R zh+5>AXOC7@Z)g2E53G6mE55BYhb)zCyJ17N9`Lww!U7jw$sSfi3ax!+gXWbPS*DK| z5cBW0cvMYK&;Xlom@qnc*}XtA2jEgkSQKD^7)YXUtmAY#PB2qy)}A@*2?T>ZzDVxT z29GVLrdF`HB5V831HEPXE8AKYmy9B%%nqe+Cm(jTei48;7ta(xMwMrfLYzLO1)~lG zBEWa@l8I7XZQ7A@wF%D z1UKMN?I4JG)_kY{Qik5%CJxTm1ji%oJDbzIYxwjAUNOH18M~{oD`qg+?*w3=K79k# z-~e2dm`O$(ABf;lcO^J{puO7uL*3I_$0_LSW2Yv68LKXZ*_YrU0{Qg2Hro%|X4nd$ z&=$>J`0sQe-!cZ^9RUa2or#oAkgn2zLr39qWNy2I0DwI~bdoos`urhHd*pi?j3NP- z1LzXiLfY-pTn)L5+>n->U3I4DixsaVrsCtM;)r+^*Li$w@&NR87Ooh5IJ)|RwZ z1%P4vC%#O`lz(kT4TeR1a=&v>YhjIA2iQs=F8S{qS+_KwU01(5hTr413Vvrv^nA)d zJHWnSS>T89y3c0&3@Qk%GgIBhwS?^~_}py!i(=UUVlwB;-^$^wHbTg#yWV z)b^je4NU4HpS%@#_->`sAKmowj>~t2o4DQ7(A?M7cBO%IL%6ZeTr(~f*q0B&W(L+T~H<{Bj5WW)J0Ls4zIjiHVl zuos-l^2kAq9|hQo9vh4;hNj&OxSfjsXP8Qm-W{D9yhI zPQ>i0a`@sr5aU`hL&wN^^7p&2S32J@oXijZzP%k4Xs_i@K&brpgD}I4 zkN3Y|O6I^samXg%^1vbm;9?};LZWFV+()G&*Tfs9(p`Zs(@y)6oDrCqV9(E^_0D>1&8{h+gOh?V|IDON+`NxD!j-DP} z)O5J$2r76CRy=zg#{vwol>T#}`#kY+m1rXD&g6e1WY4Wno9Za->s*-99&CaMoNDG^ zzfbEl|4Fx)@EBW%0MSuWQt)TAl4l_qZVHwJA!8Yjw-@^sacd-@Z|4X<#lmt8D+uw4?4uwW-k;uYS2Rw2 zc^RoY$}(JoK9wa35tC2R(TeIYM8k};y+R2T9hL5OTufozT1cA8f>KQ35qKQxPy4mB zm=~Aw9HuAtcBS-N{Tq)8_nklYHr03xaog6TLSJ1i7Qjo}(atv@aj#!3Ip?92E2*hD zGh<_u%2WY@S(9Kv0IVh17+t5h-~la6Be0pwW(*Y&fWzTGN+_@P{zBQL_(9fWHjsqz zA{G+ykH0bBIuShAZkJ?jA$+as*=E;~xlg@z@_ zM)r+O{GVmw_N%c)Ypk9sNOJxep$ia2X{q4F!-oNTE45vmCCi*tVpo3X*j;fcn05-D zYu&Mhm}(Js{{4xTEjYTjK?%L`)mEd^27e*0|8D-{XDUzxY*FvymLyuQO74jE)NrxS z69eyo6qC)0EmO(m^zUMYf&!9+iwp4RAfugA&N-F&(9`d1S!79BR*Leq%-4~uY@hpR zH{nga6=RxU{U~eaIv5WX-J@u8$ONyHM_F;^L+y~Q)+1S)aJL87j(jZ%aMY9-WoX`*>8@vnOHNJM>z{ z<8Y06jahF8yEXEE2_t#5hJnm$*G`W4uXJRx1v-6bB0KvI9_g@J_bc`KGcy+V74+O_ z(DRD2_FDig9z4CJ=S#R9guYsoggWOovyZGe}QinCGBtTp&_83$1A zO56md1kiAcu~?}yQ>w)Jv_#f)Cd%vY7B>%>`CWte>ep= zyyqz2dq4y6P5TY4G(J7cH&?+GBsv3sG+o+c*I&lhdM@(^vPyRltk_j{@HM{&z!4z| zv9zWWH2DPI?mO_7*mbOCbwpUKv#m2Cs{n%LRS4`a?NpQbOkG2?sq(iNuuA|1bA9}^j!&tBH2~$_t`c`ZsxL1D z+LW}+gZBWYDR3)2PnE-hqnE^LJ58c=v)sE&Rm_$fZ?;p9vP{-st~X=bC41huukVq@ zv*`BVZ}O^(2E}4)*+9}h=sAX?A>ARtr01~*~pQ6#ch(?>~!F%;*&7o{`$dCvAj^d6M?&zXQ{}*C_Vs%g3C}a zH~`ly;Md*pZs^!`(RB}Y4(52wHn2sYql*A%?tL$xbc$&V&qsC>zAf)Jz+TtCB7zs$ z#m$4pVwtyH?GJ4Atsms|^Zs(jOJ+mmm>Cnhl}dvs4evz-;38_y`IUTgL~C%7qX=8aC{cD!}r zOTe&OMbaTwd-j}I2l9zf`H@X@)#$jCMjLc>;~1HyOske2h5hHQ)XwuaODMrm>NwH? z3>_5yUL#!x6IUk6nJl^bS4}rv5DwJnMKd=rWic*8L?w=s+bJn*-D~_VngA0I zwC)rlmXt^gLYW(8s$=JFW=fFwfQ)%1dqWP_qx(%-R*z5`;LyG9rY}s7zupb}a*OU0 z;$@1oT8jbbjzC{^&8fQ5>wJ;uJ3-Oq^9@&+6V2H3;(@?YU~`#tBibS{ZinI|nFAzq2m`+~4dgTHd=y&U_Z&oWS zJw!T}6&kEG@>tx+qLY6B1B-yQzEF38xYwF&w?~iEkM9o#8}Tu_MXYMc&=3k3MQQ3Y zNM&FV@{H?X@RfF&X!fv^;=q9!`nR+R#{&G%TY^cs1qETeu$HGkNR{=hGUL4Mi_1h_ z`08qtJ1~oa$5*Z)_lGJFpXT};LDj#?w(38O7OD((^mUQM2Boq?PS%{gw7RB(O8-i z${XXw40z_8MJYjT3&W)GMT(tm-&-mu)W`#m-PQsgFF@s);j`dH0Iw7IwahdLvt`F@ z&8E5N9p+{q^g8?d|H$F)k=ePl;N;1VxN>@58E_Bj*~!)(R&%mEJO9)vG4xr-M4w8j z6>8k?0bJ*bz)MD-$*La*q3x(Nlb`5Xweg{EJ!k5-pUXXxSV9NNOy{U*6pnmQ(q)*x zh4U{@V9(a?o-N&$#ePRX8nckgrQSQeV?Jxqvr|v&%dKzWDzBf0{$3+Y-NI4fG+p6- z@YlLv;MCSERKP98XEH8*TeG^GIPb+oXN&(PYUR+@wb$j2^M%X@Y`Dy81O+%4S3Sx) zGq?A1u9n-C-DoAT(U;L&*KV*`%z*Ba5+pex$KxWTzt;8R8vRAIYE+ReV}_SL2)uTc zX_(HEI|?GbMnX;(&z=CP0}V&wZOcd!HMx*+i$pO1W;f_!calE;7vmRZ~vo&Fdc z=G;pD=FtlRIv*RbA#AneTO<#Ixl&;n4|YDjSS~i1Rxp6hDBftJ#*}&8>kLuW^e$dh zN+hGGpX_DN1c6cH{hBM@4iTV-?j7I#g^bB%4-P)@;(JUbJAIbpb`gj9-$8&^ebJ9> zlp=dI-B{)%@}mtoh&DckJoV#W#XJ{m>iX3JQ^|-Of06{5rD$~c?2C7xfwXQdEJ*~y znw|-C6h$N<{m=bznRK+|(Gd|$lcc^8oMVysG-1>_f9@*5F3x&5t8|DykzIBq2gffc zUi0DyBo2r#XgX_4_z)aeFNk2-y*UmXUT%;r+p3?v1GM3FO^txkOwsjXCSsa`p<`Dj zaKos`Th6jr@=$AblGLVaJ>WmJ<+Y&CtnM_|uq20YMtb6fWsk>K8~R#oA2Oy}zHEIfO2^oyB> z(^-?t&`PCiS!xA3oVB@8j}I@y)W$Y;~aia6$-A1UV?D|5P{S1YUdzf1nt< zPMP8(#fTAfKX+`m8trT8{_a3r#LBG3hsJklb%641_pzJ0)zk>#d(U29~&|B(F$P z1%{deXs}yKUCdPab1(t3>}e@M$~O?+@B&c0Bl;|DhX0o`nj-y{``8Wb8kj zoZ;P|d=-Do72v1%mdD8XkfZk2HFR&0%3FnjW~ww@ox`Umg8?x35ugUz%!aR*#_5#A zS94YsdB7HX7-acE4{kitv7 z$``U&y8&B2+_5E}=%m?fEhqj)Slp=*+ymDKcry`Qk?l_$=`mY?gkPz5aPAKaL#K6h z_x*tCE)|=HiCD4kbD>5#C4VlT4MXDpR-KWA4GV*nVm*{uEr_Y;YUwzsJg+?#Q(kt? zcC|yW%mgmJKE&gnDhIOWM~>mQDn`m~Vxk@dk+dl9GDMUTu@WbQt8wA+s}DH&_G>=U z9$|Bdo;6b`9s0P7d>F<1pZNTCRKkUHEwLp-rM#xIa(53n1>UXOEj@sJ@QMznRuC*T zZqGg)a><(f7>U>2!~*|bE%uHezwluWqyy+wyt9o#Pt*RZM4{l>MibNC3!PFmUhUKJW^j8fVa2S%Y=KJ$&1!NZ$>a-Zdu zrb}D#r-U9N+eYo_oj0oAy(=UU7vfj4yIikr)8l1QTLC{+)tA4>tls4xYiDqOO`b(x z+J+9&5V;nJ=Ksc68;%9BD^wmhz|>2#ye^>>o^<1){xnk^Es>R5Ez54{=ut{a&~erR z!wdNvcKkOUAp427Zi#Dhhmpu}Fg%f6rJCyy= z_X+XzXU~OLLzwEguUqs61X*k;!T$dIP4=Z{p29C{xrB@>FFHWGP;>|GW@PlA=yc6- z4|tyu7a7vh6M+ACK0rFob?VDfWYK-Z0B_SlueQ1v!)tzA0utJa5L(Up3W$ugEi-vO z;qeyCe;Q({LHJh_jm)mWYf@j8Yu=^ANsdIvCN7kwN1`jK ziw2h=24%+D9V6GFnE98~xBI2vG?q@Q_+X) ze3%ZXBT9$Ug&(a0<fZ z9(&yIJkcYcxXtb>khESCx9VbFc|Bg=qs>Qy9=pLFAcr%sCpfj{jED1YSdRU9dK;N* zKb}XwI1(X|sJaULx9U>8&q8D5`~LOeIh5QtQ_avn9nj_awzSx+~4cMl)3CwG4mjTi|HK8)~Y z`{w0ep@7zKoiJBzJsDT2oflId*JJEl>*ro8Y%VnHHRtQk`N7wf1;L*ak2#NaFD2sC zp+98a1RJ*F0CunuBbn-G%jbhHJVGFKuVK>@8I2=>+$jPf3vGV48pB2{$+_?W;nR9v zE$$h+VMiwsL1@v2;-;itDTc|@K#=aH`zBX4lt`lQI@BMHcabd${kom8U7z_noH3k9 ze-M5|S|QI04XN)qqc=MtotW;SX4JGID`{LSFbx_J4a4AK48${##yRD`;|kw7uRH1x zMR~blL2sQ7?hP)0<_)EIUPjcYSj?Kzl;jM0HmKp+k|aGngul^(o}>!iKvPVTn!9Fc zsE`P>oAXlG;JK$iF*FZQMViEJm8N_>k%QF#>9S>>rb^g_oGy3`u}_T19RsB^^eqkg zjs?>jtzGP%eOIX(Ef+SYLso+EmxV0^JQ>{3XG*DJW^8&YykB3B;PU{VgF!o9{%2+1 z1)WL9(*4bu7LskPL*c{A(yfJK}N@}?9o0}y>96>$i zRYl<{No!LpR9aQw+u?n3fU6{76_wG+7uZwn8a0&plM8A1sobHlbxpY{yrFRASpBcg z#i#v@)B-n7-pj#`F-9-%Q+R8*g^+_M8qrHroIF0Gcyord!+lDc*+f~TuyPJbN%C~D z+Kj`$qeuYe@KU#ld77sA>_#LZ^o>|e@3}u36hjSvH?A)qS4vPf z?t>&eT58!^^G}8>Ocy;?w(YKEK=yY;L<$Pj7N7h!a%VWben+)0f`juyV39IrSc)+ROQw~~~aDg;j}mvFH9 zc1uaY3zug#_l>{m=sif@oB*viyBaha}hsdk2QTGGJ1tSU>@PcA^Ws=%a!g^FhnnvGN{pq!kwF5pCcw! zWn=fF_+S~sJGh|A&C@RhDwXdZI=RrsYHxLcHNqokln{z-rEO;8lqY0nMoQsB#maG! z%mPT+1SXFDa$vMim&;>O!%K>)zSa%5?>vUJ@;82oE={m29C`O*{#_H5gTA(MLL?S@ z>atC*i7R7S$~-_+LE79;Eo|``EvUW1!pM9&051*hN43IN@79-c6i?p%%^`Nupq_6F zUWUDb;RdfBy z$--DQ{ZPYw@DjU|8wG@MML$2#**Vk4__tV__AC;}9ib7}tY=j(&=$^1dphs9iKOsH zCrP)7&+~|W^iRzHwi&_qE&VT1_o_Kda3E9{zMLRhM090E!K7dUN`;3i>w?+*(5dlu zj``mG`(o4s?|?DtX?093qm?p_hC&?tgLDQJJ?@^T4NLd?NM(B!)X4sbXE@m`Z_tG=n9cln>0S- zFaG#%7p^x5WXs4k9AKm9>@#NTaiotIDe7}+t1ynd&fBiiO)J7qaM~5vkwP_$D z+!6H4`&9p9D^f3m_F*tZwrufr}wiR}JwDmvY<(Ln&#gs+La*FF0>S9jy{LZHU zaX-4lOZTGP-HbJ^{o?!z+9lF|>g*3p#E*tA%qr#Gzn~6|a|81lQjcP{bJTh*KYnrf^x?u156Y!wH82Usx%BL1a~R*7 zb5k6wZgPE|7p}QxC8>EvPie^!uxbFozB61>^e)%f*Y3bl;v?y-evbWi(XWVINXE99 zkpa_E6O6B*bn)FF%>3ro;SOQ602K*N%H)+xVfZ|@oN&bn9#5u@zU>c^`362dm9VA< z9lgx^&JGcIsugUK!`WYsmKuqx^7AD-(cyx~kP~o=C6DEx*ng$M%jhsYj-D=k3dv$Y zmu=EmQlIAG#|Kk_6T9I=L(Y_3LLF7oyNN#*ul@*dIF+lFRleiqXarE4+U9szc3wT8-!ZcrI^uZEsZQfV{Be{i`~t6If2F-Tv% z$u2OI=T;~-LfBgrf=3iB6g6{qSf)%kFa0R*8f*}MQT}L?s@7Cf2Uu`Si1;q+wZo|L zO<5+xRE0U7al)C5z|MeIcq?8axH=dw>1TT@PbpDxNVL7|6dn3yJ`l$$eCK(WNLq@Y zTXG6+{*0eBk<%&lSMnN+)yffQtxZ&1s-`J7P?=HhUH7Y{hG7{d6!>LyFDoYCInCaa z|ChY3lJL+T-~7iET&>)mA5|scXhmb)%88enkgK=rH&Wy&z4ppcX1dx3joPa<_olN5 z=$aC{@HuM3dh{zkqsvjevC+!gUS2@kwuR`K*X#>&NpCy>c(ft<9eRnUh2AzQko5uUsths$#@s0h& z&1!6qF_YZBC-M4v0-O5kZth|`ugwob*+7jlYqYRS#8L)pJQDjb#MWh!=IiW|NTX8r zWgbKs#@5Zj7^QLAio@G3DSPZM3sZiXZA#;(a{wYX{XQl?8sZN%3 z=Zma%nNIvv8H9ndwGsvmY{am^&Z%_CxftPt4q<|w9YG2DXIvuJv~I7Ji&){ZZ6uKG zkfHf(h#$MhbcvW?wS0hh=64FXL_~*TLC$tOCnPaKLo>^B-B1pqgm?x$d$!7}AtTm% zcnKo*`VU%phCe4ft=~PNTbyAHQX2)LRd2$!|WhY}XkguFE zS4X14-)_J|p_P%A!>31O8M$sVAm9lmEBO-^(UqEb|(GA#bg zl_O|UyYT%9UzSA|@0045EkBD)gshn$QCX>Q%Lj~Xw9w$lLRL9GW7^Yg)H=Km0QN*DgXo2@oKS57%zR>MCgw1 z7$Loo2%opVxby+ktK~<2B~0?hiv`j#S5iKZM?t44VAjgC!Hid!`yrC)qi&}wBmLOu zHpQz3J#yxfmjaav-l$aLDjOk_T^woFa4CZZK3g5{{6+zLN&D9XO_r{MmuVw>;aM9_ zO?Nm`htP-H=jKQv=vP;_ue^vB7AC8?=b_Ncp71C>(b7DQh3#Ue6L7Hpc$81ehvl&_ z(sd$`O)*ZPgyh3k4<3wgx%x_jAXIpPtg{bjtQbamDvjZJ0+BI(_ zE%Pn2bqTee^TNTpE;?&)Z8#{9O z(Pf%3#je0P217T*yxX`#@exA`Z8=VaNAqaONgslL{|Fx0Sk@K4cUmv>CdgR+oyw;V z47*{7AeNRsgLx`ktSax!oSTV!%2$%p_g6z*p{Dwhhpw5Z?rg3MBd`+A_Ji4Do%gfL zXw1EydATZVC^;&a1LdmAr5K)Q7lgZTV%Uizby%iCG>+rHo8*r%X)E!7YpGYd=IWXu4dfvlQkBsw&`NGc627Q<2V%!w974^pv!p>jntAs*6OB zvy3&`wR9etab?A)ia#l#y^G6ZzCwNauy3*n?^~0t(y|EkEEwzA;`m$9zMaBO`gyEl z*2cZTx+g_ibH5gX+BAs<0+hGtqx0O~V9wg6jsM_nIGRxELBXQaAkAnR7r9hxpRx$G zAFSKj>WehIdugqVU8X=oI=wuG=KRpV>&l-1t}?f5#+3d4|P&$?}F zW>=B~o`}kq;z~m%Rl7RK3a3S=cvS(%2&i#Ra9450?NhlEUEdziu<>p$n4?eGcypQB zWaT@!Bws-vR@8>U-~T?Mlr=+I8-FL#Bi!UEp~x41mYL?O`xNJJBOJJnnfz!cA++|* z)LF~q8!${`+uf@at69#h3y$_FfA-~UX}Iz$Uv$9Xnwm%;#}$Xg|oREOCF6@ z#(Z0(5klSM`+Su~;k{EfQA_>cd-HEr;Sz0qdi83h6RMv1C4z-En>FMqiywwRo4V9U znT*(As-q}?}5_dWntx z^`FPi#)xAKaSlzzLWWrp z3I=b#6Ke&o^hXJN&netNa3yT~@d506;4=_RuUyuSb-jEqdPw#HOIDSc1|ng6`C6sY zNmtSqaGg_njP2Ba&r_Hr`KEkmfUus>XXr`sY63CHenRN}KqeY)yk9LQ zm0L$_!qOzV2A1(1fg6CTORxcUe}klfc118XHFKpW!fy6MNq>(joDq&1ee^>H2H)ZfRt}4r z0rUdU!E(*Wo^)d}YsUTQ|9H%26!`%PY%|8hC;Zu}=$QO%rFGW?aN?OmuukkQm#SdU zO@;hr{K)#*8ZINm|5&bIT#2C(UW;g{RwPu&uZTfZMR2`%!2|D$QH2VTK*4QdH?uf9 z&^61fI^Xys3QOx&D=?pE7UM(rsr6SUB(!mfv>zRjO7e+|MPf;e{igk_>Vw#)*iaYG z$+?^WIPPvpnNwrWV0!P#8do-EYbDf+E(~LHcP8r0Ebmxe(d93>4on z_o$mMQIH{)@mR6U8-2AOwU8%%C(f4palTL5fzYJ!Yq+=F98MJIuoH6gLEMWGxDFm) zck>m)mA{NL_Fc-I(hS46Hp{4AWZUH;N5`f{$DIJde=zHPb*<8L>?)Z8@lc@ZRJldZ zTeJl32-FD!+HV`}s(MNsUV+&ac=U4;H2cngYXEr^0)O{2bC!cp0~t1mIf(DuSJ@w} z-MAOUouX3Cp|i%erxX5lRYIKOs_y+^7D4$%%oVwp%3tn99hN;@&D)V4)-A#khkl*O z-6R(Y7Oq}ErH`f6pg>sc|GX}cj2nU9YxPWU$@tL?Xg--hb6{%K@dX6WlESs4p#F9y zUd9(Lnj~AZD9MZ5Ix|)n`?mR#EGLNfbf|%B+~ra!(kdgSv^3I}Rx9fALFilhC&0At z-M5gef7k%qmpnV7I2)Ch5Pjp9w|%Md}^h5-rt z%`@{ML57q>ye-ki zL%gd8xWaT_wY+7g^bNeUnipGn72F;t$H0FUpEJ#Ni9c85LaYC>6Iaoa6UqfvCnANw zc&xYcH;?VCZjmK=Z`iuk-(-INkFf92^;jB_qqMC$e>&qwV_GXQb=)1ss}8F%uWm+IQ&6+`6&SKj)8|-J{nm&D2UAQ65kD)0R`+`e$U| z$960>IeO$mwhfZKWOHDXL=E5lV7sa<^=Ddm=4V4Qx zvj}tF4J(l2zHRP9k{6=EdHsXG;t`m067M z;{%tXTG3qYW56d5cAKkQw3t+9V+qykQ*zv*3togflTQl4BRVJXPW^yb&sSkW6(|?X zjPI|63g%J3fa-iQ?)-VdQcfwMCbb-E0C&muCoz{2O!}- z^MDQzuH~v0h2A37S(sd9)Qx)IxP0&ADRix_@=PdQm5_g-gbdUnPhpm5%+PrnU-F35 z;V%K10x||<4=fiQCedMo65Z~LM6Z}UpD8UDuf#H+n4GhPoudjfPic~9Od6xrRW4vu zhj;+!^P+FmEI;`4oy$@ySHu);Ia*v#bvl(!UyyL0m9%zqRvyT}ADKRR17_dUs!#W3 z9M5TytM#tWAZ7&|u`>F4_2&^ezE5#>1@e7Gbivl6MdSg#>oW)h4ifG&6(G{AR+|a4 zsq_|^&eAW`o-gk5iOum!B8>U{Pr{({bX@UQ3AtHKeH^)or-Z6qXSQOv^E6V2PXixP z*+C{5F{|1Lml2Q1^v81AzD&sXN-7(Z$&<1w_qf6zQVTO`d-!S?L0_hY`zt}!?)+{v zqIy90uz2@H!t$v6r>b_`Kvf3=p|2A1u9kPYJ~=Hx!hM!uu~_r!8E{X%WYA(iS+zUO z7qrGP`Fk!^^o~kgA4be@TDm#m=gL<^tuGL>+{nOB;02c8olXMZi`QB-Z-C;`lVL7 z#};imT-4e3(B&O5Qz>ZZ{w@i02jg0q2F~$HEb~jqKa|nn`aI&b2MPBX3=nHDPNdz2 z!R4wJnI02qu;yNo$H5GbI3QUjqY?d5tG+mJf9FLaX;>jpV?vc#sl$wBs|EUSBXKxh zpp?dU&e9q!avd1_m>U@UFJm&?Vv2xvA5VKd#(YyNK99)Sn_k()mU0zlp$hJ=WWuag z7}W=r%VXRuCw(2C>zP=u0lJe)Thw%OxE?G4R3o_**A%rcVlSWpv)|b7;9L0)mA5YygNv3m)Yix>jo~ zy#jUcsZ#go+-Expj4{wUcqb87L}Z>S=opk3obE9iBizTwYKK$%hzWtaoI5O5yWVUA zgCDU5<0;H*lXKmp^FX;wNK^VGSGY%JC1o^mIKy$ZVgK ziRG}C~TrrD%>J6lke8Kl0(cK zGUb(nU;r z`nl4uGo{NS^CmH1duX6_0zega6i&uG*-K#GLRc8Rr%n`qs`yO${ zlk;DF)Zi3bQn^=5_N__^=$~C*fOyS7!hQCDYi#KBZgwtL)na0;CBK!mHm$%twrJI% zCpQ^DwJ$%Iv-@IYW3LdXc7f8Q(BVr_K|;{i12F}FF%`&6%xcr(+8vCk3R(x&q~v?R z)ss&vmkPJ2yqy;-n)^h2H6~CR6?)8ofzcF94He9zWYy5W1DOd2LeJYTJ~W?{ihu0Q zJeAWdnI3VJk#L{6@TIDl8?~OXxjs|3r2`OfD`Sf`9xkfr?00<)Vme|kZ0>PCnCX>N zK2@y~D0-h{;_`#phcX+CW{c~45U&$RxX&u!)F9CAc017SI+Ind$7Fg7P=0|Y%9b6> z{$<1AlS2G#|Gk8}jg%23Uu_nu%_@9XRI3dxMMdgxs=!B7&}YVCb(M=)jWzcPHyQsEJm9euNbI-=w$o#ld=ELN-2tsNE2BU~xzSQe4x4g1B%^6>c$KJkdo z-*>sPXBxP?BjG+nVU0=xPnLSb7QTp$*gO)-zD+K;R5Yz4nZC9dOxT5@HqV&caXPF{ z$Y8jFgSiKIQr3ntZB`bC;u7l@zl&-8obd5CvP zrPslXv&G~=F)SA`zC;+73;tjfsrH9x^roa+H7lcYClsAyLgtrR>6K8jCONmg=M{@) zB;02rZQY!2@Ol#7a ztY9n!-D6w{ARrvEGVDyTTXezmEJYoUfkN?0DqptuZc&Rf3?JYX6a^CQGmgw!`sY90 z@xp)CV=C1Y8b}=2@~DDshw@Zfv|M#sFu;?oiplhdE1GBkv5A_qb@Gh7U(nR;`fkK) z021!A89Uqw2)b6|%OWwU&UU++`F(Ppdwl8k6Ge61d=cEo$E46(jAoz?ZD`5k%fUIO z!Z4fG1j|LFwq!Td+8;e1`}+ZUWeYoY|xtZ8l9B)(6kcnj4;;) zOSndr%&b#eEtBa`kZ_;nI5i(;vFS_}xz?;U+jCmjt4}lxh%^EfCQzAFdbqz55Qk{V z+f_vHR1X?oMb2 zlPNL3LsefyWPvi`Nz|@Od5Iw5K2sPKD|ekIu8hg^eOaT*2Ug{oSoTdqZgxEr&cPsF zI(m~i3qEGK>zy*L4RNQ?d{Zhu-+w>pPQ65_1y?d#dknKqCFyA!s=C{8Vtd=6O_hQF zRki*1Rp8&5W|aZ&HAZ-}rmbh(P2zPBl_Nc_I~*TKxX*sTPZ%`gPK~HCS{QuYzMLWO zLaa7x;O?6+Qad;asl%6yQ;%CfxtO5KJ17pJ8sjNUuw0B5ST0cAqeA%^nM!}Tq~o)F znLf!c%5C)7=9gCG9#gRGcnM`d;JT)l1rqKvg3dl}(8YOYQsGP0hccTyV_x8rn`awnot8!B?zvP!ed(>!OTccmvMX-4p9rei{+~4) z-)`ReZp+p=q~L`!)X2dL+XLpcY<;(J>)eXUx?XA+J|x_yKX)pr>kbvV#}~ikXF+4kH>F}(RPO#u z1cUi?ah!PNum$qaGi9DHCU(&H4QO}JI;~ABs3s4(u54Do?;8-|n%iB(eyYBg!AmRSn04I2%Mjw$G_vgZ2HPG&8 z2ZvYB!!eb`W;9z(7MlfVb{jnCIsxHuFouNd({jBMieIg2cN&moo(biv;&QJO#ydgs z{2<{z%{iXc;1QGa@;$hoXkd8h7E=^-qJT9jbzL9gg+U$Ue;uC%_mP+;ty5x|PfS*J z4c&EpGn~HS%eA5Jcly6e4P877#QIY$Y$+I%G;eydE^f6+@hcmvA>sbo!B?0fa@pVo z9`zBa!)XMX8G9mil)=w`y6urr2KuDwpo*O4lUm^(l^c5MC57Qb!hPCeGGjlUEnN|r z_o73HOvu2McqEp86_;Jsj&^8zft0kdKHqc8E15X0iry!=Vp+uflex_n%gpZLX}1z; zw#=i1E~JGo9jkO_p)I9{FYOF?w|egv@GeNPJlN%8 zqsjFeU{}kGde`g6uv;xMr9uA!w59EZrTh@H*^-vg@cF)sm%a*lTn0*i*} zC+7VOpga3m&D!76LKpo);6AXhCDh;rl#s>L(1n!kbI7<+f)-N4TqjV&7Eyv0P=Ef& zB1+(+Zy(xHYRCdg@XsHdI-79HK)ZJZ%xl=cLe~G(C%QA9zzZj5kpN3R)4Q@D8xH7hA)im&tc$)d9RD7~G^LTc%Tn&epQ{wW@ z>+L>}FLIb92d^~-U2TuJ-4T~Jz;dmIwF^f2xBk@0aK3Zc72=T{2it0&^tCpP@bHzE zYNhM#6k<^e4_|GmRk+?xIb5-7_XVO`R4y33kIC@qW8m6W#uk1PpF?L0UDrKxU{~C% z**cFJ@=Vnp{->Ul?^$slQ1*BYUyI;o#&Pe*jhy?AxdRGiYS>&#;IjVoZy7G_KA*hl zZv(eBGRJCnpsklOV!s_EE4Xo z9Z0y3htcMuj*}rZLH}L7;jQ{DbLzLk1>m#Cw#{kWI=5l#+?tJVS8ZL;n!2{X?7B(& z!g{%h!yFcco+lsVxLn$~Dn8FEvFz8STPo2#f#CUsotTI#;|M-u z5029+ypstYiR1Fn0Ox!Wk#pcmW$y^?JNw+yT{zH}P$~h!J(4h@avgJGAMN92)swfx zQu^?>;!#myJ=H(Hvl;*M&nN_!2t5~SS*PxIHG=_#PIkYh_jGA*o!t3nj7%9iU&=UJ zA$092WixiNBy}yUbHu(XzP7%Gak*10#%J|0{>X_UW_mN1?L1X3xIpNIDQ9;zYk`DU z-LLIERob0BJY`{aDE<7vlcg(T3LkZ9_f00OOd$BAR)A*8*;W8^OC&y6mQ&%AL|E=T z9!CI;nDe0bgC@%@sbW zs=N})zD~?7Z(~i#nC<1D<_!?HEhYy)U9|%XTSVEhe6*4v%lf7(CEcNAiYl*3>Te0| zZtwnaJ~eDUY3(OG`jAPL$=dW5C42#S84x1_CaQGyr46GG>cxBiZ_<##0ixh}a6j`+Vr-U`lnlN|648Jrw2j~WKo zm{J1XfS>iBLk)$FJ$TA*_1((X&@RA~1K-6{ev=&Z%=^NP9=^10;~SIf&>(UC`V~Zc_7n91rzt>+uY+I37vAuY-A3mU04@;$&E>I=~ z^p2qG{rXhnxn@Z%ok!-Y285d4p^=}GiatBua<)}8AXI}ReO!M0v0rL;xPRf7i3Nu< z8(sG>)ga+MovCU+b3llx*4eU!_61!dLu8?`aGuHiEgnicWBJ@lhN)K-bt0g z*C@w|+P)sIcCT`eE82Xtuz@z@x{2q&CEPJt%AMxzms@vVYmKj#n&DsU60XkZP#lS; zF!8raiC*haTslc@daO~=-b`;l%@CB zBPw~$_K>5HpFK+)qus%Eg4XG)g#0U|ofhkKcX@aAK6No)w{DvYx~DO6_Avv(J^Tw! zS-vD=RaeSIM|V_<&;QZ>-T%`GWO~?QivQn6+KMHag&N7NzD;kCxBrD*enWU8U+<_M zctp5Uw*Bv(yOoCFW;KhZYChJt?P_eo}0kKjsvN5IAA(94ZKq&=KP``JM6=#x_65nHhJP@d~frW7RH zrwKB(?!cvTx2S^g2L4MSEJ??33uy&mxQe9#!g|Q1(G8L!=x2c2Cjr zgtE_~N z=<;#uekkA)OTUcE&27L%^>g47?q*3$VQ)QK&68@mD(sOaLzx=u6z)#67mraM748;x zPgpS@9?&SS7m}zPc}!tH3)km)cWTO{7D81|ULXD*GxD_fQXH%DOlEhJ5`1JR?COZ! zft6IV3fV@7xNrGwKKQ$i%ezuFz+m?8EP-zwYQ?oe5{;)gbgjncQ1uVTs=ZQ(X9u2F zwjRD$_ho$UFJlM!CY7(g&+cXR2OcicYSbdJtB-9j? zw}aN{+K^4%)%ihW`L;VO22Xk+w`Ierz9EPD)UmQvCmKU8HSVjIEBjeNmzskvwjQn- zDQjYEPA>C^FLBQjXxQu%jlBBK?wx1qH&jR+yxvtwb>})Ib#>&e=bOT=Hg7mo;q#=L z>77jUjW5`9q0C~P?n|3A;?dG|@6yATjOnMw+M~if;g|)p!F|VUGG$p1JzyR+yN^tRMur2ygqm`UOSXCxMu(#YmuhG#xdhlCbr_e}G=#JQ?9LZvZE$unJL)@4go&k2ley3gcYyxZs=SMCKw`E|*ZuBDUnKs0^_}Upj|+Fr7~yW}V}w4~9L9xuX;xLS5G$+hD;ju^uJeOd<>_ozm&)!?4DPtib2yCom3>7+ zCWoNsvn;qoN5|)1s~I4Z`*v32DeJXaWnI)^>A_Mq*X3>VyzD+#x;!e+=Si`HfN)=v zHCRzY-IP-7Q!Ld{J3oppbBih7)u?9FwysPdgckBhG}@O@WgbaoA0OzXJ7fnUE0Y>{ zrBxliF=cM?W#LyDA(vq5+B4z)F5)zS8Ho-F2SM+Idh@mh^L^n0KN9Y~O||&xG$s~;(?>|B;icj4`N#db^gyv$A z)O7{6~KL@tcv6JdfSvXhrB=N+9;6x zImF)lejv$Zu_^5(YISWR^K6CK?9iS*(Q#L#rZSkj&UTU2=F(e-bPeR%1LcWAXTaifIT`yzS zHh&5m9OAO5+I*Gq!ljzyErPs)MtngIY@M7dZNR5~C>9E-RL>+R#C;RXe6Mxab@UhW z)fbMJ{3E$GwT|D=)w}OfQ$UT(!Rhf!s69dha$4e&P}Dp(Oy2>O*Voz2gdRQ~zB;pT$6FOq&1 z?q0FQK`mx(P0fcXjhEW^_Y0a<#zW!mbEvCUCfawZt%SxobiK|4E)gTHj4$_0hF#j@ z!W|~QGO{4D*TJi(_$ZdJ;&98I9wlFeNdO*O_Xu zL`fczclPoxWi;$9AFXU6eH~Bm9rKOjFuz09D`N`QrWW*Y@cHQpq7?FT$!dpHTU^69 zaHlikc1Ls$qwVKqs=9*g;YXq@87fPL`^F4n#Us&oI-~D(-|8A3G{Y26=XUMA)!FQ7 zbxidQ-I2H2_GOH?9$ndVgf{-59%xh1jRqjV&7E|9m%s>59qQe6wf#`#FvmG^5RF9L z?u^c4f|LhL@ZrXV0y0SXLLcsgKXK|P!`qIRxWyKa$-~DinXvp?_x<9IEh!}rg}Zlr z$)<7%r<3HCK>V>%Ol@vo5liq(BYt|Ip~9j)daU|zGe5t$88lhopnH6|dlGD&#t3(C z#3QCCyip_W==?mM;GR;OR4eu7}?E;#5vWnbf&BRo=k49m&0)#7W=Sy=MW??m)OR z_8(Il^BxiIJ9Umu_Cr^h(0N_qThtg&b|p$o=Nr0@_3ZN!%ZC*=qXiXp@`h06*1xc8 z>(z~iIGHKpZi@WQ_q2dFy7s4Frc&mndHwgxRE?pO&_E5ZY-rySYGRy9N)}%`En^Y{ zmpIQx8Q{(f$ux)HoF}O_tzLC z+<%ElBX5lIX%AcgWb4?U&7>`K9@&2`HEb~@;7!uz-{STLB?P8V4W19zq{Aa`QNkYk zM#}a#;llGRZ;%5Q!Xt1=`y1pS{8J$d$lKl`2Q8$6*FkSTNb`5(z;TV;$8Ad~p^NK+ z|G;f2208N*7OECD_pVEWi@nD5E@Lf)=zgYo=dlX66d>HiEyTw6_ZR&oy1rbGWuGbi zETKB4ibtmPZcHlqaDV>pN{xWa^gUQ}mLh3wAbCa?eIDO(l{A!kr3z^GUkZ1R*y5x< zM|)1m7YW1_N7}L(qbIM`es-|ri`a6{B*LkCc9Rpy1oPB8ze8+XKV{1TLA$ z+LB!Sm%TNoDZKPM)j+%dQn-7@m+oy=Q>&Uh5()09b%*Ola|x|(2Z}$7Df37ot~}Os zp@pB3UHd^q$>+}KG-IyqN#>nQ@QKSy%WP6=U)}`GuL1j-))T=kzq%~dX)qk*U;9pm zu+#oQ-nWKVd{I(+Q&N{9%--F*Zyprxp$llcz8}un&fGp94+yh}65z=p?CA-Z_b?nJ zb^C9aXHG~Pt_aIdjh_9U5&Cb`qzFmVJyAhS-|pX1g6EQgJx5EgNb7I%GuF{JzXJot z@A`(D6HMQ}usbbe_^dlM)NSN;Nbm07Q-T-tUOp>r%HUu5iXJwH;{O}w*^|WhJPK^lD_?q133kH4nxQ3F-SW{ zV-}JF=Q85giO4^!$2+n>_=T&-X!l@C#IA5N8TcD zpGS@Smfw=gKkiQR{~h)8MIB7D+aRKfZ+uH1-*dNd8fY{dHowETonW($oud+}O!?%e z?Z#~Br4MD3<#_&DYD#;kj+vz2ZMgl|sMo5Y$SshTY`5A`wwPgZ)T zK;gcv6*F}-KPuc04Lf=YOQCQ-+FsHxyq4MQ3p!5l*JNC{^NebhmL*UR@D%4Sk4w7) z^G&T-9+e+V$iZz?1qAp%(h55q1{|wRXk%n+>a+6?NhUKINHM_GNtD-Ad}~ zwu^Q~yGX45l@==HPMv#HF3`BY-Z~`{zPrK5uc2*DEA=i@Ivl2M&^pQWeayZek5s^Y zRSz{BZ4mY=bbSJ~NiIpgQnNgP@a55ttUe`It?3h3wEV$cXDYptp>SVUF4gtWy&e(n z5gi70V~Zyc?rHTWT7*>%q^}e3CoL&JxHq2f);o;)UcPEXZpgVy7^imkNg=w&oZOVcDa@2G~5-C9P}spEIUQdaA(b&wH6sp`dH{aH!*t+gPxGN0J@{(4+0!Bl zbk11q+U&~*Ax%+VW2w(NsBq;T2Wc`+RrZS97$U9vJ&tTfy zbpOAN);24OgS%tg`%=7^KZ1s1ao?pQvd)a5)aAV?Zj4a4k_LQ)vi(1L@08etWxeq$ z`p@mwaEACN-|yJDTPLw$)PRolb9&FG=^QHQxz)7I|3b^4*qHIm$Q6Cb-rf8D1lzBv zoOFM$Jz#!I{MS0cpeuv$cJ^A6!2d>1c*fIqP{-P9TR%HVqbouCi(Nm}K=`$Z=Ah$+ z9x?e(TkAQ-{8B2uJkbz*wgxEguTM0Dq&J6NZVA8Av_6gKl?q+heUgY@9;*wy+!A)B zHRx2OTO#f`nppAuna0p7En%0N)*mK%;I1-$DMXNz{|PAKor(LV5WhR!wCN}jT#RpO z)w(AAHcc>E7!_|i?eUd9ToNxF(mEfLIwfwxz??Dg0dZ%0zr2 zDXa zH`5(2Mzif0k+b$P^IQ!Nd+5Dwv(zPi-?@F>nEvQ>HhTDy>a7chiMK%RI36r0N5cKJ z0|@uXyjLgOP2Av%>^wqytIaXg$-34qQsakP3o8F|pvdboqf7AuJCDl^f^W_Wd)L7$Em{ z-h0}Eb*!apFy(63Z5HSQtar{eRpOxwES%vTC(1wGpC62m)|^O`+I30UD`JX3-!p#A z0s1N+wVl17SF+1|plWxX0FMI|0uDY@c!YPSDnHdD;MUjq`!dkF!RlR(Qiu?y!P6^&F^I;K+keMUT|gWFk2K;ivGokJLk0b)Bi<^?%IQP0+x{ zLE>&Pg{u?qt8_2Oal(%MJfZ&#d1wc%&9h6<^% zVh)QpAI@JHJCWEyARF=W0{?=x#aW239N`h?39jh3<)Bviv9wgVMzag~eR z3SK`Yay%%z6BV4V&eB15{PlVI^(Ma7Xmwz^=7jIMw$GmupH*t;LeM!resBpjc=5RV z%B9qhMO4^9k2(HJTS^UH;M{cS5u4C=J=N&pOKZ2z>$#f@^3!GmLnD~CNVvat2vw#X z87zU)G$=N_OdAmE2c%|)jst`{N5wl|FJ_SkuD6TeQ#xVK+7oarG0@C7O61d|X0}*A z=Ht(AV8n8iIQso1=Gt^7Xso|EPhWMG4vq}TjD(;+lY+Tq z5p$^W`U2;YcYQKcRA-cN&1TFY$m`xUmjZt9q4P*T1u6S-hhjdU1kZ=F@|RCZYm=A< ze$;WV50^Fxj=VpZS*Y&4#yz)|zWIMsZ+8GWg&B-?Z3p-GN?P!usTJ8E8_2z|yDYB4G$?s2Z~Mgtv0UBKF_70adb)C0WHn}7XsQImBD?D9 zJz6#g15)f%Ty=)jAyAkIUBlnTXS>IjK5HrJ>@v_hf)4fb{h7zJTLel&RgYrBm2ThD zv^99H0`opam1wX>v-D9Lkr~Sw^5_CKsKbvQXNiq=gE;O-xWsKG)V%M2Yh05sap0#Q%_+XD5eznbP6yV`S>_+3T3Lm=JtxAOf z>OmDRlHl?P0^c+m@{bw6|Mg+Z~+uGMP#z$Gd0lrfV~ z1uxa0H7dY=wZlP|Si}xSdmZ@juOWqM9DcF+trpOh-MgZGc;v~lEP+xDj!s0l+d6Q)vR7q-Qgk5UEjN7`E6 z{QZgAZ!VAu2Y9zK+BP1m*>sjvDz^_m-l4N4h8}?~v3U5q3k+v>jCV2Jx7$QHi9wyg zi=RKX8#QDu^?)xc`j3xj_a)Szzw{)1N*kA+2C982Ubi-Wlcf^qY0crbUxCk|DlZ;(F67?5K@CVF2e}Kze>Y^EYcIt&U`_eKLH5-SruM5kM z@h+~XZ}}J6-F9=`>bCFxSJ&n@poia>Z-0IZT|x}_ujAK?x85A^J3|MV267B$S~_#% z)gF+ONhOcvZCugt?S|p5u7TS$gPPTMvR9UOsksuUE1mRc6{{8RrQ7pMch&3CN=E|D z)vt`n^G%(?ei6<&c_g~xsXf`?Y$d^C!rs8+NO^n)bbwoI@#>`9(*#z?-F~3jzrX0J ziom`(&p1NhJes9rEVXpx7;$vW!H9wp8>eSyu@wHW;ZIwy(!ge2!xx^o(ez_R^VaKq z{YHn0+r92^>!GX`|J&p<`Ly_JRiPD1b`Nv=skYRd_U|r|y5O9(JUyc=Ie$E!okR! zY;b&_rEBFGrrhqpl>9^28AA>SqpCZb?Yut4rEB%UIn;v}s-l`;8Vy9sfgH-dd(X~L(lO)M?0HY_w6}aH6M-; zI`6gbX_hA!4UNgA30TQ6sMxVtw3YjAP0d{U1gyd<2~NBEr4l_7;B>oJ5&=%ljy>%K znr~Xw7ZKSZmzqICJvL_^vACik_Cy}-*agE;)v$_cg~C$0Ag{bDt(p%XyBHJ&?VJ*Z zWLO7E)yAXHzdcTE7zN3Hx2hWQB zRq1_nj;y@4=X_q*@m79ax3E*`pt69_!-LRUeF;$c z@If~`XC4sW&|7``n_cS`u&cXu%|9}C%%g0_|LXrPB?NTV3&;U;V4B6C^U9ymgI)TQzcE0XgKk?u8z?1%Y6bW--3#G*lW_G#IKKb-938Y5Kq@s2s4N&( zwf*;9&L}QZWseE>GSQ`fbgcbX(&pci0~b+t{e9r#0e1X*9jpIOdOpWk{0S*w5iNW% zWy>E&C^SP^VCVYxMjM)x_S;i7*)9ZL!ulG79-B({^?7siBC#sglmcAQZKzLzyi#v86 zYpDl~45qx0%Pi$V;eO*dF&AG1H7ryl-EH)U&Kalw=&u>n*599PKUT&JJMk2S4ODw- z<(BKzW7#cVO+dTDr_y-JjL_rHrQN|du8b|(e6+ZlI&8LBhh(PPt-{c|ERd`CBcSe; z$A86D=4mLpIycvWJbx4`rInso2j?x@vKx=EYz{%+o|{8v2bPsby*C8Pf){jgkj&~! zEfD}|ByMO4ZPJ61DsCLQ-`I2TbZa`x;IMH6uRIda51{BBQuE<(2JlEaJ?Inyt!8g*; z5kZ8P*IC&X*P?NVSu2yR+ze`td6X5E zCj_6ORMD^Z>KwX}@T)`A;i0R|t{GZoTSH8@^X2nW*wPOQ%RR1WOgX+VtME#!J($}S zcBa}hq4`8r=T}KJk@<{-8x5;omUj0^srYRF{gjMGp6m(B_n!l6Lm@p6H0oB>>GMq~ z4gH61)bA&Xj8+4oyytS;$o0ye8y!Nu!`9bK`R+*j=^}c3J~OkkZ_gEGm)ho#_4{8Q z0i(z6#-5AqQiqWrdZ{P3vUO8Bvrz;)ioTMLTdr~I#0bw|fsr$4(^j3OZ@bZRsh-c| z!Kn6we8t}MDi1ibFgA-OXFyx~rZpU{9yoaBsR|pYcE7XaD};`3C!*aSrW|qlxwJcc z*b-Z~@latMb;OxD6T!mlV&AD3!@L`&e{hao+BuTlGE~DgJ9HXi=g@fqv*jrTbh>Kv zTijI%bjO>n_FSyvF+^DF$>5f4?>^^@J2mik%*$EY@{OIF-lp&Wid&s8Z_gE7`o6!6 zPynz5p_iX zefvK#FQkK$WyGZZnExj2_=cOgXOx&PF7RjmxE!P-D?K8SIuz%YvP;1i#vnY$NL z0)I<8lCEsu&)72ed1lraVT;QG|D+k{a+nQh#vSpB&=0RU+6RS(NqzNt-TrD3>?Lf* z%p0}quQlz-WH#_8_7HYLT&foUsRZmWfkWbGbS5Y$9d=8@LC@B$bEbH4YUCxW`92ix zonnV^R5!vfNcf`D^GQL!@4t0XE0XGYeLB*`zWsAuF(O0e(jt7t-8?;)i2=ncWEyCP zyOWbl+Ooc&Kl7P#`8Cgh@*BddTcE4V{a%MdrX8m1g(HfBjf@|sSi6&g7Sx9PQBJD` z7h<>BdWE_x4g9s2nZBoKKi+%F;#9k-y1x5jE51g7$8_6UR}G(?+PP%bPuH76uT;lZ zslg!4X0@BG4vtKpUP}J#r#rr>uDC9fHlKvDk0Xk{zSPsnmmj`R>XA_Xd34DqQ6Bt3%j-Fc(N(-Hj4fz0l$?ae~s>WH$Rk zJw934OWRVbc5vD8*}Y}MymQyv&Qf&_Bgg;J@Z(+x_Inqqi7IO@ftJ~8bl3%fXIVfx zQJP3Q%Q#(qqSirKj}qLPl|C`g7qJ@fQ8|@Zmo@;a ziI_q?PS!XE>7U(ZGX_LWED2p=gtbOH6nvT8%NjgVGEl`CO*!6lQ|Q3Btmu3ZNWZR# zlFop_J?sj*vw!e>oy?h`%C_d9mggGv+wgtG%@&)^Y-{Z1g`6QQkIbD!l=P<=P+BYS z%K2$b8QfAJ$yE=R$CrPe)LPgxl6bD-!_*$GjODw(eB-6&fYa4}N#$R}m3@I%OSs-T zneYWnq0B9zY~^GtB((jV01WfLhkfIU$u1R)kZ;|Q0H`=x7zGRi=8dfrrc}x zh@5Ny&_~P%G&PY$e~)cx(%CYum$)SmmdD@~AdUb}NF}<*m3|sk^7jLUo;OFu;{LTU zgNE(+VKylgh!FpMckJ!zNeC|A=n|Dc`wP;+8b_tH*1Hs+J$j4n0fg z7?3FRR;|fuwoYh`Dn@GQyHFv3MQb&ly;~oV(G_urdXdnboJ)$x==||STltg9$ArPf zsXnJ^tIp6b)$#hpddvd5V{Tn$ZP0(yo@>T^5qa|`{NWZs{9j2y@AYREYMPQ+htt$T zB0s0mqN^H8UNxM3OInjQka9$CBlfPJ!@5^x7`Z=k_Ow=2J-l}*B_Tm0CkfIM#v3mH7MVL11my7Ttv)pWhxp=!9S?K;6a6e%C9 z;-B-TZl6ot`T1yD6DR7ol#nr3I02&sFDMQAi$gEB8Fk3V9r22=TO?`>Zx`%FgIQ&? zI@<`V(J&&`igb@GVR``^E+5^SJ-`y`Ev~Nx|Jof^Y#{Gs^`_??cus^u+v) z8nT3bU|DaXcVCiEU&@!=KP`sqU3UDjJI=Q+WmRv)e^Y|-#i{tGs6p@2_O0kk_UVcK zjJf~sy)mEAcfQ{p^)W4EA$|Yn%$@Ji_I}9N{Re8uLh7DRTxlk+>OJ^A^r)Lk;l8wO z`+|b>%qzRy&Q+LBR*i1I>D-0=m)MO)OamWp1FTYo(bZhrEi$DJ6fW*0 z;lQkRFkVvVEqt{(r?Kyo-8a2pw6#gP&G^I>uY$9%c9lfl(I-kiRq*>WJv=>>kL1e6 zkD|-|p46H%0wt_kHFES0yP=EvRb-JgopW?u-P6Y#H*RdSL1X)dO=G*UZQG3+J89h5 zZG#)5v7H;+w(&dd^S*!HweC7+WA@&&=gfS*_B%i4P=;Dde;8}L7!*q)n5@<17v`95 z>Mcp{M`Up3s^}!6ukfkhQfFrrI3R%Qk2;K81UbN=U2j^W3(ONm zu{bq9y>e2LiJ>U&OI0TnUx8m}EGp1X)3u#3Qp%AfD)ifRI0}SMi#86;JU*&%bsZ32 zm`>&ZpW|r%{&Z+JxE)OcOkyZZ=E9mv=3hYDs<6*;5iFgK$Ar2zq~+Rp+Z@UBlc8X_ zmdyUoM;qP3%85F{uy4<5m~hfgql#XP8gHc)xUrq`+J6N56%e(=9}BKH=pJ>1Ho5C< z27yLLEkN>9FzcjFo{n$P+3Kh?pY$5v%O$co!*H_H?du|1G@K zlLJ<@*<02Yje#~Sg`Lo|%w(T81$T+etc=cPE{z?9`$Xd#QSOI27uRcD@|&FI)w3Q} zzPjK=q!`O2Znm@K}23?#C-|`~w&t{kn%9|fDo z$_5)I{7T1ALLO}u)sC|2qMYTJ)>p=eWa(Xb2Z(4%GDL8`^H@(2n3s716e>d+oHKog z_oK6xs&*}!%g_5&L}ToUsNyee?(hETJb5eYKX@+X94_6vv0`0jSTxV%iwukCxRU5=YBt?UIjexOJ+RF|WUz zkL`I~BAaN*D9uS|H#48U68{V!Y>9i=)aQ*}PLS~@^`E|B6-W24cH7jhz4Aq?SumTO zS5hVDwhn(uwJx*a3R^BBEx`7DtZs0~Q9dSx78Ur!-LM8H@64nZDDOH79*tv*^+7s0 zee+uTPJgT|obZ7>Uh&Ke(Fge@q?qx6cf^s=J0~E}r)2(4{dSo$OvI9#$OfGd`D5tr zA`*7(xNx(zoO=2w!>rLYN@wb?bkcLNLIl@h!- z@7=5c$2@LVIb42sX0UxL5gvc%mjN&RsDF#+>(WwVgPqFyJui-kBG|}n{N+b%b)8rt zMuG*o<c5R9 zFDn`X=?+L$8qOW`Y`OJwdts%q#w*}a&=`uP!NI>rTIHBAjM1(g3A2xsR}&8r}~RF`&U+|6RRy7;cDE3}JhgQo|_%Y@ozBqAr{M3%wB z%$r2^2@=&NoPK_}ky~+kZDT|jjyIHez7A2WW$PhSN&e1x`2`x;9+j0^w9T$nPCce^ zzt1nW0ZW|YqXOuTCVG{*04YQ9N;w*FiN_+d*k<@fR+!@LVrO4KBJG+`bi^w7UP!{l zjC{#GtZeT7C|sy3o5RCS<4jtQsDkRCiJ0P*a^w}u4qYY@9Mdug$c|r9temu_7grz` zznpoaWl{4sC8^O*nfOiLcM08^rO-sqDlw(-5f`@l+5h^Dj1%p>_jp5~=DAGt5=_{t zzNFkE@RXBf{nGcYC$Hshj3ndr50fQ=zKPA5`PX)t`E$s`j^4mFIyK`G!Me<4+jDe; zDA?LGmpRl44gt}<`w-Qlzy?>AHdl9UzQI-cogNBS^M8< zjP;1}7Oga1G_A!44u~%oidhT<29jhX$g%`pbk69A^1DJp4Q^l}My}|I4>JaY!;a10 z&eeQwwqTb;FJ+kY{en7Kv^vR43#**BQBxF6)$t8$G)+v3s`UmbNs~$}2CmG7WKG4}i?k`B& zQmX%arAr(%U^P^y$8YF(p3!YQf0DFl-NhdVB`i-i9Vm)gcnwJyYBsw=>){yUb$nfbR zi^GBKujMD2;NSXe7=ev(iQ=xEvNVfo5<*Qf(C|F^@a_dMGadPNGF02BGvrPW<{b)_ z7=Q7%LVWi9RN#jU>I~>8sFO=;E;5YEB_iqgd^X>bD&3Q1nmT*=5jlGJYI>j}NjC;#Qlpp6>UbEa1;R9&451iZ5{y!D+u~X*8v_;@!k_7B zuh8==pBElVPM-Y`V|z{^d&c+#!ovOBq@;se36bw#Q4s`nA+oBRi(3SzAknREU*ndK<>O&m5^Q`pUehKc~!v$^N# z%sk>NXyY2bR++23s{+qG83OwnPh4w32P~c+A&i!9zbyIEk5+9gx*%or*n~-&(LoIa z!oRh0A1>oaE7X#y7WSnnpQqsK19?I-owfnwHZv!jpqJ`f9ADQ!JrK=;f7s;6`U$V{ zlfFLx>qUJ^)%I>P6`z!>PUmBvCJel*@sJ{Q-e!4P zLahBciP7vXs76St6utS&ZP&9>NWk^>%8zR1iNnxtS}ez8sIp~>dWWHSBWTaB)x93l ziJ!s-ihU$LJf*kBfs3 z;wqzRety}ExHn$nvw9vhORf}$Xi0D;H(M%&0u(Kg+}47Ein?V#&Gm9x9B!qUZo>y7 zn$?8LI4)JG;};4-%a(b|GB4=LTD2y%Dbg;WGO`rRNDAeit8#Mp7`ZYq>gDk*vMh+j zrmy*O?tF3(>*S@j{UBZgNAWNcL$4T9iqx#S{T2XrooTu3q53T78eA&UN4IHx$H}`*kR46 zZReUe*X13X;!lX6+-s+o72tqSIW@TVG+xtR@LTeJh7d?jA@0)bmGE;?}9$D|@GRo@?iVg%an29aOP{E96eJ z*}>=NOU!P-1SC^YZCLB+2B+wfTidKrz7REkD>6>3t(Ad^KUIPD6P4jDBJW}69!p=^ zP_^3I_#J(jG%ek%Wy5ZDtWLkeCKBf$(X!GZKWN5HR3Qy@_>$L~ySfSU3{h>K>PoGL zAGTL`?&OjERr=Wt%Z8z-2`?;w($=kEplQMg?wd$i506t<9nu28BWeMn21Kg@$qoFa z>qrWq&xDo6)`dn=PmP1ijLPS6xk2wY9U2Y8-Yz=L9osmfnkJDeB8N_I$^Z6NHfNVm zpBgF8EvMv)nqg1Sn7>!^xxbj+Ipj~wO_d>4n&DPzlPzr>hIA%{84PaXoe0l0N^Fz1 z=q*mu!@cu+b9B%ruC18MK^TVRbrefhzlbxjR1L0NL zTwMWpX03eA@sMnT%Bmm@juityMJw!!x(h&kIBjHGONM%YZN_mprj+{;GXudxmK>uH&=@ zZFPq^c;imn8EMGVAHXf8y+R(?4$oBZ=NO~2Z(qU{lj~epu1x2X zI4B_Ro=Ia!I<~*$_G6M_{Z|q@e(BqN(9h+Rsl_GE#=Gh-LCAqZkOkhONwF!_`17u%gy zUtqH?&ZntlXR5?6nN4g(7F~HkODRxjRSTwkHE3R3n`I>DZ+L8idrnz2ZLIReis~G; zivHYmnm(R*e2j88>ts$}bN0z@Phwv(Mj`U?WOc{>HrRT=~yfW8LbiNSn&~` zb{%G|{6}p}(jp%lolYy?govEeW_PyseEkBfl3}B|`%YtAo@h3bK{EOKE>Dhp-QqRK zQYE5CEHT@FTG{lPdx;}dSE+v?zdru;z=DzV_(dnO-t-$5QvA!}^SQ~Q%2OB86$_I@ zTcoO)lE8BlQrh=_l?%=yf6fhiHOs?`gImEy(vUVOwC_UuyDsb_DStGh&LpP^aC zD0Q?qAE`RQ19!DFZSklchw+kEp+v!5(c7(w9oj+On4MU!*h|;&3P@KmqXn7t7`|jJ zu7ywise%J#9eBP?kFz6I)Y?{Cw1({^te=YAXrPO_TyTvr*IcKq>R^u1dJTk|WBXB3 z2TSO0ma{+W_&4ke=n-YP4xftX!p%4(mum%m7k5#U@gedNI^&AiLk3D17-Fl06f~?z za_gL~z_nh~?|Oy&-f%84S0X)CaFLAKpI}7~%0U-u=5(0|recN&Lh6=%WphLG37aI+q+Faz&)DXRXW**3v2 zQrUppDnQHAGLfZWF^a_EZ6j%-)i2U)z76SQZPk-4A56Wr!0Z|JyzY+&dIS+&Y6hRE z02CWLNR*?)QXAs?!HoK+XUAr(HV4`&DU+JwdbV!3&uL&ld$$CKiSjBl2nC4R1{; z)lOW?U(WLv)`X^EN5qkzP8ZJ5>24S(a*(-EYI#k%)X#I(-v1=va4RP;38y#LyT#aqLxMl6g+QQIfq|(nf{%P27XVl3jn93fCd4 z{d8sfGbb|D#k&*H@zP<%PIRP|-j%ziwpy{+T;Vwc+KTH*bn(o&5l0Ub`2m8#o3_h> ze6R0(e*%^Ytw3s9e*0jAaur>b=?U=Q-hM@%i`4`?W6c?(a+~fv{5qL=Bxzpo23;x- zQM7~DlFKUfk#m1&#Sg!7lew~>a!6j^tBn2BdJ9?A@<^H*OfYYnsn;Us2b{NPv3Ciq ztrJ(QIZ1$8PUcq-s;($oAR$)S`Lp$~gA}v!aSe(&4qO+jfSKB!FiuFk?5%FqMKt}H zRJw3We5xhD?mGD;X03vJGJW-ygQX*0)_9hHu|WlNu|mjv_Y+kx>&=3$?N4b}e0|F{ zW%=vKA%L1nbZYdFY9~1GbsM2(!+r)m{2Dr06E7u|3XAAnh1ocs3^8H+ zccn!q3(>9^bV6{;6qH6J6BH6DH;t$H@6P5oFbV3fp00~K+{9N$jRePWK_?#LWn1&8 zbYU|npdNi}oPR@gclmQZSF~Kyev00PE>DfmC=qRuN|b9LSB~ER3w^;nB#SR>Bn zSE4R^3PegtUABNuoBdfvFB&jn?oNUkoC#`n{mbb^JKVIE-*Ug}Hu0vC10AE4m3YhM zy$&dU2w^V^kWuRNfO(MYXmnE*`UrnS;_wk|jxT*p1utUuJ7lt*nrcKP-$3~O104%y1Sabj^j7K(BMB3(l*FB)VT39 z075QYhgC}+I6N|MYBmh-&bG@K836s6K~t65%O`BjWOt(od)e8n1v~Nx54sxF$iS1O zd1gMxWppDqs6m{VlVh%Y0&%wFeTFVJQ9G5_Z_n;6y<`JdJsJ91$=<4Ncf6k-1Cok4 z5dCiA9m@U=7MxE)D8gMI-qg_5Y^Yu54VEcDPnZ38thY_7QA^D!RFh}_8D6bf$GSIb z;e7uqfy&jIvaMTrPbh&cU!z)Q-4HK+?E8<&=XBLIC*AQ1cJ?xN^^A_!!?mXiiEXEC z_5Li6KTF=LtU^q1ZZvyfa0gg)qOGPE7}L7!d>3E|0n6&%SEMsiHU&Kqd z0%!ZQG zG1S<*4aZ(0&%B)s_3NIt<^h6{=MN+bP`4URC*Q0bnIt}6U*5lAr0SOno-Z5kBCqF& zVLK2%E`DVHSgUgfM^NH7ln*HQ0Wf0>Cu|nCI308N)Nh@;0ab@NN&&y%`|WB*a_h@_ zxZohvM8Blq8S`Z~6^k8nM|j2!_Yhv|#~7UT*n8h=d&*`skV(2_xXhJdF1SdKQ*_Og zjG^p@0y3EAE(Y8Peb3{$NjbVZEzC5cMY<9vnb@$t(Gy0_C*zbe+6voskDtw-i2-Te zG<&PKO1IYeB91SVEGyxIuU~#?9BsL4 z`1-*Jp;mtmT5Mb7F30~+865^dJjL;F?-)>L#%Winn3+eLFa5^MYWB3dQNm%7fU?8Z_htE!+Gi1Q4`;iZHct`1jUn3F@Un z8I0=XhU-Te5>Yx2!?=u;&TI$~qXI11cq&F)Rs0HTfh#LH^_!z7GoCeE9d7nxC_JR@ z`1x`E#8XIIYfQ-YvQsbik{E1Py{^l*q0$*`3;+&4sVw z;J2E4Y&eOIsI!1c-cNS0OpzCak%N*Thff~K4fO6epl&c_V4%PAhcF6}{Pje;uX;+C z8P%K7R$;`CrN>3Y3fBatG-)f;p@wgH`*WZ z*H)`IyJn>z8WEl{Qx^Bi}pnB``^whkvQlTI<==W97PgL%foC$mNgvuRpc$wPv~Q zun%1Z_0WtTCJd6^&j-@ikpd-;^eFl>gL8kP0pYuuTWMFWZ0J?}0Ta%yG%v|_ttSD5 zZ<0VvYc>GxT12*_^Wytsd(7B%l)u!uxQ{X&f4(y&8zBh35ID<9oW!iaxo6_c_&Uv? zH6yP?vAiy9ciOK;{T$46G<)Yovczz5@z zGbg|?tZ=i`rqsEIV*zU=Tj6)c&`*o00}1y~3iyNIiJDrzL8`)5Sr=9;-vnvdSo2-Q zHuz!Tv0a7BP)s} zT~}4RVVfi8RsX)j5KDJ}eQ%2J+b#R!q=Z^N(m1mbU5kFV+9S#>fmq8MhgA3GPMg3k znXF_shF99wi<;+K5ivrQx}xr<$-hiFp=Hq+q14f1(`#(H+9o%UjOSe>fp)QD5wW2!@lGxR$#4XhB>p!!-f40npIi zH~Eiqw&SJKCdt+#M$v^CRx72emt=@u2bmi$w)Q7c@lN}WPP$q&&J-#VX5 zJMf`P-MSN@yb#}h%*{EokW5huIXBU3UhHHzEsf#c$k5uy(XZuuU+yYAtYQchL{@d7 zP~%q-1;M8HI&)+742me?^{+-sq13)r*@_~t-*6q9XI{UMG-AIqZw z?611`?z2bUk4A-V6(i_m442mNQj*lqCEA~($P_g*W3ariGJVwWZAV)FET_`7h4-gl zZPB|}DKK1yxA-@I=cVL4%UW;B^NvD2;QAt=yBgyW(oqC$pM{d97Ba?w^6g5(d9f{O z%sV?BZgpCEEG;wKy6zZ8IU5P9Y?w~K%t`#IyM5~VI(!~beE{rJ9J+~?r^muMt&#;L zM>Z0QL}iwDi^zACz0Cy^h!fTQVdn#_+hO^tj;MSWv#MDzVAT=^hd+pQ7X;9MK1U76 z0&!R}qEykb=3CCc3`;e*Ld~2Y-f9doS{QHER8sSjreFuxRF2|1mwc0_I7^3X1|kUf zjBJ%56x?Rh*FK4Hn;1gr>2NvIgFwI~oA$uSX$HDZ?8)Gko5w`d?zo!ZznMoS-;W0eGB!YCeNMoYmwik0K|z#ZUWj6sc0 z3G1b=ZIz4t=nO6FO}roOOSCqry;`!FEL2=$#% zU)Fwx08mTl)kx3q4$<#f(kIa7kDo0aq%VEiB(vWFqoE8%LF15u-U2vcY*40}aEsYL z*Mjb?wr*s^48B5irQG06_`oem-$|K4#}0x17GC1~TkdW+7%qI!+mq_A z%%4MQj>92<3=rpxN-{H+{)YIut2O6XJ{4doN7Sb55xM%E->*o0Wu?0sGg$Z-vPYET ze`bYhs|xoZ7QX;1XwiL^7RyuRf)QT&MwLcUj8V8b!xl+^dP)=ib5quC1R!veOBYj` zDeoLhua~IoQ1ku$q~`sd8MIbD-1Hd&C$`!I0SpbjqMaGaD1#&izJ_6ws`LvJ@9HJ3 z(h6WPdaRAKx8E)Dr2`3j(Ugf;uymY)rJr4akI#UBp-jLhcqWZHV|9L%99*nJhV6oN zK;d@D7)gVq%nxA4N`JWP+0JA-I@l?Nqiay&Kbf}c5{su7fi<#n{AL@8!=#}`;Bd?| zQE0;D-M15y?gJ+}f}`ZwSv)A+ES_1W8v}^hNceu{bP)%Dvy@tXDB_?jH4&$MuFjyzZ-_e_w8)W zxla3HY)9hryELjVZ~vS3?j47K zm5H~v!ks336&ksMnKKUq3Iu`&mJ=1JQ?~Z((8o*_(AByXu{j8e>$x4QWbx3}z#vC}AEUR=Ht;TjG@I zoGTynxpJTuaV$6VRXV1HJ8G|nA*TyzoTE=6#`G8bJM`5*h-wq_2sElZHE(WXgOyeu zdwRRJDe4#sC8MRL%^cprL}R(cI%dTR^ZeIqyIgmuJ@UXeY?{X|Rq&D@V9cCt`NByB zDfBqG6oro6@_UN742+^R3j%8@kpM?T+$!us3rtI%E95sc16rYly}w+wN0EoUZlML_dtsidj4PTQ6dH{lsfZwAzYM>-Vj+pajl6KUL z)6cub?sC8Bn7he|r)a`%whF7eJ+mMljxY;Hh$v8)T#rS4m?3UY$Igd`uu<8_tyP>n z`#+~SMU?&nG07i&0-R#x^qCKL%A6mzENr_z)lC@g7ot8VeXofP%?bY72>g6;KkghI z9t#&ayb>xU_l2^vBE&!suK${YMqA92z3pSU9p~jYm`hCi-o90qV0=MaJKgbiV1K3} zI8_^ovcDW35HqB#K-!;CR!=470O7xnbkndvVCEZm4!bO&C86^OlG0F;5=v5Nm(}>L zwE5NJZ~PI~C?y|5ChV#Tg4W!aLt%M@>o#~+%2X54gUfaE_RwDt=5H6_^Ic}+-8}7) z?}heZk=O9MjAtJXL=d zV9~P3l+Q;S>j)}{ZYtK^3ezOyQ#fapIOUZmQNw$DUxqP$7}Wh0A&U_vH{;bx4C#d2 zL|#oR9V=~EsKxpy+U#NMg;F|vq=p3)8Oi^Og95fRuh22FG7hR3Z>|`Dcm>(rhAf+g zES=C7<`<6v;<15gQvW?qDE06jNR78f(nd=mH~_Qp(aw` z8)Q?)TqctwjW- zF19uK6pu$e-62YU-wI!XnsO)?B=}y7FZK@SpA%gTXH>^~=eBwfi2~?1Vs8C=8kS-M zH^q9)o$G&pLFUccP&3~XZnKtiDE{>KLDWF=@d0KO&{YUr)$A_;bwDK&UNST;gh(!#FjdD}B@Fr(`>ljVK?HRYmZy$lrG&SPj*nd70-Z8I4z zu5%mlSC6sJsBYO7%h80U3}r*(zX^vvLPIFugMNQk-MIP$GTdw_yS7)ad|r;MKd5Uj z*MDvP?rI#{PEJwbUu?3Rd8GE*d^s#1EPc@A3^dlGBYfJSSk0wb%%f20UHp)sS`XaC zvlC3t@I=F?FgfWz=i*%Xmywy?$G~@Yecw^--C;+KPreMk)&GR9FOBYhN`=3PC!v?g z`sZ95SzEb%KRV&sd5_x|73mi}-d{1`+AwwRJ>8U3%LT~pUO6)xP_TPL3(7}9>rhyU)p_GeEW(W;G%Zt=!dkk8M>toy%< z&;2{Rs(w~*ycItKBjbx_K!1F*|J+s*#pi&2IN#ReXDt7`!LjPVoK zLw}j32K226RM)?DZG=8%;Om^d?qB0B9QEPThipLG1lSHt6@OhOa=p6efp6~^Z7`@j zFgR@hVh9wK1*zR-siDkz{MtQw3?Ns*KyWEyHD_dX25mKGj8NQNL}_X^w~=7m4vB26 zst_T6S1nM05xvMdSc#i=C;)wq{m(v`iGx+++8^A95l8A^W?nXTD{7fb-oFk+J-VG; z?Q~9Q&+T$wKk?)|Z02~Q*_!1nvw2uOcbv;rqzMU@E$7vvy;|EJK$e?}zBF&r`ky_~ z0?8^s%zes_j@S(Ky9+Rmx$!PMOm%c$oFLk;|96DxQ8us?uF6`>u_3&jWyQSF#J!N$ zxWXx4$Mt>u*us>pCapesz!Cg)-Pc~lPiyqOx}{ec&Xr$W!^4I|L5J9=f>Q8qLj4mF zl})5_K3>5yg6E^p@7D}~f1ePH+lAF(VDJdqs$A;_C9ymib;Nh@n!JJm${Z!apTvO| z=gh7*R^!cQ!7rzZLFZtWZU4ffGYu;amhBF>HI=ik$H<0!ST%*ZBFJSFEsXG-C>F7= zWWYJ0<${?VK1)unh6>q5RbMvNXqO#=U6o{NoYIbGRn5AOY;Sud{LWaH=tUi#(f=U55@OgYXW=1CZ#b+w(#*k|*@ve%mDM}O)t zK&FN12W-oH-N|cF_VDC&FB^BeXpb5X=boI^hMkmk>5qrsJ|<~IuR@X-L~xvN(&B|{ zbN-3YJMp4|ge|^$@};WEu{SmziO?Uf+YO3OH!)8Ko2BnR`tqQ1I(;IhzYzHLYF`qj zl5~aSxvc4Sgn3cVT@v9rof4 ze1gNn9IIRrhC|o{T%c&X6(+UEWIS_Fp4V1kB>MBpzfxdtF9Y0iR5O9d#Jj%r9YUP< zwtL;Wt&Kk97V`EFrf}Cxw;Oy+GUk;FpB8SoJa^rHocP(wAU(SAnjNjJ@{n6rW3QZ1 z!ab97qe#gkI7OBxZ{drVWH@{+YiV_+sUD~}T&H|BE!itubK{|(P?_x7?0zMpy2FFK z%EB1OF08$hRt^R6n$&difBNeXy|1g3nd*bjZ`*S0M7jH%0hw6p*{^+~;JQCV$56=P}u*oG*w1EL5_k z1-kub)Tr<=?;k=%Aq=61D&W`pU9FT~kIJ{%RJo^6yDGsec{zwN5Vg04N&n0^e%-Am_Oyj#BSjgy?$wKZi%9e_>uwVTK-T>j0v z9?gK3%={C`>Fkt1h&SZX%F&zjw!1IuQQq(Z`AW`zJ83ua^ud)%-wh>aPwTeb@?4wB zwlMQif|Jp5_$PQEkL)c$S0-|~sod?{ugC?BS1ekG_oU`#M!JHWE=sy*rxJAbyhpf1 z*HL1n-Mcm6gx;Xt|}wKb2iRjl&g; zSBvSCZHS+(g%IaQgT6n#NNQ*OrgUSuF6&j~z~=|5z+K_4;dief6=il3_JqbmL}c6LniLk?n@LAop|&& zrSg-HmoY8K-F&96srl|VHAXA`4DU?VGN!j+*qmCwIZ7mXn;E>e$K}_5`%cFhe4Nkv zD!b4YKzzXpy8QmTSZvC_&3xIOCNGjks0np7nppM@*;65|fGrdEtT^zhe_e%iy7E<8 zz)fd)^@jyNGitu;E{|QHL}{{hq%Ly6v8q>>oRlhk$4ofm*Wv9vN3iOSX=;kfr#a9x%gU7 zyIjQ;?gm=TQuY#pe`m3?Ai<3k-2z$XE#+OB{&qEy;&Gl#6Z-MC-fP0|Mfcjfm>|_6 zax4?qut#^^x<{SK1=Gx;uX?F&ITBj0x9eq})%$-))PcrlryaQEEguY~v8~gf(m9?TOF3 zaa^z3kWharxHS>*C%gpkGj7ZA!Wjr6(Sh*_mdtoM(Aq!B=dr$>e93C@WqQKqFO_R*IQ-Qf2Bb3Av< zMZeP##pYzX4tX7Zo1>b_8yQ9VqIWn8wnq2hb5YKaH>*jrwctVy^fay2Yn$=rnfJU`~{A(hKXL-#({@&hJv>Jqy5XrgJfxsAC8h9Ppwtaub%{bdr;(q zXk#z1UfONFgOhv&?wTt-MIUuPrgUrm2s6*&@U+_uDQDR97h!6lYK6@pu?-|^0=p@kVa@eUcE$1?yzyl8 zSpFYh{h!Jvj?^~$a)vfp!QNNTMb0B!$@!-5MpFT^Xq%|pAxf__rnC@zcQPI4xh0TC zXNq9|x-_~slorkHwdV{~BbRwHyZ>A`n74bJK9!?ZMcKm&c_vE&VI$C&Ss!X|k@$V0 zmPy`RB*2Z}{Y+tKkG8cVbqPuEkK*8^IXZofNbwM->Nga#QKjMYd|WyH)*7nGn;({f zxQG}eBbapk%Iw~q*KkL+)iJ=`I7}jg-2Q-vlL3E8jEJO-Snbd|gwRwYaN>@GK=y2c~b}svNfC`mvk}1m^-oXscGi&^dNwm*vFZ z=ybOBsMio~mPm0E7z zjSpVgQQlgTDW|Nv4U6@eu3LX4%mY#G;?-PU^k^PhEbb^hz1A6bX*(bu#p)ww)HD_g z9xpfp3f>CZuYGwNK2o#bf@x$oGpp2BqN_CK5INWU`>>grh$!7lnoj2iO2pfs)bQS# zz0cGk<1CX*O?Rxk@0zA$NB7oGIc@!#pH<%uO8`PK|9u<7i(E#VF2$+(Gd(!%J5rFp zNEp0wh@{1mUV_FxB|Ij9sykV0E5F&c9rS%seIh`Ps+ORRs~pZGhCTxbR3M8kKs4)j zz*kZgQoa_(U%erP*~^#BT(2=t2G4vt(GN8a2==>)WH=|C&Ly-F2W?TE0;evvnzT65 z4aNMQNnlq7Vu4g98fD(k1IX~sGA7CIYf)cooX6l_TIH^ePd}}%B#eO`dH0L+&9>DZ ziiFT$*0Y~UXfMLW9CLo%ycYHx#a+J(8$DLJULu*h=CaHPQzhTZzQ6`+T*SQQjqLin z<;3m@o!wkksiA7B)?N#da3P=U#C)&N07TpYtL}lWrByuPDxWt~1l3}0vP8QwH}c(~ zUu*BU!7-YAWrlG>)&sXZhI;gKifh`X_oFO7EYw$B1$Y;Mq}Kp+{u@^>d^Qe&DYzM_V-9o zL;qyq)`t^ctt+bJ2P&15Cyt17GH)NZWirU=XZ%jgFFf8y%oJ7Nr7^9wDiK3EkE3?R zVq7D+7(MN#{IT{2X|kBS^)b8B+PlE}w(j z^0h;mLQo3BP_q`7E~k9xP!Jl^Ft0EUmmnyRDhHVo5&vV*Gb+2wFKhSRIM3LFEL)*bBg+~QARQ=~)_G61%Yhp=puLtrvprkhAyTMzO*T!i;Rq^cB8`HPx z_LI z5K#HmAq5kb&-T<6b38^8gKKpg;;@L&u-?TlO>QS558#3wo;vkL#{=B-*Hn+?gUQ0k zG8GU*bAE&}ITd1k%YjMqI`iS5zpqjVq}+Vc!o=M6DDgU8ikUx6&L zuS1B(QU5OB=MsU3sj^lP*|BZ$Z_EDM5;@i=Yr2en5xD{>vt?_G1;iO&ZSm0OKEt3P zdaI{xz?dRO4HTL;|tv`)L} zPrBCA!)#slNPDiq%SKLLD&5L)GzK-Hrf9Tvj4mIocdzQwl~Njf9gHFWgzYU-`>3j zMRlHW0H1#Aht4Fa%~VqaS4CJ%o6aO@lhoWy#>Pn}No!4l5m;{P0t>_nqQq#bp^A+` zyd;_^YLt`!;w^~cg-ZlVcK4jKH+I=wZoBM-J$t`j&ZXxpv@@mCDZx&m%k!J(!_HZF z&%FBq{^#s_-sc6WU>TB|Ajw=j@c9*wXs0Y|u_SL9d#<9D2s{3dCAkSm&NI56Z|ujO zlnCzks|NPrR31nDRW(h7=x7vz``m)y4gi=_vHto>^v?RM+OLbgFmO^QhH(&(2pR+-3; zn5rTT<*zmAEMcd~*ITXLo+uLVT@wwejD*Ud`Z9S+dZ2>d~tTM*m< z0000GpV;h961cSM+V2<1N~TBB?^0Y$kUVhUBfI8^a!a~H)u2687pD7%3Z5Ie+Kk^U zl9lcB+iqyL{Y-Vd&e2^i%lwh9O=7SA6}rDZN-OkxS7Y0a!VkrVU@a zhPS+p2)FuazqRHWO?|T+IcILF)z?0c<}Z<+?~U~FMHw%SBkk66>DcCnv^}`>&?0u^ z>C^cRB`Z#C*}Q`GOt8H;2zWSkjzMq-0000$oT5mkeByUT8uWGmYFRhj2uR`+{>+TG>8lRKoESBzAH!gAq z2J7@ke~qL+YxS7)72KgKm#ociBE@9^YlAZL5#{MS%vs!5i)6e6RFELucOt@`)@Z4F z72$Kx+(nuWn=dx<^y$pFWW{N{Im@~~*g%K9M9>4f%FHGfRS*#Fx1 zB=0`2+?s$Ls1J<%S)Tc@cu%EI-Kg1~EY5vuLT}gaUt{dKY5sgY^5%m&aoGEp$0hs} zEPsirMda_wMl%*kD|r)xuE5X*!{KK|Zwq|1QD6R#;9efUTU5Cm)v0=y{GzR+X{_cc zl%FKq^SZKRmEy>;07*xY_vL~g=r> zTifu7VkoUSOZ@K#X*Y2*}nlHZe%8sc^5(h3^3=ZGcU)XNxzwK<>Ddi;^O<~in zMF=zU^y$o~nCqOr{FPlhUZK4cgvZ8ikVQe~)Hw#h9RL6T0P!jIa5zatf|M7R)m3(9 zCrM|!Jt9_=jFr7)__}fQ@T;05>B`DYW9K(X^H$0~*r+@FhK&D&rv8BWt1K)(dEoFa z^Nkah^BGd%3alby^z;VlmSn6T3EQ>VaQUdY^^j)U17hJDrp`;&j+3UVpBRt7AjzM) zqQLk|@k#|IC$=arR})+QklA(BdR#)SMQZ)CHkkhpv2E8pfXpXGuXAr~u1Q6AoB?>(idOhpCD z*$zj=T&!>_CCCa4s*a%qR3ifz@5?Zhl*}8E; z(r!HQ3d&o8{PW^__SbV3OW%9bs!)%9ut<`_48=kD9CpLU$p%cqWVQp;WCJF_D&~q} zvLO_6YIciB_7n*c-fzugclDKAq;R(DWQ5$#%%!rEe~6j~NspBb2Pk%5d@#o#xB~zH z03fbW1QqsEKD$TVb5rm*6Mv_N)R`5N&avX3%FCXVm2&T^u@RHGg^$X%JuWL<&F1fE z@3JRi27gpm_6un-6Vs=^JA+~_7#>sXU}ieYhEVciZZ~hKi?DYsBG)gSOe5)$NygJTkH=^ zKR)A{8vkF8&!B{$H@iUdioopPDnimtw@w>tAv`|_5_in$Qq<;7`eVahkzNu7m{VJEf`CKZ8? z5Ka>rbW?1%R1$*wJORNS000003qY)kDisb8UK`~!21k(Lt4I6xymoVQ!Z$e_v0#;= zgk9S`nd28mahdrliqrb|D>^b0Z|9~+YVyZ#ouMYQgmsv3nW+Gq+L_M{Qv3V?!5shq z000XBlRhbuV%N+BNuQl^7)gBCr@CjneHN|VawB*3<=_4ARwm~bkJFiz*cIos^lnzt ztt`%sjHH&=ALuS$J8K>s0000B21T*! z-NQjD;EX!Wq)ksuXd`1-P}}bix9YEdGSqw!sV$Jy@Z-3|ALl7f?-;pq#CY?RUv)32 z>5uAVgk_MhXrnd*;l|03kB&xZ68fahI}qFf00026fROC1cZvz7RM=1Y9i)4LuoRLDm~LKGQc z8!f@|nE48VI{*Lx02U&4vy{mvR+;!74O8I&74$Mi20c`~7dyugGgBWKW-1t4&Q47B zMukUF=Q9ZI00000SfJRD8Y>pbKDtVgQF37vGt=07*}Oh^mz^>7xq$f!f;#{J000&` zHnYZJYb?Gl6q7TD$o_u>f;#{J00000^BztA4O` - -

    - Full-sized flowchart detailing how document modes are chosen in IE11 -

    - diff --git a/browsers/internet-explorer/ie11-deploy-guide/net-framework-problems-with-ie11.md b/browsers/internet-explorer/ie11-deploy-guide/net-framework-problems-with-ie11.md index 93d825a26b..b17d3b59ae 100644 --- a/browsers/internet-explorer/ie11-deploy-guide/net-framework-problems-with-ie11.md +++ b/browsers/internet-explorer/ie11-deploy-guide/net-framework-problems-with-ie11.md @@ -17,7 +17,7 @@ If you’re having problems launching your legacy apps while running Internet Ex 1. **For x86 systems or for 32-bit processes on x64 systems:** Go to the `HKLM\SOFTWARE\MICROSOFT\.NETFramework` registry key and change the **EnableIEHosting** value to **1**. -2. **For x64 systems or for 64-bit processes on x64 systems:** Go to the `HKLM\SOFTWARE\Wow6432Node\MICROSOFT\.NETFramework` registry key and change the **EnableIEHosting** value to **1**. +2. **For x64 systems or for 64-bit processes on x64 systems:** Go to the `HKLM\SOFTWARE\Wow6432Node\.NETFramework` registry key and change the **EnableIEHosting** value to **1**. For more information, see the [Web Applications](https://go.microsoft.com/fwlink/p/?LinkId=308903) section of the Application Compatibility in the .NET Framework 4.5 page. diff --git a/browsers/internet-explorer/ie11-deploy-guide/user-interface-problems-with-ie11.md b/browsers/internet-explorer/ie11-deploy-guide/user-interface-problems-with-ie11.md index a4a2db0dae..5178b33d1f 100644 --- a/browsers/internet-explorer/ie11-deploy-guide/user-interface-problems-with-ie11.md +++ b/browsers/internet-explorer/ie11-deploy-guide/user-interface-problems-with-ie11.md @@ -41,8 +41,8 @@ In IE, press **ALT+V** to show the **View** menu, press **T** to enter the **Too ## Where did the search box go? IE11 uses the **One Box** feature, which lets users type search terms directly into the **Address bar**. Any text entered into the **Address bar** that doesn't appear to be a URL is automatically sent to the currently selected search provider. ->[!NOTE] ->Depending on how you've set up your intranet search, the text entry might resolve to an intranet site. For more information about this, see [Intranet problems with Internet Explorer 11](intranet-problems-and-ie11.md). +**Note**
    +Depending on how you've set up your intranet search, the text entry might resolve to an intranet site. For more information about this, see [Intranet problems with Internet Explorer 11](intranet-problems-and-ie11.md).   diff --git a/devices/hololens/TOC.md b/devices/hololens/TOC.md index a1e744e8fe..38959bbbb4 100644 --- a/devices/hololens/TOC.md +++ b/devices/hololens/TOC.md @@ -1,7 +1,7 @@ # [Microsoft HoloLens](index.md) ## [HoloLens in the enterprise: requirements](hololens-requirements.md) ## [Set up HoloLens](hololens-setup.md) -## [Unlock Windows Holographic Enterprise features](hololens-upgrade-enterprise.md) +## [Upgrade to Windows Holographic Enterprise](hololens-upgrade-enterprise.md) ## [Enroll HoloLens in MDM](hololens-enroll-mdm.md) ## [Set up HoloLens in kiosk mode](hololens-kiosk.md) ## [Configure HoloLens using a provisioning package](hololens-provisioning.md) diff --git a/devices/hololens/hololens-enroll-mdm.md b/devices/hololens/hololens-enroll-mdm.md index 87c565d59e..24912f3416 100644 --- a/devices/hololens/hololens-enroll-mdm.md +++ b/devices/hololens/hololens-enroll-mdm.md @@ -6,7 +6,6 @@ ms.mktglfcycl: manage ms.pagetype: hololens, devices ms.sitesec: library author: jdeckerMS -localizationpriority: medium --- # Enroll HoloLens in MDM diff --git a/devices/hololens/hololens-install-apps.md b/devices/hololens/hololens-install-apps.md index 0bd99695b0..e5298640a5 100644 --- a/devices/hololens/hololens-install-apps.md +++ b/devices/hololens/hololens-install-apps.md @@ -6,7 +6,6 @@ ms.mktglfcycl: manage ms.pagetype: hololens, devices ms.sitesec: library author: jdeckerMS -localizationpriority: medium --- # Install apps on HoloLens diff --git a/devices/hololens/hololens-kiosk.md b/devices/hololens/hololens-kiosk.md index 5ef67cb981..df5b610c5a 100644 --- a/devices/hololens/hololens-kiosk.md +++ b/devices/hololens/hololens-kiosk.md @@ -6,7 +6,6 @@ ms.mktglfcycl: manage ms.pagetype: hololens, devices ms.sitesec: library author: jdeckerMS -localizationpriority: medium --- # Set up HoloLens in kiosk mode diff --git a/devices/hololens/hololens-provisioning.md b/devices/hololens/hololens-provisioning.md index 9debfeb7b8..94024a8e86 100644 --- a/devices/hololens/hololens-provisioning.md +++ b/devices/hololens/hololens-provisioning.md @@ -6,7 +6,6 @@ ms.mktglfcycl: manage ms.pagetype: hololens, devices ms.sitesec: library author: jdeckerMS -localizationpriority: medium --- # Configure HoloLens using a provisioning package @@ -101,7 +100,7 @@ When you run ADKsetup.exe for Windows 10, version 1607, select **Configuration D Provisioning packages make use of configuration service providers (CSPs). If you're not familiar with CSPs, see [Introduction to configuration service providers (CSPs) for IT pros](https://technet.microsoft.com/itpro/windows/manage/how-it-pros-can-use-configuration-service-providers). -In Windows ICD, when you create a provisioning package for Windows Holographic, the settings in **Available customizations** are based on [CSPs that are supported in Windows Holographic](https://msdn.microsoft.com/windows/hardware/commercialize/customize/mdm/configuration-service-provider-reference#hololens). The following table describes settings that you might want to configure for HoloLens. +In Windows ICD, when you create a provisioning package for Windows Holographic, the settings in **Available customizations** are based on [CSPs that are supported in Windows Holographic](https://msdn.microsoft.co/library/windows/hardware/dn920025.aspx#HoloLens). The following table describes settings that you might want to configure for HoloLens. ![Common runtime settings for HoloLens](images/icd-settings.png) diff --git a/devices/hololens/hololens-requirements.md b/devices/hololens/hololens-requirements.md index c141d31509..959a0c2402 100644 --- a/devices/hololens/hololens-requirements.md +++ b/devices/hololens/hololens-requirements.md @@ -6,7 +6,6 @@ ms.mktglfcycl: manage ms.pagetype: hololens, devices ms.sitesec: library author: jdeckerMS -localizationpriority: medium --- # Microsoft HoloLens in the enterprise: requirements diff --git a/devices/hololens/hololens-setup.md b/devices/hololens/hololens-setup.md index 711052c786..134a4bd36d 100644 --- a/devices/hololens/hololens-setup.md +++ b/devices/hololens/hololens-setup.md @@ -6,7 +6,6 @@ ms.mktglfcycl: manage ms.pagetype: hololens, devices ms.sitesec: library author: jdeckerMS -localizationpriority: medium --- # Set up HoloLens diff --git a/devices/hololens/hololens-upgrade-enterprise.md b/devices/hololens/hololens-upgrade-enterprise.md index 12546b5f31..ab3a5920df 100644 --- a/devices/hololens/hololens-upgrade-enterprise.md +++ b/devices/hololens/hololens-upgrade-enterprise.md @@ -1,15 +1,14 @@ --- -title: Unlock Windows Holographic Enterprise features (HoloLens) +title: Upgrade to Windows Holographic Enterprise (HoloLens) description: HoloLens provides extra features designed for business when you upgrade to Windows Holographic Enterprise. ms.prod: w10 ms.mktglfcycl: manage ms.pagetype: hololens, devices ms.sitesec: library author: jdeckerMS -localizationpriority: medium --- -# Unlock Windows Holographic Enterprise features +# Upgrade to Windows Holographic Enterprise Microsoft HoloLens is available in the *Development Edition*, which runs Windows Holographic (an edition of Windows 10 designed for HoloLens), and in the [Commercial Suite](https://developer.microsoft.com/windows/holographic/release_notes#introducing_microsoft_hololens_commercial_suite), which provides extra features designed for business. diff --git a/devices/hololens/index.md b/devices/hololens/index.md index 7e12977ae1..401b51e645 100644 --- a/devices/hololens/index.md +++ b/devices/hololens/index.md @@ -6,7 +6,6 @@ ms.mktglfcycl: manage ms.pagetype: hololens, devices ms.sitesec: library author: jdeckerMS -localizationpriority: medium --- # Microsoft HoloLens @@ -22,7 +21,7 @@ localizationpriority: medium | --- | --- | | [HoloLens in the enterprise: requirements](hololens-requirements.md) | Lists requirements for general use, Wi-Fi, and device management | | [Set up HoloLens](hololens-setup.md) | How to set up HoloLens for the first time | -| [Unlock Windows Holographic Enterprise features](hololens-upgrade-enterprise.md) | How to upgrade your Development Edition HoloLens to Windows Holographic Enterprise| +| [Upgrade to Windows Holographic Enterprise](hololens-upgrade-enterprise.md) | How to upgrade your Development Edition HoloLens to Windows Holographic Enterprise| | [Enroll HoloLens in MDM](hololens-enroll-mdm.md) | Manage multiple HoloLens devices simultaneously using solutions like Microsoft InTune | | [Set up HoloLens in kiosk mode](hololens-kiosk.md) | Enable kiosk mode for HoloLens, which limits the user's ability to launch new apps or change the running app | | [Configure HoloLens using a provisioning package](hololens-provisioning.md) | Provisioning packages make it easy for IT administrators to configure HoloLens devices without imaging | diff --git a/devices/surface-hub/TOC.md b/devices/surface-hub/TOC.md index 3c1ef3bcb3..47279ae319 100644 --- a/devices/surface-hub/TOC.md +++ b/devices/surface-hub/TOC.md @@ -36,5 +36,4 @@ ### [Troubleshoot Microsoft Surface Hub](troubleshoot-surface-hub.md) ### [Appendix: PowerShell](appendix-a-powershell-scripts-for-surface-hub.md) ## [Differences between Surface Hub and Windows 10 Enterprise](differences-between-surface-hub-and-windows-10-enterprise.md) -## [How Surface Hub addresses Wi-Fi Direct security issues](surface-hub-wifi-direct.md) ## [Change history for Surface Hub](change-history-surface-hub.md) \ No newline at end of file diff --git a/devices/surface-hub/accessibility-surface-hub.md b/devices/surface-hub/accessibility-surface-hub.md index 46348c087d..5aa1cfc951 100644 --- a/devices/surface-hub/accessibility-surface-hub.md +++ b/devices/surface-hub/accessibility-surface-hub.md @@ -30,7 +30,7 @@ The full list of accessibility settings are available to IT admins in the **Sett | Mouse | Defaults selected for **Pointer size**, **Pointer color** and **Mouse keys**. | | Other options | Defaults selected for **Visual options** and **Touch feedback**. | -Additionally, these accessibility features and apps are returned to default settings when users press [I'm Done](i-am-done-finishing-your-surface-hub-meeting.md): +Additionally, these accessibility features and apps are returned to default settings when users press [**I'm Done**](i-am-done-finishing-your-surface-hub-meeting.md): - Narrator - Magnifier - High contrast diff --git a/devices/surface-hub/admin-group-management-for-surface-hub.md b/devices/surface-hub/admin-group-management-for-surface-hub.md index 7607199209..0278b24569 100644 --- a/devices/surface-hub/admin-group-management-for-surface-hub.md +++ b/devices/surface-hub/admin-group-management-for-surface-hub.md @@ -74,7 +74,7 @@ If your organization is using AD or Azure AD, we recommend you either domain joi |---------------------------------------------------|-----------------------------------------|-------| | Create a local admin account | None | The user name and password specified during first run | | Domain join to Active Directory (AD) | Your organization uses AD | Any AD user from a specific security group in your domain | -| Azure Active Directory (Azure AD) join the device | Your organization uses Azure AD Basic | Global administrators only | +| Azure Active Directory (Azure AD) join the device | Your organization uses Azure AD Basic | Global administators only | |   | Your organization uses Azure AD Premium or Enterprise Mobility Suite (EMS) | Global administrators and additional administrators | diff --git a/devices/surface-hub/appendix-a-powershell-scripts-for-surface-hub.md b/devices/surface-hub/appendix-a-powershell-scripts-for-surface-hub.md index 76275e3ec8..c82891ed56 100644 --- a/devices/surface-hub/appendix-a-powershell-scripts-for-surface-hub.md +++ b/devices/surface-hub/appendix-a-powershell-scripts-for-surface-hub.md @@ -1620,7 +1620,7 @@ In the following cmdlets, `$strPolicy` is the name of the ActiveSync policy, and Note that in order to run the cmdlets, you need to set up a remote PowerShell session and: -- Your admin account must be remote-PowerShell-enabled. This allows the admin to use the PowerShell cmdlets that are needed by the script. (This permission can be set using `set-user $admin -RemotePowerShellEnabled $true`) +- Your admin account must be remote-PowerShell-enabled. This allows the admin to use the PowerShell cmdlets that are needed by the script. (This permission can be set using set-user `$admin -RemotePowerShellEnabled $true`) - Your admin account must have the "Reset Password" role if you plan to run the creation scripts. This allows the admin to change the password of the account, which is needed for the script. The Reset Password Role can be enabled using the Exchange Admin Center. Create the policy. @@ -1667,7 +1667,7 @@ This retrieves device information for every device that the account has been pro For a device account to automatically accept or decline meeting requests based on its availability, the **AutomateProcessing** attribute must be set to **AutoAccept**. This is recommended as to prevent overlapping meetings. ```PowerShell -Set-CalendarProcessing $strRoomUpn -AutomateProcessing AutoAccept +Set-CalendarProcessing $ strRoomUpn -AutomateProcessing AutoAccept ``` ###
    Accepting external meeting requests diff --git a/devices/surface-hub/change-history-surface-hub.md b/devices/surface-hub/change-history-surface-hub.md index dbf6b92769..7439819195 100644 --- a/devices/surface-hub/change-history-surface-hub.md +++ b/devices/surface-hub/change-history-surface-hub.md @@ -14,19 +14,10 @@ localizationpriority: medium This topic lists new and updated topics in the [Surface Hub Admin Guide]( surface-hub-administrators-guide.md). -## January 2017 - -| New or changed topic | Description | -| --- | --- | -| [How Surface Hub addresses Wi-Fi Direct security issues](surface-hub-wifi-direct.md) | New | -| [Connect other devices and display with Surface Hub](connect-and-display-with-surface-hub.md) | Added graphics cards verified to work with 84" Surface Hubs and added information about the lengths of cables. | -| [Online deployment](online-deployment-surface-hub-device-accounts.md) | Updated procedures for adding a device account for your Microsoft Surface Hub when you have a pure, online deployment. | - ## December 2016 | New or changed topic | Description| | --- | --- | -| [Connect other devices and display with Surface Hub](connect-and-display-with-surface-hub.md) | Added information about Bluetooth accessories. | | [Manage settings with an MDM provider](manage-settings-with-mdm-for-surface-hub.md) | Updated example procedures to include screenshots. | ## November 2016 diff --git a/devices/surface-hub/connect-and-display-with-surface-hub.md b/devices/surface-hub/connect-and-display-with-surface-hub.md index 3febb60ff6..28001227cc 100644 --- a/devices/surface-hub/connect-and-display-with-surface-hub.md +++ b/devices/surface-hub/connect-and-display-with-surface-hub.md @@ -13,7 +13,7 @@ localizationpriority: medium # Connect other devices and display with Surface Hub -You can connect other devices to your Microsoft Surface Hub to display content. This topic describes the Guest Mode, Replacement PC Mode, and Video Out functionality available through wired connections, and also lists accessories that you can connect to Surface Hub using [Bluetooth](#bluetooth-accessories). +You can connect other devices to your Microsoft Surface Hub to display content. This topic describes the Guest Mode, Replacement PC Mode, and Video Out functionality available through wired connections. ## Which method should I choose? @@ -251,7 +251,7 @@ In Replacement PC Mode, Surface Hub supports any graphics adapter that can produ **55" Surface Hubs** - For best experience, use a graphics card capable of 1080p resolution at 120Hz. -**84" Surface Hubs** - For best experience, use a graphics card capable of outputting four DisplayPort 1.2 streams to produce 2160p at 120Hz (3840 x 2160 at 120Hz vertical refresh). We've verified that this works with the NVIDIA Quadro K2200, NVIDIA Quadro K4200, NVIDIA Quadro M6000, AMD FirePro W5100, AMD FirePro W7100, and AMD FirePro W9100. These are not the only graphics cards - others are available from other vendors. +**84" Surface Hubs** - For best experience, use a graphics card capable of outputting four DisplayPort 1.2 streams to produce 2160p at 120Hz (3840 x 2160 at 120Hz vertical refresh). We've verified that this works with the NVIDIA Quadro K2200, NVIDIA Quadro K4200, and NVIDIA Quadro M6000. These are not the only graphics cards - others are available from other vendors. Check directly with graphics card vendors for the latest drivers. @@ -273,7 +273,7 @@ Check directly with graphics card vendors for the latest drivers.
    - + @@ -470,19 +470,3 @@ Video Out port on the 84" Surface Hub

    AMD

    [http://support.amd.com/en-us/download](http://support.amd.com/en-us/download)

    [http://support.amd.com/download](http://support.amd.com/download)

    Intel

    -## Cables - -Both the 55” and 84” Surface Hub devices have been tested to work with Certified DisplayPort and HDMI cables. While vendors do sell longer cables that may work with the Surface Hub, only those cables that have been certified by testing labs are certain to work with the Hub. For example, DisplayPort cables are certified only up to 3 meters, however many vendors sell cables that are 3 times that length. If a long cable is necessary, we strongly suggest using HDMI. HDMI has many cost-effective solutions for long-haul cables, including the use of repeaters. Nearly every DisplayPort source will automatically switch to HDMI signaling if a HDMI sink is detected. - - -## Bluetooth accessories - -You can connect the following accessories to Surface Hub using Bluetooth: - -- Mice -- Keyboards -- Headsets -- Speakers - ->[!NOTE] ->After you connect a Bluetooth headset or speaker, you might need to change the [default microphone and speaker settings](local-management-surface-hub-settings.md). \ No newline at end of file diff --git a/devices/surface-hub/hybrid-deployment-surface-hub-device-accounts.md b/devices/surface-hub/hybrid-deployment-surface-hub-device-accounts.md index f7ae7893c5..ceb0a4bc73 100644 --- a/devices/surface-hub/hybrid-deployment-surface-hub-device-accounts.md +++ b/devices/surface-hub/hybrid-deployment-surface-hub-device-accounts.md @@ -53,7 +53,7 @@ Use this procedure if you use Exchange on-prem. ```ps1 Set-ExecutionPolicy Unrestricted $cred=Get-Credential -Message "Please use your Office 365 admin credentials" - $sess= New-PSSession -ConfigurationName Microsoft.Exchange -ConnectionUri 'https://ps.outlook.com/powershell' -Credential $cred -Authentication Basic -AllowRedirection + $sess= New-PSSession -ConfigurationName Microsoft.Exchange -ConnectionUri 'https://outlook.office365.com/ps1-liveid/' -Credential $cred -Authentication Basic -AllowRedirection Import-PSSession $sess ``` diff --git a/devices/surface-hub/index.md b/devices/surface-hub/index.md index ce7c4f3c37..ddbbfb4fab 100644 --- a/devices/surface-hub/index.md +++ b/devices/surface-hub/index.md @@ -34,8 +34,7 @@ Documents related to the Microsoft Surface Hub.

    [Microsoft Surface Hub administrator's guide](surface-hub-administrators-guide.md)

    This guide covers the installation and administration of devices running Surface Hub, and is intended for use by anyone responsible for these tasks, including IT administrators and developers.

    -[Differences between Surface Hub and Windows 10 Enterprise](differences-between-surface-hub-and-windows-10-enterprise.md)This topic explains the differences between the operating system on Surface Hub and Windows 10 Enterprise. -[How Surface Hub addresses Wi-Fi Direct security issues](surface-hub-wifi-direct.md)This topic provides guidance on Wi-Fi Direct security risks, how the Surface Hub has addressed those risks, and how Surface Hub administrators can configure the device for the highest level of security. -[Change history for Surface Hub](change-history-surface-hub.md)This topic lists new and updated topis in the Surface Hub documentation. +[Differences between Surface Hub and Windows 10 Enterprise](differences-between-surface-hub-and-windows-10-enterprise.md)This topic explains the differences between the operating system on Surface Hub and Windows 10 Enterprise. +[Change history for Surface Hub](change-history-surface-hub.md)This topic lists new and updated topis in the Surface Hub documentation. diff --git a/devices/surface-hub/manage-windows-updates-for-surface-hub.md b/devices/surface-hub/manage-windows-updates-for-surface-hub.md index 40fdda11b1..2d077cb622 100644 --- a/devices/surface-hub/manage-windows-updates-for-surface-hub.md +++ b/devices/surface-hub/manage-windows-updates-for-surface-hub.md @@ -94,7 +94,7 @@ Once you've determined deployment rings for your Surface Hubs, configure update ## Use Windows Server Update Services -You can connect Surface Hub to your Windows Server Update Services (WSUS) server to manage updates. Updates will be controlled through approvals or automatic deployment rules configured in your WSUS server, so new upgrades will not be deployed until you choose to deploy them. +You can connect Surface Hub to your indows Server Update Services (WSUS) server to manage updates. Updates will be controlled through approvals or automatic deployment rules configured in your WSUS server, so new upgrades will not be deployed until you choose to deploy them. **To manually connect a Surface Hub to a WSUS server:** 1. Open **Settings** on your Surface Hub. diff --git a/devices/surface-hub/on-premises-deployment-surface-hub-device-accounts.md b/devices/surface-hub/on-premises-deployment-surface-hub-device-accounts.md index cb9d732585..a2103eec0b 100644 --- a/devices/surface-hub/on-premises-deployment-surface-hub-device-accounts.md +++ b/devices/surface-hub/on-premises-deployment-surface-hub-device-accounts.md @@ -99,7 +99,7 @@ If you have a single-forest on-premises deployment with Microsoft Exchange 2013 8. OPTIONAL: You can also allow your Surface Hub to make and receive public switched telephone network (PSTN) phone calls by enabling Enterprise Voice for your account. Enterprise Voice isn't a requirement for Surface Hub, but if you want PSTN dialing functionality for the Surface Hub client, here's how to enable it: ```PowerShell - Set-CsMeetingRoom HUB01 -DomainController DC-ND-001.contoso.com + CsMeetingRoom HUB01 -DomainController DC-ND-001.contoso.com -LineURItel: +14255550555;ext=50555" Set-CsMeetingRoom -DomainController DC-ND-001.contoso.com -Identity HUB01 -EnterpriseVoiceEnabled $true ``` diff --git a/devices/surface-hub/online-deployment-surface-hub-device-accounts.md b/devices/surface-hub/online-deployment-surface-hub-device-accounts.md index 8905e5b36c..853813a012 100644 --- a/devices/surface-hub/online-deployment-surface-hub-device-accounts.md +++ b/devices/surface-hub/online-deployment-surface-hub-device-accounts.md @@ -54,10 +54,13 @@ If you have a pure, online (O365) deployment, then you can [use the provided Pow $easPolicy = New-MobileDeviceMailboxPolicy -Name “SurfaceHubs” -PasswordEnabled $false ``` - Once you have a compatible policy, then you will need to apply the policy to the device account. + Once you have a compatible policy, then you will need to apply the policy to the device account. However, policies can only be applied to user accounts and not resource mailboxes. You need to convert the mailbox into a user type, apply the policy, and then convert it back into a mailbox—you may need to re-enable it and set the password again too. ```PowerShell + Set-Mailbox 'HUB01@contoso.com' -Type Regular Set-CASMailbox 'HUB01@contoso.com' -ActiveSyncMailboxPolicy $easPolicy.Id + Set-Mailbox 'HUB01@contoso.com' -Type Room + Set-Mailbox 'HUB01@contoso.com' -RoomMailboxPassword (ConvertTo-SecureString -String -AsPlainText -Force) -EnableRoomMailboxAccount $true ``` 4. Various Exchange properties must be set on the device account to improve the meeting experience. You can see which properties need to be set in the [Exchange properties](exchange-properties-for-surface-hub-device-accounts.md) section. @@ -81,10 +84,7 @@ If you have a pure, online (O365) deployment, then you can [use the provided Pow Set-MsolUser -UserPrincipalName 'HUB01@contoso.com' -PasswordNeverExpires $true ``` -7. Surface Hub requires a license for Skype for Business functionality. - - Your Surface Hub account requires a Lync Online (Plan 2) or Lync Online (Plan 3) license, but it does not require an Exchange Online license. - - You'll need to have Lync Online (Plan 2) or higher in your O365 plan. The plan needs to support conferencing capability. - - If you need Enterprise Voice (PSTN telephony) using telephony service providers for the Surface Hub, you need Lync Online (Plan 3). +7. The device account needs to have a valid Office 365 (O365) license, or Exchange and Skype for Business will not work. If you have the license, you need to assign a usage location to your device account—this determines what license SKUs are available for your account. Next, you can use `Get-MsolAccountSku` to retrieve a list of available SKUs for your O365 tenant. @@ -98,6 +98,15 @@ If you have a pure, online (O365) deployment, then you can [use the provided Pow 8. Enable the device account with Skype for Business. + In order to enable Skype for Business, your environment will need to meet the following prerequisites: + + - You'll need to have Lync Online (Plan 2) or higher in your O365 plan. The plan needs to support conferencing capability. + - If you need Enterprise Voice (PSTN telephony) using telephony service providers for the Surface Hub, you need Lync Online (Plan 3). + - Your tenant users must have Exchange mailboxes. + - Your Surface Hub account does require a Lync Online (Plan 2) or Lync Online (Plan 3) license, but it does not require an Exchange Online license. + + + - Start by creating a remote PowerShell session from a PC. ```PowerShell @@ -106,25 +115,33 @@ If you have a pure, online (O365) deployment, then you can [use the provided Pow Import-PSSession $cssess -AllowClobber ``` - - Next, if you aren't sure what value to use for the `RegistrarPool` parameter in your environment, you can get the value from an existing Skype for Business user using this cmdlet (for example, *alice@contoso.com*): + - To enable your Surface Hub account for Skype for Business Server, run this cmdlet: + + ```PowerShell + Enable-CsMeetingRoom -Identity 'HUB01@contoso.com' -RegistrarPool + "sippoolbl20a04.infra.lync.com" -SipAddressType EmailAddress + ``` + + If you aren't sure what value to use for the `RegistrarPool` parameter in your environment, you can get the value from an existing Skype for Business user using this cmdlet: ```PowerShell Get-CsOnlineUser -Identity ‘alice@contoso.com’| fl *registrarpool* ``` - OR by setting a variable - ```PowerShell - $strRegistrarPool = (Get-CsOnlineUser -Identity ‘alice@contoso.com’).RegistrarPool - ``` - - - Enable the Surface Hub account with the following cmdlet: - - ```PowerShell - Enable-CsMeetingRoom -Identity 'HUB01@contoso.com' -RegistrarPool yourRegistrarPool -SipAddressType EmailAddress - OR using the $strRegistarPool variable from above - Enable-CsMeetingRoom -Identity 'HUB01@contoso.com' -RegistrarPool $strRegistrarPool -SipAddressType EmailAddress - ``` -For validation, you should be able to use any Skype for Business client (PC, Android, etc) to sign in to this account. +9. Assign Skype for Business license to your Surface Hub account. + + Once you've completed the preceding steps to enable your Surface Hub account in Skype for Business Online, you need to assign a license to the Surface Hub. Using the O365 administrative portal, assign either a Skype for Business Online (Plan 2) or a Skype for Business Online (Plan 3) to the device. + + - Login as a tenant administrator, open the O365 Administrative Portal, and click on the Admin app. + - Click on **Users and Groups** and then **Add users, reset passwords, and more**. + - Select the Surface Hub account, and then click or tap the pen icon, which means edit. + - Click on the **Licenses** option. + - In the **Assign licenses** section, you need to select Skype for Business (Plan 2) or Skype for Business (Plan 3), depending on your licensing and what you've decided in terms of needing Enterprise Voice. You'll have to use a Plan 3 license if you want to use Enterprise Voice on your Surface Hub. + - Click **Save** and you're done. + +>**Note**: It's also possible to use the Windows Azure Active Directory Module for Windows PowerShell to run the cmdlets needed to assign one of these licenses, but that's not covered here. + +For validation, you should be able to use any Skype for Business client (PC, Android, etc) to log in to this account. diff --git a/devices/surface-hub/save-bitlocker-key-surface-hub.md b/devices/surface-hub/save-bitlocker-key-surface-hub.md index 2354de0f40..461864a1aa 100644 --- a/devices/surface-hub/save-bitlocker-key-surface-hub.md +++ b/devices/surface-hub/save-bitlocker-key-surface-hub.md @@ -24,7 +24,7 @@ There are several ways to manage your BitLocker key on the Surface Hub. 2. If you’ve joined the Surface Hub to Azure Active Directory (Azure AD), the BitLocker key will be stored under the account that was used to join the device. -3. If you’re using an admin account to manage the device, you can save the BitLocker key by going to the **Settings** app and navigating to **Update & security** > **Recovery**. Insert a USB drive and select the option to save the BitLocker key. The key will be saved to a text file on the USB drive. +3. If you’re using a local admin account to manage the device, you can save the BitLocker key by going to the **Settings** app and navigating to **Update & security** > **Recovery**. Insert a USB drive and select the option to save the BitLocker key. The key will be saved to a text file on the USB drive. ## Related topics diff --git a/devices/surface-hub/surface-hub-wifi-direct.md b/devices/surface-hub/surface-hub-wifi-direct.md deleted file mode 100644 index 6a76d310ab..0000000000 --- a/devices/surface-hub/surface-hub-wifi-direct.md +++ /dev/null @@ -1,121 +0,0 @@ ---- -title: How Surface Hub addresses Wi-Fi Direct security issues -description: This topic provides guidance on Wi-Fi Direct security risks. -keywords: change history -ms.prod: w10 -ms.mktglfcycl: manage -ms.sitesec: library -ms.pagetype: surfacehub -author: jdeckerMS -localizationpriority: medium ---- - -# How Surface Hub addresses Wi-Fi Direct security issues - -Microsoft Surface Hub is an all-in-one productivity device that enables teams to better brainstorm, collaborate, and share ideas. Surface Hub relies on Miracast for wireless projection by using Wi-Fi Direct. - -This topic provides guidance on Wi-Fi Direct security vulnerabilities, how Surface Hub has addressed those risks, and how Surface Hub administrators can configure the device for the highest level of security. This hardening information will help customers with high security requirements understand how best to protect their Surface Hub connected networks and data in transit. - -The intended audiences for this topic include IT and network administrators interested in deploying Microsoft Surface Hub in their corporate environment with optimal security settings. - -## Overview - -Microsoft Surface Hub's security depends extensively on Wi-Fi Direct / Miracast and the associated 802.11, Wi-Fi Protected Access (WPA2), and Wireless Protected Setup (WPS) standards. Since the device only supports WPS (as opposed to WPA2 Pre-Shared Key (PSK) or WPA2 Enterprise), issues traditionally associated with 802.11 encryption are simplified by design. - -It is important to note Surface Hub operates on par with the field of Miracast receivers, meaning that it is protected from, and vulnerable to, a similar set of exploits as all WPS-based wireless network devices. But Surface Hub’s implementation of WPS has extra precautions built in, and its internal architecture helps prevent an attacker – even after compromising the Wi-Fi Direct / Miracast layer – to move past the network interface onto other attack surfaces and connected enterprise networks see [Wi-Fi Direct vulnerabilities and how Surface Hub addresses them](#vulnerabilities). - -## Wi-Fi Direct background - -Miracast is part of the Wi-Fi Display standard, which itself is supported by the Wi-Fi Direct protocol. These standards are supported in modern mobile devices for screen sharing and collaboration. - -Wi-Fi Direct or Wi-Fi "Peer to Peer" (P2P) is a standard released by the Wi-Fi Alliance for "Ad-Hoc" networks. This allows supported devices to communicate directly and create groups of networks without requiring a traditional Wi-Fi Access Point or an Internet connection. - -Security for Wi-Fi Direct is provided by WPA2 using the WPS standard. Authentication mechanism for devices can be a numerical pin (WPS-PIN), a physical or virtual Push Button (WPS-PBC), or an out-of-band message such as Near Field Communication (WPS-OOO). The Microsoft Surface Hub supports both Push Button (which is the default) and PIN methods. - -In Wi-Fi Direct, groups are created as either "persistent," allowing for automatic reconnection using stored key material, or "temporary," where devices cannot re-authenticate without user intervention or action. Wi-Fi Direct groups will typically determine a Group Owner (GO) through a negotiation protocol, which mimics the "station" or "Access Point" functionality for the established Wi-Fi Direct Group. This Wi-Fi Direct GO provides authentication (via an “Internal Registrar”), and facilitate upstream network connections. For Surface Hub, this GO negotiation does not take place, as the network only operates in "autonomous" mode, where Surface Hub is always the Group Owner. Finally, Surface Hub does not and will not join other Wi-Fi Direct networks itself as a client. - - -## Wi-Fi Direct vulnerabilities and how Surface Hub addresses them - -**Vulnerabilities and attacks in the Wi-Fi Direct invitation, broadcast, and discovery process**: Wi-Fi Direct / Miracast attacks may target weaknesses in the group establishment, peer discovery, device broadcast, or invitation processes. - -|Wi-Fi Direct Vulnerability | Surface Hub Mitigation | -| --- | --- | -| The discovery process may remain active for an extended period of time, which could allow Invitations and connections to be established without the intent of the device owner. | Surface Hub only operates as the Group Owner (GO), which does not perform the client Discovery or GO negotiation process. Broadcast can be turned off by fully disabling wireless projection. | -| Invitation and discovery using PBC allows an unauthenticated attacker to perform repeated connection attempts or unauthenticated connections are automatically accepted. | By requiring WPS PIN security, Administrators can reduce the potential for such unauthorized connections or "Invitation bombs" (where invitations are repeatedly sent until a user mistakenly accepts one). | - -**Wi-Fi Protected Setup (WPS) Push Button Connect (PBC) vs PIN Entry**: Public weaknesses have been demonstrated in WPS-PIN method design and implementation, other vulnerabilities exist within WPS-PBC involving active attacks against a protocol designed for one time use. - -| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | -| --- | --- | -| WPS-PBC is vulnerable to active attackers. As stated within the WPS specification: "The PBC method has zero bits of entropy and only protects against passive eavesdropping attacks. PBC protects against eavesdropping attacks and takes measures to prevent a device from joining a network that was not selected by the device owner. The absence of authentication, however, means that PBC does not protect against active attack". Attackers can use selective wireless jamming or other potential denial-of-service vulnerabilities in order to trigger an unintended Wi-Fi Direct GO or connection. Additionally, an active attacker, with only physical proximity, can repeatedly teardown any Wi-Fi Direct group and attempt the described attack until it is successful. |Enable WPS-PIN security within Surface Hub’s configuration. As discussed within the Wi-Fi WPS specification: "The PBC method should only be used if no PIN-capable Registrar is available and the WLAN user is willing to accept the risks associated with PBC". | -| WPS-PIN implementations can be brute-forced using a Vulnerability within the WPS standard. Due to the design of split PIN verification, a number of implementation vulnerabilities occurred in the past several years across a wide range of Wi-Fi hardware manufacturers. In 2011 two researchers (Stefan Viehböck and Craig Heffner) released information on this vulnerability and tools such as "Reaver" as a proof of concept. | The Microsoft implementation of WPS within Surface Hub changes the pin every 30 seconds. In order to crack the pin, an attacker must work through the entire exploit in less than 30 seconds. Given the current state of tools and research in this area, a brute-force pin-cracking attack through WPS is unlikely. | -| WPS-PIN can be cracked using an offline attack due to weak initial key (E-S1,E S2) entropy. In 2014, Dominique Bongard discussed a "Pixie Dust" attack where poor initial randomness for the pseudo random number generator (PRNG) within the wireless device lead to the ability to perform an offline brute-force attack. | The Microsoft implementation of WPS within Surface Hub is not susceptible to this offline PIN brute-force attack. The WPS-PIN is randomized for each connection. | - -**Unintended exposure of network services**: Network daemons intended for Ethernet or WLAN services may be accidentally exposed due to misconfiguration (such as binding to “all”/0.0.0.0 interfaces), a poorly configured device firewall, or missing firewall rules altogether. - -| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | -| --- | --- | -| Misconfiguration binds a vulnerable or unauthenticated network service to "all" interfaces, which includes the Wi-Fi Direct interface. This potentially exposes services not intended to be accessible to Wi-Fi Direct clients, which may be weakly or automatically authenticated. | Within Surface Hub, the default firewall rules only permit the required TCP and UDP network ports and by default deny all inbound connections. Strong authentication can be configured by enabling the WPS-PIN mode. | - -**Bridging Wi-Fi Direct and other wired or wireless networks**: While network bridging between WLAN or Ethernet networks is a violation of the Wi-Fi Direct specification, such a bridge or misconfiguration may effectively lower or remove wireless access controls for the internal corporate network. - -| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | -| --- | --- | -| Wi-Fi Direct devices could allow unauthenticated or poorly authenticated access to bridged network connections. This may allow Wi-Fi Direct networks to route traffic to internal Ethernet LAN or other infrastructure or enterprise WLAN networks in violation of existing IT security protocols. | Surface Hub cannot be configured to bridge Wireless interfaces or allow routing between disparate networks. The default firewall rules add defense in depth to any such routing or bridge connections. | - -**The use of Wi-Fi Direct “legacy” mode**: Exposure to unintended networks or devices when operating in “legacy” mode may present a risk. Device spoofing or unintended connections could occur if WPS-PIN is not enabled. - - -| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | -| --- | --- | -| By supporting both Wi-Fi Direct and 802.11 infrastructure clients, the system is operating in a "legacy" support mode. This may expose the connection setup phase indefinitely, allowing for groups to be joined or devices invited to connect well after their intended setup phase terminates. | Surface Hub does not support Wi-Fi Direct legacy clients. Only Wi-Fi Direct connections can be made to Surface Hub even when WPS-PIN mode is enabled. | - -**Wi-Fi Direct GO negotiation during connection setup**: The Group Owner within Wi-Fi Direct is analogous to the “Access Point” in a traditional 802.11 wireless network. The negotiation can be gamed by a malicious device. - -|Wi-Fi Direct Vulnerability | Surface Hub Mitigation | -| --- | --- | -| If groups are dynamically established or if the Wi-Fi Direct device can be made to join new groups, the Group Owner (GO) negotiation can be won by a malicious device that always specifies the max Group Owner "intent" value of 15. (Unless such device is configured to always be a Group Owner, in which case the connection fails.) | Surface Hub takes advantage of Wi-Fi Direct "Autonomous mode", which skips the GO negotiation phase of the connection setup. Surface Hub is always the Group Owner. | - -**Unintended or malicious Wi-Fi deauthentication**: Wi-Fi deauthentication is an age-old attack that can be used by a physically local attacker to expedite information leaks against the connection setup process, trigger new four-way handshakes, target Wi-Fi Direct WPS-PBC for active attack, or create denial-of-service attacks. - -| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | -| --- | --- | -| Deauthentication packets can be sent by an unauthenticated attacker to cause the station to re-authenticate and sniff the resulting handshake. Cryptographic or brute-force attacks can be attempted on the resulting handshake. Mitigations for these attack include: enforcing length and complexity policies for pre-shared keys; configuring the Access Point (if applicable) to detect malicious levels of deauthentication packets; and using WPS to automatically generate strong keys. In PBC mode the user is interacting with a physical or virtual button to allow arbitrary device association. This process should happen only at setup within a small window, once the button is automatically "pushed", the device will accept any station associating via a canonical PIN value (all zeros). Deauthentication can force a repeated setup process. | The current Surface Hub design uses WPS in PIN or PBC mode. No PSK configuration is permitted, helping enforce the generation of strong keys. It is recommended to enable WPS-PIN. | -| Beyond denial-of-service attacks, deauthentication packets can also be used to trigger a reconnect which re-opens the window of opportunity for active attacks against WPS-PBC. | Enable WPS-PIN security within Surface Hub’s configuration. | - -**Basic wireless information disclosure**: Wireless networks, 802.11 or otherwise, are inherently sources of information disclosure. Although the information is largely connection or device metadata, it remains an accepted risk for any 802.11 administrator. Wi-Fi Direct with device authentication via WPS-PIN effectively reveals the same information as a PSK or Enterprise 802.11 network. - -| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | -| --- | --- | -| During broadcast, connection setup, or even with already encrypted connections, basic information about the devices and packet sizes is wirelessly transmitted. At a basic level, a local attacker within wireless range can determine the names of wireless devices, the MAC addresses of communicating equipment, and possibly other details such as the version of the wireless stack, packet sizes, or the configured Access Point or Group Owner options by examining the relevant 802.11 Information Elements. | The Wi-Fi Direct network employed by Surface Hub cannot be further protected from metadata leaks, in the same way 802.11 Enterprise or PSK wireless networks also leak such metadata. Physical security and removing potential threats from the wireless proximity can be used to reduce any potential information leaks. | - -**Wireless evil twin or spoofing attacks**: Spoofing the wireless name is a trivial and known exploit for a physically local attacker in order to lure unsuspecting or mistaken users to connect. - -| Wi-Fi Direct Vulnerability | Surface Hub Mitigation | -| --- | --- | -| By spoofing or cloning the wireless name or "SSID" of the target network, an attacker may trick the user into connecting to fake malicious network. By supporting unauthenticated, auto-join Miracast an attacker could capture the intended display materials or attempt to perform network attacks on the connecting device. | While no specific protections against joining a spoofed Surface Hub are in place, this attack is partially mitigated in two ways. First, any potential attack must be physically within Wi-Fi range. Second, this attack is only possible during the very first connection. Subsequent connections use a persistent Wi-Fi Direct group and Windows will remember and prioritize this prior connection during future Hub use. (Note: Spoofing the MAC address, Wi-Fi channel and SSID simultaneously was not considered for this report and may result in inconsistent Wi-Fi behavior.) Overall this weakness is a fundamental problem for any 802.11 wireless network not using Enterprise WPA2 protocols such as EAP-TLS or EAP-PWD, which are not supported in Wi-Fi Direct. | - -## Surface Hub hardening guidelines - -Surface Hub is designed to facilitate collaboration and allow users to start or join meetings quickly and efficiently. As such, the default Wi-Fi Direct settings for Surface Hub are optimized for this scenario. - -For users who require additional security around the wireless interface, we recommend Surface Hub users enable the WPS-PIN security setting. This disables WPS-PBC mode and offers client authentication, and provides the strongest level of protection by preventing any unauthorized connections to Surface Hub. - -If concerns remain around authentication and authorization of a Surface Hub, we recommend users connect the device to a separate network, either Wi-Fi (such as a "guest" Wi-Fi network) or using separate Ethernet network (preferably an entirely different physical network, but a VLAN can also provide some added security). Of course, this approach may preclude connections to internal network resources or services, and may require additional network configurations to regain access. - -Also recommended: -- [Install regular system updates.](manage-windows-updates-for-surface-hub.md) -- Update the Miracast settings to disable auto-present mode. - -## Learn more - -- [Wi-Fi Direct specifications](http://www.wi-fi.org/discover-wi-fi/wi-fi-direct) -- [Wireless Protected Setup (WPS) specification](http://www.wi-fi.org/discover-wi-fi/wi-fi-protected-setup) - - - - - - - diff --git a/devices/surface-hub/use-room-control-system-with-surface-hub.md b/devices/surface-hub/use-room-control-system-with-surface-hub.md index 06b5f7dd0a..71051b3d27 100644 --- a/devices/surface-hub/use-room-control-system-with-surface-hub.md +++ b/devices/surface-hub/use-room-control-system-with-surface-hub.md @@ -184,7 +184,7 @@ In Replacement PC mode, the power states are only Ready and Off and only change

    5

    -

    S0

    +

    50

    Ready

    diff --git a/devices/surface/change-history-for-surface.md b/devices/surface/change-history-for-surface.md index a6195be9e0..22c48934fe 100644 --- a/devices/surface/change-history-for-surface.md +++ b/devices/surface/change-history-for-surface.md @@ -17,12 +17,6 @@ This topic lists new and updated topics in the Surface documentation library. | --- | --- | |[Wake On LAN for Surface devices](wake-on-lan-for-surface-devices.md) | New | -## December 2016 - -|New or changed topic | Description | -| --- | --- | -|[Download the latest firmware and drivers for Surface devices](deploy-the-latest-firmware-and-drivers-for-surface-devices.md) | Added driver info for Surface Studio; updated info for Surface Book and Surface Pro 4 (Windows 10 .zip cumulative update), Surface Pro 3 (Windows8.1-KB2969817-x64.msu), and Surface 3 (UEFI Asset Tag management tool)| - ## November 2016 |New or changed topic | Description | diff --git a/devices/surface/considerations-for-surface-and-system-center-configuration-manager.md b/devices/surface/considerations-for-surface-and-system-center-configuration-manager.md index 8d241210d7..caf7719cc4 100644 --- a/devices/surface/considerations-for-surface-and-system-center-configuration-manager.md +++ b/devices/surface/considerations-for-surface-and-system-center-configuration-manager.md @@ -65,7 +65,7 @@ However, issues may arise when organizations intend to use versions of Windows t ## Apply an asset tag during deployment -Surface Studio, Surface Book, Surface Pro 4, Surface Pro 3, and Surface 3 devices all support the application of an asset tag in UEFI. This asset tag can be used to identify the device from UEFI even if the operating system fails, and it can also be queried from within the operating system. To read more about the Surface Asset Tag function, see the [Asset Tag Tool for Surface Pro 3](https://blogs.technet.microsoft.com/askcore/2014/10/20/asset-tag-tool-for-surface-pro-3/) blog post. +Surface Book, Surface Pro 4, Surface Pro 3, and Surface 3 devices all support the application of an asset tag in UEFI. This asset tag can be used to identify the device from UEFI even if the operating system fails, and it can also be queried from within the operating system. To read more about the Surface Asset Tag function, see the [Asset Tag Tool for Surface Pro 3](https://blogs.technet.microsoft.com/askcore/2014/10/20/asset-tag-tool-for-surface-pro-3/) blog post. To apply an asset tag using the [Surface Asset Tag CLI Utility](https://www.microsoft.com/download/details.aspx?id=44076) during a Configuration Manager deployment task sequence, use the script and instructions found in the [Set Surface Asset Tag During a Configuration Manager Task Sequence](https://blogs.technet.microsoft.com/jchalfant/set-surface-pro-3-asset-tag-during-a-configuration-manager-task-sequence/) blog post. diff --git a/devices/surface/customize-the-oobe-for-surface-deployments.md b/devices/surface/customize-the-oobe-for-surface-deployments.md index e986d59af3..df861406ec 100644 --- a/devices/surface/customize-the-oobe-for-surface-deployments.md +++ b/devices/surface/customize-the-oobe-for-surface-deployments.md @@ -18,17 +18,16 @@ This article walks you through the process of customizing the Surface out-of-box It is common practice in a Windows deployment to customize the user experience for the first startup of deployed computers — the out-of-box experience, or OOBE. ->[!NOTE] ->OOBE is also often used to describe the phase, or configuration pass, of Windows setup during which the user experience is displayed. For more information about the OOBE phase of setup, see [How Configuration Passes Work](http://msdn.microsoft.com/library/windows/hardware/dn898581.aspx). +>**Note:**  OOBE is also often used to describe the phase, or configuration pass, of Windows setup during which the user experience is displayed. For more information about the OOBE phase of setup, see [How Configuration Passes Work](http://msdn.microsoft.com/library/windows/hardware/dn898581.aspx). In some scenarios, you may want to provide complete automation to ensure that at the end of a deployment, computers are ready for use without any interaction from the user. In other scenarios, you may want to leave key elements of the experience for users to perform necessary actions or select between important choices. For administrators deploying to Surface devices, each of these scenarios presents a unique challenge to overcome. This article provides a summary of the scenarios where a deployment might require additional steps. It also provides the required information to ensure that the desired experience is achieved on any newly deployed Surface device. This article is intended for administrators who are familiar with the deployment process, as well as concepts such as answer files and [reference images](https://technet.microsoft.com/itpro/windows/deploy/create-a-windows-10-reference-image). ->[!NOTE] ->Although the OOBE phase of setup is still run during a deployment with an automated deployment solution such as the [Microsoft Deployment Toolkit (MDT)](https://go.microsoft.com/fwlink/p/?LinkId=618117) or System Center Configuration Manager Operating System Deployment (OSD), it is automated by the settings supplied in the Deployment Wizard and task sequence. For more information see:
    ->- [Deploy Windows 10 with the Microsoft Deployment Toolkit](http://technet.microsoft.com/itpro/windows/deploy/deploy-windows-10-with-the-microsoft-deployment-toolkit) ->- [Deploy Windows 10 with System Center 2012 R2 Configuration Manager](http://technet.microsoft.com/itpro/windows/deploy/deploy-windows-10-with-system-center-2012-r2-configuration-manager) +>**Note:**  Although the OOBE phase of setup is still run during a deployment with an automated deployment solution such as the [Microsoft Deployment Toolkit (MDT)](https://go.microsoft.com/fwlink/p/?LinkId=618117) or System Center Configuration Manager Operating System Deployment (OSD), it is automated by the settings supplied in the Deployment Wizard and task sequence. For more information see:
    +- [Deploy Windows 10 with the Microsoft Deployment Toolkit](http://technet.microsoft.com/itpro/windows/deploy/deploy-windows-10-with-the-microsoft-deployment-toolkit) +
    +- [Deploy Windows 10 with System Center 2012 R2 Configuration Manager](http://technet.microsoft.com/itpro/windows/deploy/deploy-windows-10-with-system-center-2012-r2-configuration-manager)   @@ -42,7 +41,7 @@ To ensure that an automated deployment is not stopped by this page, the page mus ## Scenario 2: Surface Pen pairing in OOBE -When you first take a Surface Pro 3, Surface Pro 4, Surface Book, or Surface Studio out of the package and start it up, the first-run experience of the factory image includes a prompt that asks you to pair the included Surface Pen to the device. This prompt is only provided by the factory image that ships with the device and is not included in other images used for deployment, such as the Windows Enterprise installation media downloaded from the Volume Licensing Service Center. Because pairing the Bluetooth Surface Pen outside of this experience requires that you enter the Control Panel or PC Settings and manually pair a Bluetooth device, you may want to have users or a technician use this prompt to perform the pairing operation. +When you first take a Surface Pro 3, Surface Pro 4, or Surface Book out of the package and start it up, the first-run experience of the factory image includes a prompt that asks you to pair the included Surface Pen to the device. This prompt is only provided by the factory image that ships with the device and is not included in other images used for deployment, such as the Windows Enterprise installation media downloaded from the Volume Licensing Service Center. Because pairing the Bluetooth Surface Pen outside of this experience requires that you enter the Control Panel or PC Settings and manually pair a Bluetooth device, you may want to have users or a technician use this prompt to perform the pairing operation. To provide the factory Surface Pen pairing experience in OOBE, you must copy four files from the factory Surface image into the reference image. You can copy these files into the reference environment before you capture the reference image, or you can add them later by using Deployment Image Servicing and Management (DISM) to mount the image. The four required files are: @@ -51,8 +50,7 @@ To provide the factory Surface Pen pairing experience in OOBE, you must copy fou - %windir%\\system32\\oobe\\info\\default\\1033\\PenError\_en-US.png - %windir%\\system32\\oobe\\info\\default\\1033\\PenSuccess\_en-US.png ->[!NOTE] ->You should copy the files from a factory image for the same model Surface device that you intend to deploy to. For example, you should use the files from a Surface Pro 3 to deploy to Surface Pro 3, and the files from Surface Book to deploy Surface Book, but you should not use the files from a Surface Pro 3 to deploy Surface Book or Surface Pro 4. +>**Note:**  You should copy the files from a factory image for the same model Surface device that you intend to deploy to. For example, you should use the files from a Surface Pro 3 to deploy to Surface Pro 3, and the files from Surface Book to deploy Surface Book, but you should not use the files from a Surface Pro 3 to deploy Surface Book or Surface Pro 4.   diff --git a/devices/surface/deploy-surface-app-with-windows-store-for-business.md b/devices/surface/deploy-surface-app-with-windows-store-for-business.md index 1ad577cc48..6183f55206 100644 --- a/devices/surface/deploy-surface-app-with-windows-store-for-business.md +++ b/devices/surface/deploy-surface-app-with-windows-store-for-business.md @@ -11,14 +11,6 @@ author: miladCA #Deploy Surface app with Windows Store for Business -**Applies to** -* Surface Pro 4 -* Surface Book -* Surface 3 - ->[!NOTE] ->The Surface app ships in Surface Studio. - The Surface app is a lightweight Windows Store app that provides control of many Surface-specific settings and options, including: * Enable or disable the Windows button on the Surface device @@ -33,7 +25,7 @@ The Surface app is a lightweight Windows Store app that provides control of many If your organization is preparing images that will be deployed to your Surface devices, you may want to include the Surface app (formerly called the Surface Hub) in your imaging and deployment process instead of requiring users of each individual device to download and install the app from the Windows Store or your Windows Store for Business. -##Surface app overview +####Surface app overview The Surface app is available as a free download from the [Windows Store](https://www.microsoft.com/store/apps/Surface/9WZDNCRFJB8P). Users can download and install it from the Windows Store, but if your organization uses Windows Store for Business instead, you will need to add it to your store’s inventory and possibly include the app as part of your Windows deployment process. These processes are discussed throughout this article. For more information about Windows Store for Business, see [Windows Store for Business](https://technet.microsoft.com/windows/store-for-business) in the Windows TechCenter. @@ -81,8 +73,7 @@ After you add an app to the Windows Store for Business account in Offline mode, 6. Click either the **Encoded license** or **Unencoded license** option. Use the Encoded license option with management tools like System Center Configuration Manager or when you use Windows Imaging and Configuration Designer (Windows ICD). Select the Unencoded license option when you use Deployment Image Servicing and Management (DISM) or deployment solutions based on imaging, including the Microsoft Deployment Toolkit (MDT). 7. Click **Generate** to generate and download the license for the app. Make sure you note the path of the license file because you’ll need that later in this article. ->[!NOTE] ->When you download an app for offline use, such as the Surface app, you may notice a section at the bottom of the page labeled **Required frameworks**. Your target computers must have the frameworks installed for the app to run, so you may need to repeat the download process for each of the required frameworks for your architecture (either x86 or x64) and also include them as part of your Windows deployment discussed later in this article. +>**Note:**  When you download an app for offline use, such as the Surface app, you may notice a section at the bottom of the page labeled **Required frameworks**. Your target computers must have the frameworks installed for the app to run, so you may need to repeat the download process for each of the required frameworks for your architecture (either x86 or x64) and also include them as part of your Windows deployment discussed later in this article. Figure 5 shows the required frameworks for the Surface app. @@ -90,15 +81,13 @@ Figure 5 shows the required frameworks for the Surface app. *Figure 5. Required frameworks for the Surface app* ->[!NOTE] ->The version numbers of the Surface app and required frameworks will change as the apps are updated. Check for the latest version of Surface app and each framework in Windows Store for Business. Always use the Surface app and recommended framework versions as provided by Windows Store for Business. Using outdated frameworks or the incorrect versions may result in errors or application crashes. +>**Note:**  The version numbers of the Surface app and required frameworks will change as the apps are updated. Check for the latest version of Surface app and each framework in Windows Store for Business. Always use the Surface app and recommended framework versions as provided by Windows Store for Business. Using outdated frameworks or the incorrect versions may result in errors or application crashes. To download the required frameworks for the Surface app, follow these steps: 1. Click the **Download** button under **Microsoft.VCLibs.140.00_14.0.23816.0_x64__8wekyb3d8bbwe**. This downloads the Microsoft.VCLibs.140.00_14.0.23816.0_x64__8wekyb3d8bbwe.Appx file to your specified folder. 2. Click the **Download** button under **Microsoft.NET.Native.Runtime.1.1_1.1.23406.0_x64__8wekyb3d8bbwe**. This downloads the Microsoft.NET.Native.Runtime.1.1_1.1.23406.0_x64__8wekyb3d8bbwe.Appx file to your specified folder. ->[!NOTE] ->Only the 64-bit (x64) version of each framework is required for Surface devices. Surface devices are native 64-bit UEFI devices and are not compatible with 32-bit (x86) versions of Windows that would require 32-bit frameworks. +>**Note:**  Only the 64-bit (x64) version of each framework is required for Surface devices. Surface devices are native 64-bit UEFI devices and are not compatible with 32-bit (x86) versions of Windows that would require 32-bit frameworks. ##Install Surface app on your computer with PowerShell The following procedure provisions the Surface app onto your computer and makes it available for any user accounts created on the computer afterwards. diff --git a/devices/surface/deploy-the-latest-firmware-and-drivers-for-surface-devices.md b/devices/surface/deploy-the-latest-firmware-and-drivers-for-surface-devices.md index 05a27098bb..8a5ff4b34e 100644 --- a/devices/surface/deploy-the-latest-firmware-and-drivers-for-surface-devices.md +++ b/devices/surface/deploy-the-latest-firmware-and-drivers-for-surface-devices.md @@ -28,34 +28,21 @@ Driver and firmware updates for Surface devices are released in one of two ways: Installation files for administrative tools, drivers for accessories, and updates for Windows are also available for some devices and are detailed here in this article. ->[!NOTE] ->To simplify the process of locating drivers for your device, downloads for Surface devices have been reorganized to separate pages for each model. Bookmark the Microsoft Download Center page for your device from the links provided on this page. Many of the filenames contain a placeholder denoted with *xxxxxx*, which identifies the current version number or date of the file. +>**Note:**  To simplify the process of locating drivers for your device, downloads for Surface devices have been reorganized to separate pages for each model. Bookmark the Microsoft Download Center page for your device from the links provided on this page. Many of the filenames contain a placeholder denoted with *xxxxxx*, which identifies the current version number or date of the file.   Recent additions to the downloads for Surface devices provide you with options to install Windows 10 on your Surface devices and update LTE devices with the latest Windows 10 drivers and firmware. +>**Note:**  A battery charge of 40% or greater is required before you install firmware to a Surface device. See [Microsoft Support article KB2909710](https://support.microsoft.com/en-us/kb/2909710) for more information. - ->[!NOTE] ->A battery charge of 40% or greater is required before you install firmware to a Surface device. See [Microsoft Support article KB2909710](https://go.microsoft.com/fwlink/p/?LinkId=618106) for more information. - - - -## Surface Studio - -Download the following updates for [Surface Studio from the Microsoft Download Center](https://www.microsoft.com/download/details.aspx?id=54311). - -* SurfaceStudio_Win10_xxxxxx.msi – Cumulative firmware and driver update package for Windows 10 - +  ## Surface Book Download the following updates [for Surface Book from the Microsoft Download Center](https://www.microsoft.com/download/details.aspx?id=49497). -- SurfaceBook_Win10_xxxxxx.msi – Cumulative firmware and driver update package for Windows 10 - -- SurfaceBook_Win10_xxxxxx.zip – Cumulative firmware and driver update package for Windows 10 +- SurfaceBook\_Win10\_xxxxxx.msi – Cumulative firmware and driver update package for Windows 10 - Wintab-xxxxx-64-bit.zip – Tablet driver update for all supported x64-based versions of Windows 8.1 @@ -64,9 +51,7 @@ Download the following updates [for Surface Book from the Microsoft Download Cen Download the following updates for [Surface Pro 4 from the Microsoft Download Center](https://www.microsoft.com/download/details.aspx?id=49498). -- SurfacePro4_Win10_xxxxxx.msi – Cumulative firmware and driver update package for Windows 10 - -- SurfacePro4_Win10_xxxxxx.zip – Cumulative firmware and driver update package for Windows 10 +- SurfacePro4\_Win10\_xxxxxx.msi – Cumulative firmware and driver update package for Windows 10 - Wintab-xxxxx-64-bit.zip – Tablet driver update for all supported x64-based versions of Windows 8.1 @@ -75,21 +60,25 @@ Download the following updates for [Surface Pro 4 from the Microsoft Download Ce Download the following updates [for Surface Pro 3 from the Microsoft Download Center](https://www.microsoft.com/download/details.aspx?id=38826). -- SurfacePro3_Win10_xxxxxx.msi – Cumulative firmware and driver update package for Windows 10 +- SurfacePro3\_Win10\_xxxxxx.msi – Cumulative firmware and driver update package for Windows 10 -- SurfacePro3_Win10_xxxxxx.zip – Cumulative firmware and driver update package for Windows 10 +- SurfacePro3\_Win10\_xxxxxx.zip – Cumulative firmware and driver update package for Windows 10 -- SurfacePro3_Win8x_xxxxxx.msi – Cumulative firmware and driver update package for Windows 8.1 Pro +- SurfacePro3\_xxxxxx.msi – Cumulative firmware and driver update package for Windows 8.1 Pro -- SurfacePro3_Win8x_xxxxxx.zip – Cumulative firmware and driver update package for Windows 8.1 Pro +- SurfacePro3\_xxxxxx.zip – Cumulative firmware and driver update package for Windows 8.1 Pro - Surface Firmware Tool.msi – Firmware tools for UEFI management +- Surface Ethernet Adapter.zip – x64 Ethernet adapter drivers + +- Surface Gigabit Ethernet Adapter.zip – x64 Ethernet adapter drivers + - Surface Pro 3 AssetTag.zip – UEFI Asset Tag management tool -- Surface Pro 3 KB2978002.zip – Update for Quick Note-Taking Experience feature in Windows 8.1 +- Surface Pro 3 Driver Set.ppkg – Deployment Asset Provisioning Package for Windows 10 -- Windows8.1-KB2969817-x64.msu – Fixes an issue that causes Surface devices to reboot twice after firmware updates are installed on all supported x64-based versions of Windows 8.1 +- Surface Pro 3 KB2978002.zip – Update for Quick Note-Taking Experience feature in Windows 8.1 - Wintab-xxxxx-64-bit.zip – Tablet driver update for all supported x64-based versions of Windows 8.1 @@ -98,15 +87,15 @@ Download the following updates [for Surface Pro 3 from the Microsoft Download Ce Download the following updates [for Surface 3 from the Microsoft Download Center](https://www.microsoft.com/download/details.aspx?id=49040). -- Surface3_WiFi_Win10_xxxxxx.msi – Cumulative firmware and driver update package for Windows 10 +- Surface3\_Win10\_xxxxxx.zip – Cumulative firmware and driver update package for Windows 10 -- Surface3_WiFi_Win10_xxxxxx.zip – Cumulative firmware and driver update package for Windows 10 +- Surface3\_Win8x\_xxxxxx.msi – Cumulative firmware and driver update package for Windows 8.1 Pro -- Surface3_WiFi_Win8x_xxxxxx.msi – Cumulative firmware and driver update package for Windows 8.1 Pro +- Surface3\_Win8x\_xxxxxx.zip – Cumulative firmware and driver update package for Windows 8.1 Pro -- Surface3_WiFi_Win8x_xxxxxx.zip – Cumulative firmware and driver update package for Windows 8.1 Pro +- Surface Ethernet Adapter.zip – x64 Ethernet adapter drivers -- Surface 3 AssetTag.zip – UEFI Asset Tag management tool +- Surface Gigabit Ethernet Adapter.zip – x64 Ethernet adapter drivers - Wintab-xxxxx-64-bit.zip – Tablet driver update for all supported x64-based versions of Windows 8.1 @@ -115,43 +104,49 @@ Download the following updates [for Surface 3 from the Microsoft Download Center Download the following updates [for AT&T 4G LTE versions of Surface 3 from the Microsoft Download Center](https://www.microsoft.com/download/details.aspx?id=49039). -- Surface3_4GLTE-ATT_Win10_xxxxxx.msi – Surface 3 LTE AT&T - Cumulative firmware and driver update for locked carrier dependent AT&T devices in the US, running Windows 10 +- Surface3\_US1\_Win10\_xxxxxx.msi – Surface 3 LTE AT&T - Cumulative firmware and driver update for locked carrier dependent AT&T devices in the US, running Windows 10 -- Surface3_4GLTE-ATT_Win10_xxxxxx.zip – Surface 3 LTE AT&T - Cumulative firmware and driver update for locked carrier dependent AT&T devices in the US, running Windows 10 +- Surface3\_US1\_Win10\_xxxxxx.zip – Surface 3 LTE AT&T - Cumulative firmware and driver update for locked carrier dependent AT&T devices in the US, running Windows 10 -- Surface3_4GLTE-ATT_Win8x_xxxxxx.msi – Surface 3 LTE AT&T - Cumulative firmware and driver update for locked carrier dependent AT&T devices in the US, running Windows 8.1 Pro +- Surface3\_US1\_Win8x\_xxxxxx.msi – Surface 3 LTE AT&T - Cumulative firmware and driver update for locked carrier dependent AT&T devices in the US, running Windows 8.1 Pro -- Surface3_4GLTE-ATT_Win8x_xxxxxx.zip – Surface 3 LTE AT&T - Cumulative firmware and driver update for locked carrier dependent AT&T devices in the US, running Windows 8.1 Pro +- Surface3\_US1\_Win8x\_xxxxxx.zip – Surface 3 LTE AT&T - Cumulative firmware and driver update for locked carrier dependent AT&T devices in the US, running Windows 8.1 Pro -- Surface 3 AssetTag.zip – UEFI Asset Tag management tool +- Surface Ethernet Adapter.zip – x64 Ethernet adapter drivers + +- Surface Gigabit Ethernet Adapter.zip – x64 Ethernet adapter drivers - Wintab-xxxxx-64-bit.zip – Tablet driver update for all supported x64-based versions of Windows 8.1 Download the following updates [for non-AT&T 4G LTE versions of Surface 3 from the Microsoft Download Center](https://www.microsoft.com/download/details.aspx?id=49037). -- Surface3_4GLTE-NorthAmericaUnlocked_Win10_xxxxxx.msi – Surface 3 LTE North America - Cumulative firmware and driver update for unlocked carrier independent devices in the US, running Windows 10 +- Surface3\_NAG\_Win10\_xxxxxx.msi – Surface 3 LTE North America - Cumulative firmware and driver update for unlocked carrier independent devices in the US, running Windows 10 -- Surface3_4GLTE-NorthAmericaUnlocked_Win10_xxxxxx.zip – Surface 3 LTE North America - Cumulative firmware and driver update for unlocked carrier independent devices in the US, running Windows 10 +- Surface3\_NAG\_Win10\_xxxxxx.zip – Surface 3 LTE North America - Cumulative firmware and driver update for unlocked carrier independent devices in the US, running Windows 10 -- Surface3_4GLTE-NorthAmericaUnlocked_Win8x_xxxxxx.msi – Surface 3 LTE North America - Cumulative firmware and driver update for unlocked carrier independent devices in the US, running Windows 8.1 Pro +- Surface3\_NAG\_Win8x\_xxxxxx.msi – Surface 3 LTE North America - Cumulative firmware and driver update for unlocked carrier independent devices in the US, running Windows 8.1 Pro -- Surface3_4GLTE-NorthAmericaUnlocked_Win8x_xxxxxx.zip – Surface 3 LTE North America - Cumulative firmware and driver update for unlocked carrier independent devices in the US, running Windows 8.1 Pro +- Surface3\_NAG\_Win8x\_xxxxxx.zip – Surface 3 LTE North America - Cumulative firmware and driver update for unlocked carrier independent devices in the US, running Windows 8.1 Pro -- Surface 3 AssetTag.zip – UEFI Asset Tag management tool +- Surface Ethernet Adapter.zip – x64 Ethernet adapter drivers + +- Surface Gigabit Ethernet Adapter.zip – x64 Ethernet adapter drivers - Wintab-xxxxx-64-bit.zip – Tablet driver update for all supported x64-based versions of Windows 8.1 Download the following updates [for 4G LTE Surface 3 versions for regions outside North America from the Microsoft Download Center](https://www.microsoft.com/download/details.aspx?id=49041). -- Surface3_4GLTE-RestOfTheWorld_Win10_xxxxxx.msi – Surface 3 LTE rest of the world cumulative - Cumulative firmware and driver update for carrier independent devices outside of the US, as well as for Japan, running Windows 10 +- Surface3\_ROW\_Win10\_xxxxxx.msi – Surface 3 LTE rest of the world cumulative - Cumulative firmware and driver update for carrier independent devices outside of the US, as well as for Japan, running Windows 10 -- Surface3_4GLTE-RestOfTheWorld_Win10_xxxxxx.zip – Surface 3 LTE rest of the world cumulative - Cumulative firmware and driver update for carrier independent devices outside of the US, as well as for Japan, running Windows 10 +- Surface3\_ROW\_Win10\_xxxxxx.zip – Surface 3 LTE rest of the world cumulative - Cumulative firmware and driver update for carrier independent devices outside of the US, as well as for Japan, running Windows 10 -- Surface3_4GLTE-RestOfTheWorld_Win8x_xxxxxx.msi – Surface 3 LTE rest of the world cumulative - Cumulative firmware and driver update for carrier independent devices outside of the US, as well as for Japan, running Windows 8.1 Pro +- Surface3\_ROW\_Win8x\_xxxxxx.msi – Surface 3 LTE rest of the world cumulative - Cumulative firmware and driver update for carrier independent devices outside of the US, as well as for Japan, running Windows 8.1 Pro -- Surface3_4GLTE-RestOfTheWorld_Win8x_xxxxxx.zip – Surface 3 LTE rest of the world cumulative - Cumulative firmware and driver update for carrier independent devices outside of the US, as well as for Japan, running Windows 8.1 Pro +- Surface3\_ROW\_Win8x\_xxxxxx.zip – Surface 3 LTE rest of the world cumulative - Cumulative firmware and driver update for carrier independent devices outside of the US, as well as for Japan, running Windows 8.1 Pro -- Surface 3 AssetTag.zip – UEFI Asset Tag management tool +- Surface Ethernet Adapter.zip – x64 Ethernet adapter drivers + +- Surface Gigabit Ethernet Adapter.zip – x64 Ethernet adapter drivers - Wintab-xxxxx-64-bit.zip – Tablet driver update for all supported x64-based versions of Windows 8.1 diff --git a/devices/surface/deploy-windows-10-to-surface-devices-with-mdt.md b/devices/surface/deploy-windows-10-to-surface-devices-with-mdt.md index f3393feea4..f16b7e5abd 100644 --- a/devices/surface/deploy-windows-10-to-surface-devices-with-mdt.md +++ b/devices/surface/deploy-windows-10-to-surface-devices-with-mdt.md @@ -11,8 +11,7 @@ author: Scottmca # Deploy Windows 10 to Surface devices with Microsoft Deployment Toolkit -**Applies to** -- Surface Studio +#### Applies to * Surface Pro 4 * Surface Book * Surface 3 @@ -48,19 +47,13 @@ You can download and find out more about the Windows ADK at [Download the Window Before you can perform a deployment with MDT, you must first supply a set of operating system installation files and an operating system image. These files and image can be found on the physical installation media (DVD) for Windows 10. You can also find these files in the disk image (ISO file) for Windows 10, which you can download from the [Volume Licensing Service Center (VLSC)](https://www.microsoft.com/Licensing/servicecenter/default.aspx). - ->[!NOTE] ->The installation media generated from the [Get Windows 10](https://www.microsoft.com/en-us/software-download/windows10/) page differs from physical media or media downloaded from the VLSC, in that it contains an image file in Electronic Software Download (ESD) format rather than in the Windows Imaging (WIM) format. Installation media with an image file in WIM format is required for use with MDT. Installation media from the Get Windows 10 page cannot be used for Windows deployment with MDT. - +>**Note:**  The installation media generated from the [Get Windows 10](https://www.microsoft.com/software-download/windows10/) page differs from physical media or media downloaded from the VLSC, in that it contains an image file in Electronic Software Download (ESD) format rather than in the Windows Imaging (WIM) format. Installation media with an image file in WIM format is required for use with MDT. Installation media from the Get Windows 10 page cannot be used for Windows deployment with MDT. #### Windows Server Although MDT can be installed on a Windows client, to take full advantage of Windows Deployment Services’ ability to network boot, a full Windows Server environment is recommended. To provide network boot for UEFI devices like Surface with WDS, you will need Windows Server 2008 R2 or later. - ->[!NOTE] ->To evaluate the deployment process for Surface devices or to test the deployment process described in this article with the upcoming release of Windows Server 2016, you can download evaluation and preview versions from the [TechNet Evaluation Center](https://www.microsoft.com/en-us/evalcenter). - +>**Note:**  To evaluate the deployment process for Surface devices or to test the deployment process described in this article with the upcoming release of Windows Server 2016, you can download evaluation and preview versions from the [TechNet Evaluation Center](https://www.microsoft.com/evalcenter). #### Windows Deployment Services @@ -70,15 +63,11 @@ Windows Deployment Services (WDS) is leveraged to facilitate network boot capabi The process of creating a reference image should always be performed in a virtual environment. When you use a virtual machine as the platform to build your reference image, you eliminate the need for installation of additional drivers. The drivers for a Hyper-V virtual machine are included by default in the factory Windows 10 image. When you avoid the installation of additional drivers – especially complex drivers that include application components like control panel applications – you ensure that the image created by your reference image process will be as universally compatible as possible. ->[!NOTE] ->A Generation 1 virtual machine is recommended for the preparation of a reference image in a Hyper-V virtual environment. +>**Note:**  A Generation 1 virtual machine is recommended for the preparation of a reference image in a Hyper-V virtual environment. Because customizations are performed by MDT at the time of deployment, the goal of reference image creation is not to perform customization but to increase performance during deployment by reducing the number of actions that need to occur on each deployed device. The biggest action that can slow down an MDT deployment is the installation of Windows updates. When MDT performs this step during the deployment process, it downloads the updates on each deployed device and installs them. By installing Windows updates in your reference image, the updates are already installed when the image is deployed to the device and the MDT update process only needs to install updates that are new since the image was created or are applicable to products other than Windows (for example, Microsoft Office updates). - ->[!NOTE] ->Hyper-V is available not only on Windows Server, but also on Windows clients, including Professional and Enterprise editions of Windows 8, Windows 8.1, and Windows 10. Find out more at [Client Hyper-V on Windows 10](https://msdn.microsoft.com/virtualization/hyperv_on_windows/windows_welcome) and [Client Hyper-V on Windows 8 and Windows 8.1](https://technet.microsoft.com/library/hh857623) in the TechNet Library. Hyper-V is also available as a standalone product, Microsoft Hyper-V Server, at no cost. You can download [Microsoft Hyper-V Server 2012 R2](https://www.microsoft.com/en-us/evalcenter/evaluate-hyper-v-server-2012-r2) or [Microsoft Hyper-V Server 2016 Technical Preview](https://www.microsoft.com/en-us/evalcenter/evaluate-hyper-v-server-technical-preview) from the TechNet Evaluation Center. - +>**Note:**  Hyper-V is available not only on Windows Server, but also on Windows clients, including Professional and Enterprise editions of Windows 8, Windows 8.1, and Windows 10. Find out more at [Client Hyper-V on Windows 10](https://msdn.microsoft.com/virtualization/hyperv_on_windows/windows_welcome) and [Client Hyper-V on Windows 8 and Windows 8.1](https://technet.microsoft.com/library/hh857623) in the TechNet Library. Hyper-V is also available as a standalone product, Microsoft Hyper-V Server, at no cost. You can download [Microsoft Hyper-V Server 2012 R2](https://www.microsoft.com/evalcenter/evaluate-hyper-v-server-2012-r2) or [Microsoft Hyper-V Server 2016 Technical Preview](https://www.microsoft.com/evalcenter/evaluate-hyper-v-server-technical-preview) from the TechNet Evaluation Center. #### Surface firmware and drivers @@ -89,15 +78,13 @@ When you browse to the specific Microsoft Download Center page for your device, In addition to the driver files that help Windows communicate with the hardware components of the Surface device, the .zip file you download will also contain firmware updates. These firmware updates will update the instructions used by the device hardware to communicate between components and Windows. The firmware of Surface device components is updated by installation of specific driver files and thus is installed along with the other drivers during deployment. The firmware of an out-of-date Surface device is thus updated when the device reboots during and after the Windows deployment process. ->[!NOTE] ->Beginning in Windows 10, the drivers for Surface devices are included in the Windows Preinstallation Environment (WinPE). In earlier versions of Windows, specific drivers (like network drivers) had to be imported and configured in MDT for use in WinPE to successfully deploy to Surface devices. +>**Note:**  Beginning in Windows 10, the drivers for Surface devices are included in the Windows Preinstallation Environment (WinPE). In earlier versions of Windows, specific drivers (like network drivers) had to be imported and configured in MDT for use in WinPE to successfully deploy to Surface devices. #### Application installation files In addition to the drivers that are used by Windows to communicate with the Surface device’s hardware and components, you will also need to provide the installation files for any applications that you want to install on your deployed Surface devices. To automate the deployment of an application, you will also need to determine the command-line instructions for that application to perform a silent installation. In this article, the Surface app and Microsoft Office 365 will be installed as examples of application installation. The application installation process can be used with any application with installation files that can be launched from command line. ->[!NOTE] ->If the application files for your application are stored on your organization’s network and will be accessible from your Surface devices during the deployment process, you can deploy that application directly from that network location. To use installation files from a network location, use the **Install Application Without Source Files or Elsewhere on the Network** option in the MDT New Application Wizard, which is described in the [Import applications](#import-applications) section later in this article. +>**Note:**  If the application files for your application are stored on your organization’s network and will be accessible from your Surface devices during the deployment process, you can deploy that application directly from that network location. To use installation files from a network location, use the **Install Application Without Source Files or Elsewhere on the Network** option in the MDT New Application Wizard, which is described in the [Import applications](#import-applications) section later in this article. #### Microsoft Surface Deployment Accelerator @@ -109,8 +96,7 @@ Before you can configure the deployment environment with Windows images, drivers To boot from the network with either your reference virtual machines or your Surface devices, your deployment environment must include a Windows Server environment. The Windows Server environment is required to install WDS and the WDS PXE server. Without PXE support, you will be required to create physical boot media, such as a USB stick to perform your deployment – MDT and Windows ADK will still be required, but Windows Server is not required. Both MDT and Windows ADK can be installed on a Windows client and perform a Windows deployment. ->[!NOTE] ->To download deployment tools directly to Windows Server, you must disable [Internet Explorer Enhanced Security Configuration](https://technet.microsoft.com/library/dd883248). On Windows Server 2012 R2, this can be performed directly through the **Server Manager** option on the **Local Server** tab. In the **Properties** section, **IE Enhanced Security Configuration** can be found on the right side. You may also need to enable the **File Download** option for the **Internet** zone through the **Security** tab of **Internet Options**. +>**Note:**  To download deployment tools directly to Windows Server, you must disable [Internet Explorer Enhanced Security Configuration](https://technet.microsoft.com/library/dd883248). On Windows Server 2012 R2, this can be performed directly through the **Server Manager** option on the **Local Server** tab. In the **Properties** section, **IE Enhanced Security Configuration** can be found on the right side. You may also need to enable the **File Download** option for the **Internet** zone through the **Security** tab of **Internet Options**. #### Install Windows Deployment Services @@ -126,20 +112,17 @@ After the WDS role is installed, you need to configure WDS. You can begin the co *Figure 2. Configure PXE response for Windows Deployment Services* ->[!NOTE] ->Before you configure WDS make sure you have a local NTFS volume that is not your system drive (C:) available for use with WDS. This volume is used to store WDS boot images, deployment images, and configuration. +>**Note:**  Before you configure WDS make sure you have a local NTFS volume that is not your system drive (C:) available for use with WDS. This volume is used to store WDS boot images, deployment images, and configuration. Using the Windows Deployment Services Configuration Wizard, configure WDS to fit the needs of your organization. You can find detailed instructions for the installation and configuration of WDS at [Windows Deployment Services Getting Started Guide for Windows Server 2012](https://technet.microsoft.com/library/jj648426). On the **PXE Server Initial Settings** page, be sure to configure WDS so that it will respond to your Surface devices when they attempt to boot from the network. If you have already installed WDS or need to change your PXE server response settings, you can do so on the **PXE Response** tab of the **Properties** of your server in the Windows Deployment Services Management Console. ->[!NOTE] ->You will add boot images to WDS when you update your boot images in MDT. You do not need to add boot images or Windows images to WDS when you configure the role. +>**Note:**  You will add boot images to WDS when you update your boot images in MDT. You do not need to add boot images or Windows images to WDS when you configure the role. #### Install Windows Assessment and Deployment Kit To install Windows ADK, run the Adksetup.exe file that you downloaded from [Download the Windows ADK](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit#adkwin10). Windows ADK must be installed before MDT. You should always download and use the most recent version of Windows ADK. A new version is usually released corresponding with each new version of Windows. ->[!NOTE] ->You can also use the Adksetup.exe file to download the Windows ADK installation files locally for use on other devices. +>**Note:**  You can also use the Adksetup.exe file to download the Windows ADK installation files locally for use on other devices. When you get to the **Select the features you want to install** page, you only need to select the **Deployment Tools** and **Windows Preinstallation Environment (Windows PE)** check boxes to deploy Windows 10 using MDT, as shown in Figure 3. @@ -187,16 +170,13 @@ To create the deployment share, follow these steps: * **Path** – Specify a local folder where the deployment share will reside, and then click **Next**. - >[!NOTE] - >Like the WDS remote installation folder, it is recommended that you put this folder on an NTFS volume that is not your system volume. + >**Note:**  Like the WDS remote installation folder, it is recommended that you put this folder on an NTFS volume that is not your system volume. * **Share** – Specify a name for the network share under which the local folder specified on the **Path** page will be shared, and then click **Next**. - >[!NOTE] - >The share name cannot contain spaces. + >**Note:**  The share name cannot contain spaces. - >[!NOTE] - >You can use a Dollar Sign (**$**) to hide your network share so that it will not be displayed when users browse the available network shares on the server in File Explorer. + >**Note:**  You can use a Dollar Sign (**$**) to hide your network share so that it will not be displayed when users browse the available network shares on the server in File Explorer. * **Descriptive Name** – Enter a descriptive name for the network share (this descriptive name can contain spaces), and then click **Next**. The descriptive name will be the name of the folder as it appears in the Deployment Workbench. * **Options** – You can accept the default options on this page. Click **Next**. @@ -209,8 +189,7 @@ To create the deployment share, follow these steps: To secure the deployment share and prevent unauthorized access to the deployment resources, you can create a local user on the deployment share host and configure permissions for that user to have read-only access to the deployment share only. It is especially important to secure access to the deployment share if you intend to automate the logon to the deployment share during the deployment boot process. By automating the logon to the deployment share during the boot of deployment media, the credentials for that logon are stored in plaintext in the bootstrap.ini file on the boot media. ->[!NOTE] ->If you intend to capture images (such as the reference image) with this user, the user must also have write permission on the Captures folder in the MDT deployment share. +>**Note:**  If you intend to capture images (such as the reference image) with this user, the user must also have write permission on the Captures folder in the MDT deployment share. You now have an empty deployment share that is ready for you to add the resources that will be required for reference image creation and deployment to Surface devices. @@ -218,8 +197,7 @@ You now have an empty deployment share that is ready for you to add the resource The first resources that are required to perform a deployment of Windows are the installation files from Windows 10 installation media. Even if you have an already prepared reference image, you still need to supply the unaltered installation files from your installation media. The source of these files can be a physical disk, or it can be an ISO file like the download from the Volume Licensing Service Center (VLSC). ->[!NOTE] ->A 64-bit operating system is required for compatibility with Surface Studio, Surface Pro 4, Surface Book, Surface Pro 3, and Surface 3. +>**Note:**  A 64-bit operating system is required for compatibility with Surface Pro 4, Surface Book, Surface Pro 3, and Surface 3. To import Windows 10 installation files, follow these steps: @@ -256,8 +234,7 @@ Now that you’ve imported the installation files from the installation media, y As described in the [Deployment tools](#deployment-tools) section of this article, the goal of creating a reference image is to keep the Windows environment as simple as possible while performing tasks that would be common to all devices being deployed. You should now have a basic MDT deployment share configured with default options and a set of unaltered, factory installation files for Windows 10. This simple configuration is perfect for reference image creation because the deployment share contains no applications or drivers to interfere with the process. ->[!NOTE] ->For some organizations keeping a simple deployment share without applications or drivers is the simplest solution for creation of reference images. You can easily connect to more than one deployment share from a single Deployment Workbench and copy images from a simple, reference-image-only deployment share to a production deployment share complete with drivers and applications. +>**Note:**  For some organizations keeping a simple deployment share without applications or drivers is the simplest solution for creation of reference images. You can easily connect to more than one deployment share from a single Deployment Workbench and copy images from a simple, reference-image-only deployment share to a production deployment share complete with drivers and applications. To create the reference image task sequence, follow these steps: @@ -269,15 +246,13 @@ To create the reference image task sequence, follow these steps: 2. The New Task Sequence Wizard presents a series of steps, as follows: * **General Settings** – Enter an identifier for the reference image task sequence in the **Task Sequence ID** field, a name for the reference image task sequence in the **Task Sequence Name** field, and any comments for the reference image task sequence in the **Task Sequence Comments** field, and then click **Next**. - >[!NOTE] - >The **Task Sequence ID** field cannot contain spaces and can be a maximum of 16 characters. + >**Note:**  The **Task Sequence ID** field cannot contain spaces and can be a maximum of 16 characters. * **Select Template** – Select **Standard Client Task Sequence** from the drop-down menu, and then click **Next**. * **Select OS** – Navigate to and select the Windows 10 image you imported with the Windows 10 installation files, and then click **Next**. * **Specify Product Key** – Click **Do Not Specify a Product Key at This Time**, and then click **Next**. * **OS Settings** – Enter a name, organization, and home page URL in the **Full Name**, **Organization**, and **Internet Explorer Home Page** fields, and then click **Next**. * **Admin Password** – Click **Use the Specified Local Administrator Password**, enter a password in the provided field, and then click **Next**. - >[!NOTE] - >During creation of a reference image, any specified Administrator password will be automatically removed when the image is prepared for capture with Sysprep. During reference image creation, a password is not necessary, but is recommended to remain in line with best practices for production deployment environments. + >**Note:**  During creation of a reference image, any specified Administrator password will be automatically removed when the image is prepared for capture with Sysprep. During reference image creation, a password is not necessary, but is recommended to remain in line with best practices for production deployment environments. * **Summary** – Review the specified configuration on this page before you click **Next** to begin creation of the task sequence. * **Progress** – While the task sequence is created, a progress bar is displayed on this page. * **Confirmation** – When the task sequence creation completes, the success of the process is displayed on this page. Click **Finish** to complete the New Task Sequence Wizard. @@ -307,8 +282,7 @@ To update the MDT boot media, follow these steps: 2. Use the Update Deployment Share Wizard to create boot images with the following process: * **Options** – Click **Completely Regenerate the Boot Images**, and then click **Next**. - >[!NOTE] - >Because this is the first time the newly created deployment share has been updated, new boot images will be generated regardless of which option you select on the **Options** page. + >**Note:**  Because this is the first time the newly created deployment share has been updated, new boot images will be generated regardless of which option you select on the **Options** page. * **Summary** – Review the specified options on this page before you click **Next** to begin generation of boot images. * **Progress** – While the boot images are being generated, a progress bar is displayed on this page. * **Confirmation** – When the boot images have been generated, the success of the process is displayed on this page. Click **Finish** to complete the Update Deployment Share Wizard. @@ -345,20 +319,17 @@ To import the MDT boot media into WDS for PXE boot, follow these steps: * **Summary** – Review your selections to import a boot image into WDS, and then click **Next**. * **Task Progress** – A progress bar is displayed as the selected image file is copied into the WDS remote installation folder. Click **Finish** when the task is complete to close the Add Image Wizard. ->[!NOTE] ->Only the 32-bit boot image, LiteTouchPE_x86.wim, is required to boot from BIOS devices, including Generation 1 Hyper-V virtual machines like the reference virtual machine. +>**Note:**  Only the 32-bit boot image, LiteTouchPE_x86.wim, is required to boot from BIOS devices, including Generation 1 Hyper-V virtual machines like the reference virtual machine. If your WDS configuration is properly set up to respond to PXE clients, you should now be able to boot from the network with any device with a network adapter properly configured for network boot (PXE). ->[!NOTE] ->If your WDS server resides on the same server as DHCP or in a different subnet than the devices you are attempting to boot, additional configuration may be required. For more information, see [Managing Network Boot Programs](https://technet.microsoft.com/library/cc732351). +>**Note:**  If your WDS server resides on the same server as DHCP or in a different subnet than the devices you are attempting to boot, additional configuration may be required. For more information, see [Managing Network Boot Programs](https://technet.microsoft.com/library/cc732351). ### Deploy and capture a reference image Your deployment environment is now set up to create a reference image for Windows 10 complete with Windows Updates. ->[!NOTE] ->You cannot install version updates (such as Windows 10, Version 1511) in a reference image. To create a reference image with a new version of Windows, you must use installation files from that version of Windows. When you install a version update in Windows, it effectively performs an upgrade to a new version of Windows, and upgraded installations of Windows cannot be prepared for deployment with Sysprep.

    +>**Note:**  You cannot install version updates (such as Windows 10, Version 1511) in a reference image. To create a reference image with a new version of Windows, you must use installation files from that version of Windows. When you install a version update in Windows, it effectively performs an upgrade to a new version of Windows, and upgraded installations of Windows cannot be prepared for deployment with Sysprep.

    By using a fully automated task sequence in an MDT deployment share dedicated to reference image creation, you can greatly reduce the time and effort required to create new reference images and it is the best way to ensure that your organization is ready for feature updates and new versions of Windows 10. You can now boot from the network with a virtual machine to run the prepared task sequence and generate a reference image. When you prepare your virtual machine in Hyper-V for reference image creation, consider the following: @@ -405,8 +376,7 @@ As the task sequence processes the deployment, it will automatically perform the * Reboot into WinPE * Capture an image of the Windows 10 environment and store it in the Captures folder in the MDT deployment share ->[!NOTE] ->The Windows Update process can take some time to complete as it searches the Internet for updates, downloads those updates, and then installs them. By performing this process now, in the reference environment, you eliminate the need to perform these tasks on each deployed device and significantly reduce the amount of time and bandwidth required to perform your deployment. +>**Note:**  The Windows Update process can take some time to complete as it searches the Internet for updates, downloads those updates, and then installs them. By performing this process now, in the reference environment, you eliminate the need to perform these tasks on each deployed device and significantly reduce the amount of time and bandwidth required to perform your deployment. When the task sequence completes, your virtual machine will be off and a new reference image complete with updates will be ready in your MDT deployment share for you to import it and prepare your deployment environment for deployment to Surface devices. @@ -431,8 +401,7 @@ To import the reference image for deployment, use the following steps: * **Confirmation** – When the import process completes, the success of the process is displayed on this page. Click **Finish** to complete the Import Operating System Wizard. 3. Expand the folder in which you imported the image to verify that the import completed successfully. ->[!NOTE] ->You can import the reference image into the same deployment share that you used to create your reference image, or you could import the reference image into a new deployment share for deployment to your Surface devices. If you chose to create a new deployment share for deployment of your reference image, remember that you still need to import a full set of installation files from installation media. +>**Note:**  You can import the reference image into the same deployment share that you used to create your reference image, or you could import the reference image into a new deployment share for deployment to your Surface devices. If you chose to create a new deployment share for deployment of your reference image, remember that you still need to import a full set of installation files from installation media. Now that your updated reference image is imported, it is time to prepare your deployment environment for deployment to Surface devices complete with drivers, applications, and automation. @@ -547,8 +516,7 @@ To create the deployment task sequence, follow these steps: 1. In the Deployment Workbench, under your Deployment Share, right-click the **Task Sequences** folder, and then click **New Task Sequence** to start the New Task Sequence Wizard. 2. Use these steps to create the deployment task sequence with the New Task Sequence Wizard: * **General Settings** – Enter an identifier for the deployment task sequence in the **Task Sequence ID** field, a name for the deployment task sequence in the **Task Sequence Name** field, and any comments for the deployment task sequence in the **Task Sequence Comments** field, then click **Next**. - >[!NOTE] - >The **Task Sequence ID** field cannot contain spaces and can be a maximum of 16 characters. + >**Note:**  The **Task Sequence ID** field cannot contain spaces and can be a maximum of 16 characters. * **Select Template** – Click **Standard Client Task Sequence** from the drop-down menu, and then click **Next**. * **Select OS** – Navigate to and select the reference image that you imported, and then click **Next**. * **Specify Product Key** – Select the product key entry that fits your organization's licensing system. The **Do Not Specify a Product Key at This Time** option can be used for systems that will be activated via Key Management Services (KMS) or Active Directory Based Activation (ADBA). A product key can be specified specifically if your organization uses Multiple Activation Keys (MAK). Click **Next**. @@ -585,7 +553,7 @@ After the task sequence is created it can be modified for increased automation, ![Configure a new Set Task Sequence Variable step in the deployment task sequence](images\surface-deploymdt-fig22.png "Configure a new Set Task Sequence Variable step in the deployment task sequence") - *Figure 22. Configure a new Set Task Sequence Variable step in the deployment task sequence* + Figure 22. Configure a new Set Task Sequence Variable step in the deployment task sequence 15. Select the **Inject Drivers** step, the next step in the task sequence. 16. On the **Properties** tab of the **Inject Drivers** step (as shown in Figure 23), configure the following options: @@ -759,15 +727,13 @@ To import the updated MDT boot media into WDS for PXE boot, follow these steps: * **Summary** – Review your selections to import a boot image into WDS, and then click **Next**. * **Task Progress** – A progress bar is displayed as the selected image file is copied into the WDS remote installation folder. Click **Finish** when the task is complete to close the Add Image Wizard. ->[!NOTE] ->Although it is a best practice to replace and update the boot images in WDS whenever the MDT deployment share is updated, for deployment to Surface devices the 32-bit boot image, LiteTouchPE_x86.wim, is not required. Only the 64-bit boot image is required for 64-bit UEFI devices. +>**Note:**  Although it is a best practice to replace and update the boot images in WDS whenever the MDT deployment share is updated, for deployment to Surface devices the 32-bit boot image, LiteTouchPE_x86.wim, is not required. Only the 64-bit boot image is required for 64-bit UEFI devices. ### Deploy Windows to Surface With all of the automation provided by the deployment share rules and task sequence, performing the deployment on each Surface device becomes as easy as a single touch. ->[!NOTE] ->For the deployment to require only a single touch, the Surface devices must be connected to a keyboard, connected to the network with a Microsoft Surface USB Ethernet Adapter or Surface Dock, and configured with PXE boot as the first boot option, as shown in Figure 25. +>**Note:**  For the deployment to require only a single touch, the Surface devices must be connected to a keyboard, connected to the network with a Microsoft Surface USB Ethernet Adapter or Surface Dock, and configured with PXE boot as the first boot option, as shown in Figure 25. ![Set boot priority for PXE boot](images\surface-deploymdt-fig25.png "Set boot priority for PXE boot") @@ -784,8 +750,7 @@ On a properly configured Surface device, simply turn on the device and press Ent * Windows Update will run, installing any new Windows Updates or updates for installed applications, like Microsoft Office * The task sequence will complete silently and log out of the device ->[!NOTE] ->For Surface devices not configured to boot to the network as the first boot option, you can hold Volume Down and press Power to boot the system immediately to a USB or network device. +>**Note:**  For Surface devices not configured to boot to the network as the first boot option, you can hold Volume Down and press Power to boot the system immediately to a USB or network device. The resulting configuration is a Surface device that is logged out and ready for an end user to enter their credentials, log on, and get right to work. The applications and drivers they need are already installed and up to date. diff --git a/devices/surface/enroll-and-configure-surface-devices-with-semm.md b/devices/surface/enroll-and-configure-surface-devices-with-semm.md index 50ecdc81a9..1140eb46c7 100644 --- a/devices/surface/enroll-and-configure-surface-devices-with-semm.md +++ b/devices/surface/enroll-and-configure-surface-devices-with-semm.md @@ -19,8 +19,7 @@ For a more high-level overview of SEMM, see [Microsoft Surface Enterprise Manage The tool used to create SEMM packages is Microsoft Surface UEFI Configurator. You can download Microsoft Surface UEFI Configurator from the [Surface Tools for IT](https://www.microsoft.com/download/details.aspx?id=46703) page in the Microsoft Download Center. Run the Microsoft Surface UEFI Configurator Windows Installer (.msi) file to start the installation of the tool. When the installer completes, find Microsoft Surface UEFI Configurator in the All Apps section of your Start menu. ->[!NOTE] ->Microsoft Surface UEFI Configurator is supported only on Windows 10. +>**Note**:  Microsoft Surface UEFI Configurator is supported only on Windows 10. ## Create a Surface UEFI configuration package @@ -68,8 +67,7 @@ To create a Surface UEFI configuration package, follow these steps: 13. In the **Save As** dialog box, specify a name for the Surface UEFI configuration package, browse to the location where you would like to save the file, and then click **Save**. 14. When the package is created and saved, the **Successful** page is displayed. ->[!NOTE] ->Record the certificate thumbprint characters that are displayed on this page, as shown in Figure 6. You will need these characters to confirm enrollment of new Surface devices in SEMM. Click **End** to complete package creation and close Microsoft Surface UEFI Configurator. +>**Note**:  Record the certificate thumbprint characters that are displayed on this page, as shown in Figure 6. You will need these characters to confirm enrollment of new Surface devices in SEMM. Click **End** to complete package creation and close Microsoft Surface UEFI Configurator. ![Display of certificate thumbprint characters](images\surface-semm-enroll-fig6.png "Display of certificate thumbprint characters") @@ -77,8 +75,7 @@ To create a Surface UEFI configuration package, follow these steps: Now that you have created your Surface UEFI configuration package, you can enroll or configure Surface devices. ->[!NOTE] ->When a Surface UEFI configuration package is created, a log file is created on the desktop with details of the configuration package settings and options. +>**Note**:  When a Surface UEFI configuration package is created, a log file is created on the desktop with details of the configuration package settings and options. ## Enroll a Surface device in SEMM When the Surface UEFI configuration package is executed, the SEMM certificate and Surface UEFI configuration files are staged in the firmware storage of the Surface device. When the Surface device reboots, Surface UEFI processes these files and begins the process of applying the Surface UEFI configuration or enrolling the Surface device in SEMM, as shown in Figure 7. diff --git a/devices/surface/ethernet-adapters-and-surface-device-deployment.md b/devices/surface/ethernet-adapters-and-surface-device-deployment.md index 3a5739d950..78b995935a 100644 --- a/devices/surface/ethernet-adapters-and-surface-device-deployment.md +++ b/devices/surface/ethernet-adapters-and-surface-device-deployment.md @@ -55,8 +55,7 @@ To boot a Surface device from an alternative boot device, follow these steps: 3. Press and release the **Power** button. 4. After the system begins to boot from the USB stick or Ethernet adapter, release the **Volume Down** button. ->[!NOTE] ->In addition to an Ethernet adapter, a keyboard must also be connected to the Surface device to enter the preinstallation environment and navigate the deployment wizard. +>**Note:**  In addition to an Ethernet adapter, a keyboard must also be connected to the Surface device to enter the preinstallation environment and navigate the deployment wizard.   For Windows 10, version 1511 and later – including the Windows Assessment and Deployment Kit (Windows ADK) for Windows 10, version 1511 – the drivers for Microsoft Surface Ethernet Adapters are present by default. If you are using a deployment solution that uses Windows Preinstallation Environment (WinPE), like the Microsoft Deployment Toolkit, and booting from the network with PXE, ensure that your deployment solution is using the latest version of the Windows ADK. diff --git a/devices/surface/index.md b/devices/surface/index.md index 7a352fb536..3bd0c700bd 100644 --- a/devices/surface/index.md +++ b/devices/surface/index.md @@ -33,9 +33,7 @@ For more information on planning for, deploying, and managing Surface devices in | [Change history for Surface documentation](change-history-for-surface.md) | This topic lists new and updated topics in the Surface documentation library. | -## Learn more -[Certifying Surface Pro 4 and Surface Book as standard devices at Microsoft](https://www.microsoft.com/itshowcase/Article/Content/849/Certifying-Surface-Pro-4-and-Surface-Book-as-standard-devices-at-Microsoft) diff --git a/devices/surface/manage-surface-dock-firmware-updates.md b/devices/surface/manage-surface-dock-firmware-updates.md index 70a884e151..1335d5a808 100644 --- a/devices/surface/manage-surface-dock-firmware-updates.md +++ b/devices/surface/manage-surface-dock-firmware-updates.md @@ -20,12 +20,9 @@ The Surface Dock provides external connectivity to Surface devices through a sin Like the firmware for Surface devices, firmware for Surface Dock is also contained within a downloaded driver that is visible in Device Manager. This driver stages the firmware update files on the Surface device. When a Surface Dock is connected and the driver is loaded, the newer version of the firmware staged by the driver is detected and firmware files are copied to the Surface Dock. The Surface Dock then begins a two-phase process to apply the firmware internally. Each phase requires the Surface Dock to be disconnected from the Surface device before the firmware is applied. The driver copies the firmware into the dock, but only applies it when the user disconnects the Surface device from the Surface Dock. This ensures that there are no disruptions because the firmware is only applied when the user leaves their desk with the device. - ->[!NOTE] ->You can learn more about the firmware update process for Surface devices and how firmware is updated through driver installation at the following links: ->- [How to manage and update Surface drivers and firmware](https://technet.microsoft.com/mt697551) from Microsoft Mechanics ->- [Windows Update Makes Surface Better](https://go.microsoft.com/fwlink/p/?LinkId=785354) on the Microsoft Devices Blog - +>**Note:**  You can learn more about the firmware update process for Surface devices and how firmware is updated through driver installation at the following links:
    +- [How to manage and update Surface drivers and firmware](https://technet.microsoft.com/mt697551) from Microsoft Mechanics +- [Windows Update Makes Surface Better](https://blogs.windows.com/devices/2014/04/15/windows-update-makes-surface-better/#0MqzmYgshCDaJpvK.97) on the Microsoft Devices Blog   @@ -73,8 +70,7 @@ There are three methods you can use to update the firmware of the Surface Dock: Windows Update is the method that most users will use. The drivers for the Surface Dock are downloaded automatically from Windows Update and the dock update process is initiated without additional user interaction. The two-phase dock update process described earlier occurs in the background as the user connects and disconnects the Surface Dock during normal use. ->[!NOTE] ->The driver version that is displayed in Device Manager may be different from the firmware version that the Surface Dock is using. +>**Note:**  The driver version that is displayed in Device Manager may be different from the firmware version that the Surface Dock is using.   @@ -85,9 +81,8 @@ This method is used mostly in environments where Surface device drivers and firm For more information about how to deploy MSI packages see [Create and deploy an application with System Center Configuration Manager](https://docs.microsoft.com/sccm/apps/get-started/create-and-deploy-an-application). ->[!NOTE] ->When drivers are installed through Windows Update or the MSI package, registry keys are added that indicate the version of firmware installed on the Surface Dock and contained within the Surface Dock driver. These registry keys can be found in: -> **HLKM\\Software\\Microsoft\\Windows NT\\CurrentVersion\\WUDF\\Services\\SurfaceDockFwUpdate\\Parameters** +>**Note:**  When drivers are installed through Windows Update or the MSI package, registry keys are added that indicate the version of firmware installed on the Surface Dock and contained within the Surface Dock driver. These registry keys can be found in:

    + **HLKM\\Software\\Microsoft\\Windows NT\\CurrentVersion\\WUDF\\Services\\SurfaceDockFwUpdate\\Parameters** Firmware status is displayed for both the main chipset (displayed as **Component10**) and the DisplayPort chipset (displayed as **Component20**). For each chipset there are four keys, where *xx* is **10** or **20** corresponding to each chipset: @@ -99,8 +94,7 @@ Firmware status is displayed for both the main chipset (displayed as **Component - **Component*xx*FirmwareUpdateStatusRejectReason** – This key changes as the firmware update is processed. It should result in 0 after the successful installation of Surface Dock firmware. ->[!NOTE] ->These registry keys are not present unless you have installed updated Surface Dock drivers through Windows Update or MSI deployment. +>**Note:**  These registry keys are not present unless you have installed updated Surface Dock drivers through Windows Update or MSI deployment.   diff --git a/devices/surface/manage-surface-uefi-settings.md b/devices/surface/manage-surface-uefi-settings.md index bbf546f125..a34215254f 100644 --- a/devices/surface/manage-surface-uefi-settings.md +++ b/devices/surface/manage-surface-uefi-settings.md @@ -12,7 +12,7 @@ author: miladCA #Manage Surface UEFI settings -Current and future generations of Surface devices, including Surface Pro 4, Surface Book, and Surface Studio, use a unique UEFI firmware engineered by Microsoft specifically for these devices. This firmware allows for significantly greater control of the device’s operation over firmware versions in earlier generation Surface devices, including the support for touch, mouse, and keyboard operation. By using the Surface UEFI settings you can easily enable or disable internal devices or components, configure security to protect UEFI settings from being changed, and adjust the Surface device boot settings. +Current and future generations of Surface devices, including Surface Pro 4 and Surface Book, use a unique UEFI firmware engineered by Microsoft specifically for these devices. This firmware allows for significantly greater control of the device’s operation over firmware versions in earlier generation Surface devices, including the support for touch, mouse, and keyboard operation. By using the Surface UEFI settings you can easily enable or disable internal devices or components, configure security to protect UEFI settings from being changed, and adjust the Surface device boot settings. >[!NOTE] >Surface Pro 3, Surface 3, Surface Pro 2, Surface 2, Surface Pro, and Surface do not use the Surface UEFI and instead use firmware provided by third-party manufacturers, such as AMI. diff --git a/devices/surface/microsoft-surface-data-eraser.md b/devices/surface/microsoft-surface-data-eraser.md index ad68711a00..b1f6626197 100644 --- a/devices/surface/microsoft-surface-data-eraser.md +++ b/devices/surface/microsoft-surface-data-eraser.md @@ -20,19 +20,17 @@ Find out how the Microsoft Surface Data Eraser tool can help you securely wipe d Compatible Surface devices include: -- Surface Studio +- Surface Book -- Surface Book +- Surface Pro 4 -- Surface Pro 4 +- Surface Pro3 -- Surface Pro3 +- Surface 3 -- Surface 3 +- Surface 3 LTE -- Surface 3 LTE - -- Surface Pro 2 +- Surface Pro 2 Some scenarios where Microsoft Surface Data Eraser can be helpful include: @@ -44,11 +42,9 @@ Some scenarios where Microsoft Surface Data Eraser can be helpful include: - Standard practice when performing reimaging for devices used with sensitive data ->[!NOTE] ->Third-party devices, Surface devices running Windows RT (including Surface and Surface 2), and Surface Pro are not compatible with Microsoft Surface Data Eraser. +>**Note:**  Third-party devices, Surface devices running Windows RT (including Surface and Surface 2), and Surface Pro are not compatible with Microsoft Surface Data Eraser. ->[!NOTE] ->Because the ability to boot to USB is required to run Microsoft Surface Data Eraser, if the device is not configured to boot from USB or if the device is unable to boot or POST successfully, the Microsoft Surface Data Eraser tool will not function. +>**Note:**  Because the ability to boot to USB is required to run Microsoft Surface Data Eraser, if the device is not configured to boot from USB or if the device is unable to boot or POST successfully, the Microsoft Surface Data Eraser tool will not function. ## How to create a Microsoft Surface Data Eraser USB stick @@ -75,9 +71,7 @@ After the creation tool is installed, follow these steps to create a Microsoft S *Figure 1. Start the Microsoft Surface Data Eraser tool* 4. Select the USB drive of your choice from the **USB Thumb Drive Selection** page as shown in Figure 2, and then click **Start** to begin the USB creation process. The drive you select will be formatted and any existing data on this drive will be lost. - - >[!NOTE] - >If the Start button is disabled, check that your removable drive has a total capacity of at least 4 GB. + >**Note:**  If the Start button is disabled, check that your removable drive has a total capacity of at least 4 GB.   ![USB thumb drive selection](images/dataeraser-usb-selection.png "USB thumb drive selection") diff --git a/devices/surface/microsoft-surface-deployment-accelerator.md b/devices/surface/microsoft-surface-deployment-accelerator.md index cc2236665f..4358e9b005 100644 --- a/devices/surface/microsoft-surface-deployment-accelerator.md +++ b/devices/surface/microsoft-surface-deployment-accelerator.md @@ -62,8 +62,7 @@ When the SDA completes, you can use the deployment share to deploy over the netw You can modify the task sequence in the MDT Deployment Workbench to [include your own apps](https://technet.microsoft.com/itpro/windows/deploy/deploy-a-windows-10-image-using-mdt#sec04), or to [pause the automated installation routine](https://blogs.technet.microsoft.com/mniehaus/2009/06/26/mdt-2010-new-feature-3-suspend-and-resume-a-lite-touch-task-sequence/). While the installation is paused, you can make changes to customize your reference image. After the image is captured, you can configure a deployment task sequence and distribute this custom configuration by using the same network boot capabilities as before. ->[!NOTE] ->With SDA v1.9.0258, Surface Pro 3, Surface Pro 4, and Surface Book are supported for Windows 10 deployment, and Surface Pro 3 is supported for Windows 8.1 deployment. +>**Note:**  With SDA v1.9.0258, Surface Pro 3, Surface Pro 4, and Surface Book are supported for Windows 10 deployment, and Surface Pro 3 is supported for Windows 8.1 deployment.   @@ -78,18 +77,15 @@ For environments where the SDA server will not be able to connect to the Interne You can find a full list of available driver downloads at [Download the latest firmware and drivers for Surface devices](deploy-the-latest-firmware-and-drivers-for-surface-devices.md) ->[!NOTE] ->Downloaded files do not need to be extracted. The downloaded files can be left as .zip files as long as they are stored in one folder. +>**Note:**  Downloaded files do not need to be extracted. The downloaded files can be left as .zip files as long as they are stored in one folder. ->[!NOTE] ->Using files from a local directory is not supported when including Office 365 in your deployment share. To include Office 365 in your deployment share, select the **Download from the Internet** check box. +>**Note:**  Using files from a local directory is not supported when including Office 365 in your deployment share. To include Office 365 in your deployment share, select the **Download from the Internet** check box. ## Changes and updates SDA is periodically updated by Microsoft. For instructions on how these features are used, see [Step-by-Step: Microsoft Surface Deployment Accelerator](https://technet.microsoft.com/itpro/surface/step-by-step-surface-deployment-accelerator). ->[!NOTE] ->To install a newer version of SDA on a server with a previous version of SDA installed, you only need to run the installation file for the new version of SDA. The installer will handle the upgrade process automatically. If you used SDA to create a deployment share prior to the upgrade and want to use new features of the new version of SDA, you will need to create a new deployment share. SDA does not support upgrades of an existing deployment share. +>**Note:**  To install a newer version of SDA on a server with a previous version of SDA installed, you only need to run the installation file for the new version of SDA. The installer will handle the upgrade process automatically. If you used SDA to create a deployment share prior to the upgrade and want to use new features of the new version of SDA, you will need to create a new deployment share. SDA does not support upgrades of an existing deployment share.   ### Version 1.96.0405 This version of SDA adds support for the following: diff --git a/devices/surface/step-by-step-surface-deployment-accelerator.md b/devices/surface/step-by-step-surface-deployment-accelerator.md index 492a5e773c..914ae3a4d1 100644 --- a/devices/surface/step-by-step-surface-deployment-accelerator.md +++ b/devices/surface/step-by-step-surface-deployment-accelerator.md @@ -39,8 +39,7 @@ The tool installs in the SDA program group, as shown in Figure 2. *Figure 2. The SDA program group and icon* ->[!NOTE] ->At this point, the tool has not yet prepared any deployment environment or downloaded any materials from the Internet. +>**Note:**  At this point the tool has not yet prepared any deployment environment or downloaded any materials from the Internet.   @@ -49,8 +48,7 @@ The tool installs in the SDA program group, as shown in Figure 2. The following steps show you how to create a deployment share for Windows 10 that supports Surface 3, Surface Pro 3, Surface Pro 4, Surface Book, the Surface Firmware Tool, the Surface Asset Tag Tool, and Office 365. As you follow the steps below, make the selections that are applicable for your organization. For example, you could choose to deploy Windows 10 to Surface Book only, without any of the Surface apps. ->[!NOTE] ->SDA lets you create deployment shares for both Windows 8.1 and Windows 10 deployments, but you can only create a single deployment share at a time. Therefore, to create both Windows 8.1 and Windows 10 deployment shares, you will need to run the tool twice. +>**Note:**  SDA lets you create deployment shares for both Windows 8.1 and Windows 10 deployments, but you can only create a single deployment share at a time. Therefore, to create both Windows 8.1 and Windows 10 deployment shares, you will need to run the tool twice.   @@ -60,14 +58,12 @@ The following steps show you how to create a deployment share for Windows 10 th 3. On the **Verify System** page, the SDA wizard verifies the prerequisites required for an SDA deployment share. This process also checks for the presence of the Windows Assessment and Deployment Kit (Windows ADK) for Windows 10 and the Microsoft Deployment Toolkit (MDT) 2013 Update 2. If these tools are not detected, they are downloaded and installed automatically. Click **Next** to continue. - >[!NOTE] - >As of SDA version 1.96.0405, SDA will install only the components of the Windows ADK that are required for deployment, as follows: - > * Deployment tools - > * User State Migration Tool (USMT) - > * Windows Preinstallation Environment (WinPE)

    + >**Note:**  As of SDA version 1.96.0405, SDA will install only the components of the Windows ADK that are required for deployment, as follows: + * Deployment tools + * User State Migration Tool (USMT) + * Windows Preinstallation Environment (WinPE)

    - >[!NOTE] - >As of SDA version 1.96.0405, SDA will install and use MDT 2013 Update 2. Earlier versions of SDA are compatible only with MDT 2013 Update 1. + >**Note:**  As of SDA version 1.96.0405, SDA will install and use MDT 2013 Update 2. Earlier versions of SDA are compatible only with MDT 2013 Update 1. 4. On the **Windows 8.1** page, to create a Windows 10 deployment share, do not select the **Would you like to support Windows 8.1** check box. Click **Next** to continue. @@ -97,8 +93,7 @@ The following steps show you how to create a deployment share for Windows 10 th *Figure 4. Selecting Surface Firmware Tool requires Surface Pro 3 drivers* - >[!NOTE] - >You cannot select both Surface 3 and Surface 3 LTE models at the same time. + >**Note:**  You cannot select both Surface 3 and Surface 3 LTE models at the same time. 7. On the **Summary** page confirm your selections and click **Finish** to begin the creation of your deployment share. The process can take several minutes as files are downloaded, the tools are installed, and the deployment share is created. While the SDA scripts are creating your deployment share, an **Installation Progress** window will be displayed, as shown in Figure 5. A typical SDA process includes: @@ -130,21 +125,17 @@ The following steps show you how to create a deployment share for Windows 10 th If you are unable to connect to the Internet with your deployment server, or if you want to download the Surface drivers and apps separately, you can specify a local source for the driver an app files at the time of deployment share creation. On the **Configure** page of the SDA wizard, select the **Copy from a Local Directory** check box, as shown in Figure 6. The **Download from the Internet** check box will be automatically deselected. Enter the folder location where you have placed the driver and app files in the **Local Path** field, as shown in Figure 6. ->[!NOTE] ->All of the downloaded driver and applications files must be located in the same folder. If a required driver or application file is missing from the selected folder when you click **Next**, a warning is displayed and the wizard will not proceed to the next step. +>**Note:**  All of the downloaded driver and applications files must be located in the same folder. If a required driver or application file is missing from the selected folder when you click **Next**, a warning is displayed and the wizard will not proceed to the next step. ->[!NOTE] ->The driver and app files do not need to be extracted from the downloaded .zip files. +>**Note:**  The driver and app files do not need to be extracted from the downloaded .zip files. ->[!NOTE] ->Including Office 365 in your deployment share requires an Internet connection and cannot be performed if you use local files. +>**Note:**  Including Office 365 in your deployment share requires an Internet connection and cannot be performed if you use local files. ![Specify Surface driver and app files](images/sdasteps-fig6-specify-driver-app-files.png "Specify Surface driver and app files") *Figure 6. Specify the Surface driver and app files from a local path* ->[!NOTE] ->The **Copy from a Local Directory** check box is only available in SDA version 1.90.0221 or later. +>**Note:**  The **Copy from a Local Directory** check box is only available in SDA version 1.90.0221 or later.   @@ -152,8 +143,7 @@ If you are unable to connect to the Internet with your deployment server, or if You can use USB media to perform an SDA deployment if your Surface device is unable to boot from the network. For example, if you do not have a Microsoft Surface Ethernet Adapter or Microsoft Surface dock to facilitate network boot (PXE boot). The USB drive produced by following these steps includes a complete copy of the SDA deployment share and can be run on a Surface device without a network connection. ->[!NOTE] ->The offline media files for the complete SDA deployment share are approximately 9 GB in size. Your USB drive must be at least 9 GB in size. A 16 GB USB drive is recommended. +>**Note:**  The offline media files for the complete SDA deployment share are approximately 9 GB in size. Your USB drive must be at least 9 GB in size. A 16 GB USB drive is recommended.   @@ -167,8 +157,9 @@ Before you can create bootable media files within the MDT Deployment Workbench o 4. **clean** – Removes all configuration from your USB drive. - >[!WARNING] - >This step will remove all information from your drive. Verify that your USB drive does not contain any needed data before you perform the **clean** command. + >**Warning:**  This step will remove all information from your drive. Verify that your USB drive does not contain any needed data before you perform the **clean** command. + +   5. **create part pri** – Creates a primary partition on the USB drive. @@ -184,8 +175,7 @@ Before you can create bootable media files within the MDT Deployment Workbench o *Figure 7. Use DiskPart to prepare a USB drive for boot* - >[!NOTE] - >You can format your USB drive with FAT32 from Disk Management, but you must still use DiskPart to set the partition as active for the drive to boot properly. + >**Note:**  You can format your USB drive with FAT32 from Disk Management, but you must still use DiskPart to set the partition as active for the drive to boot properly.   @@ -294,8 +284,9 @@ When you run the task sequence, you will be prompted to provide the following in - A product key, if one is required - >[!NOTE] - >If you are deploying the same version of Windows as the version that came on your device, no product key is required. + >**Note:**  If you are deploying the same version of Windows as the version that came on your device, no product key is required. + +   - A time zone @@ -309,9 +300,9 @@ The **2 – Create Windows Reference Image** task sequence is used to perform a Like the **1 – Deploy Microsoft Surface** task sequence, the **2 – Create Windows Reference Image** task sequence performs a deployment of the unaltered Windows image directly from the installation media. Creation of a reference image should always be performed on a virtual machine. Using a virtual machine as your reference system helps to ensure that the resulting image is compatible with different hardware configurations. ->[!NOTE] ->Using a virtual machine when you create a reference image for Windows deployment is a recommended practice for performing Windows deployments with Microsoft deployment tools including the Microsoft Deployment Toolkit and System Center Configuration Manager. These Microsoft deployment technologies use the hardware agnostic images produced from a virtual machine and a collection of managed drivers to deploy to different configurations of hardware. For more information, see [Deploy a Windows 10 image using MDT 2013 Update 2](http://technet.microsoft.com/itpro/windows/deploy/deploy-a-windows-10-image-using-mdt). +>**Note:**  Using a virtual machine when you create a reference image for Windows deployment is a recommended practice for performing Windows deployments with Microsoft deployment tools including the Microsoft Deployment Toolkit and System Center Configuration Manager. These Microsoft deployment technologies use the hardware agnostic images produced from a virtual machine and a collection of managed drivers to deploy to different configurations of hardware. For more information, see [Deploy a Windows 10 image using MDT 2013 Update 2](http://technet.microsoft.com/itpro/windows/deploy/deploy-a-windows-10-image-using-mdt). +  In addition to the information required by the **1 – Deploy Microsoft Surface** task sequence, you will also be prompted to capture an image when you run this task sequence on your reference virtual machine. The **Location** and **File name** fields are automatically populated with the proper information for your deployment share. All that you need to do is select the **Capture an image of this reference computer** option when you are prompted on the **Capture Image** page of the Windows Deployment Wizard. diff --git a/devices/surface/surface-diagnostic-toolkit.md b/devices/surface/surface-diagnostic-toolkit.md index 8baced791b..ee50c340e7 100644 --- a/devices/surface/surface-diagnostic-toolkit.md +++ b/devices/surface/surface-diagnostic-toolkit.md @@ -18,19 +18,23 @@ Find out how you can use the Microsoft Surface Diagnostic Toolkit to test the ha The [Microsoft Surface Diagnostic Toolkit](https://www.microsoft.com/download/details.aspx?id=46703) is a small, portable diagnostic tool that runs through a suite of tests to diagnose the hardware of Surface devices. The Microsoft Surface Diagnostic Toolkit executable file is less than 3 MB, which allows it to be distributed through email. It does not require installation, so it can be run directly from a USB stick or over the network. The Microsoft Surface Diagnostic Toolkit walks you through several tests of individual components including the touchscreen, cameras, and sensors. ->[!NOTE] ->A Surface device must boot into Windows to run the Microsoft Surface Diagnostic Toolkit. The Microsoft Surface Diagnostic Toolkit will run only on the following Surface devices: ->- Surface Studio ->- Surface Book ->- Surface Pro 4 ->- Surface 3 LTE ->- Surface 3 ->- Surface Pro 3 ->- Surface Pro 2 ->- Surface Pro +>**Note:**  A Surface device must boot into Windows to run the Microsoft Surface Diagnostic Toolkit. The Microsoft Surface Diagnostic Toolkit will run only on the following Surface devices: ->[!NOTE] ->Security software and built-in security measures in many email applications and services will block executable files that are transferred through email. To email the Surface Diagnostic Toolkit, attach the archive file (.zip) as downloaded from the Surface Tools for IT page without extracting it first. You can also create a custom .zip archive that contains the .exe file. (For example, if you want to localize the text as described in the [Localization](#localization) section of this article.) +- Surface Book + +- Surface Pro 4 + +- Surface 3 LTE + +- Surface 3 + +- Surface Pro 3 + +- Surface Pro 2 + +- Surface Pro + +>**Note:**  Security software and built-in security measures in many email applications and services will block executable files that are transferred through email. To email the Surface Diagnostic Toolkit, attach the archive file (.zip) as downloaded from the Surface Tools for IT page without extracting it first. You can also create a custom .zip archive that contains the .exe file. (For example, if you want to localize the text as described in the [Localization](#localization) section of this article.) Running the Microsoft Surface Diagnostic Toolkit is a hands-on activity. The test sequence includes several tests that require you to perform actions or observe the outcome of the test, and then click the applicable **Pass** or **Fail** button. Some tests require connectivity to external devices, like an external display. Other tests use the built in Windows troubleshooters. At the end of testing, a visual report of the test results is displayed and you are given the option to save a log file or copy the results to the clipboard. @@ -50,8 +54,7 @@ To run a full set of tests with the Microsoft Surface Diagnostic Toolkit, you sh - A power adapter for your Surface device ->[!NOTE] ->The Microsoft Surface Diagnostic Toolkit tests verify only the hardware of a Surface device and do not resolve issues with the operating system or software. +>**Note:**  The Microsoft Surface Diagnostic Toolkit tests verify only the hardware of a Surface device and do not resolve issues with the operating system or software. ## Configure test options @@ -61,8 +64,7 @@ Before you select the tests you want to run, you can click the Tools ![images\su *Figure 1. The Tools button highlighted in upper right corner of window* ->[!NOTE] ->Any options you want to select must be specified before you run the tests. You cannot change the test options after the testing sequence has started. +>**Note:**  Any options you want to select must be specified before you run the tests. You cannot change the test options after the testing sequence has started. ####Test depth You can quickly select among three modes for testing and diagnostics by using the **Test Depth** page. The **Test Depth** page displays a slider with three possible positions, as shown in Figure 2. These positions determine which tests are run and what information is recorded without requiring you to select specific tests with the **Run Specific Tests** button. The three modes allow you to focus the tests of the Microsoft Surface Diagnostic Toolkit on hardware, software, or both hardware and software. @@ -171,40 +173,34 @@ These files and logs are stored in a .zip file saved by the Microsoft Surface Di #### Type Cover test ->[!NOTE] ->A Surface Type Cover is required for this test. +>**Note:**  A Surface Type Cover is required for this test. If a Surface Type Cover is not detected, the test prompts you to connect the Type Cover. When a Type Cover is detected the test prompts you to use the keyboard and touchpad. The cursor should move while you swipe the touchpad, and the keyboard Windows key should bring up the Start menu or Start screen to successfully pass this test. You can skip this test if a Type Cover is not used with the Surface device. #### Integrated keyboard test ->[!NOTE] ->This test is only applicable to Surface Book and requires that the Surface Book be docked to the keyboard. +>**Note:**  This test is only applicable to Surface Book and requires that the Surface Book be docked to the keyboard. This test is essentially the same as the Type Cover test, except the integrated keyboard in the Surface Book base is tested rather than the Type Cover. During the first stage of this test a diagram of the keyboard is displayed. When you press a key, the corresponding key will be marked on the diagram. The test will proceed when every key in the diagram is marked. In the second stage of this test, you are prompted to make several gestures on the keypad. As you perform each gesture (for example, a three finger tap), the gesture will be marked on the screen. When you have performed all gestures, the test will automatically complete. ->[!NOTE] ->The F-keys on the diagram require that you press the Function (FN) key simultaneously to activate them. By default, these keys perform other actions. For the Home and End keys, you must press the same keys as F8 and F9, but without the Function (FN) key pressed. +>**Note:**  The F-keys on the diagram require that you press the Function (FN) key simultaneously to activate them. By default, these keys perform other actions. For the Home and End keys, you must press the same keys as F8 and F9, but without the Function (FN) key pressed. #### Canvas mode battery test ->[!NOTE] ->This test is only applicable to Surface Book. +>**Note:**  This test is only applicable to Surface Book. Depending on which mode Surface Book is in, different batteries are used to power the device. When Surface Book is in clipboard mode (detached form the keyboard) it uses an internal battery, and when it is connected in either laptop mode or canvas mode it uses different connections to the battery in the keyboard. In canvas mode, the screen is connected to the keyboard so that when the device is closed, the screen remains face-up and visible. Connect the Surface Book to the keyboard in this manner for the test to automatically proceed. #### Clipboard mode battery test ->[!NOTE] ->This test is only applicable to Surface Book. +>**Note:**  This test is only applicable to Surface Book. Disconnect the Surface Book from the keyboard to work in clipboard mode. In clipboard mode the Surface Book operates from an internal battery that is tested when the Surface Book is disconnected from the keyboard. Disconnecting the Surface Book from the keyboard will also disconnect the Surface Book from power and will automatically begin this test. #### Laptop mode battery test ->[!NOTE] ->This test is only applicable to Surface Book. +>**Note:**  This test is only applicable to Surface Book. Connect the Surface Book to the keyboard in the opposite fashion to canvas mode in laptop mode. In laptop mode the screen will face you when the device is open and the device can be used in the same way as any other laptop. Disconnect AC Power from the laptop base when prompted for this test to check the battery status. @@ -214,29 +210,25 @@ In this test the battery is discharged for a few seconds and tested for health a #### Discrete graphics (dGPU) test ->[!NOTE] ->This test is only applicable to Surface Book models with a discrete graphics processor. +>**Note:**  This test is only applicable to Surface Book models with a discrete graphics processor. This test will query the device information of current hardware to check for the presence of both the Intel integrated graphics processor in the Surface Book and the NVIDIA discrete graphics processor in the Surface Book keyboard. The keyboard must be attached for this test to function. #### Discrete graphics (dGPU) fan test ->[!NOTE] ->This test is only applicable to Surface Book models with a discrete graphics processor. +>**Note:**  This test is only applicable to Surface Book models with a discrete graphics processor. The discrete graphics processor in the Surface Book includes a separate cooling fan. The fan is turned on automatically by the test for 5 seconds. Listen for the sound of the fan in the keyboard and report if the fan is working correctly when prompted. #### Muscle wire test ->[!NOTE] ->This test is only applicable to Surface Book. +>**Note:**  This test is only applicable to Surface Book. To disconnect the Surface Book from the keyboard, software must instruct the muscle wire latch mechanism to open. This is typically accomplished by pressing and holding the undock key on the keyboard. This test sends the same signal to the latch, which unlocks the Surface Book from the Surface Book keyboard. Remove the Surface Book from the keyboard when you are prompted to do so. #### Dead pixel and display artifacts tests ->[!NOTE] ->Before you run this test, be sure to clean the screen of dust or smudges. +>**Note:**  Before you run this test, be sure to clean the screen of dust or smudges. This test prompts you to view the display in search of malfunctioning pixels. The test displays full-screen, single-color images including black, white, red, green, and blue. Pixels that remain bright or dark when the screen displays an image of a different color indicate a failed test. You should also look for distortion or variance in the color of the screen. @@ -254,8 +246,7 @@ The Surface touchscreen should detect input across the entire screen of the devi #### Digitizer pen test ->[!NOTE] ->A Microsoft Surface Pen is required for this test. +>**Note:**  A Microsoft Surface Pen is required for this test. This test displays the same lines as those that are displayed during the Digitizer Touch test, but your input is performed with a Surface Pen instead of your finger. The lines should remain unbroken for as long as the Pen is pressed to the screen. Trace all of the lines in the image to look for unresponsive areas across the entire screen of the Surface device. @@ -273,8 +264,7 @@ This test prompts you to use the volume rocker to turn the volume all the way up #### Micro SD or SD slot test ->[!NOTE] ->This test requires a micro SD or SD card that is compatible with the slot in your Surface device. +>**Note:**  This test requires a micro SD or SD card that is compatible with the slot in your Surface device. Insert a micro SD or SD card when you are prompted. When the SD card is detected, the test prompts you to remove the SD card to ensure that the card is not left in the device. During this test a small file is written to the SD card and then verified. Detection and verification of the SD card automatically passes this test without additional input. @@ -284,15 +274,13 @@ This test displays a meter that shows the microphone sound level and records aud #### Video out test ->[!NOTE] ->This test requires an external display with the applicable connection for your Surface device. +>**Note:**  This test requires an external display with the applicable connection for your Surface device. Surface devices provide a Mini DisplayPort connection for connecting to an external display. Connect your display through the Mini DisplayPort on the device when prompted. The display should be detected automatically and an image should appear on the external display. #### Bluetooth test ->[!NOTE] ->This test requires a Bluetooth device. The device must be set to pairing mode or made discoverable to perform this test. +>**Note:**  This test requires a Bluetooth device. The device must be set to pairing mode or made discoverable to perform this test. After you receive a prompt to put the device in pairing mode, the test opens the **Add a device** window and begins to search for discoverable Bluetooth devices. Watch the **Add a device** window to verify that your Bluetooth device is detected. Select your Bluetooth device from the list and connect to the device to complete the test. @@ -300,20 +288,17 @@ After you receive a prompt to put the device in pairing mode, the test opens the Use this test to verify that the cameras on your Surface device are operating properly. Images will be displayed from both the front and rear cameras, and the infrared camera on a Surface Pro 4. Continuous autofocus can be enabled on the rear camera. Move the device closer and farther away from an object to verify the operation of continuous autofocus. ->[!NOTE] ->You can also use the **Snapshot to Logs** option to save a snapshot of the video output to the log files. +>**Note:**  You can also use the **Snapshot to Logs** option to save a snapshot of the video output to the log files. #### Speaker test ->[!NOTE] ->Headphones or external speakers are required to test the headphone jack in this test. +>**Note:**  Headphones or external speakers are required to test the headphone jack in this test. This test plays audio over left and right channels respectively, both for the internal speakers and for speakers or headphones connected through the headphone jack. Plug in your headphones or speakers to the 3.5mm stereo jack when prompted. The test will automatically detect that a sound playback device has been connected. Mark each channel as a pass or fail as you hear the audio play through the speakers or headphones. #### Network test ->[!NOTE] ->Connect the Surface device to a Wi-Fi network before you run this test. Connections that are made during the test are removed when the test is completed. +>**Note:**  Connect the Surface device to a Wi-Fi network before you run this test. Connections that are made during the test are removed when the test is completed. This test uses the Windows Network Diagnostics built in troubleshooter to diagnose potential issues with network connectivity, including proxy configuration, DNS problems, and IP address conflicts. An event log is saved by this test in Windows logs and is visible in the Windows Event Viewer. The Event ID is 6100. @@ -341,13 +326,11 @@ The compass detects which direction the Surface device is facing relative to nor The ambient light sensor is used to automatically adjust screen brightness relative to the ambient lighting in the environment. Turn the device toward or away from a light source to cause the screen to dim or brighten in response increased or decreased light. The test automatically passes when the screen brightness automatically changes. ->[!NOTE] ->You can also block the ambient light from the sensor by holding your hand slightly in front of the light sensor, which is located directly next to the camera. Use the provided meter to determine if you are blocking light from the sensor. +>**Note:**  You can also block the ambient light from the sensor by holding your hand slightly in front of the light sensor, which is located directly next to the camera. Use the provided meter to determine if you are blocking light from the sensor. #### Device orientation test ->[!NOTE] ->Before you run this test, disable rotation lock from the Action Center if enabled. +>**Note:**  Before you run this test, disable rotation lock from the Action Center if enabled. The device orientation sensor determines what the angle of the Surface device is, relative to the ground. Rotate the display 90 degrees or 180 degrees to cause the screen orientation to switch between portrait and landscape mode. If you have a Surface Type Cover or the Surface Book keyboard connected, you will be prompted to disconnect the Surface from the keyboard to allow screen rotation. The test automatically passes when the screen orientation switches. @@ -361,8 +344,7 @@ The Microsoft Surface Diagnostic Toolkit uses this test only if a Surface Dock i #### System assessment ->[!NOTE] ->The Surface device must be connected to AC power before you can run this test. +>**Note:**  The Surface device must be connected to AC power before you can run this test. The Windows System Assessment Tool (WinSAT) runs a series of benchmarks against the processor, memory, video adapter, and storage devices. The results include the processing speed of various algorithms, read and write performance of memory and storage, and performance in several Direct3D graphical tests. @@ -376,15 +358,13 @@ If your Surface device has encountered an error that caused the device to fail o #### Connected standby text ->[!NOTE] ->This test is only available on Surface devices running Windows 8 or Windows 8.1. +>**Note:**  This test is only available on Surface devices running Windows 8 or Windows 8.1. If connected standby is enabled on the Surface device, this test passes automatically. If connected standby is not enabled, a failure is recorded for this test. Find out more about Connected Standby and Modern Standby at [Modern Standby](https://msdn.microsoft.com/library/windows/hardware/mt282515) on MSDN. #### Modern standby test ->[!NOTE] ->This test is only available on Surface devices running Windows 10. +>**Note:**  This test is only available on Surface devices running Windows 10. This test records log files of the power configuration for the Surface device using the **powercfg.exe /a** command. The test completes automatically and a failure is only recorded if the command does not run. @@ -393,8 +373,7 @@ This test records log files of the power configuration for the Surface device us You can run the Microsoft Surface Diagnostic Toolkit from the command line or as part of a script. The tool supports the following arguments: ->[!NOTE] ->Many of the tests performed by the Microsoft Surface Diagnostic Toolkit require technician interaction. The Microsoft Surface Diagnostic Toolkit cannot run unattended. +>**Note:**  Many of the tests performed by the Microsoft Surface Diagnostic Toolkit require technician interaction. The Microsoft Surface Diagnostic Toolkit cannot run unattended. #### exclude @@ -547,8 +526,7 @@ If a localization file with the same name and in the same folder as the executab A custom localization file selected through this process does not need a specific name. After you select the custom localization file, the Microsoft Surface Diagnostic Toolkit will import the contents and write them to a .locale file with the same name as the .exe file, just like if you click the **Generate** button to create a new .locale file. ->[!NOTE] ->If you import a localization file by clicking the **Browse** button, an existing localization file will be overwritten without prompting if that file has the same name as the Microsoft Surface Diagnostic Toolkit executable file. +>**Note:**  If you import a localization file by clicking the **Browse** button, an existing localization file will be overwritten without prompting if that file has the same name as the Microsoft Surface Diagnostic Toolkit executable file.   diff --git a/devices/surface/surface-dock-updater.md b/devices/surface/surface-dock-updater.md index 875fe51b0c..ff07fba283 100644 --- a/devices/surface/surface-dock-updater.md +++ b/devices/surface/surface-dock-updater.md @@ -20,8 +20,7 @@ The [Microsoft Surface Dock Updater](https://www.microsoft.com/download/details. When you run the Microsoft Surface Dock Updater installer you will be prompted to accept an End User License Agreement (EULA). ->[!NOTE] ->Updating Surface Dock firmware requires connectivity to the Surface Dock, available only on Surface Pro 3, Surface Pro 4, and Surface Book devices. A Surface Pro 3, Surface Pro 4, or Surface Book is required to successfully install Microsoft Surface Dock Updater. +>**Note:**  Updating Surface Dock firmware requires connectivity to the Surface Dock, available only on Surface Pro 3, Surface Pro 4, and Surface Book devices. A Surface Pro 3, Surface Pro 4, or Surface Book is required to successfully install Microsoft Surface Dock Updater. ## Update a Surface Dock with Microsoft Surface Dock Updater @@ -76,8 +75,7 @@ To update a Surface Dock with Microsoft Surface Dock Updater, follow these steps 9. If you want to update multiple Surface Docks in one sitting, you can click the **Update another Surface Dock** button to begin the process on the next Surface Dock. - >[!NOTE] - >The LED in the Ethernet port of the dock will blink while the update is in progress. Please wait until the LED stops blinking before you unplug your Surface Dock from power. + >**Note:**  The LED in the Ethernet port of the dock will blink while the update is in progress. Please wait until the LED stops blinking before you unplug your Surface Dock from power.   diff --git a/devices/surface/surface-enterprise-management-mode.md b/devices/surface/surface-enterprise-management-mode.md index 0c040e2593..e6022963e9 100644 --- a/devices/surface/surface-enterprise-management-mode.md +++ b/devices/surface/surface-enterprise-management-mode.md @@ -14,7 +14,7 @@ author: jobotto Microsoft Surface Enterprise Management Mode (SEMM) is a feature of Surface devices with Surface UEFI that allows you to secure and manage firmware settings within your organization. With SEMM, IT professionals can prepare configurations of UEFI settings and install them on a Surface device. In addition to the ability to configure UEFI settings, SEMM also uses a certificate to protect the configuration from unauthorized tampering or removal. >[!NOTE] ->SEMM is only available on devices with Surface UEFI firmware, such as Surface Pro 4, Surface Book, and Surface Studio. For more information about Surface UEFI, see [Manage Surface UEFI Settings](https://technet.microsoft.com/itpro/surface/manage-surface-uefi-settings). +>SEMM is only available on devices with Surface UEFI firmware, such as Surface Pro 4 and Surface Book. For more information about Surface UEFI, see [Manage Surface UEFI Settings](https://technet.microsoft.com/itpro/surface/manage-surface-uefi-settings). When Surface devices are configured by SEMM and secured with the SEMM certificate, they are considered *enrolled* in SEMM. When the SEMM certificate is removed and control of UEFI settings is returned to the user of the device, the Surface device is considered *unenrolled* in SEMM. diff --git a/devices/surface/unenroll-surface-devices-from-semm.md b/devices/surface/unenroll-surface-devices-from-semm.md index d801c2e764..0c8868a35f 100644 --- a/devices/surface/unenroll-surface-devices-from-semm.md +++ b/devices/surface/unenroll-surface-devices-from-semm.md @@ -13,8 +13,7 @@ author: jobotto When a Surface device is enrolled in Surface Enterprise Management Mode (SEMM), a certificate is stored in the firmware of that device. The presence of that certificate and the enrollment in SEMM prevent any unauthorized changes to Surface UEFI settings or options while the device is enrolled in SEMM. To restore control of Surface UEFI settings to the user, the Surface device must be unenrolled from SEMM, a process sometimes described as reset or recovery. There are two methods you can use to unenroll a device from SEMM—a Surface UEFI reset package and a Recovery Request. ->[!WARNING] ->To unenroll a device from SEMM and restore user control of Surface UEFI settings, you must have the SEMM certificate that was used to enroll the device in SEMM. If this certificate becomes lost or corrupted, it is not possible to unenroll from SEMM. Back up and protect your SEMM certificate accordingly. +>**Warning:**  To unenroll a device from SEMM and restore user control of Surface UEFI settings, you must have the SEMM certificate that was used to enroll the device in SEMM. If this certificate becomes lost or corrupted, it is not possible to unenroll from SEMM. Back up and protect your SEMM certificate accordingly. For more information about SEMM, see [Microsoft Surface Enterprise Management Mode](https://technet.microsoft.com/itpro/surface/surface-enterprise-management-mode). @@ -28,8 +27,7 @@ Reset packages are created specifically for an individual Surface device. To beg *Figure 1. The serial number of the Surface device is displayed on the Surface UEFI PC information page* ->[!NOTE] ->To boot to Surface UEFI, press **Volume Up** and **Power** simultaneously while the device is off. Hold **Volume Up** until the Surface logo is displayed and the device begins to boot. +>**Note:**  To boot to Surface UEFI, press **Volume Up** and **Power** simultaneously while the device is off. Hold **Volume Up** until the Surface logo is displayed and the device begins to boot. To create a Surface UEFI reset package, follow these steps: @@ -81,8 +79,7 @@ To initiate a Recovery Request, follow these steps: 4. Click or press **Get Started**. 5. Click or press **Next** to begin the Recovery Request process. - >[!NOTE] - >A Recovery Request expires two hours after it is created. If a Recovery Request is not completed in this time, you will have to restart the Recovery Request process. + >**Note:**  A Recovery Request expires two hours after it is created. If a Recovery Request is not completed in this time, you will have to restart the Recovery Request process. 6. Select **SEMM Certificate** from the list of certificates displayed on the **Choose a SEMM reset key** page (shown in Figure 7), and then click or press **Next**. ![Select SEMM certificate for your Recovery Request](images\surface-semm-unenroll-fig7.png "Select SEMM certificate for your Recovery Request") @@ -104,8 +101,7 @@ To initiate a Recovery Request, follow these steps: * To use the Recovery Request (Reset Request) as text, simply type the text directly into Microsoft Surface UEFI Configurator. 8. Open Microsoft Surface UEFI Configurator from the Start menu on another computer. - >[!NOTE] - >Microsoft Surface UEFI Configurator must run in an environment that is able to authenticate the certificate chain for the SEMM certificate. +>**Note:**  Microsoft Surface UEFI Configurator must run in an environment that is able to authenticate the certificate chain for the SEMM certificate. 9. Click **Start**. 10. Click **Recovery Request**, as shown in Figure 10. diff --git a/devices/surface/upgrade-surface-devices-to-windows-10-with-mdt.md b/devices/surface/upgrade-surface-devices-to-windows-10-with-mdt.md index ea32d404cc..77a3fe6998 100644 --- a/devices/surface/upgrade-surface-devices-to-windows-10-with-mdt.md +++ b/devices/surface/upgrade-surface-devices-to-windows-10-with-mdt.md @@ -45,11 +45,8 @@ Performing an upgrade deployment of Windows 10 requires the same tools and resou You will also need to have available the following resources: * Windows 10 installation files, such as the installation media downloaded from the [Volume Licensing Service Center](https://www.microsoft.com/Licensing/servicecenter/default.aspx) - - >[!NOTE] - >Installation media for use with MDT must contain a Windows image in Windows Imaging Format (.wim). Installation media produced by the [Get Windows 10](https://www.microsoft.com/en-us/software-download/windows10/) page does not use a .wim file, instead using an Electronic Software Download (.esd) file, which is not compatible with MDT. -* [Surface firmware and drivers](https://technet.microsoft.com/en-us/itpro/surface/deploy-the-latest-firmware-and-drivers-for-surface-devices) for Windows 10 - + >**Note:**  Installation media for use with MDT must contain a Windows image in Windows Imaging Format (.wim). Installation media produced by the [Get Windows 10](https://www.microsoft.com/software-download/windows10/) page does not use a .wim file, instead using an Electronic Software Download (.esd) file, which is not compatible with MDT. +* [Surface firmware and drivers](https://technet.microsoft.com/itpro/surface/deploy-the-latest-firmware-and-drivers-for-surface-devices) for Windows 10 * Application installation files for any applications you want to install, such as the Surface app ## Prepare the upgrade deployment @@ -105,8 +102,7 @@ Create the upgrade task sequence with the following process: 1. In the Deployment Workbench under your Deployment Share, right-click the **Task Sequences** folder, and then click **New Task Sequence** to start the New Task Sequence Wizard. 2. Use these steps to create the deployment task sequence with the New Task Sequence Wizard: - **General Settings** – Enter an identifier for the deployment task sequence in the Task Sequence ID field, a name for the deployment task sequence in the Task Sequence Name field, and any comments for the deployment task sequence in the **Task Sequence Comments** field, and then click **Next**. - >[!NOTE] - >The **Task Sequence ID** field cannot contain spaces and can be a maximum of 16 characters. + >**Note:**  The **Task Sequence ID** field cannot contain spaces and can be a maximum of 16 characters. - **Select Template** – Select **Standard Client Upgrade Task Sequence** from the drop-down menu, and then click **Next**. - **Select OS** – Navigate to and select the Windows image that you imported, and then click **Next**. - **Specify Product Key** – Select the product key entry that fits your organization’s licensing system. The **Do Not Specify a Product Key at This Time** option can be used for systems that will be activated via Key Management Services (KMS) or Active Directory Based Activation (ADBA). A product key can be specified specifically if your organization uses Multiple Activation Keys (MAK). Click **Next**. diff --git a/education/windows/TOC.md b/education/windows/TOC.md index c2c0340c07..8411e8ef7f 100644 --- a/education/windows/TOC.md +++ b/education/windows/TOC.md @@ -17,6 +17,5 @@ ## [Deployment recommendations for school IT administrators](edu-deployment-recommendations.md) ## [Deploy Windows 10 in a school](deploy-windows-10-in-a-school.md) ## [Deploy Windows 10 in a school district](deploy-windows-10-in-a-school-district.md) -## [Upgrade Windows 10 Pro to Pro Education from Windows Store for Business](windows-10-pro-to-pro-edu-upgrade.md) ## [Chromebook migration guide](chromebook-migration-guide.md) ## [Change history for Windows 10 for Education](change-history-edu.md) diff --git a/education/windows/change-history-edu.md b/education/windows/change-history-edu.md index 0bc2dc5bbc..3ce92ed3d0 100644 --- a/education/windows/change-history-edu.md +++ b/education/windows/change-history-edu.md @@ -12,16 +12,6 @@ author: jdeckerMS This topic lists new and updated topics in the [Windows 10 for Education](index.md) documentation. -## January 2017 -| New or changed topic | Description | -| --- | --- | -| [For IT administrators - get Minecraft: Education Edition](school-get-minecraft.md) | Updates. Learn how schools can use invoices to pay for Minecraft: Education Edition. | - -## December 2016 -| New or changed topic | Description | -| --- | --- | -| [Upgrade Windows 10 Pro to Pro Education from Windows Store for Business](windows-10-pro-to-pro-edu-upgrade.md) | New. Learn how to opt-in to a free upgrade to Windows 10 Pro Education. | - ## November 2016 | New or changed topic | Description| diff --git a/education/windows/deploy-windows-10-in-a-school-district.md b/education/windows/deploy-windows-10-in-a-school-district.md index 89225a2609..766978b300 100644 --- a/education/windows/deploy-windows-10-in-a-school-district.md +++ b/education/windows/deploy-windows-10-in-a-school-district.md @@ -597,7 +597,7 @@ To create a new Office 365 Education subscription for use in the classroom, use 2. On the **Get started** page, in **Enter your school email address**, type your school email address, and then click **Sign up**. - You will receive an email in your school email account. + You will receive an email in your school email account. 3. Click the hyperlink in the email in your school email account. 4. On the **One last thing** page, complete your user information, and then click **Start**. @@ -627,7 +627,7 @@ Now that you have created your new Office 365 Education subscription, add the do To make it easier for faculty and students to join your Office 365 Education subscription (or *tenant*), allow them to automatically sign up to your tenant (*automatic tenant join*). In automatic tenant join, when a faculty member or student signs up for Office 365, Office 365 automatically adds (joins) the user to your Office 365 tenant. ->**Note**  By default, automatic tenant join is enabled in Office 365 Education, with the exception of certain areas in Europe, the Middle East, and Africa. These countries/regions require opt-in steps to add new users to existing Office 365 tenants. Check your country/region requirements to determine the automatic tenant join default configuration. Also, if you use Azure AD Connect, then automatic tenant join is disabled. For more information, see [Office 365 Education Self-Sign up: Technical FAQ](https://support.office.com/en-us/article/Office-365-Education-Self-Sign-up-Technical-FAQ-7fb1b2f9-94c2-4cbb-b01e-a6eca34261d6?ui=en-US&rs=en-US&ad=US&WT.mc_id=eml_CXM__33537_MOD_EDU_Student_Advantage_Rush). +>**Note**  By default, automatic tenant join is enabled in Office 365 Education, with the exception of certain areas in Europe, the Middle East, and Africa. These countries require opt-in steps to add new users to existing Office 365 tenants. Check your country requirements to determine the automatic tenant join default configuration. Also, if you use Azure AD Connect, then automatic tenant join is disabled. For more information, see [Office 365 Education Self-Sign up: Technical FAQ](https://support.office.com/en-us/article/Office-365-Education-Self-Sign-up-Technical-FAQ-7fb1b2f9-94c2-4cbb-b01e-a6eca34261d6?ui=en-US&rs=en-US&ad=US&WT.mc_id=eml_CXM__33537_MOD_EDU_Student_Advantage_Rush). Office 365 uses the domain portion of the user’s email address to know which Office 365 tenant to join. For example, if a faculty member or student provides an email address of user@contoso.edu, then Office 365 automatically performs one of the following tasks: @@ -841,7 +841,7 @@ After you have selected your user and group account bulk import method, you’re With the bulk-import source file finished, you’re ready to import the user and group accounts into AD DS. The steps for importing the file are slightly different for each method. ->**Note**  Bulk-import your group accounts first, and then import your user accounts. Importing in this order allows you to specify group membership when you import your user accounts. +>**Note**  Bulk-import your group accounts first, and then import your user accounts. Importing in this order allows you to specify group membership when you import your user accounts. For more information about how to import user accounts into AD DS by using: @@ -891,7 +891,7 @@ Microsoft Exchange Online uses an email distribution group as a single email rec You can create email distribution groups based on job role (such as teacher, administration, or student) or specific interests (such as robotics, drama club, or soccer team). You can create any number of distribution groups, and users can be members of more than one group. ->**Note**  Office 365 can take some time to complete the Exchange Online creation process. You will have to wait until the creation process ends before you can perform the following steps. +>**Note**  Office 365 can take some time to complete the Exchange Online creation process. You will have to wait until the creation process ends before you can perform the following steps. For information about creating email distribution groups, see [Create an Office 365 Group in the admin center](https://support.office.com/en-us/article/Create-an-Office-365-Group-in-the-admin-center-74a1ef8b-3844-4d08-9980-9f8f7a36000f?ui=en-US&rs=en-001&ad=US). @@ -935,7 +935,7 @@ To create and configure your Windows Store for Business portal, simply use the a 5. In the **Welcome to the Windows Store for Business** dialog box, click **OK**. -After you create the Windows Store for Business portal, configure it by using the commands in the **Settings** menu listed in Table 14. Depending on your institution, you may (or may not) need to change these settings to further customize your portal. +After you create the Windows Store for Business portal, configure it by using the commands in the **Settings** menu listed in Table 14. Depending on your institution, you may (or may not) need to change these settings to further customize your portal. |Menu selection|What can you do in this menu| |--------------|----------------------------| @@ -1171,7 +1171,7 @@ For more information about how to update a deployment share, see [Update a Deplo >**Note**  If you have already configured your System Center Configuration Manager infrastructure to support the operating system deployment feature or if you selected to deploy Windows 10 by using MDT only, then skip this section and continue to the next section. -Before you can use System Center Configuration Manager to deploy Windows 10 and manage your apps and devices, you must configure System Center Configuration Manager to support the operating system deployment feature. If you don’t have an existing System Center Configuration Manager infrastructure, you will need to deploy a new infrastructure. +Before you can use System Center Configuration Manager to deploy Windows 10 and manage your apps and devices, you must configure System Center Configuration Manager to support the operating system deployment feature. If you don’t have an existing System Center Configuration Manager infrastructure, you will need to deploy a new infrastructure. Deploying a new System Center Configuration Manager infrastructure is beyond the scope of this guide, but the following resources can help you deploy a new System Center Configuration Manager infrastructure: @@ -1217,9 +1217,9 @@ You can use Windows Deployment Services in conjunction with MDT to automatically * [Windows Deployment Services Getting Started Guide for Windows Server 2012](https://technet.microsoft.com/en-us/library/jj648426.aspx) 2. Add LTI boot images (Windows PE images) to Windows Deployment Services. - + The LTI boot images (.wim files) that you will add to Windows Deployment Services are in the MDT deployment share. Locate the .wim files in the deployment share’s Boot subfolder. - + For more information about how to perform this step, see [Add LTI Boot Images to Windows Deployment Services](https://technet.microsoft.com/en-us/library/dn759415.aspx#AddLTIBootImagestoWindowsDeploymentServices). ### Configure Window Deployment Services for System Center Configuration Manager @@ -1231,9 +1231,9 @@ You can use Windows Deployment Services in conjunction with System Center Config #### To configure Windows Deployment Services for System Center Configuration Manager 1. Set up and configure Windows Deployment Services. - + Windows Deployment Services is a server role available in all Windows Server editions. You can enable the Windows Deployment Services server role on a new server or on any server running Windows Server in your institution. - + For more information about how to perform this step, see the following resources: * [Windows Deployment Services Overview](https://technet.microsoft.com/library/hh831764.aspx) * The Windows Deployment Services Help file, included in Windows Deployment Services @@ -1244,9 +1244,9 @@ You can use Windows Deployment Services in conjunction with System Center Config To support PXE boot requests, you install the PXE service point site system role. Then, you must configure one or more distribution points to respond to PXE boot request. For more information about how to perform this step, see [Install site system roles for System Center Configuration Manager](https://technet.microsoft.com/en-us/library/mt704036.aspx), [Use PXE to deploy Windows over the network with System Center Configuration Manager](https://technet.microsoft.com/en-us/library/mt627940.aspx), and [Configuring distribution points to accept PXE requests](https://technet.microsoft.com/en-us/library/mt627944.aspx#BKMK_PXEDistributionPoint). 3. Configure the appropriate boot images (Windows PE images) to deploy from the PXE-enabled distribution point. - + Before a device can start a boot image from a PXE-enabled distribution point, you must change the properties of the boot image to enable PXE booting. Typically, you create this boot image when you created your MDT task sequence in the Configuration Manager console. - + For more information about how to perform this step, see [Configure a boot image to deploy from a PXE-enabled distribution point](https://technet.microsoft.com/en-us/library/mt627946.aspx#BKMK_BootImagePXE) and [Manage boot images with System Center Configuration Manager](https://technet.microsoft.com/en-us/library/mt627946.aspx). #### Summary @@ -1271,8 +1271,8 @@ You initially configured the MDT deployment share in the [Configure the MDT depl 1. Create a task sequence to deploy the appropriate Windows 10 edition. - A task sequence can deploy only one Windows 10 edition or version, which means that you must create a task sequence for each Windows 10 edition and version you selected in the [Select the operating systems](#select-the-operating-systems) section earlier in this guide. To create task sequences, use the New Task Sequence Wizard. - + A task sequence can deploy only one Windows 10 edition or version, which means that you must create a task sequence for each Windows 10 edition and version you selected in the [Select the operating systems](#select-the-operating-systems) section earlier in this guide. To create task sequences, use the New Task Sequence Wizard. + For more information, see [Create a New Task Sequence in the Deployment Workbench](https://technet.microsoft.com/en-us/library/dn759415.aspx#CreateaNewTaskSequenceintheDeploymentWorkbench). 2. Create an MDT application for each desktop app you want to include in your reference image. @@ -1280,12 +1280,12 @@ You initially configured the MDT deployment share in the [Configure the MDT depl 3. Customize the task sequence to install the MDT applications that you created in step 2. You can add an **Install Application** task sequence step to your task sequence. Then, you can customize the **Install Application** task sequence step to install a specific app, which automatically installs the app with no user interaction required when your run the task sequence. - + You need to add an **Install Application** task sequence step for each app you want to include in your reference image. For more information, see [Customize Application Installation in Task Sequences](http://technet.microsoft.com/en-us/library/dn759415.aspx#CustomizeApplicationInstallationinTaskSequences). 4. Create a selection profile that contains the drivers for the device. A *selection profile* lets you select specific device drivers. For example, if you want to deploy the device drivers for a Surface Pro 4 device, you can create a selection profile that contains only the Surface Pro 4 device drivers. - + First, in the Out-of-Box Drivers node in the Deployment Workbench, create a folder that will contain your device drivers. Next, import the device drivers into the folder you just created. Finally, create the selection profile and specify the folder that contains the device drivers. For more information, see the following resources: * [Create Folders to Organize Device Drivers for LTI Deployments](https://technet.microsoft.com/en-us/library/dn759415.aspx#CreateFolderstoOrganizeDeviceDriversforLTIDeployments) @@ -1334,7 +1334,7 @@ For more information about how to create a task sequence in the: * Configuration Manager console, see [Create a task sequence to install an operating system in System Center Configuration Manager](https://technet.microsoft.com/en-us/library/mt627927.aspx). ####Summary -In this section, you customized the MDT deployment share to deploy Windows 10 and desktop apps to one or more reference devices by creating and customizing MDT applications, device drivers, and applications. Next, you ran the task sequence, which deploys Windows 10, deploys your apps, deploys the appropriate device drivers, and captures an image of the reference device. Then, you imported the captured reference image into a deployment share or System Center Configuration Manager. Finally, you created a task sequence to deploy your captured reference image to faculty and student devices. At this point in the process, you’re ready to deploy Windows 10 and your apps to your devices. +In this section, you customized the MDT deployment share to deploy Windows 10 and desktop apps to one or more reference devices by creating and customizing MDT applications, device drivers, and applications. Next, you ran the task sequence, which deploys Windows 10, deploys your apps, deploys the appropriate device drivers, and captures an image of the reference device. Then, you imported the captured reference image into a deployment share or System Center Configuration Manager. Finally, you created a task sequence to deploy your captured reference image to faculty and student devices. At this point in the process, you’re ready to deploy Windows 10 and your apps to your devices. ## Prepare for device management @@ -1548,7 +1548,7 @@ In this section, you prepared your institution for device management. You identi ## Deploy Windows 10 to devices -You’re ready to deploy Windows 10 to faculty and student devices. You must complete the steps in this section for each student device in the classrooms as well as for any new student devices you add in the future. You can also perform these actions for any device that’s eligible for a Windows 10 upgrade. This section discusses deploying Windows 10 to new devices, refreshing Windows 10 on existing devices, and upgrading existing devices that are running eligible versions of Windows 8.1 or Windows 7 to Windows 10. +You’re ready to deploy Windows 10 to faculty and student devices. You must complete the steps in this section for each student device in the classrooms as well as for any new student devices you add in the future. You can also perform these actions for any device that’s eligible for a Windows 10 upgrade. This section discusses deploying Windows 10 to new devices, refreshing Windows 10 on existing devices, and upgrading existing devices that are running eligible versions of Windows 8.1 or Windows 7 to Windows 10. ### Prepare for deployment @@ -1838,7 +1838,7 @@ Follow the same steps you followed in the [Deploy Windows 10 to devices](#deploy #### Summary -You have now identified the tasks you need to perform monthly, at the end of an academic year or semester, and as required. Your district and individual school configuration should match the typical school configuration you saw in the [Plan a typical district configuration](#plan-a-typical-district-configuration) section. By performing these maintenance tasks, you help ensure that your district as a whole stays secure and is configured as you specified. +You have now identified the tasks you need to perform monthly, at the end of an academic year or semester, and as required. Your district and individual school configuration should match the typical school configuration you saw in the [Plan a typical district configuration](#plan-a-typical-district-configuration) section. By performing these maintenance tasks, you help ensure that your district as a whole stays secure and is configured as you specified. ## Related topics diff --git a/education/windows/education-scenarios-store-for-business.md b/education/windows/education-scenarios-store-for-business.md index ce335d4357..8a42859576 100644 --- a/education/windows/education-scenarios-store-for-business.md +++ b/education/windows/education-scenarios-store-for-business.md @@ -91,9 +91,9 @@ Find apps for your school using Windows Store for Business. Admins in an educati **To acquire apps** - For info on how to acquire apps, see [Acquire apps in Windows Store for Business](https://technet.microsoft.com/itpro/windows/manage/acquire-apps-windows-store-for-business#acquire-apps) -**To add a payment method - debit or credit card** +**To add a payment method** -If the app you purchase has a price, you’ll need to provide a payment method. +If you the app you purchase has a price, you’ll need to provide a payment method. - Click **Get started! Add a way to pay.** Provide the info needed for your debit or credit card. For more information on payment options, see [payment options](https://technet.microsoft.com/itpro/windows/manage/acquire-apps-windows-store-for-business#payment-options). diff --git a/education/windows/index.md b/education/windows/index.md index 549abcd666..d64f4ca4cc 100644 --- a/education/windows/index.md +++ b/education/windows/index.md @@ -42,13 +42,6 @@ author: CelesteDG [Deploy Windows 10 in a school district](deploy-windows-10-in-a-school-district.md)
    Get step-by-step guidance on how to deploy Windows 10 to PCs and devices across a school district.

    - ## ![Deploy Windows 10 for education](images/windows.png) Upgrade - -
    -

    [Upgrade Windows 10 Pro to Pro Education from Windows Store for Business](windows-10-pro-to-pro-edu-upgrade.md)
    If you have an education tenant and use Windows 10 Pro in your schools now, find out how you can opt-in to a free upgrade to Windows 10 Pro Education.

    -
    - - ## Related topics - [Try it out: virtual labs and how-to videos for Windows 10 Education](https://technet.microsoft.com/en-us/windows/dn610356) diff --git a/education/windows/school-get-minecraft.md b/education/windows/school-get-minecraft.md index 8668054826..0adea43fb7 100644 --- a/education/windows/school-get-minecraft.md +++ b/education/windows/school-get-minecraft.md @@ -58,51 +58,6 @@ Qualified education institutions can purchase Minecraft: Education Edition licen - You’ll receive an email with a link to Windows Store for Business. - Sign in to [Windows Store for Business](https://www.microsoft.com/business-store) to distribute and manage the Minecraft: Education Edition licenses. For more information on distribution options, see [Distribute Minecraft](#distribute-minecraft) -## Minecraft: Education Edition payment options -You can pay for Minecraft: Education Edition with a debit or credit card, or with an invoice. - - -### Debit or credit cards - -During the purchase, click **Get started! Add a way to pay.** Provide the info needed for your debit or credit card. - -### Invoices - -Invoices are now a supported payment method for Minecraft: Education Edition. There are a few requirements: -- Admins only (not supported for Teachers) -- $500 invoice minimum for your initial purchase -- $15,000 invoice maximum (for all invoices within your organization) - -**To pay with an invoice** - -1. During the purchase, click **Get started! Add a way to pay.** - - ![Buy page for an app, showing the link for Get started! Add a way to pay.](images/mcee-add-payment-method.png) - -2. Select the Invoice option, and provide the info needed for an invoice. The **PO number** item allows you to add a tracking number or info that is meaningful to your organization. - - ![Invoice Details page showing items that need to be completed for an invoice. PO number is highlighted.](images/mcee-invoice-info.png) - -### Find your invoice - -After you've finished the purchase, you can find your invoice by checking **Minecraft: Education Edition** in your **Inventory**. - -> **Note**: After you complete a purchase, it can take up to twenty-four hours for the app to appear in **Inventory**. - -**To view your invoice** -1. In Windows Store for Business, click **Manage** and then click **Inventory**. -2. Click **Minecraft: Education Edition** in the list of apps. -3. On **Minecraft: Education Edition**, click **View Bills**. - - ![Minecraft: Education Edition app details page with view bills link highlighted](images/mcee-view-bills.png) - -4. On **Invoice Bills**, click the invoice number to view and download your invoice. It downloads as a .pdf. - - ![Minecraft: Education Edition app details page with view bills link highlighted](images/mcee-invoice-bills.png) - -The **Payment Instructions** section on the first page of the invoice has information on invoice amount, due date, and how to pay with electronic funds transfer, or with a check. - - ## Distribute Minecraft After Minecraft: Education Edition is added to your Windows Store for Business inventory, you have three options: diff --git a/education/windows/take-a-test-multiple-pcs.md b/education/windows/take-a-test-multiple-pcs.md index 2eb0b2849a..7d5f5d6c0e 100644 --- a/education/windows/take-a-test-multiple-pcs.md +++ b/education/windows/take-a-test-multiple-pcs.md @@ -17,8 +17,8 @@ author: jdeckerMS Many schools use online testing for formative and summative assessments. It's critical that students use a secure browser that prevents them from using other computer or Internet resources during the test. The **Take a Test** app in Windows 10, Version 1607, creates the right environment for taking a test: -- Take a Test shows just the test and nothing else. -- Take a Test clears the clipboard. +- A Microsoft Edge browser window opens, showing just the test and nothing else. +- The clipboard is cleared. - Students aren’t able to go to other websites. - Students can’t open or access other apps. - Students can't share, print, or record their screens. diff --git a/education/windows/take-a-test-single-pc.md b/education/windows/take-a-test-single-pc.md index 5b6d36d46b..92667b4abd 100644 --- a/education/windows/take-a-test-single-pc.md +++ b/education/windows/take-a-test-single-pc.md @@ -9,7 +9,7 @@ ms.pagetype: edu author: jdeckerMS --- -# Set up Take a Test on a single PC +# Set up Take a Test on a single PC **Applies to:** - Windows 10 @@ -17,8 +17,8 @@ author: jdeckerMS The **Take a Test** app in Windows 10, Version 1607, creates the right environment for taking a test: -- Take a Test shows just the test and nothing else. -- Take a Test clears the clipboard. +- A Microsoft Edge browser window opens, showing just the test and nothing else. +- The clipboard is cleared. - Students aren’t able to go to other websites. - Students can’t open or access other apps. - Students can't share, print, or record their screens. @@ -28,7 +28,6 @@ The **Take a Test** app in Windows 10, Version 1607, creates the right environme > [!TIP] > To exit **Take a Test**, press Ctrl+Alt+Delete. - ## How you use Take a Test ![Use test account or test url in Take a Test](images/take-a-test-flow.png) @@ -39,7 +38,7 @@ The **Take a Test** app in Windows 10, Version 1607, creates the right environme ## Set up a dedicated test account - + @@ -61,10 +60,10 @@ The **Take a Test** app in Windows 10, Version 1607, creates the right environme ## Provide link to test -Anything hosted on the web can be presented in a locked down manner, not just assessments. To lock down online content, just embed a URL with a specific prefix and devices will be locked down when users follow the link. We recommend using this method for lower stakes assessments. +Anything hosted on the web can be presented in a locked down manner, not just assessments. To lock down online content, just embed a URL with a specific prefix and devices will be locked down when users follow the link. We recommend using this method for lower stakes assessments. 1. Create a link to the test URL. Use **ms-edu-secureassessment:** before the URL and **!enforceLockdown** after the URL. -``` +``` ms-edu-secureassessment:!enforceLockdown ``` > [!NOTE] @@ -80,3 +79,9 @@ ms-edu-secureassessment:!enforceLockdown [Set up Take a Test on multiple PCs](take-a-test-multiple-pcs.md) [Take a Test app technical reference](take-a-test-app-technical.md) + + + + + + diff --git a/education/windows/windows-10-pro-to-pro-edu-upgrade.md b/education/windows/windows-10-pro-to-pro-edu-upgrade.md deleted file mode 100644 index cb88389ec9..0000000000 --- a/education/windows/windows-10-pro-to-pro-edu-upgrade.md +++ /dev/null @@ -1,259 +0,0 @@ ---- -title: Windows 10 Pro to Pro Education upgrade -description: Describes how IT Pros can opt into a Windows 10 Pro Education upgrade from the Windows Store for Business. -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: edu -author: CelesteDG ---- - -# Upgrade Windows 10 Pro to Pro Education from Windows Store for Business - -Windows 10 Pro Education is a new offering in Windows 10 Anniversary Update (Windows 10, version 1607). This edition builds on the commercial version of Windows 10 Pro and provides important management controls needed in schools by providing education-specific default settings. - -If you have an education tenant and use Windows 10 Pro in your schools now, global administrators can opt-in to a free upgrade to Windows 10 Pro Education through the Windows Store for Business. To take advantage of this offering, make sure you meet the [requirements for upgrade](#requirements-for-upgrade). - -Starting with Windows 10, version 1607, academic institutions can easily move from Windows 10 Pro to Windows 10 Pro Education—no keys and no reboots. After one of your users enters the Azure AD credentials associated with a Windows 10 Pro Education license, the operating system turns from Windows 10 Pro to Windows 10 Pro Education and all the appropriate Windows 10 Pro Education features are unlocked. When a license expires or is transferred to another user, the Windows 10 Pro Education device seamlessly steps back down to Windows 10 Pro. - -Previously, only schools or organizations purchasing devices as part of the Shape the Future K-12 program or with a Microsoft Volume Licensing Agreement could deploy Windows 10 Pro Education to their users. Now, if you have a Azure AD for your organization, you can take advantage of the Windows 10 Pro Education features. - -When you upgrade to Windows 10 Pro Education, you get the following benefits: - -- **Windows 10 Pro Education edition**. Devices currently running Windows 10 Pro, version 1607 can get Windows 10 Pro Education Current Branch (CB). This benefit does not include Long Term Service Branch (LTSB). -- **Support from one to hundreds of users**. The Windows 10 Pro Education program does not have a limitation on the number of licenses an organization can have. -- **Roll back to Windows 10 Pro at any time**. When a user leaves the domain or you turn off the setting to automatic upgrade to Windows 10 Pro Education, the device reverts seamlessly to Windows 10 Pro edition (after a grace period of up to 30 days). - -In summary, the Windows 10 Pro Education free upgrade through the Windows Store for Business is an upgrade offering that provides organizations easier, more flexible access to the benefits of Windows 10 Pro Education edition. - -## Compare Windows 10 Pro and Pro Education editions - -In Windows 10, version 1607, the Windows 10 Pro Education edition contains the same features as the Windows 10 Pro edition except for the following differences: - -- Cortana is removed from Windows 10 Pro Education -- Options to manage Windows 10 tips and tricks and Windows Store suggestions - -See [Windows 10 editions for education customers](windows-editions-for-education-customers.md) for more info about Windows 10 Pro Education and you can also [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare) to find out more about the features we support in other editions of Windows 10. - -## Requirements for upgrade - -Before you upgrade from Windows 10 Pro to Windows 10 Pro Education, make sure you meet these requirements: -- Devices must be: - - Running Windows 10 Pro, version 1607 - - Must be Azure Active Directory joined, or domain joined with Azure AD Connect. Customers who are federated with Azure Active Directory are also eligible. For more information, see [Review requirements on devices](#review-requirements-on-devices). - - If you haven't domain joined your devices already, [prepare for deployment of Windows 10 Pro Education licenses](#preparing-for-deployment-of-windows-10-pro-education-licenses). -- The user making the changes must be a member of the Azure AD global administrator group. -- The Azure AD tenant must be recognized as an education approved tenant. -- You must have a Windows Store for Business account. - -## Upgrade from Windows 10 Pro to Windows 10 Pro Education -Once you enable the setting to upgrade Windows 10 Pro to Windows 10 Pro Education, the upgrade will begin only after a user signs in to their device. The setting applies to the entire organization so you cannot select which users will receive the upgrade. - -**To turn on the automatic upgrade from Windows 10 Pro to Windows 10 Pro Education** -1. Sign in to [Windows Store for Business](https://businessstore.microsoft.com/en-us/Store/Apps) with your work or school account. - - If this is the first time you're signing into the Store, you'll be prompted to accept the Windows Store for Business Terms of Use. -2. Go to **Manage > Account information**. -3. In the **Account information** page, look for the **Automatic Windows 10 Pro Education upgrade** section and follow the link. - - You will see the following page informing you that your school is eligible for a free automatic upgrade from Windows 10 Pro to Windows 10 Pro Education. - - ![Eligible for free Windows 10 Pro to Windows 10 Pro Education upgrade](images/wsfb_win10_pro_to proedu_upgrade_eligibility_page.png) - - **Figure 1** - Upgrade Windows 10 Pro to Windows 10 Pro Education - -4. Select **I understand enabling this setting will impact all devices running Windows 10 Pro in my organization**. -5. Click **Send me email with a link to enable this upgrade** to receive an email with a link to the upgrade. - - ![Email with Windows 10 Pro to Pro Education upgrade link](images/wsfb_win10_pro_to_proedu_email_upgrade_link.png) - - **Figure 2** - Email notification with a link to enable the upgrade - -6. Click **Enable the automatic upgrade now** to turn on automatic upgrades. - - ![Enable the automatic upgrade](images/wsfb_win10_pro_to proedu_upgrade_enable.png). - - **Figure 3** - Enable the automatic upgrade - - Enabling the automatic upgrade also triggers an email message notifying all global administrators in your organization about the upgrade. It also contains a link that enables any global administrators to cancel the upgrade, if they choose. For more info about rolling back or canceling the upgrade, see [Roll back Windows 10 Pro Education to Windows 10 Pro](#roll-back-windows-10-pro-education-to-windows-10-pro). - - ![Email informing other global admins about the upgrade](images/wsfb_win10_pro_to proedu_upgrade_email_global_admins.png). - - **Figure 4** - Notification email sent to all global administrators - -7. Click **Close** in the **Success** page. - - In the **Upgrade Windows 10 Pro to Windows 10 Pro Education** page, you will see a message informing you when the upgrade was enabled and the name of the admin who enabled the upgrade. - - ![Summary page about the upgrade](images/wsfb_win10_pro_to proedu_upgrade_summary.png) - - **Figure 5** - Details about the automatic upgrade - - -## Explore the upgrade experience - -So what will the users experience? How will they upgrade their devices? - -### For existing Azure AD domain joined devices -Existing Azure AD domain joined devices will be upgraded from Windows 10 Pro to Windows 10 Pro Education the next time the user logs in. That's it! No additional steps are needed. - -### For new devices that are not Azure AD domain joined -Now that you've turned on the setting to automatically upgrade Windows 10 Pro to Windows 10 Pro Education, the users are ready to upgrade their devices running Windows 10 Pro, version 1607 edition to Windows 10 Pro Education edition. - -#### Step 1: Join users’ devices to Azure AD - -Users can join a device to Azure AD the first time they start the device (during setup), or they can join a device that they already use running Windows 10 Pro, version 1607. - -**To join a device to Azure AD the first time the device is started** - -1. During the initial setup, on the **Who owns this PC?** page, select **My organization**, and then click **Next**, as illustrated in **Figure 6**. - - Who owns this PC? page in Windows 10 setup - - **Figure 6** - The “Who owns this PC?” page in initial Windows 10 setup - -2. On the **Choose how you’ll connect** page, select **Join Azure AD**, and then click **Next**, as illustrated in **Figure 7**. - - Choose how you'll connect - page in Windows 10 setup - - **Figure 7** - The “Choose how you’ll connect” page in initial Windows 10 setup - -3. On the **Let’s get you signed in** page, enter the Azure AD credentials, and then click **Sign in**, as illustrated in **Figure 8**. - - Let's get you signed in - page in Windows 10 setup - - **Figure 8** - The “Let’s get you signed in” page in initial Windows 10 setup - -Now the device is Azure AD joined to the company’s subscription. - -**To join a device to Azure AD when the device already has Windows 10 Pro, version 1607 installed and set up** - -1. Go to **Settings > Accounts > Access work or school**, as illustrated in **Figure 9**. - - Connect to work or school configuration - - **Figure 9** - Connect to work or school configuration in Settings - -2. In **Set up a work or school account**, click **Join this device to Azure Active Directory**, as illustrated in **Figure 10**. - - Set up a work or school account - - **Figure 10** - Set up a work or school account - -3. On the **Let’s get you signed in** page, enter the Azure AD credentials, and then click **Sign in**, as illustrated in **Figure 11**. - - Let's get you signed in - dialog box - - **Figure 11** - The “Let’s get you signed in” dialog box - -Now the device is Azure AD joined to the company’s subscription. - -#### Step 2: Sign in using Azure AD account - -Once the device is joined to your Azure AD subscription, the user will sign in by using his or her Azure AD account, as illustrated in **Figure 12**. The Windows 10 Pro Education license associated with the user will enable Windows 10 Pro Education edition capabilities on the device. - -Sign in, Windows 10 - -**Figure 12** - Sign in by using Azure AD account - -#### Step 3: Verify that Pro Education edition is enabled - -You can verify the Windows 10 Pro Education in **Settings > Update & Security > Activation**, as illustrated in **Figure 13**. - - - -**Figure 13** - Windows 10 Pro Education in Settings - -Windows 10 activated and subscription active - -If there are any problems with the Windows 10 Pro Education license or the activation of the license, the **Activation** panel will display the appropriate error message or status. You can use this information to help you diagnose the licensing and activation process. - -## Troubleshoot the user experience - -In some instances, users may experience problems with the Windows 10 Pro Education upgrade. The most common problems that users may experience are as follows: - -- The existing Windows 10 Pro, version 1607 operating system is not activated. - -- The Windows 10 Pro Education upgrade has lapsed or has been removed. - -Use the following figures to help you troubleshoot when users experience these common problems: - - - -**Figure 13** - Illustrates a device in a healthy state, where Windows 10 Pro, version 1607 is activated and the Windows 10 Pro Education upgrade is active. - -Windows 10 activated and subscription active - - - -**Figure 14** - Illustrates a device on which Windows 10 Pro, version 1607 is not activated, but the Windows 10 Pro Education upgrade is active. - -Windows 10 not activated and subscription active

    - - -### Review requirements on devices - -Devices must be running Windows 10 Pro, version 1607, and be Azure Active Directory joined, or domain joined with Azure AD Connect. Customers who are federated with Azure Active Directory are also eligible. You can use the following procedures to review whether a particular device meets requirements. - -**To determine if a device is Azure Active Directory joined** - -1. Open a command prompt and type **dsregcmd /status**. - -2. Review the output under Device State. If the **AzureAdJoined** status is YES, the device is Azure Active Directory joined. - -**To determine the version of Windows 10** - -- At a command prompt, type: - **winver** - - A popup window will display the Windows 10 version number and detailed OS build information. - - If a device is running a previous version of Windows 10 Pro (for example, version 1511), it will not be upgraded to Windows 10 Pro Education when a user signs in, even if the user has been assigned a license. - -## Roll back Windows 10 Pro Education to Windows 10 Pro - -If your organization has the Windows 10 Pro to Windows 10 Pro Education upgrade enabled, and you decide to roll back to Windows 10 Pro or to cancel the upgrade, you can do this by: -- Logging into Windows Store for Business page and turning off the automatic upgrade. -- Selecting the link to turn off the automatic upgrade from the notification email sent to all global administrators. - -Once the automatic upgrade to Windows 10 Pro Education is turned off, the change is effective immediately. Devices that were upgraded will revert to Windows 10 Pro only after the license has been refreshed (every 30 days) and the next time the user signs in. This means that a user whose device was upgraded may not immediately see Windows 10 Pro Education rolled back to Windows 10 Pro for up to 30 days. However, users who haven't signed in during the time that an upgrade was enabled and then turned off will never see their device change from Windows 10 Pro. - -**To roll back Windows 10 Pro Education to Windows 10 Pro** -1. Log in to [Windows Store for Business](https://businessstore.microsoft.com/en-us/Store/Apps) with your school or work account, or follow the link from the notification email to turn off the automatic upgrade. -2. Select **Manage > Account information** and locate the section **Automatic Windows 10 Pro Education upgrade** and follow the link. -3. In the **Upgrade Windows 10 Pro to Windows 10 Pro Education** page, select **Turn off the automatic upgrade to Windows 10 Pro Education**. - - ![Turn off automatic upgrade to Windows 10 Pro Education](images/wsfb_win10_pro_to proedu_upgrade_disable.png) - - **Figure 15** - Link to turn off the automatic upgrade - -4. You will be asked if you're sure that you want to turn off automatic upgrades to Windows 10 Pro Education. Click **Yes**. -5. Click **Close** in the **Success** page. -6. In the **Upgrade Windows 10 Pro to Windows 10 Pro Education** page, you will see information on when the upgrade was disabled. - - If you decide later that you want to turn on automatic upgrades again, you can do this from the **Upgrade Windows 10 Pro to Windows 10 Pro Education**. - -## Preparing for deployment of Windows 10 Pro Education licenses - -If you have on-premises Active Directory Domain Services (AD DS) domains, users will use their domain-based credentials to sign in to the AD DS domain. Before you start deploying Windows 10 Pro Education to users, you need to synchronize the identities in the on-premises AD DS domain with Azure AD. - -You need to synchronize these identities so that users will have a *single identity* that they can use to access their on-premises apps and cloud services that use Azure AD (such as Windows 10 Pro Education). This means that users can use their existing credentials to sign in to Azure AD and access the cloud services that you provide and manage for them. - -**Figure 16** illustrates the integration between the on-premises AD DS domain with Azure AD. [Microsoft Azure Active Directory Connect](http://www.microsoft.com/en-us/download/details.aspx?id=47594) (Azure AD Connect) is responsible for synchronization of identities between the on-premises AD DS domain and Azure AD. Azure AD Connect is a service that you can install on-premises or in a virtual machine in Azure. - -![Illustration of Azure Active Directory Connect](images/windows-ad-connect.png) - -**Figure 16** - On-premises AD DS integrated with Azure AD - -For more information about integrating on-premises AD DS domains with Azure AD, see these resources: -- [Integrating your on-premises identities with Azure Active Directory](http://azure.microsoft.com/en-us/documentation/articles/active-directory-aadconnect/) -- [Azure AD + Domain Join + Windows 10](https://blogs.technet.microsoft.com/enterprisemobility/2016/02/17/azure-ad-domain-join-windows-10/) - -## Related topics - -[Deploy Windows 10 in a school](deploy-windows-10-in-a-school.md) - -[Deploy Windows 10 in a school district](deploy-windows-10-in-a-school-district.md) - -[Compare Windows 10 editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare) diff --git a/windows/deploy/TOC.md b/windows/deploy/TOC.md index 906b45e238..4fed1981ec 100644 --- a/windows/deploy/TOC.md +++ b/windows/deploy/TOC.md @@ -11,9 +11,6 @@ #### [Deploy Windows](upgrade-analytics-deploy-windows.md) #### [Review site discovery](upgrade-analytics-review-site-discovery.md) ### [Troubleshoot Upgrade Analytics](troubleshoot-upgrade-analytics.md) -## [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) -### [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) -### [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) ## [Deploy Windows 10 with the Microsoft Deployment Toolkit](deploy-windows-10-with-the-microsoft-deployment-toolkit.md) ### [Get started with the Microsoft Deployment Toolkit (MDT)](get-started-with-the-microsoft-deployment-toolkit.md) #### [Key features in MDT 2013 Update 2](key-features-in-mdt-2013.md) @@ -53,17 +50,8 @@ ## [Windows 10 upgrade paths](windows-10-upgrade-paths.md) ## [Windows 10 edition upgrade](windows-10-edition-upgrades.md) ## [Provisioning packages for Windows 10](provisioning-packages.md) -### [How provisioning works in Windows 10](provisioning-how-it-works.md) -### [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -### [Create a provisioning package](provisioning-create-package.md) -### [Apply a provisioning package](provisioning-apply-package.md) -### [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -### [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -### [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -### [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -### [NFC-based device provisioning](provisioning-nfc.md) -### [Windows ICD command-line interface (reference)](provisioning-command-line.md) -### [Create a provisioning package with multivariant settings](provisioning-multivariant.md) +### [Provision PCs with common settings for initial deployment](provision-pcs-for-initial-deployment.md) +### [Provision PCs with apps and certificates for initial deployments](provision-pcs-with-apps-and-certificates.md) ## [Deploy Windows To Go in your organization](deploy-windows-to-go.md) ## [Upgrade a Windows Phone 8.1 to Windows 10 Mobile with Mobile Device Management](upgrade-windows-phone-8-1-to-10.md) ## [Sideload apps in Windows 10](sideload-apps-in-windows-10.md) diff --git a/windows/deploy/assign-applications-using-roles-in-mdt-2013.md b/windows/deploy/assign-applications-using-roles-in-mdt-2013.md index d8b4505c51..a6e7d69377 100644 --- a/windows/deploy/assign-applications-using-roles-in-mdt-2013.md +++ b/windows/deploy/assign-applications-using-roles-in-mdt-2013.md @@ -122,11 +122,11 @@ Figure 14. ZTIGather.log displaying the application GUID belonging to the Adobe ## Related topics [Set up MDT for BitLocker](set-up-mdt-2013-for-bitlocker.md) -
    [Configure MDT deployment share rules](configure-mdt-deployment-share-rules.md) -
    [Configure MDT for UserExit scripts](configure-mdt-2013-for-userexit-scripts.md) -
    [Simulate a Windows 10 deployment in a test environment](simulate-a-windows-10-deployment-in-a-test-environment.md) -
    [Use the MDT database to stage Windows 10 deployment information](use-the-mdt-database-to-stage-windows-10-deployment-information.md) -
    [Use web services in MDT](use-web-services-in-mdt-2013.md) -
    [Use Orchestrator runbooks with MDT](use-orchestrator-runbooks-with-mdt-2013.md) +[Configure MDT deployment share rules](configure-mdt-deployment-share-rules.md) +[Configure MDT for UserExit scripts](configure-mdt-2013-for-userexit-scripts.md) +[Simulate a Windows 10 deployment in a test environment](simulate-a-windows-10-deployment-in-a-test-environment.md) +[Use the MDT database to stage Windows 10 deployment information](use-the-mdt-database-to-stage-windows-10-deployment-information.md) +[Use web services in MDT](use-web-services-in-mdt-2013.md) +[Use Orchestrator runbooks with MDT](use-orchestrator-runbooks-with-mdt-2013.md)     diff --git a/windows/deploy/change-history-for-deploy-windows-10.md b/windows/deploy/change-history-for-deploy-windows-10.md index 88557fd56f..f7e67993e5 100644 --- a/windows/deploy/change-history-for-deploy-windows-10.md +++ b/windows/deploy/change-history-for-deploy-windows-10.md @@ -11,26 +11,6 @@ author: greg-lindsay # Change history for Deploy Windows 10 This topic lists new and updated topics in the [Deploy Windows 10](index.md) documentation for [Windows 10 and Windows 10 Mobile](../index.md). -## January 2017 -| New or changed topic | Description | -|----------------------|-------------| -| [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) | New | -| [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) | New | -| [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) | New | -| [Apply a provisioning package](provisioning-apply-package.md) | New (previously published in other topics) | -| [Create a provisioning package for Windows 10](provisioning-create-package.md) | New (previously published in Hardware Dev Center on MSDN) | -| [Create a provisioning package with multivariant settings](provisioning-multivariant.md) | New (previously published in Hardware Dev Center on MSDN) | -| [How provisioning works in Windows 10](provisioning-how-it-works.md) | New (previously published in Hardware Dev Center on MSDN) | -| [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) | New (previously published in Hardware Dev Center on MSDN) | -| [NFC-based device provisioning](provisioning-nfc.md) | New (previously published in Hardware Dev Center on MSDN) | -| [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) | New (previously published in Hardware Dev Center on MSDN) | -| [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) | New (previously published in Hardware Dev Center on MSDN) | -| [Windows ICD command-line interface (reference)](provisioning-command-line.md) | New (previously published in Hardware Dev Center on MSDN) | -| [Get started with Upgrade Analytics](upgrade-analytics-get-started.md) | Updated exit code table with suggested fixes, and added link to the Upgrade Analytics blog | -| [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) | Instructions for applying the provisioning package moved to [Apply a provisioning package](provisioning-apply-package.md) | -| [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) | Instructions for applying the provisioning package moved to [Apply a provisioning package](provisioning-apply-package.md) | - - ## October 2016 | New or changed topic | Description | |----------------------|-------------| diff --git a/windows/deploy/create-a-windows-10-reference-image.md b/windows/deploy/create-a-windows-10-reference-image.md index 7f4671ccf1..4954dd3dcd 100644 --- a/windows/deploy/create-a-windows-10-reference-image.md +++ b/windows/deploy/create-a-windows-10-reference-image.md @@ -167,7 +167,7 @@ If you need to add many applications, you can take advantage of the PowerShell s 2. Import the snap-in and create the PSDrive by running the following commands in an elevated PowerShell prompt: ``` syntax - Import-Module "C:\Program Files\Microsoft Deployment Toolkit\bin\MicrosoftDeploymentToolkit.psd1" + Import-Topic "C:\Program Files\Microsoft Deployment Toolkit\bin\MicrosoftDeploymentToolkit.psd1" New-PSDrive -Name "DS001" -PSProvider MDTProvider -Root "E:\MDTBuildLab" ``` diff --git a/windows/deploy/images/PoC.png b/windows/deploy/images/PoC.png index 6d7b7eb5afa6b48cb34df12dd0b44be230fd3c5f..de735060713214af014b38b0b9fd530ff38203d8 100644 GIT binary patch literal 97482 zcmY(r3p~?b{6Fq8vB~|GiiEk2%B|drLT<@zGj|)4dkphI7glnY+a|Y?TVdGTa;w}{ zY^acXr7|U#3SE@+KkNJZ{{H`ek4Ht=&N=Vb<@tI(pQluNyR!nY{V)y=4go7mGe-^% z?g9=Du6ul3;9p9AY1V>XUf4ryUD+U;Q^mR!!2DSIXDFS z*}plTUcB$e!ST1s%FNXHKd;qNUi8HDRPvwCooT`SSrP~p!YaC#SdOOpKFyLbM6Ifn zPt&+zV-Sc#2%<@Hb=oxqZI4h^2oHZgKK{NEdCcG6|Jbo(^Zww=e7T!tba_7ctmfwCOCN$& z`+wnrbq}k0bn85DCO&*ceAh^eDU$x{a(l zBWWhd^b=vfFc15MvszkoX8C`g&B3l+Xy-T5?ca*h_k3LmpSkwv(Up)8#DidnsW8Oh zIQvz@r|0IxIRDi9+_l>j`u41n@j$i&3VcJ~XUyy5DTvUWVa)bTkg1EpjwG>{zeqBX2Ffec)CL2Z2kTAr?Q;f|= zTAA-S^mc6}w||76R1MhcZ%Yt7+xJlR-~PD4`d_G-NE#a%t*)+SWMrhAWN^=Z`uK65 zs3?~s|JqRBDVqaZc;jMBT&EeqGY+lRm@aoku~cfC;Pr88oOR^N?^(~a!QIl*(vCA` z;6#L@6F{`OopyH4&&(8Xu#h-*^eB}|mGhqZq|;Im?0kdfCZV|;OB!4`o$WGsca&c+ z+AaM4+=l&?-&vd8gS)1s9o**s_jQWQJv>VC^2C;{bdMe5WI|Tg)<`?%CzX_*OytLJ zso%k}>PR(#ZmmhkwT22g);YJn2T@!I&b8{$4|Dg*kIK--Zo61`^?Dd;e8Ifq`+5UT zJhzJ&5svl`qq%4a_W)&icJ89qTRMX7jKc zpGI)Iy;-(`Tj3{r-w2iBZJ=>+aRdUP?EQS|Verf>EkH_IzRt_d z;Ed!K5atW%){DrKp-LSubq>u(eS9~{f2p(4U~(Lui{QPw_DOvBKpR{m9>?5MY1}A` zZLnQ3?Uo~_b9ZVQ&&TF?PvH)~ayfMIc&K4aikc4=D=H#lY9|ab#5AA%aAIvwpXR!M zKska3w&ThuYh&HdiZqU||C>H=X=%N7r2Z#~W3llISnT`{9+(MtodhOIOv3l!cf}MX zKK1rS)|lMSi_co`#ZgXbZn?B=Ag8z0mSb6q(V7F}#8loqec7eR@7jeA4;8gi-J!}n zfxeGL?2@|;E^)po61?s5$j)Y6M=@di+DxPrAA3y$Ch6wc-4KsVlt{w8qOE;zBL8@o z(>&tZ<9_c}!Vghjw>dq4?ynOKF3_g*X>Bm>>>#za6G|TEj=I1%7}_qIGry--aa#OM z&w`Nc3miX}TfPXF7?$wIpjHR9SM%Ay^gr89C6Od@^z6|{zm_(Z%Ghmt2G#3<1cs=m z_9W=#u`wQ|8sd$&bQ1hqBW#DHdO(<={>J0N+FFm_`Q$>yuESL7)7dGooCt7rBkDvZ5cQG3q8fYTDY0 z+e!;Usp@gprEjEBZr_%j9AtMbE>K<-FP6#B7Orx|Gp|re&$}i*c1-e=JpDobW7}%V zw@&S{<`9X*N*I~Y+XRO&{*Y>7C30M1BVSF1spYlVwrLgi?L7F4m;_n8udh}%*zQXmU!^Ctb`GYXZa5|3c90gB4mDz!`pu16zIHV4FDqXeXr{3ps?qJh}A@nNhS3F+2Ee`*~5snN0PQu9~~$KAxvFFSY75hat! zaTD#{V|BS&y6v4@KUs-gS>T{j!r0J6O+-x0*Wcg5EbZAv9{xn1obYr%&Xu&xOxE|l z)Av&AC)z7|UOHO|eaM>}RgOP#=Ob+iviYV}xhi<-wxc~iKTKVloG#f14)v!eHCL32 zutTOiwoc;>_@M6X#Ttq3=C@KGY>!qP<3{O+-`|q%Ca$D{y?s;y9Ws|wRaI3`P;lT5 zUs8I3p3ce)emDqpVMw4MF7n!=@j9K))+Bxah$0DuCBlz4S7l{o{W`3E93zfs54y=W zio7~pcQeNOGUa!zFRHGus}c73?Lkg~&PM%eXH1fBhhHsUfCQz5pKSYE?ag1ckC$+9 zUhoYyU6<6hhEQEXsEyL7$CDGxl6*$Z>xM%eVc)-hpRZ!~!Ki(pvpQISN?VWN>G3Yk zMEgIKysmXE!EAqwH0N4}2ERD9sY#yRIx0a6tCtMJms$`2sHdpw?+Oj2E6;dO@8I+~qSOP3BQP6=F5xA!7s zu#bj|4IYFO`zBkcJci=;NgF1=)kZq;b5bfC@z*YoeULf&umfK_c#qf2@wA-7^n0!( zoHBetHdL;TS}94sM~y;A-J=rKxZHTuH4ghcx%lGOlvVM6bnfyEP_QB=C4~(KtwpQL zP1X-0Gfe;JEsk|`bVQs|WXHG*h;iWvtgr9#HE3FXEr<2fT0hiSK+o!_t@e&`6Th{! zwV^2ui$=*7ap*V?Kc>#7Fbj>sxHQ9T5PH5zRjpKK%raV&rpDEwiJtl8;`No|o6Dna zMq%)#gL=_Tw^2Vuv1yMbh_+Zec5$rt=8fO_?40d{fuv0lmXf;H*m(XrR9v#;=GVax z$U%|sX9$*@T@pHCsS{X z2sdt|bZ-ntFK+lN6daT0j3DaBydBs*DHl_ub`RZAyZGttz9V3(GQ6PZU$3mHD!g?| z7^&t!^ZzbEhI~I0?+1;Jw-av>v5-iD%g{>t_PA>bh&rJSN^Da5)K-abI3(mx-7R*F zp7bzvFBbHkjry5e-QV7$1UhG8EVHBrL{r<5jySY4NaFJM04Jmf|MIDquTldjaPOX) zh6K6YyDs^w2k(zfI6gPoXNQSxh18PzwP4JwkGaU{Yqe^W78vUPORGVYbJha0O&=>+QuSTM4zgWift# zInYf$8mEjWZ`)6b)KLziYN=Z<_Tc+FDq+k!b~caFOxpNS^WIg)jhA9cK`UHJZTz;O zG97zw3njLO5AQgk;GSezC71Kw-gkZ%vLBNH6g(zND{Jd=7PZwtz?bgur)GX4w;S>t zXI18-A+VN$Tg^law;v>De8fr+L@xJ)EJ>i;%;naIIBULJU)@(1G~PAlGB_JHkzQV@ z9ZjPQe=pxbxj~Oyy}Sp{H<8A0wMjV_Asb&XJw!=^9Lza=C(OPxP9agh=2+S7s7k3@ zi4 zOV%x<=*h&${ib_N{Ks`b7|Nlz1dU)jpoIqtHAHP;r!}5*S1&xXel?GUf7pH z@4F~7FC+w@$O~ieD6d~54D4@R=4RY_kR$j>UM3rRt#dI5YIZj2tL#z3_{Y=XnvePz zl6`n21nWud{>3@!Egf6>>|3`r3t3+O=V1F*>0!&Rnz^6K4c4=EGuBre+uGXx-`CH% zbl%O)4M2P_P6BiukeLLbI-=jLtkhY5Q(V0sHNdsh{NotoR>5J(x=ICe-&rw4SLxzmr>NcGyA7)^ZbIYo%C?a^j3~v zm%dk_@I%Gzr)uP>Q|$Wk1Hi=%^@xZFxtb{K)LzbB0VwpX9=U&HBvYr(e#&;iw&T!q z)F{^65R0sZ3#%rRjC=?MV8e-hW2ey#X(rYDsJ30w=SDCZq;@k5R`P#6v{H&()|K{3 zy1K4*V}}Z+p!Pdp5a%n82bs4m1b)3_Arlf46DulwK|z0T1iEmhl2b+IE4|w~hKj!6 zk9FS8Leoq=v8@mW12Z(<0fDLCPlCg2_%R@qTCOK-y0l#}8TPK)U<3vq5uUWljx#>| zeaCN&DD~oq&?y9ah!pnRqaitT{^ze>j;|{7kKT8nVSdk&72LJXfAJRR^lz0P4%vzO z**TP*)M_B8>iO_3$kd2>INH^fPN(O*dh+B+ZqkAUHB`3x>3)M=vR@DvnEyIrp;{`* zp`UwB`jF#W5@9grXcgUAgo>nsRzK-o_{(L|yNb?Dd5qs+M71_8SznLF8V4&y*DFt~ zaY~=Z_U?9T9r(982w2>q%F4=w7||(3aSit>|EGu7sz3Y0t7uz(NO}a267gJnrt8+$ zR!M0o<^zC}eyNz1*F=FxZIta{(KA}kBgaNHWHLf-o3Lx*g ztE?U5*tQzU#Wi$IQ2N5yWr_~Uw+jIk_TWVl0mk4XvL8i4N(vu0H@AF|NyN2J=WZZ; z;^Eq*gz+|)Pz*Br$3C>SwziX#(?)c&h#m2JM}fp$<4Izl|6K(#a@u_7Y1Gh!=pdV-%{NsPimsP^|cb&eCc-2o3y9&ATe% zeEu!AYT@h+_SVapVDCjX9v%m;in|P{wf6Q*KfYI|?BlazH?yHs4-vp0@u9h{rr<72 ziSGTBTUd~wo{TfV;ux4Jp8rB5H*mN->)Tfi*#}}p*Y7Rv5$cg3HPL??U2?8 z06HC;aw|=K`N>R6oQoIHE~r-huwN7JvT*5t>t}f?h_dHi(|zs{$bheHI}-VZH?S5hpLFkS0X=7?>H}VQTtD%vypE)XKdd z{n;DyMQ=^;ePbE}s^u!8e*Av=@gu$BVwK~YPc3$bY@S^#K)t;f;Yj_yt%xvz4$#mDrzxo|Nj;-9e#VXK?Tb6VY!cI zMoVD)tB?*K9$8?-B*>O^YdG1^pMS;Bc6ZQiWOmZa;(~4o$;YI0bs5II0XZbs z$?JwFcb%S{6*b+iUpVCde(GAo^66al+ytemPqb{=3v4Z!w9r%s7J7x7%J z5E$&Hu7+!Zat8LPiEh{>)n6k01lYXSWA5AWps8o~J-wAe3(>=07rh}bofy=U9aaGU zb^QLnrz$`^d6`4JZTY!5SImodmQ3irBxHSwPtM~O1#-rU zZH$eLu{2PO{8vs!!;MQ6uCpNOa2Dj<`_BC60qbfd`&kinHyb(W7j&c2^!S!uTO3Ti zh6wkh+Wt{@I@R+_eQMj9MS6i!@_#tJMS1<`&I0@0obh=HbT>4*y`uvThe!MnW;X{L zc2;ujgVOTw(QZe{)i%qI)I8kmOboI5={TkB3mT}Qc1^8b$wCDbMV|ad#D+II^`+=w z)<>*3N~?y91tXnLEEsrpK@GNgpnhyBsGd^TvdVdkw!i-|S1s>W(Y*2{K*WlPinbd< z*#Rm5I(ueMfB&_QmLO_m{8u67<2C4dJ|`_h&I)QDo(sI;GQ@o+Ioj&>@wzg0>;xTi zbI{sSZPpZcsj%T3f&OUVGPeGC-QJKG3b~Rn^aBS zd5RR?`u6S2>C^4M|GhQmb8Jqxva0G(PftQSpQU4g`J+y9gUvNXb6Qig7#{;lR#8_L zHlo;s1Q9a~u?K{1Po>nr%UIMXFEk6rB=ol3gG0Ek;ua-_Tdg<4Y>T3K1auEPunQMy z%J%Osa1QdbTR%v=c8xp6g$)yD1>F$2Kc;79M0iwPJ5V2zlB14#O8$zFp}{UFXCF~s z$Xt(nE9OdqBdMVwexG<#9&aqR zT90dziU>7hwP%%|UfWU6E^WC(s{qU}o}Ux+tNF|%kRk!P0W?clF$oFt#rF@0S6dFg zA2zySt;}7k=4L0SXUMsnf@46Zv(VtPgHv>4O8Tj@l)fzVayO)@6=JK8*o@L#da-A< z(v4i9<&18)lJHYqxsfc_NGghI@SCm44SX8+u=>k0PmRO^rQ@Orn{2X#J+4{G`T{~= zxc@ojxD%_UOW&{68oY&*cwOHrM2iI}f8VJ@WkI@YprCJBS5LkRf>yGq^WD_>49Gi} zO_$HiFHWlu>N!)^nTDt!KQCHN?A(z1qMf%u%`}y}qX6{fckkY{8}4Ptkt6$IDypic z4mW&r?>#kp?$u=AuBoS>lS^5d3iGxbMUO{Il`5bb`b&VYHi zMZ5*AcqD>AP#Sf3)F3@xe}8ki=|sYE3er)$E2R~^bnzo`2J8v4R?RFBvwRZ$A~`xo zA1i?x*Z@U72>JvT3~iT&`bm&WlT2!9l&Za(YYn-NfRy|o-lOgbrx@9IdYodRi z$2(y>Idh@1VL@ls56Fh<881#UA}(=F-8lO8#DjyT+4F2HV*^m$;02TBw>E~On|&q* zBR|$V5$L3HG>Zk&zax}Ne)6y2YXpe{E%o+~ z&oyIgekvD>)y(-G?5J5-f48m;84{kv;#x?XZu%rR6DO%{mkxxF4j~ZL7XV3r^o|G* zOkCZ&{=LVMS1HN``d_?z)%HKLi!?^6r;)Bsb6zEIRhN{tKCCP;Inj{*gUVirpCJ}R zSqnKqH5vX)*GDOdbt5tY#zcx(cKPUEt+#K~9i+_$)=k&S)^vGP z)?||(H73uOn+_^g>>imZWZk&1{jt!|gTm*&-`t&l^XJFWtH17aFfT31{v_*Z-)R=o z$#>>TsAWjf_iUtLXYgEDS|lBOkSueQ1<8Xqi}~5x^%z}jJ9dEvGr-b=q5r|=`mAU9 zZ6w-EyI|kuh>!Q{1n?g*eWr7dJ4U>tbwT$1x*o(KtDO$3CvEj(AE*-p_(06RX0u*F zd$b$s)>=YsFP5YH*RN!&p)iG~erY%8^NW+W$4@OE=UMjKHO#Ar++yT&9=&|usja2B z^W~T-8cTCkNn;tWCLA|R{7;|Lu%XW3?@Z>ek^E5+8&K(=i@0~qeVip%fJ75-CnWqh}dOw{`?Wp^t(O?n?chMC<|W)FbX%br;I(vj~{=6 z;TJ!8{|$Mia^lf2Mw}df6mf~ELIG1vIn~b^F&1wvLAJfg6O3a*+j*ZgnbZ8L(GqFc zs%EhS`o;xiVRdC61n6<{kpo#`sDa$9X~Lho$5sR!Qz%2YVb93{E9|wslrg!NZBN9xg@c&uUuWrq7na!E_)}w$cz=EPf>FX1H z)R)UEW?O)!l=S5~xUSv%{IOHfJ}f{=RXMvA-FCI08O<`MVOfxQg$uv+k4iH0#lj;8 zHma4f2?MB$r#NQ8I9u1o;w!|X$L&b_3#Zl%td|TH9rnV7OcUM|w8snn4~4!h>`9xx zfS5m?vd83t^3mc2MrUc8ISLcYq6&6do~2OwnqI5cQR~-^CtPczy$Lur)sN3PB{PdV z7ISqa^?=VE?3u3iLhOv^*ALTfOiB92A%fg-L(@0XA=MEqh@Xel)hslBgZyOs=9f6* zwHe#mSGeny3gjC2(V+2rBa0ea@{5>-%0U7D;9%yfNWO9ifaXKVAFtDikDCr%;K5?C z?dF!ZbF;HeuE@v18PxYBI=ao@qe?!%3``XISiyS7LAXTnOOYsC32IPwSCnhQ++fFs z*400}NjN6j6r;>kK{$`kfn+*U3?-q<|c4*7PF)|itV`T>GurgpN4c6XBtNn z2>rXm5O;yl>O3gSj{)_25-o5)>?D<48kbHVSb;7yJ(oTBfSeRsvD@sYdHVJqO_`3T z2n3>i4jg9Lb1Y3$(o{$4Rnzp~pkDaJK@t!c2}&-;_dpEIzdS1fKT78gHztq!;oanvKSN%cXL z9cCt#=RX)TKxK2fUe^rcK3z`~D1^dNR3asdUp&{WRw3~G7}T68pSG~o=xy1f=LEj^ z>u59$1PF-aAi_RBtga-YE$rr3+s-pjbUzwb{n=XEn%7lcl-1VNWrZ0+9EkGiq_r#b zQ6M0yJjZHh?vJTD3>L0`;zYJo{mVc;l~M~Hh`14HZ(VK%MP3pt4}Nv#!xGHr_QL0L z{(CtJ;D0E9CP8wQU%9Wml8#*Ck z{iK}44Z9Kr40};`RKLZaQJVU!Ths6jQaA%e?CHO18tNJ=^K@&1xTJNy8YgSVZ+KVA zK5}F3^RN!j&sA=h9Ha+I$A1Ujv>+LDtFjaE>IL1}acLB=}t^OoAYQ zoL;Ix=^X0l2E&SDdi1nF7xu^Sq_S{25)qG#yC@~d~vv*&p= zP<%Q|j~o*|b#a}%vUBUL;P(A#^ta2kc#cAYiq-ckD>hy3)0|WQ5QPx1wk zq)2*C0nd9?V!FGYJ{p*25$# z7sK2q*OnL_=LPsWMr>_u+YNbwu6CVzTLxc~7N6#xN=f=$@r7sl@b-Q=Eo+A;j-B_z z6Q-ihMjS7nsr(*z@}#J+Fe3hfD!ScrGl$vpVB)r*HlgU*?3pvL^CaGRaq%{Hf+5xv z6Wbgd(Fz#@T#vgTC}03nQK$prJi%o941Yr*ZGV>mK8n$^V*7**jl zE)DWmqYdw$-xc^@8h$y|pvu3Rybg=XzQo_7Yq))~PF83$PEs#`F>OQ5Q3yNXM*1cU^9C(!ihLaRRq9l`p zz_;;K19x|ncMhMfn9U-3I(W>SdfqSC@i{gdd1<+lm*dL_>Ab&?mJ_du&yTxbGMZ8= zDimf;eR+BZ-jltLG<2mpr0v#cp17cgz%bD1G#OlIDNb&k))h_XNy6dxnoR~FPvnu# zn%a(BSUdci76pXT0c#Dt{w(y2spm#3WWG$(pP>wh$0sfMq<)wZ+(&|te>#cfe_)@H zka*kIo{r2tqnuVag39GZPHnA>i?r%C{u4<+CI+=uo;lZcnc!>xSfgVFBw2gB2zz?ae2$fd5cr;-`)OPNY4VuZ z21V$;pN0ms?8sRmIRqjDk)!OyTR6ilmz`8z>?dYWAqn{RGgKY>!jS4eEo%$;Wwn&Y zO>f0f(;{^P*g^_lvxnqFY|fEJ1+u#GAmJ><&%R(sTQER_)0f6zVz%={6Z*8c7`ER4 z)M`fCVXTfI9MIoY_cZSpD0vmKh>uMV)e3>?`0`^|HhhbJbQNOPPF#dbbnm_Or*^TCmZ;{_mjvb=8Z9Kh0f7>uVK5hdXS7B$_bV8R& zI&R@nK@uf5#?YL}S(~~u>Hss|+lkud6b6N-(3peERVB`1rWcUTtJ3%9E4Ax_XPA}e z%5EA@l{OLd6_Dr`S!h#z&g%~7Nvw-#y1+^sm*{M${-Wgr91&0K7fl}tI!hs%de%;e z`gsVdBd3$n#M>}`3k81b>#Q19d`+0CZrdz;>)kJTOj~s84zh8|Z$=aC1x>_WWijg_ zK48L)!gs*b(^^bxPOVp%W}}R`^D!6VOQpRFBzLW!<-`z&vvuFj=q5M9-}Eg%xZQ60 ztKym8rysX%!;B8jf>F1eUPjjnf5SYD8tN)7XK}oG`;MOO$x2A_(|E<+X#Ru4b&E0g z-*F0?N%`kZPotaM%T7O>q*US50l?%CTU*BO$)(ZNG?e9JXrk#7AUYY)pE9%zdhM)8 zafhiVz^2k4tK`m*@$o4 zr?0Z&yn@}c0*+r+j(oRB(GONuW|r2p_z|7ZOOQfM^zzJCyU^>?HM9#;mnQJL#$|D8 zdLif6jbmbB*0b2UYl~nDde3^i>!4cf1E-dQWrogzYcS*$j_bBEe*QuUCX!>N_jwEy zOam+SWR&BM_+%P;%FhTVv0N!cJQq+RgJ>RSR~^6yZ`&L8f^L~UVtW=*M+M2|XwyR& zU;vJx25#>mSZ9XeP2K8KvqxJ=a6X2Sr~Z-H+v+ZQKJMdvl7hMSs9SFzIAa1|Hddx_ zjM~leFlRen)h-b(fd{A_?>KL%yVPAI=spp&W3W4tjVTiF{x$cRXK1Yej6|<;*kxuC zl$oB(NBCXgp9yJX?xNo`% z86n3cWQ_tUfM#ugwbD=g?<}PXAoI!+xjMEK3I5SM2zu*OYhf3Q#6U^Px+>(ibgW)SsmTZ8fe&@g)V^2=X5!34|3(ik#)zTPCDT(9D8N`9xi8_ z1I+|S_bdbIHkjLNk88W|fx-Fc<|P_n!k~$ZQGUSO;ZN! zu*K0ZQ1RM7<3KvRvU`C~c$A&1&-+v56vydmL9J$96S?A)+YXXtPQj%6=xb}P!*M-= z@eTK2>NNB>ve@9wm0UY2>lt9jq6Ri(CrL9|X!x~GNGrsefkC3s>vugaB~>9I8IP^& zd@#wt#5H5nTVwS8E2TG2EV+4)bm(VldPyUtFV_w20KSo$JC1plber$1%Zqitb&rs0 zy-&xT!Y`&&&x9*K%w-L(@%}g*bC&JEaRZ7t_m77NKT`Kx4yyrnJIq`*A8z1TXT%Un z$ey`2Ji#eEXeVCkP;F^xStfLXN7>+&PQL0mr++c#3Jsj3=xbz zD>T3D3k2i$vj37QLgPB_d~!XJ72P}5ys)kQS3IQJdX!i)=r;|0c-(9}3;v<%jwWZwLp!MvAxgIfWGjRg|HXQFriYe9`b;tWgpx2vgIib;{Zf(;=4g9d3j0So~Q-w6WtH z3#rW8`ku|dTBwHDk(Ce;=>_>N&*(oFI=I$XF;bm8?*@V^&lXQsVFh6h2FVLfm6kgtS5=$sec;u%q zmz2@Ra1S9cp?-j?VL-(*SKcX2zXNnQLT^rn)@|y!a7oyFQ#6ItFUsSGus6dT*ecx9 z$S;-n;g_;v+IdZ;!-=0u1oc=Mni(dk6*4f3V`5A(F-MgLZ_Av=c;4@`UXsrSh68?b z%~f1{4$m%tR0cBpDrdgHiN)9NsEr_oGLvEH_pf(f#|ze4+9o-w&G&wVHf7%W))&gQ z?RMg5#CzSMrp{YWW13RC>0B5L#!tiakwCZbHuL16{|X&WXOxG>5zOeKdgt;oQOJjxI=)OU3HTd_>>E@xLAFP zK#JV9y3svq=I>`j?OZRFhDJAh#EFgzb=ThpB|Ohtku$uXt{;JC0G`bW4NAT$BKQL! zRou|hNjxGK&U1=`N^g@@@~f_8^VXocw#Y3%`J~QQPsifV=-`6&4*!rnc~Q~<8k>&u zLFT{tY+ZEjR!=)6BzQ)K`erC*8jx`PfUZ~)mV26zd+JfY+Ss1KjW-{g&-e?Od?S|w zqn7p|P9B(ZNJwuK++Vj|ISdS;=4n_stoQ;8QbxtI{|G6)4^$dZ3ju`KDbr+Yya+&h zkMO|wm6@LEH7ooeTcylm&m#1_3*ERZ#;X)M(Ynf;eN8ZCT~ZaBGNkT~ME5eb9^-cz zcTSrc><$maU3%Y}wNq>++|C+&C?z35f0YIJm56lGiX%xU?}77-3|~AjOb^Kb4Wbo; z=`A!XUH2^}KJru5cv{bWR~&Hi?x0WNB@Y}9qe&0jWxv&-b%V2S*W?iksX>d>wJVTc zXtj$=g9hqm2ZPN8=hm$40PmfRrqn}gBYMH-6u6U^%EuI35Y+D<-)i!_(CNJrT<)fx zPo~G+KI?z>u&s#pjcd;qWe@w$$NqP@c$s+MMkQ7u68{=P178w&idZAUH^#0G&{#du0P4>%@`*lL)b{~c$n+!y;*Q!1X+zM`;Pb%WXGl}Cvh z$Tju!pf#3}69B%vXQCGOc3~)7Q$LA>5;^Kg4fz8s!n61#M!-tK{Q&LjWZYXM+FQ;~QubG*-2FkyxPllsX`r>hLJwZ5tmJ(OyB)>04cG7Q< z3pp0}_O4gMg(}G|uSu+al0-9_$D9Tf0>FT&Dt~;Uf^f0xc`$8TAePXVmbHR4#PYoF z{7(i(#J@k@efk zAWq)I1G{gw7mm%3Le`3?EwySlYubvcQNsTayLFmYz^9q@pMK(&eD;+9U}^v@5}bK=EL5=- zk}Kl5I4He|s-%WUP~a6*TPX^#DXm<>{qm^k_>w*uh&-gH3uGqhY4h&q+N#WwT<<+0Tg?g$+5lsh`%Aim_9i-p{ zmPdxBC8-WHz9VTk>(fBd^|)HOf#=d{u%VPBNKctFpo>qUY3w;<#QH2{uuQX!%;8tm zxSIxmW9c{mGdwH^km*jG1uqn?x!MisbK_c~&iF1Vy~GM4%cvf}iOf%)`U_f@g?s$z z+SaCq$tGUNqp*pql79)rgx|Sy&tAO9`L~02k~RkRvC$mZ5z7j_(0q5we1kA#2q>f? zx@;_~q@v>7qBxGbud{Fv80W;B(Y5SAe^HJ`GN6i*#Y1?m1_c7%LM-H%=Pi8XfZA#b zOX$i(%#qN*}`UUC#+64=oVM%(ONF1Zd6{;Ha3r0H&INrEvB$odA@3$UdWR<)8a;MqaG z0twir2N-QGDEi!p%yC0M>T6Sg%_UC=h3~47rZh=%=L}qe#%kxn`&X!-TJ_uV zjaE$@^b>2}cbeT(${uatX)B#6M}tSbN#(9qnDlNd>2Y$<=LA~j390X9w>rH5Ln1#9 z)CWJ%e%uB5VK)AX_MnmX!d zVPU55=|>S{y>UF1Xg*LDA@#*@%lO*dL z9S|DIJ^)X#AoymnFHERq;q~Em&9E$Vn*v$?zpq*7YO)Vk4cv!`NsiPOJ=)(fAWn|z zZTbU@M4>LUf8wTd!1FfK&#LUF>ht#0(Aragl)$tum~inIXd0VzV%bsSq%?)t>BJsz zRvQ|6#b>%8=AZ{R$IgKoq5o7N+J@{aNBgGeCn>=bFtBJ67YOYicV_@ zv4Tz|O!hHULh?qNc4x_7r{e0>C$#JQC(nc*$(d+7Xti!ECMLE{_~%gPU}yS?6DNf8 zI7B#O97LPHt}JQ*^S89n+B?^f$s2^kKGAgJ;bxFEPq0X}G**F_ifS55mLR9~PjFpM zf&1>zm8M0b2AZzc+yM?=j?d*o?uZy%`)J@$)nJ(lstV5)<{?$F5S4}2(oH00p|5Cg zYS*9+9H7JIZm(Rezks^i;L4LnX4$&++ChGZTH(gC7GL+Dl?BoFQJfupKo^56IRO8z z1y!7Pr}}A;n3iN6`L1UP-5(cF0B&6Brz7pf)wQ3JL-aX8s7a?IbqqPzQb?du9hlOU zp2+OD74k6fp;ul#>PC*blJ1puv$3q8rKWHxNW-2f`2+aW+pbxtj|JRM zn>?yPfgIb(2_gYB2!BOkCt$`U{|qjbWMvc|XkG7roc{Agqg(QP{D~1s@bK*tCDZRG z1C9(UN@pN(x1Uw&0E_!*1APq76+{Ci?;#LA@m$CYX-I>ol7BJ0-FPml33y97=mIh{ zADUQU`b=rzBN(dp?goPV(0T$p!#u6Y=Pu3^T$7g-y7!DEHYiDlElt1kSLR43joS4b zQO-UzMK3NgX#vH{h66Y|Eqf;WHpJV!R$$TYB<>{LFt5?}8iy6Ht)-lsUa4A(uWc+X z7ygIf_kpq$dPoj&s(j~42xsa0yv07mTh2`jN z{kCbaV03T4;Lm2U`)D>LGc@k;v?$8=#^2*Dh5pB4PIXvYCliK@KASj-tNYW&%BSnc z%F#<6ip^pfZgw|403OvkizqEJ0S8<6?^J<%f$jBQN$AtNHW4saaPA{7&kEuYlu2RBf`Ydd4WL;eim2{{`=xIq9-Uu{&p?!F4@QkF&) z3)1wyGlj18Dtk2&vhSSV5{4z4!t=T?hu$=08WJGoe)27SRJ`j>sjA-l@@XJc_0VV= z=lqqk)s@R`>f29<*aQP}8ZH3#%tx}WZU4x)wBWB0BO?he&=NoH2SGVoRz(9g zbB?59aGRVf2lr1WeRRR!fA;PM2x z7_u~QLWcH^c1LgTEx{g2!MP+O(f)dqcDCDr4{wXT{m;Y;XtM;nYgcU$7P!-`c0+abccCK4ZRs3D%fBdz~6+NkP~|ECc{Hk&tG!>M)(6vEr2sY z77>oE-~S}gfBxKNZ+NpvI{kwTJN?-wZ9r>oRHBAB-m&(y!lV#Zcl#DWP3D*c!R=q8^)HiEeHx&=-wtsj# zFJtyQ_vIE3(VlbmJszC?M51PTzO6mSy(hP&ejn7rF7Dj*l=$?ZetNo_Q1CYV`Y>mt zBom-c1~kJ^=>6aJVApBXg?lqvAupRPesfZR^X8Lk@O=LKMLj*ed5skI%J;HYo|=*( zhx!_SSH8?Cnb9 z*`=ik`C^tD0BccYXr(urZb|?PN$f!I@7?)fO6afb$M26Hc%-P1jk@fBLm9GVo% zihScZz2xY(Kc%~TM-bpxO|bZ)W4gNV&oj87A}!Brh394JUdR=c0EprWcw`eF8aN>} z+h$S+6xMXCCB0CUEnJ+tp^0i$0RoQCuM;fb(YqxNKna3;c>s)GKtc~to5YU9CDQj7 zeGAjWsz&nMYWSFt6=_to*L}bhQL##)Ykg3mqE9GbX~U^4RCk_Qji0?aJs8llkX;9y zEIEqQ(RELpLnadE1H+jS#}5%x`V6WvZsWOshiu}F-uPOianF14JF(tEh?x)daZAf21wQ*T48CKkHY&)up5LN zJTdN}@|k>4Q79^t*SDh53dE>4|HEkjmoZLuE2tlUL|)vt`;$%a-@bG2n_AVX#czfI zb6@S8FZOANmk*87$V4N4uev_LT1{!urk504Ce{to{wgs4097AceFdJP^`$ey4%h9h zYlsXAabWgIUMJDezXrLhy@+T; zq~pAf`}@g0PT&c0{L;^0IS0PTocI0p>lgc;d1?)?|L?A(JX9}VsntY2DpMIo7?Uk$#JQ9amC~<_SfQ`$nfw5ws+;a ze7eMcb=Hz~MH%Jb5_SW)7QM&^t_FU&aqeiq^V{1i1U<*`zP6#~=4g1=X#-338h;*)sx` z2D%ih+Ozh-8uN`Xf&Xj(LoFIy_XEg4+jw?@tewfOu|m8pnon7YB}5Xa?)Pu6pkw zr1x86X`MGXMBiU`5VZy*eWo3MxArXr8I70{0fIz>3ThZDajuzeYoFb#<39hq;TR~~ zK{2fr$~-l%Vj;Kcz|%M|3)gZA0RaT`;nybvYa`EJ0(jXNcr!;jQK2*a)N>b2;{}A! zCrTA2r=|+J=74dokcKw*dxjlq(4OCGnmr8K&!U{9q~x&sahv7+nYZ?j%v-Nmh0Xl8 zXljv1PqS@?w@&Z9H^YULIH&>fX!dHf+7J`JuhmlLfA6rx+O#N|6&UP0(I&LH<)Wn5 z*Sf732WRFO!ak&!JHxdl)!*1wS#S;NU3%^#qR56ac;F)xe>5n0{JvLxRjbHPr_p<; zr-#cb)!Zo`{b&?=t&uAwipT|Kzk4%5Cxc?oZJH7*s%lBxRu^; z=6#SiceAZJL}UFJFSr2zld5Tk6nCRga%=r)O>b0Bzg3s#E4Kso*%G*h#>nf}vai2E zA4}|1_`Nh(J=A1%(?@WR;xl|;88%%4?C~OvSE~sfGm6D2smSHg)k^&N6_Md3@_};? z{DFeI^DWLU#77%RAQHbucg{#_!>QZ?LsX4YD`f!kL4XUum!@`V!vysGGdyQg9F9pGDC!SAvwlcjU48w@X31)pN;5LbYR^Hbt04g5Hi(aq^x_BMfFK zto3BO%}x$4xIpw=iteWtUT2@wN~QKdu{pzsKj#ma@!YN{r*nna%v2A{FSGyijDK74 z;PIFQMAbHjihWu5vCD*a_quQ1b!{Y9xTvVRMBIOpb8l$gjF z`{u}n`TW@YeE-VZ->wU4$6T1h7T)#T>h%OPcBqebW+BUZoprRf(l*oL@t@IeedT>@ z1?mzw@BfFWua1lId%_i^J7ht+kuGTgkrV_3q*Gct1VkD{O1eZ!K^lamyE~R>=py}tMJ|ytkZE8t0Fa}f5{y@f z%Dkfq`}57~N2`2Kfl+HiGpk^w!I*1_+w~K1S*~gOn=6*il*v7TT^95SQt=g#MXXSkq$b1lMCLS!e4&cNT&OinhFNcTxxNGcF2i{h*(%y)_cBw z=YRj)hlrTCqZ9yzeI5=bzthFe#`$2Lal4oaU9hVy1|IKe63WR2L-{S@Hd^)cX5*CgL4_~DKU<$A^ zTwnqmtlFi2_f(?ZPZgxz4G%B&Ng++iRqmm@x_jCh5nyt1;> zk44t{m9ny%tG=z7hIQvv(kN}ZX1v4!<&V_$8-&O)6>?0?i=YlCL;Ax1{<_p6S0D6< zciJf6{;fs)g9jZYFt1ku=o#>saOqM}Q?D)*6g*ATk?lP`KNsZZ*XQ-uUW^jpp)u^^ zjX9L(F<7&)u&8rcm-k7e{%;D5Li**)pu$2nBE27P#^Q6oQoJpI32Ba%S!opL7It(G zCYH_Umt!Xkw^egl>Z+B$NlGlRf9;p2t*yOCKq*a#b!3oU_FKM zhh?bd`YtlLm_ax9`Q~2LWhotegX`vp9HHbWvt~Mu2g#fgBthR5b(~UDJj{CUWXjRJe$)Tao_#K9(qC`=%-ACrDUtc8{^- z2DMjfyDV4%wTlJ`+F9`=s)Bk4w1;FO1j%G72cjEPliMAfS#MS@$ zsFg4S#2{lLD_qO{{o(is4eFv+@T}ja-HP zh!YSqv9NscF{slm1d~9flkq_z_e?rkVh;~%VUd(?$)1sXzQ5s0N03TC_!tu;TveFB z+5pz^OL(Q`wDFQ=Q9{al`okp#j#K8MG+mewxIs3gAF?0Gm)i=qTd-Od319y6 zOoi&vRh+rleGUqVywRKgVUw!VJxJL>7NpQ82HJbGz+GoKQtRM zVMECtjJ@&$Ci2$1rrFDnmB8)d^|yL2jAF+ng?>>LEHW9q5svF zbEO%Z&;9xl$;C=OkALUi6jEkWh+`1BNkNjkE7Q2%vc?=M)Jk%1vyx9@?t zBU;c7)6r=Agw>H)rKc7{N{wO~dj?NSj;aF?K1%S#R2$-s3 z!K|FvO~H@lEaoEeloBh3EHhGEgj(+S1P`mt4^1|8y)Cwuf^y7w`XeWc;qQVgWqUKF zs$TH7Ibe(1SyC-hF);`Z=ebvhq99+?Mrsi&u>R@Md@*V41v(Y>;SqvL+J!0_i$6ZC zuI1KGCEni>G$q&cw+0Gu>Ho$~&oQl!Z#zf8oLXIGe!f5v7Z*Pe1F_Wu6BCo8nR+*? zX2r1Uv%8S3jq91jEUEE$6N$^~u)$rKNL9p;0(b#H%q44g4A{F)N#FSK{L(3Rjsw?Y z$amDt!a|mV(C_*-hM3Mj$#!$%F^5hys0j4cKX9&)I~z>lEugoN*KG2s?vOhNQP$xi z`ulx4`G7fJ0e)x1lh$1Dz8=T{ zSphJEe)O&r>pM9hbzHbUmHCzgZkoPV;{7heNU|xyPoNvj42ajHIZt)MKJ#Bg_pt0KFiVS(UMjn z6#)$>!ar69hKG_LL8r5bp82&2H5Jum4?3-CRbmZzIVJ6qxNA1;8tgi&pA6l=pyHU| zOb_ILMA-WOP2n-DVrp$510*Pw)zzC>PG17{uCK0KXC6uuimrGXDJUphx(m0#w)eI@ zzbC?1%3A&Mq#|1%ldSr258;8;ktP4nkCqp4$hIQzut|BeCfj(0HGjR9^Rr~{yuX8c z(>F^+Bqfd>hD06>K6q;Sdt_wf$VGVs^K5BkMD>k!JBDQZ&*mE$JVMmf^*wJ)zjLEz z+wM@$S1=8jooZNXi}(3ak6xBCtEY)b4RS%Y{}xOyd!5Rk4kLZ~L#N1R413CzRc?U% z=FqV_jT}{miz~cm@ z0{DO`WU&B?o^zFHuI^9-ohY_$$$h&6UGy%j)#v_#&FOUgdd38ZE8o|P!gKecn^AZa z4Ln~A2Q0J)h(Xld&{9I25a@b!-~7fZl3ckzF)IagC(Jwy$?bmd`P(=0JPa+|-)KQ} zq6E4nGry;5M`^DzFA%JC_WHKVK=b|mZ!gbJ6~<4m?-xaU4+mU;()R+x`hlWczNIq0 zwGsyc;WYeZ!xo&K%TXi|a>qH+{N)>nShMK~Bbz^2&HTghGfe;+yj8saK8S$BvhMG$ z5PS&Bmy5ZfwK-#;p#vC$4=G4v&<^>LpWj<*DsJQ8;80IG^t_^#jLo>nrtsviQXH}6 zB?(Tzvz!iwu%4G(7y28^;(RD{72s*drwaN9s2k_^ceil6zoEbK;h7S3R~vV7AhxGR z$^yG7X`-+i^GE!m7*=$2^rBdDP)Nj$UiRy;_|1w0Ddoi5;MCcqVulCy_V!15WtiFh zM_d=5Chry`#5a{{8{2cQ?lpqPx4r`EX)d*h|1NBMGh|_ZnbVVq+p; zWo2~~i~%A|4cEDcw>}Ix!+t!$^QP%To@U8glp~#GL)0H*1FR4bkCG7T?nmuB5+0@g z1n0ja3*$UWDAdyOz9T@rfSF`zE;o6fZwyCbfYgBj>5$zNt?6Us#?ri%lp^|A(C(l9 zfLjM!5oam8{5sLA)D7aAJzX=!OuQBfzp#9*GZq@-kVX~_lh z5Vb%5h)bx?&ixFU@i0=Q&i?=r%yDSKdUF#8g5bNsy8Zihe=P$0GY*M=NJ+dmk@^W3 zZ6d%5^91Bf1x&0-*qDICL*F_cR8TJ8Ium!!%m{;!$}SXaIYfW|U5u988Me-E-4XxR z%BJoXAJ^0K(`z8mo7ZaQazf^J*D(mED|i`Q8Io5rn*pdrazb))o)X>*BwYsz0K_>b z&3NSNW=f2oEc2ZyL$btue-(7Iuu1@zb~D&pE9LKFEoAjJ36VwjnHDzDriX_3{v9|q zx*`y(?w|r1O%QC!>TdG!^RLZ=w4<-R?5T+N2ZPS5>WH0PQXb_>837pI}W zc(P#r*C)FQSGE54mU+}G7u^qGLF>ftNbvx@LIFsJvSmsP>rZN7zb2|RkS7EIDW+>* z%mKxFJ3NR%xoP`&uF`MU@7;R#9i=loYp9U4%!?3T)EUpdGC)&ga(@e-nHgOvJWOIb zX9SP50JJmNGN6*@yv&Xx`RRc)A#{;*rOU=HoNiBiFKHd zck!uZKEFHJJk5_`o5-8ZiV-npT&CXr|ET?$KR)07h-?83;ki&OjJJ;F! z2QagVR{va-$lJKgi``DU|9C(Kkk;=Z==RPo|4|AY@Z$LWU2qu)`RbfNa^1CJuwSVl zjB#-|Rp=WTng6`aj3mqO9+*_~fr%K}OuyR`?$v&hk6CPb6|!=Vf{)jG3>!XXLUoPr zZV`_-A!l!selfMmg4@K5R8BPw4PxKtfuNVP_A!uy;3eex@7!%F{)7VVuEX2X@t?PQ zcl9nemL0=~Fi97c`|C2z{AjsI2(yz2vr^(y&Ag${$Lq$d%zpRD*obq1Tc8k$p5g3( z=jFd~N*gIasYuz{yPQ_&(+o_V&lRK6988s>YynO$AbjKpIcTZAQ$Y)kunmW#dFb9t$eyYT&N3W*eMB=4*8X$ z*6RBTfmrwcG(WR3qoxI{V9--!v}^?kPynbN*0J`h95cuQucceE!S}D--)nzIxjWy# z0kco+XaP+rUB<09?0kVfw*nGe68~_*3jcat|K$S@ z4nxL{0!aG7cjxElfE%wa7u<%_Kqu%-&IPQM;``OHN=Gnde#eE^fy?{llCdm*$nJQd zkwn6Lb(GzK3v5VlKYs&E)KvgYx%)Q=Oc+0swUr1^GLGqkKpU8KOA{|2xHEaJXrTO9W2>h$7N6CFluX#o;BJ3AUP1fs@}gLoef#9gMbF1LJ2yh5z+h7pc78{mJm&)Vdjo2_GMLVP%| zko1}TA=&Jm$f>>-Tid&xI1_tzXfod7_v!r1(dv|cl^Z-A^S|&P;H7{_#|#Rn^AT)pYwec zY{Ywd_J>w7d>dOAi#b|>lb@5H1%5MxMR z&@)|l&)k(^<65}KjD!|8^wRiwLpV4CAM!{v|AwPyR0-Qyt<-;gCBIqZw$fT$;kRNr zw#aCEd1f@yPI`D=CiPLqsM{uyP*N&Ch9Dgcl2+M*l$0xZh%D{o08v|(1tP_`n+vU* z+da6Wk@Gi4DgT3^#M)7MSgYSv^7oUQ)u@t9z2`uBiqet8wBdd}k0(8b-?i#B-h@q# zcu4(q+uG{vvN#EreTwuG|K)jdK#S+-G$Co}XP2F6`LwX+%M&)lcFZBTtl}eCcn};M zdf*9j{XX44yHkRkjwadb??XxQ>ndNy-Vo^9x8N$4Dt!2JB6G($eWlBDWLPK6aMp4A z3tqSpS~LilNQgqFCMG(uKn$mjlUh9sFU$J#tI6AsVQuGU@O6LfdlQWopHEqYo@|5t z(cLxg&4qk2ISSvU)i6_4n2xe(v_ZVqUG_V53Sr~*Zt}4=55SUY7B^!Oand*vw-}sK zB0bD>NBh(nQ+j{2#iUCrD+Q2Nkf}Ie)+pM0tj0lnitA#jIJCcvhHapBGI3I^U+utX z$dv}x7;72nuuyaEcyAu(LQ8kexK1z5a3JPo5+JfKBI+meO;B9bYVFIPIdO&;4y%vQ zdadZbGGpY5UEiGwpO{Y*0q&FVj_&~2{Q+hu`Q@%gO-${NM(PDO#;dqi zjkZ6wg))XM{Zd&i6)=Z7nMl5gFDsgB>#+H%IaF%0QX2ka^$@6uCKY#2uwckeT zm)HdTW+JY3pLKEl>_)g-VYKxGi;QsJWJXMd5D$e*dvM+F@6osO(4IO}Swp|ryHhem zp&c!#s3E(W-T{ildZZD2{=z_pXA!pIPjiMNdHJIIMc<3THa+Pv)bSp*FObG=_qp$z z(Q0eltP-s_48=?!a`RX9BB7;B9o}f^9_Zz`8cRM}a7JmryXL&8FSN;#K3U0oTl?MzJrf*S}?>6x0Wfrv<_)o2Z(pVPje`N$$J-C?D*Or-GASxE)p0}6Y@IO*CyB71Bxr^ z$xXnj%OwXmed^(7QKPA8m7cOd{VB?aM&I@JleX}g>O9;Wc$;Xz*>uXp!ir`hKIa!U zHCecB%(D149+*=}U&V+<4~FY{&&_Z0dL?u}h2#7FK#wUq8b*%EYs8$R)IM}=Vu)nm zXUqRFbLWmbR;V7b*yd`WB{yz;i2LEf!2qdvu@Z!?p4Zt@sGAWvLeJi_M+N~ zE2uUh2EPqcD}}k!8{8bnP*P4v2U#UseliuZl}WYuqdhG8Vu(Lu5lPx5wKdnn2(9$Y z3N+yY#&BW9U-G2Kob&mM3M~DS=r0ZX?GrPn=de!z3JdG_ySs}-(Sgp5d1N-f!fJN* zPqk+Hwuia>BP4SST%V#bLxj2`RH8&|#8AQ?1`AXsXb9?V`S?NQm1I7Xuh0F-NG@;n z#zlARjT!U?)#%j+tcI=fb&IU-@fyCbS~}uN8F9$!p>F7ZJTvu8(;cN0M!=Y zaVLy)2h3E!DrV=ll`U>NN}=sOsahQMuxz_&RyXKy+K#P1$yqcjGr=r1)2$y&L{Y)e z)zx?Rxm$^d_qjUy3ykw@zP{_8nX_M&uHTJ$rg{$bKjM9tH8IuokODyE!*ZjzAJ=bi z138H5^W0PdB&o9RqP~804g%Z(+AF1OXC1y8yu9uPsERQsY-p1-n~>`xj}7R`t?$(b zN@2&H;Dxc#HS@%ciO>|bLt>{4sgmCto{^iq+cyc8l4SBC7;~H#Utn4*!VoIR7i8?& zX{l!M=a1G96FOqkh!La`PdN#}oDEW~3_gDQ)+B!O*Cu5JW$17m}pHm>rc*T>vMEC{ZX6{xbx&6kL z3|=;thbGY!@CZDfo}NxN0IAj;#)i9HA9GswGGltM_GQmyxRt2=-Vw5ak{_4gnaTUUx60?V;mDwad`Jed zsG=m(xxuHMkn4$>&jh+#wP!1$_us4meb;9TQ)unT^9JfdGmT|Q-}|lIDMcPZ1q{w) zE9FavP-<3bYvIeR7~ji?#stC)K(&*@`%BZqq>I$G%myFy$jH7^QBkP}-f=^i!Ra~6 zsl_miGHE!Uc;iE&!G17sl*<}|w970_{u$1jXMXP1SqHkD{lJPC2K|nL5enJV!+z)J zWHp0PT~67Q7m?i-v4SXp6E!qr=>t~)x5+Mlf&3uAV~{kz1m2DEW;D1-Y+t0F`KIQD z$}<63X_;)v9BF)%P3*+9lWS}Dxd7;Q{lwdi#7g*WAgT|IAqF$H6} zZjLP}+)?i}m(ZR3=f8-fD;L-C^=~BNZVV0Yq0c0@vtnILaW2v$nvTh>cgF#|$H%_e zbz2VN77R5LR=A4s>dubh8wS=_lDij0aYY(UbCVxCZy=Y0+;?cI@n! zfA-72mVZGXwVSQ~roCnr@VdV`Zv3S{7IWAa4(xOWrPUJ(imQwUb`kM^gVAA)_~NSb zoEOIHBvB!i^B~$}A<^5V6j`{nF;@9N3?d{9cLcx&k#I*Ff8Y zL7xlayj4JC4##Ys6#^iM_CM&IpTEI5Cza7Ap5Sgq@)h0gAENZJQ;QLkN4jxbQuNe zZcH3;d0ZsYPq5%JxI-I-xJnJ7H$!ZU<~*p&trSH{x{M zudb!Vgrp}PFzqOvNpgyEND?Jc9O>a%%LKhdb}Q zcZv-E>yu)PL*t$-oP}?0^bqfHf5g}RoW04yO8b8-?Ylcx(MzA!shlm__*(@f#|TIg z>Kh^b+u%l5#2+pETsORRbr6~ZU!?di5(l6uG7^6lJn6K1&G?(ZaO63wP?mNJdyJ1< zyT=S-3XkJ@-@V0~4byefUs=48h3oq?d=?tSss8xQY%S0FJ-+*Jy)3PZi!tBApFhq$ zi)adE&q>p9tk&aZiAJQsHO^|hO>7K~^8x52OJw+0DKVD>Snl;`e@0>sl4&gjd}5(p z+6XgS6nOq6Vk+~>S#QKo9E$TQuJbQW(EOl9plwZF2Y*ZyJcVuFc<(EwMdnK!cA>t! za56z>urssYsOSjfj2m4@xo=XrVHLA5!neE^%9oF#z@y;jJj<3>YfsyrqkSUfZqQXe z6-bmqyJC-yAgj`SJxy|ZxszDx*UQ}QGXEFw}q30Nlj6;hWpQ z>u3`ec)~oW^#ZyZW^6la>t3KHOow$;aI^X3BOp-3W-8iT%#Uok%asQCb33j~@rw&I zsXmi;;^OW$W78!rJ3pf=ur|6@OHcD+p79AWh#yw>Y24aI`dLy?_%uQ$mYQ-)N4R9N(D&5WfGmNTi6}5_ zTa}h*W%YH7Z`wx!&Wo~6j;VNoz!8DGuY~};Ai-Z9@K9Y=Vd-p5_LAS4FCbt_0}4Bt zFuW>_b3rp|3pfv0@@vNYW5>>GpiXn#dGCA-`S5+B)KeR3i9(J$mDzcfpn}P%Sq3A z;NUI9OWy8yr4(0S+HYX;l{sjMJAofBH8*k9;yw}bQTu|~f4 z0kU0UYczm_By$@nwV;=UXc;nskHJLFhL*`UqKfZ}6b{}g3B125QD+QQ58 zW9A{Zc!#JBaMzj7_b~cFlKu7jIw|#99qV(PTr@{VM_B_j5iv1WF3`A18o!*+J?mx* z9MMtjlx_jJgpyWc|QBxeuvJA=lhab z3enTxuzsb~0=kITNPvZpn=mm)?B@+E*DcYEiz>GY_`pxj-TrgZjSa8(#dk$AtRb7H z3r?*La}^Bo$9qA&68Ev>U2rjN_Tj!?zTd8NUtQOB&a)G{+6kx_wXC00@n5d78g&!3kSzqj(( zRw+A!pkYypl1UAm_{Ll9D;i1XzZCVO{7m%pfdbmyK-g=+jf70BBA(Z~z=%aY&xu+3 z#CSQ|)7N`AIR#XQ>znYulU)e_Ua_gg&JEbPMf>z1amb zWvd&6uOKY}P8Nxbz|}DO8G-o`{WjNlGivBB>nOMh`T(4N7muw zui$;)tJRWwfAWM-aF}>Zbdf;i>x@ z%xyX&@6Ul0>z;pYBa^v+h9Ka_88dhD#Y*InzMuBG+UK&dj-9EbJeYvtP;kMo<9ALq zc`@lgb(zEp?1rllNU#10BdkSWG`>S6&%wFrK8~cbMU`}fD;Uz24>|cBxwk9uv*75} znHgn>RnL@pG*Q%xcQQ#dV}*%di65Wu3>)1%ucy1MEeO9g&c$xSa5MeU?9+=|<3ly`fBkaqVGjlU1tpsRqmOs!)5J}tZ3vL5oBZ}C@;EpYUzoRm*RH2a zK%vG+qEcC%2_l}5g=e=FfU!>a+b81(NB9OCmM&)+(%`u=uGY%@n?`W3(_jO{=$94* zRH&&&Lg@ZJyh9mTCJI#J>#GkK9QoE*9uz1IYiag@mo|tSE{Cea{H`nZ9 zJebV&2~NF2>#kfb{MrxKOR1w>^Ag@^2*A_?Wl?E0NIjBf7j`U<7NXuk& z&<-R?Sug)|Z^%v`9@&poSmwy%QE$IS&uDi2#5!F3S+~!n?1?mua!Dx|`fDV}g4jp* z&xm>n&jFHQkU2m#g~&i$ykUGHht4zWoxbSh18C<&+%4OohM3v%8m+ly7vY&zY*dY= zZlV}58ClQF@pm|zN~`T=Jf_c%y=%GrDf|&GH|JRE@><2(4ieygEPs@fqFAMR?21nt z7h8#xkD%&u;GMc~|FD9hvN9mgVZ6g$(d9-}XZ(dT&2^Ty!U#ziocrf*-?J!}(Wu+8 zKz)-f=`^P={pjn(=Ejmmudh1D>w%UPO_i^qzNv^fdr4m zB6VftKyg2D7z^AguULm(g0kaqrrI9>w0+7Mz4?-``avu00d6CR2+2L#&3GwD$Jwso zrKkrm_H2CQza${8ANHB(0-{i7J=!f=b53J)DFP6)dE>o~X?VmJozyO44zul9oKmlfL z)RpO?&nD%;*c0%otI8bD)Wz{Gb-kgN}jSx254gA(JrW4zZjL114Y_R z+*F$nwtxV+(S$;fe`EvaDt;hZz4k}0U4aojxSt0E6VKk6lS@+3Ba_Gz5wJCUqs@df z$)rUQ;!|w>R;t89Nw&qGM&+5rwPgs41*T2y0}f6@{L{;-PE%g}C-5+DO(9y}djusM67UomS4acn zG31y*d)EkR$-QQ4tPYYM`_q)|+f-mLYskHioMS@f*}xg(=(TUt(P7fU%Q@WOve=T# zV0CU}nju?T4pwq=!U&@RnRL`3sxS{xtotQE}ELCaZif@nWE6BedY|WMmPt+<< zMYdZ%3I`DXSRFDQaan(tE(sa41jjczPXrabiC$sE3vS;*I>F3F)^Uk_Z1_RI5mFLn z+E?f_&wVo%b1<{*K#Wd(_z5+ivCWkCS@A7T=}C0Y9W@Hrg9@%>GGt6|r6#Lt_o-wG zPH;PB1>64C%@V7+1p;WovuEB6!2pS&t7Qw?!30@}!f(8eC)MDEY%bF8FyxX!xkuhj zz&8|Dzo6Ei5kaR<@N{3cmN#7;JnAV{*#0D!!f`4l;NJYYwFQz^=|SJ46jfQWFyBkS z@D$u$fW%!jg>w4%k&B7_rbjV&$sLVn3R7P4q;R{rlqB> zTco`I$)Jz>bpPxh5$hofj$|$`Ij;PxzRuy#+*z!F z^3P!ws_kS&)0sX;`bM?5=1r0}@A$~S>c6zLaMwgW3qdzaon{i3@@7PuG`#SQQi!;S zq;w5YrE#5#-wN=;KSF6kz`G2V)Vg_oOS zLEi&o-}8jJ27#AOh7^xP1L6e`-s?L|kKQe1BqgP?*7)mX4NFhD{qW(K=iUkYR<}fN zb#c*iE_QzOWrMq`QZ6oZ|Fh2wO_JS#Wj~K}KcHl!l_u>>(tSKH=Q2PK7d=5{?y-kk zlIJscbj~B>b^qVL{4tv&ozzAQKSpq29P57Z*{%R^|G#Op|HMZ%Jm1EV7HnPzr$&y{ zCS(OIK@nd$bvbJzu2nx^{6eE|t+NL@tXWHS4ie(argm^})z(m*s(X{#dQaL?P{{n> zKjErlS<*4E+d}y{NDm&+4S#GLvq*o=Q2PZ&0|p8!2M&tLNC8(O5AtQ) z=K-Y>U4h@-$GDu@b*y+BL+1(tOKRAXU?p6Z{2ZLoeB`OOB2Pnl(d-oldl~+Vk|*yc z^P*fMlNOS`xE$`LVNrG-?V^LbGNdbNlA??KLUe9W-%aFlNdO7`sMvSO;;T-q8m zgC?C^KW!X&ka7f;>()FIOHv)V&6J#OH>aQApe#F_Lh0sPs~tZ%RvykP?1-Kp3k#`tr}^WJq3a`NJYfK-ue~vHa*{4 z&ypV8a!3Ii+7EwHF<@YKCla)wxpMkIk`y(IgdAKP=#ziMu7|sn2V9&mP+#tcyWnBX z61xU2{=tmDZevC9p}~}-2ZEDNAo;-TGF$XQ&K(Uj6RSV3%l!_z#8_Y$y&vhlFc&`_ zy?T&^5u}EReCeYSf|i57{+Zr9>!5S*P2TJG2cj@ekdcBsY|&N)#B@1$skJk*EA!19zyY?S{U>&)cn7EMJ4D2Z%l1=YK5Dv4A}VUuzi z>9?xh+6t<$SFjtjfu;b4mz6X^pMj(Ja%qH}S;rT)I1!fY=JT*ARaIofH>I|%QOXA$ zQ<4;@N=yHN`jH>QVcbYC`TNRcu1a41gR2de@{frE*QFl1_B&C(eilE}Y|V9ZvgHIN zN@v?(7C{Q3=2xVht`g`q&(xkpy*^i%^nwuv8OiXat4jhy|G1Yp~Ou0uP;raXg z9$n6+!_NP|=H06R!KRB(E@av8AIWfY8I%<2oZNbQ z*V-*ER(4XM-%@KALyuQPu1zjh?+&MTkAO@BR|6;;^o9M2Utl>zdV^O-qQ>95z^Eej zW1GrddU&b+7FiJkdYC?b9O;Vl%%rVa`KM+769c)@7FO6%GzvjAl$8dT>+0Kdr)XkGV1m$K8#iPHVf5_k9wIrMFh(U)E*HY|n<|$0h z3fCdo@j)D1Y{F{Y<*k4Z1Sh?0A`coqx60&VFyh^dVm?C04VX5%$R#f?|l@b&h zDhcelN_(}3#=Y-Taw}`k^$#;;@`Xy@KtJ#-Y;{^cE7c828)%!J76M!hO%hw+1AOHF zupp#1xDlMmq^i5FHL2xB@(vbU+FRl_94Fa-w=Z)qMH?B>vQU7H@|XXS|5d5Nip>Cx z1LnkT1y!ObS7n>1SALf0$N+nBL5|wn?_<#V3g_qfKqe;4C24zOX#u4F%xIy2RE+#Aj3pR zzouGh%WFO6Bol@cGXE#Xq)+o~@hoDbw?tAM6hsB?bJvt_(|iUG-V}5XR4}eNMsnYp zQdV+LwVBd}5uEHW+Kk#HmeVw(J}BcnxRv{EmTo z|IiJgC8?=;V1^c+mzn@#iYj&ve6){QR_xxf&*k3AcVDZ_)IYtu{l@x3Cr*> za6GB?h10)keH-4V?4onf{Mh1@`;dK#-5vVA+%>DZ*dK<6;)|hTV?0&xvQ@qGi;9!> z$PXqjY49=2bnax}>20)*jxoMVgXWgVx0ahVT0A*MLB1nWL`~=BAg!T!rNfaEPF(s~ z@or%B5H+_SFh}UB)8*BVKO*rN+>dI4oHh(;SKM)td354_vS8)W#f$n%nQXK>#j65Jb>=enaRwRsuNh2n#^CuP3g)oz*S>xzV-Mj z%HaWM3hJLTezY)ZT)y_nFg`wA%yZCc<%g{x9*cOjC(eHB?omMQ!4hR{$=J}4#lQ*v z@ca`#Yuz6KadGO3ikNWKBJde(zWL;k%sWtDO1P%%XO!jAp5zZv{q91!3eo5?(egD_ z;6%@H?6IwWf{B2JY3T4%0sWN(W94EMfjf1m%heZ%VyNx3A#9mIz%k3Y~}PJ z{G$So6p?U(-+eP()%Vu^MZ}A;Nhex%EiN)*mpiMQJ=}Hwjj!)dS-9pY%VrncH2(w) zw?AU#+I`bqp00Iob)h^z^^7lI=^-c)L7}$X2pMqB22GE`FKJQwN(n2s4Ac`3fSJVI)q@~+oY<@=C+i3L`m(Fl9tP$qLI_~14n zokZP@)`_xWAHB;{E#1Bd2aKOuA?)2cpFT(s^1*MC!mvpPVSbnL=XG`eirzpC2^M;O z-`&=r63kQZe_W~CB4tmadA4l7F{FK!8yWWqT3f5Lo?{2n27U6hZe!5k!&oa4Pgeey zjXSYRi8<_|kll%KfsA9~S?^<^+ijjk_jXWnKs~%hMk>_1e@ca$!aepiNjNV~noX}$ zAB9F!xxqodaSW^|lM-$+tLFC9=}nJg@)Ox8FFD z-QC>QmyIhy=pv63EQc2M2`j9jxlcgZ|w)y6h=jlwrFH-wDiPEit=-XOPZ1?G;ZcX)am=uNXN}|@XVwc zZR_O`6CZ~j)XG;YN9k5x5a#poC_1OJ26X|Sd?H)_Ji^>cA3t@m;%(|$mnE2_sL z&dm|2Q5Mxq!|p$(YuWe*tDPQS2t1Ez{?zL*nkU!_Xn)v~EC8Ru`Cq(okf8(k2>Iqy zOM4&9T*}5ZQb||51|@dTTZ6TH%m>0zJK~QAw6T3KzkArYkqcudr+yM5Q1!!+J^?ZfdU`<7z&9LQAIAZVSE zm$O`}qy#d|03C8-HuVJmz1j*D6s*-K;501sMsbHBm< zpm0{ga&C+2$R~UR2IW-2bhU|jZ9sctbWFh4G}!VFjk#5l1{IgTy4~fRE_#%dX~+Rr zBV9HS5#WV|k}g)`B_9xR!cA-+4tjg{alVxhJtO4duTHqcRTmXEXNzC>-yZfRs;WhO zT+b==$T%+!5(?TqjC#~O-dI3QvkxVGhOM-Jdk7W0b^P;L8@y$JJ>HXfYuU<(q`_f5 zQRkyBNOuHT;QAQ&xbKG#L*=><@SZ6BfU&u7T(_GdlDOCswD8!1Vsg8=h<;%LQX?VHPb5qWY}P4>iyc_%&h z^6kP0{`WTe*6m;XjIIR(WFCSc93NlbdQS^JaGVse>Cjm!jwr2P(5F!S?#`|aP#p~N z^g*T!c_mBKn6!q>gFB_OPP^_tBM1(nO}qgk;7{ti^L$jVzgg}>aqnRpfDoRr;D+mcmXS3iS$ZN&|3V_8jXoV~GAd|!6>w>zT>@Hg}JD+S}nsCyl zb&z3y70QLj@*VY0wS*Gs?&mhPSEhX3Uv7+Hhg>5D;ge;%sd)C?wX@r0l9I1(%FW?{ zw(?q^a2+eg{C{{~@`f!9d3>4Tm>;FGX{|FyMC5)`+jxiudiIblyuvnE|7ildFOCg-y@JMmDjF0VdzmLJ1KjT?@}jU=*z)Vd$Kv z;$FgfN6|>@HJ=!tJJ6;uv*R_~Zl#Hg*QVm1vsajX(}xa2nGQ}PpDL)ZS?aqp|4zzr$4Zr-nVFf8pb5Bz;i^$Uf?)-3 z)yu8X$=Mec1_Wc5BKCrk6uHtY^U8l68oQPWB(pK5cIoFThkYM#heo`dKk*DDF4p>( z6>aqCD1GH0O)&7^Y&5;xoftE;A$}MkOGM9Dj?X)#B1uL4Z^QpW(k^bT^&4yvcbehd z9mQ>Sa>jK_o_|*K-HV6xoa!a)F)g~6m$~Mj)biTxS6S+AFOQqefi9L4W8~ff$|Z|1 z^~pFms(%%0u~!FG+h3enC!bqXCsx0XTh`oV_&LR{U|P!1IHNVIOdotBr|OCAB;xR&ZDHXMtqru;kKDE zmi=2OH@gxA2ddUVD1y<%`2>+t$u8;r$HEy(X~??nzgTMKlHClx^w?3>U{;XMfuYHw6+8n$ZYW; z3q2JqRP|tFqRBi5z`t~Wg5y_go6;NA2lP>vka+CR2RL(j<^l%|gH_#1vbG6b)r9Cp znZ&Z(%^(ZY4;SHRRJ^63bV0Q5FIl5H!9j?W5EWKm804r^b1ftsfi3pITvD;|Oc*_~ z`I^c0618|Wht+Dr49x;&HmJkdYM+0eydwRNQ^ks#;w5Lz%kFXK4GVNVq^OukAj+TK zJwY85jYJcPW8TDIS?`p=;Ig)kV$SZWq_IL7P2&e4EcX*s5LRO1Y8_Mv6pYK)#D(>^ z(hSDd)23@@|FlO^G*DbJ*78n4oFXfvA_*R&HZsPQ%VA;x(j^{T=S z>i5%{LyN0c^dsG`52?h(@N}i2q*lwfXX!re>`)BP~z` zSqQ|yzukS8Sg76{O4;18VhQr)Dj(X@zTXSS+rUx^Y4_?Ki}RT@t2C}phZgf4|--!kQW;_3l5u6 z3JPX4Ec#5WqDY_%lZ(H90G*vb|JFOc<^%n9Lm^jF)MZvnLtvq79%m@s^M=`vEp`xh zAxwmWwJ1VR%OY(kXcHB{2N>~skx34zkJt=;5;qM2XV7K_^YvM-kXa(-UYIh2{w;bc z;&$BPw@bW7Fjt3mQRZmqvU%~&6pB;h5!5+7F_9B<_!2;sWqlIu%EZhN?@QZ0@{|Xz zy^NyKZExz)DqK_5DMxhW)JvcYJc&<0J;s3Nh`4D6ILg;GfT_r$LU&9Q`!miIRhEG8 zYLfr`t-rE|$Naw3bLR8&EV;<^7H2gT2nVw`q;bH~`}Cq(2>rsKsk2C96MN71I-nb$ z9EKUa2v|)Dr2*C>s=p)5l2RW==M{fH2{b=@)TSlqB5k=LEQO1_%QLTJhq_r zn08T6B?(Zt^zef22vUNlPm{HrSU{G_W4~BFbmD8IYUm1Eg=T+o8UD7wQ{e96Sa zI9#&s+pq#TDn7ZBn5iOx8FW}*z|FoMjKLhv1Kp$U53800wV!^Km<`U8FYHcP0}D^5 z)!#GL;I(4SJ>8Rl-rv>^3Alom&i`wF#n&K%q@;@8#&X`)|H+`3f{)uqAddz*driQT zmMY9!=;TVbV&TE5tqx3?T;y%Nt^X+Aoo`xoVSSqys_s5}%s~kDJ&Hmmz!#hCfOYu5 zROx|`TmJak@e`9Z5#L);9gQ5>6BL3uy$LO)JkFXg zE>Wp=Ty2I6p2h3s&g4+tU?t0y$JyByR#f1A?8ruU(L8CHk6AnejB#LGLRyCy?eGq1 zhy6)D9%TI=n!YkD%dUx*?ocVEyB|=x5hSF$8>G7)q>)sRE|G3tx;sU>ySux)&h|U! z@XL!IT;4lo_N-a6*0A6MjxR(fb2I9{a1phZh!Ir5I?~n*t>fjMO34sD%pzI+X^&h< z4eqv%7l9^+XKAqw{2HB_5B$*ktT$m#zppovt-d8NYTL~24VW^;Iq^;s!37_!^Aa;d zkAsID@By5@s8jo|xmfzw)CH*G7?Mmwqati~%^j}`Tzb8v=nDfTdYrPpP zQ_K`*Mt;k>H03VS?l7uyo|ky}{Cbyp#gw3!M0X)af=FiLE_o0X_xxXtj}LAlYmfEx z|FgP#4b3(=p#vJf zM6tcvHQwEBo9Wt3(Ajlm#Ndw)anw8nmdX$^6xR??NT_xwRR3Hlm{26pL=rjo`|<29 zj`tIjDs$7%LLr1+8C^DRagE=`4lck4R>V(zNNM9c)GeaMNO@48S&b zrSU!PL-gwvjy)09s=$=YZ@+;{cEhQMfz?f0hQDwJb z#Z()C1nh;zaE3nv!%ZM{#_s`YgkO(|1-GlVKEoVoJ#{FA-@9r4`dasj|8LL7SULbx zy4}1T3=)MCa+C6#sUGHAjD>AvMghLfrkefkb^o?;| zg9MXcBgyw)$zUzB{}%E4_mo`jwwkT@wTMKZ{%~8BJGl<1TELRit7;?TSRmv%KaQ>H zVYT~KW|?rZYd+TC`eYW2WxY@)H0tenx_i4rKsAiO@xEj(S7(Q)?l|Cw8C@tdbm92Z zRr1@?t6J#%Qq9-1ES*mPQo%~?AFMDnG7?#?_}6PcH?W#6m47Z#o_Dcvr+3QFNFpa4 z6RBE?i~(neezT*>C%^Q1cdp3$;o3anK`2s~F5TH2>t^3_snk2Ir3keFu2-O!Vt-!OaNLwd8~E9{$VP=B=JQSf4geNgidawsI=R?^e1mbNrQ zdWbk+nJcosz!Pc0uI>)acGNYoR?U_UA$3hSu67Zc?c9koInO6JsDl(3TfBGQj|)-I zZ}onmv34(MH-5mZta-Q8ewT6OhZ_EHS+z(!sES*C^jCo753s!=rX%~;#|_&#gE(*# zFl&~7j;7?ap0=6Dle;_LdKU|hJ=A6;w(be>$P&!>95ijhG@QH+bh;m35~1pz{7WZd z+AcO_YlO80Dw~B2(PfrgwVDh=aVeL){N+LaygB;PidIzi19qsm?AXo zfmk%m5A@#*uDdR`Xn0;}?tI{2wpz%abX!bb@_k8da{M~c;b<-3Dau|OK1DdPoZLdU z^qqgG#_(=OYH-*usT|p&eWcL41v#?3RJSB$DFxpe>vDFN`?UXw>Sn{<<#@SLWaB=w zN51Xr(}xME`&-#*S_*_Tjn_1uBD#Z{97{8``rN-T#6e@Up)`JizC>sK4z zYQjpUS-e*K;x0qn+{O>=mrg*5E0IO7(d(|VuFefm+W>PP4jvwiPR;s`A<7cIwZCx2 zw?Rp2?mBT=M0Yx%;*?6f#zR9#acDEy3phGEjs%ae6MyxHoTQK zyH5z{;-9pG^|pN6$&V|)cIwZQ8~mNxKylB1!>ke4xwE0xAT|o4jfTJfnaxw`!d0}4 zdK9@2AChM-SbY2&e(5GiLCT8&`NYPc)tl%1Mq6|J(6p-0(`z#R(+jokJRXmA>P!YF zaxwQkX1$Xz!tW&+o+e%gdS=Hn;`P^+@7K0cXZjSHBUwW1Q?V~y&h~IzJE`tAF22j? z7-?_})L~mqw7Q#A?K^X67lVjkz8l!XT1FzYuhf*58SffdRB@(YkoScVl~slGf*Cr` z+!N7q(4GdicB)w|I~?|jT+j9wZ!JRPVbdPa!P81VcldutQAdRf zrL~xA%*NA-$y~EkWy{sQEQVEtc4!l(j`Q5@4)5{v*k)kI*sio}kLx86Js~fDPfYTH zfyurK{Z+GV7+Iqauh$&RLw303)Qj|&1M-AEv)=ZyYOM)309Fnx=kYqP@li)>`45B5 zm`#Q8*LSsXV#yJ`2}L!`c-&zb&} zfX8#1cCjV9%BjYzdA<-WjycBs>I#8!g)%RXRtHrReS=lS+DvnYdfya5m)*Q!2kl#w zuP>A0Cf+aeG@7LWTATYYH&RdcS0ZA=>B9ClHUg&oap(jrfMSoCGrhdrYBf~|bjJW) zkY;W!4gCO*l-FHR)$9G-;*mvruwPqWN#rg$Dk^Gi0CJtx6dUE?=s-{6RJ@Lc0yYs> zj?zYV(^Dj>kkk9ZK<@|E(E(_+VFP&)l$a7?8A)YBshQ=0Z$FE!y!*~kyj*}FhG7d% zgf1MF{K+4QdVjoLpqY8@2aD$6zvmkbc1+1a&Umrw_Aqh@MY5Mh++=JJ7 z7P95X%9Gw=0{iubDS=`An{94>;)dTk6a)XsG~ErQw0K0ObCnlHe;eAB$k_zSOb-UF zK0L;{BZa~7ZihmrtCp4fKYaT^jUJBdi_au_t=^#BFx3>?ct1C|K>ys!B7LmIY+$s* zuMl8=S7d<<(fgiBp@H;JNKwMi6(aM&q#L7rw$6SSm zZSqL2yQ8gDrZWLO!{|aj@B7)UyJ*i9)Ea)iG2a@no1MzndS>Ty7cVF4IM@9QN{Hx# zBAJa|`SZ=nFLd*^6_waAkPpUY7d6X*0a+S?UrDQ8W?gPQoJ9D}+eZs^-dHLcZAF^&0N4fZ_qYqC>>|?FZMh+HXO0Wru!9 zqs-SGXSO0#eWh^nrJhehYlob|7T7u>>?`c(pi7hTxF_CjAb$!OI=B6lTxT`etcTe% zgb!ZEN2tk<9DCESFSfy)Ojl$Aw>E>RO_9q5F=<>}Pu-k;f|qZtjQL}5wu0r7-iTmh zV>?lvZ^m?ah})Rjm&2(LgyR(}3w96)$S*1JM8;UCzT-}qt1z_^{)vI@r^|;2!H^C-q?BMGbQzzTR3j~>nCFtMhj)MPGL5%~#b^*P6JXY8j(lgz;U+AN&%hLm z_l_yG?hqB}m3P{$q(>uGGxII>$LX7-8DiC{I5M1b(nYmdD6L62+}(C6a68p9KVAy& zxw&LD+L`H`zY==V^SbXKIE658s>^(R-i|Q;i=lb2Z+o!M{;Ksqwi2-~X%rEhNonr*o91x(-74$f}|9Q}HRSkN;x$mx^jCt}1^- z`C6|70TIrU4DxSg8s$vIG`{>u_IWyE%LYF1<5x0-FkGFDO#9Tq1vl@>9Y_qFpRv}g zD^bHw44OXPQ{=!BQ{3TG+E;I)NXfwII)8N)sq#u~?euJS$0XsyWxnnTBLJhrhjZqu zTTQHYNxZ&VxzcLDM;aNQh=9Niq*qT*PZN_3u#GIb^@<9Scj2{Pq`b||cK}=D+#Y63 z8Ylpk{FCULV%ygJd$3dIEIdM{r?bjKkgi{33c6#qWLkT-a$sbpyfLQjs#u&$&7p9dq zgyM5v9Oz(piSU3W_gpi3Ul-9+S3S}c zIV+Pa;&mUMG}#7_)Wg`$Mn1CLckZ?;8|H2g7{{Rb*MBV-V*Dbd94CnEZ#7c}rvsT^ z{?8>T#=6;~gm>0tmm@D&@iJO3PPbC?yb}f+hgpNP6|SGE%wiQMvF)IQj=RxPml1|)78Vds#SI{frO5MQC(3%q0!yjOHUn` zr}^W?fO&qcNZx}?kQmhx6-8a-`zl)PI$69xdBVzDQ7nbAkvJ}xUD{XopQ44$h7`iC z2McI7_@-va_ILKpJ4b>)!7nxUr0}%eEZmH6Z@f5R|7tyZ#s13bW(*Y@hgHzmd8hqH zQmKzOH!0z^`P%J#sc1E|)KlS9d`&v%BV;oOUG^;O3 zxcO$WYI|`9!KbpKJq(ZI%|=W7i4^d1F6Rg?J13XO2+NpIBYtZT(rB6;%ZlG5(kVo- zd?bYj!$DCKec(>7p_&elIFTg~li~|62l{92GQ01*yiY>YNIX8thA)LexIJ=RJo69t)u3qbIjB{Soy^Cp%2xz%OXnHDW^Z z7QcmS&241;wPxUwKKU%N(YsB3*?!xG_YwYHJ1a5Bj^>sjDnc2KnA8^!Pxl$mFPl=B z{!(CE;x==Bt%z5@7(eGW_m!(tH;_w6tI&3?*!bI4ZbDM(0 zN29%%K2O|aqzK0M7cztcb;=)@8tx5RUU)0#RGdr$svt2YOd>fWRU#ty!y|`D_ zMs3V@cYV`RshZHfYs1M{sN0Z?jZXe8&OUpT+g{Ck=rpHpZE2e@(aSB|3XXjDGLy?A za-)LR*$I4fih`B#j|NBo&7w9^ z{}6g}+b#8p$WIInDs#i|)+hldq{B_l=Q9~&Z-F82TzpoMWW=lC&*j9T>ZY~my6o)U zdtZ47oSiSgdtbok5vZZnYoS*WIZE|c86`_z5pvSWSGR%3)C4HA1U-=wR7$itZ!3VF5_wJq-$o5o^b|Np-*t6bd{5kzZ zBlR5FmV>OcYWqsbH5(nal^Ru)@S{nG(`S5UbwfRl&0a)G8jsmfQG@7K1VMr4u+Zb! zYJ|HDR%+lO>}zg#L*b)U@DaU~kpzl_;+0xR{bDX1Y4D6Jr+`0ynmADfFXo%)KapRS ztbm6v$_%}1HrpVmDb{M*XS{j6`5MM}k1Ww4+LLVa?5QWQMUsvk^AY)vZ(YbwuV;xb zjhB)?62ZS`cZJ)B+~^OjG-iMKrm-9MBST%epu&fLhgP7mC-fH0G!~}~3&=*iGyaIs znwwuOn+3lHp@jNF1;#fWSBb~_mBzj^83mjS|CQ0n*Olm&tT%TRSu(6f$0qhC%!D9C zDd&cj&6-yAS1o8tnrVOdsIb&d$~9C#Rw)1YHdYSTbw#;h^G14{VBO99{1Z_x z6GI^W$v6$K%iB;ls`wwQ_`d7^OKb*+x9cPx-s1!{6nr`LNcnZx|k3f41N5OuAB4iwq%Q2PFZu!6?1 zApa*6(fRNDgj38NPAGz($1t}(O{KIcUY6qpwNkpOD^10&&>bP;392f!1x5vh4o4K@ zJ@Sb(e*RI0Ui}M&#g{^mv7XI^Lilq1!qaPSj^RG(Tp?XQ{jsS0l~o0R>4%-!xl46S zpZj0ieS7L+GpsuKMWvK14$AcYiWjc6a$&{JqnA)Pr4V^%Zh=B%^1xt!4T$9^dpw5(4v~PIM6tY1}LdQ>d1z zXHNA4v+x(I4ZH`)%vUYR9@6i=E(?VU3xwUA&_nEI7dpq~H|ACHoQ4p3&(3aI0GWz- zV0?N0f|fqESc;dCi7#^{Gp73DlKzO~LZL_b{T!)UH~u<)d(?)D^rqw zzD>q64DafBJ29pC2z*9c=Z_Q~M@m}S?VXWyJSH_E$Lsmj5PMbG$u9nYkcdK^G9L?z z-GM|_gBA~0ph7sD%CDoX{YS|2`cR4`?#B-)F)@U@x^EUjpb+Qc^8P358YvWi&L!e} ze%Cp0VrkHt+uG*gvGXIKiVAB`EKH3iixy#B^x6HKAm(&Q{7&>PifdG}oH$D&Y-sp( z3~=fQ>_4-^d(IhNiIQ-sdsV48Husuo%k6mlX*5l{)%#7yRuP>bqsS2~rr>Lz0F1J? zwlK=_`WyyK%z^e58E!Ieu6EO<+oz6P$ynI06xv5^pJOS@h`*-1J#aI=!f*SK42Nus z`Oaz2ryZy>rnN>~@$teZ*qqf}2-QBij|)=f>3H?nqrHVoCTrP^xfB8_Kz5Z(H|>@? z#_+z+vLSU^05!v;avT)iuYM~MT~ySs zr{w0drNRw-(p^w*iFx1p7*c34@w^@j;yA~W)(?7g>1EWm9w5-IL=cS(_2ql~u5Z+c zr$>om`wyups}17HXeQ4aJ#1$PA+SGjf&j$ss3$O^Eiqc}h@b6dbu8DgC^-PBBe+Cst!><&=!t4?+= zb8aG2rgtW@{=~?^YkYM{t!WiZ0ev2y;40Lu;I8}Uny{At*giBeeR@4; z8kTE|06M;mNqI1@IB3!DSVcY=$nb_T3$*2!MAkas1FuZ|%vy z7ycm)2Q$3B9_a;2QZLV2K+jI$rQsD`^?vn**g87)dEmy~V#>kEKRYMX%85Wf6DS^@&z0j71?;d&cWB8JFhd zCp@=`u%NVU;8Xgh_UO>Nj?@2*CJfYdy`MHu zYxT55q;n13VH!IsTmAskV9?1@qr%C( zvV4Ue7)SN}t7eTVs-Y@ZMiQ#SxOgtxz{vCFeV%loB|z6MLTAzVDf&e9iXT5%o1z`y z1v_7!p2CDZooz@~Z9}d}F=+A8)$dR59wd_nTSCh6Mp86#t)@T?(*|U7J43L~&dyAF zB5XmS0vZu{@~P6Lh2Oq?i;)Z_Z&3J$tpDh{v{W$wZ4){7T;99qBb?iVg~YQDJ#`W! z`grfkF(6#l6sd`--ePj!B~L^+zjga>MS&5&B?MwSP^OOl41C^8U(p1YDYFd4 z07X68N7Bi0^F}JM*S>)I3(nYps3@PKCE0sRg;49gFNlu`aLGB6GzC4mnL7i*NOx5@ zfh&H`%ob%1K7*xE7A?XrfmH>Hxo>w#9Qn&IqzR9!N3^k@O(Zb9w1Qv_sT^BXS*Dcsj*>Uam!qh+UaV4KcqVP3p4W ze$92Vc456}g*p;@e3xow5SAzh)+l0MtwDS4HG4A4in)|Ad!Elot8C;Uh>MV+U&tec z=Xc3O_~@CwOd3kHY;o*-C$McI!S@Btut#LM!@qGtL_G5{lMLhkWwX2MS7Y#_l~Iz= zcoscE-0SHQ9ajBjAmVzswJ=i9CFF7T+&2&xIJhHi<8>nR1dw@B5|Y%InDe~}y01S# z2MddkgPx78(puyAKMEik{^0{#Bt*n19Y`9ZqhAPld#tp%Z4Bgd|BeOn3##*QSI^rq^d83uaBMzT&Pwnf^a z7>1lbhOCDpTIj(K5rMLY;(}2Z(!+I!e z)CS_$QAiJR3e@N7cx>vS2kb+Y;8zZt103Fix#VPnw)~Xl+MqV3+0(8A&k*_IMN$s@ z+9hYN!7F6RW9pQ=CO)t3E!%!}i|ae<^S)n#3-EMy=nC}ed_@Yi<>#;; zt)8z|D@i;#7_W~XOW6ugFqnJVzhY`|K&+`M76NcZ(i> zKo!Wfs=)B^lWMZCshT`-a7<08dUQ~^dO2~-+G{Hj2|3e3PtU7;#L&CPy9=O3>3X#M zVD@MY6l=Yc&IR^Nrk$uCU7nCI0l@bJJYYuBh4b_Bz$h93=vcHW|Mv7Cw~}kj{@+oj z$0`vgoccqDGoW0ikjew(S}M1xj|M`>gj<2^?)~a^QrPR`olfrTE;HdtpLX5&M4XRe zTeP1xC@5?*DhzqWs^R0sR5jz9jiC`yVn4b>EoL}N%rlC1gD=Zo3IlB@J+waWVxzdk zHq*bjVchE=_cAR=e~oxYipL-WbBoU2Z0wJ8Ih+}ss(|A`lPPiJ;XsLq{@fkmyUq*+ zj6hS*M(D9hU8bd;M&uaa?$h^0tX7a3MPyYu0txb-cwej&0X`?s-tQ#euKE4DZH3uv zPR=T3$O8W`mX7(pv^<}lp03FBmR<)B&XMvMJw&ga9{p#n^U+x<`9!$2d+{dz&}zNH z`PkE+q!u~S->e*R_>Dux%k4yQ)5gh=dSI~|aBRmjn;a|FeQEQXeePK7E@jbqOt=1Z zykfdU+p*@7rHx#R!LuL(^9Y&dXszwMTWU(KoN4PGB@=UV=Zl(ZbJ2BYhV_;kz3>zP zs#d`+0gU_Ibfs!>|KL9OK?7Xhfy8C+duE*~sbymv17DB3Yv+V2XiIX1a*iQfuVYD&uKSWSbJu5QY=Zyg=*X)CQ>qd8s(zE40} ze|=-NC>oh1eLe)gs5`1nOod&Al5);bY`j|^s;~T}5m`i-vi|kaW&oE9uPt`4Btgum zi0Wey$X`F4!gAH+uz$9xE2d>i_sWa0qGQfMc4>L}pVcUZ*(}HlqPIeb86P#CoyKDE zE?dpNc5M=k3h8a_WZnI!PnvADm2_fhk(dUi^8K;yEPhYp(^J-Jm2TxrjxGh2ftYUC zX|He_o=FyD7-3{DC$CDX9bFD7><}Z<+s5HXSh8)QftU|FckXs1ks}5xqyif-n2Vo| zK39dXiXYxh$A0&w>mF+%`I%BNZF==HDHc0byBe@LJqM5+Do-s3YSjNVfu_V@{)QP~ zqZv#nE8Qkk?-0@Hp?vEO9aMG=Lo{@5)S(>x(vX3meiQ;r6jS4M6GV`UhCaGQ?SjY4 z^_BOTX*>(A7BQO6(Tx55X@-yxZ1xtSqZ~q^|_XA21@HKGTu+m zG6^^@n_Dg+bKN!8KtV6RQo!TVVzvF-_VzZNLK-oz6LrJz?e6>{H6vsHVsmHYW!Xxb zxAeok63%(p)r^~z!m&P9)9a%!{Gw~c7jpVNX&1a$qOqX!OdqM|T?`5F+)yaDzon8} zV0Km>N_$b%)~orGUN_cRh&QSqOGv@jKFnH7BHiElie9d;}Z9<))$@F((0|SwQS_xEZa)7JUoeWV_&D8fKJed^uQmDSqe8D3@03=PYK|#n+54Cxa1YV^sy~N7FnQ#Yb5OguyfGUI&)kBBhPZ?FyGC2&AqwemATXHhTI3 zOXsQsM=78YzZAmS$6!zu3+OIx$2N1hVOv)RGd~7Mg?*ZpvL$e6Wl=COZKn$H8VbRH z7UMI~r%HHDn}=&#vgMz*XFx^y#Gp0bd${wT1;D}1NLjkDKr@N=jWWtgMql$%#2C0!ts6My18wy|QjIAT!MMhD73d_Yr@vpgrfpN0& zI@n5Q`*A)X3Mc&9E_JrLco7ZX9iDcLEFOmE^Br6aM%k|{q@0DfimGujk!*dAc)W?h zC5$W!CQ=aS&^OXyWKUV`=~|~6r|j;V1;;O&!>4QgPG1g}N3}FgNVb;0m^R#SoVV{W z@JB|>zB49!Ogs=q{cvh1F#BVL^9y@1u_8jP1Y1k|QQ&biJql zVDTEw-v9WYGj!pAPY8H2;#^Y2_^FRa8{y6dWIV(M?ou7fm8S%sBxVFZcKT^V-zX7Y zks<}2q{6tn*28V;h?sm2I~>$KedCXmC5h4l!%DrYH*8=zTg;Nu`zHv!!&uns_PzW0 z=2@&cL*48RS)2E5+*R|-?bXo(tB_AecXth)-0w%wz#3r&L+q~mlUgkvH9)EV8?1^W z_UyvKhK(*STE#4|BwB7FzNC7xzQ3^t<|mszKF_z;2Qvy^um1LMlPx|TJlEiWeI=X^ zqh*zPeB}mv(&vzAfl!D>#HfYNCh0|Zjj`f?bVl?E!3^mcVOtC@c18J$DsWVgzQTQf zIx7){#W_l!Agl#0By+*LT1woF$1ELe1FvPXB{A<|;y8<{xWR^{t-b zS?DSEHS9+s>6#*CLo@w{tT;b{prPy z!p6L-m%ltyo#y+o$p2P^z5Aqv^76hR1a!4}Jlu(o=jRTjf}~b!HuO7^8Gx3_oYwgD zhtX7$K!PqbvUCWspi4h|(fh@!H}cY6*w-uMW!tzlpiML;_RX7h7Qsem0Cx?*{YFum zv@Y-}@%rpZ(+y@yRmgkt*7pjQ+4#XFGQ^YMXcEnOVOCGM+hxe+HV{Jk;X zSFgXNgmd2%5)S^CftAEWh%tn3YQO`2XOXBhu;`}qMp8Btf}Q46|2%>UGLqzvnQKxq z$>h6~q>H-)Pw<-^`;%int{6*ao5_ye|3;R(eIB0oc7reh|6zuBm!*7mzk86XN!9ne zS(=tj8W2(W@H+)le_$;{Emu0;d1rVD)I^}C4e+E^j}tYZqRVjQ`H#7|U6s;B+brAQ zbMs^A*N>W?;gO_*zyCNLOhaU327q^9s*v}5cX#lj5=bn>{{J%-=+Z-fNJ_gtDNA3i zY={CxZbYf4+vBN;rV+Abz@r2VG*UqE9?&R;OXm*?!zJd-2kW2*Cbv%(@@E_-=4q!i z?B3Nq-1cI;5rS%*PPUbjel}s!C8Js9!CkB7ccCmkk4V9PxV0F)>uQPwEA}O8r7vE= zV2So*kRjcG?8$TBm@3u?uUf#>o4u*%gJ&dVCqY0(WUO6 zr?A_C)}@Q~H07Ea!pV0;O&nHAONAOe5T6aG z%4dNC#I)_a-SS>ZW0#N2!rW=^7d;K!&={dqOhi(xFKI{=0X&r^R)xnSOvNfSqtvI{9@q%5U z_4T+1fvc@R+~IT8G_+W&tXRwZ(?5_IdN5umpDF6w{-eF80L-E16d87k6+X(W@mk4jE!;fhO{-a%}PMZZ!>Yf z+>LH&@dg}|H6Ac3+ly%i1maUGtwf@M*%9vLuAS=r4J&!d%d@h9Ciwi@J#XdyCb8;& zBf5Qa`)-A*NlvGkDg~z}@N`@Wb+a$#Cj#xiKQ9Zn-X!8M;}T_MQ5KMAW%(O_npELs z^1%05c87LFU|vnaGeHH3pr_1!8Jdb>B4UbsnIWVeyO|+AFK+CPm@=t1Z9S1S%NNC!$EgAMFlZfz0_I6FC6XnOCDK6I2LNBD~W z^*q<`eQk5qJ%NF^=sf>d)`fuua{Jc8aSS@Prc>3eKsKr);?dc0rYg}vwjkN(a`aP( zdo8y5wF-I-B(%oM*JR)uXGl@RP7owTLIwJCKEV1h1fVrH$4e8xGmc1N78OGwkRp1f zvL#czT+B?(wsPF`(ajl_pDPJ0WV}|@0Rix(tux4Gum&-Z_t?ZE|3Km7Swi zBEcoveqf_)|3JrH;s1Em_GYV`YhDq)Am^7(RAOp+>^BB{BBCa>+Ximy`4n*hENTh4 zIAN~`4Ute9+s>O8uE_1G!wuIu5{+ro5LY+-!%GZzb#;9>Lo`LtgRW^EENjDf&)Jr@ zwfR#$OLZ&7jaSC8OCeQ1_P!)yiuqu9!09Y`$f+OW8DTyW#;!Z>?Zx<}G3%E*1=^7H ztxOkw>h!DnW?V;-o>MF#)QfnZX1Tn8-(_4!iTzeAua}q~ia}qSkzqKN)g=)kOC(vb zwN=yThAvn9h4bfw=ff`=?wS!yQ@soU4J4iI4~r%Ku? zTA4iud^!WTLzoY5$lrT!IkT}x3SVisi~r|)$$sH>V8>tFa^=Njc-*4#KtUR`g_oP} zYz!f;)2-BLJd1*k2*t$iVDQ;}Ah^cD%4txhM<+1f-2W%OB?AxTg?=nWuCJ88B zd$gM=T`JNjYi?<2(6uYmZ#g0sB$TW8$TRhnitE{N`1~c6!G?>Uk}}JDByChRV-})Q z`*Gla7nWn1o91%`H|twl&Hr|;?`gx0H~t9INj&7yNa7M~QBm7Q^`2pcp2He_=mO-E zI{k(EprXjszX6{_ef$Q~E+&RG_olXUi6r~ZHLpX5?)mLCrmT9VEIR1c8D8?3GqPe* zW|s2}kB(*zD8}b)6{OWQjXv}&Zwv}6;1eYe5wa;`HNT7xhSi1*FEAs7roQaF=it;( z8QP6tz}I=}y~>pIhId5dWz3dg zTs+|}G$|NhV@Co@gj|_KFgp*|H9tQuEgiF=RHe!6^3BLQAA#XIcZ*@}SZ{S?L0sEu zH*#@euYp3ocVkcoK_1ch83-Qr+Lj3t9(E&a5oR@=O+Zh}iu$NZCH)c<@##B;a z2ozJ|#&Zcu`J}@oonhPs@B{Lr(*iCYCFBj`UJqAD=$=#~ifmfbtdE?`v3lk98o+iV zWMt$Q?n}|gGtbM{wJcYvZwBV9L>~8RUU9#gPX4&mjCm`0PEJj&l@7Pza0mT6sHu9C zX`x|tArnjBBZh_mQ`=^;U`*p=)=Ri6E0*-~3D^4RF(7NaT`Udw6v7&b^hCx67*6`a zSrprcCJ-E0`P$x&ej}m&OGCpSKK1sxudh%dbZA71m2nju)kIu^gfpZ~{}<Ei))dpx9QmHL1$4=(z?hKqg3&ikiU*%gF1@r|x0l~$cu zjg4jowvAVVuk?-Xa%Vosi?Gq9dyg1BXfd^vNY*@H@AKK+!)zQhelaeMUmoKJ+|9S4 z^W=1N=0Nk;?of^%1Ow3>CiOgr?wiB8iK!{h|GDtyRpsPJD#j=(9p)W90Lm&Z8QII> z96P}6EEpA;fABpb`f)c2a^cAdWH z$Bi)b4izu_G6tq-;+-JoWFWvtWm(nP_R#)b-Wj@53wvo~JDSNYtZZqN9i3h@X&xW6 zds=cUDq0wKl~nED`Ln*rt)HkM{M&7JUiQk-`yTVKa;uk`QO{^?e@(A3T3FtH)#MCW z@a!kJeY?%8ky;Mp2L}i6grIQ^PTz1^U4az+wG5vKj$(25FGpbE4BBrFj$kYSU8&gL zAFjID(wD_@qcGYSeyN0Xnd@j?ywPB#Rl*ZW#`kr#EB1j?g}JW0y8b)cV;jNw8>D?G zDILkbOIK?#OX1gI`2zl&69W8b`G=P4lo{T$lQLJ&ExYiu31sLVZSDtXAo=jJ^YSX$ zMT$-g0rA80W&m%`p!pt)+TM8f21qhljjl6fZ)X&w@Q;oq6)b=J`wHfX_{a6z5#bjY z!i2au+4K(^y?aG+Vig8gg185lyt2yDj0tp{oSc9eYr#lpA|oNO{Xo|EH%lyAGoPUD zzvx=H7JULde22=|4oAm|#zuA)Jsz!aV|3|IbcW6sPZ2vaQo5t$Zrrf&aEP=-U**yK zkF(hrMbfd(Rr`{S8<)1dnui`m9?#oLuG!-|zmIaNbwp3k z%wH+h<0mzL^Mus@*lN4^AuQ?Y?6>#tR6e(QvxbA)wl+InE~ECS(!y-dW1%v5`;L&4 z!AH|fC(knpdFllVqtGsV%C^%6VfSr>dZg}1GHhKGT=c|_=xj-Vh}+ip+s?lk&*eRUq5*#p2Y%zK)|F`aGnl| zvQ2r2D^$JP-eZF9r`pTo@yh#^#H7Q5@fiO<{y&ZF_w~dwNLc z^=9*bhsG@Pj-HE^pOcQgK?v;O5_PQ?nHbY+`L@#^Rj!d4c*bEl-%PJ&Z1bHk8ZURt z9m0Q~4edz|nNQnlHL!$~J=LD1Go>6X2X}5|#cvh(LgYb1>C3^ZfJxiz)1V9~T#gkofm}%NI+T)Y!~!0VOnd zgpX-gLa8_>CoVElK};+V%wPruAu1k%1P_yzapp=_u5!xQk^BYmi;c~o0o}f+R3|wv zZ^QitbGY$^QBZmvSMz zIU)ns?nL(a`M6?wVyXSHT#`U-*w0CScXp3{=t_;Zx67{i{9DAJJ1x?5-I)?SL9?G` znie08e7N4yCmb4?R_*U$aG|R(L$md$2;j=ICR!Vzqz#%x#$59S?7#BBDf(t%8O>^C zWOvB59wHChRx&#)74vwG{pR8BCD`gxx7lcRg*%U=fuH0Z{q*L(zbzf@XP5hTa@0&L zEN460Ee9h4SH`sGC-Xx^3Hh`6>Ak94(l^8`6L3+wmH=Z9U3UK zi!q*9XID1fw+EpsuyoZMBi&?=kNN89^OLvC9f`fpA!2HL#PWVRHT z>~1*;I@H~l`KO$mdDo8LnGyuF@LkUp?z$t(o5Z0RmQ@7v^+BDq19ItNG^YQSiYYT& zvt`9M7m=JBuRBvZgG;+1O6M;gun0IfIOu3-qf)5-Lql?(KYzqU z5B>R*gKd67vNaO4^#MiE%gakyMWyr4A6mKbw1Se2-E}RhF0M&;#Ff0+#FJ)^n?0OC z6~MMxT3X6H`{z;34A!9Lf@W@sd+^dh`S(IfM4y(4adm1U`Nl4NEVcCMV#Ii( znxncqBH@6cX~IE9lo^L!-2orI|6@hcVSRN@K`_r7aH6Pe)>gyix4{kc-@@%e8;882 zYZl+iI61+@6PrzyWI;1yZfBbkk-?)hsC6l>Aa24WJe?f9T`V8l7-jf2S-SL+86;BJ zIlSU2f;b|4OU_jG{pD_{`3+_0l64~AJ&;u;zRQ5-@- zLJ&xavY{~~=luNq^3p|91_-S)Yu11Kq_P3{DWI|E7YWk@T%;I31;4dfCdH5bsAMDW z<7g*h@+cR&Wbfs47DH2h&;xQF5f?KfBU%Et%`8kvc3~kS6;%KhW|0&EbCYpbC@M}j zsxmVnD;FmP2Oa;@lTPx3+c4R^^+U!tcprS6iMJ)C{Lb2C`c5(gFW2+SSegmj{h^^h zkkNe@4C%`p@_}v(?vNHPcq@nribl|NvMt$1b8?ISG#vD8} zLbdThTy#1A;4!oVt|NLeKV#dalMJQmkMPJ?2yeDJExo)P9Nw=QN=c#eF+|VWaK&9v zA$&162OaF|1$%VBtJ~VzLL_qHNojlL%P7eC0-YeH$A6Fev36{@pP@LwxJO~K0eYlu zXt)YaL6z2+ZH_QO{z*VKMEGzbSYPnmj60-Z%9&F z6S+Blc7E#b3-CQ6&gMnqni+lD@X@}sdpBCp!^NP+siCaSlavk*Bzr;LP!h6fMU&7j zy8<5koH`+VFdAgoEo>?R22rfvfXz6C{4WG3|EKOZ=bT z@vUGyg4H-_w?%Es3q6Y33x=lph&WNFq%6z!rU^r|>d!8ji^Z=#1x>0eM!;F|KTf#y zN^Xe!5%35wiMmQpPWUbp1+N5be~5^P=%}e-a_|WV5)%_a)$wPcxA(KJ?+d68LqkJT zQixYIXk$?af2X9Rq^BFGf|gSZoKYN@)-1}&sdm3G1IVMWu<-1A78bkZ$GdEa@aNMp zs#ujC-81qgAYf5_7ZoQU$s8jwuN)(|7Okk5e#N^|ABKjWA!7FbWa;@LF;)AR^J^ z^NjD|bm!ImZ2?@CAz!f_25c_H4s%U8?B`2d-htlKY;sY{?1AqA;sK$ZV z8mt#P8{2Z5Z&_jC{Z8mqbVZ+~7Gk)wm6=aCuIJTs_8AVXDEdl^CmjvVFDth_ z@}MRiD%&>PCoO>#YT6S**M-2j_zg2h(?qtyc23pqqici>Lf3NjgJzGjcDXtbQR^p? z%o=5^c3)a*nVpSO5V&r%+39OD1vfn6-wpq0Z%OqyBT+H=QSYNu0n(R3>xBK`z?#Wc zLx=}@oB10e|;R zPi~L5fnIv#$F1;iM^|l0!+2lHbgb=AI)c_r2_tKN^X)Zo_LPh$ezEE!|C^;LOur=b17R+WUa*>0kclo}UUxJHAmK zpk)E+qf@r-`>R7w(4FoY1Kb2?Sb>>DM?o1L84)ccM^-~XKoA!f@7Cl@i{jM=N{yQv z8zUnlHzLoE!19r%Ul9>W{kBro(9*&rX18BB9tEfHcykkk@VL~}7T4t#iW0H%ta+L$ zC*t*+_}9e!S4T|G;EwL1=Q%y!cE@ehI-*4E1ku{t@`pro?xk7UhD@-WPk8qxZSyw) zZDlpTH@+L%YD#Nsqu+jg89XFhJzSQ3Be^<2WQM0dH&suC=m)$etwhr`^!D2a)QQNDfqfsHMNANFg(k004GFX9=|7)eM;F@7MYCB?@J3v_pP zGZLVU@VtK6hlhvPMSYU^`*d>M#biezv8 zhjlm*?X)KbdIB7+t*zJperR{p{c3)?;r8IpxS>aRSo28mv_Ak`5{Wy zYL?b&^l0gEDJm-8ly%impGAt`f%C(|eMNY*%)QwGIq)FPF}sA-=;kooK+EDrH5ior zmG3hail73~8l>-Unx<9}i0V}U=^)1C!Q=H=Lvpe%HxOd7|b#MoaPu%uK` zZK|R~(*Kqo|6n1XKF7lnVHX#+g4_cv;`SSbf|nmzvj_5U+3|(*8IUP@Q03mWI`1m^ z@x!RWC@<1#o^Z0TV8XC7Gc)t^zZU38h>H{Z%tp)1EGI9I#ECGEkcbc-TooCK-kpO! znWwKHhY|pAtD>T!FQ*&g!Vq6yUl>C_a6I!9O1W-A`y^B-Cj$_+`Y>z?h3ao-6vD@h2PY5q9#S1vf2 z>X|VO${odEKWD9uNFHG#)L)v&d7Q<%Z~yI~hr9ZFnEj&f{-~v*L>YtnCOW&g9DYgI zMm%9s27x>X0j0+|Vrk=&D#~H6$RO`ijL+>El`uUrG6x_`78Q-?5BX(Q(Q|SV^!ve> zt=D_hSi8D%PWu@OfBpKkuH>8FS6J6u5q|Hx3ya0NV&ww4>e|}#iwj`Funz*R2asdI zvwKX^h_F%XZ`c5c{?+1oNIcyDD9oMDPb37wKwKqQ?CRuXjSHc)c!o7xHhf4jx};aQ z`V?F6J;hO!tMkbxa0ph}TZlNr0HzI!aaqrTa8ads>8f#$T|63F-S3kIK z-;@}WH#k3fayY(Gg*3ujNl+Dy6Gy=n9jRs;e2EysznoUOMZ|hxhrnms&C#GdxhhpX zEowuAHfB9Yz8~!SQ$qH8LIMXHn^EloXueWWQNbh?7Z=mI!_eZIG{GhJEdBduu0K{+ zR|jCewb8Aut)e1Y>NpS>NBNkZ10B0oPfqM12npan6jZwz5*X3Yim-b0J9l??L4fNH zL;`6dP>|?vbvyRsHXu|O23%Dn+V9G9A^in&tC^9KQc_YME6&c0UCV&6HS^r+(b3R^ z5(i#VPLqerenyr599{%g#{qjqI5)~wNp0>7uxJ!MoX8*#AMu=U8VCV z1cLjazMUdv&Q|E44R(Ob8CFE}AF(*X43%+vm2gvBK=Ivw5r*!3`{oloH`Jn*%=>2V zcKT;c!$i944QwwLi&Pc|qUvU{{~8z_x9o1M;SYD}H3kKx8q!(9hm^*i7x_^G_dMR% zJxfcNxM!1p_BuOVv*3eUY_aR?><{84?af~(sRY8?_|pR;LW?^`qy^O9A1~+hyuH2s z=|Ej=VL``R4Uf;3Jm$TsL+DX9_FKzy6e3$we1rdtG@X4@z~MRzr% z0hxg&hdefUN{L9nULXv(c?@Y%RdZ1ana#CRD(h|$TJv3>5K8*dhfuvKw#TVpZC&IE z-@D5f1p>dVGN#V2k?yEG$b5JMYV&}e!8JvU{P9yCH@&#TF`GC;ecR_e2Aa= zMdI6ozjgilpUsbZLoi;1yr37CmXJpGX#P06gWV}3g=)#N833YqZ z9A^8y&e1-QH5L^LZQ0;EM)Bp&Hx9&yw8&Duo4(>F;^f>;%6v9re|l4w4tx& z;Ux*xL}21UrI}Zfo12>rKd!{S3Of=XT=nPAALs#;l#zjVmQX#F+kN))ra=EkFe@rR z4#{@DKGJb_zf~<&2PB@AQtjjzriX|6nNyq&73Vd zzN)IG%kmxIKAlYPt+k~<;p-15W>RSh55NH{jTmEVGL@J7h(1o`mN+F(`4OkHK1gZ$J$TAd>z3U3@XeK5mRrpnO z#C2!^28Hk6zYj|*)>VS|H5!k8f!pF(Y>i3(Guj6~KRq>tn{!g8Q9Bb-y6S!Ln}%Iu zl3~`ClaQv(G@g>*b!n3(RzmFDHw+vrOxuHlVzO zS%lV>JxAmn+1Y*#%3bDu7AqAuaNJLajjIxouK+ga0xs1gBO@z%2DS?vNLB?O5NHii zm;B)9i_njR`9}C>I*-#!GC@F&L<8+A_SzQ_{Ts)^vdOkAPsly=ARZ5Bi>cH4QEIBnha-qlnaAzH z1(hEb`l32nDMu~W(H1sf7bDNxO#TNW{=$7u)e!wy?ZRL5kt#>cOxhSZ`%5&=2_R!% zT3YCobGRDk%1sf^DG6lHoT^W9aH1?KQ{KFl49@sHLN`YM^C>hH^**=!&Y^(z3Jehe z?H;X0n+%S9b#lpza{*b9QpLu`3a9)FdI4*g>yNC@6d$M$D~*GL15fty1!pj?;wv0K z#&UWrX@6O1=?x?kv%JBf5+O6hZ1mWNY!*jX*V)O*WPm)J?@ahB2L=Sd#8>LH&X&4m z38~w8T=V=K|COg+xl)A+=KU^jPB#Gu;_;Eo9ksZq=%kcD+JPs1AHXLXwNF}Y5EVMk zw_T@)qrR=9F2|Jx?4}R@hR7RlkSoC<9KCRXxwFPWYFgR=sr+JO2wjn&0*rXIa7vx3 z%d3E5vj$q&5VhlAeD<>7SHz<|O8}Py|3pyUB++hg{!!jDP;jfNzX%fh8@Ihgk6{vvFynV@SA|xw&5{(#Zn1*OdpFzFn~}^)O{! zc?vJvkkL^C5Wb*YpnOBk*3i{`S&5Z6LSn%nBt$0dCw+c)R#c);$fy!_LimN9i;J); zNe%z_9ZeiAgpt5HAtePRtxF3zgjIU3Qcqn;2^v%5;-&yXX=G@aZGU|v@Q9CSE}v0c zScnw-{BVx>dQ&-*fJGPG*B|7qId{PdM-}hYISQ+sonZ{RZF@s>4yFcuX6W@bxRjL> zBha|B#{PantL~7heosLL*G^jg)Q&^=beo14j&bfzx@J42GT>c3U!OuOkZn6@{Vj(+ zTi$rFq(#;S;?}SqW6su4beAeN^rU5X3sxykQjyX1yot9TZfm*S({1P*#qnwf&zIm99lr50`ftalFB-MBCM8$PDy`%KP@&Vs3Re4f`V_F2Oj zortT7K%}Knzu9_t@CKon{&Q^BuF=qgr){&EV-^?h-yDqTUH5u=;Gv^KA^ubDdCg`v zEp)C(+pW0SUEc2ne@uHx71%r`Fc>7>NVQnqD zxY)w=k$BRKbmZ?gxOnSWytu3k9VQ+X*H~G)s~#o;%a4^X(W(^Hr3v)#MPKbrZdcyF zoyL$kI*1Sz6WjTjl9!X?urp4|%}hp?1x8jnz|=~js)|a5UZ<^*(Th(Qp)8b?y_Na- z{iZw5mr0-JD$MS$+A$(|EtIAe5_Wt?Ds!5~}-(CCGy4PZDSbNiQ za$Xn-VBnD)-2Oc7?JYQek*?^clcq(8r!>Eut%7vGY4w;FvpH4r?xsEr5Jb4e zKbWupG&xC4Ohh!O`Wdr^0-_iUbF)yUpGgkA<(}rdc||2993fF*Fn6k`tgO{!zYf}| zl9FyN^$iV)NlCsBH`N&#%SX$`EorPW3;o8X|MrFUR~`W?Wb{w-Ewb!j4BGU!1?I4l zONWq(iqIC`wX&H=qSpo<#)kmF!{2&MdY~l#q94)QXYc-LmAWqGT;LC3gian)=Z~(2 zaK+L|edNu8f1rU{UAnYL`E`LN_10XRUel;y4V^erMUCKU0&<>gOcc(0cmmuBg{SeVFEhRNPI?BMv_>mvAvWgLck4&(} zME=1VE?rtRScy2BejaP+m1PKO?UxtC_RZQV_>9Ue&bv6@KsBQUSol?-0SE?_Zb8z$ z1q4XeiaoKD z|7bY_9Yf1&WzkN7aZ}c~Yw51Ft&F{Ed1Qb2u%Lct3Cg~)x9Y4Gn%dgh ziW#EIx%Cbd3e;89_!>$|J$e-6YoGD_RJ1DK{OHQYMn_+y2O|_Ec8UrY9Ve<|(1oF3 zU@X^~VZNRNZi>rp1s$n0FRwSoR@Z_1PqUMas%qBmu7kx^v%Nt|`p;%Aqra+jk1vy$ zwEuB>Tm+tOHZu+GlLIn{eVd@XTkceCDPDibJs-@_?5c2eWK3daG*{XmZWbtyGYTR( zFfZDJ7xCEMVd2&w_6bG5RnYqmP#qQU_5pHsco^lAB;)7vK%@svMrmQzn=B~f)43BmA*t7MHt#+=?>1K~z0?|R+aos;OP$TaC zeBY|+zt>}eyrRy`hdNvo>wTX>_0>#2H&A%AfmENoABa8ooTb)Vv9ogo1O#B2&lUh# z!M?taev+DtFgSPpWIcX{u)+XM{Fpmfn~h~M65uDjZX+TBtI}^;Yk!q_Lq(-!Oj zUm6}2CBEF{?(QCDRm|#V`svdk$U7*)y>Cu(0RQ4Ob?rjdHc}8N`%r*KP{iN$lB>(t z@!8maf2NweH^-WqOYAcLKpckR`d}3d7M|<7?$;XO^zsBX&g| zi|g|^2S7!Ie4gkJdtpG2sC8!HBsH(r7ybFo@^7$-%j~Y`HE(#8h>+!FWDbU6DFg6; z9s(H_mi_aS_e@R+C~xR)69L1ce5$XBIsP z*dDcsx5Bo6vf(j4sLM}Sp6Cx;?mr-M*v+- zs_DF-Jb0=J>6kwsY`8pLwHpf=tMoc$J%jRXSE4CWJdnt?2xq=6&b@`cqOt4OFC}?= zZ@4jy&CMnA=DWItA-at|83hF)X=x;1OI=VWaUoFDGov^jM#f(cKzFc#aL!Q5b(ICk z*o8Jm({&$Q;6%l6g@qj)-nYTc!SzUpi-U*=c${49;W{9I^Rhn;jJ*|xsH&DOV!5vO z)V%p#C@6o&+ua>gTOKZb5{UF*%8_L5Uad?W{Q**swcRh+;)yDJHSs)l>Fo1r@3Bk} zG5pe@W%FvI2eXE}f928axbN$xZ-&6&l^Da98YJlE2@-s#Yo&z-d_xv3`P?_=fO0TC zJ|2Ka0%&2x#Fi!|9FEgN0-mlfa^SpYDac0wCI^m_uoAZ-$bE9)3G|t;%x;rXEO2pf z04}bm&VZL&4kK^C)P|sfAR62Qj&hgAS>FyFA0LTub9OdNFl;9rFNl8FL&d!PK-jfG zy;9d+y9(Tq8Iu%&W_7ZL6kuebdR?ZGo=GaJWX9#=T<+0gy)KGImH!bF(`PePe1;9x z&yYi+q-A~;lxJ`&R!x?|&w_(5ZA9$$ITgyTTeZ4Ug+?aE;razRgxWw`w%~8_zFMU@ z84TFW`SL}r3hpL^{!_b2QF4HJ${qtGVCif9i?z6x`1CiZrG-~?&lD>yqcYpRy+Ioy64%=& z?K8((ed+x4r@0a7rS-T4c8Rie*C3J`^KI$0UFBCcLumbKj_-6JD~m8ny^y^2FnU2U6NSVRK6`9l?F*P3*Z# zvtW&%H*kD_fmAM64U~ca(Kv<}+156512FYqLQ6nzzEF~%ViiCuVq$hx#gUQ($G6N#E zeCjJ+Q4hlQ3#4QL?-qn?FDHyn@lo33LcU*zmt(?irPnNWmeIr|_oMI-m3WDrL3d` z;{-s!ZCW=1f*Wjp*m6;d0ClVr2IL|xM#ckB;DL!VV*W2Dx92;>kpV!90yaMTYJYcE zMEMqrpzNL zzd-<#^$KI|Wxp;@`)7BB=X*cu^1GU3ezMUG!ff?$iu;SXfxVO{Tr; z!YJumUG;vQCj`MFC~MYUUi|F6^YdT2{9u9H;EPPebcFDBx8pbZTpQ{xE-o;1XPOog z%}rH!c#I{#HX8+0ZWjigMtAcg2wRIvT3(Sj@w^6=+0^*B&rC_JPOI+mG9Tn~1c8Qp zZ^IZ{nDu33z+4QAd8CR!lc#KUE7kntSjLR+Pb6!Bvm{u05g%(GoDqKqie!5D@W+R{ zGtVU>*=uKF*-N|f2 zK`@aG%D&G@%m^xmtglv9!02j+PKOtdWeK1>=yP?p{GD0ro-33$Qx_Yw`*QThOS~V6 z7u7S6Mkc#l3~#jZF#<-+W@iHFO;jrTSAu8R+CuqG!7r?xxn#wAcqAvM{z#@|KUqwboAODF&zO47p{KfSjWfT&f20NPuD?9@4&h2k-jccnE8n zRYymM+`>nkDJR6Wk69Z+&Eo61Il%S$Lk1hfld6B7WS5E2lC6xFqW_B@c?htc{hEv+D7 zZEMS{dAaJF5G)?-SJG7pYHtv|R;mmF3kzx55Ehn}zlRhQQD^~y*`6##*mlWKU0GP0Ej}K7!lE*ErJ2Jz-4Lq#%$uO@i}&}!)8Ckg#oMo z&bR5)`IN7`Tne|QyS~s=Cl_jBr>DnmWd=hcQ>s)#d@P>lRmM!W#LdR=GDs7(+6{1h zg3v&sQSRQn8&~v0=804z8JY_t9DqK1e`5aOVyw|f_}8zGfJF-o7q%X4_6@haFlf+; zDd$C3Xt38<18(1K5(VEWY~06I}xB}4pg@Y32EY98ygz~ zC0jq{uZc5N291SsvSlF=^&U6&_Ys6vZ?1#J^c7Sz$-)s}hXh~oH(9Uu(BBs=e^oAA zdBYjmd5Sp;e0<_A%ax-jxmF;P9a##Gi?vB$ z*CGM~8M{-3VDJk}vtkgl{{us*Cj`4E>%GgZ=l6ja=;(mX<~vG&pO(Qw<&$Fucd~zKTOdwNHBJ1VYvJ5;+0kXq zRl4Caq`(E?grEU5m+}TMJ_*xNQr0@{$Ysl9@m@YXLPdj%l?wqJ@L2tTDUwdLd)Ybi z^QR0@>vua|fhD@$pTpb>YLo=~25@Du)~R2=4A@8Q6))qPdBnuGH8>Q?7UHPIEv$S! zU*dz@d}4ZfPrjPGl!z^Pb8zZfJ>oDF{nTP0_O))OkAQ1rL4CglV7a=?_nzK;6(hkK z?_p4tQ#z=Pvm-ltEI51?XmamG1>J&2Cf_OBf6%1IW)O4PNIk=6q!R%x3pxuFTnR~e z`Dz-oo2qJevEB;kp|o{Sh4DE5n~X13){omBeI6PgXJ({#c5-^*BjB(R1O#$BIs{pn z+YkWhMHzRPo|bm{SHhA~s?e(1XND$X+F5Jh^7){!0bG{f;X?N4nc`hr|Vj;uyqTi>EZ~aDJp47*z`PuK+ z0HEjh(t&2&^{R*G7)6k))*uK)wv;Q5{oPEo(Z0|4g8$7lq^q))wF9-_i`PMmzNHhR^lOjN0R z@aUlr&8t`aA>R>QxTU2ffUdmWVmy7}Q}k>1+q3+(wg(W3^kH|q{9m+tT#Bj=W0EF) zOAeCrHc$@yyHCtMG%{Xc(Cg1(E?I`?GRQg6RXqdBUbFG^_httJrAJC!B6@ z>8y2*(lr~FLzY;ox8kx{tOJg&Rdwosr#31oDvRG84$l)*7XaePk!=}u{05&p^nMtke9;`n#cxwKXqbJQd?gwQp=}jB+spP~h*}$}GRoYHQPYoWKe{ z#*iF4)_01IYiZ5A>lftNu%DPb?LG>Gi?Kg#tkn76bICTVI`;(tdvBx$vp;rKZox9@ z7JW73FtaIaW|=%rrdJ0V;Leu)xfr3z?yVGD>*Zr)+t$O>1Xdw)9;1+%o710`VGzK6 zuwh~fyaiiI!aq6FkUc6~0f{1#9UJoLo6sb6B>*c1qs{~3iUENb3H`1SZ z^Sy+!?lJZ@s}ce|s$}a&&?&$MBMP!qKOEpn)hr_Bk`gO2SH&tw4An&FFiD;JN8$-E zpH{1pPA$eBX}up+pEX+VuG$aRV~17`LcjJJ>Kx2Qfv--_DfP_v^?fq!c}GY{sH{8% zUIyk@^eaKH?X2fkkL{Xx_EWXs|izM^>dWS^C&k?mz#>l&0&^Nj^krl_i~Gladqm8L0RMg@U=fvIQDbX zU;C06;0Jbt<|!NNyuuQt_T?`Pt7|s-NApHcYw!o#$!a$Y0cz#gFUEgM!`ti|HQrqq zIsZm0M8xb6^yY0PemlFi(q75-O2}(O8{}6tMxVM#`F1Td_KGVZe_rS!j0QKbGz=#s zsMihkjl6#s=Q;>=eFQ{}xzP|TuymXTwT%tb1a`lqSkiw_*G>L1Kq%*xi)nuaOYR>mo!emyESMA$isDM|MWMKCU`hKQM@i9&7`+g8m7?0*P>&^$E+hIRhJJOE}M3odqisVf^l|ZyE;@1xMe*USEEdMICMrKqt178=+*Hjt z`Enk1!~j!eg6ps*v$j6^*|}Pe2o}p0cg1;lB;vL=E9~w~xu%JbW&DJ?O4)L1D!TWh z*~1uopMKTzOU;B0A3Yd6@U6ANfF_pIWo{>#-}F)lnZFd3blirA z*LxoQ0UnsevDxH-X}B43u3lDkJh{FF%9~s9ORUC7&-p|9>xgB4>C(e3lA|vdJO6^& zCi!SoRYB*?C*MX)i)CTeB|6(1MjyyAHCi@?Tf8)f`mQ_I=r25;od~>}!D?^beD%Ix zsR#(KPm_*9NPOI9Njh3)v9!D^DsJcToP9B)=39Nfz*c5TE2!`zA7lD3$1bGoSYjW=Q59(PyA!O&!nwLn(IY!6#sQEfcQ@a1nLky>J6w}7Xvin^OdQx!TRrBh<>?G?KU#|XuU!P=$&p4^^-a((;E znnt?DZ{NmG$8xR*LpDPfu(=cu$%Npf(7Ml9v`#j$KVei{B7^bifA`7t^|vH?&I4$* zdqVRBtX4_Pguq|yjE{Yys;3&A)x(fw{pZ=fLn=_u$sz2YePW~w4D#(J+Qf@!A?NMY zWz7U&mJuCudR5l=n<1}xw?0@Wqh%26n;{^e5hfu{d{Wgp@N%82)hVQwD{nw*fpz_K z^v#u+^XK9G`=q&pr_SB;)&1&T2Ks5ej(kbusYZ*B+>CEpuh) zc}kqvS(eKJ2QU7o{4HG~P8TgX9qFsiZG+zQXi}>HY-1wpkRF?0kAi`K(6(1)T%S{c zV62Lo?yvATd3#-0=u|t07iOs4<^!K510L8TY&R>ZaB*JGSuxpi-Ax-s-KMHCtHyI{ zSHaHk0aPs4wL||}?%I;W9JPJZe^)#-gR33os5|)JR5dE~a@pU!S&?=^`S#z7HtN(m zqJ@hUww^?cGVL#%zrFma=FRWJuPkaZMHi#|Ku?^Xq{xDA%kXn7ORN0O4$>{!9lYIB znO{CK|L3;GoAq!L7Mc(YVXStodvZTZ%<=*spw%bf+3D`1h{C(96->NHx>S4Yf?vx+ z3ADWW_Xu4D)AT;KBc%Oo%n&;1?z*GFLDpn|pmFZZ&8Q*J%-0xka#sQZ6Ft@Z^DOby`7iL3M<~ zm_GrY^K9JTKWYoI~olnPHDf&a5 zSWt-F^2u_V@44j|)W%0_nWU;^OhX#3UVv2iGX2u8CTQ!F&L6D=pJmoyx2UCv9zu&n z9hA+Nd4L=&b`Uyk_Hll(Y;5`otSI^1in@o@ow=NuJeij_>$BuymGsDndZvfvA-4Q| zT^BS0&}Y@1KJ8cp7BUdZK_iR_ny(ULT1KbCW?H5|rA#WGcwxUC5ofH*vTFIwpoi^~ zcJMwbEi9p~`h4X-&(_L5DU_Ix*v&LPF&k6dfLFpDV*Fc>?Z3tByVlNY)b?1QA5f@_ zfo@k>un=8hxBh48%!BFOvXYX~n^PH5Qi2SkeP_LXU!;tR9LlTEmb+~DuF76p%%v++ zl4tLwS*wXKU@sPAB+#OxXHDJT!Z*{aXZ&s@mMHiW)O==v`ONkQo7j%Ca=NCx@0C`b z3Lux^b>%P4*3T)kMl&zX$457B1x?QkD)$MO`XtWGtY@uy4x!1sbP1wXqVqIe)juDY zeT&ETZ^Y(+6EP=y1N|E4N^pmlhAh)RC6_{bO{bNo?|@VAW!NV@zGKxxyS-a2@O=-b3fT({ ztxE1mK}qP(q^-VXowBxp9;;Ma9m@XMPw1RRz$r{EOj*R=iV1KySROO9+oUu+Na%BX zeCEI8w%C-t=LYI+1GaK}A;z|MJNT6J!M;W~Owf}eTiK~k=RwF6(M#;%X`WX|Z(j7N zHR_G4Cxp_pzCX9_JhivnZM_Z?AL{c=&pY^-U2St7w7w6a03VNhCp#a35c(uu*cA3v zYvA$8!U*t+4|c;b@h~#bZ$0}h%fL~c%kq4h6iB>k4uA$*bV1ugi>sbAUm+ZE=mUu8 z`PevZPA%M`dan-bK4 zE`)E<*lW@2WslKL+^^8ibwoCoP7O{JQSN>s+9-lOF2pr{qUhN73Fj9t?#Z9T%wLiXUYCTMO4=Uc$vL7 zdx4;&;$KjFP7w?oTT>68neGuI01lTcE$a(Sxxl^5J0z-X=z0`sY)zq9;s)0$ndSSL zt7aAh%Z@gSo-^20Kr{^&Wqmu>J%?oHQ@aptF}Ut{Q?LKX`goscaMqP^We^BmoH`%; z&2Z9{P+6_ zzc^}w?IAN6{PxpEos_>9=Z1?^5y0HmvC#Z=;ht$xju%#~6c~NHt+A`EetvEbyoN!WOo<+X_H9ER?s4fiyIFbyBJyO>I<*|E9+L^M8Ld z0Q#d=gm3C$S~EF$9T5CfWus0`DQy3choHyat=4p#P2lu~xCk@ySswI}xK`AaSBVdM z+VVW#Cw6zb)!9Io3*kS5$U);Rtgg~5#v0OXz%1}KG%!N*D7$hNo+0Iv48OdjdUyzX zfz%ftZ|r)YaC2{$>*?muS9AW{xYx`T(ZJMz++-7trj-VLodESLcRb>xkZ}vfvRMWg z4I?KresLyO8&_ogM#3Z*N$;ohAM1r=rOF1PVso-}udMw?|mkU0=%9w;e-ewzNYRfNvnG$TT+CS;M=YU-dIl9hE z;OdH|3Gp$*7~43%*6oTN8OB~&`KX_Ll`F0siV@f37K4oJ*VvcF71YpB7abjtqCrEN zkwt;?Bb)tZOO`}a0EjnL!cB2Loug7RLK7^l_UD=^pC>wW=$Gc^_-1+>v~G&tzruA` z)rK8X&7hP``bNunZ<-)#Rjp=b#F**sqh$<^GRMe zrVvS0_xCemj2!_@oiFfIq&(jBZgwe$Oa0#7UndpbGDgmK>Xq5)6?Z-<-R-mFe!>(S zW!7!RrWtMEg{JUMe>GH;sGn#3sGx1w@+GswH+nVqLF1;3jM#BzkeOm{Ik?`QaE?+uL`l7t zk4n~GxKp@WEma3a0$Wm2hATA0Oh*D*Mz7e}1wWM%X_)ibH)vc*LyX8VCEBS93 z+8?&W9x(7f2O$(*r?O2f4sGeuz87Y7_fxMi#Jw$P9*$LGR_F=Tv=p;s8j)Blrhgsx z^m`Od^Q=iC9Dn}xMSaNL;SUZ!dhD{Q@qy`4E4L>Ml8JOFC2PYCK{mEWqE5MUR4IZB zwomdI7MmO#`3DDp8U2<%+}`=!Kvdl9qs!!SYX*(%MvOiy#O3DJlg0ef2rZ4J19{$k z3>NdPMkw^48fv)LEm|8=g)M5V6cIjQwyg9?|)Z zC-EPp-e{2ZTzoWhir$oIZK zJYY>l$mp=+zM$4z=vXx$O&La@^uk0<{P!Le$HRsmf|o^@MyFqiP0?>T$0huNEe3=R zJm0*=Hq>3nAJ#m&Ruxqg7M8cXnybG~hpMn&JfTqG=EBnQ7we-zgpwdPD@aV;rkoZ zVqH&(GQr1#uWmSpaq`YTHx>JQ`IYc~45Wss>6dyaTgwXMt)geUOrCArw)(Zl4Slw~ ztPdI}Yx|N(JX`|^f;|IioUwRmu?9d5kv5Pi#6Pz9^0b!g2)7CM)h{CRd+zU@Z~cRFIVlh zV{8n=!897Qe9!c7oZ|_&x}~8nK>j}GE0wdQ4$#;4BqG(|I`7#)Lj=R2vl6s`2PX4r zR;3yG=YoE!p4`nBWTxUyl^O#BY|RKNdL$h)Srf246J#V>%A zNuUbufJBvW=C-}Vx&C|d4FW^Ap3gSn0et=+*6>GD2@%=k`+9@AMq?Xuy)B>N@{%(* zj&n|HNDO0YO{o@F&s3cL2NzLMM$hYAV!Q-m;y40=v=#DW_Qmoa)7#T@@3ZGGoNM%E zha}tdd{bK8Lf>!;OMZ@H1mYqchNHTnew-irv_|g%MSGUvrJL^kS*3lM2UO0a^rFE^ z%~r(W-#goSOXU9CfXhmQ*v19IQ|W&=k>vYD*iwq?>WZbM)6e3nS7J+b9wh%Ty6!0M zc8UjIvVFpqi4&J>33|%okCEjtV<|39t2MyWdhzK@dJnZICy*c?<4;g(=g04!{w5!4 zMpjCRNhJemuNv`540a+2=*Nj-+fV`{cNs?Y6W}q4o6}ff(&(c`FpxI6ye{xlAzwDgFZ*Nht-?v)(;W zAM^)^J?FADag<`?wRRx(lxd1Zp^wA~Ycq+^=Gunm_p*G~Cn>SftM`Y<($RGO+b)nl zg633&T8-{~!^*0f+d1^bmhC^l@Y54>2RYqv86}4m@=Xh+?lpZzrh9w;Ob9jkXY*KN z8x^TB(sq~Dw6fRM&X@F3)!NKXJ$;$#c0#$dob-ZhycDH5KD#F(R)4DWd=m^=!w#(9 z(u97w41Xo4ZF#8aVzr;e!EyWl)0r!Mt^^i-Oo;m)om`Mj9n=B^pC8vwjgrWn5gSc8 z(hc437B6pu2|E+LP)c=`@;O&RR9h5o4cH;&v)mr9!t^ev;yWnXD%H@`lu-qrInzCD zy;gOCculZBs68uY4*CX^Nj2x--RHx9RUa4oP0!(Lfv6-)1XqNlZm)WYV?6z?gE*`T zGXqYa5(TAaCPAMS&(X1mimJaoV53vXT2#$iiIX8^3VF5ZTz`#RgOc)eTIDTQ($FX+ zvo4;p+L7bd&?E_0Sf;=&rq9^(Dt$WRQk~Dy#LAanPd8%f{DF7Z0NZk9aM~x+k5KBR zYtUpRqv%vH$xw9ZeaBSrSJu+@efV}`j^KTdrN^@GD8%-zZ;>+dO6n^U+)CXux3-FM z0oI#0AGOoh^FEOb$iF7VilvvV?#er*<3TwX;HGDG8MN)~czk!fLPgh*?I$Tk;d*$) z?e&p`gk&42Qe_XrHUq`MxuXXXno-WL(4}_$IS`RD)ah4E%mB69pSi!W(Ja9%O+w!I z0)0l=56hKT32ONG%A3?2HX>ic#iL+Ut&nChRlSJKwu=h~%lIv_lIF{o164kCT{@qT zOI0^FGk?BBI^Ysi%`n7WXdbq3AKrDRi*gi}j9&>LB2N8%yowtf{DTPH@XmRch)p#; zy@gr#=W+ZY)9NuaaYL)#w<|#-h!LNB2R+THjH0B~*_z35DjZ>DL?11-FHzqHqgrC& zD;ufS+e%2YCcb^6PFTk^!$+IBPN;LOSPk&L1Q4&u&aTPlHPNCv0a*kgt2Gq2zg5x zI5a`yef9(L{PcTgyjZV8W@z}7>_M~5kutNTAro5M-50PO1=u)(MBkQ!pd7&VWW1$p zx)=g%fx=z$1U9r0)lAscXs$qdPR@k5o#+itrg1m= zVfVtS`myx*k>x9eclkY)OS4rJos#-&^#80h#)P%oeUyxMlW-see~@h^v5xvJd2{3z zYF%eC{|(v-5G4JBNt$f;eAl0t;2;rm~FY0bo;fq z**4Rk&6!3vnf&lbE?OTZBv>l$$IckZ)4JH)?fESVBC2$tLydKmgicj!1&{GI{wd4n zGHU#SdDA)`9yC{%X#U2?Hng8?l}a~sN3&Oo3T2+r*96LCLoR)1mk4O3UlD!u4C+!# zaH(|6lQm$Q%3Lb-jLi9dxGF6bz~O1hzB1I3vmZ{cc3lOw-Yn!(*LF!HyD(GFaC*yz zODJfd^DM#j*DCLjoTNusMI zaxU^6^+#l>s@yP^3V2_M6~Zi1)R}BD&zoWu%>S)JxgDJ>a+#e$6B(6(N9~NCLhI}; zPd5~=qD;ieP}n8S{-J>0Tp;ZnetbGg|fLazsW8D+blA+xA&};ZR z>gB7^>jXg`ZAQMdbSnQb>X(m9?;*|i%dM$96SyBf2#G0!DV?NpuD;!!*_j_WoHr60J!hZs3{+HJbPSkL6U$E zXQDS8pHAR&{j2#%N6;0orLCr|#6svDVHlYA`;XUKAHCDi-(BM|WO3)S0Vy&YzN0?| zB2~TaUBMmmDRgLi%u7>~H?I#Ni_yo;-`V!ondkpvgB|CPM#qwQvzGABmPSvtq4oC& zg7g=K&o+|f;tR<9s=-FT^*r3cvI1QT|1l9gtD+S-%@;*D-KhK4KixFq`3(2zWU3*u z6w`E8ck^07)OR=iL&EJh3zsguO}FZ(0IZ)YgXT zXKoSCi+DPv%uKID7w32E?D;Wdt5^hApl|ZwSlQ1!P~N*+y|3L(8-%WCvv`~T!_rkS zRMm8Akxr!%k?u|rB&55$;m{?GbmyU4q&uY%kS=Ku>2B$i&O5x{-M`@MvuD=KT2H+< zg4*imWzJN(zie5aQ`#@z6$Q=V(+_bd)rD!oUTce54L)rf&MZ7rE6mhMaN6$Sy>j3u ztG*D1P{Pgkm`kM&SAqRm@v5kcn2D1kfQw>FO zFMD165}&kj@fS%)5xO6BbuH!Px#cbDDamS_VUQe{-;oh!uT(?M=YD=S7Ds>)a0=0E zH8T?qFan2BBHbp9YFe)5wYJ;!cu{ZY_spiyvr5i#v*&;NJ-UKa;%1!b6yxmPLm`)v z%{v&r!ty^&5v+;x`5vF9-v6GLYEye#AY8Ouib&qyC}**VDFf6q>Iu+{r1q!j1wfVI zbB-zSCN@S5SCg>l67yYs@!vT!^h9K6Ve-cUTwE)sfc$%Gl~N;%0GN3e(~|RNeC3s! zU)1gH3%$OMi;XAGy0ZGH;GtLZO4|hDGSgZ4{pv?u5Nq%IhB9X(lx*{)w&7Aq?N&G? zn$k02YLb2H)T~Egyv%KeuraV?78RPz+0K+N2CV-cfCdL&P;4HM)B;R&O(JVvw&q}C z?mkV8i^*M=snOJHbI{u&I+y%(7n{d4rTwWuzqR@02OpZ=Kj#@Z&5)6w?T=W-wc!#m zVFo@*s7R!KkQAnUIHso+UJ>v!zk+e4ZPR+yMZEX(I6=6}3K{%V9~HQP{q}stGX~S? zps!Kcvp;Vk`$E+(*-YH0;DsLXIIRdutdh99{=XqGr^myaj!}`)y3s>y7o%1;&-^h? zhxNFm@aQFYN8Q>|Q2uZKrN!7D;2snfrICDKHQOceeUI7uc-6ZiQ#~kh+v+VtNrUbC zIJY)QXDeELc9xN|1#G;s-^KM`gZn)U>dZ>a+$u31fLmtqPEsn=v9Q|>sji1A?*lTj z6W@wguME=`BRjRfkGxDSM?Z{MWNA`Ud#o^94p~{C*eCqwI9DBdQ10bi2r)8xurS@i z1<;Ja=iAK+C%D4|oyo%nOUlK1^{;=1bcQo13$lgq@WAPmTq6;4xBFxWc*P<@>#P0MvE!Bh)OBONNfWr#w}D*DQXy?OA&0Z}{s_X1 zXU=<~9Wz!*av!qV`)fncJKYi2694n1)lRmUCG20te<_lVELF1N>T{lId9XL~Q2x`| zztMr*ymHl5Ro~>4q*4J!Y}d4I_>Aiy;cJ1h7I%BjU2p-(ZOxR9MNB?rc$JWlc6j(P z2%6vA!=_Nhv3Bl1j}hdhq{gyae%&2%fsRVy2bc_0PVO%FjCt?kkU*gbdmQge$@JL7 zPda%D(0nHHGZ_&(oT(PPy%{PEUh!a=ylmn}~v#Lf7DA6232KuA<-P z0Syi4w5p$`b@))qU!$nlL=cb}Uyy9M-_!JeOMEL`Z6F=%w#7&JUHM;%8R=9anV*L} zyoMSJ2ya{8zk7|>vKya-&w-hd2b>(33i_CZBIL?tNjxV6X2b@;AhJtO#v*h7<&_E% z8WTI$f0t`EJD=k~i81bXy*_Grbkj>L>dMl5eCdYOVM=)gK%Wc?b#bDwds<(|BIkf* z`qpbWwOjN|g`o1MG66SRCg--t%kb)83SJ@b{j}9Bl7ns#Nr>vtaRz*}Ca5Sqk;k0$ z-hW>EP0YsD)f;?rp+?KFfu@$Q*y#NwLD9wqSn57CJsQUUP_<#4d!lDrBBO`Cfbu&A z-OEH1eT)PD$@nz!Y4c~^H7&Ft12A_99;#qt!6)(Y>s#*b!lLh_a^ENzgJ74z;#DZL zBv_E#e4lGkY7o!7PSIaxZ?m~@ot1Q~gX8>_92zPrJqV9CWIOOjC@}F(ui5$^KaNfs z7$~$e>3N;gVq%M=3&=6v>7gne9Lz0cZ+-V3tY{v^1nQ4_pT%FD3|Qv%$nBt+LrpoA z)zj1zF1ydgYUE2H`Z4b^A;n4kfRzdJ!)CFoXygW+5O!~_Hn8w-$LU6at*unDDXZ!S zqR>|)qcPJv0`7a)_;#&?Le+Iz=I~2M(8Hyo{m@r%9s7$-@!WRNq3{TS>DMm^S3HUi zc%LGx7taT#WiH*2zNH}$~e?4xz=pBuV6SZe0V_2Z06a^HFUCAWXn}{)pPnSczb=%fe?kJ9U5%t_Z?sbS4Rsm zaGwG+8x`++QR5Bhntw_YyxFCtb75n@o$C%fIg6K+ob6kKvsn@N0j9$f_!YhhkfvVK z#dwdVN1SHU(DB=gbxh2jhr6Dh@IeO$lcIycq|Fx%?GH_Hu6|ty+m8qB$IVRdtACzP z!p6ugOFx6(nqH>`BU;uP&ibGn*5maSImq)l+Xlz@)}Or4;Xcrnh|1{i)_}~ip6WF8 zV`$(FRn;YCB%18)(!topt+d1eHh&8gIyqGqR7A6O%#xC9hWB=#)7tfE4WMFKyp!V9 z@M2UiYA(J2J67Z2-=0@U)Cro^!uOj417VQ6%cLM!OC}Z9oY01I3<0;3X#YN6+o|Wx zgX4pJ3E84!xL3r-Q)f`y_q>mo!CWARwV7)S9s`ZH<1yTLYx8v+MNlXrxPGgs_G~_J zJ>9+1e9x{-GDs)rQ_knpa+X-4Txoy}a0SUQ5B>d}9Pie-Z|73C zes-qMIa&S~0|*}330SD8Wl7TK#7|a^00_~Q)+YR_psQ;$LI?&7l&T0KMfsEwPZBta zUia`qvG4}1yy|UsDK7iHOH0TkBw(BwGi0jYUQt;*YrA4_ry0JB)BAT5pL-Pey@WfN zwU6!*5lXjs%K(e;q!DUA$khQ^*8VqMPqIV9;K7}>?|L&tCx)B3&s%`$n4!{EfzMgo zoDvT&87a);9`$!8;DPwF1_q>t;hUS@B_+#g?@JiyE?T~< zurn0BmaH2`K&l9YY%_m#Iv}{wO^L&-woG`RJA1lex|SU&ubcC(hV?r9OZ-5$!oODn z9k1-d^XEBxe~R*Dw3^&Xem63VI;C*gR^VuLkHrgo$cv&$>+Ql)1KZ@qJG0~VhW$bn z29lB0W}C-B8JRo$p31>NEHks96nsqV+M2pVbl-wS-IP^B7lpAb0iT22zweot4sln@ zBZg?de6d6dRC}$cKPn|TyS+gHL)Cx0Jg~QG8A(89Yb11ihfPN2NEB_VIXm%&<2L%O z;Nn)E1VT~OICvW%QWx+h4+sdWHZCw|QB;tpPNAao2@%0A{co3N_^dbY)h)$$tN*pT zxBvOAxKvK%z;0+edjXow`Kv^yrA;)V=TXQt%Kc`0K*G(@3P3SKBOemoC%do0D#k^CiWcroqwF5#FImRIO+{+QlC3ozLR zN>YKZWfaa`>>C;D*L!D=d|glhJW0Au*MW}ypoVwZpc!(`{s@Oz2G4J)>bea z+*q4knnm&>`xGq3j^`H2 z+WH&18NjWM;4`ZQV)F<0cu*}V1TtT+=+Pr0Ho9)F)OFjLtvE$3doIAQPW5!n%?XA) zU3Fo()ayaLH@)65^C2Uj?K3Xws#hKr=To{|+7xXK4di=jQc*EA9Ui*?z%}jnhj)0W zWw!JJQBHHCD#xpVVB?FiJ6ztk;s>gQCY(#Z#-&ol&~PqtD6D0?YEa5$B+x9f|R zfkD@D=2uQBX&s%TGgJ19%r8%52xtesN6SX@KZNZP+>0-!>WA~S?S}}8y1`)pMh9Yy z4(j&gT4KEz8WpipWuFRYf!`1+GBSeV&LPvyTK8&pw%q5>d3=07g^?3VGP8~Yx(vw} zWqZdeGnzeF6vhm&v5!4G_Iw^05vlzB**|r^Rsma4nmq`e?j!Hu({0)9SGGUN$(swS zhD`@HGQPeHwub`q30y1QC(&~2oRc`cygny~OU>Bxafyj;pFrv2JUtFWQ(GvQ6)J_=9|CI_sp=y6C`V_?O4)0u`vpBX)o;cGJu~=aii=|n*n~D* zI7xU6il%=5w0USiA?oLI@^Fv%-}@?IMfJ>;Vh{XS`4M&Rkkx6ClKFX5P#y*smrYm% zm#kx`47CRi&RJ4{rZbV677Zi$^vdq(#)-u(__{|F)=%Tn3S^|Dva$WFf}VAU?paxR z*D-Uj!GQvv72Fvzn_+)<0XVooqTo3;oWd;AN# z#aZ;|2A-mWF3U>I0INKleFBpu5a7^wnVzvmo>E=UWw-M9^y4$Ggp`=Sf6sC&1T;uj z2fH;uWE1}?j`V>GRok}a;QL|TDw6Zq_>j)8=hci__R}J~_B)a}fWnqq5e4C02jX49 zoYu(5v9lA)-~VuNX(~4t1KF$*4^JEsq2lE7h!96qVD;7IRm#alM&DZFKMJ=1kRnQw z#jHvYNJjG3vots0vC&(4u)CupQ9D5#k&o{e<-`vIvzOT__XwoeNiQ+KOrKp$; zw3s0qKP}2$`3KXkxmpvo{h5fvISwB3fETX_0l3T|JLmF`3A?BjqNee-V75CYYPCy6 zjp`#LFYkh%e~gay{NCw;J{U$BpE(wYsb!;CS|RYMjGm{EJGHWYSuMp^bDuqFT zjKTSX5Lw!6y77 zA(C?o457i8$IEdN4;zIC9!FyWPmxA$BM!el{{tt#{XB!ZOT7{_gWdY2uIK;bkDpEQ zZ??a=5DQ5uthmW$^6HDIpd5*kk!_-RR_bGFZ{(W~$F}-peEkq77~ntnTL{>uTe_fB zD@l|Ox@u^l;$6TMd~- z_g;<%$hlg#LGY>af1O(}h5IQ;pQ&W>YCRO+$Md7(|C5JuLdSvVZ z5U)h&6Jr zl5VGx0m^zw*3``y>X`~mSVZa1v%en}dDxAzzRZwQkEI*#`-H03vd+6?5OQiDW$t%9 zpM{!H*!F0@(OA)AM}Umy6Az$9TAoj&<9(Ig1`^yin4~pM4HOT5~y+ zmiK+B;Rsom0nYH1u_oWH9=x5w^uYVB*AGHLF<@6GF23GTQ&^}BQcDKzTJBP=f#W%n zd(A2Kv6w+ibSbZdaMJO4ET50^ZcUwq;L=Tlbog4YmkD0WOM@z1_L#XF(%_euEf z8bCwlH1B&Wdg)BckqUWy^bQEX+uFLxEyTm8;Yi(YX~i|dh3o0F?zEPaq_I0zIz2Vu z&^3ZtzP*k_du4|Rqol-sLiqZ(N)>&6dAY{pCMVc~PQ?${V2 zfOt)suC!&1!x=Ir!-Qg2eL1dMZf*XW$??w|giZnNO%^`|cPgt87%jpUFO5WfdJu}r ztU-<2H^8ensW-WN^t`ic^#*5b%zM8n(t0td-VYx#T{i&t;+sfAcW?gHZVzW2Vt>(z)_o$r7YioBxcmk7|}c_C@ZYn8om07wbu0 zYY%s)g~`7I88iAjbs(>y>((bJF{v58SMSF^U6)%r!`I~VW^U96;4WgXb2xkYG;Q~l z02ltZRzzvyu1V3oblk62PL(YnD`?O!R*9}!AGV;ve`a! zT|>iHw2=`iw6s-a<(p>aX}@~+60> znzS0t&$VXg1n<4Fo3>#(2RD2lPX$4oY2BitaogDY{>jqM#>T{(HN%U4%ot zjJaG`xYtSVqc~M6EP^j&A}OhXBqOVeI4s6yYRWi^!i9D-@^@z4=WLoM!8godQpKY)BZ-MS%hj3oY{`LjXmg@s>ky1!80sv$WU z%;(o8H8x;^>3Xo^al<~|!1B~t`Q~3?%Sn^Mg5}T~Ip5!1ur^B$K0lu>t)07`xAK2O zQ^52DC1cKGz~|RzC%+;+?hJXsQ`=HiZ75`EDg58IFELMPWmy?Smq;m3M5NEeOkl0y zAOe)V^^FGPkZR4c?AUhgPjqzqaNU3YVEofSLYhq($%MDg%j?xDcdd#|GVL;;A!VMS z;?W8&Me#abp7n;9m)91tz=#@^cLXUB2h<^$^;e-s}mJLk(rF9)U z9kE}tw2W)d@9BFh;Qdp}I8xit#EQSw8@S6AFw@9~!SqstSWy2Z&z`%BeG9W`%VYh< zQmJHIe0&4r>t>lAmH7&t4q?`g?FHW>{omh_Gfbvxb1Mam#T2;bQFY zOIA0S9$&A)HkB%5$yXW-dAehonVleB^P0{85!O9hjHU;HzLTyAgv;}(72H4=m#;ym zelkL`A6h!1bnrWFljQ*MRXk2w+Wy%#6vp$B7mFwf4@=L$_XJ7*=K;5x8l8?#z(|Pa zYo68qgSmKY8rOyz@?_>M8Up8(Lo<(mq_)Q+`^hAR`)@YpZk^t{1qm`TGOj6E=zbds zUB!N-*Pve$8Y2k&=Nfb!Sba`*|LU0WJ6T!cp!(b;|NfmQ;A-QjjHQ%kZ2S=(0V6tM z0h5rIiBFfAt@>RWlZK*U$TwBpgZSh^jNmGIMp^EUcT%E3J{A^F*ViDH5UZ)_j-LL5 zq2{U@7)kf`y~V|s=(bk;O1 zVKqe#tG6Fm6~gw%6Ruq5_eouTgL1q?5rT1uN|Lc! zZ|&J_U^tn0vp?GU!ffi}^^3=^+=t%JHpzQ%-eR=P(_P>fbtm7ZCltb5QAvkL5|7|VSvid{|eb(NKyCskAL z?<@1hUY_Na(ti9<95t<&&ZcsRcW%t2+D6bWZx zA73KMr-6lMF9@%WT579QzB>|VzeYzNk8dOzl$kPv8w}$p6jzcnZaF*~8P+)5k8nFb z;+uppc(lwkdPgj4VvfB%7J*L8cyYC|RH;wpak+Ul#C&i3gOzINeP{-SKA~>iFD*r| zg}=*xG8+>NhMD=?Y7!Iw8cd`REv(%}Fn?cyk_(@vaM;t2{LXxYTvxYEnbE7}U}47S z{@On-?oUa{CW{LfFO?W0IYi&bC+Ws4j-G+%=H^aO)6wxR2rlo;(W8dZ=4*Pn@Kka- zV@8_wm;p`p`ugw0MB>-6@h|UDD)|QoAvgPQJzMhyg|69Fuq#a*AP39r;@joUZ(>2> z5J~TA`;yRCQ>z470#t%CAhoh_v2rXIOmf5K@p|RcIFKt^xvcv=>OLGTy!NA2_<4` z!HF3U01{H^CH?eUN($@lQV!Tca&m2bdEd<@E#=~8jE1J#?mR$%p{t+}V}OdMK2!o$ zjI#z^m^&9IRCMNfZ8B7|wHsPg% zqw3kEgF{aAjOS6|S~%~RvND;Ilcd}danLm2|_*qz37Yy&P`XZ-N zkdEs@+|u$_oh8Lu@yN)C`$$ihl~g?$wBF4dnVC;Y>P#G)s5~k0yh7(nUf4Dc5`Xdp8(7R9%p2O@7b8F1=Q3jk7fxD5SMD{OUM-s_dhs1?}xMt(kd3 z`{dN$>uch;IBg<%bd{NaMqL#Q32J^lKDKHGxb4mUq{LW5`r@BlJ-q%;#t9_rKQERz5S8}latX^QbPU$Ck%pN8frdm%vJDn!EEjxAPr+ z@sNTDR5E7y%b}{d^Erp=s&59iVGs=)EfoCB3TF2_DOt`Y;IA{RH9@duL)c4Q*#%q2XnraXRw7Zz}_rSR(L zLQwb(-hIjy_ymNYzeQ*`zdT%1e@cRQdm$MZU;!V3_d`n7lJW5Yu3D<|+~>6lluGG(fCn@5o;5E)$AL;W0lqa5P6DPBrxT&hy>(jPH{G zacnTC{o(XVoCXg(>TfYqhBA1ZsFAvu(6KZf$lGyHUQEskyL7}t|`fEj9oA?wOmDbYx zdkr?W2}2#Ep`nC8Nli(qT|#UQI_|6ed^9SmaR-N62ZskmO|4XKcXw%%O~wx>*E=AU zn!A#LsIa=4%@>xj98XOrXBJ=JYOTw9Ci?osKi#Ub@hcVG++(1In=Qz>O3E6byO+O1 z40_;|@mv?(RmkdxgJoru{YJ@exBLk|W%S?QQ*6*+ANT^lf$7z0(`}?P2j+Ct2=GPC z>RtBLon>ZbDut`j5HJZO`P@E564AAKHn@t1z})yBuIc6US9H!e0d?mE?PZopLN zj?_;hNzW+fWhuRYkCKo-w&<@Ow2|S&psGL0DoDn)a%-Pf?P;Nh<9QrJ6oEo!TM(oA z#(9)p;t$qH_{+a@HpK|uKAV~uNGF!DwB2b*OvSa1s^Qd6sI<~Xpz{A5uJ>(bxRTm-%rHD(I zAO_C2FI9xpR9T_Wy6n=)$%?tTcVv-6Q-E8;e#@u|U#G1}3kxn|R|;~6qo@;Q<->5r z=xB*2|0o>Nb7ui8nWv(txM~NaUVp3@aLU+(-c__7E=WPQ?1`qozipZOUHln3GDx?% z>EMJ4eY<_2%bYu#KiSflm>x(i0gNZ!bKwqcJvb&Ni+}wZ#=!8U*;C_ikw;kkuen8L zW6<+Zqprea&OFjQ?XkLZqYI42jr@V5BPC^jTewhQe~yVI&Rc-cd5A?4Qni}LxVruj zRl@qKg*Uq*T_EhM<({Z6@hK3z01gK>NQ`EH6RO@se zg=YiUT@xy~<&k;Wq?X3Vw{p;tfsMboINSKioRc6potJHahSsciPY@9!zOJ51V&kQR z=2A zUGf0s@xAAzB!D5ewq($mQ;HXwn%-?}B>nm0nwUi8^uf%*LHo@cy_}Xt&4S#ng4_Tl zU0oW#U%Z&OzBT~s92f5g19LJRL$ji~S=W{{2+cAoC>W=sW5B|~ zIXmkiD{r~?F*QXwSicJ5$YN3Kow1fEHbxAFHFSDkwtPGb34z>5ytv{f32TiAIi?-?S8G5$E>@YP%Jz zZ{L(!aI~` z#BdO2x5;U$wKXXs!e4sdQC&S{c9zV>wKA6+OLl08<>abIMJ(7? zaxr&*MnHWKGFO z*VnH|)N?dBIE2Ltuz86<_8gxne)37NoZ>-%pjl^qgBOof_3rLpM2yJsr;V{&6&oWZ zSE=*1~oKlbDBow4!SrReQ6Q?7yUK>JhX$-TQLJiNfr z=vQvB4@DKNdne9Mhci^BTRWU!?9|njYk76Fv?DLzOndqlJp*D4LBfkTC|6TS_{OcU z)F;uDA9P*Vv?w1OY!Hf*4M(7@$V%`M3hi;L%orLH{5OMKoZA&VboguQ$A*1=M1(Ir z!^HP;S$d`mY1sp067dGR1dh5&JsGoea;Wzmo?_b5NeHm6Jqqr{dJjHs(k?x^#%dA+ zWp6HB^YGC;XCg#KdPt_zw7$8H2(l+t{V02Bj$l0$odK2B8%@U*!7c!tG0({P7=j#0 z40&5Cs80f+pefp+z4l_^dj&u{6{mUq-vMO{B71iJ6re5+d~_xqO)v3>Y^?W74bdfE zT&OWK1&@_z>nWe9NJ~FWPU036+~1f9-P|awZ`7ZiQM$8Xoq$p_3W*vWXzGtyEoq$P z=5fbFVPH@xF2C1R!putLVPcE3ccspfoS3G@R}}Ye;5ITOrDm2d{Mi{g9*nBy;ago5 zB$}&G9g|+!Ek;WwB)~=p?pK*d^IFP_Bix0UI6CU;O6vN}L-d5A)on&}%VYzUdIW%m zQ_QRSXCBD{E(BKPBYZo7%qWpX^Ev-@_7JPkh!(VAdVj2bQK|xIiz4vRY8tX$MR^1Qmtg-`^_%=kxn3MH?|OQy1S?y+3b( z95%eK5BsEEQ$%F&mpD4@^gwt^cvwUP>OhB%hW{c|CXb7k6A4+0Uh}G zkwxWlj-y89$9scTZG&X^?Z2hCxICv{D6#_rnyIKDw1v6CWi{;OEqtt8F80b;M#dsP zjBXs+Z@Ab%`U(pRWRCrj;tlZMN>0A#!FlfP$>pp4{0`^q1Fipz$DLdzGccKc*`HpU z^8EEhnNbd;h!rs}XY#0Ewc#NmVDWoOcQGg)n{>d0l0>>`1>RM%~_q$naMo3royOgM<@k%NG_hCOPu*pr9adOCt_` zQC2V6Lw9*%O3}!urZx~gTU?xkfq^&`f_{!BZG{4TIF4vf0a5cKZT9|Nb*TC&Om8D- z)ipFwv_DsUfj>M6R;CmR37XvUeI%n+NIsgW z+z-d*rK77!N)nA?rjM7EC;pb;#KwXKzYK03;YmrVZ{9dxU|ua>CU+V~Dpt z&os8OP{fpC`;@|S7<;mQCdWuFk23L8@> zT~OhCSHxycSUor%kBI0+^v7(3;l#>Nw!kl-l~%5?yG2|bFQ?O?903CYiKSyWB7 z$E+aX_AWO#5arUR#(tu{8ya*yyGTNSwmJm1d_O;0h;aQdVm1ly`IJHOL<%6)swyA9 zgM)+Hi+zdZQ)I{TX#j8d`Pp4>N(t-eXsfF`KHP>Muau#ZAK;fgU1j;Y^F;LiK|`g; z6rlPQNoF=eF5t6CL+|E}xj!8q9+AM2H8e1gnwom56Bs--PdSJaQFyR7pL7t0jy{Es zR`-0aODN_ln&Ol%G>-hP((~dovXzrf|L}EyvesCml9~il@27_V`1GBPr~v6kElV~1 z{5cu{2{DR52!mvQ`wG3?TjpRzA@bc&pB6qosmArEl$+!Bw@FEe;BE{x4sGTp_&JubyO^rsD=b|IjV_HF0zI)J!PMUCUgy_u;gQ})z* zZ(vQJ4Svk!-U4>Tl+(5(l!@8wjSUg2wDI)>H}Q%>^%SU~E|-SV()BUnWTEXx;BMF4 z%%@l$2)m&E)odpnI;>yX_uyxH*iTWU)aVIXR%OGCYW;!oxwN);a+ zZOUq|od0y`Ia+E545{Sgpn#XvHgDGUq&sv@n!of^wx8V@;Nsw%h}Hl_(|Eonuww&^ zr|zv=-zSL{Hz8#kFi=&({P%Yx_yIS6hS28o`J&#Zvic@WoV%-PR8)Ldu%8fLzU6GB zVSLd`_$E%pRW6G=)m2fjA9Ry3fi61(&HkT$LFv1vml~8_cM1Q#C-T009bBxXO5O2As_#X z-*O55Me@N~@?#yz+EAr!@;gtrnNGwQc+mF+Q`rDtJry-Iu`CNx7nk)NrLKuuGYTj? z@Ob8T4%?icC<+(wzNSNA(5UFivoH$J6oo<>9$Mw4wXv8ru9us!l53LtI!SP!OdY%myYqDgkY_j*=Y5^JsYu2KFwG!S!r23vhIOaL*@-peluE z8SG-9;W)E;g+4{cXwu?i%W31Lu{77-=m7`hW*voq=IQW2cNr3V_?1l=6LT|0pr$4x zFOLeuF4PMNIu9}rS3X~x^xJh0rGr72{VxYN#_Up#54PhwL2!a$*N)EHv2{f+~2@!uwaMqXj!kTKkUE+9bn6osA$8#HI8P4(5&tNrS_P5if!yD46Px)pwlc z?d!k9HA}y7%PLtekKP4LE|-*4{`N;&WiEg2H-e4 zy$c9r^0^U{m$9C0zB&qn@VGCg-;4kJ46XlicC=KaVnNGO&E@419hry#^}defOJDZh zvOrw0NNX0Da~`l7SPKPn@~vkb0nzh!)+DFw&;tIpJ`cAbH)Ktzu4+C}o1|C2nqBP; zZ&+w$&-Lm0^t4|NR&_OkkB?)PV8a(z^^>zdVRO zi6aqIC+7F)0M;Bp&Cu2+>RiX1GE`T)z-JORoW+p*tEa$Z3&%TVKYO-4Qh`b957~#W z>B^?-J)I>bK#ub(YSRR9MbLBxc-;AFY3{#kX&5@7A{GQk#`7aXIrWWpdir4$xLLk# z#~}E4v!a|+men=VuwVPB_Q>)5zUDGRkfyBMTPOw;!j~C!)$4Jj2m=Z zeWN$hv<597+UyKcFWyQHo3e&&nsmowO%EhYY;6_9yc5KroVO^Nk+0sMiGI%kTS`4$ zZfgf&=b;MDp9OP-H%K5RO7`Q4$G3o)?<|O?P)(3kJr>%hPcQn0^=-r`p=3o3i%eI!*@0;ZLk+2M3I0 zMcf|4nsnCI&-iXq3m>AvO4|IqV}c8(VB;NS!PfgOAOhutwtC!+Un475Ma)z_Q+{eP>?qc14ADPvHGm5CJYihs*^6*FS#r zI#=we{PyjTgdgn3upZIwfR{1Fw0fG4_f5@dY3hz=A|FsX=EA~6NCYu1&f6{U-erNR}~k8pHEFqZl*BqZf=TF6ZG`N z4%Dctzs12V(5TdVLqtrH6+fXkLF-!m7!QlsKe*;HReB1joSD4!_(WzG|7~;%8?K-K z+-?R!PqOMS&NxUl%%2Dr4}tRQ`I$27Ez(@2%sHFF|3WkRHS)S%fh62%8_CxfOBRM! zsadG034@Fb#m5Jbq&(d{$DF<(vL0f9;l}Q9k*;2(bGuwS` zClP<3pe0Jlafulz;@ZF)CB~4}+pun+C=xJRDHQ&fgSF`~l1rQ$wb+ z?Xf>;?-i6)<3X2lkcW;EKh)1^T%G=SB}kP-_CTW99tIt=0s+r$_RbmvpDyt{-Cl!` zF)}i&xVWBrYs$)3MC^;}QCTCQhT^Iy1T@J1tskx&z!D4)Za~GCKUo1cGRHU^2EOMD z07$a)k0v!6v3h#s$0Vf3Ca!pmBkJaHd3I%xn6^Lk3b3`-*EeHhT{1Jh0WXQW!Kk{r zh@QUfaS~%las810D-;>Y;+5Lg_CJY@+{ACUl%$3PxFKLu2-<#|?+O3&kdKtI(^_g@{> zl%r=(DJ$R#>m)@(FHo;YN3^?P09U{7LBWtWXd%(j7$Aw_0^=14cz;o8lsRKJ z9OM7LmDKZRV&X^bUFubn!q>DfljBO=bMTtq^_Uc@?Q!1_5Rm#Dj*Hw6zhRf+WR3>B z9XJKQT4ZF8s=*b5`6a!%nFa~Teg#ZSM|byo98F5Mw{J>b6EXhXqB`E?nOkUn#RzCW zFIrxr=Mfasvni3NZSC^VGukAChAMx0!IOZOsFI2>H)p0Oh@&jvXj0SCaz2^?SzZP_ zEK%T5ghA6`aU8VlZ6a^bh>4SQDd&3@k(g-nDlKqp>tm}g3klJ1R*ejZpE|_9k6e1WGEX>S5KEESeL2;}07VU{%hdjo< zOmuYe77+;*e&J|Q>@5CE<&hW0p@|I>Gmw;&vHTrNjf7E-pl^mB6v_t(B*DQCI5?EZ zMoLOh#V&&@v8}E2^Kn#J@V*AvT7*CCMhtyceQsQBd2KRWvwcU87sba^9iw*l5$j?#2_IN zqgElBu9>@KV{^pBJiNcZg-6`S$MG7mmy`a9^fn~KHHZ~Y21eg#ZsrSPBA_J?j{5W( z%A%rDWR(kJpzO()p{T0jyu^mkI48?OPz^t)sceJlUN2ZwtvWgBXH$8ArOG zaeWGg*Is*g=$-!4*Zi((kJXUxxBMwj{KDl+N(_`7?%kUk6+=S>U*E$W3kri3B{DK) z#jmm1qg(O(g-J<^<%|hC7U5M@(E5ld>l>&V({BCYVpg z8RFo;uB5d7_=wWh7TDeWv6I^7$7jpknQ`->K}}UPv|pO6j2#O>aKX8`m967SGOe$V6&_9vNK5-OWel|EADnihzgVzuHOJ_eq9+8fl4^jY zX-*?R7c;S|%giM9Mg0F7NM@z@5~{vmRj@V2%WGxx-WyGtkM1_@+fjj z=)C_9Z#I6&6%P#_prItfA`(VbRZoTwW>hz)XXMrXNYfV%SZgIEFKP^|Wn|M47tUso zX(={X%T252{f)@DF23xgvP%2)@9y5Jsu}wF&Z(9CiXkBL-p5O2Io@Xg*EJ!la@lrAq{=vnxbhCI?pV+eF z<4tDiKQs!?MD458^)vfw z%|j6wh8T5gPLfcKs~p=sulm(g3MKWL-%k%k*gH}5^ezCpd@tnmi{JlVYl)rf!Fol& z5~{dwiHG{>$6KFeP$ZB>=aX@wApR$phx@EX0gi5s&dONXluO~^hhK;FW&iSJdUh@( z;-m(=^pP+VgQwyCV&GUKYEy2a`1^NHkBE}ei$W9!hxIC^P-8!K^hVv#Nmbn0_k6k- zdoaUt@&b4``FPkA@J4Um@D>zAo;kkn>DDPNt*I#=9uDm&#Kh#s!uEyK;x_6wuS4*Q zQR>leroW#8NuXAP{Czj#nLRnhfXN&-&EE@+oj>2x;1WN%#}H>Mx2Ig5Q;w#SnP;eJ zXhxBL~4s5r+2)JrWaM>2&Hlk#5+-;&RrO!PgMWhS$H(@5A7oysH3_f@PlC= zeG5RJQ01qSC##IQUu<}slQJ>_!qaL-#yd7glbE}!dSw+baW^Tgn(MO|sF9?i!bnY} zr)8uzbM@%0BoV)q+34sF9i0ZWIxXl~6r^NSa=SXn z$ZFaj3QJ1pqA*70w5A872=UG@dY>LW*>h*xya(bS{Cqnblg}tDV3iBoyw{N_BZ*Lh zmwIddzn?fdnT(@LTv}TC$?@IC_>4rHUJnl}dHJ3?OLiIsd3gnzJ$oCQSJWyI-6j5v zLSkb0?ChW)f2JjE{6|aTpzB~@6p?bQft!p?X^8J0&jHk$zuQXze3`K|g^W1`M2u(U1hC%nhm<~V=`O|(aypv!Q*x>7@NP%jSwIKZrd*zae}nWy z;w$-h7NPCdXk$jLlr}NZ3xVAB^e_UZ&z1&#HWbBG$R8$%ib^Ut7(F6p1+KCRjf#gy z+tl!k&D;iHc9nKr@&>(Ed-LMZiP`*r(4yF;+^(*(_EA?@SSauG#CuWoqRyWX@pq zT9c$mDpo5i3b&WwnLoSYa{;d~)2Fb4BNtiYOcm|#stO85KX`>&r4%9r0v4$d+L-ET zE-$&aw^t7jU1(^`)Ew0B6BJ(IXATVsA05?a$ARFWYB|1EijeiqU4)h|y%mU!AP8fW z;C;%a;=QTj04w?9^T&SOY01-D@dMo~QS|g!r6LR0f6*%Aw@(rTJ8$loW}Hw(?ezp$ z4C3CvSmrC=tG^&3$8T`+0*vCyOG>tO%aY@zzP;u%U}v{A_r8Gn7a$P&wkc_FJW!92 zb9~Ru&1Ls%`V7&{tFKqlawsV|N=c!D!?(Sf)RIwCDTGQ&4;0G?VPdxm?(Ra6_^c{~ z`h6(P`Pj4vkLks5($CmcSnI!Mo$V&eFW4kRqO!mji;`U>FzJi4<$(EyOR>&Y^}K=4 zx=6F@D=^YqT@HxIk-CEl#iuEKTS-sPii`8^>s2295`eC1LViM{S(=;4{{z~M)p5&igB0R2+F-5GJP&&v9ae~>q9bEZDy|t{`p}}$>rtgDK9S%tehUG3I`a6nqgrM zH0@4%fCwS;XOQD#41PN|5EbL=+ws@)dUf@l{}g6vx%s>13$T1L7bV3DcD_GJy}icG z&HIFe=88&Be+SD`H*l~4rZNalMMeECGmKGXd&H0;M2`4A7fpaH4eEmK62{(b&O3;UDjbQA-l_uBS>VgE$xgfqkz-O&eJCqoqmx_tkvxGEMD7CJv|O z7D`Ixo1Len#lP9uzXp}g>}8geEPB26MxkIbGL?@Xi{u=F6<~K1!P~?xjQ__pw47YN zkG5?;ebVYuGiQl6)=;f7oSj`rzgfVCCOQ$S=)H#cHcLwl-dw$K{=<=BCM7kvzSzqA zo@Dp>Fi&6ozIxLO?v`rZyxO`BcVBI7sD(KlGV;L@vn-~urlt=I%T7{))^_XYun##E z|F#k}c&>3j2=N&7Q(0NR$YK~)DuPHAF9A58`x74ORK>g*BB~z)zZ1YT5a74WjD_Xr zcIw{O2PXCS6dg^hE0Oc!97D>z@W$Rs2S;_+228XB`Z7a=B|qSWptsgSt5eCeqWaNn z#lTV;du2=h0|O_Bso@J_>{^fW5^iX&t~RnQHIxi;e4Rr^vDb?8?3H|SQry>~Z1M6>x`pK{_Y!A1S;i?tmiU5s&};LTyb~4bRrazjI+iMq()2 zxk*S|=I7toyJzL*x(l!JtRK8D8d7w(DG?2^uyl`#qEAdNPEL~3*41t#*FFTHMZ_bD zia*uBG}Mu+tFjhWO2^&qSRGL4oOoHb!{r}|o>H~FV7!p`xPw)XzzX1`VVQ0J>EbCS zTORbz)&M|qY}eII?$`x`@7)0(K)lRHlQ7cWi9B94jz}5q)fPAUe=NRaq@}09)ior2 zC+VUkWN<|E8f$CWz_8I&_w~wjSQ~clic3+~+?8+VLe|ibD?9v+qLN>H{AGV1IrxwX z1bt)$#Hl(zM!LB%LpjOiuGm>wt!!)tt8o8~Yj^SFO#%`NEGUI5Vww#lWpT+cBBpGy ztsLO@!g};tTw%GL&F=>HFeQ*UP9Gu}NjO^FIkPN|kC+sd{=LChkf%1@)(7 zkh{CPhjE~xO$jjv6EiHopaRYrwSfoTfjU1Q-^m>rVW@5_SI(*Z+FZ*G6Eb)Ti%2(h zKQfmzNON*}RQw@G#0MV+BY(}z1m5vS9WG+r&2U#vNg~IG5tj>$NnKrkzj&ZqA?x(L zkv1hQ&0|ZPw40exYT@%>(ae^$=zzwbqbJ|XSL*Ej+oknrsx3#kU^YpaOK<@%WB;3; z1jzNbZ~kbsnS}*8B_+%4HD38(N%6D5>MP&D5bTEXaw%r!$22rTad8QRgn~!iT;RMd zU+389)81!Lv0qYVgWccQFbDTmyk@#eia;z>Tve4UM*iPDogxm3d4Ll-76fwL16ubM zrxoH3Ca+;l~2y*%dC&yMBQAa=(eSPsl~w|UtgDY*lW!%)p7R-6Ml11fvMdjrT5fQ-x>6Iqk+)9c|pm&*{e~(p_91D;9@{A%j zmPxi}iJlJM!NFxf)}oEL*x0UP+W!vT>P}7ydCZb4h^TsrNv03WI=gL2f+(60$Wcqplv*S*1Vxzw zGe}!p2uHyc5_!2(=_nXY)G?mv2ZI2Fp|M{nAD?lF-9DaE($jO*pF@I3g|8YlNW$i! zp-U9XCMCrVL;>mbZj3R@Ml;E&i0d`~c+-!sr^mgC0am3BmwSA7Gv94%30}>+x!Fkk z$H@{BgsP*VQ!Ut=j_}0bV5#MHzx%wlcJV#^AkJWi>|r>)Q18W`eICD-xjeZwI6Q*Z zNSh@wbLlCwg|X#E^v|C;x64b{{f*Ake!#8myG@=~U-}av6y%?HB0p6|eyZU-YLRt= zMCr}eQV%4fxKhHtji^se(TCDTq2=doBf`C;h<7ncSk*#g(B>pe9Jpxw)2?R(#PS33 z%70_zygy_HaENzb^&I(fWkuSV`2S7Kj|li|a#3tYw>+)wVbyVcy4ikK6+rKQdmVkY zd^hbxJ*DksZ0DwQ@Y&=Qw z-7Po8zoo7)0e}TXnUfsW+GmdFXsNCe-K3 zF?Hb2I+p47GD9{n(Lw+knFC`0M~wZlsZeA`Zo8N}P-f$?3YWH)t;cJMmdyD*sOleA zx3|*M_hI{~|6~8ldBM}RgNVtZ3_7c|L(NdhmVO&lx#0sY-<4 z<+4&s8Nc4qkx`8iz~J`OFdAEyaWx7%;b1dIe`M$;&nM0pLi|mW)BaY$5MYz$f1vFJ|Q1ann z4{xYL^@rM#W+6Y6`#v;_ofB{|5di>6ks;TmFWGo2!cDTmVEcq#bU7UCh$8p;6N-{B zv?$Yi=g<7x%`LBkw$*~951~!|$7!!3H963;Xqm&mYy4mLXX`$FaYn^?7E}|d=9YWJ1JiSv4Wv91({XSJ44MefNTkwyv;oIX2G2AoXBebTdDBsaZKwl zN1=0HQ99CAL$2r|bI+NV0lRWy4$3j5ato{`+fg*G9mqhi2uQB zx3B-5(hR^>wIgMb=yeAjqUtQF182X4j;s+KSBt@#}?+D#J zr#n)tR7)GA%wzG0%~j0P`!N-~+&#M_qkG0`Lh~Q_!*2=z_O>V| zBI11S?)d33N^x{#Bwf&rkSY!b2*lN5g9vBlr0K^#N~28u9;_*peL8+a0?N*-z&N(` z3ByX3d`F`i-LPq&rxqsf@B^WetuMh=o)*um+G+TFhoDXko3E$I;!4kn0>A8@@=JMpw?VV4cyJQ#!_=~+dWtP0sw%CEkX?8a1Ul9laI?-S#rnP}9 z6WH3>KDc@8f17*_4N{i1PKDn~?rb2=9-TP6>-;iXm*c%;5dxuDU<-DS8m6J*{_Wjh z$Ylj;p1!SO@F#&H2zFHNgc9-zGkK%-O=tX<~S4E-IaK;Wy`>5!|?>u5+ zR1vxqr5XCh(4HQw4K{FTLTc=&z0GMCy{#5C1V|-wZkl)azzjA$Uj-~yURl*cpS(1q z#otI?1JBQq4-XSupBLKfIXM9wY0uh`sQ83-Ukw7IP9NJmzFQ!(pr^hjU)mJUY@C|I z_kr*aWL*GIEz)cl-CaDtNE0crW8D2Hiz-L0Xx{H7ZJTu0G#w^jpDk6)iyF2lntUBm z#0Mw8e|-FILmZskpZrOiDxFE5q{?aODH3=JPpS!`fj?IM2a$N7LpD~4MO3tHLwi2XfS`7I*s#C!gH=xZp@IiUqU=MVBQaxRRJl)-K%a zBpWo9l+0XQM(FSXAX}R|<;0s8fg&eZTPWYDw=I#B=rtpi**-cKu17VC0DIK*rWN+? z?%vK5sUSH9+`Y9xTzsy@D==yF=-gapyYQ8@)E()WUGp1i!NS>l z$;0HT4p3+`4ghF#CAk@$oeLwsQbr0i8Vi7yvCA}R-j9tsz0V%MvqGxhATlkT&OpDG zMJvti;v{F<*nk_{tiV6*%%^xcH80w>^-Xg-FH{G=3%L$DtOSMal{6!bl9zKQ< zC?X|iy6bau{^IH9>d}Tb+YL6ZS}*R#Ow?vaxf-2$^U7=^r3DE?Q#8alm9cYX6)wxrMv02P#X^7n&oaeNg z?F}nT-MY$qtbK51Ok9;4alnW4%YGgXRaJq6)A=}nwZh4q%4@AeGL2^ip8E8)Q%7 zHiEG5tAMEYq!WBD8_GYFOa!eJiurc;o6u5ZF#K8o7>(>H%XPI&g){K0jFgg=qu7&1 zf3pv(bOaC+kpes{f`;?>e((MFYQoxYPK7wYbv+)y1b7&gJQw%UISCtDxUT$@I6NMG z#^ezdbety&;sC_c2F$tLyX{1uZZ$E))Xa%LdzqnFFwO^zL$&}%p_AE*m9VLG3y}5n zAm%X-54r}8L8TjxY0aJTlcMpnu~+2p)KR3q|@wn>vcdPgbUGB^X8hd3|e#zM^kIwitaM zy~8IX@#p8DPsb5TtJup2i=~AEt?6 z&d6XS_~5d|-EE)Z;|9Sx7nEWjVO3eAxtqpFLA6rsotn_cq~F>9WoObV%>Bfq)$&y_ zA3XM+$Fkov3ck!8h6PNT7>m8eo?@R$p@cylRYbF5`qvm@z|HwZGvky|?mCz5Zq)X% zE2MHa*&47$xQ+xnGwk}E`8lyV)M{#i50g|^;Os!7XlJFs;f2XxF8La@hi%1$8YODh zD(Wo=1Yualto2@z0Q#{=&0+q)*3(pK1?aTEkED z0shYywkMfBzdn0UfeJ%gkW(cyft9uYHx9J^`HLRy)g6|PW;wY0#J`_lF~rbC(!gIM z`nA~=D+lxOLj@72?lP}TsPS8jIcOV~IEgoN+u2e~y3q7%h2lSUHVP-F3Xt&Ua9}@t z(x#2LRRPIM;S|dI)1|0;r(()u@y7&*2#NeKNr@WUR?FC?jdPDUyM^I(gJAQKfR4YERwaATepyLn>}2nQ6I{S-u4j$+eWtm22hyq+ZgiFwb)f54c8<;0IKkM- zl{?Lk%=xFY*K)AI5SsEKTy_*um7f<5+X@ z9_Jd=B$;t)mdV$E852kQ%$|1yC?}HHrour{W3h{~6MfrAIQ|ya?A@l%LyIoe1*+f4 z*YJnc?fuC9{K@)N@t?@ry@7BLBAUJ1BEThH_Ds|K`m?9frrEBTu)RTvRxYukLc$SS z6_PUIr3P#*fg`$NilVZ1PixB9k+PFt9jI>oXx5ac#x^pha(3z_^Q14dmE-Z0CFj$~ zl9EbBx%}ZIlRlY_Y&WM5<;z-X8D{($UA%Z@9}r^b@6kl9Oj%zvi3^@7#wG;8(3*rL z5Cpu;Y~7`A{nNDSr&Tlw;7Ff8v!BNyBqlb!{8Uxd!_kL6*i|1pm|jFA%$iMEOWaO( zxMsKZr){TUYXzUfk!k~mn?ri(ynX)6kXi$o;{wv!&ZOCJ%$z$x+D|lwT-M#ChLi?rzPp27^oDw<428LGT2hTHLcO@t7_KHAFI zaA%?G#7pe0o2?_f!0RALtDQ#4H^vxGT)YAzst?nCN-7O{pi8#BJ(ig{#+sEb&l0~e z4!pAQOD>O&{SL9yP4hFV<8q%3oSi;>g3tAJH^&`6o(lRGGG}sqqu@Hvpco7d-Uvnlq{?KSiu!QigwGMx%=qYEZiyK(X+vpYH-I70zPZN9XI-tVT>{~EsB>41y)C-!b{;b`rV zMojTKab#Nq61}=U{FIF3RD--gxFtSv_Q@EgxDiCWEDc+jp_$yks}x1msgY1Q1;vc| z6|tlZSZm1F_=LEy7N`zoCrC5K?(>gnukOV%e%;%1Wk+=<5QxvSLkJ<_c@x%;p5@qJ zm33)tuwW3Dp9o5&@ZS5#Gm1#DUB{{Z*J}za4285#vyF{?`J#?XPZR4wZe`PhmU%Av z%SDhrMtD_$iQLlw)7qgxBZAvbn1L*G<1Z2m`BkO{mCFup@&X&OdSR-RZBaBUjN6Vo zrMHP67?1mCc1F_nz&TySeS}x+K-ai&L+kRi??K-XF6ewqNwtCgdv8)OQ1MTzK4WZT zg5IK|LShu|cc&SJ6jVGsD`MTw$AOA+B=#B5f%Ln$X6!j4y__*|`EboRT zgc9%#1Cj9!OmX_)L(J8O$uZ+VF=rH~e(>n`)0quku zQ-OWU9PW?oky19vNm8dbfNJfLfbO7qTqAcA9uVjTc54KxApW}Z^X8l!V@Cm9!-X59 zQM&b)^ye+4Y!e!ag|Ti%{d=UHjyZV|ta|5k98L4qfEr?`ylI&GI@F)L&}dur)q`xI zagpW}%DYI39|zW$;xya^@=ibiKl9w7^Ym<;>}DWy>0H&i#r+6;#lGO+KDTbqRK5(A zwM9rL=`X_Y{x#PhY7Fa^-=m}Fw^e2CJ2qwiR6GYw2#1mfei+qOW<7x@KPIq8r(s{0 z+w?_?-EI3TdP03|elYgF0JSRz=f3qeS7xDzmquZ@Awk1QbY!F|<~>1Z+#nM@#Q&CB zMnmuyUq0L7$-Jpk>MsR6n1h8Q81uFg!Ww19g)BIrpwFInqCk@X#_j5g1wv#E2{Fur zv&+k)If+Z?nqL_8eC-K=mAmyln$!jI?8A7Y;rgLPI?Z9IU&?8wqn1EmTL@%62!!+q zW)ym84`tBV!Xh*njP&Own4JW^UHHZo(rms0!A)w`8?!9s{=jJXC5ERr%14*7AdSM7 z*Z4``Bs+g~?n5w^x&H{=DC%EU$ZtxRaeck0QWPw?Kl0%i)B#2A^LCS5Pao7IyX^n{ zv^(>B?IJP3&Z|9fv!EImlLx>3C*{-ooi?Zkx}1W7bSLnR<-hiz?X{us6~+Rr&E;zx z!n&E;L?+Wt&X0-m@@PZn+S|D@%l+0Vo!61P6?0FA8iY-RcrA$K8I`_Dc!$sGeI%NA`_NT(-56OpN?iPQ;j0_t9}iD=e`HHP=b?6Ws$U!|=X6k!SyP)x zPIMI#duy17A8+nZX2{iX`rV-Z61+fKIoX~h6T1p5Z8>Oto1M2tx}+M;;c=K?%j6RK z2kL0nwS)~{aaaKZaC-&t`6c$CDn~KJN z81F$~a;?nrnu!WnlP}~dwjXC42p^BUP!&1-1_JG(8TNM%4z4=!3{^HAt~$~dockRd zo4!p?pB~1Lef8TK`~29im%INi4tx(G64LNnB9<8$>gCLml0`cZ&^eWG)J*vsHM=nW z&~OgG1hZy!AAj=orYU1GO3$mq`zuAd79;p`kd^iC?XaBa*Ph!nM}x=`(tZano#_k@ zhSiUX#{TE)p29c#Zv*D(?t_s9Xl0$0etYqS%#*(a`wUvyz-Eum|E!NW)kuYzw|f8Y z3AfVMb!G^4sJ%anR(d@3{sHDVi2A^(B8YoaKs>nMeBz8wqJ({mrH8!tQ z4bWc*xQ)_)96t>6-I6-V>$!T(h%y~Q&=0{mX{=@Lj_X1oM5CN(qb^^~BBZ-NnA)+h z_LpkXq9$!#xg`c#mniCfE@<#)@$AtT6H(@P(Th4bq^bI&_76@GD3rX9(3s`P=Z+MX q)SuDcJ=PuZtx7>#~nySrO)C{VmO!KJvn7I$|I!JQU&cXtmCH@x4y_eWON zla)+n=A1dQ_nuHC1xXYne57~p-l0fKiK)DM2eS@+5hK7uKk4OIZiBwPcT|xSc~?0~ zZ~%RPH4~N>e)p~>8u`f(4*HB}C#B{1?j36P+v`0xwao8#?_LX}#e~&d^^Y??{z#m; z@6T$fbwNNhJmVKv>Z|~1G@SBSmNix`&T2P&Un;$^E&FcO(9@=YZDzj?3x|y@3|WnV z9aK1#dO5qwJPZ1a{^dP}s}JX1=1t~RFwIUN zBY#;0?+&!ROpmWNtrrqb2a|nt?4Np=BltgJu0#KkEz{@4E!}0+t+=vs)>B0S)t$hT zauF3TP)P-xaK1GVEM-CywyV(hgqA6B17^2OON;mSczJP22hM7xa{f0E+}l8Gyic0V z4~J#;1B5Q-0^CLKo}*vC@SORO9v&GLhX?c(DjbE3odpZxVJK$?HDi7q&=`BhzKPYY zXn8zsvG2pyFkfVbjs}61`wa-1IM#LBNd!SB&6Y7|1{;+1=#l@kNi-jpku%yiPsLJ5A`^U`g;h@OszcI9V-!{ekd!`pet1UJT3snHGXS7{d3>X&W zZp-izAU2(Zvo#f5DfzeCLP}0f4c&WEn#v6ax}8B2?kw+Z@FePLe*VR{KA8H*&dxqa zeeA1@yXKo;-dG$ScDI_Oh@Ta5{sV?oeJ90k=}$2YLstxm=s9G`Hcvi{BQy5Rj`a#p z`oHjkYI=0-y5MNrnT@SN!iWIru0Fe)Yy1F_7Wl`Rv zZ;>0P?qu3_3lR_qG}4H&6aPYrU4Y-6Xi^;BSD!gOBR*krEiE;2RD5q$*(_n)1GSBL z#edEju0+nHSuLbdmCk9KsR5=b-$LLzaGVZAprkw)gd~+n*4Gl$ELyHckjktSsbWe{ zD3W~b;4cus5tmWmbt1g_Fmh!o_uqIUZ{y|p+HpmMVp46EmQ{+}p00>vK7K}k9nX_Q z)1z(IsM6Q&w_Er9xVf8V+n>sA#cbFOTdvcjup$m7@&p5(D>2`c4wp|x;YO0)iY5C2>|vDc}z@*^eYHM z+)<#1Wq=?OdVu95cWItfRa9b9Q^O)6K4nl)P*F)Py`5Da6>%FqE6YWJvr$W@iebwG_%;V3!XMA(h8ZD&+ zbR946D6ZOtyw{$`8`oZ>q=u&5AAV0^2l^56)MR_Fzx!oC1(TMyo!i*31pof@K2kR6 z;D<MFK zYIip`Ny{jBT=PBsa{6jdk1)Y$z!XqHH)1Ii(4)iVlt2!dL48 zw5VTm(#HZ0tpZw%U4LzCbuJ}^PycOey*LSy!*U@RXh)z7?UAxK@qa^ZA+0keA~a+& zXnr?CI-cyq^HsK}onioNzcVt#)Ird+;+z(h@D?`uPv62uy^8DAma-&a0rK=6j7{b7 zs-*rqAL8P?DFR>0a%2ihehXE9!97 zvd0=xKvgIm|C*Z&3LOx*$|wAV8DN6R-VDGHRMioV|>lMYcy@o5qD;On-Q`f z`CY>;SI_LGP~dx4c_k$b95_iTDR1#~tG`b{_voBM7Jt)KN274evJBp{FeEuVVtN@B zVc#jZvX#Z2M8ClX8>jV^9;fxTKIsa6gmcyP12hL!?f&NnEp3&1&ckOV(Jn6ZCvnbDa6n$_|WyPA$uSd7mv28hZ+zCH#g z1KFiV^V-SF3$IBdMIMUEU@J*CgSXhlP!f zWGCR?e)pz`9v=}=hFJ{TEs0IfbGZ2Se6#8rPmqLgBW5CULVD$gnz04WkROWT_Vz4{ zt>+?oJZt}L6Z?PLbaCeMs^Jp@89!tAhDAF`8HQYxbZf&G|N zQ3Z11HPfzL_s%U~*G!Jo?>bb)7F(A#SbE}ZVYa(%JV4)tlv(G9g1Kr0D+b&7+cVVq zkt1FV(XpqB?cdP?4+yUha~*8fZ-Ki7!%>(eLJvWsq!sEctOji2<;?%qFSx&AR%M;hOC12{7OnL?Bh*By{-yI&Wo#q71gN`E9^ zice1(itis?m95iv8JTgkCnO{+Qg3bB)!JSJ&+h;Z`8@i=euB_^l@PQDA9;wJH0s37 z2eA1CpU2oWpGU+PbebIsGJW2X?YufP*+yi1Dnj0tiH{b10qyr!c(mv_jUoS#t)T~}S>_?o4)XZDxc_TDvV(m~oYf{2YwC@iKW;OPfmC2=V zKZluDB!h(62KpMFF5-STa#Tj>6nf=-E4}AIpCEWoMUM+GJGxB0{MV*J_{Db0IAoPz zQR$BV&QEwcDQUgOgK>hp?<3mRa#e2px6oB7(*C%)W(O@LsdjdDT%oyIO-hm!odKDg zk}OY;le}P$l%|XULzPv0UZTePKu&L`rcqZ!D|AuC+`xIk zItPv1b}OHY(Pwg@8ob^rFx)>JRk7Hu3;kEe^^Z!lU$xq@^)RPK+P2@rYv{XCP|Brb z-}hbw7h3R74BG`ol86TV=nKP6J!5{N zzUFx%$lnDzeNzc+LKvj%)o{p1*Kp8%x}ZyWJ&o5+j*az&8b)7oGMe|4E5GR|=-Jzy z7h|dxDE7#k;|fI5@E0JTB~|>?VmaI5Kq)aGpgAdA< zSNp})rf=lV_>g5s)31B42;`)pqnnDg1=n+NQ8Ii}gFW1RutX4`ilB+13H#DAVM66j zQ`x8VU@!8=I%UtC6^`df?@#!aMJL1Pmhqo_?uQXRxSCO=+{Q}544D|W8pAe5!n1{b z|4|ABkB7`UdI^uk3*F{cNY#zL78{ZevF}&5HJ`5>m>^xBJr=4SBDvnunX-#9pO^TL zrvDj&@XZi%!>R1ZkH>YbdQ_W1M z?GGeB>yIj*`{B6u&ZB14LfU?EOa&vWXehqgM5)LEQcGQvtV4c8wuDZH5*{@S&x8pT z5CZEkkHLx;9C6N9PF6C3bQ+5KTlP3O1;I`*H&&bb-PfXHyPg^!pW=AObmeh4x3=Zi2=Dco867v#vj1A&cW-g~ z%Q^zPZ3;aDgE%pZxNXev5xXvK1^P^}AuIkluYa+wHD*PLh>A99Q05J9e#1%e5-GIR z5ThLuXCBIvUJ4?1=2>L$u_2m|GfLJ9)f-(H2j%oOgwGv_8ntbxOxY`s)|+8Qs~5Md zdk*VmXD0-Qj}>e!kcuJE*T^syPc&GX&&^K$F= z4EutqAETQc_l*93dzBFiZLiGXPg~9e-eP|0S9b_-@PK2U!89*7q1O5FgQV*e5|80} zNyn_oy0p9&B5iomUtX^B6OPM#otc9VUu2_tdQx$|5GwxjCr#q=Jux~F`m{-^vvk#^ zDbiXY+oG9JlOQ!-pM2|wxmlm*3JCyd>|JIuz%}-d&W4_XG+kgaYU(zq!H$xM$+kiV zVQ$5mZJLlJ$B~79pTjRH6*$j$R)ROZAOG`x*0<)CcQAoQ)$XKW&JsKoVyw({{zI&c z4j=ZXV*uEW;nMw+=$bLp#7WF0yKJYpqgbqsrJ^ss#sW|v!QQcZL)B0eM z=M#U=zkpdw&rWn_!iI`r^4ubt298;-KCg~+H^xP z0yr*3BRe7)wQ;RWH77?STgyADrSE7Cp_ZBCk)4Ubk~> zOoc|IhyPWNW=7EJ(fJ)?L{Hi+m)DP5e+5x$8gWTW^}ie*#dCq~LFo{yPh1BMPK#$; z=&`w^B?5q@zwu$R*iCV}<{&dnPFr)znyGz-eBMV8b5cE9ShBQHyn7_gFa-`aJ-WZ_ zz!i%3I&DIM0vyK>9}6K=C`BK#_SpI%!0%W-zjnAGp0SCs`i$qN z^FG;^A2)|HArg82!vrz{J%cX+Q_K)XfyZN3dR@?G*(Ca|T=8(VLFfH(;SYP~U)juK z%$iM5`LC5)Z&y7AkEcJ9F}0%j{_w*L;zegn*+L5tbCggEDUJCBTj%>jDWD)kb^#ZA zYr2%wNN+OKOix9BQh|*(cBtQ8`9!Q5v)FP>OHM7nj+H8gvvJ3~q0Vt9^3l#2YpZ_3 z0e+<<(v8J=Clz9JT9K^5=4_!+MRQB#MPa&|Ykh{kiXEiUM$sGbTBpuRxfxFNQvB+( z8u2GR{rJm&&GHqrZ=0uEAKaB?Y76LiKCz{(ZVXb$;5o2N($KYs^CLA+`)0o>M!@Y% zUs_tmvc65{R4^oEjh&cdR^xGg?{)s@Pnsfbry3GA9`)!Qo<7rxW96kAqKe$|N1U84 zcwHhz3k{X|aa$US5Cp?ZrX78rvVhA_+WnWnqv1kUvobFs*}b!I39weHmv!^}>%JG3 z3$SN-jCI&NPMIrDHv5Ndw-jo@O})>F6ysRkKxFN!1j9j}6&`)orhAqCHwc;NtxN77 z?bcO_;KxC#W@^8Kp~`e6h1QJ0S+7rfnRgJ9gmmBfr_nbcYWY+&X33cP+v4psHYMg{ zZ3BN%{^LxQcc2n=zW3_ZK(r*+F~bxi-}ChpZ9Dg#OOaRf49y9(0}Z*0#`)uu4ZHjT z+Sj5mJ-2Gc)4GaE%3NJQZ&L!d@bNF|pMMIg)o;=MIrr0FJyA#OJFco z+=K2`@pxM#YLdTSFkMKrfX14xi|jFp?D{8)!SAF+xxJfwbTISD+J3OSflhjXp0DSC zL1qa3_X_PmfNd)}8q|||Uo2v3?W& zj`&cu;elNF!-FVia?`+sBvGW#(-sl<=l%cfdh(uQdYF&X0iP>rugaZSJdqzg&p);n z98-*OvIo-Pu3GRtRMh=(MMF|-Q1?ili~fM!IvhS|@>+i-0iw~Q8B~{>YR}1_3lF!2 zcUv?c_y!SwwXSfyhc~c+HB{(of`G>?Y(|znKNt$iw$(Bf=_mDppRyYGec0; zE7kVRqQ>6yD#M^oiuXoqiV{1m-*=6s{PP*hl4MOiIW|*$SURun8QlQZv4D`-{z_s6 zu9g>S@YX%(cT^4G6-KzqEXcmCP^)l9UrTgxp>L_0QGeGciT&S|)aFiVQnB)}#O;w1 z^ZL8|!9eV2pjD2bS6`}l%H6FjyDc<~{lCRg+kg)!pEl5Z&K;CCR;-TQ4!>d$S*t7G z@{dbutAV1ZkBV!hrVFxK{j_Waph+Zhv6uVwbyYaO(4p*Mg=TORUi7agXSh_7U>4xM zka%Xow!KH(iMNZPMx*e`Qug>tBKBU^_rau2mRsX+v&((-am0yFv1Y|wOjoD6O5$c2 zee}IT?C4eQDY=RSksbCc##LTXjslE$u=Z zi(mO#Wqq%C^-+}Cpba5@_~U;I5>G(`)ktf| z{Yj5M5vxq~)JVW3Gn|HH9LsD(3NntxclvVmfxzzGYw&Q{ph@`BJ$ih?sLjoe_4zm~ zn^PN}ym;5iFR^sGIa5meGS#$#uVmF!Csnnrlq(w9fF_&>xv%0Hmk2u^=R6^+?bcfWyu++kk2Zn2N-FoKU#yX2LU5)DrN~t z?CG05*Rce-g?GXETv9om!nt&K&-QlSGC~mT@@7s*SsPkW&`UiTPwE3?GykDPh*;j7&vxlRzavO|PyV-l-m2hLp+zML%7nHquwL~KocEq&G^N@ zV4#!7qR7o=U}mnbd$lxsdBYl+51!FZj7vv>SSXq7zxleo&6l0ve%Et3e@t0Wcu$#% z1i$k896Hr{s$j3!lk#zi)K7O-juu*_fJ2#NQqm)?2l@9$_f7+KNb>axrPLu>{YfM(zGSeTUof~;#>iW=Cb-``mvon;Hzpmq*e#?QI;fL z^pk)_%mvFbNM*W3gYw3RvwoXdSvOyI?0LwNhHZ-u=CrQN4T2R#f&2Wz1LsMTX~e@adEY`t5?+=NcPoUnvNd&Ktb79g4`ei|febA>p>`}P z=qHDumP*1vDk3&jos#YSCdZrc@}Kj8b&QhoTGw6<3#O)EuGHmUX{&j>j#(Pm_^(b6@6HH}oT`)Js%_bAz{ zf$IM~r*BbJn*y2(b1N;Sd7}8>S5TjFR(~Ey7>aA0unT9>;Ia4A!vX~_q?0T(`lXJF z8T$0$YUcFQ%rlLq3$*fJ5(_To%goH^?WL2HrFeNqRE5gmjKfT%%b-s$xvSs zq^{O7VRQ4oh|n0xwxWnSSyS?#9zRoK%Iu8b*3g+_N8`6nBB2?udaX1VT^QE}%5GKt z59#4W#$1;u^Dk3&01G2E{&3)VAoQp~k_D41d7sFmVb@^g$zkq_E35Kd18s90IeT7{Y&{Ywu-GFfCD@0aDg`wgw?EU2p4l>!E)P=NID&%07h`NrjW zowE)|4vV#`kq#~2s-noY=vA}qkgoAWE_ucqm+schUG5J9Yok&1rwN_sbGY`i{m-Fb zs$0QZsXx*Bwt<9mdM<>8idmHh8)j?7q;dfo^rV|(k+rAt!U@GuNOYwMG@)A-CAZuf zk?`mhHGC5*{-SGGU<~SXi!*RO8_+1Z2FUrE4 z;9McLZsu=H_LTcY(Mw&=9Vf3W?}0vFUSx%Mv|QZOtFr6a-ZoDcE+aK+PUbven~`;f ze7!SvFs)b=e;tgm<9T0Wv*PY~w-L;BJuYewr8-D4?DMw%o4@YhZKWq2z671&Mt9); zYFkSo@0kybJE3<}SasX2$*`6Z2D*$i=EOgXN6qe73+XVa9jT_PN1PfOU!xS5KYmLL zVLc8SYcaUKazv+i;Ld1+7Mi~y8B$GWRABbguD4zGyJ?JhT|AsGN_Eo} zt($W9ffJ-t8&hxnwsp0S-Im)1GJ~PesZ~d$-Okhx6W?5dQQHD~)BGO7KW6kFSQaRYzp9Xd;LgvIJ{e`9 zfRQ92JjeVcx}p%1S#?$>qzntDwU}8F$0|*`t;5OhSro2b7aK1rE+SgIw|+~z{SH*Q zdaI$oq&+s%x?6-jRi#wZtq4!}-dB;WRc885p;4MP3PUO1e2YC`1B&lScj8X*s*)Ug z6yy?&f3c-AVc)UECTP9LmhQIur?_;pKIv_jYqs9J1cj;XTBRq!KSP2bc>CD7I2=^6 z2U!)$z!$AAl;|bhse$cRQ7DiHu&W#lhX7R=(WrX)V~62S$3lNu=N0HL&R7^^@-LO3 zfs(%?o00QU6x3fG>zR}H&LrJnjX=ATWh*lKWe&!1pafQ!ZPd7jqu)^CM^bk6!6P2L z8dG<|bBzy>12oFq+l{@Pt3hKop*tvc8@^=IB0u%tB=ZJu3q6nUBd8pqrFb6RxH{_95kkDPI6T5yEm1e3Fl%QJNo8=xGW#P-XnG z9{(~gu}5b1x?EVl;XG~9FWa&eo9Q))c2#SQJv@OB$9gq>(@AuAQKo4tv7g$V##{7y z%UJ&O;H8(ncha=hPZCV9sf8!us1&_eY8gP*5HjfTHxV`_BmRDc>?d%CS|8W9RqTd8 zb(Ru0R6o%Wui^vXJ*PHYmd^|KTS+PJ0;Qj3VliFfnuO$ag6-ttj2hVE%tAG~s8E5j z$70-prJ94ujb%xWgKUyR{7XUZ{c1;8e}B>4*a+C&U-ec>9E%?ANDu93O{t9>(&p}5 z)T@P72O*#|36?vOEm?}bC-vHYoyA9>M=op;j7^4X+(fQfwsAB47X z=y1(@q0$VJo=X#{YJ+G;qU0@vL<|U&lnm}es|P|)VpJ%I5b-rVJXX*RgEa}qL&82+ z^L}LSZe}A8^1 zY}gT=;H&J_N1#Wn^$qtfmBXh_C?;}kG|rrg;sY~D0lqHKy1P93a%b8}}RB0${z@*NH5x#XyfF z)fNwILAT|$_f$z7H9}9m%w{wF0#_R*kD@Y_{VyXCvm1kT1eGnPgmSuP%wbMSR9B1@ zG}5AMZKF6uG4foPCa0UAn$1h1pn><`G4!epBblEUTTNh$jr0&LVRPFBmUlsQ)?X*( z|3m0b%Fuy~_ReM5KDa+jBVT14z^FgKEWg$6QWTwzF( zz+rEHs3lcC01^&OPqKpaQ&H-2tab{v2NPC%hsHe522c#ph+t(msGu$FR_B+~^&jhn zCd>^Q?!bNEU3AQpaf-97;PpsGiz!NNq>>Ef<>N`w9+@|bIUa9f{(I26A6d=AOVN2? z>#P-yeCLoYD1>8v@w6xSI>A*YO4N3sU<;$B4EhMKSPf1?%D9_G zx0onYso=o+tME>Cecz6pUWBFaB>(#_Vxv}=hJtG%6N6Lh(TiW$Lu@fk0+ItX%s}C< zHmbiU=z_2Y>SIIvG;e$8j0gkyShd^jv%W0*121wxTzfWkOpudByN3=X6{JaIo@Tzj zN{uSAyGx(ZBW^6hplI=6ul~~WQ|I*(sqI`|hYR8NYj&&7M(eM?mt@Ay!hY*A$5eH^ zXdCy;yWLGRN_zY>64;gaeF(g&A;_3$AnqxHN-fx-Sc&;XuWkGA{y65#52@=I1RkUw z970eu0lzg?Yc0d6U|)$rZ%r#Z`$@CoISC>^TAZ~|L;WT_^-py+q=v*JC5Q~%!FmLvC!6KJ?9>~}0V;sN2Xa6479gDV-ZB2p zPMF`o--!pidmeJLouikMG?W$V?Oam!DzaLh8)0pIs{E!CKOqqeqgecmThF>Z8!Gry z4I_6{C`oXQM=770Ut@SIckM-O%hsN;?4hn7t!)a`$(U7Ptuu8zeY?E60_t1j?bQ8R z_!g<^u=F?ib6^R=eA0C`Xj;gSaB7|k7s)r^Cpmc$2?+%XNvLQj4MITN1{wuuEBmuq zS`Y+ddm}2=pcbQEj?5Nz0r6J@RL?P-9=TZ8k6mh4UO_9a{#QmVsa!~2i=}k7BI$`X zfQ~ano)FM%O53W(1SY(%+?#91spDHMqSPDanK^OzBv)K)Q+>nufxN<5?%xYYOATZT z1Ydg)e->lYr8^*p;tIs1oB+hozvffMc$Xg|aALnY*|0mHcPYQzaWC#fYs$g7ida%c zBe9x|PR}ztQ|^>;WMkb^CmihtM2KwX;91Qs`6&g}P*rOnozIkM97W(??T%c@IDdiw zp;XbPKbpX~41}KJ*L-$(j2&g1-bhiFcd5OIOrfJ7I(p;5FX9&NkeGyw$@SYu6TvB< zAZ8rvXE~`!bdNA8A7Ww>Y8YJ+W^`}#KRG`ceH3gJ!c?lz2)8l1s7lqJEB+MNCGvSy zX-RUTg#E0@uWH;@PZ?^rOUPi(g*A=WB#)2+!dVW@N$ZC3ptlml&fPbw3)ck-C|g>_ zwd5e;a3YQBKFmZcq1pHsxPPF$&B=V0Axh6rnO&`!m~BoOw1;8O6PvN!i;^9c+BcYu1XKd$|?7Q{;ks9MYlTw)*Ve zz|cKiHRpN*4OONPnfG5m!E=VXB$TKYZ9*Bkfyc9sv&3Vq;S64lJwflQ5ze+ay^px7 zB+`GZV^T(U`dzx@U6wvy?{@trB0*ohmftOQ@l5#sDh4_TsV}4vDhSH!T-|5Y6Y(SM zfA)>Bk_52KY6%znQP|+A7ZRHd?`CE|C@jLnPQIsAM=n(^PAO!nt4-;u)M(;Oq{`4F z5cIV*o@eJm9%kGjWRV%!F2YB;(fEB$eQC^ksUB1VRJdPj-<#2PF=^oW#)Q~%8yvTE zQ3O8%!VP;an?oeFVY!Nm!pfpU7z(6@Fg7MQt&TT@;{Be99Z%_IFr2C zPjRnvCRY96vH@)nwBGy7txuq7@UTX6S3ToqRmLG3^e}6qcoe*|wV9j}mtzaNW!oG` zjIBAceQ~>)(O_4=dY>5+S3t_ZsOIAFSy_VRPfC*i50%s~lYct1$~~o>SlB0pH{r>$ z<+!_0wsTj~0-Hbg4Bq1tn^1$s3J2OLhSPpV$B^}1i}eTO;39u3RCoJluo z>1c&X0VzCReosF-p<|b;@QU=&hYmR=5Zw0NJ zb4a%NBhow!{Vuk0X*Vx|EY|2^spYwU*z?$HZ1ZmVynUc!!pme=MKA)qu)!-17h(*& z=q6(9WnyfB#eF^grhDy=4ze=BecJFD+b9xsOwSlRH%wlMoI5@AFGJ<|Z1%e8@N~SH zwPhwK2&1tI;Ymum;Qt8?GhMK*WHK@`%%;P5^m<^mD^}Ct&cRr+H=_4Vt4PhjFmuT@ zJjFmJaLMoW;54GjR$C5s--1E12Zcy>ct7KJ$14gP%=`)ZQTi!U40%WoP_IAk1i@7Z##x1NsqN9VhzV>7{}&9QB$dJnXp8}3BpesdTo z%h(KyjLUd!NeE@j!Pguga@LOSF19Wft*SOwT-KmMrog1LPcIkIK0oHG4c+C)*^7j( zvs!h=eG1Q}VsuIau6MK1PD8T9~&%Vg(Dqq#olsg=sg=Icjg zSaU8IFjYq^6$+V^@2C_PMffdca0Y>nLXVN~D#1G{Z`Z*Mu7~+NX2`g#-2eb>V|vwD*&MF|@!lrZHn}b0Ba!E4 z!TZ08PQsA}FPF*sG-|({&sGVcsS`YU^EgNr?aB`LBk0q<7$Y8zlcUpQlWOy?SUK-} zGo0ygBs0M1IS63Wx%T?vLQX-kaXqCt07bWbb8|_Z_Q&57dEb$Moli;|W2IoJGMwTT zYevR%L>to2;U_T_xP+%#mG+mLS^Faa!BDyFM<}mSmBblz%7RrJnWHnXlWY*BUiN)s zTog@QTN_{BZ3nwz>qQSLY)IW5iN<RPnBLtYyJ>8Q{X=sqNd1<;WwjSiH~mbx@t;N3LQtY6 zBhvMF?|ehfYdzb#L2KsDVrE)o^mkjVZmfFWUNLgB25b+o?>GnP9Bz5IjK=zWDGM};&M6K`2(7e9$R_Kt#!WA z!=&hp@vd_^$%^lj0F@TUn)BoN-@x~_@EP2vMASNMpM74gvM!d^US`Yw(=uE4NOS_w zvpY)dF8XkfHkq=#Ab*fBg9M?dwe~>l4j0yNd3f~aD~UePb8jdnpqJB-H*Co)(@jFM zpXSuNLW@dL^~{1AX^~1JVB6f2VD(y3xo5%+>HJMOWBBOv zd}J_Fc=3Xv&zA0fSVEgUSD_P(h)G#oY?em!wEmHHc*~K%<#-+)Dj#-dM0j4_daf&P z?z`QJ7OdP;>uVZ|POtQzIP1+azJv1-Ya=L&s%6`o^O zfWPxwj%b4|ta-`QMZOQL4j#{c{GyVXsuL1W|BLWscfUSr`5$-D5~6qul5tTrzkNxq z5)2)A@q0K@SxrUNgC6W+nf&jOj}EL#^j5qqcF1#}dZ?-?iPMQ`Np*wi=6G%;;UIwC zKY*K5p=~uozd*3P@ zlX8w_f7iAU+r>J$N!s1}jyS#|{A+s7tC+Te$VFMA*6NGJfo&s}e-=p1wj+1h>u4HD z2Z8Vh6M4{f;|+b_PkCn>kY(E9d85_x_yYZT32jLc~g`H={P*na(L=i1&D7rEFyyElv+@`V) zRTFoIpp!Y_#Qu|^!bf0YgoXk^2_=&cF~EGX}gjDpRdioqqc?c%39woKh@nwK1HiARg%fYrWC3JO`+j zn18DL_95HW)!G8xXak>R{nfxl)A;4=pscd4Oetoz<%`^QfE53u1Iy5|n;q~1`9uH3 zw})#-aYe9;-RT)T3F9l~DcP;OzgZPaVCy26&P$d$NY;Qpdgi+|mhp>;vXk?JS8iI=sY=3tt;8>$44=;E4P-E zU+%|zO3P3-a_K%Ow8J#>2Zbbs6~9xn2QdgkI4MaNsYrSAvguTooJAZYGFSJd3?*N! zx$(co*r-m)XCjtyyCZ}Bq{7JdLl2sz;)GbFWW#vXd-X^AmeJ5l7dvEIjNDW%7Jn3W zx7hO&RVv~rRm(^VS+`78 z2gfK{Ya!+~s6V`hNR*;iREmI%_;b~Fa@!6lyMvZBa5;59xh^?$FYN$zctrH8UUf!) z#V=XBTZDWGEk|twc5v^I+sfK z$n+uyNT~;!JLxMOFzz=tF-Rplq??rC99}?kdJa@zzL@o&5zyX@(BZ@>={e2GDAj}m zPW}9lI3*uQHhj?;yAP#{MUJ*ORXI#0O}~dm>kix|UuDI!Tg~n}a~~3{MeEo!i+^|? z<2Gt9+vV18b};czle5(Sc+G!`L1-8i_B+>y>DDXF4}k%xJ>j@<@N^tGr(TX~m3kQK z#dhVj#y*ZGjYm^5s6iociBthz*+C{CDSaJRgyJ%wi z^--RbiOM0HVi!Tv#ltmtOCL00fJ@DhF%+IW=Z-I{wCPATTF3T`qnt!nw^WKjj{>J>fSijXsd z_|cvPt{xWs>d%Qsj`f=Ip!uBoi-DUI({WTcNpOz!*@ioTJBF*~vYy+lBl$@IrkC~f zRd>kioO_jlP5chlW^A=CwVGu%Le+&0b4B=UScc27&KFk&(!`zl>gkowa-0nRF+AvU zzt2P{6*D8CAn*4;SH5v7&%bdLhe!PG*XCmmWVG*`WBN}?v33a1ZClYkT|94=GePD3 zY>V|4TMhHg1W(Aos z3~$##RA9k{07q!U@-4E2reOT zo;S2?s$2I~`eC0cViUb&)5_FJl7Ne-vjv$Xu;b+;%6}g3iA{;6+l*kOQed`G{hWi1 zKtY<9-4fE`L}-Y8lke4{NnQ{pDI<$fg~|5UeFQNsB-w&=H3`&;nXkg=HxC?Q8`ArN zyk$e}2_nUJ?X=cOc}_mmE((2|0LhJPTm zjLT^9-PCj|BULYQel&c;KZj@uYZ~D#zqFlnL<*Zj*pkBQ9QJaxE`aUU3>R>u{CcC| zYBBe*O_$TkiPY8$UE*m?jneDexC344$IIA+*rUs^5K)O`AnmBc z{vd;wV11mF;N|f!^|hxBSP;@jqI8-pX7e*;@z)kdeIk`7z_Wt}r$PInprh&GkGbz+ z-=k`5k+ojUYBlwrAZ5oA7f0tSE{p9^v?0JD;BvCPD|5*RKoxW2dQZQk4rnYuJaP@8 zpYR5)RVtpwG;Xy!T&Hld)MmQP$}+qfV0BEGqHe-qB2=eWE;Dz!zygDsy>d$##rwUg1!nquG_PO+|9mZtO=gD=GDxq zM%3v`c97K~a(=6HtdS+CC{glQ;b@v7KZl*rv)XtZ%Qc4-8GY0Pm0k=>1=X~je??Nb zI25U9Me6v_{6&ty}ohNu4&M4fOuq#PJM_ZihLi=yV#3q1A>6C$tS1NzhFX zQbqc9?jK_}i>~l0X>gVo#Urz~x=YHHK9_bCIK{r>((#y)WR12|+mSw$rt7*9$fI$W z&h6+VxI2|b+Joxl^7Pr*!@ zX-YCRv4?ab75*e{%PvFelmDD}i*Tq-n*m$a3cJ1fwP@@6oS9>Lz_D zs{~gyH$C!!(G)9S*uy$QbA}fEugW2!BFoPT&E{wG&oisIOvWR!3ef>>VZXwpo%>t) zs8@lC4g5`e*28r1gfsPxMmmT#$Z~ZC$+mb4g&EiK=p!_^Q%K{n_hd^ZB<#Wj5Q zug<7E(cFk9@PrZ9jTufXdDjrV*q9^=?PMG3Wh$HKw8VC|PZ&qe{K}Pn2DeaXZ(`(R zpbzv&T1>b-WE&w*lslB?_2YA~%HWU<28l;OJ0ZFoO9 z_7beV=GjX&&VBiMHy~)a$lRFrP<1}V=nX3ZhsRef_yCC?CqcX)SoJ+{)X2S{y1x!q zm}!82IuPu9qO{6kxa)X9fK}+l^72QlnYkO7`A96-!1{1=77V5QHUaIH9-NG-kg6v=TNP;MRA@OOGzt)XC0v%|Zs5U?h+kZ|X1=j7$sn>=dU+M!FZpBF7K z84hpLq?jcD?nrmPxZ8@>FdRwb2J}2{Uf3Hjg4SX5PBZUM^ujWcPwW=FCkqFddo8zh zM8r26KaM)b#;$dRN~2q+b^eNCB|O zX;CuAQzbYeJKt-YW^tmJH67)3G&`;ELOy%qb`$Z(Ns-O*hAn!I<*)HX@GQ5EnaBr? zA_}=Ol)&mTm$W3ROda&{lID|G!Si=ms09AgPooYs@rBR!(`k++MfEgd8|$Jo!GbMb zwj~>qVMoa|r^b9$&jVKq+hIsHQY|O48NYZl=a3Px`>}Ra`h{Z4?fJ%1j8bMJl0 z6pmZgmsO~{Ey$KO|HMJ$4ODAALe!Fso^x$oiyz$g`piT`{B}`{TP`SwDY)N1E?-dW z4(t3DN2b6^-hg;l8JnL?fF8X#$M_H_OtP8DA=p)0$2x)+GK4wxy7$auBDuFH0$XU3 z>$NT4&b6ITa2Pd1OoryRiViR@W)49jP$r>(WXctM3CnF;b^0#QK`-2n4FS?`m0o)&u z#BG;@(_b-=rY|oqM@Azsf^(mtzf`&yZthGINyht12j?^OY_i7pmGN1@chuyJdvc^N zX!9zVGw^u=B@h?k`QfIg{qgi@<`=-{e#qcFZS6?{clp3;Sn>0xpzD+-e0Ct|$R2XY z9j{s+srZ+^N;6_Dbgfc_wr`dUe~&_#PeAeqqLTT*M@wR#Nv5T0xd$~gjPJ5Ue9kKY zha6QtD~wkJGl`z9B_Tow{~F>y<0k(aHj28lJdT)=x&8A<>)W_Ub+wpuqANJu0>EqL z-d*_ao|j=Z=6-7FnRb}E(cr=enB?UB@q^CdOsr~N+-j%0kj}y5%>Ornb(2&quReCg zB9q5el&nJ73rvoQ${AtwQT*dfu`QwiH|OX~00$px*v~P2n852on5CH(Q(z7`jRalLShlmb7&^o5CLav@`pyN!z`~RWPY?Qc8xh=SG1k?KJq7C3o4^SuXr$5?V|Vm zhC+ZFP^TAD+1}HaxE9F+O7pZ~Dq|Vg1L-HHLQSAom=f6`e@y|QH1-*Gg)vsYMA47_ zu`~H8c;sYY@!n!eI|9m8eg8SwB(HeXoF+d_$cw<0|IGh@y?&fYsvi}O`*XSQH2m|{ zi*z$4=y(iK95{1+`AY^6mDFN!2cnr{ijLNC$juyTZ$b8hPsXtx^U7nsc}Rv0^pI$= z89ZYZ`Q=tlzjvSCHa#S4QU1(g>a&d6M78G|yy5tm%_(&G$#HF4SkTT4bH-~O%TISd z#D?smRZ+4e!)`X#`anvul3h`m;Q-GgvHmzq@p2hQPaFTitoax>ux-{td(m|-K=G*~ zAZ{`?F0BfV&m;hb@4IR!+?k+%ScB}%D#}Z)2_EmL3!>eR87j^n>&3X|k2FM^Vd!q8 zonxIjJ_@~(b*~|hetPHUF&-?hSF&A*Mx5B|odH=N?eBcR>n~%wn{gx_4Q3^V_4vmb zmd7gljTiAZ1 zD`wG9(unBAF0%d9Jnf}0mJ#9H9Ki@}@KXw?#pX4ONpNPeK=-Ow&H0DVu=gEsI{?wn zabC>Qwo=8ODsvxhVvKG_S(q}M=7Cp9#IMV^*A!nlG00xkjVaT3GNrmJyr>$dFz)x$#d{mHUXKq#G^q#tozpDAFcMn#1=zr28u?iI?54Y>fuf;t<@8A z`2Hbw5AE@14qB`cyW|b>22KOthIJ194@+ki5LeSR>o-V3Ajsgs-8HxecXt~CB)B^S z3GVLh4g&;thv4q+?(S#v{pV(GXG{0))vK$XY9zcYhTt4Y@oYhQy@U^@hiv+XtQ6}D z^p*ox>ao?aR5p!;q0b%ppc&sVcr6$W@GFw-nC7xW#zTYi zM5)+&&!ge{mKa4-gdyJYVHgTy7!lL*V~SKI>h%CyUc6Op1JHXHcFc0Y(pIT z7dn$rm6-7McRT%u^9g&16Xo&)cNA}L9lTeF(^y9C@!txo8XcbyyND2F_v+F3#&s~u zsIJ&!6r^#|xZ!VD^YKX{y43Mi^TX2??E+5UXwS>xmT#tYnb@?VgmVKFa(Y}SkEb(& zku*E?^mS=7w3S{RDk1-iSHtc84d=l*G}FFMGqdYX!5!__fC)Rm-3yFKX!(X^cP3`Z z-YEEtGdM^a!9w~YajBuTX>3T7NuJ<$_VK8n22+fcvd1`84@#Y-Ci{|C;LMZ=TnQNv z4%R+;x$VYr?JibH>Q{f}9bH3a8m55;!5^WbIum9riL+&Srkj0>`Gjf%u}e+Hl&1cg z;k-PIXIgzr665?k#CzPBka)}c=#)7@@nFYK^MyFgH6Itv3uCs?O6Mb`&8i4;`xq*g z&JF0V9`%FtSS^N!-oS6|mv4z#fNqJTNcXFM^>0hoIP;7X&Mvu5dRKTW$*ErQHU;D> zn$i69hzN7So1p0g>9z1W>OEp?yE|EQEG%;iY@S#fSx`u{e@ofViXLBU1lPGV+o6~J z>UDzU`+KFH=M0v6ihG-mukD@Xcj5hM!SY#4Q|%qU>f7L)O-%vwe>Y4+m2@(jc|xBK z>;xg48_7U$VSzUkH6}zbb+ua+T}emMziy6^oTiae_9`QJvSzf@p;v|{nM(V5G8`9; zvBKz*%pmr0ocM`m487Nk611YIkbQeu<;G@|P&1t0h5IgS}p5xFF3*HJc{|fHI zOa$v@9rbJa9%5uDdDya3dV4LpNgqD#Q^Xl(N|6uDQd(86Lr-rA)?u+FeuO7-BeLtwRo0}8iiV5SbY5k6-ol-!R zB8JfW{uG1d1^)GFG??W)UU{mc=*OvzBbr)r7f~%<(-zxmiKyz(vu~4)|`f+Q-K7(HGe%`qBKuuM3XU{hxj;uL8jR_ zb24B|2~wR96pr=>-S1e&E_GgtP)0gC#02m%o=8_^2vD@(E9w{DqE}A(1K#|xsAon% z%}T(v67Ww{(Pvf??L=DFs6oK*McV6_`m_|1PRnaVfW;`f%-`^W`P-CKwl<@`&tvK( za?TuYER+hfbJ#F@z5qon`?z;BgLLjV)U{woNcPZmipH9CCY5{PlX&|P-<$PqIq510 zVjj6m;A8WZgW6bu#vO2{3p7F z(xn>4=3l&5$Jca%9(k+u!0YMz!5;FY%UhoLZReE5&n~YBKRU)i^PFRe`q=cJ(boGI zemz|7;CvDawz{4`(_DimDR?FsujaW?Yu_#?N>UkEOzQh}alLyCL(?UTk}5mQ0Vr+l zMgRV)we?U^I@;$zp#JB0t(`SE^Qu9)lVa3pJXCYL&qDY;)`4Pp=7qiMlZf zbR@2y)tf0ctlwI*&=#+k#ld+O6=WdgXE&vA3Mko`bRtvAFS@P#q5DcVdo#syaerOV zLjE?S23D6QI^p%kb1zEpL>nNwu4Ei(q$pwY*zU7;*PsQ5U*Y+y>dRzPeTMAMD^UJQ zV~A=lB%NEvxf8t;di9!ZyIfU%30{Y&eSyot~0JM=B}?PBCE$7~~SJ@pOvYrPUy zFcCQqA$|ZpB)1260j|?qKL{`E$rKvw?p7?m{l&*OHA;DDj5dC?7HM-^vRiUEN$Z%2 zHVM&1WH^JVuE9!m$$(0J%H7mD)aY|Uymg?QsKI@3@@V2_j(M@GfDVs!i-E9FD5cZ z3s-BHkDJ3&ZLLWDz*q-xNqr3d2*?;17{u*&aOhw7@0(#=Si{))ZUv3{!Qnk1!xH@m zwCH)JZ$oaXvk-8#O!aW-6pm`eXn>TODBBbrTK>VZ(B_H8nO{|%@uK-z4~wM;iW%;$ zV79b3l`BToB-oD>wmzYl>*_d#{df(n2E2w|CFfV|+9FUujYEyy$fr&jaLAwYVv>BE zxVw;9J;!SpqD+Ca!-fkHb((v%%LptfU&4-@zo{tnuW}j`IL%~@b6XK0Xx~n2NN_uY z`o6bW0JmO8cGB~=MjwAg2$1D5UJoUB<{T$J9q$-|?lr`+>2{bUpAH)xT2d)>z<7rQ zIale`GE2>_Ju9*a#{wCNmY3K+e=n&1$k? z=%c;-^tS;@kONW$@zBpVDvlYkA?jPQNhnE$br8lD>Zao{Ex6DKoMI#sQVwrX?BHlX z_6t0y3lmh7XF}POIV|1i#F!AaFuOyYrTJZv?&)7rKc#7i`QDW*^rn`LA@4V5Bn=As zq+N=gfdkuHa@P}OnqP$1B!8afY@)l{8u+@lY(1Jivgt$la6h}Pe7|7usPy7+8+C)X zpezv8Y}Pn7WZvtBATAJ!vSaOMC(XT5kCW5yTq7288vk|_h(-w&LxF3+m0M|Z^>%H9 z3z}Au#Mxi0E&bnN=Y-Dxs!CW`SU{pxuR%uF)&IHF8Wz4sL!$--LtB|$eHMFG`L=hf z;2(Rd3bYwRzDjATg>t`Qt3!*Fh02VZ>6`{ZTq#8Eq)3I0*io)kitYxzEM`V6#>pqO zPHTN}LM^r?{x(IwDs&;>cY&AIY3&Z7EbG^?<|KB8k=D3det{C{ISElTlPy$+1_8#Q z@TJ)% zu$<+usQAeRDbFjro3HQl_BI^jU@hrqhU@*l^pkMR53z|!O)af@KeJ-RqUZ?M9gHHj zde||M&BxWhhMB4NQE1fuW4$(Eu z@==fuj%$>nc78F-pdM&Km3NoY@+Z5JtL64}(R$Mv?xRzJuE;3RDvTym+2*-`=rSj8 z-V(&^f!V__Scwq}{BVlY$A`73_s{53lDwz+1?>vm}fwP%!s4gxJaP zCH-sMk6kezK1%goDy7rxEYForWRQ?BIsWs1bcBe{Hin6I``LkJc*Qj0c}+4f$gtD( z(Ed8VCg4SSBT9d;e-9^%rhH5J2~%v{QED&BY9OdQpB?)zyxF$S_Q^$?F~V9HBY&s? z&_q`wnp9lxjDMkR?J$5Bla&@DNq_M>#l5i4g5ZH$aU?Pz*sGr7irwT}Pv3E=CvUZg zQg1Cx)_&|6U_QBjpi8|Jpue&OJDvK@!kg{Z?PT;82x?Rh#vfkTYJR^-*o-;{Ur zeNJ5Kwz^X75|=gri-!ip!*x^Z$pC*WetU)a+ZjFrZnaK*|F=5Fu2gn6($d?JXd6lC z3auMh$L>ZvYJ5MhT(@w=EvcEQ6SC-YhQSofBArBPM|EF8=ch z^FrAz4cBQ_ee7g?Drx%CrjuqVu4;DKNel1OP6ktH+nPbe)BKOKMTz1z0&Ex3f&y1k zO4!;K@MiAnsgY8Z5ia!{uE;}5&RTtsq8uMpMgFiHA4qB>>N05F>al67v6x1)JkahR zao~Q{|E$aQfYNwA|L0E^d&}VQ;su4g90`>%BWRB}^C789qgk>lG{spLG96H}m_>@Y zOfC)uM`_`vzpeIex`PVYrj=!075)_NmE2*I-H9Mc0~zmzU&M5Sf2~2@(7E8Q_v4db?r(-6HB@qr3Z09YgP` z-wn6iZskI&!S)djr4ogem>0TOpbrG$BynjWVMu%+8JVdkl=(dhK{)k>ct)vKr4&jMU^dh80_sAZYsqV zQcGW*??%%jdxTrJuG(0B(U>hZ*xJ$uMyy8UqBo6mdMYuc(XU9KB>Kpz7+@w55K%>TQW#j z!gR-@EkIkI5!+9`mnol#sadcNPMSz^E1MbGayc~EUCWuzNh%z6+z;^grwWm|osNr4 z-_Ju$BA*OfBMN?S=VpxDGy+(jYt=^ivYm0CiDPl$`57u&8+u3T)x&f=bw0}+7ja~X< zHd)Y1_ro8CfE`)(2#1|UP=sWKwMHd!WrmB;oZWzj%h_ybojXRWcEgEEsnrjwN5tS` z$jsp+37z{JS6Rv}{~?LK?y~Re2Jf0qdQCx@#8|u4@KX0jmzG1hZf>i<25Q8ur|#AX zzRQUCr+(Mg2LT8jxY&qw@AX_Gz0xStVsuWF4=Ov$j|{Xx44SHmb!#))Pat{uwe2XR zwKV!KYoB4?dwN-jEbpg8yJzjfvU&K6U7q_&*Fn=9^v5sn#4rF@iN4Jv*S7M-5K9RR zj;J#1H@Ms$08Y`vBA)PqO&S(UU#zAD)M1GIRh;%-B?e7HEJ)MGVw% zVMKMBU-FLNo(fx!(VpU28R0a>-aI_Waw-T{45aTv~Ml~3eCcZ3Sb*g)6+L&>j)|U32Stk+ zn$=?Rd6qHRziH9zC;F{|{?ILY4I-4zrIi}8=apnKi`}m#YW2}*4UBb&)-jp<@7-j_ zz8Is%y!=)c!^H(ooz|lY#l|?>M2ELL1#!>(1gJQ^i_VCeaAvfXWmuxgxbuJPIIAAxZ#b!2 z(n;61z#?~f-V@)7iHs9-wG2y(0ct-{_7W z(qvKR`x5~z-`#`39LJCn!PuVmr~UPrJuZ?UctdxQRDX*CP;1C0A%s+E-%mt(`epF_ zHgh{ElW$QxZm?OhTXz;GLJ=ZL`r|0w)>&eDc6f~MNv&)I+YE|RNZj^xmlJ2)^vXMs>og_3@Jx+-cdhy6PEUg`!mQXf_fVC&UxX;|| zgvi0)7oI#PW--=b7hEf;Q*>!8mz%* z2#+c6iBVeMMYhS6zE}Nl zpB=Vw^ylB?Io}WmQ!GNuwLB|YXzTlYX%$)1=+hmpy|mmaeG7pPWMmXs=bz@*5Bdo@ zw<7sM0y8uHB<1l#-&SoXM%&y-TAZ1pk{GN5@W=w$U!-nfW24eP{3N@05zM*2E;g(?5~^P5^&?^pw%z8_65ePvC_gxiSIr;@{l6 zKa*KC{{K|RD(x)m6M#utb^!R=sI;rTTSJ9K+F8k>?BtPdl7|}q=*&w5xQp=-f10AT z<+l%lO0D{OFBpr&IKB55*oEpgQE}L;8j90dZ0b_2NWcu_S|_)zQ*AiicExvom5;Kt ziyFN)Egm%mcpD|(Bp+weew|MGEd?z#IwAU`IV!2{?NB?^N)txL39Ss6-_Xz5%>_WU z==W%i@z5SAw7D^d?7BzfG%AaTREQn?ZPegB5am#k1C74<>RD|0XfF+jN93&xQ{PZA zYUNE4{XHvq)BgDA)bC%P@Y~k@Qxmi*I(@8V;|wEX^YOQEU>AySWw4Y(zSLhC=*h+iNl<=ztXvX)*jJ-dG zyS9@KByoisEK7zl3@+(ZJ#D<9KVjBv6Vm*R5fpqVzu!9-~c; z<6UQH_#2l{8*pj<{+wF73k81w)TH?B&0M8|HU=qAFJR=w>uXysq!CI_Kvi@| zvB{wh5Ag@swQrQdxz!=9<|oXJcFGy+`jB(~MreqK?aYHE zYdih)TwKnVU8`ei3dBLky{Y8@W@HcON>2VzmG)N8K z=(EvI1>8+^meYYci~Sx$j<_;5OJB75G=A0Y&V&oY)~6|B?AU>E8Ndyq{2Jwb zDZ6GV-hLuvdB2E>*`V7L;C_|v9*u;V@5yvF`RnPgY#zMBzGmrDyklVXvT|G+btuPm z{a>se+m~y-_b383U6siZ9YdRTQ_KPXKTjl-gT%+dgmPiT>gQgnCOr8SC%#vk?wf|& zMRVI1M2?NeRKhNu#y+G&V*|cHHHbLbGy$ypfhRIQO!TbH*e`5kJsWzXTTUd(NGFIF zP||?ki@$h)UAWn}moeqgVCO66p{`v8Zja)$4}{D&#CtHv+H!z2Cin%k&SE4-XXpN;Vq>m%>Eer18go1uxhTAyc#g1#$EW|O5W^Tfr4{4fZ~ z_?_;ny=ZftMy#ak4VYRRO>Dfe5Srw96D*(KPQ$(@<~!Qycf4$mr{#IX7}F>qDdr>v<&=H^}thUSAZY zTu;C7>iuU)$O|yjDc?uw37*IGgv)v7CpP@@;+{dqRngu>@~pAyK?RT$4NN`pIc^98 zMH(ifl48gqqPb$DQzN|PD4T3zya_NxKSF&jV$du`s4P0O^M$kap~RcnF|^-z;@ey+ z4PVF$^QinTLS-MbqOnp$h`N^MUYt+?&TGfC;8ina+)U1CvDgvfl5T}~| zm=qpI(mYMnjUb`R;ndPTDL}EZPFAX))U;_nIVa&H zy(NrT!MX8X7Ddm&V!4q3l2dlib6-M$jqb#Nz+8{>?@05%*5xfmd2e>k?dvO>KCZou z=c}=P*S)mht5LkrTg~epyG&D8U4$sqWpL(j_r%6H6yyR%58(=Me3`;Dv$dc`=PlBh4>7`0Sg7rrUr zec0K7bQb0|9Y$~PHH63OdHq3@HZJ*|d)6R#MM)BGMc7gm>k2H1g_frS=vqz4ONK(oM<%u?`l*l~)zz&vd~b&K_FYTM zH3CiY;HxC&VQ+eoNO1u1^kRrbfc{Ra)V+LXAJ=`9Q}5T*<_uYs5JHeS z7V-eXR?jRHD{-UBOHi?E#S!u{(ZuRXWIkPQfo6KE|F4G2)5!5Sr`_~K!GFw@iM7N z@^`KCve?>ip>V6}`HF+QC47d3;?UtYdR>`z`_F<$kt4j_)b-%=fFyldQ;S37AWoU_ zg9|D3VRb@B91E*8+)ojCl0wZ{`_7RRm2HyEt;FYHObi)M$*cC?Gu#fT@qkWA3VYZt zX~1HNR+;-P{1?JT0kMc>WYUk@TRxxEHbV+2HU!j>zjvRRu;tqc>i7-X7=EC)o{+!@ z84>}ji?_z8ggth%xSR;Q*bI!je<2`!iI_)zI-Wv!3q=$bEV+}5RLg<0`v5kF2Z+x! zZI9v3-TU^0xW7qaX{dB$FWq}|d3BwfaLP*mav3@1WP zImRfIO5SYw`agHJiK;G^S{T9*kLF0DG9s@jsy`)EXha~Ug-fhkNS<&z&T~$J^+IDd z;q!L4NlbI=(||V%_x@&$00^K7Ak-=Vuvda^%~pri%SuIw9>r+H=~MZPf4Q$ksmMp@ zgBctZN9iGYQKRBoHO^=sz_!}6{!3GoHrJhu0!hY9(1EtTHjQQXkbxF+YH~>$T2tw6WGO94HgNn(ha78L7B6p#80f{y zVOFUQt*-OpIO@K_TXT7}6m1kaFAP4|dCr+)SU0o)=oQ;#+kVqkrZD<$J>rLq!-d>H zbp!0ai2q#+K&yrWV5!KnSB3L_WZTHR-_gsSxavhaJvMpgZycL4v$t9Ap+Cb>kZ}@c z#1(Wk)j71HZ5s41NV<^zpwlU3iRLbtm+A>y&Zv^PG^fdP*VkI(;L z7?aYB8*$2ViWBik3m;uq0=?}ucs|Tt289aqZ$9noNV=y+tSZ~^>=boP%zta)+(CYwTx;2$H-KZmQ7L@V_v?R}eBAN?z!yy@@b)mqmL50r5%5-Y6MhNK zaQPB@4d zDWO$ontt#rDa9!0C1VEpQ}txPF9`)2v~aXY0Vqm>-zc-?w4!AL zFYMmm|If-Sn=<;y$*<`JXM~?g8=W+X+X9jTKr|tU=RkQ6z4J6@tw z63Xn8yb?Lre>o^Akqpw7UUUX#uICQ0M5m=hEWMq*Ma9G%hXGr25@2_uHgGj25LrFS zjWAKv+{l0;CFIu3AThXZ7I1;firZepwKy_QzuVnwSt6}=@Q=%*y1E%jMbX4MFdh13 ziK}Zo?cqrT~ z>J}&F*78-#|iQ38|latTbXaJn0x7743LIryRj~&urnY4V!}+b z)-3+<&TeK{BbP0aOIF`Nj6o>4m;_SXB>F5$3a1`_*o7TkVrPskE(3gt1P$ESujNQ{ z7dAxY7E;Io8RJ6K*y%Fi=YfN@ry*$TmhCsIl^9JD_(Pl1#=T7d6M16>{h;aX{rOj1%yO@*`REfFS&X)BP|J(DWr<{~bRGZ=b(AujnvOq=%a8N1C5EDqs zwIJ4mXlVb=L*h##-T@{6@~X$3?)2=eTfTMyV7lNuuIxTv!vcTTbmjVn@SBL5MSX=d z%qSptZGwrNF10lDOYdijd?LQ~(8tT8!5mqEkUace4#p&a^_h#Mn4Fxf(O^StXJ^L? zaO3I{kOiLMDq3H;F-OxQN+Au{!XIzMTt#6I4MwgS#fdXAGD7^N)i&kpmxH?^R&4k6 z#n=6|EJr=MO@KHT!^o_X5_sT}ddoDc-yu31p^RdQ|A2mBET5JsBE5-0E^s<2kX zjc~ynk)}eQe)`6LZvxMs#)@IT%hjnZIcMA=j_0y7La zVrqJ{&YqvTEmTU{`J38Ul$Tle{3kV2Ex;*B!j z2sc5wAmVaGq}PErz@W>H0Fb89F)=p*8~=nJiG-{y;=A5F43|T0D%BTDHq9#PRCHls z0bC4Rhz~Rh0DH$gZP;Su{4s5_?C?^dpsej{lhpNl&a+K1$X+B(IgtN#I`n=HI&wpN zPxnuzj!X8a#!u|uw7`6BC3wWJ=RfEP1Ayu^iO&A&Ric|>x3>$tcAndjrD|#w+U4Yt zyq9pJJZHSJ907m>;28mvZXDN~x^Jo8IuZ$=d;OEZ{RcVD4VbY>U;=KH*RS@OSG0y4 zh9EW^Pa;eds&mAttK@i6M!I+rJ~PK4JjBJTZU{uaVr6>qs~T5t;=Kk`al9W-9W@?7 zn$L&yUX|L30TplO7*}5XbsY*%dSmWtp?##i5mGL*)nNZ2Fj~sB^U2fdpOTF;Ca#@3 zaZTpRG;?j6olYDC@qr;9;d-^ZHCF%fRWeu*@Aoz_=W!G>Twr&Qh|`+~{S97G)Y!CN zp2N@W8u2m%{(uO6jEW(Dq5cSbKHBd2_pp%T8*~heZ0EC8z#YH`^*Q+8@%X13HuwWI0L}6Tux~;E9Of?v)Pn9eGsc`h zhJk1snV7K(?sSiTgm9;`0Fp(_%!of`@{;Lg3+sFpfg@XjUvK4)=yLcN)2*BZ0HWo6 z&-Mat&TE=g+}2gth>2Nr3VmrJg+`=gg@nH)JIETpNt(=f?}(13d=E+N0mw6|LAPD9MUDaL8AyWrt!3$Ypf~a{cxDs5X)S01&lG0ET zicKCI2&Qzspl9|f5Ju((O>WE#V4Ym=e_sAfSF1D(gi5o!{EXc;hLWxnm8si|@9{K8 zO3bX(=NR zf+~qx_|wHhc+fO1*3LSdKsz=U%Rt?Eb>_>LcdCJ-(N|!kMgjp($mB;M=gn)cIKU7V z5~BK0d+BNYRd3^F{rP2}Sd&V-9VgVNC2}%mC#cUXzeG;N`OD?TPk`HtqyIk!c~h1` z8I3mzU|VZVR&<(J3dx=OTfX?$F(@R+Dnx);Qzq@Z^%wE-)TZHa)jS~7rC}#Q+u=Ip z9Lg_u;T;ajkt-y^$cu`G=J?1IVS|jviPHYGa#p$K`DBXweueL`Iaqq`pjXE?0h?i4 z${Yrz;#Bu+uR(84^0b=oOjWScAz!YQ4WuuAW#z_KsB0rzMH7C)CQ_) zj8?asE+GHr43m5jikzIhY1vCq@B`qt^(`x-tLOu8xSjHzcEk|^w{U4LmtTv@87vjM zc(A2J8VWxCI#M%u@F@-wHJ?GOV8EPR$jJd>2ex?L-|>>5sVOx>`?DSI>-|;(u#JdL zODj9Y>LHXu1!d%NSf36@+uY(6(~0)rKJ1ckyh9*V$ru58`WkQ~rdHt;y3QJ4{SX%R zMjvVE~`fBMG5>dYROQ6yN*J_@!E0yEdr%KNg zR0}H2h>%GG&?*VUu$H7t)Fu>#1Gpyb_c$jDQk`8_fQQ=;B$ctY195;DRqc;66)It9 zP1$7mzkpnbxU({&+t2E6C*0F&kU3MdfdR_QFyQ4V0tCflE*%D_7WG1OJk}ga_@=YS zI{ZhHVcdLYXzto9_X6Aa5jNmErlaZ|1b39=#|>I$20|sOX6AW;Uql-fE^_jGL3gwe zYau;ThI+Zf9fZQB8f<;g0N&Ras6Q7GFbBRKwmr>eFNYs5Jb)O#qUC{z{_-yfRIGaewx^aD*6U_AiD@?oqLJ?@@Y01tFm$RUCvBCdIIgNKLY(?I{e+%L&*Q40uq zJ5cc^d;QtIo9b)$-Zal9L z7uEbcTdoNOLF>@W>^N!CW%**r^S?{zyqVK`pMmPuEf&K-UfWhayWOH`;l?}B@nJ8s z!j)kY4T8C$qZtAa8M`K!x=0}1j?7phNnW%j>GM53b#+oAcOTP@q6AJ*M@3)T-(D*8 zH;906Lnsk!dl9#poQg_|Q*;$|D-^}k=c<)C*DKiDqbpbiZPnt<=BAwKVEgvZ!0Lc> zF9%!_LYm8FaKp{4_Kb5C^(TCXsKmuMAkJicBapCfdmvU(Lt`JF3yT4(Yy++?$o9d= z{-LQ726TJT(P*zJo+?%KOG|`zVvRMnp$#JJofix%0adjm1;NXC} zmFO z5iUQTr5xIcYCFLmk+Uf?OaCrr3R}{X6P9!K>*?w&$LF z7aNo;OvasdX|9J8|At0H%XM-;2@k-*q5^F%5_%Rw>I1GOycTVgGC4}5Wz@$3(o8PL z2`bLi;8Be(H4?;}Dyl>B9_+5#pc$^zB0q^dOveqJs$iD`vsBn#rn(RBfh~TUn+Ccw z7f%WLZ#NZQ

    uRjOeRFiHvJy|LwIb*Zl*U0=6GK@Ap^lhXgYEh2`5Kn4ge4&%EqG zkGDs@hbh=XByG^0=zv5fotT`94f?aBX_FB7irV4B#bx<{g64h!Yku=*|5|u!%7GgS zd3fXZ32o1Wh2CuI=bG6CEr?uwF`yf zD}Hkrh9FpUhAN-qYI>hb$uy$d|puS52M$=1o3y#CL zsea~R`JWShU_&kq#MPG^>n^)=!1<%ql;t8*n9=*!+5J*4V8CQXs#g5l`PV8}UFMPKdpP1Q;@BEAei_g8;iY(Br z+TKP`Z9FEZrKX)nMp^n_#V7G<>NavUQCaU7zRlF^QL#=$L*w_QogKRH>FG%Ct;BS+ zb;PwJ5D~Y)-bUbd-jEYmw`xb3z8I=^q+;;s3^q;N64+zzs(d5>lc<1|f2K|3KD?vn8EJhRhiA+DHbZLd(i0 zfS!{SSSSrymL2DGUG7$#*s&F*Aeryn1T38S_Bi=>A**G%)DOba)Z5(!Fq2pVy@CCl-u1JD`#N!#aMrkCnHX zR_rH=LJ?|>giub;SUEgBLHT>(;{x#P|NA!`fW1{zTs(oxcm}kDDyD&(yX$;t;rd1N zEP20$*xof^C~m&6CEp&_{&r-${MLa62P4F-J^07d<6?dbd83$;u-EJDiO%YN1t@^) z)k&4K5uHgXjQJLphbdE$4F|bT1M=jmcrG4Z zifHr#^RM_t1q%fa;qQiq#(J~7J(x~s>M#0I(QKXvjJF`|Yms?1tQZSGVYHqXE8l}S z_l8;ccCI4Q1seO5mbD+_du9K(E$*~NI0isA6@_?*Ek7` zerhf$!>;D{LiG37wYmOWxDjv!=^?bfCok|~`D89VyHQ1%A!uO0e%gMvmh>NPr z@BL@2Tul>8Rd6JghJ$0Wbw{DUQQ3hI81=S5L+`+ZH2 zpdg-JeOgC`skB%{hXDz`c|YkNEB0?hELrs=z1%8#^SLN^E#LQR+jL15uHSLIe7JkN z63}SZ_f3t7dR<0MS+#h0AwCSx0CIxyfN}9fe=<+f1<>2FdH~I;Ek885@tXG()vj>g zr}aBng}-jZgLCwPncx-Me;fVlC3;|gT(3J^Jhy#s?5Z=S?fQ{!gt2x%TF(pGmb=$L z2?;n!?WXvks9lr$x_~6K4PcOQwmJS%y}<&;P>`r-=n|bUJ@P{tg8%b=TxLYgHVplI zg|%^>bd%wd%=S*6$>Kb-9Pfq5`x2S5>)zbt2J|NStadMHAtGmT#hf-G$bN=5aQ8mv zutIP^b}|Av2^BHAl#rH~Hd+3TgeIz5g@zC8m2qxU6XwxudH>q$tGtfG25iH94gx6n z0pcq1((a1%=LpBm_xBagsPX>Vr;VB76T7<$-3# z=C*sdb)N1j&X=bmb3LAJ!D9hc&Kufb6|mP!uKY#{0#8;`pIWO~u*iyv3rU3j~wG?ecpaQ0KtYh!@s_YbgrD@^gc zo)EVMS}Fi$;ESPiwdjY8?;kS4{C^)^wGSkrKXGj6Ww11FC<9?cKWG z_(Wa0oO#AB9>19(BkRQf)DMqPK!UBLP|w_;bw>U-^u=8)mvo%IRex)Lxbq_d*N^S@ zio_*m$A$R`Ap)<^{=Bfy{1~%3DM>rE8*X$uisA9*IT~#gVKI|%-1P&(g>@(6{FI;4 z5hlrhlClL02;hWoU{O!j{om{5-12lDOrFHQxW9hmPGBMcWS%AXM~@n+Wf8`u)ITNKAZ?Qu zr@Xsl6HZN9Lm5v@SA{?6h$Si`F2whvb8jV>eG_HxxO%KlS)MQ7-m@JL8E|e#3Af+? z!5=Hqswyz|`2zjp;04YfYp2?n>%{OjO}S))&ff0C<73)TpU|b)wfx~I`F zkcfwL;OmM1`+6u&;F{;j^-l6Q3^92Buq8GAMBHU$>`coizqhzmLi&~~tWV63?<_FN z_m|_AaQ21=*2O^RZ=WZ1F0RznZ;j_m{|?dLR0*+4e^F4P+w3|M4Vp>YLmov;0zvVW ze5C8@YcH^#UVH6P>1&?>NM_Tb5gAUb2f99^t%i^#S;*f(v*HTDfk!33ZqR`GAgn0t zV(mar2g3vQG$|n;yuD&n>c&Z;ehmPLIfFf~Zm1f97g%r0&G5SMo|i1Zu)Hs%0LSfH(&-IxK~)l^ne8KStV27^u`(iQozP75ZBs7(cJ zxlp^+$#|V?0^9)I^`TOb-;e(WOik~PtQmVhKvy#v-S3KbC@W18r>MiaXc+~-=|m7) z6UZqh#U$jCt`F_Xt_Xf$m=67s5Dv_Ywagh-Z2iS|{C>~8Uf@)@{F{nNga$gQagY;|2fLrxH z7Y=LZrJ#Ida+XBoe=dV6{+v8tC@%lyU=?X)$(W~`FG<_F6=P1%tF@p%lCXjl_!MG~ z^e!S|P-*D}tCApvO3_xeG@zQZtLX1E!EgU6Bo&~9KDqp>NR-1vNs7S?DsXg6%WRf| zDb>EDVB>>!277%)!ilTa{6HWjCt3wGSTld)E1I6i+K&m15v(XGYacn~e0IRimUkhF z^UJsAU$Onbphw|oCkO&{uHZqrYoCW|6&4j>M}{8#GN04;(1cYh0|)NJ>=wBNrm;E< zOAC8C(JcPV%d&LBfw!BCCf)?n*Z}?4ogL@Cw0gX%C}>zmBfKQ!CwiW94>Hm*y&j5b z#!N=94=e)H&wnT?Dk|$hFKTvY?|n)1n<4QlWYqE1l%CBhqY2~A)GK@r4VD@il@JE2 zaetdq9;cv{<+p#4vkCp4w?Er!%PuUX_3`v^#TntejNQ^^qjzqjr<$>2FSIb%;R1g7 zGF6XMx=s|d2Gl$9W1>{VU!{#?t$?6v_s*3ts%Eu6)<^=q4V1&lkmB%vq6%EImQ-^M z6sUsZ>VYtNtY>OM5i|Q3`aEM7hBo#LIH9(8{A~UOeZk|L4E(-G zvV492W;17>>7w=<^PP37;yxvR2}l|4q=4J13kU9JbFIQN#NNvDqnFz=v`kv-NAEZp z0Nn=*{dC<5iAL7#C*cQ4K!+LhZ#Fk;nIjG=*RLjv+;=eAEVK}!Pf|zMeu_G z+NC|qc)R$g2hXF(ZgHfJf1Mr<8#!G__*Dg{_h&t>4fhd=wg+qAPTE)_16|GdI+n0> z*>&~y#?yk&dLtd4zEdE}j8KJKjIOgkP25Dp+v56QIN_(j%Iqc>4!-MP_oTq_Rwi|U zX>Fc&jk8tzi<9gcu$kusD&+V2<3d-VQf=0+>Tli`LK*F_PvAGadI65lSL*S^e6$FG zkpv;x9@KxAaxCROep8N(jzbY*+E-V^Cfr$7OUIFt=-GB&`=0px(}8AKP=*`GRBOWX z_(O~>q$&$j;c?CX_cyx1V%`{YgEj|7QnW;mrG2adrAL8DbIeTWGF%<}CH`kT+1tq` z0}4ZUPtg4h`rfG6bQ4~*w0-5n$v~-1$Gl;5TuQd3GiH;i>*hb6jp=}5$>77=DPn<7 zd^}hNnIHI~*C;;e(QAc@zj9ziwmgt0K)@AP62YGZUrrHVPY8%}U74}aw|F)J^W6Ej z$|HvqR5Jp)KO%Q@3OBoP4A$_^R_H}~Lw_;=f?KiK%;MyDlG0oEo|s1j{CsYWV{?ZW9W^i*D6u*nGoQWU_uS0hm8M$lBx<`u{FOb#NaXF~f@H2Ce z8tOV@Xv9wEas2MULTZNIZ@OR^9hDUEFtsX5H0?h1V9UyjS-w!tK*a;4tLEeVC!i!n zYgo4h2SL3|Y$5>O!6Y_7Fx`HFnNfOf+9WacwDw!rNk3p75-qAdplGnO#GcxlhT3pX zv)%uZ&X!+mJEN+;VeR#lT0q@qdA-CGR$yZk6WOlmGjl|PQjAQbbtbI8WP!f>D_2&n zsR^R!FctXQ_{sw+tvZX0qG0g#p6Os~j5*88+TmCuXmPP}uDie{kBg6oFuUi=@YA8C z4SU?~pEb0b^=of^#v1+)tJnm{Sb!N+1JoF$sjCyxOB<@71@_PT!ROP4{n61p5ahu_ zB(T)eQ04KSFed6Ei5dJKtRhj zQ?HMWScazW*k4V!(W0H%?Q1P7>`M26ugST)&DYKF_|=!GQk?Q^|NW{K zl?fV}Fz4ex-w8+-y_uPriitIQP`Suq;>L4*D&=@)n#URS`R~ZK?b?kXJndHZw_gU= zQD9E@_7B+8^_1KWhhe7DQWt^!tNo&0t{_JF=RP*pFv||$X{*}&=eq@!zDT|iwuM^N z^oaX>`Kn&|Q?_`v{->F_x#M;7-@i&%W4u>kfT{5~-3F%FM3{W_*@1zf;YIZM`TwzW z&2gP|U-!wjZB4e#$+m4bS(9B;O*PrJZ8u@EZQJ$UexJAhzqgBX&fa_Nwf4&TB;jU- zI?Qw?m*+Dj54}In%cEuIRvP5clRc7LQ{IMlF;gpq9>V=T4$CkQ4gC%NryH0*=sijO$INGGXf7PI(|iDS^GC+0kqGemMv)N*I;+f%+L*XgwHOqbmF zP1x>{yYep`$3R+xuIGbvo=Bi<*Z|SUdfOToPvvpvwl)?JLlH{p<8x)O4MImzKvzOv zrB4_V*n&D+71fxKm68%OH!lje6!ggzd&Wl`wZI+z*Y%0brJR|ziZWWdoXYHp|1&qU z7CT0_WBRfk<2As6u_KTb`O4_LjfGCP2~!+zES_{Tk^2~i%gdB8Q*MH3X9>Ecc75dW zk9>sNRXCgLQ3GN#|1G6C9o>Vq4rIn{dO=~~S1W||+78l*Kc zi>~XijECnx*{PMKRbWY+A;0D9Z%H&Gj&hw2h^@V@oO)~r;pm@V?1y0K_n;~8%#Kox%;bH9DmMvOQt5?T;?LnC64%r!D09hZ)t@buuFHRYh_ zkmGYtPRb7lJ?e&qW&2>buYZ!ilOV%BtBv@rQoXMBw&sM>4_5m)E}kd#%-C|b%R%yb zfb_ODa0@;k*3&9!sRcz>@O4rz&E}-T`VO_q`svH_Kt3FWC&n!iQ4t8>8Zc}Gm{fb? zbMn71nA7R5*BHjvJ_7P-iTd8D)g)6QeeY`Y2)XGq?exIN5tFl}+NYaw z#u-3V=L3wt20GLK<3gxxmF&)O(=wYq!1{EyK-;<0F?(4u?wJ?mst*uCxZ4!g!i@!z zc^S$%;Ve{E4+NS#^q#v5MqrdjI`%O`nS3UQB4hLp*HCbsWM(cxe79;%{g`2eraXhk zLWlDGn_sK#CJgg*f?O42d=f4GWG&2Y?X%o+66Y`8$r!Mt-vDa(MjG6$>%-~~(UsAO z{hh?nb@KsxqZo|m(8BZg&_+OIuoW9^MqQ0X3V2f3_|?T>IdhE-6gkDwWlVb#pbWzM zpFV5fja>Y3&ucq*dwNWG3F` zDRDD3dVNAclx*3w*i(PGM;^hUZdMc`*%x?G$OmD2^)?-l#QZV72g<;GppOPkL1{Ao z%jycMrHyP#$ps2ZV?IQ8AJXI}cV0qCZ0e<5iv^&7vuYo|cOeVrJCgnrsVFAB}#0 z7zV)nksG(M^?mliWS^ZWKU}6_pu@;K4&N27vL*HVmii^Oe-ULzDl$=T9yaCx?;#2q zb|d4hN@{YXUxSE`0aS3g+)AITZ#*!iu8hh4^R-@T^dy{Y>Yd%|?j%T2nT52GgH;MY zt2|&c?tWiQvlftfF>2<)y}!K$zfX4ttv9q%nUHM_$p>aXYvBmr9mA|$@4??4FUeP( zxKD=ps!+G3(CZX2PyrM0b2kEjDK@9(qT=jB3Ta`dgdT8#1*-UNJpyg`J`&cEkrxZj ztou#VuHYRF6{t3m99vQ-D|WXlTPcg57@n5R_N4-`U zzCzB%pgyEGTxc-wJ?qdOu<8tN$^!;M0_8OS-1&rlZfY>@Y{r$1S$AA-+rI5yBRLHf za_;P9>&C2gG#P7jYqVzABD_`Y*>EzG1UGTx94*$P)v?rHEv2hmcaPQsnFrYN@pqp7 z$XW}duSX3b+um10@nLEul)Pkx&xdqOGv*aYyz0`~QCn*hzR^sdmQy4^^ zBjPW?2aiD&U}qIK%9AB3MWnQ1`UaJ^+tPXa*z?i zb()mVl&)tQ$SK~ zr-8Edocb~e#)I0G?-)-(#*a|lb<1u(p%YWV(C>6qTbyH)EnGs!IIrYj@|uH;GyYfF=o9~Tx8!BuB?g8vYj_7!rFgmzpgFZho` z_2nw+^iov)5QXa~NycefiHek;7K?p8`GPq5Tte^1$w_>|pJ>9&n}n?2p*xXG`e|HX z27mPeLG*6#7m4%TjDaP~5cCnQ8?fC;gE0c{HYh$Eb7kE`z`!^q{=@I7pXh(m52Qe znu#XYJ^$Oza9AG}^yo7%;{)kPt~kT$b*9*0*x$gL$bG|yqRst0U@nPVHeCRVbNz!j zGIC)%wbsN{wZr$di3iCe{inXv=t#eX!@EnmWKS#q1{*d!q+&-GY;_kW)+QZwAEU!F z6p!m=5HK49>$?)wzZmmjMuWVJv1vxE{CceFo&iR46W4B$48JR4)1vbZ8j6@qfT3xU z(ud?|kV8o1uN0dxkj3>mvR!42x0S-|+x~^x|2;fB%+JaBZ?;HIR6+t$T1KXEjVb!~ zR9z$9)q%w=v*!gaK37Ft>|IE|62=B({O`1wW&;m!xNZ+Ti_8{A*p&kke5Y=3#rVR) zLc`_A`Ie6Z|2&!E2W)``PKk3~&G#;>2r2LVzi~_#_i`y)`q&}@|0ox{sgENAB3dI7^64v}OU)>s({eS4$vgvV!Yt6xLOVm{$d>lxe zQXTF}u?NbZ8pff6mp~@+G-2J7TAu4&*R+X7$W1LI#^X`~RTSt<9?jywA&X%5d+qI} zCh#5#&;oTSk)ug-PxcHCW-!x!I!3tozv)V*)$-^6(V%RqS|#+WH~o73-tQNAaQoAl zfIehe$Mq=P+WWs^Ae8mx=<7{aigs0LTIFw~Q{lqo*T^WC9=Z>KefnX8dH)d7ukx`N zZfWr8oP7LyyI2pLpG5zlGI=p`T0Ho({Ei9M9=D>Xzv+kN1|5+RiaTpFp#J(-Yx_Y( zx^gTy;nMZogGV>3463QU(?8G2AAa#l7#Ae}L4%0z&G$z7VkdC9j^sN))7L%@fpzGX zU296O@8OOM={_zgQPx`6U<%N%mh2qK`OwRTWgOIZON_{zdUE9T|Nh>N`Hc^-JvCyg%ZjMqLUBrP@K!-5_O0t|bKU5GCM<^QTQ6A4OV@_x%fU!vpK z3>ou70Km(Y22II{Gw3+#V+agrD~{j!rOd}`4~mGx56|C@6&ZdA?EymB?Zk()W9$N+%1jLF~DVvK$EOm!#V1JT}-)7Z?9}4&BX7Cq??x>10U-3R*xT1CmkK=vh39F58$DKb1ywjpY#te3$yDb4ao_ar_j8Aqok-fbzk>jbF6m@Nq5pP;M@Lg7 zVkAuX;$~Bw?~1-Lgh-riH#$m_3efVN_9{Q~ew@o@_)kV0sisCmj#;A^y)k?~JbLQU zMRq*+CS<9F$8EN_B%)jufD3-J4)SXt`}fRlWrOF+er6$oW6UldG8~2{QFy9h!h7Hx8Yi3 zIEAJFj1c$hH>la`kGsO7*~Y||;-X^mW9W(*pJ3EPMHQ{s<7|bYa-@yOIa8vlw`Z-R ze++19>?obN>>qGo*{8-R4R)JE$IGNW2A{OR`sWk8MBaFAkP`4O-p)z%i_FbO5`Se_ zSJYFBc;RW+wElbb%0m6Q*LXV41BK}*xC5JwOzkh$uGIdt(w>^6pugf=kHk4o8u z-{~^Q*h;n^16V1wpC7N@tud~r3kZM*CSNE5-a+yg@?QcY={U&mkR$rqgw0-nBqH4X z?0G5X<5v}nBSMGSpHZ6VIF(&3>8B6L!2JsCN-ZUt7k)Poobz#l95I(CXCzo)(KMXI zc`3w{^fUSNP@CL!Zjq$V(gbAKpHbWPC5*AqhD^AqlDk(Ef0-_M|W zVTs_2+>L(2|MOXW51IQ>7^fou^IO0UDj z?cT#o1Y%O~jOp%lN21Bb+IqUyMDlCm33}A>Zp67|n9u_C0@Hk6& znK$)rFTCkf?Pkc(;3&``VzwbQU6$+%7+6N4{_)`{>Y~vjb;B<`y0q!KKlW3R{rgV06=`; zx}Q_|itTz+FE`ei+BKLY_}pH|J~#Kh;=<9tVI*7MNn74N0uJ(L!q*M0jsi4m|f ziH%oh5_?Z;(iQi!023tqpD&u35to?qzMXGzc}i~VMoias$RAI_?zPc#rWtN$AgP^g zxXt|cD3}%0*L2aDAzxn?H3D>EP&Z~190V+k}LEK0$+!H ze>N9Y_M~pV&lI}^GQ1dfXW~knhH`GQ;MW@Xqc_k3<3;6$Tadc1tz$C3EOo_I@E}8x zWP1+bx(0e?Bu%cizISDV`699*8I7Z zke|^mI`p`WqQDj?L25&9QtDO&3UqmoWrC*N?Mu|v_eZ?vWh_3-fhk3L#< zLulHdQ)=J8u7Kf;65H274z99j{8sGJp$s&ik|=Bzc3;9Mb9@0cCVxTmi~mX_kgKzW zlJXrrZc9?(|D?H=1EjTMigaQ;j9wK~2Cr@p<-*)6e| zwLV>~<2`p%1P64D|Mqwb_iZyF;>{2x2%%nJpy(@^u_oDlDG$`4{86UOTgWWXiFo%dkz zQodbm3cQK)5K=x`ejF%7q5v3H^_{|qO%L`VcYtJNIWI;k)SU&B+HMVkS;eM--v1LK3x8PO9Qo<}pxL;PgrG%4<{ zS6+Y6$keJ7BKo{~$Vf zu>hJcyh+No?%GN1XHOP&9L3gVwd{;@Kk)9BOtu<=i}4eJp!CyElCixp@59CWN=mCF z8iUKqtbG=}V%%zZY(IVky!?%vwsgZNTe2{lcYj!3p{}gx-5iz^uGZ(DCJ|g+lLt=1 zeZ}C#(OCiC_MAKc7^DvSsKdc8gqQisc=htuBwJXCkG1!rYonfeDCqD(5=fkVArbom zK){$wBoUn-I*~sK1QFP?lI!jqpuxeQpS*TIXejh^$@o4{gGD?&n#O2_FpBuRNt~5= zjHhz~k2Z_>A>XekCm8R`bZE@f*jql6rxcgEz<3T0S4MzVO*=+a4X>)0hf^bxf*ez} zo|A`oLDmx4U?!e>&fTdo`+1{RxNLua; zZtp>5VG45c#nQeHwwx;{X&-ia z-RHjn;#}Pmm)J>a)T40OC;m$A)w(eJh3j)boCBR(Z!uDi8vyqj54fO)heEszTBfCC zwr9lJ26i1kA_K#}VjED(skE5LlNt@{vr^ZN4=;FN3VHF6oD0Ma3{mVt{_1kdR<)$t z;Q4E2q-RwT%rXFafC!CdU+rq>Jchexc8%`y5o0 z^f{>DkX~8{(#mBc8<))&HmtyfI+YO*p54u9?|CQZqjIL!#6sw?>mmk9gT2%V)`#N4 z3y4O{Pz`+D=cWao42Ps;(;8K8z45*t@|R-)VOY#WkICgygQT~B{SaDq_2_V#yoEFJ zM$4|EkK=i(hjHZ+Is5yF%pf;o-0)iSWgoi+{BZZAAS~F!CrMV?dYd2jwg^`Fm@)Q3 zF)JxE-ZKaA??h3ul92nZK=_&L|MAfotd3p!YyzYdJa6(l2#3VXfVU3q4vX8Lm)jM+ zW75Q(q8zxb&YaVyktvQ67piZ^aSFLDlyDpGDe2SOR|Z>6-TV>Nn7+X>#*AANF7^^O zIEiT-{uD(MdO` z>}iy|{qSc3f#7-=QPLMyVR1Zcv8nkWa^J~SFdq-oAEEu^;MN=3>QfOLVoVL2uiR=k z+#W;a8 z#}Qtk+Xi?%7@)g6W@Q?In9Q*14vsOH+Uv)`OyokETA%@(?aVj*&WV_!Ti1T zS7WpPWeof6gGVfnz-dCuB)-y(9!s86^Hip91Z3SUgc}Hv3yAASPc|EPM7|L&Nas<# z{IH#W_|bq_$bdC+WZt1=?(%dh99R2IOM=+G;sYK!-sHaR?o^ zFu$ANbh*7=H0v(;l1))Wz*2O6bb z36OX4&2A5=Hil`!VuX4eX!URb4kt>)&~&*92x{W&)h1FCpWxHW{i%|=dXbaOS36%r z2@fO`@oGC}^cI+eW!cL2xUncDJ1$oIqqWVn-U!v4j)I3I{IWl=NKj75t@DLa)Q{Ro@)R)W_cy}D!*T^X<8mhPb za`brkb|jLXfGI>>2%i17i3Uc8^7QK2#$oHP`$jMCrEE_ak-`ua+U79$X!rYrN5}I4 zysGE#zkTV4y@xV`_2V5ra5)lPhWdZF@O<0cM68wb4X<)AXo4x zlF%2<=|o&~y4IWW!|!r4At5W|i)J|pg~BA~-+a|0DD~ zbK<-0>wj7Xc{Q0s@(Yv9_J)lUd|@K=bw!otA2%nVfs+~;w#Q$4#@rRmj2pB3PjB^b zS@|}!c2Oy;O%c`${|BV=*n#0>8|o7%{y8FPt{+d4-Jk>%cYEJ zBQIord!wWtT>xNE>(X)kL^Q)*E)QN2{+J|NP()6eloT6%W@{=f^&R&6=}`ES!uVX< zM1?9j1-O_8tF1MLtkb#Ph|oy+BLr%~pM;pbV2K-+_~5$<+t!k+o1Y4?jAX1T42V1L zFY&1l=O4KJm#4n3?!5(CVIJMwhkh|W z#(_hF%0LCN8pfo6@bEJl8*h`(emEtzV_&)$@>1^zg|4OFvhSeFzG0-CR2UyG&_x^m z+n@FB82>5J>pcaTEt?(NBV#D3%AQ>Se+w4wuV;Qg+}#bqNPh(6QU7dkrKfwIO4CF4 zeTgm>c<;=1AauXX^uAn+VBG}V@*u&e-a{5)?IiqIo$S6-(XBpWZ>LD)ySPaxyOya!(`*0ev--5fww8HPqhQOiFbmhvDbLpm$+I-bht^gj zj6IBQIF)XU$M8U`_i8ad%%r1$u>gv}A%uS3xlqX@67uNa@`y%~2fd&w0^Y4ie@e1# zQcE1%trJ+tFo&pIM*Qt<-3@DkX3fs9hI97F*WWD*{nL0B-mi>9T7zhKd+v5QBXOeTy zB;PLvz5_l^EfeF)g%s|_m6(-Y{Qgz1V`T$>W$w8|i8{LU5KL8L0~mJE>O}3@A7;`y zI2PLKL~HE5$I0&TOio!L80V!XEv!;O;=zwXyu~RluTFV)rmNW6L12&17lbddIPlAr z&rJ|PkY4i6R-G^b32A#~)|8SKn^}Wz@IIZ{u~G}qylpJddtw&us^uNqYWdGv@sFfU zr!#`n$Uw;oCWm1PSsViti!ipngQ$<`cq!s}xsbz&3+!hN=obg~{=NhRCu2i#Ti*;& z1i61nQ6#L9Lm!kOGj8>)AAA>~X5NVTCJC%ZX6KPMur#uEG4Z=Dcs5PhfmO17S>+I) z<1*WB=cr9t-UI9xq;hh>8yg7SIyBSG%s-2o2sXaCl-&ZWnqK_ryhaDD)O=b0tJt_S}00(8*Y8EqBM;t?+>8r&!55HTm_TxhgiRx#}572hY2-gtzMDoThG18py zQ+u0t#B0GJig@|!bpIhEL?=$d>(YBC77(zB!>uK?SZA_Vi^-<%wOuO$PCu}NLpIlx ze41;yD@@IRG_ZSEokKY*QZ&WjF}yDsa$`m^DrFI@hd_!zLw0B!Pnt%H9uJd55ZZkZ z7gU&rBdvBC$pczB^-BVwHev<8A(|k%H^L_Mq0=NwV=KT ze%yFJke18ohEC8T(SS&z?b+$G*RDd_AG@=?a-fYS@ahL#Xj%;XEXRU~u`&zGEQRGv zC;AO*bn53?CBFUeHzvp|Ci=(?r!E7*VH z>%Y}VeixI{HzNOuEe#k+u4Hn4W6^!|Mqqz{A!6;xuQu6*Nn$XK5DkmVx70ETA3T{> zn}Yhx!D3=&mS|jQthM`u&^%%r4tcNTs$YbveBsL1Pk)n=8I|y(LQ}O-#fJRN4VXc| zx$Ah`pQ!D_`62&ryMVJB!r0V6*s?i|Gs=1@_b>((97#ftl?FsY$f;T+)zI3(f@k-L zf6$^R*i(YeYv&MuX2OZ0Ga`1hcw#Bt-4d{h%0#cPLpi1E^yZ34R&-&O@_fEK9bdQ{ z9Ub)!2vTNf8A(Rc*}3ldEb9a+g}tFiC8oCbZVtO(z?_(j^)?2TEUJ)%6)-z3t>rqF zije^|m0&W28KEs=VGW4Rp#C9vsw1N=!A!n=lL1JzoI&Qr$fW3FT=wwF$<2#r7MsAm5Og_2}eC z=$9Rg_#bRU2sq)aU(lthXz!uXJ>e*{My0EuGDF$I+J8Xhytw*Wqbb;y+;y~ca-4?q zT2B0M*lp&-o9)+;abHZ(T|hywu2xC;$)ME6$7&vbIYTrC7(k^RkH%X_5u67k~H0V_kGU7=MDPc}a(mqXgG?;+AD}!aQUdwQyDxb&$=`x`h;)ySw}g94hGvXjv4Plz;(oo; zOY=neAA_Sv-;ij=rtD+}_r=}z9S z%oAL?8WTA=No*VoQucD#6An;9hc(2<_(N*FISdJ9Z!WH7lD$E_76U#gRfiDRXg(L5 zjKmOG1X|S#W*j^p)LQcbnv2P^KvpM~J-4D?SSM$NDU#>kXx`WWD zcFCn&>Tp^W6hwuGMUFT<*v#bxBW%Jjmb&gB@iW|J8oWu8O3e|vy`7F&YDjgz;Ti#R zT1G4`1CD2lZY}&3pufU0oHNt5WpPN&lE(-JTOZa{xsa$exLzv}VP|u=I-w|Tf_4dU zp#jU$pYH**8do1f1I#mfb!8?00FK)VX(lK}?Xv*d7FIjRs+aMiI|tI5`!fpcl9q@D zrEhsADlt$1#YNA-tJ<={<_*kia{oiC8*?)mslbVCR2%t9mCm^!}<{?48QxH%ZC_8Vj))6{4hs#erTk%1N;@KFvsq( z>1B@a4# zpU)Zo9EzR^>V#E%GjNxLS%+a(n!-4|h(76o=wW2B!n!38Em?dm9 z{NI@-2b=}YBjce79Hwc`9XO8J*;zG*k0!u?CSVg6cA+W~T{UbtpLiYzq#Kkjl0!1R z4n>pe5qZP564@PecbH#t@LtqtQo%C+?^DxsgkD^Py#s{hNW!G%V;zfEY{f^_P5P%t zD1H4TDd&$76XOjtMb)CWcYYzb$TeRPr8Y-_0t;v`VGvO8Jz;eoW!v#QP+oX1H?*c$ z`DqL@VqRJ}Qc<+M`gyTJpFkkEyi1KxG)%pS1{$YP zOU|W(!fh$t=Sh^}dP7F}nVk;6D>7EVM2oy~cczc2%Tpqwk*KA_ND+cNVNE4%k&Vlt zSm9X1=kHKZeubk_$kffI`8-Z{1hU5BbSpO2{GdIdWQ*r%m@2DL|T-S7V>fK+s@9PkdhtiqG;zTs5xBxzOF6uhWhUV zRSS(wTtW!q6fiAL3Q)U`XFVC}1qsgrsr9!kvVSWT2YOL)(taKSK^%M!f-GLyEx3*7 zXWSb2WZ}2INg=SbWp2gA3E_@S-=~)s(WyoZ>E-Z*D(!&Ms-n%A4`eBZ_FVJ7Z;oxxGc1b&_t|kQBhF>ZV85x#c7N`R-RDk4!M=( zVeGe*Mz1Fjmb^94ZI5S>#m$LZe#aQ<732LE_CUJA%(Z^V=nzD}E% za!VY^UG?zdPhAWXf8#?rSYXN6xa_}Ci3S0CtrH%GPfhJ;e>k!sL3RY`W*^C*r=dX0 z;vB?YtKgY{Z&cF&f1^_*7Za^A`cL#6X+qMRob=6&)Brw-Y(6Yzbo0Cu#)>&NT;6Oy zGZDd!Oh@y8{y>&H4;7t>jRkx&iJl6jw-;vYScYCy6USfhzWH(-x52B4;`UJWD5_#X$(KCg!u_364+`W9l_D9^$_58Pc&eT-AysCNvWn~d&!yh>Cmrbyh zxOW3j-)**(>&WZ0yaa}m;wDrE&U9E=>yS~=gGoeJ`s;)+SMC`8?sZdMc!Bqy>S9Z4 zun*^Z_qKSSW4OBAGrJtXM`JVV-X~Ru3H3m{Jt(S-_YUHHr@mA~bkl&`$wP#Uri zeH|#a-AXNCY-U9=$T=;SaA612DV|4+_yW(iS~=cW!8~pAiQ89!2CK=Y&4fT;_h>hjiO(WR_1RXD#tejOV)p2eQ zs|OltS8Kd(>@t>okqXPSa^G`)Q7dZWxmR~cbTcDtsjmE&&S4i^TFTAgu#xBUY$5bj z9T8Ys_b+)vNdK7|!kv<}lu07jm7@cBtIiD)r*F`_gN5WVFpm>gQD=$ZxpSSrBBhh? zywM@MgT=)z?KK>sn2+d?8eG97Ex{my{}h|20r_0yIyi=cvT-?b?A|O(1O@-vsrkq@ z(vDNBVAc9Bxe~Xa(+PiwpFC0ND)4iP9eOM=sFcZ6&}Xn9654n;tw_+4t>?>0 znYJ)8=vPdxr5x6r{6l^v(=pqb=P9`o%+fH z3}CIJgTb_;eY$nrB7#rTK_ORgeI6O;_4Gyx&NSUJbE;@UsscHd3{yk@#UEP>C))Nj zH00)2hy7zH^1yz|Y|3e5i0aDJO{g*BR8}o^PDp$KFIKR~H+w{MoL0$1zw$?L-!w$0 zwIpjHKnM0+z*OKL+{cldzNwT?S2}Z0J$krc@PS;RT;=IsqXI|I!SV_D5Gbdo$wicR zkGEj!GI*~86h%fi4cAMZw`_BH$SjU(2E;x`U*7nr&p0Rx1gpGaEC0m~ZAV55B{Tny#7> zcoGl{w;zPd7rGsMx>A-Wn6uJ`LVc#R^@`gq_Ocrog{PXUR)REW{;l0p9h^_tRnyE7 zR@Jm%(K-fXrT{!au!qSZKnWXnu@+Djhlyitqk3;ZM@$)_yDzkSt{HHGajMdsfyR+tw!o zyB80)Eqlp2C>|bX(7w@{v*z3o_9~c)8FYVadY+XMU*t-@3r_ zET$aahGaD3tf7YCA?oG^;=hYtu~hOh*q04U%)XTHTd@4mp`EVkH~;w7jX_qc?91l- zqd81g5-XNKeQStV^lionN7)npK_CJ1)t~FzUHi{mIoQ6TzN_7z-}6a}5NSeNv>ZbRCitq& zZ35A*WY+}!;CUAadb1GdDtLoCUptV0jYy1ENLUme_N>)HOJgbD z5=Dkz!7m{DKhjc=2Gk4V;R(#6`7Yd#wWC1SG%<0+dE$l19@=KT)b%oug|m(D{PvXH zDft*?he7#)hR?f z@#%eWA#10f1vI(h*`?0hzY=$u4UecN(z?Nn1fFaC|C;b!!S+piCL3un;XOKl8;#y9 zr}DYs@9Y{sAMj6Q@uPhO8F-)MdJgT0)R=pyL!ZG6hbHXXbWd&SyWfo4~SW1phEE3mXtVNQ^L8#S%_ys z3X>`5=;)2Cb3*ETn|H2iKWcU!OX4#F=lFcSz1)d$wI^-IRQQw{TmD(x6PtrIxnYj& z{zPBQBhqyRE#XCEPu76g3y}g{K+1XliMG^g!T5uqGf>hWv+v})oa5eKc+en7Jho%3 z!C(EnHSU-C_#Jo1qId2&n@`=y6_I&jm{k*N|9$Vy)YLbK1k;HlsTTKtyLUU9bL0F& zz}KHuPXx8Jndtu@D$ws>l17A#85NE1mWpjjmhNK!3m`x}{?Kl<9D9D=%=I!975@6* z41Y+a3S0NmQPdL9t+y{Uc?z(8tz`5q_(IiMuHu~WY(O<*KK724Z%-%teEPy$s$^DF z*z(=Cf~|rMF|j50(HNL{c=HPvert@+x^{m(Q3$l{OE#yZBl^G`Ie5L5#3Y|WL)+Op z+6#`D#mbY5O7n0Uhfaxo$`#RrGA%FO>Yb&f-V}qP_{NggCq&tBrUsnH)+3>$6gUyr z-=(At{j~svfythZTUwO`PL9Ys%h?m^LyOr?@BV*D)q1EeFVUehlf2);M`JVQ4s69L zNWS;j_%Fm)$|k@=oVhjxzPZihy13t6Zf1uG@VDoi)#p7?+1T}4_dDH9`<(%}r#B*g zZ&_1p8Ljjkp&FquCsP0Cj2c}FiDdIkrm6iXAhw92+nc)qJEF={;6dxqkC9;l-h zHes1X_fQ>!7%0ZRoKlLQCRIm%YG6Zs;+|AYMfINB!CjGlD&uePp_rd&jrio_DF#XX z3Q5t3+YKzheL*S@KD+W5=#>9i@z1b<7J5zB37KT&-=#b`J3GZyhifEJ`l?mFW$(>Z zmoLsA+_sw9`cJ;wM5KV#;PQmD?;HMiuczP*qKVh(k2#Vv z3ECed+ept1Wac`e7`}sjIG~dQ zEQ^6G%y+yx<5yQnn*R0=g?6!0JZ$*g$jUD2#rME?>OQ5c{1efrHUc_ECZsSTu;#W9 zsPp_#kzwLQjg4VhZYSWo1OJ3GvY8U><8i0KIrHRIRrN0F`6^83efMCYnpS%}ow7k-_9RCV#^J;-!=3LNj$DD-ZR0B@*T(VXSgnsiG+biBeVAZ?xFmK7&ld z(n2UvUmSdFn$5Lidb8i^X~E~-hkg4|6I)^>g3d$_RhvkcGzhAPz?s6$y&Qj%);A;% zCr})_6|95mg;-tE_6P2pD)U_oosj|Y{{hlKEx#6PXP-fiV|g?z{Z{>*9eD=__S`~+ z8m`c!6FMd+Tedi!?7x7}H+4dU;#~${x93gl+_oC|@61G}$|X^I)jiequg5LF5LlTR zLQ^bwdKVx-z%K;iq#scl=gOm$RcUJC1M8{ z7%>w5e#iO^A=T2tl{1I=amgwcur_ms`=z_6*`PVnQooI%AZfvK!@of;4R~ZZjWMmTJ}Vije4kw)Gb9 zW00v(30X-wtX|s!*w6vn-)xqo0wcC*s%YxvW@1gPSgf0~61ffp&u`qo{vUv2PFq>EwGVCl(ko`S-Dggon2>4cD zeQLJM2-f-X15fY3FN^hy>O?U$A=M1QquYRS%?hx{OlLIx`#@b?g!s4^Jbmh0CQUmcgT4FTg0$W=)0!Lp4Y>IUZIv&MhOwm{g8bv4sg(nnK_>28QF;WZ zU;pi*FM)sy`2Pg8s?cyGxKu}%`Bh;aqj+P(M&uhh=BUxBChEHALh&A(*AS^eCR0aD z(tDaw0slF4n)XLQ#AD0C_nmmZiyGZqBl_G?cs?eIeGlu8WuWykFT9S7LyDXRT*-(D zi^Qpsu7LM^Tw<|aUfO{pp1B_02@%-3{UTt|4K-9}z6K{eo}iM8BNW2UmjVO`_^F@< z4XHMC4Yc`YbebYYucf-sHIzbEON@*(eK^-|2q(B>-Oh*5wlsjTl@!4{W?^4oA$03j z72?$N@3O3%+yH9p=rW@3g_qBsqC{mAM*IzsnJR{+HgNvz5!RWjK`PbySC-qfXfm$` zoRlPAYl@;F*2FWvClG19hOV9z0ltZFtx}ZFB;5Cmgtklv;-g}2B~@Ytz+$esEwOgaPSuHF6w|=D37-7im0x> zMdhJgVU7@tUmpou1YmOSdMI0|25Qu-j&k{1z{6oUj$NOOw~h(F9OrNQ!^P2_`>_=u zK!AXs14O=4;k$bZhSn~J?#-V8iK_E4E*7+NP?7sC346t|Oax9)a5(-5U>(Vulk{XB5ggcltbu=^( ziNXEa;_jUr(ACj{NJP_=U&fpn)#ihTzlX12;Ov&nj0^<5d=3Ls5u`FPd~b)q&RK)o zfs}1+YK7D^dbI!nzc<97LeqTn@O>+kSwxfNupg^&F(eMj|Gbwx8F4rc_Ece@JJtDo4)-`OLJDm8}kmwmRaUKS#78 z6KbTP(zixID}5-^zOD9~G|1Yz+6eIT!?dAY@#NuckQ0{nLyN;eTnPKOUqsWM`BAET zJ~&!cgQ-SE^c&m@rY269yI>7;^|ToYPKUZ$4n!L2&}5xC?VzbCW`hm(Aaa)|(h%`; zpR480%FISqP8MkM;>?U}zLB5uZzgvHk)4%|40atkERW)ouxP!oVc5991M}z4$GCChR8JNNxBvlv12xQ))J&YcmWDrCHHNwIztMjR_?@xu;sXT4 zC{U$z5oBcM(c}vdAV9!R05x?H)QOO)e&-^G5zM!n)~P|A5!W}dI3fLZGkWCeP(wqE zz~_G0zWPs`Ke~sXui4T8_1ieJbSRLWlL=9lA)BQQ1cv;z>Cg37u>8VIb6YO>cd_8=F zqF`%j3fh<<7h+8bv~~4ar}M^1xc~tI1pFtUHBnia8OVGuE})~OA|&_hZ_1e)|UM&;Vhc;cas z^9P<{!Mee)FP?*=ZW|Er^g3qE7>+{+b~8dOfohDOpXk1i?!weU8|sYd2l*w!vQP%%A{BV~EF4-=?RUsGK_K7)1bhHuu{w0LL}8G2>5>m&HU*Z7$P<%8UvbF!;BF<@%Z6QH0fRd9Y#9A zp{NXTF>y$h6YYIVe636iK}*Ao_sw#73gnruQM`%{sx>!;wP`Ud9C;mwPHshv=rUS% zDTC$9{=|q;?J;=Z5YTR#GS>H##+_y(zb23p<)b{DofnD3@Vt5j#mZUX>HSy~bG1PZ zOKb2;#v$0PUAuKvMScs>=&=*0U%c;w3MF(Qm?#SPe*=;2hqs^L@@Wq|zWht4sX8@#HOjiNJ|YzHZ8{C4f8N_ z;y?`S-3k^KCg|L@A=EO{Ft%SO=o=V8-_#1)x_Z1ma$zq(fB*siClHA=xYj#5G7OuS z&&8wx?GYInf+`K|FnDGaG;7oz1Db7yzP2TTqVD1P{X=*e><4R;f(VK7$Hqfr@HF%) zObjg1yy{pKvaN`K(EG?1rNTUa7OK^A#)X}6cyQ-AVly8jQT-tn&RUCCf&LgaY%rt} zUD(^@hqg9x-AwM4id+tUZcxf(M&Q|BevWYmvc#eDWL9|Y^eKeLTto2+*0^{u0Oji& zvH0pZx!VU4H6u))J{3}0V6CDdx%1~NSZD8A7yZvq6o51MV!5NjZd6OlYFS_OPt zutrXc|40Lyk*-jk{M|ry-r9(diNe{#yRdcTA|%GYM&VK>sNJ$4%2g*MI+H;{Q9ZKmUO z=`_amX@eEB#zLl>gqHmZV$h`eFtHIKDPDn)@K^85`ekRcI+h^=HBm+OYbbJJpq9gU zVvaG(M~NyHV4!P(e5U1~0WG9wq#-UL1`egwP`^Vy)~D;?-nksipS=tZ0*|8ekg{me zrY>&YxP%@(+rjtoW9aJZa2xMTCWAjWWU0(ia#O3O&g8gUjwim4P{_psp#e#d=w(5s zBSMgWG>=oQT2MUjK_-3+5GhDk zq(O}lPcb9W*|an6M?j=0*FyxkBGVL07-5LTmmrs*<|Q0I5;SlK zdhUneog4CWRIS(SliFD&dCWmZMml6N9d^Y2v3~k}kUKd(UC)lc#W&IdW!6f5NznIa zq^Du+{K;6qXd3#Bo{lWmj(-QxpiW260I^Y#m^rd1`~K;89Ug*4oeQFQucGMEY6MzT zod|2=qIeK+4!!}GSYP`H`Z~r44E4eBtIOdVe3tz-LWeqYQQE07p1isW9~Lhl=n-_a zO`)f4jJ;>(!^?LcVp3kBbfJc5P<{{s!yX|qH3asB3}9uii-b^ZoY?yaS=ujPk}m^Q zt5t_f;W8M|zc+#cLQ$t)6J=RtFmjzm<|Q-$_(WjeNHv@4I+@jYxqISCzy%a7XNbqQ z5@2qv4O=H2oZ9{j>B(aJF?I|rEG&551gJbob+Z)aUk7RK8^PkhfhKdBE#ZTSHA{o?7gW_ zXL&|8w!a#vY}3-@m^rK`ysn;u*Q*Sq%9H=EISthT8m!4vlCW*%0_@qal%FqE#T@Mi zm4uyTQM9fy8=4wlnyP0SvW1r1F#)N>t(^3JVPF_gIaU^}iq+=sMO zCRa1nA(ExT#>@##D>3NclOK_MJyy*BIKkPW8(r(*g9&VNCgR;iWEYx z=JPRW!W5i2ehY(!jzOKejiIk^z{~7&%7~)SOu0;^i?JhzK;6_E`3sxE>tqsYwR!E?%h$oe0ernUyRW`rosE#T_*q4;b1R=->cWErwS18 zEEx)ZMStk8x$ zS1535|2Fh#T9uRULZuA(0?YApxCM;JGDGz%f7Wx~1dn0bl&Fpeb5+uYxt3r{eCd^O!zm6x`0AVdW)e^-s*@ zH?7b4SRm6ClEZOq&>0#Q2x|vD#6_hcF)<$c<~ex&P?`4f<;#7PoBdG6Mq7-Y*n1v3 zR_{llqWQ68>kKT|I0f@JP?(GbEUer+56wF^V3|NuvmY01U(*3`Q;pBS_k4C-4y3*()z1GQ&WSH=zILQb?erA^|7t3EsB+@h!-KT81u&% zL`O$s&6+iQYDg>=!_LkQ6DCZ+L+>XT)OH+Zj97vkc@%w=15ayAR{xIH8ir7{Wn1!=^5EbN|vK-s|NUU&Uo0$NgHe2xN;70(NX9-dMcN(qzNulsV3{M4)SMw z%B0}^=Sn1Ecw9V<``+%H)P65n{LOvKtG>g*(HTaj=2*9ID&k^ZbE5oJ;Qi3Y(?|oG zl;lJ_ynUSwf}Zl%f1jNCIKD0q*>`=QF8x1)29XBFhKz@};g6oJuwcRTxEJ!ha^L<6H~bF3&b&ApRT_Z;mK6{i8;gRj*=XFQ5R47YarZQ^c<~ZEi#~}iLn@<9 z`?@%PZVyHc?~4~NUa-M3*@tIyg~-PODNUX{@qtJy7TP)z1V2w=ZN!pgiUJQjVpwg^ zK-H>MRXO!{{4fGerYDK<$@p{PY8V*lVch&-a4uB{a@N5l#3izjgybYStZXeXe!);w zu3esurrvs{p!>-zz}UQ{mW`)guu#24$)Ic*&oOe~DJ9h<3zG5<|k`wxMqM<(U(AY*^p?v(B!qy7)2hvFNV z81Q>2ZF&Z}d}@u-L+Kz;yCqW+Jp&z>S(@;QO*ZicM*8oVn9yJPEuGt@tuN>g_3lKmcQ>KEB zPDo0K!l=RBFtA@&=;`PnMNW3K)B%53yZtqR)n@)&BO?QJ>)ICcrw)O$wG>Uu7sTV6 zSD~$Epq!pp$p!(R2H7#YlGd%Nsh=kbazY$3yU#Tfc@OyNZ|8}ih>y5_*(i$6? z>hfLo@+ygB+PZwBC6e2u>DJNHXYyW~?|Mq*LnbHWWs(-95y<7FuAUByXTapMaxg{P zaT}Q!a`TuEfu3t(ZpfdN7s@_C#_uz;RNiZDrF;&VoO~-3b}5a{{YP<=oda7|EBn>Y z1l4DWREw|u(xE(Id1qo_$n!04{uB8oWgU;hAk$`fq;J6bR)e>3+4mYU(q~{~$m72c zZ5_Q2<`aR+hx%z617~%8=qynkbzzCI@7!d?~O9 z%6K0Dy^HRpvZ8PLRiP=7AT2EwllynV$ZpNpfXM@mI~K+8c{R|vOD7C&wH1YJYC)>0 z%gC||dNo>sPW7ilkrRc>_t)XZliiSLsiRNR6=+{;Cag@HIB9NIYXn8Kg>r}Q-;h(1v_PW!a^cBX{N03 zx_BF-x=n?nqyl?pefG=>=v;RIJlwoFk)~&5uOs*QP%PN9*bxM{2e|%zUb1qGY0nWiyK#u;E$1gVQXuJ^o%Sn zplPSe?-jChSO<^=M$Syow^t`T@;Zvk2miwK-i=sY_vV6J@R;&>phc5Jf?IbRh?mcN zam({ECuMm-ze56F!28;H)M?U=kvS`nwwshQ5g|cvF;v6Kx#Ky}BhW&uThlEo; zu3}|F`E<+uf|5L|K;=itr!(-G_ZN;?2qOPy-TX4jWzQo^0HdO z>W3z)Kff9%FT-91qG#iBtnTeW>B=_vb9XZ|>QsacTy*f{#XTH2zYsAAZ_Q0!MfloKj;-aBQ&1C(y0_vLSEaS2vQ?p^R?rmOa zXlTOPs2J=_%OMk~NX~kRbi^aSMHQ4R(1ewdvR+VGIoVY~#~KTvo}&pxdKx6!*{I%8 zih<)A;r!NE>{#xF!>y1#!vkEMG(~V(;QRW2&^@#9d>fWAW7g z9&Ga)AtgQy(GdyIx0S>HQ38_U($TqdC;tAA;az6=9YN&r(DqaOxLKzLEb*$Hg+7El zr%5yYIy@S)MlHeoaVt=`SV1&ySC@xs^($gCBh8)b4&Nf(g&J1y1BU z=5-wAvGa5OSOz->D{jBuxNTijZ%_%lHylR$n*DIs>(QI^sPXh3!{Q22zv=#F@mIaCGx>#6<=( zvi|=ynEsw{DqfoZeRTUe|I0F1`Imw6`oS$vq^6{xWW_4VYplN@Sx!n1!fi&@#G1bN+2?7z!3nva@_Q>AccYN(8ZCM}I3AGxx#vL}e z7}%yJlZU?FgoKlaDDo6FV)|nKd-wXq+!271V1Ep1kg_z+8#fS>2X=&Aen$+RI1dvS zu1C3Qb+Pu(DHz8FA-vCGc|d-YDQ}2~6XeOscpVYOy=WvQ#&h|uB@?4Wxhj0I=Yw0< zIe8~go}{rnII(XF|Gjt9N=_7WL3wcT)Iok+qkaoM8$uw>_x{bR7*}Y;p7|Vgo3-b8 zSi4CZq{>q;p{_=N z+gJaIDs>v8W1rz4jQg{L@|qS~#zn`#(#DAKnWE6sm$CfHV0E39qa*__BCcV_sfqA< za1>`eH(>keKai*hgiFC%=vIFzy3}2a;)SXqAj%VK4-J6#qmy{@(i_{@JtsZ?gpq*> zYM1GUwl!v=WWffwA9Ms8jt+t6y+eqM34+JnLs)-wFnj{eprExYnpc^KvW1!=@byhB z-P;vj504`*F%pr{K{$4GIX0dg3N48?$`xsa;`!<#J(Ycjb_@p1ErBA%3ggBx1y1hs z#==c~(6YNL{@OAf?pO9<-t0ec?aD>I;8IOpgA;L*1~IX52nh0qO@4jc^9V&w>PA@ES#WLlKY@fGHOLK%c5tHIdt_$} z7~35(ZIVnm{Fw*0oW%SID_BFRhH1;kum&dL6(c4(4!s+XKwNA*6INMRvws02oi0d- zPhyoL2V?>g{4x}+EBE4NEG5bn#i$tr;8?_gzw?>T3-oC*idC)z9P{1*3ma3OUeZ)= zTDBYO7H&tEfo(8!QXlB(vqs2-GNtF#{tK8kj2c#X%vn2uH(2@(O2>d!e;|U9WCbJ7 zYxd8FYt_<7N=Rm%corWl_}qDdq@)y-sZgAoln~h_?ev9{*D$30L^e36j_E7M^1LC_ z6EZ0&s9B!p<>ph%U~FQ@(wL8gU}wOP4O?`8#abFie^>2__~cs;3C}e*=~C zjG40##7IvC*Wzf}s6LEXJC&!Vy&1g!r(lD6nT|eW`qmgapbubRjgEsRA?>~TE#U7U zQWg^#j&c3k;`!r;IQuYy6Is%ZlMJEjQy5vif7=Ty_nbk#f0fX^R4!1#XcIN5v@pTqvX)e4Hm60BJ;5qmc*$E?-6IKd{eNu=_Y=Ovzg z=MrVP$%{xt0|sEjaj5pSw5SctIg@`}EO0_T81y zv_nq}pSp;zVIWW|+QEqEn)#D3bJb4NY1)<#P&8N?g9DzSV=Wi7={^ucrz~J}N1e&` zEIyDSbDOhAc4Ov@i4S@%`5q{`~NW$o%)aB=}1mWfPtY2yC)g5M)bz@%V*#nlEv>kvU5EaO&-S0 znkX;z42|Cm%6=tKeSPWwnB`4fxYp8zo~|(?x4Nj^+8$}?DV&5;3DbZzE1eNmwH)qN zuztCr$Zu6f`4AN%+J%|fUujm{q#6qhWbEX zYK?@n5LjC{qO@ZZ6tbxV4Uuwy^fKZe9{8We6#iUc0FM4{SnacBr@(;__H zvtUo$^*@Qw=qHd!L`aF(fRA?!0-i*`IA0oCcB%?%gHlKc(Zk^*Cz$M)V#x4`u(8j_ z$~g_Uy}hw`Sw{?#VcWvHc={mvll{aG(SQ@7O-)H z$7gh4)G%I$z2@Y*Wcgy~*tZq$6yswPSV-if@h0u-qExwJxX4JV-@|8IWBvy0WwgWL z$~|+rra7IB)MYX$C-9Up)W8U~4%S$>c`6&3TXTQpiHsB%bk5Hjb_afa`ONi9V90oS z=-ouViP_af?F8s-RMsPV%2#X%-INi5GUoVbSa<;p`> zSC^g5f#35NDC+FO@+Om&Be{Be8yMAMonRV@mn?yyqsF6E=l+;FeKv+Ol1&~`XyYEz zq+h&v5p(9uL9=Gfux!~f6ev)D6LJCne>i;jFiMsx4Sj7fri>qk?p->tcB&0|S_W$; zY>=<6@!th{zeoc*Mz)aXTHyJeL$EN(VV%B$lL7&s1`%FzBj`{_)e-yL<3yG~vk39A zF}UV-66LGbfsI{3-q(Bzxr_GdHSd5S6X$XnOXWcuDiKKDlPmXJf9~Xwg%lx_7A~_@ za{Eg`1ipl8Wt1peiT5!njQl0W$8+1Y2Sm}LI1_bta5vA+6RQ?iz=U}Z=!tS zdBu(?ujsylg^Tg)VZlM%429A}gA3aDhRAoBiZu`%=+8}t$UKV%4e_y2eAdA>UqM*e zIq>(8@@3xG{`^^EW-W)6Z9eWHCm}A5Yj~ZCm1ct%<-ls=l38qU@OCDF%AC^EtV1vK z7&d{WHH*JT&%lW1NnU8l)LC8~*Gi4dkbwl8+!742 zNSo!8a^_CN@Ri<$ya^2e;_PD6IO2-Zf$-;i&DgGDJ=8J1)Pl#PhQ2Z&b$LMAbUi+$5K zT=>qzxgHs?+H2s zLtPjd8?uI=@&(H-6VW9tHX$M;k}n{oO7`NZGCjo^DK;=R;DR6*B&2C@QK?p0{yQ`% zf`9Ux^r+t3yhB6ffaJaOP})hr&^OU%&@rVuGc%hBaa|sVC+@xH@vLRX^nJPK$W$gQ zBm#-CNi5&k_n8`UZ9AE+q@|`aAuZ>oHAGlxz>y}WDNWUbe__y!!K)V`NM}T;R_$6` zL!F$Qf>1V)D^s={a#)?A1+#w(?AxH*Vx!RYr{(1tTLPT)A>Zl>!03DyZ!|eE0|r8q~+p!~5ZJ=>&!k=?gP6 zGbqwY?y!2oi0^+DsADIsla{VAv>EY^czFlscZ|Xd--~UC^F=G8bXfX3SG?bCva8_q^ zVQOy0we2)Gpde39;1ia(RCKl6Qrr;qNUW!L^p-jf#^bwsnY(ToGxm6xng zh4uZZ{C)zxm;6GLhMy1>5yG|G?|VpT(_T(HHN_0ki`ZKKD-yO%UtVDEtD2`uUg{AvCBU=6xMe_^63*^1%zNwyKxxOVFHGBoX7(m4{kq>jWDzM zg3=T@X%If|**`NV4^Qkr&q%cfY;0^`Wo3nvCr+Sf(Gr|E)8vZ=tA`&8bUiCm!322{ zTDR?hi|%)D{InZJjrjwI4cM?5{ec+J?~7(nm_dYuvuL4!$=I zvGW=bi?!Ha)^>mW=KDiI<{|l=igHru$w(U6V$ zBjw4D1es)z$;Q@|^RQ&<2+SDX1Eae&#gxIF5$NxyiuLV41e3^pg_`yG@AXS&@NL)g zE`}sfy(I0lNF-(?IUFOqHfH@nNp2w7_1ukDsJ%<2 zN>i1*AT7C(nQ|9HT40-+^7p=yTv@(<-}^YSV?DR=cP>?quNTOxy!$ml-%I%hHi%K0 zy``t+ps1@EidN6U`2zt6^i5-VD&cV`&uCGkCL1Jb>uca;q!-*DZD(XE1tp#8qi>@P zurPAuOx8#>lrfTD%UBOuZp>yHk^)3A%kZ|}rCq%^NQ5!zBi)GXB(UF$7EnW8oE zBGLnEj|{}oYx9wz7KQS~8lqF}KT)x0N7ODo0Bvi|L~*C`2#&ptz2~Q5`{@a|@pupC z2(?Q0LYF#=P@_aow5vG>g>7pfJ6!^86FCOWDh>O5`SAFP29EB&hPC@gqQ{7u7(b;K ztJhgDwa~`P$0;yzkh6M_jTcXq`-YHHhfjfJ%l8Lqc}W9HJw!%&CPD(kxTf-Rz)3fQ z1|z{l$lr&u3Mj$G$f~37hunro8fF?*e;CSie5yg_1$l9K^)eKrdrZg5*_&8FX290o z5@jp8pj7!{-2LL0f|5r`AniFV>a5$WIt%o-8vk9pX?2X9I|SqA4dvTq|37U1Pp%co z4!=l|!rW$?$nl{g$M|AP1rvUJN{p4=rvlYA>Nsdk!Ln5w(5z)gxL?18CQX~b)YKH4 zH*ZFvLWTJAixn%zHQ~E=@8&)~$z+9W#s&QRNJ>h=(4oVyZOdj9D^dVEwyr~!%H@$1 zM>esn!yviyUj;@8$iz)kB7=^B1yT~D@$AlN+;`u_j$cDls-tY=0=^1F$PA55QKpL0 zO_J|p{W3#gZcq#v z8JS2)O+bZ)#%S8j8JcQl@H(1^dGlu@PVEjl4|PR&a00X>`cT(Sf`W}hf*z-$W{p~W z*X>W?hY)b8&}5HXuSE_1`}pp&tN@g&`agu+LL$&K9zmf<|C^SYgFQPXS*f8gGdKRK zw!tgJd*q(KUv-K!CArsgZ2@V@_e1H)VbRE+Il;uth&_iN{v+sJ85voaJ7yUk-FdqK`=2jLa*VS&}~RNbQ_!}3~Gyx zeOt0}srgH;!hRn#BjN9>^b(NIAs^pzp77woLzF335wrk?WGmw}oMe-^(5HeL%g1y@ zDymeijz1<$!@!~A(XCr|{PD*h+&jwDsZ&v}UOjG}vTD^T?j>d3ym=^Iyf_XV5d4S# z%-FPP6SwUzU%n(}&zywz?P*Pih?|?x-~TqSK_HWv+PbFD(lLh5&13MpbsRC_{;d9z zIm)|k^8|by$bPzA&%ylo%=h}tb#+nwYz5)9b zvH>QttE+Fw`kgV{k9enkZ$rnvBhj|UV7{~HhsgKGx=`wa9i3fJ!nF!cF_KNW_RRMI zzee`qlsA^P_LNYB1ie6XR0OWGK^FNkCv%frGZAiYPWjHtnq)oQmlyOqDItL$lZKr9 zlYdRUu+3+SF>_Y1bSp5pT^)9Y_0bx?Zab#3r!t+iXanpE6oJQ?Kf!mLWDFT=fR3^Xe#Q zT?uWf&q4jN!w?*I2S+_;VZYlvB&EdRuHOahK05_BU+m&-qkYY}JYG5yaQ4S#CFW;I#L0#K~WwfOT0^FWCc%jAYz=dISgE79b%dn#X$`8-#t;_Jj6Q5Z19-|T|+S{lxSR_*Wv&G|MW>jK~#X& zmFIIWb`2Xf;G6$_3O|H^6Vg)C(4CP!!d>r2xb5|jH3AwHDT#P)AX60@b&&Z45nM;- z0{osAet~>pBAJ8af(RFB)bDuS=f52a*>iIe-V(n6X>tX(wa%-Rmr6Cc7Y#x~)>y~{ zhSKF&BtJhF@cb3Gsm{CTlSo}oX7-yM7##}PQ4RWJdWhV|$HsI2v5t_0)`e_ zlAy@=2mjMtK(Tkwt8zi3Q*$fUd9yr@iHhY5RLP4A>ye$O`EljS zm0@mfj=%m|i^k2{u(H*7BQzh*(^5Tc{<`gsW>=xLv&oQ%if4En5z! zPMt!ZK7BX=_wew5rKKg`U6ZCo+qG-Q(?D+Q1pGXB@ZbR}yE1t6=m9*gUO<;l9eJm! zP$=!Za|!N$5y+%OU8D(#RF}y@J%k3bG@e|6gx7(r!=nYnti#UR&;|S}kc@RIUW${% z@Q@%p_w&KdzmzWa$b$xvrEiT~%_|YuyowWAbf{}!#N?Qa|E8`i_c{@^%C;uvMPh8n`98#O4Hx(1$qyebC73~&{qN2yK#l8LsEiBnz4ly zXnXp^xL7>Cf14{pQsv3-1Tx!sKd*BKBBV^pn@_o*XB(MVz}7*@5gy*YhgUD2qIQ$k z+)p`~c$BYJ4+h4jxOe?3UOs!w<2e;81u4s8K7e3(V{UE37emsbP}-R3osEmwd&z~O z_m#8!r=@K^7T18?`{fENMQRqR)oacMA$<2s&&i(@ssPI-W}hx_2_gLOznD5@6kgdr{VA)k3^7Ox>jv^ose zq7B*eu3^imQCPCG3myd@f`NfPI@S6UEh|q$Ij1%l+2$B~UKPBSKg9aO1F`Si9PBtd z7SX8>QNY%jJ?98oRGx}~&32)fT|KDfh+t%?j&{TBFl1s2Y?%HOZhM2!sl{-#s5ub5 zhBsuKL4qn(s;E-_&-h^koQR}d0UNaH)`a`fo;7kYuDN;fkq{AIBC{j3?Y#eA*F`T=r3*MTE!poaL_ex(sTA{7&|qWPT}p@A+ZvpIey_ zNawpwl8eHpz5zJ6?F7GGr%5%|c$h$A-(YEHfzp*+aQ)&fmL?Cb*{7X3d3vN0oH=|6 z?&rO@hY{xzPF%o$3M6KTAm$SF(2#KMsfFAK(l>fu@Xlic{uY#{^vz+fB5?nvFJBZ& zB$Q+o2^UJw;EBBu8y%0MduT(V4DNA-TqBaH2JMQOn2?0nD5Y=JUmf%frw?9$woIE5 zWmj$aV%T5f_Ltz zDz}1fH8THAAhQ!qsSF~q6bUimcyjv`LjCVSLo8v}Xkj+1fFB?t0{#uiqednpkPA7H zUB7S|B140@R-9breQR6ptjrwlm4tBNIbR6BiD7g8sux|FYw(TX*Wh9 zihI{D$MLo>Y}MnU<*eV(=7C7!`D6PS@qEIse=pGDNm|rMyL2Ajv5vb^ z%muY8viTi2ZWfopM|N%CrhT+iBrSHOg`0GooD|P^K?LUj%KMZy-h}Iy&qAJ*#PWf5 zeSPccfgedPLD?hB8#@4|Y#=dc!W^Wqw0sTdT{PI}J#s1= zB(%lDTb|gsbQWJ6nrmwNDiv&otG@y`YpmY^$ zv>s}U<9lww^JEm{iR$bc&Gfz1hLZw<*49aNbMP$eB6gph2;Ud(NF%!r6$1Qwl8XwQ>5|7W^@G6r!>( zW66Pb@V_HRvEt5faB$%FeF~z{V<%3(c;5#VO6al&tImEW(1tU`$`nTM%P>~?eBpNN zD)+a2>68a9p16iHhc2-Sxsz+Vy9{W{2)i}ccv~~ld-0?@uAIFN|HlEicGe3QPr2jt zfeYBN<^al6E`h$Ix^VJL0+SjsX|#{+I?J`xLnrs)+Vi~N?&=u%+_&i%3{4F1Dj*c+ zj$Xz+??-SueieH*97cF>BpcCmK&{5rxC=u9rN=(M6;Cs5jPs18$Nl^bmVTC=Ll?1m z*={yqD2o1nbcK-_2~K5tXa?ZqJ~zHFbJ&zVZ_H*0L;{F#6Os10>xY;AuUMnhV8S#W z3&yWx&%MM(`ud28ibIcK9hiWo#h;9=vq0P1UpTIG!AQG5o<8UXQ%h4=+gk86)2x8! zrJK0I(n{Z!n3%%SqsG$i!Tp)UwJI)DT6iK`Gr3DmC1cC!ZbIb22hAU}$K7R;^ny;i-X>Cr{wS zv7>0xv>E#L?ThEnpCddxoO?>4(eT=}YdJwD+i)^_5b)n1A|ev*9@j8zaCc zLZ%){SFXuBL;;@nitUZI{0g*ABi9DlcRzH$Cw9{w+qtPjI_oI#;BmD|f3$w$u3;v81x5ZQ38-yM-qYZ*vmMeU%5l#I#{u zxh*@rQ=XEHLF1>heuvVkfvCtZ)*o$U?<|38^_z3^m5+h?FOqk={#wl5Sp?M^v|xGm zc3?tj*J6ZUmkn6l-A=yo>@jEpdtXu-U+n1MSOhn(x$*1wz1k9t z!zDIIq78FW+2CRPg0(2(Qkvz3(qkBfJJ+x91)xpZcjxN`^41r+PJ@7JXOAN|@Hr>m zls?MO3N`98PIC}f**mQ598j>R%irqSuLLR!`qs*|8gj2Y?&sX#dn*h!`3+%it;+^o zS?s(f3YE}Dct|v^pACjoWDNVlTCAK{UCJRTnEOwu@XCT5FT?I3B07l6NfU#&rc~q` zyr5Mj=*uh+6(4~6FHR#e`V}-qI@|~OP2Xd<`fwvMb5c;cKr^^FG(e*KHSYVLL1a`A zC)Os0ws`pL3a;JTfuN|H(9-bF}+KO`EuFw(c=J9pmnJ&nhK7g@n( z@`atH9Gb(&-yLx|_mG$tg0y5cxE*@N-4u81*in_zf5s0b;Jl$SqFJqO1vol8@J(rM zx!>c2lfvtWXeQ8_VeGsiDB8fQ-<{sdOTbH2D2BOfC$YwNgEa^*ZbwW6dBltX z=sC0l(rLA_N;^%RpOuXTD%UN~1hE|Fk6n42o~J?RIlL1_Ozi^;8}oP4lfu$N`5%0zOTS0Y(QR;BZl*(dNp{=z z1#J0-LifFWSQ?(QJb8sS-J3FDV9ejIr6oc2hLw2-arW?KCh%_I=&m#Hym%9V&x84{ zpY@to=h}99=C2AZnHEm$JIBiKCI$=~fO6%^!RxvwYeX?<*rW|>eS7!hn^p`NIusQuRNxv{@+m!G!UV*`#9-I1 zU3>wji;D~L=U19D3HWhHNJzlJg9lNwlo1=X=|EfGg2@=AH-!HpkZjOo||I z|HAS8eA{}8Lw3tESL}olBb!&x9_8;PZ7z`>(jHc;-wZ)7p0WOMFU}p^!#AlZUZx^O zOkaYVSKSaB9r+FcC!6TAhjyVx!`7^?t;9*?$3WkfmYRw^>zBgJ!UpwPbYKMb-I)Oz z$mU}tn+7ni0{l^|RCzS%&<6_Y=UD!dAMR@PnsKf7`J;Pr%i|&^&7K!ev2;J>>960a z)0+)*DBp>o=W{F!_wy&=|M&sV3vy>jKDTK>C&i;c<}LRasecvl3|6)d=ssi|e-CdP zOxQ~pk*B;QLf&`OR8F?v@j$|!K{L=*>NMr=KXYg&d)Gt$PFl2SX>E^LYj(r6N{u%& z+SGO_jh9a!X7L`PUC$xVH!^-_#)RU~z=rAy?Yi81#AIZ!@}fFGp6>sIB1Dk>}RtJJ`_fibX zRx7~zPL?k`>sY>0-m<{8;u<-O+=emv=7Zpf7qGV|2C;_HM2JYaseuEWY^%UP&kT=4 z-4GQ15HG^+AT<6StjyV9tI{+SV%JUd?NQjaI^#|n@Q-juV8kQ%2RvZMSCNt(fig}_ zP`C78*q9VU0jrA8mg(XNJuku+L1F&zd2s>0p{J40su)^VpTP$OZnxIM@0BMTaHeyU zW#3!T@Vy8zr^I~t&j zBa%hJE;%ukHyUGeW8RR6T)%JUMx;ttUzZhX7Wd)(K1jnH8We_Bm3pB<_0rgJehq(b zOk^A;uu_usu z59Kw9j0D=ih}}=7ExJa!Je~B7d7t?!g7R%tk7>Ak$^$oU+<>EFLHsdxEQ*${fd&nm zGQpPyF&p(#Ik2pRnC#HRr2SUstEZ_>QoH{eQ2ij`K`!I;bj29+$7Gy4eH3%&%toWe zjamN6(YIee*xTFlg`u=?lgN095+%6j6lZ5=)sqB#Zv+Mgp;PCM*u1DOl2X!<&$&8G zESwmTp#l02>ip<6tlcVI45}d^Iux;yfy#Q6mCj^}f~6-N+39JleP%G3$bP4%@_|Bj zRt7Rz$foo%fN(3 z{}AZ;hQ@jI36>-4%86=Yn<`l}Ocj*(E0>a*~@1BIDY+TDw;z7HaiWXeRdtqF1Q zyp89A%1E2>3>r(npXOf~lrLmfL_5Z|s$2v)teoq&bwrKkj=YZ0cZwK)(q#O`=T-#n zxTT<8+rlVVTpMa)CeuhG&Pyv7N<{;ed1k5>is!Eb*P>0JqxIIyh=0&+xIf;Ev~0$k zM4IfKYA9yY6qQS~RmD(({Diwd+5z8?GmHl)&6G+yv_j>gomg3^BB}5??iF@k9ter1 zHVm{aQNyJ#G)21DcX0|LV_!14OKTWK{ClO^BCMW#2XPS@cp3PDo1T6S{u2V87nFD+ zkyNig$KLKudE0dg;fR|?keDjIrpj|Ghf)J>oe293zkG$zoYODC+zXE$CZ@8bE zCxqN|5c&RCy7_admQiw992yM#KY+|nLSIE-WVgwX$7kS%w-*zJnHV-=1O|__V)EqYQ3plldt*2xYw*>mvh2K@6XO+WSbH23>E|e{(lZ8Z@7sOlOG?fcb~fc z0q}l+GYOLK-@7h6-?`t)lfEy>djao)e4W$m&eXx3xd~C3 z>egt~!5Id|QeXaT3-X4()DGoYJS$U2ghf4v`@?NW&rX1~ zxg(0$*2c3?54;M03>}Fji`N3Db}49B)UMy;B)aPgATdB^AAhnk>#49ZIW`HkvJ<9`TwO;Bv| zS)zHThFo*~HP8MQ>3JVtn~qN*_qkvA=${(2sPyiQM>w$M1iE(Zf{GO@GNKg-U%voU zt<`{yU^Q7g&f#V!G)NKUF+m|gOWFygeYZLrJu3$?@7R2QAdu;b63V=!j)4dEL!PF9 zo}NDH)Njnlk{S*iIE2fW&Y?}4wrJb7E$-jH&;3sqELf2H4PUZk2{(%%kn{ep83+jY zJjBN*@C}t()Gv#4HfSP(lNcAq%8qOljo6@!Y;akJOJ(ql18GYrWH2&Kw%+oT1okS@ zdeKH;Diag-o6_*VpBcGn{M>Z@=x=)azMnfEe`b*K zz}VCr6>HUJGBytGXFU<{BpOC$+T1Rjl!de?nS5~BatZo|`l#sK4&|LX!P3YH1+6N=P|qCksf;fKTtrlCC>{lz!>ibvsOZuX zB?~q~Y*G-e-rtTj%eEmoMuhxDOnI%)))nLS6-K zH$|=;8|?%s;MWC}$UFpFV*R8xb4m8!|HUc^VAH(Rl+WQvS)n$U2|- z_=tR_=}Ox1v}Wyk82-mpc zja5BG!1o4~Aq{wzPOfr)04mOkbp$2pM3)t4?lxUmv$2;law45fD#ogQM;WDEDEY)>C}@rv?2t$ zItGx+Gs;R@{k+}-(dRfG(9>h{LyokOEEgcDZHdqNW{erk~e<`-_Ux`^G4zajW zl&NY9sg?+7@(iq->5Vls}v(JZvIfd zXj8zi2b#%iH!FJE#qlvl4_;nAZIfB*pk{+~gf zU#J^y+My>7dibHROIe)S{RH!epGQ)Hf|F~SRnADy=AKfDmp8}w71d$r5QpKd_TuvX zXe7pD^L22vdnOaBAl;X8CYs%=k%f@N8(49uC+_;4MQU0y-0$zj`V#|@kQoRE^Rj4D zbv7KWDY z@~8bZ{=)_Q_n^hFw1t10D!tLUQ)dhsJP7vocIeu@FUC#(6Q-u-P|MC{jg-axgbg@% zO{fwE>ZA_;AVH$3Nj2UOX~8fpVkJ|xyf)wpHn_`T^(li)QnIo@RV$08Gg;8nH^HHO z+i>a3KDfDE;2Q=FA3mIGz~|4O&o$yda;o)rL#_?@)};dwmncW%>jXIDvx6EV$vJ9N zCnT&+h#}K6hJld{Br<(=PV=j#qxlqTRtBpJ>D+9D2K{7Kl9f&8$hMmWvhmJL2kpQ| z_T5>Tf(^I;0RsL%A(3h!B{>m0)-1%%waeI0S6yXv=46j^5cSz1z}-f0bgHV zs52sEWo^d^@K=Ee0n(7t$o*~j5F!73ki9N>GI;*X7cH7MM^I1@uY;6ka#!f@@6R`h z5%B#%1Gl>m{V{a>QcRiq7cU2?RKmwxqh6cBsNcmBX_+xNd%zb5);xhcP7^wMWWvHkDif^SbQBtl z;HyDHO95KSBg!;@wuXi3%}NxotOO%1C+?{yI_(L{7Hx#OrH4Q)lELl%GR&Gg4d?be z=R0%u9$yLNYv#jU_YiFQ^9FV-zllN)E;w}P5YC)A{jbS4;kPE>0)BmvYsLfHj>E** z1a@|Iu(7ehz5@qPu~K!ewfr~AWF_BLvZjAazH>qD$IhQVf~L)y;o`-M++Qg9pruWF z;^N}avu96LOab2$}+;TX*{BgqpTZBlM^+rp-xXrW`latXlJo_tOBxoSWQ&ESbzWl0)AuAg7cK5 zL{z9=5A!zc#gNGh5FVI}&5Y!(pW^{VN(N-QWd5f#6;4e_=Lvb zWn2vIkJn+>(WMyEeG4*D#c0;G7#g;BhEyuTvI&>5YT8x!-H*h~nX}-1(+jOywc^$j z-vR;w7x2r18XC=B_&s((tEr&6U#{I7uT3tG5qsIQAN2bZ8}!>YJ`^8so#>V@^2 z_9H1p4vD7tO}WzmjQkXnSqSZ@sz^&wZm7Y|QI()TrXcd<1f-=Tf$Y4=BM$di!UR7B zGJ{ga6d*u=00HEGUMkZ@mjR=3?olMlRjZGCo?)2O^Az^3xr5|{G}dR5azm*wp@omy zdJ+^XXNsY7T;WnvjHT1}Vp_MW@bO4PQd}m~azu=bYe0kDry&+0Qxt<2QEpg$xHpb^ z%m%dMP`7M8 z4KQ`i3QU=?9M4~d^3ANYw4|Jbb0SXv(J>t`@=fmkGSg`@6g9rUk~YyHO*awm_XBqw z$YKhbZ~+1Y2vCA%2}v7Hw&CjzpT+Dodr+cWRd}2U#Eb#wasAv&B*e%emZ(Er#E5ui z7Pk{mNm9Vx(GY`Xl|$2h7Vx;{iJi;u;=;Z#c%2Kz>!55%#4>2fBv2P;!^l*IvPJ8o zcJUF2ONzwY&8@I|+i{%R8weW*Lkyi&4Y~$mTssqhc_Yr?=(hWCbu9-kuj|;pW7{_; z-nkG6xPV_4TH0FJzxgQC)kG*;wk#*F8#iu1hc3O5lJfW6PrnXI+C+gXL%$MqD`~(l zoI8P*En9F;C*&@X?7wMOOmaO~y?S-%>gpZ3TMlrQguGNm0+uR%SWICB{V3YWxrw@Xa; z>q9Ejg{D-C*R{8mgLa_J;`Q;L1B>%-E0O>KUkKXH{ae|r{wUD4^^|S_zZcTvDG+OD zqF##*SiJ2R#?4!cn8+Ns9rDM*(U)*!(*tBEGWjMrw2>YYzT5+uJUJcOIuf{4ut3e0 z_9$IPhSD{4;rHYzHZ4DcEBChJ@Rg;QFklm+LbFk`xg(l%Edr^w2DUD~iRBZo;PLI( zm^yVDZr%1q-@bjhIqUbvPuD6xn=t)eeDfcXnUTdtgBhw{|KA`tf)c4F662FFZ`>-x zM<>FyoGTaDWKytU{YJED;EH31c5&NkO-=G_@fDSY-IHs-`zGX&2J`DG9;M^@)r+WE zy&Bhcli%+$Wy)|f6k1hH+tZgTS56iCr+#x-c`d#q8O05%4kyjhnV+RYC(z zn>5CiOP9D!APuTWvrU~q?(UVJ3d$WU1qk>t5V1P?!p{c@aj}0R;kl+&x#35F`^V?X zkq^@klI39`LGXX_h_x|+g#T_JIZ5{6I=Z@O)~OdfUnXPj`u#98w8Pa?L73Xx4IAg( zKvY;VBi}i!j+1$c8nUuTrju!44!0GzDQL(DxjBMDpWwx-JD5N861t5jkGB0>U}mX} zD<_^~Y{!%EzVHf7nlwdxd^~q8NPCI=DEu@8oCE+F&(l`Tq}`-O_(3o^p`pRzFv0Sx zjq1M#sPbJr>5k!DrtsY$DewL-!OC4rCglT-!`n}xeT_cY_16JZs#KYs*TVYs>u}`A zVN|PL9ry0tLs-B=ESxotn|#Q$wHcwJ?dVm{`UHrak)LnURlXD0|M+=2_ySPhM!x1B zKDdkW<;rqzCjkKgC{dyWLPA2g3qm5}W@cupJKhCdzjo~!=FXkV%~bN|&yN)=R`7d? z!2gb*JefCd9^Xxrw(noGXc0U;J-Ip0=Yql(5&a7&&1f4zj^eNWcT+q$`k; z7!7+H6U>@6iPf|6Tt=Ndbs9Bm*G2UjwGbK_%H_k(ibWeTe+NvK}0IZi)d3F1&%;SA+37G?~>S+Sf(I>bFuJlVXw<+Y?u$-7~dyC9uw?i+diSSUuGf zhd213M49q9fBqa!oH!1BeSOuNe;h=k$4;Dn@xBi#l+a}jLUr~(01?O4b2j17_LJ~` z{1SzW7l4!zF51i@FUZx`;s49}Vm} z@h9bPB~d4@7d)`vwCN6+98k5S>uTy62nu`w--kERpnhFEdE&=+ylm5^4cC5Oy?T{z zO;3b8FRomd1y)8bjQq#&0YHlu&0uC~3K1LJ$&=!9E5v66`i};3 zZ%tFEUMhd*(U#LWx}L*+vt#yy$KeY)*>(ODb}V9b_Em%&37L8*UAZP-94g@V2G?k_ zy0&xeVm$M`j|mIcbD~T2iA*~dPZB12L+;np*hLeD_L zZN=lG(-0M`K+$q0a6cP>SN@4Ov)2zA>PB#>(;jPAuRzrbWmIqZ@%Slr!lVXD1gME? zS42lBHCTfu^hEce9gsndQk5){DKu@ha`p!7UVj7|Pb@=;vPF=t_&W0oBHy<>?z4hT zN6B)|oaB9}cJsf6rc{h=EB0a4+|5|LbvkM^tjxaW-@D)Y89*}}I(jn1$0lL!n58&# z_!2)qZR#|%Yu}Fh{Z33wRTuqlS%moq6!!A*Rikg=#hG zVf47kOu}a{a+Af0cix>amD8g96`uu8z8L{xZJr5;kMD#j(vae!+Zo*UJcsGir(^2W zsi;z=3L|hWc<}c2Mrvv*{{|xFt5&UIB=Im_zkZFRq>t}vNLura8#i)ujLhGpgQ7Ab zt-qzErRvOwL5o>!ZEaD%etircJQxKE6yWDWL&MOnU0ZBf(jN)QsW3Fl5BowD@$mLJ zoH~0M8#W(8szQO%C5pk?#u~GxPlSz)9nx8uYD%<_&B{46ER2^I?YK&AFlD-ih=~Z~ z&;Jq-(GYgR6!1MjN~PGSNc3%46&0%0#~*W6^7_VlP_D$PUD%NQ{;<+XTSpIT4qigR z!o|2Lz`p^_5NT=2uyyqU{I!6|-jAT?kO}BNZWiAqkwApKW6e_RJ49Hr{RDSc_pJs5 z0)B0f2@{!gQvVwn7L2Dp_poQ(3i#Z+&aZ1}1GWW?P^o@C7#VBB^K>K(OvE^MNV#EO zn{ETqb!e ze=XRIZL1Do%jp#;R?6wC2{^sOQBnam4p!KBbP3m{ljHYa3IC4-oJbb=@TA2Sd$%0J ziW%$q`9_TzW66@moOtJT3zU$Mz=A{`Teoh_T@m)^(SvKc|A}x5_0!{IL3|70sne!l)55+;Oi>UWfmouALM0m^ zFu;d}r`WdR5Dp)AW98%sfByh9Z{7rRX3l_tp&|6ybEtl%vq2vX{D{Qp>Kh|6G=RP3 z%j73*(nFeWfq)D6)*x;7=|ej(?~neNx@-&THt&G+v{X)BNY2$SW(EUeQ|vr{2PPI~ ztR4d~Y{0*LyfiCdBtv=ncq!y^}m5? z!u{s}kri!SEll`xI9`WGWBZx|+z;=Ug2+6%sFSfkrY$;p+JCc+CbI^K%C?Mbi)mq> zM54(G^6iRoI;W$n%>~x`ppm(@u8f<2dHkJ-HQ z_vpxYnn-g&W;v8bO7n-(l^3*Nk={f3@T)+=@{P2)=Z{@QyXt*7`L0~KG7cO#fSo&c zaLwlXc}2EcIyyT1K3W_{-bHrr+KpbldST0!Em*yJ4L9EyGv*H*KXw$G|5}2%bEe|v zO>f9#EN|KKvKU#;Vm$(xk9>Au@jqn~PUV)!1VhNH7bsPx4B!2-RH;%hFff3Rj}O=2 zlO~(YO^76ZDah1<1|7dsAoq=53aS(2YyITO6MVqV+YbH52J}R7pWQnPQxh{dyHsRE zy+6i|8Ni#aoxLr*y>Fpxg(?_7aT2y{-+?RFuCa0_k0wg<5bgzqelvp1J)L}J_*Ko` z1pNFU`|g`p++byw56&fA*?{fuGh}>6!sJ9G#U~>%E}nY@8a#0x8nx}pukYEgjBBs+ zf;8G>ORl45pz51+*?lr4*?td1jBZ>x$Dc#bK5*>`9Gy!*o|K4$_;@5I#>3Ry3d?t& z!Rq}Nkr4ZqU}v$xt!;isejFU|oNMAg)!zyD{XnKkinKIVmlBw~RzsITqjC7UFAli- zV9H@0I`kE!sv zdIY*h=k4%W!X$OIYZ zhXjW4xNWQU;phLDGnkQW852rbOlVoKf-=IT)1J8Pejg*J_vd6bmuQjTi41*>-Rlpd zMdwB+;AGFAn+qac=Z;*)i>EI!a9mHa)Z~f+x{t0sy!{y7SMMPBWf<4ITH9NqU9aXa zFw$ccn$0;c(oLmzj-@JJ`cEKD`sB%zIhp?!n-2X7AXz~sC=D7kP@VZW zXs}kdZe4DMQn6x16fa&JF)^`d-ny-a9smKY&d!iMkW@Vj1wrH=Y`Yw zqjyV~S=r*;gI9=+R%)e5%P41r{oW0C-1fYLgt!=XPLsW(E^0Pu%?GTxcHHzHT5LIg z>_A*Ta~P8rZ9uaQy^x%gz^}gxWt+~(vvz@qJ}tf*+Nl9_8QGt|em^Jr!k|^a=YYKD zXiBAw8>S(RaR41%eb&!18Omfdt@TPwNyUM4*Rf+lYt*HHcgQ*H-+Tmf z$F6`wAv>I6Bs?yLjc`6ez)52r9`YKqM=xOn_b%5$+vT^$Gv5GCbjQsfhK_w&;B`ba zCJ&wuuS>W2eeYx8mT73*rVb_znujAhPGil11t?#w^c&L-+LU9}yiM4&bT`bcOyM4I z98oIUbs~ZBY!ES|!vxOCcDSu&{bUY*Kc#aeyKn!-V?1tNkhXmGnhA_RS7IF~?XIW% z9(OlyjO;oE2d-_v)>Zp)iVZ9Xv;cMaj@i&P)WMczd)^`7v|E&dy=&sYxs0rPq3fVF z7%{E?PidM$odwMRB*Z0R`Hb~Ayz3+*7r=-SBlrSCXJ_X(iwvpp5LqSLXd>K1I!PcC zc_ot+LqkKZ=_Jr~BJ6aX?kBG!Cr+He-o1OdjW`i9GF`cK^CqTDn~tf|W}`!=Hf+$6 z!OaW)Nvr)KQ0K!n=;R714*@6dE2mBzgU7|=Sh;c~Um!~6C-e=Zp$`fQ;$Bhmg1(U! z`H^inEyAQN>pz65j0n=g)9NQ+(RV6ZcWunCubH=*kD3T%29lJR%-#{qe@BKzA@o%Qe?Nh2m+yGo$MeT8QL}MX zPROYekY|!*v(|I+-Fswbcm#U_c{)eU7=TQg%6^Y1k|vo5(;}AM~|qG`9Lp|5$Oz8Zl4p=<}gxB#F(_xUlfRtP#yocZ2LRDY;Y*x_X71f z;UPi%SXWOU+PeDh$kC61*q4K_L|ZV{L-I4r+oFg(9@$upPxTVN697GZDeY}e@DL# zXWG_8--VhkD&h)Q^+d26o?YOCh(&0M!($+WDgQ1B& z8_DZKLsJ9k=@}^OqO?IvlPeGv8Oz^KUNhq261iyzxAA81_YL6bC6LB7=%sQYX~}X$ zsZZzTAnxbAaA@mEI2Lihm{|j%#-5ePo|Bl6!~|VcbQ{uv-?MJvHg1ca3nFWT_}B!j z+&dQ)s+ZxWD3mtR#OD>Pls*!ElLyY{t{Quf=!hW`dLu46UKQi#01I<|tXUH)SFOa-rAs+s+p=XdCX6481+yn%>Eb{6PL(v}N=<}_ z_~!(r4S6<=w|N?KYz}BfOqNAMRoPxfe+%?KaxYKDT#=Qd)4ZTRz;>C>;9a|`jIGfA2J^GTC|5eIf?bH@%$NmMomQt z*DCCHEZmOn;c}Bq@1i2Z`E%&Gq`3Mr$qFMtM{wh!)-~zr0s9uFd#iFpiiR#RM zho6#w6VlQYC|arzT&tAiCM0ghu5c~$hng{UnB*h!uw`uYUK$}m;dtr)ichPN5P1GL z0RAlW8Kvy-kL@|j2{;KEx{ruu(NcvO+0M^9aeAiLWu>{xgoVSocAefu+?jkw)3;V{ zP!YBcR=9fhI#T6ne-l_OJ2yn-+U5AYq)n&q%S*lqB&_ytK8h=6Jke)lXP&-PmM`ze z`>#OdV88}CK6jsD#)yR&)@c&L0;8~a@nRf0e29}wvIQg!Fln@{tgN`^n(VoWc<0)B z(>WsPw2eFMT1CecatS(-R5J0P=a9CX;*lu={UtI^rY9XccEpm!OZfTq>(^t-lqs;Y zwZo=OTeuJC^=p=4-kh08k*BifXz?=qRLCXaO270_~=KLxN#L`a_YD%m_3s!X%}E(swui`-LHkG=pE%Mt_d>Ea2yarly$n0Y|vmNa>2z zxJk(Spni;OxL3{|hq+@1VZr!;m^G?5CJboLcg-9=busIY3bOi{&26zy?qzb(%o5Ez z_hG+Ty(c-x>MSjSBU|r2Bd74^dR#oiu4O7`l2q%WXn^@Opjk+nOoty6(H9`#TYyZP z;*;gDG}Kj{`S0-45^!qVL^Ov@>CJy1+kF-(NvYh#;(ZXYBMmXvTCooC@@Ws8K6DXh zk6h+~{70WVas>(TN*|-)p;4U7e+qI|NL>fE<>njLFW*uM64v)Uee@jWR%YnfrzMX^ zzY`LYI0=u6h=tFcC$M8=T1Q`pe}_V@fSeIIf}TEYc=Ya69Fcz$Gb8SCg%A-I#Ybs* zL4yI(;{Fqv-m&%o=8ju|f`#*8@WftRXpsQ@uR-NQcHU%8vuM&<^k_7c4XCc7Q>RXF zyKo*od-mktM#MB%<4+(0O@f}TktqQMBIuL{c})w*2AYUCnVk^nC6H#E%v0z*-A|x< zOiWDpHFEbyix}^fmj7nkThf42e*BIgPclCQtgi6^ z6}3ASG8A&e$3$TA_|Zsab%<}2!#KLqoP;#u8GuchbE%Ija zexH)TWM}@uMftHJP0rdyA|JSt>?Ux#bN25`L4yR6p#lVaD^R^mOiqQqmK0jj4|}lt zk@#r|IDz~)7j|(%-_c$0h>_ZTo7kwHn`gY&n5hF~og`&0^$qb zoW~bbrXY--5KZmw|nCy-~8;$@5Q1YRAxWACH5*js zrZ`crW8wG6pPSbFm!R^X8Hh|qFi!40kMed6v1P>`lyfbIyLazm>(;GYJ4^(bLU?#M zUo1%`C1j>SCL~c&QJh$lM+*u>q9YR!lAAoUl@8Jxd^Y_-Y0ddK;@ zICVD!$8NsFdEY3k+;a|Pv-H#R1PJ(6AhXce#AH|)$sqZN3+W$;pPGOZ-y|W@pmi;nTbp9t z;+>GEe83i*#mgOWYchiVB+&y;<=62f#p6wQoaBy&aaZ9Hc!Ga*E+PIWP#hw3joa3N z$HiNS2#w^LZgOu(3q(cioyAHOMw&bgXAfOs1YE-11X|jdqiE^E$Vh+d9x<0Z$Gwhw zN6X8>4U7vtiEb9`}NQnJ#7 zhTI_1yN(|}&foq1*7E}Xdq`QmdhzlVcJDdNT^7<-*xYY7*?Z>+G|jH`{jD?~p~aL+ z@BJrFq?r%jXdv8};{o`x7A3nYh?! ze*8Y^7a-tkKr=dV2`R8P))5H!=YVWyZSz^9MW=?y&dkET&BwT=IWMSjYU^mT&X6@) zMtTEZ1S2LY4$+aZ?}Zq|M#cY)e3L+-g_-Yzgb-=NT*^8#Qk8`lPXgiZ`vMvw5z19B z%{Am?YC@Xk*OAc(4}FcB*X}`EPX-GsQ|0KLy^0of(!hWa&C>P0ARcVNXs@<^-HH*hG-&IYf-}YKbYY{>R>V07g-Car}R|n%;XzLP#JX)X;kg z9qC071OY{)NL4^Vz}{&pABqj6_uhN&0TKv=g!JCq^}BE0-bE2niUrDZ{NHjHxtTFE*)f5rdJZyB;?D!D{VtUobpq7)ES`9R6dnm7P^nt)AkfWh3+-7 zxWD$=YgoK!v5>xW>HqM_C!e53jbQw5$r7|}*%&K-`37HnI#2ix^hnk;iO-)Gu~ddr z$B!YbemxWx6bRP+(9lrf`Du7oPTd=2P*l91b1R(1}) zUi>SLU5~|=|NB9>##A*3;`+V|6V7Z~lO>yk^u6mJb|E27g8t8S6NmGtko8%iFx797 zm(H*{&(!w(6*3mkOss4X?!Ui^T&kmOZ0&?Hbvg}7iV9fW`)4;$65XkZcZBy=);6$r zbYgX>2A)1u(IUJX3i7gX=IB0H+1Lts?u75cmIy?+4Os`wzC(Gfy4P%u-hp! zzX(1q_qpGm0p(tR(+Q(Wpzq7wVQp)T@4sAuYnP(UD^1WNGCKzww11(6@aX^efwORM zG>I=d$t2du5=@rmG9i37>QW6#i&dZ*CI!KIml&t=f@=pcK_wO}$~Piz!OhDBe${-0 zNGS@|8F*n}C&b-Mz=h*igl%4Wt)H-8(wB7XwBOoH#1or;+XYK&(`=UH&rZihQCfDb zKZu0eNf`RZ0AZizdgqa#ebFGzQIm%Xal-d)If@ExLS<53+J-FDa~$@N#&DcFcLgr4-dObgVkE0duzBlF_QNtgj=$Ri zUbfJf6Ttz+ETZr0iBI3a)cfg^+f1Js$cX2QLF_x?iqm+wwMV%#k_I5~ns z9a5weT1a@ySsS|OgK5y}%rn$7=#|Dw6&08|{1mJFejNl3=V75cOR3ht$U2;!&Zfb= z&zf>7!2jF=kx#Unrwcy*-%P=e``F&oLi*j-BJvj>F>$c){_~mNVBOE#guHat$x@x3 zoPq6Y_F~`G!@rC0(qg4BNloINWUO4e5rqZCNJ&UVaenddBAhA{zo05;(Y`U3eEKsM zfAk}K{5@HPV48icoq|Bv+{JAMK zAc=I!M*^8F+vFckc_@v_AaPD&p2RnmL(x=d9SLyCU-q5^F}bjiXs4(sl#lj9<&v8V zS=q^|P6Hjk{`zad9p%$cKNF&E(D8N*569ty`;e1*3onE>L?jc|)Nd+_loNe35>^Tc zyuG|}^ypE+6@|X{u3fu?b3}2fD+&?Imm~kDpAf`45C(Gt`8+}mysN7V;*;+nqbLgj z)dO&ob=Cv{!|vrjTdYkB#Q~@4N*G8_k!=K z7|1=NRmY~NTHVi_0zp)kiE!#I)2x(BH+>0vM?1VX{xgKv?1#5T&cmR#qtUC$aJ)bH zYaxGGFPlVi*Zv&^3-r35wxV72KIq$GB%-5k3)V1#8f80s8w3RX5iV}z#FyCqSVL(( z#-QK;;q}Iq82D86GK=#+dg~pXoil60}eHOnFI+lgOq{K$%Mltt*4}LxP<4MQ$UtYt_P;GpB|4+aG@T zA%0l43}?@t!&gk4FZpI6*8aK(i@y2*7tWqx_meH+Vq#!tV+Aj7ZyY>$P?$uA+!<&x z9y-RS7RBRV5_9-45@ydvZ`Og(&^2S{>3M~IYpq*0gd6+4&zv_G=dVNvojSq7P3|GT zTf+ZX$O3Mpd!5~*rpNgIZqXaG>{SoZeSYeH@Q*7wl^nW%C}bd!mJ*NrylmmAWEnym zp;1FsT5L}L=lh9#!mBeu|Iw1wtPZunyKf9)?Ux^3Xixh;evr+FYSr zwgX{1!DWQ~o4eo_OrEy@&Tby~;j4LgwO0#_>d_pp_H2OGfU~Otefz^c0dUdgMUg7WW}EteG6UO{ywFYdBsH?ckv5ilgV3UDn<{sFtjPaP z_L(kzKsef-A!l8q?Az*(8}vrz^ZbP5v0qwaOFt!$OrqoBuq?}|D*eIMJ2UNGPIw*+ zM62E4cuOMUYfAwP3xhd*bLxJN&@%LqShl=9ob?kd|XtHK5A^kKe>zDT_tB{pvl?a(aF=1W>ge~!=5fV&`m_A)iDOk^Q5OqN=fKVv7 z@$T%30p8ior*YZ$1j6%|S_s_QML4VOC!?!16=eiieXCoRWowy$lhNO^c2{(o4@O1l zGw(77ONe%%B@Xawo#G0R<*ZW$T$+vGZXDh83 z=YJkd{uJaHuN*m(;QqC*m%(?g$0-V&31agaFe8&4W#H(#9Vd|YUqO<^)_9vn0b$!s ztk|s>54?(|D>cBWg_V6(Dsy86TNq)&hbEbwmP3(|%Q>P`HC$|jmju$zN+(NOi%wbHY8KR3X-Hc()#T?eYK`$Rl(EM8T02{o|zw)iCe#Vol+@bdwHTXKg^l%SjX^gNu zm>3%tOG#6d2Ba8ZQSWqg@Yh6)!YMs#Tj5Nw!k84&0p$)j;{BR?EcQ3=1Vgzwg-ejz z^Z?fZ?X|)s0An#VF#+@-cQEtS;sA`#Jcqd|NgWSNgAHTyVmT$n5xpnw%Ze;r`>r7hmt!XE)ocn9ywGL z6I;y&!T(i|c(m$PZEUJ2CU1}8fsoPiXfz9OXX(@l`#BUpd5~(fyNAhUJ_436PnT4* zD=dK$ed4^Y2AtQ-=_4xc+7#kGA{~tpM^V1r;TL_+%d0fZd z$sWJeqmd8Zah2P%(Mo91bH=2JnqUR#UqJ@Gy#z36*CX9$H@^w~MU1@VRlbT1pk*!6 zN`c@)dG0UT(NV2|;XQf|<`>xC`Z!GTLJy#Z6MnzLv|Z$q_)czuiSB}*^VPxl=e?N; zqVK^L7gVYwRL;7(^tUbKYVa=pY_-?J_&0z3hY(}He1ip3a$XdD9q|HPHdXQU=Z!Tv zx*^TtC1`+O^pyhX<@xrAJ@CzYzCr^D8tw}kkoNmX3GWt{;D6bESac;$tseqj7hPNT zD<(bhggTiV2W+QA#l8JSaJlPZD(+T<=`chR-Wr}i+z;I(j^YyDFF?h`=H}aXc>>Z5 zbio3cJIun*FhXbd(^^&jS8P!F6y#nsDZJh@O%#xZ)t-dplFp zLD<{!b;rjl!noVHuVRm^I;mEP0Wz7_H)~DsAll+b&YM)8GRNk|W{KYn7+g+Eu%s+H z%=4Vz5D|~IM4;X>;$N@#?z;L?rf)=i>?!%MiCnwMg`bvaP|+#sX0UGcn(fgSXJOFx zKfjrej6ZGnqt?0H4sBJ>s$Xw*rs{Ok)9^}QpszzrDDy{~VQe%qM_UpE>!c@!^R(s6 zkSR4pr6|*!@&XtL3bOL^S+&~%7{^>ADTef<&*5rf5}L0ZOi>1{Wbh?i zTV5^l7$%8o3&hTtCIRg`^`ob=(lv}F8xVpXSv#I$(Eg>xI!$$l40!3g;`nb6kHtUH zfNR%zk9&x5xM2|rAd@~qxWj!bI>bDj z)CXY6Q%$Eui^8X10&r1|T#{v|dHq=s1N0Vxz4)SofzFUq&(mb2?+hB9px#0*%ER9G zNKjo6G&~AcI5Tqkmr7C^?Fd|ELvZ#y2!{Py^5>o-Om`5?pK{ZZ^ATT#(5%1XbeOy5 z=%wc}WGTU{nDZ9OLSPh2Cmc}XaDg*#@oXKi(o9ujElAASRyxyF?(fUY7+JM}RSnWt zqVp$z4vdV9L`uK9?EW;268<ax}DSrusWiIobkA!bYp_vY5p;;p+R0Z&uo(1stXB^nUw)(a+#qj+ofWUYAe z?irmGtz(=EmiN@bcSjZSo+ZqLc>E$hmWMzSGYJft>P^wr_UY?@FvtHi2>z{g+jYzd z%OeXe_CktBCTO&thUJwKDTCL6{~eg38H!d*r)mC=>PZtBxVK0Q8|3Ere)y(mExG6M zs%Um7=P*Hk5O!l0d-N@1WEsG7|w^8>;s74kHQ}hy8O53TnaWXla z$nv%rU@<&O_=0rXwb$yMa8TQ8fBl}W~wD6*PM-%>9fc`z`pye`(!s}@ru z2Y4K$E*QKrq-s+oQ?8PhOF2%`Zr0n48dj|=EfJw|!}+6Kvn_w{6PUBp^5A9f{s`xL zjub{Z#xwG}D5pn|eIY>VZ^$CB+RbU)>K3J2h9cSA zJT~m)r;^Js9nNG2!ld0m0aCA;YIdwJSYzj?C{LgHra1)plK zVj5~^QP4DePLSeC(G)`ti@2!Nvl**D_3UI8`epqaXphG}An`<<3swjXG$R5Z^K~W1 z0qP=~$s6{o8^>0Nqqiev7~CxRn88ZnzU|onbZqQsaJ@VwKff;8HkH0j0kwo=VMttF zyZcZAu|T+k3{?ieSr?%}JOv4fn~AE9zG}M@m^(%-=aI&s5zd7%LRB&*}Yv%}Z(F&f?*4)YxF z{99!x2m@A>1jQnMMj8CR3I0Kx(_TsW;Peca(?UA%nO-gGs|&Z!;o3>>2KjshB1t5a zkbJQ9Ra!iu{Zr>^BisjiAx6hsE8%_NF;%TQQAT8;mYJ>oG=9)~c|}mo9UJXb!eWGR zpXlHm^?^z32WWXfqcc66e(Up1$1x+-;Hf$Fx93d^Sx<zXQWR7$Fl(^C9RVQLpJL^>Soqc9p^lwYKu*AZY!GNXA%UhiPBnf zYv~9r%yXNtgE|B9ruQD20E_T^nW#{~A+{wQ%tJg<I*Gh*JVUrX?AaK zSx#f|>y@#H~q3;HEhFX!(B9S$<3p=PzqeYi1qL^R<62=@eC=Z8 zw-lc9OQTiyFKLn@sY_$xFgCFF(7S{`5}V1Pd=OJ;i|lgG>DMP#l3j8>|oQ3?fMCJx4tMY;{fj(I$dHH~b8z1l|u z=q71|W(my|lU!7Rg(_9k^18&|0>=~M$lL_%3f4S|Tx^d94iyg=09GS0EJ;?d;_F&BJlMr;A=~B6=F`kKu#oqW5Rs?3KG$?=j#u+|TAguZaEn zzSle8CK8X`5#@sF7h9o&@grP&(D5s$JPU0Js6eJkIu6N^PRZE>1f*#~yC`)_ruPn5 zM3i19+@9m6o%va}>JLjhNXxk;jpQ!&UyWwaHgivG-9 zOp!x~_GvIpDP#GaozbbflA0)#Lft-*t+k3ZBS&+;Xg(<*^&JC%k^w>wZ!G7gVC^|kToAOoQpZ@JCBrz@84+NofnhGla( z*%CSDr*(K6J37l#$Y(uyz-Q`&JXP^8k8b384Uj@+zXs!^z3= zPr;y=(7vv%n*~3YS4Bk0FDC#(JGqHZN7z&QgCd!JWqBe_?YaX0=55;b1UaChW5|_w zn0R{=wnu|?!7rSPE{`PV+f*4gOn0S^aftz(a`AyNteu;toMqQ16i16Fw(~uw*#ZUJ zGPzg~r0wJ8ClN|yzlm-zw|^UmdSr4`w53F}PBXQe_sO3|eu@+HQ!xps|9ShB>17+f zmtPUbh2WQtB{HpvzNHI|94GP&m5RKI1YIbiOG}P))(Fk4HjY4UGi?T%D|#Up#sL>3 zTAIxBn5lop0i}spm;ik@C+4w5(T$Av-v{B3r=smOg;4*IB=S&=T+;xj@w<*eNRg{-49W6%o0Ct!sf8oJ%rCETt}1NqEW#}Uu;>2#KRpAZvT9UJR27&N}Y zX_8*nc;@@>`ZRlE<|H2Pb5*2p?tU(&T3U8ed_z|hkE4LGU8$z6WZ-%EPFS|1tUZS2!%0j#B~c{33vzsqqyU$_mC4F2 zzfUkzgV*_1Dd~FOSD(Rsuq|_@7R1-&-wVrolqIINl!BJn<^s=Y^a=r}rw969`CLwm zrO+tAkn3BXP>RX~E`ul8W9bXib!^=nj0fefN8BVA&`5uo1!|r&0K7&7!ynsl-JXy8VB zpMNa07LAUbxp`sE>gBtW32V7e5YjviwQ-bI34P4ZR{98ukpsPI&iI9CTp|x&PQx3) zO}v^956TUf`bnwbxy#z(U7tesbAM;rOvI$iewzq=qK2O*S@H=^@dL#kF1TqwTGrbz z6UoJl`f6{73kt-Mvr>Pqjntcc(x0t*L77S2OXVDz@CJMkJdk{gPqC^gR7(7s$!m!w zo5nyzRZPhuq;qV=RfXGkkzpF%gdb6)Cxof5{1FdP>TsaCcwL{g7yEf0u4tNw@@^zi z9WhCsRzFo1A;k;6$#Nq@)?puWTjPExRHToig~NdP>kZ@_vw2!N*}d!&n?G9$CoiB97T-X)K9~DbecDP+N{R}Bh6np8nHA2@05E=| z6wnh{*xJ%;K05=T-a6R=cAd5LbSP+rNrgZDU<*9v0lR;k&vv>Y^%~{A^>Pz1V-Cu4 zSql(JeGM{=0R&D9-m__I*S%(Wh{(w;@DgT$jFw1x^hkrkk|Z5ge9RxewI^Y@fcn8J zj2cm4QoR|)y@s+=ivK=Yet-&QTJ$`4cW^Y;jeX&QI~#iB-0aAHo@c`ir0KoW(@M^_ zWRGYK>fp>IXkFUS_k`Np+jo0I=W_Qfi!(Hnq6O7ejUIF5PPaJ;qI8ApL=fPEv1x8m z3JT{dRuM;X6>jsruP|OQY%q`BK6>x|d{^RyYv@wSs|ZUFZxBy|FD>;(MA4qgg8_e$UkgDfnFk{3@Cvux_9Vy1GM`GlTk^nEhSTMy z^73kS%LlaA;x)kgT7rn*2Ls2&#kp`rh*UEC_qSfAOG&WHTOvt7#?o^T^yHh4x_)T? z@HFMjvNn`g78w~w)wx#hv`>7^#SXjSO%B0;#v%kYalT{4=l=;MJKp+&T; z^?u`sA6-8}HCD&FNiOt-$N2s4T0;V?UN%wdm7jnF#-oltM8ba1If<^0lyJ1 zx)#D46fl$P-u{c)K6F^F^qwT0;epj+$_sPm;tYvks!H!QgZ032p?Ey=8@a<@(D`HD z!hW+AcBw`JFeF{ywi|FkRM6;bm9+!?uhJWI*zcaggd1mc{45tgP4#>&1S z@Pejs=E3~Dq&L(2d1`V})Y1}1vs#y0yOVx8lie)*hSlItxXHkcK^6+zh^ zz8IgP!I&J2CjgV9W2n={V@e8bA5<$qi}8_=umEB4)KqBFXRXa*6}{@*t@HM=&Xb=& z?~p9H`-gQQWXb;PMx7xWi&1AZB`pg_ZvZ|y_uFi{p52$@1u!{tq@!2)8IwWS4nKcY zMG)al(*w%f2BL;`-3qh1UleojP3gxBZ>F%*B}Eo&Mb%qxxh0Wx-23zU{I|H~WqGU` z6)yY~1Zwc9N?^YNF!4&2yW>yEET5|bo6g!Jf{KX*zMi9-+Dhpsh$!Ea^)eWK#YgG< zPFADK4FUFl32kqOM?^vbMd2dhvS5t;igrF8mRT39OJQ2Q`!QC47GZv0Vsm{W2tp^~ zcP}%>rq#m3*jlPJ8YXn=AQu-tS*TpPtYMhWrk0zkGpjL4_-Cs4MyM?e?c?)IN5>m+ ze=6|%l9i|S8JadIs4Ocg!I(IiO!JU9{Xq#Tx8V0FE=dAsyI22L9$e4VM^X6xnvj|T zh-(h~P<~G?a6q1~HA1DRrw-KbLP56G0;Lt7$V4T-+bjo&V_tJ1B8e(<8}&B4pEn?D zcbW*xrZP0z>caOfysPx_Tl#k57+OL)#w@*0fAvRdUR7n0R186n4cbfuCgbYf`xxMv z+gO;PB7?B}qZEos$ zryTXCIgo?Jk#w=fA#O$)^)~y}?KzR=B%1WDbrJQ-|uVgr}nNQ6k^{TOAN1XM0GZtTd zJPG}AKezS$-p{=GA7ZF2;MbEd`;C%2xKt$2vsm$_(B;N+z{4wT*jlxh&fTHO6 zv2wL@9w zJPTB>)I{D2>Q>KWb^~VsfZC!Bj&s3s*&?Nm8-IWk*F2kel&MOKo~}}DKDU-_m|FwY zdMonsvL+4=pUQCaadA}c=M~-sPc#H^_|W4a(8&{1@q=QLyw_ilLC9+~G@Ns}H>h>c zo(;dl_Wx;^gJ&0U0RVuZLdwW`(>a~DjtgFl@4sP@5G%*B3cdm>i;sD@`hOwxF1)b? z{8bjuGYsk4&=V{FJM)c?rWAv6aKGf>!sZ|S-&RP(Hdt3g^<_VfgpF<<>h^}R1tT8mhs@bRAWoT2G?|#4m=H{RY?HG4B6$bXO zXV9)yB4Kc`8hTR6Q=*K?lg%EJPkC`Q!fgwgudk&pi!{d5`(D=HfCImF-EarTSrH^wt;(rVEwxrN$-XzobG`Qfdn`~T z04^nDnGlf?S~CiKE=F4jrx_#vbik0bNOzGfC9RaVL=^UVxw9c}_A)juK$|pwYrX!j zT#^657L;CO3ASp)clPk$zU=&FDsFBLnVV-oO4oJbcXVXcJ4{P@zN*1lDuh=ak6iJ1 zf!vmt$9K@nt5q3c+H9aA6Kym62_xWarRmulPZ%okti$HNtn7cYlHvSN5ms0m6fBn< zUDvEC!h(qusr0d95#$>-YLq+b8U-W3<2T(EHtI1*_vB-g$lBX(@T0g zuhL37ZmqmQI4A+4)377)_60M~$lFI{2vBO(x8<>5T}afx20fB(s9ZI2^1>n}4S?n~ zKeE`>)Dfl&oiF8(e2~P|!N);{5sdI9Sh++>IYPUGrtVb`>ZB>ORTacS2mQ?XLUi>L zZFXRC4Zjj4FtR+qGYk%y5YcCha~@wtu|%3B{V=sVGTcy6k)p4UgHx(o<60{_57>7FkZB%Sy#`6*(}f;gMC97gWZpMbTT11 zA!Q?oY7$bA3P-YeDhi_*#pn|U6n69*%wd=m9DKL`jnr~A>H-gBLwCBOYTFehXE zPr48<)9fN~gJhyQCeUGxLbRMK=mmZ`L{Co_n3e>gc6Mqdr>so& zwaO?`3_g*JlhpflPeHr=o+}~0E#~Q$d~f`)DtQ=?B}AJ71Z0qK^+kX9F*OjH#>3{Z zDsR8qN+PuR>Hql!r8Y9N6~?;J*Uc;GKiHZGHRZm&ueZ0w!k z0S*Q>R- zF5p083>29791&!jt*_E3e_WY zpy9vwS>_)<9rxxu@8m>HwX|)TfCutJngJq%8A+x9wCVs>_9V zhge__bYZabkV%fUrCkS2oV^qo8`i|eN&6pgAc>1>GApea=rOG5KNb9O0r3%p^sR4hgl3y0``O;EE4pi6m-j zQV-ZX2=3sZnSNnG)%lB|yJvs3iTikeF@8AH(e5&Zl}y0eRyJ}ae-Ue>AgCR=~xw4`<2z)o#r8-}UbI*46cgZ?vNpITWKawG) zS^xIW4w0nGFQun^3iUx_6#8&;8}DTCGO8@5F=rBw``F%l*%Ju?YYf`+|jp?7CjSli;zsF zRT?D69K`d)ueYNKj9^<%`5%D`ZX(R6*%GZS38`yh_#A5R+u;^0{VQskQ&msZb&2Z| zCT=fUPcrp2p-yvTqWl2YRlvnL2~lVsHB5Xr=5*=zME=LbW@r7QAZ?J8r3}p>NnR{I zyyf;JwA1c_S?w-ZaNH{%$+*(pt$fn#!1^;y*n4pFXG`g2+2C+c>jH^gf*>>~|mE)?IxEW)62O+I3)NTPn;GH0`;MVmawPtdtzm0JW87S%~<5cSj?-UKBbu zX5wN~z_#)0Hd@C4I#>nHeN|Tf8JXwtoIjS17E5hCKLQB?>7Zh5bJZ86q`-gweg_7t z7=KF?)?)v7@a(Mf;eNr#p!p@p*25|4H~MVfYvd)I3onu4fha|@2+$XY zt3oxLhi*${?BltNQmdieN0S+>CL`DnTi?T z!?~MOsUoE@R|T8x{GNs-F*HAguQu1}P?N;lqBm73)u)8>R&2sMXuc{U&EpoL7!f~9 z$JuFPwWHb9beumxj33;mE{02OHowk5VTJIRcIj=ouD7yx0rR1+B&XFp$FWR*`U z{2hLv=V(KC_Ei- zXC2m~EM?C9%B_W`RQ(GUB7SJ7JvjMdsrYOq9j>PB=(}JWSJxm9d~{SQ0k&s4qvz8E z#jIA_3C|#d7S~3qjIB*Ujp-U>ELNPxLW~t!E)wI}B(2_p2_B|T!SX1PYHjF06zv*Y zaWE6Rn8V0}WHCqIGyea<5efv>5(PzCuASbUiUcm^$&2=x z3M{4cp1C;{DeG7p-dbbPAzfY1CbDxoG7zBJe*wJuCEd4w89Um&2p^|DO4iM^RXj)n zS&6La@+xwg%X(`}?l?2hngs^t!P9;w8(9q!_(ya0svkyd zuR^_y>nOH<6}yk?9dH0D%!xF$o7WWmwbhB0ie-E`*@@TWfTiE;qb|VM0o8dorVN?M(+vk!x z<#=v83U;e0WN#mCa798?(ns)d5Y+xcUBJ7Nby^p|vnE|$FUP-G25*jvA5ae%=}3zn zI2I>22p(&KsZcM6N+d&lTDro$nF|+4gwp9u!A#ll97OJakJu|3C+*dqj*=^7B|kl2 z;?)tza&wL9!@xeQ=8e#dx9#s;M1;#$i3Zq%!3sNvIyESBy*7*Q{y7B68NA8( zxLcnr_yWR#8@Z~1g-@$?OOiWtN=g*`s|3t?o{^Q6MaBy(v5vqb#rAwWTGH#Pd3Alw zDXHPxdU>rBi~H#?n(=ipY2z(qaDv=&yrEkP1ZRa)3HC-IBNgU;18{${1-spZU$O=z zw$UD$`tF@%F8HSN@s!5RsQ{L7ljG7&xP7dF;9Ei8%!C}MC<>_2PwajAfxLbA4y%*cg|F15Pna2G<_+|RXEERp$;`yt zH@6D=$xXixp-?4#ISNulXu-op>W&7;qo{FTX-P=!W?NROZ{12=P^5nF?&gp|=DTvh zngt9Y?&j2KESuW?F6ZTb!{XOCrTXRaA^%%h*qd*}g_#Du;fM?d7Yx1Lh%xG6tZK!J ztWtW8RQ)m6p{91&%vHCyvnbR(z6|zwHi1tsbkQtCwI*vTb!w`$^MgIZ?(U8Ajz3Oi z4+dHQHKu7f)WyYSU9xX~?cct?FBROaM!^Or78`qj(MDV~)eiWxy7 zx{w=5Jo|0SPq)({=Z4>*hSLTrU@CtLi;tIJ5EoHfge4}h2xf*s|3xP@>0s8ir0DVh zKgyBPU3t+@Hv7pZY$wuu_~Zek2z9$uLl@vEGrT&!cHB0PtaifZX0~h%6LmHQRi1nw zUJg6nTvY63P=C}kPoYxeVO>jo_>b2xH{RSMm}v31k+sngd8Ph!t-i_fY1(yIklIP% zsI@Did)@Dbh_K099!xXV$DOCH9i^*=-y%Jg{Nb$J+o1leviped)$f;sJkLp`Rwa~X zPH;5KO53}y0Jd@?&fGt)(6;fK&QiPJq(lq~@*nxB2`OD&e#?&eq1=}@@U>U^R}311 z)3x!+2-$fc4up!U*!wn3|)NPL=jegFH z6*WpC3tPGUbBn`!s#)`Do!`T#^3>TG+94d77zx*{#L<@+8@Me3uFc-v>UQFk)0ell zebU5eVw;#OfV5XV%K31QWH<|*IQK0|_B>@5!Lu%iBKymU5LR=dFU@dkD61+c|AT_n zWibEo)%hd{R;Jnhg5RR?3~3_4Ipv4C$ZHYy{ao!fS3-O7%kTBPL1!Iod?-2t#b=2y z9$9p(zfX>fTBC02E6` zkHksqPj@5`p9s`3I}kEeGwck5_|Z`rd4HaW>V;c;h@JfZL=qeFN6b#qNT-a`x|hztLv@tWUDpRmjON^~ z_=L$*q#f=y1h7zdfb5zkH#sFWf1l&+Wi2qmC_0ex+N+?MD;uj$(N{iRe7w-dMa&=;}d`jTp7&9QizWm1(-%-L){B9xE`FDG;9Bnh3s1Ok+_#};t zhvtP*=3^FMh!w(dx*|Cr3^{y3t&OkH_x}WZjBl&+!+c(kXbr4c!ER38-LPvpFSMGT~=QMpIk}e z&J5MGbzR5}N6E&$Bo!f9BsTk^6g|+k2L~TJuZ&HfrbU8n zOK1L+5TfLF(rEYDC}SNNkzt6H)I|VUxM{!9R1vkMasS$lnWO(c_Dj3no*rli)np6l z@lV=$TLdQt(apr}G%Snr;ObFh=e73mr&O2-(P|rjKTi{FcU}1HITDCm!g(D)$&cfN zY#mWSqVKcR)E%uUx$uh` zk&E+62#k(SgzKh7{^N!a7ACAR&?8-IhPs@XH(kCm|Me?oR%jg%@VeSFO^ftkWsk;h^$|eX^W&+xD}?+1?+h^-rWM^zBqh7+5DTT$b(U)$ zRge&Vd!U$bWQ-AmU_uriV5EWZHE5l5E`tOtyS*EPr#vNmv{BM1`M|fx5e4Dym}cRf zl!D!gmS$Uj;fiSzB`T0k_O{49icOCdO}$f6e(zHa!ekWA4-@3^P?jDKN?}UT+wEz- z?|b#Vhmaa}*4BC1PMH?GI;2Xsh7o%Ih2?R2C|1bU*ImI%qtwtdE11K!Q~dF?f6hKK zDjQkdN!b!1Y?XBIx_WMIZux8P{=&q$;b`~uf3c_>EjGRtt6VG+4)VYExtXOJfUor^ z51Y#kM*!rA8-MgyIzMvOM#h5SK?*{ z84Zlz-&=E`(ussXqP(j?W;=3*YX0QF!6?FkV+aHIu&eFjnBxE9XxpwZxyH4ax=F^) zT$IbY!sSGtQa$)CeDphM=D{L%AC*xM^VMARL#-Z2z<652#h}Gtvi4q2zIGWf<|kfN zRjmDas=BNVjZBaPK^lxnTXeO9%gE-vFEf#;LC9GGE$C;C^NrhCO>X3D|M-=E^D-v~UV}7ZbA>#1EYRk{6}ZBnkUP;v2>Zl>-v35e%`Dphzj! z>kB`xR*MRTs#_pC(EJjUm4vMmMLsIsb0U{vyjH?(pS2vU61lsMwU1K{3(54CG1>Q) zfkWNZT2*o9>{_hV`5)p1BV>e3&u7@6a0I-tljOu+^6m zu9#qPhBHJipz7}QEK^art;M*`VlBt>X(nnAV_9n7cQjqBrCHiY3v$4EuH z8`M%os8Un#ywy!(te;FPQRo?sC(P)Z5hq zqqoxykF*)MsiPryVliqT+Q<~xZKB=nL#@e_9a7ui;}4D*yn9b5Cd2XwGg)(^*i92~HM}eBk*jp6tvX ztO$!!%tm`ckxeYl%xU9{?ZU{kLVv6n++Gf;=brxn)kNSl@pwj99wv4K>a?U~3G8aK zhe&teg>!>a&jdR(yWbmQREIlUx~685^yfi==9HS)#Kq~ZY7<#kWgFdjWNbCdt|ir4w7Vzwb>eR=1*NI94FoR2lKiNWLX%9cH+Sn zLsi$<6jt4|ZXS&@ZgPsSUus!2YDZXaePH?acB*cEkq`2)QU|xnieBF@JUykMZVP$| zq*rOjQpa|MYCX7^&mQhmP_&3XB)4VW_cFmuCJcCuFYVrfJ&8|NA(#0su7dOSpL%Egv;G}Y}F*HTI=1lP*lQu%HBu#~bH%tA6eDkYz_ha04!_`|P z{k&LpZRpji0_o$*Sxr0C-IRj~)`~T% zqMW{MEPFMQZobvQ#-NahR%rIt9B~h9Hi++eIv7`K{hkWt9-(}EI1!UJ)rc^}iCf&^ zHZEL18h&R>dQ$v@8Mb_Et<6C95)GxJ<7#d`R3v$?%l1zpYYzY5MNHzFv0D-FVPl1vZJ=G#4LRoq&G}tAwXsY)E zd18XZO99$>k^FrE$GR15yss~S?wx>r(p_3!C~6xK{>$K z`0>7&5YXyOjW}L%FN!S8bE`X51l9wN+9Ka{_tdz`PEJulXS4n!^h<#<(m@^j zkn4Y(p_Xb4gPT?GfcNs>+SNt(N|=*KJ+MJOYv^g`pceNl#+N6U zdBR01aE!EiWCHjnT!iIGA@8zOe}zB0j-~Qa5=|do-`_i8nZnIM>zdAyv+Z1wwY+k8 z`#uj7B;KF}sbDj=D1$k){B%&%trdCg27v}sR+JTdffjCm;jH|dCm)p4WM=qxC*Qr| z^6o-y)BBljhlZD}HvGZOlbJ5T1yRUW4>>5Ot(Ur%7VLzyx8=*0x}X``)GAKpsOuCO z;}ceaI+tjH{?PAP5 zbg5$()e;IyO^eSqh20Klmz3oR#R57hYb>W<`ePaL{wAh4astp&QL0o$K!!rc9v zMGElqkQ$bWP4=#xH4K0gGdhdh6f_b!GP!kT(6BJsOz1FoHSvcHJOecSEkz! zy+3^xL-j~z{L{ILK(BXXaxY448_8|%tA!fh3-HiwiL^KqvVU`cch~SMa1n$rYYMXZ z_@K=!SX%2DoJLw4i;bE#Betfgv-p}m!qFbQmSjZDzAm-uo&@2-y4zsH#dR@PZ}e~yc%}L&Gp3K z0%c7&o%T`IOvBH>Lcg-cUucds4^O7OE!Ms64N9i{SiHVARX%k1|>GKaPF(2 zRQhz@MmJ^}6ym5_OQi_e;?SmQVgcIey-w{w@(fG@`?gPWm~0KN{$rAOFxUNr1C!}# z?y4y%%NjTwIDw}&0kAegx-vUle>>tTU#SDXV7L+o4es~6P3Yw1uf+6+t6@LlaM@?3 zed=O^hkrQhNzZ$&`&S)NSN)f?Gz%sp1HVAs>+1UIrHtcB%zkC)#$hwgq5X01HQD62 zlK~eafWP_E8R7^tM*9$$yWWAQ_eeDGXYRV>JPnY!R!i_Q^$xe@Y2Sb7(C%!!lXF$c zjV@C{WdHltyG@O>O1}jF?oS!$!gjmvTVw3$)cJveC41K7h&)3*fg7uNE=q0}TuvUi z*_bF=8L787C9>*6B6Id#hz9uB_A~=z9mWD;q}HJA;;aC3GrC0`S>y<&3mD`qx$dN zY3_o2;PZ2G5OL-pIC_w8#yunipdA4+}6Pya9Ht{|%PbHiBD< zNW>+~e+gYrnN)(oqAB^`enltA9hCyHE!K?E)Bno-hQnDFgtZ^kV@w@h* zi9f_r4Ej02T$X8B+|>(PhYZ6tk8m6;G$P_XvXnHzMf3XG3wsKiA6YO6^EOq*s`Nj$ zHAXE#{o9LB@2zt}o=fW%W9_kQe9y`e)@SX*Yb{-%W+I34^k`cz0AG#{$AM$#aUm*B z5S-7`08N8d35(#tc(H*ktlRZL`yd~%FUb_92FmKqFr-;HJiPZi#5L_@y6>acU#94H|Gy&CZ zMHsoP5DRujTtBW~y&$}&$#XU-I$NziCTe|n4(H!(guIo#;WTtBKD}nd^jhXT41MBS zwD22*sy|)B>JfLXFhpX>cZZl5kw9i6#*LM8vEYCQc55!9ixfC8xehumu)rQ&1Umoj zzFB~=RUEK6U^He9Zw{HNSP(OI@+_>LGZ(uh%@gdV3u_eTU%1 zA+NB$ib|+&C1Q!m-NeGwVSf}XL>91N=jz(EC@fz1Gu)i#qgQVO!rQYB`%z%Ua#y&y zTOubr4@Zv_;Z_XLwf}JRfB7}ktltDG73)k;M}YIM5T0VNi+TA*JTkI#(6*KjIy4M4 zujM>RxCNZ^+(OovP5bjO{iT-Xl;;Pdg$4WZW+UyMMpl3|-sD3`gQou61gemqb59sS zzYx&0M7ms4IK!wb6bHHnYTpx8Dvz!IvwOA@XIFlS7wa~~*a;IcVZu1PK4J_L-|1|f zLTHTto-C9of%IeFW8$b+@W#0D7(ecH410AJcBklA?;?R6DPY@rA`blW3J%YohR*fE z@WN{!;e5`+*y}j|1=J|N+$ju$+td(dSUi3yTJZU$2D`$;L~Kc39&+;w?-JjH9_qq8 z_PfdZv-l>AI;e{BP(&3_lj>qQ}Rc7d5<8zP5#zKL|r<8 zkeYzMKVWU$7kl>JM9Vf^pw;}jW}w`Hh-3E#Sy3ro^usLVAFeDdMo4fFmi_c48aLa9 zmu9WSb7$6v$9d7$;O5;tc3;>B<9xL^lFNN@CODci-6iMe}`N7 zrO3(5Kt={FnaIk{M&{Lbg^-6NmWB^@`(=RBWCWpZ3NaYT4uqXyvZ9fF%T4?ryT_{06=F6cK;8rU>2lcvBY zG5&B1SZ`On}2yc{5A zqR3Jqy+@?5iz8v_Rtnr3dRb&4hTKZdelVs{<%P*{xN$oZYW?HJ>?MJuMb_;&+{sW2 z6=6k&>Rpw_fXh*8jOg0Loces>RkZBpeaC4)@6?W=E7^J3d zLs5DvvP(p8a&Sh|K}(TzU?v=Ie}@%Od>H1l##$lAm>!KWxpzZsKX4L}x09LhGCo(n z;T#iI)|OcL{Q}l508N{M{Z3!T{I3^b=!l6>tChlazaLapP@8sl6qJWus9mFJ?G*|O z^z7RQH)8T|@aR;uZR;k)4<9>Lh4bgLaQt`+AtvH!Ey< zWiV!Z9gl|n!r|vAdZSrS@ki#hxcC}w^ksip}2CZ6h8KWXjRLP zeLwSx=Lm&I5EO;SuxaIT{CGtSuhN@1b14$1z8i|sza+wM&I=BH2EnR|bD_0{!?t#o(mvHpgDHu3? z74j?;sNZWe`qXoST$7F6t5;#mxn#IY3vuPzS^W0iNW8s1mX+d%VRK$Z06Xv289VUB z=Cer1bOMr2AkN^6nm%^$v@ON_1>a%Sv1B;vGjZ|!d0dU&hbgUkVY~lSyxaiTKJ8_U z{qi7`hHOM$JBigxzQ?h+Cir6UEAZwzuUz0_Z;ftEtK;OA7{nxJ!^Xx6cGe0Q9&w6u zPWgnQjL^0G?43z)cU58HM4AC}GA2!2j!DzMfKe zDymd8S_6)p(VAefkYVdb|iexZg;bzQuu@}PJ|LA#~UosGl z$6my=Wm6FO`grUyo53C0O~Q}geT2U3zAK|RVmXEl7>>=i%?ULp;lQk5OdBxF);Z(*jqjqq7pr`%9bhNXB0sMP8iNQjR?#TL1|gCb zSrN$cKyg=9C2Hu*>RiMsN=s`wOx`B!z3w*Vwi}0|t=|7#fKz2BQz#&{Fk9tWX01{U zwMq*kjlj3Dgh*40VzYmNNGgY|jU2j?B9v;(`;l3~-pT^X;!>z}M)Q6xA!d@1O4X^= zP^tgyL-=o?Mj$ptiQ6|_F?(1WbL#U=ZfYvjRH3r-sn<&2S;h4)zGbE;C>hw8d<12gk67X#0`22R=hi`?>cy8 zJ}bYJbp}O7SXes1-Qkap0;l{@tkhu1wsVNjEWv=zO$Fhl=hnvxi>{HiEeWhchb3EdG? z|9wOk*}|HMn>GE~qCxn#SoQH#wDN6_I*uLCf4~|fiA;|INmz>wxAAFMAGWR?>I4kL zlm(|y!YVk^z!ee1a<-@ZLi{$Et#|2+CO+Y)ZQlo99lQ+-TRT|XK7>Awt7s zo&r26DDL-(vqrq!v93Ag`Nzr23!WYx@bK`2_kG0oALvk8R0>$T!Q0aVUf%Z?--HF_ z@$!VHmq~mRj-Eb$65oWSqYFGeJ>lg=;+s+wtlYcAH(})oA6Ax^xBH*OH(~GO1~0Zf z9XqYRTYM9i4y=4S4o@#GzAFGWmNLBcVoQwb5{eaD4 zY>NL))6W|WemHtG8SOjugGTe$NGtyYS*ZmVl?N=Wg)*7H{{{nFr&Jch*3J_B2E2?l z+Y+(o(3@z}#vO@?z&kUFv1?~M-kDW^&%gK{n>T+7gRT&hhIYr1y<00~+;D2wDZ)us zK{1Y;zmB~}&SB}~?r2v(fQ#>E2p8bb8YaLkoL$khXKL+Q^?pci*WhOCD^b-IDYUP z(_vCbr8-Xtz>h>!6phE${SYo#-l*6j{JM5jlY$sf|Io? z{5>o0te5vgt14#y7ecLja!(sLoWCP1$OrSsc7c_J8YeGC;c85h@Fb4h5jYhCiA0K+ z>sJwbD;BL=k$Cn-Y^)Iyc`=+=n?-)rj|v&U@8|D*_wulMP;bzqw4?}neK9`$@(YX_ zzaG=yX^)?O2E4q0CXLldN?M1mT@RssI87oTgO`sVJMPL=2hvQIO0^cpE=40UItI0T zZ1COWp0Ks5d>xVU2CogDIRN(^j6YrwtU3+V2YhZ`3X zp|n;&9DNy4Mn{AOSAm6Ae_tOL4FLQV#| z=?p2z)#y>EuZl5q+rhe2d*AQzsE8#ZY}}iRw+FW{r*O&$?l~L3u2_I@UmjM9^K_uW zn6Gwkgi&4UK%^n|=(Nwtx}U7_lKiA5gT@;L!vH1Otb>^T6sevaYAT);L?dR$SifhM{mAo@%{TdCirKR9Q_-~QRL^yJ;5S{DS zXFdD-#Kx}VI0d!Bu%VsdZ^zFK=jl?-%Nb*PHOACF4RP+u4XoXFn$>F(!56ji#A+t- zt;E@{2co@;2=(t;8hF{Fc~u9D`6;^Gh;X_tB_&0;arKh$nc{y-B@J->`e}Iigu>EN z{;&M{sr)i)H!Y_3kAE+a>q<^`4stU0qETbu;zf4fRr7+AQxOy3GUVg{?YsAZ@i99M z6$v_*Wc8+LWd?3~v5Z13VByq_oEIx|$KWGpVhw61|AYj@*(WGqTmYSRF{e^UWe2#nB{TB6C6bvTr5#AWkxO=-l* zpNFHgr~vIdHDXOc`G^H97E6$mm5zN|x1n`wz}_BEsyZY3))myM+Yq`Z60?}vB)aw_ zLmpqu6BP5Crl`-)K8hwyfG@ukW864bkg@y32~(b4gGWH6EH!<24l%j#SRgB}2>VY( zVE@r`STwdX-t5~9ZjR&}$|-Mf0bVX3>#`f#j$-2R&_=91od!#5f4Dj+m~b`1y-qU( zh!Sx4w}ZF_PrTGE0L7}u^JAmYQTBFF<})9&%~PE`~BS20#9^8e+eB z2(PJwx_szwSg>o6nw$WwI!6$+c6L$}7F0oAzB8%@1VOKVG6zZ>uP4#@B7gO$YZp;1P5sF(+3-o>e>no{FTuD zuD|bZIryvX+LUI{8(`-hfW|e*a(xa`dl%U2GO_gIFL5T>6h%a*mLj-wD>SuF!iVpj zf~B`7JpCMzy7p^)a@+-DziR{g0u3~(Qux0(5LGkwV*S<;sFPF9&Q~^W?he(sO6@Ec_#EnhT81pOf^JW7qqHP z18q1QPI-sIp}pKG45Pc(hr2bfYWFGJNzF9*hd&8LRsj&p#YjKB3R@25qV2oG;Z~qz z^Sd zKGiTdhvAb;Kce4_j}R;hLp4z|ba}TBi}o$X5N`>J$^V7r)4Fv)YcDl!pG!uS0B1;b zdRTh|LKT~eWQiv_23iSLd^!f5O$a&!A4Eq{efW#oV(8Z;cxTTv1nJnZKV~ItDF=?6 z(xZRtx;(-Hhf~4ub9WTn#^$};0yl2P;n!`)pk=*r@?jPHg3bA!Kg5tD4_6NDLAL9Q zc%zv!iZze-RP#wg9Uz6J6g$?gM9mPu#|LnAeH~l3Z9(hsUQaNJ2wh#O_-T3kD@}Ka zL?XwDqsP&;E3jve1Z~^WESf-UtOhjnsbjBx&^{-FFX{S_+ZJ_JlQQ$LY||mQT8S`s zSZj1^5-fxQn23vb8VUh%+UJrGN3b3|Tf#a5 zW%rc`QX5;?TS-jiL5Jdk5>`PzUWG1a^~`}Y1#q_v!7E+rn^QR)PDSNfTspp7dkj9F zo~Tvb7tZ!J!qnKN$$ZS2o&zkTtaiM!3)8#xgJ{BTEF9YwMy*n)7oR0GI9AN+@1(dG z3=Xe@Awz&!vqT6EPDh=3jnQksID~iV2Pa2IXtZi!{0-|T331*j4D3Hm#3Rf>!P)?t z(5*~*-wmZvb0q{0(CIEv=E2k%Il(*5TJh^HEfof$rU{@x~j)s8hQGbcTUg zxL_ONll5rWq&s@|dzo#gVudk2gh`ZA_XTn{TN zVAZO+m^A4&RH_m*Zw9pQ@e-V3*$;&qd zw*tAWf)BJ7Ng=YhhK;ihz@u{y)C_Qh{uzpI2@`krjt6kxX zjHXSU@y$10n7{A<6TQun;eW$L$N+B2A9w<*mLnOC`?80&!fFru}9SB#Hn8)-yT_|#hgOei) z@^bJ-|4#U1`Wv`?<1!Q3z`{j9%a%HH>Xd*96SAPyv_bdoB{+KY7x??n#f%yCFnh)u zm@~aA=Dsr>mX`KVSX#5|@%JGmNm$b~^8d6@L@ObHz(WdpsZ@q@XU?EO{an^T01^^x z;OkogJ3B45Z<9kJbB2GlU?%RL#TkBd=xfsx1QOm#jSeezoWQn2XVEpx7w^2(0)1N5 z65{G}o)5SH=Ts=Dg32q3jz+}gpAlB4 z7#&)iZsi`h#(ZW_( zw`sEmwd&VK^;-4I{p^=?z9 zr_TrrF%Tb#l4kueZ00xwiV7b)0@NeJ&JVd_&pJfFe)D;hM&CpAlri@P%4(dcwcc$LF8O)Q6vwE_lJF-o6O=s|Kfktq~7 zx@RlaEL)6-vqw=q2pBmE2oEPiMj;cu4Vd_z3O~O=zgw`C$}GgjE=FPD2ZE0_HI0^* zBy?S{VIy!S&JK0!#$nVb8#p?S#F;Z5*uLXD;^T|))%;&jJJUBVMiGqS7 zxN)No)M|3;=zx%r&sf@JBqlCmZQfNubcci-U;;M}ad9KqYq2onWNNBCHf{35$&+`m zbZHUG-CN2dwX=93G|vxGV{WbLMCFf?%VMrUPXi{AeMKQ35hPBF!qR%?K!ts7(F+)=0&>`%3UP@!|4 z9#nZ#)46t60mi@34M9GR<~1A+hx1oXUW>=7gI7?Z(W7>dKdN}S!okK$c-&8djs*Gh z3{53Z0~B*I)39yr&-n4{4}|o-eSzuI0XMf$`1?l+X?K&9GzDpC^HEqx0~{fQ_4D;z z0C#t$*zY1O?IV_VmN0WN<;ltl!t1YV(W+G@+eaxvLtWwHvkf1-|0T9;yMifieTuei zJHv)u1C>fCT!Tl2W`)+71vqu4)M^73emxI$Ykr50oq$fA99f4U5Bv66pnF#XI`O3*^>!a`_q2tv>JH(d%)Aj zO>j$jj5?%TU?Gvg%FYUw3OVHWEHc(3f2Q$h?}LaP)A_4PgnEXeRb4-GDu=`2+#g?e z2Xt>5jFz>0k(8E&TX#~Bke-LE{9>U)?__T)SRx-s2$pv!8i`6-irpJlVBX}hIJtid z!oq;hKL_4;qdpU|S;)x|v-aK^3WWy~+NQBIIXP#Mmlw%|?HSmy_CYQeu{?H6WOsl} z=E@e6;X|)iL!+@~BK;r?hJ5y(?NgD9Awy{D_bS-A%NjAaGMLz2hCzc`qg~s!`1R*K zICgv&JNI_*^{*yagej)`y-`s9X(2O=>AlJSJ13_Adw0%8@80>?wF{_Ty&>AQOT_Bc zwm5u5jj=O7f}5ugJKm=&Y{=40Gr4N?dfZORMAYqMB&Vb!FE<iA*uz?NuRubL3o zo>RHu7I21y{a8{GQZb^(4ET9vV*df)=1t)6VJWU$VcmP^QCwWide%Ud0DlZ0+XvlW z?8qu4DXZwzra~$R77{UXZyv_dX*-Z&t3a722Z?fPxdk+hd*R!0^-xq=KK$Ov=P)r{ z#jb}PruAJM5gPg?yQrCs_9AP!Ng=3WTSd4+~u* znv{pW>xFYy@%=ZgncxOmx0Yb#N*{LI@pzSe-#vSP(}_ALON*XbCySz(NF)}5Uw1@w zJW{gqQOnm6)jXXL;^)G{2Xg)b7vKyl8%u2Xc{@IOYXN4=0J?OMBRAIy4IAbmCPsu6 zE2Ox7-5x!9l9ddGk;Mz4X>#Io!Yf%S9`9*@C*(1~=&koi**D3Rm8j}Mxt1Rd- znT3=I@uahuK57}n)0Sb^TRzAudG?P($WmpgFk-#A;58<=d-U?cmCLEPaz%z$ zhHD_TX^hne&;F?v>>{RH`uXRnd2=#@Nos|%ohr_ua+y#Y+ zJo+JR_;n|4Ub~G23jllj7cg&bE&TLL6xy^lupYb~VPU0MyjYID{cKr9qQ=Fu*;ut~ zC$3$LL0FSe*x1^&w=3M-o#E=?0&mt!Pd~j2tM|z8&d+_|&CUr; z1N^zYLj1dUDvw&6gtt^C6C!-9{rOvrf3X8%qpzW3M?E%elH!FI8nWXqK}yO+hr1qG3aj(&%gkq%p1OUPtmD3t|FWIMvfCKOVsy^v3*D@9foZNG;J^kOI! zN}-JtiMqqlv8P~(HbFJEFN%v3n3#@WBkrV}}`2U%*>a)i`(v@b+qmHf`c@ z=#UtzR_ift=7;bP3V~kt}%a+M-?wkbf?iPrTFTsI*M(AOM*QX9d_kkVYMWayT5$e?w+oG4`I1L2ODcjO6=f zA%laRH9TGH;o;&agpLy?iYW(17C95Es?t)NIJg5pE&LLRvDbvD*k5~1hR&U9!Oreo zCYbv|rHW$0cP?ADLap|Io7Y9Ys)@iqPGwk8E>=n-Oy^C;OY4> z6U4quynn*BJIeBT!o_78OKXJO+{MVuT+f8I8@#>ez`>y{6X-{foctDBU&`{fgR}D_ zmbM&4MO&Fj*D;YV!8hN8;Of;3)T@_;@NgrVH=l&4C=V=Jv>!U73%d7w1x=c_62@BT z{y{iX$3v$RBfNzpu3P~|kCx-b7oFJmPs97~1Hb%YfmH`D!`m<5Ur)eOCc4SJq)17E zI}hnO1t?|Wo7zdaM1&@xRS;gknkh4f^9WRW0WMd_aPia?yx#XMj2Qz=nq-B7g0=YU z%datM`Y*!3#BG~5BI4Xq`1@YPJ2Qc_bYS}qOI*ETWEGB_RaynuzaOYl)epnQ_Qima zFF>o&Lqj1{$~h9b9GS;{#()?1V#KPiFtVKoJML%uD1?kow-QQ`lH`PG1KP6+oL6id z4(I8Sl$noP$vH^O$VXyUF_N;2;qC5-AU{u3^>l^Ef~>u0%0`XVgkJ(6W^1V zu`QStk4dF>K@qbb z+kx#TarW3ny#6{68rl?BB76`NuSKV>J=hOei_kiCQLkZdR)Kk8+LQxm+5{LnM28x| zIz&c_k(8vstFIbx{74@5Z9jvvN3I|=tOlwCctdaYDJ-9eAX8Xj=Zq;hZrK83$GreI znfjT!pHSmaT&lx`2nk;4)B=vSyn^F!I8PUQYXt&4olrl>3t>SXXj;PyM%EUbx)O^u zd(R;?D-Q;d5ia(2u(Fg3kuL;yM%ws4w1kRS1*uW1F}iO%#71Amq=`m+_Bqh9rK#>L zDk7JW8?d!)z=W-XuuW#>P9!FN4~Zlm6f%&)3u-hPCXD4wEQc^*?Ih%*hqeg`YoSsd zVq#gv(lvs`zo^Iq4h}tkkCs9h3{I@wTgA#tV*AYzVuF{J)?yuiX}|B6kjsOam@i=a z+b!q|M@JRH!t&6#aVgesY=z~&Mxs`&i>%$fgz)yGU~TD#$rFY_skTP@4&hL%wZbt7 zt|#pHXtA?*!qf@lF=KiXZr&8J-!b!SbUBn z$5JtI`e&$9w~_E9TB}hD@y!eJitx&y4mfr+9$$SWW+GpLi4)bBJ4cFTKguwF`5H88 z)!{F*UkYN|EVyZQO_f>$wMK^$)}cwy%12UaCQ>qU;A(G$w)Fzgxls`8SVxS*`LC$d z0-XH6^K%Q(rOqJq>t~vvphoprgm>zUuNLotorA3~*tYpM)T*%= zFAoE%Rs|L>mLWD)!73#cVqy$9uwMrYi7nooJp>(lwuQU53sj|Qp)!8RRMN{fyijS)C|^m)d>27(E)aM$=Gl^BN9^!zsVy7b$W6RtnBvPeQ4d z>U2o3 zXxX|wJ7;>VU%dvg*WbjraVmWCjThRrGoV|ybkwhB51FkmzWixD+&sJl_Y;a2PEWb% zOy?F9Bd4GQIr&9`Kev(fR73_XyB0cBadSZPP(OrLbr+72!+9E1Y8MphRUhAX7Ke5m zN1r}G`*sa+{f0G;pG?QFQDa!erWAV1cQ0T+Wu0Dw8o|M6)w(n8Bm`jHnj1(+$iuX0 zdeo?)#+^G76c$O*s+AN@4kh?)*#(?GevS3sMX2AjmdPqYCh}*ASOJ%!b9jB+P6Uj6 z2cx>%K&N~*$7Fh9Yrw(NMQ9XIAK?v56*Y&$;gomC+Fi}d39af@MGGe4f;=7JVk?8p zsDn~fisbYhMBGfmxu`f4mMEdok}w2Z9PL<}Vqt1mggWrSf}92*mKGIa{V)GR&6)<* z=BN-Kug2;%E@sj8*u(VV$ zfgH$0b1oCd0W3|<^3@RX5xKb+QB)Mc(qftL)(B;)RJ9!_CpgbbuVrQ=(E^ zz@1ziFrdvFNQu3MMT>z!gO+0a_yzFt8;_yGhoQ8z#GLc~(Bm+<+!FDziP*92XYASW z1-@SjCd|n#1*~^&joY{7=-Ve3vu6WE#XxBNTKH=Dd+@F5WsV>IEZkB=klIUd>$B+? z`e`)YjXa3{4tXejMjbGT#E7Hk3*cj08-v5^m{U0%4yR&6E_D=lyhNoz9utX?@fo!NE{Ex!Dc zEZJbf6m*FT4}quWIHab|XQF=_6VWAbc7BVA>T#@`HOR@C!SYcDqCb3n=dt~r zWrBV#6pBbD$}L&mbxZ_bW#au^mS4t>r3Zq7er5R;tiv!HYV}%HRvgRQlpRMKw(rjb zVQ(~AAU4*4eXpv>$-9V;KLq^zXprYCIC{hbAAj}%+ph*om!u&sPK@2V?Xh4%E;ep( z#oN=f&~ES~xYuoutgIZNQ&cO!9l=#x5a3}ixRcmg%7qRShf^M?v;v&`!E9`;P{*kq z8a4oy{Rq^pdl`;SZE*Th0?WZ_EaSsjgsD;v3{yIcODzR>@7BqQgpCLUka?*?Ntl}n!aQ)L1;$kUmGcRMph)-~;{uJC=)EudK z&t^tX8LJCVMU=o+6oe67>zh+K91iFCCov-rHxe>&Dk=#vDcOQgvX8qf6Q*(|$Q@y2 zserwWr7$>w? zt2nuukQk?kB(}Dzm;fJaURy>X3JP9Daq)Wg3fS4PI$9PCSJ%UAdk=FS6S=uy=ju3XV$-##rA zRt|Xc-J$5vs})?_oP}xapPGL-iEx^wORq$3;j;;sNaFj-%@UO4_~Om}P0gts4u?~D zxs{ZK?1B>SXA)9-C zH%KJ5!g{4Lp6%-=R{jU<*yOA{HFP?6Cd8L9@!XE(GfntI%~@gLB_`DSv9x&MGj#yu z@}Jp$hq3+sA(Yi>68~dZS*wN5)~pDX${t^TZG-DK#0aaOD8xEawwlOTj!0uyuCui6{B%CEG>Om zxwDzDPGakm(YbRGLTg$xaczY?du*7%&tuyH(a}}$?z?Z|ySqH&gC{LwY#MXZxxY!sB7Od@b!or0X*tIJY z8#Ww3j~>@Bbm%;+S(6W?Qpw8UZ3(C1P$?ay=yBfJ!riYm@7Tg&=0{ zwuaMZN5^#54$en>d<~?hf5b$2fq5^K$A$^$FX8H%2^W_(OjPSwSt8`+WwHJI(N-Fb z4on0$X0PPmoyPLtVC|QJiReKrt+qKA?c0&H!5^}BgW%wh0(bWVu(Qi%c|Tys_q8Ct zP5E4yD1V=QpPfw1Q%rROTDPVsDJyXB;6{Xm^uW%YlX31`K0H0iV$a(WPQ{{93UIN+ z0#`3yXYZ6k_(7Vj>*56^Uh5C@WT(#Xk>WxRbcO4lPii^Z4%et zeyc_8+D9;axG&bMsmjE)f(dGq2rpYmh|@Oi?pZJxW+64TB?=1mGJ#!e-V5b(WrBDQ zTQ7>{GZ z{Z}L=2C#N^4LiOTEYCdF26tlXX0v?tS$XT(eoL8{k7AvHNyyFZ$wWBq`xCa$pAj4T z3+n{*W1RpcJ5D*`;=sP!5c5%TI2DIV=L1f@+NJD=yW!UzNQ_O!tXWj?biul{w@|-H z5BU1|v#vb(f0NsZNDwrAb68;C_jR@>Ta#@!xhC6gGAG-%ZQHgnxhA{GHQD;z`F!8^ zdHS<%=bpRIK5Os2_S%2g6h!Gt9<4neKJ>OPq3KnS?zft?2yi(OMH)*s?N1tzQ{L?{ zELE8) zHW}w$?CvX%t&t}_^>~svFeLt9VeSqN-_Th4yTa=KHoAde?0#nR=%w6y5g-NkBX>aMVa zT`c<_2u@AB1Rq2j*6KIj|3TyNPkyFONQ`Ci7szx*n1&q{A_xVCzT@)5)Mzp%0s1I{ zosdck6i(=N(96lG88EQqC0I#hV$bN}6AAnZ<`LXHp5J~P{t^_zK!5$62)Ri(x@LyT1UVUav!=ov{k|@ zEMS9lg?9xm+b;r4^%(u=RYjD9TuZQPt`PDMpD6mjYK)@C&|^#xVx2PMO$Qa&a~=u!>9 z<}X+R^%MWpR91lxFPuXk+;AW8HRA!d3Ub5&zXSnqv^tk+a1OhN!9Gy&^KBRGY)j<6 zQr6x;Au~T22KqpMnG1&r=u`7hA5k0P?n-oWb}#|6)=98 z-ezU)#<{+3CQj{z*Uq?BZplj4pAbmQ`%DRU#`<$WZ}LiOILZQkaw0^x4XfrNonlAp zc`-4;>lXw8O|fzW|GaqWrsl&>(L&kq^IVggR-+vc6>pt@)2^qV2ZhrIYpcnejdU{I z7*PJ`+v)dSWzGoV3ssIUQ&ChHi_Nr5mfzBgy0CI#&4+KY;>C!>92K&f!yc4~4%X77 zK|n7ON)<*&FCqOwCq!d-sd+$-Dm|Huu01p1RmM8vV#PE&X$qB(wrJsOfQzfu4XTx$ zll(PUk$mJP*LQflkan*25%!MgTQ>Mkb?YA)YtQ~^weYYo9qaWH|H@AIkr`Znwd{;~ zI9Wx8O{FrsyhUvL8)52zjZ*`IPL%&LJG*bo2skY0m1@0fQ zt7k2@#fAFm%T%`NTI390Yo~8|eobJTPK*4oF*ul=%v{#^P;il%vv(j-PhHmVz)IOC zj=^^)(ryLY+WNL!Qz9p7S`y|=7^Tq`N7|}ku+#T(-sv4>`MV+=?$DkFC3ym03QVVR z&S*KLFyJ-3k+qVC4tjqhSdz_pF{0Y@3D!cxoBYWo(js4D*SEFqzDZx`Z5x{GRk?9Z zu9~L54t0=uzdP5S{lzAV;E2WvrRQBOnvnl5({4?0Z7mqBdX0aiG0dUN6IkxllN!pl zulhq{01u5=u?IePq41y|)Bmn>>c*c3b{gFtU#&tnt`9R&Hk8W3$w;J)GK?&g|0FT? zzG8`;o^dnKzd>cjdoJ9yeZae>{<11VIvKAa$z;N}*3|8{13v_Qo0p!+r%Ulz=IM2L^yA&L-sM6ISR_Wu_pg1!GB~D1Cc?F}7<&$$p6kMzmZCac z*!}tWvnND0=oRtf_P}UeO!YTLcxkMqOkMd8*oZDA6&(dcqjwklF8m>A?O z$cz~fLX=u&lqIF|{Zn&Ukaqq(~#&VKw7o=EE!fb*!13Ad!LfL0%t(613!`d)^ze}B%MC#1ooQqgEVF1kTL z+$F)P=Kh`NvMraXs!@y*n&4e4y@fOVHJ9G87Djjvtc%Xv(dH#)q#?BCQ9)93-r zd15K6v-YuHmEe@6#rF30p~XMgezm3^z?#+q5r1rGqa(=q`62V}MQ}nw%GJ%gFm?)Gg#jC zZ->6DTWfoNt0RPl4paqsulJa8cRJ(7woIPSI-4T_^%8{V0+^7{G_eKsMMXtqf}G-Y zOS$}HLKxd7{fvC114*?OnN0acUXz=A%wq>dqSd40k;MSY3xKq92@OqbcBcn+#6E`| zm=i3nvdDgS`Wu>7Z8qs1$SSZEmPmyqZga{mC1%32*&^Tz<{+vs{{kc;aT`q`VHy>{ zmI7c(gNfIXVSjM8f{|3$)$v3`vIgC;u;JqUIqD_Vn6Ffst7p+S6Mn&8zqHY5-wU+s z;ieyAq;yRa36-&>tW?*|v(YvfMjX zrr=D>G>gd1eLXgjkZ)>E-#_}YZSUHBMScpCF5}?9z7xWEr)zNn(i&yT9xRiQ$X zISIvsk>r~sarfg^Z~7*lnBMSCXa4P(qqa?3vG%-woLKe`5+V}A;Xmooxbw}qg;&}WsXLGl9xC7~;dz zgg5RSNok#3DhYXbZ`hI9lVdbm1V?3jml+z#e1Vxu*GM2+-sbDb>(h0i`9evv2eA;9 zSP~AXt%14U{;ND~ZYJ9*iQbi&Q%FU0frpH$c(Nro0QK$`;;%nWE~FrQUfQqTG-d$J@3pv&cERa zp+MxfF`JB`==A!;h+e{Eae*Qbz(rx_j|AOPCheSxknH+xpZ{Ub{y53%eRX#C+TDq z<34}#Ad3a}l6mqM>^0PRxUx(-Z`K)k5ve#NrSS=&1SJGCHnMV9YlH%$BAd+Tv|uH! z?@X@Yhla}^-IsdKQOy{e({cD+Pq7R(+Q_r`(kr4QDwHWfWiu9sUhZX+XOkyozz=Zx zcPThH=9t*u1J=U7nf$TN;$4PfHQi8VX`s`Bn9MANvwQGytPql81cpw6kW)|?_6N8( z)s`R1K;}CsQ9!iSlBB$t=JCve>+wPjEBAMUxfHJu5&`kn;i--pL6%OTH6FU5@x#}Ul@ZR2YkYEg z@EOmd&EXd?Y`|$?%odTYIe-{OSSk?O;^iqT-|Uwm+Fo_i)0JAaU$d2er>p7=2fTxv z;TWssPq*(z1*hzS9&7|ezUT0EmzBpWb7(|98egoI(uip)zBYTINlC4>IhEtX-hCmj zaNoeFb7fR0hO4tmMe1+@J)DLF20lsHWR2wT^BNioi3cb^QGEg1Se%6D;UpsFW=87P zKgg7#f7+bM-|_%PZ2vSgFfXcqd*vhedGiS;Xo%ccgXHCXscc4~ih6^^cshs3tnbe6 zc4NYmMZ22sL7@IaIM)|^+J2yx#BNJ|bXVD;%s>qu7%vbQD$N}o{O4vl4L-j$rx{V%G<`T~mQQ<;-Tr6+bXlFr1#MLQ%U#PRz zlol2D3A0%j7#Rq5ce@E<&A9re0C3I-zTTO6 ze)jQr<~6snB4gknw4nAWQ$vJ7%)gx)3#qii-Yja0i-%>iR)iKG5%+z?2245CUm#9O z*mwT}dq`q^_dREGwze8tCb~=*1wx35{WyN$aAP+V=^`*S70dFsWz74lf9n=l2qL)c zhJx`BH%}1%{u_+Z3>Un^mg$Upt8EtB4nT(B2_=&Nkz3|>uHZ?ZmLRe)?DONp7eJ6n zzkvlN%my(VkMzX_jzZ=~Dbhf4!P^nG#U~_1pl(tcnq0z$MIz;Ic{z84YZ#uj7(8uV z1TE`LjbvwfI{XQBz-DiPCgi^>e7`%UFv+txd9G72gPnBT{d0iz)?cvH3zHSgM^1&! z138+c60Y5XYj8Y!Ix%%|WynrZ;`bK#v*JM2U48vsYIVsq}#LK;CGoduiA5B$n<#XIIsF%sA~)4 zFg&A^{~5ZPy_3_>^}Yl^G=xzu^$7?;%rv~WBtV<*%i`v9OZWm=HiMkwp-0eFULAH5 z29qA4HC{rQ5;M};?~e-bu~XGTg*BDQez zN%Y`$c49%o!hvUISJa2XQMRvyadFz&H{WD#2Mz&v`FVM9aVXfEeJ-yjv-6dDWDASA zh^xb^#I@$%Dk0a`Ig+y7HEuohbk_fb+`QhdO@nKoR~7%@XWSUQ=cwsiUo8chdYY=`7=a9WsX)*$Vpv0_0tj2;VgyZ;j&f+>>bK< zdeOhp5t^I=VYp^fV5RGaV9%2WR)@1ybkiao`k$i&kmdZG9?bUxJwCN8{ylehNMD*h zZtJg{>R5%Lszax$7Avi>kCu@q3v&BsVlQa|{CK}yd_oRw@JMM{wJmNh2TErKGFdYr zBuw{9S*2zfm`2X%@$wy!B)$=M4|9~u#$-$?5$o1#QRs7TEvVWxrs$@nh=#+g!s>w1w?$dKG zRm{$(XDJuXp58|HY3qJe{Wf!FQ7X?+g#WE>*)JwHg844nN1!6wF&26LaY;=?TMxxY zY^;DcGA1=SJGAcDI;%GY`NGRs=6D^fW}5GJ9bodrU0kJd*&|r`bfP*sbS{@$Uk9{N zazw(v?BJUY>{2KiGGD!%&|yyLNEdTY{NdRjJu6TodvIx$P+8Ox71as$7xHfFWDF`U zrktM-xZ3HLkd)oi%cz3BWXykmp7L@q5c(C!QdYSe^#&FP<<6 zi(;|1&sXLf`1&>JK=-e^qQc&_ljL3EUTnlKF*henqrK+%3=;%tWk&>ab#00{RN&h| z2t8p@D}w3h>m&1cbgcB=n_267qr|=u7HBH(R0As7EA{N>=Ue{aQi8)AoSZ2hyLhOC zJxLHQa8XfOq-6U%cXy;a$4?yLm-Qyvx#xRQRlcDsD;Q(r;VMR}4EjHZEbMg2DTa)% zc2t}$w*pV`_Ckpo?05HY7OR($?Rr_ELc~43^WjUlVG-n%=uO29FmKDl+q1%Jvz1@? z>HCBa_=9Un%GHEYE87C14PIT>P*>xrL_5tSn{l^Uux=~ArUEkef3rH?pkgOTNplqJ z|1>bOh4*yyT(qwj>$XHn_^trFBMQW>;5Uq&OqadE{uoKd5HOu^)ulQA_GBEwP0y(E zLac$u4#qntc&7U=dCHW|F7*7}b5~ay<*R3$HTsv*q_5CgDt2}C4)Tjt?V&-Zm&RFz z1rMZbcl3XbN@*63O@EvW&dlIvw({gf{L+=lsgeNeMJy=X9zL9c-aT+eToBatM?Lb?8rwL?#o9@p-L{j=ha|k!(y8%& zJfq^T#ts&63W>biZE@)@Y6WsBg~1?b8_0nTJD*(e_2KPh2YW#ww#mCdb7xBmMO}TI z5EB5vfS=E=5g?x?gGe&ir=nnQm%%D;%JxyMEinv6WX5$bl^0xf`;^6R7x9)^uEP<) z9OIv8VBn#|B)d@a3pNVfFDzW#h@zrHK2LzqhvF%;vNH6_N>}uv3gghI{x?(8uPWs% z&=@obB>mZl`rELQG8;mBeBnc0j%Y375!JXvH9$?xa(_0TDGD34H0sX9F*9l`3<_Jo zi)KRI+|Pm)Yj9~PWx5K4oBKSQ!3gLrH)V8_lM{%Nk-0hun2{o$Q7t)o|JzyNc9adV zScV#l`+G{U+~Wt`)5jO=1cJzSzBNYnLXhilcbMo25t%F`u)u{~tvNW^3Uy)S*a-V- zgJSNu|F$7OL1#81LZ05ubrp%N(pb)@&dsgQokNn0%=k|cK%bn&(O0LMcNSA$7B(yNmOrT1qo_>?ygeF*%D3Ha| zM%$CFw^&fL-aL&pt>!7PdK45#{S@v0Ag2JuOKDw3*q~TbVscLtH1kXf7!^u<-nKuAPqDd6V?uFNaBTf@G#9T|7QE|V}FfQEYvF<-H$C(v7j-Xe9}>-f%ySl z9Z*oR@RS-B8$B`>Us(6K!@M>@4q5?cha4L`yL=gVb#)yU@uGSCGc)5sgif( zXw)t*@|l5-e$&wI^J_w)D;djAyzpyF@~Um2W=kS6US2{UpTzjY##~W5zVmaa1pyqB zNAT)R^X-0n=j`$<;2Ka23ig&5<%R$U2iLMBp})vTp#RFRi>zM5Wqg0C!)A*g6)VV5 z^5P;X?TuWy>=XHgvViHRvDkdJ3`a>hF)lUrRfoXV+BzV6y>)kd@bS1LDUh+pe#j4$ z;&^_TsM!){;RC77@s);-?rV|gKXAS(li7lTK`S@hc?qW7YH9c@Wr@q>ys1PDWddqg z-0$e{(CFd39muWaH1OLKGda`92l9e&aIBa8X-%hOWnmy=YeEiRXVStqG(tlnBO_>d zN5aG`WK$!~e}@qg%8pM!lYCX7WX}HHlF!6xC)t80IlHWM&caedOlpLkknk3lt{DkY zkJr$ElxV|2;E8~b-?Olyo41cdF7zgP9d>Ilb$_O9v<@&`*r>nAX4rpRmBS!gMa5r6 zi49L|UVRLmEP~eM$AFC5G@^XI=VlsD-XlgaS)DpHnK$6mYk>@gXzup;>zslVQE`uN zdpV-C*lky=iv08N-zmP4icmTzJvaYo-8VK*{XhT80yV9jr6;hy^NifU@QN~Lc5T)UUa z%wh?pzC7y0H(fOlfbVuhKyGfR9?Q;1M0CDe@#m$d(p>=Aw7PPg}@$4xo zCN3nu9X72fJ?^8_b|oleufTM3Yuh&r2~4*Y&gS88dPC3Rvna%GwcB1!ZvJQPNh)34 zwL5Fgt50vY+e4hn)wn?EwI_|a@M{c_U^z8L(0uf?wean;;Qmnfmql7VY0{Mt1_6F8 zGZJpi=>6%b?wF^iKuPIHQfU!UQEO3^MQpT&R7uH4zwAv{^16%ojE=yem+wWTW#S+2h_OK;SsXntfgUi6lNy zwJ@hae@M8vVj(_|hLr(eO$_rjerE@pPMZTnx%8!9{GR?DiIz6cVc*ST%YFCd-mA%a zRY#c&rZ~|EHK4(4hVbrkn<$a;Y;URh#wq?Vu?wiu6h!lA7p?#5G5Xe#4 zle8hEV6KsFaV)=hL|4qo_RfTOa?(OtxXx746hWIx9eaS2k*OG1dhlE;C1~E2AN2~I zzQ>1kn9ebZP%fpb^K7Nw*d*FXl$RN=q21euGPqx}QF(-cPrdl2x?CYCEvu$P|50bm zNg6O>Gy&+De<9OpPl)vM(?KBA`Ia3Y(&l~}@$>ILM4*6XvE9RfN#7Cua?cLw3nuue zUIX!WJ2ytP^3du#Wd5CERl+Bmby}qBHe!F7VhA}8?cgH%cLrO%s3;ItR-{i5C8a1y zVn?i();4=xU01X%-6RjkTV4}9(Sp_RpvPnVVa~!@eY}*E&a#U`6US`KnENHN>+bXk zLB*j~OLb@@q)>&L4HdK{EJK4U`c++$T|s;dT7iPw69{^G-G)j~2??T=)e914Tk(sM z0{L7f>(v_wIXT3+#!|ujqns*J0t&5ILLuP?oGg55d9l7#>&d$TGk-lRnR`+eO#EJ`P&uI^(|93=d}#Y8YD z=oQ@3jw~V3PQmlOd^+l(J#uH~8W4z+Hkxcg|QIrxHx3D)SEiphD-fo2LhD){Ty0u~&l7%=I5KSyvdsfnass3tB^?X1k}) zs!u!MNP^5jOGrll5=X`dp=KMP7}VxKMxZ@q_`kyuE*6>6xAlRCfOBK?<^6ZflpLo% zo#tL390qRR+??LOlM(puWOzQ>B49ItXt#i{Tm3A9m8=3=Z`Ga)w(=WKR4${FrDhBo zc2mP-oWA1@9%{nWt-6fUc=r?SC^Sk;#S-0nb37HQ6?SO>U*%Rfk=4-r?H@k=%EX2* z^+RiH{FPx|JaF2?H*3g^iH;sxA@j?LqcP718QS5-7F0zmS*M~Cg72Cy zCBb%9j9|)AA~5e?I||OO|Kmu#>n6Ou zSA1l?h|Sd$r_`bz=t%5QuLvTao4v#{!+)nC0Z5f{G3eq-&a`sLjz>D4Va_1v;%s)- z3f1cIF@_Q+Aw>j(2)bPn11teVGc$vA4(9>92antI_oqToQc@izUmpb64L1{0OBYg& zpxYweuIb4pN+EuDBqU?@=HB?k{lGte%1s>QuJewLW=gj1N;9-D1k_X(wVSpiAF@<~ zFL(yVPl87FI9XU8NCkXQU`=x3LI+hV`qo~EFGRXSOR1;~WxWBG3VW* z3XM%^cNs=TS{C()!N4U*s86a!B6uO>B_(~Ms;W>9-WnS3#|04IU&IU^|HAM{AR`b~ z$qu}-RH#Ue7E9-4N;93GuMx8-O$Bc?nz{a<|IhtHy5vP;D?&zMeSQve8e716z1pB9 zB!(I;RdM%v;xWK{O*UdhMQ(IHQv+)30YT140-ssXLf|xUtiO=;Q9BYr1)453^X*OzZ&YPE5G95;3QgThPJgq@TlQg?$d3OPZ|PML2>cQ zasrWt3Che>^1S6lT|U^y8mGBXrOwool^XI>iNtsE;_k^w`M8`O-0N#86~U+!Tqh)W zNqfrq_SWJb)Zte=Cai&L+7cHMG@MCR%Nxwz9{3Zf@&$6C3?%xg{MfCJYjT|ykBjmJqlu?4wn_qmeS+Ws{Q=I_h&nt>E`Es7zf}D9dfdDQD0t& z654zMmk!w3Y24ji%YAT~yTz}|jt*VO`@15CZZA8}!o&6BFGeE(DG; zojE;NzL&0brc;(vdjFl%u3fY3yAx%_+O1SgXe6hRI1>GQj@TviAT-JP zv49)4-<9eTuMgD@S35IY4y5U#4X3b28+mjZnVd8JHMU?J*0aNb(D$>=R%xVt@M2t^ z{qDP(Ecf?`k{U!3O7qTWT_faszL9fFOD$yA>xrU2wL2_y#N?*Gl9S_8dMab%E$2Iv z0!6~OJUtPP@unuST|21@i10@ zS>*}N(Jva(XLdJBEiK#(cB^n+ zSKEX!sKZG`NUqSLx;E1m8`i$@M2tFTE1s-uGIZ1riF!kwoRpH-JExqVKJ>7EPBSvL z$EG%=j6QX*CR3@Yqb2`P_D@d6TK`Ja*vb#8U~+foEn{Vh5_JM)VbxANKAfb1HZY7A zKl&YL{W#wO8h)a?xJ6}2n|;osq`i4uQcqA)f_363+n_6NQ?$1`s9q+^K2s13>DeB?0mgCjz{vipAX3;0*WZ$9)y_#gN5}C zJ_pGUMX+}YjU~|huH4oDh{qgO^TV3&@rKUgaYmEP06DL$Rgsbv90SMGtov#Gl<*Z} zwm6am3ONQ4mWqXWdpYV_b>*Tz-y`*jNz#k02VB+wRV0Vl7^XFl9o~Jk~vE1TEhhdletLrz>Aqgi2 zN_0E^-WJ*{`!ZYIJk`n;Csy8Ki+}kvln6$De<8OEb}Z}d>HOUDt3A#9-wLy3RKSS7 zyzdy%*YH=r7|*W>17`$%!z=VqB4CFZAPzJ`5b;9B#;EYQ>{Y{GD^#Vs z@^b81Y`0{Jw_54x=zsNZW<#r26m&3=2OG}WT4qQLypSp>`;w4kf#-~~u-<~AeKAw? z%#EWm6M83ET@tnZi-UI1IVP7nQK6X59DbPHbjfG=2?uM-xzksHkn1IHjwlm(M{bMMp%wE`yCN zLz2%QQWU{dYNsfFS)T<{7d8Y>0Nh2u-2;1i<-52 zaPz~4XWOg8pCIY(OibfDzUvO~3D^x2JvE_u9`T7scDj@z@vAX_0rqj_N=b5=T~-St|<(=lDNC$4{pXV zeEjNN`w8`htS|;Qa(iqdLy|)peQsu9@$AH=*haeJxoIGqx7-OlAR)zKiS9SvOznxl zy9#tD(wr_lPnv)??xy)+MKmnnRE1%Wele!bHC}!oeq%g&y zXupe{?Cpu?GQv>F#P{wjY@Ck!x{XyQ8?drOlvWxyOJoJ)a%98`#gFF76H&vjwc36T z2iStWL=Z$C4+M*-x>XnMM-B~z0I4BSVg85|t~EXRg6;Geuk_Q*#BZ1Kxl?6blzV$_ z3E80$R5O!Z!N&91P!2h4{M*7e~Hl@oVSufR=wZGdz^pdA;PeiooQsgW}^C z+SA4Zhei^2b1Mt8`o)8@>9Vhle=iTlBMeLViZKP9sUeLesBi zW}XRkEu_pBkU35g(r4feZjnnPDu2a(37^8a#a|s-)6~v2K#h#dk#~(MZ-Sgc;0xPd zJ!%AH5hYd_50{{99et$?pU+n0WIWiOM?f~ehU8<32_WQ)(_&Vqtf8d7}4 zX^hNS$`}>Cn@-t$bvtt)1#@O_ZDhm6GmjxxxBPa}E4<6WxVkEBXv(3de2WM4a7xD6 zsf%{y8$ur+(-pEX@@&zZuN?qWURJ)$ESy(@OEBty98N8aT<<@d7zY5b2uMROC;QX> zcLlEjEh%U|Z}pTtPo&}wVcjslQtJIa0RloDxD3j7qOV$hSbGP~O6davq@KXKG|ZPK^`eD+s8HcZi}BUQA)W~E{qX7=7K^_9crvCsNl&}pr!+X3A3hEF zZ#R`nD`c~VagoXcFv_Jp>Ee(Vl2|!jFPWVb2pO_f5tgk*OaJr}{ zBD+F1T{nBEfD(fz=#2}+Qz9xAe`5Y_8UuVdT+832!7+5hDW5F(DFd$*lALEAG}quXg- z2|^|TX4jQ}h;-z3HPB{U z4?C)OhCeRlFtn^JSfiBz_u~UZUJGE)S6BOQb~e{L7z@$Qd^j+^e!$;M7Fp+ipn*YQ^{RkXvUQd#A+AR>K zrlu1u|5*~`le<=72s9zz)j|?FqDz!)x)LEc)VWBdnk-v!fPx40Jy=(q_v?f4^9=?N zj%BtqNF`O`eCKj1(&1)5qJp>kutF~(H({Pme67+pE2>&=oyp4#r0L==ASVS|%;A8& z@hU2@%vUU=0D6lsPV0F8!$K1%>FLi;JAs@`ZdZh8a~T7qHy^JQ=5t0^fb>;oi71e} z{2}g#)nKMXZFbp zo*4Z~(Q!-6dAuqMEmx*Af}te;&m39C-kuYIp8MvTlJ>GIR@Z*8zHtj=@z}qW{}P7s z>0fqae0&6Kw|k-oLt_mn%Qmo>s? zV*lO0)y?P4clCUvzmx5{rN&bDF9;LXH2HX2W#arq*dMi0iopOSjAZxb=?&i!o!R;? z_QXq)0{x&9{PaR!D480V%2ZFXiGe&4%Cze#A91tWwuOU-Hx3FGGoHd7hUoU_7SC1h zpPp8u|A(@ISjMurZw)PZl+&RL%g8BjhukTSR~+zO?i1+@g;zx&o|Hw!#0?Gre zLVJCgSXhjbZ!*|H_4RdMlHlcMpa7CEJ1*Om$|>+Ph z&cg!(|_TOUMO3dl2=bAonIXFuG1?`z(ApgE4 zM7|_GuL~Nh8Pf1-qv3?iych{J?D5)fq|5Hsq@Y*4f4{o^|9*A1eQ2o2;Q3}XEKK9g ziY1^ofHmCVu#Vjd*Kk{aF^Q2eaRFACWG&;r#4^mlr~O+Sr@+UPb6Xp_u9v4fD3Oo3 z$iTZ}mY}cZP%ANCpj+R+pi}5cwMB3sbG1G`U1yOL(~8IFgq6rz zSy@5|x#3>>!T-BUu6P;ry21~q08t)Wv=n;UjHi!hv$!1&kw#NbAm~Fy-43|I9|Hd` zO%)K(>&vB9oe>?1ylgNCwNp#sez;n|s0*f6RTmmFO}zGKg^g=zVF@Yp#47sV$*f9lq85xptPF42eL5gpJ!mnJ)kjsAKuJKs3P(z>|Re@3;~Jp$oIm8<*3W3nDyb z9Pv}+So|LogI!^RBRSS8eP1-2HMYe?;8hC%^Ug_5j+~sND=Pj$Oi2mt;7~s{!w94- zpnf{uUi}#dZ;+C(zv3Sn3K|$62WK_)f+Hgnk^OI@6mG^QCx?@1TkAdUNAJ3B2W}3& zwg1eR5bWP3TIp1Wmx$#U#j}g*Ph$>bV-FyH)13$ck(Ue`e7NXDMNbOr>Owa$ql~+X zDaBKyvMD8H|BVF+={`{edJbBqfjWVpfAA|%lr#3crEjrZFkiP5GXwL#B!UUhS0vBn z>x0aH%VGFOGSA&nb~xAm1MrCQK;T0Qbf6N8#}a~hdxx{52Biw6qwH|nZVUv$((j(6 z!s^H;*QBe5hg@Q#Iq zH_aD|tUR9o3R|sZLGux0wd_}}?EgJ^tQk zK3fs4yqu4m{_p2EbT2Oei59=*hFjn@>aXN~kOhp(=Z&pICOrt3{S6qz6mp~X=>GHs z@`VDVrG>uEWL!?AQccL=J8Zz!4fU7H1R524Vh3G<`1o&fNHep=HJV|Kt(muJAMsD7 zZ5zXoVUeBTfBrbhmj7Efx*(w-(qM^f=Ujdu0f()%1nC=3i`}Q=H33RrAdUZYcBS$4 zUTeLp9YhTNwSQ+P092nSsaXS=DCM$(e;yp>d%CLnVPV9;9<5vrMFUNZkRCqbodCFh+%Mn-Od@s#XJZv9cAjP$G6Q2@ZJdfbXyVz|nfIXC9SG7f_qE zpgiZZBY3-<&4f{Qb}J5idTk`YW!)?Eyy+JSp+f8yE1N=a?H?{-XL9N*Lh1cnky4!d z4N1rkrdCr0##jsTznysF^m@Pli8j9-7lt(OXWZT1Sv3*n4OLMQAcghS8y_C8yP^v` z8SsSL{_354rH2_1lt`bTWHTJ-{64e2qM@uHx?-$Xilor~lep*Ev=}JU0Z#3MprByS z;c!xQGVK~P+y>xS#Ex!u`U9W_`FG`KEzr+~wbF%iyj;uD;bal{08F9#_6-e_;SDY( zhO`HAx3@&by${FL70-GN{c}LizDM)==3yQ4>IN>jxw*VV{J(#J12~}&<54dZ)cV{U z&C+D_0Fe-Lnq2=chyW*XqZ43LJ&@&ZqSSUTVIblzE&;w>L5Io_%6 zWjuWb$2-XV87Jjy2@@yh{J%$U0FUMabSB?leh>PAw(jm;@8KxAX|^lDS8HDac`k2u z;D7`EP0$iy|V5^#{LAy7T8F8g2{<0o(S0w_Y7!)#?e57tn;_Y^4FN z<%NHb&!Tn&%eua97w4>Tar=BnAFg~a0B70X1NgYvCn2ur&Swb`{~-e`as~$2{{A^G z7i(mnmlJ8UHK{ZfNVfxw=zis)kpOG|U#b3u5|!~FuET8(gFpb|`;P?sHJpXIFWs(J zH`LGXk?E%iCJPH&uvn1T>u_Y2Ycnl}oj`$%G2=hm7TaAckK}Tn$Gg6!wBRloa(=vk zUs<(4$O&+C&gBLV3hgAOuV&xaI4v}rsVP$))iovoh{Q#caQ3D{VTR_j2CQo>kn{TX z3DQ1a$2f=aIJX8u5YO0)|J$72jowdeT6NpLY+l!$T?bG^JaHg>ooA~HEdJ>kv{F6L zn%m)PqPY;jTXmeP4Qu&F0mX=Z8}wctgX#)${KHSw<{|s3G9~ z`rkhQDJniNet%)tXga3l;vF?UUxD~hfDaw|DT_CzJYcs0(*Uib%ggC zI=h^@Tos_OMs*98b+S+j>v7)^1>|k56(|Ntv-o#`qQX#@d!>Of*$FJ*c_&D-DtY<% zkgynYMs^1yQSrTq?7Bc@vdX5*-q`5chy`^`@`H87R z5^n+=oYJ_so#?fqQhm>hM+9A;aimVwfMG zs5`iXf-!wV;kAJHPUnPQ8rBr5twA4kksmnp>2CL9kHmV5?0>c@Y(dJ*Ot9W^F}yn{ zVQ7sHfgEd9rp_oWW%FuX^VfLPkAQa(fr8!ANhFzu-~1v53X#vyjKY-jC19?mR&A)W|Noa z6##xsmC(=tYq8x7L&W2lRilGKj1b=Lc`j3dB_B}D6h^||c_wv>6PRsx)c44V64@V# z9+yK73F*M41-<|aOT#|3#y27XFHmmo#_Rj#kqE3T{&lfn$SxrGHj_hR(7~4D+$4lS zLRwyg3%F_>gBz@;S5_2~hS!p(SLJ0K>bCyvs}PqNf-OqMegx?;8E{1j6we2@1+f9w zKND;)(KDqQ03xX2HIPQ=6#S+ zaWws8GavG#Q#tBdIMA*E4_X@r{U*QC@PiQvA3M56cYm&nJJz%`)C=`fiBFpXxsBU7 z0@}O-=wD4S-092tcR@tRksscb`L7CoE%;g5I@{U;$#Pp}ob@GGcl*L`;auN-cL6D^ zjRgx4*Ef(8Nq=bXZ&3uqE+i~`<=b7ZW# zqod=Pp-vX8l5*z4UJMceE>N0UD%0B(V@C%79}@5(2cz*G>zz(QnV7gj9QGH5*t*a$ zFn8s1K%kLviOKe5=``v<00?afAUHPx?lz8MWLzJ2>}Y{!Sm-0Cz(M6kYr&qMP=+bZ zv-7{9cFFtjB0#Y8;yfP-_W^9T()$SzOh^@~*Vt9c6Y_@~IL-4++l_3uR0h8@=69#rs%}9cdUd^U#_rsYEnf64q8N5P#$0C%Y7xl!O1;=>Vz>KDZAeE5@E26pvo~^ z7>C8?=YhXivl*hTZQHA?O|km7I0kBUCdX~Xz8`2^0sy-APIE6H9FWw)qJC;YDJBtdMTLZ z=R)iK8JbR!`s#_V^^?eNZn%tp1F%y7jDsTv@X{l*^SGfvI>_MGl*sEr6Kcx`&wLJS zrH9~n4Z{R_GHnj~;UQ~=7vyXy*x=*s2Y{+Tfli+Ce@U?q%so&>(pKANK=s@2a4I(6 z(Jar)-J|OW-6oDAwCFhAjfoX}v(KMaJ?jLjC)jq2-ryVZPvGxTXUSM+3tqvJ^a%qZ z_i4<(f2P&_0&I3%nea-%u4}0c@j(JRFT)e#*b=;BHM|WE1$6Nh0+Lfe*>zGdP)^+D zI1pl=La(w0SyWe;Xr^QZ%NX7jXs#9qofo+zqiW~j z*yxSg{p;iaKOC{LLaw!kijE#~dxX4yzB&a18?MlxgGhw*Ll~ceU3E&~=8D9#Z3@sA zWfc~YWwO>F0u;s1%JlW2fNK2J4JznI0B}39=ybN=)YL4aU&2J5VvXb3T2^cwx7zH3 zX4(MGSOf8s5}#Ff>$V%k@AWTzWCs zALGHT1V|CHh-5w2BY9+yE8mwH;id~B9jx$wH4S#2xfl(HxlC9I^&)2PGVig4%zk7_ za130_SL`Ox2Mf}9ogR>R8sCC z|9~wjx^b?D-;4~Dj@~~Af*tGe{_IUnITXSTphm!3SxKNBM9&q7v2t;Tt81eK`C_8( z_y$VE3fCErTDrM=18u;KvyG*vVurD9iUxLEqY1a*z?3a-0LqM(DcZ$jmzD+*!@%{d zkK`ZhU||1bLH@OdA?w%syr4>VdKfmY8eP}Cl-lNCz=F@l0S7CXSK_Q+6!Qux^otkd zdF!}r8|u-+b|}$%Ft3(b8gb1Zi2>ZO^_UMy);a{4)_hmHdgS=`1V+ay&R8H))E$e% z>k7$+Lq=o(FDttz+$Tj(k3X093;Jf{3<)hQ7y|>cV!0Brh~Y?T$-pVr0iLR9-njg7$=)!w!c<&a`R?N13P zsBkM<8lRVl(-o*ZbL<(32@wOw%q~L5Yb)d7hsfCY1)-vYqPBD$$3f$#VAOeFH z?0U=7^81QrBM9`VcY6me0Dv5hx85Nx@FMMcyTjdYd-{*(>}XCv#k}AHuJnn)-adtf zBV1PM_d#L^qk*lON^JgUz|O%LkzX>-Eu{ya1~qJ&omnPT-}C5SO#& z8*-xe1o|k@r%~@(2`z`~v|l-cQcL}6^%R_gicrRymGTVTz%_^^un4-e#QC&2RSSr* z-b#V%=ABjwee{CD{q)ZmY*AuP7VI4I5s^UGqkx4ipU516$FemZ46$*0-1I3^mH_-B z&aC&f^JJDg(AXcp(#{$YE^a5JQ(tS0YVYI?#*!i{7eiRc2&v4?eCwC z#fz7tM~{whcD8|~rE!r5(hGth{8LB>%1h+LiPKoWek1hsc9S^IP~r~R1H&=mJo^5x z(A8CQ&ECBW?AgPfayQhiI~u)ub)mI~#!3*%3Mn`^zAJh!KZj1Uf5x(jT~Ph0v5vmK zY{E^0))>^P@~>$K-~8zk7IkyQmi}58de9v+b{)mM-i02{6daiKDqfv;5^w#IhV>nc zl@OE;dTsD<*dc_h@1d~+QXlU{mn!{WwdfoUO>B-`Z))LpCUJ0friXfJ z(ejA15a&>q$B)&#vjG8BNyIlopFXc)*s%T@D?um&O9w2xNS)ax-O;|X39?Cq z>E|Zm*uLYy&~1p_G!T(j=AeG#rFc`51ttE%YBX#<8jlTK(Yw1R40N@SALom`zuW=Z zeuKPIAE+Mi{4;2;+ZO&Lz=JpRKweTMh(LiV@ z;Nzo)l-SxfhLu%gI5;$fi;II2yIrAz6RfQz1C1aEB@Yqc{~$?8nb@&oGnOowL=To! zj2#PQ>SFfd6fV#E>+@?;7UMi>KOzDo=#B8xPu3VZbOwK{#((?Z3wL9dBJN&dni6t|2=5lu0Jk>DJBYy zKHP-EUk!zwI9;F1{rf?5|2m2b7k}0uTZIFLCnZc}$eNwl ziE|o5_U=3{M1>zlyl`B(zCN&dGq86rr!lOGF=G~>Y18J^mMu(7G}E>Tf*|~h{eXxSiqcZGesK2I(6JMtqOu5lpREX z|3|R5==}LBxPJXIE?oGQ9!??X&;jVxOP#ETr?KaF@#p>PaCi!P#W_Uf-aXZ;6di3x z+igkES4N*cz0j^*bB(ni2*TgP-#-{WKIif1(LLO{^%&*LN751uBcnjX$LAs}j6?2# zs3_H$;NVahW@a3-?Me5j@^E!^qA~|s>}fv5CL8c;FMcDUGnD5OR;wC_sT0; z9=KV*KK%n}so^O+<$dAuEF7M~Vw_1y0b*iQF@Elx4Njia!<%pR!k97R(XgQ=HdYV> z;ZJz{I21>Zo*JP;pWj_x<*=)T|zXXk1pwi{7r-BQ!4 zAP9o+|3w6N2_YjR2e)tEp~W9}@BWNOkB-uVH3|(HKuP1pSylK!%7ZvLtI8jRs_?^> z^NX`roF@kg2!P`8;(X(&srIzgrH8K#I&^4EZMH$PW~B55K`8bF1%;Amj-z|Sb;QPo zz{lqfbak`ontnvrcOc^8GL>)s7W|}{1Eo-TZyYz? z7sieA!vE5R!u;t_6)xwvPL3bvfm9sZ>FaAvYhyS$IiPRfzUbPu8yYvRt?n!c!hc3k zP%!rF*@NKVdvx7j#e)aobe-lRFfdWckQ5uMF(fKf&_%0OJyEZoCw0~vqGCl?65JNl z5!Z)-ff04ab?F{JHv>Ts1mRyr1b8Xp#*GKqvSl-V{P8f1jkDnH9z#pK;vMIF?cjplr8jb@8wkR{{7Gi75`*2LQ4RxFi zXk89Xn>I$3Ds@P3x2Dc`Ev0iU2!bFKPeg#1Qc_aVaryFfoIigaSFZSy01u@H@*U{u z#V8MNehtmj4iF@~MASxe|6UjU{Kn%?pcjrqD~yV!Y6c&M6OBl!u0@ufEgL zw2+?eL3I^KSXiK9#q!jqD?B|L!`0PAnXyw4N;_d;VRX$!(E2f5ANQ%l8c5ej42ka; zx@KbN`in$HMuyVCH8%q_uBo4)SEL__NEip(`xN zd2lDklJh`N{>%3FC^0h#+x&lRB$+ zNMOexG&D`whXu2Vi7CpLw#B9We+i5oY3 zNt9p5{rjBSEQ$niCJEvvBtjygs~e<*rSL>Sg%bwx!qe)rSbsXcoW17H4*HCaR=wps zl{HVR&)Xp(+=dPbd<)px)`PjZ3yFLi66+q+u0GY7!OF^t)^^J4dUJCV>IhJeKoFjR z1$1I!lH#?Fi;G5TYP^!#Gchq0;o;%*TMMDzXeRy6lSy=^QC%i21@t+OM6?TuY(u!Z zI@9mX8t(3%N+uB&*%lTS^qZufryvM|AiMw~z=gj}c6Kfamk1;zB;v`FK*YzV(-KA7 zPe|lEKy0ip($d07Oy?;goM+hM89kkxR8h_gr%fx2F@F{o=RDApLs?jubBaX%%(=^1 z$Y*6~k!Z4{{q1Sno&>%n2`dxm>l>g(4JX*!JD^gfs&ot^)UNGL^?9@{1J+6tsi~<- zEVaM?BkH)_LrO{t{U!rRNXL`7&Y|B+CY7Zrv&!b=q|DdV7%RAHW z(TRSWjwG&4sbgnEpDUB#HlvPRIn8wHlHo@X1VMPYhyWK}I=Q(8%Io{|^mGzEIZBp? z;NZu~wAa4A*ANhJ6%QZYL118(BBYx(RYO?#Z9RLkz2^K2Wsi9w{Fy~N z>8@X6&3Vu$m+@?${5dcX)EQt;x&hVe(y_~vpf4aHmP0n&A>dj5TAl{#Qy^zRs~gd=f? z$kT9$leM)SEG*2?s#RP1t!QD)m@y=*O`)Tstt=dCt*2*5zd2L!UJHUC2>%Hpz=i*u z+qWMgF)<0yco42#yF}|m+I|9OXG0~V#mp=f_V)46)h!^AoTUgY_M~(CIfuEh zx17rg^%OfT3muon#;P4t82Z8OMT>zlDVr3H(fW zdUl41i6z-k&jAJ0o;I2_>!f(sd7A~jt*rxz`I=OgtL)Dh8tT#c=_;T3lH=H6V>&S% z9WMLpOVHTZP!XIj^J?Wz62HYL{F^-6$x# zxp?u?uiu^j9;Z*AR@VHzb#?V{{P+*_T?&P;E(z*H#rA1f80Y2XqhdunxVyV3Z#8Py zZbZLT+9uX0R*w}ayYM~_dGL$&mx+LCml{j;5%idlU<}4mrbn?VR*4C=% zE}Xc8LuFWyb3HFC%z3aW>pT|i>~Uv%ZjaX-v(9!5uM-kf0bd9oi}z>2tzK>gbSy(y zS-DZ0X3F-Tql$b>OIH$}oL8NN|No+;#iCxb@f`SE)IqET)aeN%aUDx#T6E3@NKMUG z>Y2pEJfx)LQJXqQP7XjwNF>tI)cp&;JEMG^KfuUHpT4t&BE)$hqAvXda3}{)+GJ>G z1kPn`Wo4n1*QwK3IR^&^2PG6l?ZimBNTg1uIEXP3PpNiB9!!w+$1j?F2f-*973ZU<~i{GEb2Mr=8tT- zjO)X~{`g#;hL2b1+2{QV-x6>K!PHcXj-}oX%*`v&wlkf79*KV)I5|}!n{tXcW;kCp z4}hh!qraIp32U=oI~d$VxpMZjzd8N8=u!sB4Z2A1`>>N?KG7mKUE$ro4*p9u=HEY&WwhKE4jDZ2aDbQ7H)NKRW)>pQ< mh(A9Yf+7flAPB4Y~bm`Kq z=jzJ(moAaS5P$rxlMw#{KjWe!{<`d?ulDRx#o+yoOP8GUo+~RF`dV$z-SVYHWuENm zF)7k1F6Yy#Jm&$_h$YfTyH{dzM78)M1T9CdntR*kIwH)9DI#9*1E#lMq`gR-R$gd* zrsrI3@;#?OBl@jk2_0|J=SM!GVPPsyBG2U4`p=q0!1ivd^U@8c^MykO4XKiAV7aw^ zy!~MR>{Q{GFJE-Bpg?(N(jgm? z1tXju26ZGa>X?eZH_Q}e=6&$@v%l_`Abqy$J(l#V5GREv`uN8{K7G)*cUjoK4r;vI znyh?0HQhT(tZ5rpQe9xH^6xA9WEoRZNizIA#I6qh>uQ+6x88AF6Bs;Li2bUL^6;Uw zWB>aVDkO0XKKkU!e?+y8A{lS0TeGw`{rRz^TEUj~Uwcht854!0yTX0i(T16sOu&CN zKk|HpvYPTur5O(BD*dUgz{YZU=&ZZUB@@J)hbh}Iq5e1O(aHz^=I4}(&1g+2RqEdey8p=Z{}j%DU&SLQN5`V_ z@&SJc;I9mbnlO9gskpcoAXD1vh3db7T_tw&X4u`}zmiwjAyr2;ROi3`C!JTsZgvH! zQ~#U#Wo=?NrOp3S@jt@(yCnXjIe%8iBuAuUrrgVKQ(DZj!al}7KLFJioOe!}RVj$O zMuft5eb5Aw2`XN<8ns{b<;s}D$*?W={MVf8!fJORNh<%=pzh}<#r|hFoQ^GDdbLgUKwcXr2x1w|ZIvdqHg{}yuk`@A++N6-K zJ}F5mDS2E8xOU!;5apnQKVB1)MgC5DjB1fxJM;J4{ z*h?fH*Ii6SFIv$vOlr>)h?@W-Df!0|opQpJJG8}S`L->B zcGG}8Gw#=JKFS_1aEeCZ%AFW@9CsY00=@-puuRk#>@FhcX3udnP$P$kfa6V=OCw@6 zDmRo#yicnM8$JPcFtOQOe17GsrWGzGfSR_Wl>jZ=oJrnck^a1;HZ+35$k#qjZaD9g^f&+V1smGb0J>&NjDNMxGHp14Za6jx13a-Ed?E}Ie1wiRk_mt6}SLe6?6+kKeDPQP1Ym2TOoTu7cf z|5;*GnsmO8d}nOohuc6~RvPhpF2DAZpB5Bk&39Ux<+?Bkbdv_Dzl>Dk|C$S04d;gJ zHY~wg+^0&6V)=2y#$bV_twY;EcXFvF-=p!WC4qYE)I#zgL^q^qeKo=u=J~yzLSz;! z5{UPsHS1g2u4oz^Zq&UWEVDl*wKlBTb->SbW)av+A9dBmJyUWgWfUG*zsXxC|LCm+ zV(W`^>p1pz;=CRKvQamLU+5AA%h$LJ&yLr@>@a6g+J z6%5?+rT$e#hUUQ{8!NGO$;sJ-xg))ax#q3Pt|WfsMN-7J7R-D0gfW9+)_-HynG?7WX}savRFV)b=F+4j+mG2=4cTpZ~`ij-;NIdl$} zwwdfc#D-sHMadZw%%E2=$p(KFNHbEK*C zvb)$h7rA|3iwSfp7`^SjA4d%`xqq4T$BnJgpFefY&6(U5PLl4d`5Ie!u6(*(ewfp6 zJkatQ&+dfWt5|~>LOZXlogZz?3^AC!0?cAZ<`TKlay}acAvdmJ(BbdS_ML3aQG8Wc1~!+;24V16VfucH4B#?yqwg#MDU2+|0Vrn_@hMZicrG%6zvfD=jU}Q@&Um zM2YCg9A{O*E|%N_W7uD7QQ!{cJ={uj3o0h)0`2+{aLHMv&;<>nT2^xl-(+6+8ca6-FpVG z4}7wc0BfF0EmV2k*7~%;Y%_45^8ytkhqYGSHpSOKuAUEy^Z@{4{YAy=_yJ6Ef9JLf ztSNtp(}5Yj2472ebCmo_$QolqeBvnVPdDFNjfL(P0acq14tLS(y`$Pyb8xyD%hTf=4uU?+j8YW0AB0K1s>XPa4q5wdlWwmhAqd98Z)HtLE|XSKKhiBp z`jT|tXM~nwoUpQShEa7t2~V+T@-CKb=A()CA&?d3WiB%NE{EG9xW}8*w9MP!2GScE zou)|JOvM!kBWG9G{Qbo{$m#+cB}&SolY>GFiM#`XJbr2x6j^ILW(bHWXF*i1_;GZA z%L6df+jtDQY*{kkqM%x5z?gUR-B`_tfdJ#CI;rz1215hUPC9NG_g-+Ca7$}EES`aQ zHPAxGoI@>q{rx&=oQ?MP98gDoP#k#os4=J%By;w=4^jYKDvMgfrHR!#Yho-yJuiIW zdu)2^KT+MKWwLE4uRTC>!Q7c%(ABnzH%eQ-7GlB|D?l(`N1YB@>+_~;Ln_6J2S-ns z35*^MJ;JvpOp=~m3T7ZBPbo1vtHl6bjdn5B=_ z7xo9!`?Cczu;uLIjE93L%8Rv1`V5njo}2SWzDTG)ehn3QY?v+5**&o9I#YO&W}oN#7O3yOIBkB^@9U@wKEo1&EknK!7b`kiUJP+>GmI;etuouB^o#B z3SSHm^Hf5t(A~wUuAS2%b5`L(vW~j(xmTT9yhj(bt4E38d0G*e67C{izNMa29%Qj0 zH$Y5)Ul|{METMqkq zU;Rg%=5I`to}3?3bXz*-b7)KCm+7q8YGfnawr-J&{@PtA(c*utdrBMIM5uFs8Oax6 zuUSjBc+ZX%VD)zAG4`{sus^>XKfa*^Bz?FWBwxDq+hYwi5ogQxYfSQ^6C4Aeb!kM+W6V9pR{1UlGFXnYqNw|X>)5o=#*^Ty#G7A zM~guWF3L8E&Gv)M^&HjNfpRwQ8B?muq>D7_nkD0n^E0>*dzK4ICNJ#|N8N3uw$cqe z{Iu0SbebPQ13R#BYhPJXBD0|a{Ka6|I{f?~J6ftQ(1ZtqkcV6RlspPZ&Yz7v>b1_g zy;E_8w`3?e*2NWOe@Y@^5UJ^pPaZ^9`(m?Ks?8TM2wAlf`~F?ak+l8Sl_hJ5+&cj+ zL!5~Oo5oy5Ln!u&#wKDlawzLG58L0U^Gyh_srEo1%;LOS()Rf2g-xcJ@*to0JW{4v z`mL6w#{1il$>%iOj{FC#2aUJhtQlyeBWz2%K1h=5BU&r{pQi)Pn$3=P_qPLGqvs{C zdP>c9!v+;=y&09)sFlMcrU6uODIL@bY+w>1NU$q&v7A8M5xGHeRb#_yP+EK zIFrro*ZI)qj;02y5n5Q0ed-yuBmJgd5;e_HN?&Fb`0GPq zk(cvn9NMSCgz#(0HMgWos=_`g<9GB74_M4wa9fo~NMR}%9SJQW{R8_#XP867gbz28@^-aa=atV6G|DD?j7AxEBFPzI_wtpe+d8oGbT37tewHrreER+()~fwp81`%b>rF7 zz3Zt(zT49%=V4eDc9rZ{T>Gf?Ol>xV4?3*^%(4Kv8bmfs*T?VR@ng?zq+U%r#g`o8 zyIkc*1mtHt*bTBgWnmZRuDMZ?9;JCB?lNBw(>{?|OWV(OaOr4_mea@5P#RfRofsp6 zb=33UKP}onqKyQ047Fr_I#rWE!wG zFiws$v(sdEs=lINHghvMk;ToiXQ9wvkHzJueVxw`+zFYSz_Hvr9J`YkGP`QlR1ei} z1MAvTHV)Q)12%%Ni?`u9vCAnyr^bacTkdA>`IQPF>Kb7Fq>rE_KOXL8J?@0$pcUe(y;d4i(Gtdd{you@fq~!Q<7EVFUeL`)Rl!9zzis7H_yFmToFx{xfir7{5Gg}= zQMfKYD5UwYog!v?YwW(mw7ty(q#W|7bv5gJ?~1rpj&B8FqmiQ`;H2XyL{J(U%xQ@7 z{PL--1-~0RSQ=R8F_J8tW!_~`Ucl@#PU$ASv2<~KWtg`xLwK)h>O$6ed=%!l%yc9a z7gnZt`~6Va`EYAV@bBo&T`O>VtEI2SdMzVG$nECkZg)Pbi>+tPs??|kbV`HoTEjv1 zc^`+dG_?1jCiX#i#mV+SmpibG-d3BG5C%B5hWX{~P&@|LM3z#;;#W4ZOIw~YD1R`{ z2Bqk!u_>;H<+_l4x%bEooef^-qA17;*l91_4cK0KvibEU$#rGAM?c|-DlsDNyzkFX ztDDG_RsO<&&8DBjRaa&(w1|nh0GVef9rHSR45TBn9t+?`=s)S`1C_N|M`F3{eK{r zkGqC*Qjl*!)#*|hpP02A3Zb-gW))J+M*RE~;}_LTD<8^}S3a@71UKU0%15wQS0W3q zF`K^(A&In&?=PS&IV+E?ghzz7AoIIdUn7^c-R8=QQ zuoq5;lU^;V_2;^SZQT~ZlZ<)y&+bZmersqgx%Q5d=<1q&Y!m^cO@8y#F#4&*&7S^V za};G3$&i9`IF~7J1AY25Bk=pt9GQWXUB@-nGWF#c@!cn~Uw#A@I+uI*M&W9m4zLC` ze&jO9O6b+4eC{aPSIU=yKawn(Fyd;qo7}auDvj)-g&6sb@X{bxghJuqGm)Y}QF@Mkh zH2n;TADdE4pU4%~$@|KZWnMY7oHrjt^~wH=75{jjn<&2_-0ZuQ!&7{t9KK8~P9Ve4bKJO{G!vB7vFzL}!wV(&o2nRTA7nf%UR({{}ReyLH+)wbK#`T_CTZN#tQ z4GPX%2=kK76ONhjRopAk^QRnYB)4qT&B#`EA zq%6_5n?Ia*`?RyC*tisKU%QVyjanUqEF$_|}!V#aTclVhV% zF|S`v4C~vnm?r2j+4jFH&laE71Ov?N3{dM&V%xD(!idjZ#xbjXQ>Y~W@@I$_%+>GJ zT*|DhIC(#nKELNxFc_g42<&pL;e2*lVdV)ZaITj6@n}-yZGSW+%hjsOX@2%gbDd*t z@EVVod_TopYsIWR5n+<-9xtB;)Z7!;w+5}2)0g+TDh&{%B(wv>7mVK)8SL^)KAB}w zwFPCeq=u>9w1kK+p+IsTC#tR!8!q|lGy#VF6ZVn0Q)98m1xuC|VODV+=FxZ4^8$bx z%(aixm7VOgRF*t#Z^LtQEk~!t7((gI#cGVASg31y>QyTsVap6ARuxqRIG)x`p`76( z39rL6o}QVWW6COd{bS3jl$vNhi1os4na!QstshQ6J~iwq9xi#8+mp1|5&fwq{~pQDL~|tU!#v>`(gesvmxs;_-c#Tx3(x(znXm#%Dlnm0k_*IQcoj?-e7} zn=%i2a|Ri%28n#6YF-p%w6|*j(sP&d7#Jr-pD}Bz5xO~y*OXpi8WVBdX&i%qUO(CZ{h27v<{SQ7JE5b?BdK+-CGU2; zV?J`-_q2by%_|tJ8Af=Onyc4E&X2{Ye!ID1&h70lE9U;98LG~BRMHUzIx(7>eeLWM>3|&kl{p z*d3p8j84*7@>Nhtih!;je3h=?J6W{k6e>1r6`F07*RU8Vt9H9>%+XozU@^=3tDc=t zCM1o%vMQTzuJ`z{Xym>7;*$O>Ows}K)H*K|%e91&#i65R=CM*~Y3;HCkF6s*wI|$p zYk9=L!7SGKbyIRbyMxwsR%oKB6L|ORA6ciRv6L@2S@{l1P~Sp2QZvdeI6dRjAV zWYOtCWmxG2Pbxme1xHOp*QCC9GvCD3*?KVlDj>a5oDp6TX;J79x#C@gczo3*^1E@| zkHZMTz|O?Xu6dkF9!7Nuue;OT(b|7dzMdWhe0h4l_^FA6U%+0{JyYDDQ`D{DN)OJ@ zC|hU~5x4PiSo=keH~1Ib;yg_nlV9E~HCJh8>y2std;mYv*C%r+Ln_{HlG#}I%=7$s zInUYe_U9cp(F%sh2IaG>{C;a6JS6@6i~!YExHEu)zJfUE?XfyeiP$i!+?X8t;UQy z$0xla*womEb_)GZ5@d3zzt8BUXD(Q`Kv_S>tgmVnPhNYzf>MZ8pLvHdo(kT--d!EN zvxx6hEP4?Qsh-C(rgDF4*2xu4&=qnI0TeEEr>|vFJ{qqx(#T5VchwS#K)yHT#L z6(lq=RH0EUk@ft|A|Vetrc@v;jVpo`mrs9ac)xe&WtdLMq>~|z~W1;b?EhK z+Rh~jt4JoD*7sAxYNa9@Z`+L-E(`r?w~eq-bF+D6h&W17P`W27F3!DPCiVJfC0{|o zqjT24sQlaHir>t?HMykeWIr2A9Xir8-XU8yY$hal{*agD`uQlPncGMjR;t=+B;Mbn zepe$&g)Kp0B?F(Gd^cxMmw_+g_2spp`eLUgeC({c49?2R>fsCD&v9n?bUO%|U&F;F z{}rFnL~%HO<9CyR0sB9%#+3Xp>&9=sV3S+_;x~Q}Z#^kCb+-RHA=gR&M8rJ!_xJx4 z5##S!q8$+Jn}sxhVSP0deM*He)MRV!4E|SXflWf9(qB{D8c37o2gm~784T68i-|Qd z+Wo{pmmbU(?eokXsA<0Y@e}4Q>dSB~nP%t?*{nrim(fREE8E-TTv=|P?<#%fE_9X} zzN_16iO#%sql1ejWdqrh8OqbhXj6o06IE))b2kiahXR%B)QleKc0KchKXDEsvzFU^ z_V}7*1#DF|C)@{IEA%9a0{p*2P%e-nfHI<`@ifKp*?fJq5eeB>!;SV#T&2}{#li{hSJK=)J zs}Q5?Z&7d*vW`jg9P~)>?cn^r&>g*e)fB*oYEygO4Edt?}THcKWKrkd$XC&H-EHtM9`#}~M<^vyvX)7A&4X5p1oGkU2!sK{+aw{?;S zPm|IC5@y^PW|oAX+*E6J;&_;EcFbs7GcZ%p=^#6_;DikdAj0fdGIKe6mB6kIjA!Wk zS31Xm?oLkBeXn{uD6XTBPY-3om$Ex!x+`h+n0#B1x&1@~Ev_0ad<#-)tzU4ZDKyvg zg9B^GWYXIzU>R%(Tp~7qP*JDYyfGYTl!dLZRLp}O8(egQMQK}j`59^ z#pqNPdD=7;Q{lv3)&c_rJX_q1(kReW&Q&v#B_3PO6;kQD_m+^kM4LrG+28I)0%r;a z#y6i>335T7pz+CAPpyfHwixdgu^H%8p+zT$753_9|D{`4r}$c{Tge>egznG9?DN-F zyUQP}ZCd6n8d3WLY{WFQXB`BDGCQhcg{MOl60{Ikv+je7uicazPzSo1HL*OzWli35 zWHsckLvQnhR!feXIm?)5e@6$Xo8|k0!QWo6KiFsV&MLypMf8==$c$~GqwA(pJ#bOT ze&*$Q_CoiL7UZB~dflc(9_U>I{F7kVNNCjB@0tLGCZPbE(!B?2yO7T&;{pBk<_tE; z%hQT^echFgZo~WMA)d*+-1RHwH#b+3T3)@#Kg-@|CEbw>v8WoH)B7Cf_1E~` zRkGzda{%-H3e+ch-+IG6n>MZ%RW}(IA#Nb0fsGI!W!Q7BN0Qq-L_?i+eLD(V4R@Kp z7-gP+n*V%9mP2zR_tMNuWt1WCS26u#se3E2%Wf42N}uvyil6Sl@2|xe@u-%9^CR}; zJErgU%U^SBKuVnC50^~-@}QP`Aj%f?5~6F_K(yM%k`+#(kdDj=jkIS+HhBXxmM@5Y zsr|Jc)u~xV9?I!!7*W!wQn&UpCzhEQuR`|u^G(?pk!>FR&W{3de&B@f-J;LRG&4~# zKd5WO)7)A8#UAG>-o8jVHsnV$mvS?t7MHGuacE)%J-mzOy*Xor2Ux~t_^;KPDMMyq zqctBun4cpDbXi4q8=~v(IpDbno@ZL6lhXH3%V7w`%O5t@4KE!_dAj|WF805h?6+M* z+jK9>>O-J(Q*-Q#;(2l7$v(2gl=<7SauKgLzq7r2f({qpzP4gvog$O`eCFnCZGVID|KUtAMt`WknEOSLw^&$*6|yj?=mxXrtBp z`|QS>)D>0~&lHT5zSZ~2*=M_U`P$VGw7orK`{!3erg-yr(~K@N`lu-~FW+b1XEV$C zLU!x?v-g~UTVLUGMbPrruAdIdpX+WRFVTYRRd&Jm-AlLefpUeVD8kzvSGoEkH2Cy3J4xz$`8 zbxn-DZQf)~L12yjoaHnEEzdUVro0^OocY$@&KYe;`{kXCT9`X;^&B565$3fznMHr2 zNXD0y;ng82rx*G`(>sIF*%%#{A;FVq)aTou4$LqnQ?kz*B@bn#rVA}ni+NcmZLT}cX}^;jb%i@x`D$E8v9e3eonfpV zQdp?gp|A8jMrYj2G!!Eha*HNTbY1xKJ#cw9#}T8G7aqDK;CW3_Eo?R_^C}==Sj^pl z8pDGG+3?X$8u^*A;&!jJc^e)HG36J!NPn^a_=7abudHA@1|R*}`DeRK6NiDrJsdQ1 zGpdV*--}h%&2tbyMD)hTT+FafwOa3UODhxl>diRer}xA;idFmS-Uqn!X@BgM6wYsS zlN-IrP%$l01uhQXH+f73dMav%TcNpduBLdTzgFtU0o)b9KC9Sipg(k}Z;S%YDsYhR zI+lp67QS`fpBq*c5UP*;aq~X7>9L|jS8%}h?$aNmDg$pzt|*?yg{=x1sf~JzNEfcS zH@Lj!hvPUzA3S-0R!qKZgnw?)l2*Ptt}k!XnTb*yG+!%!OVm!O=U;1Ybrn#%9vsaa zOOqd#$k=_go4$6{RgLAWHpuc*bvxBeOm1sO+T-Nl9~QJ#m;*F38Pi6CSrpZocF0X7 zG~6pw>v+r2fe`bx_2%gFN&$l~Lw+wr%DKqy!?@0)*0Jp$`$y(WHYAeByAt#q+6srr zT-lweXtN}VBLGb-CN0{ifwyS?Lz>5Etd8}GID2HL%9gwFE#k4mpYfd)Li0P#4eMP0 zOU&K@rDEwZ;T@K3y$65xo*vQuOV0Dq^34I3bL>%-;M4$1rvH`POzx! z+2CTLs8o53BdHftKs`?mQMbBPX#$S}SRCab3^}f+manrzLPDmer}2OnuBS9qh4&X1 zDyWK|!r1lVlY;`IUbjX4YSTZ|CvCq@PkHSs%ivNHX>b^lLySCkG%Y=y!V{4BUT9SM z)khjBC(0j(F$KqEfRY<;vT6FWP@e+Tc(qGB`o#T{uqw06m3k7H&rzl^jqMeycz#w< zihf3r@LBIE&2wBV;f;NYica`rz1gZaeWN_4J27L7~!7f9=HQe}M4+?K^e#5^cyt;P)wuA%^z7 z8AD0OxCo(b)Nh>huV`y}@-or24MBXJ2W!(x$sgz5wqQ$qR`_zd z+ZuJ{ri!cRNUkqyu(20QSr0_($8Pe=JrDFYXx{F=-VfD75^kS-)iIFn``zV~>DJON zXL?(>`jlD5mmutIMuU;;n!8tT+M)W$#K5Hw0VDhOJ&L>}A()}Ih zb*e|2B|Ze*_@%OL!t{YgmkV63dcC2^_jz2(s39vvU{Wv1)=YXP)xu%@sJ&Ruqu4%6 zw!mPtMC%q>_R1!W-MutXa~{AW`dvGH_q2~H`Ta<#UX64NsK5T+g%iIkA8%_CJk41C zy?c=#N8U}uP1H2Z6a4O=>K!(jcyYG$)DXJujL7xJUY$-zS;;n-u@AHZ(E9uO##(pP zu^3=Vekbg5v_F1^<+0v%=6y4DXSe*VEYYk#d>u@Z=X^@DHQLD_C~Ph7UehyS!fz$` z5bY{pb=9ubwlWv=?xaTr8|RMl*qWA22Ghz}r@JTVa7Cx7dsSF-c?puehoO7T%u zX7SuQ=Gk-mDD)eAQ!Dg|o!v|(DX_d(eUqma9&{d!>+K*T_?lNwNEMqp&jli8ei9Ws^h6BZcy$FL_mnMQLJ^EKrJ{-3vy}?+x`Yzq=h{#rsAcgOw`&lLC z$>PrQ^hOXtgxP4oEA7!e4?(zRa3H9BNCm~u6vg=Jz-a6hbc};WvKKrLC^&*vT?gmy zmoEd@2_IyS4liFH^esy@k<@X8 zS%9u9Vv`TE;<+mA(=J_ah3?a7v&Jtf=rhmeTbVj#Luxa|ufsOej59uU`K>=vY4&&k z0)O|BHjKJNGW@5jD!zJ0To~sp$$01HMp*+Uky(p;`!MG0^*Rx?8*?}H=U$g_HMGgn zEi>DRiI!epY@OoMe1v&XC27OER;(1b82eN?|LDP&vmOV{lJpH!0@SSKcG|Zaw1u1D zq_G;zU&w9PiS&m!5~3-zul)4o>eS`O+T0y1Jl-!79bQ$K8u;BVf-P^Di|dSxDA9L> z_Lx^e8#t2bUDq}ba67RwPWs`!+`W#DF{k1b4cxiyW zih?T8>^7ZFs6N*IemoC4GM&fXd}6h$--P{a&cjtQay?)1+e2Nt{3>$dGQ1nyROsw? zW1!yV`L=I*T9apT&zk1V{pMxGvVG6m=5+6hIDL4LZ{u{j>dA2U*n`)5go(ldUGqY7 zgPfz_cPF_^gAD~z9_&@xgOz8>jJF1YAHpT1cRGNsRl7UnIfthK5~L2RMuK7Bgw=IO z=*t&*o}6vUEUh)Ep%TR(oKj<2A8?Apq5FZWQvsT3OFf$}pDnxlY2@v4{9<3!T%bNa zQt^Awz7iM2hs;6|FD+mG5gi7vpM5JSd;i09*v;rvr+`F~a0&B5rY< zQIe*#->&+lO%LciBK7Ob^!Ii779`~w0wigAHGi{w@Deq>$9BM_%(&hjuTkaJj($Fu z7Tde)UAN}x=?<5ZJzOm0Q17n?}eY~_JPhLxG#4^8+8r3}R)J>B$ zW1ikqyc9go{#8dwNy*jKwNea_q215IypWV7Bgvrinr!VS;ENd?EP1d>Ha9rB7OH-ivVH$ab+EOSW}NF$bCC-I{J?e{Zt|) z_X5a*Fk>u>N-5XbbZ?SS(D6|X{3>f?z*QY1f~zs}6KgdLf3)*+A<>wdAN7y&rT$~+ z_@`bfZcGMA4E)uwbtjTMOxCz`AN$2BY*R)6s{D=vkS z9Xn=iuYb*?5ou`Rvg4Np>!_B7z6C?{^iB#9uj+yf;>UxSJN?jfRx(uax=&%B~KeeOle)K zB|@W9(-;51c~)#6$5`oTy{f_T#b?5nollh>560CWc2W%2umOb3ufVv@usPZwe~7 z8-O%#_-vAQPlU_YpFl<^#DvpQE?tJ2JiVN$aNU$VjFoNpe1Kw!H|Y};|Fs>#-U`Y_nqrwfD9$lewhTG4nDT`E88 zR8|S>6VXA`%H`8rfR@!Lc7dYKPe-!Jbw5-o!gCKkaBjw)nIRrwQTc!`@5G-Htfch_ z&1f}q`U;#0<+OVIj-%>*4xpbU?GeTn+~U7qR&0H@&!^@0?B)213Es1!J-1w8*(Pu- zQZ(~H{sPhKg@!;l{#cOaK4uacPF zC^N6qE=wMQSORRS?vSvMJaFgoA;E{S;~pP;jMqsr=*fgR`&GGkmV2<2JE>_k;-a)% z;b!!(p?b4y4;D{PghVLld=snPkihp1Z)UA&eU2)mcdcrrhZSX794$v4X}ugr$4Egu zrwZ!O@rhxer_yw%*KDJY=jZdf&M}cbcGp<-0Y2T|ON18Xv2MR3RS}y#N%Ei)vXbc4 z+me2trhezfNGpvp<;l^7-~4ed$N_*zg8M`ru84%#-nu9I68P*_QM{ePWuIWk57qEL ztA|RJEw0$VTaVUGXMVepQsbfGK>xfyQhD0TjzbMN(7#Ulk*r&IAU4H6sTAzfQqe%q zD!hDMO<42s3%lnHg9R$pWjV{UH5`y$&Dqn&=A6V<(E*%Jw&Uw>4>p`5?R$#d*H+y8 zs%vp62CG(?n^*U*RL0P6kqN)g6&yQto+)^WVv{xwvx3~Q52_-DIuRG}0|SIaU9?yeKjV(EM zIO1JDUht2Urw&7M;@FGd%V}g^HD-_K@%DK6t0lKd`pU=^0VN54t*V~l>Qxr&t1}?( zH{*XcFaKiV0I{VS<)LZIV`aUx`-}TI_M1Jg<9==d8*Fd_h@e4vexnb?yaQl!EQnBS zY7tti1Cfo?HdT9V>;(}GD9=ggV%+EWR4u2*Cg; z-uF?(>~TDPtOdpDlti0O+EL4v{$Uw6TM#E3_e;r29L_UCNfSQnkX4LvD0&<#aLs2~ zFTQ`&+^<%8b9?E~9HIOmQ*^3CM{Z&{tN)0{xQs(Ppqv-YA8OKINl?ksLBe*FXCG(c zlo7^HUkSw(VS!`&1Tha`0e}cW!?GBi#hISVKI>$T64Jcm>?h91WsC^}Bvo#2={bxq%UY5IFl4ce9?M!L`Q%?stXQcz_= z*6xK0mnn@w#F0JjPdgCXk>${%%VR3K`)A80CvMq#-W<_?o#IDU#HYQZ@_Avuw?oe% zmB+%{N<<%;j_5;!jz|8orGv8siRZ#8M4iYCBu+{Mk@agiHm9-l_sPG7c-X8Rv-AIJ z&G}E;V8Q6W?Bn%Qk`Jdh60&yxa0)-K-547mKWh3MUOz$co90n7^!la01iX*F!GYOE z+$`@e{XKT5)IVNwK;6LHeD=?>`eqO`)62l{&vyEs?yUYdEbdE0ce(SgA$Ex*oH!Eh z#(?X$|C(`^^+j!oL-=#rC=*c*nmJk0(0>Js(}e!^CP*QN7|a~L!}9hYfjY==fZ^}Z z6xfD|$Cxsh^7}tRp+brM&Hs1F=>Hi8afAEMZ2Z-}|F#SV|52*{DAj*^+Km4w)qj-g zKT7q#PAT($V{Irb=wrt_;;)7cJwI+*-1-nxP<`#D1hP1HGN54T%Rwlm{Kc0XcZbSj z4x+7gnRK5`_p4zuww2Ya7`rjLwi006v^+5g23(Y_)>NgI`@Na`x)l+wmYv*?+|c$G7|d8XD8 zH4a<;Dq_I%sMY=)xmz2U`!rNk|LI>3#N+ziM@FstC$g?)*oS+?<5Ihp3yG!Xg_Oi( z30w(Gr5!S--XP~W>`r6BZia*fKEQFx3GHOoY6*HP=R_Fo@G9*MDe3V#k0cwC@hipK zfBQ|-T74+WvEc5SY3|iITt#|{uzG9J)ToD7o2l^x9?cIDbnz>YU{W~GM1FzeysGPqv1+y}vI(*z{ezce(-XaJ(^Uj6xGR4_^^gjIHr zaBHy?d!Z-i?TCG+Swi1c@SOLLL2E!vX@N^DOtTv28Dtc3nN0EGQLeBeSm25e;^LFf z_xJT440^el*SbtCbBMaGVP>@D&vD6vS*^Hy1SRaET1V$>jW^j%lxak4vjqY>*&3$= zXbKG)TAwW(r^{Kw&`J~)r&|Rd(708S^G_#09XT=lNVYs-M5C16;;Yv}%>k40fRc8z z>y+zSn0!nlKDjSx&Ij``sHC5#x%UoiW?t%G3qE(WOo(3J+yS%McznTQm z^%a5Rwm@q$*$Zo*mOTNbdw;dUgpB-CiM5#ryn9SE@j-DCU_8tMaz_8K10zZ6!dm$G-;3 z1Gw<`N;2VT4DXJm%-N(YKN#QH^7dk*bZr(Ihacq^2RH^K!68Ov=Yy-sqTB6WEmAv0 zZLwz<{?^uwhkMNNn2yH85dq@$!wLy8NPXyH$AJlS$#x2R*#5mPJR#Do^OXVzibN#Q`VfZ6+RZkZTo7Ps7FRGSkH23qcYvMTReR+8@B{+?k8Rhz+axlISQ?ZtW zo_Xv!92JjE2-uH`POEkJzF4^2i+E3=u`1fFxK z48JfLwRzPrvAFD$&Ne+~8DEm@?}V9|3tZ?~#l7Qkcp=1YHoUIlc7C#oO4(nyTi20z zF@mW8#iG&0w@z_G?PQKi9D>hx{nqPTFHhOGuaj#5O^WUT{4Td3Udb&#a)JG&JC=gYziSGZr9DkLzp%3$ zVgkBPBHc}!2&fP7N8b2l@FuzJry|xrI?JX;a;lB89FhsF>mEyemVPlp%H#n5AYn(Hej^)hcC>eJlNqBbtovPcke2 z7=;!CtU)CG*03t%xU`~SEw}aQiV2Zcze>9*`zj>6`_=JS6twlUM8m$EHdgRf_F<{K zoC)}c`9Wb;z-lUuVEQ?_i-mQ&Vfj-p)5Yeh0a)G})j)4~+|MYV&LLovo;`A4j}F8H z56ugmTGO}kw@_5{)|C+xHOTyKhk!UP0@udEX#^Ym7j|@5`FNife@iVzkteg@miv2X zxS^X}FloXdS{@Rx^10vEaed($p%plIU)*`Np?W-$mQFi{YuM}Rqqx60(*7%J2n8`e z%wO;Lq3-8~21zv0qc>!G_{Z_SO!|qBm~qW>mx}3Mk$c5yivMxF|DUC^BTpz1cb7hk z0h?Vp0c*A{m0#BIc|G^MT%*Z&*W~mlNP6CF`hN2-U7JFBWT_Lu{K~5PW|)5DbYu}MjH+`W!J6PlzDtPd(;VUSoWP?E2Ad|70N{qQ4y zWaLI@;G0o)169>W^#PGb>H6UHYoK=;NTZ1UDpCL+{i z&DK-gc!E6`dltv1hE2DwbzfTDDtuIR8v*h%K2Hf2{UD{Q9v*=IO38JM8sF-+*X9J0 z{Jo-Ue%F7A)G))=)!IbNvEx0|IXD)` zbv*NRy-l^@XUhRsVHRDaNcz5LHp7>qXSIBOrDmJ0gwK|p$GJGBwRPY;<5zv)Fc56W zuig6E@-b^bFl0?@61MO{ZL%su0J4X>5jw~S58nXj<;v2$1mrceCP%uCO;q1|U>}Yx za7v>sqzxbK@}ezocZ@MM4#OnH%6Jdz&i#Dj<&hd^=oW|!93>RA7KES75W{rG&T?P_ z1(b!ZBCmWBeho9*v*lO@l(^j!dv+L8{rc2FEnWqdnTs;DRd8QIs*2~Y_Z0Q-P(&%# zK#mlP=bT|q^t4}swHt9a-l^8PXV(rmR*1g8Z|M?s%PRwB!J#(1Q~RA0Yi5j;Yr@8s zZ=)guiJ(}s(VvBT*#Y&6lG7keNM*|N_m1aoUt_kW`9mL^XJwLJwq}3~b_AZ$pD|na zjEld^<)D*tvnJSc)d26b6zW9NEnOfuEo=YQ3UrZn=<(Szui=|Q`J7DFPjH#AO%aIu z*wy;6;9Ecp-|&5r=Ee6_uL5C9Z`%1RcG}UK$oZ7mIco@ie3JcpA;B&KDfl z;Pp;Fo4$J%x@*q$6+?lEN)xeY^KI~B|AX2oCXJF#;B@yD=c}-)H@RLr#_sie4X^Ou zzVVW{0)3p;7%q2vbLzuo|Bv?0Gpea>Tf>T?paSv%B2t1My$jNN5s)gJ~iE%H$3=yqJ%GNI|WJXdaEjS!-58q-M{IA{Pc>mq`bI9zE7w#)#VRE-(u^B7l zs0FSi+H-Q&7}}qBv*-AFz9JkIV}oj|$xdZ);In~c#k(PQk3vV4ajQ}L)E!pAv%i{| z#&>% zKkh~&gk_skWz8hSsC$Ikq>3g=76id4%h8HXx+~Pivp2OxoON@cego$9XBb9p&-ZU- zJFb5F1%~Us{QFQh$mfgRs%4!s?7pBYFFSTXe_mm(>g!ytvwb*dahh z6-u|y9eIzY!@&W_oYT8+!?(0AqDvX}htE*5WYCqnowYB!?!4~#Z1f|QPr*+U?-t{r z{Nmv+8;ACNxb`>aS4zHXpG$FEmJPexDLV4ZC@!k+Z=h-mKYJmsj51J{wqGc6R@39$ zFQse&rM0R+kXEge$YI?I_DnmtlB=xI=aebnovNf(pjx_*Yw9p?fhoqKL<p#(2OE08zfG zqcM^YAp~)n4h}AcbjRZ0)R$z$EBChNyodU^S*t|CCTep9A-76<>aim?Ydul%NL{{d#3ZVrKdFty46``GUEOHCR;y=tr@qjB zPutc~N{q=S@?9k{)G)lqw8q9Z1q)s*S6DQGUmvUWCFl~(KaB9WqccjA9`r}BF4@S$ zy=j}QA5^}*3F}}+lptc_u6sjY(y3NWc;55c#Z84@u#n;ThL-ffkGLq6`51sp9==~y z#IMbtZkvc0UGA(PQio1*#9aY2UsU7{mfsC_L0v@WmEXo2ZxQ>B7f7E5m6b-%&hcdY1EnS+HFv}}fbZqDuC-3~!YXnAvwXc=UbI38W&?JhTH zc_*ipb!+7VJ_Cx49*7E<`P{6K~iURhbdMq_gPuRXn<@qQY~wW--??68Zw zy}=}JadW#%Eg`fTb~L&cHJBJ~3s-5~l5g^gubpgmO;@T@A{NxJ;$(u{0pG6_(GRqY z6B`ySRg=aApi|l25BDPKJsd8Do-R{mSR_SUk0fy4u>)hRAYe*`=sjh<3ahE~>7@wop5RF2nWA?9A?fW;a8?T!F! zQz!i8-)VxJRb}h4QUoArA#rgAN|AF2pd?R${g1+k^Bn}4%^T_fS+W6zpO`Zgl=Mae z>{nI%%+pShD_)^VK#8jJAyd>bpl%xiC91XMAnOyEg)^XsP%1`Hkt<`W1wlZ!6x6L{ z$b(F(Q5;-A-Amj~v)~wIn@k>=;uMIv=EuH~+gE{MQWpd%PDB>DKy3*BeXZtX_uL7z zSwZzJ==qN`Bx^v+`CflS3HEpxB`shW=lTTI6Oly;aBe}n3Khq$wm-#zVK|1&&L)tH zQePA(|BdUq{^2_D|BLGo_Cd0dHrm@40$O5j`jX`#)ArmdAEANq-4H$l3PDUs{TXYwyuUsph5j0*S-X$X?h=ASw}&;P>Q)XRBi6)t=fu=SI_L)r||>a%Rj`p;g}B zVM@S%|+UWVb9&kglS7TC-t% z`{>HNQU~>0+0=>VcV1r-s7W&mn}z?I>0Z1eGab#{XfLZxbL2=QNv$DiO?yYC|7&~i zv~GoFmEB7(Q#)~cY{uq$=5ImxrzGaehfhU%76zHC^8J41Y{0T`Oj2VvPv6&s5utV8 zw8E7T*PZ^h_JtK&fvum(KHj$16cUHMxYi_@gEBZ831G3RDt>GM(!MItqj1erRj%lR zlXNHsI;bug_Pa}C{t^~CgiIQDDcG%LLKT-SN&FaQ3wJx`)du>OQAoW)%r5Fl|Ikt+ zFk?AZ6RG#T6YHt0<6G{TQ%k?xI>**cE3ZAj__^T(5696F=_9}JhbiA~-DuD%q4Dn% zEqm?y*c^!1Ad%3beNUmCuRNU}sXX<-Ns{w(MRfN!z)5aRIci1Y$r0~g>ac?k0P6m6 z1#lKL{Ah*z*51XA78f}oKOsMW{Ax;c4eU@!`z~XI(#(k2n%$XZCV#h?EN}cT$6RS6 z!{7uJ?}HoO6d|44nhl-$Ul6PJUaTSl+vX_FAOp98)rH+(J0e$SfDF_ul}{O>`z=7);%FwXJhKXDFN(?fXAq z7!d=rm7o^%*cQe5T&i?B&0wZG3)U?6_ov7h30LR6{+s(yz#Il z!5fNx9YjLmsQ3`|)bk|XR@ecJ^u z-CsJTUgLR$dA9n_w&{yoT}T%H6^yMOK{xy}y#}z%r=T&DYndp`WsmU4NW$R9r_Vbw z@O#fBD<@tRX4nzX`V&Nc43OOwFj_ZlLX_IgR7Z_u5HN}RqY8UgDL!TS4mr^lDQinj zP=mFh*6{fyJ`8|cm-$3FwknA!9A#C~e!61T^Ey)hL3694pM*awP&@I()El~naZn5Nd}>l7mH|Z_sw3ec%r}dv_&qZL##;r zbTJs(%QC0qrlg>ZH02C++@IKpcv>OtF{aGk8w&>)EGFqb#CAU2CJF}j-rI^-GL!`N zC+7pk-bTc{0>IHD^Ye9AJr-Fv_4wbTkF0x7?HjOgnG3joT{|+edHUUxRBY>l*Sp^N zjxR0?e*-l%NKHC;>4*jv(Ynk0!DXvs?+jQ2(r)HwByk*c#{>hOxAV zrXBFQwupN<&XP%^+*onIhHqMg%;@`3MZ8GF@-(2QGRYRKA8x~viA&6#wz zT}Ro>PJ`A2yrGiJpzU%IKLa3&jWie8|ENGSQxYI3CNY=OZiorM3^zgjDc=+qu^*Z6 z35|3kM&qAZoe85$k2GUQ)yH zY&8+4wD6#*tTS}7h5pPwxx00AF>O39nU1wKs~Q~qzZg00{|se6AMD<3Vg`wu%Zj*d zC8_~&^xRnG3sH2lyR&c)G@MNazD;4Hg6hSfy=yYh+&9_ALcSXhwSCvfQgTQ#T71O_ zj;~aj-A5~$LHdg7KkdpTGR5CAoJusQ+-Bga*e)RDFjwzLC&@mTVUO?N$gj*w z#Wv?r3CUy`Pg&Sy^Y{41E;K35%)qRRj80AL8Q6zd?YV_ThIpnzprbHvClQGJY_Llg zy%}a~WXB-{i3jspbYj?tBq2c=ON5C!g(rI)W{0k2dM&#ZS_-hUutwINMjDSk1vQ2# zK`vPJq}I*|BwUQanI&Jxi@pry9t(Z}vzFuu1`pj^_jX;BuHU^ZfGJr|7k`J)nSi*4 zm8)f`qY(>WaEQW=p$0;wE!fj*^1UCt{+xeaLfC_xnOWu&ySikdluM_e>6sW&l2pITwrP>06`^}m%r7A} zz!*fJM>aT(oA9jNkWnGTR)DIk95Y)cJLMZMGdm%@-Lt#NOxpu(Oh%Lm?Uf;3pPAQR z_0*Jb_=+#vcI#+k*V)X{vQ05-q2yhq&P3<3KESsk;90#+d#03zkBFH9K3?WB*{q`y zGI7w0z_!{~Dl#Dd6QFstt z&01#QRN<9zlnvv9sh&wl@zh6tYg(h_+H86+Uqs!6*)U-& zOgmN!!BY_!VpDj(OBmFBHhAih1MrlK7!}NyZQ=A6H43z;ekmH_xSaTIpS|3btSXU* z=r z$dNhu6onda#CiSj&nRku4vTWO#Q)^f9s``NrcPcg$YlQCzrc^mG&D3wB$6^Y>SXGE z&<9UPGyf2XGnTjzwvl+R7j6^~aMKMNGF1Hc$tiyTWdCkO9r7phH)81Vs@5fmILxx#cwN2-E?*8b|fXJ@%Xde#y;z| zJnp{Wta;SiJdVEV);D5pry!4}yXMG?e;%cAF1*G$v+=xv2)?dJPvnM+gU-*;giy7A z6o?l@zxaM}qrGh~Vh2?oMESm-Yr$UH;~)is-`DQ$8Nd(mqnH^=U$xdVKuk1Vq$1xM zexIo4QL%9@B8C~bJ~kKq$fXxkyEB10I+H(ks2z~81f^I7v%K48c@?T`A#ClV64`*$^A|w_+oaj zq8_&g=^8TP?`EAAkU`4?4hkCiV`YLu)3P6T4=`qYyeQUaWV)i`;oSVIU2IOIW^V3& zf7w>C!HF3nl?$-7?bk|%9N+HCU2q^`eTPj?Uc;j*4aA|>u;uxaSZf59k1ehL{1;V( zVgH1~hf^xT*RqqC{+v(sDTb+#b0zX8fm8^bK~c#2W4!_Jk|SW%n`g;cJo(c&pl2av zu6^)NkXZpi=H^#MmPG)wPVQiUG3%WyL}_k7$mO+`o+v@19sn2lz+U(`3-Cxa4_Ive v{|EnzQ%Y`#xjtZK%zm=;Q$1z=b+oLogl6$#Vh3JcbxKFm@K&X|!{h$}0kQ6( literal 27557 zcmeFZXIPWl7bl7pm8K#hU5^R~NQcmK6cLr)YpBu*J)wlaQ3ON;RC<@*I|K+#x(Fmd z2q6i*LkK;g!*Kp{pJ(Q|cV_O~Z}Z`Pc=KlOH+${9*IrrATEDf{8=l+D5AYljr(aZbjyCD#FdG5bQ4Zvqs=>GH*Gm>_uq%#X%2zLzcdr^k zGHjeV=oSeQ3%q&J@q0gn=j3m9x^sqqpQ?CV{OBLnkB=`J&9^x((a_9<&fK_Yh+I{@ z`1E@ubD4(b7hU_Ei-yIG3(nANz5I8`gHKSr9joHOOvr3aAXV`=`NOOK+C5fkl4Bb! z%PXZoz^%im5?3PrB`11=3%)m8G%Lo&W6 z|NRtQbDfxNYZCawe<-|Jw7?|62Iv2N{O^+JUxvDU!Y9mr|F6{ZLVMmQC@?P~wd zRl=4B4^IjC0sktauBwI97nG5^I6hYZ3l}G#EWHH71k{YeDQ4YqFwe@If~LAPfj_i* zxA*R4oF4%uTOOTQWrBx8fX<_yM$j-uMlk1fs25ue`BSo8OO3M2@ z`xQszqvN`jFHX)6fEM$;nMESz{w)a=(?64WZUTu89F*Vape#r*L+0hbpAtOk31_=1 zEq9cz{lk@K6JooWl34B_$~o}OF_}ey z_Cm6w4XWC=e~H;jnKP{|!7{Yn4^lEUj^;&{3b(sf>{IT@xsK$S?hNf#t@=14VHK~R zgO;3Jlszy}aKDK=1dLL9AQYMW?oyF&8?_MrG5O5rxD2;93d;MlvRqfNVQ?HD#qK-) z*@JDpwtN(%)p9>5yTKtrU3xk>+YTKn(nYCt`Ix)}Jo8dJcscOc8?rZ~gIsFg@-N&! z46l8nlL41n>v|1pTzI6IS?z&G25Q6zAAZ#2tgARiEtYgL-5WaI6QSgFhC5G(T?-g> z*NL)FJRiCX!pmreM^)NM#K2WoyLtra#^6iBvs25IRN2^$O{tZ9U?>lN2evyeR)0R> znS8})D$)Y>ZXaP;{I)9f*K1B`%_v}i_Om*7rJ%$m$&5msW4&fYLB8J3#R`kroeq(MaAvYu@T=YcihM5e3988@ja@@=wF)~Nun|7e7BTFpDH z-uv=N;m_2ROZ><35>h_XsqN*CR{jU&PvORd9uqZg5I&#vH~0I_LQOsY+p(@BH#7)Ak*>+p%XdyvG?mV{>5&&a+ad;*uwf0-WXYus0&qi9R zPkr(jII^t>+1pwo5qvORnm(}G-#Yrjrm;?SjoET@Y$X!h1S-QW?E;UE#0Wn7a$tHOtA8UbT2uDS#ngAs4!O;U334<0 znZJK(IITGU03KvA+Ea6cun3@ZX%sY3A(VM2o7)%{qAUfxM9Sg8VI4S&Ok>TZLo+u@ zfRljxH&hLpBdu}6tCpq$>kmtl&th83ZKWs6AXQ(;@HyUerL{Ndo|O4^ zIZ;YLy%}u|CaX~?7EPK7X!2uFmqPjFj$}!?8vm-5&;uJd*K_XUBrq1%U z{!sXVsS|?rXMUa`SE_>`#SBr9m1VX&Rz6g_wpHh7!Nj0L@mKS~Vdvxcvl*l@y~SCO zuWo)m$tdy!3JgYl6zO~eOMr|8iw9xQECkm%*X_-f{1j+?geN%;;Zu1N;@nJ^4yYonAdnKILJh+V;6T0(NpSSW2z>+XQKM$utfkna>4qBT{GzvA7b z32ap%iCE;-<*N@9Ux1XdW~Cffr`-S)S)stkKg<%PC4*e6%XtE-&gQ8Vq{oe!A~VT$ zdiuMK)2q#y(>W!*O)lGU*ssj%STE2C=)6)*4!DV;nA=MNdt8t8{ zSuG*$XFBwh|AHB+nXv= zhdjOIAf#GloBrDy1@>>wcZkP6v(~fyhHJGnR>!6d9@f|PWlWp6@@wvw4lDbfMJnYH zv0gj0l4}c>J1fzX<(n3}%}TIIJK3z^;t^V)Z>UleBr9Rb*V@&=!371_VVW5c#adFi zG{)XdR*vM946z@_EX^b{vzOiB!Ngs6nlDyW2>N^|n!dH4QwQl&4B($4?M=XuV7qj7 z2gzc$d35d3_brHvTK&fQgX|hDB>{;|TB3+SZ^j@}34$MBmwBJEG+2be-~x^6ml-16 zN8g_Nm;^Zv*l9kwe-d&t3aQ=y=SEb%k8@kCGECaC!aX-EN`OlooUt^jSmx3SYl`TW zm1e{oPN&Rqv6r30{d0VVZjjUW(~TV^xj{Y=t>-5WkQ`t1sv$ObQ?+l%(SR#kOBx^F zYD%){T!EX3pjWAz7C8l^B}a>QjI4$S&~N|)g;8-i0a9S^y%9lJe%p^hzx%{-$-mLamgshr1@VPYp)D|&mY;7 z@t#G59-qyy*>^@k;{oGI9oTGY52aR)ah~Xa)`T znvEv8`QN7LO+vDz4SC0!kQJYFF~r{~ksw#NVdt`XwFV&AFq~C zilr8BLRsLk)AW_j;DCdfakS$>Pv)A@IZLZm!%?Y=KKyjp`N3&}9QVNMp{ekoGBXVj zU{r-}=d`h*<;@*n%7dC%t&9kgWgTs zSueXIt6bH>bovh9UWN(HJh9pya@?B;jtl}WD5UFE+te4z8yiOnj>Oh4Zx^K8Z__Ec z?r0s8VVt_!sQzHv0$<`_fi8bVQ^+6kP$sOHiq&xdl~|UYm$}I(BNx4UNs(;>7CyDx z!5Nb0=bLgQI6ksBHpUcAd9mA=cn&z|h}Nxh`5rR$L2fH#3CMK*R*P07ZtVC=Mvz~f z9H9csVq{+UR+XnLhl%5n@AH-lru0%Y!*pS$9g?Nqk@Eb!{4q)fbv2yHdEFtbgoN5q z*O~|}v&b%EC@7X@er+)-5tCZ!^Cn`O67sre?4+QHZ+`~%lR6mvI^XXlAaFy^`LI*} zG!XK~1NuxvDW?|__l^}Euj$_{VJQUdvrAFbYBcpd?Z3H};rWB{{MRcGA*kZ)IDX=4 z;|mf}y(NmxMEr)G!78~a>|CfQhGaK?{@YE1N1^fnuZsQMsWG!Yf;>CBeeNQ%S|#P{ zvdUC3#A4|(DuW4gc@2Nk;Q4%MHNy=o^|Xxopm_4Oe(CFk((x#-rf8-Vu!!Fy5cUn1 z8%hv))Kd9D;5_~Y4U65@)!xrst!LYJ2jy%^&QAZNdIyASVhx5hghRPm;3|jS0aMZ1 z4AaV+w=DSA>Qoa~nr(|A2M57JfHSghfXe1@5vBrLS5{A=T@K^f(SgKi%DH^z-t-fF zK$sfIi#AgwZED>Ru09$XuaV51*SxlmzS?5U5UZs>Tx!%M4}HG>)Bl^2I5aNIwOP4; zBN&<4QkB=NY{x2s6~&tSm1G=k9#dkMtk+JC_KJwYoqAA-YS}S8B}D;NIq;Frf<50_MTBV9?_Ia_s4Z41+ztks z9-YP}TU7dztv5rt^E;#KflhAou{VOvA-9(Vc^6li=`x%X)eH|teSK?5`4m{&(* zp=Rr}G(WuJT4AQ>_p3c+*foZ8hW#MG^xMh5Hd9+z) zaDlN`Opw{k-W#Q~O zyf1mYQf7Kk65hcI%&l@@5ThWPtx{JqmC6%Oqj9-YCqoZxqajgkrfuSq;sC zTGZ(vpV)2ah!v+7u!=4V2WKYCBc9t&`jjsWmT6oXY*J~^iI#r~`&OZ(Ld_ouZaa`S zjSm34tjGvnTTPp(EP=wq54DP>!py_DO0FxGZ=U)XOjXY3quf`2q;~Q-Nu#g^bUcIS z+Y1^lQtmx<1Y_S&)Z4QlHRL1|ml5!aiL$_Z`4}UfxUw@Ht_3HXl;~-kP9g(77>eNa zGTBliqIxolrQF@jtIPqD_`G2T)#V9EoxGSd@A$R)+O-b%vUe?PU1#h4PxG}QHEp^F zOFw^v6$Me9AxT@~N2{?ujhjp)1Nf_DbAyWKWvpvvMIR)JYvcyc{`7vC_eBoUz2x&KA@RiQ2%!-)kq8!lU9Sh$~Ja1`;E1)viHXYVgHFV*h{%K< zYv8eKcd%4GXH$!J;oo^9Fgq{>msL_|h2SOd)*dRY;`;}2eB)4WIAElV_& zWd^PuC)29s!+kst7SG;w*O9q4dQ&zx9C3B5nxnMQ?!%{#TT6qRgn|;+Z)lvgi%XRl zWR}ami1JQY+rToBW~G*3YQcqcT1sy=+h&Ypf%$wdi2)yF_MIxX>u5+3@LM(Q_rM~48hT1~HAOeMp(jNs93=2Sa_=LfZnz$KwUlYn|d z;7R4!#AFs#5IrJBt-p-6$j($BJiYnDD|yS0a_f1r^Z5+gSYw|)2D>~_XlGeI@==SY z+!mEGzjihoj%$#H2JT9S2X(-Y4ebAl*`$_CzJ@y?qKW-jWA4G{08X_uwU zH3-(hHr`B81?Wk)>x2zF(cM4vYr&dNp@B>nCPwx0xceG)jCu4F8K~S}JbKq}$bd){qrXDksC%rGo<2D{A#!{%9pQ787{_%@YamHx0lQ$2MIDta-+1 zqzEh;3vhSG-kh|=s=iL=41`7N#OX;Ss{6j9Z37NkX8(esvgv-sbY}EobzyHFkk&^p1vq=|l>Y0=h z?A3Nw$-BsB5{7kw?sp;==alyb7%azfF+I-f2Q`qhQu#cz(5Q0#LU?s2%B(mum}~{H zP*N#Khvo}!20jZcND_c=br5}U49mp<6oV9Tr{`yT8A0~O0s|R1)mCVogbZJa0TiketJx?sLZ@` zPDQ=_lUc*`SjSHnw)p%m_H^qx@}R}VXAr1)YmJaMlEHxyh&1STO{Iq?X*!T!y;9R;rl}Gs z+=*=iP)0Rz0RDy+J}>bF=Zbx_?AS**uH!#i_uIu|P{WIAh?QFDnzlyDUyJ7x?|~PB zMA*Ftg5wn6OO$JJo3$9p)ohNvF48QFrjpBmY8j0$+9OwtUci?6AOD>9i(PyveDJ@3 zzbD*^rNG_x8-*7^mXQ1ZkKn@pxzKpx7y9V`3vs4=LQ4b?q^wu2)-AUT0~E>3l0E?r z2c>$La7Kf@(UwHR>sC!_2#tC;eY%@PUBIZ4bs;bP=w?;{QS?;lV5&ojQlL`Ozl4=3kBm2NP+wVBrax$iO}$=ZTLUhcwIwU)Er;02 z?(FwsF@{Nt##OPLYE>-;OWF{M%qK2htvuziqfP}Li#JG8Vr@2y9*|VHNTbr1K_EOyvPyF@aL_mVu-87VwC3Pw zAlV_ivU^If^kB$rbm@<|yI3ET*)pLpTF#a%7YI~}nW$bI09Hg%ArFQfkP+x7M6=P> zyZxzp2^|m}^I7UQu){Wb0U<9jZ!9l8J$<`1qa(g5zuVQb%(*gC#PHl70(#BigAs!y z@taj^mMv7PZqn{LImRPRohM)z`4HqAx4Tg8LrVOqdKFkEt^UwMKdiPpV$7*Zg~6wI za6LEGL0zx!b5hOp+cED|NCv@Tcg#REy<>BERKq^t+3~z12)RkA(tr|{4@tng&-EN! zId0{%i8!1|$4>>l+&&VE@gj+u?zcYZmhMs0>WS z>JYQp&6H|f1zr6~xl4@47Fmz3)I6$i89?Ra;I9sjhrQvN zufrdi$ZOel?3?4UcY+*h#!w_f-PPe!~6JcnKA}bC9#9%{sXsUThe4)PSYd8&%qurK23{}T1!+ks@QylwNRGNHLfjNM*qM_Efz+M#rx-$ zyJK2YMiUOd5?|+p{8QA_B^_r{k>}&=Z*yF&qQ?E%)$a?TZnC^-&aNITH5^UMHIaUh z@6Gqio)=XS&Xb4M3+|> z!fn${6CK*7F&OY!n;J>{g@4Ex1nV^LW>;$(EaRJbXL+n>qP6IK<_oPDq(-`?5Jk2r z3M-^*YY$ArM88zQH5&MUSY$I~+K~erS_8+3#`^@Gf(O5)ldTi14Qt_zPK4Mn6L#jY zcw%rDBFd(hcR$F47^uk=;D*Lhq7D=PB(v3zN&S&D0dQqfK&EF^?<)%@W*o;YRO@P; z0xaBZ{dmXkOy4M$DjTHg3Tth=LR_o4Gw3YEVPob>3zpVy(i>QD^`_lI82?2dpws^> z(PXBQk^-OmqnDkq;1AbJ*D*zR%(D3~zzc1fP%Ebj0Mgn!(Imz>+JFtPt%DQGfFVjpO<}mVDzLvpZ{fbd4R_y=1oad7xp2AJ-=muWPUp zS;8_9M4M^ktF`5y30I3=TQl`O`AUsgdgcH9nWwjqdJp6H6w$*b^Nww2jBJzEhD79e zr6y>bk|{9WGe`Vn03?Pbq%8_pqpmz72@v_eaBF2l8viFo4uhH6;XLBQ@ow+4eou9c~ws`CV6xmCWy| zi`q~Z<-YxL>7jY*O+(_h$*eAA{ae0EuIQk-NxYj((Zmj3qR){X`uou+rbuNt*-yBs z=DEI-5!K_3pxC6<6(3qz@16`?)TVU)46GaWWF+ZIWKlHogoPJ2u_A2vsOmPyp3*pD zs2_fit(fb~OFle6<7>dLyNc-3q~MJAE!3pPpsbMou%DF?)r<_cToRtFgRA;=smab? zR5WJsKCZo{)vaC)WC8Y(FWl`NFy1P|elG{`OTaj3!D)QB__=M7v z_gbSJ;D+@N^c=d`ay~@3Zjjm6wFYf7a?W4v1%AguPwYUdnIcv0Z&`qBh+|2q;-bFw zkPcDj{hZ-TL>LDORDk+RDpb+F%3RlU7+LudECjp!pbGrFaUvAw&kqK5uVrm*cU|8o z52{ZlV|jN;0t?unKa)#QD_uP>7$bEsnYmDO=sH_hFg(%Fxy_{U0&Zo0OwLe(EZ2t! zw)|$4?MwsPg`J4Uh;O{F0nOQW_Aw5QKMHU73!+^cxKt`sVLr=<{X}7*HgaT3ayamg zCP@siP`$Z|A)O4N;qr9P8any)M4K~rZ^T@02O-`QE-Fb*@lETl`H{4K3*M zVB@1aN2fKT-q_9+|Afillm{sUm}zP2PIAr6_-*yQ&-?G=x~~-;+)m}1qMs(kfTbos zS@}sln5w50XzOR6u#?=*5(0cR&j61Zdb2oX!u8%y{}7PD*R;q}pQuYeNwKSdv;bZ_ z{DM=-Bt0Gf`)=pl(z!Mxk}xB)}2WJr9Ske7%cefa6C13xyJ5hgqwD@q64%K!zlh3tE=S7X^g+8j! zF)6EY-J&E1Zzbn0$Z5oKI;(l{DGuY^?g+16XIW!W9~qTGIE8|yx+syY6c#UV@kGti z+{bh`uN&ZpdtfB=SfmQ0wXXbfwohNxyTm@8e*eYzHaFv--p?}RRMLk`@;*b&758&nb)_MSFEsi25l&>v11V(X@2zy$S?`s=F*&lAmJ6KKW%%RIc4!# z2iv*Ylk{=qQC_v$%uB>XKQJ1>K$v%FP;?OXp_oj=5Y0PHaQ~y zEYbfePJhute+r|d=;xN;8L%ET^YZu~^a%*w+hI0!!AwMkyap)M=Bh(kABRe{-GCF_ zl`3Xw>*+;w3co@^VTFPdSfE}bjt^iA!#e$@Omvg@dt8vRkWED95?kNjiH^*D@Hf>N zbMj|a4MHuBjkI{Hl*LlwQN$p$mnF5{Nf3IYF?Z*s*)|nV`;_|p`$Yef?0#Ez)0z*H zV=r7nK$iH7jI&MUfw%6JAKrK7kh%pF0_Ms=61xLUX;1XDR*A;WW~7+Ay|J~(Ro9rr z#$diraQ9d{{^6jb8j-47?&wu>jx=npN^&e~zdL+?)mZ#9{m6_Xas10xG;*E7h@g}A z^sH>Ml7fML??haYO0$F24%BwcY9Ckn+Vi?aduHDBm78^#n0%kCXg*3q$8?OOYa4VE zGdo+*h6Hg*I)WOO>spM5Zx_NU?7u6T+?u8fxGS-lj5Gs?HGB(LNLtui7i}bMOFD$S z*bmzB@NH$`4E}QY^Qr3txpfl@`_B*k8k&6P0r3aFKjn=3jA_tI8#k?&E9vELik+{# zJa#oIzuQpa|2hcT zk;^f$^$NOP!nu)O<(H1ynz~Nzd)rPb4$LICvO+TC}Kn<45eD;h)pP@P(5>fIA(xZoW3Yd#ro>8K*aOBv2Q; zPS=$A%uC^IQEC`u=}AvZay3xc$dd4$=N=e%I-Y18TEBdGLh3s&dGUahrM4-RuFm}HcbnmqN1LT&{E%0{lT z&fj6*zJH(IfY!HpGi_qadyg3P=AjHVg3Qnd)gy+JCLjEh^_s@8#oowS>-FjSndMI= zdfp9IrMceb8S(sdPk9fVVXB=^B0{wI+m|fo3$Hh>OIzyV*8D$BI_ozB$Rr%->BV=Q zX;)2K%C5xB@P##>N0)@pI57MvvONwd2|bG=qWZAk_brbeTz%(e)GjwgCHvEQ11)tI zDtsCO*bB+e$Dy>@@A{|h1>Y3ORa|{qAG1|36-d3wQr~PB#}&e^7(H&ko>@U`_Wv0S znZ6#w1-B~sB(8rQrmJUhaP#aF@zjsr-lNL3$6`Pb)4FG zRxZ11z8Qp-z3h*^r23x}!GAqp|CR@{m70P4yobpXZ3{oVsXUNX)wZBa>3n8X&iHN9 zy~v&6$9T+LhMF*C&(N^j+2WsKy4JJBU&W+VKUvB&LfwT}Eo!!QZL5Dm1l(6n=;j`E5L_$x2sz7Lz^=YFAY!7o_(MM8=?ox4E@99`;ApV{v} zDEzW|J&35A4OhWL2NxPAKYm7*F0Nl+o`<;c^r4q=Fk{3h+v{5usU1WOs6_<&Ub>cD z(eD{!V3i3dQavvWO`Z-Ti=VGrzF}cU$Ck6^JN>wO?+=Qjwz%28jxC&Sv_0 zDAW`;r^8$D#xa-khWIpqA!sbgqm|3PrB0GX!I2o1`)~fp>!T1GjMB zIX?Qx@6Bj=U)!zj$AF==PoW#%ZOGl;aOgEbA-^_RdccJjNR}}U*GOiu_x;!hUC2*H zD$|9fX(~ceILwz_!ipkaHLW?)Pyb$S zI-^6ho2w9W@yiW;pLUBR&~%)fas{};JVfUpTIrU^%gX4vOt3_ma1~o4mB*cT8Dw`fu3BsnT$3zqtZCM#QwmCqYddj?m4CM>S05mUd%9L6i?FQg z=XUq)JA5DS+g$wzuXNqRUyZCaM-26^XnG_Q)X>j5uq%i0nm88BFH%~pd)bNUM&$kI zy*iEfF;+g^(rR+>&&kv0xLN20B=r><*q`etYG68;d=b~$rC?iSW3?+9f~{YdU=jnDnxrP) zy~BMl=`ks@zYC6VNnCRv&U`Cd9+`t^SMb&_zlkep?OSg^)(Yoc=@QB!3@~OjK89LJ z^$*(@e1B|#T62=v@xAf%UU`3<`1n3y{dJQ-&PWnx$w$0RIcUpp(C|kHqDbZ9*jr=G0Nits^?aS|^u^$ybn~JSgdz^n z8LYb2WJt^FXd&FHKcEZCP@`&IN@8}L6@N_;duc@6t4`nAG>L8w{+17;YRrQB z_LF8XhC4*aMRs1zdHPDeqUiA)rwT60gtcb=Sct>boBHTk@7^n7iB&usX9)?LB&+S~ z>|cUku}}RH!^lhhD(rfjV=TEQcD#p+O_mq>w~tMfh`o-UU(aoKoyG~a_kZ>$86OMj z@xu(0JDw-XKITjTx>{4Ey4zB#zkVNqRK93e-BHRCv-nW>`LD%yq8zX4@qOLVQP)_? z!hd`jwaXGuLXR!Ej&6teA>Y$w9M}>Odv`I~v&GQucbgy6XEW6Z zXo8@l@9^T4;hY}ooKNch0N;9Z^=yZm2*kNm>scW=La37d)LHNv5#l5r$1=Tqfb;KS z;0Wu#z1de@?(Wm__fru#|GXc|*0j=fAAhxVEmIB~l6Yz4f>^ElEjP7LL~nyQ;hkF( zluxm|#*v2F{p?*u>cLP$OWIS_Kfbitt@YuzT4eK0DN(a*)sy~>Q7GJQjV3s+EtL|M8j-}F#r)jlrWMp|O-2xO>jmFeq_?;2ds)ui5t?eZyI zJF&dw-h0%?nnc@IFl*icqDZG5<*VNB-ZQE?VCb@=P#fJ6X(%6rQlsMmJ z0oThbH|@w9wU`JXaABN zP5KjhRF_h4KeT&b9(KW#e}vs%6V7rs72V;6RxouS??QciAOaQdgv0lXoKU;-2o~iw zq@F>bXX7a9-vn*RlhL8^ugIc0Mj=PT8RL z#y`#?S1Oez*_vb{-t9q?p%$h4{p0zag0rGlCswm-q6pxoQ)Y%St|)7S?KdT}L_`^X zM=xx(irjGxf4L)-X0Cm_Y=3Lo(6p%^tVWeE9nCd?8rKbdEFkX(5LjH_JtcfewruA{ zek2nHM!05evt%83z9T9~PVO;fXz_*X^J)GN&6xUFKN+oA|NqL;_5iKv%qR7Nf@JZl zF>1`Wc4T<(ISD$Mr#C^<=}Ah*bGl#=qbf)&hk$qeaC^B|i0ydcfRi#b$J>FQns*R7 zK~;aU*27rA=b_lOO*f+^#(}y8v;ELw&j(K`34;3JtR!P9Igq6iw`y{3g^hd+=lCmv z*9z^N^XSfgP}Kcoi5Ea_$Tz@g+MzqGKcpcrTQ+0>*e@t7cR+Ny_uz++ZX!aJPlEG7 z3$6h%z+*$@53z&&8hGXvnBFA63lDx+UrH6fO_G>koPdCaeH@(BzsGTqzmXm0X_iSOee~@_(9-Vm!tF%+?!mCVx z{NP{FH+emf@Q`CMPr?+U=RYpeJDWoG3r}h4e_BLicl&zp3=_sZwN1AQzHoZ=1Dt;8 z+MgR^8eS$HxB=UjFo!LS0Q^w!$}IYMoRLOVrWgJ`g@`G?*?qQh7HwD^Xnnf3U7@s> zNMt;!u@GoEyJW@pDrTP1=A7neX)v`WCVkFfgPdvgMI@4emtl=D5z<{7pkZb`wSO85 z^Q3C6Cp*RIX{2LZMsW?k}00>b(%#H9vZ8kcQ~sCu>>G* zbI54aD#j9WQ55z}Ku(5QtM!|4afv~X_dNSm)qWUbdigqWSlhR1b9n&vvPq7-o5u7s zJZ*k=g%5C*H5F>ZFUId{KVCnh4T63iSIn+%dSt0L)}^4Ee}|DlH71)9>kkx2O;1V> zjxt5&8t#WLhWO_)Xz`M&e(fyKt051G0TGE3dRi}J*-i5%)+Sc+H!1W zUs*}B(-XqGW>mF!i%WU)AtmXaIuPQYesB^yjRx_+T`+y%XZx@|gs#;odwVl2^suyJ zm#G!dB5`*5b3I~np+cL+ufKSF#?g18J(G#RNiS8NULZCLGjvgo9lhUN54A}5=ax67 z_&9@Xq5KUwjRp*|^5-_w=v3cS$$sue+w~XaFJ?sxQ(xD!zYDv~Bz@x|yfIJkm|7aX z2t}o&Ir-KN-0IJyE+?;lP>_Gs?7wR|7-^KD4sYmYS{~LZNk|#LgiUBaT`kyx>+Mf6 z;P=(aQvcyXNbi=#rpT`^kDPyvE9u?vH|5YM$q@_eRZc8QTx1T}1aD~9_)jg|Vxw<| zN;-(#^mvTTfTRvJP8hyA@UKz$vUF!v98z!2+_`!U63?Lzva?@WC46z`FUiPfc}fy% zc=gcTKmGloT*}~X{@!98Nvc(NjF&^hx*Gw|TaNgbT}c0W=~Ohs`c5Na?d+AcWH50o z7BWq^4WAyXdDe6@Qi^1MH4{LpDX)99`2IrVQv@Vspv4yf-Fj&%fN$`UkLkL29nv41 zd_|p7%jPU??dV_Y4aiLAl0O>Nl2lFG$mnVpKR=#a^W>@A-4Lf;U1%n*f0wuE_$37U z76}3@=MP^5iJepz?&+Z4?%iNi=iM4~)`%M{&IBv#plVYcayhMHtChQW-*gLVK~iw{ zo65^t`#43LYJU$tNuu1m&au@m1Lq-z39Q|b7VsmQ4AexvF4AGNC%%gRut zk!wzv>V56gK=nq=G=LZZ^52HCl%qGSmT73* z{Vz;e`NY%*#w9k1J@L(MDC&hK8Hn~={CysjXwEH4``L}T^os?1y>MC zo%_lxy69iC(xp2rmQJ9y1*_$w*e88ki1Be!NkD`95vtJ<-*vIRn?HcX2Sv`e_=1tPUXt2>?XGl}&7oX!US6v+=D+%n<@+;d?} zTAYevr;l7x$PVTBeZ{3T+=VDu?-t^+Kc}2dtq${wSLiFchlLtX2o-Rkq=?^^^H{s< z>$fzIJ#GL`k$r^#m|3AjmZXr;dR4ajGZvbu9RUfMXimLAnX*F7=k9g1k*y3ce3vl? z50w#IIcadmtaV_B`uDAXwjHKyM186Ihw31x$B?0#*`G`DclW+tyVRSI^(IEWZA?SA zjtq4HS>&2uDPn>UFTzG3S>;u3SF@V|Y#|xlj^lEI7Sr2PQ*XA;80UkI_!}~6$`<}? zPfT@aJ68m!u>d2A(z95~;bZhCkWX%ARGtfc8E2T>J`6I7^S%?T)kJ7v6l%PbrH9cA zE2b++Y0$$$*EfHm{7IeUl9+4~Pg{P;MTPocvHj{N#82AC4f#%uya}@U>442e=G`!Uk^`-xcru#4Y#14FWlQ-FqMnak zfWCmdF(vFmKfyWBM6Pq5m7EZ@X;v*X;bKm7nDX^);dRqa1}ESQtr7H6BwqUtgK3kQh<6KB)!+}GF%@zIpzX=;5f0In#<;|jD@5Cl%4;?O))Cm?B@JGS}Z&3o3wuc!E&Gs|CeG!MG&3!59a1A6uE0#1wzdX8Rjvwu)p zSzR^Uef9D&&Ceg3#Zw<9K-pDUWk18qD}bz*>D{0WiKy2!|8)QF*%tp>CC>lnW+DB* zm23C^H;WJRr_y7#W6P4}pZXu~MpPOa>H`Z+kNuRyO!B^FebmywnV?y1ToMWC7{S&TTlyrZcky!zcx|d5l z@?5HMP6Ar)&c`GlmvmnJO$w?JI}xIx`Fr{fCv9VI!r**m8qXV6$7Lm|`sxmCsVq z?>S2{tW{^l7P+_`Bv+POe#LedK9hiW*4{3neA6>3SARF^UWC;8Z8Fw%;ytA%6vK@X z2h2z2HtOI%`jfdVMItt7R_M+a9%>){XLFt5bn?Tu$@j=St&1N&(DC9QO++%9mL}s) zdtPNH8F*8+zPBGs6nquen(u6rkg^*U7>t4tRjegamIj__Il0-Vv~PKyz|Hat1|(w@ zgGqIMOPzA!Cj%<;1G}Mkuf~Vt1_jB(lEQMo1C?N9(>=Y&+-H2(KJ*DK4|LNeYcmHT z+Pl)!8#t8AY0EZ8Y==Kdybww&7bHTw9uvYf8UJ`{$t3n}4BI4cv0l%Kic#b!>5r5| zjhan~LoN)`y|Vy4oaNCEIcg?b;BvO7X`7$5XvNp}in%xg!)+vbHbH7kT0MEKqu%wD zcdfmAxnOBcO;*A}3Ls!M&N#3$5Qunm5dDl)*erMPUV!CVW(EVE_q#e)2dWgEL~r$f zNXB_OdilHo+l=Y1S2Tp)n9K|R+4EpHcMNe2o@|KBwkVxFat!fbEQ)#|Ble=s7Apg~ zN3!#pj>vcF96MS#MyTt7AHrplMXPs37v=gseWRe)RQA`!CTqqQI*O_+I+V4%+MlL$ zMWV}bFJ@l?sawTewbZHLxYy)1-#zsuC;r0N0|zjkUEO&7mS7haUChY5(SeqJ-!FQS z6Kf0cFO2rV-mUnpQzgz*96KORwCF7wPMi=g#nrUGv|mWY3ulnoo zn%Q+2Brxb6&OUXD6K@p6MWUTsJ|5a_S|OB^+a&>Rfqw$w!4iqNvz<(T!nF9n+*-+- zspm=Ous@Wp?qxB|)sfn7Hu;D8UZ&gHY@^EeN<-v46^pBOh{FU*@~x^5TJ}@zw;>AW zrifmVvz8x>>=_JgMLVSS>(lyA*OaX1ZP!dKtrU?*8vbbgkr%^q{7>vAFVk!pR>tnh zFyd527{eYhnJQqeMtF>4pWWs>8nhtYXYjP=N&aRaE_7IllUzbS_J&)8CF5S;xjTOv z33G_@m`NLHsVEa3!5FMJeCBbhjo(sxEp`(*d0T%&e}R23=6y8AoL(>vyLc4`P7`WG z$x3m(+@(%5TPh!>3%D=wL7y!3RfGc2&zzCDYPS zx7m+F>jBg2lbHOktg2|{7a}d1(r5N2Oa6$Ujz=U%S+HY&V_%O;Au=}&>4V`a2&-k$ zFW%_182-72S=$mjAguWp@p7AL`CU6w1g%B0wIBr5J(6& z?(^Pr=iGD7ednH;ciwwv&Oez+R%WgBJinQ>zEAu7h~518x9ykue$3#%A0SZjz~_6P z=5!OTiW@)+GC}f97rzK(L_!yDQ<^oJ`zkxnJbb=ZNIu8QoedL|Qo9Bo&Qr|4Zha#0 zTm!Fq@SvXAT9a|L|Ke&>4?LhElfPMrHkDRf(KKpI=TbCYWGq0%r)FodGs*91u!Lhj zIPqpuHLbEA1n z1WuoXH{E`#3Q;k4L?-csnvDg>L`lhy#dmx%j-ePJocGPFD7K9WGNp>z2*008{%v&Sp_9b%Sx{8mdP<{#U! zo4lYC81wJDT2&9R_nND2+~}u~tl{;UTT|2}0V*8lfX^@wO$8!{X}!?JbQ1L!3`;OU zLR<=Mj)SI5ss>g|8+*S~=G?pV=4^Y<64+wU0b^IIJUT;OI-)KKqqD)}?axonba{YL zlp-PeO9pEECqZGYmTM>?tm1*Zj*t#nOaP(NHqHBVs^n5QE;6R?iS50D^YXRXW z)=imLHHec#Lt-(V zJ2enP3gG%=Uv6&rTprdNN3ke0_t+c^Mir)pcn!rS?bg}(%$_#)9*mVcLFOPx7WGSY z69tRE(I~Q|$N}B+kX#+FkT<~j=%+`q6P$eSA_o7GpMaeHx6YO+{I@_zXN7tj9O#6hLq`hpj2 z#(fs`kbHA;`)%87DSSX$g}Qx1VD+t1q&oM)>#wA1%SX<5c=v0gcO_A5yhy?Yqb{M+ z)xKALA=w&Ifj3J<(sN{^te~+?mjIFvK6fmGLU$9 zO!%4z`}uGnv-+>PbXoO|`ZQ619On#44-K93!NDo7zdg}^I(E$1m93=W zwuXh@Xx>?{*#0tqsr#sCtXyBAR&a`BNlLNCNV0F;4!VxL6u2q-OC%RfPcvUxvYDG^ zkUWyto6-s^$Bf#wLMSO`?~f;6BEKy+2$JVGJDl+~?uaq?q#jd!2^AfF$&y3A~@yfSvtp31yN)Ez;I`> z>eRiS2;Pvgb2Tx2BQZY9F0VWFrt+ekZOaw#E){)F&InHk=638@eI{(+1$?Q&T)Ws& zKxv-+^Vs&hwv^A5y{kANG~?#{!FHaI912J-+FMn9Wv6tcpFhvgA+_|u>ZPHDWa43e zq~h-VK#YJN7|k#(MUJ1QL?bW2=u@UA739w=TI)!Zf^%yvl*}As>6+CY zH;425IbQ^2@;CB9XroPU#VxjZd+IxhVlHF^{$YzU7exFzo$yIlon1-Iaz@w2FaJr(``e@8(I{lrUgf17a2k87{f4$mG~baTtAKUR(M3_nS$gQr-K@VtcOW znms_-{XmA#^!uha-;34eJX^1NR&6k{RO6C}uxW?S9>rsP@+!O@l&~y=J8!CLFUa*= zj0(J*nQoTqlDI@`hu=t=#2`;1y#@zZmZS%P3dI8xQ2yP4BEU;UKfu^A?uLiO2FphpJSJ{0CA-sO{@!L?! z?o-W=g^b`>0xfgYktvB-&iBh4M0BbfyagFgHEkP2YZFb#JKOp}GVuEB_m0BC3m3@} zz^FjJsWVu`UVOcQ#Djbq#wqeuY<~_6Tao0TpqAZa2_DM7m4RrX{S0*<7I@#}9darF z(-usiat|2kT{jTv~O;5oHVp|d84?k>wF9Y_^R(;Z%0@GwHZj^REBKdR~b zZ{ne)bK5lePG$KEp^1daoR|leo$;rNNzXF03vIxb!KQ^7P_+8wCa~|mLNIb)DmJf1 z0X%qaa?`6`(?gOa1*#*8G|_@-*7y_V`z9^;0iSwu{|KK$CSC5cj2^MlO3|jmM%xR1 z+|=1&eLhwt_MqDHT@&WXTN`WUxeSnB^a`-!Z8BR34>OO`T3=AkfTkYKj_bjd?P}i8 zp)Wf}%W&y9QrpDC$R#2$qd)4k%6!VXytDAT&P$xHw8gM(!7h_{IEYLHF4ZakM-X$E!m+iKyAru> zDujHoRDqEY#Db<_>eD(o>y1=G4U`%{FLX|kUoB=~LAQ2K2%pkP5J(BgTWy+oi1rzt z=ML|F(Aos=NtZ2ETQCcxd2cd&~sCdplh0Cd%uI*%R z(WcVX{oR?uTv_nFo|}X`f+_t~@jdomCbyIR0=^t7Hg7AOFrv($X0QOe_Tp_YlnDe} zQ{yI;@BA6`vHt<*ax6!s{qcMCP_NfJ0sua7@0ee#N0t91!2FN6iaP|NwG}1}XQ}x| z80*9C4`O#*_#xZAOt{@sIa#gl%!FR|#riA@R@@BljwwT4WW8j3!k}@&#>AMZch1jW z^He8Vmj5B^WS?@}nWD}~9ZpM~lPCb7QJ7KI{sh>~S=e-=rNCbHva$tR%eUiqP+M7> zxZ3bG5t+}csUwd_xo%Pxkx0JuQ}IS2r{Lp0K##3CA9K7G+FHwQaPpw!Xvqk|Kuv1O z+WAvA66u9^CdEiN7x;{XY^XX}p)PZ3q|4w+>@Rh|aNdG_@S{9{(W(sW-*ANyFxO)6VbyS1ohp)(DeYE@cv;f6g5u@{jxb;tdMASW?lac5gS~KuymXZ@p z3l8cr)Yd>3Ey(yE0$C>3ZpO7GuQk2Gy$=*7UG$yDe@qnlIFfL#U}ns3dGA;&tT<>x zV`)X&OtFD9yCK=p8rDm0#sf zS!QT5PNgtcY|QHUE3O8lSjk*4R;76RW!Ldgw!=#e8b7oZD8Cq%XpSVcEj(d_;;FOV z+Yj(YBv@bfzEf zlgRssIK_iCk7j)di~gOj@LPuy@d0$j#)%&pka8-|yv7N2z0i3_!+~xW`6Mc-rhVwv z^5W?V8^|ZbjK4Xq74|$^pxF`pMIx`O^Cjt0!BEhOeju;t)@pt6az252ALF~+f!_U8 z@tUC~-D2QCu5#X#4-(wmeq$b>k|nU$DLf39+Y3#*mNA*wr994^E8R?En8zI^L6&z@ zN1Y)%Z-W+;8~FACOu9}Ti6LeWdI=W%=rai+O1k%GygILxRc$MMXIRSP#uTrQE0{Ss zq19a6Ey3o)`Q`o5R^l_5jA#oebOjbPeA+!5s%qZHc{ed@FJ%u&SW$97;-BQ^KZb%BwuKe@dj2w2LeyYPElE)=eN zGwho4f(MLtq`Tf_zSG^*6U3CKzxPrAmUhRx5Q^7=M)Pi}*;*`YV;gNu&!3yV?SEqb z$7?$mGjU1BA+d;yK8JxE+ZnpGCFCW=Shud%txEYF_0uKyz}DJUrqXvJ%}d&j=&j$4 z8Ve-y(ElKd11b&qbEij3{egE-lpfH%yKZmQULp0xX8mVR%dJNQz1iP=7ly?H_a|qo z_A}h&IDRuTHVYQ?mJ7q^W*K;<^gW{8D+QM8vxoM`_Ze1~KQ*PP5OTKfRmL=g*7a7L z6xE8Ipqd5Txk|g|RzQ)cD zMth=?xSrg-p7XmUx1^~JTtii+4|bZuA;--hff)HM`ND3UPQwYZg#i}+dNBP#+JG2w z|79${B^HKDzmitdP25jE^|5`Q9Ka4H`Ut05@bXiKc}Rgo1aAb4+^USYqw!Aa1?>Ph zT`jf}_l@5#f(QSh4f^%7kLt%{_?Ms$n#{}kVZ4vjT1O#{sVm(ztz|nsxR3IYMZB;y z;#WE7E6Fv&XH}7=yk(oV$mU?+`RPP7`|4MmW8l1O8E{Yimlodix57UWdyk7SLYw3A z*>T)AIm3Lcb!|(<0mnK3iu!TQe$1v(k1w8R=Mo~Y5MQ!a#cV(NNnjg3u=8QA%MSs+ zCVZv)QzK%B=plx6?sjz3zOqN%oP5V)MPF#WfW?Hm@N%Nm@6_ zi5DZ6hh>P<^`#^G2S0;`8b4=$I7-0Ns|81$8;qSXO=9(p8@8@1X+Xn8NwqFjDj3(on(>#aU4eMb>X zO-*%}?}5Z9u3cNMkmzo-ziZ!V?>o9}@ zOY_Jzz+hwTr*3KcQ9WLnwKVI2M693F`imT9pKlKRo^v4YW2hDqekKs)pnHxeVdIn5 zFxFKT&bTLW*67Z_xLs{r23s|#V5U{4zZ;UX%-Ea=1tp%`y};|_c=aHN@c z^0l{-&D{${U-o%-tgEyL({uBOtlr#Mu1a6O9Tw=st$7Ztk~(7%NvZYd%Ul4~^$pG} z&M;e$5M^{{1=cFDebK9LM=#8_(bI$y)O!BWUO-*K-^-Zl5>B54hZmq%sckrn_Lzx# zFT4T;*iB!4*iiWy`D8!fe8b!DDewKE5>eBKvcnE&pVU%hKcTNv&hh~GxKQlSBhJVu zzEy|wihDoB{AHf!pVyGba(<=CC&YezBH9E)_i+WC*xxfclE?vmd|W+u5coG@>2APd z`1%1uCc}@!mzBtB>yadg$y{IOlOmY0?vk{T$rak{}Gs~W4kOXH*lJZ9dwH3}Kza(xxa zc_eDWb0P7KI{jCruK!CZ**HTQ;-Z;9zPGYmU%EA4G8zNH?L)~mX(QuaXK15fl%S{H z!6Yw8#2$@{C7XPpByieiM&V34BO*Vqz)*Zz)lr+`5Uf7YGu!WQG2SpEoIug0UGva0F}^N7ui_O|n{n<~MrrV^rS z^HH7UyAFdU7Ij8u2bN3cUsB!rdwB*e8&>wjZp{xtoFPBubl`yshjKcp0xFq z2Ta-)-HZ6d1)h>8Pj^l-RwMuTai8Nmo?ITj3UQp!HJC;J)SP5gawJG6=uIaLnt^wr zfi$Dyi7$1IU+X8*{o_4h{mSUblQ^sciR|SrDT~4|W76lVoI)%dkCfMZ(KOIdyXF49 zJT7cz)oG;3J*QnxEUj4$edJb8$9t0(mcS??z)m0) zOd)7-N0=JX8ps;&C*2*mxR3ybV zQd*^{$OdWNw_T!3@R?SCMm&R*A0^{xd#9?vLuKhRJ`>GupDoR$6~EPo+l@9FCkd=H zmy&FrfyF)-2HHF`toa;}#UFi(NG8PAyA4_rAkQXz!HhMAL>+q4<4v>V6@OR>A|yoU zBf-9d-Q>1Bla^ST1x@z)11_0_6NqpP)I4<(Gw%u!CF`#!+l?>R@0O(|1qfo|>TRD{ zWB^k_#SCfjGPIppFunXzH+$0epx4Ktg*|pKv74=H7AWY1Nv&0`P7cSwudf&M>ZhyL zxd}h>kg~Bx5e<{$4g%v|{d)*63PtO1dDGON6N=7L)GT7QhOEko7wS@1PWQiv^o$KV ze5`Oh+~e#$;Xq4VE%PI5PIVZDZ|@3U@T!&fFb|9TDxuDr>Jn6VV*Bq<$u?m(8_B2 z;Ps;{=_#<3{2Y630$R)eGyS(8wM$)^=3zlC!5;<~Vz86|mvQTe5H)VOzwUS3@(KEt z2-Zta4f!lJ1q_GGur90cqIlJ%4;K*h5t4wq`s>2tFx2XSVg|l3r%2DS>-r-+ZDvq& z?KhF7ww`B{`a<#efzfabd7ka}y1CibqBn|oZEcmg=dx90SNWwlXxn&BZ$*-4tgg|g z3j@ouVLe*S?vI$7-fj9JexQ=Iz=qQrlu(H4eQs%;aBgo3ng31iU{pIhlU;fo{jP4c z#xvGVk+Sl*I@W5qk+45HyykgP(9>#>vU>>D9fowf@u4s$O0`PeO}ewBx9X6>(}f9( z;fr41bT5O811Ee7yz&lcZiSGHCbR^Do8A5D`hPa{946V{iRGCryTOW1mhX69_*1oWZUDwQU;824vuwS{ThBPzerm_yrUWnA%>cI9_n8>CB}DnLG!as%rhWl z#wN+6iYg|MCM~rlnLN<45B&W=J(FseD^gTDK)WRTDlELQ8FM)u8hLn{@bE(S;f>W) zO!|yFB`#WcjZ0_~+6#l&2Y_D2KBE*AV)jqY(&V6GvPZ3>9;2Vkyf&=fREaiD*|v|VNQZU>8wlQ zx!nfM@n$r++UVmZt`d!spUkfJ{L+cR6d$volpvd+Gwh^(q_6Pthd$y`bv&W1$lP$p z%DHIojYAa|NkP-|Uj!APa)_@xXZ0A{`Oo`em*4z{h&(G`q82vu-O90(R=wrT&Q8a4 zabMg~pn6=gZq#Zm?&9$!|Eu&xIby6}mNqpk&8QC+N2|H4*7;sq(iM-&Q&UOaD1+aZ zJ>s+YJq~uQ7s8m;>jkzjR%xTI@DF;1=^tei zPD9&CH7YYN1`_dd;Hpfrrt{8tT2xafpYqp*j1e0{R-Fp`(Ue_MsgU(LV%`E*nVkm!m?}On;=e?J#X? zTEi$7Z=7a4rqmF8Mf{I0mRc(3h>zA2+G3}zKUZK9uce|7c5%{mNxj+k0y}Fggz(&c zccOwv_w}ooE+rtp?tUj2BE#mw$g;zjWZw$45mp92vtl@=U(*ero0n{2@*7_6gQf5v zV$f!6?{V>+pYdxF!Bd)Vk5`I>PtW zt_g}n0Wy=UR}4>WKj2&`g9J>(Nl3|12&ik<1YgoR;Dntn z3#s6h=Ajna_=dEsJbgZyLiB#HwS0l$XPw_b2oM73zi4g=oV`)_1#BhFW}(NG)qDUaHuh7>IN3iB}+?l%jXA=Z93woIDXVQ z5~3ka9MA{lGTy@9ur4Vw?5fpX}C}r*`DnA_2FhIMm3t z5Q~VHydnd?8bbiu|Dp+%66lfz4pV1m%@|m!0zbDpyuc~aMyE3bWcK_L&z>P6J5ibV zf<65QhqPbwsaO7LN3hd?6%tqkdua_V{YtS%fBwXpKxjvcGpu&z$2LwcmpyjX2-4hi zpQSS^11Oy#@>zjKNX&Nn7UiJVhZIf_3q-SKif#!0y2Q$F%@h^0HqN$)mrOFrQ+4uG zG&@v_x`%Zle-l%8nlGx^1N*)X=WBlAi0yCz_6|h?l@*|pv$0R=%3vKREpKJB%VSkx z5%??XIeI;eTJHu9inXJ3ilN*_?~s#p5ft~_OijE_WHZFdHh?{<2hOfgIz zz5S=jJS77*EUXn}vi9oE?G*bnZQPRT8RddD0K&>tRzG842Iu9 z^^o-A=s@D|g7PA2Gp2*@zT?CnfBvb$9XYdlI|b``#P&)q?kIM1lvSM>m5JR>SN1$v zFaxuA2_9+GrqHas&glzW_+@Ajpfy@vmxwZLReGD^A&&DImShN=5IVJ6YabU8%@7==w08;Y%LGSxDlSN~0Zo9{T5g{OQDv3J>+5e!jfTRGipczhbfU0?te z{4Z{>6e_~)4&|OeZ`N4gS4YY}h`|1N2=~`!DeejWU+;VQi!1s5vK`f_osiU43qOY8 T(Qn*a2k721x><3bOtdUoCQyA-5BH2QAqq0+$!DJg5ri`5^ zgkhwRtx?&R`FX$Zd){;2@A>|o=iX=eJonx|p3gn!o^um!!C~yIysQ8KfZgzho*4iD zq@Kk4%=9PLqwpK!i31|dVAlaPL;T-Q5|F!&i4FjOO$8r1Go0isem888004ye=LC{` zD_l>&;akQQ`X?R=g>rIo3JVL1ii%2w49LpL%0~_=DJfmOdi7fDkhZq=^~b|77|b~3 z0~`*w$QZS@wsy!Fb98ic$9(kg@bK~R@hut;E}sYq2?+}ei>aPWNJvO-n99h=$j;8r z$;rt*k=AJp22)sASX5M0TwGjsBAw*&^788H>bkl*EEbEy;oh7`-y9x~Z*On!=;-L` z>LL<}Boe7_{L8?=z~JEE$jHd2PoKue$0sKzKY#u_Gc!Xbljr8<78Vv37Z=yo)@U@E zwA~~L0N`*l)YGvDo?4rj_ngw^A#K9?wg`q?mp$dyyBjVz$cfsVCF07rsGN zsNkb4M-+VPBLTX#Ekn>^uZ{V|oHAL?98sa#`miI^gqp#iHOY707eH{&qxD(#BXF!k zOgrW{U|1P+XvgzYN{prpHS_K7=e|3h>l_8J2`}qlKh3XPt?IFO-Hg4OFVF7U%mc#4 z_l)B++v$Z04|fDRQO}k6kzx~mfIlw&=$chNWWO@vcQf^?<9-IL!zWI9&yLz*cMToq zsh)B`efr7@J!~OuL0n+q$E?KsqBUE)lNeJ5j}~-h2-TX!?nJCQd!v zyZ-gm9V3<(1wLA`0bsy$kfht*3Xf!Y@jU22f}UGJU^e8C7;$d(4TN~>H*0iel)k#8 zA5i5{6q}8bSfbh=>NMJI0axiw-RW=Dn=Tyby?u7xCdWqf=#O@kP}Se5kk()H320_=6XN1tG?1y}zM4~iz!+wgqb>zBs|cl# z?^*S1EFL&(mh90^#6I?_^_^!m|l@IanaKvp%ljn!ONJ4ra- zqA*I!3%phCloa*!MH|qD9m~}|3qC0>_fl)0=iqCW)D!Ai+(v^NkFz`dlwRP!(>#O-fu&RIu-%54NV#9Xk>{ z$6MIFt(lX10n+eW0Ci2(W=GLa< z6KCYkfGD@mggxq!(sAk{3g2*MzCaO~?J{v{rqS}vZj9e=niOHWd1d%PmvG|I`0#Lj z|3@}J)>NatwJ?<=ezaPg4gpl&5_cV~!$}u#hHmt&X34F6W8FF8f-`z)?8+O6s5US< zn5sA}L55XKTA)0JLp;5lEtkaX2xj?jR#`#EDP@DxjrC@zCZTGSRLi-m*8+FOSaRbY zRgO;wKqXYq`Vdwp4?Lwh3cYlD`#zG1SDh~8_F;PvAu7aCqkSx0RL27L5N>s#=RlwvzSZA5AzN)X*y zV}2=!0@hAP0m5weGpcbxsX4t@0W#y5H=LCl8`V53GKie*sYV;SD8j)7ds$QX_MP#( zU;81y<0D=|p*2upIAe`z!HG%bF=d21yzOx4>3^kZuF29Y;-^n}Lg0#$rn3gsFe5ns z1~MUsCRZ&%GXJ~!=kl}v-`4*WcOx6?4X+I|(4yza%S#PF&~X^mm%Q9S&{E%(IP{2d zjQm`ydm&y&n2k6m$IM0-<-{1JPm!x&o;|rbaP9oYpp})4XhTKvC5$H6%hi|K0ogFd z&&*IF1!rK2J4-JQ*l0`?(l680KzjaO!y4d&Elx2zK+gNsmUW>IJ@1IMYoa$)h82<4 z&!t_qVmf=?9fgC_SxEHiIh)+_4Vl-6+e#5Z(y5`xd7+1_1x~6j`WWR@b`~w8YFx}} zkI!e=ral1>Cud%%!e4bjaS{tPl=tt(Gvt|Wo$(y*HbGb13Ed2jfho?4lqpu?Dz+f< znBMjfWnrnUtS;|;V6ZiVaBfTIX+k6S^5~sG0fKF(4wG>kH66spHPp|j`j9J*X$2rz zrES*c^WA?iGWpKU!V3?DCzY$C7BuNKnMi7AkI~iKJcb9QM{%>Y`N|(HnVlG7+Z&79 z^xne?7rqU=Et1m0JBkL9^&axHX+o5{J*gTI3~%KUQ-Y{i|Esm34Vnp?txAqIwQifo z6_$A*6+efR!_8Cj%4^R8VhAw&+A};p& zy6kD6cb6Ws$f`8{(tFu0^OTzuUhJn@VlL`pum1}d*vn^Dv?kXJ`N1BNO-*WP0zS&)#gU@@o^? zowTr=e*Ak?hhXSp7=;=?h&ml#P)vdMW*|Z~jg?}n903k790{bu2$vB?;1v*s1FZ{y z{1g0F`VanBK)?G+oijXahUPwZG%c{ZxhCU%Hq!H45Z{@88c%(?W)R`H&(wZDf$6ta zzELYv^Td{hx8uYFdcw|ugSslC5!zY~)OsL`rrEn64W5pY*dtEiMASHlazJxkMMuKS zjNXpc7=1u`;9_UddT_(>4L*kIJmygV8@Ni2=ae?{2ga|HX$l+npK=0i)B#smujFV* zhK1u#X@AI28c4oI;oNs_yPrk1xSTm>R_QhqfRaJ2ca0imr4?dXZrn^~sDEZ$VT-*T z#QxN(+~MwxkXfuQbcgdnGn^>GR9d6nqXRadxKGwY!k6gTIp?KctAzpnC~6u2=2sd< z8U?@Gf8FEnCb`N4iL-JIkW;Yo&mM!{eMe_xE;834&Gy2y|61=I>oTbjg(OwpH?vSd z*DL)!wq0pP2_l!9EHrn3jZ^neZ3XU%^5ce(u6ZBDb>0ik!){y}-*R2GNsBo*FlCJ; zghK=4+cIK8EV8P}Y08&DXrCfe=|1jlbt@j7G8Zx^cAP=Y3$=HC{-Fvk_G1R8>mQD_ zLUU%rog)hr@h{7ju%%P8OZFnuHMdX>u=qD_y)oWKhc6c@O$cn~Q8zE+LK7?|XdHs3 zA>tNlMhh8K6e6v{PWEV#jO^LR7$#?^9YNX?F)@Q@v8o@27cT8QO#ac6tDUz=u)?ne z#n$p>2^{A5-#W*3n#mpKTFo8aM82r^mBdmaGbV1#Q7lHTL%09&PAJs<^}-c4`VUf* z^%f){r&@=>Lz=3+PFgzV($g8YohO-3gyqJwdL>fh7`sYg`R{c;LhkVju>*uXs|rMH z8KeLdDZlCZ3Ipqu9QEE|uKsfY{JnekhO8%FTRlD9yy`|C`lU1S&|&yjw=nKmX+}wi zCd4)M(6>+jw^5*&2c;qX7!Wq3^jv3h4(RK(Dd|N}LupLeGURvuAb5W+VZo1r%l8Kx z$x*|UXDhWpQ@ct{0+{Nr>}`s+TTPzI*PS&Ty8epKTRn^bTC8D zn-~ASrdG4Ij2Fxdly7g?i=Z>jlr@|?9xvI5Ks0_f8`Zch$f%I3fsAKwCY618bPCl zrRbXoSQ4lU73-mxbgjzB!25+5pSQ&wmM}uk#y2QZhfUNwFl6U#Rc^rTYwI&fX2n}` zh}#}{<0~xv-<5@!8j+6#REN6TJXS*una{0>jDZ4^=rrwk%RI(1gNGiL@|Jni)w;%e z{2CG3Q}VM47sVmz&8MrXP>clv+TEIz+fEMw0%I3rm6U=7xCnXg&;GustwQ0Kk2EgT zZsS%JupIl^CV%5btJ78_X4L#NGo`Hr30QU>Y;Zl};~ZLmr+3V>23otl!6xko0?VHf zQv+V1hx-R?m7}cd8}<**P*YQ86z5RTB3bEAGSR+o7yRdc@M?h&Q`3aGW&9455V`*x zc|=FK%XL|n-uktw`y316LooWe|9=mf$5N6%Uz{_bN9QI}@<0jnkFz7U!8BSKq{Nk5 zKM}-?Xllu)18zRO>B=V$<$y3V#nN{H=h1$DJMAmN{4%nKNAO){&cBND!z{zl?Ir(R zH55FJ0e*TmQTQ-3cB1eCfb;mrBU799XfB_h(dKtPVqEI2+Msho$_KW3c#vGl#;4rW zvAT!K^KBt@T_&9Lk3ah*i>1DA?BG_!$bYPnW)WY%qmiOG%AtkO4_;4Wu$jNG%xd|}W$QK20xe|rU@olN2t_Up?!20#)1rk$fVS!4@3 z91V8M0cQ#%4j1w5@4?4{`d8{o|LXal&E|j%a}6QCGsCX@hlanPzghW*oPVMJ;)(;( cL1Mc9A)7XhURNN6G;A|Rkr11c90Y0?RhAaE6x5$ZFL>}B$f0|x|nS6srA9C)X_LAGYs_Eh#ul6gP)J&i1l_Ux&K z3b7yT=lwqT^oC>5o;^pt?jCzjT)6pc&z?Uq=GTqxgu5i^;*ydZoJkLw>&ii ztK9~?Wst3-BO=e6r#(tn#{p`ky*JZYc4=}UiAJtzMaen!9z7>psOQad9xU|dJ45Sh z&#Ri-nu!z6n^P{tq2$b^JW{gcJ{BIP@w%k{?xNOdkv3%W<|LufcjDeu_RnYd9}HIei3u0m3v-*(S^sWKZN>|J*{W<=E_K~Rj^4$Ecc>4p`$un2Q1+{a8|6RL z@Y~~u;cV2YZZFp2RPbqXO9$<^31N7>&-3;e*4;zP)?kVqULyvn{MjN+aT*-Og-u)D=9W9n(KM9jW%WlGoVXH{CZb69R#E2J>jqz!)+o4d4p1r zt)Kg*-kGPtPy(++MNbmq!ClLJ{*WNOD-6ia_6(GN_`nAbEdXvQn%U!qFr2Px(TB@- z2JKrzk@Qq8-(bTq+fz@v($0IeT-4o~jl*wT@fk~bF^b-(CnL`Aq2-*$E*wm+5YyakS zr2l;IbiQ?Cq_aI_^2THUR!VUt9EPhglLi$bnG3o2D9U0+RTQyvVkb>bQ@p4J@)e^X zGv^!Wv{ARJd0OibbCYr2{B(z`>a^t#+>hg9P~BzieNjTLv>r^As`=pc+`3GZX%D7B z5V_2Jl3x*SJ{W$ByvbWwgG1wmQ;ak@FWf&%NdRP?cC}mf|8Cv=zc#jfoHE1ywNh$< zW;!sEaeC<;`{sMy9rfMP22~>ltGOD<_Wj_9`o)6QQZ31?@`z+P-Xu&m2T`j-MF-P%;v*q%`Pgo#Co7cK zqHwp?`Bl=LMjv*_A@1Qsb*M+t8D;8?w4yHcGe(dBIxJIvhJhR(W`ki)`B7uFWzSnd zJDV)C!Oz-s2h$u+J>QYetGtN{ymccbdKgt=kAXal3>jU>2hx;I;wm%IK2;i*q;JqW z=XX>q&Y7plAdbsV^D;C2U0tJp3+86`eT&MX=3PYIiU^P;Z2 z4M{krI&axNN?qv7)q0}6+%#V*;g70zb-GI(t(rOCmue>MSmDxKV^xiZLe>i@ya2u* z^4&$6H(X@IrlMI4G3GTfOj1&b$G4zB81*l!DtY=91EYQxoWx zxX}X`>ANg7;qh20`eKP>F|jAB#N*w^sJ3#M_dYhBhl!Ujm>{bM?KUqe>|7yUPGDz? zAQU52C~5QQ?)jaCCdT6o1YYorkoTouis;x)wP51bCTjOKO5d-@HR-X+t2 z6+*4x#hbhgIeb3LC5@I;lla{5Itb0|^S`$eIkP=@6$f4pvSUv0wP6joYc^W)ZKs1d zsNHuBTIl`Ab~P1voB(hX6bM+h6IZoL`~|>F#A(A4y#7}6vDID@&wcVeiz3Mi%|9} zpW33XJHB4|hS?FuRrmpdTu-0!bd~-Ulsd|i(In{%95|(Pulz>aZW`BEp_Elw!5^&6 zwV(6iZusw9>Eo40AnV)55?GEtW-ZD84t(pIf-SN~6$9A6KlW&a$@M+ZXVM4u@bXs} zBeM~8et+}vz2t>lf2%L&X`WlGQH*QJ*a@wZo_PVLA)RO9?=((@I)^MblakAg^?j;* z2JFPrH{U0yl#&j6erI@PEO_*6zC!-2g;ytwYaLBL$9G@)nb8z#$=BavUQ#{z1jxp0 z2zSg(GBuNUfv!W!d*iot!ydU<(=({{0wHVt6wz;vz4D&Ds2g&dMK{=??@kGrY=I4t zzF~XnYUfUsN6?_iluO8V1EtOza48$jK+CT@ zY5WcLmf-jvbtJhhigJpfxpg zxR9KEY`qh{r&GZQU^ews)KI6#edO=lOUdW9#k4>=v8vb?^VrYf)3t`cr$?URZ8r8C zb_bARazIcM{H1AEN zKYl)6T2}ewVo=?r4kX|(`OJZ^$pAB!a6vX$m9&jaBTGI z%Q%}e7-@+lHJ1o-FI^F7(od^ox?C60-@&LLt!#`TU$}fBge-G6*3hHY|qOYA4tF zD8BFqQ=Q4`)5)gOltdDizr*OeZINVpmfx?2rL^SPHu{`AYPcU=_dp_D$@R44Jq%-9 zWkMuf)Ag*x^@+>pUfL?m3ds8Lr;M5m^%YD_N&34UCm@QW5)6<;(7c}0RN^`5wr@It zqrk9Y>s22ZhgjS%PfQ3aHp2ZAIri&L(+-0|W0v6!{T9J+B(s{5l;vl>Z=Shx)BZIo zIovA@kiG5~07Om!vMw*OTGSUUr@*UGB@#~eT|RqN3gvGfigS zJ7&h=_75?8iD{?(NgBV&AK?5OtKi+A5FJl5_u^LUSb zMH_Pc?6)MWgMWnR4MhVFNoWJ(Ep9_m5OeP6_V7x)x4$quG2@|VekRIq3?ivc zdCBs6@-qm39INA(H&+%hSwx(0f4Lm#2hg5&V-02vYGALQ zo}hJT$0Yaxr)T9;>cN&5k&DfS(BZo>K+Z1Wwwqpazrdf2iZ8g{le$8w6&`s2{63hd zvRu7-0yQsHk{Y<1ae1ZkBlhg;>E`q!m?Lc1PdF6XFfFfsEdg zzSG0Xn82w9%8L~Pm_WxquPr#q!E6`F9y~}3ZanAu*%?fVhO*OuY&B{6+;d&7_xSJs zlMj+BN#dNGZE5Qrpid`8O>D=@a`t?Shu{)XJ={F4!>b$CCFn$9hgGw!L)d0l)*1kG z<}oR>J8qPKpgXUp$@THuN&g1%*)?J-a^{2U?*Ez~|68CwRKBFgXp%F}>1gnqa)L4^ zc$7fzvM)Auhj=$D}HZ2PP>?!3y!>!W}))&hyi<*cQ-j<_nUES$o7(be(<0aWI7c#!&IC7MNvu&Uk7O!e$$#mB~tJMjkW zpOoP$NJxYZG$sJav_P$jsd5AM8KJBD-1Zsa^w|5_6saA|Ne@>oh>g+ulGA3W$~ z7oq?55rlv*`sm{0SuXM31r0ABy_YOM8CA_u17nu#MnP{K z@A%AtZK6t8vw{W=QlVoH6r)ERk-=Ue{W_$g&vs|;+f+*UHNCsKIT>Wf%22XLfFDAf z3*Mu62>9{ol3V3wdcdb&_LDpAJ1ml71f{b(Fssj1i`f0z^NDp*-8KRbVu!mF;CXz1 z63^=q74#_@v( z5s-MwA)2Rb3|neV-6@ewVjLJN5BuR&QoQs@Bt4(eEn(s(uPBCv)%nCN*+9&58XBxq z-JyC{gnt3$8f(eZCYqL6`s?pReBtVz{TuNz5N*ph8()P~Z_VorW;m3Hea5FG_^M5Y zi~<>x`4=Q6E>=%nFslrUu?G20HdVuFgC<&Ke>5E-CaDoFh|pCqY+6LW6(>{k73VLv z97-13;UxBKO2bFjF%@P8s2#l?3)Cx-BGcwaTgD&vine9O&41=x>JCeefzlMQjZ4Oe8YqyfT$=c1v^W)U(-vKMw!6 z4gs+`3l(Si`79i-#NM<6^2a{J5SuTEQR`l@y8Lgm&iK0Sv&Gfy;CdGjJ1~Tm?l5?$q3TjLTytl$+Ml}=@u=39n{7TZ@l_;SSuCC$Xio_ zGv=D+lgqHCxdzb?y(^N)_BP(cWFf!Omr2K=0yoz>-}Uh*nk`V+ok=4y#wwEmw9fT$ zUGqVbEO%*!TOnOm8qFm|Tfr6bo?c@~{sCMAyddxISzn9AmTm zwE#~dNC&c(;8uj2YNvbi{W0-C;xM4Go%hKz^}o6TOt&M;oYU7u+1b>;y( z+(*zxA0#kp%o^q!2NtTv#YvxIb7pqH5i9RTDbnhnMVyn@MnHBz>}_5VMW^e7{9|bv zt&@u8_&#YNn)VKxZpP6*BDRqvp>=Nsve|+UHdy<5LJY`vpkl{8SqE{IF=U6g{CfT8 zLQL*4KmErhHNpb1!`I*UdXH8v>E5d2$*QC7x)higBm7Kq)-ZPqx}&|Mpt@wqPkGv( zr!$;|VH0`jrc1@F@?$dn%*vSp&D}+;%eeMT>`3#wIuBJZr?QqM1t9a5^cp*#gm`>& z-)l$xo%2$-#$1@vo6L|1FNiy5eXq?z;fV`n}c`WUd9oOw7jGAUVG93 zO5mC8X?xWrXk8TJ+F95uk=GGL=X-;gh$@*Q z&dK(uxfA3!^b$+F{ja(Fzo*E7o^D&OW%R6lXUejQ^n9TLpw(C@;1cSk*{oNjc&WMF zrIPJ*Sv4D;)_EJcbp4Yb3mP=%@kIpu%a~ldo(heUTk?J-A>mr?z5U<>pUXs&u>^W& zYAEBDA;GkWtaTu#VW3WRQu64pgG0Vk!$UTru~%06G!& z0vEtGbXov5K<~|#F;N^SGu$(;w+}Yjah2bHx>OgXmNz5|eY;}9QFDBabv^n%JGd8Zwrv|3kJF5BfVx3j=Sh56K-ORBOr2h&S; zV@b8CUcYLg`6^Cp0=8z`iy+nYQupW7<;ASz(({_hIzE7vJ`(XqCY_zL@&S8=r%V+2 z|0&ipJ{pyO0~>|NUFVzm!1y4#@v)-UlE%4zp{M^!&TW4mr9s;&n@5P;WGQTd2JuRE zmW;)M*089@14nKm1VDTl@}bHh9#9z7>wUFRd*wzJ+}M)niBbeQ18)xgCBE^NeUVEB z)@hhLe(A)xzz1;mPJH z`__8JT^*4U0KSwWg>!N2Ki+5bsY77y-n6wENgOG68qT}EFOJRsTC6c=bx>+Xw&1SL zBJNA6l)<|mdFPj;*f*v~R!bgjLHctFUc^LNF z|7VH!Uqi>CbbjUurF(aH;O(@gOHiLCW3bDJ>*G0v4B-KdID|xpi5M`QhWd@l)N#8K zJ>*tcdTLFw7&hO%nC#BmFA)s{XD4EoT-f=zZx}{bdDg2dcRlhy(EX5aYckp5o_RLD zGiW_wUYe}1(q|IPE55(6x~k~w%~QGl;~wLl@O&Cz_Srs)&S2$%!|Im}d;fT|)+nX@ zh?Ey(#e;#SJ0qGEOR38d++QlF)vpwFIP;dCS=ysyW#@(>>$ny~i`UvM*hxL$`2mi} zCgi?8{o%`d*1_!=?|X_rW~7ruCm!Dv12$bwpZYS8(dSvz)zZ+Ta=+n(aS?9wm`(Dj zhdV!zA8CPER3c4HEuE%f_9BpT6nlo^RUSnrCStiHng#)`)RQ3tmj^}Al!>4WVyB4? zo!woN(e0iB7xL}da%p<{;56xthvg0XWfANJRnZ=Evu1Z)%aEfETB_&fqJ%C>89RFR zD&Z_?NpuCSz*%^8x9Ego&xwaR#_8u9Y+w>LGB%q`nnOvi5K+I8vy{4-cHUx8n@j`u zK=&FC3BCtZ=OgH^Q8cyos~|@QSjmI@G1s@DDZZvT2#+&^-)@KapSM(nV2PZ__vT}?rAIPUN2Rwy>7+K2QefGBw>O2P4sqqanO6k*rT zDMB!CyBaI)Y`ydikom4x3ogGBC6Tykm8Sty!ZWNE?!a8$zEC4fn4qO6x;EqMh-kw0 zKwVXJA409r7vw5~^9}5>2$sCohwfnXdbJ zXzQt&wRbgd7Ghe)QO`TWCx2!}DA*$>sH10%SFV3Z)}DJA@kFrOoH?f>*$vyX{6r>v zHYVbUJrf;E9)lvl%J{~&TK=v)^hoS>mYIBR){33->-B`QTGPMf``4{o_%dzH2orUf z2lRzLMQ}MTMJC$mW?e_NTf>c6iNx5SbS|mVr;pysKKTSmKXA%weXY0jdv?iWo>YvUhFsTEeGvxRAS)fzx81 zl8s8gqthG9A5L4dQ3ODLqcO`Uz{)PZ_#6}vm~}Fcsg+xZ9@}~R#qPyc>s!xm%o5$qRJIJ>F zLWy`I%siGGpmOZO0UwvTT;yxPFGyl&liw{(WVL@YF>^f(8zQ=R4&Mv!bl2=n>Rq1u zaVtL%z|<8l`%?Vsva&16`&y5j$~Bz@V#P_W?7a%7j2CQiYYCN4F5weScbLH7mkDMV z-PI{xkbB(swQEqJv(Ee??A69lAGwW{K$O)fZ;)rdFA&A8(dD8|N-~7G<6`@hyTbju zfAkkZx@)lL#{Ip9vp@Mv6ZRL8-lKF~X=z!DfyRSF?tipiiwVk(@HUnuocdH1WqLmm zd=ZDKInt?Xusqu&5(nS!#4=b(s%!H*&qF0u;MH|OZRuf zw^~1`R0MvRf7!$0ms&*n)`UG|5Vf|Ei-Et&K%KECbT#!rInNutLGjjvUq#gX8!Z6)o(!BRUpp13LH#I2?moL2Yw48rE=-o%+@jyu z)d=^mx+ONzNvBMiK%L-ZluIYc27$`6+=k;4)IKd4GPBKGEg$Birn^}W99^w4i9O>G zv_8mGoW}Y2hVkC2qdO}^{8~ADbT5eDb+pGEK5F1aM|Pz)^eVu`80lGASCiN|$tUo{ z>dsMIYBc)dOei6r)E*AGa#=&}Knx#)TkG{&Iy5_CUIU&$zi}mX+%^oS0B*Op0>F z2b`~picHMf?!3wbeWPXj-82BMpAI$Fdn2=5^_1`S1JLuV4`U67h=v4X(UCsuqv;AZ z&iWo#znO~~JBBu7xCN)+<_SHG19dw@l!L+xL?H1Y$Z-S!e(UL|a{C3qvfORiy~sT> zj?i=Y6_L=!^2jH8o$3@U>LKwUgu^}Q?LgO|yZV3EEC#qZ7!0aSA$nT?&>rNUS!S(j zbzRWQ)U0ULfN~mZ(cbe+_eloKozq#SjERc0k=M5w@y@N`I;i3VImvDXM`%}#%CVlE z)U-1*R?Rq0a^wV;ND?-7ZL}nM8S5X`8S(wo4kFpjo@nSop?p%!oW~zVyI<%rZDtLN zv4(}aiSHDBb*ccBmL3mWVe$qWojBdWOcFl$vQG-U-Jn%!M8kO0c13RfRuw7nWKU#t z`o569B`-j9p>qfdXHjw!1rT$a&pY_R85tB0hV-`V12~<+Z68eANUU&f9C5#^8MZtb zQ9e}%mf!hHYzDZ*2P+}rz?ynTX9Yn}lfhn(6u7|S3_8t1|LI!3c}16`a!-`ooY@5p zy>DwjO#`h_dMaL&F(A(pari-4tDO1G|IJJEUno-YTuQ%n)vcl?-WD>onoR!GcBBl; zQ(33~7pl?lpBS7Vd5`*X?(V97u+tLcU1`&LiNf7pvG&@^TYhBg$RiWIvIa*+U4ks@ zpZ@$x*~Lbr8)+JxQv~eKUCbK7+ugRuN=Nz}+T!WaW&+GJ114Y&W7J+DKiD>;Td}0* z+05U|i>Gq@_}};FzS!m17C+X)W!*~L!k9cHeusy5FZ$}bDcEPeBd@jbBuUd^udnV0 zGOP6xGyIzY-Ps2H7x149(u#hbBE$zT)sG@h0(Q&bAFDn0Ep8)MzX~ZqJYT*;9h23Y z;_wikw0Y1ph%{`G+kWM&9&bMYsnO?cJnqNK%Bdl{>fRr9ZM%XiPbCZZO9v`LlQ=$D zljP8UCHJCZjhwP`?IX(^X(hJ}a0<(@C3NXVPEfy2$=W0Hw4r`kgQ8qNq+{js}%JA$Dgl#*XkC@u{@#eOF;7`>6r|7q!wpvwskBAf0(NvDT_C z`>p(p;ah25!Pb!8tLbJiQ}Q`!4>eF)0)$#2X5!BPsj# z?sO|vm6w!0*)=p>#!A{*FQo_qQg8!iGC=F4Oa9ZSh;k{a$)@IBz(ReO^HL1sivP5W zbrOW%Fd>%~C;bd>rK_CO_$~u?TfnQ1sQZ}nJrK$e&(4$+_B7qk-1QQ8joH0#hY7;p zSnGrCP{V7!^T`{UX>B=FY(W-qaJasr!F!9mlbfIXcvv;Ur{q z_R+`HTKjq1j`qANHh9tDlWYi?)Ge{csj@CT$h|e(4CbTj)XLLJ&EXuMu}|-$Ct^;j zX$h{MzKy8SHCQ?E_y_d(Uf6Uj3VR>GJYu{1p~VS;*JaNdE&v%ZD%)HA09-eD5a)J0 z!E@^YPrg$GOHckfcFIC}s~eDedzxJljQs9(7n{V_b8e5FYqwPRqyAttL|^)Sh?M_G zp&Pnw$Qt%yjrPbeZ3u1zFW& znoU@bL;Y6oqLES*V)u zjDDxvw>NT0zNVaL+8Tgc#idjYlCJ-v>?rU$7XUy+hEPUwr`? zPmneL0TuvRDmpC9R [!IMPORTANT] > When you build a provisioning package, you may include sensitive information in the project files and in the provisioning package (.ppkg) file. Although you have the option to encrypt the .ppkg file, project files are not encrypted. You should store the project files in a secure location and delete the project files when they are no longer needed. +## Apply package - **Next step**: [How to apply a provisioning package](provisioning-apply-package.md) +1. Start with a computer on the first-run setup screen. If the PC has gone past this screen, reset the PC to start over. To reset the PC, go to **Settings** > **Update & security** > **Recovery** > **Reset this PC**. + + ![The first screen to set up a new PC](images/oobe.jpg) + +2. Insert the USB drive. Windows Setup will recognize the drive and ask if you want to set up the device. Select **Set up**. + + ![Set up device?](images/setupmsg.jpg) + +3. The next screen asks you to select a provisioning source. Select **Removable Media** and tap **Next**. + + ![Provision this device](images/prov.jpg) + +4. Select the provisioning package (\*.ppkg) that you want to apply, and tap **Next**. + + ![Choose a package](images/choose-package.png) + +5. Select **Yes, add it**. + + ![Do you trust this package?](images/trust-package.png) + ## Learn more +- [Build and apply a provisioning package]( https://go.microsoft.com/fwlink/p/?LinkId=629651) - Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) - Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922)   -## Related topics -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) +  diff --git a/windows/deploy/provision-pcs-with-apps-and-certificates.md b/windows/deploy/provision-pcs-with-apps-and-certificates.md index 6e4614a977..2a918f8202 100644 --- a/windows/deploy/provision-pcs-with-apps-and-certificates.md +++ b/windows/deploy/provision-pcs-with-apps-and-certificates.md @@ -4,7 +4,7 @@ description: Create a provisioning package to apply settings to a PC running Win ms.assetid: 66D14E97-E116-4218-8924-E2A326C9367E keywords: ["runtime provisioning", "provisioning package"] ms.prod: W10 -ms.mktglfcycl: deploy +ms.mktglfcycl: manage ms.sitesec: library author: jdeckerMS localizationpriority: high @@ -57,7 +57,7 @@ Use the Windows Imaging and Configuration Designer (ICD) tool included in the Wi 3. Go to **Runtime settings** > **ProvisioningCommands** > **DeviceContext** > **CommandLine** and specify the command line that needs to be executed to install the app. This is a single command line (such as a script, executable, or msi) that triggers a silent install of your CommandFiles. Note that the install must execute silently (without displaying any UI). For MSI installers use, the `msiexec /quiet` option. > [!NOTE] -> If you are installing more than one app, then use `CommandLine` to invoke the script or batch file that orchestrates installation of the files. For more information, see [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md). +> If you are installing more than one app, then use CommandLine to invoke the script or batch file that orchestrates installation of the files. For more information, see [Install a Win32 app using a provisioning package](https://msdn.microsoft.com/library/windows/hardware/mt703295%28v=vs.85%29.aspx). ### Add a universal app to your package @@ -170,27 +170,66 @@ If your build is successful, the name of the provisioning package, output direct -**Next step**: [How to apply a provisioning package](provisioning-apply-package.md) +## Apply package + +### During initial setup, from a USB drive + +1. Start with a computer on the first-run setup screen. If the PC has gone past this screen, reset the PC to start over. To reset the PC, go to **Settings** > **Update & security** > **Recovery** > **Reset this PC**. + + ![The first screen to set up a new PC](images/oobe.jpg) + +2. Insert the USB drive. Windows Setup will recognize the drive and ask if you want to set up the device. Select **Set up**. + + ![Set up device?](images/setupmsg.jpg) + +3. The next screen asks you to select a provisioning source. Select **Removable Media** and tap **Next**. + + ![Provision this device](images/prov.jpg) + +4. Select the provisioning package (\*.ppkg) that you want to apply, and tap **Next**. + + ![Choose a package](images/choose-package.png) + +5. Select **Yes, add it**. + + ![Do you trust this package?](images/trust-package.png) + +6. Read and accept the Microsoft Software License Terms. + + ![Sign in](images/license-terms.png) + +7. Select **Use Express settings**. + + ![Get going fast](images/express-settings.png) + +8. If the PC doesn't use a volume license, you'll see the **Who owns this PC?** screen. Select **My work or school owns it** and tap **Next**. + + ![Who owns this PC?](images/who-owns-pc.png) + +9. On the **Choose how you'll connect** screen, select **Join Azure AD** or **Join a domain** and tap **Next**. + + ![Connect to Azure AD](images/connect-aad.png) + +10. Sign in with your domain, Azure AD, or Office 365 account and password. When you see the progress ring, you can remove the USB drive. + + ![Sign in](images/sign-in-prov.png) + + +### After setup, from a USB drive, network folder, or SharePoint site + +On a desktop computer, navigate to **Settings** > **Accounts** > **Work access** > **Add or remove a management package** > **Add a package**, and select the package to install. + +![add a package option](images/package.png) ## Learn more +- [Build and apply a provisioning package]( https://go.microsoft.com/fwlink/p/?LinkId=629651) - Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) - Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922)   -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) + + diff --git a/windows/deploy/provisioning-apply-package.md b/windows/deploy/provisioning-apply-package.md deleted file mode 100644 index 417c9e9e75..0000000000 --- a/windows/deploy/provisioning-apply-package.md +++ /dev/null @@ -1,119 +0,0 @@ ---- -title: Apply a provisioning package (Windows 10) -description: Provisioning packages can be applied to a device during the first-run experience (OOBE) and after ("runtime"). -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -author: jdeckerMS -localizationpriority: high ---- - -# Apply a provisioning package - - -**Applies to** - -- Windows 10 -- Windows 10 Mobile - -Provisioning packages can be applied to a device during the first-run experience (out-of-box experience or "OOBE") and after ("runtime"). - -## Desktop editions - -### During initial setup, from a USB drive - -1. Start with a computer on the first-run setup screen. If the PC has gone past this screen, reset the PC to start over. To reset the PC, go to **Settings** > **Update & security** > **Recovery** > **Reset this PC**. - - ![The first screen to set up a new PC](images/oobe.jpg) - -2. Insert the USB drive. Windows Setup will recognize the drive and ask if you want to set up the device. Select **Set up**. - - ![Set up device?](images/setupmsg.jpg) - -3. The next screen asks you to select a provisioning source. Select **Removable Media** and tap **Next**. - - ![Provision this device](images/prov.jpg) - -4. Select the provisioning package (\*.ppkg) that you want to apply, and tap **Next**. - - ![Choose a package](images/choose-package.png) - -5. Select **Yes, add it**. - - ![Do you trust this package?](images/trust-package.png) - -6. Read and accept the Microsoft Software License Terms. - - ![Sign in](images/license-terms.png) - -7. Select **Use Express settings**. - - ![Get going fast](images/express-settings.png) - -8. If the PC doesn't use a volume license, you'll see the **Who owns this PC?** screen. Select **My work or school owns it** and tap **Next**. - - ![Who owns this PC?](images/who-owns-pc.png) - -9. On the **Choose how you'll connect** screen, select **Join Azure AD** or **Join a domain** and tap **Next**. - - ![Connect to Azure AD](images/connect-aad.png) - -10. Sign in with your domain, Azure AD, or Office 365 account and password. When you see the progress ring, you can remove the USB drive. - - ![Sign in](images/sign-in-prov.png) - -### After setup, from a USB drive, network folder, or SharePoint site - -On a desktop computer, navigate to **Settings** > **Accounts** > **Access work or school** > **Add or remove a provisioning package** > **Add a package**, and select the package to install. - -![add a package option](images/package.png) - -## Mobile editions - -### Using removable media - -1. Insert an SD card containing the provisioning package into the device. -2. Navigate to **Settings** > **Accounts** > **Access work or school** > **Add or remove a provisioning package** > **Add a package**, and select the package to install. - - ![add a package option](images/packages-mobile.png) - -3. Click **Add**. - -4. On the device, the **Is this package from a source you trust?** message will appear. Tap **Yes, add it**. - - ![Is this package from a source you trust](images/package-trust.png) - -### Copying the provisioning package to the device - -1. Connect the device to your PC through USB. - -2. On the PC, select the provisioning package that you want to use to provision the device and then drag and drop the file to your device. - -3. On the device, the **Is this package from a source you trust?** message will appear. Tap **Yes, add it**. - - ![Is this package from a source you trust](images/package-trust.png) - - -# - - -## Learn more - -- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) - -- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) - - -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) \ No newline at end of file diff --git a/windows/deploy/provisioning-command-line.md b/windows/deploy/provisioning-command-line.md deleted file mode 100644 index d5c52aabac..0000000000 --- a/windows/deploy/provisioning-command-line.md +++ /dev/null @@ -1,68 +0,0 @@ ---- -title: Windows ICD command-line interface (Windows 10) -description: -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -author: jdeckerMS -localizationpriority: high ---- - -# Windows ICD command-line interface (reference) - - -**Applies to** - -- Windows 10 -- Windows 10 Mobile - -You can use the Windows Imaging and Configuration Designer (ICD) command-line interface (CLI) to automate the building of provisioning packages and Windows 10 for desktop editions (Home, Pro, Enterprise, and Education) and Windows 10 Mobile or Windows 10 IoT Core (IoT Core) images. - -- IT pros can use the Windows ICD CLI to require less re-tooling of existing processes. You must run the Windows ICD CLI from a command window with administrator privileges. - -- You must use the Windows ICD CLI and edit the customizations.xml sources to create an image and/or provisioning package with multivariant support. You need the customizations.xml file as one of the inputs to the Windows ICD CLI to build a provisioning package. For more information, see [Create a provisioning package with multivariant settings](provisioning-multivariant.md). - - - -## Syntax - -``` -icd.exe /Build-ProvisioningPackage /CustomizationXML: /PackagePath: -[/StoreFile:] [/MSPackageRoot:] [/OEMInputXML:] -[/ProductName:] [/Variables::] [[+|-]Encrypted] [[+|-]Overwrite] [/?] -``` - -## Switches and arguments - -| Switch | Required? | Arguments | -| --- | --- | --- | -| /CustomizationXML | No | Specifies the path to a Windows provisioning XML file that contains the customization assets and settings. For more information, see Windows provisioning answer file. | -| /PackagePath | Yes | Specifies the path and the package name where the built provisioning package will be saved. | -| /StoreFile | No


    See Important note. | For partners using a settings store other than the default store(s) used by Windows ICD, use this parameter to specify the path to one or more comma-separated Windows settings store file. By default, if you don't specify a settings store file, the settings store that's common to all Windows editions will be loaded by Windows ICD.


    **Important** If you use this parameter, you must not use /MSPackageRoot or /OEMInputXML. | -| /Variables | No | Specifies a semicolon separated and macro pair. The format for the argument must be =. | -| Encrypted | No | Denotes whether the provisioning package should be built with encryption. Windows ICD auto-generates the decryption password and includes this information in the output.


    Precede with + for encryption or - for no encryption. The default is no encryption. | -| Overwrite | No | Denotes whether to overwrite an existing provisioning package.


    Precede with + to overwrite an existing package or - if you don't want to overwrite an existing package. The default is false (don't overwrite). | -| /? | No | Lists the switches and their descriptions for the command-line tool or for certain commands. | - - - - -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) -  - - - - - diff --git a/windows/deploy/provisioning-create-package.md b/windows/deploy/provisioning-create-package.md deleted file mode 100644 index 51b609a8ea..0000000000 --- a/windows/deploy/provisioning-create-package.md +++ /dev/null @@ -1,148 +0,0 @@ ---- -title: Create a provisioning package (Windows 10) -description: With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -author: jdeckerMS -localizationpriority: high ---- - -# Create a provisioning package for Windows 10 - - -**Applies to** - -- Windows 10 -- Windows 10 Mobile - -You use Windows Imaging and Configuration Designer (ICD) to create a provisioning package (.ppkg) that contains customization settings. You can apply the provisioning package to a device running Windows 10. - ->[Learn how to install Windows ICD.](provisioning-install-icd.md) - -## Start a new project - -1. Open Windows ICD: - - From either the Start screen or Start menu search, type 'Imaging and Configuration Designer' and click on the Windows ICD shortcut, - - or - - - Navigate to `C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Imaging and Configuration Designer\x86` (on an x64 computer) or `C:\Program Files\Windows Kits\10\Assessment and Deployment Kit\Imaging and Configuration Designer\x86\ICD.exe` (on an x86 computer), and then double-click **ICD.exe**. - -2. Select your desired option on the **Start** page, which offers three options for creating a provisioning package, as shown in the following image: - - ![Simple provisioning or provision school devices or advanced provisioning](images/icd-create-options.png) - - - The **Simple provisioning** and **Provision school devices** options provide wizard-style walkthroughs for creating a provisioning package based on a set of common settings. - - The **Advanced provisioning** option opens a new project with all **Runtime settings** available. - >[!TIP] - >You can start a project in the simple editor and then switch the project to the advanced editor. - > - >![Switch to advanced editor](images/icd-switch.png) - -3. Enter a name for your project, and then click **Next**. - -4. Select the settings you want to configure, based on the type of device, and then click **Next**. The following table describes the options. - - | Windows edition | Settings available for customization | Provisioning package can apply to | - | --- | --- | --- | - | All Windows editions | Common settings | All Windows 10 devices | - | All Windows desktop editions | Common settings and settings specific to desktop devices | All Windows 10 desktop editions (Home, Pro, Enterprise, Pro Education, Enterprise Education) | - | All Windows mobile editions | Common settings and settings specific to mobile devices | All Windows 10 Mobile devices | - | Windows 10 IoT Core | Common settings and settings specific to Windows 10 IoT Core | All Windows 10 IoT Core devices | - | Windows 10 Holographic | Common settings and settings specific to Windows 10 Holographic | [Microsoft HoloLens](https://technet.microsoft.com/itpro/hololens/hololens-provisioning) | - | Common to Windows 10 Team edition | Common settings and settings specific to Windows 10 Team | [Microsoft Surface Hub](https://technet.microsoft.com/itpro/surface-hub/provisioning-packages-for-certificates-surface-hub) | - -5. On the **Import a provisioning package (optional)** page, you can click **Finish** to create your project, or browse to and select an existing provisioning packge to import to your project, and then click **Finish**. - ->[!TIP] ->**Import a provisioning package** can make it easier to create different provisioning packages that all have certain settings in common. For example, you could create a provisioning package that contains the settings for your organization's network, and then import it into other packages you create so you don't have to reconfigure those common settings repeatedly. - -After you click **Finish**, Windows ICD will open the appropriate walkthrough page if you selected **Simple provisioning** or **Provision school devices**, or the **Available customizations** pane if you selected **Advanced provisioning**. The remainder of this topic will explain the **Advanced provisioning scenario**. - -- For instructions on **Simple provisioning**, see [Provision PCs with common settings](provision-pcs-for-initial-deployment.md). -- For instructions on **Provision school devices**, see [Set up student PCs to join domain](https://technet.microsoft.com/edu/windows/set-up-students-pcs-to-join-domain). - - -## Configure settings - -For an advanced provisioning project, Windows ICD opens the **Available customizations** pane. The example in the following image is based on **All Windows desktop editions** settings. - -![What the ICD interface looks like](images/icd-runtime.png) - -The settings in Windows ICD are based on Windows 10 configuration service providers (CSPs). To learn more about CSPs, see [Introduction to configuration service providers (CSPs) for IT pros](https://technet.microsoft.com/itpro/windows/manage/how-it-pros-can-use-configuration-service-providers). - -The process for configuring settings is similar for all settings. The following table shows an example. - - - - - - - -
    ![step one](images/one.png)
    Expand a category.
    ![Expand Certificates category](images/icd-step1.png)
    ![step two](images/two.png)
    Select a setting.
    ![Select ClientCertificates](images/icd-step2.png)
    ![step three](images/three.png)
    Enter a value for the setting. Click **Add** if the button is displayed.
    ![Enter a name for the certificate](images/icd-step3.png)
    ![step four](images/four.png)
    Some settings, such as this example, require additional information. In **Available customizations**, select the value you just created, and additional settings are displayed.
    ![Additional settings for client certificate](images/icd-step4.png)
    ![step five](images/five.png)
    When the setting is configured, it is displayed in the **Selected customizations** pane.
    ![Selected customizations pane](images/icd-step5.png)
    - -For details on each specific setting, see [Windows Provisioning settings reference](https://msdn.microsoft.com/library/windows/hardware/dn965990.aspx). The reference topic for a setting is also displayed in Windows ICD when you select the setting, as shown in the following image. - -![Windows ICD opens the reference topic when you select a setting](images/icd-setting-help.png) - - - ## Build package - -1. After you're done configuring your customizations, click **Export** and select **Provisioning Package**. - - ![Export on top bar](images/icd-export-menu.png) - -2. In the **Describe the provisioning package** window, enter the following information, and then click **Next**: - - **Name** - This field is pre-populated with the project name. You can change this value by entering a different name in the **Name** field. - - **Version (in Major.Minor format** - - Optional. You can change the default package version by specifying a new value in the **Version** field. - - **Owner** - Select **IT Admin**. For more information, see [Precedence for provisioning packages](provisioning-how-it-works.md#precedence-for-provisioning-packages). - - **Rank (between 0-99)** - Optional. You can select a value between 0 and 99, inclusive. The default package rank is 0. - -3. In the **Select security details for the provisioning package** window, you can select to encrypt and/or sign a provisioning package with a selected certificate. Both selections are optional. Click **Next** after you make your selections. - - - **Encrypt package** - If you select this option, an auto-generated password will be shown on the screen. - - **Sign package** - If you select this option, you must select a valid certificate to use for signing the package. You can specify the certificate by clicking **Select** and choosing the certificate you want to use to sign the package. - - >[!NOTE] - >You should only configure provisioning package security when the package is used for device provisioning and the package has contents with sensitive security data such as certificates or credentials that should be prevented from being compromised. When applying an encrypted and/or signed provisioning package, either during OOBE or through the setting UI, the package can be decrypted, and if signed, be trusted without explicit user consent. An IT administrator can set policy on a user device to restrict the removal of required packages from the device, or the provisioning of potentially harmful packages on the device. - > - >If a provisioning package is signed by a trusted provisioner, it can be installed on a device without a prompt for user consent. In order to enable trusted provider certificates, you must set the **TrustedProvisioners** setting prior to installing the trusted provisioning package. This is the only way to install a package without user consent. To provide additional security, you can also set **RequireProvisioningPackageSignature**, which prevents users from installing provisioning packages that are not signed by a trusted provisioner. - -4. In the **Select where to save the provisioning package** window, specify the output location where you want the provisioning package to go once it's built, and then click **Next**. By default, Windows ICD uses the project folder as the output location. - -5. In the **Build the provisioning package** window, click **Build**. The provisioning package doesn't take long to build. The project information is displayed in the build page and the progress bar indicates the build status. - - If you need to cancel the build, click Cancel. This cancels the current build process, closes the wizard, and takes you back to the Customizations Page. - -6. If your build fails, an error message will show up that includes a link to the project folder. You can scan the logs to determine what caused the error. Once you fix the issue, try building the package again. - - If your build is successful, the name of the provisioning package, output directory, and project directory will be shown. - - If you choose, you can build the provisioning package again and pick a different path for the output package. To do this, click **Back** to change the output package name and path, and then click **Next** to start another build. - -7. When you are done, click **Finish** to close the wizard and go back to the Customizations page. - -**Next step**: [How to apply a provisioning package](provisioning-apply-package.md) - -## Learn more - -- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) - -- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) - - - -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) \ No newline at end of file diff --git a/windows/deploy/provisioning-how-it-works.md b/windows/deploy/provisioning-how-it-works.md deleted file mode 100644 index 1f9b72eb6c..0000000000 --- a/windows/deploy/provisioning-how-it-works.md +++ /dev/null @@ -1,184 +0,0 @@ ---- -title: How provisioning works in Windows 10 (Windows 10) -description: A provisioning package (.ppkg) is a container for a collection of configuration settings. -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -author: jdeckerMS -localizationpriority: high ---- - -# How provisioning works in Windows 10 - - -**Applies to** - -- Windows 10 -- Windows 10 Mobile - -Provisioning packages in Windows 10 provide IT administrators with a simplified way to apply configuration settings to Windows 10 devices. Windows Imaging and Configuration Designer (Windows ICD) is a tool that makes it easy to create a provisioning package. Windows ICD is contained in the [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit). - -## Provisioning packages - -A provisioning package contains specific configurations/settings and assets that can be provided through a removable media or simply downloaded to the device. - -To enable adding multiple sets of settings or configurations, the configuration data used by the provisioning engine is built out of multiple configuration sources that consist of separate provisioning packages. Each provisioning package contains the provisioning data from a different source. - -A provisioning package (.ppkg) is a container for a collection of configuration settings. The package has the following format: - -- Package metadata – The metadata contains basic information about the package such as package name, description, version, ranking, and so on. - -- XML descriptors – Each descriptor defines a customization asset or configuration setting included in the package. - -- Asset payloads – The payloads of a customization asset or a configuration setting associated with an app or data asset. - -You can use provisioning packages for runtime device provisioning by accessing the package on a removable media attached to the device, through near field communication (NFC), or by downloading from a remote source location. - -## Precedence for provisioning packages - -When multiple provisioning packages are available for device provisioning, the combination of package owner type and package rank level defined in the package manifest is used to resolve setting conflicts. The pre-defined package owner types are listed below in the order of lowest to highest owner type precedence: - -1. Microsoft - -2. Silicon Vender - -3. OEM - -4. System Integrator - -5. Mobile Operator - -6. IT Admin - -The valid value range of package rank level is 0 to 99. - -When setting conflicts are encountered, the final values provisioned on the device are determined by the owner type precedence and the rank level of the packages containing the settings. For example, the value of a setting in a package with owner **System Integrator** and rank level **3** takes precedence over the same setting in a package with owner **OEM** and rank level **4**. This is because the System Integrator owner type has the higher precedence over the OEM owner type. For packages with the same owner type, the package rank level determines the package from which the setting values get provisioned on the device. - -## Windows provisioning XML - -Windows provisioning XML is the framework that allows Microsoft and OEM components to declare end-user configurable settings and the on-device infrastructure for applying the settings with minimal work by the component owner. - -Settings for each component can be declared within that component's package manifest file. These declarations are turned into settings schema that are used by Windows ICD to expose the potential settings to users to create customizations in the image or in provisioning packages. Windows ICD translates the user configuration, which is declared through Windows provisioning answer file(s), into the on-device provisioning format. - -When the provisioning engine selects a configuration, the Windows provisioning XML is contained within the selected provisioning data and is passed through the configuration manager and then to the Windows provisioning CSP. The Windows provisioning CSP then takes and applies the provisioning to the proper location for the actual component to use. - -## Provisioning engine - -The provisioning engine is the core component for managing provisioning and configuration at runtime in a device running Windows 10. - -The provisioning engine provides the following functionality: - -- Provisioning configuration at any time when the device is running including first boot and setup or OOBE. It is also extensible to other points during the run-time of the device. -- Reading and combining settings from multiple sources of configuration that may be added to an image by Microsoft, the OEM, or system integrator, or added by IT/education administrators or users to the device at run-time. Configuration sources may be built into the image or from provisioning packages added to the device. -- Responding to triggers or events and initiating a provisioning stage. -- Authenticating the provisioning packages. -- Selecting a set of configuration based on the stage and a set of keys—such as the SIM, MCC/MNC, IMSI range, and so on—that map to a specific configuration then passing this configuration to the configuration management infrastructure to be applied. -- Working with OOBE and the control panel UI to allow user selection of configuration when a specific match cannot be determined. - -## Configuration manager - -The configuration manager provides the unified way of managing Windows 10 devices. Configuration is mainly done through the Open Mobile Alliance (OMA) Device Management (DM) and Client Provisioning (CP) protocols. The configuration manager handles and parses these protocol requests from different channels and passes them down to Configuration Service Providers (CSPs) to perform the specific management requests and settings. - -The provisioning engine relies on configuration manager for all of the actual processing and application of a chosen configuration. The provisioning engine determines the stage of provisioning and, based on a set of keys, determines the set of configuration to send to the configuration manager. The configuration manager in turn parses and calls into the CSPs for the setting to be applied. - -Underneath the configuration manager are the CSPs. Each section of configuration translates to a particular CSP to handle interpreting into an action on the device. Each CSP translates the instructions in the configuration and calls into the appropriate APIs and components to perform the requested provisioning actions. - -## Policy and resource manager - -The policy, resource, and context manager components manage the enrollment and unenrollment of devices into enterprise environments. The enrollment process into an enterprise is essentially the provisioning of configuration and device management policies that the enterprise wants to enforce on the device. This is usually done through the explicit signing up of the device to an enterprise's device management server over a network connection. This provides the user with the ability to access the enterprise's resources through the device and the enterprise with a means to manage and control access and manage and control the device itself. - -The key differences between enterprise enrollment and the configuration performed by the provisioning engine are: -- Enrollment enforces a limited and controlled set of policies on the device that the user may not have full control over. The provisioning engine exposes a larger set of settings that configure more aspects of the device and are generally user adjustable. -- The policy manager manages policy settings from multiple entities and performs a selection of the setting based on priority of the entities. The provisioning engine applies the settings and does not offer a means of prioritizing settings from different sources. The more specific provisioning is the last one applied and the one that is used. -- Individual policy settings applied from different enrollment entities are stored so they can be removed later during unenrollment. This enables the user to remove enterprise policy and return the device to a state without the enterprise restrictions and any sensitive data. The provisioning engine does not maintain individual provisioning settings or a means to roll back all applied settings. - -In Windows 10, the application of policy and enrollment through provisioning is required to support cases where an enterprise or educational institution does not have a DM server for full device management. The provisioning engine supports provisioning enrollment and policy through its configuration and integrates with the existing policy and resource manager components directly or through the configuration manager. - -## Triggers and stages - -Triggers are events during the lifetime of the system that start a provisioning stage. Some examples of triggers are: boot, OOBE, SIM change, user added, administrator added, user login, device update, and various manual triggers (such as deployment over USB or launched from an email attachment or USB flash drive). - -When a trigger occurs, provisioning is initiated for a particular provisioning stage. The stages are grouped into sets based on the scope of the settings: -- **Static**: First stage run for provisioning to apply configuration settings to the system to set up OOBE or apply device-wide settings that cannot be done when the image is being created. -- **System**: Run during OOBE and configure system-wide settings. -- **UICC**: UICC stages run for each new UICC in a device to handle configuration and branding based on the identity of the UICC or SIM card. This enables the runtime configuration scenarios where an OEM can maintain one image that can be configured for multiple operators. -- **Update**: Runs after an update to apply potential updated settings changes. -- **User**: runs during a user account first run to configure per-user settings. - - - - - - - - - -## Device provisioning during OOBE - -The provisioning engine always applies provisioning packages persisted in the C:\Recovery\Customizations folder on the OS partition. When the provisioning engine applies provisioning packages in the %ProgramData%\Microsoft\Provisioning folder, certain runtime setting applications, such as the setting to install and configure Windows apps, may be extended past the OOBE pass and continually be processed in the background when the device gets to the desktop. Settings for configuring policies and certain crucial system configurations are always be completed before the first point at which they must take effect. - -Device users can apply a provisioning package from a remote source when the device first boots to OOBE. The device provisioning during OOBE is only triggered after the language, locale, time zone, and other settings on the first OOBE UI page are configured. On all Windows devices, device provisioning during OOBE can be triggered by 5 fast taps on the Windows hardware key. When device provisioning is triggered, the provisioning UI is displayed in the OOBE page. The provisioning UI allows users to select a provisioning package acquired from a remote source, such as through NFC or a removable media. - -The following table shows how device provisioning can be initiated when a user first boots to OOBE. - - -| Package delivery | Initiation method | Supported device | -| --- | --- | --- | -| Removable media - USB drive or SD card
    (Packages must be placed at media root) | 5 fast taps on the Windows key to launch the provisioning UI |All Windows devices | -| From an administrator device through machine to machine NFC or NFC tag
    (The administrator device must run an app that can transfer the package over NFC) | 5 fast taps on the Windows key to launch the provisioning UI | Windows 10 Mobile devices and IoT Core devices | - -The provisioning engine always copies the acquired provisioning packages to the %ProgramData%\Microsoft\Provisioning folder before processing them during OOBE. The provisioning engine always applies provisioning packages embedded in the installed Windows image during Windows Setup OOBE pass regardless of whether the package is signed and trusted. When the provisioning engine applies an encrypted provisioning package on an end-user device during OOBE, users must first provide a valid password to decrypt the package. The provisioning engine also checks whether a provisioning package is signed and trusted; if it's not, the user must provide consent before the package is applied to the device. - -When the provisioning engine applies provisioning packages during OOBE, it applies only the runtime settings from the package to the device. Runtime settings can be system-wide configuration settings, including security policy, Windows app install/uninstall, network configuration, bootstrapping MDM enrollment, provisioning of file assets, account and domain configuration, Windows edition upgrade, and more. The provisioning engine also checks for the configuration settings on the device, such as region/locale or SIM card, and applies the multivariant settings with matching condition(s). - -## Device provisioning at runtime - -At device runtime, standalone provisioning packages can be applied by user initiation. Only runtime configuration settings including multivariant settings contained in a provisioning package can be applied at device runtime. - -The following table shows when provisioning at device runtime can be initiated. - -| Package delivery | Initiation method | Supported device | -| --- | --- | --- | -| Removable media - USB drive or SD card
    (Packages must be placed at media root) | **Settings** > **Accounts** > **Access work or school** > **Add or remove a provisioning package** | All Windows devices | -| Downloaded from a network connection and copied to a local folder | Double-click the package file | Windows 10 for desktop editions devices | -| From an administrator device connected to the target device through USB tethering | Drag and drop the package file onto the target device | Windows 10 Mobile devices and IoT Core devices | - -When applying provisioning packages from a removable media attached to the device, the Settings UI allows viewing contents of a package before selecting the package for provisioning. To minimize the risk of the device being spammed by applying provisioning packages from unknown sources, a provisioning package can be signed and encrypted. Partners can also set policies to limit the application of provisioning packages at device runtime. Applying provisioning packages at device runtime requires administrator privilege. If the package is not signed or trusted, a user must provide consent before the package is applied to the device. If the package is encrypted, a valid password is needed to decrypt the package before it can be applied to the device. - -When applying multiple provisioning packages to a device, the provisioning engine resolves settings with conflicting configuration values from different packages by evaluating the package ranking using the combination of package owner type and package rank level defined in the package metadata. A configuration setting applied from a provisioning package with the highest package ranking will be the final value applied to the device. - -After a standalone provisioning package is applied to the device, the package is persisted in the %ProgramData%\Microsoft\Provisioning folder on the device. Provisioning packages can be removed by an administrator by using the **Add or remove a provisioning package** available under **Settings** > **Accounts** > **Access work or school**. However, Windows 10 doesn't provide an uninstall option to revert runtime settings when removing a provisioning package from the device. - - -## Learn more - -- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) - -- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) - - -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) - - - - -  - -  - - - - - diff --git a/windows/deploy/provisioning-install-icd.md b/windows/deploy/provisioning-install-icd.md deleted file mode 100644 index 9727bc089d..0000000000 --- a/windows/deploy/provisioning-install-icd.md +++ /dev/null @@ -1,106 +0,0 @@ ---- -title: Install Windows Imaging and Configuration Designer (Windows 10) -description: Learn how to install and run Windows ICD. -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -author: jdeckerMS -localizationpriority: high ---- - -# Install Windows Imaging and Configuration Designer (ICD) - - -**Applies to** - -- Windows 10 -- Windows 10 Mobile - -Use the Windows Imaging and Configuration Designer (ICD) tool in the Windows Assessment and Deployment Kit (ADK) to create provisioning packages to easily configure devices running Windows 10. Windows ICD is primarily designed for use by IT departments for business and educational institutions who need to provision bring-your-own-device (BYOD) and business-supplied devices. - -## Supported platforms - -Windows ICD can create provisioning packages for Windows 10 desktop and mobile editions, including Windows 10 IoT Core. You can run Windows ICD on the following operating systems: - -- Windows 10 - x86 and amd64 -- Windows 8.1 Update - x86 and amd64 -- Windows 8.1 - x86 and amd64 -- Windows 8 - x86 and amd64 -- Windows 7 - x86 and amd64 -- Windows Server 2016 -- Windows Server 2012 R2 Update -- Windows Server 2012 R2 -- Windows Server 2012 -- Windows Server 2008 R2 - -## Install Windows ICD - -1. Go to [Download the Windows ADK](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit) and select **Get Windows ADK** for the version of Windows 10 that you want to create provisioning packages for (version 1511 or version 1607). - - >[!NOTE] - >The rest of this procedure uses Windows ADK for Windows 10, version 1607 as an example. - -2. Save **adksetup.exe** and then run it. - -3. On the **Specify Location** page, select an installation path and then click **Next**. - >[!NOTE] - >The estimated disk space listed on this page applies to the full Windows ADK. If you only install Windows ICD, the space requirement is approximately 32 MB. -4. Make a selection on the **Windows Kits Privacy** page, and then click **Next**. - -5. Accept the **License Agreement**, and then click **Next**. - -6. On the **Select the features you want to install** page, clear all selections except **Configuration Designer**, and then click **Install**. - - ![Only Configuration Designer selected for installation](images/icd-install.png) - -## Current Windows ICD limitations - - -- You can only run one instance of Windows ICD on your computer at a time. - -- Be aware that when adding apps and drivers, all files stored in the same folder will be imported and may cause errors during the build process. - -- The Windows ICD UI does not support multivariant configurations. Instead, you must use the Windows ICD command-line interface to configure multivariant settings. For more information, see [Create a provisioning package with multivariant settings](provisioning-multivariant.md). - -- While you can open multiple projects at the same time within Windows ICD, you can only build one project at a time. - -- In order to enable the simplified authoring jscripts to work on a server SKU running Windows ICD, you need to explicitly enable **Allow websites to prompt for information using scripted windows**. Do this by opening Internet Explorer and then navigating to **Settings** > **Internet Options** > **Security** -> **Custom level** > **Allow websites to prompt for information using scripted windows**, and then choose **Enable**. - -- If you copy a Windows ICD project from one PC to another PC, make sure that all the associated files for the deployment assets, such as apps and drivers, are copied along with the project to the same path as it was on the original PC. - - For example, when you add a driver to a provisioned package, you must copy the .INF file to a local directory on the PC that is running Windows ICD. If you don't do this, and attempt to use a copied version of this project on a different PC, Windows ICD might attempt to resolve the path to the files that point to the original PC. - -- **Recommended**: Before starting, copy all source files to the PC running Windows ICD, rather than using external sources like network shares or removable drives. This reduces the risk of interrupting the build process from a temporary network issue or from disconnecting the USB device. - -**Next step**: [How to create a provisioning package](provisioning-create-package.md) - -## Learn more - -- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) - -- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) - -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) - - - -  - -  - - - - - diff --git a/windows/deploy/provisioning-multivariant.md b/windows/deploy/provisioning-multivariant.md deleted file mode 100644 index 3bc7652233..0000000000 --- a/windows/deploy/provisioning-multivariant.md +++ /dev/null @@ -1,322 +0,0 @@ ---- -title: Create a provisioning package with multivariant settings (Windows 10) -description: Create a provisioning package with multivariant settings to customize the provisioned settings. -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -author: jdeckerMS -localizationpriority: high ---- - -# Create a provisioning package with multivariant settings - - -**Applies to** - -- Windows 10 -- Windows 10 Mobile - -Multivariant provisioning packages enable you to create a single provisioning package that can work for multiple locales. - -To provision multivariant settings, you must create a provisioning package with defined **Conditions** and **Settings** that are tied to these conditions. When you install this package on a Windows 10 device, the provisioning engine applies the matching condition settings at every event and triggers provisioning. - -The following events trigger provisioning on Windows 10 devices: - -| Event | Windows 10 Mobile | Windows 10 for desktop editions (Home, Pro, Enterprise, and Education) | -| --- | --- | --- | -| System boot | Supported | Supported | -| Operating system update | Supported | Planned | -| Package installation during device first run experience | Supported | Supported | -| Detection of SIM presence or update | Supported | Not supported | -| Package installation at runtime | Supported | Supported | -| Roaming detected | Supported | Not supported | - -## Target, TargetState, Condition, and priorities - -Targets describe keying for a variant and must be described or pre-declared before being referenced by the variant. - -- You can define multiple **Target** child elements for each **Id** that you need for the customization setting. - -- Within a **Target** you can define multiple **TargetState** elements. - -- Within a **TargetState** element you can create multiple **Condition** elements. - -- A **Condition** element defines the matching type between the condition and the specified value. - -The following table shows the conditions supported in Windows 10 provisioning: - ->[!NOTE] ->You can use any of these supported conditions when defining your **TargetState**. - -| Condition Name | Condition priority | Windows 10 Mobile | Windows 10 for desktop editions | Value type | Value description | -| --- | --- | --- | --- | --- | --- | -| MNC | P0 | Supported | N/A | Digit string | Use to target settings based on the Mobile Network Code (MNC) value. | -| MCC | P0 | Supported | N/A | Digit string | Use to target settings based on the Mobile Country Code (MCC) value. | -| SPN | P0 | Supported | N/A | String | Use to target settings based on the Service Provider Name (SPN) value. | -| PNN | P0 | Supported | N/A | String | Use to target settings based on public land mobile network (PLMN) Network Name value. | -| GID1 | P0 | Supported | N/A | Digit string | Use to target settings based on the Group Identifier (level 1) value. | -| ICCID | P0 | Supported | N/A | Digit string | Use to target settings based on the Integrated Circuit Card Identifier (ICCID) value. | -| Roaming | P0 | Supported | N/A | Boolean | Use to specify roaming. Set the value to **1** (roaming) or **0** (non-roaming). | -| UICC | P0 | Supported | N/A | Enumeration | Use to specify the UICC state. Set the value to one of the following:


    - 0 - Empty
    - 1 - Ready
    - 2 - Locked | -| UICCSLOT | P0 | Supported | N/A | Digit string | Use to specify the UICC slot. Set the value one of the following:


    - 0 - Slot 0
    - 1 - Slot 1 | -| ProcessorType | P1 | Supported | Supported | String | Use to target settings based on the processor type. | -| ProcessorName | P1 | Supported | Supported | String | Use to target settings based on the processor name. | -| AoAc | P1 | Supported | Supported | Boolean | Set the value to 0 or 1. | -| PowerPlatformRole | P1 | Supported | Supported | Enumeration | Indicates the preferred power management profile. Set the value based on the POWER_PLATFORM_ROLE enumeration. | -| Architecture | P1 | Supported | Supported | String | Matches the PROCESSOR_ARCHITECTURE environment variable. | -| Server | P1 | Supported | Supported | Boolean | Set the value to 0 or 1. | -| Region | P1 | Supported | Supported | Enumeration | Use to target settings based on country/region. | -| Lang | P1 | Supported | Supported | Enumeration | Use to target settings based on language code. | -| ROMLANG | P1 | Supported | N/A | Digit string | Use to specify the PhoneROMLanguage that's set for DeviceTargeting. This condition is used primarily to detect variants for China. For example, you can use this condition and set the value to "0804". | - -The matching types supported in Windows 10 are: - -| Matching type | Syntax | Example | -| --- | --- | --- | -| Straight match | Matching type is specified as-is | <Condition Name="ProcessorName" Value="Barton" /> | -| Regex match | Matching type is prefixed by "Pattern:" | <Condition Name="ProcessorName" Value="Pattern:.*Celeron.*" /> | -| Numeric range match | Matching type is prefixed by "!Range:" | <Condition Name="MNC" Value="!Range:400, 550" /> | - - -- When all **Condition** elements are TRUE, **TargetState** is TRUE (**AND** logic). - -- If any of the **TargetState** elements is TRUE, **Target** is TRUE (**OR** logic), and **Id** can be used for the setting customization. - - -You can define more than one **TargetState** within a provisioning package to apply variant settings that match device conditions. When the provisioning engine evalues each **TargetState**, more than one **TargetState** may fit current device conditions. To determine the order in which the variant settings are applied, the system assigns a priority to every **TargetState**. - -A variant setting that matches a **TargetState** with a lower priority is applied before the variant that matches a **TargetState** with a higher priority. Variant settings that match more than one **TargetState** with equal priority are applied according to the order that each **TargetState** is defined in the provisioning package. - -The **TargetState** priority is assigned based on the conditions priority and the priority evaluation rules are as followed: - -1. **TargetState** with P0 conditions is higher than **TargetState** without P0 conditions. - - -2. **TargetState** with P1 conditions is higher than **TargetState** without P0 and P1 conditions. - - -3. If N₁>N₂>0, the **TargetState** priority with N₁ P0 conditions is higher than the **TargetState** with N₂ P1 conditions. - - -4. For **TargetState** without P0 conditions, if N₁>N₂>0 **TargetState** with N₁ P1 conditions is higher than the **TargetState** with N₂ P1 conditions. - - -5. For **TargetState** without P0 and P1 conditions, if N₁>N₂>0 **TargetState** priority with N₁ P2 conditions is higher than the **TargetState** with N₂ P2 conditions. - - -6. For rules 3, 4, and 5, if N₁=N₂, **TargetState** priorities are considered equal. - - -## Create a provisioning package with multivariant settings - -Follow these steps to create a provisioning package with multivariant capabilities. - - -1. Build a provisioning package and configure the customizations you need to apply during certain conditions. For more information, see [Create a provisioning package](provisioning-create-package.md). - - -2. After you've [configured the settings](provisioning-create-package.md#configure-settings), save the project. - - -3. Open the project folder and copy the customizations.xml file. - -4. Use an XML or text editor to open the customizations.xml file. - - The customizations.xml file holds the package metadata (including the package owner and rank) and the settings that you configured when you created your provisioning package. The Customizations node contains a Common section, which contains the customization settings. - - The following example shows the contents of a sample customizations.xml file. - - ```XML - - - - {6aaa4dfa-00d7-4aaa-8adf-73c6a7e2501e} - My Provisioning Package - 1.0 - OEM - 50 - - - - - - 0 - 0 - 0 - - - 0 - - - - - - ``` - -4. Edit the customizations.xml file and create a **Targets** section to describe the conditions that will handle your multivariant settings. - - The following example shows the customizations.xml, which has been modified to include several conditions including **ProcessorName**, **ProcessorType**, **MCC**, and **MNC**. - - ```XML - - - - {6aaa4dfa-00d7-4aaa-8adf-73c6a7e2501e} - My Provisioning Package - 1.0 - OEM - 50 - - - - - - 0 - 0 - 0 - - - 0 - - - - - - - - - - - - - - - - - - - - - - - - ``` - -5. In the customizations.xml file, create a **Variant** section for the settings you need to customize. To do this: - - a. Define a child **TargetRefs** element. - - b. Within the **TargetRefs** element, define a **TargetRef** element. You can define multiple **TargetRef** elements for each **Id** that you need to apply to customized settings. - - c. Move compliant settings from the **Common** section to the **Variant** section. - - If any of the TargetRef elements matches the Target, all settings in the Variant are applied (OR logic). - - >[!NOTE] - >You can define multiple Variant sections. Settings that reside in the **Common** section are applied unconditionally on every triggering event. - - The following example shows the customizations.xml updated to include a **Variant** section and the moved settings that will be applied if the conditions for the variant are met. - - ```XML - - - - {6aaa4dfa-00d7-4aaa-8adf-73c6a7e2501e} - My Provisioning Package - 1.0 - OEM - 50 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - 1 - 1 - 1 - - - 1 - - - - - - - ``` - -6. Save the updated customizations.xml file and note the path to this updated file. You will need the path as one of the values for the next step. - - -7. Use the [Windows ICD command-line interface](provisioning-command-line.md) to create a provisioning package using the updated customizations.xml. - - For example: - - ``` - icd.exe /Build-ProvisioningPackage /CustomizationXML:"C:\CustomProject\customizations.xml" /PackagePath:"C:\CustomProject\output.ppkg" /StoreFile:C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Imaging and Configuration Designer\x86\Microsoft-Common-Provisioning.dat" - ``` - - -In this example, the **StoreFile** corresponds to the location of the settings store that will be used to create the package for the required Windows edition. - ->[!NOTE] ->The provisioning package created during this step will contain the multivariant settings. You can use this package either as a standalone package that you can apply to a Windows device or use it as the base when starting another project. - - - - - - - - - - - - - - -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) - -  - - - - - diff --git a/windows/deploy/provisioning-nfc.md b/windows/deploy/provisioning-nfc.md deleted file mode 100644 index 114e6d5545..0000000000 --- a/windows/deploy/provisioning-nfc.md +++ /dev/null @@ -1,153 +0,0 @@ ---- -title: NFC-based device provisioning (Windows 10) -description: -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -author: jdeckerMS -localizationpriority: high ---- - -# NFC-based device provisioning - - -**Applies to** - -- Windows 10 Mobile - -Near field communication (NFC) enables Windows 10 Mobile Enterprise and Windows 10 Mobile devices to communicate with an NFC tag or another NFC-enabled transmitting device. Enterprises that do bulk provisioning can use NFC-based device provisioning to provide a provisioning package to the device that's being provisioned. NFC provisioning is simple and convenient and it can easily store an entire provisioning package. - -The NFC provisioning option enables the administrator to provide a provisioning package during initial device setup or the out-of-box experience (OOBE) phase. Administrators can use the NFC provisioning option to transfer provisioning information to persistent storage by tapping an unprovisioned mobile device to an NFC tag or NFC-enabled device. To use NFC for pre-provisioning a device, you must either prepare your own NFC tags by storing your provisioning package to a tag as described in this section, or build the infrastructure needed to transmit a provisioning package between an NFC-enabled device and a mobile device during OOBE. - -## Provisioning OOBE UI - -All Windows 10 Mobile Enterprise and Windows 10 Mobile images have the NFC provisioning capability incorporated into the operating system. On devices that support NFC and are running Windows 10 Mobile Enterprise or Windows 10 Mobile, NFC-based device provisioning provides an additional mechanism to provision the device during OOBE. - -On all Windows devices, device provisioning during OOBE can be triggered by 5 fast taps on the Windows hardware key, which shows the **Provision this device** screen. In the **Provision this device** screen, select **NFC** for NFC-based provisioning. - -![Example of Provision this device screen](images/nfc.png) - -If there is an error during NFC provisioning, the device will show a message if any of the following errors occur: - -- **NFC initialization error** - This can be caused by any error that occurs before data transfer has started. For example, if the NFC driver isn't enabled or there's an error communicating with the proximity API. -- **Interrupted download or incomplete package transfer** - This error can happen if the peer device is out of range or the transfer is aborted. This error can be caused whenever the device being provisioned fails to receive the provisioning package in time. -- **Incorrect package format** - This error can be caused by any protocol error that the operating system encounters during the data transfer between the devices. -- **NFC is disabled by policy** - Enterprises can use policies to disallow any NFC usage on the managed device. In this case, NFC functionality is not enabled. - -## NFC tag - -You can use an NFC tag for minimal provisioning and use an NFC-enabled device tag for larger provisioning packages. - -The protocol used for NFC-based device provisioning is similar to the one used for NFC provisioning on Windows Embedded 8.1 Handheld, which supported both single-chunk and multi-chunk transfer when the total transfer didn't fit in one NDEP message size. In Windows 10, the provisioning stack contains the following changes: - -- **Protocol namespace** - The protocol namespace has changed from Windows.WEH.PreStageProv.Chunk to Windows.ProvPlugins.Chunk. -- **Tag data type** - The tag data type has changed from UTF-8 into binary raw data. - - ->[!NOTE] ->The NFC tag doesn't go in the secondary device. You can transfer the NFC tag by using a provisioning package from device-to-device using the NFC radio or by re-reading the provisioning package from an NFC tag. - -### NFC tag components - -NFC tags are suitable for very light applications where minimal provisioning is required. The size of NFC tags that contain provisioning packages is typically 4 KB to 10 KB. - -To write to an NFC tag, you will need to use an NFC Writer tool, or you can use the [ProximityDevice class API](https://msdn.microsoft.com/library/windows/apps/windows.networking.proximity.proximitydevice.aspx) to write your own custom tool to transfer your provisioning package file to your NFC tag. The tool must publish a binary message (write) a Chunk data type to your NFC tag. - -The following table describes the information that is required when writing to an NFC tag. - -| Required field | Description | -| --- | --- | -| **Type** | Windows.ProvPlugins.Chunk

    The receiving device uses this information to understand information in the Data field. | -| **Data** | Tag data with small header in raw binary format that contains a chunk of the provisioning package to be transferred. | - - - -### NFC provisioning helper - -The NFC provisioning helper device must split the provisioning package raw content into multiple parts and publish these in order. Each part should follow the following format: - -
    **Version**
    (1 byte)
    **Leading**
    (1 byte)
    **Order**
    (1 byte)
    **Total**
    (1 byte)
    **Chunk payload**
    (N bytes)
    - -For each part: -- **Version** should always be 0x00. -- **Leading byte** should always be 0xFF. -- **Order** represents which message chunk (out of the whole message) the part belongs to. The Order begins with zero (0). -- **Total** represents the total number of chunks to be transferred for the whole message. -- **Chunk payload** represents each of the split parts. - -The NFC provisioning helper device must publish the record in a type of Windows.ProvPlugins.Chunk. - -**Code example** - -The following example shows how to write to an NFC tag. This example assumes that the tag is already in range of the writing device. - -``` - private async void WriteProvPkgToTag(IStorageFile provPkgFile) - { - var buffer = await FileIO.ReadBufferAsync(provPkgFile); - if (null == buffer) - { - return; - } - - var proximityDevice = Windows.Networking.Proximity.ProximityDevice.GetDefault(); - if (null == proximityDevice) - { - return; - } - - var dataWriter = new DataWriter(); - var header = new NfcProvHeader(); - - header.version = NFC_PROV_MESSAGE_CURRENT_VERSION; // Currently the supported version is 0x00. - header.leading = NFC_PROV_MESSAGE_LEADING_BYTE; // The leading byte should be always 0xFF. - header.index = 0; // Assume we only have 1 chunk. - header.total = 1; // Assume we only have 1 chunk. - - // Write the header first and then the raw data of the provisioning package. - dataWriter.WriteBytes(GetBytes(header)); - dataWriter.WriteBuffer(buffer); - - var chunkPubId = proximityDevice.PublishBinaryMessage( - "Windows:WriteTag.ProvPlugins.Chunk", - dataWriter.DetachBuffer()); - } -``` - - -### NFC-enabled device tag components - -Provisioning from an NFC-enabled source device allows for larger provisioning packages than can be transferred using an NFC tag. When provisioning from an NFC-enabled device, we recommend that the total file size not exceed 120 KB. Be aware that the larger the NFC file is, the longer it will take to transfer the provisioning file. Depending on your NFC hardware, the transfer time for a 120 KB file will vary between 2.5 seconds and 10 seconds. - -To provision from an NFC-enabled source device, use [ProximityDevice class API](https://msdn.microsoft.com/library/windows/apps/windows.networking.proximity.proximitydevice.aspx) to write your own custom tool that transfers your provisioning package in chunks to your target mobile device. The tool must publish binary messages (transmit) a Header message, followed by one or more Chunk messages. The Header specifies the total amount of data that will be transferred to the target device; the Chunks must contain binary raw data formatted provisioning data, as shown in the NFC tag components section. - -For detailed information and code samples on how to implement an NFC-enabled device tag, see **ConvertToNfcMessageAsync** in [this GitHub NfcProvisioner Universal Windows app example](https://github.com/Microsoft/Windows-universal-samples/blob/master/Samples/NfcProvisioner/cs/Scenario1.xaml.cs). The sample app shows you how to host the provisioning package on a master device so that you can transfer it to the receiving device. - - - - - - - -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) - -  - -  - - - - - diff --git a/windows/deploy/provisioning-packages.md b/windows/deploy/provisioning-packages.md index ebb4a064c3..47223a7427 100644 --- a/windows/deploy/provisioning-packages.md +++ b/windows/deploy/provisioning-packages.md @@ -3,8 +3,9 @@ title: Provisioning packages (Windows 10) description: With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. ms.assetid: 287706E5-063F-4AB5-902C-A0DF6D0730BC ms.prod: w10 -ms.mktglfcycl: deploy +ms.mktglfcycl: explore ms.sitesec: library +ms.pagetype: mobile author: jdeckerMS localizationpriority: high --- @@ -17,17 +18,15 @@ localizationpriority: high - Windows 10 - Windows 10 Mobile -Windows provisioning makes it easy for IT administrators to configure end-user devices without imaging. Using Windows provisioning, an IT administrator can easily specify desired configuration and settings required to enroll the devices into management and then apply that configuration to target devices in a matter of minutes. It is best suited for small- to medium-sized businesses with deployments that range from tens to a few hundred computers. +Windows provisioning makes it easy for IT administrators to configure end-user devices without imaging. Using Windows Provisioning, an IT administrator can easily specify desired configuration and settings required to enroll the devices into management (through a wizard-driven user interface) and then apply that configuration to target devices in a matter of minutes. It is best suited for small- to medium-sized businesses with deployments that range from tens to a few hundred computers. -A provisioning package (.ppkg) is a container for a collection of configuration settings. With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. +With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. Provisioning packages are simple enough that with a short set of written instructions, a student or non-technical employee can use them to configure their device. This can result in a significant reduction in the time required to configure multiple devices in your organization. -The [Windows Assessment and Deployment Kit (ADK) for Windows 10](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit) includes the Imaging and Configuration Designer (ICD), a tool for configuring provisioning packages. - ## New in Windows 10, Version 1607 -Windows ICD for Windows 10, Version 1607, simplifies common provisioning scenarios. +The Windows Assessment and Deployment Kit (ADK) for Windows 10 includes the Imaging and Configuration Designer (ICD), a tool for configuring images and runtime settings which are then built into provisioning packages. Windows ICD for Windows 10, Version 1607, simplifies common provisioning scenarios. ![Configuration Designer options](images/icd.png) @@ -75,7 +74,7 @@ Provisioning packages can be: ## What you can configure -The following table provides some examples of what you can configure using provisioning packages. +The following table provides some examples of what can be configured using provisioning packages. | Customization options | Examples | |--------------------------|-----------------------------------------------------------------------------------------------| @@ -93,26 +92,42 @@ The following table provides some examples of what you can configure using provi For details about the settings you can customize in provisioning packages, see [Windows Provisioning settings reference]( https://go.microsoft.com/fwlink/p/?LinkId=619012). +## Creating a provisioning package + + +With Windows 10, you can use the Windows Imaging and Configuration Designer (ICD) tool to create provisioning packages. To install Windows ICD and create provisioning packages, you must [install the Windows Assessment and Deployment Kit (ADK) for Windows 10](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit). + +When you run ADKsetup.exe for Windows 10, version 1607, select the following feature from the **Select the features you want to install** dialog box: + +- **Configuration Designer** + +![Choose Configuration Designer](images/adk-install.png) + +> [!NOTE] +> In previous versions of the Windows 10 ADK, you had to install additional features for Windows ICD to run. Starting in version 1607, you can install Windows ICD without other ADK features. + +After you install Windows ICD, you can use it to create a provisioning package. For detailed instructions on how to create a provisioning package, see [Build and apply a provisioning package](https://go.microsoft.com/fwlink/p/?LinkID=629651). + +## Applying a provisioning package to a device + + +Provisioning packages can be applied both during image deployment and during runtime. For information on how to apply a provisioning package to a Windows 10-based device, see [Build and apply a provisioning package](https://go.microsoft.com/fwlink/p/?LinkID=629651). + ## Learn more -- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) -- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) +[Windows 10: Deployment](https://go.microsoft.com/fwlink/p/?LinkId=533708) ## Related topics -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) - +- [Provision PCs with common settings for initial deployment](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments](provision-pcs-with-apps-and-certificates.md) +- [Configure devices without MDM](../manage/configure-devices-without-mdm.md) +- [Set up a shared or guest PC with Windows 10](../manage/set-up-shared-or-guest-pc.md) +- [Configure devices without MDM](../manage/configure-devices-without-mdm.md) +- [Set up a device for anyone to use (kiosk mode)](../manage/set-up-a-device-for-anyone-to-use.md) +- [Customize Windows 10 Start and taskbar with ICD and provisioning packages](../manage/customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md) +- [Set up student PCs to join domain](https://technet.microsoft.com/edu/windows/set-up-students-pcs-to-join-domain) diff --git a/windows/deploy/provisioning-script-to-install-app.md b/windows/deploy/provisioning-script-to-install-app.md deleted file mode 100644 index 8754c66299..0000000000 --- a/windows/deploy/provisioning-script-to-install-app.md +++ /dev/null @@ -1,222 +0,0 @@ ---- -title: Use a script to install a desktop app in provisioning packages (Windows 10) -description: With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -author: jdeckerMS -localizationpriority: high ---- - -# Use a script to install a desktop app in provisioning packages - - -**Applies to** - -- Windows 10 -- Windows 10 Mobile - -This walkthrough describes how to leverage the ability to include scripts in a Windows 10 provisioning package to install Win32 applications. Scripted operations other than installing apps can also be performed, however, some care is needed in order to avoid unintended behavior during script execution (see Remarks below). - ->**Prerequisite**: [Windows Assessment and Deployment Kit (ADK) for Windows 10](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit), version 1511 or higher - ->[!NOTE] ->This scenario is only supported for installing applications on Windows 10 for desktop, version 1511 or higher. - -## Assemble the application assets - -1. On the device where you’re authoring the package, place all of your assets in a known location. Each asset must have a unique filename, because all files will be copied to the same temp directory on the device. It’s common for many apps to have an installer called ‘install.exe’ or similar, and there may be name overlap because of that. To fix this, you can use the technique described in the next step to include a complete directory structure that is then expanded into the temp directory on the device. The most common use for this would be to include a subdirectory for each application. - -2. If you need to include a directory structure of files, you will need to cab the assets for easy inclusion in the provisioning packages. - -## Cab the application assets - -1. Create a .DDF file as below, replacing *file1* and *file2* with the files you want to package, and adding the name of file/directory. - - ``` - ;*** MSDN Sample Source Code MakeCAB Directive file example - - ; - - .OPTION EXPLICIT ; Generate errors on variable typos - - .set DiskDirectoryTemplate=CDROM ; All cabinets go in a single directory - - .Set MaxDiskFileCount=1000; Limit file count per cabinet, so that - - ; scanning is not too slow - - .Set FolderSizeThreshold=200000 ; Aim for ~200K per folder - - .Set CompressionType=MSZIP - - ;** All files are compressed in cabinet files - - .Set Cabinet=on - - .Set Compress=on - - ;------------------------------------------------------------------- - - ;** CabinetNameTemplate = name of cab - - ;** DiskDirectory1 = output directory where cab will be created - - ;------------------------------------------------------------------- - - .Set CabinetNameTemplate=tt.cab - - .Set DiskDirectory1=. - - ;------------------------------------------------------------------- - - ; Replace with actual files you want to package - - ;------------------------------------------------------------------- - - - - - - ;*** - ``` - -2. Use makecab to create the cab files. - - ``` - Makecab -f - ``` - -## Create the script to install the application - -Create a script to perform whatever work is needed to install the application(s). The following examples are provided to help get started authoring the orchestrator script that will execute the required installers. In practice, the orchestrator script may reference many more assets than those in these examples. - ->[!NOTE] ->All actions performed by the script must happen silently, showing no UI and requiring no user interaction. -> ->The scripts will be run on the device in system context. - -### Debugging example - -Granular logging is not built in, so the logging must be built into the script itself. Here is an example script that logs ‘Hello World’ to a logfile. When run on the device, the logfile will be available after provisioning is completed. As you will see in the following examples, it’s recommended that you log each action that your script performs. - -``` -set LOGFILE=%SystemDrive%\HelloWorld.log -echo Hello, World >> %LOGFILE% -``` -### .exe example - -This example script shows how to create a log output file on the system drive, install an app from a .exe installer, and echo the results to the log file. - -``` -set LOGFILE=%SystemDrive%\Fiddler_install.log -echo Installing Fiddler.exe >> %LOGFILE% -fiddler4setup.exe /S >> %LOGFILE% -echo result: %ERRORLEVEL% >> %LOGFILE% -``` - -### .msi example - -This is the same as the previous installer, but installs the app from an MSI installer. Notice that msiexec is called with the /quiet flag in order to meet the silent requirement of scripts run from within a provisioning package. - -``` -set LOGFILE=%SystemDrive%\IPOverUsb_install.log -echo Installing IpOverUsbInstaller.msi >> %LOGFILE% -msiexec /i IpOverUsbInstaller.msi /quiet >> %LOGFILE% -echo result: %ERRORLEVEL% >> %LOGFILE% -``` - -### PowerShell example - -This is an example script with logging that shows how to run a powershell script from the provisioning commands setting. Note that the PowerShell script referenced from this example must also be included in the package, and obey the same requirements as all scripts run from within the provisioning package: it must execute silently, with no user interaction. - -``` -set LOGFILE=%SystemDrive%\my_powershell_script.log -echo Running my_powershell_script.ps1 in system context >> %LOGFILE% -echo Executing "PsExec.exe -accepteula -i -s cmd.exe /c powershell.exe my_powershell_script.ps1" >> %LOGFILE% -PsExec.exe -accepteula -i -s cmd.exe /c powershell.exe my_powershell_script.ps1' >> %LOGFILE% -echo result: %ERRORLEVEL% >> %LOGFILE% -``` - -### Extract from a .CAB example - -This example script shows expansion of a .cab from the provisioning commands script, as well as installation of the expanded setup.exe - -``` -set LOGFILE=%SystemDrive%\install_my_app.log -echo Expanding installer_assets.cab >> %LOGFILE% -expand -r installer_assets.cab -F:* . >> %LOGFILE% -echo result: %ERRORLEVEL% >> %LOGFILE% -echo Installing MyApp >> %LOGFILE% -setup.exe >> %LOGFILE% -echo result: %ERRORLEVEL% >> %LOGFILE% -``` - -### Calling multiple scripts in the package - -You are currently allowed one CommandLine per PPKG. The batch files shown above are orchestrator scripts that manage the installation and calls any other scripts included in the PPKG. The orchestrator script is what should be invoked from the CommandLine specified in the package. - -Here’s a table describing this relationship, using the PowerShell example from above: - - -|ICD Setting | Value | Description | -| --- | --- | --- | -| ProvisioningCommands/DeviceContext/CommandLine | cmd /c PowerShell_Example.bat | The command line needed to invoke the orchestrator script. | -| ProvisioningCommands/DeviceContext/CommandFiles | PowerShell_Example.bat | The single orchestrator script referenced by the command line that handles calling into the required installers or performing any other actions such as expanding cab files. This script must do the required logging. | -| ProvisioningCommands/DeviceContext/CommandFiles | my_powershell_script.ps1 | Other assets referenced by the orchestrator script. In this example there is only one, but there could be many assets referenced here. One common use case is using the orchestrator to call a series of install.exe or setup.exe installers to install several applications. Each of those installers must be included as an asset here. | - - -### Add script to provisioning package - -When you have the batch file written and the referenced assets ready to include, you can add them to a provisioning package in the Window Imaging and Configuration Designer (Windows ICD). - -Using ICD, specify the full details of how the script should be run in the CommandLine setting in the provisioning package. This includes flags or any other parameters that you would normally type on the command line. So for example if the package contained an app installer called install.exe and a script used to automate the install called InstallMyApp.bat, the `ProvisioningCommands/DeviceContext/CommandLine` setting should be configured to: - -``` -cmd /c InstallMyApp.bat -``` - -In ICD, this looks like: - -![Command line in Selected customizations](images/icd-script1.png) - -You also need to add the relevant assets for that command line including the orchestrator script and any other assets it references such as installers or .cab files. - -In ICD, that is done by adding files under the `ProvisioningCommands/DeviceContext/CommandFiles` setting. - -![Command files in Selected customizations](images/icd-script2.png) - -When you are done, [build the package](provisioning-create-package.md#build-package). - - -### Remarks -1. No user interaction or console output is supported via ProvisioningCommands. All work needs to be silent. If your script attempts to do any of the following it will cause undefined behavior, and could put the device in an unrecoverable state if executed during setup or the Out of Box Experience: - a. Echo to console - b. Display anything on the screen - c. Prompt the user with a dialog or install wizard -2. When applied at first boot, provisioning runs early in the boot sequence and before a user context has been established; care must be taken to only include installers that can run at this time. Other installers can be provisioned via a management tool. -3. If the device is put into an unrecoverable state because of a bad script, you can reset it using [recovery options in Windows 10](https://support.microsoft.com/help/12415/windows-10-recovery-options). -4. The CommandFile assets are deployed on the device to a temporary folder unique to each package. - a. For packages added during the out of box experience, this is usually in `%WINDIR%\system32\config\systemprofile\appdata\local\Temp\ProvisioningPkgTmp\<{PackageIdGuid}>\Commands` - b. For packages added by double-clicking on an already deployed device, this will be in the temp folder for the user executing the PPKG: `%TMP%\ProvisioningPkgTmp\<{PackageIdGuid}>\Commands` -5. The command line will be executed with the directory the CommandFiles were deployed to as the working directory. This means you do not need to specific the full path to assets in the command line or from within any script. -6. The runtime provisioning component will attempt to run the scripts from the PPKG at the earliest point possible, depending on the stage when the PPKG was added. For example, if the package was added during the Out-of-Box Experience, it will be run immediately after the package is applied, while the Out-of-Box Experience is still happening. This is before the user account configuration options are presented to the user. A spinning progress dialog will appear and “please wait” will be displayed on the screen. - - >[!NOTE] - >There is a timeout of 30 minutes for the provisioning process at this point. All scripts and installs need to complete within this time. -7. The scripts are executed in the background as the rest of provisioning continues to run. For packages added on existing systems using the double-click to install, there is no notification that provisioning or script execution has completed - - -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) \ No newline at end of file diff --git a/windows/deploy/provisioning-uninstall-package.md b/windows/deploy/provisioning-uninstall-package.md deleted file mode 100644 index b3836ede88..0000000000 --- a/windows/deploy/provisioning-uninstall-package.md +++ /dev/null @@ -1,98 +0,0 @@ ---- -title: Settings changed when you uninstall a provisioning package (Windows 10) -description: This topic lists the settings that are reverted when you uninstall a provisioning package. -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -author: jdeckerMS -localizationpriority: high ---- - -# Settings changed when you uninstall a provisioning package - - -**Applies to** - -- Windows 10 -- Windows 10 Mobile - -When you uninstall a provisioning package, only certain settings are revertible. This topic lists the settings that are reverted when you uninstall a provisioning package. - - -As an administrator, you can uninstall by using the **Add or remove a package for work or school** option available under **Settings** > **Accounts** > **Access work or school**. - -When a provisioning package is uninstalled, some of its settings are reverted, which means the value for the setting is changed to the next available or default value. Not all settings, however, are revertible. - -Only settings in the following lists are revertible. - -## Registry-based settings - -The registry-based settings that are revertible when a provisioning package is uninstalled all fall under these categories, which you can find in the Graphical User Interface of the Windows Imaging and Configuration Designer (Windows ICD). - - -- [Wi-Fi Sense](https://msdn.microsoft.com/library/windows/hardware/mt219706.aspx) -- [CountryAndRegion](https://msdn.microsoft.com/library/windows/hardware/mt219726.aspx) -- DeviceManagement / PGList/ LogicalProxyName -- UniversalAppInstall / LaunchAppAtLogin -- [Power](https://msdn.microsoft.com/library/windows/hardware/dn953704.aspx) -- [TabletMode](https://msdn.microsoft.com/library/windows/hardware/mt297550.aspx) -- [Maps](https://msdn.microsoft.com/library/windows/hardware/mt131464.aspx) -- [Browser](https://msdn.microsoft.com/library/windows/hardware/mt573151.aspx) -- [DeviceFormFactor](https://msdn.microsoft.com/library/windows/hardware/mt243449.aspx) -- [USBErrorsOEMOverride](https://msdn.microsoft.com/library/windows/hardware/mt769908.aspx) -- [WeakCharger](https://msdn.microsoft.com/library/windows/hardware/mt346401.aspx) - - - -## CSP-based settings - -Here is the list of revertible settings based on configuration service providers (CSPs). - -[ActiveSync CSP](https://msdn.microsoft.com/library/windows/hardware/dn920017.aspx) -[AppLocker CSP](https://msdn.microsoft.com/library/windows/hardware/dn920019.aspx) -[BrowserFavorite CSP](https://msdn.microsoft.com/library/windows/hardware/dn914758.aspx) -[CertificateStore CSP](https://msdn.microsoft.com/library/windows/hardware/dn920021.aspx) -[ClientCertificateInstall CSP](https://msdn.microsoft.com/library/windows/hardware/dn920023.aspx) -[RootCATrustedCertificates CSP](https://msdn.microsoft.com/library/windows/hardware/dn904970.aspx) -[CM_CellularEntries CSP](https://msdn.microsoft.com/library/windows/hardware/dn914761.aspx) -[CM_ProxyEntries CSP](https://msdn.microsoft.com/library/windows/hardware/dn914762.aspx) -[CMPolicy CSP](https://msdn.microsoft.com/library/windows/hardware/dn914760.aspx) -[CMPolicyEnterprise CSP](https://msdn.microsoft.com/library/windows/hardware/mt706463.aspx) -[EMAIL2 CSP](https://msdn.microsoft.com/library/windows/hardware/dn904953.aspx) -[EnterpriseAPN CSP](https://msdn.microsoft.com/library/windows/hardware/dn958617.aspx) -[EnterpriseAppManagement CSP](https://msdn.microsoft.com/library/windows/hardware/dn904955.aspx) -[EnterpriseDesktopAppManagement CSP](https://msdn.microsoft.com/library/windows/hardware/dn958620.aspx) -[EnterpriseModernAppManagement CSP](https://msdn.microsoft.com/library/windows/hardware/dn904956.aspx) -[NAP CSP](https://msdn.microsoft.com/library/windows/hardware/dn914767.aspx) -[PassportForWork CSP](https://msdn.microsoft.com/library/windows/hardware/dn987099.aspx) -[Provisioning CSP](https://msdn.microsoft.com/library/windows/hardware/mt203665.aspx) -[PROXY CSP](https://msdn.microsoft.com/library/windows/hardware/dn914770.aspx) -[SecureAssessment CSP](https://msdn.microsoft.com/library/windows/hardware/mt718628.aspx) -[VPN CSP](https://msdn.microsoft.com/library/windows/hardware/dn904978.aspx) -[VPNv2 CSP](https://msdn.microsoft.com/library/windows/hardware/dn914776.aspx) -[WiFi CSP](https://msdn.microsoft.com/library/windows/hardware/dn904981.aspx) - - - -## Related topics - -- [Provisioning packages for Windows 10](provisioning-packages.md) -- [How provisioning works in Windows 10](provisioning-how-it-works.md) -- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) -- [Create a provisioning package](provisioning-create-package.md) -- [Apply a provisioning package](provisioning-apply-package.md) -- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) -- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) -- [NFC-based device provisioning](provisioning-nfc.md) -- [Windows ICD command-line interface (reference)](provisioning-command-line.md) -- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) - -  - -  - - - - - diff --git a/windows/deploy/troubleshoot-upgrade-analytics.md b/windows/deploy/troubleshoot-upgrade-analytics.md index 468de1e275..b6c6f5d87b 100644 --- a/windows/deploy/troubleshoot-upgrade-analytics.md +++ b/windows/deploy/troubleshoot-upgrade-analytics.md @@ -1,4 +1,4 @@ ---- +--- title: Troubleshoot Upgrade Analytics (Windows 10) description: Provides troubleshooting information for Upgrade Analytics. ms.prod: w10 @@ -7,7 +7,7 @@ author: MaggiePucciEvans # Troubleshoot Upgrade Analytics -If you’re having issues seeing data in Upgrade Analytics after running the Upgrade Analytics Deployment script, make sure it completes successfully without any errors. Check the output of the script in the command window and/or log UA_dateTime_machineName.txt to ensure all steps were completed successfully. In addition, we recommend that you wait at least 48 hours before checking OMS for data after the script first completes without reporting any error. +If you’re having issues seeing data in Upgrade Analytics after running the Upgrade Analytics Deployment script, make sure it completes successfully without any errors. Check the output of the script in the command window and/or log UA_dateTime_machineName.txt to ensure all steps were completed successfully. In addition, we recommend that you wait at least 48 hours before checking OMS for data after the script first completes without reporting any error. If you still don’t see data in Upgrade Analytics, follow these steps: @@ -25,14 +25,9 @@ If you still don’t see data in Upgrade Analytics, follow these steps: If you want to stop using Upgrade Analytics and stop sending telemetry data to Microsoft, follow these steps: -1. Unsubscribe from the Upgrade Analytics solution in the OMS portal. In the OMS portal, go to **Settings** > **Connected Sources** > **Windows Telemetry** and choose the **Unsubscribe** option. +1. Unsubscribe from the Upgrade Analytics solution in the OMS portal. - ![Upgrade Analytics unsubscribe](images/upgrade-analytics-unsubscribe.png) +2. Disable the Customer Experience Improvement Program on computers running Windows 7 SP1 or 8.1. On computers running Windows 10, set the telemetry level to Security. -2. Disable the Commercial Data Opt-in Key on computers running Windows 7 SP1 or 8.1. On computers running Windows 10, set the telemetry level to **Security**: +3. Delete the CommercialDataOptin key in *HKLM:\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Policies\\DataCollection* - **Windows 7 and Windows 8.1**: Delete CommercialDataOptIn registry property from *HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection* - **Windows 10**: Follow the instructions in the [Configure Windows telemetry in your organization](https://technet.microsoft.com/itpro/windows/manage/configure-windows-telemetry-in-your-organization#enterprise-management) topic. - -3. If you enabled **Internet Explorer Site Discovery**, you can disable Internet Explorer data collection by setting the *IEDataOptIn* registry key to value "0". The IEDataOptIn key can be found under: *HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection*. -4. You can also remove the “CommercialId” key from: "HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection". **This is an optional step**. diff --git a/windows/deploy/upgrade-analytics-get-started.md b/windows/deploy/upgrade-analytics-get-started.md index 1455ee624e..188a73c081 100644 --- a/windows/deploy/upgrade-analytics-get-started.md +++ b/windows/deploy/upgrade-analytics-get-started.md @@ -1,4 +1,4 @@ ---- +--- title: Get started with Upgrade Analytics (Windows 10) description: Explains how to get started with Upgrade Analytics. ms.prod: w10 @@ -53,7 +53,7 @@ If you are not using OMS: After you’ve signed in to Operations Management Suite and added the Upgrade Analytics solution to your workspace, complete the following tasks to establish communication and enable data sharing between user computers, Microsoft secure data centers, and Upgrade Analytics. -## Generate your commercial ID key +## Generate your commercial ID key Microsoft uses a unique commercial ID to map information from user computers to your OMS workspace. Generate your commercial ID key in OMS and then deploy it to user computers. @@ -77,14 +77,14 @@ For Upgrade Analytics to receive and display upgrade readiness data from Microso To enable data sharing, whitelist the following endpoints. Note that you may need to get approval from your security group to do this. -Note: The compatibility update KB runs under the computer’s system account. If you are using user authenticated proxies, read [this blog post](https://go.microsoft.com/fwlink/?linkid=838688) to learn what you need to do to run it under the logged on user account. +Note: The compatibility update KB runs under the computer’s system account and does not support user authenticated proxies. | **Endpoint** | **Function** | |---------------------------------------------------------|-----------| -| `https://v10.vortex-win.data.microsoft.com/collect/v1`

    `https://Vortex-win.data.microsoft.com/health/keepalive` | Connected User Experience and Telemetry component endpoint. User computers send data to Microsoft through this endpoint. | -| `https://settings.data.microsoft.com/qos` | Enables the compatibility update KB to send data to Microsoft. | -| `https://go.microsoft.com/fwlink/?LinkID=544713`
    `https://compatexchange1.trafficmanager.net/CompatibilityExchangeService.svc` | This service provides driver information about whether there will be a driver available post-upgrade for the hardware on the system. | - +| `https://v10.vortex-win.data.microsoft.com/collect/v1` | Connected User Experience and Telemetry component endpoint. User computers send data to Microsoft through this endpoint. | +| `https://settings-win.data.microsoft.com/settings` | Enables the compatibility update KB to send data to Microsoft. | +| `https://go.microsoft.com/fwlink/?LinkID=544713`
    `https://compatexchange1.trafficmanager.net/CompatibilityExchangeService.svc/extended` | This service provides driver information about whether there will be a driver available post-upgrade for the hardware on the system. | +| `https://vortex.data.microsoft.com/health/keepalive`
    `https://settings.data.microsoft.com/qos`
    `https://compatexchange1.trafficmanager.net/CompatibilityExchangeService.svc` | These endpoints are used to validate that user computers are sharing data with Microsoft. | ## Deploy the compatibility update and related KBs @@ -92,8 +92,8 @@ The compatibility update KB scans your computers and enables application usage t | **Operating System** | **KBs** | |----------------------|-----------------------------------------------------------------------------| -| Windows 8.1 | [KB 2976978](http://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB2976978)
    Performs diagnostics on the Windows 8.1 systems that participate in the Windows Customer Experience Improvement Program. These diagnostics help determine whether compatibility issues may be encountered when the latest Windows operating system is installed.
    For more information about this KB, see

    [KB 3150513](https://catalog.update.microsoft.com/v7/site/Search.aspx?q=3150513)
    Provides updated configuration and definitions for compatibility diagnostics performed on the system.
    For more information about this KB, see
    NOTE: KB2976978 must be installed before you can download and install KB3150513. | -| Windows 7 SP1 | [KB2952664](http://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB2952664)
    Performs diagnostics on the Windows 7 SP1 systems that participate in the Windows Customer Experience Improvement Program. These diagnostics help determine whether compatibility issues may be encountered when the latest Windows operating system is installed.
    For more information about this KB, see

    [KB 3150513](https://catalog.update.microsoft.com/v7/site/Search.aspx?q=3150513)
    Provides updated configuration and definitions for compatibility diagnostics performed on the system.
    For more information about this KB, see
    NOTE: KB2952664 must be installed before you can download and install KB3150513. | +| Windows 8.1 | [KB 2976978](http://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB2976978)
    Performs diagnostics on the Windows 8.1 systems that participate in the Windows Customer Experience Improvement Program. These diagnostics help determine whether compatibility issues may be encountered when the latest Windows operating system is installed.
    For more information about this KB, see
    [KB 3150513](https://catalog.update.microsoft.com/v7/site/Search.aspx?q=3150513)
    Provides updated configuration and definitions for compatibility diagnostics performed on the system.
    For more information about this KB, see
    NOTE: KB2976978 must be installed before you can download and install KB3150513. | +| Windows 7 SP1 | [KB2952664](http://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB2952664)
    Performs diagnostics on the Windows 7 SP1 systems that participate in the Windows Customer Experience Improvement Program. These diagnostics help determine whether compatibility issues may be encountered when the latest Windows operating system is installed.
    For more information about this KB, see
    [KB 3150513](https://catalog.update.microsoft.com/v7/site/Search.aspx?q=3150513)
    Provides updated configuration and definitions for compatibility diagnostics performed on the system.
    For more information about this KB, see
    NOTE: KB2952664 must be installed before you can download and install KB3150513. | IMPORTANT: Restart user computers after you install the compatibility update KBs for the first time. @@ -117,7 +117,7 @@ To ensure that user computers are receiving the most up to date data from Micros To automate many of the steps outlined above and to troubleshoot data sharing issues, you can run the [Upgrade Analytics deployment script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409), developed by Microsoft. -> The following guidance applies to version 11.11.16 or later of the Upgrade Analytics deployment script. If you are using an older version, please download the latest from [Download Center](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409). +> The following guidance applies to version 11.30.16 or later of the Upgrade Analytics deployment script. If you are using an older version, please download the latest from [Download Center](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409). The Upgrade Analytics deployment script does the following: @@ -137,7 +137,7 @@ The Upgrade Analytics deployment script does the following: To run the Upgrade Analytics deployment script: -1. Download the [Upgrade Analytics deployment script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) and extract UpgradeAnalytics.zip. Inside, there are two folders: Pilot and Deployment. The Pilot folder contains advanced logging that can help troubleshoot issues and is intended to be run from an elevated command prompt. The Deployment folder offers a lightweight script intended for broad deployment through ConfigMgr or other software deployment system. We recommend manually running the Pilot version of the script on 5-10 machines to verify that everything is configured correctly. Once you have confirmed that data is flowing successfully, proceed to run the Deployment version throughout your organization. +1. Download the [Upgrade Analytics deployment script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) and extract UpgradeAnalytics.zip. Inside, there are two folders: Pilot and Deployment. The Pilot folder contains advanced logging that can help troubleshoot issues and is inteded to be run from an elevated command prompt. The Deployment folder offers a lightweight script intended for broad deployment through ConfigMgr or other software deployment system. We recommend manually running the Pilot version of the script on 5-10 machines to verify that everything is configured correctly. Once you have confirmed that data is flowing successfully, proceed to run the Deployment version throughout your organization. 2. Edit the following parameters in RunConfig.bat: @@ -165,45 +165,40 @@ To run the Upgrade Analytics deployment script: 4. After you finish editing the parameters in RunConfig.bat, you are ready to run the script. If you are using the Pilot version, run RunConfig.bat from an elevated command prompt. If you are using the Deployment version, use ConfigMgr or other software deployment service to run RunConfig.bat as system. -The deployment script displays the following exit codes to let you know if it was successful, or if an error was encountered. +The deployment script displays the following exit codes to let you know if it was successful, or if an error was encountered.

    -
    Exit codeMeaningSuggested fix -
    0Success -
    1Unexpected error occurred while executing the script The files in the deployment script are likely corrupted. Download the [latest script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) from the download center and try again. -
    2Error when logging to console. $logMode = 0. Try changing the $logMode value to **1** and try again. -
    3Error when logging to console and file. $logMode = 1.Verify that you have set the logPath parameter in RunConfig.bat, and that the configuration script has access to connect and write to this location. -
    4Error when logging to file. $logMode = 2.Verify that you have set the logPath parameter in RunConfig.bat, and that the configuration script has access to connect and write to this location. -
    5Error when logging to console and file. $logMode = unknown.Verify that you have set the logPath parameter in RunConfig.bat, and that the configuration script has access to connect and write to this location. -
    6The commercialID parameter is set to unknown. Modify the script.Set the value for CommercialID in runconfig.bat file. -
    8Failure to create registry key path: HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection. Verify that the configuration script has access to this location. -
    9Error when writing CommercialId to registry.Verify that the configuration script has access to this location. -
    10Error when writing CommercialDataOptIn to registry.Verify that the configuration script has access to this location. -
    11Function -SetupCommercialId: Unexpected failure.Verify that the configuration script has access to this location. -
    12Can’t connect to Microsoft – Vortex. Check your network/proxy settings.Verify that the required endpoints are whitelisted correctly. -
    13Can’t connect to Microsoft – setting. Verify that the required endpoints are whitelisted correctly. -
    14Can’t connect to Microsoft – compatexchange. Verify that the required endpoints are whitelisted. -
    15Error connecting to Microsoft:Unexpected failure. -
    16Machine requires reboot. The reboot is required to complete the installation of the compatibility update and related KBs. Reboot the machine before running the Upgrade Analytics deployment script. -
    17Function -CheckRebootRequired: Unexpected failure.The reboot is required to complete the installation of the compatibility update and related KBs. Reboot the machine before running the Upgrade Analytics deployment script. -
    18Outdated compatibility update KB package. Update via Windows Update/WSUS. -The configuration script detected a version of the Compatibility update module that is older than the minimum required to correctly collect the data required by Upgrade Analytics solution. Use the latest version of the Compatibility update for Windows 7 SP1/Windows 8.1. -
    19The compatibility update failed with unexpected exception. The files in the deployment script are likely corrupted. Download the [latest script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) from the download center and try again. -
    20Error writing RequestAllAppraiserVersions registry key. This registry key is required for data collection to work correctly. Verify that the configuration script has access to this location. -
    21Function – SetRequestAllAppraiserVersions: Unexpected failure.This registry key is required for data collection to work correctly. Verify that the configuration script has access to this location. -
    22RunAppraiser failed with unexpected exception. Check %windir%\System32 directory for a file called CompatTelRunner.exe. If the file does not exist, reinstall the required compatibility updates which include this file, and check your organization group policy to make sure it does not remove this file. -
    23Error finding system variable %WINDIR%. Make sure that this environment variable is available on the machine. -
    24SetIEDataOptIn failed when writing IEDataOptIn to registry. Verify that the deployment script in running in a context that has access to the registry key. -
    25SetIEDataOptIn failed with unexpected exception. The files in the deployment script are likely corrupted. Download the latest script from the [download center](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) and try again. -
    26The operating system is Server or LTSB SKU. The script does not support Server or LTSB SKUs. -
    27The script is not running under System account.The Upgrade Analytics configuration script must be run as system. -
    28Could not create log file at the specified logPath. Make sure the deployment script has access to the location specified in the logPath parameter. -
    29 Connectivity check failed for proxy authentication. Install the cumulative updates on the machine and enable the `DisableEnterpriseAuthProxy` authentication proxy setting. The `DisableEnterpriseAuthProxy` setting is enabled by default for Windows 7. For Windows 8.1 machines, set the `DisableEnterpriseAuthProxy` setting to **0** (not disabled). For more information on authentication proxy support, see [this blog post](https://go.microsoft.com/fwlink/?linkid=838688). -
    30Connectivity check failed. Registry key property `DisableEnterpriseAuthProxy` is not enabled. The `DisableEnterpriseAuthProxy` setting is enabled by default for Windows 7. For Windows 8.1 machines, set the `DisableEnterpriseAuthProxy` setting to **0** (not disabled). For more information on authentication proxy support, see [this blog post](https://go.microsoft.com/fwlink/?linkid=838688). -
    31There is more than one instance of the Upgrade Analytics data collector running at the same time on this machine. Use the Windows Task Manager to check if CompatTelRunner.exe is running, and wait until it has completed to rerun the script. -**The Upgrade Analytics task is scheduled to run daily at 3 a.m.** +
    Exit codeMeaning +
    0Success +
    1Unexpected error occurred while executing the script +
    2Error when logging to console. $logMode = 0. +
    3Error when logging to console and file. $logMode = 1. +
    4Error when logging to file. $logMode = 2. +
    5Error when logging to console and file. $logMode = unknown. +
    6The commercialID parameter is set to unknown. Modify the script. +
    7Function -CheckCommercialId: Unexpected failure. +
    8Failure to create registry key path: HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection. +
    9Error when writing CommercialId to registry. +
    10Error when writing CommercialDataOptIn to registry. +
    11Function -SetupCommercialId: Unexpected failure. +
    12Can’t connect to Microsoft – Vortex. Check your network/proxy settings. +
    13Can’t connect to Microsoft – setting. Check your network/proxy settings. +
    14Can’t connect to Microsoft – compatexchange. Check your network/proxy settings. +
    15Error connecting to Microsoft. Check your network/proxy settings. +
    16Machine requires reboot. +
    17Function -CheckRebootRequired: Unexpected failure. +
    18Outdated compatibility update KB package. Update via Windows Update/WSUS. +
    19This machine doesn’t have the proper KBs installed. Make sure you have recent compatibility update KB downloaded. +
    20Error writing RequestAllAppraiserVersions registry key. +
    21Function – SetRequestAllAppraiserVersions: Unexpected failure. +
    22RunAppraiser failed with unexpected exception. +
    23Error finding system variable %WINDIR%. +
    24SetIEDataOptIn failed when writing IEDataOptIn to registry. +
    25SetIEDataOptIn failed with unexpected exception. +
    26The operating system is LTSB SKU. The script does not support LTSB SKUs. +
    27The operating system is Server SKU. The script does not support Server SKUs.
    @@ -211,3 +206,4 @@ The configuration script detected a version of the Compatibility update module t ## Seeing data from computers in Upgrade Analytics After data is sent from computers to Microsoft, it generally takes 48 hours for the data to populate in Upgrade Analytics. The compatibility update KB takes several minutes to run. If the KB does not get a chance to finish running or if the computers are inaccessible (turned off or sleeping for example), data will take longer to populate in Upgrade Analytics. For this reason, you can expect most your computers to be populated in OMS in about 1-2 weeks after deploying the KB and configuration to user computers. + diff --git a/windows/deploy/upgrade-analytics-requirements.md b/windows/deploy/upgrade-analytics-requirements.md index 0dd920f998..3d55cd49a6 100644 --- a/windows/deploy/upgrade-analytics-requirements.md +++ b/windows/deploy/upgrade-analytics-requirements.md @@ -1,4 +1,4 @@ ---- +--- title: Upgrade Analytics requirements (Windows 10) description: Provides requirements for Upgrade Analytics. ms.prod: w10 @@ -43,8 +43,6 @@ See [Windows 7, Windows 8, and Windows 8.1 appraiser telemetry events and fields `https://v10.vortex-win.data.microsoft.com/collect/v1` -`https://vortex-win.data.microsoft.com/health/keepalive` - `https://settings-win.data.microsoft.com/settings` `https://vortex.data.microsoft.com/health/keepalive` diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md deleted file mode 100644 index 057d16d9f6..0000000000 --- a/windows/deploy/windows-10-poc-mdt.md +++ /dev/null @@ -1,634 +0,0 @@ ---- -title: Step by step - Deploy Windows 10 in a test lab using MDT -description: Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit (MDT) -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: deploy -author: greg-lindsay ---- - - -# Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit - -**Applies to** - -- Windows 10 - -**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in the following guide: -- [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) - -Please complete all steps in the prerequisite guide before starting this guide. This guide requires about 5 hours to complete, but can require less time or more time depending on the speed of the Hyper-V host. After completing the current guide, also see the companion guide: -- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) - -The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): -- **DC1**: A contoso.com domain controller, DNS server, and DHCP server. -- **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. -- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been shadow-copied from a physical computer on your corporate network. - ->This guide uses the Hyper-V server role. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. - -## In this guide - -This guide provides instructions to install and configure the Microsoft Deployment Toolkit (MDT) to deploy a Windows 10 image. - -Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. - -
    - - -
    TopicDescriptionTime - -
    [About MDT](#about-mdt)A high-level overview of the Microsoft Deployment Toolkit (MDT).Informational -
    [Install MDT](#install-mdt)Download and install MDT.40 minutes -
    [Create a deployment share and reference image](#create-a-deployment-share-and-reference-image)A reference image is created to serve as the template for deploying new images.90 minutes -
    [Deploy a Windows 10 image using MDT](#deploy-a-windows-10-image-using-mdt)The reference image is deployed in the PoC environment.60 minutes -
    [Refresh a computer with Windows 10](#refresh-a-computer-with-windows-10)Export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings.60 minutes -
    [Replace a computer with Windows 10](#replace-a-computer-with-windows-10)Back up an existing client computer, then restore this backup to a new computer.60 minutes -
    [Troubleshooting logs, events, and utilities](#troubleshooting-logs-events-and-utilities)Log locations and troubleshooting hints.Informational -
    - -
    - -## About MDT - -MDT performs deployments by using the Lite Touch Installation (LTI), Zero Touch Installation (ZTI), and User-Driven Installation (UDI) deployment methods. -- LTI is the deployment method used in the current guide, requiring only MDT and performed with a minimum amount of user interaction. -- ZTI is fully automated, requiring no user interaction and is performed using MDT and System Center Configuration Manager. After completing the steps in the current guide, see [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) to use the ZTI deployment method in the PoC environment. -- UDI requires manual intervention to respond to installation prompts such as machine name, password and language settings. UDI requires MDT and System Center Configuration Manager. - -## Install MDT - -1. On SRV1, temporarily disable IE Enhanced Security Configuration for Administrators by typing the following commands at an elevated Windows PowerShell prompt: - - ``` - $AdminKey = "HKLM:\SOFTWARE\Microsoft\Active Setup\Installed Components\{A509B1A7-37EF-4b3f-8CFC-4F3A74704073}" - Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 0 - Stop-Process -Name Explorer - ``` -2. Download and install the 64-bit version of [Microsoft Deployment Toolkit (MDT)](https://www.microsoft.com/en-us/download/details.aspx?id=54259) on SRV1 using the default options. As of the writing of this guide, the latest version of MDT was 8443. - -3. Download and install the latest [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/en-us/windows/hardware/windows-assessment-deployment-kit) on SRV1 using the default installation settings. The current version is the ADK for Windows 10, version 1607. Installation might require several minutes to acquire all components. - -3. If desired, re-enable IE Enhanced Security Configuration: - - ``` - Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 1 - Stop-Process -Name Explorer - ``` - -## Create a deployment share and reference image - -A reference image serves as the foundation for Windows 10 devices in your organization. - -1. In [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md), the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: - - ``` - Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\w10-enterprise.iso - ``` -2. On SRV1, verify that the Windows Enterprise installation DVD is mounted as drive letter D. - -3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. - -4. To enable quick access to the application, right-click **Deployment Workbench** on the taskbar and then click **Pin this program to the taskbar**. - -5. In the Deployment Workbench console, right-click **Deployment Shares** and select **New Deployment Share**. - -6. Use the following settings for the New Deployment Share Wizard: - - Deployment share path: **C:\MDTBuildLab**
    - - Share name: **MDTBuildLab$**
    - - Deployment share description: **MDT build lab**
    - - Options: click **Next** to accept the default
    - - Summary: click **Next**
    - - Progress: settings will be applied
    - - Confirmation: click **Finish** - - -7. Expand the **Deployment Shares** node, and then expand **MDT build lab**. - -8. Right-click the **Operating Systems** node, and then click **New Folder**. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. - -9. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. - -10. Use the following settings for the Import Operating System Wizard: - - OS Type: **Full set of source files**
    - - Source: **D:\\**
    - - Destination: **W10Ent_x64**
    - - Summary: click **Next** - - Progress: wait for files to be copied - - Confirmation: click **Finish** - - >For purposes of this test lab, we will only add the prerequisite .NET Framework feature. Commerical applications (ex: Microsoft Office) will not be added to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. - -11. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: - - Task sequence ID: **REFW10X64-001**
    - - Task sequence name: **Windows 10 Enterprise x64 Default Image**
    - - Task sequence comments: **Reference Build**
    - - Template: **Standard Client Task Sequence** - - Select OS: click **Windows 10 Enterprise Evaluation in W10Ent_x64 install.wim** - - Specify Product Key: **Do not specify a product key at this time** - - Full Name: **Contoso** - - Organization: **Contoso** - - Internet Explorer home page: **http://www.contoso.com** - - Admin Password: **Do not specify an Administrator password at this time** - - Summary: click **Next** - - Confirmation: click **Finish** - - -12. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. - -13. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. - -14. On the Properties tab of the group that was created in the previous step, change the Name from **New Group** to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. Click another location in the window to see the name change. - -15. Click the **Custom Tasks (Pre-Windows Update)** group again, click **Add**, point to **Roles**, and then click **Install Roles and Features**. - -16. Under **Select the roles and features that should be installed**, select **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** and then click **Apply**. - -17. Enable Windows Update in the task sequence by clicking the **Windows Update (Post-Application Installation)** step, clicking the **Options** tab, and clearing the **Disable this step** checkbox. - - >Note: Since we are not installing applications in this test lab, there is no need to enable the Windows Update Pre-Application Installation step. However, you should enable this step if you are also installing applications. - -18. Click **OK** to complete editing the task sequence. - -19. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click **MDT build lab (C:\MDTBuildLab)** and click **Properties**, and then click the **Rules** tab. - -20. Replace the default rules with the following text: - - ``` - [Settings] - Priority=Default - - [Default] - _SMSTSORGNAME=Contoso - UserDataLocation=NONE - DoCapture=YES - OSInstall=Y - AdminPassword=pass@word1 - TimeZoneName=Pacific Standard Time - OSDComputername=#Left("PC-%SerialNumber%",7)# - JoinWorkgroup=WORKGROUP - HideShell=YES - FinishAction=SHUTDOWN - DoNotCreateExtraPartition=YES - ApplyGPOPack=NO - SkipAdminPassword=YES - SkipProductKey=YES - SkipComputerName=YES - SkipDomainMembership=YES - SkipUserData=YES - SkipLocaleSelection=YES - SkipTaskSequence=NO - SkipTimeZone=YES - SkipApplications=YES - SkipBitLocker=YES - SkipSummary=YES - SkipRoles=YES - SkipCapture=NO - SkipFinalSummary=NO - ``` - -21. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: - - ``` - [Settings] - Priority=Default - - [Default] - DeployRoot=\\SRV1\MDTBuildLab$ - UserDomain=CONTOSO - UserID=MDT_BA - UserPassword=pass@word1 - SkipBDDWelcome=YES - ``` - -22. Click **OK** to complete the configuration of the deployment share. - -23. Right-click **MDT build lab (C:\MDTBuildLab)** and then click **Update Deployment Share**. - -24. Accept all default values in the Update Deployment Share Wizard by clicking **Next** twice. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. - -25. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). - - >Hint: To copy the file, right-click the **LiteTouchPE_x86.iso** file and click **Copy** on SRV1, then open the **c:\VHD** folder on the Hyper-V host, right-click inside the folder and click **Paste**. - -26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: - -
    -
    -
    -    New-VM REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB
    -    Set-VMMemory REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
    -    Set-VMDvdDrive REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
    -    Start-VM REFW10X64-001
    -    vmconnect localhost REFW10X64-001
    -	
    -
    - - The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. - -27. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. - -28. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes, and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. - - Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: - - - Install the Windows 10 Enterprise operating system. - - Install added applications, roles, and features. - - Update the operating system using Windows Update (or WSUS if optionally specified). - - Stage Windows PE on the local disk. - - Run System Preparation (Sysprep) and reboot into Windows PE. - - Capture the installation to a Windows Imaging (WIM) file. - - Turn off the virtual machine.

    - - This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**. - -## Deploy a Windows 10 image using MDT - -This procedure will demonstrate how to deploy the reference image to the PoC environment using MDT. - -1. On SRV1, open the MDT Deployment Workbench console, right-click **Deployment Shares**, and then click **New Deployment Share**. Use the following values in the New Deployment Share Wizard: - - **Deployment share path**: C:\MDTProd - - **Share name**: MDTProd$ - - **Deployment share description**: MDT Production - - **Options**: accept the default - - -2. Click **Next**, verify the new deployment share was added successfully, then click **Finish**. - -3. In the Deployment Workbench console, expand the MDT Production deployment share, right-click **Operating Systems**, and then click **New Folder**. Name the new folder **Windows 10** and complete the wizard using default values. - -4. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. - -5. On the **OS Type** page, choose **Custom image file** and then click **Next**. - -6. On the Image page, browse to the **C:\MDTBuildLab\Captures\REFW10X64-001.wim** file created in the previous procedure, click **Open**, and then click **Next**. - -7. On the Setup page, select **Copy Windows 7, Windows Server 2008 R2, or later setup files from the specified path**. - -8. Under **Setup source directory**, browse to **C:\MDTBuildLab\Operating Systems\W10Ent_x64** click **OK** and then click **Next**. - -9. On the Destination page, accept the default Destination directory name of **REFW10X64-001**, click **Next** twice, wait for the import process to complete, and then click **Finish**. - -10. In the **Operating Systems** > **Windows 10** node, double-click the operating system that was added to view its properties. Change the operating system name to **Windows 10 Enterprise x64 Custom Image** and then click **OK**. See the following example: - - ![custom image](images/image.png) - - -### Create the deployment task sequence - -1. Using the Deployment Workbench, right-click **Task Sequences** under the **MDT Production** node, click **New Folder** and create a folder with the name: **Windows 10**. - -2. Right-click the **Windows 10** folder created in the previous step, and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: - - Task sequence ID: W10-X64-001 - - Task sequence name: Windows 10 Enterprise x64 Custom Image - - Task sequence comments: Production Image - - Select Template: Standard Client Task Sequence - - Select OS: Windows 10 Enterprise x64 Custom Image - - Specify Product Key: Do not specify a product key at this time - - Full Name: Contoso - - Organization: Contoso - - Internet Explorer home page: http://www.contoso.com - - Admin Password: pass@word1 - -### Configure the MDT production deployment share - -1. On SRV1, open an elevated Windows PowerShell prompt and type the following commands: - - ``` - copy-item "C:\Program Files\Microsoft Deployment Toolkit\Templates\Bootstrap.ini" C:\MDTProd\Control\Bootstrap.ini -Force - copy-item "C:\Program Files\Microsoft Deployment Toolkit\Templates\CustomSettings.ini" C:\MDTProd\Control\CustomSettings.ini -Force - ``` -2. In the Deployment Workbench console on SRV1, right-click the **MDT Production** deployment share and then click **Properties**. - -3. Click the **Rules** tab and replace the rules with the following text (don't click OK yet): - - ``` - [Settings] - Priority=Default - - [Default] - _SMSTSORGNAME=Contoso - OSInstall=YES - UserDataLocation=AUTO - TimeZoneName=Pacific Standard Time - OSDComputername=#Left("PC-%SerialNumber%",7)# - AdminPassword=pass@word1 - JoinDomain=contoso.com - DomainAdmin=administrator - DomainAdminDomain=CONTOSO - DomainAdminPassword=pass@word1 - ScanStateArgs=/ue:*\* /ui:CONTOSO\* - USMTMigFiles001=MigApp.xml - USMTMigFiles002=MigUser.xml - HideShell=YES - ApplyGPOPack=NO - SkipAppsOnUpgrade=NO - SkipAdminPassword=YES - SkipProductKey=YES - SkipComputerName=YES - SkipDomainMembership=YES - SkipUserData=YES - SkipLocaleSelection=YES - SkipTaskSequence=NO - SkipTimeZone=YES - SkipApplications=NO - SkipBitLocker=YES - SkipSummary=YES - SkipCapture=YES - SkipFinalSummary=NO - EventService=http://SRV1:9800 - ``` - **Note**: The contents of the Rules tab are added to c:\MDTProd\Control\CustomSettings.ini. - - >In this example a **MachineObjectOU** entry is not provided. Normally this entry describes the specific OU where new client computer objects are created in Active Directory. However, for the purposes of this test lab clients are added to the default computers OU, which requires that this parameter be unspecified. - - If desired, edit the follow line to include or exclude other users when migrating settings. Currently, the command is set to user exclude (ue) all users except for CONTOSO users specified by the user include option (ui): - - ``` - ScanStateArgs=/ue:*\* /ui:CONTOSO\* - ``` - - For example, to migrate **all** users on the computer, replace this line with the following: - - ``` - ScanStateArgs=/all - ``` - - For more information, see [ScanState Syntax](https://technet.microsoft.com/library/cc749015.aspx). - -4. Click **Edit Bootstap.ini** and replace text in the file with the following text: - - ``` - [Settings] - Priority=Default - - [Default] - DeployRoot=\\SRV1\MDTProd$ - UserDomain=CONTOSO - UserID=MDT_BA - UserPassword=pass@word1 - SkipBDDWelcome=YES - ``` -5. Click **OK** when finished. - -### Update the deployment share - -1. Right-click the **MDT Production** deployment share and then click **Update Deployment Share**. - -2. Use the default options for the Update Deployment Share Wizard. The update process requires 5 to 10 minutes to complete. - -3. Click **Finish** when the update is complete. - -### Enable deployment monitoring - -1. In the Deployment Workbench console, right-click **MDT Production** and then click **Properties**. - -2. On the **Monitoring** tab, select the **Enable monitoring for this deployment share** checkbox, and then click **OK**. - -3. Verify the monitoring service is working as expected by opening the following link on SRV1 in Internet Explorer: [http://localhost:9800/MDTMonitorEvent/](http://localhost:9800/MDTMonitorEvent/). If you do not see "**You have created a service**" at the top of the page, see [Troubleshooting MDT 2012 Monitoring](https://blogs.technet.microsoft.com/mniehaus/2012/05/10/troubleshooting-mdt-2012-monitoring/). - -4. Close Internet Explorer. - -### Configure Windows Deployment Services - -1. Initialize Windows Deployment Services (WDS) by typing the following command at an elevated Windows PowerShell prompt on SRV1: - - ``` - WDSUTIL /Verbose /Progress /Initialize-Server /Server:SRV1 /RemInst:"C:\RemoteInstall" - WDSUTIL /Set-Server /AnswerClients:All - ``` - -2. Click **Start**, type **Windows Deployment**, and then click **Windows Deployment Services**. - -3. In the Windows Deployment Services console, expand **Servers**, expand **SRV1.contoso.com**, right-click **Boot Images**, and then click **Add Boot Image**. - -4. Browse to the **C:\MDTProd\Boot\LiteTouchPE_x64.wim** file, click **Open**, click **Next**, and accept the defaults in the Add Image Wizard. Click **Finish** to complete adding a boot image. - -### Deploy the client image - -1. Before using WDS to deploy a client image, you must temporarily disable the external network adapter on SRV1. This is just an artifact of the lab environment. In a typical deployment environment WDS would not be installed on the default gateway. - - >**Note**: Do not disable the *internal* network interface. To quickly view IP addresses and interface names configured on the VM, type **Get-NetIPAddress | ft interfacealias, ipaddress** - - Assuming the external interface is named "Ethernet 2", to disable the *external* interface on SRV1, open a Windows PowerShell prompt on SRV1 and type the following command: - - ``` - Disable-NetAdapter "Ethernet 2" -Confirm:$false - ``` - -2. Next, switch to the Hyper-V host and open an elevated Windows PowerShell prompt. Create a generation 2 VM on the Hyper-V host that will load its OS using PXE. To create this VM, type the following commands at an elevated Windows PowerShell prompt: - - ``` - New-VM –Name "PC2" –NewVHDPath "c:\vhd\pc2.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 - Set-VMMemory -VMName "PC2" -DynamicMemoryEnabled $true -MinimumBytes 720MB -MaximumBytes 2048MB -Buffer 20 - ``` - >Dynamic memory is configured on the VM to conserve resources. However, this can cause memory allocation to be reduced past what is required to install an operating system. If this happens, reset the VM and begin the OS installation task sequence immediately. This ensures the VM memory allocation is not decreased too much while it is idle. - -3. Start the new VM and connect to it: - - ``` - Start-VM PC2 - vmconnect localhost PC2 - ``` -4. When prompted, hit ENTER to start the network boot process. - -5. In the Windows Deployment Wizard, choose the **Windows 10 Enterprise x64 Custom Image** and then click **Next**. - -6. After MDT lite touch installation has started, be sure to re-enable the external network adapter on SRV1. This is needed so the client can use Windows Update after operating system installation is complete.To re-enable the external network interface, open an elevated Windows PowerShell prompt on SRV1 and type the following command: - - ``` - Enable-NetAdapter "Ethernet 2" - ``` -7. On SRV1, in the Deployment Workbench console, click on **Monitoring** and view the status of installation. Right-click **Monitoring** and click **Refresh** if no data is displayed. -8. OS installation requires about 10 minutes. When the installation is complete, the system will reboot automatically, configure devices, and install updates, requiring another 10-20 minutes. When the new client computer is finished updating, click **Finish**. You will be automatically signed in to the local computer as administrator. - - ![finish](images/deploy-finish.png) - - -This completes the demonstration of how to deploy a reference image to the network. To conserve resources, turn off the PC2 VM before starting the next section. - -## Refresh a computer with Windows 10 - -This section will demonstrate how to export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings. The scenario will use PC1, a computer that was cloned from a physical device to a VM, as described in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). - -If the PC1 VM is not already running, then start and connect to it: - - ``` - Start-VM PC1 - vmconnect localhost PC1 - ``` - -1. Switch back to the Hyper-V host and create a checkpoint for the PC1 VM so that it can easily be reverted to its current state for troubleshooting purposes and to perform additional scenarios. Checkpoints are also known as snapshots. To create a checkpoint for the PC1 VM, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - Checkpoint-VM -Name PC1 -SnapshotName BeginState - ``` - -2. Sign on to PC1 using the CONTOSO\Administrator account. - - >Specify **contoso\administrator** as the user name to ensure you do not sign on using the local administrator account. You must sign in with this account so that you have access to the deployment share. - -3. Open an elevated command prompt on PC1 and type the following: - - ``` - cscript \\SRV1\MDTProd$\Scripts\Litetouch.vbs - ``` - - **Note**: Litetouch.vbs must be able to create the C:\MININT directory on the local computer. - -4. Choose the **Windows 10 Enterprise x64 Custom Image** and then click **Next**. - -5. Choose **Do not back up the existing computer** and click **Next**. - - **Note**: The USMT will still back up the computer. - -6. Lite Touch Installation will perform the following actions: - - Back up user settings and data using USMT. - - Install the Windows 10 Enterprise X64 operating system. - - Update the operating system via Windows Update. - - Restore user settings and data using USMT. - - You can review the progress of installation on SRV1 by clicking on the **Monitoring** node in the deployment workbench. When OS installation is complete, the computer will restart, set up devices, and configure settings. - -7. Sign in with the CONTOSO\Administrator account and verify that all CONTOSO domain user accounts and data have been migrated to the new operating system, or other user accounts as specified [previously](#configure-the-mdt-production-deployment-share). - -8. Create another checkpoint for the PC1 VM so that you can review results of the computer refresh later. To create a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - Checkpoint-VM -Name PC1 -SnapshotName RefreshState - ``` - -9. Restore the PC1 VM to it's previous state in preparation for the replace procedure. To restore a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - Restore-VMSnapshot -VMName PC1 -Name BeginState -Confirm:$false - Start-VM PC1 - vmconnect localhost PC1 - ``` - -10. Sign in to PC1 using the contoso\administrator account. - -## Replace a computer with Windows 10 - -At a high level, the computer replace process consists of:
    -- A special replace task sequence that runs the USMT backup and an optional full Window Imaging (WIM) backup.
    -- A standard OS deployment on a new computer. At the end of the deployment, the USMT backup from the old computer is restored. - -### Create a backup-only task sequence - -1. On SRV1, in the deployment workbench console, right-click the MDT Production deployment share, click **Properties**, click the **Rules** tab, and change the line **SkipUserData=YES** to **SkipUserData=NO**. -2. Click **OK**, right-click **MDT Production**, click **Update Deployment Share** and accept the default options in the wizard to update the share. -3. Type the following commands at an elevated Windows PowerShell prompt on SRV1: - - ``` - New-Item -Path C:\MigData -ItemType directory - New-SmbShare -Name MigData$ -Path C:\MigData -ChangeAccess EVERYONE - icacls C:\MigData /grant '"contoso\administrator":(OI)(CI)(M)' - ``` -4. On SRV1 in the deployment workbench, under **MDT Production**, right-click the **Task Sequences** node, and click **New Folder**. -5. Name the new folder **Other**, and complete the wizard using default options. -6. Right-click the **Other** folder and then click **New Task Sequence**. Use the following values in the wizard: - - **Task sequence ID**: REPLACE-001 - - **Task sequence name**: Backup Only Task Sequence - - **Task sequence comments**: Run USMT to back up user data and settings - - **Template**: Standard Client Replace Task Sequence (note: this is not the default template) -7. Accept defaults for the rest of the wizard and then click **Finish**. The replace task sequence will skip OS selection and settings. -8. Open the new task sequence that was created and review it. Note the type of capture and backup tasks that are present. Click **OK** when you are finished reviewing the task sequence. - -### Run the backup-only task sequence - -1. If you are not already signed on to PC1 as **contoso\administrator**, sign in using this account. To verify the currently signed in account, type the following command at an elevated command prompt: - - ``` - whoami - ``` -2. To ensure a clean environment before running the backup task sequence, type the following at an elevated Windows PowerShell prompt on PC1: - - ``` - Remove-Item c:\minint -recurse - Remove-Item c:\_SMSTaskSequence -recurse - Restart-Computer - ``` -2. Sign in to PC1 using the contoso\administrator account, and then type the following at an elevated command prompt: - - ``` - cscript \\SRV1\MDTProd$\Scripts\Litetouch.vbs - ``` -3. Complete the deployment wizard using the following: - - **Task Sequence**: Backup Only Task Sequence - - **User Data**: Specify a location: **\\SRV1\MigData$\PC1** - - **Computer Backup**: Do not back up the existing computer. -4. While the task sequence is running on PC1, open the deployment workbench console on SRV1 and click the **Monitoring* node. Press F5 to refresh the console, and view the status of current tasks. -5. Verify that **The user state capture was completed successfully** is displayed, and click **Finish** when the capture is complete. -6. On SRV1, verify that the file **USMT.MIG** was created in the **C:\MigData\PC1\USMT** directory. See the following example: - - ``` - PS C:\> dir C:\MigData\PC1\USMT - - Directory: C:\MigData\PC1\USMT - - Mode LastWriteTime Length Name - ---- ------------- ------ ---- - -a--- 9/6/2016 11:34 AM 14248685 USMT.MIG - ``` -### Deploy PC3 - -1. On the Hyper-V host, type the following commands at an elevated Windows PowerShell prompt: - - ``` - New-VM –Name "PC3" –NewVHDPath "c:\vhd\pc3.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 - Set-VMMemory -VMName "PC3" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 - ``` -2. Temporarily disable the external network adapter on SRV1 again, so that we can successfully boot PC3 from WDS. To disable the adapter, type the following command at an elevated Windows PowerShell prompt on SRV1: - - ``` - Disable-NetAdapter "Ethernet 2" -Confirm:$false - ``` -3. Start and connect to PC3 by typing the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - Start-VM PC3 - vmconnect localhost PC3 - ``` -4. When prompted, press ENTER for network boot. - -6. On PC3, ue the following settings for the Windows Deployment Wizard: - - **Task Sequence**: Windows 10 Enterprise x64 Custom Image - - **Move Data and Settings**: Do not move user data and settings - - **User Data (Restore)**: Specify a location: **\\SRV1\MigData$\PC1** -5. When OS installation has started on PC1, re-enable the external network adapter on SRV1 by typing the following command on SRV1: - - ``` - Enable-NetAdapter "Ethernet 2" - ``` -7. Setup will install the Windows 10 Enterprise operating system, update via Windows Update, and restore the user settings and data from PC1. - -8. When PC3 has completed installing the OS, sign in to PC3 using the contoso\administrator account. When the PC completes updating, click **Finish**. - -9. Verify that settings have been migrated from PC1, and then shut down PC3 in preparation for the next procedure. - -## Troubleshooting logs, events, and utilities - -Deployment logs are available on the client computer in the following locations: -- Before the image is applied: X:\MININT\SMSOSD\OSDLOGS -- After the system drive has been formatted: C:\MININT\SMSOSD\OSDLOGS -- After deployment: %WINDIR%\TEMP\DeploymentLogs - -You can review WDS events in Event Viewer at: **Applications and Services Logs > Microsoft > Windows > Deployment-Services-Diagnostics**. By default, only the **Admin** and **Operational** logs are enabled. To enable other logs, right-click the log and then click **Enable Log**. - -Tools for viewing log files, and to assist with troubleshooting are available in the [System Center 2012 R2 Configuration Manager Toolkit](https://www.microsoft.com/en-us/download/details.aspx?id=50012) - -Also see [Resolve Windows 10 upgrade errors](resolve-windows-10-upgrade-errors.md) for detailed troubleshooting information. - -## Related Topics - -[Microsoft Deployment Toolkit](https://technet.microsoft.com/en-US/windows/dn475741)
    -[Prepare for deployment with MDT 2013](prepare-for-windows-deployment-with-mdt-2013.md) - -  - - - - - diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md deleted file mode 100644 index d9278a15c5..0000000000 --- a/windows/deploy/windows-10-poc-sc-config-mgr.md +++ /dev/null @@ -1,1040 +0,0 @@ ---- -title: Deploy Windows 10 using System Center Configuration Manager -description: Deploy Windows 10 in a test lab using System Center Configuration Manager -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: deploy -author: greg-lindsay ---- - -# Deploy Windows 10 in a test lab using System Center Configuration Manager - -**Applies to** - -- Windows 10 - -**Important**: This guide leverages the proof of concept (PoC) environment, and some settings that are configured in the following guides: -- [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) -- [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) - -Please complete all steps in these guides before attempting the procedures in this guide. If you wish to skip the Windows 10 deployment procedures in the MDT guide and move directly to this guide, you must at least install MDT and the Windows ADK before performing procedures in this guide. All steps in the first guide are required before attempting the procedures in this guide. - -The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): -- **DC1**: A contoso.com domain controller, DNS server, and DHCP server. -- **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. -- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been cloned from a physical computer on your corporate network for testing purposes. - -This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. - ->Multiple features and services are installed on SRV1 in this guide. This is not a typical installation, and is only done to set up a lab environment with a bare minimum of resources. However, if less than 4 GB of RAM is allocated to SRV1 in the Hyper-V console, some procedures will be extremely slow to complete. If resources are limited on the Hyper-V host, consider reducing RAM allocation on DC1 and PC1, and then increasing the RAM allocation on SRV1. You can adjust RAM allocation for a VM by right-clicking the VM in the Hyper-V Manager console, clicking **Settings**, clicking **Memory**, and modifying the value next to **Maximum RAM**. - -## In this guide - -This guide provides end-to-end instructions to install and configure System Center Configuration Manager, and use it to deploy a Windows 10 image. Depending on the speed of your Hyper-V host, the procedures in this guide will require 6-10 hours to complete. - -Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. - -
    - - -
    TopicDescriptionTime - -
    [Install prerequisites](#install-prerequisites)Install prerequisite Windows Server roles and features, download, install and configure SQL Server, configure firewall rules, and install the Windows ADK.60 minutes -
    [Install System Center Configuration Manager](#install-system-center-configuration-manager)Download System Center Configuration Manager, configure prerequisites, and install the package.45 minutes -
    [Download MDOP and install DaRT](#download-mdop-and-install-dart)Download the Microsoft Desktop Optimization Pack 2015 and install DaRT 10.15 minutes -
    [Prepare for Zero Touch installation](#prepare-for-zero-touch-installation)Prerequisite procedures to support Zero Touch installation.60 minutes -
    [Create a boot image for Configuration Manager](#create-a-boot-image-for-configuration-manager)Use the MDT wizard to create the boot image in Configuration Manager.20 minutes -
    [Create a Windows 10 reference image](#create-a-windows-10-reference-image)This procedure can be skipped if it was done previously, otherwise instructions are provided to create a reference image.0-60 minutes -
    [Add a Windows 10 operating system image](#add-a-windows-10-operating-system-image)Add a Windows 10 operating system image and distribute it.10 minutes -
    [Create a task sequence](#Create a task sequence)Create a Configuration Manager task sequence with MDT integration using the MDT wizard15 minutes -
    [Finalize the operating system configuration](#finalize-the-operating-system-configuration)Enable monitoring, configure rules, and distribute content.30 minutes -
    [Deploy Windows 10 using PXE and Configuration Manager](#deploy-windows-10-using-pxe-and-configuration-manager)Deploy Windows 10 using Configuration Manager deployment packages and task sequences.60 minutes -
    [Refresh a client with Windows 10 using Configuration Manager](#refresh-a-client-with-windows-10-using-configuration-manager)Use a task sequence to refresh a client with Windows 10 using Configuration Manager and MDT90 minutes -
    [Replace a client with Windows 10 using Configuration Manager](#replace-a-client-with-windows-10-using-configuration-manager)Replace a client computer with Windows 10 using Configuration Manager.90 minutes - -
    - -
    - -## Install prerequisites - -1. Before installing System Center Configuration Manager, we must install prerequisite services and features. Type the following command at an elevated Windows PowerShell prompt on SRV1: - - ``` - Install-WindowsFeature Web-Windows-Auth,Web-ISAPI-Ext,Web-Metabase,Web-WMI,BITS,RDC,NET-Framework-Features,Web-Asp-Net,Web-Asp-Net45,NET-HTTP-Activation,NET-Non-HTTP-Activ - ``` - - >If the request to add features fails, retry the installation by typing the command again. - -2. Download [SQL Server 2012 SP2](https://www.microsoft.com/en-us/evalcenter/evaluate-sql-server-2014-sp2) from the Microsoft Evaluation Center as an .ISO file on the Hyper-V host computer. Save the file to the **C:\VHD** directory. -3. When you have downloaded the file **SQLServer2014SP2-FullSlipstream-x64-ENU.iso** and placed it in the C:\VHD directory, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\SQLServer2014SP2-FullSlipstream-x64-ENU.iso - ``` - - This command mounts the .ISO file to drive D on SRV1. - -4. Type the following command at an elevated Windows PowerShell prompt on SRV1 to install SQL Server 2012 SP2: - - ``` - D:\setup.exe /q /ACTION=Install /ERRORREPORTING="False" /FEATURES=SQLENGINE,RS,IS,SSMS,TOOLS,ADV_SSMS,CONN /INSTANCENAME=MSSQLSERVER /INSTANCEDIR="C:\Program Files\Microsoft SQL Server" /SQLSVCACCOUNT="NT AUTHORITY\System" /SQLSYSADMINACCOUNTS="BUILTIN\ADMINISTRATORS" /SQLSVCSTARTUPTYPE=Automatic /AGTSVCACCOUNT="NT AUTHORITY\SYSTEM" /AGTSVCSTARTUPTYPE=Automatic /RSSVCACCOUNT="NT AUTHORITY\System" /RSSVCSTARTUPTYPE=Automatic /ISSVCACCOUNT="NT AUTHORITY\System" /ISSVCSTARTUPTYPE=Disabled /ASCOLLATION="Latin1_General_CI_AS" /SQLCOLLATION="SQL_Latin1_General_CP1_CI_AS" /TCPENABLED="1" /NPENABLED="1" /IAcceptSQLServerLicenseTerms - ``` - Installation will take several minutes. When installation is complete, the following output will be displayed: - - ``` - Microsoft (R) SQL Server 2014 12.00.5000.00 - Copyright (c) Microsoft Corporation. All rights reserved. - - Microsoft (R) .NET Framework CasPol 2.0.50727.7905 - Copyright (c) Microsoft Corporation. All rights reserved. - - Success - Microsoft (R) .NET Framework CasPol 2.0.50727.7905 - Copyright (c) Microsoft Corporation. All rights reserved. - - Success - One or more affected files have operations pending. - You should restart your computer to complete this process. - PS C:\> - ``` -5. Type the following commands at an elevated Windows PowerShell prompt on SRV1: - - ``` - New-NetFirewallRule -DisplayName “SQL Server” -Direction Inbound –Protocol TCP –LocalPort 1433 -Action allow - New-NetFirewallRule -DisplayName “SQL Admin Connection” -Direction Inbound –Protocol TCP –LocalPort 1434 -Action allow - New-NetFirewallRule -DisplayName “SQL Database Management” -Direction Inbound –Protocol UDP –LocalPort 1434 -Action allow - New-NetFirewallRule -DisplayName “SQL Service Broker” -Direction Inbound –Protocol TCP –LocalPort 4022 -Action allow - New-NetFirewallRule -DisplayName “SQL Debugger/RPC” -Direction Inbound –Protocol TCP –LocalPort 135 -Action allow - ``` - -7. Download and install the latest [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/en-us/windows/hardware/windows-assessment-deployment-kit) on SRV1 using the default installation settings. The current version is the ADK for Windows 10, version 1607. Installation might require several minutes to acquire all components. - -## Install System Center Configuration Manager - -1. On SRV1, temporarily disable IE Enhanced Security Configuration for Administrators by typing the following commands at an elevated Windows PowerShell prompt: - - ``` - $AdminKey = "HKLM:\SOFTWARE\Microsoft\Active Setup\Installed Components\{A509B1A7-37EF-4b3f-8CFC-4F3A74704073}" - Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 0 - Stop-Process -Name Explorer - ``` - -2. Download [System Center Configuration Manager and Endpoint Protection](https://www.microsoft.com/en-us/evalcenter/evaluate-system-center-configuration-manager-and-endpoint-protection) on SRV1 (download the executable file anywhere on SRV1), double-click the file, enter **C:\configmgr** for **Unzip to folder**, and click **Unzip**. The C:\configmgr directory will be automatically created. Click **OK** and then close the **WinZip Self-Extractor** dialog box when finished. - -3. Before starting the installation, verify that WMI is working on SRV1. See the following examples. Verify that **Running** is displayed under **Status** and **True** is displayed next to **TcpTestSucceeded**: - - ``` - Get-Service Winmgmt - - Status Name DisplayName - ------ ---- ----------- - Running Winmgmt Windows Management Instrumentation - - Test-NetConnection -ComputerName 192.168.0.2 -Port 135 -InformationLevel Detailed - - ComputerName : 192.168.0.2 - RemoteAddress : 192.168.0.2 - RemotePort : 135 - AllNameResolutionResults : - MatchingIPsecRules : - NetworkIsolationContext : Internet - InterfaceAlias : Ethernet - SourceAddress : 192.168.0.2 - NetRoute (NextHop) : 0.0.0.0 - PingSucceeded : True - PingReplyDetails (RTT) : 0 ms - TcpTestSucceeded : True - ``` - You can also verify WMI using the WMI console by typing **wmimgmt.msc**, right-clicking **WMI Control (Local)** in the console tree, and then clicking **Properties**. - - If the WMI service is not started, attempt to start it or reboot the computer. If WMI is running but errors are present, see [WMIDiag](https://blogs.technet.microsoft.com/askperf/2015/05/12/wmidiag-2-2-is-here/) for troubleshooting information. - -4. To extend the Active Directory schema, type the following command at an elevated Windows PowerShell prompt: - - ``` - cmd /c C:\configmgr\SMSSETUP\BIN\X64\extadsch.exe - ``` - -5. Temporarily switch to the DC1 VM, and type the following command at an elevated command prompt on DC1: - - ``` - adsiedit.msc - ``` - -6. Right-click **ADSI Edit**, click **Connect to**, select **Default** under **Computer** and then click **OK**. -7. Expand **Default naming context**>**DC=contoso,DC=com**, right-click **CN=System**, point to **New**, and then click **Object**. -8. Click **container** and then click **Next**. -9. Next to **Value**, type **System Management**, click **Next**, and then click **Finish**. -10. Right-click **CN=system Management** and then click **Properties**. -11. On the **Security** tab, click **Add**, click **Object Types**, select **Computers**, and click **OK**. -12. Under **Enter the object names to select**, type **SRV1** and click **OK**. -13. The **SRV1** computer account will be highlighted, select **Allow** next to **Full control**. -14. Click **Advanced**, click **SRV1 (CONTOSO\SRV1$)** and click **Edit**. -15. Next to **Applies to**, choose **This object and all descendant objects**, and then click **OK** three times. -16. Close the ADSI Edit console and switch back to SRV1. -17. To start Configuration Manager installation, type the following command at an elevated Windows PowerShell prompt on SRV1: - - ``` - cmd /c C:\configmgr\SMSSETUP\BIN\X64\Setup.exe - ``` -18. Provide the following in the System Center Configuration Manager Setup Wizard: - - **Before You Begin**: Read the text and click *Next*. - - **Getting Started**: Choose **Install a Configuration Manager primary site** and select the **Use typical installation options for a stand-alone primary site** checkbox. - - Click **Yes** in response to the popup window. - - **Product Key**: Choose **Install the evaluation edition of this Product**. - - **Microsoft Software License Terms**: Read the terms and then select the **I accept these license terms** checkbox. - - **Prerequisite Licenses**: Review license terms and select all three checkboxes on the page. - - **Prerequisite Downloads**: Choose **Download required files** and enter **c:\windows\temp** next to **Path**. - - **Site and Installation Settings**: Site code: **PS1**, Site name: **Contoso**. - - use default settings for all other options - - **Usage Data**: Read the text and click **Next**. - - **Service Connection Point Setup**: Accept the default settings (SRV1.contoso.com is automatically added under Select a server to use). - - **Settings Summary**: Review settings and click **Next**. - - **Prerequisite Check**: No failures should be listed. Ignore any warnings and click **Begin Install**. - - >There should be at most three warnings present: WSUS on site server, configuration for SQL Server memory usage, and SQL Server process memory allocation. These warnings can safely be ignored. - - Depending on the speed of the Hyper-V host and resources allocated to SRV1, installation can require approximately one hour. Click **Close** when installation is complete. - -19. If desired, re-enable IE Enhanced Security Configuration at this time on SRV1: - - ``` - Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 1 - Stop-Process -Name Explorer - ``` - -## Download MDOP and install DaRT - -1. Download the [Microsoft Desktop Optimization Pack 2015](https://msdn.microsoft.com/en-us/subscriptions/downloads/#ProductFamilyId=597) to the Hyper-V host using an MSDN subscription. Download the .ISO file (mu_microsoft_desktop_optimization_pack_2015_x86_x64_dvd_5975282.iso) to the C:\VHD directory on the Hyper-V host. - -2. Type the following command at an elevated Windows PowerShell prompt on the Hyper-V host to mount the MDOP file on SRV1: - - ``` - Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\mu_microsoft_desktop_optimization_pack_2015_x86_x64_dvd_5975282.iso - ``` -3. Type the following command at an elevated Windows PowerShell prompt on SRV1: - - ``` - cmd /c "D:\DaRT\DaRT 10\Installers\en-us\x64\MSDaRT100.msi" - ``` -4. Install DaRT 10 using default settings. -5. Type the following commands at an elevated Windows PowerShell prompt on SRV1: - - ``` - Copy-Item "C:\Program Files\Microsoft DaRT\v10\Toolsx64.cab" -Destination "C:\Program Files\Microsoft Deployment Toolkit\Templates\Distribution\Tools\x64" - Copy-Item "C:\Program Files\Microsoft DaRT\v10\Toolsx86.cab" -Destination "C:\Program Files\Microsoft Deployment Toolkit\Templates\Distribution\Tools\x86" - ``` - -## Prepare for Zero Touch installation - -This section contains several procedures to support Zero Touch installation with System Center Configuration Manager. - -### Create a folder structure - -1. Type the following commands at a Windows PowerShell prompt on SRV1: - - ``` - New-Item -ItemType Directory -Path "C:Sources\OSD\Boot" - New-Item -ItemType Directory -Path "C:Sources\OSD\OS" - New-Item -ItemType Directory -Path "C:\Sources\OSD\Settings" - New-Item -ItemType Directory -Path "C:\Sources\OSD\Branding" - New-Item -ItemType Directory -Path "C:\Sources\OSD\MDT" - New-Item -ItemType Directory -Path "C:\Logs" - New-SmbShare -Name Sources$ -Path C:\Sources -ChangeAccess EVERYONE - New-SmbShare -Name Logs$ -Path C:\Logs -ChangeAccess EVERYONE - ``` - -### Enable MDT ConfigMgr integration - -1. On SRV1, click **Start**, type **configmgr**, and then click **Configure ConfigMgr Integration**. -2. Type **PS1** next to **Site code**, and then click **Next**. -3. Verify **The process completed successfully** is displayed, and then click **Finish**. - -### Configure client settings - -1. On SRV1, click **Start**, type **configuration manager**, right-click **Configuration Manager Console**, and then click **Pin to Taskbar**. -2. Click **Desktop**, and then launch the Configuration Manager console from the taskbar. -3. If the console notifies you that an update is available, click **OK**. It is not necessary to install updates to complete this lab. -4. In the console tree, open the **Administration** workspace (in the lower left corner) and click **Client Settings**. -5. In the display pane, double-click **Default Client Settings**. -6. Click **Computer Agent**, next to **Organization name displayed in Software Center** type **Contoso**, and then click **OK**. - -### Configure the network access account - -1. In the Administration workspace, expand **Site Configuration** and click **Sites**. -2. On the **Home** ribbon at the top of the console window, click **Configure Site Components** and then click **Software Distribution**. -3. On the **Network Access Account** tab, choose **Specify the account that accesses network locations**. -4. Click the yellow starburst and then click **New Account**. -5. Click **Browse** and then under **Enter the object name to select**, type **CM_NAA** and click **OK**. -6. Next to **Password** and **Confirm Password**, type **pass@word1**, and then click **OK** twice. - -### Configure a boundary group - -1. In the Administration workspace, expand **Hierary Configuration**, right-click **Boundaries** and then click **Create Boundary**. -2. Next to **Description**, type **PS1**, next to **Type** choose **Active Directory Site**, and then click **Browse**. -3. Choose **Default-First-Site-Name** and then click **OK** twice. -4. In the Administration workspace, right-click **Boundary Groups** and then click **Create Boundary Group**. -5. Next to **Name**, type **PS1 Site Assignment and Content Location**, click **Add**, select the **Default-First-Site-Name** boundary and then click **OK**. -6. On the **References** tab in the **Create Boundary Group** window select the **Use this boundary group for site assignment** checkbox. -7. Click **Add**, select the **\\\SRV1.contoso.com** checkbox, and then click **OK** twice. - -### Enable PXE on the distribution point - -1. Deterime the MAC address of the internal network adapter on SRV1. To determine this, type the following command at an elevated Windows PowerShell prompt on SRV1: - - ``` - (Get-NetAdapter "Ethernet").MacAddress - ``` - >If the internal network adapter, assigned an IP address of 192.168.0.2, is not named "Ethernet" then replace the name "Ethernet" in the previous command with the name of this network adapter. You can review the names of network adapters and the IP addresses assigned to them by typing **ipconfig**. - -2. In the System Center Configuration Manager console, in the **Administration** workspace, click **Distribution Points**. -3. In the display pane, right-click **SRV1.CONTOSO.COM** and then click **Properties**. -4. On the PXE tab, select the following settings: - - Enable PXE support for clients. Click **Yes** in the popup that appears. - - Allow this distribution point to respond to incoming PXE requests - - Enable unknown computer support. Click **OK** in the popup that appears. - - Require a password when computers use PXE - - Password and Confirm password: pass@word1 - - Respond to PXE requests on specific network interfaces: Click the yellow starburst and then enter the MAC address determined in the first step of this procedure. - - See the following example: - - Config Mgr PXE - -5. Click **OK**. -6. Type the following command at an elevated Windows PowerShell prompt on SRV1, and verify that the files displayed are present: - - ``` - cmd /c dir /b C:\RemoteInstall\SMSBoot\x64 - - abortpxe.com - bootmgfw.efi - bootmgr.exe - pxeboot.com - pxeboot.n12 - wdsmgfw.efi - wdsnbp.com - ``` - >If these files are not present, type the following command at an elevated Windows PowerShell prompt to open the Configuration Manager Trace Log Tool. In the tool, click **File**, click **Open**, and then open the **distmgr.log** file. If errors are present, they will be highlighted in red: - - ``` - Invoke-Item 'C:\Program Files\Microsoft Configuration Manager\tools\cmtrace.exe' - ``` - - The log file will updated continuously while Configuration Manager is running. Wait for Configuration Manager to repair any issues that are present, and periodically re-check that the files are present in the C:\RemoteInstall\SMSBoot\x64 directory. Close the Configuration Manager Trace Log Tool when done. You will see the following line in distmgr.log that indicates the C:\RemoteInstall directory is being populated with necessary files: - - Running: WDSUTIL.exe /Initialize-Server /REMINST:"C:\RemoteInstall" - - Once the files are present in C:\RemoteInstall, you can close the cmtrace tool. - -### Create a branding image file - -1. If you have a bitmap (.BMP) image for suitable use as a branding image, copy it to the C:\Sources\OSD\Branding folder on SRV1. Otherwise, use the following step to copy a simple branding image. -2. Type the following command at an elevated Windows PowerShell prompt: - - ``` - copy "C:\ProgramData\Microsoft\User Account Pictures\user.bmp" "C:\Sources\OSD\Branding\contoso.bmp" - ``` - >You can open C:\Sources\OSD\Branding\contoso.bmp in MSPaint.exe if desired to customize this image. - - -## Create a boot image for Configuration Manager - -1. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Boot Images**, and then click **Create Boot Image using MDT**. -2. On the Package Source page, under **Package source folder to be created (UNC Path):**, type **\\\SRV1\Sources$\OSD\Boot\Zero Touch WinPE x64**, and then click **Next**. - - The Zero Touch WinPE x64 folder does not yet exist. The folder will be created later. -3. On the General Settings page, type **Zero Touch WinPE x64** next to **Name**, and click **Next**. -4. On the Options page, under **Platform** choose **x64**, and click **Next**. -5. On the Components page, in addition to the default selection of **Microsoft Data Access Components (MDAC/ADO) support**, select the **Microsoft Diagnostics and Recovery Toolkit (DaRT)** checkbox, and click **Next**. -6. On the Customization page, select the **Use a custom background bitmap file** checkbox, and under **UNC path**, type or browse to **\\\SRV1\Sources$\OSD\Branding\contoso.bmp**, and then click **Next** twice. It will take a few minutes to generate the boot image. -7. Click **Finish**. -8. In the console display pane, right-click the **Zero Touch WinPE x64** boot image, and then click **Distribute Content**. -9. In the Distribute Content Wizard, click **Next**, click **Add** and select **Distribution Point**, select the **SRV1.CONTOSO.COM** checkbox, click **OK**, click **Next** twice, and then click **Close**. -10. Use the CMTrace application to view the **distmgr.log** file again and verify that the boot image has been distributed. To open CMTrace, type the following command at an elevated Windows PowerShell prompt on SRV1: - - ``` - Invoke-Item 'C:\Program Files\Microsoft Configuration Manager\tools\cmtrace.exe' - ``` - >In the trace tool, click **Tools** on the menu and choose **Find**. Search for "**STATMSG: ID=2301**". For example: - - ``` - STATMSG: ID=2301 SEV=I LEV=M SOURCE="SMS Server" COMP="SMS_DISTRIBUTION_MANAGER" SYS=SRV1.CONTOSO.COM SITE=PS1 PID=2476 TID=4636 GMTDATE=Wed Sep 14 22:11:09.363 2016 ISTR0="Configuration Manager Client Upgrade Package" ISTR1="PS100003" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=1 AID0=400 AVAL0="PS100003" SMS_DISTRIBUTION_MANAGER 9/14/2016 3:11:09 PM 4636 (0x121C) - ``` -11. You can also review status by clicking the **Zero Touch WinPE x64** image, and then clicking **Content Status** under **Related Objects** in the bottom right-hand corner of the console, or by entering **\Monitoring\Overview\Distribution Status\Content Status** on the location bar in the console. Doublt-click **Zero Touch WinPE x64** under **Content Status** in the console tree and verify that a status of **Successfully distributed content** is displayed on the **Success** tab. -12. In the **Software Library** workspace, double-click **Zero Touch WinPE x64** and then click the **Data Source** tab. -13. Select the **Deploy this boot image from the PXE-enabled distribution point** checkbox, and click **OK**. -14. Review the distmgr.log file again for "**STATMSG: ID=2301**" and verify that there are three folders under **C:\RemoteInstall\SMSImages** with boot images. See the following example: - - ``` - cmd /c dir /s /b C:\RemoteInstall\SMSImages - - C:\RemoteInstall\SMSImages\PS100004 - C:\RemoteInstall\SMSImages\PS100005 - C:\RemoteInstall\SMSImages\PS100006 - C:\RemoteInstall\SMSImages\PS100004\boot.PS100004.wim - C:\RemoteInstall\SMSImages\PS100005\boot.PS100005.wim - C:\RemoteInstall\SMSImages\PS100006\WinPE.PS100006.wim - ``` - - >The first two images (*.wim files) are default boot images. The third is the new boot image with DaRT. - -## Create a Windows 10 reference image - -If you have already completed steps in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) then you have already created a Windows 10 reference image. In this case, skip to the next procedure in this guide: [Add a Windows 10 operating system image](#add-a-windows-10-operating-system-image). If you have not yet created a Windows 10 reference image, complete the steps in this section. - -1. In [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: - - ``` - Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\w10-enterprise.iso - ``` -2. Verify that the Windows Enterprise installation DVD is mounted on SRV1 as drive letter D. - -3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. - -4. In the Deployment Workbench console, right-click **Deployment Shares** and select **New Deployment Share**. - -5. Use the following settings for the New Deployment Share Wizard: - - Deployment share path: **C:\MDTBuildLab**
    - - Share name: **MDTBuildLab$**
    - - Deployment share description: **MDT build lab**
    - - Options: click **Next** to accept the default
    - - Summary: click **Next**
    - - Progress: settings will be applied
    - - Confirmation: click **Finish** - -6. Expand the **Deployment Shares** node, and then expand **MDT build lab**. - -7. Right-click the **Operating Systems** node, and then click **New Folder**. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. - -7. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. - -8. Use the following settings for the Import Operating System Wizard: - - OS Type: **Full set of source files**
    - - Source: **D:\\**
    - - Destination: **W10Ent_x64**
    - - Summary: click **Next** - - Confirmation: click **Finish** - -9. For purposes of this test lab, we will not add applications, such as Microsoft Office, to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. - -10. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node under **MDT Build Lab** and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: - - Task sequence ID: **REFW10X64-001**
    - - Task sequence name: **Windows 10 Enterprise x64 Default Image**
    - - Task sequence comments: **Reference Build**
    - - Template: **Standard Client Task Sequence** - - Select OS: click **Windows 10 Enterprise Evaluation in W10Ent_x64 install.wim** - - Specify Product Key: **Do not specify a product key at this time** - - Full Name: **Contoso** - - Organization: **Contoso** - - Internet Explorer home page: **http://www.contoso.com** - - Admin Password: **Do not specify an Administrator password at this time** - - Summary: click **Next** - - Confirmation: click **Finish** - -11. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. - -12. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. A new group will be added under Tattoo. - -13. On the Properties tab of the group that was created in the previous step, change the Name from New Group to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. To see the name change, click **Tattoo**, then click the new group again. - -14. Click the **Custom Tasks (Pre-Windows Update)** group again, click **Add**, point to **Roles**, and then click **Install Roles and Features**. - -15. Under **Select the roles and features that should be installed**, select **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** and then click **Apply**. - -16. Enable Windows Update in the task sequence by clicking the **Windows Update (Post-Application Installation)** step, clicking the **Options** tab, and clearing the **Disable this step** checkbox. - >Note: Since we are not installing applications in this test lab, there is no need to enable the Windows Update Pre-Application Installation step. However, you should enable this step if you are also installing applications. - -17. Click **OK** to complete editing the task sequence. - -18. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click MDT build lab (C:\MDTBuildLab) and click **Properties**, and then click the **Rules** tab. - -19. Replace the default rules with the following text: - - ``` - [Settings] - Priority=Default - - [Default] - _SMSTSORGNAME=Contoso - UserDataLocation=NONE - DoCapture=YES - OSInstall=Y - AdminPassword=pass@word1 - TimeZoneName=Pacific Standard TimeZoneName - OSDComputername=#Left("PC-%SerialNumber%",7)# - JoinWorkgroup=WORKGROUP - HideShell=YES - FinishAction=SHUTDOWN - DoNotCreateExtraPartition=YES - ApplyGPOPack=NO - SkipAdminPassword=YES - SkipProductKey=YES - SkipComputerName=YES - SkipDomainMembership=YES - SkipUserData=YES - SkipLocaleSelection=YES - SkipTaskSequence=NO - SkipTimeZone=YES - SkipApplications=YES - SkipBitLocker=YES - SkipSummary=YES - SkipRoles=YES - SkipCapture=NO - SkipFinalSummary=NO - ``` - -20. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: - - ``` - [Settings] - Priority=Default - - [Default] - DeployRoot=\\SRV1\MDTBuildLab$ - UserDomain=CONTOSO - UserID=MDT_BA - UserPassword=pass@word1 - SkipBDDWelcome=YES - ``` - -21. Click **OK** to complete the configuration of the deployment share. - -22. Right-click **MDT build lab (C:\MDTBuildLab)** and then click **Update Deployment Share**. - -23. Accept all default values in the Update Deployment Share Wizard by clicking **Next**. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. - -24. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). - - >Hint: Top copy the file, right-click the **LiteTouchPE_x86.iso** file and click **Copy** on SRV1, then open the **c:\VHD** folder on the Hyper-V host, right-click inside the folder and click **Paste**. - -25. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: - - ``` - New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB - Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20 - Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso - Start-VM REFW10X64-001 - vmconnect localhost REFW10X64-001 - ``` -26. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. - -27. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. - - Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: - - - Install the Windows 10 Enterprise operating system. - - Install added applications, roles, and features. - - Update the operating system using Windows Update (or WSUS if optionally specified). - - Stage Windows PE on the local disk. - - Run System Preparation (Sysprep) and reboot into Windows PE. - - Capture the installation to a Windows Imaging (WIM) file. - - Turn off the virtual machine. - - This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host and your network's download speed. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on SRV1. The file name is **REFW10X64-001.wim**. - -## Add a Windows 10 operating system image - -1. Type the following commands at an elevated Windows PowerShell prompt on SRV1: - - ``` - New-Item -ItemType Directory -Path "C:Sources\OSD\OS\Windows 10 Enterprise x64" - cmd /c copy /z "C:\MDTBuildLab\Captures\REFW10X64-001.wim" "C:\Sources\OSD\OS\Windows 10 Enterprise x64" - ``` - -2. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Operating System Images**, and then click **Add Operating System Image**. - -3. On the Data Source page, under **Path:**, type or browse to **\\\SRV1\Sources$\OSD\OS\Windows 10 Enterprise x64\REFW10X64-001.wim**, and click **Next**. - -4. On the General page, next to **Name:**, type **Windows 10 Enterprise x64**, click **Next** twice, and then click **Close**. - -5. Distribute the operating system image to the SRV1 distribution point by right-clicking the **Windows 10 Enterprise x64** operating system image and then clicking **Distribute Content**. - -6. In the Distribute Content Wizard, click **Next**, click **Add**, click **Distribution Point**, add the **SRV1.CONTOSO.COM** distribution point, click **OK**, click **Next** twice and then click **Close**. - -7. Enter **\Monitoring\Overview\Distribution Status\Content Status** on the location bar, click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. Processing of the image on the site server can take several minutes. - - >If content distribution is not successful, verify that sufficient disk space is available. - -## Create a task sequence - ->Complete this section slowly. There are a large number of similar settings from which to choose. - -1. In the Configuration Manager console, in the **Software Library** workspace expand **Operating Systems**, right-click **Task Sequences**, and then click **Create MDT Task Sequence**. - -2. On the Choose Template page, select the **Client Task Sequence** template and click **Next**. - -3. On the General page, type **Windows 10 Enterprise x64** under **Task sequence name:** and then click **Next**. - -4. On the Details page, enter the following settings:
    - - Join a domain: contoso.com
    - - Account: click **Set**
    - - User name: contoso\CM_JD
    - - Password: pass@word1
    - - Confirm password: pass@word1
    - - Click **OK**
    - - Windows Settings
    - - User name: Contoso
    - - Organization name: Contoso
    - - Product key: \
    - - Administrator Account: Enable the account and specify the local administrator password
    - - Password: pass@word1
    - - Confirm password: pass@word1
    - - Click Next
    - -5. On the Capture Settings page, accept the default settings and click **Next**. - -6. On the Boot Image page, browse and select the **Zero Touch WinPE x64** boot image package and then click **Next**. - -7. On the MDT Package page, select **Create a new Microsoft Deployment Toolkit Files package**, under **Package source folder to be created (UNC Path):**, type **\\\SRV1\Sources$\OSD\MDT\MDT 2013**, and then click **Next**. - -8. On the MDT Details page, next to **Name:** type **MDT 2013** and then click **Next**. - -9. On the OS Image page, browse and select the **Windows 10 Enterprise x64** package, and then click **Next**. - -10. On the Deployment Method page, accept the default settings for **Zero Touch Installation** and click **Next**. - -11. On the Client Package page, browse and select the **Microsoft Corporation Configuration Manager Client package** and then click **Next**. - -12. On the USMT Package page, browse and select the **Microsoft Corporation User State Migration Tool for Windows 8 10.0.14393.0** package, and then click **Next**. - -13. On the Settings Package page, select **Create a new settings package**, and under **Package source folder to be created (UNC Path):**, type **\\\SRV1\Sources$\OSD\Settings\Windows 10 x64 Settings**, and then click **Next**. - -14. On the Settings Details page, next to **Name:**, type **Windows 10 x64 Settings**, and click **Next**. - -15. On the Sysprep Package page, click **Next** twice. - -16. On the Confirmation page, click **Finish**. - -### Edit the task sequence - -1. In the Configuration Manager console, in the **Software Library** workspace, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Edit**. - -2. Scroll down to the **Install** group and click the **Set Variable for Drive Letter** action. - -3. Change the Value under **OSDPreserveDriveLetter** from **False** to **True**, and then click **Apply**. - -4. In the **State Restore** group, click the **Set Status 5** action, click **Add** in the upper left corner, point to **User State**, and click **Request State Store**. This adds a new action immediately after **Set Status 5**. - -5. Configure the **Request State Store** action that was just added with the following settings:
    - - Request state storage location to: **Restore state from another computer**
    - - Select the **If computer account fails to connect to state store, use the Network Access account** checkbox.
    - - Options tab: Select the **Continue on error** checkbox.
    - - Add Condition: **Task Sequence Variable**:
    - - Variable: **USMTLOCAL**
    - - Condition: **not equals**
    - - Value: **True**
    - - Click **OK**.
    - - Click **Apply**
    . - -6. In the **State Restore** group, click **Restore User State**, click **Add**, point to **User State**, and click **Release State Store**. - -7. Configure the **Release State Store** action that was just added with the following settings:
    - - Options tab: Select the **Continue on error** checkbox.
    - - Add Condition: **Task Sequence Variable**:
    - - Variable: **USMTLOCAL**
    - - Condition: **not equals**
    - - Value: **True**
    - - Click **OK**.
    - - Click **OK**
    . - - -## Finalize the operating system configuration - ->If you completed all procedures in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) then the MDT deployment share is already present on SRV1. In this case, skip the first four steps below and begin with step 5 to edit CustomSettings.ini. - -1. In the MDT deployment workbench on SRV1, right-click **Deployment Shares** and then click **New Deployment Share**. - -2. Use the following settings for the New Deployment Share Wizard: - - Deployment share path: **C:\MDTProduction**
    - - Share name: **MDTProduction$**
    - - Deployment share description: **MDT Production**
    - - Options: click **Next** to accept the default
    - - Summary: click **Next**
    - - Progress: settings will be applied
    - - Confirmation: click **Finish** - -3. Right-click the **MDT Production** deployment share, and click **Properties**. - -4. Click the **Monitoring** tab, select the **Enable monitoring for this deployment share** checkbox, and then click **OK**. - -5. Type the following command at an elevated Windows PowerShell prompt on SRV1: - - ``` - notepad "C:\Sources\OSD\Settings\Windows 10 x64 Settings\CustomSettings.ini" - ``` -6. Replace the contents of the file with the following text, and then save the file: - - ``` - [Settings] - Priority=Default - Properties=OSDMigrateConfigFiles,OSDMigrateMode - - [Default] - DoCapture=NO - ComputerBackupLocation=NONE - OSDMigrateMode=Advanced - OSDMigrateAdditionalCaptureOptions=/ue:*\* /ui:CONTOSO\* - OSDMigrateConfigFiles=Miguser.xml,Migapp.xml - SLSHARE=\\SRV1\Logs$ - EventService=http://SRV1:9800 - ApplyGPOPack=NO - ``` -7. Return to the Configuration Manager console, and in the Software Library workspace, expand **Application Management**, click **Packages**, right-click **Windows 10 x64 Settings**, and then click **Update Distribution Points**. Click **OK** in the popup that appears. - -8. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Distribute Content**. - -9. In the Distribute Content Wizard, click **Next** twice, click **Add**, click **Distribution Point**, select the **SRV1.CONTOSO.COM** distribution point, click **OK**, click **Next** twice and then click **Close**. - -10. Enter **\Monitoring\Overview\Distribution Status\Content Status\Windows 10 Enterprise x64** on the location bar, double-click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. - -### Create a deployment for the task sequence - -1. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Deploy**. - -2. On the General page, next to **Collection**, click **Browse**, select the **All Unknown Computers** collection, click **OK**, and then click **Next**. - -3. On the Deployment Settings page, use the following settings:
    - - Purpose: **Available**
    - - Make available to the following: **Only media and PXE**
    - - Click **Next**.
    -4. Click **Next** five times to accept defaults on the Scheduling, User Experience, Alerts, and Distribution Points pages. - -5. Click **Close**. - -## Deploy Windows 10 using PXE and Configuration Manager - -1. Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - New-VM –Name "PC4" –NewVHDPath "c:\vhd\pc4.vhdx" -NewVHDSizeBytes 40GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 - Set-VMMemory -VMName "PC4" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 - Start-VM PC4 - vmconnect localhost PC4 - ``` - -2. Press ENTER when prompted to start the network boot service. - -3. In the Task Sequence Wizard, provide the password: **pass@word1**, and then click **Next**. - -4. Before you click Next in the Task Sequence Wizard, press the **F8** key. A command prompt will open. - -5. At the command prompt, type **explorer.exe** and review the Windows PE file structure. - -6. The smsts.log file is critical for troubleshooting any installation problems that might be encountered. Depending on the deployment phase, the smsts.log file is created in different locations: - - X:\windows\temp\SMSTSLog\smsts.log before disks are formatted. - - x:\smstslog\smsts.log after disks are formatted. - - c:\_SMSTaskSequence\Logs\Smstslog\smsts.log before the System Center Configuration Manager client is installed. - - c:\windows\ccm\logs\Smstslog\smsts.log after the System Center Configuration Manager client is installed. - - c:\windows\ccm\logs\smsts.log when the task sequence is complete. - - Note: If a reboot is pending on the client, the reboot will be blocked as long as the command window is open. - -7. In the explorer window, click **Tools** and then click **Map Network Drive**. - -8. Do not map a network drive at this time. If you need to save the smsts.log file, you can use this method to save the file to a location on SRV1. - -9. Close the Map Network Drive window, the Explorer window, and the command prompt. - -10. The **Windows 10 Enterprise x64** task sequence is selected in the Task Sequenc Wizard. Click **Next** to continue with the deployment. - -11. The task sequence will require several minutes to complete. You can monitor progress of the task sequence using the MDT Deployment Workbench under Deployment Shares > MDTProduction > Monitoring. The task sequence will: - - Install Windows 10 - - Install the Configuration Manager client and hotfix - - Join the computer to the contoso.com domain - - Install any applications that were specified in the reference image - -12. When Windows 10 installation has completed, sign in to PC4 using the **contoso\administrator** account. - -13. Right-click **Start**, click **Run**, type **control appwiz.cpl**, press ENTER, click Turn Windows features on or off, and verify that **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** is installed. This is a feature included in the reference image. - -14. Shut down the PC4 VM. - -## Refresh a client with Windows 10 using Configuration Manager - ->Before starting this section, you can delete computer objects from Active Directory that were created as part of previous deployment procedures. Use the Active Directory Users and Computers console to remove stale entries under contoto.com\Computers, but **do not delete the computer account (hostname) for PC1**. There should be at least two computer accounts present in the contoso.com\Computers container: one for SRV1, and one for the hostname of PC1. It is not required to delete the stale entries, this is only done to remove clutter. - -### Install the Configuration Manager client on PC1 - -1. Verify that PC1 is in its original state, which was saved as a checkpoint and then restored in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md). - -2. If a PC1 checkpoint has not already been saved, then save a checkpoint by typing the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - Checkpoint-VM -Name PC1 -SnapshotName BeginState - ``` -3. On SRV1, in the Configuration Manager console, in the Administration workspace, expand **Hierarcy Configuration** and click on **Discovery Methods**. -4. Double-click **Active Directory System Discovery** and on the **General** tab select the **Enable Active Directory System Discovery** checkbox. -5. Click the yellow starburst, click **Browse**, select **contoso\Computers**, and then click **OK** three times. -6. When a popup dialog box asks if you want to run full discovery, click **Yes**. -7. In the Assets and Compliance workspace, expand **Devices** and click **All Systems**. Verify that a computer account for SRV1 and PC1 are displayed. See the following example (GREGLIN-PC1 is the hostname of PC1 in this example): - - ![assets](images/sccm-assets.png) - - >If you only see the **Devices** parent node, you can add and view device collections in the tree by clicking **Device Collections** and then double-clicking a device collection. - - The **Client** column indicates that the Configuration Manager client is not currently installed. This procedure will be carried out next. - -8. Sign in to PC1 using the contoso\administrator account and type the following at an elevated command prompt to remove any pre-existing client configuration, if it exists: - - ``` - sc stop ccmsetup - "\\SRV1\c$\Program Files\Microsoft Configuration Manager\Client\CCMSetup.exe" /Uninstall - ``` - >If PC1 still has Configuration Manager registry settings that were applied by Group Policy, startup scripts, or other policies in its previous domain, these might not all be removed by CCMSetup /Uninstall and can cause problems with installation or registration of the client in its new environment. It might be necessary to manually remove these settings if they are present. For more information, see [Manual removal of the SCCM client](https://blogs.technet.microsoft.com/michaelgriswold/2013/01/02/manual-removal-of-the-sccm-client/). - -9. On PC1, temporarily stop Windows Update from queuing items for download and clear all BITS jobs from the queue: - - ``` - net stop wuauserv - net stop BITS - ``` - - Verify that both services were stopped successfully, then type the following at an elevated command prompt: - - ``` - del "%ALLUSERSPROFILE%\Application Data\Microsoft\Network\Downloader\qmgr*.dat" - net start BITSexit - bitsadmin /list /allusers - ``` - - Verify that BITSAdmin displays 0 jobs. - -10. To install the Configuration Manager client as a standalone process, type the following at an elevated command prompt: - - ``` - "\\SRV1\c$\Program Files\Microsoft Configuration Manager\Client\CCMSetup.exe" /mp:SRV1.contoso.com /logon SMSSITECODE=PS1 - ``` -11. On PC1, using file explorer, open the **C:\Windows\ccmsetup** directory. During client installation, files will be downloaded here. -12. Installation progress will be captured in the file: **c:\windows\ccmsetup\logs\ccmsetup.log**. You can periodically open this file in notepad, or you can type the following command at an elevated Windows PowerShell prompt to monitor installation progress: - - ``` - Get-Content -Path c:\windows\ccmsetup\logs\ccmsetup.log -Wait - ``` - - Installation might require several minutes, and display of the log file will appear to hang while some applications are installed. This is normal. When setup is complete, verify that **CcmSetup is existing with return code 0** is displayed on the last line of the ccmsetup.log file and then press **CTRL-C** to break out of the Get-Content operation. A return code of 0 indicates that installation was successful and you should now see a directory created at **C:\Windows\CCM** that contains files used in registration of the client with its site. - -13. On PC1, open the Configuration Manager control panel applet by typing the following command: - - ``` - control smscfgrc - ``` - -14. Click the **Site** tab and click **Find Site**. The client will report that it has found the PS1 site. See the following example: - - ![site](images/sccm-site.png) - - If the client is not able to find the PS1 site, review any error messages that are displayed in **C:\Windows\CCM\Logs\ClientIDManagerStartup.log** and **LocationServices.log**. - -15. On SRV1, in the Assets and Compliance workspace, click **All Desktop and Server Clients** and verify that the computer account for PC1 is displayed here with **Yes** and **Active** in the **Client** and **Client Activity** columns, respectively. You might have to refresh the view and wait few minutes for the client to appear here. See the following example: - - ![client](images/sccm-client.png) - - >It might take several minutes for the client to fully register with the site and complete a client check. When it is complete you will see a green check mark over the client icon as shown above. - -### Create a device collection and deployment - -1. On SRV1, in the Configuration Manager console, in the Asset and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. - -2. Use the following settings in the **Create Device Collection Wizard**: - - General > Name: **Install Windows 10 Enterprise x64**
    - - General > Limiting collection: **All Systems**
    - - Membership Rules > Add Rule: **Direct Rule**
    - - The **Create Direct Membership Rule Wizard** opens, click **Next**
    - - Search for Resources > Resource class: **System Resource**
    - - Search for Resources > Attribute name: **Name**
    - - Search for Resources > Value: **%**
    - - Select Resources > Value: Select the computername associated with the PC1 VM
    - - Click **Next** twice and then click **Close** in both windows. - -3. Double-click the Install Windows 10 Enterprise x64 device collection and verify that the PC1 computer account is displayed. - -4. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64** and then click **Deploy**. - -5. Use the following settings in the Deploy Sofware wizard: - - General > Collection: Click Browse and select **Install Windows 10 Enterprise x64**
    - - Deployment Settings > Purpose: **Available**
    - - Deployment Settings > Make available to the following: **Configuration Manager clients, media and PXE**
    - - Scheduling > Click **Next**
    - - User Experience > Click **Next**
    - - Alerts > Click **Next**
    - - Distribution Points > Click **Next**
    - - Summary > Click **Next**
    - - Verify that the wizard completed successfully and then click **Close** - -6. **Important** Before initiating a computer refresh, save a checkpoint for all three computers: PC1, SRV1, and DC1. This ensures that we can restore all computers, including Active Directory and the Configuration Manager client status to the pre-Windows 10 installation state prior to running the replace procedure. To save checkpoints, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - Checkpoint-VM -Name PC1 -SnapshotName cm-start - Checkpoint-VM -Name SRV1 -SnapshotName cm-start - Checkpoint-VM -Name DC1 -SnapshotName cm-start - ``` - -### Initiate the computer refresh - -1. On SRV1, in the Assets and Compliance workspace, click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. -2. Right-click the computer account for PC1, point to **Client Notification**, click **Download Computer Policy**, and click **OK** in the popup dialog box. -3. On PC1, in the notification area, click **New sofware is available** and then click **Open Sofware Center**. -4. In the Sofware Center, click **Operating Systems**, click **Windows 10 Enterprise x64**, click **Install** and then click **INSTALL OPERATING SYSTEM**. See the following example: - - ![installOS](images/sccm-install-os.png) - - The computer will restart several times during the installation process. Installation includes downloading updates, reinstalling the Configuration Manager Client Agent, and restoring the user state. You can view status of the installation in the Configuration Manager console by accessing the Monitoring workspace, clicking **Deployments**, and then double-clicking the deployment associated with the **Install Windows 10 Enterprise x64** collection. Under **Asset Details**, right-click the device and then click **More Details**. Click the **Status** tab to see a list of tasks that have been performed. See the following example: - - ![asset](images/sccm-asset.png) - - You can also monitor progress of the installation by using the MDT deployment workbench and viewing the **Monitoring** node under **Deployment Shares\MDT Production**. - - When installation has completed, sign in using the contoso\administrator account or the contoso\user1 account and verify that applications and settings have been successfully backed up and restored to your new Windows 10 Enterprise operating system. - - ![post-refresh](images/sccm-post-refresh.png) - -5. Save checkpoints for all VMs if you wish to review their status at a later date. This is not required. To save a checkpoint for all VMs, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: - - ``` - Checkpoint-VM -Name DC1 -SnapshotName cm-refresh - Checkpoint-VM -Name SRV1 -SnapshotName cm-refresh - Checkpoint-VM -Name PC1 -SnapshotName cm-refresh - ``` - -## Replace a client with Windows 10 using Configuration Manager - -Before starting the replace procedure, restore all three VMs using the checkpoints created in the previous procedure. To restore the checkpoints and connect to the VMs again, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: - -``` -Restore-VMSnapshot -VMName DC1 -Name cm-start -Confirm:$false -Restore-VMSnapshot -VMName SRV1 -Name cm-start -Confirm:$false -Restore-VMSnapshot -VMName PC1 -Name cm-start -Confirm:$false -Start-VM DC1 -vmconnect localhost DC1 -Start-VM SRV1 -vmconnect localhost SRV1 -Start-VM PC1 -vmconnect localhost PC1 -``` - ->If resources are limited in the Hyper-V environment, SRV1 can require several minutes for all services to start and present the sign-in screen after restoring VMs. Verify that all required services are running, and start any service that are not running. Use the Server Manager dashboard to view and start services. When all services are running, open the Configuration Manager console. - -### Create a replace task sequence - -1. On SRV1, in the Configuration Manager console, in the Software Library workspace, expand **Operating Systems**, right-click **Task Sequences**, and then click **Create MDT Task Sequence**. - -2. On the Choose Template page, select **Client Replace Task Sequence** and click **Next**. - -3. On the General page, type the following: - - Task sequence name: **Replace Task Sequence** - - Task sequence comments: **USMT backup only** - -4. Click **Next**, and on the Boot Image page, browse and select the **Zero Touch WinPE x64** boot image package. Click **OK** and then click **Next** to continue. -5. On the MDT Package page, browse and select the **MDT 2013** package. Click **OK** and then click **Next** to continue. -6. On the USMT Package page, browse and select the **Microsoft Corporation User State Migration Tool for Windows** package. Click **OK** and then click **Next** to continue. -7. On the Settings Package page, browse and select the **Windows 10 x64 Settings** package. Click **OK** and then click **Next** to continue. -8. On the Summary page, review the details and then click **Next**. -9. On the Confirmation page, click **Finish**. - ->If you receive an error at this stage it can be caused by a corrupt MDT integration. To repair it, close the Configuration Manager console, remove MDT integration, and then restore MDT integration. - -### Deploy PC4 - -Create a VM named PC4 to receive the applications and settings from PC1. This VM represents a new computer that will replace PC1. To create this VM, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: - -``` -New-VM –Name "PC4" –NewVHDPath "c:\vhd\pc4.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 -Set-VMMemory -VMName "PC4" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 -Set-VMNetworkAdapter -VMName PC4 -StaticMacAddress 00-15-5D-83-26-FF -``` - ->Hyper-V enables us to define a static MAC address on PC4. In a real-world scenario you must determine the MAC address of the new computer. - -### Associate PC4 with PC1 - -1. On SRV1 in the Configuration Manager console, in the Assets and Compliance workspace, right-click **Devices** and then click **Import Computer Information**. - -2. On the Select Source page, choose **Import single computer** and click **Next**. - -3. On the Single Computer page, use the following settings: - - Computer Name: **PC4** - - MAC Address: **00:15:5D:83:26:FF** - - Source Computer: - -4. Click **Next**, and then on the User Accounts page choose **Capture and restore all user accounts**. Click **Next** twice to continue. - -5. On the Choose Target Collection page, choose **Add computers to the following collection**, click **Browse**, choose **Install Windows 10 Enterprise x64**, click **OK**, click **Next** twice, and then click **Close**. - -6. Select the User State Migration node and review the computer association in the display pane. - -7. Right-click the association in the display pane and then click **View Recovery Information**. A recovery key has been assigned, but a user state store location has not. Click **Close**. - -8. Click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. Verify that **PC4** is displayed in the collection. You might have to update and refresh the collection, or wait a few minutes, but do not proceed until PC4 is available. See the following example: - - ![collection](images/sccm-collection.png) - -### Create a device collection for PC1 - -1. On SRV1, in the Configuration Manager console, in the Assets and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. - -2. Use the following settings in the **Create Device Collection Wizard**: - - General > Name: **USMT Backup (Replace)**
    - - General > Limiting collection: **All Systems**
    - - Membership Rules > Add Rule: **Direct Rule**
    - - The **Create Direct Membership Rule Wizard** opens, click **Next**
    - - Search for Resources > Resource class: **System Resource**
    - - Search for Resources > Attribute name: **Name**
    - - Search for Resources > Value: **%**
    - - Select Resources > Value: Select the computername associated with the PC1 VM.
    - - Click **Next** twice and then click **Close** in both windows. - -3. Click **Device Collections** and then double-click **USMT Backup (Replace)**. Verify that the computer name/hostname associated with PC1 is displayed in the collection. Do not proceed until this name is displayed. - -### Create a new deployment - -In the Configuration Manager console, in the Software Library workspace, click **Task Sequences**, right-click **Replace Task Sequence**, click **Deploy**, and use the following settings: -- General > Collection: **USMT Backup (Replace)**
    -- Deployment Settings > Purpose: **Available**
    -- Deployment Settings > Make available to the following: **Only Configuration Manager Clients**
    -- Scheduling: Click **Next**
    -- User Experience: Click **Next**
    -- Alerts: Click **Next**
    -- Distribution Points: Click **Next**
    -- Click **Next** and then click **Close**. - -### Verify the backup - -1. On PC1, open the Configuration Manager control panel applet by typing the following command: - - ``` - control smscfgrc - ``` -2. On the **Actions** tab, click **Machine Policy Retrieval & Evaluation Cycle**, click **Run Now**, click **OK**, and then click **OK** again. This is another method that can be used in addition to the Client Notification method used previously. - -3. Using the Software Center as was done in the previous procedure, click **Operating Systems** and then click **Replace Task Sequence**. See the following example: - - ![software](images/sccm-software-cntr.png) - -4. Click **Install** and then click **INSTALL OPERATING SYSTEM**. -5. Allow the **Replace Task Sequence** to complete, then verify that the C:\MigData folder on SRV1 contains the USMT backup. - -### Deploy the new computer - -1. Start PC4 and press ENTER for a network boot when prompted. To start PC4, type the following commands at an elevated Windows Powershell prompt on the Hyper-V host: - - ``` - Start-VM PC4 - vmconnect localhost PC4 - ``` -2. In the **Welcome to the Task Sequence Wizard**, enter **pass@word1** and click **Next**. -3. Choose the **Windows 10 Enterprise X64** image. -4. Setup will install the operating system, install the configuration manager client, join PC4 to the domain, and restore users and settings from PC1. - - -## Related Topics - -[System Center 2012 Configuration Manager Survival Guide](https://social.technet.microsoft.com/wiki/contents/articles/7075.system-center-2012-configuration-manager-survival-guide.aspx#Step-by-Step_Guides) - -  - - - - - diff --git a/windows/keep-secure/TOC.md b/windows/keep-secure/TOC.md index 7662302c08..eaedfbf278 100644 --- a/windows/keep-secure/TOC.md +++ b/windows/keep-secure/TOC.md @@ -31,15 +31,12 @@ ##### [Create and deploy a VPN policy for Windows Information Protection (WIP) using Microsoft Intune](create-vpn-and-wip-policy-using-intune.md) #### [Create and deploy a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) #### [Create and verify an Encrypting File System (EFS) Data Recovery Agent (DRA) certificate](create-and-verify-an-efs-dra-certificate.md) -#### [Determine the Enterprise Context of an app running in Windows Information Protection (WIP)](wip-app-enterprise-context.md) -### [Mandatory tasks and settings required to turn on Windows Information Protection (WIP)](mandatory-settings-for-wip.md) -### [Testing scenarios for Windows Information Protection (WIP)](testing-scenarios-for-wip.md) -### [Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) ### [General guidance and best practices for Windows Information Protection (WIP)](guidance-and-best-practices-wip.md) +#### [Mandatory tasks and settings required to turn on Windows Information Protection (WIP)](mandatory-settings-for-wip.md) #### [Enlightened apps for use with Windows Information Protection (WIP)](enlightened-microsoft-apps-and-wip.md) #### [Unenlightened and enlightened app behavior while using Windows Information Protection (WIP)](app-behavior-with-wip.md) -#### [Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP)](recommended-network-definitions-for-wip.md) -#### [Using Outlook Web Access with Windows Information Protection (WIP)](using-owa-with-wip.md) +#### [Testing scenarios for Windows Information Protection (WIP)](testing-scenarios-for-wip.md) +#### [Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) ## [Use Windows Event Forwarding to help with intrusion detection](use-windows-event-forwarding-to-assist-in-instrusion-detection.md) ## [Override Process Mitigation Options to help enforce app-related security policies](override-mitigation-options-for-app-related-security-policies.md) ## [VPN technical guide](vpn-guide.md) @@ -697,16 +694,16 @@ ##### [Smart Cards Debugging Information](smart-card-debugging-information.md) ##### [Smart Card Group Policy and Registry Settings](smart-card-group-policy-and-registry-settings.md) ##### [Smart Card Events](smart-card-events.md) -### [Trusted Platform Module](trusted-platform-module-top-node.md) -#### [Trusted Platform Module Overview](trusted-platform-module-overview.md) +### [Trusted Platform Module](trusted-platform-module-overview.md) #### [TPM fundamentals](tpm-fundamentals.md) #### [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) -#### [Back up the TPM recovery information to AD DS](backup-tpm-recovery-information-to-ad-ds.md) +#### [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md) +#### [Backup the TPM recovery Information to AD DS](backup-tpm-recovery-information-to-ad-ds.md) #### [Manage TPM commands](manage-tpm-commands.md) #### [Manage TPM lockout](manage-tpm-lockout.md) #### [Change the TPM owner password](change-the-tpm-owner-password.md) -#### [View status, clear, or troubleshoot the TPM](initialize-and-configure-ownership-of-the-tpm.md) -#### [Understanding PCR banks on TPM 2.0 devices](switch-pcr-banks-on-tpm-2-0-devices.md) +#### [Initialize and configure ownership of the TPM](initialize-and-configure-ownership-of-the-tpm.md) +#### [Switch PCR banks on TPM 2.0 devices](switch-pcr-banks-on-tpm-2-0-devices.md) #### [TPM recommendations](tpm-recommendations.md) ### [User Account Control](user-account-control-overview.md) #### [How User Account Control works](how-user-account-control-works.md) @@ -743,12 +740,10 @@ ##### [Investigate a domain](investigate-domain-windows-defender-advanced-threat-protection.md) ##### [Manage alerts](manage-alerts-windows-defender-advanced-threat-protection.md) #### [Windows Defender ATP settings](settings-windows-defender-advanced-threat-protection.md) -#### [Windows Defender ATP service status](service-status-windows-defender-advanced-threat-protection.md) #### [Configure SIEM tools to consume alerts](configure-siem-windows-defender-advanced-threat-protection.md) ##### [Configure an Azure Active Directory application for SIEM integration](configure-aad-windows-defender-advanced-threat-protection.md) ##### [Configure Splunk to consume Windows Defender ATP alerts](configure-splunk-windows-defender-advanced-threat-protection.md) ##### [Configure HP ArcSight to consume Windows Defender ATP alerts](configure-arcsight-windows-defender-advanced-threat-protection.md) -#### [Configure email notifications](configure-email-notifications-windows-defender-advanced-threat-protection.md) #### [Troubleshoot Windows Defender ATP](troubleshoot-windows-defender-advanced-threat-protection.md) #### [Review events and errors on endpoints with Event Viewer](event-error-codes-windows-defender-advanced-threat-protection.md) #### [Windows Defender compatibility](defender-compatibility-windows-defender-advanced-threat-protection.md) @@ -876,6 +871,4 @@ ### [Microsoft Passport guide](microsoft-passport-guide.md) ### [Windows 10 Mobile security guide](windows-10-mobile-security-guide.md) ### [Windows 10 security overview](windows-10-security-guide.md) -### [Windows 10 credential theft mitigation guide abstract](windows-credential-theft-mitigation-guide-abstract.md) -### [How to use single sign-on (SSO) over VPN and Wi-Fi connections](how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md) ## [Change history for Keep Windows 10 secure](change-history-for-keep-windows-10-secure.md) diff --git a/windows/keep-secure/access-this-computer-from-the-network.md b/windows/keep-secure/access-this-computer-from-the-network.md index 0d93c1d879..1cb598fcfd 100644 --- a/windows/keep-secure/access-this-computer-from-the-network.md +++ b/windows/keep-secure/access-this-computer-from-the-network.md @@ -1,5 +1,5 @@ --- -title: Access this computer from the network - security policy setting (Windows 10) +title: Access this computer from the network (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Access this computer from the network security policy setting. ms.assetid: f6767bc2-83d1-45f1-847c-54f5362db022 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Access this computer from the network - security policy setting +# Access this computer from the network **Applies to** - Windows 10 diff --git a/windows/keep-secure/accounts-guest-account-status.md b/windows/keep-secure/accounts-guest-account-status.md index 527a1357c4..f9054008ac 100644 --- a/windows/keep-secure/accounts-guest-account-status.md +++ b/windows/keep-secure/accounts-guest-account-status.md @@ -1,5 +1,5 @@ --- -title: Accounts Guest account status - security policy setting (Windows 10) +title: Accounts Guest account status (Windows 10) description: Describes the best practices, location, values, and security considerations for the Accounts Guest account status security policy setting. ms.assetid: 07e53fc5-b495-4d02-ab42-5b245d10d0ce ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Accounts: Guest account status - security policy setting +# Accounts: Guest account status **Applies to** - Windows 10 diff --git a/windows/keep-secure/accounts-rename-guest-account.md b/windows/keep-secure/accounts-rename-guest-account.md index c77030e875..aa06c480c3 100644 --- a/windows/keep-secure/accounts-rename-guest-account.md +++ b/windows/keep-secure/accounts-rename-guest-account.md @@ -1,5 +1,5 @@ --- -title: Accounts Rename guest account - security policy setting (Windows 10) +title: Accounts Rename guest account (Windows 10) description: Describes the best practices, location, values, and security considerations for the Accounts Rename guest account security policy setting. ms.assetid: 9b8052b4-bbb9-4cc1-bfee-ce25390db707 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Accounts: Rename guest account - security policy setting +# Accounts: Rename guest account **Applies to** - Windows 10 diff --git a/windows/keep-secure/ad-ds-schema-extensions-to-support-tpm-backup.md b/windows/keep-secure/ad-ds-schema-extensions-to-support-tpm-backup.md index 0efd393b76..9ce1e76918 100644 --- a/windows/keep-secure/ad-ds-schema-extensions-to-support-tpm-backup.md +++ b/windows/keep-secure/ad-ds-schema-extensions-to-support-tpm-backup.md @@ -1,5 +1,289 @@ --- -title: AD DS schema extensions to support TPM backup -redirect_url: https://technet.microsoft.com/library/jj635854.aspx +title: AD DS schema extensions to support TPM backup (Windows 10) +description: This topic provides more details about this change and provides template schema extensions that you can incorporate into your organization. +ms.assetid: beb7097c-e674-4eab-b8e2-6f67c85d1f3f +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: security +author: brianlic-msft --- +# AD DS schema extensions to support TPM backup + +**Applies to** +- Windows 10, version 1511 +- Windows 10, version 1507 + +**Does not apply to** +- Windows 10, version 1607 or later + +This topic provides more details about this change and provides template schema extensions that you can incorporate into your organization. + +## Why a schema extension is needed + +The TPM owner authorization value is now stored in a separate object which is linked to the Computer object. This value was stored as a property in the Computer object itself for the default Windows Server 2008 R2 schema. Windows Server 2012 domain controllers have the default schema to backup TPM owner authorization information in the separate object. If you are not upgrading your domain controller to Windows Server 2012, you need to extend the schema to support this change. If Active Directory backup of the TPM owner authorization value is enabled in a Windows Server 2008 R2 environment without extending the schema, the TPM provisioning will fail and the TPM will remain in a Not Ready state for computers running Windows 8. The following are the two schema extensions that you can use to bring your Windows Server 2008 R2 domain to parity with Windows Server 2012: + +### TpmSchemaExtension.ldf + +This schema extension brings parity with the Windows Server 2012 schema and is required if you want to store the TPM owner authorization value for a computer running Windows 8 in a Windows Server 2008 R2 AD DS domain. With this extension the TPM owner authorization information will be stored in a separate TPM object linked to the corresponding computer object. + +``` syntax +#=============================================================================== +# +# Active Directory Domain Services schema extension for +# BitLocker Drive Encryption and Trusted Platform Module (TPM) recovery +# +# This file contains attributes and class objects that enable Windows Server +# 2008 and Windows Server 2008 R2 domain controllers to store TPM recovery +# information in a new, TPM-specific location. +# +# Change History: +# 07/2010 - Created +# +# To extend the schema, use the LDIFDE tool on the schema master of the forest. +# +# Sample command: +# ldifde -i -v -f TPMSchemaExtension.ldf -c "DC=X" "DC=nttest,dc=microsoft,dc=com" -k -j . +# +# For more information on LDIFDE tool, see +# http://support.microsoft.com/default.aspx?scid=kb;en-us;237677 +# +#=============================================================================== +#=============================================================================== +# New schema attributes +#=============================================================================== +# +# ms-TPM-Srk-Pub-Thumbprint +# GUID: 19d706eb-4d76-44a2-85d6-1c342be3be37 +# +dn: CN=ms-TPM-Srk-Pub-Thumbprint,CN=Schema,CN=Configuration,DC=X +changetype: add +objectClass: attributeSchema +ldapDisplayName: msTPM-SrkPubThumbprint +adminDisplayName: TPM-SrkPubThumbprint +adminDescription: This attribute contains the thumbprint of the SrkPub corresponding to a particular TPM. This helps to index the TPM devices in the directory. +attributeId: 1.2.840.113556.1.4.2107 +attributeSyntax: 2.5.5.10 +omSyntax: 4 +isSingleValued: TRUE +searchFlags: 11 +schemaIdGuid:: 6wbXGXZNokSF1hw0K+O+Nw== +showInAdvancedViewOnly: TRUE +isMemberOfPartialAttributeSet: FALSE +rangeUpper: 20 +# +# ms-TPM-Owner-Information-Temp +# GUID: c894809d-b513-4ff8-8811-f4f43f5ac7bc +# +dn: CN=ms-TPM-Owner-Information-Temp,CN=Schema,CN=Configuration,DC=X +changetype: add +objectClass: attributeSchema +ldapDisplayName: msTPM-OwnerInformationTemp +adminDisplayName: TPM-OwnerInformationTemp +adminDescription: This attribute contains temporary owner information for a particular TPM. +attributeId: 1.2.840.113556.1.4.2108 +attributeSyntax: 2.5.5.12 +omSyntax: 64 +isSingleValued: TRUE +searchFlags: 640 +rangeUpper: 128 +schemaIdGuid:: nYCUyBO1+E+IEfT0P1rHvA== +showInAdvancedViewOnly: TRUE +isMemberOfPartialAttributeSet: FALSE +# +# ms-TPM-Tpm-Information-For-Computer +# GUID: ea1b7b93-5e48-46d5-bc6c-4df4fda78a35 +# +dn: CN=ms-TPM-Tpm-Information-For-Computer,CN=Schema,CN=Configuration,DC=X +changetype: add +objectClass: attributeSchema +ldapDisplayName: msTPM-TpmInformationForComputer +adminDisplayName: TPM-TpmInformationForComputer +adminDescription: This attribute links a Computer object to a TPM object. +attributeId: 1.2.840.113556.1.4.2109 +attributeSyntax: 2.5.5.1 +omSyntax: 127 +isSingleValued: TRUE +searchFlags: 16 +omObjectClass:: KwwCh3McAIVK +schemaIdGuid:: k3sb6khe1Ua8bE30/aeKNQ== +showInAdvancedViewOnly: TRUE +isMemberOfPartialAttributeSet: FALSE +linkId: 2182 +# +# ms-TPM-TpmInformation-For-Computer-BL +# GUID: 14fa84c9-8ecd-4348-bc91-6d3ced472ab7 +# +dn: CN=ms-TPM-Tpm-Information-For-Computer-BL,CN=Schema,CN=Configuration,DC=X +changetype: add +objectClass: attributeSchema +ldapDisplayName: msTPM-TpmInformationForComputerBL +adminDisplayName: TPM-TpmInformationForComputerBL +adminDescription: This attribute links a TPM object to the Computer objects associated with it. +attributeId: 1.2.840.113556.1.4.2110 +attributeSyntax: 2.5.5.1 +omSyntax: 127 +isSingleValued: FALSE +searchFlags: 0 +omObjectClass:: KwwCh3McAIVK +schemaIdGuid:: yYT6FM2OSEO8kW087Ucqtw== +showInAdvancedViewOnly: TRUE +systemOnly: TRUE +linkId: 2183 +# +# Commit the new attributes +# +dn: +changetype: modify +add: schemaUpdateNow +schemaUpdateNow: 1 +- +# +# Modify the Computer schema to support the TPM link +# +dn: CN=computer,CN=Schema,CN=Configuration,DC=X +changetype: modify +add: mayContain +mayContain: msTPM-TpmInformationForComputer +- +# +# Commit the modification to the computer class +# +dn: +changetype: modify +add: schemaUpdateNow +schemaUpdateNow: 1 +- +#=============================================================================== +# New schema classes +#=============================================================================== +# +# ms-TPM-Information-Objects-Container +# GUID: e027a8bd-6456-45de-90a3-38593877ee74 +# +dn: CN=ms-TPM-Information-Objects-Container,CN=Schema,CN=Configuration,DC=X +changetype: add +objectClass: classSchema +ldapDisplayName: msTPM-InformationObjectsContainer +adminDisplayName: TPM-InformationObjectsContainer +adminDescription: Container for TPM objects. +governsID: 1.2.840.113556.1.5.276 +objectClassCategory: 1 +subClassOf: top +systemMustContain: cn +systemPossSuperiors: domain +systemPossSuperiors: domainDNS +schemaIdGUID:: vagn4FZk3kWQozhZOHfudA== +defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;LOLCCCRP;;;DC) +defaultHidingValue: TRUE +defaultObjectCategory: CN=ms-TPM-Information-Objects-Container,CN=Schema,CN=Configuration,DC=X +# +# ms-TPM-Information-Object +# GUID: 85045b6a-47a6-4243-a7cc-6890701f662c +# +# NOTE: If the 'defaultSecurityDescriptor' value below is changed, +# also change the other '.ldf' files in this directory, as appropriate. +# +dn: CN=ms-TPM-Information-Object,CN=Schema,CN=Configuration,DC=X +changetype: add +objectClass: classSchema +ldapDisplayName: msTPM-InformationObject +adminDisplayName: TPM-InformationObject +adminDescription: This class contains recovery information for a Trusted Platform Module (TPM) device. +governsID: 1.2.840.113556.1.5.275 +objectClassCategory: 1 +subClassOf: top +systemMustContain: msTPM-OwnerInformation +systemMayContain: msTPM-SrkPubThumbprint +systemMayContain: msTPM-OwnerInformationTemp +systemPossSuperiors: 1.2.840.113556.1.5.276 +schemaIdGUID:: alsEhaZHQ0KnzGiQcB9mLA== +defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLO;;;DC)(A;;WP;;;CO) +defaultHidingValue: TRUE +defaultObjectCategory: CN=ms-TPM-Information-Object,CN=Schema,CN=Configuration,DC=X +# +# NOTE: If the 'defaultSecurityDescriptor' value above is changed, +# also change the other '.ldf' files in this directory, as appropriate. +# +# +# Commit the new TPM object class +# +dn: +changetype: modify +add: schemaUpdateNow +schemaUpdateNow: 1 +- +#=============================================================================== +# New objects +#=============================================================================== +# +# Add the TPM container to its location in the directory +# +dn: CN=TPM Devices,DC=X +changetype: add +objectClass: msTPM-InformationObjectsContainer +``` + +You should be aware that only the Computer object that has created the TPM object can update it. This means that any subsequent updates to the TPM objects will not succeed in dual boot scenarios or scenarios where the computer is reimaged resulting in a new AD computer object being created. If you are planning to support such scenarios, you will need to update the schema further as shown in the schema extension example, TpmSchemaExtensionACLChanges.ldf. + +### TpmSchemaExtensionACLChanges.ldf + +This schema update modifies the ACLs on the TPM object to be less restrictive so that any subsequent operating system which takes ownership of the computer object can update the owner authorization value in AD DS. +> **Important**  After implementing this schema update, any computer in the domain can update the OwnerAuth of the TPM object (although it cannot read the OwnerAuth). When using this extension, perform a regular backup of the TPM objects and enable auditing to track the changes for these objects. +  +``` syntax +#=============================================================================== +# +# Active Directory Domain Services schema extension for +# BitLocker Drive Encryption and Trusted Platform Module (TPM) recovery +# +# This file modifies a class object that enables Windows Server 2008 +# and Windows Server 2008 R2 domain controllers to store TPM recovery +# information in a new, TPM-specific location. +# +# This file converts the standard schema extension in which only the creator +# of an 'ms-TPM-Information-Object' can write to the object to the Open +# schema extension in which any Domain Computer can write to the object. +# +# This conversion does not apply to any 'ms-TPM-Information-Object' that +# was created before the conversion. +# +# Change History: +# 12/2011 - Created +# +# To change the schema, use the LDIFDE tool on the schema master of the forest. +# +# Sample command: +# ldifde -i -v -f TpmSchemaExtensionACLChanges.ldf +# -c "DC=X" "DC=nttest,dc=microsoft,dc=com" -k -j . +# +# For more information on LDIFDE tool, see +# http://support.microsoft.com/default.aspx?scid=kb;en-us;237677 +# +#=============================================================================== +# +# Modify the TPM-Information-Object class schema 'defaultSecurityDescriptor' to +# allow any Domain Computer to write its properties (including the TPM OwnerAuth +# value) from allowing only the creating Computer object to write its properties +# +# NOTE: Keep any changes to the 'defaultSecurityDescriptor' value in synchronization +# with the value in the TPM-Information-Object class description in the +# 'TpmSchemaExtension.ldf' file +# +dn: CN=ms-TPM-Information-Object,CN=Schema,CN=Configuration,DC=X +changetype: modify +replace: defaultSecurityDescriptor +defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPWPLO;;;DC) +- +# +# Commit the modification to the TPM-Information-Object schema +# +dn: +changetype: modify +add: schemaUpdateNow +schemaUpdateNow: 1 +- +``` +  +  diff --git a/windows/keep-secure/add-apps-to-protected-list-using-custom-uri.md b/windows/keep-secure/add-apps-to-protected-list-using-custom-uri.md index 9176b41ff8..3565476277 100644 --- a/windows/keep-secure/add-apps-to-protected-list-using-custom-uri.md +++ b/windows/keep-secure/add-apps-to-protected-list-using-custom-uri.md @@ -19,8 +19,8 @@ localizationpriority: high You can add apps to your Windows Information Protection (WIP) protected app list using the Microsoft Intune custom URI functionality and AppLocker. For more info about how to create a custom URI using Intune, [Windows 10 custom policy settings in Microsoft Intune](https://go.microsoft.com/fwlink/p/?LinkID=691330). ->[!IMPORTANT] ->Results can be unpredictable if you configure your policy using both the UI and the Custom URI method together. We recommend using a single method for each policy. +>**Important**
    +Results can be unpredictable if you configure your policy using both the UI and the Custom URI method together. We recommend using a single method for each policy. ## Add Store apps 1. Go to the AppLocker UI by opening a command line window and running secpol.msc. The local security policy MMC snap-in opens showing the **Security Settings**. @@ -39,15 +39,13 @@ You can add apps to your Windows Information Protection (WIP) protected app list 5. In the **Rules Preferences** screen, keep the default settings, and then click **Next** to start generating the rules. - >[!NOTE] - >We recommend that you use **Publisher** rules because they only work with apps you've specifically defined and they can be configured to not require updating simply because a new version came out.

    If you can't use **Publisher** rules, we then recommend that you use **File hash** rules. **File hash** rules are a secure alternative that can be used on unsigned code. The primary disadvantage to **File hash** is that every time a binary changes (such as, through servicing updates or upgrades), you'll need to create a new rule. + >**Note**
    We recommend that you use **Publisher** rules because they only work with apps you've specifically defined and they can be configured to not require updating simply because a new version came out.

    If you can't use **Publisher** rules, we then recommend that you use **File hash** rules. **File hash** rules are a secure alternative that can be used on unsigned code. The primary disadvantage to **File hash** is that every time a binary changes (such as, through servicing updates or upgrades), you'll need to create a new rule. 6. In the **Review Rules** screen, look over your rules to make sure they’re right, and then click **Create** to add them to your collection of rules. 7. In the left pane, right-click **AppLocker**, click **Export Policies**, go to where you want to save the XML file and type a file name, click **Save**, and then clear your AppLocker rules. - >[!IMPORTANT] - >Be aware that what you're saving are the actual AppLocker rules using your local policy. You don't want to apply these rules to your employee devices, you just want to use them to create and export the XML content. You must delete the AppLocker rules before you apply your policy. + >**Important**
    Be aware that what you're saving are the actual AppLocker rules using your local policy. You don't want to apply these rules to your employee devices, you just want to use them to create and export the XML content. You must delete the AppLocker rules before you apply your policy. 8. Open the Intune administration console, and go to the **Policy** node, click **Add Policy** from the **Tasks** area, go to **Windows**, click the **Custom Configuration (Windows 10 Desktop and Mobile and later)** policy, click **Create and Deploy a Custom Policy**, and then click **Create Policy**. @@ -87,18 +85,16 @@ After saving the policy, you’ll need to deploy it to your employee’s devices 5. In the **Rules Preferences** screen, keep the default settings, and then click **Next** to start generating the rules. - >[!IMPORTANT] - >You can also use **Path** rules instead of the **File hash** if you have concerns about unsigned files potentially changing the hash value if they're updated in the future. + >**Important**
    You can also use **Path** rules instead of the **File hash** if you have concerns about unsigned files potentially changing the hash value if they're updated in the future. - >[!NOTE] - >We recommend that you use **Publisher** rules because they only work with apps you've specifically defined and they can be configured to not require updating simply because a new version came out.

    If you can't use **Publisher** rules, we then recommend that you use **File hash** rules. **File hash** rules are a secure alternative that can be used on unsigned code. The primary disadvantage to **File hash** is that every time a binary changes (such as, through servicing updates or upgrades), you'll need to create a new rule.

    Finally, there's **Path** rules. **Path** rules are easier to set up and maintain, but can let apps bypass Windows Information Protection (WIP) by simply renaming and moving an unallowed file to match one of the apps on the **Protected App** list. For example, if your **Path** rule says to allow `%PROGRAMFILES%/NOTEPAD.EXE`, it becomes possible to rename DisallowedApp.exe to Notepad.exe, move it into the specified path above, and have it suddenly be allowed. +

    + >**Note**
    We recommend that you use **Publisher** rules because they only work with apps you've specifically defined and they can be configured to not require updating simply because a new version came out.

    If you can't use **Publisher** rules, we then recommend that you use **File hash** rules. **File hash** rules are a secure alternative that can be used on unsigned code. The primary disadvantage to **File hash** is that every time a binary changes (such as, through servicing updates or upgrades), you'll need to create a new rule.

    Finally, there's **Path** rules. **Path** rules are easier to set up and maintain, but can let apps bypass Windows Information Protection (WIP) by simply renaming and moving an unallowed file to match one of the apps on the **Protected App** list. For example, if your **Path** rule says to allow `%PROGRAMFILES%/NOTEPAD.EXE`, it becomes possible to rename DisallowedApp.exe to Notepad.exe, move it into the specified path above, and have it suddenly be allowed. 6. In the **Review Rules** screen, look over your rules to make sure they’re right, and then click **Create** to add them to your collection of rules. 7. In the left pane, right-click **AppLocker**, click **Export Policies**, go to where you want to save the XML file and type a file name, click **Save**, and then clear your AppLocker rules. - >[!IMPORTANT] - >Be aware that what you're saving are the actual AppLocker rules using your local policy. You don't want to apply these rules to your employee devices, you just want to use them to create and export the XML content. You must delete the AppLocker rules before you apply your policy. + >**Important**
    Be aware that what you're saving are the actual AppLocker rules using your local policy. You don't want to apply these rules to your employee devices, you just want to use them to create and export the XML content. You must delete the AppLocker rules before you apply your policy. 8. Open the Intune administration console, and go to the **Policy** node, click **Add Policy** from the **Tasks** area, go to **Windows**, click the **Custom Configuration (Windows 10 Desktop and Mobile and later)** policy, click **Create and Deploy a Custom Policy**, and then click **Create Policy**. @@ -122,10 +118,7 @@ After saving the policy, you’ll need to deploy it to your employee’s devices After saving the policy, you’ll need to deploy it to your employee’s devices. For more info, see the [Deploy your Windows Information Protection (WIP) policy](deploy-wip-policy-using-intune.md) topic. ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). - -## Related topics +##Related topics - [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) - [Deploy your Windows Information Protection (WIP) policy](deploy-wip-policy-using-intune.md) - [Create and deploy a VPN policy for Windows Information Protection (WIP) using Microsoft Intune](create-vpn-and-wip-policy-using-intune.md) diff --git a/windows/keep-secure/allow-log-on-locally.md b/windows/keep-secure/allow-log-on-locally.md index 9e4831a223..3cbeacb088 100644 --- a/windows/keep-secure/allow-log-on-locally.md +++ b/windows/keep-secure/allow-log-on-locally.md @@ -1,5 +1,5 @@ --- -title: Allow log on locally - security policy setting (Windows 10) +title: Allow log on locally (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Allow log on locally security policy setting. ms.assetid: d9e5e1f3-3bff-4da7-a9a2-4bb3e0c79055 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Allow log on locally - security policy setting +# Allow log on locally **Applies to** - Windows 10 diff --git a/windows/keep-secure/app-behavior-with-wip.md b/windows/keep-secure/app-behavior-with-wip.md index bf932d459d..55939649d4 100644 --- a/windows/keep-secure/app-behavior-with-wip.md +++ b/windows/keep-secure/app-behavior-with-wip.md @@ -129,6 +129,3 @@ This table includes info about how enlightened apps might behave, based on your - ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). diff --git a/windows/keep-secure/back-up-files-and-directories.md b/windows/keep-secure/back-up-files-and-directories.md index f338698789..6f6a7b8805 100644 --- a/windows/keep-secure/back-up-files-and-directories.md +++ b/windows/keep-secure/back-up-files-and-directories.md @@ -1,5 +1,5 @@ --- -title: Back up files and directories - security policy setting (Windows 10) +title: Back up files and directories (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Back up files and directories security policy setting. ms.assetid: 1cd6bdd5-1501-41f4-98b9-acf29ac173ae ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Back up files and directories - security policy setting +# Back up files and directories **Applies to** - Windows 10 diff --git a/windows/keep-secure/backup-tpm-recovery-information-to-ad-ds.md b/windows/keep-secure/backup-tpm-recovery-information-to-ad-ds.md index 10963dd930..3f72f93ba5 100644 --- a/windows/keep-secure/backup-tpm-recovery-information-to-ad-ds.md +++ b/windows/keep-secure/backup-tpm-recovery-information-to-ad-ds.md @@ -1,6 +1,6 @@ --- -title: Back up the TPM recovery information to AD DS (Windows 10) -description: This topic for the IT professional describes backup of Trusted Platform Module (TPM) information. +title: Backup the TPM recovery Information to AD DS (Windows 10) +description: This topic for the IT professional describes how to back up a computer’s Trusted Platform Module (TPM) information to Active Directory Domain Services (AD DS) so that you can use AD DS to administer the TPM from a remote computer. ms.assetid: 62bcec80-96a1-464e-8b3f-d177a7565ac5 ms.prod: w10 ms.mktglfcycl: deploy @@ -9,19 +9,556 @@ ms.pagetype: security author: brianlic-msft --- -# Back up the TPM recovery information to AD DS +# Backup the TPM recovery Information to AD DS **Applies to** - Windows 10, version 1511 - Windows 10, version 1507 **Does not apply to** +- Windows 10, version 1607 or later -- Windows 10, version 1607 or later +This topic for the IT professional describes how to back up a computer’s Trusted Platform Module (TPM) information to Active Directory Domain Services (AD DS) so that you can use AD DS to administer the TPM from a remote computer. -With Windows 10, versions 1511 and 1507, you can back up a computer’s Trusted Platform Module (TPM) information to Active Directory Domain Services (AD DS). By doing this, you can use AD DS to administer the TPM from a remote computer. The procedure is the same as it was for Windows 8.1. For more information, see [Backup the TPM Recovery Information to AD DS](https://technet.microsoft.com/library/dn466534(v=ws.11).aspx). +## About administering TPM remotely -## Related topics +Backing up the TPM owner information for a computer allows administrators in a domain to remotely configure the TPM security hardware on the local computer. For example, administrators might want to reset the TPM to the manufacturer’s defaults when they decommission or repurpose computers, without having to be present at the computer. -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) -- [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) \ No newline at end of file +You can use AD DS to store TPM owner information for use in recovery situations where the TPM owner has forgotten the password or where you must take control of the TPM. There is only one TPM owner password per computer; therefore, the hash of the TPM owner password can be stored as an attribute of the computer object in AD DS. The attribute has the common name (CN) of **ms-TPM-OwnerInformation**. + +> **Note:**  The TPM owner authorization value is stored in AD DS, and it is present in a TPM owner password file as a SHA-1 hash of the TPM owner password, which is base 64–encoded. The actual owner password is not stored. +  +Domain controllers running Windows Server 2012 R2 or Windows Server 2012 include the required AD DS schema objects by default. However, if your domain controller is running Windows Server 2008 R2, you need to update the schema as described in [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md). + +This topic contains procedures, some of which are dependent on Visual Basic scripts, to recover TPM information and decommission TPM on remote computers. Sample scripts are available, which you can customize to meet the requirements of your environment. + +In this topic: + +1. [Check status of prerequisites](#bkmk-prereqs) +2. [Set permissions to back up password information](#bkmk-setperms) +3. [Configure Group Policy to back up TPM recovery information in AD DS](#bkmk-configuregp) +4. [Use AD DS to recover TPM information](#bkmk-useit) +5. [Sample scripts](#bkmk-adds-tpm-scripts) + +## Check status of prerequisites + +Before you begin your backup, ensure that the following prerequisites are met: + +1. All domain controllers that are accessible by client computers that will be using TPM services are running Windows Server 2012 R2, Windows Server 2012, or Windows Server 2008 R2 with the updated schema. + + > **Tip:**  For more info about the schema extensions that are required for a TPM backup in Active Directory domains that are running Windows Server 2008 R2, see [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md). +   +2. You have domain administrator rights in the target forest, or you are using an account that has been granted appropriate permissions to extend the schema for the target forest. Members of the Enterprise Admins or Schema Admins groups are examples of accounts that have the appropriate permissions. + +## Set permissions to back up password information + +This procedure uses the sample script [Add-TPMSelfWriteACE.vbs](#bkmk-add-tpmselfwriteace) to add an access control entry (ACE) so that backing up TPM recovery information is possible. A client computer cannot back up TPM owner information until this ACE is added. + +This script is run on the domain controller that you will use to administer the TPM recovery information, and it operates under the following assumptions: + +- You have domain administrator credentials to set permissions for the top-level domain object. +- Your target domain is the same as the domain for the user account that is running the script. For example, running the script as TESTDOMAIN\\admin will extend permissions for TESTDOMAIN. + + > **Note:**  You might need to modify the sample script if you want to set permissions for multiple domains, but you do not have domain administrator accounts for each of those domains. Find the variable **strPathToDomain** in the script, and modify it for your target domain, for example: + `LDAP://DC=testdomain,DC=nttest,DC=microsoft,DC=com` +   +- Your domain is configured so that permissions are inherited from the top-level domain object to targeted computer objects. + + Permissions will not take effect if any container in the hierarchy does not allow inherited permissions. By default, permissions inheritance is set in AD DS. If you are not sure whether your configuration differs from this default, you can continue with the setup steps to set the permissions. + You can then verify your configuration as described later in this topic. Or you can click the **Effective Permissions** button while viewing the properties of a computer object, then check that **Self** is approved to write the **msTPM-OwnerInformation** attribute. + +**To add an ACE to allow TPM recovery information backup** + +1. Open the sample script **Add-TPMSelfWriteACE.vbs**. + + The script contains a permission extension, and you must modify the value of **strPathToDomain** by using your domain name. + +2. Save your modifications to the script. +3. Type the following at a command prompt, and then press ENTER: + + **cscript Add-TPMSelfWriteACE.vbs** + +This script adds a single ACE to the top-level domain object. The ACE is an inheritable permission that allows the computer (SELF) to write to the **ms-TPM-OwnerInformation** attribute for computer objects in the domain. +Complete the following procedure to check that the correct permissions are set and to remove TPM and BitLocker ACEs from the top-level domain, if necessary. + +**Manage ACEs configured on TPM schema objects** + +1. Open the sample script **List-ACEs.vbs**. +2. Modify **List-ACEs.vbs**. + + You must modify: + - Value of **strPathToDomain**: Use your domain name. + - Filter options: The script sets a filter to address BitLocker and TPM schema objects, so you must modify **If IsFilterActive ()** if you want to list or remove other schema objects. + +3. Save your modifications to the script. +4. Type the following at a command prompt, and then press ENTER: + + **cscript List-ACEs.vbs** + + With this script you can optionally remove ACEs from BitLocker and TPM schema objects on the top-level domain. + +## Configure Group Policy to back up TPM recovery information in AD DS + +Use these procedures to configure the [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#bkmk-tpmgp-addsbu) policy setting on a local computer. In a production environment, an efficient way to do this is to create or edit a Group Policy Object (GPO) that can target client computers in the domain. + +**To enable local policy setting to back up TPM recovery information to AD DS** + +1. Sign in to a domain-joined computer by using a domain account that is a member of the local Administrators group. +2. Open the Local Group Policy Editor (gpedit.msc), and in the console tree, navigate to **Computer Configuration\\Administrative Templates\\System**. +3. Click **Trusted Platform Module Services**. +4. Double-click **Turn on TPM backup to Active Directory Domain Services**. +5. Click **Enabled**, and then click **OK**. +> **Important:**  When this setting is enabled, the TPM owner password cannot be set or changed unless the computer is connected to the domain and AD DS backup of the TPM recovery information succeeds. +  +## Use AD DS to recover TPM information + +When you need to recover the TPM owner information from AD DS and use it to manage the TPM, you need to read the **ms-TPM-OwnerInformation** object from AD DS, and then manually create a TPM owner password backup file that can be supplied when TPM owner credentials are required. + +**To obtain TPM owner backup information from AD DS and create a password file** + +1. Sign in to a domain controller by using domain administrator credentials. +2. Copy the sample script file, [Get-TPMOwnerInfo.vbs](#bkmk-get-tpmownerinfo), to a location on your computer. +3. Open a Command Prompt window, and change the default location to the location of the sample script files you saved in the previous step. +4. At the command prompt, type **cscript Get-TPMOwnerInfo.vbs**. + + The expected output is a string that is the hash of the password that you created earlier. + > **Note:**  If you receive the error message, "Active Directory: The directory property cannot be found in the cache," verify that you are using a domain administrator account, which is required to read the **ms-TPM-OwnerInformation** attribute. + + The only exception to this requirement is that if users are the Creator Owner of computer objects that they join to the domain, they can possibly read the TPM owner information for their computer objects. +   +5. Open Notepad or another text editor, and copy the following code sample into the file, and replace *TpmOwnerPasswordHash* with the string that you recorded in the previous step. + + ``` syntax + + + +                 +                 TpmOwnerPasswordHash + + ``` +6. Save this file with a .tpm extension on a removable storage device, such as a USB flash drive. When you access the TPM, and you are required to provide the TPM owner password, choose the option for reading the password from a file and provide the path to this file. + +## Sample scripts + +You can use all or portions of the following sample scripts, which are used in the preceding procedures, to configure AD DS for backing up TPM recovery information. Customization is required depending on how your environment is configured. + +- [Add-TPMSelfWriteACE.vbs: Use to add the access control entry (ACE) for the TPM to AD DS](#bkmk-add-tpmselfwriteace) +- [List-ACEs.vbs: Use to list or remove the ACEs that are configured on BitLocker and TPM schema objects](#bkmk-list-aces) +- [Get-TPMOwnerInfo.vbs: Use to retrieve the TPM recovery information from AD DS for a particular computer](#bkmk-get-tpmownerinfo) + +### Add-TPMSelfWriteACE.vbs + +This script adds the access control entry (ACE) for the TPM to AD DS so that the computer can back up TPM recovery information in AD DS. + +``` syntax +'=============================================================================== +' +' This script demonstrates the addition of an Access Control Entry (ACE) +' to allow computers to write Trusted Platform Module (TPM) +' recovery information to Active Directory. +' +' This script creates a SELF ACE on the top-level domain object, and +' assumes that inheritance of ACL's from the top-level domain object to +' down-level computer objects are enabled. +' +' +' +' Last Updated: 12/05/2012 +' Last Reviewed: 12/05/2012 +' Microsoft Corporation +' +' Disclaimer +' +' The sample scripts are not supported under any Microsoft standard support program +' or service. The sample scripts are provided AS IS without warranty of any kind. +' Microsoft further disclaims all implied warranties including, without limitation, +' any implied warranties of merchantability or of fitness for a particular purpose. +' The entire risk arising out of the use or performance of the sample scripts and +' documentation remains with you. In no event shall Microsoft, its authors, or +' anyone else involved in the creation, production, or delivery of the scripts be +' liable for any damages whatsoever (including, without limitation, damages for loss +' of business profits, business interruption, loss of business information, or +' other pecuniary loss) arising out of the use of or inability to use the sample +' scripts or documentation, even if Microsoft has been advised of the possibility +' of such damages. +' +' Version 1.0.2 - Tested and re-released for Windows 8 and Windows Server 2012 +' +'=============================================================================== +' -------------------------------------------------------------------------------- +' Access Control Entry (ACE) constants +' -------------------------------------------------------------------------------- +'- From the ADS_ACETYPE_ENUM enumeration +Const ADS_ACETYPE_ACCESS_ALLOWED_OBJECT = &H5 'Allows an object to do something +'- From the ADS_ACEFLAG_ENUM enumeration +Const ADS_ACEFLAG_INHERIT_ACE = &H2 'ACE can be inherited to child objects +Const ADS_ACEFLAG_INHERIT_ONLY_ACE = &H8 'ACE does NOT apply to target (parent) object +'- From the ADS_RIGHTS_ENUM enumeration +Const ADS_RIGHT_DS_WRITE_PROP = &H20 'The right to write object properties +Const ADS_RIGHT_DS_CREATE_CHILD = &H1 'The right to create child objects +'- From the ADS_FLAGTYPE_ENUM enumeration +Const ADS_FLAG_OBJECT_TYPE_PRESENT = &H1 'Target object type is present in the ACE +Const ADS_FLAG_INHERITED_OBJECT_TYPE_PRESENT = &H2 'Target inherited object type is present in the ACE +' -------------------------------------------------------------------------------- +' TPM and FVE schema object GUID's +' -------------------------------------------------------------------------------- +'- ms-TPM-OwnerInformation attribute +SCHEMA_GUID_MS_TPM_OWNERINFORMATION = "{AA4E1A6D-550D-4E05-8C35-4AFCB917A9FE}" +'- ms-FVE-RecoveryInformation object +SCHEMA_GUID_MS_FVE_RECOVERYINFORMATION = "{EA715D30-8F53-40D0-BD1E-6109186D782C}" +'- Computer object +SCHEMA_GUID_COMPUTER = "{BF967A86-0DE6-11D0-A285-00AA003049E2}" +'Reference: "Platform SDK: Active Directory Schema" +' -------------------------------------------------------------------------------- +' Set up the ACE to allow write of TPM owner information +' -------------------------------------------------------------------------------- +Set objAce1 = createObject("AccessControlEntry") +objAce1.AceFlags = ADS_ACEFLAG_INHERIT_ACE + ADS_ACEFLAG_INHERIT_ONLY_ACE +objAce1.AceType = ADS_ACETYPE_ACCESS_ALLOWED_OBJECT +objAce1.Flags = ADS_FLAG_OBJECT_TYPE_PRESENT + ADS_FLAG_INHERITED_OBJECT_TYPE_PRESENT +objAce1.Trustee = "SELF" +objAce1.AccessMask = ADS_RIGHT_DS_WRITE_PROP +objAce1.ObjectType = SCHEMA_GUID_MS_TPM_OWNERINFORMATION +objAce1.InheritedObjectType = SCHEMA_GUID_COMPUTER +' -------------------------------------------------------------------------------- +' NOTE: BY default, the "SELF" computer account can create +' BitLocker recovery information objects and write BitLocker recovery properties +' +' No additional ACE's are needed. +' -------------------------------------------------------------------------------- +' -------------------------------------------------------------------------------- +' Connect to Discretional ACL (DACL) for domain object +' -------------------------------------------------------------------------------- +Set objRootLDAP = GetObject("LDAP://rootDSE") +strPathToDomain = "LDAP://" & objRootLDAP.Get("defaultNamingContext") ' e.g. string dc=fabrikam,dc=com +Set objDomain = GetObject(strPathToDomain) +WScript.Echo "Accessing object: " + objDomain.Get("distinguishedName") +Set objDescriptor = objDomain.Get("ntSecurityDescriptor") +Set objDacl = objDescriptor.DiscretionaryAcl + +' -------------------------------------------------------------------------------- +' Add the ACEs to the Discretionary ACL (DACL) and set the DACL +' -------------------------------------------------------------------------------- +objDacl.AddAce objAce1 +objDescriptor.DiscretionaryAcl = objDacl +objDomain.Put "ntSecurityDescriptor", Array(objDescriptor) +objDomain.SetInfo +WScript.Echo "SUCCESS!" +``` + +### List-ACEs.vbs + +This script lists or removes the ACEs that are configured on BitLocker and TPM schema objects for the top-level domain. This enables you to verify that the expected ACEs have been added appropriately or to remove any ACEs that are related to BitLocker or the TPM, if necessary. + +``` syntax +'=============================================================================== +' +' This script lists the access control entries (ACE's) configured on +' Trusted Platform Module (TPM) and BitLocker Drive Encryption (BDE) schema objects +' for the top-level domain. +' +' You can use this script to check that the correct permissions have been set and +' to remove TPM and BitLocker ACE's from the top-level domain. +' +' +' Last Updated: 12/05/2012 +' Last Reviewed: 12/02/2012 +' +' Microsoft Corporation +' +' Disclaimer +' +' The sample scripts are not supported under any Microsoft standard support program +' or service. The sample scripts are provided AS IS without warranty of any kind. +' Microsoft further disclaims all implied warranties including, without limitation, +' any implied warranties of merchantability or of fitness for a particular purpose. +' The entire risk arising out of the use or performance of the sample scripts and +' documentation remains with you. In no event shall Microsoft, its authors, or +' anyone else involved in the creation, production, or delivery of the scripts be +' liable for any damages whatsoever (including, without limitation, damages for loss +' of business profits, business interruption, loss of business information, or +' other pecuniary loss) arising out of the use of or inability to use the sample +' scripts or documentation, even if Microsoft has been advised of the possibility +' of such damages. +' +' Version 1.0.2 - Tested and re-released for Windows 8 and Windows Server 2012 +' +'=============================================================================== +' -------------------------------------------------------------------------------- +' Usage +' -------------------------------------------------------------------------------- +Sub ShowUsage + Wscript.Echo "USAGE: List-ACEs" + Wscript.Echo "List access permissions for BitLocker and TPM schema objects" + Wscript.Echo "" + Wscript.Echo "USAGE: List-ACEs -remove" + Wscript.Echo "Removes access permissions for BitLocker and TPM schema objects" + WScript.Quit +End Sub +' -------------------------------------------------------------------------------- +' Parse Arguments +' -------------------------------------------------------------------------------- +Set args = WScript.Arguments +Select Case args.Count + + Case 0 + ' do nothing - checks for ACE's + removeACE = False + + Case 1 + If args(0) = "/?" Or args(0) = "-?" Then + ShowUsage + Else + If UCase(args(0)) = "-REMOVE" Then + removeACE = True + End If + End If + Case Else + ShowUsage +End Select +' -------------------------------------------------------------------------------- +' Configuration of the filter to show/remove only ACE's for BDE and TPM objects +' -------------------------------------------------------------------------------- +'- ms-TPM-OwnerInformation attribute +SCHEMA_GUID_MS_TPM_OWNERINFORMATION = "{AA4E1A6D-550D-4E05-8C35-4AFCB917A9FE}" +'- ms-FVE-RecoveryInformation object +SCHEMA_GUID_MS_FVE_RECOVERYINFORMATION = "{EA715D30-8F53-40D0-BD1E-6109186D782C}" +' Use this filter to list/remove only ACEs related to TPM and BitLocker +aceGuidFilter = Array(SCHEMA_GUID_MS_TPM_OWNERINFORMATION, _ + SCHEMA_GUID_MS_FVE_RECOVERYINFORMATION) +' Note to script source reader: +' Uncomment the following line to turn off the filter and list all ACEs +'aceGuidFilter = Array() +' -------------------------------------------------------------------------------- +' Helper functions related to the list filter for listing or removing ACE's +' -------------------------------------------------------------------------------- +Function IsFilterActive() + If Join(aceGuidFilter) = "" Then + IsFilterActive = False + Else + IsFilterActive = True + End If +End Function +Function isAceWithinFilter(ace) + aceWithinFilter = False ' assume first not pass the filter + For Each guid In aceGuidFilter + If ace.ObjectType = guid Or ace.InheritedObjectType = guid Then + isAceWithinFilter = True + End If + Next +End Function +Sub displayFilter + For Each guid In aceGuidFilter + WScript.echo guid + Next +End Sub +' -------------------------------------------------------------------------------- +' Connect to Discretional ACL (DACL) for domain object +' -------------------------------------------------------------------------------- +Set objRootLDAP = GetObject("LDAP://rootDSE") +strPathToDomain = "LDAP://" & objRootLDAP.Get("defaultNamingContext") ' e.g. dc=fabrikam,dc=com +Set domain = GetObject(strPathToDomain) +WScript.Echo "Accessing object: " + domain.Get("distinguishedName") +WScript.Echo "" +Set descriptor = domain.Get("ntSecurityDescriptor") +Set dacl = descriptor.DiscretionaryAcl +' -------------------------------------------------------------------------------- +' Show Access Control Entries (ACE's) +' -------------------------------------------------------------------------------- +' Loop through the existing ACEs, including all ACEs if the filter is not active +i = 1 ' global index +c = 0 ' found count - relevant if filter is active +For Each ace In dacl + If IsFilterActive() = False or isAceWithinFilter(ace) = True Then + ' note to script source reader: + ' echo i to show the index of the ACE + + WScript.echo "> AceFlags: " & ace.AceFlags + WScript.echo "> AceType: " & ace.AceType + WScript.echo "> Flags: " & ace.Flags + WScript.echo "> AccessMask: " & ace.AccessMask + WScript.echo "> ObjectType: " & ace.ObjectType + WScript.echo "> InheritedObjectType: " & ace.InheritedObjectType + WScript.echo "> Trustee: " & ace.Trustee + WScript.echo "" + if IsFilterActive() = True Then + c = c + 1 + ' optionally include this ACE in removal list if configured + ' note that the filter being active is a requirement since we don't + ' want to accidentally remove all ACEs + If removeACE = True Then + dacl.RemoveAce ace + End If + end if + End If + i = i + 1 +Next +' Display number of ACEs found +If IsFilterActive() = True Then + WScript.echo c & " ACE(s) found in " & domain.Get("distinguishedName") _ + & " related to BitLocker and TPM" 'note to script source reader: change this line if you configure your own +filter + ' note to script source reader: + ' uncomment the following lines if you configure your own filter + 'WScript.echo "" + 'WScript.echo "The following filter was active: " + 'displayFilter + 'Wscript.echo "" +Else + i = i - 1 + WScript.echo i & " total ACE(s) found in " & domain.Get("distinguishedName") + +End If +' -------------------------------------------------------------------------------- +' Optionally remove ACE's on a filtered list +' -------------------------------------------------------------------------------- +if removeACE = True and IsFilterActive() = True then + descriptor.DiscretionaryAcl = dacl + domain.Put "ntSecurityDescriptor", Array(descriptor) + domain.setInfo + WScript.echo c & " ACE(s) removed from " & domain.Get("distinguishedName") +else + if removeACE = True then + WScript.echo "You must specify a filter to remove ACEs from " & domain.Get("distinguishedName") + + end if +end if +``` + +### Get-TPMOwnerInfo.vbs + +This script retrieves TPM recovery information from AD DS for a particular computer so that you can verify that only domain administrators (or delegated roles) can read backed up TPM recovery information and verify that the information is being backed up correctly. + +``` syntax +'================================================================================= +' +' This script demonstrates the retrieval of Trusted Platform Module (TPM) +' recovery information from Active Directory for a particular computer. +' +' It returns the TPM owner information stored as an attribute of a +' computer object. +' +' Last Updated: 12/05/2012 +' Last Reviewed: 12/05/2012 +' +' Microsoft Corporation +' +' Disclaimer +' +' The sample scripts are not supported under any Microsoft standard support program +' or service. The sample scripts are provided AS IS without warranty of any kind. +' Microsoft further disclaims all implied warranties including, without limitation, +' any implied warranties of merchantability or of fitness for a particular purpose. +' The entire risk arising out of the use or performance of the sample scripts and +' documentation remains with you. In no event shall Microsoft, its authors, or +' anyone else involved in the creation, production, or delivery of the scripts be +' liable for any damages whatsoever (including, without limitation, damages for loss +' of business profits, business interruption, loss of business information, or +' other pecuniary loss) arising out of the use of or inability to use the sample +' scripts or documentation, even if Microsoft has been advised of the possibility +' of such damages. +' +' Version 1.0 - Initial release +' Version 1.1 - Updated GetStrPathToComputer to search the global catalog. +' Version 1.1.2 - Tested and re-released for Windows 8 and Windows Server 2012 +' +'================================================================================= +' -------------------------------------------------------------------------------- +' Usage +' -------------------------------------------------------------------------------- +Sub ShowUsage + Wscript.Echo "USAGE: Get-TpmOwnerInfo [Optional Computer Name]" + Wscript.Echo "If no computer name is specified, the local computer is assumed." + WScript.Quit +End Sub +' -------------------------------------------------------------------------------- +' Parse Arguments +' -------------------------------------------------------------------------------- +Set args = WScript.Arguments +Select Case args.Count + + Case 0 + ' Get the name of the local computer + Set objNetwork = CreateObject("WScript.Network") + strComputerName = objNetwork.ComputerName + + Case 1 + If args(0) = "/?" Or args(0) = "-?" Then + ShowUsage + Else + strComputerName = args(0) + End If + + Case Else + ShowUsage +End Select +' -------------------------------------------------------------------------------- +' Get path to Active Directory computer object associated with the computer name +' -------------------------------------------------------------------------------- +Function GetStrPathToComputer(strComputerName) + ' Uses the global catalog to find the computer in the forest + ' Search also includes deleted computers in the tombstone + Set objRootLDAP = GetObject("LDAP://rootDSE") + namingContext = objRootLDAP.Get("defaultNamingContext") ' e.g. string dc=fabrikam,dc=com + strBase = "" + + Set objConnection = CreateObject("ADODB.Connection") + Set objCommand = CreateObject("ADODB.Command") + objConnection.Provider = "ADsDSOOBject" + objConnection.Open "Active Directory Provider" + Set objCommand.ActiveConnection = objConnection + strFilter = "(&(objectCategory=Computer)(cn=" & strComputerName & "))" + strQuery = strBase & ";" & strFilter & ";distinguishedName;subtree" + objCommand.CommandText = strQuery + objCommand.Properties("Page Size") = 100 + objCommand.Properties("Timeout") = 100 + objCommand.Properties("Cache Results") = False + ' Enumerate all objects found. + Set objRecordSet = objCommand.Execute + If objRecordSet.EOF Then + WScript.echo "The computer name '" & strComputerName & "' cannot be found." + WScript.Quit 1 + End If + ' Found object matching name + Do Until objRecordSet.EOF + dnFound = objRecordSet.Fields("distinguishedName") + GetStrPathToComputer = "LDAP://" & dnFound + objRecordSet.MoveNext + Loop + ' Clean up. + Set objConnection = Nothing + Set objCommand = Nothing + Set objRecordSet = Nothing +End Function +' -------------------------------------------------------------------------------- +' Securely access the Active Directory computer object using Kerberos +' -------------------------------------------------------------------------------- +Set objDSO = GetObject("LDAP:") +strPath = GetStrPathToComputer(strComputerName) +WScript.Echo "Accessing object: " + strPath +Const ADS_SECURE_AUTHENTICATION = 1 +Const ADS_USE_SEALING = 64 '0x40 +Const ADS_USE_SIGNING = 128 '0x80 +Set objComputer = objDSO.OpenDSObject(strPath, vbNullString, vbNullString, _ + ADS_SECURE_AUTHENTICATION + ADS_USE_SEALING + ADS_USE_SIGNING) +' -------------------------------------------------------------------------------- +' Get the TPM owner information from the Active Directory computer object +' -------------------------------------------------------------------------------- +strOwnerInformation = objComputer.Get("msTPM-OwnerInformation") +WScript.echo "msTPM-OwnerInformation: " + strOwnerInformation +``` + +## Additional resources + +- [Trusted Platform Module technology overview](trusted-platform-module-overview.md) +- [TPM fundamentals](tpm-fundamentals.md) +- [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) +- [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) +- [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md) +- [Prepare your organization for BitLocker: Planning and Policies](http://technet.microsoft.com/library/jj592683.aspx), see TPM considerations diff --git a/windows/keep-secure/basic-audit-logon-events.md b/windows/keep-secure/basic-audit-logon-events.md index dd0764f2b5..143c150317 100644 --- a/windows/keep-secure/basic-audit-logon-events.md +++ b/windows/keep-secure/basic-audit-logon-events.md @@ -22,8 +22,6 @@ If you define this policy setting, you can specify whether to audit successes, a To set this value to **No auditing**, in the **Properties** dialog box for this policy setting, select the **Define these policy settings** check box and clear the **Success** and **Failure** check boxes. -For information about advanced security policy settings for logon events, see the [Logon/logoff](advanced-security-audit-policy-settings.md#logonlogoff) section in [Advanced security audit policy settings](advanced-security-audit-policy-settings.md). - ## Configure this audit setting You can configure this security setting by opening the appropriate policy under Computer Configuration\\Windows Settings\\Security Settings\\Local Policies\\Audit Policy. diff --git a/windows/keep-secure/bitlocker-basic-deployment.md b/windows/keep-secure/bitlocker-basic-deployment.md index fbc016705b..b83692c713 100644 --- a/windows/keep-secure/bitlocker-basic-deployment.md +++ b/windows/keep-secure/bitlocker-basic-deployment.md @@ -40,7 +40,7 @@ BitLocker encryption can be done using the following methods: ### Encrypting volumes using the BitLocker control panel -Encrypting volumes with the BitLocker control panel (click **Start**, type **bitlocker**, click **Manage BitLocker**) is how many users will utilize BitLocker. The name of the BitLocker control panel is BitLocker Drive Encryption. The BitLocker control panel supports encrypting operating system, fixed data and removable data volumes. The BitLocker control panel will organize available drives in the appropriate category based on how the device reports itself to Windows. Only formatted volumes with assigned drive letters will appear properly in the BitLocker control panel applet. +Encrypting volumes with the BitLocker control panel is how many users will utilize BitLocker. The name of the BitLocker control panel is BitLocker Drive Encryption. The BitLocker control panel supports encrypting operating system, fixed data and removable data volumes. The BitLocker control panel will organize available drives in the appropriate category based on how the device reports itself to Windows. Only formatted volumes with assigned drive letters will appear properly in the BitLocker control panel applet. To start encryption for a volume, select **Turn on BitLocker** for the appropriate drive to initialize the BitLocker Drive Encryption Wizard. BitLocker Drive Encryption Wizard options vary based on volume type (operating system volume or data volume). ### Operating system volume diff --git a/windows/keep-secure/bitlocker-countermeasures.md b/windows/keep-secure/bitlocker-countermeasures.md index 89261d666c..7e1f6c7414 100644 --- a/windows/keep-secure/bitlocker-countermeasures.md +++ b/windows/keep-secure/bitlocker-countermeasures.md @@ -23,9 +23,9 @@ The sections that follow provide more detailed information about the different t ### Protection before startup -Before Windows starts, you must rely on security features implemented as part of the device hardware, including TPM and Secure Boot. Fortunately, many modern computers feature TPM. +Before Windows starts, you must rely on security features implemented as part of the device hardware, including TPM andSecure Boot. Fortunately, many modern computers feature TPM. -#### Trusted Platform Module +**Trusted Platform Module** Software alone isn’t sufficient to protect a system. After an attacker has compromised software, the software might be unable to detect the compromise. Therefore, a single successful software compromise results in an untrusted system that might never be detected. Hardware, however, is much more difficult to modify. @@ -33,7 +33,7 @@ A TPM is a microchip designed to provide basic security-related functions, prima By binding the BitLocker encryption key with the TPM and properly configuring the device, it’s nearly impossible for an attacker to gain access to the BitLocker-encrypted data without obtaining an authorized user’s credentials. Therefore, computers with a TPM can provide a high level of protection against attacks that attempt to directly retrieve the BitLocker encryption key. For more info about TPM, see [Trusted Platform Module](trusted-platform-module-overview.md). -#### UEFI and Secure Boot +**UEFI and Secure Boot** No operating system can protect a device when the operating system is offline. For that reason, Microsoft worked closely with hardware vendors to require firmware-level protection against boot and rootkits that might compromise an encryption solution’s encryption keys. @@ -53,7 +53,7 @@ Using the digital signature, UEFI verifies that the bootloader was signed using If the bootloader passes these two tests, UEFI knows that the bootloader isn’t a bootkit and starts it. At this point, Trusted Boot takes over, and the Windows bootloader, using the same cryptographic technologies that UEFI used to verify the bootloader, then verifies that the Windows system files haven’t been changed. -Starting with Windows 8, certified devices must meet several requirements related to UEFI-based Secure Boot: +All Windows 8–certified devices must meet several requirements related to UEFI-based Secure Boot: - They must have Secure Boot enabled by default. - They must trust Microsoft’s certificate (and thus any bootloader Microsoft has signed). diff --git a/windows/keep-secure/bitlocker-frequently-asked-questions.md b/windows/keep-secure/bitlocker-frequently-asked-questions.md index 5761c7318a..6e3ae93c32 100644 --- a/windows/keep-secure/bitlocker-frequently-asked-questions.md +++ b/windows/keep-secure/bitlocker-frequently-asked-questions.md @@ -47,8 +47,6 @@ Yes, BitLocker supports multifactor authentication for operating system drives. ### What are the BitLocker hardware and software requirements? -For requirements, see [System requirements](https://technet.microsoft.com/itpro/windows/keep-secure/bitlocker-overview#system-requirements). - > **Note:**  Dynamic disks are not supported by BitLocker. Dynamic data volumes will not be displayed in the Control Panel. Although the operating system volume will always be displayed in the Control Panel, regardless of whether it is a Dynamic disk, if it is a dynamic disk it is cannot be protected by BitLocker.   ### Why are two partitions required? Why does the system drive have to be so large? @@ -200,9 +198,9 @@ Any number of internal, fixed data drives can be protected with BitLocker. On so ## Key management -### What is the difference between a recovery password, recovery key, PIN, enhanced PIN, and startup key? +### What is the difference between a TPM owner password, recovery password, recovery key, password, PIN, enhanced PIN, and startup key? -For tables that list and describe elements such as a recovery password, recovery key, and PIN, see [BitLocker key protectors](prepare-your-organization-for-bitlocker-planning-and-policies.md#bitlocker-key-protectors) and [BitLocker authentication methods](prepare-your-organization-for-bitlocker-planning-and-policies.md#bitlocker-authentication-methods). +There are multiple keys that can be generated and used by BitLocker. Some keys are required and some are optional protectors you can choose to use depending on the level of security you require. ### How can the recovery password and recovery key be stored? diff --git a/windows/keep-secure/bitlocker-group-policy-settings.md b/windows/keep-secure/bitlocker-group-policy-settings.md index 26cadf522b..8d3864a681 100644 --- a/windows/keep-secure/bitlocker-group-policy-settings.md +++ b/windows/keep-secure/bitlocker-group-policy-settings.md @@ -1509,6 +1509,7 @@ If the **Require BitLocker backup to AD DS** option is not selected, AD DS bac TPM initialization might be needed during the BitLocker setup. Enable the **Turn on TPM backup to Active Directory Domain Services** policy setting in **Computer Configuration\\Administrative Templates\\System\\Trusted Platform Module Services** to ensure that TPM information is also backed up. For more information about this setting, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md). +If you are using domain controllers running Windows Server 2003 with Service Pack 1, you must first set up appropriate schema extensions and access control settings on the domain before a backup to AD DS can succeed. For more info, see [Backup the TPM recovery Information to AD DS](backup-tpm-recovery-information-to-ad-ds.md). ### Choose default folder for recovery password diff --git a/windows/keep-secure/bitlocker-how-to-deploy-on-windows-server.md b/windows/keep-secure/bitlocker-how-to-deploy-on-windows-server.md index 8a9e7b2ab7..e57e269aff 100644 --- a/windows/keep-secure/bitlocker-how-to-deploy-on-windows-server.md +++ b/windows/keep-secure/bitlocker-how-to-deploy-on-windows-server.md @@ -14,7 +14,7 @@ author: brianlic-msft **Applies to** - Windows 10 -This topic for the IT professional explains how to deploy BitLocker on Windows Server 2012 and later. +This topic for the IT professional explains how to deploy BitLocker and Windows Server 2012 and later. For all Windows Server editions, BitLocker must be installed using Server Manager. However, you can still provision BitLocker before the server operating system is installed as part of your deployment. diff --git a/windows/keep-secure/bitlocker-how-to-enable-network-unlock.md b/windows/keep-secure/bitlocker-how-to-enable-network-unlock.md index 337c4d39e8..0155f5ed15 100644 --- a/windows/keep-secure/bitlocker-how-to-enable-network-unlock.md +++ b/windows/keep-secure/bitlocker-how-to-enable-network-unlock.md @@ -231,7 +231,7 @@ The following steps detail how to create a certificate template for use with Bit 1. Open the Certificates Template snap-in (certtmpl.msc). 2. Locate the User template. Right-click the template name and select **Duplicate Template**. -3. On the **Compatibility** tab, change the **Certification Authority** and **Certificate recipient** fields to Windows Server 2012 and Windows 8 respectively. Ensure the **Show resulting changes** dialog box is selected. +3. On the **Compatibility** tab, change the **Certification Authority** and **Certificate recipient** fields to Windows Server 2012 and Windows 8respectively. Ensure the **Show resulting changes** dialog box is selected. 4. Select the **General** tab of the template. The **Template display name** and **Template name** should clearly identify that the template will be used for Network Unlock. Clear the checkbox for the **Publish certificate in Active Directory** option. 5. Select the **Request Handling** tab. Select **Encryption** from the **Purpose** drop down menu. Ensure the **Allow private key to be exported** option is selected. 6. Select the **Cryptography** tab. Set the **Minimum key size** to 2048. (Any Microsoft cryptographic provider that supports RSA can be used for this template, but for simplicity and forward compatibility we recommend using the **Microsoft Software Key Storage Provider**.) diff --git a/windows/keep-secure/bitlocker-overview.md b/windows/keep-secure/bitlocker-overview.md index 2ffb869b8f..2921e55f01 100644 --- a/windows/keep-secure/bitlocker-overview.md +++ b/windows/keep-secure/bitlocker-overview.md @@ -42,7 +42,7 @@ BitLocker control panel, and they are appropriate to use for automated deploymen ## New and changed functionality -To find out what's new in BitLocker for Windows 10, see the [BitLocker](https://technet.microsoft.com/itpro/windows/whats-new/whats-new-windows-10-version-1507-and-1511#bitlocker) section in "What's new in Windows 10, versions 1507 and 1511." +To find out what's new in BitLocker for Windows 10, see [What's new in BitLocker?](../whats-new/bitlocker.md)   ## System requirements @@ -74,10 +74,9 @@ When installing the BitLocker optional component on a server you will also need | [BitLocker: How to enable Network Unlock](bitlocker-how-to-enable-network-unlock.md) | This topic for the IT professional describes how BitLocker Network Unlock works and how to configure it. | | [BitLocker: Use BitLocker Drive Encryption Tools to manage BitLocker](bitlocker-use-bitlocker-drive-encryption-tools-to-manage-bitlocker.md)| This topic for the IT professional describes how to use tools to manage BitLocker.| | [BitLocker: Use BitLocker Recovery Password Viewer](bitlocker-use-bitlocker-recovery-password-viewer.md) | This topic for the IT professional describes how to use the BitLocker Recovery Password Viewer. | -| [BitLocker Group Policy settings](bitlocker-group-policy-settings.md) | This topic for IT professionals describes the function, location, and effect of each Group Policy setting that is used to manage BitLocker. | | [BCD settings and BitLocker](bcd-settings-and-bitlocker.md) | This topic for IT professionals describes the BCD settings that are used by BitLocker.| | [BitLocker Recovery Guide](bitlocker-recovery-guide-plan.md)| This topic for IT professionals describes how to recover BitLocker keys from AD DS. | | [Protect BitLocker from pre-boot attacks](protect-bitlocker-from-pre-boot-attacks.md)| This detailed guide will help you understand the circumstances under which the use of pre-boot authentication is recommended for devices running Windows 10, Windows 8.1, Windows 8, or Windows 7; and when it can be safely omitted from a device’s configuration. | | [Protecting cluster shared volumes and storage area networks with BitLocker](protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md)| This topic for IT pros describes how to protect CSVs and SANs with BitLocker.| -If you're looking for info on how to use it with Windows 10 IoT Core, see [Enabling Secure Boot and BitLocker Device Encryption on Windows 10 IoT Core](https://developer.microsoft.com/windows/iot/docs/securebootandbitlocker). \ No newline at end of file +If you're looking for info on how to use it with Windows 10 IoT Core, see [Enabling Secure Boot and BitLocker Device Encryption on Windows 10 IoT Core](https://developer.microsoft.com/windows/iot/win10/SB_BL.htm). \ No newline at end of file diff --git a/windows/keep-secure/change-history-for-keep-windows-10-secure.md b/windows/keep-secure/change-history-for-keep-windows-10-secure.md index e5a7805ddf..759d44b4af 100644 --- a/windows/keep-secure/change-history-for-keep-windows-10-secure.md +++ b/windows/keep-secure/change-history-for-keep-windows-10-secure.md @@ -12,20 +12,6 @@ author: brianlic-msft # Change history for Keep Windows 10 secure This topic lists new and updated topics in the [Keep Windows 10 secure](index.md) documentation for [Windows 10 and Windows 10 Mobile](../index.md). -## January 2017 -|New or changed topic |Description | -|---------------------|------------| -|[Determine the Enterprise Context of an app running in Windows Information Protection (WIP)](wip-app-enterprise-context.md) |New | -|[Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) |Updated to include info about USB drives and Azure RMS (Windows Insider Program only) and to add more info about Work Folders and Offline files. | -|[Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP)](recommended-network-definitions-for-wip.md) |New | -|[Using Outlook Web Access with Windows Information Protection (WIP)](using-owa-with-wip.md) |New | - -## December 2016 -|New or changed topic |Description | -|---------------------|------------| -|[Create WMI Filters for the GPO](create-wmi-filters-for-the-gpo.md) |Added filter examples for Windows 10 and Windows Server 2016. | - - ## November 2016 | New or changed topic | Description | | --- | --- | diff --git a/windows/keep-secure/change-the-system-time.md b/windows/keep-secure/change-the-system-time.md index 0ca13c1625..e6f43e3f88 100644 --- a/windows/keep-secure/change-the-system-time.md +++ b/windows/keep-secure/change-the-system-time.md @@ -1,5 +1,5 @@ --- -title: Change the system time - security policy setting (Windows 10) +title: Change the system time (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Change the system time security policy setting. ms.assetid: f2f6637d-acbc-4352-8ca3-ec563f918e65 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Change the system time - security policy setting +# Change the system time **Applies to** - Windows 10 diff --git a/windows/keep-secure/change-the-time-zone.md b/windows/keep-secure/change-the-time-zone.md index 50067366d5..3eb72473a5 100644 --- a/windows/keep-secure/change-the-time-zone.md +++ b/windows/keep-secure/change-the-time-zone.md @@ -1,5 +1,5 @@ --- -title: Change the time zone - security policy setting (Windows 10) +title: Change the time zone (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Change the time zone security policy setting. ms.assetid: 3b1afae4-68bb-472f-a43e-49e300d73e50 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Change the time zone - security policy setting +# Change the time zone **Applies to** - Windows 10 diff --git a/windows/keep-secure/change-the-tpm-owner-password.md b/windows/keep-secure/change-the-tpm-owner-password.md index a8b0e386d3..50d9175eb2 100644 --- a/windows/keep-secure/change-the-tpm-owner-password.md +++ b/windows/keep-secure/change-the-tpm-owner-password.md @@ -12,35 +12,52 @@ author: brianlic-msft # Change the TPM owner password **Applies to** -- Windows 10, version 1511 -- Windows 10, version 1507 +- Windows 10 This topic for the IT professional describes how to change the password or PIN for the owner of the Trusted Platform Module (TPM) that is installed on your system. ## About the TPM owner password +Starting with Windows 10, version 1607 , Windows will not retain the TPM owner password when provisioning the TPM. The password will be set to a random high entropy value and then discarded. -Starting with Windows 10, version 1607, Windows will not retain the TPM owner password when provisioning the TPM. The password will be set to a random high entropy value and then discarded. +In order to retain the TPM owner password, you will need to set the registry key 'HKLM\Software\Policies\Microsoft\TPM' [REG_DWORD] 'OSManagedAuthLevel' to 4. The default value for this key is 2, and unless it is changed to 4 before the TPM is provisioned, the owner password will not be saved. Microsoft strongly recommends that you do not change the default value of this registry key in order to retain the owner password. -> [!IMPORTANT] -> Although the TPM owner password is not retained starting with Windows 10, version 1607, you can change a default registry key to retain it. However, we strongly recommend that you do not make this change. To retain the TPM owner password, set the registry key 'HKLM\\Software\\Policies\\Microsoft\\TPM' \[REG\_DWORD\] 'OSManagedAuthLevel' to 4. The default value for this key is 2, and unless it is changed to 4 before the TPM is provisioned, the owner password will not be saved. - -Only one owner password exists for each TPM. The TPM owner password allows the ability to enable, disable, or clear the TPM without having physical access to the computer, for example, by using the command-line tools remotely. The TPM owner password also allows manipulation of the TPM dictionary attack logic. Taking ownership of the TPM is performed by Windows as part of the provisioning process on each boot. Ownership can change when you share the password or clear your ownership of the TPM so someone else can initialize it. +Only one owner password exists for each TPM. The TPM owner password allows the ability to enable, disable, or clear the TPM without having physical access to the computer, for example, by using the command-line tools remotely. The TPM owner password also allows manipulation of the TPM dictionary attack logic. Taking ownership of the TPM is performed by Windows as part of the provisioning process on each boot. Ownership can change when you share the password or clear your ownership of the TPM so someone else can initialize it. Without the owner password you can still perform all the preceding actions by means of a physical presence confirmation from UEFI. -### Other TPM management options +**Other TPM management options** Instead of changing your owner password, you can also use the following options to manage your TPM: -- **Clear the TPM**   If you want to invalidate all of the existing keys that have been created since you took ownership of the TPM, you can clear it. For important precautions for this process, and instructions for completing it, see [Clear all the keys from the TPM](initialize-and-configure-ownership-of-the-tpm.md#clear-all-the-keys-from-the-tpm). +- **Clear the TPM**   If you want to invalidate all of the existing keys that have been created since you took ownership of the TPM, you can clear it. For more info, see [Initialize and Configure Ownership of the TPM](initialize-and-configure-ownership-of-the-tpm.md#bkmk-clear1). -- **Turn off the TPM**   With TPM 1.2 and Windows 10, versions 1507 and 1511, you can turn off the TPM. Do this if you want to keep all existing keys and data intact and disable the services that are provided by the TPM. For more info, see [Turn off the TPM](initialize-and-configure-ownership-of-the-tpm.md#turn-off-the-tpm). + >**Important:**  Clearing the TPM can result in the loss of data. To avoid data loss, make sure you have a backup or recovery method for any data protected or encrypted by the TPM. +   +- **Turn off the TPM**   If you want to keep all existing keys and data intact, and you want to disable the services that are provided by the TPM, you can turn it off. For more info, see [Initialize and Configure Ownership of the TPM](initialize-and-configure-ownership-of-the-tpm.md#bkmk-onoff). This option is only available for TPM 1.2. ## Change the TPM owner password -With Windows 10, version 1507 or 1511, if you have opted specifically to preserve the TPM owner password, you can use the saved password to change to a new password. +The following procedure provides the steps that are necessary to change the TPM owner password. -To change to a new TPM owner password, in TPM.msc, click **Change Owner Password**, and follow the instructions. You will be prompted to provide the owner password file or to type the password. Then you can create a new password, either automatically or manually, and save the password in a file or as a printout. +**To change the TPM owner password** + +If you have opted specifically to preserve the TPM owner password, you can use the saved password to change to a new password. + +1. Open the TPM MMC (tpm.msc). If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. +2. In the **Actions** pane, click **Change Owner Password**. +3. In the **Manage the TPM security hardware** dialog box, select a method to enter your current TPM owner password. + + - If you saved your TPM owner password on a removable storage device, insert it, and then click **I have the owner password file**. In the **Select backup file with the TPM owner password** dialog box, use **Browse** to navigate to the .tpm file that is saved on your removable storage device. Click **Open**, and then click **Create New Password**. + - If you do not have the removable storage device with your saved password, click **I want to enter the owner password**. In the **Type your TPM owner password** dialog box, enter your password (including hyphens), and click **Create New Password**. +4. On the **Create the TPM owner password** page, select a method for creating a new TPM owner password. + + 1. Click **Automatically create the password** to have a new owner password generated for you. + 2. Click **Manually create the password** if you want to specify a password. + >**Note:**  The TPM owner password must have a minimum of eight characters. +   +5. After the new password is created, you can choose **Save the password** to save the password in a password backup file on a removable storage device or **Print the password** to print a copy of the password for later reference. + +6. Click **Change password** to apply the new owner password to the TPM. ## Use the TPM cmdlets @@ -49,6 +66,6 @@ If you are using Windows PowerShell to manage your computers, you can also manag For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). -## Related topics +## Additional resources -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) +For more info about TPM, see [Trusted Platform Module technology overview](trusted-platform-module-overview.md#bkmk-additionalresources). diff --git a/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md b/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md index 241eadd7f7..402c01f733 100644 --- a/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md +++ b/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md @@ -17,105 +17,19 @@ author: brianlic-msft This section outlines the best countermeasures you can use to protect your organization from bootkits and rootkits, brute force sign-in, Direct Memory Access (DMA) attacks, Hyberfil.sys attacks, and memory remanence attacks. You can use BitLocker to protect your Windows 10 PCs. Whichever operating system you’re using, Microsoft and Windows-certified devices provide countermeasures to address attacks and improve your data security. In most cases, this protection can be implemented without the need for pre-boot authentication. -Tables 1 and 2 summarize the recommended mitigations for different types of attacks against PCs running recent versions of Windows. The orange blocks indicate that the system requires additional configuration from the default settings. +Figures 2, 3, and 4 summarize the recommended mitigations for different types of attacks against PCs running recent versions of Windows. The orange blocks indicate that the system requires additional configuration from the default +settings. - ----- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
    -

    Windows 8.1
    without TPM

    -

    Windows 8.1 Certified
    (with TPM)

    -

    Bootkits and
    Rootkits

    Without TPM, boot integrity checking is not available

    Secure by default when UEFI-based Secure Boot is enabled and a firmware password is required to change settings

    -

    Brute Force
    Sign-in

    Secure by default, and can be improved with account lockout Group Policy

    Secure by default, and can be improved with account lockout and device lockout Group Policy settings

    -

    DMA
    Attacks

    If policy is deployed, secure by default for all lost or stolen devices because new DMA devices are granted access only when an authorized user is signed in

    If policy is deployed, secure by default for all lost or stolen devices because new DMA devices are granted access only when an authorized user is signed in

    -

    Hyberfil.sys
    Attacks

    Secure by default; hyberfil.sys secured on encrypted volume

    Secure by default; hyberfil.sys secured on encrypted volume

    -

    Memory
    Remanence
    Attacks

    Password protect the firmware and disable booting from external media. If an attack is viable, consider pre-boot authentication

    Password protect the firmware and ensure Secure Boot is enabled. If an attack is viable, consider pre-boot authentication

    +![how to choose best countermeasures for windows 7](images/bitlockerprebootprotection-counterwin7.jpg) -**Table 1.**  How to choose the best countermeasures for Windows 8.1

    - ----- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
    -

    Windows 10
    without TPM

    -

    Windows 10 Certified
    (with TPM)

    -

    Bootkits and
    Rootkits

    Without TPM, boot integrity checking is not available

    Secure by default when UEFI-based Secure Boot is enabled and a firmware password is required to change settings

    -

    Brute Force
    Sign-in

    Secure by default, and can be improved with account lockout Group Policy

    Secure by default, and can be improved with account lockout and device lockout Group Policy settings

    -

    DMA
    Attacks

    If policy is deployed, secure by default for all lost or stolen devices because new DMA devices are granted access only when an authorized user is signed in

    Secure by default; certified devices do not expose vulnerable DMA busses.
    Can be additionally secured by deploying policy to restrict DMA devices:

    - -
    -

    Hyberfil.sys
    Attacks

    Secure by default; hyberfil.sys secured on encrypted volume

    Secure by default; hyberfil.sys secured on encrypted volume

    -

    Memory
    Remanence
    Attacks

    Password protect the firmware and disable booting from external media. If an attack is viable, consider pre-boot authentication

    Password protect the firmware and ensure Secure Boot is enabled.
    The most effective mitigation, which we advise for high-security devices, is to configure a TPM+PIN protector, disable Standby power management, and shut down or hibernate the device before it leaves the control of an authorized user.

    +![how to choose countermeasures for windows 8](images/bitlockerprebootprotection-counterwin8.jpg) -**Table 2.**  How to choose the best countermeasures for Windows 10 +**Figure 3.** How to choose the best countermeasures for Windows 8 + +![how to choose countermeasures for windows 8.1](images/bitlockerprebootprotection-counterwin81.jpg) + +**Figure 4.** How to choose the best countermeasures for Windows 8.1 The latest InstantGo devices, primarily tablets, are designed to be secure by default against all attacks that might compromise the BitLocker encryption key. Other Windows devices can be, too. DMA port–based attacks, which represent the attack vector of choice, are not possible on InstantGo devices, because these port types are prohibited. The inclusion of DMA ports on even non-InstantGo devices is extremely rare on recent devices, particularly on mobile ones. This could change if Thunderbolt is broadly adopted, so IT should consider this when purchasing new devices. In any case DMA ports can be disabled entirely, which is an increasingly popular option because the use of DMA ports is infrequent in the non-developer space. diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md index d7147d12a9..65dcdf6805 100644 --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md @@ -24,7 +24,7 @@ localizationpriority: high You need to add an application in your Azure Active Directory (AAD) tenant then authorize the Windows Defender ATP Alerts Export application to communicate with it so that your security information and events management (SIEM) tool can consume alerts from Windows Defender ATP portal. -1. Login to the [Azure management portal](https://ms.portal.azure.com). +1. Login to the [Azure management portal](https://manage.windowsazure.com). 2. Select **Active Directory**. @@ -53,12 +53,14 @@ You need to add an application in your Azure Active Directory (AAD) tenant then 13. Click **Save** and copy the key in a safe place. You'll need this key to authenticate the client application on Azure Active Directory. -14. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234`
    - - An Azure login page appears. - > [!NOTE] - > - Replace *tenant ID* with your actual tenant ID. - > - Keep the *clientSecret* as is. This is a dummy value, but the parameter must appear. +14. Open a web browser and connect to the following URL:
    +```text +https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234 +``` +An Azure login page appears. +> [!NOTE] +> - Replace *tenant ID* with your actual tenant ID. +> - Keep the client secret as is. This is a dummy value, but the parameter must appear. 15. Sign in with the credentials of a user from your tenant. @@ -78,37 +80,7 @@ You need to add an application in your Azure Active Directory (AAD) tenant then 23. Save the application changes. -After configuring the application in AAD, you'll need to obtain a refresh token. You'll need to use the token when you configure the connector for your SIEM tool in the next steps. The token lets the connector access Windows Defender ATP events to be consumed by your SIEM. - -## Obtain a refresh token using an events URL -Obtain a refresh token used to retrieve the Windows Defender Advanced Threat Protection events to your SIEM. This section provides information on how you can use an events URL to obtain the required refresh token. ->[!NOTE] ->For HP ArcSight, you can obtain a refresh token using the restutil tool. For more information, see [Configure HP ArcSight to consume alerts](configure-arcsight-windows-defender-advanced-threat-protection.md). - -### Before you begin -Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: - - - OAuth 2 Client ID - - OAuth 2 Client secret - -You'll use these values to obtain a refresh token. - ->[!IMPORTANT] ->Before using the OAuth 2 Client secret described in the next steps, you **must** encode it. Use a URL encoder to transform the OAuth 2 client secret. - -### Obtain a refresh token -1. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=&tenantId=&clientSecret=` - - >[!NOTE] - >- Replace the *client ID* value with the one you got from your AAD application. - >- Replace *tenant ID* with your actual tenant ID. - >- Replace *client secret* with your encoded client secret. The client secret **must** be pasted encoded. - -2. Click **Accept**. When you authenticate, a web page opens with your refresh token. - -3. Save the refresh token which you'll find it the ``value. You'll need this value when configuring your SIEM tool. - -After configuring your AAD application and generating a refresh token, you can proceed to configure your SIEM tool. +After configuring the application in AAD, you can continue to configure the SIEM tool that you want to use. ## Related topics - [Configure security information and events management (SIEM) tools to consume alerts](configure-siem-windows-defender-advanced-threat-protection.md) diff --git a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md index a682992574..614004d2dc 100644 --- a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md @@ -25,36 +25,26 @@ You'll need to configure HP ArcSight so that it can consume Windows Defender ATP ## Before you begin -- Get the following information from your Azure Active Directory (AAD) application by selecting **View Endpoint** on the application configuration page: +- Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: - OAuth 2 Token refresh URL - OAuth 2 Client ID - OAuth 2 Client secret -- Download the [WDATP-connector.properties](http://download.microsoft.com/download/3/9/C/39C703C2-487C-4C3E-AFD8-14C2253C2F12/WDATP-connector.properties) file and update the following values: +- Create your OAUth 2 Client properties file or get it from your Windows Defender ATP contact. For more information, see the ArcSight FlexConnector Developer's guide. - - **client_ID**: OAuth 2 Client ID - - **client_secret**: OAuth 2 Client secret - - **auth_url**: ```https://login.microsoftonline.com/?resource=https%3A%2F%2FWDATPAlertExport.Seville.onmicrosoft.com ``` - - >[!NOTE] - >Replace *tenantID* with your tenant ID. - - - **token_url**: `https://login.microsoftonline.com//oauth2/token` - - >[!NOTE] - >Replace the *tenantID* value with your tenant ID. - - - **redirect_uri**: ```https://localhost:44300/wdatpconnector``` - - **scope**: Leave the value blank - -- Download the [WDATP-connector.jsonparser.properties](http://download.microsoft.com/download/0/8/A/08A4957D-0923-4353-B25F-395EAE363E8C/WDATP-connector.jsonparser.properties) file. This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. -- Install the HP ArcSight REST FlexConnector package. You can find this in the HPE Software center. Install the package on a server that has access to the Internet. + > [!NOTE] + > **For the authorization URL**: Append the following to the value you got from the AAD app: ```?resource=https%3A%2F%2FWDATPAlertExport.Seville.onmicrosoft.com```
    + > **For the redirect_uri value use**: ```https://localhost:44300/wdatpconnector``` + > +- Get the *wdatp-connector.properties* file from your Windows Defender ATP contact. This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. +- Install the HP ArcSight REST FlexConnector package on a server that has access to the Internet. +- Contact the Windows Defender ATP team to get your refresh token or follow the steps in the section "Run restutil to Obtain a Refresh Token for Connector Appliance/ArcSight Management Center" in the ArcSight FlexConnector Developer's guide. ## Configure HP ArcSight -The following steps assume that you have completed all the required steps in [Before you begin](#before-you-begin). For more information, see the ArcSight FlexConnector Developer's guide. +The following steps assume that you have completed all the required steps in [Before you begin](#before-you-begin). -1. Save the [WDATP-connector.jsonparser.properties file](http://download.microsoft.com/download/0/8/A/08A4957D-0923-4353-B25F-395EAE363E8C/WDATP-connector.jsonparser.properties) file into the connector installation folder. The +1. Copy the *wdatp-connector.jsonparser.properties* file into the `\current\user\agent\flexagent` folder of the connector installation folder. -2. Save the [WDATP-connector.properties](http://download.microsoft.com/download/3/9/C/39C703C2-487C-4C3E-AFD8-14C2253C2F12/WDATP-connector.properties) file into the `\current\user\agent\flexagent` folder of the connector installation folder. +2. Save the *wdatp-connector.properties* file into a folder of your choosing. 3. Open an elevated command-line: @@ -79,8 +69,7 @@ The following steps assume that you have completed all the required steps in [Be Type in the name of the client property file. It must match the client property file. Events URL - Depending on the location of your datacenter, select either the EU or the US URL:

    **For EU**: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts/?sinceTimeUtc=$START_AT_TIME -
    **For US:** https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts/?sinceTimeUtc=$START_AT_TIME + `https://DataAccess-PRD.trafficmanager.net:444/api/alerts` Authentication Type OAuth 2 @@ -89,8 +78,7 @@ The following steps assume that you have completed all the required steps in [Be Select *wdatp-connector.properties*. Refresh Token - You can use the Windows Defender ATP events URL or the restutil tool to get obtain a refresh token.
    For more information on getting your refresh token using the events URL, see [Obtain a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#obtain-a-refresh-token).

    **To get your refresh token using the restutil tool:**
    a. Open a command prompt. Navigate to `C:\ArcSightSmartConnectors\\current\bin`.

    b. Type: `arcsight restutil token -config C:\ArcSightSmartConnectors_Prod\WDATP\WDATP-connector.properties`. A Web browser window will open.

    c. Type in your credentials then click on the password field to let the page redirect. In the login prompt, enter your credentials.

    d. A refresh token is shown in the command prompt.

    e. Paste the value in the form. - + Paste the refresh token that your Windows Defender ATP contact provided, or run the `restutil` tool to get it. diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md deleted file mode 100644 index 19e99c915d..0000000000 --- a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md +++ /dev/null @@ -1,63 +0,0 @@ ---- -title: Configure email notifications in Windows Defender ATP -description: Send email notifications to specified recipients to receive new alerts based on severity with Windows Defender ATP on Windows 10 Enterprise, Pro, and Education editions. -keywords: email notifications, configure alert notifications, windows defender atp notifications, windows defender atp alerts, windows 10 enterprise, windows 10 education -search.product: eADQiWindows 10XVcnh -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: security -author: mjcaparas -localizationpriority: high ---- - -# Configure email notifications - -**Applies to:** - -- Windows 10 Enterprise -- Windows 10 Education -- Windows 10 Pro -- Windows 10 Pro Education -- Windows Defender Advanced Threat Protection (Windows Defender ATP) - -You can configure Windows Defender ATP to send email notifications to specified recipients for new alerts. This feature enables you to identify a group of individuals who will immediately be informed and can act on alerts based on their severity. - -> [!NOTE] -> Only users with full access can configure email notifications. - -You can set the alert severity levels that trigger notifications. When you turn enable the email notifications feature, it’s set to high and medium alerts by default. - -You can also add or remove recipients of the email notification. New recipients get notified about alerts encountered after they are added. For more information about alerts, see [View and organize the Alerts queue](alerts-queue-windows-defender-advanced-threat-protection.md). - -The email notification includes basic information about the alert and a link to the portal where you can do further investigation. - -## Set up email notifications for alerts -The email notifications feature is turned off by default. Turn it on to start receiving email notifications. - -1. On the navigation pane, select **Preferences Setup** > **Email Notifications**. -2. Toggle the setting between **On** and **Off**. -3. Select the alert severity level that you’d like your recipients to receive: - - **High** – Select this level to send notifications for high-severity alerts. - - **Medium** – Select this level to send notifications for medium-severity alerts. - - **Low** - Select this level to send notifications for low-severity alerts. -4. In **Email recipients to notify on new alerts**, type the email address then select the + sign. -5. Click **Save preferences** when you’ve completed adding all the recipients. - -Check that email recipients are able to receive the email notifications by selecting **Send test email**. All recipients in the list will receive the test email. - -## Remove email recipients - -1. Select the trash bin icon beside the email address you’d like to remove. -2. Click **Save preferences**. - -## Troubleshoot email notifications for alerts -This section lists various issues that you may encounter when using email notifications for alerts. - -**Problem:** Intended recipients report they are not getting the notifications. - -**Solution:** Make sure that the notifications are not blocked by email filters: - -1. Check that the Windows Defender ATP email notifications are not sent to the Junk Email folder. Mark them as Not junk. -2. Check that your email security product is not blocking the email notifications from Windows Defender ATP. -3. Check your email application rules that might be catching and moving your Windows Defender ATP email notifications. diff --git a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md index c842ea1668..b5b16faf54 100644 --- a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md @@ -37,14 +37,14 @@ For more information on using Windows Defender ATP CSP see, [WindowsAdvancedThre b. Select **Mobile Device Management/Microsoft Intune** > **Download package** and save the .zip file. - ![Endpoint onboarding](images/atp-mdm-onboarding-package.png) + ![Endpoint onboarding](images/atp-onboard-mdm.png) 2. Extract the contents of the .zip file to a shared, read-only location that can be accessed by the network administrators who will deploy the package. You should have a file named *WindowsDefenderATP.onboarding*. 3. Use the Microsoft Intune custom configuration policy to deploy the following supported OMA-URI settings. For more information on Microsoft Intune policy settings see, [Windows 10 policy settings in Microsoft Intune](https://docs.microsoft.com/en-us/intune/deploy-use/windows-10-policy-settings-in-microsoft-intune). a. Select **Policy** > **Configuration Policies** > **Add**. - ![Microsoft Intune Configuration Policies](images/atp-add-intune-policy.png) + ![Microsoft Intune Configuration Policies](images/atp-intune-add-policy.png) b. Under **Windows**, select **Custom Configuration (Windows 10 Desktop and Mobile and later)** > **Create and Deploy a Custom Policy** > **Create Policy**. ![Microsoft Intune Configuration Policies](images/atp-intune-new-policy.png) @@ -56,7 +56,7 @@ For more information on using Windows Defender ATP CSP see, [WindowsAdvancedThre ![Microsoft Intune add OMC-URI](images/atp-intune-add-oma.png) e. Type the following values then select **OK**: - + ![Microsoft Intune save policy](images/atp-intune-oma-uri-setting.png) - **Setting name**: Type a name for the setting. diff --git a/windows/keep-secure/configure-endpoints-sccm-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-sccm-windows-defender-advanced-threat-protection.md index 8b193b46c6..8faa5dafdb 100644 --- a/windows/keep-secure/configure-endpoints-sccm-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-sccm-windows-defender-advanced-threat-protection.md @@ -51,10 +51,6 @@ You can use System Center Configuration Manager’s existing functionality to cr a. Choose a predefined device collection to deploy the package to. -> [!NOTE] -> Onboarding couldn't be completed during Out-Of-Box Experience (OOBE). Make sure users pass OOBE after running Windows installation or upgrading. - - ### Configure sample collection settings For each endpoint, you can set a configuration value to state whether samples can be collected from the endpoint when a request is made through the Windows Defender ATP portal to submit a file for deep analysis. diff --git a/windows/keep-secure/configure-endpoints-script-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-script-windows-defender-advanced-threat-protection.md index 50903ddc26..a2643013c6 100644 --- a/windows/keep-secure/configure-endpoints-script-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-script-windows-defender-advanced-threat-protection.md @@ -45,7 +45,7 @@ You can also manually onboard individual endpoints to Windows Defender ATP. You 5. Press the **Enter** key or click **OK**. -For for information on how you can manually validate that the endpoint is compliant and correctly reports sensor data see, [Troubleshoot Windows Defender Advanced Threat Protection onboarding issues](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md). +For for information on how you can manually validate that the endpoint is compliant and correctly reports telemetry see, [Troubleshoot Windows Defender Advanced Threat Protection onboarding issues](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md). ## Configure sample collection settings For each endpoint, you can set a configuration value to state whether samples can be collected from the endpoint when a request is made through the Windows Defender ATP portal to submit a file for deep analysis. diff --git a/windows/keep-secure/configure-endpoints-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-windows-defender-advanced-threat-protection.md index cca969958e..18864595b3 100644 --- a/windows/keep-secure/configure-endpoints-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-windows-defender-advanced-threat-protection.md @@ -21,7 +21,7 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) -Endpoints in your organization must be configured so that the Windows Defender ATP service can get sensor data from them. There are various methods and deployment tools that you can use to configure the endpoints in your organization. +Endpoints in your organization must be configured so that the Windows Defender ATP service can get telemetry from them. There are various methods and deployment tools that you can use to configure the endpoints in your organization. Windows Defender ATP supports the following deployment tools and methods: diff --git a/windows/keep-secure/configure-proxy-internet-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-proxy-internet-windows-defender-advanced-threat-protection.md index 38a3f1edc2..c24886d168 100644 --- a/windows/keep-secure/configure-proxy-internet-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-proxy-internet-windows-defender-advanced-threat-protection.md @@ -22,7 +22,7 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) -The Window Defender ATP sensor requires Microsoft Windows HTTP (WinHTTP) to report sensor data and communicate with the Windows Defender ATP service. +The Window Defender ATP sensor requires Microsoft Windows HTTP (WinHTTP) to report telemetry and communicate with the Windows Defender ATP service. The embedded Windows Defender ATP sensor runs in system context using the LocalSystem account. The sensor uses Microsoft Windows HTTP Services (WinHTTP) to enable communication with the Windows Defender ATP cloud service. diff --git a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md index ee6c76e9b7..60e1c00469 100644 --- a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md @@ -25,9 +25,9 @@ You'll need to configure Splunk so that it can consume Windows Defender ATP aler ## Before you begin -- Install the [REST API Modular Input app](https://splunkbase.splunk.com/app/1546/) in Splunk. -- Obtain your refresh token. For more information, see [Obtain a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#obtain-a-refresh-token). -- Get the following information from your Azure Active Directory (AAD) application by selecting **View Endpoint** on the application configuration page: +- Install the [REST API Modular Input app](https://splunkbase.splunk.com/app/1546/) in Splunk +- Contact the Windows Defender ATP team to get your refresh token +- Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: - OAuth 2 Token refresh URL - OAuth 2 Client ID - OAuth 2 Client secret @@ -56,8 +56,7 @@ You'll need to configure Splunk so that it can consume Windows Defender ATP aler Endpoint URL - Depending on the location of your datacenter, select either the EU or the US URL:

    **For EU**: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts
    **For US:** https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts - + https://DataAccess-PRD.trafficmanager.net:444/api/alerts HTTP Method diff --git a/windows/keep-secure/create-a-pagefile.md b/windows/keep-secure/create-a-pagefile.md index 804d32f022..a8c65abbab 100644 --- a/windows/keep-secure/create-a-pagefile.md +++ b/windows/keep-secure/create-a-pagefile.md @@ -1,5 +1,5 @@ --- -title: Create a pagefile - security policy setting (Windows 10) +title: Create a pagefile (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Create a pagefile security policy setting. ms.assetid: dc087897-459d-414b-abe0-cd86c8dccdea ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Create a pagefile - security policy setting +# Create a pagefile **Applies to** - Windows 10 diff --git a/windows/keep-secure/create-and-verify-an-efs-dra-certificate.md b/windows/keep-secure/create-and-verify-an-efs-dra-certificate.md index 4bd92ff06f..06392494c0 100644 --- a/windows/keep-secure/create-and-verify-an-efs-dra-certificate.md +++ b/windows/keep-secure/create-and-verify-an-efs-dra-certificate.md @@ -19,8 +19,8 @@ If you don’t already have an EFS DRA certificate, you’ll need to create and The recovery process included in this topic only works for desktop devices. WIP deletes the data on Windows 10 Mobile devices. ->[!IMPORTANT] ->If you already have an EFS DRA certificate for your organization, you can skip creating a new one. Just use your current EFS DRA certificate in your policy. For more info about when to use a PKI and the general strategy you should use to deploy DRA certificates, see the [Security Watch Deploying EFS: Part 1](https://technet.microsoft.com/magazine/2007.02.securitywatch.aspx) article on TechNet. For more general info about EFS protection, see [Protecting Data by Using EFS to Encrypt Hard Drives](https://msdn.microsoft.com/library/cc875821.aspx).

    If your DRA certificate has expired, you won’t be able to encrypt your files with it. To fix this, you'll need to create a new certificate, using the steps in this topic, and then deploy it through policy. +>**Important**
    +If you already have an EFS DRA certificate for your organization, you can skip creating a new one. Just use your current EFS DRA certificate in your policy. For more info about when to use a PKI and the general strategy you should use to deploy DRA certificates, see the [Security Watch Deploying EFS: Part 1](https://technet.microsoft.com/magazine/2007.02.securitywatch.aspx) article on TechNet. For more general info about EFS protection, see [Protecting Data by Using EFS to Encrypt Hard Drives](https://msdn.microsoft.com/library/cc875821.aspx).

    If your DRA certificate has expired, you won’t be able to encrypt your files with it. To fix this, you'll need to create a new certificate, using the steps in this topic, and then deploy it through policy. **To manually create an EFS DRA certificate** @@ -36,13 +36,13 @@ The recovery process included in this topic only works for desktop devices. WIP The EFSDRA.cer and EFSDRA.pfx files are created in the location you specified in Step 1. - >[!IMPORTANT] - >Because the private keys in your DRA .pfx files can be used to decrypt any WIP file, you must protect them accordingly. We highly recommend storing these files offline, keeping copies on a smart card with strong protection for normal use and master copies in a secured physical location. + >**Important**
    + Because the private keys in your DRA .pfx files can be used to decrypt any WIP file, you must protect them accordingly. We highly recommend storing these files offline, keeping copies on a smart card with strong protection for normal use and master copies in a secured physical location. 4. Add your EFS DRA certificate to your WIP policy using a deployment tool, such as Microsoft Intune or System Center Configuration Manager. - >[!NOTE] - >To add your EFS DRA certificate to your policy by using Microsoft Intune, see the [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) topic. To add your EFS DRA certificate to your policy by using System Center Configuration Manager, see the [Create a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) topic. + >**Note**
    + To add your EFS DRA certificate to your policy by using Microsoft Intune, see the [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) topic. To add your EFS DRA certificate to your policy by using System Center Configuration Manager, see the [Create a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) topic. **To verify your data recovery certificate is correctly set up on a WIP client computer** @@ -73,8 +73,7 @@ The recovery process included in this topic only works for desktop devices. WIP **To quickly recover WIP-protected desktop data after unenrollment**
    It's possible that you might revoke data from an unenrolled device only to later want to restore it all. This can happen in the case of a missing device being returned or if an unenrolled employee enrolls again. If the employee enrolls again using the original user profile, and the revoked key store is still on the device, all of the revoked data can be restored at once, by following these steps. ->[!IMPORTANT] ->To maintain control over your enterprise data, and to be able to revoke again in the future, you must only perform this process after the employee has re-enrolled the device. +>**Important**
    To maintain control over your enterprise data, and to be able to revoke again in the future, you must only perform this process after the employee has re-enrolled the device. 1. Have your employee sign in to the unenrolled device, open a command prompt, and type: @@ -94,9 +93,6 @@ It's possible that you might revoke data from an unenrolled device only to later The Windows Credential service automatically recovers the employee’s previously revoked keys from the `Recovery\Input` location. ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). - ## Related topics - [Security Watch Deploying EFS: Part 1](https://technet.microsoft.com/magazine/2007.02.securitywatch.aspx) diff --git a/windows/keep-secure/create-applocker-default-rules.md b/windows/keep-secure/create-applocker-default-rules.md index 6f5b802707..930d2bc4d7 100644 --- a/windows/keep-secure/create-applocker-default-rules.md +++ b/windows/keep-secure/create-applocker-default-rules.md @@ -27,7 +27,3 @@ You can perform this task by using the Group Policy Management Console for an Ap 1. Open the AppLocker console. 2. Right-click the appropriate rule type for which you want to automatically generate default rules. You can automatically generate rules for executable, Windows Installer, script rules and Packaged app rules. 3. Click **Create Default Rules**. - -## Related topics - -- [Understanding AppLocker default rules](understanding-applocker-default-rules.md) diff --git a/windows/keep-secure/create-vpn-and-wip-policy-using-intune.md b/windows/keep-secure/create-vpn-and-wip-policy-using-intune.md index 64602d97ae..45ed365fe2 100644 --- a/windows/keep-secure/create-vpn-and-wip-policy-using-intune.md +++ b/windows/keep-secure/create-vpn-and-wip-policy-using-intune.md @@ -111,10 +111,6 @@ The final step to making your VPN configuration work with WIP, is to link your t 3. After you've picked all of the employees and groups that should get the policy, click **OK**. The policy is deployed to the selected users' devices. ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). - - diff --git a/windows/keep-secure/create-wip-policy-using-intune.md b/windows/keep-secure/create-wip-policy-using-intune.md index f0c94d6dba..44bf2930a2 100644 --- a/windows/keep-secure/create-wip-policy-using-intune.md +++ b/windows/keep-secure/create-wip-policy-using-intune.md @@ -44,11 +44,10 @@ During the policy-creation process in Intune, you can choose the apps you want t The steps to add your app rules are based on the type of rule template being applied. You can add a store app (also known as a Universal Windows Platform (UWP) app), a signed Windows desktop app, or an AppLocker policy file. ->[!IMPORTANT] ->WIP-aware apps are expected to prevent enterprise data from going to unprotected network locations and to avoid encrypting personal data. On the other hand, WIP-unaware apps might not respect the corporate network boundary, and WIP-unaware apps will encrypt all files they create or modify. This means that they could encrypt personal data and cause data loss during the revocation process.

    Care must be taken to get a support statement from the software provider that their app is safe with WIP before adding it to your **App Rules** list. If you don’t get this statement, it’s possible that you could experience app compat issues due to an app losing the ability to access a necessary file after revocation. +>**Important**
    WIP-aware apps are expected to prevent enterprise data from going to unprotected network locations and to avoid encrypting personal data. On the other hand, WIP-unaware apps might not respect the corporate network boundary, and WIP-unaware apps will encrypt all files they create or modify. This means that they could encrypt personal data and cause data loss during the revocation process.

    Care must be taken to get a support statement from the software provider that their app is safe with WIP before adding it to your **App Rules** list. If you don’t get this statement, it’s possible that you could experience app compat issues due to an app losing the ability to access a necessary file after revocation. ->[!NOTE] ->If you want to use **File hash** or **Path** rules, instead of **Publisher** rules, you must follow the steps in the [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) topic. +>**Note**
    +If you want to use **File hash** or **Path** rules, instead of **Publisher** rules, you must follow the steps in the [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) topic. #### Add a store app rule to your policy For this example, we’re going to add Microsoft OneNote, a store app, to the **App Rules** list. @@ -77,8 +76,8 @@ If you don't know the publisher or product name, you can find them for both desk **To find the Publisher and Product Name values for Store apps without installing them** 1. Go to the [Windows Store for Business](https://go.microsoft.com/fwlink/p/?LinkID=722910) website, and find your app. For example, *Microsoft OneNote*. - >[!NOTE] - >If your app is already installed on desktop devices, you can use the AppLocker local security policy MMC snap-in to gather the info for adding the app to the protected apps list. For info about how to do this, see the [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) topic. + >**Note**
    + If your app is already installed on desktop devices, you can use the AppLocker local security policy MMC snap-in to gather the info for adding the app to the protected apps list. For info about how to do this, see the [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) topic. 2. Copy the ID value from the app URL. For example, Microsoft OneNote's ID URL is https://www.microsoft.com/store/apps/onenote/9wzdncrfhvjl, and you'd copy the ID value, `9wzdncrfhvjl`. @@ -95,10 +94,8 @@ If you don't know the publisher or product name, you can find them for both desk 4. Copy the `publisherCertificateName` value into the **Publisher Name** box and copy the `packageIdentityName` value into the **Product Name** box of Intune. - >[!IMPORTANT] - >The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as `CN=` followed by the `windowsPhoneLegacyId`. - - For example: + >**Important**
    + The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as `CN=` followed by the `windowsPhoneLegacyId`.

    For example: ```json { @@ -109,8 +106,7 @@ If you don't know the publisher or product name, you can find them for both desk **To find the Publisher and Product Name values for apps installed on Windows 10 mobile phones** 1. If you need to add mobile apps that aren't distributed through the Store for Business, you must use the **Windows Device Portal** feature. - >[!NOTE] - >Your PC and phone must be on the same wireless network. + >**Note**
    Your PC and phone must be on the same wireless network. 2. On the Windows Phone, go to **Settings**, choose **Update & security**, and then choose **For developers**. @@ -126,10 +122,8 @@ If you don't know the publisher or product name, you can find them for both desk 8. Copy the `publisherCertificateName` value and paste it into the **Publisher Name** box and the `packageIdentityName` value into the **Product Name** box of Intune. - >[!IMPORTANT] - >The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as `CN=` followed by the `windowsPhoneLegacyId`. - - For example: + >**Important**
    + The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as `CN=` followed by the `windowsPhoneLegacyId`.

    For example:
    ``` json { @@ -354,9 +348,9 @@ After you've added a protection mode to your apps, you'll need to decide where t There are no default locations included with WIP, you must add each of your network locations. This area applies to any network endpoint device that gets an IP address in your enterprise’s range and is also bound to one of your enterprise domains, including SMB shares. Local file system locations should just maintain encryption (for example, on local NTFS, FAT, ExFAT). ->[!IMPORTANT] ->Every WIP policy should include policy that defines your enterprise network locations.
    ->Classless Inter-Domain Routing (CIDR) notation isn’t supported for WIP configurations. +>**Important** +- Every WIP policy should include policy that defines your enterprise network locations. +- Classless Inter-Domain Routing (CIDR) notation isn’t supported for WIP configurations. **To define where your protected apps can find and send enterprise data on you network** @@ -471,9 +465,6 @@ After you've decided where your protected apps can access enterprise data on you 2. Click **Save Policy**. ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). - ## Related topics - [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) - [Deploy your Windows Information Protection (WIP) policy](deploy-wip-policy-using-intune.md) diff --git a/windows/keep-secure/create-wip-policy-using-sccm.md b/windows/keep-secure/create-wip-policy-using-sccm.md index 350d5e1f54..468b8308d4 100644 --- a/windows/keep-secure/create-wip-policy-using-sccm.md +++ b/windows/keep-secure/create-wip-policy-using-sccm.md @@ -20,8 +20,8 @@ localizationpriority: high System Center Configuration Manager helps you create and deploy your Windows Information Protection (WIP) policy, including letting you choose your protected apps, your WIP-protection mode, and how to find enterprise data on the network. ->[!IMPORTANT] ->If you previously created a WIP policy using System Center Configuration Manager version 1511 or 1602, you’ll need to recreate it using version 1606 or later. Editing a WIP policy created in version 1511 or 1602 is not supported in later versions and there is no migration path between older and newer WIP policies. +>**Important**
    +If you previously created a WIP policy using System Center Configuration Manager version 1511 or 1602, you’ll need to recreate it using version 1606 or later. Editing a WIP policy created in version 1511 or 1602 is not supported in later versions and there is no migration path between older and newer WIP policies. ## Add a WIP policy After you’ve installed and set up System Center Configuration Manager for your organization, you must create a configuration item for WIP, which in turn becomes your WIP policy. @@ -62,8 +62,8 @@ During the policy-creation process in System Center Configuration Manager, you c The steps to add your app rules are based on the type of rule template being applied. You can add a store app (also known as a Universal Windows Platform (UWP) app), a signed Windows desktop app, or an AppLocker policy file. ->[!IMPORTANT] ->WIP-aware apps are expected to prevent enterprise data from going to unprotected network locations and to avoid encrypting personal data. On the other hand, WIP-unaware apps might not respect the corporate network boundary, and WIP-unaware apps will encrypt all files they create or modify. This means that they could encrypt personal data and cause data loss during the revocation process.

    Care must be taken to get a support statement from the software provider that their app is safe with WIP before adding it to your **App rules** list. If you don’t get this statement, it’s possible that you could experience app compat issues due to an app losing the ability to access a necessary file after revocation. +>**Important**
    +WIP-aware apps are expected to prevent enterprise data from going to unprotected network locations and to avoid encrypting personal data. On the other hand, WIP-unaware apps might not respect the corporate network boundary, and WIP-unaware apps will encrypt all files they create or modify. This means that they could encrypt personal data and cause data loss during the revocation process.

    Care must be taken to get a support statement from the software provider that their app is safe with WIP before adding it to your **App rules** list. If you don’t get this statement, it’s possible that you could experience app compat issues due to an app losing the ability to access a necessary file after revocation. #### Add a store app rule to your policy For this example, we’re going to add Microsoft OneNote, a store app, to the **App Rules** list. @@ -94,8 +94,8 @@ If you don't know the publisher or product name, you can find them for both desk 1. Go to the [Windows Store for Business](https://go.microsoft.com/fwlink/p/?LinkID=722910) website, and find your app. For example, Microsoft OneNote. - >[!NOTE] - >If your app is already installed on desktop devices, you can use the AppLocker local security policy MMC snap-in to gather the info for adding the app to the protected apps list. For info about how to do this, see the steps in the [Add an AppLocker policy file](#add-an-applocker-policy-file) section. + >**Note**
    + If your app is already installed on desktop devices, you can use the AppLocker local security policy MMC snap-in to gather the info for adding the app to the protected apps list. For info about how to do this, see the steps in the [Add an AppLocker policy file](#add-an-applocker-policy-file) section. 2. Copy the ID value from the app URL. For example, Microsoft OneNote's ID URL is https://www.microsoft.com/store/apps/onenote/9wzdncrfhvjl, and you'd copy the ID value, `9wzdncrfhvjl`. @@ -112,9 +112,8 @@ If you don't know the publisher or product name, you can find them for both desk 4. Copy the `publisherCertificateName` value and paste them into the **Publisher Name** box, copy the `packageIdentityName` value into the **Product Name** box of Intune. - >[!IMPORTANT] - >The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as “CN=” followed by the `windowsPhoneLegacyId`. - >For example:

    + >**Important**
    + The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as “CN=” followed by the `windowsPhoneLegacyId`.

    For example:

    ```json { @@ -125,8 +124,8 @@ If you don't know the publisher or product name, you can find them for both desk **To find the Publisher and Product Name values for apps installed on Windows 10 mobile phones** 1. If you need to add mobile apps that aren't distributed through the Store for Business, you must use the **Windows Device Portal** feature. - >[!NOTE] - >Your PC and phone must be on the same wireless network. + >**Note**
    + Your PC and phone must be on the same wireless network. 2. On the Windows Phone, go to **Settings**, choose **Update & security**, and then choose **For developers**. @@ -142,9 +141,8 @@ If you don't know the publisher or product name, you can find them for both desk 8. Copy the `publisherCertificateName` value and paste it into the **Publisher Name** box and the `packageIdentityName` value into the **Product Name** box of Intune. - >[!IMPORTANT] - >The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as “CN=” followed by the `windowsPhoneLegacyId`. - >For example:

    + >**Important**
    + The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as “CN=” followed by the `windowsPhoneLegacyId`.

    For example:

    ```json { @@ -371,9 +369,9 @@ After you've added a protection mode to your apps, you'll need to decide where t There are no default locations included with WIP, you must add each of your network locations. This area applies to any network endpoint device that gets an IP address in your enterprise’s range and is also bound to one of your enterprise domains, including SMB shares. Local file system locations should just maintain encryption (for example, on local NTFS, FAT, ExFAT). ->[!IMPORTANT] ->Every WIP policy should include policy that defines your enterprise network locations.
    ->Classless Inter-Domain Routing (CIDR) notation isn’t supported for WIP configurations. +>**Important**
    +- Every WIP policy should include policy that defines your enterprise network locations. +- Classless Inter-Domain Routing (CIDR) notation isn’t supported for WIP configurations. **To define where your protected apps can find and send enterprise data on you network** @@ -494,15 +492,13 @@ After you've finished configuring your policy, you can review all of your info o A progress bar appears, showing you progress for your policy. After it's done, click **Close** to return to the **Configuration Items** page. + ## Deploy the WIP policy After you’ve created your WIP policy, you'll need to deploy it to your organization's devices. For info about your deployment options, see these topics: - [Operations and Maintenance for Compliance Settings in Configuration Manager](https://go.microsoft.com/fwlink/p/?LinkId=708224) - [How to Create Configuration Baselines for Compliance Settings in Configuration Manager]( https://go.microsoft.com/fwlink/p/?LinkId=708225) - [How to Deploy Configuration Baselines in Configuration Manager]( https://go.microsoft.com/fwlink/p/?LinkId=708226) ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). - ## Related topics - [System Center Configuration Manager and Endpoint Protection (Version 1606)](https://go.microsoft.com/fwlink/p/?LinkId=717372) - [TechNet documentation for Configuration Manager](https://go.microsoft.com/fwlink/p/?LinkId=691623) diff --git a/windows/keep-secure/create-wmi-filters-for-the-gpo.md b/windows/keep-secure/create-wmi-filters-for-the-gpo.md index 80474a70be..3cbb5be9a5 100644 --- a/windows/keep-secure/create-wmi-filters-for-the-gpo.md +++ b/windows/keep-secure/create-wmi-filters-for-the-gpo.md @@ -51,7 +51,7 @@ First, create the WMI filter and configure it to look for a specified version (o select * from Win32_OperatingSystem where Version like "6.%" ``` - This query will return **true** for devices running at least Windows Vista and Windows Server 2008. To set a filter for just Windows 8 and Windows Server 2012, use "6.2%". For Windows 10 and Windows Server 2016, use "10.%". To specify multiple versions, combine them with or, as shown in the following: + This query will return **true** for devices running at least Windows Vista and Windows Server 2008. To set a filter for just Windows 8 and Windows Server 2012, use "6.2%". To specify multiple versions, combine them with or, as shown in the following: ``` syntax ... where Version like "6.1%" or Version like "6.2%" @@ -65,16 +65,16 @@ First, create the WMI filter and configure it to look for a specified version (o ... where ProductType="1" or ProductType="3" ``` - The following complete query returns **true** for all devices running Windows 10, and returns **false** for any server operating system or any other client operating system. + The following complete query returns **true** for all devices running Windows 8, and returns **false** for any server operating system or any other client operating system. ``` syntax - select * from Win32_OperatingSystem where Version like "10.%" and ProductType="1" + select * from Win32_OperatingSystem where Version like "6.2%" and ProductType="1" ``` - The following query returns **true** for any device running Windows Server 2016, except domain controllers: + The following query returns **true** for any device running Windows Server 2012, except domain controllers: ``` syntax - select * from Win32_OperatingSystem where Version like "10.%" and ProductType="3" + select * from Win32_OperatingSystem where Version like "6.2%" and ProductType="3" ``` 9. Click **OK** to save the query to the filter. diff --git a/windows/keep-secure/credential-guard.md b/windows/keep-secure/credential-guard.md index c038a4d588..7045d584b4 100644 --- a/windows/keep-secure/credential-guard.md +++ b/windows/keep-secure/credential-guard.md @@ -123,7 +123,7 @@ To enforce processing of the group policy, you can run ```gpupdate /force```. If you don't use Group Policy, you can enable Credential Guard by using the registry. Credential Guard uses virtualization-based security features which have to be enabled first on some operating systems. -#### Add the virtualization-based security features +##### Add the virtualization-based security features Starting with Windows 10, version 1607 and Windows Server 2016, enabling Windows features to use virtualization-based security is not necessary and this step can be skipped. @@ -156,7 +156,7 @@ You can do this by using either the Control Panel or the Deployment Image Servic > [!NOTE] > You can also add these features to an online image by using either DISM or Configuration Manager. -#### Enable virtualization-based security and Credential Guard +##### Enable virtualization-based security and Credential Guard 1. Open Registry Editor. 2. Enable virtualization-based security: @@ -195,9 +195,10 @@ Requirements for running Credential Guard in Hyper-V virtual machines - The Hyper-V host must have an IOMMU, and run at least Windows Server 2016 or Windows 10 version 1607. - The Hyper-V virtual machine must be Generation 2, have an enabled virtual TPM, and running at least Windows Server 2016 or Windows 10. + ### Remove Credential Guard -If you have to remove Credential Guard on a PC, you can use the following set of procedures, or you can [use the Device Guard and Credential Guard hardware readiness tool](#turn-off-with-hardware-readiness-tool). +If you have to remove Credential Guard on a PC, you need to do the following: 1. If you used Group Policy, disable the Group Policy setting that you used to enable Credential Guard (**Computer Configuration** -> **Administrative Templates** -> **System** -> **Device Guard** -> **Turn on Virtualization Based Security**). 2. Delete the following registry settings: @@ -241,10 +242,9 @@ If you have to remove Credential Guard on a PC, you can use the following set of For more info on virtualization-based security and Device Guard, see [Device Guard deployment guide](device-guard-deployment-guide.md). - -#### Turn off Credential Guard by using the Device Guard and Credential Guard hardware readiness tool +**Turn off Credential Guard by using the Device Guard and Credential Guard hardware readiness tool** -You can also disable Credential Guard by using the [Device Guard and Credential Guard hardware readiness tool](https://www.microsoft.com/download/details.aspx?id=53337). +You can also enable Credential Guard by using the [Device Guard and Credential Guard hardware readiness tool](https://www.microsoft.com/download/details.aspx?id=53337). ``` DG_Readiness_Tool_v2.0.ps1 -Disable -AutoReboot @@ -917,7 +917,6 @@ write-host $tmp -Foreground Red - [Isolated User Mode Processes and Features in Windows 10 with Logan Gabriel (Channel 9)](http://channel9.msdn.com/Blogs/Seth-Juarez/Isolated-User-Mode-Processes-and-Features-in-Windows-10-with-Logan-Gabriel) - [More on Processes and Features in Windows 10 Isolated User Mode with Dave Probert (Channel 9)](https://channel9.msdn.com/Blogs/Seth-Juarez/More-on-Processes-and-Features-in-Windows-10-Isolated-User-Mode-with-Dave-Probert) - [Mitigating Credential Theft using the Windows 10 Isolated User Mode (Channel 9)](https://channel9.msdn.com/Blogs/Seth-Juarez/Mitigating-Credential-Theft-using-the-Windows-10-Isolated-User-Mode) -- [Protecting network passwords with Windows 10 Credential Guard](https://www.microsoft.com/itshowcase/Article/Content/831/Protecting-network-passwords-with-Windows-10-Credential-Guard) - [Enabling Strict KDC Validation in Windows Kerberos](http://www.microsoft.com/download/details.aspx?id=6382) - [What's New in Kerberos Authentication for Windows Server 2012](http://technet.microsoft.com/library/hh831747.aspx) - [Authentication Mechanism Assurance for AD DS in Windows Server 2008 R2 Step-by-Step Guide](http://technet.microsoft.com/library/dd378897.aspx) diff --git a/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md b/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md index 990e0ac396..112382f305 100644 --- a/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md @@ -56,12 +56,10 @@ Click the name of the machine to see details about that machine. For more inform You can also click **Machines view** at the top of the tile to go directly to the **Machines view**, sorted by the number of active alerts. For more information see, [Investigate machines in the Windows Defender Advanced Threat Protection Machines view](investigate-machines-windows-defender-advanced-threat-protection.md). ## Status -The **Status** tile informs you if the service is active or if there are issues and the unique number of machines (endpoints) reporting to the service over the past 30 days. +The **Status** tile informs you if the service is active and running and the unique number of machines (endpoints) reporting over the past 30 days. ![The Status tile shows an overall indicator of the service and the total number of machines reporting to the service](images/status-tile.png) -For more information on the service status, see [Check the Windows Defender ATP service status](service-status-windows-defender-advanced-threat-protection.md). - ## Machines reporting The **Machines reporting** tile shows a bar graph that represents the number of machines reporting alerts daily. Hover over individual bars on the graph to see the exact number of machines reporting in each day. diff --git a/windows/keep-secure/deploy-wip-policy-using-intune.md b/windows/keep-secure/deploy-wip-policy-using-intune.md index c9977fec21..075fba2473 100644 --- a/windows/keep-secure/deploy-wip-policy-using-intune.md +++ b/windows/keep-secure/deploy-wip-policy-using-intune.md @@ -33,9 +33,6 @@ The added people move to the **Selected Groups** list on the right-hand pane. 3. After you've picked all of the employees and groups that should get the policy, click **OK**.

    The policy is deployed to the selected users' devices. ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). - ## Related topics - [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) - [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) diff --git a/windows/keep-secure/enlightened-microsoft-apps-and-wip.md b/windows/keep-secure/enlightened-microsoft-apps-and-wip.md index f2e1b3c91c..f6b1ea7f6e 100644 --- a/windows/keep-secure/enlightened-microsoft-apps-and-wip.md +++ b/windows/keep-secure/enlightened-microsoft-apps-and-wip.md @@ -78,7 +78,4 @@ You can add any or all of the enlightened Microsoft apps to your allowed apps li |Microsoft OneDrive |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** onedrive.exe
    **App Type:** Desktop app| |Notepad |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** notepad.exe
    **App Type:** Desktop app | |Microsoft Paint |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** mspaint.exe
    **App Type:** Desktop app | -|Microsoft Remote Desktop |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** mstsc.exe
    **App Type:** Desktop app | - ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). \ No newline at end of file +|Microsoft Remote Desktop |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** mstsc.exe
    **App Type:** Desktop app | \ No newline at end of file diff --git a/windows/keep-secure/export-an-applocker-policy-from-a-gpo.md b/windows/keep-secure/export-an-applocker-policy-from-a-gpo.md index 8f914cd9f0..6476c88d16 100644 --- a/windows/keep-secure/export-an-applocker-policy-from-a-gpo.md +++ b/windows/keep-secure/export-an-applocker-policy-from-a-gpo.md @@ -16,7 +16,7 @@ author: brianlic-msft This topic for IT professionals describes the steps to export an AppLocker policy from a Group Policy Object (GPO) so that it can be modified. -Updating an AppLocker policy that is currently enforced in your production environment can have unintended results. Therefore, export the policy from the GPO and update the rule or rules by using AppLocker on your AppLocker reference device. +Updating an AppLocker policy that is currently enforced in your production environment can have unintended results. Therefore, export the policy from the GPO and update the rule or rules by using AppLocker on your AppLocker reference device To complete this procedure, you must have the **Edit Setting** permission to edit a GPO. By default, members of the **Domain Admins** group, the **Enterprise Admins** group, and the **Group Policy Creator Owners** group have this permission. diff --git a/windows/keep-secure/guidance-and-best-practices-wip.md b/windows/keep-secure/guidance-and-best-practices-wip.md index ff64be6d0f..b91386f0c0 100644 --- a/windows/keep-secure/guidance-and-best-practices-wip.md +++ b/windows/keep-secure/guidance-and-best-practices-wip.md @@ -22,10 +22,8 @@ This section includes info about the enlightened Microsoft apps, including how t ## In this section |Topic |Description | |------|------------| -|[Enlightened apps for use with Windows Information Protection (WIP)](enlightened-microsoft-apps-and-wip.md) |Learn the difference between enlightened and unenlightened apps, and then review the list of enlightened apps provided by Microsoft along with the text you will need to use to add them to your allowed apps list. | -|[Unenlightened and enlightened app behavior while using Windows Information Protection (WIP)](app-behavior-with-wip.md) |Learn the difference between enlightened and unenlightened app behaviors. | -|[Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP)](recommended-network-definitions-for-wip.md) |Recommended additions for the Enterprise Cloud Resources and Neutral Resources network settings, when used with Windows Information Protection (WIP). | -|[Using Outlook Web Access with Windows Information Protection (WIP)](using-owa-with-wip.md) |Options for using Outlook Web Access (OWA) with Windows Information Protection (WIP). | - ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). +|[Windows Information Protection (WIP) overview](wip-enterprise-overview.md) |High-level overview info about why to use WIP, the enterprise scenarios, and how to turn it off. | +|[Mandatory settings for Windows Information Protection (WIP)](mandatory-settings-for-wip.md) |A list of all of the tasks and settings that are required for the operating system to turn on Windows Information Protection (WIP), formerly known as enterprise data protection (EDP), in your enterprise. | +|[Enlightened apps for use with Windows Information Protection (WIP)](enlightened-microsoft-apps-and-wip.md) |Learn the difference between enlightened and unenlightened apps, and then review the list of enlightened apps provided by Microsoft along with the text you will need to use to add them to your allowed apps list. | +|[Testing scenarios for Windows Information Protection (WIP)](testing-scenarios-for-wip.md) |We've come up with a list of suggested testing scenarios that you can use to test WIP in your company. | +|[Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) |The most common problems you might encounter while using Windows Information Protection (WIP). | \ No newline at end of file diff --git a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md deleted file mode 100644 index 032e04c1ad..0000000000 --- a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md +++ /dev/null @@ -1,94 +0,0 @@ ---- -title: How to use single sign on (SSO) over VPN and Wi-Fi connections (Windows 10) -description: Explains requirements to enable Single Sign-On (SSO) to on-premises domain resources over WiFi or VPN connections. -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: security -author: justinha ---- - -# How to use single sign on (SSO) over VPN and Wi-Fi connections - -This topic explains requirements to enable Single Sign-On (SSO) to on-premises domain resources over WiFi or VPN connections. The scenario is: - -- You connect to a network using Wi-Fi or VPN. -- You want to use the credentials that you use for the WiFi or VPN authentication to also authenticate requests to access a domain resource you are connecting to, without being prompted for your domain credentials separately. - -For example, you want to connect to a corporate network and access an internal website that requires Windows integrated authentication. - -At a high level, the way this works is that the credentials that are used for the connection authentication are put in Credential Manager as the default credentials for the logon session. -Credential Manager is a place where credentials in the OS are can be stored for specific domain resources based on the targetname of the resource. -For VPN, the VPN stack saves its credential as the session default. -For WiFi, EAP does it. - -The credentials are put in Credential Manager as a "`*Session`" credential. -A "`*Session`" credential implies that it is valid for the current user session. -The credentials are also cleaned up when the WiFi or VPN connection is disconnected. - -When the user tries to access a domain resource, using Edge for example, Edge has the right Enterprise Authentication capability so [WinInet](https://msdn.microsoft.com/library/windows/desktop/aa385483.aspx) can release the credentials that it gets from the Credential Manager to the SSP that is requesting it. -For more information about the Enterprise Authentication capability, see [App capability declarations](https://msdn.microsoft.com/windows/uwp/packaging/app-capability-declarations). - -The local security authority will look at the device application, such as a Universal Windows Platform (UWP) application, to see if it has the right capability. -If the app is not UWP, it does not matter. -But if it is a UWP app, it will look at the device capability for Enterprise Authentication. -If it does have that capability and if the resource that you are trying to access is in the Intranet zone in the Internet Options (ZoneMap), then the credential will be released. -This behavior helps prevent credentials from being misused by untrusted third parties. - -## Intranet zone - -For the Intranet zone, by default it only allows single-label names, such as Http://finance. -If the resource that needs to be accessed has multiple domain labels, then the workaround is to use the [Registry CSP](https://msdn.microsoft.com/library/windows/hardware/dn904964.aspx). - -### Setting the ZoneMap - -The ZoneMap is controlled using a registry that can be set through MDM. -By default, single-label names such as http://finance are already in the intranet zone. -For multi-label names, such as http://finance.net, the ZoneMap needs to be updated. - -## MDM Policy - -OMA URI example: - -./Vendor/MSFT/Registry/HKU/S-1-5-21-2702878673-795188819-444038987-2781/Software/Microsoft/Windows/CurrentVersion/Internet%20Settings/ZoneMap/Domains/``/* as an Integer Value of 1 for each of the domains that you want to SSO into from your device. This adds the specified domains to the Intranet Zone of the Edge browser. - -## Credential requirements - -For VPN, the following types of credentials will be added to credential manager after authentication: - -- Username and password -- Certificate-based authentication: - - TPM KSP Certificate - - Software KSP Certificates - - Smart Card Certificate - - Passport for Work Certificate - -The username should also include a domain that can be reached over the connection (VPN or WiFi). - -## User certificate templates - -If the credentials are certificate-based, then the elements in the following table need to be configured for the certificate templates to ensure they can also be used for Kerberos client authentication. - -| Template element | Configuration | -|------------------|---------------| -| SubjectName | The user’s distinguished name (DN) where the domain components of the distinguished name reflects the internal DNS namespace when the SubjectAlternativeName does not have the fully qualified UPN required to find the domain controller.
    This requirement is particularly relevant in multi-forest environments as it ensures a domain controller can be located. | -| SubjectAlternativeName | The user’s fully qualified UPN where a domain name component of the user’s UPN matches the organizations internal domain’s DNS namespace.
    This requirement is particularly relevant in multi-forest environments as it ensures a domain controller can be located when the SubjectName does not have the DN required to find the domain controller. | -| Key Storage Provider (KSP) | If the device is joined to Azure AD, a discrete SSO certificate is used. | -| EnhancedKeyUsage | One or more of the following EKUs is required:
    - Client Authentication (for the VPN)
    - EAP Filtering OID (for Windows Hello for Business)
    - SmartCardLogon (for Azure AD joined devices)
    If the domain controllers require smart card EKU either:
    - SmartCardLogon
    - id-pkinit-KPClientAuth (1.3.6.1.5.2.3.4)
    Otherwise:
    - TLS/SSL Client Authentication (1.3.6.1.5.5.7.3.2) | - -## NDES server configuration - -The NDES server is required to be configured so that incoming SCEP requests can be mapped to the correct template to be used. -For more information, see [Configure certificate infrastructure for SCEP](https://docs.microsoft.com/en-us/intune/deploy-use/Configure-certificate-infrastructure-for-scep). - -## Active Directory requirements - -You need IP connectivity to a DNS server and domain controller over the network interface so that authentication can succeed as well. - -The domain controllers will need to have appropriate KDC certificates for the client to trust them as domain controllers, and since phones are not domain-joined, the root CA of the KDC’s certificate must be in the Third-Party Root CA or Smart Card Trusted Roots store. - -The domain controllers must be using certificates based on the updated KDC certificate template Kerberos Authentication. -This is because Windows 10 Mobile requires strict KDC validation to be enabled. -This requires that all authenticating domain controllers run Windows Server 2016, or you'll need to enable strict KDC validation on domain controllers that run previous versions of Windows Server. -For more information, see [Enabling Strict KDC Validation in Windows Kerberos](https://www.microsoft.com/download/details.aspx?id=6382). - diff --git a/windows/keep-secure/images/atp-intune-add-policy.png b/windows/keep-secure/images/atp-intune-add-policy.png new file mode 100644 index 0000000000000000000000000000000000000000..570ab0a6889ead424e9909c6e85a0c56c559dcd4 GIT binary patch literal 118996 zcmbrmWl$Vn^d=0!og`QW3&BEgcL?qt+%>qn1`kefCj<}f?(WXu?gR#B@VEK>Yq#DH zTl;0Fs+p?Ox0~DdoO|RsPfwVlyaWa+2o(kf2180xR2c^5O)GGCBO?M5B4x*0;0wiG zQqu_r2DA6|fK8;uBm{&=&Qfw>NE;}`a8%T94QG-56Nza!3%NL(+d0A%myb#UB6Md! zBx>qp>}X-{Y++{$^B#qa9FU{F%0=w#Jsd5*n>)jlVvX_uQq2FPj;4mMLq9rO*qFkw z-(sNvXHZ_xsMwh~yBRu~!syz+ybeeE@8%Xx#@2?wP)C@C&e|A2jQlEAH*~bMu>B6x zNw^mZ$dLZ$dKX7yQ<&?Qz~lclOvKK{#?;ms=4Ldh1CSxU4*O=|Y;6itbUIB91M?9^ zN>u2Zd&a+25ASbtPcP@-Hn&r{)FF8_WPkW>OvCr^;Q@dCG=lSo)yvduO6rFj)Sl+& zwU(Q~b#?WE+GQH0Mq*aFUn7t|hYx-UB7UR!@quSVcN`KUCA^^X8M%Mr^86=@Q-c!( zevkjVz`o9jm%4r#o8Kp4WU?S^VP~9DMXw|DPd3 zBrwFm5yEdOuwTy}SYG9>!n|IKOcqUn()!;Oe`Ml2Y5x;7v;A+;B~fB-Git&cT{t=3 zFLGQI&N(uw<%oAPf6JAu=6tu}l4XTQoQNPF-$@t+cQ+`vcy6$x*y<~S6{_6e~puBwe zDVM0`J><6|+=I=iF&42|AW_(BxwqE&jhnTG-d0~3usYfU+|;aNkT#7|l_?N?GB^uj zN2oBr(xlWC1$8j$#Y`~$Twr)RBCt_VFz}Ii3hk>gSI83rTzi3#Z~&Gr*gQ&$t6cU2 z_3QIGd~WyNaM3~a%5#KJZVy3{21P0=4Cc2mdjHHncd_r;Z%t-B-fva?E4A4yUzE{Q z)e1go)QFC_=LzDJe zQw?o?Y`@VxP(YsXv@b<~yRta$_qu3PIQ3rHUh$n3 z%0MX;{Alyg=i244b=xt?c6PAA-08Tb4xbKe>v#;fylw0PDV5>J}PLEl3X|t(!UR6Z5@UAycyg z9`9e!Hh=v|TP$kb;^LRu^1k6J43}Co3(4i6#ss z^7EjHi6Nd)M<~jZ5|NdH$QPYM=iFi&^^L_xUX0ZQ_#W1b=XB)o3%w|1c zs;x@SJc5AXt%vpGY5E%{Az|(fQ=S_GeHGLN@{8mX%|?DXrL>d>ab47=`vcBFh&+UZ z=4x2>lYwWEU0AiJ1O|qjAxhipjy-sXNpp6TCT}&mIYV4$4$5GurG}Kz=l-pyBw?ptwQ;MMrfQwx3lpNk+&Y)fWvtjBBiNI>*JJJ zH*-45lhcQcWbr@iBRgFlS0`E00RzANZodTx#8-(e?&KkQIGNIE9l0SwC&iVzuu>Mwk*^CwnkTa*pk^fDq|LV2t{vA zSG&Jd?08XgHE814aO;Q8IN?la?+^SD2b4QmfyMgtm)o1dZ*%MeUO~aHj;_5QP(puA zhLMUXTnk9+^J!w&&$SP&s_P)gbggwbY7Mv5H(0x}6?y5&ffRwoS~o9OG=xD29-z<8 zNp1^!lJ#`9pP6-Ie9U&ZEyq1qqsWGy=;*rSln17w5ZNzBS{{Ilv1TagIc9Cz+v&O* zm)#rNUDm8Fe)nT0{F2+s#4f-$o_ep`%zE9roXY{Gf_`~;22xIm!^B;#z+n!O5+YTX z1r3J5wXoW$(xA;JPJ!w^tP3Vb^xptm#$Q5DfBbbg|J1}`kJsf@Kpma7el+KX@qLi* zPC{UKBn%Zh3qT?oV#c>^1X+$idmiV6M zzdS#VgFI^y)&|yex(cd!?p+nOGo}zIpnUE;M?Y{2%4hiLMMqtkmI7RX-FcV;W92%_ z1gd*XI;h8^1^m}qT?-qQQvecLM(M4t|*S5DK0l^SDcJ1rh@22}5{RhHPR zb9>D0lJQ@x5y12y(bEMNTSPOx%w*#1=GhNddgGN<{LbeNH%!amq07D!6|^f~8BZnm zg4C6rG>h8cFS{K6`qk@UjEVx~<7+VIml0S+N$bBK=6NK6%RRBWE;>1T4nf_kSo2>d z+FYi_GW1qrc+qJN!%w!(tE$4)DY8MG;U)j|9?A8)gA_s=;H&U1YCI*_wd+*_bE>NT zz;YTfSNk#SM>1>#UgM5xwPxwgjs3-D-EW%kD-aAE`^DiTB&>hy9Dm zj^r8-bvTSN<^<(e$LFZd|Dl+SZlKQx7|K$`= zE#93^au|x`MkD3oYRU5~%}fzp{L@_y2Z{0BskxptCdQO9oTuHB*G~n%RHY3;h;S{1 zQ`EG#rl0JY)Xj#;KF9(bksKzh^#RQ2MtY znYKaw{gu~Ya=NgG4Xdi$+i{R)=izq5!5n#}y-bk#tdXJ~j}$B^ZM}L`2^kTos2PZ@ zK~%G?4J6ToJ_ZrjiX$bSWW%T!fT{2|0|A~-Zib1Ur$3qCVE0Skcp4Q)0(bx^-h-b_ zg3fiG<2@69N{Bx=*Z2SwQod!J9ZZJx7)Il4$og=tb{eT{AT8zT&jji~uw@_I6FP zCJ=CTT&5ZdYSyb`z0XZol4$1-4Qht$!Q1O+kodW+%pA}MDOhikz@q}mM=G3?9Qm1> z@a_6sp1n#8D)%8-`A%0|qxzY8xmE#<8Fsp58`|Kr%L;}1^U;914F11AvNN~?^w|7$LEa-aG^|yuLcjJuC=b?=>UyUVQ>vh|m14XCC!B9v+fJW!jE> z3;2z*iG1yawibs8zLp0P4e-w;Ou{cmMHbPMysTlhv5W%WZ69=6kYrOqYE}stxYtlV z#MK$$gOD``G~)`3Nq+vIU9M8b3b8(GqqpfEBMpw=e^?&>q7u;$7o*-II)67dNB5QV4&3z(Yt2Dzb_usm%Ba8&bZ_%%+onBcBs0)cQ`SXVTf8jHt#U ziW}aCMA)~+*mo81WMqEcH{p!+`cX#(Ov@$dlBn)dQpl5&lhQuAXxA8JwYB15{nk1( z-(P*BD89Xh|FHkR1naB~1Sx z`1%3KfFs<8wlC5xEB6)hS{}}@X8saebbq4aVvyS;h$>@FBWG4iRI913O|!!o-0cl z^D`3a3JF7|K;{hgYyp!OA}Pf!u3~liIXm z8ISOOZQ$Puo(Onh4tp?$?|$Kawe>k9JAbpfvRzi2XLFG-2< zcl*W0Z<_7Pu{IQ3T^0$+?s;VAEiST*#G-J@glbtrPPW@}L7Vmo$pTBVo<=`dCGZqu zQ)O+Of@XgwU*ld|S7@yt;`I_ERFp2L^^xwE?fuz~Xnd~Cv0h&dn*Qx3{wbZ7(EZ|s z{o8DV{duEr26HQZx*I!ol?~#Ju2Te zzc#|UmnvTUz5@Hmrfln639VR_&^@R9VB^JanhKp(lf2|%h4`hpCSJG)FRF79|1F-< zcXVRrqhu?iRYjz-+SSm4oFC0epGO*0t31^C>r3p3#8g#+8EZO#H7#pYWkBE7w+k-OU~UDvE7YC_{H5-2}OJOSP>*jhg4A7r&^u~z{p z&oz<2FbCnP%9SoC1s)442jKVotY8Ha5P?OlIoDwj^Rg+B$&uPE%Bl1s_WY(a0wxYu zp9_?RyDnqai>pC17N=SWY_;N=HMt=!yDp;iq4uL@E*2Qs*2RC==UwAbG5*vOR)nr8 ziLe<}<(4O|Mj1Nm_EZx~m!xSlwS~Bt*8LVT>Kr)jXJTYr?G8=vlrgirdLD)=r zN_9d-`_HQpn>Z33o`KNyF(L8e)FTJ_Gf8ngM(AvGnyXoxmk@ygZJ+F&Wk&i zNYk^TtC5KCOQB`H{`?O&1n1W$^(VK)qNcp(Cre)bQP5c<;^RdIjhn39%-iL03+;i$ z@5DU|Gib|qL`#Tnu;(X6Hf<#Zuxmb^qPn>HNJ~i;*fm=d52I~xrnBJ?@P3#eq=DR6fuUU-=4L z{AAdeY_FJSKTAh)*F$=N9S*p~@P7~pasSD;5DBA)<&HIt7jwSIDGrpx+zb7gF;Cpb z&bChb69@&=&rVFucv$tBClAoC6SSDVnR4XMH4vvv1WbDYq$Pc?2X7?Xxc{sboH@!( z`3f75{r_N+{{wRJe-*`);Mf`yw2wwn_j1M;^zCc8W=!a-BRlMvYd!XJVRvlC9Fwfx z0FVgtcs$P8#j+JuAXR4DR!yG~vsPNVl$;FjlHA)Z!m)ZfOG``p#7{V=Z&8C4-+2aO zZ~f*A^JQ$v^jev+4TWk|7O$&HNvp-=u40q5Z{qNBRtz{0IXXI?Q4NPG0yzgAi8>9@ zKo^t1_D!oW%-GmlOKqb(qLUEha}0b;i6W~ydmW#RUo7n|6D-dPwT>k%8P&}c)@!4E5Ku1qY8l#~ZE zJ8-unPleIx>SZ1sop#Te`y_j(OC{0mSym|a`qy{veQ#%$mZYt$Xa!&HCb%z0Sz)24 zZXF|u>Uu-86|KSzwyOe8UUD;M4^Qq(YhNe$Z*|7`Z&%3IY{`0)3oSt9#JSFwAXji` zn5YrgXJ`6fr#(nBv{Mn))&jK67HQFj2d(#KQGD9W3HUEpXtfs#jn~r=#oQ+hzAqy( zLk)DLPxWkP?sOasUI`<9P^#}w{~T;PoY9l&UeZE+0}#!67&xq#rJcHA5O1XWAyJIs z33dif#&5Xq7AaCu^S{pUxof#rd(Pom(&GnrXRn3&`&>$1Xll5&QuAunCDt9wSXAna z?hxJIoG7S$7Is+_uTNUsLI3iRw+m_9KcF3ZDeeD2vsK|z6y3=h+I^tU91 z*%*;ly?iGxUcTFbXm31I#@Lu#n#S|`sBfXl8208kbFs=8iP!Da3=*l=A2{5sck zVS<%GUA4Zl87tE3r!=8WZt5bpT;JO7uvtkoBs;9KwxeZotu@<|GI7(P27CG*+PvBN z0xW^?j`Y^cU)2-6ul_ypwdSFUT;^~lE2+N!0}Wq4@4(-Q-va;qX1&+6zSdp(B~xcL zr>-`7)b1sW*KacZuN}?Rt1uDE>o#&)<@e#Cp`jrN5xPBH z4HM6OJW}u2x(4fi2NtKXd}O{%yXjx`NaI#GEsv+`@>nWss067`LbASZYF8jqjs2#u zZR@!>prQz6R9!HzT?}vjE%Mzg7-#t0EW&tSO-bmu%&D&UKAfPF@M%bY3gS{u=yrhH z$#zG%UGu|0_}Vwz;c(3Ec4;6@5~If%l_h{dh(%(&9%WdDT3!+R}O(ulA zsCY+dpli>-z&Ukj!D8`;%J2IR6vAOg^lkZpd55uiKw+jpQOL=BYZGd0-1I;pvl^&W zmr|(zfbFsu_4qH`o6m*yZnv(XdP*?p6KlY)b+v#=Uk+E|{5|Ay-z_651Rv~@-KU3& z{iBYRp^a{d#vN@A$m1PHmaf{MOU2q)@T#*b-!*Id<%-QH=-$hh?+#@9IL_nCe~f{r zKr;9t7{z>k-%kTum?#Ba&q358P29-n6E;@6g5VPyu*6rVtLdq%-!EeP9s_}I*Q+Ce zi$U^N_ad9l5w)|k({{6a?TLaI2z~MemVH2ubG7%dFne6rZ55$21cR`stjzRyzKl-4 zy_NiIJXZfSQ!(KisNh=v8^P&=)9_se9~;I9?95W%FnIrL z??QK>S%|6b=Qc3&pRuH4tM3_H;D+(&48%0?zOTA|lG2Mxabvueda!M;IZ^F`EsqTp;`Yc!Y#Sx?1{xw*8{(ha-hfS=tHu@ z<3AbARs#}z`SyhEg3O87JHL&S+X+J*h|x3~zV^Ec>`>8=>TvRYCiL!2CM*HyN3gCN zF}|+zTS`jG6_5Q)HV%%9ZZt;wHIIFlAl)A|69Va@qq2DPTA~#1guu7YxN~e6*%Jd9 z+)kBr5rlTFRmPf1N^gw^qD{AY!{{_Bf1E5gyblwFZUkbz?v1lMZ~et4v~#&amq(-o zir1epwWd=048J>V#Lr-LNyM4Qu)e#wp zO(zq&Y)xd0-V;6N`Z;=wHW@)slIo?qn@8l|vWm;l(C5LeIt(D{e4jz$a|4g@ohj3M z3S*Z%o02p>>FxRIgj&p2-3wx!ZHSO6&VxP?TwHYh!}n-u#~e7|BM;JI&c_KcR8&;#oXioK za>-;i?q@Qe{5U)^5+?d7udonO7X?1pu-W z?{hH@+m*p2dTr#;9@$hD(~fs2WWB#~K9ID+h$qA$u%=$Ckq7#^6LGJi?>+B1WIe^i zkP2LTl@rAxf3^%+9lP#uPa04l87BUY-eS zlhyH=6&+pUwJ4Dv;v`1msM6p_ly%_X6j3AL1@C;Ok?CUImLN?xE5#-&91pA3&T-?|JJ_c_Cko88;=#<};2 zs1&kV!PQ?sesy)_SZ=UeKfe3>_e)xOI`?MKd*onYB=lNonv07IjY#ryM29q zkp#>ESb~qSNlAFoyr+#%!{kBO58TFbs+&LsdiPH4UWS4Jr#jD1 z&kPs+E4@u{?;MB;2hL&zTv@2EGRM~S*T3FDbKJ+^PFCP*6)(=;x!(0(l&~s%gjq<6 znlIyQL#eSf)|S0?&+)~*T-O)d+Q??LC=z^bJsN1-uJQ0Z2T2==3=yY@&$aHm?`E_= zPQ>c%pc4tpFS8jC`>P{K6Bf}%7=C|Of%ME`iVzZ33|e4%&?E8VOsuhOj-KKMB_;{0 zqc-?_%=$zU8L0OLM7-W{GjSkpX^linK88-tF7ULN>>(F~{S_azb#BZsE3F05I|JEKvm#A{7&d0L%_{S6V6&R;9raE*QY>!Qhp&A3B|BGnzlj@(2Er=)_`dND zYb{Al@uXc=f6UTYY8Y zr4AAj*T#2Pvflk87XJq0jKCZ>&og}%HYVp4ABlhAjJ=TC_{79HW=hTP&E>2f7bd4| zw|c&JBl;H?BaFtHcw%B=eCNIIfh=1|S65C=4G&1MV1k6ns%vUs2PY=J16hP@wm_!S zI5*OO0|A>k_Dq2soI!UG3g6S!4AfiT{_5~@F0&SU-5gcj0=~wR+33oAsRbqBc%u<9 zEh(U!cNT0X%IWD}(zhOb^eJdWD~$4kJ0DRV8tXHp($U!(L2IBTImGPW%+ThWkg#bH zoQx}7-{-c?yd%7%-0gEDDRjyWED!~>@GKW8#7SwFn(v_n$^GW&xVU|n#x^T08sBR| zjzShr!76A;BN90lD#j3OX5^{0ShdIed@CKX7xurn01_4P-ow``*H7D0OxD(XIIc1j zHFdwrFwQ?7+wk^@YyV0~6xUlO>L}kfumZu#Jv>eWE>FlMwUe;$>`rbv?#&4nRumqo z)fA|v*e+~%@L7b-c7;pN=UTN@4V^X?e@-J-M@1}>wk>$JPX693Jvq1-!?U9SZD=24f2cJy zbdV`B8s=V8Sy>qq+FD@YWn-5{RnT;c?}>tfg2dPVcz0=GZoU!8Iv$HfC+sbj;E2M> zIlThvTl}6{qJvJ}+lQY$GAyCDk@VsfN$Ool0OF{EW-}_guGBqxZ#g*6;EZjWrD=7a zw;uA;vT<(3X#E)f`CeiFB2mWUs0&GneSea?E%9%@Ofkq6EgtT*)(_KCn)Gx$ot4q7 zyRx-yYQq<7&ijE=7VZKWFKk`EgbX0=5x}e?Rm09gq_EW3WD$6BXLWJm)o9Mi_?u~^!D1&cWfC8`Wi(Bgy;lI?>rP83 z=3`??4TiMI(1Cg`D3oU_1QFT_9gp0SY98I(oF@K#PR{cJLLF~wd&7>BFG0{h&1xGiy2^pR;&>(`Nvmb6nrKJ_Y?RTurlzK&nY_tOPWvnl zTcY9N;nA+~K~QnU@`z1218AN_p2;ow;%XtL8VylCa&%ir%fs&3!Asll`g8p|PQ*oH z-|mVEzF=Q6B=Fp40_HFkuYF@n1}&zjbLvc?B7KhX<1MqO-Egl{>ch=K51;Y%N;x>c zBgOIdK?-iZ$e}{2X-;s=@t4^HJEwt@-!D%X&)imIB zpnEueFEsLkhA=Pf*K~hDJ=SHGqD_BuLnl;GD_;|o9iQ3=&--b$~H03wB<)g6C`W_FUiWlGdH2l znOgAKIH4G8ZFpCNb&^iP%p7|Q+ogxbaDw%pK-B^CbdRxu27lzf zRkFaI810tzqRG_dXvmqk)JI(nZyuJH_jbLax-@XMZOPkKWtp47c2krglPNu&v?D$A zdfo9!^8?hGaNpp8>mZ;_tKqikje&vtAM2+bg_VoKhC%Lg=5d-)VK;gjVBQ^*rf_z0 zDk)Lvctc#)I4fn&G2q&@jihN&!}Z?QUkPNm9#(K2UK!?5bJe=pqLE?BC1bRPlm{Lz z@}B+K(pZ+QFbIRUxAVYUBl&1dyZRt&`5{OxmsD_N{xsW`tI z)e%!^gu)%S_*>)L0N#T$m$^spX2I6=i15#zf)PZ$e4Iub!4nZ|o#5>+&LX)v?EN)p z;2MKNvv8#APGbT-W;gcZhSR+~C4>ytzt~Uqt5yGX5`~G_bvXbIONiOQIj>}GGFu~R zOpc*Bs6MyI0#ik0S=hxm#eTHlFSD$iE*ksTuiPcqSEL)+0qVTi$(#3`)0fRf!&|Gm zK1*vriGtGoF!7hY#c-D#ds0_KphMujbmM3I2ZYX?)q^?hHWF;wf>P{gE?bjq%zH#@091r8@KE zN0d4Y`?s(r2mmzldjwu@ zihT|Yb{ZgdtF&HZfzbi))-T&`kFrkieHxIFlr#X+FZjSN@@l{TR^yuDEZkVl$A@2C z#{r?Ntc>q!QUs>;<@sU7z6V1isjs*&E8LI($lBQCdR%mY!UQE)*gQ?##)dw6J2oXn z@*{Sq1JR$U&uIlyD=U%f5NaSn>0yEaYCr&i0x-K6&X8zw|&0?DuXGPl$$il(`CX$3dZEw%)wByBh zZ!BFxMdiI8w1-quTH0vpkJyUqvJKzePCT7XV{9m?Z;Ik)QA0zr82%dqLQdPA0l{Zx z07o_&OJfJ>t@4&rp7y5`J2?Bh-Q@V}Yy~MPl>JOMl4M=i4;8H!sDclR6OxjWAIZrB zkx0E`kx1NsDCLSfth#`!oDY@D+wUz;oAycMc~98PMpL?C$wZ*fw;g_LjG5T_(dD^y zK4%Y9O49x|q$g$oJLnC7@iNokMO2v#y_4tK42rH?KHZ97+?!L^H{Iy;AI;#7w^^=d z28wI|x#->K3Z$W@-(CEky<6e;M7!M|wGHGa8^G!t0bpLKZcCEIOo7A8)2-9fHTZIz z7h(?-kChJF;={wk&@L?B&T7+tMW=+Ucu0)N?u^N?phI>MJ8g}T{8O5?PE?iR^w^MGNT;CXn=)k0` zXn-U)%17Z-;;KRrMi=-Am4fwC1qRzyNEcZ2cuHil^{b^@^kHkyyi zjTfs;DX6JytiTLFw8WNOhH$-dDA$E>1c0`(LS}#@yzdnd&jhT|3p1g$xO<|@hXu00T_;5Pk#MG1- z&_>0*BZ|WyTMUxdr8wxjPR!o51GJ!tyS_LC@eTMfHi))dSaW{LHX3^i8R%C;OBGm5 z*L+u)FV}5Zua1j*cXWI#B`?1>EyK8*6G~zPED~Ut{ZWJiEs*w+*9mevQ6-sfUf!j! zS-jJ$z|WqLu(f4?*&c}52cFyjcv|a)N`F8_zY-IJZI(5Xf|bKpTih-mFDC$`iAgSA zMV>pDMy22k5Y!mg($bv{<<*uVRaHI!Duv8eMFVm}fp4KHgF5p;3Fw;#a%378CE!otE<+_$6nULG&eNd+?U@+g3= z4N#JAk%;*5q@OA$JmI-tNvH%qO z2{GpyvYriC&aceOF%;^I&Q_00_scQPrrjj%_G&ANUc>z3&$J<$d~Xz9{6B-am*{!^ zv8{HN6@RKX5IATK(j#jZiniQXRh}EXR%n;|*d?)^@y(U9{$2Fq<5lUe(G(7%j>DXK z?qOX5JuV~&{C_PB;5>)(~?Q~+CG))l(C%j`PW za4}Q3PR>v1Ke_|&${8|+yTb3or!Gh0%*OZx?rvzmrZ4Y!_B?Ie#svB;Xs>8B;99qm zv~9__xj&3lzgG0)8QgSwtpq=6#(5%w(ePPJhjCC*w@9;W8#fV&26BpvEh>y7iMZo{ z-IC4=X^jVT16Vi)2FC2{tUb`rQ_;~G?G1ZR!@z*Jb=?zBC1(WmXkIY{zOzoatAC5} zkB{DF;~7#)N>l3Y!9iTD-?$>({&Bs**O65(wVZ>o8ln30lIk_skcBVo%}+enX=M&- zhi81HH`0HP`qNA^npq>b6OAvp1N~!7g)y94&)r=xjEES+V9;0pMa{Ov%=?9CubfV- zDLmQN5m9pp<=bo>Ol4zUKy56kT_MTr?C+Qzcv2ov&X1v>XKp^V1f` zJTAjSDmdn8SaC!n7mqZ!yV!+62eJJ;oGFaY%EIiGAw6xqln1=gyb^@hpc96~^MFjx z>x8|ueyKGm2p+%!xn6;)lR0BS0JO>Sd-kA`P5EJw_Bp@t;k4y&v4)zPn|lSQL4ep( zW87Q?1O*s*{_Ahg7s(w=hTZTm<&9gYfcod(Mg~K*rfc1$;GD;r)n-KNYR{rRq)-PP z*w0$I+o=Egh4WF6{MTcosIRvta|BrZY(8AMA9wcxva3BLhvs;hO5S)8=BCl!7JmNZ zG$=3in~Z2XF{Z)3$D$`?QZTvSzSS89!`Wv-&^)uF&N1N=E4SqBEcS9q+6S;;vMxqh zYg21NeCUqD9f}vC)YCz&VTS81k-%DYL>Qc-Cg7LO9%Vyz3R$hrJq1=ZMSML!g_Ij| zW2S#OUQ|?)(3MFb<8OI;;o*?*iG8P#i8i&n)TBI{CqstBBYrM_?wxzbZ@?2XnGPoe zGB7eQtTCG3oGd4&+csNtxOiP1RDri=XTLEtAN+|P(5px;Rw;DllUGpK2U3Z1-v=of znQfr=@XuXGLqpQgaC1L9@|8r;?sz|C`vY+ydiflx{p3V5DqT>|Ev>@UpOLS9@C(n# zyF(}3Q6;6tkr$&($=7jDa-6?B7D-RDU#i11RWkzozDD<*H;FXuQ4{nRCxOrMWn}xc z$GmL?*#Ya6Ge*b2Mj{p`^A`04^UDlz2KOIMmoX(*_S(335QX(gu{IjQXmo9Bd1+EG zrKyg+H)%PqDUgpbdku*bcb1?vCmPOF#(7oY!ZRN(coG_ z0{Fb)RvJ1E{WLA?tM!MYpsJAmM2H>mmH-bZ{R?5E&-}y6$!&F8wSNo;q}vrY>0}zf zzg|+ge)!QX4wi?g$;L!a&5x|yJzA!9vq{iDvY7u@Pi)aT%)(U^0K~(eT9^Qx<~v>~ zxzS>VlMWdxemN4GZ3YLC?#zPTYH#T+XJvD3TKggmR4!14>MHj$b#T1j6APNmusv>G z$m0r=3qfBS3ryb@2CgU_Ax0`clP@z2|ujy23quZZ8JLq{PH{dO9p`zjSm%WGaFmyV$KR!4o~`f zm!knL2Wim*la;#30E@^?B<1^>u0+f%_ESqC$u2G9f7$Su{WrLZ5*)SBy=+n&z@Ubk zt9by6@4+a{Zb+dPyETPqDW-M`!-jFoR7~?^M4sHcl2!cgQ?~9;w1$8TX?YOe9p_cRYZpO{kEX&aXDnMplt-$FUzwRt*b+a;qNaF1Km~q(WaR$^yaOVX9SZyvOw$?# z-lI6o!ZTU=smE3?T5N5e56q^c-JR%rj7HVac6?k_YM^Q*&;1dc89lXog)v41CcnWxkUQ9bv&~ z_JMkeu>-eji|c=BgPj9WZ61-v+TSJWLv`xvUwms-x8psL8}gg~$oAFpi9KkTh=d+! z1&#>JbG@L4c4}od3G|f>v?vxUO{0r6)3V6g#{{!Y$;0vgRZ=cK*CVbif`-1eQ*>DS zC`N*W`8Nb}^XK?jjq^Y6bV1p0{gUy0ypC_6l6sMaLV`>T!~yY?0C#is^8NvB_WBRu zDyX?S z=9=eDD^{h=XeaT)#0P|M18=}EHJ2`@D=o!=Z>OLWNQk%MxVfI6-(dE-TDB^qHQYFG zlee7I@pL+1Igj2v-OKXqolVOwSgAIgIBvQJljQE^es&aR0CWPaIOGvcH$3;WJ#5p^%pszfK zyYs2s9fErWKi~@6+mHT2FqqIWg23hb(78Fap~UPjk5!m!nU=8{ zg-lja-N^!zd~px`DS13SOYp}C1yy>RsipxKJSNnsI)XTO<%-Zs%}J1QlWW+}iA3sW zc2qxYss$AE6JtkBKdD+oPfln|+Sk8GAsju&#|ZeQl0gH#@Wul;2w0`YXSeA7bNT#BY^5o3>2!(38PYAhxyFVw}YGZWi85 z{POdrb3r3)FF+~~UHJ${PqX4oll8Mw+;I%cklPOnXAN5nTzO*43#jCbC-}?z6+wyZ zB+Ehm35p3MTJT>!O}GNY4kA-~%TJ^9il6ZnJ7g;PkbUk`beMZ70;Am&a1GKoZj6Gb zKQ?B>$wV^|P~hk-(-EXwv6SKy2s3##2`9#iBErLpu{7w#CKxz6eWEK@c5nC){m+Jp zAAiO6>;WfBlTHISC{m9~oz(E1cEN=+_tme;Jh92GBw2{vbc2-P9#2;i_DaLo&H1Ug zZDn7m&&-K~yNxyQ@qI3OqlF$^5&O8#6`z6Eb*zm*AKsgTYKCv#S`X)FOzD#b??i}z zNzFEo{LG=A(~H&P)%Dj>V*$1K6V@Tpw@RA~&QiYN5gaq`Vnt)gklTQKRn(Ekk8&Ed zTDwi3{He9#K3JeMuekqok;LpnA9!ZM-8u1tWGaUf#YPW*VG$;4-4o~XH)KT!BSSp8jw4}IGmH><)pqR;Nc^Ip`XvdWNpZ7^J>d5@_f5j!fd~ZhPX=E8{fr%o8i%28 z1-b;=mG5HoCoPem`4u)xc!mzRiu4N4O{%)@wYq8|zCAaiO!LRxkA2~!S1$^WGZB;d zqdFKJC<=~gv9m_2hyp%i3c|=%aT9+`zZ?@GDxil{fHr#G16RA(n#jn3L`85bWxCB=KOWKxiW@85#+9ga&WS?xM;Jq{uqBW)f+q zZ9phLY~tV~cHYFh9a;9>RdcY3_{Lk+KnC1*Ye-B^I#XU^0q=MkkFuEdzyXLthf5ts}whmpx z8K#%pKVu5Xg$yxj8^}fNY#CCC82PUF7^CT>lLWuAmct4x0LrRx4))u(Z$A&`n9^F> z*oe)reNz=vRh69qSQp!lO_OX7^|f~%ImpQHxOY*3GA)e& z*pCOlc03Kd6eoX+STagAzh@$&2iQLs@dW!>m4|M{o!4}@gT;%{oN|g{$ z##=afTtw-VnJ6@aE?Y4shCqFroutA%YQ^BgZg2x4KeJ}H(hBoei5?uX}L;@ zzCnI}7Wj=4g(QVEKvjlqO$+5ORye$M8C(afEnFVi!XkQucb|Z|6x4KF1|P7$#aCnUJZi~2(x3U-W-^C7z5U(Hj-<&{nSJC`<0jz5QRD!N;F zM$~!7$s4!%6Fm@X>rvl1(dnzh4NBFIdwkT2gW!GE`+3#%f@k&Ef`HBl&4?q&{;lM1 z*hYrTB}V{4(uZY-{XB;-;hldz%@XTd1XE8#Tu$yK^4S0po<1$lkE(Q;E~P_k_kabr z=f}~NFd>+5$urd#w_(U&N<>8Wk6N%gleFE{&obF2>H79yYS3-k|Hsr>KvlU#Ya0-d zkd#j8PHB+_>F#dn?v`#8kVd4tyBh=q1f;uLy6die?tjPl8ACmK_Wsy>YkhOhwdV7_ zYt0s0%%i7p5mB_q5{cZI%5!@SPFp1D#YyFzE-p4}x6Q-HuSwfF|28|Sv&y)_7+Wf) z{`?6T-+k4!c?NnYP2=pfpU2H-%CsI24PG{4xL4MmZdP|AXnwq7U^t|i&TnYIshmX? zGBu?H0E3{FV76ko|KlcU+wDe_uFqNj?{w}s(5rw_Q-fek&BqOkJokIKH`)!w#fXiI zF;n|XhhBu~cEXz3QQDDkgfM~SX7ryrp?d0Egy4*MNGSE|rVis$EuxH9~QeZ@oOsOO*ei*WAYKriReDMeqNgxrhmq%ze z^a$>D9+cJ%D3D%4>TBhr7Il5yLXQ89|Wwx|uWrjJ?kA2W3TblR(E^KMbn(lTjQ&nwl0V?x#E2IxmrMc28BH?bbp59O_f zDg+*|dEzOugtq5VE?r-FRKwl01lo#-m6$o;$h(x6^gTXz7^($t!J{Qw$E&<1cwEK! ziMOUoRgK#H+o=deNHGXJzbG&t$0+N$_e#s%`e+rGOBCO7ggfi7q<(nywM^(`CH`m> z=>u-pW~+`@pofy;hH7BKli@F@S0=9haDdP$(A=06foCF5tKVq=4f0COmOd%_8$ z!4kwWHgjiKGImt!`h%FJSie}YLS`%+hrd?Z$f($Gg5Y~4AuJP#)U{zmi^_UA6%yPu zl0qU596wiihXgz6}f%YY^BO`F> zqVdmn@rKzwA4cH71>%zFj!wgBBSO0f{ldMmP9MrN3*{J83)-{KoHEz^ojJyyC#?>* zD~sCnAD=#VoM_~6CUg|3pI$Kw3#YD~DR2m=Qcls}y@^iFle%rwRs0-)kNJ*l7%}@D zhjn}%bbOzAH+MR$Fmy+NP!r=>GD0F3!c6GTaR%gOrFJj2Is8sd9~f_S=`wj{Gb^jOIXSKp2iPB%F!L5`^`0zIo!r|6?rl2Au=e zOhDL^;n$m?y*HZd21b6xhDsqlW!hgjjKnfbzm}W|2mPFc5^YQxtZsGHAgIdKuQE;k z`BVAyahG76Q<@pP1{dXRj*(GJk5_MG0LEXkVdyk;#^wBT^?Ji@>h2&JxCqO5UFa*a z(hiy%_(qNOneD(ptL`KA?{dsTw=0-b6OkKirDEvmMoz(>jQ7@%wJ7kQTA)`H!`4uO ze~JrDO5*L}wpGt#_I3QM63MargSi*3z|^}fDijRkB~;Y{f6&Ole_Jq+#Q=Nqdy2<3 zR{D(j`{8rpSx-U53E^UowezpZxj9J}7Y<|`Mj?dmO!t+cW%t$5t}m~Ke*fM|x9`aA z=pYeS!sD{R1K@p8N#w}3h?<&}we{J)7qR`ENV`L(wua!Wsg}3BaaFe@~g1ywXH75Ty?` zUJqtW5SUnhT>~?ipXyVmXJisTRDK4ZT&~*WN!Hg&xw|FxS5oT5W~lrV!=qJ? z0WBv>*h`gcYKi#cZ#=|*xS@@S4aKDI4`%*Yy35`wWAA0b+OueARY3D??WXW^&8#K; z>#t3pYUD=eMBMi;0=g*0BFI3yFCJroa%@>f$Twluf=tisMB z3wA&Fi)H+H6t>+0VhTF0HS2>%0xX;)TeBtkqi1nX{r4nR;^oD)86(!F#y(s)-}kb1 zsYMR6qb)cu*O_4<_T56Cq`vzZ4GGvb_gBDWywIl0=&mn zHu!v?%%iXVSG+z%jYevVd0Z!!txEPmZBmuG$)o~_8X;~-W=hs6M_76&5fMHer}Xja zEjFBF1jpUs1p4;ZXcws+W@S$SgeQ3XCB7xG#NsyxOxiSHSKqi>#%e;$g*dEF;2<3x;^44-=T zb?e`KNA+8UIUjpew~dH6f%|ZPeFuSF|GVHdpnli{T!ZmIH2%?CbrAl0bM&`wgT{9$ zczIJH^fF-d&Tl$jGI^bMPJdCvK?r})`=@1L*{vC2rr_gCGh_`fumlP`$L;SL?7sId zX=!PIR(RX=cs`OU;L9h1Ku=HKw3B9y_tA@^aoKIL@qpX^*$0AB0NC2n&Te4aiOqV3 z5tOxsS$=$g*ANpEt8zQmhQRI2tw-!Ywx;X$4~TNQgPQjX(jf{j@DtF28fJvKHQM!X zX5#PPK2YzB18tI+xjD6?qazT}Br$4s;Gnzma+7!osmjL}oVO|!l zB0YbmHeCWlhof%-RwuORX?Yvzy<#B1g-WSB3Yd&wu;gdNf5_cejX?{T|ZhYO@yqF;MvU*G=QkD`{9F zJwG-`XAiECs!%GeC;l`}p|y$&U7t5}r(XKy3^V+C!9f{NVmW z28Bsy0EiQNBC#2ow&G<{xa~=x21)&WyziKF8vcM`q$|ugFK^-G_z?EG-t2m#Xd2n60q*7u44%{K^T1BE5t zz3oJnzqOrg09wPmZ6K<@!D9^w41}qvscBjZL~a7bZYrx03?TMNr>CbugZdUK3yv`T zB+TfX32uSfViEJLHP&&wQE482Uyo_a9k5wDX@F!qoVB*rIAJ*>PiI zV?ziET>z4|fyS?{-`zGAF78yTyZt~cF*4A<%BHY>kxSfuX6(&;1!XeU{Q*%*q@j6KJ z>tN8$TD^P2F(|^LqI!2PCKeWuy7HtF!lR?NN=hp>02?F#)oyQc(QDytcx>&NPE~bG zw(R+^oD?>Dtkod*+THzVVeFW-Gnd$Qail%*q|MIW_L%wFW_4w^h&^3gk0~f2Y1@lXGqyvVKVWRX~eWQu2@5yc;tH(Eq5F zozHwBAt8@I``f#DR#&MYCnqi~B`gdr8v16wyo}-qd({(fo&zXgXd?p?YxFYUgSy?$ zmet4Gr!}M_5;2oULPoY14)3{QKVEB+c&tI|`#-rt{=^cm)+6|DW0G1^-FPTbDgL8> zGn%Q5xeS&xHCpWt8ZV0z@@9rNui{mx8ZR4u_)hMvgcAtD{#T)G+&n;Vs4uTc)>gbv z%ntq*2W-13Dl7Noh(|$Tbr@LoOK3p8bn0?!|Q;~MQ^t#H+EwyL170}sLP{~R(SAf1!o|O zo|YOsMS5QBOw7&w0!ynDpdxxpBfkY!TkBxv-m53RN*?J~)6f$KD0PL_E zK=W-t?r9`Lh2hyoKY$_G!B1MzazKA@aNt(^*nqgu?z^gj#Sq!ky!!*9--YOt01yR{ zpF-kewrH3WxOwdE|8ya=2SjrR!sNPxLqE30(aT#ylc~4WaFsEmMiIpM-8fk2c`AU@NiB+0X(4EBqZQVN|XWH zU}i>@R`4x7T}D|M(|PCjI!FyW;OE_#NB}<#p!N*4 z)ZLHfxk z!8NSa^D@%Wv+VBZ*ylDkM|3`4RklVb5~lYe(SgN^MYAVD*hLlodGhFJcyQkj%b|wq z>N_0ByMCr{w*DCzLH9;Hp3c1d7XPyH_=!VJToiMms-m^j^gzYtGAa|c@zmz2|1(`o+{a){+|^~Zc@${clI;sCap}F4 z`?*Jx&Cld&cbDD1Mxz1I(goNoNF-#zsF-8VDG@~=)*5u!PtuByk z;r7iRjr$}f_D+{sridt(+!k%YSkT@7*K-zG4%10uOpKhuAWj?C>!j0H;s<;fg;^14 z@iWVuHFv3RHLIil9Kgt2lI(!xSJdn$aWy98g-Qo-pFX~(vib8>`Cszv9SMWS$bq(p z`#cv{;*3$s4q79u6ncs&WxvBp6aRhTLPDA!X7@YDb#wjo-DmrDKF0#E*spdDr%e+L zMor1lBF(m_uDW`kSJL7-3;{phqA^tEVc&?`yKF79GdnunKtH%Kr+Rtya)kfuP2@EUKFyg>#D6>T!ImbKcC>#)le0_7t#_Z#nHy4=ZQUpEDa14d?wQoy$yno zU}MfWPN)*q&F^*HDQEzwv^)2)#mEM!CZX<_A@ zrYJlv%Qzkd-7bd*1_pM}3zfzFWFd>_w|qX1vwp&iqUyM&&;%8IdPa=IGacmr4Y6#KqN~{DGNd%Bzi41WP7zLJ;7XWV?ol}CR+7d5cSdn`?e$gRILtBw^fKm*d`z$= z?qKwgp|j`PbQywjw?|D=O@6{mJ`oj0$AxLMU}pS`gm5~l{^@ceZvL2o8FU$B>rTCa zL|KCA^q*u}HTm$pw-^)hkkknx3T)2QXa7GYaQ05JuoM^X@iM;sAsHFn`5a0|X2EK# z$i4|r35|}B=F?P@FdK=_fynVOcS z6)*g`^b=2^-E8Dg40hQHKR@2x=+V5Umhbr?oa(6!-r~}%RE4Ce!cl^K=Q-NZRYr4Q z@WJp0P{0}srg?zLPn?`QjPf~}dTi4e_>kgDP4Ij`OgoSu{a~HWmQP8+7FpNy%dV_^ zw2_rcvS}-kzalMuBxzEDmFjN(Z0jasdz_`RprL!#Xc;S*sgwRzMBTG$h5?3%Ub-$p zP>%4o{|>J6W-l^X4>TF^21VC)KvF<`dl!8!eNz8l+?wm-zwe4fyQ+raU0G#iXd7$^ z|9oH^#~>&mZ!%TJ31TG(@ zk~MQJ|4m10bUdaFUr6Jyok&LX{vC>(+FVCzgw_T3`O3L%O2Jm%x^J`bIeLwXvD;$U zh|$B4D`A1DsXqBlmSCdys^-W=W#ucnp}gm2VyAgLHU? zBYmii5cyFkvx0P{s&4%6EAe9NBpWp9ovxKq`F++M*b^vt zy=~xG^gkxGtxVLxyZn3JMvomj5jP7W?X>%Igr=l1-7`et<$NX83@b`K<z!K?Yrvg$8p^Y=6J#K5)H$ruH`yNsk@*ZGF`1*LA@AF* zB<>)J{LZ&1(A`&`*Vi5VRR*iyX2sb4-uM&_MV8L-gW9vlfZ+g&Bsm3D5@!|a%xPcy%@Uk%rxTx-o<_)EMX3AD zq_2JuZk=3d5lnfj!Lz-4YdF*ZlPrO0&K@7JAtG6ew`?E6~%F4Uk+PA!$zg+C@Pv}7j z+Pfjg>BCi-;z;4Gvb?vs2QBq@R_62kIOFxh-y1|No82c0`Wj$rA?_=~9yCtwUJ6kfyuf5`~zq;(b5wzZU zYatFBh{7Hg)Ato6NSMM!qbJH30b<5llJ-)0u| zRD;d$hTKpo3ex*N@uhY;;(`P{IaE+XEfP8uaEZsER@IXCBQ#At+-+hFWs+e=&baQa z8b(vEUyZVeA~!zwJ47{%->aG^sNeD8g5vecz13e=_2uWujY~;eY15Tjgwk?kjv@aa z3qS)iB#QfnLhyZTods#j#+Yj-2`4ZpB8FF<0!S;cEO@AgKE!fvWSyXGIwahb8}Kx3IA^ z*V}s?>)|LQt%;1Gznk8#Feyw8k-n4^uV)W9^to96B*e_NN*ZY?&P|7rQ*rl>V|QJ4 znwTv+2Gx-l>M;gE$HfXx)6x^~bDwFOD-iM@nk1RVt;eej#$$aKF{TWl%p?4$a%z4P zX(TI;WbOWU?Iz5jnJ9WMS=LL0@*8sunQ#0pzd(FiC=S$y2|v-i;CEsCh(|jo0Zusq z8KU&~tvLj0w4tLN9Aa|>gah~}E_LUgKdK<0)N$Q1y(UVQP_2vlN;Y(W9Z`Z1{Zm*s z?^Qsg7pc?)^AhT`m!%SH2|2>Pd2-Ud&@Uks?D$+gn+Z8t(fCw6DJ3;z;bk#ySq3Io zp-(E-HE}VtVVw>1;k# zZ6CgNyk5Q9%@SgOz+KdTqf!WFT!U-7BM@PP+btNeVw2m>`3Q5nglH?MB&lUaM* z2LnA(nXZyjLDQ<*nh*sIwXX>{qouQPyZa-tTN^aVh7Ij`b3|?_1?flKPv~^mZLNC@ zlgSBEg8 zsnXA1RV`u*9G^uRu8w<~jDjLySzUJ?cd-Q+%8oq++FFbzH_#j}yEw)O7PB_b-}Bh} zkf?-SlTGHY|G_GV-5d1WbjJUhDyA<%{yBPoJk_KIKlS@>gE7)UmCp3Ogk;&Zq5Zeb zCri0_lQhMx>8>8x2*1A$MWcbO%eBn(I5I(o*vA#NB|kR-G(EmZ+ikh%Q90A$DvtBl zR~r=uB*I4G@89p*kdX~Xl&WN`AQYOJsReg!PL>UYD{uV8iZ@<*yoe%Kx2^oVbEy{4Ud>GKftC%Isarc3Z zn2>)nl{ZwH@NLgXQ66R=5u+)S9!!iCeO(b&Q-`|<-YqoAji&CQJQ}f6Phnn?Wa&Ja zT9E^(kzs=UNw>G9k?3Ndc#3RJtBvKTtdXsSG}RZiE*ja$8GabZ{U+};AS#TN%q`&k zRZ?Ex=b6z&OfMpoC(~O@S4LMsLqiogSV1J?7aun0_aQ#_A_4l4=^-J|>5(kR(uDoA zAsAtwx|QG+Wnc4<w~z1hWuSZE-gRC9Ee7k`8f4y(HzTR|O6Gy-U9 zce5LC&^$Tv-N*@s{3e#UHQc8TR4%NrAYLRgY2ItZbxf?uG6y?byWXI)BjSUn$8+vQw&oO8mhjv<>wHV7^K@wzWoK{kue}np+m{Wh|#HJ6I zBbE0v@=fN4;6i3XP!cFA>V_?5SG&qEHMX^-ErO!F=>xTr{>kR18ul#=eELXwk=2`k zMd9vHD?49LPVPtJcL`y6lYa>bVT_tEXh$?U!3H+hC-AXIyd(6Fs6%vt$- zHyXN$DI78toqJ4MYJN;Y+N~awT{e&`A#j6_KqshdS-1E5 zIMe3DYV6wH7pY*`p(q18lhJE*}}_;dp5;x!p(k9a|^ruC6GUi9O-HNc=&G75iWG ztbcRz?fmhu54Ix%1%sz5J@H!GTvevlWD=JVf4MoYiMko680QoRh%12{q=FhNdEifn z)a41bjBZ}S)TdoV_0{1c?Eb$Ex4b3(NE9{RWDe)kJ5D?0EWMys;-wCA9^78Yxl!!O zSJqx0)Z(4JxWi_ry0-r(t@kDsFT0V~uDc&wek}-$ zjb3EoXpg9MC$AoD&52VPO5g8Lo!u=D*5*~=;Afv*ZxFXVU7?nu7StX5q+PmRoj%^q z9~@%1XuKE>JZ`lwq&Jj~Z9cAz#cMJ5XcC+meOOIAf1Xr6^j>VC#kFUdA6krZ*B+tB zeB3U-TKDMeiM)y0?r@xVYoK!+;o^3gPLB{GOX6ky5v{#;#Y-G@kdu05bo7PJ;v~-C znB@sqFjxxM8} z4n2Y;COgruKW;dFN`shhWZ!@J^7OVC`|BTHCa_aEzZ#Cpa1uumP6zv3z}faZcK?II zL+2HlfS#U+xb6EQqynQFD{JghuJ6v1DbFDMcz9c4oG>pVwG6en=9^MVWYY%LwBQh= z`@G98>j=sAjmKLVcQfIkR227~sdQTy;GrajX{vQ^wRkCD9&fbeK6|_TTqq_!e!>-ySTuJ#(n}u`yWVbk zPg8Xyc%h{}EjGLt!Qp#G@}3)s`Thc%NaiEy$8)TUOVpRkh7qaI7fS;>>F8gQIS%OG z6MNyfe+)P*+RlPWeLnS8fpU|bLh7RxKUyYx-Y&ulwZT`{{CZ;JoMY%pVRK~;wHW;d zHBRl$f;8zUmR|+L^}!dNfdzqNbd}a-+t*e)rzFxY+kI2tyB3`1?P}|;v3g)+6Uq{4 zLvLbU8EMJCoL_q(aUCB>8a%egPW8L}xq_`|;5(8N@|UUekK^;nx_6l-^)B6YFMp}v znL}!{Ef-$H`xw0ybCL40KoseN!l*ebCR+h5fnXnn zTWDu?oB&Nas&8~W$brDgsdDVXZn}hrH2V~{`@_mqOq(2aT5cy`GsP$PBmHNSse~#L zBf+&hV**&6c3_02snS`S!s>|*$I?EMFirLG)2Y`hvdGeOzA_c|M>eW65}I=8Oo^;c zQT}75kT58Fp~AX`?KSQ-R%&$iY~DY@|GUUY2POpv5s0YM!P>1-G)p& zQ_TG#fC*e5HxlW}n>geXqj}92u0T9~S6H&uz~VgR{~J-a@-myA{@WIYZ}Ttgwe$@M zQ(bly7XI|hj5l?`=rmb^*i;{9hOq?P$Z>Zqx1hvm*p8y7BIM+A-L>tR+b(T(%I9Ru z?Q%@CtBU~W?}a52UWIbu{k$Mf!{)MJDMoWe!PiFXep#(cVRCD3Ejo_TMz)-n%^8qW z+}iA&hPjcu#Nipl;UP*K=wUAz!Hu3%(=k03-O~9DbKU90b$V#CHuY+j)?uzAi);0Z zB0fi9a41W%u~!B^uP@f;M@Y9bUp}E;ZiDg=SeVg=3m8JXhfdBG?9N+Ez&Zp60y2RNjq77pP2IEfj#mU zKL`5NDGadjul?iUH96moPU(9hdR%b}LCVt~qefAA^<^pMqcP;`Wf59mGgg+rAHciJ zlr3AVvO{+Gld`ysju$WSx(WB4SdA2C(K-(0iN`=*ztyiMFyS8~-QhN#;w*@G6Y^CV zQ?vSw%cf5HZELnRm!LuLNJx(5FGYlQs(_@WWlp}^TOYCqSIB<+Ckj5_>(?J8PW^E4 z5tU3S#a!JvQ9lGP#-yc$hew3m-u|nIl~d^EC?^%3{!wIVVq!A&9wYpTC)RZiK|lRp zx9>2E1F?UOEn6e+JA}Bx)>1?85))^rDyB9rL5AR|2nW7SZ&AqBAoxlLEUe;n7HK7D zi~P4Y41PnUQ-uq*MArZB|J&t|L8+CipSN>yT(yRg+-%3(`2Mh5)q188z%$c%y!Iv9 zDkKtVc&R-xc?_N=9=uax==@9!8Z|HlszOL3!;Ae~8?8C1ZY@dvZh?(;4I%DH*h-5> zpVFwMsxgSNR>MjL)RS=3F%b48$$rU47%l7(8GoE{xW~12ukq2r*7rwniq>^iUg$nGJ2Z30Q$`UzOVc|NB)|uyYeTEN7zZ2Ok4;Q7kM4 zMI{)r2}gB2^7t!pTPfjo|H#s_q(wzvopd}f7yj^~2Mzzn6aN>8FNxt?mC>?Zz3+MV zYf^MV!jW&ENQR~q1m)!AQGwUr;$Z_|ODLI`Vu0t&+vy*-W*5XMmCmcmB~jdMr0^MjjAdgL`CLr(!)xM5X6t_(=a1StcpsktU(hH>MV0= zCQyK-z|xIPK{D__C|K=mT>2D8ox@=p*?`^sN#4n;e`7{L~-wC$K@z&3bt7_ReJ#)qG4#+$lOtNRfuUM=Gn& zf_mq(i#zufPsi;BvcA_o6;y^i4aBkvbj^Q3f6#Yz<%B>_06@&k&tG@pQ%Vd<#_Bz} zxd07$Hv1KR9|6*m5~prBTnFHDc~ZLsI4~IiIO4Mz!=i@0k~_S=ey+IU;>u*pr*c3+ zL`wQ27uUd%KwfsGrWSMS+s%A}oz15dEUgjvhvSBc8t$iCwnqrmGV9shHSw0BPgrDB zWQ@2gPYe1A%tyQ~R@WBg#De*Hi)7^uCq73piGR+7qG-pidW-i$@2bXeUx_=r;9HYW z^5_+nG|c)+(m6Ki@?;#`Agx=POf7r(j^eef$~wMz<*wIDmp5%960{#@$bTwGQaP94Q`ONz@NqMsWI-(L7WY|#NmceMl#&#Vz{1W ziiR$2nyU47`MtsEY3s<{sAJF`F=@oegwb}S(+A0Dw@pVYuvTi;YWKLW*<_O)5`Vc( zd|_VddyFxAbCUeK%(?*V&mCEvPY6;q5PBEw8sWjm@t-4*`d(rH3wl&2fF*3_#t8r} zH0bsf){d;2+Q#N4a6a1F*>O57ZzTD;=@PPfvJ2Rxf`*19h|^9_kBD8zojHmBqa#2u z=9owN`})@0S|h^4*8qO^BoGJT>;9csEnYgP_G3od#$i)1hEoQ=SD~kkjI8-Qd<}Fn zJxNLJ40LeK3g67MJX&$uB4M{bNHBEBoNBusIh|r<)6&u&QRwXo^dEKHkO~Y73|i!y zeOXCfTi#`(6bbj8?T#%nxp*%^J1p?8bh+{-D`st3Q+?cfq|tG7NVM7K9OHQ8fl>=U z!2mt*t6fcf&5uxZ!F<>93<16<@pJ~-GMlYqLItx8Lk2c+w@N&&@6+!$dtu-|Q*Nxx zqQCt~hose>vrkMa2U=nEqkhW9AFuqXA%*CxmooWyt})5d^+(jEGj|>m@d_D1_Xnmj?M_^ z%1eP)KwO`F?=RQS21yI^^Fs;>s3ES}KZS!J_~4j>YD7v39zXEj@>SRzr)vW6Kw47g1fez9D#ia1PXz1n3SS9gBUOURr+)WKG(&Z zNgOm#Z~Q86Tp8Y*$b}wpTAZBh0gm7OTAwrff!zs&NN!y9`v7=24}KB|K>z%(`oa#p zIe;G&EU;E?zMPbSP|ctJBjFMf5_*As(k}qVA$48uPc@(RAft^%G*&~t=EsTJ92c@A zgII)AO0&vL890x9?R|Tz2=$F`M=KqUJ9l&G191$#4z3ssxxS=*@-v5N%=DxbUhX2D z#83HFwfJ1))el-RlUv9+2wz%oOT~23jF&kq&kp(ThOD^$m6@G?mHpA`!_He={b)G@ zBj5HyETGf6Y3R~x6jX8823R{ljTv#578F>5&s%HQ4MXC0YsB1kDgt5rFflQKCD*eM zh*}WaEr@LuaCni;IxK9^bUq+U2LOiH6=z`#&AqH4A^{H$=CZ#c~JX}@()iKO=;UJunhedJDe=>AKrid z@t)iL-{&#@-HWa5Gw|?kT-<54d9W?FxNZXHEh_M|fBxYKA2-;0FkR{i2Hj%11iLpB zWfK@Fnt;Sc#OoB?`MAxZ>$RT`p^aRQ7rq1X@f5hiLx3Mh2)40dd`m66wl$QXcF!V( z*=@*r=?&&HAW(dOaTh;0=K*jgku+I8@qlw2h$B@1W@T=z#8UB!SRnxDRa8~&`||4b z?TEp%2tec^%w*;VchvIn@p15^gtz`{iIRvRI0I4+Wo_+Y0P?1ATI0whF&h0&VS`-U z?=*e;c15?}+P^j98YN+T=&pHAQSJNF!_8E_ zOmfxX?s%3$9LYyKUMETj&h-d%Bb$Jwmq;>`h{o&w^^IZ(m<<6P)ROD0-v6@&0-i)s zj3Y%Q!@%GPA0Wu_lx!}0ijZR;%#!ugc`bWct27y#mhE7^K=p>94W8VX;K8?hU2TBz z6#s8B0nlk3z*0gR6;bi|w-1#x#PDx!rPEzuK#4Dp*o<3EK$A>=aM`t=P0 zK<4C-gJ~`Dlwg(${u7m$uMePHL%@L!|AQMNGA?r-V3)yQA_ah01S}EyfGDAA-bN^2 z)2($G(6azZ69&hds1(QoAEi{g<(BM2KJ!}q+WFtWVu#1)mQ|%to{Ej_n|vl8WGX7F zt4jdMGO(@!ZZuI5wvZ8Q`q^v|Zn*89gB{uC=A5fjducQ-zG zc<$rynN3sASnmFcU?<{2j+Dxa8XpD;nY1AIADROH87#P!T1ir}vXu1nCBtV&ZXYgo z$3KGy8Ng-`O%tEn(J$b*y0_HqY@q`n$$6WCyu7?&Q!=e25OD$MH!8fF%#8s z8$Qm8(JAB(@g&MnS6h)NzWRV+tgz}AEvX0^q3GV>(5DcNieyRi_>{V99iw{f=6@}R z9!J%Ka{#m$P1o45eee-LLP7#uohgW7*~b?b7l^Ph9QG?2#2?&#me4y4?+mhvbiP#j z4po~BiU`^-)J635iGiEi^1Nx|m;i7UaX4Ty`9A11+Rky~s`*NrCvf=BpCm^RInELY zWgLN|1gmL!@DPGv1}yw$5A%U@B8dO>k%ljHp+;+0Uibn&JP9-ksQDV;W&`QXe3g-? z#UgmJu*AuLw>8$tJ|6gnR|nIZU=jfw8T0L1QJ}!7VKiY+WlbObTcMW@+_7;OH5JW* z@z=nLV;%Bq!MbuAB;#Fh>Ip7Idti9R4~{tCO9xxL$Lv@RnC{Ag(8E~D^sjO|$RqjCYb7!VXB))rDV=tt+bd8w2@#!Fmfhe9 zoFqG5*=9kZC_cnDCqG8PkV7>c*A(Dk z+I;kY>1Dmu$--IUu0nB(O6_1eR8(E3nK47|H;SiR;FL7)zs^;?4RWza{QZkWZhwLD ziYPNRDgpWxe3iunIYjOUsv{^(AaS}noZUSrtu#O18Umbd#O3AXpWJ8tb}u$Saw-zG zQ~*CVBFsF$PC?3h8!key=1)*f0jK0x8U9 zx#fG~idPhv3J}LOC{V(bMsFk~C2fG=1q+WX-)sCh!Dk+Pe0(B4mvCScIRysUeEbJ7 zL3;)G1|XFU7*|7mH?RT*(zKD7(kf6Q*QO=|(f`$XAVdN&D=u(IPmy71PyC$ai&Hus zS#g+{n5YPB9}DF(i}YH#Aa0((KGO#{ctX+#1>PG>1XxI(20**nQj;S%?g=d*miR-C zB>^~aMKqqWP2XP3kr_QhLJcd?5K4uooAS#JnyS}ti9g1n&|aKgY6VU(jy#lz9Lw+U zqHXr!4B1iuukI&8hHie+3bRCr3K2QBifcts6p z%CO06==utr3@B|i_~bkv_gW-mZTQ*F9Pv8GCNsx4V_6`TK%FvbzT&Zo0`iaqC|Xj1u{@N9o+~zU zGBPC5L0sN~N%kA9rXxY<#(V?MmOcu3Y~4@vV@U%EO99AQK=T;{E(q~M1(>av9SX8lNAn|xvzlkt^zVrC_a}xp@-{Z(ZE^rTE|h&*{_L-E(5%lVDP|Iw*j|p zx;vH$LAb$+i8x`X4_iZ57!*(Pg$V!(SFF_kI5{=t3B(}~6HZ`d2Lifcqn%zTDzP;1 zOO1$$*@kFEKqZvzA)i$WPVT`90H1{&98SX4!cdeHFdH;}h|J(YC6$wNO9|cC=oEbU z<_$*z@vRiC91VJ%aZ18@6yT*y4&aG|8T6ciCdUu2~*v1#JoUV71&j{xUBLvXZ^ zoKGsERbEa`AXr`kqJG?!wlfVpm+V%5XV_u&kD0`I$ul@bK>8g)fCBZ zE*)55zY;XFeArjd2!R^Zib~R5D%T@$l_knbL2EHF5ycH?!f~(lVi-NzOK`MK;e$AS zSxNL#$0!9FaiJrOy^q}`5h<2G#mN*p^HlJ(K!){K2GSpp?05OzK=LI5Z0CDiRp}t1 zQymO!?0%s1@N2aCug(GQCJkQ0ex$3`F30%j_h0pjuB#iK2>-wDgXtEJ!CS{hfQ1o` z!ILn3(CCGdo1NhJSQb}CDOHpfT4E)s+$8aagTsY`TuwXT%`3Hdzv(uOV zZ?W&Bep>Qb1#?jbkv`Cd?FShJe>Zg)yAN~m-v{Y#?lvx2$tPPd8)TF*LdKQE)QqOZ z3ggVtoRY66*zlbr@??Dr*3VU3{UyHB3;ywLhZ2|TXs z3S;JII6y0@aGqt6!&X8@(T{U_`xbn&?vw8E<{gCO|8I=Y+x{zz5MTqN2*AYl*SMk zNg!9Cg%;mVMN3xMxyYKn29}0kYXQuA0&So~yG{=u2a;TYmq%w%F@FMarTJ<`Cn74! z1eiTTPUeCFMR-N~wKgdEHOjI7u<%|3^$L&IrN!LUr#KQbAZr5;*fIBq0-;lHa;Z+g z?6mDhiD0LEO2z5Xt31*VG($pO3b=~ya}=@6wuC@YEk380qaeNW?i1lF~wF8 zXo0qQaFdLS3r8!d*q~DYByFHOuK||H>XrJVXPbkL&AN5qg3`JmTY@W4N|A%tMgcDz zS|C^{uvAr5HLTYLVXyqCu|h>vHP{G`hX@tuzo-);fC7RMM`o_W9=H-y$s|<)n`f_^ ze|l7*z_IziqH5EH&yg<^oE!)Io6`!^cyVbIet;ts>36{hgKP`*Fknpub|irVCJ^*M zfgh-P@%Z!A52R=Qzb>tX*4p&~P1B>yY(d@QqF_ZO2DX!jhQ2>11JO!uP7Vyn2w+3G7aZTg&?#n`I+Q>I*)=)^N}yW% zRROS8gOomJXJ>6s*Nfl)z#34Hg2l49tn3@GfwI>k4;IucZKp7h4GN&ZS$lcvd>I5a z3O+cY2C_&50-K*8i$bQ3&0<3gH~|ZCBXVe6{w<{f0ppMDk>m?dRBbplLv$@P@);19 zjzX|*0m{P^AYR2v7z$oIHU~o7yaI`9)V~}tU_sAnGsg-_Z_QeB6x)S5;dn~$mnJY% z<~n>od=Ux&+g+&;;U)0=j(U0A71S(Ox0){L2NQJ;h?{^VHWetuK-mj1bDf-=1UoP= z2L4Z+=C!Ggn*+eV8x7(C>vy~U8j8gCQVA&U(pGn3aCNbMVT#R{tnPGG*m|_DAcW9R z@^5d$21#oQ7lUPfHJez!SnlC{>R_^2n?9)-Rld>UAnVuP=8S^P)lXSatQ;u*Qfz{L zPnlAg(Jn_^gkE@}MhT3Lbw!EFS%ODbBT!|9Ne*7>YMhwXG*dsNaMDUbmkp9AiFSVV zbAlMHhDyp8xPcbTghwHTX@;#I7>Sf~8oU+>AVES3JWY+eM(R|CX9M1li#L$zDrK3p@ZFkLNNgeh;>gJywYI^ZE9O zHQDWJUPuHR=|`I|cZrbXnDd{Sn|YK?WA5UB=a5Cyk{FoOcK|&4GlO5Y(r@ z&>pgH)#83K200}I$d@2Hf)GD$AXsA5stE?q-vzL1hn#OxAe#!_-_`~0H{?LcVn`MG zDGnk^eg@C~ z?Otx2$9{gY2Pk0o=c*~P{GWMs8f=Wf@knjpV?vZ(kS#M%;X(EmfdzRgP}zddL>t+Y zNT&j<1x!J$0|MkKhpVW=nd1Mj_1@uF_x=Ak8IesyR1_k6N6ILbl@X%sO_HoAQ7XHP zXc&pg&MIYj4C$E8Th zy_&l@FK*VDX-T-GM_rqr^EEG2d(G~;3VH3}=tuO_p>(c0!m>iyMl1QXUGqZoOsr4u zV=fvxJ=Viib@SPf?mAtuVvCONn{|8SF`*3IC1X`E64^;)F?KKEg$Oh|Ff~db9;5Zx zi`cG~8t(2pB#u6^MXyeRYaTt44`bN^yM;KOPnOSE2R`UFXF0BDnyL?nOib2uMPCNK zf|Cdh|C0e6?Z>4Vw>=8Mv^4BlyVmOx=q6F@k&cIEN>?1e7(t4WtwG>q)^l;$mmLl1 z=apDEyiMDCKH9Q=YjZ|o=uB(>x#j;owAUdNS5q$so!$GAR*{ji4!l+T@nQn9HtGCtZ9x7^PcSY5;T# z9o?SKW$o&gvhQ0>UrSeKSWQFI;$ zVvI=D5z4?s-tmXG!R6=I4lX5bxw>h4i`#+gI}ThJc^Kg6Sz^wO))F7I!^-kvMjx;X z0^p60kCSGRjDQ8ucA@EW#@XNBMWT$IyrT;z@Hr6t2N%Dx_Xr)uT9(aZ)40UA!aQqO zmA(BE%|#8#iV^m83=Dg>-7giN1E!IXmUg9Zg8N16HFwyR-OCbEQd$v}O{PeiKXPRQ zq*ymGzkl*K4uSr%;~U5d#P{Zw9inc0Q-mMO#2b=q8 zyn1=JSC;_!?pgY}4JTe3F0l#>*`VZB@fC^YlE_3v2{GBfENvr!D4bB!j%#XUzaL_$>nSl=rzFW0$kV`0IA+Y*p*8g3ZU&Alr-egJ2tg|!CC+c?8Q8dZ@JAPxY&Rh zV9&xsJ_?FhP*U#M<#S-fa*h;PAMDk=kv*I#*(#aYZX^m=v&!M@00Y|mlz+;KsXMYJ|j1ln+-w|1dwWgII zNNz&_>zxStH?Q;sesp(21-HP${K;qknvgLzSh7`icV`=<&u~yuho-YK(#{5`ni|vR z-8Fj@?aw6VYW+k};#*c%rsq0|iTiPB@xEq~ObLSBc*+};>$L;Mfu5T6$$&nNJ-7Z+ zA+*OhA&-{1Yo#cjAV>&&ySHz5075@d6a1I-@A}E|8GuKSWJ8q{*oyfJ0W(8}lZMLg zKI9l}Ls{{4uqMQ{)B<4}Uwg7y@Rj#b)lf9Nc=4*pM(y2`lLj{=t*{6i8X8D+#6#!y z;-e3M%8-94vVKaIFsh;FV{>d9HZ;NY+<2ans-dB5j?dI|ui0rMBct*U-+eZ*2L=X; z=mcz_)lQ(JUE`X}<^R{Mbx+EN&2P@=B?zw9qVJ~++neB|7yqMEh@O$^_4Gw|%Z;Dx z9ZGJt+d0GuMH&}vsma_Qq~mm5aBHAAD&So^qAuOLSIjYYXiNRpXVEmF53}x-bL%sO zSj7uQsvBzb{A@94qUR9i2Id*P^TK}qo%(<=VYUataC^d#I#f;J|JyaY?7WrApcwRf z6DQ~G2uUVRG{X6(+#(DjwyP)#mrC4f(miE#3N742p5ubUAuac7kNIXEy%E;7H1G9p z%FY24$y$R%!^v4Y*~_Qhigk@0kI8BYDJxtq;A-D%5V~?YEY)ac7FOH3>1HCK_((~pj!ZnKlLCv8>EEu3c= zxjN>nvf2qbIWt;(lrM5pb9SVBp(_($wEz4`JO9}BJHwG?e z@Pu5|Iey^K^|@N5v*ycxHT=goeKOk)bQMw9mL84pJKCJXsTDgZA9lJkQ~&Qs*Zi5O z+d)5cs~J7F@0UmOen-Vpay$3%me)tP!b|RmxHlwHTlIBsn>@))%au=)vMs1(@0a~5 zO9tMb>Zvch{+^{`!82oO`}JtUiBz*=_l-OStxj+sWcwrsX2&CGVBb0!d&e~w`1zcp z7flw2X3{t3_s95tqy3f1Ssg}cGri|Uv~r3?0c+B6{dKLrD_tJ_L%E_PBce%iC0SNYZWWPC8Vv{^C&{O+ECQ}3Z2d? z>6kbtTffl0h&bM}JLu%~nRsoIxbsBSEXQB42ZrRT)E?*Nb{>8t#=3mHclp-eS-HUO zbstaqkI9VJ`vq0(-k^|^aFbOlT4h$g=y3E1_jYIP%(oLR2G;b0TU0x0LuJjTUfzG7 zJyTy|AN*3xc|7cI??m4>%hOuqHpC}ABUUa#GoA6-sru)lvzf=PsKRmI72cPQ$jwl%_aEhwIX%x3R6Wd}!m??sD^hkjidKWkqBrorCYmrvU#W{S z$HkXD)wZ168NqHi{xOf4g{3m_yMB+CdFQ03W@1{*B@x+AA95;d&)Q69mA4&H-m7ta zpD~8}kk?a7)1l>}Tl~jd=45bLbX1+Jy*=Oi_xELPC>XGa`5SE0zQaSSVfts5W_a(8 z|6aeBkyrPX8CsLHrO0kUU)SeCOviijEok4k2QiuIkNvsWw0NY$dC$ssib^SS<-Fq* zlwS_8iIYOWJyQM`%Q8^wJB zTNw+47fnnz8**O$#pJ%K5zl}(cR4!G-PPT3Kqk8BWhhUWQ z_P$*Oy;uF>`6dKKN1N{Z$6OORFu$!KbnYTbMk1FXmrK*tO{5V5N$djHdQ9*(q#kp~ z4~mP6n~5HfX1s{n=<-r;g^vqq7161oI`aEEk4v=#Dg?%QTaZblZNi+Z$(UaR{YKbD z;QZ?&^_! zK&hXj+O5BScJ~!KZjX=Ex1dj0ALXQ1Uhb@l@9n=X z@#HeNB(->5Pn8rE*N(rDeAVc1kjujm{g(+QQ^r=yY&}}Iam2!E#|y%u-4|qw-qtVA z|2eI5uHr#Y74rQ(V#*1|O;FohoD2Q!=Ge7poG`qe0#z7LV+wnF`-rPonWxsGq6-_C z5=JeChi_skgh6fiO4R8n0yDZdTlF=!w(jloL)nIuQ3zI|qN8OPFQQa5^vM34f+(<) zPv^NhRp%J5Y*eU&s0N5WCak_i!wcfw<@tHapr!F_GCqzFz#xcG*$}c8!6@Kp*X1lT zl0OfED944)*s5<48iw+T!YZU{@ImQAY5VG)HksOpyt0IwHzNk8o9s)xJ~hw-LBq>I zO$1=eET7ZjI-v`Ie;~FjQv~=G=3An@Bdv){baXU;MYQ|i6)r8S`E{X$iWbza{?Q_a z{39O>Pn(;mXOZ*!W+JbD_s$&({T@gMz$@}fF9joQr`p zz+jV@=eKX)9uD=%B?5dwBz4&uoUkbP@fTD6KKQn->OdbXlr6yv0stoo5tDsr6TY7S zCcM# zFt{H5nGb%d8QW7Vi^RnBM<2OfXmYj4nD(St>X8s;roXwa5%M}XJ;12(g}b1t*@vP;i}wV=km=SWI|yF z?)@@4b!-jj6rIq9x+cFs4qJ>JH&H0Hwdw6y9N_>S8h{NK_$@d4=I*nKq=CkmI&36# zaYm*|WPm)zO3S)*@L@7w$Kc8@C4wblcK2SikQ04Hgg`EQ6^j<`6=n377)XHz9=f2WM>jwQCm#ZImgUF=G(bNWq*aR&cPz--$1--5C*^d8Unr}w#Gcw*$nwv4Qt>7_gQ_nzySCpmlfKge;vHm|Enxu-uMB59YmMvt4(_6v}CtO%T9 z2v);pzyZ8@_Zikro7#a?DhJH)<7T$SIf;}ca%rPex?DeeNB4##=HP|nQzIkTh(-z6 z06G}VP{Z>flsBdfZbugh%@cCB7zl}qO%4Dm>(Qh25Bp=IK9 z^Qi{J0s55284clAD+HhB0DI8p-@_{atV8hpGiOwwc+0g9bW%(KMN(i{!475sH}&=>AscvS5 z_E(=fXGTmFF5cDp67 z+@lEeL`6E5!1<8_&n0R361%wVu)%IE++2H4G&VMpUua^w+rhaqFAx3rkDomT;rqT| z#9lqX7oL`MDDFo|G8d2^e4?07`Ss(|UC^c#B#1FWeLQ>SDH)y#w#>}pHy%1Ur6>K* zCTTk)X9=`=Us3*^{kz+56EsnaK@d)v6_{Vha>EgULy<#guksb~R>Vb;I9wo^fj_$s z5UNDXtbp!|P<`y0s)7Q>dg;6dfc#&+d=V59GCk!keM^t%_DG?ElM#!lM^{zk1-I91tq0Z`^z+`aYuBEUt^piB5J(IeoYtWH!}u zf5uU{yZeym_vFSaX&cifzS9NMW;b>iG``2N7l32#76=Fe<&*KISt*{Gz`GLjb5|Xm z7u>L_dBc;q{Qgf1py*+X0~Fd9y7N##gbU}V?XlL!2R$&A1+icdq{Qz7$I>W>j)sxs z7aM%B}Ecii57Gf6KQz>$e^a9UgHvc>rMWV*n$FaGRhRIX7ACXP9K*-X&A^2 zio%RhzvWLw>K=paRpbtm6CCodSHR)jJFW1!5vn4u`XjC&cn)@BUuy&3M5yw1BzWRr zgQVlrj!ac<##b48*OGCb_$A{5Po%JH$u)%fd=@v@+|Wf9B3HmYJp1sEa86X;*j{?t z_z~&Qj`QBr@o|UiR<~-iU$Bk4!_Fu+%E;*GxYaD{xjHmo11AKoEqWbvFMhWtRrM76 z-;hbskSLF@tQjnZ<2KQ+?<&VQPxwUvpbEDm*Z-cZ^kU+_(|Ww+^>y@xT;; zcCjYCA)|gWdD%39r~+e#+tC%f}x530Mq} zZSBpaC+XL?d-PIw#*h9$tY~U6frb88}M}D+%vgXJ`{q@4b9gU z1D^? zdM`1jwJ?Nfzi@xpRcS4;f8MoaeiLs(0M{F*ko{;az!eJ0$<0}Yd(&bKfy)A=!OQNO zz1u0IvfXBN>4=G`)A#ok6qE1DqH%8n{15LLCkiY+wcu1pDjwqTgW1%<5rYa1A4K?m z&Ru}8!Epn5hC=fd0CC*@$KMoWpex0V|M=wKp}s;Z+{2TDHR-9Td=%*KV+$t`47>S! zObjE=y!DT5jy>^o!iSvEvV>8+-bPTw zcckswJI;;YgGAu8_)3Z-#p95Z1iP*;$HkiwKZ7-2jAm)+*A&C^XXpOx^!>`3rsDSr z(`dKh{>3lG#ioJR+%12F2sF^+;}9o}>sn^MJ75ja`i*v`cjEA)$N|3rB%&yR0sMh8 zcHr0E+#a6T$XJjLD8gqJgP?`IEIe@HV>M4vpDrOSP@rIc$RB^hcpj0UMuvv!U_y^r z2MVEYtwwc8bi>uK2!R0_5npNP*n($vj(u6jv35dU*L-B=k8Z-g=VRN3<__=; zYbkEK_2ANmYFg)Lnj;=T3qykRdwb~k)GlPW#nYVBlo!rdo;)mK)t76UuPAxi*St30 zZKHN1eQ(r;@t{zKi+Il*5xyVdoeqs`u0LXQYL?#GK)rE;Ne6e@ZnH@{a#enBbDFFD z%qLb@@R(!l@wGHA-5Uial`h#mB0{u2Z+H1nrVfVw_SlI!m%MpgU4m$!l>3J1It0+H zks%M-8hRVsz_n)*nAnOi5aP;__2fU#CRsa10G7KD^M5quk$o3M$A!HGt zZXfe8qW_reH6T$wbv;>Wy`}H_pt*L-z%NNi=684!z5GZ`4o4?0s6G4;;x8=F-E|{K zdwI^nVS4M@^cz4G=024a4ZSC023lHF`t1HuaV-1jtcfsf+1=ObK+mJ%in|Gpz~1sQ z`BUn~W_CmwyXkU?hAZXVrOj_1ZhU@Egv}?wPg~Qp{ia}~+`}VcM(Z!zDo8SM?G1JJ z4oI?4J7S8+D}3PcRp0naYgJyotmJXMpH+qch)J zoGL_EQ>9GKevn}_x&KPxYi8^JNzyiPUT$}e9tsz=lie%Lx-X%AVP-2EFC)8QVnk@4 zA(OmTtVn>1`wBi7pDS4(&7jq@)zcxV)-r8~iCS#8#x{EE=1Y#U9M&_T z%^r25-su&`zp$zI8CfzjTE&V7Sou3X5j-^kt ztS@!^tg$99ERVOL(!=*eg3j;BM}`9xTAXdis@BGp-#^AxmdRJ}HaM|UaSJWuq?w$C z=>aB@M=$mE8!7x6yS(w%%2zXXT!XM3p<>{G`^FF_@L zVaOmlFYom_>wZBkkr<=MOCq}BOYMhknO;_K&b#Hi>)6|Y;T!$u#T^H-yh{~ zE7Sb8O}06AR{YG2`wtyeOSR7&X45MBFOG0W_{~mASdCv#Yq=0AyZ_m;vO(Li1F>1- z4Lb`)JXH2IIgclvy(qrqsrFz(*!x5{t>wq97f=4?^!n?Q?tNtNdd&CNF%sbh#rA*L zmdbLQ9@bZ~PdqaI#N;)lrk0`qSMcM;feof|A|kVKx5Qf#$?n7kN|mylxjKQNpbzyv zG>9C1^FYhn*GYT0N34hA{k^6t@?xf*Ci@h;tpC0Cs?VL`7=^PxDxRM9DV%s4M>F_+ zdrhzIqk5e)p($syyT9&tQh5B6T4~mESDv%2TuM#~x0X(7^qI(R`Obs31H&AcfxA|Q zS!~nB*If4_$+84y)3FT}4&Dx7+8uLO7#Y{;R98QA-*Aj2{m!8WB99I$>uH!WoY-~e z#O^j>o>-gV@anBPs=>1C?|XG)glpdJ)reGjbV5D%y}|3BU90}lk@tC7yvG0fRE(@t zwAnm~&Gww!H?gD*%^=h6+skoMk2h;)V?_vw*4u$b=P0l(6(1w|B=W{?( z#2*FtV!`4B86d9u_h*kt)Q??Si*xX;L635I3Dbg%KktD=)3uBL+2Sbg)y=zGV8XO` znRWHqmx|NuoFi6%JYA=PTBXHSWqUX2?T$uvV{!(B#>H>W{X+ooc@gBDnjC9`s zPGO|FbGR&7-@M)V&18p5Q};FGD4qJbkH*=e&i%TP{HE~swoT`bb_t1HF4Q-cNpTF# z-tXL6t+8WyUARHw+>5BRN9}rBcS+oiJXw@wQ>C}`I4|7pYxVE;&3it2o&Q7oxOSBJ ze;`8PN8f4pt{l(@T=N89*{O}gmPi{aHuLmTSINbEo_oPiuPP+eYZ*RYk zGPlsGsuXRL%?ZIGk#(dT-V(AbgP9qC+X?nZ^fA%V3{|L^P=xVKh#GVPLcioMC_eveL!=}>gpx7SDY(`l{+>C9@q)!Sase$vS! z;ZmX7*E1s;92N;Ox4uM7Q7P;ZNIYK5c{nuK*NWwA79%w4TU(uDW<2Xmu7Al{xsvnd zmtI1#dEW0IN%a9T4AeE$rbau|uCcA$J7i-vw1&01EOS%LvjWlIPv<%JI*Vs$7&GPv z@7%wt`|VmhtCn3ZOa1vjg`OANmp@I1Z$iU>@ z^rOCH>!HLyIbZx|K3vdz)x&=9N~|NFz<(+*?BGI6{MC~+f3HI?0TIQT z=PgNML|Oq1F$gUL>CAyCqqhYm^1|~83=|hLMdV$(2#&d?7?32|_ltmIwW7It9~`>@ z)Y<#zS0jkO7FYgELtl0u^&>7h${C^XALa*OsNa(V{VrfE&~I>$qRZY0P&WV7 z4J-)sdqk5%v`_%KsE5$!kHM*L%#@!58V+vBo|LSKWMJ81EQI#8kkUCz7v4p`465fjnKK^CBPA#O5hh@W`wR< znO_U}RCom2rcOQAXL3z^LDN-*xAzR0%DfI_(cQZwI* zSbnMN#h7|F3s;`73xh=_VwDab@TQa}71@Wn1w+pS^h-3$-cGQu7HYIRQR8ccGC#pw zjCr?Sk{o>(BUOlWsqJ+^`jl3y2gSdyb7tfYcix4z*{a*T;MYv1X+l>oe=>W_&fa|9 zOUAUF=GhZ(r~JP;_C~*7``r34CF_MDab;`62=-iCCe~g?le<5rzoWKrw)phsc0cv{ zq@vSf8Tl$oz8(#C`^vUUeAFK+SkIn0=`ynLxbR5ygw*lloPOI)+aBbqOQnpswQ3|k}G6l!DDlXs8pFi3($rE;5ntd?_M!^aEr}(kQF_3?g zc_?x|qk6>a4%9Wa^@}~IOwvD;TS~$fTaT^`j&?$kV1e4n-XiP~gxmM-+&K@bgP=6z zTZvOvH9#6gw+D=T2Q~*@f|j`$-Q3DjUk&EFgaT!NJ)KCaz?sIt@*H-VVS_QSLFUb> z|6G$$0sY98YDO^p8u#=k)>mtbfEE0;bt4;lOd)m-mk0~y=r6j%9_>#%(Spyn!H z`j#IrNDnp(Z5XDB@DfE=>kX+fh%GZfN<7s6eBuX8vra6i zjOpo5CtZ*0(o(0^XnD13&G$-?JJI=tTXio&$rm(`rAPyMlHOi%f@>R90PSQxJ-oyXc0k3Z-; zxM4spdirZ4IJ7Lh9l#~zAo%28WdWW7j-&$Xr^)1b

    o_h2)Wwr$})T@p`Xoj8L> zG@JLP`klXjDSWp1x<0zNqBB}LWShq?dCR3gO{b{!XRT8gg))9^eaFrq=_DCg%fNc# ziL}E4XB%Cq$G5m&8n-VGA90jhjv6}W^L=yg_kuCWlL>9nPku8k@7k_#T`7y1dAUl< zSyk8bJCAS3X{Jh5y`P~r(9B=;i1(aKMFTZ*8@E&{A%Vy&9*{}2ESuZN z8H&4D*=vXb9j)r>@?7GL8*@0ZV8JBHFfz;oXUlG)2qd<2$E~NQ-d!H|eVhw)9*-vs z&!hyOFZ%ojU@+Wr&WxD&(=_bW1w0;yDEKD^60t$NARv)H;Y=OFOomf@?zmb2*$?yF0kD4Jqv}FyM}2Rf|lg1I!Od zS5!jc3k37Fke?ILGK|rE-o{W^k2D%xcaqnyANPHQ&kkyP7Ik1W0N{Z8(8@L{I9#;3 z2jOizSZ4}6h`rE~;$R@h3fTit-4TDH&$nJt_#ND*V8g`a^BnaavHk;%f&&rgI#*%M z%9488Ea+jpBRhO5Wz9QZIfWB^S1 z+f8pLgidsQ(bjq~)>H;lQ`pR7wy51s@vO{!Qwn!b>LC{i0oNx3kufm^Ww&cybV{lE zS+VrqTNzVZwQEigvh?qFYG`bP7$)9Hx%d#Y-7F9L^_=e4h-dAe$<5P&I|gJd1@2@l zO-NCo^^H$U+mv&HCgkJ{7OemD$4xndG$CAnK;I8zvEBPuzaO4h;MB_Xi*W(8y(e9& z_)6y(L!u}oMG#xA@oRQPJ^Kj=6tL)PiUPW6_b;k8_I;Q_3Axe0G9;FmyozPd8yQX=J!3?B7C#g@#df3 z)3JGZ)ffPGUahJU``OoOyRtG5H1&9qft2|*wx*ijinn?*;CR7kE?JhgLF}pE?gf z*^qz&E*54{YMmX0)jxDrW@AIVCf~|Xd<>e?rvN8~v39$}vW^!$y^cLfGFYf)5c5z1 za}%LLFdi2>!oD}h2#HC5FCDQaqDi97T4xW!utr-5_Wwh-SPd&3*eCEI7)rEum7e1FH>V08`b6tM$XrogWVS zR~>f}JzknmVk4kxC&WDd(e}x}`1=Yud?3UsiyKVZwd>CLoGP3~h_LXr{e!9vVkH?u zxFh(2?d6IhN>DQV48AR2t0INRnIae7>I)yf!qaj+-E3(1Lt_ z_Q#V{co7k{P}4)Q{0bFjfteUe(*n-?p(hQ>LCpm7aM`M#rt%uMx7`DVr|PURd4Tex zqF#0|@8Kzygn9t40#k)}${TOT#bF?(5MWjah19o&!_I-9PdYttf>`hnpXB7_X(k9F zYXRyE6x6h-TTn4*0?LOo4wGO|EW?lvw+={ciV!6kgg(F_0-DgF=_<6t8qk!3+m_#? z;%f_NAFedA&R%xmiSd7>mO$(Z7B$ta{(^#n^9vG)`x*D8-RF*PLIpiC;`m?e0b?&? zc6K&AZ@GDSTOmK!G7^ErV#g~B_(b9e?jg)G#h|!LRd*@1B}|>3TbF){vF+ojaEauGJ`SH zn*h@PMA^aGdNaFz{XMcL^1$!zY?O;^XoEd`@5OJenutWp1{; zDSqr&xv}HA9{Xd*P~EUlho;W@>un2uZxiUL$1XNI<_W!mS2yLjGK)N5*f&4qcH1~v z2=Cs#duBTM*n*nyj&Ex_zr1~Gj;oq7WNxi~58l@(kRsBD$QtV9wc7Cs%ah_18shwtRVzT|{_On&BZDT7MtvQV-2_c4wTpX)C!b z8Fdma!S0xNgvQF#_Rh<7vymk)OV=C!OnzXN$RGODnK8QQ;yv08UlJVo`ybql&|3G( zyjGfVy+z%`EHx(r#HUBcee+!;cFECN&`*ciD%^@s9J=98?{(HRb+g32%~qPSLAC+( zNp5}dT`{b!zMHhnH08^n^4gOC{&}S9yVU0Gug15$A{N_K8p6^;YeG>I7YsTV$`Rd7 z2mIVhaR!myOvYjc!!6(Ew=+})t3G60SES?~O(%1o2g99-jK)&&%l>M)W$A{kLLtsd zmxgbw25M^>-@6lB0S^4~Ec>suXEp~njG0?=9LRARdmnDcpVn%i1aGv;5if1;rN839 z_hxL!@URQfQRRLch&HPm1wtkBUN8Eg)wboJ*S^|8y_$&vf2L?dW?caUy5YO&R&?ny z#0a8Pd;bEFq5p@!^&TgG_W$?K`8o1l3@v>|EF~S^-klu^U!>m8t`>(L5;-P&u}da(VgZ;=yTPK~ zx?1uI5I8C%#AKxu+A7$5l85Vi-AMWfk7s5!+tGGy1&QMNNUe_kS_7q@#ZfZYVfQ#M zHLyrj?PcHJwRBpH?Gq!dVd9LEbEkso8#3LSyBop_?h`DCK#pN2+bcX|iZ zrrcxr@0Ue~_j}|{uu5|4_taUdO6_l*nBjRpv#0jPy8Ss0arbi8r#cYKK>qq=9)psVb~TUd0-XO#-sjp=U0D zOGEnys~GL2e|C<+XMY2y9dOlw{`}FvVPIR*`**4ziUZ;s0&heC{DEK)etf2`_*ZB# z__uBiMbE#SIrStjFA9HTbo6KxPGq=DAO`|8rRn()bSNQf5ttU*Ip%;hOOi7fs;&?S z^qUmc^*3URc<(=O0xntHp%kkRo}_O@P(q!ftQEVxlA2mNOsZrmoU^kq1z~nb*bZt) zKRzoj@VancHfRk_Be;q*NHA*>^7ia+PvS{}KI`wbh){lQBuIURKIL`(26(9|zn=Ps zt@mAIC66J?4ObD7G(ZzP`g{&`{B~Gu?CQfZ+%}TX35adrguV_xZ87Z8kXD5(^`u8Y zestZ5=$j$KKt1k=o1cOZZIHas;G9P5Jl_9sJIYdf&_j++P9(hz($EGJ9d2)n1t_GR z{$xk31BquC5KgKt*l9@;1`5-hf`WVC^4|OQ=$C!_MJ&7UYC$7YU{!S;!8jD;5I}?T z5(OI);%0_4kPf&AI-2}gSVM(TpB4C!WQ`wlb08g&iNcMZ7~g>d)fvP)%rkK}ZXAHd zkhD`{;&Pc*jaFIgPRzCZJmy#sjf&YZMm!!l%c*Yrlih}slNcRLl zi3l-?xfnEHHuza`fAQ@J;?^=EpBG**72>ntKf=>;!LK7?WV{AIM*$FWLaRoMUBJEY zgI>0`YxViPDYA)0BwsR$l$$4w2-MyykQsKwP>N2WY7tcm>|5cG1dv&kD^Tx!@>N-! zuvu+^^EzBmo0zY0_XFMtKpG7J-bCSgg_@n{hlx}U+5wthN*GlPvlO}gd2n%)5+Omb zgrF4x!!#7un0@+u4jqI&Bp75(q^kHup|YImKCnfgRhAgc$fuu|M{EBPzE40Us(&UQ zQkF1yVH_=yrU5rZv1mYASfXi75d1gx5k(fwZY8uK_Hbcc@aqF4gBPUi_ia7om7lS^ z$oz5`%>>%ICD+g3GJR1-&5`SO;-_(wuSWCk6>WAqH{(SCxBh8qXmq$_l zDM}2hl0MN89%cxRkr+9IJINkWT#RL=7N$5c_$-YW2p}ne8l(qz_L8KrL3~QPT=vK&cu}ZSya#4AQooXUnPk7AtzUq0nFRR3;q@6fjk>8R z@rVQBTEJ(w6WL^t*9qe!!JaiMv~0$xS;!`7@1TclYioNRpa97&6fF99()bGuehmEo z-4Fm1U6+#QJ(PLG+Yg}>D;rxa?AHV}mS!YIW`#b>dNjL45QnuYghLp@8VG5x+Ho&q zMLR_382e6}wdz@%Hk)%b zFu-LfotY8?iNYu3?}QBi6v^TTuib@2Md`!qYoRmJ$FxsKDJhrdYyGRz(6|u6y@_e# z7w=gN=lx>;R3Suea-e4IjaDAx_1`L~1%!X|p0|jX5i{<}qDv4Qo?Y_V`BdYC7s79x z%i@w#SpgP6*jRbU;(kw!>ZQ3G-{!)e2wh8(&OD-d_}te$HeN;6_3FlY+|IfY9W1m_ znXGOMhmD=ikIr6Fc;&~dlFatLy^o?z_U65zDFw#8O`Cc29UVOkmFTsupE5BuHVk02 zSSQ@Uq)ywvQFae~MDgX{3}$}xyBp9z#3v@|_?j?Q7SdQ0VrHklho0|EHtP8`_57<< z(=%sOH8`yCg1yfeDy;q)QQ965n`BnvJs=RZ$#cJ-yUw42kxFK5FSaf}#10W0o&XON zuuTf!gT++aP}~naP{jfUe*qmA^q&rh523iAVpuN?fe452H9S!bT#jfu(9h4{oS4m4 z`%90O85buyPb@Te3#gt9LYCd-m)4%51kdI{9Ho@2mnw0NZf%uCw@5;>0L^X2Q3~!z zJ?@Py^wwvd=Hwj}<28PG4h=25Uz?Qvl$Q&|rVgR){H_r*m!4X9PQTo4q`}X;% zW8z%srEUT&fD#7cT@vy6+Fi>i@#q&8IC6)!tS+ntqEuGuR4R^cvKe}M^iRe^i)di? z$8K&1QrQV;f>4j>PgN(H!iL_17E6q3@m_y;M*RNhwPmL2P+M->CnDzhI))M=t?XCb zm9ks%;=eqU@~AB2*u;6kV?lGBwQ0{z|58SMCC&M(&&PbiIY9av`fBMIuFjsKa-=YvK<(H~b6zNGvf z_C3xgF5>WgdRI@LhNe}xaJf1lIS<9Ts=>ckVRYy_`WVJ@9HKa=Xz1R5_ut8Pp&+kj zK4-mG0G6_;DG_V}dLJe<1CR}*iy&7D1Hf0Jzw+FtgS$&4YW2wdR?c!7pfhlH2rDRX z)=R(a=orPlRqOf0;U86zZ(7*}5$K`Ys?ESVsWSQQ0IDR0YzU@Gfy^FNJchQqRTh}B zi@tmQ_=<@S+n&H5g2Wk;m4!gZH8$&UzTglpEdR6)6$rgLmNM*Y(1q=Zo0UOclPT4A zHifZF=T%^X_&T!6h^L&xK(!V+EKCF^(>#Wu8@^k1}~o}S(V#v~iPn~_mb02Lp- zsUU%6_$|cUfum45@W%+lGrzyb8ax#77&Jd#@4Gh>+UH>=oiY*^+GpQga`ZL%dx@>= zEi5rX>~%h~86D$=LvCa2)d?Bf(q}FH%xdU3GbHr$nG|mfyU>5{lF}eHapYv(X?5JEl+q=4(%dz59Z0D+jT0+WqT-#pXYYLpSK}R|+kB~Q@b?Scf>g3ApyN%4fa!0o;nWRZw zU0-7R#ozj4;(?0#D}586KS*7jnfcb)KRcyeoyWDn+|6{+J3CzBkHJi1{9!*|`Ox$z zlx^UTfCFDk|5t*bY$R6@xlbTHmOJ~)0|yyFYvDz}SIv?19cb?`hI(Rt%}R7E90byg z0G3hq;+%jgK-11{c>GuLJB!SR=!dYMaq_(+Nd*YpJo{^M823=)*c?#RDpp={xxbd0!PU2$+ zz}h(F5A=ls(k>dti;JA(NPx1q>$VZN>KG>9XW>~v zEMUEm@-HOg#`^gk^=C&+gr4lKx$r_;=I8N&xYS4H^7Z`F<~$QM$}esVat{0c8Tu)8 z!Tm|B=>UsQd2#4qS<5}si~F_~2p=-7TyPAbO!>{{VA;v#%j(2(Lp44=p0sHQNg})< z1uZk*LEH-ei&q4riql$q`s33;5OlW?x{W`m0~vsH4*-!!HK$m<6$4EusY#&cuz;Q% z#;i=}Kmjc!qKJWk1W(}tH+*W?Si)#W;p_0~vpOvUF*pDw!ce|`{hCB5L#LUtI5+kX z+nEAzEW)%L*3=kEa513E%*Ibdx3Jyznj)x10vm%I2Lp)wkhL!k;WGkd^7Rs{evj+> zav8!ckq3&akoeZHPU2Ei^)y3QnZuhM?f-*zl?=IFp^$`?l<%e>Z7^jT$P0KNDR89V zXM$BCKM1dU^5fGKIP0ipZZMIQA4|X2ro=>uJ_(_i2qA_;1&}5|!zn}D_Uj8j4U34N z1KQc4q6jw%K(kf^Ff`>D-9`Q}E=zAnM@pe6#a94)sX>j#!^RgsLr5v?`;K&rvb}r=K+;m2A&u&BY-+u=8^)a$%dhC0r z$E}{!s(ZgRx{%k!KvQgPk~p?`{MVA6VH=i3TppULDgrh2-`&uz28L3+a1nr;3B9MxO9YlFfc zmM;xPbMI1>OQzaRxUZZWt@x38djvo};(^hu$UxkHw96~$BOfe}fF1`C1&|QJ&TGlZ zNBaay#y`)SsO-?ZA)hm>yV1j$=J?HoupQaqpS)dOCWPf2+@);6RQG1)_D<8_s~fF5 zX_Dj@R6ToHIb7EWG5va3EW}hYmN)#sKTN_cM5UA(galfDDDO&0tN3usp-)vx+xX=<>Rnl0YUTBt zj^dk;>K=ES4+n+gdKA??lVCOhx&A%vR5lU)C{_p)Z%X7b&7Z0 z_|K4z_YD*ewFD$fzgKzE2cIJ*U%+7uGga#FNF{>kd7~|k63!7@TR@^Fn8bNwgB~JQ zPC_v>UkptT>l|yGn7`CMLwl-n&GRk|MZK5%U2o79^+h**roT0;kg|OGL=3;1qjrLk z!t3c^cEx($kJsDc^hE@O_h~1n?N1-LvK}P+*MpT8?%mv5DgU)Hw3B_b)Y4~6P%mb) zDO1XD5+~JO`uO49=br2{Rq*{gIVl?ETj@M_Ig?tK_O)X`{onI6(R_RACwiQIvPv@L zWqq2@(IcG_h#1&N&d$#;T{P4-j4bSAL>?fTQ z9O~X%v(srxyL6;hG7G4qyr<%F3w>uUeqH@<@lc&>@(0G)zD+-_*A#|#yV1U6KPce7 zSx~z!-(CJE^^=FPj8xH$dOG%&bX#n?d@sIjkpIbQ&sv8vb&XYz%+Ibp&!PkcD2+ub zM8ys|>l$vcqN38eUUHeU`p#mI9Zk`ZzP9RI4KcvevHtV!1v=2CGE z4qk0bOJ6#piQmIX_hwG-e=sV&zwUffcBWhH2T6IWZOWpTb8@(2`0LD+d^0mO2Qulu zZMen6ORMuPba-~5%jCfd{YTfT%fihv9%=!vRxi&SF0FR4r>NA>yq88BS=VYnw3J$A z*BELp4$q&7zZi6qmo?|<>NJN=jCR0#$?ELwmbc52>{xl&7I}*sbVyk3>T9;;{(-JB zWs}?+LrP(S@xhfP-HV1r)F(9)lelk?U5?@l91MYU|PU48gMV z-?DQoj9foRU!WVfd`MnSJ-%5dGUJqSn^vSgVG4218Y=aQ)iQK#-FAWN*6jK9k2^%g zX$2ehc{%m0Pvqwi{0}HcjOpfYX+!Ngk@pX@>V;_6cXn6N+H%Y5U%BtnO1nW><)5+? zNV}B&Q;zCxf4QeemH6dkzKzjaGkTbDSf$+W&WbMo=^; zf~!AEX{nN3gr)O*4t4d{kuNDzy5*X zWiGM2yt_-Goo(Sgubl;cd!mkwyb`(YoI|Iyp{dQ=T_M)#N{&+V70c5{w>u>j_B^;;?{SCsX1nm2M{Tw!MmBhy+*a;uUgpjT7by|d_-$H8 zGV#)bmqZCT3i`d~>)XL|zc;~qau2=<;F32x)mBr1v@LF!em*)IK=3evo`d`+fXL5p zucJ|Vu4bO1lay@K%EsL!&=?^&e$bA(D692rrJl6b4sF>zufqp8f>v>=b8;dg(!{Go zbn&ur*VPJMnt$G-2>J}n_AuzPiC@jODG$gG*293`SdG5pjXO; zN>D5FoY^`K+DG>-jxI~_77S$?f^38s3h@9?auDa$yT>P5fh^tvkf?>28#{tqmO#M; zUKj2GfJbsc3p2$7%4vt7t2KPhe`1#b>Q<6?Hr|y%g`<|SvV*kGm^^dxc{)=C333Kj z{I*05ajC@gYaKMJ1p)zHJ=b^r50pdJK_Y@&fpq-RweYndcu(nLfWymjN}!52cb%3b zv0QLlAUTZtMysF3DY|dBlS?mlh2AI*?NblyIoHzh(M-ka6>HFHLPKDZe5$U9PQv<# zt#A1+6gcEKsGeiiq_-ArTg>HIwQQwXQ_FJD?%8Sg@3g(*`F%78^o{LrDn8mxHK0^y zFGDkB(=o0Xe?v)o^!D(PuA&onZT1+}()d7&OoAAJLuem5Bn(OdJOpxuv=1Hx1@bBL zYPQ=(5>NqvaT~-6rlzDcquMIJo}d!Qs|Nvo$&&bw0gYb=%$;7=Ce29P){rwF@b;EP z{Re4_H>`8T2v;d~0C@4~)AAJ)a543y1-)`*ckErJEA_)eu)}5n(gnFpF@MhZBm0dN}6^&&Q4L6c2q`Iljw5?pDC*F}6I*k3HJd^uAR6 zf<9XQ>*T_1Y9quRHtZ|25heY=u_sr_B8PVg&_Bs$B@tNyc-LxBMF2}7-7(}eh_e+T zd<+0=1VkdM?kjW$1X?B=2Ac&_HzaZCUc|tahyGJX9W9*U_#%O(C{{`KB^=n4WY`GF zw^UExb8ca2qR0Z8y`-ch;KkB#g_HRhfW6+LwIaz8M12B46?>HkW62*P^9y?t=C7X+I1-kBYiEuG(=~(BhkAUs zPB|Bj-)!e_sFM59k|kmvHdS;TFBtj?l23}+7A5AcV2ECgNB#@+!E3#5QxmMZJX25N z?7>t}X&Dg(0orRKLP3p9R8ydsNj?r4hlG6de~|`c))9Kqwq%892#cAc8;$ejGmuQN zZ~uPpuU!H}S%aj_+D)h5YoL`SIUxip#3Birsa;D!5DwA9SzS;8ql0V0&sT;(f$VOG z=NP%A&x4|%rOy24+aqB-Ya1jNw8n5U4uljb$3#x1y0Y*YCmM2THxd!4;>nLO(6nMp!C8gzm`?y8F=L{G*PDtPf|1ay zQGiT@`VA80IUG`C^?1V@eF~crk{|%vh^&XE1biGZfWc-+s3HKYub|^0;R#Tlh)7C~ zLhVR(2jVC6{6+u*c5WxPC~GRq{GR$_d#{bSuDF=ER4TR(P4oUfRhpSRXp>a$XO)Zz zZx(&S^pbIC8%g{unG4ko?HiFcc~*SkLf@Gncnai%9EtR0V6b==q)aXxAwqP(McqjJ1UQg^SWp1LBghspW7=^OmTvNW#Wi3m4>3Uridt=uookwM z+&1C}A$G%p&jtntL@oqG8IT)MFu}EelLDVA5n}=xW-d4hCFLo6N+ePjS-8<3JYB$- zdVnZuY0*I&PYBIjyHe0-{}Yp=jqlxfEI|-4BFMNVp(^)*ll(8E7#`*qkm*u}2rrST z91tXm5cLs0wEtp=Mlq)&8`Ym4CPU!}!hO|rd-vIL1b6q>gs5R~U3O11LLa14q#m6s zCue7{?y@uLqf4(Fip5I5zOJN9F621zkRS7>=htW%l_T26;;{!0ri=}Rtc-;$VAYrx z+fqWg37Gu3np?sCp}f2nVs<6s_r8h7VJ~E6V;Nz}1owFmJ6<@&n78a{%QMYK6iYD+ z2F&2OP|-3zM*s_%S@r+udhc+q`}TialCl!nWh5&kL`EXYNN5LH@Re8npOB-WC+6fIx?3=62t+C+OKJmIuO@CP<6 z4F=|DYm=bVGv8iKZ zaPqp(W+ows$vpDzhtx~EBHNn;aBAN0(sLOlt67e6K(;m{!dc9K-R0>`;k z=_z!b{vPjacLN6|upRPC$bKi`=D4U(m6gtJ!C4Fa7p`NwpC7ZYuBH#pTq21eC{+f4 zTO%$Tj|2TamQ@i%42Xc*bB7_JiTJ?rm7vEe`n1x#Rj*^_YQZ0GB|94_8{pisgVRwECyJSp*jD0buj>d#`5)nw;zy03bQ^Q8FC3~dyty2|KjUNV1fA^1WMLu zzPAsH1aF6k9x#G}gl+=?qwIxt0DsrA`1AXudM6HQRHrx>g(pl9Qv_6s1XzLcjX>Fk zB(a7XMw;3O*T{4swo@gIibpr7NYIS@iENRKw?Jb_{e<^}EVtoIn&UPl7ePsP?v!Ts zPw{U@XW&OVx*g;)ti7e_(d|h5F&R_QEPq#a*&gpmZjLnPVQ|jM!ota^Pyyqo zA3t#d`fv*priaUDKPXnxju1v4EbI`OG6aZ=1b48HaBqLw`P9UzTf%69*NFP|Bfi89 zKUKxRJJGTmZuENn%!!)%QcHLCYWhP*WzifHj#r;Y(V}K%$Fe6_4xf5`PX9p$ts%qC zFAT;nHe@IW9#Eq##FE4#z9rDG{`o-vuE|1B%{n3(W`5MCZhz4FBq$uI2NgV`=?=B+XiF=6xKLc!3CO#a*0oY>zW-)>j zG3vu`e`C%8#ERsW1aC<)Fz|`5suX_#uTIcx0R0Oc)hqSnu0zTcuFq1ggE&i}4J98# zR<`uhMY7<47DG|;PY;Ywjqx%({QUeP;^O!5WW^LMv4!jWZr zbct{WE34bBY3FL`TuVNUp&|72^^){Bpm)(UghX3bSG$W8iri5FfUWj)L2y5_`kN1i*BgnhrY4@mc~N3e5{1`R)-xt?^-G^;%e~r4auI9_gk> zBD8xh4|g1;WQh^a;f4O}cx+tiwfS$*-Z&<#A0OEm@d4FzIBY!WBI(7q`INvWuaOem zv~-lT%ZNvo1aSjS)wH9}g!%tPOH*d7G9=`0dG)@Kt{h~K?+Xu$NOLHT@7rA|O!rf{ z?hXL4E$k_Wp3>*nJCZRW^13U1YtP`HhKf;gepB4(AmaJdc=Cs}vMfw`T4Ahs zK+!twHS?}3B?)!HVjQhfcf>9%vEM(xp6=pY==Sc98G_{_u0P}tP}VxL1B)l=KgffF zpowH@dvHhpD@PuD%8AW_`SyStKiKXkpc- zZfUf_wR!G_8lRKBA z*?8Xsv8(i-bfkA~<_M`j_agoEITfGi>?XN3LAmhtt1Z{=bL>6q$#bT|>!EiqWAbOu zf?F!$mr_nImJH>oj@>9pnzwJ3%Gsxk|MHwFb}(Xrd%?* z!rK}(j)o=Mj<}xG6_WXC{z`vvcIq2@Pn1_WOKAG77@mfR?ZT?j^Hv?UGR+fu_qe`E z-Ffu=X^w0|32mDlKBl7Nv7PW@oHp8qn^%o-vP6}w6OP+0QAZ;R1P+{J|=mTsvaj{G>TGkM>A-lAd@megR}b?=)QqwLPH zt+JIBJREXCVu^mk`jgAU9BR854NbRfkp50h9Tdc-wpYn{^ACKaLEpBrPcB z^{vyl=1geNEUc@a9<5fDb7#&tr^UeOWN$Z!Fa|%ATQLo7hXUHpBLuHvjElRow#{)D4zm-m8T{ zS$MUDK~%#1L(&^-wfMNyMLGHdPX%eHRG8Ea^kaK__7;6#HA98%q2j>6r~ILD%jt~; z4&zcj6}8wsEoH9E8xtb$zV#MjbZS_3KKEnMay?s2n6ZJr;p0z-&2rxa8MWUmGFFSg z*eK83#8%TgR>RarPhR&nZGSkC!{wC1<@U^iV}8tzh0`bJ#O2Q;yDq3to_;i1p}P3U zI&bV_EW7fT15TI3nb=zAF`nV$uA(H{Ywz^$H7S<~H7#C%zj9%#(*YVOgO5Ie>m&P= ziXQbvY`@F(%Gqm(y)^CBty^jrpCmU-;1~-J(=ZNNRI;%h@sIRLrZanJ^x$IM!QWio z3SUp#w#dk`QRHXhpzQ7}7JOjHW4n4*EbxnLrbiuBx6`gWvpmAvm1&Flrw6^%eT+=B z$3HO~h{$kM1fuP=(LS`jKfiCes?(oRyeC%kh~w5)PrAW&o?EG|N8N{au|W`KU?0o! z?%{e``J>0R-NKR&JxmC{92v#6MODK`0AX8(9+qQlw&72s$Mh(CaBOjHZO*_U z`%$o(_H2{+fiSR5l?okm?-QFwk54#O)J}d7&2x&XP4Vq0`cy>wFkwoRaZmBhEfunM zt&8T9y?446dM5Xk7aDD`U7kMnt<&?CeeSjM!L;^mk~dZ6oYq~<8I3i%T#&@_r>*+a zzMNM#U(h=Jt!9j32>eyz?dxZF%xSbI{>RF+?B1%K_s^)&2ZxFdf0mB1a~=)1rPwGZ zG0w=@dnh5{Xz(48JBgfic@~XLcSd%v?))NmXlNpvwrZbo?dnq1ZUqNd7DL4y`Ln&V z**JM@)mF>8XJ1}sX_8i!_1>98ZV{ZNz5PcYCV!Ion%X#)f!(ZV{ov!N6Te(qrFZ*( zJI{qXQBYQbGPp^nx{1rxG+}G{BipSKyM$=|mYjbXc81%&B@UnKa%wayDRE!~N9e4H66z_4tQ4 zM|Nz_4EkT<$A+J>|4k|*kKx~6|J;W%%LY_q_3M*R&k+Zh@|C|X6TP+O)^9DKn^H3zrUr?~nAG}Ul2;#HAxVAckhZ8# zZu$7czBK^)AWU+w?|RN_wdW3*XnN$~v|atg1tI~)_ZS2^Mu9L^$T>()-Z@4PVl=NL zpNy#FAmx4i`ZZk$@qClvHxTxN|8sg$4CO6^sN8N_(0>x#9vF(lr$?M{&pt$(#Lm*- zeC_$OYGe?n1^pDt&f;6=^)O1%MbV>MBH3b333KX*sPemDmY0%8+m2gW4%oMqaaZuX zj5$Vmpkq@0kQ9BgzEjyc;n0ao?Wy-_p@W>NFp!nCr>{uc%+9KL&YC_cFS)c^vgVwW zRp<@AlPU_v(UaaLEXhmC-rm>!Ev4H8=G<6f2LHI;)isG_h#4NDTqhVts2sIu%dvN>DaTgu_OBgJsuq(SrToECUWiWA9S>| z7%>d9=AlC&)v~2+HwCmIYdFI}4T!^^@fUtIobpx>Dakl~ya8x*5_ZSk&fk>&!w@h< z4UQrsBcK$RIS4I8uZuiz2Drc=(6}W)QzuC|P;Mdt^b3;vHL4CA)DUT)1u-!(>AeW4 zC%zE{P}Dgt;I+UBq&S)NLqu0c}RfCxO+I| zYDV=hR6$6y%w0$y2;dW|pwETMOy}9xjq}O0=z1udS39#)q2vb&1ikbDXwFX-S<`rR zyRKh_z8JyPSo24Xjq$bp2jXoKA$g;Kss^^h3%woyUf?i5vkdLTmON6fhFuS-&2B88}hfR{C6oN#U0!S)_1`NtY1msx0 z+yD@^j!YCoYYI?>1iKREx*0XD}7l5<^ktQkfHm>(z)2yjq;wZ-<~Tk$^?x7* z=%`sF-Jbr!5a&I^2`0L1&DW$nXPZy1=Aw0+BQ^w_bBpeFq4 zz5b4~qu!&xo*JPNZJBjqf{UJ+I*{e~MEZz5$68vm?DU{4>@KkiZRX?06{cxk)C4>! zQgV~5JuAu4A|{$?T4XwX-iSreV!9%4yO^6gFD2c##`V8b13FYRb_{bM?Vq{mQL4zH z{k5kT5@k7Ltc{r!Dg%;KVSgeb!OcR4Eildu4`gAxb4a?&?`{PixGtbHJPAY_R%tSe z8LfIzQ4yJ+Ne0;=i{(rm^*!%?nySA)#YiqV(CJ!8=ZHWLlksR406>eeOlj>n*b!rBvfs| zfOyG}M)>955wx+tK9qa_c!VplR>(TSIR}8a9-I;ZjmQ*fJOXn4g2E*Hj$g_?9!9JK z5=Cvu-%kN91Mn~&4)7scSlWot2sis3ToO|-<<4i6MGGu!&!@oXJYt`~#XSi$4^2HA zF~Wziijmw#Y%?36SGciZJz}4DZm^&%e|c6M!{-8PYfuxw+G>qMfrOnCt?N|NE)X`q z*fCO>BxbUx6E+33T_8~}f}O`wK7bGdW8CBv_^5V(;0<}MlFoTzQFVivYB(Qu6EGS# zShJ@gT1ZA1{sr)L6f(L4_{=ZIJg1?>Bm>;Bu@$cTl>t-_5^E=*%MTD>(^IcScsB88 z1zo!a*QW}xgoB$0VhT`f3K9WC%g7_VBj@kH#|N$UFOj1n!v*aNL-x$&buK!Ch$Dss2gxg zLsg1E^;8ve&I!$4S>5e893T{JEpa#om>FZ(_(52KAZ6m@B$9P9wGr1macDMPgi~h3 zy$F*-NXjko>=GR#5)SYuU^qNe{2AdqB;A`tkz)tYQ}?_~5N`^)ew~of_!h6QlIFvy5^?8qBqFM>4!93iH%;Vl#UA)XGgQxQ%STF9I~ zs%Y&98zcHW0o(DcnL>Y881#H*@a1vqb{!>Q?qLgGAvgg}0pn+Tsxr zTOT|pAkzgg z6abgM>bm?)2ka}vwH$%bGEv1(8TswsApsx4o1wOVsTI-{kd_x=5<}TXQhCUHQk(?S zh_IONim^!~YKdm$#W1XmMROG#V5DzAI|2%r>R}tF``g;5-hK!v!}Je$n$GmSxP~7& z0fKfK_;_ifZ%z)j`YWhh(43Hv1qu-GFdl*knHqlv(K2oZ4H)_3vYs~$rW2Wgrlt|+ zI2J1n1A`6L&fB{RG0}GZi!Y zLXmVq6y}&vM;aq+icGuad;el`ow{#hORTNZG6yq`wFV462x4j6QtybQn&7ffF_0;& z6nKF@aI@$0i#9bip$tQ&E<%8tu-G}JtvBH0Bd-Os@Q7OvZQQ7r{Zn{a=kZ54F;lXy zuaD5@IH$-UK0^QS_|BgJDRuzHTnf;Jc%H@QK1)}3{{B)b_OCSAiuw`in^gsr=wL8O zh!CM_QBk#zD^4Ow*6r^f2Smky&OjCBR5_{fFT?~6Vf+Ddv0=*WfjHkeNYqeC-GVKg z`~nI>(7+IYyJNe6KoE2vejAH29Zi6=*GAukF+`#Y@B9uPH=I#_9jM%L+)76% zup_sBlFHNJR@8(&Ps#zcO$pZMr`Y-Gc+$2x&IIm1cU zGffqbAi`F(Y~5&Jrh|82N&YC87Hv{q#^{T1RX&OqnbO9$eb-)tCmE<6nB{9?{(uU0 zhTY72+i>G4|I}#2`Mgh2(K~dgG46MxAl?EF)WHsK>iLGAkz1f}CBnd}20Kh$B*@8R^{!b%;FcLCg-0!`;AfEgHZ1`BKRECDxsAO^SO!#S# z85%JO30{|Oz572cfF>AGGU^+YIh0Su2#%m2dmr~OVX07AkbE1msGyHHRd$XBky|8Q z8kIUWNfCeoKkH(>6lLtJLTpV6u07{ogXw)qsx(v#A?dg7-TUpQ_4GCwUW;`{fvgV9 zJigPjOy-r6P($q7V`gUWp|`^Nz|(=BryS{0%b|aXy%9XHCd4L$wHtIR1nG`zNEdBv zCxTL-v7A0#+C|Yp#kqZxpB`QfreT?kv<^q(vb!nW3qu5_qw6w%k)(`v|+5NQJ z>HF0^G^rf-ukt+WU9@yleE!trUTVYHVefXGv8ozjmh)wsm}8j5N`BXy`!XkG9=&~; z$Fyz3xj_o2{6iMnzo!qjxW9WSvv%PRWd(JG&^md)2RjoJZ?)XIYW^OO$jl`O$~K;> z3ylyLJ6QiwHJV{f^O{YTvg=uXQL5^GUn&<@;*oQ!xf2>;WYi+6Tm%@)SGwA+cCnhc zJ*B*Un~+pHR39xe;bbBcBtWpY&xn29S3AB{w~d60p`===!>PZ^_2Ini!aiEF;5sB9 ztjUPkf9Cw`$6aj6*-nv28sn{x6FB?4ndON5#l`5)&^@HAjQ&eYN&aF_p9oo$|n~+ zkSbj8V{)v|s*R4f%axu??xbbA_(xstxwq0cN2*=zwBMT2R)b=RQvbMV)z!Q->XDR3 ze_y4ZIB4Fu9Sm#6w^T%Q45;ts*iS~luO}@vnYT@b zzTLfRQh(hM$uL^c0x$DYPoZaqgzbO<3wCv$yVpM&iW9LVOMMs=gue< zEJUKTM>OfvXX)>`n1it?x0cX&v0upHK~k}b1L*jyP$=Xgyga6d&A zRz+IC*}4O^OKr zX;S-*&X>5_2PV<42E@xePeOnC!d?al1bd6aHLs|m;nwGIJ!a0aKiS2hjy1JtS(+meFT+YOGrNlZ{gpOfV{cLgpsDBg&b zj)K7E6svKahK6yZ=kC7H>^k(8lY)ebpgBZV?lQ0DzYy!%cJ*-P%B0L<@3TVVd0m=` z8EU`Gu5Ro+Ox^$D(aFQKKWLi_1hRA1g^LGfPQR-vuKYX5D3fzxEz>qjsjfJJf#T~E zpD$Xm)3T`T5qQ`NL;x3CLnQAHgjSMBHq#E0!Rhqm4sw)x-4$u*=(g|P9Rr9TEik;C z+hITi+K$W%HMDA|{M>(jq=8WnXc}w-kRek*B8h8`=yQ8Rqn!{TgTH}M$G8=yH6wQK z-n{@(Hy|_g(VN-WJl}YuI6xJh&HnSp5ONascpZ16$Q zgls}Tia=+~U|@qVT{O1^vogl&k zs0c#S@Es5i1IK=t#&&#X)cf0;q{*B-A`%5eb{($-j%*_ALA_r6^YVU|ncmY|na`;v zM5K#|gfLI6Ij*L*_P8l+g}rXPN30{y>~Y=Pi5iAaDx86}R|Vcs70b1?1U{3|VvV=B zWN}*3INtH#&)EGgvaaRoXN%JLw$RHqKj`yzl5+MdjjZI?tZ6S()E}DdpUM#lIhfcK zYQ)f+Eux)e7RS0*ujRSAkk?nfs*m|BnBW*%-@m#K%{I#JNgVhj-G;HVy_TADpcLmSc`=ynF;0ysEo`fC%g;EH~|oYh8HcrHWZKO z&e61@&LbT!sZ$`N#Rer(PgHgUBq7yqMINDyFaz`*oaU;a0pbb?Rtovk1Oh~g5Ss`( zsgJ!99T|ztC8AL<4)~}rE~mi+4{Re8X&|l$jd6jLjl|EOTzW^4&72%un+%|HpdBOO zHX(1U)3KCE@+uNysnAv8bHMNc-h+r{0Z4HmON7i)0jfaqZAmk}#p$U(RyzjikkDHI zP2>rXU`?o22@D8C+EtNIRgi)%ev%p zTH3Uu<+$F&MlI>r?S2o+lOr5=o(qq^6|%B^(_r*rV*@6qgkm)rBXz^)9AUQSwry*l zRRx0K=3Qx4srqYERE@#O;Z>Oqj@sN2#Vw4sg$w#89yGiYTpUh{XdA1~aJ0`kQr;D+ zNwH$j*-$Une4z5!H` zQ{4c?7s1y6Vo}p`knnG04g%32gQ#Ne-hB&@L;k`LJy7aOBo$+kNuq8e-4t8^gsve) zdnDP?i@*0`It~oDzq+18k~17CWj7peh)<{?-d^;vL?MP3idE(UYYKAlY-$qH4agiP zSTm5`tOuPLj2ooaMT9Iofm=!BF+yZsH#h$PDPW6lMWp{EGZL?rIE&rLOn5lke|~!0 zgmIWC&uM`G3IbF@%o`bYOC;Km_Pu^_jgHK9Ba0}lhCA#2eB!|oI9}fu>Elpi|wY` zYDUjvf262)tTj?wdm~Kmm3`6iU&j#0|E8%iv$90SLZD;N&8qC=&70vgontAA5aCGcq@j43)H;YW(2mtrze)DaOcTnZCFL2yGMrshmbs_IIX z6S4Lqm_4%voW>|15r@Qw z_i@^({2KJI6eMN>p=d7MMiIw1Kn+(MTjbMI z0ISxr+jKmwBKCTtJB6-64pZf!YbQ5~dy5_851=tqH@Ic9Ln}^(#&qt1%yD6FR^vPo zCZCZ##_`KnHVAk#T(8NeqY5yO{CSiMRqqKFmcTXI@n`Y=L_7**r+r$6CFXgSxXoDe zGc!iGHYS7^J+@Vi;lH5tBUtX5!0IhA=tox2&FZL9r30~T?%Cc$H) zNttO5Nj-yPdT!|{1=oHmtXF>A;ph#c5)*I2OZ#NZMV_K3V3(ocvf5t4`dstGeggA~ zX$R7Y0C6UNd_00Zf+0{wBRaTSaYpumF(8APK}HZn7SeNlmUVaDU1zf>>+9d8j{*x# zHi?+Qltf~vz;6R>e*i;|(P^MSz-l9AA#5%R=z`^t0QDWk z1?E!Fk@`TlZK)%5>Wy)<0GuG(EGtfss?=zk?2v0o_rTymC+*V3VMY0FQ76L#x$~bl ziv&Mm=DaJo@jYwY>J&HIl7K{n3nd{t2pfTQO$3>ct&-LkYr79l2@1ra+yksQB{=*v@bw)5M2~7D?;!sC&z6o^*)b=T+gD&7kaX`8SFpTZnx39g5n5shXOo-Wo z$lg~fFGtiYpB?ueh<6gYMcQ)+^y}X1^~pHoSU; zf7ox{2_U!u1|dxx+NAQq55v3eINad@E*{tw-T;X`TUdMwAh%kQ?Vmhm?r=C$WloO4 z&p%YBedw-6MASX*H~{qnY6!?2z44A|QnefY>6Ofy8#VB=2Ez@tx=@ zAxc5RE`_#}O9TL`6qmZwGa|$BUHy1FmKwStPU~)ewzM_#jadVKE*Z$C%!Jit^c&1L zo*4U?`kEs*yIEp>26~ybJ-&-O1qG{KKTj6{wE1T7!B9-&a3ohN zE@H&OfwgDGz6N4+5gsgz44|yBmR@MvLV+kaI2O;uW$mi@A3Ut3rG+8jWPCDkt_TF4 z$;x7KBVnJwp^&ZNhlEzx8!2ufi3SZ2ew}izKq~4kQhK6HhjIeLqYDZo0hN(-lPh$W z>8XLmjXb$1CLtk&`xuL8eo+SbE|!))bk1C|js$-rfs}X*@EW3axtT74yqv`@z!6Y; zVL3096>+fkZ$BV^&y>ZTmpi$enSFgTtHJT#L+CqsoLzb}WNw|eO&|MYp4Jf11QHOA zL!2o{Cud^+A+{0q6WW;EqJ1(lA6JV}Od=MC0vZAA=L_1G*+Y&7*7iPO5Ce(;ljyBm zn?Na|rXq%F-`a#*xAg0e&8gww!XT7{N+(H2NDt_5QZq?^=WugsWW57I*uP(nB-MPu+#x8D=g0q@~7$`qO zUGis2p_i-0fTqm;vGfB1|7!2S46wio8T+gp_UB2)`wZJ|$?isiDhHr#nr zgZ4JId>`L>nn_2l$wE)Am!_uz=hRMwQN7iP5x}J*6r<3aWNo@Wu=Pee&(ZK+L#fTi zQ7Jt0_na9E(>UI#o_|x>cjk8Z^{ZxeJdx`|+uh!bl2D8~Yw2xo{Fk2z8uPz&YOw#q zdN*4tKu-GQ;e<>N;|kf$Jq*+7eMU>C`rTrV{d#FDt*`%kwp@nF)nk9V!zsCtlE0%+v-gksT1o^O)3 z7hICxe9DR{-ymw_i<19!4}Jx=J*!8Vaz{j{6M1w8I4@mUo31AAQ~raV*XMH3^ny)7 z>^6))xmJnOIGw6YfbLzJQ%$l zPP;Fu;eyWS!3w$Dx|*}m+F`W*p`-buio-5fG8DUgzw+`q{_FMuvIS-v1a#O+OIBX6 zx>R~(YVf3k;e~PtsGq&mHp>o8ca!@O(s(7_ie00^o!dP*c7B7#oc$5U=`c^{J?VsmnZ@_1*-6d@N#X-jS#NvX!us9hqPE%Y*{ak~I4x+A z)w0Y=sUWo{%=JmhgPu}`yk4z;zz%*^H5CvOO80Ze?b_l}G7|4wp9#Y%VXNO1f^TZ_mtI-+B6rq|9?Bwt@C?N^|mo2!+307HI}0IyVRF zpE>n@p?39|pHbat!wOe_t1S1Ey71HMtvTtXsf~s9bRQZod(+)k$~m^>(<{CZ-G6@` z!qyFrk9yZ>-PkzTr+l8%`~2EZ<0^F(R~~-$5>1(|9~{;?7<>wP%?sxPSzHfL` z#xr;1kk@H^fIP+HvM#MR54rzw)TuUqFMF_KhL-VbZ$s0XCD&aC+eB%PQ7IVqrgIoB z>T^eb-~Ej7Qe|~`@8Xj5(2iQJ)+ife`H~He^eVoYYpWk#nPcb~0t{DcXB2-*IN+lq z6TOaeSXXY^33+*uqA=B{0uBa|+7P{e2UpQnMYl~4+nDs-4>8MgI~_Nq6WQS5{>XN_ zZOo3;tmD>+0H2F4gc?wmtzJg9~ zZtz&|tH{azsFR~}@b>d0Ho%R+Z4Zz1AtZ(^5bl@$4{jz-_{r@)wU@V@h*`r_!}?JG z2Di@;dZKei)+L_c4`x&vz=}xH@5F=)M46BX(6WVQX&JVG#q(DBebvTG@XeeV5lBAp zXDEu`*I84aDbWOi2NNXpYtKsW$jae5K9Q5dp3pQXwwp_U>-(g)kKyNl4Q5Zeu641R zOk6rlYnCsS)jQ)|`P8I+gPE~fw$NYEHLv&#ABavKVm>8Vo12pmew2>NXmd`-sF(uJ zL8MahbUS&y%K=eZPDE)?-cV1(G5x}YjXegN*k5C~Y@m~+)QW2OY4zDXL z#vfM)@5IMzfH7Pho&GU2MCu(7Q*$bGX22Yf#7vR_aDY<)$_qxFxAD%qS(Q>_0*w$< zAFMLrF4wH31_iGQEYR=7v-U#2RbSlZxFV{*C{QKz=kDk5t}u!Ad2rFjm{HU_ko)xK zvT<((3o7G|Nxk;Ja$bJ60DV86f>QU><&f?~O(^i1^qFQtSsRrR6sP zasUK~yBpyE!1|z^Ll1rL%B(TKwi)we74%K8_D%SWRHT3!yyyGZp=x>dG$G_DK*K;{ z^{$z%azCqosz`O!^c%2h8s6UWpviyb`$~{w#)O*;AN?AgnD_<-F-DB6Ku^4x!u+KR z^ic3fLnBDM#DLe}#YWH-LEmt6xoju z?5rJ)wAWPggD27*xc28J&4CTgqU6u3=GMU0HSEoTuMO~2lpU+((Hg0N$4pG%gwB;gX58T zqa5_q1kymuwVa<2A3ufqz6~rZZ2$f_Iq(eL0b)tqxkplzb-^z~*?~VyG%AG%rz9=w zd*nWNXdgUmz=Gd_M@_;lz@x$>dk}>?rjH5YMH72Do$_gR-&xC$>iFkb-kMfVv6Q^ep~s?H-IL?B zrMlamE3BTXPT@}cd^?QV+W5ubEdLv3FHa{m&%!|2XL^0Emv7!In0z?O^+8c#sL?ct zDpdUMM`{V%;!kC0*fDT3hO=Os) zLMM|2g<`TBW8dIhAT#W->khQZki2xFd;+ZTgEvrs2#p|3SPGcKB$Yu(&+Whx11tdy zu^)XCAQ9|90`5;D83bx+GFu*VAbTM_xevaV2=p%hE)NEpLTY7z-I(iSiAIt{*@6Wo zh$v~6@HQJ!;uAe5vIDa|JPdspgqUORUxf|OgAkhD5-cAHrXVxN&d&S?(MsSeIAWectl~t5sud+%76NBAMqYa6h zd={(i=72dPBKIWyATT|bMZ6h3(DJwbgKdwHqlOPyql2V}$q^DV0Pu25gxV zGqnI){eahEN|VzW!4t&YPeFoXfLD`D{9NvQj6lRmOr#6|D1o|>5Jn1O9E4f`#0-Jq zN#q5lw&=l8h(_ENI09+!u!IWEckO{%21fu9P~&YC0&*vr*Z}QFC_*sl#D`2XaiNT`&rbEWE0a1WI<}!(2-fiMzUttDFCOk?Bgt1Xg}m9NC@C& zVq${dKV5_{K7if-vgdyu^F-^4WT9T9Ne6_P%``Wy3ml9GN#-tB;b1_$4os^H)rexsB6agB2Z zl9LP7PS0FYQi_)wruR!8=ry;bS5;rQwn(MOGcQQb;xo2>JY)ZaX8()k0YfowIUf0@ z)?fT)oUL)Ir;CHbgWsQcR-HF0!u+!HF$ZkV&x3-7+UI92*e)L#j5_`6evj;qm+GAu zR};qC{>ky0@lD#&7V&LKde!^hiivqi^?j20^5Em&_J#$``g42Q$}iZFK_6XXdHhMh zwQzz%nzv|vL4K=!k_N`o!tEe={K{FQq3i(XoNo|-p*Mz4A?H3Dj0T&Tm|Wk4On|K} zfKr-JOzx)t6n0aCLQT@1&$y9j&LG!ald|$h*xFbKVzv4Cd7W3nO>S{gs5VKw_`OR% zcVJ%LA=Dd0aEVEMrKd2|K)r$L;S79y5|tU22?H|?OvMtHw>gfJxc}* z!?XjpCaf0^us#g)!ZRJ9#=Z`~|F5|UwCGR=K?+y>`|7HqnTRMx_2EiNg^B;_F1at~ z_MmVve4r9{Jk#Si;v*yynpQ6i%7#O23u)5IhVpvLH0)&*pzH`MR(UlrIlq|UkhH1N z=<4lZdnKOB7MJR7IXn{l%?DKd=(&Mf2%Wk2VA7F_t(ZAlyzRb2 zF|QZnRq-u8jDf00m{>V)<~gik>~QBU{v5R9MnZvrcIQ_!wI=S`W9QwuDSgZ&Uiu_P z&qaOGw^pZ-r`GK#pwZc{%D^x4Hlo9kW-2inXt!zyZk=bA9W+}d7@4-&o)WH~Xlyk7 zC4Vn)Tg|%@@dDPy{kh!2_R_QFw-3{^J8^X$cP-(od?1mkovrYM(p? zfMg~p*eaK2yGZyuF^+(P0esJiP<*`ATz-^JcCgCf#)Rsp2_6Jhhy|ZQj%$nv5TcTu zpXehnHx$@JJFteR7xQ^MKw4rO6QC8CB^2v8oHR0`z{(Sz9A_%d(?PJFL?n+~2W#Uz zW(Vq&R54VlsCix&k?5%ZhP$<*MgnU`wC`{@{U=t%se$#4WDhd=4p1+OMEn&GR7_ZB zn5!I&#Y2n%zdUwr!1&(??BQ_uurIbDfCqQI$jm^@X z0M@RUj3iJTaU<@3Bgb)I64DL+HjEu!UG7;W6C;R_@IOuHaK&#wNdv>u#!0NaAO5FY z@1eB)Pj*kl#xiGzHjBnFvi)O92HDxzXCdBp!`uZ(o(_Puur0oQZDA)EtM*RE5svV9 z+SV;6=@ltTddqBtiaAefY3WOiOnQq*h%tQFYyNCoTH5P&7S5?l?T)#%Z`@>M--`ZT zAF|E6kJdUee?q+=M?Wdz=M2?2g@xpa)zb5O?&#A~Z|Gh3C}aH}DYgxHCq%191FvLS zt50_QF^vo87&Q2NSu}F`N9f4v5_31tu5}yb&d%K(8v3N28rT*d2zTmC6@3ipl>FLKy+pWY5(%3Y5 zI{W1~W_TmfOp)snga;>vSoAI)y+TYrP@3XB5xbCS2Mr_R57cLMj-^L&VTsZeLF53- zCz(2f;_t{jmi~TAa=?*6eDKKhvp+*oBm{J|Cj}w%ST`tX=6*C2>Iw4?keyVH4M7N2 z&@GwW}?s6XV#Vez2fL&nnQaR)_EI#9tj zBigM`#TRfP#PuLH$?!uY|6+6yb{LfBhUsrX0|7f;X!wYyfzA_M2AR%DMjBDTJ|cDY zlQ@@*eGQ88CBGE3fD6YI&?hwDUm^S#7WkBA^15n?_J@M=woC#$T&T+2;?pbK{TtUm zu&|VFIsBsDJ}D&6=-6MQ{HmqG%#n6lGejzR?0hXR;I2De$|O^>*mU31K8Z(?nMXWX zjqmBH@@_kgHjn!uWB;e??aN7`T=F?9l=1CkUBRDMC5J=OUiS4pF1>8e!dtuj%7ZT=}2{`68=)spqy^3CNmyUj)5Qrr^DW!DoWllEmyqoStZ6$|5ZV`7-wrK z=dR^J>O)(de)|mSl=1FuZeX0rJQkyPcc%!ZA0g!-xR|zl<>o^7=La;-;lEuU?0Vy@ zhG3Z=%_#`w8kE}yHU3KWS#^V)`;@RyVcdef%-?#w!8_GcH=QAM|Cncb2h9vu@#nD5 z=klgxhI2O!LWbifGx6g1wa~fUpp#4}V8|HrgdpctNYVYcR!!|_3567*B>Wk938|O` zQ@7hj{y5L6H(RgHJS{LkrT#K&YHQq&6D;-B7H@GK9orykUj0<>TS$oPRX_1K6?31w zMk|T#6ADf>Jw1)1CqGv=R+;-;*~L>=Z{;q(b*0+j!R}Yr8qB-zH4La4wu^Q=7V7(d zRkW*hFX9B`#+A(Sh3$hnEF_J#^m)W540tLAYIuhWZ9Z{lCt#~f&tnxE184Q318fULj{F(AwX*EzdNyCL*q|Gmj(m?}X0lAzoDLGZxMOA0@u5O${ucL{dgmpm z@X;Y*-<1nIVfQ)4&tA>*`h#eTZ``6;XQTz??2ED5FBP{e&YOt$O04W_kp&;P<}0(r zueQP2@_7?>^OXGqRr87`czA!!SX8h7yJ+scR6n*HTlfzgjjS`=;obEq^32j>hmSXx z3O{^md9N#=lo1=$y@V?Y?mKbbp3V z+dHevrI}`7$;U1V%0xt3TP$8LdCac!Rix+Qhb;{kgsSNuwjEFlOO|-|(@pcQpZUfU z6I~w=@10_@?!U}p)pr9qhaEPVaONF96o|Nw5G{wNf4rkU^d2DkUagPwvD5_WTB>^5 zonD&KskLbf)pF7K;}TqS8a5ltkB937`hIR(8dt7V`F%`xROL+TmqE54G`Xh!y_!CB z2KjEMrT_hLU&%W=Ip|-dMzQI(w-_?|vpkkCj7{E?xWuMrST?E{Qfv2w^-)$}y#?QQ zO1W5_TRwDq)|Q&z>>8lS;qc(5rxwh5oDk8>^!ka&?wS!nNfDXgl)r@w@ zJ>ssrZpT%Nk5>YW;@3V@N*%2#!vtTxb`N@u?PYwSr~O3Ze)Iabcr4pJ^MyvKmCtCq zw~ckc2FI_$S?9}cUF{NcjZGLZG~9M>o!^H0bSvxB_9TgY2>Wj!V(qRPy~GH{mD2Cd zgLcWQKc+4;@vfH4=6*inVdF2hx-R0|O6T?cd=tke6Wcrjln(u0x&f6e6+H0&BQa#T z{{Q~E&|a5sK8`4xV57nqcJ60iSMJ=KgM=v!sj&pdLyIY&)@pVb< zZ=(pms==VhH>y~~)0we9IyGzmK+xWT;Kz9mn04aV9zrwh# zb5kb5h1|}QGn9P^mu(t43pY0$@p&$A)#%_kEBa3ALJt2;pQ=)A?zg_RFZ-Q0cz02= zIZPlo=M-PsgPAM)BKIfd{8WBe@o=%N{fAGpg-XPcOQ)qo9n@@0p zi}LG1b=fp|7uk}|lV6hD-rjCGc$bCkaeW1ktw|$u_93R=ZFhW&qebXjccgs?a{cRe z_EY*Yb?m6{?~GU>amG#Yiv~2jCNB=vgnfP}eeo~-i`aENvC(1<{jWK<@?;(r6*Ma` zh^Tw7dxw*UWB=Km%{s2<+)NWNQhf8(w6txCii-2S>s92-mUGRQMSK2!dQ$Mo4U&TC z_g+;oKt2BX)w;XiPE1IiKYyM~ohJY+dK1^N(hj%Ub?g(Zk-o7e5-?zP*8&iFue0m< zOCs$63~ul2Y=_=v(e$P%wglo?8JCxrSwhuGKWt|wOw5z7ILLs)if7Ntfmh8>tE^t2 z@com)OOgQQYf_w1!c`U^eAfEl>g&38E&EJ-WO1}9CRdrZO6KvcQpBQ*|669Z#R%98cFd{gyh*RAXwGcN8Q)*lW1 zu{dH!Vr%MiPtUNVZxQ)TVzhhd-MEIiMo(DN%QWx(TnV#P{xG=KFbV_)=W#|hp zex(P;*6vbV->An>dGALW_xjwUl=%bqH!kQOI#bHCcYU_lm+UN!-kIHN^UD-U-U(Bi zJ(jumBm9qC;?hv)b_aK@1D3spIg0nsSl4na@EqIP_V@2!k%T6CM#jkHUweBNHo^fu z_-c#ucfHj=dL+@3$c2f_hIgfpmt*VJ@4C*HHWMKj5f~$)ogib#lpOH+WyNa+SGBvl z`@|bP-)M-lrf=%`1eBHS`L_6NZff>Pb+U=X6Z0)#Nuwy0oAB}spn zf32zf0=PKI1i}2~%2CsCO90^{{ek>&94)SpKukT@b>(IQ&*dF{w~K?R|>G9%D#rh(HsI$7k%UxfP&RvUvKTEBn#B@~fHTRG9Y&2W?W@Fv<0r z)y&nT@RQr>^4x`XL!(JND(=U!!1@y|!kDds{FBOS*n;GV5gJKPj}Zdaw=k#(Ow{qtS>&K9S%c6BwuO-NL4 z7n?7CJK*Q1qJkWii`WU!<1;2FCs$&2Q|3wW4`04CnlHDTGc`>5K6wUI8GPcGm&#T-Ude(MkwYxhy|kIX(XbUWe4bthu8VR&}glQaI!ul@i2ON1{B)van)k zSz9u})zkBItww1~q3_W6CU;y32bap2Z zy>G|Ivtd2}<$mRqhexx?f>!?98aXBBH!VkGc;H95;|0yGZBn~Yr%j2+<9$yvO}`g3 zYaa=CB~yyLe0|Lo@ zn~d<9SnoHn{CEXwm50>4zRAfb0jj%Xy9&JZ$W-<>k?b9kHV43thklf)t=|^8RM@UIB0tNH7qc zfO~Yqh5-z!3v~H4yxq}$U@d_UPtML9M+CRW#>YDt#15Z5ytsz}0LS1CT8Llk0$pST zf%n||w+dKZA|emH8Xj6z!_`6^8x$-o3KVpNC8Sl~kp}5x@Om%jR10&{uy{|T#&cWY zAVNE1USg;*ATC>zF0x5vm?^utj7g&s{>U-?CVKi#^(v2V?`e!Kyn{i-cqgxBOuJh( z!2td^C^UYE=FfaE2$O&z@o~3AvZxgfo|)#F7}%=w{-`Xe_Pwt29RjTT@|UdmATWV|`?p924g}7+ z9JT;FrO=8O1lU;naP|Su2q@rRGzKh(k|GCoce(u&KyH9Bj{qXY=XKD6Ll@3NG3vun zyb8&jegZAO6(1fR2-9M>zm<=FEBmH$_+AbH5a*AD_z*x711M?@a0+BiqX07oRIS!= z^73|{x1P6D4!~$`R?zX1PZ*T2_x3V)`S=PZKh-jB7JT8wavNOB*R)azgP3A9*laE65(pmWJtMp!Skrj;HOX{`9idIc z;!yd-$RO318v+mKs< ztT6ZF$kID|vWQ|P<~C$PU;F+Skz`1KW|2k(GDa(83LM`^{X_%0#|&4qUeMzBm^_I} z^cEVl4R3?%Hn|41S1S}&E0u~1Ge_h^kk=Cq>iTY&n!$eODW}4hCn%#wH@z8C zB)D+eD3}vPryza&Pw;3@r%(Mw)dD0AR6mU9K1ykei|d_YDwprQ!Z1|{%kcbixy7OF zbT+WJQ2m}*2Z&h#*$Hwj{_dR1-&rQgeW(|vPioF*=X*={f+xPj-g4XJBKIbjGQID$ zm?~=Kn6Xg8g}9D{6VDoXuC8@lfme$o+;Cr1)2#}jDtq2HoD7PZFH7!AIE)l&GG(`0P$m6<=QjA!h&B1W40+3fwA){A%Y^hzSt#UoB$c}aK3`kOLuX4o z?B)F~b;dUBW$LMkp7 z)+1f{%9wQoNxGz`dgi^`jetl?S-79tquwMHu~D%UZS6Vk(Js!SY@PZ)<6euIQe2@bepk9b zSLJG{Mp<=`=kkT+#i-592g=^+X!{Lch)D4Hq66`E7Wa$2CY!&1w;Ljxl4r*ypyywut;L4x|Y_2PT|SaQBB%54`#Iy^Y8k| zT*XW-RoXK3(R?JqD+>yCGY!51VZcPlytSqkSEj(LP1ogd{E$$_trCe^l3!%3RbIF3 z9>GtL&U>^NQjUVrx&&z{v$LJ^9Ac4F1YAG(1lxZSd z#bAoMvpl{G{@=D)volQS`#fpFO>zNBC8(u@QR^$9ff^Uty4`BwF?0c@(lht5Z#;u> zRNZ^RatwdBE!haByAL;C7W4k{D4B?HqRNlp_}*esafKp#Jb|RP`vnRWj0exwddA@B zdtNL^u~-f_HGlVvsUYOGbz~t)7fR{Z5z%&Xw7@zpP+VDSP(QFPwR{bD;$m9EcBk}& z_K#N9C#rLFOmR%`5N5NSZ*io=L@Smg%clhU^WgBLq1CINjgkbp?Db?XACMC)0`^0( z-p+%~sMH)XbkQ9|Ra&zlLbB|H&(Y2d#|Xge>gp=WUUt?8lZS`eQV{hu4DSVWJyuPC zKxe@6l{1`b`xotdz1_Tom??D}-Id*=+hcZD=zM*!irAv^AckHdr*vmEVde6r$6&t_ z-PW>jtSyDLuuFA!xJ69Oyyt9lZuB_G0z@jxNy%<|GIaeHho+lbk9p>NML5N%SSX$L zsKr?~?B7C!r59?t48tfBT;5|f!y@Ahrdap}v^o2%FQ~hTmSS6Yu48Hu9zoNJ&q}An zgsikfYF-JkYP6rCs_Oziytb88R2@tUJduv!XW5H+h_syMjf$9O(mLku z(WTJe>%;Ir)QmKHcF$Cd>{Kqs;S8Y8tYkGl|BG-p&@p6yv(bN!Q^f*U>PLX2y9t(#j3z*%E|4n^}i-B&DJIn`4w$P6QQ^)RBP&~aR^xoDb zj~%%7%p6a9i|;40D1Q?EziaMT;%+YM{f#@;f8uTF!pLwXnI*dGsPA!*I%0R8+dNfO zo0cw$|GY@Ej5Cp2jau_+DOu?pf0pmfYWZwS0k6=!-(Nq>c~5kAk6WeIvwr#40f}dV zGZByztzsdxneo8Q&zrkVz+D;rv>&ds2GZ2_Bl(tm?6&WW1sn4^Ea3QVHT@_V!xUSt z!?R4cT`}A|3VWw8s%}C~{eViO&scB&<^9>Q=FQ2aqCysTrtq>GF;>1ZXs`wUpED}g zTtqeaj5LXAYhG2@Qlc15^8FrXShm#rR&c}j-V*iaJkS?8QYO2m*NLz|*>+vIOeiB1 zA$|9Im8iM7Ch2#^`o(oTR!}Yb8*WA#cm(egl)jeF59G2Kt`0csm+tNKkxD^LGs*T8 z(}hdoOSY8F3h@tD?Qi4mk8`)JtojdK?M0L3*|UNf!j%CSqxgf3jWk|uT}xMi)YK#% zEHuo*Z-O}hU_jzg=Yh?e1Wv1QFtEWTkA%I7mjn;d`={H>uQbl6X3(Ptra*_GW-kF% zWKV)X-82v?b5;{50-s$z?W~dOgs)T1p;ANHB%XiVC+JC;Uz8Ms!J<`bFsnidWNEYd zx($wY!)of;){D(93fJ3(ttaYV31m2NPqQcYIy`^TlRpPT9O^4_?Y{`*GW6M?yF1o~ zrf>r!#?mL;IzuizZDIh2g#^Ua8lgPGd_|zKEtfYnG>I!j2i1ihdPPfS$9T}l#gfH6 zS|B%Ok6Mon9sXeZXj)NE2XKpJ;g0Di?Ina|o;Pi5)0msEbSk%u*dsfuH-ExZqmWbE zQWN{|O1IW%&zz@As_x5l`wXrE+k(yOM-4X}(gkY`xIO7f;5G<=WBjbWseDxod#3Ac zO%-HTG%0uZ!gg#e@IHVN+J)zWC-p!QOKu-wSg?8xD5OC9*HRt-*)sySDn>ZtmPnZ3 zzNLWlf05GsD5K?{0Tn{=-GIy&m>d20c9w@IMY{uDj9gu;v`8+$`9$X__jte2`Z14i zS|#$R&G$qEYVbRok|NAKx`bF^JztvV@~(pE0o3feXs4IW6YMgQy?0w3=Vm4fQCWyfiK9d_<3`-9Y9@iul6 z@V)l+eGHFrvT)Wy;W&V2m3`d&k^%9$;x+h9w&AzAn}S64k80bR{YFuCI@4v~(h04< zFFLhE=$sDP-5q9crwBJBf@(!7&Cy9R_;sHE*6~KC&6sV|kqOS5+(RB*tz!LH+fUvR zj)owFzs&P3j3dR2CpM^ca;tj8irJ zYO4f7(oFe5(*c1%Tl?arMP(ol!F`W+tHS?fX0DqZ+&;ZhxN&TQ$X2n*&xTd!AKg_W z6XXL<&i~4>J+@%g==>8#*@zFfuU@H%l)9$=u*sdnXnq#)yE>90$(?4cy8_tP=r4D) z>#r8(S3`jj@Cg3N8+FN%^!V07z;THw-l1lzV{^CuZ^Un2VlVPzb}Vz314Gxv_9_b3 zBc!KKxB70QCHsbD`of_2l8>NzpMYam0riT!xO*&>cNc5s)WG!pjZn23;E$7e*&7%e zfi&iqhldLnCufW!d^+b7H5?MxnTqN-7$^VCBno+Qf_EsV&7mYY#@#zMqtdRaYQ2K9 zo~-S1hTlh=$eqlAJvi$}lBlaT{PZzB#`|Uz=vae@fvJ;8OcgOi_NPuiMl%v07ngxr z-1=oy2=^2FrOFGTOA!i!pA$%lAvY--+|tBd%ixYX>c-kKsojkWqtYCFi|DT>gQ_0p zb;RY9Q6tw=CpUV`#{GF`&+y$)A4vrSBm@VKKPwjovozNJ{b=d%9FcK_**x!o=Kg6@ z%dX9l9jCQVw)OVSuIpKqL+{fF)a5AvfrE-#Qqs4d_f9ESM5!s*LqA>x(qjseAc!8o zaMNh%w(nwFy0AScyg|K}W^?HoZFl7m3<8-}#A_aWyct96MrAh6N{JE- ztzLg4#!#(QpBcV=J#`x;d2Jv-;c|LB`1diG+>v)v^eULeW^M}av)1#TuZiV&UlA+cqwg5bISge93nDoQ z{>7!f;>LzfJ(UTUxNsZ4Ea^A+5`T2r?2y{Bln zsAiIFD*1Q2HO<1b_9oAYVb?7EQ6h_x6+HIL0LjBF<+9a24m)FQ-)E!apQ`zeD(f;w zi3*fgH=>9ib-1mrid0sXE{@A`?H_)rQZ_d|f8=|dm^EHg@F~HQ z>7NTUKr~`B_kyYQY7+U*){-Vg!Osby7hV(&F5eNt@aP~n|;9rpPuI1C@R(< z4QAT9Oo6n+NcTq`!Gkwb(=-klC zn|S^-lhjfQvLt zfO;^1g9Nsu{`&JrWKPj!x0dax1f1Lk&q!7-&I&lqQzxJ|Z+aE+4jWq=e|H58Jrqr< zMQ(M=wF1oU7r$(7dbo_}TT(4Gl=3GEHe6)J6RMc9k$=5cs0U%=29C2_&=UKx*0fUt z8!n0DN~$NOY9t4b91^7qPL{z^Wh!ryIP!fQF#PemP`sI_N7Yhov6C!G z{FlYQOL%{;kjFOCVZW9%#UG*|Gi4;i3^s15TkkM-D-8l+&(SONFDxxpp6~yQ!j#VR zQC!c$sUp5J#+4(qnBWK8p)kte^sE}S)aPrKMI}NH3>C0q zZ}^}6_tXD_m{NQQW5E9wLbpPf;BX#__8uK+J(`FvpxiuXoiTE}{ zCWCxUR@vk!i7Zf>lW^H+{Aa14_^AOfj$oVVk&LH_n9OFH0W%-b4PTv5mkp=X+-sE`}_ek{gA_jN7$!*R@B)Wp0j>w z&q_Q&!Psp)`EyaUw&Gpf%i6&Ft80!2P~T1a6P!!MAX;7gr@bVxn9MDnq#K_4l#0Qr zM+LP;n{Y~q=fJujyBYAm$RfXK7$s!-2S&4<3ysF9%l9Ytr*7BeDE2jxQ`hfxD((K< zY3{fWdSC~E7G!+4)w1@HYlX42A7pE-{+m)t-TyZ*Oa1qj02W~S;{=fZgqTY1JyV{g ztC_I=MZLt|yrqXGL%&Q{{Sz$jvRE6dr^@U!LC#cnZ=E+HoN#HmR-gBX<=;56)n988 ztD&sxJeQv-YbTA@0n#FeVm`i~{NQ%ypU@d*n;$~Wv0OT7&CNlmlu-3H;u;O95-$3t zo77#nmep8P8a2P{ojO}bg3t9F%%MgSj$Dl_Mkul+*@T+Llcq*;nQjioH70|lr9!5| z=eCt6WS~YH&e9JnGDK>tp1q7O)K8lUL;kUGdNUO~B!HW~Fb^VA{Y})t@r^Valr3`? z*smBz-B8*S2=88(#lg|USl{@rPb|N5d{~`E{>O$ed;KJF4qL_2P7!Ys(~)U^5R(%* zF+ZIKL!F*j5__?HPH?U&_afmsG{8=f_`eXhO_~jHR|Q2 zWx@w0`Fz4+hz#nKPz(2$f4Q6FB;Ws^JvsAO*?uFe_%w@Idxq^WGOVO!vy-0-_haP8 z{)z$w*gw>)JT-{Wzjyee0cPgTwPT_xueP0i?#$p!x8&KfW*F@N}zN~M-v~gyrN5Oi%Bs(ZZHZPMJ1O9GPZKg~2LuOyRNU~Fhk=a1SI4zq>2USb=d6>s@k)*mi#n=I>(#J3F4AB8=)N~Sc<_=GYQ_AAYD)E>WIioi z@JgOmmFc6J1s2a-T9iTGLprtzf>xU5e5UO|L2g074%Sq<2b-?9W-?u zqxN+err)mUoz6;b>TIpcJq_dDWoz@na>ams+u2p}Xpri2?$7}|G=W>E<5!UC~q17}KFT5`9*1Xhf<+5YGrv|B_S^|o=9m4|wLNUJjXXAAx72KjyVirq zR#`(il*?v24&J)&&(LFK<{nU9;(z!@e7I@;TQ6J|YAmB-ZSFQ>El`fpm#a&_9_Gt9m|C_A zJ;ex7!sDfxTI&`mEXGbodREkxU$-dbS~jzy?Wud7^&0>}Eamub><2|@?ehu8g3f9z z9EiEbdrb(68}5Fi`D1$nUV_na9q2fCRVX!myTU_{BkQ7kvvhW%>OPWOUe?L4Xnhm& zU)bzEEVg@MZ^O39i8j+#dftC9576GR1=G%cm2PEQr72VpuepzNX;{1@UP~^kMXa7a z1j>ltbHXFq5`=o4AhFJt7m^|CLxUulxxBoAF1YFP*@-z8-xLHR2%z=krk1u=`S8kE zka1=ZDg-rC$>2zWDa1so2;aPR{MVm45ku)bt(+QShUw2oHgR2NJ%z3BYyTQU?!Jy z93Dt0{&KR3sR}X&@robaz=#y5S&)J5z&b>-%ZRBYC+d|;^RU>4Mhtm(1#yAVn2%%3 zld+kI_L2(Kph69xa!T%n46Wzc$L3|mpy`i5I#l#o(ZEB8sb}SF(98FD%{~6IlPe6! zGHuMx_goM;yyl>ES#_?YCG?jrLx2#e?AvZM8>3+|1r9k1Yfd6|V^eK?OUb|?NYTgD zke)Rw2D@QQluH=e?DlAuW4by&;o&7*`6YzejOd{Zw@}>ZP;BzsDY&i2*A$PkF1Sj| zCbUTBexQ!{!_8fe7A=rY_v*VLk(-eg8Qppu$v>zBSU2EoEmMXrrYYPFDL)IM#0Ogl zfN-wo{9%6QsI^UzMN|K)0R5$01lQ}n-ER53+@Zfa)$Jv3g_#dq&u6i?>jHAq|FrLd zrUa0aEX{mR%FEcV(}>+7`ReU@=fA5J^+it%K2B@>Q@-0s8sE&EF>4WOo`~-jsR>Zt zD^$X=WYx%&e*i@mj%LuO3R3a_bb{O(CG2J-SeL0RDnbki)S*29m?B(LQOrG0{Xa~o zr8AQ_jMZvD2wMYMzJ=tHR->7YM{VUhS$sDFLc_s=OzYWk5+GV!lywRC)}Vb}ZaN?| zujZ>PX~SmZ->3elKTTaGSPYEx!A$^k=F=trZEiRs7Kg&M(s-KM&MLjfu+8j6Ws%Ps z|LZKwZ6!Op{U%n!dFg=tqc)#=N%A9V*PGo@_Y*h*NW4T+kHp#_EhwdCUZ$C6Tb<*7 z|4F3}lra5)HEQPi=lz3qB0Zhysc4?7sh|B59j&_#yO&iBE~}pa`l?^25q*d^@Pz~+ zPd3viz@f^H+OAbCd!rTNrcQr&z5S0A>xO09J=u47URhRxx97Rxm6Vv)cqpPzwPMFw zruD9J^~A~+!skn#G@3TZ(u985M{`Rq%M>P# zqcuw+=hj+7e1pf`1FQ8BtoM4~yGye1dg#+B&QKm70Q702Ugt0>q%-Cv0_8BBoDFhP zAF)*lU-WTR3RZM}uAGv?mZ2lTQ7;D1v5v6P7KIFCDiD=`0E`HWn1Y$lmQQ-BU_!C! zqtqD?0NY9^O{T9>n6NHOMj+8CNZAt27#5Oq!i=Mu7xFq045tkvRNcr^0*7a8447Qk zaovirXd?2S_n>8{xv)kN!3Gy3pth&(glUt^IP{x0A?wjx^rwfVV#}tToSm>8%ZWK4 z4}YKoG&+;>{rgk|JI~W&8QOZB2_-)EU*qBkMt3;A_muY&$aKaBK+vNZ9>{9m8U2#y zq9mqZ(#wcvCSBcMzvM0m(*}ZSe+ZdT8F25grLTHb5M8)WR6C z3loCR%d5m{saV6#$o;e|G~Yg|{!!Q!-gAh_$N;A%Hd2gGWO{~%34OK3`F^Qb~_R}v=TN) zG`B;vH1mcd%J?yYw=8Sa&U9x_`!X}hCn_OF?U`EnfeBmL{_3TbpSE#MNFhW?R|Lhx zl&thkUFDptw5j@T{}Z|oNtP1AbU7e+4p&;RH$ zJ$zR~To6!BMRky!M}TsF-eSENZ~iC>f)2 zhCdtUfSj7vL6&J=L0U|rXLw;cYX7GeK=YGzasas$`O9Ke->KB((snGa!Qx48g{|pL zOz7G$KiG`6xDpJBEMKotOYswcz7MD&u9mb)q;ktmFecN`7FG02-|MF_HA#5o+{PFc znsf3zH~j?MhyCfE7=JJux&l;R-=qT{2##^g$jIij$e9FFw^fON84w zN#3A|ORV9jGts_sz?uCaYKk~~8+1{G#ZhRjGJ=td)RBWbno~egmkRM?hy_c`2AESc z$sI36D%swgNia!MN(Uy&U9FMGtqRW?QlI1D<|HWD6rd84kDkZl)vkE3D-C+@QLes!)@&+vaE7BWCF{+Ys`P$ns{{Q&3?lTpccCA!V6$i zH&%~C>b8$oO~bK|n_Yno>@Efm%P zOnls6#^UC#hX=Dv7A#5>Z*`Hg`ke_`(2S~)!gVQU4V{@Ju&}P-kk-aw7HhXFyrO*Iq zMvLS%fw^*Y&WBiVLJ4>}wOeF|PPp?zcga+)*$@Ahm$2&3xqLr@PQabSq@m8KoM)RLB&$GUgkLP zIS!pF{XN%}rSFNR=ZaUc5iY(76gB8@dOvA8!#?g#-D@@*x4GLJ*9(=fR5@>Jyp$r^YBje4Jx-E9p1)V&%z_PQS6OBc+|Xa!W%EBORw zF2jp`5>m=Chphps4bdbV;p@x(x~z={-Qn^l1K?pT1e~2Nf2+Saz@$}T)HP&7UNN_% zqLvssF`zH)?9t=UT_A)9mmsG7Qfy!rN(2E)xls2iv8gB3TFjT7#2+W7Ji)vb=P(7m zyZSTj{-SW6=tWs)o%eHRJH$}iK}kC9j}m`0wWY|b)vEcotl0nDpUOA|j0SFr0D<=P zvQHeJ@YThRXW44bPx>mSQO^6TU(6;@OX~yBeZp_AGdzy`@pDo}^o7&YJ{Uvf`s``b z#h|kGQD~k1dwHp-{H-SvgvZ@Gwh(?-Ohfl`zIT;og_H+JwFV-xPMe)%H~X#-87Nm@ z*&V+9#bf|$>ePVmP0uL^JkFz%FZK1+Kd%BZr<~R#=M4k2oIik`1t|7*V)pzQY&fjR zVt&yJ9@HdRLMhpf?7CNvJL><(bnYuCz%)kDqlv5DkueeEBzERoxmc7neAhBt>; z3)ca_KMuy_#vuonH+$L#!C9Wko-|&m_V?CoS)SXQfC_<`Ii&2<5{h-Vm3GlOgl=yz z+~;%dC1>2-cIQTi$G-fa-!lPFDs-QEI*aZKV%HYoewPDYN%kpUMk}5#a>F%9aQd>c%sSova-=Gt_ zU9_m*g+@Egn>igqe%!>*UjkKk@Z@71-jaYK+eoi}72C4u2G;^QyigSWVAwB?b-+jc66wI2LtE9y^E~qH zq^eT`DoSh3T=0|rvxEV->?YN*l89(JXGyi#tT{f zctHAeBgqMqz!+7 z3Y8F7JijjFvr-hsopbJ>MmHOXsC=qA9PQf@y4-Run;`dCAYC~AR3GTa8`8XeplvS{ z?CSmd#nR#BJ}s%bxvA7NHMt}Ec9u|Vw%q%Dl^_5B0+!@z zSoc|0t5vedBBsN!f7$0a$!3=-Z>6zxVXo^G%YxH&(Cu!$a=8K~OJl$98REas-yLDxXh=Q=(u!luFI;5-qBI^cwEdD2&M0UI(z)U0lKCHHEbL_f~QQI0j$5?XHzCZ zB#~fAftQ#$CvrH%rI9@II=R>!ncs_Q2&>gj5}C23UkDjUX}aOFYfO-^;}SJ%+7 z9VL)C@P*1-!vrNZ8>qpXFHa6ehUNQ@CLR|Ya_qOJnvL4$l(=H-S&wAQ4x|qts(CML zcBzZHc7Z;U_FD;|>wq*L3Z!mNR_1uj5Ag1n;ia?VeR)W27wG7paO`VaD~N zTvw>XdnQtL-A+)8V{(9WNy1g-XHCpBB1b}yP%b1fi19u36+iL|qn!S&Jc=l6m@`I0 zV<@LzH^82azbLvlM+9$kJH9-VIVkdV&V+*u7E#o8yyn{Q&~~x*V0@|(YkY6r7-ZOZ zEl{k``kTv*mkE_YA1w3>+RSVXQQrsLCCs3tLy+#bjY}XEmXZ>S{$Lrv^~GzX>%1zU z4a5ax?vssUax5No`*|X~ffH9Vc+G4$f=jMlx_swN7u5rhbWS_|-xh5MfC=0`wTQUA zt{vKj&2Jv#&g@IorKh>w+}D3p`f&}A7asiJWj?k8YuoW&b8NDg&L0+bYzrqf2hVD0 zg%6OF>_)ccE6y@!AFKi5oDi33TDwMCFjw16{Rszg+N=!UMDR(waHEa=_i^$%CX$K1 zyEyJV;|&Y2aM93P7DA=ovDon*CO|7dq>iBL{nVLkOFeC)Lho}{1=B2>4g7O~frbBg z^as%S|53X!$0hzx?Wr6km7?r>qZq7)xi*8}_d6b`LR`X4pTVT*R2KK6kSg3P&zo!w z1jv1;IUxGM^lI}721H8ifDSBO6;2Cu)QUi39-ECvYRJ$;RFaxj^cuy<`H%(FxO^M| zt9{_)L`J3eC3ti)u0@bH5{GC4Wq~}%D3o(x9?%W>p1{({=mBh~W>3KhQ=ol)aHS&xY-vN?6k;4z zUXoD7X}*L!tccxMA~&jKX?Qw=DH{%s^i6XTrDbH#u{XqmS7%=tD!p`WWknXe{-zHd zwVqiRe8JQw$#+0}F-9o1iJQ(n!Nx50bYGbBmIA+U4T4*^IKl@--j5m=AUv* zpE_4QJ$wZyp7ERK(b>8J)a#FDyRmGi#wzceo9SzxKv;J$vZgh<@~AZ1-AL1vGqdNHp}RX7=!qIw@o9a)q|*;hQQ)SlsX2RA-f!h zTk_kKds_b@5T$CF8m9iRag^JNa|*TKLLnOC>Wax>RFH}r>C@LvkAoe4F?!f&x_^`D zIDXxsfEE8=v#tZX-|VMg|)ydXjba7Z1JBK84~sP3sO@c z+1f_s8Z^W!L~?n}Rt&MZiX8l`UF}*#56T7W^=z2i_qB>Ftdw=Rw{hN#n0#F#B^b{W zU2|6L)GKp!;yIY=A{)#^TKev(>QyHJvUoVj7r|#Yi0)#_8k9cT9d$NYVSzAns81k6 zlZVr;C1|ES;^kuA>x`&joJOCP$JUc$@|SB@xqo}KS7I&hzba>atv_mZW>v7-XlEjx zp!Vm_oCN8YBJYsMjyy!SIa_29oZtv2{i%Uwyb@F&1n!(jlPD|>dQBP3jF@hu$ zxOA7|SX|cX1xrN_AS`e|AXX*JW99!=gpH$4P5O?m^qolrJX_}*qDs`=7z+v$jUEYA zpCAuW8`EITfg(P=GH@*iPS{Z?dc$6ulaS-kXnO&a|v~oOQP4;A$r}vtlW* zJ;oS4nv}Jszv_WzUCIwsww}HUdzHiaKK&_z@M%Xjx`F8gO8Ktk8fXN&S(VTXZHW`0 zV=xjOok!^aLbF$`g+JA+NQ+7OIoeYRM-?f*P@F_LkCn(D{oF-za5SJAePTag&QIWo z642#wnw9<-DIB>YHIk@s{a^ANG%C5QI6J-|7T`OO$&FT*Tfy=FM(&SKEo+MX*OEs4 zN%;i$D~Fg;H%x)DhcV;sn)3=GXpXOY>QuFL!GTk{`_bqN06m&_v=@ao<>dJ)ti3J$ z1a6_`o+?u0xaLhrA!qR*rTZLx?fDp_1e_53`(&Pm3?74&h3?H%7VS~Yew{+sYpL82 zn`znRvYqMaSn}0c(F9wdEw!A-Rx8xZ?JG~5jc?1%p(h0hMz39{>^4;FXPMF;XcZtL z?*ud95u^VVNy_#d`UqJe zzhXON`saoKSit#xP$Dv6V^D~9ckUhXu*UA%Xv)SESr*;i-5_$?Nw@uoa`zFN@!4B z&}IY5;>7GQ$W8J+qEfi=79%6WT3C%9F@-S|T!cEShj(bl8a$)*tc4+AT(;@%i9IDx zE8Nf3u<5gS+noaW@luJ<0{IZiXsN~cFz(&S4(cbouNMp7N!)*dh6;PEGlK(>_ zh%rhnKq&?(a=1-J-(xubGUcjVnnB;I*UR1I(adF$E5VuJPY2zH^}N zHwlBqwQpa1d0{Nq!1{THJf}YoH$|NoznCR*Nm!1BoIDMGcPPqn(b~QCWb-wk^R}Xo z4d!TIpS63JB9N=LHa2qX^7%v!kk?Mz=IIuwQE4sD<97ves^zU6_+KEqLt9h;f}Tqv zp;a_Waxf8JNpALg`u6yYj>5jbr1b&yYx12W1TFQlD+ z1&1O!rILesUS!4W?fXN5s=aR8EbWPKDfh9qUWi71NxE9at}$^jV8$XxvGa~^Y7 z(i5tlM1Vi_5Y_4X9#YI|jtS*SA8Nh^Z3DaD8N*P-+8?E6Z>iM#f99X^pYDEEhylMz z8LJL|d9kKyunmeiQD%~!v--JL%YrD)Y1bhfVaq9;G?NGywEen3hRpP@ibAX_vS(7F ztb7fo-o7<#jBc(V9i`Cys#i86Ho`}uz&Te4%ggxgX`N{fG@NJ+P>UfU4mBZoDuH2& z=mAsQ!2j6eJzM&03vKuz_{lgRl#UP+TB5%5RbHqBwY+B4NhBMGI)QoDh~+Dv&Ng$G z9HENFl&T;1RPbk#lk#P(&B_-uahdfdn@A zD8uQy(goEF0$*fIMuouX8;MGLVX(YjZwT_CN@|X6E_1m?7iJ z7$i;hd?Y~$$6>NY;`!5uKRV8(?j6^gp69Ti8BP6&F1LKQs!qr8Ue&wvB=MjhyMww0 z2#+TM_^~YiE?+UHd+dLnO0`Q?EDcu-mpuUQlG?tB=#NAFcfCNqfmD)ay}q;v96BOT z&?`jIIr0V*crNA4j!-%@^dwf6=Zwkc#ttS}O%dV1fC>nh|{Wlmbg`!YBfDS z)Q^Pws>kYf3If*C_o%8IkYmGwob#Nfn+uey2hy9~1Gw|D~Z* z{&+I(sjWggzd~$2lY2WL^!NWvZ~pnr>jfL<;Bz|X^7+6gpPts#8|cbrEzVSanxKT< zI)4ILp9-mNWaX(P*pYS&eQU?X~5|?dWojar6f+>c)^MC zZ&7rh11w%eiE8q-CJf<1TjC5Wl!s%Sz3)J-)EG+?Wpll7O?DjI)S8gf*HZ$8z_dT7 z=VrN=BTjX8N)T)D_^iW=va7;Y-MA?DofS*$Tgg*lIb%OtZv!ibz@o zLR3`yuiGkwkK@4($T;+?c4E{r09P?j#h~Xh87gSKO=bJ){kz0;6bodqDo7qV#$%|u zAsC!*?%&6ZaOnCm#o>m&@wry%MQS)ld;<2}oC=*A`f_=IYTwP}7)+9|Z##Hpk#o+d z`h~&7SexYl<}x?1<^tolC*d^+k)d|cNv7xUf_MpMijDZD1*gC`?r(*EWVFo+y~1>U z>o6thUl4gN7t}GQEjEaVDeI;ryC!UknLEbP~#P3hW(zT*TF7a;V-(r*>SyWe6-YZWvKB!PwT@J%fSUmH&6cAAsTQz7(R5JHO6!c`-U8*iap_B>4Un8}UcL0=A#S)X+#g^~uv;M=AG^ zG*~AEGlsEb5JD2QE7Xi^txh#oH&(*w+&kI*cuv~X$V~^=ykUBn2}nkGi!dX63~U;K zI}^tg!IjL2iH4Adz03Rj(^5a{%`@=siq8AE#7I;);b7pVa(c2HNr;blnajy%quW3S zuN>2{MUAMbHy@a72eiWe>SNjKBJq2;yal>y=-h0{!s>R%C=Kg9IaIE?saQT==eSOH zG{BehR>8wW^Yo;}2*h7tcp!BJMXFarH^lGcB4H77Nv^nC$%P$ z>=WweZVQcbGKw%i&X2T21mGP?Mej2x{xk|~bz)|Hl%6|Y_|tMyUY>1V33HqIqyH1c zjqR@{^kM3hE+LAO!o^0bI568GQi7%D&y7h%RwDA#w)yYjksJ~K5#6EHF4-AhH};i= zQk6mc*x-4LU-dGacZL!cKAEqKBDd0W#Y7|_$Jb)QFS)}&6Mjigq%+~wddEvbjHp4H ztS(*CA6R;#5CqBnPg@GAnlYkK;Dn1xO_WfB@$Gi2^b(&E2TdjX&#m+H0(D{Z2=`I3CbxYd(Iv^n*sbll|Gs%0oHh<}vG7c#&%}vyt@` zhID3bf`OF(wBQ%=XGxHXOb^OKKaOSX7U8IrOZIDXVz;@T_?tQb5xuA7FEKhlJe=4J zMtpVMl4t5!TflbTQMUY6W8zWP^T(u57-i@4dlu_h!%}8c-M>0E*NA+Z)xs&0Oqa!) zcaNjNpIbbs;fr?Y@lu3J=#dxUIYy4hZzu$883`=YRX$V%<-G5blw%6#GHxo(VFWoG zJa;#E+Oy(T73G3cDysU26p@^kW?`NkaClM`hP@}HUX4rj&Rs-}C`v>6)A0HQyiGFJ z6e2t$qtYEYKB#+OV@I51_Bi`vQDo`sV!TygP6P|5U#Ie|PaA`OT5)iTI)4)&@R5A> z?UiFyho0#6pbu|#sHv|%-e(tq*F#ud1)Ou7Jfc0Fog%$YcU0cZyb|f#N$8ZG@)vlf zQ+}GFv;2menb8eTfn)6N)?JdycHtDX`@^4o6nKTZ(u?QK(#B*|R5H+As*>AsAyd=! zL|Yx3y5F_)cgs|!po?F2;NxS<7Oe*qQn|`EZP-0;a7f5s4xRWhh_y$BiwRy#S6-?N zFRc)9+NSRfraKG-UjKjz(C;DV+e+j*>E=x+UA5Mm4@z;Dd#|tk1ws{64y@N1pWwMc zhh`Z~vFT%ium|aIVCm@M+Pjz?dhA4;#>=XjBiLFagG`agRoxDs-iAAInrJ6Gs}BKn zn0>5P2bfC+6#qPIsVO8~1H*vF$XxXW-3R!J<_CXuV65?PXyxL*ttguOB*@KNtI6*t zu&x2C900@fe)OqG!zx*8__7xJh2fNO)fT4wYyHS}=P`o7c~bzwB&jqzyWiRiVcCrPVTyt`5XOCUkS|P=owy}(ABONcZSA|* z9bHyT-K;=kmHp3E2iClD^Tf)ucQ+EZzX+hnI)P=~ZsjW9xT1LB0}m6(phk%5p6Qu8 zk~p#9E<;_BIsuL~V_M`rMN=1Sw+{Ng`mLtfA1;{hw`x> z81r&C9*Gn%hJBL{U?G%#VZc+6fKsea{+(6Ny6+IQT_NpPbJy=0^oj%XyU01(DAP93 zq_%qg^lFlswE>o=r2P~@M4E&)kAVrj!NqR*5(j5ux3n-DKgA~51lfNQf7csJL4pk) z`X0f%r}Y$}%bnp~GK~iwI;KSEJFsrLD;dlfje&K8t6y3EQ0q<4@ES|SjDY7l56hLb zyd49ln&(*&V}sRY&Pxrt*l}p}zUNeY)b+1Hm0oqVIuO>OG*ohLyWIJf{(67;=UnNF zj`;$6#<~T*`r>oLK7(*|qd-;+e}`5sF)^j8S!{Y%Qfg}>r?#LAv{ zg9Rg}#G1iCzAlP_O*_M4+7Qma)9gvE$Y_}CI?1z~pD@An7Xh1RUvwTjjrwKqjk)SfYm5^7UhqbO?ER(mwmh`l#K%-DO+s2zKI?tc3H zJy`hKT)FPt*Zn@{ywCfb1Mf1W&k5j`gnM4BEZgMiBu87u+Sd>r`*eLujcByn z;s3^}1WtupXiwhnn&9Uax!xKf{}Z!;A+iJqbWV(GT3N)!%%z^oyAN%sPrM?Ahh1;4 zFcQ{BUJD4w3Gl6vtTP8XMOLCjo2nmi#kKgT>Q{tzlK`gw3DCbzd{+BlM(afV+^#s% zqHjYvuU;`Pb$3?R?Yg@oKOZsOA*_@Dg+vEDq|SO+ZRU9E(_zO^&00giAB zy`GSqYhMr_wVfA0ay4IyaOz2hOFJQoWyZ|mr+Dz|J%j^za*t(YS;Y6irDVwu0ruEe zUSyZ8WDowI$Ar>L^B3&9XagIyV{g*LM9~VV|a35sKjsBH7UF{k5iPMgJBaR3$|+qTfT{}21x zr!8HvjiGuwmOE+bsJz?jMe=;a+_7(Sq>1MZ?@#h#r;lZQly?V=G&7=bHI5Yr$a4Jk z99!{vhP`)E{)IpV?08e-yD@0D(y-%BRPw?n9fE!-c^oY0gm`!rvdt}dRc<51H@PuB zY1ARwa_6--&pWW4Q5RbxQJN98aQQB)Z^Nre}ww9PWqM9ym-g^!twfZBjq&}n+Z z^?F#@-MLTDO^RXJ(fA-_wz;pQWf|0X`bRV*yvr-$MCb)iGI(#U!>A$ed~A1-WAfzr zz`oD5n{8p=+SJpQg94k2VU!7S0?pWhJ~QE(yy9et`9H5&v}h(@0oBSpfTwG}>HyiZ zSfVni2XmFFSB^Fss#41Tcw6ap-AaSKcIleWu77>m z!JcyVO^3pJ+qMo3h&(dpOU&c@c`Q&8x!^CVc3jr}i3{j~tgPOP5c^~^7~W-t^b~4d zilyk`LeY9oN4&yoX*(@etLhRh;bG17xA&jQsymv=-w$M%3RYw}sNu?@7bZ602SeQ6H*eHhA-xk^?rMVFgTDzQ&|Y;+;tsRp1foc z|9rz(Jw;CtdA9Hs*H-lOElCQom7V_;$VQ5iwDbPt^X z5nP_GWv+E7&Yb4@z9N_Kcl}QPNvnZqokWwn?#c7MK?tQj%WSpkL4;B8Iq<0Uwm@72 z&vqsHI~>yl#m{(hH)iHM5S$B_F@;tWKzDXydBZ4S9}mc%U^*^#_Z^XrGb498$!q_< zi>;=p=$C{BT`6Kd9};f7^FTXmADeDUNwc+Q1A!Bp7oIPJ6`(*Fr}0^IH#0tNBALO( zr5`!y4NgmS8MARsmXVRlvY`IV+w#r{Nk{>YgvE*v?{KX~&o@}t%(ngH(v6<#)<<-A zKOI=^(y**CXW`W)VXuAwXe$^Z873m|y!-aS`rg-Q1pMd3*8xg_A1})!|2!y70*$nD zF)9-~S)JMAi(fuwlo+-jwWMI66f8R_FDwmQJXBo%jZq%QF+QrL=gHdHK4x0ZcTzK~ zpS-#{mOSt#mtS5yB!BX{M=(y~qjhlS1%qE1HfYbowqUoU!G#=FXN$sLnaY@Z0JY+x zq8pS^cu%D=`6f_S7@7T`c?2o^o;Vs8FL2Q~6}qW)b-?*6f&SnYBQvz99N!715O;0@ zIRu>Z)km|{>BbJ*52JRO@WM%;AIf5**Dbml#`7mq&5d~JLU3tYc1<@ehu%%OJ4U)+ z?`o3dJY$0eDQ0yx0WQB$g2 z+OsN_S7ld^1{Y^hAGh4EB}86tle~L8E_yoUqLm?;s_pK0r8}bf$+}@t)+K*uA?7Pl zHEoSn<`z}FmYr^apbNPWq6{VZQ-WNGG|ITokpwFoYGIhSBr8-e^ON1;4K-^Nts`}u zMiX&|_N;0#e!#Z-CvqQ-s0A0m95NF6-duQ3RoZ{I*NL-nt$F~xICI!v9=IFK^Mt#! z1V`)llkN4?owOk?rgUjvestU(E>pImy6E>IH1gzI$**Um|40XpZlDL_A#vSwAix}_b+H{sGga74Td-H)6}Py2Xs9Ax4;iYM z;4F+}vsmI6;s?_SJx_E>>uo7jXlKb^&Xf>R(5*0c&!4e_6>06&sQ-;g{Y%Xfh<1Ll zRa2V3W;_&mDFm=&aTe#Q&1>cc+AUJiXbb9oh3OcUbuYy8gYzL);;uJTSA|Qd459t4 zzt13&=WE~LfZwRTR@0~PwG3lsI#Wr8SaxiSKU`RyW~%!s!U-DImhWi&x@##Mkm&oS zVnmfloD7dXN@dpiBS(nAE`L@1vCAr49n$7qVEA0xNxG?Qui$;W)5DU0J-d>_8JJmB zEgv~lr-tC~ZXNg33I$)QQ+af=taLBgM((2vh~FwiY;@OWV!p0FTRMy{R*af)YuKJ& zAnR9X3YlOOa;dgixsi^)1IaWRCNKxn#}KilUnIk>1z5lNS8*u3`Z(9vg`+2tG!zAj6F++ z%S^RSe$|K3PizrKkJ4oh)D~ zNE3Y4cTyh4fe1ePSWVqxvRODlVcPosa(Mg2zx^@&HimC4ReG1=>&qKdZJ;;HmVv2e zavl_}MKje}So>qEORnuouE!4I3^pEpTe_(z-0%6kBgj~&N!1eN($9kKEosB&|BDLw z2ZXudg^rcnnF-6$-o-i3>JMrDk>QTWr}rO9!c%GHM#vI9Nsf}uBn?Da)S`=gv@<;u z(sH4_CzAF(ck5K=V$Pht*@XWsD5U%r>8IqY{TQBTcHe``lri=CvLZ{w%XFb@#yO`J7Bx9fW=~XpCAe1Ba!A0|@-X;1K4HEhf5?DcK-d{}q?Q)mH zZ=!jVniY?5LWCmAn!n-6vpt*p71vHGO!sq4GKca7TyZj$*L)Dnf_c(*XoEh27-LCOVFmufB`Fx`l-h&bRZTW zW~-`Bty4~oi4z@v3Jtu^+sMWWInXPuelJ^{eRzYX_7Lf7OHp{UecURb^JVv|alwJ6 zVSen3E$_P;%`SuQp={j%O7@m7?oX?hopT0q6aZ zuSkZkeysc1z4?ecTjKz?+6~#_yiq&b^^CL63&20`(ARoRGY3L+PrYWyVG!q9Tt#M5 zO?(P9#A28w!H3C!gh?j!@oCdp`Uu39xaP{@v%CfjuweXHk^Q`jdmdLH3T3cm&}qM^ zFApo2yNWKm44wHZu>Dy+-%yY<0g+(4TphMZMa9~ERZB2O#4vYEm)fB0Qtj>=ju5Lc z`h7ih#o^u0NhxXQgc3($m5QWGj+RsxtDI@iHo0f!rGAm`D*W4LmOM-hQ}bs3WPZ-1 zE$W*7?kLY@xH;v_TXmo7m6I7fTcgd8azt#WWYer%2~UT z=|+vv&N_<2%GEC(6fj{v(ZS_9jFRXkm&li)OA{=~L*^Nti4YNVPdGEdhOTchno4 ze7<$B6Vq^8Rc>@gGf)9M9PppYpoXMoun01JAg#!i7|hddvkwXSSK^E$tnkOlsTCVT-c?RilA?sq&mkp=4lEvcN1fkmypSMz zb8=dpu@#}DonPY$Jz-y$#*-O%gF$+!1m{mgOSw6to;)!wB<5Vo!?idQP_Dv!{;9s8 zueA*%&-Sn-P9v!?f~EcuMoFZT`uuEAb~gp3fjsYlzurPcz?UF0GO|C9AnuhqR6aW| z!f?W@V3Uzc97X1qW$;}B+O@mODOhELa2UvyG@8iqtE<>uf!+1AuMhWp(Tfnio_jeC zz@v0TZT|kEPV9w84)X&_EDQ%gi>9zba_>tUCBn4L23JV?m4|uwFnLbEUyAlnDF11r z2(w4k1i87Iq9^!!JS)sRg5sse&0q?oMYd@jlMb-Ma@M;r=+-!QXt>D^g(l4?2N4glB)l0&ow77>2 z1QouP==XxM|CvQ8p}-=Fw%Gw3d*AbW6=6ojGa|_Jd<>doyQ7Ij!vV_lFD$%aX$xM- zOe#$VC_O=~zr6Ke%YN9-v>@Iw{cCfX$`PuN|6wD@V&L&YejUEA&!}J>Kw7sP)`Jhq z3}{xe#5LdZ+4yXwL>)A9&B-uv3?X3FEam=rCiNj1kl}IM$*5xf9&DU2qnSUkhFAcz z`WI|dHG!>pw*?VOpxH{6GwiQ8B@eFdq>ba+wb?rR&4R@>k7|pAoK9Sg56*)KMK09Y z$hWCPndC3flVTBMMpZZO1!SH+GS&W%#l{MlC}(FFypBH8u^FjU%A0NT@UKpFsm*R> z23X_@(vf}>K~(Q*Xtv%ZYL)ddGCJ3&etu5@14bgNUR~DBa!3U0j0+MAX4mz5kqH?} z_Kkslw(kCuYdyFyKsE0-x(`$N`mUvHCPsGMlp2cEhLW{wgd`f=nQzm zxP!z7L$o|4Xg$+o*D)l5MRV}1lYzCH>?xKqnM(t6faThuQf!!*b6}7M_ zJk0SVFHZ+ zcDG9lGnSXxWXpiQl1r^Zh4435nlc5J-Y{tl#mzLSG>@HOOQDI9#c!^V>D{jpMCLD@ zsE#w|r^zjpGBeae&1Olg{Y($@e@(u6kSyjG0UXbEX=t zi9iX@Xz-rf3i*B4Ea2e{aEWX*I9a*RkW=OO01t!6#i-u;4Y8;^hrmn5&#FSHJed(S zcoV{(6e7?ePAvpn_&Lf@EUwnvfs}ys0Y#RsF2-)J*~##w-Cr1IJ88Mm? zIJ@20N(mcJla_ZaWq0)@U`K)7RyKbxvnye+rb%q;N}x%$s1G#G=(J2p)XX| z(3?)CDv7;<$;Y@f&;qsLYHK|CVq3Y8Ei-MMN?2?#TIYl^=5M%oS~d}ryNqk1$g-6y z;n?*~=uBZWPHd2^7}{Rf%HHJikz(wVwsBh_tqq5#tk>GDgtk9_AJ0ht;viCgg%4_6 zQc_zC4h4`bk4&WTuJ3GQ0DIvyG|v&B8PBh4Xx3d8r)7+Vi?$lXIWq$V`iEkARRC0Me{E!*>>peC{hp1ALgH>${QBx9$~2D4*Gn=$Q4N+mo={Jt!g zW7d03pXmgr1#}nqXs)k1bs_ZsP&l4HR@?MbGd$yV+sFqzXu5Ebyj{1vWt{o*K{(B| z`0;(}VQyU|YD{#!szNLl%$=L~?nPt+QaOM zVT=79jxUHMM76fAhaCu5wVnY6Y*Yy^Gp#<5xxZOth3P?@EA2I9Z}#u-T&83sHaXVIwJemymbDN=oo znY6E{Jhs>;V>Sv0f*=;7=kwl`6+EefH^9;#4TW9;V&$>8l>`9?iR6gw*zDATV=~oWy--jzpow~Cv9m;+Z^fG9=+}CH)UW<`dZ~d5Wx>8RFs&{vfcd3|x4C-0V{zTOk14H| zy!o7lSs8#K@>@?Nk9U;n(2+)S=Vwtve|%>|LP(x?n$}q&yl$6ZTr0gW8_A={e?g?a zHSW#&%J_Db$Abe{Ph* zL_cncMrhA49eobyolAY^*LSlPalykDT>}3DrSWnAl+NCB9Ke0g71EuDF>f!yCcVM- z%~37&Xe1MAWQj@$VJ2t}Ffhoz8b|cn<{wxsa1T9YB!6C6GlTL&UszP_oUa$m2)_yZ zGMs*{ThhpxyMf(D4p$3vOOWUToRvu^X{oKnH8gwL@qc4MO}uz9hYP<90?IME(}yfJvRN zvyLmdK251z2k7jRD4&SNQn90CYSrQ&3tUM4*~z0A8@GejjK=kkc0Pcb0V&D~9C{&x zN9obnV7os}&%b}FnOL!H?bBtkjgFlyB`6twK3SBbHN~XM7C1~|*7GM*+7X!*A(g_+ z{46||&*_9lb-gYN^&*qMeqYwxhvE%!XNMD&oAo;!t>t|%lvp9=wHS|oq!=fztQ5=` zK26X5*y$tagiJ@U`(5JJTRJFnjTCV4Ys7Vn_wPfQ4^!C*Jb2jTm#LgqYJ%ayl{!m? zfi;!w`bz4;={Sbby5T5)ddIZOlU8jDf9={ID3_>qeJv~6bv1q6`h;WSvUdK>Cb4tz zjK1w{X<03@FYl!QnV^7(k|a(~GGU`W%X5W}u;K+|;_WP@igFgc8}J__1n!1tw0u`1 z289mrmV6jfjD`Yoj@?(^J?No&)mGQMDvB)S?BI>=)WzaH;cOvGpBpc&Rsq}>3VikL z_5G%fe(_(C!hrr#A%})}F)N;Kfkkj)N+!W_>l^ZBtjq^ISg=YW4>4A3-Jzc*xYhTeR(zA%Egn`8JbsBdDCR?| z**4Kvd-rrdP8DsdZevP?rJM z^?2rQ-Gxb`f78=ESLy!>57q7Zmq`RWnOzH1+{LOFLgh3lzPYMtFv(tP^Iu+k}R@C%?kXuOcn4`ab7 zwf6a*;XAH5E!fnZaW}f#!QdLM^9!UxEZc~lPSjAs6@;u3;?saSmd@+;y`OV6TV74? z@%%%BEJQ)l^1L`dB3SasZqIk;u_BAa;W(DZ)uKCUsZ#szcgN)byNy$_gjzh4z1=OI@8@)*pjNCs zT~WBbr7ocl#SIzuIp{l+uIS=w+4C~K3s1Z5H}Q!CFgBdv%eutv@;1TYsjdlvt7*e} z%nZ)7@A0kXW}M7pKd+_pG{khGgmOjR#8LR}B7XAF;O@Zn7Nxs~A~QbGx*hFHZ!dvt zviTfrcwYq6%(YgDP8_w~GF*=Y+i$eA{1LuhIWs~Svb_q??G*j1mSeGSEY%DY1XAX% zNJ@Y6D0BkMnVH#$zJ0cLwXo3qre<)QQNzk=z42$+~(}#rmNBQqUFP6#Wwb6 z4GzwgiuQ!**Tph}nOAe8H|WeJnj4FzgvqF7q1N?dbZBt^$Lv#Vea%mv>3sp!1Y3x$ ztH9W1lZ0*e>yHq3o#3T$?4nh+Gx4r5!!V#>Rrg=P$7Qq#$dm=U&rtML2%k(Yk>^}=!LiPB zDEHS~78m+lIOqE{xn{bp#BopApzw2Lie2|V26-O z;oR}nA2~xyYcn}O#E6%Hcr!7b>Tih=kgD-8os#iSz`MDL;=IQ`;n|NL&%O}GrSn@h z^lW@GlMcKim$vCJYx7q1cOY#avMv*0@7o~2xM^A#*G>*3%mCblQR!dADjkmobqD|* zwuK{H>9+abu&gj|T@Ye%zNK1~29c%8baJzX`uhuxJf)zn9CdyZ^U`m7M~!tWBJcwd zkhe1jcs}OP(h13gRF`$Vkn8k;b#$Z<{>1@nsyed~1G|T|1!bnKOneXUi%?(J-#!MJ ztb1gI#MSKyMU5tvXApM8;nI_iLwCf*faK+uB|Y)#kNPZHrWe;W?nhiT5*;Ur_8acL z*Pgaic1u)ZrQl@nEiLVRn~Qi_A4akwV04-v!cyq-uTJ1x#({kY8EI0Cf03rVDw_pY zM!#NEVJX7EGN}V|Wn66J7?!(Ix1fW-6{f%NzwZ7t1dIE^IaXz^msRIleeX75jk{bD zh~Q=)u6@W6PVHWH1h~{4a50b)M60HY8suUrl|A~{21~vVL@P(uA9`V+4#FC9iYTdz z=bEW5{d*hiC=exM_%dP~;^0tDKs!^KZgRIw6+JXHNZV5%HPp8$F z>fn)bh~Q;WGDaTYNPf6^?BILiYD?{Km~waSYDp?GMh}0-upF=2^dr&4oo;rLAa-ND zJ|P40XWZvl*BE|x-Kkq{(b!{?0pX6KN=7A09+S{Wyza}{e3w6go*(k;V+2!|W5{g=&qFh11D;9SpI5aHgm=)ke`S-%_L z$+oki&iTJIOD@l$vYZzK#99>)0kGSF3zh>hy=Pv^QdbIItoj~x$ zjA6NTIIZ`B#r4Kjb2s2&X21a>bGs*XTeEmY7OK*v+O)#*zL?T~nsm{7+OoLG5w0Qp zpJ#ou9B{pkYKC(VNT}HI5lBG3O-h(EN!|iFn&1-gj{ay;%_C|?dCJCJlF7r2yG_Q0 ztDg<$t2J|P3R6bYZDP+PG{qplI=6lA}z9shP$S>SpV6+WubnT zjH|gtuZunt$c!Wj>`@M1&Z@F8WETUdezA16{mzjxS!Q7rTj*YdvKD2UE`xki5)5}7 z=%lRMYmW$5#r^Abz7}@lOZ@zikIQ!p<9#GQFaZR$0?6>L0CO`*>qAN@_goK)%#LPN zR@dS08$dA?6exhuo<(?W1yU-Q!7TvWkzH8LYZw(0&KSwJox)!{Q&F*y?qO8YU&q&MNkgRiL5XpkrFBa1V&=VLjchIH(9T;hZbC#Tsm=Tn{b^P z;+ojr%MvhA5CFxj!%7XwtderoV*w@L18Q3mDI3LQS9am*a8{|^)SOryECNm@E4!iR z3-Oq+GzFc`7); zf}T+>KRO6yPDJSZK2Wa(`YM0?=|OLX3MBI&k~wa2p{>88nSsexo^qv?;$PP-DKgv) zmzf612R+Ovr$)-^kzvhd#xZEzs-hL8OgXO3Xfv5ZiN49TDC-(QgyC@I{llj@{EPEV ziSSYR*XkZOR@!F3NGWSv{>Cd{Aj6^mY4r3Gx{I8%e$6a9^cPOU*>2waR_23@KJCse z4I65>40n#qlL^gc%=$nxPW}au);86N&`Nd>VM#`rMrd}aSmoJkYvZMoYP)%eV>LE$$MpGZR~}K$lZ=;bg^kfgsGcbLOwh=BzwqfbL(@BQ_N6*5ZqsIz*<=q zD@w4d)amHsYx7i%(4Rj+q-11pKZ|0Z6w;hpwkC*kOQ|P2QkKmM75c|b??B)aVM>r| z;1WktdU{sMx}R%xXtMDOjXL*6A#gq_=-09;+)yt}{k2wD-#0x(O&hsBjFgv`ci~Fb zS~=O0N<=7v>!Q>p@}12LjI_*Is!dc-aPZhHrQ2QgL4E~aDqg5p{L9T>8zhwzBIREF zYBJskKbHiLR(;2>6DwwpMOM(H6r-2BmjA^Q-!x@@x+-8{ln5}A+y1KRO0r^!|AS_S zn(^O)q?mcf>)(tuxI}g*K`;O2o#I`EKy8#if7567E~iSd$iy%4i&Vncc|+; zmUg4!e=NBcH{u84U?i~6Q=7)!g?)9Yey?nci@eZu;yQ`WJHD+}qor0>rozA|`4gX2 z*)^)nJg+2U2b6<6&wKrd2S+5BC$}-Naq?nQ?*J(5e8oK6#7(`01yqQzYVw64!v3R6 z{7ZBHe11u#3gmhWp-azQ3PKaj^)9#u>X%4YTg`t^o8)+k1!gsqd!>^9N+ z?)Z8l@+IK~+o`$M2j|^!_|LSZY}Q@7F>CqGx2<3deSDt90i1ZA#of+8Rw<0X*7z<> zP1=Df-nIYX&n{y9yeaI&Am+hgPd^tXu!|@Kk$27_L6sp!x@K zPCRVc1k^83(9zT}=!FvoHwh=+=Ew@y(#Q`KHs$$1Dbh^L{M;in`^BJ3i-GK5I!9jz z^sfmMlHHkd^3(l(!g5%2oOgl&&6)aX@yjz3`>`TSdyu--7h;1mvuj@pG#eDKoqBrg zhCxp0sje3{N+#)NCmuB;6!|#U*b!Uz!gM_A3*8YSb@h;~xZpkOYXK4c3Az`I!3d^J zx6w8Qya#t~EUu;d=L=!7#EyNNlUc%ZxFS!PKlD}aiW^j^Q5%&;-isdYAd!H3n*RB9 zTeiWRl7Rcp{H7fy%64R8g&lX;qwMvB_I-XcaIyIEAI(;n@vEJ0I^?Py7MGjwLp5sM zMXcY1Cj{Fikr#fR^FRjKeUv5K$$Kn6<F0!JEtR-!nqOD<4mM%PkA1E>O)%j2_k!U7=JdYO0njGaV$DCV z4Cy|RB)!4PH>Sp?5es(_V7`uLEs!JBmuFr-qjy6_cRZ=mA4n0)8M${ZW^M|R_^}BM z=BZuafA*hPrzpw3#=!cXi3;d~_PxIK1}PcHstSnXRLq`NWhu6Spf&LtR_nii$F3bvW^aIkF{Ew5}9Cq#;Au%a^P5Lr2qZ#=G^LMX=}>+d!(YC zulva3cnTD8ZD1kqWvOA%*(Xf*)D_F@Ka<0*b){K4v;HtNt&ukuc_&!9eD`W1rNJqF zqdf)8NO8J>*p&>i;g=Pr$-^IrSzkue{3IrMN57KFP#pCXf#;wjYQw<*SKd0& z&%`BTzw!aD55f|gOps@8=s*?nKhI<&#xGMJ+qYR;5g6JBM3}q&l)*`aLVE7i3RupI5xe1og7}%*5qUSi-F| zS+?Z?a|Mdux&Xm_>voNxNXnSxR}J42755 z5RA$#`|vsUe_OcJi&c8wmBP_l#ZPZ=Gd6GeM?sVurjX2-ntCX&L zzhwyxn3BgyAfphTwS8gh`f ze?Ic`*UUYYVD>iVRS#)9HH%l6k$Di&0RG>Nx?20`2N`X`Pd*uND%$AvN!gIulP}wq zcwl3pIG1CTx6hA_qDr@y*cIChMJ>?eC2~0=u{knh^vdD_wkcNWoykB_vq%NdMx+OG zG=;LmXWH2wRBEtS&ak_Q+;78i`q*7>J!CSWFQ2^Lc4-Zpt~LDvYWcd+KVo0i8I9AY z4W{lI^CFlWGJdX&Hq~Yc#`{R6##~hO(R!ky{IFq+m0yndm2m?bjN~ZnsB&gLmH??U z?l+GV4z-^m0I?}I?UU^MVS*9^rZ^Hhu|l8bHtP$aD%0suUlL*K=J*x3C<3c|rTLp4 zZLb^Gb^uD(oB}v|4viN}e|D%yWlYh{NqRQiaydEVD8jwJ8Tt2ASFlkeQ&H8_5RhLh zs;XUEC}+d~x`^4DNcJ~f1QJDc%yA_e>Ws!jyBCH-Yj&|}0?&Rfq+!uc< zAe9QM-X-TQU`1(!PF#z5ZY&nZn>Ei{l%-r^a6R1~$(eAlfcBK9PIpF{V2a37A;OC( z5lPHKSJT!t??&BTN5V}X!yZ*mJbOjRKY9=v_bkFm`~EPgjpjZnRIzQ=x+Z|&oJUIj zEo|Z-8BJ-vSxLadD^6XB?}GFMt0Y#lC4^r;#K_ca!Lpb1duRSRj``FC3rY-1j>Z6p zk>rbM*^$a^YPLX^>$}}FP`CxcbJ17ZHNm?9<#xtCKU(3K@`{1=rLy{SP+U?+jCE(U zsqE92Q}`=lLelh)BO_k)$)vuB3ZlM}Ehl0KGHsdq{^3o6wM|a8p327%9);)?398uS z2>7(OSJPQKl$8LrkWS&IJnJ>60M6f?JCf9Py)^+Bb*?2O)KKY5)qFNI zWI_LN!+NQ&UUlS1;n)5u+Don048u_2-N9CY98=(=*o?3eX#5zP1pUWubejI*=c=kU zECMJoTOx}2>PwtPisr!sG2c&-cNZ-g>r+23+5{tCD%IXCv0u5V7*@dQH%xvq0%p;p zsUtT_w@LRQN8H!30~(5DE>Y(i-NghQ@Ey;#ZHhfJ99hEDM8oUxcPS$@ zs%hFN51!C)%Gaj9!gK80o=j=>!f#nE*LWzoA|)}gqvE3g-*VddeyRg+ezwO|1`zh(6>}FSwW7nXb++rP7nWF5%g}`01Iw+)Rl@44Vku1xDHADF19JCKgGOt z`sx-cvc|_h*HYlm1!IBgnrvX#@r}7E8%;_{nz)bqn)D6PSf4-1GPF(Y!K9`Ma@Cu3 z9fQ*8$f4%8xTPB@IPo|geFRH`%O}jz3~ufU)t_(8;Lo%zCKgwY&V1gU%Z&WwD@;6A zMY*%z!;qQUF1PhKvzm3~cTuv4qp1Op?xc`WKpuY3WK7kqTjd1i)xkhe7|@$xymGa) zWNyq~a5(e`N4)vsSYd-qrq)Yd(Rpi&kX zAazWm=g(m8l)Dq&t7|8`bijJV^-@7P!Gheb@wVh%8uF1v{Hkw@uay$%;ihXPVz$x% zroE`Ds-oUu*OPj(m=J6XCyFKEr1z*`XHa-nvN_T98YuL&vjZ-g5lR)Y8DW?Cu;Lez zA0KDejm?T6FD`qOB9Hy%i!4j`QFwiUw0?|RI?qJ!wM5HTYvJy8pnj~XtNFO<NRceiBc&|`Y?g)nqeegJOR;PsdyRh*0>W4uxajGNEr$?{7GD+pN7|UH zxEbj{pqW5xtNDb8Qa4J+Z_&nOo;f^3^^=bF_@n&CzoMSw4C`lUT~iISYD^ZF9_>=% ze7gT39RKpM4DYJ7xkdP+jjw)r&aH6wB!qfJzKG7dzYhi*#pL;us4bkbW7B()%w;^x zf!t_lRF1z4Gjzqmk<$sJo$r2?1OIH1O5_`&8FRw}fE|8w}ZRGMcO{6fJ=4 zgL|&phD^VZUs`(D$9*jj^{1E}%b{G`B0%but=)9JInYd2)0i9jwLYl)pzu4RP>`7q zJF!Q0$ZNODf4wrTew6}zYADrklTcfu0}a0GtGSL zGN6QI9wGU7)R^``I+j)u!bC8Z;@RE3?H(Sd|7=g!V zrAFgjtIC4!hgJE<&mKwDM&ssL$KqOyL}4ls$SQl)IrqE(4#0><9=J2 z;b_s*;dR;myFL`!+56q4_TA?CNvf|Fh0ZozjC|D$3O@U-B(HFW&Jh>J&-prIm%O^_ z$i&I(i-pxz>!fb5E4eYGJlzT5dg3mA9`HTk5^4yLQINTW-Sc?tNv*L!Ixo`1n^OCj55#Xx*OXU5)0tU2YJ1 zE!s)@`NY?A&iUujWev3`iIF+&|*Z<)n|v;hae9a@+U*hTIpq@#V|Nvdf^kstm!3^oMyK z;IYx!QKVo!SCi2?)%0ZXYBHp-?$VIb?c1a#2<`L~Nt6372H(rLj??S61!K%g|ZM|?B za=WD3I`ri7;bDVua#$mNxwV z33m*L^IBZvbE{P(zJ}5$WxVQJp|I9cmi@rKO}1xe_XdvMuyyMsNs{<8pu}cpfZ!PF=0G6_!3L^GKTs%Ic^Z8Hx%Kwjo4yjPrwZq4zrTQU=p@CYxwoB_ zYAopX@82KE0T8giYbpU+t#+_00L<>5rLL{Fo*iJ6H}}_WOgDKJPTegdL5#8dUlqos=V7N zVAr1A&B(6Wz)Kn){^1FZonPR8{pvsAzd!sG-#dDSdf<=f9E@ej>gV76?0fjrM_%NS zqi48vM~B&|aVEzyzWLNie&wg{<*%MQ#q*~xacIvr(nPPhM*3yVkL{bGwwB+0_-TIP zuDxVwJj#k72*S-omSxfO%9x|6;7Hmsn%*g&46ueg* zBc{dDERQZxan?rrno-A+n{ zLr^#A@j7roaAEy$o6rG<{v==c z%!hf;?bH0tkykl$d6_IRoLlH}dTyB~j-BV<{NZ1-+%Ncr4;>;khHk&&J-1KuPY>_s zp}&2JSLc@a_~AR)I-XP2!S_b#l{KGz@NRCOp5(=2=P4_Hct=4H1VIo4;hn>V9O3=e zGpCqa>hY-`Kfs-PwgJtk@8|yDuh`N`F-G(I4?oTKj=ajrON%Hp|Mk-!;K951^2h)0 z1qrrk82!bF8!aIr$DR_VOy?1cWt=k(%g#n+s{{VB#eRfWb@!;LJ@XCcnirO*O zO8D^uv;5ROw*v6b9yr9|12fz)GeM`F@`cZRln3v=g{kqJPv3u#2i~=tnaMW4_Q}I^ zS{a>o#;<+yFaXmNt>zdXIz(-o<=!&DD+q!h2!im=WUdeg(%T;B*zv>h1Tl5a-f z2x~1m;Lh2?gI$Xy~YwJ0F=;g!J{yr)=#^{zBksf|&Z9Ui8+ecH5 z4Jmj9K@fy@7RH$9{ad$8^afv)C1qI#Z{SIiM69F~u9eeng)O_3Qe=q^d&mOIy^6Z7 z!#C=(3?3h)uvLYvs<2v83LWqg9(vf0db7TYaLzG4-obPxg9fik>#(QSaI=sn^uPh3+g)WipdD3(RTUS!Wm#eaqv=X1%Bl*!a6Npm2;pej zVRSuTAFHG60TGj>8Oe3#p$t4Y3`a(*D&nWC6k6+%g7U3I8%Wa;-q#VoWMIVgG#aZc zb?Kij&@&xv!cd3f>l6>D*5oH85NmP`-?LD+1(Gs3jL;gF|S zhf9qK-cd^q){(za>7$lSyj@{k-zwgWB@v^D)z3z#yU|OCt}K0cVpSw?0We-;tE zf*=UOb#wCMNs4~od*e|`QS^IQTX}C{N@*6BmRam}(H^nraHPi2O2fA-i=uRXG1&+; z!>zk^HbUjKVsK!Cb?Vefdi`Ed%=CK&Rb6|%OY6F3$IN!N?bwE`*NR1@peQZfl`7=6 zMVcC>Cda)20ThbbTF#w0HwdudD=18FpCnHctWWTwST1Y&wcq1b8^iHqCzzj`_tt@P zmR7sX)YeI_AO?lCHQkl2C+*5MV`Djb5C~*#DqOxi7xW6Y)-f?TMQf~$v%VuZk|ZO` zaQ>jxdI&3TEDvYafzW!`$vi2l- zXBuaH7HtS;o;9U*hQVN4y@d)>=9fMwD-1d~5>e z)(S0?BwW69i66c6cWATr0m(T>Y7(Y8C2wB>&_;9Qxo23Izf9seM{O-L zGc!y~O#16lYr0GGtSnqW>9zaYx}>vhhFkBs&l{*jDMi&UICJa-ggk0-bT7P$t4eQ> z4uxgKj8Ul+g{Pi@mT_dtdaud4F4?~GHg?@+0^ZRIWed{c5!ZpYyUKL)0W{pIA_VTj4VrWo)Ldz40)c@ZnuMiH!+4R_ebp;3f?SB!-98E2US^k zuZNNKs5P!?VaqZ9(vvzRZ?#C11RI!9QPz>?c~tPab{kiv-gJe-nKqS5@LhEd$hD0K zUPHF}d*C01R@RWXl#t+EPhgDLk_M#|X_k?*`HsE~nrBU~eBkR3TToot3}WPY~h!Wf(iwb@|sZ zUxcn1Ip^2?fzGsLmf$URk>%)=D&%;%;GJPMMkRqO{$Ka@0!3i2=6F4Wf?gZEYPpwW z@N;u%pir0)xN#Yo3c7U5L; zN%e~uEYV9jBDlv`vxJZ(9zso1huMl;d9?)pVgNZBmh^P1nMEyk%G2?$)!@s~AvOBKNAL8_I4{)*Zhr8b zzuOIKbC>`a$7yEQ@Kj+TvAya-$L)Z@yU%S`7#8cfb5WRU?`}9c7M@#WSS*v=e;hjA zF1o37R&D@Rc5^Mb*IO?-t6akHN#fXQG;x0|+V&rZ{DKJe2n<~8j;LO4B`*9Coma%f z=tu7iY>a<7YA@!gA>MJJ@CI7C7|-D9&lUdK4 zR>$hH>EDY0f_uC^8Lo!RJob7}eDrb>it;2#yXxo_2o`*0_hC>b5A&;r9PX+l^0G~_ zJyBm^#SGJGMg@H3WmWttxE>UoR#*@YNr;xig}6B=&Ljce+x zU3kCn#3L&=%-<-&e9a-R(fCJq!Mo+g!kEd?e<2QBX2q(Zs3)K9zf?SFUr2nbPLoRn z@zm2`7Qg}8$R@!cTHaphdNeUqFC!?tQB-=}U(-YV;S((aUr}3fGCSfP@%58%=0-)0 z;$4YP1xJ+5D%P!qow0$bB{$|92Hwc`e4RmYVNooHu3Jw&QRUIq(yDpSCR^4pwa?9S zMqM5wd!&EtL4PT9v12QY6i$RcX>Cv=M1T)Rz9NYPPuZb-M0!+R;;OwJPlK z_sLWO;YS{Ef&tfN+BW)l2`n$SNvE8Rm|*)4)Rjx%#hn$;QDbBiMvai8sCm;c}eYM}_4fs@Zc5%pMqB-cC0b`jp@$UfmQek;mGPc>ek#iy zJgRs1wePOo@ybrn;p$4&D!c2KV(>WB*j1%VW`j5}W7nI+iOkWc@3$GFi2r3_WyObhgL?;$=nI48?BzNn<6BsyoRmi|ljRQ)7* zwt&@Vc`SXSO5NlE>n0tv5@B(8vZ=W_{IqYDjM+AZXy3d=*DD$?x%SD*Hww4izFv=u zgYSf*SHT7S33GgNqHndf(M#(7v0z)Lk)pC4^!|f+)iZ<8&Dh#wcn4nT%m_a~8`mOW zrr2{R69?{AsRbbR)oYyzd?0-v8Bkm~a{(ZDarXhe>$4-MeBAjW+D$ZDHiD<#A(Cjn ziRKIn?}gr30P7+xaR2P#xpKq|V(?HR9u;Rfy2{dIYiGxDO!~fwPI=}SjtL@nj-IX8 zK9%O!Ck31*Z5ukTmPch&hG-KjEuO@!rGzorYTRg|hIRX8TsB-suC5W8GOO}V) z#rvHWtNO3IPJIl>B5w0SE4e8p_7CH>45mH~G`_Ljr0Wv%l>Q{7vfKIIO?};Vda2js<4r@e0nwc^A{)V+x3j#crPnZg-7VhzhS~wsv%h zrB^XxSJ#A(dZ2gadZC~6{ux(4ErGG2x3I=YP&^Uz)-sk^?QlK(G$?U&qzY+!K@k)X zwg7s2u9rq#CYv_YNt+(j70nEK%?1O(M?@5DY;Eh`H(XpohKQ$KM`5KJ)amVOgLI>! zqUcddrZfW7XRn0St4sGt&&ac8+!B(KP}OYZ}?&}wJc6P?aomSbVeyrBk}_7SzSJwj0A-$-QcU=8;0pPKDV(~ff8kQU8#B?W#Oe3+nol0Y3<+e&YX zOo#L9orM`6z2Z2bUH?UtU-3pdCe`O~KKQk`xDorYNlsHrOXZ_;Fv6pgC$gJOTR64x z$QgyM;}?S5Ly$h6%hjR^oYuNg6Dh(1x%=n46cl%N3lO>c-17sCC*)31D=K8tNE$ea z)Rn6n+HA1eb%SVTlUWp-L~-pSCZ?rJf$8hYwqIqP+X_>@@hkdFrm(^;-*67#(;*#s zqBV1&gR?~mjDHQ}iMzw|_KV+SW-j|4HD`GGw6F24bi|iP&-20je2a&hNR8Fi*S2CZ z9{99RYr6f8tZaSN8oj4SPbObaQCZ*b?(Q}To|@x^Jq_L7>BjEVQ?(Rg7d*VZr>Cnh zG~ZKNcK1Nw3o7F_=XHEacXykAbX|T}x~D_G>8;(%udJ+WbH}bjd4;sReBoJu`PeNPt6weA`1F z2WHZn#i?J=$-%R6jAnBVroE;CM!gf5sb~H1rtsW2JH`a{3Cwry1d$nqFv!3ZAFICM zhNh3YE3t;Q_J5bcId+)OiVzG5!(y@BTL(iUO7=d(9>@~%Z&eft7bVU;9s`!#n{YY{ zi!ILiT*7s1TFHc;^G_K#`(WIHQdID?;4N27*qk}YO97&jzi3}TIn^UJm&uBo~YpCM`Y50filc6~~TE5m+r!;9p^&;p%UcE819?)AF9F00HKtT7;2<%6CJW!}L6zSp~igH5A)jEF}2Y2Tfpj%Q^{O&*^N^zxeG0=U2S=-v3Y^G;9FfX~= z;^-iTn*_|)De#&vPGeSJ8z~q1fhpZ> z46!x5MZWaAj>Hc6@#BZh@OjAU>Z%Q~$&q;7^>OW>kp?D1E1V4`^#szL$N<@6VshVf zNsDGkvK-DpAmJ6<{Sf$-)Rp2}F4Z+PmJ(?lFl`|Z?igVtpz@awrkjlXTrJ* zOq!>NcTTpdpNo>z3K|iCgVII+m2CVM;pymER{=deK5E18eS@rj^=_<>vz!V$aY>Ul zq9^n$jz-f(J*Ef54}Yue63PlO5`e2SfQ8v07b56hGJsh%X$>Oi7;rTIcgX$b>Z-=? zQupS^56Pk`_)III=$@W#*V(BlfdQe!p7oyt0|O6cfkK0<%1=_`(OotiHGdo4mdgs+ z54?Tb2e9!<#J`EYqosuymusT?V9TjvLuo}|-1C?peq&^BuZCqt(cjA}vCznf^dEJ)nB=8}%z=hS}PbMZ^m zi|GDJ-FQ?=@TuEhPaT_W+-#MOKohGnS4bs|+d-y&&w8X(($dmYooWW98!g0?o$)1X zmd!w6=eikm`h;ck``yy*(_jF&l@S9tIZf!aq7xIlyMFRe+$p5HyRiv-OBe%9BJ=G8 zwN=^pSe8OvFT7e*?Q?D+_>GKv1k50Mgeh|0SI@{oUq;33WZ1slYosCrn8XTk`VzG? zGjnkO5i4JAdGz?S>X4MUYT}WmR&-&%DK=*>3N5jwF}G$Z;(4v;mAvh>BS98Yb~DFx z7%Rkz4RTrREWy-nZEmjB+rZ83EYkX#ThNkHgO>Cu)vyTk9X)Oc2gB4DeNA<>2X5Lo z$~n~(E2ya@s@Yu0NiW&WywrE&@l*!4^>&f8AiPolz{--f#xsvp5!UFzrObLQa;4N? zT{%(I6Sg)WtK&3!c&zl+Sc_<(Ozbl*h=FK}}#NLy06@mF8dM++HF6qjAYNP-J zF0Qgw(wJoPH;{Aos6Essi@srn#~GZ1d7r_&3l;Y{YQ4rB3~Oo8A*Efte7_aoAN{SRVKL}eKdKu*>o1`PORBH?=9Wf6Uv)-32s64U4An> zKGsDGsBEGre0XJLWp;LUk*jj|yM&l`1YNr{n(mSA|EN;KhkDkt_j{dh^UIoLFY(cM zE6gNFEZi3L{Cw=zH1G;AD)563{OHj(hV|o19(A&EwSa;Tt|T&N!G!=DGY5mj zCfUR9uV=sEh8Fo%*V4PEz0O}T|7aynVi5~` zVLs~xuN9Mc$eXgUW*OwxkR&4iTxUQ$aKO2I{BRD@%YzAtbt_I8m@&Y!xG>{1^lsOw znu+WYef+-_s@^P~OQw_uTEdEyMLjjzR1^K5GIpD6Eo6BPpZ{0|m>l5%wYVs|^=sQX zEyTnJjse%>1I;g`cA0Yqf7{?DiG9*of_~7cL|fF12)?eivcs3vtByQ(^3s@;UiRX6 zY7_h%9;6fbG=KgH!J>oGkkT!dCGHemAferzo_#x#&eLbTv_El6s*|O-@1cfS*R*D|o9y)$^jFR5k8Te*2AkLl!kLg>o$q~n}^ z8L4H%+RcjH^N%~<6zjdJ;MfVFXjb~40W0zaSOmF+7%8IZ%)QClXJux*m(Dq=+Pe4`+OiV9vmo}Sf-7PF4)Tq{6*m^YI}f~gGo!6O$isz1=Qjh73^Ko>7&r5zaqmo z-&sBY4>M{ur}}Y1o`xlv@^Ss2`%Ggr-GJu|2gI0BZ~15bEevk5jSpoC1Ib6DFxt>fzy`j#G_I7Vyc;%-xUUj%%3$oUAzT7Um_X!0?}^9xwtf4oGrEuz+QE z<@{K9TOpzY@QWg%uZ(i?Pk=(hc@&Y=4GljkA`T9on5F1ezZSi$kZgn}udh#}@*XZL zs9aaQf-lPK$_08wZ4Nzz&-1@WMn+7J7lkgdLVq-5sWo;@_)7=nGB*?^sri2H9#BE9 zizl1XfF|V6q#;H}M;Ek7x1>&f6yu6Bbv4Fn1cu*vap(6hG!%NL8(LgaGLSB!c9dHX zv~B9z0j+$~vR{8Q?M?MpXIZ$b)>&E*PX&fgt)b)n>&vF9C~D?qLeLga4)6cndY!Wn zf}5nE_lr(p4K}>J-#E2*4^Aa}u5~LeEEl)DlYji=BXkw9n-FiYR1+B9Il}~!QY*1* z3;~K5odz5fo5|)VmJT}O2Z9vzi<`$SF@6~YhXeM~jnG57P<$Y9;`;^TXW|=l8;@D8 z8-hZwn54cXe4cIfZnS!-l53!QTGxQBN|^8g4^&Ob7jM^XoK?Xu>&CsjG?%38`K#s+ zu$W&$y@Ldt{JEi9!?xNX&pWYWt{RWByk9FTkvDX&s|Xo|Z60?*1n7oU*2#s#H{-T01X})# z4Yabt^LtKek=`%+U-p)}NqVKhAaG4=*8uDZ_0xcUJ|ocl|9YLKL^V>EfV%iE1nSUj44dbc z1xL_n5JUOLh{T5W%&e?DMjmnLS~cL?Tr-sn!DpDMbG1Ew!$a zcYTy$Aqw4@7=pu0J2deJ5FJ4hyK{RF*4Lj8mYbxZsDVlBKF2@HUB!o?6uM>1iR(<# zoR`2eU_m{ihxU)|?w{&UmzI~8_xG(F2P($K#|xi&dX`y;^__o}oSa-&r_^1;-d*3d z4n+KM8SEnYz7A^b&^!`_auqyA_WaI|Og~RS=Kz(VWb_30*sWt07M86DM{~hFpzHJ? zlWKkZQaa!YXRN*zM#zB=m>EZ)QPLwyS@VW?d3q+b+P&KWhYLLE3HpQ@$(BDN0U7@q zYRUhC-2F4;`E#W#GvJ?QGhm<V1j`XV=6~SkeV# zI^(+&E$a^}0pKUu_9t{I5T@<0vy?OC7LTh)Q zRPxi$v>kdmmf-LkGOj&rf1q@-Wh^cuBLj|0Yu&jLi-1|l&>fLgTka+yZVb_Epo28k ziBbS4_B*I~%FK**Lc+Ia=qZ5dc;%?Uyi;*yw)y#Y=za<&SnSkXdw0V2DlogIJy;N# zE&(wAd|zl&K*aOAv|7}uCLLqn8;7qC;`CW3~vwu8tny^|v!4^v7g5BCwQs+|*|V_^&8R6XEUc)gNS1Bn8<56L`eR$; z2@bW)>4^RWH^&}mVDrUy4(7L2v#hFqrc1lb0$orb1+2^pV(vZiV`!97(FB&&A%?yI z5b}aQ!Iwq4Yky6Q`@A?5EB5ltGv9J2@%iIX_8XQNv1EYDf9+y(AwCOj`(P{s)jX+?l*%h9 zU1yhK`^W0J`%0%9^m}%#nGLQE27d&6<6S|8J6ofet3KwrSA%pPi`;eu?8V>Z$IJjG z*GLc88|>D($fHZ(Pwo#>w3fHuu>E1OPZGj@9-u8EUuV7gg=P_R-z^-dXvSq+(%qJ_ z`Xf@AcwYt2Ao-RS+Q4S*B*b?OX~<6SyuCS4D2Y9(DS6SbIsG}}Mt?0SHmPTQochF? zhc~c!hVxjkZXBb}_gqf?agffCmg@=KaDs!EZkF^+JMZNvf&;~AJ=Gye@rK0KD-{Zw z(e*n|>-J^)BlgkzEbN*@slbih_qTuVcU);COI-yxW7N&#bCpO@8(ii5^#{g{th15u zIT2C_o!d;`pm{sA6-{tBjAc43n}+1@&9pTVJ*9kj3M1g{~EWpMX&QHh1#Q`BhGqp1O z1<&K~;)}6$f^xmLoX*oy(E2?SeJxs!C(}y>BL9`A-5STKxb0HP5BYg3vxnB-S2nZo+}Cy0TwjV1cem z-hNPmcNP|F{?IVCU}$K_Rr6hEh5bbUa3!D!=ikKm-n*G1Srf)T5Ucbj*Tzh_l+e8{rY>*WoOk=fw0zRV9^3=`nz&$y$cFM52ScF|AVo4mx#f`9+1T3+BF(D<;)R$WA1c3Kkae8_!}jRY^0E-; zF#oTeT>Q z8>Uj_E*8`An&W7ox%q*~0O`A4q|2K?*)0EN?^!r%dWsjRb0Hd^-)bcGY48@e$t5It zyA3~et_(Q?o+GC3JSOjbcf2S$-~VmEy?0Vp;_Iwtyk#LKZohmh-(}RQP_j5bF7>IK zw5Cp7i+D)c-kq4s3S5CtAXt@tN1cXqbAhHVqg7-G)b3HkwWG-Byr75TYExT}JF%M3 zS9}*l2jv`Rz>c}R1rj{(aTn{G1(0fGZ-{I%` z&ig9xVuv;1Nbl-Zy-31mij1De__lg`r}0{MVAPPhXscC^vb1h)LzV@=S$Lv$TuXB; zSXB4@S9fw;7q&JDA&64IHAKEH8ZI?jwvLkxP~(u4v&*GwYMX2Xyx=46f10hUl~=#> z;c+Wq?L>9g&}A35ek}E7Q&)Ksks|c*u)wUH-dpu*5%Hee zOViI;Nr;n(ebbAp*geqqx~eE$;)q!Svt7d4Tv=*~_EOG;)UiX3ts-9qE*7g&&t{5W zr+*y%lMi;v6`w@LsZ+BjC3(xfz$?t}y>6=;DuJUEk^0N2`*CIiod!pd*Qf^XsC|^j zotQAh<fB0*b)uOZGMq?Qv5Sp6|)WRSqeE7 zqtAllspk#3J@5$M>K*7t{Zc4|Di`h~vuF46H6UKm?@sCE)Bk=4M z#rG*n!g#k4NJ)uP%>PjQio5hDNfn0AgKG)9Lygoe6(Fsh1O88U#k_q3NNYn4L-rSs aY4GKT87*(h|NK=Dq_1;RyI9jc?0*56mY+%h literal 8592 zcmch7XH=6-v~CmyM2Zwa0Ra&Km7*xUSpw2~4bppWp?47JpeP`OA|N$FXaNaQq=@uh zLq~d(5<1}y-?z?P=dN|nuY1p71$Z-=cfT`x_B_wt&m=-c=`|S%JqZK?A(NGXszD%^ z*1>frF(LR{y8V6*{JZ8Pqw5NRkT+laUP^dG&Hx&T;IfKRL^GsB)GQ<`?T7rJfp(IM_E(NhUM|*_R&dBSicS&G zO8!r)i@EVdR~ERny*Y&cfZ`hXW&t04`UZ|h`!VLMfdCf7`JvcwKE1?T_9Br z6>*@M_@Y_c*u}xx!4lHIuowo~i2l9b&BfFlf;$gc`;Ts~9PRDR9pI4t&cu4qMtIRp z!y0a94$0r_=YT+1AhOUG8lI^elL2;m3z>p{dF`ja%D3Ov%`&TfA}>F{KyT8_pc~x6 z(1D|wq*UybvE@!i-j!eR*3Gj(+mY#W=OiiJ>@V%lnQP_#qY1qq%~(7bsM8UZ(}{4u zybfb(yxZcap3M@*r75;W59@y;Jtf)byE~+UjL+(brySEjYLBS6SqImha(NoWz77o?EpC?`7DU{Xe$7J=v_G(AU>5ffcoIl7La%wf8jg z5o3yuiFpyv*4fpSSzb=Pv9S>jWhD-M`8gw_RnM_DG&Yv}(6=szhy3D($;$8FzvnwN z&pWS=qp#~#(&Xk$EVvlk*pP^ei-V_qci*7D92Dp|HS6@Hu#f~i>=q*>bhOI8QSEw*nYnd;13SCzSr$84=O;SlwRC4Yl}%R2XP+xoX{ivkwC(v=SUAE-=o_{w z(G|o(LU}MzWftdW1R|u(tntquHV8|a5<%eTa0+nX#6+s6!^!@J3>%dSjrq{M){kv$ zDF}qyiLV6nslVj$$;l-MZPZnZ^4qUoy(+9_G#h55wX1*61o^>*Ecc*PL zQ`gV{PPAPz*_9#aK>;rO@rF9fS_R1+L)cd?=sSi9wObuCr_T-y)2>~71%z%{UtY7 zTHAq@b==cq+ONt}OhST(si(8k=wNd)zqt4p@P`Ec(3El!@!}_ekGp&2@{+Sinv+Oc zi4GU>mCH^wlU|6XA}!=**mHID0Zd1#T+T2~1T0OoJvPx~eRT*qig9~Xh(un3@bmL~ z)n^aApRV((aj36cG|(CN+C;Sk z%do{)MZmD9WL*4~sDz%SkdB4m7Lzs`RTkE)7!X+@W_;HmR<^bTC4;pXw>2$i1&doq zb`B1y2KJA#ot>TGOBDbNfult|Hs7+z%H$1ziAnP%)BNLM7|EOL1W+}kV0DSZn(_+@W|v)9vslNfT{*_b$9ut$x3`_& z)Ox!Oq0%xk=+Lv{<1qb_3;%&xjdX%3KI+a;%DXEY@2RxG%bOTHQX(oMa)bDaQ5CkO zE;5oNRosWRsi{e~wWp_tAaL^#${G|K8>?wJu;8-d@SQ3G3J=ggkG<3chL~PwtLl^K zVc+(Tj^@|&b+89B(lr_g3brHwMU ziMDWKfxEe(t=Q}R&oIB^YPRb1uKX}YG!In|?e6YkawC23?E|l=YHM?(GcYsv2wVCH zUx1Acmx*3H+mqj&Ht0q(z6jMhfE3Fc8#h~RZAT4IbV1LbM^hbm*8=dE)3Gn9dBX!R zptLAWO&SVqamKA`4vvguV=(k1D8p6|+p7BdF&Yo=r=ZZ4_SkpH$+!F1inZwJXlbDh z93N#V`ynctnxSzL$HbbNni$uDyG7}y+4jGSWY7F1)4djNg9t_rMb5Xz&8K-x{X{s{ zCA+Ot`2Qsk``bVuCcsQ6B46fy=ghXs*Wu+QjNVvmGF{YmJRuzT&vTbDfj~DglQVLZ>Gtgh z#@1H+w?+|fr?*;dQMKB0Lut7vU$59zIkt zG>ltZw16}Kur7X69UK~Z)med)Cb(mvvA0)6wL<}#1Ng9cet&8ls<;9B0?aLs{_oE+wBR2E3|xI1f!c02EPiTmXwr~OEkZ84L3I%#ymXK4#wJ@Djf1EjNINcIl|#)WY#Cm^OAuTE;q`2 zh)_|-^X?2uiu!5rimRIPmR~ni)Iq{vu*Z)d2LfxQTRBMvrJJw~f^D@DMcc!)XG5f;<;uG|(1~u<`==l2pcr?a3{F zx{Lt4mnuq@Ax?45T;|SMZAt-*0sspJmF;I=cZ3C-o=K;P=T-gb0yk* zii|avWF_g)R`zYaY%oa6o^(X|y*p7YPKSSu_YMwFUMaGyAD#yUNRl&4MC)+5t1svb zAJ*GVR7ZphTpKRw_?`UJ5`OPz9LUqumpVK+p2^0SI8IAU_-xgFKikK;^#J^dqT^*v zQ;PE2sypEU@uw~BW~WGXeyQ^Z>BRP(hCNiMxL_am1sk-Ik&yv{M~-UILE6RGU6~Uk z3Egjdou3`F%!~W%PiPow6qgvRC|NbcFmN57`IC~9N6w@p5ZKSX_&@70=jKM#Me>Vs zdXZT(pPyEr6_Sq#jk+fTP z?u3rn(Vh(U@_cR%fSjN0_s^gE`&fhQ+r@+o`vt@g>j&b0K$_;^qesq5X&xq9Q?=jW zD{5Lgs48AxD=T82B>Bz}Fq)9o`3Idp)X?rllNQ{Fa83>|hk|e4XySG!_ZsH6S*RkG zk3VZB@fvnxkg9hHi@~IS&N_uxk7ue7M`le->`~fpz;cGmZjVEux}$6c(iL4Z$%1^s z0eCSx0fv{ED%~aBIayhkmBn!yFWUD9)s-`|vR>LzkdseMTtlPReuY#YP*Z+rXyCag zfKU{>7}4|=Q3=g(JsyWD55^Q1lOIe6NQ#Jx0whT0pDWMK&Nd=w2K%A6ukUW9Y3b;3 zp11jMv7X`g?azK=P^fUJ?2l-;hsS&Kb+-Yx>N zwp%a!|IYmUw&eKhX9$th$CJj!%S?WIs_SFrL~-K#qvM;Am1^867Z!CvTTyPA z2k`Raa4rf{;x5E^i=Mt68!!R#b;}GtT8FBd8P{Ar7_7`@8+hwiscGxXwx^ay{2RZK zWStIn*7ima@{^O3PC|^r8LmQ%wke5d%5Pea6xcr&OET!thcCKRYf1dHImsVOQiOiJ z2!XHfTv%@0IN4txQ>PUa{_9FhZP!kh-TQb7uVh@=7viNoh&iEIUSNfz@q`fyEJGmi8vq zb!!2KvYTh?9qa@y)o*kUws>BNm<+T3XiK?96`?mGi$Gv$flCaeR$18sb1H=Qh`^pLf*ceP60Zx@HK(u zcQDoZu6JKI(QV#nuyx@v?YrTyAjPX6#w^A8`Q1!2Rt#@{uP8{+(;=uPLh)6^!~g)3 z(?`)Z6go=DL0hzAjf-}?YlS@jesPGthG>n60xqfWYg~b2mIq!A%c;^#?%(m4P|b?J zaWjsq!<=Eb5P`dAk z8lN`u-Lqcy<5jp@OSAxpt-bUyHok=Vu_G5DFJ%i*&UE@54*&tms#@8lQ>sHs$Mfa} zcHuBos)BOx1WzDOz}s z+kAE~o#A0jmDTkNpceDs0=)dw(02fDa{5{wXKS{9Yt0ut!Hn)1bLN+57r30_4x(`NchZdbIoZ$oCzh z%~$~OTgRg+%6xox4en&)OHLF)!r-_}f z?hU^kVdaZ7$pEH+_(CLc;gmZqZ8+0YuTCv*k}QL5gO+c2v_) zOij)0L@2cChE~phtAg=g=TiTNPEwhGfk2^%h}QWRoHSI}w6rwfLr`;I=D}ot81VjE zWV`kJ>+7Sh?AQw6U{m-rIwBFM%Z82n`$Asmvz@c>~nF<_=(8@M4O~V_Die zIRnO2XmVJVuvWkoMq6q56Zys)PC_@x!zjtaW_OR8mt2jEAP!Xw5KxxEQT)jYbNtE1 zWRMj&J!k~Q03=X_^NN&ev+ZC&;fR5cV%7Al6A=0=o;Hnt0jNlo)NvI#M1mT*4!L@r zJ8$4x-hl3V*PBht%T@(Z&nt`p3w2tQAEqL|X(5T#kwb+@RU~>QB_+kYr-;l{HXe?) zPdKja2f&V-2)#}Rfq?o7>B*rH3v9=0JiO3vN;h_o+5>e)kBzYE&G zt&G&DK)NW$Z_5z^bRW!n!O%vN$m#Tpm2QjOneOhar{B3W?^U8}6m{RoK~s6DeK3 zdW|i0>9zAKX>BSc0kt|p~A7X_{W zLaMxKWbJ0xuuYeaUrge$@bcDHSese9O;NnL?pv4K*;!-Ab8T(ypHug4G85Fu07+%S zL6D0!iih;fzrL7xH8YH<-G+xEtVzgwFaHon3i)YtgF<}o{icv^qVsIyRc9U?fqnTH zNFZ7E0hd}N^w1H=Fz z5PXm^J3G{h>mfClQU&=Li)?%*riYV(pe8(3iKB7$F_4F(ik?zMgi~Z3ulcyRsQr*8 zdkz9bHolqY8GVce?xUiDf?4Qy`nuZM+By2_I#QUP9wjMZi@T4HsG06Nt_~|lN4gXA z!eILk2TRL5D{or|hhOXKcHQ+6$4r9UON*B4K|= zM@Lgo^Kg-trB^5SBn&x`Bfb8yZJ&jfzg_W_$SAhfNlP!K0`)T}FIQGpQbXi+KCoH0 z{4_8?X+KjH1c6dptAFMDanvMG+g4c0xJ)mU1#=xF5J$*F1^c8`0^qp=*7{NLZDzq> z!?ICPW;9tnBY|L?xf|5VJw(#pwVCzf_&ds?pR=&QQU||iz0#>oKhAz3f9BlXARsYZ z64eZJjY{f>D2S#<<*R+ktkq9O7-vWdvRvs)8pe0rGpCxDg5f#t+~Y7 zcwEU%dmYGdo-tXRy82e*T6|$mcO?)u*R=ptH>Gly4pi@I};r)$0?xF=)FYuwurZ%E%XywaM9krH-WS*J>Qx!K4 z4^JV(wkP9%=+5d#Dl}L9{QOSmbaQ~TRDnh(U~a)bzTu(E>f_v!bC3E@@+58RhE-tk;Ab;wMtdu&Z?)jqBn^k>j7RcF$d9`VJm-fexL$2 zH)y_cnA&27T^;ir>SoNJd-G|P9GHlB$)0v8a`4VBGgNQsD*ejl!J7ymW}SrK*T=bD z`(O?4sc5f_E12mHU)=*rsiij!InCN!afDdhiaS%5YRcVn?Ye;kbO}~QJx+jPszxQj^*!1t5Q}fIcn0J!CaK%sP z4Gpn1A+*AYVR|{YWD}`R?PUPqGDBXF)`AaUoRzBUB`20A|kFi`!2o|FSL3VNkBwy zrr!hnl9%^7RokzYs{;tj9mUK*I&JX*8zLkm1XE^JPgGFM>0CK5xL# z=)6|Gb#Z5Zke^GUmf|8PXGieCX9sdRzTV7V+qqfyfbrRY^Coxa7}2^)O}esGTtGnn zHT%4|LwEHAp?w#ZyGYxa>MHfaF6Q${%YZ$_3qvQXkG5BEye+QhOZE6%AIXdEXPN9` z-)lhN8;BhA)ai$8XM04`zt6;9*S9a_|G(4QczNgbhV{p zQOy`|Kqc;99HIe(y65_}2E1&tFr2XCRXZxf>^*Jca@v6v-kp84obs=-l+oR4&jk_u z5wqh2F@BJO;qU5+^^@L0)$z)8FZ@QvDg?3-gLM|JW{I6t*9&@-;rF5Zo21VdLggP` zQg*he^X+Lo5p$7XW_fs06$?@M=RhG;eE z+w&N9K?Lld?#Wd=+AmtD#{EW%aZWbS@6+dJs^@?BZKL>v zpSWK(0!nsMN>xk0$$;BUHO1(0K2}gjNT+uVBG2EqF#L`gh#hTau+lckk!fZ569Ymb zqCUWrHnkwBTLNkkc$2cr7!wmClQS$p{k61|GE+syuA{7zeVdeYo&R_#U?OPxbQ^`q zoqm(ujHb`A7k)Lr-_9*_?sFY~+UDEsKdNvMe*x#ymL@054COM0=W5#7wYtgXew%4D z`+tsJ{4Em2)1~`Z9#Q11tYQC##W|4v!k+I`9A@q)duYyvjI9ZuyW>PF?|N-)nds^5 z;&(ZaCqcWb*)fML9(6$-ZK0ZXlz)Lteb&9E4~u=2;x>d^2+Fbe^PB~O=py_#2>^L1 zIQRRkkQ`c!F(U5W0C+NK6;rdxA;BL379$IrR8)?p$_T%l@ z0gqn;`rI!abhv(;ojc(yZU^J7nT!Q^`R&$m3&^wuCK+)BSs2Q=R(V}oaC~trXK&A42UM;odwnBt1ZHY%oXK_-9CNUWgM8Uk m|KdzT)ystWKb^VHoD($c+%_OSlsg5cA+l0R(BhXy!T$?##DF;f diff --git a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md index 31ea44aebd..e4de8535f1 100644 --- a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md +++ b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md @@ -20,15 +20,15 @@ localizationpriority: high You can create a Group Policy or mobile device management (MDM) policy that will implement Windows Hello on devices running Windows 10. >[!IMPORTANT] ->The Group Policy setting **Turn on PIN sign-in** does not apply to Windows Hello for Business. Use the **Turn on PIN sign-in** setting to allow or deny the use of a convenience PIN for Windows 10, version 1607. +>The Group Policy setting **Turn on PIN sign-in** does not apply to Windows Hello for Business. It still prevents or enables the creation of a convenience PIN for Windows 10, version 1507 and 1511. > ->Beginning in version 1607, Windows Hello as a convenience PIN is disabled by default on all domain-joined computers. To enable a convenience PIN for Windows 10, version 1607, enable the Group Policy setting **Turn on convenience PIN sign-in**. Learn more in the blog post [Changes to Convenience PIN/Windows Hello Behavior in Windows 10, version 1607](https://blogs.technet.microsoft.com/ash/2016/08/13/changes-to-convenience-pin-and-thus-windows-hello-behaviour-in-windows-10-version-1607/). +>Beginning in version 1607, Windows Hello as a convenience PIN is disabled by default on all domain-joined computers. To enable a convenience PIN for Windows 10, version 1607, enable the Group Policy setting **Turn on convenience PIN sign-in**. > >Use **Windows Hello for Business** policy settings to manage PINs for Windows Hello for Business.   ## Group Policy settings for Windows Hello for Business -The following table lists the Group Policy settings that you can configure for Hello use in your workplace. These policy settings are available in both **User configuration** and **Computer Configuration** under **Policies** > **Administrative Templates** > **Windows Components** > **Windows Hello for Business**. Be aware that not all settings are in both places. +The following table lists the Group Policy settings that you can configure for Hello use in your workplace. These policy settings are available in both **User configuration** and **Computer Configuration** under **Policies** > **Administrative Templates** > **Windows Components** > **Windows Hello for Business**. @@ -376,4 +376,4 @@ The PIN is managed using the same Windows Hello for Business policies that you c [Event ID 300 - Windows Hello successfully created](passport-event-300.md) [Windows Hello biometrics in the enterprise](windows-hello-in-enterprise.md) -  +  \ No newline at end of file diff --git a/windows/keep-secure/index.md b/windows/keep-secure/index.md index 1307bc7110..3e1ed57822 100644 --- a/windows/keep-secure/index.md +++ b/windows/keep-secure/index.md @@ -17,19 +17,19 @@ Learn about keeping Windows 10 and Windows 10 Mobile secure. | Topic | Description | | - | - | | [Block untrusted fonts in an enterprise](block-untrusted-fonts-in-enterprise.md) | To help protect your company from attacks which may originate from untrusted or attacker controlled font files, we’ve created the Blocking Untrusted Fonts feature. Using this feature, you can turn on a global setting that stops your employees from loading untrusted fonts processed using the Graphics Device Interface (GDI) onto your network. Untrusted fonts are any font installed outside of the %windir%/Fonts directory. Blocking untrusted fonts helps prevent both remote (web-based or email-based) and local EOP attacks that can happen during the font file-parsing process. | +| [Device Guard certification and compliance](device-guard-certification-and-compliance.md) | Device Guard is a combination of hardware and software security features that, when configured together, will lock a device down so that it can only run trusted applications. If the app isn’t trusted it can’t run, period. It also means that even if an attacker manages to get control of the Windows kernel, he or she will be much less likely to be able to run malicious executable code after the computer restarts because of how decisions are made about what can run and when. | | [Manage identity verification using Windows Hello for Business](manage-identity-verification-using-microsoft-passport.md) | In Windows 10, Windows Hello replaces passwords with strong two-factor authentication on PCs and mobile devices. This authentication consists of a new type of user credential that is tied to a device and a biometric or PIN. | | [Configure S/MIME for Windows 10 and Windows 10 Mobile](configure-s-mime.md) | In Windows 10, S/MIME lets users encrypt outgoing messages and attachments so that only intended recipients who have a digital identification (ID), also known as a certificate, can read them. Users can digitally sign a message, which provides the recipients with a way to verify the identity of the sender and that the message hasn't been tampered with. | | [Install digital certificates on Windows 10 Mobile](installing-digital-certificates-on-windows-10-mobile.md) | Digital certificates bind the identity of a user or computer to a pair of keys that can be used to encrypt and sign digital information. Certificates are issued by a certification authority (CA) that vouches for the identity of the certificate holder, and they enable secure client communications with websites and services. | -| [Device Guard deployment guide](device-guard-deployment-guide.md) | Device Guard is a combination of hardware and software security features that, when configured together, will lock a device down so that it can only run trusted applications. If the app isn’t trusted it can’t run, period. It also means that even if an attacker manages to get control of the Windows kernel, he or she will be much less likely to be able to run malicious executable code after the computer restarts because of how decisions are made about what can run and when. | -| [Protect derived domain credentials with Credential Guard](credential-guard.md) | Introduced in Windows 10 Enterprise, Credential Guard uses virtualization-based security to isolate secrets so that only privileged system software can access them. Unauthorized access to these secrets can lead to credential theft attacks, such as Pass-the-Hash or Pass-The-Ticket. Credential Guard helps prevent these attacks by protecting NTLM password hashes and Kerberos Ticket Granting Tickets. | +| [Protect derived domain credentials with Credential Guard](credential-guard.md) | Introduced in Windows 10 Enterprise, Credential Guard uses virtualization-based security to isolate secrets so that only privileged system software can access them. Unauthorized access to these secrets can lead to credential theft attacks, such as Pass-the-Hash or Pass-The-Ticket. Credential Guard prevents these attacks by protecting NTLM password hashes and Kerberos Ticket Granting Tickets. | | [Protect Remote Desktop credentials with Remote Credential Guard](remote-credential-guard.md) | Remote Credential Guard helps you protect your credentials over a Remote Desktop connection by redirecting the Kerberos requests back to the device that's requesting the connection. | -| [Protect your enterprise data using Windows Information Protection (WIP)](protect-enterprise-data-using-wip.md) | With the increase of employee-owned devices in the enterprise, there’s also an increasing risk of accidental data leak through apps and services, like email, social media, and the public cloud, which are outside of the enterprise’s control. Windows Information Protection (WIP), previously known as enterprise data protection (EDP), helps to protect against this potential data leakage without otherwise interfering with the employee experience. | +| [Protect your enterprise data using Windows Information Protection (WIP)](protect-enterprise-data-using-wip.md) | With the increase of employee-owned devices in the enterprise, there’s also an increasing risk of accidental data leak through apps and services, like email, social media, and the public cloud, which are outside of the enterprise’s control. For example, when an employee sends the latest engineering pictures from their personal email account, copies and pastes product info into a tweet, or saves an in-progress sales report to their public cloud storage. | | [Use Windows Event Forwarding to help with intrusion detection](use-windows-event-forwarding-to-assist-in-instrusion-detection.md) | Learn about an approach to collect events from devices in your organization. This article talks about events in both normal operations and when an intrusion is suspected. | |[Override Process Mitigation Options to help enforce app-related security policies](override-mitigation-options-for-app-related-security-policies.md) |Use Group Policy to override individual **Process Mitigation Options** settings and help to enforce specific app-related security policies. | | [VPN technical guide](vpn-guide.md) | Virtual private networks (VPN) let you give your users secure remote access to your company network. Windows 10 adds useful new VPN profile options to help you manage how users connect. | | [Windows security baselines](windows-security-baselines.md) | Learn why you should use security baselines in your organization. | -| [Security technologies](security-technologies.md) | Learn more about the different security technologies that are available in Windows 10 and Windows 10 Mobile. For example, learn about AppLocker, BitLocker, and Security auditing. | -| [Enterprise security guides](windows-10-enterprise-security-guides.md) | Review technology overviews that help you understand Windows 10 security technologies in the context of the enterprise. | +| [Security technologies](security-technologies.md) | Learn more about the different security technologies that are available in Windows 10 and Windows 10 Mobile. | +| [Enterprise security guides](windows-10-enterprise-security-guides.md) | Get proven guidance to help you better secure and protect your enterprise by using technologies such as Credential Guard, Device Guard, Microsoft Passport, and Windows Hello. This section offers technology overviews and step-by-step guides. | | [Change history for Keep Windows 10 secure](change-history-for-keep-windows-10-secure.md) | This topic lists new and updated topics in the Keep Windows 10 secure documentation for [Windows 10 and Windows 10 Mobile](../index.md). |   ## Related topics diff --git a/windows/keep-secure/initialize-and-configure-ownership-of-the-tpm.md b/windows/keep-secure/initialize-and-configure-ownership-of-the-tpm.md index 013355ffa6..cc8625adb9 100644 --- a/windows/keep-secure/initialize-and-configure-ownership-of-the-tpm.md +++ b/windows/keep-secure/initialize-and-configure-ownership-of-the-tpm.md @@ -1,6 +1,6 @@ --- -title: View status, clear, or troubleshoot the TPM (Windows 10) -description: This topic for the IT professional describes how to view status for, clear, or troubleshoot the Trusted Platform Module (TPM). +title: Initialize and configure ownership of the TPM (Windows 10) +description: This topic for the IT professional describes how to initialize and set the ownership the Trusted Platform Module (TPM), turn the TPM on and off, and clear TPM keys. ms.assetid: 1166efaf-7aa3-4420-9279-435d9c6ac6f8 ms.prod: w10 ms.mktglfcycl: deploy @@ -9,146 +9,156 @@ ms.pagetype: security author: brianlic-msft --- -# View status, clear, or troubleshoot the TPM +# Initialize and configure ownership of the TPM **Applies to** - Windows 10 -- Windows Server 2016 -This topic for the IT professional describes actions you can take through the Trusted Platform Module (TPM) snap-in, **TPM.msc**: +This topic for the IT professional describes how to initialize and set the ownership the Trusted Platform Module (TPM), turn the TPM on and off, and clear TPM keys. It also explains how to troubleshoot issues that you might encounter as a result of using these procedures. -- [View the status of the TPM](#view-the-status-of-the-tpm) +## About TPM initialization and ownership -- [Troubleshoot TPM initialization](#troubleshoot-tpm-initialization) +The TPM must be initialized and ownership must be taken before it can be used to help secure your computer. The owner of the TPM is the user who possesses the owner password and is able to set it and change it. Only one owner password exists per TPM. The owner of the TPM can make full use of TPM capabilities. Taking ownership of the TPM can be done as part of the initialization process. -- [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm) +When you start the TPM Initialization Wizard, which is accessed through the TPM Microsoft Management Console (MMC), you can determine whether the computer's TPM has been initialized. You can also view the TPM properties. -With TPM 1.2 and Windows 10, version 1507 or 1511, you can also take the following actions: +This topic contains procedures for the following tasks: -- [Turn on or turn off the TPM](#turn-on-or-turn-off) +- [Initialize the TPM and set ownership](#bkmk-initializetpm) +- [Troubleshoot TPM initialization](#bkmk-troubleshootinit) +- [Turn on or turn off the TPM](#bkmk-onoff) +- [Clear all the keys from the TPM](#bkmk-clear1) +- [Use the TPM cmdlets](#bkmk-tpmcmdlets) -This topic also provides information about [using the TPM cmdlets](#use-the-tpm-cmdlets). +## Initialize the TPM and set ownership -## About TPM initialization and ownership +Membership in the local Administrators group, or equivalent, is the minimum required to complete this procedure. In addition, the computer must be equipped with a Trusted Computing Group-compliant BIOS. -Starting with Windows 10, the operating system automatically initializes and takes ownership of the TPM. This is a change from previous operating systems, where you would initialize the TPM and create an owner password. Therefore, with Windows 10, in most cases, we recommend that you avoid configuring the TPM through **TPM.msc**. The one exception is that in certain circumstances you might use **TPM.msc** to clear the TPM. For more information, see [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. +**To start the TPM Initialization Wizard** -## View the status of the TPM +1. Open the TPM Management console (tpm.msc). If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. +2. On the **Action** menu, click **Initialize TPM** to start the TPM Initialization Wizard. +3. If the TPM has never been initialized or is turned off, the TPM Initialization Wizard displays the **Turn on the TPM security hardware** dialog box. This dialog box provides guidance for initializing or turning on the TPM. Follow the instructions in the wizard. -To view the status of the TPM, open the TPM Management console (TPM.msc). In the center pane, find the **Status** box. + >**Note:** If the TPM is already turned on, the TPM Initialization Wizard displays the **Create the TPM owner password** dialog box. Skip the remainder of this procedure and continue with the **To set ownership of the TPM** procedure. +   + >**Note:**  If the TPM Initialization Wizard detects that you do not have a compatible BIOS, you cannot continue with the TPM Initialization Wizard, and you are alerted to consult the computer manufacturer's documentation for instructions to initialize the TPM. +   +4. Click **Restart**. +5. Follow the BIOS screen prompts. An acceptance prompt is displayed to ensure that a user has physical access to the computer and that no malicious software is attempting to turn on the TPM. + + >**Note:**  BIOS screen prompts and the required keystrokes vary by computer manufacturer. +   +6. After the computer restarts, sign in to the computer with the same administrative credentials that you used to start this procedure. +7. The TPM Initialization Wizard automatically restarts. If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. +8. Continue with the next procedure to take ownership of the TPM. -In most cases, the status will be **Ready**. If the status is ready but “**with reduced functionality**,” see [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. +To finish initializing the TPM for use, you must set an owner for the TPM. The process of taking ownership includes creating an owner password for the TPM. -If the status is **Not ready**, you can try the steps in [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. If this does not bring it to a **Ready** state, contact the manufacturer, and see the troubleshooting suggestions in the next section. +**To set ownership of the TPM** -## Troubleshoot TPM initialization +1. If you are not continuing immediately from the last procedure, start the TPM Initialization Wizard. If you need to review the steps to do so, see the previous procedure **To start the TPM Initialization Wizard**. +2. In the **Create the TPM owner password** dialog box, click **Automatically create the password (recommended)**. +3. In the **Save your TPM owner password** dialog box, click **Save the password**. +4. In the **Save As** dialog box, select a location to save the password, and then click **Save**. The password file is saved as *computer\_name.tpm*. -If you find that Windows is not able to initialize the TPM automatically, review the following information: + >**Important:**  We highly recommend saving the TPM owner password to a removable storage device and storing it in a safe location. +   +5. Click **Print the password** if you want to print a copy of your password. + >**Important:**  We highly recommend printing a copy of your TPM owner password and storing it in a safe location. +   +6. Click **Initialize**. + >**Note:**  The process of initializing the TPM might take a few minutes to complete. +   +7. Click **Close**. + >**Caution:**  Do not lose your password. If you do, you will be unable to make administrative changes unless you clear the TPM, which can result in data loss. +   +## Troubleshoot TPM initialization -- You can try clearing the TPM to the factory default values and allowing Windows to re-initialize it. For important precautions for this process, and instructions for completing it, see [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. +Managing the Trusted Platform Module (TPM) is usually a straightforward procedure. If are unable to complete the initialization procedure, review the following information: -- If the TPM is a TPM 2.0 and is not detected by Windows, verify that your computer hardware contains a Unified Extensible Firmware Interface (UEFI) that is Trusted Computing Group-compliant. Also, ensure that in the UEFI settings, the TPM has not been disabled or hidden from the operating system. +- If the TPM is not detected by Windows, verify that your computer hardware contains a Trusted Computing Group-compliant BIOS. Ensure that no BIOS settings have been used to hide the TPM from the operating system. +- If you are attempting to initialize the TPM as part of the BitLocker setup, check which TPM driver is installed on the computer. We recommend always using one of the TPM drivers that is provided by Microsoft and is protected with BitLocker. If a non-Microsoft TPM driver is installed, it may prevent the default TPM driver from loading and cause BitLocker to report that a TPM is not present on the computer. If you have a non-Microsoft driver installed, remove it and then try to initialize the TPM. The following table lists the three standard TPM drivers that are provided by Microsoft. -- If you have TPM 1.2 with Windows 10, version 1507 or 1511, the TPM might be turned off, and need to be turned back on, as described in [Turn on the TPM](#turn-on-the-tpm). When it is turned back on, Windows will re-initialize it. +| Driver name | Manufacturer | +| - | - | +| Trusted Platform Module 1.2 | (Standard)| +| Broadcom Trusted Platform Module (A1), v1.2 | Broadcom| +| Broadcom Trusted Platform Module (A2), v1.2 | Broadcom| +   +- If the TPM has been previously initialized and you do not have the owner password, you may have to clear or reset the TPM to the factory default values. For more information, see [Clear all the keys from the TPM](#bkmk-clear1). + > **Caution:**  Clearing the TPM can result in data loss. To avoid data loss, make sure that you have a backup or recovery method for any data that is protected or encrypted by the TPM. +   +Because your TPM security hardware is a physical part of your computer, you may want to read the manuals or instructions that came with your computer, or search the manufacturer's website. -- If you are attempting to set up BitLocker with the TPM, check which TPM driver is installed on the computer. We recommend always using one of the TPM drivers that is provided by Microsoft and is protected with BitLocker. If a non-Microsoft TPM driver is installed, it may prevent the default TPM driver from loading and cause BitLocker to report that a TPM is not present on the computer. If you have a non-Microsoft driver installed, remove it and then allow the operating system to initialize the TPM. +**Network connection** -### Troubleshoot network connection issues for Windows 10, versions 1507 and 1511 - -If you have Windows 10, version 1507 or 1511, the initialization of the TPM cannot complete when your computer has network connection issues and both of the following conditions exist: +You cannot complete the initialization of the Trusted Platform Module (TPM) when your computer is disconnected from your organization's network if either of the following conditions exist: - An administrator has configured your computer to require that TPM recovery information be saved in Active Directory Domain Services (AD DS). This requirement can be configured through Group Policy. - - A domain controller cannot be reached. This can occur on a computer that is currently disconnected from the network, separated from the domain by a firewall, or experiencing a network component failure (such as an unplugged cable or a faulty network adapter). -If these issues occur, an error message appears, and you cannot complete the initialization process. To avoid this issue, allow Windows to initialize the TPM while you are connected to the corporate network and you can contact a domain controller. +In either case, an error message appears, and you cannot complete the initialization process. To avoid this issue, initialize the TPM while you are connected to the corporate network and you can contact a domain controller. -### Troubleshoot systems with multiple TPMs +**Systems with multiple TPMs** -Some systems may have multiple TPMs and the active TPM may be toggled in UEFI. Windows 10 does not support this behavior. If you switch TPMs, Windows might not properly detect or interact with the new TPM. If you plan to switch TPMs you should toggle to the new TPM, clear it, and reinstall Windows. For more information, see [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. +Some systems may have multiple TPMs and the active TPM may be toggled in the BIOS. Windows 10 does not support this behavior. If you switch TPMs, functionality that depends on the TPM will not work with the new TPM unless it is cleared and put through provisioning. Performing this clear may cause data loss, in particular of keys and certificates associated with the previous TPM. For example, toggling TPMs will cause Bitlocker to enter recovery mode. It is strongly recommended that, on systems with two TPMs, one TPM is selected to be used and the selection is not changed. -For example, toggling TPMs will cause BitLocker to enter recovery mode. We strongly recommend that, on systems with two TPMs, one TPM is selected to be used and the selection is not changed. +## Turn on or turn off the TPM -## Clear all the keys from the TPM +Normally, the TPM is turned on as part of the TPM initialization process. You do not normally need to turn the TPM on or off. However, if necessary you can do so by using the TPM MMC. This option is only available with TPM 1.2 and does not apply to TPM 2.0. -With Windows 10, in most cases, we recommend that you avoid configuring the TPM through TPM.msc. The one exception is that you can use TPM.msc to clear the TPM, for example, as a troubleshooting step, or as a final preparation before a clean installation of a new operating system. Preparing for a clean installation in this way helps ensure that the new operating system can fully deploy any TPM-based functionality that it includes, for example, attestation. However, even if the TPM is not cleared before a new operating system is installed, most TPM functionality will probably work correctly. +### Turn on the TPM -Clearing the TPM resets it to an unowned state. After you clear the TPM, the Windows 10 operating system will automatically re-initialize it and take ownership again. +If the TPM has been initialized but has never been used, or if you want to use the TPM after you have turned it off, you can use the following procedure to turn on the TPM. -> [!WARNING] -> Clearing the TPM can result in data loss. For more information, see the next section, “Precautions to take before clearing the TPM.” +**To turn on the TPM (TPM 1.2 Only)** -There are several ways to clear the TPM: +1. Open the TPM MMC (tpm.msc). +2. In the **Action** pane, click **Turn TPM On** to display the **Turn on the TPM Security Hardware** page. Read the instructions on this page. +3. Click **Shutdown** (or **Restart**), and then follow the BIOS screen prompts. -- **Clear the TPM as part of a complete reset of the computer**: You might want to remove all files from the computer and completely reset it, for example, in preparation for a clean installation. To do this, we recommend that you use the **Reset** option in **Settings**. When you perform a reset and use the **Remove everything** option, it will clear the TPM as part of the reset. You might be prompted to press a key before the TPM can be cleared. For more information, see the “Reset this PC” section in [Recovery options in Windows 10](https://support.microsoft.com/en-us/help/12415/windows-10-recovery-options). + After the computer restarts, but before you sign in to Windows, you will be prompted to accept the reconfiguration of the TPM. This ensures that the user has physical access to the computer and that malicious software is not attempting to make changes to the TPM. -- **Clear the TPM to fix “reduced functionality” or “Not ready” TPM status**: If you open TPM.msc and see that the TPM status is something other than **Ready**, you can can try using TPM.msc to clear the TPM and fix the status. However, be sure to review the precautions in the next section. +### Turn off the TPM -### Precautions to take before clearing the TPM +If you want to stop using the services that are provided by the TPM, you can use the TPM MMC to turn off the TPM. If you have the TPM owner password, physical access to the computer is not required to turn off the TPM. If you do not have the TPM owner password, you must have physical access to the +computer to turn off the TPM. -Clearing the TPM can result in data loss. To protect against such loss, review the following precautions: +**To turn off the TPM (TPM 1.2 only)** -- Clearing the TPM causes you to lose all created keys associated with the TPM, and data protected by those keys, such as a virtual smart card or a login PIN. Make sure that you have a backup and recovery method for any data that is protected or encrypted by the TPM. +1. Open the TPM MMC (tpm.msc). +2. In the **Action** pane, click **Turn TPM Off** to display the **Turn off the TPM security hardware** page. +3. In the **Turn off the TPM security hardware** dialog box, select a method to enter your owner password and turning off the TPM: -- Do not clear the TPM on a device you do not own, such as a work or school PC, without being instructed to do so by your IT administrator. + - If you saved your TPM owner password on a removable storage device, insert it, and then click **I have the owner password file**. In the **Select backup file with the TPM owner password** dialog box, click **Browse** to locate the .tpm file that is saved on your removable storage device, click **Open**, and then click **Turn TPM Off**. + - If you do not have the removable storage device with your saved TPM owner password, click **I want to enter the password**. In the **Type your TPM owner password** dialog box, type your password (including hyphens), and then click **Turn TPM Off**. + - If you do not know your TPM owner password, click **I do not have the TPM owner password**, and follow the instructions that are provided in the dialog box and subsequent BIOS screens to turn off the TPM without entering the password. -- If you want to temporarily suspend TPM operations and you have TPM 1.2 with Windows 10, version 1507 or 1511, you can turn off the TPM. For more information, see [Turn off the TPM](#turn-off-the-tpm), later in this topic. +## Clear all the keys from the TPM -- Always use functionality in the operating system (such as TPM.msc) to the clear the TPM. Do not clear the TPM directly from UEFI. +Clearing the TPM resets it to an unowned state. After clearing the TPM, you need to complete the TPM initialization process before using software that relies on the TPM, such as BitLocker Drive Encryption. By default, the TPM is initialized automatically. -- Because your TPM security hardware is a physical part of your computer, before clearing the TPM, you might want to read the manuals or instructions that came with your computer, or search the manufacturer's website. +>**Important:**  Clearing the TPM can result in data loss. To avoid data loss, make sure that you have a backup or recovery method for any data that is protected or encrypted by the TPM. +  +After the TPM is cleared, it is also turned off. + +To temporarily suspend TPM operations, turn off the TPM instead of clearing it. Membership in the local Administrators group, or equivalent, is the minimum required to complete this procedure. **To clear the TPM** 1. Open the TPM MMC (tpm.msc). - 2. If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. - 3. Under **Actions**, click **Clear TPM**. + >**Warning:**  If the TPM is off, reinitialize it before clearing it. + + Clearing the TPM resets it to factory defaults and turns it off. You will lose all created keys and data that is protected by those keys. +   +4. You will be prompted to restart the computer. During the restart, you will be prompted by the BIOS or UEFI to press a button to confirm you wish to clear the TPM. -4. You will be prompted to restart the computer. During the restart, you might be prompted by the UEFI to press a button to confirm that you wish to clear the TPM. - -5. After the PC restarts, your TPM will be automatically prepared for use by Windows 10. - -## Turn on or turn off the TPM (TPM 1.2 with Windows 10, version 1507 or 1511) - -Normally, the TPM is turned on as part of the TPM initialization process. You do not normally need to turn the TPM on or off. However, if necessary you can do so by using the TPM MMC. - -### Turn on the TPM - -If you want to use the TPM after you have turned it off, you can use the following procedure to turn on the TPM. - -**To turn on the TPM (TPM 1.2 with Windows 10, version 1507 or 1511 only)** - -1. Open the TPM MMC (tpm.msc). - -2. In the **Action** pane, click **Turn TPM On** to display the **Turn on the TPM Security Hardware** page. Read the instructions on this page. - -3. Click **Shutdown** (or **Restart**), and then follow the UEFI screen prompts. - - After the computer restarts, but before you sign in to Windows, you will be prompted to accept the reconfiguration of the TPM. This ensures that the user has physical access to the computer and that malicious software is not attempting to make changes to the TPM. - -### Turn off the TPM - -If you want to stop using the services that are provided by the TPM, you can use the TPM MMC to turn off the TPM. - -**To turn off the TPM (TPM 1.2 with Windows 10, version 1507 or 1511 only)** - -1. Open the TPM MMC (tpm.msc). - -2. In the **Action** pane, click **Turn TPM Off** to display the **Turn off the TPM security hardware** page. - -3. In the **Turn off the TPM security hardware** dialog box, select a method to enter your owner password and turning off the TPM: - - - If you saved your TPM owner password on a removable storage device, insert it, and then click **I have the owner password file**. In the **Select backup file with the TPM owner password** dialog box, click **Browse** to locate the .tpm file that is saved on your removable storage device, click **Open**, and then click **Turn TPM Off**. - - - If you do not have the removable storage device with your saved TPM owner password, click **I want to enter the password**. In the **Type your TPM owner password** dialog box, type your password (including hyphens), and then click **Turn TPM Off**. - - - If you did not save your TPM owner password or no longer know it, click **I do not have the TPM owner password**, and follow the instructions that are provided in the dialog box and subsequent UEFI screens to turn off the TPM without entering the password. - -## Use the TPM cmdlets +## Use the TPM cmdlets If you are using Windows PowerShell to manage your computers, you can also manage the TPM by using Windows PowerShell. To install the TPM cmdlets, type the following command: @@ -156,6 +166,6 @@ If you are using Windows PowerShell to manage your computers, you can also manag For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). -## Related topics +## Additional resources -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) +For more info about TPM, see [Trusted Platform Module Technology Overview](trusted-platform-module-overview.md#bkmk-additionalresources). diff --git a/windows/keep-secure/installing-digital-certificates-on-windows-10-mobile.md b/windows/keep-secure/installing-digital-certificates-on-windows-10-mobile.md index 1e16d409a2..11d5fe781d 100644 --- a/windows/keep-secure/installing-digital-certificates-on-windows-10-mobile.md +++ b/windows/keep-secure/installing-digital-certificates-on-windows-10-mobile.md @@ -24,8 +24,8 @@ Certificates in Windows 10 Mobile are primarily used for the following purposes - For installation and licensing of applications (from the Windows Phone Store or a custom company distribution site). ->[!WARNING]   ->In Windows 10, Version 1607, if you have multiple certificates provisioned on the device and the Wi-Fi profile provisioned does not have a strict filtering criteria, you may see connection failures when connecting to Wi-Fi. [Learn more about this known issue in Version 1607](https://go.microsoft.com/fwlink/p/?LinkId=786764) +**Warning**   +In Windows 10, Version 1607, if you have multiple certificates provisioned on the device and the Wi-Fi profile provisioned does not have a strict filtering criteria, you may see connection failures when connecting to Wi-Fi. [Learn more about this known issue in Version 1607](https://go.microsoft.com/fwlink/p/?LinkId=786764) ## Install certificates using Microsoft Edge @@ -33,13 +33,12 @@ A certificate can be posted on a website and made available to users through a d ## Install certificates using email -The Windows 10 Mobile certificate installer supports .cer, .p7b, .pem, and .pfx files. Some email programs block .cer files for security reasons. If this is the case in your organization, use an alternative method to deploy the certificate. Certificates that are sent via email appear as message attachments. When a certificate is received, a user can tap to review the contents and then tap to install the certificate. Typically, when an identity certificate is installed, the user is prompted for the password (or passphrase) that protects it. +The Windows 10 Mobile certificate installer supports .cer, .p7b, .pem, and .pfx files. To install certificates via email, make sure your mail filters do not block .cer files. Certificates that are sent via email appear as message attachments. When a certificate is received, a user can tap to review the contents and then tap to install the certificate. Typically, when an identity certificate is installed, the user is prompted for the password (or passphrase) that protects it. ## Install certificates using mobile device management (MDM) Windows 10 Mobile supports root, CA, and client certificate to be configured via MDM. Using MDM, an administrator can directly add, delete, or query root and CA certificates, and configure the device to enroll a client certificate with a certificate enrollment server that supports Simple Certificate Enrollment Protocol (SCEP). SCEP enrolled client certificates are used by Wi-Fi, VPN, email, and browser for certificate-based client authentication. An MDM server can also query and delete SCEP enrolled client certificate (including user installed certificates), or trigger a new enrollment request before the current certificate is expired. ->[!WARNING] ->Do not use SCEP for encryption certificates for S/MIME. You must use a PFX certificate profile to support S/MIME on Windows 10 Mobile. For instructions on creating a PFX certificate profile in Microsoft Intune, see [Enable access to company resources using certificate profiles with Microsoft Intune](https://go.microsoft.com/fwlink/p/?LinkID=718216). +> **Warning:**  Do not use SCEP for encryption certificates for S/MIME. You must use a PFX certificate profile to support S/MIME on Windows 10 Mobile. For instructions on creating a PFX certificate profile in Microsoft Intune, see [Enable access to company resources using certificate profiles with Microsoft Intune](https://go.microsoft.com/fwlink/p/?LinkID=718216).   **Process of installing certificates using MDM** @@ -51,17 +50,14 @@ Windows 10 Mobile supports root, CA, and client certificate to be configured vi 6. The device connects to Internet-facing point exposed by MDM server. 7. MDM server creates a certificate that is signed with proper CA certificate and returns it to device. - >[!NOTE] - >The device supports the pending function to allow server side to do additional verification before issuing the cert. In this case, a pending status is sent back to the device. The device will periodically contact the server, based on preconfigured retry count and retry period parameters. Retrying ends when either: - > - >- A certificate is successfully received from the server - >- The server returns an error - >- The number of retries reaches the preconfigured limit + > **Note:**  The device supports the pending function to allow server side to do additional verification before issuing the cert. In this case, a pending status is sent back to the device. The device will periodically contact the server, based on preconfigured retry count and retry period parameters. Retrying ends when either: + A certificate is successfully received from the server + The server returns an error + The number of retries reaches the preconfigured limit   8. The cert is installed in the device. Browser, Wi-Fi, VPN, email, and other first party applications have access to this certificate. - >[!NOTE] - >If MDM requested private key stored in Trusted Process Module (TPM) (configured during enrollment request), the private key will be saved in TPM. Note that SCEP enrolled cert protected by TPM isn’t guarded by a PIN. However, if the certificate is imported to the Windows Hello for Business Key Storage Provider (KSP), it is guarded by the Hello PIN. + > **Note:**  If MDM requested private key being stored in Trusted Process Module (TPM) (configured during enrollment request), the private key will be saved in TPM. Note that SCEP enrolled cert protected by TPM isn’t guarded by a PIN. However, if the certificate is imported to the Passport for Work Key Storage Provider (KSP), it is guarded by the Passport PIN.   ## Related topics diff --git a/windows/keep-secure/interactive-logon-display-user-information-when-the-session-is-locked.md b/windows/keep-secure/interactive-logon-display-user-information-when-the-session-is-locked.md index f82d103fb6..7c1d049314 100644 --- a/windows/keep-secure/interactive-logon-display-user-information-when-the-session-is-locked.md +++ b/windows/keep-secure/interactive-logon-display-user-information-when-the-session-is-locked.md @@ -35,7 +35,7 @@ When a session is locked in a Windows operating system (meaning the user at the - Blank. - Default setting. This translates to “Not defined,” but it will display the user’s full name in the same manner as the **User display name** option. When an option is set, you cannot reset this policy to blank, or not defined. + Default setting. This translates to “Not defined,” but it will display the user’s full name in the same manner as the **User display name, domain and user names** option. When an option is set, you cannot reset this policy to blank, or not defined. ### Best practices diff --git a/windows/keep-secure/interactive-logon-do-not-display-last-user-name.md b/windows/keep-secure/interactive-logon-do-not-display-last-user-name.md index 5af92d1bcf..0177def043 100644 --- a/windows/keep-secure/interactive-logon-do-not-display-last-user-name.md +++ b/windows/keep-secure/interactive-logon-do-not-display-last-user-name.md @@ -34,6 +34,8 @@ If this policy is disabled, the full name of the last user to log on is displaye Your implementation of this policy depends on your security requirements for displayed logon information. If you have devices that store sensitive data, with monitors displayed in unsecured locations, or if you have devices with sensitive data that are remotely accessed, revealing logged on user’s full names or domain account names might contradict your overall security policy. +Depending on your security policy, you might also want to enable the [Interactive logon: Display user information when the session is locked](interactive-logon-display-user-information-when-the-session-is-locked.md) policy, which will prevent the Windows operating system from displaying the logon name when the session is locked or started. + ### Location Computer Configuration\\Windows Settings\\Security Settings\\Local Policies\\Security Options diff --git a/windows/keep-secure/interactive-logon-require-smart-card.md b/windows/keep-secure/interactive-logon-require-smart-card.md index 503713f8e7..2441b3c3e7 100644 --- a/windows/keep-secure/interactive-logon-require-smart-card.md +++ b/windows/keep-secure/interactive-logon-require-smart-card.md @@ -1,5 +1,5 @@ --- -title: Interactive logon Require smart card - security policy setting (Windows 10) +title: Interactive logon Require smart card (Windows 10) description: Describes the best practices, location, values, policy management and security considerations for the Interactive logon Require smart card security policy setting. ms.assetid: c6a8c040-cbc7-472d-8bc5-579ddf3cbd6c ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Interactive logon: Require smart card - security policy setting +# Interactive logon: Require smart card **Applies to** - Windows 10 diff --git a/windows/keep-secure/introduction-to-device-guard-virtualization-based-security-and-code-integrity-policies.md b/windows/keep-secure/introduction-to-device-guard-virtualization-based-security-and-code-integrity-policies.md index 3712b6aed0..c0577fe786 100644 --- a/windows/keep-secure/introduction-to-device-guard-virtualization-based-security-and-code-integrity-policies.md +++ b/windows/keep-secure/introduction-to-device-guard-virtualization-based-security-and-code-integrity-policies.md @@ -75,5 +75,5 @@ Another Windows 10 feature that employs VBS is [Credential Guard](credential-gua Credential Guard is targeted at resisting pass-the-hash and pass-the-ticket techniques. By employing multifactor authentication with Credential Guard, organizations can gain additional protection against such threats. - +In addition to the client-side enabling of Credential Guard, organizations can deploy mitigations at both the CA and domain controller level to help prevent credential theft. For more information, see the [Additional mitigations](https://technet.microsoft.com/en-us/itpro/windows/keep-secure/credential-guard#additional-mitigations) section in “Protect derived domain credentials with Credential Guard.” diff --git a/windows/keep-secure/investigate-machines-windows-defender-advanced-threat-protection.md b/windows/keep-secure/investigate-machines-windows-defender-advanced-threat-protection.md index bc3e8df73d..eec0ada5a4 100644 --- a/windows/keep-secure/investigate-machines-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/investigate-machines-windows-defender-advanced-threat-protection.md @@ -21,12 +21,12 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) -The **Machines view** shows a list of the machines in your network, the corresponding number of active alerts for each machine categorized by alert severity levels, and the number of active malware detections. This view allows you to identify machines with the highest risk at a glance, and keep track of all the machines that are reporting sensor data in your network. +The **Machines view** shows a list of the machines in your network, the corresponding number of active alerts for each machine categorized by alert severity levels, and the number of active malware detections. This view allows you to identify machines with the highest risk at a glance, and keep track of all the machines that are reporting telemetry in your network. Use the Machines view in these two main scenarios: - **During onboarding** - - During the onboarding process, the Machines view gradually gets populated with endpoints as they begin to report sensor data. Use this view to track your onboarded endpoints as they appear. Use the available features to sort and filer to see which endpoints have most recently reported sensor data, or download the complete endpoint list as a CSV file for offline analysis. + - During the onboarding process, the Machines view gradually gets populated with endpoints as they begin to report telemetry. Use this view to track your onboarded endpoints as they appear. Use the available features to sort and filer to see which endpoints have most recently reported telemetry, or download the complete endpoint list as a CSV file for offline analysis. - **Day-to-day work** - The **Machines view** enables you to identify machines that are most at risk in a glance. High-risk machines are those with the greatest number and highest-severity alerts. By sorting the machines by risk, you'll be able to identify the most vulnerable machines and take action on them. @@ -34,7 +34,7 @@ The Machines view contains the following columns: - **Machine name** - the name or GUID of the machine - **Domain** - the domain the machine belongs to -- **Last seen** - when the machine last reported sensor data +- **Last seen** - when the machine last reported telemetry - **Internal IP** - the local internal Internet Protocol (IP) address of the machine - **Active Alerts** - the number of alerts reported by the machine by severity - **Active malware detections** - the number of active malware detections reported by the machine @@ -59,7 +59,7 @@ You can filter the view by the following time periods: - 6 months > [!NOTE] -> When you select a time period, the list will only display machines that reported within the selected time period. For example, selecting 1 day will only display a list of machines that reported sensor data within the last 24-hour period. +> When you select a time period, the list will only display machines that reported within the selected time period. For example, selecting 1 day will only display a list of machines that reported telemetry within the last 24-hour period. The threat category filter lets you filter the view by the following categories: @@ -94,7 +94,7 @@ When you investigate a specific machine, you'll see: - **Alerts related to this machine** - **Machine timeline** -The machine details, IP, and reporting sections display some attributes of the machine such as its name, domain, OS, IP address, and how long it's been reporting sensor data to the Windows Defender ATP service. +The machine details, IP, and reporting sections display some attributes of the machine such as its name, domain, OS, IP address, and how long it's been reporting telemetry to the Windows Defender ATP service. The **Alerts related to this machine** section provides a list of alerts that are associated with the machine. This list is a simplified version of the [Alerts queue](alerts-queue-windows-defender-advanced-threat-protection.md), and shows the date that the alert was detected, a short description of the alert, the alert's severity, the alert's threat category, and the alert's status in the queue. diff --git a/windows/keep-secure/limitations-with-wip.md b/windows/keep-secure/limitations-with-wip.md index 39aaeb8dc5..dc2429d6b3 100644 --- a/windows/keep-secure/limitations-with-wip.md +++ b/windows/keep-secure/limitations-with-wip.md @@ -25,8 +25,8 @@ This table provides info about the most common problems you might encounter whil - - + + @@ -67,7 +67,7 @@ This table provides info about the most common problems you might encounter whil - + @@ -79,7 +79,4 @@ This table provides info about the most common problems you might encounter whil -
    Workaround
    Your enterprise data on USB drives might be tied to the device it was protected on, based on your Azure RMS configuration.If you’re using Azure RMS: Authenticated users can open enterprise data on USB drives, on computers running the latest build from the Windows Insider Program.

    If you’re not using Azure RMS: Data in the new location remains encrypted, but becomes inaccessible on other devices and for other users. For example, the file won't open or the file opens, but doesn't contain readable text.

    Enterprise data on USB drives is tied to the device it was protected on.Data in the new location remains encrypted, but becomes inaccessible on other devices and for other users. For example, the file won't open or the file opens, but doesn't contain readable text. Share files with fellow employees through enterprise file servers or enterprise cloud locations. If data must be shared via USB, employees can decrypt protected files, but it will be audited.

    We strongly recommend educating employees about how to limit or eliminate the need for this decryption.

    Redirected folders with Client Side Caching are not compatible with WIP. Apps might encounter access errors while attempting to read a cached, offline file.Migrate to use another file synchronization method, such as Work Folders or OneDrive for Business.

    Note
    For more info about Work Folders and Offline Files, see the blog, [Work Folders and Offline Files support for Windows Information Protection](https://blogs.technet.microsoft.com/filecab/2016/08/29/work-folders-and-offline-files-support-for-windows-information-protection/). If you're having trouble opening files offline while using Offline Files and WIP, see the support article, [Can't open files offline when you use Offline Files and Windows Information Protection](https://support.microsoft.com/en-us/kb/3187045).

    Migrate to use another file synchronization method, such as Work Folders or OneDrive for Business.
    You can't upload an enterprise file to a personal location using Microsoft Edge or Internet Explorer.Webpages that use ActiveX controls can potentially communicate with other outside processes that aren’t protected by using WIP. We recommend that you switch to using Microsoft Edge, the more secure and safer browser that prevents the use of ActiveX controls. We also recommend that you limit the usage of Internet Explorer 11 to only those line-of-business apps that require legacy technology.

    For more info, see [Out-of-date ActiveX control blocking](https://technet.microsoft.com/en-us/itpro/internet-explorer/ie11-deploy-guide/out-of-date-activex-control-blocking).

    - ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). + diff --git a/windows/keep-secure/maintain-applocker-policies.md b/windows/keep-secure/maintain-applocker-policies.md index 69cf6d1483..43bd39884e 100644 --- a/windows/keep-secure/maintain-applocker-policies.md +++ b/windows/keep-secure/maintain-applocker-policies.md @@ -47,7 +47,7 @@ Before modifying a policy, evaluate how the policy is currently implemented. For ### Step 2: Export the AppLocker policy from the GPO -Updating an AppLocker policy that is currently enforced in your production environment can have unintended results. Therefore, export the policy from the GPO and update the rule or rules by using AppLocker on your AppLocker reference or test computer. To prepare an AppLocker policy for modification, see [Export an AppLocker policy from a GPO](export-an-applocker-policy-from-a-gpo.md). +Updating an AppLocker policy that is currently enforced in your production environment can have unintended results. Therefore, export the policy from the GPO and update the rule or rules by using AppLocker on your AppLocker reference or test computer. To prepare an AppLocker policy for modification, see [Export an AppLocker policy from a GPO](export-an-applocker-policy-from-a-gpo.md) ### Step 3: Update the AppLocker policy by editing the appropriate AppLocker rule diff --git a/windows/keep-secure/manage-identity-verification-using-microsoft-passport.md b/windows/keep-secure/manage-identity-verification-using-microsoft-passport.md index 18f8399a2b..d91d7bbb04 100644 --- a/windows/keep-secure/manage-identity-verification-using-microsoft-passport.md +++ b/windows/keep-secure/manage-identity-verification-using-microsoft-passport.md @@ -93,7 +93,7 @@ When identity providers such as Active Directory or Azure AD enroll a certificat [Introduction to Windows Hello](https://go.microsoft.com/fwlink/p/?LinkId=786649), video presentation on Microsoft Virtual Academy -[What's new in Active Directory Domain Services for Windows Server 2016](https://go.microsoft.com/fwlink/p/?LinkId=708533) +[What's new in Active Directory Domain Services (AD DS) in Windows Server Technical Preview](https://go.microsoft.com/fwlink/p/?LinkId=708533) [Windows Hello face authentication](https://go.microsoft.com/fwlink/p/?LinkId=626024) diff --git a/windows/keep-secure/manage-tpm-commands.md b/windows/keep-secure/manage-tpm-commands.md index 71f3c2229e..c4b6611da4 100644 --- a/windows/keep-secure/manage-tpm-commands.md +++ b/windows/keep-secure/manage-tpm-commands.md @@ -13,54 +13,44 @@ author: brianlic-msft **Applies to** - Windows 10 -- Windows Server 2016 This topic for the IT professional describes how to manage which Trusted Platform Module (TPM) commands are available to domain users and to local users. +## + After a computer user takes ownership of the TPM, the TPM owner can limit which TPM commands can be run by creating a list of blocked TPM commands. The list can be created and applied to all computers in a domain by using Group Policy, or a list can be created for individual computers by using the TPM MMC. Because some hardware vendors might provide additional commands or the Trusted Computing Group may decide to add commands in the future, the TPM MMC also supports the ability to block new commands. -Domain administrators can configure a list of blocked TPM commands by using Group Policy. Local administrators cannot allow TPM commands that are blocked through Group Policy. For more information about this Group Policy setting, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#configure-the-list-of-blocked-tpm-commands). +Domain administrators can configure a list of blocked TPM commands by using Group Policy. Local administrators cannot allow TPM commands that are blocked through Group Policy. For more information about this Group Policy setting, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#bkmk-tpmgp-clbtc). Local administrators can block commands by using the TPM MMC, and commands on the default block list are also blocked unless the Group Policy settings are changed from the default settings. -Two policy settings control the enforcement which allows TPM commands to run. For more information about these policy settings, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#ignore-the-default-list-of-blocked-tpm-commands). +Two policy settings control the enforcement which allows TPM commands to run. For more information about these policy settings, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#bkmk-tpmgp-idlb). The following procedures describe how to manage the TPM command lists. You must be a member of the local Administrators group. **To block TPM commands by using the Local Group Policy Editor** 1. Open the Local Group Policy Editor (gpedit.msc). If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. - - > [!NOTE] - > Administrators with appropriate rights in a domain can configure a Group Policy Object (GPO) that can be applied through Active Directory Domain Services (AD DS). - + + >**Note:**  Administrators with appropriate rights in a domain can configure a Group Policy Object (GPO) that can be applied through Active Directory Domain Services (AD DS). +   2. In the console tree, under **Computer Configuration**, expand **Administrative Templates**, and then expand **System**. - 3. Under **System**, click **Trusted Platform Module Services**. - 4. In the details pane, double-click **Configure the list of blocked TPM commands**. - 5. Click **Enabled**, and then click **Show**. - 6. For each command that you want to block, click **Add**, enter the command number, and then click **OK**. - - > [!NOTE] - > For a list of commands, see links in the [TPM Specification](https://www.trustedcomputinggroup.org/tpm-main-specification/). - + + >**Note:**  For a list of commands, see the [Trusted Platform Module (TPM) Specifications](https://go.microsoft.com/fwlink/p/?linkid=139770). +   7. After you have added numbers for each command that you want to block, click **OK** twice. - 8. Close the Local Group Policy Editor. **To block or allow TPM commands by using the TPM MMC** 1. Open the TPM MMC (tpm.msc) - 2. If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. - 3. In the console tree, click **Command Management**. A list of TPM commands is displayed. - 4. In the list, select a command that you want to block or allow. - 5. Under **Actions**, click **Block Selected Command** or **Allow Selected Command** as needed. If **Allow Selected Command** is unavailable, that command is currently blocked by Group Policy. **To block new commands** @@ -70,19 +60,17 @@ The following procedures describe how to manage the TPM command lists. You must If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. 2. In the console tree, click **Command Management**. A list of TPM commands is displayed. - 3. In the **Action** pane, click **Block New Command**. The **Block New Command** dialog box is displayed. - 4. In the **Command Number** text box, type the number of the new command that you want to block, and then click **OK**. The command number you entered is added to the blocked list. -## Use the TPM cmdlets +## Use the TPM cmdlets If you are using Windows PowerShell to manage your computers, you can also manage the TPM by using Windows PowerShell. To install the TPM cmdlets, type the following command: `dism /online /enable-feature /FeatureName:tpm-psh-cmdlets` -For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). +For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -## Related topics +## Additional resources -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) +For more info about TPM, see [Trusted Platform Module technology overview](trusted-platform-module-overview.md#bkmk-additionalresources). diff --git a/windows/keep-secure/manage-tpm-lockout.md b/windows/keep-secure/manage-tpm-lockout.md index 3f5e966157..f59a117ee3 100644 --- a/windows/keep-secure/manage-tpm-lockout.md +++ b/windows/keep-secure/manage-tpm-lockout.md @@ -12,11 +12,10 @@ author: brianlic-msft **Applies to** - Windows 10 -- Windows Server 2016 This topic for the IT professional describes how to manage the lockout feature for the Trusted Platform Module (TPM) in Windows. -## About TPM lockout +## About TPM lockout The TPM will lock itself to prevent tampering or malicious attacks. TPM lockout often lasts for a variable amount of time or until the computer is turned off. While the TPM is in lockout mode, it generally returns an error message when it receives commands that require an authorization value. One exception is that the TPM always allows the owner at least one attempt to reset the TPM lockout when it is in lockout mode. @@ -25,58 +24,49 @@ TPM ownership is taken upon first boot by Windows. By default, Windows does not In some cases, encryption keys are protected by a TPM by requiring a valid authorization value to access the key. A common example is configuring BitLocker Drive Encryption to use the TPM plus PIN key protector. In this scenario, the user must type the correct PIN during the boot process to access the volume encryption key protected by the TPM. To prevent malicious users or software from discovering authorization values, TPMs implement protection logic. The protection logic is designed to slow or stop responses from the TPM if it detects that an entity might be trying to guess authorization values. **TPM 1.2** - The industry standards from the Trusted Computing Group (TCG) specify that TPM manufacturers must implement some form of protection logic in TPM 1.2 and TPM 2.0 chips. TPM 1.2 devices implement different protection mechanisms and behavior. In general, the TPM chip takes exponentially longer to respond if incorrect authorization values are sent to the TPM. Some TPM chips may not store failed attempts over time. Other TPM chips may store every failed attempt indefinitely. Therefore, some users may experience increasingly longer delays when they mistype an authorization value that is sent to the TPM. This can prevent them from using the TPM for a period of time. **TPM 2.0** + TPM 2.0 devices have standardized lockout behavior which is configured by Windows. TPM 2.0 devices have a maximum count threshold and a healing time. Windows configures the maximum count to be 32 and the healing time to be 2 hours. This means that every continuous two hours of powered on operation without an event which increases the counter will cause the counter to decrease by 1. -TPM 2.0 devices have standardized lockout behavior which is configured by Windows. TPM 2.0 devices have a maximum count threshold and a healing time. Windows configures the maximum count to be 32 and the healing time to be 2 hours. This means that every continuous two hours of powered on operation without an event which increases the counter will cause the counter to decrease by 1. - -If your TPM has entered lockout mode or is responding slowly to commands, you can reset the lockout value by using the following procedures. Resetting the TPM lockout requires the TPM owner’s authorization. This value is no longer retained by default starting with Windows 10 version 1607. +If your TPM has entered lockout mode or is responding slowly to commands, you can reset the lockout value by using the following procedures. Resetting the TPM lockout requires the TPM owner’s authorization. This value is no longer retained by default starting with Windows 10 version 1607. ## Reset the TPM lockout by using the TPM MMC +**Note:** This procedure is only available if you have configured Windows to retain the TPM Owner Password. By default, this password is not available in Windows 10 starting with version 1607. -> [!NOTE] -> This procedure is only available if you have configured Windows to retain the TPM Owner Password. By default, this password is not available in Windows 10 starting with version 1607. - -The following procedure explains the steps to reset the TPM lockout by using the TPM MMC. +The following procedure explains the steps to reset the TPM lockout by using the TPM MMC. **To reset the TPM lockout** 1. Open the TPM MMC (tpm.msc). - 2. In the **Action** pane, click **Reset TPM Lockout** to start the Reset TPM Lockout Wizard. - 3. Choose one of the following methods to enter the TPM owner password: + - If you saved your TPM owner password to a .tpm file, click **I have the owner password file**, and then type the path to the file, or click **Browse** to navigate to the file location. + - If you want to manually enter your TPM owner password, click **I want to enter the owner password**, and then type the password in the text box provided. - - If you saved your TPM owner password to a .tpm file, click **I have the owner password file**, and then type the path to the file, or click **Browse** to navigate to the file location. - - - If you want to manually enter your TPM owner password, click **I want to enter the owner password**, and then type the password in the text box provided. - - > [!NOTE] - > If you enabled BitLocker and your TPM at the same time, and you printed your BitLocker recovery password when you turned on BitLocker, your TPM owner password may have printed with it. - + >**Note:**  If you enabled BitLocker and your TPM at the same time, and you printed your BitLocker recovery password when you turned on BitLocker, your TPM owner password may have printed with it. +   ## Use Group Policy to manage TPM lockout settings The TPM Group Policy settings in the following list are located at: **Computer Configuration\\Administrative Templates\\System\\Trusted Platform Module Services\\** -- [Standard User Lockout Duration](trusted-platform-module-services-group-policy-settings.md#standard-user-lockout-duration) +- [Standard User Lockout Duration](trusted-platform-module-services-group-policy-settings.md#bkmk-individual) This policy setting allows you to manage the duration in minutes for counting standard user authorization failures for TPM commands that require authorization. An authorization failure occurs each time a user sends a command to the TPM and receives an error message that indicates an authorization failure occurred. Authorization failures that are older than the duration you set are ignored. If the number of TPM commands with an authorization failure within the lockout duration equals a threshold, the user is prevented from sending commands to the TPM that require authorization. -- [Standard User Individual Lockout Threshold](trusted-platform-module-services-group-policy-settings.md#standard-user-individual-lockout-threshold) +- [Standard User Individual Lockout Threshold](trusted-platform-module-services-group-policy-settings.md#bkmk-tpmgp-suld) This policy setting allows you to manage the maximum number of authorization failures for the TPM for each user. This value is the maximum number of authorization failures that each user can have before the user is not allowed to send commands to the TPM that require authorization. If the number of authorization failures equals the duration that is set for the policy setting, the user is prevented from sending commands to the TPM that require authorization. -- [Standard User Total Lockout Threshold](trusted-platform-module-services-group-policy-settings.md#standard-user-total-lockout-threshold) - +- [Standard User Total Lockout Threshold](trusted-platform-module-services-group-policy-settings.md#bkmk-total) + This policy setting allows you to manage the maximum number of authorization failures for the TPM for all standard users. If the total number of authorization failures for all users equals the duration that is set for the policy, all users are prevented from sending commands to the TPM that require authorization. -For information about mitigating dictionary attacks that use the lockout settings, see [TPM fundamentals](tpm-fundamentals.md#how-the-tpm-mitigates-dictionary-attacks). +For information about mitigating dictionary attacks that use the lockout settings, see [TPM fundamentals](tpm-fundamentals.md#bkmk-howtpmmitigates). -## Use the TPM cmdlets +## Use the TPM cmdlets If you are using Windows PowerShell to manage your computers, you can also manage the TPM by using Windows PowerShell. To install the TPM cmdlets, type the following command: @@ -84,6 +74,6 @@ If you are using Windows PowerShell to manage your computers, you can also manag For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). -## Related topics +## Additional resources -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) +For more info about TPM, see [TPM technology overview](trusted-platform-module-overview.md#bkmk-additionalresources). diff --git a/windows/keep-secure/mandatory-settings-for-wip.md b/windows/keep-secure/mandatory-settings-for-wip.md index 1c7ea0a9ff..0e1345c2ae 100644 --- a/windows/keep-secure/mandatory-settings-for-wip.md +++ b/windows/keep-secure/mandatory-settings-for-wip.md @@ -17,8 +17,8 @@ localizationpriority: high This list provides all of the tasks and settings that are required for the operating system to turn on Windows Information Protection (WIP), formerly known as enterprise data protection (EDP), in your enterprise. ->[!IMPORTANT] ->All sections provided for more info appear in either the [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) or [Create a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md), based on the tool you're using in your enterprise. +>**Important**
    +All sections provided for more info appear in either the [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) or [Create a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md), based on the tool you're using in your enterprise. |Task |Description | @@ -28,7 +28,4 @@ This list provides all of the tasks and settings that are required for the opera |Specify your corporate identity. |You must specify your corporate identity, usually expressed as your primary Internet domain (for example, contoso.com). For more info about where this area is and what it means, see the **Define your enterprise-managed corporate identity** section of the policy creation topics. | |Specify your Enterprise Network Domain Names. |You must specify the DNS suffixes used in your environment. All traffic to the fully-qualified domains appearing in this list will be protected. For more info about where this area is and how to add your suffixes, see the table that appears in the **Choose where apps can access enterprise data** section of the policy creation topics. | |Specify your Enterprise IPv4 or IPv6 Ranges. |Specify the addresses for a valid IPv4 or IPv6 value range within your intranet. These addresses, used with your Enterprise Network Domain Names, define your corporate network boundaries. For more info about where this area is and what it means, see the table that appears in the **Define your enterprise-managed corporate identity** section of the policy creation topics. | -|Include your Data Recovery Agent (DRA) certificate. |This certificate makes sure that any of your WIP-encrypted data can be decrypted, even if the security keys are lost. For more info about where this area is and what it means, see the **Create and verify an Encrypting File System (EFS) DRA certificate** section of the policy creation topics. | - ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). \ No newline at end of file +|Include your Data Recovery Agent (DRA) certificate. |This certificate makes sure that any of your WIP-encrypted data can be decrypted, even if the security keys are lost. For more info about where this area is and what it means, see the **Create and verify an Encrypting File System (EFS) DRA certificate** section of the policy creation topics. | \ No newline at end of file diff --git a/windows/keep-secure/minimum-requirements-windows-defender-advanced-threat-protection.md b/windows/keep-secure/minimum-requirements-windows-defender-advanced-threat-protection.md index 55a3242e78..0fd2edc0d3 100644 --- a/windows/keep-secure/minimum-requirements-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/minimum-requirements-windows-defender-advanced-threat-protection.md @@ -61,7 +61,7 @@ Before you configure endpoints, the telemetry and diagnostics service must be en ### Telemetry and diagnostics settings You must ensure that the telemetry and diagnostics service is enabled on all the endpoints in your organization. -By default, this service is enabled, but it's good practice to check to ensure that you'll get sensor data from them. +By default, this service is enabled, but it's good practice to check to ensure that you'll get telemetry from them. **Use the command line to check the Windows 10 telemetry and diagnostics service startup type**: @@ -113,4 +113,4 @@ When Windows Defender is not the active antimalware in your organization and you ## Windows Defender Early Launch Antimalware (ELAM) driver is enabled If you're running Windows Defender as the primary antimalware product on your endpoints, the Windows Defender ATP agent will successfully onboard. -If you're running a third-party antimalware client and use Mobile Device Management solutions or System Center Configuration Manager (current branch) version 1606, you'll need to ensure that the Windows Defender ELAM driver is enabled. For more information, see [Ensure that Windows Defender is not disabled by policy](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md#ensure-that-windows-defender-is-not-disabled-by-a-policy). +If you're running a third-party antimalware client and use Mobile Device Management solutions or System Center Configuration Manager (current branch) version 1606, you'll need to ensure that the Windows Defender ELAM driver is enabled. For more information on how to validate and enable the Windows Defender ELAM driver see, [Ensure the Windows Defender ELAM driver is enabled](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md#ensure-the-windows-defender-elam-driver-is-enabled). diff --git a/windows/keep-secure/onboard-configure-windows-defender-advanced-threat-protection.md b/windows/keep-secure/onboard-configure-windows-defender-advanced-threat-protection.md index 2a7a40abd6..9205bb0153 100644 --- a/windows/keep-secure/onboard-configure-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/onboard-configure-windows-defender-advanced-threat-protection.md @@ -23,7 +23,6 @@ localizationpriority: high You need to onboard to Windows Defender ATP before you can use the service. -For more information, see [Onboard your Windows 10 endpoints to Windows Defender ATP](https://www.youtube.com/watch?v=JT7VGYfeRlA&feature=youtu.be). ## In this section Topic | Description diff --git a/windows/keep-secure/overview-create-wip-policy.md b/windows/keep-secure/overview-create-wip-policy.md index c3ad6bf5a3..f0ae686b47 100644 --- a/windows/keep-secure/overview-create-wip-policy.md +++ b/windows/keep-secure/overview-create-wip-policy.md @@ -23,8 +23,4 @@ Microsoft Intune and System Center Configuration Manager helps you create and de |------|------------| |[Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) |Intune helps you create and deploy your WIP policy, including letting you choose your protected apps, your WIP-protection level, and how to find enterprise data on the network. | |[Create and deploy a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) |System Center Configuration Manager helps you create and deploy your WIP policy, including letting you choose your protected apps, your WIP-protection level, and how to find enterprise data on the network. | -|[Create and verify an Encrypting File System (EFS) Data Recovery Agent (DRA) certificate](create-and-verify-an-efs-dra-certificate.md) |Steps to create, verify, and perform a quick recovery using a Encrypting File System (EFS) Data Recovery Agent (DRA) certificate. | -|[Determine the Enterprise Context of an app running in Windows Information Protection (WIP)](wip-app-enterprise-context.md) |Use the Task Manager to determine whether an app is considered work, personal or exempt by Windows Information Protection (WIP). | - ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). \ No newline at end of file +|[Create and verify an Encrypting File System (EFS) Data Recovery Agent (DRA) certificate](create-and-verify-an-efs-dra-certificate.md) |Steps to create, verify, and perform a quick recovery using a Encrypting File System (EFS) Data Recovery Agent (DRA) certificate. | \ No newline at end of file diff --git a/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies.md b/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies.md index cf75c935f9..31c04c1c61 100644 --- a/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies.md +++ b/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies.md @@ -48,13 +48,13 @@ BitLocker helps prevent unauthorized access to data on lost or stolen computers - Encrypting the entire Windows operating system volume on the hard disk. - Verifying the boot process integrity. -The trusted platform module (TPM) is a hardware component installed in many newer computers by the computer manufacturers. It works with BitLocker to help protect user data and to ensure that a computer has not been tampered with while the system was offline. +The trusted platform module (TPM)is a hardware component installed in many newer computers by the computer manufacturers. It works with BitLocker to help protect user data and to ensure that a computer has not been tampered with while the system was offline. In addition, BitLocker offers the option to lock the normal startup process until the user supplies a personal identification number (PIN) or inserts a removable USB device, such as a flash drive, that contains a startup key. These additional security measures provide multifactor authentication and assurance that the computer will not start or resume from hibernation until the correct PIN or startup key is presented. On computers that do not have a TPM version 1.2 or higher, you can still use BitLocker to encrypt the Windows operating system volume. However, this implementation will require the user to insert a USB startup key to start the computer or resume from hibernation, and does not provide the pre-startup system integrity verification offered by BitLocker working with a TPM. -### BitLocker key protectors +**BitLocker key protectors** | Key protector | Description | | - | - | @@ -65,7 +65,7 @@ On computers that do not have a TPM version 1.2 or higher, you can still use Bi | Recovery password | A 48-digit number used to unlock a volume when it is in recovery mode. Numbers can often be typed on a regular keyboard, if the numbers on the normal keyboard are not responding you can always use the function keys (F1-F10) to input the numbers.| | Recovery key| An encryption key stored on removable media that can be used for recovering data encrypted on a BitLocker volume.|   -### BitLocker authentication methods +**BitLocker authentication methods** | Authentication method | Requires user interaction | Description | | - | - | - | @@ -97,9 +97,22 @@ The protection differences provided by multifactor authentication methods cannot In your deployment plan, identify what TPM-based hardware platforms will be supported. Document the hardware models from an OEM of your choice, so that their configurations can be tested and supported. TPM hardware requires special consideration during all aspects of planning and deployment. -### TPM 1.2 states and initialization +### TPM states of existence -For TPM 1.2, there are multiple possible states. Windows 10 automatically initializes the TPM, which brings it to an enabled, activated, and owned state. This is the state that BitLocker requires before it can use the TPM. +For each of the TPM states of existence, the TPM can transition into another state (for example, moving from disabled to enabled). The states are not exclusive. + +| State | Description | +| - | - | +| Enabled| Most features of the TPM are available.
    The TPM may be enabled and disabled multiple times within a boot period, if ownership is taken.| +| Disabled | The TPM restricts most operations. Exceptions include the ability to report TPM capabilities, extend and reset Platform Configuration Register (PCR) functions, and to perform hashing and basic initialization.
    The TPM may be enabled and disabled multiple times within a boot period.| +| Activated| Most features of the TPM are available. The TPM may be activated and deactivated only through physical presence which requires a reboot.| +| Deactivated| Similar to disabled, with the exception that ownership can be taken while deactivated and enabled. The TPM may be activated and deactivated only through physical presence which requires a reboot.| +| Owned| Most features of the TPM are available. The TPM has an endorsement key and storage root key, and the owner knows information about owner authorization data.| +| Un-owned| The TPM does not have a storage root key and may or may not have an endorsement key.| +  +>**Important:**  BitLocker cannot use the TPM until it is in the following state: enabled, activated, and owned. When the TPM is in this state and only when it is in this state, all operations are available. +  +The state of the TPM exists independent of the computer’s operating system. Once the TPM is enabled, activated, and owned, the state of the TPM is preserved if the operating system is reinstalled. ### Endorsement keys diff --git a/windows/keep-secure/protect-enterprise-data-using-wip.md b/windows/keep-secure/protect-enterprise-data-using-wip.md index a37553eb2c..dc661d0dbd 100644 --- a/windows/keep-secure/protect-enterprise-data-using-wip.md +++ b/windows/keep-secure/protect-enterprise-data-using-wip.md @@ -93,8 +93,7 @@ WIP gives you a new way to manage data policy enforcement for apps and documents - **Helping prevent accidental data disclosure to removable media.** WIP helps prevent enterprise data from leaking when it's copied or transferred to removable media. For example, if an employee puts enterprise data on a Universal Serial Bus (USB) drive that also has personal data, the enterprise data remains encrypted while the personal data doesn’t. - **Remove access to enterprise data from enterprise-protected devices.** WIP gives admins the ability to revoke enterprise data from one or many MDM-enrolled devices, while leaving personal data alone. This is a benefit when an employee leaves your company, or in the case of a stolen device. After determining that the data access needs to be removed, you can use Microsoft Intune to unenroll the device so when it connects to the network, the user's encryption key for the device is revoked and the enterprise data becomes unreadable. - >[!NOTE] - >For management of Surface devices it is recommended that you use the Current Branch of System Center Configuration Manager.
    System Center Configuration Manager also allows you to revoke enterprise data. However, it does it by performing a factory reset of the device. + > **Note**
    System Center Configuration Manager also allows you to revoke enterprise data. However, it does it by performing a factory reset of the device. ## How WIP works WIP helps address your everyday challenges in the enterprise. Including: @@ -138,7 +137,3 @@ You can turn off all Windows Information Protection and restrictions, decrypting After deciding to use WIP in your enterprise, you need to: - [Create a Windows Information Protection (WIP) policy](overview-create-wip-policy.md) - - ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). diff --git a/windows/keep-secure/protect-high-value-assets-by-controlling-the-health-of-windows-10-based-devices.md b/windows/keep-secure/protect-high-value-assets-by-controlling-the-health-of-windows-10-based-devices.md index ac0409286d..b2d8f3634a 100644 --- a/windows/keep-secure/protect-high-value-assets-by-controlling-the-health-of-windows-10-based-devices.md +++ b/windows/keep-secure/protect-high-value-assets-by-controlling-the-health-of-windows-10-based-devices.md @@ -364,7 +364,7 @@ The following table details the hardware requirements for both virtualization-ba

    Support for the IOMMU in Windows 10 enhances system resiliency against DMA attacks.

    -

    Trusted Platform Module (TPM)

    +

    Trusted Platform Module (TPM) 2.0

    Required to support health attestation and necessary for additional key protections for virtualization-based security.

    @@ -455,7 +455,7 @@ The device health attestation solution involves different components that are TP ### Trusted Platform Module -This section describes how PCRs (that contain system configuration data), endorsement key (EK) (that act as an identity card for TPM), SRK (that protect keys) and AIKs (that can report platform state) are used for health attestation reporting. +*It’s all about TPM 2.0 and endorsement certificates.* This section describes how PCRs (that contain system configuration data), endorsement key (EK) (that act as an identity card for TPM), SRK (that protect keys) and AIKs (that can report platform state) are used for health attestation reporting. In a simplified manner, the TPM is a passive component with limited resources. It can calculate random numbers, RSA keys, decrypt short data, store hashes taken when booting the device. diff --git a/windows/keep-secure/protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md b/windows/keep-secure/protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md index f1f62943e3..aaf71600b1 100644 --- a/windows/keep-secure/protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md +++ b/windows/keep-secure/protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md @@ -33,7 +33,8 @@ Windows PowerShell or the manage-bde command line interface is the preferred met >**Note:**  Mount points can be used to support remote mount points on SMB based network shares. This type of share is not supported for BitLocker encryption.   -For thinly provisioned storage, such as a Dynamic Virtual Hard Disk (VHD), BitLocker runs in Used Disk Space Only encryption mode. You cannot use the **manage-bde -WipeFreeSpace** command to transition the volume to full-volume encryption on these types of volumes. This is blocked in order to avoid expanding thinly provisioned volumes to occupy the entire backing store while wiping the unoccupied (free) space. +For thinly provisioned storage, such as a Dynamic Virtual Hard Disk (VHD), BitLocker runs in Used Disk Space Only encryption mode. You cannot use the **manage-bde –WipeFreeSpace** command to transition the volume to full-volume encryption on these types of volumes. This occurs because Full +Encryption requires an end marker for the volume and dynamically expanding VHDs do not have a static end of volume marker. ### Active Directory-based protector @@ -56,22 +57,28 @@ BitLocker encryption is available for disks before or after addition to a cluste 1. Install the BitLocker Drive Encryption feature if it is not already installed. 2. Ensure the disk is formatted NTFS and has a drive letter assigned to it. -3. Identify the name of the cluster with Windows PowerShell. +3. Enable BitLocker on the volume using your choice of protector. A password protector is used in the Windows PowerShell script example below. + + ``` syntax + Enable-BitLocker E: -PasswordProtector -Password $pw + ``` + +4. Identify the name of the cluster with Windows PowerShell. ``` syntax Get-Cluster ``` -4. Enable BitLocker on the volume of your choice with an **ADAccountOrGroup** protector, using the cluster name. For example, use a command such as: +5. Add an **ADAccountOrGroup**protector to the volume using the cluster name using a command such as: ``` syntax - Enable-BitLocker E: -ADAccountOrGroupProtector -ADAccountOrGroup CLUSTER$ + Add-BitLockerProtector E: -ADAccountOrGroupProtector -ADAccountOrGroup CLUSTER$ ``` - >**Warning:**  You must configure an **ADAccountOrGroup** protector using the cluster CNO for a BitLocker enabled volume to either be shared in a Cluster Shared Volume or to fail over properly in a traditional failover cluster. + >**Warning:**  You must add an **ADAccountOrGroup** protector using the cluster CNO for a BitLocker enabled volume to either be shared in a Cluster Shared Volume or to failover properly in a traditional failover cluster.   -5. Repeat the preceding steps for each disk in the cluster. -6. Add the volume(s) to the cluster. +6. Repeat steps 1-6 for each disk in the cluster. +7. Add the volume(s) to the cluster. ### Turning on BitLocker for a clustered disk using Windows PowerShell @@ -90,26 +97,28 @@ When the cluster service owns a disk resource already, it needs to be set into m Get-ClusterResource "Cluster Disk 1" | Suspend-ClusterResource ``` -4. Identify the name of the cluster with Windows PowerShell. +4. Enable BitLocker on the volume using your choice of protector. A password protector is used in the example below. + + ``` syntax + Enable-BitLocker E: -PasswordProtector -Password $pw + ``` + +5. Identify the name of the cluster with Windows PowerShell ``` syntax Get-Cluster ``` -5. Enable BitLocker on the volume of your choice with an **ADAccountOrGroup** protector, using the cluster name. For example, use a command such as: +6. Add an **ADAccountOrGroup** protector with the Cluster Name Object (CNO) to the volume using a command such as: ``` syntax - Enable-BitLocker E: -ADAccountOrGroupProtector -ADAccountOrGroup CLUSTER$ + Add-BitLockerProtector E: -ADAccountOrGroupProtector -ADAccountOrGroup CLUSTER$ + ``` - >**Warning:**  You must configure an **ADAccountOrGroup** protector using the cluster CNO for a BitLocker enabled volume to either be shared in a Cluster Shared Volume or to fail over properly in a traditional failover cluster. + >**Warning:**  You must add an **ADAccountOrGroup** protector using the cluster CNO for a BitLocker enabled volume to either be shared in a Cluster Shared Volume or to failover properly in a traditional failover cluster.   -6. Use **Resume-ClusterResource** to take the physical disk resource back out of maintenance mode: - - ``` syntax - Get-ClusterResource "Cluster Disk 1" | Resume-ClusterResource - ``` - -7. Repeat the preceding steps for each disk in the cluster. +7. Repeat steps 1-6 for each disk in the cluster. +8. Add the volume(s) to the cluster ### Adding BitLocker encrypted volumes to a cluster using manage-bde diff --git a/windows/keep-secure/recommended-network-definitions-for-wip.md b/windows/keep-secure/recommended-network-definitions-for-wip.md deleted file mode 100644 index bf9a7ac22a..0000000000 --- a/windows/keep-secure/recommended-network-definitions-for-wip.md +++ /dev/null @@ -1,39 +0,0 @@ ---- -title: Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP) (Windows 10) -description: Recommended URLs to add to your Enterprise Cloud Resources and Neutral Resources network settings, when used with Windows Information Protection (WIP). -keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and Neutral Resources, WIP and Enterprise Cloud Resources -ms.prod: w10 -ms.mktglfcycl: explore -ms.sitesec: library -ms.pagetype: security -localizationpriority: high ---- - -# Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP) - -**Applies to:** - -- Windows 10, version 1607 -- Windows 10 Mobile - ->Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). - -We recommend that you add the following URLs to the Enterprise Cloud Resources and Neutral Resources network settings, when used with Windows Information Protection (WIP). - -## Recommended Enterprise Cloud Resources -This table includes the recommended URLs to add to your Enterprise Cloud Resources network setting, based on the apps you use in your organization. - -|If your organization uses... |Add these entries to your Enterprise Cloud Resources network setting
    (Replace "contoso" with your domain name(s) | -|-----------------------------|---------------------------------------------------------------------| -|Office 365 for Business |
    • contoso.sharepoint.com
    • contoso-my.sharepoint.com
    • contoso-files.sharepoint.com
    • tasks.office.com
    • protection.office.com
    • meet.lync.com
    • teams.microsoft.com
    | -|Yammer |
    • www.yammer.com
    • yammer.com
    • persona.yammer.com
    | -|Microsoft Dynamics |contoso.crm.dynamics.com | -|Visual Studio Online |contoso.visualstudio.com | -|Power BI |contoso.powerbi.com | - -## Recommended Neutral Resources -We recommended adding these URLs if you use the Neutral Resources network setting with Windows Information Protection (WIP). -
      -
    • login.microsoftonline.com
    • -
    • login.windows.net
    • -
    \ No newline at end of file diff --git a/windows/keep-secure/remove-computer-from-docking-station.md b/windows/keep-secure/remove-computer-from-docking-station.md index 1823951ae4..ee3b81a7d3 100644 --- a/windows/keep-secure/remove-computer-from-docking-station.md +++ b/windows/keep-secure/remove-computer-from-docking-station.md @@ -1,5 +1,5 @@ --- -title: Remove computer from docking station - security policy setting (Windows 10) +title: Remove computer from docking station (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Remove computer from docking station security policy setting. ms.assetid: 229a385a-a862-4973-899a-413b1b5b6c30 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Remove computer from docking station - security policy setting +# Remove computer from docking station **Applies to** - Windows 10 diff --git a/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md b/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md index fad266b5ee..d2bbb021bb 100644 --- a/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md +++ b/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md @@ -26,7 +26,7 @@ This article describes the following: The information in this article is intended for IT professionals, and provides a foundation for [Planning and getting started on the Device Guard deployment process](planning-and-getting-started-on-the-device-guard-deployment-process.md). ->**Note**  If you are an OEM, see the requirements information at [PC OEM requirements for Device Guard and Credential Guard](https://msdn.microsoft.com/library/windows/hardware/mt767514.aspx). +>**Note**  If you are an OEM, see the requirements information at [PC OEM requirements for Device Guard and Credential Guard](https://msdn.microsoft.com/library/windows/hardware/mt767514(v=vs.85).aspx). ## Hardware, firmware, and software requirements for Device Guard diff --git a/windows/keep-secure/requirements-for-deploying-applocker-policies.md b/windows/keep-secure/requirements-for-deploying-applocker-policies.md index 874036e3b6..e3b6c29aa7 100644 --- a/windows/keep-secure/requirements-for-deploying-applocker-policies.md +++ b/windows/keep-secure/requirements-for-deploying-applocker-policies.md @@ -24,7 +24,7 @@ The following requirements must be met or addressed before you deploy your AppLo ### Deployment plan -An AppLocker policy deployment plan is the result of investigating which applications are required and necessary in your organization, which apps are optional, and which apps are forbidden. To develop this plan, see [AppLocker Design Guide](applocker-policies-design-guide.md). The following table is an example of the data you need to collect and the decisions you need to make to successfully deploy AppLocker policies on the supported operating systems (as listed in [Requirements to use AppLocker](requirements-to-use-applocker.md)). +An AppLocker policy deployment plan is the result of investigating which applications are required and necessary in your organization, which apps are optional, and which apps are forbidden. To develop this plan, see [AppLocker Design Guide](applocker-policies-design-guide.md). The following table is an example of the data you need to collect and the decisions you need to make to successfully deploy AppLocker policies on the supported operating systems (as listed in [Requirements to use AppLocker](requirements-to-use-applocker.md). diff --git a/windows/keep-secure/requirements-to-use-applocker.md b/windows/keep-secure/requirements-to-use-applocker.md index 81fe0f76ba..60ac319a63 100644 --- a/windows/keep-secure/requirements-to-use-applocker.md +++ b/windows/keep-secure/requirements-to-use-applocker.md @@ -33,10 +33,12 @@ The following table show the on which operating systems AppLocker features are s | Version | Can be configured | Can be enforced | Available rules | Notes | | - | - | - | - | - | -| Windows 10| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| You can use the [AppLocker CSP](http://msdn.microsoft.com/library/windows/hardware/dn920019.aspx) to configure AppLocker policies on any edition of Windows 10. You can only manage AppLocker with Group Policy on devices running Windows 10 Enterprise, Windows 10 Education, and Windows Server 2016. | -| Windows Server 2016
    Windows Server 2012 R2
    Windows Server 2012| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| | +| Windows 10| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| You can use the [AppLocker CSP](http://msdn.microsoft.com/library/windows/hardware/dn920019.aspx) to configure AppLocker policies on any edition of Windows 10. You can only manage AppLocker with Group Policy on devices running Windows 10 Enterprise and Windows Server 2016. | +| Windows Server 2012 R2| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| | | Windows 8.1| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| Only the Enterprise edition supports AppLocker| | Windows RT 8.1| No| No| N/A|| +| Windows Server 2012 Standard| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL|| +| Windows Server 2012 Datacenter| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL|| | Windows 8 Pro| No| No| N/A|| | Windows 8 Enterprise| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL|| | Windows RT| No| No| N/A| | diff --git a/windows/keep-secure/restore-files-and-directories.md b/windows/keep-secure/restore-files-and-directories.md index bf78f4ff41..e8bb7e6f85 100644 --- a/windows/keep-secure/restore-files-and-directories.md +++ b/windows/keep-secure/restore-files-and-directories.md @@ -1,5 +1,5 @@ --- -title: Restore files and directories - security policy setting (Windows 10) +title: Restore files and directories (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Restore files and directories security policy setting. ms.assetid: c673c0fa-6f49-4edd-8c1f-c5e8513f701d ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Restore files and directories - security policy setting +# Restore files and directories **Applies to** - Windows 10 diff --git a/windows/keep-secure/security-technologies.md b/windows/keep-secure/security-technologies.md index 6b82a956c7..8bd5183126 100644 --- a/windows/keep-secure/security-technologies.md +++ b/windows/keep-secure/security-technologies.md @@ -11,23 +11,21 @@ author: brianlic-msft # Security technologies -As an IT professional, you can use these topics to learn more about the different security technologies that are available in Windows 10 and Windows 10 Mobile. +Learn more about the different security technologies that are available in Windows 10 and Windows 10 Mobile. -| Section | Description | +| Topic | Description | |-|-| | [Access control](access-control.md) | Describes access control in Windows, which is the process of authorizing users, groups, and computers to access objects on the network or computer. Key concepts that make up access control are permissions, ownership of objects, inheritance of permissions, user rights, and object auditing. | -| [AppLocker](applocker-overview.md)| Describes AppLocker, and can help you decide if your organization can benefit from deploying AppLocker application control policies. AppLocker helps you control which apps and files users can run. These include executable files, scripts, Windows Installer files, dynamic-link libraries (DLLs), packaged apps, and packaged app installers.| -| [BitLocker](bitlocker-overview.md)| Provides information about BitLocker, which is a data protection feature that integrates with the operating system and addresses the threats of data theft or exposure from lost, stolen, or inappropriately decommissioned computers. | -| [Encrypted Hard Drive](encrypted-hard-drive.md) | Provides information about Encrypted Hard Drive, which uses the rapid encryption that is provided by BitLocker Drive Encryption to enhance data security and management.| -| [Security auditing](security-auditing-overview.md)| Describes how the IT professional can use the security auditing features in Windows, and how organizations can benefit from using these technologies, to enhance the security and manageability of networks.| -| [Security policy settings](security-policy-settings.md)| Provides a collection of reference topics that describe the common scenarios, architecture, and processes for security settings.| -| [Smart Cards](smart-card-windows-smart-card-technical-reference.md) | Provides a collection of references topics about smart cards, which are tamper-resistant portable storage devices that can enhance the security of tasks such as authenticating clients, signing code, securing e-mail, and signing in with a Windows domain account. | -| [Trusted Platform Module](trusted-platform-module-top-node.md)| Provides links to information about the Trusted Platform Module (TPM), which is a secure crypto-processor that helps you with actions such as generating, storing, and limiting the use of cryptographic keys. | -| [User Account Control](user-account-control-overview.md)| Provides information about User Account Control (UAC), which helps prevent malware from damaging a PC and helps organizations deploy a better-managed desktop. UAC can help block the automatic installation of unauthorized apps and prevent inadvertent changes to system settings.| -| [Virtual Smart Cards](virtual-smart-card-overview.md) | Provides information about deploying and managing virtual smart cards, which are functionally similar to physical smart cards and appear in Windows as smart cards that are always-inserted. Virtual smart cards use the Trusted Platform Module (TPM) chip that is available on computers in many organizations, rather than requiring the use of a separate physical smart card and reader. | -| [Windows Defender Advanced Threat Protection](windows-defender-advanced-threat-protection.md)| Provides information about Windows Defender Advanced Threat Protection (Windows Defender ATP), an out-of-the-box Windows enterprise security service that enables enterprise cybersecurity teams to detect and respond to advanced threats on their networks.| -| [Windows Defender in Windows 10](windows-defender-in-windows-10.md)| Provides information about Windows Defender, a built-in antimalware solution that helps provide security and antimalware management for desktops, portable computers, and servers. Includes a list of system requirements and new features.| -| [Windows Firewall with Advanced Security](windows-firewall-with-advanced-security.md) | Provides information about Windows Firewall with Advanced Security, which is an important part of a layered security model. By providing host-based, two-way network traffic filtering for a device, Windows Firewall with Advanced Security blocks unauthorized network traffic flowing into or out of the local device. | +| [AppLocker](applocker-overview.md)| This topic provides a description of AppLocker and can help you decide if your organization can benefit from deploying AppLocker application control policies. AppLocker helps you control which apps and files users can run. These include executable files, scripts, Windows Installer files, dynamic-link libraries (DLLs), packaged apps, and packaged app installers.| +| [BitLocker](bitlocker-overview.md)| This topic provides a high-level overview of BitLocker, including a list of system requirements, practical applications, and deprecated features.| +| [Encrypted Hard Drive](encrypted-hard-drive.md) | Encrypted Hard Drive uses the rapid encryption that is provided by BitLocker Drive Encryption to enhance data security and management.| +| [Security auditing](security-auditing-overview.md)| Topics in this section are for IT professionals and describes the security auditing features in Windows and how your organization can benefit from using these technologies to enhance the security and manageability of your network.| +| [Security policy settings](security-policy-settings.md)| This reference topic describes the common scenarios, architecture, and processes for security settings.| +| [Trusted Platform Module](trusted-platform-module-overview.md)| This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. The topic provides links to other resources about the TPM.| +| [User Account Control](user-account-control-overview.md)| User Account Control (UAC) helps prevent malware from damaging a PC and helps organizations deploy a better-managed desktop. With UAC, apps and tasks always run in the security context of a non-administrator account, unless an administrator specifically authorizes administrator-level access to the system. UAC can block the automatic installation of unauthorized apps and prevent inadvertent changes to system settings.| +| [Windows Defender Advanced Threat Protection](windows-defender-advanced-threat-protection.md)| Windows Defender Advanced Threat Protection (Windows Defender ATP) is an out-of-the-box Windows enterprise security service that enables enterprise cybersecurity teams to detect and respond to advanced threats on their networks.| +| [Windows Defender in Windows 10](windows-defender-in-windows-10.md)| This topic provides an overview of Windows Defender, including a list of system requirements and new features.| +| [Windows Firewall with Advanced Security](windows-firewall-with-advanced-security.md) | Windows Firewall with Advanced Security is an important part of a layered security model. By providing host-based, two-way network traffic filtering for a device, Windows Firewall with Advanced Security blocks unauthorized network traffic flowing into or out of the local device. |     diff --git a/windows/keep-secure/select-types-of-rules-to-create.md b/windows/keep-secure/select-types-of-rules-to-create.md index 35f8ffd6b2..00ae11caf5 100644 --- a/windows/keep-secure/select-types-of-rules-to-create.md +++ b/windows/keep-secure/select-types-of-rules-to-create.md @@ -55,7 +55,7 @@ In the Woodgrove Bank example, the line-of-business app for the Bank Tellers bus ### Determine how to allow system files to run -Because AppLocker rules build a list of allowed apps, a rule or rules must be created to allow all Windows files to run. AppLocker provides a means to ensure system files are properly considered in your rule collection by generating the default rules for each rule collection. You can use the default rules (listed in [AppLocker default rules](working-with-applocker-rules.md#applocker-default-rules)) as a template when creating your own rules. However, these rules are only meant to function as a starter policy when you are first testing AppLocker rules so that the system files in the Windows folders will be allowed to run. When a default rule is created, it is denoted with "(Default rule)" in its name as it appears in the rule collection. +Because AppLocker rules build a list of allowed apps, a rule or rules must be created to allow all Windows files to run. AppLocker provides a means to ensure system files are properly considered in your rule collection by generating the default rules for each rule collection. You can use the default rules as a template when creating your own rules. However, these rules are only meant to function as a starter policy when you are first testing AppLocker rules so that the system files in the Windows folders will be allowed to run. When a default rule is created, it is denoted with "(Default rule)" in its name as it appears in the rule collection. You can also create a rule for the system files based on the path condition. In the preceding example, for the Bank Tellers group, all Windows files reside under C:\\Windows and can be defined with the path rule condition type. This will permit access to these files whenever updates are applied and the files change. If you require additional application security, you might need to modify the rules created from the built-in default rule collection. For example, the default rule to allow all users to run .exe files in the Windows folder is based on a path condition that allows all files within the Windows folder to run. The Windows folder contains a Temp subfolder to which the Users group is given the following permissions: diff --git a/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md deleted file mode 100644 index 6c8623a564..0000000000 --- a/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md +++ /dev/null @@ -1,54 +0,0 @@ ---- -title: Check the Windows Defender ATP service status -description: Check Windows Defender ATP service status, see if the service is experiencing issues and review previous issues that have been resolved. -keywords: dashboard, service, issues, service status, current issues, status history, summary of impact, preliminary root cause, resolution, resolution time, expected resolution time -search.product: eADQiWindows 10XVcnh -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: security -author: mjcaparas -localizationpriority: high ---- - -# Check the Windows Defender Advanced Threat Protection service status - -**Applies to:** - -- Windows 10 Enterprise -- Windows 10 Education -- Windows 10 Pro -- Windows 10 Pro Education -- Windows Defender Advanced Threat Protection (Windows Defender ATP) - -The **Service health** provides information on the current status of the Window Defender ATP service. You'll be able to verify that the service status is healthy or if there are current issues. If there are issues, you'll see details related to the issue such as when the issue was detected, what the preliminary root cause is, and the expected resolution time. - -You'll also see information on historical issues that have been resolved and details such as the date and time when the issue was resolved. When there are no issues on the service, you'll see a healthy status. - -You can view details on the service status by clicking the tile from the **Dashboard** or selecting the **Service health** menu from the navigation pane. - -The **Service health** details page has the following tabs: - -- **Current issues** -- **Status History** - -## Current issues -The **Current issues** tab shows the current state of the Windows Defender ATP service. When the service is running smoothly a healthy service status is shown. If there are issues seen, the following service details are shown to help you gain better insight about the issue: - -- Date and time for when the issue was detected -- A short description of the issue -- Update time -- Summary of impact -- Preliminary root cause -- Next steps -- Expected resolution time - -Updates on the progress of an issue is reflected on the page as the issue gets resolved. You'll see updates on information such as an updated estimate resolution time or next steps. - -When an issue is resolved, it gets recorded in the **Status history** tab. - -## Status history -The **Status history** tab reflects all the historical issues that were seen and resolved. You'll see details of the resolved issues along with the other information that were included while it was being resolved. - -### Related topic -- [View the Windows Defender Advanced Threat Protection Dashboard](dashboard-windows-defender-advanced-threat-protection.md) diff --git a/windows/keep-secure/shut-down-the-system.md b/windows/keep-secure/shut-down-the-system.md index 4cde410c2d..0c4f6b24a7 100644 --- a/windows/keep-secure/shut-down-the-system.md +++ b/windows/keep-secure/shut-down-the-system.md @@ -1,5 +1,5 @@ --- -title: Shut down the system - security policy setting (Windows 10) +title: Shut down the system (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Shut down the system security policy setting. ms.assetid: c8e8f890-153a-401e-a957-ba6a130304bf ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Shut down the system - security policy setting +# Shut down the system **Applies to** - Windows 10 diff --git a/windows/keep-secure/shutdown-clear-virtual-memory-pagefile.md b/windows/keep-secure/shutdown-clear-virtual-memory-pagefile.md index 348aa4eb2d..83e27c9e00 100644 --- a/windows/keep-secure/shutdown-clear-virtual-memory-pagefile.md +++ b/windows/keep-secure/shutdown-clear-virtual-memory-pagefile.md @@ -1,5 +1,5 @@ --- -title: Shutdown Clear virtual memory pagefile - security policy setting (Windows 10) +title: Shutdown Clear virtual memory pagefile (Windows 10) description: Describes the best practices, location, values, policy management and security considerations for the Shutdown Clear virtual memory pagefile security policy setting. ms.assetid: 31400078-6c56-4891-a6df-6dfb403c4bc9 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Shutdown: Clear virtual memory pagefile - security policy setting +# Shutdown: Clear virtual memory pagefile **Applies to** - Windows 10 diff --git a/windows/keep-secure/smart-card-architecture.md b/windows/keep-secure/smart-card-architecture.md index 41b2dcc225..84d38741cf 100644 --- a/windows/keep-secure/smart-card-architecture.md +++ b/windows/keep-secure/smart-card-architecture.md @@ -74,7 +74,7 @@ Credential providers must be registered on a computer running Windows, and they ## Smart card subsystem architecture -Vendors provide smart cards and smart card readers, and in many cases the vendors are different for the smart card and the smart card reader. Drivers for smart card readers are written to the [Personal Computer/Smart Card (PC/SC) standard](https://www.pcscworkgroup.com/). Each smart card must have a Credential Service Provider (CSP) that uses the CryptoAPI interfaces to enable cryptographic operations, and the WinSCard APIs to enable communications with smart card hardware. +Vendors provide smart cards and smart card readers, and in many cases the vendors are different for the smart card and the smart card reader. Drivers for smart card readers are written to the [Personal Computer/Smart Card (PC/SC) standard](http://www.pcscworkgroup.com/specifications/overview.php). Each smart card must have a Credential Service Provider (CSP) that uses the CryptoAPI interfaces to enable cryptographic operations, and the WinSCard APIs to enable communications with smart card hardware. ### Base CSP and smart card minidriver architecture diff --git a/windows/keep-secure/smart-card-smart-cards-for-windows-service.md b/windows/keep-secure/smart-card-smart-cards-for-windows-service.md index 1c4f17a7f2..a0c0edd3dc 100644 --- a/windows/keep-secure/smart-card-smart-cards-for-windows-service.md +++ b/windows/keep-secure/smart-card-smart-cards-for-windows-service.md @@ -14,7 +14,7 @@ Applies To: Windows 10, Windows Server 2016 This topic for the IT professional and smart card developers describes how the Smart Cards for Windows service (formerly called Smart Card Resource Manager) manages readers and application interactions. -The Smart Cards for Windows service provides the basic infrastructure for all other smart card components as it manages smart card readers and application interactions on the computer. It is fully compliant with the specifications set by the PC/SC Workgroup. For information about these specifications, see the [PC/SC Workgroup Specifications website](https://www.pcscworkgroup.com/). +The Smart Cards for Windows service provides the basic infrastructure for all other smart card components as it manages smart card readers and application interactions on the computer. It is fully compliant with the specifications set by the PC/SC Workgroup. For information about these specifications, see the [PC/SC Workgroup Specifications Overview](http://www.pcscworkgroup.com/specifications/overview.php). The Smart Cards for Windows service runs in the context of a local service, and it is implemented as a shared service of the services host (svchost) process. The Smart Cards for Windows service, Scardsvr, has the following service description: diff --git a/windows/keep-secure/switch-pcr-banks-on-tpm-2-0-devices.md b/windows/keep-secure/switch-pcr-banks-on-tpm-2-0-devices.md index 993c5d1aea..b60489c882 100644 --- a/windows/keep-secure/switch-pcr-banks-on-tpm-2-0-devices.md +++ b/windows/keep-secure/switch-pcr-banks-on-tpm-2-0-devices.md @@ -1,6 +1,6 @@ --- -title: Understanding PCR banks on TPM 2.0 devices (Windows 10) -description: This topic for the IT professional provides background about what happens when you switch PCR banks on TPM 2.0 devices. +title: Switch PCR banks on TPM 2.0 devices (Windows 10) +description: A Platform Configuration Register (PCR) is a memory location in the TPM that has some unique properties. ms.assetid: 743FCCCB-99A9-4636-8F48-9ECB3A3D10DE ms.prod: w10 ms.mktglfcycl: deploy @@ -9,13 +9,10 @@ ms.pagetype: security author: brianlic-msft --- -# Understanding PCR banks on TPM 2.0 devices +# Switch PCR banks on TPM 2.0 devices **Applies to** - Windows 10 -- Windows Server 2016 - -For steps on how to switch PCR banks on TPM 2.0 devices on your PC, you should contact your OEM or UEFI vendor. This topic provides background about what happens when you switch PCR banks on TPM 2.0 devices. A Platform Configuration Register (PCR) is a memory location in the TPM that has some unique properties. The size of the value that can be stored in a PCR is determined by the size of a digest generated by an associated hashing algorithm. A SHA-1 PCR can store 20 bytes – the size of a SHA-1 digest. Multiple PCRs associated with the same hashing algorithm are referred to as a PCR bank. @@ -24,7 +21,7 @@ PCR\[N\] = HASHalg( PCR\[N\] || ArgumentOfExtend ) The existing value is concatenated with the argument of the TPM Extend operation. The resulting concatenation is then used as input to the associated hashing algorithm, which computes a digest of the input. This computed digest becomes the new value of the PCR. -The [TCG PC Client Platform TPM Profile Specification](http://www.trustedcomputinggroup.org/pc-client-platform-tpm-profile-ptp-specification/) defines the inclusion of at least one PCR bank with 24 registers. The only way to reset the first 16 PCRs is to reset the TPM itself. This restriction helps ensure that the value of those PCRs can only be modified via the TPM Extend operation. +The [TCG PC Client Specific Platform TPM Profile for TPM 2.0](https://go.microsoft.com/fwlink/p/?LinkId=746577) defines the inclusion of at least one PCR bank with 24 registers. The only way to reset the first 16 PCRs is to reset the TPM itself. This restriction helps ensure that the value of those PCRs can only be modified via the TPM Extend operation. Some TPM PCRs are used as checksums of log events. The log events are extended in the TPM as the events occur. Later, an auditor can validate the logs by computing the expected PCR values from the log and comparing them to the PCR values of the TPM. Since the first 16 TPM PCRs cannot be modified arbitrarily, a match between an expected PCR value in that range and the actual TPM PCR value provides assurance of an unmodified log. @@ -32,7 +29,8 @@ Some TPM PCRs are used as checksums of log events. The log events are extended i To bind the use of a TPM based key to a certain state of the PC, the key can be sealed to an expected set of PCR values. For instance, PCRs 0 through 7 have a well-defined value after the boot process – when the OS is loaded. When the hardware, firmware, or boot loader of the machine changes, the change can be detected in the PCR values. Windows 10 uses this capability to make certain cryptographic keys only available at certain times during the boot process. For instance, the BitLocker key can be used at a certain point in the boot, but not before or after. -It is important to note that this binding to PCR values also includes the hashing algorithm used for the PCR. For instance, a key can be bound to a specific value of the SHA-1 PCR\[12\], if using SHA-256 PCR banks, even with the same system configuration. Otherwise, the PCR values will not match. +It is important to note that this binding to PCR values also includes the hashing algorithm used for the PCR. For instance, a key can be bound to a specific value of the SHA-1 PCR\[12\], if using SHA-256 PCR banks, even with the +same system configuration otherwise, the PCR values will not match. ## What happens when PCR banks are switched? @@ -43,7 +41,3 @@ As a result, if the currently used PCR bank is switched all keys that have been ## What can I do to switch PCRs when BitLocker is already active? Before switching PCR banks you should suspend or disable BitLocker – or have your recovery key ready. For steps on how to switch PCR banks on your PC, you should contact your OEM or UEFI vendor. - -## Related topics - -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) diff --git a/windows/keep-secure/testing-scenarios-for-wip.md b/windows/keep-secure/testing-scenarios-for-wip.md index cca0a2fa52..45737291cf 100644 --- a/windows/keep-secure/testing-scenarios-for-wip.md +++ b/windows/keep-secure/testing-scenarios-for-wip.md @@ -163,7 +163,4 @@ You can try any of the processes included in these scenarios, but you should foc -
    - ->[!NOTE] ->Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). \ No newline at end of file + \ No newline at end of file diff --git a/windows/keep-secure/tools-to-use-with-applocker.md b/windows/keep-secure/tools-to-use-with-applocker.md index a5346774ab..5d2d69ff81 100644 --- a/windows/keep-secure/tools-to-use-with-applocker.md +++ b/windows/keep-secure/tools-to-use-with-applocker.md @@ -24,7 +24,7 @@ The following tools can help you administer the application control policies cre - **Generate Default Rules tool** - AppLocker includes default rules for each rule collection accessed through the Local Security Policy snap-in. These rules are intended to help ensure that the files that are required for Windows to operate properly are allowed in an AppLocker rule collection. For info about how to use this tool, see [Create AppLocker default rules](create-applocker-default-rules.md). For a list of the default rules, see [AppLocker default rules](working-with-applocker-rules.md#applocker-default-rules). + AppLocker includes default rules for each rule collection accessed through the Local Security Policy snap-in. These rules are intended to help ensure that the files that are required for Windows to operate properly are allowed in an AppLocker rule collection. For info about how to use this tool, see [Create AppLocker default rules](create-applocker-default-rules.md). - **Automatically Generate AppLocker Rules wizard** diff --git a/windows/keep-secure/tpm-fundamentals.md b/windows/keep-secure/tpm-fundamentals.md index efb080c89c..92a6fe9b1d 100644 --- a/windows/keep-secure/tpm-fundamentals.md +++ b/windows/keep-secure/tpm-fundamentals.md @@ -13,7 +13,6 @@ author: brianlic-msft **Applies to** - Windows 10 -- Windows Server 2016 This topic for the IT professional provides a description of the components of the Trusted Platform Module (TPM 1.2 and TPM 2.0) and explains how they are used to mitigate dictionary attacks. @@ -31,65 +30,109 @@ For info about which versions of Windows support which versions of the TPM, see The following sections provide an overview of the technologies that support the TPM: -- [Measured Boot with support for attestation](#measured-boot-with-support-for-attestation) - -- [TPM-based Virtual Smart Card](#tpm-based-virtual-smart-card) - -- [TPM-based certificate storage](#tpm-based-certificate-storage) - -- [TPM Cmdlets](#tpm-cmdlets) - -- [Physical presence interface](#physical-presence-interface) - -- [TPM 1.2 states and initialization](#tpm-12-states-and-initialization) - -- [Endorsement keys](#endorsement-keys) - -- [TPM Key Attestation](#key-attestation) - -- [How the TPM mitigates dictionary attacks](#how-the-tpm-mitigates-dictionary-attacks) +- [TPM-based Virtual Smart Card](#bkmk-vsc) +- [Measured Boot with support for attestation](#bkmk-measuredboot) +- [Automated provisioning and management of the TPM](#bkmk-autoprov) +- [TPM-based certificate storage](#bkmk-tpmcs) +- [Physical presence interface](#bkmk-physicalpresenceinterface) +- [TPM Cmdlets](#bkmk-tpmcmdlets) +- [TPM Owner Authorization Value](#bkmk-authvalue) +- [States of existence in a TPM](#bkmk-stateex) +- [Endorsement keys](#bkmk-endorsementkeys) +- [TPM Key Attestation](#bkmk-ketattestation) +- [How the TPM mitigates dictionary attacks](#bkmk-howtpmmitigates) +- [How do I check the state of my TPM?](#bkmk-checkstate) +- [What can I do if my TPM is in reduced functionality mode?](#bkmk-fixrfm) The following topic describes the TPM Services that can be controlled centrally by using Group Policy settings: -[TPM Group Policy Settings](trusted-platform-module-services-group-policy-settings.md). +[Trusted Platform Module Services Group Policy Settings](trusted-platform-module-services-group-policy-settings.md) -## Measured Boot with support for attestation +## Automated provisioning and management of the TPM + +TPM provisioning can be streamlined to make it easier to deploy systems that are ready for BitLocker and other TPM-dependent features. These enhancements include simplifying the TPM state model to report **Ready**, **Ready with reduced functionality**, or **Not ready**. You can also automatically provision TPMs in the **Ready** state, remote provisioning to remove the requirement for the physical presence of a technician for the initial deployment. In addition, the TPM stack is available in the Windows Preinstallation Environment (Windows PE). + +A number of management settings have been added for easier management and configuration of the TPM through Group Policy. The primary new settings include Active Directory-based backup of TPM owner authentication, the level of owner authentication that should be stored locally on the TPM, and the software-based TPM lockout settings for standard users. For more info about backing up owner authentication to Windows Server 2008 R2 AD DS domains, see [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md). + +## Measured Boot with support for attestation The Measured Boot feature provides antimalware software with a trusted (resistant to spoofing and tampering) log of all boot components. Antimalware software can use the log to determine whether components that ran before it are trustworthy versus infected with malware. It can also send the Measured Boot logs to a remote server for evaluation. The remote server can initiate remediation actions by interacting with software on the client or through out-of-band mechanisms, as appropriate. -## TPM-based Virtual Smart Card +## TPM-based Virtual Smart Card -The Virtual Smart Card emulates the functionality of traditional smart cards, but Virtual Smart Cards use the TPM chip that is available on an organization’s computers, rather than requiring the use of a separate physical smart card and reader. This greatly reduces the management and deployment cost of smart cards in an enterprise. To the end user, the Virtual Smart Card is always available on the computer. If a user needs to use more than one computer, a +The Virtual Smart Card emulates the functionality of traditional smart cards, but Virtual Smart Cards use the TPM chip that is available on an organization’s computers, rather than requiring the use of a separate physical smart card and reader. This greatly reduces the management and deployment cost of smart cards in an enterprise. To the end user, the Virtual Smart Card is always available on the computer. If a user needs to use more than one computer, a Virtual Smart Card must be issued to the user for each computer. A computer that is shared among multiple users can host multiple Virtual Smart Cards, one for each user. -## TPM-based certificate storage +## TPM-based certificate storage The TPM can be used to protect certificates and RSA keys. The TPM key storage provider (KSP) provides easy, convenient use of the TPM as a way of strongly protecting private keys. The TPM KSP can be used to generate keys when an organization enrolls for certificates, and the KSP is managed by templates in the UI. The TPM can also be used to protect certificates that are imported from an outside source. TPM-based certificates can be used exactly as standard certificates with the added functionality that the certificate can never leave the TPM from which the keys were generated. The TPM can now be used for crypto-operations through Cryptography API: Next Generation (CNG). For more info, see [Cryptography API: Next Generation](http://msdn.microsoft.com/library/windows/desktop/aa376210.aspx). -## TPM Cmdlets +## TPM Owner Authorization Value + +For Windows 8 a change to how the TPM owner authorization value is stored in AD DS was implemented in the AD DS schema. The TPM owner authorization value is now stored in a separate object which is linked to the Computer object. +This value was stored as a property in the Computer object itself for the default Windows Server 2008 R2 schemas. Windows Server 2012 domain controllers have the default schema to backup TPM owner authorization information in the separate object. If you are not upgrading your domain controller to Windows Server 2012 you need to extend the schema to support this change. If Active Directory backup of the TPM owner authorization value is enabled in a Windows Server 2008 R2 environment without extending the schema, the TPM provisioning will fail and the TPM will remain in a Not Ready state for computers running Windows 8. + +If your computer is not being joined to a domain the TPM owner authorization value will be stored in the local computer registry. Using BitLocker to encrypt the operating system drive will protect the owner authorization value from being disclosed when the computer is at rest, but there is a risk that a malicious user could obtain the TPM owner authorization value when the computer is unlocked. Therefore, we recommend that in this situation you configure your computer to automatically lock after 30 seconds of inactivity. If automatic locking is not used, then you should consider removing full owner authorization from the computer registry. + +**Registry information** + +Registry key: HKEY\_LOCAL\_MACHINE\\SOFTWARE\\Policies\\Microsoft\\TPM +DWORD: OSManagedAuthLevel + +| Value Data | Setting | +| - | - | +| 0 | None| +| 2 | Delegated| +| 4 | Full| +  +>**Note:**  If the operating system managed TPM authentication setting is changed from "Full" to "Delegated" the full TPM owner authorization value will be regenerated and any copies of the original TPM owner authorization value will be invalid. If you are backing up the TPM owner authorization value to AD DS, the new owner authorization value will be automatically backed up to AD DS when it is changed. +  +## TPM Cmdlets If you are using PowerShell to script and manage your computers, you can now manage the TPM using Windows PowerShell as well. To install the TPM cmdlets use the following command: `dism /online /enable-feature /FeatureName:tpm-psh-cmdlets` +For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). +## Physical presence interface -## Physical presence interface +The TCG specifications for TPMs require physical presence to perform some TPM administrative functions, such as turning on and turning off the TPM. Physical presence means a person must physically interact with the system and the +TPM interface to confirm or reject changes to TPM status. This typically cannot be automated with scripts or other automation tools unless the individual OEM supplies them. Here are some are examples of TPM administrative tasks that require physical presence: -For TPM 1.2, the TCG specifications for TPMs require physical presence (typically, pressing a key) for turning the TPM on, turning it off, or clearing it. These actions typically cannot be automated with scripts or other automation tools unless the individual OEM supplies them. +- Activating the TPM +- Clearing the existing owner information from the TPM without the owner’s password +- Deactivating the TPM +- Disabling the TPM temporarily without the owner’s password -## TPM 1.2 states and initialization +## States of existence in a TPM -For TPM 1.2, there are multiple possible states. Windows 10 automatically initializes the TPM, which brings it to an enabled, activated, and owned state. +For each of these TPM 1.2 states of existence, the TPM can transition into another state (for example, moving from disabled to enabled). The states are not exclusive. -## Endorsement keys +These states of existence do not apply for Trusted Platform Module 2.0 because it cannot be turned off from within the operating system environment. -For a TPM to be usable by a trusted application, it must contain an endorsement key, which is an RSA key pair. The private half of the key pair is held inside the TPM, and it is never revealed or accessible outside the TPM. +| State | Description | +| - | - | +| Enabled| Most features of the TPM are available.
    The TPM can be enabled and disabled multiple times within a boot period, if ownership is taken.| +| Disabled| The TPM restricts most operations. Exceptions include the ability to report TPM capabilities, extend and reset Platform Configuration Register (PCR) functions, and perform hashing and basic initialization.
    The TPM can be enabled and disabled multiple times within a start-up period. | +| Activated| Most features of the TPM are available. The TPM can be activated and deactivated only through physical presence, which requires a restart.| +| Deactivated| Similar to the disabled state, with the exception that ownership can be taken when the TPM is deactivated and enabled. The TPM can be activated and deactivated only through physical presence, which requires a restart.| +| Owned| Most features of the TPM are available. The TPM has an endorsement key and storage root key, and the owner knows information about owner authorization data.| +| Unowned| The TPM does not have a storage root key, and it may or may not have an endorsement key.| +  +>**Important:**  Applications cannot use the TPM until the state is enabled, activated, and owned. All operations are available only when the TPM is in this state. +  +The state of the TPM exists independently of the computer’s operating system. When the TPM is enabled, activated, and owned, the state of the TPM is preserved if the operating system is reinstalled. -## Key attestation +## Endorsement keys + +For a TPM to be usable by a trusted application, it must contain an endorsement key, which is an RSA key pair. The private half of the key pair is held inside the TPM, and it is never revealed or accessible outside the TPM. If the +TPM does not contain an endorsement key, the application might cause the TPM to generate one automatically as part of the setup. +An endorsement key can be created at various points in the TPM’s lifecycle, but it needs to be created only once for the lifetime of the TPM. The existence of an endorsement key is a requirement before TPM ownership can be taken. + +## Key attestation TPM key attestation allows a certification authority to verify that a private key is actually protected by a TPM and that the TPM is one that the certification authority trusts. Endorsement keys which have been proven valid can be used to bind the user identity to a device. Moreover, the user certificate with a TPM attested key provides higher security assurance backed up by the non-exportability, anti-hammering, and isolation of keys provided by a TPM. -## How the TPM mitigates dictionary attacks +## How the TPM mitigates dictionary attacks When a TPM processes a command, it does so in a protected environment, for example, a dedicated microcontroller on a discrete chip or a special hardware-protected mode on the main CPU. A TPM can be used to create a cryptographic key that is not disclosed outside the TPM, but is able to be used in the TPM after the correct authorization value is provided. @@ -101,9 +144,8 @@ Because many entities can use the TPM, a single authorization success cannot res TPM 2.0 has well defined dictionary attack logic behavior. This is in contrast to TPM 1.2 for which the dictionary attack logic was set by the manufacturer, and the logic varied widely throughout the industry. -> [!WARNING] -> For the purposes of this topic, Windows 8 Certified Hardware also pertains to Windows 8.1 systems. The following references to “Windows” include these supported Windows versions. - +>**Warning:**  For the purposes of this topic, Windows 8 Certified Hardware also pertains to Windows 8.1 systems. The following references to “Windows” include these supported Windows versions. +  For Windows 8 Certified Hardware systems with TPM 2.0, the TPM is configured by Windows to lock after 32 authorization failures and to forget one authorization failure every two hours. This means that a user could quickly attempt to use a key with the wrong authorization value 32 times. For each of the 32 attempts, the TPM records if the authorization value was correct or not. This inadvertently causes the TPM to enter a locked state after 32 failed attempts. Attempts to use a key with an authorization value for the next two hours would not return success or failure; instead the response indicates that the TPM is locked. After two hours, one authorization failure is forgotten and the number of authorization failures remembered by the TPM drops to 31, so the TPM leaves the locked state and returns to normal operation. With the correct authorization value, keys could be used normally if no authorization failures occur during the next two hours. If a period of 64 hours elapses with no authorization failures, the TPM does not remember any authorization failures, and 32 failed attempts could occur again. @@ -123,15 +165,35 @@ For example, when BitLocker is used with a TPM plus PIN configuration, it needs The Windows TPM-based smart card, which is a virtual smart card, can be configured to allow sign in to the system. In contrast with physical smart cards, the sign-in process uses a TPM-based key with an authorization value. The following list shows the advantages of virtual smart cards: -- Physical smart cards can enforce lockout for only the physical smart card PIN, and they can reset the lockout after the correct PIN is entered. With a virtual smart card, the TPM’s dictionary attack is not reset after a successful authentication. The allowed number of authorization failures before the TPM enters lockout includes many factors. +Physical smart cards can enforce lockout for only the physical smart card PIN, and they can reset the lockout after the correct PIN is entered. With a virtual smart card, the TPM’s dictionary attack is not reset after a successful authentication. The allowed number of authorization failures before the TPM enters lockout includes many factors. -- Hardware manufacturers and software developers have the option to use the security features of the TPM to meet their requirements. +Hardware manufacturers and software developers have the option to use the security features of the TPM to meet their requirements. -- The intent of selecting 32 failures as the lock-out threshold is so users rarely lock the TPM (even when learning to type new passwords or if they frequently lock and unlock their computers). If users lock the TPM, they must to wait two hours or use some other credential to sign in, such as a user name and password. +The intent of selecting 32 failures as the lock-out threshold is so users rarely lock the TPM (even when learning to type new passwords or if they frequently lock and unlock their computers). If users lock the TPM, they must to wait two hours or use some other credential to sign in, such as a user name and password. -## Related topics +## How do I check the state of my TPM? -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) +You can check the state of the TPM on a PC by running the Trusted Platform Module snap-in (tpm.msc). The **Status** heading tells you the state of your TPM. The TPM can be in one of the following states: **Ready for use**, **Ready for use, with reduced functionality**, and **Not ready for use**. To take advantage of most of the TPM features in Windows 10, the TPM must be **Ready for use**. + +## What can I do if my TPM is in reduced functionality mode? + +If your TPM is in reduced functionality mode, some features that rely on the TPM will not function correctly. This is most often caused by doing a clean installation of Windows 10 on a device where Windows 8.1, Windows 8, or Windows 7 had previously been installed on the same hardware. If your TPM is in reduced functionality mode, the Status heading in the Trusted Platform Module snap-in shows **The TPM is ready for use, with reduced functionality**. +You can fix this by clearing the TPM. + +**To clear the TPM** + +1. Open the Trusted Platform Module snap-in (tpm.msc). +2. Click **Clear TPM**, and then click **Restart.** +3. When the PC is restarting, you might be prompted to press a button on the keyboard to clear the TPM. +4. After the PC restarts, your TPM will be automatically prepared for use by Windows 10. + +>**Note:**  Clearing the TPM causes you to lose all TPM keys and data protected by those keys, such as a virtual smart card. You should not perform this procedure on a device you do not own, such as a work or school PC, without being instructed to do so by your IT administrator. +  +## Additional resources + +- [Trusted Platform Module Technology Overview](trusted-platform-module-overview.md) +- [Trusted Platform Module Services Group Policy Settings](trusted-platform-module-services-group-policy-settings.md) - [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -- [TPM WMI providers](https://msdn.microsoft.com/library/aa376476.aspx) -- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](https://technet.microsoft.com/itpro/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies#bkmk-tpmconfigurations) \ No newline at end of file +- [Schema Extensions for Windows Server 2008 R2 to support AD DS backup of TPM information from Windows 8 clients](ad-ds-schema-extensions-to-support-tpm-backup.md) +- [TPM WMI providers](https://go.microsoft.com/fwlink/p/?LinkId=93478) +- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](http://technet.microsoft.com/library/jj592683.aspx) diff --git a/windows/keep-secure/tpm-recommendations.md b/windows/keep-secure/tpm-recommendations.md index 20d05b68d2..0b34d5a9a8 100644 --- a/windows/keep-secure/tpm-recommendations.md +++ b/windows/keep-secure/tpm-recommendations.md @@ -12,21 +12,26 @@ author: brianlic-msft # TPM recommendations -**Applies to** - **Applies to** - Windows 10 -- Windows Server 2016 +- Windows 10 Mobile +- Windows Server 2016 +- Windows 10 IoT Core (IoT Core) This topic provides recommendations for Trusted Platform Module (TPM) technology for Windows 10. -For a basic feature description of TPM, see the [Trusted Platform Module Technology Overview](trusted-platform-module-overview.md). +## Overview -## TPM design and implementation +Trusted Platform Module (TPM) technology is designed to provide hardware-based, security-related functions. It has a security-related crypto-processor that is designed to carry out cryptographic operations in a variety of devices and form factors. It includes multiple physical security mechanisms to help prevent malicious software from tampering with the security functions of the TPM. Some of the key advantages of using TPM technology are that you can: +1. Generate, store, use, and protected cryptographic keys, +2. Use TPM technology for platform device authentication by using a unique endorsement key (EK), and +3. Help enhance platform integrity by taking and storing security measurements. + +The most common TPM functions are used for system integrity measurements and for key creation and use. During the boot process of a system, the boot code that is loaded (including firmware and the operating system components) can be measured and recorded in the TPM. The integrity measurements can be used as evidence for how a system started and to make sure that a TPM-based key was used only when the correct software was used to boot the system. Traditionally, TPMs have been discrete chips soldered to a computer’s motherboard. Such implementations allow the computer’s original equipment manufacturer (OEM) to evaluate and certify the TPM separate from the rest of the system. Although discrete TPM implementations are still common, they can be problematic for integrated devices that are small or have low power consumption. Some newer TPM implementations integrate TPM functionality into the same chipset as other platform components while still providing logical separation similar to discrete TPM chips. -TPMs are passive: they receive commands and return responses. To realize the full benefit of a TPM, the OEM must carefully integrate system hardware and firmware with the TPM to send it commands and react to its responses. TPMs were originally designed to provide security and privacy benefits to a platform’s owner and users, but newer versions can provide security and privacy benefits to the system hardware itself. Before it can be used for advanced scenarios, however, a TPM must be provisioned. Windows 10 automatically provisions a TPM, but if the user is planning to reinstall the operating system, he or she may need to clear the TPM before reinstalling so that Windows can take full advantage of the TPM. +TPMs are passive: they receive commands and return responses. To realize the full benefit of a TPM, the OEM must carefully integrate system hardware and firmware with the TPM to send it commands and react to its responses. TPMs were originally designed to provide security and privacy benefits to a platform’s owner and users, but newer versions can provide security and privacy benefits to the system hardware itself. Before it can be used for advanced scenarios, however, a TPM must be provisioned. Windows 10 automatically provisions a TPM, but if the user reinstalls the operating system, he or she may need to tell the operating system to explicitly provision the TPM again before it can use all the TPM’s features. The Trusted Computing Group (TCG) is the nonprofit organization that publishes and maintains the TPM specification. The TCG exists to develop, define, and promote vendor-neutral, global industry standards that support a hardware-based root of trust for interoperable trusted computing platforms. The TCG also publishes the TPM specification as the international standard ISO/IEC 11889, using the Publicly Available Specification Submission Process that the Joint Technical Committee 1 defines between the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC). @@ -34,6 +39,9 @@ OEMs implement the TPM as a component in a trusted computing platform, such as a The TCG designed the TPM as a low-cost, mass-market security solution that addresses the requirements of different customer segments. There are variations in the security properties of different TPM implementations just as there are variations in customer and regulatory requirements for different sectors. In public-sector procurement, for example, some governments have clearly defined security requirements for TPMs whereas others do not. +>**Note:**  Some information relates to pre-released product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. + + ## TPM 1.2 vs. 2.0 comparison From an industry standard, Microsoft has been an industry leader in moving and standardizing on TPM 2.0, which has many key realized benefits across algorithms, crypto, hierarchy, root keys, authorization and NV RAM. @@ -43,23 +51,16 @@ From an industry standard, Microsoft has been an industry leader in moving and s TPM 2.0 products and systems have important security advantages over TPM 1.2, including: - The TPM 1.2 spec only allows for the use of RSA and the SHA-1 hashing algorithm. - - For security reasons, some entities are moving away from SHA-1. Notably, NIST has required many federal agencies to move to SHA-256 as of 2014, and technology leaders, including Microsoft and Google have announced they will remove support for SHA-1 based signing or certificates in 2017. - - TPM 2.0 **enables greater crypto agility** by being more flexible with respect to cryptographic algorithms. - - TPM 2.0 supports newer algorithms, which can improve drive signing and key generation performance. For the full list of supported algorithms, see the [TCG Algorithm Registry](http://www.trustedcomputinggroup.org/tcg-algorithm-registry/). Some TPMs do not support all algorithms. - - - For the list of algorithms that Windows supports in the platform cryptographic storage provider, see [CNG Cryptographic Algorithm Providers](https://msdn.microsoft.com/library/windows/desktop/bb931354(v=vs.85).aspx). - + - TPM 2.0 supports SHA-256 as well as ECC, the latter being critical to drive signing and key generation performance. - TPM 2.0 achieved ISO standardization ([ISO/IEC 11889:2015](http://blogs.microsoft.com/cybertrust/2015/06/29/governments-recognize-the-importance-of-tpm-2-0-through-iso-adoption/)). - - Use of TPM 2.0 may help eliminate the need for OEMs to make exception to standard configurations for certain countries and regions. - TPM 2.0 offers a more **consistent experience** across different implementations. - TPM 1.2 implementations vary in policy settings. This may result in support issues as lockout policies vary. - - TPM 2.0 lockout policy is configured by Windows, ensuring a consistent dictionary attack protection guarantee. - While TPM 1.2 parts are discrete silicon components which are typically soldered on the motherboard, TPM 2.0 is available as a **discrete (dTPM)** silicon component in a single semiconductor package, an **integrated** component incorporated in one or more semiconductor packages - alongside other logic units in the same package(s) - and as a **firmware (fTPM)** based component running in a trusted execution environment (TEE) on a general purpose SoC. @@ -68,24 +69,22 @@ TPM 2.0 products and systems have important security advantages over TPM 1.2, in There are three implementation options for TPMs: -- Discrete TPM chip as a separate component in its own semiconductor package - -- Integrated TPM solution, using dedicated hardware integrated into one or more semiconductor packages alongside, but logically separate from, other components - +- Discrete TPM chip as a separate component in its own semiconductor package +- Integrated TPM solution, using dedicated hardware integrated into one or more semiconductor packages alongside, but logically separate from, other components - Firmware TPM solution, running the TPM in firmware in a Trusted Execution mode of a general purpose computation unit -Windows uses any compatible TPM in the same way. Microsoft does not take a position on which way a TPM should be implemented and there is a wide ecosystem of available TPM solutions which should suit all needs. +Windows uses any compatible TPM in the same way. Microsoft does not take a position on which way a TPM should be implemented and there is a wide ecosystem of available TPM solutions which should suit all needs. -## Is there any importance for TPM for consumers? +## Is there any importance for TPM for consumer? -For end consumers, TPM is behind the scenes but is still very relevant. TPM is used for Windows Hello, Windows Hello for Business and in the future, will be a component of many other key security features in Windows. TPM secures the PIN, helps encrypt passwords, and builds on our overall Windows 10 experience story for security as a critical pillar. Using Windows on a system with a TPM enables a deeper and broader level of security coverage. +For end consumers, TPM is behind the scenes but is still very relevant. TPM is used for Windows Hello, Windows Hello for Business and in the future, will be a components of many other key security features in Windows. TPM secures the PIN, helps encrypt passwords, and builds on our overall Windows 10 experience story for security as a critical pillar. Using Windows on a system with a TPM enables a deeper and broader level of security coverage. ## TPM 2.0 Compliance for Windows 10 ### Windows 10 for desktop editions (Home, Pro, Enterprise, and Education) -- Since July 28, 2016, all new device models, lines or series (or if you are updating the hardware configuration of a existing model, line or series with a major update, such as CPU, graphic cards) must implement and enable by default TPM 2.0 (details in section 3.7 of the [Minimum hardware requirements](https://msdn.microsoft.com/library/windows/hardware/dn915086(v=vs.85).aspx) page). - +- Since July 28, 2016, all new device models, lines or series (or if you are updating the hardware configuration of a existing model, line or series with a major update, such as CPU, graphic cards) must implement and enable by default TPM 2.0 (details in section 3.7, https://msdn.microsoft.com/library/windows/hardware/dn915086(v=vs.85).aspx) + ### IoT Core - TPM is optional on IoT Core. @@ -96,28 +95,212 @@ For end consumers, TPM is behind the scenes but is still very relevant. TPM is u ## TPM and Windows Features -The following table defines which Windows features require TPM support. +The following table defines which Windows features require TPM support. Some features are not applicable to Windows 7/8/8.1 and are noted accordingly. -| Windows Features | Windows 10 TPM 1.2 | Windows 10 TPM 2.0 | Details | -|-------------------------|----------------------|----------------------|----------| -| Measured Boot | Required | Required | Measured boot requires TPM 1.2 or 2.0 and UEFI Secure boot. | -| Bitlocker | Required | Required | TPM 1.2 or later required or a removable USB memory device such as a flash drive. | -| Passport: Domain AADJ Join | Required | Required | Supports both versions of TPM, but requires TPM with HMAC and EK certificate for key attestation support. | -| Passport: MSA or Local Account | Required | Required | TPM 2.0 is required with HMAC and EK certificate for key attestation support. | -| Device Encryption | Not Applicable | Required | TPM 2.0 is required for all InstantGo devices. | -| Device Guard / Configurable Code Integrity | See next column | Recommended | | -| Credential Guard | Required | Required | For Windows 10, version 1511, TPM 1.2 or 2.0 is highly recommended. If you don't have a TPM installed, Credential Guard will still be enabled, but the keys used to encrypt Credential Guard will not be protected by the TPM. | -| Device Health Attestation | Required | Required | | -| Windows Hello | Not Required | Recommended | | -| UEFI Secure Boot | Not Required | Recommended | | -| Platform Key Storage provider | Required | Required | | -| Virtual Smart Card | Required | Required | | -| Certificate storage (TPM bound) | Required | Required | | - -## OEM Status on TPM 2.0 system availability and certified parts + +++++++ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
    Windows FeaturesWindows 7/8/8.1 TPM 1.2Windows 10 TPM 1.2Windows 10 TPM 2.0Details
    Measured BootRequiredRequiredRequiredMeasured boot requires TPM 1.2 or 2.0 and UEFI Secure boot.
    BitlockerRequiredRequiredRequiredTPM 1.2 or later required or a removable USB memory device such as a flash drive.
    Passport: Domain AADJ Joinn/aRequiredRequiredSupports both versions of TPM, but requires TPM with HMAC and EK certificate for key attestation support.
    Passport: MSA or Local Accountn/aRequiredRequiredTPM 2.0 is required with HMAC and EK certificate for key attestation support.
    Device Encryptionn/aNot RequiredRequiredTPM 2.0 is required for all InstantGo devices.
    Device Guard / Configurable Code Integrityn/aOptionalOptional
    Credential Guardn/aRequiredRequiredFor Windows 10, version 1511, TPM 1.2 or 2.0 is highly recommended. If you don't have a TPM installed, Credential Guard will still be enabled, but the keys used to encrypt Credential Guard will not be protected by the TPM.
    Device Health Attestationn/aRequiredRequired
    Windows Hellon/aNot RequiredNot Required
    UEFI Secure BootNot RequiredNot RequiredNot Required
    Platform Key Storage providern/aRequiredRequired
    Virtual Smart Cardn/aRequiredRequired
    Certificate storage (TPM bound)n/aRequiredRequired
    +  +## Chipset options for TPM 2.0 +There is a vibrant ecosystem of TPM manufacturers. +### Discrete TPM + +++ + + + + + + + + + + +
    Supplier
      +
    • Infineon
    • +
    • Nuvoton
    • +
    • Atmel
    • +
    • NationZ
    • +
    • ST Micro
    • +
    +  +### Integrated TPM + +++ + + + + + + + + + + + + +
    SupplierChipset
    Intel
      +
    • Atom (CloverTrail) +
    • Baytrail
    • +
    • Braswell
    • +
    • 4th generation Core (Haswell)
    • +
    • 5th generation Core (Broadwell)
    • +
    • 6th generation Core (Skylake)
    • +
    • 7th generation Core (Kaby Lake)
    • +
    -Government customers and enterprise customers in regulated industries may have acquisition standards that require use of common certified TPM parts. As a result, OEMs, who provide the devices, may be required to use only certified TPM components on their commercial class systems. For more information, contact your OEM or hardware vendor. +### Firmware TPM + ++++ + + + + + + + + + + + + + + + + +
    SupplierChipset
    AMD
      +
    • Mullins
    • +
    • Beema
    • +
    • Carrizo
    • +
    Qualcomm
      +
    • MSM8994
    • +
    • MSM8992
    • +
    • MSM8952
    • +
    • MSM8909
    • +
    • MSM8208
    • +
    +  +## OEM Feedback and Status on TPM 2.0 system availability -## Related topics +### Certified TPM parts -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) \ No newline at end of file +Government customers and enterprise customers in regulated industries may have acquisition standards that require use of common certified TPM parts. As a result, OEMs, who provide the devices, may be required to use only certified TPM components on their commercial class systems. Discrete TPM 2.0 vendors have completion certification. + +### Windows 7 32-bit support + +Even though Windows 7 shipped before the TPM 2.0 spec or products existed, Microsoft backported TPM 2.0 support to Windows 7 64-bit and released it in summer 2014 as a downloadable Windows hotfix for UEFI based Windows 7 systems. Microsoft is not currently planning to backport support to Windows 7 32-bit support. diff --git a/windows/keep-secure/troubleshoot-onboarding-windows-defender-advanced-threat-protection.md b/windows/keep-secure/troubleshoot-onboarding-windows-defender-advanced-threat-protection.md index e95197be01..e3c1d51f68 100644 --- a/windows/keep-secure/troubleshoot-onboarding-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/troubleshoot-onboarding-windows-defender-advanced-threat-protection.md @@ -1,7 +1,7 @@ --- title: Troubleshoot Windows Defender ATP onboarding issues description: Troubleshoot issues that might arise during the onboarding of endpoints or to the Windows Defender ATP service. -keywords: troubleshoot onboarding, onboarding issues, event viewer, data collection and preview builds, sensor data and diagnostics +keywords: troubleshoot onboarding, onboarding issues, event viewer, data collection and preview builds, telemetry and diagnostics search.product: eADQiWindows 10XVcnh ms.prod: w10 ms.mktglfcycl: deploy @@ -65,7 +65,7 @@ Event ID | Error Type | Resolution steps 5 | Offboarding data was found but couldn't be deleted | Check the permissions on the registry, specifically ```HKLM\SOFTWARE\Policies\Microsoft\Windows Advanced Threat Protection```. 10 | Onboarding data couldn't be written to registry | Check the permissions on the registry, specifically
    ```HKLM\SOFTWARE\Policies\Microsoft\Windows Advanced Threat```.
    Verify that the script was ran as an administrator. 15 | Failed to start SENSE service |Check the service status (```sc query sense``` command). Make sure it's not in an intermediate state (*'Pending_Stopped'*, *'Pending_Running'*) and try to run the script again (with administrator rights). -15 | Failed to start SENSE service | If the message of the error is: System error 577 has occurred. You need to enable the Windows Defender ELAM driver, see [Ensure that Windows Defender is not disabled by a policy](#ensure-that-windows-defender-is-not-disabled-by-a-policy) for instructions. +15 | Failed to start SENSE service | If the message of the error is: System error 577 has occurred. You need to enable the Windows Defender ELAM driver, see [Ensure the Windows Defender ELAM driver is enabled](#ensure-the-windows-defender-elam-driver-is-enabled) for instructions. 30 | The script failed to wait for the service to start running | The service could have taken more time to start or has encountered errors while trying to start. For more information on events and errors related to SENSE, see [Review events and errors on endpoints with Event viewer](event-error-codes-windows-defender-advanced-threat-protection.md). 35 | The script failed to find needed onboarding status registry value | When the SENSE service starts for the first time, it writes onboarding status to the registry location
    ```HKLM\SOFTWARE\Microsoft\Windows Advanced Threat Protection\Status```.
    The script failed to find it after several seconds. You can manually test it and check if it's there. For more information on events and errors related to SENSE, see [Review events and errors on endpoints with Event viewer](event-error-codes-windows-defender-advanced-threat-protection.md). 40 | SENSE service onboarding status is not set to **1** | The SENSE service has failed to onboard properly. For more information on events and errors related to SENSE, see [Review events and errors on endpoints with Event viewer](event-error-codes-windows-defender-advanced-threat-protection.md). @@ -124,7 +124,7 @@ If the deployment tools used does not indicate an error in the onboarding proces - [Ensure the telemetry and diagnostics service is enabled](#ensure-the-telemetry-and-diagnostics-service-is-enabled) - [Ensure the service is set to start](#ensure-the-service-is-set-to-start) - [Ensure the endpoint has an Internet connection](#ensure-the-endpoint-has-an-internet-connection) -- [Ensure that Windows Defender is not disabled by a policy](#ensure-that-windows-defender-is-not-disabled-by-a-policy) +- [Ensure the Windows Defender ELAM driver is enabled](#ensure-the-windows-defender-elam-driver-is-enabled) ### View agent onboarding errors in the endpoint event log @@ -214,7 +214,7 @@ First, you should check that the service is set to start automatically when Wind ### Ensure the endpoint has an Internet connection -The Window Defender ATP sensor requires Microsoft Windows HTTP (WinHTTP) to report sensor data and communicate with the Windows Defender ATP service. +The Window Defender ATP sensor requires Microsoft Windows HTTP (WinHTTP) to report telemetry and communicate with the Windows Defender ATP service. WinHTTP is independent of the Internet browsing proxy settings and other user context applications and must be able to detect the proxy servers that are available in your particular environment. @@ -222,31 +222,98 @@ To ensure that sensor has service connectivity, follow the steps described in th If the verification fails and your environment is using a proxy to connect to the Internet, then follow the steps described in [Configure proxy and Internet connectivity settings](configure-proxy-internet-windows-defender-advanced-threat-protection.md) topic. -### Ensure that Windows Defender is not disabled by a policy -**Problem**: The Windows Defender ATP service does not start after onboarding. +### Ensure the Windows Defender ELAM driver is enabled +If your endpoints are running a third-party antimalware client, the Windows Defender ATP agent needs the Windows Defender Early Launch Antimalware (ELAM) driver to be enabled. -**Symptom**: Onboarding successfully completes, but you see error 577 when trying to start the service. +**Check the ELAM driver status:** -**Solution**: If your endpoints are running a third-party antimalware client, the Windows Defender ATP agent needs the Windows Defender Early Launch Antimalware (ELAM) driver to be enabled. You must ensure that it's not disabled in system policy. +1. Open a command-line prompt on the endpoint: -- Depending on the tool that you use to implement policies, you'll need to verify that the following Windows Defender policies are set to ```0``` or that the settings are cleared: + a. Click **Start**, type **cmd**, and select **Command prompt**. - - ```DisableAntiSpyware``` - - ```DisableAntiVirus``` +2. Enter the following command, and press Enter: + ``` + sc qc WdBoot + ``` + If the ELAM driver is enabled, the output will be: - For example, in Group Policy: + ``` + [SC] QueryServiceConfig SUCCESS - ``` - ``` -- After clearing the policy, run the onboarding steps again on the endpoint. + SERVICE_NAME: WdBoot + TYPE : 1 KERNEL_DRIVER + START_TYPE : 0 BOOT_START + ERROR_CONTROL : 1 NORMAL + BINARY_PATH_NAME : \SystemRoot\system32\drivers\WdBoot.sys + LOAD_ORDER_GROUP : Early-Launch + TAG : 0 + DISPLAY_NAME : Windows Defender Boot Driver + DEPENDENCIES : + SERVICE_START_NAME : + ``` + If the ELAM driver is disabled the output will be: + ``` + [SC] QueryServiceConfig SUCCESS -- You can also check the following registry key values to verify that the policy is disabled: + SERVICE_NAME: WdBoot + TYPE : 1 KERNEL_DRIVER + START_TYPE : 0 DEMAND_START + ERROR_CONTROL : 1 NORMAL + BINARY_PATH_NAME : \SystemRoot\system32\drivers\WdBoot.sys + LOAD_ORDER_GROUP : _Early-Launch + TAG : 0 + DISPLAY_NAME : Windows Defender Boot Driver + DEPENDENCIES : + SERVICE_START_NAME : + ``` - 1. Open the registry ```key HKEY_LOCAL_MACHINE\ SOFTWARE\Policies\Microsoft\Windows Defender```. - 2. Find the value ```DisableAntiSpyware```. - 3. Ensure that the value is set to 0. +#### Enable the ELAM driver - ![Image of registry key for Windows Defender](images/atp-disableantispyware-regkey.png) +1. Open an elevated PowerShell console on the endpoint: + + a. Click **Start**, type **powershell**. + + b. Right-click **Command prompt** and select **Run as administrator**. + +2. Run the following PowerShell cmdlet: + + ```text + 'Set-ExecutionPolicy -ExecutionPolicy Bypass’ + ``` +3. Run the following PowerShell script: + + ```text + Add-Type @' + using System; + using System.IO; + using System.Runtime.InteropServices; + using Microsoft.Win32.SafeHandles; + using System.ComponentModel; + + public static class Elam{ + [DllImport("Kernel32", CharSet=CharSet.Auto, SetLastError=true)] + public static extern bool InstallELAMCertificateInfo(SafeFileHandle handle); + + public static void InstallWdBoot(string path) + { + Console.Out.WriteLine("About to call create file on {0}", path); + var stream = File.Open(path, FileMode.Open, FileAccess.Read, FileShare.Read); + var handle = stream.SafeFileHandle; + + Console.Out.WriteLine("About to call InstallELAMCertificateInfo on handle {0}", handle.DangerousGetHandle()); + if (!InstallELAMCertificateInfo(handle)) + { + Console.Out.WriteLine("Call failed."); + throw new Win32Exception(Marshal.GetLastWin32Error()); + } + Console.Out.WriteLine("Call successful."); + } + } + '@ + + $driverPath = $env:SystemRoot + "\System32\Drivers\WdBoot.sys" + [Elam]::InstallWdBoot($driverPath) + ``` diff --git a/windows/keep-secure/troubleshoot-windows-defender-advanced-threat-protection.md b/windows/keep-secure/troubleshoot-windows-defender-advanced-threat-protection.md index 4cb0a35b53..fd485e8645 100644 --- a/windows/keep-secure/troubleshoot-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/troubleshoot-windows-defender-advanced-threat-protection.md @@ -46,7 +46,6 @@ U.S. region: - winatpfeedback.windows.com - winatpmanagement.windows.com - winatponboarding.windows.com -- winatpservicehealth.windows.com EU region: @@ -58,18 +57,11 @@ EU region: - winatpfeedback.windows.com - winatpmanagement.windows.com - winatponboarding.windows.com -- winatpservicehealth.windows.com ### Windows Defender ATP service shows event or error logs in the Event Viewer See the topic [Review events and errors on endpoints with Event Viewer](event-error-codes-windows-defender-advanced-threat-protection.md) for a list of event IDs that are reported by the Windows Defender ATP service. The topic also contains troubleshooting steps for event errors. -### Windows Defender ATP service fails to start after a reboot and shows error 577 - -If onboarding endpoints successfully completes but Windows Defender ATP does not start after a reboot and shows error 577, check that Windows Defender is not disabled by a policy. - -For more information, see [Ensure that Windows Defender is not disabled by policy](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md#ensure-that-windows-defender-is-not-disabled-by-a-policy). - ### Related topic - [Troubleshoot Windows Defender Advanced Threat Protection onboarding issues](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md) diff --git a/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md b/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md index ac8772f7b7..df382bc1fe 100644 --- a/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md +++ b/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md @@ -2222,7 +2222,7 @@ Description of the error.

    The support for your operating system has expired. Windows Defender is no longer supported on your operating system, has stopped functioning, and is not protecting against malware threats.

    -Event ID: 2050

    Symbolic name:

    MALWAREPROTECTION_SAMPLESUBMISSION_UPLOADED

    Message:

    The antimalware engine has uploaded a file for further analysis.
    Filename <uploaded filename>
    Sha256: <file SHA>

    Description:

    A file was uploaded to the Windows Defender Antimalware cloud for further analysis or processing.

    + Event ID: 3002 diff --git a/windows/keep-secure/trusted-platform-module-overview.md b/windows/keep-secure/trusted-platform-module-overview.md index ba05130ce1..a1b3a32c2d 100644 --- a/windows/keep-secure/trusted-platform-module-overview.md +++ b/windows/keep-secure/trusted-platform-module-overview.md @@ -1,6 +1,6 @@ --- title: Trusted Platform Module Technology Overview (Windows 10) -description: This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. +description: This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. The topic provides links to other resources about the TPM. ms.assetid: face8932-b034-4319-86ac-db1163d46538 ms.prod: w10 ms.mktglfcycl: deploy @@ -14,70 +14,64 @@ author: brianlic-msft **Applies to** - Windows 10 -- Windows Server 2016 -This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. +This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. The topic provides links to other resources about the TPM. -## Feature description +## Feature description Trusted Platform Module (TPM) technology is designed to provide hardware-based, security-related functions. A TPM chip is a secure crypto-processor that is designed to carry out cryptographic operations. The chip includes multiple physical security mechanisms to make it tamper resistant, and malicious software is unable to tamper with the security functions of the TPM. Some of the key advantages of using TPM technology are that you can: - Generate, store, and limit the use of cryptographic keys. - - Use TPM technology for platform device authentication by using the TPM’s unique RSA key, which is burned into itself. - - Help ensure platform integrity by taking and storing security measurements. The most common TPM functions are used for system integrity measurements and for key creation and use. During the boot process of a system, the boot code that is loaded (including firmware and the operating system components) can be measured and recorded in the TPM. The integrity measurements can be used as evidence for how a system started and to make sure that a TPM-based key was used only when the correct software was used to boot the system. TPM-based keys can be configured in a variety of ways. One option is to make a TPM-based key unavailable outside the TPM. This is good to mitigate phishing attacks because it prevents the key from being copied and used without the TPM. TPM-based keys can also be configured to require an authorization value to use them. If too many incorrect authorization guesses occur, the TPM will activate its dictionary attack logic and prevent further authorization value guesses. -Different versions of the TPM are defined in specifications by the Trusted Computing Group (TCG). For more information, consult the [TCG Web site](http://www.trustedcomputinggroup.org/work-groups/trusted-platform-module/). +Different versions of the TPM are defined in specifications by the Trusted Computing Group (TCG). For more information, consult the TCG Web site (). -### Automatic initialization of the TPM with Windows 10 +Windows can automatically provision and manage the TPM. Group Policy settings can be configured to control whether the TPM owner authorization value is backed up in Active Directory. Because the TPM state persists across operating system installations, TPM information is stored in a location in Active Directory that is separate from computer objects. Depending on an enterprise’s security goals, Group Policy can be configured to allow or prevent local administrators from resetting the TPM’s dictionary attack logic. Standard users can use the TPM, but Group Policy controls limit how many authorization failures standard users can attempt so that one user is unable to prevent other users or the administrator from using the TPM. TPM technology can also be used as a virtual smart card and for secure certificate storage. With BitLocker Network Unlock, domain-joined computers are not prompted for a BitLocker PIN. -Starting with Windows 10, the operating system automatically initializes and takes ownership of the TPM. This means that in most cases, we recommend that you avoid configuring the TPM through the TPM management console, **TPM.msc**. There are a few exceptions, mostly related to resetting or performing a clean installation on a PC. For more information, see [Clear all the keys from the TPM](initialize-and-configure-ownership-of-the-tpm.md#clear-all-the-keys-from-the-tpm). - -In certain specific enterprise scenarios limited to Windows 10, versions 1507 and 1511, Group Policy might be used to back up the TPM owner authorization value in Active Directory. Because the TPM state persists across operating system installations, this TPM information is stored in a location in Active Directory that is separate from computer objects. - -## Practical applications +## Practical applications Certificates can be installed or created on computers that are using the TPM. After a computer is provisioned, the RSA private key for a certificate is bound to the TPM and cannot be exported. The TPM can also be used as a replacement for smart cards, which reduces the costs associated with creating and disbursing smart cards. Automated provisioning in the TPM reduces the cost of TPM deployment in an enterprise. New APIs for TPM management can determine if TPM provisioning actions require physical presence of a service technician to approve TPM state change requests during the boot process. -Antimalware software can use the boot measurements of the operating system start state to prove the integrity of a computer running Windows 10 or Windows Server 2016. These measurements include the launch of Hyper-V to test that datacenters using virtualization are not running untrusted hypervisors. With BitLocker Network Unlock, IT administrators can push an update without concerns that a computer is waiting for PIN entry. +Antimalware software can use the boot measurements of the operating system start state to prove the integrity of a computer running Windows 10, Windows 8.1, Windows 8, Windows Server 2012 R2, or Windows Server 2012. These measurements include the launch of Hyper-V to test that datacenters using virtualization are not running untrusted hypervisors. With BitLocker Network Unlock, IT administrators can push an update without concerns that a computer is waiting for PIN entry. -The TPM has several Group Policy settings that might be useful in certain enterprise scenarios. For more info, see [TPM Group Policy Settings](trusted-platform-module-services-group-policy-settings.md). +The TPM has several Group Policy settings that can be used to manage how it is used. These settings can be used to manage the owner authorization value, the blocked TPM commands, the standard user lockout, and the backup of the TPM to AD DS. For more info, see [Trusted Platform Module Services Group Policy Settings](trusted-platform-module-services-group-policy-settings.md). -## New and changed functionality +## New and changed functionality -For more info on new and changed functionality for Trusted Platform Module in Windows 10, see [What's new in Trusted Platform Module?](https://technet.microsoft.com/itpro/windows/whats-new/whats-new-windows-10-version-1507-and-1511#trusted-platform-module). +For more info on new and changed functionality for Trusted Platform Module in Windows 10, see [What's new in Trusted Platform Module?](../whats-new/whats-new-windows-10-version-1507-and-1511.md#trusted-platform-module). -## Device health attestation +## Device health attestation Device health attestation enables enterprises to establish trust based on hardware and software components of a managed device. With device heath attestation, you can configure an MDM server to query a health attestation service that will allow or deny a managed device access to a secure resource. Some things that you can check on the device are: - Is Data Execution Prevention supported and enabled? - - Is BitLocker Drive Encryption supported and enabled? - - Is SecureBoot supported and enabled? -> [!NOTE] -> The device must be running Windows 10 and it must support at least TPM 2.0. +>**Note:**  The device must be running Windows 10 and it must support at least TPM 2.0. +  +## Supported versions -## Supported versions +| TPM version | Windows 10 | Windows Server 2012 R2, Windows 8.1, and Windows RT | Windows Server 2012, Windows 8, and Windows RT | Windows Server 2008 R2 and Windows 7 | +| - | - | - | - | - | +| TPM 1.2| X| X| X| X| +| TPM 2.0| X| X| X| X| -| TPM version | Windows 10 | Windows Server 2016 | -|-------------|------------|---------------------| -| TPM 1.2 | X | X | -| TPM 2.0 | X | X | +## Additional Resources -## Related topics - -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) -- [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](https://technet.microsoft.com/itpro/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies#bkmk-tpmconfigurations) +- [TPM Fundamentals](tpm-fundamentals.md) +- [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) +- [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) +- [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md) +- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](http://technet.microsoft.com/library/jj592683.aspx) +  +  diff --git a/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md b/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md index 27fa6ec7db..d927f73825 100644 --- a/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md +++ b/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md @@ -13,94 +13,102 @@ author: brianlic-msft **Applies to** - Windows 10 -- Windows Server 2016 This topic for the IT professional describes the Trusted Platform Module (TPM) Services that can be controlled centrally by using Group Policy settings. +## + The TPM Services Group Policy settings are located at: **Computer Configuration\\Administrative Templates\\System\\Trusted Platform Module Services\\** -| Setting | Windows 10, version 1607 and Windows Server 2016 | Windows 10, version 1511 and Windows 10, version 1507 | -|-----------------|--------------------------------------------------|-------------------------------------------------------| -| [Turn on TPM backup to Active Directory Domain Services](#turn-on-tpm-backup-to-active-directory-domain-services) | | X | -| [Configure the list of blocked TPM commands](#configure-the-list-of-blocked-tpm-commands) | X | X | -| [Ignore the default list of blocked TPM commands](#ignore-the-default-list-of-blocked-tpm-commands) | X | X | -| [Ignore the local list of blocked TPM commands](#ignore-the-local-list-of-blocked-tpm-commands) | X | X | -| [Configure the level of TPM owner authorization information available to the operating system](#configure-the-level-of-tpm-owner-authorization-information-available-to-the-operating-system) | X | X | -| [Standard User Lockout Duration](#standard-user-lockout-duration) | X | X | -| [Standard User Individual Lockout Threshold](#standard-user-individual-lockout-threshold) | X | X | -| [Standard User Total Lockout Threshold](#standard-user-total-lockout-threshold) | X | X | +| Setting | Windows 10, version 1607 | Windows 10, version 1511 and Windows 10, version 1507 | Windows Server 2012 R2, Windows 8.1 and Windows RT | Windows Server 2012, Windows 8 and Windows RT | Windows Server 2008 R2 and Windows 7 | Windows Server 2008 and Windows Vista | +| - | - | - | - | - | - | - | +| [Turn on TPM backup to Active Directory Domain Services](#bkmk-tpmgp-addsbu) | | X| X| X| X| X| +| [Configure the list of blocked TPM commands](#bkmk-tpmgp-clbtc)| X| X| X| X| X| X| +| [Ignore the default list of blocked TPM commands](#bkmk-tpmgp-idlb) | X| X| X| X| X| X| +| [Ignore the local list of blocked TPM commands](#bkmk-tpmgp-illb) | X| X| X| X| X| X| +| [Configure the level of TPM owner authorization information available to the operating system](#bkmk-tpmgp-oauthos)| | X| X| X||| +| [Standard User Lockout Duration](#bkmk-tpmgp-suld)| X| X| X| X||| +| [Standard User Individual Lockout Threshold](#bkmk-individual)| X| X| X| X||| +| [Standard User Total Lockout Threshold](#bkmk-total)| X| X| X| X|||| -### Turn on TPM backup to Active Directory Domain Services +### Turn on TPM backup to Active Directory Domain Services This policy setting allows you to manage the Active Directory Domain Services (AD DS) backup of TPM owner information. +>[!NOTE] +>This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). + + TPM owner information includes a cryptographic hash of the TPM owner password. Certain TPM commands can be run only by the TPM owner. This hash authorizes the TPM to run these commands. -> [!IMPORTANT] -> The **Turn on TPM backup to Active Directory Domain Services** is not available in the Windows 10, version 1607 and Windows Server 2016 and later versions of the ADMX files. +>[!IMPORTANT] +>To back up TPM owner information from a computer running Windows 10, version 1507, Windows 10, version 1511, Windows 8.1, or Windows 8, you might need to first set up appropriate schema extensions and access control settings on the domain so that the AD DS backup can succeed. Windows Server 2012 R2 and Windows Server 2012 include the required schema extensions by default. For more information, see [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md). This functionality is discontinued starting with Windows 10, version 1607. If you enable this policy setting, TPM owner information will be automatically and silently backed up to AD DS when you use Windows to set or change a TPM owner password. When this policy setting is enabled, a TPM owner password cannot be set or changed unless the computer is connected to the domain and the AD DS backup succeeds. If you disable or do not configure this policy setting, TPM owner information will not be backed up to AD DS. -### Configure the list of blocked TPM commands +>[!NOTE] +> The **Turn on TPM backup to Active Directory Domain Services** is not available in the Windows 10, version 1607 and Windows Server 2016 and later versions of the ADMX files. + + +### Configure the list of blocked TPM commands This policy setting allows you to manage the Group Policy list of Trusted Platform Module (TPM) commands that are blocked by Windows. -If you enable this policy setting, Windows will block the specified commands from being sent to the TPM on the computer. TPM commands are referenced by a command number. For example, command number 129 is **TPM\_OwnerReadInternalPub**, and command number 170 is **TPM\_FieldUpgrade**. To find the command number that is associated with each TPM command, at the command prompt, type **tpm.msc** to open the TPM Management Console and navigate to the **Command Management** section. +>**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). +  +If you enable this policy setting, Windows will block the specified commands from being sent to the TPM on the computer. TPM commands are referenced by a command number. For example, command number 129 is **TPM\_OwnerReadInternalPub**, and command number 170 is **TPM\_FieldUpgrade**. To find the command number that is associated with each TPM command, at the command prompt, type **tpm.msc**to open the TPM Management Console and navigate to the **Command Management** section. If you disable or do not configure this policy setting, only those TPM commands that are specified through the default or local lists can be blocked by Windows. The default list of blocked TPM commands is preconfigured by Windows. - You can view the default list by typing **tpm.msc** at the command prompt, navigating to the **Command Management** section, and exposing the **On Default Block List** column. - - The local list of blocked TPM commands is configured outside of Group Policy by running the TPM Management Console or scripting using the **Win32\_Tpm** interface. For information how to enforce or ignore the default and local lists of blocked TPM commands, see -- [Ignore the default list of blocked TPM commands](#ignore-the-default-list-of-blocked-tpm-commands) - -- [Ignore the local list of blocked TPM commands](#ignore-the-local-list-of-blocked-tpm-commands) - -### Ignore the default list of blocked TPM commands +- [Ignore the default list of blocked TPM commands](#bkmk-tpmgp-idlb) +- [Ignore the local list of blocked TPM commands](#bkmk-tpmgp-illb) +### Ignore the default list of blocked TPM commands This policy setting allows you to enforce or ignore the computer's default list of blocked Trusted Platform Module (TPM) commands. -The default list of blocked TPM commands is preconfigured by Windows. You can view the default list by typing **tpm.msc** at the command prompt to open the TPM Management Console, navigating to the **Command Management** section, and exposing the **On Default Block List** column. Also see the related policy setting, [Configure the list of blocked TPM commands](#configure-the-list-of-blocked-tpm-commands). +>**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). +  +The default list of blocked TPM commands is preconfigured by Windows. You can view the default list by typing **tpm.msc** at the command prompt to open the TPM Management Console, navigating to the **Command Management** section, and exposing the **On Default Block List** column. Also see the related policy setting, [Configure the list of blocked TPM commands](#bkmk-tpmgp-clbtc). If you enable this policy setting, the Windows operating system will ignore the computer's default list of blocked TPM commands, and it will block only those TPM commands that are specified by Group Policy or the local list. If you disable or do not configure this policy setting, Windows will block the TPM commands in the default list, in addition to the commands that are specified by Group Policy and the local list of blocked TPM commands. -### Ignore the local list of blocked TPM commands +### Ignore the local list of blocked TPM commands This policy setting allows you to enforce or ignore the computer's local list of blocked Trusted Platform Module (TPM) commands. -The local list of blocked TPM commands is configured outside of Group Policy by typing **tpm.msc** at the command prompt to open the TPM Management Console, or scripting using the **Win32\_Tpm** interface. (The default list of blocked TPM commands is preconfigured by Windows.) Also see the related policy setting, [Configure the list of blocked TPM commands](#configure-the-list-of-blocked-tpm-commands). +>**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). +  +The local list of blocked TPM commands is configured outside of Group Policy by typing **tpm.msc** at the command prompt to open the TPM Management Console, or scripting using the **Win32\_Tpm** interface. (The default list of blocked TPM commands is preconfigured by Windows.) Also see the related policy setting to **Configure the list of blocked TPM commands**. If you enable this policy setting, the Windows operating system will ignore the computer's local list of blocked TPM commands, and it will block only those TPM commands that are specified by Group Policy or the default list. If you disable or do not configure this policy setting, Windows will block the TPM commands in the local list, in addition to the commands that are specified in Group Policy and the default list of blocked TPM commands. -### Configure the level of TPM owner authorization information available to the operating system +### Configure the level of TPM owner authorization information available to the operating system This policy setting configures how much of the TPM owner authorization information is stored in the registry of the local computer. Depending on the amount of TPM owner authorization information that is stored locally, the Windows operating system and TPM-based applications can perform certain actions in the TPM that require TPM owner authorization without requiring the user to enter the TPM owner password. -> [!IMPORTANT] -> This policy setting is not available in the Windows 10, version 1607 and Windows Server 2016 and later versions of the ADMX files. - +>**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). +  There are three TPM owner authentication settings that are managed by the Windows operating system. You can choose a value of **Full**, **Delegate**, or **None**. - **Full**   This setting stores the full TPM owner authorization, the TPM administrative delegation blob, and the TPM user delegation blob in the local registry. With this setting, you can use the TPM without requiring remote or external storage of the TPM owner authorization value. This setting is appropriate for scenarios that do not require you to reset the TPM anti-hammering logic or change the TPM owner authorization value. Some TPM-based applications may require that this setting is changed before features that depend on the TPM anti-hammering logic can be used. - - **Delegated**   This setting stores only the TPM administrative delegation blob and the TPM user delegation blob in the local registry. This setting is appropriate for use with TPM-based applications that depend on the TPM antihammering logic. This is the default setting in Windows. - - **None**   This setting provides compatibility with previous operating systems and applications. You can also use it for scenarios when TPM owner authorization cannot be stored locally. Using this setting might cause issues with some TPM-based applications. -> [!NOTE] -> If the operating system managed TPM authentication setting is changed from **Full** to **Delegated**, the full TPM owner authorization value will be regenerated, and any copies of the previously set TPM owner authorization value will be invalid. - +>**Note:**  If the operating system managed TPM authentication setting is changed from **Full** to **Delegated**, the full TPM owner authorization value will be regenerated, and any copies of the previously set TPM owner authorization value will be invalid. +  **Registry information** Registry key: HKEY\_LOCAL\_MACHINE\\SOFTWARE\\Policies\\Microsoft\\TPM @@ -109,41 +117,43 @@ DWORD: OSManagedAuthLevel The following table shows the TPM owner authorization values in the registry. -| Value Data | Setting | -|------------|-----------| -| 0 | None | -| 2 | Delegated | -| 4 | Full | - +| Value Data | Setting | +| - | - | +| 0 | None| +| 2 | Delegated| +| 4 | Full|   If you enable this policy setting, the Windows operating system will store the TPM owner authorization in the registry of the local computer according to the TPM authentication setting you choose. -If you disable or do not configure this policy setting, and the **Turn on TPM backup to Active Directory Domain Services** policy setting is also disabled or not configured, the default setting is to store the full TPM authorization value in the local registry. If this policy is disabled or not +If you disable or do not configure this policy setting, and the **Turn on TPM backup to Active Directory Domain Services** policy setting is also disabled or not configured, the default setting is to store the full TPM authorization value in the local registry. If this policy is disabled or not configured, and the **Turn on TPM backup to Active Directory Domain Services** policy setting is enabled, only the administrative delegation and the user delegation blobs are stored in the local registry. -### Standard User Lockout Duration +### Standard User Lockout Duration -This policy setting allows you to manage the duration in minutes for counting standard user authorization failures for Trusted Platform Module (TPM) commands requiring authorization. An authorization failure occurs each time a standard user sends a command to the TPM and receives an error response that indicates an authorization failure occurred. Authorization failures that are older than the duration you set are ignored. If the number of TPM commands with an authorization failure within the lockout duration equals a threshold, a standard user is prevented from sending commands that require +This policy setting allows you to manage the duration in minutes for counting standard user authorization failures for Trusted Platform Module (TPM) commands requiring authorization. An authorization failure occurs each time a standard user sends a command to the TPM and receives an error response that indicates an authorization failure occurred. Authorization failures that are older than the duration you set are ignored. If the number of TPM commands with an authorization failure within the lockout duration equals a threshold, a standard user is prevented from sending commands that require authorization to the TPM. +>**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). +  The TPM is designed to protect itself against password guessing attacks by entering a hardware lockout mode when it receives too many commands with an incorrect authorization value. When the TPM enters a lockout mode, it is global for all users (including administrators) and for Windows features such as BitLocker Drive Encryption. This setting helps administrators prevent the TPM hardware from entering a lockout mode by slowing the speed at which standard users can send commands that require authorization to the TPM. For each standard user, two thresholds apply. Exceeding either threshold prevents the user from sending a command that requires authorization to the TPM. Use the following policy settings to set the lockout duration: -- [Standard User Individual Lockout Threshold](#standard-user-individual-lockout-threshold)   This value is the maximum number of authorization failures that each standard user can have before the user is not allowed to send commands that require authorization to the TPM. - -- [Standard User Total Lockout Threshold](#standard-user-total-lockout-threshold)   This value is the maximum total number of authorization failures that all standard users can have before all standard users are not allowed to send commands that require authorization to the TPM. +- [Standard User Individual Lockout Threshold](#bkmk-individual)   This value is the maximum number of authorization failures that each standard user can have before the user is not allowed to send commands that require authorization to the TPM. +- [Standard User Total Lockout Threshold](#bkmk-total)   This value is the maximum total number of authorization failures that all standard users can have before all standard users are not allowed to send commands that require authorization to the TPM. An administrator with the TPM owner password can fully reset the TPM's hardware lockout logic by using the TPM Management Console (tpm.msc). Each time an administrator resets the TPM's hardware lockout logic, all prior standard user TPM authorization failures are ignored. This allows standard users to immediately use the TPM normally. If you do not configure this policy setting, a default value of 480 minutes (8 hours) is used. -### Standard User Individual Lockout Threshold +### Standard User Individual Lockout Threshold This policy setting allows you to manage the maximum number of authorization failures for each standard user for the Trusted Platform Module (TPM). This value is the maximum number of authorization failures that each standard user can have before the user is not allowed to send commands that require authorization to the TPM. If the number of authorization failures for the user within the duration that is set for the **Standard User Lockout Duration** policy setting equals this value, the standard user is prevented from sending commands that require authorization to the Trusted Platform Module (TPM). +>**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). +  This setting helps administrators prevent the TPM hardware from entering a lockout mode by slowing the speed at which standard users can send commands that require authorization to the TPM. An authorization failure occurs each time a standard user sends a command to the TPM and receives an error response indicating an authorization failure occurred. Authorization failures older than the duration are ignored. @@ -152,20 +162,29 @@ An administrator with the TPM owner password can fully reset the TPM's hardware If you do not configure this policy setting, a default value of 4 is used. A value of zero means that the operating system will not allow standard users to send commands to the TPM, which might cause an authorization failure. -### Standard User Total Lockout Threshold +### Standard User Total Lockout Threshold This policy setting allows you to manage the maximum number of authorization failures for all standard users for the Trusted Platform Module (TPM). If the total number of authorization failures for all standard users within the duration that is set for the **Standard User Lockout Duration** policy equals this value, all standard users are prevented from sending commands that require authorization to the Trusted Platform Module (TPM). +>**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). +  This setting helps administrators prevent the TPM hardware from entering a lockout mode because it slows the speed standard users can send commands requiring authorization to the TPM. An authorization failure occurs each time a standard user sends a command to the TPM and receives an error response indicating an authorization failure occurred. Authorization failures older than the duration are ignored. +For each standard user two thresholds apply. Exceeding either threshold will prevent the standard user from sending a command to the TPM that requires authorization. + +1. The standard user individual lockout value is the maximum number of authorization failures each standard user may have before the user is not allowed to send commands requiring authorization to the TPM. +2. The standard user total lockout threshold value is the maximum total number of authorization failures all standard users may have before all standard users are not allowed to send commands requiring authorization to the TPM. +The TPM is designed to protect itself against password guessing attacks by entering a hardware lockout mode when it receives too many commands with an incorrect authorization value. When the TPM enters a lockout mode, it is global for all users (including administrators) and for Windows features +such as BitLocker Drive Encryption.. + An administrator with the TPM owner password can fully reset the TPM's hardware lockout logic by using the TPM Management Console (tpm.msc). Each time an administrator resets the TPM's hardware lockout logic, all prior standard user TPM authorization failures are ignored. This allows standard users to immediately use the TPM normally. If you do not configure this policy setting, a default value of 9 is used. A value of zero means that the operating system will not allow standard users to send commands to the TPM, which might cause an authorization failure. -## Related topics +## Additional resources -- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) +- [Trusted Platform Module Technology Overview](trusted-platform-module-overview.md) - [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](https://technet.microsoft.com/itpro/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies#bkmk-tpmconfigurations) \ No newline at end of file +- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](http://technet.microsoft.com/library/jj592683.aspx) diff --git a/windows/keep-secure/trusted-platform-module-top-node.md b/windows/keep-secure/trusted-platform-module-top-node.md deleted file mode 100644 index ad6428c661..0000000000 --- a/windows/keep-secure/trusted-platform-module-top-node.md +++ /dev/null @@ -1,33 +0,0 @@ ---- -title: Trusted Platform Module (Windows 10) -description: This topic for the IT professional provides links to information about the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: security -localizationpriority: high -author: brianlic-msft ---- - -# Trusted Platform Module - -**Applies to** -- Windows 10 -- Windows Server 2016 - -Trusted Platform Module (TPM) technology is designed to provide hardware-based, security-related functions. A TPM chip is a secure crypto-processor that helps you with actions such as generating, storing, and limiting the use of cryptographic keys. The following topics provide details. - - - -| Topic | Description | -|-------|-------------| -| [Trusted Platform Module Overview](trusted-platform-module-overview.md) | Provides an overview of the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. | -| [TPM fundamentals](tpm-fundamentals.md) | Provides background about how a TPM can work with cryptographic keys. Also describes technologies that work with the TPM, such as TPM-based virtual smart cards. | -| [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) | Describes TPM services that can be controlled centrally by using Group Policy settings. | -| [Back up the TPM recovery information to AD DS](backup-tpm-recovery-information-to-ad-ds.md) | For Windows 10, version 1511 and Windows 10, version 1507 only, describes how to back up a computer’s TPM information to Active Directory Domain Services. | -| [Manage TPM commands](manage-tpm-commands.md) | Describes methods by which a local or domain administrator can block or allow specific TPM commands. | -| [Manage TPM lockout](manage-tpm-lockout.md) | Describes how TPM lockout works (to help prevent tampering or malicious attacks), and outlines ways to work with TPM lockout settings. | -| [Change the TPM owner password](change-the-tpm-owner-password.md) | In most cases, applies to Windows 10, version 1511 and Windows 10, version 1507 only. Tells how to change the TPM owner password. | -| [View status, clear, or troubleshoot the TPM](initialize-and-configure-ownership-of-the-tpm.md) | Describes actions you can take through the TPM snap-in, TPM.msc: view TPM status, troubleshoot TPM initialization, and clear keys from the TPM. Also, for TPM 1.2 and Windows 10, version 1507 or 1511, describes how to turn the TPM on or off. | -| [Understanding PCR banks on TPM 2.0 devices](switch-pcr-banks-on-tpm-2-0-devices.md) | Provides background about what happens when you switch PCR banks on TPM 2.0 devices. | -| [TPM recommendations](tpm-recommendations.md) | Discusses aspects of TPMs such as the difference between TPM 1.2 and 2.0, and the Windows 10 features for which a TPM is required or recommended. | diff --git a/windows/keep-secure/understanding-applocker-default-rules.md b/windows/keep-secure/understanding-applocker-default-rules.md index f0b744d7ad..b0aa99f22e 100644 --- a/windows/keep-secure/understanding-applocker-default-rules.md +++ b/windows/keep-secure/understanding-applocker-default-rules.md @@ -42,4 +42,5 @@ These permissions settings are applied to this folder for app compatibility. How ## Related topics - [How AppLocker works](how-applocker-works-techref.md) -- [Create AppLocker default rules](create-applocker-default-rules.md) \ No newline at end of file +  +  diff --git a/windows/keep-secure/understanding-applocker-rule-collections.md b/windows/keep-secure/understanding-applocker-rule-collections.md index bfe5fd07ce..b8adef234c 100644 --- a/windows/keep-secure/understanding-applocker-rule-collections.md +++ b/windows/keep-secure/understanding-applocker-rule-collections.md @@ -33,5 +33,3 @@ For info about how to enable the DLL rule collection, see [Enable the DLL rule c ## Related topics - [How AppLocker works](how-applocker-works-techref.md) -- [Understanding AppLocker default rules](understanding-applocker-default-rules.md) - diff --git a/windows/keep-secure/use-applocker-and-software-restriction-policies-in-the-same-domain.md b/windows/keep-secure/use-applocker-and-software-restriction-policies-in-the-same-domain.md index 0fa2a8f258..17fe40b6a1 100644 --- a/windows/keep-secure/use-applocker-and-software-restriction-policies-in-the-same-domain.md +++ b/windows/keep-secure/use-applocker-and-software-restriction-policies-in-the-same-domain.md @@ -61,7 +61,7 @@ The following table compares the features and functions of Software Restriction

    Enforcement mode

    SRP works in the “deny list mode” where administrators can create rules for files that they do not want to allow in this Enterprise whereas the rest of the file are allowed to run by default.

    -

    SRP can also be configured in the “allow list mode” so that by default all files are blocked and administrators need to create allow rules for files that they want to allow.

    +

    SRP can also be configured in the “allow list mode” such that the by default all files are blocked and administrators need to create allow rules for files that they want to allow.

    AppLocker by default works in the “allow list mode” where only those files are allowed to run for which there is a matching allow rule.

    diff --git a/windows/keep-secure/using-event-viewer-with-applocker.md b/windows/keep-secure/using-event-viewer-with-applocker.md index 7a3b0f4f8d..1b1b80e64f 100644 --- a/windows/keep-secure/using-event-viewer-with-applocker.md +++ b/windows/keep-secure/using-event-viewer-with-applocker.md @@ -46,7 +46,7 @@ The following table contains information about the events that you can use to de | 8005| Information| *<File name> * was allowed to run.| Specifies that the script or .msi file is allowed by an AppLocker rule.| | 8006 | Warning| *<File name> * was allowed to run but would have been prevented from running if the AppLocker policy were enforced.| Applied only when the **Audit only ** enforcement mode is enabled. Specifies that the script or .msi file would be blocked if the **Enforce rules ** enforcement mode were enabled. | | 8007 | Error| *<File name> * was not allowed to run.| Access to *<file name> * is restricted by the administrator. Applied only when the **Enforce rules ** enforcement mode is set either directly or indirectly through Group Policy inheritance. The script or .msi file cannot run.| -| 8008| Error| AppLocker disabled on the SKU.| Added in Windows Server 2012 and Windows 8.| +| 8007| Error| AppLocker disabled on the SKU.| Added in Windows Server 2012 and Windows 8.| | 8020| Information| Packaged app allowed.| Added in Windows Server 2012 and Windows 8.| | 8021| Information| Packaged app audited.| Added in Windows Server 2012 and Windows 8.| | 8022| Information| Packaged app disabled.| Added in Windows Server 2012 and Windows 8.| diff --git a/windows/keep-secure/using-owa-with-wip.md b/windows/keep-secure/using-owa-with-wip.md deleted file mode 100644 index f4046b30a6..0000000000 --- a/windows/keep-secure/using-owa-with-wip.md +++ /dev/null @@ -1,35 +0,0 @@ ---- -title: Using Outlook Web Access with Windows Information Protection (WIP) (Windows 10) -description: Options for using Outlook Web Access (OWA) with Windows Information Protection (WIP). -keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and OWA configuration -ms.prod: w10 -ms.mktglfcycl: explore -ms.sitesec: library -ms.pagetype: security -localizationpriority: high ---- - -# Using Outlook Web Access with Windows Information Protection (WIP) -**Applies to:** - -- Windows 10, version 1607 -- Windows 10 Mobile - ->Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). - -Because Outlook Web Access (OWA) can be used both personally and as part of your organization, you have the following options to configure it with Windows Information Protection (WIP): - -|Option |OWA behavior | -|-------|-------------| -|Disable OWA. Employees can only use Microsoft Outlook 2016 or the Office 365 Mail app. | Disabled. | -|Don't configure outlook.office.com in any of your networking settings. |All mailboxes are automatically marked as personal. This means employees attempting to copy work content into OWA receive prompts and that files downloaded from OWA aren't automatically protected as corporate data. | -|Do all of the following:
    • Create a domain (such as mail.contoso.com, redirecting to outlook.office.com) that can be used by your employees to access work email.
    • Add the new domain to the Enterprise Cloud Resources network element in your WIP policy.
    • Add the following URLs to the Neutral Resources network element in your WIP policy:
      • outlook.office365.com
      • outlook.office.com
      • outlook-sdf.office.com
      • attachment.outlook.office.net
    |Inbox content accessed through the new domain is automatically marked as corporate data, while content accessed through personal email is automatically marked as personal. | -|Add outlook.office.com to the Enterprise Cloud Resources network element in your WIP policy. |All mailboxes are automatically marked as corporate. This means any personal inboxes hosted on Office 365 are also automatically marked as corporate data. | - ->[!NOTE] ->These limitations don’t apply to Outlook 2016 or to the Office 365 Mail and Calendar apps. These apps will work properly, marking an employee’s mailbox as corporate data, regardless of how you’ve configured outlook.office.com in your network settings. - - - - - diff --git a/windows/keep-secure/windows-credential-theft-mitigation-guide-abstract.md b/windows/keep-secure/windows-credential-theft-mitigation-guide-abstract.md deleted file mode 100644 index 44a10d1bbe..0000000000 --- a/windows/keep-secure/windows-credential-theft-mitigation-guide-abstract.md +++ /dev/null @@ -1,67 +0,0 @@ ---- -title: Windows 10 Credential Theft Mitigation Guide Abstract (Windows 10) -description: Provides a summary of the Windows 10 credential theft mitigation guide. -ms.assetid: 821ddc1a-f401-4732-82a7-40d1fff5a78a -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: security -author: justinha ---- - -# Windows 10 Credential Theft Mitigation Guide Abstract - -**Applies to** -- Windows 10 - -This topic provides a summary of the Windows 10 credential theft mitigation guide, which can be downloaded from the [Microsoft Download Center](http://download.microsoft.com/download/C/1/4/C14579CA-E564-4743-8B51-61C0882662AC/Windows 10 credential theft mitigation guide.docx). -This guide explains how credential theft attacks occur and the strategies and countermeasures you can implement to mitigate them, following these security stages: - -- Identify high-value assets -- Protect against known and unknown threats -- Detect pass-the-hash and related attacks -- Respond to suspicious activity -- Recover from a breach - -![Security stages](images\security-stages.png) - -## Attacks that steal credentials - -Learn about the different types of attacks that are used to steal credentials, and the factors that can place your organization at risk. -The types of attacks that are covered include: - -- Pass the hash -- Kerberos pass the ticket -- Kerberos golden ticket and silver ticket -- Key loggers -- Shoulder surfing - -## Credential protection strategies - -This part of the guide helps you consider the mindset of the attacker, with prescriptive guidance about how to prioritize high-value accounts and computers. -You'll learn how to architect a defense against credential theft: - -- Establish a containment model for account privileges -- Harden and restrict administrative hosts -- Ensure that security configurations and best practices are implemented - -## Technical countermeasures for credential theft - -Objectives and expected outcomes are covered for each of these countermeasures: - -- Use Windows 10 with Credential Guard -- Restrict and protect high-privilege domain accounts -- Restrict and protect local accounts with administrative privileges -- Restrict inbound network traffic - -Many other countermeasures are also covered, such as using Microsoft Passport and Windows Hello, or multifactor authentication. - -## Detecting credential attacks - -This sections covers how to detect the use of stolen credentials and how to collect computer events to help you detect credential theft. - -## Responding to suspicious activity - -Learn Microsoft's recommendations for responding to incidents, including how to recover control of compromised accounts, how to investigate attacks, and how to recover from a breach. - - diff --git a/windows/keep-secure/windows-defender-advanced-threat-protection.md b/windows/keep-secure/windows-defender-advanced-threat-protection.md index 0a9feddff7..7a77dece05 100644 --- a/windows/keep-secure/windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/windows-defender-advanced-threat-protection.md @@ -21,8 +21,6 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) ->Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=technet-wd-atp-abovefoldlink1) -> >For more info about Windows 10 Enterprise Edition features and functionality, see [Windows 10 Enterprise edition](https://www.microsoft.com/WindowsForBusiness/buy). Windows Defender Advanced Threat Protection (Windows Defender ATP) is a security service that enables enterprise customers to detect, investigate, and respond to advanced threats on their networks. @@ -32,7 +30,7 @@ Windows Defender ATP uses the following combination of technology built into Win - **Endpoint behavioral sensors**: Embedded in Windows 10, these sensors collect and process behavioral signals from the operating system (for example, process, registry, file, and network communications) - and sends this sensor data to your private, isolated, cloud instance of Windows Defender ATP. + and sends this telemetry to your private, isolated, cloud instance of Windows Defender ATP. - **Cloud security analytics**: Leveraging big-data, machine-learning, and @@ -47,7 +45,7 @@ Windows Defender ATP uses the following combination of technology built into Win and augmented by threat intelligence provided by partners, threat intelligence enables Windows Defender ATP to identify attacker tools, techniques, and procedures, and generate alerts when these - are observed in collected sensor data. + are observed in collected telemetry. The following diagram shows these Windows Defender ATP service components: @@ -93,6 +91,3 @@ Topic | Description [Troubleshoot Windows Defender Advanced Threat Protection](troubleshoot-windows-defender-advanced-threat-protection.md) | This topic contains information to help IT Pros find workarounds for the known issues and troubleshoot issues in Windows Defender ATP. [Review events and errors on endpoints with Event Viewer](event-error-codes-windows-defender-advanced-threat-protection.md)| Review events and errors associated with event IDs to determine if further troubleshooting steps are required. [Windows Defender compatibility](defender-compatibility-windows-defender-advanced-threat-protection.md) | Learn about how Windows Defender works in conjunction with Windows Defender ATP. - -## Related topic -[Windows Defender ATP helps detect sophisticated threats](https://www.microsoft.com/itshowcase/Article/Content/854/Windows-Defender-ATP-helps-detect-sophisticated-threats) diff --git a/windows/keep-secure/windows-defender-block-at-first-sight.md b/windows/keep-secure/windows-defender-block-at-first-sight.md index a31f43f6ee..8abf7c0806 100644 --- a/windows/keep-secure/windows-defender-block-at-first-sight.md +++ b/windows/keep-secure/windows-defender-block-at-first-sight.md @@ -30,9 +30,6 @@ It is enabled by default when certain pre-requisite settings are also enabled. I When a Windows Defender client encounters a suspicious but undetected file, it queries our cloud protection backend. The cloud backend will apply heuristics, machine learning, and automated analysis of the file to determine the files as malicious or clean. -> [!NOTE] -> The Block at first sight feature only use the cloud protection backend for executable files that are downloaded from the Internet, or originating from the Internet zone. A hash value of the EXE file is checked via the cloud backend to determine if this is a previously undetected file. - If the cloud backend is unable to make a determination, the file will be locked by Windows Defender while a copy is uploaded to the cloud. Only after the cloud has received the file will Windows Defender release the lock and let the file run. The cloud will perform additional analysis to reach a determination, blocking all future encounters of that file. In many cases this process can reduce the response time to new malware from hours to seconds. diff --git a/windows/keep-secure/windows-defender-in-windows-10.md b/windows/keep-secure/windows-defender-in-windows-10.md index 58ecb02cde..7ad3e53061 100644 --- a/windows/keep-secure/windows-defender-in-windows-10.md +++ b/windows/keep-secure/windows-defender-in-windows-10.md @@ -18,7 +18,7 @@ author: jasesso Windows Defender in Windows 10 is a built-in antimalware solution that provides security and antimalware management for desktops, portable computers, and servers. This topic provides an overview of Windows Defender, including a list of system requirements and new features. -For more important information about running Windows Defender on a server platform, see [Windows Defender Overview for Windows Server](https://technet.microsoft.com/windows-server-docs/security/windows-defender/windows-defender-overview-windows-server). +For more important information about running Windows Defender on a server platform, see [Windows Defender Overview for Windows Server Technical Preview](https://technet.microsoft.com/library/dn765478.aspx). Take advantage of Windows Defender by configuring settings and definitions using the following tools: - Microsoft Active Directory *Group Policy* for settings diff --git a/windows/keep-secure/wip-app-enterprise-context.md b/windows/keep-secure/wip-app-enterprise-context.md deleted file mode 100644 index b4ebd4ced4..0000000000 --- a/windows/keep-secure/wip-app-enterprise-context.md +++ /dev/null @@ -1,55 +0,0 @@ ---- -title: Determine the Enterprise Context of an app running in Windows Information Protection (WIP) (Windows 10) -description: Use the Task Manager to determine whether an app is considered work, personal or exempt by Windows Information Protection (WIP). -keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and Task Manager, app context, enterprise context -ms.prod: w10 -ms.mktglfcycl: explore -ms.sitesec: library -ms.pagetype: security -localizationpriority: high ---- - -# Determine the Enterprise Context of an app running in Windows Information Protection (WIP) -**Applies to:** - -- Windows 10, version 1607 -- Windows 10 Mobile - ->Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). - -Use Task Manager to check the context of your apps while running in Windows Information Protection (WIP) to make sure that your organization's policies are applied and running correctly. - -## Viewing the Enterprise Context column in Task Manager -You need to add the Enterprise Context column to the **Details** tab of the Task Manager. - -1. Make sure that you have an active WIP policy deployed and turned on in your organization. - -2. Open the Task Manager (taskmgr.exe), click the **Details** tab, right-click in the column heading area, and click **Select columns**. - - The **Select columns** box appears. - - ![Task Manager, Select column box with Enterprise Context option selected](images/wip-select-column.png) - -3. Scroll down and check the **Enterprise Context** option, and then click **OK** to close the box. - - The **Enterprise Context** column should now be available in Task Manager. - - ![Task Manager, Enterprise Context column highlighted](images/wip-taskmgr.png) - -## Review the Enterprise Context -The **Enterprise Context** column shows you what each app can do with your enterprise data: - -- **Domain.** Shows the employee's work domain (such as, corp.contoso.com). This app is considered work-related and can freely touch and open work data and resources. - -- **Personal.** Shows the text, *Personal*. This app is considered non-work-related and can't touch any work data or resources. - -- **Exempt.** Shows the text, *Exempt*. WIP policies don't apply to these apps (such as, system components). - - >[!IMPORTANT] - >Enlightened apps can change between Work and Personal, depending on the data being touched. For example, Microsoft Word 2016 shows as **Personal** when an employee opens a personal letter, but changes to **Work** when that same employee opens the company financials. - - - - - - diff --git a/windows/keep-secure/working-with-applocker-rules.md b/windows/keep-secure/working-with-applocker-rules.md index c6fd38667f..9c528133ef 100644 --- a/windows/keep-secure/working-with-applocker-rules.md +++ b/windows/keep-secure/working-with-applocker-rules.md @@ -89,7 +89,6 @@ The following table describes how a publisher condition is applied. | Option | The publisher condition allows or denies… | -|---|---| | **All signed files** | All files that are signed by any publisher.| | **Publisher only**| All files that are signed by the named publisher.| | **Publisher and product name**| All files for the specified product that are signed by the named publisher.| @@ -124,7 +123,7 @@ When you choose the file hash rule condition, the system computes a cryptographi ## AppLocker default rules -AppLocker includes default rules, which are intended to help ensure that the files that are required for Windows to operate properly are allowed in an AppLocker rule collection. For background, see [Understanding AppLocker default rules](understanding-applocker-default-rules.md), and for steps, see [Create AppLocker default rules](create-applocker-default-rules.md). +AppLocker allows you to generate default rules for each rule collection. Executable default rule types include: diff --git a/windows/manage/.vscode/settings.json b/windows/manage/.vscode/settings.json deleted file mode 100644 index 20af2f68a6..0000000000 --- a/windows/manage/.vscode/settings.json +++ /dev/null @@ -1,3 +0,0 @@ -// Place your settings in this file to overwrite default and user settings. -{ -} \ No newline at end of file diff --git a/windows/manage/TOC.md b/windows/manage/TOC.md index d68415cde7..54af0df920 100644 --- a/windows/manage/TOC.md +++ b/windows/manage/TOC.md @@ -1,21 +1,7 @@ # [Manage and update Windows 10](index.md) ## [Administrative Tools in Windows 10](administrative-tools-in-windows-10.md) -## [Cortana integration in your business or enterprise](cortana-at-work-overview.md) -### [Testing scenarios using Cortana in your business or organization](cortana-at-work-testing-scenarios.md) -#### [Test scenario 1 - Sign-in to Azure AD and use Cortana to manage the notebook](cortana-at-work-scenario-1.md) -#### [Test scenario 2 - Test scenario 2 - Perform a quick search with Cortana at work](cortana-at-work-scenario-2.md) -#### [Test scenario 3 - Set a reminder for a specific location using Cortana at work](cortana-at-work-scenario-3.md) -#### [Test scenario 4 - Use Cortana at work to find your upcoming meetings](cortana-at-work-scenario-4.md) -#### [Test scenario 5 - Use Cortana to send email to a co-worker](cortana-at-work-scenario-5.md) -#### [Test scenario 6 - Use Cortana and Windows Information Protection (WIP) to help protect your organization’s data on a device](cortana-at-work-scenario-6.md) -### [Set up and test Cortana with Office 365 in your organization](cortana-at-work-o365.md) -### [Set up and test Cortana with Microsoft Dynamics CRM (Preview feature) in your organization](cortana-at-work-crm.md) -### [Set up and test Cortana for Power BI in your organization](cortana-at-work-powerbi.md) -### [Set up and test custom voice commands in Cortana for your organization](cortana-at-work-voice-commands.md) -### [Use Group Policy and mobile device management (MDM) settings to configure Cortana in your organization](cortana-at-work-policy-settings.md) -### [Send feedback about Cortana at work back to Microsoft](cortana-at-work-feedback.md) +## [Cortana integration in your business or enterprise](manage-cortana-in-enterprise.md) ## [Update Windows 10 in the enterprise](waas-update-windows-10.md) -### [Quick guide to Windows as a service](waas-quick-start.md) ### [Overview of Windows as a service](waas-overview.md) ### [Prepare servicing strategy for Windows 10 updates](waas-servicing-strategy-windows-10-updates.md) ### [Build deployment rings for Windows 10 updates](waas-deployment-rings-windows-10-updates.md) @@ -38,15 +24,13 @@ ### [Manage Windows 10 and Windows Store tips, tricks, and suggestions](manage-tips-and-suggestions.md) ### [New policies for Windows 10](new-policies-for-windows-10.md) ### [Group Policies that apply only to Windows 10 Enterprise and Windows 10 Education](group-policies-for-enterprise-and-education-editions.md) -### [Changes to Group Policy settings for Windows 10 Start menu](changes-to-start-policies-in-windows-10.md) +### [Changes to Group Policy settings for Windows 10 Start](changes-to-start-policies-in-windows-10.md) ### [Windows 10 Mobile and MDM](windows-10-mobile-and-mdm.md) ### [Introduction to configuration service providers (CSPs)](how-it-pros-can-use-configuration-service-providers.md) ## [Windows Spotlight on the lock screen](windows-spotlight.md) ## [Manage Windows 10 Start and taskbar layout](windows-10-start-layout-options-and-policies.md) ### [Configure Windows 10 taskbar](configure-windows-10-taskbar.md) ### [Customize and export Start layout](customize-and-export-start-layout.md) -### [Start layout XML for desktop editions of Windows 10 (reference)](start-layout-xml-desktop.md) -### [Start layout XML for mobile editions of Windows 10 (reference)](start-layout-xml-mobile.md) ### [Customize Windows 10 Start and taskbar with Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) ### [Customize Windows 10 Start and taskbar with ICD and provisioning packages](customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md) ### [Customize Windows 10 Start with mobile device management (MDM)](customize-windows-10-start-screens-by-using-mobile-device-management.md) diff --git a/windows/manage/administrative-tools-in-windows-10.md b/windows/manage/administrative-tools-in-windows-10.md index a7d5203f8a..3db6a42541 100644 --- a/windows/manage/administrative-tools-in-windows-10.md +++ b/windows/manage/administrative-tools-in-windows-10.md @@ -26,6 +26,9 @@ The tools in the folder might vary depending on which edition of Windows you are These tools were included in previous versions of Windows and the associated documentation for each tool should help you use these tools in Windows 10. The following list links to documentation for each tool. +**Tip**   +If the content that is linked to a tool in the following list doesn't provide the information you need to use that tool, send us a comment by using the **Was this page helpful?** feature on this **Administrative Tools in Windows 10** page. Details about the information you want for a tool will help us plan future content. +   - [Component Services]( https://go.microsoft.com/fwlink/p/?LinkId=708489) @@ -46,8 +49,7 @@ These tools were included in previous versions of Windows and the associated doc - [Windows Firewall with Advanced Security](https://go.microsoft.com/fwlink/p/?LinkId=708503) - [Windows Memory Diagnostic]( https://go.microsoft.com/fwlink/p/?LinkId=708507) ->[!TIP]   ->If the content that is linked to a tool in the following list doesn't provide the information you need to use that tool, send us a comment by using the **Was this page helpful?** feature on this **Administrative Tools in Windows 10** page. Details about the information you want for a tool will help us plan future content.  +    diff --git a/windows/manage/change-history-for-manage-and-update-windows-10.md b/windows/manage/change-history-for-manage-and-update-windows-10.md index c9e8313b65..50f89c5dea 100644 --- a/windows/manage/change-history-for-manage-and-update-windows-10.md +++ b/windows/manage/change-history-for-manage-and-update-windows-10.md @@ -12,27 +12,6 @@ author: jdeckerMS This topic lists new and updated topics in the [Manage and update Windows 10](index.md) documentation for [Windows 10 and Windows 10 Mobile](../index.md). ->If you're looking for **update history** for Windows 10, see [Windows 10 and Windows Server 2016 update history](https://support.microsoft.com/help/12387/windows-10-update-history). - -## January 2017 - -| New or changed topic | Description | -| --- | --- | -| [Cortana integration in your business or enterprise](cortana-at-work-overview.md) | New | -| [Start layout XML for desktop editions of Windows 10](start-layout-xml-desktop.md) | New (previously published in Hardware Dev Center on MSDN) | -| [Start layout XML for mobile editions of Windows 10](start-layout-xml-mobile.md) | New (previously published in Hardware Dev Center on MSDN) | -| [Quick guide to Windows as a service](waas-quick-start.md) | Added video that explains how Windows as a service works. | - - - -## December 2016 - -| New or changed topic | Description | -| --- | --- | -| [Quick guide to Windows as a service](waas-quick-start.md) | New | -| [Manage Windows 10 in your organization - transitioning to modern management](manage-windows-10-in-your-organization-modern-management.md) | Added video demonstration of the latest in modern management for Windows 10 | -| [Windows Store for Business overview](windows-store-for-business-overview.md) | Updated list of supported markets. | - ## November 2016 | New or changed topic | Description | diff --git a/windows/manage/changes-to-start-policies-in-windows-10.md b/windows/manage/changes-to-start-policies-in-windows-10.md index 6cba8aeed7..743009e354 100644 --- a/windows/manage/changes-to-start-policies-in-windows-10.md +++ b/windows/manage/changes-to-start-policies-in-windows-10.md @@ -1,5 +1,5 @@ --- -title: Changes to Group Policy settings for Windows 10 Start menu (Windows 10) +title: Changes to Group Policy settings for Windows 10 Start (Windows 10) description: Windows 10 has a brand new Start experience. ms.assetid: 612FB68A-3832-451F-AA97-E73791FEAA9F keywords: ["group policy", "start menu", "start screen"] diff --git a/windows/manage/configure-devices-without-mdm.md b/windows/manage/configure-devices-without-mdm.md index 04ba35f499..b28734a5f6 100644 --- a/windows/manage/configure-devices-without-mdm.md +++ b/windows/manage/configure-devices-without-mdm.md @@ -104,14 +104,11 @@ When you run Windows ICD, you have several options for creating your package. 6. Toggle **On** or **Off** for wireless network connectivity. If you select **On**, enter the SSID, type, and (if required) password for the wireless network. 7. Click **Enroll into Active Directory**. 8. Toggle **Yes** or **No** for Active Directory enrollment. If you select **Yes**, enter the credentials for an account with permissions to enroll the device. (Optional) Enter a user name and password to create a local administrator account. - > [!WARNING] > If you don't create a local administrator account and the device fails to enroll in Active Directory for any reason, you will have to reimage the device and start over. As a best practice, we recommend: - > - >- Use a least-privileged domain account to join the device to the domain. - >- Create a temporary administrator account to use for debugging or reprovisioning if the device fails to enroll successfully. - >- [Use Group Policy to delete the temporary administrator account](https://blogs.technet.microsoft.com/canitpro/2014/12/10/group-policy-creating-a-standard-local-admin-account/) after the device is enrolled in Active Directory. - + - Use a least-privileged domain account to join the device to the domain. + - Create a temporary administrator account to use for debugging or reprovisioning if the device fails to enroll successfully. + - [Use Group Policy to delete the temporary administrator account](https://blogs.technet.microsoft.com/canitpro/2014/12/10/group-policy-creating-a-standard-local-admin-account/) after the device is enrolled in Active Directory. 9. Click **Finish**. 10. Review your settings in the summary. You can return to previous pages to change your selections. Then, under **Protect your package**, toggle **Yes** or **No** to encrypt the provisioning package. If you select **Yes**, enter a password. This password must be entered to apply the encrypted provisioning package. 11. Click **Create**. diff --git a/windows/manage/configure-windows-10-taskbar.md b/windows/manage/configure-windows-10-taskbar.md index bd5e26f4ba..8f9c046ff2 100644 --- a/windows/manage/configure-windows-10-taskbar.md +++ b/windows/manage/configure-windows-10-taskbar.md @@ -17,14 +17,14 @@ Starting in Windows 10, version 1607, administrators can pin additional apps to You can specify different taskbar configurations based on device locale and region. There is no limit on the number of apps that you can pin. You specify apps using the [Application User Model ID (AUMID)](https://go.microsoft.com/fwlink/p/?LinkId=614867) or Desktop Application Link Path (the local path to the application). -If you specify an app to be pinned that is not provisioned for the user on the computer, the pinned icon won't appear on the taskbar. +If you specify an app to be pinned that is not installed on the computer, it won't appear on the taskbar. -The order of apps in the XML file dictates the order of pinned apps on the taskbar from left to right, to the right of any existing apps pinned by the user. +The order of apps in the xml file dictates order of apps on taskbar from left to right, to the right of any existing apps pinned by user. > [!NOTE] > In operating systems configured to use a right-to-left language, the taskbar order will be reversed. -The following example shows how apps will be pinned: Windows default apps to the left (blue circle), apps pinned by the user in the center (orange triangle), and apps that you pin using the XML file to the right (green square). +The following example shows how apps will be pinned: Windows default apps to the left (blue circle), apps pinned by the user in the center (orange triangle), and apps that you pin using XML to the right (green square). ![Windows left, user center, enterprise to the right](images/taskbar-generic.png) @@ -41,21 +41,21 @@ To configure the taskbar: 3. Apply the layout modification XML file to devices using [Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) or a [provisioning package created in Windows Imaging and Configuration Designer (Windows ICD)](customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md). >[!IMPORTANT] ->If you use a provisioning package to configure the taskbar, your configuration will be reapplied each time the explorer.exe process restarts. If your configuration pins an app and the user then unpins that app, the user's change will be overwritten the next time the configuration is applied. To apply a taskbar configuration that allows users to make changes that will persist, apply your configuration by using Group Policy. +>If you use a provisioning package to configure the taskbar, your configuration will be reapplied each time the explorer.exe process restarts. If your configuration pins an app and the user unpins that app, the user's change will be overwritten the next time the configuration is applied. To apply a taskbar configuration and allow users to make changes that will persist, apply your configuration by using Group Policy. ### Tips for finding AUMID and Desktop Application Link Path In the layout modification XML file, you will need to add entries for applications in the XML markup. In order to pin an application, you need either its AUMID or Desktop Application Link Path. The easiest way to find this data for an application is to: -1. Pin the application to the Start menu on a reference or testing PC. +1. Pin the application to the Start menu 2. Open Windows PowerShell and run the `Export-StartLayout` cmdlet. 3. Open the generated XML file. -4. Look for an entry corresponding to the app you pinned. +4. Look for an entry corresponding to the app you pinned . 5. Look for a property labeled `AppUserModelID` or `DesktopApplicationLinkPath`. -### Sample taskbar configuration XML file +### Sample taskbar configuration XML ```xml @@ -75,7 +75,7 @@ The easiest way to find this data for an application is to: ``` -### Sample taskbar configuration added to Start layout XML file +### Sample taskbar configuration added to Start layout XML ```xml @@ -139,7 +139,7 @@ The `` section will append listed apps to the tas ![additional apps pinned to taskbar](images/taskbar-default-plus.png) -## Remove default apps and add your own +##Remove default apps and add your own By adding `PinListPlacement="Replace"` to ``, you remove all default pinned apps; only the apps that you specify will be pinned to the taskbar. @@ -218,7 +218,7 @@ The following example shows you how to configure taskbars by country or region. ``` -When the preceding example XML file is applied, the resulting taskbar for computers in the US or UK: +When the preceding example XML is applied, the resulting taskbar for computers in the US or UK: ![taskbar for US and UK locale](images/taskbar-region-usuk.png) @@ -289,9 +289,7 @@ The resulting taskbar for computers in any other country region: ## Related topics -[Manage Windows 10 Start and taskbar layout ](windows-10-start-layout-options-and-policies.md) - -[Customize and export Start layout](customize-and-export-start-layout.md) +[Manage Windows 10 Start and taskbar layout ](windows-10-start-layout-options-and-policies.md)[Customize and export Start layout](customize-and-export-start-layout.md) [Customize Windows 10 Start and taskbar with Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) diff --git a/windows/manage/configure-windows-telemetry-in-your-organization.md b/windows/manage/configure-windows-telemetry-in-your-organization.md index a7f9bbef7e..3bb9df599b 100644 --- a/windows/manage/configure-windows-telemetry-in-your-organization.md +++ b/windows/manage/configure-windows-telemetry-in-your-organization.md @@ -148,7 +148,6 @@ The following table defines the endpoints for telemetry services: | Connected User Experience and Telemetry component | v10.vortex-win.data.microsoft.com
    settings-win.data.microsoft.com | | [Windows Error Reporting](http://msdn.microsoft.com/library/windows/desktop/bb513641.aspx) | watson.telemetry.microsoft.com | | [Online Crash Analysis](http://msdn.microsoft.com/library/windows/desktop/ee416349.aspx) | oca.telemetry.microsoft.com | -| OneDrive app for Windows 10 | vortex.data.microsoft.com/collect/v1 | ### Data use and access diff --git a/windows/manage/connect-to-remote-aadj-pc.md b/windows/manage/connect-to-remote-aadj-pc.md index 8424e7c1c3..b05c575380 100644 --- a/windows/manage/connect-to-remote-aadj-pc.md +++ b/windows/manage/connect-to-remote-aadj-pc.md @@ -25,7 +25,7 @@ From its release, Windows 10 has supported remote connections to PCs that are jo ## Set up - Both PCs (local and remote) must be running Windows 10, version 1607. Remote connection to an Azure AD-joined PC that is running earlier versions of Windows 10 is not supported. -- Ensure [Remote Credential Guard](../keep-secure/remote-credential-guard.md), a new feature in Windows 10, version 1607, is turned off on the client PC that you are using to connect to the remote PC. +- Ensure [Remote Credential Guard](../keep-secure/remote-credential-guard.md), a new feature in Windows 10, version 1607, is turned off on the client PC. - On the PC that you want to connect to: 1. Open system properties for the remote PC. 2. Enable **Allow remote connections to this computer** and select **Allow connections only from computers running Remote Desktop with Network Level Authentication**. diff --git a/windows/manage/cortana-at-work-crm.md b/windows/manage/cortana-at-work-crm.md deleted file mode 100644 index 834bde8a92..0000000000 --- a/windows/manage/cortana-at-work-crm.md +++ /dev/null @@ -1,62 +0,0 @@ ---- -title: Set up and test Cortana with Microsoft Dynamics CRM (Preview feature) in your organization (Windows 10) -description: How to set up Cortana to help your salespeople get proactive insights on important CRM activities, including sales leads, accounts, and opportunities; presenting the most relevant info at any given time. -ms.prod: w10 -ms.mktglfcycl: manage -ms.sitesec: library -localizationpriority: high ---- - -# Set up and test Cortana with Microsoft Dynamics CRM (Preview feature) in your organization -**Applies to:** - -- Windows 10, Windows Insider Program -- Windows 10 Mobile, Windows Insider Program - ->[!IMPORTANT] ->Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. - -Cortana integration is a Preview feature that's available for your test or dev environment, starting with the CRM Online 2016 Update. If you decide to use this Preview feature, you'll need to turn in on and accept the license terms. After that, your salespeople will get proactive insights from Cortana on important CRM activities, including sales leads, accounts, and opportunities; presenting the most relevant info at any given time. This can even include getting company-specific news that surfaces when the person is meeting with a representative from another company. - ->[!NOTE] ->For more info about Dynamics CRM integration, how to turn on Cortana, and how to provide feedback, see [Preview feature: Set up Cortana integration](http://go.microsoft.com/fwlink/p/?LinkId=746819). - -![Cortana at work, showing the sales data pulled from Dynamics CRM](images/cortana-crm-screen.png) - -## Turn on Cortana with Dynamics CRM in your organization -You must be a CRM administrator to turn on and use Preview features. For more info about what Preview features are and how to use them, see [What are Preview features and how do I enable them](http://go.microsoft.com/fwlink/p/?LinkId=746817)? - -**To turn on Cortana with Dynamics CRM** - -1. Go to **Settings**, and then click **Administration**. - -2. Choose **System Settings**, and then click the **Previews** tab. - -3. Read the license terms, and if you agree, select the **I’ve read and agree to the license terms** check box. - -4. For each preview feature you want to enable, click **Yes**. - -## Turn on Cortana with Dynamics CRM on your employees’ devices -You must tell your employees to turn on Cortana, before they’ll be able to use it with Dynamics CRM. - -**To turn on local Cortana with Dynamics CRM** - -1. Click on the **Cortana** search box in the taskbar, and then click the **Notebook** icon. - -2. Click on **Connected Services**, click **Dynamics CRM**, and then click **Connect**. - - ![Cotana at work, showing how to turn on the connected services for Dynamics CRM](images/cortana-connect-crm.png) - - The employee can also disconnect by clicking **Disconnect** from the **Dynamics CRM** screen. - -## Turn off Cortana with Dynamics CRM -Cortana can only access data in Dynamics CRM when it’s turned on. If you don’t want Cortana to access your corporate data, you can turn it off. - -**To turn off Cortana with Dynamics CRM** -1. Go to **Settings**, and then click **Administration**. - -2. Choose **System Settings**, and then click the **Previews** tab. - -3. Click **No** for **Cortana**. - - All Dynamics CRM functionality related to Cortana is turned off in your organization. \ No newline at end of file diff --git a/windows/manage/cortana-at-work-feedback.md b/windows/manage/cortana-at-work-feedback.md deleted file mode 100644 index ca24c22703..0000000000 --- a/windows/manage/cortana-at-work-feedback.md +++ /dev/null @@ -1,24 +0,0 @@ ---- -title: Send feedback about Cortana at work back to Microsoft (Windows 10) -description: How to send feedback to Microsoft about Cortana at work. -ms.prod: w10 -ms.mktglfcycl: manage -ms.sitesec: library -localizationpriority: high ---- - -# Send feedback about Cortana at work back to Microsoft -**Applies to:** - -- Windows 10, Windows Insider Program -- Windows 10 Mobile, Windows Insider Program - ->[!IMPORTANT] ->Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. - -We ask that you report bugs and issues. To provide feedback, you can click the **Feedback** icon in the Cortana window. When you send this form to Microsoft it also includes troubleshooting info, in case you run into problems. - -![Cortana at work, showing how to provide feedback to Microsoft](images/cortana-feedback.png) - -If you don't want to use the feedback tool in Cortana, you can add feedback through the general Windows Insider Preview feedback app. For info about the Insider Preview feedback app, see [How to use Windows Insider Preview – Updates and feedback](http://windows.microsoft.com/en-us/windows/preview-updates-feedback-pc). - diff --git a/windows/manage/cortana-at-work-o365.md b/windows/manage/cortana-at-work-o365.md deleted file mode 100644 index d58663dc00..0000000000 --- a/windows/manage/cortana-at-work-o365.md +++ /dev/null @@ -1,72 +0,0 @@ ---- -title: Set up and test Cortana with Office 365 in your organization (Windows 10) -description: How to connect Cortana to Office 365 so your employees are notified about regular meetings, unusual events, such as meetings over lunch or during a typical commute time, and about early meetings, even setting an alarm so the employee isn’t late. -ms.prod: w10 -ms.mktglfcycl: manage -ms.sitesec: library -localizationpriority: high ---- - -# Set up and test Cortana with Office 365 in your organization -**Applies to:** - -- Windows 10, Windows Insider Program -- Windows 10 Mobile, Windows Insider Program - ->[!IMPORTANT] ->Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. - -Cortana in Windows 10 is already great at letting your employees quickly see what the day is going to look like, do meeting prep work like researching people in LinkedIn or getting documents ready, see where and when their meetings are going to be, get a sense of travel times to and from work, and even get updates from a calendar for upcoming trips. - -But Cortana works even harder when she connects to Office 365, helping employees to be notified about unusual events, such as meetings over lunch or during a typical commute time, and about early meetings, even setting an alarm so the employee isn’t late. - -![Cortana at work, showing the day's schedule pulled from Office 365](images/cortana-o365-screen.png) - -We’re continuing to add more and more capabilities to Cortana so she can become even more helpful with your productivity-related tasks, such as emailing, scheduling, and other tasks that are important to help you be successful. - ->[!NOTE] ->For a quick review of the frequently asked questions about Cortana and Office 365 integration, see the blog post, [An early look at Cortana integration with Office 365](http://go.microsoft.com/fwlink/p/?LinkId=717379). - -## Before you begin -There are a few things to be aware of before you start using Cortana with Office 365 in your organization. - -- **Software requirements.** O365 integration with Cortana is available in all countries/regions where Cortana is supported for consumers today. This includes the United States, United Kingdom, Canada, France, Italy, Germany, Spain, China, Japan, India, and Australia. As Cortana comes to more countries, it will also become available to organizations. - -- **Azure Active Directory (Azure AD) account.** Before your employees can use Cortana in your org, they must be logged in using their Azure AD account through Cortana’s notebook. They must also authorize Cortana to access Office 365 on their behalf. - -- **Office 365 Trust Center.** Cortana isn't a service covered by the Office 365 Trust Center. [Learn more about how Cortana treats your data](http://go.microsoft.com/fwlink/p/?LinkId=536419). - -- **Troubleshooting tips.** If you run into issues, check out these [troubleshooting tips](http://go.microsoft.com/fwlink/p/?LinkId=620763). - -## Turn on Cortana with Office 365 on employees’ devices -You must tell your employees to turn on Cortana before they’ll be able to use it with Office 365. - -**To turn on local Cortana with Office 365** - -1. Click on the **Cortana** search box in the taskbar, and then click the **Notebook** icon. - -2. Click on **Connected Services**, click **Office 365**, and then click **Connect**. - - ![Cotana at work, showing how to turn on the connected services for Office 365](images/cortana-connect-o365.png) - - The employee can also disconnect by clicking **Disconnect** from the **Office 365** screen. - -## Turn off Cortana with Office 365 -Cortana can only access data in your Office 365 org when it’s turned on. If you don’t want Cortana to access your corporate data, you can turn it off in the Office 365 admin center. - -**To turn off Cortana with Office 365** -1. [Sign in to Office 365](http://www.office.com/signin) using your Azure AD account. - -2. Go to the [Office 365 admin center](https://support.office.com/en-us/article/Office-365-admin-center-58537702-d421-4d02-8141-e128e3703547). - -3. Expand **Service Settings**, and select **Cortana**. - -4. Click **Cortana** to toggle Cortana off. - - All Office 365 functionality related to Cortana is turned off in your organization and your employees are unable to use her at work. - - - - - - diff --git a/windows/manage/cortana-at-work-overview.md b/windows/manage/cortana-at-work-overview.md deleted file mode 100644 index 96064364c3..0000000000 --- a/windows/manage/cortana-at-work-overview.md +++ /dev/null @@ -1,64 +0,0 @@ ---- -title: Cortana integration in your business or enterprise (Windows 10) -description: The world’s first personal digital assistant helps users get things done, even at work. Cortana includes powerful configuration options specifically to optimize for unique small to medium-sized business and enterprise environments. -ms.prod: w10 -ms.mktglfcycl: manage -ms.sitesec: library -localizationpriority: high ---- - -# Cortana integration in your business or enterprise -**Applies to:** - -- Windows 10, Windows Insider Program -- Windows 10 Mobile, Windows Insider Program - ->[!IMPORTANT] ->Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. - -## Who is Cortana? -Cortana is Microsoft’s personal digital assistant, who helps busy people get things done, even while at work. -Cortana has powerful configuration options, specifically optimized for your business. By signing in with an Azure Active Directory (Azure AD) account, your employees can give Cortana access to their enterprise/work identity, while getting all the functionality Cortana provides to them outside of work. - -Using Azure AD also means that you can remove an employee’s profile (for example, when an employee leaves your organization) while respecting Windows Information Protection (WIP) policies and ignoring enterprise content, such as emails, calendar items, and people lists that are marked as enterprise data. - -![Cortana at work, showing the About me screen](images/cortana-about-me.png) - -## Where is Cortana available for use in my organization? -You can use Cortana at work in all countries/regions where Cortana is supported for consumers. This includes the United States, United Kingdom, Canada, France, Italy, Germany, Spain, China, Japan, India, and Australia. As Cortana comes to more countries, she will also become available to enterprise customers. - -Cortana is available on Windows 10, Windows Insider Program and with limited functionality on Windows Phone 8.1, Windows Insider Program. - -## Required hardware and software -Cortana requires the following hardware and software to successfully run the included scenario in your organization. - -|Hardware |Description | -|---------|------------| -|Microphone |For speech interaction with Cortana. If you don't have a microphone, you can still interact with Cortana by typing in the Cortana Search Box in the taskbar. | -|Windows Phone |For location-specific reminders. You can also use a desktop device to run through this scenario, but location accuracy is usually better on phones. | -|Desktop devices |For non-phone-related scenarios. | - - -|Software |Minimum version | -|---------|------------| -|Client operating system |

    + ## ![Deploy Windows 10 for education](images/windows.png) Upgrade + +
    +

    [Upgrade Windows 10 Pro to Pro Education from Windows Store for Business](windows-10-pro-to-pro-edu-upgrade.md)
    If you have an education tenant and use Windows 10 Pro in your schools now, find out how you can opt-in to a free upgrade to Windows 10 Pro Education.

    +
    + + ## Related topics - [Try it out: virtual labs and how-to videos for Windows 10 Education](https://technet.microsoft.com/en-us/windows/dn610356) diff --git a/education/windows/school-get-minecraft.md b/education/windows/school-get-minecraft.md index 0adea43fb7..8668054826 100644 --- a/education/windows/school-get-minecraft.md +++ b/education/windows/school-get-minecraft.md @@ -58,6 +58,51 @@ Qualified education institutions can purchase Minecraft: Education Edition licen - You’ll receive an email with a link to Windows Store for Business. - Sign in to [Windows Store for Business](https://www.microsoft.com/business-store) to distribute and manage the Minecraft: Education Edition licenses. For more information on distribution options, see [Distribute Minecraft](#distribute-minecraft) +## Minecraft: Education Edition payment options +You can pay for Minecraft: Education Edition with a debit or credit card, or with an invoice. + + +### Debit or credit cards + +During the purchase, click **Get started! Add a way to pay.** Provide the info needed for your debit or credit card. + +### Invoices + +Invoices are now a supported payment method for Minecraft: Education Edition. There are a few requirements: +- Admins only (not supported for Teachers) +- $500 invoice minimum for your initial purchase +- $15,000 invoice maximum (for all invoices within your organization) + +**To pay with an invoice** + +1. During the purchase, click **Get started! Add a way to pay.** + + ![Buy page for an app, showing the link for Get started! Add a way to pay.](images/mcee-add-payment-method.png) + +2. Select the Invoice option, and provide the info needed for an invoice. The **PO number** item allows you to add a tracking number or info that is meaningful to your organization. + + ![Invoice Details page showing items that need to be completed for an invoice. PO number is highlighted.](images/mcee-invoice-info.png) + +### Find your invoice + +After you've finished the purchase, you can find your invoice by checking **Minecraft: Education Edition** in your **Inventory**. + +> **Note**: After you complete a purchase, it can take up to twenty-four hours for the app to appear in **Inventory**. + +**To view your invoice** +1. In Windows Store for Business, click **Manage** and then click **Inventory**. +2. Click **Minecraft: Education Edition** in the list of apps. +3. On **Minecraft: Education Edition**, click **View Bills**. + + ![Minecraft: Education Edition app details page with view bills link highlighted](images/mcee-view-bills.png) + +4. On **Invoice Bills**, click the invoice number to view and download your invoice. It downloads as a .pdf. + + ![Minecraft: Education Edition app details page with view bills link highlighted](images/mcee-invoice-bills.png) + +The **Payment Instructions** section on the first page of the invoice has information on invoice amount, due date, and how to pay with electronic funds transfer, or with a check. + + ## Distribute Minecraft After Minecraft: Education Edition is added to your Windows Store for Business inventory, you have three options: diff --git a/education/windows/take-a-test-multiple-pcs.md b/education/windows/take-a-test-multiple-pcs.md index 7d5f5d6c0e..2eb0b2849a 100644 --- a/education/windows/take-a-test-multiple-pcs.md +++ b/education/windows/take-a-test-multiple-pcs.md @@ -17,8 +17,8 @@ author: jdeckerMS Many schools use online testing for formative and summative assessments. It's critical that students use a secure browser that prevents them from using other computer or Internet resources during the test. The **Take a Test** app in Windows 10, Version 1607, creates the right environment for taking a test: -- A Microsoft Edge browser window opens, showing just the test and nothing else. -- The clipboard is cleared. +- Take a Test shows just the test and nothing else. +- Take a Test clears the clipboard. - Students aren’t able to go to other websites. - Students can’t open or access other apps. - Students can't share, print, or record their screens. diff --git a/education/windows/take-a-test-single-pc.md b/education/windows/take-a-test-single-pc.md index 92667b4abd..5b6d36d46b 100644 --- a/education/windows/take-a-test-single-pc.md +++ b/education/windows/take-a-test-single-pc.md @@ -9,7 +9,7 @@ ms.pagetype: edu author: jdeckerMS --- -# Set up Take a Test on a single PC +# Set up Take a Test on a single PC **Applies to:** - Windows 10 @@ -17,8 +17,8 @@ author: jdeckerMS The **Take a Test** app in Windows 10, Version 1607, creates the right environment for taking a test: -- A Microsoft Edge browser window opens, showing just the test and nothing else. -- The clipboard is cleared. +- Take a Test shows just the test and nothing else. +- Take a Test clears the clipboard. - Students aren’t able to go to other websites. - Students can’t open or access other apps. - Students can't share, print, or record their screens. @@ -28,6 +28,7 @@ The **Take a Test** app in Windows 10, Version 1607, creates the right environme > [!TIP] > To exit **Take a Test**, press Ctrl+Alt+Delete. + ## How you use Take a Test ![Use test account or test url in Take a Test](images/take-a-test-flow.png) @@ -38,7 +39,7 @@ The **Take a Test** app in Windows 10, Version 1607, creates the right environme ## Set up a dedicated test account - + @@ -60,10 +61,10 @@ The **Take a Test** app in Windows 10, Version 1607, creates the right environme ## Provide link to test -Anything hosted on the web can be presented in a locked down manner, not just assessments. To lock down online content, just embed a URL with a specific prefix and devices will be locked down when users follow the link. We recommend using this method for lower stakes assessments. +Anything hosted on the web can be presented in a locked down manner, not just assessments. To lock down online content, just embed a URL with a specific prefix and devices will be locked down when users follow the link. We recommend using this method for lower stakes assessments. 1. Create a link to the test URL. Use **ms-edu-secureassessment:** before the URL and **!enforceLockdown** after the URL. -``` +``` ms-edu-secureassessment:!enforceLockdown ``` > [!NOTE] @@ -79,9 +80,3 @@ ms-edu-secureassessment:!enforceLockdown [Set up Take a Test on multiple PCs](take-a-test-multiple-pcs.md) [Take a Test app technical reference](take-a-test-app-technical.md) - - - - - - diff --git a/education/windows/windows-10-pro-to-pro-edu-upgrade.md b/education/windows/windows-10-pro-to-pro-edu-upgrade.md new file mode 100644 index 0000000000..cb88389ec9 --- /dev/null +++ b/education/windows/windows-10-pro-to-pro-edu-upgrade.md @@ -0,0 +1,259 @@ +--- +title: Windows 10 Pro to Pro Education upgrade +description: Describes how IT Pros can opt into a Windows 10 Pro Education upgrade from the Windows Store for Business. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: edu +author: CelesteDG +--- + +# Upgrade Windows 10 Pro to Pro Education from Windows Store for Business + +Windows 10 Pro Education is a new offering in Windows 10 Anniversary Update (Windows 10, version 1607). This edition builds on the commercial version of Windows 10 Pro and provides important management controls needed in schools by providing education-specific default settings. + +If you have an education tenant and use Windows 10 Pro in your schools now, global administrators can opt-in to a free upgrade to Windows 10 Pro Education through the Windows Store for Business. To take advantage of this offering, make sure you meet the [requirements for upgrade](#requirements-for-upgrade). + +Starting with Windows 10, version 1607, academic institutions can easily move from Windows 10 Pro to Windows 10 Pro Education—no keys and no reboots. After one of your users enters the Azure AD credentials associated with a Windows 10 Pro Education license, the operating system turns from Windows 10 Pro to Windows 10 Pro Education and all the appropriate Windows 10 Pro Education features are unlocked. When a license expires or is transferred to another user, the Windows 10 Pro Education device seamlessly steps back down to Windows 10 Pro. + +Previously, only schools or organizations purchasing devices as part of the Shape the Future K-12 program or with a Microsoft Volume Licensing Agreement could deploy Windows 10 Pro Education to their users. Now, if you have a Azure AD for your organization, you can take advantage of the Windows 10 Pro Education features. + +When you upgrade to Windows 10 Pro Education, you get the following benefits: + +- **Windows 10 Pro Education edition**. Devices currently running Windows 10 Pro, version 1607 can get Windows 10 Pro Education Current Branch (CB). This benefit does not include Long Term Service Branch (LTSB). +- **Support from one to hundreds of users**. The Windows 10 Pro Education program does not have a limitation on the number of licenses an organization can have. +- **Roll back to Windows 10 Pro at any time**. When a user leaves the domain or you turn off the setting to automatic upgrade to Windows 10 Pro Education, the device reverts seamlessly to Windows 10 Pro edition (after a grace period of up to 30 days). + +In summary, the Windows 10 Pro Education free upgrade through the Windows Store for Business is an upgrade offering that provides organizations easier, more flexible access to the benefits of Windows 10 Pro Education edition. + +## Compare Windows 10 Pro and Pro Education editions + +In Windows 10, version 1607, the Windows 10 Pro Education edition contains the same features as the Windows 10 Pro edition except for the following differences: + +- Cortana is removed from Windows 10 Pro Education +- Options to manage Windows 10 tips and tricks and Windows Store suggestions + +See [Windows 10 editions for education customers](windows-editions-for-education-customers.md) for more info about Windows 10 Pro Education and you can also [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare) to find out more about the features we support in other editions of Windows 10. + +## Requirements for upgrade + +Before you upgrade from Windows 10 Pro to Windows 10 Pro Education, make sure you meet these requirements: +- Devices must be: + - Running Windows 10 Pro, version 1607 + - Must be Azure Active Directory joined, or domain joined with Azure AD Connect. Customers who are federated with Azure Active Directory are also eligible. For more information, see [Review requirements on devices](#review-requirements-on-devices). + + If you haven't domain joined your devices already, [prepare for deployment of Windows 10 Pro Education licenses](#preparing-for-deployment-of-windows-10-pro-education-licenses). +- The user making the changes must be a member of the Azure AD global administrator group. +- The Azure AD tenant must be recognized as an education approved tenant. +- You must have a Windows Store for Business account. + +## Upgrade from Windows 10 Pro to Windows 10 Pro Education +Once you enable the setting to upgrade Windows 10 Pro to Windows 10 Pro Education, the upgrade will begin only after a user signs in to their device. The setting applies to the entire organization so you cannot select which users will receive the upgrade. + +**To turn on the automatic upgrade from Windows 10 Pro to Windows 10 Pro Education** +1. Sign in to [Windows Store for Business](https://businessstore.microsoft.com/en-us/Store/Apps) with your work or school account. + + If this is the first time you're signing into the Store, you'll be prompted to accept the Windows Store for Business Terms of Use. +2. Go to **Manage > Account information**. +3. In the **Account information** page, look for the **Automatic Windows 10 Pro Education upgrade** section and follow the link. + + You will see the following page informing you that your school is eligible for a free automatic upgrade from Windows 10 Pro to Windows 10 Pro Education. + + ![Eligible for free Windows 10 Pro to Windows 10 Pro Education upgrade](images/wsfb_win10_pro_to proedu_upgrade_eligibility_page.png) + + **Figure 1** - Upgrade Windows 10 Pro to Windows 10 Pro Education + +4. Select **I understand enabling this setting will impact all devices running Windows 10 Pro in my organization**. +5. Click **Send me email with a link to enable this upgrade** to receive an email with a link to the upgrade. + + ![Email with Windows 10 Pro to Pro Education upgrade link](images/wsfb_win10_pro_to_proedu_email_upgrade_link.png) + + **Figure 2** - Email notification with a link to enable the upgrade + +6. Click **Enable the automatic upgrade now** to turn on automatic upgrades. + + ![Enable the automatic upgrade](images/wsfb_win10_pro_to proedu_upgrade_enable.png). + + **Figure 3** - Enable the automatic upgrade + + Enabling the automatic upgrade also triggers an email message notifying all global administrators in your organization about the upgrade. It also contains a link that enables any global administrators to cancel the upgrade, if they choose. For more info about rolling back or canceling the upgrade, see [Roll back Windows 10 Pro Education to Windows 10 Pro](#roll-back-windows-10-pro-education-to-windows-10-pro). + + ![Email informing other global admins about the upgrade](images/wsfb_win10_pro_to proedu_upgrade_email_global_admins.png). + + **Figure 4** - Notification email sent to all global administrators + +7. Click **Close** in the **Success** page. + + In the **Upgrade Windows 10 Pro to Windows 10 Pro Education** page, you will see a message informing you when the upgrade was enabled and the name of the admin who enabled the upgrade. + + ![Summary page about the upgrade](images/wsfb_win10_pro_to proedu_upgrade_summary.png) + + **Figure 5** - Details about the automatic upgrade + + +## Explore the upgrade experience + +So what will the users experience? How will they upgrade their devices? + +### For existing Azure AD domain joined devices +Existing Azure AD domain joined devices will be upgraded from Windows 10 Pro to Windows 10 Pro Education the next time the user logs in. That's it! No additional steps are needed. + +### For new devices that are not Azure AD domain joined +Now that you've turned on the setting to automatically upgrade Windows 10 Pro to Windows 10 Pro Education, the users are ready to upgrade their devices running Windows 10 Pro, version 1607 edition to Windows 10 Pro Education edition. + +#### Step 1: Join users’ devices to Azure AD + +Users can join a device to Azure AD the first time they start the device (during setup), or they can join a device that they already use running Windows 10 Pro, version 1607. + +**To join a device to Azure AD the first time the device is started** + +1. During the initial setup, on the **Who owns this PC?** page, select **My organization**, and then click **Next**, as illustrated in **Figure 6**. + + Who owns this PC? page in Windows 10 setup + + **Figure 6** - The “Who owns this PC?” page in initial Windows 10 setup + +2. On the **Choose how you’ll connect** page, select **Join Azure AD**, and then click **Next**, as illustrated in **Figure 7**. + + Choose how you'll connect - page in Windows 10 setup + + **Figure 7** - The “Choose how you’ll connect” page in initial Windows 10 setup + +3. On the **Let’s get you signed in** page, enter the Azure AD credentials, and then click **Sign in**, as illustrated in **Figure 8**. + + Let's get you signed in - page in Windows 10 setup + + **Figure 8** - The “Let’s get you signed in” page in initial Windows 10 setup + +Now the device is Azure AD joined to the company’s subscription. + +**To join a device to Azure AD when the device already has Windows 10 Pro, version 1607 installed and set up** + +1. Go to **Settings > Accounts > Access work or school**, as illustrated in **Figure 9**. + + Connect to work or school configuration + + **Figure 9** - Connect to work or school configuration in Settings + +2. In **Set up a work or school account**, click **Join this device to Azure Active Directory**, as illustrated in **Figure 10**. + + Set up a work or school account + + **Figure 10** - Set up a work or school account + +3. On the **Let’s get you signed in** page, enter the Azure AD credentials, and then click **Sign in**, as illustrated in **Figure 11**. + + Let's get you signed in - dialog box + + **Figure 11** - The “Let’s get you signed in” dialog box + +Now the device is Azure AD joined to the company’s subscription. + +#### Step 2: Sign in using Azure AD account + +Once the device is joined to your Azure AD subscription, the user will sign in by using his or her Azure AD account, as illustrated in **Figure 12**. The Windows 10 Pro Education license associated with the user will enable Windows 10 Pro Education edition capabilities on the device. + +Sign in, Windows 10 + +**Figure 12** - Sign in by using Azure AD account + +#### Step 3: Verify that Pro Education edition is enabled + +You can verify the Windows 10 Pro Education in **Settings > Update & Security > Activation**, as illustrated in **Figure 13**. + + + +**Figure 13** - Windows 10 Pro Education in Settings + +Windows 10 activated and subscription active + +If there are any problems with the Windows 10 Pro Education license or the activation of the license, the **Activation** panel will display the appropriate error message or status. You can use this information to help you diagnose the licensing and activation process. + +## Troubleshoot the user experience + +In some instances, users may experience problems with the Windows 10 Pro Education upgrade. The most common problems that users may experience are as follows: + +- The existing Windows 10 Pro, version 1607 operating system is not activated. + +- The Windows 10 Pro Education upgrade has lapsed or has been removed. + +Use the following figures to help you troubleshoot when users experience these common problems: + + + +**Figure 13** - Illustrates a device in a healthy state, where Windows 10 Pro, version 1607 is activated and the Windows 10 Pro Education upgrade is active. + +Windows 10 activated and subscription active + + + +**Figure 14** - Illustrates a device on which Windows 10 Pro, version 1607 is not activated, but the Windows 10 Pro Education upgrade is active. + +Windows 10 not activated and subscription active

    + + +### Review requirements on devices + +Devices must be running Windows 10 Pro, version 1607, and be Azure Active Directory joined, or domain joined with Azure AD Connect. Customers who are federated with Azure Active Directory are also eligible. You can use the following procedures to review whether a particular device meets requirements. + +**To determine if a device is Azure Active Directory joined** + +1. Open a command prompt and type **dsregcmd /status**. + +2. Review the output under Device State. If the **AzureAdJoined** status is YES, the device is Azure Active Directory joined. + +**To determine the version of Windows 10** + +- At a command prompt, type: + **winver** + + A popup window will display the Windows 10 version number and detailed OS build information. + + If a device is running a previous version of Windows 10 Pro (for example, version 1511), it will not be upgraded to Windows 10 Pro Education when a user signs in, even if the user has been assigned a license. + +## Roll back Windows 10 Pro Education to Windows 10 Pro + +If your organization has the Windows 10 Pro to Windows 10 Pro Education upgrade enabled, and you decide to roll back to Windows 10 Pro or to cancel the upgrade, you can do this by: +- Logging into Windows Store for Business page and turning off the automatic upgrade. +- Selecting the link to turn off the automatic upgrade from the notification email sent to all global administrators. + +Once the automatic upgrade to Windows 10 Pro Education is turned off, the change is effective immediately. Devices that were upgraded will revert to Windows 10 Pro only after the license has been refreshed (every 30 days) and the next time the user signs in. This means that a user whose device was upgraded may not immediately see Windows 10 Pro Education rolled back to Windows 10 Pro for up to 30 days. However, users who haven't signed in during the time that an upgrade was enabled and then turned off will never see their device change from Windows 10 Pro. + +**To roll back Windows 10 Pro Education to Windows 10 Pro** +1. Log in to [Windows Store for Business](https://businessstore.microsoft.com/en-us/Store/Apps) with your school or work account, or follow the link from the notification email to turn off the automatic upgrade. +2. Select **Manage > Account information** and locate the section **Automatic Windows 10 Pro Education upgrade** and follow the link. +3. In the **Upgrade Windows 10 Pro to Windows 10 Pro Education** page, select **Turn off the automatic upgrade to Windows 10 Pro Education**. + + ![Turn off automatic upgrade to Windows 10 Pro Education](images/wsfb_win10_pro_to proedu_upgrade_disable.png) + + **Figure 15** - Link to turn off the automatic upgrade + +4. You will be asked if you're sure that you want to turn off automatic upgrades to Windows 10 Pro Education. Click **Yes**. +5. Click **Close** in the **Success** page. +6. In the **Upgrade Windows 10 Pro to Windows 10 Pro Education** page, you will see information on when the upgrade was disabled. + + If you decide later that you want to turn on automatic upgrades again, you can do this from the **Upgrade Windows 10 Pro to Windows 10 Pro Education**. + +## Preparing for deployment of Windows 10 Pro Education licenses + +If you have on-premises Active Directory Domain Services (AD DS) domains, users will use their domain-based credentials to sign in to the AD DS domain. Before you start deploying Windows 10 Pro Education to users, you need to synchronize the identities in the on-premises AD DS domain with Azure AD. + +You need to synchronize these identities so that users will have a *single identity* that they can use to access their on-premises apps and cloud services that use Azure AD (such as Windows 10 Pro Education). This means that users can use their existing credentials to sign in to Azure AD and access the cloud services that you provide and manage for them. + +**Figure 16** illustrates the integration between the on-premises AD DS domain with Azure AD. [Microsoft Azure Active Directory Connect](http://www.microsoft.com/en-us/download/details.aspx?id=47594) (Azure AD Connect) is responsible for synchronization of identities between the on-premises AD DS domain and Azure AD. Azure AD Connect is a service that you can install on-premises or in a virtual machine in Azure. + +![Illustration of Azure Active Directory Connect](images/windows-ad-connect.png) + +**Figure 16** - On-premises AD DS integrated with Azure AD + +For more information about integrating on-premises AD DS domains with Azure AD, see these resources: +- [Integrating your on-premises identities with Azure Active Directory](http://azure.microsoft.com/en-us/documentation/articles/active-directory-aadconnect/) +- [Azure AD + Domain Join + Windows 10](https://blogs.technet.microsoft.com/enterprisemobility/2016/02/17/azure-ad-domain-join-windows-10/) + +## Related topics + +[Deploy Windows 10 in a school](deploy-windows-10-in-a-school.md) + +[Deploy Windows 10 in a school district](deploy-windows-10-in-a-school-district.md) + +[Compare Windows 10 editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare) diff --git a/windows/deploy/TOC.md b/windows/deploy/TOC.md index 4fed1981ec..906b45e238 100644 --- a/windows/deploy/TOC.md +++ b/windows/deploy/TOC.md @@ -11,6 +11,9 @@ #### [Deploy Windows](upgrade-analytics-deploy-windows.md) #### [Review site discovery](upgrade-analytics-review-site-discovery.md) ### [Troubleshoot Upgrade Analytics](troubleshoot-upgrade-analytics.md) +## [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) +### [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) +### [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) ## [Deploy Windows 10 with the Microsoft Deployment Toolkit](deploy-windows-10-with-the-microsoft-deployment-toolkit.md) ### [Get started with the Microsoft Deployment Toolkit (MDT)](get-started-with-the-microsoft-deployment-toolkit.md) #### [Key features in MDT 2013 Update 2](key-features-in-mdt-2013.md) @@ -50,8 +53,17 @@ ## [Windows 10 upgrade paths](windows-10-upgrade-paths.md) ## [Windows 10 edition upgrade](windows-10-edition-upgrades.md) ## [Provisioning packages for Windows 10](provisioning-packages.md) -### [Provision PCs with common settings for initial deployment](provision-pcs-for-initial-deployment.md) -### [Provision PCs with apps and certificates for initial deployments](provision-pcs-with-apps-and-certificates.md) +### [How provisioning works in Windows 10](provisioning-how-it-works.md) +### [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +### [Create a provisioning package](provisioning-create-package.md) +### [Apply a provisioning package](provisioning-apply-package.md) +### [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +### [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +### [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +### [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +### [NFC-based device provisioning](provisioning-nfc.md) +### [Windows ICD command-line interface (reference)](provisioning-command-line.md) +### [Create a provisioning package with multivariant settings](provisioning-multivariant.md) ## [Deploy Windows To Go in your organization](deploy-windows-to-go.md) ## [Upgrade a Windows Phone 8.1 to Windows 10 Mobile with Mobile Device Management](upgrade-windows-phone-8-1-to-10.md) ## [Sideload apps in Windows 10](sideload-apps-in-windows-10.md) diff --git a/windows/deploy/assign-applications-using-roles-in-mdt-2013.md b/windows/deploy/assign-applications-using-roles-in-mdt-2013.md index a6e7d69377..d8b4505c51 100644 --- a/windows/deploy/assign-applications-using-roles-in-mdt-2013.md +++ b/windows/deploy/assign-applications-using-roles-in-mdt-2013.md @@ -122,11 +122,11 @@ Figure 14. ZTIGather.log displaying the application GUID belonging to the Adobe ## Related topics [Set up MDT for BitLocker](set-up-mdt-2013-for-bitlocker.md) -[Configure MDT deployment share rules](configure-mdt-deployment-share-rules.md) -[Configure MDT for UserExit scripts](configure-mdt-2013-for-userexit-scripts.md) -[Simulate a Windows 10 deployment in a test environment](simulate-a-windows-10-deployment-in-a-test-environment.md) -[Use the MDT database to stage Windows 10 deployment information](use-the-mdt-database-to-stage-windows-10-deployment-information.md) -[Use web services in MDT](use-web-services-in-mdt-2013.md) -[Use Orchestrator runbooks with MDT](use-orchestrator-runbooks-with-mdt-2013.md) +
    [Configure MDT deployment share rules](configure-mdt-deployment-share-rules.md) +
    [Configure MDT for UserExit scripts](configure-mdt-2013-for-userexit-scripts.md) +
    [Simulate a Windows 10 deployment in a test environment](simulate-a-windows-10-deployment-in-a-test-environment.md) +
    [Use the MDT database to stage Windows 10 deployment information](use-the-mdt-database-to-stage-windows-10-deployment-information.md) +
    [Use web services in MDT](use-web-services-in-mdt-2013.md) +
    [Use Orchestrator runbooks with MDT](use-orchestrator-runbooks-with-mdt-2013.md)     diff --git a/windows/deploy/change-history-for-deploy-windows-10.md b/windows/deploy/change-history-for-deploy-windows-10.md index f7e67993e5..88557fd56f 100644 --- a/windows/deploy/change-history-for-deploy-windows-10.md +++ b/windows/deploy/change-history-for-deploy-windows-10.md @@ -11,6 +11,26 @@ author: greg-lindsay # Change history for Deploy Windows 10 This topic lists new and updated topics in the [Deploy Windows 10](index.md) documentation for [Windows 10 and Windows 10 Mobile](../index.md). +## January 2017 +| New or changed topic | Description | +|----------------------|-------------| +| [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) | New | +| [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) | New | +| [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) | New | +| [Apply a provisioning package](provisioning-apply-package.md) | New (previously published in other topics) | +| [Create a provisioning package for Windows 10](provisioning-create-package.md) | New (previously published in Hardware Dev Center on MSDN) | +| [Create a provisioning package with multivariant settings](provisioning-multivariant.md) | New (previously published in Hardware Dev Center on MSDN) | +| [How provisioning works in Windows 10](provisioning-how-it-works.md) | New (previously published in Hardware Dev Center on MSDN) | +| [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) | New (previously published in Hardware Dev Center on MSDN) | +| [NFC-based device provisioning](provisioning-nfc.md) | New (previously published in Hardware Dev Center on MSDN) | +| [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) | New (previously published in Hardware Dev Center on MSDN) | +| [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) | New (previously published in Hardware Dev Center on MSDN) | +| [Windows ICD command-line interface (reference)](provisioning-command-line.md) | New (previously published in Hardware Dev Center on MSDN) | +| [Get started with Upgrade Analytics](upgrade-analytics-get-started.md) | Updated exit code table with suggested fixes, and added link to the Upgrade Analytics blog | +| [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) | Instructions for applying the provisioning package moved to [Apply a provisioning package](provisioning-apply-package.md) | +| [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) | Instructions for applying the provisioning package moved to [Apply a provisioning package](provisioning-apply-package.md) | + + ## October 2016 | New or changed topic | Description | |----------------------|-------------| diff --git a/windows/deploy/create-a-windows-10-reference-image.md b/windows/deploy/create-a-windows-10-reference-image.md index 4954dd3dcd..7f4671ccf1 100644 --- a/windows/deploy/create-a-windows-10-reference-image.md +++ b/windows/deploy/create-a-windows-10-reference-image.md @@ -167,7 +167,7 @@ If you need to add many applications, you can take advantage of the PowerShell s 2. Import the snap-in and create the PSDrive by running the following commands in an elevated PowerShell prompt: ``` syntax - Import-Topic "C:\Program Files\Microsoft Deployment Toolkit\bin\MicrosoftDeploymentToolkit.psd1" + Import-Module "C:\Program Files\Microsoft Deployment Toolkit\bin\MicrosoftDeploymentToolkit.psd1" New-PSDrive -Name "DS001" -PSProvider MDTProvider -Root "E:\MDTBuildLab" ``` diff --git a/windows/deploy/images/PoC.png b/windows/deploy/images/PoC.png index de735060713214af014b38b0b9fd530ff38203d8..6d7b7eb5afa6b48cb34df12dd0b44be230fd3c5f 100644 GIT binary patch literal 139787 zcmX_nWmKC@7i~*{A_a<50>#~nySrO)C{VmO!KJvn7I$|I!JQU&cXtmCH@x4y_eWON zla)+n=A1dQ_nuHC1xXYne57~p-l0fKiK)DM2eS@+5hK7uKk4OIZiBwPcT|xSc~?0~ zZ~%RPH4~N>e)p~>8u`f(4*HB}C#B{1?j36P+v`0xwao8#?_LX}#e~&d^^Y??{z#m; z@6T$fbwNNhJmVKv>Z|~1G@SBSmNix`&T2P&Un;$^E&FcO(9@=YZDzj?3x|y@3|WnV z9aK1#dO5qwJPZ1a{^dP}s}JX1=1t~RFwIUN zBY#;0?+&!ROpmWNtrrqb2a|nt?4Np=BltgJu0#KkEz{@4E!}0+t+=vs)>B0S)t$hT zauF3TP)P-xaK1GVEM-CywyV(hgqA6B17^2OON;mSczJP22hM7xa{f0E+}l8Gyic0V z4~J#;1B5Q-0^CLKo}*vC@SORO9v&GLhX?c(DjbE3odpZxVJK$?HDi7q&=`BhzKPYY zXn8zsvG2pyFkfVbjs}61`wa-1IM#LBNd!SB&6Y7|1{;+1=#l@kNi-jpku%yiPsLJ5A`^U`g;h@OszcI9V-!{ekd!`pet1UJT3snHGXS7{d3>X&W zZp-izAU2(Zvo#f5DfzeCLP}0f4c&WEn#v6ax}8B2?kw+Z@FePLe*VR{KA8H*&dxqa zeeA1@yXKo;-dG$ScDI_Oh@Ta5{sV?oeJ90k=}$2YLstxm=s9G`Hcvi{BQy5Rj`a#p z`oHjkYI=0-y5MNrnT@SN!iWIru0Fe)Yy1F_7Wl`Rv zZ;>0P?qu3_3lR_qG}4H&6aPYrU4Y-6Xi^;BSD!gOBR*krEiE;2RD5q$*(_n)1GSBL z#edEju0+nHSuLbdmCk9KsR5=b-$LLzaGVZAprkw)gd~+n*4Gl$ELyHckjktSsbWe{ zD3W~b;4cus5tmWmbt1g_Fmh!o_uqIUZ{y|p+HpmMVp46EmQ{+}p00>vK7K}k9nX_Q z)1z(IsM6Q&w_Er9xVf8V+n>sA#cbFOTdvcjup$m7@&p5(D>2`c4wp|x;YO0)iY5C2>|vDc}z@*^eYHM z+)<#1Wq=?OdVu95cWItfRa9b9Q^O)6K4nl)P*F)Py`5Da6>%FqE6YWJvr$W@iebwG_%;V3!XMA(h8ZD&+ zbR946D6ZOtyw{$`8`oZ>q=u&5AAV0^2l^56)MR_Fzx!oC1(TMyo!i*31pof@K2kR6 z;D<MFK zYIip`Ny{jBT=PBsa{6jdk1)Y$z!XqHH)1Ii(4)iVlt2!dL48 zw5VTm(#HZ0tpZw%U4LzCbuJ}^PycOey*LSy!*U@RXh)z7?UAxK@qa^ZA+0keA~a+& zXnr?CI-cyq^HsK}onioNzcVt#)Ird+;+z(h@D?`uPv62uy^8DAma-&a0rK=6j7{b7 zs-*rqAL8P?DFR>0a%2ihehXE9!97 zvd0=xKvgIm|C*Z&3LOx*$|wAV8DN6R-VDGHRMioV|>lMYcy@o5qD;On-Q`f z`CY>;SI_LGP~dx4c_k$b95_iTDR1#~tG`b{_voBM7Jt)KN274evJBp{FeEuVVtN@B zVc#jZvX#Z2M8ClX8>jV^9;fxTKIsa6gmcyP12hL!?f&NnEp3&1&ckOV(Jn6ZCvnbDa6n$_|WyPA$uSd7mv28hZ+zCH#g z1KFiV^V-SF3$IBdMIMUEU@J*CgSXhlP!f zWGCR?e)pz`9v=}=hFJ{TEs0IfbGZ2Se6#8rPmqLgBW5CULVD$gnz04WkROWT_Vz4{ zt>+?oJZt}L6Z?PLbaCeMs^Jp@89!tAhDAF`8HQYxbZf&G|N zQ3Z11HPfzL_s%U~*G!Jo?>bb)7F(A#SbE}ZVYa(%JV4)tlv(G9g1Kr0D+b&7+cVVq zkt1FV(XpqB?cdP?4+yUha~*8fZ-Ki7!%>(eLJvWsq!sEctOji2<;?%qFSx&AR%M;hOC12{7OnL?Bh*By{-yI&Wo#q71gN`E9^ zice1(itis?m95iv8JTgkCnO{+Qg3bB)!JSJ&+h;Z`8@i=euB_^l@PQDA9;wJH0s37 z2eA1CpU2oWpGU+PbebIsGJW2X?YufP*+yi1Dnj0tiH{b10qyr!c(mv_jUoS#t)T~}S>_?o4)XZDxc_TDvV(m~oYf{2YwC@iKW;OPfmC2=V zKZluDB!h(62KpMFF5-STa#Tj>6nf=-E4}AIpCEWoMUM+GJGxB0{MV*J_{Db0IAoPz zQR$BV&QEwcDQUgOgK>hp?<3mRa#e2px6oB7(*C%)W(O@LsdjdDT%oyIO-hm!odKDg zk}OY;le}P$l%|XULzPv0UZTePKu&L`rcqZ!D|AuC+`xIk zItPv1b}OHY(Pwg@8ob^rFx)>JRk7Hu3;kEe^^Z!lU$xq@^)RPK+P2@rYv{XCP|Brb z-}hbw7h3R74BG`ol86TV=nKP6J!5{N zzUFx%$lnDzeNzc+LKvj%)o{p1*Kp8%x}ZyWJ&o5+j*az&8b)7oGMe|4E5GR|=-Jzy z7h|dxDE7#k;|fI5@E0JTB~|>?VmaI5Kq)aGpgAdA< zSNp})rf=lV_>g5s)31B42;`)pqnnDg1=n+NQ8Ii}gFW1RutX4`ilB+13H#DAVM66j zQ`x8VU@!8=I%UtC6^`df?@#!aMJL1Pmhqo_?uQXRxSCO=+{Q}544D|W8pAe5!n1{b z|4|ABkB7`UdI^uk3*F{cNY#zL78{ZevF}&5HJ`5>m>^xBJr=4SBDvnunX-#9pO^TL zrvDj&@XZi%!>R1ZkH>YbdQ_W1M z?GGeB>yIj*`{B6u&ZB14LfU?EOa&vWXehqgM5)LEQcGQvtV4c8wuDZH5*{@S&x8pT z5CZEkkHLx;9C6N9PF6C3bQ+5KTlP3O1;I`*H&&bb-PfXHyPg^!pW=AObmeh4x3=Zi2=Dco867v#vj1A&cW-g~ z%Q^zPZ3;aDgE%pZxNXev5xXvK1^P^}AuIkluYa+wHD*PLh>A99Q05J9e#1%e5-GIR z5ThLuXCBIvUJ4?1=2>L$u_2m|GfLJ9)f-(H2j%oOgwGv_8ntbxOxY`s)|+8Qs~5Md zdk*VmXD0-Qj}>e!kcuJE*T^syPc&GX&&^K$F= z4EutqAETQc_l*93dzBFiZLiGXPg~9e-eP|0S9b_-@PK2U!89*7q1O5FgQV*e5|80} zNyn_oy0p9&B5iomUtX^B6OPM#otc9VUu2_tdQx$|5GwxjCr#q=Jux~F`m{-^vvk#^ zDbiXY+oG9JlOQ!-pM2|wxmlm*3JCyd>|JIuz%}-d&W4_XG+kgaYU(zq!H$xM$+kiV zVQ$5mZJLlJ$B~79pTjRH6*$j$R)ROZAOG`x*0<)CcQAoQ)$XKW&JsKoVyw({{zI&c z4j=ZXV*uEW;nMw+=$bLp#7WF0yKJYpqgbqsrJ^ss#sW|v!QQcZL)B0eM z=M#U=zkpdw&rWn_!iI`r^4ubt298;-KCg~+H^xP z0yr*3BRe7)wQ;RWH77?STgyADrSE7Cp_ZBCk)4Ubk~> zOoc|IhyPWNW=7EJ(fJ)?L{Hi+m)DP5e+5x$8gWTW^}ie*#dCq~LFo{yPh1BMPK#$; z=&`w^B?5q@zwu$R*iCV}<{&dnPFr)znyGz-eBMV8b5cE9ShBQHyn7_gFa-`aJ-WZ_ zz!i%3I&DIM0vyK>9}6K=C`BK#_SpI%!0%W-zjnAGp0SCs`i$qN z^FG;^A2)|HArg82!vrz{J%cX+Q_K)XfyZN3dR@?G*(Ca|T=8(VLFfH(;SYP~U)juK z%$iM5`LC5)Z&y7AkEcJ9F}0%j{_w*L;zegn*+L5tbCggEDUJCBTj%>jDWD)kb^#ZA zYr2%wNN+OKOix9BQh|*(cBtQ8`9!Q5v)FP>OHM7nj+H8gvvJ3~q0Vt9^3l#2YpZ_3 z0e+<<(v8J=Clz9JT9K^5=4_!+MRQB#MPa&|Ykh{kiXEiUM$sGbTBpuRxfxFNQvB+( z8u2GR{rJm&&GHqrZ=0uEAKaB?Y76LiKCz{(ZVXb$;5o2N($KYs^CLA+`)0o>M!@Y% zUs_tmvc65{R4^oEjh&cdR^xGg?{)s@Pnsfbry3GA9`)!Qo<7rxW96kAqKe$|N1U84 zcwHhz3k{X|aa$US5Cp?ZrX78rvVhA_+WnWnqv1kUvobFs*}b!I39weHmv!^}>%JG3 z3$SN-jCI&NPMIrDHv5Ndw-jo@O})>F6ysRkKxFN!1j9j}6&`)orhAqCHwc;NtxN77 z?bcO_;KxC#W@^8Kp~`e6h1QJ0S+7rfnRgJ9gmmBfr_nbcYWY+&X33cP+v4psHYMg{ zZ3BN%{^LxQcc2n=zW3_ZK(r*+F~bxi-}ChpZ9Dg#OOaRf49y9(0}Z*0#`)uu4ZHjT z+Sj5mJ-2Gc)4GaE%3NJQZ&L!d@bNF|pMMIg)o;=MIrr0FJyA#OJFco z+=K2`@pxM#YLdTSFkMKrfX14xi|jFp?D{8)!SAF+xxJfwbTISD+J3OSflhjXp0DSC zL1qa3_X_PmfNd)}8q|||Uo2v3?W& zj`&cu;elNF!-FVia?`+sBvGW#(-sl<=l%cfdh(uQdYF&X0iP>rugaZSJdqzg&p);n z98-*OvIo-Pu3GRtRMh=(MMF|-Q1?ili~fM!IvhS|@>+i-0iw~Q8B~{>YR}1_3lF!2 zcUv?c_y!SwwXSfyhc~c+HB{(of`G>?Y(|znKNt$iw$(Bf=_mDppRyYGec0; zE7kVRqQ>6yD#M^oiuXoqiV{1m-*=6s{PP*hl4MOiIW|*$SURun8QlQZv4D`-{z_s6 zu9g>S@YX%(cT^4G6-KzqEXcmCP^)l9UrTgxp>L_0QGeGciT&S|)aFiVQnB)}#O;w1 z^ZL8|!9eV2pjD2bS6`}l%H6FjyDc<~{lCRg+kg)!pEl5Z&K;CCR;-TQ4!>d$S*t7G z@{dbutAV1ZkBV!hrVFxK{j_Waph+Zhv6uVwbyYaO(4p*Mg=TORUi7agXSh_7U>4xM zka%Xow!KH(iMNZPMx*e`Qug>tBKBU^_rau2mRsX+v&((-am0yFv1Y|wOjoD6O5$c2 zee}IT?C4eQDY=RSksbCc##LTXjslE$u=Z zi(mO#Wqq%C^-+}Cpba5@_~U;I5>G(`)ktf| z{Yj5M5vxq~)JVW3Gn|HH9LsD(3NntxclvVmfxzzGYw&Q{ph@`BJ$ih?sLjoe_4zm~ zn^PN}ym;5iFR^sGIa5meGS#$#uVmF!Csnnrlq(w9fF_&>xv%0Hmk2u^=R6^+?bcfWyu++kk2Zn2N-FoKU#yX2LU5)DrN~t z?CG05*Rce-g?GXETv9om!nt&K&-QlSGC~mT@@7s*SsPkW&`UiTPwE3?GykDPh*;j7&vxlRzavO|PyV-l-m2hLp+zML%7nHquwL~KocEq&G^N@ zV4#!7qR7o=U}mnbd$lxsdBYl+51!FZj7vv>SSXq7zxleo&6l0ve%Et3e@t0Wcu$#% z1i$k896Hr{s$j3!lk#zi)K7O-juu*_fJ2#NQqm)?2l@9$_f7+KNb>axrPLu>{YfM(zGSeTUof~;#>iW=Cb-``mvon;Hzpmq*e#?QI;fL z^pk)_%mvFbNM*W3gYw3RvwoXdSvOyI?0LwNhHZ-u=CrQN4T2R#f&2Wz1LsMTX~e@adEY`t5?+=NcPoUnvNd&Ktb79g4`ei|febA>p>`}P z=qHDumP*1vDk3&jos#YSCdZrc@}Kj8b&QhoTGw6<3#O)EuGHmUX{&j>j#(Pm_^(b6@6HH}oT`)Js%_bAz{ zf$IM~r*BbJn*y2(b1N;Sd7}8>S5TjFR(~Ey7>aA0unT9>;Ia4A!vX~_q?0T(`lXJF z8T$0$YUcFQ%rlLq3$*fJ5(_To%goH^?WL2HrFeNqRE5gmjKfT%%b-s$xvSs zq^{O7VRQ4oh|n0xwxWnSSyS?#9zRoK%Iu8b*3g+_N8`6nBB2?udaX1VT^QE}%5GKt z59#4W#$1;u^Dk3&01G2E{&3)VAoQp~k_D41d7sFmVb@^g$zkq_E35Kd18s90IeT7{Y&{Ywu-GFfCD@0aDg`wgw?EU2p4l>!E)P=NID&%07h`NrjW zowE)|4vV#`kq#~2s-noY=vA}qkgoAWE_ucqm+schUG5J9Yok&1rwN_sbGY`i{m-Fb zs$0QZsXx*Bwt<9mdM<>8idmHh8)j?7q;dfo^rV|(k+rAt!U@GuNOYwMG@)A-CAZuf zk?`mhHGC5*{-SGGU<~SXi!*RO8_+1Z2FUrE4 z;9McLZsu=H_LTcY(Mw&=9Vf3W?}0vFUSx%Mv|QZOtFr6a-ZoDcE+aK+PUbven~`;f ze7!SvFs)b=e;tgm<9T0Wv*PY~w-L;BJuYewr8-D4?DMw%o4@YhZKWq2z671&Mt9); zYFkSo@0kybJE3<}SasX2$*`6Z2D*$i=EOgXN6qe73+XVa9jT_PN1PfOU!xS5KYmLL zVLc8SYcaUKazv+i;Ld1+7Mi~y8B$GWRABbguD4zGyJ?JhT|AsGN_Eo} zt($W9ffJ-t8&hxnwsp0S-Im)1GJ~PesZ~d$-Okhx6W?5dQQHD~)BGO7KW6kFSQaRYzp9Xd;LgvIJ{e`9 zfRQ92JjeVcx}p%1S#?$>qzntDwU}8F$0|*`t;5OhSro2b7aK1rE+SgIw|+~z{SH*Q zdaI$oq&+s%x?6-jRi#wZtq4!}-dB;WRc885p;4MP3PUO1e2YC`1B&lScj8X*s*)Ug z6yy?&f3c-AVc)UECTP9LmhQIur?_;pKIv_jYqs9J1cj;XTBRq!KSP2bc>CD7I2=^6 z2U!)$z!$AAl;|bhse$cRQ7DiHu&W#lhX7R=(WrX)V~62S$3lNu=N0HL&R7^^@-LO3 zfs(%?o00QU6x3fG>zR}H&LrJnjX=ATWh*lKWe&!1pafQ!ZPd7jqu)^CM^bk6!6P2L z8dG<|bBzy>12oFq+l{@Pt3hKop*tvc8@^=IB0u%tB=ZJu3q6nUBd8pqrFb6RxH{_95kkDPI6T5yEm1e3Fl%QJNo8=xGW#P-XnG z9{(~gu}5b1x?EVl;XG~9FWa&eo9Q))c2#SQJv@OB$9gq>(@AuAQKo4tv7g$V##{7y z%UJ&O;H8(ncha=hPZCV9sf8!us1&_eY8gP*5HjfTHxV`_BmRDc>?d%CS|8W9RqTd8 zb(Ru0R6o%Wui^vXJ*PHYmd^|KTS+PJ0;Qj3VliFfnuO$ag6-ttj2hVE%tAG~s8E5j z$70-prJ94ujb%xWgKUyR{7XUZ{c1;8e}B>4*a+C&U-ec>9E%?ANDu93O{t9>(&p}5 z)T@P72O*#|36?vOEm?}bC-vHYoyA9>M=op;j7^4X+(fQfwsAB47X z=y1(@q0$VJo=X#{YJ+G;qU0@vL<|U&lnm}es|P|)VpJ%I5b-rVJXX*RgEa}qL&82+ z^L}LSZe}A8^1 zY}gT=;H&J_N1#Wn^$qtfmBXh_C?;}kG|rrg;sY~D0lqHKy1P93a%b8}}RB0${z@*NH5x#XyfF z)fNwILAT|$_f$z7H9}9m%w{wF0#_R*kD@Y_{VyXCvm1kT1eGnPgmSuP%wbMSR9B1@ zG}5AMZKF6uG4foPCa0UAn$1h1pn><`G4!epBblEUTTNh$jr0&LVRPFBmUlsQ)?X*( z|3m0b%Fuy~_ReM5KDa+jBVT14z^FgKEWg$6QWTwzF( zz+rEHs3lcC01^&OPqKpaQ&H-2tab{v2NPC%hsHe522c#ph+t(msGu$FR_B+~^&jhn zCd>^Q?!bNEU3AQpaf-97;PpsGiz!NNq>>Ef<>N`w9+@|bIUa9f{(I26A6d=AOVN2? z>#P-yeCLoYD1>8v@w6xSI>A*YO4N3sU<;$B4EhMKSPf1?%D9_G zx0onYso=o+tME>Cecz6pUWBFaB>(#_Vxv}=hJtG%6N6Lh(TiW$Lu@fk0+ItX%s}C< zHmbiU=z_2Y>SIIvG;e$8j0gkyShd^jv%W0*121wxTzfWkOpudByN3=X6{JaIo@Tzj zN{uSAyGx(ZBW^6hplI=6ul~~WQ|I*(sqI`|hYR8NYj&&7M(eM?mt@Ay!hY*A$5eH^ zXdCy;yWLGRN_zY>64;gaeF(g&A;_3$AnqxHN-fx-Sc&;XuWkGA{y65#52@=I1RkUw z970eu0lzg?Yc0d6U|)$rZ%r#Z`$@CoISC>^TAZ~|L;WT_^-py+q=v*JC5Q~%!FmLvC!6KJ?9>~}0V;sN2Xa6479gDV-ZB2p zPMF`o--!pidmeJLouikMG?W$V?Oam!DzaLh8)0pIs{E!CKOqqeqgecmThF>Z8!Gry z4I_6{C`oXQM=770Ut@SIckM-O%hsN;?4hn7t!)a`$(U7Ptuu8zeY?E60_t1j?bQ8R z_!g<^u=F?ib6^R=eA0C`Xj;gSaB7|k7s)r^Cpmc$2?+%XNvLQj4MITN1{wuuEBmuq zS`Y+ddm}2=pcbQEj?5Nz0r6J@RL?P-9=TZ8k6mh4UO_9a{#QmVsa!~2i=}k7BI$`X zfQ~ano)FM%O53W(1SY(%+?#91spDHMqSPDanK^OzBv)K)Q+>nufxN<5?%xYYOATZT z1Ydg)e->lYr8^*p;tIs1oB+hozvffMc$Xg|aALnY*|0mHcPYQzaWC#fYs$g7ida%c zBe9x|PR}ztQ|^>;WMkb^CmihtM2KwX;91Qs`6&g}P*rOnozIkM97W(??T%c@IDdiw zp;XbPKbpX~41}KJ*L-$(j2&g1-bhiFcd5OIOrfJ7I(p;5FX9&NkeGyw$@SYu6TvB< zAZ8rvXE~`!bdNA8A7Ww>Y8YJ+W^`}#KRG`ceH3gJ!c?lz2)8l1s7lqJEB+MNCGvSy zX-RUTg#E0@uWH;@PZ?^rOUPi(g*A=WB#)2+!dVW@N$ZC3ptlml&fPbw3)ck-C|g>_ zwd5e;a3YQBKFmZcq1pHsxPPF$&B=V0Axh6rnO&`!m~BoOw1;8O6PvN!i;^9c+BcYu1XKd$|?7Q{;ks9MYlTw)*Ve zz|cKiHRpN*4OONPnfG5m!E=VXB$TKYZ9*Bkfyc9sv&3Vq;S64lJwflQ5ze+ay^px7 zB+`GZV^T(U`dzx@U6wvy?{@trB0*ohmftOQ@l5#sDh4_TsV}4vDhSH!T-|5Y6Y(SM zfA)>Bk_52KY6%znQP|+A7ZRHd?`CE|C@jLnPQIsAM=n(^PAO!nt4-;u)M(;Oq{`4F z5cIV*o@eJm9%kGjWRV%!F2YB;(fEB$eQC^ksUB1VRJdPj-<#2PF=^oW#)Q~%8yvTE zQ3O8%!VP;an?oeFVY!Nm!pfpU7z(6@Fg7MQt&TT@;{Be99Z%_IFr2C zPjRnvCRY96vH@)nwBGy7txuq7@UTX6S3ToqRmLG3^e}6qcoe*|wV9j}mtzaNW!oG` zjIBAceQ~>)(O_4=dY>5+S3t_ZsOIAFSy_VRPfC*i50%s~lYct1$~~o>SlB0pH{r>$ z<+!_0wsTj~0-Hbg4Bq1tn^1$s3J2OLhSPpV$B^}1i}eTO;39u3RCoJluo z>1c&X0VzCReosF-p<|b;@QU=&hYmR=5Zw0NJ zb4a%NBhow!{Vuk0X*Vx|EY|2^spYwU*z?$HZ1ZmVynUc!!pme=MKA)qu)!-17h(*& z=q6(9WnyfB#eF^grhDy=4ze=BecJFD+b9xsOwSlRH%wlMoI5@AFGJ<|Z1%e8@N~SH zwPhwK2&1tI;Ymum;Qt8?GhMK*WHK@`%%;P5^m<^mD^}Ct&cRr+H=_4Vt4PhjFmuT@ zJjFmJaLMoW;54GjR$C5s--1E12Zcy>ct7KJ$14gP%=`)ZQTi!U40%WoP_IAk1i@7Z##x1NsqN9VhzV>7{}&9QB$dJnXp8}3BpesdTo z%h(KyjLUd!NeE@j!Pguga@LOSF19Wft*SOwT-KmMrog1LPcIkIK0oHG4c+C)*^7j( zvs!h=eG1Q}VsuIau6MK1PD8T9~&%Vg(Dqq#olsg=sg=Icjg zSaU8IFjYq^6$+V^@2C_PMffdca0Y>nLXVN~D#1G{Z`Z*Mu7~+NX2`g#-2eb>V|vwD*&MF|@!lrZHn}b0Ba!E4 z!TZ08PQsA}FPF*sG-|({&sGVcsS`YU^EgNr?aB`LBk0q<7$Y8zlcUpQlWOy?SUK-} zGo0ygBs0M1IS63Wx%T?vLQX-kaXqCt07bWbb8|_Z_Q&57dEb$Moli;|W2IoJGMwTT zYevR%L>to2;U_T_xP+%#mG+mLS^Faa!BDyFM<}mSmBblz%7RrJnWHnXlWY*BUiN)s zTog@QTN_{BZ3nwz>qQSLY)IW5iN<RPnBLtYyJ>8Q{X=sqNd1<;WwjSiH~mbx@t;N3LQtY6 zBhvMF?|ehfYdzb#L2KsDVrE)o^mkjVZmfFWUNLgB25b+o?>GnP9Bz5IjK=zWDGM};&M6K`2(7e9$R_Kt#!WA z!=&hp@vd_^$%^lj0F@TUn)BoN-@x~_@EP2vMASNMpM74gvM!d^US`Yw(=uE4NOS_w zvpY)dF8XkfHkq=#Ab*fBg9M?dwe~>l4j0yNd3f~aD~UePb8jdnpqJB-H*Co)(@jFM zpXSuNLW@dL^~{1AX^~1JVB6f2VD(y3xo5%+>HJMOWBBOv zd}J_Fc=3Xv&zA0fSVEgUSD_P(h)G#oY?em!wEmHHc*~K%<#-+)Dj#-dM0j4_daf&P z?z`QJ7OdP;>uVZ|POtQzIP1+azJv1-Ya=L&s%6`o^O zfWPxwj%b4|ta-`QMZOQL4j#{c{GyVXsuL1W|BLWscfUSr`5$-D5~6qul5tTrzkNxq z5)2)A@q0K@SxrUNgC6W+nf&jOj}EL#^j5qqcF1#}dZ?-?iPMQ`Np*wi=6G%;;UIwC zKY*K5p=~uozd*3P@ zlX8w_f7iAU+r>J$N!s1}jyS#|{A+s7tC+Te$VFMA*6NGJfo&s}e-=p1wj+1h>u4HD z2Z8Vh6M4{f;|+b_PkCn>kY(E9d85_x_yYZT32jLc~g`H={P*na(L=i1&D7rEFyyElv+@`V) zRTFoIpp!Y_#Qu|^!bf0YgoXk^2_=&cF~EGX}gjDpRdioqqc?c%39woKh@nwK1HiARg%fYrWC3JO`+j zn18DL_95HW)!G8xXak>R{nfxl)A;4=pscd4Oetoz<%`^QfE53u1Iy5|n;q~1`9uH3 zw})#-aYe9;-RT)T3F9l~DcP;OzgZPaVCy26&P$d$NY;Qpdgi+|mhp>;vXk?JS8iI=sY=3tt;8>$44=;E4P-E zU+%|zO3P3-a_K%Ow8J#>2Zbbs6~9xn2QdgkI4MaNsYrSAvguTooJAZYGFSJd3?*N! zx$(co*r-m)XCjtyyCZ}Bq{7JdLl2sz;)GbFWW#vXd-X^AmeJ5l7dvEIjNDW%7Jn3W zx7hO&RVv~rRm(^VS+`78 z2gfK{Ya!+~s6V`hNR*;iREmI%_;b~Fa@!6lyMvZBa5;59xh^?$FYN$zctrH8UUf!) z#V=XBTZDWGEk|twc5v^I+sfK z$n+uyNT~;!JLxMOFzz=tF-Rplq??rC99}?kdJa@zzL@o&5zyX@(BZ@>={e2GDAj}m zPW}9lI3*uQHhj?;yAP#{MUJ*ORXI#0O}~dm>kix|UuDI!Tg~n}a~~3{MeEo!i+^|? z<2Gt9+vV18b};czle5(Sc+G!`L1-8i_B+>y>DDXF4}k%xJ>j@<@N^tGr(TX~m3kQK z#dhVj#y*ZGjYm^5s6iociBthz*+C{CDSaJRgyJ%wi z^--RbiOM0HVi!Tv#ltmtOCL00fJ@DhF%+IW=Z-I{wCPATTF3T`qnt!nw^WKjj{>J>fSijXsd z_|cvPt{xWs>d%Qsj`f=Ip!uBoi-DUI({WTcNpOz!*@ioTJBF*~vYy+lBl$@IrkC~f zRd>kioO_jlP5chlW^A=CwVGu%Le+&0b4B=UScc27&KFk&(!`zl>gkowa-0nRF+AvU zzt2P{6*D8CAn*4;SH5v7&%bdLhe!PG*XCmmWVG*`WBN}?v33a1ZClYkT|94=GePD3 zY>V|4TMhHg1W(Aos z3~$##RA9k{07q!U@-4E2reOT zo;S2?s$2I~`eC0cViUb&)5_FJl7Ne-vjv$Xu;b+;%6}g3iA{;6+l*kOQed`G{hWi1 zKtY<9-4fE`L}-Y8lke4{NnQ{pDI<$fg~|5UeFQNsB-w&=H3`&;nXkg=HxC?Q8`ArN zyk$e}2_nUJ?X=cOc}_mmE((2|0LhJPTm zjLT^9-PCj|BULYQel&c;KZj@uYZ~D#zqFlnL<*Zj*pkBQ9QJaxE`aUU3>R>u{CcC| zYBBe*O_$TkiPY8$UE*m?jneDexC344$IIA+*rUs^5K)O`AnmBc z{vd;wV11mF;N|f!^|hxBSP;@jqI8-pX7e*;@z)kdeIk`7z_Wt}r$PInprh&GkGbz+ z-=k`5k+ojUYBlwrAZ5oA7f0tSE{p9^v?0JD;BvCPD|5*RKoxW2dQZQk4rnYuJaP@8 zpYR5)RVtpwG;Xy!T&Hld)MmQP$}+qfV0BEGqHe-qB2=eWE;Dz!zygDsy>d$##rwUg1!nquG_PO+|9mZtO=gD=GDxq zM%3v`c97K~a(=6HtdS+CC{glQ;b@v7KZl*rv)XtZ%Qc4-8GY0Pm0k=>1=X~je??Nb zI25U9Me6v_{6&ty}ohNu4&M4fOuq#PJM_ZihLi=yV#3q1A>6C$tS1NzhFX zQbqc9?jK_}i>~l0X>gVo#Urz~x=YHHK9_bCIK{r>((#y)WR12|+mSw$rt7*9$fI$W z&h6+VxI2|b+Joxl^7Pr*!@ zX-YCRv4?ab75*e{%PvFelmDD}i*Tq-n*m$a3cJ1fwP@@6oS9>Lz_D zs{~gyH$C!!(G)9S*uy$QbA}fEugW2!BFoPT&E{wG&oisIOvWR!3ef>>VZXwpo%>t) zs8@lC4g5`e*28r1gfsPxMmmT#$Z~ZC$+mb4g&EiK=p!_^Q%K{n_hd^ZB<#Wj5Q zug<7E(cFk9@PrZ9jTufXdDjrV*q9^=?PMG3Wh$HKw8VC|PZ&qe{K}Pn2DeaXZ(`(R zpbzv&T1>b-WE&w*lslB?_2YA~%HWU<28l;OJ0ZFoO9 z_7beV=GjX&&VBiMHy~)a$lRFrP<1}V=nX3ZhsRef_yCC?CqcX)SoJ+{)X2S{y1x!q zm}!82IuPu9qO{6kxa)X9fK}+l^72QlnYkO7`A96-!1{1=77V5QHUaIH9-NG-kg6v=TNP;MRA@OOGzt)XC0v%|Zs5U?h+kZ|X1=j7$sn>=dU+M!FZpBF7K z84hpLq?jcD?nrmPxZ8@>FdRwb2J}2{Uf3Hjg4SX5PBZUM^ujWcPwW=FCkqFddo8zh zM8r26KaM)b#;$dRN~2q+b^eNCB|O zX;CuAQzbYeJKt-YW^tmJH67)3G&`;ELOy%qb`$Z(Ns-O*hAn!I<*)HX@GQ5EnaBr? zA_}=Ol)&mTm$W3ROda&{lID|G!Si=ms09AgPooYs@rBR!(`k++MfEgd8|$Jo!GbMb zwj~>qVMoa|r^b9$&jVKq+hIsHQY|O48NYZl=a3Px`>}Ra`h{Z4?fJ%1j8bMJl0 z6pmZgmsO~{Ey$KO|HMJ$4ODAALe!Fso^x$oiyz$g`piT`{B}`{TP`SwDY)N1E?-dW z4(t3DN2b6^-hg;l8JnL?fF8X#$M_H_OtP8DA=p)0$2x)+GK4wxy7$auBDuFH0$XU3 z>$NT4&b6ITa2Pd1OoryRiViR@W)49jP$r>(WXctM3CnF;b^0#QK`-2n4FS?`m0o)&u z#BG;@(_b-=rY|oqM@Azsf^(mtzf`&yZthGINyht12j?^OY_i7pmGN1@chuyJdvc^N zX!9zVGw^u=B@h?k`QfIg{qgi@<`=-{e#qcFZS6?{clp3;Sn>0xpzD+-e0Ct|$R2XY z9j{s+srZ+^N;6_Dbgfc_wr`dUe~&_#PeAeqqLTT*M@wR#Nv5T0xd$~gjPJ5Ue9kKY zha6QtD~wkJGl`z9B_Tow{~F>y<0k(aHj28lJdT)=x&8A<>)W_Ub+wpuqANJu0>EqL z-d*_ao|j=Z=6-7FnRb}E(cr=enB?UB@q^CdOsr~N+-j%0kj}y5%>Ornb(2&quReCg zB9q5el&nJ73rvoQ${AtwQT*dfu`QwiH|OX~00$px*v~P2n852on5CH(Q(z7`jRalLShlmb7&^o5CLav@`pyN!z`~RWPY?Qc8xh=SG1k?KJq7C3o4^SuXr$5?V|Vm zhC+ZFP^TAD+1}HaxE9F+O7pZ~Dq|Vg1L-HHLQSAom=f6`e@y|QH1-*Gg)vsYMA47_ zu`~H8c;sYY@!n!eI|9m8eg8SwB(HeXoF+d_$cw<0|IGh@y?&fYsvi}O`*XSQH2m|{ zi*z$4=y(iK95{1+`AY^6mDFN!2cnr{ijLNC$juyTZ$b8hPsXtx^U7nsc}Rv0^pI$= z89ZYZ`Q=tlzjvSCHa#S4QU1(g>a&d6M78G|yy5tm%_(&G$#HF4SkTT4bH-~O%TISd z#D?smRZ+4e!)`X#`anvul3h`m;Q-GgvHmzq@p2hQPaFTitoax>ux-{td(m|-K=G*~ zAZ{`?F0BfV&m;hb@4IR!+?k+%ScB}%D#}Z)2_EmL3!>eR87j^n>&3X|k2FM^Vd!q8 zonxIjJ_@~(b*~|hetPHUF&-?hSF&A*Mx5B|odH=N?eBcR>n~%wn{gx_4Q3^V_4vmb zmd7gljTiAZ1 zD`wG9(unBAF0%d9Jnf}0mJ#9H9Ki@}@KXw?#pX4ONpNPeK=-Ow&H0DVu=gEsI{?wn zabC>Qwo=8ODsvxhVvKG_S(q}M=7Cp9#IMV^*A!nlG00xkjVaT3GNrmJyr>$dFz)x$#d{mHUXKq#G^q#tozpDAFcMn#1=zr28u?iI?54Y>fuf;t<@8A z`2Hbw5AE@14qB`cyW|b>22KOthIJ194@+ki5LeSR>o-V3Ajsgs-8HxecXt~CB)B^S z3GVLh4g&;thv4q+?(S#v{pV(GXG{0))vK$XY9zcYhTt4Y@oYhQy@U^@hiv+XtQ6}D z^p*ox>ao?aR5p!;q0b%ppc&sVcr6$W@GFw-nC7xW#zTYi zM5)+&&!ge{mKa4-gdyJYVHgTy7!lL*V~SKI>h%CyUc6Op1JHXHcFc0Y(pIT z7dn$rm6-7McRT%u^9g&16Xo&)cNA}L9lTeF(^y9C@!txo8XcbyyND2F_v+F3#&s~u zsIJ&!6r^#|xZ!VD^YKX{y43Mi^TX2??E+5UXwS>xmT#tYnb@?VgmVKFa(Y}SkEb(& zku*E?^mS=7w3S{RDk1-iSHtc84d=l*G}FFMGqdYX!5!__fC)Rm-3yFKX!(X^cP3`Z z-YEEtGdM^a!9w~YajBuTX>3T7NuJ<$_VK8n22+fcvd1`84@#Y-Ci{|C;LMZ=TnQNv z4%R+;x$VYr?JibH>Q{f}9bH3a8m55;!5^WbIum9riL+&Srkj0>`Gjf%u}e+Hl&1cg z;k-PIXIgzr665?k#CzPBka)}c=#)7@@nFYK^MyFgH6Itv3uCs?O6Mb`&8i4;`xq*g z&JF0V9`%FtSS^N!-oS6|mv4z#fNqJTNcXFM^>0hoIP;7X&Mvu5dRKTW$*ErQHU;D> zn$i69hzN7So1p0g>9z1W>OEp?yE|EQEG%;iY@S#fSx`u{e@ofViXLBU1lPGV+o6~J z>UDzU`+KFH=M0v6ihG-mukD@Xcj5hM!SY#4Q|%qU>f7L)O-%vwe>Y4+m2@(jc|xBK z>;xg48_7U$VSzUkH6}zbb+ua+T}emMziy6^oTiae_9`QJvSzf@p;v|{nM(V5G8`9; zvBKz*%pmr0ocM`m487Nk611YIkbQeu<;G@|P&1t0h5IgS}p5xFF3*HJc{|fHI zOa$v@9rbJa9%5uDdDya3dV4LpNgqD#Q^Xl(N|6uDQd(86Lr-rA)?u+FeuO7-BeLtwRo0}8iiV5SbY5k6-ol-!R zB8JfW{uG1d1^)GFG??W)UU{mc=*OvzBbr)r7f~%<(-zxmiKyz(vu~4)|`f+Q-K7(HGe%`qBKuuM3XU{hxj;uL8jR_ zb24B|2~wR96pr=>-S1e&E_GgtP)0gC#02m%o=8_^2vD@(E9w{DqE}A(1K#|xsAon% z%}T(v67Ww{(Pvf??L=DFs6oK*McV6_`m_|1PRnaVfW;`f%-`^W`P-CKwl<@`&tvK( za?TuYER+hfbJ#F@z5qon`?z;BgLLjV)U{woNcPZmipH9CCY5{PlX&|P-<$PqIq510 zVjj6m;A8WZgW6bu#vO2{3p7F z(xn>4=3l&5$Jca%9(k+u!0YMz!5;FY%UhoLZReE5&n~YBKRU)i^PFRe`q=cJ(boGI zemz|7;CvDawz{4`(_DimDR?FsujaW?Yu_#?N>UkEOzQh}alLyCL(?UTk}5mQ0Vr+l zMgRV)we?U^I@;$zp#JB0t(`SE^Qu9)lVa3pJXCYL&qDY;)`4Pp=7qiMlZf zbR@2y)tf0ctlwI*&=#+k#ld+O6=WdgXE&vA3Mko`bRtvAFS@P#q5DcVdo#syaerOV zLjE?S23D6QI^p%kb1zEpL>nNwu4Ei(q$pwY*zU7;*PsQ5U*Y+y>dRzPeTMAMD^UJQ zV~A=lB%NEvxf8t;di9!ZyIfU%30{Y&eSyot~0JM=B}?PBCE$7~~SJ@pOvYrPUy zFcCQqA$|ZpB)1260j|?qKL{`E$rKvw?p7?m{l&*OHA;DDj5dC?7HM-^vRiUEN$Z%2 zHVM&1WH^JVuE9!m$$(0J%H7mD)aY|Uymg?QsKI@3@@V2_j(M@GfDVs!i-E9FD5cZ z3s-BHkDJ3&ZLLWDz*q-xNqr3d2*?;17{u*&aOhw7@0(#=Si{))ZUv3{!Qnk1!xH@m zwCH)JZ$oaXvk-8#O!aW-6pm`eXn>TODBBbrTK>VZ(B_H8nO{|%@uK-z4~wM;iW%;$ zV79b3l`BToB-oD>wmzYl>*_d#{df(n2E2w|CFfV|+9FUujYEyy$fr&jaLAwYVv>BE zxVw;9J;!SpqD+Ca!-fkHb((v%%LptfU&4-@zo{tnuW}j`IL%~@b6XK0Xx~n2NN_uY z`o6bW0JmO8cGB~=MjwAg2$1D5UJoUB<{T$J9q$-|?lr`+>2{bUpAH)xT2d)>z<7rQ zIale`GE2>_Ju9*a#{wCNmY3K+e=n&1$k? z=%c;-^tS;@kONW$@zBpVDvlYkA?jPQNhnE$br8lD>Zao{Ex6DKoMI#sQVwrX?BHlX z_6t0y3lmh7XF}POIV|1i#F!AaFuOyYrTJZv?&)7rKc#7i`QDW*^rn`LA@4V5Bn=As zq+N=gfdkuHa@P}OnqP$1B!8afY@)l{8u+@lY(1Jivgt$la6h}Pe7|7usPy7+8+C)X zpezv8Y}Pn7WZvtBATAJ!vSaOMC(XT5kCW5yTq7288vk|_h(-w&LxF3+m0M|Z^>%H9 z3z}Au#Mxi0E&bnN=Y-Dxs!CW`SU{pxuR%uF)&IHF8Wz4sL!$--LtB|$eHMFG`L=hf z;2(Rd3bYwRzDjATg>t`Qt3!*Fh02VZ>6`{ZTq#8Eq)3I0*io)kitYxzEM`V6#>pqO zPHTN}LM^r?{x(IwDs&;>cY&AIY3&Z7EbG^?<|KB8k=D3det{C{ISElTlPy$+1_8#Q z@TJ)% zu$<+usQAeRDbFjro3HQl_BI^jU@hrqhU@*l^pkMR53z|!O)af@KeJ-RqUZ?M9gHHj zde||M&BxWhhMB4NQE1fuW4$(Eu z@==fuj%$>nc78F-pdM&Km3NoY@+Z5JtL64}(R$Mv?xRzJuE;3RDvTym+2*-`=rSj8 z-V(&^f!V__Scwq}{BVlY$A`73_s{53lDwz+1?>vm}fwP%!s4gxJaP zCH-sMk6kezK1%goDy7rxEYForWRQ?BIsWs1bcBe{Hin6I``LkJc*Qj0c}+4f$gtD( z(Ed8VCg4SSBT9d;e-9^%rhH5J2~%v{QED&BY9OdQpB?)zyxF$S_Q^$?F~V9HBY&s? z&_q`wnp9lxjDMkR?J$5Bla&@DNq_M>#l5i4g5ZH$aU?Pz*sGr7irwT}Pv3E=CvUZg zQg1Cx)_&|6U_QBjpi8|Jpue&OJDvK@!kg{Z?PT;82x?Rh#vfkTYJR^-*o-;{Ur zeNJ5Kwz^X75|=gri-!ip!*x^Z$pC*WetU)a+ZjFrZnaK*|F=5Fu2gn6($d?JXd6lC z3auMh$L>ZvYJ5MhT(@w=EvcEQ6SC-YhQSofBArBPM|EF8=ch z^FrAz4cBQ_ee7g?Drx%CrjuqVu4;DKNel1OP6ktH+nPbe)BKOKMTz1z0&Ex3f&y1k zO4!;K@MiAnsgY8Z5ia!{uE;}5&RTtsq8uMpMgFiHA4qB>>N05F>al67v6x1)JkahR zao~Q{|E$aQfYNwA|L0E^d&}VQ;su4g90`>%BWRB}^C789qgk>lG{spLG96H}m_>@Y zOfC)uM`_`vzpeIex`PVYrj=!075)_NmE2*I-H9Mc0~zmzU&M5Sf2~2@(7E8Q_v4db?r(-6HB@qr3Z09YgP` z-wn6iZskI&!S)djr4ogem>0TOpbrG$BynjWVMu%+8JVdkl=(dhK{)k>ct)vKr4&jMU^dh80_sAZYsqV zQcGW*??%%jdxTrJuG(0B(U>hZ*xJ$uMyy8UqBo6mdMYuc(XU9KB>Kpz7+@w55K%>TQW#j z!gR-@EkIkI5!+9`mnol#sadcNPMSz^E1MbGayc~EUCWuzNh%z6+z;^grwWm|osNr4 z-_Ju$BA*OfBMN?S=VpxDGy+(jYt=^ivYm0CiDPl$`57u&8+u3T)x&f=bw0}+7ja~X< zHd)Y1_ro8CfE`)(2#1|UP=sWKwMHd!WrmB;oZWzj%h_ybojXRWcEgEEsnrjwN5tS` z$jsp+37z{JS6Rv}{~?LK?y~Re2Jf0qdQCx@#8|u4@KX0jmzG1hZf>i<25Q8ur|#AX zzRQUCr+(Mg2LT8jxY&qw@AX_Gz0xStVsuWF4=Ov$j|{Xx44SHmb!#))Pat{uwe2XR zwKV!KYoB4?dwN-jEbpg8yJzjfvU&K6U7q_&*Fn=9^v5sn#4rF@iN4Jv*S7M-5K9RR zj;J#1H@Ms$08Y`vBA)PqO&S(UU#zAD)M1GIRh;%-B?e7HEJ)MGVw% zVMKMBU-FLNo(fx!(VpU28R0a>-aI_Waw-T{45aTv~Ml~3eCcZ3Sb*g)6+L&>j)|U32Stk+ zn$=?Rd6qHRziH9zC;F{|{?ILY4I-4zrIi}8=apnKi`}m#YW2}*4UBb&)-jp<@7-j_ zz8Is%y!=)c!^H(ooz|lY#l|?>M2ELL1#!>(1gJQ^i_VCeaAvfXWmuxgxbuJPIIAAxZ#b!2 z(n;61z#?~f-V@)7iHs9-wG2y(0ct-{_7W z(qvKR`x5~z-`#`39LJCn!PuVmr~UPrJuZ?UctdxQRDX*CP;1C0A%s+E-%mt(`epF_ zHgh{ElW$QxZm?OhTXz;GLJ=ZL`r|0w)>&eDc6f~MNv&)I+YE|RNZj^xmlJ2)^vXMs>og_3@Jx+-cdhy6PEUg`!mQXf_fVC&UxX;|| zgvi0)7oI#PW--=b7hEf;Q*>!8mz%* z2#+c6iBVeMMYhS6zE}Nl zpB=Vw^ylB?Io}WmQ!GNuwLB|YXzTlYX%$)1=+hmpy|mmaeG7pPWMmXs=bz@*5Bdo@ zw<7sM0y8uHB<1l#-&SoXM%&y-TAZ1pk{GN5@W=w$U!-nfW24eP{3N@05zM*2E;g(?5~^P5^&?^pw%z8_65ePvC_gxiSIr;@{l6 zKa*KC{{K|RD(x)m6M#utb^!R=sI;rTTSJ9K+F8k>?BtPdl7|}q=*&w5xQp=-f10AT z<+l%lO0D{OFBpr&IKB55*oEpgQE}L;8j90dZ0b_2NWcu_S|_)zQ*AiicExvom5;Kt ziyFN)Egm%mcpD|(Bp+weew|MGEd?z#IwAU`IV!2{?NB?^N)txL39Ss6-_Xz5%>_WU z==W%i@z5SAw7D^d?7BzfG%AaTREQn?ZPegB5am#k1C74<>RD|0XfF+jN93&xQ{PZA zYUNE4{XHvq)BgDA)bC%P@Y~k@Qxmi*I(@8V;|wEX^YOQEU>AySWw4Y(zSLhC=*h+iNl<=ztXvX)*jJ-dG zyS9@KByoisEK7zl3@+(ZJ#D<9KVjBv6Vm*R5fpqVzu!9-~c; z<6UQH_#2l{8*pj<{+wF73k81w)TH?B&0M8|HU=qAFJR=w>uXysq!CI_Kvi@| zvB{wh5Ag@swQrQdxz!=9<|oXJcFGy+`jB(~MreqK?aYHE zYdih)TwKnVU8`ei3dBLky{Y8@W@HcON>2VzmG)N8K z=(EvI1>8+^meYYci~Sx$j<_;5OJB75G=A0Y&V&oY)~6|B?AU>E8Ndyq{2Jwb zDZ6GV-hLuvdB2E>*`V7L;C_|v9*u;V@5yvF`RnPgY#zMBzGmrDyklVXvT|G+btuPm z{a>se+m~y-_b383U6siZ9YdRTQ_KPXKTjl-gT%+dgmPiT>gQgnCOr8SC%#vk?wf|& zMRVI1M2?NeRKhNu#y+G&V*|cHHHbLbGy$ypfhRIQO!TbH*e`5kJsWzXTTUd(NGFIF zP||?ki@$h)UAWn}moeqgVCO66p{`v8Zja)$4}{D&#CtHv+H!z2Cin%k&SE4-XXpN;Vq>m%>Eer18go1uxhTAyc#g1#$EW|O5W^Tfr4{4fZ~ z_?_;ny=ZftMy#ak4VYRRO>Dfe5Srw96D*(KPQ$(@<~!Qycf4$mr{#IX7}F>qDdr>v<&=H^}thUSAZY zTu;C7>iuU)$O|yjDc?uw37*IGgv)v7CpP@@;+{dqRngu>@~pAyK?RT$4NN`pIc^98 zMH(ifl48gqqPb$DQzN|PD4T3zya_NxKSF&jV$du`s4P0O^M$kap~RcnF|^-z;@ey+ z4PVF$^QinTLS-MbqOnp$h`N^MUYt+?&TGfC;8ina+)U1CvDgvfl5T}~| zm=qpI(mYMnjUb`R;ndPTDL}EZPFAX))U;_nIVa&H zy(NrT!MX8X7Ddm&V!4q3l2dlib6-M$jqb#Nz+8{>?@05%*5xfmd2e>k?dvO>KCZou z=c}=P*S)mht5LkrTg~epyG&D8U4$sqWpL(j_r%6H6yyR%58(=Me3`;Dv$dc`=PlBh4>7`0Sg7rrUr zec0K7bQb0|9Y$~PHH63OdHq3@HZJ*|d)6R#MM)BGMc7gm>k2H1g_frS=vqz4ONK(oM<%u?`l*l~)zz&vd~b&K_FYTM zH3CiY;HxC&VQ+eoNO1u1^kRrbfc{Ra)V+LXAJ=`9Q}5T*<_uYs5JHeS z7V-eXR?jRHD{-UBOHi?E#S!u{(ZuRXWIkPQfo6KE|F4G2)5!5Sr`_~K!GFw@iM7N z@^`KCve?>ip>V6}`HF+QC47d3;?UtYdR>`z`_F<$kt4j_)b-%=fFyldQ;S37AWoU_ zg9|D3VRb@B91E*8+)ojCl0wZ{`_7RRm2HyEt;FYHObi)M$*cC?Gu#fT@qkWA3VYZt zX~1HNR+;-P{1?JT0kMc>WYUk@TRxxEHbV+2HU!j>zjvRRu;tqc>i7-X7=EC)o{+!@ z84>}ji?_z8ggth%xSR;Q*bI!je<2`!iI_)zI-Wv!3q=$bEV+}5RLg<0`v5kF2Z+x! zZI9v3-TU^0xW7qaX{dB$FWq}|d3BwfaLP*mav3@1WP zImRfIO5SYw`agHJiK;G^S{T9*kLF0DG9s@jsy`)EXha~Ug-fhkNS<&z&T~$J^+IDd z;q!L4NlbI=(||V%_x@&$00^K7Ak-=Vuvda^%~pri%SuIw9>r+H=~MZPf4Q$ksmMp@ zgBctZN9iGYQKRBoHO^=sz_!}6{!3GoHrJhu0!hY9(1EtTHjQQXkbxF+YH~>$T2tw6WGO94HgNn(ha78L7B6p#80f{y zVOFUQt*-OpIO@K_TXT7}6m1kaFAP4|dCr+)SU0o)=oQ;#+kVqkrZD<$J>rLq!-d>H zbp!0ai2q#+K&yrWV5!KnSB3L_WZTHR-_gsSxavhaJvMpgZycL4v$t9Ap+Cb>kZ}@c z#1(Wk)j71HZ5s41NV<^zpwlU3iRLbtm+A>y&Zv^PG^fdP*VkI(;L z7?aYB8*$2ViWBik3m;uq0=?}ucs|Tt289aqZ$9noNV=y+tSZ~^>=boP%zta)+(CYwTx;2$H-KZmQ7L@V_v?R}eBAN?z!yy@@b)mqmL50r5%5-Y6MhNK zaQPB@4d zDWO$ontt#rDa9!0C1VEpQ}txPF9`)2v~aXY0Vqm>-zc-?w4!AL zFYMmm|If-Sn=<;y$*<`JXM~?g8=W+X+X9jTKr|tU=RkQ6z4J6@tw z63Xn8yb?Lre>o^Akqpw7UUUX#uICQ0M5m=hEWMq*Ma9G%hXGr25@2_uHgGj25LrFS zjWAKv+{l0;CFIu3AThXZ7I1;firZepwKy_QzuVnwSt6}=@Q=%*y1E%jMbX4MFdh13 ziK}Zo?cqrT~ z>J}&F*78-#|iQ38|latTbXaJn0x7743LIryRj~&urnY4V!}+b z)-3+<&TeK{BbP0aOIF`Nj6o>4m;_SXB>F5$3a1`_*o7TkVrPskE(3gt1P$ESujNQ{ z7dAxY7E;Io8RJ6K*y%Fi=YfN@ry*$TmhCsIl^9JD_(Pl1#=T7d6M16>{h;aX{rOj1%yO@*`REfFS&X)BP|J(DWr<{~bRGZ=b(AujnvOq=%a8N1C5EDqs zwIJ4mXlVb=L*h##-T@{6@~X$3?)2=eTfTMyV7lNuuIxTv!vcTTbmjVn@SBL5MSX=d z%qSptZGwrNF10lDOYdijd?LQ~(8tT8!5mqEkUace4#p&a^_h#Mn4Fxf(O^StXJ^L? zaO3I{kOiLMDq3H;F-OxQN+Au{!XIzMTt#6I4MwgS#fdXAGD7^N)i&kpmxH?^R&4k6 z#n=6|EJr=MO@KHT!^o_X5_sT}ddoDc-yu31p^RdQ|A2mBET5JsBE5-0E^s<2kX zjc~ynk)}eQe)`6LZvxMs#)@IT%hjnZIcMA=j_0y7La zVrqJ{&YqvTEmTU{`J38Ul$Tle{3kV2Ex;*B!j z2sc5wAmVaGq}PErz@W>H0Fb89F)=p*8~=nJiG-{y;=A5F43|T0D%BTDHq9#PRCHls z0bC4Rhz~Rh0DH$gZP;Su{4s5_?C?^dpsej{lhpNl&a+K1$X+B(IgtN#I`n=HI&wpN zPxnuzj!X8a#!u|uw7`6BC3wWJ=RfEP1Ayu^iO&A&Ric|>x3>$tcAndjrD|#w+U4Yt zyq9pJJZHSJ907m>;28mvZXDN~x^Jo8IuZ$=d;OEZ{RcVD4VbY>U;=KH*RS@OSG0y4 zh9EW^Pa;eds&mAttK@i6M!I+rJ~PK4JjBJTZU{uaVr6>qs~T5t;=Kk`al9W-9W@?7 zn$L&yUX|L30TplO7*}5XbsY*%dSmWtp?##i5mGL*)nNZ2Fj~sB^U2fdpOTF;Ca#@3 zaZTpRG;?j6olYDC@qr;9;d-^ZHCF%fRWeu*@Aoz_=W!G>Twr&Qh|`+~{S97G)Y!CN zp2N@W8u2m%{(uO6jEW(Dq5cSbKHBd2_pp%T8*~heZ0EC8z#YH`^*Q+8@%X13HuwWI0L}6Tux~;E9Of?v)Pn9eGsc`h zhJk1snV7K(?sSiTgm9;`0Fp(_%!of`@{;Lg3+sFpfg@XjUvK4)=yLcN)2*BZ0HWo6 z&-Mat&TE=g+}2gth>2Nr3VmrJg+`=gg@nH)JIETpNt(=f?}(13d=E+N0mw6|LAPD9MUDaL8AyWrt!3$Ypf~a{cxDs5X)S01&lG0ET zicKCI2&Qzspl9|f5Ju((O>WE#V4Ym=e_sAfSF1D(gi5o!{EXc;hLWxnm8si|@9{K8 zO3bX(=NR zf+~qx_|wHhc+fO1*3LSdKsz=U%Rt?Eb>_>LcdCJ-(N|!kMgjp($mB;M=gn)cIKU7V z5~BK0d+BNYRd3^F{rP2}Sd&V-9VgVNC2}%mC#cUXzeG;N`OD?TPk`HtqyIk!c~h1` z8I3mzU|VZVR&<(J3dx=OTfX?$F(@R+Dnx);Qzq@Z^%wE-)TZHa)jS~7rC}#Q+u=Ip z9Lg_u;T;ajkt-y^$cu`G=J?1IVS|jviPHYGa#p$K`DBXweueL`Iaqq`pjXE?0h?i4 z${Yrz;#Bu+uR(84^0b=oOjWScAz!YQ4WuuAW#z_KsB0rzMH7C)CQ_) zj8?asE+GHr43m5jikzIhY1vCq@B`qt^(`x-tLOu8xSjHzcEk|^w{U4LmtTv@87vjM zc(A2J8VWxCI#M%u@F@-wHJ?GOV8EPR$jJd>2ex?L-|>>5sVOx>`?DSI>-|;(u#JdL zODj9Y>LHXu1!d%NSf36@+uY(6(~0)rKJ1ckyh9*V$ru58`WkQ~rdHt;y3QJ4{SX%R zMjvVE~`fBMG5>dYROQ6yN*J_@!E0yEdr%KNg zR0}H2h>%GG&?*VUu$H7t)Fu>#1Gpyb_c$jDQk`8_fQQ=;B$ctY195;DRqc;66)It9 zP1$7mzkpnbxU({&+t2E6C*0F&kU3MdfdR_QFyQ4V0tCflE*%D_7WG1OJk}ga_@=YS zI{ZhHVcdLYXzto9_X6Aa5jNmErlaZ|1b39=#|>I$20|sOX6AW;Uql-fE^_jGL3gwe zYau;ThI+Zf9fZQB8f<;g0N&Ras6Q7GFbBRKwmr>eFNYs5Jb)O#qUC{z{_-yfRIGaewx^aD*6U_AiD@?oqLJ?@@Y01tFm$RUCvBCdIIgNKLY(?I{e+%L&*Q40uq zJ5cc^d;QtIo9b)$-Zal9L z7uEbcTdoNOLF>@W>^N!CW%**r^S?{zyqVK`pMmPuEf&K-UfWhayWOH`;l?}B@nJ8s z!j)kY4T8C$qZtAa8M`K!x=0}1j?7phNnW%j>GM53b#+oAcOTP@q6AJ*M@3)T-(D*8 zH;906Lnsk!dl9#poQg_|Q*;$|D-^}k=c<)C*DKiDqbpbiZPnt<=BAwKVEgvZ!0Lc> zF9%!_LYm8FaKp{4_Kb5C^(TCXsKmuMAkJicBapCfdmvU(Lt`JF3yT4(Yy++?$o9d= z{-LQ726TJT(P*zJo+?%KOG|`zVvRMnp$#JJofix%0adjm1;NXC} zmFO z5iUQTr5xIcYCFLmk+Uf?OaCrr3R}{X6P9!K>*?w&$LF z7aNo;OvasdX|9J8|At0H%XM-;2@k-*q5^F%5_%Rw>I1GOycTVgGC4}5Wz@$3(o8PL z2`bLi;8Be(H4?;}Dyl>B9_+5#pc$^zB0q^dOveqJs$iD`vsBn#rn(RBfh~TUn+Ccw z7f%WLZ#NZQ

    uRjOeRFiHvJy|LwIb*Zl*U0=6GK@Ap^lhXgYEh2`5Kn4ge4&%EqG zkGDs@hbh=XByG^0=zv5fotT`94f?aBX_FB7irV4B#bx<{g64h!Yku=*|5|u!%7GgS zd3fXZ32o1Wh2CuI=bG6CEr?uwF`yf zD}Hkrh9FpUhAN-qYI>hb$uy$d|puS52M$=1o3y#CL zsea~R`JWShU_&kq#MPG^>n^)=!1<%ql;t8*n9=*!+5J*4V8CQXs#g5l`PV8}UFMPKdpP1Q;@BEAei_g8;iY(Br z+TKP`Z9FEZrKX)nMp^n_#V7G<>NavUQCaU7zRlF^QL#=$L*w_QogKRH>FG%Ct;BS+ zb;PwJ5D~Y)-bUbd-jEYmw`xb3z8I=^q+;;s3^q;N64+zzs(d5>lc<1|f2K|3KD?vn8EJhRhiA+DHbZLd(i0 zfS!{SSSSrymL2DGUG7$#*s&F*Aeryn1T38S_Bi=>A**G%)DOba)Z5(!Fq2pVy@CCl-u1JD`#N!#aMrkCnHX zR_rH=LJ?|>giub;SUEgBLHT>(;{x#P|NA!`fW1{zTs(oxcm}kDDyD&(yX$;t;rd1N zEP20$*xof^C~m&6CEp&_{&r-${MLa62P4F-J^07d<6?dbd83$;u-EJDiO%YN1t@^) z)k&4K5uHgXjQJLphbdE$4F|bT1M=jmcrG4Z zifHr#^RM_t1q%fa;qQiq#(J~7J(x~s>M#0I(QKXvjJF`|Yms?1tQZSGVYHqXE8l}S z_l8;ccCI4Q1seO5mbD+_du9K(E$*~NI0isA6@_?*Ek7` zerhf$!>;D{LiG37wYmOWxDjv!=^?bfCok|~`D89VyHQ1%A!uO0e%gMvmh>NPr z@BL@2Tul>8Rd6JghJ$0Wbw{DUQQ3hI81=S5L+`+ZH2 zpdg-JeOgC`skB%{hXDz`c|YkNEB0?hELrs=z1%8#^SLN^E#LQR+jL15uHSLIe7JkN z63}SZ_f3t7dR<0MS+#h0AwCSx0CIxyfN}9fe=<+f1<>2FdH~I;Ek885@tXG()vj>g zr}aBng}-jZgLCwPncx-Me;fVlC3;|gT(3J^Jhy#s?5Z=S?fQ{!gt2x%TF(pGmb=$L z2?;n!?WXvks9lr$x_~6K4PcOQwmJS%y}<&;P>`r-=n|bUJ@P{tg8%b=TxLYgHVplI zg|%^>bd%wd%=S*6$>Kb-9Pfq5`x2S5>)zbt2J|NStadMHAtGmT#hf-G$bN=5aQ8mv zutIP^b}|Av2^BHAl#rH~Hd+3TgeIz5g@zC8m2qxU6XwxudH>q$tGtfG25iH94gx6n z0pcq1((a1%=LpBm_xBagsPX>Vr;VB76T7<$-3# z=C*sdb)N1j&X=bmb3LAJ!D9hc&Kufb6|mP!uKY#{0#8;`pIWO~u*iyv3rU3j~wG?ecpaQ0KtYh!@s_YbgrD@^gc zo)EVMS}Fi$;ESPiwdjY8?;kS4{C^)^wGSkrKXGj6Ww11FC<9?cKWG z_(Wa0oO#AB9>19(BkRQf)DMqPK!UBLP|w_;bw>U-^u=8)mvo%IRex)Lxbq_d*N^S@ zio_*m$A$R`Ap)<^{=Bfy{1~%3DM>rE8*X$uisA9*IT~#gVKI|%-1P&(g>@(6{FI;4 z5hlrhlClL02;hWoU{O!j{om{5-12lDOrFHQxW9hmPGBMcWS%AXM~@n+Wf8`u)ITNKAZ?Qu zr@Xsl6HZN9Lm5v@SA{?6h$Si`F2whvb8jV>eG_HxxO%KlS)MQ7-m@JL8E|e#3Af+? z!5=Hqswyz|`2zjp;04YfYp2?n>%{OjO}S))&ff0C<73)TpU|b)wfx~I`F zkcfwL;OmM1`+6u&;F{;j^-l6Q3^92Buq8GAMBHU$>`coizqhzmLi&~~tWV63?<_FN z_m|_AaQ21=*2O^RZ=WZ1F0RznZ;j_m{|?dLR0*+4e^F4P+w3|M4Vp>YLmov;0zvVW ze5C8@YcH^#UVH6P>1&?>NM_Tb5gAUb2f99^t%i^#S;*f(v*HTDfk!33ZqR`GAgn0t zV(mar2g3vQG$|n;yuD&n>c&Z;ehmPLIfFf~Zm1f97g%r0&G5SMo|i1Zu)Hs%0LSfH(&-IxK~)l^ne8KStV27^u`(iQozP75ZBs7(cJ zxlp^+$#|V?0^9)I^`TOb-;e(WOik~PtQmVhKvy#v-S3KbC@W18r>MiaXc+~-=|m7) z6UZqh#U$jCt`F_Xt_Xf$m=67s5Dv_Ywagh-Z2iS|{C>~8Uf@)@{F{nNga$gQagY;|2fLrxH z7Y=LZrJ#Ida+XBoe=dV6{+v8tC@%lyU=?X)$(W~`FG<_F6=P1%tF@p%lCXjl_!MG~ z^e!S|P-*D}tCApvO3_xeG@zQZtLX1E!EgU6Bo&~9KDqp>NR-1vNs7S?DsXg6%WRf| zDb>EDVB>>!277%)!ilTa{6HWjCt3wGSTld)E1I6i+K&m15v(XGYacn~e0IRimUkhF z^UJsAU$Onbphw|oCkO&{uHZqrYoCW|6&4j>M}{8#GN04;(1cYh0|)NJ>=wBNrm;E< zOAC8C(JcPV%d&LBfw!BCCf)?n*Z}?4ogL@Cw0gX%C}>zmBfKQ!CwiW94>Hm*y&j5b z#!N=94=e)H&wnT?Dk|$hFKTvY?|n)1n<4QlWYqE1l%CBhqY2~A)GK@r4VD@il@JE2 zaetdq9;cv{<+p#4vkCp4w?Er!%PuUX_3`v^#TntejNQ^^qjzqjr<$>2FSIb%;R1g7 zGF6XMx=s|d2Gl$9W1>{VU!{#?t$?6v_s*3ts%Eu6)<^=q4V1&lkmB%vq6%EImQ-^M z6sUsZ>VYtNtY>OM5i|Q3`aEM7hBo#LIH9(8{A~UOeZk|L4E(-G zvV492W;17>>7w=<^PP37;yxvR2}l|4q=4J13kU9JbFIQN#NNvDqnFz=v`kv-NAEZp z0Nn=*{dC<5iAL7#C*cQ4K!+LhZ#Fk;nIjG=*RLjv+;=eAEVK}!Pf|zMeu_G z+NC|qc)R$g2hXF(ZgHfJf1Mr<8#!G__*Dg{_h&t>4fhd=wg+qAPTE)_16|GdI+n0> z*>&~y#?yk&dLtd4zEdE}j8KJKjIOgkP25Dp+v56QIN_(j%Iqc>4!-MP_oTq_Rwi|U zX>Fc&jk8tzi<9gcu$kusD&+V2<3d-VQf=0+>Tli`LK*F_PvAGadI65lSL*S^e6$FG zkpv;x9@KxAaxCROep8N(jzbY*+E-V^Cfr$7OUIFt=-GB&`=0px(}8AKP=*`GRBOWX z_(O~>q$&$j;c?CX_cyx1V%`{YgEj|7QnW;mrG2adrAL8DbIeTWGF%<}CH`kT+1tq` z0}4ZUPtg4h`rfG6bQ4~*w0-5n$v~-1$Gl;5TuQd3GiH;i>*hb6jp=}5$>77=DPn<7 zd^}hNnIHI~*C;;e(QAc@zj9ziwmgt0K)@AP62YGZUrrHVPY8%}U74}aw|F)J^W6Ej z$|HvqR5Jp)KO%Q@3OBoP4A$_^R_H}~Lw_;=f?KiK%;MyDlG0oEo|s1j{CsYWV{?ZW9W^i*D6u*nGoQWU_uS0hm8M$lBx<`u{FOb#NaXF~f@H2Ce z8tOV@Xv9wEas2MULTZNIZ@OR^9hDUEFtsX5H0?h1V9UyjS-w!tK*a;4tLEeVC!i!n zYgo4h2SL3|Y$5>O!6Y_7Fx`HFnNfOf+9WacwDw!rNk3p75-qAdplGnO#GcxlhT3pX zv)%uZ&X!+mJEN+;VeR#lT0q@qdA-CGR$yZk6WOlmGjl|PQjAQbbtbI8WP!f>D_2&n zsR^R!FctXQ_{sw+tvZX0qG0g#p6Os~j5*88+TmCuXmPP}uDie{kBg6oFuUi=@YA8C z4SU?~pEb0b^=of^#v1+)tJnm{Sb!N+1JoF$sjCyxOB<@71@_PT!ROP4{n61p5ahu_ zB(T)eQ04KSFed6Ei5dJKtRhj zQ?HMWScazW*k4V!(W0H%?Q1P7>`M26ugST)&DYKF_|=!GQk?Q^|NW{K zl?fV}Fz4ex-w8+-y_uPriitIQP`Suq;>L4*D&=@)n#URS`R~ZK?b?kXJndHZw_gU= zQD9E@_7B+8^_1KWhhe7DQWt^!tNo&0t{_JF=RP*pFv||$X{*}&=eq@!zDT|iwuM^N z^oaX>`Kn&|Q?_`v{->F_x#M;7-@i&%W4u>kfT{5~-3F%FM3{W_*@1zf;YIZM`TwzW z&2gP|U-!wjZB4e#$+m4bS(9B;O*PrJZ8u@EZQJ$UexJAhzqgBX&fa_Nwf4&TB;jU- zI?Qw?m*+Dj54}In%cEuIRvP5clRc7LQ{IMlF;gpq9>V=T4$CkQ4gC%NryH0*=sijO$INGGXf7PI(|iDS^GC+0kqGemMv)N*I;+f%+L*XgwHOqbmF zP1x>{yYep`$3R+xuIGbvo=Bi<*Z|SUdfOToPvvpvwl)?JLlH{p<8x)O4MImzKvzOv zrB4_V*n&D+71fxKm68%OH!lje6!ggzd&Wl`wZI+z*Y%0brJR|ziZWWdoXYHp|1&qU z7CT0_WBRfk<2As6u_KTb`O4_LjfGCP2~!+zES_{Tk^2~i%gdB8Q*MH3X9>Ecc75dW zk9>sNRXCgLQ3GN#|1G6C9o>Vq4rIn{dO=~~S1W||+78l*Kc zi>~XijECnx*{PMKRbWY+A;0D9Z%H&Gj&hw2h^@V@oO)~r;pm@V?1y0K_n;~8%#Kox%;bH9DmMvOQt5?T;?LnC64%r!D09hZ)t@buuFHRYh_ zkmGYtPRb7lJ?e&qW&2>buYZ!ilOV%BtBv@rQoXMBw&sM>4_5m)E}kd#%-C|b%R%yb zfb_ODa0@;k*3&9!sRcz>@O4rz&E}-T`VO_q`svH_Kt3FWC&n!iQ4t8>8Zc}Gm{fb? zbMn71nA7R5*BHjvJ_7P-iTd8D)g)6QeeY`Y2)XGq?exIN5tFl}+NYaw z#u-3V=L3wt20GLK<3gxxmF&)O(=wYq!1{EyK-;<0F?(4u?wJ?mst*uCxZ4!g!i@!z zc^S$%;Ve{E4+NS#^q#v5MqrdjI`%O`nS3UQB4hLp*HCbsWM(cxe79;%{g`2eraXhk zLWlDGn_sK#CJgg*f?O42d=f4GWG&2Y?X%o+66Y`8$r!Mt-vDa(MjG6$>%-~~(UsAO z{hh?nb@KsxqZo|m(8BZg&_+OIuoW9^MqQ0X3V2f3_|?T>IdhE-6gkDwWlVb#pbWzM zpFV5fja>Y3&ucq*dwNWG3F` zDRDD3dVNAclx*3w*i(PGM;^hUZdMc`*%x?G$OmD2^)?-l#QZV72g<;GppOPkL1{Ao z%jycMrHyP#$ps2ZV?IQ8AJXI}cV0qCZ0e<5iv^&7vuYo|cOeVrJCgnrsVFAB}#0 z7zV)nksG(M^?mliWS^ZWKU}6_pu@;K4&N27vL*HVmii^Oe-ULzDl$=T9yaCx?;#2q zb|d4hN@{YXUxSE`0aS3g+)AITZ#*!iu8hh4^R-@T^dy{Y>Yd%|?j%T2nT52GgH;MY zt2|&c?tWiQvlftfF>2<)y}!K$zfX4ttv9q%nUHM_$p>aXYvBmr9mA|$@4??4FUeP( zxKD=ps!+G3(CZX2PyrM0b2kEjDK@9(qT=jB3Ta`dgdT8#1*-UNJpyg`J`&cEkrxZj ztou#VuHYRF6{t3m99vQ-D|WXlTPcg57@n5R_N4-`U zzCzB%pgyEGTxc-wJ?qdOu<8tN$^!;M0_8OS-1&rlZfY>@Y{r$1S$AA-+rI5yBRLHf za_;P9>&C2gG#P7jYqVzABD_`Y*>EzG1UGTx94*$P)v?rHEv2hmcaPQsnFrYN@pqp7 z$XW}duSX3b+um10@nLEul)Pkx&xdqOGv*aYyz0`~QCn*hzR^sdmQy4^^ zBjPW?2aiD&U}qIK%9AB3MWnQ1`UaJ^+tPXa*z?i zb()mVl&)tQ$SK~ zr-8Edocb~e#)I0G?-)-(#*a|lb<1u(p%YWV(C>6qTbyH)EnGs!IIrYj@|uH;GyYfF=o9~Tx8!BuB?g8vYj_7!rFgmzpgFZho` z_2nw+^iov)5QXa~NycefiHek;7K?p8`GPq5Tte^1$w_>|pJ>9&n}n?2p*xXG`e|HX z27mPeLG*6#7m4%TjDaP~5cCnQ8?fC;gE0c{HYh$Eb7kE`z`!^q{=@I7pXh(m52Qe znu#XYJ^$Oza9AG}^yo7%;{)kPt~kT$b*9*0*x$gL$bG|yqRst0U@nPVHeCRVbNz!j zGIC)%wbsN{wZr$di3iCe{inXv=t#eX!@EnmWKS#q1{*d!q+&-GY;_kW)+QZwAEU!F z6p!m=5HK49>$?)wzZmmjMuWVJv1vxE{CceFo&iR46W4B$48JR4)1vbZ8j6@qfT3xU z(ud?|kV8o1uN0dxkj3>mvR!42x0S-|+x~^x|2;fB%+JaBZ?;HIR6+t$T1KXEjVb!~ zR9z$9)q%w=v*!gaK37Ft>|IE|62=B({O`1wW&;m!xNZ+Ti_8{A*p&kke5Y=3#rVR) zLc`_A`Ie6Z|2&!E2W)``PKk3~&G#;>2r2LVzi~_#_i`y)`q&}@|0ox{sgENAB3dI7^64v}OU)>s({eS4$vgvV!Yt6xLOVm{$d>lxe zQXTF}u?NbZ8pff6mp~@+G-2J7TAu4&*R+X7$W1LI#^X`~RTSt<9?jywA&X%5d+qI} zCh#5#&;oTSk)ug-PxcHCW-!x!I!3tozv)V*)$-^6(V%RqS|#+WH~o73-tQNAaQoAl zfIehe$Mq=P+WWs^Ae8mx=<7{aigs0LTIFw~Q{lqo*T^WC9=Z>KefnX8dH)d7ukx`N zZfWr8oP7LyyI2pLpG5zlGI=p`T0Ho({Ei9M9=D>Xzv+kN1|5+RiaTpFp#J(-Yx_Y( zx^gTy;nMZogGV>3463QU(?8G2AAa#l7#Ae}L4%0z&G$z7VkdC9j^sN))7L%@fpzGX zU296O@8OOM={_zgQPx`6U<%N%mh2qK`OwRTWgOIZON_{zdUE9T|Nh>N`Hc^-JvCyg%ZjMqLUBrP@K!-5_O0t|bKU5GCM<^QTQ6A4OV@_x%fU!vpK z3>ou70Km(Y22II{Gw3+#V+agrD~{j!rOd}`4~mGx56|C@6&ZdA?EymB?Zk()W9$N+%1jLF~DVvK$EOm!#V1JT}-)7Z?9}4&BX7Cq??x>10U-3R*xT1CmkK=vh39F58$DKb1ywjpY#te3$yDb4ao_ar_j8Aqok-fbzk>jbF6m@Nq5pP;M@Lg7 zVkAuX;$~Bw?~1-Lgh-riH#$m_3efVN_9{Q~ew@o@_)kV0sisCmj#;A^y)k?~JbLQU zMRq*+CS<9F$8EN_B%)jufD3-J4)SXt`}fRlWrOF+er6$oW6UldG8~2{QFy9h!h7Hx8Yi3 zIEAJFj1c$hH>la`kGsO7*~Y||;-X^mW9W(*pJ3EPMHQ{s<7|bYa-@yOIa8vlw`Z-R ze++19>?obN>>qGo*{8-R4R)JE$IGNW2A{OR`sWk8MBaFAkP`4O-p)z%i_FbO5`Se_ zSJYFBc;RW+wElbb%0m6Q*LXV41BK}*xC5JwOzkh$uGIdt(w>^6pugf=kHk4o8u z-{~^Q*h;n^16V1wpC7N@tud~r3kZM*CSNE5-a+yg@?QcY={U&mkR$rqgw0-nBqH4X z?0G5X<5v}nBSMGSpHZ6VIF(&3>8B6L!2JsCN-ZUt7k)Poobz#l95I(CXCzo)(KMXI zc`3w{^fUSNP@CL!Zjq$V(gbAKpHbWPC5*AqhD^AqlDk(Ef0-_M|W zVTs_2+>L(2|MOXW51IQ>7^fou^IO0UDj z?cT#o1Y%O~jOp%lN21Bb+IqUyMDlCm33}A>Zp67|n9u_C0@Hk6& znK$)rFTCkf?Pkc(;3&``VzwbQU6$+%7+6N4{_)`{>Y~vjb;B<`y0q!KKlW3R{rgV06=`; zx}Q_|itTz+FE`ei+BKLY_}pH|J~#Kh;=<9tVI*7MNn74N0uJ(L!q*M0jsi4m|f ziH%oh5_?Z;(iQi!023tqpD&u35to?qzMXGzc}i~VMoias$RAI_?zPc#rWtN$AgP^g zxXt|cD3}%0*L2aDAzxn?H3D>EP&Z~190V+k}LEK0$+!H ze>N9Y_M~pV&lI}^GQ1dfXW~knhH`GQ;MW@Xqc_k3<3;6$Tadc1tz$C3EOo_I@E}8x zWP1+bx(0e?Bu%cizISDV`699*8I7Z zke|^mI`p`WqQDj?L25&9QtDO&3UqmoWrC*N?Mu|v_eZ?vWh_3-fhk3L#< zLulHdQ)=J8u7Kf;65H274z99j{8sGJp$s&ik|=Bzc3;9Mb9@0cCVxTmi~mX_kgKzW zlJXrrZc9?(|D?H=1EjTMigaQ;j9wK~2Cr@p<-*)6e| zwLV>~<2`p%1P64D|Mqwb_iZyF;>{2x2%%nJpy(@^u_oDlDG$`4{86UOTgWWXiFo%dkz zQodbm3cQK)5K=x`ejF%7q5v3H^_{|qO%L`VcYtJNIWI;k)SU&B+HMVkS;eM--v1LK3x8PO9Qo<}pxL;PgrG%4<{ zS6+Y6$keJ7BKo{~$Vf zu>hJcyh+No?%GN1XHOP&9L3gVwd{;@Kk)9BOtu<=i}4eJp!CyElCixp@59CWN=mCF z8iUKqtbG=}V%%zZY(IVky!?%vwsgZNTe2{lcYj!3p{}gx-5iz^uGZ(DCJ|g+lLt=1 zeZ}C#(OCiC_MAKc7^DvSsKdc8gqQisc=htuBwJXCkG1!rYonfeDCqD(5=fkVArbom zK){$wBoUn-I*~sK1QFP?lI!jqpuxeQpS*TIXejh^$@o4{gGD?&n#O2_FpBuRNt~5= zjHhz~k2Z_>A>XekCm8R`bZE@f*jql6rxcgEz<3T0S4MzVO*=+a4X>)0hf^bxf*ez} zo|A`oLDmx4U?!e>&fTdo`+1{RxNLua; zZtp>5VG45c#nQeHwwx;{X&-ia z-RHjn;#}Pmm)J>a)T40OC;m$A)w(eJh3j)boCBR(Z!uDi8vyqj54fO)heEszTBfCC zwr9lJ26i1kA_K#}VjED(skE5LlNt@{vr^ZN4=;FN3VHF6oD0Ma3{mVt{_1kdR<)$t z;Q4E2q-RwT%rXFafC!CdU+rq>Jchexc8%`y5o0 z^f{>DkX~8{(#mBc8<))&HmtyfI+YO*p54u9?|CQZqjIL!#6sw?>mmk9gT2%V)`#N4 z3y4O{Pz`+D=cWao42Ps;(;8K8z45*t@|R-)VOY#WkICgygQT~B{SaDq_2_V#yoEFJ zM$4|EkK=i(hjHZ+Is5yF%pf;o-0)iSWgoi+{BZZAAS~F!CrMV?dYd2jwg^`Fm@)Q3 zF)JxE-ZKaA??h3ul92nZK=_&L|MAfotd3p!YyzYdJa6(l2#3VXfVU3q4vX8Lm)jM+ zW75Q(q8zxb&YaVyktvQ67piZ^aSFLDlyDpGDe2SOR|Z>6-TV>Nn7+X>#*AANF7^^O zIEiT-{uD(MdO` z>}iy|{qSc3f#7-=QPLMyVR1Zcv8nkWa^J~SFdq-oAEEu^;MN=3>QfOLVoVL2uiR=k z+#W;a8 z#}Qtk+Xi?%7@)g6W@Q?In9Q*14vsOH+Uv)`OyokETA%@(?aVj*&WV_!Ti1T zS7WpPWeof6gGVfnz-dCuB)-y(9!s86^Hip91Z3SUgc}Hv3yAASPc|EPM7|L&Nas<# z{IH#W_|bq_$bdC+WZt1=?(%dh99R2IOM=+G;sYK!-sHaR?o^ zFu$ANbh*7=H0v(;l1))Wz*2O6bb z36OX4&2A5=Hil`!VuX4eX!URb4kt>)&~&*92x{W&)h1FCpWxHW{i%|=dXbaOS36%r z2@fO`@oGC}^cI+eW!cL2xUncDJ1$oIqqWVn-U!v4j)I3I{IWl=NKj75t@DLa)Q{Ro@)R)W_cy}D!*T^X<8mhPb za`brkb|jLXfGI>>2%i17i3Uc8^7QK2#$oHP`$jMCrEE_ak-`ua+U79$X!rYrN5}I4 zysGE#zkTV4y@xV`_2V5ra5)lPhWdZF@O<0cM68wb4X<)AXo4x zlF%2<=|o&~y4IWW!|!r4At5W|i)J|pg~BA~-+a|0DD~ zbK<-0>wj7Xc{Q0s@(Yv9_J)lUd|@K=bw!otA2%nVfs+~;w#Q$4#@rRmj2pB3PjB^b zS@|}!c2Oy;O%c`${|BV=*n#0>8|o7%{y8FPt{+d4-Jk>%cYEJ zBQIord!wWtT>xNE>(X)kL^Q)*E)QN2{+J|NP()6eloT6%W@{=f^&R&6=}`ES!uVX< zM1?9j1-O_8tF1MLtkb#Ph|oy+BLr%~pM;pbV2K-+_~5$<+t!k+o1Y4?jAX1T42V1L zFY&1l=O4KJm#4n3?!5(CVIJMwhkh|W z#(_hF%0LCN8pfo6@bEJl8*h`(emEtzV_&)$@>1^zg|4OFvhSeFzG0-CR2UyG&_x^m z+n@FB82>5J>pcaTEt?(NBV#D3%AQ>Se+w4wuV;Qg+}#bqNPh(6QU7dkrKfwIO4CF4 zeTgm>c<;=1AauXX^uAn+VBG}V@*u&e-a{5)?IiqIo$S6-(XBpWZ>LD)ySPaxyOya!(`*0ev--5fww8HPqhQOiFbmhvDbLpm$+I-bht^gj zj6IBQIF)XU$M8U`_i8ad%%r1$u>gv}A%uS3xlqX@67uNa@`y%~2fd&w0^Y4ie@e1# zQcE1%trJ+tFo&pIM*Qt<-3@DkX3fs9hI97F*WWD*{nL0B-mi>9T7zhKd+v5QBXOeTy zB;PLvz5_l^EfeF)g%s|_m6(-Y{Qgz1V`T$>W$w8|i8{LU5KL8L0~mJE>O}3@A7;`y zI2PLKL~HE5$I0&TOio!L80V!XEv!;O;=zwXyu~RluTFV)rmNW6L12&17lbddIPlAr z&rJ|PkY4i6R-G^b32A#~)|8SKn^}Wz@IIZ{u~G}qylpJddtw&us^uNqYWdGv@sFfU zr!#`n$Uw;oCWm1PSsViti!ipngQ$<`cq!s}xsbz&3+!hN=obg~{=NhRCu2i#Ti*;& z1i61nQ6#L9Lm!kOGj8>)AAA>~X5NVTCJC%ZX6KPMur#uEG4Z=Dcs5PhfmO17S>+I) z<1*WB=cr9t-UI9xq;hh>8yg7SIyBSG%s-2o2sXaCl-&ZWnqK_ryhaDD)O=b0tJt_S}00(8*Y8EqBM;t?+>8r&!55HTm_TxhgiRx#}572hY2-gtzMDoThG18py zQ+u0t#B0GJig@|!bpIhEL?=$d>(YBC77(zB!>uK?SZA_Vi^-<%wOuO$PCu}NLpIlx ze41;yD@@IRG_ZSEokKY*QZ&WjF}yDsa$`m^DrFI@hd_!zLw0B!Pnt%H9uJd55ZZkZ z7gU&rBdvBC$pczB^-BVwHev<8A(|k%H^L_Mq0=NwV=KT ze%yFJke18ohEC8T(SS&z?b+$G*RDd_AG@=?a-fYS@ahL#Xj%;XEXRU~u`&zGEQRGv zC;AO*bn53?CBFUeHzvp|Ci=(?r!E7*VH z>%Y}VeixI{HzNOuEe#k+u4Hn4W6^!|Mqqz{A!6;xuQu6*Nn$XK5DkmVx70ETA3T{> zn}Yhx!D3=&mS|jQthM`u&^%%r4tcNTs$YbveBsL1Pk)n=8I|y(LQ}O-#fJRN4VXc| zx$Ah`pQ!D_`62&ryMVJB!r0V6*s?i|Gs=1@_b>((97#ftl?FsY$f;T+)zI3(f@k-L zf6$^R*i(YeYv&MuX2OZ0Ga`1hcw#Bt-4d{h%0#cPLpi1E^yZ34R&-&O@_fEK9bdQ{ z9Ub)!2vTNf8A(Rc*}3ldEb9a+g}tFiC8oCbZVtO(z?_(j^)?2TEUJ)%6)-z3t>rqF zije^|m0&W28KEs=VGW4Rp#C9vsw1N=!A!n=lL1JzoI&Qr$fW3FT=wwF$<2#r7MsAm5Og_2}eC z=$9Rg_#bRU2sq)aU(lthXz!uXJ>e*{My0EuGDF$I+J8Xhytw*Wqbb;y+;y~ca-4?q zT2B0M*lp&-o9)+;abHZ(T|hywu2xC;$)ME6$7&vbIYTrC7(k^RkH%X_5u67k~H0V_kGU7=MDPc}a(mqXgG?;+AD}!aQUdwQyDxb&$=`x`h;)ySw}g94hGvXjv4Plz;(oo; zOY=neAA_Sv-;ij=rtD+}_r=}z9S z%oAL?8WTA=No*VoQucD#6An;9hc(2<_(N*FISdJ9Z!WH7lD$E_76U#gRfiDRXg(L5 zjKmOG1X|S#W*j^p)LQcbnv2P^KvpM~J-4D?SSM$NDU#>kXx`WWD zcFCn&>Tp^W6hwuGMUFT<*v#bxBW%Jjmb&gB@iW|J8oWu8O3e|vy`7F&YDjgz;Ti#R zT1G4`1CD2lZY}&3pufU0oHNt5WpPN&lE(-JTOZa{xsa$exLzv}VP|u=I-w|Tf_4dU zp#jU$pYH**8do1f1I#mfb!8?00FK)VX(lK}?Xv*d7FIjRs+aMiI|tI5`!fpcl9q@D zrEhsADlt$1#YNA-tJ<={<_*kia{oiC8*?)mslbVCR2%t9mCm^!}<{?48QxH%ZC_8Vj))6{4hs#erTk%1N;@KFvsq( z>1B@a4# zpU)Zo9EzR^>V#E%GjNxLS%+a(n!-4|h(76o=wW2B!n!38Em?dm9 z{NI@-2b=}YBjce79Hwc`9XO8J*;zG*k0!u?CSVg6cA+W~T{UbtpLiYzq#Kkjl0!1R z4n>pe5qZP564@PecbH#t@LtqtQo%C+?^DxsgkD^Py#s{hNW!G%V;zfEY{f^_P5P%t zD1H4TDd&$76XOjtMb)CWcYYzb$TeRPr8Y-_0t;v`VGvO8Jz;eoW!v#QP+oX1H?*c$ z`DqL@VqRJ}Qc<+M`gyTJpFkkEyi1KxG)%pS1{$YP zOU|W(!fh$t=Sh^}dP7F}nVk;6D>7EVM2oy~cczc2%Tpqwk*KA_ND+cNVNE4%k&Vlt zSm9X1=kHKZeubk_$kffI`8-Z{1hU5BbSpO2{GdIdWQ*r%m@2DL|T-S7V>fK+s@9PkdhtiqG;zTs5xBxzOF6uhWhUV zRSS(wTtW!q6fiAL3Q)U`XFVC}1qsgrsr9!kvVSWT2YOL)(taKSK^%M!f-GLyEx3*7 zXWSb2WZ}2INg=SbWp2gA3E_@S-=~)s(WyoZ>E-Z*D(!&Ms-n%A4`eBZ_FVJ7Z;oxxGc1b&_t|kQBhF>ZV85x#c7N`R-RDk4!M=( zVeGe*Mz1Fjmb^94ZI5S>#m$LZe#aQ<732LE_CUJA%(Z^V=nzD}E% za!VY^UG?zdPhAWXf8#?rSYXN6xa_}Ci3S0CtrH%GPfhJ;e>k!sL3RY`W*^C*r=dX0 z;vB?YtKgY{Z&cF&f1^_*7Za^A`cL#6X+qMRob=6&)Brw-Y(6Yzbo0Cu#)>&NT;6Oy zGZDd!Oh@y8{y>&H4;7t>jRkx&iJl6jw-;vYScYCy6USfhzWH(-x52B4;`UJWD5_#X$(KCg!u_364+`W9l_D9^$_58Pc&eT-AysCNvWn~d&!yh>Cmrbyh zxOW3j-)**(>&WZ0yaa}m;wDrE&U9E=>yS~=gGoeJ`s;)+SMC`8?sZdMc!Bqy>S9Z4 zun*^Z_qKSSW4OBAGrJtXM`JVV-X~Ru3H3m{Jt(S-_YUHHr@mA~bkl&`$wP#Uri zeH|#a-AXNCY-U9=$T=;SaA612DV|4+_yW(iS~=cW!8~pAiQ89!2CK=Y&4fT;_h>hjiO(WR_1RXD#tejOV)p2eQ zs|OltS8Kd(>@t>okqXPSa^G`)Q7dZWxmR~cbTcDtsjmE&&S4i^TFTAgu#xBUY$5bj z9T8Ys_b+)vNdK7|!kv<}lu07jm7@cBtIiD)r*F`_gN5WVFpm>gQD=$ZxpSSrBBhh? zywM@MgT=)z?KK>sn2+d?8eG97Ex{my{}h|20r_0yIyi=cvT-?b?A|O(1O@-vsrkq@ z(vDNBVAc9Bxe~Xa(+PiwpFC0ND)4iP9eOM=sFcZ6&}Xn9654n;tw_+4t>?>0 znYJ)8=vPdxr5x6r{6l^v(=pqb=P9`o%+fH z3}CIJgTb_;eY$nrB7#rTK_ORgeI6O;_4Gyx&NSUJbE;@UsscHd3{yk@#UEP>C))Nj zH00)2hy7zH^1yz|Y|3e5i0aDJO{g*BR8}o^PDp$KFIKR~H+w{MoL0$1zw$?L-!w$0 zwIpjHKnM0+z*OKL+{cldzNwT?S2}Z0J$krc@PS;RT;=IsqXI|I!SV_D5Gbdo$wicR zkGEj!GI*~86h%fi4cAMZw`_BH$SjU(2E;x`U*7nr&p0Rx1gpGaEC0m~ZAV55B{Tny#7> zcoGl{w;zPd7rGsMx>A-Wn6uJ`LVc#R^@`gq_Ocrog{PXUR)REW{;l0p9h^_tRnyE7 zR@Jm%(K-fXrT{!au!qSZKnWXnu@+Djhlyitqk3;ZM@$)_yDzkSt{HHGajMdsfyR+tw!o zyB80)Eqlp2C>|bX(7w@{v*z3o_9~c)8FYVadY+XMU*t-@3r_ zET$aahGaD3tf7YCA?oG^;=hYtu~hOh*q04U%)XTHTd@4mp`EVkH~;w7jX_qc?91l- zqd81g5-XNKeQStV^lionN7)npK_CJ1)t~FzUHi{mIoQ6TzN_7z-}6a}5NSeNv>ZbRCitq& zZ35A*WY+}!;CUAadb1GdDtLoCUptV0jYy1ENLUme_N>)HOJgbD z5=Dkz!7m{DKhjc=2Gk4V;R(#6`7Yd#wWC1SG%<0+dE$l19@=KT)b%oug|m(D{PvXH zDft*?he7#)hR?f z@#%eWA#10f1vI(h*`?0hzY=$u4UecN(z?Nn1fFaC|C;b!!S+piCL3un;XOKl8;#y9 zr}DYs@9Y{sAMj6Q@uPhO8F-)MdJgT0)R=pyL!ZG6hbHXXbWd&SyWfo4~SW1phEE3mXtVNQ^L8#S%_ys z3X>`5=;)2Cb3*ETn|H2iKWcU!OX4#F=lFcSz1)d$wI^-IRQQw{TmD(x6PtrIxnYj& z{zPBQBhqyRE#XCEPu76g3y}g{K+1XliMG^g!T5uqGf>hWv+v})oa5eKc+en7Jho%3 z!C(EnHSU-C_#Jo1qId2&n@`=y6_I&jm{k*N|9$Vy)YLbK1k;HlsTTKtyLUU9bL0F& zz}KHuPXx8Jndtu@D$ws>l17A#85NE1mWpjjmhNK!3m`x}{?Kl<9D9D=%=I!975@6* z41Y+a3S0NmQPdL9t+y{Uc?z(8tz`5q_(IiMuHu~WY(O<*KK724Z%-%teEPy$s$^DF z*z(=Cf~|rMF|j50(HNL{c=HPvert@+x^{m(Q3$l{OE#yZBl^G`Ie5L5#3Y|WL)+Op z+6#`D#mbY5O7n0Uhfaxo$`#RrGA%FO>Yb&f-V}qP_{NggCq&tBrUsnH)+3>$6gUyr z-=(At{j~svfythZTUwO`PL9Ys%h?m^LyOr?@BV*D)q1EeFVUehlf2);M`JVQ4s69L zNWS;j_%Fm)$|k@=oVhjxzPZihy13t6Zf1uG@VDoi)#p7?+1T}4_dDH9`<(%}r#B*g zZ&_1p8Ljjkp&FquCsP0Cj2c}FiDdIkrm6iXAhw92+nc)qJEF={;6dxqkC9;l-h zHes1X_fQ>!7%0ZRoKlLQCRIm%YG6Zs;+|AYMfINB!CjGlD&uePp_rd&jrio_DF#XX z3Q5t3+YKzheL*S@KD+W5=#>9i@z1b<7J5zB37KT&-=#b`J3GZyhifEJ`l?mFW$(>Z zmoLsA+_sw9`cJ;wM5KV#;PQmD?;HMiuczP*qKVh(k2#Vv z3ECed+ept1Wac`e7`}sjIG~dQ zEQ^6G%y+yx<5yQnn*R0=g?6!0JZ$*g$jUD2#rME?>OQ5c{1efrHUc_ECZsSTu;#W9 zsPp_#kzwLQjg4VhZYSWo1OJ3GvY8U><8i0KIrHRIRrN0F`6^83efMCYnpS%}ow7k-_9RCV#^J;-!=3LNj$DD-ZR0B@*T(VXSgnsiG+biBeVAZ?xFmK7&ld z(n2UvUmSdFn$5Lidb8i^X~E~-hkg4|6I)^>g3d$_RhvkcGzhAPz?s6$y&Qj%);A;% zCr})_6|95mg;-tE_6P2pD)U_oosj|Y{{hlKEx#6PXP-fiV|g?z{Z{>*9eD=__S`~+ z8m`c!6FMd+Tedi!?7x7}H+4dU;#~${x93gl+_oC|@61G}$|X^I)jiequg5LF5LlTR zLQ^bwdKVx-z%K;iq#scl=gOm$RcUJC1M8{ z7%>w5e#iO^A=T2tl{1I=amgwcur_ms`=z_6*`PVnQooI%AZfvK!@of;4R~ZZjWMmTJ}Vije4kw)Gb9 zW00v(30X-wtX|s!*w6vn-)xqo0wcC*s%YxvW@1gPSgf0~61ffp&u`qo{vUv2PFq>EwGVCl(ko`S-Dggon2>4cD zeQLJM2-f-X15fY3FN^hy>O?U$A=M1QquYRS%?hx{OlLIx`#@b?g!s4^Jbmh0CQUmcgT4FTg0$W=)0!Lp4Y>IUZIv&MhOwm{g8bv4sg(nnK_>28QF;WZ zU;pi*FM)sy`2Pg8s?cyGxKu}%`Bh;aqj+P(M&uhh=BUxBChEHALh&A(*AS^eCR0aD z(tDaw0slF4n)XLQ#AD0C_nmmZiyGZqBl_G?cs?eIeGlu8WuWykFT9S7LyDXRT*-(D zi^Qpsu7LM^Tw<|aUfO{pp1B_02@%-3{UTt|4K-9}z6K{eo}iM8BNW2UmjVO`_^F@< z4XHMC4Yc`YbebYYucf-sHIzbEON@*(eK^-|2q(B>-Oh*5wlsjTl@!4{W?^4oA$03j z72?$N@3O3%+yH9p=rW@3g_qBsqC{mAM*IzsnJR{+HgNvz5!RWjK`PbySC-qfXfm$` zoRlPAYl@;F*2FWvClG19hOV9z0ltZFtx}ZFB;5Cmgtklv;-g}2B~@Ytz+$esEwOgaPSuHF6w|=D37-7im0x> zMdhJgVU7@tUmpou1YmOSdMI0|25Qu-j&k{1z{6oUj$NOOw~h(F9OrNQ!^P2_`>_=u zK!AXs14O=4;k$bZhSn~J?#-V8iK_E4E*7+NP?7sC346t|Oax9)a5(-5U>(Vulk{XB5ggcltbu=^( ziNXEa;_jUr(ACj{NJP_=U&fpn)#ihTzlX12;Ov&nj0^<5d=3Ls5u`FPd~b)q&RK)o zfs}1+YK7D^dbI!nzc<97LeqTn@O>+kSwxfNupg^&F(eMj|Gbwx8F4rc_Ece@JJtDo4)-`OLJDm8}kmwmRaUKS#78 z6KbTP(zixID}5-^zOD9~G|1Yz+6eIT!?dAY@#NuckQ0{nLyN;eTnPKOUqsWM`BAET zJ~&!cgQ-SE^c&m@rY269yI>7;^|ToYPKUZ$4n!L2&}5xC?VzbCW`hm(Aaa)|(h%`; zpR480%FISqP8MkM;>?U}zLB5uZzgvHk)4%|40atkERW)ouxP!oVc5991M}z4$GCChR8JNNxBvlv12xQ))J&YcmWDrCHHNwIztMjR_?@xu;sXT4 zC{U$z5oBcM(c}vdAV9!R05x?H)QOO)e&-^G5zM!n)~P|A5!W}dI3fLZGkWCeP(wqE zz~_G0zWPs`Ke~sXui4T8_1ieJbSRLWlL=9lA)BQQ1cv;z>Cg37u>8VIb6YO>cd_8=F zqF`%j3fh<<7h+8bv~~4ar}M^1xc~tI1pFtUHBnia8OVGuE})~OA|&_hZ_1e)|UM&;Vhc;cas z^9P<{!Mee)FP?*=ZW|Er^g3qE7>+{+b~8dOfohDOpXk1i?!weU8|sYd2l*w!vQP%%A{BV~EF4-=?RUsGK_K7)1bhHuu{w0LL}8G2>5>m&HU*Z7$P<%8UvbF!;BF<@%Z6QH0fRd9Y#9A zp{NXTF>y$h6YYIVe636iK}*Ao_sw#73gnruQM`%{sx>!;wP`Ud9C;mwPHshv=rUS% zDTC$9{=|q;?J;=Z5YTR#GS>H##+_y(zb23p<)b{DofnD3@Vt5j#mZUX>HSy~bG1PZ zOKb2;#v$0PUAuKvMScs>=&=*0U%c;w3MF(Qm?#SPe*=;2hqs^L@@Wq|zWht4sX8@#HOjiNJ|YzHZ8{C4f8N_ z;y?`S-3k^KCg|L@A=EO{Ft%SO=o=V8-_#1)x_Z1ma$zq(fB*siClHA=xYj#5G7OuS z&&8wx?GYInf+`K|FnDGaG;7oz1Db7yzP2TTqVD1P{X=*e><4R;f(VK7$Hqfr@HF%) zObjg1yy{pKvaN`K(EG?1rNTUa7OK^A#)X}6cyQ-AVly8jQT-tn&RUCCf&LgaY%rt} zUD(^@hqg9x-AwM4id+tUZcxf(M&Q|BevWYmvc#eDWL9|Y^eKeLTto2+*0^{u0Oji& zvH0pZx!VU4H6u))J{3}0V6CDdx%1~NSZD8A7yZvq6o51MV!5NjZd6OlYFS_OPt zutrXc|40Lyk*-jk{M|ry-r9(diNe{#yRdcTA|%GYM&VK>sNJ$4%2g*MI+H;{Q9ZKmUO z=`_amX@eEB#zLl>gqHmZV$h`eFtHIKDPDn)@K^85`ekRcI+h^=HBm+OYbbJJpq9gU zVvaG(M~NyHV4!P(e5U1~0WG9wq#-UL1`egwP`^Vy)~D;?-nksipS=tZ0*|8ekg{me zrY>&YxP%@(+rjtoW9aJZa2xMTCWAjWWU0(ia#O3O&g8gUjwim4P{_psp#e#d=w(5s zBSMgWG>=oQT2MUjK_-3+5GhDk zq(O}lPcb9W*|an6M?j=0*FyxkBGVL07-5LTmmrs*<|Q0I5;SlK zdhUneog4CWRIS(SliFD&dCWmZMml6N9d^Y2v3~k}kUKd(UC)lc#W&IdW!6f5NznIa zq^Du+{K;6qXd3#Bo{lWmj(-QxpiW260I^Y#m^rd1`~K;89Ug*4oeQFQucGMEY6MzT zod|2=qIeK+4!!}GSYP`H`Z~r44E4eBtIOdVe3tz-LWeqYQQE07p1isW9~Lhl=n-_a zO`)f4jJ;>(!^?LcVp3kBbfJc5P<{{s!yX|qH3asB3}9uii-b^ZoY?yaS=ujPk}m^Q zt5t_f;W8M|zc+#cLQ$t)6J=RtFmjzm<|Q-$_(WjeNHv@4I+@jYxqISCzy%a7XNbqQ z5@2qv4O=H2oZ9{j>B(aJF?I|rEG&551gJbob+Z)aUk7RK8^PkhfhKdBE#ZTSHA{o?7gW_ zXL&|8w!a#vY}3-@m^rK`ysn;u*Q*Sq%9H=EISthT8m!4vlCW*%0_@qal%FqE#T@Mi zm4uyTQM9fy8=4wlnyP0SvW1r1F#)N>t(^3JVPF_gIaU^}iq+=sMO zCRa1nA(ExT#>@##D>3NclOK_MJyy*BIKkPW8(r(*g9&VNCgR;iWEYx z=JPRW!W5i2ehY(!jzOKejiIk^z{~7&%7~)SOu0;^i?JhzK;6_E`3sxE>tqsYwR!E?%h$oe0ernUyRW`rosE#T_*q4;b1R=->cWErwS18 zEEx)ZMStk8x$ zS1535|2Fh#T9uRULZuA(0?YApxCM;JGDGz%f7Wx~1dn0bl&Fpeb5+uYxt3r{eCd^O!zm6x`0AVdW)e^-s*@ zH?7b4SRm6ClEZOq&>0#Q2x|vD#6_hcF)<$c<~ex&P?`4f<;#7PoBdG6Mq7-Y*n1v3 zR_{llqWQ68>kKT|I0f@JP?(GbEUer+56wF^V3|NuvmY01U(*3`Q;pBS_k4C-4y3*()z1GQ&WSH=zILQb?erA^|7t3EsB+@h!-KT81u&% zL`O$s&6+iQYDg>=!_LkQ6DCZ+L+>XT)OH+Zj97vkc@%w=15ayAR{xIH8ir7{Wn1!=^5EbN|vK-s|NUU&Uo0$NgHe2xN;70(NX9-dMcN(qzNulsV3{M4)SMw z%B0}^=Sn1Ecw9V<``+%H)P65n{LOvKtG>g*(HTaj=2*9ID&k^ZbE5oJ;Qi3Y(?|oG zl;lJ_ynUSwf}Zl%f1jNCIKD0q*>`=QF8x1)29XBFhKz@};g6oJuwcRTxEJ!ha^L<6H~bF3&b&ApRT_Z;mK6{i8;gRj*=XFQ5R47YarZQ^c<~ZEi#~}iLn@<9 z`?@%PZVyHc?~4~NUa-M3*@tIyg~-PODNUX{@qtJy7TP)z1V2w=ZN!pgiUJQjVpwg^ zK-H>MRXO!{{4fGerYDK<$@p{PY8V*lVch&-a4uB{a@N5l#3izjgybYStZXeXe!);w zu3esurrvs{p!>-zz}UQ{mW`)guu#24$)Ic*&oOe~DJ9h<3zG5<|k`wxMqM<(U(AY*^p?v(B!qy7)2hvFNV z81Q>2ZF&Z}d}@u-L+Kz;yCqW+Jp&z>S(@;QO*ZicM*8oVn9yJPEuGt@tuN>g_3lKmcQ>KEB zPDo0K!l=RBFtA@&=;`PnMNW3K)B%53yZtqR)n@)&BO?QJ>)ICcrw)O$wG>Uu7sTV6 zSD~$Epq!pp$p!(R2H7#YlGd%Nsh=kbazY$3yU#Tfc@OyNZ|8}ih>y5_*(i$6? z>hfLo@+ygB+PZwBC6e2u>DJNHXYyW~?|Mq*LnbHWWs(-95y<7FuAUByXTapMaxg{P zaT}Q!a`TuEfu3t(ZpfdN7s@_C#_uz;RNiZDrF;&VoO~-3b}5a{{YP<=oda7|EBn>Y z1l4DWREw|u(xE(Id1qo_$n!04{uB8oWgU;hAk$`fq;J6bR)e>3+4mYU(q~{~$m72c zZ5_Q2<`aR+hx%z617~%8=qynkbzzCI@7!d?~O9 z%6K0Dy^HRpvZ8PLRiP=7AT2EwllynV$ZpNpfXM@mI~K+8c{R|vOD7C&wH1YJYC)>0 z%gC||dNo>sPW7ilkrRc>_t)XZliiSLsiRNR6=+{;Cag@HIB9NIYXn8Kg>r}Q-;h(1v_PW!a^cBX{N03 zx_BF-x=n?nqyl?pefG=>=v;RIJlwoFk)~&5uOs*QP%PN9*bxM{2e|%zUb1qGY0nWiyK#u;E$1gVQXuJ^o%Sn zplPSe?-jChSO<^=M$Syow^t`T@;Zvk2miwK-i=sY_vV6J@R;&>phc5Jf?IbRh?mcN zam({ECuMm-ze56F!28;H)M?U=kvS`nwwshQ5g|cvF;v6Kx#Ky}BhW&uThlEo; zu3}|F`E<+uf|5L|K;=itr!(-G_ZN;?2qOPy-TX4jWzQo^0HdO z>W3z)Kff9%FT-91qG#iBtnTeW>B=_vb9XZ|>QsacTy*f{#XTH2zYsAAZ_Q0!MfloKj;-aBQ&1C(y0_vLSEaS2vQ?p^R?rmOa zXlTOPs2J=_%OMk~NX~kRbi^aSMHQ4R(1ewdvR+VGIoVY~#~KTvo}&pxdKx6!*{I%8 zih<)A;r!NE>{#xF!>y1#!vkEMG(~V(;QRW2&^@#9d>fWAW7g z9&Ga)AtgQy(GdyIx0S>HQ38_U($TqdC;tAA;az6=9YN&r(DqaOxLKzLEb*$Hg+7El zr%5yYIy@S)MlHeoaVt=`SV1&ySC@xs^($gCBh8)b4&Nf(g&J1y1BU z=5-wAvGa5OSOz->D{jBuxNTijZ%_%lHylR$n*DIs>(QI^sPXh3!{Q22zv=#F@mIaCGx>#6<=( zvi|=ynEsw{DqfoZeRTUe|I0F1`Imw6`oS$vq^6{xWW_4VYplN@Sx!n1!fi&@#G1bN+2?7z!3nva@_Q>AccYN(8ZCM}I3AGxx#vL}e z7}%yJlZU?FgoKlaDDo6FV)|nKd-wXq+!271V1Ep1kg_z+8#fS>2X=&Aen$+RI1dvS zu1C3Qb+Pu(DHz8FA-vCGc|d-YDQ}2~6XeOscpVYOy=WvQ#&h|uB@?4Wxhj0I=Yw0< zIe8~go}{rnII(XF|Gjt9N=_7WL3wcT)Iok+qkaoM8$uw>_x{bR7*}Y;p7|Vgo3-b8 zSi4CZq{>q;p{_=N z+gJaIDs>v8W1rz4jQg{L@|qS~#zn`#(#DAKnWE6sm$CfHV0E39qa*__BCcV_sfqA< za1>`eH(>keKai*hgiFC%=vIFzy3}2a;)SXqAj%VK4-J6#qmy{@(i_{@JtsZ?gpq*> zYM1GUwl!v=WWffwA9Ms8jt+t6y+eqM34+JnLs)-wFnj{eprExYnpc^KvW1!=@byhB z-P;vj504`*F%pr{K{$4GIX0dg3N48?$`xsa;`!<#J(Ycjb_@p1ErBA%3ggBx1y1hs z#==c~(6YNL{@OAf?pO9<-t0ec?aD>I;8IOpgA;L*1~IX52nh0qO@4jc^9V&w>PA@ES#WLlKY@fGHOLK%c5tHIdt_$} z7~35(ZIVnm{Fw*0oW%SID_BFRhH1;kum&dL6(c4(4!s+XKwNA*6INMRvws02oi0d- zPhyoL2V?>g{4x}+EBE4NEG5bn#i$tr;8?_gzw?>T3-oC*idC)z9P{1*3ma3OUeZ)= zTDBYO7H&tEfo(8!QXlB(vqs2-GNtF#{tK8kj2c#X%vn2uH(2@(O2>d!e;|U9WCbJ7 zYxd8FYt_<7N=Rm%corWl_}qDdq@)y-sZgAoln~h_?ev9{*D$30L^e36j_E7M^1LC_ z6EZ0&s9B!p<>ph%U~FQ@(wL8gU}wOP4O?`8#abFie^>2__~cs;3C}e*=~C zjG40##7IvC*Wzf}s6LEXJC&!Vy&1g!r(lD6nT|eW`qmgapbubRjgEsRA?>~TE#U7U zQWg^#j&c3k;`!r;IQuYy6Is%ZlMJEjQy5vif7=Ty_nbk#f0fX^R4!1#XcIN5v@pTqvX)e4Hm60BJ;5qmc*$E?-6IKd{eNu=_Y=Ovzg z=MrVP$%{xt0|sEjaj5pSw5SctIg@`}EO0_T81y zv_nq}pSp;zVIWW|+QEqEn)#D3bJb4NY1)<#P&8N?g9DzSV=Wi7={^ucrz~J}N1e&` zEIyDSbDOhAc4Ov@i4S@%`5q{`~NW$o%)aB=}1mWfPtY2yC)g5M)bz@%V*#nlEv>kvU5EaO&-S0 znkX;z42|Cm%6=tKeSPWwnB`4fxYp8zo~|(?x4Nj^+8$}?DV&5;3DbZzE1eNmwH)qN zuztCr$Zu6f`4AN%+J%|fUujm{q#6qhWbEX zYK?@n5LjC{qO@ZZ6tbxV4Uuwy^fKZe9{8We6#iUc0FM4{SnacBr@(;__H zvtUo$^*@Qw=qHd!L`aF(fRA?!0-i*`IA0oCcB%?%gHlKc(Zk^*Cz$M)V#x4`u(8j_ z$~g_Uy}hw`Sw{?#VcWvHc={mvll{aG(SQ@7O-)H z$7gh4)G%I$z2@Y*Wcgy~*tZq$6yswPSV-if@h0u-qExwJxX4JV-@|8IWBvy0WwgWL z$~|+rra7IB)MYX$C-9Up)W8U~4%S$>c`6&3TXTQpiHsB%bk5Hjb_afa`ONi9V90oS z=-ouViP_af?F8s-RMsPV%2#X%-INi5GUoVbSa<;p`> zSC^g5f#35NDC+FO@+Om&Be{Be8yMAMonRV@mn?yyqsF6E=l+;FeKv+Ol1&~`XyYEz zq+h&v5p(9uL9=Gfux!~f6ev)D6LJCne>i;jFiMsx4Sj7fri>qk?p->tcB&0|S_W$; zY>=<6@!th{zeoc*Mz)aXTHyJeL$EN(VV%B$lL7&s1`%FzBj`{_)e-yL<3yG~vk39A zF}UV-66LGbfsI{3-q(Bzxr_GdHSd5S6X$XnOXWcuDiKKDlPmXJf9~Xwg%lx_7A~_@ za{Eg`1ipl8Wt1peiT5!njQl0W$8+1Y2Sm}LI1_bta5vA+6RQ?iz=U}Z=!tS zdBu(?ujsylg^Tg)VZlM%429A}gA3aDhRAoBiZu`%=+8}t$UKV%4e_y2eAdA>UqM*e zIq>(8@@3xG{`^^EW-W)6Z9eWHCm}A5Yj~ZCm1ct%<-ls=l38qU@OCDF%AC^EtV1vK z7&d{WHH*JT&%lW1NnU8l)LC8~*Gi4dkbwl8+!742 zNSo!8a^_CN@Ri<$ya^2e;_PD6IO2-Zf$-;i&DgGDJ=8J1)Pl#PhQ2Z&b$LMAbUi+$5K zT=>qzxgHs?+H2s zLtPjd8?uI=@&(H-6VW9tHX$M;k}n{oO7`NZGCjo^DK;=R;DR6*B&2C@QK?p0{yQ`% zf`9Ux^r+t3yhB6ffaJaOP})hr&^OU%&@rVuGc%hBaa|sVC+@xH@vLRX^nJPK$W$gQ zBm#-CNi5&k_n8`UZ9AE+q@|`aAuZ>oHAGlxz>y}WDNWUbe__y!!K)V`NM}T;R_$6` zL!F$Qf>1V)D^s={a#)?A1+#w(?AxH*Vx!RYr{(1tTLPT)A>Zl>!03DyZ!|eE0|r8q~+p!~5ZJ=>&!k=?gP6 zGbqwY?y!2oi0^+DsADIsla{VAv>EY^czFlscZ|Xd--~UC^F=G8bXfX3SG?bCva8_q^ zVQOy0we2)Gpde39;1ia(RCKl6Qrr;qNUW!L^p-jf#^bwsnY(ToGxm6xng zh4uZZ{C)zxm;6GLhMy1>5yG|G?|VpT(_T(HHN_0ki`ZKKD-yO%UtVDEtD2`uUg{AvCBU=6xMe_^63*^1%zNwyKxxOVFHGBoX7(m4{kq>jWDzM zg3=T@X%If|**`NV4^Qkr&q%cfY;0^`Wo3nvCr+Sf(Gr|E)8vZ=tA`&8bUiCm!322{ zTDR?hi|%)D{InZJjrjwI4cM?5{ec+J?~7(nm_dYuvuL4!$=I zvGW=bi?!Ha)^>mW=KDiI<{|l=igHru$w(U6V$ zBjw4D1es)z$;Q@|^RQ&<2+SDX1Eae&#gxIF5$NxyiuLV41e3^pg_`yG@AXS&@NL)g zE`}sfy(I0lNF-(?IUFOqHfH@nNp2w7_1ukDsJ%<2 zN>i1*AT7C(nQ|9HT40-+^7p=yTv@(<-}^YSV?DR=cP>?quNTOxy!$ml-%I%hHi%K0 zy``t+ps1@EidN6U`2zt6^i5-VD&cV`&uCGkCL1Jb>uca;q!-*DZD(XE1tp#8qi>@P zurPAuOx8#>lrfTD%UBOuZp>yHk^)3A%kZ|}rCq%^NQ5!zBi)GXB(UF$7EnW8oE zBGLnEj|{}oYx9wz7KQS~8lqF}KT)x0N7ODo0Bvi|L~*C`2#&ptz2~Q5`{@a|@pupC z2(?Q0LYF#=P@_aow5vG>g>7pfJ6!^86FCOWDh>O5`SAFP29EB&hPC@gqQ{7u7(b;K ztJhgDwa~`P$0;yzkh6M_jTcXq`-YHHhfjfJ%l8Lqc}W9HJw!%&CPD(kxTf-Rz)3fQ z1|z{l$lr&u3Mj$G$f~37hunro8fF?*e;CSie5yg_1$l9K^)eKrdrZg5*_&8FX290o z5@jp8pj7!{-2LL0f|5r`AniFV>a5$WIt%o-8vk9pX?2X9I|SqA4dvTq|37U1Pp%co z4!=l|!rW$?$nl{g$M|AP1rvUJN{p4=rvlYA>Nsdk!Ln5w(5z)gxL?18CQX~b)YKH4 zH*ZFvLWTJAixn%zHQ~E=@8&)~$z+9W#s&QRNJ>h=(4oVyZOdj9D^dVEwyr~!%H@$1 zM>esn!yviyUj;@8$iz)kB7=^B1yT~D@$AlN+;`u_j$cDls-tY=0=^1F$PA55QKpL0 zO_J|p{W3#gZcq#v z8JS2)O+bZ)#%S8j8JcQl@H(1^dGlu@PVEjl4|PR&a00X>`cT(Sf`W}hf*z-$W{p~W z*X>W?hY)b8&}5HXuSE_1`}pp&tN@g&`agu+LL$&K9zmf<|C^SYgFQPXS*f8gGdKRK zw!tgJd*q(KUv-K!CArsgZ2@V@_e1H)VbRE+Il;uth&_iN{v+sJ85voaJ7yUk-FdqK`=2jLa*VS&}~RNbQ_!}3~Gyx zeOt0}srgH;!hRn#BjN9>^b(NIAs^pzp77woLzF335wrk?WGmw}oMe-^(5HeL%g1y@ zDymeijz1<$!@!~A(XCr|{PD*h+&jwDsZ&v}UOjG}vTD^T?j>d3ym=^Iyf_XV5d4S# z%-FPP6SwUzU%n(}&zywz?P*Pih?|?x-~TqSK_HWv+PbFD(lLh5&13MpbsRC_{;d9z zIm)|k^8|by$bPzA&%ylo%=h}tb#+nwYz5)9b zvH>QttE+Fw`kgV{k9enkZ$rnvBhj|UV7{~HhsgKGx=`wa9i3fJ!nF!cF_KNW_RRMI zzee`qlsA^P_LNYB1ie6XR0OWGK^FNkCv%frGZAiYPWjHtnq)oQmlyOqDItL$lZKr9 zlYdRUu+3+SF>_Y1bSp5pT^)9Y_0bx?Zab#3r!t+iXanpE6oJQ?Kf!mLWDFT=fR3^Xe#Q zT?uWf&q4jN!w?*I2S+_;VZYlvB&EdRuHOahK05_BU+m&-qkYY}JYG5yaQ4S#CFW;I#L0#K~WwfOT0^FWCc%jAYz=dISgE79b%dn#X$`8-#t;_Jj6Q5Z19-|T|+S{lxSR_*Wv&G|MW>jK~#X& zmFIIWb`2Xf;G6$_3O|H^6Vg)C(4CP!!d>r2xb5|jH3AwHDT#P)AX60@b&&Z45nM;- z0{osAet~>pBAJ8af(RFB)bDuS=f52a*>iIe-V(n6X>tX(wa%-Rmr6Cc7Y#x~)>y~{ zhSKF&BtJhF@cb3Gsm{CTlSo}oX7-yM7##}PQ4RWJdWhV|$HsI2v5t_0)`e_ zlAy@=2mjMtK(Tkwt8zi3Q*$fUd9yr@iHhY5RLP4A>ye$O`EljS zm0@mfj=%m|i^k2{u(H*7BQzh*(^5Tc{<`gsW>=xLv&oQ%if4En5z! zPMt!ZK7BX=_wew5rKKg`U6ZCo+qG-Q(?D+Q1pGXB@ZbR}yE1t6=m9*gUO<;l9eJm! zP$=!Za|!N$5y+%OU8D(#RF}y@J%k3bG@e|6gx7(r!=nYnti#UR&;|S}kc@RIUW${% z@Q@%p_w&KdzmzWa$b$xvrEiT~%_|YuyowWAbf{}!#N?Qa|E8`i_c{@^%C;uvMPh8n`98#O4Hx(1$qyebC73~&{qN2yK#l8LsEiBnz4ly zXnXp^xL7>Cf14{pQsv3-1Tx!sKd*BKBBV^pn@_o*XB(MVz}7*@5gy*YhgUD2qIQ$k z+)p`~c$BYJ4+h4jxOe?3UOs!w<2e;81u4s8K7e3(V{UE37emsbP}-R3osEmwd&z~O z_m#8!r=@K^7T18?`{fENMQRqR)oacMA$<2s&&i(@ssPI-W}hx_2_gLOznD5@6kgdr{VA)k3^7Ox>jv^ose zq7B*eu3^imQCPCG3myd@f`NfPI@S6UEh|q$Ij1%l+2$B~UKPBSKg9aO1F`Si9PBtd z7SX8>QNY%jJ?98oRGx}~&32)fT|KDfh+t%?j&{TBFl1s2Y?%HOZhM2!sl{-#s5ub5 zhBsuKL4qn(s;E-_&-h^koQR}d0UNaH)`a`fo;7kYuDN;fkq{AIBC{j3?Y#eA*F`T=r3*MTE!poaL_ex(sTA{7&|qWPT}p@A+ZvpIey_ zNawpwl8eHpz5zJ6?F7GGr%5%|c$h$A-(YEHfzp*+aQ)&fmL?Cb*{7X3d3vN0oH=|6 z?&rO@hY{xzPF%o$3M6KTAm$SF(2#KMsfFAK(l>fu@Xlic{uY#{^vz+fB5?nvFJBZ& zB$Q+o2^UJw;EBBu8y%0MduT(V4DNA-TqBaH2JMQOn2?0nD5Y=JUmf%frw?9$woIE5 zWmj$aV%T5f_Ltz zDz}1fH8THAAhQ!qsSF~q6bUimcyjv`LjCVSLo8v}Xkj+1fFB?t0{#uiqednpkPA7H zUB7S|B140@R-9breQR6ptjrwlm4tBNIbR6BiD7g8sux|FYw(TX*Wh9 zihI{D$MLo>Y}MnU<*eV(=7C7!`D6PS@qEIse=pGDNm|rMyL2Ajv5vb^ z%muY8viTi2ZWfopM|N%CrhT+iBrSHOg`0GooD|P^K?LUj%KMZy-h}Iy&qAJ*#PWf5 zeSPccfgedPLD?hB8#@4|Y#=dc!W^Wqw0sTdT{PI}J#s1= zB(%lDTb|gsbQWJ6nrmwNDiv&otG@y`YpmY^$ zv>s}U<9lww^JEm{iR$bc&Gfz1hLZw<*49aNbMP$eB6gph2;Ud(NF%!r6$1Qwl8XwQ>5|7W^@G6r!>( zW66Pb@V_HRvEt5faB$%FeF~z{V<%3(c;5#VO6al&tImEW(1tU`$`nTM%P>~?eBpNN zD)+a2>68a9p16iHhc2-Sxsz+Vy9{W{2)i}ccv~~ld-0?@uAIFN|HlEicGe3QPr2jt zfeYBN<^al6E`h$Ix^VJL0+SjsX|#{+I?J`xLnrs)+Vi~N?&=u%+_&i%3{4F1Dj*c+ zj$Xz+??-SueieH*97cF>BpcCmK&{5rxC=u9rN=(M6;Cs5jPs18$Nl^bmVTC=Ll?1m z*={yqD2o1nbcK-_2~K5tXa?ZqJ~zHFbJ&zVZ_H*0L;{F#6Os10>xY;AuUMnhV8S#W z3&yWx&%MM(`ud28ibIcK9hiWo#h;9=vq0P1UpTIG!AQG5o<8UXQ%h4=+gk86)2x8! zrJK0I(n{Z!n3%%SqsG$i!Tp)UwJI)DT6iK`Gr3DmC1cC!ZbIb22hAU}$K7R;^ny;i-X>Cr{wS zv7>0xv>E#L?ThEnpCddxoO?>4(eT=}YdJwD+i)^_5b)n1A|ev*9@j8zaCc zLZ%){SFXuBL;;@nitUZI{0g*ABi9DlcRzH$Cw9{w+qtPjI_oI#;BmD|f3$w$u3;v81x5ZQ38-yM-qYZ*vmMeU%5l#I#{u zxh*@rQ=XEHLF1>heuvVkfvCtZ)*o$U?<|38^_z3^m5+h?FOqk={#wl5Sp?M^v|xGm zc3?tj*J6ZUmkn6l-A=yo>@jEpdtXu-U+n1MSOhn(x$*1wz1k9t z!zDIIq78FW+2CRPg0(2(Qkvz3(qkBfJJ+x91)xpZcjxN`^41r+PJ@7JXOAN|@Hr>m zls?MO3N`98PIC}f**mQ598j>R%irqSuLLR!`qs*|8gj2Y?&sX#dn*h!`3+%it;+^o zS?s(f3YE}Dct|v^pACjoWDNVlTCAK{UCJRTnEOwu@XCT5FT?I3B07l6NfU#&rc~q` zyr5Mj=*uh+6(4~6FHR#e`V}-qI@|~OP2Xd<`fwvMb5c;cKr^^FG(e*KHSYVLL1a`A zC)Os0ws`pL3a;JTfuN|H(9-bF}+KO`EuFw(c=J9pmnJ&nhK7g@n( z@`atH9Gb(&-yLx|_mG$tg0y5cxE*@N-4u81*in_zf5s0b;Jl$SqFJqO1vol8@J(rM zx!>c2lfvtWXeQ8_VeGsiDB8fQ-<{sdOTbH2D2BOfC$YwNgEa^*ZbwW6dBltX z=sC0l(rLA_N;^%RpOuXTD%UN~1hE|Fk6n42o~J?RIlL1_Ozi^;8}oP4lfu$N`5%0zOTS0Y(QR;BZl*(dNp{=z z1#J0-LifFWSQ?(QJb8sS-J3FDV9ejIr6oc2hLw2-arW?KCh%_I=&m#Hym%9V&x84{ zpY@to=h}99=C2AZnHEm$JIBiKCI$=~fO6%^!RxvwYeX?<*rW|>eS7!hn^p`NIusQuRNxv{@+m!G!UV*`#9-I1 zU3>wji;D~L=U19D3HWhHNJzlJg9lNwlo1=X=|EfGg2@=AH-!HpkZjOo||I z|HAS8eA{}8Lw3tESL}olBb!&x9_8;PZ7z`>(jHc;-wZ)7p0WOMFU}p^!#AlZUZx^O zOkaYVSKSaB9r+FcC!6TAhjyVx!`7^?t;9*?$3WkfmYRw^>zBgJ!UpwPbYKMb-I)Oz z$mU}tn+7ni0{l^|RCzS%&<6_Y=UD!dAMR@PnsKf7`J;Pr%i|&^&7K!ev2;J>>960a z)0+)*DBp>o=W{F!_wy&=|M&sV3vy>jKDTK>C&i;c<}LRasecvl3|6)d=ssi|e-CdP zOxQ~pk*B;QLf&`OR8F?v@j$|!K{L=*>NMr=KXYg&d)Gt$PFl2SX>E^LYj(r6N{u%& z+SGO_jh9a!X7L`PUC$xVH!^-_#)RU~z=rAy?Yi81#AIZ!@}fFGp6>sIB1Dk>}RtJJ`_fibX zRx7~zPL?k`>sY>0-m<{8;u<-O+=emv=7Zpf7qGV|2C;_HM2JYaseuEWY^%UP&kT=4 z-4GQ15HG^+AT<6StjyV9tI{+SV%JUd?NQjaI^#|n@Q-juV8kQ%2RvZMSCNt(fig}_ zP`C78*q9VU0jrA8mg(XNJuku+L1F&zd2s>0p{J40su)^VpTP$OZnxIM@0BMTaHeyU zW#3!T@Vy8zr^I~t&j zBa%hJE;%ukHyUGeW8RR6T)%JUMx;ttUzZhX7Wd)(K1jnH8We_Bm3pB<_0rgJehq(b zOk^A;uu_usu z59Kw9j0D=ih}}=7ExJa!Je~B7d7t?!g7R%tk7>Ak$^$oU+<>EFLHsdxEQ*${fd&nm zGQpPyF&p(#Ik2pRnC#HRr2SUstEZ_>QoH{eQ2ij`K`!I;bj29+$7Gy4eH3%&%toWe zjamN6(YIee*xTFlg`u=?lgN095+%6j6lZ5=)sqB#Zv+Mgp;PCM*u1DOl2X!<&$&8G zESwmTp#l02>ip<6tlcVI45}d^Iux;yfy#Q6mCj^}f~6-N+39JleP%G3$bP4%@_|Bj zRt7Rz$foo%fN(3 z{}AZ;hQ@jI36>-4%86=Yn<`l}Ocj*(E0>a*~@1BIDY+TDw;z7HaiWXeRdtqF1Q zyp89A%1E2>3>r(npXOf~lrLmfL_5Z|s$2v)teoq&bwrKkj=YZ0cZwK)(q#O`=T-#n zxTT<8+rlVVTpMa)CeuhG&Pyv7N<{;ed1k5>is!Eb*P>0JqxIIyh=0&+xIf;Ev~0$k zM4IfKYA9yY6qQS~RmD(({Diwd+5z8?GmHl)&6G+yv_j>gomg3^BB}5??iF@k9ter1 zHVm{aQNyJ#G)21DcX0|LV_!14OKTWK{ClO^BCMW#2XPS@cp3PDo1T6S{u2V87nFD+ zkyNig$KLKudE0dg;fR|?keDjIrpj|Ghf)J>oe293zkG$zoYODC+zXE$CZ@8bE zCxqN|5c&RCy7_admQiw992yM#KY+|nLSIE-WVgwX$7kS%w-*zJnHV-=1O|__V)EqYQ3plldt*2xYw*>mvh2K@6XO+WSbH23>E|e{(lZ8Z@7sOlOG?fcb~fc z0q}l+GYOLK-@7h6-?`t)lfEy>djao)e4W$m&eXx3xd~C3 z>egt~!5Id|QeXaT3-X4()DGoYJS$U2ghf4v`@?NW&rX1~ zxg(0$*2c3?54;M03>}Fji`N3Db}49B)UMy;B)aPgATdB^AAhnk>#49ZIW`HkvJ<9`TwO;Bv| zS)zHThFo*~HP8MQ>3JVtn~qN*_qkvA=${(2sPyiQM>w$M1iE(Zf{GO@GNKg-U%voU zt<`{yU^Q7g&f#V!G)NKUF+m|gOWFygeYZLrJu3$?@7R2QAdu;b63V=!j)4dEL!PF9 zo}NDH)Njnlk{S*iIE2fW&Y?}4wrJb7E$-jH&;3sqELf2H4PUZk2{(%%kn{ep83+jY zJjBN*@C}t()Gv#4HfSP(lNcAq%8qOljo6@!Y;akJOJ(ql18GYrWH2&Kw%+oT1okS@ zdeKH;Diag-o6_*VpBcGn{M>Z@=x=)azMnfEe`b*K zz}VCr6>HUJGBytGXFU<{BpOC$+T1Rjl!de?nS5~BatZo|`l#sK4&|LX!P3YH1+6N=P|qCksf;fKTtrlCC>{lz!>ibvsOZuX zB?~q~Y*G-e-rtTj%eEmoMuhxDOnI%)))nLS6-K zH$|=;8|?%s;MWC}$UFpFV*R8xb4m8!|HUc^VAH(Rl+WQvS)n$U2|- z_=tR_=}Ox1v}Wyk82-mpc zja5BG!1o4~Aq{wzPOfr)04mOkbp$2pM3)t4?lxUmv$2;law45fD#ogQM;WDEDEY)>C}@rv?2t$ zItGx+Gs;R@{k+}-(dRfG(9>h{LyokOEEgcDZHdqNW{erk~e<`-_Ux`^G4zajW zl&NY9sg?+7@(iq->5Vls}v(JZvIfd zXj8zi2b#%iH!FJE#qlvl4_;nAZIfB*pk{+~gf zU#J^y+My>7dibHROIe)S{RH!epGQ)Hf|F~SRnADy=AKfDmp8}w71d$r5QpKd_TuvX zXe7pD^L22vdnOaBAl;X8CYs%=k%f@N8(49uC+_;4MQU0y-0$zj`V#|@kQoRE^Rj4D zbv7KWDY z@~8bZ{=)_Q_n^hFw1t10D!tLUQ)dhsJP7vocIeu@FUC#(6Q-u-P|MC{jg-axgbg@% zO{fwE>ZA_;AVH$3Nj2UOX~8fpVkJ|xyf)wpHn_`T^(li)QnIo@RV$08Gg;8nH^HHO z+i>a3KDfDE;2Q=FA3mIGz~|4O&o$yda;o)rL#_?@)};dwmncW%>jXIDvx6EV$vJ9N zCnT&+h#}K6hJld{Br<(=PV=j#qxlqTRtBpJ>D+9D2K{7Kl9f&8$hMmWvhmJL2kpQ| z_T5>Tf(^I;0RsL%A(3h!B{>m0)-1%%waeI0S6yXv=46j^5cSz1z}-f0bgHV zs52sEWo^d^@K=Ee0n(7t$o*~j5F!73ki9N>GI;*X7cH7MM^I1@uY;6ka#!f@@6R`h z5%B#%1Gl>m{V{a>QcRiq7cU2?RKmwxqh6cBsNcmBX_+xNd%zb5);xhcP7^wMWWvHkDif^SbQBtl z;HyDHO95KSBg!;@wuXi3%}NxotOO%1C+?{yI_(L{7Hx#OrH4Q)lELl%GR&Gg4d?be z=R0%u9$yLNYv#jU_YiFQ^9FV-zllN)E;w}P5YC)A{jbS4;kPE>0)BmvYsLfHj>E** z1a@|Iu(7ehz5@qPu~K!ewfr~AWF_BLvZjAazH>qD$IhQVf~L)y;o`-M++Qg9pruWF z;^N}avu96LOab2$}+;TX*{BgqpTZBlM^+rp-xXrW`latXlJo_tOBxoSWQ&ESbzWl0)AuAg7cK5 zL{z9=5A!zc#gNGh5FVI}&5Y!(pW^{VN(N-QWd5f#6;4e_=Lvb zWn2vIkJn+>(WMyEeG4*D#c0;G7#g;BhEyuTvI&>5YT8x!-H*h~nX}-1(+jOywc^$j z-vR;w7x2r18XC=B_&s((tEr&6U#{I7uT3tG5qsIQAN2bZ8}!>YJ`^8so#>V@^2 z_9H1p4vD7tO}WzmjQkXnSqSZ@sz^&wZm7Y|QI()TrXcd<1f-=Tf$Y4=BM$di!UR7B zGJ{ga6d*u=00HEGUMkZ@mjR=3?olMlRjZGCo?)2O^Az^3xr5|{G}dR5azm*wp@omy zdJ+^XXNsY7T;WnvjHT1}Vp_MW@bO4PQd}m~azu=bYe0kDry&+0Qxt<2QEpg$xHpb^ z%m%dMP`7M8 z4KQ`i3QU=?9M4~d^3ANYw4|Jbb0SXv(J>t`@=fmkGSg`@6g9rUk~YyHO*awm_XBqw z$YKhbZ~+1Y2vCA%2}v7Hw&CjzpT+Dodr+cWRd}2U#Eb#wasAv&B*e%emZ(Er#E5ui z7Pk{mNm9Vx(GY`Xl|$2h7Vx;{iJi;u;=;Z#c%2Kz>!55%#4>2fBv2P;!^l*IvPJ8o zcJUF2ONzwY&8@I|+i{%R8weW*Lkyi&4Y~$mTssqhc_Yr?=(hWCbu9-kuj|;pW7{_; z-nkG6xPV_4TH0FJzxgQC)kG*;wk#*F8#iu1hc3O5lJfW6PrnXI+C+gXL%$MqD`~(l zoI8P*En9F;C*&@X?7wMOOmaO~y?S-%>gpZ3TMlrQguGNm0+uR%SWICB{V3YWxrw@Xa; z>q9Ejg{D-C*R{8mgLa_J;`Q;L1B>%-E0O>KUkKXH{ae|r{wUD4^^|S_zZcTvDG+OD zqF##*SiJ2R#?4!cn8+Ns9rDM*(U)*!(*tBEGWjMrw2>YYzT5+uJUJcOIuf{4ut3e0 z_9$IPhSD{4;rHYzHZ4DcEBChJ@Rg;QFklm+LbFk`xg(l%Edr^w2DUD~iRBZo;PLI( zm^yVDZr%1q-@bjhIqUbvPuD6xn=t)eeDfcXnUTdtgBhw{|KA`tf)c4F662FFZ`>-x zM<>FyoGTaDWKytU{YJED;EH31c5&NkO-=G_@fDSY-IHs-`zGX&2J`DG9;M^@)r+WE zy&Bhcli%+$Wy)|f6k1hH+tZgTS56iCr+#x-c`d#q8O05%4kyjhnV+RYC(z zn>5CiOP9D!APuTWvrU~q?(UVJ3d$WU1qk>t5V1P?!p{c@aj}0R;kl+&x#35F`^V?X zkq^@klI39`LGXX_h_x|+g#T_JIZ5{6I=Z@O)~OdfUnXPj`u#98w8Pa?L73Xx4IAg( zKvY;VBi}i!j+1$c8nUuTrju!44!0GzDQL(DxjBMDpWwx-JD5N861t5jkGB0>U}mX} zD<_^~Y{!%EzVHf7nlwdxd^~q8NPCI=DEu@8oCE+F&(l`Tq}`-O_(3o^p`pRzFv0Sx zjq1M#sPbJr>5k!DrtsY$DewL-!OC4rCglT-!`n}xeT_cY_16JZs#KYs*TVYs>u}`A zVN|PL9ry0tLs-B=ESxotn|#Q$wHcwJ?dVm{`UHrak)LnURlXD0|M+=2_ySPhM!x1B zKDdkW<;rqzCjkKgC{dyWLPA2g3qm5}W@cupJKhCdzjo~!=FXkV%~bN|&yN)=R`7d? z!2gb*JefCd9^Xxrw(noGXc0U;J-Ip0=Yql(5&a7&&1f4zj^eNWcT+q$`k; z7!7+H6U>@6iPf|6Tt=Ndbs9Bm*G2UjwGbK_%H_k(ibWeTe+NvK}0IZi)d3F1&%;SA+37G?~>S+Sf(I>bFuJlVXw<+Y?u$-7~dyC9uw?i+diSSUuGf zhd213M49q9fBqa!oH!1BeSOuNe;h=k$4;Dn@xBi#l+a}jLUr~(01?O4b2j17_LJ~` z{1SzW7l4!zF51i@FUZx`;s49}Vm} z@h9bPB~d4@7d)`vwCN6+98k5S>uTy62nu`w--kERpnhFEdE&=+ylm5^4cC5Oy?T{z zO;3b8FRomd1y)8bjQq#&0YHlu&0uC~3K1LJ$&=!9E5v66`i};3 zZ%tFEUMhd*(U#LWx}L*+vt#yy$KeY)*>(ODb}V9b_Em%&37L8*UAZP-94g@V2G?k_ zy0&xeVm$M`j|mIcbD~T2iA*~dPZB12L+;np*hLeD_L zZN=lG(-0M`K+$q0a6cP>SN@4Ov)2zA>PB#>(;jPAuRzrbWmIqZ@%Slr!lVXD1gME? zS42lBHCTfu^hEce9gsndQk5){DKu@ha`p!7UVj7|Pb@=;vPF=t_&W0oBHy<>?z4hT zN6B)|oaB9}cJsf6rc{h=EB0a4+|5|LbvkM^tjxaW-@D)Y89*}}I(jn1$0lL!n58&# z_!2)qZR#|%Yu}Fh{Z33wRTuqlS%moq6!!A*Rikg=#hG zVf47kOu}a{a+Af0cix>amD8g96`uu8z8L{xZJr5;kMD#j(vae!+Zo*UJcsGir(^2W zsi;z=3L|hWc<}c2Mrvv*{{|xFt5&UIB=Im_zkZFRq>t}vNLura8#i)ujLhGpgQ7Ab zt-qzErRvOwL5o>!ZEaD%etircJQxKE6yWDWL&MOnU0ZBf(jN)QsW3Fl5BowD@$mLJ zoH~0M8#W(8szQO%C5pk?#u~GxPlSz)9nx8uYD%<_&B{46ER2^I?YK&AFlD-ih=~Z~ z&;Jq-(GYgR6!1MjN~PGSNc3%46&0%0#~*W6^7_VlP_D$PUD%NQ{;<+XTSpIT4qigR z!o|2Lz`p^_5NT=2uyyqU{I!6|-jAT?kO}BNZWiAqkwApKW6e_RJ49Hr{RDSc_pJs5 z0)B0f2@{!gQvVwn7L2Dp_poQ(3i#Z+&aZ1}1GWW?P^o@C7#VBB^K>K(OvE^MNV#EO zn{ETqb!e ze=XRIZL1Do%jp#;R?6wC2{^sOQBnam4p!KBbP3m{ljHYa3IC4-oJbb=@TA2Sd$%0J ziW%$q`9_TzW66@moOtJT3zU$Mz=A{`Teoh_T@m)^(SvKc|A}x5_0!{IL3|70sne!l)55+;Oi>UWfmouALM0m^ zFu;d}r`WdR5Dp)AW98%sfByh9Z{7rRX3l_tp&|6ybEtl%vq2vX{D{Qp>Kh|6G=RP3 z%j73*(nFeWfq)D6)*x;7=|ej(?~neNx@-&THt&G+v{X)BNY2$SW(EUeQ|vr{2PPI~ ztR4d~Y{0*LyfiCdBtv=ncq!y^}m5? z!u{s}kri!SEll`xI9`WGWBZx|+z;=Ug2+6%sFSfkrY$;p+JCc+CbI^K%C?Mbi)mq> zM54(G^6iRoI;W$n%>~x`ppm(@u8f<2dHkJ-HQ z_vpxYnn-g&W;v8bO7n-(l^3*Nk={f3@T)+=@{P2)=Z{@QyXt*7`L0~KG7cO#fSo&c zaLwlXc}2EcIyyT1K3W_{-bHrr+KpbldST0!Em*yJ4L9EyGv*H*KXw$G|5}2%bEe|v zO>f9#EN|KKvKU#;Vm$(xk9>Au@jqn~PUV)!1VhNH7bsPx4B!2-RH;%hFff3Rj}O=2 zlO~(YO^76ZDah1<1|7dsAoq=53aS(2YyITO6MVqV+YbH52J}R7pWQnPQxh{dyHsRE zy+6i|8Ni#aoxLr*y>Fpxg(?_7aT2y{-+?RFuCa0_k0wg<5bgzqelvp1J)L}J_*Ko` z1pNFU`|g`p++byw56&fA*?{fuGh}>6!sJ9G#U~>%E}nY@8a#0x8nx}pukYEgjBBs+ zf;8G>ORl45pz51+*?lr4*?td1jBZ>x$Dc#bK5*>`9Gy!*o|K4$_;@5I#>3Ry3d?t& z!Rq}Nkr4ZqU}v$xt!;isejFU|oNMAg)!zyD{XnKkinKIVmlBw~RzsITqjC7UFAli- zV9H@0I`kE!sv zdIY*h=k4%W!X$OIYZ zhXjW4xNWQU;phLDGnkQW852rbOlVoKf-=IT)1J8Pejg*J_vd6bmuQjTi41*>-Rlpd zMdwB+;AGFAn+qac=Z;*)i>EI!a9mHa)Z~f+x{t0sy!{y7SMMPBWf<4ITH9NqU9aXa zFw$ccn$0;c(oLmzj-@JJ`cEKD`sB%zIhp?!n-2X7AXz~sC=D7kP@VZW zXs}kdZe4DMQn6x16fa&JF)^`d-ny-a9smKY&d!iMkW@Vj1wrH=Y`Yw zqjyV~S=r*;gI9=+R%)e5%P41r{oW0C-1fYLgt!=XPLsW(E^0Pu%?GTxcHHzHT5LIg z>_A*Ta~P8rZ9uaQy^x%gz^}gxWt+~(vvz@qJ}tf*+Nl9_8QGt|em^Jr!k|^a=YYKD zXiBAw8>S(RaR41%eb&!18Omfdt@TPwNyUM4*Rf+lYt*HHcgQ*H-+Tmf z$F6`wAv>I6Bs?yLjc`6ez)52r9`YKqM=xOn_b%5$+vT^$Gv5GCbjQsfhK_w&;B`ba zCJ&wuuS>W2eeYx8mT73*rVb_znujAhPGil11t?#w^c&L-+LU9}yiM4&bT`bcOyM4I z98oIUbs~ZBY!ES|!vxOCcDSu&{bUY*Kc#aeyKn!-V?1tNkhXmGnhA_RS7IF~?XIW% z9(OlyjO;oE2d-_v)>Zp)iVZ9Xv;cMaj@i&P)WMczd)^`7v|E&dy=&sYxs0rPq3fVF z7%{E?PidM$odwMRB*Z0R`Hb~Ayz3+*7r=-SBlrSCXJ_X(iwvpp5LqSLXd>K1I!PcC zc_ot+LqkKZ=_Jr~BJ6aX?kBG!Cr+He-o1OdjW`i9GF`cK^CqTDn~tf|W}`!=Hf+$6 z!OaW)Nvr)KQ0K!n=;R714*@6dE2mBzgU7|=Sh;c~Um!~6C-e=Zp$`fQ;$Bhmg1(U! z`H^inEyAQN>pz65j0n=g)9NQ+(RV6ZcWunCubH=*kD3T%29lJR%-#{qe@BKzA@o%Qe?Nh2m+yGo$MeT8QL}MX zPROYekY|!*v(|I+-Fswbcm#U_c{)eU7=TQg%6^Y1k|vo5(;}AM~|qG`9Lp|5$Oz8Zl4p=<}gxB#F(_xUlfRtP#yocZ2LRDY;Y*x_X71f z;UPi%SXWOU+PeDh$kC61*q4K_L|ZV{L-I4r+oFg(9@$upPxTVN697GZDeY}e@DL# zXWG_8--VhkD&h)Q^+d26o?YOCh(&0M!($+WDgQ1B& z8_DZKLsJ9k=@}^OqO?IvlPeGv8Oz^KUNhq261iyzxAA81_YL6bC6LB7=%sQYX~}X$ zsZZzTAnxbAaA@mEI2Lihm{|j%#-5ePo|Bl6!~|VcbQ{uv-?MJvHg1ca3nFWT_}B!j z+&dQ)s+ZxWD3mtR#OD>Pls*!ElLyY{t{Quf=!hW`dLu46UKQi#01I<|tXUH)SFOa-rAs+s+p=XdCX6481+yn%>Eb{6PL(v}N=<}_ z_~!(r4S6<=w|N?KYz}BfOqNAMRoPxfe+%?KaxYKDT#=Qd)4ZTRz;>C>;9a|`jIGfA2J^GTC|5eIf?bH@%$NmMomQt z*DCCHEZmOn;c}Bq@1i2Z`E%&Gq`3Mr$qFMtM{wh!)-~zr0s9uFd#iFpiiR#RM zho6#w6VlQYC|arzT&tAiCM0ghu5c~$hng{UnB*h!uw`uYUK$}m;dtr)ichPN5P1GL z0RAlW8Kvy-kL@|j2{;KEx{ruu(NcvO+0M^9aeAiLWu>{xgoVSocAefu+?jkw)3;V{ zP!YBcR=9fhI#T6ne-l_OJ2yn-+U5AYq)n&q%S*lqB&_ytK8h=6Jke)lXP&-PmM`ze z`>#OdV88}CK6jsD#)yR&)@c&L0;8~a@nRf0e29}wvIQg!Fln@{tgN`^n(VoWc<0)B z(>WsPw2eFMT1CecatS(-R5J0P=a9CX;*lu={UtI^rY9XccEpm!OZfTq>(^t-lqs;Y zwZo=OTeuJC^=p=4-kh08k*BifXz?=qRLCXaO270_~=KLxN#L`a_YD%m_3s!X%}E(swui`-LHkG=pE%Mt_d>Ea2yarly$n0Y|vmNa>2z zxJk(Spni;OxL3{|hq+@1VZr!;m^G?5CJboLcg-9=busIY3bOi{&26zy?qzb(%o5Ez z_hG+Ty(c-x>MSjSBU|r2Bd74^dR#oiu4O7`l2q%WXn^@Opjk+nOoty6(H9`#TYyZP z;*;gDG}Kj{`S0-45^!qVL^Ov@>CJy1+kF-(NvYh#;(ZXYBMmXvTCooC@@Ws8K6DXh zk6h+~{70WVas>(TN*|-)p;4U7e+qI|NL>fE<>njLFW*uM64v)Uee@jWR%YnfrzMX^ zzY`LYI0=u6h=tFcC$M8=T1Q`pe}_V@fSeIIf}TEYc=Ya69Fcz$Gb8SCg%A-I#Ybs* zL4yI(;{Fqv-m&%o=8ju|f`#*8@WftRXpsQ@uR-NQcHU%8vuM&<^k_7c4XCc7Q>RXF zyKo*od-mktM#MB%<4+(0O@f}TktqQMBIuL{c})w*2AYUCnVk^nC6H#E%v0z*-A|x< zOiWDpHFEbyix}^fmj7nkThf42e*BIgPclCQtgi6^ z6}3ASG8A&e$3$TA_|Zsab%<}2!#KLqoP;#u8GuchbE%Ija zexH)TWM}@uMftHJP0rdyA|JSt>?Ux#bN25`L4yR6p#lVaD^R^mOiqQqmK0jj4|}lt zk@#r|IDz~)7j|(%-_c$0h>_ZTo7kwHn`gY&n5hF~og`&0^$qb zoW~bbrXY--5KZmw|nCy-~8;$@5Q1YRAxWACH5*js zrZ`crW8wG6pPSbFm!R^X8Hh|qFi!40kMed6v1P>`lyfbIyLazm>(;GYJ4^(bLU?#M zUo1%`C1j>SCL~c&QJh$lM+*u>q9YR!lAAoUl@8Jxd^Y_-Y0ddK;@ zICVD!$8NsFdEY3k+;a|Pv-H#R1PJ(6AhXce#AH|)$sqZN3+W$;pPGOZ-y|W@pmi;nTbp9t z;+>GEe83i*#mgOWYchiVB+&y;<=62f#p6wQoaBy&aaZ9Hc!Ga*E+PIWP#hw3joa3N z$HiNS2#w^LZgOu(3q(cioyAHOMw&bgXAfOs1YE-11X|jdqiE^E$Vh+d9x<0Z$Gwhw zN6X8>4U7vtiEb9`}NQnJ#7 zhTI_1yN(|}&foq1*7E}Xdq`QmdhzlVcJDdNT^7<-*xYY7*?Z>+G|jH`{jD?~p~aL+ z@BJrFq?r%jXdv8};{o`x7A3nYh?! ze*8Y^7a-tkKr=dV2`R8P))5H!=YVWyZSz^9MW=?y&dkET&BwT=IWMSjYU^mT&X6@) zMtTEZ1S2LY4$+aZ?}Zq|M#cY)e3L+-g_-Yzgb-=NT*^8#Qk8`lPXgiZ`vMvw5z19B z%{Am?YC@Xk*OAc(4}FcB*X}`EPX-GsQ|0KLy^0of(!hWa&C>P0ARcVNXs@<^-HH*hG-&IYf-}YKbYY{>R>V07g-Car}R|n%;XzLP#JX)X;kg z9qC071OY{)NL4^Vz}{&pABqj6_uhN&0TKv=g!JCq^}BE0-bE2niUrDZ{NHjHxtTFE*)f5rdJZyB;?D!D{VtUobpq7)ES`9R6dnm7P^nt)AkfWh3+-7 zxWD$=YgoK!v5>xW>HqM_C!e53jbQw5$r7|}*%&K-`37HnI#2ix^hnk;iO-)Gu~ddr z$B!YbemxWx6bRP+(9lrf`Du7oPTd=2P*l91b1R(1}) zUi>SLU5~|=|NB9>##A*3;`+V|6V7Z~lO>yk^u6mJb|E27g8t8S6NmGtko8%iFx797 zm(H*{&(!w(6*3mkOss4X?!Ui^T&kmOZ0&?Hbvg}7iV9fW`)4;$65XkZcZBy=);6$r zbYgX>2A)1u(IUJX3i7gX=IB0H+1Lts?u75cmIy?+4Os`wzC(Gfy4P%u-hp! zzX(1q_qpGm0p(tR(+Q(Wpzq7wVQp)T@4sAuYnP(UD^1WNGCKzww11(6@aX^efwORM zG>I=d$t2du5=@rmG9i37>QW6#i&dZ*CI!KIml&t=f@=pcK_wO}$~Piz!OhDBe${-0 zNGS@|8F*n}C&b-Mz=h*igl%4Wt)H-8(wB7XwBOoH#1or;+XYK&(`=UH&rZihQCfDb zKZu0eNf`RZ0AZizdgqa#ebFGzQIm%Xal-d)If@ExLS<53+J-FDa~$@N#&DcFcLgr4-dObgVkE0duzBlF_QNtgj=$Ri zUbfJf6Ttz+ETZr0iBI3a)cfg^+f1Js$cX2QLF_x?iqm+wwMV%#k_I5~ns z9a5weT1a@ySsS|OgK5y}%rn$7=#|Dw6&08|{1mJFejNl3=V75cOR3ht$U2;!&Zfb= z&zf>7!2jF=kx#Unrwcy*-%P=e``F&oLi*j-BJvj>F>$c){_~mNVBOE#guHat$x@x3 zoPq6Y_F~`G!@rC0(qg4BNloINWUO4e5rqZCNJ&UVaenddBAhA{zo05;(Y`U3eEKsM zfAk}K{5@HPV48icoq|Bv+{JAMK zAc=I!M*^8F+vFckc_@v_AaPD&p2RnmL(x=d9SLyCU-q5^F}bjiXs4(sl#lj9<&v8V zS=q^|P6Hjk{`zad9p%$cKNF&E(D8N*569ty`;e1*3onE>L?jc|)Nd+_loNe35>^Tc zyuG|}^ypE+6@|X{u3fu?b3}2fD+&?Imm~kDpAf`45C(Gt`8+}mysN7V;*;+nqbLgj z)dO&ob=Cv{!|vrjTdYkB#Q~@4N*G8_k!=K z7|1=NRmY~NTHVi_0zp)kiE!#I)2x(BH+>0vM?1VX{xgKv?1#5T&cmR#qtUC$aJ)bH zYaxGGFPlVi*Zv&^3-r35wxV72KIq$GB%-5k3)V1#8f80s8w3RX5iV}z#FyCqSVL(( z#-QK;;q}Iq82D86GK=#+dg~pXoil60}eHOnFI+lgOq{K$%Mltt*4}LxP<4MQ$UtYt_P;GpB|4+aG@T zA%0l43}?@t!&gk4FZpI6*8aK(i@y2*7tWqx_meH+Vq#!tV+Aj7ZyY>$P?$uA+!<&x z9y-RS7RBRV5_9-45@ydvZ`Og(&^2S{>3M~IYpq*0gd6+4&zv_G=dVNvojSq7P3|GT zTf+ZX$O3Mpd!5~*rpNgIZqXaG>{SoZeSYeH@Q*7wl^nW%C}bd!mJ*NrylmmAWEnym zp;1FsT5L}L=lh9#!mBeu|Iw1wtPZunyKf9)?Ux^3Xixh;evr+FYSr zwgX{1!DWQ~o4eo_OrEy@&Tby~;j4LgwO0#_>d_pp_H2OGfU~Otefz^c0dUdgMUg7WW}EteG6UO{ywFYdBsH?ckv5ilgV3UDn<{sFtjPaP z_L(kzKsef-A!l8q?Az*(8}vrz^ZbP5v0qwaOFt!$OrqoBuq?}|D*eIMJ2UNGPIw*+ zM62E4cuOMUYfAwP3xhd*bLxJN&@%LqShl=9ob?kd|XtHK5A^kKe>zDT_tB{pvl?a(aF=1W>ge~!=5fV&`m_A)iDOk^Q5OqN=fKVv7 z@$T%30p8ior*YZ$1j6%|S_s_QML4VOC!?!16=eiieXCoRWowy$lhNO^c2{(o4@O1l zGw(77ONe%%B@Xawo#G0R<*ZW$T$+vGZXDh83 z=YJkd{uJaHuN*m(;QqC*m%(?g$0-V&31agaFe8&4W#H(#9Vd|YUqO<^)_9vn0b$!s ztk|s>54?(|D>cBWg_V6(Dsy86TNq)&hbEbwmP3(|%Q>P`HC$|jmju$zN+(NOi%wbHY8KR3X-Hc()#T?eYK`$Rl(EM8T02{o|zw)iCe#Vol+@bdwHTXKg^l%SjX^gNu zm>3%tOG#6d2Ba8ZQSWqg@Yh6)!YMs#Tj5Nw!k84&0p$)j;{BR?EcQ3=1Vgzwg-ejz z^Z?fZ?X|)s0An#VF#+@-cQEtS;sA`#Jcqd|NgWSNgAHTyVmT$n5xpnw%Ze;r`>r7hmt!XE)ocn9ywGL z6I;y&!T(i|c(m$PZEUJ2CU1}8fsoPiXfz9OXX(@l`#BUpd5~(fyNAhUJ_436PnT4* zD=dK$ed4^Y2AtQ-=_4xc+7#kGA{~tpM^V1r;TL_+%d0fZd z$sWJeqmd8Zah2P%(Mo91bH=2JnqUR#UqJ@Gy#z36*CX9$H@^w~MU1@VRlbT1pk*!6 zN`c@)dG0UT(NV2|;XQf|<`>xC`Z!GTLJy#Z6MnzLv|Z$q_)czuiSB}*^VPxl=e?N; zqVK^L7gVYwRL;7(^tUbKYVa=pY_-?J_&0z3hY(}He1ip3a$XdD9q|HPHdXQU=Z!Tv zx*^TtC1`+O^pyhX<@xrAJ@CzYzCr^D8tw}kkoNmX3GWt{;D6bESac;$tseqj7hPNT zD<(bhggTiV2W+QA#l8JSaJlPZD(+T<=`chR-Wr}i+z;I(j^YyDFF?h`=H}aXc>>Z5 zbio3cJIun*FhXbd(^^&jS8P!F6y#nsDZJh@O%#xZ)t-dplFp zLD<{!b;rjl!noVHuVRm^I;mEP0Wz7_H)~DsAll+b&YM)8GRNk|W{KYn7+g+Eu%s+H z%=4Vz5D|~IM4;X>;$N@#?z;L?rf)=i>?!%MiCnwMg`bvaP|+#sX0UGcn(fgSXJOFx zKfjrej6ZGnqt?0H4sBJ>s$Xw*rs{Ok)9^}QpszzrDDy{~VQe%qM_UpE>!c@!^R(s6 zkSR4pr6|*!@&XtL3bOL^S+&~%7{^>ADTef<&*5rf5}L0ZOi>1{Wbh?i zTV5^l7$%8o3&hTtCIRg`^`ob=(lv}F8xVpXSv#I$(Eg>xI!$$l40!3g;`nb6kHtUH zfNR%zk9&x5xM2|rAd@~qxWj!bI>bDj z)CXY6Q%$Eui^8X10&r1|T#{v|dHq=s1N0Vxz4)SofzFUq&(mb2?+hB9px#0*%ER9G zNKjo6G&~AcI5Tqkmr7C^?Fd|ELvZ#y2!{Py^5>o-Om`5?pK{ZZ^ATT#(5%1XbeOy5 z=%wc}WGTU{nDZ9OLSPh2Cmc}XaDg*#@oXKi(o9ujElAASRyxyF?(fUY7+JM}RSnWt zqVp$z4vdV9L`uK9?EW;268<ax}DSrusWiIobkA!bYp_vY5p;;p+R0Z&uo(1stXB^nUw)(a+#qj+ofWUYAe z?irmGtz(=EmiN@bcSjZSo+ZqLc>E$hmWMzSGYJft>P^wr_UY?@FvtHi2>z{g+jYzd z%OeXe_CktBCTO&thUJwKDTCL6{~eg38H!d*r)mC=>PZtBxVK0Q8|3Ere)y(mExG6M zs%Um7=P*Hk5O!l0d-N@1WEsG7|w^8>;s74kHQ}hy8O53TnaWXla z$nv%rU@<&O_=0rXwb$yMa8TQ8fBl}W~wD6*PM-%>9fc`z`pye`(!s}@ru z2Y4K$E*QKrq-s+oQ?8PhOF2%`Zr0n48dj|=EfJw|!}+6Kvn_w{6PUBp^5A9f{s`xL zjub{Z#xwG}D5pn|eIY>VZ^$CB+RbU)>K3J2h9cSA zJT~m)r;^Js9nNG2!ld0m0aCA;YIdwJSYzj?C{LgHra1)plK zVj5~^QP4DePLSeC(G)`ti@2!Nvl**D_3UI8`epqaXphG}An`<<3swjXG$R5Z^K~W1 z0qP=~$s6{o8^>0Nqqiev7~CxRn88ZnzU|onbZqQsaJ@VwKff;8HkH0j0kwo=VMttF zyZcZAu|T+k3{?ieSr?%}JOv4fn~AE9zG}M@m^(%-=aI&s5zd7%LRB&*}Yv%}Z(F&f?*4)YxF z{99!x2m@A>1jQnMMj8CR3I0Kx(_TsW;Peca(?UA%nO-gGs|&Z!;o3>>2KjshB1t5a zkbJQ9Ra!iu{Zr>^BisjiAx6hsE8%_NF;%TQQAT8;mYJ>oG=9)~c|}mo9UJXb!eWGR zpXlHm^?^z32WWXfqcc66e(Up1$1x+-;Hf$Fx93d^Sx<zXQWR7$Fl(^C9RVQLpJL^>Soqc9p^lwYKu*AZY!GNXA%UhiPBnf zYv~9r%yXNtgE|B9ruQD20E_T^nW#{~A+{wQ%tJg<I*Gh*JVUrX?AaK zSx#f|>y@#H~q3;HEhFX!(B9S$<3p=PzqeYi1qL^R<62=@eC=Z8 zw-lc9OQTiyFKLn@sY_$xFgCFF(7S{`5}V1Pd=OJ;i|lgG>DMP#l3j8>|oQ3?fMCJx4tMY;{fj(I$dHH~b8z1l|u z=q71|W(my|lU!7Rg(_9k^18&|0>=~M$lL_%3f4S|Tx^d94iyg=09GS0EJ;?d;_F&BJlMr;A=~B6=F`kKu#oqW5Rs?3KG$?=j#u+|TAguZaEn zzSle8CK8X`5#@sF7h9o&@grP&(D5s$JPU0Js6eJkIu6N^PRZE>1f*#~yC`)_ruPn5 zM3i19+@9m6o%va}>JLjhNXxk;jpQ!&UyWwaHgivG-9 zOp!x~_GvIpDP#GaozbbflA0)#Lft-*t+k3ZBS&+;Xg(<*^&JC%k^w>wZ!G7gVC^|kToAOoQpZ@JCBrz@84+NofnhGla( z*%CSDr*(K6J37l#$Y(uyz-Q`&JXP^8k8b384Uj@+zXs!^z3= zPr;y=(7vv%n*~3YS4Bk0FDC#(JGqHZN7z&QgCd!JWqBe_?YaX0=55;b1UaChW5|_w zn0R{=wnu|?!7rSPE{`PV+f*4gOn0S^aftz(a`AyNteu;toMqQ16i16Fw(~uw*#ZUJ zGPzg~r0wJ8ClN|yzlm-zw|^UmdSr4`w53F}PBXQe_sO3|eu@+HQ!xps|9ShB>17+f zmtPUbh2WQtB{HpvzNHI|94GP&m5RKI1YIbiOG}P))(Fk4HjY4UGi?T%D|#Up#sL>3 zTAIxBn5lop0i}spm;ik@C+4w5(T$Av-v{B3r=smOg;4*IB=S&=T+;xj@w<*eNRg{-49W6%o0Ct!sf8oJ%rCETt}1NqEW#}Uu;>2#KRpAZvT9UJR27&N}Y zX_8*nc;@@>`ZRlE<|H2Pb5*2p?tU(&T3U8ed_z|hkE4LGU8$z6WZ-%EPFS|1tUZS2!%0j#B~c{33vzsqqyU$_mC4F2 zzfUkzgV*_1Dd~FOSD(Rsuq|_@7R1-&-wVrolqIINl!BJn<^s=Y^a=r}rw969`CLwm zrO+tAkn3BXP>RX~E`ul8W9bXib!^=nj0fefN8BVA&`5uo1!|r&0K7&7!ynsl-JXy8VB zpMNa07LAUbxp`sE>gBtW32V7e5YjviwQ-bI34P4ZR{98ukpsPI&iI9CTp|x&PQx3) zO}v^956TUf`bnwbxy#z(U7tesbAM;rOvI$iewzq=qK2O*S@H=^@dL#kF1TqwTGrbz z6UoJl`f6{73kt-Mvr>Pqjntcc(x0t*L77S2OXVDz@CJMkJdk{gPqC^gR7(7s$!m!w zo5nyzRZPhuq;qV=RfXGkkzpF%gdb6)Cxof5{1FdP>TsaCcwL{g7yEf0u4tNw@@^zi z9WhCsRzFo1A;k;6$#Nq@)?puWTjPExRHToig~NdP>kZ@_vw2!N*}d!&n?G9$CoiB97T-X)K9~DbecDP+N{R}Bh6np8nHA2@05E=| z6wnh{*xJ%;K05=T-a6R=cAd5LbSP+rNrgZDU<*9v0lR;k&vv>Y^%~{A^>Pz1V-Cu4 zSql(JeGM{=0R&D9-m__I*S%(Wh{(w;@DgT$jFw1x^hkrkk|Z5ge9RxewI^Y@fcn8J zj2cm4QoR|)y@s+=ivK=Yet-&QTJ$`4cW^Y;jeX&QI~#iB-0aAHo@c`ir0KoW(@M^_ zWRGYK>fp>IXkFUS_k`Np+jo0I=W_Qfi!(Hnq6O7ejUIF5PPaJ;qI8ApL=fPEv1x8m z3JT{dRuM;X6>jsruP|OQY%q`BK6>x|d{^RyYv@wSs|ZUFZxBy|FD>;(MA4qgg8_e$UkgDfnFk{3@Cvux_9Vy1GM`GlTk^nEhSTMy z^73kS%LlaA;x)kgT7rn*2Ls2&#kp`rh*UEC_qSfAOG&WHTOvt7#?o^T^yHh4x_)T? z@HFMjvNn`g78w~w)wx#hv`>7^#SXjSO%B0;#v%kYalT{4=l=;MJKp+&T; z^?u`sA6-8}HCD&FNiOt-$N2s4T0;V?UN%wdm7jnF#-oltM8ba1If<^0lyJ1 zx)#D46fl$P-u{c)K6F^F^qwT0;epj+$_sPm;tYvks!H!QgZ032p?Ey=8@a<@(D`HD z!hW+AcBw`JFeF{ywi|FkRM6;bm9+!?uhJWI*zcaggd1mc{45tgP4#>&1S z@Pejs=E3~Dq&L(2d1`V})Y1}1vs#y0yOVx8lie)*hSlItxXHkcK^6+zh^ zz8IgP!I&J2CjgV9W2n={V@e8bA5<$qi}8_=umEB4)KqBFXRXa*6}{@*t@HM=&Xb=& z?~p9H`-gQQWXb;PMx7xWi&1AZB`pg_ZvZ|y_uFi{p52$@1u!{tq@!2)8IwWS4nKcY zMG)al(*w%f2BL;`-3qh1UleojP3gxBZ>F%*B}Eo&Mb%qxxh0Wx-23zU{I|H~WqGU` z6)yY~1Zwc9N?^YNF!4&2yW>yEET5|bo6g!Jf{KX*zMi9-+Dhpsh$!Ea^)eWK#YgG< zPFADK4FUFl32kqOM?^vbMd2dhvS5t;igrF8mRT39OJQ2Q`!QC47GZv0Vsm{W2tp^~ zcP}%>rq#m3*jlPJ8YXn=AQu-tS*TpPtYMhWrk0zkGpjL4_-Cs4MyM?e?c?)IN5>m+ ze=6|%l9i|S8JadIs4Ocg!I(IiO!JU9{Xq#Tx8V0FE=dAsyI22L9$e4VM^X6xnvj|T zh-(h~P<~G?a6q1~HA1DRrw-KbLP56G0;Lt7$V4T-+bjo&V_tJ1B8e(<8}&B4pEn?D zcbW*xrZP0z>caOfysPx_Tl#k57+OL)#w@*0fAvRdUR7n0R186n4cbfuCgbYf`xxMv z+gO;PB7?B}qZEos$ zryTXCIgo?Jk#w=fA#O$)^)~y}?KzR=B%1WDbrJQ-|uVgr}nNQ6k^{TOAN1XM0GZtTd zJPG}AKezS$-p{=GA7ZF2;MbEd`;C%2xKt$2vsm$_(B;N+z{4wT*jlxh&fTHO6 zv2wL@9w zJPTB>)I{D2>Q>KWb^~VsfZC!Bj&s3s*&?Nm8-IWk*F2kel&MOKo~}}DKDU-_m|FwY zdMonsvL+4=pUQCaadA}c=M~-sPc#H^_|W4a(8&{1@q=QLyw_ilLC9+~G@Ns}H>h>c zo(;dl_Wx;^gJ&0U0RVuZLdwW`(>a~DjtgFl@4sP@5G%*B3cdm>i;sD@`hOwxF1)b? z{8bjuGYsk4&=V{FJM)c?rWAv6aKGf>!sZ|S-&RP(Hdt3g^<_VfgpF<<>h^}R1tT8mhs@bRAWoT2G?|#4m=H{RY?HG4B6$bXO zXV9)yB4Kc`8hTR6Q=*K?lg%EJPkC`Q!fgwgudk&pi!{d5`(D=HfCImF-EarTSrH^wt;(rVEwxrN$-XzobG`Qfdn`~T z04^nDnGlf?S~CiKE=F4jrx_#vbik0bNOzGfC9RaVL=^UVxw9c}_A)juK$|pwYrX!j zT#^657L;CO3ASp)clPk$zU=&FDsFBLnVV-oO4oJbcXVXcJ4{P@zN*1lDuh=ak6iJ1 zf!vmt$9K@nt5q3c+H9aA6Kym62_xWarRmulPZ%okti$HNtn7cYlHvSN5ms0m6fBn< zUDvEC!h(qusr0d95#$>-YLq+b8U-W3<2T(EHtI1*_vB-g$lBX(@T0g zuhL37ZmqmQI4A+4)377)_60M~$lFI{2vBO(x8<>5T}afx20fB(s9ZI2^1>n}4S?n~ zKeE`>)Dfl&oiF8(e2~P|!N);{5sdI9Sh++>IYPUGrtVb`>ZB>ORTacS2mQ?XLUi>L zZFXRC4Zjj4FtR+qGYk%y5YcCha~@wtu|%3B{V=sVGTcy6k)p4UgHx(o<60{_57>7FkZB%Sy#`6*(}f;gMC97gWZpMbTT11 zA!Q?oY7$bA3P-YeDhi_*#pn|U6n69*%wd=m9DKL`jnr~A>H-gBLwCBOYTFehXE zPr48<)9fN~gJhyQCeUGxLbRMK=mmZ`L{Co_n3e>gc6Mqdr>so& zwaO?`3_g*JlhpflPeHr=o+}~0E#~Q$d~f`)DtQ=?B}AJ71Z0qK^+kX9F*OjH#>3{Z zDsR8qN+PuR>Hql!r8Y9N6~?;J*Uc;GKiHZGHRZm&ueZ0w!k z0S*Q>R- zF5p083>29791&!jt*_E3e_WY zpy9vwS>_)<9rxxu@8m>HwX|)TfCutJngJq%8A+x9wCVs>_9V zhge__bYZabkV%fUrCkS2oV^qo8`i|eN&6pgAc>1>GApea=rOG5KNb9O0r3%p^sR4hgl3y0``O;EE4pi6m-j zQV-ZX2=3sZnSNnG)%lB|yJvs3iTikeF@8AH(e5&Zl}y0eRyJ}ae-Ue>AgCR=~xw4`<2z)o#r8-}UbI*46cgZ?vNpITWKawG) zS^xIW4w0nGFQun^3iUx_6#8&;8}DTCGO8@5F=rBw``F%l*%Ju?YYf`+|jp?7CjSli;zsF zRT?D69K`d)ueYNKj9^<%`5%D`ZX(R6*%GZS38`yh_#A5R+u;^0{VQskQ&msZb&2Z| zCT=fUPcrp2p-yvTqWl2YRlvnL2~lVsHB5Xr=5*=zME=LbW@r7QAZ?J8r3}p>NnR{I zyyf;JwA1c_S?w-ZaNH{%$+*(pt$fn#!1^;y*n4pFXG`g2+2C+c>jH^gf*>>~|mE)?IxEW)62O+I3)NTPn;GH0`;MVmawPtdtzm0JW87S%~<5cSj?-UKBbu zX5wN~z_#)0Hd@C4I#>nHeN|Tf8JXwtoIjS17E5hCKLQB?>7Zh5bJZ86q`-gweg_7t z7=KF?)?)v7@a(Mf;eNr#p!p@p*25|4H~MVfYvd)I3onu4fha|@2+$XY zt3oxLhi*${?BltNQmdieN0S+>CL`DnTi?T z!?~MOsUoE@R|T8x{GNs-F*HAguQu1}P?N;lqBm73)u)8>R&2sMXuc{U&EpoL7!f~9 z$JuFPwWHb9beumxj33;mE{02OHowk5VTJIRcIj=ouD7yx0rR1+B&XFp$FWR*`U z{2hLv=V(KC_Ei- zXC2m~EM?C9%B_W`RQ(GUB7SJ7JvjMdsrYOq9j>PB=(}JWSJxm9d~{SQ0k&s4qvz8E z#jIA_3C|#d7S~3qjIB*Ujp-U>ELNPxLW~t!E)wI}B(2_p2_B|T!SX1PYHjF06zv*Y zaWE6Rn8V0}WHCqIGyea<5efv>5(PzCuASbUiUcm^$&2=x z3M{4cp1C;{DeG7p-dbbPAzfY1CbDxoG7zBJe*wJuCEd4w89Um&2p^|DO4iM^RXj)n zS&6La@+xwg%X(`}?l?2hngs^t!P9;w8(9q!_(ya0svkyd zuR^_y>nOH<6}yk?9dH0D%!xF$o7WWmwbhB0ie-E`*@@TWfTiE;qb|VM0o8dorVN?M(+vk!x z<#=v83U;e0WN#mCa798?(ns)d5Y+xcUBJ7Nby^p|vnE|$FUP-G25*jvA5ae%=}3zn zI2I>22p(&KsZcM6N+d&lTDro$nF|+4gwp9u!A#ll97OJakJu|3C+*dqj*=^7B|kl2 z;?)tza&wL9!@xeQ=8e#dx9#s;M1;#$i3Zq%!3sNvIyESBy*7*Q{y7B68NA8( zxLcnr_yWR#8@Z~1g-@$?OOiWtN=g*`s|3t?o{^Q6MaBy(v5vqb#rAwWTGH#Pd3Alw zDXHPxdU>rBi~H#?n(=ipY2z(qaDv=&yrEkP1ZRa)3HC-IBNgU;18{${1-spZU$O=z zw$UD$`tF@%F8HSN@s!5RsQ{L7ljG7&xP7dF;9Ei8%!C}MC<>_2PwajAfxLbA4y%*cg|F15Pna2G<_+|RXEERp$;`yt zH@6D=$xXixp-?4#ISNulXu-op>W&7;qo{FTX-P=!W?NROZ{12=P^5nF?&gp|=DTvh zngt9Y?&j2KESuW?F6ZTb!{XOCrTXRaA^%%h*qd*}g_#Du;fM?d7Yx1Lh%xG6tZK!J ztWtW8RQ)m6p{91&%vHCyvnbR(z6|zwHi1tsbkQtCwI*vTb!w`$^MgIZ?(U8Ajz3Oi z4+dHQHKu7f)WyYSU9xX~?cct?FBROaM!^Or78`qj(MDV~)eiWxy7 zx{w=5Jo|0SPq)({=Z4>*hSLTrU@CtLi;tIJ5EoHfge4}h2xf*s|3xP@>0s8ir0DVh zKgyBPU3t+@Hv7pZY$wuu_~Zek2z9$uLl@vEGrT&!cHB0PtaifZX0~h%6LmHQRi1nw zUJg6nTvY63P=C}kPoYxeVO>jo_>b2xH{RSMm}v31k+sngd8Ph!t-i_fY1(yIklIP% zsI@Did)@Dbh_K099!xXV$DOCH9i^*=-y%Jg{Nb$J+o1leviped)$f;sJkLp`Rwa~X zPH;5KO53}y0Jd@?&fGt)(6;fK&QiPJq(lq~@*nxB2`OD&e#?&eq1=}@@U>U^R}311 z)3x!+2-$fc4up!U*!wn3|)NPL=jegFH z6*WpC3tPGUbBn`!s#)`Do!`T#^3>TG+94d77zx*{#L<@+8@Me3uFc-v>UQFk)0ell zebU5eVw;#OfV5XV%K31QWH<|*IQK0|_B>@5!Lu%iBKymU5LR=dFU@dkD61+c|AT_n zWibEo)%hd{R;Jnhg5RR?3~3_4Ipv4C$ZHYy{ao!fS3-O7%kTBPL1!Iod?-2t#b=2y z9$9p(zfX>fTBC02E6` zkHksqPj@5`p9s`3I}kEeGwck5_|Z`rd4HaW>V;c;h@JfZL=qeFN6b#qNT-a`x|hztLv@tWUDpRmjON^~ z_=L$*q#f=y1h7zdfb5zkH#sFWf1l&+Wi2qmC_0ex+N+?MD;uj$(N{iRe7w-dMa&=;}d`jTp7&9QizWm1(-%-L){B9xE`FDG;9Bnh3s1Ok+_#};t zhvtP*=3^FMh!w(dx*|Cr3^{y3t&OkH_x}WZjBl&+!+c(kXbr4c!ER38-LPvpFSMGT~=QMpIk}e z&J5MGbzR5}N6E&$Bo!f9BsTk^6g|+k2L~TJuZ&HfrbU8n zOK1L+5TfLF(rEYDC}SNNkzt6H)I|VUxM{!9R1vkMasS$lnWO(c_Dj3no*rli)np6l z@lV=$TLdQt(apr}G%Snr;ObFh=e73mr&O2-(P|rjKTi{FcU}1HITDCm!g(D)$&cfN zY#mWSqVKcR)E%uUx$uh` zk&E+62#k(SgzKh7{^N!a7ACAR&?8-IhPs@XH(kCm|Me?oR%jg%@VeSFO^ftkWsk;h^$|eX^W&+xD}?+1?+h^-rWM^zBqh7+5DTT$b(U)$ zRge&Vd!U$bWQ-AmU_uriV5EWZHE5l5E`tOtyS*EPr#vNmv{BM1`M|fx5e4Dym}cRf zl!D!gmS$Uj;fiSzB`T0k_O{49icOCdO}$f6e(zHa!ekWA4-@3^P?jDKN?}UT+wEz- z?|b#Vhmaa}*4BC1PMH?GI;2Xsh7o%Ih2?R2C|1bU*ImI%qtwtdE11K!Q~dF?f6hKK zDjQkdN!b!1Y?XBIx_WMIZux8P{=&q$;b`~uf3c_>EjGRtt6VG+4)VYExtXOJfUor^ z51Y#kM*!rA8-MgyIzMvOM#h5SK?*{ z84Zlz-&=E`(ussXqP(j?W;=3*YX0QF!6?FkV+aHIu&eFjnBxE9XxpwZxyH4ax=F^) zT$IbY!sSGtQa$)CeDphM=D{L%AC*xM^VMARL#-Z2z<652#h}Gtvi4q2zIGWf<|kfN zRjmDas=BNVjZBaPK^lxnTXeO9%gE-vFEf#;LC9GGE$C;C^NrhCO>X3D|M-=E^D-v~UV}7ZbA>#1EYRk{6}ZBnkUP;v2>Zl>-v35e%`Dphzj! z>kB`xR*MRTs#_pC(EJjUm4vMmMLsIsb0U{vyjH?(pS2vU61lsMwU1K{3(54CG1>Q) zfkWNZT2*o9>{_hV`5)p1BV>e3&u7@6a0I-tljOu+^6m zu9#qPhBHJipz7}QEK^art;M*`VlBt>X(nnAV_9n7cQjqBrCHiY3v$4EuH z8`M%os8Un#ywy!(te;FPQRo?sC(P)Z5hq zqqoxykF*)MsiPryVliqT+Q<~xZKB=nL#@e_9a7ui;}4D*yn9b5Cd2XwGg)(^*i92~HM}eBk*jp6tvX ztO$!!%tm`ckxeYl%xU9{?ZU{kLVv6n++Gf;=brxn)kNSl@pwj99wv4K>a?U~3G8aK zhe&teg>!>a&jdR(yWbmQREIlUx~685^yfi==9HS)#Kq~ZY7<#kWgFdjWNbCdt|ir4w7Vzwb>eR=1*NI94FoR2lKiNWLX%9cH+Sn zLsi$<6jt4|ZXS&@ZgPsSUus!2YDZXaePH?acB*cEkq`2)QU|xnieBF@JUykMZVP$| zq*rOjQpa|MYCX7^&mQhmP_&3XB)4VW_cFmuCJcCuFYVrfJ&8|NA(#0su7dOSpL%Egv;G}Y}F*HTI=1lP*lQu%HBu#~bH%tA6eDkYz_ha04!_`|P z{k&LpZRpji0_o$*Sxr0C-IRj~)`~T% zqMW{MEPFMQZobvQ#-NahR%rIt9B~h9Hi++eIv7`K{hkWt9-(}EI1!UJ)rc^}iCf&^ zHZEL18h&R>dQ$v@8Mb_Et<6C95)GxJ<7#d`R3v$?%l1zpYYzY5MNHzFv0D-FVPl1vZJ=G#4LRoq&G}tAwXsY)E zd18XZO99$>k^FrE$GR15yss~S?wx>r(p_3!C~6xK{>$K z`0>7&5YXyOjW}L%FN!S8bE`X51l9wN+9Ka{_tdz`PEJulXS4n!^h<#<(m@^j zkn4Y(p_Xb4gPT?GfcNs>+SNt(N|=*KJ+MJOYv^g`pceNl#+N6U zdBR01aE!EiWCHjnT!iIGA@8zOe}zB0j-~Qa5=|do-`_i8nZnIM>zdAyv+Z1wwY+k8 z`#uj7B;KF}sbDj=D1$k){B%&%trdCg27v}sR+JTdffjCm;jH|dCm)p4WM=qxC*Qr| z^6o-y)BBljhlZD}HvGZOlbJ5T1yRUW4>>5Ot(Ur%7VLzyx8=*0x}X``)GAKpsOuCO z;}ceaI+tjH{?PAP5 zbg5$()e;IyO^eSqh20Klmz3oR#R57hYb>W<`ePaL{wAh4astp&QL0o$K!!rc9v zMGElqkQ$bWP4=#xH4K0gGdhdh6f_b!GP!kT(6BJsOz1FoHSvcHJOecSEkz! zy+3^xL-j~z{L{ILK(BXXaxY448_8|%tA!fh3-HiwiL^KqvVU`cch~SMa1n$rYYMXZ z_@K=!SX%2DoJLw4i;bE#Betfgv-p}m!qFbQmSjZDzAm-uo&@2-y4zsH#dR@PZ}e~yc%}L&Gp3K z0%c7&o%T`IOvBH>Lcg-cUucds4^O7OE!Ms64N9i{SiHVARX%k1|>GKaPF(2 zRQhz@MmJ^}6ym5_OQi_e;?SmQVgcIey-w{w@(fG@`?gPWm~0KN{$rAOFxUNr1C!}# z?y4y%%NjTwIDw}&0kAegx-vUle>>tTU#SDXV7L+o4es~6P3Yw1uf+6+t6@LlaM@?3 zed=O^hkrQhNzZ$&`&S)NSN)f?Gz%sp1HVAs>+1UIrHtcB%zkC)#$hwgq5X01HQD62 zlK~eafWP_E8R7^tM*9$$yWWAQ_eeDGXYRV>JPnY!R!i_Q^$xe@Y2Sb7(C%!!lXF$c zjV@C{WdHltyG@O>O1}jF?oS!$!gjmvTVw3$)cJveC41K7h&)3*fg7uNE=q0}TuvUi z*_bF=8L787C9>*6B6Id#hz9uB_A~=z9mWD;q}HJA;;aC3GrC0`S>y<&3mD`qx$dN zY3_o2;PZ2G5OL-pIC_w8#yunipdA4+}6Pya9Ht{|%PbHiBD< zNW>+~e+gYrnN)(oqAB^`enltA9hCyHE!K?E)Bno-hQnDFgtZ^kV@w@h* zi9f_r4Ej02T$X8B+|>(PhYZ6tk8m6;G$P_XvXnHzMf3XG3wsKiA6YO6^EOq*s`Nj$ zHAXE#{o9LB@2zt}o=fW%W9_kQe9y`e)@SX*Yb{-%W+I34^k`cz0AG#{$AM$#aUm*B z5S-7`08N8d35(#tc(H*ktlRZL`yd~%FUb_92FmKqFr-;HJiPZi#5L_@y6>acU#94H|Gy&CZ zMHsoP5DRujTtBW~y&$}&$#XU-I$NziCTe|n4(H!(guIo#;WTtBKD}nd^jhXT41MBS zwD22*sy|)B>JfLXFhpX>cZZl5kw9i6#*LM8vEYCQc55!9ixfC8xehumu)rQ&1Umoj zzFB~=RUEK6U^He9Zw{HNSP(OI@+_>LGZ(uh%@gdV3u_eTU%1 zA+NB$ib|+&C1Q!m-NeGwVSf}XL>91N=jz(EC@fz1Gu)i#qgQVO!rQYB`%z%Ua#y&y zTOubr4@Zv_;Z_XLwf}JRfB7}ktltDG73)k;M}YIM5T0VNi+TA*JTkI#(6*KjIy4M4 zujM>RxCNZ^+(OovP5bjO{iT-Xl;;Pdg$4WZW+UyMMpl3|-sD3`gQou61gemqb59sS zzYx&0M7ms4IK!wb6bHHnYTpx8Dvz!IvwOA@XIFlS7wa~~*a;IcVZu1PK4J_L-|1|f zLTHTto-C9of%IeFW8$b+@W#0D7(ecH410AJcBklA?;?R6DPY@rA`blW3J%YohR*fE z@WN{!;e5`+*y}j|1=J|N+$ju$+td(dSUi3yTJZU$2D`$;L~Kc39&+;w?-JjH9_qq8 z_PfdZv-l>AI;e{BP(&3_lj>qQ}Rc7d5<8zP5#zKL|r<8 zkeYzMKVWU$7kl>JM9Vf^pw;}jW}w`Hh-3E#Sy3ro^usLVAFeDdMo4fFmi_c48aLa9 zmu9WSb7$6v$9d7$;O5;tc3;>B<9xL^lFNN@CODci-6iMe}`N7 zrO3(5Kt={FnaIk{M&{Lbg^-6NmWB^@`(=RBWCWpZ3NaYT4uqXyvZ9fF%T4?ryT_{06=F6cK;8rU>2lcvBY zG5&B1SZ`On}2yc{5A zqR3Jqy+@?5iz8v_Rtnr3dRb&4hTKZdelVs{<%P*{xN$oZYW?HJ>?MJuMb_;&+{sW2 z6=6k&>Rpw_fXh*8jOg0Loces>RkZBpeaC4)@6?W=E7^J3d zLs5DvvP(p8a&Sh|K}(TzU?v=Ie}@%Od>H1l##$lAm>!KWxpzZsKX4L}x09LhGCo(n z;T#iI)|OcL{Q}l508N{M{Z3!T{I3^b=!l6>tChlazaLapP@8sl6qJWus9mFJ?G*|O z^z7RQH)8T|@aR;uZR;k)4<9>Lh4bgLaQt`+AtvH!Ey< zWiV!Z9gl|n!r|vAdZSrS@ki#hxcC}w^ksip}2CZ6h8KWXjRLP zeLwSx=Lm&I5EO;SuxaIT{CGtSuhN@1b14$1z8i|sza+wM&I=BH2EnR|bD_0{!?t#o(mvHpgDHu3? z74j?;sNZWe`qXoST$7F6t5;#mxn#IY3vuPzS^W0iNW8s1mX+d%VRK$Z06Xv289VUB z=Cer1bOMr2AkN^6nm%^$v@ON_1>a%Sv1B;vGjZ|!d0dU&hbgUkVY~lSyxaiTKJ8_U z{qi7`hHOM$JBigxzQ?h+Cir6UEAZwzuUz0_Z;ftEtK;OA7{nxJ!^Xx6cGe0Q9&w6u zPWgnQjL^0G?43z)cU58HM4AC}GA2!2j!DzMfKe zDymd8S_6)p(VAefkYVdb|iexZg;bzQuu@}PJ|LA#~UosGl z$6my=Wm6FO`grUyo53C0O~Q}geT2U3zAK|RVmXEl7>>=i%?ULp;lQk5OdBxF);Z(*jqjqq7pr`%9bhNXB0sMP8iNQjR?#TL1|gCb zSrN$cKyg=9C2Hu*>RiMsN=s`wOx`B!z3w*Vwi}0|t=|7#fKz2BQz#&{Fk9tWX01{U zwMq*kjlj3Dgh*40VzYmNNGgY|jU2j?B9v;(`;l3~-pT^X;!>z}M)Q6xA!d@1O4X^= zP^tgyL-=o?Mj$ptiQ6|_F?(1WbL#U=ZfYvjRH3r-sn<&2S;h4)zGbE;C>hw8d<12gk67X#0`22R=hi`?>cy8 zJ}bYJbp}O7SXes1-Qkap0;l{@tkhu1wsVNjEWv=zO$Fhl=hnvxi>{HiEeWhchb3EdG? z|9wOk*}|HMn>GE~qCxn#SoQH#wDN6_I*uLCf4~|fiA;|INmz>wxAAFMAGWR?>I4kL zlm(|y!YVk^z!ee1a<-@ZLi{$Et#|2+CO+Y)ZQlo99lQ+-TRT|XK7>Awt7s zo&r26DDL-(vqrq!v93Ag`Nzr23!WYx@bK`2_kG0oALvk8R0>$T!Q0aVUf%Z?--HF_ z@$!VHmq~mRj-Eb$65oWSqYFGeJ>lg=;+s+wtlYcAH(})oA6Ax^xBH*OH(~GO1~0Zf z9XqYRTYM9i4y=4S4o@#GzAFGWmNLBcVoQwb5{eaD4 zY>NL))6W|WemHtG8SOjugGTe$NGtyYS*ZmVl?N=Wg)*7H{{{nFr&Jch*3J_B2E2?l z+Y+(o(3@z}#vO@?z&kUFv1?~M-kDW^&%gK{n>T+7gRT&hhIYr1y<00~+;D2wDZ)us zK{1Y;zmB~}&SB}~?r2v(fQ#>E2p8bb8YaLkoL$khXKL+Q^?pci*WhOCD^b-IDYUP z(_vCbr8-Xtz>h>!6phE${SYo#-l*6j{JM5jlY$sf|Io? z{5>o0te5vgt14#y7ecLja!(sLoWCP1$OrSsc7c_J8YeGC;c85h@Fb4h5jYhCiA0K+ z>sJwbD;BL=k$Cn-Y^)Iyc`=+=n?-)rj|v&U@8|D*_wulMP;bzqw4?}neK9`$@(YX_ zzaG=yX^)?O2E4q0CXLldN?M1mT@RssI87oTgO`sVJMPL=2hvQIO0^cpE=40UItI0T zZ1COWp0Ks5d>xVU2CogDIRN(^j6YrwtU3+V2YhZ`3X zp|n;&9DNy4Mn{AOSAm6Ae_tOL4FLQV#| z=?p2z)#y>EuZl5q+rhe2d*AQzsE8#ZY}}iRw+FW{r*O&$?l~L3u2_I@UmjM9^K_uW zn6Gwkgi&4UK%^n|=(Nwtx}U7_lKiA5gT@;L!vH1Otb>^T6sevaYAT);L?dR$SifhM{mAo@%{TdCirKR9Q_-~QRL^yJ;5S{DS zXFdD-#Kx}VI0d!Bu%VsdZ^zFK=jl?-%Nb*PHOACF4RP+u4XoXFn$>F(!56ji#A+t- zt;E@{2co@;2=(t;8hF{Fc~u9D`6;^Gh;X_tB_&0;arKh$nc{y-B@J->`e}Iigu>EN z{;&M{sr)i)H!Y_3kAE+a>q<^`4stU0qETbu;zf4fRr7+AQxOy3GUVg{?YsAZ@i99M z6$v_*Wc8+LWd?3~v5Z13VByq_oEIx|$KWGpVhw61|AYj@*(WGqTmYSRF{e^UWe2#nB{TB6C6bvTr5#AWkxO=-l* zpNFHgr~vIdHDXOc`G^H97E6$mm5zN|x1n`wz}_BEsyZY3))myM+Yq`Z60?}vB)aw_ zLmpqu6BP5Crl`-)K8hwyfG@ukW864bkg@y32~(b4gGWH6EH!<24l%j#SRgB}2>VY( zVE@r`STwdX-t5~9ZjR&}$|-Mf0bVX3>#`f#j$-2R&_=91od!#5f4Dj+m~b`1y-qU( zh!Sx4w}ZF_PrTGE0L7}u^JAmYQTBFF<})9&%~PE`~BS20#9^8e+eB z2(PJwx_szwSg>o6nw$WwI!6$+c6L$}7F0oAzB8%@1VOKVG6zZ>uP4#@B7gO$YZp;1P5sF(+3-o>e>no{FTuD zuD|bZIryvX+LUI{8(`-hfW|e*a(xa`dl%U2GO_gIFL5T>6h%a*mLj-wD>SuF!iVpj zf~B`7JpCMzy7p^)a@+-DziR{g0u3~(Qux0(5LGkwV*S<;sFPF9&Q~^W?he(sO6@Ec_#EnhT81pOf^JW7qqHP z18q1QPI-sIp}pKG45Pc(hr2bfYWFGJNzF9*hd&8LRsj&p#YjKB3R@25qV2oG;Z~qz z^Sd zKGiTdhvAb;Kce4_j}R;hLp4z|ba}TBi}o$X5N`>J$^V7r)4Fv)YcDl!pG!uS0B1;b zdRTh|LKT~eWQiv_23iSLd^!f5O$a&!A4Eq{efW#oV(8Z;cxTTv1nJnZKV~ItDF=?6 z(xZRtx;(-Hhf~4ub9WTn#^$};0yl2P;n!`)pk=*r@?jPHg3bA!Kg5tD4_6NDLAL9Q zc%zv!iZze-RP#wg9Uz6J6g$?gM9mPu#|LnAeH~l3Z9(hsUQaNJ2wh#O_-T3kD@}Ka zL?XwDqsP&;E3jve1Z~^WESf-UtOhjnsbjBx&^{-FFX{S_+ZJ_JlQQ$LY||mQT8S`s zSZj1^5-fxQn23vb8VUh%+UJrGN3b3|Tf#a5 zW%rc`QX5;?TS-jiL5Jdk5>`PzUWG1a^~`}Y1#q_v!7E+rn^QR)PDSNfTspp7dkj9F zo~Tvb7tZ!J!qnKN$$ZS2o&zkTtaiM!3)8#xgJ{BTEF9YwMy*n)7oR0GI9AN+@1(dG z3=Xe@Awz&!vqT6EPDh=3jnQksID~iV2Pa2IXtZi!{0-|T331*j4D3Hm#3Rf>!P)?t z(5*~*-wmZvb0q{0(CIEv=E2k%Il(*5TJh^HEfof$rU{@x~j)s8hQGbcTUg zxL_ONll5rWq&s@|dzo#gVudk2gh`ZA_XTn{TN zVAZO+m^A4&RH_m*Zw9pQ@e-V3*$;&qd zw*tAWf)BJ7Ng=YhhK;ihz@u{y)C_Qh{uzpI2@`krjt6kxX zjHXSU@y$10n7{A<6TQun;eW$L$N+B2A9w<*mLnOC`?80&!fFru}9SB#Hn8)-yT_|#hgOei) z@^bJ-|4#U1`Wv`?<1!Q3z`{j9%a%HH>Xd*96SAPyv_bdoB{+KY7x??n#f%yCFnh)u zm@~aA=Dsr>mX`KVSX#5|@%JGmNm$b~^8d6@L@ObHz(WdpsZ@q@XU?EO{an^T01^^x z;OkogJ3B45Z<9kJbB2GlU?%RL#TkBd=xfsx1QOm#jSeezoWQn2XVEpx7w^2(0)1N5 z65{G}o)5SH=Ts=Dg32q3jz+}gpAlB4 z7#&)iZsi`h#(ZW_( zw`sEmwd&VK^;-4I{p^=?z9 zr_TrrF%Tb#l4kueZ00xwiV7b)0@NeJ&JVd_&pJfFe)D;hM&CpAlri@P%4(dcwcc$LF8O)Q6vwE_lJF-o6O=s|Kfktq~7 zx@RlaEL)6-vqw=q2pBmE2oEPiMj;cu4Vd_z3O~O=zgw`C$}GgjE=FPD2ZE0_HI0^* zBy?S{VIy!S&JK0!#$nVb8#p?S#F;Z5*uLXD;^T|))%;&jJJUBVMiGqS7 zxN)No)M|3;=zx%r&sf@JBqlCmZQfNubcci-U;;M}ad9KqYq2onWNNBCHf{35$&+`m zbZHUG-CN2dwX=93G|vxGV{WbLMCFf?%VMrUPXi{AeMKQ35hPBF!qR%?K!ts7(F+)=0&>`%3UP@!|4 z9#nZ#)46t60mi@34M9GR<~1A+hx1oXUW>=7gI7?Z(W7>dKdN}S!okK$c-&8djs*Gh z3{53Z0~B*I)39yr&-n4{4}|o-eSzuI0XMf$`1?l+X?K&9GzDpC^HEqx0~{fQ_4D;z z0C#t$*zY1O?IV_VmN0WN<;ltl!t1YV(W+G@+eaxvLtWwHvkf1-|0T9;yMifieTuei zJHv)u1C>fCT!Tl2W`)+71vqu4)M^73emxI$Ykr50oq$fA99f4U5Bv66pnF#XI`O3*^>!a`_q2tv>JH(d%)Aj zO>j$jj5?%TU?Gvg%FYUw3OVHWEHc(3f2Q$h?}LaP)A_4PgnEXeRb4-GDu=`2+#g?e z2Xt>5jFz>0k(8E&TX#~Bke-LE{9>U)?__T)SRx-s2$pv!8i`6-irpJlVBX}hIJtid z!oq;hKL_4;qdpU|S;)x|v-aK^3WWy~+NQBIIXP#Mmlw%|?HSmy_CYQeu{?H6WOsl} z=E@e6;X|)iL!+@~BK;r?hJ5y(?NgD9Awy{D_bS-A%NjAaGMLz2hCzc`qg~s!`1R*K zICgv&JNI_*^{*yagej)`y-`s9X(2O=>AlJSJ13_Adw0%8@80>?wF{_Ty&>AQOT_Bc zwm5u5jj=O7f}5ugJKm=&Y{=40Gr4N?dfZORMAYqMB&Vb!FE<iA*uz?NuRubL3o zo>RHu7I21y{a8{GQZb^(4ET9vV*df)=1t)6VJWU$VcmP^QCwWide%Ud0DlZ0+XvlW z?8qu4DXZwzra~$R77{UXZyv_dX*-Z&t3a722Z?fPxdk+hd*R!0^-xq=KK$Ov=P)r{ z#jb}PruAJM5gPg?yQrCs_9AP!Ng=3WTSd4+~u* znv{pW>xFYy@%=ZgncxOmx0Yb#N*{LI@pzSe-#vSP(}_ALON*XbCySz(NF)}5Uw1@w zJW{gqQOnm6)jXXL;^)G{2Xg)b7vKyl8%u2Xc{@IOYXN4=0J?OMBRAIy4IAbmCPsu6 zE2Ox7-5x!9l9ddGk;Mz4X>#Io!Yf%S9`9*@C*(1~=&koi**D3Rm8j}Mxt1Rd- znT3=I@uahuK57}n)0Sb^TRzAudG?P($WmpgFk-#A;58<=d-U?cmCLEPaz%z$ zhHD_TX^hne&;F?v>>{RH`uXRnd2=#@Nos|%ohr_ua+y#Y+ zJo+JR_;n|4Ub~G23jllj7cg&bE&TLL6xy^lupYb~VPU0MyjYID{cKr9qQ=Fu*;ut~ zC$3$LL0FSe*x1^&w=3M-o#E=?0&mt!Pd~j2tM|z8&d+_|&CUr; z1N^zYLj1dUDvw&6gtt^C6C!-9{rOvrf3X8%qpzW3M?E%elH!FI8nWXqK}yO+hr1qG3aj(&%gkq%p1OUPtmD3t|FWIMvfCKOVsy^v3*D@9foZNG;J^kOI! zN}-JtiMqqlv8P~(HbFJEFN%v3n3#@WBkrV}}`2U%*>a)i`(v@b+qmHf`c@ z=#UtzR_ift=7;bP3V~kt}%a+M-?wkbf?iPrTFTsI*M(AOM*QX9d_kkVYMWayT5$e?w+oG4`I1L2ODcjO6=f zA%laRH9TGH;o;&agpLy?iYW(17C95Es?t)NIJg5pE&LLRvDbvD*k5~1hR&U9!Oreo zCYbv|rHW$0cP?ADLap|Io7Y9Ys)@iqPGwk8E>=n-Oy^C;OY4> z6U4quynn*BJIeBT!o_78OKXJO+{MVuT+f8I8@#>ez`>y{6X-{foctDBU&`{fgR}D_ zmbM&4MO&Fj*D;YV!8hN8;Of;3)T@_;@NgrVH=l&4C=V=Jv>!U73%d7w1x=c_62@BT z{y{iX$3v$RBfNzpu3P~|kCx-b7oFJmPs97~1Hb%YfmH`D!`m<5Ur)eOCc4SJq)17E zI}hnO1t?|Wo7zdaM1&@xRS;gknkh4f^9WRW0WMd_aPia?yx#XMj2Qz=nq-B7g0=YU z%datM`Y*!3#BG~5BI4Xq`1@YPJ2Qc_bYS}qOI*ETWEGB_RaynuzaOYl)epnQ_Qima zFF>o&Lqj1{$~h9b9GS;{#()?1V#KPiFtVKoJML%uD1?kow-QQ`lH`PG1KP6+oL6id z4(I8Sl$noP$vH^O$VXyUF_N;2;qC5-AU{u3^>l^Ef~>u0%0`XVgkJ(6W^1V zu`QStk4dF>K@qbb z+kx#TarW3ny#6{68rl?BB76`NuSKV>J=hOei_kiCQLkZdR)Kk8+LQxm+5{LnM28x| zIz&c_k(8vstFIbx{74@5Z9jvvN3I|=tOlwCctdaYDJ-9eAX8Xj=Zq;hZrK83$GreI znfjT!pHSmaT&lx`2nk;4)B=vSyn^F!I8PUQYXt&4olrl>3t>SXXj;PyM%EUbx)O^u zd(R;?D-Q;d5ia(2u(Fg3kuL;yM%ws4w1kRS1*uW1F}iO%#71Amq=`m+_Bqh9rK#>L zDk7JW8?d!)z=W-XuuW#>P9!FN4~Zlm6f%&)3u-hPCXD4wEQc^*?Ih%*hqeg`YoSsd zVq#gv(lvs`zo^Iq4h}tkkCs9h3{I@wTgA#tV*AYzVuF{J)?yuiX}|B6kjsOam@i=a z+b!q|M@JRH!t&6#aVgesY=z~&Mxs`&i>%$fgz)yGU~TD#$rFY_skTP@4&hL%wZbt7 zt|#pHXtA?*!qf@lF=KiXZr&8J-!b!SbUBn z$5JtI`e&$9w~_E9TB}hD@y!eJitx&y4mfr+9$$SWW+GpLi4)bBJ4cFTKguwF`5H88 z)!{F*UkYN|EVyZQO_f>$wMK^$)}cwy%12UaCQ>qU;A(G$w)Fzgxls`8SVxS*`LC$d z0-XH6^K%Q(rOqJq>t~vvphoprgm>zUuNLotorA3~*tYpM)T*%= zFAoE%Rs|L>mLWD)!73#cVqy$9uwMrYi7nooJp>(lwuQU53sj|Qp)!8RRMN{fyijS)C|^m)d>27(E)aM$=Gl^BN9^!zsVy7b$W6RtnBvPeQ4d z>U2o3 zXxX|wJ7;>VU%dvg*WbjraVmWCjThRrGoV|ybkwhB51FkmzWixD+&sJl_Y;a2PEWb% zOy?F9Bd4GQIr&9`Kev(fR73_XyB0cBadSZPP(OrLbr+72!+9E1Y8MphRUhAX7Ke5m zN1r}G`*sa+{f0G;pG?QFQDa!erWAV1cQ0T+Wu0Dw8o|M6)w(n8Bm`jHnj1(+$iuX0 zdeo?)#+^G76c$O*s+AN@4kh?)*#(?GevS3sMX2AjmdPqYCh}*ASOJ%!b9jB+P6Uj6 z2cx>%K&N~*$7Fh9Yrw(NMQ9XIAK?v56*Y&$;gomC+Fi}d39af@MGGe4f;=7JVk?8p zsDn~fisbYhMBGfmxu`f4mMEdok}w2Z9PL<}Vqt1mggWrSf}92*mKGIa{V)GR&6)<* z=BN-Kug2;%E@sj8*u(VV$ zfgH$0b1oCd0W3|<^3@RX5xKb+QB)Mc(qftL)(B;)RJ9!_CpgbbuVrQ=(E^ zz@1ziFrdvFNQu3MMT>z!gO+0a_yzFt8;_yGhoQ8z#GLc~(Bm+<+!FDziP*92XYASW z1-@SjCd|n#1*~^&joY{7=-Ve3vu6WE#XxBNTKH=Dd+@F5WsV>IEZkB=klIUd>$B+? z`e`)YjXa3{4tXejMjbGT#E7Hk3*cj08-v5^m{U0%4yR&6E_D=lyhNoz9utX?@fo!NE{Ex!Dc zEZJbf6m*FT4}quWIHab|XQF=_6VWAbc7BVA>T#@`HOR@C!SYcDqCb3n=dt~r zWrBV#6pBbD$}L&mbxZ_bW#au^mS4t>r3Zq7er5R;tiv!HYV}%HRvgRQlpRMKw(rjb zVQ(~AAU4*4eXpv>$-9V;KLq^zXprYCIC{hbAAj}%+ph*om!u&sPK@2V?Xh4%E;ep( z#oN=f&~ES~xYuoutgIZNQ&cO!9l=#x5a3}ixRcmg%7qRShf^M?v;v&`!E9`;P{*kq z8a4oy{Rq^pdl`;SZE*Th0?WZ_EaSsjgsD;v3{yIcODzR>@7BqQgpCLUka?*?Ntl}n!aQ)L1;$kUmGcRMph)-~;{uJC=)EudK z&t^tX8LJCVMU=o+6oe67>zh+K91iFCCov-rHxe>&Dk=#vDcOQgvX8qf6Q*(|$Q@y2 zserwWr7$>w? zt2nuukQk?kB(}Dzm;fJaURy>X3JP9Daq)Wg3fS4PI$9PCSJ%UAdk=FS6S=uy=ju3XV$-##rA zRt|Xc-J$5vs})?_oP}xapPGL-iEx^wORq$3;j;;sNaFj-%@UO4_~Om}P0gts4u?~D zxs{ZK?1B>SXA)9-C zH%KJ5!g{4Lp6%-=R{jU<*yOA{HFP?6Cd8L9@!XE(GfntI%~@gLB_`DSv9x&MGj#yu z@}Jp$hq3+sA(Yi>68~dZS*wN5)~pDX${t^TZG-DK#0aaOD8xEawwlOTj!0uyuCui6{B%CEG>Om zxwDzDPGakm(YbRGLTg$xaczY?du*7%&tuyH(a}}$?z?Z|ySqH&gC{LwY#MXZxxY!sB7Od@b!or0X*tIJY z8#Ww3j~>@Bbm%;+S(6W?Qpw8UZ3(C1P$?ay=yBfJ!riYm@7Tg&=0{ zwuaMZN5^#54$en>d<~?hf5b$2fq5^K$A$^$FX8H%2^W_(OjPSwSt8`+WwHJI(N-Fb z4on0$X0PPmoyPLtVC|QJiReKrt+qKA?c0&H!5^}BgW%wh0(bWVu(Qi%c|Tys_q8Ct zP5E4yD1V=QpPfw1Q%rROTDPVsDJyXB;6{Xm^uW%YlX31`K0H0iV$a(WPQ{{93UIN+ z0#`3yXYZ6k_(7Vj>*56^Uh5C@WT(#Xk>WxRbcO4lPii^Z4%et zeyc_8+D9;axG&bMsmjE)f(dGq2rpYmh|@Oi?pZJxW+64TB?=1mGJ#!e-V5b(WrBDQ zTQ7>{GZ z{Z}L=2C#N^4LiOTEYCdF26tlXX0v?tS$XT(eoL8{k7AvHNyyFZ$wWBq`xCa$pAj4T z3+n{*W1RpcJ5D*`;=sP!5c5%TI2DIV=L1f@+NJD=yW!UzNQ_O!tXWj?biul{w@|-H z5BU1|v#vb(f0NsZNDwrAb68;C_jR@>Ta#@!xhC6gGAG-%ZQHgnxhA{GHQD;z`F!8^ zdHS<%=bpRIK5Os2_S%2g6h!Gt9<4neKJ>OPq3KnS?zft?2yi(OMH)*s?N1tzQ{L?{ zELE8) zHW}w$?CvX%t&t}_^>~svFeLt9VeSqN-_Th4yTa=KHoAde?0#nR=%w6y5g-NkBX>aMVa zT`c<_2u@AB1Rq2j*6KIj|3TyNPkyFONQ`Ci7szx*n1&q{A_xVCzT@)5)Mzp%0s1I{ zosdck6i(=N(96lG88EQqC0I#hV$bN}6AAnZ<`LXHp5J~P{t^_zK!5$62)Ri(x@LyT1UVUav!=ov{k|@ zEMS9lg?9xm+b;r4^%(u=RYjD9TuZQPt`PDMpD6mjYK)@C&|^#xVx2PMO$Qa&a~=u!>9 z<}X+R^%MWpR91lxFPuXk+;AW8HRA!d3Ub5&zXSnqv^tk+a1OhN!9Gy&^KBRGY)j<6 zQr6x;Au~T22KqpMnG1&r=u`7hA5k0P?n-oWb}#|6)=98 z-ezU)#<{+3CQj{z*Uq?BZplj4pAbmQ`%DRU#`<$WZ}LiOILZQkaw0^x4XfrNonlAp zc`-4;>lXw8O|fzW|GaqWrsl&>(L&kq^IVggR-+vc6>pt@)2^qV2ZhrIYpcnejdU{I z7*PJ`+v)dSWzGoV3ssIUQ&ChHi_Nr5mfzBgy0CI#&4+KY;>C!>92K&f!yc4~4%X77 zK|n7ON)<*&FCqOwCq!d-sd+$-Dm|Huu01p1RmM8vV#PE&X$qB(wrJsOfQzfu4XTx$ zll(PUk$mJP*LQflkan*25%!MgTQ>Mkb?YA)YtQ~^weYYo9qaWH|H@AIkr`Znwd{;~ zI9Wx8O{FrsyhUvL8)52zjZ*`IPL%&LJG*bo2skY0m1@0fQ zt7k2@#fAFm%T%`NTI390Yo~8|eobJTPK*4oF*ul=%v{#^P;il%vv(j-PhHmVz)IOC zj=^^)(ryLY+WNL!Qz9p7S`y|=7^Tq`N7|}ku+#T(-sv4>`MV+=?$DkFC3ym03QVVR z&S*KLFyJ-3k+qVC4tjqhSdz_pF{0Y@3D!cxoBYWo(js4D*SEFqzDZx`Z5x{GRk?9Z zu9~L54t0=uzdP5S{lzAV;E2WvrRQBOnvnl5({4?0Z7mqBdX0aiG0dUN6IkxllN!pl zulhq{01u5=u?IePq41y|)Bmn>>c*c3b{gFtU#&tnt`9R&Hk8W3$w;J)GK?&g|0FT? zzG8`;o^dnKzd>cjdoJ9yeZae>{<11VIvKAa$z;N}*3|8{13v_Qo0p!+r%Ulz=IM2L^yA&L-sM6ISR_Wu_pg1!GB~D1Cc?F}7<&$$p6kMzmZCac z*!}tWvnND0=oRtf_P}UeO!YTLcxkMqOkMd8*oZDA6&(dcqjwklF8m>A?O z$cz~fLX=u&lqIF|{Zn&Ukaqq(~#&VKw7o=EE!fb*!13Ad!LfL0%t(613!`d)^ze}B%MC#1ooQqgEVF1kTL z+$F)P=Kh`NvMraXs!@y*n&4e4y@fOVHJ9G87Djjvtc%Xv(dH#)q#?BCQ9)93-r zd15K6v-YuHmEe@6#rF30p~XMgezm3^z?#+q5r1rGqa(=q`62V}MQ}nw%GJ%gFm?)Gg#jC zZ->6DTWfoNt0RPl4paqsulJa8cRJ(7woIPSI-4T_^%8{V0+^7{G_eKsMMXtqf}G-Y zOS$}HLKxd7{fvC114*?OnN0acUXz=A%wq>dqSd40k;MSY3xKq92@OqbcBcn+#6E`| zm=i3nvdDgS`Wu>7Z8qs1$SSZEmPmyqZga{mC1%32*&^Tz<{+vs{{kc;aT`q`VHy>{ zmI7c(gNfIXVSjM8f{|3$)$v3`vIgC;u;JqUIqD_Vn6Ffst7p+S6Mn&8zqHY5-wU+s z;ieyAq;yRa36-&>tW?*|v(YvfMjX zrr=D>G>gd1eLXgjkZ)>E-#_}YZSUHBMScpCF5}?9z7xWEr)zNn(i&yT9xRiQ$X zISIvsk>r~sarfg^Z~7*lnBMSCXa4P(qqa?3vG%-woLKe`5+V}A;Xmooxbw}qg;&}WsXLGl9xC7~;dz zgg5RSNok#3DhYXbZ`hI9lVdbm1V?3jml+z#e1Vxu*GM2+-sbDb>(h0i`9evv2eA;9 zSP~AXt%14U{;ND~ZYJ9*iQbi&Q%FU0frpH$c(Nro0QK$`;;%nWE~FrQUfQqTG-d$J@3pv&cERa zp+MxfF`JB`==A!;h+e{Eae*Qbz(rx_j|AOPCheSxknH+xpZ{Ub{y53%eRX#C+TDq z<34}#Ad3a}l6mqM>^0PRxUx(-Z`K)k5ve#NrSS=&1SJGCHnMV9YlH%$BAd+Tv|uH! z?@X@Yhla}^-IsdKQOy{e({cD+Pq7R(+Q_r`(kr4QDwHWfWiu9sUhZX+XOkyozz=Zx zcPThH=9t*u1J=U7nf$TN;$4PfHQi8VX`s`Bn9MANvwQGytPql81cpw6kW)|?_6N8( z)s`R1K;}CsQ9!iSlBB$t=JCve>+wPjEBAMUxfHJu5&`kn;i--pL6%OTH6FU5@x#}Ul@ZR2YkYEg z@EOmd&EXd?Y`|$?%odTYIe-{OSSk?O;^iqT-|Uwm+Fo_i)0JAaU$d2er>p7=2fTxv z;TWssPq*(z1*hzS9&7|ezUT0EmzBpWb7(|98egoI(uip)zBYTINlC4>IhEtX-hCmj zaNoeFb7fR0hO4tmMe1+@J)DLF20lsHWR2wT^BNioi3cb^QGEg1Se%6D;UpsFW=87P zKgg7#f7+bM-|_%PZ2vSgFfXcqd*vhedGiS;Xo%ccgXHCXscc4~ih6^^cshs3tnbe6 zc4NYmMZ22sL7@IaIM)|^+J2yx#BNJ|bXVD;%s>qu7%vbQD$N}o{O4vl4L-j$rx{V%G<`T~mQQ<;-Tr6+bXlFr1#MLQ%U#PRz zlol2D3A0%j7#Rq5ce@E<&A9re0C3I-zTTO6 ze)jQr<~6snB4gknw4nAWQ$vJ7%)gx)3#qii-Yja0i-%>iR)iKG5%+z?2245CUm#9O z*mwT}dq`q^_dREGwze8tCb~=*1wx35{WyN$aAP+V=^`*S70dFsWz74lf9n=l2qL)c zhJx`BH%}1%{u_+Z3>Un^mg$Upt8EtB4nT(B2_=&Nkz3|>uHZ?ZmLRe)?DONp7eJ6n zzkvlN%my(VkMzX_jzZ=~Dbhf4!P^nG#U~_1pl(tcnq0z$MIz;Ic{z84YZ#uj7(8uV z1TE`LjbvwfI{XQBz-DiPCgi^>e7`%UFv+txd9G72gPnBT{d0iz)?cvH3zHSgM^1&! z138+c60Y5XYj8Y!Ix%%|WynrZ;`bK#v*JM2U48vsYIVsq}#LK;CGoduiA5B$n<#XIIsF%sA~)4 zFg&A^{~5ZPy_3_>^}Yl^G=xzu^$7?;%rv~WBtV<*%i`v9OZWm=HiMkwp-0eFULAH5 z29qA4HC{rQ5;M};?~e-bu~XGTg*BDQez zN%Y`$c49%o!hvUISJa2XQMRvyadFz&H{WD#2Mz&v`FVM9aVXfEeJ-yjv-6dDWDASA zh^xb^#I@$%Dk0a`Ig+y7HEuohbk_fb+`QhdO@nKoR~7%@XWSUQ=cwsiUo8chdYY=`7=a9WsX)*$Vpv0_0tj2;VgyZ;j&f+>>bK< zdeOhp5t^I=VYp^fV5RGaV9%2WR)@1ybkiao`k$i&kmdZG9?bUxJwCN8{ylehNMD*h zZtJg{>R5%Lszax$7Avi>kCu@q3v&BsVlQa|{CK}yd_oRw@JMM{wJmNh2TErKGFdYr zBuw{9S*2zfm`2X%@$wy!B)$=M4|9~u#$-$?5$o1#QRs7TEvVWxrs$@nh=#+g!s>w1w?$dKG zRm{$(XDJuXp58|HY3qJe{Wf!FQ7X?+g#WE>*)JwHg844nN1!6wF&26LaY;=?TMxxY zY^;DcGA1=SJGAcDI;%GY`NGRs=6D^fW}5GJ9bodrU0kJd*&|r`bfP*sbS{@$Uk9{N zazw(v?BJUY>{2KiGGD!%&|yyLNEdTY{NdRjJu6TodvIx$P+8Ox71as$7xHfFWDF`U zrktM-xZ3HLkd)oi%cz3BWXykmp7L@q5c(C!QdYSe^#&FP<<6 zi(;|1&sXLf`1&>JK=-e^qQc&_ljL3EUTnlKF*henqrK+%3=;%tWk&>ab#00{RN&h| z2t8p@D}w3h>m&1cbgcB=n_267qr|=u7HBH(R0As7EA{N>=Ue{aQi8)AoSZ2hyLhOC zJxLHQa8XfOq-6U%cXy;a$4?yLm-Qyvx#xRQRlcDsD;Q(r;VMR}4EjHZEbMg2DTa)% zc2t}$w*pV`_Ckpo?05HY7OR($?Rr_ELc~43^WjUlVG-n%=uO29FmKDl+q1%Jvz1@? z>HCBa_=9Un%GHEYE87C14PIT>P*>xrL_5tSn{l^Uux=~ArUEkef3rH?pkgOTNplqJ z|1>bOh4*yyT(qwj>$XHn_^trFBMQW>;5Uq&OqadE{uoKd5HOu^)ulQA_GBEwP0y(E zLac$u4#qntc&7U=dCHW|F7*7}b5~ay<*R3$HTsv*q_5CgDt2}C4)Tjt?V&-Zm&RFz z1rMZbcl3XbN@*63O@EvW&dlIvw({gf{L+=lsgeNeMJy=X9zL9c-aT+eToBatM?Lb?8rwL?#o9@p-L{j=ha|k!(y8%& zJfq^T#ts&63W>biZE@)@Y6WsBg~1?b8_0nTJD*(e_2KPh2YW#ww#mCdb7xBmMO}TI z5EB5vfS=E=5g?x?gGe&ir=nnQm%%D;%JxyMEinv6WX5$bl^0xf`;^6R7x9)^uEP<) z9OIv8VBn#|B)d@a3pNVfFDzW#h@zrHK2LzqhvF%;vNH6_N>}uv3gghI{x?(8uPWs% z&=@obB>mZl`rELQG8;mBeBnc0j%Y375!JXvH9$?xa(_0TDGD34H0sX9F*9l`3<_Jo zi)KRI+|Pm)Yj9~PWx5K4oBKSQ!3gLrH)V8_lM{%Nk-0hun2{o$Q7t)o|JzyNc9adV zScV#l`+G{U+~Wt`)5jO=1cJzSzBNYnLXhilcbMo25t%F`u)u{~tvNW^3Uy)S*a-V- zgJSNu|F$7OL1#81LZ05ubrp%N(pb)@&dsgQokNn0%=k|cK%bn&(O0LMcNSA$7B(yNmOrT1qo_>?ygeF*%D3Ha| zM%$CFw^&fL-aL&pt>!7PdK45#{S@v0Ag2JuOKDw3*q~TbVscLtH1kXf7!^u<-nKuAPqDd6V?uFNaBTf@G#9T|7QE|V}FfQEYvF<-H$C(v7j-Xe9}>-f%ySl z9Z*oR@RS-B8$B`>Us(6K!@M>@4q5?cha4L`yL=gVb#)yU@uGSCGc)5sgif( zXw)t*@|l5-e$&wI^J_w)D;djAyzpyF@~Um2W=kS6US2{UpTzjY##~W5zVmaa1pyqB zNAT)R^X-0n=j`$<;2Ka23ig&5<%R$U2iLMBp})vTp#RFRi>zM5Wqg0C!)A*g6)VV5 z^5P;X?TuWy>=XHgvViHRvDkdJ3`a>hF)lUrRfoXV+BzV6y>)kd@bS1LDUh+pe#j4$ z;&^_TsM!){;RC77@s);-?rV|gKXAS(li7lTK`S@hc?qW7YH9c@Wr@q>ys1PDWddqg z-0$e{(CFd39muWaH1OLKGda`92l9e&aIBa8X-%hOWnmy=YeEiRXVStqG(tlnBO_>d zN5aG`WK$!~e}@qg%8pM!lYCX7WX}HHlF!6xC)t80IlHWM&caedOlpLkknk3lt{DkY zkJr$ElxV|2;E8~b-?Olyo41cdF7zgP9d>Ilb$_O9v<@&`*r>nAX4rpRmBS!gMa5r6 zi49L|UVRLmEP~eM$AFC5G@^XI=VlsD-XlgaS)DpHnK$6mYk>@gXzup;>zslVQE`uN zdpV-C*lky=iv08N-zmP4icmTzJvaYo-8VK*{XhT80yV9jr6;hy^NifU@QN~Lc5T)UUa z%wh?pzC7y0H(fOlfbVuhKyGfR9?Q;1M0CDe@#m$d(p>=Aw7PPg}@$4xo zCN3nu9X72fJ?^8_b|oleufTM3Yuh&r2~4*Y&gS88dPC3Rvna%GwcB1!ZvJQPNh)34 zwL5Fgt50vY+e4hn)wn?EwI_|a@M{c_U^z8L(0uf?wean;;Qmnfmql7VY0{Mt1_6F8 zGZJpi=>6%b?wF^iKuPIHQfU!UQEO3^MQpT&R7uH4zwAv{^16%ojE=yem+wWTW#S+2h_OK;SsXntfgUi6lNy zwJ@hae@M8vVj(_|hLr(eO$_rjerE@pPMZTnx%8!9{GR?DiIz6cVc*ST%YFCd-mA%a zRY#c&rZ~|EHK4(4hVbrkn<$a;Y;URh#wq?Vu?wiu6h!lA7p?#5G5Xe#4 zle8hEV6KsFaV)=hL|4qo_RfTOa?(OtxXx746hWIx9eaS2k*OG1dhlE;C1~E2AN2~I zzQ>1kn9ebZP%fpb^K7Nw*d*FXl$RN=q21euGPqx}QF(-cPrdl2x?CYCEvu$P|50bm zNg6O>Gy&+De<9OpPl)vM(?KBA`Ia3Y(&l~}@$>ILM4*6XvE9RfN#7Cua?cLw3nuue zUIX!WJ2ytP^3du#Wd5CERl+Bmby}qBHe!F7VhA}8?cgH%cLrO%s3;ItR-{i5C8a1y zVn?i();4=xU01X%-6RjkTV4}9(Sp_RpvPnVVa~!@eY}*E&a#U`6US`KnENHN>+bXk zLB*j~OLb@@q)>&L4HdK{EJK4U`c++$T|s;dT7iPw69{^G-G)j~2??T=)e914Tk(sM z0{L7f>(v_wIXT3+#!|ujqns*J0t&5ILLuP?oGg55d9l7#>&d$TGk-lRnR`+eO#EJ`P&uI^(|93=d}#Y8YD z=oQ@3jw~V3PQmlOd^+l(J#uH~8W4z+Hkxcg|QIrxHx3D)SEiphD-fo2LhD){Ty0u~&l7%=I5KSyvdsfnass3tB^?X1k}) zs!u!MNP^5jOGrll5=X`dp=KMP7}VxKMxZ@q_`kyuE*6>6xAlRCfOBK?<^6ZflpLo% zo#tL390qRR+??LOlM(puWOzQ>B49ItXt#i{Tm3A9m8=3=Z`Ga)w(=WKR4${FrDhBo zc2mP-oWA1@9%{nWt-6fUc=r?SC^Sk;#S-0nb37HQ6?SO>U*%Rfk=4-r?H@k=%EX2* z^+RiH{FPx|JaF2?H*3g^iH;sxA@j?LqcP718QS5-7F0zmS*M~Cg72Cy zCBb%9j9|)AA~5e?I||OO|Kmu#>n6Ou zSA1l?h|Sd$r_`bz=t%5QuLvTao4v#{!+)nC0Z5f{G3eq-&a`sLjz>D4Va_1v;%s)- z3f1cIF@_Q+Aw>j(2)bPn11teVGc$vA4(9>92antI_oqToQc@izUmpb64L1{0OBYg& zpxYweuIb4pN+EuDBqU?@=HB?k{lGte%1s>QuJewLW=gj1N;9-D1k_X(wVSpiAF@<~ zFL(yVPl87FI9XU8NCkXQU`=x3LI+hV`qo~EFGRXSOR1;~WxWBG3VW* z3XM%^cNs=TS{C()!N4U*s86a!B6uO>B_(~Ms;W>9-WnS3#|04IU&IU^|HAM{AR`b~ z$qu}-RH#Ue7E9-4N;93GuMx8-O$Bc?nz{a<|IhtHy5vP;D?&zMeSQve8e716z1pB9 zB!(I;RdM%v;xWK{O*UdhMQ(IHQv+)30YT140-ssXLf|xUtiO=;Q9BYr1)453^X*OzZ&YPE5G95;3QgThPJgq@TlQg?$d3OPZ|PML2>cQ zasrWt3Che>^1S6lT|U^y8mGBXrOwool^XI>iNtsE;_k^w`M8`O-0N#86~U+!Tqh)W zNqfrq_SWJb)Zte=Cai&L+7cHMG@MCR%Nxwz9{3Zf@&$6C3?%xg{MfCJYjT|ykBjmJqlu?4wn_qmeS+Ws{Q=I_h&nt>E`Es7zf}D9dfdDQD0t& z654zMmk!w3Y24ji%YAT~yTz}|jt*VO`@15CZZA8}!o&6BFGeE(DG; zojE;NzL&0brc;(vdjFl%u3fY3yAx%_+O1SgXe6hRI1>GQj@TviAT-JP zv49)4-<9eTuMgD@S35IY4y5U#4X3b28+mjZnVd8JHMU?J*0aNb(D$>=R%xVt@M2t^ z{qDP(Ecf?`k{U!3O7qTWT_faszL9fFOD$yA>xrU2wL2_y#N?*Gl9S_8dMab%E$2Iv z0!6~OJUtPP@unuST|21@i10@ zS>*}N(Jva(XLdJBEiK#(cB^n+ zSKEX!sKZG`NUqSLx;E1m8`i$@M2tFTE1s-uGIZ1riF!kwoRpH-JExqVKJ>7EPBSvL z$EG%=j6QX*CR3@Yqb2`P_D@d6TK`Ja*vb#8U~+foEn{Vh5_JM)VbxANKAfb1HZY7A zKl&YL{W#wO8h)a?xJ6}2n|;osq`i4uQcqA)f_363+n_6NQ?$1`s9q+^K2s13>DeB?0mgCjz{vipAX3;0*WZ$9)y_#gN5}C zJ_pGUMX+}YjU~|huH4oDh{qgO^TV3&@rKUgaYmEP06DL$Rgsbv90SMGtov#Gl<*Z} zwm6am3ONQ4mWqXWdpYV_b>*Tz-y`*jNz#k02VB+wRV0Vl7^XFl9o~Jk~vE1TEhhdletLrz>Aqgi2 zN_0E^-WJ*{`!ZYIJk`n;Csy8Ki+}kvln6$De<8OEb}Z}d>HOUDt3A#9-wLy3RKSS7 zyzdy%*YH=r7|*W>17`$%!z=VqB4CFZAPzJ`5b;9B#;EYQ>{Y{GD^#Vs z@^b81Y`0{Jw_54x=zsNZW<#r26m&3=2OG}WT4qQLypSp>`;w4kf#-~~u-<~AeKAw? z%#EWm6M83ET@tnZi-UI1IVP7nQK6X59DbPHbjfG=2?uM-xzksHkn1IHjwlm(M{bMMp%wE`yCN zLz2%QQWU{dYNsfFS)T<{7d8Y>0Nh2u-2;1i<-52 zaPz~4XWOg8pCIY(OibfDzUvO~3D^x2JvE_u9`T7scDj@z@vAX_0rqj_N=b5=T~-St|<(=lDNC$4{pXV zeEjNN`w8`htS|;Qa(iqdLy|)peQsu9@$AH=*haeJxoIGqx7-OlAR)zKiS9SvOznxl zy9#tD(wr_lPnv)??xy)+MKmnnRE1%Wele!bHC}!oeq%g&y zXupe{?Cpu?GQv>F#P{wjY@Ck!x{XyQ8?drOlvWxyOJoJ)a%98`#gFF76H&vjwc36T z2iStWL=Z$C4+M*-x>XnMM-B~z0I4BSVg85|t~EXRg6;Geuk_Q*#BZ1Kxl?6blzV$_ z3E80$R5O!Z!N&91P!2h4{M*7e~Hl@oVSufR=wZGdz^pdA;PeiooQsgW}^C z+SA4Zhei^2b1Mt8`o)8@>9Vhle=iTlBMeLViZKP9sUeLesBi zW}XRkEu_pBkU35g(r4feZjnnPDu2a(37^8a#a|s-)6~v2K#h#dk#~(MZ-Sgc;0xPd zJ!%AH5hYd_50{{99et$?pU+n0WIWiOM?f~ehU8<32_WQ)(_&Vqtf8d7}4 zX^hNS$`}>Cn@-t$bvtt)1#@O_ZDhm6GmjxxxBPa}E4<6WxVkEBXv(3de2WM4a7xD6 zsf%{y8$ur+(-pEX@@&zZuN?qWURJ)$ESy(@OEBty98N8aT<<@d7zY5b2uMROC;QX> zcLlEjEh%U|Z}pTtPo&}wVcjslQtJIa0RloDxD3j7qOV$hSbGP~O6davq@KXKG|ZPK^`eD+s8HcZi}BUQA)W~E{qX7=7K^_9crvCsNl&}pr!+X3A3hEF zZ#R`nD`c~VagoXcFv_Jp>Ee(Vl2|!jFPWVb2pO_f5tgk*OaJr}{ zBD+F1T{nBEfD(fz=#2}+Qz9xAe`5Y_8UuVdT+832!7+5hDW5F(DFd$*lALEAG}quXg- z2|^|TX4jQ}h;-z3HPB{U z4?C)OhCeRlFtn^JSfiBz_u~UZUJGE)S6BOQb~e{L7z@$Qd^j+^e!$;M7Fp+ipn*YQ^{RkXvUQd#A+AR>K zrlu1u|5*~`le<=72s9zz)j|?FqDz!)x)LEc)VWBdnk-v!fPx40Jy=(q_v?f4^9=?N zj%BtqNF`O`eCKj1(&1)5qJp>kutF~(H({Pme67+pE2>&=oyp4#r0L==ASVS|%;A8& z@hU2@%vUU=0D6lsPV0F8!$K1%>FLi;JAs@`ZdZh8a~T7qHy^JQ=5t0^fb>;oi71e} z{2}g#)nKMXZFbp zo*4Z~(Q!-6dAuqMEmx*Af}te;&m39C-kuYIp8MvTlJ>GIR@Z*8zHtj=@z}qW{}P7s z>0fqae0&6Kw|k-oLt_mn%Qmo>s? zV*lO0)y?P4clCUvzmx5{rN&bDF9;LXH2HX2W#arq*dMi0iopOSjAZxb=?&i!o!R;? z_QXq)0{x&9{PaR!D480V%2ZFXiGe&4%Cze#A91tWwuOU-Hx3FGGoHd7hUoU_7SC1h zpPp8u|A(@ISjMurZw)PZl+&RL%g8BjhukTSR~+zO?i1+@g;zx&o|Hw!#0?Gre zLVJCgSXhjbZ!*|H_4RdMlHlcMpa7CEJ1*Om$|>+Ph z&cg!(|_TOUMO3dl2=bAonIXFuG1?`z(ApgE4 zM7|_GuL~Nh8Pf1-qv3?iych{J?D5)fq|5Hsq@Y*4f4{o^|9*A1eQ2o2;Q3}XEKK9g ziY1^ofHmCVu#Vjd*Kk{aF^Q2eaRFACWG&;r#4^mlr~O+Sr@+UPb6Xp_u9v4fD3Oo3 z$iTZ}mY}cZP%ANCpj+R+pi}5cwMB3sbG1G`U1yOL(~8IFgq6rz zSy@5|x#3>>!T-BUu6P;ry21~q08t)Wv=n;UjHi!hv$!1&kw#NbAm~Fy-43|I9|Hd` zO%)K(>&vB9oe>?1ylgNCwNp#sez;n|s0*f6RTmmFO}zGKg^g=zVF@Yp#47sV$*f9lq85xptPF42eL5gpJ!mnJ)kjsAKuJKs3P(z>|Re@3;~Jp$oIm8<*3W3nDyb z9Pv}+So|LogI!^RBRSS8eP1-2HMYe?;8hC%^Ug_5j+~sND=Pj$Oi2mt;7~s{!w94- zpnf{uUi}#dZ;+C(zv3Sn3K|$62WK_)f+Hgnk^OI@6mG^QCx?@1TkAdUNAJ3B2W}3& zwg1eR5bWP3TIp1Wmx$#U#j}g*Ph$>bV-FyH)13$ck(Ue`e7NXDMNbOr>Owa$ql~+X zDaBKyvMD8H|BVF+={`{edJbBqfjWVpfAA|%lr#3crEjrZFkiP5GXwL#B!UUhS0vBn z>x0aH%VGFOGSA&nb~xAm1MrCQK;T0Qbf6N8#}a~hdxx{52Biw6qwH|nZVUv$((j(6 z!s^H;*QBe5hg@Q#Iq zH_aD|tUR9o3R|sZLGux0wd_}}?EgJ^tQk zK3fs4yqu4m{_p2EbT2Oei59=*hFjn@>aXN~kOhp(=Z&pICOrt3{S6qz6mp~X=>GHs z@`VDVrG>uEWL!?AQccL=J8Zz!4fU7H1R524Vh3G<`1o&fNHep=HJV|Kt(muJAMsD7 zZ5zXoVUeBTfBrbhmj7Efx*(w-(qM^f=Ujdu0f()%1nC=3i`}Q=H33RrAdUZYcBS$4 zUTeLp9YhTNwSQ+P092nSsaXS=DCM$(e;yp>d%CLnVPV9;9<5vrMFUNZkRCqbodCFh+%Mn-Od@s#XJZv9cAjP$G6Q2@ZJdfbXyVz|nfIXC9SG7f_qE zpgiZZBY3-<&4f{Qb}J5idTk`YW!)?Eyy+JSp+f8yE1N=a?H?{-XL9N*Lh1cnky4!d z4N1rkrdCr0##jsTznysF^m@Pli8j9-7lt(OXWZT1Sv3*n4OLMQAcghS8y_C8yP^v` z8SsSL{_354rH2_1lt`bTWHTJ-{64e2qM@uHx?-$Xilor~lep*Ev=}JU0Z#3MprByS z;c!xQGVK~P+y>xS#Ex!u`U9W_`FG`KEzr+~wbF%iyj;uD;bal{08F9#_6-e_;SDY( zhO`HAx3@&by${FL70-GN{c}LizDM)==3yQ4>IN>jxw*VV{J(#J12~}&<54dZ)cV{U z&C+D_0Fe-Lnq2=chyW*XqZ43LJ&@&ZqSSUTVIblzE&;w>L5Io_%6 zWjuWb$2-XV87Jjy2@@yh{J%$U0FUMabSB?leh>PAw(jm;@8KxAX|^lDS8HDac`k2u z;D7`EP0$iy|V5^#{LAy7T8F8g2{<0o(S0w_Y7!)#?e57tn;_Y^4FN z<%NHb&!Tn&%eua97w4>Tar=BnAFg~a0B70X1NgYvCn2ur&Swb`{~-e`as~$2{{A^G z7i(mnmlJ8UHK{ZfNVfxw=zis)kpOG|U#b3u5|!~FuET8(gFpb|`;P?sHJpXIFWs(J zH`LGXk?E%iCJPH&uvn1T>u_Y2Ycnl}oj`$%G2=hm7TaAckK}Tn$Gg6!wBRloa(=vk zUs<(4$O&+C&gBLV3hgAOuV&xaI4v}rsVP$))iovoh{Q#caQ3D{VTR_j2CQo>kn{TX z3DQ1a$2f=aIJX8u5YO0)|J$72jowdeT6NpLY+l!$T?bG^JaHg>ooA~HEdJ>kv{F6L zn%m)PqPY;jTXmeP4Qu&F0mX=Z8}wctgX#)${KHSw<{|s3G9~ z`rkhQDJniNet%)tXga3l;vF?UUxD~hfDaw|DT_CzJYcs0(*Uib%ggC zI=h^@Tos_OMs*98b+S+j>v7)^1>|k56(|Ntv-o#`qQX#@d!>Of*$FJ*c_&D-DtY<% zkgynYMs^1yQSrTq?7Bc@vdX5*-q`5chy`^`@`H87R z5^n+=oYJ_so#?fqQhm>hM+9A;aimVwfMG zs5`iXf-!wV;kAJHPUnPQ8rBr5twA4kksmnp>2CL9kHmV5?0>c@Y(dJ*Ot9W^F}yn{ zVQ7sHfgEd9rp_oWW%FuX^VfLPkAQa(fr8!ANhFzu-~1v53X#vyjKY-jC19?mR&A)W|Noa z6##xsmC(=tYq8x7L&W2lRilGKj1b=Lc`j3dB_B}D6h^||c_wv>6PRsx)c44V64@V# z9+yK73F*M41-<|aOT#|3#y27XFHmmo#_Rj#kqE3T{&lfn$SxrGHj_hR(7~4D+$4lS zLRwyg3%F_>gBz@;S5_2~hS!p(SLJ0K>bCyvs}PqNf-OqMegx?;8E{1j6we2@1+f9w zKND;)(KDqQ03xX2HIPQ=6#S+ zaWws8GavG#Q#tBdIMA*E4_X@r{U*QC@PiQvA3M56cYm&nJJz%`)C=`fiBFpXxsBU7 z0@}O-=wD4S-092tcR@tRksscb`L7CoE%;g5I@{U;$#Pp}ob@GGcl*L`;auN-cL6D^ zjRgx4*Ef(8Nq=bXZ&3uqE+i~`<=b7ZW# zqod=Pp-vX8l5*z4UJMceE>N0UD%0B(V@C%79}@5(2cz*G>zz(QnV7gj9QGH5*t*a$ zFn8s1K%kLviOKe5=``v<00?afAUHPx?lz8MWLzJ2>}Y{!Sm-0Cz(M6kYr&qMP=+bZ zv-7{9cFFtjB0#Y8;yfP-_W^9T()$SzOh^@~*Vt9c6Y_@~IL-4++l_3uR0h8@=69#rs%}9cdUd^U#_rsYEnf64q8N5P#$0C%Y7xl!O1;=>Vz>KDZAeE5@E26pvo~^ z7>C8?=YhXivl*hTZQHA?O|km7I0kBUCdX~Xz8`2^0sy-APIE6H9FWw)qJC;YDJBtdMTLZ z=R)iK8JbR!`s#_V^^?eNZn%tp1F%y7jDsTv@X{l*^SGfvI>_MGl*sEr6Kcx`&wLJS zrH9~n4Z{R_GHnj~;UQ~=7vyXy*x=*s2Y{+Tfli+Ce@U?q%so&>(pKANK=s@2a4I(6 z(Jar)-J|OW-6oDAwCFhAjfoX}v(KMaJ?jLjC)jq2-ryVZPvGxTXUSM+3tqvJ^a%qZ z_i4<(f2P&_0&I3%nea-%u4}0c@j(JRFT)e#*b=;BHM|WE1$6Nh0+Lfe*>zGdP)^+D zI1pl=La(w0SyWe;Xr^QZ%NX7jXs#9qofo+zqiW~j z*yxSg{p;iaKOC{LLaw!kijE#~dxX4yzB&a18?MlxgGhw*Ll~ceU3E&~=8D9#Z3@sA zWfc~YWwO>F0u;s1%JlW2fNK2J4JznI0B}39=ybN=)YL4aU&2J5VvXb3T2^cwx7zH3 zX4(MGSOf8s5}#Ff>$V%k@AWTzWCs zALGHT1V|CHh-5w2BY9+yE8mwH;id~B9jx$wH4S#2xfl(HxlC9I^&)2PGVig4%zk7_ za130_SL`Ox2Mf}9ogR>R8sCC z|9~wjx^b?D-;4~Dj@~~Af*tGe{_IUnITXSTphm!3SxKNBM9&q7v2t;Tt81eK`C_8( z_y$VE3fCErTDrM=18u;KvyG*vVurD9iUxLEqY1a*z?3a-0LqM(DcZ$jmzD+*!@%{d zkK`ZhU||1bLH@OdA?w%syr4>VdKfmY8eP}Cl-lNCz=F@l0S7CXSK_Q+6!Qux^otkd zdF!}r8|u-+b|}$%Ft3(b8gb1Zi2>ZO^_UMy);a{4)_hmHdgS=`1V+ay&R8H))E$e% z>k7$+Lq=o(FDttz+$Tj(k3X093;Jf{3<)hQ7y|>cV!0Brh~Y?T$-pVr0iLR9-njg7$=)!w!c<&a`R?N13P zsBkM<8lRVl(-o*ZbL<(32@wOw%q~L5Yb)d7hsfCY1)-vYqPBD$$3f$#VAOeFH z?0U=7^81QrBM9`VcY6me0Dv5hx85Nx@FMMcyTjdYd-{*(>}XCv#k}AHuJnn)-adtf zBV1PM_d#L^qk*lON^JgUz|O%LkzX>-Eu{ya1~qJ&omnPT-}C5SO#& z8*-xe1o|k@r%~@(2`z`~v|l-cQcL}6^%R_gicrRymGTVTz%_^^un4-e#QC&2RSSr* z-b#V%=ABjwee{CD{q)ZmY*AuP7VI4I5s^UGqkx4ipU516$FemZ46$*0-1I3^mH_-B z&aC&f^JJDg(AXcp(#{$YE^a5JQ(tS0YVYI?#*!i{7eiRc2&v4?eCwC z#fz7tM~{whcD8|~rE!r5(hGth{8LB>%1h+LiPKoWek1hsc9S^IP~r~R1H&=mJo^5x z(A8CQ&ECBW?AgPfayQhiI~u)ub)mI~#!3*%3Mn`^zAJh!KZj1Uf5x(jT~Ph0v5vmK zY{E^0))>^P@~>$K-~8zk7IkyQmi}58de9v+b{)mM-i02{6daiKDqfv;5^w#IhV>nc zl@OE;dTsD<*dc_h@1d~+QXlU{mn!{WwdfoUO>B-`Z))LpCUJ0friXfJ z(ejA15a&>q$B)&#vjG8BNyIlopFXc)*s%T@D?um&O9w2xNS)ax-O;|X39?Cq z>E|Zm*uLYy&~1p_G!T(j=AeG#rFc`51ttE%YBX#<8jlTK(Yw1R40N@SALom`zuW=Z zeuKPIAE+Mi{4;2;+ZO&Lz=JpRKweTMh(LiV@ z;Nzo)l-SxfhLu%gI5;$fi;II2yIrAz6RfQz1C1aEB@Yqc{~$?8nb@&oGnOowL=To! zj2#PQ>SFfd6fV#E>+@?;7UMi>KOzDo=#B8xPu3VZbOwK{#((?Z3wL9dBJN&dni6t|2=5lu0Jk>DJBYy zKHP-EUk!zwI9;F1{rf?5|2m2b7k}0uTZIFLCnZc}$eNwl ziE|o5_U=3{M1>zlyl`B(zCN&dGq86rr!lOGF=G~>Y18J^mMu(7G}E>Tf*|~h{eXxSiqcZGesK2I(6JMtqOu5lpREX z|3|R5==}LBxPJXIE?oGQ9!??X&;jVxOP#ETr?KaF@#p>PaCi!P#W_Uf-aXZ;6di3x z+igkES4N*cz0j^*bB(ni2*TgP-#-{WKIif1(LLO{^%&*LN751uBcnjX$LAs}j6?2# zs3_H$;NVahW@a3-?Me5j@^E!^qA~|s>}fv5CL8c;FMcDUGnD5OR;wC_sT0; z9=KV*KK%n}so^O+<$dAuEF7M~Vw_1y0b*iQF@Elx4Njia!<%pR!k97R(XgQ=HdYV> z;ZJz{I21>Zo*JP;pWj_x<*=)T|zXXk1pwi{7r-BQ!4 zAP9o+|3w6N2_YjR2e)tEp~W9}@BWNOkB-uVH3|(HKuP1pSylK!%7ZvLtI8jRs_?^> z^NX`roF@kg2!P`8;(X(&srIzgrH8K#I&^4EZMH$PW~B55K`8bF1%;Amj-z|Sb;QPo zz{lqfbak`ontnvrcOc^8GL>)s7W|}{1Eo-TZyYz? z7sieA!vE5R!u;t_6)xwvPL3bvfm9sZ>FaAvYhyS$IiPRfzUbPu8yYvRt?n!c!hc3k zP%!rF*@NKVdvx7j#e)aobe-lRFfdWckQ5uMF(fKf&_%0OJyEZoCw0~vqGCl?65JNl z5!Z)-ff04ab?F{JHv>Ts1mRyr1b8Xp#*GKqvSl-V{P8f1jkDnH9z#pK;vMIF?cjplr8jb@8wkR{{7Gi75`*2LQ4RxFi zXk89Xn>I$3Ds@P3x2Dc`Ev0iU2!bFKPeg#1Qc_aVaryFfoIigaSFZSy01u@H@*U{u z#V8MNehtmj4iF@~MASxe|6UjU{Kn%?pcjrqD~yV!Y6c&M6OBl!u0@ufEgL zw2+?eL3I^KSXiK9#q!jqD?B|L!`0PAnXyw4N;_d;VRX$!(E2f5ANQ%l8c5ej42ka; zx@KbN`in$HMuyVCH8%q_uBo4)SEL__NEip(`xN zd2lDklJh`N{>%3FC^0h#+x&lRB$+ zNMOexG&D`whXu2Vi7CpLw#B9We+i5oY3 zNt9p5{rjBSEQ$niCJEvvBtjygs~e<*rSL>Sg%bwx!qe)rSbsXcoW17H4*HCaR=wps zl{HVR&)Xp(+=dPbd<)px)`PjZ3yFLi66+q+u0GY7!OF^t)^^J4dUJCV>IhJeKoFjR z1$1I!lH#?Fi;G5TYP^!#Gchq0;o;%*TMMDzXeRy6lSy=^QC%i21@t+OM6?TuY(u!Z zI@9mX8t(3%N+uB&*%lTS^qZufryvM|AiMw~z=gj}c6Kfamk1;zB;v`FK*YzV(-KA7 zPe|lEKy0ip($d07Oy?;goM+hM89kkxR8h_gr%fx2F@F{o=RDApLs?jubBaX%%(=^1 z$Y*6~k!Z4{{q1Sno&>%n2`dxm>l>g(4JX*!JD^gfs&ot^)UNGL^?9@{1J+6tsi~<- zEVaM?BkH)_LrO{t{U!rRNXL`7&Y|B+CY7Zrv&!b=q|DdV7%RAHW z(TRSWjwG&4sbgnEpDUB#HlvPRIn8wHlHo@X1VMPYhyWK}I=Q(8%Io{|^mGzEIZBp? z;NZu~wAa4A*ANhJ6%QZYL118(BBYx(RYO?#Z9RLkz2^K2Wsi9w{Fy~N z>8@X6&3Vu$m+@?${5dcX)EQt;x&hVe(y_~vpf4aHmP0n&A>dj5TAl{#Qy^zRs~gd=f? z$kT9$leM)SEG*2?s#RP1t!QD)m@y=*O`)Tstt=dCt*2*5zd2L!UJHUC2>%Hpz=i*u z+qWMgF)<0yco42#yF}|m+I|9OXG0~V#mp=f_V)46)h!^AoTUgY_M~(CIfuEh zx17rg^%OfT3muon#;P4t82Z8OMT>zlDVr3H(fW zdUl41i6z-k&jAJ0o;I2_>!f(sd7A~jt*rxz`I=OgtL)Dh8tT#c=_;T3lH=H6V>&S% z9WMLpOVHTZP!XIj^J?Wz62HYL{F^-6$x# zxp?u?uiu^j9;Z*AR@VHzb#?V{{P+*_T?&P;E(z*H#rA1f80Y2XqhdunxVyV3Z#8Py zZbZLT+9uX0R*w}ayYM~_dGL$&mx+LCml{j;5%idlU<}4mrbn?VR*4C=% zE}Xc8LuFWyb3HFC%z3aW>pT|i>~Uv%ZjaX-v(9!5uM-kf0bd9oi}z>2tzK>gbSy(y zS-DZ0X3F-Tql$b>OIH$}oL8NN|No+;#iCxb@f`SE)IqET)aeN%aUDx#T6E3@NKMUG z>Y2pEJfx)LQJXqQP7XjwNF>tI)cp&;JEMG^KfuUHpT4t&BE)$hqAvXda3}{)+GJ>G z1kPn`Wo4n1*QwK3IR^&^2PG6l?ZimBNTg1uIEXP3PpNiB9!!w+$1j?F2f-*973ZU<~i{GEb2Mr=8tT- zjO)X~{`g#;hL2b1+2{QV-x6>K!PHcXj-}oX%*`v&wlkf79*KV)I5|}!n{tXcW;kCp z4}hh!qraIp32U=oI~d$VxpMZjzd8N8=u!sB4Z2A1`>>N?KG7mKUE$ro4*p9u=HEY&WwhKE4jDZ2aDbQ7H)NKRW)>pQ< mh(A9Yf+7flAPB>XUf4ryUD+U;Q^mR!!2DSIXDFS z*}plTUcB$e!ST1s%FNXHKd;qNUi8HDRPvwCooT`SSrP~p!YaC#SdOOpKFyLbM6Ifn zPt&+zV-Sc#2%<@Hb=oxqZI4h^2oHZgKK{NEdCcG6|Jbo(^Zww=e7T!tba_7ctmfwCOCN$& z`+wnrbq}k0bn85DCO&*ceAh^eDU$x{a(l zBWWhd^b=vfFc15MvszkoX8C`g&B3l+Xy-T5?ca*h_k3LmpSkwv(Up)8#DidnsW8Oh zIQvz@r|0IxIRDi9+_l>j`u41n@j$i&3VcJ~XUyy5DTvUWVa)bTkg1EpjwG>{zeqBX2Ffec)CL2Z2kTAr?Q;f|= zTAA-S^mc6}w||76R1MhcZ%Yt7+xJlR-~PD4`d_G-NE#a%t*)+SWMrhAWN^=Z`uK65 zs3?~s|JqRBDVqaZc;jMBT&EeqGY+lRm@aoku~cfC;Pr88oOR^N?^(~a!QIl*(vCA` z;6#L@6F{`OopyH4&&(8Xu#h-*^eB}|mGhqZq|;Im?0kdfCZV|;OB!4`o$WGsca&c+ z+AaM4+=l&?-&vd8gS)1s9o**s_jQWQJv>VC^2C;{bdMe5WI|Tg)<`?%CzX_*OytLJ zso%k}>PR(#ZmmhkwT22g);YJn2T@!I&b8{$4|Dg*kIK--Zo61`^?Dd;e8Ifq`+5UT zJhzJ&5svl`qq%4a_W)&icJ89qTRMX7jKc zpGI)Iy;-(`Tj3{r-w2iBZJ=>+aRdUP?EQS|Verf>EkH_IzRt_d z;Ed!K5atW%){DrKp-LSubq>u(eS9~{f2p(4U~(Lui{QPw_DOvBKpR{m9>?5MY1}A` zZLnQ3?Uo~_b9ZVQ&&TF?PvH)~ayfMIc&K4aikc4=D=H#lY9|ab#5AA%aAIvwpXR!M zKska3w&ThuYh&HdiZqU||C>H=X=%N7r2Z#~W3llISnT`{9+(MtodhOIOv3l!cf}MX zKK1rS)|lMSi_co`#ZgXbZn?B=Ag8z0mSb6q(V7F}#8loqec7eR@7jeA4;8gi-J!}n zfxeGL?2@|;E^)po61?s5$j)Y6M=@di+DxPrAA3y$Ch6wc-4KsVlt{w8qOE;zBL8@o z(>&tZ<9_c}!Vghjw>dq4?ynOKF3_g*X>Bm>>>#za6G|TEj=I1%7}_qIGry--aa#OM z&w`Nc3miX}TfPXF7?$wIpjHR9SM%Ay^gr89C6Od@^z6|{zm_(Z%Ghmt2G#3<1cs=m z_9W=#u`wQ|8sd$&bQ1hqBW#DHdO(<={>J0N+FFm_`Q$>yuESL7)7dGooCt7rBkDvZ5cQG3q8fYTDY0 z+e!;Usp@gprEjEBZr_%j9AtMbE>K<-FP6#B7Orx|Gp|re&$}i*c1-e=JpDobW7}%V zw@&S{<`9X*N*I~Y+XRO&{*Y>7C30M1BVSF1spYlVwrLgi?L7F4m;_n8udh}%*zQXmU!^Ctb`GYXZa5|3c90gB4mDz!`pu16zIHV4FDqXeXr{3ps?qJh}A@nNhS3F+2Ee`*~5snN0PQu9~~$KAxvFFSY75hat! zaTD#{V|BS&y6v4@KUs-gS>T{j!r0J6O+-x0*Wcg5EbZAv9{xn1obYr%&Xu&xOxE|l z)Av&AC)z7|UOHO|eaM>}RgOP#=Ob+iviYV}xhi<-wxc~iKTKVloG#f14)v!eHCL32 zutTOiwoc;>_@M6X#Ttq3=C@KGY>!qP<3{O+-`|q%Ca$D{y?s;y9Ws|wRaI3`P;lT5 zUs8I3p3ce)emDqpVMw4MF7n!=@j9K))+Bxah$0DuCBlz4S7l{o{W`3E93zfs54y=W zio7~pcQeNOGUa!zFRHGus}c73?Lkg~&PM%eXH1fBhhHsUfCQz5pKSYE?ag1ckC$+9 zUhoYyU6<6hhEQEXsEyL7$CDGxl6*$Z>xM%eVc)-hpRZ!~!Ki(pvpQISN?VWN>G3Yk zMEgIKysmXE!EAqwH0N4}2ERD9sY#yRIx0a6tCtMJms$`2sHdpw?+Oj2E6;dO@8I+~qSOP3BQP6=F5xA!7s zu#bj|4IYFO`zBkcJci=;NgF1=)kZq;b5bfC@z*YoeULf&umfK_c#qf2@wA-7^n0!( zoHBetHdL;TS}94sM~y;A-J=rKxZHTuH4ghcx%lGOlvVM6bnfyEP_QB=C4~(KtwpQL zP1X-0Gfe;JEsk|`bVQs|WXHG*h;iWvtgr9#HE3FXEr<2fT0hiSK+o!_t@e&`6Th{! zwV^2ui$=*7ap*V?Kc>#7Fbj>sxHQ9T5PH5zRjpKK%raV&rpDEwiJtl8;`No|o6Dna zMq%)#gL=_Tw^2Vuv1yMbh_+Zec5$rt=8fO_?40d{fuv0lmXf;H*m(XrR9v#;=GVax z$U%|sX9$*@T@pHCsS{X z2sdt|bZ-ntFK+lN6daT0j3DaBydBs*DHl_ub`RZAyZGttz9V3(GQ6PZU$3mHD!g?| z7^&t!^ZzbEhI~I0?+1;Jw-av>v5-iD%g{>t_PA>bh&rJSN^Da5)K-abI3(mx-7R*F zp7bzvFBbHkjry5e-QV7$1UhG8EVHBrL{r<5jySY4NaFJM04Jmf|MIDquTldjaPOX) zh6K6YyDs^w2k(zfI6gPoXNQSxh18PzwP4JwkGaU{Yqe^W78vUPORGVYbJha0O&=>+QuSTM4zgWift# zInYf$8mEjWZ`)6b)KLziYN=Z<_Tc+FDq+k!b~caFOxpNS^WIg)jhA9cK`UHJZTz;O zG97zw3njLO5AQgk;GSezC71Kw-gkZ%vLBNH6g(zND{Jd=7PZwtz?bgur)GX4w;S>t zXI18-A+VN$Tg^law;v>De8fr+L@xJ)EJ>i;%;naIIBULJU)@(1G~PAlGB_JHkzQV@ z9ZjPQe=pxbxj~Oyy}Sp{H<8A0wMjV_Asb&XJw!=^9Lza=C(OPxP9agh=2+S7s7k3@ zi4 zOV%x<=*h&${ib_N{Ks`b7|Nlz1dU)jpoIqtHAHP;r!}5*S1&xXel?GUf7pH z@4F~7FC+w@$O~ieD6d~54D4@R=4RY_kR$j>UM3rRt#dI5YIZj2tL#z3_{Y=XnvePz zl6`n21nWud{>3@!Egf6>>|3`r3t3+O=V1F*>0!&Rnz^6K4c4=EGuBre+uGXx-`CH% zbl%O)4M2P_P6BiukeLLbI-=jLtkhY5Q(V0sHNdsh{NotoR>5J(x=ICe-&rw4SLxzmr>NcGyA7)^ZbIYo%C?a^j3~v zm%dk_@I%Gzr)uP>Q|$Wk1Hi=%^@xZFxtb{K)LzbB0VwpX9=U&HBvYr(e#&;iw&T!q z)F{^65R0sZ3#%rRjC=?MV8e-hW2ey#X(rYDsJ30w=SDCZq;@k5R`P#6v{H&()|K{3 zy1K4*V}}Z+p!Pdp5a%n82bs4m1b)3_Arlf46DulwK|z0T1iEmhl2b+IE4|w~hKj!6 zk9FS8Leoq=v8@mW12Z(<0fDLCPlCg2_%R@qTCOK-y0l#}8TPK)U<3vq5uUWljx#>| zeaCN&DD~oq&?y9ah!pnRqaitT{^ze>j;|{7kKT8nVSdk&72LJXfAJRR^lz0P4%vzO z**TP*)M_B8>iO_3$kd2>INH^fPN(O*dh+B+ZqkAUHB`3x>3)M=vR@DvnEyIrp;{`* zp`UwB`jF#W5@9grXcgUAgo>nsRzK-o_{(L|yNb?Dd5qs+M71_8SznLF8V4&y*DFt~ zaY~=Z_U?9T9r(982w2>q%F4=w7||(3aSit>|EGu7sz3Y0t7uz(NO}a267gJnrt8+$ zR!M0o<^zC}eyNz1*F=FxZIta{(KA}kBgaNHWHLf-o3Lx*g ztE?U5*tQzU#Wi$IQ2N5yWr_~Uw+jIk_TWVl0mk4XvL8i4N(vu0H@AF|NyN2J=WZZ; z;^Eq*gz+|)Pz*Br$3C>SwziX#(?)c&h#m2JM}fp$<4Izl|6K(#a@u_7Y1Gh!=pdV-%{NsPimsP^|cb&eCc-2o3y9&ATe% zeEu!AYT@h+_SVapVDCjX9v%m;in|P{wf6Q*KfYI|?BlazH?yHs4-vp0@u9h{rr<72 ziSGTBTUd~wo{TfV;ux4Jp8rB5H*mN->)Tfi*#}}p*Y7Rv5$cg3HPL??U2?8 z06HC;aw|=K`N>R6oQoIHE~r-huwN7JvT*5t>t}f?h_dHi(|zs{$bheHI}-VZH?S5hpLFkS0X=7?>H}VQTtD%vypE)XKdd z{n;DyMQ=^;ePbE}s^u!8e*Av=@gu$BVwK~YPc3$bY@S^#K)t;f;Yj_yt%xvz4$#mDrzxo|Nj;-9e#VXK?Tb6VY!cI zMoVD)tB?*K9$8?-B*>O^YdG1^pMS;Bc6ZQiWOmZa;(~4o$;YI0bs5II0XZbs z$?JwFcb%S{6*b+iUpVCde(GAo^66al+ytemPqb{=3v4Z!w9r%s7J7x7%J z5E$&Hu7+!Zat8LPiEh{>)n6k01lYXSWA5AWps8o~J-wAe3(>=07rh}bofy=U9aaGU zb^QLnrz$`^d6`4JZTY!5SImodmQ3irBxHSwPtM~O1#-rU zZH$eLu{2PO{8vs!!;MQ6uCpNOa2Dj<`_BC60qbfd`&kinHyb(W7j&c2^!S!uTO3Ti zh6wkh+Wt{@I@R+_eQMj9MS6i!@_#tJMS1<`&I0@0obh=HbT>4*y`uvThe!MnW;X{L zc2;ujgVOTw(QZe{)i%qI)I8kmOboI5={TkB3mT}Qc1^8b$wCDbMV|ad#D+II^`+=w z)<>*3N~?y91tXnLEEsrpK@GNgpnhyBsGd^TvdVdkw!i-|S1s>W(Y*2{K*WlPinbd< z*#Rm5I(ueMfB&_QmLO_m{8u67<2C4dJ|`_h&I)QDo(sI;GQ@o+Ioj&>@wzg0>;xTi zbI{sSZPpZcsj%T3f&OUVGPeGC-QJKG3b~Rn^aBS zd5RR?`u6S2>C^4M|GhQmb8Jqxva0G(PftQSpQU4g`J+y9gUvNXb6Qig7#{;lR#8_L zHlo;s1Q9a~u?K{1Po>nr%UIMXFEk6rB=ol3gG0Ek;ua-_Tdg<4Y>T3K1auEPunQMy z%J%Osa1QdbTR%v=c8xp6g$)yD1>F$2Kc;79M0iwPJ5V2zlB14#O8$zFp}{UFXCF~s z$Xt(nE9OdqBdMVwexG<#9&aqR zT90dziU>7hwP%%|UfWU6E^WC(s{qU}o}Ux+tNF|%kRk!P0W?clF$oFt#rF@0S6dFg zA2zySt;}7k=4L0SXUMsnf@46Zv(VtPgHv>4O8Tj@l)fzVayO)@6=JK8*o@L#da-A< z(v4i9<&18)lJHYqxsfc_NGghI@SCm44SX8+u=>k0PmRO^rQ@Orn{2X#J+4{G`T{~= zxc@ojxD%_UOW&{68oY&*cwOHrM2iI}f8VJ@WkI@YprCJBS5LkRf>yGq^WD_>49Gi} zO_$HiFHWlu>N!)^nTDt!KQCHN?A(z1qMf%u%`}y}qX6{fckkY{8}4Ptkt6$IDypic z4mW&r?>#kp?$u=AuBoS>lS^5d3iGxbMUO{Il`5bb`b&VYHi zMZ5*AcqD>AP#Sf3)F3@xe}8ki=|sYE3er)$E2R~^bnzo`2J8v4R?RFBvwRZ$A~`xo zA1i?x*Z@U72>JvT3~iT&`bm&WlT2!9l&Za(YYn-NfRy|o-lOgbrx@9IdYodRi z$2(y>Idh@1VL@ls56Fh<881#UA}(=F-8lO8#DjyT+4F2HV*^m$;02TBw>E~On|&q* zBR|$V5$L3HG>Zk&zax}Ne)6y2YXpe{E%o+~ z&oyIgekvD>)y(-G?5J5-f48m;84{kv;#x?XZu%rR6DO%{mkxxF4j~ZL7XV3r^o|G* zOkCZ&{=LVMS1HN``d_?z)%HKLi!?^6r;)Bsb6zEIRhN{tKCCP;Inj{*gUVirpCJ}R zSqnKqH5vX)*GDOdbt5tY#zcx(cKPUEt+#K~9i+_$)=k&S)^vGP z)?||(H73uOn+_^g>>imZWZk&1{jt!|gTm*&-`t&l^XJFWtH17aFfT31{v_*Z-)R=o z$#>>TsAWjf_iUtLXYgEDS|lBOkSueQ1<8Xqi}~5x^%z}jJ9dEvGr-b=q5r|=`mAU9 zZ6w-EyI|kuh>!Q{1n?g*eWr7dJ4U>tbwT$1x*o(KtDO$3CvEj(AE*-p_(06RX0u*F zd$b$s)>=YsFP5YH*RN!&p)iG~erY%8^NW+W$4@OE=UMjKHO#Ar++yT&9=&|usja2B z^W~T-8cTCkNn;tWCLA|R{7;|Lu%XW3?@Z>ek^E5+8&K(=i@0~qeVip%fJ75-CnWqh}dOw{`?Wp^t(O?n?chMC<|W)FbX%br;I(vj~{=6 z;TJ!8{|$Mia^lf2Mw}df6mf~ELIG1vIn~b^F&1wvLAJfg6O3a*+j*ZgnbZ8L(GqFc zs%EhS`o;xiVRdC61n6<{kpo#`sDa$9X~Lho$5sR!Qz%2YVb93{E9|wslrg!NZBN9xg@c&uUuWrq7na!E_)}w$cz=EPf>FX1H z)R)UEW?O)!l=S5~xUSv%{IOHfJ}f{=RXMvA-FCI08O<`MVOfxQg$uv+k4iH0#lj;8 zHma4f2?MB$r#NQ8I9u1o;w!|X$L&b_3#Zl%td|TH9rnV7OcUM|w8snn4~4!h>`9xx zfS5m?vd83t^3mc2MrUc8ISLcYq6&6do~2OwnqI5cQR~-^CtPczy$Lur)sN3PB{PdV z7ISqa^?=VE?3u3iLhOv^*ALTfOiB92A%fg-L(@0XA=MEqh@Xel)hslBgZyOs=9f6* zwHe#mSGeny3gjC2(V+2rBa0ea@{5>-%0U7D;9%yfNWO9ifaXKVAFtDikDCr%;K5?C z?dF!ZbF;HeuE@v18PxYBI=ao@qe?!%3``XISiyS7LAXTnOOYsC32IPwSCnhQ++fFs z*400}NjN6j6r;>kK{$`kfn+*U3?-q<|c4*7PF)|itV`T>GurgpN4c6XBtNn z2>rXm5O;yl>O3gSj{)_25-o5)>?D<48kbHVSb;7yJ(oTBfSeRsvD@sYdHVJqO_`3T z2n3>i4jg9Lb1Y3$(o{$4Rnzp~pkDaJK@t!c2}&-;_dpEIzdS1fKT78gHztq!;oanvKSN%cXL z9cCt#=RX)TKxK2fUe^rcK3z`~D1^dNR3asdUp&{WRw3~G7}T68pSG~o=xy1f=LEj^ z>u59$1PF-aAi_RBtga-YE$rr3+s-pjbUzwb{n=XEn%7lcl-1VNWrZ0+9EkGiq_r#b zQ6M0yJjZHh?vJTD3>L0`;zYJo{mVc;l~M~Hh`14HZ(VK%MP3pt4}Nv#!xGHr_QL0L z{(CtJ;D0E9CP8wQU%9Wml8#*Ck z{iK}44Z9Kr40};`RKLZaQJVU!Ths6jQaA%e?CHO18tNJ=^K@&1xTJNy8YgSVZ+KVA zK5}F3^RN!j&sA=h9Ha+I$A1Ujv>+LDtFjaE>IL1}acLB=}t^OoAYQ zoL;Ix=^X0l2E&SDdi1nF7xu^Sq_S{25)qG#yC@~d~vv*&p= zP<%Q|j~o*|b#a}%vUBUL;P(A#^ta2kc#cAYiq-ckD>hy3)0|WQ5QPx1wk zq)2*C0nd9?V!FGYJ{p*25$# z7sK2q*OnL_=LPsWMr>_u+YNbwu6CVzTLxc~7N6#xN=f=$@r7sl@b-Q=Eo+A;j-B_z z6Q-ihMjS7nsr(*z@}#J+Fe3hfD!ScrGl$vpVB)r*HlgU*?3pvL^CaGRaq%{Hf+5xv z6Wbgd(Fz#@T#vgTC}03nQK$prJi%o941Yr*ZGV>mK8n$^V*7**jl zE)DWmqYdw$-xc^@8h$y|pvu3Rybg=XzQo_7Yq))~PF83$PEs#`F>OQ5Q3yNXM*1cU^9C(!ihLaRRq9l`p zz_;;K19x|ncMhMfn9U-3I(W>SdfqSC@i{gdd1<+lm*dL_>Ab&?mJ_du&yTxbGMZ8= zDimf;eR+BZ-jltLG<2mpr0v#cp17cgz%bD1G#OlIDNb&k))h_XNy6dxnoR~FPvnu# zn%a(BSUdci76pXT0c#Dt{w(y2spm#3WWG$(pP>wh$0sfMq<)wZ+(&|te>#cfe_)@H zka*kIo{r2tqnuVag39GZPHnA>i?r%C{u4<+CI+=uo;lZcnc!>xSfgVFBw2gB2zz?ae2$fd5cr;-`)OPNY4VuZ z21V$;pN0ms?8sRmIRqjDk)!OyTR6ilmz`8z>?dYWAqn{RGgKY>!jS4eEo%$;Wwn&Y zO>f0f(;{^P*g^_lvxnqFY|fEJ1+u#GAmJ><&%R(sTQER_)0f6zVz%={6Z*8c7`ER4 z)M`fCVXTfI9MIoY_cZSpD0vmKh>uMV)e3>?`0`^|HhhbJbQNOPPF#dbbnm_Or*^TCmZ;{_mjvb=8Z9Kh0f7>uVK5hdXS7B$_bV8R& zI&R@nK@uf5#?YL}S(~~u>Hss|+lkud6b6N-(3peERVB`1rWcUTtJ3%9E4Ax_XPA}e z%5EA@l{OLd6_Dr`S!h#z&g%~7Nvw-#y1+^sm*{M${-Wgr91&0K7fl}tI!hs%de%;e z`gsVdBd3$n#M>}`3k81b>#Q19d`+0CZrdz;>)kJTOj~s84zh8|Z$=aC1x>_WWijg_ zK48L)!gs*b(^^bxPOVp%W}}R`^D!6VOQpRFBzLW!<-`z&vvuFj=q5M9-}Eg%xZQ60 ztKym8rysX%!;B8jf>F1eUPjjnf5SYD8tN)7XK}oG`;MOO$x2A_(|E<+X#Ru4b&E0g z-*F0?N%`kZPotaM%T7O>q*US50l?%CTU*BO$)(ZNG?e9JXrk#7AUYY)pE9%zdhM)8 zafhiVz^2k4tK`m*@$o4 zr?0Z&yn@}c0*+r+j(oRB(GONuW|r2p_z|7ZOOQfM^zzJCyU^>?HM9#;mnQJL#$|D8 zdLif6jbmbB*0b2UYl~nDde3^i>!4cf1E-dQWrogzYcS*$j_bBEe*QuUCX!>N_jwEy zOam+SWR&BM_+%P;%FhTVv0N!cJQq+RgJ>RSR~^6yZ`&L8f^L~UVtW=*M+M2|XwyR& zU;vJx25#>mSZ9XeP2K8KvqxJ=a6X2Sr~Z-H+v+ZQKJMdvl7hMSs9SFzIAa1|Hddx_ zjM~leFlRen)h-b(fd{A_?>KL%yVPAI=spp&W3W4tjVTiF{x$cRXK1Yej6|<;*kxuC zl$oB(NBCXgp9yJX?xNo`% z86n3cWQ_tUfM#ugwbD=g?<}PXAoI!+xjMEK3I5SM2zu*OYhf3Q#6U^Px+>(ibgW)SsmTZ8fe&@g)V^2=X5!34|3(ik#)zTPCDT(9D8N`9xi8_ z1I+|S_bdbIHkjLNk88W|fx-Fc<|P_n!k~$ZQGUSO;ZN! zu*K0ZQ1RM7<3KvRvU`C~c$A&1&-+v56vydmL9J$96S?A)+YXXtPQj%6=xb}P!*M-= z@eTK2>NNB>ve@9wm0UY2>lt9jq6Ri(CrL9|X!x~GNGrsefkC3s>vugaB~>9I8IP^& zd@#wt#5H5nTVwS8E2TG2EV+4)bm(VldPyUtFV_w20KSo$JC1plber$1%Zqitb&rs0 zy-&xT!Y`&&&x9*K%w-L(@%}g*bC&JEaRZ7t_m77NKT`Kx4yyrnJIq`*A8z1TXT%Un z$ey`2Ji#eEXeVCkP;F^xStfLXN7>+&PQL0mr++c#3Jsj3=xbz zD>T3D3k2i$vj37QLgPB_d~!XJ72P}5ys)kQS3IQJdX!i)=r;|0c-(9}3;v<%jwWZwLp!MvAxgIfWGjRg|HXQFriYe9`b;tWgpx2vgIib;{Zf(;=4g9d3j0So~Q-w6WtH z3#rW8`ku|dTBwHDk(Ce;=>_>N&*(oFI=I$XF;bm8?*@V^&lXQsVFh6h2FVLfm6kgtS5=$sec;u%q zmz2@Ra1S9cp?-j?VL-(*SKcX2zXNnQLT^rn)@|y!a7oyFQ#6ItFUsSGus6dT*ecx9 z$S;-n;g_;v+IdZ;!-=0u1oc=Mni(dk6*4f3V`5A(F-MgLZ_Av=c;4@`UXsrSh68?b z%~f1{4$m%tR0cBpDrdgHiN)9NsEr_oGLvEH_pf(f#|ze4+9o-w&G&wVHf7%W))&gQ z?RMg5#CzSMrp{YWW13RC>0B5L#!tiakwCZbHuL16{|X&WXOxG>5zOeKdgt;oQOJjxI=)OU3HTd_>>E@xLAFP zK#JV9y3svq=I>`j?OZRFhDJAh#EFgzb=ThpB|Ohtku$uXt{;JC0G`bW4NAT$BKQL! zRou|hNjxGK&U1=`N^g@@@~f_8^VXocw#Y3%`J~QQPsifV=-`6&4*!rnc~Q~<8k>&u zLFT{tY+ZEjR!=)6BzQ)K`erC*8jx`PfUZ~)mV26zd+JfY+Ss1KjW-{g&-e?Od?S|w zqn7p|P9B(ZNJwuK++Vj|ISdS;=4n_stoQ;8QbxtI{|G6)4^$dZ3ju`KDbr+Yya+&h zkMO|wm6@LEH7ooeTcylm&m#1_3*ERZ#;X)M(Ynf;eN8ZCT~ZaBGNkT~ME5eb9^-cz zcTSrc><$maU3%Y}wNq>++|C+&C?z35f0YIJm56lGiX%xU?}77-3|~AjOb^Kb4Wbo; z=`A!XUH2^}KJru5cv{bWR~&Hi?x0WNB@Y}9qe&0jWxv&-b%V2S*W?iksX>d>wJVTc zXtj$=g9hqm2ZPN8=hm$40PmfRrqn}gBYMH-6u6U^%EuI35Y+D<-)i!_(CNJrT<)fx zPo~G+KI?z>u&s#pjcd;qWe@w$$NqP@c$s+MMkQ7u68{=P178w&idZAUH^#0G&{#du0P4>%@`*lL)b{~c$n+!y;*Q!1X+zM`;Pb%WXGl}Cvh z$Tju!pf#3}69B%vXQCGOc3~)7Q$LA>5;^Kg4fz8s!n61#M!-tK{Q&LjWZYXM+FQ;~QubG*-2FkyxPllsX`r>hLJwZ5tmJ(OyB)>04cG7Q< z3pp0}_O4gMg(}G|uSu+al0-9_$D9Tf0>FT&Dt~;Uf^f0xc`$8TAePXVmbHR4#PYoF z{7(i(#J@k@efk zAWq)I1G{gw7mm%3Le`3?EwySlYubvcQNsTayLFmYz^9q@pMK(&eD;+9U}^v@5}bK=EL5=- zk}Kl5I4He|s-%WUP~a6*TPX^#DXm<>{qm^k_>w*uh&-gH3uGqhY4h&q+N#WwT<<+0Tg?g$+5lsh`%Aim_9i-p{ zmPdxBC8-WHz9VTk>(fBd^|)HOf#=d{u%VPBNKctFpo>qUY3w;<#QH2{uuQX!%;8tm zxSIxmW9c{mGdwH^km*jG1uqn?x!MisbK_c~&iF1Vy~GM4%cvf}iOf%)`U_f@g?s$z z+SaCq$tGUNqp*pql79)rgx|Sy&tAO9`L~02k~RkRvC$mZ5z7j_(0q5we1kA#2q>f? zx@;_~q@v>7qBxGbud{Fv80W;B(Y5SAe^HJ`GN6i*#Y1?m1_c7%LM-H%=Pi8XfZA#b zOX$i(%#qN*}`UUC#+64=oVM%(ONF1Zd6{;Ha3r0H&INrEvB$odA@3$UdWR<)8a;MqaG z0twir2N-QGDEi!p%yC0M>T6Sg%_UC=h3~47rZh=%=L}qe#%kxn`&X!-TJ_uV zjaE$@^b>2}cbeT(${uatX)B#6M}tSbN#(9qnDlNd>2Y$<=LA~j390X9w>rH5Ln1#9 z)CWJ%e%uB5VK)AX_MnmX!d zVPU55=|>S{y>UF1Xg*LDA@#*@%lO*dL z9S|DIJ^)X#AoymnFHERq;q~Em&9E$Vn*v$?zpq*7YO)Vk4cv!`NsiPOJ=)(fAWn|z zZTbU@M4>LUf8wTd!1FfK&#LUF>ht#0(Aragl)$tum~inIXd0VzV%bsSq%?)t>BJsz zRvQ|6#b>%8=AZ{R$IgKoq5o7N+J@{aNBgGeCn>=bFtBJ67YOYicV_@ zv4Tz|O!hHULh?qNc4x_7r{e0>C$#JQC(nc*$(d+7Xti!ECMLE{_~%gPU}yS?6DNf8 zI7B#O97LPHt}JQ*^S89n+B?^f$s2^kKGAgJ;bxFEPq0X}G**F_ifS55mLR9~PjFpM zf&1>zm8M0b2AZzc+yM?=j?d*o?uZy%`)J@$)nJ(lstV5)<{?$F5S4}2(oH00p|5Cg zYS*9+9H7JIZm(Rezks^i;L4LnX4$&++ChGZTH(gC7GL+Dl?BoFQJfupKo^56IRO8z z1y!7Pr}}A;n3iN6`L1UP-5(cF0B&6Brz7pf)wQ3JL-aX8s7a?IbqqPzQb?du9hlOU zp2+OD74k6fp;ul#>PC*blJ1puv$3q8rKWHxNW-2f`2+aW+pbxtj|JRM zn>?yPfgIb(2_gYB2!BOkCt$`U{|qjbWMvc|XkG7roc{Agqg(QP{D~1s@bK*tCDZRG z1C9(UN@pN(x1Uw&0E_!*1APq76+{Ci?;#LA@m$CYX-I>ol7BJ0-FPml33y97=mIh{ zADUQU`b=rzBN(dp?goPV(0T$p!#u6Y=Pu3^T$7g-y7!DEHYiDlElt1kSLR43joS4b zQO-UzMK3NgX#vH{h66Y|Eqf;WHpJV!R$$TYB<>{LFt5?}8iy6Ht)-lsUa4A(uWc+X z7ygIf_kpq$dPoj&s(j~42xsa0yv07mTh2`jN z{kCbaV03T4;Lm2U`)D>LGc@k;v?$8=#^2*Dh5pB4PIXvYCliK@KASj-tNYW&%BSnc z%F#<6ip^pfZgw|403OvkizqEJ0S8<6?^J<%f$jBQN$AtNHW4saaPA{7&kEuYlu2RBf`Ydd4WL;eim2{{`=xIq9-Uu{&p?!F4@QkF&) z3)1wyGlj18Dtk2&vhSSV5{4z4!t=T?hu$=08WJGoe)27SRJ`j>sjA-l@@XJc_0VV= z=lqqk)s@R`>f29<*aQP}8ZH3#%tx}WZU4x)wBWB0BO?he&=NoH2SGVoRz(9g zbB?59aGRVf2lr1WeRRR!fA;PM2x z7_u~QLWcH^c1LgTEx{g2!MP+O(f)dqcDCDr4{wXT{m;Y;XtM;nYgcU$7P!-`c0+abccCK4ZRs3D%fBdz~6+NkP~|ECc{Hk&tG!>M)(6vEr2sY z77>oE-~S}gfBxKNZ+NpvI{kwTJN?-wZ9r>oRHBAB-m&(y!lV#Zcl#DWP3D*c!R=q8^)HiEeHx&=-wtsj# zFJtyQ_vIE3(VlbmJszC?M51PTzO6mSy(hP&ejn7rF7Dj*l=$?ZetNo_Q1CYV`Y>mt zBom-c1~kJ^=>6aJVApBXg?lqvAupRPesfZR^X8Lk@O=LKMLj*ed5skI%J;HYo|=*( zhx!_SSH8?Cnb9 z*`=ik`C^tD0BccYXr(urZb|?PN$f!I@7?)fO6afb$M26Hc%-P1jk@fBLm9GVo% zihScZz2xY(Kc%~TM-bpxO|bZ)W4gNV&oj87A}!Brh394JUdR=c0EprWcw`eF8aN>} z+h$S+6xMXCCB0CUEnJ+tp^0i$0RoQCuM;fb(YqxNKna3;c>s)GKtc~to5YU9CDQj7 zeGAjWsz&nMYWSFt6=_to*L}bhQL##)Ykg3mqE9GbX~U^4RCk_Qji0?aJs8llkX;9y zEIEqQ(RELpLnadE1H+jS#}5%x`V6WvZsWOshiu}F-uPOianF14JF(tEh?x)daZAf21wQ*T48CKkHY&)up5LN zJTdN}@|k>4Q79^t*SDh53dE>4|HEkjmoZLuE2tlUL|)vt`;$%a-@bG2n_AVX#czfI zb6@S8FZOANmk*87$V4N4uev_LT1{!urk504Ce{to{wgs4097AceFdJP^`$ey4%h9h zYlsXAabWgIUMJDezXrLhy@+T; zq~pAf`}@g0PT&c0{L;^0IS0PTocI0p>lgc;d1?)?|L?A(JX9}VsntY2DpMIo7?Uk$#JQ9amC~<_SfQ`$nfw5ws+;a ze7eMcb=Hz~MH%Jb5_SW)7QM&^t_FU&aqeiq^V{1i1U<*`zP6#~=4g1=X#-338h;*)sx` z2D%ih+Ozh-8uN`Xf&Xj(LoFIy_XEg4+jw?@tewfOu|m8pnon7YB}5Xa?)Pu6pkw zr1x86X`MGXMBiU`5VZy*eWo3MxArXr8I70{0fIz>3ThZDajuzeYoFb#<39hq;TR~~ zK{2fr$~-l%Vj;Kcz|%M|3)gZA0RaT`;nybvYa`EJ0(jXNcr!;jQK2*a)N>b2;{}A! zCrTA2r=|+J=74dokcKw*dxjlq(4OCGnmr8K&!U{9q~x&sahv7+nYZ?j%v-Nmh0Xl8 zXljv1PqS@?w@&Z9H^YULIH&>fX!dHf+7J`JuhmlLfA6rx+O#N|6&UP0(I&LH<)Wn5 z*Sf732WRFO!ak&!JHxdl)!*1wS#S;NU3%^#qR56ac;F)xe>5n0{JvLxRjbHPr_p<; zr-#cb)!Zo`{b&?=t&uAwipT|Kzk4%5Cxc?oZJH7*s%lBxRu^; z=6#SiceAZJL}UFJFSr2zld5Tk6nCRga%=r)O>b0Bzg3s#E4Kso*%G*h#>nf}vai2E zA4}|1_`Nh(J=A1%(?@WR;xl|;88%%4?C~OvSE~sfGm6D2smSHg)k^&N6_Md3@_};? z{DFeI^DWLU#77%RAQHbucg{#_!>QZ?LsX4YD`f!kL4XUum!@`V!vysGGdyQg9F9pGDC!SAvwlcjU48w@X31)pN;5LbYR^Hbt04g5Hi(aq^x_BMfFK zto3BO%}x$4xIpw=iteWtUT2@wN~QKdu{pzsKj#ma@!YN{r*nna%v2A{FSGyijDK74 z;PIFQMAbHjihWu5vCD*a_quQ1b!{Y9xTvVRMBIOpb8l$gjF z`{u}n`TW@YeE-VZ->wU4$6T1h7T)#T>h%OPcBqebW+BUZoprRf(l*oL@t@IeedT>@ z1?mzw@BfFWua1lId%_i^J7ht+kuGTgkrV_3q*Gct1VkD{O1eZ!K^lamyE~R>=py}tMJ|ytkZE8t0Fa}f5{y@f z%Dkfq`}57~N2`2Kfl+HiGpk^w!I*1_+w~K1S*~gOn=6*il*v7TT^95SQt=g#MXXSkq$b1lMCLS!e4&cNT&OinhFNcTxxNGcF2i{h*(%y)_cBw z=YRj)hlrTCqZ9yzeI5=bzthFe#`$2Lal4oaU9hVy1|IKe63WR2L-{S@Hd^)cX5*CgL4_~DKU<$A^ zTwnqmtlFi2_f(?ZPZgxz4G%B&Ng++iRqmm@x_jCh5nyt1;> zk44t{m9ny%tG=z7hIQvv(kN}ZX1v4!<&V_$8-&O)6>?0?i=YlCL;Ax1{<_p6S0D6< zciJf6{;fs)g9jZYFt1ku=o#>saOqM}Q?D)*6g*ATk?lP`KNsZZ*XQ-uUW^jpp)u^^ zjX9L(F<7&)u&8rcm-k7e{%;D5Li**)pu$2nBE27P#^Q6oQoJpI32Ba%S!opL7It(G zCYH_Umt!Xkw^egl>Z+B$NlGlRf9;p2t*yOCKq*a#b!3oU_FKM zhh?bd`YtlLm_ax9`Q~2LWhotegX`vp9HHbWvt~Mu2g#fgBthR5b(~UDJj{CUWXjRJe$)Tao_#K9(qC`=%-ACrDUtc8{^- z2DMjfyDV4%wTlJ`+F9`=s)Bk4w1;FO1j%G72cjEPliMAfS#MS@$ zsFg4S#2{lLD_qO{{o(is4eFv+@T}ja-HP zh!YSqv9NscF{slm1d~9flkq_z_e?rkVh;~%VUd(?$)1sXzQ5s0N03TC_!tu;TveFB z+5pz^OL(Q`wDFQ=Q9{al`okp#j#K8MG+mewxIs3gAF?0Gm)i=qTd-Od319y6 zOoi&vRh+rleGUqVywRKgVUw!VJxJL>7NpQ82HJbGz+GoKQtRM zVMECtjJ@&$Ci2$1rrFDnmB8)d^|yL2jAF+ng?>>LEHW9q5svF zbEO%Z&;9xl$;C=OkALUi6jEkWh+`1BNkNjkE7Q2%vc?=M)Jk%1vyx9@?t zBU;c7)6r=Agw>H)rKc7{N{wO~dj?NSj;aF?K1%S#R2$-s3 z!K|FvO~H@lEaoEeloBh3EHhGEgj(+S1P`mt4^1|8y)Cwuf^y7w`XeWc;qQVgWqUKF zs$TH7Ibe(1SyC-hF);`Z=ebvhq99+?Mrsi&u>R@Md@*V41v(Y>;SqvL+J!0_i$6ZC zuI1KGCEni>G$q&cw+0Gu>Ho$~&oQl!Z#zf8oLXIGe!f5v7Z*Pe1F_Wu6BCo8nR+*? zX2r1Uv%8S3jq91jEUEE$6N$^~u)$rKNL9p;0(b#H%q44g4A{F)N#FSK{L(3Rjsw?Y z$amDt!a|mV(C_*-hM3Mj$#!$%F^5hys0j4cKX9&)I~z>lEugoN*KG2s?vOhNQP$xi z`ulx4`G7fJ0e)x1lh$1Dz8=T{ zSphJEe)O&r>pM9hbzHbUmHCzgZkoPV;{7heNU|xyPoNvj42ajHIZt)MKJ#Bg_pt0KFiVS(UMjn z6#)$>!ar69hKG_LL8r5bp82&2H5Jum4?3-CRbmZzIVJ6qxNA1;8tgi&pA6l=pyHU| zOb_ILMA-WOP2n-DVrp$510*Pw)zzC>PG17{uCK0KXC6uuimrGXDJUphx(m0#w)eI@ zzbC?1%3A&Mq#|1%ldSr258;8;ktP4nkCqp4$hIQzut|BeCfj(0HGjR9^Rr~{yuX8c z(>F^+Bqfd>hD06>K6q;Sdt_wf$VGVs^K5BkMD>k!JBDQZ&*mE$JVMmf^*wJ)zjLEz z+wM@$S1=8jooZNXi}(3ak6xBCtEY)b4RS%Y{}xOyd!5Rk4kLZ~L#N1R413CzRc?U% z=FqV_jT}{miz~cm@ z0{DO`WU&B?o^zFHuI^9-ohY_$$$h&6UGy%j)#v_#&FOUgdd38ZE8o|P!gKecn^AZa z4Ln~A2Q0J)h(Xld&{9I25a@b!-~7fZl3ckzF)IagC(Jwy$?bmd`P(=0JPa+|-)KQ} zq6E4nGry;5M`^DzFA%JC_WHKVK=b|mZ!gbJ6~<4m?-xaU4+mU;()R+x`hlWczNIq0 zwGsyc;WYeZ!xo&K%TXi|a>qH+{N)>nShMK~Bbz^2&HTghGfe;+yj8saK8S$BvhMG$ z5PS&Bmy5ZfwK-#;p#vC$4=G4v&<^>LpWj<*DsJQ8;80IG^t_^#jLo>nrtsviQXH}6 zB?(Tzvz!iwu%4G(7y28^;(RD{72s*drwaN9s2k_^ceil6zoEbK;h7S3R~vV7AhxGR z$^yG7X`-+i^GE!m7*=$2^rBdDP)Nj$UiRy;_|1w0Ddoi5;MCcqVulCy_V!15WtiFh zM_d=5Chry`#5a{{8{2cQ?lpqPx4r`EX)d*h|1NBMGh|_ZnbVVq+p; zWo2~~i~%A|4cEDcw>}Ix!+t!$^QP%To@U8glp~#GL)0H*1FR4bkCG7T?nmuB5+0@g z1n0ja3*$UWDAdyOz9T@rfSF`zE;o6fZwyCbfYgBj>5$zNt?6Us#?ri%lp^|A(C(l9 zfLjM!5oam8{5sLA)D7aAJzX=!OuQBfzp#9*GZq@-kVX~_lh z5Vb%5h)bx?&ixFU@i0=Q&i?=r%yDSKdUF#8g5bNsy8Zihe=P$0GY*M=NJ+dmk@^W3 zZ6d%5^91Bf1x&0-*qDICL*F_cR8TJ8Ium!!%m{;!$}SXaIYfW|U5u988Me-E-4XxR z%BJoXAJ^0K(`z8mo7ZaQazf^J*D(mED|i`Q8Io5rn*pdrazb))o)X>*BwYsz0K_>b z&3NSNW=f2oEc2ZyL$btue-(7Iuu1@zb~D&pE9LKFEoAjJ36VwjnHDzDriX_3{v9|q zx*`y(?w|r1O%QC!>TdG!^RLZ=w4<-R?5T+N2ZPS5>WH0PQXb_>837pI}W zc(P#r*C)FQSGE54mU+}G7u^qGLF>ftNbvx@LIFsJvSmsP>rZN7zb2|RkS7EIDW+>* z%mKxFJ3NR%xoP`&uF`MU@7;R#9i=loYp9U4%!?3T)EUpdGC)&ga(@e-nHgOvJWOIb zX9SP50JJmNGN6*@yv&Xx`RRc)A#{;*rOU=HoNiBiFKHd zck!uZKEFHJJk5_`o5-8ZiV-npT&CXr|ET?$KR)07h-?83;ki&OjJJ;F! z2QagVR{va-$lJKgi``DU|9C(Kkk;=Z==RPo|4|AY@Z$LWU2qu)`RbfNa^1CJuwSVl zjB#-|Rp=WTng6`aj3mqO9+*_~fr%K}OuyR`?$v&hk6CPb6|!=Vf{)jG3>!XXLUoPr zZV`_-A!l!selfMmg4@K5R8BPw4PxKtfuNVP_A!uy;3eex@7!%F{)7VVuEX2X@t?PQ zcl9nemL0=~Fi97c`|C2z{AjsI2(yz2vr^(y&Ag${$Lq$d%zpRD*obq1Tc8k$p5g3( z=jFd~N*gIasYuz{yPQ_&(+o_V&lRK6988s>YynO$AbjKpIcTZAQ$Y)kunmW#dFb9t$eyYT&N3W*eMB=4*8X$ z*6RBTfmrwcG(WR3qoxI{V9--!v}^?kPynbN*0J`h95cuQucceE!S}D--)nzIxjWy# z0kco+XaP+rUB<09?0kVfw*nGe68~_*3jcat|K$S@ z4nxL{0!aG7cjxElfE%wa7u<%_Kqu%-&IPQM;``OHN=Gnde#eE^fy?{llCdm*$nJQd zkwn6Lb(GzK3v5VlKYs&E)KvgYx%)Q=Oc+0swUr1^GLGqkKpU8KOA{|2xHEaJXrTO9W2>h$7N6CFluX#o;BJ3AUP1fs@}gLoef#9gMbF1LJ2yh5z+h7pc78{mJm&)Vdjo2_GMLVP%| zko1}TA=&Jm$f>>-Tid&xI1_tzXfod7_v!r1(dv|cl^Z-A^S|&P;H7{_#|#Rn^AT)pYwec zY{Ywd_J>w7d>dOAi#b|>lb@5H1%5MxMR z&@)|l&)k(^<65}KjD!|8^wRiwLpV4CAM!{v|AwPyR0-Qyt<-;gCBIqZw$fT$;kRNr zw#aCEd1f@yPI`D=CiPLqsM{uyP*N&Ch9Dgcl2+M*l$0xZh%D{o08v|(1tP_`n+vU* z+da6Wk@Gi4DgT3^#M)7MSgYSv^7oUQ)u@t9z2`uBiqet8wBdd}k0(8b-?i#B-h@q# zcu4(q+uG{vvN#EreTwuG|K)jdK#S+-G$Co}XP2F6`LwX+%M&)lcFZBTtl}eCcn};M zdf*9j{XX44yHkRkjwadb??XxQ>ndNy-Vo^9x8N$4Dt!2JB6G($eWlBDWLPK6aMp4A z3tqSpS~LilNQgqFCMG(uKn$mjlUh9sFU$J#tI6AsVQuGU@O6LfdlQWopHEqYo@|5t z(cLxg&4qk2ISSvU)i6_4n2xe(v_ZVqUG_V53Sr~*Zt}4=55SUY7B^!Oand*vw-}sK zB0bD>NBh(nQ+j{2#iUCrD+Q2Nkf}Ie)+pM0tj0lnitA#jIJCcvhHapBGI3I^U+utX z$dv}x7;72nuuyaEcyAu(LQ8kexK1z5a3JPo5+JfKBI+meO;B9bYVFIPIdO&;4y%vQ zdadZbGGpY5UEiGwpO{Y*0q&FVj_&~2{Q+hu`Q@%gO-${NM(PDO#;dqi zjkZ6wg))XM{Zd&i6)=Z7nMl5gFDsgB>#+H%IaF%0QX2ka^$@6uCKY#2uwckeT zm)HdTW+JY3pLKEl>_)g-VYKxGi;QsJWJXMd5D$e*dvM+F@6osO(4IO}Swp|ryHhem zp&c!#s3E(W-T{ildZZD2{=z_pXA!pIPjiMNdHJIIMc<3THa+Pv)bSp*FObG=_qp$z z(Q0eltP-s_48=?!a`RX9BB7;B9o}f^9_Zz`8cRM}a7JmryXL&8FSN;#K3U0oTl?MzJrf*S}?>6x0Wfrv<_)o2Z(pVPje`N$$J-C?D*Or-GASxE)p0}6Y@IO*CyB71Bxr^ z$xXnj%OwXmed^(7QKPA8m7cOd{VB?aM&I@JleX}g>O9;Wc$;Xz*>uXp!ir`hKIa!U zHCecB%(D149+*=}U&V+<4~FY{&&_Z0dL?u}h2#7FK#wUq8b*%EYs8$R)IM}=Vu)nm zXUqRFbLWmbR;V7b*yd`WB{yz;i2LEf!2qdvu@Z!?p4Zt@sGAWvLeJi_M+N~ zE2uUh2EPqcD}}k!8{8bnP*P4v2U#UseliuZl}WYuqdhG8Vu(Lu5lPx5wKdnn2(9$Y z3N+yY#&BW9U-G2Kob&mM3M~DS=r0ZX?GrPn=de!z3JdG_ySs}-(Sgp5d1N-f!fJN* zPqk+Hwuia>BP4SST%V#bLxj2`RH8&|#8AQ?1`AXsXb9?V`S?NQm1I7Xuh0F-NG@;n z#zlARjT!U?)#%j+tcI=fb&IU-@fyCbS~}uN8F9$!p>F7ZJTvu8(;cN0M!=Y zaVLy)2h3E!DrV=ll`U>NN}=sOsahQMuxz_&RyXKy+K#P1$yqcjGr=r1)2$y&L{Y)e z)zx?Rxm$^d_qjUy3ykw@zP{_8nX_M&uHTJ$rg{$bKjM9tH8IuokODyE!*ZjzAJ=bi z138H5^W0PdB&o9RqP~804g%Z(+AF1OXC1y8yu9uPsERQsY-p1-n~>`xj}7R`t?$(b zN@2&H;Dxc#HS@%ciO>|bLt>{4sgmCto{^iq+cyc8l4SBC7;~H#Utn4*!VoIR7i8?& zX{l!M=a1G96FOqkh!La`PdN#}oDEW~3_gDQ)+B!O*Cu5JW$17m}pHm>rc*T>vMEC{ZX6{xbx&6kL z3|=;thbGY!@CZDfo}NxN0IAj;#)i9HA9GswGGltM_GQmyxRt2=-Vw5ak{_4gnaTUUx60?V;mDwad`Jed zsG=m(xxuHMkn4$>&jh+#wP!1$_us4meb;9TQ)unT^9JfdGmT|Q-}|lIDMcPZ1q{w) zE9FavP-<3bYvIeR7~ji?#stC)K(&*@`%BZqq>I$G%myFy$jH7^QBkP}-f=^i!Ra~6 zsl_miGHE!Uc;iE&!G17sl*<}|w970_{u$1jXMXP1SqHkD{lJPC2K|nL5enJV!+z)J zWHp0PT~67Q7m?i-v4SXp6E!qr=>t~)x5+Mlf&3uAV~{kz1m2DEW;D1-Y+t0F`KIQD z$}<63X_;)v9BF)%P3*+9lWS}Dxd7;Q{lwdi#7g*WAgT|IAqF$H6} zZjLP}+)?i}m(ZR3=f8-fD;L-C^=~BNZVV0Yq0c0@vtnILaW2v$nvTh>cgF#|$H%_e zbz2VN77R5LR=A4s>dubh8wS=_lDij0aYY(UbCVxCZy=Y0+;?cI@n! zfA-72mVZGXwVSQ~roCnr@VdV`Zv3S{7IWAa4(xOWrPUJ(imQwUb`kM^gVAA)_~NSb zoEOIHBvB!i^B~$}A<^5V6j`{nF;@9N3?d{9cLcx&k#I*Ff8Y zL7xlayj4JC4##Ys6#^iM_CM&IpTEI5Cza7Ap5Sgq@)h0gAENZJQ;QLkN4jxbQuNe zZcH3;d0ZsYPq5%JxI-I-xJnJ7H$!ZU<~*p&trSH{x{M zudb!Vgrp}PFzqOvNpgyEND?Jc9O>a%%LKhdb}Q zcZv-E>yu)PL*t$-oP}?0^bqfHf5g}RoW04yO8b8-?Ylcx(MzA!shlm__*(@f#|TIg z>Kh^b+u%l5#2+pETsORRbr6~ZU!?di5(l6uG7^6lJn6K1&G?(ZaO63wP?mNJdyJ1< zyT=S-3XkJ@-@V0~4byefUs=48h3oq?d=?tSss8xQY%S0FJ-+*Jy)3PZi!tBApFhq$ zi)adE&q>p9tk&aZiAJQsHO^|hO>7K~^8x52OJw+0DKVD>Snl;`e@0>sl4&gjd}5(p z+6XgS6nOq6Vk+~>S#QKo9E$TQuJbQW(EOl9plwZF2Y*ZyJcVuFc<(EwMdnK!cA>t! za56z>urssYsOSjfj2m4@xo=XrVHLA5!neE^%9oF#z@y;jJj<3>YfsyrqkSUfZqQXe z6-bmqyJC-yAgj`SJxy|ZxszDx*UQ}QGXEFw}q30Nlj6;hWpQ z>u3`ec)~oW^#ZyZW^6la>t3KHOow$;aI^X3BOp-3W-8iT%#Uok%asQCb33j~@rw&I zsXmi;;^OW$W78!rJ3pf=ur|6@OHcD+p79AWh#yw>Y24aI`dLy?_%uQ$mYQ-)N4R9N(D&5WfGmNTi6}5_ zTa}h*W%YH7Z`wx!&Wo~6j;VNoz!8DGuY~};Ai-Z9@K9Y=Vd-p5_LAS4FCbt_0}4Bt zFuW>_b3rp|3pfv0@@vNYW5>>GpiXn#dGCA-`S5+B)KeR3i9(J$mDzcfpn}P%Sq3A z;NUI9OWy8yr4(0S+HYX;l{sjMJAofBH8*k9;yw}bQTu|~f4 z0kU0UYczm_By$@nwV;=UXc;nskHJLFhL*`UqKfZ}6b{}g3B125QD+QQ58 zW9A{Zc!#JBaMzj7_b~cFlKu7jIw|#99qV(PTr@{VM_B_j5iv1WF3`A18o!*+J?mx* z9MMtjlx_jJgpyWc|QBxeuvJA=lhab z3enTxuzsb~0=kITNPvZpn=mm)?B@+E*DcYEiz>GY_`pxj-TrgZjSa8(#dk$AtRb7H z3r?*La}^Bo$9qA&68Ev>U2rjN_Tj!?zTd8NUtQOB&a)G{+6kx_wXC00@n5d78g&!3kSzqj(( zRw+A!pkYypl1UAm_{Ll9D;i1XzZCVO{7m%pfdbmyK-g=+jf70BBA(Z~z=%aY&xu+3 z#CSQ|)7N`AIR#XQ>znYulU)e_Ua_gg&JEbPMf>z1amb zWvd&6uOKY}P8Nxbz|}DO8G-o`{WjNlGivBB>nOMh`T(4N7muw zui$;)tJRWwfAWM-aF}>Zbdf;i>x@ z%xyX&@6Ul0>z;pYBa^v+h9Ka_88dhD#Y*InzMuBG+UK&dj-9EbJeYvtP;kMo<9ALq zc`@lgb(zEp?1rllNU#10BdkSWG`>S6&%wFrK8~cbMU`}fD;Uz24>|cBxwk9uv*75} znHgn>RnL@pG*Q%xcQQ#dV}*%di65Wu3>)1%ucy1MEeO9g&c$xSa5MeU?9+=|<3ly`fBkaqVGjlU1tpsRqmOs!)5J}tZ3vL5oBZ}C@;EpYUzoRm*RH2a zK%vG+qEcC%2_l}5g=e=FfU!>a+b81(NB9OCmM&)+(%`u=uGY%@n?`W3(_jO{=$94* zRH&&&Lg@ZJyh9mTCJI#J>#GkK9QoE*9uz1IYiag@mo|tSE{Cea{H`nZ9 zJebV&2~NF2>#kfb{MrxKOR1w>^Ag@^2*A_?Wl?E0NIjBf7j`U<7NXuk& z&<-R?Sug)|Z^%v`9@&poSmwy%QE$IS&uDi2#5!F3S+~!n?1?mua!Dx|`fDV}g4jp* z&xm>n&jFHQkU2m#g~&i$ykUGHht4zWoxbSh18C<&+%4OohM3v%8m+ly7vY&zY*dY= zZlV}58ClQF@pm|zN~`T=Jf_c%y=%GrDf|&GH|JRE@><2(4ieygEPs@fqFAMR?21nt z7h8#xkD%&u;GMc~|FD9hvN9mgVZ6g$(d9-}XZ(dT&2^Ty!U#ziocrf*-?J!}(Wu+8 zKz)-f=`^P={pjn(=Ejmmudh1D>w%UPO_i^qzNv^fdr4m zB6VftKyg2D7z^AguULm(g0kaqrrI9>w0+7Mz4?-``avu00d6CR2+2L#&3GwD$Jwso zrKkrm_H2CQza${8ANHB(0-{i7J=!f=b53J)DFP6)dE>o~X?VmJozyO44zul9oKmlfL z)RpO?&nD%;*c0%otI8bD)Wz{Gb-kgN}jSx254gA(JrW4zZjL114Y_R z+*F$nwtxV+(S$;fe`EvaDt;hZz4k}0U4aojxSt0E6VKk6lS@+3Ba_Gz5wJCUqs@df z$)rUQ;!|w>R;t89Nw&qGM&+5rwPgs41*T2y0}f6@{L{;-PE%g}C-5+DO(9y}djusM67UomS4acn zG31y*d)EkR$-QQ4tPYYM`_q)|+f-mLYskHioMS@f*}xg(=(TUt(P7fU%Q@WOve=T# zV0CU}nju?T4pwq=!U&@RnRL`3sxS{xtotQE}ELCaZif@nWE6BedY|WMmPt+<< zMYdZ%3I`DXSRFDQaan(tE(sa41jjczPXrabiC$sE3vS;*I>F3F)^Uk_Z1_RI5mFLn z+E?f_&wVo%b1<{*K#Wd(_z5+ivCWkCS@A7T=}C0Y9W@Hrg9@%>GGt6|r6#Lt_o-wG zPH;PB1>64C%@V7+1p;WovuEB6!2pS&t7Qw?!30@}!f(8eC)MDEY%bF8FyxX!xkuhj zz&8|Dzo6Ei5kaR<@N{3cmN#7;JnAV{*#0D!!f`4l;NJYYwFQz^=|SJ46jfQWFyBkS z@D$u$fW%!jg>w4%k&B7_rbjV&$sLVn3R7P4q;R{rlqB> zTco`I$)Jz>bpPxh5$hofj$|$`Ij;PxzRuy#+*z!F z^3P!ws_kS&)0sX;`bM?5=1r0}@A$~S>c6zLaMwgW3qdzaon{i3@@7PuG`#SQQi!;S zq;w5YrE#5#-wN=;KSF6kz`G2V)Vg_oOS zLEi&o-}8jJ27#AOh7^xP1L6e`-s?L|kKQe1BqgP?*7)mX4NFhD{qW(K=iUkYR<}fN zb#c*iE_QzOWrMq`QZ6oZ|Fh2wO_JS#Wj~K}KcHl!l_u>>(tSKH=Q2PK7d=5{?y-kk zlIJscbj~B>b^qVL{4tv&ozzAQKSpq29P57Z*{%R^|G#Op|HMZ%Jm1EV7HnPzr$&y{ zCS(OIK@nd$bvbJzu2nx^{6eE|t+NL@tXWHS4ie(argm^})z(m*s(X{#dQaL?P{{n> zKjErlS<*4E+d}y{NDm&+4S#GLvq*o=Q2PZ&0|p8!2M&tLNC8(O5AtQ) z=K-Y>U4h@-$GDu@b*y+BL+1(tOKRAXU?p6Z{2ZLoeB`OOB2Pnl(d-oldl~+Vk|*yc z^P*fMlNOS`xE$`LVNrG-?V^LbGNdbNlA??KLUe9W-%aFlNdO7`sMvSO;;T-q8m zgC?C^KW!X&ka7f;>()FIOHv)V&6J#OH>aQApe#F_Lh0sPs~tZ%RvykP?1-Kp3k#`tr}^WJq3a`NJYfK-ue~vHa*{4 z&ypV8a!3Ii+7EwHF<@YKCla)wxpMkIk`y(IgdAKP=#ziMu7|sn2V9&mP+#tcyWnBX z61xU2{=tmDZevC9p}~}-2ZEDNAo;-TGF$XQ&K(Uj6RSV3%l!_z#8_Y$y&vhlFc&`_ zy?T&^5u}EReCeYSf|i57{+Zr9>!5S*P2TJG2cj@ekdcBsY|&N)#B@1$skJk*EA!19zyY?S{U>&)cn7EMJ4D2Z%l1=YK5Dv4A}VUuzi z>9?xh+6t<$SFjtjfu;b4mz6X^pMj(Ja%qH}S;rT)I1!fY=JT*ARaIofH>I|%QOXA$ zQ<4;@N=yHN`jH>QVcbYC`TNRcu1a41gR2de@{frE*QFl1_B&C(eilE}Y|V9ZvgHIN zN@v?(7C{Q3=2xVht`g`q&(xkpy*^i%^nwuv8OiXat4jhy|G1Yp~Ou0uP;raXg z9$n6+!_NP|=H06R!KRB(E@av8AIWfY8I%<2oZNbQ z*V-*ER(4XM-%@KALyuQPu1zjh?+&MTkAO@BR|6;;^o9M2Utl>zdV^O-qQ>95z^Eej zW1GrddU&b+7FiJkdYC?b9O;Vl%%rVa`KM+769c)@7FO6%GzvjAl$8dT>+0Kdr)XkGV1m$K8#iPHVf5_k9wIrMFh(U)E*HY|n<|$0h z3fCdo@j)D1Y{F{Y<*k4Z1Sh?0A`coqx60&VFyh^dVm?C04VX5%$R#f?|l@b&h zDhcelN_(}3#=Y-Taw}`k^$#;;@`Xy@KtJ#-Y;{^cE7c828)%!J76M!hO%hw+1AOHF zupp#1xDlMmq^i5FHL2xB@(vbU+FRl_94Fa-w=Z)qMH?B>vQU7H@|XXS|5d5Nip>Cx z1LnkT1y!ObS7n>1SALf0$N+nBL5|wn?_<#V3g_qfKqe;4C24zOX#u4F%xIy2RE+#Aj3pR zzouGh%WFO6Bol@cGXE#Xq)+o~@hoDbw?tAM6hsB?bJvt_(|iUG-V}5XR4}eNMsnYp zQdV+LwVBd}5uEHW+Kk#HmeVw(J}BcnxRv{EmTo z|IiJgC8?=;V1^c+mzn@#iYj&ve6){QR_xxf&*k3AcVDZ_)IYtu{l@x3Cr*> za6GB?h10)keH-4V?4onf{Mh1@`;dK#-5vVA+%>DZ*dK<6;)|hTV?0&xvQ@qGi;9!> z$PXqjY49=2bnax}>20)*jxoMVgXWgVx0ahVT0A*MLB1nWL`~=BAg!T!rNfaEPF(s~ z@or%B5H+_SFh}UB)8*BVKO*rN+>dI4oHh(;SKM)td354_vS8)W#f$n%nQXK>#j65Jb>=enaRwRsuNh2n#^CuP3g)oz*S>xzV-Mj z%HaWM3hJLTezY)ZT)y_nFg`wA%yZCc<%g{x9*cOjC(eHB?omMQ!4hR{$=J}4#lQ*v z@ca`#Yuz6KadGO3ikNWKBJde(zWL;k%sWtDO1P%%XO!jAp5zZv{q91!3eo5?(egD_ z;6%@H?6IwWf{B2JY3T4%0sWN(W94EMfjf1m%heZ%VyNx3A#9mIz%k3Y~}PJ z{G$So6p?U(-+eP()%Vu^MZ}A;Nhex%EiN)*mpiMQJ=}Hwjj!)dS-9pY%VrncH2(w) zw?AU#+I`bqp00Iob)h^z^^7lI=^-c)L7}$X2pMqB22GE`FKJQwN(n2s4Ac`3fSJVI)q@~+oY<@=C+i3L`m(Fl9tP$qLI_~14n zokZP@)`_xWAHB;{E#1Bd2aKOuA?)2cpFT(s^1*MC!mvpPVSbnL=XG`eirzpC2^M;O z-`&=r63kQZe_W~CB4tmadA4l7F{FK!8yWWqT3f5Lo?{2n27U6hZe!5k!&oa4Pgeey zjXSYRi8<_|kll%KfsA9~S?^<^+ijjk_jXWnKs~%hMk>_1e@ca$!aepiNjNV~noX}$ zAB9F!xxqodaSW^|lM-$+tLFC9=}nJg@)Ox8FFD z-QC>QmyIhy=pv63EQc2M2`j9jxlcgZ|w)y6h=jlwrFH-wDiPEit=-XOPZ1?G;ZcX)am=uNXN}|@XVwc zZR_O`6CZ~j)XG;YN9k5x5a#poC_1OJ26X|Sd?H)_Ji^>cA3t@m;%(|$mnE2_sL z&dm|2Q5Mxq!|p$(YuWe*tDPQS2t1Ez{?zL*nkU!_Xn)v~EC8Ru`Cq(okf8(k2>Iqy zOM4&9T*}5ZQb||51|@dTTZ6TH%m>0zJK~QAw6T3KzkArYkqcudr+yM5Q1!!+J^?ZfdU`<7z&9LQAIAZVSE zm$O`}qy#d|03C8-HuVJmz1j*D6s*-K;501sMsbHBm< zpm0{ga&C+2$R~UR2IW-2bhU|jZ9sctbWFh4G}!VFjk#5l1{IgTy4~fRE_#%dX~+Rr zBV9HS5#WV|k}g)`B_9xR!cA-+4tjg{alVxhJtO4duTHqcRTmXEXNzC>-yZfRs;WhO zT+b==$T%+!5(?TqjC#~O-dI3QvkxVGhOM-Jdk7W0b^P;L8@y$JJ>HXfYuU<(q`_f5 zQRkyBNOuHT;QAQ&xbKG#L*=><@SZ6BfU&u7T(_GdlDOCswD8!1Vsg8=h<;%LQX?VHPb5qWY}P4>iyc_%&h z^6kP0{`WTe*6m;XjIIR(WFCSc93NlbdQS^JaGVse>Cjm!jwr2P(5F!S?#`|aP#p~N z^g*T!c_mBKn6!q>gFB_OPP^_tBM1(nO}qgk;7{ti^L$jVzgg}>aqnRpfDoRr;D+mcmXS3iS$ZN&|3V_8jXoV~GAd|!6>w>zT>@Hg}JD+S}nsCyl zb&z3y70QLj@*VY0wS*Gs?&mhPSEhX3Uv7+Hhg>5D;ge;%sd)C?wX@r0l9I1(%FW?{ zw(?q^a2+eg{C{{~@`f!9d3>4Tm>;FGX{|FyMC5)`+jxiudiIblyuvnE|7ildFOCg-y@JMmDjF0VdzmLJ1KjT?@}jU=*z)Vd$Kv z;$FgfN6|>@HJ=!tJJ6;uv*R_~Zl#Hg*QVm1vsajX(}xa2nGQ}PpDL)ZS?aqp|4zzr$4Zr-nVFf8pb5Bz;i^$Uf?)-3 z)yu8X$=Mec1_Wc5BKCrk6uHtY^U8l68oQPWB(pK5cIoFThkYM#heo`dKk*DDF4p>( z6>aqCD1GH0O)&7^Y&5;xoftE;A$}MkOGM9Dj?X)#B1uL4Z^QpW(k^bT^&4yvcbehd z9mQ>Sa>jK_o_|*K-HV6xoa!a)F)g~6m$~Mj)biTxS6S+AFOQqefi9L4W8~ff$|Z|1 z^~pFms(%%0u~!FG+h3enC!bqXCsx0XTh`oV_&LR{U|P!1IHNVIOdotBr|OCAB;xR&ZDHXMtqru;kKDE zmi=2OH@gxA2ddUVD1y<%`2>+t$u8;r$HEy(X~??nzgTMKlHClx^w?3>U{;XMfuYHw6+8n$ZYW; z3q2JqRP|tFqRBi5z`t~Wg5y_go6;NA2lP>vka+CR2RL(j<^l%|gH_#1vbG6b)r9Cp znZ&Z(%^(ZY4;SHRRJ^63bV0Q5FIl5H!9j?W5EWKm804r^b1ftsfi3pITvD;|Oc*_~ z`I^c0618|Wht+Dr49x;&HmJkdYM+0eydwRNQ^ks#;w5Lz%kFXK4GVNVq^OukAj+TK zJwY85jYJcPW8TDIS?`p=;Ig)kV$SZWq_IL7P2&e4EcX*s5LRO1Y8_Mv6pYK)#D(>^ z(hSDd)23@@|FlO^G*DbJ*78n4oFXfvA_*R&HZsPQ%VA;x(j^{T=S z>i5%{LyN0c^dsG`52?h(@N}i2q*lwfXX!re>`)BP~z` zSqQ|yzukS8Sg76{O4;18VhQr)Dj(X@zTXSS+rUx^Y4_?Ki}RT@t2C}phZgf4|--!kQW;_3l5u6 z3JPX4Ec#5WqDY_%lZ(H90G*vb|JFOc<^%n9Lm^jF)MZvnLtvq79%m@s^M=`vEp`xh zAxwmWwJ1VR%OY(kXcHB{2N>~skx34zkJt=;5;qM2XV7K_^YvM-kXa(-UYIh2{w;bc z;&$BPw@bW7Fjt3mQRZmqvU%~&6pB;h5!5+7F_9B<_!2;sWqlIu%EZhN?@QZ0@{|Xz zy^NyKZExz)DqK_5DMxhW)JvcYJc&<0J;s3Nh`4D6ILg;GfT_r$LU&9Q`!miIRhEG8 zYLfr`t-rE|$Naw3bLR8&EV;<^7H2gT2nVw`q;bH~`}Cq(2>rsKsk2C96MN71I-nb$ z9EKUa2v|)Dr2*C>s=p)5l2RW==M{fH2{b=@)TSlqB5k=LEQO1_%QLTJhq_r zn08T6B?(Zt^zef22vUNlPm{HrSU{G_W4~BFbmD8IYUm1Eg=T+o8UD7wQ{e96Sa zI9#&s+pq#TDn7ZBn5iOx8FW}*z|FoMjKLhv1Kp$U53800wV!^Km<`U8FYHcP0}D^5 z)!#GL;I(4SJ>8Rl-rv>^3Alom&i`wF#n&K%q@;@8#&X`)|H+`3f{)uqAddz*driQT zmMY9!=;TVbV&TE5tqx3?T;y%Nt^X+Aoo`xoVSSqys_s5}%s~kDJ&Hmmz!#hCfOYu5 zROx|`TmJak@e`9Z5#L);9gQ5>6BL3uy$LO)JkFXg zE>Wp=Ty2I6p2h3s&g4+tU?t0y$JyByR#f1A?8ruU(L8CHk6AnejB#LGLRyCy?eGq1 zhy6)D9%TI=n!YkD%dUx*?ocVEyB|=x5hSF$8>G7)q>)sRE|G3tx;sU>ySux)&h|U! z@XL!IT;4lo_N-a6*0A6MjxR(fb2I9{a1phZh!Ir5I?~n*t>fjMO34sD%pzI+X^&h< z4eqv%7l9^+XKAqw{2HB_5B$*ktT$m#zppovt-d8NYTL~24VW^;Iq^;s!37_!^Aa;d zkAsID@By5@s8jo|xmfzw)CH*G7?Mmwqati~%^j}`Tzb8v=nDfTdYrPpP zQ_K`*Mt;k>H03VS?l7uyo|ky}{Cbyp#gw3!M0X)af=FiLE_o0X_xxXtj}LAlYmfEx z|FgP#4b3(=p#vJf zM6tcvHQwEBo9Wt3(Ajlm#Ndw)anw8nmdX$^6xR??NT_xwRR3Hlm{26pL=rjo`|<29 zj`tIjDs$7%LLr1+8C^DRagE=`4lck4R>V(zNNM9c)GeaMNO@48S&b zrSU!PL-gwvjy)09s=$=YZ@+;{cEhQMfz?f0hQDwJb z#Z()C1nh;zaE3nv!%ZM{#_s`YgkO(|1-GlVKEoVoJ#{FA-@9r4`dasj|8LL7SULbx zy4}1T3=)MCa+C6#sUGHAjD>AvMghLfrkefkb^o?;| zg9MXcBgyw)$zUzB{}%E4_mo`jwwkT@wTMKZ{%~8BJGl<1TELRit7;?TSRmv%KaQ>H zVYT~KW|?rZYd+TC`eYW2WxY@)H0tenx_i4rKsAiO@xEj(S7(Q)?l|Cw8C@tdbm92Z zRr1@?t6J#%Qq9-1ES*mPQo%~?AFMDnG7?#?_}6PcH?W#6m47Z#o_Dcvr+3QFNFpa4 z6RBE?i~(neezT*>C%^Q1cdp3$;o3anK`2s~F5TH2>t^3_snk2Ir3keFu2-O!Vt-!OaNLwd8~E9{$VP=B=JQSf4geNgidawsI=R?^e1mbNrQ zdWbk+nJcosz!Pc0uI>)acGNYoR?U_UA$3hSu67Zc?c9koInO6JsDl(3TfBGQj|)-I zZ}onmv34(MH-5mZta-Q8ewT6OhZ_EHS+z(!sES*C^jCo753s!=rX%~;#|_&#gE(*# zFl&~7j;7?ap0=6Dle;_LdKU|hJ=A6;w(be>$P&!>95ijhG@QH+bh;m35~1pz{7WZd z+AcO_YlO80Dw~B2(PfrgwVDh=aVeL){N+LaygB;PidIzi19qsm?AXo zfmk%m5A@#*uDdR`Xn0;}?tI{2wpz%abX!bb@_k8da{M~c;b<-3Dau|OK1DdPoZLdU z^qqgG#_(=OYH-*usT|p&eWcL41v#?3RJSB$DFxpe>vDFN`?UXw>Sn{<<#@SLWaB=w zN51Xr(}xME`&-#*S_*_Tjn_1uBD#Z{97{8``rN-T#6e@Up)`JizC>sK4z zYQjpUS-e*K;x0qn+{O>=mrg*5E0IO7(d(|VuFefm+W>PP4jvwiPR;s`A<7cIwZCx2 zw?Rp2?mBT=M0Yx%;*?6f#zR9#acDEy3phGEjs%ae6MyxHoTQK zyH5z{;-9pG^|pN6$&V|)cIwZQ8~mNxKylB1!>ke4xwE0xAT|o4jfTJfnaxw`!d0}4 zdK9@2AChM-SbY2&e(5GiLCT8&`NYPc)tl%1Mq6|J(6p-0(`z#R(+jokJRXmA>P!YF zaxwQkX1$Xz!tW&+o+e%gdS=Hn;`P^+@7K0cXZjSHBUwW1Q?V~y&h~IzJE`tAF22j? z7-?_})L~mqw7Q#A?K^X67lVjkz8l!XT1FzYuhf*58SffdRB@(YkoScVl~slGf*Cr` z+!N7q(4GdicB)w|I~?|jT+j9wZ!JRPVbdPa!P81VcldutQAdRf zrL~xA%*NA-$y~EkWy{sQEQVEtc4!l(j`Q5@4)5{v*k)kI*sio}kLx86Js~fDPfYTH zfyurK{Z+GV7+Iqauh$&RLw303)Qj|&1M-AEv)=ZyYOM)309Fnx=kYqP@li)>`45B5 zm`#Q8*LSsXV#yJ`2}L!`c-&zb&} zfX8#1cCjV9%BjYzdA<-WjycBs>I#8!g)%RXRtHrReS=lS+DvnYdfya5m)*Q!2kl#w zuP>A0Cf+aeG@7LWTATYYH&RdcS0ZA=>B9ClHUg&oap(jrfMSoCGrhdrYBf~|bjJW) zkY;W!4gCO*l-FHR)$9G-;*mvruwPqWN#rg$Dk^Gi0CJtx6dUE?=s-{6RJ@Lc0yYs> zj?zYV(^Dj>kkk9ZK<@|E(E(_+VFP&)l$a7?8A)YBshQ=0Z$FE!y!*~kyj*}FhG7d% zgf1MF{K+4QdVjoLpqY8@2aD$6zvmkbc1+1a&Umrw_Aqh@MY5Mh++=JJ7 z7P95X%9Gw=0{iubDS=`An{94>;)dTk6a)XsG~ErQw0K0ObCnlHe;eAB$k_zSOb-UF zK0L;{BZa~7ZihmrtCp4fKYaT^jUJBdi_au_t=^#BFx3>?ct1C|K>ys!B7LmIY+$s* zuMl8=S7d<<(fgiBp@H;JNKwMi6(aM&q#L7rw$6SSm zZSqL2yQ8gDrZWLO!{|aj@B7)UyJ*i9)Ea)iG2a@no1MzndS>Ty7cVF4IM@9QN{Hx# zBAJa|`SZ=nFLd*^6_waAkPpUY7d6X*0a+S?UrDQ8W?gPQoJ9D}+eZs^-dHLcZAF^&0N4fZ_qYqC>>|?FZMh+HXO0Wru!9 zqs-SGXSO0#eWh^nrJhehYlob|7T7u>>?`c(pi7hTxF_CjAb$!OI=B6lTxT`etcTe% zgb!ZEN2tk<9DCESFSfy)Ojl$Aw>E>RO_9q5F=<>}Pu-k;f|qZtjQL}5wu0r7-iTmh zV>?lvZ^m?ah})Rjm&2(LgyR(}3w96)$S*1JM8;UCzT-}qt1z_^{)vI@r^|;2!H^C-q?BMGbQzzTR3j~>nCFtMhj)MPGL5%~#b^*P6JXY8j(lgz;U+AN&%hLm z_l_yG?hqB}m3P{$q(>uGGxII>$LX7-8DiC{I5M1b(nYmdD6L62+}(C6a68p9KVAy& zxw&LD+L`H`zY==V^SbXKIE658s>^(R-i|Q;i=lb2Z+o!M{;Ksqwi2-~X%rEhNonr*o91x(-74$f}|9Q}HRSkN;x$mx^jCt}1^- z`C6|70TIrU4DxSg8s$vIG`{>u_IWyE%LYF1<5x0-FkGFDO#9Tq1vl@>9Y_qFpRv}g zD^bHw44OXPQ{=!BQ{3TG+E;I)NXfwII)8N)sq#u~?euJS$0XsyWxnnTBLJhrhjZqu zTTQHYNxZ&VxzcLDM;aNQh=9Niq*qT*PZN_3u#GIb^@<9Scj2{Pq`b||cK}=D+#Y63 z8Ylpk{FCULV%ygJd$3dIEIdM{r?bjKkgi{33c6#qWLkT-a$sbpyfLQjs#u&$&7p9dq zgyM5v9Oz(piSU3W_gpi3Ul-9+S3S}c zIV+Pa;&mUMG}#7_)Wg`$Mn1CLckZ?;8|H2g7{{Rb*MBV-V*Dbd94CnEZ#7c}rvsT^ z{?8>T#=6;~gm>0tmm@D&@iJO3PPbC?yb}f+hgpNP6|SGE%wiQMvF)IQj=RxPml1|)78Vds#SI{frO5MQC(3%q0!yjOHUn` zr}^W?fO&qcNZx}?kQmhx6-8a-`zl)PI$69xdBVzDQ7nbAkvJ}xUD{XopQ44$h7`iC z2McI7_@-va_ILKpJ4b>)!7nxUr0}%eEZmH6Z@f5R|7tyZ#s13bW(*Y@hgHzmd8hqH zQmKzOH!0z^`P%J#sc1E|)KlS9d`&v%BV;oOUG^;O3 zxcO$WYI|`9!KbpKJq(ZI%|=W7i4^d1F6Rg?J13XO2+NpIBYtZT(rB6;%ZlG5(kVo- zd?bYj!$DCKec(>7p_&elIFTg~li~|62l{92GQ01*yiY>YNIX8thA)LexIJ=RJo69t)u3qbIjB{Soy^Cp%2xz%OXnHDW^Z z7QcmS&241;wPxUwKKU%N(YsB3*?!xG_YwYHJ1a5Bj^>sjDnc2KnA8^!Pxl$mFPl=B z{!(CE;x==Bt%z5@7(eGW_m!(tH;_w6tI&3?*!bI4ZbDM(0 zN29%%K2O|aqzK0M7cztcb;=)@8tx5RUU)0#RGdr$svt2YOd>fWRU#ty!y|`D_ zMs3V@cYV`RshZHfYs1M{sN0Z?jZXe8&OUpT+g{Ck=rpHpZE2e@(aSB|3XXjDGLy?A za-)LR*$I4fih`B#j|NBo&7w9^ z{}6g}+b#8p$WIInDs#i|)+hldq{B_l=Q9~&Z-F82TzpoMWW=lC&*j9T>ZY~my6o)U zdtZ47oSiSgdtbok5vZZnYoS*WIZE|c86`_z5pvSWSGR%3)C4HA1U-=wR7$itZ!3VF5_wJq-$o5o^b|Np-*t6bd{5kzZ zBlR5FmV>OcYWqsbH5(nal^Ru)@S{nG(`S5UbwfRl&0a)G8jsmfQG@7K1VMr4u+Zb! zYJ|HDR%+lO>}zg#L*b)U@DaU~kpzl_;+0xR{bDX1Y4D6Jr+`0ynmADfFXo%)KapRS ztbm6v$_%}1HrpVmDb{M*XS{j6`5MM}k1Ww4+LLVa?5QWQMUsvk^AY)vZ(YbwuV;xb zjhB)?62ZS`cZJ)B+~^OjG-iMKrm-9MBST%epu&fLhgP7mC-fH0G!~}~3&=*iGyaIs znwwuOn+3lHp@jNF1;#fWSBb~_mBzj^83mjS|CQ0n*Olm&tT%TRSu(6f$0qhC%!D9C zDd&cj&6-yAS1o8tnrVOdsIb&d$~9C#Rw)1YHdYSTbw#;h^G14{VBO99{1Z_x z6GI^W$v6$K%iB;ls`wwQ_`d7^OKb*+x9cPx-s1!{6nr`LNcnZx|k3f41N5OuAB4iwq%Q2PFZu!6?1 zApa*6(fRNDgj38NPAGz($1t}(O{KIcUY6qpwNkpOD^10&&>bP;392f!1x5vh4o4K@ zJ@Sb(e*RI0Ui}M&#g{^mv7XI^Lilq1!qaPSj^RG(Tp?XQ{jsS0l~o0R>4%-!xl46S zpZj0ieS7L+GpsuKMWvK14$AcYiWjc6a$&{JqnA)Pr4V^%Zh=B%^1xt!4T$9^dpw5(4v~PIM6tY1}LdQ>d1z zXHNA4v+x(I4ZH`)%vUYR9@6i=E(?VU3xwUA&_nEI7dpq~H|ACHoQ4p3&(3aI0GWz- zV0?N0f|fqESc;dCi7#^{Gp73DlKzO~LZL_b{T!)UH~u<)d(?)D^rqw zzD>q64DafBJ29pC2z*9c=Z_Q~M@m}S?VXWyJSH_E$Lsmj5PMbG$u9nYkcdK^G9L?z z-GM|_gBA~0ph7sD%CDoX{YS|2`cR4`?#B-)F)@U@x^EUjpb+Qc^8P358YvWi&L!e} ze%Cp0VrkHt+uG*gvGXIKiVAB`EKH3iixy#B^x6HKAm(&Q{7&>PifdG}oH$D&Y-sp( z3~=fQ>_4-^d(IhNiIQ-sdsV48Husuo%k6mlX*5l{)%#7yRuP>bqsS2~rr>Lz0F1J? zwlK=_`WyyK%z^e58E!Ieu6EO<+oz6P$ynI06xv5^pJOS@h`*-1J#aI=!f*SK42Nus z`Oaz2ryZy>rnN>~@$teZ*qqf}2-QBij|)=f>3H?nqrHVoCTrP^xfB8_Kz5Z(H|>@? z#_+z+vLSU^05!v;avT)iuYM~MT~ySs zr{w0drNRw-(p^w*iFx1p7*c34@w^@j;yA~W)(?7g>1EWm9w5-IL=cS(_2ql~u5Z+c zr$>om`wyups}17HXeQ4aJ#1$PA+SGjf&j$ss3$O^Eiqc}h@b6dbu8DgC^-PBBe+Cst!><&=!t4?+= zb8aG2rgtW@{=~?^YkYM{t!WiZ0ev2y;40Lu;I8}Uny{At*giBeeR@4; z8kTE|06M;mNqI1@IB3!DSVcY=$nb_T3$*2!MAkas1FuZ|%vy z7ycm)2Q$3B9_a;2QZLV2K+jI$rQsD`^?vn**g87)dEmy~V#>kEKRYMX%85Wf6DS^@&z0j71?;d&cWB8JFhd zCp@=`u%NVU;8Xgh_UO>Nj?@2*CJfYdy`MHu zYxT55q;n13VH!IsTmAskV9?1@qr%C( zvV4Ue7)SN}t7eTVs-Y@ZMiQ#SxOgtxz{vCFeV%loB|z6MLTAzVDf&e9iXT5%o1z`y z1v_7!p2CDZooz@~Z9}d}F=+A8)$dR59wd_nTSCh6Mp86#t)@T?(*|U7J43L~&dyAF zB5XmS0vZu{@~P6Lh2Oq?i;)Z_Z&3J$tpDh{v{W$wZ4){7T;99qBb?iVg~YQDJ#`W! z`grfkF(6#l6sd`--ePj!B~L^+zjga>MS&5&B?MwSP^OOl41C^8U(p1YDYFd4 z07X68N7Bi0^F}JM*S>)I3(nYps3@PKCE0sRg;49gFNlu`aLGB6GzC4mnL7i*NOx5@ zfh&H`%ob%1K7*xE7A?XrfmH>Hxo>w#9Qn&IqzR9!N3^k@O(Zb9w1Qv_sT^BXS*Dcsj*>Uam!qh+UaV4KcqVP3p4W ze$92Vc456}g*p;@e3xow5SAzh)+l0MtwDS4HG4A4in)|Ad!Elot8C;Uh>MV+U&tec z=Xc3O_~@CwOd3kHY;o*-C$McI!S@Btut#LM!@qGtL_G5{lMLhkWwX2MS7Y#_l~Iz= zcoscE-0SHQ9ajBjAmVzswJ=i9CFF7T+&2&xIJhHi<8>nR1dw@B5|Y%InDe~}y01S# z2MddkgPx78(puyAKMEik{^0{#Bt*n19Y`9ZqhAPld#tp%Z4Bgd|BeOn3##*QSI^rq^d83uaBMzT&Pwnf^a z7>1lbhOCDpTIj(K5rMLY;(}2Z(!+I!e z)CS_$QAiJR3e@N7cx>vS2kb+Y;8zZt103Fix#VPnw)~Xl+MqV3+0(8A&k*_IMN$s@ z+9hYN!7F6RW9pQ=CO)t3E!%!}i|ae<^S)n#3-EMy=nC}ed_@Yi<>#;; zt)8z|D@i;#7_W~XOW6ugFqnJVzhY`|K&+`M76NcZ(i> zKo!Wfs=)B^lWMZCshT`-a7<08dUQ~^dO2~-+G{Hj2|3e3PtU7;#L&CPy9=O3>3X#M zVD@MY6l=Yc&IR^Nrk$uCU7nCI0l@bJJYYuBh4b_Bz$h93=vcHW|Mv7Cw~}kj{@+oj z$0`vgoccqDGoW0ikjew(S}M1xj|M`>gj<2^?)~a^QrPR`olfrTE;HdtpLX5&M4XRe zTeP1xC@5?*DhzqWs^R0sR5jz9jiC`yVn4b>EoL}N%rlC1gD=Zo3IlB@J+waWVxzdk zHq*bjVchE=_cAR=e~oxYipL-WbBoU2Z0wJ8Ih+}ss(|A`lPPiJ;XsLq{@fkmyUq*+ zj6hS*M(D9hU8bd;M&uaa?$h^0tX7a3MPyYu0txb-cwej&0X`?s-tQ#euKE4DZH3uv zPR=T3$O8W`mX7(pv^<}lp03FBmR<)B&XMvMJw&ga9{p#n^U+x<`9!$2d+{dz&}zNH z`PkE+q!u~S->e*R_>Dux%k4yQ)5gh=dSI~|aBRmjn;a|FeQEQXeePK7E@jbqOt=1Z zykfdU+p*@7rHx#R!LuL(^9Y&dXszwMTWU(KoN4PGB@=UV=Zl(ZbJ2BYhV_;kz3>zP zs#d`+0gU_Ibfs!>|KL9OK?7Xhfy8C+duE*~sbymv17DB3Yv+V2XiIX1a*iQfuVYD&uKSWSbJu5QY=Zyg=*X)CQ>qd8s(zE40} ze|=-NC>oh1eLe)gs5`1nOod&Al5);bY`j|^s;~T}5m`i-vi|kaW&oE9uPt`4Btgum zi0Wey$X`F4!gAH+uz$9xE2d>i_sWa0qGQfMc4>L}pVcUZ*(}HlqPIeb86P#CoyKDE zE?dpNc5M=k3h8a_WZnI!PnvADm2_fhk(dUi^8K;yEPhYp(^J-Jm2TxrjxGh2ftYUC zX|He_o=FyD7-3{DC$CDX9bFD7><}Z<+s5HXSh8)QftU|FckXs1ks}5xqyif-n2Vo| zK39dXiXYxh$A0&w>mF+%`I%BNZF==HDHc0byBe@LJqM5+Do-s3YSjNVfu_V@{)QP~ zqZv#nE8Qkk?-0@Hp?vEO9aMG=Lo{@5)S(>x(vX3meiQ;r6jS4M6GV`UhCaGQ?SjY4 z^_BOTX*>(A7BQO6(Tx55X@-yxZ1xtSqZ~q^|_XA21@HKGTu+m zG6^^@n_Dg+bKN!8KtV6RQo!TVVzvF-_VzZNLK-oz6LrJz?e6>{H6vsHVsmHYW!Xxb zxAeok63%(p)r^~z!m&P9)9a%!{Gw~c7jpVNX&1a$qOqX!OdqM|T?`5F+)yaDzon8} zV0Km>N_$b%)~orGUN_cRh&QSqOGv@jKFnH7BHiElie9d;}Z9<))$@F((0|SwQS_xEZa)7JUoeWV_&D8fKJed^uQmDSqe8D3@03=PYK|#n+54Cxa1YV^sy~N7FnQ#Yb5OguyfGUI&)kBBhPZ?FyGC2&AqwemATXHhTI3 zOXsQsM=78YzZAmS$6!zu3+OIx$2N1hVOv)RGd~7Mg?*ZpvL$e6Wl=COZKn$H8VbRH z7UMI~r%HHDn}=&#vgMz*XFx^y#Gp0bd${wT1;D}1NLjkDKr@N=jWWtgMql$%#2C0!ts6My18wy|QjIAT!MMhD73d_Yr@vpgrfpN0& zI@n5Q`*A)X3Mc&9E_JrLco7ZX9iDcLEFOmE^Br6aM%k|{q@0DfimGujk!*dAc)W?h zC5$W!CQ=aS&^OXyWKUV`=~|~6r|j;V1;;O&!>4QgPG1g}N3}FgNVb;0m^R#SoVV{W z@JB|>zB49!Ogs=q{cvh1F#BVL^9y@1u_8jP1Y1k|QQ&biJql zVDTEw-v9WYGj!pAPY8H2;#^Y2_^FRa8{y6dWIV(M?ou7fm8S%sBxVFZcKT^V-zX7Y zks<}2q{6tn*28V;h?sm2I~>$KedCXmC5h4l!%DrYH*8=zTg;Nu`zHv!!&uns_PzW0 z=2@&cL*48RS)2E5+*R|-?bXo(tB_AecXth)-0w%wz#3r&L+q~mlUgkvH9)EV8?1^W z_UyvKhK(*STE#4|BwB7FzNC7xzQ3^t<|mszKF_z;2Qvy^um1LMlPx|TJlEiWeI=X^ zqh*zPeB}mv(&vzAfl!D>#HfYNCh0|Zjj`f?bVl?E!3^mcVOtC@c18J$DsWVgzQTQf zIx7){#W_l!Agl#0By+*LT1woF$1ELe1FvPXB{A<|;y8<{xWR^{t-b zS?DSEHS9+s>6#*CLo@w{tT;b{prPy z!p6L-m%ltyo#y+o$p2P^z5Aqv^76hR1a!4}Jlu(o=jRTjf}~b!HuO7^8Gx3_oYwgD zhtX7$K!PqbvUCWspi4h|(fh@!H}cY6*w-uMW!tzlpiML;_RX7h7Qsem0Cx?*{YFum zv@Y-}@%rpZ(+y@yRmgkt*7pjQ+4#XFGQ^YMXcEnOVOCGM+hxe+HV{Jk;X zSFgXNgmd2%5)S^CftAEWh%tn3YQO`2XOXBhu;`}qMp8Btf}Q46|2%>UGLqzvnQKxq z$>h6~q>H-)Pw<-^`;%int{6*ao5_ye|3;R(eIB0oc7reh|6zuBm!*7mzk86XN!9ne zS(=tj8W2(W@H+)le_$;{Emu0;d1rVD)I^}C4e+E^j}tYZqRVjQ`H#7|U6s;B+brAQ zbMs^A*N>W?;gO_*zyCNLOhaU327q^9s*v}5cX#lj5=bn>{{J%-=+Z-fNJ_gtDNA3i zY={CxZbYf4+vBN;rV+Abz@r2VG*UqE9?&R;OXm*?!zJd-2kW2*Cbv%(@@E_-=4q!i z?B3Nq-1cI;5rS%*PPUbjel}s!C8Js9!CkB7ccCmkk4V9PxV0F)>uQPwEA}O8r7vE= zV2So*kRjcG?8$TBm@3u?uUf#>o4u*%gJ&dVCqY0(WUO6 zr?A_C)}@Q~H07Ea!pV0;O&nHAONAOe5T6aG z%4dNC#I)_a-SS>ZW0#N2!rW=^7d;K!&={dqOhi(xFKI{=0X&r^R)xnSOvNfSqtvI{9@q%5U z_4T+1fvc@R+~IT8G_+W&tXRwZ(?5_IdN5umpDF6w{-eF80L-E16d87k6+X(W@mk4jE!;fhO{-a%}PMZZ!>Yf z+>LH&@dg}|H6Ac3+ly%i1maUGtwf@M*%9vLuAS=r4J&!d%d@h9Ciwi@J#XdyCb8;& zBf5Qa`)-A*NlvGkDg~z}@N`@Wb+a$#Cj#xiKQ9Zn-X!8M;}T_MQ5KMAW%(O_npELs z^1%05c87LFU|vnaGeHH3pr_1!8Jdb>B4UbsnIWVeyO|+AFK+CPm@=t1Z9S1S%NNC!$EgAMFlZfz0_I6FC6XnOCDK6I2LNBD~W z^*q<`eQk5qJ%NF^=sf>d)`fuua{Jc8aSS@Prc>3eKsKr);?dc0rYg}vwjkN(a`aP( zdo8y5wF-I-B(%oM*JR)uXGl@RP7owTLIwJCKEV1h1fVrH$4e8xGmc1N78OGwkRp1f zvL#czT+B?(wsPF`(ajl_pDPJ0WV}|@0Rix(tux4Gum&-Z_t?ZE|3Km7Swi zBEcoveqf_)|3JrH;s1Em_GYV`YhDq)Am^7(RAOp+>^BB{BBCa>+Ximy`4n*hENTh4 zIAN~`4Ute9+s>O8uE_1G!wuIu5{+ro5LY+-!%GZzb#;9>Lo`LtgRW^EENjDf&)Jr@ zwfR#$OLZ&7jaSC8OCeQ1_P!)yiuqu9!09Y`$f+OW8DTyW#;!Z>?Zx<}G3%E*1=^7H ztxOkw>h!DnW?V;-o>MF#)QfnZX1Tn8-(_4!iTzeAua}q~ia}qSkzqKN)g=)kOC(vb zwN=yThAvn9h4bfw=ff`=?wS!yQ@soU4J4iI4~r%Ku? zTA4iud^!WTLzoY5$lrT!IkT}x3SVisi~r|)$$sH>V8>tFa^=Njc-*4#KtUR`g_oP} zYz!f;)2-BLJd1*k2*t$iVDQ;}Ah^cD%4txhM<+1f-2W%OB?AxTg?=nWuCJ88B zd$gM=T`JNjYi?<2(6uYmZ#g0sB$TW8$TRhnitE{N`1~c6!G?>Uk}}JDByChRV-})Q z`*Gla7nWn1o91%`H|twl&Hr|;?`gx0H~t9INj&7yNa7M~QBm7Q^`2pcp2He_=mO-E zI{k(EprXjszX6{_ef$Q~E+&RG_olXUi6r~ZHLpX5?)mLCrmT9VEIR1c8D8?3GqPe* zW|s2}kB(*zD8}b)6{OWQjXv}&Zwv}6;1eYe5wa;`HNT7xhSi1*FEAs7roQaF=it;( z8QP6tz}I=}y~>pIhId5dWz3dg zTs+|}G$|NhV@Co@gj|_KFgp*|H9tQuEgiF=RHe!6^3BLQAA#XIcZ*@}SZ{S?L0sEu zH*#@euYp3ocVkcoK_1ch83-Qr+Lj3t9(E&a5oR@=O+Zh}iu$NZCH)c<@##B;a z2ozJ|#&Zcu`J}@oonhPs@B{Lr(*iCYCFBj`UJqAD=$=#~ifmfbtdE?`v3lk98o+iV zWMt$Q?n}|gGtbM{wJcYvZwBV9L>~8RUU9#gPX4&mjCm`0PEJj&l@7Pza0mT6sHu9C zX`x|tArnjBBZh_mQ`=^;U`*p=)=Ri6E0*-~3D^4RF(7NaT`Udw6v7&b^hCx67*6`a zSrprcCJ-E0`P$x&ej}m&OGCpSKK1sxudh%dbZA71m2nju)kIu^gfpZ~{}<Ei))dpx9QmHL1$4=(z?hKqg3&ikiU*%gF1@r|x0l~$cu zjg4jowvAVVuk?-Xa%Vosi?Gq9dyg1BXfd^vNY*@H@AKK+!)zQhelaeMUmoKJ+|9S4 z^W=1N=0Nk;?of^%1Ow3>CiOgr?wiB8iK!{h|GDtyRpsPJD#j=(9p)W90Lm&Z8QII> z96P}6EEpA;fABpb`f)c2a^cAdWH z$Bi)b4izu_G6tq-;+-JoWFWvtWm(nP_R#)b-Wj@53wvo~JDSNYtZZqN9i3h@X&xW6 zds=cUDq0wKl~nED`Ln*rt)HkM{M&7JUiQk-`yTVKa;uk`QO{^?e@(A3T3FtH)#MCW z@a!kJeY?%8ky;Mp2L}i6grIQ^PTz1^U4az+wG5vKj$(25FGpbE4BBrFj$kYSU8&gL zAFjID(wD_@qcGYSeyN0Xnd@j?ywPB#Rl*ZW#`kr#EB1j?g}JW0y8b)cV;jNw8>D?G zDILkbOIK?#OX1gI`2zl&69W8b`G=P4lo{T$lQLJ&ExYiu31sLVZSDtXAo=jJ^YSX$ zMT$-g0rA80W&m%`p!pt)+TM8f21qhljjl6fZ)X&w@Q;oq6)b=J`wHfX_{a6z5#bjY z!i2au+4K(^y?aG+Vig8gg185lyt2yDj0tp{oSc9eYr#lpA|oNO{Xo|EH%lyAGoPUD zzvx=H7JULde22=|4oAm|#zuA)Jsz!aV|3|IbcW6sPZ2vaQo5t$Zrrf&aEP=-U**yK zkF(hrMbfd(Rr`{S8<)1dnui`m9?#oLuG!-|zmIaNbwp3k z%wH+h<0mzL^Mus@*lN4^AuQ?Y?6>#tR6e(QvxbA)wl+InE~ECS(!y-dW1%v5`;L&4 z!AH|fC(knpdFllVqtGsV%C^%6VfSr>dZg}1GHhKGT=c|_=xj-Vh}+ip+s?lk&*eRUq5*#p2Y%zK)|F`aGnl| zvQ2r2D^$JP-eZF9r`pTo@yh#^#H7Q5@fiO<{y&ZF_w~dwNLc z^=9*bhsG@Pj-HE^pOcQgK?v;O5_PQ?nHbY+`L@#^Rj!d4c*bEl-%PJ&Z1bHk8ZURt z9m0Q~4edz|nNQnlHL!$~J=LD1Go>6X2X}5|#cvh(LgYb1>C3^ZfJxiz)1V9~T#gkofm}%NI+T)Y!~!0VOnd zgpX-gLa8_>CoVElK};+V%wPruAu1k%1P_yzapp=_u5!xQk^BYmi;c~o0o}f+R3|wv zZ^QitbGY$^QBZmvSMz zIU)ns?nL(a`M6?wVyXSHT#`U-*w0CScXp3{=t_;Zx67{i{9DAJJ1x?5-I)?SL9?G` znie08e7N4yCmb4?R_*U$aG|R(L$md$2;j=ICR!Vzqz#%x#$59S?7#BBDf(t%8O>^C zWOvB59wHChRx&#)74vwG{pR8BCD`gxx7lcRg*%U=fuH0Z{q*L(zbzf@XP5hTa@0&L zEN460Ee9h4SH`sGC-Xx^3Hh`6>Ak94(l^8`6L3+wmH=Z9U3UK zi!q*9XID1fw+EpsuyoZMBi&?=kNN89^OLvC9f`fpA!2HL#PWVRHT z>~1*;I@H~l`KO$mdDo8LnGyuF@LkUp?z$t(o5Z0RmQ@7v^+BDq19ItNG^YQSiYYT& zvt`9M7m=JBuRBvZgG;+1O6M;gun0IfIOu3-qf)5-Lql?(KYzqU z5B>R*gKd67vNaO4^#MiE%gakyMWyr4A6mKbw1Se2-E}RhF0M&;#Ff0+#FJ)^n?0OC z6~MMxT3X6H`{z;34A!9Lf@W@sd+^dh`S(IfM4y(4adm1U`Nl4NEVcCMV#Ii( znxncqBH@6cX~IE9lo^L!-2orI|6@hcVSRN@K`_r7aH6Pe)>gyix4{kc-@@%e8;882 zYZl+iI61+@6PrzyWI;1yZfBbkk-?)hsC6l>Aa24WJe?f9T`V8l7-jf2S-SL+86;BJ zIlSU2f;b|4OU_jG{pD_{`3+_0l64~AJ&;u;zRQ5-@- zLJ&xavY{~~=luNq^3p|91_-S)Yu11Kq_P3{DWI|E7YWk@T%;I31;4dfCdH5bsAMDW z<7g*h@+cR&Wbfs47DH2h&;xQF5f?KfBU%Et%`8kvc3~kS6;%KhW|0&EbCYpbC@M}j zsxmVnD;FmP2Oa;@lTPx3+c4R^^+U!tcprS6iMJ)C{Lb2C`c5(gFW2+SSegmj{h^^h zkkNe@4C%`p@_}v(?vNHPcq@nribl|NvMt$1b8?ISG#vD8} zLbdThTy#1A;4!oVt|NLeKV#dalMJQmkMPJ?2yeDJExo)P9Nw=QN=c#eF+|VWaK&9v zA$&162OaF|1$%VBtJ~VzLL_qHNojlL%P7eC0-YeH$A6Fev36{@pP@LwxJO~K0eYlu zXt)YaL6z2+ZH_QO{z*VKMEGzbSYPnmj60-Z%9&F z6S+Blc7E#b3-CQ6&gMnqni+lD@X@}sdpBCp!^NP+siCaSlavk*Bzr;LP!h6fMU&7j zy8<5koH`+VFdAgoEo>?R22rfvfXz6C{4WG3|EKOZ=bT z@vUGyg4H-_w?%Es3q6Y33x=lph&WNFq%6z!rU^r|>d!8ji^Z=#1x>0eM!;F|KTf#y zN^Xe!5%35wiMmQpPWUbp1+N5be~5^P=%}e-a_|WV5)%_a)$wPcxA(KJ?+d68LqkJT zQixYIXk$?af2X9Rq^BFGf|gSZoKYN@)-1}&sdm3G1IVMWu<-1A78bkZ$GdEa@aNMp zs#ujC-81qgAYf5_7ZoQU$s8jwuN)(|7Okk5e#N^|ABKjWA!7FbWa;@LF;)AR^J^ z^NjD|bm!ImZ2?@CAz!f_25c_H4s%U8?B`2d-htlKY;sY{?1AqA;sK$ZV z8mt#P8{2Z5Z&_jC{Z8mqbVZ+~7Gk)wm6=aCuIJTs_8AVXDEdl^CmjvVFDth_ z@}MRiD%&>PCoO>#YT6S**M-2j_zg2h(?qtyc23pqqici>Lf3NjgJzGjcDXtbQR^p? z%o=5^c3)a*nVpSO5V&r%+39OD1vfn6-wpq0Z%OqyBT+H=QSYNu0n(R3>xBK`z?#Wc zLx=}@oB10e|;R zPi~L5fnIv#$F1;iM^|l0!+2lHbgb=AI)c_r2_tKN^X)Zo_LPh$ezEE!|C^;LOur=b17R+WUa*>0kclo}UUxJHAmK zpk)E+qf@r-`>R7w(4FoY1Kb2?Sb>>DM?o1L84)ccM^-~XKoA!f@7Cl@i{jM=N{yQv z8zUnlHzLoE!19r%Ul9>W{kBro(9*&rX18BB9tEfHcykkk@VL~}7T4t#iW0H%ta+L$ zC*t*+_}9e!S4T|G;EwL1=Q%y!cE@ehI-*4E1ku{t@`pro?xk7UhD@-WPk8qxZSyw) zZDlpTH@+L%YD#Nsqu+jg89XFhJzSQ3Be^<2WQM0dH&suC=m)$etwhr`^!D2a)QQNDfqfsHMNANFg(k004GFX9=|7)eM;F@7MYCB?@J3v_pP zGZLVU@VtK6hlhvPMSYU^`*d>M#biezv8 zhjlm*?X)KbdIB7+t*zJperR{p{c3)?;r8IpxS>aRSo28mv_Ak`5{Wy zYL?b&^l0gEDJm-8ly%impGAt`f%C(|eMNY*%)QwGIq)FPF}sA-=;kooK+EDrH5ior zmG3hail73~8l>-Unx<9}i0V}U=^)1C!Q=H=Lvpe%HxOd7|b#MoaPu%uK` zZK|R~(*Kqo|6n1XKF7lnVHX#+g4_cv;`SSbf|nmzvj_5U+3|(*8IUP@Q03mWI`1m^ z@x!RWC@<1#o^Z0TV8XC7Gc)t^zZU38h>H{Z%tp)1EGI9I#ECGEkcbc-TooCK-kpO! znWwKHhY|pAtD>T!FQ*&g!Vq6yUl>C_a6I!9O1W-A`y^B-Cj$_+`Y>z?h3ao-6vD@h2PY5q9#S1vf2 z>X|VO${odEKWD9uNFHG#)L)v&d7Q<%Z~yI~hr9ZFnEj&f{-~v*L>YtnCOW&g9DYgI zMm%9s27x>X0j0+|Vrk=&D#~H6$RO`ijL+>El`uUrG6x_`78Q-?5BX(Q(Q|SV^!ve> zt=D_hSi8D%PWu@OfBpKkuH>8FS6J6u5q|Hx3ya0NV&ww4>e|}#iwj`Funz*R2asdI zvwKX^h_F%XZ`c5c{?+1oNIcyDD9oMDPb37wKwKqQ?CRuXjSHc)c!o7xHhf4jx};aQ z`V?F6J;hO!tMkbxa0ph}TZlNr0HzI!aaqrTa8ads>8f#$T|63F-S3kIK z-;@}WH#k3fayY(Gg*3ujNl+Dy6Gy=n9jRs;e2EysznoUOMZ|hxhrnms&C#GdxhhpX zEowuAHfB9Yz8~!SQ$qH8LIMXHn^EloXueWWQNbh?7Z=mI!_eZIG{GhJEdBduu0K{+ zR|jCewb8Aut)e1Y>NpS>NBNkZ10B0oPfqM12npan6jZwz5*X3Yim-b0J9l??L4fNH zL;`6dP>|?vbvyRsHXu|O23%Dn+V9G9A^in&tC^9KQc_YME6&c0UCV&6HS^r+(b3R^ z5(i#VPLqerenyr599{%g#{qjqI5)~wNp0>7uxJ!MoX8*#AMu=U8VCV z1cLjazMUdv&Q|E44R(Ob8CFE}AF(*X43%+vm2gvBK=Ivw5r*!3`{oloH`Jn*%=>2V zcKT;c!$i944QwwLi&Pc|qUvU{{~8z_x9o1M;SYD}H3kKx8q!(9hm^*i7x_^G_dMR% zJxfcNxM!1p_BuOVv*3eUY_aR?><{84?af~(sRY8?_|pR;LW?^`qy^O9A1~+hyuH2s z=|Ej=VL``R4Uf;3Jm$TsL+DX9_FKzy6e3$we1rdtG@X4@z~MRzr% z0hxg&hdefUN{L9nULXv(c?@Y%RdZ1ana#CRD(h|$TJv3>5K8*dhfuvKw#TVpZC&IE z-@D5f1p>dVGN#V2k?yEG$b5JMYV&}e!8JvU{P9yCH@&#TF`GC;ecR_e2Aa= zMdI6ozjgilpUsbZLoi;1yr37CmXJpGX#P06gWV}3g=)#N833YqZ z9A^8y&e1-QH5L^LZQ0;EM)Bp&Hx9&yw8&Duo4(>F;^f>;%6v9re|l4w4tx& z;Ux*xL}21UrI}Zfo12>rKd!{S3Of=XT=nPAALs#;l#zjVmQX#F+kN))ra=EkFe@rR z4#{@DKGJb_zf~<&2PB@AQtjjzriX|6nNyq&73Vd zzN)IG%kmxIKAlYPt+k~<;p-15W>RSh55NH{jTmEVGL@J7h(1o`mN+F(`4OkHK1gZ$J$TAd>z3U3@XeK5mRrpnO z#C2!^28Hk6zYj|*)>VS|H5!k8f!pF(Y>i3(Guj6~KRq>tn{!g8Q9Bb-y6S!Ln}%Iu zl3~`ClaQv(G@g>*b!n3(RzmFDHw+vrOxuHlVzO zS%lV>JxAmn+1Y*#%3bDu7AqAuaNJLajjIxouK+ga0xs1gBO@z%2DS?vNLB?O5NHii zm;B)9i_njR`9}C>I*-#!GC@F&L<8+A_SzQ_{Ts)^vdOkAPsly=ARZ5Bi>cH4QEIBnha-qlnaAzH z1(hEb`l32nDMu~W(H1sf7bDNxO#TNW{=$7u)e!wy?ZRL5kt#>cOxhSZ`%5&=2_R!% zT3YCobGRDk%1sf^DG6lHoT^W9aH1?KQ{KFl49@sHLN`YM^C>hH^**=!&Y^(z3Jehe z?H;X0n+%S9b#lpza{*b9QpLu`3a9)FdI4*g>yNC@6d$M$D~*GL15fty1!pj?;wv0K z#&UWrX@6O1=?x?kv%JBf5+O6hZ1mWNY!*jX*V)O*WPm)J?@ahB2L=Sd#8>LH&X&4m z38~w8T=V=K|COg+xl)A+=KU^jPB#Gu;_;Eo9ksZq=%kcD+JPs1AHXLXwNF}Y5EVMk zw_T@)qrR=9F2|Jx?4}R@hR7RlkSoC<9KCRXxwFPWYFgR=sr+JO2wjn&0*rXIa7vx3 z%d3E5vj$q&5VhlAeD<>7SHz<|O8}Py|3pyUB++hg{!!jDP;jfNzX%fh8@Ihgk6{vvFynV@SA|xw&5{(#Zn1*OdpFzFn~}^)O{! zc?vJvkkL^C5Wb*YpnOBk*3i{`S&5Z6LSn%nBt$0dCw+c)R#c);$fy!_LimN9i;J); zNe%z_9ZeiAgpt5HAtePRtxF3zgjIU3Qcqn;2^v%5;-&yXX=G@aZGU|v@Q9CSE}v0c zScnw-{BVx>dQ&-*fJGPG*B|7qId{PdM-}hYISQ+sonZ{RZF@s>4yFcuX6W@bxRjL> zBha|B#{PantL~7heosLL*G^jg)Q&^=beo14j&bfzx@J42GT>c3U!OuOkZn6@{Vj(+ zTi$rFq(#;S;?}SqW6su4beAeN^rU5X3sxykQjyX1yot9TZfm*S({1P*#qnwf&zIm99lr50`ftalFB-MBCM8$PDy`%KP@&Vs3Re4f`V_F2Oj zortT7K%}Knzu9_t@CKon{&Q^BuF=qgr){&EV-^?h-yDqTUH5u=;Gv^KA^ubDdCg`v zEp)C(+pW0SUEc2ne@uHx71%r`Fc>7>NVQnqD zxY)w=k$BRKbmZ?gxOnSWytu3k9VQ+X*H~G)s~#o;%a4^X(W(^Hr3v)#MPKbrZdcyF zoyL$kI*1Sz6WjTjl9!X?urp4|%}hp?1x8jnz|=~js)|a5UZ<^*(Th(Qp)8b?y_Na- z{iZw5mr0-JD$MS$+A$(|EtIAe5_Wt?Ds!5~}-(CCGy4PZDSbNiQ za$Xn-VBnD)-2Oc7?JYQek*?^clcq(8r!>Eut%7vGY4w;FvpH4r?xsEr5Jb4e zKbWupG&xC4Ohh!O`Wdr^0-_iUbF)yUpGgkA<(}rdc||2993fF*Fn6k`tgO{!zYf}| zl9FyN^$iV)NlCsBH`N&#%SX$`EorPW3;o8X|MrFUR~`W?Wb{w-Ewb!j4BGU!1?I4l zONWq(iqIC`wX&H=qSpo<#)kmF!{2&MdY~l#q94)QXYc-LmAWqGT;LC3gian)=Z~(2 zaK+L|edNu8f1rU{UAnYL`E`LN_10XRUel;y4V^erMUCKU0&<>gOcc(0cmmuBg{SeVFEhRNPI?BMv_>mvAvWgLck4&(} zME=1VE?rtRScy2BejaP+m1PKO?UxtC_RZQV_>9Ue&bv6@KsBQUSol?-0SE?_Zb8z$ z1q4XeiaoKD z|7bY_9Yf1&WzkN7aZ}c~Yw51Ft&F{Ed1Qb2u%Lct3Cg~)x9Y4Gn%dgh ziW#EIx%Cbd3e;89_!>$|J$e-6YoGD_RJ1DK{OHQYMn_+y2O|_Ec8UrY9Ve<|(1oF3 zU@X^~VZNRNZi>rp1s$n0FRwSoR@Z_1PqUMas%qBmu7kx^v%Nt|`p;%Aqra+jk1vy$ zwEuB>Tm+tOHZu+GlLIn{eVd@XTkceCDPDibJs-@_?5c2eWK3daG*{XmZWbtyGYTR( zFfZDJ7xCEMVd2&w_6bG5RnYqmP#qQU_5pHsco^lAB;)7vK%@svMrmQzn=B~f)43BmA*t7MHt#+=?>1K~z0?|R+aos;OP$TaC zeBY|+zt>}eyrRy`hdNvo>wTX>_0>#2H&A%AfmENoABa8ooTb)Vv9ogo1O#B2&lUh# z!M?taev+DtFgSPpWIcX{u)+XM{Fpmfn~h~M65uDjZX+TBtI}^;Yk!q_Lq(-!Oj zUm6}2CBEF{?(QCDRm|#V`svdk$U7*)y>Cu(0RQ4Ob?rjdHc}8N`%r*KP{iN$lB>(t z@!8maf2NweH^-WqOYAcLKpckR`d}3d7M|<7?$;XO^zsBX&g| zi|g|^2S7!Ie4gkJdtpG2sC8!HBsH(r7ybFo@^7$-%j~Y`HE(#8h>+!FWDbU6DFg6; z9s(H_mi_aS_e@R+C~xR)69L1ce5$XBIsP z*dDcsx5Bo6vf(j4sLM}Sp6Cx;?mr-M*v+- zs_DF-Jb0=J>6kwsY`8pLwHpf=tMoc$J%jRXSE4CWJdnt?2xq=6&b@`cqOt4OFC}?= zZ@4jy&CMnA=DWItA-at|83hF)X=x;1OI=VWaUoFDGov^jM#f(cKzFc#aL!Q5b(ICk z*o8Jm({&$Q;6%l6g@qj)-nYTc!SzUpi-U*=c${49;W{9I^Rhn;jJ*|xsH&DOV!5vO z)V%p#C@6o&+ua>gTOKZb5{UF*%8_L5Uad?W{Q**swcRh+;)yDJHSs)l>Fo1r@3Bk} zG5pe@W%FvI2eXE}f928axbN$xZ-&6&l^Da98YJlE2@-s#Yo&z-d_xv3`P?_=fO0TC zJ|2Ka0%&2x#Fi!|9FEgN0-mlfa^SpYDac0wCI^m_uoAZ-$bE9)3G|t;%x;rXEO2pf z04}bm&VZL&4kK^C)P|sfAR62Qj&hgAS>FyFA0LTub9OdNFl;9rFNl8FL&d!PK-jfG zy;9d+y9(Tq8Iu%&W_7ZL6kuebdR?ZGo=GaJWX9#=T<+0gy)KGImH!bF(`PePe1;9x z&yYi+q-A~;lxJ`&R!x?|&w_(5ZA9$$ITgyTTeZ4Ug+?aE;razRgxWw`w%~8_zFMU@ z84TFW`SL}r3hpL^{!_b2QF4HJ${qtGVCif9i?z6x`1CiZrG-~?&lD>yqcYpRy+Ioy64%=& z?K8((ed+x4r@0a7rS-T4c8Rie*C3J`^KI$0UFBCcLumbKj_-6JD~m8ny^y^2FnU2U6NSVRK6`9l?F*P3*Z# zvtW&%H*kD_fmAM64U~ca(Kv<}+156512FYqLQ6nzzEF~%ViiCuVq$hx#gUQ($G6N#E zeCjJ+Q4hlQ3#4QL?-qn?FDHyn@lo33LcU*zmt(?irPnNWmeIr|_oMI-m3WDrL3d` z;{-s!ZCW=1f*Wjp*m6;d0ClVr2IL|xM#ckB;DL!VV*W2Dx92;>kpV!90yaMTYJYcE zMEMqrpzNL zzd-<#^$KI|Wxp;@`)7BB=X*cu^1GU3ezMUG!ff?$iu;SXfxVO{Tr; z!YJumUG;vQCj`MFC~MYUUi|F6^YdT2{9u9H;EPPebcFDBx8pbZTpQ{xE-o;1XPOog z%}rH!c#I{#HX8+0ZWjigMtAcg2wRIvT3(Sj@w^6=+0^*B&rC_JPOI+mG9Tn~1c8Qp zZ^IZ{nDu33z+4QAd8CR!lc#KUE7kntSjLR+Pb6!Bvm{u05g%(GoDqKqie!5D@W+R{ zGtVU>*=uKF*-N|f2 zK`@aG%D&G@%m^xmtglv9!02j+PKOtdWeK1>=yP?p{GD0ro-33$Qx_Yw`*QThOS~V6 z7u7S6Mkc#l3~#jZF#<-+W@iHFO;jrTSAu8R+CuqG!7r?xxn#wAcqAvM{z#@|KUqwboAODF&zO47p{KfSjWfT&f20NPuD?9@4&h2k-jccnE8n zRYymM+`>nkDJR6Wk69Z+&Eo61Il%S$Lk1hfld6B7WS5E2lC6xFqW_B@c?htc{hEv+D7 zZEMS{dAaJF5G)?-SJG7pYHtv|R;mmF3kzx55Ehn}zlRhQQD^~y*`6##*mlWKU0GP0Ej}K7!lE*ErJ2Jz-4Lq#%$uO@i}&}!)8Ckg#oMo z&bR5)`IN7`Tne|QyS~s=Cl_jBr>DnmWd=hcQ>s)#d@P>lRmM!W#LdR=GDs7(+6{1h zg3v&sQSRQn8&~v0=804z8JY_t9DqK1e`5aOVyw|f_}8zGfJF-o7q%X4_6@haFlf+; zDd$C3Xt38<18(1K5(VEWY~06I}xB}4pg@Y32EY98ygz~ zC0jq{uZc5N291SsvSlF=^&U6&_Ys6vZ?1#J^c7Sz$-)s}hXh~oH(9Uu(BBs=e^oAA zdBYjmd5Sp;e0<_A%ax-jxmF;P9a##Gi?vB$ z*CGM~8M{-3VDJk}vtkgl{{us*Cj`4E>%GgZ=l6ja=;(mX<~vG&pO(Qw<&$Fucd~zKTOdwNHBJ1VYvJ5;+0kXq zRl4Caq`(E?grEU5m+}TMJ_*xNQr0@{$Ysl9@m@YXLPdj%l?wqJ@L2tTDUwdLd)Ybi z^QR0@>vua|fhD@$pTpb>YLo=~25@Du)~R2=4A@8Q6))qPdBnuGH8>Q?7UHPIEv$S! zU*dz@d}4ZfPrjPGl!z^Pb8zZfJ>oDF{nTP0_O))OkAQ1rL4CglV7a=?_nzK;6(hkK z?_p4tQ#z=Pvm-ltEI51?XmamG1>J&2Cf_OBf6%1IW)O4PNIk=6q!R%x3pxuFTnR~e z`Dz-oo2qJevEB;kp|o{Sh4DE5n~X13){omBeI6PgXJ({#c5-^*BjB(R1O#$BIs{pn z+YkWhMHzRPo|bm{SHhA~s?e(1XND$X+F5Jh^7){!0bG{f;X?N4nc`hr|Vj;uyqTi>EZ~aDJp47*z`PuK+ z0HEjh(t&2&^{R*G7)6k))*uK)wv;Q5{oPEo(Z0|4g8$7lq^q))wF9-_i`PMmzNHhR^lOjN0R z@aUlr&8t`aA>R>QxTU2ffUdmWVmy7}Q}k>1+q3+(wg(W3^kH|q{9m+tT#Bj=W0EF) zOAeCrHc$@yyHCtMG%{Xc(Cg1(E?I`?GRQg6RXqdBUbFG^_httJrAJC!B6@ z>8y2*(lr~FLzY;ox8kx{tOJg&Rdwosr#31oDvRG84$l)*7XaePk!=}u{05&p^nMtke9;`n#cxwKXqbJQd?gwQp=}jB+spP~h*}$}GRoYHQPYoWKe{ z#*iF4)_01IYiZ5A>lftNu%DPb?LG>Gi?Kg#tkn76bICTVI`;(tdvBx$vp;rKZox9@ z7JW73FtaIaW|=%rrdJ0V;Leu)xfr3z?yVGD>*Zr)+t$O>1Xdw)9;1+%o710`VGzK6 zuwh~fyaiiI!aq6FkUc6~0f{1#9UJoLo6sb6B>*c1qs{~3iUENb3H`1SZ z^Sy+!?lJZ@s}ce|s$}a&&?&$MBMP!qKOEpn)hr_Bk`gO2SH&tw4An&FFiD;JN8$-E zpH{1pPA$eBX}up+pEX+VuG$aRV~17`LcjJJ>Kx2Qfv--_DfP_v^?fq!c}GY{sH{8% zUIyk@^eaKH?X2fkkL{Xx_EWXs|izM^>dWS^C&k?mz#>l&0&^Nj^krl_i~Gladqm8L0RMg@U=fvIQDbX zU;C06;0Jbt<|!NNyuuQt_T?`Pt7|s-NApHcYw!o#$!a$Y0cz#gFUEgM!`ti|HQrqq zIsZm0M8xb6^yY0PemlFi(q75-O2}(O8{}6tMxVM#`F1Td_KGVZe_rS!j0QKbGz=#s zsMihkjl6#s=Q;>=eFQ{}xzP|TuymXTwT%tb1a`lqSkiw_*G>L1Kq%*xi)nuaOYR>mo!emyESMA$isDM|MWMKCU`hKQM@i9&7`+g8m7?0*P>&^$E+hIRhJJOE}M3odqisVf^l|ZyE;@1xMe*USEEdMICMrKqt178=+*Hjt z`Enk1!~j!eg6ps*v$j6^*|}Pe2o}p0cg1;lB;vL=E9~w~xu%JbW&DJ?O4)L1D!TWh z*~1uopMKTzOU;B0A3Yd6@U6ANfF_pIWo{>#-}F)lnZFd3blirA z*LxoQ0UnsevDxH-X}B43u3lDkJh{FF%9~s9ORUC7&-p|9>xgB4>C(e3lA|vdJO6^& zCi!SoRYB*?C*MX)i)CTeB|6(1MjyyAHCi@?Tf8)f`mQ_I=r25;od~>}!D?^beD%Ix zsR#(KPm_*9NPOI9Njh3)v9!D^DsJcToP9B)=39Nfz*c5TE2!`zA7lD3$1bGoSYjW=Q59(PyA!O&!nwLn(IY!6#sQEfcQ@a1nLky>J6w}7Xvin^OdQx!TRrBh<>?G?KU#|XuU!P=$&p4^^-a((;E znnt?DZ{NmG$8xR*LpDPfu(=cu$%Npf(7Ml9v`#j$KVei{B7^bifA`7t^|vH?&I4$* zdqVRBtX4_Pguq|yjE{Yys;3&A)x(fw{pZ=fLn=_u$sz2YePW~w4D#(J+Qf@!A?NMY zWz7U&mJuCudR5l=n<1}xw?0@Wqh%26n;{^e5hfu{d{Wgp@N%82)hVQwD{nw*fpz_K z^v#u+^XK9G`=q&pr_SB;)&1&T2Ks5ej(kbusYZ*B+>CEpuh) zc}kqvS(eKJ2QU7o{4HG~P8TgX9qFsiZG+zQXi}>HY-1wpkRF?0kAi`K(6(1)T%S{c zV62Lo?yvATd3#-0=u|t07iOs4<^!K510L8TY&R>ZaB*JGSuxpi-Ax-s-KMHCtHyI{ zSHaHk0aPs4wL||}?%I;W9JPJZe^)#-gR33os5|)JR5dE~a@pU!S&?=^`S#z7HtN(m zqJ@hUww^?cGVL#%zrFma=FRWJuPkaZMHi#|Ku?^Xq{xDA%kXn7ORN0O4$>{!9lYIB znO{CK|L3;GoAq!L7Mc(YVXStodvZTZ%<=*spw%bf+3D`1h{C(96->NHx>S4Yf?vx+ z3ADWW_Xu4D)AT;KBc%Oo%n&;1?z*GFLDpn|pmFZZ&8Q*J%-0xka#sQZ6Ft@Z^DOby`7iL3M<~ zm_GrY^K9JTKWYoI~olnPHDf&a5 zSWt-F^2u_V@44j|)W%0_nWU;^OhX#3UVv2iGX2u8CTQ!F&L6D=pJmoyx2UCv9zu&n z9hA+Nd4L=&b`Uyk_Hll(Y;5`otSI^1in@o@ow=NuJeij_>$BuymGsDndZvfvA-4Q| zT^BS0&}Y@1KJ8cp7BUdZK_iR_ny(ULT1KbCW?H5|rA#WGcwxUC5ofH*vTFIwpoi^~ zcJMwbEi9p~`h4X-&(_L5DU_Ix*v&LPF&k6dfLFpDV*Fc>?Z3tByVlNY)b?1QA5f@_ zfo@k>un=8hxBh48%!BFOvXYX~n^PH5Qi2SkeP_LXU!;tR9LlTEmb+~DuF76p%%v++ zl4tLwS*wXKU@sPAB+#OxXHDJT!Z*{aXZ&s@mMHiW)O==v`ONkQo7j%Ca=NCx@0C`b z3Lux^b>%P4*3T)kMl&zX$457B1x?QkD)$MO`XtWGtY@uy4x!1sbP1wXqVqIe)juDY zeT&ETZ^Y(+6EP=y1N|E4N^pmlhAh)RC6_{bO{bNo?|@VAW!NV@zGKxxyS-a2@O=-b3fT({ ztxE1mK}qP(q^-VXowBxp9;;Ma9m@XMPw1RRz$r{EOj*R=iV1KySROO9+oUu+Na%BX zeCEI8w%C-t=LYI+1GaK}A;z|MJNT6J!M;W~Owf}eTiK~k=RwF6(M#;%X`WX|Z(j7N zHR_G4Cxp_pzCX9_JhivnZM_Z?AL{c=&pY^-U2St7w7w6a03VNhCp#a35c(uu*cA3v zYvA$8!U*t+4|c;b@h~#bZ$0}h%fL~c%kq4h6iB>k4uA$*bV1ugi>sbAUm+ZE=mUu8 z`PevZPA%M`dan-bK4 zE`)E<*lW@2WslKL+^^8ibwoCoP7O{JQSN>s+9-lOF2pr{qUhN73Fj9t?#Z9T%wLiXUYCTMO4=Uc$vL7 zdx4;&;$KjFP7w?oTT>68neGuI01lTcE$a(Sxxl^5J0z-X=z0`sY)zq9;s)0$ndSSL zt7aAh%Z@gSo-^20Kr{^&Wqmu>J%?oHQ@aptF}Ut{Q?LKX`goscaMqP^We^BmoH`%; z&2Z9{P+6_ zzc^}w?IAN6{PxpEos_>9=Z1?^5y0HmvC#Z=;ht$xju%#~6c~NHt+A`EetvEbyoN!WOo<+X_H9ER?s4fiyIFbyBJyO>I<*|E9+L^M8Ld z0Q#d=gm3C$S~EF$9T5CfWus0`DQy3choHyat=4p#P2lu~xCk@ySswI}xK`AaSBVdM z+VVW#Cw6zb)!9Io3*kS5$U);Rtgg~5#v0OXz%1}KG%!N*D7$hNo+0Iv48OdjdUyzX zfz%ftZ|r)YaC2{$>*?muS9AW{xYx`T(ZJMz++-7trj-VLodESLcRb>xkZ}vfvRMWg z4I?KresLyO8&_ogM#3Z*N$;ohAM1r=rOF1PVso-}udMw?|mkU0=%9w;e-ewzNYRfNvnG$TT+CS;M=YU-dIl9hE z;OdH|3Gp$*7~43%*6oTN8OB~&`KX_Ll`F0siV@f37K4oJ*VvcF71YpB7abjtqCrEN zkwt;?Bb)tZOO`}a0EjnL!cB2Loug7RLK7^l_UD=^pC>wW=$Gc^_-1+>v~G&tzruA` z)rK8X&7hP``bNunZ<-)#Rjp=b#F**sqh$<^GRMe zrVvS0_xCemj2!_@oiFfIq&(jBZgwe$Oa0#7UndpbGDgmK>Xq5)6?Z-<-R-mFe!>(S zW!7!RrWtMEg{JUMe>GH;sGn#3sGx1w@+GswH+nVqLF1;3jM#BzkeOm{Ik?`QaE?+uL`l7t zk4n~GxKp@WEma3a0$Wm2hATA0Oh*D*Mz7e}1wWM%X_)ibH)vc*LyX8VCEBS93 z+8?&W9x(7f2O$(*r?O2f4sGeuz87Y7_fxMi#Jw$P9*$LGR_F=Tv=p;s8j)Blrhgsx z^m`Od^Q=iC9Dn}xMSaNL;SUZ!dhD{Q@qy`4E4L>Ml8JOFC2PYCK{mEWqE5MUR4IZB zwomdI7MmO#`3DDp8U2<%+}`=!Kvdl9qs!!SYX*(%MvOiy#O3DJlg0ef2rZ4J19{$k z3>NdPMkw^48fv)LEm|8=g)M5V6cIjQwyg9?|)Z zC-EPp-e{2ZTzoWhir$oIZK zJYY>l$mp=+zM$4z=vXx$O&La@^uk0<{P!Le$HRsmf|o^@MyFqiP0?>T$0huNEe3=R zJm0*=Hq>3nAJ#m&Ruxqg7M8cXnybG~hpMn&JfTqG=EBnQ7we-zgpwdPD@aV;rkoZ zVqH&(GQr1#uWmSpaq`YTHx>JQ`IYc~45Wss>6dyaTgwXMt)geUOrCArw)(Zl4Slw~ ztPdI}Yx|N(JX`|^f;|IioUwRmu?9d5kv5Pi#6Pz9^0b!g2)7CM)h{CRd+zU@Z~cRFIVlh zV{8n=!897Qe9!c7oZ|_&x}~8nK>j}GE0wdQ4$#;4BqG(|I`7#)Lj=R2vl6s`2PX4r zR;3yG=YoE!p4`nBWTxUyl^O#BY|RKNdL$h)Srf246J#V>%A zNuUbufJBvW=C-}Vx&C|d4FW^Ap3gSn0et=+*6>GD2@%=k`+9@AMq?Xuy)B>N@{%(* zj&n|HNDO0YO{o@F&s3cL2NzLMM$hYAV!Q-m;y40=v=#DW_Qmoa)7#T@@3ZGGoNM%E zha}tdd{bK8Lf>!;OMZ@H1mYqchNHTnew-irv_|g%MSGUvrJL^kS*3lM2UO0a^rFE^ z%~r(W-#goSOXU9CfXhmQ*v19IQ|W&=k>vYD*iwq?>WZbM)6e3nS7J+b9wh%Ty6!0M zc8UjIvVFpqi4&J>33|%okCEjtV<|39t2MyWdhzK@dJnZICy*c?<4;g(=g04!{w5!4 zMpjCRNhJemuNv`540a+2=*Nj-+fV`{cNs?Y6W}q4o6}ff(&(c`FpxI6ye{xlAzwDgFZ*Nht-?v)(;W zAM^)^J?FADag<`?wRRx(lxd1Zp^wA~Ycq+^=Gunm_p*G~Cn>SftM`Y<($RGO+b)nl zg633&T8-{~!^*0f+d1^bmhC^l@Y54>2RYqv86}4m@=Xh+?lpZzrh9w;Ob9jkXY*KN z8x^TB(sq~Dw6fRM&X@F3)!NKXJ$;$#c0#$dob-ZhycDH5KD#F(R)4DWd=m^=!w#(9 z(u97w41Xo4ZF#8aVzr;e!EyWl)0r!Mt^^i-Oo;m)om`Mj9n=B^pC8vwjgrWn5gSc8 z(hc437B6pu2|E+LP)c=`@;O&RR9h5o4cH;&v)mr9!t^ev;yWnXD%H@`lu-qrInzCD zy;gOCculZBs68uY4*CX^Nj2x--RHx9RUa4oP0!(Lfv6-)1XqNlZm)WYV?6z?gE*`T zGXqYa5(TAaCPAMS&(X1mimJaoV53vXT2#$iiIX8^3VF5ZTz`#RgOc)eTIDTQ($FX+ zvo4;p+L7bd&?E_0Sf;=&rq9^(Dt$WRQk~Dy#LAanPd8%f{DF7Z0NZk9aM~x+k5KBR zYtUpRqv%vH$xw9ZeaBSrSJu+@efV}`j^KTdrN^@GD8%-zZ;>+dO6n^U+)CXux3-FM z0oI#0AGOoh^FEOb$iF7VilvvV?#er*<3TwX;HGDG8MN)~czk!fLPgh*?I$Tk;d*$) z?e&p`gk&42Qe_XrHUq`MxuXXXno-WL(4}_$IS`RD)ah4E%mB69pSi!W(Ja9%O+w!I z0)0l=56hKT32ONG%A3?2HX>ic#iL+Ut&nChRlSJKwu=h~%lIv_lIF{o164kCT{@qT zOI0^FGk?BBI^Ysi%`n7WXdbq3AKrDRi*gi}j9&>LB2N8%yowtf{DTPH@XmRch)p#; zy@gr#=W+ZY)9NuaaYL)#w<|#-h!LNB2R+THjH0B~*_z35DjZ>DL?11-FHzqHqgrC& zD;ufS+e%2YCcb^6PFTk^!$+IBPN;LOSPk&L1Q4&u&aTPlHPNCv0a*kgt2Gq2zg5x zI5a`yef9(L{PcTgyjZV8W@z}7>_M~5kutNTAro5M-50PO1=u)(MBkQ!pd7&VWW1$p zx)=g%fx=z$1U9r0)lAscXs$qdPR@k5o#+itrg1m= zVfVtS`myx*k>x9eclkY)OS4rJos#-&^#80h#)P%oeUyxMlW-see~@h^v5xvJd2{3z zYF%eC{|(v-5G4JBNt$f;eAl0t;2;rm~FY0bo;fq z**4Rk&6!3vnf&lbE?OTZBv>l$$IckZ)4JH)?fESVBC2$tLydKmgicj!1&{GI{wd4n zGHU#SdDA)`9yC{%X#U2?Hng8?l}a~sN3&Oo3T2+r*96LCLoR)1mk4O3UlD!u4C+!# zaH(|6lQm$Q%3Lb-jLi9dxGF6bz~O1hzB1I3vmZ{cc3lOw-Yn!(*LF!HyD(GFaC*yz zODJfd^DM#j*DCLjoTNusMI zaxU^6^+#l>s@yP^3V2_M6~Zi1)R}BD&zoWu%>S)JxgDJ>a+#e$6B(6(N9~NCLhI}; zPd5~=qD;ieP}n8S{-J>0Tp;ZnetbGg|fLazsW8D+blA+xA&};ZR z>gB7^>jXg`ZAQMdbSnQb>X(m9?;*|i%dM$96SyBf2#G0!DV?NpuD;!!*_j_WoHr60J!hZs3{+HJbPSkL6U$E zXQDS8pHAR&{j2#%N6;0orLCr|#6svDVHlYA`;XUKAHCDi-(BM|WO3)S0Vy&YzN0?| zB2~TaUBMmmDRgLi%u7>~H?I#Ni_yo;-`V!ondkpvgB|CPM#qwQvzGABmPSvtq4oC& zg7g=K&o+|f;tR<9s=-FT^*r3cvI1QT|1l9gtD+S-%@;*D-KhK4KixFq`3(2zWU3*u z6w`E8ck^07)OR=iL&EJh3zsguO}FZ(0IZ)YgXT zXKoSCi+DPv%uKID7w32E?D;Wdt5^hApl|ZwSlQ1!P~N*+y|3L(8-%WCvv`~T!_rkS zRMm8Akxr!%k?u|rB&55$;m{?GbmyU4q&uY%kS=Ku>2B$i&O5x{-M`@MvuD=KT2H+< zg4*imWzJN(zie5aQ`#@z6$Q=V(+_bd)rD!oUTce54L)rf&MZ7rE6mhMaN6$Sy>j3u ztG*D1P{Pgkm`kM&SAqRm@v5kcn2D1kfQw>FO zFMD165}&kj@fS%)5xO6BbuH!Px#cbDDamS_VUQe{-;oh!uT(?M=YD=S7Ds>)a0=0E zH8T?qFan2BBHbp9YFe)5wYJ;!cu{ZY_spiyvr5i#v*&;NJ-UKa;%1!b6yxmPLm`)v z%{v&r!ty^&5v+;x`5vF9-v6GLYEye#AY8Ouib&qyC}**VDFf6q>Iu+{r1q!j1wfVI zbB-zSCN@S5SCg>l67yYs@!vT!^h9K6Ve-cUTwE)sfc$%Gl~N;%0GN3e(~|RNeC3s! zU)1gH3%$OMi;XAGy0ZGH;GtLZO4|hDGSgZ4{pv?u5Nq%IhB9X(lx*{)w&7Aq?N&G? zn$k02YLb2H)T~Egyv%KeuraV?78RPz+0K+N2CV-cfCdL&P;4HM)B;R&O(JVvw&q}C z?mkV8i^*M=snOJHbI{u&I+y%(7n{d4rTwWuzqR@02OpZ=Kj#@Z&5)6w?T=W-wc!#m zVFo@*s7R!KkQAnUIHso+UJ>v!zk+e4ZPR+yMZEX(I6=6}3K{%V9~HQP{q}stGX~S? zps!Kcvp;Vk`$E+(*-YH0;DsLXIIRdutdh99{=XqGr^myaj!}`)y3s>y7o%1;&-^h? zhxNFm@aQFYN8Q>|Q2uZKrN!7D;2snfrICDKHQOceeUI7uc-6ZiQ#~kh+v+VtNrUbC zIJY)QXDeELc9xN|1#G;s-^KM`gZn)U>dZ>a+$u31fLmtqPEsn=v9Q|>sji1A?*lTj z6W@wguME=`BRjRfkGxDSM?Z{MWNA`Ud#o^94p~{C*eCqwI9DBdQ10bi2r)8xurS@i z1<;Ja=iAK+C%D4|oyo%nOUlK1^{;=1bcQo13$lgq@WAPmTq6;4xBFxWc*P<@>#P0MvE!Bh)OBONNfWr#w}D*DQXy?OA&0Z}{s_X1 zXU=<~9Wz!*av!qV`)fncJKYi2694n1)lRmUCG20te<_lVELF1N>T{lId9XL~Q2x`| zztMr*ymHl5Ro~>4q*4J!Y}d4I_>Aiy;cJ1h7I%BjU2p-(ZOxR9MNB?rc$JWlc6j(P z2%6vA!=_Nhv3Bl1j}hdhq{gyae%&2%fsRVy2bc_0PVO%FjCt?kkU*gbdmQge$@JL7 zPda%D(0nHHGZ_&(oT(PPy%{PEUh!a=ylmn}~v#Lf7DA6232KuA<-P z0Syi4w5p$`b@))qU!$nlL=cb}Uyy9M-_!JeOMEL`Z6F=%w#7&JUHM;%8R=9anV*L} zyoMSJ2ya{8zk7|>vKya-&w-hd2b>(33i_CZBIL?tNjxV6X2b@;AhJtO#v*h7<&_E% z8WTI$f0t`EJD=k~i81bXy*_Grbkj>L>dMl5eCdYOVM=)gK%Wc?b#bDwds<(|BIkf* z`qpbWwOjN|g`o1MG66SRCg--t%kb)83SJ@b{j}9Bl7ns#Nr>vtaRz*}Ca5Sqk;k0$ z-hW>EP0YsD)f;?rp+?KFfu@$Q*y#NwLD9wqSn57CJsQUUP_<#4d!lDrBBO`Cfbu&A z-OEH1eT)PD$@nz!Y4c~^H7&Ft12A_99;#qt!6)(Y>s#*b!lLh_a^ENzgJ74z;#DZL zBv_E#e4lGkY7o!7PSIaxZ?m~@ot1Q~gX8>_92zPrJqV9CWIOOjC@}F(ui5$^KaNfs z7$~$e>3N;gVq%M=3&=6v>7gne9Lz0cZ+-V3tY{v^1nQ4_pT%FD3|Qv%$nBt+LrpoA z)zj1zF1ydgYUE2H`Z4b^A;n4kfRzdJ!)CFoXygW+5O!~_Hn8w-$LU6at*unDDXZ!S zqR>|)qcPJv0`7a)_;#&?Le+Iz=I~2M(8Hyo{m@r%9s7$-@!WRNq3{TS>DMm^S3HUi zc%LGx7taT#WiH*2zNH}$~e?4xz=pBuV6SZe0V_2Z06a^HFUCAWXn}{)pPnSczb=%fe?kJ9U5%t_Z?sbS4Rsm zaGwG+8x`++QR5Bhntw_YyxFCtb75n@o$C%fIg6K+ob6kKvsn@N0j9$f_!YhhkfvVK z#dwdVN1SHU(DB=gbxh2jhr6Dh@IeO$lcIycq|Fx%?GH_Hu6|ty+m8qB$IVRdtACzP z!p6ugOFx6(nqH>`BU;uP&ibGn*5maSImq)l+Xlz@)}Or4;Xcrnh|1{i)_}~ip6WF8 zV`$(FRn;YCB%18)(!topt+d1eHh&8gIyqGqR7A6O%#xC9hWB=#)7tfE4WMFKyp!V9 z@M2UiYA(J2J67Z2-=0@U)Cro^!uOj417VQ6%cLM!OC}Z9oY01I3<0;3X#YN6+o|Wx zgX4pJ3E84!xL3r-Q)f`y_q>mo!CWARwV7)S9s`ZH<1yTLYx8v+MNlXrxPGgs_G~_J zJ>9+1e9x{-GDs)rQ_knpa+X-4Txoy}a0SUQ5B>d}9Pie-Z|73C zes-qMIa&S~0|*}330SD8Wl7TK#7|a^00_~Q)+YR_psQ;$LI?&7l&T0KMfsEwPZBta zUia`qvG4}1yy|UsDK7iHOH0TkBw(BwGi0jYUQt;*YrA4_ry0JB)BAT5pL-Pey@WfN zwU6!*5lXjs%K(e;q!DUA$khQ^*8VqMPqIV9;K7}>?|L&tCx)B3&s%`$n4!{EfzMgo zoDvT&87a);9`$!8;DPwF1_q>t;hUS@B_+#g?@JiyE?T~< zurn0BmaH2`K&l9YY%_m#Iv}{wO^L&-woG`RJA1lex|SU&ubcC(hV?r9OZ-5$!oODn z9k1-d^XEBxe~R*Dw3^&Xem63VI;C*gR^VuLkHrgo$cv&$>+Ql)1KZ@qJG0~VhW$bn z29lB0W}C-B8JRo$p31>NEHks96nsqV+M2pVbl-wS-IP^B7lpAb0iT22zweot4sln@ zBZg?de6d6dRC}$cKPn|TyS+gHL)Cx0Jg~QG8A(89Yb11ihfPN2NEB_VIXm%&<2L%O z;Nn)E1VT~OICvW%QWx+h4+sdWHZCw|QB;tpPNAao2@%0A{co3N_^dbY)h)$$tN*pT zxBvOAxKvK%z;0+edjXow`Kv^yrA;)V=TXQt%Kc`0K*G(@3P3SKBOemoC%do0D#k^CiWcroqwF5#FImRIO+{+QlC3ozLR zN>YKZWfaa`>>C;D*L!D=d|glhJW0Au*MW}ypoVwZpc!(`{s@Oz2G4J)>bea z+*q4knnm&>`xGq3j^`H2 z+WH&18NjWM;4`ZQV)F<0cu*}V1TtT+=+Pr0Ho9)F)OFjLtvE$3doIAQPW5!n%?XA) zU3Fo()ayaLH@)65^C2Uj?K3Xws#hKr=To{|+7xXK4di=jQc*EA9Ui*?z%}jnhj)0W zWw!JJQBHHCD#xpVVB?FiJ6ztk;s>gQCY(#Z#-&ol&~PqtD6D0?YEa5$B+x9f|R zfkD@D=2uQBX&s%TGgJ19%r8%52xtesN6SX@KZNZP+>0-!>WA~S?S}}8y1`)pMh9Yy z4(j&gT4KEz8WpipWuFRYf!`1+GBSeV&LPvyTK8&pw%q5>d3=07g^?3VGP8~Yx(vw} zWqZdeGnzeF6vhm&v5!4G_Iw^05vlzB**|r^Rsma4nmq`e?j!Hu({0)9SGGUN$(swS zhD`@HGQPeHwub`q30y1QC(&~2oRc`cygny~OU>Bxafyj;pFrv2JUtFWQ(GvQ6)J_=9|CI_sp=y6C`V_?O4)0u`vpBX)o;cGJu~=aii=|n*n~D* zI7xU6il%=5w0USiA?oLI@^Fv%-}@?IMfJ>;Vh{XS`4M&Rkkx6ClKFX5P#y*smrYm% zm#kx`47CRi&RJ4{rZbV677Zi$^vdq(#)-u(__{|F)=%Tn3S^|Dva$WFf}VAU?paxR z*D-Uj!GQvv72Fvzn_+)<0XVooqTo3;oWd;AN# z#aZ;|2A-mWF3U>I0INKleFBpu5a7^wnVzvmo>E=UWw-M9^y4$Ggp`=Sf6sC&1T;uj z2fH;uWE1}?j`V>GRok}a;QL|TDw6Zq_>j)8=hci__R}J~_B)a}fWnqq5e4C02jX49 zoYu(5v9lA)-~VuNX(~4t1KF$*4^JEsq2lE7h!96qVD;7IRm#alM&DZFKMJ=1kRnQw z#jHvYNJjG3vots0vC&(4u)CupQ9D5#k&o{e<-`vIvzOT__XwoeNiQ+KOrKp$; zw3s0qKP}2$`3KXkxmpvo{h5fvISwB3fETX_0l3T|JLmF`3A?BjqNee-V75CYYPCy6 zjp`#LFYkh%e~gay{NCw;J{U$BpE(wYsb!;CS|RYMjGm{EJGHWYSuMp^bDuqFT zjKTSX5Lw!6y77 zA(C?o457i8$IEdN4;zIC9!FyWPmxA$BM!el{{tt#{XB!ZOT7{_gWdY2uIK;bkDpEQ zZ??a=5DQ5uthmW$^6HDIpd5*kk!_-RR_bGFZ{(W~$F}-peEkq77~ntnTL{>uTe_fB zD@l|Ox@u^l;$6TMd~- z_g;<%$hlg#LGY>af1O(}h5IQ;pQ&W>YCRO+$Md7(|C5JuLdSvVZ z5U)h&6Jr zl5VGx0m^zw*3``y>X`~mSVZa1v%en}dDxAzzRZwQkEI*#`-H03vd+6?5OQiDW$t%9 zpM{!H*!F0@(OA)AM}Umy6Az$9TAoj&<9(Ig1`^yin4~pM4HOT5~y+ zmiK+B;Rsom0nYH1u_oWH9=x5w^uYVB*AGHLF<@6GF23GTQ&^}BQcDKzTJBP=f#W%n zd(A2Kv6w+ibSbZdaMJO4ET50^ZcUwq;L=Tlbog4YmkD0WOM@z1_L#XF(%_euEf z8bCwlH1B&Wdg)BckqUWy^bQEX+uFLxEyTm8;Yi(YX~i|dh3o0F?zEPaq_I0zIz2Vu z&^3ZtzP*k_du4|Rqol-sLiqZ(N)>&6dAY{pCMVc~PQ?${V2 zfOt)suC!&1!x=Ir!-Qg2eL1dMZf*XW$??w|giZnNO%^`|cPgt87%jpUFO5WfdJu}r ztU-<2H^8ensW-WN^t`ic^#*5b%zM8n(t0td-VYx#T{i&t;+sfAcW?gHZVzW2Vt>(z)_o$r7YioBxcmk7|}c_C@ZYn8om07wbu0 zYY%s)g~`7I88iAjbs(>y>((bJF{v58SMSF^U6)%r!`I~VW^U96;4WgXb2xkYG;Q~l z02ltZRzzvyu1V3oblk62PL(YnD`?O!R*9}!AGV;ve`a! zT|>iHw2=`iw6s-a<(p>aX}@~+60> znzS0t&$VXg1n<4Fo3>#(2RD2lPX$4oY2BitaogDY{>jqM#>T{(HN%U4%ot zjJaG`xYtSVqc~M6EP^j&A}OhXBqOVeI4s6yYRWi^!i9D-@^@z4=WLoM!8godQpKY)BZ-MS%hj3oY{`LjXmg@s>ky1!80sv$WU z%;(o8H8x;^>3Xo^al<~|!1B~t`Q~3?%Sn^Mg5}T~Ip5!1ur^B$K0lu>t)07`xAK2O zQ^52DC1cKGz~|RzC%+;+?hJXsQ`=HiZ75`EDg58IFELMPWmy?Smq;m3M5NEeOkl0y zAOe)V^^FGPkZR4c?AUhgPjqzqaNU3YVEofSLYhq($%MDg%j?xDcdd#|GVL;;A!VMS z;?W8&Me#abp7n;9m)91tz=#@^cLXUB2h<^$^;e-s}mJLk(rF9)U z9kE}tw2W)d@9BFh;Qdp}I8xit#EQSw8@S6AFw@9~!SqstSWy2Z&z`%BeG9W`%VYh< zQmJHIe0&4r>t>lAmH7&t4q?`g?FHW>{omh_Gfbvxb1Mam#T2;bQFY zOIA0S9$&A)HkB%5$yXW-dAehonVleB^P0{85!O9hjHU;HzLTyAgv;}(72H4=m#;ym zelkL`A6h!1bnrWFljQ*MRXk2w+Wy%#6vp$B7mFwf4@=L$_XJ7*=K;5x8l8?#z(|Pa zYo68qgSmKY8rOyz@?_>M8Up8(Lo<(mq_)Q+`^hAR`)@YpZk^t{1qm`TGOj6E=zbds zUB!N-*Pve$8Y2k&=Nfb!Sba`*|LU0WJ6T!cp!(b;|NfmQ;A-QjjHQ%kZ2S=(0V6tM z0h5rIiBFfAt@>RWlZK*U$TwBpgZSh^jNmGIMp^EUcT%E3J{A^F*ViDH5UZ)_j-LL5 zq2{U@7)kf`y~V|s=(bk;O1 zVKqe#tG6Fm6~gw%6Ruq5_eouTgL1q?5rT1uN|Lc! zZ|&J_U^tn0vp?GU!ffi}^^3=^+=t%JHpzQ%-eR=P(_P>fbtm7ZCltb5QAvkL5|7|VSvid{|eb(NKyCskAL z?<@1hUY_Na(ti9<95t<&&ZcsRcW%t2+D6bWZx zA73KMr-6lMF9@%WT579QzB>|VzeYzNk8dOzl$kPv8w}$p6jzcnZaF*~8P+)5k8nFb z;+uppc(lwkdPgj4VvfB%7J*L8cyYC|RH;wpak+Ul#C&i3gOzINeP{-SKA~>iFD*r| zg}=*xG8+>NhMD=?Y7!Iw8cd`REv(%}Fn?cyk_(@vaM;t2{LXxYTvxYEnbE7}U}47S z{@On-?oUa{CW{LfFO?W0IYi&bC+Ws4j-G+%=H^aO)6wxR2rlo;(W8dZ=4*Pn@Kka- zV@8_wm;p`p`ugw0MB>-6@h|UDD)|QoAvgPQJzMhyg|69Fuq#a*AP39r;@joUZ(>2> z5J~TA`;yRCQ>z470#t%CAhoh_v2rXIOmf5K@p|RcIFKt^xvcv=>OLGTy!NA2_<4` z!HF3U01{H^CH?eUN($@lQV!Tca&m2bdEd<@E#=~8jE1J#?mR$%p{t+}V}OdMK2!o$ zjI#z^m^&9IRCMNfZ8B7|wHsPg% zqw3kEgF{aAjOS6|S~%~RvND;Ilcd}danLm2|_*qz37Yy&P`XZ-N zkdEs@+|u$_oh8Lu@yN)C`$$ihl~g?$wBF4dnVC;Y>P#G)s5~k0yh7(nUf4Dc5`Xdp8(7R9%p2O@7b8F1=Q3jk7fxD5SMD{OUM-s_dhs1?}xMt(kd3 z`{dN$>uch;IBg<%bd{NaMqL#Q32J^lKDKHGxb4mUq{LW5`r@BlJ-q%;#t9_rKQERz5S8}latX^QbPU$Ck%pN8frdm%vJDn!EEjxAPr+ z@sNTDR5E7y%b}{d^Erp=s&59iVGs=)EfoCB3TF2_DOt`Y;IA{RH9@duL)c4Q*#%q2XnraXRw7Zz}_rSR(L zLQwb(-hIjy_ymNYzeQ*`zdT%1e@cRQdm$MZU;!V3_d`n7lJW5Yu3D<|+~>6lluGG(fCn@5o;5E)$AL;W0lqa5P6DPBrxT&hy>(jPH{G zacnTC{o(XVoCXg(>TfYqhBA1ZsFAvu(6KZf$lGyHUQEskyL7}t|`fEj9oA?wOmDbYx zdkr?W2}2#Ep`nC8Nli(qT|#UQI_|6ed^9SmaR-N62ZskmO|4XKcXw%%O~wx>*E=AU zn!A#LsIa=4%@>xj98XOrXBJ=JYOTw9Ci?osKi#Ub@hcVG++(1In=Qz>O3E6byO+O1 z40_;|@mv?(RmkdxgJoru{YJ@exBLk|W%S?QQ*6*+ANT^lf$7z0(`}?P2j+Ct2=GPC z>RtBLon>ZbDut`j5HJZO`P@E564AAKHn@t1z})yBuIc6US9H!e0d?mE?PZopLN zj?_;hNzW+fWhuRYkCKo-w&<@Ow2|S&psGL0DoDn)a%-Pf?P;Nh<9QrJ6oEo!TM(oA z#(9)p;t$qH_{+a@HpK|uKAV~uNGF!DwB2b*OvSa1s^Qd6sI<~Xpz{A5uJ>(bxRTm-%rHD(I zAO_C2FI9xpR9T_Wy6n=)$%?tTcVv-6Q-E8;e#@u|U#G1}3kxn|R|;~6qo@;Q<->5r z=xB*2|0o>Nb7ui8nWv(txM~NaUVp3@aLU+(-c__7E=WPQ?1`qozipZOUHln3GDx?% z>EMJ4eY<_2%bYu#KiSflm>x(i0gNZ!bKwqcJvb&Ni+}wZ#=!8U*;C_ikw;kkuen8L zW6<+Zqprea&OFjQ?XkLZqYI42jr@V5BPC^jTewhQe~yVI&Rc-cd5A?4Qni}LxVruj zRl@qKg*Uq*T_EhM<({Z6@hK3z01gK>NQ`EH6RO@se zg=YiUT@xy~<&k;Wq?X3Vw{p;tfsMboINSKioRc6potJHahSsciPY@9!zOJ51V&kQR z=2A zUGf0s@xAAzB!D5ewq($mQ;HXwn%-?}B>nm0nwUi8^uf%*LHo@cy_}Xt&4S#ng4_Tl zU0oW#U%Z&OzBT~s92f5g19LJRL$ji~S=W{{2+cAoC>W=sW5B|~ zIXmkiD{r~?F*QXwSicJ5$YN3Kow1fEHbxAFHFSDkwtPGb34z>5ytv{f32TiAIi?-?S8G5$E>@YP%Jz zZ{L(!aI~` z#BdO2x5;U$wKXXs!e4sdQC&S{c9zV>wKA6+OLl08<>abIMJ(7? zaxr&*MnHWKGFO z*VnH|)N?dBIE2Ltuz86<_8gxne)37NoZ>-%pjl^qgBOof_3rLpM2yJsr;V{&6&oWZ zSE=*1~oKlbDBow4!SrReQ6Q?7yUK>JhX$-TQLJiNfr z=vQvB4@DKNdne9Mhci^BTRWU!?9|njYk76Fv?DLzOndqlJp*D4LBfkTC|6TS_{OcU z)F;uDA9P*Vv?w1OY!Hf*4M(7@$V%`M3hi;L%orLH{5OMKoZA&VboguQ$A*1=M1(Ir z!^HP;S$d`mY1sp067dGR1dh5&JsGoea;Wzmo?_b5NeHm6Jqqr{dJjHs(k?x^#%dA+ zWp6HB^YGC;XCg#KdPt_zw7$8H2(l+t{V02Bj$l0$odK2B8%@U*!7c!tG0({P7=j#0 z40&5Cs80f+pefp+z4l_^dj&u{6{mUq-vMO{B71iJ6re5+d~_xqO)v3>Y^?W74bdfE zT&OWK1&@_z>nWe9NJ~FWPU036+~1f9-P|awZ`7ZiQM$8Xoq$p_3W*vWXzGtyEoq$P z=5fbFVPH@xF2C1R!putLVPcE3ccspfoS3G@R}}Ye;5ITOrDm2d{Mi{g9*nBy;ago5 zB$}&G9g|+!Ek;WwB)~=p?pK*d^IFP_Bix0UI6CU;O6vN}L-d5A)on&}%VYzUdIW%m zQ_QRSXCBD{E(BKPBYZo7%qWpX^Ev-@_7JPkh!(VAdVj2bQK|xIiz4vRY8tX$MR^1Qmtg-`^_%=kxn3MH?|OQy1S?y+3b( z95%eK5BsEEQ$%F&mpD4@^gwt^cvwUP>OhB%hW{c|CXb7k6A4+0Uh}G zkwxWlj-y89$9scTZG&X^?Z2hCxICv{D6#_rnyIKDw1v6CWi{;OEqtt8F80b;M#dsP zjBXs+Z@Ab%`U(pRWRCrj;tlZMN>0A#!FlfP$>pp4{0`^q1Fipz$DLdzGccKc*`HpU z^8EEhnNbd;h!rs}XY#0Ewc#NmVDWoOcQGg)n{>d0l0>>`1>RM%~_q$naMo3royOgM<@k%NG_hCOPu*pr9adOCt_` zQC2V6Lw9*%O3}!urZx~gTU?xkfq^&`f_{!BZG{4TIF4vf0a5cKZT9|Nb*TC&Om8D- z)ipFwv_DsUfj>M6R;CmR37XvUeI%n+NIsgW z+z-d*rK77!N)nA?rjM7EC;pb;#KwXKzYK03;YmrVZ{9dxU|ua>CU+V~Dpt z&os8OP{fpC`;@|S7<;mQCdWuFk23L8@> zT~OhCSHxycSUor%kBI0+^v7(3;l#>Nw!kl-l~%5?yG2|bFQ?O?903CYiKSyWB7 z$E+aX_AWO#5arUR#(tu{8ya*yyGTNSwmJm1d_O;0h;aQdVm1ly`IJHOL<%6)swyA9 zgM)+Hi+zdZQ)I{TX#j8d`Pp4>N(t-eXsfF`KHP>Muau#ZAK;fgU1j;Y^F;LiK|`g; z6rlPQNoF=eF5t6CL+|E}xj!8q9+AM2H8e1gnwom56Bs--PdSJaQFyR7pL7t0jy{Es zR`-0aODN_ln&Ol%G>-hP((~dovXzrf|L}EyvesCml9~il@27_V`1GBPr~v6kElV~1 z{5cu{2{DR52!mvQ`wG3?TjpRzA@bc&pB6qosmArEl$+!Bw@FEe;BE{x4sGTp_&JubyO^rsD=b|IjV_HF0zI)J!PMUCUgy_u;gQ})z* zZ(vQJ4Svk!-U4>Tl+(5(l!@8wjSUg2wDI)>H}Q%>^%SU~E|-SV()BUnWTEXx;BMF4 z%%@l$2)m&E)odpnI;>yX_uyxH*iTWU)aVIXR%OGCYW;!oxwN);a+ zZOUq|od0y`Ia+E545{Sgpn#XvHgDGUq&sv@n!of^wx8V@;Nsw%h}Hl_(|Eonuww&^ zr|zv=-zSL{Hz8#kFi=&({P%Yx_yIS6hS28o`J&#Zvic@WoV%-PR8)Ldu%8fLzU6GB zVSLd`_$E%pRW6G=)m2fjA9Ry3fi61(&HkT$LFv1vml~8_cM1Q#C-T009bBxXO5O2As_#X z-*O55Me@N~@?#yz+EAr!@;gtrnNGwQc+mF+Q`rDtJry-Iu`CNx7nk)NrLKuuGYTj? z@Ob8T4%?icC<+(wzNSNA(5UFivoH$J6oo<>9$Mw4wXv8ru9us!l53LtI!SP!OdY%myYqDgkY_j*=Y5^JsYu2KFwG!S!r23vhIOaL*@-peluE z8SG-9;W)E;g+4{cXwu?i%W31Lu{77-=m7`hW*voq=IQW2cNr3V_?1l=6LT|0pr$4x zFOLeuF4PMNIu9}rS3X~x^xJh0rGr72{VxYN#_Up#54PhwL2!a$*N)EHv2{f+~2@!uwaMqXj!kTKkUE+9bn6osA$8#HI8P4(5&tNrS_P5if!yD46Px)pwlc z?d!k9HA}y7%PLtekKP4LE|-*4{`N;&WiEg2H-e4 zy$c9r^0^U{m$9C0zB&qn@VGCg-;4kJ46XlicC=KaVnNGO&E@419hry#^}defOJDZh zvOrw0NNX0Da~`l7SPKPn@~vkb0nzh!)+DFw&;tIpJ`cAbH)Ktzu4+C}o1|C2nqBP; zZ&+w$&-Lm0^t4|NR&_OkkB?)PV8a(z^^>zdVRO zi6aqIC+7F)0M;Bp&Cu2+>RiX1GE`T)z-JORoW+p*tEa$Z3&%TVKYO-4Qh`b957~#W z>B^?-J)I>bK#ub(YSRR9MbLBxc-;AFY3{#kX&5@7A{GQk#`7aXIrWWpdir4$xLLk# z#~}E4v!a|+men=VuwVPB_Q>)5zUDGRkfyBMTPOw;!j~C!)$4Jj2m=Z zeWN$hv<597+UyKcFWyQHo3e&&nsmowO%EhYY;6_9yc5KroVO^Nk+0sMiGI%kTS`4$ zZfgf&=b;MDp9OP-H%K5RO7`Q4$G3o)?<|O?P)(3kJr>%hPcQn0^=-r`p=3o3i%eI!*@0;ZLk+2M3I0 zMcf|4nsnCI&-iXq3m>AvO4|IqV}c8(VB;NS!PfgOAOhutwtC!+Un475Ma)z_Q+{eP>?qc14ADPvHGm5CJYihs*^6*FS#r zI#=we{PyjTgdgn3upZIwfR{1Fw0fG4_f5@dY3hz=A|FsX=EA~6NCYu1&f6{U-erNR}~k8pHEFqZl*BqZf=TF6ZG`N z4%Dctzs12V(5TdVLqtrH6+fXkLF-!m7!QlsKe*;HReB1joSD4!_(WzG|7~;%8?K-K z+-?R!PqOMS&NxUl%%2Dr4}tRQ`I$27Ez(@2%sHFF|3WkRHS)S%fh62%8_CxfOBRM! zsadG034@Fb#m5Jbq&(d{$DF<(vL0f9;l}Q9k*;2(bGuwS` zClP<3pe0Jlafulz;@ZF)CB~4}+pun+C=xJRDHQ&fgSF`~l1rQ$wb+ z?Xf>;?-i6)<3X2lkcW;EKh)1^T%G=SB}kP-_CTW99tIt=0s+r$_RbmvpDyt{-Cl!` zF)}i&xVWBrYs$)3MC^;}QCTCQhT^Iy1T@J1tskx&z!D4)Za~GCKUo1cGRHU^2EOMD z07$a)k0v!6v3h#s$0Vf3Ca!pmBkJaHd3I%xn6^Lk3b3`-*EeHhT{1Jh0WXQW!Kk{r zh@QUfaS~%las810D-;>Y;+5Lg_CJY@+{ACUl%$3PxFKLu2-<#|?+O3&kdKtI(^_g@{> zl%r=(DJ$R#>m)@(FHo;YN3^?P09U{7LBWtWXd%(j7$Aw_0^=14cz;o8lsRKJ z9OM7LmDKZRV&X^bUFubn!q>DfljBO=bMTtq^_Uc@?Q!1_5Rm#Dj*Hw6zhRf+WR3>B z9XJKQT4ZF8s=*b5`6a!%nFa~Teg#ZSM|byo98F5Mw{J>b6EXhXqB`E?nOkUn#RzCW zFIrxr=Mfasvni3NZSC^VGukAChAMx0!IOZOsFI2>H)p0Oh@&jvXj0SCaz2^?SzZP_ zEK%T5ghA6`aU8VlZ6a^bh>4SQDd&3@k(g-nDlKqp>tm}g3klJ1R*ejZpE|_9k6e1WGEX>S5KEESeL2;}07VU{%hdjo< zOmuYe77+;*e&J|Q>@5CE<&hW0p@|I>Gmw;&vHTrNjf7E-pl^mB6v_t(B*DQCI5?EZ zMoLOh#V&&@v8}E2^Kn#J@V*AvT7*CCMhtyceQsQBd2KRWvwcU87sba^9iw*l5$j?#2_IN zqgElBu9>@KV{^pBJiNcZg-6`S$MG7mmy`a9^fn~KHHZ~Y21eg#ZsrSPBA_J?j{5W( z%A%rDWR(kJpzO()p{T0jyu^mkI48?OPz^t)sceJlUN2ZwtvWgBXH$8ArOG zaeWGg*Is*g=$-!4*Zi((kJXUxxBMwj{KDl+N(_`7?%kUk6+=S>U*E$W3kri3B{DK) z#jmm1qg(O(g-J<^<%|hC7U5M@(E5ld>l>&V({BCYVpg z8RFo;uB5d7_=wWh7TDeWv6I^7$7jpknQ`->K}}UPv|pO6j2#O>aKX8`m967SGOe$V6&_9vNK5-OWel|EADnihzgVzuHOJ_eq9+8fl4^jY zX-*?R7c;S|%giM9Mg0F7NM@z@5~{vmRj@V2%WGxx-WyGtkM1_@+fjj z=)C_9Z#I6&6%P#_prItfA`(VbRZoTwW>hz)XXMrXNYfV%SZgIEFKP^|Wn|M47tUso zX(={X%T252{f)@DF23xgvP%2)@9y5Jsu}wF&Z(9CiXkBL-p5O2Io@Xg*EJ!la@lrAq{=vnxbhCI?pV+eF z<4tDiKQs!?MD458^)vfw z%|j6wh8T5gPLfcKs~p=sulm(g3MKWL-%k%k*gH}5^ezCpd@tnmi{JlVYl)rf!Fol& z5~{dwiHG{>$6KFeP$ZB>=aX@wApR$phx@EX0gi5s&dONXluO~^hhK;FW&iSJdUh@( z;-m(=^pP+VgQwyCV&GUKYEy2a`1^NHkBE}ei$W9!hxIC^P-8!K^hVv#Nmbn0_k6k- zdoaUt@&b4``FPkA@J4Um@D>zAo;kkn>DDPNt*I#=9uDm&#Kh#s!uEyK;x_6wuS4*Q zQR>leroW#8NuXAP{Czj#nLRnhfXN&-&EE@+oj>2x;1WN%#}H>Mx2Ig5Q;w#SnP;eJ zXhxBL~4s5r+2)JrWaM>2&Hlk#5+-;&RrO!PgMWhS$H(@5A7oysH3_f@PlC= zeG5RJQ01qSC##IQUu<}slQJ>_!qaL-#yd7glbE}!dSw+baW^Tgn(MO|sF9?i!bnY} zr)8uzbM@%0BoV)q+34sF9i0ZWIxXl~6r^NSa=SXn z$ZFaj3QJ1pqA*70w5A872=UG@dY>LW*>h*xya(bS{Cqnblg}tDV3iBoyw{N_BZ*Lh zmwIddzn?fdnT(@LTv}TC$?@IC_>4rHUJnl}dHJ3?OLiIsd3gnzJ$oCQSJWyI-6j5v zLSkb0?ChW)f2JjE{6|aTpzB~@6p?bQft!p?X^8J0&jHk$zuQXze3`K|g^W1`M2u(U1hC%nhm<~V=`O|(aypv!Q*x>7@NP%jSwIKZrd*zae}nWy z;w$-h7NPCdXk$jLlr}NZ3xVAB^e_UZ&z1&#HWbBG$R8$%ib^Ut7(F6p1+KCRjf#gy z+tl!k&D;iHc9nKr@&>(Ed-LMZiP`*r(4yF;+^(*(_EA?@SSauG#CuWoqRyWX@pq zT9c$mDpo5i3b&WwnLoSYa{;d~)2Fb4BNtiYOcm|#stO85KX`>&r4%9r0v4$d+L-ET zE-$&aw^t7jU1(^`)Ew0B6BJ(IXATVsA05?a$ARFWYB|1EijeiqU4)h|y%mU!AP8fW z;C;%a;=QTj04w?9^T&SOY01-D@dMo~QS|g!r6LR0f6*%Aw@(rTJ8$loW}Hw(?ezp$ z4C3CvSmrC=tG^&3$8T`+0*vCyOG>tO%aY@zzP;u%U}v{A_r8Gn7a$P&wkc_FJW!92 zb9~Ru&1Ls%`V7&{tFKqlawsV|N=c!D!?(Sf)RIwCDTGQ&4;0G?VPdxm?(Ra6_^c{~ z`h6(P`Pj4vkLks5($CmcSnI!Mo$V&eFW4kRqO!mji;`U>FzJi4<$(EyOR>&Y^}K=4 zx=6F@D=^YqT@HxIk-CEl#iuEKTS-sPii`8^>s2295`eC1LViM{S(=;4{{z~M)p5&igB0R2+F-5GJP&&v9ae~>q9bEZDy|t{`p}}$>rtgDK9S%tehUG3I`a6nqgrM zH0@4%fCwS;XOQD#41PN|5EbL=+ws@)dUf@l{}g6vx%s>13$T1L7bV3DcD_GJy}icG z&HIFe=88&Be+SD`H*l~4rZNalMMeECGmKGXd&H0;M2`4A7fpaH4eEmK62{(b&O3;UDjbQA-l_uBS>VgE$xgfqkz-O&eJCqoqmx_tkvxGEMD7CJv|O z7D`Ixo1Len#lP9uzXp}g>}8geEPB26MxkIbGL?@Xi{u=F6<~K1!P~?xjQ__pw47YN zkG5?;ebVYuGiQl6)=;f7oSj`rzgfVCCOQ$S=)H#cHcLwl-dw$K{=<=BCM7kvzSzqA zo@Dp>Fi&6ozIxLO?v`rZyxO`BcVBI7sD(KlGV;L@vn-~urlt=I%T7{))^_XYun##E z|F#k}c&>3j2=N&7Q(0NR$YK~)DuPHAF9A58`x74ORK>g*BB~z)zZ1YT5a74WjD_Xr zcIw{O2PXCS6dg^hE0Oc!97D>z@W$Rs2S;_+228XB`Z7a=B|qSWptsgSt5eCeqWaNn z#lTV;du2=h0|O_Bso@J_>{^fW5^iX&t~RnQHIxi;e4Rr^vDb?8?3H|SQry>~Z1M6>x`pK{_Y!A1S;i?tmiU5s&};LTyb~4bRrazjI+iMq()2 zxk*S|=I7toyJzL*x(l!JtRK8D8d7w(DG?2^uyl`#qEAdNPEL~3*41t#*FFTHMZ_bD zia*uBG}Mu+tFjhWO2^&qSRGL4oOoHb!{r}|o>H~FV7!p`xPw)XzzX1`VVQ0J>EbCS zTORbz)&M|qY}eII?$`x`@7)0(K)lRHlQ7cWi9B94jz}5q)fPAUe=NRaq@}09)ior2 zC+VUkWN<|E8f$CWz_8I&_w~wjSQ~clic3+~+?8+VLe|ibD?9v+qLN>H{AGV1IrxwX z1bt)$#Hl(zM!LB%LpjOiuGm>wt!!)tt8o8~Yj^SFO#%`NEGUI5Vww#lWpT+cBBpGy ztsLO@!g};tTw%GL&F=>HFeQ*UP9Gu}NjO^FIkPN|kC+sd{=LChkf%1@)(7 zkh{CPhjE~xO$jjv6EiHopaRYrwSfoTfjU1Q-^m>rVW@5_SI(*Z+FZ*G6Eb)Ti%2(h zKQfmzNON*}RQw@G#0MV+BY(}z1m5vS9WG+r&2U#vNg~IG5tj>$NnKrkzj&ZqA?x(L zkv1hQ&0|ZPw40exYT@%>(ae^$=zzwbqbJ|XSL*Ej+oknrsx3#kU^YpaOK<@%WB;3; z1jzNbZ~kbsnS}*8B_+%4HD38(N%6D5>MP&D5bTEXaw%r!$22rTad8QRgn~!iT;RMd zU+389)81!Lv0qYVgWccQFbDTmyk@#eia;z>Tve4UM*iPDogxm3d4Ll-76fwL16ubM zrxoH3Ca+;l~2y*%dC&yMBQAa=(eSPsl~w|UtgDY*lW!%)p7R-6Ml11fvMdjrT5fQ-x>6Iqk+)9c|pm&*{e~(p_91D;9@{A%j zmPxi}iJlJM!NFxf)}oEL*x0UP+W!vT>P}7ydCZb4h^TsrNv03WI=gL2f+(60$Wcqplv*S*1Vxzw zGe}!p2uHyc5_!2(=_nXY)G?mv2ZI2Fp|M{nAD?lF-9DaE($jO*pF@I3g|8YlNW$i! zp-U9XCMCrVL;>mbZj3R@Ml;E&i0d`~c+-!sr^mgC0am3BmwSA7Gv94%30}>+x!Fkk z$H@{BgsP*VQ!Ut=j_}0bV5#MHzx%wlcJV#^AkJWi>|r>)Q18W`eICD-xjeZwI6Q*Z zNSh@wbLlCwg|X#E^v|C;x64b{{f*Ake!#8myG@=~U-}av6y%?HB0p6|eyZU-YLRt= zMCr}eQV%4fxKhHtji^se(TCDTq2=doBf`C;h<7ncSk*#g(B>pe9Jpxw)2?R(#PS33 z%70_zygy_HaENzb^&I(fWkuSV`2S7Kj|li|a#3tYw>+)wVbyVcy4ikK6+rKQdmVkY zd^hbxJ*DksZ0DwQ@Y&=Qw z-7Po8zoo7)0e}TXnUfsW+GmdFXsNCe-K3 zF?Hb2I+p47GD9{n(Lw+knFC`0M~wZlsZeA`Zo8N}P-f$?3YWH)t;cJMmdyD*sOleA zx3|*M_hI{~|6~8ldBM}RgNVtZ3_7c|L(NdhmVO&lx#0sY-<4 z<+4&s8Nc4qkx`8iz~J`OFdAEyaWx7%;b1dIe`M$;&nM0pLi|mW)BaY$5MYz$f1vFJ|Q1ann z4{xYL^@rM#W+6Y6`#v;_ofB{|5di>6ks;TmFWGo2!cDTmVEcq#bU7UCh$8p;6N-{B zv?$Yi=g<7x%`LBkw$*~951~!|$7!!3H963;Xqm&mYy4mLXX`$FaYn^?7E}|d=9YWJ1JiSv4Wv91({XSJ44MefNTkwyv;oIX2G2AoXBebTdDBsaZKwl zN1=0HQ99CAL$2r|bI+NV0lRWy4$3j5ato{`+fg*G9mqhi2uQB zx3B-5(hR^>wIgMb=yeAjqUtQF182X4j;s+KSBt@#}?+D#J zr#n)tR7)GA%wzG0%~j0P`!N-~+&#M_qkG0`Lh~Q_!*2=z_O>V| zBI11S?)d33N^x{#Bwf&rkSY!b2*lN5g9vBlr0K^#N~28u9;_*peL8+a0?N*-z&N(` z3ByX3d`F`i-LPq&rxqsf@B^WetuMh=o)*um+G+TFhoDXko3E$I;!4kn0>A8@@=JMpw?VV4cyJQ#!_=~+dWtP0sw%CEkX?8a1Ul9laI?-S#rnP}9 z6WH3>KDc@8f17*_4N{i1PKDn~?rb2=9-TP6>-;iXm*c%;5dxuDU<-DS8m6J*{_Wjh z$Ylj;p1!SO@F#&H2zFHNgc9-zGkK%-O=tX<~S4E-IaK;Wy`>5!|?>u5+ zR1vxqr5XCh(4HQw4K{FTLTc=&z0GMCy{#5C1V|-wZkl)azzjA$Uj-~yURl*cpS(1q z#otI?1JBQq4-XSupBLKfIXM9wY0uh`sQ83-Ukw7IP9NJmzFQ!(pr^hjU)mJUY@C|I z_kr*aWL*GIEz)cl-CaDtNE0crW8D2Hiz-L0Xx{H7ZJTu0G#w^jpDk6)iyF2lntUBm z#0Mw8e|-FILmZskpZrOiDxFE5q{?aODH3=JPpS!`fj?IM2a$N7LpD~4MO3tHLwi2XfS`7I*s#C!gH=xZp@IiUqU=MVBQaxRRJl)-K%a zBpWo9l+0XQM(FSXAX}R|<;0s8fg&eZTPWYDw=I#B=rtpi**-cKu17VC0DIK*rWN+? z?%vK5sUSH9+`Y9xTzsy@D==yF=-gapyYQ8@)E()WUGp1i!NS>l z$;0HT4p3+`4ghF#CAk@$oeLwsQbr0i8Vi7yvCA}R-j9tsz0V%MvqGxhATlkT&OpDG zMJvti;v{F<*nk_{tiV6*%%^xcH80w>^-Xg-FH{G=3%L$DtOSMal{6!bl9zKQ< zC?X|iy6bau{^IH9>d}Tb+YL6ZS}*R#Ow?vaxf-2$^U7=^r3DE?Q#8alm9cYX6)wxrMv02P#X^7n&oaeNg z?F}nT-MY$qtbK51Ok9;4alnW4%YGgXRaJq6)A=}nwZh4q%4@AeGL2^ip8E8)Q%7 zHiEG5tAMEYq!WBD8_GYFOa!eJiurc;o6u5ZF#K8o7>(>H%XPI&g){K0jFgg=qu7&1 zf3pv(bOaC+kpes{f`;?>e((MFYQoxYPK7wYbv+)y1b7&gJQw%UISCtDxUT$@I6NMG z#^ezdbety&;sC_c2F$tLyX{1uZZ$E))Xa%LdzqnFFwO^zL$&}%p_AE*m9VLG3y}5n zAm%X-54r}8L8TjxY0aJTlcMpnu~+2p)KR3q|@wn>vcdPgbUGB^X8hd3|e#zM^kIwitaM zy~8IX@#p8DPsb5TtJup2i=~AEt?6 z&d6XS_~5d|-EE)Z;|9Sx7nEWjVO3eAxtqpFLA6rsotn_cq~F>9WoObV%>Bfq)$&y_ zA3XM+$Fkov3ck!8h6PNT7>m8eo?@R$p@cylRYbF5`qvm@z|HwZGvky|?mCz5Zq)X% zE2MHa*&47$xQ+xnGwk}E`8lyV)M{#i50g|^;Os!7XlJFs;f2XxF8La@hi%1$8YODh zD(Wo=1Yualto2@z0Q#{=&0+q)*3(pK1?aTEkED z0shYywkMfBzdn0UfeJ%gkW(cyft9uYHx9J^`HLRy)g6|PW;wY0#J`_lF~rbC(!gIM z`nA~=D+lxOLj@72?lP}TsPS8jIcOV~IEgoN+u2e~y3q7%h2lSUHVP-F3Xt&Ua9}@t z(x#2LRRPIM;S|dI)1|0;r(()u@y7&*2#NeKNr@WUR?FC?jdPDUyM^I(gJAQKfR4YERwaATepyLn>}2nQ6I{S-u4j$+eWtm22hyq+ZgiFwb)f54c8<;0IKkM- zl{?Lk%=xFY*K)AI5SsEKTy_*um7f<5+X@ z9_Jd=B$;t)mdV$E852kQ%$|1yC?}HHrour{W3h{~6MfrAIQ|ya?A@l%LyIoe1*+f4 z*YJnc?fuC9{K@)N@t?@ry@7BLBAUJ1BEThH_Ds|K`m?9frrEBTu)RTvRxYukLc$SS z6_PUIr3P#*fg`$NilVZ1PixB9k+PFt9jI>oXx5ac#x^pha(3z_^Q14dmE-Z0CFj$~ zl9EbBx%}ZIlRlY_Y&WM5<;z-X8D{($UA%Z@9}r^b@6kl9Oj%zvi3^@7#wG;8(3*rL z5Cpu;Y~7`A{nNDSr&Tlw;7Ff8v!BNyBqlb!{8Uxd!_kL6*i|1pm|jFA%$iMEOWaO( zxMsKZr){TUYXzUfk!k~mn?ri(ynX)6kXi$o;{wv!&ZOCJ%$z$x+D|lwT-M#ChLi?rzPp27^oDw<428LGT2hTHLcO@t7_KHAFI zaA%?G#7pe0o2?_f!0RALtDQ#4H^vxGT)YAzst?nCN-7O{pi8#BJ(ig{#+sEb&l0~e z4!pAQOD>O&{SL9yP4hFV<8q%3oSi;>g3tAJH^&`6o(lRGGG}sqqu@Hvpco7d-Uvnlq{?KSiu!QigwGMx%=qYEZiyK(X+vpYH-I70zPZN9XI-tVT>{~EsB>41y)C-!b{;b`rV zMojTKab#Nq61}=U{FIF3RD--gxFtSv_Q@EgxDiCWEDc+jp_$yks}x1msgY1Q1;vc| z6|tlZSZm1F_=LEy7N`zoCrC5K?(>gnukOV%e%;%1Wk+=<5QxvSLkJ<_c@x%;p5@qJ zm33)tuwW3Dp9o5&@ZS5#Gm1#DUB{{Z*J}za4285#vyF{?`J#?XPZR4wZe`PhmU%Av z%SDhrMtD_$iQLlw)7qgxBZAvbn1L*G<1Z2m`BkO{mCFup@&X&OdSR-RZBaBUjN6Vo zrMHP67?1mCc1F_nz&TySeS}x+K-ai&L+kRi??K-XF6ewqNwtCgdv8)OQ1MTzK4WZT zg5IK|LShu|cc&SJ6jVGsD`MTw$AOA+B=#B5f%Ln$X6!j4y__*|`EboRT zgc9%#1Cj9!OmX_)L(J8O$uZ+VF=rH~e(>n`)0quku zQ-OWU9PW?oky19vNm8dbfNJfLfbO7qTqAcA9uVjTc54KxApW}Z^X8l!V@Cm9!-X59 zQM&b)^ye+4Y!e!ag|Ti%{d=UHjyZV|ta|5k98L4qfEr?`ylI&GI@F)L&}dur)q`xI zagpW}%DYI39|zW$;xya^@=ibiKl9w7^Ym<;>}DWy>0H&i#r+6;#lGO+KDTbqRK5(A zwM9rL=`X_Y{x#PhY7Fa^-=m}Fw^e2CJ2qwiR6GYw2#1mfei+qOW<7x@KPIq8r(s{0 z+w?_?-EI3TdP03|elYgF0JSRz=f3qeS7xDzmquZ@Awk1QbY!F|<~>1Z+#nM@#Q&CB zMnmuyUq0L7$-Jpk>MsR6n1h8Q81uFg!Ww19g)BIrpwFInqCk@X#_j5g1wv#E2{Fur zv&+k)If+Z?nqL_8eC-K=mAmyln$!jI?8A7Y;rgLPI?Z9IU&?8wqn1EmTL@%62!!+q zW)ym84`tBV!Xh*njP&Own4JW^UHHZo(rms0!A)w`8?!9s{=jJXC5ERr%14*7AdSM7 z*Z4``Bs+g~?n5w^x&H{=DC%EU$ZtxRaeck0QWPw?Kl0%i)B#2A^LCS5Pao7IyX^n{ zv^(>B?IJP3&Z|9fv!EImlLx>3C*{-ooi?Zkx}1W7bSLnR<-hiz?X{us6~+Rr&E;zx z!n&E;L?+Wt&X0-m@@PZn+S|D@%l+0Vo!61P6?0FA8iY-RcrA$K8I`_Dc!$sGeI%NA`_NT(-56OpN?iPQ;j0_t9}iD=e`HHP=b?6Ws$U!|=X6k!SyP)x zPIMI#duy17A8+nZX2{iX`rV-Z61+fKIoX~h6T1p5Z8>Oto1M2tx}+M;;c=K?%j6RK z2kL0nwS)~{aaaKZaC-&t`6c$CDn~KJN z81F$~a;?nrnu!WnlP}~dwjXC42p^BUP!&1-1_JG(8TNM%4z4=!3{^HAt~$~dockRd zo4!p?pB~1Lef8TK`~29im%INi4tx(G64LNnB9<8$>gCLml0`cZ&^eWG)J*vsHM=nW z&~OgG1hZy!AAj=orYU1GO3$mq`zuAd79;p`kd^iC?XaBa*Ph!nM}x=`(tZano#_k@ zhSiUX#{TE)p29c#Zv*D(?t_s9Xl0$0etYqS%#*(a`wUvyz-Eum|E!NW)kuYzw|f8Y z3AfVMb!G^4sJ%anR(d@3{sHDVi2A^(B8YoaKs>nMeBz8wqJ({mrH8!tQ z4bWc*xQ)_)96t>6-I6-V>$!T(h%y~Q&=0{mX{=@Lj_X1oM5CN(qb^^~BBZ-NnA)+h z_LpkXq9$!#xg`c#mniCfE@<#)@$AtT6H(@P(Th4bq^bI&_76@GD3rX9(3s`P=Z+MX q)SuDcJ=PuZtx7>l+D5AYljr(aZbjyCD#FdG5bQ4Zvqs=>GH*Gm>_uq%#X%2zLzcdr^k zGHjeV=oSeQ3%q&J@q0gn=j3m9x^sqqpQ?CV{OBLnkB=`J&9^x((a_9<&fK_Yh+I{@ z`1E@ubD4(b7hU_Ei-yIG3(nANz5I8`gHKSr9joHOOvr3aAXV`=`NOOK+C5fkl4Bb! z%PXZoz^%im5?3PrB`11=3%)m8G%Lo&W6 z|NRtQbDfxNYZCawe<-|Jw7?|62Iv2N{O^+JUxvDU!Y9mr|F6{ZLVMmQC@?P~wd zRl=4B4^IjC0sktauBwI97nG5^I6hYZ3l}G#EWHH71k{YeDQ4YqFwe@If~LAPfj_i* zxA*R4oF4%uTOOTQWrBx8fX<_yM$j-uMlk1fs25ue`BSo8OO3M2@ z`xQszqvN`jFHX)6fEM$;nMESz{w)a=(?64WZUTu89F*Vape#r*L+0hbpAtOk31_=1 zEq9cz{lk@K6JooWl34B_$~o}OF_}ey z_Cm6w4XWC=e~H;jnKP{|!7{Yn4^lEUj^;&{3b(sf>{IT@xsK$S?hNf#t@=14VHK~R zgO;3Jlszy}aKDK=1dLL9AQYMW?oyF&8?_MrG5O5rxD2;93d;MlvRqfNVQ?HD#qK-) z*@JDpwtN(%)p9>5yTKtrU3xk>+YTKn(nYCt`Ix)}Jo8dJcscOc8?rZ~gIsFg@-N&! z46l8nlL41n>v|1pTzI6IS?z&G25Q6zAAZ#2tgARiEtYgL-5WaI6QSgFhC5G(T?-g> z*NL)FJRiCX!pmreM^)NM#K2WoyLtra#^6iBvs25IRN2^$O{tZ9U?>lN2evyeR)0R> znS8})D$)Y>ZXaP;{I)9f*K1B`%_v}i_Om*7rJ%$m$&5msW4&fYLB8J3#R`kroeq(MaAvYu@T=YcihM5e3988@ja@@=wF)~Nun|7e7BTFpDH z-uv=N;m_2ROZ><35>h_XsqN*CR{jU&PvORd9uqZg5I&#vH~0I_LQOsY+p(@BH#7)Ak*>+p%XdyvG?mV{>5&&a+ad;*uwf0-WXYus0&qi9R zPkr(jII^t>+1pwo5qvORnm(}G-#Yrjrm;?SjoET@Y$X!h1S-QW?E;UE#0Wn7a$tHOtA8UbT2uDS#ngAs4!O;U334<0 znZJK(IITGU03KvA+Ea6cun3@ZX%sY3A(VM2o7)%{qAUfxM9Sg8VI4S&Ok>TZLo+u@ zfRljxH&hLpBdu}6tCpq$>kmtl&th83ZKWs6AXQ(;@HyUerL{Ndo|O4^ zIZ;YLy%}u|CaX~?7EPK7X!2uFmqPjFj$}!?8vm-5&;uJd*K_XUBrq1%U z{!sXVsS|?rXMUa`SE_>`#SBr9m1VX&Rz6g_wpHh7!Nj0L@mKS~Vdvxcvl*l@y~SCO zuWo)m$tdy!3JgYl6zO~eOMr|8iw9xQECkm%*X_-f{1j+?geN%;;Zu1N;@nJ^4yYonAdnKILJh+V;6T0(NpSSW2z>+XQKM$utfkna>4qBT{GzvA7b z32ap%iCE;-<*N@9Ux1XdW~Cffr`-S)S)stkKg<%PC4*e6%XtE-&gQ8Vq{oe!A~VT$ zdiuMK)2q#y(>W!*O)lGU*ssj%STE2C=)6)*4!DV;nA=MNdt8t8{ zSuG*$XFBwh|AHB+nXv= zhdjOIAf#GloBrDy1@>>wcZkP6v(~fyhHJGnR>!6d9@f|PWlWp6@@wvw4lDbfMJnYH zv0gj0l4}c>J1fzX<(n3}%}TIIJK3z^;t^V)Z>UleBr9Rb*V@&=!371_VVW5c#adFi zG{)XdR*vM946z@_EX^b{vzOiB!Ngs6nlDyW2>N^|n!dH4QwQl&4B($4?M=XuV7qj7 z2gzc$d35d3_brHvTK&fQgX|hDB>{;|TB3+SZ^j@}34$MBmwBJEG+2be-~x^6ml-16 zN8g_Nm;^Zv*l9kwe-d&t3aQ=y=SEb%k8@kCGECaC!aX-EN`OlooUt^jSmx3SYl`TW zm1e{oPN&Rqv6r30{d0VVZjjUW(~TV^xj{Y=t>-5WkQ`t1sv$ObQ?+l%(SR#kOBx^F zYD%){T!EX3pjWAz7C8l^B}a>QjI4$S&~N|)g;8-i0a9S^y%9lJe%p^hzx%{-$-mLamgshr1@VPYp)D|&mY;7 z@t#G59-qyy*>^@k;{oGI9oTGY52aR)ah~Xa)`T znvEv8`QN7LO+vDz4SC0!kQJYFF~r{~ksw#NVdt`XwFV&AFq~C zilr8BLRsLk)AW_j;DCdfakS$>Pv)A@IZLZm!%?Y=KKyjp`N3&}9QVNMp{ekoGBXVj zU{r-}=d`h*<;@*n%7dC%t&9kgWgTs zSueXIt6bH>bovh9UWN(HJh9pya@?B;jtl}WD5UFE+te4z8yiOnj>Oh4Zx^K8Z__Ec z?r0s8VVt_!sQzHv0$<`_fi8bVQ^+6kP$sOHiq&xdl~|UYm$}I(BNx4UNs(;>7CyDx z!5Nb0=bLgQI6ksBHpUcAd9mA=cn&z|h}Nxh`5rR$L2fH#3CMK*R*P07ZtVC=Mvz~f z9H9csVq{+UR+XnLhl%5n@AH-lru0%Y!*pS$9g?Nqk@Eb!{4q)fbv2yHdEFtbgoN5q z*O~|}v&b%EC@7X@er+)-5tCZ!^Cn`O67sre?4+QHZ+`~%lR6mvI^XXlAaFy^`LI*} zG!XK~1NuxvDW?|__l^}Euj$_{VJQUdvrAFbYBcpd?Z3H};rWB{{MRcGA*kZ)IDX=4 z;|mf}y(NmxMEr)G!78~a>|CfQhGaK?{@YE1N1^fnuZsQMsWG!Yf;>CBeeNQ%S|#P{ zvdUC3#A4|(DuW4gc@2Nk;Q4%MHNy=o^|Xxopm_4Oe(CFk((x#-rf8-Vu!!Fy5cUn1 z8%hv))Kd9D;5_~Y4U65@)!xrst!LYJ2jy%^&QAZNdIyASVhx5hghRPm;3|jS0aMZ1 z4AaV+w=DSA>Qoa~nr(|A2M57JfHSghfXe1@5vBrLS5{A=T@K^f(SgKi%DH^z-t-fF zK$sfIi#AgwZED>Ru09$XuaV51*SxlmzS?5U5UZs>Tx!%M4}HG>)Bl^2I5aNIwOP4; zBN&<4QkB=NY{x2s6~&tSm1G=k9#dkMtk+JC_KJwYoqAA-YS}S8B}D;NIq;Frf<50_MTBV9?_Ia_s4Z41+ztks z9-YP}TU7dztv5rt^E;#KflhAou{VOvA-9(Vc^6li=`x%X)eH|teSK?5`4m{&(* zp=Rr}G(WuJT4AQ>_p3c+*foZ8hW#MG^xMh5Hd9+z) zaDlN`Opw{k-W#Q~O zyf1mYQf7Kk65hcI%&l@@5ThWPtx{JqmC6%Oqj9-YCqoZxqajgkrfuSq;sC zTGZ(vpV)2ah!v+7u!=4V2WKYCBc9t&`jjsWmT6oXY*J~^iI#r~`&OZ(Ld_ouZaa`S zjSm34tjGvnTTPp(EP=wq54DP>!py_DO0FxGZ=U)XOjXY3quf`2q;~Q-Nu#g^bUcIS z+Y1^lQtmx<1Y_S&)Z4QlHRL1|ml5!aiL$_Z`4}UfxUw@Ht_3HXl;~-kP9g(77>eNa zGTBliqIxolrQF@jtIPqD_`G2T)#V9EoxGSd@A$R)+O-b%vUe?PU1#h4PxG}QHEp^F zOFw^v6$Me9AxT@~N2{?ujhjp)1Nf_DbAyWKWvpvvMIR)JYvcyc{`7vC_eBoUz2x&KA@RiQ2%!-)kq8!lU9Sh$~Ja1`;E1)viHXYVgHFV*h{%K< zYv8eKcd%4GXH$!J;oo^9Fgq{>msL_|h2SOd)*dRY;`;}2eB)4WIAElV_& zWd^PuC)29s!+kst7SG;w*O9q4dQ&zx9C3B5nxnMQ?!%{#TT6qRgn|;+Z)lvgi%XRl zWR}ami1JQY+rToBW~G*3YQcqcT1sy=+h&Ypf%$wdi2)yF_MIxX>u5+3@LM(Q_rM~48hT1~HAOeMp(jNs93=2Sa_=LfZnz$KwUlYn|d z;7R4!#AFs#5IrJBt-p-6$j($BJiYnDD|yS0a_f1r^Z5+gSYw|)2D>~_XlGeI@==SY z+!mEGzjihoj%$#H2JT9S2X(-Y4ebAl*`$_CzJ@y?qKW-jWA4G{08X_uwU zH3-(hHr`B81?Wk)>x2zF(cM4vYr&dNp@B>nCPwx0xceG)jCu4F8K~S}JbKq}$bd){qrXDksC%rGo<2D{A#!{%9pQ787{_%@YamHx0lQ$2MIDta-+1 zqzEh;3vhSG-kh|=s=iL=41`7N#OX;Ss{6j9Z37NkX8(esvgv-sbY}EobzyHFkk&^p1vq=|l>Y0=h z?A3Nw$-BsB5{7kw?sp;==alyb7%azfF+I-f2Q`qhQu#cz(5Q0#LU?s2%B(mum}~{H zP*N#Khvo}!20jZcND_c=br5}U49mp<6oV9Tr{`yT8A0~O0s|R1)mCVogbZJa0TiketJx?sLZ@` zPDQ=_lUc*`SjSHnw)p%m_H^qx@}R}VXAr1)YmJaMlEHxyh&1STO{Iq?X*!T!y;9R;rl}Gs z+=*=iP)0Rz0RDy+J}>bF=Zbx_?AS**uH!#i_uIu|P{WIAh?QFDnzlyDUyJ7x?|~PB zMA*Ftg5wn6OO$JJo3$9p)ohNvF48QFrjpBmY8j0$+9OwtUci?6AOD>9i(PyveDJ@3 zzbD*^rNG_x8-*7^mXQ1ZkKn@pxzKpx7y9V`3vs4=LQ4b?q^wu2)-AUT0~E>3l0E?r z2c>$La7Kf@(UwHR>sC!_2#tC;eY%@PUBIZ4bs;bP=w?;{QS?;lV5&ojQlL`Ozl4=3kBm2NP+wVBrax$iO}$=ZTLUhcwIwU)Er;02 z?(FwsF@{Nt##OPLYE>-;OWF{M%qK2htvuziqfP}Li#JG8Vr@2y9*|VHNTbr1K_EOyvPyF@aL_mVu-87VwC3Pw zAlV_ivU^If^kB$rbm@<|yI3ET*)pLpTF#a%7YI~}nW$bI09Hg%ArFQfkP+x7M6=P> zyZxzp2^|m}^I7UQu){Wb0U<9jZ!9l8J$<`1qa(g5zuVQb%(*gC#PHl70(#BigAs!y z@taj^mMv7PZqn{LImRPRohM)z`4HqAx4Tg8LrVOqdKFkEt^UwMKdiPpV$7*Zg~6wI za6LEGL0zx!b5hOp+cED|NCv@Tcg#REy<>BERKq^t+3~z12)RkA(tr|{4@tng&-EN! zId0{%i8!1|$4>>l+&&VE@gj+u?zcYZmhMs0>WS z>JYQp&6H|f1zr6~xl4@47Fmz3)I6$i89?Ra;I9sjhrQvN zufrdi$ZOel?3?4UcY+*h#!w_f-PPe!~6JcnKA}bC9#9%{sXsUThe4)PSYd8&%qurK23{}T1!+ks@QylwNRGNHLfjNM*qM_Efz+M#rx-$ zyJK2YMiUOd5?|+p{8QA_B^_r{k>}&=Z*yF&qQ?E%)$a?TZnC^-&aNITH5^UMHIaUh z@6Gqio)=XS&Xb4M3+|> z!fn${6CK*7F&OY!n;J>{g@4Ex1nV^LW>;$(EaRJbXL+n>qP6IK<_oPDq(-`?5Jk2r z3M-^*YY$ArM88zQH5&MUSY$I~+K~erS_8+3#`^@Gf(O5)ldTi14Qt_zPK4Mn6L#jY zcw%rDBFd(hcR$F47^uk=;D*Lhq7D=PB(v3zN&S&D0dQqfK&EF^?<)%@W*o;YRO@P; z0xaBZ{dmXkOy4M$DjTHg3Tth=LR_o4Gw3YEVPob>3zpVy(i>QD^`_lI82?2dpws^> z(PXBQk^-OmqnDkq;1AbJ*D*zR%(D3~zzc1fP%Ebj0Mgn!(Imz>+JFtPt%DQGfFVjpO<}mVDzLvpZ{fbd4R_y=1oad7xp2AJ-=muWPUp zS;8_9M4M^ktF`5y30I3=TQl`O`AUsgdgcH9nWwjqdJp6H6w$*b^Nww2jBJzEhD79e zr6y>bk|{9WGe`Vn03?Pbq%8_pqpmz72@v_eaBF2l8viFo4uhH6;XLBQ@ow+4eou9c~ws`CV6xmCWy| zi`q~Z<-YxL>7jY*O+(_h$*eAA{ae0EuIQk-NxYj((Zmj3qR){X`uou+rbuNt*-yBs z=DEI-5!K_3pxC6<6(3qz@16`?)TVU)46GaWWF+ZIWKlHogoPJ2u_A2vsOmPyp3*pD zs2_fit(fb~OFle6<7>dLyNc-3q~MJAE!3pPpsbMou%DF?)r<_cToRtFgRA;=smab? zR5WJsKCZo{)vaC)WC8Y(FWl`NFy1P|elG{`OTaj3!D)QB__=M7v z_gbSJ;D+@N^c=d`ay~@3Zjjm6wFYf7a?W4v1%AguPwYUdnIcv0Z&`qBh+|2q;-bFw zkPcDj{hZ-TL>LDORDk+RDpb+F%3RlU7+LudECjp!pbGrFaUvAw&kqK5uVrm*cU|8o z52{ZlV|jN;0t?unKa)#QD_uP>7$bEsnYmDO=sH_hFg(%Fxy_{U0&Zo0OwLe(EZ2t! zw)|$4?MwsPg`J4Uh;O{F0nOQW_Aw5QKMHU73!+^cxKt`sVLr=<{X}7*HgaT3ayamg zCP@siP`$Z|A)O4N;qr9P8any)M4K~rZ^T@02O-`QE-Fb*@lETl`H{4K3*M zVB@1aN2fKT-q_9+|Afillm{sUm}zP2PIAr6_-*yQ&-?G=x~~-;+)m}1qMs(kfTbos zS@}sln5w50XzOR6u#?=*5(0cR&j61Zdb2oX!u8%y{}7PD*R;q}pQuYeNwKSdv;bZ_ z{DM=-Bt0Gf`)=pl(z!Mxk}xB)}2WJr9Ske7%cefa6C13xyJ5hgqwD@q64%K!zlh3tE=S7X^g+8j! zF)6EY-J&E1Zzbn0$Z5oKI;(l{DGuY^?g+16XIW!W9~qTGIE8|yx+syY6c#UV@kGti z+{bh`uN&ZpdtfB=SfmQ0wXXbfwohNxyTm@8e*eYzHaFv--p?}RRMLk`@;*b&758&nb)_MSFEsi25l&>v11V(X@2zy$S?`s=F*&lAmJ6KKW%%RIc4!# z2iv*Ylk{=qQC_v$%uB>XKQJ1>K$v%FP;?OXp_oj=5Y0PHaQ~y zEYbfePJhute+r|d=;xN;8L%ET^YZu~^a%*w+hI0!!AwMkyap)M=Bh(kABRe{-GCF_ zl`3Xw>*+;w3co@^VTFPdSfE}bjt^iA!#e$@Omvg@dt8vRkWED95?kNjiH^*D@Hf>N zbMj|a4MHuBjkI{Hl*LlwQN$p$mnF5{Nf3IYF?Z*s*)|nV`;_|p`$Yef?0#Ez)0z*H zV=r7nK$iH7jI&MUfw%6JAKrK7kh%pF0_Ms=61xLUX;1XDR*A;WW~7+Ay|J~(Ro9rr z#$diraQ9d{{^6jb8j-47?&wu>jx=npN^&e~zdL+?)mZ#9{m6_Xas10xG;*E7h@g}A z^sH>Ml7fML??haYO0$F24%BwcY9Ckn+Vi?aduHDBm78^#n0%kCXg*3q$8?OOYa4VE zGdo+*h6Hg*I)WOO>spM5Zx_NU?7u6T+?u8fxGS-lj5Gs?HGB(LNLtui7i}bMOFD$S z*bmzB@NH$`4E}QY^Qr3txpfl@`_B*k8k&6P0r3aFKjn=3jA_tI8#k?&E9vELik+{# zJa#oIzuQpa|2hcT zk;^f$^$NOP!nu)O<(H1ynz~Nzd)rPb4$LICvO+TC}Kn<45eD;h)pP@P(5>fIA(xZoW3Yd#ro>8K*aOBv2Q; zPS=$A%uC^IQEC`u=}AvZay3xc$dd4$=N=e%I-Y18TEBdGLh3s&dGUahrM4-RuFm}HcbnmqN1LT&{E%0{lT z&fj6*zJH(IfY!HpGi_qadyg3P=AjHVg3Qnd)gy+JCLjEh^_s@8#oowS>-FjSndMI= zdfp9IrMceb8S(sdPk9fVVXB=^B0{wI+m|fo3$Hh>OIzyV*8D$BI_ozB$Rr%->BV=Q zX;)2K%C5xB@P##>N0)@pI57MvvONwd2|bG=qWZAk_brbeTz%(e)GjwgCHvEQ11)tI zDtsCO*bB+e$Dy>@@A{|h1>Y3ORa|{qAG1|36-d3wQr~PB#}&e^7(H&ko>@U`_Wv0S znZ6#w1-B~sB(8rQrmJUhaP#aF@zjsr-lNL3$6`Pb)4FG zRxZ11z8Qp-z3h*^r23x}!GAqp|CR@{m70P4yobpXZ3{oVsXUNX)wZBa>3n8X&iHN9 zy~v&6$9T+LhMF*C&(N^j+2WsKy4JJBU&W+VKUvB&LfwT}Eo!!QZL5Dm1l(6n=;j`E5L_$x2sz7Lz^=YFAY!7o_(MM8=?ox4E@99`;ApV{v} zDEzW|J&35A4OhWL2NxPAKYm7*F0Nl+o`<;c^r4q=Fk{3h+v{5usU1WOs6_<&Ub>cD z(eD{!V3i3dQavvWO`Z-Ti=VGrzF}cU$Ck6^JN>wO?+=Qjwz%28jxC&Sv_0 zDAW`;r^8$D#xa-khWIpqA!sbgqm|3PrB0GX!I2o1`)~fp>!T1GjMB zIX?Qx@6Bj=U)!zj$AF==PoW#%ZOGl;aOgEbA-^_RdccJjNR}}U*GOiu_x;!hUC2*H zD$|9fX(~ceILwz_!ipkaHLW?)Pyb$S zI-^6ho2w9W@yiW;pLUBR&~%)fas{};JVfUpTIrU^%gX4vOt3_ma1~o4mB*cT8Dw`fu3BsnT$3zqtZCM#QwmCqYddj?m4CM>S05mUd%9L6i?FQg z=XUq)JA5DS+g$wzuXNqRUyZCaM-26^XnG_Q)X>j5uq%i0nm88BFH%~pd)bNUM&$kI zy*iEfF;+g^(rR+>&&kv0xLN20B=r><*q`etYG68;d=b~$rC?iSW3?+9f~{YdU=jnDnxrP) zy~BMl=`ks@zYC6VNnCRv&U`Cd9+`t^SMb&_zlkep?OSg^)(Yoc=@QB!3@~OjK89LJ z^$*(@e1B|#T62=v@xAf%UU`3<`1n3y{dJQ-&PWnx$w$0RIcUpp(C|kHqDbZ9*jr=G0Nits^?aS|^u^$ybn~JSgdz^n z8LYb2WJt^FXd&FHKcEZCP@`&IN@8}L6@N_;duc@6t4`nAG>L8w{+17;YRrQB z_LF8XhC4*aMRs1zdHPDeqUiA)rwT60gtcb=Sct>boBHTk@7^n7iB&usX9)?LB&+S~ z>|cUku}}RH!^lhhD(rfjV=TEQcD#p+O_mq>w~tMfh`o-UU(aoKoyG~a_kZ>$86OMj z@xu(0JDw-XKITjTx>{4Ey4zB#zkVNqRK93e-BHRCv-nW>`LD%yq8zX4@qOLVQP)_? z!hd`jwaXGuLXR!Ej&6teA>Y$w9M}>Odv`I~v&GQucbgy6XEW6Z zXo8@l@9^T4;hY}ooKNch0N;9Z^=yZm2*kNm>scW=La37d)LHNv5#l5r$1=Tqfb;KS z;0Wu#z1de@?(Wm__fru#|GXc|*0j=fAAhxVEmIB~l6Yz4f>^ElEjP7LL~nyQ;hkF( zluxm|#*v2F{p?*u>cLP$OWIS_Kfbitt@YuzT4eK0DN(a*)sy~>Q7GJQjV3s+EtL|M8j-}F#r)jlrWMp|O-2xO>jmFeq_?;2ds)ui5t?eZyI zJF&dw-h0%?nnc@IFl*icqDZG5<*VNB-ZQE?VCb@=P#fJ6X(%6rQlsMmJ z0oThbH|@w9wU`JXaABN zP5KjhRF_h4KeT&b9(KW#e}vs%6V7rs72V;6RxouS??QciAOaQdgv0lXoKU;-2o~iw zq@F>bXX7a9-vn*RlhL8^ugIc0Mj=PT8RL z#y`#?S1Oez*_vb{-t9q?p%$h4{p0zag0rGlCswm-q6pxoQ)Y%St|)7S?KdT}L_`^X zM=xx(irjGxf4L)-X0Cm_Y=3Lo(6p%^tVWeE9nCd?8rKbdEFkX(5LjH_JtcfewruA{ zek2nHM!05evt%83z9T9~PVO;fXz_*X^J)GN&6xUFKN+oA|NqL;_5iKv%qR7Nf@JZl zF>1`Wc4T<(ISD$Mr#C^<=}Ah*bGl#=qbf)&hk$qeaC^B|i0ydcfRi#b$J>FQns*R7 zK~;aU*27rA=b_lOO*f+^#(}y8v;ELw&j(K`34;3JtR!P9Igq6iw`y{3g^hd+=lCmv z*9z^N^XSfgP}Kcoi5Ea_$Tz@g+MzqGKcpcrTQ+0>*e@t7cR+Ny_uz++ZX!aJPlEG7 z3$6h%z+*$@53z&&8hGXvnBFA63lDx+UrH6fO_G>koPdCaeH@(BzsGTqzmXm0X_iSOee~@_(9-Vm!tF%+?!mCVx z{NP{FH+emf@Q`CMPr?+U=RYpeJDWoG3r}h4e_BLicl&zp3=_sZwN1AQzHoZ=1Dt;8 z+MgR^8eS$HxB=UjFo!LS0Q^w!$}IYMoRLOVrWgJ`g@`G?*?qQh7HwD^Xnnf3U7@s> zNMt;!u@GoEyJW@pDrTP1=A7neX)v`WCVkFfgPdvgMI@4emtl=D5z<{7pkZb`wSO85 z^Q3C6Cp*RIX{2LZMsW?k}00>b(%#H9vZ8kcQ~sCu>>G* zbI54aD#j9WQ55z}Ku(5QtM!|4afv~X_dNSm)qWUbdigqWSlhR1b9n&vvPq7-o5u7s zJZ*k=g%5C*H5F>ZFUId{KVCnh4T63iSIn+%dSt0L)}^4Ee}|DlH71)9>kkx2O;1V> zjxt5&8t#WLhWO_)Xz`M&e(fyKt051G0TGE3dRi}J*-i5%)+Sc+H!1W zUs*}B(-XqGW>mF!i%WU)AtmXaIuPQYesB^yjRx_+T`+y%XZx@|gs#;odwVl2^suyJ zm#G!dB5`*5b3I~np+cL+ufKSF#?g18J(G#RNiS8NULZCLGjvgo9lhUN54A}5=ax67 z_&9@Xq5KUwjRp*|^5-_w=v3cS$$sue+w~XaFJ?sxQ(xD!zYDv~Bz@x|yfIJkm|7aX z2t}o&Ir-KN-0IJyE+?;lP>_Gs?7wR|7-^KD4sYmYS{~LZNk|#LgiUBaT`kyx>+Mf6 z;P=(aQvcyXNbi=#rpT`^kDPyvE9u?vH|5YM$q@_eRZc8QTx1T}1aD~9_)jg|Vxw<| zN;-(#^mvTTfTRvJP8hyA@UKz$vUF!v98z!2+_`!U63?Lzva?@WC46z`FUiPfc}fy% zc=gcTKmGloT*}~X{@!98Nvc(NjF&^hx*Gw|TaNgbT}c0W=~Ohs`c5Na?d+AcWH50o z7BWq^4WAyXdDe6@Qi^1MH4{LpDX)99`2IrVQv@Vspv4yf-Fj&%fN$`UkLkL29nv41 zd_|p7%jPU??dV_Y4aiLAl0O>Nl2lFG$mnVpKR=#a^W>@A-4Lf;U1%n*f0wuE_$37U z76}3@=MP^5iJepz?&+Z4?%iNi=iM4~)`%M{&IBv#plVYcayhMHtChQW-*gLVK~iw{ zo65^t`#43LYJU$tNuu1m&au@m1Lq-z39Q|b7VsmQ4AexvF4AGNC%%gRut zk!wzv>V56gK=nq=G=LZZ^52HCl%qGSmT73* z{Vz;e`NY%*#w9k1J@L(MDC&hK8Hn~={CysjXwEH4``L}T^os?1y>MC zo%_lxy69iC(xp2rmQJ9y1*_$w*e88ki1Be!NkD`95vtJ<-*vIRn?HcX2Sv`e_=1tPUXt2>?XGl}&7oX!US6v+=D+%n<@+;d?} zTAYevr;l7x$PVTBeZ{3T+=VDu?-t^+Kc}2dtq${wSLiFchlLtX2o-Rkq=?^^^H{s< z>$fzIJ#GL`k$r^#m|3AjmZXr;dR4ajGZvbu9RUfMXimLAnX*F7=k9g1k*y3ce3vl? z50w#IIcadmtaV_B`uDAXwjHKyM186Ihw31x$B?0#*`G`DclW+tyVRSI^(IEWZA?SA zjtq4HS>&2uDPn>UFTzG3S>;u3SF@V|Y#|xlj^lEI7Sr2PQ*XA;80UkI_!}~6$`<}? zPfT@aJ68m!u>d2A(z95~;bZhCkWX%ARGtfc8E2T>J`6I7^S%?T)kJ7v6l%PbrH9cA zE2b++Y0$$$*EfHm{7IeUl9+4~Pg{P;MTPocvHj{N#82AC4f#%uya}@U>442e=G`!Uk^`-xcru#4Y#14FWlQ-FqMnak zfWCmdF(vFmKfyWBM6Pq5m7EZ@X;v*X;bKm7nDX^);dRqa1}ESQtr7H6BwqUtgK3kQh<6KB)!+}GF%@zIpzX=;5f0In#<;|jD@5Cl%4;?O))Cm?B@JGS}Z&3o3wuc!E&Gs|CeG!MG&3!59a1A6uE0#1wzdX8Rjvwu)p zSzR^Uef9D&&Ceg3#Zw<9K-pDUWk18qD}bz*>D{0WiKy2!|8)QF*%tp>CC>lnW+DB* zm23C^H;WJRr_y7#W6P4}pZXu~MpPOa>H`Z+kNuRyO!B^FebmywnV?y1ToMWC7{S&TTlyrZcky!zcx|d5l z@?5HMP6Ar)&c`GlmvmnJO$w?JI}xIx`Fr{fCv9VI!r**m8qXV6$7Lm|`sxmCsVq z?>S2{tW{^l7P+_`Bv+POe#LedK9hiW*4{3neA6>3SARF^UWC;8Z8Fw%;ytA%6vK@X z2h2z2HtOI%`jfdVMItt7R_M+a9%>){XLFt5bn?Tu$@j=St&1N&(DC9QO++%9mL}s) zdtPNH8F*8+zPBGs6nquen(u6rkg^*U7>t4tRjegamIj__Il0-Vv~PKyz|Hat1|(w@ zgGqIMOPzA!Cj%<;1G}Mkuf~Vt1_jB(lEQMo1C?N9(>=Y&+-H2(KJ*DK4|LNeYcmHT z+Pl)!8#t8AY0EZ8Y==Kdybww&7bHTw9uvYf8UJ`{$t3n}4BI4cv0l%Kic#b!>5r5| zjhan~LoN)`y|Vy4oaNCEIcg?b;BvO7X`7$5XvNp}in%xg!)+vbHbH7kT0MEKqu%wD zcdfmAxnOBcO;*A}3Ls!M&N#3$5Qunm5dDl)*erMPUV!CVW(EVE_q#e)2dWgEL~r$f zNXB_OdilHo+l=Y1S2Tp)n9K|R+4EpHcMNe2o@|KBwkVxFat!fbEQ)#|Ble=s7Apg~ zN3!#pj>vcF96MS#MyTt7AHrplMXPs37v=gseWRe)RQA`!CTqqQI*O_+I+V4%+MlL$ zMWV}bFJ@l?sawTewbZHLxYy)1-#zsuC;r0N0|zjkUEO&7mS7haUChY5(SeqJ-!FQS z6Kf0cFO2rV-mUnpQzgz*96KORwCF7wPMi=g#nrUGv|mWY3ulnoo zn%Q+2Brxb6&OUXD6K@p6MWUTsJ|5a_S|OB^+a&>Rfqw$w!4iqNvz<(T!nF9n+*-+- zspm=Ous@Wp?qxB|)sfn7Hu;D8UZ&gHY@^EeN<-v46^pBOh{FU*@~x^5TJ}@zw;>AW zrifmVvz8x>>=_JgMLVSS>(lyA*OaX1ZP!dKtrU?*8vbbgkr%^q{7>vAFVk!pR>tnh zFyd527{eYhnJQqeMtF>4pWWs>8nhtYXYjP=N&aRaE_7IllUzbS_J&)8CF5S;xjTOv z33G_@m`NLHsVEa3!5FMJeCBbhjo(sxEp`(*d0T%&e}R23=6y8AoL(>vyLc4`P7`WG z$x3m(+@(%5TPh!>3%D=wL7y!3RfGc2&zzCDYPS zx7m+F>jBg2lbHOktg2|{7a}d1(r5N2Oa6$Ujz=U%S+HY&V_%O;Au=}&>4V`a2&-k$ zFW%_182-72S=$mjAguWp@p7AL`CU6w1g%B0wIBr5J(6& z?(^Pr=iGD7ednH;ciwwv&Oez+R%WgBJinQ>zEAu7h~518x9ykue$3#%A0SZjz~_6P z=5!OTiW@)+GC}f97rzK(L_!yDQ<^oJ`zkxnJbb=ZNIu8QoedL|Qo9Bo&Qr|4Zha#0 zTm!Fq@SvXAT9a|L|Ke&>4?LhElfPMrHkDRf(KKpI=TbCYWGq0%r)FodGs*91u!Lhj zIPqpuHLbEA1n z1WuoXH{E`#3Q;k4L?-csnvDg>L`lhy#dmx%j-ePJocGPFD7K9WGNp>z2*008{%v&Sp_9b%Sx{8mdP<{#U! zo4lYC81wJDT2&9R_nND2+~}u~tl{;UTT|2}0V*8lfX^@wO$8!{X}!?JbQ1L!3`;OU zLR<=Mj)SI5ss>g|8+*S~=G?pV=4^Y<64+wU0b^IIJUT;OI-)KKqqD)}?axonba{YL zlp-PeO9pEECqZGYmTM>?tm1*Zj*t#nOaP(NHqHBVs^n5QE;6R?iS50D^YXRXW z)=imLHHec#Lt-(V zJ2enP3gG%=Uv6&rTprdNN3ke0_t+c^Mir)pcn!rS?bg}(%$_#)9*mVcLFOPx7WGSY z69tRE(I~Q|$N}B+kX#+FkT<~j=%+`q6P$eSA_o7GpMaeHx6YO+{I@_zXN7tj9O#6hLq`hpj2 z#(fs`kbHA;`)%87DSSX$g}Qx1VD+t1q&oM)>#wA1%SX<5c=v0gcO_A5yhy?Yqb{M+ z)xKALA=w&Ifj3J<(sN{^te~+?mjIFvK6fmGLU$9 zO!%4z`}uGnv-+>PbXoO|`ZQ619On#44-K93!NDo7zdg}^I(E$1m93=W zwuXh@Xx>?{*#0tqsr#sCtXyBAR&a`BNlLNCNV0F;4!VxL6u2q-OC%RfPcvUxvYDG^ zkUWyto6-s^$Bf#wLMSO`?~f;6BEKy+2$JVGJDl+~?uaq?q#jd!2^AfF$&y3A~@yfSvtp31yN)Ez;I`> z>eRiS2;Pvgb2Tx2BQZY9F0VWFrt+ekZOaw#E){)F&InHk=638@eI{(+1$?Q&T)Ws& zKxv-+^Vs&hwv^A5y{kANG~?#{!FHaI912J-+FMn9Wv6tcpFhvgA+_|u>ZPHDWa43e zq~h-VK#YJN7|k#(MUJ1QL?bW2=u@UA739w=TI)!Zf^%yvl*}As>6+CY zH;425IbQ^2@;CB9XroPU#VxjZd+IxhVlHF^{$YzU7exFzo$yIlon1-Iaz@w2FaJr(``e@8(I{lrUgf17a2k87{f4$mG~baTtAKUR(M3_nS$gQr-K@VtcOW znms_-{XmA#^!uha-;34eJX^1NR&6k{RO6C}uxW?S9>rsP@+!O@l&~y=J8!CLFUa*= zj0(J*nQoTqlDI@`hu=t=#2`;1y#@zZmZS%P3dI8xQ2yP4BEU;UKfu^A?uLiO2FphpJSJ{0CA-sO{@!L?! z?o-W=g^b`>0xfgYktvB-&iBh4M0BbfyagFgHEkP2YZFb#JKOp}GVuEB_m0BC3m3@} zz^FjJsWVu`UVOcQ#Djbq#wqeuY<~_6Tao0TpqAZa2_DM7m4RrX{S0*<7I@#}9darF z(-usiat|2kT{jTv~O;5oHVp|d84?k>wF9Y_^R(;Z%0@GwHZj^REBKdR~b zZ{ne)bK5lePG$KEp^1daoR|leo$;rNNzXF03vIxb!KQ^7P_+8wCa~|mLNIb)DmJf1 z0X%qaa?`6`(?gOa1*#*8G|_@-*7y_V`z9^;0iSwu{|KK$CSC5cj2^MlO3|jmM%xR1 z+|=1&eLhwt_MqDHT@&WXTN`WUxeSnB^a`-!Z8BR34>OO`T3=AkfTkYKj_bjd?P}i8 zp)Wf}%W&y9QrpDC$R#2$qd)4k%6!VXytDAT&P$xHw8gM(!7h_{IEYLHF4ZakM-X$E!m+iKyAru> zDujHoRDqEY#Db<_>eD(o>y1=G4U`%{FLX|kUoB=~LAQ2K2%pkP5J(BgTWy+oi1rzt z=ML|F(Aos=NtZ2ETQCcxd2cd&~sCdplh0Cd%uI*%R z(WcVX{oR?uTv_nFo|}X`f+_t~@jdomCbyIR0=^t7Hg7AOFrv($X0QOe_Tp_YlnDe} zQ{yI;@BA6`vHt<*ax6!s{qcMCP_NfJ0sua7@0ee#N0t91!2FN6iaP|NwG}1}XQ}x| z80*9C4`O#*_#xZAOt{@sIa#gl%!FR|#riA@R@@BljwwT4WW8j3!k}@&#>AMZch1jW z^He8Vmj5B^WS?@}nWD}~9ZpM~lPCb7QJ7KI{sh>~S=e-=rNCbHva$tR%eUiqP+M7> zxZ3bG5t+}csUwd_xo%Pxkx0JuQ}IS2r{Lp0K##3CA9K7G+FHwQaPpw!Xvqk|Kuv1O z+WAvA66u9^CdEiN7x;{XY^XX}p)PZ3q|4w+>@Rh|aNdG_@S{9{(W(sW-*ANyFxO)6VbyS1ohp)(DeYE@cv;f6g5u@{jxb;tdMASW?lac5gS~KuymXZ@p z3l8cr)Yd>3Ey(yE0$C>3ZpO7GuQk2Gy$=*7UG$yDe@qnlIFfL#U}ns3dGA;&tT<>x zV`)X&OtFD9yCK=p8rDm0#sf zS!QT5PNgtcY|QHUE3O8lSjk*4R;76RW!Ldgw!=#e8b7oZD8Cq%XpSVcEj(d_;;FOV z+Yj(YBv@bfzEf zlgRssIK_iCk7j)di~gOj@LPuy@d0$j#)%&pka8-|yv7N2z0i3_!+~xW`6Mc-rhVwv z^5W?V8^|ZbjK4Xq74|$^pxF`pMIx`O^Cjt0!BEhOeju;t)@pt6az252ALF~+f!_U8 z@tUC~-D2QCu5#X#4-(wmeq$b>k|nU$DLf39+Y3#*mNA*wr994^E8R?En8zI^L6&z@ zN1Y)%Z-W+;8~FACOu9}Ti6LeWdI=W%=rai+O1k%GygILxRc$MMXIRSP#uTrQE0{Ss zq19a6Ey3o)`Q`o5R^l_5jA#oebOjbPeA+!5s%qZHc{ed@FJ%u&SW$97;-BQ^KZb%BwuKe@dj2w2LeyYPElE)=eN zGwho4f(MLtq`Tf_zSG^*6U3CKzxPrAmUhRx5Q^7=M)Pi}*;*`YV;gNu&!3yV?SEqb z$7?$mGjU1BA+d;yK8JxE+ZnpGCFCW=Shud%txEYF_0uKyz}DJUrqXvJ%}d&j=&j$4 z8Ve-y(ElKd11b&qbEij3{egE-lpfH%yKZmQULp0xX8mVR%dJNQz1iP=7ly?H_a|qo z_A}h&IDRuTHVYQ?mJ7q^W*K;<^gW{8D+QM8vxoM`_Ze1~KQ*PP5OTKfRmL=g*7a7L z6xE8Ipqd5Txk|g|RzQ)cD zMth=?xSrg-p7XmUx1^~JTtii+4|bZuA;--hff)HM`ND3UPQwYZg#i}+dNBP#+JG2w z|79${B^HKDzmitdP25jE^|5`Q9Ka4H`Ut05@bXiKc}Rgo1aAb4+^USYqw!Aa1?>Ph zT`jf}_l@5#f(QSh4f^%7kLt%{_?Ms$n#{}kVZ4vjT1O#{sVm(ztz|nsxR3IYMZB;y z;#WE7E6Fv&XH}7=yk(oV$mU?+`RPP7`|4MmW8l1O8E{Yimlodix57UWdyk7SLYw3A z*>T)AIm3Lcb!|(<0mnK3iu!TQe$1v(k1w8R=Mo~Y5MQ!a#cV(NNnjg3u=8QA%MSs+ zCVZv)QzK%B=plx6?sjz3zOqN%oP5V)MPF#WfW?Hm@N%Nm@6_ zi5DZ6hh>P<^`#^G2S0;`8b4=$I7-0Ns|81$8;qSXO=9(p8@8@1X+Xn8NwqFjDj3(on(>#aU4eMb>X zO-*%}?}5Z9u3cNMkmzo-ziZ!V?>o9}@ zOY_Jzz+hwTr*3KcQ9WLnwKVI2M693F`imT9pKlKRo^v4YW2hDqekKs)pnHxeVdIn5 zFxFKT&bTLW*67Z_xLs{r23s|#V5U{4zZ;UX%-Ea=1tp%`y};|_c=aHN@c z^0l{-&D{${U-o%-tgEyL({uBOtlr#Mu1a6O9Tw=st$7Ztk~(7%NvZYd%Ul4~^$pG} z&M;e$5M^{{1=cFDebK9LM=#8_(bI$y)O!BWUO-*K-^-Zl5>B54hZmq%sckrn_Lzx# zFT4T;*iB!4*iiWy`D8!fe8b!DDewKE5>eBKvcnE&pVU%hKcTNv&hh~GxKQlSBhJVu zzEy|wihDoB{AHf!pVyGba(<=CC&YezBH9E)_i+WC*xxfclE?vmd|W+u5coG@>2APd z`1%1uCc}@!mzBtB>yadg$y{IOlOmY0?vk{T$rak{}Gs~W4kOXH*lJZ9dwH3}Kza(xxa zc_eDWb0P7KI{jCruK!CZ**HTQ;-Z;9zPGYmU%EA4G8zNH?L)~mX(QuaXK15fl%S{H z!6Yw8#2$@{C7XPpByieiM&V34BO*Vqz)*Zz)lr+`5Uf7YGu!WQG2SpEoIug0UGva0F}^N7ui_O|n{n<~MrrV^rS z^HH7UyAFdU7Ij8u2bN3cUsB!rdwB*e8&>wjZp{xtoFPBubl`yshjKcp0xFq z2Ta-)-HZ6d1)h>8Pj^l-RwMuTai8Nmo?ITj3UQp!HJC;J)SP5gawJG6=uIaLnt^wr zfi$Dyi7$1IU+X8*{o_4h{mSUblQ^sciR|SrDT~4|W76lVoI)%dkCfMZ(KOIdyXF49 zJT7cz)oG;3J*QnxEUj4$edJb8$9t0(mcS??z)m0) zOd)7-N0=JX8ps;&C*2*mxR3ybV zQd*^{$OdWNw_T!3@R?SCMm&R*A0^{xd#9?vLuKhRJ`>GupDoR$6~EPo+l@9FCkd=H zmy&FrfyF)-2HHF`toa;}#UFi(NG8PAyA4_rAkQXz!HhMAL>+q4<4v>V6@OR>A|yoU zBf-9d-Q>1Bla^ST1x@z)11_0_6NqpP)I4<(Gw%u!CF`#!+l?>R@0O(|1qfo|>TRD{ zWB^k_#SCfjGPIppFunXzH+$0epx4Ktg*|pKv74=H7AWY1Nv&0`P7cSwudf&M>ZhyL zxd}h>kg~Bx5e<{$4g%v|{d)*63PtO1dDGON6N=7L)GT7QhOEko7wS@1PWQiv^o$KV ze5`Oh+~e#$;Xq4VE%PI5PIVZDZ|@3U@T!&fFb|9TDxuDr>Jn6VV*Bq<$u?m(8_B2 z;Ps;{=_#<3{2Y630$R)eGyS(8wM$)^=3zlC!5;<~Vz86|mvQTe5H)VOzwUS3@(KEt z2-Zta4f!lJ1q_GGur90cqIlJ%4;K*h5t4wq`s>2tFx2XSVg|l3r%2DS>-r-+ZDvq& z?KhF7ww`B{`a<#efzfabd7ka}y1CibqBn|oZEcmg=dx90SNWwlXxn&BZ$*-4tgg|g z3j@ouVLe*S?vI$7-fj9JexQ=Iz=qQrlu(H4eQs%;aBgo3ng31iU{pIhlU;fo{jP4c z#xvGVk+Sl*I@W5qk+45HyykgP(9>#>vU>>D9fowf@u4s$O0`PeO}ewBx9X6>(}f9( z;fr41bT5O811Ee7yz&lcZiSGHCbR^Do8A5D`hPa{946V{iRGCryTOW1mhX69_*1oWZUDwQU;824vuwS{ThBPzerm_yrUWnA%>cI9_n8>CB}DnLG!as%rhWl z#wN+6iYg|MCM~rlnLN<45B&W=J(FseD^gTDK)WRTDlELQ8FM)u8hLn{@bE(S;f>W) zO!|yFB`#WcjZ0_~+6#l&2Y_D2KBE*AV)jqY(&V6GvPZ3>9;2Vkyf&=fREaiD*|v|VNQZU>8wlQ zx!nfM@n$r++UVmZt`d!spUkfJ{L+cR6d$volpvd+Gwh^(q_6Pthd$y`bv&W1$lP$p z%DHIojYAa|NkP-|Uj!APa)_@xXZ0A{`Oo`em*4z{h&(G`q82vu-O90(R=wrT&Q8a4 zabMg~pn6=gZq#Zm?&9$!|Eu&xIby6}mNqpk&8QC+N2|H4*7;sq(iM-&Q&UOaD1+aZ zJ>s+YJq~uQ7s8m;>jkzjR%xTI@DF;1=^tei zPD9&CH7YYN1`_dd;Hpfrrt{8tT2xafpYqp*j1e0{R-Fp`(Ue_MsgU(LV%`E*nVkm!m?}On;=e?J#X? zTEi$7Z=7a4rqmF8Mf{I0mRc(3h>zA2+G3}zKUZK9uce|7c5%{mNxj+k0y}Fggz(&c zccOwv_w}ooE+rtp?tUj2BE#mw$g;zjWZw$45mp92vtl@=U(*ero0n{2@*7_6gQf5v zV$f!6?{V>+pYdxF!Bd)Vk5`I>PtW zt_g}n0Wy=UR}4>WKj2&`g9J>(Nl3|12&ik<1YgoR;Dntn z3#s6h=Ajna_=dEsJbgZyLiB#HwS0l$XPw_b2oM73zi4g=oV`)_1#BhFW}(NG)qDUaHuh7>IN3iB}+?l%jXA=Z93woIDXVQ z5~3ka9MA{lGTy@9ur4Vw?5fpX}C}r*`DnA_2FhIMm3t z5Q~VHydnd?8bbiu|Dp+%66lfz4pV1m%@|m!0zbDpyuc~aMyE3bWcK_L&z>P6J5ibV zf<65QhqPbwsaO7LN3hd?6%tqkdua_V{YtS%fBwXpKxjvcGpu&z$2LwcmpyjX2-4hi zpQSS^11Oy#@>zjKNX&Nn7UiJVhZIf_3q-SKif#!0y2Q$F%@h^0HqN$)mrOFrQ+4uG zG&@v_x`%Zle-l%8nlGx^1N*)X=WBlAi0yCz_6|h?l@*|pv$0R=%3vKREpKJB%VSkx z5%??XIeI;eTJHu9inXJ3ilN*_?~s#p5ft~_OijE_WHZFdHh?{<2hOfgIz zz5S=jJS77*EUXn}vi9oE?G*bnZQPRT8RddD0K&>tRzG842Iu9 z^^o-A=s@D|g7PA2Gp2*@zT?CnfBvb$9XYdlI|b``#P&)q?kIM1lvSM>m5JR>SN1$v zFaxuA2_9+GrqHas&glzW_+@Ajpfy@vmxwZLReGD^A&&DImShN=5IVJ6YabU8%@7==w08;Y%LGSxDlSN~0Zo9{T5g{OQDv3J>+5e!jfTRGipczhbfU0?te z{4Z{>6e_~)4&|OeZ`N4gS4YY}h`|1N2=~`!DeejWU+;VQi!1s5vK`f_osiU43qOY8 T(Qn*a2k721x><34Y~bm`Kq z=jzJ(moAaS5P$rxlMw#{KjWe!{<`d?ulDRx#o+yoOP8GUo+~RF`dV$z-SVYHWuENm zF)7k1F6Yy#Jm&$_h$YfTyH{dzM78)M1T9CdntR*kIwH)9DI#9*1E#lMq`gR-R$gd* zrsrI3@;#?OBl@jk2_0|J=SM!GVPPsyBG2U4`p=q0!1ivd^U@8c^MykO4XKiAV7aw^ zy!~MR>{Q{GFJE-Bpg?(N(jgm? z1tXju26ZGa>X?eZH_Q}e=6&$@v%l_`Abqy$J(l#V5GREv`uN8{K7G)*cUjoK4r;vI znyh?0HQhT(tZ5rpQe9xH^6xA9WEoRZNizIA#I6qh>uQ+6x88AF6Bs;Li2bUL^6;Uw zWB>aVDkO0XKKkU!e?+y8A{lS0TeGw`{rRz^TEUj~Uwcht854!0yTX0i(T16sOu&CN zKk|HpvYPTur5O(BD*dUgz{YZU=&ZZUB@@J)hbh}Iq5e1O(aHz^=I4}(&1g+2RqEdey8p=Z{}j%DU&SLQN5`V_ z@&SJc;I9mbnlO9gskpcoAXD1vh3db7T_tw&X4u`}zmiwjAyr2;ROi3`C!JTsZgvH! zQ~#U#Wo=?NrOp3S@jt@(yCnXjIe%8iBuAuUrrgVKQ(DZj!al}7KLFJioOe!}RVj$O zMuft5eb5Aw2`XN<8ns{b<;s}D$*?W={MVf8!fJORNh<%=pzh}<#r|hFoQ^GDdbLgUKwcXr2x1w|ZIvdqHg{}yuk`@A++N6-K zJ}F5mDS2E8xOU!;5apnQKVB1)MgC5DjB1fxJM;J4{ z*h?fH*Ii6SFIv$vOlr>)h?@W-Df!0|opQpJJG8}S`L->B zcGG}8Gw#=JKFS_1aEeCZ%AFW@9CsY00=@-puuRk#>@FhcX3udnP$P$kfa6V=OCw@6 zDmRo#yicnM8$JPcFtOQOe17GsrWGzGfSR_Wl>jZ=oJrnck^a1;HZ+35$k#qjZaD9g^f&+V1smGb0J>&NjDNMxGHp14Za6jx13a-Ed?E}Ie1wiRk_mt6}SLe6?6+kKeDPQP1Ym2TOoTu7cf z|5;*GnsmO8d}nOohuc6~RvPhpF2DAZpB5Bk&39Ux<+?Bkbdv_Dzl>Dk|C$S04d;gJ zHY~wg+^0&6V)=2y#$bV_twY;EcXFvF-=p!WC4qYE)I#zgL^q^qeKo=u=J~yzLSz;! z5{UPsHS1g2u4oz^Zq&UWEVDl*wKlBTb->SbW)av+A9dBmJyUWgWfUG*zsXxC|LCm+ zV(W`^>p1pz;=CRKvQamLU+5AA%h$LJ&yLr@>@a6g+J z6%5?+rT$e#hUUQ{8!NGO$;sJ-xg))ax#q3Pt|WfsMN-7J7R-D0gfW9+)_-HynG?7WX}savRFV)b=F+4j+mG2=4cTpZ~`ij-;NIdl$} zwwdfc#D-sHMadZw%%E2=$p(KFNHbEK*C zvb)$h7rA|3iwSfp7`^SjA4d%`xqq4T$BnJgpFefY&6(U5PLl4d`5Ie!u6(*(ewfp6 zJkatQ&+dfWt5|~>LOZXlogZz?3^AC!0?cAZ<`TKlay}acAvdmJ(BbdS_ML3aQG8Wc1~!+;24V16VfucH4B#?yqwg#MDU2+|0Vrn_@hMZicrG%6zvfD=jU}Q@&Um zM2YCg9A{O*E|%N_W7uD7QQ!{cJ={uj3o0h)0`2+{aLHMv&;<>nT2^xl-(+6+8ca6-FpVG z4}7wc0BfF0EmV2k*7~%;Y%_45^8ytkhqYGSHpSOKuAUEy^Z@{4{YAy=_yJ6Ef9JLf ztSNtp(}5Yj2472ebCmo_$QolqeBvnVPdDFNjfL(P0acq14tLS(y`$Pyb8xyD%hTf=4uU?+j8YW0AB0K1s>XPa4q5wdlWwmhAqd98Z)HtLE|XSKKhiBp z`jT|tXM~nwoUpQShEa7t2~V+T@-CKb=A()CA&?d3WiB%NE{EG9xW}8*w9MP!2GScE zou)|JOvM!kBWG9G{Qbo{$m#+cB}&SolY>GFiM#`XJbr2x6j^ILW(bHWXF*i1_;GZA z%L6df+jtDQY*{kkqM%x5z?gUR-B`_tfdJ#CI;rz1215hUPC9NG_g-+Ca7$}EES`aQ zHPAxGoI@>q{rx&=oQ?MP98gDoP#k#os4=J%By;w=4^jYKDvMgfrHR!#Yho-yJuiIW zdu)2^KT+MKWwLE4uRTC>!Q7c%(ABnzH%eQ-7GlB|D?l(`N1YB@>+_~;Ln_6J2S-ns z35*^MJ;JvpOp=~m3T7ZBPbo1vtHl6bjdn5B=_ z7xo9!`?Cczu;uLIjE93L%8Rv1`V5njo}2SWzDTG)ehn3QY?v+5**&o9I#YO&W}oN#7O3yOIBkB^@9U@wKEo1&EknK!7b`kiUJP+>GmI;etuouB^o#B z3SSHm^Hf5t(A~wUuAS2%b5`L(vW~j(xmTT9yhj(bt4E38d0G*e67C{izNMa29%Qj0 zH$Y5)Ul|{METMqkq zU;Rg%=5I`to}3?3bXz*-b7)KCm+7q8YGfnawr-J&{@PtA(c*utdrBMIM5uFs8Oax6 zuUSjBc+ZX%VD)zAG4`{sus^>XKfa*^Bz?FWBwxDq+hYwi5ogQxYfSQ^6C4Aeb!kM+W6V9pR{1UlGFXnYqNw|X>)5o=#*^Ty#G7A zM~guWF3L8E&Gv)M^&HjNfpRwQ8B?muq>D7_nkD0n^E0>*dzK4ICNJ#|N8N3uw$cqe z{Iu0SbebPQ13R#BYhPJXBD0|a{Ka6|I{f?~J6ftQ(1ZtqkcV6RlspPZ&Yz7v>b1_g zy;E_8w`3?e*2NWOe@Y@^5UJ^pPaZ^9`(m?Ks?8TM2wAlf`~F?ak+l8Sl_hJ5+&cj+ zL!5~Oo5oy5Ln!u&#wKDlawzLG58L0U^Gyh_srEo1%;LOS()Rf2g-xcJ@*to0JW{4v z`mL6w#{1il$>%iOj{FC#2aUJhtQlyeBWz2%K1h=5BU&r{pQi)Pn$3=P_qPLGqvs{C zdP>c9!v+;=y&09)sFlMcrU6uODIL@bY+w>1NU$q&v7A8M5xGHeRb#_yP+EK zIFrro*ZI)qj;02y5n5Q0ed-yuBmJgd5;e_HN?&Fb`0GPq zk(cvn9NMSCgz#(0HMgWos=_`g<9GB74_M4wa9fo~NMR}%9SJQW{R8_#XP867gbz28@^-aa=atV6G|DD?j7AxEBFPzI_wtpe+d8oGbT37tewHrreER+()~fwp81`%b>rF7 zz3Zt(zT49%=V4eDc9rZ{T>Gf?Ol>xV4?3*^%(4Kv8bmfs*T?VR@ng?zq+U%r#g`o8 zyIkc*1mtHt*bTBgWnmZRuDMZ?9;JCB?lNBw(>{?|OWV(OaOr4_mea@5P#RfRofsp6 zb=33UKP}onqKyQ047Fr_I#rWE!wG zFiws$v(sdEs=lINHghvMk;ToiXQ9wvkHzJueVxw`+zFYSz_Hvr9J`YkGP`QlR1ei} z1MAvTHV)Q)12%%Ni?`u9vCAnyr^bacTkdA>`IQPF>Kb7Fq>rE_KOXL8J?@0$pcUe(y;d4i(Gtdd{you@fq~!Q<7EVFUeL`)Rl!9zzis7H_yFmToFx{xfir7{5Gg}= zQMfKYD5UwYog!v?YwW(mw7ty(q#W|7bv5gJ?~1rpj&B8FqmiQ`;H2XyL{J(U%xQ@7 z{PL--1-~0RSQ=R8F_J8tW!_~`Ucl@#PU$ASv2<~KWtg`xLwK)h>O$6ed=%!l%yc9a z7gnZt`~6Va`EYAV@bBo&T`O>VtEI2SdMzVG$nECkZg)Pbi>+tPs??|kbV`HoTEjv1 zc^`+dG_?1jCiX#i#mV+SmpibG-d3BG5C%B5hWX{~P&@|LM3z#;;#W4ZOIw~YD1R`{ z2Bqk!u_>;H<+_l4x%bEooef^-qA17;*l91_4cK0KvibEU$#rGAM?c|-DlsDNyzkFX ztDDG_RsO<&&8DBjRaa&(w1|nh0GVef9rHSR45TBn9t+?`=s)S`1C_N|M`F3{eK{r zkGqC*Qjl*!)#*|hpP02A3Zb-gW))J+M*RE~;}_LTD<8^}S3a@71UKU0%15wQS0W3q zF`K^(A&In&?=PS&IV+E?ghzz7AoIIdUn7^c-R8=QQ zuoq5;lU^;V_2;^SZQT~ZlZ<)y&+bZmersqgx%Q5d=<1q&Y!m^cO@8y#F#4&*&7S^V za};G3$&i9`IF~7J1AY25Bk=pt9GQWXUB@-nGWF#c@!cn~Uw#A@I+uI*M&W9m4zLC` ze&jO9O6b+4eC{aPSIU=yKawn(Fyd;qo7}auDvj)-g&6sb@X{bxghJuqGm)Y}QF@Mkh zH2n;TADdE4pU4%~$@|KZWnMY7oHrjt^~wH=75{jjn<&2_-0ZuQ!&7{t9KK8~P9Ve4bKJO{G!vB7vFzL}!wV(&o2nRTA7nf%UR({{}ReyLH+)wbK#`T_CTZN#tQ z4GPX%2=kK76ONhjRopAk^QRnYB)4qT&B#`EA zq%6_5n?Ia*`?RyC*tisKU%QVyjanUqEF$_|}!V#aTclVhV% zF|S`v4C~vnm?r2j+4jFH&laE71Ov?N3{dM&V%xD(!idjZ#xbjXQ>Y~W@@I$_%+>GJ zT*|DhIC(#nKELNxFc_g42<&pL;e2*lVdV)ZaITj6@n}-yZGSW+%hjsOX@2%gbDd*t z@EVVod_TopYsIWR5n+<-9xtB;)Z7!;w+5}2)0g+TDh&{%B(wv>7mVK)8SL^)KAB}w zwFPCeq=u>9w1kK+p+IsTC#tR!8!q|lGy#VF6ZVn0Q)98m1xuC|VODV+=FxZ4^8$bx z%(aixm7VOgRF*t#Z^LtQEk~!t7((gI#cGVASg31y>QyTsVap6ARuxqRIG)x`p`76( z39rL6o}QVWW6COd{bS3jl$vNhi1os4na!QstshQ6J~iwq9xi#8+mp1|5&fwq{~pQDL~|tU!#v>`(gesvmxs;_-c#Tx3(x(znXm#%Dlnm0k_*IQcoj?-e7} zn=%i2a|Ri%28n#6YF-p%w6|*j(sP&d7#Jr-pD}Bz5xO~y*OXpi8WVBdX&i%qUO(CZ{h27v<{SQ7JE5b?BdK+-CGU2; zV?J`-_q2by%_|tJ8Af=Onyc4E&X2{Ye!ID1&h70lE9U;98LG~BRMHUzIx(7>eeLWM>3|&kl{p z*d3p8j84*7@>Nhtih!;je3h=?J6W{k6e>1r6`F07*RU8Vt9H9>%+XozU@^=3tDc=t zCM1o%vMQTzuJ`z{Xym>7;*$O>Ows}K)H*K|%e91&#i65R=CM*~Y3;HCkF6s*wI|$p zYk9=L!7SGKbyIRbyMxwsR%oKB6L|ORA6ciRv6L@2S@{l1P~Sp2QZvdeI6dRjAV zWYOtCWmxG2Pbxme1xHOp*QCC9GvCD3*?KVlDj>a5oDp6TX;J79x#C@gczo3*^1E@| zkHZMTz|O?Xu6dkF9!7Nuue;OT(b|7dzMdWhe0h4l_^FA6U%+0{JyYDDQ`D{DN)OJ@ zC|hU~5x4PiSo=keH~1Ib;yg_nlV9E~HCJh8>y2std;mYv*C%r+Ln_{HlG#}I%=7$s zInUYe_U9cp(F%sh2IaG>{C;a6JS6@6i~!YExHEu)zJfUE?XfyeiP$i!+?X8t;UQy z$0xla*womEb_)GZ5@d3zzt8BUXD(Q`Kv_S>tgmVnPhNYzf>MZ8pLvHdo(kT--d!EN zvxx6hEP4?Qsh-C(rgDF4*2xu4&=qnI0TeEEr>|vFJ{qqx(#T5VchwS#K)yHT#L z6(lq=RH0EUk@ft|A|Vetrc@v;jVpo`mrs9ac)xe&WtdLMq>~|z~W1;b?EhK z+Rh~jt4JoD*7sAxYNa9@Z`+L-E(`r?w~eq-bF+D6h&W17P`W27F3!DPCiVJfC0{|o zqjT24sQlaHir>t?HMykeWIr2A9Xir8-XU8yY$hal{*agD`uQlPncGMjR;t=+B;Mbn zepe$&g)Kp0B?F(Gd^cxMmw_+g_2spp`eLUgeC({c49?2R>fsCD&v9n?bUO%|U&F;F z{}rFnL~%HO<9CyR0sB9%#+3Xp>&9=sV3S+_;x~Q}Z#^kCb+-RHA=gR&M8rJ!_xJx4 z5##S!q8$+Jn}sxhVSP0deM*He)MRV!4E|SXflWf9(qB{D8c37o2gm~784T68i-|Qd z+Wo{pmmbU(?eokXsA<0Y@e}4Q>dSB~nP%t?*{nrim(fREE8E-TTv=|P?<#%fE_9X} zzN_16iO#%sql1ejWdqrh8OqbhXj6o06IE))b2kiahXR%B)QleKc0KchKXDEsvzFU^ z_V}7*1#DF|C)@{IEA%9a0{p*2P%e-nfHI<`@ifKp*?fJq5eeB>!;SV#T&2}{#li{hSJK=)J zs}Q5?Z&7d*vW`jg9P~)>?cn^r&>g*e)fB*oYEygO4Edt?}THcKWKrkd$XC&H-EHtM9`#}~M<^vyvX)7A&4X5p1oGkU2!sK{+aw{?;S zPm|IC5@y^PW|oAX+*E6J;&_;EcFbs7GcZ%p=^#6_;DikdAj0fdGIKe6mB6kIjA!Wk zS31Xm?oLkBeXn{uD6XTBPY-3om$Ex!x+`h+n0#B1x&1@~Ev_0ad<#-)tzU4ZDKyvg zg9B^GWYXIzU>R%(Tp~7qP*JDYyfGYTl!dLZRLp}O8(egQMQK}j`59^ z#pqNPdD=7;Q{lv3)&c_rJX_q1(kReW&Q&v#B_3PO6;kQD_m+^kM4LrG+28I)0%r;a z#y6i>335T7pz+CAPpyfHwixdgu^H%8p+zT$753_9|D{`4r}$c{Tge>egznG9?DN-F zyUQP}ZCd6n8d3WLY{WFQXB`BDGCQhcg{MOl60{Ikv+je7uicazPzSo1HL*OzWli35 zWHsckLvQnhR!feXIm?)5e@6$Xo8|k0!QWo6KiFsV&MLypMf8==$c$~GqwA(pJ#bOT ze&*$Q_CoiL7UZB~dflc(9_U>I{F7kVNNCjB@0tLGCZPbE(!B?2yO7T&;{pBk<_tE; z%hQT^echFgZo~WMA)d*+-1RHwH#b+3T3)@#Kg-@|CEbw>v8WoH)B7Cf_1E~` zRkGzda{%-H3e+ch-+IG6n>MZ%RW}(IA#Nb0fsGI!W!Q7BN0Qq-L_?i+eLD(V4R@Kp z7-gP+n*V%9mP2zR_tMNuWt1WCS26u#se3E2%Wf42N}uvyil6Sl@2|xe@u-%9^CR}; zJErgU%U^SBKuVnC50^~-@}QP`Aj%f?5~6F_K(yM%k`+#(kdDj=jkIS+HhBXxmM@5Y zsr|Jc)u~xV9?I!!7*W!wQn&UpCzhEQuR`|u^G(?pk!>FR&W{3de&B@f-J;LRG&4~# zKd5WO)7)A8#UAG>-o8jVHsnV$mvS?t7MHGuacE)%J-mzOy*Xor2Ux~t_^;KPDMMyq zqctBun4cpDbXi4q8=~v(IpDbno@ZL6lhXH3%V7w`%O5t@4KE!_dAj|WF805h?6+M* z+jK9>>O-J(Q*-Q#;(2l7$v(2gl=<7SauKgLzq7r2f({qpzP4gvog$O`eCFnCZGVID|KUtAMt`WknEOSLw^&$*6|yj?=mxXrtBp z`|QS>)D>0~&lHT5zSZ~2*=M_U`P$VGw7orK`{!3erg-yr(~K@N`lu-~FW+b1XEV$C zLU!x?v-g~UTVLUGMbPrruAdIdpX+WRFVTYRRd&Jm-AlLefpUeVD8kzvSGoEkH2Cy3J4xz$`8 zbxn-DZQf)~L12yjoaHnEEzdUVro0^OocY$@&KYe;`{kXCT9`X;^&B565$3fznMHr2 zNXD0y;ng82rx*G`(>sIF*%%#{A;FVq)aTou4$LqnQ?kz*B@bn#rVA}ni+NcmZLT}cX}^;jb%i@x`D$E8v9e3eonfpV zQdp?gp|A8jMrYj2G!!Eha*HNTbY1xKJ#cw9#}T8G7aqDK;CW3_Eo?R_^C}==Sj^pl z8pDGG+3?X$8u^*A;&!jJc^e)HG36J!NPn^a_=7abudHA@1|R*}`DeRK6NiDrJsdQ1 zGpdV*--}h%&2tbyMD)hTT+FafwOa3UODhxl>diRer}xA;idFmS-Uqn!X@BgM6wYsS zlN-IrP%$l01uhQXH+f73dMav%TcNpduBLdTzgFtU0o)b9KC9Sipg(k}Z;S%YDsYhR zI+lp67QS`fpBq*c5UP*;aq~X7>9L|jS8%}h?$aNmDg$pzt|*?yg{=x1sf~JzNEfcS zH@Lj!hvPUzA3S-0R!qKZgnw?)l2*Ptt}k!XnTb*yG+!%!OVm!O=U;1Ybrn#%9vsaa zOOqd#$k=_go4$6{RgLAWHpuc*bvxBeOm1sO+T-Nl9~QJ#m;*F38Pi6CSrpZocF0X7 zG~6pw>v+r2fe`bx_2%gFN&$l~Lw+wr%DKqy!?@0)*0Jp$`$y(WHYAeByAt#q+6srr zT-lweXtN}VBLGb-CN0{ifwyS?Lz>5Etd8}GID2HL%9gwFE#k4mpYfd)Li0P#4eMP0 zOU&K@rDEwZ;T@K3y$65xo*vQuOV0Dq^34I3bL>%-;M4$1rvH`POzx! z+2CTLs8o53BdHftKs`?mQMbBPX#$S}SRCab3^}f+manrzLPDmer}2OnuBS9qh4&X1 zDyWK|!r1lVlY;`IUbjX4YSTZ|CvCq@PkHSs%ivNHX>b^lLySCkG%Y=y!V{4BUT9SM z)khjBC(0j(F$KqEfRY<;vT6FWP@e+Tc(qGB`o#T{uqw06m3k7H&rzl^jqMeycz#w< zihf3r@LBIE&2wBV;f;NYica`rz1gZaeWN_4J27L7~!7f9=HQe}M4+?K^e#5^cyt;P)wuA%^z7 z8AD0OxCo(b)Nh>huV`y}@-or24MBXJ2W!(x$sgz5wqQ$qR`_zd z+ZuJ{ri!cRNUkqyu(20QSr0_($8Pe=JrDFYXx{F=-VfD75^kS-)iIFn``zV~>DJON zXL?(>`jlD5mmutIMuU;;n!8tT+M)W$#K5Hw0VDhOJ&L>}A()}Ih zb*e|2B|Ze*_@%OL!t{YgmkV63dcC2^_jz2(s39vvU{Wv1)=YXP)xu%@sJ&Ruqu4%6 zw!mPtMC%q>_R1!W-MutXa~{AW`dvGH_q2~H`Ta<#UX64NsK5T+g%iIkA8%_CJk41C zy?c=#N8U}uP1H2Z6a4O=>K!(jcyYG$)DXJujL7xJUY$-zS;;n-u@AHZ(E9uO##(pP zu^3=Vekbg5v_F1^<+0v%=6y4DXSe*VEYYk#d>u@Z=X^@DHQLD_C~Ph7UehyS!fz$` z5bY{pb=9ubwlWv=?xaTr8|RMl*qWA22Ghz}r@JTVa7Cx7dsSF-c?puehoO7T%u zX7SuQ=Gk-mDD)eAQ!Dg|o!v|(DX_d(eUqma9&{d!>+K*T_?lNwNEMqp&jli8ei9Ws^h6BZcy$FL_mnMQLJ^EKrJ{-3vy}?+x`Yzq=h{#rsAcgOw`&lLC z$>PrQ^hOXtgxP4oEA7!e4?(zRa3H9BNCm~u6vg=Jz-a6hbc};WvKKrLC^&*vT?gmy zmoEd@2_IyS4liFH^esy@k<@X8 zS%9u9Vv`TE;<+mA(=J_ah3?a7v&Jtf=rhmeTbVj#Luxa|ufsOej59uU`K>=vY4&&k z0)O|BHjKJNGW@5jD!zJ0To~sp$$01HMp*+Uky(p;`!MG0^*Rx?8*?}H=U$g_HMGgn zEi>DRiI!epY@OoMe1v&XC27OER;(1b82eN?|LDP&vmOV{lJpH!0@SSKcG|Zaw1u1D zq_G;zU&w9PiS&m!5~3-zul)4o>eS`O+T0y1Jl-!79bQ$K8u;BVf-P^Di|dSxDA9L> z_Lx^e8#t2bUDq}ba67RwPWs`!+`W#DF{k1b4cxiyW zih?T8>^7ZFs6N*IemoC4GM&fXd}6h$--P{a&cjtQay?)1+e2Nt{3>$dGQ1nyROsw? zW1!yV`L=I*T9apT&zk1V{pMxGvVG6m=5+6hIDL4LZ{u{j>dA2U*n`)5go(ldUGqY7 zgPfz_cPF_^gAD~z9_&@xgOz8>jJF1YAHpT1cRGNsRl7UnIfthK5~L2RMuK7Bgw=IO z=*t&*o}6vUEUh)Ep%TR(oKj<2A8?Apq5FZWQvsT3OFf$}pDnxlY2@v4{9<3!T%bNa zQt^Awz7iM2hs;6|FD+mG5gi7vpM5JSd;i09*v;rvr+`F~a0&B5rY< zQIe*#->&+lO%LciBK7Ob^!Ii779`~w0wigAHGi{w@Deq>$9BM_%(&hjuTkaJj($Fu z7Tde)UAN}x=?<5ZJzOm0Q17n?}eY~_JPhLxG#4^8+8r3}R)J>B$ zW1ikqyc9go{#8dwNy*jKwNea_q215IypWV7Bgvrinr!VS;ENd?EP1d>Ha9rB7OH-ivVH$ab+EOSW}NF$bCC-I{J?e{Zt|) z_X5a*Fk>u>N-5XbbZ?SS(D6|X{3>f?z*QY1f~zs}6KgdLf3)*+A<>wdAN7y&rT$~+ z_@`bfZcGMA4E)uwbtjTMOxCz`AN$2BY*R)6s{D=vkS z9Xn=iuYb*?5ou`Rvg4Np>!_B7z6C?{^iB#9uj+yf;>UxSJN?jfRx(uax=&%B~KeeOle)K zB|@W9(-;51c~)#6$5`oTy{f_T#b?5nollh>560CWc2W%2umOb3ufVv@usPZwe~7 z8-O%#_-vAQPlU_YpFl<^#DvpQE?tJ2JiVN$aNU$VjFoNpe1Kw!H|Y};|Fs>#-U`Y_nqrwfD9$lewhTG4nDT`E88 zR8|S>6VXA`%H`8rfR@!Lc7dYKPe-!Jbw5-o!gCKkaBjw)nIRrwQTc!`@5G-Htfch_ z&1f}q`U;#0<+OVIj-%>*4xpbU?GeTn+~U7qR&0H@&!^@0?B)213Es1!J-1w8*(Pu- zQZ(~H{sPhKg@!;l{#cOaK4uacPF zC^N6qE=wMQSORRS?vSvMJaFgoA;E{S;~pP;jMqsr=*fgR`&GGkmV2<2JE>_k;-a)% z;b!!(p?b4y4;D{PghVLld=snPkihp1Z)UA&eU2)mcdcrrhZSX794$v4X}ugr$4Egu zrwZ!O@rhxer_yw%*KDJY=jZdf&M}cbcGp<-0Y2T|ON18Xv2MR3RS}y#N%Ei)vXbc4 z+me2trhezfNGpvp<;l^7-~4ed$N_*zg8M`ru84%#-nu9I68P*_QM{ePWuIWk57qEL ztA|RJEw0$VTaVUGXMVepQsbfGK>xfyQhD0TjzbMN(7#Ulk*r&IAU4H6sTAzfQqe%q zD!hDMO<42s3%lnHg9R$pWjV{UH5`y$&Dqn&=A6V<(E*%Jw&Uw>4>p`5?R$#d*H+y8 zs%vp62CG(?n^*U*RL0P6kqN)g6&yQto+)^WVv{xwvx3~Q52_-DIuRG}0|SIaU9?yeKjV(EM zIO1JDUht2Urw&7M;@FGd%V}g^HD-_K@%DK6t0lKd`pU=^0VN54t*V~l>Qxr&t1}?( zH{*XcFaKiV0I{VS<)LZIV`aUx`-}TI_M1Jg<9==d8*Fd_h@e4vexnb?yaQl!EQnBS zY7tti1Cfo?HdT9V>;(}GD9=ggV%+EWR4u2*Cg; z-uF?(>~TDPtOdpDlti0O+EL4v{$Uw6TM#E3_e;r29L_UCNfSQnkX4LvD0&<#aLs2~ zFTQ`&+^<%8b9?E~9HIOmQ*^3CM{Z&{tN)0{xQs(Ppqv-YA8OKINl?ksLBe*FXCG(c zlo7^HUkSw(VS!`&1Tha`0e}cW!?GBi#hISVKI>$T64Jcm>?h91WsC^}Bvo#2={bxq%UY5IFl4ce9?M!L`Q%?stXQcz_= z*6xK0mnn@w#F0JjPdgCXk>${%%VR3K`)A80CvMq#-W<_?o#IDU#HYQZ@_Avuw?oe% zmB+%{N<<%;j_5;!jz|8orGv8siRZ#8M4iYCBu+{Mk@agiHm9-l_sPG7c-X8Rv-AIJ z&G}E;V8Q6W?Bn%Qk`Jdh60&yxa0)-K-547mKWh3MUOz$co90n7^!la01iX*F!GYOE z+$`@e{XKT5)IVNwK;6LHeD=?>`eqO`)62l{&vyEs?yUYdEbdE0ce(SgA$Ex*oH!Eh z#(?X$|C(`^^+j!oL-=#rC=*c*nmJk0(0>Js(}e!^CP*QN7|a~L!}9hYfjY==fZ^}Z z6xfD|$Cxsh^7}tRp+brM&Hs1F=>Hi8afAEMZ2Z-}|F#SV|52*{DAj*^+Km4w)qj-g zKT7q#PAT($V{Irb=wrt_;;)7cJwI+*-1-nxP<`#D1hP1HGN54T%Rwlm{Kc0XcZbSj z4x+7gnRK5`_p4zuww2Ya7`rjLwi006v^+5g23(Y_)>NgI`@Na`x)l+wmYv*?+|c$G7|d8XD8 zH4a<;Dq_I%sMY=)xmz2U`!rNk|LI>3#N+ziM@FstC$g?)*oS+?<5Ihp3yG!Xg_Oi( z30w(Gr5!S--XP~W>`r6BZia*fKEQFx3GHOoY6*HP=R_Fo@G9*MDe3V#k0cwC@hipK zfBQ|-T74+WvEc5SY3|iITt#|{uzG9J)ToD7o2l^x9?cIDbnz>YU{W~GM1FzeysGPqv1+y}vI(*z{ezce(-XaJ(^Uj6xGR4_^^gjIHr zaBHy?d!Z-i?TCG+Swi1c@SOLLL2E!vX@N^DOtTv28Dtc3nN0EGQLeBeSm25e;^LFf z_xJT440^el*SbtCbBMaGVP>@D&vD6vS*^Hy1SRaET1V$>jW^j%lxak4vjqY>*&3$= zXbKG)TAwW(r^{Kw&`J~)r&|Rd(708S^G_#09XT=lNVYs-M5C16;;Yv}%>k40fRc8z z>y+zSn0!nlKDjSx&Ij``sHC5#x%UoiW?t%G3qE(WOo(3J+yS%McznTQm z^%a5Rwm@q$*$Zo*mOTNbdw;dUgpB-CiM5#ryn9SE@j-DCU_8tMaz_8K10zZ6!dm$G-;3 z1Gw<`N;2VT4DXJm%-N(YKN#QH^7dk*bZr(Ihacq^2RH^K!68Ov=Yy-sqTB6WEmAv0 zZLwz<{?^uwhkMNNn2yH85dq@$!wLy8NPXyH$AJlS$#x2R*#5mPJR#Do^OXVzibN#Q`VfZ6+RZkZTo7Ps7FRGSkH23qcYvMTReR+8@B{+?k8Rhz+axlISQ?ZtW zo_Xv!92JjE2-uH`POEkJzF4^2i+E3=u`1fFxK z48JfLwRzPrvAFD$&Ne+~8DEm@?}V9|3tZ?~#l7Qkcp=1YHoUIlc7C#oO4(nyTi20z zF@mW8#iG&0w@z_G?PQKi9D>hx{nqPTFHhOGuaj#5O^WUT{4Td3Udb&#a)JG&JC=gYziSGZr9DkLzp%3$ zVgkBPBHc}!2&fP7N8b2l@FuzJry|xrI?JX;a;lB89FhsF>mEyemVPlp%H#n5AYn(Hej^)hcC>eJlNqBbtovPcke2 z7=;!CtU)CG*03t%xU`~SEw}aQiV2Zcze>9*`zj>6`_=JS6twlUM8m$EHdgRf_F<{K zoC)}c`9Wb;z-lUuVEQ?_i-mQ&Vfj-p)5Yeh0a)G})j)4~+|MYV&LLovo;`A4j}F8H z56ugmTGO}kw@_5{)|C+xHOTyKhk!UP0@udEX#^Ym7j|@5`FNife@iVzkteg@miv2X zxS^X}FloXdS{@Rx^10vEaed($p%plIU)*`Np?W-$mQFi{YuM}Rqqx60(*7%J2n8`e z%wO;Lq3-8~21zv0qc>!G_{Z_SO!|qBm~qW>mx}3Mk$c5yivMxF|DUC^BTpz1cb7hk z0h?Vp0c*A{m0#BIc|G^MT%*Z&*W~mlNP6CF`hN2-U7JFBWT_Lu{K~5PW|)5DbYu}MjH+`W!J6PlzDtPd(;VUSoWP?E2Ad|70N{qQ4y zWaLI@;G0o)169>W^#PGb>H6UHYoK=;NTZ1UDpCL+{i z&DK-gc!E6`dltv1hE2DwbzfTDDtuIR8v*h%K2Hf2{UD{Q9v*=IO38JM8sF-+*X9J0 z{Jo-Ue%F7A)G))=)!IbNvEx0|IXD)` zbv*NRy-l^@XUhRsVHRDaNcz5LHp7>qXSIBOrDmJ0gwK|p$GJGBwRPY;<5zv)Fc56W zuig6E@-b^bFl0?@61MO{ZL%su0J4X>5jw~S58nXj<;v2$1mrceCP%uCO;q1|U>}Yx za7v>sqzxbK@}ezocZ@MM4#OnH%6Jdz&i#Dj<&hd^=oW|!93>RA7KES75W{rG&T?P_ z1(b!ZBCmWBeho9*v*lO@l(^j!dv+L8{rc2FEnWqdnTs;DRd8QIs*2~Y_Z0Q-P(&%# zK#mlP=bT|q^t4}swHt9a-l^8PXV(rmR*1g8Z|M?s%PRwB!J#(1Q~RA0Yi5j;Yr@8s zZ=)guiJ(}s(VvBT*#Y&6lG7keNM*|N_m1aoUt_kW`9mL^XJwLJwq}3~b_AZ$pD|na zjEld^<)D*tvnJSc)d26b6zW9NEnOfuEo=YQ3UrZn=<(Szui=|Q`J7DFPjH#AO%aIu z*wy;6;9Ecp-|&5r=Ee6_uL5C9Z`%1RcG}UK$oZ7mIco@ie3JcpA;B&KDfl z;Pp;Fo4$J%x@*q$6+?lEN)xeY^KI~B|AX2oCXJF#;B@yD=c}-)H@RLr#_sie4X^Ou zzVVW{0)3p;7%q2vbLzuo|Bv?0Gpea>Tf>T?paSv%B2t1My$jNN5s)gJ~iE%H$3=yqJ%GNI|WJXdaEjS!-58q-M{IA{Pc>mq`bI9zE7w#)#VRE-(u^B7l zs0FSi+H-Q&7}}qBv*-AFz9JkIV}oj|$xdZ);In~c#k(PQk3vV4ajQ}L)E!pAv%i{| z#&>% zKkh~&gk_skWz8hSsC$Ikq>3g=76id4%h8HXx+~Pivp2OxoON@cego$9XBb9p&-ZU- zJFb5F1%~Us{QFQh$mfgRs%4!s?7pBYFFSTXe_mm(>g!ytvwb*dahh z6-u|y9eIzY!@&W_oYT8+!?(0AqDvX}htE*5WYCqnowYB!?!4~#Z1f|QPr*+U?-t{r z{Nmv+8;ACNxb`>aS4zHXpG$FEmJPexDLV4ZC@!k+Z=h-mKYJmsj51J{wqGc6R@39$ zFQse&rM0R+kXEge$YI?I_DnmtlB=xI=aebnovNf(pjx_*Yw9p?fhoqKL<p#(2OE08zfG zqcM^YAp~)n4h}AcbjRZ0)R$z$EBChNyodU^S*t|CCTep9A-76<>aim?Ydul%NL{{d#3ZVrKdFty46``GUEOHCR;y=tr@qjB zPutc~N{q=S@?9k{)G)lqw8q9Z1q)s*S6DQGUmvUWCFl~(KaB9WqccjA9`r}BF4@S$ zy=j}QA5^}*3F}}+lptc_u6sjY(y3NWc;55c#Z84@u#n;ThL-ffkGLq6`51sp9==~y z#IMbtZkvc0UGA(PQio1*#9aY2UsU7{mfsC_L0v@WmEXo2ZxQ>B7f7E5m6b-%&hcdY1EnS+HFv}}fbZqDuC-3~!YXnAvwXc=UbI38W&?JhTH zc_*ipb!+7VJ_Cx49*7E<`P{6K~iURhbdMq_gPuRXn<@qQY~wW--??68Zw zy}=}JadW#%Eg`fTb~L&cHJBJ~3s-5~l5g^gubpgmO;@T@A{NxJ;$(u{0pG6_(GRqY z6B`ySRg=aApi|l25BDPKJsd8Do-R{mSR_SUk0fy4u>)hRAYe*`=sjh<3ahE~>7@wop5RF2nWA?9A?fW;a8?T!F! zQz!i8-)VxJRb}h4QUoArA#rgAN|AF2pd?R${g1+k^Bn}4%^T_fS+W6zpO`Zgl=Mae z>{nI%%+pShD_)^VK#8jJAyd>bpl%xiC91XMAnOyEg)^XsP%1`Hkt<`W1wlZ!6x6L{ z$b(F(Q5;-A-Amj~v)~wIn@k>=;uMIv=EuH~+gE{MQWpd%PDB>DKy3*BeXZtX_uL7z zSwZzJ==qN`Bx^v+`CflS3HEpxB`shW=lTTI6Oly;aBe}n3Khq$wm-#zVK|1&&L)tH zQePA(|BdUq{^2_D|BLGo_Cd0dHrm@40$O5j`jX`#)ArmdAEANq-4H$l3PDUs{TXYwyuUsph5j0*S-X$X?h=ASw}&;P>Q)XRBi6)t=fu=SI_L)r||>a%Rj`p;g}B zVM@S%|+UWVb9&kglS7TC-t% z`{>HNQU~>0+0=>VcV1r-s7W&mn}z?I>0Z1eGab#{XfLZxbL2=QNv$DiO?yYC|7&~i zv~GoFmEB7(Q#)~cY{uq$=5ImxrzGaehfhU%76zHC^8J41Y{0T`Oj2VvPv6&s5utV8 zw8E7T*PZ^h_JtK&fvum(KHj$16cUHMxYi_@gEBZ831G3RDt>GM(!MItqj1erRj%lR zlXNHsI;bug_Pa}C{t^~CgiIQDDcG%LLKT-SN&FaQ3wJx`)du>OQAoW)%r5Fl|Ikt+ zFk?AZ6RG#T6YHt0<6G{TQ%k?xI>**cE3ZAj__^T(5696F=_9}JhbiA~-DuD%q4Dn% zEqm?y*c^!1Ad%3beNUmCuRNU}sXX<-Ns{w(MRfN!z)5aRIci1Y$r0~g>ac?k0P6m6 z1#lKL{Ah*z*51XA78f}oKOsMW{Ax;c4eU@!`z~XI(#(k2n%$XZCV#h?EN}cT$6RS6 z!{7uJ?}HoO6d|44nhl-$Ul6PJUaTSl+vX_FAOp98)rH+(J0e$SfDF_ul}{O>`z=7);%FwXJhKXDFN(?fXAq z7!d=rm7o^%*cQe5T&i?B&0wZG3)U?6_ov7h30LR6{+s(yz#Il z!5fNx9YjLmsQ3`|)bk|XR@ecJ^u z-CsJTUgLR$dA9n_w&{yoT}T%H6^yMOK{xy}y#}z%r=T&DYndp`WsmU4NW$R9r_Vbw z@O#fBD<@tRX4nzX`V&Nc43OOwFj_ZlLX_IgR7Z_u5HN}RqY8UgDL!TS4mr^lDQinj zP=mFh*6{fyJ`8|cm-$3FwknA!9A#C~e!61T^Ey)hL3694pM*awP&@I()El~naZn5Nd}>l7mH|Z_sw3ec%r}dv_&qZL##;r zbTJs(%QC0qrlg>ZH02C++@IKpcv>OtF{aGk8w&>)EGFqb#CAU2CJF}j-rI^-GL!`N zC+7pk-bTc{0>IHD^Ye9AJr-Fv_4wbTkF0x7?HjOgnG3joT{|+edHUUxRBY>l*Sp^N zjxR0?e*-l%NKHC;>4*jv(Ynk0!DXvs?+jQ2(r)HwByk*c#{>hOxAV zrXBFQwupN<&XP%^+*onIhHqMg%;@`3MZ8GF@-(2QGRYRKA8x~viA&6#wz zT}Ro>PJ`A2yrGiJpzU%IKLa3&jWie8|ENGSQxYI3CNY=OZiorM3^zgjDc=+qu^*Z6 z35|3kM&qAZoe85$k2GUQ)yH zY&8+4wD6#*tTS}7h5pPwxx00AF>O39nU1wKs~Q~qzZg00{|se6AMD<3Vg`wu%Zj*d zC8_~&^xRnG3sH2lyR&c)G@MNazD;4Hg6hSfy=yYh+&9_ALcSXhwSCvfQgTQ#T71O_ zj;~aj-A5~$LHdg7KkdpTGR5CAoJusQ+-Bga*e)RDFjwzLC&@mTVUO?N$gj*w z#Wv?r3CUy`Pg&Sy^Y{41E;K35%)qRRj80AL8Q6zd?YV_ThIpnzprbHvClQGJY_Llg zy%}a~WXB-{i3jspbYj?tBq2c=ON5C!g(rI)W{0k2dM&#ZS_-hUutwINMjDSk1vQ2# zK`vPJq}I*|BwUQanI&Jxi@pry9t(Z}vzFuu1`pj^_jX;BuHU^ZfGJr|7k`J)nSi*4 zm8)f`qY(>WaEQW=p$0;wE!fj*^1UCt{+xeaLfC_xnOWu&ySikdluM_e>6sW&l2pITwrP>06`^}m%r7A} zz!*fJM>aT(oA9jNkWnGTR)DIk95Y)cJLMZMGdm%@-Lt#NOxpu(Oh%Lm?Uf;3pPAQR z_0*Jb_=+#vcI#+k*V)X{vQ05-q2yhq&P3<3KESsk;90#+d#03zkBFH9K3?WB*{q`y zGI7w0z_!{~Dl#Dd6QFstt z&01#QRN<9zlnvv9sh&wl@zh6tYg(h_+H86+Uqs!6*)U-& zOgmN!!BY_!VpDj(OBmFBHhAih1MrlK7!}NyZQ=A6H43z;ekmH_xSaTIpS|3btSXU* z=r z$dNhu6onda#CiSj&nRku4vTWO#Q)^f9s``NrcPcg$YlQCzrc^mG&D3wB$6^Y>SXGE z&<9UPGyf2XGnTjzwvl+R7j6^~aMKMNGF1Hc$tiyTWdCkO9r7phH)81Vs@5fmILxx#cwN2-E?*8b|fXJ@%Xde#y;z| zJnp{Wta;SiJdVEV);D5pry!4}yXMG?e;%cAF1*G$v+=xv2)?dJPvnM+gU-*;giy7A z6o?l@zxaM}qrGh~Vh2?oMESm-Yr$UH;~)is-`DQ$8Nd(mqnH^=U$xdVKuk1Vq$1xM zexIo4QL%9@B8C~bJ~kKq$fXxkyEB10I+H(ks2z~81f^I7v%K48c@?T`A#ClV64`*$^A|w_+oaj zq8_&g=^8TP?`EAAkU`4?4hkCiV`YLu)3P6T4=`qYyeQUaWV)i`;oSVIU2IOIW^V3& zf7w>C!HF3nl?$-7?bk|%9N+HCU2q^`eTPj?Uc;j*4aA|>u;uxaSZf59k1ehL{1;V( zVgH1~hf^xT*RqqC{+v(sDTb+#b0zX8fm8^bK~c#2W4!_Jk|SW%n`g;cJo(c&pl2av zu6^)NkXZpi=H^#MmPG)wPVQiUG3%WyL}_k7$mO+`o+v@19sn2lz+U(`3-Cxa4_Ive v{|EnzQ%Y`#xjtZK%zm=;Q$1z=b+oLogl6$#Vh3JcbxKFm@K&X|!{h$}0kQ6( diff --git a/windows/deploy/images/package.png b/windows/deploy/images/package.png index f5e975e3e92e22d17610159988ef2735725b3b84..535773ad9541890c1e5100ac5a241de37e52d6cc 100644 GIT binary patch literal 11050 zcmcI~cT`i`+omFdiipZpM5>A)7XhURNN6G;A|Rkr11c90Y0?RhAaE6x5$ZFL>}B$f0|x|nS6srA9C)X_LAGYs_Eh#ul6gP)J&i1l_Ux&K z3b7yT=lwqT^oC>5o;^pt?jCzjT)6pc&z?Uq=GTqxgu5i^;*ydZoJkLw>&ii ztK9~?Wst3-BO=e6r#(tn#{p`ky*JZYc4=}UiAJtzMaen!9z7>psOQad9xU|dJ45Sh z&#Ri-nu!z6n^P{tq2$b^JW{gcJ{BIP@w%k{?xNOdkv3%W<|LufcjDeu_RnYd9}HIei3u0m3v-*(S^sWKZN>|J*{W<=E_K~Rj^4$Ecc>4p`$un2Q1+{a8|6RL z@Y~~u;cV2YZZFp2RPbqXO9$<^31N7>&-3;e*4;zP)?kVqULyvn{MjN+aT*-Og-u)D=9W9n(KM9jW%WlGoVXH{CZb69R#E2J>jqz!)+o4d4p1r zt)Kg*-kGPtPy(++MNbmq!ClLJ{*WNOD-6ia_6(GN_`nAbEdXvQn%U!qFr2Px(TB@- z2JKrzk@Qq8-(bTq+fz@v($0IeT-4o~jl*wT@fk~bF^b-(CnL`Aq2-*$E*wm+5YyakS zr2l;IbiQ?Cq_aI_^2THUR!VUt9EPhglLi$bnG3o2D9U0+RTQyvVkb>bQ@p4J@)e^X zGv^!Wv{ARJd0OibbCYr2{B(z`>a^t#+>hg9P~BzieNjTLv>r^As`=pc+`3GZX%D7B z5V_2Jl3x*SJ{W$ByvbWwgG1wmQ;ak@FWf&%NdRP?cC}mf|8Cv=zc#jfoHE1ywNh$< zW;!sEaeC<;`{sMy9rfMP22~>ltGOD<_Wj_9`o)6QQZ31?@`z+P-Xu&m2T`j-MF-P%;v*q%`Pgo#Co7cK zqHwp?`Bl=LMjv*_A@1Qsb*M+t8D;8?w4yHcGe(dBIxJIvhJhR(W`ki)`B7uFWzSnd zJDV)C!Oz-s2h$u+J>QYetGtN{ymccbdKgt=kAXal3>jU>2hx;I;wm%IK2;i*q;JqW z=XX>q&Y7plAdbsV^D;C2U0tJp3+86`eT&MX=3PYIiU^P;Z2 z4M{krI&axNN?qv7)q0}6+%#V*;g70zb-GI(t(rOCmue>MSmDxKV^xiZLe>i@ya2u* z^4&$6H(X@IrlMI4G3GTfOj1&b$G4zB81*l!DtY=91EYQxoWx zxX}X`>ANg7;qh20`eKP>F|jAB#N*w^sJ3#M_dYhBhl!Ujm>{bM?KUqe>|7yUPGDz? zAQU52C~5QQ?)jaCCdT6o1YYorkoTouis;x)wP51bCTjOKO5d-@HR-X+t2 z6+*4x#hbhgIeb3LC5@I;lla{5Itb0|^S`$eIkP=@6$f4pvSUv0wP6joYc^W)ZKs1d zsNHuBTIl`Ab~P1voB(hX6bM+h6IZoL`~|>F#A(A4y#7}6vDID@&wcVeiz3Mi%|9} zpW33XJHB4|hS?FuRrmpdTu-0!bd~-Ulsd|i(In{%95|(Pulz>aZW`BEp_Elw!5^&6 zwV(6iZusw9>Eo40AnV)55?GEtW-ZD84t(pIf-SN~6$9A6KlW&a$@M+ZXVM4u@bXs} zBeM~8et+}vz2t>lf2%L&X`WlGQH*QJ*a@wZo_PVLA)RO9?=((@I)^MblakAg^?j;* z2JFPrH{U0yl#&j6erI@PEO_*6zC!-2g;ytwYaLBL$9G@)nb8z#$=BavUQ#{z1jxp0 z2zSg(GBuNUfv!W!d*iot!ydU<(=({{0wHVt6wz;vz4D&Ds2g&dMK{=??@kGrY=I4t zzF~XnYUfUsN6?_iluO8V1EtOza48$jK+CT@ zY5WcLmf-jvbtJhhigJpfxpg zxR9KEY`qh{r&GZQU^ews)KI6#edO=lOUdW9#k4>=v8vb?^VrYf)3t`cr$?URZ8r8C zb_bARazIcM{H1AEN zKYl)6T2}ewVo=?r4kX|(`OJZ^$pAB!a6vX$m9&jaBTGI z%Q%}e7-@+lHJ1o-FI^F7(od^ox?C60-@&LLt!#`TU$}fBge-G6*3hHY|qOYA4tF zD8BFqQ=Q4`)5)gOltdDizr*OeZINVpmfx?2rL^SPHu{`AYPcU=_dp_D$@R44Jq%-9 zWkMuf)Ag*x^@+>pUfL?m3ds8Lr;M5m^%YD_N&34UCm@QW5)6<;(7c}0RN^`5wr@It zqrk9Y>s22ZhgjS%PfQ3aHp2ZAIri&L(+-0|W0v6!{T9J+B(s{5l;vl>Z=Shx)BZIo zIovA@kiG5~07Om!vMw*OTGSUUr@*UGB@#~eT|RqN3gvGfigS zJ7&h=_75?8iD{?(NgBV&AK?5OtKi+A5FJl5_u^LUSb zMH_Pc?6)MWgMWnR4MhVFNoWJ(Ep9_m5OeP6_V7x)x4$quG2@|VekRIq3?ivc zdCBs6@-qm39INA(H&+%hSwx(0f4Lm#2hg5&V-02vYGALQ zo}hJT$0Yaxr)T9;>cN&5k&DfS(BZo>K+Z1Wwwqpazrdf2iZ8g{le$8w6&`s2{63hd zvRu7-0yQsHk{Y<1ae1ZkBlhg;>E`q!m?Lc1PdF6XFfFfsEdg zzSG0Xn82w9%8L~Pm_WxquPr#q!E6`F9y~}3ZanAu*%?fVhO*OuY&B{6+;d&7_xSJs zlMj+BN#dNGZE5Qrpid`8O>D=@a`t?Shu{)XJ={F4!>b$CCFn$9hgGw!L)d0l)*1kG z<}oR>J8qPKpgXUp$@THuN&g1%*)?J-a^{2U?*Ez~|68CwRKBFgXp%F}>1gnqa)L4^ zc$7fzvM)Auhj=$D}HZ2PP>?!3y!>!W}))&hyi<*cQ-j<_nUES$o7(be(<0aWI7c#!&IC7MNvu&Uk7O!e$$#mB~tJMjkW zpOoP$NJxYZG$sJav_P$jsd5AM8KJBD-1Zsa^w|5_6saA|Ne@>oh>g+ulGA3W$~ z7oq?55rlv*`sm{0SuXM31r0ABy_YOM8CA_u17nu#MnP{K z@A%AtZK6t8vw{W=QlVoH6r)ERk-=Ue{W_$g&vs|;+f+*UHNCsKIT>Wf%22XLfFDAf z3*Mu62>9{ol3V3wdcdb&_LDpAJ1ml71f{b(Fssj1i`f0z^NDp*-8KRbVu!mF;CXz1 z63^=q74#_@v( z5s-MwA)2Rb3|neV-6@ewVjLJN5BuR&QoQs@Bt4(eEn(s(uPBCv)%nCN*+9&58XBxq z-JyC{gnt3$8f(eZCYqL6`s?pReBtVz{TuNz5N*ph8()P~Z_VorW;m3Hea5FG_^M5Y zi~<>x`4=Q6E>=%nFslrUu?G20HdVuFgC<&Ke>5E-CaDoFh|pCqY+6LW6(>{k73VLv z97-13;UxBKO2bFjF%@P8s2#l?3)Cx-BGcwaTgD&vine9O&41=x>JCeefzlMQjZ4Oe8YqyfT$=c1v^W)U(-vKMw!6 z4gs+`3l(Si`79i-#NM<6^2a{J5SuTEQR`l@y8Lgm&iK0Sv&Gfy;CdGjJ1~Tm?l5?$q3TjLTytl$+Ml}=@u=39n{7TZ@l_;SSuCC$Xio_ zGv=D+lgqHCxdzb?y(^N)_BP(cWFf!Omr2K=0yoz>-}Uh*nk`V+ok=4y#wwEmw9fT$ zUGqVbEO%*!TOnOm8qFm|Tfr6bo?c@~{sCMAyddxISzn9AmTm zwE#~dNC&c(;8uj2YNvbi{W0-C;xM4Go%hKz^}o6TOt&M;oYU7u+1b>;y( z+(*zxA0#kp%o^q!2NtTv#YvxIb7pqH5i9RTDbnhnMVyn@MnHBz>}_5VMW^e7{9|bv zt&@u8_&#YNn)VKxZpP6*BDRqvp>=Nsve|+UHdy<5LJY`vpkl{8SqE{IF=U6g{CfT8 zLQL*4KmErhHNpb1!`I*UdXH8v>E5d2$*QC7x)higBm7Kq)-ZPqx}&|Mpt@wqPkGv( zr!$;|VH0`jrc1@F@?$dn%*vSp&D}+;%eeMT>`3#wIuBJZr?QqM1t9a5^cp*#gm`>& z-)l$xo%2$-#$1@vo6L|1FNiy5eXq?z;fV`n}c`WUd9oOw7jGAUVG93 zO5mC8X?xWrXk8TJ+F95uk=GGL=X-;gh$@*Q z&dK(uxfA3!^b$+F{ja(Fzo*E7o^D&OW%R6lXUejQ^n9TLpw(C@;1cSk*{oNjc&WMF zrIPJ*Sv4D;)_EJcbp4Yb3mP=%@kIpu%a~ldo(heUTk?J-A>mr?z5U<>pUXs&u>^W& zYAEBDA;GkWtaTu#VW3WRQu64pgG0Vk!$UTru~%06G!& z0vEtGbXov5K<~|#F;N^SGu$(;w+}Yjah2bHx>OgXmNz5|eY;}9QFDBabv^n%JGd8Zwrv|3kJF5BfVx3j=Sh56K-ORBOr2h&S; zV@b8CUcYLg`6^Cp0=8z`iy+nYQupW7<;ASz(({_hIzE7vJ`(XqCY_zL@&S8=r%V+2 z|0&ipJ{pyO0~>|NUFVzm!1y4#@v)-UlE%4zp{M^!&TW4mr9s;&n@5P;WGQTd2JuRE zmW;)M*089@14nKm1VDTl@}bHh9#9z7>wUFRd*wzJ+}M)niBbeQ18)xgCBE^NeUVEB z)@hhLe(A)xzz1;mPJH z`__8JT^*4U0KSwWg>!N2Ki+5bsY77y-n6wENgOG68qT}EFOJRsTC6c=bx>+Xw&1SL zBJNA6l)<|mdFPj;*f*v~R!bgjLHctFUc^LNF z|7VH!Uqi>CbbjUurF(aH;O(@gOHiLCW3bDJ>*G0v4B-KdID|xpi5M`QhWd@l)N#8K zJ>*tcdTLFw7&hO%nC#BmFA)s{XD4EoT-f=zZx}{bdDg2dcRlhy(EX5aYckp5o_RLD zGiW_wUYe}1(q|IPE55(6x~k~w%~QGl;~wLl@O&Cz_Srs)&S2$%!|Im}d;fT|)+nX@ zh?Ey(#e;#SJ0qGEOR38d++QlF)vpwFIP;dCS=ysyW#@(>>$ny~i`UvM*hxL$`2mi} zCgi?8{o%`d*1_!=?|X_rW~7ruCm!Dv12$bwpZYS8(dSvz)zZ+Ta=+n(aS?9wm`(Dj zhdV!zA8CPER3c4HEuE%f_9BpT6nlo^RUSnrCStiHng#)`)RQ3tmj^}Al!>4WVyB4? zo!woN(e0iB7xL}da%p<{;56xthvg0XWfANJRnZ=Evu1Z)%aEfETB_&fqJ%C>89RFR zD&Z_?NpuCSz*%^8x9Ego&xwaR#_8u9Y+w>LGB%q`nnOvi5K+I8vy{4-cHUx8n@j`u zK=&FC3BCtZ=OgH^Q8cyos~|@QSjmI@G1s@DDZZvT2#+&^-)@KapSM(nV2PZ__vT}?rAIPUN2Rwy>7+K2QefGBw>O2P4sqqanO6k*rT zDMB!CyBaI)Y`ydikom4x3ogGBC6Tykm8Sty!ZWNE?!a8$zEC4fn4qO6x;EqMh-kw0 zKwVXJA409r7vw5~^9}5>2$sCohwfnXdbJ zXzQt&wRbgd7Ghe)QO`TWCx2!}DA*$>sH10%SFV3Z)}DJA@kFrOoH?f>*$vyX{6r>v zHYVbUJrf;E9)lvl%J{~&TK=v)^hoS>mYIBR){33->-B`QTGPMf``4{o_%dzH2orUf z2lRzLMQ}MTMJC$mW?e_NTf>c6iNx5SbS|mVr;pysKKTSmKXA%weXY0jdv?iWo>YvUhFsTEeGvxRAS)fzx81 zl8s8gqthG9A5L4dQ3ODLqcO`Uz{)PZ_#6}vm~}Fcsg+xZ9@}~R#qPyc>s!xm%o5$qRJIJ>F zLWy`I%siGGpmOZO0UwvTT;yxPFGyl&liw{(WVL@YF>^f(8zQ=R4&Mv!bl2=n>Rq1u zaVtL%z|<8l`%?Vsva&16`&y5j$~Bz@V#P_W?7a%7j2CQiYYCN4F5weScbLH7mkDMV z-PI{xkbB(swQEqJv(Ee??A69lAGwW{K$O)fZ;)rdFA&A8(dD8|N-~7G<6`@hyTbju zfAkkZx@)lL#{Ip9vp@Mv6ZRL8-lKF~X=z!DfyRSF?tipiiwVk(@HUnuocdH1WqLmm zd=ZDKInt?Xusqu&5(nS!#4=b(s%!H*&qF0u;MH|OZRuf zw^~1`R0MvRf7!$0ms&*n)`UG|5Vf|Ei-Et&K%KECbT#!rInNutLGjjvUq#gX8!Z6)o(!BRUpp13LH#I2?moL2Yw48rE=-o%+@jyu z)d=^mx+ONzNvBMiK%L-ZluIYc27$`6+=k;4)IKd4GPBKGEg$Birn^}W99^w4i9O>G zv_8mGoW}Y2hVkC2qdO}^{8~ADbT5eDb+pGEK5F1aM|Pz)^eVu`80lGASCiN|$tUo{ z>dsMIYBc)dOei6r)E*AGa#=&}Knx#)TkG{&Iy5_CUIU&$zi}mX+%^oS0B*Op0>F z2b`~picHMf?!3wbeWPXj-82BMpAI$Fdn2=5^_1`S1JLuV4`U67h=v4X(UCsuqv;AZ z&iWo#znO~~JBBu7xCN)+<_SHG19dw@l!L+xL?H1Y$Z-S!e(UL|a{C3qvfORiy~sT> zj?i=Y6_L=!^2jH8o$3@U>LKwUgu^}Q?LgO|yZV3EEC#qZ7!0aSA$nT?&>rNUS!S(j zbzRWQ)U0ULfN~mZ(cbe+_eloKozq#SjERc0k=M5w@y@N`I;i3VImvDXM`%}#%CVlE z)U-1*R?Rq0a^wV;ND?-7ZL}nM8S5X`8S(wo4kFpjo@nSop?p%!oW~zVyI<%rZDtLN zv4(}aiSHDBb*ccBmL3mWVe$qWojBdWOcFl$vQG-U-Jn%!M8kO0c13RfRuw7nWKU#t z`o569B`-j9p>qfdXHjw!1rT$a&pY_R85tB0hV-`V12~<+Z68eANUU&f9C5#^8MZtb zQ9e}%mf!hHYzDZ*2P+}rz?ynTX9Yn}lfhn(6u7|S3_8t1|LI!3c}16`a!-`ooY@5p zy>DwjO#`h_dMaL&F(A(pari-4tDO1G|IJJEUno-YTuQ%n)vcl?-WD>onoR!GcBBl; zQ(33~7pl?lpBS7Vd5`*X?(V97u+tLcU1`&LiNf7pvG&@^TYhBg$RiWIvIa*+U4ks@ zpZ@$x*~Lbr8)+JxQv~eKUCbK7+ugRuN=Nz}+T!WaW&+GJ114Y&W7J+DKiD>;Td}0* z+05U|i>Gq@_}};FzS!m17C+X)W!*~L!k9cHeusy5FZ$}bDcEPeBd@jbBuUd^udnV0 zGOP6xGyIzY-Ps2H7x149(u#hbBE$zT)sG@h0(Q&bAFDn0Ep8)MzX~ZqJYT*;9h23Y z;_wikw0Y1ph%{`G+kWM&9&bMYsnO?cJnqNK%Bdl{>fRr9ZM%XiPbCZZO9v`LlQ=$D zljP8UCHJCZjhwP`?IX(^X(hJ}a0<(@C3NXVPEfy2$=W0Hw4r`kgQ8qNq+{js}%JA$Dgl#*XkC@u{@#eOF;7`>6r|7q!wpvwskBAf0(NvDT_C z`>p(p;ah25!Pb!8tLbJiQ}Q`!4>eF)0)$#2X5!BPsj# z?sO|vm6w!0*)=p>#!A{*FQo_qQg8!iGC=F4Oa9ZSh;k{a$)@IBz(ReO^HL1sivP5W zbrOW%Fd>%~C;bd>rK_CO_$~u?TfnQ1sQZ}nJrK$e&(4$+_B7qk-1QQ8joH0#hY7;p zSnGrCP{V7!^T`{UX>B=FY(W-qaJasr!F!9mlbfIXcvv;Ur{q z_R+`HTKjq1j`qANHh9tDlWYi?)Ge{csj@CT$h|e(4CbTj)XLLJ&EXuMu}|-$Ct^;j zX$h{MzKy8SHCQ?E_y_d(Uf6Uj3VR>GJYu{1p~VS;*JaNdE&v%ZD%)HA09-eD5a)J0 z!E@^YPrg$GOHckfcFIC}s~eDedzxJljQs9(7n{V_b8e5FYqwPRqyAttL|^)Sh?M_G zp&Pnw$Qt%yjrPbeZ3u1zFW& znoU@bL;Y6oqLES*V)u zjDDxvw>NT0zNVaL+8Tgc#idjYlCJ-v>?rU$7XUy+hEPUwr`? zPmneL0TuvRDmpC9RbOtdUoCQyA-5BH2QAqq0+$!DJg5ri`5^ zgkhwRtx?&R`FX$Zd){;2@A>|o=iX=eJonx|p3gn!o^um!!C~yIysQ8KfZgzho*4iD zq@Kk4%=9PLqwpK!i31|dVAlaPL;T-Q5|F!&i4FjOO$8r1Go0isem888004ye=LC{` zD_l>&;akQQ`X?R=g>rIo3JVL1ii%2w49LpL%0~_=DJfmOdi7fDkhZq=^~b|77|b~3 z0~`*w$QZS@wsy!Fb98ic$9(kg@bK~R@hut;E}sYq2?+}ei>aPWNJvO-n99h=$j;8r z$;rt*k=AJp22)sASX5M0TwGjsBAw*&^788H>bkl*EEbEy;oh7`-y9x~Z*On!=;-L` z>LL<}Boe7_{L8?=z~JEE$jHd2PoKue$0sKzKY#u_Gc!Xbljr8<78Vv37Z=yo)@U@E zwA~~L0N`*l)YGvDo?4rj_ngw^A#K9?wg`q?mp$dyyBjVz$cfsVCF07rsGN zsNkb4M-+VPBLTX#Ekn>^uZ{V|oHAL?98sa#`miI^gqp#iHOY707eH{&qxD(#BXF!k zOgrW{U|1P+XvgzYN{prpHS_K7=e|3h>l_8J2`}qlKh3XPt?IFO-Hg4OFVF7U%mc#4 z_l)B++v$Z04|fDRQO}k6kzx~mfIlw&=$chNWWO@vcQf^?<9-IL!zWI9&yLz*cMToq zsh)B`efr7@J!~OuL0n+q$E?KsqBUE)lNeJ5j}~-h2-TX!?nJCQd!v zyZ-gm9V3<(1wLA`0bsy$kfht*3Xf!Y@jU22f}UGJU^e8C7;$d(4TN~>H*0iel)k#8 zA5i5{6q}8bSfbh=>NMJI0axiw-RW=Dn=Tyby?u7xCdWqf=#O@kP}Se5kk()H320_=6XN1tG?1y}zM4~iz!+wgqb>zBs|cl# z?^*S1EFL&(mh90^#6I?_^_^!m|l@IanaKvp%ljn!ONJ4ra- zqA*I!3%phCloa*!MH|qD9m~}|3qC0>_fl)0=iqCW)D!Ai+(v^NkFz`dlwRP!(>#O-fu&RIu-%54NV#9Xk>{ z$6MIFt(lX10n+eW0Ci2(W=GLa< z6KCYkfGD@mggxq!(sAk{3g2*MzCaO~?J{v{rqS}vZj9e=niOHWd1d%PmvG|I`0#Lj z|3@}J)>NatwJ?<=ezaPg4gpl&5_cV~!$}u#hHmt&X34F6W8FF8f-`z)?8+O6s5US< zn5sA}L55XKTA)0JLp;5lEtkaX2xj?jR#`#EDP@DxjrC@zCZTGSRLi-m*8+FOSaRbY zRgO;wKqXYq`Vdwp4?Lwh3cYlD`#zG1SDh~8_F;PvAu7aCqkSx0RL27L5N>s#=RlwvzSZA5AzN)X*y zV}2=!0@hAP0m5weGpcbxsX4t@0W#y5H=LCl8`V53GKie*sYV;SD8j)7ds$QX_MP#( zU;81y<0D=|p*2upIAe`z!HG%bF=d21yzOx4>3^kZuF29Y;-^n}Lg0#$rn3gsFe5ns z1~MUsCRZ&%GXJ~!=kl}v-`4*WcOx6?4X+I|(4yza%S#PF&~X^mm%Q9S&{E%(IP{2d zjQm`ydm&y&n2k6m$IM0-<-{1JPm!x&o;|rbaP9oYpp})4XhTKvC5$H6%hi|K0ogFd z&&*IF1!rK2J4-JQ*l0`?(l680KzjaO!y4d&Elx2zK+gNsmUW>IJ@1IMYoa$)h82<4 z&!t_qVmf=?9fgC_SxEHiIh)+_4Vl-6+e#5Z(y5`xd7+1_1x~6j`WWR@b`~w8YFx}} zkI!e=ral1>Cud%%!e4bjaS{tPl=tt(Gvt|Wo$(y*HbGb13Ed2jfho?4lqpu?Dz+f< znBMjfWnrnUtS;|;V6ZiVaBfTIX+k6S^5~sG0fKF(4wG>kH66spHPp|j`j9J*X$2rz zrES*c^WA?iGWpKU!V3?DCzY$C7BuNKnMi7AkI~iKJcb9QM{%>Y`N|(HnVlG7+Z&79 z^xne?7rqU=Et1m0JBkL9^&axHX+o5{J*gTI3~%KUQ-Y{i|Esm34Vnp?txAqIwQifo z6_$A*6+efR!_8Cj%4^R8VhAw&+A};p& zy6kD6cb6Ws$f`8{(tFu0^OTzuUhJn@VlL`pum1}d*vn^Dv?kXJ`N1BNO-*WP0zS&)#gU@@o^? zowTr=e*Ak?hhXSp7=;=?h&ml#P)vdMW*|Z~jg?}n903k790{bu2$vB?;1v*s1FZ{y z{1g0F`VanBK)?G+oijXahUPwZG%c{ZxhCU%Hq!H45Z{@88c%(?W)R`H&(wZDf$6ta zzELYv^Td{hx8uYFdcw|ugSslC5!zY~)OsL`rrEn64W5pY*dtEiMASHlazJxkMMuKS zjNXpc7=1u`;9_UddT_(>4L*kIJmygV8@Ni2=ae?{2ga|HX$l+npK=0i)B#smujFV* zhK1u#X@AI28c4oI;oNs_yPrk1xSTm>R_QhqfRaJ2ca0imr4?dXZrn^~sDEZ$VT-*T z#QxN(+~MwxkXfuQbcgdnGn^>GR9d6nqXRadxKGwY!k6gTIp?KctAzpnC~6u2=2sd< z8U?@Gf8FEnCb`N4iL-JIkW;Yo&mM!{eMe_xE;834&Gy2y|61=I>oTbjg(OwpH?vSd z*DL)!wq0pP2_l!9EHrn3jZ^neZ3XU%^5ce(u6ZBDb>0ik!){y}-*R2GNsBo*FlCJ; zghK=4+cIK8EV8P}Y08&DXrCfe=|1jlbt@j7G8Zx^cAP=Y3$=HC{-Fvk_G1R8>mQD_ zLUU%rog)hr@h{7ju%%P8OZFnuHMdX>u=qD_y)oWKhc6c@O$cn~Q8zE+LK7?|XdHs3 zA>tNlMhh8K6e6v{PWEV#jO^LR7$#?^9YNX?F)@Q@v8o@27cT8QO#ac6tDUz=u)?ne z#n$p>2^{A5-#W*3n#mpKTFo8aM82r^mBdmaGbV1#Q7lHTL%09&PAJs<^}-c4`VUf* z^%f){r&@=>Lz=3+PFgzV($g8YohO-3gyqJwdL>fh7`sYg`R{c;LhkVju>*uXs|rMH z8KeLdDZlCZ3Ipqu9QEE|uKsfY{JnekhO8%FTRlD9yy`|C`lU1S&|&yjw=nKmX+}wi zCd4)M(6>+jw^5*&2c;qX7!Wq3^jv3h4(RK(Dd|N}LupLeGURvuAb5W+VZo1r%l8Kx z$x*|UXDhWpQ@ct{0+{Nr>}`s+TTPzI*PS&Ty8epKTRn^bTC8D zn-~ASrdG4Ij2Fxdly7g?i=Z>jlr@|?9xvI5Ks0_f8`Zch$f%I3fsAKwCY618bPCl zrRbXoSQ4lU73-mxbgjzB!25+5pSQ&wmM}uk#y2QZhfUNwFl6U#Rc^rTYwI&fX2n}` zh}#}{<0~xv-<5@!8j+6#REN6TJXS*una{0>jDZ4^=rrwk%RI(1gNGiL@|Jni)w;%e z{2CG3Q}VM47sVmz&8MrXP>clv+TEIz+fEMw0%I3rm6U=7xCnXg&;GustwQ0Kk2EgT zZsS%JupIl^CV%5btJ78_X4L#NGo`Hr30QU>Y;Zl};~ZLmr+3V>23otl!6xko0?VHf zQv+V1hx-R?m7}cd8}<**P*YQ86z5RTB3bEAGSR+o7yRdc@M?h&Q`3aGW&9455V`*x zc|=FK%XL|n-uktw`y316LooWe|9=mf$5N6%Uz{_bN9QI}@<0jnkFz7U!8BSKq{Nk5 zKM}-?Xllu)18zRO>B=V$<$y3V#nN{H=h1$DJMAmN{4%nKNAO){&cBND!z{zl?Ir(R zH55FJ0e*TmQTQ-3cB1eCfb;mrBU799XfB_h(dKtPVqEI2+Msho$_KW3c#vGl#;4rW zvAT!K^KBt@T_&9Lk3ah*i>1DA?BG_!$bYPnW)WY%qmiOG%AtkO4_;4Wu$jNG%xd|}W$QK20xe|rU@olN2t_Up?!20#)1rk$fVS!4@3 z91V8M0cQ#%4j1w5@4?4{`d8{o|LXal&E|j%a}6QCGsCX@hlanPzghW*oPVMJ;)(;( cL1Mc9 [!IMPORTANT] > When you build a provisioning package, you may include sensitive information in the project files and in the provisioning package (.ppkg) file. Although you have the option to encrypt the .ppkg file, project files are not encrypted. You should store the project files in a secure location and delete the project files when they are no longer needed. -## Apply package -1. Start with a computer on the first-run setup screen. If the PC has gone past this screen, reset the PC to start over. To reset the PC, go to **Settings** > **Update & security** > **Recovery** > **Reset this PC**. - - ![The first screen to set up a new PC](images/oobe.jpg) - -2. Insert the USB drive. Windows Setup will recognize the drive and ask if you want to set up the device. Select **Set up**. - - ![Set up device?](images/setupmsg.jpg) - -3. The next screen asks you to select a provisioning source. Select **Removable Media** and tap **Next**. - - ![Provision this device](images/prov.jpg) - -4. Select the provisioning package (\*.ppkg) that you want to apply, and tap **Next**. - - ![Choose a package](images/choose-package.png) - -5. Select **Yes, add it**. - - ![Do you trust this package?](images/trust-package.png) - + **Next step**: [How to apply a provisioning package](provisioning-apply-package.md) ## Learn more -- [Build and apply a provisioning package]( https://go.microsoft.com/fwlink/p/?LinkId=629651) - Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) - Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922)   +## Related topics -  +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) diff --git a/windows/deploy/provision-pcs-with-apps-and-certificates.md b/windows/deploy/provision-pcs-with-apps-and-certificates.md index 2a918f8202..6e4614a977 100644 --- a/windows/deploy/provision-pcs-with-apps-and-certificates.md +++ b/windows/deploy/provision-pcs-with-apps-and-certificates.md @@ -4,7 +4,7 @@ description: Create a provisioning package to apply settings to a PC running Win ms.assetid: 66D14E97-E116-4218-8924-E2A326C9367E keywords: ["runtime provisioning", "provisioning package"] ms.prod: W10 -ms.mktglfcycl: manage +ms.mktglfcycl: deploy ms.sitesec: library author: jdeckerMS localizationpriority: high @@ -57,7 +57,7 @@ Use the Windows Imaging and Configuration Designer (ICD) tool included in the Wi 3. Go to **Runtime settings** > **ProvisioningCommands** > **DeviceContext** > **CommandLine** and specify the command line that needs to be executed to install the app. This is a single command line (such as a script, executable, or msi) that triggers a silent install of your CommandFiles. Note that the install must execute silently (without displaying any UI). For MSI installers use, the `msiexec /quiet` option. > [!NOTE] -> If you are installing more than one app, then use CommandLine to invoke the script or batch file that orchestrates installation of the files. For more information, see [Install a Win32 app using a provisioning package](https://msdn.microsoft.com/library/windows/hardware/mt703295%28v=vs.85%29.aspx). +> If you are installing more than one app, then use `CommandLine` to invoke the script or batch file that orchestrates installation of the files. For more information, see [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md). ### Add a universal app to your package @@ -170,66 +170,27 @@ If your build is successful, the name of the provisioning package, output direct -## Apply package - -### During initial setup, from a USB drive - -1. Start with a computer on the first-run setup screen. If the PC has gone past this screen, reset the PC to start over. To reset the PC, go to **Settings** > **Update & security** > **Recovery** > **Reset this PC**. - - ![The first screen to set up a new PC](images/oobe.jpg) - -2. Insert the USB drive. Windows Setup will recognize the drive and ask if you want to set up the device. Select **Set up**. - - ![Set up device?](images/setupmsg.jpg) - -3. The next screen asks you to select a provisioning source. Select **Removable Media** and tap **Next**. - - ![Provision this device](images/prov.jpg) - -4. Select the provisioning package (\*.ppkg) that you want to apply, and tap **Next**. - - ![Choose a package](images/choose-package.png) - -5. Select **Yes, add it**. - - ![Do you trust this package?](images/trust-package.png) - -6. Read and accept the Microsoft Software License Terms. - - ![Sign in](images/license-terms.png) - -7. Select **Use Express settings**. - - ![Get going fast](images/express-settings.png) - -8. If the PC doesn't use a volume license, you'll see the **Who owns this PC?** screen. Select **My work or school owns it** and tap **Next**. - - ![Who owns this PC?](images/who-owns-pc.png) - -9. On the **Choose how you'll connect** screen, select **Join Azure AD** or **Join a domain** and tap **Next**. - - ![Connect to Azure AD](images/connect-aad.png) - -10. Sign in with your domain, Azure AD, or Office 365 account and password. When you see the progress ring, you can remove the USB drive. - - ![Sign in](images/sign-in-prov.png) - - -### After setup, from a USB drive, network folder, or SharePoint site - -On a desktop computer, navigate to **Settings** > **Accounts** > **Work access** > **Add or remove a management package** > **Add a package**, and select the package to install. - -![add a package option](images/package.png) +**Next step**: [How to apply a provisioning package](provisioning-apply-package.md) ## Learn more -- [Build and apply a provisioning package]( https://go.microsoft.com/fwlink/p/?LinkId=629651) - Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) - Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922)   - - +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) diff --git a/windows/deploy/provisioning-apply-package.md b/windows/deploy/provisioning-apply-package.md new file mode 100644 index 0000000000..417c9e9e75 --- /dev/null +++ b/windows/deploy/provisioning-apply-package.md @@ -0,0 +1,119 @@ +--- +title: Apply a provisioning package (Windows 10) +description: Provisioning packages can be applied to a device during the first-run experience (OOBE) and after ("runtime"). +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +author: jdeckerMS +localizationpriority: high +--- + +# Apply a provisioning package + + +**Applies to** + +- Windows 10 +- Windows 10 Mobile + +Provisioning packages can be applied to a device during the first-run experience (out-of-box experience or "OOBE") and after ("runtime"). + +## Desktop editions + +### During initial setup, from a USB drive + +1. Start with a computer on the first-run setup screen. If the PC has gone past this screen, reset the PC to start over. To reset the PC, go to **Settings** > **Update & security** > **Recovery** > **Reset this PC**. + + ![The first screen to set up a new PC](images/oobe.jpg) + +2. Insert the USB drive. Windows Setup will recognize the drive and ask if you want to set up the device. Select **Set up**. + + ![Set up device?](images/setupmsg.jpg) + +3. The next screen asks you to select a provisioning source. Select **Removable Media** and tap **Next**. + + ![Provision this device](images/prov.jpg) + +4. Select the provisioning package (\*.ppkg) that you want to apply, and tap **Next**. + + ![Choose a package](images/choose-package.png) + +5. Select **Yes, add it**. + + ![Do you trust this package?](images/trust-package.png) + +6. Read and accept the Microsoft Software License Terms. + + ![Sign in](images/license-terms.png) + +7. Select **Use Express settings**. + + ![Get going fast](images/express-settings.png) + +8. If the PC doesn't use a volume license, you'll see the **Who owns this PC?** screen. Select **My work or school owns it** and tap **Next**. + + ![Who owns this PC?](images/who-owns-pc.png) + +9. On the **Choose how you'll connect** screen, select **Join Azure AD** or **Join a domain** and tap **Next**. + + ![Connect to Azure AD](images/connect-aad.png) + +10. Sign in with your domain, Azure AD, or Office 365 account and password. When you see the progress ring, you can remove the USB drive. + + ![Sign in](images/sign-in-prov.png) + +### After setup, from a USB drive, network folder, or SharePoint site + +On a desktop computer, navigate to **Settings** > **Accounts** > **Access work or school** > **Add or remove a provisioning package** > **Add a package**, and select the package to install. + +![add a package option](images/package.png) + +## Mobile editions + +### Using removable media + +1. Insert an SD card containing the provisioning package into the device. +2. Navigate to **Settings** > **Accounts** > **Access work or school** > **Add or remove a provisioning package** > **Add a package**, and select the package to install. + + ![add a package option](images/packages-mobile.png) + +3. Click **Add**. + +4. On the device, the **Is this package from a source you trust?** message will appear. Tap **Yes, add it**. + + ![Is this package from a source you trust](images/package-trust.png) + +### Copying the provisioning package to the device + +1. Connect the device to your PC through USB. + +2. On the PC, select the provisioning package that you want to use to provision the device and then drag and drop the file to your device. + +3. On the device, the **Is this package from a source you trust?** message will appear. Tap **Yes, add it**. + + ![Is this package from a source you trust](images/package-trust.png) + + +# + + +## Learn more + +- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) + +- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) + + +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) \ No newline at end of file diff --git a/windows/deploy/provisioning-command-line.md b/windows/deploy/provisioning-command-line.md new file mode 100644 index 0000000000..d5c52aabac --- /dev/null +++ b/windows/deploy/provisioning-command-line.md @@ -0,0 +1,68 @@ +--- +title: Windows ICD command-line interface (Windows 10) +description: +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +author: jdeckerMS +localizationpriority: high +--- + +# Windows ICD command-line interface (reference) + + +**Applies to** + +- Windows 10 +- Windows 10 Mobile + +You can use the Windows Imaging and Configuration Designer (ICD) command-line interface (CLI) to automate the building of provisioning packages and Windows 10 for desktop editions (Home, Pro, Enterprise, and Education) and Windows 10 Mobile or Windows 10 IoT Core (IoT Core) images. + +- IT pros can use the Windows ICD CLI to require less re-tooling of existing processes. You must run the Windows ICD CLI from a command window with administrator privileges. + +- You must use the Windows ICD CLI and edit the customizations.xml sources to create an image and/or provisioning package with multivariant support. You need the customizations.xml file as one of the inputs to the Windows ICD CLI to build a provisioning package. For more information, see [Create a provisioning package with multivariant settings](provisioning-multivariant.md). + + + +## Syntax + +``` +icd.exe /Build-ProvisioningPackage /CustomizationXML: /PackagePath: +[/StoreFile:] [/MSPackageRoot:] [/OEMInputXML:] +[/ProductName:] [/Variables::] [[+|-]Encrypted] [[+|-]Overwrite] [/?] +``` + +## Switches and arguments + +| Switch | Required? | Arguments | +| --- | --- | --- | +| /CustomizationXML | No | Specifies the path to a Windows provisioning XML file that contains the customization assets and settings. For more information, see Windows provisioning answer file. | +| /PackagePath | Yes | Specifies the path and the package name where the built provisioning package will be saved. | +| /StoreFile | No


    See Important note. | For partners using a settings store other than the default store(s) used by Windows ICD, use this parameter to specify the path to one or more comma-separated Windows settings store file. By default, if you don't specify a settings store file, the settings store that's common to all Windows editions will be loaded by Windows ICD.


    **Important** If you use this parameter, you must not use /MSPackageRoot or /OEMInputXML. | +| /Variables | No | Specifies a semicolon separated and macro pair. The format for the argument must be =. | +| Encrypted | No | Denotes whether the provisioning package should be built with encryption. Windows ICD auto-generates the decryption password and includes this information in the output.


    Precede with + for encryption or - for no encryption. The default is no encryption. | +| Overwrite | No | Denotes whether to overwrite an existing provisioning package.


    Precede with + to overwrite an existing package or - if you don't want to overwrite an existing package. The default is false (don't overwrite). | +| /? | No | Lists the switches and their descriptions for the command-line tool or for certain commands. | + + + + +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) +  + + + + + diff --git a/windows/deploy/provisioning-create-package.md b/windows/deploy/provisioning-create-package.md new file mode 100644 index 0000000000..51b609a8ea --- /dev/null +++ b/windows/deploy/provisioning-create-package.md @@ -0,0 +1,148 @@ +--- +title: Create a provisioning package (Windows 10) +description: With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +author: jdeckerMS +localizationpriority: high +--- + +# Create a provisioning package for Windows 10 + + +**Applies to** + +- Windows 10 +- Windows 10 Mobile + +You use Windows Imaging and Configuration Designer (ICD) to create a provisioning package (.ppkg) that contains customization settings. You can apply the provisioning package to a device running Windows 10. + +>[Learn how to install Windows ICD.](provisioning-install-icd.md) + +## Start a new project + +1. Open Windows ICD: + - From either the Start screen or Start menu search, type 'Imaging and Configuration Designer' and click on the Windows ICD shortcut, + + or + + - Navigate to `C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Imaging and Configuration Designer\x86` (on an x64 computer) or `C:\Program Files\Windows Kits\10\Assessment and Deployment Kit\Imaging and Configuration Designer\x86\ICD.exe` (on an x86 computer), and then double-click **ICD.exe**. + +2. Select your desired option on the **Start** page, which offers three options for creating a provisioning package, as shown in the following image: + + ![Simple provisioning or provision school devices or advanced provisioning](images/icd-create-options.png) + + - The **Simple provisioning** and **Provision school devices** options provide wizard-style walkthroughs for creating a provisioning package based on a set of common settings. + - The **Advanced provisioning** option opens a new project with all **Runtime settings** available. + >[!TIP] + >You can start a project in the simple editor and then switch the project to the advanced editor. + > + >![Switch to advanced editor](images/icd-switch.png) + +3. Enter a name for your project, and then click **Next**. + +4. Select the settings you want to configure, based on the type of device, and then click **Next**. The following table describes the options. + + | Windows edition | Settings available for customization | Provisioning package can apply to | + | --- | --- | --- | + | All Windows editions | Common settings | All Windows 10 devices | + | All Windows desktop editions | Common settings and settings specific to desktop devices | All Windows 10 desktop editions (Home, Pro, Enterprise, Pro Education, Enterprise Education) | + | All Windows mobile editions | Common settings and settings specific to mobile devices | All Windows 10 Mobile devices | + | Windows 10 IoT Core | Common settings and settings specific to Windows 10 IoT Core | All Windows 10 IoT Core devices | + | Windows 10 Holographic | Common settings and settings specific to Windows 10 Holographic | [Microsoft HoloLens](https://technet.microsoft.com/itpro/hololens/hololens-provisioning) | + | Common to Windows 10 Team edition | Common settings and settings specific to Windows 10 Team | [Microsoft Surface Hub](https://technet.microsoft.com/itpro/surface-hub/provisioning-packages-for-certificates-surface-hub) | + +5. On the **Import a provisioning package (optional)** page, you can click **Finish** to create your project, or browse to and select an existing provisioning packge to import to your project, and then click **Finish**. + +>[!TIP] +>**Import a provisioning package** can make it easier to create different provisioning packages that all have certain settings in common. For example, you could create a provisioning package that contains the settings for your organization's network, and then import it into other packages you create so you don't have to reconfigure those common settings repeatedly. + +After you click **Finish**, Windows ICD will open the appropriate walkthrough page if you selected **Simple provisioning** or **Provision school devices**, or the **Available customizations** pane if you selected **Advanced provisioning**. The remainder of this topic will explain the **Advanced provisioning scenario**. + +- For instructions on **Simple provisioning**, see [Provision PCs with common settings](provision-pcs-for-initial-deployment.md). +- For instructions on **Provision school devices**, see [Set up student PCs to join domain](https://technet.microsoft.com/edu/windows/set-up-students-pcs-to-join-domain). + + +## Configure settings + +For an advanced provisioning project, Windows ICD opens the **Available customizations** pane. The example in the following image is based on **All Windows desktop editions** settings. + +![What the ICD interface looks like](images/icd-runtime.png) + +The settings in Windows ICD are based on Windows 10 configuration service providers (CSPs). To learn more about CSPs, see [Introduction to configuration service providers (CSPs) for IT pros](https://technet.microsoft.com/itpro/windows/manage/how-it-pros-can-use-configuration-service-providers). + +The process for configuring settings is similar for all settings. The following table shows an example. + + + + + + + +
    ![step one](images/one.png)
    Expand a category.
    ![Expand Certificates category](images/icd-step1.png)
    ![step two](images/two.png)
    Select a setting.
    ![Select ClientCertificates](images/icd-step2.png)
    ![step three](images/three.png)
    Enter a value for the setting. Click **Add** if the button is displayed.
    ![Enter a name for the certificate](images/icd-step3.png)
    ![step four](images/four.png)
    Some settings, such as this example, require additional information. In **Available customizations**, select the value you just created, and additional settings are displayed.
    ![Additional settings for client certificate](images/icd-step4.png)
    ![step five](images/five.png)
    When the setting is configured, it is displayed in the **Selected customizations** pane.
    ![Selected customizations pane](images/icd-step5.png)
    + +For details on each specific setting, see [Windows Provisioning settings reference](https://msdn.microsoft.com/library/windows/hardware/dn965990.aspx). The reference topic for a setting is also displayed in Windows ICD when you select the setting, as shown in the following image. + +![Windows ICD opens the reference topic when you select a setting](images/icd-setting-help.png) + + + ## Build package + +1. After you're done configuring your customizations, click **Export** and select **Provisioning Package**. + + ![Export on top bar](images/icd-export-menu.png) + +2. In the **Describe the provisioning package** window, enter the following information, and then click **Next**: + - **Name** - This field is pre-populated with the project name. You can change this value by entering a different name in the **Name** field. + - **Version (in Major.Minor format** - - Optional. You can change the default package version by specifying a new value in the **Version** field. + - **Owner** - Select **IT Admin**. For more information, see [Precedence for provisioning packages](provisioning-how-it-works.md#precedence-for-provisioning-packages). + - **Rank (between 0-99)** - Optional. You can select a value between 0 and 99, inclusive. The default package rank is 0. + +3. In the **Select security details for the provisioning package** window, you can select to encrypt and/or sign a provisioning package with a selected certificate. Both selections are optional. Click **Next** after you make your selections. + + - **Encrypt package** - If you select this option, an auto-generated password will be shown on the screen. + - **Sign package** - If you select this option, you must select a valid certificate to use for signing the package. You can specify the certificate by clicking **Select** and choosing the certificate you want to use to sign the package. + + >[!NOTE] + >You should only configure provisioning package security when the package is used for device provisioning and the package has contents with sensitive security data such as certificates or credentials that should be prevented from being compromised. When applying an encrypted and/or signed provisioning package, either during OOBE or through the setting UI, the package can be decrypted, and if signed, be trusted without explicit user consent. An IT administrator can set policy on a user device to restrict the removal of required packages from the device, or the provisioning of potentially harmful packages on the device. + > + >If a provisioning package is signed by a trusted provisioner, it can be installed on a device without a prompt for user consent. In order to enable trusted provider certificates, you must set the **TrustedProvisioners** setting prior to installing the trusted provisioning package. This is the only way to install a package without user consent. To provide additional security, you can also set **RequireProvisioningPackageSignature**, which prevents users from installing provisioning packages that are not signed by a trusted provisioner. + +4. In the **Select where to save the provisioning package** window, specify the output location where you want the provisioning package to go once it's built, and then click **Next**. By default, Windows ICD uses the project folder as the output location. + +5. In the **Build the provisioning package** window, click **Build**. The provisioning package doesn't take long to build. The project information is displayed in the build page and the progress bar indicates the build status. + + If you need to cancel the build, click Cancel. This cancels the current build process, closes the wizard, and takes you back to the Customizations Page. + +6. If your build fails, an error message will show up that includes a link to the project folder. You can scan the logs to determine what caused the error. Once you fix the issue, try building the package again. + + If your build is successful, the name of the provisioning package, output directory, and project directory will be shown. + + If you choose, you can build the provisioning package again and pick a different path for the output package. To do this, click **Back** to change the output package name and path, and then click **Next** to start another build. + +7. When you are done, click **Finish** to close the wizard and go back to the Customizations page. + +**Next step**: [How to apply a provisioning package](provisioning-apply-package.md) + +## Learn more + +- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) + +- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) + + + +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) \ No newline at end of file diff --git a/windows/deploy/provisioning-how-it-works.md b/windows/deploy/provisioning-how-it-works.md new file mode 100644 index 0000000000..1f9b72eb6c --- /dev/null +++ b/windows/deploy/provisioning-how-it-works.md @@ -0,0 +1,184 @@ +--- +title: How provisioning works in Windows 10 (Windows 10) +description: A provisioning package (.ppkg) is a container for a collection of configuration settings. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +author: jdeckerMS +localizationpriority: high +--- + +# How provisioning works in Windows 10 + + +**Applies to** + +- Windows 10 +- Windows 10 Mobile + +Provisioning packages in Windows 10 provide IT administrators with a simplified way to apply configuration settings to Windows 10 devices. Windows Imaging and Configuration Designer (Windows ICD) is a tool that makes it easy to create a provisioning package. Windows ICD is contained in the [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit). + +## Provisioning packages + +A provisioning package contains specific configurations/settings and assets that can be provided through a removable media or simply downloaded to the device. + +To enable adding multiple sets of settings or configurations, the configuration data used by the provisioning engine is built out of multiple configuration sources that consist of separate provisioning packages. Each provisioning package contains the provisioning data from a different source. + +A provisioning package (.ppkg) is a container for a collection of configuration settings. The package has the following format: + +- Package metadata – The metadata contains basic information about the package such as package name, description, version, ranking, and so on. + +- XML descriptors – Each descriptor defines a customization asset or configuration setting included in the package. + +- Asset payloads – The payloads of a customization asset or a configuration setting associated with an app or data asset. + +You can use provisioning packages for runtime device provisioning by accessing the package on a removable media attached to the device, through near field communication (NFC), or by downloading from a remote source location. + +## Precedence for provisioning packages + +When multiple provisioning packages are available for device provisioning, the combination of package owner type and package rank level defined in the package manifest is used to resolve setting conflicts. The pre-defined package owner types are listed below in the order of lowest to highest owner type precedence: + +1. Microsoft + +2. Silicon Vender + +3. OEM + +4. System Integrator + +5. Mobile Operator + +6. IT Admin + +The valid value range of package rank level is 0 to 99. + +When setting conflicts are encountered, the final values provisioned on the device are determined by the owner type precedence and the rank level of the packages containing the settings. For example, the value of a setting in a package with owner **System Integrator** and rank level **3** takes precedence over the same setting in a package with owner **OEM** and rank level **4**. This is because the System Integrator owner type has the higher precedence over the OEM owner type. For packages with the same owner type, the package rank level determines the package from which the setting values get provisioned on the device. + +## Windows provisioning XML + +Windows provisioning XML is the framework that allows Microsoft and OEM components to declare end-user configurable settings and the on-device infrastructure for applying the settings with minimal work by the component owner. + +Settings for each component can be declared within that component's package manifest file. These declarations are turned into settings schema that are used by Windows ICD to expose the potential settings to users to create customizations in the image or in provisioning packages. Windows ICD translates the user configuration, which is declared through Windows provisioning answer file(s), into the on-device provisioning format. + +When the provisioning engine selects a configuration, the Windows provisioning XML is contained within the selected provisioning data and is passed through the configuration manager and then to the Windows provisioning CSP. The Windows provisioning CSP then takes and applies the provisioning to the proper location for the actual component to use. + +## Provisioning engine + +The provisioning engine is the core component for managing provisioning and configuration at runtime in a device running Windows 10. + +The provisioning engine provides the following functionality: + +- Provisioning configuration at any time when the device is running including first boot and setup or OOBE. It is also extensible to other points during the run-time of the device. +- Reading and combining settings from multiple sources of configuration that may be added to an image by Microsoft, the OEM, or system integrator, or added by IT/education administrators or users to the device at run-time. Configuration sources may be built into the image or from provisioning packages added to the device. +- Responding to triggers or events and initiating a provisioning stage. +- Authenticating the provisioning packages. +- Selecting a set of configuration based on the stage and a set of keys—such as the SIM, MCC/MNC, IMSI range, and so on—that map to a specific configuration then passing this configuration to the configuration management infrastructure to be applied. +- Working with OOBE and the control panel UI to allow user selection of configuration when a specific match cannot be determined. + +## Configuration manager + +The configuration manager provides the unified way of managing Windows 10 devices. Configuration is mainly done through the Open Mobile Alliance (OMA) Device Management (DM) and Client Provisioning (CP) protocols. The configuration manager handles and parses these protocol requests from different channels and passes them down to Configuration Service Providers (CSPs) to perform the specific management requests and settings. + +The provisioning engine relies on configuration manager for all of the actual processing and application of a chosen configuration. The provisioning engine determines the stage of provisioning and, based on a set of keys, determines the set of configuration to send to the configuration manager. The configuration manager in turn parses and calls into the CSPs for the setting to be applied. + +Underneath the configuration manager are the CSPs. Each section of configuration translates to a particular CSP to handle interpreting into an action on the device. Each CSP translates the instructions in the configuration and calls into the appropriate APIs and components to perform the requested provisioning actions. + +## Policy and resource manager + +The policy, resource, and context manager components manage the enrollment and unenrollment of devices into enterprise environments. The enrollment process into an enterprise is essentially the provisioning of configuration and device management policies that the enterprise wants to enforce on the device. This is usually done through the explicit signing up of the device to an enterprise's device management server over a network connection. This provides the user with the ability to access the enterprise's resources through the device and the enterprise with a means to manage and control access and manage and control the device itself. + +The key differences between enterprise enrollment and the configuration performed by the provisioning engine are: +- Enrollment enforces a limited and controlled set of policies on the device that the user may not have full control over. The provisioning engine exposes a larger set of settings that configure more aspects of the device and are generally user adjustable. +- The policy manager manages policy settings from multiple entities and performs a selection of the setting based on priority of the entities. The provisioning engine applies the settings and does not offer a means of prioritizing settings from different sources. The more specific provisioning is the last one applied and the one that is used. +- Individual policy settings applied from different enrollment entities are stored so they can be removed later during unenrollment. This enables the user to remove enterprise policy and return the device to a state without the enterprise restrictions and any sensitive data. The provisioning engine does not maintain individual provisioning settings or a means to roll back all applied settings. + +In Windows 10, the application of policy and enrollment through provisioning is required to support cases where an enterprise or educational institution does not have a DM server for full device management. The provisioning engine supports provisioning enrollment and policy through its configuration and integrates with the existing policy and resource manager components directly or through the configuration manager. + +## Triggers and stages + +Triggers are events during the lifetime of the system that start a provisioning stage. Some examples of triggers are: boot, OOBE, SIM change, user added, administrator added, user login, device update, and various manual triggers (such as deployment over USB or launched from an email attachment or USB flash drive). + +When a trigger occurs, provisioning is initiated for a particular provisioning stage. The stages are grouped into sets based on the scope of the settings: +- **Static**: First stage run for provisioning to apply configuration settings to the system to set up OOBE or apply device-wide settings that cannot be done when the image is being created. +- **System**: Run during OOBE and configure system-wide settings. +- **UICC**: UICC stages run for each new UICC in a device to handle configuration and branding based on the identity of the UICC or SIM card. This enables the runtime configuration scenarios where an OEM can maintain one image that can be configured for multiple operators. +- **Update**: Runs after an update to apply potential updated settings changes. +- **User**: runs during a user account first run to configure per-user settings. + + + + + + + + + +## Device provisioning during OOBE + +The provisioning engine always applies provisioning packages persisted in the C:\Recovery\Customizations folder on the OS partition. When the provisioning engine applies provisioning packages in the %ProgramData%\Microsoft\Provisioning folder, certain runtime setting applications, such as the setting to install and configure Windows apps, may be extended past the OOBE pass and continually be processed in the background when the device gets to the desktop. Settings for configuring policies and certain crucial system configurations are always be completed before the first point at which they must take effect. + +Device users can apply a provisioning package from a remote source when the device first boots to OOBE. The device provisioning during OOBE is only triggered after the language, locale, time zone, and other settings on the first OOBE UI page are configured. On all Windows devices, device provisioning during OOBE can be triggered by 5 fast taps on the Windows hardware key. When device provisioning is triggered, the provisioning UI is displayed in the OOBE page. The provisioning UI allows users to select a provisioning package acquired from a remote source, such as through NFC or a removable media. + +The following table shows how device provisioning can be initiated when a user first boots to OOBE. + + +| Package delivery | Initiation method | Supported device | +| --- | --- | --- | +| Removable media - USB drive or SD card
    (Packages must be placed at media root) | 5 fast taps on the Windows key to launch the provisioning UI |All Windows devices | +| From an administrator device through machine to machine NFC or NFC tag
    (The administrator device must run an app that can transfer the package over NFC) | 5 fast taps on the Windows key to launch the provisioning UI | Windows 10 Mobile devices and IoT Core devices | + +The provisioning engine always copies the acquired provisioning packages to the %ProgramData%\Microsoft\Provisioning folder before processing them during OOBE. The provisioning engine always applies provisioning packages embedded in the installed Windows image during Windows Setup OOBE pass regardless of whether the package is signed and trusted. When the provisioning engine applies an encrypted provisioning package on an end-user device during OOBE, users must first provide a valid password to decrypt the package. The provisioning engine also checks whether a provisioning package is signed and trusted; if it's not, the user must provide consent before the package is applied to the device. + +When the provisioning engine applies provisioning packages during OOBE, it applies only the runtime settings from the package to the device. Runtime settings can be system-wide configuration settings, including security policy, Windows app install/uninstall, network configuration, bootstrapping MDM enrollment, provisioning of file assets, account and domain configuration, Windows edition upgrade, and more. The provisioning engine also checks for the configuration settings on the device, such as region/locale or SIM card, and applies the multivariant settings with matching condition(s). + +## Device provisioning at runtime + +At device runtime, standalone provisioning packages can be applied by user initiation. Only runtime configuration settings including multivariant settings contained in a provisioning package can be applied at device runtime. + +The following table shows when provisioning at device runtime can be initiated. + +| Package delivery | Initiation method | Supported device | +| --- | --- | --- | +| Removable media - USB drive or SD card
    (Packages must be placed at media root) | **Settings** > **Accounts** > **Access work or school** > **Add or remove a provisioning package** | All Windows devices | +| Downloaded from a network connection and copied to a local folder | Double-click the package file | Windows 10 for desktop editions devices | +| From an administrator device connected to the target device through USB tethering | Drag and drop the package file onto the target device | Windows 10 Mobile devices and IoT Core devices | + +When applying provisioning packages from a removable media attached to the device, the Settings UI allows viewing contents of a package before selecting the package for provisioning. To minimize the risk of the device being spammed by applying provisioning packages from unknown sources, a provisioning package can be signed and encrypted. Partners can also set policies to limit the application of provisioning packages at device runtime. Applying provisioning packages at device runtime requires administrator privilege. If the package is not signed or trusted, a user must provide consent before the package is applied to the device. If the package is encrypted, a valid password is needed to decrypt the package before it can be applied to the device. + +When applying multiple provisioning packages to a device, the provisioning engine resolves settings with conflicting configuration values from different packages by evaluating the package ranking using the combination of package owner type and package rank level defined in the package metadata. A configuration setting applied from a provisioning package with the highest package ranking will be the final value applied to the device. + +After a standalone provisioning package is applied to the device, the package is persisted in the %ProgramData%\Microsoft\Provisioning folder on the device. Provisioning packages can be removed by an administrator by using the **Add or remove a provisioning package** available under **Settings** > **Accounts** > **Access work or school**. However, Windows 10 doesn't provide an uninstall option to revert runtime settings when removing a provisioning package from the device. + + +## Learn more + +- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) + +- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) + + +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) + + + + +  + +  + + + + + diff --git a/windows/deploy/provisioning-install-icd.md b/windows/deploy/provisioning-install-icd.md new file mode 100644 index 0000000000..9727bc089d --- /dev/null +++ b/windows/deploy/provisioning-install-icd.md @@ -0,0 +1,106 @@ +--- +title: Install Windows Imaging and Configuration Designer (Windows 10) +description: Learn how to install and run Windows ICD. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +author: jdeckerMS +localizationpriority: high +--- + +# Install Windows Imaging and Configuration Designer (ICD) + + +**Applies to** + +- Windows 10 +- Windows 10 Mobile + +Use the Windows Imaging and Configuration Designer (ICD) tool in the Windows Assessment and Deployment Kit (ADK) to create provisioning packages to easily configure devices running Windows 10. Windows ICD is primarily designed for use by IT departments for business and educational institutions who need to provision bring-your-own-device (BYOD) and business-supplied devices. + +## Supported platforms + +Windows ICD can create provisioning packages for Windows 10 desktop and mobile editions, including Windows 10 IoT Core. You can run Windows ICD on the following operating systems: + +- Windows 10 - x86 and amd64 +- Windows 8.1 Update - x86 and amd64 +- Windows 8.1 - x86 and amd64 +- Windows 8 - x86 and amd64 +- Windows 7 - x86 and amd64 +- Windows Server 2016 +- Windows Server 2012 R2 Update +- Windows Server 2012 R2 +- Windows Server 2012 +- Windows Server 2008 R2 + +## Install Windows ICD + +1. Go to [Download the Windows ADK](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit) and select **Get Windows ADK** for the version of Windows 10 that you want to create provisioning packages for (version 1511 or version 1607). + + >[!NOTE] + >The rest of this procedure uses Windows ADK for Windows 10, version 1607 as an example. + +2. Save **adksetup.exe** and then run it. + +3. On the **Specify Location** page, select an installation path and then click **Next**. + >[!NOTE] + >The estimated disk space listed on this page applies to the full Windows ADK. If you only install Windows ICD, the space requirement is approximately 32 MB. +4. Make a selection on the **Windows Kits Privacy** page, and then click **Next**. + +5. Accept the **License Agreement**, and then click **Next**. + +6. On the **Select the features you want to install** page, clear all selections except **Configuration Designer**, and then click **Install**. + + ![Only Configuration Designer selected for installation](images/icd-install.png) + +## Current Windows ICD limitations + + +- You can only run one instance of Windows ICD on your computer at a time. + +- Be aware that when adding apps and drivers, all files stored in the same folder will be imported and may cause errors during the build process. + +- The Windows ICD UI does not support multivariant configurations. Instead, you must use the Windows ICD command-line interface to configure multivariant settings. For more information, see [Create a provisioning package with multivariant settings](provisioning-multivariant.md). + +- While you can open multiple projects at the same time within Windows ICD, you can only build one project at a time. + +- In order to enable the simplified authoring jscripts to work on a server SKU running Windows ICD, you need to explicitly enable **Allow websites to prompt for information using scripted windows**. Do this by opening Internet Explorer and then navigating to **Settings** > **Internet Options** > **Security** -> **Custom level** > **Allow websites to prompt for information using scripted windows**, and then choose **Enable**. + +- If you copy a Windows ICD project from one PC to another PC, make sure that all the associated files for the deployment assets, such as apps and drivers, are copied along with the project to the same path as it was on the original PC. + + For example, when you add a driver to a provisioned package, you must copy the .INF file to a local directory on the PC that is running Windows ICD. If you don't do this, and attempt to use a copied version of this project on a different PC, Windows ICD might attempt to resolve the path to the files that point to the original PC. + +- **Recommended**: Before starting, copy all source files to the PC running Windows ICD, rather than using external sources like network shares or removable drives. This reduces the risk of interrupting the build process from a temporary network issue or from disconnecting the USB device. + +**Next step**: [How to create a provisioning package](provisioning-create-package.md) + +## Learn more + +- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) + +- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) + +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) + + + +  + +  + + + + + diff --git a/windows/deploy/provisioning-multivariant.md b/windows/deploy/provisioning-multivariant.md new file mode 100644 index 0000000000..3bc7652233 --- /dev/null +++ b/windows/deploy/provisioning-multivariant.md @@ -0,0 +1,322 @@ +--- +title: Create a provisioning package with multivariant settings (Windows 10) +description: Create a provisioning package with multivariant settings to customize the provisioned settings. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +author: jdeckerMS +localizationpriority: high +--- + +# Create a provisioning package with multivariant settings + + +**Applies to** + +- Windows 10 +- Windows 10 Mobile + +Multivariant provisioning packages enable you to create a single provisioning package that can work for multiple locales. + +To provision multivariant settings, you must create a provisioning package with defined **Conditions** and **Settings** that are tied to these conditions. When you install this package on a Windows 10 device, the provisioning engine applies the matching condition settings at every event and triggers provisioning. + +The following events trigger provisioning on Windows 10 devices: + +| Event | Windows 10 Mobile | Windows 10 for desktop editions (Home, Pro, Enterprise, and Education) | +| --- | --- | --- | +| System boot | Supported | Supported | +| Operating system update | Supported | Planned | +| Package installation during device first run experience | Supported | Supported | +| Detection of SIM presence or update | Supported | Not supported | +| Package installation at runtime | Supported | Supported | +| Roaming detected | Supported | Not supported | + +## Target, TargetState, Condition, and priorities + +Targets describe keying for a variant and must be described or pre-declared before being referenced by the variant. + +- You can define multiple **Target** child elements for each **Id** that you need for the customization setting. + +- Within a **Target** you can define multiple **TargetState** elements. + +- Within a **TargetState** element you can create multiple **Condition** elements. + +- A **Condition** element defines the matching type between the condition and the specified value. + +The following table shows the conditions supported in Windows 10 provisioning: + +>[!NOTE] +>You can use any of these supported conditions when defining your **TargetState**. + +| Condition Name | Condition priority | Windows 10 Mobile | Windows 10 for desktop editions | Value type | Value description | +| --- | --- | --- | --- | --- | --- | +| MNC | P0 | Supported | N/A | Digit string | Use to target settings based on the Mobile Network Code (MNC) value. | +| MCC | P0 | Supported | N/A | Digit string | Use to target settings based on the Mobile Country Code (MCC) value. | +| SPN | P0 | Supported | N/A | String | Use to target settings based on the Service Provider Name (SPN) value. | +| PNN | P0 | Supported | N/A | String | Use to target settings based on public land mobile network (PLMN) Network Name value. | +| GID1 | P0 | Supported | N/A | Digit string | Use to target settings based on the Group Identifier (level 1) value. | +| ICCID | P0 | Supported | N/A | Digit string | Use to target settings based on the Integrated Circuit Card Identifier (ICCID) value. | +| Roaming | P0 | Supported | N/A | Boolean | Use to specify roaming. Set the value to **1** (roaming) or **0** (non-roaming). | +| UICC | P0 | Supported | N/A | Enumeration | Use to specify the UICC state. Set the value to one of the following:


    - 0 - Empty
    - 1 - Ready
    - 2 - Locked | +| UICCSLOT | P0 | Supported | N/A | Digit string | Use to specify the UICC slot. Set the value one of the following:


    - 0 - Slot 0
    - 1 - Slot 1 | +| ProcessorType | P1 | Supported | Supported | String | Use to target settings based on the processor type. | +| ProcessorName | P1 | Supported | Supported | String | Use to target settings based on the processor name. | +| AoAc | P1 | Supported | Supported | Boolean | Set the value to 0 or 1. | +| PowerPlatformRole | P1 | Supported | Supported | Enumeration | Indicates the preferred power management profile. Set the value based on the POWER_PLATFORM_ROLE enumeration. | +| Architecture | P1 | Supported | Supported | String | Matches the PROCESSOR_ARCHITECTURE environment variable. | +| Server | P1 | Supported | Supported | Boolean | Set the value to 0 or 1. | +| Region | P1 | Supported | Supported | Enumeration | Use to target settings based on country/region. | +| Lang | P1 | Supported | Supported | Enumeration | Use to target settings based on language code. | +| ROMLANG | P1 | Supported | N/A | Digit string | Use to specify the PhoneROMLanguage that's set for DeviceTargeting. This condition is used primarily to detect variants for China. For example, you can use this condition and set the value to "0804". | + +The matching types supported in Windows 10 are: + +| Matching type | Syntax | Example | +| --- | --- | --- | +| Straight match | Matching type is specified as-is | <Condition Name="ProcessorName" Value="Barton" /> | +| Regex match | Matching type is prefixed by "Pattern:" | <Condition Name="ProcessorName" Value="Pattern:.*Celeron.*" /> | +| Numeric range match | Matching type is prefixed by "!Range:" | <Condition Name="MNC" Value="!Range:400, 550" /> | + + +- When all **Condition** elements are TRUE, **TargetState** is TRUE (**AND** logic). + +- If any of the **TargetState** elements is TRUE, **Target** is TRUE (**OR** logic), and **Id** can be used for the setting customization. + + +You can define more than one **TargetState** within a provisioning package to apply variant settings that match device conditions. When the provisioning engine evalues each **TargetState**, more than one **TargetState** may fit current device conditions. To determine the order in which the variant settings are applied, the system assigns a priority to every **TargetState**. + +A variant setting that matches a **TargetState** with a lower priority is applied before the variant that matches a **TargetState** with a higher priority. Variant settings that match more than one **TargetState** with equal priority are applied according to the order that each **TargetState** is defined in the provisioning package. + +The **TargetState** priority is assigned based on the conditions priority and the priority evaluation rules are as followed: + +1. **TargetState** with P0 conditions is higher than **TargetState** without P0 conditions. + + +2. **TargetState** with P1 conditions is higher than **TargetState** without P0 and P1 conditions. + + +3. If N₁>N₂>0, the **TargetState** priority with N₁ P0 conditions is higher than the **TargetState** with N₂ P1 conditions. + + +4. For **TargetState** without P0 conditions, if N₁>N₂>0 **TargetState** with N₁ P1 conditions is higher than the **TargetState** with N₂ P1 conditions. + + +5. For **TargetState** without P0 and P1 conditions, if N₁>N₂>0 **TargetState** priority with N₁ P2 conditions is higher than the **TargetState** with N₂ P2 conditions. + + +6. For rules 3, 4, and 5, if N₁=N₂, **TargetState** priorities are considered equal. + + +## Create a provisioning package with multivariant settings + +Follow these steps to create a provisioning package with multivariant capabilities. + + +1. Build a provisioning package and configure the customizations you need to apply during certain conditions. For more information, see [Create a provisioning package](provisioning-create-package.md). + + +2. After you've [configured the settings](provisioning-create-package.md#configure-settings), save the project. + + +3. Open the project folder and copy the customizations.xml file. + +4. Use an XML or text editor to open the customizations.xml file. + + The customizations.xml file holds the package metadata (including the package owner and rank) and the settings that you configured when you created your provisioning package. The Customizations node contains a Common section, which contains the customization settings. + + The following example shows the contents of a sample customizations.xml file. + + ```XML + + + + {6aaa4dfa-00d7-4aaa-8adf-73c6a7e2501e} + My Provisioning Package + 1.0 + OEM + 50 + + + + + + 0 + 0 + 0 + + + 0 + + + + + + ``` + +4. Edit the customizations.xml file and create a **Targets** section to describe the conditions that will handle your multivariant settings. + + The following example shows the customizations.xml, which has been modified to include several conditions including **ProcessorName**, **ProcessorType**, **MCC**, and **MNC**. + + ```XML + + + + {6aaa4dfa-00d7-4aaa-8adf-73c6a7e2501e} + My Provisioning Package + 1.0 + OEM + 50 + + + + + + 0 + 0 + 0 + + + 0 + + + + + + + + + + + + + + + + + + + + + + + + ``` + +5. In the customizations.xml file, create a **Variant** section for the settings you need to customize. To do this: + + a. Define a child **TargetRefs** element. + + b. Within the **TargetRefs** element, define a **TargetRef** element. You can define multiple **TargetRef** elements for each **Id** that you need to apply to customized settings. + + c. Move compliant settings from the **Common** section to the **Variant** section. + + If any of the TargetRef elements matches the Target, all settings in the Variant are applied (OR logic). + + >[!NOTE] + >You can define multiple Variant sections. Settings that reside in the **Common** section are applied unconditionally on every triggering event. + + The following example shows the customizations.xml updated to include a **Variant** section and the moved settings that will be applied if the conditions for the variant are met. + + ```XML + + + + {6aaa4dfa-00d7-4aaa-8adf-73c6a7e2501e} + My Provisioning Package + 1.0 + OEM + 50 + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + 1 + 1 + 1 + + + 1 + + + + + + + ``` + +6. Save the updated customizations.xml file and note the path to this updated file. You will need the path as one of the values for the next step. + + +7. Use the [Windows ICD command-line interface](provisioning-command-line.md) to create a provisioning package using the updated customizations.xml. + + For example: + + ``` + icd.exe /Build-ProvisioningPackage /CustomizationXML:"C:\CustomProject\customizations.xml" /PackagePath:"C:\CustomProject\output.ppkg" /StoreFile:C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Imaging and Configuration Designer\x86\Microsoft-Common-Provisioning.dat" + ``` + + +In this example, the **StoreFile** corresponds to the location of the settings store that will be used to create the package for the required Windows edition. + +>[!NOTE] +>The provisioning package created during this step will contain the multivariant settings. You can use this package either as a standalone package that you can apply to a Windows device or use it as the base when starting another project. + + + + + + + + + + + + + + +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) + +  + + + + + diff --git a/windows/deploy/provisioning-nfc.md b/windows/deploy/provisioning-nfc.md new file mode 100644 index 0000000000..114e6d5545 --- /dev/null +++ b/windows/deploy/provisioning-nfc.md @@ -0,0 +1,153 @@ +--- +title: NFC-based device provisioning (Windows 10) +description: +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +author: jdeckerMS +localizationpriority: high +--- + +# NFC-based device provisioning + + +**Applies to** + +- Windows 10 Mobile + +Near field communication (NFC) enables Windows 10 Mobile Enterprise and Windows 10 Mobile devices to communicate with an NFC tag or another NFC-enabled transmitting device. Enterprises that do bulk provisioning can use NFC-based device provisioning to provide a provisioning package to the device that's being provisioned. NFC provisioning is simple and convenient and it can easily store an entire provisioning package. + +The NFC provisioning option enables the administrator to provide a provisioning package during initial device setup or the out-of-box experience (OOBE) phase. Administrators can use the NFC provisioning option to transfer provisioning information to persistent storage by tapping an unprovisioned mobile device to an NFC tag or NFC-enabled device. To use NFC for pre-provisioning a device, you must either prepare your own NFC tags by storing your provisioning package to a tag as described in this section, or build the infrastructure needed to transmit a provisioning package between an NFC-enabled device and a mobile device during OOBE. + +## Provisioning OOBE UI + +All Windows 10 Mobile Enterprise and Windows 10 Mobile images have the NFC provisioning capability incorporated into the operating system. On devices that support NFC and are running Windows 10 Mobile Enterprise or Windows 10 Mobile, NFC-based device provisioning provides an additional mechanism to provision the device during OOBE. + +On all Windows devices, device provisioning during OOBE can be triggered by 5 fast taps on the Windows hardware key, which shows the **Provision this device** screen. In the **Provision this device** screen, select **NFC** for NFC-based provisioning. + +![Example of Provision this device screen](images/nfc.png) + +If there is an error during NFC provisioning, the device will show a message if any of the following errors occur: + +- **NFC initialization error** - This can be caused by any error that occurs before data transfer has started. For example, if the NFC driver isn't enabled or there's an error communicating with the proximity API. +- **Interrupted download or incomplete package transfer** - This error can happen if the peer device is out of range or the transfer is aborted. This error can be caused whenever the device being provisioned fails to receive the provisioning package in time. +- **Incorrect package format** - This error can be caused by any protocol error that the operating system encounters during the data transfer between the devices. +- **NFC is disabled by policy** - Enterprises can use policies to disallow any NFC usage on the managed device. In this case, NFC functionality is not enabled. + +## NFC tag + +You can use an NFC tag for minimal provisioning and use an NFC-enabled device tag for larger provisioning packages. + +The protocol used for NFC-based device provisioning is similar to the one used for NFC provisioning on Windows Embedded 8.1 Handheld, which supported both single-chunk and multi-chunk transfer when the total transfer didn't fit in one NDEP message size. In Windows 10, the provisioning stack contains the following changes: + +- **Protocol namespace** - The protocol namespace has changed from Windows.WEH.PreStageProv.Chunk to Windows.ProvPlugins.Chunk. +- **Tag data type** - The tag data type has changed from UTF-8 into binary raw data. + + +>[!NOTE] +>The NFC tag doesn't go in the secondary device. You can transfer the NFC tag by using a provisioning package from device-to-device using the NFC radio or by re-reading the provisioning package from an NFC tag. + +### NFC tag components + +NFC tags are suitable for very light applications where minimal provisioning is required. The size of NFC tags that contain provisioning packages is typically 4 KB to 10 KB. + +To write to an NFC tag, you will need to use an NFC Writer tool, or you can use the [ProximityDevice class API](https://msdn.microsoft.com/library/windows/apps/windows.networking.proximity.proximitydevice.aspx) to write your own custom tool to transfer your provisioning package file to your NFC tag. The tool must publish a binary message (write) a Chunk data type to your NFC tag. + +The following table describes the information that is required when writing to an NFC tag. + +| Required field | Description | +| --- | --- | +| **Type** | Windows.ProvPlugins.Chunk

    The receiving device uses this information to understand information in the Data field. | +| **Data** | Tag data with small header in raw binary format that contains a chunk of the provisioning package to be transferred. | + + + +### NFC provisioning helper + +The NFC provisioning helper device must split the provisioning package raw content into multiple parts and publish these in order. Each part should follow the following format: + +
    **Version**
    (1 byte)
    **Leading**
    (1 byte)
    **Order**
    (1 byte)
    **Total**
    (1 byte)
    **Chunk payload**
    (N bytes)
    + +For each part: +- **Version** should always be 0x00. +- **Leading byte** should always be 0xFF. +- **Order** represents which message chunk (out of the whole message) the part belongs to. The Order begins with zero (0). +- **Total** represents the total number of chunks to be transferred for the whole message. +- **Chunk payload** represents each of the split parts. + +The NFC provisioning helper device must publish the record in a type of Windows.ProvPlugins.Chunk. + +**Code example** + +The following example shows how to write to an NFC tag. This example assumes that the tag is already in range of the writing device. + +``` + private async void WriteProvPkgToTag(IStorageFile provPkgFile) + { + var buffer = await FileIO.ReadBufferAsync(provPkgFile); + if (null == buffer) + { + return; + } + + var proximityDevice = Windows.Networking.Proximity.ProximityDevice.GetDefault(); + if (null == proximityDevice) + { + return; + } + + var dataWriter = new DataWriter(); + var header = new NfcProvHeader(); + + header.version = NFC_PROV_MESSAGE_CURRENT_VERSION; // Currently the supported version is 0x00. + header.leading = NFC_PROV_MESSAGE_LEADING_BYTE; // The leading byte should be always 0xFF. + header.index = 0; // Assume we only have 1 chunk. + header.total = 1; // Assume we only have 1 chunk. + + // Write the header first and then the raw data of the provisioning package. + dataWriter.WriteBytes(GetBytes(header)); + dataWriter.WriteBuffer(buffer); + + var chunkPubId = proximityDevice.PublishBinaryMessage( + "Windows:WriteTag.ProvPlugins.Chunk", + dataWriter.DetachBuffer()); + } +``` + + +### NFC-enabled device tag components + +Provisioning from an NFC-enabled source device allows for larger provisioning packages than can be transferred using an NFC tag. When provisioning from an NFC-enabled device, we recommend that the total file size not exceed 120 KB. Be aware that the larger the NFC file is, the longer it will take to transfer the provisioning file. Depending on your NFC hardware, the transfer time for a 120 KB file will vary between 2.5 seconds and 10 seconds. + +To provision from an NFC-enabled source device, use [ProximityDevice class API](https://msdn.microsoft.com/library/windows/apps/windows.networking.proximity.proximitydevice.aspx) to write your own custom tool that transfers your provisioning package in chunks to your target mobile device. The tool must publish binary messages (transmit) a Header message, followed by one or more Chunk messages. The Header specifies the total amount of data that will be transferred to the target device; the Chunks must contain binary raw data formatted provisioning data, as shown in the NFC tag components section. + +For detailed information and code samples on how to implement an NFC-enabled device tag, see **ConvertToNfcMessageAsync** in [this GitHub NfcProvisioner Universal Windows app example](https://github.com/Microsoft/Windows-universal-samples/blob/master/Samples/NfcProvisioner/cs/Scenario1.xaml.cs). The sample app shows you how to host the provisioning package on a master device so that you can transfer it to the receiving device. + + + + + + + +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) + +  + +  + + + + + diff --git a/windows/deploy/provisioning-packages.md b/windows/deploy/provisioning-packages.md index 47223a7427..ebb4a064c3 100644 --- a/windows/deploy/provisioning-packages.md +++ b/windows/deploy/provisioning-packages.md @@ -3,9 +3,8 @@ title: Provisioning packages (Windows 10) description: With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. ms.assetid: 287706E5-063F-4AB5-902C-A0DF6D0730BC ms.prod: w10 -ms.mktglfcycl: explore +ms.mktglfcycl: deploy ms.sitesec: library -ms.pagetype: mobile author: jdeckerMS localizationpriority: high --- @@ -18,15 +17,17 @@ localizationpriority: high - Windows 10 - Windows 10 Mobile -Windows provisioning makes it easy for IT administrators to configure end-user devices without imaging. Using Windows Provisioning, an IT administrator can easily specify desired configuration and settings required to enroll the devices into management (through a wizard-driven user interface) and then apply that configuration to target devices in a matter of minutes. It is best suited for small- to medium-sized businesses with deployments that range from tens to a few hundred computers. +Windows provisioning makes it easy for IT administrators to configure end-user devices without imaging. Using Windows provisioning, an IT administrator can easily specify desired configuration and settings required to enroll the devices into management and then apply that configuration to target devices in a matter of minutes. It is best suited for small- to medium-sized businesses with deployments that range from tens to a few hundred computers. -With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. +A provisioning package (.ppkg) is a container for a collection of configuration settings. With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. Provisioning packages are simple enough that with a short set of written instructions, a student or non-technical employee can use them to configure their device. This can result in a significant reduction in the time required to configure multiple devices in your organization. +The [Windows Assessment and Deployment Kit (ADK) for Windows 10](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit) includes the Imaging and Configuration Designer (ICD), a tool for configuring provisioning packages. + ## New in Windows 10, Version 1607 -The Windows Assessment and Deployment Kit (ADK) for Windows 10 includes the Imaging and Configuration Designer (ICD), a tool for configuring images and runtime settings which are then built into provisioning packages. Windows ICD for Windows 10, Version 1607, simplifies common provisioning scenarios. +Windows ICD for Windows 10, Version 1607, simplifies common provisioning scenarios. ![Configuration Designer options](images/icd.png) @@ -74,7 +75,7 @@ Provisioning packages can be: ## What you can configure -The following table provides some examples of what can be configured using provisioning packages. +The following table provides some examples of what you can configure using provisioning packages. | Customization options | Examples | |--------------------------|-----------------------------------------------------------------------------------------------| @@ -92,42 +93,26 @@ The following table provides some examples of what can be configured using provi For details about the settings you can customize in provisioning packages, see [Windows Provisioning settings reference]( https://go.microsoft.com/fwlink/p/?LinkId=619012). -## Creating a provisioning package - - -With Windows 10, you can use the Windows Imaging and Configuration Designer (ICD) tool to create provisioning packages. To install Windows ICD and create provisioning packages, you must [install the Windows Assessment and Deployment Kit (ADK) for Windows 10](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit). - -When you run ADKsetup.exe for Windows 10, version 1607, select the following feature from the **Select the features you want to install** dialog box: - -- **Configuration Designer** - -![Choose Configuration Designer](images/adk-install.png) - -> [!NOTE] -> In previous versions of the Windows 10 ADK, you had to install additional features for Windows ICD to run. Starting in version 1607, you can install Windows ICD without other ADK features. - -After you install Windows ICD, you can use it to create a provisioning package. For detailed instructions on how to create a provisioning package, see [Build and apply a provisioning package](https://go.microsoft.com/fwlink/p/?LinkID=629651). - -## Applying a provisioning package to a device - - -Provisioning packages can be applied both during image deployment and during runtime. For information on how to apply a provisioning package to a Windows 10-based device, see [Build and apply a provisioning package](https://go.microsoft.com/fwlink/p/?LinkID=629651). - ## Learn more +- Watch the video: [Provisioning Windows 10 Devices with New Tools](https://go.microsoft.com/fwlink/p/?LinkId=615921) -[Windows 10: Deployment](https://go.microsoft.com/fwlink/p/?LinkId=533708) +- Watch the video: [Windows 10 for Mobile Devices: Provisioning Is Not Imaging](https://go.microsoft.com/fwlink/p/?LinkId=615922) ## Related topics -- [Provision PCs with common settings for initial deployment](provision-pcs-for-initial-deployment.md) -- [Provision PCs with apps and certificates for initial deployments](provision-pcs-with-apps-and-certificates.md) -- [Configure devices without MDM](../manage/configure-devices-without-mdm.md) -- [Set up a shared or guest PC with Windows 10](../manage/set-up-shared-or-guest-pc.md) -- [Configure devices without MDM](../manage/configure-devices-without-mdm.md) -- [Set up a device for anyone to use (kiosk mode)](../manage/set-up-a-device-for-anyone-to-use.md) -- [Customize Windows 10 Start and taskbar with ICD and provisioning packages](../manage/customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md) -- [Set up student PCs to join domain](https://technet.microsoft.com/edu/windows/set-up-students-pcs-to-join-domain) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) + diff --git a/windows/deploy/provisioning-script-to-install-app.md b/windows/deploy/provisioning-script-to-install-app.md new file mode 100644 index 0000000000..8754c66299 --- /dev/null +++ b/windows/deploy/provisioning-script-to-install-app.md @@ -0,0 +1,222 @@ +--- +title: Use a script to install a desktop app in provisioning packages (Windows 10) +description: With Windows 10, you can create provisioning packages that let you quickly and efficiently configure a device without having to install a new image. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +author: jdeckerMS +localizationpriority: high +--- + +# Use a script to install a desktop app in provisioning packages + + +**Applies to** + +- Windows 10 +- Windows 10 Mobile + +This walkthrough describes how to leverage the ability to include scripts in a Windows 10 provisioning package to install Win32 applications. Scripted operations other than installing apps can also be performed, however, some care is needed in order to avoid unintended behavior during script execution (see Remarks below). + +>**Prerequisite**: [Windows Assessment and Deployment Kit (ADK) for Windows 10](https://developer.microsoft.com/windows/hardware/windows-assessment-deployment-kit), version 1511 or higher + +>[!NOTE] +>This scenario is only supported for installing applications on Windows 10 for desktop, version 1511 or higher. + +## Assemble the application assets + +1. On the device where you’re authoring the package, place all of your assets in a known location. Each asset must have a unique filename, because all files will be copied to the same temp directory on the device. It’s common for many apps to have an installer called ‘install.exe’ or similar, and there may be name overlap because of that. To fix this, you can use the technique described in the next step to include a complete directory structure that is then expanded into the temp directory on the device. The most common use for this would be to include a subdirectory for each application. + +2. If you need to include a directory structure of files, you will need to cab the assets for easy inclusion in the provisioning packages. + +## Cab the application assets + +1. Create a .DDF file as below, replacing *file1* and *file2* with the files you want to package, and adding the name of file/directory. + + ``` + ;*** MSDN Sample Source Code MakeCAB Directive file example + + ; + + .OPTION EXPLICIT ; Generate errors on variable typos + + .set DiskDirectoryTemplate=CDROM ; All cabinets go in a single directory + + .Set MaxDiskFileCount=1000; Limit file count per cabinet, so that + + ; scanning is not too slow + + .Set FolderSizeThreshold=200000 ; Aim for ~200K per folder + + .Set CompressionType=MSZIP + + ;** All files are compressed in cabinet files + + .Set Cabinet=on + + .Set Compress=on + + ;------------------------------------------------------------------- + + ;** CabinetNameTemplate = name of cab + + ;** DiskDirectory1 = output directory where cab will be created + + ;------------------------------------------------------------------- + + .Set CabinetNameTemplate=tt.cab + + .Set DiskDirectory1=. + + ;------------------------------------------------------------------- + + ; Replace with actual files you want to package + + ;------------------------------------------------------------------- + + + + + + ;*** + ``` + +2. Use makecab to create the cab files. + + ``` + Makecab -f + ``` + +## Create the script to install the application + +Create a script to perform whatever work is needed to install the application(s). The following examples are provided to help get started authoring the orchestrator script that will execute the required installers. In practice, the orchestrator script may reference many more assets than those in these examples. + +>[!NOTE] +>All actions performed by the script must happen silently, showing no UI and requiring no user interaction. +> +>The scripts will be run on the device in system context. + +### Debugging example + +Granular logging is not built in, so the logging must be built into the script itself. Here is an example script that logs ‘Hello World’ to a logfile. When run on the device, the logfile will be available after provisioning is completed. As you will see in the following examples, it’s recommended that you log each action that your script performs. + +``` +set LOGFILE=%SystemDrive%\HelloWorld.log +echo Hello, World >> %LOGFILE% +``` +### .exe example + +This example script shows how to create a log output file on the system drive, install an app from a .exe installer, and echo the results to the log file. + +``` +set LOGFILE=%SystemDrive%\Fiddler_install.log +echo Installing Fiddler.exe >> %LOGFILE% +fiddler4setup.exe /S >> %LOGFILE% +echo result: %ERRORLEVEL% >> %LOGFILE% +``` + +### .msi example + +This is the same as the previous installer, but installs the app from an MSI installer. Notice that msiexec is called with the /quiet flag in order to meet the silent requirement of scripts run from within a provisioning package. + +``` +set LOGFILE=%SystemDrive%\IPOverUsb_install.log +echo Installing IpOverUsbInstaller.msi >> %LOGFILE% +msiexec /i IpOverUsbInstaller.msi /quiet >> %LOGFILE% +echo result: %ERRORLEVEL% >> %LOGFILE% +``` + +### PowerShell example + +This is an example script with logging that shows how to run a powershell script from the provisioning commands setting. Note that the PowerShell script referenced from this example must also be included in the package, and obey the same requirements as all scripts run from within the provisioning package: it must execute silently, with no user interaction. + +``` +set LOGFILE=%SystemDrive%\my_powershell_script.log +echo Running my_powershell_script.ps1 in system context >> %LOGFILE% +echo Executing "PsExec.exe -accepteula -i -s cmd.exe /c powershell.exe my_powershell_script.ps1" >> %LOGFILE% +PsExec.exe -accepteula -i -s cmd.exe /c powershell.exe my_powershell_script.ps1' >> %LOGFILE% +echo result: %ERRORLEVEL% >> %LOGFILE% +``` + +### Extract from a .CAB example + +This example script shows expansion of a .cab from the provisioning commands script, as well as installation of the expanded setup.exe + +``` +set LOGFILE=%SystemDrive%\install_my_app.log +echo Expanding installer_assets.cab >> %LOGFILE% +expand -r installer_assets.cab -F:* . >> %LOGFILE% +echo result: %ERRORLEVEL% >> %LOGFILE% +echo Installing MyApp >> %LOGFILE% +setup.exe >> %LOGFILE% +echo result: %ERRORLEVEL% >> %LOGFILE% +``` + +### Calling multiple scripts in the package + +You are currently allowed one CommandLine per PPKG. The batch files shown above are orchestrator scripts that manage the installation and calls any other scripts included in the PPKG. The orchestrator script is what should be invoked from the CommandLine specified in the package. + +Here’s a table describing this relationship, using the PowerShell example from above: + + +|ICD Setting | Value | Description | +| --- | --- | --- | +| ProvisioningCommands/DeviceContext/CommandLine | cmd /c PowerShell_Example.bat | The command line needed to invoke the orchestrator script. | +| ProvisioningCommands/DeviceContext/CommandFiles | PowerShell_Example.bat | The single orchestrator script referenced by the command line that handles calling into the required installers or performing any other actions such as expanding cab files. This script must do the required logging. | +| ProvisioningCommands/DeviceContext/CommandFiles | my_powershell_script.ps1 | Other assets referenced by the orchestrator script. In this example there is only one, but there could be many assets referenced here. One common use case is using the orchestrator to call a series of install.exe or setup.exe installers to install several applications. Each of those installers must be included as an asset here. | + + +### Add script to provisioning package + +When you have the batch file written and the referenced assets ready to include, you can add them to a provisioning package in the Window Imaging and Configuration Designer (Windows ICD). + +Using ICD, specify the full details of how the script should be run in the CommandLine setting in the provisioning package. This includes flags or any other parameters that you would normally type on the command line. So for example if the package contained an app installer called install.exe and a script used to automate the install called InstallMyApp.bat, the `ProvisioningCommands/DeviceContext/CommandLine` setting should be configured to: + +``` +cmd /c InstallMyApp.bat +``` + +In ICD, this looks like: + +![Command line in Selected customizations](images/icd-script1.png) + +You also need to add the relevant assets for that command line including the orchestrator script and any other assets it references such as installers or .cab files. + +In ICD, that is done by adding files under the `ProvisioningCommands/DeviceContext/CommandFiles` setting. + +![Command files in Selected customizations](images/icd-script2.png) + +When you are done, [build the package](provisioning-create-package.md#build-package). + + +### Remarks +1. No user interaction or console output is supported via ProvisioningCommands. All work needs to be silent. If your script attempts to do any of the following it will cause undefined behavior, and could put the device in an unrecoverable state if executed during setup or the Out of Box Experience: + a. Echo to console + b. Display anything on the screen + c. Prompt the user with a dialog or install wizard +2. When applied at first boot, provisioning runs early in the boot sequence and before a user context has been established; care must be taken to only include installers that can run at this time. Other installers can be provisioned via a management tool. +3. If the device is put into an unrecoverable state because of a bad script, you can reset it using [recovery options in Windows 10](https://support.microsoft.com/help/12415/windows-10-recovery-options). +4. The CommandFile assets are deployed on the device to a temporary folder unique to each package. + a. For packages added during the out of box experience, this is usually in `%WINDIR%\system32\config\systemprofile\appdata\local\Temp\ProvisioningPkgTmp\<{PackageIdGuid}>\Commands` + b. For packages added by double-clicking on an already deployed device, this will be in the temp folder for the user executing the PPKG: `%TMP%\ProvisioningPkgTmp\<{PackageIdGuid}>\Commands` +5. The command line will be executed with the directory the CommandFiles were deployed to as the working directory. This means you do not need to specific the full path to assets in the command line or from within any script. +6. The runtime provisioning component will attempt to run the scripts from the PPKG at the earliest point possible, depending on the stage when the PPKG was added. For example, if the package was added during the Out-of-Box Experience, it will be run immediately after the package is applied, while the Out-of-Box Experience is still happening. This is before the user account configuration options are presented to the user. A spinning progress dialog will appear and “please wait” will be displayed on the screen. + + >[!NOTE] + >There is a timeout of 30 minutes for the provisioning process at this point. All scripts and installs need to complete within this time. +7. The scripts are executed in the background as the rest of provisioning continues to run. For packages added on existing systems using the double-click to install, there is no notification that provisioning or script execution has completed + + +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Settings changed when you uninstall a provisioning package](provisioning-uninstall-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) \ No newline at end of file diff --git a/windows/deploy/provisioning-uninstall-package.md b/windows/deploy/provisioning-uninstall-package.md new file mode 100644 index 0000000000..b3836ede88 --- /dev/null +++ b/windows/deploy/provisioning-uninstall-package.md @@ -0,0 +1,98 @@ +--- +title: Settings changed when you uninstall a provisioning package (Windows 10) +description: This topic lists the settings that are reverted when you uninstall a provisioning package. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +author: jdeckerMS +localizationpriority: high +--- + +# Settings changed when you uninstall a provisioning package + + +**Applies to** + +- Windows 10 +- Windows 10 Mobile + +When you uninstall a provisioning package, only certain settings are revertible. This topic lists the settings that are reverted when you uninstall a provisioning package. + + +As an administrator, you can uninstall by using the **Add or remove a package for work or school** option available under **Settings** > **Accounts** > **Access work or school**. + +When a provisioning package is uninstalled, some of its settings are reverted, which means the value for the setting is changed to the next available or default value. Not all settings, however, are revertible. + +Only settings in the following lists are revertible. + +## Registry-based settings + +The registry-based settings that are revertible when a provisioning package is uninstalled all fall under these categories, which you can find in the Graphical User Interface of the Windows Imaging and Configuration Designer (Windows ICD). + + +- [Wi-Fi Sense](https://msdn.microsoft.com/library/windows/hardware/mt219706.aspx) +- [CountryAndRegion](https://msdn.microsoft.com/library/windows/hardware/mt219726.aspx) +- DeviceManagement / PGList/ LogicalProxyName +- UniversalAppInstall / LaunchAppAtLogin +- [Power](https://msdn.microsoft.com/library/windows/hardware/dn953704.aspx) +- [TabletMode](https://msdn.microsoft.com/library/windows/hardware/mt297550.aspx) +- [Maps](https://msdn.microsoft.com/library/windows/hardware/mt131464.aspx) +- [Browser](https://msdn.microsoft.com/library/windows/hardware/mt573151.aspx) +- [DeviceFormFactor](https://msdn.microsoft.com/library/windows/hardware/mt243449.aspx) +- [USBErrorsOEMOverride](https://msdn.microsoft.com/library/windows/hardware/mt769908.aspx) +- [WeakCharger](https://msdn.microsoft.com/library/windows/hardware/mt346401.aspx) + + + +## CSP-based settings + +Here is the list of revertible settings based on configuration service providers (CSPs). + +[ActiveSync CSP](https://msdn.microsoft.com/library/windows/hardware/dn920017.aspx) +[AppLocker CSP](https://msdn.microsoft.com/library/windows/hardware/dn920019.aspx) +[BrowserFavorite CSP](https://msdn.microsoft.com/library/windows/hardware/dn914758.aspx) +[CertificateStore CSP](https://msdn.microsoft.com/library/windows/hardware/dn920021.aspx) +[ClientCertificateInstall CSP](https://msdn.microsoft.com/library/windows/hardware/dn920023.aspx) +[RootCATrustedCertificates CSP](https://msdn.microsoft.com/library/windows/hardware/dn904970.aspx) +[CM_CellularEntries CSP](https://msdn.microsoft.com/library/windows/hardware/dn914761.aspx) +[CM_ProxyEntries CSP](https://msdn.microsoft.com/library/windows/hardware/dn914762.aspx) +[CMPolicy CSP](https://msdn.microsoft.com/library/windows/hardware/dn914760.aspx) +[CMPolicyEnterprise CSP](https://msdn.microsoft.com/library/windows/hardware/mt706463.aspx) +[EMAIL2 CSP](https://msdn.microsoft.com/library/windows/hardware/dn904953.aspx) +[EnterpriseAPN CSP](https://msdn.microsoft.com/library/windows/hardware/dn958617.aspx) +[EnterpriseAppManagement CSP](https://msdn.microsoft.com/library/windows/hardware/dn904955.aspx) +[EnterpriseDesktopAppManagement CSP](https://msdn.microsoft.com/library/windows/hardware/dn958620.aspx) +[EnterpriseModernAppManagement CSP](https://msdn.microsoft.com/library/windows/hardware/dn904956.aspx) +[NAP CSP](https://msdn.microsoft.com/library/windows/hardware/dn914767.aspx) +[PassportForWork CSP](https://msdn.microsoft.com/library/windows/hardware/dn987099.aspx) +[Provisioning CSP](https://msdn.microsoft.com/library/windows/hardware/mt203665.aspx) +[PROXY CSP](https://msdn.microsoft.com/library/windows/hardware/dn914770.aspx) +[SecureAssessment CSP](https://msdn.microsoft.com/library/windows/hardware/mt718628.aspx) +[VPN CSP](https://msdn.microsoft.com/library/windows/hardware/dn904978.aspx) +[VPNv2 CSP](https://msdn.microsoft.com/library/windows/hardware/dn914776.aspx) +[WiFi CSP](https://msdn.microsoft.com/library/windows/hardware/dn904981.aspx) + + + +## Related topics + +- [Provisioning packages for Windows 10](provisioning-packages.md) +- [How provisioning works in Windows 10](provisioning-how-it-works.md) +- [Install Windows Imaging and Configuration Designer](provisioning-install-icd.md) +- [Create a provisioning package](provisioning-create-package.md) +- [Apply a provisioning package](provisioning-apply-package.md) +- [Provision PCs with common settings for initial deployment (simple provisioning)](provision-pcs-for-initial-deployment.md) +- [Provision PCs with apps and certificates for initial deployments (advanced provisioning)](provision-pcs-with-apps-and-certificates.md) +- [Use a script to install a desktop app in provisioning packages](provisioning-script-to-install-app.md) +- [NFC-based device provisioning](provisioning-nfc.md) +- [Windows ICD command-line interface (reference)](provisioning-command-line.md) +- [Create a provisioning package with multivariant settings](provisioning-multivariant.md) + +  + +  + + + + + diff --git a/windows/deploy/troubleshoot-upgrade-analytics.md b/windows/deploy/troubleshoot-upgrade-analytics.md index b6c6f5d87b..468de1e275 100644 --- a/windows/deploy/troubleshoot-upgrade-analytics.md +++ b/windows/deploy/troubleshoot-upgrade-analytics.md @@ -1,4 +1,4 @@ ---- +--- title: Troubleshoot Upgrade Analytics (Windows 10) description: Provides troubleshooting information for Upgrade Analytics. ms.prod: w10 @@ -7,7 +7,7 @@ author: MaggiePucciEvans # Troubleshoot Upgrade Analytics -If you’re having issues seeing data in Upgrade Analytics after running the Upgrade Analytics Deployment script, make sure it completes successfully without any errors. Check the output of the script in the command window and/or log UA_dateTime_machineName.txt to ensure all steps were completed successfully. In addition, we recommend that you wait at least 48 hours before checking OMS for data after the script first completes without reporting any error. +If you’re having issues seeing data in Upgrade Analytics after running the Upgrade Analytics Deployment script, make sure it completes successfully without any errors. Check the output of the script in the command window and/or log UA_dateTime_machineName.txt to ensure all steps were completed successfully. In addition, we recommend that you wait at least 48 hours before checking OMS for data after the script first completes without reporting any error. If you still don’t see data in Upgrade Analytics, follow these steps: @@ -25,9 +25,14 @@ If you still don’t see data in Upgrade Analytics, follow these steps: If you want to stop using Upgrade Analytics and stop sending telemetry data to Microsoft, follow these steps: -1. Unsubscribe from the Upgrade Analytics solution in the OMS portal. +1. Unsubscribe from the Upgrade Analytics solution in the OMS portal. In the OMS portal, go to **Settings** > **Connected Sources** > **Windows Telemetry** and choose the **Unsubscribe** option. -2. Disable the Customer Experience Improvement Program on computers running Windows 7 SP1 or 8.1. On computers running Windows 10, set the telemetry level to Security. + ![Upgrade Analytics unsubscribe](images/upgrade-analytics-unsubscribe.png) -3. Delete the CommercialDataOptin key in *HKLM:\\SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Policies\\DataCollection* +2. Disable the Commercial Data Opt-in Key on computers running Windows 7 SP1 or 8.1. On computers running Windows 10, set the telemetry level to **Security**: + **Windows 7 and Windows 8.1**: Delete CommercialDataOptIn registry property from *HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection* + **Windows 10**: Follow the instructions in the [Configure Windows telemetry in your organization](https://technet.microsoft.com/itpro/windows/manage/configure-windows-telemetry-in-your-organization#enterprise-management) topic. + +3. If you enabled **Internet Explorer Site Discovery**, you can disable Internet Explorer data collection by setting the *IEDataOptIn* registry key to value "0". The IEDataOptIn key can be found under: *HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection*. +4. You can also remove the “CommercialId” key from: "HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection". **This is an optional step**. diff --git a/windows/deploy/upgrade-analytics-get-started.md b/windows/deploy/upgrade-analytics-get-started.md index 188a73c081..1455ee624e 100644 --- a/windows/deploy/upgrade-analytics-get-started.md +++ b/windows/deploy/upgrade-analytics-get-started.md @@ -1,4 +1,4 @@ ---- +--- title: Get started with Upgrade Analytics (Windows 10) description: Explains how to get started with Upgrade Analytics. ms.prod: w10 @@ -53,7 +53,7 @@ If you are not using OMS: After you’ve signed in to Operations Management Suite and added the Upgrade Analytics solution to your workspace, complete the following tasks to establish communication and enable data sharing between user computers, Microsoft secure data centers, and Upgrade Analytics. -## Generate your commercial ID key +## Generate your commercial ID key Microsoft uses a unique commercial ID to map information from user computers to your OMS workspace. Generate your commercial ID key in OMS and then deploy it to user computers. @@ -77,14 +77,14 @@ For Upgrade Analytics to receive and display upgrade readiness data from Microso To enable data sharing, whitelist the following endpoints. Note that you may need to get approval from your security group to do this. -Note: The compatibility update KB runs under the computer’s system account and does not support user authenticated proxies. +Note: The compatibility update KB runs under the computer’s system account. If you are using user authenticated proxies, read [this blog post](https://go.microsoft.com/fwlink/?linkid=838688) to learn what you need to do to run it under the logged on user account. | **Endpoint** | **Function** | |---------------------------------------------------------|-----------| -| `https://v10.vortex-win.data.microsoft.com/collect/v1` | Connected User Experience and Telemetry component endpoint. User computers send data to Microsoft through this endpoint. | -| `https://settings-win.data.microsoft.com/settings` | Enables the compatibility update KB to send data to Microsoft. | -| `https://go.microsoft.com/fwlink/?LinkID=544713`
    `https://compatexchange1.trafficmanager.net/CompatibilityExchangeService.svc/extended` | This service provides driver information about whether there will be a driver available post-upgrade for the hardware on the system. | -| `https://vortex.data.microsoft.com/health/keepalive`
    `https://settings.data.microsoft.com/qos`
    `https://compatexchange1.trafficmanager.net/CompatibilityExchangeService.svc` | These endpoints are used to validate that user computers are sharing data with Microsoft. | +| `https://v10.vortex-win.data.microsoft.com/collect/v1`

    `https://Vortex-win.data.microsoft.com/health/keepalive` | Connected User Experience and Telemetry component endpoint. User computers send data to Microsoft through this endpoint. | +| `https://settings.data.microsoft.com/qos` | Enables the compatibility update KB to send data to Microsoft. | +| `https://go.microsoft.com/fwlink/?LinkID=544713`
    `https://compatexchange1.trafficmanager.net/CompatibilityExchangeService.svc` | This service provides driver information about whether there will be a driver available post-upgrade for the hardware on the system. | + ## Deploy the compatibility update and related KBs @@ -92,8 +92,8 @@ The compatibility update KB scans your computers and enables application usage t | **Operating System** | **KBs** | |----------------------|-----------------------------------------------------------------------------| -| Windows 8.1 | [KB 2976978](http://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB2976978)
    Performs diagnostics on the Windows 8.1 systems that participate in the Windows Customer Experience Improvement Program. These diagnostics help determine whether compatibility issues may be encountered when the latest Windows operating system is installed.
    For more information about this KB, see
    [KB 3150513](https://catalog.update.microsoft.com/v7/site/Search.aspx?q=3150513)
    Provides updated configuration and definitions for compatibility diagnostics performed on the system.
    For more information about this KB, see
    NOTE: KB2976978 must be installed before you can download and install KB3150513. | -| Windows 7 SP1 | [KB2952664](http://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB2952664)
    Performs diagnostics on the Windows 7 SP1 systems that participate in the Windows Customer Experience Improvement Program. These diagnostics help determine whether compatibility issues may be encountered when the latest Windows operating system is installed.
    For more information about this KB, see
    [KB 3150513](https://catalog.update.microsoft.com/v7/site/Search.aspx?q=3150513)
    Provides updated configuration and definitions for compatibility diagnostics performed on the system.
    For more information about this KB, see
    NOTE: KB2952664 must be installed before you can download and install KB3150513. | +| Windows 8.1 | [KB 2976978](http://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB2976978)
    Performs diagnostics on the Windows 8.1 systems that participate in the Windows Customer Experience Improvement Program. These diagnostics help determine whether compatibility issues may be encountered when the latest Windows operating system is installed.
    For more information about this KB, see

    [KB 3150513](https://catalog.update.microsoft.com/v7/site/Search.aspx?q=3150513)
    Provides updated configuration and definitions for compatibility diagnostics performed on the system.
    For more information about this KB, see
    NOTE: KB2976978 must be installed before you can download and install KB3150513. | +| Windows 7 SP1 | [KB2952664](http://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB2952664)
    Performs diagnostics on the Windows 7 SP1 systems that participate in the Windows Customer Experience Improvement Program. These diagnostics help determine whether compatibility issues may be encountered when the latest Windows operating system is installed.
    For more information about this KB, see

    [KB 3150513](https://catalog.update.microsoft.com/v7/site/Search.aspx?q=3150513)
    Provides updated configuration and definitions for compatibility diagnostics performed on the system.
    For more information about this KB, see
    NOTE: KB2952664 must be installed before you can download and install KB3150513. | IMPORTANT: Restart user computers after you install the compatibility update KBs for the first time. @@ -117,7 +117,7 @@ To ensure that user computers are receiving the most up to date data from Micros To automate many of the steps outlined above and to troubleshoot data sharing issues, you can run the [Upgrade Analytics deployment script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409), developed by Microsoft. -> The following guidance applies to version 11.30.16 or later of the Upgrade Analytics deployment script. If you are using an older version, please download the latest from [Download Center](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409). +> The following guidance applies to version 11.11.16 or later of the Upgrade Analytics deployment script. If you are using an older version, please download the latest from [Download Center](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409). The Upgrade Analytics deployment script does the following: @@ -137,7 +137,7 @@ The Upgrade Analytics deployment script does the following: To run the Upgrade Analytics deployment script: -1. Download the [Upgrade Analytics deployment script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) and extract UpgradeAnalytics.zip. Inside, there are two folders: Pilot and Deployment. The Pilot folder contains advanced logging that can help troubleshoot issues and is inteded to be run from an elevated command prompt. The Deployment folder offers a lightweight script intended for broad deployment through ConfigMgr or other software deployment system. We recommend manually running the Pilot version of the script on 5-10 machines to verify that everything is configured correctly. Once you have confirmed that data is flowing successfully, proceed to run the Deployment version throughout your organization. +1. Download the [Upgrade Analytics deployment script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) and extract UpgradeAnalytics.zip. Inside, there are two folders: Pilot and Deployment. The Pilot folder contains advanced logging that can help troubleshoot issues and is intended to be run from an elevated command prompt. The Deployment folder offers a lightweight script intended for broad deployment through ConfigMgr or other software deployment system. We recommend manually running the Pilot version of the script on 5-10 machines to verify that everything is configured correctly. Once you have confirmed that data is flowing successfully, proceed to run the Deployment version throughout your organization. 2. Edit the following parameters in RunConfig.bat: @@ -165,40 +165,45 @@ To run the Upgrade Analytics deployment script: 4. After you finish editing the parameters in RunConfig.bat, you are ready to run the script. If you are using the Pilot version, run RunConfig.bat from an elevated command prompt. If you are using the Deployment version, use ConfigMgr or other software deployment service to run RunConfig.bat as system. -The deployment script displays the following exit codes to let you know if it was successful, or if an error was encountered. +The deployment script displays the following exit codes to let you know if it was successful, or if an error was encountered.

    -
    Exit codeMeaning -
    0Success -
    1Unexpected error occurred while executing the script -
    2Error when logging to console. $logMode = 0. -
    3Error when logging to console and file. $logMode = 1. -
    4Error when logging to file. $logMode = 2. -
    5Error when logging to console and file. $logMode = unknown. -
    6The commercialID parameter is set to unknown. Modify the script. -
    7Function -CheckCommercialId: Unexpected failure. -
    8Failure to create registry key path: HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection. -
    9Error when writing CommercialId to registry. -
    10Error when writing CommercialDataOptIn to registry. -
    11Function -SetupCommercialId: Unexpected failure. -
    12Can’t connect to Microsoft – Vortex. Check your network/proxy settings. -
    13Can’t connect to Microsoft – setting. Check your network/proxy settings. -
    14Can’t connect to Microsoft – compatexchange. Check your network/proxy settings. -
    15Error connecting to Microsoft. Check your network/proxy settings. -
    16Machine requires reboot. -
    17Function -CheckRebootRequired: Unexpected failure. -
    18Outdated compatibility update KB package. Update via Windows Update/WSUS. -
    19This machine doesn’t have the proper KBs installed. Make sure you have recent compatibility update KB downloaded. -
    20Error writing RequestAllAppraiserVersions registry key. -
    21Function – SetRequestAllAppraiserVersions: Unexpected failure. -
    22RunAppraiser failed with unexpected exception. -
    23Error finding system variable %WINDIR%. -
    24SetIEDataOptIn failed when writing IEDataOptIn to registry. -
    25SetIEDataOptIn failed with unexpected exception. -
    26The operating system is LTSB SKU. The script does not support LTSB SKUs. -
    27The operating system is Server SKU. The script does not support Server SKUs. +
    Exit codeMeaningSuggested fix +
    0Success +
    1Unexpected error occurred while executing the script The files in the deployment script are likely corrupted. Download the [latest script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) from the download center and try again. +
    2Error when logging to console. $logMode = 0. Try changing the $logMode value to **1** and try again. +
    3Error when logging to console and file. $logMode = 1.Verify that you have set the logPath parameter in RunConfig.bat, and that the configuration script has access to connect and write to this location. +
    4Error when logging to file. $logMode = 2.Verify that you have set the logPath parameter in RunConfig.bat, and that the configuration script has access to connect and write to this location. +
    5Error when logging to console and file. $logMode = unknown.Verify that you have set the logPath parameter in RunConfig.bat, and that the configuration script has access to connect and write to this location. +
    6The commercialID parameter is set to unknown. Modify the script.Set the value for CommercialID in runconfig.bat file. +
    8Failure to create registry key path: HKLM:\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\DataCollection. Verify that the configuration script has access to this location. +
    9Error when writing CommercialId to registry.Verify that the configuration script has access to this location. +
    10Error when writing CommercialDataOptIn to registry.Verify that the configuration script has access to this location. +
    11Function -SetupCommercialId: Unexpected failure.Verify that the configuration script has access to this location. +
    12Can’t connect to Microsoft – Vortex. Check your network/proxy settings.Verify that the required endpoints are whitelisted correctly. +
    13Can’t connect to Microsoft – setting. Verify that the required endpoints are whitelisted correctly. +
    14Can’t connect to Microsoft – compatexchange. Verify that the required endpoints are whitelisted. +
    15Error connecting to Microsoft:Unexpected failure. +
    16Machine requires reboot. The reboot is required to complete the installation of the compatibility update and related KBs. Reboot the machine before running the Upgrade Analytics deployment script. +
    17Function -CheckRebootRequired: Unexpected failure.The reboot is required to complete the installation of the compatibility update and related KBs. Reboot the machine before running the Upgrade Analytics deployment script. +
    18Outdated compatibility update KB package. Update via Windows Update/WSUS. +The configuration script detected a version of the Compatibility update module that is older than the minimum required to correctly collect the data required by Upgrade Analytics solution. Use the latest version of the Compatibility update for Windows 7 SP1/Windows 8.1. +
    19The compatibility update failed with unexpected exception. The files in the deployment script are likely corrupted. Download the [latest script](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) from the download center and try again. +
    20Error writing RequestAllAppraiserVersions registry key. This registry key is required for data collection to work correctly. Verify that the configuration script has access to this location. +
    21Function – SetRequestAllAppraiserVersions: Unexpected failure.This registry key is required for data collection to work correctly. Verify that the configuration script has access to this location. +
    22RunAppraiser failed with unexpected exception. Check %windir%\System32 directory for a file called CompatTelRunner.exe. If the file does not exist, reinstall the required compatibility updates which include this file, and check your organization group policy to make sure it does not remove this file. +
    23Error finding system variable %WINDIR%. Make sure that this environment variable is available on the machine. +
    24SetIEDataOptIn failed when writing IEDataOptIn to registry. Verify that the deployment script in running in a context that has access to the registry key. +
    25SetIEDataOptIn failed with unexpected exception. The files in the deployment script are likely corrupted. Download the latest script from the [download center](https://go.microsoft.com/fwlink/?LinkID=822966&clcid=0x409) and try again. +
    26The operating system is Server or LTSB SKU. The script does not support Server or LTSB SKUs. +
    27The script is not running under System account.The Upgrade Analytics configuration script must be run as system. +
    28Could not create log file at the specified logPath. Make sure the deployment script has access to the location specified in the logPath parameter. +
    29 Connectivity check failed for proxy authentication. Install the cumulative updates on the machine and enable the `DisableEnterpriseAuthProxy` authentication proxy setting. The `DisableEnterpriseAuthProxy` setting is enabled by default for Windows 7. For Windows 8.1 machines, set the `DisableEnterpriseAuthProxy` setting to **0** (not disabled). For more information on authentication proxy support, see [this blog post](https://go.microsoft.com/fwlink/?linkid=838688). +
    30Connectivity check failed. Registry key property `DisableEnterpriseAuthProxy` is not enabled. The `DisableEnterpriseAuthProxy` setting is enabled by default for Windows 7. For Windows 8.1 machines, set the `DisableEnterpriseAuthProxy` setting to **0** (not disabled). For more information on authentication proxy support, see [this blog post](https://go.microsoft.com/fwlink/?linkid=838688). +
    31There is more than one instance of the Upgrade Analytics data collector running at the same time on this machine. Use the Windows Task Manager to check if CompatTelRunner.exe is running, and wait until it has completed to rerun the script. +**The Upgrade Analytics task is scheduled to run daily at 3 a.m.**
    @@ -206,4 +211,3 @@ The deployment script displays the following exit codes to let you know if it wa ## Seeing data from computers in Upgrade Analytics After data is sent from computers to Microsoft, it generally takes 48 hours for the data to populate in Upgrade Analytics. The compatibility update KB takes several minutes to run. If the KB does not get a chance to finish running or if the computers are inaccessible (turned off or sleeping for example), data will take longer to populate in Upgrade Analytics. For this reason, you can expect most your computers to be populated in OMS in about 1-2 weeks after deploying the KB and configuration to user computers. - diff --git a/windows/deploy/upgrade-analytics-requirements.md b/windows/deploy/upgrade-analytics-requirements.md index 3d55cd49a6..0dd920f998 100644 --- a/windows/deploy/upgrade-analytics-requirements.md +++ b/windows/deploy/upgrade-analytics-requirements.md @@ -1,4 +1,4 @@ ---- +--- title: Upgrade Analytics requirements (Windows 10) description: Provides requirements for Upgrade Analytics. ms.prod: w10 @@ -43,6 +43,8 @@ See [Windows 7, Windows 8, and Windows 8.1 appraiser telemetry events and fields `https://v10.vortex-win.data.microsoft.com/collect/v1` +`https://vortex-win.data.microsoft.com/health/keepalive` + `https://settings-win.data.microsoft.com/settings` `https://vortex.data.microsoft.com/health/keepalive` diff --git a/windows/deploy/windows-10-poc-mdt.md b/windows/deploy/windows-10-poc-mdt.md new file mode 100644 index 0000000000..057d16d9f6 --- /dev/null +++ b/windows/deploy/windows-10-poc-mdt.md @@ -0,0 +1,634 @@ +--- +title: Step by step - Deploy Windows 10 in a test lab using MDT +description: Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit (MDT) +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: deploy +author: greg-lindsay +--- + + +# Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit + +**Applies to** + +- Windows 10 + +**Important**: This guide leverages the proof of concept (PoC) environment configured using procedures in the following guide: +- [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md) + +Please complete all steps in the prerequisite guide before starting this guide. This guide requires about 5 hours to complete, but can require less time or more time depending on the speed of the Hyper-V host. After completing the current guide, also see the companion guide: +- [Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) + +The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): +- **DC1**: A contoso.com domain controller, DNS server, and DHCP server. +- **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. +- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been shadow-copied from a physical computer on your corporate network. + +>This guide uses the Hyper-V server role. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. + +## In this guide + +This guide provides instructions to install and configure the Microsoft Deployment Toolkit (MDT) to deploy a Windows 10 image. + +Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. + +
    + + +
    TopicDescriptionTime + +
    [About MDT](#about-mdt)A high-level overview of the Microsoft Deployment Toolkit (MDT).Informational +
    [Install MDT](#install-mdt)Download and install MDT.40 minutes +
    [Create a deployment share and reference image](#create-a-deployment-share-and-reference-image)A reference image is created to serve as the template for deploying new images.90 minutes +
    [Deploy a Windows 10 image using MDT](#deploy-a-windows-10-image-using-mdt)The reference image is deployed in the PoC environment.60 minutes +
    [Refresh a computer with Windows 10](#refresh-a-computer-with-windows-10)Export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings.60 minutes +
    [Replace a computer with Windows 10](#replace-a-computer-with-windows-10)Back up an existing client computer, then restore this backup to a new computer.60 minutes +
    [Troubleshooting logs, events, and utilities](#troubleshooting-logs-events-and-utilities)Log locations and troubleshooting hints.Informational +
    + +
    + +## About MDT + +MDT performs deployments by using the Lite Touch Installation (LTI), Zero Touch Installation (ZTI), and User-Driven Installation (UDI) deployment methods. +- LTI is the deployment method used in the current guide, requiring only MDT and performed with a minimum amount of user interaction. +- ZTI is fully automated, requiring no user interaction and is performed using MDT and System Center Configuration Manager. After completing the steps in the current guide, see [Step by step: Deploy Windows 10 in a test lab using System Center Configuration Manager](windows-10-poc-sc-config-mgr.md) to use the ZTI deployment method in the PoC environment. +- UDI requires manual intervention to respond to installation prompts such as machine name, password and language settings. UDI requires MDT and System Center Configuration Manager. + +## Install MDT + +1. On SRV1, temporarily disable IE Enhanced Security Configuration for Administrators by typing the following commands at an elevated Windows PowerShell prompt: + + ``` + $AdminKey = "HKLM:\SOFTWARE\Microsoft\Active Setup\Installed Components\{A509B1A7-37EF-4b3f-8CFC-4F3A74704073}" + Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 0 + Stop-Process -Name Explorer + ``` +2. Download and install the 64-bit version of [Microsoft Deployment Toolkit (MDT)](https://www.microsoft.com/en-us/download/details.aspx?id=54259) on SRV1 using the default options. As of the writing of this guide, the latest version of MDT was 8443. + +3. Download and install the latest [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/en-us/windows/hardware/windows-assessment-deployment-kit) on SRV1 using the default installation settings. The current version is the ADK for Windows 10, version 1607. Installation might require several minutes to acquire all components. + +3. If desired, re-enable IE Enhanced Security Configuration: + + ``` + Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 1 + Stop-Process -Name Explorer + ``` + +## Create a deployment share and reference image + +A reference image serves as the foundation for Windows 10 devices in your organization. + +1. In [Step by step guide: Configure a test lab to deploy Windows 10](windows-10-poc.md), the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: + + ``` + Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\w10-enterprise.iso + ``` +2. On SRV1, verify that the Windows Enterprise installation DVD is mounted as drive letter D. + +3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. + +4. To enable quick access to the application, right-click **Deployment Workbench** on the taskbar and then click **Pin this program to the taskbar**. + +5. In the Deployment Workbench console, right-click **Deployment Shares** and select **New Deployment Share**. + +6. Use the following settings for the New Deployment Share Wizard: + - Deployment share path: **C:\MDTBuildLab**
    + - Share name: **MDTBuildLab$**
    + - Deployment share description: **MDT build lab**
    + - Options: click **Next** to accept the default
    + - Summary: click **Next**
    + - Progress: settings will be applied
    + - Confirmation: click **Finish** + + +7. Expand the **Deployment Shares** node, and then expand **MDT build lab**. + +8. Right-click the **Operating Systems** node, and then click **New Folder**. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. + +9. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. + +10. Use the following settings for the Import Operating System Wizard: + - OS Type: **Full set of source files**
    + - Source: **D:\\**
    + - Destination: **W10Ent_x64**
    + - Summary: click **Next** + - Progress: wait for files to be copied + - Confirmation: click **Finish** + + >For purposes of this test lab, we will only add the prerequisite .NET Framework feature. Commerical applications (ex: Microsoft Office) will not be added to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. + +11. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: + - Task sequence ID: **REFW10X64-001**
    + - Task sequence name: **Windows 10 Enterprise x64 Default Image**
    + - Task sequence comments: **Reference Build**
    + - Template: **Standard Client Task Sequence** + - Select OS: click **Windows 10 Enterprise Evaluation in W10Ent_x64 install.wim** + - Specify Product Key: **Do not specify a product key at this time** + - Full Name: **Contoso** + - Organization: **Contoso** + - Internet Explorer home page: **http://www.contoso.com** + - Admin Password: **Do not specify an Administrator password at this time** + - Summary: click **Next** + - Confirmation: click **Finish** + + +12. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. + +13. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. + +14. On the Properties tab of the group that was created in the previous step, change the Name from **New Group** to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. Click another location in the window to see the name change. + +15. Click the **Custom Tasks (Pre-Windows Update)** group again, click **Add**, point to **Roles**, and then click **Install Roles and Features**. + +16. Under **Select the roles and features that should be installed**, select **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** and then click **Apply**. + +17. Enable Windows Update in the task sequence by clicking the **Windows Update (Post-Application Installation)** step, clicking the **Options** tab, and clearing the **Disable this step** checkbox. + + >Note: Since we are not installing applications in this test lab, there is no need to enable the Windows Update Pre-Application Installation step. However, you should enable this step if you are also installing applications. + +18. Click **OK** to complete editing the task sequence. + +19. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click **MDT build lab (C:\MDTBuildLab)** and click **Properties**, and then click the **Rules** tab. + +20. Replace the default rules with the following text: + + ``` + [Settings] + Priority=Default + + [Default] + _SMSTSORGNAME=Contoso + UserDataLocation=NONE + DoCapture=YES + OSInstall=Y + AdminPassword=pass@word1 + TimeZoneName=Pacific Standard Time + OSDComputername=#Left("PC-%SerialNumber%",7)# + JoinWorkgroup=WORKGROUP + HideShell=YES + FinishAction=SHUTDOWN + DoNotCreateExtraPartition=YES + ApplyGPOPack=NO + SkipAdminPassword=YES + SkipProductKey=YES + SkipComputerName=YES + SkipDomainMembership=YES + SkipUserData=YES + SkipLocaleSelection=YES + SkipTaskSequence=NO + SkipTimeZone=YES + SkipApplications=YES + SkipBitLocker=YES + SkipSummary=YES + SkipRoles=YES + SkipCapture=NO + SkipFinalSummary=NO + ``` + +21. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: + + ``` + [Settings] + Priority=Default + + [Default] + DeployRoot=\\SRV1\MDTBuildLab$ + UserDomain=CONTOSO + UserID=MDT_BA + UserPassword=pass@word1 + SkipBDDWelcome=YES + ``` + +22. Click **OK** to complete the configuration of the deployment share. + +23. Right-click **MDT build lab (C:\MDTBuildLab)** and then click **Update Deployment Share**. + +24. Accept all default values in the Update Deployment Share Wizard by clicking **Next** twice. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. + +25. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). + + >Hint: To copy the file, right-click the **LiteTouchPE_x86.iso** file and click **Copy** on SRV1, then open the **c:\VHD** folder on the Hyper-V host, right-click inside the folder and click **Paste**. + +26. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: + +
    +
    +
    +    New-VM REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB
    +    Set-VMMemory REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20
    +    Set-VMDvdDrive REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso
    +    Start-VM REFW10X64-001
    +    vmconnect localhost REFW10X64-001
    +	
    +
    + + The VM will require a few minutes to prepare devices and boot from the LiteTouchPE_x86.iso file. + +27. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. + +28. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes, and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. + + Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: + + - Install the Windows 10 Enterprise operating system. + - Install added applications, roles, and features. + - Update the operating system using Windows Update (or WSUS if optionally specified). + - Stage Windows PE on the local disk. + - Run System Preparation (Sysprep) and reboot into Windows PE. + - Capture the installation to a Windows Imaging (WIM) file. + - Turn off the virtual machine.

    + + This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on your deployment server (SRV1). The file name is **REFW10X64-001.wim**. + +## Deploy a Windows 10 image using MDT + +This procedure will demonstrate how to deploy the reference image to the PoC environment using MDT. + +1. On SRV1, open the MDT Deployment Workbench console, right-click **Deployment Shares**, and then click **New Deployment Share**. Use the following values in the New Deployment Share Wizard: + - **Deployment share path**: C:\MDTProd + - **Share name**: MDTProd$ + - **Deployment share description**: MDT Production + - **Options**: accept the default + + +2. Click **Next**, verify the new deployment share was added successfully, then click **Finish**. + +3. In the Deployment Workbench console, expand the MDT Production deployment share, right-click **Operating Systems**, and then click **New Folder**. Name the new folder **Windows 10** and complete the wizard using default values. + +4. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. + +5. On the **OS Type** page, choose **Custom image file** and then click **Next**. + +6. On the Image page, browse to the **C:\MDTBuildLab\Captures\REFW10X64-001.wim** file created in the previous procedure, click **Open**, and then click **Next**. + +7. On the Setup page, select **Copy Windows 7, Windows Server 2008 R2, or later setup files from the specified path**. + +8. Under **Setup source directory**, browse to **C:\MDTBuildLab\Operating Systems\W10Ent_x64** click **OK** and then click **Next**. + +9. On the Destination page, accept the default Destination directory name of **REFW10X64-001**, click **Next** twice, wait for the import process to complete, and then click **Finish**. + +10. In the **Operating Systems** > **Windows 10** node, double-click the operating system that was added to view its properties. Change the operating system name to **Windows 10 Enterprise x64 Custom Image** and then click **OK**. See the following example: + + ![custom image](images/image.png) + + +### Create the deployment task sequence + +1. Using the Deployment Workbench, right-click **Task Sequences** under the **MDT Production** node, click **New Folder** and create a folder with the name: **Windows 10**. + +2. Right-click the **Windows 10** folder created in the previous step, and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: + - Task sequence ID: W10-X64-001 + - Task sequence name: Windows 10 Enterprise x64 Custom Image + - Task sequence comments: Production Image + - Select Template: Standard Client Task Sequence + - Select OS: Windows 10 Enterprise x64 Custom Image + - Specify Product Key: Do not specify a product key at this time + - Full Name: Contoso + - Organization: Contoso + - Internet Explorer home page: http://www.contoso.com + - Admin Password: pass@word1 + +### Configure the MDT production deployment share + +1. On SRV1, open an elevated Windows PowerShell prompt and type the following commands: + + ``` + copy-item "C:\Program Files\Microsoft Deployment Toolkit\Templates\Bootstrap.ini" C:\MDTProd\Control\Bootstrap.ini -Force + copy-item "C:\Program Files\Microsoft Deployment Toolkit\Templates\CustomSettings.ini" C:\MDTProd\Control\CustomSettings.ini -Force + ``` +2. In the Deployment Workbench console on SRV1, right-click the **MDT Production** deployment share and then click **Properties**. + +3. Click the **Rules** tab and replace the rules with the following text (don't click OK yet): + + ``` + [Settings] + Priority=Default + + [Default] + _SMSTSORGNAME=Contoso + OSInstall=YES + UserDataLocation=AUTO + TimeZoneName=Pacific Standard Time + OSDComputername=#Left("PC-%SerialNumber%",7)# + AdminPassword=pass@word1 + JoinDomain=contoso.com + DomainAdmin=administrator + DomainAdminDomain=CONTOSO + DomainAdminPassword=pass@word1 + ScanStateArgs=/ue:*\* /ui:CONTOSO\* + USMTMigFiles001=MigApp.xml + USMTMigFiles002=MigUser.xml + HideShell=YES + ApplyGPOPack=NO + SkipAppsOnUpgrade=NO + SkipAdminPassword=YES + SkipProductKey=YES + SkipComputerName=YES + SkipDomainMembership=YES + SkipUserData=YES + SkipLocaleSelection=YES + SkipTaskSequence=NO + SkipTimeZone=YES + SkipApplications=NO + SkipBitLocker=YES + SkipSummary=YES + SkipCapture=YES + SkipFinalSummary=NO + EventService=http://SRV1:9800 + ``` + **Note**: The contents of the Rules tab are added to c:\MDTProd\Control\CustomSettings.ini. + + >In this example a **MachineObjectOU** entry is not provided. Normally this entry describes the specific OU where new client computer objects are created in Active Directory. However, for the purposes of this test lab clients are added to the default computers OU, which requires that this parameter be unspecified. + + If desired, edit the follow line to include or exclude other users when migrating settings. Currently, the command is set to user exclude (ue) all users except for CONTOSO users specified by the user include option (ui): + + ``` + ScanStateArgs=/ue:*\* /ui:CONTOSO\* + ``` + + For example, to migrate **all** users on the computer, replace this line with the following: + + ``` + ScanStateArgs=/all + ``` + + For more information, see [ScanState Syntax](https://technet.microsoft.com/library/cc749015.aspx). + +4. Click **Edit Bootstap.ini** and replace text in the file with the following text: + + ``` + [Settings] + Priority=Default + + [Default] + DeployRoot=\\SRV1\MDTProd$ + UserDomain=CONTOSO + UserID=MDT_BA + UserPassword=pass@word1 + SkipBDDWelcome=YES + ``` +5. Click **OK** when finished. + +### Update the deployment share + +1. Right-click the **MDT Production** deployment share and then click **Update Deployment Share**. + +2. Use the default options for the Update Deployment Share Wizard. The update process requires 5 to 10 minutes to complete. + +3. Click **Finish** when the update is complete. + +### Enable deployment monitoring + +1. In the Deployment Workbench console, right-click **MDT Production** and then click **Properties**. + +2. On the **Monitoring** tab, select the **Enable monitoring for this deployment share** checkbox, and then click **OK**. + +3. Verify the monitoring service is working as expected by opening the following link on SRV1 in Internet Explorer: [http://localhost:9800/MDTMonitorEvent/](http://localhost:9800/MDTMonitorEvent/). If you do not see "**You have created a service**" at the top of the page, see [Troubleshooting MDT 2012 Monitoring](https://blogs.technet.microsoft.com/mniehaus/2012/05/10/troubleshooting-mdt-2012-monitoring/). + +4. Close Internet Explorer. + +### Configure Windows Deployment Services + +1. Initialize Windows Deployment Services (WDS) by typing the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + WDSUTIL /Verbose /Progress /Initialize-Server /Server:SRV1 /RemInst:"C:\RemoteInstall" + WDSUTIL /Set-Server /AnswerClients:All + ``` + +2. Click **Start**, type **Windows Deployment**, and then click **Windows Deployment Services**. + +3. In the Windows Deployment Services console, expand **Servers**, expand **SRV1.contoso.com**, right-click **Boot Images**, and then click **Add Boot Image**. + +4. Browse to the **C:\MDTProd\Boot\LiteTouchPE_x64.wim** file, click **Open**, click **Next**, and accept the defaults in the Add Image Wizard. Click **Finish** to complete adding a boot image. + +### Deploy the client image + +1. Before using WDS to deploy a client image, you must temporarily disable the external network adapter on SRV1. This is just an artifact of the lab environment. In a typical deployment environment WDS would not be installed on the default gateway. + + >**Note**: Do not disable the *internal* network interface. To quickly view IP addresses and interface names configured on the VM, type **Get-NetIPAddress | ft interfacealias, ipaddress** + + Assuming the external interface is named "Ethernet 2", to disable the *external* interface on SRV1, open a Windows PowerShell prompt on SRV1 and type the following command: + + ``` + Disable-NetAdapter "Ethernet 2" -Confirm:$false + ``` + +2. Next, switch to the Hyper-V host and open an elevated Windows PowerShell prompt. Create a generation 2 VM on the Hyper-V host that will load its OS using PXE. To create this VM, type the following commands at an elevated Windows PowerShell prompt: + + ``` + New-VM –Name "PC2" –NewVHDPath "c:\vhd\pc2.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 + Set-VMMemory -VMName "PC2" -DynamicMemoryEnabled $true -MinimumBytes 720MB -MaximumBytes 2048MB -Buffer 20 + ``` + >Dynamic memory is configured on the VM to conserve resources. However, this can cause memory allocation to be reduced past what is required to install an operating system. If this happens, reset the VM and begin the OS installation task sequence immediately. This ensures the VM memory allocation is not decreased too much while it is idle. + +3. Start the new VM and connect to it: + + ``` + Start-VM PC2 + vmconnect localhost PC2 + ``` +4. When prompted, hit ENTER to start the network boot process. + +5. In the Windows Deployment Wizard, choose the **Windows 10 Enterprise x64 Custom Image** and then click **Next**. + +6. After MDT lite touch installation has started, be sure to re-enable the external network adapter on SRV1. This is needed so the client can use Windows Update after operating system installation is complete.To re-enable the external network interface, open an elevated Windows PowerShell prompt on SRV1 and type the following command: + + ``` + Enable-NetAdapter "Ethernet 2" + ``` +7. On SRV1, in the Deployment Workbench console, click on **Monitoring** and view the status of installation. Right-click **Monitoring** and click **Refresh** if no data is displayed. +8. OS installation requires about 10 minutes. When the installation is complete, the system will reboot automatically, configure devices, and install updates, requiring another 10-20 minutes. When the new client computer is finished updating, click **Finish**. You will be automatically signed in to the local computer as administrator. + + ![finish](images/deploy-finish.png) + + +This completes the demonstration of how to deploy a reference image to the network. To conserve resources, turn off the PC2 VM before starting the next section. + +## Refresh a computer with Windows 10 + +This section will demonstrate how to export user data from an existing client computer, wipe the computer, install a new operating system, and then restore user data and settings. The scenario will use PC1, a computer that was cloned from a physical device to a VM, as described in [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md). + +If the PC1 VM is not already running, then start and connect to it: + + ``` + Start-VM PC1 + vmconnect localhost PC1 + ``` + +1. Switch back to the Hyper-V host and create a checkpoint for the PC1 VM so that it can easily be reverted to its current state for troubleshooting purposes and to perform additional scenarios. Checkpoints are also known as snapshots. To create a checkpoint for the PC1 VM, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName BeginState + ``` + +2. Sign on to PC1 using the CONTOSO\Administrator account. + + >Specify **contoso\administrator** as the user name to ensure you do not sign on using the local administrator account. You must sign in with this account so that you have access to the deployment share. + +3. Open an elevated command prompt on PC1 and type the following: + + ``` + cscript \\SRV1\MDTProd$\Scripts\Litetouch.vbs + ``` + + **Note**: Litetouch.vbs must be able to create the C:\MININT directory on the local computer. + +4. Choose the **Windows 10 Enterprise x64 Custom Image** and then click **Next**. + +5. Choose **Do not back up the existing computer** and click **Next**. + + **Note**: The USMT will still back up the computer. + +6. Lite Touch Installation will perform the following actions: + - Back up user settings and data using USMT. + - Install the Windows 10 Enterprise X64 operating system. + - Update the operating system via Windows Update. + - Restore user settings and data using USMT. + + You can review the progress of installation on SRV1 by clicking on the **Monitoring** node in the deployment workbench. When OS installation is complete, the computer will restart, set up devices, and configure settings. + +7. Sign in with the CONTOSO\Administrator account and verify that all CONTOSO domain user accounts and data have been migrated to the new operating system, or other user accounts as specified [previously](#configure-the-mdt-production-deployment-share). + +8. Create another checkpoint for the PC1 VM so that you can review results of the computer refresh later. To create a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName RefreshState + ``` + +9. Restore the PC1 VM to it's previous state in preparation for the replace procedure. To restore a checkpoint, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Restore-VMSnapshot -VMName PC1 -Name BeginState -Confirm:$false + Start-VM PC1 + vmconnect localhost PC1 + ``` + +10. Sign in to PC1 using the contoso\administrator account. + +## Replace a computer with Windows 10 + +At a high level, the computer replace process consists of:
    +- A special replace task sequence that runs the USMT backup and an optional full Window Imaging (WIM) backup.
    +- A standard OS deployment on a new computer. At the end of the deployment, the USMT backup from the old computer is restored. + +### Create a backup-only task sequence + +1. On SRV1, in the deployment workbench console, right-click the MDT Production deployment share, click **Properties**, click the **Rules** tab, and change the line **SkipUserData=YES** to **SkipUserData=NO**. +2. Click **OK**, right-click **MDT Production**, click **Update Deployment Share** and accept the default options in the wizard to update the share. +3. Type the following commands at an elevated Windows PowerShell prompt on SRV1: + + ``` + New-Item -Path C:\MigData -ItemType directory + New-SmbShare -Name MigData$ -Path C:\MigData -ChangeAccess EVERYONE + icacls C:\MigData /grant '"contoso\administrator":(OI)(CI)(M)' + ``` +4. On SRV1 in the deployment workbench, under **MDT Production**, right-click the **Task Sequences** node, and click **New Folder**. +5. Name the new folder **Other**, and complete the wizard using default options. +6. Right-click the **Other** folder and then click **New Task Sequence**. Use the following values in the wizard: + - **Task sequence ID**: REPLACE-001 + - **Task sequence name**: Backup Only Task Sequence + - **Task sequence comments**: Run USMT to back up user data and settings + - **Template**: Standard Client Replace Task Sequence (note: this is not the default template) +7. Accept defaults for the rest of the wizard and then click **Finish**. The replace task sequence will skip OS selection and settings. +8. Open the new task sequence that was created and review it. Note the type of capture and backup tasks that are present. Click **OK** when you are finished reviewing the task sequence. + +### Run the backup-only task sequence + +1. If you are not already signed on to PC1 as **contoso\administrator**, sign in using this account. To verify the currently signed in account, type the following command at an elevated command prompt: + + ``` + whoami + ``` +2. To ensure a clean environment before running the backup task sequence, type the following at an elevated Windows PowerShell prompt on PC1: + + ``` + Remove-Item c:\minint -recurse + Remove-Item c:\_SMSTaskSequence -recurse + Restart-Computer + ``` +2. Sign in to PC1 using the contoso\administrator account, and then type the following at an elevated command prompt: + + ``` + cscript \\SRV1\MDTProd$\Scripts\Litetouch.vbs + ``` +3. Complete the deployment wizard using the following: + - **Task Sequence**: Backup Only Task Sequence + - **User Data**: Specify a location: **\\SRV1\MigData$\PC1** + - **Computer Backup**: Do not back up the existing computer. +4. While the task sequence is running on PC1, open the deployment workbench console on SRV1 and click the **Monitoring* node. Press F5 to refresh the console, and view the status of current tasks. +5. Verify that **The user state capture was completed successfully** is displayed, and click **Finish** when the capture is complete. +6. On SRV1, verify that the file **USMT.MIG** was created in the **C:\MigData\PC1\USMT** directory. See the following example: + + ``` + PS C:\> dir C:\MigData\PC1\USMT + + Directory: C:\MigData\PC1\USMT + + Mode LastWriteTime Length Name + ---- ------------- ------ ---- + -a--- 9/6/2016 11:34 AM 14248685 USMT.MIG + ``` +### Deploy PC3 + +1. On the Hyper-V host, type the following commands at an elevated Windows PowerShell prompt: + + ``` + New-VM –Name "PC3" –NewVHDPath "c:\vhd\pc3.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 + Set-VMMemory -VMName "PC3" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 + ``` +2. Temporarily disable the external network adapter on SRV1 again, so that we can successfully boot PC3 from WDS. To disable the adapter, type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + Disable-NetAdapter "Ethernet 2" -Confirm:$false + ``` +3. Start and connect to PC3 by typing the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Start-VM PC3 + vmconnect localhost PC3 + ``` +4. When prompted, press ENTER for network boot. + +6. On PC3, ue the following settings for the Windows Deployment Wizard: + - **Task Sequence**: Windows 10 Enterprise x64 Custom Image + - **Move Data and Settings**: Do not move user data and settings + - **User Data (Restore)**: Specify a location: **\\SRV1\MigData$\PC1** +5. When OS installation has started on PC1, re-enable the external network adapter on SRV1 by typing the following command on SRV1: + + ``` + Enable-NetAdapter "Ethernet 2" + ``` +7. Setup will install the Windows 10 Enterprise operating system, update via Windows Update, and restore the user settings and data from PC1. + +8. When PC3 has completed installing the OS, sign in to PC3 using the contoso\administrator account. When the PC completes updating, click **Finish**. + +9. Verify that settings have been migrated from PC1, and then shut down PC3 in preparation for the next procedure. + +## Troubleshooting logs, events, and utilities + +Deployment logs are available on the client computer in the following locations: +- Before the image is applied: X:\MININT\SMSOSD\OSDLOGS +- After the system drive has been formatted: C:\MININT\SMSOSD\OSDLOGS +- After deployment: %WINDIR%\TEMP\DeploymentLogs + +You can review WDS events in Event Viewer at: **Applications and Services Logs > Microsoft > Windows > Deployment-Services-Diagnostics**. By default, only the **Admin** and **Operational** logs are enabled. To enable other logs, right-click the log and then click **Enable Log**. + +Tools for viewing log files, and to assist with troubleshooting are available in the [System Center 2012 R2 Configuration Manager Toolkit](https://www.microsoft.com/en-us/download/details.aspx?id=50012) + +Also see [Resolve Windows 10 upgrade errors](resolve-windows-10-upgrade-errors.md) for detailed troubleshooting information. + +## Related Topics + +[Microsoft Deployment Toolkit](https://technet.microsoft.com/en-US/windows/dn475741)
    +[Prepare for deployment with MDT 2013](prepare-for-windows-deployment-with-mdt-2013.md) + +  + + + + + diff --git a/windows/deploy/windows-10-poc-sc-config-mgr.md b/windows/deploy/windows-10-poc-sc-config-mgr.md new file mode 100644 index 0000000000..d9278a15c5 --- /dev/null +++ b/windows/deploy/windows-10-poc-sc-config-mgr.md @@ -0,0 +1,1040 @@ +--- +title: Deploy Windows 10 using System Center Configuration Manager +description: Deploy Windows 10 in a test lab using System Center Configuration Manager +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: deploy +author: greg-lindsay +--- + +# Deploy Windows 10 in a test lab using System Center Configuration Manager + +**Applies to** + +- Windows 10 + +**Important**: This guide leverages the proof of concept (PoC) environment, and some settings that are configured in the following guides: +- [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) +- [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) + +Please complete all steps in these guides before attempting the procedures in this guide. If you wish to skip the Windows 10 deployment procedures in the MDT guide and move directly to this guide, you must at least install MDT and the Windows ADK before performing procedures in this guide. All steps in the first guide are required before attempting the procedures in this guide. + +The PoC environment is a virtual network running on Hyper-V with three virtual machines (VMs): +- **DC1**: A contoso.com domain controller, DNS server, and DHCP server. +- **SRV1**: A dual-homed contoso.com domain member server, DNS server, and default gateway providing NAT service for the PoC network. +- **PC1**: A contoso.com member computer running Windows 7, Windows 8, or Windows 8.1 that has been cloned from a physical computer on your corporate network for testing purposes. + +This guide leverages the Hyper-V server role to perform procedures. If you do not complete all steps in a single session, consider using [checkpoints](https://technet.microsoft.com/library/dn818483.aspx) and [saved states](https://technet.microsoft.com/library/ee247418.aspx) to pause, resume, or restart your work. + +>Multiple features and services are installed on SRV1 in this guide. This is not a typical installation, and is only done to set up a lab environment with a bare minimum of resources. However, if less than 4 GB of RAM is allocated to SRV1 in the Hyper-V console, some procedures will be extremely slow to complete. If resources are limited on the Hyper-V host, consider reducing RAM allocation on DC1 and PC1, and then increasing the RAM allocation on SRV1. You can adjust RAM allocation for a VM by right-clicking the VM in the Hyper-V Manager console, clicking **Settings**, clicking **Memory**, and modifying the value next to **Maximum RAM**. + +## In this guide + +This guide provides end-to-end instructions to install and configure System Center Configuration Manager, and use it to deploy a Windows 10 image. Depending on the speed of your Hyper-V host, the procedures in this guide will require 6-10 hours to complete. + +Topics and procedures in this guide are summarized in the following table. An estimate of the time required to complete each procedure is also provided. Time required to complete procedures will vary depending on the resources available to the Hyper-V host and assigned to VMs, such as processor speed, memory allocation, disk speed, and network speed. + +
    + + +
    TopicDescriptionTime + +
    [Install prerequisites](#install-prerequisites)Install prerequisite Windows Server roles and features, download, install and configure SQL Server, configure firewall rules, and install the Windows ADK.60 minutes +
    [Install System Center Configuration Manager](#install-system-center-configuration-manager)Download System Center Configuration Manager, configure prerequisites, and install the package.45 minutes +
    [Download MDOP and install DaRT](#download-mdop-and-install-dart)Download the Microsoft Desktop Optimization Pack 2015 and install DaRT 10.15 minutes +
    [Prepare for Zero Touch installation](#prepare-for-zero-touch-installation)Prerequisite procedures to support Zero Touch installation.60 minutes +
    [Create a boot image for Configuration Manager](#create-a-boot-image-for-configuration-manager)Use the MDT wizard to create the boot image in Configuration Manager.20 minutes +
    [Create a Windows 10 reference image](#create-a-windows-10-reference-image)This procedure can be skipped if it was done previously, otherwise instructions are provided to create a reference image.0-60 minutes +
    [Add a Windows 10 operating system image](#add-a-windows-10-operating-system-image)Add a Windows 10 operating system image and distribute it.10 minutes +
    [Create a task sequence](#Create a task sequence)Create a Configuration Manager task sequence with MDT integration using the MDT wizard15 minutes +
    [Finalize the operating system configuration](#finalize-the-operating-system-configuration)Enable monitoring, configure rules, and distribute content.30 minutes +
    [Deploy Windows 10 using PXE and Configuration Manager](#deploy-windows-10-using-pxe-and-configuration-manager)Deploy Windows 10 using Configuration Manager deployment packages and task sequences.60 minutes +
    [Refresh a client with Windows 10 using Configuration Manager](#refresh-a-client-with-windows-10-using-configuration-manager)Use a task sequence to refresh a client with Windows 10 using Configuration Manager and MDT90 minutes +
    [Replace a client with Windows 10 using Configuration Manager](#replace-a-client-with-windows-10-using-configuration-manager)Replace a client computer with Windows 10 using Configuration Manager.90 minutes + +
    + +
    + +## Install prerequisites + +1. Before installing System Center Configuration Manager, we must install prerequisite services and features. Type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + Install-WindowsFeature Web-Windows-Auth,Web-ISAPI-Ext,Web-Metabase,Web-WMI,BITS,RDC,NET-Framework-Features,Web-Asp-Net,Web-Asp-Net45,NET-HTTP-Activation,NET-Non-HTTP-Activ + ``` + + >If the request to add features fails, retry the installation by typing the command again. + +2. Download [SQL Server 2012 SP2](https://www.microsoft.com/en-us/evalcenter/evaluate-sql-server-2014-sp2) from the Microsoft Evaluation Center as an .ISO file on the Hyper-V host computer. Save the file to the **C:\VHD** directory. +3. When you have downloaded the file **SQLServer2014SP2-FullSlipstream-x64-ENU.iso** and placed it in the C:\VHD directory, type the following command at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\SQLServer2014SP2-FullSlipstream-x64-ENU.iso + ``` + + This command mounts the .ISO file to drive D on SRV1. + +4. Type the following command at an elevated Windows PowerShell prompt on SRV1 to install SQL Server 2012 SP2: + + ``` + D:\setup.exe /q /ACTION=Install /ERRORREPORTING="False" /FEATURES=SQLENGINE,RS,IS,SSMS,TOOLS,ADV_SSMS,CONN /INSTANCENAME=MSSQLSERVER /INSTANCEDIR="C:\Program Files\Microsoft SQL Server" /SQLSVCACCOUNT="NT AUTHORITY\System" /SQLSYSADMINACCOUNTS="BUILTIN\ADMINISTRATORS" /SQLSVCSTARTUPTYPE=Automatic /AGTSVCACCOUNT="NT AUTHORITY\SYSTEM" /AGTSVCSTARTUPTYPE=Automatic /RSSVCACCOUNT="NT AUTHORITY\System" /RSSVCSTARTUPTYPE=Automatic /ISSVCACCOUNT="NT AUTHORITY\System" /ISSVCSTARTUPTYPE=Disabled /ASCOLLATION="Latin1_General_CI_AS" /SQLCOLLATION="SQL_Latin1_General_CP1_CI_AS" /TCPENABLED="1" /NPENABLED="1" /IAcceptSQLServerLicenseTerms + ``` + Installation will take several minutes. When installation is complete, the following output will be displayed: + + ``` + Microsoft (R) SQL Server 2014 12.00.5000.00 + Copyright (c) Microsoft Corporation. All rights reserved. + + Microsoft (R) .NET Framework CasPol 2.0.50727.7905 + Copyright (c) Microsoft Corporation. All rights reserved. + + Success + Microsoft (R) .NET Framework CasPol 2.0.50727.7905 + Copyright (c) Microsoft Corporation. All rights reserved. + + Success + One or more affected files have operations pending. + You should restart your computer to complete this process. + PS C:\> + ``` +5. Type the following commands at an elevated Windows PowerShell prompt on SRV1: + + ``` + New-NetFirewallRule -DisplayName “SQL Server” -Direction Inbound –Protocol TCP –LocalPort 1433 -Action allow + New-NetFirewallRule -DisplayName “SQL Admin Connection” -Direction Inbound –Protocol TCP –LocalPort 1434 -Action allow + New-NetFirewallRule -DisplayName “SQL Database Management” -Direction Inbound –Protocol UDP –LocalPort 1434 -Action allow + New-NetFirewallRule -DisplayName “SQL Service Broker” -Direction Inbound –Protocol TCP –LocalPort 4022 -Action allow + New-NetFirewallRule -DisplayName “SQL Debugger/RPC” -Direction Inbound –Protocol TCP –LocalPort 135 -Action allow + ``` + +7. Download and install the latest [Windows Assessment and Deployment Kit (ADK)](https://developer.microsoft.com/en-us/windows/hardware/windows-assessment-deployment-kit) on SRV1 using the default installation settings. The current version is the ADK for Windows 10, version 1607. Installation might require several minutes to acquire all components. + +## Install System Center Configuration Manager + +1. On SRV1, temporarily disable IE Enhanced Security Configuration for Administrators by typing the following commands at an elevated Windows PowerShell prompt: + + ``` + $AdminKey = "HKLM:\SOFTWARE\Microsoft\Active Setup\Installed Components\{A509B1A7-37EF-4b3f-8CFC-4F3A74704073}" + Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 0 + Stop-Process -Name Explorer + ``` + +2. Download [System Center Configuration Manager and Endpoint Protection](https://www.microsoft.com/en-us/evalcenter/evaluate-system-center-configuration-manager-and-endpoint-protection) on SRV1 (download the executable file anywhere on SRV1), double-click the file, enter **C:\configmgr** for **Unzip to folder**, and click **Unzip**. The C:\configmgr directory will be automatically created. Click **OK** and then close the **WinZip Self-Extractor** dialog box when finished. + +3. Before starting the installation, verify that WMI is working on SRV1. See the following examples. Verify that **Running** is displayed under **Status** and **True** is displayed next to **TcpTestSucceeded**: + + ``` + Get-Service Winmgmt + + Status Name DisplayName + ------ ---- ----------- + Running Winmgmt Windows Management Instrumentation + + Test-NetConnection -ComputerName 192.168.0.2 -Port 135 -InformationLevel Detailed + + ComputerName : 192.168.0.2 + RemoteAddress : 192.168.0.2 + RemotePort : 135 + AllNameResolutionResults : + MatchingIPsecRules : + NetworkIsolationContext : Internet + InterfaceAlias : Ethernet + SourceAddress : 192.168.0.2 + NetRoute (NextHop) : 0.0.0.0 + PingSucceeded : True + PingReplyDetails (RTT) : 0 ms + TcpTestSucceeded : True + ``` + You can also verify WMI using the WMI console by typing **wmimgmt.msc**, right-clicking **WMI Control (Local)** in the console tree, and then clicking **Properties**. + + If the WMI service is not started, attempt to start it or reboot the computer. If WMI is running but errors are present, see [WMIDiag](https://blogs.technet.microsoft.com/askperf/2015/05/12/wmidiag-2-2-is-here/) for troubleshooting information. + +4. To extend the Active Directory schema, type the following command at an elevated Windows PowerShell prompt: + + ``` + cmd /c C:\configmgr\SMSSETUP\BIN\X64\extadsch.exe + ``` + +5. Temporarily switch to the DC1 VM, and type the following command at an elevated command prompt on DC1: + + ``` + adsiedit.msc + ``` + +6. Right-click **ADSI Edit**, click **Connect to**, select **Default** under **Computer** and then click **OK**. +7. Expand **Default naming context**>**DC=contoso,DC=com**, right-click **CN=System**, point to **New**, and then click **Object**. +8. Click **container** and then click **Next**. +9. Next to **Value**, type **System Management**, click **Next**, and then click **Finish**. +10. Right-click **CN=system Management** and then click **Properties**. +11. On the **Security** tab, click **Add**, click **Object Types**, select **Computers**, and click **OK**. +12. Under **Enter the object names to select**, type **SRV1** and click **OK**. +13. The **SRV1** computer account will be highlighted, select **Allow** next to **Full control**. +14. Click **Advanced**, click **SRV1 (CONTOSO\SRV1$)** and click **Edit**. +15. Next to **Applies to**, choose **This object and all descendant objects**, and then click **OK** three times. +16. Close the ADSI Edit console and switch back to SRV1. +17. To start Configuration Manager installation, type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + cmd /c C:\configmgr\SMSSETUP\BIN\X64\Setup.exe + ``` +18. Provide the following in the System Center Configuration Manager Setup Wizard: + - **Before You Begin**: Read the text and click *Next*. + - **Getting Started**: Choose **Install a Configuration Manager primary site** and select the **Use typical installation options for a stand-alone primary site** checkbox. + - Click **Yes** in response to the popup window. + - **Product Key**: Choose **Install the evaluation edition of this Product**. + - **Microsoft Software License Terms**: Read the terms and then select the **I accept these license terms** checkbox. + - **Prerequisite Licenses**: Review license terms and select all three checkboxes on the page. + - **Prerequisite Downloads**: Choose **Download required files** and enter **c:\windows\temp** next to **Path**. + - **Site and Installation Settings**: Site code: **PS1**, Site name: **Contoso**. + - use default settings for all other options + - **Usage Data**: Read the text and click **Next**. + - **Service Connection Point Setup**: Accept the default settings (SRV1.contoso.com is automatically added under Select a server to use). + - **Settings Summary**: Review settings and click **Next**. + - **Prerequisite Check**: No failures should be listed. Ignore any warnings and click **Begin Install**. + + >There should be at most three warnings present: WSUS on site server, configuration for SQL Server memory usage, and SQL Server process memory allocation. These warnings can safely be ignored. + + Depending on the speed of the Hyper-V host and resources allocated to SRV1, installation can require approximately one hour. Click **Close** when installation is complete. + +19. If desired, re-enable IE Enhanced Security Configuration at this time on SRV1: + + ``` + Set-ItemProperty -Path $AdminKey -Name “IsInstalled” -Value 1 + Stop-Process -Name Explorer + ``` + +## Download MDOP and install DaRT + +1. Download the [Microsoft Desktop Optimization Pack 2015](https://msdn.microsoft.com/en-us/subscriptions/downloads/#ProductFamilyId=597) to the Hyper-V host using an MSDN subscription. Download the .ISO file (mu_microsoft_desktop_optimization_pack_2015_x86_x64_dvd_5975282.iso) to the C:\VHD directory on the Hyper-V host. + +2. Type the following command at an elevated Windows PowerShell prompt on the Hyper-V host to mount the MDOP file on SRV1: + + ``` + Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\mu_microsoft_desktop_optimization_pack_2015_x86_x64_dvd_5975282.iso + ``` +3. Type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + cmd /c "D:\DaRT\DaRT 10\Installers\en-us\x64\MSDaRT100.msi" + ``` +4. Install DaRT 10 using default settings. +5. Type the following commands at an elevated Windows PowerShell prompt on SRV1: + + ``` + Copy-Item "C:\Program Files\Microsoft DaRT\v10\Toolsx64.cab" -Destination "C:\Program Files\Microsoft Deployment Toolkit\Templates\Distribution\Tools\x64" + Copy-Item "C:\Program Files\Microsoft DaRT\v10\Toolsx86.cab" -Destination "C:\Program Files\Microsoft Deployment Toolkit\Templates\Distribution\Tools\x86" + ``` + +## Prepare for Zero Touch installation + +This section contains several procedures to support Zero Touch installation with System Center Configuration Manager. + +### Create a folder structure + +1. Type the following commands at a Windows PowerShell prompt on SRV1: + + ``` + New-Item -ItemType Directory -Path "C:Sources\OSD\Boot" + New-Item -ItemType Directory -Path "C:Sources\OSD\OS" + New-Item -ItemType Directory -Path "C:\Sources\OSD\Settings" + New-Item -ItemType Directory -Path "C:\Sources\OSD\Branding" + New-Item -ItemType Directory -Path "C:\Sources\OSD\MDT" + New-Item -ItemType Directory -Path "C:\Logs" + New-SmbShare -Name Sources$ -Path C:\Sources -ChangeAccess EVERYONE + New-SmbShare -Name Logs$ -Path C:\Logs -ChangeAccess EVERYONE + ``` + +### Enable MDT ConfigMgr integration + +1. On SRV1, click **Start**, type **configmgr**, and then click **Configure ConfigMgr Integration**. +2. Type **PS1** next to **Site code**, and then click **Next**. +3. Verify **The process completed successfully** is displayed, and then click **Finish**. + +### Configure client settings + +1. On SRV1, click **Start**, type **configuration manager**, right-click **Configuration Manager Console**, and then click **Pin to Taskbar**. +2. Click **Desktop**, and then launch the Configuration Manager console from the taskbar. +3. If the console notifies you that an update is available, click **OK**. It is not necessary to install updates to complete this lab. +4. In the console tree, open the **Administration** workspace (in the lower left corner) and click **Client Settings**. +5. In the display pane, double-click **Default Client Settings**. +6. Click **Computer Agent**, next to **Organization name displayed in Software Center** type **Contoso**, and then click **OK**. + +### Configure the network access account + +1. In the Administration workspace, expand **Site Configuration** and click **Sites**. +2. On the **Home** ribbon at the top of the console window, click **Configure Site Components** and then click **Software Distribution**. +3. On the **Network Access Account** tab, choose **Specify the account that accesses network locations**. +4. Click the yellow starburst and then click **New Account**. +5. Click **Browse** and then under **Enter the object name to select**, type **CM_NAA** and click **OK**. +6. Next to **Password** and **Confirm Password**, type **pass@word1**, and then click **OK** twice. + +### Configure a boundary group + +1. In the Administration workspace, expand **Hierary Configuration**, right-click **Boundaries** and then click **Create Boundary**. +2. Next to **Description**, type **PS1**, next to **Type** choose **Active Directory Site**, and then click **Browse**. +3. Choose **Default-First-Site-Name** and then click **OK** twice. +4. In the Administration workspace, right-click **Boundary Groups** and then click **Create Boundary Group**. +5. Next to **Name**, type **PS1 Site Assignment and Content Location**, click **Add**, select the **Default-First-Site-Name** boundary and then click **OK**. +6. On the **References** tab in the **Create Boundary Group** window select the **Use this boundary group for site assignment** checkbox. +7. Click **Add**, select the **\\\SRV1.contoso.com** checkbox, and then click **OK** twice. + +### Enable PXE on the distribution point + +1. Deterime the MAC address of the internal network adapter on SRV1. To determine this, type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + (Get-NetAdapter "Ethernet").MacAddress + ``` + >If the internal network adapter, assigned an IP address of 192.168.0.2, is not named "Ethernet" then replace the name "Ethernet" in the previous command with the name of this network adapter. You can review the names of network adapters and the IP addresses assigned to them by typing **ipconfig**. + +2. In the System Center Configuration Manager console, in the **Administration** workspace, click **Distribution Points**. +3. In the display pane, right-click **SRV1.CONTOSO.COM** and then click **Properties**. +4. On the PXE tab, select the following settings: + - Enable PXE support for clients. Click **Yes** in the popup that appears. + - Allow this distribution point to respond to incoming PXE requests + - Enable unknown computer support. Click **OK** in the popup that appears. + - Require a password when computers use PXE + - Password and Confirm password: pass@word1 + - Respond to PXE requests on specific network interfaces: Click the yellow starburst and then enter the MAC address determined in the first step of this procedure. + + See the following example: + + Config Mgr PXE + +5. Click **OK**. +6. Type the following command at an elevated Windows PowerShell prompt on SRV1, and verify that the files displayed are present: + + ``` + cmd /c dir /b C:\RemoteInstall\SMSBoot\x64 + + abortpxe.com + bootmgfw.efi + bootmgr.exe + pxeboot.com + pxeboot.n12 + wdsmgfw.efi + wdsnbp.com + ``` + >If these files are not present, type the following command at an elevated Windows PowerShell prompt to open the Configuration Manager Trace Log Tool. In the tool, click **File**, click **Open**, and then open the **distmgr.log** file. If errors are present, they will be highlighted in red: + + ``` + Invoke-Item 'C:\Program Files\Microsoft Configuration Manager\tools\cmtrace.exe' + ``` + + The log file will updated continuously while Configuration Manager is running. Wait for Configuration Manager to repair any issues that are present, and periodically re-check that the files are present in the C:\RemoteInstall\SMSBoot\x64 directory. Close the Configuration Manager Trace Log Tool when done. You will see the following line in distmgr.log that indicates the C:\RemoteInstall directory is being populated with necessary files: + + Running: WDSUTIL.exe /Initialize-Server /REMINST:"C:\RemoteInstall" + + Once the files are present in C:\RemoteInstall, you can close the cmtrace tool. + +### Create a branding image file + +1. If you have a bitmap (.BMP) image for suitable use as a branding image, copy it to the C:\Sources\OSD\Branding folder on SRV1. Otherwise, use the following step to copy a simple branding image. +2. Type the following command at an elevated Windows PowerShell prompt: + + ``` + copy "C:\ProgramData\Microsoft\User Account Pictures\user.bmp" "C:\Sources\OSD\Branding\contoso.bmp" + ``` + >You can open C:\Sources\OSD\Branding\contoso.bmp in MSPaint.exe if desired to customize this image. + + +## Create a boot image for Configuration Manager + +1. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Boot Images**, and then click **Create Boot Image using MDT**. +2. On the Package Source page, under **Package source folder to be created (UNC Path):**, type **\\\SRV1\Sources$\OSD\Boot\Zero Touch WinPE x64**, and then click **Next**. + - The Zero Touch WinPE x64 folder does not yet exist. The folder will be created later. +3. On the General Settings page, type **Zero Touch WinPE x64** next to **Name**, and click **Next**. +4. On the Options page, under **Platform** choose **x64**, and click **Next**. +5. On the Components page, in addition to the default selection of **Microsoft Data Access Components (MDAC/ADO) support**, select the **Microsoft Diagnostics and Recovery Toolkit (DaRT)** checkbox, and click **Next**. +6. On the Customization page, select the **Use a custom background bitmap file** checkbox, and under **UNC path**, type or browse to **\\\SRV1\Sources$\OSD\Branding\contoso.bmp**, and then click **Next** twice. It will take a few minutes to generate the boot image. +7. Click **Finish**. +8. In the console display pane, right-click the **Zero Touch WinPE x64** boot image, and then click **Distribute Content**. +9. In the Distribute Content Wizard, click **Next**, click **Add** and select **Distribution Point**, select the **SRV1.CONTOSO.COM** checkbox, click **OK**, click **Next** twice, and then click **Close**. +10. Use the CMTrace application to view the **distmgr.log** file again and verify that the boot image has been distributed. To open CMTrace, type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + Invoke-Item 'C:\Program Files\Microsoft Configuration Manager\tools\cmtrace.exe' + ``` + >In the trace tool, click **Tools** on the menu and choose **Find**. Search for "**STATMSG: ID=2301**". For example: + + ``` + STATMSG: ID=2301 SEV=I LEV=M SOURCE="SMS Server" COMP="SMS_DISTRIBUTION_MANAGER" SYS=SRV1.CONTOSO.COM SITE=PS1 PID=2476 TID=4636 GMTDATE=Wed Sep 14 22:11:09.363 2016 ISTR0="Configuration Manager Client Upgrade Package" ISTR1="PS100003" ISTR2="" ISTR3="" ISTR4="" ISTR5="" ISTR6="" ISTR7="" ISTR8="" ISTR9="" NUMATTRS=1 AID0=400 AVAL0="PS100003" SMS_DISTRIBUTION_MANAGER 9/14/2016 3:11:09 PM 4636 (0x121C) + ``` +11. You can also review status by clicking the **Zero Touch WinPE x64** image, and then clicking **Content Status** under **Related Objects** in the bottom right-hand corner of the console, or by entering **\Monitoring\Overview\Distribution Status\Content Status** on the location bar in the console. Doublt-click **Zero Touch WinPE x64** under **Content Status** in the console tree and verify that a status of **Successfully distributed content** is displayed on the **Success** tab. +12. In the **Software Library** workspace, double-click **Zero Touch WinPE x64** and then click the **Data Source** tab. +13. Select the **Deploy this boot image from the PXE-enabled distribution point** checkbox, and click **OK**. +14. Review the distmgr.log file again for "**STATMSG: ID=2301**" and verify that there are three folders under **C:\RemoteInstall\SMSImages** with boot images. See the following example: + + ``` + cmd /c dir /s /b C:\RemoteInstall\SMSImages + + C:\RemoteInstall\SMSImages\PS100004 + C:\RemoteInstall\SMSImages\PS100005 + C:\RemoteInstall\SMSImages\PS100006 + C:\RemoteInstall\SMSImages\PS100004\boot.PS100004.wim + C:\RemoteInstall\SMSImages\PS100005\boot.PS100005.wim + C:\RemoteInstall\SMSImages\PS100006\WinPE.PS100006.wim + ``` + + >The first two images (*.wim files) are default boot images. The third is the new boot image with DaRT. + +## Create a Windows 10 reference image + +If you have already completed steps in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) then you have already created a Windows 10 reference image. In this case, skip to the next procedure in this guide: [Add a Windows 10 operating system image](#add-a-windows-10-operating-system-image). If you have not yet created a Windows 10 reference image, complete the steps in this section. + +1. In [Step by step guide: Deploy Windows 10 in a test lab](windows-10-poc.md) the Windows 10 Enterprise .iso file was saved to the c:\VHD directory as **c:\VHD\w10-enterprise.iso**. The first step in creating a deployment share is to mount this file on SRV1. To mount the Windows 10 Enterprise DVD on SRV1, open an elevated Windows PowerShell prompt on the Hyper-V host computer and type the following command: + + ``` + Set-VMDvdDrive -VMName SRV1 -Path c:\VHD\w10-enterprise.iso + ``` +2. Verify that the Windows Enterprise installation DVD is mounted on SRV1 as drive letter D. + +3. The Windows 10 Enterprise installation files will be used to create a deployment share on SRV1 using the MDT deployment workbench. To open the deployment workbench, click **Start**, type **deployment**, and then click **Deployment Workbench**. + +4. In the Deployment Workbench console, right-click **Deployment Shares** and select **New Deployment Share**. + +5. Use the following settings for the New Deployment Share Wizard: + - Deployment share path: **C:\MDTBuildLab**
    + - Share name: **MDTBuildLab$**
    + - Deployment share description: **MDT build lab**
    + - Options: click **Next** to accept the default
    + - Summary: click **Next**
    + - Progress: settings will be applied
    + - Confirmation: click **Finish** + +6. Expand the **Deployment Shares** node, and then expand **MDT build lab**. + +7. Right-click the **Operating Systems** node, and then click **New Folder**. Name the new folder **Windows 10**. Complete the wizard using default values and click **Finish**. + +7. Right-click the **Windows 10** folder created in the previous step, and then click **Import Operating System**. + +8. Use the following settings for the Import Operating System Wizard: + - OS Type: **Full set of source files**
    + - Source: **D:\\**
    + - Destination: **W10Ent_x64**
    + - Summary: click **Next** + - Confirmation: click **Finish** + +9. For purposes of this test lab, we will not add applications, such as Microsoft Office, to the deployment share. For information about adding applications, see the [Add applications](https://technet.microsoft.com/en-us/itpro/windows/deploy/create-a-windows-10-reference-image#sec03) section of the [Create a Windows 10 reference image](create-a-windows-10-reference-image.md) topic in the TechNet library. + +10. The next step is to create a task sequence to reference the operating system that was imported. To create a task sequence, right-click the **Task Sequences** node under **MDT Build Lab** and then click **New Task Sequence**. Use the following settings for the New Task Sequence Wizard: + - Task sequence ID: **REFW10X64-001**
    + - Task sequence name: **Windows 10 Enterprise x64 Default Image**
    + - Task sequence comments: **Reference Build**
    + - Template: **Standard Client Task Sequence** + - Select OS: click **Windows 10 Enterprise Evaluation in W10Ent_x64 install.wim** + - Specify Product Key: **Do not specify a product key at this time** + - Full Name: **Contoso** + - Organization: **Contoso** + - Internet Explorer home page: **http://www.contoso.com** + - Admin Password: **Do not specify an Administrator password at this time** + - Summary: click **Next** + - Confirmation: click **Finish** + +11. Edit the task sequence to add the Microsoft NET Framework 3.5, which is required by many applications. To edit the task sequence, double-click **Windows 10 Enterprise x64 Default Image** that was created in the previous step. + +12. Click the **Task Sequence** tab. Under **State Restore** click **Tatto** to highlight it, then click **Add** and choose **New Group**. A new group will be added under Tattoo. + +13. On the Properties tab of the group that was created in the previous step, change the Name from New Group to **Custom Tasks (Pre-Windows Update)** and then click **Apply**. To see the name change, click **Tattoo**, then click the new group again. + +14. Click the **Custom Tasks (Pre-Windows Update)** group again, click **Add**, point to **Roles**, and then click **Install Roles and Features**. + +15. Under **Select the roles and features that should be installed**, select **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** and then click **Apply**. + +16. Enable Windows Update in the task sequence by clicking the **Windows Update (Post-Application Installation)** step, clicking the **Options** tab, and clearing the **Disable this step** checkbox. + >Note: Since we are not installing applications in this test lab, there is no need to enable the Windows Update Pre-Application Installation step. However, you should enable this step if you are also installing applications. + +17. Click **OK** to complete editing the task sequence. + +18. The next step is to configure the MDT deployment share rules. To configure rules in the Deployment Workbench, right-click MDT build lab (C:\MDTBuildLab) and click **Properties**, and then click the **Rules** tab. + +19. Replace the default rules with the following text: + + ``` + [Settings] + Priority=Default + + [Default] + _SMSTSORGNAME=Contoso + UserDataLocation=NONE + DoCapture=YES + OSInstall=Y + AdminPassword=pass@word1 + TimeZoneName=Pacific Standard TimeZoneName + OSDComputername=#Left("PC-%SerialNumber%",7)# + JoinWorkgroup=WORKGROUP + HideShell=YES + FinishAction=SHUTDOWN + DoNotCreateExtraPartition=YES + ApplyGPOPack=NO + SkipAdminPassword=YES + SkipProductKey=YES + SkipComputerName=YES + SkipDomainMembership=YES + SkipUserData=YES + SkipLocaleSelection=YES + SkipTaskSequence=NO + SkipTimeZone=YES + SkipApplications=YES + SkipBitLocker=YES + SkipSummary=YES + SkipRoles=YES + SkipCapture=NO + SkipFinalSummary=NO + ``` + +20. Click **Apply** and then click **Edit Bootstrap.ini**. Replace the contents of the Bootstrap.ini file with the following text, and save the file: + + ``` + [Settings] + Priority=Default + + [Default] + DeployRoot=\\SRV1\MDTBuildLab$ + UserDomain=CONTOSO + UserID=MDT_BA + UserPassword=pass@word1 + SkipBDDWelcome=YES + ``` + +21. Click **OK** to complete the configuration of the deployment share. + +22. Right-click **MDT build lab (C:\MDTBuildLab)** and then click **Update Deployment Share**. + +23. Accept all default values in the Update Deployment Share Wizard by clicking **Next**. The update process will take 5 to 10 minutes. When it has completed, click **Finish**. + +24. Copy **c:\MDTBuildLab\Boot\LiteTouchPE_x86.iso** on SRV1 to the **c:\VHD** directory on the Hyper-V host computer. Note that in MDT, the x86 boot image can deploy both x86 and x64 operating systems, except on computers based on Unified Extensible Firmware Interface (UEFI). + + >Hint: Top copy the file, right-click the **LiteTouchPE_x86.iso** file and click **Copy** on SRV1, then open the **c:\VHD** folder on the Hyper-V host, right-click inside the folder and click **Paste**. + +25. Open a Windows PowerShell prompt on the Hyper-V host computer and type the following commands: + + ``` + New-VM –Name REFW10X64-001 -SwitchName poc-internal -NewVHDPath "c:\VHD\REFW10X64-001.vhdx" -NewVHDSizeBytes 60GB + Set-VMMemory -VMName REFW10X64-001 -DynamicMemoryEnabled $true -MinimumBytes 1024MB -MaximumBytes 1024MB -Buffer 20 + Set-VMDvdDrive -VMName REFW10X64-001 -Path c:\VHD\LiteTouchPE_x86.iso + Start-VM REFW10X64-001 + vmconnect localhost REFW10X64-001 + ``` +26. In the Windows Deployment Wizard, select **Windows 10 Enterprise x64 Default Image**, and then click **Next**. + +27. Accept the default values on the Capture Image page, and click **Next**. Operating system installation will complete after 5 to 10 minutes and then the VM will reboot automatically. Allow the system to boot normally (do not press a key). The process is fully automated. + + Additional system restarts will occur to complete updating and preparing the operating system. Setup will complete the following procedures: + + - Install the Windows 10 Enterprise operating system. + - Install added applications, roles, and features. + - Update the operating system using Windows Update (or WSUS if optionally specified). + - Stage Windows PE on the local disk. + - Run System Preparation (Sysprep) and reboot into Windows PE. + - Capture the installation to a Windows Imaging (WIM) file. + - Turn off the virtual machine. + + This step requires from 30 minutes to 2 hours, depending on the speed of the Hyper-V host and your network's download speed. After some time, you will have a Windows 10 Enterprise x64 image that is fully patched and has run through Sysprep. The image is located in the C:\MDTBuildLab\Captures folder on SRV1. The file name is **REFW10X64-001.wim**. + +## Add a Windows 10 operating system image + +1. Type the following commands at an elevated Windows PowerShell prompt on SRV1: + + ``` + New-Item -ItemType Directory -Path "C:Sources\OSD\OS\Windows 10 Enterprise x64" + cmd /c copy /z "C:\MDTBuildLab\Captures\REFW10X64-001.wim" "C:\Sources\OSD\OS\Windows 10 Enterprise x64" + ``` + +2. In the Configuration Manager console, in the **Software Library** workspace, expand **Operating Systems**, right-click **Operating System Images**, and then click **Add Operating System Image**. + +3. On the Data Source page, under **Path:**, type or browse to **\\\SRV1\Sources$\OSD\OS\Windows 10 Enterprise x64\REFW10X64-001.wim**, and click **Next**. + +4. On the General page, next to **Name:**, type **Windows 10 Enterprise x64**, click **Next** twice, and then click **Close**. + +5. Distribute the operating system image to the SRV1 distribution point by right-clicking the **Windows 10 Enterprise x64** operating system image and then clicking **Distribute Content**. + +6. In the Distribute Content Wizard, click **Next**, click **Add**, click **Distribution Point**, add the **SRV1.CONTOSO.COM** distribution point, click **OK**, click **Next** twice and then click **Close**. + +7. Enter **\Monitoring\Overview\Distribution Status\Content Status** on the location bar, click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. Processing of the image on the site server can take several minutes. + + >If content distribution is not successful, verify that sufficient disk space is available. + +## Create a task sequence + +>Complete this section slowly. There are a large number of similar settings from which to choose. + +1. In the Configuration Manager console, in the **Software Library** workspace expand **Operating Systems**, right-click **Task Sequences**, and then click **Create MDT Task Sequence**. + +2. On the Choose Template page, select the **Client Task Sequence** template and click **Next**. + +3. On the General page, type **Windows 10 Enterprise x64** under **Task sequence name:** and then click **Next**. + +4. On the Details page, enter the following settings:
    + - Join a domain: contoso.com
    + - Account: click **Set**
    + - User name: contoso\CM_JD
    + - Password: pass@word1
    + - Confirm password: pass@word1
    + - Click **OK**
    + - Windows Settings
    + - User name: Contoso
    + - Organization name: Contoso
    + - Product key: \
    + - Administrator Account: Enable the account and specify the local administrator password
    + - Password: pass@word1
    + - Confirm password: pass@word1
    + - Click Next
    + +5. On the Capture Settings page, accept the default settings and click **Next**. + +6. On the Boot Image page, browse and select the **Zero Touch WinPE x64** boot image package and then click **Next**. + +7. On the MDT Package page, select **Create a new Microsoft Deployment Toolkit Files package**, under **Package source folder to be created (UNC Path):**, type **\\\SRV1\Sources$\OSD\MDT\MDT 2013**, and then click **Next**. + +8. On the MDT Details page, next to **Name:** type **MDT 2013** and then click **Next**. + +9. On the OS Image page, browse and select the **Windows 10 Enterprise x64** package, and then click **Next**. + +10. On the Deployment Method page, accept the default settings for **Zero Touch Installation** and click **Next**. + +11. On the Client Package page, browse and select the **Microsoft Corporation Configuration Manager Client package** and then click **Next**. + +12. On the USMT Package page, browse and select the **Microsoft Corporation User State Migration Tool for Windows 8 10.0.14393.0** package, and then click **Next**. + +13. On the Settings Package page, select **Create a new settings package**, and under **Package source folder to be created (UNC Path):**, type **\\\SRV1\Sources$\OSD\Settings\Windows 10 x64 Settings**, and then click **Next**. + +14. On the Settings Details page, next to **Name:**, type **Windows 10 x64 Settings**, and click **Next**. + +15. On the Sysprep Package page, click **Next** twice. + +16. On the Confirmation page, click **Finish**. + +### Edit the task sequence + +1. In the Configuration Manager console, in the **Software Library** workspace, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Edit**. + +2. Scroll down to the **Install** group and click the **Set Variable for Drive Letter** action. + +3. Change the Value under **OSDPreserveDriveLetter** from **False** to **True**, and then click **Apply**. + +4. In the **State Restore** group, click the **Set Status 5** action, click **Add** in the upper left corner, point to **User State**, and click **Request State Store**. This adds a new action immediately after **Set Status 5**. + +5. Configure the **Request State Store** action that was just added with the following settings:
    + - Request state storage location to: **Restore state from another computer**
    + - Select the **If computer account fails to connect to state store, use the Network Access account** checkbox.
    + - Options tab: Select the **Continue on error** checkbox.
    + - Add Condition: **Task Sequence Variable**:
    + - Variable: **USMTLOCAL**
    + - Condition: **not equals**
    + - Value: **True**
    + - Click **OK**.
    + - Click **Apply**
    . + +6. In the **State Restore** group, click **Restore User State**, click **Add**, point to **User State**, and click **Release State Store**. + +7. Configure the **Release State Store** action that was just added with the following settings:
    + - Options tab: Select the **Continue on error** checkbox.
    + - Add Condition: **Task Sequence Variable**:
    + - Variable: **USMTLOCAL**
    + - Condition: **not equals**
    + - Value: **True**
    + - Click **OK**.
    + - Click **OK**
    . + + +## Finalize the operating system configuration + +>If you completed all procedures in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md) then the MDT deployment share is already present on SRV1. In this case, skip the first four steps below and begin with step 5 to edit CustomSettings.ini. + +1. In the MDT deployment workbench on SRV1, right-click **Deployment Shares** and then click **New Deployment Share**. + +2. Use the following settings for the New Deployment Share Wizard: + - Deployment share path: **C:\MDTProduction**
    + - Share name: **MDTProduction$**
    + - Deployment share description: **MDT Production**
    + - Options: click **Next** to accept the default
    + - Summary: click **Next**
    + - Progress: settings will be applied
    + - Confirmation: click **Finish** + +3. Right-click the **MDT Production** deployment share, and click **Properties**. + +4. Click the **Monitoring** tab, select the **Enable monitoring for this deployment share** checkbox, and then click **OK**. + +5. Type the following command at an elevated Windows PowerShell prompt on SRV1: + + ``` + notepad "C:\Sources\OSD\Settings\Windows 10 x64 Settings\CustomSettings.ini" + ``` +6. Replace the contents of the file with the following text, and then save the file: + + ``` + [Settings] + Priority=Default + Properties=OSDMigrateConfigFiles,OSDMigrateMode + + [Default] + DoCapture=NO + ComputerBackupLocation=NONE + OSDMigrateMode=Advanced + OSDMigrateAdditionalCaptureOptions=/ue:*\* /ui:CONTOSO\* + OSDMigrateConfigFiles=Miguser.xml,Migapp.xml + SLSHARE=\\SRV1\Logs$ + EventService=http://SRV1:9800 + ApplyGPOPack=NO + ``` +7. Return to the Configuration Manager console, and in the Software Library workspace, expand **Application Management**, click **Packages**, right-click **Windows 10 x64 Settings**, and then click **Update Distribution Points**. Click **OK** in the popup that appears. + +8. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Distribute Content**. + +9. In the Distribute Content Wizard, click **Next** twice, click **Add**, click **Distribution Point**, select the **SRV1.CONTOSO.COM** distribution point, click **OK**, click **Next** twice and then click **Close**. + +10. Enter **\Monitoring\Overview\Distribution Status\Content Status\Windows 10 Enterprise x64** on the location bar, double-click **Windows 10 Enterprise x64**, and monitor the status of content distribution until it is successful and no longer in progress. Refresh the view with the F5 key or by right-clicking **Windows 10 Enterprise x64** and clicking **Refresh**. + +### Create a deployment for the task sequence + +1. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64**, and then click **Deploy**. + +2. On the General page, next to **Collection**, click **Browse**, select the **All Unknown Computers** collection, click **OK**, and then click **Next**. + +3. On the Deployment Settings page, use the following settings:
    + - Purpose: **Available**
    + - Make available to the following: **Only media and PXE**
    + - Click **Next**.
    +4. Click **Next** five times to accept defaults on the Scheduling, User Experience, Alerts, and Distribution Points pages. + +5. Click **Close**. + +## Deploy Windows 10 using PXE and Configuration Manager + +1. Type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + New-VM –Name "PC4" –NewVHDPath "c:\vhd\pc4.vhdx" -NewVHDSizeBytes 40GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 + Set-VMMemory -VMName "PC4" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 + Start-VM PC4 + vmconnect localhost PC4 + ``` + +2. Press ENTER when prompted to start the network boot service. + +3. In the Task Sequence Wizard, provide the password: **pass@word1**, and then click **Next**. + +4. Before you click Next in the Task Sequence Wizard, press the **F8** key. A command prompt will open. + +5. At the command prompt, type **explorer.exe** and review the Windows PE file structure. + +6. The smsts.log file is critical for troubleshooting any installation problems that might be encountered. Depending on the deployment phase, the smsts.log file is created in different locations: + - X:\windows\temp\SMSTSLog\smsts.log before disks are formatted. + - x:\smstslog\smsts.log after disks are formatted. + - c:\_SMSTaskSequence\Logs\Smstslog\smsts.log before the System Center Configuration Manager client is installed. + - c:\windows\ccm\logs\Smstslog\smsts.log after the System Center Configuration Manager client is installed. + - c:\windows\ccm\logs\smsts.log when the task sequence is complete. + + Note: If a reboot is pending on the client, the reboot will be blocked as long as the command window is open. + +7. In the explorer window, click **Tools** and then click **Map Network Drive**. + +8. Do not map a network drive at this time. If you need to save the smsts.log file, you can use this method to save the file to a location on SRV1. + +9. Close the Map Network Drive window, the Explorer window, and the command prompt. + +10. The **Windows 10 Enterprise x64** task sequence is selected in the Task Sequenc Wizard. Click **Next** to continue with the deployment. + +11. The task sequence will require several minutes to complete. You can monitor progress of the task sequence using the MDT Deployment Workbench under Deployment Shares > MDTProduction > Monitoring. The task sequence will: + - Install Windows 10 + - Install the Configuration Manager client and hotfix + - Join the computer to the contoso.com domain + - Install any applications that were specified in the reference image + +12. When Windows 10 installation has completed, sign in to PC4 using the **contoso\administrator** account. + +13. Right-click **Start**, click **Run**, type **control appwiz.cpl**, press ENTER, click Turn Windows features on or off, and verify that **.NET Framework 3.5 (includes .NET 2.0 and 3.0)** is installed. This is a feature included in the reference image. + +14. Shut down the PC4 VM. + +## Refresh a client with Windows 10 using Configuration Manager + +>Before starting this section, you can delete computer objects from Active Directory that were created as part of previous deployment procedures. Use the Active Directory Users and Computers console to remove stale entries under contoto.com\Computers, but **do not delete the computer account (hostname) for PC1**. There should be at least two computer accounts present in the contoso.com\Computers container: one for SRV1, and one for the hostname of PC1. It is not required to delete the stale entries, this is only done to remove clutter. + +### Install the Configuration Manager client on PC1 + +1. Verify that PC1 is in its original state, which was saved as a checkpoint and then restored in [Deploy Windows 10 in a test lab using Microsoft Deployment Toolkit](windows-10-poc-mdt.md). + +2. If a PC1 checkpoint has not already been saved, then save a checkpoint by typing the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName BeginState + ``` +3. On SRV1, in the Configuration Manager console, in the Administration workspace, expand **Hierarcy Configuration** and click on **Discovery Methods**. +4. Double-click **Active Directory System Discovery** and on the **General** tab select the **Enable Active Directory System Discovery** checkbox. +5. Click the yellow starburst, click **Browse**, select **contoso\Computers**, and then click **OK** three times. +6. When a popup dialog box asks if you want to run full discovery, click **Yes**. +7. In the Assets and Compliance workspace, expand **Devices** and click **All Systems**. Verify that a computer account for SRV1 and PC1 are displayed. See the following example (GREGLIN-PC1 is the hostname of PC1 in this example): + + ![assets](images/sccm-assets.png) + + >If you only see the **Devices** parent node, you can add and view device collections in the tree by clicking **Device Collections** and then double-clicking a device collection. + + The **Client** column indicates that the Configuration Manager client is not currently installed. This procedure will be carried out next. + +8. Sign in to PC1 using the contoso\administrator account and type the following at an elevated command prompt to remove any pre-existing client configuration, if it exists: + + ``` + sc stop ccmsetup + "\\SRV1\c$\Program Files\Microsoft Configuration Manager\Client\CCMSetup.exe" /Uninstall + ``` + >If PC1 still has Configuration Manager registry settings that were applied by Group Policy, startup scripts, or other policies in its previous domain, these might not all be removed by CCMSetup /Uninstall and can cause problems with installation or registration of the client in its new environment. It might be necessary to manually remove these settings if they are present. For more information, see [Manual removal of the SCCM client](https://blogs.technet.microsoft.com/michaelgriswold/2013/01/02/manual-removal-of-the-sccm-client/). + +9. On PC1, temporarily stop Windows Update from queuing items for download and clear all BITS jobs from the queue: + + ``` + net stop wuauserv + net stop BITS + ``` + + Verify that both services were stopped successfully, then type the following at an elevated command prompt: + + ``` + del "%ALLUSERSPROFILE%\Application Data\Microsoft\Network\Downloader\qmgr*.dat" + net start BITSexit + bitsadmin /list /allusers + ``` + + Verify that BITSAdmin displays 0 jobs. + +10. To install the Configuration Manager client as a standalone process, type the following at an elevated command prompt: + + ``` + "\\SRV1\c$\Program Files\Microsoft Configuration Manager\Client\CCMSetup.exe" /mp:SRV1.contoso.com /logon SMSSITECODE=PS1 + ``` +11. On PC1, using file explorer, open the **C:\Windows\ccmsetup** directory. During client installation, files will be downloaded here. +12. Installation progress will be captured in the file: **c:\windows\ccmsetup\logs\ccmsetup.log**. You can periodically open this file in notepad, or you can type the following command at an elevated Windows PowerShell prompt to monitor installation progress: + + ``` + Get-Content -Path c:\windows\ccmsetup\logs\ccmsetup.log -Wait + ``` + + Installation might require several minutes, and display of the log file will appear to hang while some applications are installed. This is normal. When setup is complete, verify that **CcmSetup is existing with return code 0** is displayed on the last line of the ccmsetup.log file and then press **CTRL-C** to break out of the Get-Content operation. A return code of 0 indicates that installation was successful and you should now see a directory created at **C:\Windows\CCM** that contains files used in registration of the client with its site. + +13. On PC1, open the Configuration Manager control panel applet by typing the following command: + + ``` + control smscfgrc + ``` + +14. Click the **Site** tab and click **Find Site**. The client will report that it has found the PS1 site. See the following example: + + ![site](images/sccm-site.png) + + If the client is not able to find the PS1 site, review any error messages that are displayed in **C:\Windows\CCM\Logs\ClientIDManagerStartup.log** and **LocationServices.log**. + +15. On SRV1, in the Assets and Compliance workspace, click **All Desktop and Server Clients** and verify that the computer account for PC1 is displayed here with **Yes** and **Active** in the **Client** and **Client Activity** columns, respectively. You might have to refresh the view and wait few minutes for the client to appear here. See the following example: + + ![client](images/sccm-client.png) + + >It might take several minutes for the client to fully register with the site and complete a client check. When it is complete you will see a green check mark over the client icon as shown above. + +### Create a device collection and deployment + +1. On SRV1, in the Configuration Manager console, in the Asset and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. + +2. Use the following settings in the **Create Device Collection Wizard**: + - General > Name: **Install Windows 10 Enterprise x64**
    + - General > Limiting collection: **All Systems**
    + - Membership Rules > Add Rule: **Direct Rule**
    + - The **Create Direct Membership Rule Wizard** opens, click **Next**
    + - Search for Resources > Resource class: **System Resource**
    + - Search for Resources > Attribute name: **Name**
    + - Search for Resources > Value: **%**
    + - Select Resources > Value: Select the computername associated with the PC1 VM
    + - Click **Next** twice and then click **Close** in both windows. + +3. Double-click the Install Windows 10 Enterprise x64 device collection and verify that the PC1 computer account is displayed. + +4. In the Software Library workspace, expand **Operating Systems**, click **Task Sequences**, right-click **Windows 10 Enterprise x64** and then click **Deploy**. + +5. Use the following settings in the Deploy Sofware wizard: + - General > Collection: Click Browse and select **Install Windows 10 Enterprise x64**
    + - Deployment Settings > Purpose: **Available**
    + - Deployment Settings > Make available to the following: **Configuration Manager clients, media and PXE**
    + - Scheduling > Click **Next**
    + - User Experience > Click **Next**
    + - Alerts > Click **Next**
    + - Distribution Points > Click **Next**
    + - Summary > Click **Next**
    + - Verify that the wizard completed successfully and then click **Close** + +6. **Important** Before initiating a computer refresh, save a checkpoint for all three computers: PC1, SRV1, and DC1. This ensures that we can restore all computers, including Active Directory and the Configuration Manager client status to the pre-Windows 10 installation state prior to running the replace procedure. To save checkpoints, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name PC1 -SnapshotName cm-start + Checkpoint-VM -Name SRV1 -SnapshotName cm-start + Checkpoint-VM -Name DC1 -SnapshotName cm-start + ``` + +### Initiate the computer refresh + +1. On SRV1, in the Assets and Compliance workspace, click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. +2. Right-click the computer account for PC1, point to **Client Notification**, click **Download Computer Policy**, and click **OK** in the popup dialog box. +3. On PC1, in the notification area, click **New sofware is available** and then click **Open Sofware Center**. +4. In the Sofware Center, click **Operating Systems**, click **Windows 10 Enterprise x64**, click **Install** and then click **INSTALL OPERATING SYSTEM**. See the following example: + + ![installOS](images/sccm-install-os.png) + + The computer will restart several times during the installation process. Installation includes downloading updates, reinstalling the Configuration Manager Client Agent, and restoring the user state. You can view status of the installation in the Configuration Manager console by accessing the Monitoring workspace, clicking **Deployments**, and then double-clicking the deployment associated with the **Install Windows 10 Enterprise x64** collection. Under **Asset Details**, right-click the device and then click **More Details**. Click the **Status** tab to see a list of tasks that have been performed. See the following example: + + ![asset](images/sccm-asset.png) + + You can also monitor progress of the installation by using the MDT deployment workbench and viewing the **Monitoring** node under **Deployment Shares\MDT Production**. + + When installation has completed, sign in using the contoso\administrator account or the contoso\user1 account and verify that applications and settings have been successfully backed up and restored to your new Windows 10 Enterprise operating system. + + ![post-refresh](images/sccm-post-refresh.png) + +5. Save checkpoints for all VMs if you wish to review their status at a later date. This is not required. To save a checkpoint for all VMs, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + + ``` + Checkpoint-VM -Name DC1 -SnapshotName cm-refresh + Checkpoint-VM -Name SRV1 -SnapshotName cm-refresh + Checkpoint-VM -Name PC1 -SnapshotName cm-refresh + ``` + +## Replace a client with Windows 10 using Configuration Manager + +Before starting the replace procedure, restore all three VMs using the checkpoints created in the previous procedure. To restore the checkpoints and connect to the VMs again, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + +``` +Restore-VMSnapshot -VMName DC1 -Name cm-start -Confirm:$false +Restore-VMSnapshot -VMName SRV1 -Name cm-start -Confirm:$false +Restore-VMSnapshot -VMName PC1 -Name cm-start -Confirm:$false +Start-VM DC1 +vmconnect localhost DC1 +Start-VM SRV1 +vmconnect localhost SRV1 +Start-VM PC1 +vmconnect localhost PC1 +``` + +>If resources are limited in the Hyper-V environment, SRV1 can require several minutes for all services to start and present the sign-in screen after restoring VMs. Verify that all required services are running, and start any service that are not running. Use the Server Manager dashboard to view and start services. When all services are running, open the Configuration Manager console. + +### Create a replace task sequence + +1. On SRV1, in the Configuration Manager console, in the Software Library workspace, expand **Operating Systems**, right-click **Task Sequences**, and then click **Create MDT Task Sequence**. + +2. On the Choose Template page, select **Client Replace Task Sequence** and click **Next**. + +3. On the General page, type the following: + - Task sequence name: **Replace Task Sequence** + - Task sequence comments: **USMT backup only** + +4. Click **Next**, and on the Boot Image page, browse and select the **Zero Touch WinPE x64** boot image package. Click **OK** and then click **Next** to continue. +5. On the MDT Package page, browse and select the **MDT 2013** package. Click **OK** and then click **Next** to continue. +6. On the USMT Package page, browse and select the **Microsoft Corporation User State Migration Tool for Windows** package. Click **OK** and then click **Next** to continue. +7. On the Settings Package page, browse and select the **Windows 10 x64 Settings** package. Click **OK** and then click **Next** to continue. +8. On the Summary page, review the details and then click **Next**. +9. On the Confirmation page, click **Finish**. + +>If you receive an error at this stage it can be caused by a corrupt MDT integration. To repair it, close the Configuration Manager console, remove MDT integration, and then restore MDT integration. + +### Deploy PC4 + +Create a VM named PC4 to receive the applications and settings from PC1. This VM represents a new computer that will replace PC1. To create this VM, type the following commands at an elevated Windows PowerShell prompt on the Hyper-V host: + +``` +New-VM –Name "PC4" –NewVHDPath "c:\vhd\pc4.vhdx" -NewVHDSizeBytes 60GB -SwitchName poc-internal -BootDevice NetworkAdapter -Generation 2 +Set-VMMemory -VMName "PC4" -DynamicMemoryEnabled $true -MinimumBytes 512MB -MaximumBytes 2048MB -Buffer 20 +Set-VMNetworkAdapter -VMName PC4 -StaticMacAddress 00-15-5D-83-26-FF +``` + +>Hyper-V enables us to define a static MAC address on PC4. In a real-world scenario you must determine the MAC address of the new computer. + +### Associate PC4 with PC1 + +1. On SRV1 in the Configuration Manager console, in the Assets and Compliance workspace, right-click **Devices** and then click **Import Computer Information**. + +2. On the Select Source page, choose **Import single computer** and click **Next**. + +3. On the Single Computer page, use the following settings: + - Computer Name: **PC4** + - MAC Address: **00:15:5D:83:26:FF** + - Source Computer: + +4. Click **Next**, and then on the User Accounts page choose **Capture and restore all user accounts**. Click **Next** twice to continue. + +5. On the Choose Target Collection page, choose **Add computers to the following collection**, click **Browse**, choose **Install Windows 10 Enterprise x64**, click **OK**, click **Next** twice, and then click **Close**. + +6. Select the User State Migration node and review the computer association in the display pane. + +7. Right-click the association in the display pane and then click **View Recovery Information**. A recovery key has been assigned, but a user state store location has not. Click **Close**. + +8. Click **Device Collections** and then double-click **Install Windows 10 Enterprise x64**. Verify that **PC4** is displayed in the collection. You might have to update and refresh the collection, or wait a few minutes, but do not proceed until PC4 is available. See the following example: + + ![collection](images/sccm-collection.png) + +### Create a device collection for PC1 + +1. On SRV1, in the Configuration Manager console, in the Assets and Compliance workspace, right-click **Device Collections** and then click **Create Device Collection**. + +2. Use the following settings in the **Create Device Collection Wizard**: + - General > Name: **USMT Backup (Replace)**
    + - General > Limiting collection: **All Systems**
    + - Membership Rules > Add Rule: **Direct Rule**
    + - The **Create Direct Membership Rule Wizard** opens, click **Next**
    + - Search for Resources > Resource class: **System Resource**
    + - Search for Resources > Attribute name: **Name**
    + - Search for Resources > Value: **%**
    + - Select Resources > Value: Select the computername associated with the PC1 VM.
    + - Click **Next** twice and then click **Close** in both windows. + +3. Click **Device Collections** and then double-click **USMT Backup (Replace)**. Verify that the computer name/hostname associated with PC1 is displayed in the collection. Do not proceed until this name is displayed. + +### Create a new deployment + +In the Configuration Manager console, in the Software Library workspace, click **Task Sequences**, right-click **Replace Task Sequence**, click **Deploy**, and use the following settings: +- General > Collection: **USMT Backup (Replace)**
    +- Deployment Settings > Purpose: **Available**
    +- Deployment Settings > Make available to the following: **Only Configuration Manager Clients**
    +- Scheduling: Click **Next**
    +- User Experience: Click **Next**
    +- Alerts: Click **Next**
    +- Distribution Points: Click **Next**
    +- Click **Next** and then click **Close**. + +### Verify the backup + +1. On PC1, open the Configuration Manager control panel applet by typing the following command: + + ``` + control smscfgrc + ``` +2. On the **Actions** tab, click **Machine Policy Retrieval & Evaluation Cycle**, click **Run Now**, click **OK**, and then click **OK** again. This is another method that can be used in addition to the Client Notification method used previously. + +3. Using the Software Center as was done in the previous procedure, click **Operating Systems** and then click **Replace Task Sequence**. See the following example: + + ![software](images/sccm-software-cntr.png) + +4. Click **Install** and then click **INSTALL OPERATING SYSTEM**. +5. Allow the **Replace Task Sequence** to complete, then verify that the C:\MigData folder on SRV1 contains the USMT backup. + +### Deploy the new computer + +1. Start PC4 and press ENTER for a network boot when prompted. To start PC4, type the following commands at an elevated Windows Powershell prompt on the Hyper-V host: + + ``` + Start-VM PC4 + vmconnect localhost PC4 + ``` +2. In the **Welcome to the Task Sequence Wizard**, enter **pass@word1** and click **Next**. +3. Choose the **Windows 10 Enterprise X64** image. +4. Setup will install the operating system, install the configuration manager client, join PC4 to the domain, and restore users and settings from PC1. + + +## Related Topics + +[System Center 2012 Configuration Manager Survival Guide](https://social.technet.microsoft.com/wiki/contents/articles/7075.system-center-2012-configuration-manager-survival-guide.aspx#Step-by-Step_Guides) + +  + + + + + diff --git a/windows/keep-secure/TOC.md b/windows/keep-secure/TOC.md index eaedfbf278..7662302c08 100644 --- a/windows/keep-secure/TOC.md +++ b/windows/keep-secure/TOC.md @@ -31,12 +31,15 @@ ##### [Create and deploy a VPN policy for Windows Information Protection (WIP) using Microsoft Intune](create-vpn-and-wip-policy-using-intune.md) #### [Create and deploy a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) #### [Create and verify an Encrypting File System (EFS) Data Recovery Agent (DRA) certificate](create-and-verify-an-efs-dra-certificate.md) +#### [Determine the Enterprise Context of an app running in Windows Information Protection (WIP)](wip-app-enterprise-context.md) +### [Mandatory tasks and settings required to turn on Windows Information Protection (WIP)](mandatory-settings-for-wip.md) +### [Testing scenarios for Windows Information Protection (WIP)](testing-scenarios-for-wip.md) +### [Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) ### [General guidance and best practices for Windows Information Protection (WIP)](guidance-and-best-practices-wip.md) -#### [Mandatory tasks and settings required to turn on Windows Information Protection (WIP)](mandatory-settings-for-wip.md) #### [Enlightened apps for use with Windows Information Protection (WIP)](enlightened-microsoft-apps-and-wip.md) #### [Unenlightened and enlightened app behavior while using Windows Information Protection (WIP)](app-behavior-with-wip.md) -#### [Testing scenarios for Windows Information Protection (WIP)](testing-scenarios-for-wip.md) -#### [Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) +#### [Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP)](recommended-network-definitions-for-wip.md) +#### [Using Outlook Web Access with Windows Information Protection (WIP)](using-owa-with-wip.md) ## [Use Windows Event Forwarding to help with intrusion detection](use-windows-event-forwarding-to-assist-in-instrusion-detection.md) ## [Override Process Mitigation Options to help enforce app-related security policies](override-mitigation-options-for-app-related-security-policies.md) ## [VPN technical guide](vpn-guide.md) @@ -694,16 +697,16 @@ ##### [Smart Cards Debugging Information](smart-card-debugging-information.md) ##### [Smart Card Group Policy and Registry Settings](smart-card-group-policy-and-registry-settings.md) ##### [Smart Card Events](smart-card-events.md) -### [Trusted Platform Module](trusted-platform-module-overview.md) +### [Trusted Platform Module](trusted-platform-module-top-node.md) +#### [Trusted Platform Module Overview](trusted-platform-module-overview.md) #### [TPM fundamentals](tpm-fundamentals.md) #### [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) -#### [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md) -#### [Backup the TPM recovery Information to AD DS](backup-tpm-recovery-information-to-ad-ds.md) +#### [Back up the TPM recovery information to AD DS](backup-tpm-recovery-information-to-ad-ds.md) #### [Manage TPM commands](manage-tpm-commands.md) #### [Manage TPM lockout](manage-tpm-lockout.md) #### [Change the TPM owner password](change-the-tpm-owner-password.md) -#### [Initialize and configure ownership of the TPM](initialize-and-configure-ownership-of-the-tpm.md) -#### [Switch PCR banks on TPM 2.0 devices](switch-pcr-banks-on-tpm-2-0-devices.md) +#### [View status, clear, or troubleshoot the TPM](initialize-and-configure-ownership-of-the-tpm.md) +#### [Understanding PCR banks on TPM 2.0 devices](switch-pcr-banks-on-tpm-2-0-devices.md) #### [TPM recommendations](tpm-recommendations.md) ### [User Account Control](user-account-control-overview.md) #### [How User Account Control works](how-user-account-control-works.md) @@ -740,10 +743,12 @@ ##### [Investigate a domain](investigate-domain-windows-defender-advanced-threat-protection.md) ##### [Manage alerts](manage-alerts-windows-defender-advanced-threat-protection.md) #### [Windows Defender ATP settings](settings-windows-defender-advanced-threat-protection.md) +#### [Windows Defender ATP service status](service-status-windows-defender-advanced-threat-protection.md) #### [Configure SIEM tools to consume alerts](configure-siem-windows-defender-advanced-threat-protection.md) ##### [Configure an Azure Active Directory application for SIEM integration](configure-aad-windows-defender-advanced-threat-protection.md) ##### [Configure Splunk to consume Windows Defender ATP alerts](configure-splunk-windows-defender-advanced-threat-protection.md) ##### [Configure HP ArcSight to consume Windows Defender ATP alerts](configure-arcsight-windows-defender-advanced-threat-protection.md) +#### [Configure email notifications](configure-email-notifications-windows-defender-advanced-threat-protection.md) #### [Troubleshoot Windows Defender ATP](troubleshoot-windows-defender-advanced-threat-protection.md) #### [Review events and errors on endpoints with Event Viewer](event-error-codes-windows-defender-advanced-threat-protection.md) #### [Windows Defender compatibility](defender-compatibility-windows-defender-advanced-threat-protection.md) @@ -871,4 +876,6 @@ ### [Microsoft Passport guide](microsoft-passport-guide.md) ### [Windows 10 Mobile security guide](windows-10-mobile-security-guide.md) ### [Windows 10 security overview](windows-10-security-guide.md) +### [Windows 10 credential theft mitigation guide abstract](windows-credential-theft-mitigation-guide-abstract.md) +### [How to use single sign-on (SSO) over VPN and Wi-Fi connections](how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md) ## [Change history for Keep Windows 10 secure](change-history-for-keep-windows-10-secure.md) diff --git a/windows/keep-secure/access-this-computer-from-the-network.md b/windows/keep-secure/access-this-computer-from-the-network.md index 1cb598fcfd..0d93c1d879 100644 --- a/windows/keep-secure/access-this-computer-from-the-network.md +++ b/windows/keep-secure/access-this-computer-from-the-network.md @@ -1,5 +1,5 @@ --- -title: Access this computer from the network (Windows 10) +title: Access this computer from the network - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Access this computer from the network security policy setting. ms.assetid: f6767bc2-83d1-45f1-847c-54f5362db022 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Access this computer from the network +# Access this computer from the network - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/accounts-guest-account-status.md b/windows/keep-secure/accounts-guest-account-status.md index f9054008ac..527a1357c4 100644 --- a/windows/keep-secure/accounts-guest-account-status.md +++ b/windows/keep-secure/accounts-guest-account-status.md @@ -1,5 +1,5 @@ --- -title: Accounts Guest account status (Windows 10) +title: Accounts Guest account status - security policy setting (Windows 10) description: Describes the best practices, location, values, and security considerations for the Accounts Guest account status security policy setting. ms.assetid: 07e53fc5-b495-4d02-ab42-5b245d10d0ce ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Accounts: Guest account status +# Accounts: Guest account status - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/accounts-rename-guest-account.md b/windows/keep-secure/accounts-rename-guest-account.md index aa06c480c3..c77030e875 100644 --- a/windows/keep-secure/accounts-rename-guest-account.md +++ b/windows/keep-secure/accounts-rename-guest-account.md @@ -1,5 +1,5 @@ --- -title: Accounts Rename guest account (Windows 10) +title: Accounts Rename guest account - security policy setting (Windows 10) description: Describes the best practices, location, values, and security considerations for the Accounts Rename guest account security policy setting. ms.assetid: 9b8052b4-bbb9-4cc1-bfee-ce25390db707 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Accounts: Rename guest account +# Accounts: Rename guest account - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/ad-ds-schema-extensions-to-support-tpm-backup.md b/windows/keep-secure/ad-ds-schema-extensions-to-support-tpm-backup.md index 9ce1e76918..0efd393b76 100644 --- a/windows/keep-secure/ad-ds-schema-extensions-to-support-tpm-backup.md +++ b/windows/keep-secure/ad-ds-schema-extensions-to-support-tpm-backup.md @@ -1,289 +1,5 @@ --- -title: AD DS schema extensions to support TPM backup (Windows 10) -description: This topic provides more details about this change and provides template schema extensions that you can incorporate into your organization. -ms.assetid: beb7097c-e674-4eab-b8e2-6f67c85d1f3f -ms.prod: w10 -ms.mktglfcycl: deploy -ms.sitesec: library -ms.pagetype: security -author: brianlic-msft +title: AD DS schema extensions to support TPM backup +redirect_url: https://technet.microsoft.com/library/jj635854.aspx --- -# AD DS schema extensions to support TPM backup - -**Applies to** -- Windows 10, version 1511 -- Windows 10, version 1507 - -**Does not apply to** -- Windows 10, version 1607 or later - -This topic provides more details about this change and provides template schema extensions that you can incorporate into your organization. - -## Why a schema extension is needed - -The TPM owner authorization value is now stored in a separate object which is linked to the Computer object. This value was stored as a property in the Computer object itself for the default Windows Server 2008 R2 schema. Windows Server 2012 domain controllers have the default schema to backup TPM owner authorization information in the separate object. If you are not upgrading your domain controller to Windows Server 2012, you need to extend the schema to support this change. If Active Directory backup of the TPM owner authorization value is enabled in a Windows Server 2008 R2 environment without extending the schema, the TPM provisioning will fail and the TPM will remain in a Not Ready state for computers running Windows 8. The following are the two schema extensions that you can use to bring your Windows Server 2008 R2 domain to parity with Windows Server 2012: - -### TpmSchemaExtension.ldf - -This schema extension brings parity with the Windows Server 2012 schema and is required if you want to store the TPM owner authorization value for a computer running Windows 8 in a Windows Server 2008 R2 AD DS domain. With this extension the TPM owner authorization information will be stored in a separate TPM object linked to the corresponding computer object. - -``` syntax -#=============================================================================== -# -# Active Directory Domain Services schema extension for -# BitLocker Drive Encryption and Trusted Platform Module (TPM) recovery -# -# This file contains attributes and class objects that enable Windows Server -# 2008 and Windows Server 2008 R2 domain controllers to store TPM recovery -# information in a new, TPM-specific location. -# -# Change History: -# 07/2010 - Created -# -# To extend the schema, use the LDIFDE tool on the schema master of the forest. -# -# Sample command: -# ldifde -i -v -f TPMSchemaExtension.ldf -c "DC=X" "DC=nttest,dc=microsoft,dc=com" -k -j . -# -# For more information on LDIFDE tool, see -# http://support.microsoft.com/default.aspx?scid=kb;en-us;237677 -# -#=============================================================================== -#=============================================================================== -# New schema attributes -#=============================================================================== -# -# ms-TPM-Srk-Pub-Thumbprint -# GUID: 19d706eb-4d76-44a2-85d6-1c342be3be37 -# -dn: CN=ms-TPM-Srk-Pub-Thumbprint,CN=Schema,CN=Configuration,DC=X -changetype: add -objectClass: attributeSchema -ldapDisplayName: msTPM-SrkPubThumbprint -adminDisplayName: TPM-SrkPubThumbprint -adminDescription: This attribute contains the thumbprint of the SrkPub corresponding to a particular TPM. This helps to index the TPM devices in the directory. -attributeId: 1.2.840.113556.1.4.2107 -attributeSyntax: 2.5.5.10 -omSyntax: 4 -isSingleValued: TRUE -searchFlags: 11 -schemaIdGuid:: 6wbXGXZNokSF1hw0K+O+Nw== -showInAdvancedViewOnly: TRUE -isMemberOfPartialAttributeSet: FALSE -rangeUpper: 20 -# -# ms-TPM-Owner-Information-Temp -# GUID: c894809d-b513-4ff8-8811-f4f43f5ac7bc -# -dn: CN=ms-TPM-Owner-Information-Temp,CN=Schema,CN=Configuration,DC=X -changetype: add -objectClass: attributeSchema -ldapDisplayName: msTPM-OwnerInformationTemp -adminDisplayName: TPM-OwnerInformationTemp -adminDescription: This attribute contains temporary owner information for a particular TPM. -attributeId: 1.2.840.113556.1.4.2108 -attributeSyntax: 2.5.5.12 -omSyntax: 64 -isSingleValued: TRUE -searchFlags: 640 -rangeUpper: 128 -schemaIdGuid:: nYCUyBO1+E+IEfT0P1rHvA== -showInAdvancedViewOnly: TRUE -isMemberOfPartialAttributeSet: FALSE -# -# ms-TPM-Tpm-Information-For-Computer -# GUID: ea1b7b93-5e48-46d5-bc6c-4df4fda78a35 -# -dn: CN=ms-TPM-Tpm-Information-For-Computer,CN=Schema,CN=Configuration,DC=X -changetype: add -objectClass: attributeSchema -ldapDisplayName: msTPM-TpmInformationForComputer -adminDisplayName: TPM-TpmInformationForComputer -adminDescription: This attribute links a Computer object to a TPM object. -attributeId: 1.2.840.113556.1.4.2109 -attributeSyntax: 2.5.5.1 -omSyntax: 127 -isSingleValued: TRUE -searchFlags: 16 -omObjectClass:: KwwCh3McAIVK -schemaIdGuid:: k3sb6khe1Ua8bE30/aeKNQ== -showInAdvancedViewOnly: TRUE -isMemberOfPartialAttributeSet: FALSE -linkId: 2182 -# -# ms-TPM-TpmInformation-For-Computer-BL -# GUID: 14fa84c9-8ecd-4348-bc91-6d3ced472ab7 -# -dn: CN=ms-TPM-Tpm-Information-For-Computer-BL,CN=Schema,CN=Configuration,DC=X -changetype: add -objectClass: attributeSchema -ldapDisplayName: msTPM-TpmInformationForComputerBL -adminDisplayName: TPM-TpmInformationForComputerBL -adminDescription: This attribute links a TPM object to the Computer objects associated with it. -attributeId: 1.2.840.113556.1.4.2110 -attributeSyntax: 2.5.5.1 -omSyntax: 127 -isSingleValued: FALSE -searchFlags: 0 -omObjectClass:: KwwCh3McAIVK -schemaIdGuid:: yYT6FM2OSEO8kW087Ucqtw== -showInAdvancedViewOnly: TRUE -systemOnly: TRUE -linkId: 2183 -# -# Commit the new attributes -# -dn: -changetype: modify -add: schemaUpdateNow -schemaUpdateNow: 1 -- -# -# Modify the Computer schema to support the TPM link -# -dn: CN=computer,CN=Schema,CN=Configuration,DC=X -changetype: modify -add: mayContain -mayContain: msTPM-TpmInformationForComputer -- -# -# Commit the modification to the computer class -# -dn: -changetype: modify -add: schemaUpdateNow -schemaUpdateNow: 1 -- -#=============================================================================== -# New schema classes -#=============================================================================== -# -# ms-TPM-Information-Objects-Container -# GUID: e027a8bd-6456-45de-90a3-38593877ee74 -# -dn: CN=ms-TPM-Information-Objects-Container,CN=Schema,CN=Configuration,DC=X -changetype: add -objectClass: classSchema -ldapDisplayName: msTPM-InformationObjectsContainer -adminDisplayName: TPM-InformationObjectsContainer -adminDescription: Container for TPM objects. -governsID: 1.2.840.113556.1.5.276 -objectClassCategory: 1 -subClassOf: top -systemMustContain: cn -systemPossSuperiors: domain -systemPossSuperiors: domainDNS -schemaIdGUID:: vagn4FZk3kWQozhZOHfudA== -defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;LOLCCCRP;;;DC) -defaultHidingValue: TRUE -defaultObjectCategory: CN=ms-TPM-Information-Objects-Container,CN=Schema,CN=Configuration,DC=X -# -# ms-TPM-Information-Object -# GUID: 85045b6a-47a6-4243-a7cc-6890701f662c -# -# NOTE: If the 'defaultSecurityDescriptor' value below is changed, -# also change the other '.ldf' files in this directory, as appropriate. -# -dn: CN=ms-TPM-Information-Object,CN=Schema,CN=Configuration,DC=X -changetype: add -objectClass: classSchema -ldapDisplayName: msTPM-InformationObject -adminDisplayName: TPM-InformationObject -adminDescription: This class contains recovery information for a Trusted Platform Module (TPM) device. -governsID: 1.2.840.113556.1.5.275 -objectClassCategory: 1 -subClassOf: top -systemMustContain: msTPM-OwnerInformation -systemMayContain: msTPM-SrkPubThumbprint -systemMayContain: msTPM-OwnerInformationTemp -systemPossSuperiors: 1.2.840.113556.1.5.276 -schemaIdGUID:: alsEhaZHQ0KnzGiQcB9mLA== -defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPLO;;;DC)(A;;WP;;;CO) -defaultHidingValue: TRUE -defaultObjectCategory: CN=ms-TPM-Information-Object,CN=Schema,CN=Configuration,DC=X -# -# NOTE: If the 'defaultSecurityDescriptor' value above is changed, -# also change the other '.ldf' files in this directory, as appropriate. -# -# -# Commit the new TPM object class -# -dn: -changetype: modify -add: schemaUpdateNow -schemaUpdateNow: 1 -- -#=============================================================================== -# New objects -#=============================================================================== -# -# Add the TPM container to its location in the directory -# -dn: CN=TPM Devices,DC=X -changetype: add -objectClass: msTPM-InformationObjectsContainer -``` - -You should be aware that only the Computer object that has created the TPM object can update it. This means that any subsequent updates to the TPM objects will not succeed in dual boot scenarios or scenarios where the computer is reimaged resulting in a new AD computer object being created. If you are planning to support such scenarios, you will need to update the schema further as shown in the schema extension example, TpmSchemaExtensionACLChanges.ldf. - -### TpmSchemaExtensionACLChanges.ldf - -This schema update modifies the ACLs on the TPM object to be less restrictive so that any subsequent operating system which takes ownership of the computer object can update the owner authorization value in AD DS. -> **Important**  After implementing this schema update, any computer in the domain can update the OwnerAuth of the TPM object (although it cannot read the OwnerAuth). When using this extension, perform a regular backup of the TPM objects and enable auditing to track the changes for these objects. -  -``` syntax -#=============================================================================== -# -# Active Directory Domain Services schema extension for -# BitLocker Drive Encryption and Trusted Platform Module (TPM) recovery -# -# This file modifies a class object that enables Windows Server 2008 -# and Windows Server 2008 R2 domain controllers to store TPM recovery -# information in a new, TPM-specific location. -# -# This file converts the standard schema extension in which only the creator -# of an 'ms-TPM-Information-Object' can write to the object to the Open -# schema extension in which any Domain Computer can write to the object. -# -# This conversion does not apply to any 'ms-TPM-Information-Object' that -# was created before the conversion. -# -# Change History: -# 12/2011 - Created -# -# To change the schema, use the LDIFDE tool on the schema master of the forest. -# -# Sample command: -# ldifde -i -v -f TpmSchemaExtensionACLChanges.ldf -# -c "DC=X" "DC=nttest,dc=microsoft,dc=com" -k -j . -# -# For more information on LDIFDE tool, see -# http://support.microsoft.com/default.aspx?scid=kb;en-us;237677 -# -#=============================================================================== -# -# Modify the TPM-Information-Object class schema 'defaultSecurityDescriptor' to -# allow any Domain Computer to write its properties (including the TPM OwnerAuth -# value) from allowing only the creating Computer object to write its properties -# -# NOTE: Keep any changes to the 'defaultSecurityDescriptor' value in synchronization -# with the value in the TPM-Information-Object class description in the -# 'TpmSchemaExtension.ldf' file -# -dn: CN=ms-TPM-Information-Object,CN=Schema,CN=Configuration,DC=X -changetype: modify -replace: defaultSecurityDescriptor -defaultSecurityDescriptor: D:(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;DA)(A;;RPWPCRCCDCLCLORCWOWDSDDTSW;;;SY)(A;;RPWPLO;;;DC) -- -# -# Commit the modification to the TPM-Information-Object schema -# -dn: -changetype: modify -add: schemaUpdateNow -schemaUpdateNow: 1 -- -``` -  -  diff --git a/windows/keep-secure/add-apps-to-protected-list-using-custom-uri.md b/windows/keep-secure/add-apps-to-protected-list-using-custom-uri.md index 3565476277..9176b41ff8 100644 --- a/windows/keep-secure/add-apps-to-protected-list-using-custom-uri.md +++ b/windows/keep-secure/add-apps-to-protected-list-using-custom-uri.md @@ -19,8 +19,8 @@ localizationpriority: high You can add apps to your Windows Information Protection (WIP) protected app list using the Microsoft Intune custom URI functionality and AppLocker. For more info about how to create a custom URI using Intune, [Windows 10 custom policy settings in Microsoft Intune](https://go.microsoft.com/fwlink/p/?LinkID=691330). ->**Important**
    -Results can be unpredictable if you configure your policy using both the UI and the Custom URI method together. We recommend using a single method for each policy. +>[!IMPORTANT] +>Results can be unpredictable if you configure your policy using both the UI and the Custom URI method together. We recommend using a single method for each policy. ## Add Store apps 1. Go to the AppLocker UI by opening a command line window and running secpol.msc. The local security policy MMC snap-in opens showing the **Security Settings**. @@ -39,13 +39,15 @@ Results can be unpredictable if you configure your policy using both the UI and 5. In the **Rules Preferences** screen, keep the default settings, and then click **Next** to start generating the rules. - >**Note**
    We recommend that you use **Publisher** rules because they only work with apps you've specifically defined and they can be configured to not require updating simply because a new version came out.

    If you can't use **Publisher** rules, we then recommend that you use **File hash** rules. **File hash** rules are a secure alternative that can be used on unsigned code. The primary disadvantage to **File hash** is that every time a binary changes (such as, through servicing updates or upgrades), you'll need to create a new rule. + >[!NOTE] + >We recommend that you use **Publisher** rules because they only work with apps you've specifically defined and they can be configured to not require updating simply because a new version came out.

    If you can't use **Publisher** rules, we then recommend that you use **File hash** rules. **File hash** rules are a secure alternative that can be used on unsigned code. The primary disadvantage to **File hash** is that every time a binary changes (such as, through servicing updates or upgrades), you'll need to create a new rule. 6. In the **Review Rules** screen, look over your rules to make sure they’re right, and then click **Create** to add them to your collection of rules. 7. In the left pane, right-click **AppLocker**, click **Export Policies**, go to where you want to save the XML file and type a file name, click **Save**, and then clear your AppLocker rules. - >**Important**
    Be aware that what you're saving are the actual AppLocker rules using your local policy. You don't want to apply these rules to your employee devices, you just want to use them to create and export the XML content. You must delete the AppLocker rules before you apply your policy. + >[!IMPORTANT] + >Be aware that what you're saving are the actual AppLocker rules using your local policy. You don't want to apply these rules to your employee devices, you just want to use them to create and export the XML content. You must delete the AppLocker rules before you apply your policy. 8. Open the Intune administration console, and go to the **Policy** node, click **Add Policy** from the **Tasks** area, go to **Windows**, click the **Custom Configuration (Windows 10 Desktop and Mobile and later)** policy, click **Create and Deploy a Custom Policy**, and then click **Create Policy**. @@ -85,16 +87,18 @@ After saving the policy, you’ll need to deploy it to your employee’s devices 5. In the **Rules Preferences** screen, keep the default settings, and then click **Next** to start generating the rules. - >**Important**
    You can also use **Path** rules instead of the **File hash** if you have concerns about unsigned files potentially changing the hash value if they're updated in the future. + >[!IMPORTANT] + >You can also use **Path** rules instead of the **File hash** if you have concerns about unsigned files potentially changing the hash value if they're updated in the future. -

    - >**Note**
    We recommend that you use **Publisher** rules because they only work with apps you've specifically defined and they can be configured to not require updating simply because a new version came out.

    If you can't use **Publisher** rules, we then recommend that you use **File hash** rules. **File hash** rules are a secure alternative that can be used on unsigned code. The primary disadvantage to **File hash** is that every time a binary changes (such as, through servicing updates or upgrades), you'll need to create a new rule.

    Finally, there's **Path** rules. **Path** rules are easier to set up and maintain, but can let apps bypass Windows Information Protection (WIP) by simply renaming and moving an unallowed file to match one of the apps on the **Protected App** list. For example, if your **Path** rule says to allow `%PROGRAMFILES%/NOTEPAD.EXE`, it becomes possible to rename DisallowedApp.exe to Notepad.exe, move it into the specified path above, and have it suddenly be allowed. + >[!NOTE] + >We recommend that you use **Publisher** rules because they only work with apps you've specifically defined and they can be configured to not require updating simply because a new version came out.

    If you can't use **Publisher** rules, we then recommend that you use **File hash** rules. **File hash** rules are a secure alternative that can be used on unsigned code. The primary disadvantage to **File hash** is that every time a binary changes (such as, through servicing updates or upgrades), you'll need to create a new rule.

    Finally, there's **Path** rules. **Path** rules are easier to set up and maintain, but can let apps bypass Windows Information Protection (WIP) by simply renaming and moving an unallowed file to match one of the apps on the **Protected App** list. For example, if your **Path** rule says to allow `%PROGRAMFILES%/NOTEPAD.EXE`, it becomes possible to rename DisallowedApp.exe to Notepad.exe, move it into the specified path above, and have it suddenly be allowed. 6. In the **Review Rules** screen, look over your rules to make sure they’re right, and then click **Create** to add them to your collection of rules. 7. In the left pane, right-click **AppLocker**, click **Export Policies**, go to where you want to save the XML file and type a file name, click **Save**, and then clear your AppLocker rules. - >**Important**
    Be aware that what you're saving are the actual AppLocker rules using your local policy. You don't want to apply these rules to your employee devices, you just want to use them to create and export the XML content. You must delete the AppLocker rules before you apply your policy. + >[!IMPORTANT] + >Be aware that what you're saving are the actual AppLocker rules using your local policy. You don't want to apply these rules to your employee devices, you just want to use them to create and export the XML content. You must delete the AppLocker rules before you apply your policy. 8. Open the Intune administration console, and go to the **Policy** node, click **Add Policy** from the **Tasks** area, go to **Windows**, click the **Custom Configuration (Windows 10 Desktop and Mobile and later)** policy, click **Create and Deploy a Custom Policy**, and then click **Create Policy**. @@ -118,7 +122,10 @@ After saving the policy, you’ll need to deploy it to your employee’s devices After saving the policy, you’ll need to deploy it to your employee’s devices. For more info, see the [Deploy your Windows Information Protection (WIP) policy](deploy-wip-policy-using-intune.md) topic. -##Related topics +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). + +## Related topics - [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) - [Deploy your Windows Information Protection (WIP) policy](deploy-wip-policy-using-intune.md) - [Create and deploy a VPN policy for Windows Information Protection (WIP) using Microsoft Intune](create-vpn-and-wip-policy-using-intune.md) diff --git a/windows/keep-secure/allow-log-on-locally.md b/windows/keep-secure/allow-log-on-locally.md index 3cbeacb088..9e4831a223 100644 --- a/windows/keep-secure/allow-log-on-locally.md +++ b/windows/keep-secure/allow-log-on-locally.md @@ -1,5 +1,5 @@ --- -title: Allow log on locally (Windows 10) +title: Allow log on locally - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Allow log on locally security policy setting. ms.assetid: d9e5e1f3-3bff-4da7-a9a2-4bb3e0c79055 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Allow log on locally +# Allow log on locally - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/app-behavior-with-wip.md b/windows/keep-secure/app-behavior-with-wip.md index 55939649d4..bf932d459d 100644 --- a/windows/keep-secure/app-behavior-with-wip.md +++ b/windows/keep-secure/app-behavior-with-wip.md @@ -129,3 +129,6 @@ This table includes info about how enlightened apps might behave, based on your + +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). diff --git a/windows/keep-secure/back-up-files-and-directories.md b/windows/keep-secure/back-up-files-and-directories.md index 6f6a7b8805..f338698789 100644 --- a/windows/keep-secure/back-up-files-and-directories.md +++ b/windows/keep-secure/back-up-files-and-directories.md @@ -1,5 +1,5 @@ --- -title: Back up files and directories (Windows 10) +title: Back up files and directories - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Back up files and directories security policy setting. ms.assetid: 1cd6bdd5-1501-41f4-98b9-acf29ac173ae ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Back up files and directories +# Back up files and directories - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/backup-tpm-recovery-information-to-ad-ds.md b/windows/keep-secure/backup-tpm-recovery-information-to-ad-ds.md index 3f72f93ba5..10963dd930 100644 --- a/windows/keep-secure/backup-tpm-recovery-information-to-ad-ds.md +++ b/windows/keep-secure/backup-tpm-recovery-information-to-ad-ds.md @@ -1,6 +1,6 @@ --- -title: Backup the TPM recovery Information to AD DS (Windows 10) -description: This topic for the IT professional describes how to back up a computer’s Trusted Platform Module (TPM) information to Active Directory Domain Services (AD DS) so that you can use AD DS to administer the TPM from a remote computer. +title: Back up the TPM recovery information to AD DS (Windows 10) +description: This topic for the IT professional describes backup of Trusted Platform Module (TPM) information. ms.assetid: 62bcec80-96a1-464e-8b3f-d177a7565ac5 ms.prod: w10 ms.mktglfcycl: deploy @@ -9,556 +9,19 @@ ms.pagetype: security author: brianlic-msft --- -# Backup the TPM recovery Information to AD DS +# Back up the TPM recovery information to AD DS **Applies to** - Windows 10, version 1511 - Windows 10, version 1507 **Does not apply to** -- Windows 10, version 1607 or later -This topic for the IT professional describes how to back up a computer’s Trusted Platform Module (TPM) information to Active Directory Domain Services (AD DS) so that you can use AD DS to administer the TPM from a remote computer. +- Windows 10, version 1607 or later -## About administering TPM remotely +With Windows 10, versions 1511 and 1507, you can back up a computer’s Trusted Platform Module (TPM) information to Active Directory Domain Services (AD DS). By doing this, you can use AD DS to administer the TPM from a remote computer. The procedure is the same as it was for Windows 8.1. For more information, see [Backup the TPM Recovery Information to AD DS](https://technet.microsoft.com/library/dn466534(v=ws.11).aspx). -Backing up the TPM owner information for a computer allows administrators in a domain to remotely configure the TPM security hardware on the local computer. For example, administrators might want to reset the TPM to the manufacturer’s defaults when they decommission or repurpose computers, without having to be present at the computer. +## Related topics -You can use AD DS to store TPM owner information for use in recovery situations where the TPM owner has forgotten the password or where you must take control of the TPM. There is only one TPM owner password per computer; therefore, the hash of the TPM owner password can be stored as an attribute of the computer object in AD DS. The attribute has the common name (CN) of **ms-TPM-OwnerInformation**. - -> **Note:**  The TPM owner authorization value is stored in AD DS, and it is present in a TPM owner password file as a SHA-1 hash of the TPM owner password, which is base 64–encoded. The actual owner password is not stored. -  -Domain controllers running Windows Server 2012 R2 or Windows Server 2012 include the required AD DS schema objects by default. However, if your domain controller is running Windows Server 2008 R2, you need to update the schema as described in [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md). - -This topic contains procedures, some of which are dependent on Visual Basic scripts, to recover TPM information and decommission TPM on remote computers. Sample scripts are available, which you can customize to meet the requirements of your environment. - -In this topic: - -1. [Check status of prerequisites](#bkmk-prereqs) -2. [Set permissions to back up password information](#bkmk-setperms) -3. [Configure Group Policy to back up TPM recovery information in AD DS](#bkmk-configuregp) -4. [Use AD DS to recover TPM information](#bkmk-useit) -5. [Sample scripts](#bkmk-adds-tpm-scripts) - -## Check status of prerequisites - -Before you begin your backup, ensure that the following prerequisites are met: - -1. All domain controllers that are accessible by client computers that will be using TPM services are running Windows Server 2012 R2, Windows Server 2012, or Windows Server 2008 R2 with the updated schema. - - > **Tip:**  For more info about the schema extensions that are required for a TPM backup in Active Directory domains that are running Windows Server 2008 R2, see [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md). -   -2. You have domain administrator rights in the target forest, or you are using an account that has been granted appropriate permissions to extend the schema for the target forest. Members of the Enterprise Admins or Schema Admins groups are examples of accounts that have the appropriate permissions. - -## Set permissions to back up password information - -This procedure uses the sample script [Add-TPMSelfWriteACE.vbs](#bkmk-add-tpmselfwriteace) to add an access control entry (ACE) so that backing up TPM recovery information is possible. A client computer cannot back up TPM owner information until this ACE is added. - -This script is run on the domain controller that you will use to administer the TPM recovery information, and it operates under the following assumptions: - -- You have domain administrator credentials to set permissions for the top-level domain object. -- Your target domain is the same as the domain for the user account that is running the script. For example, running the script as TESTDOMAIN\\admin will extend permissions for TESTDOMAIN. - - > **Note:**  You might need to modify the sample script if you want to set permissions for multiple domains, but you do not have domain administrator accounts for each of those domains. Find the variable **strPathToDomain** in the script, and modify it for your target domain, for example: - `LDAP://DC=testdomain,DC=nttest,DC=microsoft,DC=com` -   -- Your domain is configured so that permissions are inherited from the top-level domain object to targeted computer objects. - - Permissions will not take effect if any container in the hierarchy does not allow inherited permissions. By default, permissions inheritance is set in AD DS. If you are not sure whether your configuration differs from this default, you can continue with the setup steps to set the permissions. - You can then verify your configuration as described later in this topic. Or you can click the **Effective Permissions** button while viewing the properties of a computer object, then check that **Self** is approved to write the **msTPM-OwnerInformation** attribute. - -**To add an ACE to allow TPM recovery information backup** - -1. Open the sample script **Add-TPMSelfWriteACE.vbs**. - - The script contains a permission extension, and you must modify the value of **strPathToDomain** by using your domain name. - -2. Save your modifications to the script. -3. Type the following at a command prompt, and then press ENTER: - - **cscript Add-TPMSelfWriteACE.vbs** - -This script adds a single ACE to the top-level domain object. The ACE is an inheritable permission that allows the computer (SELF) to write to the **ms-TPM-OwnerInformation** attribute for computer objects in the domain. -Complete the following procedure to check that the correct permissions are set and to remove TPM and BitLocker ACEs from the top-level domain, if necessary. - -**Manage ACEs configured on TPM schema objects** - -1. Open the sample script **List-ACEs.vbs**. -2. Modify **List-ACEs.vbs**. - - You must modify: - - Value of **strPathToDomain**: Use your domain name. - - Filter options: The script sets a filter to address BitLocker and TPM schema objects, so you must modify **If IsFilterActive ()** if you want to list or remove other schema objects. - -3. Save your modifications to the script. -4. Type the following at a command prompt, and then press ENTER: - - **cscript List-ACEs.vbs** - - With this script you can optionally remove ACEs from BitLocker and TPM schema objects on the top-level domain. - -## Configure Group Policy to back up TPM recovery information in AD DS - -Use these procedures to configure the [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#bkmk-tpmgp-addsbu) policy setting on a local computer. In a production environment, an efficient way to do this is to create or edit a Group Policy Object (GPO) that can target client computers in the domain. - -**To enable local policy setting to back up TPM recovery information to AD DS** - -1. Sign in to a domain-joined computer by using a domain account that is a member of the local Administrators group. -2. Open the Local Group Policy Editor (gpedit.msc), and in the console tree, navigate to **Computer Configuration\\Administrative Templates\\System**. -3. Click **Trusted Platform Module Services**. -4. Double-click **Turn on TPM backup to Active Directory Domain Services**. -5. Click **Enabled**, and then click **OK**. -> **Important:**  When this setting is enabled, the TPM owner password cannot be set or changed unless the computer is connected to the domain and AD DS backup of the TPM recovery information succeeds. -  -## Use AD DS to recover TPM information - -When you need to recover the TPM owner information from AD DS and use it to manage the TPM, you need to read the **ms-TPM-OwnerInformation** object from AD DS, and then manually create a TPM owner password backup file that can be supplied when TPM owner credentials are required. - -**To obtain TPM owner backup information from AD DS and create a password file** - -1. Sign in to a domain controller by using domain administrator credentials. -2. Copy the sample script file, [Get-TPMOwnerInfo.vbs](#bkmk-get-tpmownerinfo), to a location on your computer. -3. Open a Command Prompt window, and change the default location to the location of the sample script files you saved in the previous step. -4. At the command prompt, type **cscript Get-TPMOwnerInfo.vbs**. - - The expected output is a string that is the hash of the password that you created earlier. - > **Note:**  If you receive the error message, "Active Directory: The directory property cannot be found in the cache," verify that you are using a domain administrator account, which is required to read the **ms-TPM-OwnerInformation** attribute. - - The only exception to this requirement is that if users are the Creator Owner of computer objects that they join to the domain, they can possibly read the TPM owner information for their computer objects. -   -5. Open Notepad or another text editor, and copy the following code sample into the file, and replace *TpmOwnerPasswordHash* with the string that you recorded in the previous step. - - ``` syntax - - - -                 -                 TpmOwnerPasswordHash - - ``` -6. Save this file with a .tpm extension on a removable storage device, such as a USB flash drive. When you access the TPM, and you are required to provide the TPM owner password, choose the option for reading the password from a file and provide the path to this file. - -## Sample scripts - -You can use all or portions of the following sample scripts, which are used in the preceding procedures, to configure AD DS for backing up TPM recovery information. Customization is required depending on how your environment is configured. - -- [Add-TPMSelfWriteACE.vbs: Use to add the access control entry (ACE) for the TPM to AD DS](#bkmk-add-tpmselfwriteace) -- [List-ACEs.vbs: Use to list or remove the ACEs that are configured on BitLocker and TPM schema objects](#bkmk-list-aces) -- [Get-TPMOwnerInfo.vbs: Use to retrieve the TPM recovery information from AD DS for a particular computer](#bkmk-get-tpmownerinfo) - -### Add-TPMSelfWriteACE.vbs - -This script adds the access control entry (ACE) for the TPM to AD DS so that the computer can back up TPM recovery information in AD DS. - -``` syntax -'=============================================================================== -' -' This script demonstrates the addition of an Access Control Entry (ACE) -' to allow computers to write Trusted Platform Module (TPM) -' recovery information to Active Directory. -' -' This script creates a SELF ACE on the top-level domain object, and -' assumes that inheritance of ACL's from the top-level domain object to -' down-level computer objects are enabled. -' -' -' -' Last Updated: 12/05/2012 -' Last Reviewed: 12/05/2012 -' Microsoft Corporation -' -' Disclaimer -' -' The sample scripts are not supported under any Microsoft standard support program -' or service. The sample scripts are provided AS IS without warranty of any kind. -' Microsoft further disclaims all implied warranties including, without limitation, -' any implied warranties of merchantability or of fitness for a particular purpose. -' The entire risk arising out of the use or performance of the sample scripts and -' documentation remains with you. In no event shall Microsoft, its authors, or -' anyone else involved in the creation, production, or delivery of the scripts be -' liable for any damages whatsoever (including, without limitation, damages for loss -' of business profits, business interruption, loss of business information, or -' other pecuniary loss) arising out of the use of or inability to use the sample -' scripts or documentation, even if Microsoft has been advised of the possibility -' of such damages. -' -' Version 1.0.2 - Tested and re-released for Windows 8 and Windows Server 2012 -' -'=============================================================================== -' -------------------------------------------------------------------------------- -' Access Control Entry (ACE) constants -' -------------------------------------------------------------------------------- -'- From the ADS_ACETYPE_ENUM enumeration -Const ADS_ACETYPE_ACCESS_ALLOWED_OBJECT = &H5 'Allows an object to do something -'- From the ADS_ACEFLAG_ENUM enumeration -Const ADS_ACEFLAG_INHERIT_ACE = &H2 'ACE can be inherited to child objects -Const ADS_ACEFLAG_INHERIT_ONLY_ACE = &H8 'ACE does NOT apply to target (parent) object -'- From the ADS_RIGHTS_ENUM enumeration -Const ADS_RIGHT_DS_WRITE_PROP = &H20 'The right to write object properties -Const ADS_RIGHT_DS_CREATE_CHILD = &H1 'The right to create child objects -'- From the ADS_FLAGTYPE_ENUM enumeration -Const ADS_FLAG_OBJECT_TYPE_PRESENT = &H1 'Target object type is present in the ACE -Const ADS_FLAG_INHERITED_OBJECT_TYPE_PRESENT = &H2 'Target inherited object type is present in the ACE -' -------------------------------------------------------------------------------- -' TPM and FVE schema object GUID's -' -------------------------------------------------------------------------------- -'- ms-TPM-OwnerInformation attribute -SCHEMA_GUID_MS_TPM_OWNERINFORMATION = "{AA4E1A6D-550D-4E05-8C35-4AFCB917A9FE}" -'- ms-FVE-RecoveryInformation object -SCHEMA_GUID_MS_FVE_RECOVERYINFORMATION = "{EA715D30-8F53-40D0-BD1E-6109186D782C}" -'- Computer object -SCHEMA_GUID_COMPUTER = "{BF967A86-0DE6-11D0-A285-00AA003049E2}" -'Reference: "Platform SDK: Active Directory Schema" -' -------------------------------------------------------------------------------- -' Set up the ACE to allow write of TPM owner information -' -------------------------------------------------------------------------------- -Set objAce1 = createObject("AccessControlEntry") -objAce1.AceFlags = ADS_ACEFLAG_INHERIT_ACE + ADS_ACEFLAG_INHERIT_ONLY_ACE -objAce1.AceType = ADS_ACETYPE_ACCESS_ALLOWED_OBJECT -objAce1.Flags = ADS_FLAG_OBJECT_TYPE_PRESENT + ADS_FLAG_INHERITED_OBJECT_TYPE_PRESENT -objAce1.Trustee = "SELF" -objAce1.AccessMask = ADS_RIGHT_DS_WRITE_PROP -objAce1.ObjectType = SCHEMA_GUID_MS_TPM_OWNERINFORMATION -objAce1.InheritedObjectType = SCHEMA_GUID_COMPUTER -' -------------------------------------------------------------------------------- -' NOTE: BY default, the "SELF" computer account can create -' BitLocker recovery information objects and write BitLocker recovery properties -' -' No additional ACE's are needed. -' -------------------------------------------------------------------------------- -' -------------------------------------------------------------------------------- -' Connect to Discretional ACL (DACL) for domain object -' -------------------------------------------------------------------------------- -Set objRootLDAP = GetObject("LDAP://rootDSE") -strPathToDomain = "LDAP://" & objRootLDAP.Get("defaultNamingContext") ' e.g. string dc=fabrikam,dc=com -Set objDomain = GetObject(strPathToDomain) -WScript.Echo "Accessing object: " + objDomain.Get("distinguishedName") -Set objDescriptor = objDomain.Get("ntSecurityDescriptor") -Set objDacl = objDescriptor.DiscretionaryAcl - -' -------------------------------------------------------------------------------- -' Add the ACEs to the Discretionary ACL (DACL) and set the DACL -' -------------------------------------------------------------------------------- -objDacl.AddAce objAce1 -objDescriptor.DiscretionaryAcl = objDacl -objDomain.Put "ntSecurityDescriptor", Array(objDescriptor) -objDomain.SetInfo -WScript.Echo "SUCCESS!" -``` - -### List-ACEs.vbs - -This script lists or removes the ACEs that are configured on BitLocker and TPM schema objects for the top-level domain. This enables you to verify that the expected ACEs have been added appropriately or to remove any ACEs that are related to BitLocker or the TPM, if necessary. - -``` syntax -'=============================================================================== -' -' This script lists the access control entries (ACE's) configured on -' Trusted Platform Module (TPM) and BitLocker Drive Encryption (BDE) schema objects -' for the top-level domain. -' -' You can use this script to check that the correct permissions have been set and -' to remove TPM and BitLocker ACE's from the top-level domain. -' -' -' Last Updated: 12/05/2012 -' Last Reviewed: 12/02/2012 -' -' Microsoft Corporation -' -' Disclaimer -' -' The sample scripts are not supported under any Microsoft standard support program -' or service. The sample scripts are provided AS IS without warranty of any kind. -' Microsoft further disclaims all implied warranties including, without limitation, -' any implied warranties of merchantability or of fitness for a particular purpose. -' The entire risk arising out of the use or performance of the sample scripts and -' documentation remains with you. In no event shall Microsoft, its authors, or -' anyone else involved in the creation, production, or delivery of the scripts be -' liable for any damages whatsoever (including, without limitation, damages for loss -' of business profits, business interruption, loss of business information, or -' other pecuniary loss) arising out of the use of or inability to use the sample -' scripts or documentation, even if Microsoft has been advised of the possibility -' of such damages. -' -' Version 1.0.2 - Tested and re-released for Windows 8 and Windows Server 2012 -' -'=============================================================================== -' -------------------------------------------------------------------------------- -' Usage -' -------------------------------------------------------------------------------- -Sub ShowUsage - Wscript.Echo "USAGE: List-ACEs" - Wscript.Echo "List access permissions for BitLocker and TPM schema objects" - Wscript.Echo "" - Wscript.Echo "USAGE: List-ACEs -remove" - Wscript.Echo "Removes access permissions for BitLocker and TPM schema objects" - WScript.Quit -End Sub -' -------------------------------------------------------------------------------- -' Parse Arguments -' -------------------------------------------------------------------------------- -Set args = WScript.Arguments -Select Case args.Count - - Case 0 - ' do nothing - checks for ACE's - removeACE = False - - Case 1 - If args(0) = "/?" Or args(0) = "-?" Then - ShowUsage - Else - If UCase(args(0)) = "-REMOVE" Then - removeACE = True - End If - End If - Case Else - ShowUsage -End Select -' -------------------------------------------------------------------------------- -' Configuration of the filter to show/remove only ACE's for BDE and TPM objects -' -------------------------------------------------------------------------------- -'- ms-TPM-OwnerInformation attribute -SCHEMA_GUID_MS_TPM_OWNERINFORMATION = "{AA4E1A6D-550D-4E05-8C35-4AFCB917A9FE}" -'- ms-FVE-RecoveryInformation object -SCHEMA_GUID_MS_FVE_RECOVERYINFORMATION = "{EA715D30-8F53-40D0-BD1E-6109186D782C}" -' Use this filter to list/remove only ACEs related to TPM and BitLocker -aceGuidFilter = Array(SCHEMA_GUID_MS_TPM_OWNERINFORMATION, _ - SCHEMA_GUID_MS_FVE_RECOVERYINFORMATION) -' Note to script source reader: -' Uncomment the following line to turn off the filter and list all ACEs -'aceGuidFilter = Array() -' -------------------------------------------------------------------------------- -' Helper functions related to the list filter for listing or removing ACE's -' -------------------------------------------------------------------------------- -Function IsFilterActive() - If Join(aceGuidFilter) = "" Then - IsFilterActive = False - Else - IsFilterActive = True - End If -End Function -Function isAceWithinFilter(ace) - aceWithinFilter = False ' assume first not pass the filter - For Each guid In aceGuidFilter - If ace.ObjectType = guid Or ace.InheritedObjectType = guid Then - isAceWithinFilter = True - End If - Next -End Function -Sub displayFilter - For Each guid In aceGuidFilter - WScript.echo guid - Next -End Sub -' -------------------------------------------------------------------------------- -' Connect to Discretional ACL (DACL) for domain object -' -------------------------------------------------------------------------------- -Set objRootLDAP = GetObject("LDAP://rootDSE") -strPathToDomain = "LDAP://" & objRootLDAP.Get("defaultNamingContext") ' e.g. dc=fabrikam,dc=com -Set domain = GetObject(strPathToDomain) -WScript.Echo "Accessing object: " + domain.Get("distinguishedName") -WScript.Echo "" -Set descriptor = domain.Get("ntSecurityDescriptor") -Set dacl = descriptor.DiscretionaryAcl -' -------------------------------------------------------------------------------- -' Show Access Control Entries (ACE's) -' -------------------------------------------------------------------------------- -' Loop through the existing ACEs, including all ACEs if the filter is not active -i = 1 ' global index -c = 0 ' found count - relevant if filter is active -For Each ace In dacl - If IsFilterActive() = False or isAceWithinFilter(ace) = True Then - ' note to script source reader: - ' echo i to show the index of the ACE - - WScript.echo "> AceFlags: " & ace.AceFlags - WScript.echo "> AceType: " & ace.AceType - WScript.echo "> Flags: " & ace.Flags - WScript.echo "> AccessMask: " & ace.AccessMask - WScript.echo "> ObjectType: " & ace.ObjectType - WScript.echo "> InheritedObjectType: " & ace.InheritedObjectType - WScript.echo "> Trustee: " & ace.Trustee - WScript.echo "" - if IsFilterActive() = True Then - c = c + 1 - ' optionally include this ACE in removal list if configured - ' note that the filter being active is a requirement since we don't - ' want to accidentally remove all ACEs - If removeACE = True Then - dacl.RemoveAce ace - End If - end if - End If - i = i + 1 -Next -' Display number of ACEs found -If IsFilterActive() = True Then - WScript.echo c & " ACE(s) found in " & domain.Get("distinguishedName") _ - & " related to BitLocker and TPM" 'note to script source reader: change this line if you configure your own -filter - ' note to script source reader: - ' uncomment the following lines if you configure your own filter - 'WScript.echo "" - 'WScript.echo "The following filter was active: " - 'displayFilter - 'Wscript.echo "" -Else - i = i - 1 - WScript.echo i & " total ACE(s) found in " & domain.Get("distinguishedName") - -End If -' -------------------------------------------------------------------------------- -' Optionally remove ACE's on a filtered list -' -------------------------------------------------------------------------------- -if removeACE = True and IsFilterActive() = True then - descriptor.DiscretionaryAcl = dacl - domain.Put "ntSecurityDescriptor", Array(descriptor) - domain.setInfo - WScript.echo c & " ACE(s) removed from " & domain.Get("distinguishedName") -else - if removeACE = True then - WScript.echo "You must specify a filter to remove ACEs from " & domain.Get("distinguishedName") - - end if -end if -``` - -### Get-TPMOwnerInfo.vbs - -This script retrieves TPM recovery information from AD DS for a particular computer so that you can verify that only domain administrators (or delegated roles) can read backed up TPM recovery information and verify that the information is being backed up correctly. - -``` syntax -'================================================================================= -' -' This script demonstrates the retrieval of Trusted Platform Module (TPM) -' recovery information from Active Directory for a particular computer. -' -' It returns the TPM owner information stored as an attribute of a -' computer object. -' -' Last Updated: 12/05/2012 -' Last Reviewed: 12/05/2012 -' -' Microsoft Corporation -' -' Disclaimer -' -' The sample scripts are not supported under any Microsoft standard support program -' or service. The sample scripts are provided AS IS without warranty of any kind. -' Microsoft further disclaims all implied warranties including, without limitation, -' any implied warranties of merchantability or of fitness for a particular purpose. -' The entire risk arising out of the use or performance of the sample scripts and -' documentation remains with you. In no event shall Microsoft, its authors, or -' anyone else involved in the creation, production, or delivery of the scripts be -' liable for any damages whatsoever (including, without limitation, damages for loss -' of business profits, business interruption, loss of business information, or -' other pecuniary loss) arising out of the use of or inability to use the sample -' scripts or documentation, even if Microsoft has been advised of the possibility -' of such damages. -' -' Version 1.0 - Initial release -' Version 1.1 - Updated GetStrPathToComputer to search the global catalog. -' Version 1.1.2 - Tested and re-released for Windows 8 and Windows Server 2012 -' -'================================================================================= -' -------------------------------------------------------------------------------- -' Usage -' -------------------------------------------------------------------------------- -Sub ShowUsage - Wscript.Echo "USAGE: Get-TpmOwnerInfo [Optional Computer Name]" - Wscript.Echo "If no computer name is specified, the local computer is assumed." - WScript.Quit -End Sub -' -------------------------------------------------------------------------------- -' Parse Arguments -' -------------------------------------------------------------------------------- -Set args = WScript.Arguments -Select Case args.Count - - Case 0 - ' Get the name of the local computer - Set objNetwork = CreateObject("WScript.Network") - strComputerName = objNetwork.ComputerName - - Case 1 - If args(0) = "/?" Or args(0) = "-?" Then - ShowUsage - Else - strComputerName = args(0) - End If - - Case Else - ShowUsage -End Select -' -------------------------------------------------------------------------------- -' Get path to Active Directory computer object associated with the computer name -' -------------------------------------------------------------------------------- -Function GetStrPathToComputer(strComputerName) - ' Uses the global catalog to find the computer in the forest - ' Search also includes deleted computers in the tombstone - Set objRootLDAP = GetObject("LDAP://rootDSE") - namingContext = objRootLDAP.Get("defaultNamingContext") ' e.g. string dc=fabrikam,dc=com - strBase = "" - - Set objConnection = CreateObject("ADODB.Connection") - Set objCommand = CreateObject("ADODB.Command") - objConnection.Provider = "ADsDSOOBject" - objConnection.Open "Active Directory Provider" - Set objCommand.ActiveConnection = objConnection - strFilter = "(&(objectCategory=Computer)(cn=" & strComputerName & "))" - strQuery = strBase & ";" & strFilter & ";distinguishedName;subtree" - objCommand.CommandText = strQuery - objCommand.Properties("Page Size") = 100 - objCommand.Properties("Timeout") = 100 - objCommand.Properties("Cache Results") = False - ' Enumerate all objects found. - Set objRecordSet = objCommand.Execute - If objRecordSet.EOF Then - WScript.echo "The computer name '" & strComputerName & "' cannot be found." - WScript.Quit 1 - End If - ' Found object matching name - Do Until objRecordSet.EOF - dnFound = objRecordSet.Fields("distinguishedName") - GetStrPathToComputer = "LDAP://" & dnFound - objRecordSet.MoveNext - Loop - ' Clean up. - Set objConnection = Nothing - Set objCommand = Nothing - Set objRecordSet = Nothing -End Function -' -------------------------------------------------------------------------------- -' Securely access the Active Directory computer object using Kerberos -' -------------------------------------------------------------------------------- -Set objDSO = GetObject("LDAP:") -strPath = GetStrPathToComputer(strComputerName) -WScript.Echo "Accessing object: " + strPath -Const ADS_SECURE_AUTHENTICATION = 1 -Const ADS_USE_SEALING = 64 '0x40 -Const ADS_USE_SIGNING = 128 '0x80 -Set objComputer = objDSO.OpenDSObject(strPath, vbNullString, vbNullString, _ - ADS_SECURE_AUTHENTICATION + ADS_USE_SEALING + ADS_USE_SIGNING) -' -------------------------------------------------------------------------------- -' Get the TPM owner information from the Active Directory computer object -' -------------------------------------------------------------------------------- -strOwnerInformation = objComputer.Get("msTPM-OwnerInformation") -WScript.echo "msTPM-OwnerInformation: " + strOwnerInformation -``` - -## Additional resources - -- [Trusted Platform Module technology overview](trusted-platform-module-overview.md) -- [TPM fundamentals](tpm-fundamentals.md) -- [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) -- [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -- [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md) -- [Prepare your organization for BitLocker: Planning and Policies](http://technet.microsoft.com/library/jj592683.aspx), see TPM considerations +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) +- [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) \ No newline at end of file diff --git a/windows/keep-secure/basic-audit-logon-events.md b/windows/keep-secure/basic-audit-logon-events.md index 143c150317..dd0764f2b5 100644 --- a/windows/keep-secure/basic-audit-logon-events.md +++ b/windows/keep-secure/basic-audit-logon-events.md @@ -22,6 +22,8 @@ If you define this policy setting, you can specify whether to audit successes, a To set this value to **No auditing**, in the **Properties** dialog box for this policy setting, select the **Define these policy settings** check box and clear the **Success** and **Failure** check boxes. +For information about advanced security policy settings for logon events, see the [Logon/logoff](advanced-security-audit-policy-settings.md#logonlogoff) section in [Advanced security audit policy settings](advanced-security-audit-policy-settings.md). + ## Configure this audit setting You can configure this security setting by opening the appropriate policy under Computer Configuration\\Windows Settings\\Security Settings\\Local Policies\\Audit Policy. diff --git a/windows/keep-secure/bitlocker-basic-deployment.md b/windows/keep-secure/bitlocker-basic-deployment.md index b83692c713..fbc016705b 100644 --- a/windows/keep-secure/bitlocker-basic-deployment.md +++ b/windows/keep-secure/bitlocker-basic-deployment.md @@ -40,7 +40,7 @@ BitLocker encryption can be done using the following methods: ### Encrypting volumes using the BitLocker control panel -Encrypting volumes with the BitLocker control panel is how many users will utilize BitLocker. The name of the BitLocker control panel is BitLocker Drive Encryption. The BitLocker control panel supports encrypting operating system, fixed data and removable data volumes. The BitLocker control panel will organize available drives in the appropriate category based on how the device reports itself to Windows. Only formatted volumes with assigned drive letters will appear properly in the BitLocker control panel applet. +Encrypting volumes with the BitLocker control panel (click **Start**, type **bitlocker**, click **Manage BitLocker**) is how many users will utilize BitLocker. The name of the BitLocker control panel is BitLocker Drive Encryption. The BitLocker control panel supports encrypting operating system, fixed data and removable data volumes. The BitLocker control panel will organize available drives in the appropriate category based on how the device reports itself to Windows. Only formatted volumes with assigned drive letters will appear properly in the BitLocker control panel applet. To start encryption for a volume, select **Turn on BitLocker** for the appropriate drive to initialize the BitLocker Drive Encryption Wizard. BitLocker Drive Encryption Wizard options vary based on volume type (operating system volume or data volume). ### Operating system volume diff --git a/windows/keep-secure/bitlocker-countermeasures.md b/windows/keep-secure/bitlocker-countermeasures.md index 7e1f6c7414..89261d666c 100644 --- a/windows/keep-secure/bitlocker-countermeasures.md +++ b/windows/keep-secure/bitlocker-countermeasures.md @@ -23,9 +23,9 @@ The sections that follow provide more detailed information about the different t ### Protection before startup -Before Windows starts, you must rely on security features implemented as part of the device hardware, including TPM andSecure Boot. Fortunately, many modern computers feature TPM. +Before Windows starts, you must rely on security features implemented as part of the device hardware, including TPM and Secure Boot. Fortunately, many modern computers feature TPM. -**Trusted Platform Module** +#### Trusted Platform Module Software alone isn’t sufficient to protect a system. After an attacker has compromised software, the software might be unable to detect the compromise. Therefore, a single successful software compromise results in an untrusted system that might never be detected. Hardware, however, is much more difficult to modify. @@ -33,7 +33,7 @@ A TPM is a microchip designed to provide basic security-related functions, prima By binding the BitLocker encryption key with the TPM and properly configuring the device, it’s nearly impossible for an attacker to gain access to the BitLocker-encrypted data without obtaining an authorized user’s credentials. Therefore, computers with a TPM can provide a high level of protection against attacks that attempt to directly retrieve the BitLocker encryption key. For more info about TPM, see [Trusted Platform Module](trusted-platform-module-overview.md). -**UEFI and Secure Boot** +#### UEFI and Secure Boot No operating system can protect a device when the operating system is offline. For that reason, Microsoft worked closely with hardware vendors to require firmware-level protection against boot and rootkits that might compromise an encryption solution’s encryption keys. @@ -53,7 +53,7 @@ Using the digital signature, UEFI verifies that the bootloader was signed using If the bootloader passes these two tests, UEFI knows that the bootloader isn’t a bootkit and starts it. At this point, Trusted Boot takes over, and the Windows bootloader, using the same cryptographic technologies that UEFI used to verify the bootloader, then verifies that the Windows system files haven’t been changed. -All Windows 8–certified devices must meet several requirements related to UEFI-based Secure Boot: +Starting with Windows 8, certified devices must meet several requirements related to UEFI-based Secure Boot: - They must have Secure Boot enabled by default. - They must trust Microsoft’s certificate (and thus any bootloader Microsoft has signed). diff --git a/windows/keep-secure/bitlocker-frequently-asked-questions.md b/windows/keep-secure/bitlocker-frequently-asked-questions.md index 6e3ae93c32..5761c7318a 100644 --- a/windows/keep-secure/bitlocker-frequently-asked-questions.md +++ b/windows/keep-secure/bitlocker-frequently-asked-questions.md @@ -47,6 +47,8 @@ Yes, BitLocker supports multifactor authentication for operating system drives. ### What are the BitLocker hardware and software requirements? +For requirements, see [System requirements](https://technet.microsoft.com/itpro/windows/keep-secure/bitlocker-overview#system-requirements). + > **Note:**  Dynamic disks are not supported by BitLocker. Dynamic data volumes will not be displayed in the Control Panel. Although the operating system volume will always be displayed in the Control Panel, regardless of whether it is a Dynamic disk, if it is a dynamic disk it is cannot be protected by BitLocker.   ### Why are two partitions required? Why does the system drive have to be so large? @@ -198,9 +200,9 @@ Any number of internal, fixed data drives can be protected with BitLocker. On so ## Key management -### What is the difference between a TPM owner password, recovery password, recovery key, password, PIN, enhanced PIN, and startup key? +### What is the difference between a recovery password, recovery key, PIN, enhanced PIN, and startup key? -There are multiple keys that can be generated and used by BitLocker. Some keys are required and some are optional protectors you can choose to use depending on the level of security you require. +For tables that list and describe elements such as a recovery password, recovery key, and PIN, see [BitLocker key protectors](prepare-your-organization-for-bitlocker-planning-and-policies.md#bitlocker-key-protectors) and [BitLocker authentication methods](prepare-your-organization-for-bitlocker-planning-and-policies.md#bitlocker-authentication-methods). ### How can the recovery password and recovery key be stored? diff --git a/windows/keep-secure/bitlocker-group-policy-settings.md b/windows/keep-secure/bitlocker-group-policy-settings.md index 8d3864a681..26cadf522b 100644 --- a/windows/keep-secure/bitlocker-group-policy-settings.md +++ b/windows/keep-secure/bitlocker-group-policy-settings.md @@ -1509,7 +1509,6 @@ If the **Require BitLocker backup to AD DS** option is not selected, AD DS bac TPM initialization might be needed during the BitLocker setup. Enable the **Turn on TPM backup to Active Directory Domain Services** policy setting in **Computer Configuration\\Administrative Templates\\System\\Trusted Platform Module Services** to ensure that TPM information is also backed up. For more information about this setting, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md). -If you are using domain controllers running Windows Server 2003 with Service Pack 1, you must first set up appropriate schema extensions and access control settings on the domain before a backup to AD DS can succeed. For more info, see [Backup the TPM recovery Information to AD DS](backup-tpm-recovery-information-to-ad-ds.md). ### Choose default folder for recovery password diff --git a/windows/keep-secure/bitlocker-how-to-deploy-on-windows-server.md b/windows/keep-secure/bitlocker-how-to-deploy-on-windows-server.md index e57e269aff..8a9e7b2ab7 100644 --- a/windows/keep-secure/bitlocker-how-to-deploy-on-windows-server.md +++ b/windows/keep-secure/bitlocker-how-to-deploy-on-windows-server.md @@ -14,7 +14,7 @@ author: brianlic-msft **Applies to** - Windows 10 -This topic for the IT professional explains how to deploy BitLocker and Windows Server 2012 and later. +This topic for the IT professional explains how to deploy BitLocker on Windows Server 2012 and later. For all Windows Server editions, BitLocker must be installed using Server Manager. However, you can still provision BitLocker before the server operating system is installed as part of your deployment. diff --git a/windows/keep-secure/bitlocker-how-to-enable-network-unlock.md b/windows/keep-secure/bitlocker-how-to-enable-network-unlock.md index 0155f5ed15..337c4d39e8 100644 --- a/windows/keep-secure/bitlocker-how-to-enable-network-unlock.md +++ b/windows/keep-secure/bitlocker-how-to-enable-network-unlock.md @@ -231,7 +231,7 @@ The following steps detail how to create a certificate template for use with Bit 1. Open the Certificates Template snap-in (certtmpl.msc). 2. Locate the User template. Right-click the template name and select **Duplicate Template**. -3. On the **Compatibility** tab, change the **Certification Authority** and **Certificate recipient** fields to Windows Server 2012 and Windows 8respectively. Ensure the **Show resulting changes** dialog box is selected. +3. On the **Compatibility** tab, change the **Certification Authority** and **Certificate recipient** fields to Windows Server 2012 and Windows 8 respectively. Ensure the **Show resulting changes** dialog box is selected. 4. Select the **General** tab of the template. The **Template display name** and **Template name** should clearly identify that the template will be used for Network Unlock. Clear the checkbox for the **Publish certificate in Active Directory** option. 5. Select the **Request Handling** tab. Select **Encryption** from the **Purpose** drop down menu. Ensure the **Allow private key to be exported** option is selected. 6. Select the **Cryptography** tab. Set the **Minimum key size** to 2048. (Any Microsoft cryptographic provider that supports RSA can be used for this template, but for simplicity and forward compatibility we recommend using the **Microsoft Software Key Storage Provider**.) diff --git a/windows/keep-secure/bitlocker-overview.md b/windows/keep-secure/bitlocker-overview.md index 2921e55f01..2ffb869b8f 100644 --- a/windows/keep-secure/bitlocker-overview.md +++ b/windows/keep-secure/bitlocker-overview.md @@ -42,7 +42,7 @@ BitLocker control panel, and they are appropriate to use for automated deploymen ## New and changed functionality -To find out what's new in BitLocker for Windows 10, see [What's new in BitLocker?](../whats-new/bitlocker.md) +To find out what's new in BitLocker for Windows 10, see the [BitLocker](https://technet.microsoft.com/itpro/windows/whats-new/whats-new-windows-10-version-1507-and-1511#bitlocker) section in "What's new in Windows 10, versions 1507 and 1511."   ## System requirements @@ -74,9 +74,10 @@ When installing the BitLocker optional component on a server you will also need | [BitLocker: How to enable Network Unlock](bitlocker-how-to-enable-network-unlock.md) | This topic for the IT professional describes how BitLocker Network Unlock works and how to configure it. | | [BitLocker: Use BitLocker Drive Encryption Tools to manage BitLocker](bitlocker-use-bitlocker-drive-encryption-tools-to-manage-bitlocker.md)| This topic for the IT professional describes how to use tools to manage BitLocker.| | [BitLocker: Use BitLocker Recovery Password Viewer](bitlocker-use-bitlocker-recovery-password-viewer.md) | This topic for the IT professional describes how to use the BitLocker Recovery Password Viewer. | +| [BitLocker Group Policy settings](bitlocker-group-policy-settings.md) | This topic for IT professionals describes the function, location, and effect of each Group Policy setting that is used to manage BitLocker. | | [BCD settings and BitLocker](bcd-settings-and-bitlocker.md) | This topic for IT professionals describes the BCD settings that are used by BitLocker.| | [BitLocker Recovery Guide](bitlocker-recovery-guide-plan.md)| This topic for IT professionals describes how to recover BitLocker keys from AD DS. | | [Protect BitLocker from pre-boot attacks](protect-bitlocker-from-pre-boot-attacks.md)| This detailed guide will help you understand the circumstances under which the use of pre-boot authentication is recommended for devices running Windows 10, Windows 8.1, Windows 8, or Windows 7; and when it can be safely omitted from a device’s configuration. | | [Protecting cluster shared volumes and storage area networks with BitLocker](protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md)| This topic for IT pros describes how to protect CSVs and SANs with BitLocker.| -If you're looking for info on how to use it with Windows 10 IoT Core, see [Enabling Secure Boot and BitLocker Device Encryption on Windows 10 IoT Core](https://developer.microsoft.com/windows/iot/win10/SB_BL.htm). \ No newline at end of file +If you're looking for info on how to use it with Windows 10 IoT Core, see [Enabling Secure Boot and BitLocker Device Encryption on Windows 10 IoT Core](https://developer.microsoft.com/windows/iot/docs/securebootandbitlocker). \ No newline at end of file diff --git a/windows/keep-secure/change-history-for-keep-windows-10-secure.md b/windows/keep-secure/change-history-for-keep-windows-10-secure.md index 759d44b4af..e5a7805ddf 100644 --- a/windows/keep-secure/change-history-for-keep-windows-10-secure.md +++ b/windows/keep-secure/change-history-for-keep-windows-10-secure.md @@ -12,6 +12,20 @@ author: brianlic-msft # Change history for Keep Windows 10 secure This topic lists new and updated topics in the [Keep Windows 10 secure](index.md) documentation for [Windows 10 and Windows 10 Mobile](../index.md). +## January 2017 +|New or changed topic |Description | +|---------------------|------------| +|[Determine the Enterprise Context of an app running in Windows Information Protection (WIP)](wip-app-enterprise-context.md) |New | +|[Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) |Updated to include info about USB drives and Azure RMS (Windows Insider Program only) and to add more info about Work Folders and Offline files. | +|[Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP)](recommended-network-definitions-for-wip.md) |New | +|[Using Outlook Web Access with Windows Information Protection (WIP)](using-owa-with-wip.md) |New | + +## December 2016 +|New or changed topic |Description | +|---------------------|------------| +|[Create WMI Filters for the GPO](create-wmi-filters-for-the-gpo.md) |Added filter examples for Windows 10 and Windows Server 2016. | + + ## November 2016 | New or changed topic | Description | | --- | --- | diff --git a/windows/keep-secure/change-the-system-time.md b/windows/keep-secure/change-the-system-time.md index e6f43e3f88..0ca13c1625 100644 --- a/windows/keep-secure/change-the-system-time.md +++ b/windows/keep-secure/change-the-system-time.md @@ -1,5 +1,5 @@ --- -title: Change the system time (Windows 10) +title: Change the system time - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Change the system time security policy setting. ms.assetid: f2f6637d-acbc-4352-8ca3-ec563f918e65 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Change the system time +# Change the system time - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/change-the-time-zone.md b/windows/keep-secure/change-the-time-zone.md index 3eb72473a5..50067366d5 100644 --- a/windows/keep-secure/change-the-time-zone.md +++ b/windows/keep-secure/change-the-time-zone.md @@ -1,5 +1,5 @@ --- -title: Change the time zone (Windows 10) +title: Change the time zone - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Change the time zone security policy setting. ms.assetid: 3b1afae4-68bb-472f-a43e-49e300d73e50 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Change the time zone +# Change the time zone - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/change-the-tpm-owner-password.md b/windows/keep-secure/change-the-tpm-owner-password.md index 50d9175eb2..a8b0e386d3 100644 --- a/windows/keep-secure/change-the-tpm-owner-password.md +++ b/windows/keep-secure/change-the-tpm-owner-password.md @@ -12,52 +12,35 @@ author: brianlic-msft # Change the TPM owner password **Applies to** -- Windows 10 +- Windows 10, version 1511 +- Windows 10, version 1507 This topic for the IT professional describes how to change the password or PIN for the owner of the Trusted Platform Module (TPM) that is installed on your system. ## About the TPM owner password -Starting with Windows 10, version 1607 , Windows will not retain the TPM owner password when provisioning the TPM. The password will be set to a random high entropy value and then discarded. -In order to retain the TPM owner password, you will need to set the registry key 'HKLM\Software\Policies\Microsoft\TPM' [REG_DWORD] 'OSManagedAuthLevel' to 4. The default value for this key is 2, and unless it is changed to 4 before the TPM is provisioned, the owner password will not be saved. Microsoft strongly recommends that you do not change the default value of this registry key in order to retain the owner password. +Starting with Windows 10, version 1607, Windows will not retain the TPM owner password when provisioning the TPM. The password will be set to a random high entropy value and then discarded. -Only one owner password exists for each TPM. The TPM owner password allows the ability to enable, disable, or clear the TPM without having physical access to the computer, for example, by using the command-line tools remotely. The TPM owner password also allows manipulation of the TPM dictionary attack logic. Taking ownership of the TPM is performed by Windows as part of the provisioning process on each boot. Ownership can change when you share the password or clear your ownership of the TPM so someone else can initialize it. +> [!IMPORTANT] +> Although the TPM owner password is not retained starting with Windows 10, version 1607, you can change a default registry key to retain it. However, we strongly recommend that you do not make this change. To retain the TPM owner password, set the registry key 'HKLM\\Software\\Policies\\Microsoft\\TPM' \[REG\_DWORD\] 'OSManagedAuthLevel' to 4. The default value for this key is 2, and unless it is changed to 4 before the TPM is provisioned, the owner password will not be saved. + +Only one owner password exists for each TPM. The TPM owner password allows the ability to enable, disable, or clear the TPM without having physical access to the computer, for example, by using the command-line tools remotely. The TPM owner password also allows manipulation of the TPM dictionary attack logic. Taking ownership of the TPM is performed by Windows as part of the provisioning process on each boot. Ownership can change when you share the password or clear your ownership of the TPM so someone else can initialize it. Without the owner password you can still perform all the preceding actions by means of a physical presence confirmation from UEFI. -**Other TPM management options** +### Other TPM management options Instead of changing your owner password, you can also use the following options to manage your TPM: -- **Clear the TPM**   If you want to invalidate all of the existing keys that have been created since you took ownership of the TPM, you can clear it. For more info, see [Initialize and Configure Ownership of the TPM](initialize-and-configure-ownership-of-the-tpm.md#bkmk-clear1). +- **Clear the TPM**   If you want to invalidate all of the existing keys that have been created since you took ownership of the TPM, you can clear it. For important precautions for this process, and instructions for completing it, see [Clear all the keys from the TPM](initialize-and-configure-ownership-of-the-tpm.md#clear-all-the-keys-from-the-tpm). - >**Important:**  Clearing the TPM can result in the loss of data. To avoid data loss, make sure you have a backup or recovery method for any data protected or encrypted by the TPM. -   -- **Turn off the TPM**   If you want to keep all existing keys and data intact, and you want to disable the services that are provided by the TPM, you can turn it off. For more info, see [Initialize and Configure Ownership of the TPM](initialize-and-configure-ownership-of-the-tpm.md#bkmk-onoff). This option is only available for TPM 1.2. +- **Turn off the TPM**   With TPM 1.2 and Windows 10, versions 1507 and 1511, you can turn off the TPM. Do this if you want to keep all existing keys and data intact and disable the services that are provided by the TPM. For more info, see [Turn off the TPM](initialize-and-configure-ownership-of-the-tpm.md#turn-off-the-tpm). ## Change the TPM owner password -The following procedure provides the steps that are necessary to change the TPM owner password. +With Windows 10, version 1507 or 1511, if you have opted specifically to preserve the TPM owner password, you can use the saved password to change to a new password. -**To change the TPM owner password** - -If you have opted specifically to preserve the TPM owner password, you can use the saved password to change to a new password. - -1. Open the TPM MMC (tpm.msc). If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. -2. In the **Actions** pane, click **Change Owner Password**. -3. In the **Manage the TPM security hardware** dialog box, select a method to enter your current TPM owner password. - - - If you saved your TPM owner password on a removable storage device, insert it, and then click **I have the owner password file**. In the **Select backup file with the TPM owner password** dialog box, use **Browse** to navigate to the .tpm file that is saved on your removable storage device. Click **Open**, and then click **Create New Password**. - - If you do not have the removable storage device with your saved password, click **I want to enter the owner password**. In the **Type your TPM owner password** dialog box, enter your password (including hyphens), and click **Create New Password**. -4. On the **Create the TPM owner password** page, select a method for creating a new TPM owner password. - - 1. Click **Automatically create the password** to have a new owner password generated for you. - 2. Click **Manually create the password** if you want to specify a password. - >**Note:**  The TPM owner password must have a minimum of eight characters. -   -5. After the new password is created, you can choose **Save the password** to save the password in a password backup file on a removable storage device or **Print the password** to print a copy of the password for later reference. - -6. Click **Change password** to apply the new owner password to the TPM. +To change to a new TPM owner password, in TPM.msc, click **Change Owner Password**, and follow the instructions. You will be prompted to provide the owner password file or to type the password. Then you can create a new password, either automatically or manually, and save the password in a file or as a printout. ## Use the TPM cmdlets @@ -66,6 +49,6 @@ If you are using Windows PowerShell to manage your computers, you can also manag For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). -## Additional resources +## Related topics -For more info about TPM, see [Trusted Platform Module technology overview](trusted-platform-module-overview.md#bkmk-additionalresources). +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) diff --git a/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md b/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md index 402c01f733..241eadd7f7 100644 --- a/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md +++ b/windows/keep-secure/choose-the-right-bitlocker-countermeasure.md @@ -17,19 +17,105 @@ author: brianlic-msft This section outlines the best countermeasures you can use to protect your organization from bootkits and rootkits, brute force sign-in, Direct Memory Access (DMA) attacks, Hyberfil.sys attacks, and memory remanence attacks. You can use BitLocker to protect your Windows 10 PCs. Whichever operating system you’re using, Microsoft and Windows-certified devices provide countermeasures to address attacks and improve your data security. In most cases, this protection can be implemented without the need for pre-boot authentication. -Figures 2, 3, and 4 summarize the recommended mitigations for different types of attacks against PCs running recent versions of Windows. The orange blocks indicate that the system requires additional configuration from the default -settings. +Tables 1 and 2 summarize the recommended mitigations for different types of attacks against PCs running recent versions of Windows. The orange blocks indicate that the system requires additional configuration from the default settings. -![how to choose best countermeasures for windows 7](images/bitlockerprebootprotection-counterwin7.jpg) + +++++ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
    +

    Windows 8.1
    without TPM

    +

    Windows 8.1 Certified
    (with TPM)

    +

    Bootkits and
    Rootkits

    Without TPM, boot integrity checking is not available

    Secure by default when UEFI-based Secure Boot is enabled and a firmware password is required to change settings

    +

    Brute Force
    Sign-in

    Secure by default, and can be improved with account lockout Group Policy

    Secure by default, and can be improved with account lockout and device lockout Group Policy settings

    +

    DMA
    Attacks

    If policy is deployed, secure by default for all lost or stolen devices because new DMA devices are granted access only when an authorized user is signed in

    If policy is deployed, secure by default for all lost or stolen devices because new DMA devices are granted access only when an authorized user is signed in

    +

    Hyberfil.sys
    Attacks

    Secure by default; hyberfil.sys secured on encrypted volume

    Secure by default; hyberfil.sys secured on encrypted volume

    +

    Memory
    Remanence
    Attacks

    Password protect the firmware and disable booting from external media. If an attack is viable, consider pre-boot authentication

    Password protect the firmware and ensure Secure Boot is enabled. If an attack is viable, consider pre-boot authentication

    +**Table 1.**  How to choose the best countermeasures for Windows 8.1

    -![how to choose countermeasures for windows 8](images/bitlockerprebootprotection-counterwin8.jpg) + +++++ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
    +

    Windows 10
    without TPM

    +

    Windows 10 Certified
    (with TPM)

    +

    Bootkits and
    Rootkits

    Without TPM, boot integrity checking is not available

    Secure by default when UEFI-based Secure Boot is enabled and a firmware password is required to change settings

    +

    Brute Force
    Sign-in

    Secure by default, and can be improved with account lockout Group Policy

    Secure by default, and can be improved with account lockout and device lockout Group Policy settings

    +

    DMA
    Attacks

    If policy is deployed, secure by default for all lost or stolen devices because new DMA devices are granted access only when an authorized user is signed in

    Secure by default; certified devices do not expose vulnerable DMA busses.
    Can be additionally secured by deploying policy to restrict DMA devices:

    + +
    +

    Hyberfil.sys
    Attacks

    Secure by default; hyberfil.sys secured on encrypted volume

    Secure by default; hyberfil.sys secured on encrypted volume

    +

    Memory
    Remanence
    Attacks

    Password protect the firmware and disable booting from external media. If an attack is viable, consider pre-boot authentication

    Password protect the firmware and ensure Secure Boot is enabled.
    The most effective mitigation, which we advise for high-security devices, is to configure a TPM+PIN protector, disable Standby power management, and shut down or hibernate the device before it leaves the control of an authorized user.

    -**Figure 3.** How to choose the best countermeasures for Windows 8 - -![how to choose countermeasures for windows 8.1](images/bitlockerprebootprotection-counterwin81.jpg) - -**Figure 4.** How to choose the best countermeasures for Windows 8.1 +**Table 2.**  How to choose the best countermeasures for Windows 10 The latest InstantGo devices, primarily tablets, are designed to be secure by default against all attacks that might compromise the BitLocker encryption key. Other Windows devices can be, too. DMA port–based attacks, which represent the attack vector of choice, are not possible on InstantGo devices, because these port types are prohibited. The inclusion of DMA ports on even non-InstantGo devices is extremely rare on recent devices, particularly on mobile ones. This could change if Thunderbolt is broadly adopted, so IT should consider this when purchasing new devices. In any case DMA ports can be disabled entirely, which is an increasingly popular option because the use of DMA ports is infrequent in the non-developer space. diff --git a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md index 65dcdf6805..d7147d12a9 100644 --- a/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-aad-windows-defender-advanced-threat-protection.md @@ -24,7 +24,7 @@ localizationpriority: high You need to add an application in your Azure Active Directory (AAD) tenant then authorize the Windows Defender ATP Alerts Export application to communicate with it so that your security information and events management (SIEM) tool can consume alerts from Windows Defender ATP portal. -1. Login to the [Azure management portal](https://manage.windowsazure.com). +1. Login to the [Azure management portal](https://ms.portal.azure.com). 2. Select **Active Directory**. @@ -53,14 +53,12 @@ You need to add an application in your Azure Active Directory (AAD) tenant then 13. Click **Save** and copy the key in a safe place. You'll need this key to authenticate the client application on Azure Active Directory. -14. Open a web browser and connect to the following URL:
    -```text -https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234 -``` -An Azure login page appears. -> [!NOTE] -> - Replace *tenant ID* with your actual tenant ID. -> - Keep the client secret as is. This is a dummy value, but the parameter must appear. +14. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=f7c1acd8-0458-48a0-a662-dba6de049d1c&tenantId=&clientSecret=1234`
    + + An Azure login page appears. + > [!NOTE] + > - Replace *tenant ID* with your actual tenant ID. + > - Keep the *clientSecret* as is. This is a dummy value, but the parameter must appear. 15. Sign in with the credentials of a user from your tenant. @@ -80,7 +78,37 @@ An Azure login page appears. 23. Save the application changes. -After configuring the application in AAD, you can continue to configure the SIEM tool that you want to use. +After configuring the application in AAD, you'll need to obtain a refresh token. You'll need to use the token when you configure the connector for your SIEM tool in the next steps. The token lets the connector access Windows Defender ATP events to be consumed by your SIEM. + +## Obtain a refresh token using an events URL +Obtain a refresh token used to retrieve the Windows Defender Advanced Threat Protection events to your SIEM. This section provides information on how you can use an events URL to obtain the required refresh token. +>[!NOTE] +>For HP ArcSight, you can obtain a refresh token using the restutil tool. For more information, see [Configure HP ArcSight to consume alerts](configure-arcsight-windows-defender-advanced-threat-protection.md). + +### Before you begin +Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: + + - OAuth 2 Client ID + - OAuth 2 Client secret + +You'll use these values to obtain a refresh token. + +>[!IMPORTANT] +>Before using the OAuth 2 Client secret described in the next steps, you **must** encode it. Use a URL encoder to transform the OAuth 2 client secret. + +### Obtain a refresh token +1. Open a web browser and connect to the following URL: `https://DataAccess-PRD.trafficmanager.net:444/api/FetchToken?clientId=&tenantId=&clientSecret=` + + >[!NOTE] + >- Replace the *client ID* value with the one you got from your AAD application. + >- Replace *tenant ID* with your actual tenant ID. + >- Replace *client secret* with your encoded client secret. The client secret **must** be pasted encoded. + +2. Click **Accept**. When you authenticate, a web page opens with your refresh token. + +3. Save the refresh token which you'll find it the ``value. You'll need this value when configuring your SIEM tool. + +After configuring your AAD application and generating a refresh token, you can proceed to configure your SIEM tool. ## Related topics - [Configure security information and events management (SIEM) tools to consume alerts](configure-siem-windows-defender-advanced-threat-protection.md) diff --git a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md index 614004d2dc..a682992574 100644 --- a/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-arcsight-windows-defender-advanced-threat-protection.md @@ -25,26 +25,36 @@ You'll need to configure HP ArcSight so that it can consume Windows Defender ATP ## Before you begin -- Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: +- Get the following information from your Azure Active Directory (AAD) application by selecting **View Endpoint** on the application configuration page: - OAuth 2 Token refresh URL - OAuth 2 Client ID - OAuth 2 Client secret -- Create your OAUth 2 Client properties file or get it from your Windows Defender ATP contact. For more information, see the ArcSight FlexConnector Developer's guide. +- Download the [WDATP-connector.properties](http://download.microsoft.com/download/3/9/C/39C703C2-487C-4C3E-AFD8-14C2253C2F12/WDATP-connector.properties) file and update the following values: - > [!NOTE] - > **For the authorization URL**: Append the following to the value you got from the AAD app: ```?resource=https%3A%2F%2FWDATPAlertExport.Seville.onmicrosoft.com```
    - > **For the redirect_uri value use**: ```https://localhost:44300/wdatpconnector``` - > -- Get the *wdatp-connector.properties* file from your Windows Defender ATP contact. This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. -- Install the HP ArcSight REST FlexConnector package on a server that has access to the Internet. -- Contact the Windows Defender ATP team to get your refresh token or follow the steps in the section "Run restutil to Obtain a Refresh Token for Connector Appliance/ArcSight Management Center" in the ArcSight FlexConnector Developer's guide. + - **client_ID**: OAuth 2 Client ID + - **client_secret**: OAuth 2 Client secret + - **auth_url**: ```https://login.microsoftonline.com/?resource=https%3A%2F%2FWDATPAlertExport.Seville.onmicrosoft.com ``` + + >[!NOTE] + >Replace *tenantID* with your tenant ID. + + - **token_url**: `https://login.microsoftonline.com//oauth2/token` + + >[!NOTE] + >Replace the *tenantID* value with your tenant ID. + + - **redirect_uri**: ```https://localhost:44300/wdatpconnector``` + - **scope**: Leave the value blank + +- Download the [WDATP-connector.jsonparser.properties](http://download.microsoft.com/download/0/8/A/08A4957D-0923-4353-B25F-395EAE363E8C/WDATP-connector.jsonparser.properties) file. This file is used to parse the information from Windows Defender ATP to HP ArcSight consumable format. +- Install the HP ArcSight REST FlexConnector package. You can find this in the HPE Software center. Install the package on a server that has access to the Internet. ## Configure HP ArcSight -The following steps assume that you have completed all the required steps in [Before you begin](#before-you-begin). +The following steps assume that you have completed all the required steps in [Before you begin](#before-you-begin). For more information, see the ArcSight FlexConnector Developer's guide. -1. Copy the *wdatp-connector.jsonparser.properties* file into the `\current\user\agent\flexagent` folder of the connector installation folder. +1. Save the [WDATP-connector.jsonparser.properties file](http://download.microsoft.com/download/0/8/A/08A4957D-0923-4353-B25F-395EAE363E8C/WDATP-connector.jsonparser.properties) file into the connector installation folder. The -2. Save the *wdatp-connector.properties* file into a folder of your choosing. +2. Save the [WDATP-connector.properties](http://download.microsoft.com/download/3/9/C/39C703C2-487C-4C3E-AFD8-14C2253C2F12/WDATP-connector.properties) file into the `\current\user\agent\flexagent` folder of the connector installation folder. 3. Open an elevated command-line: @@ -69,7 +79,8 @@ The following steps assume that you have completed all the required steps in [Be Type in the name of the client property file. It must match the client property file. Events URL - `https://DataAccess-PRD.trafficmanager.net:444/api/alerts` + Depending on the location of your datacenter, select either the EU or the US URL:

    **For EU**: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts/?sinceTimeUtc=$START_AT_TIME +
    **For US:** https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts/?sinceTimeUtc=$START_AT_TIME Authentication Type OAuth 2 @@ -78,7 +89,8 @@ The following steps assume that you have completed all the required steps in [Be Select *wdatp-connector.properties*. Refresh Token - Paste the refresh token that your Windows Defender ATP contact provided, or run the `restutil` tool to get it. + You can use the Windows Defender ATP events URL or the restutil tool to get obtain a refresh token.
    For more information on getting your refresh token using the events URL, see [Obtain a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#obtain-a-refresh-token).

    **To get your refresh token using the restutil tool:**
    a. Open a command prompt. Navigate to `C:\ArcSightSmartConnectors\\current\bin`.

    b. Type: `arcsight restutil token -config C:\ArcSightSmartConnectors_Prod\WDATP\WDATP-connector.properties`. A Web browser window will open.

    c. Type in your credentials then click on the password field to let the page redirect. In the login prompt, enter your credentials.

    d. A refresh token is shown in the command prompt.

    e. Paste the value in the form. + diff --git a/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md new file mode 100644 index 0000000000..19e99c915d --- /dev/null +++ b/windows/keep-secure/configure-email-notifications-windows-defender-advanced-threat-protection.md @@ -0,0 +1,63 @@ +--- +title: Configure email notifications in Windows Defender ATP +description: Send email notifications to specified recipients to receive new alerts based on severity with Windows Defender ATP on Windows 10 Enterprise, Pro, and Education editions. +keywords: email notifications, configure alert notifications, windows defender atp notifications, windows defender atp alerts, windows 10 enterprise, windows 10 education +search.product: eADQiWindows 10XVcnh +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: security +author: mjcaparas +localizationpriority: high +--- + +# Configure email notifications + +**Applies to:** + +- Windows 10 Enterprise +- Windows 10 Education +- Windows 10 Pro +- Windows 10 Pro Education +- Windows Defender Advanced Threat Protection (Windows Defender ATP) + +You can configure Windows Defender ATP to send email notifications to specified recipients for new alerts. This feature enables you to identify a group of individuals who will immediately be informed and can act on alerts based on their severity. + +> [!NOTE] +> Only users with full access can configure email notifications. + +You can set the alert severity levels that trigger notifications. When you turn enable the email notifications feature, it’s set to high and medium alerts by default. + +You can also add or remove recipients of the email notification. New recipients get notified about alerts encountered after they are added. For more information about alerts, see [View and organize the Alerts queue](alerts-queue-windows-defender-advanced-threat-protection.md). + +The email notification includes basic information about the alert and a link to the portal where you can do further investigation. + +## Set up email notifications for alerts +The email notifications feature is turned off by default. Turn it on to start receiving email notifications. + +1. On the navigation pane, select **Preferences Setup** > **Email Notifications**. +2. Toggle the setting between **On** and **Off**. +3. Select the alert severity level that you’d like your recipients to receive: + - **High** – Select this level to send notifications for high-severity alerts. + - **Medium** – Select this level to send notifications for medium-severity alerts. + - **Low** - Select this level to send notifications for low-severity alerts. +4. In **Email recipients to notify on new alerts**, type the email address then select the + sign. +5. Click **Save preferences** when you’ve completed adding all the recipients. + +Check that email recipients are able to receive the email notifications by selecting **Send test email**. All recipients in the list will receive the test email. + +## Remove email recipients + +1. Select the trash bin icon beside the email address you’d like to remove. +2. Click **Save preferences**. + +## Troubleshoot email notifications for alerts +This section lists various issues that you may encounter when using email notifications for alerts. + +**Problem:** Intended recipients report they are not getting the notifications. + +**Solution:** Make sure that the notifications are not blocked by email filters: + +1. Check that the Windows Defender ATP email notifications are not sent to the Junk Email folder. Mark them as Not junk. +2. Check that your email security product is not blocking the email notifications from Windows Defender ATP. +3. Check your email application rules that might be catching and moving your Windows Defender ATP email notifications. diff --git a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md index b5b16faf54..c842ea1668 100644 --- a/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-mdm-windows-defender-advanced-threat-protection.md @@ -37,14 +37,14 @@ For more information on using Windows Defender ATP CSP see, [WindowsAdvancedThre b. Select **Mobile Device Management/Microsoft Intune** > **Download package** and save the .zip file. - ![Endpoint onboarding](images/atp-onboard-mdm.png) + ![Endpoint onboarding](images/atp-mdm-onboarding-package.png) 2. Extract the contents of the .zip file to a shared, read-only location that can be accessed by the network administrators who will deploy the package. You should have a file named *WindowsDefenderATP.onboarding*. 3. Use the Microsoft Intune custom configuration policy to deploy the following supported OMA-URI settings. For more information on Microsoft Intune policy settings see, [Windows 10 policy settings in Microsoft Intune](https://docs.microsoft.com/en-us/intune/deploy-use/windows-10-policy-settings-in-microsoft-intune). a. Select **Policy** > **Configuration Policies** > **Add**. - ![Microsoft Intune Configuration Policies](images/atp-intune-add-policy.png) + ![Microsoft Intune Configuration Policies](images/atp-add-intune-policy.png) b. Under **Windows**, select **Custom Configuration (Windows 10 Desktop and Mobile and later)** > **Create and Deploy a Custom Policy** > **Create Policy**. ![Microsoft Intune Configuration Policies](images/atp-intune-new-policy.png) @@ -56,7 +56,7 @@ For more information on using Windows Defender ATP CSP see, [WindowsAdvancedThre ![Microsoft Intune add OMC-URI](images/atp-intune-add-oma.png) e. Type the following values then select **OK**: - + ![Microsoft Intune save policy](images/atp-intune-oma-uri-setting.png) - **Setting name**: Type a name for the setting. diff --git a/windows/keep-secure/configure-endpoints-sccm-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-sccm-windows-defender-advanced-threat-protection.md index 8faa5dafdb..8b193b46c6 100644 --- a/windows/keep-secure/configure-endpoints-sccm-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-sccm-windows-defender-advanced-threat-protection.md @@ -51,6 +51,10 @@ You can use System Center Configuration Manager’s existing functionality to cr a. Choose a predefined device collection to deploy the package to. +> [!NOTE] +> Onboarding couldn't be completed during Out-Of-Box Experience (OOBE). Make sure users pass OOBE after running Windows installation or upgrading. + + ### Configure sample collection settings For each endpoint, you can set a configuration value to state whether samples can be collected from the endpoint when a request is made through the Windows Defender ATP portal to submit a file for deep analysis. diff --git a/windows/keep-secure/configure-endpoints-script-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-script-windows-defender-advanced-threat-protection.md index a2643013c6..50903ddc26 100644 --- a/windows/keep-secure/configure-endpoints-script-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-script-windows-defender-advanced-threat-protection.md @@ -45,7 +45,7 @@ You can also manually onboard individual endpoints to Windows Defender ATP. You 5. Press the **Enter** key or click **OK**. -For for information on how you can manually validate that the endpoint is compliant and correctly reports telemetry see, [Troubleshoot Windows Defender Advanced Threat Protection onboarding issues](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md). +For for information on how you can manually validate that the endpoint is compliant and correctly reports sensor data see, [Troubleshoot Windows Defender Advanced Threat Protection onboarding issues](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md). ## Configure sample collection settings For each endpoint, you can set a configuration value to state whether samples can be collected from the endpoint when a request is made through the Windows Defender ATP portal to submit a file for deep analysis. diff --git a/windows/keep-secure/configure-endpoints-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-endpoints-windows-defender-advanced-threat-protection.md index 18864595b3..cca969958e 100644 --- a/windows/keep-secure/configure-endpoints-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-endpoints-windows-defender-advanced-threat-protection.md @@ -21,7 +21,7 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) -Endpoints in your organization must be configured so that the Windows Defender ATP service can get telemetry from them. There are various methods and deployment tools that you can use to configure the endpoints in your organization. +Endpoints in your organization must be configured so that the Windows Defender ATP service can get sensor data from them. There are various methods and deployment tools that you can use to configure the endpoints in your organization. Windows Defender ATP supports the following deployment tools and methods: diff --git a/windows/keep-secure/configure-proxy-internet-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-proxy-internet-windows-defender-advanced-threat-protection.md index c24886d168..38a3f1edc2 100644 --- a/windows/keep-secure/configure-proxy-internet-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-proxy-internet-windows-defender-advanced-threat-protection.md @@ -22,7 +22,7 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) -The Window Defender ATP sensor requires Microsoft Windows HTTP (WinHTTP) to report telemetry and communicate with the Windows Defender ATP service. +The Window Defender ATP sensor requires Microsoft Windows HTTP (WinHTTP) to report sensor data and communicate with the Windows Defender ATP service. The embedded Windows Defender ATP sensor runs in system context using the LocalSystem account. The sensor uses Microsoft Windows HTTP Services (WinHTTP) to enable communication with the Windows Defender ATP cloud service. diff --git a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md index 60e1c00469..ee6c76e9b7 100644 --- a/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/configure-splunk-windows-defender-advanced-threat-protection.md @@ -25,9 +25,9 @@ You'll need to configure Splunk so that it can consume Windows Defender ATP aler ## Before you begin -- Install the [REST API Modular Input app](https://splunkbase.splunk.com/app/1546/) in Splunk -- Contact the Windows Defender ATP team to get your refresh token -- Get the following information from your Azure Active Directory (AAD) application by selecting the **View Endpoint** on the application configuration page: +- Install the [REST API Modular Input app](https://splunkbase.splunk.com/app/1546/) in Splunk. +- Obtain your refresh token. For more information, see [Obtain a refresh token](configure-aad-windows-defender-advanced-threat-protection.md#obtain-a-refresh-token). +- Get the following information from your Azure Active Directory (AAD) application by selecting **View Endpoint** on the application configuration page: - OAuth 2 Token refresh URL - OAuth 2 Client ID - OAuth 2 Client secret @@ -56,7 +56,8 @@ You'll need to configure Splunk so that it can consume Windows Defender ATP aler Endpoint URL - https://DataAccess-PRD.trafficmanager.net:444/api/alerts + Depending on the location of your datacenter, select either the EU or the US URL:

    **For EU**: https://wdatp-alertexporter-eu.securitycenter.windows.com/api/alerts
    **For US:** https://wdatp-alertexporter-us.securitycenter.windows.com/api/alerts + HTTP Method diff --git a/windows/keep-secure/create-a-pagefile.md b/windows/keep-secure/create-a-pagefile.md index a8c65abbab..804d32f022 100644 --- a/windows/keep-secure/create-a-pagefile.md +++ b/windows/keep-secure/create-a-pagefile.md @@ -1,5 +1,5 @@ --- -title: Create a pagefile (Windows 10) +title: Create a pagefile - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Create a pagefile security policy setting. ms.assetid: dc087897-459d-414b-abe0-cd86c8dccdea ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Create a pagefile +# Create a pagefile - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/create-and-verify-an-efs-dra-certificate.md b/windows/keep-secure/create-and-verify-an-efs-dra-certificate.md index 06392494c0..4bd92ff06f 100644 --- a/windows/keep-secure/create-and-verify-an-efs-dra-certificate.md +++ b/windows/keep-secure/create-and-verify-an-efs-dra-certificate.md @@ -19,8 +19,8 @@ If you don’t already have an EFS DRA certificate, you’ll need to create and The recovery process included in this topic only works for desktop devices. WIP deletes the data on Windows 10 Mobile devices. ->**Important**
    -If you already have an EFS DRA certificate for your organization, you can skip creating a new one. Just use your current EFS DRA certificate in your policy. For more info about when to use a PKI and the general strategy you should use to deploy DRA certificates, see the [Security Watch Deploying EFS: Part 1](https://technet.microsoft.com/magazine/2007.02.securitywatch.aspx) article on TechNet. For more general info about EFS protection, see [Protecting Data by Using EFS to Encrypt Hard Drives](https://msdn.microsoft.com/library/cc875821.aspx).

    If your DRA certificate has expired, you won’t be able to encrypt your files with it. To fix this, you'll need to create a new certificate, using the steps in this topic, and then deploy it through policy. +>[!IMPORTANT] +>If you already have an EFS DRA certificate for your organization, you can skip creating a new one. Just use your current EFS DRA certificate in your policy. For more info about when to use a PKI and the general strategy you should use to deploy DRA certificates, see the [Security Watch Deploying EFS: Part 1](https://technet.microsoft.com/magazine/2007.02.securitywatch.aspx) article on TechNet. For more general info about EFS protection, see [Protecting Data by Using EFS to Encrypt Hard Drives](https://msdn.microsoft.com/library/cc875821.aspx).

    If your DRA certificate has expired, you won’t be able to encrypt your files with it. To fix this, you'll need to create a new certificate, using the steps in this topic, and then deploy it through policy. **To manually create an EFS DRA certificate** @@ -36,13 +36,13 @@ If you already have an EFS DRA certificate for your organization, you can skip c The EFSDRA.cer and EFSDRA.pfx files are created in the location you specified in Step 1. - >**Important**
    - Because the private keys in your DRA .pfx files can be used to decrypt any WIP file, you must protect them accordingly. We highly recommend storing these files offline, keeping copies on a smart card with strong protection for normal use and master copies in a secured physical location. + >[!IMPORTANT] + >Because the private keys in your DRA .pfx files can be used to decrypt any WIP file, you must protect them accordingly. We highly recommend storing these files offline, keeping copies on a smart card with strong protection for normal use and master copies in a secured physical location. 4. Add your EFS DRA certificate to your WIP policy using a deployment tool, such as Microsoft Intune or System Center Configuration Manager. - >**Note**
    - To add your EFS DRA certificate to your policy by using Microsoft Intune, see the [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) topic. To add your EFS DRA certificate to your policy by using System Center Configuration Manager, see the [Create a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) topic. + >[!NOTE] + >To add your EFS DRA certificate to your policy by using Microsoft Intune, see the [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) topic. To add your EFS DRA certificate to your policy by using System Center Configuration Manager, see the [Create a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) topic. **To verify your data recovery certificate is correctly set up on a WIP client computer** @@ -73,7 +73,8 @@ If you already have an EFS DRA certificate for your organization, you can skip c **To quickly recover WIP-protected desktop data after unenrollment**
    It's possible that you might revoke data from an unenrolled device only to later want to restore it all. This can happen in the case of a missing device being returned or if an unenrolled employee enrolls again. If the employee enrolls again using the original user profile, and the revoked key store is still on the device, all of the revoked data can be restored at once, by following these steps. ->**Important**
    To maintain control over your enterprise data, and to be able to revoke again in the future, you must only perform this process after the employee has re-enrolled the device. +>[!IMPORTANT] +>To maintain control over your enterprise data, and to be able to revoke again in the future, you must only perform this process after the employee has re-enrolled the device. 1. Have your employee sign in to the unenrolled device, open a command prompt, and type: @@ -93,6 +94,9 @@ It's possible that you might revoke data from an unenrolled device only to later The Windows Credential service automatically recovers the employee’s previously revoked keys from the `Recovery\Input` location. +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). + ## Related topics - [Security Watch Deploying EFS: Part 1](https://technet.microsoft.com/magazine/2007.02.securitywatch.aspx) diff --git a/windows/keep-secure/create-applocker-default-rules.md b/windows/keep-secure/create-applocker-default-rules.md index 930d2bc4d7..6f5b802707 100644 --- a/windows/keep-secure/create-applocker-default-rules.md +++ b/windows/keep-secure/create-applocker-default-rules.md @@ -27,3 +27,7 @@ You can perform this task by using the Group Policy Management Console for an Ap 1. Open the AppLocker console. 2. Right-click the appropriate rule type for which you want to automatically generate default rules. You can automatically generate rules for executable, Windows Installer, script rules and Packaged app rules. 3. Click **Create Default Rules**. + +## Related topics + +- [Understanding AppLocker default rules](understanding-applocker-default-rules.md) diff --git a/windows/keep-secure/create-vpn-and-wip-policy-using-intune.md b/windows/keep-secure/create-vpn-and-wip-policy-using-intune.md index 45ed365fe2..64602d97ae 100644 --- a/windows/keep-secure/create-vpn-and-wip-policy-using-intune.md +++ b/windows/keep-secure/create-vpn-and-wip-policy-using-intune.md @@ -111,6 +111,10 @@ The final step to making your VPN configuration work with WIP, is to link your t 3. After you've picked all of the employees and groups that should get the policy, click **OK**. The policy is deployed to the selected users' devices. +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). + + diff --git a/windows/keep-secure/create-wip-policy-using-intune.md b/windows/keep-secure/create-wip-policy-using-intune.md index 44bf2930a2..f0c94d6dba 100644 --- a/windows/keep-secure/create-wip-policy-using-intune.md +++ b/windows/keep-secure/create-wip-policy-using-intune.md @@ -44,10 +44,11 @@ During the policy-creation process in Intune, you can choose the apps you want t The steps to add your app rules are based on the type of rule template being applied. You can add a store app (also known as a Universal Windows Platform (UWP) app), a signed Windows desktop app, or an AppLocker policy file. ->**Important**
    WIP-aware apps are expected to prevent enterprise data from going to unprotected network locations and to avoid encrypting personal data. On the other hand, WIP-unaware apps might not respect the corporate network boundary, and WIP-unaware apps will encrypt all files they create or modify. This means that they could encrypt personal data and cause data loss during the revocation process.

    Care must be taken to get a support statement from the software provider that their app is safe with WIP before adding it to your **App Rules** list. If you don’t get this statement, it’s possible that you could experience app compat issues due to an app losing the ability to access a necessary file after revocation. +>[!IMPORTANT] +>WIP-aware apps are expected to prevent enterprise data from going to unprotected network locations and to avoid encrypting personal data. On the other hand, WIP-unaware apps might not respect the corporate network boundary, and WIP-unaware apps will encrypt all files they create or modify. This means that they could encrypt personal data and cause data loss during the revocation process.

    Care must be taken to get a support statement from the software provider that their app is safe with WIP before adding it to your **App Rules** list. If you don’t get this statement, it’s possible that you could experience app compat issues due to an app losing the ability to access a necessary file after revocation. ->**Note**
    -If you want to use **File hash** or **Path** rules, instead of **Publisher** rules, you must follow the steps in the [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) topic. +>[!NOTE] +>If you want to use **File hash** or **Path** rules, instead of **Publisher** rules, you must follow the steps in the [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) topic. #### Add a store app rule to your policy For this example, we’re going to add Microsoft OneNote, a store app, to the **App Rules** list. @@ -76,8 +77,8 @@ If you don't know the publisher or product name, you can find them for both desk **To find the Publisher and Product Name values for Store apps without installing them** 1. Go to the [Windows Store for Business](https://go.microsoft.com/fwlink/p/?LinkID=722910) website, and find your app. For example, *Microsoft OneNote*. - >**Note**
    - If your app is already installed on desktop devices, you can use the AppLocker local security policy MMC snap-in to gather the info for adding the app to the protected apps list. For info about how to do this, see the [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) topic. + >[!NOTE] + >If your app is already installed on desktop devices, you can use the AppLocker local security policy MMC snap-in to gather the info for adding the app to the protected apps list. For info about how to do this, see the [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) topic. 2. Copy the ID value from the app URL. For example, Microsoft OneNote's ID URL is https://www.microsoft.com/store/apps/onenote/9wzdncrfhvjl, and you'd copy the ID value, `9wzdncrfhvjl`. @@ -94,8 +95,10 @@ If you don't know the publisher or product name, you can find them for both desk 4. Copy the `publisherCertificateName` value into the **Publisher Name** box and copy the `packageIdentityName` value into the **Product Name** box of Intune. - >**Important**
    - The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as `CN=` followed by the `windowsPhoneLegacyId`.

    For example: + >[!IMPORTANT] + >The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as `CN=` followed by the `windowsPhoneLegacyId`. + + For example: ```json { @@ -106,7 +109,8 @@ If you don't know the publisher or product name, you can find them for both desk **To find the Publisher and Product Name values for apps installed on Windows 10 mobile phones** 1. If you need to add mobile apps that aren't distributed through the Store for Business, you must use the **Windows Device Portal** feature. - >**Note**
    Your PC and phone must be on the same wireless network. + >[!NOTE] + >Your PC and phone must be on the same wireless network. 2. On the Windows Phone, go to **Settings**, choose **Update & security**, and then choose **For developers**. @@ -122,8 +126,10 @@ If you don't know the publisher or product name, you can find them for both desk 8. Copy the `publisherCertificateName` value and paste it into the **Publisher Name** box and the `packageIdentityName` value into the **Product Name** box of Intune. - >**Important**
    - The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as `CN=` followed by the `windowsPhoneLegacyId`.

    For example:
    + >[!IMPORTANT] + >The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as `CN=` followed by the `windowsPhoneLegacyId`. + + For example: ``` json { @@ -348,9 +354,9 @@ After you've added a protection mode to your apps, you'll need to decide where t There are no default locations included with WIP, you must add each of your network locations. This area applies to any network endpoint device that gets an IP address in your enterprise’s range and is also bound to one of your enterprise domains, including SMB shares. Local file system locations should just maintain encryption (for example, on local NTFS, FAT, ExFAT). ->**Important** -- Every WIP policy should include policy that defines your enterprise network locations. -- Classless Inter-Domain Routing (CIDR) notation isn’t supported for WIP configurations. +>[!IMPORTANT] +>Every WIP policy should include policy that defines your enterprise network locations.
    +>Classless Inter-Domain Routing (CIDR) notation isn’t supported for WIP configurations. **To define where your protected apps can find and send enterprise data on you network** @@ -465,6 +471,9 @@ After you've decided where your protected apps can access enterprise data on you 2. Click **Save Policy**. +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). + ## Related topics - [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) - [Deploy your Windows Information Protection (WIP) policy](deploy-wip-policy-using-intune.md) diff --git a/windows/keep-secure/create-wip-policy-using-sccm.md b/windows/keep-secure/create-wip-policy-using-sccm.md index 468b8308d4..350d5e1f54 100644 --- a/windows/keep-secure/create-wip-policy-using-sccm.md +++ b/windows/keep-secure/create-wip-policy-using-sccm.md @@ -20,8 +20,8 @@ localizationpriority: high System Center Configuration Manager helps you create and deploy your Windows Information Protection (WIP) policy, including letting you choose your protected apps, your WIP-protection mode, and how to find enterprise data on the network. ->**Important**
    -If you previously created a WIP policy using System Center Configuration Manager version 1511 or 1602, you’ll need to recreate it using version 1606 or later. Editing a WIP policy created in version 1511 or 1602 is not supported in later versions and there is no migration path between older and newer WIP policies. +>[!IMPORTANT] +>If you previously created a WIP policy using System Center Configuration Manager version 1511 or 1602, you’ll need to recreate it using version 1606 or later. Editing a WIP policy created in version 1511 or 1602 is not supported in later versions and there is no migration path between older and newer WIP policies. ## Add a WIP policy After you’ve installed and set up System Center Configuration Manager for your organization, you must create a configuration item for WIP, which in turn becomes your WIP policy. @@ -62,8 +62,8 @@ During the policy-creation process in System Center Configuration Manager, you c The steps to add your app rules are based on the type of rule template being applied. You can add a store app (also known as a Universal Windows Platform (UWP) app), a signed Windows desktop app, or an AppLocker policy file. ->**Important**
    -WIP-aware apps are expected to prevent enterprise data from going to unprotected network locations and to avoid encrypting personal data. On the other hand, WIP-unaware apps might not respect the corporate network boundary, and WIP-unaware apps will encrypt all files they create or modify. This means that they could encrypt personal data and cause data loss during the revocation process.

    Care must be taken to get a support statement from the software provider that their app is safe with WIP before adding it to your **App rules** list. If you don’t get this statement, it’s possible that you could experience app compat issues due to an app losing the ability to access a necessary file after revocation. +>[!IMPORTANT] +>WIP-aware apps are expected to prevent enterprise data from going to unprotected network locations and to avoid encrypting personal data. On the other hand, WIP-unaware apps might not respect the corporate network boundary, and WIP-unaware apps will encrypt all files they create or modify. This means that they could encrypt personal data and cause data loss during the revocation process.

    Care must be taken to get a support statement from the software provider that their app is safe with WIP before adding it to your **App rules** list. If you don’t get this statement, it’s possible that you could experience app compat issues due to an app losing the ability to access a necessary file after revocation. #### Add a store app rule to your policy For this example, we’re going to add Microsoft OneNote, a store app, to the **App Rules** list. @@ -94,8 +94,8 @@ If you don't know the publisher or product name, you can find them for both desk 1. Go to the [Windows Store for Business](https://go.microsoft.com/fwlink/p/?LinkID=722910) website, and find your app. For example, Microsoft OneNote. - >**Note**
    - If your app is already installed on desktop devices, you can use the AppLocker local security policy MMC snap-in to gather the info for adding the app to the protected apps list. For info about how to do this, see the steps in the [Add an AppLocker policy file](#add-an-applocker-policy-file) section. + >[!NOTE] + >If your app is already installed on desktop devices, you can use the AppLocker local security policy MMC snap-in to gather the info for adding the app to the protected apps list. For info about how to do this, see the steps in the [Add an AppLocker policy file](#add-an-applocker-policy-file) section. 2. Copy the ID value from the app URL. For example, Microsoft OneNote's ID URL is https://www.microsoft.com/store/apps/onenote/9wzdncrfhvjl, and you'd copy the ID value, `9wzdncrfhvjl`. @@ -112,8 +112,9 @@ If you don't know the publisher or product name, you can find them for both desk 4. Copy the `publisherCertificateName` value and paste them into the **Publisher Name** box, copy the `packageIdentityName` value into the **Product Name** box of Intune. - >**Important**
    - The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as “CN=” followed by the `windowsPhoneLegacyId`.

    For example:

    + >[!IMPORTANT] + >The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as “CN=” followed by the `windowsPhoneLegacyId`. + >For example:

    ```json { @@ -124,8 +125,8 @@ If you don't know the publisher or product name, you can find them for both desk **To find the Publisher and Product Name values for apps installed on Windows 10 mobile phones** 1. If you need to add mobile apps that aren't distributed through the Store for Business, you must use the **Windows Device Portal** feature. - >**Note**
    - Your PC and phone must be on the same wireless network. + >[!NOTE] + >Your PC and phone must be on the same wireless network. 2. On the Windows Phone, go to **Settings**, choose **Update & security**, and then choose **For developers**. @@ -141,8 +142,9 @@ If you don't know the publisher or product name, you can find them for both desk 8. Copy the `publisherCertificateName` value and paste it into the **Publisher Name** box and the `packageIdentityName` value into the **Product Name** box of Intune. - >**Important**
    - The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as “CN=” followed by the `windowsPhoneLegacyId`.

    For example:

    + >[!IMPORTANT] + >The JSON file might also return a `windowsPhoneLegacyId` value for both the **Publisher Name** and **Product Name** boxes. This means that you have an app that’s using a XAP package and that you must set the **Product Name** as `windowsPhoneLegacyId`, and set the **Publisher Name** as “CN=” followed by the `windowsPhoneLegacyId`. + >For example:

    ```json { @@ -369,9 +371,9 @@ After you've added a protection mode to your apps, you'll need to decide where t There are no default locations included with WIP, you must add each of your network locations. This area applies to any network endpoint device that gets an IP address in your enterprise’s range and is also bound to one of your enterprise domains, including SMB shares. Local file system locations should just maintain encryption (for example, on local NTFS, FAT, ExFAT). ->**Important**
    -- Every WIP policy should include policy that defines your enterprise network locations. -- Classless Inter-Domain Routing (CIDR) notation isn’t supported for WIP configurations. +>[!IMPORTANT] +>Every WIP policy should include policy that defines your enterprise network locations.
    +>Classless Inter-Domain Routing (CIDR) notation isn’t supported for WIP configurations. **To define where your protected apps can find and send enterprise data on you network** @@ -492,13 +494,15 @@ After you've finished configuring your policy, you can review all of your info o A progress bar appears, showing you progress for your policy. After it's done, click **Close** to return to the **Configuration Items** page. - ## Deploy the WIP policy After you’ve created your WIP policy, you'll need to deploy it to your organization's devices. For info about your deployment options, see these topics: - [Operations and Maintenance for Compliance Settings in Configuration Manager](https://go.microsoft.com/fwlink/p/?LinkId=708224) - [How to Create Configuration Baselines for Compliance Settings in Configuration Manager]( https://go.microsoft.com/fwlink/p/?LinkId=708225) - [How to Deploy Configuration Baselines in Configuration Manager]( https://go.microsoft.com/fwlink/p/?LinkId=708226) +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). + ## Related topics - [System Center Configuration Manager and Endpoint Protection (Version 1606)](https://go.microsoft.com/fwlink/p/?LinkId=717372) - [TechNet documentation for Configuration Manager](https://go.microsoft.com/fwlink/p/?LinkId=691623) diff --git a/windows/keep-secure/create-wmi-filters-for-the-gpo.md b/windows/keep-secure/create-wmi-filters-for-the-gpo.md index 3cbb5be9a5..80474a70be 100644 --- a/windows/keep-secure/create-wmi-filters-for-the-gpo.md +++ b/windows/keep-secure/create-wmi-filters-for-the-gpo.md @@ -51,7 +51,7 @@ First, create the WMI filter and configure it to look for a specified version (o select * from Win32_OperatingSystem where Version like "6.%" ``` - This query will return **true** for devices running at least Windows Vista and Windows Server 2008. To set a filter for just Windows 8 and Windows Server 2012, use "6.2%". To specify multiple versions, combine them with or, as shown in the following: + This query will return **true** for devices running at least Windows Vista and Windows Server 2008. To set a filter for just Windows 8 and Windows Server 2012, use "6.2%". For Windows 10 and Windows Server 2016, use "10.%". To specify multiple versions, combine them with or, as shown in the following: ``` syntax ... where Version like "6.1%" or Version like "6.2%" @@ -65,16 +65,16 @@ First, create the WMI filter and configure it to look for a specified version (o ... where ProductType="1" or ProductType="3" ``` - The following complete query returns **true** for all devices running Windows 8, and returns **false** for any server operating system or any other client operating system. + The following complete query returns **true** for all devices running Windows 10, and returns **false** for any server operating system or any other client operating system. ``` syntax - select * from Win32_OperatingSystem where Version like "6.2%" and ProductType="1" + select * from Win32_OperatingSystem where Version like "10.%" and ProductType="1" ``` - The following query returns **true** for any device running Windows Server 2012, except domain controllers: + The following query returns **true** for any device running Windows Server 2016, except domain controllers: ``` syntax - select * from Win32_OperatingSystem where Version like "6.2%" and ProductType="3" + select * from Win32_OperatingSystem where Version like "10.%" and ProductType="3" ``` 9. Click **OK** to save the query to the filter. diff --git a/windows/keep-secure/credential-guard.md b/windows/keep-secure/credential-guard.md index 7045d584b4..c038a4d588 100644 --- a/windows/keep-secure/credential-guard.md +++ b/windows/keep-secure/credential-guard.md @@ -123,7 +123,7 @@ To enforce processing of the group policy, you can run ```gpupdate /force```. If you don't use Group Policy, you can enable Credential Guard by using the registry. Credential Guard uses virtualization-based security features which have to be enabled first on some operating systems. -##### Add the virtualization-based security features +#### Add the virtualization-based security features Starting with Windows 10, version 1607 and Windows Server 2016, enabling Windows features to use virtualization-based security is not necessary and this step can be skipped. @@ -156,7 +156,7 @@ You can do this by using either the Control Panel or the Deployment Image Servic > [!NOTE] > You can also add these features to an online image by using either DISM or Configuration Manager. -##### Enable virtualization-based security and Credential Guard +#### Enable virtualization-based security and Credential Guard 1. Open Registry Editor. 2. Enable virtualization-based security: @@ -195,10 +195,9 @@ Requirements for running Credential Guard in Hyper-V virtual machines - The Hyper-V host must have an IOMMU, and run at least Windows Server 2016 or Windows 10 version 1607. - The Hyper-V virtual machine must be Generation 2, have an enabled virtual TPM, and running at least Windows Server 2016 or Windows 10. - ### Remove Credential Guard -If you have to remove Credential Guard on a PC, you need to do the following: +If you have to remove Credential Guard on a PC, you can use the following set of procedures, or you can [use the Device Guard and Credential Guard hardware readiness tool](#turn-off-with-hardware-readiness-tool). 1. If you used Group Policy, disable the Group Policy setting that you used to enable Credential Guard (**Computer Configuration** -> **Administrative Templates** -> **System** -> **Device Guard** -> **Turn on Virtualization Based Security**). 2. Delete the following registry settings: @@ -242,9 +241,10 @@ If you have to remove Credential Guard on a PC, you need to do the following: For more info on virtualization-based security and Device Guard, see [Device Guard deployment guide](device-guard-deployment-guide.md). -**Turn off Credential Guard by using the Device Guard and Credential Guard hardware readiness tool** + +#### Turn off Credential Guard by using the Device Guard and Credential Guard hardware readiness tool -You can also enable Credential Guard by using the [Device Guard and Credential Guard hardware readiness tool](https://www.microsoft.com/download/details.aspx?id=53337). +You can also disable Credential Guard by using the [Device Guard and Credential Guard hardware readiness tool](https://www.microsoft.com/download/details.aspx?id=53337). ``` DG_Readiness_Tool_v2.0.ps1 -Disable -AutoReboot @@ -917,6 +917,7 @@ write-host $tmp -Foreground Red - [Isolated User Mode Processes and Features in Windows 10 with Logan Gabriel (Channel 9)](http://channel9.msdn.com/Blogs/Seth-Juarez/Isolated-User-Mode-Processes-and-Features-in-Windows-10-with-Logan-Gabriel) - [More on Processes and Features in Windows 10 Isolated User Mode with Dave Probert (Channel 9)](https://channel9.msdn.com/Blogs/Seth-Juarez/More-on-Processes-and-Features-in-Windows-10-Isolated-User-Mode-with-Dave-Probert) - [Mitigating Credential Theft using the Windows 10 Isolated User Mode (Channel 9)](https://channel9.msdn.com/Blogs/Seth-Juarez/Mitigating-Credential-Theft-using-the-Windows-10-Isolated-User-Mode) +- [Protecting network passwords with Windows 10 Credential Guard](https://www.microsoft.com/itshowcase/Article/Content/831/Protecting-network-passwords-with-Windows-10-Credential-Guard) - [Enabling Strict KDC Validation in Windows Kerberos](http://www.microsoft.com/download/details.aspx?id=6382) - [What's New in Kerberos Authentication for Windows Server 2012](http://technet.microsoft.com/library/hh831747.aspx) - [Authentication Mechanism Assurance for AD DS in Windows Server 2008 R2 Step-by-Step Guide](http://technet.microsoft.com/library/dd378897.aspx) diff --git a/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md b/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md index 112382f305..990e0ac396 100644 --- a/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/dashboard-windows-defender-advanced-threat-protection.md @@ -56,10 +56,12 @@ Click the name of the machine to see details about that machine. For more inform You can also click **Machines view** at the top of the tile to go directly to the **Machines view**, sorted by the number of active alerts. For more information see, [Investigate machines in the Windows Defender Advanced Threat Protection Machines view](investigate-machines-windows-defender-advanced-threat-protection.md). ## Status -The **Status** tile informs you if the service is active and running and the unique number of machines (endpoints) reporting over the past 30 days. +The **Status** tile informs you if the service is active or if there are issues and the unique number of machines (endpoints) reporting to the service over the past 30 days. ![The Status tile shows an overall indicator of the service and the total number of machines reporting to the service](images/status-tile.png) +For more information on the service status, see [Check the Windows Defender ATP service status](service-status-windows-defender-advanced-threat-protection.md). + ## Machines reporting The **Machines reporting** tile shows a bar graph that represents the number of machines reporting alerts daily. Hover over individual bars on the graph to see the exact number of machines reporting in each day. diff --git a/windows/keep-secure/deploy-wip-policy-using-intune.md b/windows/keep-secure/deploy-wip-policy-using-intune.md index 075fba2473..c9977fec21 100644 --- a/windows/keep-secure/deploy-wip-policy-using-intune.md +++ b/windows/keep-secure/deploy-wip-policy-using-intune.md @@ -33,6 +33,9 @@ The added people move to the **Selected Groups** list on the right-hand pane. 3. After you've picked all of the employees and groups that should get the policy, click **OK**.

    The policy is deployed to the selected users' devices. +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). + ## Related topics - [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) - [Add apps to your Windows Information Protection (WIP) policy by using the Microsoft Intune custom URI functionality](add-apps-to-protected-list-using-custom-uri.md) diff --git a/windows/keep-secure/enlightened-microsoft-apps-and-wip.md b/windows/keep-secure/enlightened-microsoft-apps-and-wip.md index f6b1ea7f6e..f2e1b3c91c 100644 --- a/windows/keep-secure/enlightened-microsoft-apps-and-wip.md +++ b/windows/keep-secure/enlightened-microsoft-apps-and-wip.md @@ -78,4 +78,7 @@ You can add any or all of the enlightened Microsoft apps to your allowed apps li |Microsoft OneDrive |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** onedrive.exe
    **App Type:** Desktop app| |Notepad |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** notepad.exe
    **App Type:** Desktop app | |Microsoft Paint |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** mspaint.exe
    **App Type:** Desktop app | -|Microsoft Remote Desktop |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** mstsc.exe
    **App Type:** Desktop app | \ No newline at end of file +|Microsoft Remote Desktop |**Publisher:** `O=Microsoft Corporation, L=Redmond, S=Washington, C=US`
    **Binary Name:** mstsc.exe
    **App Type:** Desktop app | + +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). \ No newline at end of file diff --git a/windows/keep-secure/export-an-applocker-policy-from-a-gpo.md b/windows/keep-secure/export-an-applocker-policy-from-a-gpo.md index 6476c88d16..8f914cd9f0 100644 --- a/windows/keep-secure/export-an-applocker-policy-from-a-gpo.md +++ b/windows/keep-secure/export-an-applocker-policy-from-a-gpo.md @@ -16,7 +16,7 @@ author: brianlic-msft This topic for IT professionals describes the steps to export an AppLocker policy from a Group Policy Object (GPO) so that it can be modified. -Updating an AppLocker policy that is currently enforced in your production environment can have unintended results. Therefore, export the policy from the GPO and update the rule or rules by using AppLocker on your AppLocker reference device +Updating an AppLocker policy that is currently enforced in your production environment can have unintended results. Therefore, export the policy from the GPO and update the rule or rules by using AppLocker on your AppLocker reference device. To complete this procedure, you must have the **Edit Setting** permission to edit a GPO. By default, members of the **Domain Admins** group, the **Enterprise Admins** group, and the **Group Policy Creator Owners** group have this permission. diff --git a/windows/keep-secure/guidance-and-best-practices-wip.md b/windows/keep-secure/guidance-and-best-practices-wip.md index b91386f0c0..ff64be6d0f 100644 --- a/windows/keep-secure/guidance-and-best-practices-wip.md +++ b/windows/keep-secure/guidance-and-best-practices-wip.md @@ -22,8 +22,10 @@ This section includes info about the enlightened Microsoft apps, including how t ## In this section |Topic |Description | |------|------------| -|[Windows Information Protection (WIP) overview](wip-enterprise-overview.md) |High-level overview info about why to use WIP, the enterprise scenarios, and how to turn it off. | -|[Mandatory settings for Windows Information Protection (WIP)](mandatory-settings-for-wip.md) |A list of all of the tasks and settings that are required for the operating system to turn on Windows Information Protection (WIP), formerly known as enterprise data protection (EDP), in your enterprise. | -|[Enlightened apps for use with Windows Information Protection (WIP)](enlightened-microsoft-apps-and-wip.md) |Learn the difference between enlightened and unenlightened apps, and then review the list of enlightened apps provided by Microsoft along with the text you will need to use to add them to your allowed apps list. | -|[Testing scenarios for Windows Information Protection (WIP)](testing-scenarios-for-wip.md) |We've come up with a list of suggested testing scenarios that you can use to test WIP in your company. | -|[Limitations while using Windows Information Protection (WIP)](limitations-with-wip.md) |The most common problems you might encounter while using Windows Information Protection (WIP). | \ No newline at end of file +|[Enlightened apps for use with Windows Information Protection (WIP)](enlightened-microsoft-apps-and-wip.md) |Learn the difference between enlightened and unenlightened apps, and then review the list of enlightened apps provided by Microsoft along with the text you will need to use to add them to your allowed apps list. | +|[Unenlightened and enlightened app behavior while using Windows Information Protection (WIP)](app-behavior-with-wip.md) |Learn the difference between enlightened and unenlightened app behaviors. | +|[Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP)](recommended-network-definitions-for-wip.md) |Recommended additions for the Enterprise Cloud Resources and Neutral Resources network settings, when used with Windows Information Protection (WIP). | +|[Using Outlook Web Access with Windows Information Protection (WIP)](using-owa-with-wip.md) |Options for using Outlook Web Access (OWA) with Windows Information Protection (WIP). | + +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). diff --git a/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md new file mode 100644 index 0000000000..032e04c1ad --- /dev/null +++ b/windows/keep-secure/how-to-use-single-sign-on-sso-over-vpn-and-wi-fi-connections.md @@ -0,0 +1,94 @@ +--- +title: How to use single sign on (SSO) over VPN and Wi-Fi connections (Windows 10) +description: Explains requirements to enable Single Sign-On (SSO) to on-premises domain resources over WiFi or VPN connections. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: security +author: justinha +--- + +# How to use single sign on (SSO) over VPN and Wi-Fi connections + +This topic explains requirements to enable Single Sign-On (SSO) to on-premises domain resources over WiFi or VPN connections. The scenario is: + +- You connect to a network using Wi-Fi or VPN. +- You want to use the credentials that you use for the WiFi or VPN authentication to also authenticate requests to access a domain resource you are connecting to, without being prompted for your domain credentials separately. + +For example, you want to connect to a corporate network and access an internal website that requires Windows integrated authentication. + +At a high level, the way this works is that the credentials that are used for the connection authentication are put in Credential Manager as the default credentials for the logon session. +Credential Manager is a place where credentials in the OS are can be stored for specific domain resources based on the targetname of the resource. +For VPN, the VPN stack saves its credential as the session default. +For WiFi, EAP does it. + +The credentials are put in Credential Manager as a "`*Session`" credential. +A "`*Session`" credential implies that it is valid for the current user session. +The credentials are also cleaned up when the WiFi or VPN connection is disconnected. + +When the user tries to access a domain resource, using Edge for example, Edge has the right Enterprise Authentication capability so [WinInet](https://msdn.microsoft.com/library/windows/desktop/aa385483.aspx) can release the credentials that it gets from the Credential Manager to the SSP that is requesting it. +For more information about the Enterprise Authentication capability, see [App capability declarations](https://msdn.microsoft.com/windows/uwp/packaging/app-capability-declarations). + +The local security authority will look at the device application, such as a Universal Windows Platform (UWP) application, to see if it has the right capability. +If the app is not UWP, it does not matter. +But if it is a UWP app, it will look at the device capability for Enterprise Authentication. +If it does have that capability and if the resource that you are trying to access is in the Intranet zone in the Internet Options (ZoneMap), then the credential will be released. +This behavior helps prevent credentials from being misused by untrusted third parties. + +## Intranet zone + +For the Intranet zone, by default it only allows single-label names, such as Http://finance. +If the resource that needs to be accessed has multiple domain labels, then the workaround is to use the [Registry CSP](https://msdn.microsoft.com/library/windows/hardware/dn904964.aspx). + +### Setting the ZoneMap + +The ZoneMap is controlled using a registry that can be set through MDM. +By default, single-label names such as http://finance are already in the intranet zone. +For multi-label names, such as http://finance.net, the ZoneMap needs to be updated. + +## MDM Policy + +OMA URI example: + +./Vendor/MSFT/Registry/HKU/S-1-5-21-2702878673-795188819-444038987-2781/Software/Microsoft/Windows/CurrentVersion/Internet%20Settings/ZoneMap/Domains/``/* as an Integer Value of 1 for each of the domains that you want to SSO into from your device. This adds the specified domains to the Intranet Zone of the Edge browser. + +## Credential requirements + +For VPN, the following types of credentials will be added to credential manager after authentication: + +- Username and password +- Certificate-based authentication: + - TPM KSP Certificate + - Software KSP Certificates + - Smart Card Certificate + - Passport for Work Certificate + +The username should also include a domain that can be reached over the connection (VPN or WiFi). + +## User certificate templates + +If the credentials are certificate-based, then the elements in the following table need to be configured for the certificate templates to ensure they can also be used for Kerberos client authentication. + +| Template element | Configuration | +|------------------|---------------| +| SubjectName | The user’s distinguished name (DN) where the domain components of the distinguished name reflects the internal DNS namespace when the SubjectAlternativeName does not have the fully qualified UPN required to find the domain controller.
    This requirement is particularly relevant in multi-forest environments as it ensures a domain controller can be located. | +| SubjectAlternativeName | The user’s fully qualified UPN where a domain name component of the user’s UPN matches the organizations internal domain’s DNS namespace.
    This requirement is particularly relevant in multi-forest environments as it ensures a domain controller can be located when the SubjectName does not have the DN required to find the domain controller. | +| Key Storage Provider (KSP) | If the device is joined to Azure AD, a discrete SSO certificate is used. | +| EnhancedKeyUsage | One or more of the following EKUs is required:
    - Client Authentication (for the VPN)
    - EAP Filtering OID (for Windows Hello for Business)
    - SmartCardLogon (for Azure AD joined devices)
    If the domain controllers require smart card EKU either:
    - SmartCardLogon
    - id-pkinit-KPClientAuth (1.3.6.1.5.2.3.4)
    Otherwise:
    - TLS/SSL Client Authentication (1.3.6.1.5.5.7.3.2) | + +## NDES server configuration + +The NDES server is required to be configured so that incoming SCEP requests can be mapped to the correct template to be used. +For more information, see [Configure certificate infrastructure for SCEP](https://docs.microsoft.com/en-us/intune/deploy-use/Configure-certificate-infrastructure-for-scep). + +## Active Directory requirements + +You need IP connectivity to a DNS server and domain controller over the network interface so that authentication can succeed as well. + +The domain controllers will need to have appropriate KDC certificates for the client to trust them as domain controllers, and since phones are not domain-joined, the root CA of the KDC’s certificate must be in the Third-Party Root CA or Smart Card Trusted Roots store. + +The domain controllers must be using certificates based on the updated KDC certificate template Kerberos Authentication. +This is because Windows 10 Mobile requires strict KDC validation to be enabled. +This requires that all authenticating domain controllers run Windows Server 2016, or you'll need to enable strict KDC validation on domain controllers that run previous versions of Windows Server. +For more information, see [Enabling Strict KDC Validation in Windows Kerberos](https://www.microsoft.com/download/details.aspx?id=6382). + diff --git a/windows/keep-secure/images/atp-intune-add-policy.png b/windows/keep-secure/images/atp-intune-add-policy.png deleted file mode 100644 index 570ab0a6889ead424e9909c6e85a0c56c559dcd4..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 118996 zcmbrmWl$Vn^d=0!og`QW3&BEgcL?qt+%>qn1`kefCj<}f?(WXu?gR#B@VEK>Yq#DH zTl;0Fs+p?Ox0~DdoO|RsPfwVlyaWa+2o(kf2180xR2c^5O)GGCBO?M5B4x*0;0wiG zQqu_r2DA6|fK8;uBm{&=&Qfw>NE;}`a8%T94QG-56Nza!3%NL(+d0A%myb#UB6Md! zBx>qp>}X-{Y++{$^B#qa9FU{F%0=w#Jsd5*n>)jlVvX_uQq2FPj;4mMLq9rO*qFkw z-(sNvXHZ_xsMwh~yBRu~!syz+ybeeE@8%Xx#@2?wP)C@C&e|A2jQlEAH*~bMu>B6x zNw^mZ$dLZ$dKX7yQ<&?Qz~lclOvKK{#?;ms=4Ldh1CSxU4*O=|Y;6itbUIB91M?9^ zN>u2Zd&a+25ASbtPcP@-Hn&r{)FF8_WPkW>OvCr^;Q@dCG=lSo)yvduO6rFj)Sl+& zwU(Q~b#?WE+GQH0Mq*aFUn7t|hYx-UB7UR!@quSVcN`KUCA^^X8M%Mr^86=@Q-c!( zevkjVz`o9jm%4r#o8Kp4WU?S^VP~9DMXw|DPd3 zBrwFm5yEdOuwTy}SYG9>!n|IKOcqUn()!;Oe`Ml2Y5x;7v;A+;B~fB-Git&cT{t=3 zFLGQI&N(uw<%oAPf6JAu=6tu}l4XTQoQNPF-$@t+cQ+`vcy6$x*y<~S6{_6e~puBwe zDVM0`J><6|+=I=iF&42|AW_(BxwqE&jhnTG-d0~3usYfU+|;aNkT#7|l_?N?GB^uj zN2oBr(xlWC1$8j$#Y`~$Twr)RBCt_VFz}Ii3hk>gSI83rTzi3#Z~&Gr*gQ&$t6cU2 z_3QIGd~WyNaM3~a%5#KJZVy3{21P0=4Cc2mdjHHncd_r;Z%t-B-fva?E4A4yUzE{Q z)e1go)QFC_=LzDJe zQw?o?Y`@VxP(YsXv@b<~yRta$_qu3PIQ3rHUh$n3 z%0MX;{Alyg=i244b=xt?c6PAA-08Tb4xbKe>v#;fylw0PDV5>J}PLEl3X|t(!UR6Z5@UAycyg z9`9e!Hh=v|TP$kb;^LRu^1k6J43}Co3(4i6#ss z^7EjHi6Nd)M<~jZ5|NdH$QPYM=iFi&^^L_xUX0ZQ_#W1b=XB)o3%w|1c zs;x@SJc5AXt%vpGY5E%{Az|(fQ=S_GeHGLN@{8mX%|?DXrL>d>ab47=`vcBFh&+UZ z=4x2>lYwWEU0AiJ1O|qjAxhipjy-sXNpp6TCT}&mIYV4$4$5GurG}Kz=l-pyBw?ptwQ;MMrfQwx3lpNk+&Y)fWvtjBBiNI>*JJJ zH*-45lhcQcWbr@iBRgFlS0`E00RzANZodTx#8-(e?&KkQIGNIE9l0SwC&iVzuu>Mwk*^CwnkTa*pk^fDq|LV2t{vA zSG&Jd?08XgHE814aO;Q8IN?la?+^SD2b4QmfyMgtm)o1dZ*%MeUO~aHj;_5QP(puA zhLMUXTnk9+^J!w&&$SP&s_P)gbggwbY7Mv5H(0x}6?y5&ffRwoS~o9OG=xD29-z<8 zNp1^!lJ#`9pP6-Ie9U&ZEyq1qqsWGy=;*rSln17w5ZNzBS{{Ilv1TagIc9Cz+v&O* zm)#rNUDm8Fe)nT0{F2+s#4f-$o_ep`%zE9roXY{Gf_`~;22xIm!^B;#z+n!O5+YTX z1r3J5wXoW$(xA;JPJ!w^tP3Vb^xptm#$Q5DfBbbg|J1}`kJsf@Kpma7el+KX@qLi* zPC{UKBn%Zh3qT?oV#c>^1X+$idmiV6M zzdS#VgFI^y)&|yex(cd!?p+nOGo}zIpnUE;M?Y{2%4hiLMMqtkmI7RX-FcV;W92%_ z1gd*XI;h8^1^m}qT?-qQQvecLM(M4t|*S5DK0l^SDcJ1rh@22}5{RhHPR zb9>D0lJQ@x5y12y(bEMNTSPOx%w*#1=GhNddgGN<{LbeNH%!amq07D!6|^f~8BZnm zg4C6rG>h8cFS{K6`qk@UjEVx~<7+VIml0S+N$bBK=6NK6%RRBWE;>1T4nf_kSo2>d z+FYi_GW1qrc+qJN!%w!(tE$4)DY8MG;U)j|9?A8)gA_s=;H&U1YCI*_wd+*_bE>NT zz;YTfSNk#SM>1>#UgM5xwPxwgjs3-D-EW%kD-aAE`^DiTB&>hy9Dm zj^r8-bvTSN<^<(e$LFZd|Dl+SZlKQx7|K$`= zE#93^au|x`MkD3oYRU5~%}fzp{L@_y2Z{0BskxptCdQO9oTuHB*G~n%RHY3;h;S{1 zQ`EG#rl0JY)Xj#;KF9(bksKzh^#RQ2MtY znYKaw{gu~Ya=NgG4Xdi$+i{R)=izq5!5n#}y-bk#tdXJ~j}$B^ZM}L`2^kTos2PZ@ zK~%G?4J6ToJ_ZrjiX$bSWW%T!fT{2|0|A~-Zib1Ur$3qCVE0Skcp4Q)0(bx^-h-b_ zg3fiG<2@69N{Bx=*Z2SwQod!J9ZZJx7)Il4$og=tb{eT{AT8zT&jji~uw@_I6FP zCJ=CTT&5ZdYSyb`z0XZol4$1-4Qht$!Q1O+kodW+%pA}MDOhikz@q}mM=G3?9Qm1> z@a_6sp1n#8D)%8-`A%0|qxzY8xmE#<8Fsp58`|Kr%L;}1^U;914F11AvNN~?^w|7$LEa-aG^|yuLcjJuC=b?=>UyUVQ>vh|m14XCC!B9v+fJW!jE> z3;2z*iG1yawibs8zLp0P4e-w;Ou{cmMHbPMysTlhv5W%WZ69=6kYrOqYE}stxYtlV z#MK$$gOD``G~)`3Nq+vIU9M8b3b8(GqqpfEBMpw=e^?&>q7u;$7o*-II)67dNB5QV4&3z(Yt2Dzb_usm%Ba8&bZ_%%+onBcBs0)cQ`SXVTf8jHt#U ziW}aCMA)~+*mo81WMqEcH{p!+`cX#(Ov@$dlBn)dQpl5&lhQuAXxA8JwYB15{nk1( z-(P*BD89Xh|FHkR1naB~1Sx z`1%3KfFs<8wlC5xEB6)hS{}}@X8saebbq4aVvyS;h$>@FBWG4iRI913O|!!o-0cl z^D`3a3JF7|K;{hgYyp!OA}Pf!u3~liIXm z8ISOOZQ$Puo(Onh4tp?$?|$Kawe>k9JAbpfvRzi2XLFG-2< zcl*W0Z<_7Pu{IQ3T^0$+?s;VAEiST*#G-J@glbtrPPW@}L7Vmo$pTBVo<=`dCGZqu zQ)O+Of@XgwU*ld|S7@yt;`I_ERFp2L^^xwE?fuz~Xnd~Cv0h&dn*Qx3{wbZ7(EZ|s z{o8DV{duEr26HQZx*I!ol?~#Ju2Te zzc#|UmnvTUz5@Hmrfln639VR_&^@R9VB^JanhKp(lf2|%h4`hpCSJG)FRF79|1F-< zcXVRrqhu?iRYjz-+SSm4oFC0epGO*0t31^C>r3p3#8g#+8EZO#H7#pYWkBE7w+k-OU~UDvE7YC_{H5-2}OJOSP>*jhg4A7r&^u~z{p z&oz<2FbCnP%9SoC1s)442jKVotY8Ha5P?OlIoDwj^Rg+B$&uPE%Bl1s_WY(a0wxYu zp9_?RyDnqai>pC17N=SWY_;N=HMt=!yDp;iq4uL@E*2Qs*2RC==UwAbG5*vOR)nr8 ziLe<}<(4O|Mj1Nm_EZx~m!xSlwS~Bt*8LVT>Kr)jXJTYr?G8=vlrgirdLD)=r zN_9d-`_HQpn>Z33o`KNyF(L8e)FTJ_Gf8ngM(AvGnyXoxmk@ygZJ+F&Wk&i zNYk^TtC5KCOQB`H{`?O&1n1W$^(VK)qNcp(Cre)bQP5c<;^RdIjhn39%-iL03+;i$ z@5DU|Gib|qL`#Tnu;(X6Hf<#Zuxmb^qPn>HNJ~i;*fm=d52I~xrnBJ?@P3#eq=DR6fuUU-=4L z{AAdeY_FJSKTAh)*F$=N9S*p~@P7~pasSD;5DBA)<&HIt7jwSIDGrpx+zb7gF;Cpb z&bChb69@&=&rVFucv$tBClAoC6SSDVnR4XMH4vvv1WbDYq$Pc?2X7?Xxc{sboH@!( z`3f75{r_N+{{wRJe-*`);Mf`yw2wwn_j1M;^zCc8W=!a-BRlMvYd!XJVRvlC9Fwfx z0FVgtcs$P8#j+JuAXR4DR!yG~vsPNVl$;FjlHA)Z!m)ZfOG``p#7{V=Z&8C4-+2aO zZ~f*A^JQ$v^jev+4TWk|7O$&HNvp-=u40q5Z{qNBRtz{0IXXI?Q4NPG0yzgAi8>9@ zKo^t1_D!oW%-GmlOKqb(qLUEha}0b;i6W~ydmW#RUo7n|6D-dPwT>k%8P&}c)@!4E5Ku1qY8l#~ZE zJ8-unPleIx>SZ1sop#Te`y_j(OC{0mSym|a`qy{veQ#%$mZYt$Xa!&HCb%z0Sz)24 zZXF|u>Uu-86|KSzwyOe8UUD;M4^Qq(YhNe$Z*|7`Z&%3IY{`0)3oSt9#JSFwAXji` zn5YrgXJ`6fr#(nBv{Mn))&jK67HQFj2d(#KQGD9W3HUEpXtfs#jn~r=#oQ+hzAqy( zLk)DLPxWkP?sOasUI`<9P^#}w{~T;PoY9l&UeZE+0}#!67&xq#rJcHA5O1XWAyJIs z33dif#&5Xq7AaCu^S{pUxof#rd(Pom(&GnrXRn3&`&>$1Xll5&QuAunCDt9wSXAna z?hxJIoG7S$7Is+_uTNUsLI3iRw+m_9KcF3ZDeeD2vsK|z6y3=h+I^tU91 z*%*;ly?iGxUcTFbXm31I#@Lu#n#S|`sBfXl8208kbFs=8iP!Da3=*l=A2{5sck zVS<%GUA4Zl87tE3r!=8WZt5bpT;JO7uvtkoBs;9KwxeZotu@<|GI7(P27CG*+PvBN z0xW^?j`Y^cU)2-6ul_ypwdSFUT;^~lE2+N!0}Wq4@4(-Q-va;qX1&+6zSdp(B~xcL zr>-`7)b1sW*KacZuN}?Rt1uDE>o#&)<@e#Cp`jrN5xPBH z4HM6OJW}u2x(4fi2NtKXd}O{%yXjx`NaI#GEsv+`@>nWss067`LbASZYF8jqjs2#u zZR@!>prQz6R9!HzT?}vjE%Mzg7-#t0EW&tSO-bmu%&D&UKAfPF@M%bY3gS{u=yrhH z$#zG%UGu|0_}Vwz;c(3Ec4;6@5~If%l_h{dh(%(&9%WdDT3!+R}O(ulA zsCY+dpli>-z&Ukj!D8`;%J2IR6vAOg^lkZpd55uiKw+jpQOL=BYZGd0-1I;pvl^&W zmr|(zfbFsu_4qH`o6m*yZnv(XdP*?p6KlY)b+v#=Uk+E|{5|Ay-z_651Rv~@-KU3& z{iBYRp^a{d#vN@A$m1PHmaf{MOU2q)@T#*b-!*Id<%-QH=-$hh?+#@9IL_nCe~f{r zKr;9t7{z>k-%kTum?#Ba&q358P29-n6E;@6g5VPyu*6rVtLdq%-!EeP9s_}I*Q+Ce zi$U^N_ad9l5w)|k({{6a?TLaI2z~MemVH2ubG7%dFne6rZ55$21cR`stjzRyzKl-4 zy_NiIJXZfSQ!(KisNh=v8^P&=)9_se9~;I9?95W%FnIrL z??QK>S%|6b=Qc3&pRuH4tM3_H;D+(&48%0?zOTA|lG2Mxabvueda!M;IZ^F`EsqTp;`Yc!Y#Sx?1{xw*8{(ha-hfS=tHu@ z<3AbARs#}z`SyhEg3O87JHL&S+X+J*h|x3~zV^Ec>`>8=>TvRYCiL!2CM*HyN3gCN zF}|+zTS`jG6_5Q)HV%%9ZZt;wHIIFlAl)A|69Va@qq2DPTA~#1guu7YxN~e6*%Jd9 z+)kBr5rlTFRmPf1N^gw^qD{AY!{{_Bf1E5gyblwFZUkbz?v1lMZ~et4v~#&amq(-o zir1epwWd=048J>V#Lr-LNyM4Qu)e#wp zO(zq&Y)xd0-V;6N`Z;=wHW@)slIo?qn@8l|vWm;l(C5LeIt(D{e4jz$a|4g@ohj3M z3S*Z%o02p>>FxRIgj&p2-3wx!ZHSO6&VxP?TwHYh!}n-u#~e7|BM;JI&c_KcR8&;#oXioK za>-;i?q@Qe{5U)^5+?d7udonO7X?1pu-W z?{hH@+m*p2dTr#;9@$hD(~fs2WWB#~K9ID+h$qA$u%=$Ckq7#^6LGJi?>+B1WIe^i zkP2LTl@rAxf3^%+9lP#uPa04l87BUY-eS zlhyH=6&+pUwJ4Dv;v`1msM6p_ly%_X6j3AL1@C;Ok?CUImLN?xE5#-&91pA3&T-?|JJ_c_Cko88;=#<};2 zs1&kV!PQ?sesy)_SZ=UeKfe3>_e)xOI`?MKd*onYB=lNonv07IjY#ryM29q zkp#>ESb~qSNlAFoyr+#%!{kBO58TFbs+&LsdiPH4UWS4Jr#jD1 z&kPs+E4@u{?;MB;2hL&zTv@2EGRM~S*T3FDbKJ+^PFCP*6)(=;x!(0(l&~s%gjq<6 znlIyQL#eSf)|S0?&+)~*T-O)d+Q??LC=z^bJsN1-uJQ0Z2T2==3=yY@&$aHm?`E_= zPQ>c%pc4tpFS8jC`>P{K6Bf}%7=C|Of%ME`iVzZ33|e4%&?E8VOsuhOj-KKMB_;{0 zqc-?_%=$zU8L0OLM7-W{GjSkpX^linK88-tF7ULN>>(F~{S_azb#BZsE3F05I|JEKvm#A{7&d0L%_{S6V6&R;9raE*QY>!Qhp&A3B|BGnzlj@(2Er=)_`dND zYb{Al@uXc=f6UTYY8Y zr4AAj*T#2Pvflk87XJq0jKCZ>&og}%HYVp4ABlhAjJ=TC_{79HW=hTP&E>2f7bd4| zw|c&JBl;H?BaFtHcw%B=eCNIIfh=1|S65C=4G&1MV1k6ns%vUs2PY=J16hP@wm_!S zI5*OO0|A>k_Dq2soI!UG3g6S!4AfiT{_5~@F0&SU-5gcj0=~wR+33oAsRbqBc%u<9 zEh(U!cNT0X%IWD}(zhOb^eJdWD~$4kJ0DRV8tXHp($U!(L2IBTImGPW%+ThWkg#bH zoQx}7-{-c?yd%7%-0gEDDRjyWED!~>@GKW8#7SwFn(v_n$^GW&xVU|n#x^T08sBR| zjzShr!76A;BN90lD#j3OX5^{0ShdIed@CKX7xurn01_4P-ow``*H7D0OxD(XIIc1j zHFdwrFwQ?7+wk^@YyV0~6xUlO>L}kfumZu#Jv>eWE>FlMwUe;$>`rbv?#&4nRumqo z)fA|v*e+~%@L7b-c7;pN=UTN@4V^X?e@-J-M@1}>wk>$JPX693Jvq1-!?U9SZD=24f2cJy zbdV`B8s=V8Sy>qq+FD@YWn-5{RnT;c?}>tfg2dPVcz0=GZoU!8Iv$HfC+sbj;E2M> zIlThvTl}6{qJvJ}+lQY$GAyCDk@VsfN$Ool0OF{EW-}_guGBqxZ#g*6;EZjWrD=7a zw;uA;vT<(3X#E)f`CeiFB2mWUs0&GneSea?E%9%@Ofkq6EgtT*)(_KCn)Gx$ot4q7 zyRx-yYQq<7&ijE=7VZKWFKk`EgbX0=5x}e?Rm09gq_EW3WD$6BXLWJm)o9Mi_?u~^!D1&cWfC8`Wi(Bgy;lI?>rP83 z=3`??4TiMI(1Cg`D3oU_1QFT_9gp0SY98I(oF@K#PR{cJLLF~wd&7>BFG0{h&1xGiy2^pR;&>(`Nvmb6nrKJ_Y?RTurlzK&nY_tOPWvnl zTcY9N;nA+~K~QnU@`z1218AN_p2;ow;%XtL8VylCa&%ir%fs&3!Asll`g8p|PQ*oH z-|mVEzF=Q6B=Fp40_HFkuYF@n1}&zjbLvc?B7KhX<1MqO-Egl{>ch=K51;Y%N;x>c zBgOIdK?-iZ$e}{2X-;s=@t4^HJEwt@-!D%X&)imIB zpnEueFEsLkhA=Pf*K~hDJ=SHGqD_BuLnl;GD_;|o9iQ3=&--b$~H03wB<)g6C`W_FUiWlGdH2l znOgAKIH4G8ZFpCNb&^iP%p7|Q+ogxbaDw%pK-B^CbdRxu27lzf zRkFaI810tzqRG_dXvmqk)JI(nZyuJH_jbLax-@XMZOPkKWtp47c2krglPNu&v?D$A zdfo9!^8?hGaNpp8>mZ;_tKqikje&vtAM2+bg_VoKhC%Lg=5d-)VK;gjVBQ^*rf_z0 zDk)Lvctc#)I4fn&G2q&@jihN&!}Z?QUkPNm9#(K2UK!?5bJe=pqLE?BC1bRPlm{Lz z@}B+K(pZ+QFbIRUxAVYUBl&1dyZRt&`5{OxmsD_N{xsW`tI z)e%!^gu)%S_*>)L0N#T$m$^spX2I6=i15#zf)PZ$e4Iub!4nZ|o#5>+&LX)v?EN)p z;2MKNvv8#APGbT-W;gcZhSR+~C4>ytzt~Uqt5yGX5`~G_bvXbIONiOQIj>}GGFu~R zOpc*Bs6MyI0#ik0S=hxm#eTHlFSD$iE*ksTuiPcqSEL)+0qVTi$(#3`)0fRf!&|Gm zK1*vriGtGoF!7hY#c-D#ds0_KphMujbmM3I2ZYX?)q^?hHWF;wf>P{gE?bjq%zH#@091r8@KE zN0d4Y`?s(r2mmzldjwu@ zihT|Yb{ZgdtF&HZfzbi))-T&`kFrkieHxIFlr#X+FZjSN@@l{TR^yuDEZkVl$A@2C z#{r?Ntc>q!QUs>;<@sU7z6V1isjs*&E8LI($lBQCdR%mY!UQE)*gQ?##)dw6J2oXn z@*{Sq1JR$U&uIlyD=U%f5NaSn>0yEaYCr&i0x-K6&X8zw|&0?DuXGPl$$il(`CX$3dZEw%)wByBh zZ!BFxMdiI8w1-quTH0vpkJyUqvJKzePCT7XV{9m?Z;Ik)QA0zr82%dqLQdPA0l{Zx z07o_&OJfJ>t@4&rp7y5`J2?Bh-Q@V}Yy~MPl>JOMl4M=i4;8H!sDclR6OxjWAIZrB zkx0E`kx1NsDCLSfth#`!oDY@D+wUz;oAycMc~98PMpL?C$wZ*fw;g_LjG5T_(dD^y zK4%Y9O49x|q$g$oJLnC7@iNokMO2v#y_4tK42rH?KHZ97+?!L^H{Iy;AI;#7w^^=d z28wI|x#->K3Z$W@-(CEky<6e;M7!M|wGHGa8^G!t0bpLKZcCEIOo7A8)2-9fHTZIz z7h(?-kChJF;={wk&@L?B&T7+tMW=+Ucu0)N?u^N?phI>MJ8g}T{8O5?PE?iR^w^MGNT;CXn=)k0` zXn-U)%17Z-;;KRrMi=-Am4fwC1qRzyNEcZ2cuHil^{b^@^kHkyyi zjTfs;DX6JytiTLFw8WNOhH$-dDA$E>1c0`(LS}#@yzdnd&jhT|3p1g$xO<|@hXu00T_;5Pk#MG1- z&_>0*BZ|WyTMUxdr8wxjPR!o51GJ!tyS_LC@eTMfHi))dSaW{LHX3^i8R%C;OBGm5 z*L+u)FV}5Zua1j*cXWI#B`?1>EyK8*6G~zPED~Ut{ZWJiEs*w+*9mevQ6-sfUf!j! zS-jJ$z|WqLu(f4?*&c}52cFyjcv|a)N`F8_zY-IJZI(5Xf|bKpTih-mFDC$`iAgSA zMV>pDMy22k5Y!mg($bv{<<*uVRaHI!Duv8eMFVm}fp4KHgF5p;3Fw;#a%378CE!otE<+_$6nULG&eNd+?U@+g3= z4N#JAk%;*5q@OA$JmI-tNvH%qO z2{GpyvYriC&aceOF%;^I&Q_00_scQPrrjj%_G&ANUc>z3&$J<$d~Xz9{6B-am*{!^ zv8{HN6@RKX5IATK(j#jZiniQXRh}EXR%n;|*d?)^@y(U9{$2Fq<5lUe(G(7%j>DXK z?qOX5JuV~&{C_PB;5>)(~?Q~+CG))l(C%j`PW za4}Q3PR>v1Ke_|&${8|+yTb3or!Gh0%*OZx?rvzmrZ4Y!_B?Ie#svB;Xs>8B;99qm zv~9__xj&3lzgG0)8QgSwtpq=6#(5%w(ePPJhjCC*w@9;W8#fV&26BpvEh>y7iMZo{ z-IC4=X^jVT16Vi)2FC2{tUb`rQ_;~G?G1ZR!@z*Jb=?zBC1(WmXkIY{zOzoatAC5} zkB{DF;~7#)N>l3Y!9iTD-?$>({&Bs**O65(wVZ>o8ln30lIk_skcBVo%}+enX=M&- zhi81HH`0HP`qNA^npq>b6OAvp1N~!7g)y94&)r=xjEES+V9;0pMa{Ov%=?9CubfV- zDLmQN5m9pp<=bo>Ol4zUKy56kT_MTr?C+Qzcv2ov&X1v>XKp^V1f` zJTAjSDmdn8SaC!n7mqZ!yV!+62eJJ;oGFaY%EIiGAw6xqln1=gyb^@hpc96~^MFjx z>x8|ueyKGm2p+%!xn6;)lR0BS0JO>Sd-kA`P5EJw_Bp@t;k4y&v4)zPn|lSQL4ep( zW87Q?1O*s*{_Ahg7s(w=hTZTm<&9gYfcod(Mg~K*rfc1$;GD;r)n-KNYR{rRq)-PP z*w0$I+o=Egh4WF6{MTcosIRvta|BrZY(8AMA9wcxva3BLhvs;hO5S)8=BCl!7JmNZ zG$=3in~Z2XF{Z)3$D$`?QZTvSzSS89!`Wv-&^)uF&N1N=E4SqBEcS9q+6S;;vMxqh zYg21NeCUqD9f}vC)YCz&VTS81k-%DYL>Qc-Cg7LO9%Vyz3R$hrJq1=ZMSML!g_Ij| zW2S#OUQ|?)(3MFb<8OI;;o*?*iG8P#i8i&n)TBI{CqstBBYrM_?wxzbZ@?2XnGPoe zGB7eQtTCG3oGd4&+csNtxOiP1RDri=XTLEtAN+|P(5px;Rw;DllUGpK2U3Z1-v=of znQfr=@XuXGLqpQgaC1L9@|8r;?sz|C`vY+ydiflx{p3V5DqT>|Ev>@UpOLS9@C(n# zyF(}3Q6;6tkr$&($=7jDa-6?B7D-RDU#i11RWkzozDD<*H;FXuQ4{nRCxOrMWn}xc z$GmL?*#Ya6Ge*b2Mj{p`^A`04^UDlz2KOIMmoX(*_S(335QX(gu{IjQXmo9Bd1+EG zrKyg+H)%PqDUgpbdku*bcb1?vCmPOF#(7oY!ZRN(coG_ z0{Fb)RvJ1E{WLA?tM!MYpsJAmM2H>mmH-bZ{R?5E&-}y6$!&F8wSNo;q}vrY>0}zf zzg|+ge)!QX4wi?g$;L!a&5x|yJzA!9vq{iDvY7u@Pi)aT%)(U^0K~(eT9^Qx<~v>~ zxzS>VlMWdxemN4GZ3YLC?#zPTYH#T+XJvD3TKggmR4!14>MHj$b#T1j6APNmusv>G z$m0r=3qfBS3ryb@2CgU_Ax0`clP@z2|ujy23quZZ8JLq{PH{dO9p`zjSm%WGaFmyV$KR!4o~`f zm!knL2Wim*la;#30E@^?B<1^>u0+f%_ESqC$u2G9f7$Su{WrLZ5*)SBy=+n&z@Ubk zt9by6@4+a{Zb+dPyETPqDW-M`!-jFoR7~?^M4sHcl2!cgQ?~9;w1$8TX?YOe9p_cRYZpO{kEX&aXDnMplt-$FUzwRt*b+a;qNaF1Km~q(WaR$^yaOVX9SZyvOw$?# z-lI6o!ZTU=smE3?T5N5e56q^c-JR%rj7HVac6?k_YM^Q*&;1dc89lXog)v41CcnWxkUQ9bv&~ z_JMkeu>-eji|c=BgPj9WZ61-v+TSJWLv`xvUwms-x8psL8}gg~$oAFpi9KkTh=d+! z1&#>JbG@L4c4}od3G|f>v?vxUO{0r6)3V6g#{{!Y$;0vgRZ=cK*CVbif`-1eQ*>DS zC`N*W`8Nb}^XK?jjq^Y6bV1p0{gUy0ypC_6l6sMaLV`>T!~yY?0C#is^8NvB_WBRu zDyX?S z=9=eDD^{h=XeaT)#0P|M18=}EHJ2`@D=o!=Z>OLWNQk%MxVfI6-(dE-TDB^qHQYFG zlee7I@pL+1Igj2v-OKXqolVOwSgAIgIBvQJljQE^es&aR0CWPaIOGvcH$3;WJ#5p^%pszfK zyYs2s9fErWKi~@6+mHT2FqqIWg23hb(78Fap~UPjk5!m!nU=8{ zg-lja-N^!zd~px`DS13SOYp}C1yy>RsipxKJSNnsI)XTO<%-Zs%}J1QlWW+}iA3sW zc2qxYss$AE6JtkBKdD+oPfln|+Sk8GAsju&#|ZeQl0gH#@Wul;2w0`YXSeA7bNT#BY^5o3>2!(38PYAhxyFVw}YGZWi85 z{POdrb3r3)FF+~~UHJ${PqX4oll8Mw+;I%cklPOnXAN5nTzO*43#jCbC-}?z6+wyZ zB+Ehm35p3MTJT>!O}GNY4kA-~%TJ^9il6ZnJ7g;PkbUk`beMZ70;Am&a1GKoZj6Gb zKQ?B>$wV^|P~hk-(-EXwv6SKy2s3##2`9#iBErLpu{7w#CKxz6eWEK@c5nC){m+Jp zAAiO6>;WfBlTHISC{m9~oz(E1cEN=+_tme;Jh92GBw2{vbc2-P9#2;i_DaLo&H1Ug zZDn7m&&-K~yNxyQ@qI3OqlF$^5&O8#6`z6Eb*zm*AKsgTYKCv#S`X)FOzD#b??i}z zNzFEo{LG=A(~H&P)%Dj>V*$1K6V@Tpw@RA~&QiYN5gaq`Vnt)gklTQKRn(Ekk8&Ed zTDwi3{He9#K3JeMuekqok;LpnA9!ZM-8u1tWGaUf#YPW*VG$;4-4o~XH)KT!BSSp8jw4}IGmH><)pqR;Nc^Ip`XvdWNpZ7^J>d5@_f5j!fd~ZhPX=E8{fr%o8i%28 z1-b;=mG5HoCoPem`4u)xc!mzRiu4N4O{%)@wYq8|zCAaiO!LRxkA2~!S1$^WGZB;d zqdFKJC<=~gv9m_2hyp%i3c|=%aT9+`zZ?@GDxil{fHr#G16RA(n#jn3L`85bWxCB=KOWKxiW@85#+9ga&WS?xM;Jq{uqBW)f+q zZ9phLY~tV~cHYFh9a;9>RdcY3_{Lk+KnC1*Ye-B^I#XU^0q=MkkFuEdzyXLthf5ts}whmpx z8K#%pKVu5Xg$yxj8^}fNY#CCC82PUF7^CT>lLWuAmct4x0LrRx4))u(Z$A&`n9^F> z*oe)reNz=vRh69qSQp!lO_OX7^|f~%ImpQHxOY*3GA)e& z*pCOlc03Kd6eoX+STagAzh@$&2iQLs@dW!>m4|M{o!4}@gT;%{oN|g{$ z##=afTtw-VnJ6@aE?Y4shCqFroutA%YQ^BgZg2x4KeJ}H(hBoei5?uX}L;@ zzCnI}7Wj=4g(QVEKvjlqO$+5ORye$M8C(afEnFVi!XkQucb|Z|6x4KF1|P7$#aCnUJZi~2(x3U-W-^C7z5U(Hj-<&{nSJC`<0jz5QRD!N;F zM$~!7$s4!%6Fm@X>rvl1(dnzh4NBFIdwkT2gW!GE`+3#%f@k&Ef`HBl&4?q&{;lM1 z*hYrTB}V{4(uZY-{XB;-;hldz%@XTd1XE8#Tu$yK^4S0po<1$lkE(Q;E~P_k_kabr z=f}~NFd>+5$urd#w_(U&N<>8Wk6N%gleFE{&obF2>H79yYS3-k|Hsr>KvlU#Ya0-d zkd#j8PHB+_>F#dn?v`#8kVd4tyBh=q1f;uLy6die?tjPl8ACmK_Wsy>YkhOhwdV7_ zYt0s0%%i7p5mB_q5{cZI%5!@SPFp1D#YyFzE-p4}x6Q-HuSwfF|28|Sv&y)_7+Wf) z{`?6T-+k4!c?NnYP2=pfpU2H-%CsI24PG{4xL4MmZdP|AXnwq7U^t|i&TnYIshmX? zGBu?H0E3{FV76ko|KlcU+wDe_uFqNj?{w}s(5rw_Q-fek&BqOkJokIKH`)!w#fXiI zF;n|XhhBu~cEXz3QQDDkgfM~SX7ryrp?d0Egy4*MNGSE|rVis$EuxH9~QeZ@oOsOO*ei*WAYKriReDMeqNgxrhmq%ze z^a$>D9+cJ%D3D%4>TBhr7Il5yLXQ89|Wwx|uWrjJ?kA2W3TblR(E^KMbn(lTjQ&nwl0V?x#E2IxmrMc28BH?bbp59O_f zDg+*|dEzOugtq5VE?r-FRKwl01lo#-m6$o;$h(x6^gTXz7^($t!J{Qw$E&<1cwEK! ziMOUoRgK#H+o=deNHGXJzbG&t$0+N$_e#s%`e+rGOBCO7ggfi7q<(nywM^(`CH`m> z=>u-pW~+`@pofy;hH7BKli@F@S0=9haDdP$(A=06foCF5tKVq=4f0COmOd%_8$ z!4kwWHgjiKGImt!`h%FJSie}YLS`%+hrd?Z$f($Gg5Y~4AuJP#)U{zmi^_UA6%yPu zl0qU596wiihXgz6}f%YY^BO`F> zqVdmn@rKzwA4cH71>%zFj!wgBBSO0f{ldMmP9MrN3*{J83)-{KoHEz^ojJyyC#?>* zD~sCnAD=#VoM_~6CUg|3pI$Kw3#YD~DR2m=Qcls}y@^iFle%rwRs0-)kNJ*l7%}@D zhjn}%bbOzAH+MR$Fmy+NP!r=>GD0F3!c6GTaR%gOrFJj2Is8sd9~f_S=`wj{Gb^jOIXSKp2iPB%F!L5`^`0zIo!r|6?rl2Au=e zOhDL^;n$m?y*HZd21b6xhDsqlW!hgjjKnfbzm}W|2mPFc5^YQxtZsGHAgIdKuQE;k z`BVAyahG76Q<@pP1{dXRj*(GJk5_MG0LEXkVdyk;#^wBT^?Ji@>h2&JxCqO5UFa*a z(hiy%_(qNOneD(ptL`KA?{dsTw=0-b6OkKirDEvmMoz(>jQ7@%wJ7kQTA)`H!`4uO ze~JrDO5*L}wpGt#_I3QM63MargSi*3z|^}fDijRkB~;Y{f6&Ole_Jq+#Q=Nqdy2<3 zR{D(j`{8rpSx-U53E^UowezpZxj9J}7Y<|`Mj?dmO!t+cW%t$5t}m~Ke*fM|x9`aA z=pYeS!sD{R1K@p8N#w}3h?<&}we{J)7qR`ENV`L(wua!Wsg}3BaaFe@~g1ywXH75Ty?` zUJqtW5SUnhT>~?ipXyVmXJisTRDK4ZT&~*WN!Hg&xw|FxS5oT5W~lrV!=qJ? z0WBv>*h`gcYKi#cZ#=|*xS@@S4aKDI4`%*Yy35`wWAA0b+OueARY3D??WXW^&8#K; z>#t3pYUD=eMBMi;0=g*0BFI3yFCJroa%@>f$Twluf=tisMB z3wA&Fi)H+H6t>+0VhTF0HS2>%0xX;)TeBtkqi1nX{r4nR;^oD)86(!F#y(s)-}kb1 zsYMR6qb)cu*O_4<_T56Cq`vzZ4GGvb_gBDWywIl0=&mn zHu!v?%%iXVSG+z%jYevVd0Z!!txEPmZBmuG$)o~_8X;~-W=hs6M_76&5fMHer}Xja zEjFBF1jpUs1p4;ZXcws+W@S$SgeQ3XCB7xG#NsyxOxiSHSKqi>#%e;$g*dEF;2<3x;^44-=T zb?e`KNA+8UIUjpew~dH6f%|ZPeFuSF|GVHdpnli{T!ZmIH2%?CbrAl0bM&`wgT{9$ zczIJH^fF-d&Tl$jGI^bMPJdCvK?r})`=@1L*{vC2rr_gCGh_`fumlP`$L;SL?7sId zX=!PIR(RX=cs`OU;L9h1Ku=HKw3B9y_tA@^aoKIL@qpX^*$0AB0NC2n&Te4aiOqV3 z5tOxsS$=$g*ANpEt8zQmhQRI2tw-!Ywx;X$4~TNQgPQjX(jf{j@DtF28fJvKHQM!X zX5#PPK2YzB18tI+xjD6?qazT}Br$4s;Gnzma+7!osmjL}oVO|!l zB0YbmHeCWlhof%-RwuORX?Yvzy<#B1g-WSB3Yd&wu;gdNf5_cejX?{T|ZhYO@yqF;MvU*G=QkD`{9F zJwG-`XAiECs!%GeC;l`}p|y$&U7t5}r(XKy3^V+C!9f{NVmW z28Bsy0EiQNBC#2ow&G<{xa~=x21)&WyziKF8vcM`q$|ugFK^-G_z?EG-t2m#Xd2n60q*7u44%{K^T1BE5t zz3oJnzqOrg09wPmZ6K<@!D9^w41}qvscBjZL~a7bZYrx03?TMNr>CbugZdUK3yv`T zB+TfX32uSfViEJLHP&&wQE482Uyo_a9k5wDX@F!qoVB*rIAJ*>PiI zV?ziET>z4|fyS?{-`zGAF78yTyZt~cF*4A<%BHY>kxSfuX6(&;1!XeU{Q*%*q@j6KJ z>tN8$TD^P2F(|^LqI!2PCKeWuy7HtF!lR?NN=hp>02?F#)oyQc(QDytcx>&NPE~bG zw(R+^oD?>Dtkod*+THzVVeFW-Gnd$Qail%*q|MIW_L%wFW_4w^h&^3gk0~f2Y1@lXGqyvVKVWRX~eWQu2@5yc;tH(Eq5F zozHwBAt8@I``f#DR#&MYCnqi~B`gdr8v16wyo}-qd({(fo&zXgXd?p?YxFYUgSy?$ zmet4Gr!}M_5;2oULPoY14)3{QKVEB+c&tI|`#-rt{=^cm)+6|DW0G1^-FPTbDgL8> zGn%Q5xeS&xHCpWt8ZV0z@@9rNui{mx8ZR4u_)hMvgcAtD{#T)G+&n;Vs4uTc)>gbv z%ntq*2W-13Dl7Noh(|$Tbr@LoOK3p8bn0?!|Q;~MQ^t#H+EwyL170}sLP{~R(SAf1!o|O zo|YOsMS5QBOw7&w0!ynDpdxxpBfkY!TkBxv-m53RN*?J~)6f$KD0PL_E zK=W-t?r9`Lh2hyoKY$_G!B1MzazKA@aNt(^*nqgu?z^gj#Sq!ky!!*9--YOt01yR{ zpF-kewrH3WxOwdE|8ya=2SjrR!sNPxLqE30(aT#ylc~4WaFsEmMiIpM-8fk2c`AU@NiB+0X(4EBqZQVN|XWH zU}i>@R`4x7T}D|M(|PCjI!FyW;OE_#NB}<#p!N*4 z)ZLHfxk z!8NSa^D@%Wv+VBZ*ylDkM|3`4RklVb5~lYe(SgN^MYAVD*hLlodGhFJcyQkj%b|wq z>N_0ByMCr{w*DCzLH9;Hp3c1d7XPyH_=!VJToiMms-m^j^gzYtGAa|c@zmz2|1(`o+{a){+|^~Zc@${clI;sCap}F4 z`?*Jx&Cld&cbDD1Mxz1I(goNoNF-#zsF-8VDG@~=)*5u!PtuByk z;r7iRjr$}f_D+{sridt(+!k%YSkT@7*K-zG4%10uOpKhuAWj?C>!j0H;s<;fg;^14 z@iWVuHFv3RHLIil9Kgt2lI(!xSJdn$aWy98g-Qo-pFX~(vib8>`Cszv9SMWS$bq(p z`#cv{;*3$s4q79u6ncs&WxvBp6aRhTLPDA!X7@YDb#wjo-DmrDKF0#E*spdDr%e+L zMor1lBF(m_uDW`kSJL7-3;{phqA^tEVc&?`yKF79GdnunKtH%Kr+Rtya)kfuP2@EUKFyg>#D6>T!ImbKcC>#)le0_7t#_Z#nHy4=ZQUpEDa14d?wQoy$yno zU}MfWPN)*q&F^*HDQEzwv^)2)#mEM!CZX<_A@ zrYJlv%Qzkd-7bd*1_pM}3zfzFWFd>_w|qX1vwp&iqUyM&&;%8IdPa=IGacmr4Y6#KqN~{DGNd%Bzi41WP7zLJ;7XWV?ol}CR+7d5cSdn`?e$gRILtBw^fKm*d`z$= z?qKwgp|j`PbQywjw?|D=O@6{mJ`oj0$AxLMU}pS`gm5~l{^@ceZvL2o8FU$B>rTCa zL|KCA^q*u}HTm$pw-^)hkkknx3T)2QXa7GYaQ05JuoM^X@iM;sAsHFn`5a0|X2EK# z$i4|r35|}B=F?P@FdK=_fynVOcS z6)*g`^b=2^-E8Dg40hQHKR@2x=+V5Umhbr?oa(6!-r~}%RE4Ce!cl^K=Q-NZRYr4Q z@WJp0P{0}srg?zLPn?`QjPf~}dTi4e_>kgDP4Ij`OgoSu{a~HWmQP8+7FpNy%dV_^ zw2_rcvS}-kzalMuBxzEDmFjN(Z0jasdz_`RprL!#Xc;S*sgwRzMBTG$h5?3%Ub-$p zP>%4o{|>J6W-l^X4>TF^21VC)KvF<`dl!8!eNz8l+?wm-zwe4fyQ+raU0G#iXd7$^ z|9oH^#~>&mZ!%TJ31TG(@ zk~MQJ|4m10bUdaFUr6Jyok&LX{vC>(+FVCzgw_T3`O3L%O2Jm%x^J`bIeLwXvD;$U zh|$B4D`A1DsXqBlmSCdys^-W=W#ucnp}gm2VyAgLHU? zBYmii5cyFkvx0P{s&4%6EAe9NBpWp9ovxKq`F++M*b^vt zy=~xG^gkxGtxVLxyZn3JMvomj5jP7W?X>%Igr=l1-7`et<$NX83@b`K<z!K?Yrvg$8p^Y=6J#K5)H$ruH`yNsk@*ZGF`1*LA@AF* zB<>)J{LZ&1(A`&`*Vi5VRR*iyX2sb4-uM&_MV8L-gW9vlfZ+g&Bsm3D5@!|a%xPcy%@Uk%rxTx-o<_)EMX3AD zq_2JuZk=3d5lnfj!Lz-4YdF*ZlPrO0&K@7JAtG6ew`?E6~%F4Uk+PA!$zg+C@Pv}7j z+Pfjg>BCi-;z;4Gvb?vs2QBq@R_62kIOFxh-y1|No82c0`Wj$rA?_=~9yCtwUJ6kfyuf5`~zq;(b5wzZU zYatFBh{7Hg)Ato6NSMM!qbJH30b<5llJ-)0u| zRD;d$hTKpo3ex*N@uhY;;(`P{IaE+XEfP8uaEZsER@IXCBQ#At+-+hFWs+e=&baQa z8b(vEUyZVeA~!zwJ47{%->aG^sNeD8g5vecz13e=_2uWujY~;eY15Tjgwk?kjv@aa z3qS)iB#QfnLhyZTods#j#+Yj-2`4ZpB8FF<0!S;cEO@AgKE!fvWSyXGIwahb8}Kx3IA^ z*V}s?>)|LQt%;1Gznk8#Feyw8k-n4^uV)W9^to96B*e_NN*ZY?&P|7rQ*rl>V|QJ4 znwTv+2Gx-l>M;gE$HfXx)6x^~bDwFOD-iM@nk1RVt;eej#$$aKF{TWl%p?4$a%z4P zX(TI;WbOWU?Iz5jnJ9WMS=LL0@*8sunQ#0pzd(FiC=S$y2|v-i;CEsCh(|jo0Zusq z8KU&~tvLj0w4tLN9Aa|>gah~}E_LUgKdK<0)N$Q1y(UVQP_2vlN;Y(W9Z`Z1{Zm*s z?^Qsg7pc?)^AhT`m!%SH2|2>Pd2-Ud&@Uks?D$+gn+Z8t(fCw6DJ3;z;bk#ySq3Io zp-(E-HE}VtVVw>1;k# zZ6CgNyk5Q9%@SgOz+KdTqf!WFT!U-7BM@PP+btNeVw2m>`3Q5nglH?MB&lUaM* z2LnA(nXZyjLDQ<*nh*sIwXX>{qouQPyZa-tTN^aVh7Ij`b3|?_1?flKPv~^mZLNC@ zlgSBEg8 zsnXA1RV`u*9G^uRu8w<~jDjLySzUJ?cd-Q+%8oq++FFbzH_#j}yEw)O7PB_b-}Bh} zkf?-SlTGHY|G_GV-5d1WbjJUhDyA<%{yBPoJk_KIKlS@>gE7)UmCp3Ogk;&Zq5Zeb zCri0_lQhMx>8>8x2*1A$MWcbO%eBn(I5I(o*vA#NB|kR-G(EmZ+ikh%Q90A$DvtBl zR~r=uB*I4G@89p*kdX~Xl&WN`AQYOJsReg!PL>UYD{uV8iZ@<*yoe%Kx2^oVbEy{4Ud>GKftC%Isarc3Z zn2>)nl{ZwH@NLgXQ66R=5u+)S9!!iCeO(b&Q-`|<-YqoAji&CQJQ}f6Phnn?Wa&Ja zT9E^(kzs=UNw>G9k?3Ndc#3RJtBvKTtdXsSG}RZiE*ja$8GabZ{U+};AS#TN%q`&k zRZ?Ex=b6z&OfMpoC(~O@S4LMsLqiogSV1J?7aun0_aQ#_A_4l4=^-J|>5(kR(uDoA zAsAtwx|QG+Wnc4<w~z1hWuSZE-gRC9Ee7k`8f4y(HzTR|O6Gy-U9 zce5LC&^$Tv-N*@s{3e#UHQc8TR4%NrAYLRgY2ItZbxf?uG6y?byWXI)BjSUn$8+vQw&oO8mhjv<>wHV7^K@wzWoK{kue}np+m{Wh|#HJ6I zBbE0v@=fN4;6i3XP!cFA>V_?5SG&qEHMX^-ErO!F=>xTr{>kR18ul#=eELXwk=2`k zMd9vHD?49LPVPtJcL`y6lYa>bVT_tEXh$?U!3H+hC-AXIyd(6Fs6%vt$- zHyXN$DI78toqJ4MYJN;Y+N~awT{e&`A#j6_KqshdS-1E5 zIMe3DYV6wH7pY*`p(q18lhJE*}}_;dp5;x!p(k9a|^ruC6GUi9O-HNc=&G75iWG ztbcRz?fmhu54Ix%1%sz5J@H!GTvevlWD=JVf4MoYiMko680QoRh%12{q=FhNdEifn z)a41bjBZ}S)TdoV_0{1c?Eb$Ex4b3(NE9{RWDe)kJ5D?0EWMys;-wCA9^78Yxl!!O zSJqx0)Z(4JxWi_ry0-r(t@kDsFT0V~uDc&wek}-$ zjb3EoXpg9MC$AoD&52VPO5g8Lo!u=D*5*~=;Afv*ZxFXVU7?nu7StX5q+PmRoj%^q z9~@%1XuKE>JZ`lwq&Jj~Z9cAz#cMJ5XcC+meOOIAf1Xr6^j>VC#kFUdA6krZ*B+tB zeB3U-TKDMeiM)y0?r@xVYoK!+;o^3gPLB{GOX6ky5v{#;#Y-G@kdu05bo7PJ;v~-C znB@sqFjxxM8} z4n2Y;COgruKW;dFN`shhWZ!@J^7OVC`|BTHCa_aEzZ#Cpa1uumP6zv3z}faZcK?II zL+2HlfS#U+xb6EQqynQFD{JghuJ6v1DbFDMcz9c4oG>pVwG6en=9^MVWYY%LwBQh= z`@G98>j=sAjmKLVcQfIkR227~sdQTy;GrajX{vQ^wRkCD9&fbeK6|_TTqq_!e!>-ySTuJ#(n}u`yWVbk zPg8Xyc%h{}EjGLt!Qp#G@}3)s`Thc%NaiEy$8)TUOVpRkh7qaI7fS;>>F8gQIS%OG z6MNyfe+)P*+RlPWeLnS8fpU|bLh7RxKUyYx-Y&ulwZT`{{CZ;JoMY%pVRK~;wHW;d zHBRl$f;8zUmR|+L^}!dNfdzqNbd}a-+t*e)rzFxY+kI2tyB3`1?P}|;v3g)+6Uq{4 zLvLbU8EMJCoL_q(aUCB>8a%egPW8L}xq_`|;5(8N@|UUekK^;nx_6l-^)B6YFMp}v znL}!{Ef-$H`xw0ybCL40KoseN!l*ebCR+h5fnXnn zTWDu?oB&Nas&8~W$brDgsdDVXZn}hrH2V~{`@_mqOq(2aT5cy`GsP$PBmHNSse~#L zBf+&hV**&6c3_02snS`S!s>|*$I?EMFirLG)2Y`hvdGeOzA_c|M>eW65}I=8Oo^;c zQT}75kT58Fp~AX`?KSQ-R%&$iY~DY@|GUUY2POpv5s0YM!P>1-G)p& zQ_TG#fC*e5HxlW}n>geXqj}92u0T9~S6H&uz~VgR{~J-a@-myA{@WIYZ}Ttgwe$@M zQ(bly7XI|hj5l?`=rmb^*i;{9hOq?P$Z>Zqx1hvm*p8y7BIM+A-L>tR+b(T(%I9Ru z?Q%@CtBU~W?}a52UWIbu{k$Mf!{)MJDMoWe!PiFXep#(cVRCD3Ejo_TMz)-n%^8qW z+}iA&hPjcu#Nipl;UP*K=wUAz!Hu3%(=k03-O~9DbKU90b$V#CHuY+j)?uzAi);0Z zB0fi9a41W%u~!B^uP@f;M@Y9bUp}E;ZiDg=SeVg=3m8JXhfdBG?9N+Ez&Zp60y2RNjq77pP2IEfj#mU zKL`5NDGadjul?iUH96moPU(9hdR%b}LCVt~qefAA^<^pMqcP;`Wf59mGgg+rAHciJ zlr3AVvO{+Gld`ysju$WSx(WB4SdA2C(K-(0iN`=*ztyiMFyS8~-QhN#;w*@G6Y^CV zQ?vSw%cf5HZELnRm!LuLNJx(5FGYlQs(_@WWlp}^TOYCqSIB<+Ckj5_>(?J8PW^E4 z5tU3S#a!JvQ9lGP#-yc$hew3m-u|nIl~d^EC?^%3{!wIVVq!A&9wYpTC)RZiK|lRp zx9>2E1F?UOEn6e+JA}Bx)>1?85))^rDyB9rL5AR|2nW7SZ&AqBAoxlLEUe;n7HK7D zi~P4Y41PnUQ-uq*MArZB|J&t|L8+CipSN>yT(yRg+-%3(`2Mh5)q188z%$c%y!Iv9 zDkKtVc&R-xc?_N=9=uax==@9!8Z|HlszOL3!;Ae~8?8C1ZY@dvZh?(;4I%DH*h-5> zpVFwMsxgSNR>MjL)RS=3F%b48$$rU47%l7(8GoE{xW~12ukq2r*7rwniq>^iUg$nGJ2Z30Q$`UzOVc|NB)|uyYeTEN7zZ2Ok4;Q7kM4 zMI{)r2}gB2^7t!pTPfjo|H#s_q(wzvopd}f7yj^~2Mzzn6aN>8FNxt?mC>?Zz3+MV zYf^MV!jW&ENQR~q1m)!AQGwUr;$Z_|ODLI`Vu0t&+vy*-W*5XMmCmcmB~jdMr0^MjjAdgL`CLr(!)xM5X6t_(=a1StcpsktU(hH>MV0= zCQyK-z|xIPK{D__C|K=mT>2D8ox@=p*?`^sN#4n;e`7{L~-wC$K@z&3bt7_ReJ#)qG4#+$lOtNRfuUM=Gn& zf_mq(i#zufPsi;BvcA_o6;y^i4aBkvbj^Q3f6#Yz<%B>_06@&k&tG@pQ%Vd<#_Bz} zxd07$Hv1KR9|6*m5~prBTnFHDc~ZLsI4~IiIO4Mz!=i@0k~_S=ey+IU;>u*pr*c3+ zL`wQ27uUd%KwfsGrWSMS+s%A}oz15dEUgjvhvSBc8t$iCwnqrmGV9shHSw0BPgrDB zWQ@2gPYe1A%tyQ~R@WBg#De*Hi)7^uCq73piGR+7qG-pidW-i$@2bXeUx_=r;9HYW z^5_+nG|c)+(m6Ki@?;#`Agx=POf7r(j^eef$~wMz<*wIDmp5%960{#@$bTwGQaP94Q`ONz@NqMsWI-(L7WY|#NmceMl#&#Vz{1W ziiR$2nyU47`MtsEY3s<{sAJF`F=@oegwb}S(+A0Dw@pVYuvTi;YWKLW*<_O)5`Vc( zd|_VddyFxAbCUeK%(?*V&mCEvPY6;q5PBEw8sWjm@t-4*`d(rH3wl&2fF*3_#t8r} zH0bsf){d;2+Q#N4a6a1F*>O57ZzTD;=@PPfvJ2Rxf`*19h|^9_kBD8zojHmBqa#2u z=9owN`})@0S|h^4*8qO^BoGJT>;9csEnYgP_G3od#$i)1hEoQ=SD~kkjI8-Qd<}Fn zJxNLJ40LeK3g67MJX&$uB4M{bNHBEBoNBusIh|r<)6&u&QRwXo^dEKHkO~Y73|i!y zeOXCfTi#`(6bbj8?T#%nxp*%^J1p?8bh+{-D`st3Q+?cfq|tG7NVM7K9OHQ8fl>=U z!2mt*t6fcf&5uxZ!F<>93<16<@pJ~-GMlYqLItx8Lk2c+w@N&&@6+!$dtu-|Q*Nxx zqQCt~hose>vrkMa2U=nEqkhW9AFuqXA%*CxmooWyt})5d^+(jEGj|>m@d_D1_Xnmj?M_^ z%1eP)KwO`F?=RQS21yI^^Fs;>s3ES}KZS!J_~4j>YD7v39zXEj@>SRzr)vW6Kw47g1fez9D#ia1PXz1n3SS9gBUOURr+)WKG(&Z zNgOm#Z~Q86Tp8Y*$b}wpTAZBh0gm7OTAwrff!zs&NN!y9`v7=24}KB|K>z%(`oa#p zIe;G&EU;E?zMPbSP|ctJBjFMf5_*As(k}qVA$48uPc@(RAft^%G*&~t=EsTJ92c@A zgII)AO0&vL890x9?R|Tz2=$F`M=KqUJ9l&G191$#4z3ssxxS=*@-v5N%=DxbUhX2D z#83HFwfJ1))el-RlUv9+2wz%oOT~23jF&kq&kp(ThOD^$m6@G?mHpA`!_He={b)G@ zBj5HyETGf6Y3R~x6jX8823R{ljTv#578F>5&s%HQ4MXC0YsB1kDgt5rFflQKCD*eM zh*}WaEr@LuaCni;IxK9^bUq+U2LOiH6=z`#&AqH4A^{H$=CZ#c~JX}@()iKO=;UJunhedJDe=>AKrid z@t)iL-{&#@-HWa5Gw|?kT-<54d9W?FxNZXHEh_M|fBxYKA2-;0FkR{i2Hj%11iLpB zWfK@Fnt;Sc#OoB?`MAxZ>$RT`p^aRQ7rq1X@f5hiLx3Mh2)40dd`m66wl$QXcF!V( z*=@*r=?&&HAW(dOaTh;0=K*jgku+I8@qlw2h$B@1W@T=z#8UB!SRnxDRa8~&`||4b z?TEp%2tec^%w*;VchvIn@p15^gtz`{iIRvRI0I4+Wo_+Y0P?1ATI0whF&h0&VS`-U z?=*e;c15?}+P^j98YN+T=&pHAQSJNF!_8E_ zOmfxX?s%3$9LYyKUMETj&h-d%Bb$Jwmq;>`h{o&w^^IZ(m<<6P)ROD0-v6@&0-i)s zj3Y%Q!@%GPA0Wu_lx!}0ijZR;%#!ugc`bWct27y#mhE7^K=p>94W8VX;K8?hU2TBz z6#s8B0nlk3z*0gR6;bi|w-1#x#PDx!rPEzuK#4Dp*o<3EK$A>=aM`t=P0 zK<4C-gJ~`Dlwg(${u7m$uMePHL%@L!|AQMNGA?r-V3)yQA_ah01S}EyfGDAA-bN^2 z)2($G(6azZ69&hds1(QoAEi{g<(BM2KJ!}q+WFtWVu#1)mQ|%to{Ej_n|vl8WGX7F zt4jdMGO(@!ZZuI5wvZ8Q`q^v|Zn*89gB{uC=A5fjducQ-zG zc<$rynN3sASnmFcU?<{2j+Dxa8XpD;nY1AIADROH87#P!T1ir}vXu1nCBtV&ZXYgo z$3KGy8Ng-`O%tEn(J$b*y0_HqY@q`n$$6WCyu7?&Q!=e25OD$MH!8fF%#8s z8$Qm8(JAB(@g&MnS6h)NzWRV+tgz}AEvX0^q3GV>(5DcNieyRi_>{V99iw{f=6@}R z9!J%Ka{#m$P1o45eee-LLP7#uohgW7*~b?b7l^Ph9QG?2#2?&#me4y4?+mhvbiP#j z4po~BiU`^-)J635iGiEi^1Nx|m;i7UaX4Ty`9A11+Rky~s`*NrCvf=BpCm^RInELY zWgLN|1gmL!@DPGv1}yw$5A%U@B8dO>k%ljHp+;+0Uibn&JP9-ksQDV;W&`QXe3g-? z#UgmJu*AuLw>8$tJ|6gnR|nIZU=jfw8T0L1QJ}!7VKiY+WlbObTcMW@+_7;OH5JW* z@z=nLV;%Bq!MbuAB;#Fh>Ip7Idti9R4~{tCO9xxL$Lv@RnC{Ag(8E~D^sjO|$RqjCYb7!VXB))rDV=tt+bd8w2@#!Fmfhe9 zoFqG5*=9kZC_cnDCqG8PkV7>c*A(Dk z+I;kY>1Dmu$--IUu0nB(O6_1eR8(E3nK47|H;SiR;FL7)zs^;?4RWza{QZkWZhwLD ziYPNRDgpWxe3iunIYjOUsv{^(AaS}noZUSrtu#O18Umbd#O3AXpWJ8tb}u$Saw-zG zQ~*CVBFsF$PC?3h8!key=1)*f0jK0x8U9 zx#fG~idPhv3J}LOC{V(bMsFk~C2fG=1q+WX-)sCh!Dk+Pe0(B4mvCScIRysUeEbJ7 zL3;)G1|XFU7*|7mH?RT*(zKD7(kf6Q*QO=|(f`$XAVdN&D=u(IPmy71PyC$ai&Hus zS#g+{n5YPB9}DF(i}YH#Aa0((KGO#{ctX+#1>PG>1XxI(20**nQj;S%?g=d*miR-C zB>^~aMKqqWP2XP3kr_QhLJcd?5K4uooAS#JnyS}ti9g1n&|aKgY6VU(jy#lz9Lw+U zqHXr!4B1iuukI&8hHie+3bRCr3K2QBifcts6p z%CO06==utr3@B|i_~bkv_gW-mZTQ*F9Pv8GCNsx4V_6`TK%FvbzT&Zo0`iaqC|Xj1u{@N9o+~zU zGBPC5L0sN~N%kA9rXxY<#(V?MmOcu3Y~4@vV@U%EO99AQK=T;{E(q~M1(>av9SX8lNAn|xvzlkt^zVrC_a}xp@-{Z(ZE^rTE|h&*{_L-E(5%lVDP|Iw*j|p zx;vH$LAb$+i8x`X4_iZ57!*(Pg$V!(SFF_kI5{=t3B(}~6HZ`d2Lifcqn%zTDzP;1 zOO1$$*@kFEKqZvzA)i$WPVT`90H1{&98SX4!cdeHFdH;}h|J(YC6$wNO9|cC=oEbU z<_$*z@vRiC91VJ%aZ18@6yT*y4&aG|8T6ciCdUu2~*v1#JoUV71&j{xUBLvXZ^ zoKGsERbEa`AXr`kqJG?!wlfVpm+V%5XV_u&kD0`I$ul@bK>8g)fCBZ zE*)55zY;XFeArjd2!R^Zib~R5D%T@$l_knbL2EHF5ycH?!f~(lVi-NzOK`MK;e$AS zSxNL#$0!9FaiJrOy^q}`5h<2G#mN*p^HlJ(K!){K2GSpp?05OzK=LI5Z0CDiRp}t1 zQymO!?0%s1@N2aCug(GQCJkQ0ex$3`F30%j_h0pjuB#iK2>-wDgXtEJ!CS{hfQ1o` z!ILn3(CCGdo1NhJSQb}CDOHpfT4E)s+$8aagTsY`TuwXT%`3Hdzv(uOV zZ?W&Bep>Qb1#?jbkv`Cd?FShJe>Zg)yAN~m-v{Y#?lvx2$tPPd8)TF*LdKQE)QqOZ z3ggVtoRY66*zlbr@??Dr*3VU3{UyHB3;ywLhZ2|TXs z3S;JII6y0@aGqt6!&X8@(T{U_`xbn&?vw8E<{gCO|8I=Y+x{zz5MTqN2*AYl*SMk zNg!9Cg%;mVMN3xMxyYKn29}0kYXQuA0&So~yG{=u2a;TYmq%w%F@FMarTJ<`Cn74! z1eiTTPUeCFMR-N~wKgdEHOjI7u<%|3^$L&IrN!LUr#KQbAZr5;*fIBq0-;lHa;Z+g z?6mDhiD0LEO2z5Xt31*VG($pO3b=~ya}=@6wuC@YEk380qaeNW?i1lF~wF8 zXo0qQaFdLS3r8!d*q~DYByFHOuK||H>XrJVXPbkL&AN5qg3`JmTY@W4N|A%tMgcDz zS|C^{uvAr5HLTYLVXyqCu|h>vHP{G`hX@tuzo-);fC7RMM`o_W9=H-y$s|<)n`f_^ ze|l7*z_IziqH5EH&yg<^oE!)Io6`!^cyVbIet;ts>36{hgKP`*Fknpub|irVCJ^*M zfgh-P@%Z!A52R=Qzb>tX*4p&~P1B>yY(d@QqF_ZO2DX!jhQ2>11JO!uP7Vyn2w+3G7aZTg&?#n`I+Q>I*)=)^N}yW% zRROS8gOomJXJ>6s*Nfl)z#34Hg2l49tn3@GfwI>k4;IucZKp7h4GN&ZS$lcvd>I5a z3O+cY2C_&50-K*8i$bQ3&0<3gH~|ZCBXVe6{w<{f0ppMDk>m?dRBbplLv$@P@);19 zjzX|*0m{P^AYR2v7z$oIHU~o7yaI`9)V~}tU_sAnGsg-_Z_QeB6x)S5;dn~$mnJY% z<~n>od=Ux&+g+&;;U)0=j(U0A71S(Ox0){L2NQJ;h?{^VHWetuK-mj1bDf-=1UoP= z2L4Z+=C!Ggn*+eV8x7(C>vy~U8j8gCQVA&U(pGn3aCNbMVT#R{tnPGG*m|_DAcW9R z@^5d$21#oQ7lUPfHJez!SnlC{>R_^2n?9)-Rld>UAnVuP=8S^P)lXSatQ;u*Qfz{L zPnlAg(Jn_^gkE@}MhT3Lbw!EFS%ODbBT!|9Ne*7>YMhwXG*dsNaMDUbmkp9AiFSVV zbAlMHhDyp8xPcbTghwHTX@;#I7>Sf~8oU+>AVES3JWY+eM(R|CX9M1li#L$zDrK3p@ZFkLNNgeh;>gJywYI^ZE9O zHQDWJUPuHR=|`I|cZrbXnDd{Sn|YK?WA5UB=a5Cyk{FoOcK|&4GlO5Y(r@ z&>pgH)#83K200}I$d@2Hf)GD$AXsA5stE?q-vzL1hn#OxAe#!_-_`~0H{?LcVn`MG zDGnk^eg@C~ z?Otx2$9{gY2Pk0o=c*~P{GWMs8f=Wf@knjpV?vZ(kS#M%;X(EmfdzRgP}zddL>t+Y zNT&j<1x!J$0|MkKhpVW=nd1Mj_1@uF_x=Ak8IesyR1_k6N6ILbl@X%sO_HoAQ7XHP zXc&pg&MIYj4C$E8Th zy_&l@FK*VDX-T-GM_rqr^EEG2d(G~;3VH3}=tuO_p>(c0!m>iyMl1QXUGqZoOsr4u zV=fvxJ=Viib@SPf?mAtuVvCONn{|8SF`*3IC1X`E64^;)F?KKEg$Oh|Ff~db9;5Zx zi`cG~8t(2pB#u6^MXyeRYaTt44`bN^yM;KOPnOSE2R`UFXF0BDnyL?nOib2uMPCNK zf|Cdh|C0e6?Z>4Vw>=8Mv^4BlyVmOx=q6F@k&cIEN>?1e7(t4WtwG>q)^l;$mmLl1 z=apDEyiMDCKH9Q=YjZ|o=uB(>x#j;owAUdNS5q$so!$GAR*{ji4!l+T@nQn9HtGCtZ9x7^PcSY5;T# z9o?SKW$o&gvhQ0>UrSeKSWQFI;$ zVvI=D5z4?s-tmXG!R6=I4lX5bxw>h4i`#+gI}ThJc^Kg6Sz^wO))F7I!^-kvMjx;X z0^p60kCSGRjDQ8ucA@EW#@XNBMWT$IyrT;z@Hr6t2N%Dx_Xr)uT9(aZ)40UA!aQqO zmA(BE%|#8#iV^m83=Dg>-7giN1E!IXmUg9Zg8N16HFwyR-OCbEQd$v}O{PeiKXPRQ zq*ymGzkl*K4uSr%;~U5d#P{Zw9inc0Q-mMO#2b=q8 zyn1=JSC;_!?pgY}4JTe3F0l#>*`VZB@fC^YlE_3v2{GBfENvr!D4bB!j%#XUzaL_$>nSl=rzFW0$kV`0IA+Y*p*8g3ZU&Alr-egJ2tg|!CC+c?8Q8dZ@JAPxY&Rh zV9&xsJ_?FhP*U#M<#S-fa*h;PAMDk=kv*I#*(#aYZX^m=v&!M@00Y|mlz+;KsXMYJ|j1ln+-w|1dwWgII zNNz&_>zxStH?Q;sesp(21-HP${K;qknvgLzSh7`icV`=<&u~yuho-YK(#{5`ni|vR z-8Fj@?aw6VYW+k};#*c%rsq0|iTiPB@xEq~ObLSBc*+};>$L;Mfu5T6$$&nNJ-7Z+ zA+*OhA&-{1Yo#cjAV>&&ySHz5075@d6a1I-@A}E|8GuKSWJ8q{*oyfJ0W(8}lZMLg zKI9l}Ls{{4uqMQ{)B<4}Uwg7y@Rj#b)lf9Nc=4*pM(y2`lLj{=t*{6i8X8D+#6#!y z;-e3M%8-94vVKaIFsh;FV{>d9HZ;NY+<2ans-dB5j?dI|ui0rMBct*U-+eZ*2L=X; z=mcz_)lQ(JUE`X}<^R{Mbx+EN&2P@=B?zw9qVJ~++neB|7yqMEh@O$^_4Gw|%Z;Dx z9ZGJt+d0GuMH&}vsma_Qq~mm5aBHAAD&So^qAuOLSIjYYXiNRpXVEmF53}x-bL%sO zSj7uQsvBzb{A@94qUR9i2Id*P^TK}qo%(<=VYUataC^d#I#f;J|JyaY?7WrApcwRf z6DQ~G2uUVRG{X6(+#(DjwyP)#mrC4f(miE#3N742p5ubUAuac7kNIXEy%E;7H1G9p z%FY24$y$R%!^v4Y*~_Qhigk@0kI8BYDJxtq;A-D%5V~?YEY)ac7FOH3>1HCK_((~pj!ZnKlLCv8>EEu3c= zxjN>nvf2qbIWt;(lrM5pb9SVBp(_($wEz4`JO9}BJHwG?e z@Pu5|Iey^K^|@N5v*ycxHT=goeKOk)bQMw9mL84pJKCJXsTDgZA9lJkQ~&Qs*Zi5O z+d)5cs~J7F@0UmOen-Vpay$3%me)tP!b|RmxHlwHTlIBsn>@))%au=)vMs1(@0a~5 zO9tMb>Zvch{+^{`!82oO`}JtUiBz*=_l-OStxj+sWcwrsX2&CGVBb0!d&e~w`1zcp z7flw2X3{t3_s95tqy3f1Ssg}cGri|Uv~r3?0c+B6{dKLrD_tJ_L%E_PBce%iC0SNYZWWPC8Vv{^C&{O+ECQ}3Z2d? z>6kbtTffl0h&bM}JLu%~nRsoIxbsBSEXQB42ZrRT)E?*Nb{>8t#=3mHclp-eS-HUO zbstaqkI9VJ`vq0(-k^|^aFbOlT4h$g=y3E1_jYIP%(oLR2G;b0TU0x0LuJjTUfzG7 zJyTy|AN*3xc|7cI??m4>%hOuqHpC}ABUUa#GoA6-sru)lvzf=PsKRmI72cPQ$jwl%_aEhwIX%x3R6Wd}!m??sD^hkjidKWkqBrorCYmrvU#W{S z$HkXD)wZ168NqHi{xOf4g{3m_yMB+CdFQ03W@1{*B@x+AA95;d&)Q69mA4&H-m7ta zpD~8}kk?a7)1l>}Tl~jd=45bLbX1+Jy*=Oi_xELPC>XGa`5SE0zQaSSVfts5W_a(8 z|6aeBkyrPX8CsLHrO0kUU)SeCOviijEok4k2QiuIkNvsWw0NY$dC$ssib^SS<-Fq* zlwS_8iIYOWJyQM`%Q8^wJB zTNw+47fnnz8**O$#pJ%K5zl}(cR4!G-PPT3Kqk8BWhhUWQ z_P$*Oy;uF>`6dKKN1N{Z$6OORFu$!KbnYTbMk1FXmrK*tO{5V5N$djHdQ9*(q#kp~ z4~mP6n~5HfX1s{n=<-r;g^vqq7161oI`aEEk4v=#Dg?%QTaZblZNi+Z$(UaR{YKbD z;QZ?&^_! zK&hXj+O5BScJ~!KZjX=Ex1dj0ALXQ1Uhb@l@9n=X z@#HeNB(->5Pn8rE*N(rDeAVc1kjujm{g(+QQ^r=yY&}}Iam2!E#|y%u-4|qw-qtVA z|2eI5uHr#Y74rQ(V#*1|O;FohoD2Q!=Ge7poG`qe0#z7LV+wnF`-rPonWxsGq6-_C z5=JeChi_skgh6fiO4R8n0yDZdTlF=!w(jloL)nIuQ3zI|qN8OPFQQa5^vM34f+(<) zPv^NhRp%J5Y*eU&s0N5WCak_i!wcfw<@tHapr!F_GCqzFz#xcG*$}c8!6@Kp*X1lT zl0OfED944)*s5<48iw+T!YZU{@ImQAY5VG)HksOpyt0IwHzNk8o9s)xJ~hw-LBq>I zO$1=eET7ZjI-v`Ie;~FjQv~=G=3An@Bdv){baXU;MYQ|i6)r8S`E{X$iWbza{?Q_a z{39O>Pn(;mXOZ*!W+JbD_s$&({T@gMz$@}fF9joQr`p zz+jV@=eKX)9uD=%B?5dwBz4&uoUkbP@fTD6KKQn->OdbXlr6yv0stoo5tDsr6TY7S zCcM# zFt{H5nGb%d8QW7Vi^RnBM<2OfXmYj4nD(St>X8s;roXwa5%M}XJ;12(g}b1t*@vP;i}wV=km=SWI|yF z?)@@4b!-jj6rIq9x+cFs4qJ>JH&H0Hwdw6y9N_>S8h{NK_$@d4=I*nKq=CkmI&36# zaYm*|WPm)zO3S)*@L@7w$Kc8@C4wblcK2SikQ04Hgg`EQ6^j<`6=n377)XHz9=f2WM>jwQCm#ZImgUF=G(bNWq*aR&cPz--$1--5C*^d8Unr}w#Gcw*$nwv4Qt>7_gQ_nzySCpmlfKge;vHm|Enxu-uMB59YmMvt4(_6v}CtO%T9 z2v);pzyZ8@_Zikro7#a?DhJH)<7T$SIf;}ca%rPex?DeeNB4##=HP|nQzIkTh(-z6 z06G}VP{Z>flsBdfZbugh%@cCB7zl}qO%4Dm>(Qh25Bp=IK9 z^Qi{J0s55284clAD+HhB0DI8p-@_{atV8hpGiOwwc+0g9bW%(KMN(i{!475sH}&=>AscvS5 z_E(=fXGTmFF5cDp67 z+@lEeL`6E5!1<8_&n0R361%wVu)%IE++2H4G&VMpUua^w+rhaqFAx3rkDomT;rqT| z#9lqX7oL`MDDFo|G8d2^e4?07`Ss(|UC^c#B#1FWeLQ>SDH)y#w#>}pHy%1Ur6>K* zCTTk)X9=`=Us3*^{kz+56EsnaK@d)v6_{Vha>EgULy<#guksb~R>Vb;I9wo^fj_$s z5UNDXtbp!|P<`y0s)7Q>dg;6dfc#&+d=V59GCk!keM^t%_DG?ElM#!lM^{zk1-I91tq0Z`^z+`aYuBEUt^piB5J(IeoYtWH!}u zf5uU{yZeym_vFSaX&cifzS9NMW;b>iG``2N7l32#76=Fe<&*KISt*{Gz`GLjb5|Xm z7u>L_dBc;q{Qgf1py*+X0~Fd9y7N##gbU}V?XlL!2R$&A1+icdq{Qz7$I>W>j)sxs z7aM%B}Ecii57Gf6KQz>$e^a9UgHvc>rMWV*n$FaGRhRIX7ACXP9K*-X&A^2 zio%RhzvWLw>K=paRpbtm6CCodSHR)jJFW1!5vn4u`XjC&cn)@BUuy&3M5yw1BzWRr zgQVlrj!ac<##b48*OGCb_$A{5Po%JH$u)%fd=@v@+|Wf9B3HmYJp1sEa86X;*j{?t z_z~&Qj`QBr@o|UiR<~-iU$Bk4!_Fu+%E;*GxYaD{xjHmo11AKoEqWbvFMhWtRrM76 z-;hbskSLF@tQjnZ<2KQ+?<&VQPxwUvpbEDm*Z-cZ^kU+_(|Ww+^>y@xT;; zcCjYCA)|gWdD%39r~+e#+tC%f}x530Mq} zZSBpaC+XL?d-PIw#*h9$tY~U6frb88}M}D+%vgXJ`{q@4b9gU z1D^? zdM`1jwJ?Nfzi@xpRcS4;f8MoaeiLs(0M{F*ko{;az!eJ0$<0}Yd(&bKfy)A=!OQNO zz1u0IvfXBN>4=G`)A#ok6qE1DqH%8n{15LLCkiY+wcu1pDjwqTgW1%<5rYa1A4K?m z&Ru}8!Epn5hC=fd0CC*@$KMoWpex0V|M=wKp}s;Z+{2TDHR-9Td=%*KV+$t`47>S! zObjE=y!DT5jy>^o!iSvEvV>8+-bPTw zcckswJI;;YgGAu8_)3Z-#p95Z1iP*;$HkiwKZ7-2jAm)+*A&C^XXpOx^!>`3rsDSr z(`dKh{>3lG#ioJR+%12F2sF^+;}9o}>sn^MJ75ja`i*v`cjEA)$N|3rB%&yR0sMh8 zcHr0E+#a6T$XJjLD8gqJgP?`IEIe@HV>M4vpDrOSP@rIc$RB^hcpj0UMuvv!U_y^r z2MVEYtwwc8bi>uK2!R0_5npNP*n($vj(u6jv35dU*L-B=k8Z-g=VRN3<__=; zYbkEK_2ANmYFg)Lnj;=T3qykRdwb~k)GlPW#nYVBlo!rdo;)mK)t76UuPAxi*St30 zZKHN1eQ(r;@t{zKi+Il*5xyVdoeqs`u0LXQYL?#GK)rE;Ne6e@ZnH@{a#enBbDFFD z%qLb@@R(!l@wGHA-5Uial`h#mB0{u2Z+H1nrVfVw_SlI!m%MpgU4m$!l>3J1It0+H zks%M-8hRVsz_n)*nAnOi5aP;__2fU#CRsa10G7KD^M5quk$o3M$A!HGt zZXfe8qW_reH6T$wbv;>Wy`}H_pt*L-z%NNi=684!z5GZ`4o4?0s6G4;;x8=F-E|{K zdwI^nVS4M@^cz4G=024a4ZSC023lHF`t1HuaV-1jtcfsf+1=ObK+mJ%in|Gpz~1sQ z`BUn~W_CmwyXkU?hAZXVrOj_1ZhU@Egv}?wPg~Qp{ia}~+`}VcM(Z!zDo8SM?G1JJ z4oI?4J7S8+D}3PcRp0naYgJyotmJXMpH+qch)J zoGL_EQ>9GKevn}_x&KPxYi8^JNzyiPUT$}e9tsz=lie%Lx-X%AVP-2EFC)8QVnk@4 zA(OmTtVn>1`wBi7pDS4(&7jq@)zcxV)-r8~iCS#8#x{EE=1Y#U9M&_T z%^r25-su&`zp$zI8CfzjTE&V7Sou3X5j-^kt ztS@!^tg$99ERVOL(!=*eg3j;BM}`9xTAXdis@BGp-#^AxmdRJ}HaM|UaSJWuq?w$C z=>aB@M=$mE8!7x6yS(w%%2zXXT!XM3p<>{G`^FF_@L zVaOmlFYom_>wZBkkr<=MOCq}BOYMhknO;_K&b#Hi>)6|Y;T!$u#T^H-yh{~ zE7Sb8O}06AR{YG2`wtyeOSR7&X45MBFOG0W_{~mASdCv#Yq=0AyZ_m;vO(Li1F>1- z4Lb`)JXH2IIgclvy(qrqsrFz(*!x5{t>wq97f=4?^!n?Q?tNtNdd&CNF%sbh#rA*L zmdbLQ9@bZ~PdqaI#N;)lrk0`qSMcM;feof|A|kVKx5Qf#$?n7kN|mylxjKQNpbzyv zG>9C1^FYhn*GYT0N34hA{k^6t@?xf*Ci@h;tpC0Cs?VL`7=^PxDxRM9DV%s4M>F_+ zdrhzIqk5e)p($syyT9&tQh5B6T4~mESDv%2TuM#~x0X(7^qI(R`Obs31H&AcfxA|Q zS!~nB*If4_$+84y)3FT}4&Dx7+8uLO7#Y{;R98QA-*Aj2{m!8WB99I$>uH!WoY-~e z#O^j>o>-gV@anBPs=>1C?|XG)glpdJ)reGjbV5D%y}|3BU90}lk@tC7yvG0fRE(@t zwAnm~&Gww!H?gD*%^=h6+skoMk2h;)V?_vw*4u$b=P0l(6(1w|B=W{?( z#2*FtV!`4B86d9u_h*kt)Q??Si*xX;L635I3Dbg%KktD=)3uBL+2Sbg)y=zGV8XO` znRWHqmx|NuoFi6%JYA=PTBXHSWqUX2?T$uvV{!(B#>H>W{X+ooc@gBDnjC9`s zPGO|FbGR&7-@M)V&18p5Q};FGD4qJbkH*=e&i%TP{HE~swoT`bb_t1HF4Q-cNpTF# z-tXL6t+8WyUARHw+>5BRN9}rBcS+oiJXw@wQ>C}`I4|7pYxVE;&3it2o&Q7oxOSBJ ze;`8PN8f4pt{l(@T=N89*{O}gmPi{aHuLmTSINbEo_oPiuPP+eYZ*RYk zGPlsGsuXRL%?ZIGk#(dT-V(AbgP9qC+X?nZ^fA%V3{|L^P=xVKh#GVPLcioMC_eveL!=}>gpx7SDY(`l{+>C9@q)!Sase$vS! z;ZmX7*E1s;92N;Ox4uM7Q7P;ZNIYK5c{nuK*NWwA79%w4TU(uDW<2Xmu7Al{xsvnd zmtI1#dEW0IN%a9T4AeE$rbau|uCcA$J7i-vw1&01EOS%LvjWlIPv<%JI*Vs$7&GPv z@7%wt`|VmhtCn3ZOa1vjg`OANmp@I1Z$iU>@ z^rOCH>!HLyIbZx|K3vdz)x&=9N~|NFz<(+*?BGI6{MC~+f3HI?0TIQT z=PgNML|Oq1F$gUL>CAyCqqhYm^1|~83=|hLMdV$(2#&d?7?32|_ltmIwW7It9~`>@ z)Y<#zS0jkO7FYgELtl0u^&>7h${C^XALa*OsNa(V{VrfE&~I>$qRZY0P&WV7 z4J-)sdqk5%v`_%KsE5$!kHM*L%#@!58V+vBo|LSKWMJ81EQI#8kkUCz7v4p`465fjnKK^CBPA#O5hh@W`wR< znO_U}RCom2rcOQAXL3z^LDN-*xAzR0%DfI_(cQZwI* zSbnMN#h7|F3s;`73xh=_VwDab@TQa}71@Wn1w+pS^h-3$-cGQu7HYIRQR8ccGC#pw zjCr?Sk{o>(BUOlWsqJ+^`jl3y2gSdyb7tfYcix4z*{a*T;MYv1X+l>oe=>W_&fa|9 zOUAUF=GhZ(r~JP;_C~*7``r34CF_MDab;`62=-iCCe~g?le<5rzoWKrw)phsc0cv{ zq@vSf8Tl$oz8(#C`^vUUeAFK+SkIn0=`ynLxbR5ygw*lloPOI)+aBbqOQnpswQ3|k}G6l!DDlXs8pFi3($rE;5ntd?_M!^aEr}(kQF_3?g zc_?x|qk6>a4%9Wa^@}~IOwvD;TS~$fTaT^`j&?$kV1e4n-XiP~gxmM-+&K@bgP=6z zTZvOvH9#6gw+D=T2Q~*@f|j`$-Q3DjUk&EFgaT!NJ)KCaz?sIt@*H-VVS_QSLFUb> z|6G$$0sY98YDO^p8u#=k)>mtbfEE0;bt4;lOd)m-mk0~y=r6j%9_>#%(Spyn!H z`j#IrNDnp(Z5XDB@DfE=>kX+fh%GZfN<7s6eBuX8vra6i zjOpo5CtZ*0(o(0^XnD13&G$-?JJI=tTXio&$rm(`rAPyMlHOi%f@>R90PSQxJ-oyXc0k3Z-; zxM4spdirZ4IJ7Lh9l#~zAo%28WdWW7j-&$Xr^)1b

    o_h2)Wwr$})T@p`Xoj8L> zG@JLP`klXjDSWp1x<0zNqBB}LWShq?dCR3gO{b{!XRT8gg))9^eaFrq=_DCg%fNc# ziL}E4XB%Cq$G5m&8n-VGA90jhjv6}W^L=yg_kuCWlL>9nPku8k@7k_#T`7y1dAUl< zSyk8bJCAS3X{Jh5y`P~r(9B=;i1(aKMFTZ*8@E&{A%Vy&9*{}2ESuZN z8H&4D*=vXb9j)r>@?7GL8*@0ZV8JBHFfz;oXUlG)2qd<2$E~NQ-d!H|eVhw)9*-vs z&!hyOFZ%ojU@+Wr&WxD&(=_bW1w0;yDEKD^60t$NARv)H;Y=OFOomf@?zmb2*$?yF0kD4Jqv}FyM}2Rf|lg1I!Od zS5!jc3k37Fke?ILGK|rE-o{W^k2D%xcaqnyANPHQ&kkyP7Ik1W0N{Z8(8@L{I9#;3 z2jOizSZ4}6h`rE~;$R@h3fTit-4TDH&$nJt_#ND*V8g`a^BnaavHk;%f&&rgI#*%M z%9488Ea+jpBRhO5Wz9QZIfWB^S1 z+f8pLgidsQ(bjq~)>H;lQ`pR7wy51s@vO{!Qwn!b>LC{i0oNx3kufm^Ww&cybV{lE zS+VrqTNzVZwQEigvh?qFYG`bP7$)9Hx%d#Y-7F9L^_=e4h-dAe$<5P&I|gJd1@2@l zO-NCo^^H$U+mv&HCgkJ{7OemD$4xndG$CAnK;I8zvEBPuzaO4h;MB_Xi*W(8y(e9& z_)6y(L!u}oMG#xA@oRQPJ^Kj=6tL)PiUPW6_b;k8_I;Q_3Axe0G9;FmyozPd8yQX=J!3?B7C#g@#df3 z)3JGZ)ffPGUahJU``OoOyRtG5H1&9qft2|*wx*ijinn?*;CR7kE?JhgLF}pE?gf z*^qz&E*54{YMmX0)jxDrW@AIVCf~|Xd<>e?rvN8~v39$}vW^!$y^cLfGFYf)5c5z1 za}%LLFdi2>!oD}h2#HC5FCDQaqDi97T4xW!utr-5_Wwh-SPd&3*eCEI7)rEum7e1FH>V08`b6tM$XrogWVS zR~>f}JzknmVk4kxC&WDd(e}x}`1=Yud?3UsiyKVZwd>CLoGP3~h_LXr{e!9vVkH?u zxFh(2?d6IhN>DQV48AR2t0INRnIae7>I)yf!qaj+-E3(1Lt_ z_Q#V{co7k{P}4)Q{0bFjfteUe(*n-?p(hQ>LCpm7aM`M#rt%uMx7`DVr|PURd4Tex zqF#0|@8Kzygn9t40#k)}${TOT#bF?(5MWjah19o&!_I-9PdYttf>`hnpXB7_X(k9F zYXRyE6x6h-TTn4*0?LOo4wGO|EW?lvw+={ciV!6kgg(F_0-DgF=_<6t8qk!3+m_#? z;%f_NAFedA&R%xmiSd7>mO$(Z7B$ta{(^#n^9vG)`x*D8-RF*PLIpiC;`m?e0b?&? zc6K&AZ@GDSTOmK!G7^ErV#g~B_(b9e?jg)G#h|!LRd*@1B}|>3TbF){vF+ojaEauGJ`SH zn*h@PMA^aGdNaFz{XMcL^1$!zY?O;^XoEd`@5OJenutWp1{; zDSqr&xv}HA9{Xd*P~EUlho;W@>un2uZxiUL$1XNI<_W!mS2yLjGK)N5*f&4qcH1~v z2=Cs#duBTM*n*nyj&Ex_zr1~Gj;oq7WNxi~58l@(kRsBD$QtV9wc7Cs%ah_18shwtRVzT|{_On&BZDT7MtvQV-2_c4wTpX)C!b z8Fdma!S0xNgvQF#_Rh<7vymk)OV=C!OnzXN$RGODnK8QQ;yv08UlJVo`ybql&|3G( zyjGfVy+z%`EHx(r#HUBcee+!;cFECN&`*ciD%^@s9J=98?{(HRb+g32%~qPSLAC+( zNp5}dT`{b!zMHhnH08^n^4gOC{&}S9yVU0Gug15$A{N_K8p6^;YeG>I7YsTV$`Rd7 z2mIVhaR!myOvYjc!!6(Ew=+})t3G60SES?~O(%1o2g99-jK)&&%l>M)W$A{kLLtsd zmxgbw25M^>-@6lB0S^4~Ec>suXEp~njG0?=9LRARdmnDcpVn%i1aGv;5if1;rN839 z_hxL!@URQfQRRLch&HPm1wtkBUN8Eg)wboJ*S^|8y_$&vf2L?dW?caUy5YO&R&?ny z#0a8Pd;bEFq5p@!^&TgG_W$?K`8o1l3@v>|EF~S^-klu^U!>m8t`>(L5;-P&u}da(VgZ;=yTPK~ zx?1uI5I8C%#AKxu+A7$5l85Vi-AMWfk7s5!+tGGy1&QMNNUe_kS_7q@#ZfZYVfQ#M zHLyrj?PcHJwRBpH?Gq!dVd9LEbEkso8#3LSyBop_?h`DCK#pN2+bcX|iZ zrrcxr@0Ue~_j}|{uu5|4_taUdO6_l*nBjRpv#0jPy8Ss0arbi8r#cYKK>qq=9)psVb~TUd0-XO#-sjp=U0D zOGEnys~GL2e|C<+XMY2y9dOlw{`}FvVPIR*`**4ziUZ;s0&heC{DEK)etf2`_*ZB# z__uBiMbE#SIrStjFA9HTbo6KxPGq=DAO`|8rRn()bSNQf5ttU*Ip%;hOOi7fs;&?S z^qUmc^*3URc<(=O0xntHp%kkRo}_O@P(q!ftQEVxlA2mNOsZrmoU^kq1z~nb*bZt) zKRzoj@VancHfRk_Be;q*NHA*>^7ia+PvS{}KI`wbh){lQBuIURKIL`(26(9|zn=Ps zt@mAIC66J?4ObD7G(ZzP`g{&`{B~Gu?CQfZ+%}TX35adrguV_xZ87Z8kXD5(^`u8Y zestZ5=$j$KKt1k=o1cOZZIHas;G9P5Jl_9sJIYdf&_j++P9(hz($EGJ9d2)n1t_GR z{$xk31BquC5KgKt*l9@;1`5-hf`WVC^4|OQ=$C!_MJ&7UYC$7YU{!S;!8jD;5I}?T z5(OI);%0_4kPf&AI-2}gSVM(TpB4C!WQ`wlb08g&iNcMZ7~g>d)fvP)%rkK}ZXAHd zkhD`{;&Pc*jaFIgPRzCZJmy#sjf&YZMm!!l%c*Yrlih}slNcRLl zi3l-?xfnEHHuza`fAQ@J;?^=EpBG**72>ntKf=>;!LK7?WV{AIM*$FWLaRoMUBJEY zgI>0`YxViPDYA)0BwsR$l$$4w2-MyykQsKwP>N2WY7tcm>|5cG1dv&kD^Tx!@>N-! zuvu+^^EzBmo0zY0_XFMtKpG7J-bCSgg_@n{hlx}U+5wthN*GlPvlO}gd2n%)5+Omb zgrF4x!!#7un0@+u4jqI&Bp75(q^kHup|YImKCnfgRhAgc$fuu|M{EBPzE40Us(&UQ zQkF1yVH_=yrU5rZv1mYASfXi75d1gx5k(fwZY8uK_Hbcc@aqF4gBPUi_ia7om7lS^ z$oz5`%>>%ICD+g3GJR1-&5`SO;-_(wuSWCk6>WAqH{(SCxBh8qXmq$_l zDM}2hl0MN89%cxRkr+9IJINkWT#RL=7N$5c_$-YW2p}ne8l(qz_L8KrL3~QPT=vK&cu}ZSya#4AQooXUnPk7AtzUq0nFRR3;q@6fjk>8R z@rVQBTEJ(w6WL^t*9qe!!JaiMv~0$xS;!`7@1TclYioNRpa97&6fF99()bGuehmEo z-4Fm1U6+#QJ(PLG+Yg}>D;rxa?AHV}mS!YIW`#b>dNjL45QnuYghLp@8VG5x+Ho&q zMLR_382e6}wdz@%Hk)%b zFu-LfotY8?iNYu3?}QBi6v^TTuib@2Md`!qYoRmJ$FxsKDJhrdYyGRz(6|u6y@_e# z7w=gN=lx>;R3Suea-e4IjaDAx_1`L~1%!X|p0|jX5i{<}qDv4Qo?Y_V`BdYC7s79x z%i@w#SpgP6*jRbU;(kw!>ZQ3G-{!)e2wh8(&OD-d_}te$HeN;6_3FlY+|IfY9W1m_ znXGOMhmD=ikIr6Fc;&~dlFatLy^o?z_U65zDFw#8O`Cc29UVOkmFTsupE5BuHVk02 zSSQ@Uq)ywvQFae~MDgX{3}$}xyBp9z#3v@|_?j?Q7SdQ0VrHklho0|EHtP8`_57<< z(=%sOH8`yCg1yfeDy;q)QQ965n`BnvJs=RZ$#cJ-yUw42kxFK5FSaf}#10W0o&XON zuuTf!gT++aP}~naP{jfUe*qmA^q&rh523iAVpuN?fe452H9S!bT#jfu(9h4{oS4m4 z`%90O85buyPb@Te3#gt9LYCd-m)4%51kdI{9Ho@2mnw0NZf%uCw@5;>0L^X2Q3~!z zJ?@Py^wwvd=Hwj}<28PG4h=25Uz?Qvl$Q&|rVgR){H_r*m!4X9PQTo4q`}X;% zW8z%srEUT&fD#7cT@vy6+Fi>i@#q&8IC6)!tS+ntqEuGuR4R^cvKe}M^iRe^i)di? z$8K&1QrQV;f>4j>PgN(H!iL_17E6q3@m_y;M*RNhwPmL2P+M->CnDzhI))M=t?XCb zm9ks%;=eqU@~AB2*u;6kV?lGBwQ0{z|58SMCC&M(&&PbiIY9av`fBMIuFjsKa-=YvK<(H~b6zNGvf z_C3xgF5>WgdRI@LhNe}xaJf1lIS<9Ts=>ckVRYy_`WVJ@9HKa=Xz1R5_ut8Pp&+kj zK4-mG0G6_;DG_V}dLJe<1CR}*iy&7D1Hf0Jzw+FtgS$&4YW2wdR?c!7pfhlH2rDRX z)=R(a=orPlRqOf0;U86zZ(7*}5$K`Ys?ESVsWSQQ0IDR0YzU@Gfy^FNJchQqRTh}B zi@tmQ_=<@S+n&H5g2Wk;m4!gZH8$&UzTglpEdR6)6$rgLmNM*Y(1q=Zo0UOclPT4A zHifZF=T%^X_&T!6h^L&xK(!V+EKCF^(>#Wu8@^k1}~o}S(V#v~iPn~_mb02Lp- zsUU%6_$|cUfum45@W%+lGrzyb8ax#77&Jd#@4Gh>+UH>=oiY*^+GpQga`ZL%dx@>= zEi5rX>~%h~86D$=LvCa2)d?Bf(q}FH%xdU3GbHr$nG|mfyU>5{lF}eHapYv(X?5JEl+q=4(%dz59Z0D+jT0+WqT-#pXYYLpSK}R|+kB~Q@b?Scf>g3ApyN%4fa!0o;nWRZw zU0-7R#ozj4;(?0#D}586KS*7jnfcb)KRcyeoyWDn+|6{+J3CzBkHJi1{9!*|`Ox$z zlx^UTfCFDk|5t*bY$R6@xlbTHmOJ~)0|yyFYvDz}SIv?19cb?`hI(Rt%}R7E90byg z0G3hq;+%jgK-11{c>GuLJB!SR=!dYMaq_(+Nd*YpJo{^M823=)*c?#RDpp={xxbd0!PU2$+ zz}h(F5A=ls(k>dti;JA(NPx1q>$VZN>KG>9XW>~v zEMUEm@-HOg#`^gk^=C&+gr4lKx$r_;=I8N&xYS4H^7Z`F<~$QM$}esVat{0c8Tu)8 z!Tm|B=>UsQd2#4qS<5}si~F_~2p=-7TyPAbO!>{{VA;v#%j(2(Lp44=p0sHQNg})< z1uZk*LEH-ei&q4riql$q`s33;5OlW?x{W`m0~vsH4*-!!HK$m<6$4EusY#&cuz;Q% z#;i=}Kmjc!qKJWk1W(}tH+*W?Si)#W;p_0~vpOvUF*pDw!ce|`{hCB5L#LUtI5+kX z+nEAzEW)%L*3=kEa513E%*Ibdx3Jyznj)x10vm%I2Lp)wkhL!k;WGkd^7Rs{evj+> zav8!ckq3&akoeZHPU2Ei^)y3QnZuhM?f-*zl?=IFp^$`?l<%e>Z7^jT$P0KNDR89V zXM$BCKM1dU^5fGKIP0ipZZMIQA4|X2ro=>uJ_(_i2qA_;1&}5|!zn}D_Uj8j4U34N z1KQc4q6jw%K(kf^Ff`>D-9`Q}E=zAnM@pe6#a94)sX>j#!^RgsLr5v?`;K&rvb}r=K+;m2A&u&BY-+u=8^)a$%dhC0r z$E}{!s(ZgRx{%k!KvQgPk~p?`{MVA6VH=i3TppULDgrh2-`&uz28L3+a1nr;3B9MxO9YlFfc zmM;xPbMI1>OQzaRxUZZWt@x38djvo};(^hu$UxkHw96~$BOfe}fF1`C1&|QJ&TGlZ zNBaay#y`)SsO-?ZA)hm>yV1j$=J?HoupQaqpS)dOCWPf2+@);6RQG1)_D<8_s~fF5 zX_Dj@R6ToHIb7EWG5va3EW}hYmN)#sKTN_cM5UA(galfDDDO&0tN3usp-)vx+xX=<>Rnl0YUTBt zj^dk;>K=ES4+n+gdKA??lVCOhx&A%vR5lU)C{_p)Z%X7b&7Z0 z_|K4z_YD*ewFD$fzgKzE2cIJ*U%+7uGga#FNF{>kd7~|k63!7@TR@^Fn8bNwgB~JQ zPC_v>UkptT>l|yGn7`CMLwl-n&GRk|MZK5%U2o79^+h**roT0;kg|OGL=3;1qjrLk z!t3c^cEx($kJsDc^hE@O_h~1n?N1-LvK}P+*MpT8?%mv5DgU)Hw3B_b)Y4~6P%mb) zDO1XD5+~JO`uO49=br2{Rq*{gIVl?ETj@M_Ig?tK_O)X`{onI6(R_RACwiQIvPv@L zWqq2@(IcG_h#1&N&d$#;T{P4-j4bSAL>?fTQ z9O~X%v(srxyL6;hG7G4qyr<%F3w>uUeqH@<@lc&>@(0G)zD+-_*A#|#yV1U6KPce7 zSx~z!-(CJE^^=FPj8xH$dOG%&bX#n?d@sIjkpIbQ&sv8vb&XYz%+Ibp&!PkcD2+ub zM8ys|>l$vcqN38eUUHeU`p#mI9Zk`ZzP9RI4KcvevHtV!1v=2CGE z4qk0bOJ6#piQmIX_hwG-e=sV&zwUffcBWhH2T6IWZOWpTb8@(2`0LD+d^0mO2Qulu zZMen6ORMuPba-~5%jCfd{YTfT%fihv9%=!vRxi&SF0FR4r>NA>yq88BS=VYnw3J$A z*BELp4$q&7zZi6qmo?|<>NJN=jCR0#$?ELwmbc52>{xl&7I}*sbVyk3>T9;;{(-JB zWs}?+LrP(S@xhfP-HV1r)F(9)lelk?U5?@l91MYU|PU48gMV z-?DQoj9foRU!WVfd`MnSJ-%5dGUJqSn^vSgVG4218Y=aQ)iQK#-FAWN*6jK9k2^%g zX$2ehc{%m0Pvqwi{0}HcjOpfYX+!Ngk@pX@>V;_6cXn6N+H%Y5U%BtnO1nW><)5+? zNV}B&Q;zCxf4QeemH6dkzKzjaGkTbDSf$+W&WbMo=^; zf~!AEX{nN3gr)O*4t4d{kuNDzy5*X zWiGM2yt_-Goo(Sgubl;cd!mkwyb`(YoI|Iyp{dQ=T_M)#N{&+V70c5{w>u>j_B^;;?{SCsX1nm2M{Tw!MmBhy+*a;uUgpjT7by|d_-$H8 zGV#)bmqZCT3i`d~>)XL|zc;~qau2=<;F32x)mBr1v@LF!em*)IK=3evo`d`+fXL5p zucJ|Vu4bO1lay@K%EsL!&=?^&e$bA(D692rrJl6b4sF>zufqp8f>v>=b8;dg(!{Go zbn&ur*VPJMnt$G-2>J}n_AuzPiC@jODG$gG*293`SdG5pjXO; zN>D5FoY^`K+DG>-jxI~_77S$?f^38s3h@9?auDa$yT>P5fh^tvkf?>28#{tqmO#M; zUKj2GfJbsc3p2$7%4vt7t2KPhe`1#b>Q<6?Hr|y%g`<|SvV*kGm^^dxc{)=C333Kj z{I*05ajC@gYaKMJ1p)zHJ=b^r50pdJK_Y@&fpq-RweYndcu(nLfWymjN}!52cb%3b zv0QLlAUTZtMysF3DY|dBlS?mlh2AI*?NblyIoHzh(M-ka6>HFHLPKDZe5$U9PQv<# zt#A1+6gcEKsGeiiq_-ArTg>HIwQQwXQ_FJD?%8Sg@3g(*`F%78^o{LrDn8mxHK0^y zFGDkB(=o0Xe?v)o^!D(PuA&onZT1+}()d7&OoAAJLuem5Bn(OdJOpxuv=1Hx1@bBL zYPQ=(5>NqvaT~-6rlzDcquMIJo}d!Qs|Nvo$&&bw0gYb=%$;7=Ce29P){rwF@b;EP z{Re4_H>`8T2v;d~0C@4~)AAJ)a543y1-)`*ckErJEA_)eu)}5n(gnFpF@MhZBm0dN}6^&&Q4L6c2q`Iljw5?pDC*F}6I*k3HJd^uAR6 zf<9XQ>*T_1Y9quRHtZ|25heY=u_sr_B8PVg&_Bs$B@tNyc-LxBMF2}7-7(}eh_e+T zd<+0=1VkdM?kjW$1X?B=2Ac&_HzaZCUc|tahyGJX9W9*U_#%O(C{{`KB^=n4WY`GF zw^UExb8ca2qR0Z8y`-ch;KkB#g_HRhfW6+LwIaz8M12B46?>HkW62*P^9y?t=C7X+I1-kBYiEuG(=~(BhkAUs zPB|Bj-)!e_sFM59k|kmvHdS;TFBtj?l23}+7A5AcV2ECgNB#@+!E3#5QxmMZJX25N z?7>t}X&Dg(0orRKLP3p9R8ydsNj?r4hlG6de~|`c))9Kqwq%892#cAc8;$ejGmuQN zZ~uPpuU!H}S%aj_+D)h5YoL`SIUxip#3Birsa;D!5DwA9SzS;8ql0V0&sT;(f$VOG z=NP%A&x4|%rOy24+aqB-Ya1jNw8n5U4uljb$3#x1y0Y*YCmM2THxd!4;>nLO(6nMp!C8gzm`?y8F=L{G*PDtPf|1ay zQGiT@`VA80IUG`C^?1V@eF~crk{|%vh^&XE1biGZfWc-+s3HKYub|^0;R#Tlh)7C~ zLhVR(2jVC6{6+u*c5WxPC~GRq{GR$_d#{bSuDF=ER4TR(P4oUfRhpSRXp>a$XO)Zz zZx(&S^pbIC8%g{unG4ko?HiFcc~*SkLf@Gncnai%9EtR0V6b==q)aXxAwqP(McqjJ1UQg^SWp1LBghspW7=^OmTvNW#Wi3m4>3Uridt=uookwM z+&1C}A$G%p&jtntL@oqG8IT)MFu}EelLDVA5n}=xW-d4hCFLo6N+ePjS-8<3JYB$- zdVnZuY0*I&PYBIjyHe0-{}Yp=jqlxfEI|-4BFMNVp(^)*ll(8E7#`*qkm*u}2rrST z91tXm5cLs0wEtp=Mlq)&8`Ym4CPU!}!hO|rd-vIL1b6q>gs5R~U3O11LLa14q#m6s zCue7{?y@uLqf4(Fip5I5zOJN9F621zkRS7>=htW%l_T26;;{!0ri=}Rtc-;$VAYrx z+fqWg37Gu3np?sCp}f2nVs<6s_r8h7VJ~E6V;Nz}1owFmJ6<@&n78a{%QMYK6iYD+ z2F&2OP|-3zM*s_%S@r+udhc+q`}TialCl!nWh5&kL`EXYNN5LH@Re8npOB-WC+6fIx?3=62t+C+OKJmIuO@CP<6 z4F=|DYm=bVGv8iKZ zaPqp(W+ows$vpDzhtx~EBHNn;aBAN0(sLOlt67e6K(;m{!dc9K-R0>`;k z=_z!b{vPjacLN6|upRPC$bKi`=D4U(m6gtJ!C4Fa7p`NwpC7ZYuBH#pTq21eC{+f4 zTO%$Tj|2TamQ@i%42Xc*bB7_JiTJ?rm7vEe`n1x#Rj*^_YQZ0GB|94_8{pisgVRwECyJSp*jD0buj>d#`5)nw;zy03bQ^Q8FC3~dyty2|KjUNV1fA^1WMLu zzPAsH1aF6k9x#G}gl+=?qwIxt0DsrA`1AXudM6HQRHrx>g(pl9Qv_6s1XzLcjX>Fk zB(a7XMw;3O*T{4swo@gIibpr7NYIS@iENRKw?Jb_{e<^}EVtoIn&UPl7ePsP?v!Ts zPw{U@XW&OVx*g;)ti7e_(d|h5F&R_QEPq#a*&gpmZjLnPVQ|jM!ota^Pyyqo zA3t#d`fv*priaUDKPXnxju1v4EbI`OG6aZ=1b48HaBqLw`P9UzTf%69*NFP|Bfi89 zKUKxRJJGTmZuENn%!!)%QcHLCYWhP*WzifHj#r;Y(V}K%$Fe6_4xf5`PX9p$ts%qC zFAT;nHe@IW9#Eq##FE4#z9rDG{`o-vuE|1B%{n3(W`5MCZhz4FBq$uI2NgV`=?=B+XiF=6xKLc!3CO#a*0oY>zW-)>j zG3vu`e`C%8#ERsW1aC<)Fz|`5suX_#uTIcx0R0Oc)hqSnu0zTcuFq1ggE&i}4J98# zR<`uhMY7<47DG|;PY;Ywjqx%({QUeP;^O!5WW^LMv4!jWZr zbct{WE34bBY3FL`TuVNUp&|72^^){Bpm)(UghX3bSG$W8iri5FfUWj)L2y5_`kN1i*BgnhrY4@mc~N3e5{1`R)-xt?^-G^;%e~r4auI9_gk> zBD8xh4|g1;WQh^a;f4O}cx+tiwfS$*-Z&<#A0OEm@d4FzIBY!WBI(7q`INvWuaOem zv~-lT%ZNvo1aSjS)wH9}g!%tPOH*d7G9=`0dG)@Kt{h~K?+Xu$NOLHT@7rA|O!rf{ z?hXL4E$k_Wp3>*nJCZRW^13U1YtP`HhKf;gepB4(AmaJdc=Cs}vMfw`T4Ahs zK+!twHS?}3B?)!HVjQhfcf>9%vEM(xp6=pY==Sc98G_{_u0P}tP}VxL1B)l=KgffF zpowH@dvHhpD@PuD%8AW_`SyStKiKXkpc- zZfUf_wR!G_8lRKBA z*?8Xsv8(i-bfkA~<_M`j_agoEITfGi>?XN3LAmhtt1Z{=bL>6q$#bT|>!EiqWAbOu zf?F!$mr_nImJH>oj@>9pnzwJ3%Gsxk|MHwFb}(Xrd%?* z!rK}(j)o=Mj<}xG6_WXC{z`vvcIq2@Pn1_WOKAG77@mfR?ZT?j^Hv?UGR+fu_qe`E z-Ffu=X^w0|32mDlKBl7Nv7PW@oHp8qn^%o-vP6}w6OP+0QAZ;R1P+{J|=mTsvaj{G>TGkM>A-lAd@megR}b?=)QqwLPH zt+JIBJREXCVu^mk`jgAU9BR854NbRfkp50h9Tdc-wpYn{^ACKaLEpBrPcB z^{vyl=1geNEUc@a9<5fDb7#&tr^UeOWN$Z!Fa|%ATQLo7hXUHpBLuHvjElRow#{)D4zm-m8T{ zS$MUDK~%#1L(&^-wfMNyMLGHdPX%eHRG8Ea^kaK__7;6#HA98%q2j>6r~ILD%jt~; z4&zcj6}8wsEoH9E8xtb$zV#MjbZS_3KKEnMay?s2n6ZJr;p0z-&2rxa8MWUmGFFSg z*eK83#8%TgR>RarPhR&nZGSkC!{wC1<@U^iV}8tzh0`bJ#O2Q;yDq3to_;i1p}P3U zI&bV_EW7fT15TI3nb=zAF`nV$uA(H{Ywz^$H7S<~H7#C%zj9%#(*YVOgO5Ie>m&P= ziXQbvY`@F(%Gqm(y)^CBty^jrpCmU-;1~-J(=ZNNRI;%h@sIRLrZanJ^x$IM!QWio z3SUp#w#dk`QRHXhpzQ7}7JOjHW4n4*EbxnLrbiuBx6`gWvpmAvm1&Flrw6^%eT+=B z$3HO~h{$kM1fuP=(LS`jKfiCes?(oRyeC%kh~w5)PrAW&o?EG|N8N{au|W`KU?0o! z?%{e``J>0R-NKR&JxmC{92v#6MODK`0AX8(9+qQlw&72s$Mh(CaBOjHZO*_U z`%$o(_H2{+fiSR5l?okm?-QFwk54#O)J}d7&2x&XP4Vq0`cy>wFkwoRaZmBhEfunM zt&8T9y?446dM5Xk7aDD`U7kMnt<&?CeeSjM!L;^mk~dZ6oYq~<8I3i%T#&@_r>*+a zzMNM#U(h=Jt!9j32>eyz?dxZF%xSbI{>RF+?B1%K_s^)&2ZxFdf0mB1a~=)1rPwGZ zG0w=@dnh5{Xz(48JBgfic@~XLcSd%v?))NmXlNpvwrZbo?dnq1ZUqNd7DL4y`Ln&V z**JM@)mF>8XJ1}sX_8i!_1>98ZV{ZNz5PcYCV!Ion%X#)f!(ZV{ov!N6Te(qrFZ*( zJI{qXQBYQbGPp^nx{1rxG+}G{BipSKyM$=|mYjbXc81%&B@UnKa%wayDRE!~N9e4H66z_4tQ4 zM|Nz_4EkT<$A+J>|4k|*kKx~6|J;W%%LY_q_3M*R&k+Zh@|C|X6TP+O)^9DKn^H3zrUr?~nAG}Ul2;#HAxVAckhZ8# zZu$7czBK^)AWU+w?|RN_wdW3*XnN$~v|atg1tI~)_ZS2^Mu9L^$T>()-Z@4PVl=NL zpNy#FAmx4i`ZZk$@qClvHxTxN|8sg$4CO6^sN8N_(0>x#9vF(lr$?M{&pt$(#Lm*- zeC_$OYGe?n1^pDt&f;6=^)O1%MbV>MBH3b333KX*sPemDmY0%8+m2gW4%oMqaaZuX zj5$Vmpkq@0kQ9BgzEjyc;n0ao?Wy-_p@W>NFp!nCr>{uc%+9KL&YC_cFS)c^vgVwW zRp<@AlPU_v(UaaLEXhmC-rm>!Ev4H8=G<6f2LHI;)isG_h#4NDTqhVts2sIu%dvN>DaTgu_OBgJsuq(SrToECUWiWA9S>| z7%>d9=AlC&)v~2+HwCmIYdFI}4T!^^@fUtIobpx>Dakl~ya8x*5_ZSk&fk>&!w@h< z4UQrsBcK$RIS4I8uZuiz2Drc=(6}W)QzuC|P;Mdt^b3;vHL4CA)DUT)1u-!(>AeW4 zC%zE{P}Dgt;I+UBq&S)NLqu0c}RfCxO+I| zYDV=hR6$6y%w0$y2;dW|pwETMOy}9xjq}O0=z1udS39#)q2vb&1ikbDXwFX-S<`rR zyRKh_z8JyPSo24Xjq$bp2jXoKA$g;Kss^^h3%woyUf?i5vkdLTmON6fhFuS-&2B88}hfR{C6oN#U0!S)_1`NtY1msx0 z+yD@^j!YCoYYI?>1iKREx*0XD}7l5<^ktQkfHm>(z)2yjq;wZ-<~Tk$^?x7* z=%`sF-Jbr!5a&I^2`0L1&DW$nXPZy1=Aw0+BQ^w_bBpeFq4 zz5b4~qu!&xo*JPNZJBjqf{UJ+I*{e~MEZz5$68vm?DU{4>@KkiZRX?06{cxk)C4>! zQgV~5JuAu4A|{$?T4XwX-iSreV!9%4yO^6gFD2c##`V8b13FYRb_{bM?Vq{mQL4zH z{k5kT5@k7Ltc{r!Dg%;KVSgeb!OcR4Eildu4`gAxb4a?&?`{PixGtbHJPAY_R%tSe z8LfIzQ4yJ+Ne0;=i{(rm^*!%?nySA)#YiqV(CJ!8=ZHWLlksR406>eeOlj>n*b!rBvfs| zfOyG}M)>955wx+tK9qa_c!VplR>(TSIR}8a9-I;ZjmQ*fJOXn4g2E*Hj$g_?9!9JK z5=Cvu-%kN91Mn~&4)7scSlWot2sis3ToO|-<<4i6MGGu!&!@oXJYt`~#XSi$4^2HA zF~Wziijmw#Y%?36SGciZJz}4DZm^&%e|c6M!{-8PYfuxw+G>qMfrOnCt?N|NE)X`q z*fCO>BxbUx6E+33T_8~}f}O`wK7bGdW8CBv_^5V(;0<}MlFoTzQFVivYB(Qu6EGS# zShJ@gT1ZA1{sr)L6f(L4_{=ZIJg1?>Bm>;Bu@$cTl>t-_5^E=*%MTD>(^IcScsB88 z1zo!a*QW}xgoB$0VhT`f3K9WC%g7_VBj@kH#|N$UFOj1n!v*aNL-x$&buK!Ch$Dss2gxg zLsg1E^;8ve&I!$4S>5e893T{JEpa#om>FZ(_(52KAZ6m@B$9P9wGr1macDMPgi~h3 zy$F*-NXjko>=GR#5)SYuU^qNe{2AdqB;A`tkz)tYQ}?_~5N`^)ew~of_!h6QlIFvy5^?8qBqFM>4!93iH%;Vl#UA)XGgQxQ%STF9I~ zs%Y&98zcHW0o(DcnL>Y881#H*@a1vqb{!>Q?qLgGAvgg}0pn+Tsxr zTOT|pAkzgg z6abgM>bm?)2ka}vwH$%bGEv1(8TswsApsx4o1wOVsTI-{kd_x=5<}TXQhCUHQk(?S zh_IONim^!~YKdm$#W1XmMROG#V5DzAI|2%r>R}tF``g;5-hK!v!}Je$n$GmSxP~7& z0fKfK_;_ifZ%z)j`YWhh(43Hv1qu-GFdl*knHqlv(K2oZ4H)_3vYs~$rW2Wgrlt|+ zI2J1n1A`6L&fB{RG0}GZi!Y zLXmVq6y}&vM;aq+icGuad;el`ow{#hORTNZG6yq`wFV462x4j6QtybQn&7ffF_0;& z6nKF@aI@$0i#9bip$tQ&E<%8tu-G}JtvBH0Bd-Os@Q7OvZQQ7r{Zn{a=kZ54F;lXy zuaD5@IH$-UK0^QS_|BgJDRuzHTnf;Jc%H@QK1)}3{{B)b_OCSAiuw`in^gsr=wL8O zh!CM_QBk#zD^4Ow*6r^f2Smky&OjCBR5_{fFT?~6Vf+Ddv0=*WfjHkeNYqeC-GVKg z`~nI>(7+IYyJNe6KoE2vejAH29Zi6=*GAukF+`#Y@B9uPH=I#_9jM%L+)76% zup_sBlFHNJR@8(&Ps#zcO$pZMr`Y-Gc+$2x&IIm1cU zGffqbAi`F(Y~5&Jrh|82N&YC87Hv{q#^{T1RX&OqnbO9$eb-)tCmE<6nB{9?{(uU0 zhTY72+i>G4|I}#2`Mgh2(K~dgG46MxAl?EF)WHsK>iLGAkz1f}CBnd}20Kh$B*@8R^{!b%;FcLCg-0!`;AfEgHZ1`BKRECDxsAO^SO!#S# z85%JO30{|Oz572cfF>AGGU^+YIh0Su2#%m2dmr~OVX07AkbE1msGyHHRd$XBky|8Q z8kIUWNfCeoKkH(>6lLtJLTpV6u07{ogXw)qsx(v#A?dg7-TUpQ_4GCwUW;`{fvgV9 zJigPjOy-r6P($q7V`gUWp|`^Nz|(=BryS{0%b|aXy%9XHCd4L$wHtIR1nG`zNEdBv zCxTL-v7A0#+C|Yp#kqZxpB`QfreT?kv<^q(vb!nW3qu5_qw6w%k)(`v|+5NQJ z>HF0^G^rf-ukt+WU9@yleE!trUTVYHVefXGv8ozjmh)wsm}8j5N`BXy`!XkG9=&~; z$Fyz3xj_o2{6iMnzo!qjxW9WSvv%PRWd(JG&^md)2RjoJZ?)XIYW^OO$jl`O$~K;> z3ylyLJ6QiwHJV{f^O{YTvg=uXQL5^GUn&<@;*oQ!xf2>;WYi+6Tm%@)SGwA+cCnhc zJ*B*Un~+pHR39xe;bbBcBtWpY&xn29S3AB{w~d60p`===!>PZ^_2Ini!aiEF;5sB9 ztjUPkf9Cw`$6aj6*-nv28sn{x6FB?4ndON5#l`5)&^@HAjQ&eYN&aF_p9oo$|n~+ zkSbj8V{)v|s*R4f%axu??xbbA_(xstxwq0cN2*=zwBMT2R)b=RQvbMV)z!Q->XDR3 ze_y4ZIB4Fu9Sm#6w^T%Q45;ts*iS~luO}@vnYT@b zzTLfRQh(hM$uL^c0x$DYPoZaqgzbO<3wCv$yVpM&iW9LVOMMs=gue< zEJUKTM>OfvXX)>`n1it?x0cX&v0upHK~k}b1L*jyP$=Xgyga6d&A zRz+IC*}4O^OKr zX;S-*&X>5_2PV<42E@xePeOnC!d?al1bd6aHLs|m;nwGIJ!a0aKiS2hjy1JtS(+meFT+YOGrNlZ{gpOfV{cLgpsDBg&b zj)K7E6svKahK6yZ=kC7H>^k(8lY)ebpgBZV?lQ0DzYy!%cJ*-P%B0L<@3TVVd0m=` z8EU`Gu5Ro+Ox^$D(aFQKKWLi_1hRA1g^LGfPQR-vuKYX5D3fzxEz>qjsjfJJf#T~E zpD$Xm)3T`T5qQ`NL;x3CLnQAHgjSMBHq#E0!Rhqm4sw)x-4$u*=(g|P9Rr9TEik;C z+hITi+K$W%HMDA|{M>(jq=8WnXc}w-kRek*B8h8`=yQ8Rqn!{TgTH}M$G8=yH6wQK z-n{@(Hy|_g(VN-WJl}YuI6xJh&HnSp5ONascpZ16$Q zgls}Tia=+~U|@qVT{O1^vogl&k zs0c#S@Es5i1IK=t#&&#X)cf0;q{*B-A`%5eb{($-j%*_ALA_r6^YVU|ncmY|na`;v zM5K#|gfLI6Ij*L*_P8l+g}rXPN30{y>~Y=Pi5iAaDx86}R|Vcs70b1?1U{3|VvV=B zWN}*3INtH#&)EGgvaaRoXN%JLw$RHqKj`yzl5+MdjjZI?tZ6S()E}DdpUM#lIhfcK zYQ)f+Eux)e7RS0*ujRSAkk?nfs*m|BnBW*%-@m#K%{I#JNgVhj-G;HVy_TADpcLmSc`=ynF;0ysEo`fC%g;EH~|oYh8HcrHWZKO z&e61@&LbT!sZ$`N#Rer(PgHgUBq7yqMINDyFaz`*oaU;a0pbb?Rtovk1Oh~g5Ss`( zsgJ!99T|ztC8AL<4)~}rE~mi+4{Re8X&|l$jd6jLjl|EOTzW^4&72%un+%|HpdBOO zHX(1U)3KCE@+uNysnAv8bHMNc-h+r{0Z4HmON7i)0jfaqZAmk}#p$U(RyzjikkDHI zP2>rXU`?o22@D8C+EtNIRgi)%ev%p zTH3Uu<+$F&MlI>r?S2o+lOr5=o(qq^6|%B^(_r*rV*@6qgkm)rBXz^)9AUQSwry*l zRRx0K=3Qx4srqYERE@#O;Z>Oqj@sN2#Vw4sg$w#89yGiYTpUh{XdA1~aJ0`kQr;D+ zNwH$j*-$Une4z5!H` zQ{4c?7s1y6Vo}p`knnG04g%32gQ#Ne-hB&@L;k`LJy7aOBo$+kNuq8e-4t8^gsve) zdnDP?i@*0`It~oDzq+18k~17CWj7peh)<{?-d^;vL?MP3idE(UYYKAlY-$qH4agiP zSTm5`tOuPLj2ooaMT9Iofm=!BF+yZsH#h$PDPW6lMWp{EGZL?rIE&rLOn5lke|~!0 zgmIWC&uM`G3IbF@%o`bYOC;Km_Pu^_jgHK9Ba0}lhCA#2eB!|oI9}fu>Elpi|wY` zYDUjvf262)tTj?wdm~Kmm3`6iU&j#0|E8%iv$90SLZD;N&8qC=&70vgontAA5aCGcq@j43)H;YW(2mtrze)DaOcTnZCFL2yGMrshmbs_IIX z6S4Lqm_4%voW>|15r@Qw z_i@^({2KJI6eMN>p=d7MMiIw1Kn+(MTjbMI z0ISxr+jKmwBKCTtJB6-64pZf!YbQ5~dy5_851=tqH@Ic9Ln}^(#&qt1%yD6FR^vPo zCZCZ##_`KnHVAk#T(8NeqY5yO{CSiMRqqKFmcTXI@n`Y=L_7**r+r$6CFXgSxXoDe zGc!iGHYS7^J+@Vi;lH5tBUtX5!0IhA=tox2&FZL9r30~T?%Cc$H) zNttO5Nj-yPdT!|{1=oHmtXF>A;ph#c5)*I2OZ#NZMV_K3V3(ocvf5t4`dstGeggA~ zX$R7Y0C6UNd_00Zf+0{wBRaTSaYpumF(8APK}HZn7SeNlmUVaDU1zf>>+9d8j{*x# zHi?+Qltf~vz;6R>e*i;|(P^MSz-l9AA#5%R=z`^t0QDWk z1?E!Fk@`TlZK)%5>Wy)<0GuG(EGtfss?=zk?2v0o_rTymC+*V3VMY0FQ76L#x$~bl ziv&Mm=DaJo@jYwY>J&HIl7K{n3nd{t2pfTQO$3>ct&-LkYr79l2@1ra+yksQB{=*v@bw)5M2~7D?;!sC&z6o^*)b=T+gD&7kaX`8SFpTZnx39g5n5shXOo-Wo z$lg~fFGtiYpB?ueh<6gYMcQ)+^y}X1^~pHoSU; zf7ox{2_U!u1|dxx+NAQq55v3eINad@E*{tw-T;X`TUdMwAh%kQ?Vmhm?r=C$WloO4 z&p%YBedw-6MASX*H~{qnY6!?2z44A|QnefY>6Ofy8#VB=2Ez@tx=@ zAxc5RE`_#}O9TL`6qmZwGa|$BUHy1FmKwStPU~)ewzM_#jadVKE*Z$C%!Jit^c&1L zo*4U?`kEs*yIEp>26~ybJ-&-O1qG{KKTj6{wE1T7!B9-&a3ohN zE@H&OfwgDGz6N4+5gsgz44|yBmR@MvLV+kaI2O;uW$mi@A3Ut3rG+8jWPCDkt_TF4 z$;x7KBVnJwp^&ZNhlEzx8!2ufi3SZ2ew}izKq~4kQhK6HhjIeLqYDZo0hN(-lPh$W z>8XLmjXb$1CLtk&`xuL8eo+SbE|!))bk1C|js$-rfs}X*@EW3axtT74yqv`@z!6Y; zVL3096>+fkZ$BV^&y>ZTmpi$enSFgTtHJT#L+CqsoLzb}WNw|eO&|MYp4Jf11QHOA zL!2o{Cud^+A+{0q6WW;EqJ1(lA6JV}Od=MC0vZAA=L_1G*+Y&7*7iPO5Ce(;ljyBm zn?Na|rXq%F-`a#*xAg0e&8gww!XT7{N+(H2NDt_5QZq?^=WugsWW57I*uP(nB-MPu+#x8D=g0q@~7$`qO zUGis2p_i-0fTqm;vGfB1|7!2S46wio8T+gp_UB2)`wZJ|$?isiDhHr#nr zgZ4JId>`L>nn_2l$wE)Am!_uz=hRMwQN7iP5x}J*6r<3aWNo@Wu=Pee&(ZK+L#fTi zQ7Jt0_na9E(>UI#o_|x>cjk8Z^{ZxeJdx`|+uh!bl2D8~Yw2xo{Fk2z8uPz&YOw#q zdN*4tKu-GQ;e<>N;|kf$Jq*+7eMU>C`rTrV{d#FDt*`%kwp@nF)nk9V!zsCtlE0%+v-gksT1o^O)3 z7hICxe9DR{-ymw_i<19!4}Jx=J*!8Vaz{j{6M1w8I4@mUo31AAQ~raV*XMH3^ny)7 z>^6))xmJnOIGw6YfbLzJQ%$l zPP;Fu;eyWS!3w$Dx|*}m+F`W*p`-buio-5fG8DUgzw+`q{_FMuvIS-v1a#O+OIBX6 zx>R~(YVf3k;e~PtsGq&mHp>o8ca!@O(s(7_ie00^o!dP*c7B7#oc$5U=`c^{J?VsmnZ@_1*-6d@N#X-jS#NvX!us9hqPE%Y*{ak~I4x+A z)w0Y=sUWo{%=JmhgPu}`yk4z;zz%*^H5CvOO80Ze?b_l}G7|4wp9#Y%VXNO1f^TZ_mtI-+B6rq|9?Bwt@C?N^|mo2!+307HI}0IyVRF zpE>n@p?39|pHbat!wOe_t1S1Ey71HMtvTtXsf~s9bRQZod(+)k$~m^>(<{CZ-G6@` z!qyFrk9yZ>-PkzTr+l8%`~2EZ<0^F(R~~-$5>1(|9~{;?7<>wP%?sxPSzHfL` z#xr;1kk@H^fIP+HvM#MR54rzw)TuUqFMF_KhL-VbZ$s0XCD&aC+eB%PQ7IVqrgIoB z>T^eb-~Ej7Qe|~`@8Xj5(2iQJ)+ife`H~He^eVoYYpWk#nPcb~0t{DcXB2-*IN+lq z6TOaeSXXY^33+*uqA=B{0uBa|+7P{e2UpQnMYl~4+nDs-4>8MgI~_Nq6WQS5{>XN_ zZOo3;tmD>+0H2F4gc?wmtzJg9~ zZtz&|tH{azsFR~}@b>d0Ho%R+Z4Zz1AtZ(^5bl@$4{jz-_{r@)wU@V@h*`r_!}?JG z2Di@;dZKei)+L_c4`x&vz=}xH@5F=)M46BX(6WVQX&JVG#q(DBebvTG@XeeV5lBAp zXDEu`*I84aDbWOi2NNXpYtKsW$jae5K9Q5dp3pQXwwp_U>-(g)kKyNl4Q5Zeu641R zOk6rlYnCsS)jQ)|`P8I+gPE~fw$NYEHLv&#ABavKVm>8Vo12pmew2>NXmd`-sF(uJ zL8MahbUS&y%K=eZPDE)?-cV1(G5x}YjXegN*k5C~Y@m~+)QW2OY4zDXL z#vfM)@5IMzfH7Pho&GU2MCu(7Q*$bGX22Yf#7vR_aDY<)$_qxFxAD%qS(Q>_0*w$< zAFMLrF4wH31_iGQEYR=7v-U#2RbSlZxFV{*C{QKz=kDk5t}u!Ad2rFjm{HU_ko)xK zvT<((3o7G|Nxk;Ja$bJ60DV86f>QU><&f?~O(^i1^qFQtSsRrR6sP zasUK~yBpyE!1|z^Ll1rL%B(TKwi)we74%K8_D%SWRHT3!yyyGZp=x>dG$G_DK*K;{ z^{$z%azCqosz`O!^c%2h8s6UWpviyb`$~{w#)O*;AN?AgnD_<-F-DB6Ku^4x!u+KR z^ic3fLnBDM#DLe}#YWH-LEmt6xoju z?5rJ)wAWPggD27*xc28J&4CTgqU6u3=GMU0HSEoTuMO~2lpU+((Hg0N$4pG%gwB;gX58T zqa5_q1kymuwVa<2A3ufqz6~rZZ2$f_Iq(eL0b)tqxkplzb-^z~*?~VyG%AG%rz9=w zd*nWNXdgUmz=Gd_M@_;lz@x$>dk}>?rjH5YMH72Do$_gR-&xC$>iFkb-kMfVv6Q^ep~s?H-IL?B zrMlamE3BTXPT@}cd^?QV+W5ubEdLv3FHa{m&%!|2XL^0Emv7!In0z?O^+8c#sL?ct zDpdUMM`{V%;!kC0*fDT3hO=Os) zLMM|2g<`TBW8dIhAT#W->khQZki2xFd;+ZTgEvrs2#p|3SPGcKB$Yu(&+Whx11tdy zu^)XCAQ9|90`5;D83bx+GFu*VAbTM_xevaV2=p%hE)NEpLTY7z-I(iSiAIt{*@6Wo zh$v~6@HQJ!;uAe5vIDa|JPdspgqUORUxf|OgAkhD5-cAHrXVxN&d&S?(MsSeIAWectl~t5sud+%76NBAMqYa6h zd={(i=72dPBKIWyATT|bMZ6h3(DJwbgKdwHqlOPyql2V}$q^DV0Pu25gxV zGqnI){eahEN|VzW!4t&YPeFoXfLD`D{9NvQj6lRmOr#6|D1o|>5Jn1O9E4f`#0-Jq zN#q5lw&=l8h(_ENI09+!u!IWEckO{%21fu9P~&YC0&*vr*Z}QFC_*sl#D`2XaiNT`&rbEWE0a1WI<}!(2-fiMzUttDFCOk?Bgt1Xg}m9NC@C& zVq${dKV5_{K7if-vgdyu^F-^4WT9T9Ne6_P%``Wy3ml9GN#-tB;b1_$4os^H)rexsB6agB2Z zl9LP7PS0FYQi_)wruR!8=ry;bS5;rQwn(MOGcQQb;xo2>JY)ZaX8()k0YfowIUf0@ z)?fT)oUL)Ir;CHbgWsQcR-HF0!u+!HF$ZkV&x3-7+UI92*e)L#j5_`6evj;qm+GAu zR};qC{>ky0@lD#&7V&LKde!^hiivqi^?j20^5Em&_J#$``g42Q$}iZFK_6XXdHhMh zwQzz%nzv|vL4K=!k_N`o!tEe={K{FQq3i(XoNo|-p*Mz4A?H3Dj0T&Tm|Wk4On|K} zfKr-JOzx)t6n0aCLQT@1&$y9j&LG!ald|$h*xFbKVzv4Cd7W3nO>S{gs5VKw_`OR% zcVJ%LA=Dd0aEVEMrKd2|K)r$L;S79y5|tU22?H|?OvMtHw>gfJxc}* z!?XjpCaf0^us#g)!ZRJ9#=Z`~|F5|UwCGR=K?+y>`|7HqnTRMx_2EiNg^B;_F1at~ z_MmVve4r9{Jk#Si;v*yynpQ6i%7#O23u)5IhVpvLH0)&*pzH`MR(UlrIlq|UkhH1N z=<4lZdnKOB7MJR7IXn{l%?DKd=(&Mf2%Wk2VA7F_t(ZAlyzRb2 zF|QZnRq-u8jDf00m{>V)<~gik>~QBU{v5R9MnZvrcIQ_!wI=S`W9QwuDSgZ&Uiu_P z&qaOGw^pZ-r`GK#pwZc{%D^x4Hlo9kW-2inXt!zyZk=bA9W+}d7@4-&o)WH~Xlyk7 zC4Vn)Tg|%@@dDPy{kh!2_R_QFw-3{^J8^X$cP-(od?1mkovrYM(p? zfMg~p*eaK2yGZyuF^+(P0esJiP<*`ATz-^JcCgCf#)Rsp2_6Jhhy|ZQj%$nv5TcTu zpXehnHx$@JJFteR7xQ^MKw4rO6QC8CB^2v8oHR0`z{(Sz9A_%d(?PJFL?n+~2W#Uz zW(Vq&R54VlsCix&k?5%ZhP$<*MgnU`wC`{@{U=t%se$#4WDhd=4p1+OMEn&GR7_ZB zn5!I&#Y2n%zdUwr!1&(??BQ_uurIbDfCqQI$jm^@X z0M@RUj3iJTaU<@3Bgb)I64DL+HjEu!UG7;W6C;R_@IOuHaK&#wNdv>u#!0NaAO5FY z@1eB)Pj*kl#xiGzHjBnFvi)O92HDxzXCdBp!`uZ(o(_Puur0oQZDA)EtM*RE5svV9 z+SV;6=@ltTddqBtiaAefY3WOiOnQq*h%tQFYyNCoTH5P&7S5?l?T)#%Z`@>M--`ZT zAF|E6kJdUee?q+=M?Wdz=M2?2g@xpa)zb5O?&#A~Z|Gh3C}aH}DYgxHCq%191FvLS zt50_QF^vo87&Q2NSu}F`N9f4v5_31tu5}yb&d%K(8v3N28rT*d2zTmC6@3ipl>FLKy+pWY5(%3Y5 zI{W1~W_TmfOp)snga;>vSoAI)y+TYrP@3XB5xbCS2Mr_R57cLMj-^L&VTsZeLF53- zCz(2f;_t{jmi~TAa=?*6eDKKhvp+*oBm{J|Cj}w%ST`tX=6*C2>Iw4?keyVH4M7N2 z&@GwW}?s6XV#Vez2fL&nnQaR)_EI#9tj zBigM`#TRfP#PuLH$?!uY|6+6yb{LfBhUsrX0|7f;X!wYyfzA_M2AR%DMjBDTJ|cDY zlQ@@*eGQ88CBGE3fD6YI&?hwDUm^S#7WkBA^15n?_J@M=woC#$T&T+2;?pbK{TtUm zu&|VFIsBsDJ}D&6=-6MQ{HmqG%#n6lGejzR?0hXR;I2De$|O^>*mU31K8Z(?nMXWX zjqmBH@@_kgHjn!uWB;e??aN7`T=F?9l=1CkUBRDMC5J=OUiS4pF1>8e!dtuj%7ZT=}2{`68=)spqy^3CNmyUj)5Qrr^DW!DoWllEmyqoStZ6$|5ZV`7-wrK z=dR^J>O)(de)|mSl=1FuZeX0rJQkyPcc%!ZA0g!-xR|zl<>o^7=La;-;lEuU?0Vy@ zhG3Z=%_#`w8kE}yHU3KWS#^V)`;@RyVcdef%-?#w!8_GcH=QAM|Cncb2h9vu@#nD5 z=klgxhI2O!LWbifGx6g1wa~fUpp#4}V8|HrgdpctNYVYcR!!|_3567*B>Wk938|O` zQ@7hj{y5L6H(RgHJS{LkrT#K&YHQq&6D;-B7H@GK9orykUj0<>TS$oPRX_1K6?31w zMk|T#6ADf>Jw1)1CqGv=R+;-;*~L>=Z{;q(b*0+j!R}Yr8qB-zH4La4wu^Q=7V7(d zRkW*hFX9B`#+A(Sh3$hnEF_J#^m)W540tLAYIuhWZ9Z{lCt#~f&tnxE184Q318fULj{F(AwX*EzdNyCL*q|Gmj(m?}X0lAzoDLGZxMOA0@u5O${ucL{dgmpm z@X;Y*-<1nIVfQ)4&tA>*`h#eTZ``6;XQTz??2ED5FBP{e&YOt$O04W_kp&;P<}0(r zueQP2@_7?>^OXGqRr87`czA!!SX8h7yJ+scR6n*HTlfzgjjS`=;obEq^32j>hmSXx z3O{^md9N#=lo1=$y@V?Y?mKbbp3V z+dHevrI}`7$;U1V%0xt3TP$8LdCac!Rix+Qhb;{kgsSNuwjEFlOO|-|(@pcQpZUfU z6I~w=@10_@?!U}p)pr9qhaEPVaONF96o|Nw5G{wNf4rkU^d2DkUagPwvD5_WTB>^5 zonD&KskLbf)pF7K;}TqS8a5ltkB937`hIR(8dt7V`F%`xROL+TmqE54G`Xh!y_!CB z2KjEMrT_hLU&%W=Ip|-dMzQI(w-_?|vpkkCj7{E?xWuMrST?E{Qfv2w^-)$}y#?QQ zO1W5_TRwDq)|Q&z>>8lS;qc(5rxwh5oDk8>^!ka&?wS!nNfDXgl)r@w@ zJ>ssrZpT%Nk5>YW;@3V@N*%2#!vtTxb`N@u?PYwSr~O3Ze)Iabcr4pJ^MyvKmCtCq zw~ckc2FI_$S?9}cUF{NcjZGLZG~9M>o!^H0bSvxB_9TgY2>Wj!V(qRPy~GH{mD2Cd zgLcWQKc+4;@vfH4=6*inVdF2hx-R0|O6T?cd=tke6Wcrjln(u0x&f6e6+H0&BQa#T z{{Q~E&|a5sK8`4xV57nqcJ60iSMJ=KgM=v!sj&pdLyIY&)@pVb< zZ=(pms==VhH>y~~)0we9IyGzmK+xWT;Kz9mn04aV9zrwh# zb5kb5h1|}QGn9P^mu(t43pY0$@p&$A)#%_kEBa3ALJt2;pQ=)A?zg_RFZ-Q0cz02= zIZPlo=M-PsgPAM)BKIfd{8WBe@o=%N{fAGpg-XPcOQ)qo9n@@0p zi}LG1b=fp|7uk}|lV6hD-rjCGc$bCkaeW1ktw|$u_93R=ZFhW&qebXjccgs?a{cRe z_EY*Yb?m6{?~GU>amG#Yiv~2jCNB=vgnfP}eeo~-i`aENvC(1<{jWK<@?;(r6*Ma` zh^Tw7dxw*UWB=Km%{s2<+)NWNQhf8(w6txCii-2S>s92-mUGRQMSK2!dQ$Mo4U&TC z_g+;oKt2BX)w;XiPE1IiKYyM~ohJY+dK1^N(hj%Ub?g(Zk-o7e5-?zP*8&iFue0m< zOCs$63~ul2Y=_=v(e$P%wglo?8JCxrSwhuGKWt|wOw5z7ILLs)if7Ntfmh8>tE^t2 z@com)OOgQQYf_w1!c`U^eAfEl>g&38E&EJ-WO1}9CRdrZO6KvcQpBQ*|669Z#R%98cFd{gyh*RAXwGcN8Q)*lW1 zu{dH!Vr%MiPtUNVZxQ)TVzhhd-MEIiMo(DN%QWx(TnV#P{xG=KFbV_)=W#|hp zex(P;*6vbV->An>dGALW_xjwUl=%bqH!kQOI#bHCcYU_lm+UN!-kIHN^UD-U-U(Bi zJ(jumBm9qC;?hv)b_aK@1D3spIg0nsSl4na@EqIP_V@2!k%T6CM#jkHUweBNHo^fu z_-c#ucfHj=dL+@3$c2f_hIgfpmt*VJ@4C*HHWMKj5f~$)ogib#lpOH+WyNa+SGBvl z`@|bP-)M-lrf=%`1eBHS`L_6NZff>Pb+U=X6Z0)#Nuwy0oAB}spn zf32zf0=PKI1i}2~%2CsCO90^{{ek>&94)SpKukT@b>(IQ&*dF{w~K?R|>G9%D#rh(HsI$7k%UxfP&RvUvKTEBn#B@~fHTRG9Y&2W?W@Fv<0r z)y&nT@RQr>^4x`XL!(JND(=U!!1@y|!kDds{FBOS*n;GV5gJKPj}Zdaw=k#(Ow{qtS>&K9S%c6BwuO-NL4 z7n?7CJK*Q1qJkWii`WU!<1;2FCs$&2Q|3wW4`04CnlHDTGc`>5K6wUI8GPcGm&#T-Ude(MkwYxhy|kIX(XbUWe4bthu8VR&}glQaI!ul@i2ON1{B)van)k zSz9u})zkBItww1~q3_W6CU;y32bap2Z zy>G|Ivtd2}<$mRqhexx?f>!?98aXBBH!VkGc;H95;|0yGZBn~Yr%j2+<9$yvO}`g3 zYaa=CB~yyLe0|Lo@ zn~d<9SnoHn{CEXwm50>4zRAfb0jj%Xy9&JZ$W-<>k?b9kHV43thklf)t=|^8RM@UIB0tNH7qc zfO~Yqh5-z!3v~H4yxq}$U@d_UPtML9M+CRW#>YDt#15Z5ytsz}0LS1CT8Llk0$pST zf%n||w+dKZA|emH8Xj6z!_`6^8x$-o3KVpNC8Sl~kp}5x@Om%jR10&{uy{|T#&cWY zAVNE1USg;*ATC>zF0x5vm?^utj7g&s{>U-?CVKi#^(v2V?`e!Kyn{i-cqgxBOuJh( z!2td^C^UYE=FfaE2$O&z@o~3AvZxgfo|)#F7}%=w{-`Xe_Pwt29RjTT@|UdmATWV|`?p924g}7+ z9JT;FrO=8O1lU;naP|Su2q@rRGzKh(k|GCoce(u&KyH9Bj{qXY=XKD6Ll@3NG3vun zyb8&jegZAO6(1fR2-9M>zm<=FEBmH$_+AbH5a*AD_z*x711M?@a0+BiqX07oRIS!= z^73|{x1P6D4!~$`R?zX1PZ*T2_x3V)`S=PZKh-jB7JT8wavNOB*R)azgP3A9*laE65(pmWJtMp!Skrj;HOX{`9idIc z;!yd-$RO318v+mKs< ztT6ZF$kID|vWQ|P<~C$PU;F+Skz`1KW|2k(GDa(83LM`^{X_%0#|&4qUeMzBm^_I} z^cEVl4R3?%Hn|41S1S}&E0u~1Ge_h^kk=Cq>iTY&n!$eODW}4hCn%#wH@z8C zB)D+eD3}vPryza&Pw;3@r%(Mw)dD0AR6mU9K1ykei|d_YDwprQ!Z1|{%kcbixy7OF zbT+WJQ2m}*2Z&h#*$Hwj{_dR1-&rQgeW(|vPioF*=X*={f+xPj-g4XJBKIbjGQID$ zm?~=Kn6Xg8g}9D{6VDoXuC8@lfme$o+;Cr1)2#}jDtq2HoD7PZFH7!AIE)l&GG(`0P$m6<=QjA!h&B1W40+3fwA){A%Y^hzSt#UoB$c}aK3`kOLuX4o z?B)F~b;dUBW$LMkp7 z)+1f{%9wQoNxGz`dgi^`jetl?S-79tquwMHu~D%UZS6Vk(Js!SY@PZ)<6euIQe2@bepk9b zSLJG{Mp<=`=kkT+#i-592g=^+X!{Lch)D4Hq66`E7Wa$2CY!&1w;Ljxl4r*ypyywut;L4x|Y_2PT|SaQBB%54`#Iy^Y8k| zT*XW-RoXK3(R?JqD+>yCGY!51VZcPlytSqkSEj(LP1ogd{E$$_trCe^l3!%3RbIF3 z9>GtL&U>^NQjUVrx&&z{v$LJ^9Ac4F1YAG(1lxZSd z#bAoMvpl{G{@=D)volQS`#fpFO>zNBC8(u@QR^$9ff^Uty4`BwF?0c@(lht5Z#;u> zRNZ^RatwdBE!haByAL;C7W4k{D4B?HqRNlp_}*esafKp#Jb|RP`vnRWj0exwddA@B zdtNL^u~-f_HGlVvsUYOGbz~t)7fR{Z5z%&Xw7@zpP+VDSP(QFPwR{bD;$m9EcBk}& z_K#N9C#rLFOmR%`5N5NSZ*io=L@Smg%clhU^WgBLq1CINjgkbp?Db?XACMC)0`^0( z-p+%~sMH)XbkQ9|Ra&zlLbB|H&(Y2d#|Xge>gp=WUUt?8lZS`eQV{hu4DSVWJyuPC zKxe@6l{1`b`xotdz1_Tom??D}-Id*=+hcZD=zM*!irAv^AckHdr*vmEVde6r$6&t_ z-PW>jtSyDLuuFA!xJ69Oyyt9lZuB_G0z@jxNy%<|GIaeHho+lbk9p>NML5N%SSX$L zsKr?~?B7C!r59?t48tfBT;5|f!y@Ahrdap}v^o2%FQ~hTmSS6Yu48Hu9zoNJ&q}An zgsikfYF-JkYP6rCs_Oziytb88R2@tUJduv!XW5H+h_syMjf$9O(mLku z(WTJe>%;Ir)QmKHcF$Cd>{Kqs;S8Y8tYkGl|BG-p&@p6yv(bN!Q^f*U>PLX2y9t(#j3z*%E|4n^}i-B&DJIn`4w$P6QQ^)RBP&~aR^xoDb zj~%%7%p6a9i|;40D1Q?EziaMT;%+YM{f#@;f8uTF!pLwXnI*dGsPA!*I%0R8+dNfO zo0cw$|GY@Ej5Cp2jau_+DOu?pf0pmfYWZwS0k6=!-(Nq>c~5kAk6WeIvwr#40f}dV zGZByztzsdxneo8Q&zrkVz+D;rv>&ds2GZ2_Bl(tm?6&WW1sn4^Ea3QVHT@_V!xUSt z!?R4cT`}A|3VWw8s%}C~{eViO&scB&<^9>Q=FQ2aqCysTrtq>GF;>1ZXs`wUpED}g zTtqeaj5LXAYhG2@Qlc15^8FrXShm#rR&c}j-V*iaJkS?8QYO2m*NLz|*>+vIOeiB1 zA$|9Im8iM7Ch2#^`o(oTR!}Yb8*WA#cm(egl)jeF59G2Kt`0csm+tNKkxD^LGs*T8 z(}hdoOSY8F3h@tD?Qi4mk8`)JtojdK?M0L3*|UNf!j%CSqxgf3jWk|uT}xMi)YK#% zEHuo*Z-O}hU_jzg=Yh?e1Wv1QFtEWTkA%I7mjn;d`={H>uQbl6X3(Ptra*_GW-kF% zWKV)X-82v?b5;{50-s$z?W~dOgs)T1p;ANHB%XiVC+JC;Uz8Ms!J<`bFsnidWNEYd zx($wY!)of;){D(93fJ3(ttaYV31m2NPqQcYIy`^TlRpPT9O^4_?Y{`*GW6M?yF1o~ zrf>r!#?mL;IzuizZDIh2g#^Ua8lgPGd_|zKEtfYnG>I!j2i1ihdPPfS$9T}l#gfH6 zS|B%Ok6Mon9sXeZXj)NE2XKpJ;g0Di?Ina|o;Pi5)0msEbSk%u*dsfuH-ExZqmWbE zQWN{|O1IW%&zz@As_x5l`wXrE+k(yOM-4X}(gkY`xIO7f;5G<=WBjbWseDxod#3Ac zO%-HTG%0uZ!gg#e@IHVN+J)zWC-p!QOKu-wSg?8xD5OC9*HRt-*)sySDn>ZtmPnZ3 zzNLWlf05GsD5K?{0Tn{=-GIy&m>d20c9w@IMY{uDj9gu;v`8+$`9$X__jte2`Z14i zS|#$R&G$qEYVbRok|NAKx`bF^JztvV@~(pE0o3feXs4IW6YMgQy?0w3=Vm4fQCWyfiK9d_<3`-9Y9@iul6 z@V)l+eGHFrvT)Wy;W&V2m3`d&k^%9$;x+h9w&AzAn}S64k80bR{YFuCI@4v~(h04< zFFLhE=$sDP-5q9crwBJBf@(!7&Cy9R_;sHE*6~KC&6sV|kqOS5+(RB*tz!LH+fUvR zj)owFzs&P3j3dR2CpM^ca;tj8irJ zYO4f7(oFe5(*c1%Tl?arMP(ol!F`W+tHS?fX0DqZ+&;ZhxN&TQ$X2n*&xTd!AKg_W z6XXL<&i~4>J+@%g==>8#*@zFfuU@H%l)9$=u*sdnXnq#)yE>90$(?4cy8_tP=r4D) z>#r8(S3`jj@Cg3N8+FN%^!V07z;THw-l1lzV{^CuZ^Un2VlVPzb}Vz314Gxv_9_b3 zBc!KKxB70QCHsbD`of_2l8>NzpMYam0riT!xO*&>cNc5s)WG!pjZn23;E$7e*&7%e zfi&iqhldLnCufW!d^+b7H5?MxnTqN-7$^VCBno+Qf_EsV&7mYY#@#zMqtdRaYQ2K9 zo~-S1hTlh=$eqlAJvi$}lBlaT{PZzB#`|Uz=vae@fvJ;8OcgOi_NPuiMl%v07ngxr z-1=oy2=^2FrOFGTOA!i!pA$%lAvY--+|tBd%ixYX>c-kKsojkWqtYCFi|DT>gQ_0p zb;RY9Q6tw=CpUV`#{GF`&+y$)A4vrSBm@VKKPwjovozNJ{b=d%9FcK_**x!o=Kg6@ z%dX9l9jCQVw)OVSuIpKqL+{fF)a5AvfrE-#Qqs4d_f9ESM5!s*LqA>x(qjseAc!8o zaMNh%w(nwFy0AScyg|K}W^?HoZFl7m3<8-}#A_aWyct96MrAh6N{JE- ztzLg4#!#(QpBcV=J#`x;d2Jv-;c|LB`1diG+>v)v^eULeW^M}av)1#TuZiV&UlA+cqwg5bISge93nDoQ z{>7!f;>LzfJ(UTUxNsZ4Ea^A+5`T2r?2y{Bln zsAiIFD*1Q2HO<1b_9oAYVb?7EQ6h_x6+HIL0LjBF<+9a24m)FQ-)E!apQ`zeD(f;w zi3*fgH=>9ib-1mrid0sXE{@A`?H_)rQZ_d|f8=|dm^EHg@F~HQ z>7NTUKr~`B_kyYQY7+U*){-Vg!Osby7hV(&F5eNt@aP~n|;9rpPuI1C@R(< z4QAT9Oo6n+NcTq`!Gkwb(=-klC zn|S^-lhjfQvLt zfO;^1g9Nsu{`&JrWKPj!x0dax1f1Lk&q!7-&I&lqQzxJ|Z+aE+4jWq=e|H58Jrqr< zMQ(M=wF1oU7r$(7dbo_}TT(4Gl=3GEHe6)J6RMc9k$=5cs0U%=29C2_&=UKx*0fUt z8!n0DN~$NOY9t4b91^7qPL{z^Wh!ryIP!fQF#PemP`sI_N7Yhov6C!G z{FlYQOL%{;kjFOCVZW9%#UG*|Gi4;i3^s15TkkM-D-8l+&(SONFDxxpp6~yQ!j#VR zQC!c$sUp5J#+4(qnBWK8p)kte^sE}S)aPrKMI}NH3>C0q zZ}^}6_tXD_m{NQQW5E9wLbpPf;BX#__8uK+J(`FvpxiuXoiTE}{ zCWCxUR@vk!i7Zf>lW^H+{Aa14_^AOfj$oVVk&LH_n9OFH0W%-b4PTv5mkp=X+-sE`}_ek{gA_jN7$!*R@B)Wp0j>w z&q_Q&!Psp)`EyaUw&Gpf%i6&Ft80!2P~T1a6P!!MAX;7gr@bVxn9MDnq#K_4l#0Qr zM+LP;n{Y~q=fJujyBYAm$RfXK7$s!-2S&4<3ysF9%l9Ytr*7BeDE2jxQ`hfxD((K< zY3{fWdSC~E7G!+4)w1@HYlX42A7pE-{+m)t-TyZ*Oa1qj02W~S;{=fZgqTY1JyV{g ztC_I=MZLt|yrqXGL%&Q{{Sz$jvRE6dr^@U!LC#cnZ=E+HoN#HmR-gBX<=;56)n988 ztD&sxJeQv-YbTA@0n#FeVm`i~{NQ%ypU@d*n;$~Wv0OT7&CNlmlu-3H;u;O95-$3t zo77#nmep8P8a2P{ojO}bg3t9F%%MgSj$Dl_Mkul+*@T+Llcq*;nQjioH70|lr9!5| z=eCt6WS~YH&e9JnGDK>tp1q7O)K8lUL;kUGdNUO~B!HW~Fb^VA{Y})t@r^Valr3`? z*smBz-B8*S2=88(#lg|USl{@rPb|N5d{~`E{>O$ed;KJF4qL_2P7!Ys(~)U^5R(%* zF+ZIKL!F*j5__?HPH?U&_afmsG{8=f_`eXhO_~jHR|Q2 zWx@w0`Fz4+hz#nKPz(2$f4Q6FB;Ws^JvsAO*?uFe_%w@Idxq^WGOVO!vy-0-_haP8 z{)z$w*gw>)JT-{Wzjyee0cPgTwPT_xueP0i?#$p!x8&KfW*F@N}zN~M-v~gyrN5Oi%Bs(ZZHZPMJ1O9GPZKg~2LuOyRNU~Fhk=a1SI4zq>2USb=d6>s@k)*mi#n=I>(#J3F4AB8=)N~Sc<_=GYQ_AAYD)E>WIioi z@JgOmmFc6J1s2a-T9iTGLprtzf>xU5e5UO|L2g074%Sq<2b-?9W-?u zqxN+err)mUoz6;b>TIpcJq_dDWoz@na>ams+u2p}Xpri2?$7}|G=W>E<5!UC~q17}KFT5`9*1Xhf<+5YGrv|B_S^|o=9m4|wLNUJjXXAAx72KjyVirq zR#`(il*?v24&J)&&(LFK<{nU9;(z!@e7I@;TQ6J|YAmB-ZSFQ>El`fpm#a&_9_Gt9m|C_A zJ;ex7!sDfxTI&`mEXGbodREkxU$-dbS~jzy?Wud7^&0>}Eamub><2|@?ehu8g3f9z z9EiEbdrb(68}5Fi`D1$nUV_na9q2fCRVX!myTU_{BkQ7kvvhW%>OPWOUe?L4Xnhm& zU)bzEEVg@MZ^O39i8j+#dftC9576GR1=G%cm2PEQr72VpuepzNX;{1@UP~^kMXa7a z1j>ltbHXFq5`=o4AhFJt7m^|CLxUulxxBoAF1YFP*@-z8-xLHR2%z=krk1u=`S8kE zka1=ZDg-rC$>2zWDa1so2;aPR{MVm45ku)bt(+QShUw2oHgR2NJ%z3BYyTQU?!Jy z93Dt0{&KR3sR}X&@robaz=#y5S&)J5z&b>-%ZRBYC+d|;^RU>4Mhtm(1#yAVn2%%3 zld+kI_L2(Kph69xa!T%n46Wzc$L3|mpy`i5I#l#o(ZEB8sb}SF(98FD%{~6IlPe6! zGHuMx_goM;yyl>ES#_?YCG?jrLx2#e?AvZM8>3+|1r9k1Yfd6|V^eK?OUb|?NYTgD zke)Rw2D@QQluH=e?DlAuW4by&;o&7*`6YzejOd{Zw@}>ZP;BzsDY&i2*A$PkF1Sj| zCbUTBexQ!{!_8fe7A=rY_v*VLk(-eg8Qppu$v>zBSU2EoEmMXrrYYPFDL)IM#0Ogl zfN-wo{9%6QsI^UzMN|K)0R5$01lQ}n-ER53+@Zfa)$Jv3g_#dq&u6i?>jHAq|FrLd zrUa0aEX{mR%FEcV(}>+7`ReU@=fA5J^+it%K2B@>Q@-0s8sE&EF>4WOo`~-jsR>Zt zD^$X=WYx%&e*i@mj%LuO3R3a_bb{O(CG2J-SeL0RDnbki)S*29m?B(LQOrG0{Xa~o zr8AQ_jMZvD2wMYMzJ=tHR->7YM{VUhS$sDFLc_s=OzYWk5+GV!lywRC)}Vb}ZaN?| zujZ>PX~SmZ->3elKTTaGSPYEx!A$^k=F=trZEiRs7Kg&M(s-KM&MLjfu+8j6Ws%Ps z|LZKwZ6!Op{U%n!dFg=tqc)#=N%A9V*PGo@_Y*h*NW4T+kHp#_EhwdCUZ$C6Tb<*7 z|4F3}lra5)HEQPi=lz3qB0Zhysc4?7sh|B59j&_#yO&iBE~}pa`l?^25q*d^@Pz~+ zPd3viz@f^H+OAbCd!rTNrcQr&z5S0A>xO09J=u47URhRxx97Rxm6Vv)cqpPzwPMFw zruD9J^~A~+!skn#G@3TZ(u985M{`Rq%M>P# zqcuw+=hj+7e1pf`1FQ8BtoM4~yGye1dg#+B&QKm70Q702Ugt0>q%-Cv0_8BBoDFhP zAF)*lU-WTR3RZM}uAGv?mZ2lTQ7;D1v5v6P7KIFCDiD=`0E`HWn1Y$lmQQ-BU_!C! zqtqD?0NY9^O{T9>n6NHOMj+8CNZAt27#5Oq!i=Mu7xFq045tkvRNcr^0*7a8447Qk zaovirXd?2S_n>8{xv)kN!3Gy3pth&(glUt^IP{x0A?wjx^rwfVV#}tToSm>8%ZWK4 z4}YKoG&+;>{rgk|JI~W&8QOZB2_-)EU*qBkMt3;A_muY&$aKaBK+vNZ9>{9m8U2#y zq9mqZ(#wcvCSBcMzvM0m(*}ZSe+ZdT8F25grLTHb5M8)WR6C z3loCR%d5m{saV6#$o;e|G~Yg|{!!Q!-gAh_$N;A%Hd2gGWO{~%34OK3`F^Qb~_R}v=TN) zG`B;vH1mcd%J?yYw=8Sa&U9x_`!X}hCn_OF?U`EnfeBmL{_3TbpSE#MNFhW?R|Lhx zl&thkUFDptw5j@T{}Z|oNtP1AbU7e+4p&;RH$ zJ$zR~To6!BMRky!M}TsF-eSENZ~iC>f)2 zhCdtUfSj7vL6&J=L0U|rXLw;cYX7GeK=YGzasas$`O9Ke->KB((snGa!Qx48g{|pL zOz7G$KiG`6xDpJBEMKotOYswcz7MD&u9mb)q;ktmFecN`7FG02-|MF_HA#5o+{PFc znsf3zH~j?MhyCfE7=JJux&l;R-=qT{2##^g$jIij$e9FFw^fON84w zN#3A|ORV9jGts_sz?uCaYKk~~8+1{G#ZhRjGJ=td)RBWbno~egmkRM?hy_c`2AESc z$sI36D%swgNia!MN(Uy&U9FMGtqRW?QlI1D<|HWD6rd84kDkZl)vkE3D-C+@QLes!)@&+vaE7BWCF{+Ys`P$ns{{Q&3?lTpccCA!V6$i zH&%~C>b8$oO~bK|n_Yno>@Efm%P zOnls6#^UC#hX=Dv7A#5>Z*`Hg`ke_`(2S~)!gVQU4V{@Ju&}P-kk-aw7HhXFyrO*Iq zMvLS%fw^*Y&WBiVLJ4>}wOeF|PPp?zcga+)*$@Ahm$2&3xqLr@PQabSq@m8KoM)RLB&$GUgkLP zIS!pF{XN%}rSFNR=ZaUc5iY(76gB8@dOvA8!#?g#-D@@*x4GLJ*9(=fR5@>Jyp$r^YBje4Jx-E9p1)V&%z_PQS6OBc+|Xa!W%EBORw zF2jp`5>m=Chphps4bdbV;p@x(x~z={-Qn^l1K?pT1e~2Nf2+Saz@$}T)HP&7UNN_% zqLvssF`zH)?9t=UT_A)9mmsG7Qfy!rN(2E)xls2iv8gB3TFjT7#2+W7Ji)vb=P(7m zyZSTj{-SW6=tWs)o%eHRJH$}iK}kC9j}m`0wWY|b)vEcotl0nDpUOA|j0SFr0D<=P zvQHeJ@YThRXW44bPx>mSQO^6TU(6;@OX~yBeZp_AGdzy`@pDo}^o7&YJ{Uvf`s``b z#h|kGQD~k1dwHp-{H-SvgvZ@Gwh(?-Ohfl`zIT;og_H+JwFV-xPMe)%H~X#-87Nm@ z*&V+9#bf|$>ePVmP0uL^JkFz%FZK1+Kd%BZr<~R#=M4k2oIik`1t|7*V)pzQY&fjR zVt&yJ9@HdRLMhpf?7CNvJL><(bnYuCz%)kDqlv5DkueeEBzERoxmc7neAhBt>; z3)ca_KMuy_#vuonH+$L#!C9Wko-|&m_V?CoS)SXQfC_<`Ii&2<5{h-Vm3GlOgl=yz z+~;%dC1>2-cIQTi$G-fa-!lPFDs-QEI*aZKV%HYoewPDYN%kpUMk}5#a>F%9aQd>c%sSova-=Gt_ zU9_m*g+@Egn>igqe%!>*UjkKk@Z@71-jaYK+eoi}72C4u2G;^QyigSWVAwB?b-+jc66wI2LtE9y^E~qH zq^eT`DoSh3T=0|rvxEV->?YN*l89(JXGyi#tT{f zctHAeBgqMqz!+7 z3Y8F7JijjFvr-hsopbJ>MmHOXsC=qA9PQf@y4-Run;`dCAYC~AR3GTa8`8XeplvS{ z?CSmd#nR#BJ}s%bxvA7NHMt}Ec9u|Vw%q%Dl^_5B0+!@z zSoc|0t5vedBBsN!f7$0a$!3=-Z>6zxVXo^G%YxH&(Cu!$a=8K~OJl$98REas-yLDxXh=Q=(u!luFI;5-qBI^cwEdD2&M0UI(z)U0lKCHHEbL_f~QQI0j$5?XHzCZ zB#~fAftQ#$CvrH%rI9@II=R>!ncs_Q2&>gj5}C23UkDjUX}aOFYfO-^;}SJ%+7 z9VL)C@P*1-!vrNZ8>qpXFHa6ehUNQ@CLR|Ya_qOJnvL4$l(=H-S&wAQ4x|qts(CML zcBzZHc7Z;U_FD;|>wq*L3Z!mNR_1uj5Ag1n;ia?VeR)W27wG7paO`VaD~N zTvw>XdnQtL-A+)8V{(9WNy1g-XHCpBB1b}yP%b1fi19u36+iL|qn!S&Jc=l6m@`I0 zV<@LzH^82azbLvlM+9$kJH9-VIVkdV&V+*u7E#o8yyn{Q&~~x*V0@|(YkY6r7-ZOZ zEl{k``kTv*mkE_YA1w3>+RSVXQQrsLCCs3tLy+#bjY}XEmXZ>S{$Lrv^~GzX>%1zU z4a5ax?vssUax5No`*|X~ffH9Vc+G4$f=jMlx_swN7u5rhbWS_|-xh5MfC=0`wTQUA zt{vKj&2Jv#&g@IorKh>w+}D3p`f&}A7asiJWj?k8YuoW&b8NDg&L0+bYzrqf2hVD0 zg%6OF>_)ccE6y@!AFKi5oDi33TDwMCFjw16{Rszg+N=!UMDR(waHEa=_i^$%CX$K1 zyEyJV;|&Y2aM93P7DA=ovDon*CO|7dq>iBL{nVLkOFeC)Lho}{1=B2>4g7O~frbBg z^as%S|53X!$0hzx?Wr6km7?r>qZq7)xi*8}_d6b`LR`X4pTVT*R2KK6kSg3P&zo!w z1jv1;IUxGM^lI}721H8ifDSBO6;2Cu)QUi39-ECvYRJ$;RFaxj^cuy<`H%(FxO^M| zt9{_)L`J3eC3ti)u0@bH5{GC4Wq~}%D3o(x9?%W>p1{({=mBh~W>3KhQ=ol)aHS&xY-vN?6k;4z zUXoD7X}*L!tccxMA~&jKX?Qw=DH{%s^i6XTrDbH#u{XqmS7%=tD!p`WWknXe{-zHd zwVqiRe8JQw$#+0}F-9o1iJQ(n!Nx50bYGbBmIA+U4T4*^IKl@--j5m=AUv* zpE_4QJ$wZyp7ERK(b>8J)a#FDyRmGi#wzceo9SzxKv;J$vZgh<@~AZ1-AL1vGqdNHp}RX7=!qIw@o9a)q|*;hQQ)SlsX2RA-f!h zTk_kKds_b@5T$CF8m9iRag^JNa|*TKLLnOC>Wax>RFH}r>C@LvkAoe4F?!f&x_^`D zIDXxsfEE8=v#tZX-|VMg|)ydXjba7Z1JBK84~sP3sO@c z+1f_s8Z^W!L~?n}Rt&MZiX8l`UF}*#56T7W^=z2i_qB>Ftdw=Rw{hN#n0#F#B^b{W zU2|6L)GKp!;yIY=A{)#^TKev(>QyHJvUoVj7r|#Yi0)#_8k9cT9d$NYVSzAns81k6 zlZVr;C1|ES;^kuA>x`&joJOCP$JUc$@|SB@xqo}KS7I&hzba>atv_mZW>v7-XlEjx zp!Vm_oCN8YBJYsMjyy!SIa_29oZtv2{i%Uwyb@F&1n!(jlPD|>dQBP3jF@hu$ zxOA7|SX|cX1xrN_AS`e|AXX*JW99!=gpH$4P5O?m^qolrJX_}*qDs`=7z+v$jUEYA zpCAuW8`EITfg(P=GH@*iPS{Z?dc$6ulaS-kXnO&a|v~oOQP4;A$r}vtlW* zJ;oS4nv}Jszv_WzUCIwsww}HUdzHiaKK&_z@M%Xjx`F8gO8Ktk8fXN&S(VTXZHW`0 zV=xjOok!^aLbF$`g+JA+NQ+7OIoeYRM-?f*P@F_LkCn(D{oF-za5SJAePTag&QIWo z642#wnw9<-DIB>YHIk@s{a^ANG%C5QI6J-|7T`OO$&FT*Tfy=FM(&SKEo+MX*OEs4 zN%;i$D~Fg;H%x)DhcV;sn)3=GXpXOY>QuFL!GTk{`_bqN06m&_v=@ao<>dJ)ti3J$ z1a6_`o+?u0xaLhrA!qR*rTZLx?fDp_1e_53`(&Pm3?74&h3?H%7VS~Yew{+sYpL82 zn`znRvYqMaSn}0c(F9wdEw!A-Rx8xZ?JG~5jc?1%p(h0hMz39{>^4;FXPMF;XcZtL z?*ud95u^VVNy_#d`UqJe zzhXON`saoKSit#xP$Dv6V^D~9ckUhXu*UA%Xv)SESr*;i-5_$?Nw@uoa`zFN@!4B z&}IY5;>7GQ$W8J+qEfi=79%6WT3C%9F@-S|T!cEShj(bl8a$)*tc4+AT(;@%i9IDx zE8Nf3u<5gS+noaW@luJ<0{IZiXsN~cFz(&S4(cbouNMp7N!)*dh6;PEGlK(>_ zh%rhnKq&?(a=1-J-(xubGUcjVnnB;I*UR1I(adF$E5VuJPY2zH^}N zHwlBqwQpa1d0{Nq!1{THJf}YoH$|NoznCR*Nm!1BoIDMGcPPqn(b~QCWb-wk^R}Xo z4d!TIpS63JB9N=LHa2qX^7%v!kk?Mz=IIuwQE4sD<97ves^zU6_+KEqLt9h;f}Tqv zp;a_Waxf8JNpALg`u6yYj>5jbr1b&yYx12W1TFQlD+ z1&1O!rILesUS!4W?fXN5s=aR8EbWPKDfh9qUWi71NxE9at}$^jV8$XxvGa~^Y7 z(i5tlM1Vi_5Y_4X9#YI|jtS*SA8Nh^Z3DaD8N*P-+8?E6Z>iM#f99X^pYDEEhylMz z8LJL|d9kKyunmeiQD%~!v--JL%YrD)Y1bhfVaq9;G?NGywEen3hRpP@ibAX_vS(7F ztb7fo-o7<#jBc(V9i`Cys#i86Ho`}uz&Te4%ggxgX`N{fG@NJ+P>UfU4mBZoDuH2& z=mAsQ!2j6eJzM&03vKuz_{lgRl#UP+TB5%5RbHqBwY+B4NhBMGI)QoDh~+Dv&Ng$G z9HENFl&T;1RPbk#lk#P(&B_-uahdfdn@A zD8uQy(goEF0$*fIMuouX8;MGLVX(YjZwT_CN@|X6E_1m?7iJ z7$i;hd?Y~$$6>NY;`!5uKRV8(?j6^gp69Ti8BP6&F1LKQs!qr8Ue&wvB=MjhyMww0 z2#+TM_^~YiE?+UHd+dLnO0`Q?EDcu-mpuUQlG?tB=#NAFcfCNqfmD)ay}q;v96BOT z&?`jIIr0V*crNA4j!-%@^dwf6=Zwkc#ttS}O%dV1fC>nh|{Wlmbg`!YBfDS z)Q^Pws>kYf3If*C_o%8IkYmGwob#Nfn+uey2hy9~1Gw|D~Z* z{&+I(sjWggzd~$2lY2WL^!NWvZ~pnr>jfL<;Bz|X^7+6gpPts#8|cbrEzVSanxKT< zI)4ILp9-mNWaX(P*pYS&eQU?X~5|?dWojar6f+>c)^MC zZ&7rh11w%eiE8q-CJf<1TjC5Wl!s%Sz3)J-)EG+?Wpll7O?DjI)S8gf*HZ$8z_dT7 z=VrN=BTjX8N)T)D_^iW=va7;Y-MA?DofS*$Tgg*lIb%OtZv!ibz@o zLR3`yuiGkwkK@4($T;+?c4E{r09P?j#h~Xh87gSKO=bJ){kz0;6bodqDo7qV#$%|u zAsC!*?%&6ZaOnCm#o>m&@wry%MQS)ld;<2}oC=*A`f_=IYTwP}7)+9|Z##Hpk#o+d z`h~&7SexYl<}x?1<^tolC*d^+k)d|cNv7xUf_MpMijDZD1*gC`?r(*EWVFo+y~1>U z>o6thUl4gN7t}GQEjEaVDeI;ryC!UknLEbP~#P3hW(zT*TF7a;V-(r*>SyWe6-YZWvKB!PwT@J%fSUmH&6cAAsTQz7(R5JHO6!c`-U8*iap_B>4Un8}UcL0=A#S)X+#g^~uv;M=AG^ zG*~AEGlsEb5JD2QE7Xi^txh#oH&(*w+&kI*cuv~X$V~^=ykUBn2}nkGi!dX63~U;K zI}^tg!IjL2iH4Adz03Rj(^5a{%`@=siq8AE#7I;);b7pVa(c2HNr;blnajy%quW3S zuN>2{MUAMbHy@a72eiWe>SNjKBJq2;yal>y=-h0{!s>R%C=Kg9IaIE?saQT==eSOH zG{BehR>8wW^Yo;}2*h7tcp!BJMXFarH^lGcB4H77Nv^nC$%P$ z>=WweZVQcbGKw%i&X2T21mGP?Mej2x{xk|~bz)|Hl%6|Y_|tMyUY>1V33HqIqyH1c zjqR@{^kM3hE+LAO!o^0bI568GQi7%D&y7h%RwDA#w)yYjksJ~K5#6EHF4-AhH};i= zQk6mc*x-4LU-dGacZL!cKAEqKBDd0W#Y7|_$Jb)QFS)}&6Mjigq%+~wddEvbjHp4H ztS(*CA6R;#5CqBnPg@GAnlYkK;Dn1xO_WfB@$Gi2^b(&E2TdjX&#m+H0(D{Z2=`I3CbxYd(Iv^n*sbll|Gs%0oHh<}vG7c#&%}vyt@` zhID3bf`OF(wBQ%=XGxHXOb^OKKaOSX7U8IrOZIDXVz;@T_?tQb5xuA7FEKhlJe=4J zMtpVMl4t5!TflbTQMUY6W8zWP^T(u57-i@4dlu_h!%}8c-M>0E*NA+Z)xs&0Oqa!) zcaNjNpIbbs;fr?Y@lu3J=#dxUIYy4hZzu$883`=YRX$V%<-G5blw%6#GHxo(VFWoG zJa;#E+Oy(T73G3cDysU26p@^kW?`NkaClM`hP@}HUX4rj&Rs-}C`v>6)A0HQyiGFJ z6e2t$qtYEYKB#+OV@I51_Bi`vQDo`sV!TygP6P|5U#Ie|PaA`OT5)iTI)4)&@R5A> z?UiFyho0#6pbu|#sHv|%-e(tq*F#ud1)Ou7Jfc0Fog%$YcU0cZyb|f#N$8ZG@)vlf zQ+}GFv;2menb8eTfn)6N)?JdycHtDX`@^4o6nKTZ(u?QK(#B*|R5H+As*>AsAyd=! zL|Yx3y5F_)cgs|!po?F2;NxS<7Oe*qQn|`EZP-0;a7f5s4xRWhh_y$BiwRy#S6-?N zFRc)9+NSRfraKG-UjKjz(C;DV+e+j*>E=x+UA5Mm4@z;Dd#|tk1ws{64y@N1pWwMc zhh`Z~vFT%ium|aIVCm@M+Pjz?dhA4;#>=XjBiLFagG`agRoxDs-iAAInrJ6Gs}BKn zn0>5P2bfC+6#qPIsVO8~1H*vF$XxXW-3R!J<_CXuV65?PXyxL*ttguOB*@KNtI6*t zu&x2C900@fe)OqG!zx*8__7xJh2fNO)fT4wYyHS}=P`o7c~bzwB&jqzyWiRiVcCrPVTyt`5XOCUkS|P=owy}(ABONcZSA|* z9bHyT-K;=kmHp3E2iClD^Tf)ucQ+EZzX+hnI)P=~ZsjW9xT1LB0}m6(phk%5p6Qu8 zk~p#9E<;_BIsuL~V_M`rMN=1Sw+{Ng`mLtfA1;{hw`x> z81r&C9*Gn%hJBL{U?G%#VZc+6fKsea{+(6Ny6+IQT_NpPbJy=0^oj%XyU01(DAP93 zq_%qg^lFlswE>o=r2P~@M4E&)kAVrj!NqR*5(j5ux3n-DKgA~51lfNQf7csJL4pk) z`X0f%r}Y$}%bnp~GK~iwI;KSEJFsrLD;dlfje&K8t6y3EQ0q<4@ES|SjDY7l56hLb zyd49ln&(*&V}sRY&Pxrt*l}p}zUNeY)b+1Hm0oqVIuO>OG*ohLyWIJf{(67;=UnNF zj`;$6#<~T*`r>oLK7(*|qd-;+e}`5sF)^j8S!{Y%Qfg}>r?#LAv{ zg9Rg}#G1iCzAlP_O*_M4+7Qma)9gvE$Y_}CI?1z~pD@An7Xh1RUvwTjjrwKqjk)SfYm5^7UhqbO?ER(mwmh`l#K%-DO+s2zKI?tc3H zJy`hKT)FPt*Zn@{ywCfb1Mf1W&k5j`gnM4BEZgMiBu87u+Sd>r`*eLujcByn z;s3^}1WtupXiwhnn&9Uax!xKf{}Z!;A+iJqbWV(GT3N)!%%z^oyAN%sPrM?Ahh1;4 zFcQ{BUJD4w3Gl6vtTP8XMOLCjo2nmi#kKgT>Q{tzlK`gw3DCbzd{+BlM(afV+^#s% zqHjYvuU;`Pb$3?R?Yg@oKOZsOA*_@Dg+vEDq|SO+ZRU9E(_zO^&00giAB zy`GSqYhMr_wVfA0ay4IyaOz2hOFJQoWyZ|mr+Dz|J%j^za*t(YS;Y6irDVwu0ruEe zUSyZ8WDowI$Ar>L^B3&9XagIyV{g*LM9~VV|a35sKjsBH7UF{k5iPMgJBaR3$|+qTfT{}21x zr!8HvjiGuwmOE+bsJz?jMe=;a+_7(Sq>1MZ?@#h#r;lZQly?V=G&7=bHI5Yr$a4Jk z99!{vhP`)E{)IpV?08e-yD@0D(y-%BRPw?n9fE!-c^oY0gm`!rvdt}dRc<51H@PuB zY1ARwa_6--&pWW4Q5RbxQJN98aQQB)Z^Nre}ww9PWqM9ym-g^!twfZBjq&}n+Z z^?F#@-MLTDO^RXJ(fA-_wz;pQWf|0X`bRV*yvr-$MCb)iGI(#U!>A$ed~A1-WAfzr zz`oD5n{8p=+SJpQg94k2VU!7S0?pWhJ~QE(yy9et`9H5&v}h(@0oBSpfTwG}>HyiZ zSfVni2XmFFSB^Fss#41Tcw6ap-AaSKcIleWu77>m z!JcyVO^3pJ+qMo3h&(dpOU&c@c`Q&8x!^CVc3jr}i3{j~tgPOP5c^~^7~W-t^b~4d zilyk`LeY9oN4&yoX*(@etLhRh;bG17xA&jQsymv=-w$M%3RYw}sNu?@7bZ602SeQ6H*eHhA-xk^?rMVFgTDzQ&|Y;+;tsRp1foc z|9rz(Jw;CtdA9Hs*H-lOElCQom7V_;$VQ5iwDbPt^X z5nP_GWv+E7&Yb4@z9N_Kcl}QPNvnZqokWwn?#c7MK?tQj%WSpkL4;B8Iq<0Uwm@72 z&vqsHI~>yl#m{(hH)iHM5S$B_F@;tWKzDXydBZ4S9}mc%U^*^#_Z^XrGb498$!q_< zi>;=p=$C{BT`6Kd9};f7^FTXmADeDUNwc+Q1A!Bp7oIPJ6`(*Fr}0^IH#0tNBALO( zr5`!y4NgmS8MARsmXVRlvY`IV+w#r{Nk{>YgvE*v?{KX~&o@}t%(ngH(v6<#)<<-A zKOI=^(y**CXW`W)VXuAwXe$^Z873m|y!-aS`rg-Q1pMd3*8xg_A1})!|2!y70*$nD zF)9-~S)JMAi(fuwlo+-jwWMI66f8R_FDwmQJXBo%jZq%QF+QrL=gHdHK4x0ZcTzK~ zpS-#{mOSt#mtS5yB!BX{M=(y~qjhlS1%qE1HfYbowqUoU!G#=FXN$sLnaY@Z0JY+x zq8pS^cu%D=`6f_S7@7T`c?2o^o;Vs8FL2Q~6}qW)b-?*6f&SnYBQvz99N!715O;0@ zIRu>Z)km|{>BbJ*52JRO@WM%;AIf5**Dbml#`7mq&5d~JLU3tYc1<@ehu%%OJ4U)+ z?`o3dJY$0eDQ0yx0WQB$g2 z+OsN_S7ld^1{Y^hAGh4EB}86tle~L8E_yoUqLm?;s_pK0r8}bf$+}@t)+K*uA?7Pl zHEoSn<`z}FmYr^apbNPWq6{VZQ-WNGG|ITokpwFoYGIhSBr8-e^ON1;4K-^Nts`}u zMiX&|_N;0#e!#Z-CvqQ-s0A0m95NF6-duQ3RoZ{I*NL-nt$F~xICI!v9=IFK^Mt#! z1V`)llkN4?owOk?rgUjvestU(E>pImy6E>IH1gzI$**Um|40XpZlDL_A#vSwAix}_b+H{sGga74Td-H)6}Py2Xs9Ax4;iYM z;4F+}vsmI6;s?_SJx_E>>uo7jXlKb^&Xf>R(5*0c&!4e_6>06&sQ-;g{Y%Xfh<1Ll zRa2V3W;_&mDFm=&aTe#Q&1>cc+AUJiXbb9oh3OcUbuYy8gYzL);;uJTSA|Qd459t4 zzt13&=WE~LfZwRTR@0~PwG3lsI#Wr8SaxiSKU`RyW~%!s!U-DImhWi&x@##Mkm&oS zVnmfloD7dXN@dpiBS(nAE`L@1vCAr49n$7qVEA0xNxG?Qui$;W)5DU0J-d>_8JJmB zEgv~lr-tC~ZXNg33I$)QQ+af=taLBgM((2vh~FwiY;@OWV!p0FTRMy{R*af)YuKJ& zAnR9X3YlOOa;dgixsi^)1IaWRCNKxn#}KilUnIk>1z5lNS8*u3`Z(9vg`+2tG!zAj6F++ z%S^RSe$|K3PizrKkJ4oh)D~ zNE3Y4cTyh4fe1ePSWVqxvRODlVcPosa(Mg2zx^@&HimC4ReG1=>&qKdZJ;;HmVv2e zavl_}MKje}So>qEORnuouE!4I3^pEpTe_(z-0%6kBgj~&N!1eN($9kKEosB&|BDLw z2ZXudg^rcnnF-6$-o-i3>JMrDk>QTWr}rO9!c%GHM#vI9Nsf}uBn?Da)S`=gv@<;u z(sH4_CzAF(ck5K=V$Pht*@XWsD5U%r>8IqY{TQBTcHe``lri=CvLZ{w%XFb@#yO`J7Bx9fW=~XpCAe1Ba!A0|@-X;1K4HEhf5?DcK-d{}q?Q)mH zZ=!jVniY?5LWCmAn!n-6vpt*p71vHGO!sq4GKca7TyZj$*L)Dnf_c(*XoEh27-LCOVFmufB`Fx`l-h&bRZTW zW~-`Bty4~oi4z@v3Jtu^+sMWWInXPuelJ^{eRzYX_7Lf7OHp{UecURb^JVv|alwJ6 zVSen3E$_P;%`SuQp={j%O7@m7?oX?hopT0q6aZ zuSkZkeysc1z4?ecTjKz?+6~#_yiq&b^^CL63&20`(ARoRGY3L+PrYWyVG!q9Tt#M5 zO?(P9#A28w!H3C!gh?j!@oCdp`Uu39xaP{@v%CfjuweXHk^Q`jdmdLH3T3cm&}qM^ zFApo2yNWKm44wHZu>Dy+-%yY<0g+(4TphMZMa9~ERZB2O#4vYEm)fB0Qtj>=ju5Lc z`h7ih#o^u0NhxXQgc3($m5QWGj+RsxtDI@iHo0f!rGAm`D*W4LmOM-hQ}bs3WPZ-1 zE$W*7?kLY@xH;v_TXmo7m6I7fTcgd8azt#WWYer%2~UT z=|+vv&N_<2%GEC(6fj{v(ZS_9jFRXkm&li)OA{=~L*^Nti4YNVPdGEdhOTchno4 ze7<$B6Vq^8Rc>@gGf)9M9PppYpoXMoun01JAg#!i7|hddvkwXSSK^E$tnkOlsTCVT-c?RilA?sq&mkp=4lEvcN1fkmypSMz zb8=dpu@#}DonPY$Jz-y$#*-O%gF$+!1m{mgOSw6to;)!wB<5Vo!?idQP_Dv!{;9s8 zueA*%&-Sn-P9v!?f~EcuMoFZT`uuEAb~gp3fjsYlzurPcz?UF0GO|C9AnuhqR6aW| z!f?W@V3Uzc97X1qW$;}B+O@mODOhELa2UvyG@8iqtE<>uf!+1AuMhWp(Tfnio_jeC zz@v0TZT|kEPV9w84)X&_EDQ%gi>9zba_>tUCBn4L23JV?m4|uwFnLbEUyAlnDF11r z2(w4k1i87Iq9^!!JS)sRg5sse&0q?oMYd@jlMb-Ma@M;r=+-!QXt>D^g(l4?2N4glB)l0&ow77>2 z1QouP==XxM|CvQ8p}-=Fw%Gw3d*AbW6=6ojGa|_Jd<>doyQ7Ij!vV_lFD$%aX$xM- zOe#$VC_O=~zr6Ke%YN9-v>@Iw{cCfX$`PuN|6wD@V&L&YejUEA&!}J>Kw7sP)`Jhq z3}{xe#5LdZ+4yXwL>)A9&B-uv3?X3FEam=rCiNj1kl}IM$*5xf9&DU2qnSUkhFAcz z`WI|dHG!>pw*?VOpxH{6GwiQ8B@eFdq>ba+wb?rR&4R@>k7|pAoK9Sg56*)KMK09Y z$hWCPndC3flVTBMMpZZO1!SH+GS&W%#l{MlC}(FFypBH8u^FjU%A0NT@UKpFsm*R> z23X_@(vf}>K~(Q*Xtv%ZYL)ddGCJ3&etu5@14bgNUR~DBa!3U0j0+MAX4mz5kqH?} z_Kkslw(kCuYdyFyKsE0-x(`$N`mUvHCPsGMlp2cEhLW{wgd`f=nQzm zxP!z7L$o|4Xg$+o*D)l5MRV}1lYzCH>?xKqnM(t6faThuQf!!*b6}7M_ zJk0SVFHZ+ zcDG9lGnSXxWXpiQl1r^Zh4435nlc5J-Y{tl#mzLSG>@HOOQDI9#c!^V>D{jpMCLD@ zsE#w|r^zjpGBeae&1Olg{Y($@e@(u6kSyjG0UXbEX=t zi9iX@Xz-rf3i*B4Ea2e{aEWX*I9a*RkW=OO01t!6#i-u;4Y8;^hrmn5&#FSHJed(S zcoV{(6e7?ePAvpn_&Lf@EUwnvfs}ys0Y#RsF2-)J*~##w-Cr1IJ88Mm? zIJ@20N(mcJla_ZaWq0)@U`K)7RyKbxvnye+rb%q;N}x%$s1G#G=(J2p)XX| z(3?)CDv7;<$;Y@f&;qsLYHK|CVq3Y8Ei-MMN?2?#TIYl^=5M%oS~d}ryNqk1$g-6y z;n?*~=uBZWPHd2^7}{Rf%HHJikz(wVwsBh_tqq5#tk>GDgtk9_AJ0ht;viCgg%4_6 zQc_zC4h4`bk4&WTuJ3GQ0DIvyG|v&B8PBh4Xx3d8r)7+Vi?$lXIWq$V`iEkARRC0Me{E!*>>peC{hp1ALgH>${QBx9$~2D4*Gn=$Q4N+mo={Jt!g zW7d03pXmgr1#}nqXs)k1bs_ZsP&l4HR@?MbGd$yV+sFqzXu5Ebyj{1vWt{o*K{(B| z`0;(}VQyU|YD{#!szNLl%$=L~?nPt+QaOM zVT=79jxUHMM76fAhaCu5wVnY6Y*Yy^Gp#<5xxZOth3P?@EA2I9Z}#u-T&83sHaXVIwJemymbDN=oo znY6E{Jhs>;V>Sv0f*=;7=kwl`6+EefH^9;#4TW9;V&$>8l>`9?iR6gw*zDATV=~oWy--jzpow~Cv9m;+Z^fG9=+}CH)UW<`dZ~d5Wx>8RFs&{vfcd3|x4C-0V{zTOk14H| zy!o7lSs8#K@>@?Nk9U;n(2+)S=Vwtve|%>|LP(x?n$}q&yl$6ZTr0gW8_A={e?g?a zHSW#&%J_Db$Abe{Ph* zL_cncMrhA49eobyolAY^*LSlPalykDT>}3DrSWnAl+NCB9Ke0g71EuDF>f!yCcVM- z%~37&Xe1MAWQj@$VJ2t}Ffhoz8b|cn<{wxsa1T9YB!6C6GlTL&UszP_oUa$m2)_yZ zGMs*{ThhpxyMf(D4p$3vOOWUToRvu^X{oKnH8gwL@qc4MO}uz9hYP<90?IME(}yfJvRN zvyLmdK251z2k7jRD4&SNQn90CYSrQ&3tUM4*~z0A8@GejjK=kkc0Pcb0V&D~9C{&x zN9obnV7os}&%b}FnOL!H?bBtkjgFlyB`6twK3SBbHN~XM7C1~|*7GM*+7X!*A(g_+ z{46||&*_9lb-gYN^&*qMeqYwxhvE%!XNMD&oAo;!t>t|%lvp9=wHS|oq!=fztQ5=` zK26X5*y$tagiJ@U`(5JJTRJFnjTCV4Ys7Vn_wPfQ4^!C*Jb2jTm#LgqYJ%ayl{!m? zfi;!w`bz4;={Sbby5T5)ddIZOlU8jDf9={ID3_>qeJv~6bv1q6`h;WSvUdK>Cb4tz zjK1w{X<03@FYl!QnV^7(k|a(~GGU`W%X5W}u;K+|;_WP@igFgc8}J__1n!1tw0u`1 z289mrmV6jfjD`Yoj@?(^J?No&)mGQMDvB)S?BI>=)WzaH;cOvGpBpc&Rsq}>3VikL z_5G%fe(_(C!hrr#A%})}F)N;Kfkkj)N+!W_>l^ZBtjq^ISg=YW4>4A3-Jzc*xYhTeR(zA%Egn`8JbsBdDCR?| z**4Kvd-rrdP8DsdZevP?rJM z^?2rQ-Gxb`f78=ESLy!>57q7Zmq`RWnOzH1+{LOFLgh3lzPYMtFv(tP^Iu+k}R@C%?kXuOcn4`ab7 zwf6a*;XAH5E!fnZaW}f#!QdLM^9!UxEZc~lPSjAs6@;u3;?saSmd@+;y`OV6TV74? z@%%%BEJQ)l^1L`dB3SasZqIk;u_BAa;W(DZ)uKCUsZ#szcgN)byNy$_gjzh4z1=OI@8@)*pjNCs zT~WBbr7ocl#SIzuIp{l+uIS=w+4C~K3s1Z5H}Q!CFgBdv%eutv@;1TYsjdlvt7*e} z%nZ)7@A0kXW}M7pKd+_pG{khGgmOjR#8LR}B7XAF;O@Zn7Nxs~A~QbGx*hFHZ!dvt zviTfrcwYq6%(YgDP8_w~GF*=Y+i$eA{1LuhIWs~Svb_q??G*j1mSeGSEY%DY1XAX% zNJ@Y6D0BkMnVH#$zJ0cLwXo3qre<)QQNzk=z42$+~(}#rmNBQqUFP6#Wwb6 z4GzwgiuQ!**Tph}nOAe8H|WeJnj4FzgvqF7q1N?dbZBt^$Lv#Vea%mv>3sp!1Y3x$ ztH9W1lZ0*e>yHq3o#3T$?4nh+Gx4r5!!V#>Rrg=P$7Qq#$dm=U&rtML2%k(Yk>^}=!LiPB zDEHS~78m+lIOqE{xn{bp#BopApzw2Lie2|V26-O z;oR}nA2~xyYcn}O#E6%Hcr!7b>Tih=kgD-8os#iSz`MDL;=IQ`;n|NL&%O}GrSn@h z^lW@GlMcKim$vCJYx7q1cOY#avMv*0@7o~2xM^A#*G>*3%mCblQR!dADjkmobqD|* zwuK{H>9+abu&gj|T@Ye%zNK1~29c%8baJzX`uhuxJf)zn9CdyZ^U`m7M~!tWBJcwd zkhe1jcs}OP(h13gRF`$Vkn8k;b#$Z<{>1@nsyed~1G|T|1!bnKOneXUi%?(J-#!MJ ztb1gI#MSKyMU5tvXApM8;nI_iLwCf*faK+uB|Y)#kNPZHrWe;W?nhiT5*;Ur_8acL z*Pgaic1u)ZrQl@nEiLVRn~Qi_A4akwV04-v!cyq-uTJ1x#({kY8EI0Cf03rVDw_pY zM!#NEVJX7EGN}V|Wn66J7?!(Ix1fW-6{f%NzwZ7t1dIE^IaXz^msRIleeX75jk{bD zh~Q=)u6@W6PVHWH1h~{4a50b)M60HY8suUrl|A~{21~vVL@P(uA9`V+4#FC9iYTdz z=bEW5{d*hiC=exM_%dP~;^0tDKs!^KZgRIw6+JXHNZV5%HPp8$F z>fn)bh~Q;WGDaTYNPf6^?BILiYD?{Km~waSYDp?GMh}0-upF=2^dr&4oo;rLAa-ND zJ|P40XWZvl*BE|x-Kkq{(b!{?0pX6KN=7A09+S{Wyza}{e3w6go*(k;V+2!|W5{g=&qFh11D;9SpI5aHgm=)ke`S-%_L z$+oki&iTJIOD@l$vYZzK#99>)0kGSF3zh>hy=Pv^QdbIItoj~x$ zjA6NTIIZ`B#r4Kjb2s2&X21a>bGs*XTeEmY7OK*v+O)#*zL?T~nsm{7+OoLG5w0Qp zpJ#ou9B{pkYKC(VNT}HI5lBG3O-h(EN!|iFn&1-gj{ay;%_C|?dCJCJlF7r2yG_Q0 ztDg<$t2J|P3R6bYZDP+PG{qplI=6lA}z9shP$S>SpV6+WubnT zjH|gtuZunt$c!Wj>`@M1&Z@F8WETUdezA16{mzjxS!Q7rTj*YdvKD2UE`xki5)5}7 z=%lRMYmW$5#r^Abz7}@lOZ@zikIQ!p<9#GQFaZR$0?6>L0CO`*>qAN@_goK)%#LPN zR@dS08$dA?6exhuo<(?W1yU-Q!7TvWkzH8LYZw(0&KSwJox)!{Q&F*y?qO8YU&q&MNkgRiL5XpkrFBa1V&=VLjchIH(9T;hZbC#Tsm=Tn{b^P z;+ojr%MvhA5CFxj!%7XwtderoV*w@L18Q3mDI3LQS9am*a8{|^)SOryECNm@E4!iR z3-Oq+GzFc`7); zf}T+>KRO6yPDJSZK2Wa(`YM0?=|OLX3MBI&k~wa2p{>88nSsexo^qv?;$PP-DKgv) zmzf612R+Ovr$)-^kzvhd#xZEzs-hL8OgXO3Xfv5ZiN49TDC-(QgyC@I{llj@{EPEV ziSSYR*XkZOR@!F3NGWSv{>Cd{Aj6^mY4r3Gx{I8%e$6a9^cPOU*>2waR_23@KJCse z4I65>40n#qlL^gc%=$nxPW}au);86N&`Nd>VM#`rMrd}aSmoJkYvZMoYP)%eV>LE$$MpGZR~}K$lZ=;bg^kfgsGcbLOwh=BzwqfbL(@BQ_N6*5ZqsIz*<=q zD@w4d)amHsYx7i%(4Rj+q-11pKZ|0Z6w;hpwkC*kOQ|P2QkKmM75c|b??B)aVM>r| z;1WktdU{sMx}R%xXtMDOjXL*6A#gq_=-09;+)yt}{k2wD-#0x(O&hsBjFgv`ci~Fb zS~=O0N<=7v>!Q>p@}12LjI_*Is!dc-aPZhHrQ2QgL4E~aDqg5p{L9T>8zhwzBIREF zYBJskKbHiLR(;2>6DwwpMOM(H6r-2BmjA^Q-!x@@x+-8{ln5}A+y1KRO0r^!|AS_S zn(^O)q?mcf>)(tuxI}g*K`;O2o#I`EKy8#if7567E~iSd$iy%4i&Vncc|+; zmUg4!e=NBcH{u84U?i~6Q=7)!g?)9Yey?nci@eZu;yQ`WJHD+}qor0>rozA|`4gX2 z*)^)nJg+2U2b6<6&wKrd2S+5BC$}-Naq?nQ?*J(5e8oK6#7(`01yqQzYVw64!v3R6 z{7ZBHe11u#3gmhWp-azQ3PKaj^)9#u>X%4YTg`t^o8)+k1!gsqd!>^9N+ z?)Z8l@+IK~+o`$M2j|^!_|LSZY}Q@7F>CqGx2<3deSDt90i1ZA#of+8Rw<0X*7z<> zP1=Df-nIYX&n{y9yeaI&Am+hgPd^tXu!|@Kk$27_L6sp!x@K zPCRVc1k^83(9zT}=!FvoHwh=+=Ew@y(#Q`KHs$$1Dbh^L{M;in`^BJ3i-GK5I!9jz z^sfmMlHHkd^3(l(!g5%2oOgl&&6)aX@yjz3`>`TSdyu--7h;1mvuj@pG#eDKoqBrg zhCxp0sje3{N+#)NCmuB;6!|#U*b!Uz!gM_A3*8YSb@h;~xZpkOYXK4c3Az`I!3d^J zx6w8Qya#t~EUu;d=L=!7#EyNNlUc%ZxFS!PKlD}aiW^j^Q5%&;-isdYAd!H3n*RB9 zTeiWRl7Rcp{H7fy%64R8g&lX;qwMvB_I-XcaIyIEAI(;n@vEJ0I^?Py7MGjwLp5sM zMXcY1Cj{Fikr#fR^FRjKeUv5K$$Kn6<F0!JEtR-!nqOD<4mM%PkA1E>O)%j2_k!U7=JdYO0njGaV$DCV z4Cy|RB)!4PH>Sp?5es(_V7`uLEs!JBmuFr-qjy6_cRZ=mA4n0)8M${ZW^M|R_^}BM z=BZuafA*hPrzpw3#=!cXi3;d~_PxIK1}PcHstSnXRLq`NWhu6Spf&LtR_nii$F3bvW^aIkF{Ew5}9Cq#;Au%a^P5Lr2qZ#=G^LMX=}>+d!(YC zulva3cnTD8ZD1kqWvOA%*(Xf*)D_F@Ka<0*b){K4v;HtNt&ukuc_&!9eD`W1rNJqF zqdf)8NO8J>*p&>i;g=Pr$-^IrSzkue{3IrMN57KFP#pCXf#;wjYQw<*SKd0& z&%`BTzw!aD55f|gOps@8=s*?nKhI<&#xGMJ+qYR;5g6JBM3}q&l)*`aLVE7i3RupI5xe1og7}%*5qUSi-F| zS+?Z?a|Mdux&Xm_>voNxNXnSxR}J42755 z5RA$#`|vsUe_OcJi&c8wmBP_l#ZPZ=Gd6GeM?sVurjX2-ntCX&L zzhwyxn3BgyAfphTwS8gh`f ze?Ic`*UUYYVD>iVRS#)9HH%l6k$Di&0RG>Nx?20`2N`X`Pd*uND%$AvN!gIulP}wq zcwl3pIG1CTx6hA_qDr@y*cIChMJ>?eC2~0=u{knh^vdD_wkcNWoykB_vq%NdMx+OG zG=;LmXWH2wRBEtS&ak_Q+;78i`q*7>J!CSWFQ2^Lc4-Zpt~LDvYWcd+KVo0i8I9AY z4W{lI^CFlWGJdX&Hq~Yc#`{R6##~hO(R!ky{IFq+m0yndm2m?bjN~ZnsB&gLmH??U z?l+GV4z-^m0I?}I?UU^MVS*9^rZ^Hhu|l8bHtP$aD%0suUlL*K=J*x3C<3c|rTLp4 zZLb^Gb^uD(oB}v|4viN}e|D%yWlYh{NqRQiaydEVD8jwJ8Tt2ASFlkeQ&H8_5RhLh zs;XUEC}+d~x`^4DNcJ~f1QJDc%yA_e>Ws!jyBCH-Yj&|}0?&Rfq+!uc< zAe9QM-X-TQU`1(!PF#z5ZY&nZn>Ei{l%-r^a6R1~$(eAlfcBK9PIpF{V2a37A;OC( z5lPHKSJT!t??&BTN5V}X!yZ*mJbOjRKY9=v_bkFm`~EPgjpjZnRIzQ=x+Z|&oJUIj zEo|Z-8BJ-vSxLadD^6XB?}GFMt0Y#lC4^r;#K_ca!Lpb1duRSRj``FC3rY-1j>Z6p zk>rbM*^$a^YPLX^>$}}FP`CxcbJ17ZHNm?9<#xtCKU(3K@`{1=rLy{SP+U?+jCE(U zsqE92Q}`=lLelh)BO_k)$)vuB3ZlM}Ehl0KGHsdq{^3o6wM|a8p327%9);)?398uS z2>7(OSJPQKl$8LrkWS&IJnJ>60M6f?JCf9Py)^+Bb*?2O)KKY5)qFNI zWI_LN!+NQ&UUlS1;n)5u+Don048u_2-N9CY98=(=*o?3eX#5zP1pUWubejI*=c=kU zECMJoTOx}2>PwtPisr!sG2c&-cNZ-g>r+23+5{tCD%IXCv0u5V7*@dQH%xvq0%p;p zsUtT_w@LRQN8H!30~(5DE>Y(i-NghQ@Ey;#ZHhfJ99hEDM8oUxcPS$@ zs%hFN51!C)%Gaj9!gK80o=j=>!f#nE*LWzoA|)}gqvE3g-*VddeyRg+ezwO|1`zh(6>}FSwW7nXb++rP7nWF5%g}`01Iw+)Rl@44Vku1xDHADF19JCKgGOt z`sx-cvc|_h*HYlm1!IBgnrvX#@r}7E8%;_{nz)bqn)D6PSf4-1GPF(Y!K9`Ma@Cu3 z9fQ*8$f4%8xTPB@IPo|geFRH`%O}jz3~ufU)t_(8;Lo%zCKgwY&V1gU%Z&WwD@;6A zMY*%z!;qQUF1PhKvzm3~cTuv4qp1Op?xc`WKpuY3WK7kqTjd1i)xkhe7|@$xymGa) zWNyq~a5(e`N4)vsSYd-qrq)Yd(Rpi&kX zAazWm=g(m8l)Dq&t7|8`bijJV^-@7P!Gheb@wVh%8uF1v{Hkw@uay$%;ihXPVz$x% zroE`Ds-oUu*OPj(m=J6XCyFKEr1z*`XHa-nvN_T98YuL&vjZ-g5lR)Y8DW?Cu;Lez zA0KDejm?T6FD`qOB9Hy%i!4j`QFwiUw0?|RI?qJ!wM5HTYvJy8pnj~XtNFO<NRceiBc&|`Y?g)nqeegJOR;PsdyRh*0>W4uxajGNEr$?{7GD+pN7|UH zxEbj{pqW5xtNDb8Qa4J+Z_&nOo;f^3^^=bF_@n&CzoMSw4C`lUT~iISYD^ZF9_>=% ze7gT39RKpM4DYJ7xkdP+jjw)r&aH6wB!qfJzKG7dzYhi*#pL;us4bkbW7B()%w;^x zf!t_lRF1z4Gjzqmk<$sJo$r2?1OIH1O5_`&8FRw}fE|8w}ZRGMcO{6fJ=4 zgL|&phD^VZUs`(D$9*jj^{1E}%b{G`B0%but=)9JInYd2)0i9jwLYl)pzu4RP>`7q zJF!Q0$ZNODf4wrTew6}zYADrklTcfu0}a0GtGSL zGN6QI9wGU7)R^``I+j)u!bC8Z;@RE3?H(Sd|7=g!V zrAFgjtIC4!hgJE<&mKwDM&ssL$KqOyL}4ls$SQl)IrqE(4#0><9=J2 z;b_s*;dR;myFL`!+56q4_TA?CNvf|Fh0ZozjC|D$3O@U-B(HFW&Jh>J&-prIm%O^_ z$i&I(i-pxz>!fb5E4eYGJlzT5dg3mA9`HTk5^4yLQINTW-Sc?tNv*L!Ixo`1n^OCj55#Xx*OXU5)0tU2YJ1 zE!s)@`NY?A&iUujWev3`iIF+&|*Z<)n|v;hae9a@+U*hTIpq@#V|Nvdf^kstm!3^oMyK z;IYx!QKVo!SCi2?)%0ZXYBHp-?$VIb?c1a#2<`L~Nt6372H(rLj??S61!K%g|ZM|?B za=WD3I`ri7;bDVua#$mNxwV z33m*L^IBZvbE{P(zJ}5$WxVQJp|I9cmi@rKO}1xe_XdvMuyyMsNs{<8pu}cpfZ!PF=0G6_!3L^GKTs%Ic^Z8Hx%Kwjo4yjPrwZq4zrTQU=p@CYxwoB_ zYAopX@82KE0T8giYbpU+t#+_00L<>5rLL{Fo*iJ6H}}_WOgDKJPTegdL5#8dUlqos=V7N zVAr1A&B(6Wz)Kn){^1FZonPR8{pvsAzd!sG-#dDSdf<=f9E@ej>gV76?0fjrM_%NS zqi48vM~B&|aVEzyzWLNie&wg{<*%MQ#q*~xacIvr(nPPhM*3yVkL{bGwwB+0_-TIP zuDxVwJj#k72*S-omSxfO%9x|6;7Hmsn%*g&46ueg* zBc{dDERQZxan?rrno-A+n{ zLr^#A@j7roaAEy$o6rG<{v==c z%!hf;?bH0tkykl$d6_IRoLlH}dTyB~j-BV<{NZ1-+%Ncr4;>;khHk&&J-1KuPY>_s zp}&2JSLc@a_~AR)I-XP2!S_b#l{KGz@NRCOp5(=2=P4_Hct=4H1VIo4;hn>V9O3=e zGpCqa>hY-`Kfs-PwgJtk@8|yDuh`N`F-G(I4?oTKj=ajrON%Hp|Mk-!;K951^2h)0 z1qrrk82!bF8!aIr$DR_VOy?1cWt=k(%g#n+s{{VB#eRfWb@!;LJ@XCcnirO*O zO8D^uv;5ROw*v6b9yr9|12fz)GeM`F@`cZRln3v=g{kqJPv3u#2i~=tnaMW4_Q}I^ zS{a>o#;<+yFaXmNt>zdXIz(-o<=!&DD+q!h2!im=WUdeg(%T;B*zv>h1Tl5a-f z2x~1m;Lh2?gI$Xy~YwJ0F=;g!J{yr)=#^{zBksf|&Z9Ui8+ecH5 z4Jmj9K@fy@7RH$9{ad$8^afv)C1qI#Z{SIiM69F~u9eeng)O_3Qe=q^d&mOIy^6Z7 z!#C=(3?3h)uvLYvs<2v83LWqg9(vf0db7TYaLzG4-obPxg9fik>#(QSaI=sn^uPh3+g)WipdD3(RTUS!Wm#eaqv=X1%Bl*!a6Npm2;pej zVRSuTAFHG60TGj>8Oe3#p$t4Y3`a(*D&nWC6k6+%g7U3I8%Wa;-q#VoWMIVgG#aZc zb?Kij&@&xv!cd3f>l6>D*5oH85NmP`-?LD+1(Gs3jL;gF|S zhf9qK-cd^q){(za>7$lSyj@{k-zwgWB@v^D)z3z#yU|OCt}K0cVpSw?0We-;tE zf*=UOb#wCMNs4~od*e|`QS^IQTX}C{N@*6BmRam}(H^nraHPi2O2fA-i=uRXG1&+; z!>zk^HbUjKVsK!Cb?Vefdi`Ed%=CK&Rb6|%OY6F3$IN!N?bwE`*NR1@peQZfl`7=6 zMVcC>Cda)20ThbbTF#w0HwdudD=18FpCnHctWWTwST1Y&wcq1b8^iHqCzzj`_tt@P zmR7sX)YeI_AO?lCHQkl2C+*5MV`Djb5C~*#DqOxi7xW6Y)-f?TMQf~$v%VuZk|ZO` zaQ>jxdI&3TEDvYafzW!`$vi2l- zXBuaH7HtS;o;9U*hQVN4y@d)>=9fMwD-1d~5>e z)(S0?BwW69i66c6cWATr0m(T>Y7(Y8C2wB>&_;9Qxo23Izf9seM{O-L zGc!y~O#16lYr0GGtSnqW>9zaYx}>vhhFkBs&l{*jDMi&UICJa-ggk0-bT7P$t4eQ> z4uxgKj8Ul+g{Pi@mT_dtdaud4F4?~GHg?@+0^ZRIWed{c5!ZpYyUKL)0W{pIA_VTj4VrWo)Ldz40)c@ZnuMiH!+4R_ebp;3f?SB!-98E2US^k zuZNNKs5P!?VaqZ9(vvzRZ?#C11RI!9QPz>?c~tPab{kiv-gJe-nKqS5@LhEd$hD0K zUPHF}d*C01R@RWXl#t+EPhgDLk_M#|X_k?frF(LR{y8V6*{JZ8Pqw5NRkT+laUP^dG&Hx&T;IfKRL^GsB)GQ<`?T7rJfp(IM_E(NhUM|*_R&dBSicS&G zO8!r)i@EVdR~ERny*Y&cfZ`hXW&t04`UZ|h`!VLMfdCf7`JvcwKE1?T_9Br z6>*@M_@Y_c*u}xx!4lHIuowo~i2l9b&BfFlf;$gc`;Ts~9PRDR9pI4t&cu4qMtIRp z!y0a94$0r_=YT+1AhOUG8lI^elL2;m3z>p{dF`ja%D3Ov%`&TfA}>F{KyT8_pc~x6 z(1D|wq*UybvE@!i-j!eR*3Gj(+mY#W=OiiJ>@V%lnQP_#qY1qq%~(7bsM8UZ(}{4u zybfb(yxZcap3M@*r75;W59@y;Jtf)byE~+UjL+(brySEjYLBS6SqImha(NoWz77o?EpC?`7DU{Xe$7J=v_G(AU>5ffcoIl7La%wf8jg z5o3yuiFpyv*4fpSSzb=Pv9S>jWhD-M`8gw_RnM_DG&Yv}(6=szhy3D($;$8FzvnwN z&pWS=qp#~#(&Xk$EVvlk*pP^ei-V_qci*7D92Dp|HS6@Hu#f~i>=q*>bhOI8QSEw*nYnd;13SCzSr$84=O;SlwRC4Yl}%R2XP+xoX{ivkwC(v=SUAE-=o_{w z(G|o(LU}MzWftdW1R|u(tntquHV8|a5<%eTa0+nX#6+s6!^!@J3>%dSjrq{M){kv$ zDF}qyiLV6nslVj$$;l-MZPZnZ^4qUoy(+9_G#h55wX1*61o^>*Ecc*PL zQ`gV{PPAPz*_9#aK>;rO@rF9fS_R1+L)cd?=sSi9wObuCr_T-y)2>~71%z%{UtY7 zTHAq@b==cq+ONt}OhST(si(8k=wNd)zqt4p@P`Ec(3El!@!}_ekGp&2@{+Sinv+Oc zi4GU>mCH^wlU|6XA}!=**mHID0Zd1#T+T2~1T0OoJvPx~eRT*qig9~Xh(un3@bmL~ z)n^aApRV((aj36cG|(CN+C;Sk z%do{)MZmD9WL*4~sDz%SkdB4m7Lzs`RTkE)7!X+@W_;HmR<^bTC4;pXw>2$i1&doq zb`B1y2KJA#ot>TGOBDbNfult|Hs7+z%H$1ziAnP%)BNLM7|EOL1W+}kV0DSZn(_+@W|v)9vslNfT{*_b$9ut$x3`_& z)Ox!Oq0%xk=+Lv{<1qb_3;%&xjdX%3KI+a;%DXEY@2RxG%bOTHQX(oMa)bDaQ5CkO zE;5oNRosWRsi{e~wWp_tAaL^#${G|K8>?wJu;8-d@SQ3G3J=ggkG<3chL~PwtLl^K zVc+(Tj^@|&b+89B(lr_g3brHwMU ziMDWKfxEe(t=Q}R&oIB^YPRb1uKX}YG!In|?e6YkawC23?E|l=YHM?(GcYsv2wVCH zUx1Acmx*3H+mqj&Ht0q(z6jMhfE3Fc8#h~RZAT4IbV1LbM^hbm*8=dE)3Gn9dBX!R zptLAWO&SVqamKA`4vvguV=(k1D8p6|+p7BdF&Yo=r=ZZ4_SkpH$+!F1inZwJXlbDh z93N#V`ynctnxSzL$HbbNni$uDyG7}y+4jGSWY7F1)4djNg9t_rMb5Xz&8K-x{X{s{ zCA+Ot`2Qsk``bVuCcsQ6B46fy=ghXs*Wu+QjNVvmGF{YmJRuzT&vTbDfj~DglQVLZ>Gtgh z#@1H+w?+|fr?*;dQMKB0Lut7vU$59zIkt zG>ltZw16}Kur7X69UK~Z)med)Cb(mvvA0)6wL<}#1Ng9cet&8ls<;9B0?aLs{_oE+wBR2E3|xI1f!c02EPiTmXwr~OEkZ84L3I%#ymXK4#wJ@Djf1EjNINcIl|#)WY#Cm^OAuTE;q`2 zh)_|-^X?2uiu!5rimRIPmR~ni)Iq{vu*Z)d2LfxQTRBMvrJJw~f^D@DMcc!)XG5f;<;uG|(1~u<`==l2pcr?a3{F zx{Lt4mnuq@Ax?45T;|SMZAt-*0sspJmF;I=cZ3C-o=K;P=T-gb0yk* zii|avWF_g)R`zYaY%oa6o^(X|y*p7YPKSSu_YMwFUMaGyAD#yUNRl&4MC)+5t1svb zAJ*GVR7ZphTpKRw_?`UJ5`OPz9LUqumpVK+p2^0SI8IAU_-xgFKikK;^#J^dqT^*v zQ;PE2sypEU@uw~BW~WGXeyQ^Z>BRP(hCNiMxL_am1sk-Ik&yv{M~-UILE6RGU6~Uk z3Egjdou3`F%!~W%PiPow6qgvRC|NbcFmN57`IC~9N6w@p5ZKSX_&@70=jKM#Me>Vs zdXZT(pPyEr6_Sq#jk+fTP z?u3rn(Vh(U@_cR%fSjN0_s^gE`&fhQ+r@+o`vt@g>j&b0K$_;^qesq5X&xq9Q?=jW zD{5Lgs48AxD=T82B>Bz}Fq)9o`3Idp)X?rllNQ{Fa83>|hk|e4XySG!_ZsH6S*RkG zk3VZB@fvnxkg9hHi@~IS&N_uxk7ue7M`le->`~fpz;cGmZjVEux}$6c(iL4Z$%1^s z0eCSx0fv{ED%~aBIayhkmBn!yFWUD9)s-`|vR>LzkdseMTtlPReuY#YP*Z+rXyCag zfKU{>7}4|=Q3=g(JsyWD55^Q1lOIe6NQ#Jx0whT0pDWMK&Nd=w2K%A6ukUW9Y3b;3 zp11jMv7X`g?azK=P^fUJ?2l-;hsS&Kb+-Yx>N zwp%a!|IYmUw&eKhX9$th$CJj!%S?WIs_SFrL~-K#qvM;Am1^867Z!CvTTyPA z2k`Raa4rf{;x5E^i=Mt68!!R#b;}GtT8FBd8P{Ar7_7`@8+hwiscGxXwx^ay{2RZK zWStIn*7ima@{^O3PC|^r8LmQ%wke5d%5Pea6xcr&OET!thcCKRYf1dHImsVOQiOiJ z2!XHfTv%@0IN4txQ>PUa{_9FhZP!kh-TQb7uVh@=7viNoh&iEIUSNfz@q`fyEJGmi8vq zb!!2KvYTh?9qa@y)o*kUws>BNm<+T3XiK?96`?mGi$Gv$flCaeR$18sb1H=Qh`^pLf*ceP60Zx@HK(u zcQDoZu6JKI(QV#nuyx@v?YrTyAjPX6#w^A8`Q1!2Rt#@{uP8{+(;=uPLh)6^!~g)3 z(?`)Z6go=DL0hzAjf-}?YlS@jesPGthG>n60xqfWYg~b2mIq!A%c;^#?%(m4P|b?J zaWjsq!<=Eb5P`dAk z8lN`u-Lqcy<5jp@OSAxpt-bUyHok=Vu_G5DFJ%i*&UE@54*&tms#@8lQ>sHs$Mfa} zcHuBos)BOx1WzDOz}s z+kAE~o#A0jmDTkNpceDs0=)dw(02fDa{5{wXKS{9Yt0ut!Hn)1bLN+57r30_4x(`NchZdbIoZ$oCzh z%~$~OTgRg+%6xox4en&)OHLF)!r-_}f z?hU^kVdaZ7$pEH+_(CLc;gmZqZ8+0YuTCv*k}QL5gO+c2v_) zOij)0L@2cChE~phtAg=g=TiTNPEwhGfk2^%h}QWRoHSI}w6rwfLr`;I=D}ot81VjE zWV`kJ>+7Sh?AQw6U{m-rIwBFM%Z82n`$Asmvz@c>~nF<_=(8@M4O~V_Die zIRnO2XmVJVuvWkoMq6q56Zys)PC_@x!zjtaW_OR8mt2jEAP!Xw5KxxEQT)jYbNtE1 zWRMj&J!k~Q03=X_^NN&ev+ZC&;fR5cV%7Al6A=0=o;Hnt0jNlo)NvI#M1mT*4!L@r zJ8$4x-hl3V*PBht%T@(Z&nt`p3w2tQAEqL|X(5T#kwb+@RU~>QB_+kYr-;l{HXe?) zPdKja2f&V-2)#}Rfq?o7>B*rH3v9=0JiO3vN;h_o+5>e)kBzYE&G zt&G&DK)NW$Z_5z^bRW!n!O%vN$m#Tpm2QjOneOhar{B3W?^U8}6m{RoK~s6DeK3 zdW|i0>9zAKX>BSc0kt|p~A7X_{W zLaMxKWbJ0xuuYeaUrge$@bcDHSese9O;NnL?pv4K*;!-Ab8T(ypHug4G85Fu07+%S zL6D0!iih;fzrL7xH8YH<-G+xEtVzgwFaHon3i)YtgF<}o{icv^qVsIyRc9U?fqnTH zNFZ7E0hd}N^w1H=Fz z5PXm^J3G{h>mfClQU&=Li)?%*riYV(pe8(3iKB7$F_4F(ik?zMgi~Z3ulcyRsQr*8 zdkz9bHolqY8GVce?xUiDf?4Qy`nuZM+By2_I#QUP9wjMZi@T4HsG06Nt_~|lN4gXA z!eILk2TRL5D{or|hhOXKcHQ+6$4r9UON*B4K|= zM@Lgo^Kg-trB^5SBn&x`Bfb8yZJ&jfzg_W_$SAhfNlP!K0`)T}FIQGpQbXi+KCoH0 z{4_8?X+KjH1c6dptAFMDanvMG+g4c0xJ)mU1#=xF5J$*F1^c8`0^qp=*7{NLZDzq> z!?ICPW;9tnBY|L?xf|5VJw(#pwVCzf_&ds?pR=&QQU||iz0#>oKhAz3f9BlXARsYZ z64eZJjY{f>D2S#<<*R+ktkq9O7-vWdvRvs)8pe0rGpCxDg5f#t+~Y7 zcwEU%dmYGdo-tXRy82e*T6|$mcO?)u*R=ptH>Gly4pi@I};r)$0?xF=)FYuwurZ%E%XywaM9krH-WS*J>Qx!K4 z4^JV(wkP9%=+5d#Dl}L9{QOSmbaQ~TRDnh(U~a)bzTu(E>f_v!bC3E@@+58RhE-tk;Ab;wMtdu&Z?)jqBn^k>j7RcF$d9`VJm-fexL$2 zH)y_cnA&27T^;ir>SoNJd-G|P9GHlB$)0v8a`4VBGgNQsD*ejl!J7ymW}SrK*T=bD z`(O?4sc5f_E12mHU)=*rsiij!InCN!afDdhiaS%5YRcVn?Ye;kbO}~QJx+jPszxQj^*!1t5Q}fIcn0J!CaK%sP z4Gpn1A+*AYVR|{YWD}`R?PUPqGDBXF)`AaUoRzBUB`20A|kFi`!2o|FSL3VNkBwy zrr!hnl9%^7RokzYs{;tj9mUK*I&JX*8zLkm1XE^JPgGFM>0CK5xL# z=)6|Gb#Z5Zke^GUmf|8PXGieCX9sdRzTV7V+qqfyfbrRY^Coxa7}2^)O}esGTtGnn zHT%4|LwEHAp?w#ZyGYxa>MHfaF6Q${%YZ$_3qvQXkG5BEye+QhOZE6%AIXdEXPN9` z-)lhN8;BhA)ai$8XM04`zt6;9*S9a_|G(4QczNgbhV{p zQOy`|Kqc;99HIe(y65_}2E1&tFr2XCRXZxf>^*Jca@v6v-kp84obs=-l+oR4&jk_u z5wqh2F@BJO;qU5+^^@L0)$z)8FZ@QvDg?3-gLM|JW{I6t*9&@-;rF5Zo21VdLggP` zQg*he^X+Lo5p$7XW_fs06$?@M=RhG;eE z+w&N9K?Lld?#Wd=+AmtD#{EW%aZWbS@6+dJs^@?BZKL>v zpSWK(0!nsMN>xk0$$;BUHO1(0K2}gjNT+uVBG2EqF#L`gh#hTau+lckk!fZ569Ymb zqCUWrHnkwBTLNkkc$2cr7!wmClQS$p{k61|GE+syuA{7zeVdeYo&R_#U?OPxbQ^`q zoqm(ujHb`A7k)Lr-_9*_?sFY~+UDEsKdNvMe*x#ymL@054COM0=W5#7wYtgXew%4D z`+tsJ{4Em2)1~`Z9#Q11tYQC##W|4v!k+I`9A@q)duYyvjI9ZuyW>PF?|N-)nds^5 z;&(ZaCqcWb*)fML9(6$-ZK0ZXlz)Lteb&9E4~u=2;x>d^2+Fbe^PB~O=py_#2>^L1 zIQRRkkQ`c!F(U5W0C+NK6;rdxA;BL379$IrR8)?p$_T%l@ z0gqn;`rI!abhv(;ojc(yZU^J7nT!Q^`R&$m3&^wuCK+)BSs2Q=R(V}oaC~trXK&A42UM;odwnBt1ZHY%oXK_-9CNUWgM8Uk m|KdzT)ystWKb^VHoD($c+%_OSlsg5cA+l0R(BhXy!T$?##DF;f literal 10357 zcmd6N2T)Vrx^EDrX(&=n3<#(o9SMZqi=Ze{qzj1BR6=hGK}zUEM2dpM0D=VRC@mC4 ziXc*?DG+)MEupvYw&(uOoOkD*bMDNWcjvv#BzyK=-`eZ9zV-DlF-AA_z)TP(5C{a; zzou;r0-dM_foS*{P5{5L;6?&4K;vz!rwJ*`HsE~nrBU~eBkR3TToot3}WPY~h!Wf(iwb@|sZ zUxcn1Ip^2?fzGsLmf$URk>%)=D&%;%;GJPMMkRqO{$Ka@0!3i2=6F4Wf?gZEYPpwW z@N;u%pir0)xN#Yo3c7U5L; zN%e~uEYV9jBDlv`vxJZ(9zso1huMl;d9?)pVgNZBmh^P1nMEyk%G2?$)!@s~AvOBKNAL8_I4{)*Zhr8b zzuOIKbC>`a$7yEQ@Kj+TvAya-$L)Z@yU%S`7#8cfb5WRU?`}9c7M@#WSS*v=e;hjA zF1o37R&D@Rc5^Mb*IO?-t6akHN#fXQG;x0|+V&rZ{DKJe2n<~8j;LO4B`*9Coma%f z=tu7iY>a<7YA@!gA>MJJ@CI7C7|-D9&lUdK4 zR>$hH>EDY0f_uC^8Lo!RJob7}eDrb>it;2#yXxo_2o`*0_hC>b5A&;r9PX+l^0G~_ zJyBm^#SGJGMg@H3WmWttxE>UoR#*@YNr;xig}6B=&Ljce+x zU3kCn#3L&=%-<-&e9a-R(fCJq!Mo+g!kEd?e<2QBX2q(Zs3)K9zf?SFUr2nbPLoRn z@zm2`7Qg}8$R@!cTHaphdNeUqFC!?tQB-=}U(-YV;S((aUr}3fGCSfP@%58%=0-)0 z;$4YP1xJ+5D%P!qow0$bB{$|92Hwc`e4RmYVNooHu3Jw&QRUIq(yDpSCR^4pwa?9S zMqM5wd!&EtL4PT9v12QY6i$RcX>Cv=M1T)Rz9NYPPuZb-M0!+R;;OwJPlK z_sLWO;YS{Ef&tfN+BW)l2`n$SNvE8Rm|*)4)Rjx%#hn$;QDbBiMvai8sCm;c}eYM}_4fs@Zc5%pMqB-cC0b`jp@$UfmQek;mGPc>ek#iy zJgRs1wePOo@ybrn;p$4&D!c2KV(>WB*j1%VW`j5}W7nI+iOkWc@3$GFi2r3_WyObhgL?;$=nI48?BzNn<6BsyoRmi|ljRQ)7* zwt&@Vc`SXSO5NlE>n0tv5@B(8vZ=W_{IqYDjM+AZXy3d=*DD$?x%SD*Hww4izFv=u zgYSf*SHT7S33GgNqHndf(M#(7v0z)Lk)pC4^!|f+)iZ<8&Dh#wcn4nT%m_a~8`mOW zrr2{R69?{AsRbbR)oYyzd?0-v8Bkm~a{(ZDarXhe>$4-MeBAjW+D$ZDHiD<#A(Cjn ziRKIn?}gr30P7+xaR2P#xpKq|V(?HR9u;Rfy2{dIYiGxDO!~fwPI=}SjtL@nj-IX8 zK9%O!Ck31*Z5ukTmPch&hG-KjEuO@!rGzorYTRg|hIRX8TsB-suC5W8GOO}V) z#rvHWtNO3IPJIl>B5w0SE4e8p_7CH>45mH~G`_Ljr0Wv%l>Q{7vfKIIO?};Vda2js<4r@e0nwc^A{)V+x3j#crPnZg-7VhzhS~wsv%h zrB^XxSJ#A(dZ2gadZC~6{ux(4ErGG2x3I=YP&^Uz)-sk^?QlK(G$?U&qzY+!K@k)X zwg7s2u9rq#CYv_YNt+(j70nEK%?1O(M?@5DY;Eh`H(XpohKQ$KM`5KJ)amVOgLI>! zqUcddrZfW7XRn0St4sGt&&ac8+!B(KP}OYZ}?&}wJc6P?aomSbVeyrBk}_7SzSJwj0A-$-QcU=8;0pPKDV(~ff8kQU8#B?W#Oe3+nol0Y3<+e&YX zOo#L9orM`6z2Z2bUH?UtU-3pdCe`O~KKQk`xDorYNlsHrOXZ_;Fv6pgC$gJOTR64x z$QgyM;}?S5Ly$h6%hjR^oYuNg6Dh(1x%=n46cl%N3lO>c-17sCC*)31D=K8tNE$ea z)Rn6n+HA1eb%SVTlUWp-L~-pSCZ?rJf$8hYwqIqP+X_>@@hkdFrm(^;-*67#(;*#s zqBV1&gR?~mjDHQ}iMzw|_KV+SW-j|4HD`GGw6F24bi|iP&-20je2a&hNR8Fi*S2CZ z9{99RYr6f8tZaSN8oj4SPbObaQCZ*b?(Q}To|@x^Jq_L7>BjEVQ?(Rg7d*VZr>Cnh zG~ZKNcK1Nw3o7F_=XHEacXykAbX|T}x~D_G>8;(%udJ+WbH}bjd4;sReBoJu`PeNPt6weA`1F z2WHZn#i?J=$-%R6jAnBVroE;CM!gf5sb~H1rtsW2JH`a{3Cwry1d$nqFv!3ZAFICM zhNh3YE3t;Q_J5bcId+)OiVzG5!(y@BTL(iUO7=d(9>@~%Z&eft7bVU;9s`!#n{YY{ zi!ILiT*7s1TFHc;^G_K#`(WIHQdID?;4N27*qk}YO97&jzi3}TIn^UJm&uBo~YpCM`Y50filc6~~TE5m+r!;9p^&;p%UcE819?)AF9F00HKtT7;2<%6CJW!}L6zSp~igH5A)jEF}2Y2Tfpj%Q^{O&*^N^zxeG0=U2S=-v3Y^G;9FfX~= z;^-iTn*_|)De#&vPGeSJ8z~q1fhpZ> z46!x5MZWaAj>Hc6@#BZh@OjAU>Z%Q~$&q;7^>OW>kp?D1E1V4`^#szL$N<@6VshVf zNsDGkvK-DpAmJ6<{Sf$-)Rp2}F4Z+PmJ(?lFl`|Z?igVtpz@awrkjlXTrJ* zOq!>NcTTpdpNo>z3K|iCgVII+m2CVM;pymER{=deK5E18eS@rj^=_<>vz!V$aY>Ul zq9^n$jz-f(J*Ef54}Yue63PlO5`e2SfQ8v07b56hGJsh%X$>Oi7;rTIcgX$b>Z-=? zQupS^56Pk`_)III=$@W#*V(BlfdQe!p7oyt0|O6cfkK0<%1=_`(OotiHGdo4mdgs+ z54?Tb2e9!<#J`EYqosuymusT?V9TjvLuo}|-1C?peq&^BuZCqt(cjA}vCznf^dEJ)nB=8}%z=hS}PbMZ^m zi|GDJ-FQ?=@TuEhPaT_W+-#MOKohGnS4bs|+d-y&&w8X(($dmYooWW98!g0?o$)1X zmd!w6=eikm`h;ck``yy*(_jF&l@S9tIZf!aq7xIlyMFRe+$p5HyRiv-OBe%9BJ=G8 zwN=^pSe8OvFT7e*?Q?D+_>GKv1k50Mgeh|0SI@{oUq;33WZ1slYosCrn8XTk`VzG? zGjnkO5i4JAdGz?S>X4MUYT}WmR&-&%DK=*>3N5jwF}G$Z;(4v;mAvh>BS98Yb~DFx z7%Rkz4RTrREWy-nZEmjB+rZ83EYkX#ThNkHgO>Cu)vyTk9X)Oc2gB4DeNA<>2X5Lo z$~n~(E2ya@s@Yu0NiW&WywrE&@l*!4^>&f8AiPolz{--f#xsvp5!UFzrObLQa;4N? zT{%(I6Sg)WtK&3!c&zl+Sc_<(Ozbl*h=FK}}#NLy06@mF8dM++HF6qjAYNP-J zF0Qgw(wJoPH;{Aos6Essi@srn#~GZ1d7r_&3l;Y{YQ4rB3~Oo8A*Efte7_aoAN{SRVKL}eKdKu*>o1`PORBH?=9Wf6Uv)-32s64U4An> zKGsDGsBEGre0XJLWp;LUk*jj|yM&l`1YNr{n(mSA|EN;KhkDkt_j{dh^UIoLFY(cM zE6gNFEZi3L{Cw=zH1G;AD)563{OHj(hV|o19(A&EwSa;Tt|T&N!G!=DGY5mj zCfUR9uV=sEh8Fo%*V4PEz0O}T|7aynVi5~` zVLs~xuN9Mc$eXgUW*OwxkR&4iTxUQ$aKO2I{BRD@%YzAtbt_I8m@&Y!xG>{1^lsOw znu+WYef+-_s@^P~OQw_uTEdEyMLjjzR1^K5GIpD6Eo6BPpZ{0|m>l5%wYVs|^=sQX zEyTnJjse%>1I;g`cA0Yqf7{?DiG9*of_~7cL|fF12)?eivcs3vtByQ(^3s@;UiRX6 zY7_h%9;6fbG=KgH!J>oGkkT!dCGHemAferzo_#x#&eLbTv_El6s*|O-@1cfS*R*D|o9y)$^jFR5k8Te*2AkLl!kLg>o$q~n}^ z8L4H%+RcjH^N%~<6zjdJ;MfVFXjb~40W0zaSOmF+7%8IZ%)QClXJux*m(Dq=+Pe4`+OiV9vmo}Sf-7PF4)Tq{6*m^YI}f~gGo!6O$isz1=Qjh73^Ko>7&r5zaqmo z-&sBY4>M{ur}}Y1o`xlv@^Ss2`%Ggr-GJu|2gI0BZ~15bEevk5jSpoC1Ib6DFxt>fzy`j#G_I7Vyc;%-xUUj%%3$oUAzT7Um_X!0?}^9xwtf4oGrEuz+QE z<@{K9TOpzY@QWg%uZ(i?Pk=(hc@&Y=4GljkA`T9on5F1ezZSi$kZgn}udh#}@*XZL zs9aaQf-lPK$_08wZ4Nzz&-1@WMn+7J7lkgdLVq-5sWo;@_)7=nGB*?^sri2H9#BE9 zizl1XfF|V6q#;H}M;Ek7x1>&f6yu6Bbv4Fn1cu*vap(6hG!%NL8(LgaGLSB!c9dHX zv~B9z0j+$~vR{8Q?M?MpXIZ$b)>&E*PX&fgt)b)n>&vF9C~D?qLeLga4)6cndY!Wn zf}5nE_lr(p4K}>J-#E2*4^Aa}u5~LeEEl)DlYji=BXkw9n-FiYR1+B9Il}~!QY*1* z3;~K5odz5fo5|)VmJT}O2Z9vzi<`$SF@6~YhXeM~jnG57P<$Y9;`;^TXW|=l8;@D8 z8-hZwn54cXe4cIfZnS!-l53!QTGxQBN|^8g4^&Ob7jM^XoK?Xu>&CsjG?%38`K#s+ zu$W&$y@Ldt{JEi9!?xNX&pWYWt{RWByk9FTkvDX&s|Xo|Z60?*1n7oU*2#s#H{-T01X})# z4Yabt^LtKek=`%+U-p)}NqVKhAaG4=*8uDZ_0xcUJ|ocl|9YLKL^V>EfV%iE1nSUj44dbc z1xL_n5JUOLh{T5W%&e?DMjmnLS~cL?Tr-sn!DpDMbG1Ew!$a zcYTy$Aqw4@7=pu0J2deJ5FJ4hyK{RF*4Lj8mYbxZsDVlBKF2@HUB!o?6uM>1iR(<# zoR`2eU_m{ihxU)|?w{&UmzI~8_xG(F2P($K#|xi&dX`y;^__o}oSa-&r_^1;-d*3d z4n+KM8SEnYz7A^b&^!`_auqyA_WaI|Og~RS=Kz(VWb_30*sWt07M86DM{~hFpzHJ? zlWKkZQaa!YXRN*zM#zB=m>EZ)QPLwyS@VW?d3q+b+P&KWhYLLE3HpQ@$(BDN0U7@q zYRUhC-2F4;`E#W#GvJ?QGhm<V1j`XV=6~SkeV# zI^(+&E$a^}0pKUu_9t{I5T@<0vy?OC7LTh)Q zRPxi$v>kdmmf-LkGOj&rf1q@-Wh^cuBLj|0Yu&jLi-1|l&>fLgTka+yZVb_Epo28k ziBbS4_B*I~%FK**Lc+Ia=qZ5dc;%?Uyi;*yw)y#Y=za<&SnSkXdw0V2DlogIJy;N# zE&(wAd|zl&K*aOAv|7}uCLLqn8;7qC;`CW3~vwu8tny^|v!4^v7g5BCwQs+|*|V_^&8R6XEUc)gNS1Bn8<56L`eR$; z2@bW)>4^RWH^&}mVDrUy4(7L2v#hFqrc1lb0$orb1+2^pV(vZiV`!97(FB&&A%?yI z5b}aQ!Iwq4Yky6Q`@A?5EB5ltGv9J2@%iIX_8XQNv1EYDf9+y(AwCOj`(P{s)jX+?l*%h9 zU1yhK`^W0J`%0%9^m}%#nGLQE27d&6<6S|8J6ofet3KwrSA%pPi`;eu?8V>Z$IJjG z*GLc88|>D($fHZ(Pwo#>w3fHuu>E1OPZGj@9-u8EUuV7gg=P_R-z^-dXvSq+(%qJ_ z`Xf@AcwYt2Ao-RS+Q4S*B*b?OX~<6SyuCS4D2Y9(DS6SbIsG}}Mt?0SHmPTQochF? zhc~c!hVxjkZXBb}_gqf?agffCmg@=KaDs!EZkF^+JMZNvf&;~AJ=Gye@rK0KD-{Zw z(e*n|>-J^)BlgkzEbN*@slbih_qTuVcU);COI-yxW7N&#bCpO@8(ii5^#{g{th15u zIT2C_o!d;`pm{sA6-{tBjAc43n}+1@&9pTVJ*9kj3M1g{~EWpMX&QHh1#Q`BhGqp1O z1<&K~;)}6$f^xmLoX*oy(E2?SeJxs!C(}y>BL9`A-5STKxb0HP5BYg3vxnB-S2nZo+}Cy0TwjV1cem z-hNPmcNP|F{?IVCU}$K_Rr6hEh5bbUa3!D!=ikKm-n*G1Srf)T5Ucbj*Tzh_l+e8{rY>*WoOk=fw0zRV9^3=`nz&$y$cFM52ScF|AVo4mx#f`9+1T3+BF(D<;)R$WA1c3Kkae8_!}jRY^0E-; zF#oTeT>Q z8>Uj_E*8`An&W7ox%q*~0O`A4q|2K?*)0EN?^!r%dWsjRb0Hd^-)bcGY48@e$t5It zyA3~et_(Q?o+GC3JSOjbcf2S$-~VmEy?0Vp;_Iwtyk#LKZohmh-(}RQP_j5bF7>IK zw5Cp7i+D)c-kq4s3S5CtAXt@tN1cXqbAhHVqg7-G)b3HkwWG-Byr75TYExT}JF%M3 zS9}*l2jv`Rz>c}R1rj{(aTn{G1(0fGZ-{I%` z&ig9xVuv;1Nbl-Zy-31mij1De__lg`r}0{MVAPPhXscC^vb1h)LzV@=S$Lv$TuXB; zSXB4@S9fw;7q&JDA&64IHAKEH8ZI?jwvLkxP~(u4v&*GwYMX2Xyx=46f10hUl~=#> z;c+Wq?L>9g&}A35ek}E7Q&)Ksks|c*u)wUH-dpu*5%Hee zOViI;Nr;n(ebbAp*geqqx~eE$;)q!Svt7d4Tv=*~_EOG;)UiX3ts-9qE*7g&&t{5W zr+*y%lMi;v6`w@LsZ+BjC3(xfz$?t}y>6=;DuJUEk^0N2`*CIiod!pd*Qf^XsC|^j zotQAh<fB0*b)uOZGMq?Qv5Sp6|)WRSqeE7 zqtAllspk#3J@5$M>K*7t{Zc4|Di`h~vuF46H6UKm?@sCE)Bk=4M z#rG*n!g#k4NJ)uP%>PjQio5hDNfn0AgKG)9Lygoe6(Fsh1O88U#k_q3NNYn4L-rSs aY4GKT87*(h|NK=Dq_1;RyI9jc?0*56mY+%h diff --git a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md index e4de8535f1..31ea44aebd 100644 --- a/windows/keep-secure/implement-microsoft-passport-in-your-organization.md +++ b/windows/keep-secure/implement-microsoft-passport-in-your-organization.md @@ -20,15 +20,15 @@ localizationpriority: high You can create a Group Policy or mobile device management (MDM) policy that will implement Windows Hello on devices running Windows 10. >[!IMPORTANT] ->The Group Policy setting **Turn on PIN sign-in** does not apply to Windows Hello for Business. It still prevents or enables the creation of a convenience PIN for Windows 10, version 1507 and 1511. +>The Group Policy setting **Turn on PIN sign-in** does not apply to Windows Hello for Business. Use the **Turn on PIN sign-in** setting to allow or deny the use of a convenience PIN for Windows 10, version 1607. > ->Beginning in version 1607, Windows Hello as a convenience PIN is disabled by default on all domain-joined computers. To enable a convenience PIN for Windows 10, version 1607, enable the Group Policy setting **Turn on convenience PIN sign-in**. +>Beginning in version 1607, Windows Hello as a convenience PIN is disabled by default on all domain-joined computers. To enable a convenience PIN for Windows 10, version 1607, enable the Group Policy setting **Turn on convenience PIN sign-in**. Learn more in the blog post [Changes to Convenience PIN/Windows Hello Behavior in Windows 10, version 1607](https://blogs.technet.microsoft.com/ash/2016/08/13/changes-to-convenience-pin-and-thus-windows-hello-behaviour-in-windows-10-version-1607/). > >Use **Windows Hello for Business** policy settings to manage PINs for Windows Hello for Business.   ## Group Policy settings for Windows Hello for Business -The following table lists the Group Policy settings that you can configure for Hello use in your workplace. These policy settings are available in both **User configuration** and **Computer Configuration** under **Policies** > **Administrative Templates** > **Windows Components** > **Windows Hello for Business**. +The following table lists the Group Policy settings that you can configure for Hello use in your workplace. These policy settings are available in both **User configuration** and **Computer Configuration** under **Policies** > **Administrative Templates** > **Windows Components** > **Windows Hello for Business**. Be aware that not all settings are in both places. @@ -376,4 +376,4 @@ The PIN is managed using the same Windows Hello for Business policies that you c [Event ID 300 - Windows Hello successfully created](passport-event-300.md) [Windows Hello biometrics in the enterprise](windows-hello-in-enterprise.md) -  \ No newline at end of file +  diff --git a/windows/keep-secure/index.md b/windows/keep-secure/index.md index 3e1ed57822..1307bc7110 100644 --- a/windows/keep-secure/index.md +++ b/windows/keep-secure/index.md @@ -17,19 +17,19 @@ Learn about keeping Windows 10 and Windows 10 Mobile secure. | Topic | Description | | - | - | | [Block untrusted fonts in an enterprise](block-untrusted-fonts-in-enterprise.md) | To help protect your company from attacks which may originate from untrusted or attacker controlled font files, we’ve created the Blocking Untrusted Fonts feature. Using this feature, you can turn on a global setting that stops your employees from loading untrusted fonts processed using the Graphics Device Interface (GDI) onto your network. Untrusted fonts are any font installed outside of the %windir%/Fonts directory. Blocking untrusted fonts helps prevent both remote (web-based or email-based) and local EOP attacks that can happen during the font file-parsing process. | -| [Device Guard certification and compliance](device-guard-certification-and-compliance.md) | Device Guard is a combination of hardware and software security features that, when configured together, will lock a device down so that it can only run trusted applications. If the app isn’t trusted it can’t run, period. It also means that even if an attacker manages to get control of the Windows kernel, he or she will be much less likely to be able to run malicious executable code after the computer restarts because of how decisions are made about what can run and when. | | [Manage identity verification using Windows Hello for Business](manage-identity-verification-using-microsoft-passport.md) | In Windows 10, Windows Hello replaces passwords with strong two-factor authentication on PCs and mobile devices. This authentication consists of a new type of user credential that is tied to a device and a biometric or PIN. | | [Configure S/MIME for Windows 10 and Windows 10 Mobile](configure-s-mime.md) | In Windows 10, S/MIME lets users encrypt outgoing messages and attachments so that only intended recipients who have a digital identification (ID), also known as a certificate, can read them. Users can digitally sign a message, which provides the recipients with a way to verify the identity of the sender and that the message hasn't been tampered with. | | [Install digital certificates on Windows 10 Mobile](installing-digital-certificates-on-windows-10-mobile.md) | Digital certificates bind the identity of a user or computer to a pair of keys that can be used to encrypt and sign digital information. Certificates are issued by a certification authority (CA) that vouches for the identity of the certificate holder, and they enable secure client communications with websites and services. | -| [Protect derived domain credentials with Credential Guard](credential-guard.md) | Introduced in Windows 10 Enterprise, Credential Guard uses virtualization-based security to isolate secrets so that only privileged system software can access them. Unauthorized access to these secrets can lead to credential theft attacks, such as Pass-the-Hash or Pass-The-Ticket. Credential Guard prevents these attacks by protecting NTLM password hashes and Kerberos Ticket Granting Tickets. | +| [Device Guard deployment guide](device-guard-deployment-guide.md) | Device Guard is a combination of hardware and software security features that, when configured together, will lock a device down so that it can only run trusted applications. If the app isn’t trusted it can’t run, period. It also means that even if an attacker manages to get control of the Windows kernel, he or she will be much less likely to be able to run malicious executable code after the computer restarts because of how decisions are made about what can run and when. | +| [Protect derived domain credentials with Credential Guard](credential-guard.md) | Introduced in Windows 10 Enterprise, Credential Guard uses virtualization-based security to isolate secrets so that only privileged system software can access them. Unauthorized access to these secrets can lead to credential theft attacks, such as Pass-the-Hash or Pass-The-Ticket. Credential Guard helps prevent these attacks by protecting NTLM password hashes and Kerberos Ticket Granting Tickets. | | [Protect Remote Desktop credentials with Remote Credential Guard](remote-credential-guard.md) | Remote Credential Guard helps you protect your credentials over a Remote Desktop connection by redirecting the Kerberos requests back to the device that's requesting the connection. | -| [Protect your enterprise data using Windows Information Protection (WIP)](protect-enterprise-data-using-wip.md) | With the increase of employee-owned devices in the enterprise, there’s also an increasing risk of accidental data leak through apps and services, like email, social media, and the public cloud, which are outside of the enterprise’s control. For example, when an employee sends the latest engineering pictures from their personal email account, copies and pastes product info into a tweet, or saves an in-progress sales report to their public cloud storage. | +| [Protect your enterprise data using Windows Information Protection (WIP)](protect-enterprise-data-using-wip.md) | With the increase of employee-owned devices in the enterprise, there’s also an increasing risk of accidental data leak through apps and services, like email, social media, and the public cloud, which are outside of the enterprise’s control. Windows Information Protection (WIP), previously known as enterprise data protection (EDP), helps to protect against this potential data leakage without otherwise interfering with the employee experience. | | [Use Windows Event Forwarding to help with intrusion detection](use-windows-event-forwarding-to-assist-in-instrusion-detection.md) | Learn about an approach to collect events from devices in your organization. This article talks about events in both normal operations and when an intrusion is suspected. | |[Override Process Mitigation Options to help enforce app-related security policies](override-mitigation-options-for-app-related-security-policies.md) |Use Group Policy to override individual **Process Mitigation Options** settings and help to enforce specific app-related security policies. | | [VPN technical guide](vpn-guide.md) | Virtual private networks (VPN) let you give your users secure remote access to your company network. Windows 10 adds useful new VPN profile options to help you manage how users connect. | | [Windows security baselines](windows-security-baselines.md) | Learn why you should use security baselines in your organization. | -| [Security technologies](security-technologies.md) | Learn more about the different security technologies that are available in Windows 10 and Windows 10 Mobile. | -| [Enterprise security guides](windows-10-enterprise-security-guides.md) | Get proven guidance to help you better secure and protect your enterprise by using technologies such as Credential Guard, Device Guard, Microsoft Passport, and Windows Hello. This section offers technology overviews and step-by-step guides. | +| [Security technologies](security-technologies.md) | Learn more about the different security technologies that are available in Windows 10 and Windows 10 Mobile. For example, learn about AppLocker, BitLocker, and Security auditing. | +| [Enterprise security guides](windows-10-enterprise-security-guides.md) | Review technology overviews that help you understand Windows 10 security technologies in the context of the enterprise. | | [Change history for Keep Windows 10 secure](change-history-for-keep-windows-10-secure.md) | This topic lists new and updated topics in the Keep Windows 10 secure documentation for [Windows 10 and Windows 10 Mobile](../index.md). |   ## Related topics diff --git a/windows/keep-secure/initialize-and-configure-ownership-of-the-tpm.md b/windows/keep-secure/initialize-and-configure-ownership-of-the-tpm.md index cc8625adb9..013355ffa6 100644 --- a/windows/keep-secure/initialize-and-configure-ownership-of-the-tpm.md +++ b/windows/keep-secure/initialize-and-configure-ownership-of-the-tpm.md @@ -1,6 +1,6 @@ --- -title: Initialize and configure ownership of the TPM (Windows 10) -description: This topic for the IT professional describes how to initialize and set the ownership the Trusted Platform Module (TPM), turn the TPM on and off, and clear TPM keys. +title: View status, clear, or troubleshoot the TPM (Windows 10) +description: This topic for the IT professional describes how to view status for, clear, or troubleshoot the Trusted Platform Module (TPM). ms.assetid: 1166efaf-7aa3-4420-9279-435d9c6ac6f8 ms.prod: w10 ms.mktglfcycl: deploy @@ -9,156 +9,146 @@ ms.pagetype: security author: brianlic-msft --- -# Initialize and configure ownership of the TPM +# View status, clear, or troubleshoot the TPM **Applies to** - Windows 10 +- Windows Server 2016 -This topic for the IT professional describes how to initialize and set the ownership the Trusted Platform Module (TPM), turn the TPM on and off, and clear TPM keys. It also explains how to troubleshoot issues that you might encounter as a result of using these procedures. +This topic for the IT professional describes actions you can take through the Trusted Platform Module (TPM) snap-in, **TPM.msc**: -## About TPM initialization and ownership +- [View the status of the TPM](#view-the-status-of-the-tpm) -The TPM must be initialized and ownership must be taken before it can be used to help secure your computer. The owner of the TPM is the user who possesses the owner password and is able to set it and change it. Only one owner password exists per TPM. The owner of the TPM can make full use of TPM capabilities. Taking ownership of the TPM can be done as part of the initialization process. +- [Troubleshoot TPM initialization](#troubleshoot-tpm-initialization) -When you start the TPM Initialization Wizard, which is accessed through the TPM Microsoft Management Console (MMC), you can determine whether the computer's TPM has been initialized. You can also view the TPM properties. +- [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm) -This topic contains procedures for the following tasks: +With TPM 1.2 and Windows 10, version 1507 or 1511, you can also take the following actions: -- [Initialize the TPM and set ownership](#bkmk-initializetpm) -- [Troubleshoot TPM initialization](#bkmk-troubleshootinit) -- [Turn on or turn off the TPM](#bkmk-onoff) -- [Clear all the keys from the TPM](#bkmk-clear1) -- [Use the TPM cmdlets](#bkmk-tpmcmdlets) +- [Turn on or turn off the TPM](#turn-on-or-turn-off) -## Initialize the TPM and set ownership +This topic also provides information about [using the TPM cmdlets](#use-the-tpm-cmdlets). -Membership in the local Administrators group, or equivalent, is the minimum required to complete this procedure. In addition, the computer must be equipped with a Trusted Computing Group-compliant BIOS. +## About TPM initialization and ownership -**To start the TPM Initialization Wizard** +Starting with Windows 10, the operating system automatically initializes and takes ownership of the TPM. This is a change from previous operating systems, where you would initialize the TPM and create an owner password. Therefore, with Windows 10, in most cases, we recommend that you avoid configuring the TPM through **TPM.msc**. The one exception is that in certain circumstances you might use **TPM.msc** to clear the TPM. For more information, see [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. -1. Open the TPM Management console (tpm.msc). If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. -2. On the **Action** menu, click **Initialize TPM** to start the TPM Initialization Wizard. -3. If the TPM has never been initialized or is turned off, the TPM Initialization Wizard displays the **Turn on the TPM security hardware** dialog box. This dialog box provides guidance for initializing or turning on the TPM. Follow the instructions in the wizard. +## View the status of the TPM - >**Note:** If the TPM is already turned on, the TPM Initialization Wizard displays the **Create the TPM owner password** dialog box. Skip the remainder of this procedure and continue with the **To set ownership of the TPM** procedure. -   - >**Note:**  If the TPM Initialization Wizard detects that you do not have a compatible BIOS, you cannot continue with the TPM Initialization Wizard, and you are alerted to consult the computer manufacturer's documentation for instructions to initialize the TPM. -   -4. Click **Restart**. -5. Follow the BIOS screen prompts. An acceptance prompt is displayed to ensure that a user has physical access to the computer and that no malicious software is attempting to turn on the TPM. - - >**Note:**  BIOS screen prompts and the required keystrokes vary by computer manufacturer. -   -6. After the computer restarts, sign in to the computer with the same administrative credentials that you used to start this procedure. -7. The TPM Initialization Wizard automatically restarts. If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. -8. Continue with the next procedure to take ownership of the TPM. +To view the status of the TPM, open the TPM Management console (TPM.msc). In the center pane, find the **Status** box. -To finish initializing the TPM for use, you must set an owner for the TPM. The process of taking ownership includes creating an owner password for the TPM. +In most cases, the status will be **Ready**. If the status is ready but “**with reduced functionality**,” see [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. -**To set ownership of the TPM** +If the status is **Not ready**, you can try the steps in [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. If this does not bring it to a **Ready** state, contact the manufacturer, and see the troubleshooting suggestions in the next section. -1. If you are not continuing immediately from the last procedure, start the TPM Initialization Wizard. If you need to review the steps to do so, see the previous procedure **To start the TPM Initialization Wizard**. -2. In the **Create the TPM owner password** dialog box, click **Automatically create the password (recommended)**. -3. In the **Save your TPM owner password** dialog box, click **Save the password**. -4. In the **Save As** dialog box, select a location to save the password, and then click **Save**. The password file is saved as *computer\_name.tpm*. +## Troubleshoot TPM initialization - >**Important:**  We highly recommend saving the TPM owner password to a removable storage device and storing it in a safe location. -   -5. Click **Print the password** if you want to print a copy of your password. - >**Important:**  We highly recommend printing a copy of your TPM owner password and storing it in a safe location. -   -6. Click **Initialize**. - >**Note:**  The process of initializing the TPM might take a few minutes to complete. -   -7. Click **Close**. - >**Caution:**  Do not lose your password. If you do, you will be unable to make administrative changes unless you clear the TPM, which can result in data loss. -   -## Troubleshoot TPM initialization +If you find that Windows is not able to initialize the TPM automatically, review the following information: -Managing the Trusted Platform Module (TPM) is usually a straightforward procedure. If are unable to complete the initialization procedure, review the following information: +- You can try clearing the TPM to the factory default values and allowing Windows to re-initialize it. For important precautions for this process, and instructions for completing it, see [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. -- If the TPM is not detected by Windows, verify that your computer hardware contains a Trusted Computing Group-compliant BIOS. Ensure that no BIOS settings have been used to hide the TPM from the operating system. -- If you are attempting to initialize the TPM as part of the BitLocker setup, check which TPM driver is installed on the computer. We recommend always using one of the TPM drivers that is provided by Microsoft and is protected with BitLocker. If a non-Microsoft TPM driver is installed, it may prevent the default TPM driver from loading and cause BitLocker to report that a TPM is not present on the computer. If you have a non-Microsoft driver installed, remove it and then try to initialize the TPM. The following table lists the three standard TPM drivers that are provided by Microsoft. +- If the TPM is a TPM 2.0 and is not detected by Windows, verify that your computer hardware contains a Unified Extensible Firmware Interface (UEFI) that is Trusted Computing Group-compliant. Also, ensure that in the UEFI settings, the TPM has not been disabled or hidden from the operating system. -| Driver name | Manufacturer | -| - | - | -| Trusted Platform Module 1.2 | (Standard)| -| Broadcom Trusted Platform Module (A1), v1.2 | Broadcom| -| Broadcom Trusted Platform Module (A2), v1.2 | Broadcom| -   -- If the TPM has been previously initialized and you do not have the owner password, you may have to clear or reset the TPM to the factory default values. For more information, see [Clear all the keys from the TPM](#bkmk-clear1). - > **Caution:**  Clearing the TPM can result in data loss. To avoid data loss, make sure that you have a backup or recovery method for any data that is protected or encrypted by the TPM. -   -Because your TPM security hardware is a physical part of your computer, you may want to read the manuals or instructions that came with your computer, or search the manufacturer's website. +- If you have TPM 1.2 with Windows 10, version 1507 or 1511, the TPM might be turned off, and need to be turned back on, as described in [Turn on the TPM](#turn-on-the-tpm). When it is turned back on, Windows will re-initialize it. -**Network connection** +- If you are attempting to set up BitLocker with the TPM, check which TPM driver is installed on the computer. We recommend always using one of the TPM drivers that is provided by Microsoft and is protected with BitLocker. If a non-Microsoft TPM driver is installed, it may prevent the default TPM driver from loading and cause BitLocker to report that a TPM is not present on the computer. If you have a non-Microsoft driver installed, remove it and then allow the operating system to initialize the TPM. -You cannot complete the initialization of the Trusted Platform Module (TPM) when your computer is disconnected from your organization's network if either of the following conditions exist: +### Troubleshoot network connection issues for Windows 10, versions 1507 and 1511 + +If you have Windows 10, version 1507 or 1511, the initialization of the TPM cannot complete when your computer has network connection issues and both of the following conditions exist: - An administrator has configured your computer to require that TPM recovery information be saved in Active Directory Domain Services (AD DS). This requirement can be configured through Group Policy. + - A domain controller cannot be reached. This can occur on a computer that is currently disconnected from the network, separated from the domain by a firewall, or experiencing a network component failure (such as an unplugged cable or a faulty network adapter). -In either case, an error message appears, and you cannot complete the initialization process. To avoid this issue, initialize the TPM while you are connected to the corporate network and you can contact a domain controller. +If these issues occur, an error message appears, and you cannot complete the initialization process. To avoid this issue, allow Windows to initialize the TPM while you are connected to the corporate network and you can contact a domain controller. -**Systems with multiple TPMs** +### Troubleshoot systems with multiple TPMs -Some systems may have multiple TPMs and the active TPM may be toggled in the BIOS. Windows 10 does not support this behavior. If you switch TPMs, functionality that depends on the TPM will not work with the new TPM unless it is cleared and put through provisioning. Performing this clear may cause data loss, in particular of keys and certificates associated with the previous TPM. For example, toggling TPMs will cause Bitlocker to enter recovery mode. It is strongly recommended that, on systems with two TPMs, one TPM is selected to be used and the selection is not changed. +Some systems may have multiple TPMs and the active TPM may be toggled in UEFI. Windows 10 does not support this behavior. If you switch TPMs, Windows might not properly detect or interact with the new TPM. If you plan to switch TPMs you should toggle to the new TPM, clear it, and reinstall Windows. For more information, see [Clear all the keys from the TPM](#clear-all-the-keys-from-the-tpm), later in this topic. -## Turn on or turn off the TPM +For example, toggling TPMs will cause BitLocker to enter recovery mode. We strongly recommend that, on systems with two TPMs, one TPM is selected to be used and the selection is not changed. -Normally, the TPM is turned on as part of the TPM initialization process. You do not normally need to turn the TPM on or off. However, if necessary you can do so by using the TPM MMC. This option is only available with TPM 1.2 and does not apply to TPM 2.0. +## Clear all the keys from the TPM -### Turn on the TPM +With Windows 10, in most cases, we recommend that you avoid configuring the TPM through TPM.msc. The one exception is that you can use TPM.msc to clear the TPM, for example, as a troubleshooting step, or as a final preparation before a clean installation of a new operating system. Preparing for a clean installation in this way helps ensure that the new operating system can fully deploy any TPM-based functionality that it includes, for example, attestation. However, even if the TPM is not cleared before a new operating system is installed, most TPM functionality will probably work correctly. -If the TPM has been initialized but has never been used, or if you want to use the TPM after you have turned it off, you can use the following procedure to turn on the TPM. +Clearing the TPM resets it to an unowned state. After you clear the TPM, the Windows 10 operating system will automatically re-initialize it and take ownership again. -**To turn on the TPM (TPM 1.2 Only)** +> [!WARNING] +> Clearing the TPM can result in data loss. For more information, see the next section, “Precautions to take before clearing the TPM.” -1. Open the TPM MMC (tpm.msc). -2. In the **Action** pane, click **Turn TPM On** to display the **Turn on the TPM Security Hardware** page. Read the instructions on this page. -3. Click **Shutdown** (or **Restart**), and then follow the BIOS screen prompts. +There are several ways to clear the TPM: - After the computer restarts, but before you sign in to Windows, you will be prompted to accept the reconfiguration of the TPM. This ensures that the user has physical access to the computer and that malicious software is not attempting to make changes to the TPM. +- **Clear the TPM as part of a complete reset of the computer**: You might want to remove all files from the computer and completely reset it, for example, in preparation for a clean installation. To do this, we recommend that you use the **Reset** option in **Settings**. When you perform a reset and use the **Remove everything** option, it will clear the TPM as part of the reset. You might be prompted to press a key before the TPM can be cleared. For more information, see the “Reset this PC” section in [Recovery options in Windows 10](https://support.microsoft.com/en-us/help/12415/windows-10-recovery-options). -### Turn off the TPM +- **Clear the TPM to fix “reduced functionality” or “Not ready” TPM status**: If you open TPM.msc and see that the TPM status is something other than **Ready**, you can can try using TPM.msc to clear the TPM and fix the status. However, be sure to review the precautions in the next section. -If you want to stop using the services that are provided by the TPM, you can use the TPM MMC to turn off the TPM. If you have the TPM owner password, physical access to the computer is not required to turn off the TPM. If you do not have the TPM owner password, you must have physical access to the -computer to turn off the TPM. +### Precautions to take before clearing the TPM -**To turn off the TPM (TPM 1.2 only)** +Clearing the TPM can result in data loss. To protect against such loss, review the following precautions: -1. Open the TPM MMC (tpm.msc). -2. In the **Action** pane, click **Turn TPM Off** to display the **Turn off the TPM security hardware** page. -3. In the **Turn off the TPM security hardware** dialog box, select a method to enter your owner password and turning off the TPM: +- Clearing the TPM causes you to lose all created keys associated with the TPM, and data protected by those keys, such as a virtual smart card or a login PIN. Make sure that you have a backup and recovery method for any data that is protected or encrypted by the TPM. - - If you saved your TPM owner password on a removable storage device, insert it, and then click **I have the owner password file**. In the **Select backup file with the TPM owner password** dialog box, click **Browse** to locate the .tpm file that is saved on your removable storage device, click **Open**, and then click **Turn TPM Off**. - - If you do not have the removable storage device with your saved TPM owner password, click **I want to enter the password**. In the **Type your TPM owner password** dialog box, type your password (including hyphens), and then click **Turn TPM Off**. - - If you do not know your TPM owner password, click **I do not have the TPM owner password**, and follow the instructions that are provided in the dialog box and subsequent BIOS screens to turn off the TPM without entering the password. +- Do not clear the TPM on a device you do not own, such as a work or school PC, without being instructed to do so by your IT administrator. -## Clear all the keys from the TPM +- If you want to temporarily suspend TPM operations and you have TPM 1.2 with Windows 10, version 1507 or 1511, you can turn off the TPM. For more information, see [Turn off the TPM](#turn-off-the-tpm), later in this topic. -Clearing the TPM resets it to an unowned state. After clearing the TPM, you need to complete the TPM initialization process before using software that relies on the TPM, such as BitLocker Drive Encryption. By default, the TPM is initialized automatically. +- Always use functionality in the operating system (such as TPM.msc) to the clear the TPM. Do not clear the TPM directly from UEFI. ->**Important:**  Clearing the TPM can result in data loss. To avoid data loss, make sure that you have a backup or recovery method for any data that is protected or encrypted by the TPM. -  -After the TPM is cleared, it is also turned off. - -To temporarily suspend TPM operations, turn off the TPM instead of clearing it. +- Because your TPM security hardware is a physical part of your computer, before clearing the TPM, you might want to read the manuals or instructions that came with your computer, or search the manufacturer's website. Membership in the local Administrators group, or equivalent, is the minimum required to complete this procedure. **To clear the TPM** 1. Open the TPM MMC (tpm.msc). -2. If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. -3. Under **Actions**, click **Clear TPM**. - >**Warning:**  If the TPM is off, reinitialize it before clearing it. - - Clearing the TPM resets it to factory defaults and turns it off. You will lose all created keys and data that is protected by those keys. -   -4. You will be prompted to restart the computer. During the restart, you will be prompted by the BIOS or UEFI to press a button to confirm you wish to clear the TPM. -## Use the TPM cmdlets +2. If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. + +3. Under **Actions**, click **Clear TPM**. + +4. You will be prompted to restart the computer. During the restart, you might be prompted by the UEFI to press a button to confirm that you wish to clear the TPM. + +5. After the PC restarts, your TPM will be automatically prepared for use by Windows 10. + +## Turn on or turn off the TPM (TPM 1.2 with Windows 10, version 1507 or 1511) + +Normally, the TPM is turned on as part of the TPM initialization process. You do not normally need to turn the TPM on or off. However, if necessary you can do so by using the TPM MMC. + +### Turn on the TPM + +If you want to use the TPM after you have turned it off, you can use the following procedure to turn on the TPM. + +**To turn on the TPM (TPM 1.2 with Windows 10, version 1507 or 1511 only)** + +1. Open the TPM MMC (tpm.msc). + +2. In the **Action** pane, click **Turn TPM On** to display the **Turn on the TPM Security Hardware** page. Read the instructions on this page. + +3. Click **Shutdown** (or **Restart**), and then follow the UEFI screen prompts. + + After the computer restarts, but before you sign in to Windows, you will be prompted to accept the reconfiguration of the TPM. This ensures that the user has physical access to the computer and that malicious software is not attempting to make changes to the TPM. + +### Turn off the TPM + +If you want to stop using the services that are provided by the TPM, you can use the TPM MMC to turn off the TPM. + +**To turn off the TPM (TPM 1.2 with Windows 10, version 1507 or 1511 only)** + +1. Open the TPM MMC (tpm.msc). + +2. In the **Action** pane, click **Turn TPM Off** to display the **Turn off the TPM security hardware** page. + +3. In the **Turn off the TPM security hardware** dialog box, select a method to enter your owner password and turning off the TPM: + + - If you saved your TPM owner password on a removable storage device, insert it, and then click **I have the owner password file**. In the **Select backup file with the TPM owner password** dialog box, click **Browse** to locate the .tpm file that is saved on your removable storage device, click **Open**, and then click **Turn TPM Off**. + + - If you do not have the removable storage device with your saved TPM owner password, click **I want to enter the password**. In the **Type your TPM owner password** dialog box, type your password (including hyphens), and then click **Turn TPM Off**. + + - If you did not save your TPM owner password or no longer know it, click **I do not have the TPM owner password**, and follow the instructions that are provided in the dialog box and subsequent UEFI screens to turn off the TPM without entering the password. + +## Use the TPM cmdlets If you are using Windows PowerShell to manage your computers, you can also manage the TPM by using Windows PowerShell. To install the TPM cmdlets, type the following command: @@ -166,6 +156,6 @@ If you are using Windows PowerShell to manage your computers, you can also manag For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). -## Additional resources +## Related topics -For more info about TPM, see [Trusted Platform Module Technology Overview](trusted-platform-module-overview.md#bkmk-additionalresources). +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) diff --git a/windows/keep-secure/installing-digital-certificates-on-windows-10-mobile.md b/windows/keep-secure/installing-digital-certificates-on-windows-10-mobile.md index 11d5fe781d..1e16d409a2 100644 --- a/windows/keep-secure/installing-digital-certificates-on-windows-10-mobile.md +++ b/windows/keep-secure/installing-digital-certificates-on-windows-10-mobile.md @@ -24,8 +24,8 @@ Certificates in Windows 10 Mobile are primarily used for the following purposes - For installation and licensing of applications (from the Windows Phone Store or a custom company distribution site). -**Warning**   -In Windows 10, Version 1607, if you have multiple certificates provisioned on the device and the Wi-Fi profile provisioned does not have a strict filtering criteria, you may see connection failures when connecting to Wi-Fi. [Learn more about this known issue in Version 1607](https://go.microsoft.com/fwlink/p/?LinkId=786764) +>[!WARNING]   +>In Windows 10, Version 1607, if you have multiple certificates provisioned on the device and the Wi-Fi profile provisioned does not have a strict filtering criteria, you may see connection failures when connecting to Wi-Fi. [Learn more about this known issue in Version 1607](https://go.microsoft.com/fwlink/p/?LinkId=786764) ## Install certificates using Microsoft Edge @@ -33,12 +33,13 @@ A certificate can be posted on a website and made available to users through a d ## Install certificates using email -The Windows 10 Mobile certificate installer supports .cer, .p7b, .pem, and .pfx files. To install certificates via email, make sure your mail filters do not block .cer files. Certificates that are sent via email appear as message attachments. When a certificate is received, a user can tap to review the contents and then tap to install the certificate. Typically, when an identity certificate is installed, the user is prompted for the password (or passphrase) that protects it. +The Windows 10 Mobile certificate installer supports .cer, .p7b, .pem, and .pfx files. Some email programs block .cer files for security reasons. If this is the case in your organization, use an alternative method to deploy the certificate. Certificates that are sent via email appear as message attachments. When a certificate is received, a user can tap to review the contents and then tap to install the certificate. Typically, when an identity certificate is installed, the user is prompted for the password (or passphrase) that protects it. ## Install certificates using mobile device management (MDM) Windows 10 Mobile supports root, CA, and client certificate to be configured via MDM. Using MDM, an administrator can directly add, delete, or query root and CA certificates, and configure the device to enroll a client certificate with a certificate enrollment server that supports Simple Certificate Enrollment Protocol (SCEP). SCEP enrolled client certificates are used by Wi-Fi, VPN, email, and browser for certificate-based client authentication. An MDM server can also query and delete SCEP enrolled client certificate (including user installed certificates), or trigger a new enrollment request before the current certificate is expired. -> **Warning:**  Do not use SCEP for encryption certificates for S/MIME. You must use a PFX certificate profile to support S/MIME on Windows 10 Mobile. For instructions on creating a PFX certificate profile in Microsoft Intune, see [Enable access to company resources using certificate profiles with Microsoft Intune](https://go.microsoft.com/fwlink/p/?LinkID=718216). +>[!WARNING] +>Do not use SCEP for encryption certificates for S/MIME. You must use a PFX certificate profile to support S/MIME on Windows 10 Mobile. For instructions on creating a PFX certificate profile in Microsoft Intune, see [Enable access to company resources using certificate profiles with Microsoft Intune](https://go.microsoft.com/fwlink/p/?LinkID=718216).   **Process of installing certificates using MDM** @@ -50,14 +51,17 @@ Windows 10 Mobile supports root, CA, and client certificate to be configured vi 6. The device connects to Internet-facing point exposed by MDM server. 7. MDM server creates a certificate that is signed with proper CA certificate and returns it to device. - > **Note:**  The device supports the pending function to allow server side to do additional verification before issuing the cert. In this case, a pending status is sent back to the device. The device will periodically contact the server, based on preconfigured retry count and retry period parameters. Retrying ends when either: - A certificate is successfully received from the server - The server returns an error - The number of retries reaches the preconfigured limit + >[!NOTE] + >The device supports the pending function to allow server side to do additional verification before issuing the cert. In this case, a pending status is sent back to the device. The device will periodically contact the server, based on preconfigured retry count and retry period parameters. Retrying ends when either: + > + >- A certificate is successfully received from the server + >- The server returns an error + >- The number of retries reaches the preconfigured limit   8. The cert is installed in the device. Browser, Wi-Fi, VPN, email, and other first party applications have access to this certificate. - > **Note:**  If MDM requested private key being stored in Trusted Process Module (TPM) (configured during enrollment request), the private key will be saved in TPM. Note that SCEP enrolled cert protected by TPM isn’t guarded by a PIN. However, if the certificate is imported to the Passport for Work Key Storage Provider (KSP), it is guarded by the Passport PIN. + >[!NOTE] + >If MDM requested private key stored in Trusted Process Module (TPM) (configured during enrollment request), the private key will be saved in TPM. Note that SCEP enrolled cert protected by TPM isn’t guarded by a PIN. However, if the certificate is imported to the Windows Hello for Business Key Storage Provider (KSP), it is guarded by the Hello PIN.   ## Related topics diff --git a/windows/keep-secure/interactive-logon-display-user-information-when-the-session-is-locked.md b/windows/keep-secure/interactive-logon-display-user-information-when-the-session-is-locked.md index 7c1d049314..f82d103fb6 100644 --- a/windows/keep-secure/interactive-logon-display-user-information-when-the-session-is-locked.md +++ b/windows/keep-secure/interactive-logon-display-user-information-when-the-session-is-locked.md @@ -35,7 +35,7 @@ When a session is locked in a Windows operating system (meaning the user at the - Blank. - Default setting. This translates to “Not defined,” but it will display the user’s full name in the same manner as the **User display name, domain and user names** option. When an option is set, you cannot reset this policy to blank, or not defined. + Default setting. This translates to “Not defined,” but it will display the user’s full name in the same manner as the **User display name** option. When an option is set, you cannot reset this policy to blank, or not defined. ### Best practices diff --git a/windows/keep-secure/interactive-logon-do-not-display-last-user-name.md b/windows/keep-secure/interactive-logon-do-not-display-last-user-name.md index 0177def043..5af92d1bcf 100644 --- a/windows/keep-secure/interactive-logon-do-not-display-last-user-name.md +++ b/windows/keep-secure/interactive-logon-do-not-display-last-user-name.md @@ -34,8 +34,6 @@ If this policy is disabled, the full name of the last user to log on is displaye Your implementation of this policy depends on your security requirements for displayed logon information. If you have devices that store sensitive data, with monitors displayed in unsecured locations, or if you have devices with sensitive data that are remotely accessed, revealing logged on user’s full names or domain account names might contradict your overall security policy. -Depending on your security policy, you might also want to enable the [Interactive logon: Display user information when the session is locked](interactive-logon-display-user-information-when-the-session-is-locked.md) policy, which will prevent the Windows operating system from displaying the logon name when the session is locked or started. - ### Location Computer Configuration\\Windows Settings\\Security Settings\\Local Policies\\Security Options diff --git a/windows/keep-secure/interactive-logon-require-smart-card.md b/windows/keep-secure/interactive-logon-require-smart-card.md index 2441b3c3e7..503713f8e7 100644 --- a/windows/keep-secure/interactive-logon-require-smart-card.md +++ b/windows/keep-secure/interactive-logon-require-smart-card.md @@ -1,5 +1,5 @@ --- -title: Interactive logon Require smart card (Windows 10) +title: Interactive logon Require smart card - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management and security considerations for the Interactive logon Require smart card security policy setting. ms.assetid: c6a8c040-cbc7-472d-8bc5-579ddf3cbd6c ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Interactive logon: Require smart card +# Interactive logon: Require smart card - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/introduction-to-device-guard-virtualization-based-security-and-code-integrity-policies.md b/windows/keep-secure/introduction-to-device-guard-virtualization-based-security-and-code-integrity-policies.md index c0577fe786..3712b6aed0 100644 --- a/windows/keep-secure/introduction-to-device-guard-virtualization-based-security-and-code-integrity-policies.md +++ b/windows/keep-secure/introduction-to-device-guard-virtualization-based-security-and-code-integrity-policies.md @@ -75,5 +75,5 @@ Another Windows 10 feature that employs VBS is [Credential Guard](credential-gua Credential Guard is targeted at resisting pass-the-hash and pass-the-ticket techniques. By employing multifactor authentication with Credential Guard, organizations can gain additional protection against such threats. -In addition to the client-side enabling of Credential Guard, organizations can deploy mitigations at both the CA and domain controller level to help prevent credential theft. For more information, see the [Additional mitigations](https://technet.microsoft.com/en-us/itpro/windows/keep-secure/credential-guard#additional-mitigations) section in “Protect derived domain credentials with Credential Guard.” + diff --git a/windows/keep-secure/investigate-machines-windows-defender-advanced-threat-protection.md b/windows/keep-secure/investigate-machines-windows-defender-advanced-threat-protection.md index eec0ada5a4..bc3e8df73d 100644 --- a/windows/keep-secure/investigate-machines-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/investigate-machines-windows-defender-advanced-threat-protection.md @@ -21,12 +21,12 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) -The **Machines view** shows a list of the machines in your network, the corresponding number of active alerts for each machine categorized by alert severity levels, and the number of active malware detections. This view allows you to identify machines with the highest risk at a glance, and keep track of all the machines that are reporting telemetry in your network. +The **Machines view** shows a list of the machines in your network, the corresponding number of active alerts for each machine categorized by alert severity levels, and the number of active malware detections. This view allows you to identify machines with the highest risk at a glance, and keep track of all the machines that are reporting sensor data in your network. Use the Machines view in these two main scenarios: - **During onboarding** - - During the onboarding process, the Machines view gradually gets populated with endpoints as they begin to report telemetry. Use this view to track your onboarded endpoints as they appear. Use the available features to sort and filer to see which endpoints have most recently reported telemetry, or download the complete endpoint list as a CSV file for offline analysis. + - During the onboarding process, the Machines view gradually gets populated with endpoints as they begin to report sensor data. Use this view to track your onboarded endpoints as they appear. Use the available features to sort and filer to see which endpoints have most recently reported sensor data, or download the complete endpoint list as a CSV file for offline analysis. - **Day-to-day work** - The **Machines view** enables you to identify machines that are most at risk in a glance. High-risk machines are those with the greatest number and highest-severity alerts. By sorting the machines by risk, you'll be able to identify the most vulnerable machines and take action on them. @@ -34,7 +34,7 @@ The Machines view contains the following columns: - **Machine name** - the name or GUID of the machine - **Domain** - the domain the machine belongs to -- **Last seen** - when the machine last reported telemetry +- **Last seen** - when the machine last reported sensor data - **Internal IP** - the local internal Internet Protocol (IP) address of the machine - **Active Alerts** - the number of alerts reported by the machine by severity - **Active malware detections** - the number of active malware detections reported by the machine @@ -59,7 +59,7 @@ You can filter the view by the following time periods: - 6 months > [!NOTE] -> When you select a time period, the list will only display machines that reported within the selected time period. For example, selecting 1 day will only display a list of machines that reported telemetry within the last 24-hour period. +> When you select a time period, the list will only display machines that reported within the selected time period. For example, selecting 1 day will only display a list of machines that reported sensor data within the last 24-hour period. The threat category filter lets you filter the view by the following categories: @@ -94,7 +94,7 @@ When you investigate a specific machine, you'll see: - **Alerts related to this machine** - **Machine timeline** -The machine details, IP, and reporting sections display some attributes of the machine such as its name, domain, OS, IP address, and how long it's been reporting telemetry to the Windows Defender ATP service. +The machine details, IP, and reporting sections display some attributes of the machine such as its name, domain, OS, IP address, and how long it's been reporting sensor data to the Windows Defender ATP service. The **Alerts related to this machine** section provides a list of alerts that are associated with the machine. This list is a simplified version of the [Alerts queue](alerts-queue-windows-defender-advanced-threat-protection.md), and shows the date that the alert was detected, a short description of the alert, the alert's severity, the alert's threat category, and the alert's status in the queue. diff --git a/windows/keep-secure/limitations-with-wip.md b/windows/keep-secure/limitations-with-wip.md index dc2429d6b3..39aaeb8dc5 100644 --- a/windows/keep-secure/limitations-with-wip.md +++ b/windows/keep-secure/limitations-with-wip.md @@ -25,8 +25,8 @@ This table provides info about the most common problems you might encounter whil - - + + @@ -67,7 +67,7 @@ This table provides info about the most common problems you might encounter whil - + @@ -79,4 +79,7 @@ This table provides info about the most common problems you might encounter whil -
    Workaround
    Enterprise data on USB drives is tied to the device it was protected on.Data in the new location remains encrypted, but becomes inaccessible on other devices and for other users. For example, the file won't open or the file opens, but doesn't contain readable text.Your enterprise data on USB drives might be tied to the device it was protected on, based on your Azure RMS configuration.If you’re using Azure RMS: Authenticated users can open enterprise data on USB drives, on computers running the latest build from the Windows Insider Program.

    If you’re not using Azure RMS: Data in the new location remains encrypted, but becomes inaccessible on other devices and for other users. For example, the file won't open or the file opens, but doesn't contain readable text.

    Share files with fellow employees through enterprise file servers or enterprise cloud locations. If data must be shared via USB, employees can decrypt protected files, but it will be audited.

    We strongly recommend educating employees about how to limit or eliminate the need for this decryption.

    Redirected folders with Client Side Caching are not compatible with WIP. Apps might encounter access errors while attempting to read a cached, offline file.Migrate to use another file synchronization method, such as Work Folders or OneDrive for Business.Migrate to use another file synchronization method, such as Work Folders or OneDrive for Business.

    Note
    For more info about Work Folders and Offline Files, see the blog, [Work Folders and Offline Files support for Windows Information Protection](https://blogs.technet.microsoft.com/filecab/2016/08/29/work-folders-and-offline-files-support-for-windows-information-protection/). If you're having trouble opening files offline while using Offline Files and WIP, see the support article, [Can't open files offline when you use Offline Files and Windows Information Protection](https://support.microsoft.com/en-us/kb/3187045).

    You can't upload an enterprise file to a personal location using Microsoft Edge or Internet Explorer.Webpages that use ActiveX controls can potentially communicate with other outside processes that aren’t protected by using WIP. We recommend that you switch to using Microsoft Edge, the more secure and safer browser that prevents the use of ActiveX controls. We also recommend that you limit the usage of Internet Explorer 11 to only those line-of-business apps that require legacy technology.

    For more info, see [Out-of-date ActiveX control blocking](https://technet.microsoft.com/en-us/itpro/internet-explorer/ie11-deploy-guide/out-of-date-activex-control-blocking).

    + + +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). diff --git a/windows/keep-secure/maintain-applocker-policies.md b/windows/keep-secure/maintain-applocker-policies.md index 43bd39884e..69cf6d1483 100644 --- a/windows/keep-secure/maintain-applocker-policies.md +++ b/windows/keep-secure/maintain-applocker-policies.md @@ -47,7 +47,7 @@ Before modifying a policy, evaluate how the policy is currently implemented. For ### Step 2: Export the AppLocker policy from the GPO -Updating an AppLocker policy that is currently enforced in your production environment can have unintended results. Therefore, export the policy from the GPO and update the rule or rules by using AppLocker on your AppLocker reference or test computer. To prepare an AppLocker policy for modification, see [Export an AppLocker policy from a GPO](export-an-applocker-policy-from-a-gpo.md) +Updating an AppLocker policy that is currently enforced in your production environment can have unintended results. Therefore, export the policy from the GPO and update the rule or rules by using AppLocker on your AppLocker reference or test computer. To prepare an AppLocker policy for modification, see [Export an AppLocker policy from a GPO](export-an-applocker-policy-from-a-gpo.md). ### Step 3: Update the AppLocker policy by editing the appropriate AppLocker rule diff --git a/windows/keep-secure/manage-identity-verification-using-microsoft-passport.md b/windows/keep-secure/manage-identity-verification-using-microsoft-passport.md index d91d7bbb04..18f8399a2b 100644 --- a/windows/keep-secure/manage-identity-verification-using-microsoft-passport.md +++ b/windows/keep-secure/manage-identity-verification-using-microsoft-passport.md @@ -93,7 +93,7 @@ When identity providers such as Active Directory or Azure AD enroll a certificat [Introduction to Windows Hello](https://go.microsoft.com/fwlink/p/?LinkId=786649), video presentation on Microsoft Virtual Academy -[What's new in Active Directory Domain Services (AD DS) in Windows Server Technical Preview](https://go.microsoft.com/fwlink/p/?LinkId=708533) +[What's new in Active Directory Domain Services for Windows Server 2016](https://go.microsoft.com/fwlink/p/?LinkId=708533) [Windows Hello face authentication](https://go.microsoft.com/fwlink/p/?LinkId=626024) diff --git a/windows/keep-secure/manage-tpm-commands.md b/windows/keep-secure/manage-tpm-commands.md index c4b6611da4..71f3c2229e 100644 --- a/windows/keep-secure/manage-tpm-commands.md +++ b/windows/keep-secure/manage-tpm-commands.md @@ -13,44 +13,54 @@ author: brianlic-msft **Applies to** - Windows 10 +- Windows Server 2016 This topic for the IT professional describes how to manage which Trusted Platform Module (TPM) commands are available to domain users and to local users. -## - After a computer user takes ownership of the TPM, the TPM owner can limit which TPM commands can be run by creating a list of blocked TPM commands. The list can be created and applied to all computers in a domain by using Group Policy, or a list can be created for individual computers by using the TPM MMC. Because some hardware vendors might provide additional commands or the Trusted Computing Group may decide to add commands in the future, the TPM MMC also supports the ability to block new commands. -Domain administrators can configure a list of blocked TPM commands by using Group Policy. Local administrators cannot allow TPM commands that are blocked through Group Policy. For more information about this Group Policy setting, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#bkmk-tpmgp-clbtc). +Domain administrators can configure a list of blocked TPM commands by using Group Policy. Local administrators cannot allow TPM commands that are blocked through Group Policy. For more information about this Group Policy setting, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#configure-the-list-of-blocked-tpm-commands). Local administrators can block commands by using the TPM MMC, and commands on the default block list are also blocked unless the Group Policy settings are changed from the default settings. -Two policy settings control the enforcement which allows TPM commands to run. For more information about these policy settings, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#bkmk-tpmgp-idlb). +Two policy settings control the enforcement which allows TPM commands to run. For more information about these policy settings, see [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md#ignore-the-default-list-of-blocked-tpm-commands). The following procedures describe how to manage the TPM command lists. You must be a member of the local Administrators group. **To block TPM commands by using the Local Group Policy Editor** 1. Open the Local Group Policy Editor (gpedit.msc). If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. - - >**Note:**  Administrators with appropriate rights in a domain can configure a Group Policy Object (GPO) that can be applied through Active Directory Domain Services (AD DS). -   + + > [!NOTE] + > Administrators with appropriate rights in a domain can configure a Group Policy Object (GPO) that can be applied through Active Directory Domain Services (AD DS). + 2. In the console tree, under **Computer Configuration**, expand **Administrative Templates**, and then expand **System**. + 3. Under **System**, click **Trusted Platform Module Services**. + 4. In the details pane, double-click **Configure the list of blocked TPM commands**. + 5. Click **Enabled**, and then click **Show**. + 6. For each command that you want to block, click **Add**, enter the command number, and then click **OK**. - - >**Note:**  For a list of commands, see the [Trusted Platform Module (TPM) Specifications](https://go.microsoft.com/fwlink/p/?linkid=139770). -   + + > [!NOTE] + > For a list of commands, see links in the [TPM Specification](https://www.trustedcomputinggroup.org/tpm-main-specification/). + 7. After you have added numbers for each command that you want to block, click **OK** twice. + 8. Close the Local Group Policy Editor. **To block or allow TPM commands by using the TPM MMC** 1. Open the TPM MMC (tpm.msc) + 2. If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. + 3. In the console tree, click **Command Management**. A list of TPM commands is displayed. + 4. In the list, select a command that you want to block or allow. + 5. Under **Actions**, click **Block Selected Command** or **Allow Selected Command** as needed. If **Allow Selected Command** is unavailable, that command is currently blocked by Group Policy. **To block new commands** @@ -60,17 +70,19 @@ The following procedures describe how to manage the TPM command lists. You must If the **User Account Control** dialog box appears, confirm that the action it displays is what you want, and then click **Yes**. 2. In the console tree, click **Command Management**. A list of TPM commands is displayed. + 3. In the **Action** pane, click **Block New Command**. The **Block New Command** dialog box is displayed. + 4. In the **Command Number** text box, type the number of the new command that you want to block, and then click **OK**. The command number you entered is added to the blocked list. -## Use the TPM cmdlets +## Use the TPM cmdlets If you are using Windows PowerShell to manage your computers, you can also manage the TPM by using Windows PowerShell. To install the TPM cmdlets, type the following command: `dism /online /enable-feature /FeatureName:tpm-psh-cmdlets` -For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) +For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). -## Additional resources +## Related topics -For more info about TPM, see [Trusted Platform Module technology overview](trusted-platform-module-overview.md#bkmk-additionalresources). +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) diff --git a/windows/keep-secure/manage-tpm-lockout.md b/windows/keep-secure/manage-tpm-lockout.md index f59a117ee3..3f5e966157 100644 --- a/windows/keep-secure/manage-tpm-lockout.md +++ b/windows/keep-secure/manage-tpm-lockout.md @@ -12,10 +12,11 @@ author: brianlic-msft **Applies to** - Windows 10 +- Windows Server 2016 This topic for the IT professional describes how to manage the lockout feature for the Trusted Platform Module (TPM) in Windows. -## About TPM lockout +## About TPM lockout The TPM will lock itself to prevent tampering or malicious attacks. TPM lockout often lasts for a variable amount of time or until the computer is turned off. While the TPM is in lockout mode, it generally returns an error message when it receives commands that require an authorization value. One exception is that the TPM always allows the owner at least one attempt to reset the TPM lockout when it is in lockout mode. @@ -24,49 +25,58 @@ TPM ownership is taken upon first boot by Windows. By default, Windows does not In some cases, encryption keys are protected by a TPM by requiring a valid authorization value to access the key. A common example is configuring BitLocker Drive Encryption to use the TPM plus PIN key protector. In this scenario, the user must type the correct PIN during the boot process to access the volume encryption key protected by the TPM. To prevent malicious users or software from discovering authorization values, TPMs implement protection logic. The protection logic is designed to slow or stop responses from the TPM if it detects that an entity might be trying to guess authorization values. **TPM 1.2** + The industry standards from the Trusted Computing Group (TCG) specify that TPM manufacturers must implement some form of protection logic in TPM 1.2 and TPM 2.0 chips. TPM 1.2 devices implement different protection mechanisms and behavior. In general, the TPM chip takes exponentially longer to respond if incorrect authorization values are sent to the TPM. Some TPM chips may not store failed attempts over time. Other TPM chips may store every failed attempt indefinitely. Therefore, some users may experience increasingly longer delays when they mistype an authorization value that is sent to the TPM. This can prevent them from using the TPM for a period of time. **TPM 2.0** - TPM 2.0 devices have standardized lockout behavior which is configured by Windows. TPM 2.0 devices have a maximum count threshold and a healing time. Windows configures the maximum count to be 32 and the healing time to be 2 hours. This means that every continuous two hours of powered on operation without an event which increases the counter will cause the counter to decrease by 1. -If your TPM has entered lockout mode or is responding slowly to commands, you can reset the lockout value by using the following procedures. Resetting the TPM lockout requires the TPM owner’s authorization. This value is no longer retained by default starting with Windows 10 version 1607. +TPM 2.0 devices have standardized lockout behavior which is configured by Windows. TPM 2.0 devices have a maximum count threshold and a healing time. Windows configures the maximum count to be 32 and the healing time to be 2 hours. This means that every continuous two hours of powered on operation without an event which increases the counter will cause the counter to decrease by 1. + +If your TPM has entered lockout mode or is responding slowly to commands, you can reset the lockout value by using the following procedures. Resetting the TPM lockout requires the TPM owner’s authorization. This value is no longer retained by default starting with Windows 10 version 1607. ## Reset the TPM lockout by using the TPM MMC -**Note:** This procedure is only available if you have configured Windows to retain the TPM Owner Password. By default, this password is not available in Windows 10 starting with version 1607. -The following procedure explains the steps to reset the TPM lockout by using the TPM MMC. +> [!NOTE] +> This procedure is only available if you have configured Windows to retain the TPM Owner Password. By default, this password is not available in Windows 10 starting with version 1607. + +The following procedure explains the steps to reset the TPM lockout by using the TPM MMC. **To reset the TPM lockout** 1. Open the TPM MMC (tpm.msc). -2. In the **Action** pane, click **Reset TPM Lockout** to start the Reset TPM Lockout Wizard. -3. Choose one of the following methods to enter the TPM owner password: - - If you saved your TPM owner password to a .tpm file, click **I have the owner password file**, and then type the path to the file, or click **Browse** to navigate to the file location. - - If you want to manually enter your TPM owner password, click **I want to enter the owner password**, and then type the password in the text box provided. - >**Note:**  If you enabled BitLocker and your TPM at the same time, and you printed your BitLocker recovery password when you turned on BitLocker, your TPM owner password may have printed with it. -   +2. In the **Action** pane, click **Reset TPM Lockout** to start the Reset TPM Lockout Wizard. + +3. Choose one of the following methods to enter the TPM owner password: + + - If you saved your TPM owner password to a .tpm file, click **I have the owner password file**, and then type the path to the file, or click **Browse** to navigate to the file location. + + - If you want to manually enter your TPM owner password, click **I want to enter the owner password**, and then type the password in the text box provided. + + > [!NOTE] + > If you enabled BitLocker and your TPM at the same time, and you printed your BitLocker recovery password when you turned on BitLocker, your TPM owner password may have printed with it. + ## Use Group Policy to manage TPM lockout settings The TPM Group Policy settings in the following list are located at: **Computer Configuration\\Administrative Templates\\System\\Trusted Platform Module Services\\** -- [Standard User Lockout Duration](trusted-platform-module-services-group-policy-settings.md#bkmk-individual) +- [Standard User Lockout Duration](trusted-platform-module-services-group-policy-settings.md#standard-user-lockout-duration) This policy setting allows you to manage the duration in minutes for counting standard user authorization failures for TPM commands that require authorization. An authorization failure occurs each time a user sends a command to the TPM and receives an error message that indicates an authorization failure occurred. Authorization failures that are older than the duration you set are ignored. If the number of TPM commands with an authorization failure within the lockout duration equals a threshold, the user is prevented from sending commands to the TPM that require authorization. -- [Standard User Individual Lockout Threshold](trusted-platform-module-services-group-policy-settings.md#bkmk-tpmgp-suld) +- [Standard User Individual Lockout Threshold](trusted-platform-module-services-group-policy-settings.md#standard-user-individual-lockout-threshold) This policy setting allows you to manage the maximum number of authorization failures for the TPM for each user. This value is the maximum number of authorization failures that each user can have before the user is not allowed to send commands to the TPM that require authorization. If the number of authorization failures equals the duration that is set for the policy setting, the user is prevented from sending commands to the TPM that require authorization. -- [Standard User Total Lockout Threshold](trusted-platform-module-services-group-policy-settings.md#bkmk-total) - +- [Standard User Total Lockout Threshold](trusted-platform-module-services-group-policy-settings.md#standard-user-total-lockout-threshold) + This policy setting allows you to manage the maximum number of authorization failures for the TPM for all standard users. If the total number of authorization failures for all users equals the duration that is set for the policy, all users are prevented from sending commands to the TPM that require authorization. -For information about mitigating dictionary attacks that use the lockout settings, see [TPM fundamentals](tpm-fundamentals.md#bkmk-howtpmmitigates). +For information about mitigating dictionary attacks that use the lockout settings, see [TPM fundamentals](tpm-fundamentals.md#how-the-tpm-mitigates-dictionary-attacks). -## Use the TPM cmdlets +## Use the TPM cmdlets If you are using Windows PowerShell to manage your computers, you can also manage the TPM by using Windows PowerShell. To install the TPM cmdlets, type the following command: @@ -74,6 +84,6 @@ If you are using Windows PowerShell to manage your computers, you can also manag For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). -## Additional resources +## Related topics -For more info about TPM, see [TPM technology overview](trusted-platform-module-overview.md#bkmk-additionalresources). +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) diff --git a/windows/keep-secure/mandatory-settings-for-wip.md b/windows/keep-secure/mandatory-settings-for-wip.md index 0e1345c2ae..1c7ea0a9ff 100644 --- a/windows/keep-secure/mandatory-settings-for-wip.md +++ b/windows/keep-secure/mandatory-settings-for-wip.md @@ -17,8 +17,8 @@ localizationpriority: high This list provides all of the tasks and settings that are required for the operating system to turn on Windows Information Protection (WIP), formerly known as enterprise data protection (EDP), in your enterprise. ->**Important**
    -All sections provided for more info appear in either the [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) or [Create a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md), based on the tool you're using in your enterprise. +>[!IMPORTANT] +>All sections provided for more info appear in either the [Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) or [Create a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md), based on the tool you're using in your enterprise. |Task |Description | @@ -28,4 +28,7 @@ All sections provided for more info appear in either the [Create a Windows Infor |Specify your corporate identity. |You must specify your corporate identity, usually expressed as your primary Internet domain (for example, contoso.com). For more info about where this area is and what it means, see the **Define your enterprise-managed corporate identity** section of the policy creation topics. | |Specify your Enterprise Network Domain Names. |You must specify the DNS suffixes used in your environment. All traffic to the fully-qualified domains appearing in this list will be protected. For more info about where this area is and how to add your suffixes, see the table that appears in the **Choose where apps can access enterprise data** section of the policy creation topics. | |Specify your Enterprise IPv4 or IPv6 Ranges. |Specify the addresses for a valid IPv4 or IPv6 value range within your intranet. These addresses, used with your Enterprise Network Domain Names, define your corporate network boundaries. For more info about where this area is and what it means, see the table that appears in the **Define your enterprise-managed corporate identity** section of the policy creation topics. | -|Include your Data Recovery Agent (DRA) certificate. |This certificate makes sure that any of your WIP-encrypted data can be decrypted, even if the security keys are lost. For more info about where this area is and what it means, see the **Create and verify an Encrypting File System (EFS) DRA certificate** section of the policy creation topics. | \ No newline at end of file +|Include your Data Recovery Agent (DRA) certificate. |This certificate makes sure that any of your WIP-encrypted data can be decrypted, even if the security keys are lost. For more info about where this area is and what it means, see the **Create and verify an Encrypting File System (EFS) DRA certificate** section of the policy creation topics. | + +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). \ No newline at end of file diff --git a/windows/keep-secure/minimum-requirements-windows-defender-advanced-threat-protection.md b/windows/keep-secure/minimum-requirements-windows-defender-advanced-threat-protection.md index 0fd2edc0d3..55a3242e78 100644 --- a/windows/keep-secure/minimum-requirements-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/minimum-requirements-windows-defender-advanced-threat-protection.md @@ -61,7 +61,7 @@ Before you configure endpoints, the telemetry and diagnostics service must be en ### Telemetry and diagnostics settings You must ensure that the telemetry and diagnostics service is enabled on all the endpoints in your organization. -By default, this service is enabled, but it's good practice to check to ensure that you'll get telemetry from them. +By default, this service is enabled, but it's good practice to check to ensure that you'll get sensor data from them. **Use the command line to check the Windows 10 telemetry and diagnostics service startup type**: @@ -113,4 +113,4 @@ When Windows Defender is not the active antimalware in your organization and you ## Windows Defender Early Launch Antimalware (ELAM) driver is enabled If you're running Windows Defender as the primary antimalware product on your endpoints, the Windows Defender ATP agent will successfully onboard. -If you're running a third-party antimalware client and use Mobile Device Management solutions or System Center Configuration Manager (current branch) version 1606, you'll need to ensure that the Windows Defender ELAM driver is enabled. For more information on how to validate and enable the Windows Defender ELAM driver see, [Ensure the Windows Defender ELAM driver is enabled](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md#ensure-the-windows-defender-elam-driver-is-enabled). +If you're running a third-party antimalware client and use Mobile Device Management solutions or System Center Configuration Manager (current branch) version 1606, you'll need to ensure that the Windows Defender ELAM driver is enabled. For more information, see [Ensure that Windows Defender is not disabled by policy](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md#ensure-that-windows-defender-is-not-disabled-by-a-policy). diff --git a/windows/keep-secure/onboard-configure-windows-defender-advanced-threat-protection.md b/windows/keep-secure/onboard-configure-windows-defender-advanced-threat-protection.md index 9205bb0153..2a7a40abd6 100644 --- a/windows/keep-secure/onboard-configure-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/onboard-configure-windows-defender-advanced-threat-protection.md @@ -23,6 +23,7 @@ localizationpriority: high You need to onboard to Windows Defender ATP before you can use the service. +For more information, see [Onboard your Windows 10 endpoints to Windows Defender ATP](https://www.youtube.com/watch?v=JT7VGYfeRlA&feature=youtu.be). ## In this section Topic | Description diff --git a/windows/keep-secure/overview-create-wip-policy.md b/windows/keep-secure/overview-create-wip-policy.md index f0ae686b47..c3ad6bf5a3 100644 --- a/windows/keep-secure/overview-create-wip-policy.md +++ b/windows/keep-secure/overview-create-wip-policy.md @@ -23,4 +23,8 @@ Microsoft Intune and System Center Configuration Manager helps you create and de |------|------------| |[Create a Windows Information Protection (WIP) policy using Microsoft Intune](create-wip-policy-using-intune.md) |Intune helps you create and deploy your WIP policy, including letting you choose your protected apps, your WIP-protection level, and how to find enterprise data on the network. | |[Create and deploy a Windows Information Protection (WIP) policy using System Center Configuration Manager](create-wip-policy-using-sccm.md) |System Center Configuration Manager helps you create and deploy your WIP policy, including letting you choose your protected apps, your WIP-protection level, and how to find enterprise data on the network. | -|[Create and verify an Encrypting File System (EFS) Data Recovery Agent (DRA) certificate](create-and-verify-an-efs-dra-certificate.md) |Steps to create, verify, and perform a quick recovery using a Encrypting File System (EFS) Data Recovery Agent (DRA) certificate. | \ No newline at end of file +|[Create and verify an Encrypting File System (EFS) Data Recovery Agent (DRA) certificate](create-and-verify-an-efs-dra-certificate.md) |Steps to create, verify, and perform a quick recovery using a Encrypting File System (EFS) Data Recovery Agent (DRA) certificate. | +|[Determine the Enterprise Context of an app running in Windows Information Protection (WIP)](wip-app-enterprise-context.md) |Use the Task Manager to determine whether an app is considered work, personal or exempt by Windows Information Protection (WIP). | + +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). \ No newline at end of file diff --git a/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies.md b/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies.md index 31c04c1c61..cf75c935f9 100644 --- a/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies.md +++ b/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies.md @@ -48,13 +48,13 @@ BitLocker helps prevent unauthorized access to data on lost or stolen computers - Encrypting the entire Windows operating system volume on the hard disk. - Verifying the boot process integrity. -The trusted platform module (TPM)is a hardware component installed in many newer computers by the computer manufacturers. It works with BitLocker to help protect user data and to ensure that a computer has not been tampered with while the system was offline. +The trusted platform module (TPM) is a hardware component installed in many newer computers by the computer manufacturers. It works with BitLocker to help protect user data and to ensure that a computer has not been tampered with while the system was offline. In addition, BitLocker offers the option to lock the normal startup process until the user supplies a personal identification number (PIN) or inserts a removable USB device, such as a flash drive, that contains a startup key. These additional security measures provide multifactor authentication and assurance that the computer will not start or resume from hibernation until the correct PIN or startup key is presented. On computers that do not have a TPM version 1.2 or higher, you can still use BitLocker to encrypt the Windows operating system volume. However, this implementation will require the user to insert a USB startup key to start the computer or resume from hibernation, and does not provide the pre-startup system integrity verification offered by BitLocker working with a TPM. -**BitLocker key protectors** +### BitLocker key protectors | Key protector | Description | | - | - | @@ -65,7 +65,7 @@ On computers that do not have a TPM version 1.2 or higher, you can still use Bi | Recovery password | A 48-digit number used to unlock a volume when it is in recovery mode. Numbers can often be typed on a regular keyboard, if the numbers on the normal keyboard are not responding you can always use the function keys (F1-F10) to input the numbers.| | Recovery key| An encryption key stored on removable media that can be used for recovering data encrypted on a BitLocker volume.|   -**BitLocker authentication methods** +### BitLocker authentication methods | Authentication method | Requires user interaction | Description | | - | - | - | @@ -97,22 +97,9 @@ The protection differences provided by multifactor authentication methods cannot In your deployment plan, identify what TPM-based hardware platforms will be supported. Document the hardware models from an OEM of your choice, so that their configurations can be tested and supported. TPM hardware requires special consideration during all aspects of planning and deployment. -### TPM states of existence +### TPM 1.2 states and initialization -For each of the TPM states of existence, the TPM can transition into another state (for example, moving from disabled to enabled). The states are not exclusive. - -| State | Description | -| - | - | -| Enabled| Most features of the TPM are available.
    The TPM may be enabled and disabled multiple times within a boot period, if ownership is taken.| -| Disabled | The TPM restricts most operations. Exceptions include the ability to report TPM capabilities, extend and reset Platform Configuration Register (PCR) functions, and to perform hashing and basic initialization.
    The TPM may be enabled and disabled multiple times within a boot period.| -| Activated| Most features of the TPM are available. The TPM may be activated and deactivated only through physical presence which requires a reboot.| -| Deactivated| Similar to disabled, with the exception that ownership can be taken while deactivated and enabled. The TPM may be activated and deactivated only through physical presence which requires a reboot.| -| Owned| Most features of the TPM are available. The TPM has an endorsement key and storage root key, and the owner knows information about owner authorization data.| -| Un-owned| The TPM does not have a storage root key and may or may not have an endorsement key.| -  ->**Important:**  BitLocker cannot use the TPM until it is in the following state: enabled, activated, and owned. When the TPM is in this state and only when it is in this state, all operations are available. -  -The state of the TPM exists independent of the computer’s operating system. Once the TPM is enabled, activated, and owned, the state of the TPM is preserved if the operating system is reinstalled. +For TPM 1.2, there are multiple possible states. Windows 10 automatically initializes the TPM, which brings it to an enabled, activated, and owned state. This is the state that BitLocker requires before it can use the TPM. ### Endorsement keys diff --git a/windows/keep-secure/protect-enterprise-data-using-wip.md b/windows/keep-secure/protect-enterprise-data-using-wip.md index dc661d0dbd..a37553eb2c 100644 --- a/windows/keep-secure/protect-enterprise-data-using-wip.md +++ b/windows/keep-secure/protect-enterprise-data-using-wip.md @@ -93,7 +93,8 @@ WIP gives you a new way to manage data policy enforcement for apps and documents - **Helping prevent accidental data disclosure to removable media.** WIP helps prevent enterprise data from leaking when it's copied or transferred to removable media. For example, if an employee puts enterprise data on a Universal Serial Bus (USB) drive that also has personal data, the enterprise data remains encrypted while the personal data doesn’t. - **Remove access to enterprise data from enterprise-protected devices.** WIP gives admins the ability to revoke enterprise data from one or many MDM-enrolled devices, while leaving personal data alone. This is a benefit when an employee leaves your company, or in the case of a stolen device. After determining that the data access needs to be removed, you can use Microsoft Intune to unenroll the device so when it connects to the network, the user's encryption key for the device is revoked and the enterprise data becomes unreadable. - > **Note**
    System Center Configuration Manager also allows you to revoke enterprise data. However, it does it by performing a factory reset of the device. + >[!NOTE] + >For management of Surface devices it is recommended that you use the Current Branch of System Center Configuration Manager.
    System Center Configuration Manager also allows you to revoke enterprise data. However, it does it by performing a factory reset of the device. ## How WIP works WIP helps address your everyday challenges in the enterprise. Including: @@ -137,3 +138,7 @@ You can turn off all Windows Information Protection and restrictions, decrypting After deciding to use WIP in your enterprise, you need to: - [Create a Windows Information Protection (WIP) policy](overview-create-wip-policy.md) + + +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). diff --git a/windows/keep-secure/protect-high-value-assets-by-controlling-the-health-of-windows-10-based-devices.md b/windows/keep-secure/protect-high-value-assets-by-controlling-the-health-of-windows-10-based-devices.md index b2d8f3634a..ac0409286d 100644 --- a/windows/keep-secure/protect-high-value-assets-by-controlling-the-health-of-windows-10-based-devices.md +++ b/windows/keep-secure/protect-high-value-assets-by-controlling-the-health-of-windows-10-based-devices.md @@ -364,7 +364,7 @@ The following table details the hardware requirements for both virtualization-ba

    Support for the IOMMU in Windows 10 enhances system resiliency against DMA attacks.

    -

    Trusted Platform Module (TPM) 2.0

    +

    Trusted Platform Module (TPM)

    Required to support health attestation and necessary for additional key protections for virtualization-based security.

    @@ -455,7 +455,7 @@ The device health attestation solution involves different components that are TP ### Trusted Platform Module -*It’s all about TPM 2.0 and endorsement certificates.* This section describes how PCRs (that contain system configuration data), endorsement key (EK) (that act as an identity card for TPM), SRK (that protect keys) and AIKs (that can report platform state) are used for health attestation reporting. +This section describes how PCRs (that contain system configuration data), endorsement key (EK) (that act as an identity card for TPM), SRK (that protect keys) and AIKs (that can report platform state) are used for health attestation reporting. In a simplified manner, the TPM is a passive component with limited resources. It can calculate random numbers, RSA keys, decrypt short data, store hashes taken when booting the device. diff --git a/windows/keep-secure/protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md b/windows/keep-secure/protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md index aaf71600b1..f1f62943e3 100644 --- a/windows/keep-secure/protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md +++ b/windows/keep-secure/protecting-cluster-shared-volumes-and-storage-area-networks-with-bitlocker.md @@ -33,8 +33,7 @@ Windows PowerShell or the manage-bde command line interface is the preferred met >**Note:**  Mount points can be used to support remote mount points on SMB based network shares. This type of share is not supported for BitLocker encryption.   -For thinly provisioned storage, such as a Dynamic Virtual Hard Disk (VHD), BitLocker runs in Used Disk Space Only encryption mode. You cannot use the **manage-bde –WipeFreeSpace** command to transition the volume to full-volume encryption on these types of volumes. This occurs because Full -Encryption requires an end marker for the volume and dynamically expanding VHDs do not have a static end of volume marker. +For thinly provisioned storage, such as a Dynamic Virtual Hard Disk (VHD), BitLocker runs in Used Disk Space Only encryption mode. You cannot use the **manage-bde -WipeFreeSpace** command to transition the volume to full-volume encryption on these types of volumes. This is blocked in order to avoid expanding thinly provisioned volumes to occupy the entire backing store while wiping the unoccupied (free) space. ### Active Directory-based protector @@ -57,28 +56,22 @@ BitLocker encryption is available for disks before or after addition to a cluste 1. Install the BitLocker Drive Encryption feature if it is not already installed. 2. Ensure the disk is formatted NTFS and has a drive letter assigned to it. -3. Enable BitLocker on the volume using your choice of protector. A password protector is used in the Windows PowerShell script example below. - - ``` syntax - Enable-BitLocker E: -PasswordProtector -Password $pw - ``` - -4. Identify the name of the cluster with Windows PowerShell. +3. Identify the name of the cluster with Windows PowerShell. ``` syntax Get-Cluster ``` -5. Add an **ADAccountOrGroup**protector to the volume using the cluster name using a command such as: +4. Enable BitLocker on the volume of your choice with an **ADAccountOrGroup** protector, using the cluster name. For example, use a command such as: ``` syntax - Add-BitLockerProtector E: -ADAccountOrGroupProtector -ADAccountOrGroup CLUSTER$ + Enable-BitLocker E: -ADAccountOrGroupProtector -ADAccountOrGroup CLUSTER$ ``` - >**Warning:**  You must add an **ADAccountOrGroup** protector using the cluster CNO for a BitLocker enabled volume to either be shared in a Cluster Shared Volume or to failover properly in a traditional failover cluster. + >**Warning:**  You must configure an **ADAccountOrGroup** protector using the cluster CNO for a BitLocker enabled volume to either be shared in a Cluster Shared Volume or to fail over properly in a traditional failover cluster.   -6. Repeat steps 1-6 for each disk in the cluster. -7. Add the volume(s) to the cluster. +5. Repeat the preceding steps for each disk in the cluster. +6. Add the volume(s) to the cluster. ### Turning on BitLocker for a clustered disk using Windows PowerShell @@ -97,28 +90,26 @@ When the cluster service owns a disk resource already, it needs to be set into m Get-ClusterResource "Cluster Disk 1" | Suspend-ClusterResource ``` -4. Enable BitLocker on the volume using your choice of protector. A password protector is used in the example below. - - ``` syntax - Enable-BitLocker E: -PasswordProtector -Password $pw - ``` - -5. Identify the name of the cluster with Windows PowerShell +4. Identify the name of the cluster with Windows PowerShell. ``` syntax Get-Cluster ``` -6. Add an **ADAccountOrGroup** protector with the Cluster Name Object (CNO) to the volume using a command such as: +5. Enable BitLocker on the volume of your choice with an **ADAccountOrGroup** protector, using the cluster name. For example, use a command such as: ``` syntax - Add-BitLockerProtector E: -ADAccountOrGroupProtector -ADAccountOrGroup CLUSTER$ - + Enable-BitLocker E: -ADAccountOrGroupProtector -ADAccountOrGroup CLUSTER$ ``` - >**Warning:**  You must add an **ADAccountOrGroup** protector using the cluster CNO for a BitLocker enabled volume to either be shared in a Cluster Shared Volume or to failover properly in a traditional failover cluster. + >**Warning:**  You must configure an **ADAccountOrGroup** protector using the cluster CNO for a BitLocker enabled volume to either be shared in a Cluster Shared Volume or to fail over properly in a traditional failover cluster.   -7. Repeat steps 1-6 for each disk in the cluster. -8. Add the volume(s) to the cluster +6. Use **Resume-ClusterResource** to take the physical disk resource back out of maintenance mode: + + ``` syntax + Get-ClusterResource "Cluster Disk 1" | Resume-ClusterResource + ``` + +7. Repeat the preceding steps for each disk in the cluster. ### Adding BitLocker encrypted volumes to a cluster using manage-bde diff --git a/windows/keep-secure/recommended-network-definitions-for-wip.md b/windows/keep-secure/recommended-network-definitions-for-wip.md new file mode 100644 index 0000000000..bf9a7ac22a --- /dev/null +++ b/windows/keep-secure/recommended-network-definitions-for-wip.md @@ -0,0 +1,39 @@ +--- +title: Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP) (Windows 10) +description: Recommended URLs to add to your Enterprise Cloud Resources and Neutral Resources network settings, when used with Windows Information Protection (WIP). +keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and Neutral Resources, WIP and Enterprise Cloud Resources +ms.prod: w10 +ms.mktglfcycl: explore +ms.sitesec: library +ms.pagetype: security +localizationpriority: high +--- + +# Recommended Enterprise Cloud Resources and Neutral Resources network settings with Windows Information Protection (WIP) + +**Applies to:** + +- Windows 10, version 1607 +- Windows 10 Mobile + +>Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). + +We recommend that you add the following URLs to the Enterprise Cloud Resources and Neutral Resources network settings, when used with Windows Information Protection (WIP). + +## Recommended Enterprise Cloud Resources +This table includes the recommended URLs to add to your Enterprise Cloud Resources network setting, based on the apps you use in your organization. + +|If your organization uses... |Add these entries to your Enterprise Cloud Resources network setting
    (Replace "contoso" with your domain name(s) | +|-----------------------------|---------------------------------------------------------------------| +|Office 365 for Business |
    • contoso.sharepoint.com
    • contoso-my.sharepoint.com
    • contoso-files.sharepoint.com
    • tasks.office.com
    • protection.office.com
    • meet.lync.com
    • teams.microsoft.com
    | +|Yammer |
    • www.yammer.com
    • yammer.com
    • persona.yammer.com
    | +|Microsoft Dynamics |contoso.crm.dynamics.com | +|Visual Studio Online |contoso.visualstudio.com | +|Power BI |contoso.powerbi.com | + +## Recommended Neutral Resources +We recommended adding these URLs if you use the Neutral Resources network setting with Windows Information Protection (WIP). +
      +
    • login.microsoftonline.com
    • +
    • login.windows.net
    • +
    \ No newline at end of file diff --git a/windows/keep-secure/remove-computer-from-docking-station.md b/windows/keep-secure/remove-computer-from-docking-station.md index ee3b81a7d3..1823951ae4 100644 --- a/windows/keep-secure/remove-computer-from-docking-station.md +++ b/windows/keep-secure/remove-computer-from-docking-station.md @@ -1,5 +1,5 @@ --- -title: Remove computer from docking station (Windows 10) +title: Remove computer from docking station - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Remove computer from docking station security policy setting. ms.assetid: 229a385a-a862-4973-899a-413b1b5b6c30 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Remove computer from docking station +# Remove computer from docking station - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md b/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md index d2bbb021bb..fad266b5ee 100644 --- a/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md +++ b/windows/keep-secure/requirements-and-deployment-planning-guidelines-for-device-guard.md @@ -26,7 +26,7 @@ This article describes the following: The information in this article is intended for IT professionals, and provides a foundation for [Planning and getting started on the Device Guard deployment process](planning-and-getting-started-on-the-device-guard-deployment-process.md). ->**Note**  If you are an OEM, see the requirements information at [PC OEM requirements for Device Guard and Credential Guard](https://msdn.microsoft.com/library/windows/hardware/mt767514(v=vs.85).aspx). +>**Note**  If you are an OEM, see the requirements information at [PC OEM requirements for Device Guard and Credential Guard](https://msdn.microsoft.com/library/windows/hardware/mt767514.aspx). ## Hardware, firmware, and software requirements for Device Guard diff --git a/windows/keep-secure/requirements-for-deploying-applocker-policies.md b/windows/keep-secure/requirements-for-deploying-applocker-policies.md index e3b6c29aa7..874036e3b6 100644 --- a/windows/keep-secure/requirements-for-deploying-applocker-policies.md +++ b/windows/keep-secure/requirements-for-deploying-applocker-policies.md @@ -24,7 +24,7 @@ The following requirements must be met or addressed before you deploy your AppLo ### Deployment plan -An AppLocker policy deployment plan is the result of investigating which applications are required and necessary in your organization, which apps are optional, and which apps are forbidden. To develop this plan, see [AppLocker Design Guide](applocker-policies-design-guide.md). The following table is an example of the data you need to collect and the decisions you need to make to successfully deploy AppLocker policies on the supported operating systems (as listed in [Requirements to use AppLocker](requirements-to-use-applocker.md). +An AppLocker policy deployment plan is the result of investigating which applications are required and necessary in your organization, which apps are optional, and which apps are forbidden. To develop this plan, see [AppLocker Design Guide](applocker-policies-design-guide.md). The following table is an example of the data you need to collect and the decisions you need to make to successfully deploy AppLocker policies on the supported operating systems (as listed in [Requirements to use AppLocker](requirements-to-use-applocker.md)). diff --git a/windows/keep-secure/requirements-to-use-applocker.md b/windows/keep-secure/requirements-to-use-applocker.md index 60ac319a63..81fe0f76ba 100644 --- a/windows/keep-secure/requirements-to-use-applocker.md +++ b/windows/keep-secure/requirements-to-use-applocker.md @@ -33,12 +33,10 @@ The following table show the on which operating systems AppLocker features are s | Version | Can be configured | Can be enforced | Available rules | Notes | | - | - | - | - | - | -| Windows 10| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| You can use the [AppLocker CSP](http://msdn.microsoft.com/library/windows/hardware/dn920019.aspx) to configure AppLocker policies on any edition of Windows 10. You can only manage AppLocker with Group Policy on devices running Windows 10 Enterprise and Windows Server 2016. | -| Windows Server 2012 R2| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| | +| Windows 10| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| You can use the [AppLocker CSP](http://msdn.microsoft.com/library/windows/hardware/dn920019.aspx) to configure AppLocker policies on any edition of Windows 10. You can only manage AppLocker with Group Policy on devices running Windows 10 Enterprise, Windows 10 Education, and Windows Server 2016. | +| Windows Server 2016
    Windows Server 2012 R2
    Windows Server 2012| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| | | Windows 8.1| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL| Only the Enterprise edition supports AppLocker| | Windows RT 8.1| No| No| N/A|| -| Windows Server 2012 Standard| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL|| -| Windows Server 2012 Datacenter| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL|| | Windows 8 Pro| No| No| N/A|| | Windows 8 Enterprise| Yes| Yes| Packaged apps
    Executable
    Windows Installer
    Script
    DLL|| | Windows RT| No| No| N/A| | diff --git a/windows/keep-secure/restore-files-and-directories.md b/windows/keep-secure/restore-files-and-directories.md index e8bb7e6f85..bf78f4ff41 100644 --- a/windows/keep-secure/restore-files-and-directories.md +++ b/windows/keep-secure/restore-files-and-directories.md @@ -1,5 +1,5 @@ --- -title: Restore files and directories (Windows 10) +title: Restore files and directories - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Restore files and directories security policy setting. ms.assetid: c673c0fa-6f49-4edd-8c1f-c5e8513f701d ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Restore files and directories +# Restore files and directories - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/security-technologies.md b/windows/keep-secure/security-technologies.md index 8bd5183126..6b82a956c7 100644 --- a/windows/keep-secure/security-technologies.md +++ b/windows/keep-secure/security-technologies.md @@ -11,21 +11,23 @@ author: brianlic-msft # Security technologies -Learn more about the different security technologies that are available in Windows 10 and Windows 10 Mobile. +As an IT professional, you can use these topics to learn more about the different security technologies that are available in Windows 10 and Windows 10 Mobile. -| Topic | Description | +| Section | Description | |-|-| | [Access control](access-control.md) | Describes access control in Windows, which is the process of authorizing users, groups, and computers to access objects on the network or computer. Key concepts that make up access control are permissions, ownership of objects, inheritance of permissions, user rights, and object auditing. | -| [AppLocker](applocker-overview.md)| This topic provides a description of AppLocker and can help you decide if your organization can benefit from deploying AppLocker application control policies. AppLocker helps you control which apps and files users can run. These include executable files, scripts, Windows Installer files, dynamic-link libraries (DLLs), packaged apps, and packaged app installers.| -| [BitLocker](bitlocker-overview.md)| This topic provides a high-level overview of BitLocker, including a list of system requirements, practical applications, and deprecated features.| -| [Encrypted Hard Drive](encrypted-hard-drive.md) | Encrypted Hard Drive uses the rapid encryption that is provided by BitLocker Drive Encryption to enhance data security and management.| -| [Security auditing](security-auditing-overview.md)| Topics in this section are for IT professionals and describes the security auditing features in Windows and how your organization can benefit from using these technologies to enhance the security and manageability of your network.| -| [Security policy settings](security-policy-settings.md)| This reference topic describes the common scenarios, architecture, and processes for security settings.| -| [Trusted Platform Module](trusted-platform-module-overview.md)| This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. The topic provides links to other resources about the TPM.| -| [User Account Control](user-account-control-overview.md)| User Account Control (UAC) helps prevent malware from damaging a PC and helps organizations deploy a better-managed desktop. With UAC, apps and tasks always run in the security context of a non-administrator account, unless an administrator specifically authorizes administrator-level access to the system. UAC can block the automatic installation of unauthorized apps and prevent inadvertent changes to system settings.| -| [Windows Defender Advanced Threat Protection](windows-defender-advanced-threat-protection.md)| Windows Defender Advanced Threat Protection (Windows Defender ATP) is an out-of-the-box Windows enterprise security service that enables enterprise cybersecurity teams to detect and respond to advanced threats on their networks.| -| [Windows Defender in Windows 10](windows-defender-in-windows-10.md)| This topic provides an overview of Windows Defender, including a list of system requirements and new features.| -| [Windows Firewall with Advanced Security](windows-firewall-with-advanced-security.md) | Windows Firewall with Advanced Security is an important part of a layered security model. By providing host-based, two-way network traffic filtering for a device, Windows Firewall with Advanced Security blocks unauthorized network traffic flowing into or out of the local device. | +| [AppLocker](applocker-overview.md)| Describes AppLocker, and can help you decide if your organization can benefit from deploying AppLocker application control policies. AppLocker helps you control which apps and files users can run. These include executable files, scripts, Windows Installer files, dynamic-link libraries (DLLs), packaged apps, and packaged app installers.| +| [BitLocker](bitlocker-overview.md)| Provides information about BitLocker, which is a data protection feature that integrates with the operating system and addresses the threats of data theft or exposure from lost, stolen, or inappropriately decommissioned computers. | +| [Encrypted Hard Drive](encrypted-hard-drive.md) | Provides information about Encrypted Hard Drive, which uses the rapid encryption that is provided by BitLocker Drive Encryption to enhance data security and management.| +| [Security auditing](security-auditing-overview.md)| Describes how the IT professional can use the security auditing features in Windows, and how organizations can benefit from using these technologies, to enhance the security and manageability of networks.| +| [Security policy settings](security-policy-settings.md)| Provides a collection of reference topics that describe the common scenarios, architecture, and processes for security settings.| +| [Smart Cards](smart-card-windows-smart-card-technical-reference.md) | Provides a collection of references topics about smart cards, which are tamper-resistant portable storage devices that can enhance the security of tasks such as authenticating clients, signing code, securing e-mail, and signing in with a Windows domain account. | +| [Trusted Platform Module](trusted-platform-module-top-node.md)| Provides links to information about the Trusted Platform Module (TPM), which is a secure crypto-processor that helps you with actions such as generating, storing, and limiting the use of cryptographic keys. | +| [User Account Control](user-account-control-overview.md)| Provides information about User Account Control (UAC), which helps prevent malware from damaging a PC and helps organizations deploy a better-managed desktop. UAC can help block the automatic installation of unauthorized apps and prevent inadvertent changes to system settings.| +| [Virtual Smart Cards](virtual-smart-card-overview.md) | Provides information about deploying and managing virtual smart cards, which are functionally similar to physical smart cards and appear in Windows as smart cards that are always-inserted. Virtual smart cards use the Trusted Platform Module (TPM) chip that is available on computers in many organizations, rather than requiring the use of a separate physical smart card and reader. | +| [Windows Defender Advanced Threat Protection](windows-defender-advanced-threat-protection.md)| Provides information about Windows Defender Advanced Threat Protection (Windows Defender ATP), an out-of-the-box Windows enterprise security service that enables enterprise cybersecurity teams to detect and respond to advanced threats on their networks.| +| [Windows Defender in Windows 10](windows-defender-in-windows-10.md)| Provides information about Windows Defender, a built-in antimalware solution that helps provide security and antimalware management for desktops, portable computers, and servers. Includes a list of system requirements and new features.| +| [Windows Firewall with Advanced Security](windows-firewall-with-advanced-security.md) | Provides information about Windows Firewall with Advanced Security, which is an important part of a layered security model. By providing host-based, two-way network traffic filtering for a device, Windows Firewall with Advanced Security blocks unauthorized network traffic flowing into or out of the local device. |     diff --git a/windows/keep-secure/select-types-of-rules-to-create.md b/windows/keep-secure/select-types-of-rules-to-create.md index 00ae11caf5..35f8ffd6b2 100644 --- a/windows/keep-secure/select-types-of-rules-to-create.md +++ b/windows/keep-secure/select-types-of-rules-to-create.md @@ -55,7 +55,7 @@ In the Woodgrove Bank example, the line-of-business app for the Bank Tellers bus ### Determine how to allow system files to run -Because AppLocker rules build a list of allowed apps, a rule or rules must be created to allow all Windows files to run. AppLocker provides a means to ensure system files are properly considered in your rule collection by generating the default rules for each rule collection. You can use the default rules as a template when creating your own rules. However, these rules are only meant to function as a starter policy when you are first testing AppLocker rules so that the system files in the Windows folders will be allowed to run. When a default rule is created, it is denoted with "(Default rule)" in its name as it appears in the rule collection. +Because AppLocker rules build a list of allowed apps, a rule or rules must be created to allow all Windows files to run. AppLocker provides a means to ensure system files are properly considered in your rule collection by generating the default rules for each rule collection. You can use the default rules (listed in [AppLocker default rules](working-with-applocker-rules.md#applocker-default-rules)) as a template when creating your own rules. However, these rules are only meant to function as a starter policy when you are first testing AppLocker rules so that the system files in the Windows folders will be allowed to run. When a default rule is created, it is denoted with "(Default rule)" in its name as it appears in the rule collection. You can also create a rule for the system files based on the path condition. In the preceding example, for the Bank Tellers group, all Windows files reside under C:\\Windows and can be defined with the path rule condition type. This will permit access to these files whenever updates are applied and the files change. If you require additional application security, you might need to modify the rules created from the built-in default rule collection. For example, the default rule to allow all users to run .exe files in the Windows folder is based on a path condition that allows all files within the Windows folder to run. The Windows folder contains a Temp subfolder to which the Users group is given the following permissions: diff --git a/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md new file mode 100644 index 0000000000..6c8623a564 --- /dev/null +++ b/windows/keep-secure/service-status-windows-defender-advanced-threat-protection.md @@ -0,0 +1,54 @@ +--- +title: Check the Windows Defender ATP service status +description: Check Windows Defender ATP service status, see if the service is experiencing issues and review previous issues that have been resolved. +keywords: dashboard, service, issues, service status, current issues, status history, summary of impact, preliminary root cause, resolution, resolution time, expected resolution time +search.product: eADQiWindows 10XVcnh +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: security +author: mjcaparas +localizationpriority: high +--- + +# Check the Windows Defender Advanced Threat Protection service status + +**Applies to:** + +- Windows 10 Enterprise +- Windows 10 Education +- Windows 10 Pro +- Windows 10 Pro Education +- Windows Defender Advanced Threat Protection (Windows Defender ATP) + +The **Service health** provides information on the current status of the Window Defender ATP service. You'll be able to verify that the service status is healthy or if there are current issues. If there are issues, you'll see details related to the issue such as when the issue was detected, what the preliminary root cause is, and the expected resolution time. + +You'll also see information on historical issues that have been resolved and details such as the date and time when the issue was resolved. When there are no issues on the service, you'll see a healthy status. + +You can view details on the service status by clicking the tile from the **Dashboard** or selecting the **Service health** menu from the navigation pane. + +The **Service health** details page has the following tabs: + +- **Current issues** +- **Status History** + +## Current issues +The **Current issues** tab shows the current state of the Windows Defender ATP service. When the service is running smoothly a healthy service status is shown. If there are issues seen, the following service details are shown to help you gain better insight about the issue: + +- Date and time for when the issue was detected +- A short description of the issue +- Update time +- Summary of impact +- Preliminary root cause +- Next steps +- Expected resolution time + +Updates on the progress of an issue is reflected on the page as the issue gets resolved. You'll see updates on information such as an updated estimate resolution time or next steps. + +When an issue is resolved, it gets recorded in the **Status history** tab. + +## Status history +The **Status history** tab reflects all the historical issues that were seen and resolved. You'll see details of the resolved issues along with the other information that were included while it was being resolved. + +### Related topic +- [View the Windows Defender Advanced Threat Protection Dashboard](dashboard-windows-defender-advanced-threat-protection.md) diff --git a/windows/keep-secure/shut-down-the-system.md b/windows/keep-secure/shut-down-the-system.md index 0c4f6b24a7..4cde410c2d 100644 --- a/windows/keep-secure/shut-down-the-system.md +++ b/windows/keep-secure/shut-down-the-system.md @@ -1,5 +1,5 @@ --- -title: Shut down the system (Windows 10) +title: Shut down the system - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management, and security considerations for the Shut down the system security policy setting. ms.assetid: c8e8f890-153a-401e-a957-ba6a130304bf ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Shut down the system +# Shut down the system - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/shutdown-clear-virtual-memory-pagefile.md b/windows/keep-secure/shutdown-clear-virtual-memory-pagefile.md index 83e27c9e00..348aa4eb2d 100644 --- a/windows/keep-secure/shutdown-clear-virtual-memory-pagefile.md +++ b/windows/keep-secure/shutdown-clear-virtual-memory-pagefile.md @@ -1,5 +1,5 @@ --- -title: Shutdown Clear virtual memory pagefile (Windows 10) +title: Shutdown Clear virtual memory pagefile - security policy setting (Windows 10) description: Describes the best practices, location, values, policy management and security considerations for the Shutdown Clear virtual memory pagefile security policy setting. ms.assetid: 31400078-6c56-4891-a6df-6dfb403c4bc9 ms.prod: w10 @@ -9,7 +9,7 @@ ms.pagetype: security author: brianlic-msft --- -# Shutdown: Clear virtual memory pagefile +# Shutdown: Clear virtual memory pagefile - security policy setting **Applies to** - Windows 10 diff --git a/windows/keep-secure/smart-card-architecture.md b/windows/keep-secure/smart-card-architecture.md index 84d38741cf..41b2dcc225 100644 --- a/windows/keep-secure/smart-card-architecture.md +++ b/windows/keep-secure/smart-card-architecture.md @@ -74,7 +74,7 @@ Credential providers must be registered on a computer running Windows, and they ## Smart card subsystem architecture -Vendors provide smart cards and smart card readers, and in many cases the vendors are different for the smart card and the smart card reader. Drivers for smart card readers are written to the [Personal Computer/Smart Card (PC/SC) standard](http://www.pcscworkgroup.com/specifications/overview.php). Each smart card must have a Credential Service Provider (CSP) that uses the CryptoAPI interfaces to enable cryptographic operations, and the WinSCard APIs to enable communications with smart card hardware. +Vendors provide smart cards and smart card readers, and in many cases the vendors are different for the smart card and the smart card reader. Drivers for smart card readers are written to the [Personal Computer/Smart Card (PC/SC) standard](https://www.pcscworkgroup.com/). Each smart card must have a Credential Service Provider (CSP) that uses the CryptoAPI interfaces to enable cryptographic operations, and the WinSCard APIs to enable communications with smart card hardware. ### Base CSP and smart card minidriver architecture diff --git a/windows/keep-secure/smart-card-smart-cards-for-windows-service.md b/windows/keep-secure/smart-card-smart-cards-for-windows-service.md index a0c0edd3dc..1c4f17a7f2 100644 --- a/windows/keep-secure/smart-card-smart-cards-for-windows-service.md +++ b/windows/keep-secure/smart-card-smart-cards-for-windows-service.md @@ -14,7 +14,7 @@ Applies To: Windows 10, Windows Server 2016 This topic for the IT professional and smart card developers describes how the Smart Cards for Windows service (formerly called Smart Card Resource Manager) manages readers and application interactions. -The Smart Cards for Windows service provides the basic infrastructure for all other smart card components as it manages smart card readers and application interactions on the computer. It is fully compliant with the specifications set by the PC/SC Workgroup. For information about these specifications, see the [PC/SC Workgroup Specifications Overview](http://www.pcscworkgroup.com/specifications/overview.php). +The Smart Cards for Windows service provides the basic infrastructure for all other smart card components as it manages smart card readers and application interactions on the computer. It is fully compliant with the specifications set by the PC/SC Workgroup. For information about these specifications, see the [PC/SC Workgroup Specifications website](https://www.pcscworkgroup.com/). The Smart Cards for Windows service runs in the context of a local service, and it is implemented as a shared service of the services host (svchost) process. The Smart Cards for Windows service, Scardsvr, has the following service description: diff --git a/windows/keep-secure/switch-pcr-banks-on-tpm-2-0-devices.md b/windows/keep-secure/switch-pcr-banks-on-tpm-2-0-devices.md index b60489c882..993c5d1aea 100644 --- a/windows/keep-secure/switch-pcr-banks-on-tpm-2-0-devices.md +++ b/windows/keep-secure/switch-pcr-banks-on-tpm-2-0-devices.md @@ -1,6 +1,6 @@ --- -title: Switch PCR banks on TPM 2.0 devices (Windows 10) -description: A Platform Configuration Register (PCR) is a memory location in the TPM that has some unique properties. +title: Understanding PCR banks on TPM 2.0 devices (Windows 10) +description: This topic for the IT professional provides background about what happens when you switch PCR banks on TPM 2.0 devices. ms.assetid: 743FCCCB-99A9-4636-8F48-9ECB3A3D10DE ms.prod: w10 ms.mktglfcycl: deploy @@ -9,10 +9,13 @@ ms.pagetype: security author: brianlic-msft --- -# Switch PCR banks on TPM 2.0 devices +# Understanding PCR banks on TPM 2.0 devices **Applies to** - Windows 10 +- Windows Server 2016 + +For steps on how to switch PCR banks on TPM 2.0 devices on your PC, you should contact your OEM or UEFI vendor. This topic provides background about what happens when you switch PCR banks on TPM 2.0 devices. A Platform Configuration Register (PCR) is a memory location in the TPM that has some unique properties. The size of the value that can be stored in a PCR is determined by the size of a digest generated by an associated hashing algorithm. A SHA-1 PCR can store 20 bytes – the size of a SHA-1 digest. Multiple PCRs associated with the same hashing algorithm are referred to as a PCR bank. @@ -21,7 +24,7 @@ PCR\[N\] = HASHalg( PCR\[N\] || ArgumentOfExtend ) The existing value is concatenated with the argument of the TPM Extend operation. The resulting concatenation is then used as input to the associated hashing algorithm, which computes a digest of the input. This computed digest becomes the new value of the PCR. -The [TCG PC Client Specific Platform TPM Profile for TPM 2.0](https://go.microsoft.com/fwlink/p/?LinkId=746577) defines the inclusion of at least one PCR bank with 24 registers. The only way to reset the first 16 PCRs is to reset the TPM itself. This restriction helps ensure that the value of those PCRs can only be modified via the TPM Extend operation. +The [TCG PC Client Platform TPM Profile Specification](http://www.trustedcomputinggroup.org/pc-client-platform-tpm-profile-ptp-specification/) defines the inclusion of at least one PCR bank with 24 registers. The only way to reset the first 16 PCRs is to reset the TPM itself. This restriction helps ensure that the value of those PCRs can only be modified via the TPM Extend operation. Some TPM PCRs are used as checksums of log events. The log events are extended in the TPM as the events occur. Later, an auditor can validate the logs by computing the expected PCR values from the log and comparing them to the PCR values of the TPM. Since the first 16 TPM PCRs cannot be modified arbitrarily, a match between an expected PCR value in that range and the actual TPM PCR value provides assurance of an unmodified log. @@ -29,8 +32,7 @@ Some TPM PCRs are used as checksums of log events. The log events are extended i To bind the use of a TPM based key to a certain state of the PC, the key can be sealed to an expected set of PCR values. For instance, PCRs 0 through 7 have a well-defined value after the boot process – when the OS is loaded. When the hardware, firmware, or boot loader of the machine changes, the change can be detected in the PCR values. Windows 10 uses this capability to make certain cryptographic keys only available at certain times during the boot process. For instance, the BitLocker key can be used at a certain point in the boot, but not before or after. -It is important to note that this binding to PCR values also includes the hashing algorithm used for the PCR. For instance, a key can be bound to a specific value of the SHA-1 PCR\[12\], if using SHA-256 PCR banks, even with the -same system configuration otherwise, the PCR values will not match. +It is important to note that this binding to PCR values also includes the hashing algorithm used for the PCR. For instance, a key can be bound to a specific value of the SHA-1 PCR\[12\], if using SHA-256 PCR banks, even with the same system configuration. Otherwise, the PCR values will not match. ## What happens when PCR banks are switched? @@ -41,3 +43,7 @@ As a result, if the currently used PCR bank is switched all keys that have been ## What can I do to switch PCRs when BitLocker is already active? Before switching PCR banks you should suspend or disable BitLocker – or have your recovery key ready. For steps on how to switch PCR banks on your PC, you should contact your OEM or UEFI vendor. + +## Related topics + +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) diff --git a/windows/keep-secure/testing-scenarios-for-wip.md b/windows/keep-secure/testing-scenarios-for-wip.md index 45737291cf..cca0a2fa52 100644 --- a/windows/keep-secure/testing-scenarios-for-wip.md +++ b/windows/keep-secure/testing-scenarios-for-wip.md @@ -163,4 +163,7 @@ You can try any of the processes included in these scenarios, but you should foc -
    \ No newline at end of file + + +>[!NOTE] +>Help to make this topic better by providing us with edits, additions, and feedback. For info about how to contribute to this topic, see [Contributing to TechNet content](https://github.com/Microsoft/windows-itpro-docs/blob/master/CONTRIBUTING.md). \ No newline at end of file diff --git a/windows/keep-secure/tools-to-use-with-applocker.md b/windows/keep-secure/tools-to-use-with-applocker.md index 5d2d69ff81..a5346774ab 100644 --- a/windows/keep-secure/tools-to-use-with-applocker.md +++ b/windows/keep-secure/tools-to-use-with-applocker.md @@ -24,7 +24,7 @@ The following tools can help you administer the application control policies cre - **Generate Default Rules tool** - AppLocker includes default rules for each rule collection accessed through the Local Security Policy snap-in. These rules are intended to help ensure that the files that are required for Windows to operate properly are allowed in an AppLocker rule collection. For info about how to use this tool, see [Create AppLocker default rules](create-applocker-default-rules.md). + AppLocker includes default rules for each rule collection accessed through the Local Security Policy snap-in. These rules are intended to help ensure that the files that are required for Windows to operate properly are allowed in an AppLocker rule collection. For info about how to use this tool, see [Create AppLocker default rules](create-applocker-default-rules.md). For a list of the default rules, see [AppLocker default rules](working-with-applocker-rules.md#applocker-default-rules). - **Automatically Generate AppLocker Rules wizard** diff --git a/windows/keep-secure/tpm-fundamentals.md b/windows/keep-secure/tpm-fundamentals.md index 92a6fe9b1d..efb080c89c 100644 --- a/windows/keep-secure/tpm-fundamentals.md +++ b/windows/keep-secure/tpm-fundamentals.md @@ -13,6 +13,7 @@ author: brianlic-msft **Applies to** - Windows 10 +- Windows Server 2016 This topic for the IT professional provides a description of the components of the Trusted Platform Module (TPM 1.2 and TPM 2.0) and explains how they are used to mitigate dictionary attacks. @@ -30,109 +31,65 @@ For info about which versions of Windows support which versions of the TPM, see The following sections provide an overview of the technologies that support the TPM: -- [TPM-based Virtual Smart Card](#bkmk-vsc) -- [Measured Boot with support for attestation](#bkmk-measuredboot) -- [Automated provisioning and management of the TPM](#bkmk-autoprov) -- [TPM-based certificate storage](#bkmk-tpmcs) -- [Physical presence interface](#bkmk-physicalpresenceinterface) -- [TPM Cmdlets](#bkmk-tpmcmdlets) -- [TPM Owner Authorization Value](#bkmk-authvalue) -- [States of existence in a TPM](#bkmk-stateex) -- [Endorsement keys](#bkmk-endorsementkeys) -- [TPM Key Attestation](#bkmk-ketattestation) -- [How the TPM mitigates dictionary attacks](#bkmk-howtpmmitigates) -- [How do I check the state of my TPM?](#bkmk-checkstate) -- [What can I do if my TPM is in reduced functionality mode?](#bkmk-fixrfm) +- [Measured Boot with support for attestation](#measured-boot-with-support-for-attestation) + +- [TPM-based Virtual Smart Card](#tpm-based-virtual-smart-card) + +- [TPM-based certificate storage](#tpm-based-certificate-storage) + +- [TPM Cmdlets](#tpm-cmdlets) + +- [Physical presence interface](#physical-presence-interface) + +- [TPM 1.2 states and initialization](#tpm-12-states-and-initialization) + +- [Endorsement keys](#endorsement-keys) + +- [TPM Key Attestation](#key-attestation) + +- [How the TPM mitigates dictionary attacks](#how-the-tpm-mitigates-dictionary-attacks) The following topic describes the TPM Services that can be controlled centrally by using Group Policy settings: -[Trusted Platform Module Services Group Policy Settings](trusted-platform-module-services-group-policy-settings.md) +[TPM Group Policy Settings](trusted-platform-module-services-group-policy-settings.md). -## Automated provisioning and management of the TPM - -TPM provisioning can be streamlined to make it easier to deploy systems that are ready for BitLocker and other TPM-dependent features. These enhancements include simplifying the TPM state model to report **Ready**, **Ready with reduced functionality**, or **Not ready**. You can also automatically provision TPMs in the **Ready** state, remote provisioning to remove the requirement for the physical presence of a technician for the initial deployment. In addition, the TPM stack is available in the Windows Preinstallation Environment (Windows PE). - -A number of management settings have been added for easier management and configuration of the TPM through Group Policy. The primary new settings include Active Directory-based backup of TPM owner authentication, the level of owner authentication that should be stored locally on the TPM, and the software-based TPM lockout settings for standard users. For more info about backing up owner authentication to Windows Server 2008 R2 AD DS domains, see [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md). - -## Measured Boot with support for attestation +## Measured Boot with support for attestation The Measured Boot feature provides antimalware software with a trusted (resistant to spoofing and tampering) log of all boot components. Antimalware software can use the log to determine whether components that ran before it are trustworthy versus infected with malware. It can also send the Measured Boot logs to a remote server for evaluation. The remote server can initiate remediation actions by interacting with software on the client or through out-of-band mechanisms, as appropriate. -## TPM-based Virtual Smart Card +## TPM-based Virtual Smart Card -The Virtual Smart Card emulates the functionality of traditional smart cards, but Virtual Smart Cards use the TPM chip that is available on an organization’s computers, rather than requiring the use of a separate physical smart card and reader. This greatly reduces the management and deployment cost of smart cards in an enterprise. To the end user, the Virtual Smart Card is always available on the computer. If a user needs to use more than one computer, a +The Virtual Smart Card emulates the functionality of traditional smart cards, but Virtual Smart Cards use the TPM chip that is available on an organization’s computers, rather than requiring the use of a separate physical smart card and reader. This greatly reduces the management and deployment cost of smart cards in an enterprise. To the end user, the Virtual Smart Card is always available on the computer. If a user needs to use more than one computer, a Virtual Smart Card must be issued to the user for each computer. A computer that is shared among multiple users can host multiple Virtual Smart Cards, one for each user. -## TPM-based certificate storage +## TPM-based certificate storage The TPM can be used to protect certificates and RSA keys. The TPM key storage provider (KSP) provides easy, convenient use of the TPM as a way of strongly protecting private keys. The TPM KSP can be used to generate keys when an organization enrolls for certificates, and the KSP is managed by templates in the UI. The TPM can also be used to protect certificates that are imported from an outside source. TPM-based certificates can be used exactly as standard certificates with the added functionality that the certificate can never leave the TPM from which the keys were generated. The TPM can now be used for crypto-operations through Cryptography API: Next Generation (CNG). For more info, see [Cryptography API: Next Generation](http://msdn.microsoft.com/library/windows/desktop/aa376210.aspx). -## TPM Owner Authorization Value - -For Windows 8 a change to how the TPM owner authorization value is stored in AD DS was implemented in the AD DS schema. The TPM owner authorization value is now stored in a separate object which is linked to the Computer object. -This value was stored as a property in the Computer object itself for the default Windows Server 2008 R2 schemas. Windows Server 2012 domain controllers have the default schema to backup TPM owner authorization information in the separate object. If you are not upgrading your domain controller to Windows Server 2012 you need to extend the schema to support this change. If Active Directory backup of the TPM owner authorization value is enabled in a Windows Server 2008 R2 environment without extending the schema, the TPM provisioning will fail and the TPM will remain in a Not Ready state for computers running Windows 8. - -If your computer is not being joined to a domain the TPM owner authorization value will be stored in the local computer registry. Using BitLocker to encrypt the operating system drive will protect the owner authorization value from being disclosed when the computer is at rest, but there is a risk that a malicious user could obtain the TPM owner authorization value when the computer is unlocked. Therefore, we recommend that in this situation you configure your computer to automatically lock after 30 seconds of inactivity. If automatic locking is not used, then you should consider removing full owner authorization from the computer registry. - -**Registry information** - -Registry key: HKEY\_LOCAL\_MACHINE\\SOFTWARE\\Policies\\Microsoft\\TPM -DWORD: OSManagedAuthLevel - -| Value Data | Setting | -| - | - | -| 0 | None| -| 2 | Delegated| -| 4 | Full| -  ->**Note:**  If the operating system managed TPM authentication setting is changed from "Full" to "Delegated" the full TPM owner authorization value will be regenerated and any copies of the original TPM owner authorization value will be invalid. If you are backing up the TPM owner authorization value to AD DS, the new owner authorization value will be automatically backed up to AD DS when it is changed. -  -## TPM Cmdlets +## TPM Cmdlets If you are using PowerShell to script and manage your computers, you can now manage the TPM using Windows PowerShell as well. To install the TPM cmdlets use the following command: `dism /online /enable-feature /FeatureName:tpm-psh-cmdlets` -For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -## Physical presence interface +For details about the individual cmdlets, see [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx). -The TCG specifications for TPMs require physical presence to perform some TPM administrative functions, such as turning on and turning off the TPM. Physical presence means a person must physically interact with the system and the -TPM interface to confirm or reject changes to TPM status. This typically cannot be automated with scripts or other automation tools unless the individual OEM supplies them. Here are some are examples of TPM administrative tasks that require physical presence: +## Physical presence interface -- Activating the TPM -- Clearing the existing owner information from the TPM without the owner’s password -- Deactivating the TPM -- Disabling the TPM temporarily without the owner’s password +For TPM 1.2, the TCG specifications for TPMs require physical presence (typically, pressing a key) for turning the TPM on, turning it off, or clearing it. These actions typically cannot be automated with scripts or other automation tools unless the individual OEM supplies them. -## States of existence in a TPM +## TPM 1.2 states and initialization -For each of these TPM 1.2 states of existence, the TPM can transition into another state (for example, moving from disabled to enabled). The states are not exclusive. +For TPM 1.2, there are multiple possible states. Windows 10 automatically initializes the TPM, which brings it to an enabled, activated, and owned state. -These states of existence do not apply for Trusted Platform Module 2.0 because it cannot be turned off from within the operating system environment. +## Endorsement keys -| State | Description | -| - | - | -| Enabled| Most features of the TPM are available.
    The TPM can be enabled and disabled multiple times within a boot period, if ownership is taken.| -| Disabled| The TPM restricts most operations. Exceptions include the ability to report TPM capabilities, extend and reset Platform Configuration Register (PCR) functions, and perform hashing and basic initialization.
    The TPM can be enabled and disabled multiple times within a start-up period. | -| Activated| Most features of the TPM are available. The TPM can be activated and deactivated only through physical presence, which requires a restart.| -| Deactivated| Similar to the disabled state, with the exception that ownership can be taken when the TPM is deactivated and enabled. The TPM can be activated and deactivated only through physical presence, which requires a restart.| -| Owned| Most features of the TPM are available. The TPM has an endorsement key and storage root key, and the owner knows information about owner authorization data.| -| Unowned| The TPM does not have a storage root key, and it may or may not have an endorsement key.| -  ->**Important:**  Applications cannot use the TPM until the state is enabled, activated, and owned. All operations are available only when the TPM is in this state. -  -The state of the TPM exists independently of the computer’s operating system. When the TPM is enabled, activated, and owned, the state of the TPM is preserved if the operating system is reinstalled. +For a TPM to be usable by a trusted application, it must contain an endorsement key, which is an RSA key pair. The private half of the key pair is held inside the TPM, and it is never revealed or accessible outside the TPM. -## Endorsement keys - -For a TPM to be usable by a trusted application, it must contain an endorsement key, which is an RSA key pair. The private half of the key pair is held inside the TPM, and it is never revealed or accessible outside the TPM. If the -TPM does not contain an endorsement key, the application might cause the TPM to generate one automatically as part of the setup. -An endorsement key can be created at various points in the TPM’s lifecycle, but it needs to be created only once for the lifetime of the TPM. The existence of an endorsement key is a requirement before TPM ownership can be taken. - -## Key attestation +## Key attestation TPM key attestation allows a certification authority to verify that a private key is actually protected by a TPM and that the TPM is one that the certification authority trusts. Endorsement keys which have been proven valid can be used to bind the user identity to a device. Moreover, the user certificate with a TPM attested key provides higher security assurance backed up by the non-exportability, anti-hammering, and isolation of keys provided by a TPM. -## How the TPM mitigates dictionary attacks +## How the TPM mitigates dictionary attacks When a TPM processes a command, it does so in a protected environment, for example, a dedicated microcontroller on a discrete chip or a special hardware-protected mode on the main CPU. A TPM can be used to create a cryptographic key that is not disclosed outside the TPM, but is able to be used in the TPM after the correct authorization value is provided. @@ -144,8 +101,9 @@ Because many entities can use the TPM, a single authorization success cannot res TPM 2.0 has well defined dictionary attack logic behavior. This is in contrast to TPM 1.2 for which the dictionary attack logic was set by the manufacturer, and the logic varied widely throughout the industry. ->**Warning:**  For the purposes of this topic, Windows 8 Certified Hardware also pertains to Windows 8.1 systems. The following references to “Windows” include these supported Windows versions. -  +> [!WARNING] +> For the purposes of this topic, Windows 8 Certified Hardware also pertains to Windows 8.1 systems. The following references to “Windows” include these supported Windows versions. + For Windows 8 Certified Hardware systems with TPM 2.0, the TPM is configured by Windows to lock after 32 authorization failures and to forget one authorization failure every two hours. This means that a user could quickly attempt to use a key with the wrong authorization value 32 times. For each of the 32 attempts, the TPM records if the authorization value was correct or not. This inadvertently causes the TPM to enter a locked state after 32 failed attempts. Attempts to use a key with an authorization value for the next two hours would not return success or failure; instead the response indicates that the TPM is locked. After two hours, one authorization failure is forgotten and the number of authorization failures remembered by the TPM drops to 31, so the TPM leaves the locked state and returns to normal operation. With the correct authorization value, keys could be used normally if no authorization failures occur during the next two hours. If a period of 64 hours elapses with no authorization failures, the TPM does not remember any authorization failures, and 32 failed attempts could occur again. @@ -165,35 +123,15 @@ For example, when BitLocker is used with a TPM plus PIN configuration, it needs The Windows TPM-based smart card, which is a virtual smart card, can be configured to allow sign in to the system. In contrast with physical smart cards, the sign-in process uses a TPM-based key with an authorization value. The following list shows the advantages of virtual smart cards: -Physical smart cards can enforce lockout for only the physical smart card PIN, and they can reset the lockout after the correct PIN is entered. With a virtual smart card, the TPM’s dictionary attack is not reset after a successful authentication. The allowed number of authorization failures before the TPM enters lockout includes many factors. +- Physical smart cards can enforce lockout for only the physical smart card PIN, and they can reset the lockout after the correct PIN is entered. With a virtual smart card, the TPM’s dictionary attack is not reset after a successful authentication. The allowed number of authorization failures before the TPM enters lockout includes many factors. -Hardware manufacturers and software developers have the option to use the security features of the TPM to meet their requirements. +- Hardware manufacturers and software developers have the option to use the security features of the TPM to meet their requirements. -The intent of selecting 32 failures as the lock-out threshold is so users rarely lock the TPM (even when learning to type new passwords or if they frequently lock and unlock their computers). If users lock the TPM, they must to wait two hours or use some other credential to sign in, such as a user name and password. +- The intent of selecting 32 failures as the lock-out threshold is so users rarely lock the TPM (even when learning to type new passwords or if they frequently lock and unlock their computers). If users lock the TPM, they must to wait two hours or use some other credential to sign in, such as a user name and password. -## How do I check the state of my TPM? +## Related topics -You can check the state of the TPM on a PC by running the Trusted Platform Module snap-in (tpm.msc). The **Status** heading tells you the state of your TPM. The TPM can be in one of the following states: **Ready for use**, **Ready for use, with reduced functionality**, and **Not ready for use**. To take advantage of most of the TPM features in Windows 10, the TPM must be **Ready for use**. - -## What can I do if my TPM is in reduced functionality mode? - -If your TPM is in reduced functionality mode, some features that rely on the TPM will not function correctly. This is most often caused by doing a clean installation of Windows 10 on a device where Windows 8.1, Windows 8, or Windows 7 had previously been installed on the same hardware. If your TPM is in reduced functionality mode, the Status heading in the Trusted Platform Module snap-in shows **The TPM is ready for use, with reduced functionality**. -You can fix this by clearing the TPM. - -**To clear the TPM** - -1. Open the Trusted Platform Module snap-in (tpm.msc). -2. Click **Clear TPM**, and then click **Restart.** -3. When the PC is restarting, you might be prompted to press a button on the keyboard to clear the TPM. -4. After the PC restarts, your TPM will be automatically prepared for use by Windows 10. - ->**Note:**  Clearing the TPM causes you to lose all TPM keys and data protected by those keys, such as a virtual smart card. You should not perform this procedure on a device you do not own, such as a work or school PC, without being instructed to do so by your IT administrator. -  -## Additional resources - -- [Trusted Platform Module Technology Overview](trusted-platform-module-overview.md) -- [Trusted Platform Module Services Group Policy Settings](trusted-platform-module-services-group-policy-settings.md) +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) - [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -- [Schema Extensions for Windows Server 2008 R2 to support AD DS backup of TPM information from Windows 8 clients](ad-ds-schema-extensions-to-support-tpm-backup.md) -- [TPM WMI providers](https://go.microsoft.com/fwlink/p/?LinkId=93478) -- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](http://technet.microsoft.com/library/jj592683.aspx) +- [TPM WMI providers](https://msdn.microsoft.com/library/aa376476.aspx) +- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](https://technet.microsoft.com/itpro/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies#bkmk-tpmconfigurations) \ No newline at end of file diff --git a/windows/keep-secure/tpm-recommendations.md b/windows/keep-secure/tpm-recommendations.md index 0b34d5a9a8..20d05b68d2 100644 --- a/windows/keep-secure/tpm-recommendations.md +++ b/windows/keep-secure/tpm-recommendations.md @@ -12,26 +12,21 @@ author: brianlic-msft # TPM recommendations +**Applies to** + **Applies to** - Windows 10 -- Windows 10 Mobile -- Windows Server 2016 -- Windows 10 IoT Core (IoT Core) +- Windows Server 2016 This topic provides recommendations for Trusted Platform Module (TPM) technology for Windows 10. -## Overview +For a basic feature description of TPM, see the [Trusted Platform Module Technology Overview](trusted-platform-module-overview.md). -Trusted Platform Module (TPM) technology is designed to provide hardware-based, security-related functions. It has a security-related crypto-processor that is designed to carry out cryptographic operations in a variety of devices and form factors. It includes multiple physical security mechanisms to help prevent malicious software from tampering with the security functions of the TPM. Some of the key advantages of using TPM technology are that you can: +## TPM design and implementation -1. Generate, store, use, and protected cryptographic keys, -2. Use TPM technology for platform device authentication by using a unique endorsement key (EK), and -3. Help enhance platform integrity by taking and storing security measurements. - -The most common TPM functions are used for system integrity measurements and for key creation and use. During the boot process of a system, the boot code that is loaded (including firmware and the operating system components) can be measured and recorded in the TPM. The integrity measurements can be used as evidence for how a system started and to make sure that a TPM-based key was used only when the correct software was used to boot the system. Traditionally, TPMs have been discrete chips soldered to a computer’s motherboard. Such implementations allow the computer’s original equipment manufacturer (OEM) to evaluate and certify the TPM separate from the rest of the system. Although discrete TPM implementations are still common, they can be problematic for integrated devices that are small or have low power consumption. Some newer TPM implementations integrate TPM functionality into the same chipset as other platform components while still providing logical separation similar to discrete TPM chips. -TPMs are passive: they receive commands and return responses. To realize the full benefit of a TPM, the OEM must carefully integrate system hardware and firmware with the TPM to send it commands and react to its responses. TPMs were originally designed to provide security and privacy benefits to a platform’s owner and users, but newer versions can provide security and privacy benefits to the system hardware itself. Before it can be used for advanced scenarios, however, a TPM must be provisioned. Windows 10 automatically provisions a TPM, but if the user reinstalls the operating system, he or she may need to tell the operating system to explicitly provision the TPM again before it can use all the TPM’s features. +TPMs are passive: they receive commands and return responses. To realize the full benefit of a TPM, the OEM must carefully integrate system hardware and firmware with the TPM to send it commands and react to its responses. TPMs were originally designed to provide security and privacy benefits to a platform’s owner and users, but newer versions can provide security and privacy benefits to the system hardware itself. Before it can be used for advanced scenarios, however, a TPM must be provisioned. Windows 10 automatically provisions a TPM, but if the user is planning to reinstall the operating system, he or she may need to clear the TPM before reinstalling so that Windows can take full advantage of the TPM. The Trusted Computing Group (TCG) is the nonprofit organization that publishes and maintains the TPM specification. The TCG exists to develop, define, and promote vendor-neutral, global industry standards that support a hardware-based root of trust for interoperable trusted computing platforms. The TCG also publishes the TPM specification as the international standard ISO/IEC 11889, using the Publicly Available Specification Submission Process that the Joint Technical Committee 1 defines between the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC). @@ -39,9 +34,6 @@ OEMs implement the TPM as a component in a trusted computing platform, such as a The TCG designed the TPM as a low-cost, mass-market security solution that addresses the requirements of different customer segments. There are variations in the security properties of different TPM implementations just as there are variations in customer and regulatory requirements for different sectors. In public-sector procurement, for example, some governments have clearly defined security requirements for TPMs whereas others do not. ->**Note:**  Some information relates to pre-released product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. - - ## TPM 1.2 vs. 2.0 comparison From an industry standard, Microsoft has been an industry leader in moving and standardizing on TPM 2.0, which has many key realized benefits across algorithms, crypto, hierarchy, root keys, authorization and NV RAM. @@ -51,16 +43,23 @@ From an industry standard, Microsoft has been an industry leader in moving and s TPM 2.0 products and systems have important security advantages over TPM 1.2, including: - The TPM 1.2 spec only allows for the use of RSA and the SHA-1 hashing algorithm. + - For security reasons, some entities are moving away from SHA-1. Notably, NIST has required many federal agencies to move to SHA-256 as of 2014, and technology leaders, including Microsoft and Google have announced they will remove support for SHA-1 based signing or certificates in 2017. + - TPM 2.0 **enables greater crypto agility** by being more flexible with respect to cryptographic algorithms. - - TPM 2.0 supports SHA-256 as well as ECC, the latter being critical to drive signing and key generation performance. + - TPM 2.0 supports newer algorithms, which can improve drive signing and key generation performance. For the full list of supported algorithms, see the [TCG Algorithm Registry](http://www.trustedcomputinggroup.org/tcg-algorithm-registry/). Some TPMs do not support all algorithms. + + - For the list of algorithms that Windows supports in the platform cryptographic storage provider, see [CNG Cryptographic Algorithm Providers](https://msdn.microsoft.com/library/windows/desktop/bb931354(v=vs.85).aspx). + - TPM 2.0 achieved ISO standardization ([ISO/IEC 11889:2015](http://blogs.microsoft.com/cybertrust/2015/06/29/governments-recognize-the-importance-of-tpm-2-0-through-iso-adoption/)). + - Use of TPM 2.0 may help eliminate the need for OEMs to make exception to standard configurations for certain countries and regions. - TPM 2.0 offers a more **consistent experience** across different implementations. - TPM 1.2 implementations vary in policy settings. This may result in support issues as lockout policies vary. + - TPM 2.0 lockout policy is configured by Windows, ensuring a consistent dictionary attack protection guarantee. - While TPM 1.2 parts are discrete silicon components which are typically soldered on the motherboard, TPM 2.0 is available as a **discrete (dTPM)** silicon component in a single semiconductor package, an **integrated** component incorporated in one or more semiconductor packages - alongside other logic units in the same package(s) - and as a **firmware (fTPM)** based component running in a trusted execution environment (TEE) on a general purpose SoC. @@ -69,22 +68,24 @@ TPM 2.0 products and systems have important security advantages over TPM 1.2, in There are three implementation options for TPMs: -- Discrete TPM chip as a separate component in its own semiconductor package -- Integrated TPM solution, using dedicated hardware integrated into one or more semiconductor packages alongside, but logically separate from, other components +- Discrete TPM chip as a separate component in its own semiconductor package + +- Integrated TPM solution, using dedicated hardware integrated into one or more semiconductor packages alongside, but logically separate from, other components + - Firmware TPM solution, running the TPM in firmware in a Trusted Execution mode of a general purpose computation unit -Windows uses any compatible TPM in the same way. Microsoft does not take a position on which way a TPM should be implemented and there is a wide ecosystem of available TPM solutions which should suit all needs. +Windows uses any compatible TPM in the same way. Microsoft does not take a position on which way a TPM should be implemented and there is a wide ecosystem of available TPM solutions which should suit all needs. -## Is there any importance for TPM for consumer? +## Is there any importance for TPM for consumers? -For end consumers, TPM is behind the scenes but is still very relevant. TPM is used for Windows Hello, Windows Hello for Business and in the future, will be a components of many other key security features in Windows. TPM secures the PIN, helps encrypt passwords, and builds on our overall Windows 10 experience story for security as a critical pillar. Using Windows on a system with a TPM enables a deeper and broader level of security coverage. +For end consumers, TPM is behind the scenes but is still very relevant. TPM is used for Windows Hello, Windows Hello for Business and in the future, will be a component of many other key security features in Windows. TPM secures the PIN, helps encrypt passwords, and builds on our overall Windows 10 experience story for security as a critical pillar. Using Windows on a system with a TPM enables a deeper and broader level of security coverage. ## TPM 2.0 Compliance for Windows 10 ### Windows 10 for desktop editions (Home, Pro, Enterprise, and Education) -- Since July 28, 2016, all new device models, lines or series (or if you are updating the hardware configuration of a existing model, line or series with a major update, such as CPU, graphic cards) must implement and enable by default TPM 2.0 (details in section 3.7, https://msdn.microsoft.com/library/windows/hardware/dn915086(v=vs.85).aspx) - +- Since July 28, 2016, all new device models, lines or series (or if you are updating the hardware configuration of a existing model, line or series with a major update, such as CPU, graphic cards) must implement and enable by default TPM 2.0 (details in section 3.7 of the [Minimum hardware requirements](https://msdn.microsoft.com/library/windows/hardware/dn915086(v=vs.85).aspx) page). + ### IoT Core - TPM is optional on IoT Core. @@ -95,212 +96,28 @@ For end consumers, TPM is behind the scenes but is still very relevant. TPM is ## TPM and Windows Features -The following table defines which Windows features require TPM support. Some features are not applicable to Windows 7/8/8.1 and are noted accordingly. +The following table defines which Windows features require TPM support. - ------- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
    Windows FeaturesWindows 7/8/8.1 TPM 1.2Windows 10 TPM 1.2Windows 10 TPM 2.0Details
    Measured BootRequiredRequiredRequiredMeasured boot requires TPM 1.2 or 2.0 and UEFI Secure boot.
    BitlockerRequiredRequiredRequiredTPM 1.2 or later required or a removable USB memory device such as a flash drive.
    Passport: Domain AADJ Joinn/aRequiredRequiredSupports both versions of TPM, but requires TPM with HMAC and EK certificate for key attestation support.
    Passport: MSA or Local Accountn/aRequiredRequiredTPM 2.0 is required with HMAC and EK certificate for key attestation support.
    Device Encryptionn/aNot RequiredRequiredTPM 2.0 is required for all InstantGo devices.
    Device Guard / Configurable Code Integrityn/aOptionalOptional
    Credential Guardn/aRequiredRequiredFor Windows 10, version 1511, TPM 1.2 or 2.0 is highly recommended. If you don't have a TPM installed, Credential Guard will still be enabled, but the keys used to encrypt Credential Guard will not be protected by the TPM.
    Device Health Attestationn/aRequiredRequired
    Windows Hellon/aNot RequiredNot Required
    UEFI Secure BootNot RequiredNot RequiredNot Required
    Platform Key Storage providern/aRequiredRequired
    Virtual Smart Cardn/aRequiredRequired
    Certificate storage (TPM bound)n/aRequiredRequired
    -  -## Chipset options for TPM 2.0 -There is a vibrant ecosystem of TPM manufacturers. -### Discrete TPM - --- - - - - - - - - - - -
    Supplier
      -
    • Infineon
    • -
    • Nuvoton
    • -
    • Atmel
    • -
    • NationZ
    • -
    • ST Micro
    • -
    -  -### Integrated TPM - --- - - - - - - - - - - - - -
    SupplierChipset
    Intel
      -
    • Atom (CloverTrail) -
    • Baytrail
    • -
    • Braswell
    • -
    • 4th generation Core (Haswell)
    • -
    • 5th generation Core (Broadwell)
    • -
    • 6th generation Core (Skylake)
    • -
    • 7th generation Core (Kaby Lake)
    • -
    +| Windows Features | Windows 10 TPM 1.2 | Windows 10 TPM 2.0 | Details | +|-------------------------|----------------------|----------------------|----------| +| Measured Boot | Required | Required | Measured boot requires TPM 1.2 or 2.0 and UEFI Secure boot. | +| Bitlocker | Required | Required | TPM 1.2 or later required or a removable USB memory device such as a flash drive. | +| Passport: Domain AADJ Join | Required | Required | Supports both versions of TPM, but requires TPM with HMAC and EK certificate for key attestation support. | +| Passport: MSA or Local Account | Required | Required | TPM 2.0 is required with HMAC and EK certificate for key attestation support. | +| Device Encryption | Not Applicable | Required | TPM 2.0 is required for all InstantGo devices. | +| Device Guard / Configurable Code Integrity | See next column | Recommended | | +| Credential Guard | Required | Required | For Windows 10, version 1511, TPM 1.2 or 2.0 is highly recommended. If you don't have a TPM installed, Credential Guard will still be enabled, but the keys used to encrypt Credential Guard will not be protected by the TPM. | +| Device Health Attestation | Required | Required | | +| Windows Hello | Not Required | Recommended | | +| UEFI Secure Boot | Not Required | Recommended | | +| Platform Key Storage provider | Required | Required | | +| Virtual Smart Card | Required | Required | | +| Certificate storage (TPM bound) | Required | Required | | + +## OEM Status on TPM 2.0 system availability and certified parts -### Firmware TPM - ---- - - - - - - - - - - - - - - - - -
    SupplierChipset
    AMD
      -
    • Mullins
    • -
    • Beema
    • -
    • Carrizo
    • -
    Qualcomm
      -
    • MSM8994
    • -
    • MSM8992
    • -
    • MSM8952
    • -
    • MSM8909
    • -
    • MSM8208
    • -
    -  -## OEM Feedback and Status on TPM 2.0 system availability +Government customers and enterprise customers in regulated industries may have acquisition standards that require use of common certified TPM parts. As a result, OEMs, who provide the devices, may be required to use only certified TPM components on their commercial class systems. For more information, contact your OEM or hardware vendor. -### Certified TPM parts +## Related topics -Government customers and enterprise customers in regulated industries may have acquisition standards that require use of common certified TPM parts. As a result, OEMs, who provide the devices, may be required to use only certified TPM components on their commercial class systems. Discrete TPM 2.0 vendors have completion certification. - -### Windows 7 32-bit support - -Even though Windows 7 shipped before the TPM 2.0 spec or products existed, Microsoft backported TPM 2.0 support to Windows 7 64-bit and released it in summer 2014 as a downloadable Windows hotfix for UEFI based Windows 7 systems. Microsoft is not currently planning to backport support to Windows 7 32-bit support. +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) \ No newline at end of file diff --git a/windows/keep-secure/troubleshoot-onboarding-windows-defender-advanced-threat-protection.md b/windows/keep-secure/troubleshoot-onboarding-windows-defender-advanced-threat-protection.md index e3c1d51f68..e95197be01 100644 --- a/windows/keep-secure/troubleshoot-onboarding-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/troubleshoot-onboarding-windows-defender-advanced-threat-protection.md @@ -1,7 +1,7 @@ --- title: Troubleshoot Windows Defender ATP onboarding issues description: Troubleshoot issues that might arise during the onboarding of endpoints or to the Windows Defender ATP service. -keywords: troubleshoot onboarding, onboarding issues, event viewer, data collection and preview builds, telemetry and diagnostics +keywords: troubleshoot onboarding, onboarding issues, event viewer, data collection and preview builds, sensor data and diagnostics search.product: eADQiWindows 10XVcnh ms.prod: w10 ms.mktglfcycl: deploy @@ -65,7 +65,7 @@ Event ID | Error Type | Resolution steps 5 | Offboarding data was found but couldn't be deleted | Check the permissions on the registry, specifically ```HKLM\SOFTWARE\Policies\Microsoft\Windows Advanced Threat Protection```. 10 | Onboarding data couldn't be written to registry | Check the permissions on the registry, specifically
    ```HKLM\SOFTWARE\Policies\Microsoft\Windows Advanced Threat```.
    Verify that the script was ran as an administrator. 15 | Failed to start SENSE service |Check the service status (```sc query sense``` command). Make sure it's not in an intermediate state (*'Pending_Stopped'*, *'Pending_Running'*) and try to run the script again (with administrator rights). -15 | Failed to start SENSE service | If the message of the error is: System error 577 has occurred. You need to enable the Windows Defender ELAM driver, see [Ensure the Windows Defender ELAM driver is enabled](#ensure-the-windows-defender-elam-driver-is-enabled) for instructions. +15 | Failed to start SENSE service | If the message of the error is: System error 577 has occurred. You need to enable the Windows Defender ELAM driver, see [Ensure that Windows Defender is not disabled by a policy](#ensure-that-windows-defender-is-not-disabled-by-a-policy) for instructions. 30 | The script failed to wait for the service to start running | The service could have taken more time to start or has encountered errors while trying to start. For more information on events and errors related to SENSE, see [Review events and errors on endpoints with Event viewer](event-error-codes-windows-defender-advanced-threat-protection.md). 35 | The script failed to find needed onboarding status registry value | When the SENSE service starts for the first time, it writes onboarding status to the registry location
    ```HKLM\SOFTWARE\Microsoft\Windows Advanced Threat Protection\Status```.
    The script failed to find it after several seconds. You can manually test it and check if it's there. For more information on events and errors related to SENSE, see [Review events and errors on endpoints with Event viewer](event-error-codes-windows-defender-advanced-threat-protection.md). 40 | SENSE service onboarding status is not set to **1** | The SENSE service has failed to onboard properly. For more information on events and errors related to SENSE, see [Review events and errors on endpoints with Event viewer](event-error-codes-windows-defender-advanced-threat-protection.md). @@ -124,7 +124,7 @@ If the deployment tools used does not indicate an error in the onboarding proces - [Ensure the telemetry and diagnostics service is enabled](#ensure-the-telemetry-and-diagnostics-service-is-enabled) - [Ensure the service is set to start](#ensure-the-service-is-set-to-start) - [Ensure the endpoint has an Internet connection](#ensure-the-endpoint-has-an-internet-connection) -- [Ensure the Windows Defender ELAM driver is enabled](#ensure-the-windows-defender-elam-driver-is-enabled) +- [Ensure that Windows Defender is not disabled by a policy](#ensure-that-windows-defender-is-not-disabled-by-a-policy) ### View agent onboarding errors in the endpoint event log @@ -214,7 +214,7 @@ First, you should check that the service is set to start automatically when Wind ### Ensure the endpoint has an Internet connection -The Window Defender ATP sensor requires Microsoft Windows HTTP (WinHTTP) to report telemetry and communicate with the Windows Defender ATP service. +The Window Defender ATP sensor requires Microsoft Windows HTTP (WinHTTP) to report sensor data and communicate with the Windows Defender ATP service. WinHTTP is independent of the Internet browsing proxy settings and other user context applications and must be able to detect the proxy servers that are available in your particular environment. @@ -222,98 +222,31 @@ To ensure that sensor has service connectivity, follow the steps described in th If the verification fails and your environment is using a proxy to connect to the Internet, then follow the steps described in [Configure proxy and Internet connectivity settings](configure-proxy-internet-windows-defender-advanced-threat-protection.md) topic. -### Ensure the Windows Defender ELAM driver is enabled -If your endpoints are running a third-party antimalware client, the Windows Defender ATP agent needs the Windows Defender Early Launch Antimalware (ELAM) driver to be enabled. +### Ensure that Windows Defender is not disabled by a policy +**Problem**: The Windows Defender ATP service does not start after onboarding. -**Check the ELAM driver status:** +**Symptom**: Onboarding successfully completes, but you see error 577 when trying to start the service. -1. Open a command-line prompt on the endpoint: +**Solution**: If your endpoints are running a third-party antimalware client, the Windows Defender ATP agent needs the Windows Defender Early Launch Antimalware (ELAM) driver to be enabled. You must ensure that it's not disabled in system policy. - a. Click **Start**, type **cmd**, and select **Command prompt**. +- Depending on the tool that you use to implement policies, you'll need to verify that the following Windows Defender policies are set to ```0``` or that the settings are cleared: -2. Enter the following command, and press Enter: - ``` - sc qc WdBoot - ``` - If the ELAM driver is enabled, the output will be: + - ```DisableAntiSpyware``` + - ```DisableAntiVirus``` - ``` - [SC] QueryServiceConfig SUCCESS + For example, in Group Policy: - SERVICE_NAME: WdBoot - TYPE : 1 KERNEL_DRIVER - START_TYPE : 0 BOOT_START - ERROR_CONTROL : 1 NORMAL - BINARY_PATH_NAME : \SystemRoot\system32\drivers\WdBoot.sys - LOAD_ORDER_GROUP : Early-Launch - TAG : 0 - DISPLAY_NAME : Windows Defender Boot Driver - DEPENDENCIES : - SERVICE_START_NAME : - ``` - If the ELAM driver is disabled the output will be: - ``` - [SC] QueryServiceConfig SUCCESS + ``` + ``` +- After clearing the policy, run the onboarding steps again on the endpoint. - SERVICE_NAME: WdBoot - TYPE : 1 KERNEL_DRIVER - START_TYPE : 0 DEMAND_START - ERROR_CONTROL : 1 NORMAL - BINARY_PATH_NAME : \SystemRoot\system32\drivers\WdBoot.sys - LOAD_ORDER_GROUP : _Early-Launch - TAG : 0 - DISPLAY_NAME : Windows Defender Boot Driver - DEPENDENCIES : - SERVICE_START_NAME : - ``` +- You can also check the following registry key values to verify that the policy is disabled: -#### Enable the ELAM driver + 1. Open the registry ```key HKEY_LOCAL_MACHINE\ SOFTWARE\Policies\Microsoft\Windows Defender```. + 2. Find the value ```DisableAntiSpyware```. + 3. Ensure that the value is set to 0. -1. Open an elevated PowerShell console on the endpoint: - - a. Click **Start**, type **powershell**. - - b. Right-click **Command prompt** and select **Run as administrator**. - -2. Run the following PowerShell cmdlet: - - ```text - 'Set-ExecutionPolicy -ExecutionPolicy Bypass’ - ``` -3. Run the following PowerShell script: - - ```text - Add-Type @' - using System; - using System.IO; - using System.Runtime.InteropServices; - using Microsoft.Win32.SafeHandles; - using System.ComponentModel; - - public static class Elam{ - [DllImport("Kernel32", CharSet=CharSet.Auto, SetLastError=true)] - public static extern bool InstallELAMCertificateInfo(SafeFileHandle handle); - - public static void InstallWdBoot(string path) - { - Console.Out.WriteLine("About to call create file on {0}", path); - var stream = File.Open(path, FileMode.Open, FileAccess.Read, FileShare.Read); - var handle = stream.SafeFileHandle; - - Console.Out.WriteLine("About to call InstallELAMCertificateInfo on handle {0}", handle.DangerousGetHandle()); - if (!InstallELAMCertificateInfo(handle)) - { - Console.Out.WriteLine("Call failed."); - throw new Win32Exception(Marshal.GetLastWin32Error()); - } - Console.Out.WriteLine("Call successful."); - } - } - '@ - - $driverPath = $env:SystemRoot + "\System32\Drivers\WdBoot.sys" - [Elam]::InstallWdBoot($driverPath) - ``` + ![Image of registry key for Windows Defender](images/atp-disableantispyware-regkey.png) diff --git a/windows/keep-secure/troubleshoot-windows-defender-advanced-threat-protection.md b/windows/keep-secure/troubleshoot-windows-defender-advanced-threat-protection.md index fd485e8645..4cb0a35b53 100644 --- a/windows/keep-secure/troubleshoot-windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/troubleshoot-windows-defender-advanced-threat-protection.md @@ -46,6 +46,7 @@ U.S. region: - winatpfeedback.windows.com - winatpmanagement.windows.com - winatponboarding.windows.com +- winatpservicehealth.windows.com EU region: @@ -57,11 +58,18 @@ EU region: - winatpfeedback.windows.com - winatpmanagement.windows.com - winatponboarding.windows.com +- winatpservicehealth.windows.com ### Windows Defender ATP service shows event or error logs in the Event Viewer See the topic [Review events and errors on endpoints with Event Viewer](event-error-codes-windows-defender-advanced-threat-protection.md) for a list of event IDs that are reported by the Windows Defender ATP service. The topic also contains troubleshooting steps for event errors. +### Windows Defender ATP service fails to start after a reboot and shows error 577 + +If onboarding endpoints successfully completes but Windows Defender ATP does not start after a reboot and shows error 577, check that Windows Defender is not disabled by a policy. + +For more information, see [Ensure that Windows Defender is not disabled by policy](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md#ensure-that-windows-defender-is-not-disabled-by-a-policy). + ### Related topic - [Troubleshoot Windows Defender Advanced Threat Protection onboarding issues](troubleshoot-onboarding-windows-defender-advanced-threat-protection.md) diff --git a/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md b/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md index df382bc1fe..ac8772f7b7 100644 --- a/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md +++ b/windows/keep-secure/troubleshoot-windows-defender-in-windows-10.md @@ -2222,7 +2222,7 @@ Description of the error.

    The support for your operating system has expired. Windows Defender is no longer supported on your operating system, has stopped functioning, and is not protecting against malware threats.

    - +Event ID: 2050

    Symbolic name:

    MALWAREPROTECTION_SAMPLESUBMISSION_UPLOADED

    Message:

    The antimalware engine has uploaded a file for further analysis.
    Filename <uploaded filename>
    Sha256: <file SHA>

    Description:

    A file was uploaded to the Windows Defender Antimalware cloud for further analysis or processing.

    Event ID: 3002 diff --git a/windows/keep-secure/trusted-platform-module-overview.md b/windows/keep-secure/trusted-platform-module-overview.md index a1b3a32c2d..ba05130ce1 100644 --- a/windows/keep-secure/trusted-platform-module-overview.md +++ b/windows/keep-secure/trusted-platform-module-overview.md @@ -1,6 +1,6 @@ --- title: Trusted Platform Module Technology Overview (Windows 10) -description: This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. The topic provides links to other resources about the TPM. +description: This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. ms.assetid: face8932-b034-4319-86ac-db1163d46538 ms.prod: w10 ms.mktglfcycl: deploy @@ -14,64 +14,70 @@ author: brianlic-msft **Applies to** - Windows 10 +- Windows Server 2016 -This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. The topic provides links to other resources about the TPM. +This topic for the IT professional describes the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. -## Feature description +## Feature description Trusted Platform Module (TPM) technology is designed to provide hardware-based, security-related functions. A TPM chip is a secure crypto-processor that is designed to carry out cryptographic operations. The chip includes multiple physical security mechanisms to make it tamper resistant, and malicious software is unable to tamper with the security functions of the TPM. Some of the key advantages of using TPM technology are that you can: - Generate, store, and limit the use of cryptographic keys. + - Use TPM technology for platform device authentication by using the TPM’s unique RSA key, which is burned into itself. + - Help ensure platform integrity by taking and storing security measurements. The most common TPM functions are used for system integrity measurements and for key creation and use. During the boot process of a system, the boot code that is loaded (including firmware and the operating system components) can be measured and recorded in the TPM. The integrity measurements can be used as evidence for how a system started and to make sure that a TPM-based key was used only when the correct software was used to boot the system. TPM-based keys can be configured in a variety of ways. One option is to make a TPM-based key unavailable outside the TPM. This is good to mitigate phishing attacks because it prevents the key from being copied and used without the TPM. TPM-based keys can also be configured to require an authorization value to use them. If too many incorrect authorization guesses occur, the TPM will activate its dictionary attack logic and prevent further authorization value guesses. -Different versions of the TPM are defined in specifications by the Trusted Computing Group (TCG). For more information, consult the TCG Web site (). +Different versions of the TPM are defined in specifications by the Trusted Computing Group (TCG). For more information, consult the [TCG Web site](http://www.trustedcomputinggroup.org/work-groups/trusted-platform-module/). -Windows can automatically provision and manage the TPM. Group Policy settings can be configured to control whether the TPM owner authorization value is backed up in Active Directory. Because the TPM state persists across operating system installations, TPM information is stored in a location in Active Directory that is separate from computer objects. Depending on an enterprise’s security goals, Group Policy can be configured to allow or prevent local administrators from resetting the TPM’s dictionary attack logic. Standard users can use the TPM, but Group Policy controls limit how many authorization failures standard users can attempt so that one user is unable to prevent other users or the administrator from using the TPM. TPM technology can also be used as a virtual smart card and for secure certificate storage. With BitLocker Network Unlock, domain-joined computers are not prompted for a BitLocker PIN. +### Automatic initialization of the TPM with Windows 10 -## Practical applications +Starting with Windows 10, the operating system automatically initializes and takes ownership of the TPM. This means that in most cases, we recommend that you avoid configuring the TPM through the TPM management console, **TPM.msc**. There are a few exceptions, mostly related to resetting or performing a clean installation on a PC. For more information, see [Clear all the keys from the TPM](initialize-and-configure-ownership-of-the-tpm.md#clear-all-the-keys-from-the-tpm). + +In certain specific enterprise scenarios limited to Windows 10, versions 1507 and 1511, Group Policy might be used to back up the TPM owner authorization value in Active Directory. Because the TPM state persists across operating system installations, this TPM information is stored in a location in Active Directory that is separate from computer objects. + +## Practical applications Certificates can be installed or created on computers that are using the TPM. After a computer is provisioned, the RSA private key for a certificate is bound to the TPM and cannot be exported. The TPM can also be used as a replacement for smart cards, which reduces the costs associated with creating and disbursing smart cards. Automated provisioning in the TPM reduces the cost of TPM deployment in an enterprise. New APIs for TPM management can determine if TPM provisioning actions require physical presence of a service technician to approve TPM state change requests during the boot process. -Antimalware software can use the boot measurements of the operating system start state to prove the integrity of a computer running Windows 10, Windows 8.1, Windows 8, Windows Server 2012 R2, or Windows Server 2012. These measurements include the launch of Hyper-V to test that datacenters using virtualization are not running untrusted hypervisors. With BitLocker Network Unlock, IT administrators can push an update without concerns that a computer is waiting for PIN entry. +Antimalware software can use the boot measurements of the operating system start state to prove the integrity of a computer running Windows 10 or Windows Server 2016. These measurements include the launch of Hyper-V to test that datacenters using virtualization are not running untrusted hypervisors. With BitLocker Network Unlock, IT administrators can push an update without concerns that a computer is waiting for PIN entry. -The TPM has several Group Policy settings that can be used to manage how it is used. These settings can be used to manage the owner authorization value, the blocked TPM commands, the standard user lockout, and the backup of the TPM to AD DS. For more info, see [Trusted Platform Module Services Group Policy Settings](trusted-platform-module-services-group-policy-settings.md). +The TPM has several Group Policy settings that might be useful in certain enterprise scenarios. For more info, see [TPM Group Policy Settings](trusted-platform-module-services-group-policy-settings.md). -## New and changed functionality +## New and changed functionality -For more info on new and changed functionality for Trusted Platform Module in Windows 10, see [What's new in Trusted Platform Module?](../whats-new/whats-new-windows-10-version-1507-and-1511.md#trusted-platform-module). +For more info on new and changed functionality for Trusted Platform Module in Windows 10, see [What's new in Trusted Platform Module?](https://technet.microsoft.com/itpro/windows/whats-new/whats-new-windows-10-version-1507-and-1511#trusted-platform-module). -## Device health attestation +## Device health attestation Device health attestation enables enterprises to establish trust based on hardware and software components of a managed device. With device heath attestation, you can configure an MDM server to query a health attestation service that will allow or deny a managed device access to a secure resource. Some things that you can check on the device are: - Is Data Execution Prevention supported and enabled? + - Is BitLocker Drive Encryption supported and enabled? + - Is SecureBoot supported and enabled? ->**Note:**  The device must be running Windows 10 and it must support at least TPM 2.0. -  -## Supported versions +> [!NOTE] +> The device must be running Windows 10 and it must support at least TPM 2.0. -| TPM version | Windows 10 | Windows Server 2012 R2, Windows 8.1, and Windows RT | Windows Server 2012, Windows 8, and Windows RT | Windows Server 2008 R2 and Windows 7 | -| - | - | - | - | - | -| TPM 1.2| X| X| X| X| -| TPM 2.0| X| X| X| X| +## Supported versions -## Additional Resources +| TPM version | Windows 10 | Windows Server 2016 | +|-------------|------------|---------------------| +| TPM 1.2 | X | X | +| TPM 2.0 | X | X | -- [TPM Fundamentals](tpm-fundamentals.md) -- [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) -- [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -- [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md) -- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](http://technet.microsoft.com/library/jj592683.aspx) -  -  +## Related topics + +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) +- [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) +- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](https://technet.microsoft.com/itpro/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies#bkmk-tpmconfigurations) diff --git a/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md b/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md index d927f73825..27fa6ec7db 100644 --- a/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md +++ b/windows/keep-secure/trusted-platform-module-services-group-policy-settings.md @@ -13,102 +13,94 @@ author: brianlic-msft **Applies to** - Windows 10 +- Windows Server 2016 This topic for the IT professional describes the Trusted Platform Module (TPM) Services that can be controlled centrally by using Group Policy settings. -## - The TPM Services Group Policy settings are located at: **Computer Configuration\\Administrative Templates\\System\\Trusted Platform Module Services\\** -| Setting | Windows 10, version 1607 | Windows 10, version 1511 and Windows 10, version 1507 | Windows Server 2012 R2, Windows 8.1 and Windows RT | Windows Server 2012, Windows 8 and Windows RT | Windows Server 2008 R2 and Windows 7 | Windows Server 2008 and Windows Vista | -| - | - | - | - | - | - | - | -| [Turn on TPM backup to Active Directory Domain Services](#bkmk-tpmgp-addsbu) | | X| X| X| X| X| -| [Configure the list of blocked TPM commands](#bkmk-tpmgp-clbtc)| X| X| X| X| X| X| -| [Ignore the default list of blocked TPM commands](#bkmk-tpmgp-idlb) | X| X| X| X| X| X| -| [Ignore the local list of blocked TPM commands](#bkmk-tpmgp-illb) | X| X| X| X| X| X| -| [Configure the level of TPM owner authorization information available to the operating system](#bkmk-tpmgp-oauthos)| | X| X| X||| -| [Standard User Lockout Duration](#bkmk-tpmgp-suld)| X| X| X| X||| -| [Standard User Individual Lockout Threshold](#bkmk-individual)| X| X| X| X||| -| [Standard User Total Lockout Threshold](#bkmk-total)| X| X| X| X|||| +| Setting | Windows 10, version 1607 and Windows Server 2016 | Windows 10, version 1511 and Windows 10, version 1507 | +|-----------------|--------------------------------------------------|-------------------------------------------------------| +| [Turn on TPM backup to Active Directory Domain Services](#turn-on-tpm-backup-to-active-directory-domain-services) | | X | +| [Configure the list of blocked TPM commands](#configure-the-list-of-blocked-tpm-commands) | X | X | +| [Ignore the default list of blocked TPM commands](#ignore-the-default-list-of-blocked-tpm-commands) | X | X | +| [Ignore the local list of blocked TPM commands](#ignore-the-local-list-of-blocked-tpm-commands) | X | X | +| [Configure the level of TPM owner authorization information available to the operating system](#configure-the-level-of-tpm-owner-authorization-information-available-to-the-operating-system) | X | X | +| [Standard User Lockout Duration](#standard-user-lockout-duration) | X | X | +| [Standard User Individual Lockout Threshold](#standard-user-individual-lockout-threshold) | X | X | +| [Standard User Total Lockout Threshold](#standard-user-total-lockout-threshold) | X | X | -### Turn on TPM backup to Active Directory Domain Services +### Turn on TPM backup to Active Directory Domain Services This policy setting allows you to manage the Active Directory Domain Services (AD DS) backup of TPM owner information. ->[!NOTE] ->This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). - - TPM owner information includes a cryptographic hash of the TPM owner password. Certain TPM commands can be run only by the TPM owner. This hash authorizes the TPM to run these commands. ->[!IMPORTANT] ->To back up TPM owner information from a computer running Windows 10, version 1507, Windows 10, version 1511, Windows 8.1, or Windows 8, you might need to first set up appropriate schema extensions and access control settings on the domain so that the AD DS backup can succeed. Windows Server 2012 R2 and Windows Server 2012 include the required schema extensions by default. For more information, see [AD DS schema extensions to support TPM backup](ad-ds-schema-extensions-to-support-tpm-backup.md). This functionality is discontinued starting with Windows 10, version 1607. +> [!IMPORTANT] +> The **Turn on TPM backup to Active Directory Domain Services** is not available in the Windows 10, version 1607 and Windows Server 2016 and later versions of the ADMX files. If you enable this policy setting, TPM owner information will be automatically and silently backed up to AD DS when you use Windows to set or change a TPM owner password. When this policy setting is enabled, a TPM owner password cannot be set or changed unless the computer is connected to the domain and the AD DS backup succeeds. If you disable or do not configure this policy setting, TPM owner information will not be backed up to AD DS. ->[!NOTE] -> The **Turn on TPM backup to Active Directory Domain Services** is not available in the Windows 10, version 1607 and Windows Server 2016 and later versions of the ADMX files. - - -### Configure the list of blocked TPM commands +### Configure the list of blocked TPM commands This policy setting allows you to manage the Group Policy list of Trusted Platform Module (TPM) commands that are blocked by Windows. ->**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). -  -If you enable this policy setting, Windows will block the specified commands from being sent to the TPM on the computer. TPM commands are referenced by a command number. For example, command number 129 is **TPM\_OwnerReadInternalPub**, and command number 170 is **TPM\_FieldUpgrade**. To find the command number that is associated with each TPM command, at the command prompt, type **tpm.msc**to open the TPM Management Console and navigate to the **Command Management** section. +If you enable this policy setting, Windows will block the specified commands from being sent to the TPM on the computer. TPM commands are referenced by a command number. For example, command number 129 is **TPM\_OwnerReadInternalPub**, and command number 170 is **TPM\_FieldUpgrade**. To find the command number that is associated with each TPM command, at the command prompt, type **tpm.msc** to open the TPM Management Console and navigate to the **Command Management** section. If you disable or do not configure this policy setting, only those TPM commands that are specified through the default or local lists can be blocked by Windows. The default list of blocked TPM commands is preconfigured by Windows. - You can view the default list by typing **tpm.msc** at the command prompt, navigating to the **Command Management** section, and exposing the **On Default Block List** column. + - The local list of blocked TPM commands is configured outside of Group Policy by running the TPM Management Console or scripting using the **Win32\_Tpm** interface. For information how to enforce or ignore the default and local lists of blocked TPM commands, see -- [Ignore the default list of blocked TPM commands](#bkmk-tpmgp-idlb) -- [Ignore the local list of blocked TPM commands](#bkmk-tpmgp-illb) -### Ignore the default list of blocked TPM commands +- [Ignore the default list of blocked TPM commands](#ignore-the-default-list-of-blocked-tpm-commands) + +- [Ignore the local list of blocked TPM commands](#ignore-the-local-list-of-blocked-tpm-commands) + +### Ignore the default list of blocked TPM commands This policy setting allows you to enforce or ignore the computer's default list of blocked Trusted Platform Module (TPM) commands. ->**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). -  -The default list of blocked TPM commands is preconfigured by Windows. You can view the default list by typing **tpm.msc** at the command prompt to open the TPM Management Console, navigating to the **Command Management** section, and exposing the **On Default Block List** column. Also see the related policy setting, [Configure the list of blocked TPM commands](#bkmk-tpmgp-clbtc). +The default list of blocked TPM commands is preconfigured by Windows. You can view the default list by typing **tpm.msc** at the command prompt to open the TPM Management Console, navigating to the **Command Management** section, and exposing the **On Default Block List** column. Also see the related policy setting, [Configure the list of blocked TPM commands](#configure-the-list-of-blocked-tpm-commands). If you enable this policy setting, the Windows operating system will ignore the computer's default list of blocked TPM commands, and it will block only those TPM commands that are specified by Group Policy or the local list. If you disable or do not configure this policy setting, Windows will block the TPM commands in the default list, in addition to the commands that are specified by Group Policy and the local list of blocked TPM commands. -### Ignore the local list of blocked TPM commands +### Ignore the local list of blocked TPM commands This policy setting allows you to enforce or ignore the computer's local list of blocked Trusted Platform Module (TPM) commands. ->**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). -  -The local list of blocked TPM commands is configured outside of Group Policy by typing **tpm.msc** at the command prompt to open the TPM Management Console, or scripting using the **Win32\_Tpm** interface. (The default list of blocked TPM commands is preconfigured by Windows.) Also see the related policy setting to **Configure the list of blocked TPM commands**. +The local list of blocked TPM commands is configured outside of Group Policy by typing **tpm.msc** at the command prompt to open the TPM Management Console, or scripting using the **Win32\_Tpm** interface. (The default list of blocked TPM commands is preconfigured by Windows.) Also see the related policy setting, [Configure the list of blocked TPM commands](#configure-the-list-of-blocked-tpm-commands). If you enable this policy setting, the Windows operating system will ignore the computer's local list of blocked TPM commands, and it will block only those TPM commands that are specified by Group Policy or the default list. If you disable or do not configure this policy setting, Windows will block the TPM commands in the local list, in addition to the commands that are specified in Group Policy and the default list of blocked TPM commands. -### Configure the level of TPM owner authorization information available to the operating system +### Configure the level of TPM owner authorization information available to the operating system This policy setting configures how much of the TPM owner authorization information is stored in the registry of the local computer. Depending on the amount of TPM owner authorization information that is stored locally, the Windows operating system and TPM-based applications can perform certain actions in the TPM that require TPM owner authorization without requiring the user to enter the TPM owner password. ->**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). -  +> [!IMPORTANT] +> This policy setting is not available in the Windows 10, version 1607 and Windows Server 2016 and later versions of the ADMX files. + There are three TPM owner authentication settings that are managed by the Windows operating system. You can choose a value of **Full**, **Delegate**, or **None**. - **Full**   This setting stores the full TPM owner authorization, the TPM administrative delegation blob, and the TPM user delegation blob in the local registry. With this setting, you can use the TPM without requiring remote or external storage of the TPM owner authorization value. This setting is appropriate for scenarios that do not require you to reset the TPM anti-hammering logic or change the TPM owner authorization value. Some TPM-based applications may require that this setting is changed before features that depend on the TPM anti-hammering logic can be used. + - **Delegated**   This setting stores only the TPM administrative delegation blob and the TPM user delegation blob in the local registry. This setting is appropriate for use with TPM-based applications that depend on the TPM antihammering logic. This is the default setting in Windows. + - **None**   This setting provides compatibility with previous operating systems and applications. You can also use it for scenarios when TPM owner authorization cannot be stored locally. Using this setting might cause issues with some TPM-based applications. ->**Note:**  If the operating system managed TPM authentication setting is changed from **Full** to **Delegated**, the full TPM owner authorization value will be regenerated, and any copies of the previously set TPM owner authorization value will be invalid. -  +> [!NOTE] +> If the operating system managed TPM authentication setting is changed from **Full** to **Delegated**, the full TPM owner authorization value will be regenerated, and any copies of the previously set TPM owner authorization value will be invalid. + **Registry information** Registry key: HKEY\_LOCAL\_MACHINE\\SOFTWARE\\Policies\\Microsoft\\TPM @@ -117,43 +109,41 @@ DWORD: OSManagedAuthLevel The following table shows the TPM owner authorization values in the registry. -| Value Data | Setting | -| - | - | -| 0 | None| -| 2 | Delegated| -| 4 | Full| +| Value Data | Setting | +|------------|-----------| +| 0 | None | +| 2 | Delegated | +| 4 | Full | +   If you enable this policy setting, the Windows operating system will store the TPM owner authorization in the registry of the local computer according to the TPM authentication setting you choose. -If you disable or do not configure this policy setting, and the **Turn on TPM backup to Active Directory Domain Services** policy setting is also disabled or not configured, the default setting is to store the full TPM authorization value in the local registry. If this policy is disabled or not +If you disable or do not configure this policy setting, and the **Turn on TPM backup to Active Directory Domain Services** policy setting is also disabled or not configured, the default setting is to store the full TPM authorization value in the local registry. If this policy is disabled or not configured, and the **Turn on TPM backup to Active Directory Domain Services** policy setting is enabled, only the administrative delegation and the user delegation blobs are stored in the local registry. -### Standard User Lockout Duration +### Standard User Lockout Duration -This policy setting allows you to manage the duration in minutes for counting standard user authorization failures for Trusted Platform Module (TPM) commands requiring authorization. An authorization failure occurs each time a standard user sends a command to the TPM and receives an error response that indicates an authorization failure occurred. Authorization failures that are older than the duration you set are ignored. If the number of TPM commands with an authorization failure within the lockout duration equals a threshold, a standard user is prevented from sending commands that require +This policy setting allows you to manage the duration in minutes for counting standard user authorization failures for Trusted Platform Module (TPM) commands requiring authorization. An authorization failure occurs each time a standard user sends a command to the TPM and receives an error response that indicates an authorization failure occurred. Authorization failures that are older than the duration you set are ignored. If the number of TPM commands with an authorization failure within the lockout duration equals a threshold, a standard user is prevented from sending commands that require authorization to the TPM. ->**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). -  The TPM is designed to protect itself against password guessing attacks by entering a hardware lockout mode when it receives too many commands with an incorrect authorization value. When the TPM enters a lockout mode, it is global for all users (including administrators) and for Windows features such as BitLocker Drive Encryption. This setting helps administrators prevent the TPM hardware from entering a lockout mode by slowing the speed at which standard users can send commands that require authorization to the TPM. For each standard user, two thresholds apply. Exceeding either threshold prevents the user from sending a command that requires authorization to the TPM. Use the following policy settings to set the lockout duration: -- [Standard User Individual Lockout Threshold](#bkmk-individual)   This value is the maximum number of authorization failures that each standard user can have before the user is not allowed to send commands that require authorization to the TPM. -- [Standard User Total Lockout Threshold](#bkmk-total)   This value is the maximum total number of authorization failures that all standard users can have before all standard users are not allowed to send commands that require authorization to the TPM. +- [Standard User Individual Lockout Threshold](#standard-user-individual-lockout-threshold)   This value is the maximum number of authorization failures that each standard user can have before the user is not allowed to send commands that require authorization to the TPM. + +- [Standard User Total Lockout Threshold](#standard-user-total-lockout-threshold)   This value is the maximum total number of authorization failures that all standard users can have before all standard users are not allowed to send commands that require authorization to the TPM. An administrator with the TPM owner password can fully reset the TPM's hardware lockout logic by using the TPM Management Console (tpm.msc). Each time an administrator resets the TPM's hardware lockout logic, all prior standard user TPM authorization failures are ignored. This allows standard users to immediately use the TPM normally. If you do not configure this policy setting, a default value of 480 minutes (8 hours) is used. -### Standard User Individual Lockout Threshold +### Standard User Individual Lockout Threshold This policy setting allows you to manage the maximum number of authorization failures for each standard user for the Trusted Platform Module (TPM). This value is the maximum number of authorization failures that each standard user can have before the user is not allowed to send commands that require authorization to the TPM. If the number of authorization failures for the user within the duration that is set for the **Standard User Lockout Duration** policy setting equals this value, the standard user is prevented from sending commands that require authorization to the Trusted Platform Module (TPM). ->**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). -  This setting helps administrators prevent the TPM hardware from entering a lockout mode by slowing the speed at which standard users can send commands that require authorization to the TPM. An authorization failure occurs each time a standard user sends a command to the TPM and receives an error response indicating an authorization failure occurred. Authorization failures older than the duration are ignored. @@ -162,29 +152,20 @@ An administrator with the TPM owner password can fully reset the TPM's hardware If you do not configure this policy setting, a default value of 4 is used. A value of zero means that the operating system will not allow standard users to send commands to the TPM, which might cause an authorization failure. -### Standard User Total Lockout Threshold +### Standard User Total Lockout Threshold This policy setting allows you to manage the maximum number of authorization failures for all standard users for the Trusted Platform Module (TPM). If the total number of authorization failures for all standard users within the duration that is set for the **Standard User Lockout Duration** policy equals this value, all standard users are prevented from sending commands that require authorization to the Trusted Platform Module (TPM). ->**Note:**  This policy setting applies to the Windows operating systems listed in the [version table](#bkmk-version-table). -  This setting helps administrators prevent the TPM hardware from entering a lockout mode because it slows the speed standard users can send commands requiring authorization to the TPM. An authorization failure occurs each time a standard user sends a command to the TPM and receives an error response indicating an authorization failure occurred. Authorization failures older than the duration are ignored. -For each standard user two thresholds apply. Exceeding either threshold will prevent the standard user from sending a command to the TPM that requires authorization. - -1. The standard user individual lockout value is the maximum number of authorization failures each standard user may have before the user is not allowed to send commands requiring authorization to the TPM. -2. The standard user total lockout threshold value is the maximum total number of authorization failures all standard users may have before all standard users are not allowed to send commands requiring authorization to the TPM. -The TPM is designed to protect itself against password guessing attacks by entering a hardware lockout mode when it receives too many commands with an incorrect authorization value. When the TPM enters a lockout mode, it is global for all users (including administrators) and for Windows features -such as BitLocker Drive Encryption.. - An administrator with the TPM owner password can fully reset the TPM's hardware lockout logic by using the TPM Management Console (tpm.msc). Each time an administrator resets the TPM's hardware lockout logic, all prior standard user TPM authorization failures are ignored. This allows standard users to immediately use the TPM normally. If you do not configure this policy setting, a default value of 9 is used. A value of zero means that the operating system will not allow standard users to send commands to the TPM, which might cause an authorization failure. -## Additional resources +## Related topics -- [Trusted Platform Module Technology Overview](trusted-platform-module-overview.md) +- [Trusted Platform Module](trusted-platform-module-top-node.md) (list of topics) - [TPM Cmdlets in Windows PowerShell](http://technet.microsoft.com/library/jj603116.aspx) -- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](http://technet.microsoft.com/library/jj592683.aspx) +- [Prepare your organization for BitLocker: Planning and Policies - TPM configurations](https://technet.microsoft.com/itpro/windows/keep-secure/prepare-your-organization-for-bitlocker-planning-and-policies#bkmk-tpmconfigurations) \ No newline at end of file diff --git a/windows/keep-secure/trusted-platform-module-top-node.md b/windows/keep-secure/trusted-platform-module-top-node.md new file mode 100644 index 0000000000..ad6428c661 --- /dev/null +++ b/windows/keep-secure/trusted-platform-module-top-node.md @@ -0,0 +1,33 @@ +--- +title: Trusted Platform Module (Windows 10) +description: This topic for the IT professional provides links to information about the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: security +localizationpriority: high +author: brianlic-msft +--- + +# Trusted Platform Module + +**Applies to** +- Windows 10 +- Windows Server 2016 + +Trusted Platform Module (TPM) technology is designed to provide hardware-based, security-related functions. A TPM chip is a secure crypto-processor that helps you with actions such as generating, storing, and limiting the use of cryptographic keys. The following topics provide details. + + + +| Topic | Description | +|-------|-------------| +| [Trusted Platform Module Overview](trusted-platform-module-overview.md) | Provides an overview of the Trusted Platform Module (TPM) and how Windows uses it for access control and authentication. | +| [TPM fundamentals](tpm-fundamentals.md) | Provides background about how a TPM can work with cryptographic keys. Also describes technologies that work with the TPM, such as TPM-based virtual smart cards. | +| [TPM Group Policy settings](trusted-platform-module-services-group-policy-settings.md) | Describes TPM services that can be controlled centrally by using Group Policy settings. | +| [Back up the TPM recovery information to AD DS](backup-tpm-recovery-information-to-ad-ds.md) | For Windows 10, version 1511 and Windows 10, version 1507 only, describes how to back up a computer’s TPM information to Active Directory Domain Services. | +| [Manage TPM commands](manage-tpm-commands.md) | Describes methods by which a local or domain administrator can block or allow specific TPM commands. | +| [Manage TPM lockout](manage-tpm-lockout.md) | Describes how TPM lockout works (to help prevent tampering or malicious attacks), and outlines ways to work with TPM lockout settings. | +| [Change the TPM owner password](change-the-tpm-owner-password.md) | In most cases, applies to Windows 10, version 1511 and Windows 10, version 1507 only. Tells how to change the TPM owner password. | +| [View status, clear, or troubleshoot the TPM](initialize-and-configure-ownership-of-the-tpm.md) | Describes actions you can take through the TPM snap-in, TPM.msc: view TPM status, troubleshoot TPM initialization, and clear keys from the TPM. Also, for TPM 1.2 and Windows 10, version 1507 or 1511, describes how to turn the TPM on or off. | +| [Understanding PCR banks on TPM 2.0 devices](switch-pcr-banks-on-tpm-2-0-devices.md) | Provides background about what happens when you switch PCR banks on TPM 2.0 devices. | +| [TPM recommendations](tpm-recommendations.md) | Discusses aspects of TPMs such as the difference between TPM 1.2 and 2.0, and the Windows 10 features for which a TPM is required or recommended. | diff --git a/windows/keep-secure/understanding-applocker-default-rules.md b/windows/keep-secure/understanding-applocker-default-rules.md index b0aa99f22e..f0b744d7ad 100644 --- a/windows/keep-secure/understanding-applocker-default-rules.md +++ b/windows/keep-secure/understanding-applocker-default-rules.md @@ -42,5 +42,4 @@ These permissions settings are applied to this folder for app compatibility. How ## Related topics - [How AppLocker works](how-applocker-works-techref.md) -  -  +- [Create AppLocker default rules](create-applocker-default-rules.md) \ No newline at end of file diff --git a/windows/keep-secure/understanding-applocker-rule-collections.md b/windows/keep-secure/understanding-applocker-rule-collections.md index b8adef234c..bfe5fd07ce 100644 --- a/windows/keep-secure/understanding-applocker-rule-collections.md +++ b/windows/keep-secure/understanding-applocker-rule-collections.md @@ -33,3 +33,5 @@ For info about how to enable the DLL rule collection, see [Enable the DLL rule c ## Related topics - [How AppLocker works](how-applocker-works-techref.md) +- [Understanding AppLocker default rules](understanding-applocker-default-rules.md) + diff --git a/windows/keep-secure/use-applocker-and-software-restriction-policies-in-the-same-domain.md b/windows/keep-secure/use-applocker-and-software-restriction-policies-in-the-same-domain.md index 17fe40b6a1..0fa2a8f258 100644 --- a/windows/keep-secure/use-applocker-and-software-restriction-policies-in-the-same-domain.md +++ b/windows/keep-secure/use-applocker-and-software-restriction-policies-in-the-same-domain.md @@ -61,7 +61,7 @@ The following table compares the features and functions of Software Restriction

    Enforcement mode

    SRP works in the “deny list mode” where administrators can create rules for files that they do not want to allow in this Enterprise whereas the rest of the file are allowed to run by default.

    -

    SRP can also be configured in the “allow list mode” such that the by default all files are blocked and administrators need to create allow rules for files that they want to allow.

    +

    SRP can also be configured in the “allow list mode” so that by default all files are blocked and administrators need to create allow rules for files that they want to allow.

    AppLocker by default works in the “allow list mode” where only those files are allowed to run for which there is a matching allow rule.

    diff --git a/windows/keep-secure/using-event-viewer-with-applocker.md b/windows/keep-secure/using-event-viewer-with-applocker.md index 1b1b80e64f..7a3b0f4f8d 100644 --- a/windows/keep-secure/using-event-viewer-with-applocker.md +++ b/windows/keep-secure/using-event-viewer-with-applocker.md @@ -46,7 +46,7 @@ The following table contains information about the events that you can use to de | 8005| Information| *<File name> * was allowed to run.| Specifies that the script or .msi file is allowed by an AppLocker rule.| | 8006 | Warning| *<File name> * was allowed to run but would have been prevented from running if the AppLocker policy were enforced.| Applied only when the **Audit only ** enforcement mode is enabled. Specifies that the script or .msi file would be blocked if the **Enforce rules ** enforcement mode were enabled. | | 8007 | Error| *<File name> * was not allowed to run.| Access to *<file name> * is restricted by the administrator. Applied only when the **Enforce rules ** enforcement mode is set either directly or indirectly through Group Policy inheritance. The script or .msi file cannot run.| -| 8007| Error| AppLocker disabled on the SKU.| Added in Windows Server 2012 and Windows 8.| +| 8008| Error| AppLocker disabled on the SKU.| Added in Windows Server 2012 and Windows 8.| | 8020| Information| Packaged app allowed.| Added in Windows Server 2012 and Windows 8.| | 8021| Information| Packaged app audited.| Added in Windows Server 2012 and Windows 8.| | 8022| Information| Packaged app disabled.| Added in Windows Server 2012 and Windows 8.| diff --git a/windows/keep-secure/using-owa-with-wip.md b/windows/keep-secure/using-owa-with-wip.md new file mode 100644 index 0000000000..f4046b30a6 --- /dev/null +++ b/windows/keep-secure/using-owa-with-wip.md @@ -0,0 +1,35 @@ +--- +title: Using Outlook Web Access with Windows Information Protection (WIP) (Windows 10) +description: Options for using Outlook Web Access (OWA) with Windows Information Protection (WIP). +keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and OWA configuration +ms.prod: w10 +ms.mktglfcycl: explore +ms.sitesec: library +ms.pagetype: security +localizationpriority: high +--- + +# Using Outlook Web Access with Windows Information Protection (WIP) +**Applies to:** + +- Windows 10, version 1607 +- Windows 10 Mobile + +>Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). + +Because Outlook Web Access (OWA) can be used both personally and as part of your organization, you have the following options to configure it with Windows Information Protection (WIP): + +|Option |OWA behavior | +|-------|-------------| +|Disable OWA. Employees can only use Microsoft Outlook 2016 or the Office 365 Mail app. | Disabled. | +|Don't configure outlook.office.com in any of your networking settings. |All mailboxes are automatically marked as personal. This means employees attempting to copy work content into OWA receive prompts and that files downloaded from OWA aren't automatically protected as corporate data. | +|Do all of the following:
    • Create a domain (such as mail.contoso.com, redirecting to outlook.office.com) that can be used by your employees to access work email.
    • Add the new domain to the Enterprise Cloud Resources network element in your WIP policy.
    • Add the following URLs to the Neutral Resources network element in your WIP policy:
      • outlook.office365.com
      • outlook.office.com
      • outlook-sdf.office.com
      • attachment.outlook.office.net
    |Inbox content accessed through the new domain is automatically marked as corporate data, while content accessed through personal email is automatically marked as personal. | +|Add outlook.office.com to the Enterprise Cloud Resources network element in your WIP policy. |All mailboxes are automatically marked as corporate. This means any personal inboxes hosted on Office 365 are also automatically marked as corporate data. | + +>[!NOTE] +>These limitations don’t apply to Outlook 2016 or to the Office 365 Mail and Calendar apps. These apps will work properly, marking an employee’s mailbox as corporate data, regardless of how you’ve configured outlook.office.com in your network settings. + + + + + diff --git a/windows/keep-secure/windows-credential-theft-mitigation-guide-abstract.md b/windows/keep-secure/windows-credential-theft-mitigation-guide-abstract.md new file mode 100644 index 0000000000..44a10d1bbe --- /dev/null +++ b/windows/keep-secure/windows-credential-theft-mitigation-guide-abstract.md @@ -0,0 +1,67 @@ +--- +title: Windows 10 Credential Theft Mitigation Guide Abstract (Windows 10) +description: Provides a summary of the Windows 10 credential theft mitigation guide. +ms.assetid: 821ddc1a-f401-4732-82a7-40d1fff5a78a +ms.prod: w10 +ms.mktglfcycl: deploy +ms.sitesec: library +ms.pagetype: security +author: justinha +--- + +# Windows 10 Credential Theft Mitigation Guide Abstract + +**Applies to** +- Windows 10 + +This topic provides a summary of the Windows 10 credential theft mitigation guide, which can be downloaded from the [Microsoft Download Center](http://download.microsoft.com/download/C/1/4/C14579CA-E564-4743-8B51-61C0882662AC/Windows 10 credential theft mitigation guide.docx). +This guide explains how credential theft attacks occur and the strategies and countermeasures you can implement to mitigate them, following these security stages: + +- Identify high-value assets +- Protect against known and unknown threats +- Detect pass-the-hash and related attacks +- Respond to suspicious activity +- Recover from a breach + +![Security stages](images\security-stages.png) + +## Attacks that steal credentials + +Learn about the different types of attacks that are used to steal credentials, and the factors that can place your organization at risk. +The types of attacks that are covered include: + +- Pass the hash +- Kerberos pass the ticket +- Kerberos golden ticket and silver ticket +- Key loggers +- Shoulder surfing + +## Credential protection strategies + +This part of the guide helps you consider the mindset of the attacker, with prescriptive guidance about how to prioritize high-value accounts and computers. +You'll learn how to architect a defense against credential theft: + +- Establish a containment model for account privileges +- Harden and restrict administrative hosts +- Ensure that security configurations and best practices are implemented + +## Technical countermeasures for credential theft + +Objectives and expected outcomes are covered for each of these countermeasures: + +- Use Windows 10 with Credential Guard +- Restrict and protect high-privilege domain accounts +- Restrict and protect local accounts with administrative privileges +- Restrict inbound network traffic + +Many other countermeasures are also covered, such as using Microsoft Passport and Windows Hello, or multifactor authentication. + +## Detecting credential attacks + +This sections covers how to detect the use of stolen credentials and how to collect computer events to help you detect credential theft. + +## Responding to suspicious activity + +Learn Microsoft's recommendations for responding to incidents, including how to recover control of compromised accounts, how to investigate attacks, and how to recover from a breach. + + diff --git a/windows/keep-secure/windows-defender-advanced-threat-protection.md b/windows/keep-secure/windows-defender-advanced-threat-protection.md index 7a77dece05..0a9feddff7 100644 --- a/windows/keep-secure/windows-defender-advanced-threat-protection.md +++ b/windows/keep-secure/windows-defender-advanced-threat-protection.md @@ -21,6 +21,8 @@ localizationpriority: high - Windows 10 Pro Education - Windows Defender Advanced Threat Protection (Windows Defender ATP) +>Want to experience Windows Defender ATP? [Sign up for a free trial.](https://www.microsoft.com/en-us/WindowsForBusiness/windows-atp?ocid=technet-wd-atp-abovefoldlink1) +> >For more info about Windows 10 Enterprise Edition features and functionality, see [Windows 10 Enterprise edition](https://www.microsoft.com/WindowsForBusiness/buy). Windows Defender Advanced Threat Protection (Windows Defender ATP) is a security service that enables enterprise customers to detect, investigate, and respond to advanced threats on their networks. @@ -30,7 +32,7 @@ Windows Defender ATP uses the following combination of technology built into Win - **Endpoint behavioral sensors**: Embedded in Windows 10, these sensors collect and process behavioral signals from the operating system (for example, process, registry, file, and network communications) - and sends this telemetry to your private, isolated, cloud instance of Windows Defender ATP. + and sends this sensor data to your private, isolated, cloud instance of Windows Defender ATP. - **Cloud security analytics**: Leveraging big-data, machine-learning, and @@ -45,7 +47,7 @@ Windows Defender ATP uses the following combination of technology built into Win and augmented by threat intelligence provided by partners, threat intelligence enables Windows Defender ATP to identify attacker tools, techniques, and procedures, and generate alerts when these - are observed in collected telemetry. + are observed in collected sensor data. The following diagram shows these Windows Defender ATP service components: @@ -91,3 +93,6 @@ Topic | Description [Troubleshoot Windows Defender Advanced Threat Protection](troubleshoot-windows-defender-advanced-threat-protection.md) | This topic contains information to help IT Pros find workarounds for the known issues and troubleshoot issues in Windows Defender ATP. [Review events and errors on endpoints with Event Viewer](event-error-codes-windows-defender-advanced-threat-protection.md)| Review events and errors associated with event IDs to determine if further troubleshooting steps are required. [Windows Defender compatibility](defender-compatibility-windows-defender-advanced-threat-protection.md) | Learn about how Windows Defender works in conjunction with Windows Defender ATP. + +## Related topic +[Windows Defender ATP helps detect sophisticated threats](https://www.microsoft.com/itshowcase/Article/Content/854/Windows-Defender-ATP-helps-detect-sophisticated-threats) diff --git a/windows/keep-secure/windows-defender-block-at-first-sight.md b/windows/keep-secure/windows-defender-block-at-first-sight.md index 8abf7c0806..a31f43f6ee 100644 --- a/windows/keep-secure/windows-defender-block-at-first-sight.md +++ b/windows/keep-secure/windows-defender-block-at-first-sight.md @@ -30,6 +30,9 @@ It is enabled by default when certain pre-requisite settings are also enabled. I When a Windows Defender client encounters a suspicious but undetected file, it queries our cloud protection backend. The cloud backend will apply heuristics, machine learning, and automated analysis of the file to determine the files as malicious or clean. +> [!NOTE] +> The Block at first sight feature only use the cloud protection backend for executable files that are downloaded from the Internet, or originating from the Internet zone. A hash value of the EXE file is checked via the cloud backend to determine if this is a previously undetected file. + If the cloud backend is unable to make a determination, the file will be locked by Windows Defender while a copy is uploaded to the cloud. Only after the cloud has received the file will Windows Defender release the lock and let the file run. The cloud will perform additional analysis to reach a determination, blocking all future encounters of that file. In many cases this process can reduce the response time to new malware from hours to seconds. diff --git a/windows/keep-secure/windows-defender-in-windows-10.md b/windows/keep-secure/windows-defender-in-windows-10.md index 7ad3e53061..58ecb02cde 100644 --- a/windows/keep-secure/windows-defender-in-windows-10.md +++ b/windows/keep-secure/windows-defender-in-windows-10.md @@ -18,7 +18,7 @@ author: jasesso Windows Defender in Windows 10 is a built-in antimalware solution that provides security and antimalware management for desktops, portable computers, and servers. This topic provides an overview of Windows Defender, including a list of system requirements and new features. -For more important information about running Windows Defender on a server platform, see [Windows Defender Overview for Windows Server Technical Preview](https://technet.microsoft.com/library/dn765478.aspx). +For more important information about running Windows Defender on a server platform, see [Windows Defender Overview for Windows Server](https://technet.microsoft.com/windows-server-docs/security/windows-defender/windows-defender-overview-windows-server). Take advantage of Windows Defender by configuring settings and definitions using the following tools: - Microsoft Active Directory *Group Policy* for settings diff --git a/windows/keep-secure/wip-app-enterprise-context.md b/windows/keep-secure/wip-app-enterprise-context.md new file mode 100644 index 0000000000..b4ebd4ced4 --- /dev/null +++ b/windows/keep-secure/wip-app-enterprise-context.md @@ -0,0 +1,55 @@ +--- +title: Determine the Enterprise Context of an app running in Windows Information Protection (WIP) (Windows 10) +description: Use the Task Manager to determine whether an app is considered work, personal or exempt by Windows Information Protection (WIP). +keywords: WIP, Windows Information Protection, EDP, Enterprise Data Protection, WIP and Task Manager, app context, enterprise context +ms.prod: w10 +ms.mktglfcycl: explore +ms.sitesec: library +ms.pagetype: security +localizationpriority: high +--- + +# Determine the Enterprise Context of an app running in Windows Information Protection (WIP) +**Applies to:** + +- Windows 10, version 1607 +- Windows 10 Mobile + +>Learn more about what features and functionality are supported in each Windows edition at [Compare Windows 10 Editions](https://www.microsoft.com/en-us/WindowsForBusiness/Compare). + +Use Task Manager to check the context of your apps while running in Windows Information Protection (WIP) to make sure that your organization's policies are applied and running correctly. + +## Viewing the Enterprise Context column in Task Manager +You need to add the Enterprise Context column to the **Details** tab of the Task Manager. + +1. Make sure that you have an active WIP policy deployed and turned on in your organization. + +2. Open the Task Manager (taskmgr.exe), click the **Details** tab, right-click in the column heading area, and click **Select columns**. + + The **Select columns** box appears. + + ![Task Manager, Select column box with Enterprise Context option selected](images/wip-select-column.png) + +3. Scroll down and check the **Enterprise Context** option, and then click **OK** to close the box. + + The **Enterprise Context** column should now be available in Task Manager. + + ![Task Manager, Enterprise Context column highlighted](images/wip-taskmgr.png) + +## Review the Enterprise Context +The **Enterprise Context** column shows you what each app can do with your enterprise data: + +- **Domain.** Shows the employee's work domain (such as, corp.contoso.com). This app is considered work-related and can freely touch and open work data and resources. + +- **Personal.** Shows the text, *Personal*. This app is considered non-work-related and can't touch any work data or resources. + +- **Exempt.** Shows the text, *Exempt*. WIP policies don't apply to these apps (such as, system components). + + >[!IMPORTANT] + >Enlightened apps can change between Work and Personal, depending on the data being touched. For example, Microsoft Word 2016 shows as **Personal** when an employee opens a personal letter, but changes to **Work** when that same employee opens the company financials. + + + + + + diff --git a/windows/keep-secure/working-with-applocker-rules.md b/windows/keep-secure/working-with-applocker-rules.md index 9c528133ef..c6fd38667f 100644 --- a/windows/keep-secure/working-with-applocker-rules.md +++ b/windows/keep-secure/working-with-applocker-rules.md @@ -89,6 +89,7 @@ The following table describes how a publisher condition is applied. | Option | The publisher condition allows or denies… | +|---|---| | **All signed files** | All files that are signed by any publisher.| | **Publisher only**| All files that are signed by the named publisher.| | **Publisher and product name**| All files for the specified product that are signed by the named publisher.| @@ -123,7 +124,7 @@ When you choose the file hash rule condition, the system computes a cryptographi ## AppLocker default rules -AppLocker allows you to generate default rules for each rule collection. +AppLocker includes default rules, which are intended to help ensure that the files that are required for Windows to operate properly are allowed in an AppLocker rule collection. For background, see [Understanding AppLocker default rules](understanding-applocker-default-rules.md), and for steps, see [Create AppLocker default rules](create-applocker-default-rules.md). Executable default rule types include: diff --git a/windows/manage/.vscode/settings.json b/windows/manage/.vscode/settings.json new file mode 100644 index 0000000000..20af2f68a6 --- /dev/null +++ b/windows/manage/.vscode/settings.json @@ -0,0 +1,3 @@ +// Place your settings in this file to overwrite default and user settings. +{ +} \ No newline at end of file diff --git a/windows/manage/TOC.md b/windows/manage/TOC.md index 54af0df920..d68415cde7 100644 --- a/windows/manage/TOC.md +++ b/windows/manage/TOC.md @@ -1,7 +1,21 @@ # [Manage and update Windows 10](index.md) ## [Administrative Tools in Windows 10](administrative-tools-in-windows-10.md) -## [Cortana integration in your business or enterprise](manage-cortana-in-enterprise.md) +## [Cortana integration in your business or enterprise](cortana-at-work-overview.md) +### [Testing scenarios using Cortana in your business or organization](cortana-at-work-testing-scenarios.md) +#### [Test scenario 1 - Sign-in to Azure AD and use Cortana to manage the notebook](cortana-at-work-scenario-1.md) +#### [Test scenario 2 - Test scenario 2 - Perform a quick search with Cortana at work](cortana-at-work-scenario-2.md) +#### [Test scenario 3 - Set a reminder for a specific location using Cortana at work](cortana-at-work-scenario-3.md) +#### [Test scenario 4 - Use Cortana at work to find your upcoming meetings](cortana-at-work-scenario-4.md) +#### [Test scenario 5 - Use Cortana to send email to a co-worker](cortana-at-work-scenario-5.md) +#### [Test scenario 6 - Use Cortana and Windows Information Protection (WIP) to help protect your organization’s data on a device](cortana-at-work-scenario-6.md) +### [Set up and test Cortana with Office 365 in your organization](cortana-at-work-o365.md) +### [Set up and test Cortana with Microsoft Dynamics CRM (Preview feature) in your organization](cortana-at-work-crm.md) +### [Set up and test Cortana for Power BI in your organization](cortana-at-work-powerbi.md) +### [Set up and test custom voice commands in Cortana for your organization](cortana-at-work-voice-commands.md) +### [Use Group Policy and mobile device management (MDM) settings to configure Cortana in your organization](cortana-at-work-policy-settings.md) +### [Send feedback about Cortana at work back to Microsoft](cortana-at-work-feedback.md) ## [Update Windows 10 in the enterprise](waas-update-windows-10.md) +### [Quick guide to Windows as a service](waas-quick-start.md) ### [Overview of Windows as a service](waas-overview.md) ### [Prepare servicing strategy for Windows 10 updates](waas-servicing-strategy-windows-10-updates.md) ### [Build deployment rings for Windows 10 updates](waas-deployment-rings-windows-10-updates.md) @@ -24,13 +38,15 @@ ### [Manage Windows 10 and Windows Store tips, tricks, and suggestions](manage-tips-and-suggestions.md) ### [New policies for Windows 10](new-policies-for-windows-10.md) ### [Group Policies that apply only to Windows 10 Enterprise and Windows 10 Education](group-policies-for-enterprise-and-education-editions.md) -### [Changes to Group Policy settings for Windows 10 Start](changes-to-start-policies-in-windows-10.md) +### [Changes to Group Policy settings for Windows 10 Start menu](changes-to-start-policies-in-windows-10.md) ### [Windows 10 Mobile and MDM](windows-10-mobile-and-mdm.md) ### [Introduction to configuration service providers (CSPs)](how-it-pros-can-use-configuration-service-providers.md) ## [Windows Spotlight on the lock screen](windows-spotlight.md) ## [Manage Windows 10 Start and taskbar layout](windows-10-start-layout-options-and-policies.md) ### [Configure Windows 10 taskbar](configure-windows-10-taskbar.md) ### [Customize and export Start layout](customize-and-export-start-layout.md) +### [Start layout XML for desktop editions of Windows 10 (reference)](start-layout-xml-desktop.md) +### [Start layout XML for mobile editions of Windows 10 (reference)](start-layout-xml-mobile.md) ### [Customize Windows 10 Start and taskbar with Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) ### [Customize Windows 10 Start and taskbar with ICD and provisioning packages](customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md) ### [Customize Windows 10 Start with mobile device management (MDM)](customize-windows-10-start-screens-by-using-mobile-device-management.md) diff --git a/windows/manage/administrative-tools-in-windows-10.md b/windows/manage/administrative-tools-in-windows-10.md index 3db6a42541..a7d5203f8a 100644 --- a/windows/manage/administrative-tools-in-windows-10.md +++ b/windows/manage/administrative-tools-in-windows-10.md @@ -26,9 +26,6 @@ The tools in the folder might vary depending on which edition of Windows you are These tools were included in previous versions of Windows and the associated documentation for each tool should help you use these tools in Windows 10. The following list links to documentation for each tool. -**Tip**   -If the content that is linked to a tool in the following list doesn't provide the information you need to use that tool, send us a comment by using the **Was this page helpful?** feature on this **Administrative Tools in Windows 10** page. Details about the information you want for a tool will help us plan future content. -   - [Component Services]( https://go.microsoft.com/fwlink/p/?LinkId=708489) @@ -49,7 +46,8 @@ If the content that is linked to a tool in the following list doesn't provide th - [Windows Firewall with Advanced Security](https://go.microsoft.com/fwlink/p/?LinkId=708503) - [Windows Memory Diagnostic]( https://go.microsoft.com/fwlink/p/?LinkId=708507) -  +>[!TIP]   +>If the content that is linked to a tool in the following list doesn't provide the information you need to use that tool, send us a comment by using the **Was this page helpful?** feature on this **Administrative Tools in Windows 10** page. Details about the information you want for a tool will help us plan future content.    diff --git a/windows/manage/change-history-for-manage-and-update-windows-10.md b/windows/manage/change-history-for-manage-and-update-windows-10.md index 50f89c5dea..c9e8313b65 100644 --- a/windows/manage/change-history-for-manage-and-update-windows-10.md +++ b/windows/manage/change-history-for-manage-and-update-windows-10.md @@ -12,6 +12,27 @@ author: jdeckerMS This topic lists new and updated topics in the [Manage and update Windows 10](index.md) documentation for [Windows 10 and Windows 10 Mobile](../index.md). +>If you're looking for **update history** for Windows 10, see [Windows 10 and Windows Server 2016 update history](https://support.microsoft.com/help/12387/windows-10-update-history). + +## January 2017 + +| New or changed topic | Description | +| --- | --- | +| [Cortana integration in your business or enterprise](cortana-at-work-overview.md) | New | +| [Start layout XML for desktop editions of Windows 10](start-layout-xml-desktop.md) | New (previously published in Hardware Dev Center on MSDN) | +| [Start layout XML for mobile editions of Windows 10](start-layout-xml-mobile.md) | New (previously published in Hardware Dev Center on MSDN) | +| [Quick guide to Windows as a service](waas-quick-start.md) | Added video that explains how Windows as a service works. | + + + +## December 2016 + +| New or changed topic | Description | +| --- | --- | +| [Quick guide to Windows as a service](waas-quick-start.md) | New | +| [Manage Windows 10 in your organization - transitioning to modern management](manage-windows-10-in-your-organization-modern-management.md) | Added video demonstration of the latest in modern management for Windows 10 | +| [Windows Store for Business overview](windows-store-for-business-overview.md) | Updated list of supported markets. | + ## November 2016 | New or changed topic | Description | diff --git a/windows/manage/changes-to-start-policies-in-windows-10.md b/windows/manage/changes-to-start-policies-in-windows-10.md index 743009e354..6cba8aeed7 100644 --- a/windows/manage/changes-to-start-policies-in-windows-10.md +++ b/windows/manage/changes-to-start-policies-in-windows-10.md @@ -1,5 +1,5 @@ --- -title: Changes to Group Policy settings for Windows 10 Start (Windows 10) +title: Changes to Group Policy settings for Windows 10 Start menu (Windows 10) description: Windows 10 has a brand new Start experience. ms.assetid: 612FB68A-3832-451F-AA97-E73791FEAA9F keywords: ["group policy", "start menu", "start screen"] diff --git a/windows/manage/configure-devices-without-mdm.md b/windows/manage/configure-devices-without-mdm.md index b28734a5f6..04ba35f499 100644 --- a/windows/manage/configure-devices-without-mdm.md +++ b/windows/manage/configure-devices-without-mdm.md @@ -104,11 +104,14 @@ When you run Windows ICD, you have several options for creating your package. 6. Toggle **On** or **Off** for wireless network connectivity. If you select **On**, enter the SSID, type, and (if required) password for the wireless network. 7. Click **Enroll into Active Directory**. 8. Toggle **Yes** or **No** for Active Directory enrollment. If you select **Yes**, enter the credentials for an account with permissions to enroll the device. (Optional) Enter a user name and password to create a local administrator account. + > [!WARNING] > If you don't create a local administrator account and the device fails to enroll in Active Directory for any reason, you will have to reimage the device and start over. As a best practice, we recommend: - - Use a least-privileged domain account to join the device to the domain. - - Create a temporary administrator account to use for debugging or reprovisioning if the device fails to enroll successfully. - - [Use Group Policy to delete the temporary administrator account](https://blogs.technet.microsoft.com/canitpro/2014/12/10/group-policy-creating-a-standard-local-admin-account/) after the device is enrolled in Active Directory. + > + >- Use a least-privileged domain account to join the device to the domain. + >- Create a temporary administrator account to use for debugging or reprovisioning if the device fails to enroll successfully. + >- [Use Group Policy to delete the temporary administrator account](https://blogs.technet.microsoft.com/canitpro/2014/12/10/group-policy-creating-a-standard-local-admin-account/) after the device is enrolled in Active Directory. + 9. Click **Finish**. 10. Review your settings in the summary. You can return to previous pages to change your selections. Then, under **Protect your package**, toggle **Yes** or **No** to encrypt the provisioning package. If you select **Yes**, enter a password. This password must be entered to apply the encrypted provisioning package. 11. Click **Create**. diff --git a/windows/manage/configure-windows-10-taskbar.md b/windows/manage/configure-windows-10-taskbar.md index 8f9c046ff2..bd5e26f4ba 100644 --- a/windows/manage/configure-windows-10-taskbar.md +++ b/windows/manage/configure-windows-10-taskbar.md @@ -17,14 +17,14 @@ Starting in Windows 10, version 1607, administrators can pin additional apps to You can specify different taskbar configurations based on device locale and region. There is no limit on the number of apps that you can pin. You specify apps using the [Application User Model ID (AUMID)](https://go.microsoft.com/fwlink/p/?LinkId=614867) or Desktop Application Link Path (the local path to the application). -If you specify an app to be pinned that is not installed on the computer, it won't appear on the taskbar. +If you specify an app to be pinned that is not provisioned for the user on the computer, the pinned icon won't appear on the taskbar. -The order of apps in the xml file dictates order of apps on taskbar from left to right, to the right of any existing apps pinned by user. +The order of apps in the XML file dictates the order of pinned apps on the taskbar from left to right, to the right of any existing apps pinned by the user. > [!NOTE] > In operating systems configured to use a right-to-left language, the taskbar order will be reversed. -The following example shows how apps will be pinned: Windows default apps to the left (blue circle), apps pinned by the user in the center (orange triangle), and apps that you pin using XML to the right (green square). +The following example shows how apps will be pinned: Windows default apps to the left (blue circle), apps pinned by the user in the center (orange triangle), and apps that you pin using the XML file to the right (green square). ![Windows left, user center, enterprise to the right](images/taskbar-generic.png) @@ -41,21 +41,21 @@ To configure the taskbar: 3. Apply the layout modification XML file to devices using [Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) or a [provisioning package created in Windows Imaging and Configuration Designer (Windows ICD)](customize-windows-10-start-screens-by-using-provisioning-packages-and-icd.md). >[!IMPORTANT] ->If you use a provisioning package to configure the taskbar, your configuration will be reapplied each time the explorer.exe process restarts. If your configuration pins an app and the user unpins that app, the user's change will be overwritten the next time the configuration is applied. To apply a taskbar configuration and allow users to make changes that will persist, apply your configuration by using Group Policy. +>If you use a provisioning package to configure the taskbar, your configuration will be reapplied each time the explorer.exe process restarts. If your configuration pins an app and the user then unpins that app, the user's change will be overwritten the next time the configuration is applied. To apply a taskbar configuration that allows users to make changes that will persist, apply your configuration by using Group Policy. ### Tips for finding AUMID and Desktop Application Link Path In the layout modification XML file, you will need to add entries for applications in the XML markup. In order to pin an application, you need either its AUMID or Desktop Application Link Path. The easiest way to find this data for an application is to: -1. Pin the application to the Start menu +1. Pin the application to the Start menu on a reference or testing PC. 2. Open Windows PowerShell and run the `Export-StartLayout` cmdlet. 3. Open the generated XML file. -4. Look for an entry corresponding to the app you pinned . +4. Look for an entry corresponding to the app you pinned. 5. Look for a property labeled `AppUserModelID` or `DesktopApplicationLinkPath`. -### Sample taskbar configuration XML +### Sample taskbar configuration XML file ```xml @@ -75,7 +75,7 @@ The easiest way to find this data for an application is to: ``` -### Sample taskbar configuration added to Start layout XML +### Sample taskbar configuration added to Start layout XML file ```xml @@ -139,7 +139,7 @@ The `` section will append listed apps to the tas ![additional apps pinned to taskbar](images/taskbar-default-plus.png) -##Remove default apps and add your own +## Remove default apps and add your own By adding `PinListPlacement="Replace"` to ``, you remove all default pinned apps; only the apps that you specify will be pinned to the taskbar. @@ -218,7 +218,7 @@ The following example shows you how to configure taskbars by country or region. ``` -When the preceding example XML is applied, the resulting taskbar for computers in the US or UK: +When the preceding example XML file is applied, the resulting taskbar for computers in the US or UK: ![taskbar for US and UK locale](images/taskbar-region-usuk.png) @@ -289,7 +289,9 @@ The resulting taskbar for computers in any other country region: ## Related topics -[Manage Windows 10 Start and taskbar layout ](windows-10-start-layout-options-and-policies.md)[Customize and export Start layout](customize-and-export-start-layout.md) +[Manage Windows 10 Start and taskbar layout ](windows-10-start-layout-options-and-policies.md) + +[Customize and export Start layout](customize-and-export-start-layout.md) [Customize Windows 10 Start and taskbar with Group Policy](customize-windows-10-start-screens-by-using-group-policy.md) diff --git a/windows/manage/configure-windows-telemetry-in-your-organization.md b/windows/manage/configure-windows-telemetry-in-your-organization.md index 3bb9df599b..a7f9bbef7e 100644 --- a/windows/manage/configure-windows-telemetry-in-your-organization.md +++ b/windows/manage/configure-windows-telemetry-in-your-organization.md @@ -148,6 +148,7 @@ The following table defines the endpoints for telemetry services: | Connected User Experience and Telemetry component | v10.vortex-win.data.microsoft.com
    settings-win.data.microsoft.com | | [Windows Error Reporting](http://msdn.microsoft.com/library/windows/desktop/bb513641.aspx) | watson.telemetry.microsoft.com | | [Online Crash Analysis](http://msdn.microsoft.com/library/windows/desktop/ee416349.aspx) | oca.telemetry.microsoft.com | +| OneDrive app for Windows 10 | vortex.data.microsoft.com/collect/v1 | ### Data use and access diff --git a/windows/manage/connect-to-remote-aadj-pc.md b/windows/manage/connect-to-remote-aadj-pc.md index b05c575380..8424e7c1c3 100644 --- a/windows/manage/connect-to-remote-aadj-pc.md +++ b/windows/manage/connect-to-remote-aadj-pc.md @@ -25,7 +25,7 @@ From its release, Windows 10 has supported remote connections to PCs that are jo ## Set up - Both PCs (local and remote) must be running Windows 10, version 1607. Remote connection to an Azure AD-joined PC that is running earlier versions of Windows 10 is not supported. -- Ensure [Remote Credential Guard](../keep-secure/remote-credential-guard.md), a new feature in Windows 10, version 1607, is turned off on the client PC. +- Ensure [Remote Credential Guard](../keep-secure/remote-credential-guard.md), a new feature in Windows 10, version 1607, is turned off on the client PC that you are using to connect to the remote PC. - On the PC that you want to connect to: 1. Open system properties for the remote PC. 2. Enable **Allow remote connections to this computer** and select **Allow connections only from computers running Remote Desktop with Network Level Authentication**. diff --git a/windows/manage/cortana-at-work-crm.md b/windows/manage/cortana-at-work-crm.md new file mode 100644 index 0000000000..834bde8a92 --- /dev/null +++ b/windows/manage/cortana-at-work-crm.md @@ -0,0 +1,62 @@ +--- +title: Set up and test Cortana with Microsoft Dynamics CRM (Preview feature) in your organization (Windows 10) +description: How to set up Cortana to help your salespeople get proactive insights on important CRM activities, including sales leads, accounts, and opportunities; presenting the most relevant info at any given time. +ms.prod: w10 +ms.mktglfcycl: manage +ms.sitesec: library +localizationpriority: high +--- + +# Set up and test Cortana with Microsoft Dynamics CRM (Preview feature) in your organization +**Applies to:** + +- Windows 10, Windows Insider Program +- Windows 10 Mobile, Windows Insider Program + +>[!IMPORTANT] +>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. + +Cortana integration is a Preview feature that's available for your test or dev environment, starting with the CRM Online 2016 Update. If you decide to use this Preview feature, you'll need to turn in on and accept the license terms. After that, your salespeople will get proactive insights from Cortana on important CRM activities, including sales leads, accounts, and opportunities; presenting the most relevant info at any given time. This can even include getting company-specific news that surfaces when the person is meeting with a representative from another company. + +>[!NOTE] +>For more info about Dynamics CRM integration, how to turn on Cortana, and how to provide feedback, see [Preview feature: Set up Cortana integration](http://go.microsoft.com/fwlink/p/?LinkId=746819). + +![Cortana at work, showing the sales data pulled from Dynamics CRM](images/cortana-crm-screen.png) + +## Turn on Cortana with Dynamics CRM in your organization +You must be a CRM administrator to turn on and use Preview features. For more info about what Preview features are and how to use them, see [What are Preview features and how do I enable them](http://go.microsoft.com/fwlink/p/?LinkId=746817)? + +**To turn on Cortana with Dynamics CRM** + +1. Go to **Settings**, and then click **Administration**. + +2. Choose **System Settings**, and then click the **Previews** tab. + +3. Read the license terms, and if you agree, select the **I’ve read and agree to the license terms** check box. + +4. For each preview feature you want to enable, click **Yes**. + +## Turn on Cortana with Dynamics CRM on your employees’ devices +You must tell your employees to turn on Cortana, before they’ll be able to use it with Dynamics CRM. + +**To turn on local Cortana with Dynamics CRM** + +1. Click on the **Cortana** search box in the taskbar, and then click the **Notebook** icon. + +2. Click on **Connected Services**, click **Dynamics CRM**, and then click **Connect**. + + ![Cotana at work, showing how to turn on the connected services for Dynamics CRM](images/cortana-connect-crm.png) + + The employee can also disconnect by clicking **Disconnect** from the **Dynamics CRM** screen. + +## Turn off Cortana with Dynamics CRM +Cortana can only access data in Dynamics CRM when it’s turned on. If you don’t want Cortana to access your corporate data, you can turn it off. + +**To turn off Cortana with Dynamics CRM** +1. Go to **Settings**, and then click **Administration**. + +2. Choose **System Settings**, and then click the **Previews** tab. + +3. Click **No** for **Cortana**. + + All Dynamics CRM functionality related to Cortana is turned off in your organization. \ No newline at end of file diff --git a/windows/manage/cortana-at-work-feedback.md b/windows/manage/cortana-at-work-feedback.md new file mode 100644 index 0000000000..ca24c22703 --- /dev/null +++ b/windows/manage/cortana-at-work-feedback.md @@ -0,0 +1,24 @@ +--- +title: Send feedback about Cortana at work back to Microsoft (Windows 10) +description: How to send feedback to Microsoft about Cortana at work. +ms.prod: w10 +ms.mktglfcycl: manage +ms.sitesec: library +localizationpriority: high +--- + +# Send feedback about Cortana at work back to Microsoft +**Applies to:** + +- Windows 10, Windows Insider Program +- Windows 10 Mobile, Windows Insider Program + +>[!IMPORTANT] +>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. + +We ask that you report bugs and issues. To provide feedback, you can click the **Feedback** icon in the Cortana window. When you send this form to Microsoft it also includes troubleshooting info, in case you run into problems. + +![Cortana at work, showing how to provide feedback to Microsoft](images/cortana-feedback.png) + +If you don't want to use the feedback tool in Cortana, you can add feedback through the general Windows Insider Preview feedback app. For info about the Insider Preview feedback app, see [How to use Windows Insider Preview – Updates and feedback](http://windows.microsoft.com/en-us/windows/preview-updates-feedback-pc). + diff --git a/windows/manage/cortana-at-work-o365.md b/windows/manage/cortana-at-work-o365.md new file mode 100644 index 0000000000..d58663dc00 --- /dev/null +++ b/windows/manage/cortana-at-work-o365.md @@ -0,0 +1,72 @@ +--- +title: Set up and test Cortana with Office 365 in your organization (Windows 10) +description: How to connect Cortana to Office 365 so your employees are notified about regular meetings, unusual events, such as meetings over lunch or during a typical commute time, and about early meetings, even setting an alarm so the employee isn’t late. +ms.prod: w10 +ms.mktglfcycl: manage +ms.sitesec: library +localizationpriority: high +--- + +# Set up and test Cortana with Office 365 in your organization +**Applies to:** + +- Windows 10, Windows Insider Program +- Windows 10 Mobile, Windows Insider Program + +>[!IMPORTANT] +>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. + +Cortana in Windows 10 is already great at letting your employees quickly see what the day is going to look like, do meeting prep work like researching people in LinkedIn or getting documents ready, see where and when their meetings are going to be, get a sense of travel times to and from work, and even get updates from a calendar for upcoming trips. + +But Cortana works even harder when she connects to Office 365, helping employees to be notified about unusual events, such as meetings over lunch or during a typical commute time, and about early meetings, even setting an alarm so the employee isn’t late. + +![Cortana at work, showing the day's schedule pulled from Office 365](images/cortana-o365-screen.png) + +We’re continuing to add more and more capabilities to Cortana so she can become even more helpful with your productivity-related tasks, such as emailing, scheduling, and other tasks that are important to help you be successful. + +>[!NOTE] +>For a quick review of the frequently asked questions about Cortana and Office 365 integration, see the blog post, [An early look at Cortana integration with Office 365](http://go.microsoft.com/fwlink/p/?LinkId=717379). + +## Before you begin +There are a few things to be aware of before you start using Cortana with Office 365 in your organization. + +- **Software requirements.** O365 integration with Cortana is available in all countries/regions where Cortana is supported for consumers today. This includes the United States, United Kingdom, Canada, France, Italy, Germany, Spain, China, Japan, India, and Australia. As Cortana comes to more countries, it will also become available to organizations. + +- **Azure Active Directory (Azure AD) account.** Before your employees can use Cortana in your org, they must be logged in using their Azure AD account through Cortana’s notebook. They must also authorize Cortana to access Office 365 on their behalf. + +- **Office 365 Trust Center.** Cortana isn't a service covered by the Office 365 Trust Center. [Learn more about how Cortana treats your data](http://go.microsoft.com/fwlink/p/?LinkId=536419). + +- **Troubleshooting tips.** If you run into issues, check out these [troubleshooting tips](http://go.microsoft.com/fwlink/p/?LinkId=620763). + +## Turn on Cortana with Office 365 on employees’ devices +You must tell your employees to turn on Cortana before they’ll be able to use it with Office 365. + +**To turn on local Cortana with Office 365** + +1. Click on the **Cortana** search box in the taskbar, and then click the **Notebook** icon. + +2. Click on **Connected Services**, click **Office 365**, and then click **Connect**. + + ![Cotana at work, showing how to turn on the connected services for Office 365](images/cortana-connect-o365.png) + + The employee can also disconnect by clicking **Disconnect** from the **Office 365** screen. + +## Turn off Cortana with Office 365 +Cortana can only access data in your Office 365 org when it’s turned on. If you don’t want Cortana to access your corporate data, you can turn it off in the Office 365 admin center. + +**To turn off Cortana with Office 365** +1. [Sign in to Office 365](http://www.office.com/signin) using your Azure AD account. + +2. Go to the [Office 365 admin center](https://support.office.com/en-us/article/Office-365-admin-center-58537702-d421-4d02-8141-e128e3703547). + +3. Expand **Service Settings**, and select **Cortana**. + +4. Click **Cortana** to toggle Cortana off. + + All Office 365 functionality related to Cortana is turned off in your organization and your employees are unable to use her at work. + + + + + + diff --git a/windows/manage/cortana-at-work-overview.md b/windows/manage/cortana-at-work-overview.md new file mode 100644 index 0000000000..96064364c3 --- /dev/null +++ b/windows/manage/cortana-at-work-overview.md @@ -0,0 +1,64 @@ +--- +title: Cortana integration in your business or enterprise (Windows 10) +description: The world’s first personal digital assistant helps users get things done, even at work. Cortana includes powerful configuration options specifically to optimize for unique small to medium-sized business and enterprise environments. +ms.prod: w10 +ms.mktglfcycl: manage +ms.sitesec: library +localizationpriority: high +--- + +# Cortana integration in your business or enterprise +**Applies to:** + +- Windows 10, Windows Insider Program +- Windows 10 Mobile, Windows Insider Program + +>[!IMPORTANT] +>Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. + +## Who is Cortana? +Cortana is Microsoft’s personal digital assistant, who helps busy people get things done, even while at work. +Cortana has powerful configuration options, specifically optimized for your business. By signing in with an Azure Active Directory (Azure AD) account, your employees can give Cortana access to their enterprise/work identity, while getting all the functionality Cortana provides to them outside of work. + +Using Azure AD also means that you can remove an employee’s profile (for example, when an employee leaves your organization) while respecting Windows Information Protection (WIP) policies and ignoring enterprise content, such as emails, calendar items, and people lists that are marked as enterprise data. + +![Cortana at work, showing the About me screen](images/cortana-about-me.png) + +## Where is Cortana available for use in my organization? +You can use Cortana at work in all countries/regions where Cortana is supported for consumers. This includes the United States, United Kingdom, Canada, France, Italy, Germany, Spain, China, Japan, India, and Australia. As Cortana comes to more countries, she will also become available to enterprise customers. + +Cortana is available on Windows 10, Windows Insider Program and with limited functionality on Windows Phone 8.1, Windows Insider Program. + +## Required hardware and software +Cortana requires the following hardware and software to successfully run the included scenario in your organization. + +|Hardware |Description | +|---------|------------| +|Microphone |For speech interaction with Cortana. If you don't have a microphone, you can still interact with Cortana by typing in the Cortana Search Box in the taskbar. | +|Windows Phone |For location-specific reminders. You can also use a desktop device to run through this scenario, but location accuracy is usually better on phones. | +|Desktop devices |For non-phone-related scenarios. | + + +|Software |Minimum version | +|---------|------------| +|Client operating system |